1f8829a4aSRandall Stewart /*- 2b1006367SRandall Stewart * Copyright (c) 2001-2007, by Cisco Systems, Inc. All rights reserved. 3f8829a4aSRandall Stewart * 4f8829a4aSRandall Stewart * Redistribution and use in source and binary forms, with or without 5f8829a4aSRandall Stewart * modification, are permitted provided that the following conditions are met: 6f8829a4aSRandall Stewart * 7f8829a4aSRandall Stewart * a) Redistributions of source code must retain the above copyright notice, 8f8829a4aSRandall Stewart * this list of conditions and the following disclaimer. 9f8829a4aSRandall Stewart * 10f8829a4aSRandall Stewart * b) Redistributions in binary form must reproduce the above copyright 11f8829a4aSRandall Stewart * notice, this list of conditions and the following disclaimer in 12f8829a4aSRandall Stewart * the documentation and/or other materials provided with the distribution. 13f8829a4aSRandall Stewart * 14f8829a4aSRandall Stewart * c) Neither the name of Cisco Systems, Inc. nor the names of its 15f8829a4aSRandall Stewart * contributors may be used to endorse or promote products derived 16f8829a4aSRandall Stewart * from this software without specific prior written permission. 17f8829a4aSRandall Stewart * 18f8829a4aSRandall Stewart * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 19f8829a4aSRandall Stewart * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, 20f8829a4aSRandall Stewart * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 21f8829a4aSRandall Stewart * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE 22f8829a4aSRandall Stewart * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 23f8829a4aSRandall Stewart * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 24f8829a4aSRandall Stewart * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 25f8829a4aSRandall Stewart * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 26f8829a4aSRandall Stewart * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 27f8829a4aSRandall Stewart * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 28f8829a4aSRandall Stewart * THE POSSIBILITY OF SUCH DAMAGE. 29f8829a4aSRandall Stewart */ 30f8829a4aSRandall Stewart 31f8829a4aSRandall Stewart /* $KAME: sctp_asconf.c,v 1.24 2005/03/06 16:04:16 itojun Exp $ */ 32f8829a4aSRandall Stewart 33f8829a4aSRandall Stewart #include <sys/cdefs.h> 34cef8ad06SRandall Stewart __FBSDID("$FreeBSD$"); 35f8829a4aSRandall Stewart #include <netinet/sctp_os.h> 36f8829a4aSRandall Stewart #include <netinet/sctp_var.h> 3742551e99SRandall Stewart #include <netinet/sctp_sysctl.h> 38f8829a4aSRandall Stewart #include <netinet/sctp_pcb.h> 39f8829a4aSRandall Stewart #include <netinet/sctp_header.h> 40f8829a4aSRandall Stewart #include <netinet/sctputil.h> 41f8829a4aSRandall Stewart #include <netinet/sctp_output.h> 42f8829a4aSRandall Stewart #include <netinet/sctp_asconf.h> 43f8829a4aSRandall Stewart 44f8829a4aSRandall Stewart /* 45f8829a4aSRandall Stewart * debug flags: 46f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF1: protocol info, general info and errors 47f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF2: detailed info 48f8829a4aSRandall Stewart */ 49f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 50f8829a4aSRandall Stewart #endif /* SCTP_DEBUG */ 51f8829a4aSRandall Stewart 52f8829a4aSRandall Stewart 53ad81507eSRandall Stewart static void 54f8829a4aSRandall Stewart sctp_asconf_get_source_ip(struct mbuf *m, struct sockaddr *sa) 55f8829a4aSRandall Stewart { 56f8829a4aSRandall Stewart struct ip *iph; 57f8829a4aSRandall Stewart struct sockaddr_in *sin; 58f8829a4aSRandall Stewart 59f8829a4aSRandall Stewart #ifdef INET6 60f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 61f8829a4aSRandall Stewart 62f8829a4aSRandall Stewart #endif 63f8829a4aSRandall Stewart 64f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 65f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 66f8829a4aSRandall Stewart /* IPv4 source */ 67f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 68f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 69f8829a4aSRandall Stewart sin->sin_family = AF_INET; 70f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 71f8829a4aSRandall Stewart sin->sin_port = 0; 72f8829a4aSRandall Stewart sin->sin_addr.s_addr = iph->ip_src.s_addr; 73ad81507eSRandall Stewart return; 74f8829a4aSRandall Stewart } 75f8829a4aSRandall Stewart #ifdef INET6 76f8829a4aSRandall Stewart else if (iph->ip_v == (IPV6_VERSION >> 4)) { 77f8829a4aSRandall Stewart /* IPv6 source */ 78f8829a4aSRandall Stewart struct ip6_hdr *ip6; 79f8829a4aSRandall Stewart 80f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 81f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 82f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 83f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 84f8829a4aSRandall Stewart sin6->sin6_port = 0; 85f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 86f8829a4aSRandall Stewart sin6->sin6_addr = ip6->ip6_src; 87ad81507eSRandall Stewart return; 88f8829a4aSRandall Stewart } 89f8829a4aSRandall Stewart #endif /* INET6 */ 90f8829a4aSRandall Stewart else 91ad81507eSRandall Stewart return; 92f8829a4aSRandall Stewart } 93f8829a4aSRandall Stewart 94f8829a4aSRandall Stewart /* 95f8829a4aSRandall Stewart * draft-ietf-tsvwg-addip-sctp 96f8829a4aSRandall Stewart * 97f8829a4aSRandall Stewart * An ASCONF parameter queue exists per asoc which holds the pending address 98f8829a4aSRandall Stewart * operations. Lists are updated upon receipt of ASCONF-ACK. 99f8829a4aSRandall Stewart * 10018e198d3SRandall Stewart * A restricted_addrs list exists per assoc to hold local addresses that are 10118e198d3SRandall Stewart * not (yet) usable by the assoc as a source address. These addresses are 10218e198d3SRandall Stewart * either pending an ASCONF operation (and exist on the ASCONF parameter 10318e198d3SRandall Stewart * queue), or they are permanently restricted (the peer has returned an 10418e198d3SRandall Stewart * ERROR indication to an ASCONF(ADD), or the peer does not support ASCONF). 10518e198d3SRandall Stewart * 106f8829a4aSRandall Stewart * Deleted addresses are always immediately removed from the lists as they will 107f8829a4aSRandall Stewart * (shortly) no longer exist in the kernel. We send ASCONFs as a courtesy, 108f8829a4aSRandall Stewart * only if allowed. 109f8829a4aSRandall Stewart */ 110f8829a4aSRandall Stewart 111f8829a4aSRandall Stewart /* 11218e198d3SRandall Stewart * ASCONF parameter processing. 11318e198d3SRandall Stewart * response_required: set if a reply is required (eg. SUCCESS_REPORT). 11418e198d3SRandall Stewart * returns a mbuf to an "error" response parameter or NULL/"success" if ok. 11518e198d3SRandall Stewart * FIX: allocating this many mbufs on the fly is pretty inefficient... 116f8829a4aSRandall Stewart */ 117f8829a4aSRandall Stewart static struct mbuf * 118f8829a4aSRandall Stewart sctp_asconf_success_response(uint32_t id) 119f8829a4aSRandall Stewart { 120f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 121f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 122f8829a4aSRandall Stewart 123f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_paramhdr), 124f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 125f8829a4aSRandall Stewart if (m_reply == NULL) { 126ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 127ad81507eSRandall Stewart "asconf_success_response: couldn't get mbuf!\n"); 128f8829a4aSRandall Stewart return NULL; 129f8829a4aSRandall Stewart } 130f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 131f8829a4aSRandall Stewart aph->correlation_id = id; 132f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_SUCCESS_REPORT); 133f8829a4aSRandall Stewart aph->ph.param_length = sizeof(struct sctp_asconf_paramhdr); 134139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 135f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 136f8829a4aSRandall Stewart 137f8829a4aSRandall Stewart return m_reply; 138f8829a4aSRandall Stewart } 139f8829a4aSRandall Stewart 140f8829a4aSRandall Stewart static struct mbuf * 141f8829a4aSRandall Stewart sctp_asconf_error_response(uint32_t id, uint16_t cause, uint8_t * error_tlv, 142f8829a4aSRandall Stewart uint16_t tlv_length) 143f8829a4aSRandall Stewart { 144f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 145f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 146f8829a4aSRandall Stewart struct sctp_error_cause *error; 147f8829a4aSRandall Stewart uint8_t *tlv; 148f8829a4aSRandall Stewart 149f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg((sizeof(struct sctp_asconf_paramhdr) + 150f8829a4aSRandall Stewart tlv_length + 151f8829a4aSRandall Stewart sizeof(struct sctp_error_cause)), 152f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 153f8829a4aSRandall Stewart if (m_reply == NULL) { 154ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 155ad81507eSRandall Stewart "asconf_error_response: couldn't get mbuf!\n"); 156f8829a4aSRandall Stewart return NULL; 157f8829a4aSRandall Stewart } 158f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 159f8829a4aSRandall Stewart error = (struct sctp_error_cause *)(aph + 1); 160f8829a4aSRandall Stewart 161f8829a4aSRandall Stewart aph->correlation_id = id; 162f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_ERROR_CAUSE_IND); 163f8829a4aSRandall Stewart error->code = htons(cause); 164f8829a4aSRandall Stewart error->length = tlv_length + sizeof(struct sctp_error_cause); 165f8829a4aSRandall Stewart aph->ph.param_length = error->length + 166f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr); 167f8829a4aSRandall Stewart 168f8829a4aSRandall Stewart if (aph->ph.param_length > MLEN) { 169ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 170ad81507eSRandall Stewart "asconf_error_response: tlv_length (%xh) too big\n", 171f8829a4aSRandall Stewart tlv_length); 172f8829a4aSRandall Stewart sctp_m_freem(m_reply); /* discard */ 173f8829a4aSRandall Stewart return NULL; 174f8829a4aSRandall Stewart } 175f8829a4aSRandall Stewart if (error_tlv != NULL) { 176f8829a4aSRandall Stewart tlv = (uint8_t *) (error + 1); 177f8829a4aSRandall Stewart memcpy(tlv, error_tlv, tlv_length); 178f8829a4aSRandall Stewart } 179139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 180f8829a4aSRandall Stewart error->length = htons(error->length); 181f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 182f8829a4aSRandall Stewart 183f8829a4aSRandall Stewart return m_reply; 184f8829a4aSRandall Stewart } 185f8829a4aSRandall Stewart 186f8829a4aSRandall Stewart static struct mbuf * 187f8829a4aSRandall Stewart sctp_process_asconf_add_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 188f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 189f8829a4aSRandall Stewart { 190f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 191f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 192f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 193f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 194f8829a4aSRandall Stewart struct sockaddr *sa; 195f8829a4aSRandall Stewart struct sockaddr_in *sin; 196f8829a4aSRandall Stewart int zero_address = 0; 197f8829a4aSRandall Stewart 198f8829a4aSRandall Stewart #ifdef INET6 199f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 200f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 201f8829a4aSRandall Stewart 202f8829a4aSRandall Stewart #endif /* INET6 */ 203f8829a4aSRandall Stewart 204f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 205f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 206f8829a4aSRandall Stewart #ifdef INET6 207f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 208f8829a4aSRandall Stewart #endif /* INET6 */ 209f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 210f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 211f8829a4aSRandall Stewart 212f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 213f8829a4aSRandall Stewart switch (param_type) { 214f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 215f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 216f8829a4aSRandall Stewart /* invalid param size */ 217f8829a4aSRandall Stewart return NULL; 218f8829a4aSRandall Stewart } 219f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 220f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 221f8829a4aSRandall Stewart sin->sin_family = AF_INET; 222f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 223f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 224f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 225f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 226f8829a4aSRandall Stewart zero_address = 1; 227ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 228ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 229f8829a4aSRandall Stewart break; 230f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 231f8829a4aSRandall Stewart #ifdef INET6 232f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 233f8829a4aSRandall Stewart /* invalid param size */ 234f8829a4aSRandall Stewart return NULL; 235f8829a4aSRandall Stewart } 236f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 237f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 238f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 239f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 240f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 241f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 242f8829a4aSRandall Stewart sizeof(struct in6_addr)); 243f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 244f8829a4aSRandall Stewart zero_address = 1; 245ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 246ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 247f8829a4aSRandall Stewart #else 248f8829a4aSRandall Stewart /* IPv6 not enabled! */ 249f8829a4aSRandall Stewart /* FIX ME: currently sends back an invalid param error */ 250f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 251f8829a4aSRandall Stewart SCTP_CAUSE_INVALID_PARAM, (uint8_t *) aph, aparam_length); 252ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 253ad81507eSRandall Stewart "process_asconf_add_ip: v6 disabled- skipping "); 254ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 255f8829a4aSRandall Stewart return m_reply; 256ad81507eSRandall Stewart #endif 257f8829a4aSRandall Stewart break; 258f8829a4aSRandall Stewart default: 259f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 260f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 261f8829a4aSRandall Stewart aparam_length); 262f8829a4aSRandall Stewart return m_reply; 263f8829a4aSRandall Stewart } /* end switch */ 264f8829a4aSRandall Stewart 265f8829a4aSRandall Stewart /* if 0.0.0.0/::0, add the source address instead */ 266139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 267f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 268f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 269ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 270ad81507eSRandall Stewart "process_asconf_add_ip: using source addr "); 271ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 272f8829a4aSRandall Stewart } 273f8829a4aSRandall Stewart /* add the address */ 274a5d547adSRandall Stewart if (sctp_add_remote_addr(stcb, sa, SCTP_DONOT_SETSCOPE, 275a5d547adSRandall Stewart SCTP_ADDR_DYNAMIC_ADDED) != 0) { 276ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 277ad81507eSRandall Stewart "process_asconf_add_ip: error adding address\n"); 278f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 279f8829a4aSRandall Stewart SCTP_CAUSE_RESOURCE_SHORTAGE, (uint8_t *) aph, 280f8829a4aSRandall Stewart aparam_length); 281f8829a4aSRandall Stewart } else { 282f8829a4aSRandall Stewart /* notify upper layer */ 283f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_ADD_IP, stcb, 0, sa); 284f8829a4aSRandall Stewart if (response_required) { 285f8829a4aSRandall Stewart m_reply = 286f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 287f8829a4aSRandall Stewart } 2883c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, stcb, 2893c503c28SRandall Stewart NULL, SCTP_FROM_SCTP_ASCONF + SCTP_LOC_1); 2903c503c28SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, 2913c503c28SRandall Stewart stcb, NULL); 292f8829a4aSRandall Stewart } 293f8829a4aSRandall Stewart 294f8829a4aSRandall Stewart return m_reply; 295f8829a4aSRandall Stewart } 296f8829a4aSRandall Stewart 297f8829a4aSRandall Stewart static int 2981b649582SRandall Stewart sctp_asconf_del_remote_addrs_except(struct sctp_tcb *stcb, struct sockaddr *src) 299f8829a4aSRandall Stewart { 300f8829a4aSRandall Stewart struct sctp_nets *src_net, *net; 301f8829a4aSRandall Stewart 302f8829a4aSRandall Stewart /* make sure the source address exists as a destination net */ 303f8829a4aSRandall Stewart src_net = sctp_findnet(stcb, src); 304f8829a4aSRandall Stewart if (src_net == NULL) { 305f8829a4aSRandall Stewart /* not found */ 306f8829a4aSRandall Stewart return -1; 307f8829a4aSRandall Stewart } 308f8829a4aSRandall Stewart /* delete all destination addresses except the source */ 309f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 310f8829a4aSRandall Stewart if (net != src_net) { 311f8829a4aSRandall Stewart /* delete this address */ 312f8829a4aSRandall Stewart sctp_remove_net(stcb, net); 313ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 314ad81507eSRandall Stewart "asconf_del_remote_addrs_except: deleting "); 315ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, 316ad81507eSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 317f8829a4aSRandall Stewart /* notify upper layer */ 318f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, 319f8829a4aSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 320f8829a4aSRandall Stewart } 321f8829a4aSRandall Stewart } 322f8829a4aSRandall Stewart return 0; 323f8829a4aSRandall Stewart } 324f8829a4aSRandall Stewart 325f8829a4aSRandall Stewart static struct mbuf * 326f8829a4aSRandall Stewart sctp_process_asconf_delete_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 327f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 328f8829a4aSRandall Stewart { 329f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 330f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 331f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 332f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 333f8829a4aSRandall Stewart struct sockaddr *sa; 334f8829a4aSRandall Stewart struct sockaddr_in *sin; 335f8829a4aSRandall Stewart int zero_address = 0; 336f8829a4aSRandall Stewart int result; 337f8829a4aSRandall Stewart 338f8829a4aSRandall Stewart #ifdef INET6 339f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 340f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 341f8829a4aSRandall Stewart 342f8829a4aSRandall Stewart #endif /* INET6 */ 343f8829a4aSRandall Stewart 344f8829a4aSRandall Stewart /* get the source IP address for src and 0.0.0.0/::0 delete checks */ 345f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, (struct sockaddr *)&sa_source); 346f8829a4aSRandall Stewart 347f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 348f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 349f8829a4aSRandall Stewart #ifdef INET6 350f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 351f8829a4aSRandall Stewart #endif /* INET6 */ 352f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 353f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 354f8829a4aSRandall Stewart 355f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 356f8829a4aSRandall Stewart switch (param_type) { 357f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 358f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 359f8829a4aSRandall Stewart /* invalid param size */ 360f8829a4aSRandall Stewart return NULL; 361f8829a4aSRandall Stewart } 362f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 363f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 364f8829a4aSRandall Stewart sin->sin_family = AF_INET; 365f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 366f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 367f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 368f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 369f8829a4aSRandall Stewart zero_address = 1; 370ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 371ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 372ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 373f8829a4aSRandall Stewart break; 374f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 375f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 376f8829a4aSRandall Stewart /* invalid param size */ 377f8829a4aSRandall Stewart return NULL; 378f8829a4aSRandall Stewart } 379f8829a4aSRandall Stewart #ifdef INET6 380f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 381f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 382f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 383f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 384f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 385f8829a4aSRandall Stewart memcpy(&sin6->sin6_addr, v6addr->addr, 386f8829a4aSRandall Stewart sizeof(struct in6_addr)); 387f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 388f8829a4aSRandall Stewart zero_address = 1; 389ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 390ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 391ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 392f8829a4aSRandall Stewart #else 393f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 394ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 395ad81507eSRandall Stewart "process_asconf_delete_ip: v6 disabled- ignoring: "); 396ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 397f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 398f8829a4aSRandall Stewart return NULL; 399ad81507eSRandall Stewart #endif 400f8829a4aSRandall Stewart break; 401f8829a4aSRandall Stewart default: 402f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 403f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 404f8829a4aSRandall Stewart aparam_length); 405f8829a4aSRandall Stewart return m_reply; 406f8829a4aSRandall Stewart } 407f8829a4aSRandall Stewart 408f8829a4aSRandall Stewart /* make sure the source address is not being deleted */ 409f8829a4aSRandall Stewart if (sctp_cmpaddr(sa, (struct sockaddr *)&sa_source)) { 410f8829a4aSRandall Stewart /* trying to delete the source address! */ 411ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete source addr\n"); 412f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 413f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_SRC_ADDR, (uint8_t *) aph, 414f8829a4aSRandall Stewart aparam_length); 415f8829a4aSRandall Stewart return m_reply; 416f8829a4aSRandall Stewart } 417f8829a4aSRandall Stewart /* if deleting 0.0.0.0/::0, delete all addresses except src addr */ 418139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 419f8829a4aSRandall Stewart result = sctp_asconf_del_remote_addrs_except(stcb, 420f8829a4aSRandall Stewart (struct sockaddr *)&sa_source); 421f8829a4aSRandall Stewart 422f8829a4aSRandall Stewart if (result) { 423f8829a4aSRandall Stewart /* src address did not exist? */ 424ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: src addr does not exist?\n"); 425f8829a4aSRandall Stewart /* what error to reply with?? */ 426f8829a4aSRandall Stewart m_reply = 427f8829a4aSRandall Stewart sctp_asconf_error_response(aph->correlation_id, 428f8829a4aSRandall Stewart SCTP_CAUSE_REQUEST_REFUSED, (uint8_t *) aph, 429f8829a4aSRandall Stewart aparam_length); 430f8829a4aSRandall Stewart } else if (response_required) { 431f8829a4aSRandall Stewart m_reply = 432f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 433f8829a4aSRandall Stewart } 434f8829a4aSRandall Stewart return m_reply; 435f8829a4aSRandall Stewart } 436f8829a4aSRandall Stewart /* delete the address */ 437f8829a4aSRandall Stewart result = sctp_del_remote_addr(stcb, sa); 438f8829a4aSRandall Stewart /* 439f8829a4aSRandall Stewart * note if result == -2, the address doesn't exist in the asoc but 440f8829a4aSRandall Stewart * since it's being deleted anyways, we just ack the delete -- but 441f8829a4aSRandall Stewart * this probably means something has already gone awry 442f8829a4aSRandall Stewart */ 443f8829a4aSRandall Stewart if (result == -1) { 444f8829a4aSRandall Stewart /* only one address in the asoc */ 445ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete last IP addr!\n"); 446f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 447f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_LAST_ADDR, (uint8_t *) aph, 448f8829a4aSRandall Stewart aparam_length); 449f8829a4aSRandall Stewart } else { 450f8829a4aSRandall Stewart if (response_required) { 451f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 452f8829a4aSRandall Stewart } 453f8829a4aSRandall Stewart /* notify upper layer */ 454f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, sa); 455f8829a4aSRandall Stewart } 456f8829a4aSRandall Stewart return m_reply; 457f8829a4aSRandall Stewart } 458f8829a4aSRandall Stewart 459f8829a4aSRandall Stewart static struct mbuf * 460f8829a4aSRandall Stewart sctp_process_asconf_set_primary(struct mbuf *m, 4611b649582SRandall Stewart struct sctp_asconf_paramhdr *aph, 4621b649582SRandall Stewart struct sctp_tcb *stcb, int response_required) 463f8829a4aSRandall Stewart { 464f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 465f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 466f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 467f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 468f8829a4aSRandall Stewart struct sockaddr *sa; 469f8829a4aSRandall Stewart struct sockaddr_in *sin; 470f8829a4aSRandall Stewart int zero_address = 0; 471f8829a4aSRandall Stewart 472f8829a4aSRandall Stewart #ifdef INET6 473f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 474f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 475f8829a4aSRandall Stewart 476f8829a4aSRandall Stewart #endif /* INET6 */ 477f8829a4aSRandall Stewart 478f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 479f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 480f8829a4aSRandall Stewart #ifdef INET6 481f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 482f8829a4aSRandall Stewart #endif /* INET6 */ 483f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 484f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 485f8829a4aSRandall Stewart 486f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 487f8829a4aSRandall Stewart switch (param_type) { 488f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 489f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 490f8829a4aSRandall Stewart /* invalid param size */ 491f8829a4aSRandall Stewart return NULL; 492f8829a4aSRandall Stewart } 493f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 494f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 495f8829a4aSRandall Stewart sin->sin_family = AF_INET; 496f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 497f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 498f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 499f8829a4aSRandall Stewart zero_address = 1; 500ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 501ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 502f8829a4aSRandall Stewart break; 503f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 504f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 505f8829a4aSRandall Stewart /* invalid param size */ 506f8829a4aSRandall Stewart return NULL; 507f8829a4aSRandall Stewart } 508f8829a4aSRandall Stewart #ifdef INET6 509f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 510f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 511f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 512f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 513f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 514f8829a4aSRandall Stewart sizeof(struct in6_addr)); 515f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 516f8829a4aSRandall Stewart zero_address = 1; 517ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 518ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 519f8829a4aSRandall Stewart #else 520f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 521ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 522ad81507eSRandall Stewart "process_asconf_set_primary: v6 disabled- ignoring: "); 523ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 524f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 525f8829a4aSRandall Stewart return NULL; 526ad81507eSRandall Stewart #endif 527f8829a4aSRandall Stewart break; 528f8829a4aSRandall Stewart default: 529f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 530f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 531f8829a4aSRandall Stewart aparam_length); 532f8829a4aSRandall Stewart return m_reply; 533f8829a4aSRandall Stewart } 534f8829a4aSRandall Stewart 535f8829a4aSRandall Stewart /* if 0.0.0.0/::0, use the source address instead */ 536139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 537f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 538f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 539ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 540ad81507eSRandall Stewart "process_asconf_set_primary: using source addr "); 541ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 542f8829a4aSRandall Stewart } 543f8829a4aSRandall Stewart /* set the primary address */ 544f8829a4aSRandall Stewart if (sctp_set_primary_addr(stcb, sa, NULL) == 0) { 545ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 546ad81507eSRandall Stewart "process_asconf_set_primary: primary address set\n"); 547f8829a4aSRandall Stewart /* notify upper layer */ 548f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_SET_PRIMARY, stcb, 0, sa); 549f8829a4aSRandall Stewart 550f8829a4aSRandall Stewart if (response_required) { 551f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 552f8829a4aSRandall Stewart } 553f8829a4aSRandall Stewart } else { 554f8829a4aSRandall Stewart /* couldn't set the requested primary address! */ 555ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 556ad81507eSRandall Stewart "process_asconf_set_primary: set primary failed!\n"); 557f8829a4aSRandall Stewart /* must have been an invalid address, so report */ 558f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 559f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 560f8829a4aSRandall Stewart aparam_length); 561f8829a4aSRandall Stewart } 562f8829a4aSRandall Stewart 563f8829a4aSRandall Stewart return m_reply; 564f8829a4aSRandall Stewart } 565f8829a4aSRandall Stewart 566f8829a4aSRandall Stewart /* 567f8829a4aSRandall Stewart * handles an ASCONF chunk. 568f8829a4aSRandall Stewart * if all parameters are processed ok, send a plain (empty) ASCONF-ACK 569f8829a4aSRandall Stewart */ 570f8829a4aSRandall Stewart void 571f8829a4aSRandall Stewart sctp_handle_asconf(struct mbuf *m, unsigned int offset, 572f8829a4aSRandall Stewart struct sctp_asconf_chunk *cp, struct sctp_tcb *stcb) 573f8829a4aSRandall Stewart { 574f8829a4aSRandall Stewart struct sctp_association *asoc; 575f8829a4aSRandall Stewart uint32_t serial_num; 576f8829a4aSRandall Stewart struct mbuf *m_ack, *m_result, *m_tail; 577f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *ack_cp; 578f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph, *ack_aph; 579f8829a4aSRandall Stewart struct sctp_ipv6addr_param *p_addr; 580f8829a4aSRandall Stewart unsigned int asconf_limit; 581f8829a4aSRandall Stewart int error = 0; /* did an error occur? */ 582f8829a4aSRandall Stewart 583f8829a4aSRandall Stewart /* asconf param buffer */ 584f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 585f8829a4aSRandall Stewart 586f8829a4aSRandall Stewart /* verify minimum length */ 587f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_chunk)) { 588ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 589ad81507eSRandall Stewart "handle_asconf: chunk too small = %xh\n", 590f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 591f8829a4aSRandall Stewart return; 592f8829a4aSRandall Stewart } 593f8829a4aSRandall Stewart asoc = &stcb->asoc; 594f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 595f8829a4aSRandall Stewart 596f8829a4aSRandall Stewart if (serial_num == asoc->asconf_seq_in) { 597f8829a4aSRandall Stewart /* got a duplicate ASCONF */ 598ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 599ad81507eSRandall Stewart "handle_asconf: got duplicate serial number = %xh\n", 600f8829a4aSRandall Stewart serial_num); 601f8829a4aSRandall Stewart /* resend last ASCONF-ACK... */ 602f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 1); 603f8829a4aSRandall Stewart return; 604f8829a4aSRandall Stewart } else if (serial_num != (asoc->asconf_seq_in + 1)) { 605ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: incorrect serial number = %xh (expected next = %xh)\n", 606f8829a4aSRandall Stewart serial_num, asoc->asconf_seq_in + 1); 607f8829a4aSRandall Stewart return; 608f8829a4aSRandall Stewart } 609f8829a4aSRandall Stewart /* it's the expected "next" sequence number, so process it */ 610f8829a4aSRandall Stewart asoc->asconf_seq_in = serial_num; /* update sequence */ 611f8829a4aSRandall Stewart /* get length of all the param's in the ASCONF */ 612f8829a4aSRandall Stewart asconf_limit = offset + ntohs(cp->ch.chunk_length); 613ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 614ad81507eSRandall Stewart "handle_asconf: asconf_limit=%u, sequence=%xh\n", 615f8829a4aSRandall Stewart asconf_limit, serial_num); 616f8829a4aSRandall Stewart if (asoc->last_asconf_ack_sent != NULL) { 617f8829a4aSRandall Stewart /* free last ASCONF-ACK message sent */ 618f8829a4aSRandall Stewart sctp_m_freem(asoc->last_asconf_ack_sent); 619f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = NULL; 620f8829a4aSRandall Stewart } 621139bc87fSRandall Stewart m_ack = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_ack_chunk), 0, 622f8829a4aSRandall Stewart M_DONTWAIT, 1, MT_DATA); 623f8829a4aSRandall Stewart if (m_ack == NULL) { 624ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 625ad81507eSRandall Stewart "handle_asconf: couldn't get mbuf!\n"); 626f8829a4aSRandall Stewart return; 627f8829a4aSRandall Stewart } 628f8829a4aSRandall Stewart m_tail = m_ack; /* current reply chain's tail */ 629f8829a4aSRandall Stewart 630f8829a4aSRandall Stewart /* fill in ASCONF-ACK header */ 631f8829a4aSRandall Stewart ack_cp = mtod(m_ack, struct sctp_asconf_ack_chunk *); 632f8829a4aSRandall Stewart ack_cp->ch.chunk_type = SCTP_ASCONF_ACK; 633f8829a4aSRandall Stewart ack_cp->ch.chunk_flags = 0; 634f8829a4aSRandall Stewart ack_cp->serial_number = htonl(serial_num); 635f8829a4aSRandall Stewart /* set initial lengths (eg. just an ASCONF-ACK), ntohx at the end! */ 636139bc87fSRandall Stewart SCTP_BUF_LEN(m_ack) = sizeof(struct sctp_asconf_ack_chunk); 637f8829a4aSRandall Stewart ack_cp->ch.chunk_length = sizeof(struct sctp_asconf_ack_chunk); 638f8829a4aSRandall Stewart 639f8829a4aSRandall Stewart /* skip the lookup address parameter */ 640f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_chunk); 641f8829a4aSRandall Stewart p_addr = (struct sctp_ipv6addr_param *)sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), (uint8_t *) & aparam_buf); 642f8829a4aSRandall Stewart if (p_addr == NULL) { 643ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 644ad81507eSRandall Stewart "handle_asconf: couldn't get lookup addr!\n"); 645f8829a4aSRandall Stewart /* respond with a missing/invalid mandatory parameter error */ 646f8829a4aSRandall Stewart return; 647f8829a4aSRandall Stewart } 648f8829a4aSRandall Stewart /* param_length is already validated in process_control... */ 649f8829a4aSRandall Stewart offset += ntohs(p_addr->ph.param_length); /* skip lookup addr */ 650f8829a4aSRandall Stewart 651f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF-ACK */ 652f8829a4aSRandall Stewart ack_aph = (struct sctp_asconf_paramhdr *)(mtod(m_ack, caddr_t)+sizeof(struct sctp_asconf_ack_chunk)); 653f8829a4aSRandall Stewart if (ack_aph == NULL) { 654ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Gak in asconf2\n"); 655f8829a4aSRandall Stewart return; 656f8829a4aSRandall Stewart } 657f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF */ 658f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, sizeof(struct sctp_asconf_paramhdr), (uint8_t *) & aparam_buf); 659f8829a4aSRandall Stewart if (aph == NULL) { 660ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Empty ASCONF received?\n"); 661f8829a4aSRandall Stewart goto send_reply; 662f8829a4aSRandall Stewart } 663f8829a4aSRandall Stewart /* process through all parameters */ 664f8829a4aSRandall Stewart while (aph != NULL) { 665f8829a4aSRandall Stewart unsigned int param_length, param_type; 666f8829a4aSRandall Stewart 667f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 668f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 669f8829a4aSRandall Stewart if (offset + param_length > asconf_limit) { 670f8829a4aSRandall Stewart /* parameter goes beyond end of chunk! */ 671f8829a4aSRandall Stewart sctp_m_freem(m_ack); 672f8829a4aSRandall Stewart return; 673f8829a4aSRandall Stewart } 674f8829a4aSRandall Stewart m_result = NULL; 675f8829a4aSRandall Stewart 676f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 677ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) larger than buffer size!\n", param_length); 678f8829a4aSRandall Stewart sctp_m_freem(m_ack); 679f8829a4aSRandall Stewart return; 680f8829a4aSRandall Stewart } 681f8829a4aSRandall Stewart if (param_length <= sizeof(struct sctp_paramhdr)) { 682ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) too short\n", param_length); 683f8829a4aSRandall Stewart sctp_m_freem(m_ack); 684f8829a4aSRandall Stewart } 685f8829a4aSRandall Stewart /* get the entire parameter */ 686f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 687f8829a4aSRandall Stewart if (aph == NULL) { 688ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: couldn't get entire param\n"); 689f8829a4aSRandall Stewart sctp_m_freem(m_ack); 690f8829a4aSRandall Stewart return; 691f8829a4aSRandall Stewart } 692f8829a4aSRandall Stewart switch (param_type) { 693f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 694f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 695f8829a4aSRandall Stewart m_result = sctp_process_asconf_add_ip(m, aph, stcb, 696f8829a4aSRandall Stewart error); 697f8829a4aSRandall Stewart break; 698f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 699f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 700f8829a4aSRandall Stewart m_result = sctp_process_asconf_delete_ip(m, aph, stcb, 701f8829a4aSRandall Stewart error); 702f8829a4aSRandall Stewart break; 703f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 704f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 705f8829a4aSRandall Stewart break; 706f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 707f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 708f8829a4aSRandall Stewart m_result = sctp_process_asconf_set_primary(m, aph, 709f8829a4aSRandall Stewart stcb, error); 710f8829a4aSRandall Stewart break; 711f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 712f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 713f8829a4aSRandall Stewart break; 714f8829a4aSRandall Stewart case SCTP_ULP_ADAPTATION: 715f8829a4aSRandall Stewart /* FIX */ 716f8829a4aSRandall Stewart break; 717f8829a4aSRandall Stewart default: 718f8829a4aSRandall Stewart if ((param_type & 0x8000) == 0) { 719f8829a4aSRandall Stewart /* Been told to STOP at this param */ 720f8829a4aSRandall Stewart asconf_limit = offset; 721f8829a4aSRandall Stewart /* 722f8829a4aSRandall Stewart * FIX FIX - We need to call 723f8829a4aSRandall Stewart * sctp_arethere_unrecognized_parameters() 724f8829a4aSRandall Stewart * to get a operr and send it for any 725f8829a4aSRandall Stewart * param's with the 0x4000 bit set OR do it 726f8829a4aSRandall Stewart * here ourselves... note we still must STOP 727f8829a4aSRandall Stewart * if the 0x8000 bit is clear. 728f8829a4aSRandall Stewart */ 729f8829a4aSRandall Stewart } 730f8829a4aSRandall Stewart /* unknown/invalid param type */ 731f8829a4aSRandall Stewart break; 732f8829a4aSRandall Stewart } /* switch */ 733f8829a4aSRandall Stewart 734f8829a4aSRandall Stewart /* add any (error) result to the reply mbuf chain */ 735f8829a4aSRandall Stewart if (m_result != NULL) { 736139bc87fSRandall Stewart SCTP_BUF_NEXT(m_tail) = m_result; 737f8829a4aSRandall Stewart m_tail = m_result; 738f8829a4aSRandall Stewart /* update lengths, make sure it's aligned too */ 739139bc87fSRandall Stewart SCTP_BUF_LEN(m_result) = SCTP_SIZE32(SCTP_BUF_LEN(m_result)); 740139bc87fSRandall Stewart ack_cp->ch.chunk_length += SCTP_BUF_LEN(m_result); 741f8829a4aSRandall Stewart /* set flag to force success reports */ 742f8829a4aSRandall Stewart error = 1; 743f8829a4aSRandall Stewart } 744f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 745f8829a4aSRandall Stewart /* update remaining ASCONF message length to process */ 746f8829a4aSRandall Stewart if (offset >= asconf_limit) { 747f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 748f8829a4aSRandall Stewart break; 749f8829a4aSRandall Stewart } 750f8829a4aSRandall Stewart /* get pointer to next asconf param */ 751f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 752f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), 753f8829a4aSRandall Stewart (uint8_t *) & aparam_buf); 754f8829a4aSRandall Stewart if (aph == NULL) { 755f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 756ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: can't get asconf param hdr!\n"); 757f8829a4aSRandall Stewart /* FIX ME - add error here... */ 758f8829a4aSRandall Stewart } 759ad81507eSRandall Stewart } 760f8829a4aSRandall Stewart 761f8829a4aSRandall Stewart send_reply: 762f8829a4aSRandall Stewart ack_cp->ch.chunk_length = htons(ack_cp->ch.chunk_length); 763f8829a4aSRandall Stewart /* save the ASCONF-ACK reply */ 764f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = m_ack; 765f8829a4aSRandall Stewart 766f8829a4aSRandall Stewart /* see if last_control_chunk_from is set properly (use IP src addr) */ 767f8829a4aSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) { 768f8829a4aSRandall Stewart /* 769f8829a4aSRandall Stewart * this could happen if the source address was just newly 770f8829a4aSRandall Stewart * added 771f8829a4aSRandall Stewart */ 772f8829a4aSRandall Stewart struct ip *iph; 773f8829a4aSRandall Stewart struct sctphdr *sh; 774f8829a4aSRandall Stewart struct sockaddr_storage from_store; 775f8829a4aSRandall Stewart struct sockaddr *from = (struct sockaddr *)&from_store; 776f8829a4aSRandall Stewart 777ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: looking up net for IP source address\n"); 778f8829a4aSRandall Stewart /* pullup already done, IP options already stripped */ 779f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 780f8829a4aSRandall Stewart sh = (struct sctphdr *)((caddr_t)iph + sizeof(*iph)); 781f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 782f8829a4aSRandall Stewart struct sockaddr_in *from4; 783f8829a4aSRandall Stewart 784f8829a4aSRandall Stewart from4 = (struct sockaddr_in *)&from_store; 785f8829a4aSRandall Stewart bzero(from4, sizeof(*from4)); 786f8829a4aSRandall Stewart from4->sin_family = AF_INET; 787f8829a4aSRandall Stewart from4->sin_len = sizeof(struct sockaddr_in); 788f8829a4aSRandall Stewart from4->sin_addr.s_addr = iph->ip_src.s_addr; 789f8829a4aSRandall Stewart from4->sin_port = sh->src_port; 790f8829a4aSRandall Stewart } else if (iph->ip_v == (IPV6_VERSION >> 4)) { 791f8829a4aSRandall Stewart struct ip6_hdr *ip6; 792f8829a4aSRandall Stewart struct sockaddr_in6 *from6; 793f8829a4aSRandall Stewart 794f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 795f8829a4aSRandall Stewart from6 = (struct sockaddr_in6 *)&from_store; 796f8829a4aSRandall Stewart bzero(from6, sizeof(*from6)); 797f8829a4aSRandall Stewart from6->sin6_family = AF_INET6; 798f8829a4aSRandall Stewart from6->sin6_len = sizeof(struct sockaddr_in6); 799f8829a4aSRandall Stewart from6->sin6_addr = ip6->ip6_src; 800f8829a4aSRandall Stewart from6->sin6_port = sh->src_port; 801f8829a4aSRandall Stewart /* Get the scopes in properly to the sin6 addr's */ 802f8829a4aSRandall Stewart /* we probably don't need these operations */ 803f8829a4aSRandall Stewart (void)sa6_recoverscope(from6); 804f8829a4aSRandall Stewart sa6_embedscope(from6, ip6_use_defzone); 805f8829a4aSRandall Stewart } else { 806f8829a4aSRandall Stewart /* unknown address type */ 807f8829a4aSRandall Stewart from = NULL; 808f8829a4aSRandall Stewart } 809f8829a4aSRandall Stewart if (from != NULL) { 810ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Looking for IP source: "); 811ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, from); 812f8829a4aSRandall Stewart /* look up the from address */ 813f8829a4aSRandall Stewart stcb->asoc.last_control_chunk_from = sctp_findnet(stcb, from); 814f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 815ad81507eSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) 816ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: IP source address not found?!\n"); 817ad81507eSRandall Stewart #endif 818f8829a4aSRandall Stewart } 819f8829a4aSRandall Stewart } 820f8829a4aSRandall Stewart /* and send it (a new one) out... */ 821f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 0); 822f8829a4aSRandall Stewart } 823f8829a4aSRandall Stewart 824f8829a4aSRandall Stewart /* 825f8829a4aSRandall Stewart * does the address match? returns 0 if not, 1 if so 826f8829a4aSRandall Stewart */ 827f8829a4aSRandall Stewart static uint32_t 828f8829a4aSRandall Stewart sctp_asconf_addr_match(struct sctp_asconf_addr *aa, struct sockaddr *sa) 829f8829a4aSRandall Stewart { 830f8829a4aSRandall Stewart #ifdef INET6 831f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 832f8829a4aSRandall Stewart /* IPv6 sa address */ 833f8829a4aSRandall Stewart /* XXX scopeid */ 834f8829a4aSRandall Stewart struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *)sa; 835f8829a4aSRandall Stewart 836f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) && 837f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin6->sin6_addr, 838f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0)) { 839f8829a4aSRandall Stewart return (1); 840f8829a4aSRandall Stewart } 841f8829a4aSRandall Stewart } else 842f8829a4aSRandall Stewart #endif /* INET6 */ 843f8829a4aSRandall Stewart if (sa->sa_family == AF_INET) { 844f8829a4aSRandall Stewart /* IPv4 sa address */ 845f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 846f8829a4aSRandall Stewart 847f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV4_ADDRESS) && 848f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin->sin_addr, 849f8829a4aSRandall Stewart sizeof(struct in_addr)) == 0)) { 850f8829a4aSRandall Stewart return (1); 851f8829a4aSRandall Stewart } 852f8829a4aSRandall Stewart } 853f8829a4aSRandall Stewart return (0); 854f8829a4aSRandall Stewart } 855f8829a4aSRandall Stewart 856f8829a4aSRandall Stewart /* 857f8829a4aSRandall Stewart * Cleanup for non-responded/OP ERR'd ASCONF 858f8829a4aSRandall Stewart */ 859f8829a4aSRandall Stewart void 860f8829a4aSRandall Stewart sctp_asconf_cleanup(struct sctp_tcb *stcb, struct sctp_nets *net) 861f8829a4aSRandall Stewart { 862f8829a4aSRandall Stewart /* mark peer as ASCONF incapable */ 863f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 864f8829a4aSRandall Stewart /* 865f8829a4aSRandall Stewart * clear out any existing asconfs going out 866f8829a4aSRandall Stewart */ 8673c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, 8683c503c28SRandall Stewart SCTP_FROM_SCTP_ASCONF + SCTP_LOC_2); 869f8829a4aSRandall Stewart stcb->asoc.asconf_seq_out++; 870f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 871f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 872f8829a4aSRandall Stewart } 873f8829a4aSRandall Stewart 874f8829a4aSRandall Stewart /* 8752dad8a55SRandall Stewart * cleanup any cached source addresses that may be topologically 8762dad8a55SRandall Stewart * incorrect after a new address has been added to this interface. 8772dad8a55SRandall Stewart */ 8782dad8a55SRandall Stewart static void 8792dad8a55SRandall Stewart sctp_asconf_nets_cleanup(struct sctp_tcb *stcb, struct sctp_ifn *ifn) 8802dad8a55SRandall Stewart { 8812dad8a55SRandall Stewart struct sctp_nets *net; 8822dad8a55SRandall Stewart 8832dad8a55SRandall Stewart /* 8842dad8a55SRandall Stewart * Ideally, we want to only clear cached routes and source addresses 8852dad8a55SRandall Stewart * that are topologically incorrect. But since there is no easy way 8862dad8a55SRandall Stewart * to know whether the newly added address on the ifn would cause a 8872dad8a55SRandall Stewart * routing change (i.e. a new egress interface would be chosen) 8882dad8a55SRandall Stewart * without doing a new routing lookup and source address selection, 8892dad8a55SRandall Stewart * we will (for now) just flush any cached route using a different 8902dad8a55SRandall Stewart * ifn (and cached source addrs) and let output re-choose them 8912dad8a55SRandall Stewart * during the next send on that net. 8922dad8a55SRandall Stewart */ 8932dad8a55SRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 8942dad8a55SRandall Stewart /* 8952dad8a55SRandall Stewart * clear any cached route (and cached source address) if the 8962dad8a55SRandall Stewart * route's interface is NOT the same as the address change. 8972dad8a55SRandall Stewart * If it's the same interface, just clear the cached source 8982dad8a55SRandall Stewart * address. 8992dad8a55SRandall Stewart */ 9002dad8a55SRandall Stewart if (SCTP_ROUTE_HAS_VALID_IFN(&net->ro) && 9012dad8a55SRandall Stewart SCTP_GET_IF_INDEX_FROM_ROUTE(&net->ro) != ifn->ifn_index) { 9022dad8a55SRandall Stewart /* clear any cached route */ 9032dad8a55SRandall Stewart RTFREE(net->ro.ro_rt); 9042dad8a55SRandall Stewart net->ro.ro_rt = NULL; 9052dad8a55SRandall Stewart } 9062dad8a55SRandall Stewart /* clear any cached source address */ 9072dad8a55SRandall Stewart if (net->src_addr_selected) { 9082dad8a55SRandall Stewart sctp_free_ifa(net->ro._s_addr); 9092dad8a55SRandall Stewart net->ro._s_addr = NULL; 9102dad8a55SRandall Stewart net->src_addr_selected = 0; 9112dad8a55SRandall Stewart } 9122dad8a55SRandall Stewart } 9132dad8a55SRandall Stewart } 9142dad8a55SRandall Stewart 9152dad8a55SRandall Stewart /* 916f8829a4aSRandall Stewart * process an ADD/DELETE IP ack from peer. 9171b649582SRandall Stewart * addr: corresponding sctp_ifa to the address being added/deleted. 918f8829a4aSRandall Stewart * type: SCTP_ADD_IP_ADDRESS or SCTP_DEL_IP_ADDRESS. 919f8829a4aSRandall Stewart * flag: 1=success, 0=failure. 920f8829a4aSRandall Stewart */ 921f8829a4aSRandall Stewart static void 92242551e99SRandall Stewart sctp_asconf_addr_mgmt_ack(struct sctp_tcb *stcb, struct sctp_ifa *addr, 923f8829a4aSRandall Stewart uint16_t type, uint32_t flag) 924f8829a4aSRandall Stewart { 925f8829a4aSRandall Stewart /* 926f8829a4aSRandall Stewart * do the necessary asoc list work- if we get a failure indication, 9272dad8a55SRandall Stewart * leave the address on the assoc's restricted list. If we get a 9282dad8a55SRandall Stewart * success indication, remove the address from the restricted list. 929f8829a4aSRandall Stewart */ 930f8829a4aSRandall Stewart /* 931f8829a4aSRandall Stewart * Note: this will only occur for ADD_IP_ADDRESS, since 932f8829a4aSRandall Stewart * DEL_IP_ADDRESS is never actually added to the list... 933f8829a4aSRandall Stewart */ 934f8829a4aSRandall Stewart if (flag) { 9351b649582SRandall Stewart /* success case, so remove from the restricted list */ 9361b649582SRandall Stewart sctp_del_local_addr_restricted(stcb, addr); 9372dad8a55SRandall Stewart 9382dad8a55SRandall Stewart /* 9392dad8a55SRandall Stewart * clear any cached, topologically incorrect source 9402dad8a55SRandall Stewart * addresses 9412dad8a55SRandall Stewart */ 9422dad8a55SRandall Stewart sctp_asconf_nets_cleanup(stcb, addr->ifn_p); 943f8829a4aSRandall Stewart } 944f8829a4aSRandall Stewart /* else, leave it on the list */ 945f8829a4aSRandall Stewart } 946f8829a4aSRandall Stewart 947f8829a4aSRandall Stewart /* 9481b649582SRandall Stewart * add an asconf add/delete/set primary IP address parameter to the queue. 949f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 9501b649582SRandall Stewart * returns 0 if queued, -1 if not queued/removed. 9511b649582SRandall Stewart * NOTE: if adding, but a delete for the same address is already scheduled 9521b649582SRandall Stewart * (and not yet sent out), simply remove it from queue. Same for deleting 9531b649582SRandall Stewart * an address already scheduled for add. If a duplicate operation is found, 9541b649582SRandall Stewart * ignore the new one. 955f8829a4aSRandall Stewart */ 9561b649582SRandall Stewart static int 9571b649582SRandall Stewart sctp_asconf_queue_mgmt(struct sctp_tcb *stcb, struct sctp_ifa *ifa, 95818e198d3SRandall Stewart uint16_t type) 959f8829a4aSRandall Stewart { 960f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 961f8829a4aSRandall Stewart struct sockaddr *sa; 962f8829a4aSRandall Stewart 963f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 964f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 965f8829a4aSRandall Stewart aa = aa_next) { 966f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 967f8829a4aSRandall Stewart /* address match? */ 96842551e99SRandall Stewart if (sctp_asconf_addr_match(aa, &ifa->address.sa) == 0) 969f8829a4aSRandall Stewart continue; 970f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 971f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 972f8829a4aSRandall Stewart return (-1); 973f8829a4aSRandall Stewart } 974f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 9751b649582SRandall Stewart if ((aa->sent == 0) && (type == SCTP_ADD_IP_ADDRESS) && 9761b649582SRandall Stewart (aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS)) { 977f8829a4aSRandall Stewart /* add requested, delete already queued */ 978f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 9791b649582SRandall Stewart /* remove the ifa from the restricted list */ 9801b649582SRandall Stewart sctp_del_local_addr_restricted(stcb, ifa); 9811b649582SRandall Stewart /* free the asconf param */ 982207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 9831b649582SRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "asconf_queue_mgmt: add removes queued entry\n"); 9841b649582SRandall Stewart return (-1); 9851b649582SRandall Stewart } 9861b649582SRandall Stewart if ((aa->sent == 0) && (type == SCTP_DEL_IP_ADDRESS) && 9871b649582SRandall Stewart (aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS)) { 9881b649582SRandall Stewart /* delete requested, add already queued */ 9891b649582SRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 9901b649582SRandall Stewart /* remove the aa->ifa from the restricted list */ 9911b649582SRandall Stewart sctp_del_local_addr_restricted(stcb, aa->ifa); 9921b649582SRandall Stewart /* free the asconf param */ 9931b649582SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 9941b649582SRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "asconf_queue_mgmt: delete removes queued entry\n"); 995f8829a4aSRandall Stewart return (-1); 996f8829a4aSRandall Stewart } 997f8829a4aSRandall Stewart } /* for each aa */ 998f8829a4aSRandall Stewart 999f8829a4aSRandall Stewart /* adding new request to the queue */ 10001b649582SRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), 10011b649582SRandall Stewart SCTP_M_ASC_ADDR); 1002f8829a4aSRandall Stewart if (aa == NULL) { 1003f8829a4aSRandall Stewart /* didn't get memory */ 10041b649582SRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "asconf_queue_mgmt: failed to get memory!\n"); 1005f8829a4aSRandall Stewart return (-1); 1006f8829a4aSRandall Stewart } 1007f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 1008f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 1009f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 1010f8829a4aSRandall Stewart aa->ifa = ifa; 1011bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 1012f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 101342551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1014f8829a4aSRandall Stewart /* IPv6 address */ 1015f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1016f8829a4aSRandall Stewart 101742551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sa; 1018f8829a4aSRandall Stewart sa = (struct sockaddr *)sin6; 1019f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 1020f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 10211b649582SRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + 1022f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param); 1023f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 1024f8829a4aSRandall Stewart sizeof(struct in6_addr)); 102542551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1026f8829a4aSRandall Stewart /* IPv4 address */ 10271b649582SRandall Stewart struct sockaddr_in *sin; 1028f8829a4aSRandall Stewart 10291b649582SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 1030f8829a4aSRandall Stewart sa = (struct sockaddr *)sin; 1031f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 1032f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 10331b649582SRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + 1034f8829a4aSRandall Stewart sizeof(struct sctp_ipv4addr_param); 1035f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 1036f8829a4aSRandall Stewart sizeof(struct in_addr)); 1037f8829a4aSRandall Stewart } else { 1038f8829a4aSRandall Stewart /* invalid family! */ 1039207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1040f8829a4aSRandall Stewart return (-1); 1041f8829a4aSRandall Stewart } 1042f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 1043f8829a4aSRandall Stewart 1044f8829a4aSRandall Stewart /* 1045f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 1046f8829a4aSRandall Stewart * add it to front of the pending queue 1047f8829a4aSRandall Stewart */ 1048f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 1049f8829a4aSRandall Stewart /* add goes to the front of the queue */ 1050f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1051ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, 10521b649582SRandall Stewart "asconf_queue_mgmt: inserted asconf ADD_IP_ADDRESS: "); 1053ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1054f8829a4aSRandall Stewart } else { 1055f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1056f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1057f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 1058ad81507eSRandall Stewart if (sctp_debug_on && SCTP_DEBUG_ASCONF2) { 1059f8829a4aSRandall Stewart if (type == SCTP_DEL_IP_ADDRESS) { 10601b649582SRandall Stewart SCTP_PRINTF("asconf_queue_mgmt: appended asconf DEL_IP_ADDRESS: "); 1061ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1062f8829a4aSRandall Stewart } else { 10631b649582SRandall Stewart SCTP_PRINTF("asconf_queue_mgmt: appended asconf SET_PRIM_ADDR: "); 1064ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1065f8829a4aSRandall Stewart } 1066f8829a4aSRandall Stewart } 1067ad81507eSRandall Stewart #endif 1068f8829a4aSRandall Stewart } 1069f8829a4aSRandall Stewart 1070f8829a4aSRandall Stewart return (0); 1071f8829a4aSRandall Stewart } 1072f8829a4aSRandall Stewart 10731b649582SRandall Stewart 10741b649582SRandall Stewart /* 10751b649582SRandall Stewart * add an asconf operation for the given ifa and type. 10761b649582SRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 10771b649582SRandall Stewart * returns 0 if completed, -1 if not completed, 1 if immediate send is 10781b649582SRandall Stewart * advisable. 10791b649582SRandall Stewart */ 10801b649582SRandall Stewart static int 10811b649582SRandall Stewart sctp_asconf_queue_add(struct sctp_tcb *stcb, struct sctp_ifa *ifa, 10821b649582SRandall Stewart uint16_t type) 10831b649582SRandall Stewart { 10841b649582SRandall Stewart uint32_t status; 10851b649582SRandall Stewart int pending_delete_queued = 0; 10861b649582SRandall Stewart 10871b649582SRandall Stewart /* see if peer supports ASCONF */ 10881b649582SRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 10891b649582SRandall Stewart return (-1); 10901b649582SRandall Stewart } 10911b649582SRandall Stewart /* 10921b649582SRandall Stewart * if this is deleting the last address from the assoc, mark it as 10931b649582SRandall Stewart * pending. 10941b649582SRandall Stewart */ 10951b649582SRandall Stewart if ((type == SCTP_DEL_IP_ADDRESS) && !stcb->asoc.asconf_del_pending && 10961b649582SRandall Stewart (sctp_local_addr_count(stcb) < 2)) { 10971b649582SRandall Stewart /* set the pending delete info only */ 10981b649582SRandall Stewart stcb->asoc.asconf_del_pending = 1; 10991b649582SRandall Stewart stcb->asoc.asconf_addr_del_pending = ifa; 11001b649582SRandall Stewart atomic_add_int(&ifa->refcount, 1); 11011b649582SRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, 11021b649582SRandall Stewart "asconf_queue_add: mark delete last address pending\n"); 11031b649582SRandall Stewart return (-1); 11041b649582SRandall Stewart } 11051b649582SRandall Stewart /* 11061b649582SRandall Stewart * if this is an add, and there is a delete also pending (i.e. the 11071b649582SRandall Stewart * last local address is being changed), queue the pending delete 11081b649582SRandall Stewart * too. 11091b649582SRandall Stewart */ 11101b649582SRandall Stewart if ((type == SCTP_ADD_IP_ADDRESS) && stcb->asoc.asconf_del_pending) { 11111b649582SRandall Stewart /* queue in the pending delete */ 11121b649582SRandall Stewart if (sctp_asconf_queue_mgmt(stcb, 11131b649582SRandall Stewart stcb->asoc.asconf_addr_del_pending, 11141b649582SRandall Stewart SCTP_DEL_IP_ADDRESS) == 0) { 11151b649582SRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "asconf_queue_add: queing pending delete\n"); 11161b649582SRandall Stewart pending_delete_queued = 1; 11171b649582SRandall Stewart /* clear out the pending delete info */ 11181b649582SRandall Stewart stcb->asoc.asconf_del_pending = 0; 11191b649582SRandall Stewart sctp_free_ifa(stcb->asoc.asconf_addr_del_pending); 11201b649582SRandall Stewart stcb->asoc.asconf_addr_del_pending = NULL; 11211b649582SRandall Stewart } 11221b649582SRandall Stewart } 11231b649582SRandall Stewart /* queue an asconf parameter */ 11241b649582SRandall Stewart status = sctp_asconf_queue_mgmt(stcb, ifa, type); 11251b649582SRandall Stewart 11261b649582SRandall Stewart if (pending_delete_queued && (status == 0)) { 11271b649582SRandall Stewart struct sctp_nets *net; 11281b649582SRandall Stewart 11291b649582SRandall Stewart /* 11301b649582SRandall Stewart * since we know that the only/last address is now being 11311b649582SRandall Stewart * changed in this case, reset the cwnd/rto on all nets to 11321b649582SRandall Stewart * start as a new address and path. Also clear the error 11331b649582SRandall Stewart * counts to give the assoc the best chance to complete the 11341b649582SRandall Stewart * address change. 11351b649582SRandall Stewart */ 11361b649582SRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 11371b649582SRandall Stewart stcb->asoc.cc_functions.sctp_set_initial_cc_param(stcb, 11381b649582SRandall Stewart net); 11391b649582SRandall Stewart net->RTO = 0; 11401b649582SRandall Stewart net->error_count = 0; 11411b649582SRandall Stewart } 11421b649582SRandall Stewart stcb->asoc.overall_error_count = 0; 11431b649582SRandall Stewart /* queue in an advisory set primary too */ 11441b649582SRandall Stewart (void)sctp_asconf_queue_mgmt(stcb, ifa, SCTP_SET_PRIM_ADDR); 11451b649582SRandall Stewart /* let caller know we should send this out immediately */ 11461b649582SRandall Stewart status = 1; 11471b649582SRandall Stewart } 11481b649582SRandall Stewart return (status); 11491b649582SRandall Stewart } 11501b649582SRandall Stewart 1151f8829a4aSRandall Stewart /* 1152f8829a4aSRandall Stewart * add an asconf add/delete IP address parameter to the queue by addr. 1153f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 1154f8829a4aSRandall Stewart * returns 0 if completed, non-zero if not completed. 1155f8829a4aSRandall Stewart * NOTE: if adding, but delete already scheduled (and not yet sent out), 1156f8829a4aSRandall Stewart * simply remove from queue. Same for deleting an address already scheduled 1157f8829a4aSRandall Stewart * for add. If a duplicate operation is found, ignore the new one. 1158f8829a4aSRandall Stewart */ 11591b649582SRandall Stewart static int 1160f8829a4aSRandall Stewart sctp_asconf_queue_add_sa(struct sctp_tcb *stcb, struct sockaddr *sa, 1161f8829a4aSRandall Stewart uint16_t type) 1162f8829a4aSRandall Stewart { 1163bff64a4dSRandall Stewart struct sctp_ifa *ifa; 1164f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 116542551e99SRandall Stewart uint32_t vrf_id; 1166f8829a4aSRandall Stewart 1167ad81507eSRandall Stewart if (stcb == NULL) { 1168ad81507eSRandall Stewart return (-1); 1169ad81507eSRandall Stewart } 1170f8829a4aSRandall Stewart /* see if peer supports ASCONF */ 1171f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 1172f8829a4aSRandall Stewart return (-1); 1173f8829a4aSRandall Stewart } 1174f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 1175f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1176f8829a4aSRandall Stewart aa = aa_next) { 1177f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1178f8829a4aSRandall Stewart /* address match? */ 1179f8829a4aSRandall Stewart if (sctp_asconf_addr_match(aa, sa) == 0) 1180f8829a4aSRandall Stewart continue; 1181f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 1182f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 1183f8829a4aSRandall Stewart return (-1); 1184f8829a4aSRandall Stewart } 1185f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 1186f8829a4aSRandall Stewart if (aa->sent == 1) 1187f8829a4aSRandall Stewart continue; 1188f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS && 1189f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 1190f8829a4aSRandall Stewart /* add requested, delete already queued */ 1191f8829a4aSRandall Stewart 1192f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1193f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 1194bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 11951b649582SRandall Stewart /* free the entry */ 1196207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1197f8829a4aSRandall Stewart return (-1); 1198f8829a4aSRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS && 1199f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS) { 1200f8829a4aSRandall Stewart /* delete requested, add already queued */ 1201f8829a4aSRandall Stewart 1202f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1203f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 12041b649582SRandall Stewart sctp_del_local_addr_restricted(stcb, aa->ifa); 1205f8829a4aSRandall Stewart /* free the entry */ 1206207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1207f8829a4aSRandall Stewart return (-1); 1208f8829a4aSRandall Stewart } 1209f8829a4aSRandall Stewart } /* for each aa */ 1210bff64a4dSRandall Stewart if (stcb) { 1211bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 1212bff64a4dSRandall Stewart } else { 1213bff64a4dSRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 1214bff64a4dSRandall Stewart } 1215f8829a4aSRandall Stewart 1216bff64a4dSRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 1217bff64a4dSRandall Stewart if (ifa == NULL) { 1218bff64a4dSRandall Stewart /* Invalid address */ 1219bff64a4dSRandall Stewart return (-1); 1220bff64a4dSRandall Stewart } 1221f8829a4aSRandall Stewart /* adding new request to the queue */ 12221b649582SRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), 12231b649582SRandall Stewart SCTP_M_ASC_ADDR); 1224f8829a4aSRandall Stewart if (aa == NULL) { 1225f8829a4aSRandall Stewart /* didn't get memory */ 1226ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1227ad81507eSRandall Stewart "asconf_queue_add_sa: failed to get memory!\n"); 1228f8829a4aSRandall Stewart return (-1); 1229f8829a4aSRandall Stewart } 1230f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 1231f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 1232f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 1233bff64a4dSRandall Stewart aa->ifa = ifa; 1234bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 1235f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 1236f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 1237f8829a4aSRandall Stewart /* IPv6 address */ 1238f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1239f8829a4aSRandall Stewart 1240f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1241f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 1242f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 1243f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv6addr_param); 1244f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 1245f8829a4aSRandall Stewart sizeof(struct in6_addr)); 1246f8829a4aSRandall Stewart } else if (sa->sa_family == AF_INET) { 1247f8829a4aSRandall Stewart /* IPv4 address */ 1248f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 1249f8829a4aSRandall Stewart 1250f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 1251f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 1252f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv4addr_param); 1253f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 1254f8829a4aSRandall Stewart sizeof(struct in_addr)); 1255f8829a4aSRandall Stewart } else { 1256f8829a4aSRandall Stewart /* invalid family! */ 1257207304d4SRandall Stewart SCTP_FREE(aa, SCTP_M_ASC_ADDR); 1258f8829a4aSRandall Stewart return (-1); 1259f8829a4aSRandall Stewart } 1260f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 1261f8829a4aSRandall Stewart 1262f8829a4aSRandall Stewart /* 1263f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 1264f8829a4aSRandall Stewart * add it to front of the pending queue 1265f8829a4aSRandall Stewart */ 1266f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 1267f8829a4aSRandall Stewart /* add goes to the front of the queue */ 1268f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1269f8829a4aSRandall Stewart } else { 1270f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1271f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1272f8829a4aSRandall Stewart } 1273f8829a4aSRandall Stewart 1274f8829a4aSRandall Stewart return (0); 1275f8829a4aSRandall Stewart } 1276f8829a4aSRandall Stewart 1277f8829a4aSRandall Stewart /* 1278f8829a4aSRandall Stewart * find a specific asconf param on our "sent" queue 1279f8829a4aSRandall Stewart */ 1280f8829a4aSRandall Stewart static struct sctp_asconf_addr * 1281f8829a4aSRandall Stewart sctp_asconf_find_param(struct sctp_tcb *stcb, uint32_t correlation_id) 1282f8829a4aSRandall Stewart { 1283f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 1284f8829a4aSRandall Stewart 1285f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 1286f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id == correlation_id && 1287f8829a4aSRandall Stewart aa->sent == 1) { 1288f8829a4aSRandall Stewart /* found it */ 1289f8829a4aSRandall Stewart return (aa); 1290f8829a4aSRandall Stewart } 1291f8829a4aSRandall Stewart } 1292f8829a4aSRandall Stewart /* didn't find it */ 1293f8829a4aSRandall Stewart return (NULL); 1294f8829a4aSRandall Stewart } 1295f8829a4aSRandall Stewart 1296f8829a4aSRandall Stewart /* 1297f8829a4aSRandall Stewart * process an SCTP_ERROR_CAUSE_IND for a ASCONF-ACK parameter and do 1298f8829a4aSRandall Stewart * notifications based on the error response 1299f8829a4aSRandall Stewart */ 1300f8829a4aSRandall Stewart static void 1301f8829a4aSRandall Stewart sctp_asconf_process_error(struct sctp_tcb *stcb, 1302f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph) 1303f8829a4aSRandall Stewart { 1304f8829a4aSRandall Stewart struct sctp_error_cause *eh; 1305f8829a4aSRandall Stewart struct sctp_paramhdr *ph; 1306f8829a4aSRandall Stewart uint16_t param_type; 1307f8829a4aSRandall Stewart uint16_t error_code; 1308f8829a4aSRandall Stewart 1309f8829a4aSRandall Stewart eh = (struct sctp_error_cause *)(aph + 1); 1310f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)(eh + 1); 1311f8829a4aSRandall Stewart /* validate lengths */ 1312f8829a4aSRandall Stewart if (htons(eh->length) + sizeof(struct sctp_error_cause) > 1313f8829a4aSRandall Stewart htons(aph->ph.param_length)) { 1314f8829a4aSRandall Stewart /* invalid error cause length */ 1315ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1316ad81507eSRandall Stewart "asconf_process_error: cause element too long\n"); 1317f8829a4aSRandall Stewart return; 1318f8829a4aSRandall Stewart } 1319f8829a4aSRandall Stewart if (htons(ph->param_length) + sizeof(struct sctp_paramhdr) > 1320f8829a4aSRandall Stewart htons(eh->length)) { 1321f8829a4aSRandall Stewart /* invalid included TLV length */ 1322ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1323ad81507eSRandall Stewart "asconf_process_error: included TLV too long\n"); 1324f8829a4aSRandall Stewart return; 1325f8829a4aSRandall Stewart } 1326f8829a4aSRandall Stewart /* which error code ? */ 1327f8829a4aSRandall Stewart error_code = ntohs(eh->code); 1328f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1329f8829a4aSRandall Stewart /* FIX: this should go back up the REMOTE_ERROR ULP notify */ 1330f8829a4aSRandall Stewart switch (error_code) { 1331f8829a4aSRandall Stewart case SCTP_CAUSE_RESOURCE_SHORTAGE: 1332f8829a4aSRandall Stewart /* we allow ourselves to "try again" for this error */ 1333f8829a4aSRandall Stewart break; 1334f8829a4aSRandall Stewart default: 1335f8829a4aSRandall Stewart /* peer can't handle it... */ 1336f8829a4aSRandall Stewart switch (param_type) { 1337f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1338f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1339f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1340f8829a4aSRandall Stewart break; 1341f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1342f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1343f8829a4aSRandall Stewart break; 1344f8829a4aSRandall Stewart default: 1345f8829a4aSRandall Stewart break; 1346f8829a4aSRandall Stewart } 1347f8829a4aSRandall Stewart } 1348f8829a4aSRandall Stewart } 1349f8829a4aSRandall Stewart 1350f8829a4aSRandall Stewart /* 135118e198d3SRandall Stewart * process an asconf queue param. 135218e198d3SRandall Stewart * aparam: parameter to process, will be removed from the queue. 135318e198d3SRandall Stewart * flag: 1=success case, 0=failure case 1354f8829a4aSRandall Stewart */ 1355f8829a4aSRandall Stewart static void 1356f8829a4aSRandall Stewart sctp_asconf_process_param_ack(struct sctp_tcb *stcb, 1357f8829a4aSRandall Stewart struct sctp_asconf_addr *aparam, uint32_t flag) 1358f8829a4aSRandall Stewart { 1359f8829a4aSRandall Stewart uint16_t param_type; 1360f8829a4aSRandall Stewart 1361f8829a4aSRandall Stewart /* process this param */ 1362f8829a4aSRandall Stewart param_type = aparam->ap.aph.ph.param_type; 1363f8829a4aSRandall Stewart switch (param_type) { 1364f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1365ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1366ad81507eSRandall Stewart "process_param_ack: added IP address\n"); 1367f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aparam->ifa, param_type, flag); 1368f8829a4aSRandall Stewart break; 1369f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1370ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1371ad81507eSRandall Stewart "process_param_ack: deleted IP address\n"); 1372f8829a4aSRandall Stewart /* nothing really to do... lists already updated */ 1373f8829a4aSRandall Stewart break; 1374f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1375f8829a4aSRandall Stewart /* nothing to do... peer may start using this addr */ 1376f8829a4aSRandall Stewart if (flag == 0) 1377f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1378f8829a4aSRandall Stewart break; 1379f8829a4aSRandall Stewart default: 1380f8829a4aSRandall Stewart /* should NEVER happen */ 1381f8829a4aSRandall Stewart break; 1382f8829a4aSRandall Stewart } 1383f8829a4aSRandall Stewart 1384f8829a4aSRandall Stewart /* remove the param and free it */ 1385f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aparam, next); 1386bff64a4dSRandall Stewart sctp_free_ifa(aparam->ifa); 1387207304d4SRandall Stewart SCTP_FREE(aparam, SCTP_M_ASC_ADDR); 1388f8829a4aSRandall Stewart } 1389f8829a4aSRandall Stewart 1390f8829a4aSRandall Stewart /* 1391f8829a4aSRandall Stewart * cleanup from a bad asconf ack parameter 1392f8829a4aSRandall Stewart */ 1393f8829a4aSRandall Stewart static void 1394f8829a4aSRandall Stewart sctp_asconf_ack_clear(struct sctp_tcb *stcb) 1395f8829a4aSRandall Stewart { 1396f8829a4aSRandall Stewart /* assume peer doesn't really know how to do asconfs */ 1397f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1398f8829a4aSRandall Stewart /* XXX we could free the pending queue here */ 1399f8829a4aSRandall Stewart } 1400f8829a4aSRandall Stewart 1401f8829a4aSRandall Stewart void 1402f8829a4aSRandall Stewart sctp_handle_asconf_ack(struct mbuf *m, int offset, 1403f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *cp, struct sctp_tcb *stcb, 1404f8829a4aSRandall Stewart struct sctp_nets *net) 1405f8829a4aSRandall Stewart { 1406f8829a4aSRandall Stewart struct sctp_association *asoc; 1407f8829a4aSRandall Stewart uint32_t serial_num; 1408f8829a4aSRandall Stewart uint16_t ack_length; 1409f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 1410f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 1411f8829a4aSRandall Stewart uint32_t last_error_id = 0; /* last error correlation id */ 1412f8829a4aSRandall Stewart uint32_t id; 1413f8829a4aSRandall Stewart struct sctp_asconf_addr *ap; 1414f8829a4aSRandall Stewart 1415f8829a4aSRandall Stewart /* asconf param buffer */ 1416f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 1417f8829a4aSRandall Stewart 1418f8829a4aSRandall Stewart /* verify minimum length */ 1419f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_ack_chunk)) { 1420ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1421ad81507eSRandall Stewart "handle_asconf_ack: chunk too small = %xh\n", 1422f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 1423f8829a4aSRandall Stewart return; 1424f8829a4aSRandall Stewart } 1425f8829a4aSRandall Stewart asoc = &stcb->asoc; 1426f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 1427f8829a4aSRandall Stewart 1428f8829a4aSRandall Stewart /* 1429f8829a4aSRandall Stewart * NOTE: we may want to handle this differently- currently, we will 1430f8829a4aSRandall Stewart * abort when we get an ack for the expected serial number + 1 (eg. 1431f8829a4aSRandall Stewart * we didn't send it), process an ack normally if it is the expected 1432f8829a4aSRandall Stewart * serial number, and re-send the previous ack for *ALL* other 1433f8829a4aSRandall Stewart * serial numbers 1434f8829a4aSRandall Stewart */ 1435f8829a4aSRandall Stewart 1436f8829a4aSRandall Stewart /* 1437f8829a4aSRandall Stewart * if the serial number is the next expected, but I didn't send it, 1438f8829a4aSRandall Stewart * abort the asoc, since someone probably just hijacked us... 1439f8829a4aSRandall Stewart */ 1440f8829a4aSRandall Stewart if (serial_num == (asoc->asconf_seq_out + 1)) { 1441ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got unexpected next serial number! Aborting asoc!\n"); 1442f8829a4aSRandall Stewart sctp_abort_an_association(stcb->sctp_ep, stcb, 1443f8829a4aSRandall Stewart SCTP_CAUSE_ILLEGAL_ASCONF_ACK, NULL); 1444f8829a4aSRandall Stewart return; 1445f8829a4aSRandall Stewart } 1446f8829a4aSRandall Stewart if (serial_num != asoc->asconf_seq_out) { 1447f8829a4aSRandall Stewart /* got a duplicate/unexpected ASCONF-ACK */ 1448ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got duplicate/unexpected serial number = %xh (expected = %xh)\n", 1449ad81507eSRandall Stewart serial_num, asoc->asconf_seq_out); 1450f8829a4aSRandall Stewart return; 1451f8829a4aSRandall Stewart } 1452f8829a4aSRandall Stewart if (stcb->asoc.asconf_sent == 0) { 1453f8829a4aSRandall Stewart /* got a unexpected ASCONF-ACK for serial not in flight */ 1454ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got serial number = %xh but not in flight\n", 1455ad81507eSRandall Stewart serial_num); 1456f8829a4aSRandall Stewart /* nothing to do... duplicate ACK received */ 1457f8829a4aSRandall Stewart return; 1458f8829a4aSRandall Stewart } 1459f8829a4aSRandall Stewart /* stop our timer */ 14603c503c28SRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, 14613c503c28SRandall Stewart SCTP_FROM_SCTP_ASCONF + SCTP_LOC_3); 1462f8829a4aSRandall Stewart 1463f8829a4aSRandall Stewart /* process the ASCONF-ACK contents */ 1464f8829a4aSRandall Stewart ack_length = ntohs(cp->ch.chunk_length) - 1465f8829a4aSRandall Stewart sizeof(struct sctp_asconf_ack_chunk); 1466f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_ack_chunk); 1467f8829a4aSRandall Stewart /* process through all parameters */ 1468f8829a4aSRandall Stewart while (ack_length >= sizeof(struct sctp_asconf_paramhdr)) { 1469f8829a4aSRandall Stewart unsigned int param_length, param_type; 1470f8829a4aSRandall Stewart 1471f8829a4aSRandall Stewart /* get pointer to next asconf parameter */ 1472f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 1473f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), aparam_buf); 1474f8829a4aSRandall Stewart if (aph == NULL) { 1475f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 1476f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1477f8829a4aSRandall Stewart return; 1478f8829a4aSRandall Stewart } 1479f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1480f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 1481f8829a4aSRandall Stewart if (param_length > ack_length) { 1482f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1483f8829a4aSRandall Stewart return; 1484f8829a4aSRandall Stewart } 1485f8829a4aSRandall Stewart if (param_length < sizeof(struct sctp_paramhdr)) { 1486f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1487f8829a4aSRandall Stewart return; 1488f8829a4aSRandall Stewart } 1489f8829a4aSRandall Stewart /* get the complete parameter... */ 1490f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 1491ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1492ad81507eSRandall Stewart "param length (%u) larger than buffer size!\n", param_length); 1493f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1494f8829a4aSRandall Stewart return; 1495f8829a4aSRandall Stewart } 1496f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 1497f8829a4aSRandall Stewart if (aph == NULL) { 1498f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1499f8829a4aSRandall Stewart return; 1500f8829a4aSRandall Stewart } 1501f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no ntohl needed */ 1502f8829a4aSRandall Stewart id = aph->correlation_id; 1503f8829a4aSRandall Stewart 1504f8829a4aSRandall Stewart switch (param_type) { 1505f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 1506f8829a4aSRandall Stewart last_error_id = id; 1507f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1508f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1509f8829a4aSRandall Stewart if (ap == NULL) { 1510f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1511f8829a4aSRandall Stewart break; 1512f8829a4aSRandall Stewart } 1513f8829a4aSRandall Stewart /* process the parameter, failed flag */ 1514f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 0); 1515f8829a4aSRandall Stewart /* process the error response */ 1516f8829a4aSRandall Stewart sctp_asconf_process_error(stcb, aph); 1517f8829a4aSRandall Stewart break; 1518f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 1519f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1520f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1521f8829a4aSRandall Stewart if (ap == NULL) { 1522f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1523f8829a4aSRandall Stewart break; 1524f8829a4aSRandall Stewart } 1525f8829a4aSRandall Stewart /* process the parameter, success flag */ 1526f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 1); 1527f8829a4aSRandall Stewart break; 1528f8829a4aSRandall Stewart default: 1529f8829a4aSRandall Stewart break; 1530f8829a4aSRandall Stewart } /* switch */ 1531f8829a4aSRandall Stewart 1532f8829a4aSRandall Stewart /* update remaining ASCONF-ACK message length to process */ 1533f8829a4aSRandall Stewart ack_length -= SCTP_SIZE32(param_length); 1534f8829a4aSRandall Stewart if (ack_length <= 0) { 1535f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 1536f8829a4aSRandall Stewart break; 1537f8829a4aSRandall Stewart } 1538f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 1539f8829a4aSRandall Stewart } /* while */ 1540f8829a4aSRandall Stewart 1541f8829a4aSRandall Stewart /* 1542f8829a4aSRandall Stewart * if there are any "sent" params still on the queue, these are 1543f8829a4aSRandall Stewart * implicitly "success", or "failed" (if we got an error back) ... 1544f8829a4aSRandall Stewart * so process these appropriately 1545f8829a4aSRandall Stewart * 1546f8829a4aSRandall Stewart * we assume that the correlation_id's are monotonically increasing 1547f8829a4aSRandall Stewart * beginning from 1 and that we don't have *that* many outstanding 1548f8829a4aSRandall Stewart * at any given time 1549f8829a4aSRandall Stewart */ 1550f8829a4aSRandall Stewart if (last_error_id == 0) 1551f8829a4aSRandall Stewart last_error_id--;/* set to "max" value */ 1552f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1553f8829a4aSRandall Stewart aa = aa_next) { 1554f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1555f8829a4aSRandall Stewart if (aa->sent == 1) { 1556f8829a4aSRandall Stewart /* 1557f8829a4aSRandall Stewart * implicitly successful or failed if correlation_id 1558f8829a4aSRandall Stewart * < last_error_id, then success else, failure 1559f8829a4aSRandall Stewart */ 1560f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id < last_error_id) 156118e198d3SRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 1); 1562f8829a4aSRandall Stewart else 156318e198d3SRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 0); 1564f8829a4aSRandall Stewart } else { 1565f8829a4aSRandall Stewart /* 1566f8829a4aSRandall Stewart * since we always process in order (FIFO queue) if 1567f8829a4aSRandall Stewart * we reach one that hasn't been sent, the rest 1568f8829a4aSRandall Stewart * should not have been sent either. so, we're 1569f8829a4aSRandall Stewart * done... 1570f8829a4aSRandall Stewart */ 1571f8829a4aSRandall Stewart break; 1572f8829a4aSRandall Stewart } 1573f8829a4aSRandall Stewart } 1574f8829a4aSRandall Stewart 1575f8829a4aSRandall Stewart /* update the next sequence number to use */ 1576f8829a4aSRandall Stewart asoc->asconf_seq_out++; 1577f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 1578f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 1579f8829a4aSRandall Stewart /* clear the sent flag to allow new ASCONFs */ 1580f8829a4aSRandall Stewart asoc->asconf_sent = 0; 1581f8829a4aSRandall Stewart if (!TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 15821b649582SRandall Stewart #ifdef SCTP_TIMER_BASED_ASCONF 1583f8829a4aSRandall Stewart /* we have more params, so restart our timer */ 1584f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, 1585f8829a4aSRandall Stewart stcb, net); 15861b649582SRandall Stewart #else 15871b649582SRandall Stewart /* we have more params, so send out more */ 15881b649582SRandall Stewart sctp_send_asconf(stcb, net); 15891b649582SRandall Stewart #endif 1590f8829a4aSRandall Stewart } 1591f8829a4aSRandall Stewart } 1592f8829a4aSRandall Stewart 1593f8829a4aSRandall Stewart static uint32_t 1594f8829a4aSRandall Stewart sctp_is_scopeid_in_nets(struct sctp_tcb *stcb, struct sockaddr *sa) 1595f8829a4aSRandall Stewart { 1596f8829a4aSRandall Stewart struct sockaddr_in6 *sin6, *net6; 1597f8829a4aSRandall Stewart struct sctp_nets *net; 1598f8829a4aSRandall Stewart 1599f8829a4aSRandall Stewart if (sa->sa_family != AF_INET6) { 1600f8829a4aSRandall Stewart /* wrong family */ 1601f8829a4aSRandall Stewart return (0); 1602f8829a4aSRandall Stewart } 1603f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1604f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr) == 0) { 1605f8829a4aSRandall Stewart /* not link local address */ 1606f8829a4aSRandall Stewart return (0); 1607f8829a4aSRandall Stewart } 1608f8829a4aSRandall Stewart /* hunt through our destination nets list for this scope_id */ 1609f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 1610f8829a4aSRandall Stewart if (((struct sockaddr *)(&net->ro._l_addr))->sa_family != 1611f8829a4aSRandall Stewart AF_INET6) 1612f8829a4aSRandall Stewart continue; 1613f8829a4aSRandall Stewart net6 = (struct sockaddr_in6 *)&net->ro._l_addr; 1614f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&net6->sin6_addr) == 0) 1615f8829a4aSRandall Stewart continue; 1616f8829a4aSRandall Stewart if (sctp_is_same_scope(sin6, net6)) { 1617f8829a4aSRandall Stewart /* found one */ 1618f8829a4aSRandall Stewart return (1); 1619f8829a4aSRandall Stewart } 1620f8829a4aSRandall Stewart } 1621f8829a4aSRandall Stewart /* didn't find one */ 1622f8829a4aSRandall Stewart return (0); 1623f8829a4aSRandall Stewart } 1624f8829a4aSRandall Stewart 1625f8829a4aSRandall Stewart /* 1626f8829a4aSRandall Stewart * address management functions 1627f8829a4aSRandall Stewart */ 1628f8829a4aSRandall Stewart static void 1629f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(struct sctp_inpcb *inp, struct sctp_tcb *stcb, 163042551e99SRandall Stewart struct sctp_ifa *ifa, uint16_t type) 1631f8829a4aSRandall Stewart { 1632f8829a4aSRandall Stewart int status; 1633f8829a4aSRandall Stewart 1634f8829a4aSRandall Stewart 1635f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0 && 1636f8829a4aSRandall Stewart sctp_is_feature_off(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1637f8829a4aSRandall Stewart /* subset bound, no ASCONF allowed case, so ignore */ 1638f8829a4aSRandall Stewart return; 1639f8829a4aSRandall Stewart } 1640f8829a4aSRandall Stewart /* 1641f8829a4aSRandall Stewart * note: we know this is not the subset bound, no ASCONF case eg. 1642f8829a4aSRandall Stewart * this is boundall or subset bound w/ASCONF allowed 1643f8829a4aSRandall Stewart */ 1644f8829a4aSRandall Stewart 1645f8829a4aSRandall Stewart /* first, make sure it's a good address family */ 164642551e99SRandall Stewart if (ifa->address.sa.sa_family != AF_INET6 && 164742551e99SRandall Stewart ifa->address.sa.sa_family != AF_INET) { 1648f8829a4aSRandall Stewart return; 1649f8829a4aSRandall Stewart } 1650f8829a4aSRandall Stewart /* make sure we're "allowed" to add this type of addr */ 165142551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1652f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1653f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) 1654f8829a4aSRandall Stewart return; 1655f8829a4aSRandall Stewart /* is the v6 addr really valid ? */ 165642551e99SRandall Stewart if (ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 1657f8829a4aSRandall Stewart return; 1658f8829a4aSRandall Stewart } 1659f8829a4aSRandall Stewart } 1660f8829a4aSRandall Stewart /* put this address on the "pending/do not use yet" list */ 16611b649582SRandall Stewart sctp_add_local_addr_restricted(stcb, ifa); 1662f8829a4aSRandall Stewart /* 1663f8829a4aSRandall Stewart * check address scope if address is out of scope, don't queue 1664f8829a4aSRandall Stewart * anything... note: this would leave the address on both inp and 1665f8829a4aSRandall Stewart * asoc lists 1666f8829a4aSRandall Stewart */ 166742551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1668f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1669f8829a4aSRandall Stewart 167042551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 1671f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1672f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1673f8829a4aSRandall Stewart return; 1674f8829a4aSRandall Stewart } 1675f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 1676f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0) { 1677f8829a4aSRandall Stewart return; 1678f8829a4aSRandall Stewart } 1679f8829a4aSRandall Stewart /* is it the right link local scope? */ 168042551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 1681f8829a4aSRandall Stewart return; 1682f8829a4aSRandall Stewart } 1683f8829a4aSRandall Stewart } 1684f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 1685f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) { 1686f8829a4aSRandall Stewart return; 1687f8829a4aSRandall Stewart } 168842551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1689f8829a4aSRandall Stewart struct sockaddr_in *sin; 1690f8829a4aSRandall Stewart struct in6pcb *inp6; 1691f8829a4aSRandall Stewart 1692f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1693f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1694f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 169544b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 1696f8829a4aSRandall Stewart return; 1697f8829a4aSRandall Stewart 169842551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 1699f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 1700f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1701f8829a4aSRandall Stewart return; 1702f8829a4aSRandall Stewart } 1703f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 1704f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 1705f8829a4aSRandall Stewart return; 1706f8829a4aSRandall Stewart } 1707f8829a4aSRandall Stewart } else { 1708f8829a4aSRandall Stewart /* else, not AF_INET or AF_INET6, so skip */ 1709f8829a4aSRandall Stewart return; 1710f8829a4aSRandall Stewart } 1711f8829a4aSRandall Stewart 1712f8829a4aSRandall Stewart /* queue an asconf for this address add/delete */ 1713f8829a4aSRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1714f8829a4aSRandall Stewart /* does the peer do asconf? */ 1715f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf) { 1716f8829a4aSRandall Stewart /* queue an asconf for this addr */ 1717f8829a4aSRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 17181b649582SRandall Stewart 1719f8829a4aSRandall Stewart /* 17201b649582SRandall Stewart * if queued ok, and in the open state, send out the 17211b649582SRandall Stewart * ASCONF. If in the non-open state, these will be 17221b649582SRandall Stewart * sent when the state goes open. 1723f8829a4aSRandall Stewart */ 1724f8829a4aSRandall Stewart if (status == 0 && 1725f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 17261b649582SRandall Stewart #ifdef SCTP_TIMER_BASED_ASCONF 1727f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, inp, 1728f8829a4aSRandall Stewart stcb, stcb->asoc.primary_destination); 17291b649582SRandall Stewart #else 17301b649582SRandall Stewart sctp_send_asconf(stcb, stcb->asoc.primary_destination); 17311b649582SRandall Stewart #endif 1732f8829a4aSRandall Stewart } 1733f8829a4aSRandall Stewart } 1734f8829a4aSRandall Stewart } 1735f8829a4aSRandall Stewart } 1736f8829a4aSRandall Stewart 173742551e99SRandall Stewart 173842551e99SRandall Stewart int 17391b649582SRandall Stewart sctp_asconf_iterator_ep(struct sctp_inpcb *inp, void *ptr, uint32_t val) 1740f8829a4aSRandall Stewart { 174142551e99SRandall Stewart struct sctp_asconf_iterator *asc; 174242551e99SRandall Stewart struct sctp_ifa *ifa; 174342551e99SRandall Stewart struct sctp_laddr *l; 174442551e99SRandall Stewart int type; 174542551e99SRandall Stewart int cnt_invalid = 0; 1746f8829a4aSRandall Stewart 174742551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 174842551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 174942551e99SRandall Stewart ifa = l->ifa; 175042551e99SRandall Stewart type = l->action; 175142551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1752f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1753f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 175442551e99SRandall Stewart cnt_invalid++; 175542551e99SRandall Stewart if (asc->cnt == cnt_invalid) 175642551e99SRandall Stewart return (1); 175742551e99SRandall Stewart else 175842551e99SRandall Stewart continue; 1759f8829a4aSRandall Stewart } 176042551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1761f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1762f8829a4aSRandall Stewart struct in6pcb *inp6; 1763f8829a4aSRandall Stewart 1764f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1765f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 176644b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 176742551e99SRandall Stewart cnt_invalid++; 176842551e99SRandall Stewart if (asc->cnt == cnt_invalid) 176942551e99SRandall Stewart return (1); 177042551e99SRandall Stewart else 177142551e99SRandall Stewart continue; 1772f8829a4aSRandall Stewart } 1773f8829a4aSRandall Stewart } else { 1774f8829a4aSRandall Stewart /* invalid address family */ 177542551e99SRandall Stewart cnt_invalid++; 177642551e99SRandall Stewart if (asc->cnt == cnt_invalid) 177742551e99SRandall Stewart return (1); 1778f8829a4aSRandall Stewart else 177942551e99SRandall Stewart continue; 1780f8829a4aSRandall Stewart } 178142551e99SRandall Stewart } 178242551e99SRandall Stewart return (0); 178342551e99SRandall Stewart } 1784f8829a4aSRandall Stewart 17851b649582SRandall Stewart static int 17861b649582SRandall Stewart sctp_asconf_iterator_ep_end(struct sctp_inpcb *inp, void *ptr, uint32_t val) 178742551e99SRandall Stewart { 178842551e99SRandall Stewart struct sctp_ifa *ifa; 178942551e99SRandall Stewart struct sctp_asconf_iterator *asc; 179042551e99SRandall Stewart struct sctp_laddr *laddr, *nladdr, *l; 179142551e99SRandall Stewart 179242551e99SRandall Stewart /* Only for specific case not bound all */ 179342551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 179442551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 179542551e99SRandall Stewart ifa = l->ifa; 179642551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 17973c503c28SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, 17983c503c28SRandall Stewart sctp_nxt_addr) { 179942551e99SRandall Stewart if (laddr->ifa == ifa) { 180042551e99SRandall Stewart laddr->action = 0; 180142551e99SRandall Stewart break; 180242551e99SRandall Stewart } 180342551e99SRandall Stewart } 180442551e99SRandall Stewart } else if (l->action == SCTP_DEL_IP_ADDRESS) { 180542551e99SRandall Stewart laddr = LIST_FIRST(&inp->sctp_addr_list); 180642551e99SRandall Stewart while (laddr) { 180742551e99SRandall Stewart nladdr = LIST_NEXT(laddr, sctp_nxt_addr); 180842551e99SRandall Stewart /* remove only after all guys are done */ 180942551e99SRandall Stewart if (laddr->ifa == ifa) { 181042551e99SRandall Stewart sctp_del_local_addr_ep(inp, ifa); 181142551e99SRandall Stewart } 181242551e99SRandall Stewart laddr = nladdr; 181342551e99SRandall Stewart } 181442551e99SRandall Stewart } 181542551e99SRandall Stewart } 181642551e99SRandall Stewart return (0); 181742551e99SRandall Stewart } 181842551e99SRandall Stewart 181942551e99SRandall Stewart void 18201b649582SRandall Stewart sctp_asconf_iterator_stcb(struct sctp_inpcb *inp, struct sctp_tcb *stcb, 18211b649582SRandall Stewart void *ptr, uint32_t val) 182242551e99SRandall Stewart { 182342551e99SRandall Stewart struct sctp_asconf_iterator *asc; 182442551e99SRandall Stewart struct sctp_ifa *ifa; 182542551e99SRandall Stewart struct sctp_laddr *l; 182642551e99SRandall Stewart int cnt_invalid = 0; 182742551e99SRandall Stewart int type, status; 18281b649582SRandall Stewart int num_queued = 0; 182942551e99SRandall Stewart 183042551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 183142551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 183242551e99SRandall Stewart ifa = l->ifa; 183342551e99SRandall Stewart type = l->action; 183422a67197SRandall Stewart 183522a67197SRandall Stewart /* address's vrf_id must be the vrf_id of the assoc */ 183622a67197SRandall Stewart if (ifa->vrf_id != stcb->asoc.vrf_id) { 183722a67197SRandall Stewart continue; 183822a67197SRandall Stewart } 183942551e99SRandall Stewart /* Same checks again for assoc */ 184042551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 184142551e99SRandall Stewart /* invalid if we're not a v6 endpoint */ 184242551e99SRandall Stewart struct sockaddr_in6 *sin6; 184342551e99SRandall Stewart 184442551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 184542551e99SRandall Stewart cnt_invalid++; 184642551e99SRandall Stewart if (asc->cnt == cnt_invalid) 184742551e99SRandall Stewart return; 184842551e99SRandall Stewart else 184942551e99SRandall Stewart continue; 185042551e99SRandall Stewart } 185142551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 185242551e99SRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 185342551e99SRandall Stewart /* we skip unspecifed addresses */ 185442551e99SRandall Stewart continue; 185542551e99SRandall Stewart } 185642551e99SRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 185742551e99SRandall Stewart if (stcb->asoc.local_scope == 0) { 185842551e99SRandall Stewart continue; 185942551e99SRandall Stewart } 186042551e99SRandall Stewart /* is it the right link local scope? */ 186142551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 186242551e99SRandall Stewart continue; 186342551e99SRandall Stewart } 186442551e99SRandall Stewart } 186542551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 186642551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 186742551e99SRandall Stewart struct in6pcb *inp6; 186842551e99SRandall Stewart struct sockaddr_in *sin; 186942551e99SRandall Stewart 187042551e99SRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 187142551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 187242551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 187342551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 187442551e99SRandall Stewart continue; 187542551e99SRandall Stewart 187642551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 187742551e99SRandall Stewart if (sin->sin_addr.s_addr == 0) { 187842551e99SRandall Stewart /* we skip unspecifed addresses */ 187942551e99SRandall Stewart continue; 188042551e99SRandall Stewart } 188142551e99SRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 188242551e99SRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 188342551e99SRandall Stewart continue;; 188442551e99SRandall Stewart } 188542551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 188642551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 188742551e99SRandall Stewart cnt_invalid++; 188842551e99SRandall Stewart if (asc->cnt == cnt_invalid) 188942551e99SRandall Stewart return; 189042551e99SRandall Stewart else 189142551e99SRandall Stewart continue; 189242551e99SRandall Stewart } 1893f8829a4aSRandall Stewart } else { 189442551e99SRandall Stewart /* invalid address family */ 189542551e99SRandall Stewart cnt_invalid++; 189642551e99SRandall Stewart if (asc->cnt == cnt_invalid) 1897f8829a4aSRandall Stewart return; 189842551e99SRandall Stewart else 189942551e99SRandall Stewart continue; 1900f8829a4aSRandall Stewart } 1901f8829a4aSRandall Stewart 190242551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 19031b649582SRandall Stewart /* prevent this address from being used as a source */ 19041b649582SRandall Stewart sctp_add_local_addr_restricted(stcb, ifa); 190542551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 1906f8829a4aSRandall Stewart struct sctp_nets *net; 1907f8829a4aSRandall Stewart 1908f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 190917205eccSRandall Stewart sctp_rtentry_t *rt; 1910f8829a4aSRandall Stewart 1911f8829a4aSRandall Stewart /* delete this address if cached */ 191242551e99SRandall Stewart if (net->ro._s_addr && 191342551e99SRandall Stewart (net->ro._s_addr->ifa == ifa)) { 191442551e99SRandall Stewart sctp_free_ifa(net->ro._s_addr); 191542551e99SRandall Stewart net->ro._s_addr = NULL; 191642551e99SRandall Stewart net->src_addr_selected = 0; 1917f8829a4aSRandall Stewart rt = net->ro.ro_rt; 191842551e99SRandall Stewart if (rt) { 191942551e99SRandall Stewart RTFREE(rt); 1920f8829a4aSRandall Stewart net->ro.ro_rt = NULL; 1921f8829a4aSRandall Stewart } 192242551e99SRandall Stewart /* 192342551e99SRandall Stewart * Now we deleted our src address, 192442551e99SRandall Stewart * should we not also now reset the 192542551e99SRandall Stewart * cwnd/rto to start as if its a new 192642551e99SRandall Stewart * address? 192742551e99SRandall Stewart */ 1928b54d3a6cSRandall Stewart stcb->asoc.cc_functions.sctp_set_initial_cc_param(stcb, net); 1929108df27cSRandall Stewart net->RTO = 0; 193042551e99SRandall Stewart 1931f8829a4aSRandall Stewart } 1932f8829a4aSRandall Stewart } 193342551e99SRandall Stewart } else if (type == SCTP_SET_PRIM_ADDR) { 193442551e99SRandall Stewart if ((stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0) { 19351b649582SRandall Stewart /* must validate the ifa is in the ep */ 193642551e99SRandall Stewart if (sctp_is_addr_in_ep(stcb->sctp_ep, ifa) == 0) { 193742551e99SRandall Stewart continue; 1938f8829a4aSRandall Stewart } 193942551e99SRandall Stewart } else { 194042551e99SRandall Stewart /* Need to check scopes for this guy */ 194142551e99SRandall Stewart if (sctp_is_address_in_scope(ifa, 194242551e99SRandall Stewart stcb->asoc.ipv4_addr_legal, 194342551e99SRandall Stewart stcb->asoc.ipv6_addr_legal, 194442551e99SRandall Stewart stcb->asoc.loopback_scope, 194542551e99SRandall Stewart stcb->asoc.ipv4_local_scope, 194642551e99SRandall Stewart stcb->asoc.local_scope, 194742551e99SRandall Stewart stcb->asoc.site_scope, 0) == 0) { 194842551e99SRandall Stewart continue; 1949f8829a4aSRandall Stewart } 195042551e99SRandall Stewart } 195142551e99SRandall Stewart } 195242551e99SRandall Stewart /* queue an asconf for this address add/delete */ 19531b649582SRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF) && 19541b649582SRandall Stewart stcb->asoc.peer_supports_asconf) { 195542551e99SRandall Stewart /* queue an asconf for this addr */ 195642551e99SRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 195742551e99SRandall Stewart /* 19581b649582SRandall Stewart * if queued ok, and in the open state, update the 19591b649582SRandall Stewart * count of queued params. If in the non-open 19601b649582SRandall Stewart * state, these get sent when the assoc goes open. 196142551e99SRandall Stewart */ 19621b649582SRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 19631b649582SRandall Stewart if (status >= 0) { 19641b649582SRandall Stewart num_queued++; 196542551e99SRandall Stewart } 196642551e99SRandall Stewart } 196742551e99SRandall Stewart } 196842551e99SRandall Stewart } 19691b649582SRandall Stewart /* 19701b649582SRandall Stewart * If we have queued params in the open state, send out an ASCONF. 19711b649582SRandall Stewart */ 19721b649582SRandall Stewart if (num_queued > 0) { 19731b649582SRandall Stewart sctp_send_asconf(stcb, stcb->asoc.primary_destination); 19741b649582SRandall Stewart } 197542551e99SRandall Stewart } 197642551e99SRandall Stewart 197742551e99SRandall Stewart void 19781b649582SRandall Stewart sctp_asconf_iterator_end(void *ptr, uint32_t val) 197942551e99SRandall Stewart { 198042551e99SRandall Stewart struct sctp_asconf_iterator *asc; 198142551e99SRandall Stewart struct sctp_ifa *ifa; 198242551e99SRandall Stewart struct sctp_laddr *l, *l_next; 198342551e99SRandall Stewart 198442551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 198542551e99SRandall Stewart l = LIST_FIRST(&asc->list_of_work); 198642551e99SRandall Stewart while (l != NULL) { 198742551e99SRandall Stewart l_next = LIST_NEXT(l, sctp_nxt_addr); 198842551e99SRandall Stewart ifa = l->ifa; 198942551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 199042551e99SRandall Stewart /* Clear the defer use flag */ 199142551e99SRandall Stewart ifa->localifa_flags &= ~SCTP_ADDR_DEFER_USE; 199242551e99SRandall Stewart } 199342551e99SRandall Stewart sctp_free_ifa(ifa); 199442551e99SRandall Stewart SCTP_ZONE_FREE(sctppcbinfo.ipi_zone_laddr, l); 199542551e99SRandall Stewart SCTP_DECR_LADDR_COUNT(); 199642551e99SRandall Stewart l = l_next; 199742551e99SRandall Stewart } 1998207304d4SRandall Stewart SCTP_FREE(asc, SCTP_M_ASC_IT); 1999f8829a4aSRandall Stewart } 2000f8829a4aSRandall Stewart 2001f8829a4aSRandall Stewart /* 20021b649582SRandall Stewart * sa is the sockaddr to ask the peer to set primary to. 20031b649582SRandall Stewart * returns: 0 = completed, -1 = error 2004f8829a4aSRandall Stewart */ 20051b649582SRandall Stewart int 2006f8829a4aSRandall Stewart sctp_set_primary_ip_address_sa(struct sctp_tcb *stcb, struct sockaddr *sa) 2007f8829a4aSRandall Stewart { 2008f8829a4aSRandall Stewart /* NOTE: we currently don't check the validity of the address! */ 2009f8829a4aSRandall Stewart 2010f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 2011f8829a4aSRandall Stewart if (!sctp_asconf_queue_add_sa(stcb, sa, SCTP_SET_PRIM_ADDR)) { 2012f8829a4aSRandall Stewart /* set primary queuing succeeded */ 2013ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2014ad81507eSRandall Stewart "set_primary_ip_address_sa: queued on tcb=%p, ", 2015f8829a4aSRandall Stewart stcb); 2016ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 20171b649582SRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 20181b649582SRandall Stewart #ifdef SCTP_TIMER_BASED_ASCONF 20191b649582SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 20201b649582SRandall Stewart stcb->sctp_ep, stcb, 20211b649582SRandall Stewart stcb->asoc.primary_destination); 20221b649582SRandall Stewart #else 20231b649582SRandall Stewart sctp_send_asconf(stcb, stcb->asoc.primary_destination); 20241b649582SRandall Stewart #endif 20251b649582SRandall Stewart } 2026f8829a4aSRandall Stewart } else { 2027ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address_sa: failed to add to queue on tcb=%p, ", 2028f8829a4aSRandall Stewart stcb); 2029ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 2030f8829a4aSRandall Stewart return (-1); 2031f8829a4aSRandall Stewart } 2032f8829a4aSRandall Stewart return (0); 2033f8829a4aSRandall Stewart } 2034f8829a4aSRandall Stewart 2035f8829a4aSRandall Stewart void 203642551e99SRandall Stewart sctp_set_primary_ip_address(struct sctp_ifa *ifa) 2037f8829a4aSRandall Stewart { 2038f8829a4aSRandall Stewart struct sctp_inpcb *inp; 2039f8829a4aSRandall Stewart 2040f8829a4aSRandall Stewart /* go through all our PCB's */ 2041f8829a4aSRandall Stewart LIST_FOREACH(inp, &sctppcbinfo.listhead, sctp_list) { 2042f8829a4aSRandall Stewart struct sctp_tcb *stcb; 2043f8829a4aSRandall Stewart 2044f8829a4aSRandall Stewart /* process for all associations for this endpoint */ 2045f8829a4aSRandall Stewart LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) { 2046f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 2047f8829a4aSRandall Stewart if (!sctp_asconf_queue_add(stcb, ifa, 2048f8829a4aSRandall Stewart SCTP_SET_PRIM_ADDR)) { 2049f8829a4aSRandall Stewart /* set primary queuing succeeded */ 2050ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address: queued on stcb=%p, ", 2051f8829a4aSRandall Stewart stcb); 2052ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, &ifa->address.sa); 20531b649582SRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 20541b649582SRandall Stewart #ifdef SCTP_TIMER_BASED_ASCONF 20551b649582SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 20561b649582SRandall Stewart stcb->sctp_ep, stcb, 20571b649582SRandall Stewart stcb->asoc.primary_destination); 20581b649582SRandall Stewart #else 20591b649582SRandall Stewart sctp_send_asconf(stcb, stcb->asoc.primary_destination); 20601b649582SRandall Stewart #endif 20611b649582SRandall Stewart } 2062f8829a4aSRandall Stewart } 2063f8829a4aSRandall Stewart } /* for each stcb */ 2064f8829a4aSRandall Stewart } /* for each inp */ 2065f8829a4aSRandall Stewart } 2066f8829a4aSRandall Stewart 2067f8829a4aSRandall Stewart static struct sockaddr * 2068f8829a4aSRandall Stewart sctp_find_valid_localaddr(struct sctp_tcb *stcb) 2069f8829a4aSRandall Stewart { 207042551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 207142551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 207242551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 2073f8829a4aSRandall Stewart 207442551e99SRandall Stewart vrf = sctp_find_vrf(stcb->asoc.vrf_id); 2075ad81507eSRandall Stewart if (vrf == NULL) { 2076ad81507eSRandall Stewart return (NULL); 2077ad81507eSRandall Stewart } 207842551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 207942551e99SRandall Stewart if (stcb->asoc.loopback_scope == 0 && 208042551e99SRandall Stewart SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 2081f8829a4aSRandall Stewart /* Skip if loopback_scope not set */ 2082f8829a4aSRandall Stewart continue; 2083f8829a4aSRandall Stewart } 208442551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 208542551e99SRandall Stewart if (sctp_ifa->address.sa.sa_family == AF_INET && 2086f8829a4aSRandall Stewart stcb->asoc.ipv4_addr_legal) { 2087f8829a4aSRandall Stewart struct sockaddr_in *sin; 2088f8829a4aSRandall Stewart 208942551e99SRandall Stewart sin = (struct sockaddr_in *)&sctp_ifa->address.sa; 2090f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 2091f8829a4aSRandall Stewart /* skip unspecifed addresses */ 2092f8829a4aSRandall Stewart continue; 2093f8829a4aSRandall Stewart } 2094f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 2095f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) 2096f8829a4aSRandall Stewart continue; 2097f8829a4aSRandall Stewart 209842551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, sctp_ifa)) 2099f8829a4aSRandall Stewart continue; 2100f8829a4aSRandall Stewart /* found a valid local v4 address to use */ 210142551e99SRandall Stewart return (&sctp_ifa->address.sa); 210242551e99SRandall Stewart } else if (sctp_ifa->address.sa.sa_family == AF_INET6 && 2103f8829a4aSRandall Stewart stcb->asoc.ipv6_addr_legal) { 2104f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 2105f8829a4aSRandall Stewart 210642551e99SRandall Stewart if (sctp_ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 2107f8829a4aSRandall Stewart continue; 210842551e99SRandall Stewart } 210942551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&sctp_ifa->address.sa; 2110f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 2111f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 2112f8829a4aSRandall Stewart continue; 2113f8829a4aSRandall Stewart } 2114f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0 && 2115f8829a4aSRandall Stewart IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) 2116f8829a4aSRandall Stewart continue; 2117f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 2118f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) 2119f8829a4aSRandall Stewart continue; 2120f8829a4aSRandall Stewart 2121f8829a4aSRandall Stewart /* found a valid local v6 address to use */ 212242551e99SRandall Stewart return (&sctp_ifa->address.sa); 2123f8829a4aSRandall Stewart } 2124f8829a4aSRandall Stewart } 2125f8829a4aSRandall Stewart } 2126f8829a4aSRandall Stewart /* no valid addresses found */ 2127f8829a4aSRandall Stewart return (NULL); 2128f8829a4aSRandall Stewart } 2129f8829a4aSRandall Stewart 2130f8829a4aSRandall Stewart static struct sockaddr * 2131f8829a4aSRandall Stewart sctp_find_valid_localaddr_ep(struct sctp_tcb *stcb) 2132f8829a4aSRandall Stewart { 2133f8829a4aSRandall Stewart struct sctp_laddr *laddr; 2134f8829a4aSRandall Stewart 2135f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 2136f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 2137f8829a4aSRandall Stewart continue; 2138f8829a4aSRandall Stewart } 2139f8829a4aSRandall Stewart /* is the address restricted ? */ 214042551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, laddr->ifa)) 2141f8829a4aSRandall Stewart continue; 2142f8829a4aSRandall Stewart 2143f8829a4aSRandall Stewart /* found a valid local address to use */ 214442551e99SRandall Stewart return (&laddr->ifa->address.sa); 2145f8829a4aSRandall Stewart } 2146f8829a4aSRandall Stewart /* no valid addresses found */ 2147f8829a4aSRandall Stewart return (NULL); 2148f8829a4aSRandall Stewart } 2149f8829a4aSRandall Stewart 2150f8829a4aSRandall Stewart /* 215118e198d3SRandall Stewart * builds an ASCONF chunk from queued ASCONF params. 215218e198d3SRandall Stewart * returns NULL on error (no mbuf, no ASCONF params queued, etc). 2153f8829a4aSRandall Stewart */ 2154f8829a4aSRandall Stewart struct mbuf * 2155139bc87fSRandall Stewart sctp_compose_asconf(struct sctp_tcb *stcb, int *retlen) 2156f8829a4aSRandall Stewart { 2157f8829a4aSRandall Stewart struct mbuf *m_asconf, *m_asconf_chk; 2158f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 2159f8829a4aSRandall Stewart struct sctp_asconf_chunk *acp; 2160f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 2161f8829a4aSRandall Stewart struct sctp_asconf_addr_param *aap; 2162f8829a4aSRandall Stewart uint32_t p_length; 2163f8829a4aSRandall Stewart uint32_t correlation_id = 1; /* 0 is reserved... */ 2164f8829a4aSRandall Stewart caddr_t ptr, lookup_ptr; 2165f8829a4aSRandall Stewart uint8_t lookup_used = 0; 2166f8829a4aSRandall Stewart 2167f8829a4aSRandall Stewart /* are there any asconf params to send? */ 2168f8829a4aSRandall Stewart if (TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 2169f8829a4aSRandall Stewart return (NULL); 2170f8829a4aSRandall Stewart } 21711b649582SRandall Stewart /* can't send a new one if there is one in flight already */ 21721b649582SRandall Stewart if (stcb->asoc.asconf_sent > 0) { 21731b649582SRandall Stewart return (NULL); 21741b649582SRandall Stewart } 2175f8829a4aSRandall Stewart /* 2176f8829a4aSRandall Stewart * get a chunk header mbuf and a cluster for the asconf params since 2177f8829a4aSRandall Stewart * it's simpler to fill in the asconf chunk header lookup address on 2178f8829a4aSRandall Stewart * the fly 2179f8829a4aSRandall Stewart */ 2180139bc87fSRandall Stewart m_asconf_chk = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_chunk), 0, M_DONTWAIT, 1, MT_DATA); 2181f8829a4aSRandall Stewart if (m_asconf_chk == NULL) { 2182f8829a4aSRandall Stewart /* no mbuf's */ 2183ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2184ad81507eSRandall Stewart "compose_asconf: couldn't get chunk mbuf!\n"); 2185f8829a4aSRandall Stewart return (NULL); 2186f8829a4aSRandall Stewart } 2187139bc87fSRandall Stewart m_asconf = sctp_get_mbuf_for_msg(MCLBYTES, 0, M_DONTWAIT, 1, MT_DATA); 2188f8829a4aSRandall Stewart if (m_asconf == NULL) { 2189f8829a4aSRandall Stewart /* no mbuf's */ 2190ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2191ad81507eSRandall Stewart "compose_asconf: couldn't get mbuf!\n"); 2192f8829a4aSRandall Stewart sctp_m_freem(m_asconf_chk); 2193f8829a4aSRandall Stewart return (NULL); 2194f8829a4aSRandall Stewart } 2195139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) = sizeof(struct sctp_asconf_chunk); 2196139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) = 0; 2197f8829a4aSRandall Stewart acp = mtod(m_asconf_chk, struct sctp_asconf_chunk *); 2198f8829a4aSRandall Stewart bzero(acp, sizeof(struct sctp_asconf_chunk)); 2199f8829a4aSRandall Stewart /* save pointers to lookup address and asconf params */ 2200f8829a4aSRandall Stewart lookup_ptr = (caddr_t)(acp + 1); /* after the header */ 2201f8829a4aSRandall Stewart ptr = mtod(m_asconf, caddr_t); /* beginning of cluster */ 2202f8829a4aSRandall Stewart 2203f8829a4aSRandall Stewart /* fill in chunk header info */ 2204f8829a4aSRandall Stewart acp->ch.chunk_type = SCTP_ASCONF; 2205f8829a4aSRandall Stewart acp->ch.chunk_flags = 0; 2206f8829a4aSRandall Stewart acp->serial_number = htonl(stcb->asoc.asconf_seq_out); 2207f8829a4aSRandall Stewart 2208f8829a4aSRandall Stewart /* add parameters... up to smallest MTU allowed */ 2209f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 2210f8829a4aSRandall Stewart /* get the parameter length */ 2211f8829a4aSRandall Stewart p_length = SCTP_SIZE32(aa->ap.aph.ph.param_length); 2212f8829a4aSRandall Stewart /* will it fit in current chunk? */ 2213139bc87fSRandall Stewart if (SCTP_BUF_LEN(m_asconf) + p_length > stcb->asoc.smallest_mtu) { 2214f8829a4aSRandall Stewart /* won't fit, so we're done with this chunk */ 2215f8829a4aSRandall Stewart break; 2216f8829a4aSRandall Stewart } 2217f8829a4aSRandall Stewart /* assign (and store) a correlation id */ 2218f8829a4aSRandall Stewart aa->ap.aph.correlation_id = correlation_id++; 2219f8829a4aSRandall Stewart 2220f8829a4aSRandall Stewart /* 2221f8829a4aSRandall Stewart * fill in address if we're doing a delete this is a simple 2222f8829a4aSRandall Stewart * way for us to fill in the correlation address, which 2223f8829a4aSRandall Stewart * should only be used by the peer if we're deleting our 2224f8829a4aSRandall Stewart * source address and adding a new address (e.g. renumbering 2225f8829a4aSRandall Stewart * case) 2226f8829a4aSRandall Stewart */ 2227f8829a4aSRandall Stewart if (lookup_used == 0 && 2228f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 2229f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2230f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2231f8829a4aSRandall Stewart 2232f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2233f8829a4aSRandall Stewart lookup->ph.param_type = 2234f8829a4aSRandall Stewart htons(aa->ap.addrp.ph.param_type); 2235f8829a4aSRandall Stewart if (aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) { 2236f8829a4aSRandall Stewart /* copy IPv6 address */ 2237f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2238f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2239f8829a4aSRandall Stewart } else { 2240f8829a4aSRandall Stewart /* copy IPv4 address */ 2241f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2242f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2243f8829a4aSRandall Stewart } 2244f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2245f8829a4aSRandall Stewart memcpy(lookup->addr, &aa->ap.addrp.addr, addr_size); 2246139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2247f8829a4aSRandall Stewart lookup_used = 1; 2248f8829a4aSRandall Stewart } 2249f8829a4aSRandall Stewart /* copy into current space */ 2250f8829a4aSRandall Stewart memcpy(ptr, &aa->ap, p_length); 2251f8829a4aSRandall Stewart 2252f8829a4aSRandall Stewart /* network elements and update lengths */ 2253f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)ptr; 2254f8829a4aSRandall Stewart aap = (struct sctp_asconf_addr_param *)ptr; 2255f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no htonl needed */ 2256f8829a4aSRandall Stewart aph->ph.param_type = htons(aph->ph.param_type); 2257f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 2258f8829a4aSRandall Stewart aap->addrp.ph.param_type = htons(aap->addrp.ph.param_type); 2259f8829a4aSRandall Stewart aap->addrp.ph.param_length = htons(aap->addrp.ph.param_length); 2260f8829a4aSRandall Stewart 2261139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) += SCTP_SIZE32(p_length); 2262f8829a4aSRandall Stewart ptr += SCTP_SIZE32(p_length); 2263f8829a4aSRandall Stewart 2264f8829a4aSRandall Stewart /* 2265f8829a4aSRandall Stewart * these params are removed off the pending list upon 2266f8829a4aSRandall Stewart * getting an ASCONF-ACK back from the peer, just set flag 2267f8829a4aSRandall Stewart */ 2268f8829a4aSRandall Stewart aa->sent = 1; 2269f8829a4aSRandall Stewart } 2270f8829a4aSRandall Stewart /* check to see if the lookup addr has been populated yet */ 2271f8829a4aSRandall Stewart if (lookup_used == 0) { 2272f8829a4aSRandall Stewart /* NOTE: if the address param is optional, can skip this... */ 2273f8829a4aSRandall Stewart /* add any valid (existing) address... */ 2274f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2275f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2276f8829a4aSRandall Stewart struct sockaddr *found_addr; 2277f8829a4aSRandall Stewart caddr_t addr_ptr; 2278f8829a4aSRandall Stewart 2279f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) 2280f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr(stcb); 2281f8829a4aSRandall Stewart else 2282f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr_ep(stcb); 2283f8829a4aSRandall Stewart 2284f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2285f8829a4aSRandall Stewart if (found_addr != NULL) { 2286f8829a4aSRandall Stewart if (found_addr->sa_family == AF_INET6) { 2287f8829a4aSRandall Stewart /* copy IPv6 address */ 2288f8829a4aSRandall Stewart lookup->ph.param_type = 2289f8829a4aSRandall Stewart htons(SCTP_IPV6_ADDRESS); 2290f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2291f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2292f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in6 *) 2293f8829a4aSRandall Stewart found_addr)->sin6_addr; 2294f8829a4aSRandall Stewart } else { 2295f8829a4aSRandall Stewart /* copy IPv4 address */ 2296f8829a4aSRandall Stewart lookup->ph.param_type = 2297f8829a4aSRandall Stewart htons(SCTP_IPV4_ADDRESS); 2298f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2299f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2300f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in *) 2301f8829a4aSRandall Stewart found_addr)->sin_addr; 2302f8829a4aSRandall Stewart } 2303f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2304f8829a4aSRandall Stewart memcpy(lookup->addr, addr_ptr, addr_size); 2305139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2306f8829a4aSRandall Stewart lookup_used = 1; 2307f8829a4aSRandall Stewart } else { 2308f8829a4aSRandall Stewart /* uh oh... don't have any address?? */ 2309ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2310ad81507eSRandall Stewart "compose_asconf: no lookup addr!\n"); 2311f8829a4aSRandall Stewart /* for now, we send a IPv4 address of 0.0.0.0 */ 2312f8829a4aSRandall Stewart lookup->ph.param_type = htons(SCTP_IPV4_ADDRESS); 2313f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param))); 2314f8829a4aSRandall Stewart bzero(lookup->addr, sizeof(struct in_addr)); 2315139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param)); 2316f8829a4aSRandall Stewart lookup_used = 1; 2317f8829a4aSRandall Stewart } 2318f8829a4aSRandall Stewart } 2319f8829a4aSRandall Stewart /* chain it all together */ 2320139bc87fSRandall Stewart SCTP_BUF_NEXT(m_asconf_chk) = m_asconf; 23213c503c28SRandall Stewart *retlen = SCTP_BUF_LEN(m_asconf_chk) + SCTP_BUF_LEN(m_asconf); 23223c503c28SRandall Stewart acp->ch.chunk_length = ntohs(*retlen); 2323f8829a4aSRandall Stewart 2324f8829a4aSRandall Stewart /* update "sent" flag */ 2325f8829a4aSRandall Stewart stcb->asoc.asconf_sent++; 2326f8829a4aSRandall Stewart 2327f8829a4aSRandall Stewart return (m_asconf_chk); 2328f8829a4aSRandall Stewart } 2329f8829a4aSRandall Stewart 2330f8829a4aSRandall Stewart /* 2331f8829a4aSRandall Stewart * section to handle address changes before an association is up eg. changes 2332f8829a4aSRandall Stewart * during INIT/INIT-ACK/COOKIE-ECHO handshake 2333f8829a4aSRandall Stewart */ 2334f8829a4aSRandall Stewart 2335f8829a4aSRandall Stewart /* 2336f8829a4aSRandall Stewart * processes the (local) addresses in the INIT-ACK chunk 2337f8829a4aSRandall Stewart */ 2338f8829a4aSRandall Stewart static void 2339f8829a4aSRandall Stewart sctp_process_initack_addresses(struct sctp_tcb *stcb, struct mbuf *m, 2340f8829a4aSRandall Stewart unsigned int offset, unsigned int length) 2341f8829a4aSRandall Stewart { 2342f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2343f8829a4aSRandall Stewart uint16_t plen, ptype; 234442551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 2345f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2346f8829a4aSRandall Stewart struct sockaddr_in6 sin6; 2347f8829a4aSRandall Stewart struct sockaddr_in sin; 2348f8829a4aSRandall Stewart struct sockaddr *sa; 234942551e99SRandall Stewart uint32_t vrf_id; 2350f8829a4aSRandall Stewart 2351ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "processing init-ack addresses\n"); 2352ad81507eSRandall Stewart if (stcb == NULL) /* Un-needed check for SA */ 2353ad81507eSRandall Stewart return; 2354f8829a4aSRandall Stewart 2355f8829a4aSRandall Stewart /* convert to upper bound */ 2356f8829a4aSRandall Stewart length += offset; 2357f8829a4aSRandall Stewart 2358f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2359f8829a4aSRandall Stewart return; 2360f8829a4aSRandall Stewart } 2361f8829a4aSRandall Stewart /* init the addresses */ 2362f8829a4aSRandall Stewart bzero(&sin6, sizeof(sin6)); 2363f8829a4aSRandall Stewart sin6.sin6_family = AF_INET6; 2364f8829a4aSRandall Stewart sin6.sin6_len = sizeof(sin6); 2365f8829a4aSRandall Stewart sin6.sin6_port = stcb->rport; 2366f8829a4aSRandall Stewart 2367f8829a4aSRandall Stewart bzero(&sin, sizeof(sin)); 2368f8829a4aSRandall Stewart sin.sin_len = sizeof(sin); 2369f8829a4aSRandall Stewart sin.sin_family = AF_INET; 2370f8829a4aSRandall Stewart sin.sin_port = stcb->rport; 2371f8829a4aSRandall Stewart 2372f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2373f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2374f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2375f8829a4aSRandall Stewart while (ph != NULL) { 2376f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2377f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2378f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS) { 2379f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 2380f8829a4aSRandall Stewart 2381f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2382f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2383f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2384f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2385f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2386f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2387f8829a4aSRandall Stewart a6p == NULL) { 2388f8829a4aSRandall Stewart return; 2389f8829a4aSRandall Stewart } 2390f8829a4aSRandall Stewart memcpy(&sin6.sin6_addr, a6p->addr, 2391f8829a4aSRandall Stewart sizeof(struct in6_addr)); 2392f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin6; 2393f8829a4aSRandall Stewart } else if (ptype == SCTP_IPV4_ADDRESS) { 2394f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2395f8829a4aSRandall Stewart 2396f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 239742551e99SRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, offset, 239842551e99SRandall Stewart sizeof(struct sctp_ipv4addr_param), 239942551e99SRandall Stewart (uint8_t *) & addr_store); 2400f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2401f8829a4aSRandall Stewart a4p == NULL) { 2402f8829a4aSRandall Stewart return; 2403f8829a4aSRandall Stewart } 2404f8829a4aSRandall Stewart sin.sin_addr.s_addr = a4p->addr; 2405f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin; 2406f8829a4aSRandall Stewart } else { 2407f8829a4aSRandall Stewart goto next_addr; 2408f8829a4aSRandall Stewart } 2409f8829a4aSRandall Stewart 2410f8829a4aSRandall Stewart /* see if this address really (still) exists */ 2411bff64a4dSRandall Stewart if (stcb) { 2412bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2413bff64a4dSRandall Stewart } else { 241442551e99SRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 2415bff64a4dSRandall Stewart } 2416bff64a4dSRandall Stewart 241742551e99SRandall Stewart sctp_ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 241842551e99SRandall Stewart if (sctp_ifa == NULL) { 2419f8829a4aSRandall Stewart /* address doesn't exist anymore */ 2420f8829a4aSRandall Stewart int status; 2421f8829a4aSRandall Stewart 2422f8829a4aSRandall Stewart /* are ASCONFs allowed ? */ 2423f8829a4aSRandall Stewart if ((sctp_is_feature_on(stcb->sctp_ep, 2424f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) && 2425f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf) { 2426f8829a4aSRandall Stewart /* queue an ASCONF DEL_IP_ADDRESS */ 2427f8829a4aSRandall Stewart status = sctp_asconf_queue_add_sa(stcb, sa, 2428f8829a4aSRandall Stewart SCTP_DEL_IP_ADDRESS); 2429f8829a4aSRandall Stewart /* 24301b649582SRandall Stewart * if queued ok, and in correct state, send 24311b649582SRandall Stewart * out the ASCONF. 2432f8829a4aSRandall Stewart */ 2433f8829a4aSRandall Stewart if (status == 0 && 2434f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == 2435f8829a4aSRandall Stewart SCTP_STATE_OPEN) { 24361b649582SRandall Stewart #ifdef SCTP_TIMER_BASED_ASCONF 2437f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 2438f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 2439f8829a4aSRandall Stewart stcb->asoc.primary_destination); 24401b649582SRandall Stewart #else 24411b649582SRandall Stewart sctp_send_asconf(stcb, stcb->asoc.primary_destination); 24421b649582SRandall Stewart #endif 2443f8829a4aSRandall Stewart } 2444f8829a4aSRandall Stewart } 2445f8829a4aSRandall Stewart } 2446f8829a4aSRandall Stewart next_addr: 2447f8829a4aSRandall Stewart /* 2448f8829a4aSRandall Stewart * Sanity check: Make sure the length isn't 0, otherwise 2449f8829a4aSRandall Stewart * we'll be stuck in this loop for a long time... 2450f8829a4aSRandall Stewart */ 2451f8829a4aSRandall Stewart if (SCTP_SIZE32(plen) == 0) { 2452ad81507eSRandall Stewart SCTP_PRINTF("process_initack_addrs: bad len (%d) type=%xh\n", 2453f8829a4aSRandall Stewart plen, ptype); 2454f8829a4aSRandall Stewart return; 2455f8829a4aSRandall Stewart } 2456f8829a4aSRandall Stewart /* get next parameter */ 2457f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2458f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) 2459f8829a4aSRandall Stewart return; 2460f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2461f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2462f8829a4aSRandall Stewart } /* while */ 2463f8829a4aSRandall Stewart } 2464f8829a4aSRandall Stewart 2465f8829a4aSRandall Stewart /* FIX ME: need to verify return result for v6 address type if v6 disabled */ 2466f8829a4aSRandall Stewart /* 2467f8829a4aSRandall Stewart * checks to see if a specific address is in the initack address list returns 2468f8829a4aSRandall Stewart * 1 if found, 0 if not 2469f8829a4aSRandall Stewart */ 2470f8829a4aSRandall Stewart static uint32_t 2471f8829a4aSRandall Stewart sctp_addr_in_initack(struct sctp_tcb *stcb, struct mbuf *m, uint32_t offset, 2472f8829a4aSRandall Stewart uint32_t length, struct sockaddr *sa) 2473f8829a4aSRandall Stewart { 2474f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2475f8829a4aSRandall Stewart uint16_t plen, ptype; 2476f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2477f8829a4aSRandall Stewart struct sockaddr_in *sin; 2478f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2479f8829a4aSRandall Stewart 2480f8829a4aSRandall Stewart #ifdef INET6 248142551e99SRandall Stewart struct sockaddr_in6 *sin6; 2482f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 248342551e99SRandall Stewart struct sockaddr_in6 sin6_tmp; 2484f8829a4aSRandall Stewart 2485f8829a4aSRandall Stewart #endif /* INET6 */ 2486f8829a4aSRandall Stewart 2487f8829a4aSRandall Stewart if ( 2488f8829a4aSRandall Stewart #ifdef INET6 2489f8829a4aSRandall Stewart (sa->sa_family != AF_INET6) && 2490f8829a4aSRandall Stewart #endif /* INET6 */ 2491f8829a4aSRandall Stewart (sa->sa_family != AF_INET)) 2492f8829a4aSRandall Stewart return (0); 2493f8829a4aSRandall Stewart 2494ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "find_initack_addr: starting search for "); 2495ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 2496f8829a4aSRandall Stewart /* convert to upper bound */ 2497f8829a4aSRandall Stewart length += offset; 2498f8829a4aSRandall Stewart 2499f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2500ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2501ad81507eSRandall Stewart "find_initack_addr: invalid offset?\n"); 2502f8829a4aSRandall Stewart return (0); 2503f8829a4aSRandall Stewart } 2504f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2505f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2506f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2507f8829a4aSRandall Stewart while (ph != NULL) { 2508f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2509f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2510f8829a4aSRandall Stewart #ifdef INET6 2511f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS && sa->sa_family == AF_INET6) { 2512f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2513f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2514f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2515f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2516f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2517f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2518ad81507eSRandall Stewart (ph == NULL) || 2519ad81507eSRandall Stewart (a6p == NULL)) { 2520f8829a4aSRandall Stewart return (0); 2521f8829a4aSRandall Stewart } 2522f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 2523f8829a4aSRandall Stewart if (IN6_IS_SCOPE_LINKLOCAL(&sin6->sin6_addr)) { 2524f8829a4aSRandall Stewart /* create a copy and clear scope */ 2525f8829a4aSRandall Stewart memcpy(&sin6_tmp, sin6, 2526f8829a4aSRandall Stewart sizeof(struct sockaddr_in6)); 2527f8829a4aSRandall Stewart sin6 = &sin6_tmp; 2528f8829a4aSRandall Stewart in6_clearscope(&sin6->sin6_addr); 2529f8829a4aSRandall Stewart } 2530f8829a4aSRandall Stewart if (memcmp(&sin6->sin6_addr, a6p->addr, 2531f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0) { 2532f8829a4aSRandall Stewart /* found it */ 2533f8829a4aSRandall Stewart return (1); 2534f8829a4aSRandall Stewart } 2535f8829a4aSRandall Stewart } else 2536f8829a4aSRandall Stewart #endif /* INET6 */ 2537f8829a4aSRandall Stewart 2538f8829a4aSRandall Stewart if (ptype == SCTP_IPV4_ADDRESS && 2539f8829a4aSRandall Stewart sa->sa_family == AF_INET) { 2540f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 2541f8829a4aSRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, 2542f8829a4aSRandall Stewart offset, sizeof(struct sctp_ipv4addr_param), 2543f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2544f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2545ad81507eSRandall Stewart (ph == NULL) || 2546ad81507eSRandall Stewart (a4p == NULL)) { 2547f8829a4aSRandall Stewart return (0); 2548f8829a4aSRandall Stewart } 2549f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 2550f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == a4p->addr) { 2551f8829a4aSRandall Stewart /* found it */ 2552f8829a4aSRandall Stewart return (1); 2553f8829a4aSRandall Stewart } 2554f8829a4aSRandall Stewart } 2555f8829a4aSRandall Stewart /* get next parameter */ 2556f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2557f8829a4aSRandall Stewart if (offset + sizeof(struct sctp_paramhdr) > length) 2558f8829a4aSRandall Stewart return (0); 2559f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *) 2560f8829a4aSRandall Stewart sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), 2561f8829a4aSRandall Stewart (uint8_t *) & tmp_param); 2562f8829a4aSRandall Stewart } /* while */ 2563f8829a4aSRandall Stewart /* not found! */ 2564f8829a4aSRandall Stewart return (0); 2565f8829a4aSRandall Stewart } 2566f8829a4aSRandall Stewart 2567f8829a4aSRandall Stewart /* 2568f8829a4aSRandall Stewart * makes sure that the current endpoint local addr list is consistent with 2569f8829a4aSRandall Stewart * the new association (eg. subset bound, asconf allowed) adds addresses as 2570f8829a4aSRandall Stewart * necessary 2571f8829a4aSRandall Stewart */ 2572f8829a4aSRandall Stewart static void 2573f8829a4aSRandall Stewart sctp_check_address_list_ep(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2574f8829a4aSRandall Stewart int length, struct sockaddr *init_addr) 2575f8829a4aSRandall Stewart { 2576f8829a4aSRandall Stewart struct sctp_laddr *laddr; 2577f8829a4aSRandall Stewart 2578f8829a4aSRandall Stewart /* go through the endpoint list */ 2579f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 2580f8829a4aSRandall Stewart /* be paranoid and validate the laddr */ 2581f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 2582ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2583ad81507eSRandall Stewart "check_addr_list_ep: laddr->ifa is NULL"); 2584f8829a4aSRandall Stewart continue; 2585f8829a4aSRandall Stewart } 258642551e99SRandall Stewart if (laddr->ifa == NULL) { 2587ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "check_addr_list_ep: laddr->ifa->ifa_addr is NULL"); 2588f8829a4aSRandall Stewart continue; 2589f8829a4aSRandall Stewart } 2590f8829a4aSRandall Stewart /* do i have it implicitly? */ 259142551e99SRandall Stewart if (sctp_cmpaddr(&laddr->ifa->address.sa, init_addr)) { 2592f8829a4aSRandall Stewart continue; 2593f8829a4aSRandall Stewart } 2594f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2595f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 259642551e99SRandall Stewart &laddr->ifa->address.sa)) { 2597f8829a4aSRandall Stewart /* try to add it */ 2598f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, laddr->ifa, 2599f8829a4aSRandall Stewart SCTP_ADD_IP_ADDRESS); 2600f8829a4aSRandall Stewart } 2601f8829a4aSRandall Stewart } 2602f8829a4aSRandall Stewart } 2603f8829a4aSRandall Stewart 2604f8829a4aSRandall Stewart /* 2605f8829a4aSRandall Stewart * makes sure that the current kernel address list is consistent with the new 2606f8829a4aSRandall Stewart * association (with all addrs bound) adds addresses as necessary 2607f8829a4aSRandall Stewart */ 2608f8829a4aSRandall Stewart static void 2609f8829a4aSRandall Stewart sctp_check_address_list_all(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2610f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2611f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2612f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2613f8829a4aSRandall Stewart { 261442551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 261542551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 261642551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 261742551e99SRandall Stewart uint32_t vrf_id; 2618f8829a4aSRandall Stewart 2619bff64a4dSRandall Stewart if (stcb) { 2620bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2621bff64a4dSRandall Stewart } else { 2622ad81507eSRandall Stewart return; 2623bff64a4dSRandall Stewart } 262442551e99SRandall Stewart vrf = sctp_find_vrf(vrf_id); 262542551e99SRandall Stewart if (vrf == NULL) { 262642551e99SRandall Stewart return; 262742551e99SRandall Stewart } 2628f8829a4aSRandall Stewart /* go through all our known interfaces */ 262942551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 263042551e99SRandall Stewart if (loopback_scope == 0 && SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 2631f8829a4aSRandall Stewart /* skip loopback interface */ 2632f8829a4aSRandall Stewart continue; 2633f8829a4aSRandall Stewart } 2634f8829a4aSRandall Stewart /* go through each interface address */ 263542551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 2636f8829a4aSRandall Stewart /* do i have it implicitly? */ 263742551e99SRandall Stewart if (sctp_cmpaddr(&sctp_ifa->address.sa, init_addr)) { 2638f8829a4aSRandall Stewart continue; 2639f8829a4aSRandall Stewart } 2640f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2641f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 264242551e99SRandall Stewart &sctp_ifa->address.sa)) { 2643f8829a4aSRandall Stewart /* try to add it */ 2644f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, 264542551e99SRandall Stewart sctp_ifa, SCTP_ADD_IP_ADDRESS); 2646f8829a4aSRandall Stewart } 2647f8829a4aSRandall Stewart } /* end foreach ifa */ 2648f8829a4aSRandall Stewart } /* end foreach ifn */ 2649f8829a4aSRandall Stewart } 2650f8829a4aSRandall Stewart 2651f8829a4aSRandall Stewart /* 2652f8829a4aSRandall Stewart * validates an init-ack chunk (from a cookie-echo) with current addresses 2653f8829a4aSRandall Stewart * adds addresses from the init-ack into our local address list, if needed 2654f8829a4aSRandall Stewart * queues asconf adds/deletes addresses as needed and makes appropriate list 2655f8829a4aSRandall Stewart * changes for source address selection m, offset: points to the start of the 2656f8829a4aSRandall Stewart * address list in an init-ack chunk length: total length of the address 2657f8829a4aSRandall Stewart * params only init_addr: address where my INIT-ACK was sent from 2658f8829a4aSRandall Stewart */ 2659f8829a4aSRandall Stewart void 2660f8829a4aSRandall Stewart sctp_check_address_list(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2661f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2662f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2663f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2664f8829a4aSRandall Stewart { 2665f8829a4aSRandall Stewart /* process the local addresses in the initack */ 2666f8829a4aSRandall Stewart sctp_process_initack_addresses(stcb, m, offset, length); 2667f8829a4aSRandall Stewart 2668f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) { 2669f8829a4aSRandall Stewart /* bound all case */ 2670f8829a4aSRandall Stewart sctp_check_address_list_all(stcb, m, offset, length, init_addr, 2671f8829a4aSRandall Stewart local_scope, site_scope, ipv4_scope, loopback_scope); 2672f8829a4aSRandall Stewart } else { 2673f8829a4aSRandall Stewart /* subset bound case */ 2674f8829a4aSRandall Stewart if (sctp_is_feature_on(stcb->sctp_ep, 2675f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) { 2676f8829a4aSRandall Stewart /* asconf's allowed */ 2677f8829a4aSRandall Stewart sctp_check_address_list_ep(stcb, m, offset, length, 2678f8829a4aSRandall Stewart init_addr); 2679f8829a4aSRandall Stewart } 2680f8829a4aSRandall Stewart /* else, no asconfs allowed, so what we sent is what we get */ 2681f8829a4aSRandall Stewart } 2682f8829a4aSRandall Stewart } 2683f8829a4aSRandall Stewart 2684f8829a4aSRandall Stewart /* 2685f8829a4aSRandall Stewart * sctp_bindx() support 2686f8829a4aSRandall Stewart */ 2687f8829a4aSRandall Stewart uint32_t 26883c503c28SRandall Stewart sctp_addr_mgmt_ep_sa(struct sctp_inpcb *inp, struct sockaddr *sa, 268980fefe0aSRandall Stewart uint32_t type, uint32_t vrf_id, struct sctp_ifa *sctp_ifap) 2690f8829a4aSRandall Stewart { 269142551e99SRandall Stewart struct sctp_ifa *ifa; 2692f8829a4aSRandall Stewart 269342551e99SRandall Stewart if (sa->sa_len == 0) { 2694f8829a4aSRandall Stewart return (EINVAL); 269542551e99SRandall Stewart } 269680fefe0aSRandall Stewart if (sctp_ifap) { 269780fefe0aSRandall Stewart ifa = sctp_ifap; 269880fefe0aSRandall Stewart } else if (type == SCTP_ADD_IP_ADDRESS) { 269942551e99SRandall Stewart /* For an add the address MUST be on the system */ 270042551e99SRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 270142551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 270242551e99SRandall Stewart /* For a delete we need to find it in the inp */ 270342551e99SRandall Stewart ifa = sctp_find_ifa_in_ep(inp, sa, 0); 270442551e99SRandall Stewart } else { 270542551e99SRandall Stewart ifa = NULL; 270642551e99SRandall Stewart } 2707f8829a4aSRandall Stewart if (ifa != NULL) { 2708f8829a4aSRandall Stewart /* add this address */ 270942551e99SRandall Stewart struct sctp_asconf_iterator *asc; 271042551e99SRandall Stewart struct sctp_laddr *wi; 271142551e99SRandall Stewart 271242551e99SRandall Stewart SCTP_MALLOC(asc, struct sctp_asconf_iterator *, 27133c503c28SRandall Stewart sizeof(struct sctp_asconf_iterator), 2714207304d4SRandall Stewart SCTP_M_ASC_IT); 271542551e99SRandall Stewart if (asc == NULL) { 271642551e99SRandall Stewart return (ENOMEM); 271742551e99SRandall Stewart } 27183c503c28SRandall Stewart wi = SCTP_ZONE_GET(sctppcbinfo.ipi_zone_laddr, 27193c503c28SRandall Stewart struct sctp_laddr); 272042551e99SRandall Stewart if (wi == NULL) { 2721207304d4SRandall Stewart SCTP_FREE(asc, SCTP_M_ASC_IT); 272242551e99SRandall Stewart return (ENOMEM); 272342551e99SRandall Stewart } 272442551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 272542551e99SRandall Stewart sctp_add_local_addr_ep(inp, ifa, type); 272642551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 272742551e99SRandall Stewart struct sctp_laddr *laddr; 272842551e99SRandall Stewart 27293c503c28SRandall Stewart if (inp->laddr_count < 2) { 27303c503c28SRandall Stewart /* can't delete the last local address */ 2731eacc51c5SRandall Stewart SCTP_FREE(asc, SCTP_M_ASC_IT); 2732eacc51c5SRandall Stewart SCTP_ZONE_FREE(sctppcbinfo.ipi_zone_laddr, wi); 27333c503c28SRandall Stewart return (EINVAL); 27343c503c28SRandall Stewart } 27353c503c28SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, 27363c503c28SRandall Stewart sctp_nxt_addr) { 273742551e99SRandall Stewart if (ifa == laddr->ifa) { 273842551e99SRandall Stewart /* Mark in the delete */ 273942551e99SRandall Stewart laddr->action = type; 274042551e99SRandall Stewart } 274142551e99SRandall Stewart } 274242551e99SRandall Stewart } 274342551e99SRandall Stewart LIST_INIT(&asc->list_of_work); 274442551e99SRandall Stewart asc->cnt = 1; 274542551e99SRandall Stewart SCTP_INCR_LADDR_COUNT(); 274642551e99SRandall Stewart wi->ifa = ifa; 274742551e99SRandall Stewart wi->action = type; 274842551e99SRandall Stewart atomic_add_int(&ifa->refcount, 1); 274942551e99SRandall Stewart LIST_INSERT_HEAD(&asc->list_of_work, wi, sctp_nxt_addr); 27501b649582SRandall Stewart (void)sctp_initiate_iterator(sctp_asconf_iterator_ep, 27511b649582SRandall Stewart sctp_asconf_iterator_stcb, 27521b649582SRandall Stewart sctp_asconf_iterator_ep_end, 275342551e99SRandall Stewart SCTP_PCB_ANY_FLAGS, 27543c503c28SRandall Stewart SCTP_PCB_ANY_FEATURES, 27551b649582SRandall Stewart SCTP_ASOC_ANY_STATE, 27561b649582SRandall Stewart (void *)asc, 0, 27571b649582SRandall Stewart sctp_asconf_iterator_end, inp, 0); 2758f8829a4aSRandall Stewart } else { 2759f8829a4aSRandall Stewart /* invalid address! */ 2760f8829a4aSRandall Stewart return (EADDRNOTAVAIL); 2761f8829a4aSRandall Stewart } 2762f8829a4aSRandall Stewart return (0); 2763f8829a4aSRandall Stewart } 2764