1f8829a4aSRandall Stewart /*- 2b1006367SRandall Stewart * Copyright (c) 2001-2007, by Cisco Systems, Inc. All rights reserved. 3f8829a4aSRandall Stewart * 4f8829a4aSRandall Stewart * Redistribution and use in source and binary forms, with or without 5f8829a4aSRandall Stewart * modification, are permitted provided that the following conditions are met: 6f8829a4aSRandall Stewart * 7f8829a4aSRandall Stewart * a) Redistributions of source code must retain the above copyright notice, 8f8829a4aSRandall Stewart * this list of conditions and the following disclaimer. 9f8829a4aSRandall Stewart * 10f8829a4aSRandall Stewart * b) Redistributions in binary form must reproduce the above copyright 11f8829a4aSRandall Stewart * notice, this list of conditions and the following disclaimer in 12f8829a4aSRandall Stewart * the documentation and/or other materials provided with the distribution. 13f8829a4aSRandall Stewart * 14f8829a4aSRandall Stewart * c) Neither the name of Cisco Systems, Inc. nor the names of its 15f8829a4aSRandall Stewart * contributors may be used to endorse or promote products derived 16f8829a4aSRandall Stewart * from this software without specific prior written permission. 17f8829a4aSRandall Stewart * 18f8829a4aSRandall Stewart * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 19f8829a4aSRandall Stewart * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, 20f8829a4aSRandall Stewart * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 21f8829a4aSRandall Stewart * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE 22f8829a4aSRandall Stewart * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 23f8829a4aSRandall Stewart * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 24f8829a4aSRandall Stewart * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 25f8829a4aSRandall Stewart * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 26f8829a4aSRandall Stewart * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 27f8829a4aSRandall Stewart * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF 28f8829a4aSRandall Stewart * THE POSSIBILITY OF SUCH DAMAGE. 29f8829a4aSRandall Stewart */ 30f8829a4aSRandall Stewart 31f8829a4aSRandall Stewart /* $KAME: sctp_asconf.c,v 1.24 2005/03/06 16:04:16 itojun Exp $ */ 32f8829a4aSRandall Stewart 33f8829a4aSRandall Stewart #include <sys/cdefs.h> 34cef8ad06SRandall Stewart __FBSDID("$FreeBSD$"); 35f8829a4aSRandall Stewart #include <netinet/sctp_os.h> 36f8829a4aSRandall Stewart #include <netinet/sctp_var.h> 3742551e99SRandall Stewart #include <netinet/sctp_sysctl.h> 38f8829a4aSRandall Stewart #include <netinet/sctp_pcb.h> 39f8829a4aSRandall Stewart #include <netinet/sctp_header.h> 40f8829a4aSRandall Stewart #include <netinet/sctputil.h> 41f8829a4aSRandall Stewart #include <netinet/sctp_output.h> 42f8829a4aSRandall Stewart #include <netinet/sctp_asconf.h> 43f8829a4aSRandall Stewart 44f8829a4aSRandall Stewart /* 45f8829a4aSRandall Stewart * debug flags: 46f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF1: protocol info, general info and errors 47f8829a4aSRandall Stewart * SCTP_DEBUG_ASCONF2: detailed info 48f8829a4aSRandall Stewart */ 49f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 50f8829a4aSRandall Stewart #endif /* SCTP_DEBUG */ 51f8829a4aSRandall Stewart 52f8829a4aSRandall Stewart 53ad81507eSRandall Stewart static void 54f8829a4aSRandall Stewart sctp_asconf_get_source_ip(struct mbuf *m, struct sockaddr *sa) 55f8829a4aSRandall Stewart { 56f8829a4aSRandall Stewart struct ip *iph; 57f8829a4aSRandall Stewart struct sockaddr_in *sin; 58f8829a4aSRandall Stewart 59f8829a4aSRandall Stewart #ifdef INET6 60f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 61f8829a4aSRandall Stewart 62f8829a4aSRandall Stewart #endif 63f8829a4aSRandall Stewart 64f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 65f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 66f8829a4aSRandall Stewart /* IPv4 source */ 67f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 68f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 69f8829a4aSRandall Stewart sin->sin_family = AF_INET; 70f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 71f8829a4aSRandall Stewart sin->sin_port = 0; 72f8829a4aSRandall Stewart sin->sin_addr.s_addr = iph->ip_src.s_addr; 73ad81507eSRandall Stewart return; 74f8829a4aSRandall Stewart } 75f8829a4aSRandall Stewart #ifdef INET6 76f8829a4aSRandall Stewart else if (iph->ip_v == (IPV6_VERSION >> 4)) { 77f8829a4aSRandall Stewart /* IPv6 source */ 78f8829a4aSRandall Stewart struct ip6_hdr *ip6; 79f8829a4aSRandall Stewart 80f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 81f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 82f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 83f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 84f8829a4aSRandall Stewart sin6->sin6_port = 0; 85f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 86f8829a4aSRandall Stewart sin6->sin6_addr = ip6->ip6_src; 87ad81507eSRandall Stewart return; 88f8829a4aSRandall Stewart } 89f8829a4aSRandall Stewart #endif /* INET6 */ 90f8829a4aSRandall Stewart else 91ad81507eSRandall Stewart return; 92f8829a4aSRandall Stewart } 93f8829a4aSRandall Stewart 94f8829a4aSRandall Stewart /* 95f8829a4aSRandall Stewart * draft-ietf-tsvwg-addip-sctp 96f8829a4aSRandall Stewart * 97f8829a4aSRandall Stewart * Address management only currently supported For the bound all case: the asoc 98f8829a4aSRandall Stewart * local addr list is always a "DO NOT USE" list For the subset bound case: 99f8829a4aSRandall Stewart * If ASCONFs are allowed: the endpoint local addr list is the usable address 100f8829a4aSRandall Stewart * list the asoc local addr list is the "DO NOT USE" list If ASCONFs are not 101f8829a4aSRandall Stewart * allowed: the endpoint local addr list is the default usable list the asoc 102f8829a4aSRandall Stewart * local addr list is the usable address list 103f8829a4aSRandall Stewart * 104f8829a4aSRandall Stewart * An ASCONF parameter queue exists per asoc which holds the pending address 105f8829a4aSRandall Stewart * operations. Lists are updated upon receipt of ASCONF-ACK. 106f8829a4aSRandall Stewart * 107f8829a4aSRandall Stewart * Deleted addresses are always immediately removed from the lists as they will 108f8829a4aSRandall Stewart * (shortly) no longer exist in the kernel. We send ASCONFs as a courtesy, 109f8829a4aSRandall Stewart * only if allowed. 110f8829a4aSRandall Stewart */ 111f8829a4aSRandall Stewart 112f8829a4aSRandall Stewart /* 113f8829a4aSRandall Stewart * ASCONF parameter processing response_required: set if a reply is required 114f8829a4aSRandall Stewart * (eg. SUCCESS_REPORT) returns a mbuf to an "error" response parameter or 115f8829a4aSRandall Stewart * NULL/"success" if ok FIX: allocating this many mbufs on the fly is pretty 116f8829a4aSRandall Stewart * inefficient... 117f8829a4aSRandall Stewart */ 118f8829a4aSRandall Stewart static struct mbuf * 119f8829a4aSRandall Stewart sctp_asconf_success_response(uint32_t id) 120f8829a4aSRandall Stewart { 121f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 122f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 123f8829a4aSRandall Stewart 124f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_paramhdr), 125f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 126f8829a4aSRandall Stewart if (m_reply == NULL) { 127ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 128ad81507eSRandall Stewart "asconf_success_response: couldn't get mbuf!\n"); 129f8829a4aSRandall Stewart return NULL; 130f8829a4aSRandall Stewart } 131f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 132f8829a4aSRandall Stewart aph->correlation_id = id; 133f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_SUCCESS_REPORT); 134f8829a4aSRandall Stewart aph->ph.param_length = sizeof(struct sctp_asconf_paramhdr); 135139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 136f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 137f8829a4aSRandall Stewart 138f8829a4aSRandall Stewart return m_reply; 139f8829a4aSRandall Stewart } 140f8829a4aSRandall Stewart 141f8829a4aSRandall Stewart static struct mbuf * 142f8829a4aSRandall Stewart sctp_asconf_error_response(uint32_t id, uint16_t cause, uint8_t * error_tlv, 143f8829a4aSRandall Stewart uint16_t tlv_length) 144f8829a4aSRandall Stewart { 145f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 146f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 147f8829a4aSRandall Stewart struct sctp_error_cause *error; 148f8829a4aSRandall Stewart uint8_t *tlv; 149f8829a4aSRandall Stewart 150f8829a4aSRandall Stewart m_reply = sctp_get_mbuf_for_msg((sizeof(struct sctp_asconf_paramhdr) + 151f8829a4aSRandall Stewart tlv_length + 152f8829a4aSRandall Stewart sizeof(struct sctp_error_cause)), 153f8829a4aSRandall Stewart 0, M_DONTWAIT, 1, MT_DATA); 154f8829a4aSRandall Stewart if (m_reply == NULL) { 155ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 156ad81507eSRandall Stewart "asconf_error_response: couldn't get mbuf!\n"); 157f8829a4aSRandall Stewart return NULL; 158f8829a4aSRandall Stewart } 159f8829a4aSRandall Stewart aph = mtod(m_reply, struct sctp_asconf_paramhdr *); 160f8829a4aSRandall Stewart error = (struct sctp_error_cause *)(aph + 1); 161f8829a4aSRandall Stewart 162f8829a4aSRandall Stewart aph->correlation_id = id; 163f8829a4aSRandall Stewart aph->ph.param_type = htons(SCTP_ERROR_CAUSE_IND); 164f8829a4aSRandall Stewart error->code = htons(cause); 165f8829a4aSRandall Stewart error->length = tlv_length + sizeof(struct sctp_error_cause); 166f8829a4aSRandall Stewart aph->ph.param_length = error->length + 167f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr); 168f8829a4aSRandall Stewart 169f8829a4aSRandall Stewart if (aph->ph.param_length > MLEN) { 170ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 171ad81507eSRandall Stewart "asconf_error_response: tlv_length (%xh) too big\n", 172f8829a4aSRandall Stewart tlv_length); 173f8829a4aSRandall Stewart sctp_m_freem(m_reply); /* discard */ 174f8829a4aSRandall Stewart return NULL; 175f8829a4aSRandall Stewart } 176f8829a4aSRandall Stewart if (error_tlv != NULL) { 177f8829a4aSRandall Stewart tlv = (uint8_t *) (error + 1); 178f8829a4aSRandall Stewart memcpy(tlv, error_tlv, tlv_length); 179f8829a4aSRandall Stewart } 180139bc87fSRandall Stewart SCTP_BUF_LEN(m_reply) = aph->ph.param_length; 181f8829a4aSRandall Stewart error->length = htons(error->length); 182f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 183f8829a4aSRandall Stewart 184f8829a4aSRandall Stewart return m_reply; 185f8829a4aSRandall Stewart } 186f8829a4aSRandall Stewart 187f8829a4aSRandall Stewart static struct mbuf * 188f8829a4aSRandall Stewart sctp_process_asconf_add_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 189f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 190f8829a4aSRandall Stewart { 191f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 192f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 193f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 194f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 195f8829a4aSRandall Stewart struct sockaddr *sa; 196f8829a4aSRandall Stewart struct sockaddr_in *sin; 197f8829a4aSRandall Stewart int zero_address = 0; 198f8829a4aSRandall Stewart 199f8829a4aSRandall Stewart #ifdef INET6 200f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 201f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 202f8829a4aSRandall Stewart 203f8829a4aSRandall Stewart #endif /* INET6 */ 204f8829a4aSRandall Stewart 205f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 206f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 207f8829a4aSRandall Stewart #ifdef INET6 208f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 209f8829a4aSRandall Stewart #endif /* INET6 */ 210f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 211f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 212f8829a4aSRandall Stewart 213f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 214f8829a4aSRandall Stewart switch (param_type) { 215f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 216f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 217f8829a4aSRandall Stewart /* invalid param size */ 218f8829a4aSRandall Stewart return NULL; 219f8829a4aSRandall Stewart } 220f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 221f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 222f8829a4aSRandall Stewart sin->sin_family = AF_INET; 223f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 224f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 225f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 226f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 227f8829a4aSRandall Stewart zero_address = 1; 228ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 229ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 230f8829a4aSRandall Stewart break; 231f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 232f8829a4aSRandall Stewart #ifdef INET6 233f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 234f8829a4aSRandall Stewart /* invalid param size */ 235f8829a4aSRandall Stewart return NULL; 236f8829a4aSRandall Stewart } 237f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 238f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 239f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 240f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 241f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 242f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 243f8829a4aSRandall Stewart sizeof(struct in6_addr)); 244f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 245f8829a4aSRandall Stewart zero_address = 1; 246ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_add_ip: adding "); 247ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 248f8829a4aSRandall Stewart #else 249f8829a4aSRandall Stewart /* IPv6 not enabled! */ 250f8829a4aSRandall Stewart /* FIX ME: currently sends back an invalid param error */ 251f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 252f8829a4aSRandall Stewart SCTP_CAUSE_INVALID_PARAM, (uint8_t *) aph, aparam_length); 253ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 254ad81507eSRandall Stewart "process_asconf_add_ip: v6 disabled- skipping "); 255ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 256f8829a4aSRandall Stewart return m_reply; 257ad81507eSRandall Stewart #endif 258f8829a4aSRandall Stewart break; 259f8829a4aSRandall Stewart default: 260f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 261f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 262f8829a4aSRandall Stewart aparam_length); 263f8829a4aSRandall Stewart return m_reply; 264f8829a4aSRandall Stewart } /* end switch */ 265f8829a4aSRandall Stewart 266f8829a4aSRandall Stewart /* if 0.0.0.0/::0, add the source address instead */ 267139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 268f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 269f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 270ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 271ad81507eSRandall Stewart "process_asconf_add_ip: using source addr "); 272ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 273f8829a4aSRandall Stewart } 274f8829a4aSRandall Stewart /* add the address */ 275a5d547adSRandall Stewart if (sctp_add_remote_addr(stcb, sa, SCTP_DONOT_SETSCOPE, 276a5d547adSRandall Stewart SCTP_ADDR_DYNAMIC_ADDED) != 0) { 277ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 278ad81507eSRandall Stewart "process_asconf_add_ip: error adding address\n"); 279f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 280f8829a4aSRandall Stewart SCTP_CAUSE_RESOURCE_SHORTAGE, (uint8_t *) aph, 281f8829a4aSRandall Stewart aparam_length); 282f8829a4aSRandall Stewart } else { 283f8829a4aSRandall Stewart /* notify upper layer */ 284f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_ADD_IP, stcb, 0, sa); 285f8829a4aSRandall Stewart if (response_required) { 286f8829a4aSRandall Stewart m_reply = 287f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 288f8829a4aSRandall Stewart } 289a5d547adSRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, stcb, NULL, SCTP_FROM_SCTP_ASCONF + SCTP_LOC_1); 290f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_HEARTBEAT, stcb->sctp_ep, stcb, NULL); 291f8829a4aSRandall Stewart } 292f8829a4aSRandall Stewart 293f8829a4aSRandall Stewart return m_reply; 294f8829a4aSRandall Stewart } 295f8829a4aSRandall Stewart 296f8829a4aSRandall Stewart static int 297f8829a4aSRandall Stewart sctp_asconf_del_remote_addrs_except(struct sctp_tcb *stcb, 298f8829a4aSRandall Stewart struct sockaddr *src) 299f8829a4aSRandall Stewart { 300f8829a4aSRandall Stewart struct sctp_nets *src_net, *net; 301f8829a4aSRandall Stewart 302f8829a4aSRandall Stewart /* make sure the source address exists as a destination net */ 303f8829a4aSRandall Stewart src_net = sctp_findnet(stcb, src); 304f8829a4aSRandall Stewart if (src_net == NULL) { 305f8829a4aSRandall Stewart /* not found */ 306f8829a4aSRandall Stewart return -1; 307f8829a4aSRandall Stewart } 308f8829a4aSRandall Stewart /* delete all destination addresses except the source */ 309f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 310f8829a4aSRandall Stewart if (net != src_net) { 311f8829a4aSRandall Stewart /* delete this address */ 312f8829a4aSRandall Stewart sctp_remove_net(stcb, net); 313ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 314ad81507eSRandall Stewart "asconf_del_remote_addrs_except: deleting "); 315ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, 316ad81507eSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 317f8829a4aSRandall Stewart /* notify upper layer */ 318f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, 319f8829a4aSRandall Stewart (struct sockaddr *)&net->ro._l_addr); 320f8829a4aSRandall Stewart } 321f8829a4aSRandall Stewart } 322f8829a4aSRandall Stewart return 0; 323f8829a4aSRandall Stewart } 324f8829a4aSRandall Stewart 325f8829a4aSRandall Stewart static struct mbuf * 326f8829a4aSRandall Stewart sctp_process_asconf_delete_ip(struct mbuf *m, struct sctp_asconf_paramhdr *aph, 327f8829a4aSRandall Stewart struct sctp_tcb *stcb, int response_required) 328f8829a4aSRandall Stewart { 329f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 330f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 331f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 332f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 333f8829a4aSRandall Stewart struct sockaddr *sa; 334f8829a4aSRandall Stewart struct sockaddr_in *sin; 335f8829a4aSRandall Stewart int zero_address = 0; 336f8829a4aSRandall Stewart int result; 337f8829a4aSRandall Stewart 338f8829a4aSRandall Stewart #ifdef INET6 339f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 340f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 341f8829a4aSRandall Stewart 342f8829a4aSRandall Stewart #endif /* INET6 */ 343f8829a4aSRandall Stewart 344f8829a4aSRandall Stewart /* get the source IP address for src and 0.0.0.0/::0 delete checks */ 345f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, (struct sockaddr *)&sa_source); 346f8829a4aSRandall Stewart 347f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 348f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 349f8829a4aSRandall Stewart #ifdef INET6 350f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 351f8829a4aSRandall Stewart #endif /* INET6 */ 352f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 353f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 354f8829a4aSRandall Stewart 355f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 356f8829a4aSRandall Stewart switch (param_type) { 357f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 358f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 359f8829a4aSRandall Stewart /* invalid param size */ 360f8829a4aSRandall Stewart return NULL; 361f8829a4aSRandall Stewart } 362f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 363f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 364f8829a4aSRandall Stewart sin->sin_family = AF_INET; 365f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 366f8829a4aSRandall Stewart sin->sin_port = stcb->rport; 367f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 368f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 369f8829a4aSRandall Stewart zero_address = 1; 370ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 371ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 372ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 373f8829a4aSRandall Stewart break; 374f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 375f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 376f8829a4aSRandall Stewart /* invalid param size */ 377f8829a4aSRandall Stewart return NULL; 378f8829a4aSRandall Stewart } 379f8829a4aSRandall Stewart #ifdef INET6 380f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 381f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 382f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 383f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 384f8829a4aSRandall Stewart sin6->sin6_port = stcb->rport; 385f8829a4aSRandall Stewart memcpy(&sin6->sin6_addr, v6addr->addr, 386f8829a4aSRandall Stewart sizeof(struct in6_addr)); 387f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 388f8829a4aSRandall Stewart zero_address = 1; 389ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 390ad81507eSRandall Stewart "process_asconf_delete_ip: deleting "); 391ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 392f8829a4aSRandall Stewart #else 393f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 394ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 395ad81507eSRandall Stewart "process_asconf_delete_ip: v6 disabled- ignoring: "); 396ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 397f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 398f8829a4aSRandall Stewart return NULL; 399ad81507eSRandall Stewart #endif 400f8829a4aSRandall Stewart break; 401f8829a4aSRandall Stewart default: 402f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 403f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 404f8829a4aSRandall Stewart aparam_length); 405f8829a4aSRandall Stewart return m_reply; 406f8829a4aSRandall Stewart } 407f8829a4aSRandall Stewart 408f8829a4aSRandall Stewart /* make sure the source address is not being deleted */ 409f8829a4aSRandall Stewart if (sctp_cmpaddr(sa, (struct sockaddr *)&sa_source)) { 410f8829a4aSRandall Stewart /* trying to delete the source address! */ 411ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete source addr\n"); 412f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 413f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_SRC_ADDR, (uint8_t *) aph, 414f8829a4aSRandall Stewart aparam_length); 415f8829a4aSRandall Stewart return m_reply; 416f8829a4aSRandall Stewart } 417f8829a4aSRandall Stewart /* if deleting 0.0.0.0/::0, delete all addresses except src addr */ 418139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 419f8829a4aSRandall Stewart result = sctp_asconf_del_remote_addrs_except(stcb, 420f8829a4aSRandall Stewart (struct sockaddr *)&sa_source); 421f8829a4aSRandall Stewart 422f8829a4aSRandall Stewart if (result) { 423f8829a4aSRandall Stewart /* src address did not exist? */ 424ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: src addr does not exist?\n"); 425f8829a4aSRandall Stewart /* what error to reply with?? */ 426f8829a4aSRandall Stewart m_reply = 427f8829a4aSRandall Stewart sctp_asconf_error_response(aph->correlation_id, 428f8829a4aSRandall Stewart SCTP_CAUSE_REQUEST_REFUSED, (uint8_t *) aph, 429f8829a4aSRandall Stewart aparam_length); 430f8829a4aSRandall Stewart } else if (response_required) { 431f8829a4aSRandall Stewart m_reply = 432f8829a4aSRandall Stewart sctp_asconf_success_response(aph->correlation_id); 433f8829a4aSRandall Stewart } 434f8829a4aSRandall Stewart return m_reply; 435f8829a4aSRandall Stewart } 436f8829a4aSRandall Stewart /* delete the address */ 437f8829a4aSRandall Stewart result = sctp_del_remote_addr(stcb, sa); 438f8829a4aSRandall Stewart /* 439f8829a4aSRandall Stewart * note if result == -2, the address doesn't exist in the asoc but 440f8829a4aSRandall Stewart * since it's being deleted anyways, we just ack the delete -- but 441f8829a4aSRandall Stewart * this probably means something has already gone awry 442f8829a4aSRandall Stewart */ 443f8829a4aSRandall Stewart if (result == -1) { 444f8829a4aSRandall Stewart /* only one address in the asoc */ 445ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_delete_ip: tried to delete last IP addr!\n"); 446f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 447f8829a4aSRandall Stewart SCTP_CAUSE_DELETING_LAST_ADDR, (uint8_t *) aph, 448f8829a4aSRandall Stewart aparam_length); 449f8829a4aSRandall Stewart } else { 450f8829a4aSRandall Stewart if (response_required) { 451f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 452f8829a4aSRandall Stewart } 453f8829a4aSRandall Stewart /* notify upper layer */ 454f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_DELETE_IP, stcb, 0, sa); 455f8829a4aSRandall Stewart } 456f8829a4aSRandall Stewart return m_reply; 457f8829a4aSRandall Stewart } 458f8829a4aSRandall Stewart 459f8829a4aSRandall Stewart static struct mbuf * 460f8829a4aSRandall Stewart sctp_process_asconf_set_primary(struct mbuf *m, 461f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph, struct sctp_tcb *stcb, 462f8829a4aSRandall Stewart int response_required) 463f8829a4aSRandall Stewart { 464f8829a4aSRandall Stewart struct mbuf *m_reply = NULL; 465f8829a4aSRandall Stewart struct sockaddr_storage sa_source, sa_store; 466f8829a4aSRandall Stewart struct sctp_ipv4addr_param *v4addr; 467f8829a4aSRandall Stewart uint16_t param_type, param_length, aparam_length; 468f8829a4aSRandall Stewart struct sockaddr *sa; 469f8829a4aSRandall Stewart struct sockaddr_in *sin; 470f8829a4aSRandall Stewart int zero_address = 0; 471f8829a4aSRandall Stewart 472f8829a4aSRandall Stewart #ifdef INET6 473f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 474f8829a4aSRandall Stewart struct sctp_ipv6addr_param *v6addr; 475f8829a4aSRandall Stewart 476f8829a4aSRandall Stewart #endif /* INET6 */ 477f8829a4aSRandall Stewart 478f8829a4aSRandall Stewart aparam_length = ntohs(aph->ph.param_length); 479f8829a4aSRandall Stewart v4addr = (struct sctp_ipv4addr_param *)(aph + 1); 480f8829a4aSRandall Stewart #ifdef INET6 481f8829a4aSRandall Stewart v6addr = (struct sctp_ipv6addr_param *)(aph + 1); 482f8829a4aSRandall Stewart #endif /* INET6 */ 483f8829a4aSRandall Stewart param_type = ntohs(v4addr->ph.param_type); 484f8829a4aSRandall Stewart param_length = ntohs(v4addr->ph.param_length); 485f8829a4aSRandall Stewart 486f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_store; 487f8829a4aSRandall Stewart switch (param_type) { 488f8829a4aSRandall Stewart case SCTP_IPV4_ADDRESS: 489f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv4addr_param)) { 490f8829a4aSRandall Stewart /* invalid param size */ 491f8829a4aSRandall Stewart return NULL; 492f8829a4aSRandall Stewart } 493f8829a4aSRandall Stewart sin = (struct sockaddr_in *)&sa_store; 494f8829a4aSRandall Stewart bzero(sin, sizeof(*sin)); 495f8829a4aSRandall Stewart sin->sin_family = AF_INET; 496f8829a4aSRandall Stewart sin->sin_len = sizeof(struct sockaddr_in); 497f8829a4aSRandall Stewart sin->sin_addr.s_addr = v4addr->addr; 498f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == INADDR_ANY) 499f8829a4aSRandall Stewart zero_address = 1; 500ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 501ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 502f8829a4aSRandall Stewart break; 503f8829a4aSRandall Stewart case SCTP_IPV6_ADDRESS: 504f8829a4aSRandall Stewart if (param_length != sizeof(struct sctp_ipv6addr_param)) { 505f8829a4aSRandall Stewart /* invalid param size */ 506f8829a4aSRandall Stewart return NULL; 507f8829a4aSRandall Stewart } 508f8829a4aSRandall Stewart #ifdef INET6 509f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)&sa_store; 510f8829a4aSRandall Stewart bzero(sin6, sizeof(*sin6)); 511f8829a4aSRandall Stewart sin6->sin6_family = AF_INET6; 512f8829a4aSRandall Stewart sin6->sin6_len = sizeof(struct sockaddr_in6); 513f8829a4aSRandall Stewart memcpy((caddr_t)&sin6->sin6_addr, v6addr->addr, 514f8829a4aSRandall Stewart sizeof(struct in6_addr)); 515f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) 516f8829a4aSRandall Stewart zero_address = 1; 517ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "process_asconf_set_primary: "); 518ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 519f8829a4aSRandall Stewart #else 520f8829a4aSRandall Stewart /* IPv6 not enabled! No "action" needed; just ack it */ 521ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 522ad81507eSRandall Stewart "process_asconf_set_primary: v6 disabled- ignoring: "); 523ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 524f8829a4aSRandall Stewart /* just respond with a "success" ASCONF-ACK */ 525f8829a4aSRandall Stewart return NULL; 526ad81507eSRandall Stewart #endif 527f8829a4aSRandall Stewart break; 528f8829a4aSRandall Stewart default: 529f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 530f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 531f8829a4aSRandall Stewart aparam_length); 532f8829a4aSRandall Stewart return m_reply; 533f8829a4aSRandall Stewart } 534f8829a4aSRandall Stewart 535f8829a4aSRandall Stewart /* if 0.0.0.0/::0, use the source address instead */ 536139bc87fSRandall Stewart if (zero_address && sctp_nat_friendly) { 537f8829a4aSRandall Stewart sa = (struct sockaddr *)&sa_source; 538f8829a4aSRandall Stewart sctp_asconf_get_source_ip(m, sa); 539ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 540ad81507eSRandall Stewart "process_asconf_set_primary: using source addr "); 541ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 542f8829a4aSRandall Stewart } 543f8829a4aSRandall Stewart /* set the primary address */ 544f8829a4aSRandall Stewart if (sctp_set_primary_addr(stcb, sa, NULL) == 0) { 545ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 546ad81507eSRandall Stewart "process_asconf_set_primary: primary address set\n"); 547f8829a4aSRandall Stewart /* notify upper layer */ 548f8829a4aSRandall Stewart sctp_ulp_notify(SCTP_NOTIFY_ASCONF_SET_PRIMARY, stcb, 0, sa); 549f8829a4aSRandall Stewart 550f8829a4aSRandall Stewart if (response_required) { 551f8829a4aSRandall Stewart m_reply = sctp_asconf_success_response(aph->correlation_id); 552f8829a4aSRandall Stewart } 553f8829a4aSRandall Stewart } else { 554f8829a4aSRandall Stewart /* couldn't set the requested primary address! */ 555ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 556ad81507eSRandall Stewart "process_asconf_set_primary: set primary failed!\n"); 557f8829a4aSRandall Stewart /* must have been an invalid address, so report */ 558f8829a4aSRandall Stewart m_reply = sctp_asconf_error_response(aph->correlation_id, 559f8829a4aSRandall Stewart SCTP_CAUSE_UNRESOLVABLE_ADDR, (uint8_t *) aph, 560f8829a4aSRandall Stewart aparam_length); 561f8829a4aSRandall Stewart } 562f8829a4aSRandall Stewart 563f8829a4aSRandall Stewart return m_reply; 564f8829a4aSRandall Stewart } 565f8829a4aSRandall Stewart 566f8829a4aSRandall Stewart /* 567f8829a4aSRandall Stewart * handles an ASCONF chunk. 568f8829a4aSRandall Stewart * if all parameters are processed ok, send a plain (empty) ASCONF-ACK 569f8829a4aSRandall Stewart */ 570f8829a4aSRandall Stewart void 571f8829a4aSRandall Stewart sctp_handle_asconf(struct mbuf *m, unsigned int offset, 572f8829a4aSRandall Stewart struct sctp_asconf_chunk *cp, struct sctp_tcb *stcb) 573f8829a4aSRandall Stewart { 574f8829a4aSRandall Stewart struct sctp_association *asoc; 575f8829a4aSRandall Stewart uint32_t serial_num; 576f8829a4aSRandall Stewart struct mbuf *m_ack, *m_result, *m_tail; 577f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *ack_cp; 578f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph, *ack_aph; 579f8829a4aSRandall Stewart struct sctp_ipv6addr_param *p_addr; 580f8829a4aSRandall Stewart unsigned int asconf_limit; 581f8829a4aSRandall Stewart int error = 0; /* did an error occur? */ 582f8829a4aSRandall Stewart 583f8829a4aSRandall Stewart /* asconf param buffer */ 584f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 585f8829a4aSRandall Stewart 586f8829a4aSRandall Stewart /* verify minimum length */ 587f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_chunk)) { 588ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 589ad81507eSRandall Stewart "handle_asconf: chunk too small = %xh\n", 590f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 591f8829a4aSRandall Stewart return; 592f8829a4aSRandall Stewart } 593f8829a4aSRandall Stewart asoc = &stcb->asoc; 594f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 595f8829a4aSRandall Stewart 596f8829a4aSRandall Stewart if (serial_num == asoc->asconf_seq_in) { 597f8829a4aSRandall Stewart /* got a duplicate ASCONF */ 598ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 599ad81507eSRandall Stewart "handle_asconf: got duplicate serial number = %xh\n", 600f8829a4aSRandall Stewart serial_num); 601f8829a4aSRandall Stewart /* resend last ASCONF-ACK... */ 602f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 1); 603f8829a4aSRandall Stewart return; 604f8829a4aSRandall Stewart } else if (serial_num != (asoc->asconf_seq_in + 1)) { 605ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: incorrect serial number = %xh (expected next = %xh)\n", 606f8829a4aSRandall Stewart serial_num, asoc->asconf_seq_in + 1); 607f8829a4aSRandall Stewart return; 608f8829a4aSRandall Stewart } 609f8829a4aSRandall Stewart /* it's the expected "next" sequence number, so process it */ 610f8829a4aSRandall Stewart asoc->asconf_seq_in = serial_num; /* update sequence */ 611f8829a4aSRandall Stewart /* get length of all the param's in the ASCONF */ 612f8829a4aSRandall Stewart asconf_limit = offset + ntohs(cp->ch.chunk_length); 613ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 614ad81507eSRandall Stewart "handle_asconf: asconf_limit=%u, sequence=%xh\n", 615f8829a4aSRandall Stewart asconf_limit, serial_num); 616f8829a4aSRandall Stewart if (asoc->last_asconf_ack_sent != NULL) { 617f8829a4aSRandall Stewart /* free last ASCONF-ACK message sent */ 618f8829a4aSRandall Stewart sctp_m_freem(asoc->last_asconf_ack_sent); 619f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = NULL; 620f8829a4aSRandall Stewart } 621139bc87fSRandall Stewart m_ack = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_ack_chunk), 0, 622f8829a4aSRandall Stewart M_DONTWAIT, 1, MT_DATA); 623f8829a4aSRandall Stewart if (m_ack == NULL) { 624ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 625ad81507eSRandall Stewart "handle_asconf: couldn't get mbuf!\n"); 626f8829a4aSRandall Stewart return; 627f8829a4aSRandall Stewart } 628f8829a4aSRandall Stewart m_tail = m_ack; /* current reply chain's tail */ 629f8829a4aSRandall Stewart 630f8829a4aSRandall Stewart /* fill in ASCONF-ACK header */ 631f8829a4aSRandall Stewart ack_cp = mtod(m_ack, struct sctp_asconf_ack_chunk *); 632f8829a4aSRandall Stewart ack_cp->ch.chunk_type = SCTP_ASCONF_ACK; 633f8829a4aSRandall Stewart ack_cp->ch.chunk_flags = 0; 634f8829a4aSRandall Stewart ack_cp->serial_number = htonl(serial_num); 635f8829a4aSRandall Stewart /* set initial lengths (eg. just an ASCONF-ACK), ntohx at the end! */ 636139bc87fSRandall Stewart SCTP_BUF_LEN(m_ack) = sizeof(struct sctp_asconf_ack_chunk); 637f8829a4aSRandall Stewart ack_cp->ch.chunk_length = sizeof(struct sctp_asconf_ack_chunk); 638f8829a4aSRandall Stewart 639f8829a4aSRandall Stewart /* skip the lookup address parameter */ 640f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_chunk); 641f8829a4aSRandall Stewart p_addr = (struct sctp_ipv6addr_param *)sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), (uint8_t *) & aparam_buf); 642f8829a4aSRandall Stewart if (p_addr == NULL) { 643ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 644ad81507eSRandall Stewart "handle_asconf: couldn't get lookup addr!\n"); 645f8829a4aSRandall Stewart /* respond with a missing/invalid mandatory parameter error */ 646f8829a4aSRandall Stewart return; 647f8829a4aSRandall Stewart } 648f8829a4aSRandall Stewart /* param_length is already validated in process_control... */ 649f8829a4aSRandall Stewart offset += ntohs(p_addr->ph.param_length); /* skip lookup addr */ 650f8829a4aSRandall Stewart 651f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF-ACK */ 652f8829a4aSRandall Stewart ack_aph = (struct sctp_asconf_paramhdr *)(mtod(m_ack, caddr_t)+sizeof(struct sctp_asconf_ack_chunk)); 653f8829a4aSRandall Stewart if (ack_aph == NULL) { 654ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Gak in asconf2\n"); 655f8829a4aSRandall Stewart return; 656f8829a4aSRandall Stewart } 657f8829a4aSRandall Stewart /* get pointer to first asconf param in ASCONF */ 658f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, sizeof(struct sctp_asconf_paramhdr), (uint8_t *) & aparam_buf); 659f8829a4aSRandall Stewart if (aph == NULL) { 660ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Empty ASCONF received?\n"); 661f8829a4aSRandall Stewart goto send_reply; 662f8829a4aSRandall Stewart } 663f8829a4aSRandall Stewart /* process through all parameters */ 664f8829a4aSRandall Stewart while (aph != NULL) { 665f8829a4aSRandall Stewart unsigned int param_length, param_type; 666f8829a4aSRandall Stewart 667f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 668f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 669f8829a4aSRandall Stewart if (offset + param_length > asconf_limit) { 670f8829a4aSRandall Stewart /* parameter goes beyond end of chunk! */ 671f8829a4aSRandall Stewart sctp_m_freem(m_ack); 672f8829a4aSRandall Stewart return; 673f8829a4aSRandall Stewart } 674f8829a4aSRandall Stewart m_result = NULL; 675f8829a4aSRandall Stewart 676f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 677ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) larger than buffer size!\n", param_length); 678f8829a4aSRandall Stewart sctp_m_freem(m_ack); 679f8829a4aSRandall Stewart return; 680f8829a4aSRandall Stewart } 681f8829a4aSRandall Stewart if (param_length <= sizeof(struct sctp_paramhdr)) { 682ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: param length (%u) too short\n", param_length); 683f8829a4aSRandall Stewart sctp_m_freem(m_ack); 684f8829a4aSRandall Stewart } 685f8829a4aSRandall Stewart /* get the entire parameter */ 686f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 687f8829a4aSRandall Stewart if (aph == NULL) { 688ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: couldn't get entire param\n"); 689f8829a4aSRandall Stewart sctp_m_freem(m_ack); 690f8829a4aSRandall Stewart return; 691f8829a4aSRandall Stewart } 692f8829a4aSRandall Stewart switch (param_type) { 693f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 694f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 695f8829a4aSRandall Stewart m_result = sctp_process_asconf_add_ip(m, aph, stcb, 696f8829a4aSRandall Stewart error); 697f8829a4aSRandall Stewart break; 698f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 699f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 700f8829a4aSRandall Stewart m_result = sctp_process_asconf_delete_ip(m, aph, stcb, 701f8829a4aSRandall Stewart error); 702f8829a4aSRandall Stewart break; 703f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 704f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 705f8829a4aSRandall Stewart break; 706f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 707f8829a4aSRandall Stewart asoc->peer_supports_asconf = 1; 708f8829a4aSRandall Stewart m_result = sctp_process_asconf_set_primary(m, aph, 709f8829a4aSRandall Stewart stcb, error); 710f8829a4aSRandall Stewart break; 711f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 712f8829a4aSRandall Stewart /* not valid in an ASCONF chunk */ 713f8829a4aSRandall Stewart break; 714f8829a4aSRandall Stewart case SCTP_ULP_ADAPTATION: 715f8829a4aSRandall Stewart /* FIX */ 716f8829a4aSRandall Stewart break; 717f8829a4aSRandall Stewart default: 718f8829a4aSRandall Stewart if ((param_type & 0x8000) == 0) { 719f8829a4aSRandall Stewart /* Been told to STOP at this param */ 720f8829a4aSRandall Stewart asconf_limit = offset; 721f8829a4aSRandall Stewart /* 722f8829a4aSRandall Stewart * FIX FIX - We need to call 723f8829a4aSRandall Stewart * sctp_arethere_unrecognized_parameters() 724f8829a4aSRandall Stewart * to get a operr and send it for any 725f8829a4aSRandall Stewart * param's with the 0x4000 bit set OR do it 726f8829a4aSRandall Stewart * here ourselves... note we still must STOP 727f8829a4aSRandall Stewart * if the 0x8000 bit is clear. 728f8829a4aSRandall Stewart */ 729f8829a4aSRandall Stewart } 730f8829a4aSRandall Stewart /* unknown/invalid param type */ 731f8829a4aSRandall Stewart break; 732f8829a4aSRandall Stewart } /* switch */ 733f8829a4aSRandall Stewart 734f8829a4aSRandall Stewart /* add any (error) result to the reply mbuf chain */ 735f8829a4aSRandall Stewart if (m_result != NULL) { 736139bc87fSRandall Stewart SCTP_BUF_NEXT(m_tail) = m_result; 737f8829a4aSRandall Stewart m_tail = m_result; 738f8829a4aSRandall Stewart /* update lengths, make sure it's aligned too */ 739139bc87fSRandall Stewart SCTP_BUF_LEN(m_result) = SCTP_SIZE32(SCTP_BUF_LEN(m_result)); 740139bc87fSRandall Stewart ack_cp->ch.chunk_length += SCTP_BUF_LEN(m_result); 741f8829a4aSRandall Stewart /* set flag to force success reports */ 742f8829a4aSRandall Stewart error = 1; 743f8829a4aSRandall Stewart } 744f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 745f8829a4aSRandall Stewart /* update remaining ASCONF message length to process */ 746f8829a4aSRandall Stewart if (offset >= asconf_limit) { 747f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 748f8829a4aSRandall Stewart break; 749f8829a4aSRandall Stewart } 750f8829a4aSRandall Stewart /* get pointer to next asconf param */ 751f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 752f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), 753f8829a4aSRandall Stewart (uint8_t *) & aparam_buf); 754f8829a4aSRandall Stewart if (aph == NULL) { 755f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 756ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: can't get asconf param hdr!\n"); 757f8829a4aSRandall Stewart /* FIX ME - add error here... */ 758f8829a4aSRandall Stewart } 759ad81507eSRandall Stewart } 760f8829a4aSRandall Stewart 761f8829a4aSRandall Stewart send_reply: 762f8829a4aSRandall Stewart ack_cp->ch.chunk_length = htons(ack_cp->ch.chunk_length); 763f8829a4aSRandall Stewart /* save the ASCONF-ACK reply */ 764f8829a4aSRandall Stewart asoc->last_asconf_ack_sent = m_ack; 765f8829a4aSRandall Stewart 766f8829a4aSRandall Stewart /* see if last_control_chunk_from is set properly (use IP src addr) */ 767f8829a4aSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) { 768f8829a4aSRandall Stewart /* 769f8829a4aSRandall Stewart * this could happen if the source address was just newly 770f8829a4aSRandall Stewart * added 771f8829a4aSRandall Stewart */ 772f8829a4aSRandall Stewart struct ip *iph; 773f8829a4aSRandall Stewart struct sctphdr *sh; 774f8829a4aSRandall Stewart struct sockaddr_storage from_store; 775f8829a4aSRandall Stewart struct sockaddr *from = (struct sockaddr *)&from_store; 776f8829a4aSRandall Stewart 777ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: looking up net for IP source address\n"); 778f8829a4aSRandall Stewart /* pullup already done, IP options already stripped */ 779f8829a4aSRandall Stewart iph = mtod(m, struct ip *); 780f8829a4aSRandall Stewart sh = (struct sctphdr *)((caddr_t)iph + sizeof(*iph)); 781f8829a4aSRandall Stewart if (iph->ip_v == IPVERSION) { 782f8829a4aSRandall Stewart struct sockaddr_in *from4; 783f8829a4aSRandall Stewart 784f8829a4aSRandall Stewart from4 = (struct sockaddr_in *)&from_store; 785f8829a4aSRandall Stewart bzero(from4, sizeof(*from4)); 786f8829a4aSRandall Stewart from4->sin_family = AF_INET; 787f8829a4aSRandall Stewart from4->sin_len = sizeof(struct sockaddr_in); 788f8829a4aSRandall Stewart from4->sin_addr.s_addr = iph->ip_src.s_addr; 789f8829a4aSRandall Stewart from4->sin_port = sh->src_port; 790f8829a4aSRandall Stewart } else if (iph->ip_v == (IPV6_VERSION >> 4)) { 791f8829a4aSRandall Stewart struct ip6_hdr *ip6; 792f8829a4aSRandall Stewart struct sockaddr_in6 *from6; 793f8829a4aSRandall Stewart 794f8829a4aSRandall Stewart ip6 = mtod(m, struct ip6_hdr *); 795f8829a4aSRandall Stewart from6 = (struct sockaddr_in6 *)&from_store; 796f8829a4aSRandall Stewart bzero(from6, sizeof(*from6)); 797f8829a4aSRandall Stewart from6->sin6_family = AF_INET6; 798f8829a4aSRandall Stewart from6->sin6_len = sizeof(struct sockaddr_in6); 799f8829a4aSRandall Stewart from6->sin6_addr = ip6->ip6_src; 800f8829a4aSRandall Stewart from6->sin6_port = sh->src_port; 801f8829a4aSRandall Stewart /* Get the scopes in properly to the sin6 addr's */ 802f8829a4aSRandall Stewart /* we probably don't need these operations */ 803f8829a4aSRandall Stewart (void)sa6_recoverscope(from6); 804f8829a4aSRandall Stewart sa6_embedscope(from6, ip6_use_defzone); 805f8829a4aSRandall Stewart } else { 806f8829a4aSRandall Stewart /* unknown address type */ 807f8829a4aSRandall Stewart from = NULL; 808f8829a4aSRandall Stewart } 809f8829a4aSRandall Stewart if (from != NULL) { 810ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "Looking for IP source: "); 811ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, from); 812f8829a4aSRandall Stewart /* look up the from address */ 813f8829a4aSRandall Stewart stcb->asoc.last_control_chunk_from = sctp_findnet(stcb, from); 814f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 815ad81507eSRandall Stewart if (stcb->asoc.last_control_chunk_from == NULL) 816ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf: IP source address not found?!\n"); 817ad81507eSRandall Stewart #endif 818f8829a4aSRandall Stewart } 819f8829a4aSRandall Stewart } 820f8829a4aSRandall Stewart /* and send it (a new one) out... */ 821f8829a4aSRandall Stewart sctp_send_asconf_ack(stcb, 0); 822f8829a4aSRandall Stewart } 823f8829a4aSRandall Stewart 824f8829a4aSRandall Stewart /* 825f8829a4aSRandall Stewart * does the address match? returns 0 if not, 1 if so 826f8829a4aSRandall Stewart */ 827f8829a4aSRandall Stewart static uint32_t 828f8829a4aSRandall Stewart sctp_asconf_addr_match(struct sctp_asconf_addr *aa, struct sockaddr *sa) 829f8829a4aSRandall Stewart { 830f8829a4aSRandall Stewart #ifdef INET6 831f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 832f8829a4aSRandall Stewart /* IPv6 sa address */ 833f8829a4aSRandall Stewart /* XXX scopeid */ 834f8829a4aSRandall Stewart struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *)sa; 835f8829a4aSRandall Stewart 836f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) && 837f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin6->sin6_addr, 838f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0)) { 839f8829a4aSRandall Stewart return (1); 840f8829a4aSRandall Stewart } 841f8829a4aSRandall Stewart } else 842f8829a4aSRandall Stewart #endif /* INET6 */ 843f8829a4aSRandall Stewart if (sa->sa_family == AF_INET) { 844f8829a4aSRandall Stewart /* IPv4 sa address */ 845f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 846f8829a4aSRandall Stewart 847f8829a4aSRandall Stewart if ((aa->ap.addrp.ph.param_type == SCTP_IPV4_ADDRESS) && 848f8829a4aSRandall Stewart (memcmp(&aa->ap.addrp.addr, &sin->sin_addr, 849f8829a4aSRandall Stewart sizeof(struct in_addr)) == 0)) { 850f8829a4aSRandall Stewart return (1); 851f8829a4aSRandall Stewart } 852f8829a4aSRandall Stewart } 853f8829a4aSRandall Stewart return (0); 854f8829a4aSRandall Stewart } 855f8829a4aSRandall Stewart 856f8829a4aSRandall Stewart /* 857f8829a4aSRandall Stewart * Cleanup for non-responded/OP ERR'd ASCONF 858f8829a4aSRandall Stewart */ 859f8829a4aSRandall Stewart void 860f8829a4aSRandall Stewart sctp_asconf_cleanup(struct sctp_tcb *stcb, struct sctp_nets *net) 861f8829a4aSRandall Stewart { 862f8829a4aSRandall Stewart /* mark peer as ASCONF incapable */ 863f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 864f8829a4aSRandall Stewart /* 865f8829a4aSRandall Stewart * clear out any existing asconfs going out 866f8829a4aSRandall Stewart */ 867a5d547adSRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, SCTP_FROM_SCTP_ASCONF + SCTP_LOC_2); 868f8829a4aSRandall Stewart stcb->asoc.asconf_seq_out++; 869f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 870f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 871f8829a4aSRandall Stewart } 872f8829a4aSRandall Stewart 873f8829a4aSRandall Stewart /* 874f8829a4aSRandall Stewart * process an ADD/DELETE IP ack from peer. 87542551e99SRandall Stewart * addr corresponding sctp_ifa to the address being added/deleted. 876f8829a4aSRandall Stewart * type: SCTP_ADD_IP_ADDRESS or SCTP_DEL_IP_ADDRESS. 877f8829a4aSRandall Stewart * flag: 1=success, 0=failure. 878f8829a4aSRandall Stewart */ 879f8829a4aSRandall Stewart static void 88042551e99SRandall Stewart sctp_asconf_addr_mgmt_ack(struct sctp_tcb *stcb, struct sctp_ifa *addr, 881f8829a4aSRandall Stewart uint16_t type, uint32_t flag) 882f8829a4aSRandall Stewart { 883f8829a4aSRandall Stewart /* 884f8829a4aSRandall Stewart * do the necessary asoc list work- if we get a failure indication, 885f8829a4aSRandall Stewart * leave the address on the "do not use" asoc list if we get a 886f8829a4aSRandall Stewart * success indication, remove the address from the list 887f8829a4aSRandall Stewart */ 888f8829a4aSRandall Stewart /* 889f8829a4aSRandall Stewart * Note: this will only occur for ADD_IP_ADDRESS, since 890f8829a4aSRandall Stewart * DEL_IP_ADDRESS is never actually added to the list... 891f8829a4aSRandall Stewart */ 892f8829a4aSRandall Stewart if (flag) { 893f8829a4aSRandall Stewart /* success case, so remove from the list */ 894f8829a4aSRandall Stewart sctp_del_local_addr_assoc(stcb, addr); 895f8829a4aSRandall Stewart } 896f8829a4aSRandall Stewart /* else, leave it on the list */ 897f8829a4aSRandall Stewart } 898f8829a4aSRandall Stewart 899f8829a4aSRandall Stewart /* 900f8829a4aSRandall Stewart * add an asconf add/delete IP address parameter to the queue. 901f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 902f8829a4aSRandall Stewart * returns 0 if completed, non-zero if not completed. 903f8829a4aSRandall Stewart * NOTE: if adding, but delete already scheduled (and not yet sent out), 904f8829a4aSRandall Stewart * simply remove from queue. Same for deleting an address already scheduled 905f8829a4aSRandall Stewart * for add. If a duplicate operation is found, ignore the new one. 906f8829a4aSRandall Stewart */ 907f8829a4aSRandall Stewart static uint32_t 90842551e99SRandall Stewart sctp_asconf_queue_add(struct sctp_tcb *stcb, struct sctp_ifa *ifa, uint16_t type) 909f8829a4aSRandall Stewart { 910f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 911f8829a4aSRandall Stewart struct sockaddr *sa; 912f8829a4aSRandall Stewart 913f8829a4aSRandall Stewart /* see if peer supports ASCONF */ 914f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 915f8829a4aSRandall Stewart return (-1); 916f8829a4aSRandall Stewart } 917f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 918f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 919f8829a4aSRandall Stewart aa = aa_next) { 920f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 921f8829a4aSRandall Stewart /* address match? */ 92242551e99SRandall Stewart if (sctp_asconf_addr_match(aa, &ifa->address.sa) == 0) 923f8829a4aSRandall Stewart continue; 924f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 925f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 926f8829a4aSRandall Stewart return (-1); 927f8829a4aSRandall Stewart } 928f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 929f8829a4aSRandall Stewart if (aa->sent == 0 && 930f8829a4aSRandall Stewart /* add requested, delete already queued */ 931f8829a4aSRandall Stewart ((type == SCTP_ADD_IP_ADDRESS && 932f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) || 933f8829a4aSRandall Stewart /* delete requested, add already queued */ 934f8829a4aSRandall Stewart (type == SCTP_DEL_IP_ADDRESS && 935f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS))) { 936f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 937f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 938f8829a4aSRandall Stewart /* take the entry off the appropriate list */ 939f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aa->ifa, type, 1); 940f8829a4aSRandall Stewart /* free the entry */ 941bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 942f8829a4aSRandall Stewart SCTP_FREE(aa); 943f8829a4aSRandall Stewart return (-1); 944f8829a4aSRandall Stewart } 945f8829a4aSRandall Stewart } /* for each aa */ 946f8829a4aSRandall Stewart 947f8829a4aSRandall Stewart /* adding new request to the queue */ 948f8829a4aSRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), "AsconfAddr"); 949f8829a4aSRandall Stewart if (aa == NULL) { 950f8829a4aSRandall Stewart /* didn't get memory */ 951ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 952ad81507eSRandall Stewart "asconf_queue_add: failed to get memory!\n"); 953f8829a4aSRandall Stewart return (-1); 954f8829a4aSRandall Stewart } 955f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 956f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 957f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 958f8829a4aSRandall Stewart aa->ifa = ifa; 959bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 960f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 96142551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 962f8829a4aSRandall Stewart /* IPv6 address */ 963f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 964f8829a4aSRandall Stewart 96542551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sa; 966f8829a4aSRandall Stewart sa = (struct sockaddr *)sin6; 967f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 968f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 969f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = 970f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr) + 971f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param); 972f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 973f8829a4aSRandall Stewart sizeof(struct in6_addr)); 97442551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 975f8829a4aSRandall Stewart /* IPv4 address */ 97642551e99SRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)&ifa->address.sa; 977f8829a4aSRandall Stewart 978f8829a4aSRandall Stewart sa = (struct sockaddr *)sin; 979f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 980f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 981f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = 982f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr) + 983f8829a4aSRandall Stewart sizeof(struct sctp_ipv4addr_param); 984f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 985f8829a4aSRandall Stewart sizeof(struct in_addr)); 986f8829a4aSRandall Stewart } else { 987f8829a4aSRandall Stewart /* invalid family! */ 988ad81507eSRandall Stewart SCTP_FREE(aa); 989f8829a4aSRandall Stewart return (-1); 990f8829a4aSRandall Stewart } 991f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 992f8829a4aSRandall Stewart 993f8829a4aSRandall Stewart /* 994f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 995f8829a4aSRandall Stewart * add it to front of the pending queue 996f8829a4aSRandall Stewart */ 997f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 998f8829a4aSRandall Stewart /* add goes to the front of the queue */ 999f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1000ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, 1001ad81507eSRandall Stewart "asconf_queue_add: appended asconf ADD_IP_ADDRESS: "); 1002ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1003f8829a4aSRandall Stewart } else { 1004f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1005f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1006f8829a4aSRandall Stewart #ifdef SCTP_DEBUG 1007ad81507eSRandall Stewart if (sctp_debug_on && SCTP_DEBUG_ASCONF2) { 1008f8829a4aSRandall Stewart if (type == SCTP_DEL_IP_ADDRESS) { 1009ad81507eSRandall Stewart SCTP_PRINTF("asconf_queue_add: inserted asconf DEL_IP_ADDRESS: "); 1010ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1011f8829a4aSRandall Stewart } else { 1012ad81507eSRandall Stewart SCTP_PRINTF("asconf_queue_add: inserted asconf SET_PRIM_ADDR: "); 1013ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 1014f8829a4aSRandall Stewart } 1015f8829a4aSRandall Stewart } 1016ad81507eSRandall Stewart #endif 1017f8829a4aSRandall Stewart } 1018f8829a4aSRandall Stewart 1019f8829a4aSRandall Stewart return (0); 1020f8829a4aSRandall Stewart } 1021f8829a4aSRandall Stewart 1022f8829a4aSRandall Stewart /* 1023f8829a4aSRandall Stewart * add an asconf add/delete IP address parameter to the queue by addr. 1024f8829a4aSRandall Stewart * type = SCTP_ADD_IP_ADDRESS, SCTP_DEL_IP_ADDRESS, SCTP_SET_PRIM_ADDR. 1025f8829a4aSRandall Stewart * returns 0 if completed, non-zero if not completed. 1026f8829a4aSRandall Stewart * NOTE: if adding, but delete already scheduled (and not yet sent out), 1027f8829a4aSRandall Stewart * simply remove from queue. Same for deleting an address already scheduled 1028f8829a4aSRandall Stewart * for add. If a duplicate operation is found, ignore the new one. 1029f8829a4aSRandall Stewart */ 1030f8829a4aSRandall Stewart static uint32_t 1031f8829a4aSRandall Stewart sctp_asconf_queue_add_sa(struct sctp_tcb *stcb, struct sockaddr *sa, 1032f8829a4aSRandall Stewart uint16_t type) 1033f8829a4aSRandall Stewart { 1034bff64a4dSRandall Stewart struct sctp_ifa *ifa; 1035f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 103642551e99SRandall Stewart uint32_t vrf_id; 1037f8829a4aSRandall Stewart 1038ad81507eSRandall Stewart if (stcb == NULL) { 1039ad81507eSRandall Stewart return (-1); 1040ad81507eSRandall Stewart } 1041f8829a4aSRandall Stewart /* see if peer supports ASCONF */ 1042f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf == 0) { 1043f8829a4aSRandall Stewart return (-1); 1044f8829a4aSRandall Stewart } 1045f8829a4aSRandall Stewart /* make sure the request isn't already in the queue */ 1046f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1047f8829a4aSRandall Stewart aa = aa_next) { 1048f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1049f8829a4aSRandall Stewart /* address match? */ 1050f8829a4aSRandall Stewart if (sctp_asconf_addr_match(aa, sa) == 0) 1051f8829a4aSRandall Stewart continue; 1052f8829a4aSRandall Stewart /* is the request already in queue (sent or not) */ 1053f8829a4aSRandall Stewart if (aa->ap.aph.ph.param_type == type) { 1054f8829a4aSRandall Stewart return (-1); 1055f8829a4aSRandall Stewart } 1056f8829a4aSRandall Stewart /* is the negative request already in queue, and not sent */ 1057f8829a4aSRandall Stewart if (aa->sent == 1) 1058f8829a4aSRandall Stewart continue; 1059f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS && 1060f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 1061f8829a4aSRandall Stewart /* add requested, delete already queued */ 1062f8829a4aSRandall Stewart 1063f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1064f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 1065f8829a4aSRandall Stewart /* free the entry */ 1066bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 1067f8829a4aSRandall Stewart SCTP_FREE(aa); 1068f8829a4aSRandall Stewart return (-1); 1069f8829a4aSRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS && 1070f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_ADD_IP_ADDRESS) { 1071f8829a4aSRandall Stewart /* delete requested, add already queued */ 1072f8829a4aSRandall Stewart 1073f8829a4aSRandall Stewart /* delete the existing entry in the queue */ 1074f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aa, next); 1075f8829a4aSRandall Stewart /* take the entry off the appropriate list */ 1076f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aa->ifa, type, 1); 1077f8829a4aSRandall Stewart /* free the entry */ 1078bff64a4dSRandall Stewart sctp_free_ifa(aa->ifa); 1079f8829a4aSRandall Stewart SCTP_FREE(aa); 1080f8829a4aSRandall Stewart return (-1); 1081f8829a4aSRandall Stewart } 1082f8829a4aSRandall Stewart } /* for each aa */ 1083bff64a4dSRandall Stewart if (stcb) { 1084bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 1085bff64a4dSRandall Stewart } else { 1086bff64a4dSRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 1087bff64a4dSRandall Stewart } 1088f8829a4aSRandall Stewart 1089bff64a4dSRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 1090bff64a4dSRandall Stewart if (ifa == NULL) { 1091bff64a4dSRandall Stewart /* Invalid address */ 1092bff64a4dSRandall Stewart return (-1); 1093bff64a4dSRandall Stewart } 1094f8829a4aSRandall Stewart /* adding new request to the queue */ 1095f8829a4aSRandall Stewart SCTP_MALLOC(aa, struct sctp_asconf_addr *, sizeof(*aa), "AsconfAddr"); 1096f8829a4aSRandall Stewart if (aa == NULL) { 1097f8829a4aSRandall Stewart /* didn't get memory */ 1098ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1099ad81507eSRandall Stewart "asconf_queue_add_sa: failed to get memory!\n"); 1100f8829a4aSRandall Stewart return (-1); 1101f8829a4aSRandall Stewart } 1102f8829a4aSRandall Stewart /* fill in asconf address parameter fields */ 1103f8829a4aSRandall Stewart /* top level elements are "networked" during send */ 1104f8829a4aSRandall Stewart aa->ap.aph.ph.param_type = type; 1105bff64a4dSRandall Stewart aa->ifa = ifa; 1106bff64a4dSRandall Stewart atomic_add_int(&ifa->refcount, 1); 1107f8829a4aSRandall Stewart /* correlation_id filled in during send routine later... */ 1108f8829a4aSRandall Stewart if (sa->sa_family == AF_INET6) { 1109f8829a4aSRandall Stewart /* IPv6 address */ 1110f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1111f8829a4aSRandall Stewart 1112f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1113f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV6_ADDRESS; 1114f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv6addr_param)); 1115f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv6addr_param); 1116f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin6->sin6_addr, 1117f8829a4aSRandall Stewart sizeof(struct in6_addr)); 1118f8829a4aSRandall Stewart } else if (sa->sa_family == AF_INET) { 1119f8829a4aSRandall Stewart /* IPv4 address */ 1120f8829a4aSRandall Stewart struct sockaddr_in *sin = (struct sockaddr_in *)sa; 1121f8829a4aSRandall Stewart 1122f8829a4aSRandall Stewart aa->ap.addrp.ph.param_type = SCTP_IPV4_ADDRESS; 1123f8829a4aSRandall Stewart aa->ap.addrp.ph.param_length = (sizeof(struct sctp_ipv4addr_param)); 1124f8829a4aSRandall Stewart aa->ap.aph.ph.param_length = sizeof(struct sctp_asconf_paramhdr) + sizeof(struct sctp_ipv4addr_param); 1125f8829a4aSRandall Stewart memcpy(&aa->ap.addrp.addr, &sin->sin_addr, 1126f8829a4aSRandall Stewart sizeof(struct in_addr)); 1127f8829a4aSRandall Stewart } else { 1128f8829a4aSRandall Stewart /* invalid family! */ 112903b0b021SRandall Stewart SCTP_FREE(aa); 1130f8829a4aSRandall Stewart return (-1); 1131f8829a4aSRandall Stewart } 1132f8829a4aSRandall Stewart aa->sent = 0; /* clear sent flag */ 1133f8829a4aSRandall Stewart 1134f8829a4aSRandall Stewart /* 1135f8829a4aSRandall Stewart * if we are deleting an address it should go out last otherwise, 1136f8829a4aSRandall Stewart * add it to front of the pending queue 1137f8829a4aSRandall Stewart */ 1138f8829a4aSRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 1139f8829a4aSRandall Stewart /* add goes to the front of the queue */ 1140f8829a4aSRandall Stewart TAILQ_INSERT_HEAD(&stcb->asoc.asconf_queue, aa, next); 1141f8829a4aSRandall Stewart } else { 1142f8829a4aSRandall Stewart /* delete and set primary goes to the back of the queue */ 1143f8829a4aSRandall Stewart TAILQ_INSERT_TAIL(&stcb->asoc.asconf_queue, aa, next); 1144f8829a4aSRandall Stewart } 1145f8829a4aSRandall Stewart 1146f8829a4aSRandall Stewart return (0); 1147f8829a4aSRandall Stewart } 1148f8829a4aSRandall Stewart 1149f8829a4aSRandall Stewart /* 1150f8829a4aSRandall Stewart * find a specific asconf param on our "sent" queue 1151f8829a4aSRandall Stewart */ 1152f8829a4aSRandall Stewart static struct sctp_asconf_addr * 1153f8829a4aSRandall Stewart sctp_asconf_find_param(struct sctp_tcb *stcb, uint32_t correlation_id) 1154f8829a4aSRandall Stewart { 1155f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 1156f8829a4aSRandall Stewart 1157f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 1158f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id == correlation_id && 1159f8829a4aSRandall Stewart aa->sent == 1) { 1160f8829a4aSRandall Stewart /* found it */ 1161f8829a4aSRandall Stewart return (aa); 1162f8829a4aSRandall Stewart } 1163f8829a4aSRandall Stewart } 1164f8829a4aSRandall Stewart /* didn't find it */ 1165f8829a4aSRandall Stewart return (NULL); 1166f8829a4aSRandall Stewart } 1167f8829a4aSRandall Stewart 1168f8829a4aSRandall Stewart /* 1169f8829a4aSRandall Stewart * process an SCTP_ERROR_CAUSE_IND for a ASCONF-ACK parameter and do 1170f8829a4aSRandall Stewart * notifications based on the error response 1171f8829a4aSRandall Stewart */ 1172f8829a4aSRandall Stewart static void 1173f8829a4aSRandall Stewart sctp_asconf_process_error(struct sctp_tcb *stcb, 1174f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph) 1175f8829a4aSRandall Stewart { 1176f8829a4aSRandall Stewart struct sctp_error_cause *eh; 1177f8829a4aSRandall Stewart struct sctp_paramhdr *ph; 1178f8829a4aSRandall Stewart uint16_t param_type; 1179f8829a4aSRandall Stewart uint16_t error_code; 1180f8829a4aSRandall Stewart 1181f8829a4aSRandall Stewart eh = (struct sctp_error_cause *)(aph + 1); 1182f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)(eh + 1); 1183f8829a4aSRandall Stewart /* validate lengths */ 1184f8829a4aSRandall Stewart if (htons(eh->length) + sizeof(struct sctp_error_cause) > 1185f8829a4aSRandall Stewart htons(aph->ph.param_length)) { 1186f8829a4aSRandall Stewart /* invalid error cause length */ 1187ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1188ad81507eSRandall Stewart "asconf_process_error: cause element too long\n"); 1189f8829a4aSRandall Stewart return; 1190f8829a4aSRandall Stewart } 1191f8829a4aSRandall Stewart if (htons(ph->param_length) + sizeof(struct sctp_paramhdr) > 1192f8829a4aSRandall Stewart htons(eh->length)) { 1193f8829a4aSRandall Stewart /* invalid included TLV length */ 1194ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1195ad81507eSRandall Stewart "asconf_process_error: included TLV too long\n"); 1196f8829a4aSRandall Stewart return; 1197f8829a4aSRandall Stewart } 1198f8829a4aSRandall Stewart /* which error code ? */ 1199f8829a4aSRandall Stewart error_code = ntohs(eh->code); 1200f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1201f8829a4aSRandall Stewart /* FIX: this should go back up the REMOTE_ERROR ULP notify */ 1202f8829a4aSRandall Stewart switch (error_code) { 1203f8829a4aSRandall Stewart case SCTP_CAUSE_RESOURCE_SHORTAGE: 1204f8829a4aSRandall Stewart /* we allow ourselves to "try again" for this error */ 1205f8829a4aSRandall Stewart break; 1206f8829a4aSRandall Stewart default: 1207f8829a4aSRandall Stewart /* peer can't handle it... */ 1208f8829a4aSRandall Stewart switch (param_type) { 1209f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1210f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1211f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1212f8829a4aSRandall Stewart break; 1213f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1214f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1215f8829a4aSRandall Stewart break; 1216f8829a4aSRandall Stewart default: 1217f8829a4aSRandall Stewart break; 1218f8829a4aSRandall Stewart } 1219f8829a4aSRandall Stewart } 1220f8829a4aSRandall Stewart } 1221f8829a4aSRandall Stewart 1222f8829a4aSRandall Stewart /* 1223f8829a4aSRandall Stewart * process an asconf queue param aparam: parameter to process, will be 1224f8829a4aSRandall Stewart * removed from the queue flag: 1=success, 0=failure 1225f8829a4aSRandall Stewart */ 1226f8829a4aSRandall Stewart static void 1227f8829a4aSRandall Stewart sctp_asconf_process_param_ack(struct sctp_tcb *stcb, 1228f8829a4aSRandall Stewart struct sctp_asconf_addr *aparam, uint32_t flag) 1229f8829a4aSRandall Stewart { 1230f8829a4aSRandall Stewart uint16_t param_type; 1231f8829a4aSRandall Stewart 1232f8829a4aSRandall Stewart /* process this param */ 1233f8829a4aSRandall Stewart param_type = aparam->ap.aph.ph.param_type; 1234f8829a4aSRandall Stewart switch (param_type) { 1235f8829a4aSRandall Stewart case SCTP_ADD_IP_ADDRESS: 1236ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1237ad81507eSRandall Stewart "process_param_ack: added IP address\n"); 1238f8829a4aSRandall Stewart sctp_asconf_addr_mgmt_ack(stcb, aparam->ifa, param_type, flag); 1239f8829a4aSRandall Stewart break; 1240f8829a4aSRandall Stewart case SCTP_DEL_IP_ADDRESS: 1241ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1242ad81507eSRandall Stewart "process_param_ack: deleted IP address\n"); 1243f8829a4aSRandall Stewart /* nothing really to do... lists already updated */ 1244f8829a4aSRandall Stewart break; 1245f8829a4aSRandall Stewart case SCTP_SET_PRIM_ADDR: 1246f8829a4aSRandall Stewart /* nothing to do... peer may start using this addr */ 1247f8829a4aSRandall Stewart if (flag == 0) 1248f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1249f8829a4aSRandall Stewart break; 1250f8829a4aSRandall Stewart default: 1251f8829a4aSRandall Stewart /* should NEVER happen */ 1252f8829a4aSRandall Stewart break; 1253f8829a4aSRandall Stewart } 1254f8829a4aSRandall Stewart 1255f8829a4aSRandall Stewart /* remove the param and free it */ 1256f8829a4aSRandall Stewart TAILQ_REMOVE(&stcb->asoc.asconf_queue, aparam, next); 1257bff64a4dSRandall Stewart sctp_free_ifa(aparam->ifa); 1258f8829a4aSRandall Stewart SCTP_FREE(aparam); 1259f8829a4aSRandall Stewart } 1260f8829a4aSRandall Stewart 1261f8829a4aSRandall Stewart /* 1262f8829a4aSRandall Stewart * cleanup from a bad asconf ack parameter 1263f8829a4aSRandall Stewart */ 1264f8829a4aSRandall Stewart static void 1265f8829a4aSRandall Stewart sctp_asconf_ack_clear(struct sctp_tcb *stcb) 1266f8829a4aSRandall Stewart { 1267f8829a4aSRandall Stewart /* assume peer doesn't really know how to do asconfs */ 1268f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf = 0; 1269f8829a4aSRandall Stewart /* XXX we could free the pending queue here */ 1270f8829a4aSRandall Stewart } 1271f8829a4aSRandall Stewart 1272f8829a4aSRandall Stewart void 1273f8829a4aSRandall Stewart sctp_handle_asconf_ack(struct mbuf *m, int offset, 1274f8829a4aSRandall Stewart struct sctp_asconf_ack_chunk *cp, struct sctp_tcb *stcb, 1275f8829a4aSRandall Stewart struct sctp_nets *net) 1276f8829a4aSRandall Stewart { 1277f8829a4aSRandall Stewart struct sctp_association *asoc; 1278f8829a4aSRandall Stewart uint32_t serial_num; 1279f8829a4aSRandall Stewart uint16_t ack_length; 1280f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 1281f8829a4aSRandall Stewart struct sctp_asconf_addr *aa, *aa_next; 1282f8829a4aSRandall Stewart uint32_t last_error_id = 0; /* last error correlation id */ 1283f8829a4aSRandall Stewart uint32_t id; 1284f8829a4aSRandall Stewart struct sctp_asconf_addr *ap; 1285f8829a4aSRandall Stewart 1286f8829a4aSRandall Stewart /* asconf param buffer */ 1287f42a358aSRandall Stewart uint8_t aparam_buf[SCTP_PARAM_BUFFER_SIZE]; 1288f8829a4aSRandall Stewart 1289f8829a4aSRandall Stewart /* verify minimum length */ 1290f8829a4aSRandall Stewart if (ntohs(cp->ch.chunk_length) < sizeof(struct sctp_asconf_ack_chunk)) { 1291ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1292ad81507eSRandall Stewart "handle_asconf_ack: chunk too small = %xh\n", 1293f8829a4aSRandall Stewart ntohs(cp->ch.chunk_length)); 1294f8829a4aSRandall Stewart return; 1295f8829a4aSRandall Stewart } 1296f8829a4aSRandall Stewart asoc = &stcb->asoc; 1297f8829a4aSRandall Stewart serial_num = ntohl(cp->serial_number); 1298f8829a4aSRandall Stewart 1299f8829a4aSRandall Stewart /* 1300f8829a4aSRandall Stewart * NOTE: we may want to handle this differently- currently, we will 1301f8829a4aSRandall Stewart * abort when we get an ack for the expected serial number + 1 (eg. 1302f8829a4aSRandall Stewart * we didn't send it), process an ack normally if it is the expected 1303f8829a4aSRandall Stewart * serial number, and re-send the previous ack for *ALL* other 1304f8829a4aSRandall Stewart * serial numbers 1305f8829a4aSRandall Stewart */ 1306f8829a4aSRandall Stewart 1307f8829a4aSRandall Stewart /* 1308f8829a4aSRandall Stewart * if the serial number is the next expected, but I didn't send it, 1309f8829a4aSRandall Stewart * abort the asoc, since someone probably just hijacked us... 1310f8829a4aSRandall Stewart */ 1311f8829a4aSRandall Stewart if (serial_num == (asoc->asconf_seq_out + 1)) { 1312ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got unexpected next serial number! Aborting asoc!\n"); 1313f8829a4aSRandall Stewart sctp_abort_an_association(stcb->sctp_ep, stcb, 1314f8829a4aSRandall Stewart SCTP_CAUSE_ILLEGAL_ASCONF_ACK, NULL); 1315f8829a4aSRandall Stewart return; 1316f8829a4aSRandall Stewart } 1317f8829a4aSRandall Stewart if (serial_num != asoc->asconf_seq_out) { 1318f8829a4aSRandall Stewart /* got a duplicate/unexpected ASCONF-ACK */ 1319ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got duplicate/unexpected serial number = %xh (expected = %xh)\n", 1320ad81507eSRandall Stewart serial_num, asoc->asconf_seq_out); 1321f8829a4aSRandall Stewart return; 1322f8829a4aSRandall Stewart } 1323f8829a4aSRandall Stewart if (stcb->asoc.asconf_sent == 0) { 1324f8829a4aSRandall Stewart /* got a unexpected ASCONF-ACK for serial not in flight */ 1325ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "handle_asconf_ack: got serial number = %xh but not in flight\n", 1326ad81507eSRandall Stewart serial_num); 1327f8829a4aSRandall Stewart /* nothing to do... duplicate ACK received */ 1328f8829a4aSRandall Stewart return; 1329f8829a4aSRandall Stewart } 1330f8829a4aSRandall Stewart /* stop our timer */ 1331a5d547adSRandall Stewart sctp_timer_stop(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, stcb, net, SCTP_FROM_SCTP_ASCONF + SCTP_LOC_3); 1332f8829a4aSRandall Stewart 1333f8829a4aSRandall Stewart /* process the ASCONF-ACK contents */ 1334f8829a4aSRandall Stewart ack_length = ntohs(cp->ch.chunk_length) - 1335f8829a4aSRandall Stewart sizeof(struct sctp_asconf_ack_chunk); 1336f8829a4aSRandall Stewart offset += sizeof(struct sctp_asconf_ack_chunk); 1337f8829a4aSRandall Stewart /* process through all parameters */ 1338f8829a4aSRandall Stewart while (ack_length >= sizeof(struct sctp_asconf_paramhdr)) { 1339f8829a4aSRandall Stewart unsigned int param_length, param_type; 1340f8829a4aSRandall Stewart 1341f8829a4aSRandall Stewart /* get pointer to next asconf parameter */ 1342f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, 1343f8829a4aSRandall Stewart sizeof(struct sctp_asconf_paramhdr), aparam_buf); 1344f8829a4aSRandall Stewart if (aph == NULL) { 1345f8829a4aSRandall Stewart /* can't get an asconf paramhdr */ 1346f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1347f8829a4aSRandall Stewart return; 1348f8829a4aSRandall Stewart } 1349f8829a4aSRandall Stewart param_type = ntohs(aph->ph.param_type); 1350f8829a4aSRandall Stewart param_length = ntohs(aph->ph.param_length); 1351f8829a4aSRandall Stewart if (param_length > ack_length) { 1352f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1353f8829a4aSRandall Stewart return; 1354f8829a4aSRandall Stewart } 1355f8829a4aSRandall Stewart if (param_length < sizeof(struct sctp_paramhdr)) { 1356f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1357f8829a4aSRandall Stewart return; 1358f8829a4aSRandall Stewart } 1359f8829a4aSRandall Stewart /* get the complete parameter... */ 1360f8829a4aSRandall Stewart if (param_length > sizeof(aparam_buf)) { 1361ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1362ad81507eSRandall Stewart "param length (%u) larger than buffer size!\n", param_length); 1363f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1364f8829a4aSRandall Stewart return; 1365f8829a4aSRandall Stewart } 1366f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)sctp_m_getptr(m, offset, param_length, aparam_buf); 1367f8829a4aSRandall Stewart if (aph == NULL) { 1368f8829a4aSRandall Stewart sctp_asconf_ack_clear(stcb); 1369f8829a4aSRandall Stewart return; 1370f8829a4aSRandall Stewart } 1371f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no ntohl needed */ 1372f8829a4aSRandall Stewart id = aph->correlation_id; 1373f8829a4aSRandall Stewart 1374f8829a4aSRandall Stewart switch (param_type) { 1375f8829a4aSRandall Stewart case SCTP_ERROR_CAUSE_IND: 1376f8829a4aSRandall Stewart last_error_id = id; 1377f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1378f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1379f8829a4aSRandall Stewart if (ap == NULL) { 1380f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1381f8829a4aSRandall Stewart break; 1382f8829a4aSRandall Stewart } 1383f8829a4aSRandall Stewart /* process the parameter, failed flag */ 1384f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 0); 1385f8829a4aSRandall Stewart /* process the error response */ 1386f8829a4aSRandall Stewart sctp_asconf_process_error(stcb, aph); 1387f8829a4aSRandall Stewart break; 1388f8829a4aSRandall Stewart case SCTP_SUCCESS_REPORT: 1389f8829a4aSRandall Stewart /* find the corresponding asconf param in our queue */ 1390f8829a4aSRandall Stewart ap = sctp_asconf_find_param(stcb, id); 1391f8829a4aSRandall Stewart if (ap == NULL) { 1392f8829a4aSRandall Stewart /* hmm... can't find this in our queue! */ 1393f8829a4aSRandall Stewart break; 1394f8829a4aSRandall Stewart } 1395f8829a4aSRandall Stewart /* process the parameter, success flag */ 1396f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, ap, 1); 1397f8829a4aSRandall Stewart break; 1398f8829a4aSRandall Stewart default: 1399f8829a4aSRandall Stewart break; 1400f8829a4aSRandall Stewart } /* switch */ 1401f8829a4aSRandall Stewart 1402f8829a4aSRandall Stewart /* update remaining ASCONF-ACK message length to process */ 1403f8829a4aSRandall Stewart ack_length -= SCTP_SIZE32(param_length); 1404f8829a4aSRandall Stewart if (ack_length <= 0) { 1405f8829a4aSRandall Stewart /* no more data in the mbuf chain */ 1406f8829a4aSRandall Stewart break; 1407f8829a4aSRandall Stewart } 1408f8829a4aSRandall Stewart offset += SCTP_SIZE32(param_length); 1409f8829a4aSRandall Stewart } /* while */ 1410f8829a4aSRandall Stewart 1411f8829a4aSRandall Stewart /* 1412f8829a4aSRandall Stewart * if there are any "sent" params still on the queue, these are 1413f8829a4aSRandall Stewart * implicitly "success", or "failed" (if we got an error back) ... 1414f8829a4aSRandall Stewart * so process these appropriately 1415f8829a4aSRandall Stewart * 1416f8829a4aSRandall Stewart * we assume that the correlation_id's are monotonically increasing 1417f8829a4aSRandall Stewart * beginning from 1 and that we don't have *that* many outstanding 1418f8829a4aSRandall Stewart * at any given time 1419f8829a4aSRandall Stewart */ 1420f8829a4aSRandall Stewart if (last_error_id == 0) 1421f8829a4aSRandall Stewart last_error_id--;/* set to "max" value */ 1422f8829a4aSRandall Stewart for (aa = TAILQ_FIRST(&stcb->asoc.asconf_queue); aa != NULL; 1423f8829a4aSRandall Stewart aa = aa_next) { 1424f8829a4aSRandall Stewart aa_next = TAILQ_NEXT(aa, next); 1425f8829a4aSRandall Stewart if (aa->sent == 1) { 1426f8829a4aSRandall Stewart /* 1427f8829a4aSRandall Stewart * implicitly successful or failed if correlation_id 1428f8829a4aSRandall Stewart * < last_error_id, then success else, failure 1429f8829a4aSRandall Stewart */ 1430f8829a4aSRandall Stewart if (aa->ap.aph.correlation_id < last_error_id) 1431f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 1432f8829a4aSRandall Stewart SCTP_SUCCESS_REPORT); 1433f8829a4aSRandall Stewart else 1434f8829a4aSRandall Stewart sctp_asconf_process_param_ack(stcb, aa, 1435f8829a4aSRandall Stewart SCTP_ERROR_CAUSE_IND); 1436f8829a4aSRandall Stewart } else { 1437f8829a4aSRandall Stewart /* 1438f8829a4aSRandall Stewart * since we always process in order (FIFO queue) if 1439f8829a4aSRandall Stewart * we reach one that hasn't been sent, the rest 1440f8829a4aSRandall Stewart * should not have been sent either. so, we're 1441f8829a4aSRandall Stewart * done... 1442f8829a4aSRandall Stewart */ 1443f8829a4aSRandall Stewart break; 1444f8829a4aSRandall Stewart } 1445f8829a4aSRandall Stewart } 1446f8829a4aSRandall Stewart 1447f8829a4aSRandall Stewart /* update the next sequence number to use */ 1448f8829a4aSRandall Stewart asoc->asconf_seq_out++; 1449f8829a4aSRandall Stewart /* remove the old ASCONF on our outbound queue */ 1450f8829a4aSRandall Stewart sctp_toss_old_asconf(stcb); 1451f8829a4aSRandall Stewart /* clear the sent flag to allow new ASCONFs */ 1452f8829a4aSRandall Stewart asoc->asconf_sent = 0; 1453f8829a4aSRandall Stewart if (!TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 1454f8829a4aSRandall Stewart /* we have more params, so restart our timer */ 1455f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, stcb->sctp_ep, 1456f8829a4aSRandall Stewart stcb, net); 1457f8829a4aSRandall Stewart } 1458f8829a4aSRandall Stewart } 1459f8829a4aSRandall Stewart 1460f8829a4aSRandall Stewart static uint32_t 1461f8829a4aSRandall Stewart sctp_is_scopeid_in_nets(struct sctp_tcb *stcb, struct sockaddr *sa) 1462f8829a4aSRandall Stewart { 1463f8829a4aSRandall Stewart struct sockaddr_in6 *sin6, *net6; 1464f8829a4aSRandall Stewart struct sctp_nets *net; 1465f8829a4aSRandall Stewart 1466f8829a4aSRandall Stewart if (sa->sa_family != AF_INET6) { 1467f8829a4aSRandall Stewart /* wrong family */ 1468f8829a4aSRandall Stewart return (0); 1469f8829a4aSRandall Stewart } 1470f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 1471f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr) == 0) { 1472f8829a4aSRandall Stewart /* not link local address */ 1473f8829a4aSRandall Stewart return (0); 1474f8829a4aSRandall Stewart } 1475f8829a4aSRandall Stewart /* hunt through our destination nets list for this scope_id */ 1476f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 1477f8829a4aSRandall Stewart if (((struct sockaddr *)(&net->ro._l_addr))->sa_family != 1478f8829a4aSRandall Stewart AF_INET6) 1479f8829a4aSRandall Stewart continue; 1480f8829a4aSRandall Stewart net6 = (struct sockaddr_in6 *)&net->ro._l_addr; 1481f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&net6->sin6_addr) == 0) 1482f8829a4aSRandall Stewart continue; 1483f8829a4aSRandall Stewart if (sctp_is_same_scope(sin6, net6)) { 1484f8829a4aSRandall Stewart /* found one */ 1485f8829a4aSRandall Stewart return (1); 1486f8829a4aSRandall Stewart } 1487f8829a4aSRandall Stewart } 1488f8829a4aSRandall Stewart /* didn't find one */ 1489f8829a4aSRandall Stewart return (0); 1490f8829a4aSRandall Stewart } 1491f8829a4aSRandall Stewart 1492f8829a4aSRandall Stewart /* 1493f8829a4aSRandall Stewart * address management functions 1494f8829a4aSRandall Stewart */ 1495f8829a4aSRandall Stewart static void 1496f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(struct sctp_inpcb *inp, struct sctp_tcb *stcb, 149742551e99SRandall Stewart struct sctp_ifa *ifa, uint16_t type) 1498f8829a4aSRandall Stewart { 1499f8829a4aSRandall Stewart int status; 1500f8829a4aSRandall Stewart 1501f8829a4aSRandall Stewart 1502f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0 && 1503f8829a4aSRandall Stewart sctp_is_feature_off(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1504f8829a4aSRandall Stewart /* subset bound, no ASCONF allowed case, so ignore */ 1505f8829a4aSRandall Stewart return; 1506f8829a4aSRandall Stewart } 1507f8829a4aSRandall Stewart /* 1508f8829a4aSRandall Stewart * note: we know this is not the subset bound, no ASCONF case eg. 1509f8829a4aSRandall Stewart * this is boundall or subset bound w/ASCONF allowed 1510f8829a4aSRandall Stewart */ 1511f8829a4aSRandall Stewart 1512f8829a4aSRandall Stewart /* first, make sure it's a good address family */ 151342551e99SRandall Stewart if (ifa->address.sa.sa_family != AF_INET6 && 151442551e99SRandall Stewart ifa->address.sa.sa_family != AF_INET) { 1515f8829a4aSRandall Stewart return; 1516f8829a4aSRandall Stewart } 1517f8829a4aSRandall Stewart /* make sure we're "allowed" to add this type of addr */ 151842551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1519f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1520f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) 1521f8829a4aSRandall Stewart return; 1522f8829a4aSRandall Stewart /* is the v6 addr really valid ? */ 152342551e99SRandall Stewart if (ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 1524f8829a4aSRandall Stewart return; 1525f8829a4aSRandall Stewart } 1526f8829a4aSRandall Stewart } 1527f8829a4aSRandall Stewart /* put this address on the "pending/do not use yet" list */ 1528f8829a4aSRandall Stewart /* 1529f8829a4aSRandall Stewart * Note: we do this primarily for the subset bind case We don't have 1530f8829a4aSRandall Stewart * scoping flags at the EP level, so we must add link local/site 1531f8829a4aSRandall Stewart * local addresses to the EP, then need to "negate" them here. 1532f8829a4aSRandall Stewart * Recall that this routine is only called for the subset bound 1533f8829a4aSRandall Stewart * w/ASCONF allowed case. 1534f8829a4aSRandall Stewart */ 153542551e99SRandall Stewart sctp_add_local_addr_assoc(stcb, ifa, 1); 1536f8829a4aSRandall Stewart /* 1537f8829a4aSRandall Stewart * check address scope if address is out of scope, don't queue 1538f8829a4aSRandall Stewart * anything... note: this would leave the address on both inp and 1539f8829a4aSRandall Stewart * asoc lists 1540f8829a4aSRandall Stewart */ 154142551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1542f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1543f8829a4aSRandall Stewart 154442551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 1545f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1546f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1547f8829a4aSRandall Stewart return; 1548f8829a4aSRandall Stewart } 1549f8829a4aSRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 1550f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0) { 1551f8829a4aSRandall Stewart return; 1552f8829a4aSRandall Stewart } 1553f8829a4aSRandall Stewart /* is it the right link local scope? */ 155442551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 1555f8829a4aSRandall Stewart return; 1556f8829a4aSRandall Stewart } 1557f8829a4aSRandall Stewart } 1558f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 1559f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) { 1560f8829a4aSRandall Stewart return; 1561f8829a4aSRandall Stewart } 156242551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1563f8829a4aSRandall Stewart struct sockaddr_in *sin; 1564f8829a4aSRandall Stewart struct in6pcb *inp6; 1565f8829a4aSRandall Stewart 1566f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1567f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1568f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 156944b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 1570f8829a4aSRandall Stewart return; 1571f8829a4aSRandall Stewart 157242551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 1573f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 1574f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1575f8829a4aSRandall Stewart return; 1576f8829a4aSRandall Stewart } 1577f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 1578f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 1579f8829a4aSRandall Stewart return; 1580f8829a4aSRandall Stewart } 1581f8829a4aSRandall Stewart } else { 1582f8829a4aSRandall Stewart /* else, not AF_INET or AF_INET6, so skip */ 1583f8829a4aSRandall Stewart return; 1584f8829a4aSRandall Stewart } 1585f8829a4aSRandall Stewart 1586f8829a4aSRandall Stewart /* queue an asconf for this address add/delete */ 1587f8829a4aSRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 1588f8829a4aSRandall Stewart /* does the peer do asconf? */ 1589f8829a4aSRandall Stewart if (stcb->asoc.peer_supports_asconf) { 1590f8829a4aSRandall Stewart /* queue an asconf for this addr */ 1591f8829a4aSRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 1592f8829a4aSRandall Stewart /* 1593f8829a4aSRandall Stewart * if queued ok, and in correct state, set the 1594f8829a4aSRandall Stewart * ASCONF timer if in non-open state, we will set 1595f8829a4aSRandall Stewart * this timer when the state does go open and do all 1596f8829a4aSRandall Stewart * the asconf's 1597f8829a4aSRandall Stewart */ 1598f8829a4aSRandall Stewart if (status == 0 && 1599f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 1600f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, inp, 1601f8829a4aSRandall Stewart stcb, stcb->asoc.primary_destination); 1602f8829a4aSRandall Stewart } 1603f8829a4aSRandall Stewart } 1604f8829a4aSRandall Stewart } 1605f8829a4aSRandall Stewart } 1606f8829a4aSRandall Stewart 160742551e99SRandall Stewart 160842551e99SRandall Stewart int 160942551e99SRandall Stewart sctp_iterator_ep(struct sctp_inpcb *inp, void *ptr, uint32_t val) 1610f8829a4aSRandall Stewart { 161142551e99SRandall Stewart struct sctp_asconf_iterator *asc; 161242551e99SRandall Stewart struct sctp_ifa *ifa; 161342551e99SRandall Stewart struct sctp_laddr *l; 161442551e99SRandall Stewart int type; 161542551e99SRandall Stewart int cnt_invalid = 0; 1616f8829a4aSRandall Stewart 161742551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 161842551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 161942551e99SRandall Stewart ifa = l->ifa; 162042551e99SRandall Stewart type = l->action; 162142551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 1622f8829a4aSRandall Stewart /* invalid if we're not a v6 endpoint */ 1623f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 162442551e99SRandall Stewart cnt_invalid++; 162542551e99SRandall Stewart if (asc->cnt == cnt_invalid) 162642551e99SRandall Stewart return (1); 162742551e99SRandall Stewart else 162842551e99SRandall Stewart continue; 1629f8829a4aSRandall Stewart } 163042551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 1631f8829a4aSRandall Stewart /* invalid if we are a v6 only endpoint */ 1632f8829a4aSRandall Stewart struct in6pcb *inp6; 1633f8829a4aSRandall Stewart 1634f8829a4aSRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 1635f8829a4aSRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 163644b7479bSRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 163742551e99SRandall Stewart cnt_invalid++; 163842551e99SRandall Stewart if (asc->cnt == cnt_invalid) 163942551e99SRandall Stewart return (1); 164042551e99SRandall Stewart else 164142551e99SRandall Stewart continue; 1642f8829a4aSRandall Stewart } 1643f8829a4aSRandall Stewart } else { 1644f8829a4aSRandall Stewart /* invalid address family */ 164542551e99SRandall Stewart cnt_invalid++; 164642551e99SRandall Stewart if (asc->cnt == cnt_invalid) 164742551e99SRandall Stewart return (1); 1648f8829a4aSRandall Stewart else 164942551e99SRandall Stewart continue; 1650f8829a4aSRandall Stewart } 165142551e99SRandall Stewart } 165242551e99SRandall Stewart return (0); 165342551e99SRandall Stewart } 1654f8829a4aSRandall Stewart 165542551e99SRandall Stewart int 165642551e99SRandall Stewart sctp_iterator_ep_end(struct sctp_inpcb *inp, void *ptr, uint32_t val) 165742551e99SRandall Stewart { 165842551e99SRandall Stewart struct sctp_ifa *ifa; 165942551e99SRandall Stewart struct sctp_asconf_iterator *asc; 166042551e99SRandall Stewart struct sctp_laddr *laddr, *nladdr, *l; 166142551e99SRandall Stewart 166242551e99SRandall Stewart /* Only for specific case not bound all */ 166342551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 166442551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 166542551e99SRandall Stewart ifa = l->ifa; 166642551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 166742551e99SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) { 166842551e99SRandall Stewart if (laddr->ifa == ifa) { 166942551e99SRandall Stewart laddr->action = 0; 167042551e99SRandall Stewart break; 167142551e99SRandall Stewart } 167242551e99SRandall Stewart } 167342551e99SRandall Stewart } else if (l->action == SCTP_DEL_IP_ADDRESS) { 167442551e99SRandall Stewart laddr = LIST_FIRST(&inp->sctp_addr_list); 167542551e99SRandall Stewart while (laddr) { 167642551e99SRandall Stewart nladdr = LIST_NEXT(laddr, sctp_nxt_addr); 167742551e99SRandall Stewart /* remove only after all guys are done */ 167842551e99SRandall Stewart if (laddr->ifa == ifa) { 167942551e99SRandall Stewart sctp_del_local_addr_ep(inp, ifa); 168042551e99SRandall Stewart } 168142551e99SRandall Stewart laddr = nladdr; 168242551e99SRandall Stewart } 168342551e99SRandall Stewart } 168442551e99SRandall Stewart } 168542551e99SRandall Stewart return (0); 168642551e99SRandall Stewart } 168742551e99SRandall Stewart 168842551e99SRandall Stewart void 168942551e99SRandall Stewart sctp_iterator_stcb(struct sctp_inpcb *inp, struct sctp_tcb *stcb, void *ptr, 169042551e99SRandall Stewart uint32_t val) 169142551e99SRandall Stewart { 169242551e99SRandall Stewart struct sctp_asconf_iterator *asc; 169342551e99SRandall Stewart struct sctp_ifa *ifa; 169442551e99SRandall Stewart struct sctp_laddr *l; 169542551e99SRandall Stewart int cnt_invalid = 0; 169642551e99SRandall Stewart int type, status; 169742551e99SRandall Stewart 169842551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 169942551e99SRandall Stewart LIST_FOREACH(l, &asc->list_of_work, sctp_nxt_addr) { 170042551e99SRandall Stewart ifa = l->ifa; 170142551e99SRandall Stewart type = l->action; 170242551e99SRandall Stewart /* Same checks again for assoc */ 170342551e99SRandall Stewart if (ifa->address.sa.sa_family == AF_INET6) { 170442551e99SRandall Stewart /* invalid if we're not a v6 endpoint */ 170542551e99SRandall Stewart struct sockaddr_in6 *sin6; 170642551e99SRandall Stewart 170742551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) == 0) { 170842551e99SRandall Stewart cnt_invalid++; 170942551e99SRandall Stewart if (asc->cnt == cnt_invalid) 171042551e99SRandall Stewart return; 171142551e99SRandall Stewart else 171242551e99SRandall Stewart continue; 171342551e99SRandall Stewart } 171442551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&ifa->address.sin6; 171542551e99SRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 171642551e99SRandall Stewart /* we skip unspecifed addresses */ 171742551e99SRandall Stewart continue; 171842551e99SRandall Stewart } 171942551e99SRandall Stewart if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) { 172042551e99SRandall Stewart if (stcb->asoc.local_scope == 0) { 172142551e99SRandall Stewart continue; 172242551e99SRandall Stewart } 172342551e99SRandall Stewart /* is it the right link local scope? */ 172442551e99SRandall Stewart if (sctp_is_scopeid_in_nets(stcb, &ifa->address.sa) == 0) { 172542551e99SRandall Stewart continue; 172642551e99SRandall Stewart } 172742551e99SRandall Stewart } 172842551e99SRandall Stewart } else if (ifa->address.sa.sa_family == AF_INET) { 172942551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 173042551e99SRandall Stewart struct in6pcb *inp6; 173142551e99SRandall Stewart struct sockaddr_in *sin; 173242551e99SRandall Stewart 173342551e99SRandall Stewart inp6 = (struct in6pcb *)&inp->ip_inp.inp; 173442551e99SRandall Stewart /* invalid if we are a v6 only endpoint */ 173542551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 173642551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) 173742551e99SRandall Stewart continue; 173842551e99SRandall Stewart 173942551e99SRandall Stewart sin = (struct sockaddr_in *)&ifa->address.sa; 174042551e99SRandall Stewart if (sin->sin_addr.s_addr == 0) { 174142551e99SRandall Stewart /* we skip unspecifed addresses */ 174242551e99SRandall Stewart continue; 174342551e99SRandall Stewart } 174442551e99SRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 174542551e99SRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) { 174642551e99SRandall Stewart continue;; 174742551e99SRandall Stewart } 174842551e99SRandall Stewart if ((inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) && 174942551e99SRandall Stewart SCTP_IPV6_V6ONLY(inp6)) { 175042551e99SRandall Stewart cnt_invalid++; 175142551e99SRandall Stewart if (asc->cnt == cnt_invalid) 175242551e99SRandall Stewart return; 175342551e99SRandall Stewart else 175442551e99SRandall Stewart continue; 175542551e99SRandall Stewart } 1756f8829a4aSRandall Stewart } else { 175742551e99SRandall Stewart /* invalid address family */ 175842551e99SRandall Stewart cnt_invalid++; 175942551e99SRandall Stewart if (asc->cnt == cnt_invalid) 1760f8829a4aSRandall Stewart return; 176142551e99SRandall Stewart else 176242551e99SRandall Stewart continue; 1763f8829a4aSRandall Stewart } 1764f8829a4aSRandall Stewart 176542551e99SRandall Stewart /* put this address on the "pending/do not use yet" list */ 176642551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 176742551e99SRandall Stewart sctp_add_local_addr_assoc(stcb, ifa, 1); 176842551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 1769f8829a4aSRandall Stewart struct sctp_nets *net; 1770f8829a4aSRandall Stewart 1771f8829a4aSRandall Stewart TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) { 177217205eccSRandall Stewart sctp_rtentry_t *rt; 1773f8829a4aSRandall Stewart 1774f8829a4aSRandall Stewart /* delete this address if cached */ 177542551e99SRandall Stewart if (net->ro._s_addr && 177642551e99SRandall Stewart (net->ro._s_addr->ifa == ifa)) { 177742551e99SRandall Stewart sctp_free_ifa(net->ro._s_addr); 177842551e99SRandall Stewart net->ro._s_addr = NULL; 177942551e99SRandall Stewart net->src_addr_selected = 0; 1780f8829a4aSRandall Stewart rt = net->ro.ro_rt; 178142551e99SRandall Stewart if (rt) { 178242551e99SRandall Stewart RTFREE(rt); 1783f8829a4aSRandall Stewart net->ro.ro_rt = NULL; 1784f8829a4aSRandall Stewart } 178542551e99SRandall Stewart /* 178642551e99SRandall Stewart * Now we deleted our src address, 178742551e99SRandall Stewart * should we not also now reset the 178842551e99SRandall Stewart * cwnd/rto to start as if its a new 178942551e99SRandall Stewart * address? 179042551e99SRandall Stewart */ 179142551e99SRandall Stewart sctp_set_initial_cc_param(stcb, net); 179242551e99SRandall Stewart net->RTO = stcb->asoc.initial_rto; 179342551e99SRandall Stewart 1794f8829a4aSRandall Stewart } 1795f8829a4aSRandall Stewart } 179642551e99SRandall Stewart } else if (type == SCTP_SET_PRIM_ADDR) { 179742551e99SRandall Stewart if ((stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) == 0) { 179842551e99SRandall Stewart /* 179942551e99SRandall Stewart * must validate the ifa in question is in 180042551e99SRandall Stewart * the ep 180142551e99SRandall Stewart */ 180242551e99SRandall Stewart if (sctp_is_addr_in_ep(stcb->sctp_ep, ifa) == 0) { 180342551e99SRandall Stewart continue; 1804f8829a4aSRandall Stewart } 180542551e99SRandall Stewart } else { 180642551e99SRandall Stewart /* Need to check scopes for this guy */ 180742551e99SRandall Stewart if (sctp_is_address_in_scope(ifa, 180842551e99SRandall Stewart stcb->asoc.ipv4_addr_legal, 180942551e99SRandall Stewart stcb->asoc.ipv6_addr_legal, 181042551e99SRandall Stewart stcb->asoc.loopback_scope, 181142551e99SRandall Stewart stcb->asoc.ipv4_local_scope, 181242551e99SRandall Stewart stcb->asoc.local_scope, 181342551e99SRandall Stewart stcb->asoc.site_scope, 0) == 0) { 181442551e99SRandall Stewart continue; 1815f8829a4aSRandall Stewart } 181642551e99SRandall Stewart } 181742551e99SRandall Stewart 181842551e99SRandall Stewart } 181942551e99SRandall Stewart /* queue an asconf for this address add/delete */ 182042551e99SRandall Stewart if (sctp_is_feature_on(inp, SCTP_PCB_FLAGS_DO_ASCONF)) { 182142551e99SRandall Stewart /* does the peer do asconf? */ 182242551e99SRandall Stewart if (stcb->asoc.peer_supports_asconf) { 182342551e99SRandall Stewart /* queue an asconf for this addr */ 182442551e99SRandall Stewart 182542551e99SRandall Stewart status = sctp_asconf_queue_add(stcb, ifa, type); 182642551e99SRandall Stewart /* 182742551e99SRandall Stewart * if queued ok, and in correct state, set 182842551e99SRandall Stewart * the ASCONF timer if in non-open state, we 182942551e99SRandall Stewart * will set this timer when the state does 183042551e99SRandall Stewart * go open and do all the asconf's 183142551e99SRandall Stewart */ 183242551e99SRandall Stewart if (status == 0 && 183342551e99SRandall Stewart SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 183442551e99SRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, inp, 183542551e99SRandall Stewart stcb, stcb->asoc.primary_destination); 183642551e99SRandall Stewart } 183742551e99SRandall Stewart } 183842551e99SRandall Stewart } 183942551e99SRandall Stewart } 184042551e99SRandall Stewart } 184142551e99SRandall Stewart 184242551e99SRandall Stewart void 184342551e99SRandall Stewart sctp_iterator_end(void *ptr, uint32_t val) 184442551e99SRandall Stewart { 184542551e99SRandall Stewart struct sctp_asconf_iterator *asc; 184642551e99SRandall Stewart struct sctp_ifa *ifa; 184742551e99SRandall Stewart struct sctp_laddr *l, *l_next; 184842551e99SRandall Stewart 184942551e99SRandall Stewart asc = (struct sctp_asconf_iterator *)ptr; 185042551e99SRandall Stewart l = LIST_FIRST(&asc->list_of_work); 185142551e99SRandall Stewart while (l != NULL) { 185242551e99SRandall Stewart l_next = LIST_NEXT(l, sctp_nxt_addr); 185342551e99SRandall Stewart ifa = l->ifa; 185442551e99SRandall Stewart if (l->action == SCTP_ADD_IP_ADDRESS) { 185542551e99SRandall Stewart /* Clear the defer use flag */ 185642551e99SRandall Stewart ifa->localifa_flags &= ~SCTP_ADDR_DEFER_USE; 185742551e99SRandall Stewart } 185842551e99SRandall Stewart sctp_free_ifa(ifa); 185942551e99SRandall Stewart SCTP_ZONE_FREE(sctppcbinfo.ipi_zone_laddr, l); 186042551e99SRandall Stewart SCTP_DECR_LADDR_COUNT(); 186142551e99SRandall Stewart l = l_next; 186242551e99SRandall Stewart } 186342551e99SRandall Stewart SCTP_FREE(asc); 1864f8829a4aSRandall Stewart } 1865f8829a4aSRandall Stewart 1866f8829a4aSRandall Stewart /* 1867f8829a4aSRandall Stewart * sa is the sockaddr to ask the peer to set primary to returns: 0 = 1868f8829a4aSRandall Stewart * completed, -1 = error 1869f8829a4aSRandall Stewart */ 1870f8829a4aSRandall Stewart int32_t 1871f8829a4aSRandall Stewart sctp_set_primary_ip_address_sa(struct sctp_tcb *stcb, struct sockaddr *sa) 1872f8829a4aSRandall Stewart { 1873f8829a4aSRandall Stewart /* NOTE: we currently don't check the validity of the address! */ 1874f8829a4aSRandall Stewart 1875f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 1876f8829a4aSRandall Stewart if (!sctp_asconf_queue_add_sa(stcb, sa, SCTP_SET_PRIM_ADDR)) { 1877f8829a4aSRandall Stewart /* set primary queuing succeeded */ 1878f8829a4aSRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == SCTP_STATE_OPEN) { 1879f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 1880f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 1881f8829a4aSRandall Stewart stcb->asoc.primary_destination); 1882f8829a4aSRandall Stewart } 1883ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 1884ad81507eSRandall Stewart "set_primary_ip_address_sa: queued on tcb=%p, ", 1885f8829a4aSRandall Stewart stcb); 1886ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 1887f8829a4aSRandall Stewart } else { 1888ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address_sa: failed to add to queue on tcb=%p, ", 1889f8829a4aSRandall Stewart stcb); 1890ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, sa); 1891f8829a4aSRandall Stewart return (-1); 1892f8829a4aSRandall Stewart } 1893f8829a4aSRandall Stewart return (0); 1894f8829a4aSRandall Stewart } 1895f8829a4aSRandall Stewart 1896f8829a4aSRandall Stewart void 189742551e99SRandall Stewart sctp_set_primary_ip_address(struct sctp_ifa *ifa) 1898f8829a4aSRandall Stewart { 1899f8829a4aSRandall Stewart struct sctp_inpcb *inp; 1900f8829a4aSRandall Stewart 1901f8829a4aSRandall Stewart /* go through all our PCB's */ 1902f8829a4aSRandall Stewart LIST_FOREACH(inp, &sctppcbinfo.listhead, sctp_list) { 1903f8829a4aSRandall Stewart struct sctp_tcb *stcb; 1904f8829a4aSRandall Stewart 1905f8829a4aSRandall Stewart /* process for all associations for this endpoint */ 1906f8829a4aSRandall Stewart LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) { 1907f8829a4aSRandall Stewart /* queue an ASCONF:SET_PRIM_ADDR to be sent */ 1908f8829a4aSRandall Stewart if (!sctp_asconf_queue_add(stcb, ifa, 1909f8829a4aSRandall Stewart SCTP_SET_PRIM_ADDR)) { 1910f8829a4aSRandall Stewart /* set primary queuing succeeded */ 1911f8829a4aSRandall Stewart if (SCTP_GET_STATE(&stcb->asoc) == 1912f8829a4aSRandall Stewart SCTP_STATE_OPEN) { 1913f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 1914f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 1915f8829a4aSRandall Stewart stcb->asoc.primary_destination); 1916f8829a4aSRandall Stewart } 1917ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "set_primary_ip_address: queued on stcb=%p, ", 1918f8829a4aSRandall Stewart stcb); 1919ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF1, &ifa->address.sa); 1920f8829a4aSRandall Stewart } 1921f8829a4aSRandall Stewart } /* for each stcb */ 1922f8829a4aSRandall Stewart } /* for each inp */ 1923f8829a4aSRandall Stewart } 1924f8829a4aSRandall Stewart 1925f8829a4aSRandall Stewart static struct sockaddr * 1926f8829a4aSRandall Stewart sctp_find_valid_localaddr(struct sctp_tcb *stcb) 1927f8829a4aSRandall Stewart { 192842551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 192942551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 193042551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 1931f8829a4aSRandall Stewart 193242551e99SRandall Stewart vrf = sctp_find_vrf(stcb->asoc.vrf_id); 1933ad81507eSRandall Stewart if (vrf == NULL) { 1934ad81507eSRandall Stewart return (NULL); 1935ad81507eSRandall Stewart } 193642551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 193742551e99SRandall Stewart if (stcb->asoc.loopback_scope == 0 && 193842551e99SRandall Stewart SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 1939f8829a4aSRandall Stewart /* Skip if loopback_scope not set */ 1940f8829a4aSRandall Stewart continue; 1941f8829a4aSRandall Stewart } 194242551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 194342551e99SRandall Stewart if (sctp_ifa->address.sa.sa_family == AF_INET && 1944f8829a4aSRandall Stewart stcb->asoc.ipv4_addr_legal) { 1945f8829a4aSRandall Stewart struct sockaddr_in *sin; 1946f8829a4aSRandall Stewart 194742551e99SRandall Stewart sin = (struct sockaddr_in *)&sctp_ifa->address.sa; 1948f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == 0) { 1949f8829a4aSRandall Stewart /* skip unspecifed addresses */ 1950f8829a4aSRandall Stewart continue; 1951f8829a4aSRandall Stewart } 1952f8829a4aSRandall Stewart if (stcb->asoc.ipv4_local_scope == 0 && 1953f8829a4aSRandall Stewart IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)) 1954f8829a4aSRandall Stewart continue; 1955f8829a4aSRandall Stewart 195642551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, sctp_ifa)) 1957f8829a4aSRandall Stewart continue; 1958f8829a4aSRandall Stewart /* found a valid local v4 address to use */ 195942551e99SRandall Stewart return (&sctp_ifa->address.sa); 196042551e99SRandall Stewart } else if (sctp_ifa->address.sa.sa_family == AF_INET6 && 1961f8829a4aSRandall Stewart stcb->asoc.ipv6_addr_legal) { 1962f8829a4aSRandall Stewart struct sockaddr_in6 *sin6; 1963f8829a4aSRandall Stewart 196442551e99SRandall Stewart if (sctp_ifa->localifa_flags & SCTP_ADDR_IFA_UNUSEABLE) { 1965f8829a4aSRandall Stewart continue; 196642551e99SRandall Stewart } 196742551e99SRandall Stewart sin6 = (struct sockaddr_in6 *)&sctp_ifa->address.sa; 1968f8829a4aSRandall Stewart if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) { 1969f8829a4aSRandall Stewart /* we skip unspecifed addresses */ 1970f8829a4aSRandall Stewart continue; 1971f8829a4aSRandall Stewart } 1972f8829a4aSRandall Stewart if (stcb->asoc.local_scope == 0 && 1973f8829a4aSRandall Stewart IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) 1974f8829a4aSRandall Stewart continue; 1975f8829a4aSRandall Stewart if (stcb->asoc.site_scope == 0 && 1976f8829a4aSRandall Stewart IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)) 1977f8829a4aSRandall Stewart continue; 1978f8829a4aSRandall Stewart 1979f8829a4aSRandall Stewart /* found a valid local v6 address to use */ 198042551e99SRandall Stewart return (&sctp_ifa->address.sa); 1981f8829a4aSRandall Stewart } 1982f8829a4aSRandall Stewart } 1983f8829a4aSRandall Stewart } 1984f8829a4aSRandall Stewart /* no valid addresses found */ 1985f8829a4aSRandall Stewart return (NULL); 1986f8829a4aSRandall Stewart } 1987f8829a4aSRandall Stewart 1988f8829a4aSRandall Stewart static struct sockaddr * 1989f8829a4aSRandall Stewart sctp_find_valid_localaddr_ep(struct sctp_tcb *stcb) 1990f8829a4aSRandall Stewart { 1991f8829a4aSRandall Stewart struct sctp_laddr *laddr; 1992f8829a4aSRandall Stewart 1993f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 1994f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 1995f8829a4aSRandall Stewart continue; 1996f8829a4aSRandall Stewart } 199742551e99SRandall Stewart if (laddr->ifa == NULL) { 1998f8829a4aSRandall Stewart continue; 1999f8829a4aSRandall Stewart } 2000f8829a4aSRandall Stewart /* is the address restricted ? */ 200142551e99SRandall Stewart if (sctp_is_addr_restricted(stcb, laddr->ifa)) 2002f8829a4aSRandall Stewart continue; 2003f8829a4aSRandall Stewart 2004f8829a4aSRandall Stewart /* found a valid local address to use */ 200542551e99SRandall Stewart return (&laddr->ifa->address.sa); 2006f8829a4aSRandall Stewart } 2007f8829a4aSRandall Stewart /* no valid addresses found */ 2008f8829a4aSRandall Stewart return (NULL); 2009f8829a4aSRandall Stewart } 2010f8829a4aSRandall Stewart 2011f8829a4aSRandall Stewart /* 2012f8829a4aSRandall Stewart * builds an ASCONF chunk from queued ASCONF params returns NULL on error (no 2013f8829a4aSRandall Stewart * mbuf, no ASCONF params queued, etc) 2014f8829a4aSRandall Stewart */ 2015f8829a4aSRandall Stewart struct mbuf * 2016139bc87fSRandall Stewart sctp_compose_asconf(struct sctp_tcb *stcb, int *retlen) 2017f8829a4aSRandall Stewart { 2018f8829a4aSRandall Stewart struct mbuf *m_asconf, *m_asconf_chk; 2019f8829a4aSRandall Stewart struct sctp_asconf_addr *aa; 2020f8829a4aSRandall Stewart struct sctp_asconf_chunk *acp; 2021f8829a4aSRandall Stewart struct sctp_asconf_paramhdr *aph; 2022f8829a4aSRandall Stewart struct sctp_asconf_addr_param *aap; 2023f8829a4aSRandall Stewart uint32_t p_length; 2024f8829a4aSRandall Stewart uint32_t correlation_id = 1; /* 0 is reserved... */ 2025f8829a4aSRandall Stewart caddr_t ptr, lookup_ptr; 2026f8829a4aSRandall Stewart uint8_t lookup_used = 0; 2027f8829a4aSRandall Stewart 2028f8829a4aSRandall Stewart /* are there any asconf params to send? */ 2029f8829a4aSRandall Stewart if (TAILQ_EMPTY(&stcb->asoc.asconf_queue)) { 2030f8829a4aSRandall Stewart return (NULL); 2031f8829a4aSRandall Stewart } 2032f8829a4aSRandall Stewart /* 2033f8829a4aSRandall Stewart * get a chunk header mbuf and a cluster for the asconf params since 2034f8829a4aSRandall Stewart * it's simpler to fill in the asconf chunk header lookup address on 2035f8829a4aSRandall Stewart * the fly 2036f8829a4aSRandall Stewart */ 2037139bc87fSRandall Stewart m_asconf_chk = sctp_get_mbuf_for_msg(sizeof(struct sctp_asconf_chunk), 0, M_DONTWAIT, 1, MT_DATA); 2038f8829a4aSRandall Stewart if (m_asconf_chk == NULL) { 2039f8829a4aSRandall Stewart /* no mbuf's */ 2040ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2041ad81507eSRandall Stewart "compose_asconf: couldn't get chunk mbuf!\n"); 2042f8829a4aSRandall Stewart return (NULL); 2043f8829a4aSRandall Stewart } 2044139bc87fSRandall Stewart m_asconf = sctp_get_mbuf_for_msg(MCLBYTES, 0, M_DONTWAIT, 1, MT_DATA); 2045f8829a4aSRandall Stewart if (m_asconf == NULL) { 2046f8829a4aSRandall Stewart /* no mbuf's */ 2047ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2048ad81507eSRandall Stewart "compose_asconf: couldn't get mbuf!\n"); 2049f8829a4aSRandall Stewart sctp_m_freem(m_asconf_chk); 2050f8829a4aSRandall Stewart return (NULL); 2051f8829a4aSRandall Stewart } 2052139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) = sizeof(struct sctp_asconf_chunk); 2053139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) = 0; 2054f8829a4aSRandall Stewart acp = mtod(m_asconf_chk, struct sctp_asconf_chunk *); 2055f8829a4aSRandall Stewart bzero(acp, sizeof(struct sctp_asconf_chunk)); 2056f8829a4aSRandall Stewart /* save pointers to lookup address and asconf params */ 2057f8829a4aSRandall Stewart lookup_ptr = (caddr_t)(acp + 1); /* after the header */ 2058f8829a4aSRandall Stewart ptr = mtod(m_asconf, caddr_t); /* beginning of cluster */ 2059f8829a4aSRandall Stewart 2060f8829a4aSRandall Stewart /* fill in chunk header info */ 2061f8829a4aSRandall Stewart acp->ch.chunk_type = SCTP_ASCONF; 2062f8829a4aSRandall Stewart acp->ch.chunk_flags = 0; 2063f8829a4aSRandall Stewart acp->serial_number = htonl(stcb->asoc.asconf_seq_out); 2064f8829a4aSRandall Stewart 2065f8829a4aSRandall Stewart /* add parameters... up to smallest MTU allowed */ 2066f8829a4aSRandall Stewart TAILQ_FOREACH(aa, &stcb->asoc.asconf_queue, next) { 2067f8829a4aSRandall Stewart /* get the parameter length */ 2068f8829a4aSRandall Stewart p_length = SCTP_SIZE32(aa->ap.aph.ph.param_length); 2069f8829a4aSRandall Stewart /* will it fit in current chunk? */ 2070139bc87fSRandall Stewart if (SCTP_BUF_LEN(m_asconf) + p_length > stcb->asoc.smallest_mtu) { 2071f8829a4aSRandall Stewart /* won't fit, so we're done with this chunk */ 2072f8829a4aSRandall Stewart break; 2073f8829a4aSRandall Stewart } 2074f8829a4aSRandall Stewart /* assign (and store) a correlation id */ 2075f8829a4aSRandall Stewart aa->ap.aph.correlation_id = correlation_id++; 2076f8829a4aSRandall Stewart 2077f8829a4aSRandall Stewart /* 2078f8829a4aSRandall Stewart * fill in address if we're doing a delete this is a simple 2079f8829a4aSRandall Stewart * way for us to fill in the correlation address, which 2080f8829a4aSRandall Stewart * should only be used by the peer if we're deleting our 2081f8829a4aSRandall Stewart * source address and adding a new address (e.g. renumbering 2082f8829a4aSRandall Stewart * case) 2083f8829a4aSRandall Stewart */ 2084f8829a4aSRandall Stewart if (lookup_used == 0 && 2085f8829a4aSRandall Stewart aa->ap.aph.ph.param_type == SCTP_DEL_IP_ADDRESS) { 2086f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2087f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2088f8829a4aSRandall Stewart 2089f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2090f8829a4aSRandall Stewart lookup->ph.param_type = 2091f8829a4aSRandall Stewart htons(aa->ap.addrp.ph.param_type); 2092f8829a4aSRandall Stewart if (aa->ap.addrp.ph.param_type == SCTP_IPV6_ADDRESS) { 2093f8829a4aSRandall Stewart /* copy IPv6 address */ 2094f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2095f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2096f8829a4aSRandall Stewart } else { 2097f8829a4aSRandall Stewart /* copy IPv4 address */ 2098f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2099f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2100f8829a4aSRandall Stewart } 2101f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2102f8829a4aSRandall Stewart memcpy(lookup->addr, &aa->ap.addrp.addr, addr_size); 2103139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2104f8829a4aSRandall Stewart lookup_used = 1; 2105f8829a4aSRandall Stewart } 2106f8829a4aSRandall Stewart /* copy into current space */ 2107f8829a4aSRandall Stewart memcpy(ptr, &aa->ap, p_length); 2108f8829a4aSRandall Stewart 2109f8829a4aSRandall Stewart /* network elements and update lengths */ 2110f8829a4aSRandall Stewart aph = (struct sctp_asconf_paramhdr *)ptr; 2111f8829a4aSRandall Stewart aap = (struct sctp_asconf_addr_param *)ptr; 2112f8829a4aSRandall Stewart /* correlation_id is transparent to peer, no htonl needed */ 2113f8829a4aSRandall Stewart aph->ph.param_type = htons(aph->ph.param_type); 2114f8829a4aSRandall Stewart aph->ph.param_length = htons(aph->ph.param_length); 2115f8829a4aSRandall Stewart aap->addrp.ph.param_type = htons(aap->addrp.ph.param_type); 2116f8829a4aSRandall Stewart aap->addrp.ph.param_length = htons(aap->addrp.ph.param_length); 2117f8829a4aSRandall Stewart 2118139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf) += SCTP_SIZE32(p_length); 2119f8829a4aSRandall Stewart ptr += SCTP_SIZE32(p_length); 2120f8829a4aSRandall Stewart 2121f8829a4aSRandall Stewart /* 2122f8829a4aSRandall Stewart * these params are removed off the pending list upon 2123f8829a4aSRandall Stewart * getting an ASCONF-ACK back from the peer, just set flag 2124f8829a4aSRandall Stewart */ 2125f8829a4aSRandall Stewart aa->sent = 1; 2126f8829a4aSRandall Stewart } 2127f8829a4aSRandall Stewart /* check to see if the lookup addr has been populated yet */ 2128f8829a4aSRandall Stewart if (lookup_used == 0) { 2129f8829a4aSRandall Stewart /* NOTE: if the address param is optional, can skip this... */ 2130f8829a4aSRandall Stewart /* add any valid (existing) address... */ 2131f8829a4aSRandall Stewart struct sctp_ipv6addr_param *lookup; 2132f8829a4aSRandall Stewart uint16_t p_size, addr_size; 2133f8829a4aSRandall Stewart struct sockaddr *found_addr; 2134f8829a4aSRandall Stewart caddr_t addr_ptr; 2135f8829a4aSRandall Stewart 2136f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) 2137f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr(stcb); 2138f8829a4aSRandall Stewart else 2139f8829a4aSRandall Stewart found_addr = sctp_find_valid_localaddr_ep(stcb); 2140f8829a4aSRandall Stewart 2141f8829a4aSRandall Stewart lookup = (struct sctp_ipv6addr_param *)lookup_ptr; 2142f8829a4aSRandall Stewart if (found_addr != NULL) { 2143f8829a4aSRandall Stewart if (found_addr->sa_family == AF_INET6) { 2144f8829a4aSRandall Stewart /* copy IPv6 address */ 2145f8829a4aSRandall Stewart lookup->ph.param_type = 2146f8829a4aSRandall Stewart htons(SCTP_IPV6_ADDRESS); 2147f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv6addr_param); 2148f8829a4aSRandall Stewart addr_size = sizeof(struct in6_addr); 2149f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in6 *) 2150f8829a4aSRandall Stewart found_addr)->sin6_addr; 2151f8829a4aSRandall Stewart } else { 2152f8829a4aSRandall Stewart /* copy IPv4 address */ 2153f8829a4aSRandall Stewart lookup->ph.param_type = 2154f8829a4aSRandall Stewart htons(SCTP_IPV4_ADDRESS); 2155f8829a4aSRandall Stewart p_size = sizeof(struct sctp_ipv4addr_param); 2156f8829a4aSRandall Stewart addr_size = sizeof(struct in_addr); 2157f8829a4aSRandall Stewart addr_ptr = (caddr_t)&((struct sockaddr_in *) 2158f8829a4aSRandall Stewart found_addr)->sin_addr; 2159f8829a4aSRandall Stewart } 2160f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(p_size)); 2161f8829a4aSRandall Stewart memcpy(lookup->addr, addr_ptr, addr_size); 2162139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(p_size); 2163f8829a4aSRandall Stewart lookup_used = 1; 2164f8829a4aSRandall Stewart } else { 2165f8829a4aSRandall Stewart /* uh oh... don't have any address?? */ 2166ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2167ad81507eSRandall Stewart "compose_asconf: no lookup addr!\n"); 2168f8829a4aSRandall Stewart /* for now, we send a IPv4 address of 0.0.0.0 */ 2169f8829a4aSRandall Stewart lookup->ph.param_type = htons(SCTP_IPV4_ADDRESS); 2170f8829a4aSRandall Stewart lookup->ph.param_length = htons(SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param))); 2171f8829a4aSRandall Stewart bzero(lookup->addr, sizeof(struct in_addr)); 2172139bc87fSRandall Stewart SCTP_BUF_LEN(m_asconf_chk) += SCTP_SIZE32(sizeof(struct sctp_ipv4addr_param)); 2173f8829a4aSRandall Stewart lookup_used = 1; 2174f8829a4aSRandall Stewart } 2175f8829a4aSRandall Stewart } 2176f8829a4aSRandall Stewart /* chain it all together */ 2177139bc87fSRandall Stewart SCTP_BUF_NEXT(m_asconf_chk) = m_asconf; 2178139bc87fSRandall Stewart *retlen = acp->ch.chunk_length = ntohs(SCTP_BUF_LEN(m_asconf_chk) + SCTP_BUF_LEN(m_asconf)); 2179f8829a4aSRandall Stewart 2180f8829a4aSRandall Stewart /* update "sent" flag */ 2181f8829a4aSRandall Stewart stcb->asoc.asconf_sent++; 2182f8829a4aSRandall Stewart 2183f8829a4aSRandall Stewart return (m_asconf_chk); 2184f8829a4aSRandall Stewart } 2185f8829a4aSRandall Stewart 2186f8829a4aSRandall Stewart /* 2187f8829a4aSRandall Stewart * section to handle address changes before an association is up eg. changes 2188f8829a4aSRandall Stewart * during INIT/INIT-ACK/COOKIE-ECHO handshake 2189f8829a4aSRandall Stewart */ 2190f8829a4aSRandall Stewart 2191f8829a4aSRandall Stewart /* 2192f8829a4aSRandall Stewart * processes the (local) addresses in the INIT-ACK chunk 2193f8829a4aSRandall Stewart */ 2194f8829a4aSRandall Stewart static void 2195f8829a4aSRandall Stewart sctp_process_initack_addresses(struct sctp_tcb *stcb, struct mbuf *m, 2196f8829a4aSRandall Stewart unsigned int offset, unsigned int length) 2197f8829a4aSRandall Stewart { 2198f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2199f8829a4aSRandall Stewart uint16_t plen, ptype; 220042551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 2201f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2202f8829a4aSRandall Stewart struct sockaddr_in6 sin6; 2203f8829a4aSRandall Stewart struct sockaddr_in sin; 2204f8829a4aSRandall Stewart struct sockaddr *sa; 220542551e99SRandall Stewart uint32_t vrf_id; 2206f8829a4aSRandall Stewart 2207ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "processing init-ack addresses\n"); 2208ad81507eSRandall Stewart if (stcb == NULL) /* Un-needed check for SA */ 2209ad81507eSRandall Stewart return; 2210f8829a4aSRandall Stewart 2211f8829a4aSRandall Stewart /* convert to upper bound */ 2212f8829a4aSRandall Stewart length += offset; 2213f8829a4aSRandall Stewart 2214f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2215f8829a4aSRandall Stewart return; 2216f8829a4aSRandall Stewart } 2217f8829a4aSRandall Stewart /* init the addresses */ 2218f8829a4aSRandall Stewart bzero(&sin6, sizeof(sin6)); 2219f8829a4aSRandall Stewart sin6.sin6_family = AF_INET6; 2220f8829a4aSRandall Stewart sin6.sin6_len = sizeof(sin6); 2221f8829a4aSRandall Stewart sin6.sin6_port = stcb->rport; 2222f8829a4aSRandall Stewart 2223f8829a4aSRandall Stewart bzero(&sin, sizeof(sin)); 2224f8829a4aSRandall Stewart sin.sin_len = sizeof(sin); 2225f8829a4aSRandall Stewart sin.sin_family = AF_INET; 2226f8829a4aSRandall Stewart sin.sin_port = stcb->rport; 2227f8829a4aSRandall Stewart 2228f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2229f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2230f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2231f8829a4aSRandall Stewart while (ph != NULL) { 2232f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2233f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2234f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS) { 2235f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 2236f8829a4aSRandall Stewart 2237f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2238f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2239f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2240f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2241f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2242f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2243f8829a4aSRandall Stewart a6p == NULL) { 2244f8829a4aSRandall Stewart return; 2245f8829a4aSRandall Stewart } 2246f8829a4aSRandall Stewart memcpy(&sin6.sin6_addr, a6p->addr, 2247f8829a4aSRandall Stewart sizeof(struct in6_addr)); 2248f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin6; 2249f8829a4aSRandall Stewart } else if (ptype == SCTP_IPV4_ADDRESS) { 2250f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2251f8829a4aSRandall Stewart 2252f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 225342551e99SRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, offset, 225442551e99SRandall Stewart sizeof(struct sctp_ipv4addr_param), 225542551e99SRandall Stewart (uint8_t *) & addr_store); 2256f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2257f8829a4aSRandall Stewart a4p == NULL) { 2258f8829a4aSRandall Stewart return; 2259f8829a4aSRandall Stewart } 2260f8829a4aSRandall Stewart sin.sin_addr.s_addr = a4p->addr; 2261f8829a4aSRandall Stewart sa = (struct sockaddr *)&sin; 2262f8829a4aSRandall Stewart } else { 2263f8829a4aSRandall Stewart goto next_addr; 2264f8829a4aSRandall Stewart } 2265f8829a4aSRandall Stewart 2266f8829a4aSRandall Stewart /* see if this address really (still) exists */ 2267bff64a4dSRandall Stewart if (stcb) { 2268bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2269bff64a4dSRandall Stewart } else { 227042551e99SRandall Stewart vrf_id = SCTP_DEFAULT_VRFID; 2271bff64a4dSRandall Stewart } 2272bff64a4dSRandall Stewart 227342551e99SRandall Stewart sctp_ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 227442551e99SRandall Stewart if (sctp_ifa == NULL) { 2275f8829a4aSRandall Stewart /* address doesn't exist anymore */ 2276f8829a4aSRandall Stewart int status; 2277f8829a4aSRandall Stewart 2278f8829a4aSRandall Stewart /* are ASCONFs allowed ? */ 2279f8829a4aSRandall Stewart if ((sctp_is_feature_on(stcb->sctp_ep, 2280f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) && 2281f8829a4aSRandall Stewart stcb->asoc.peer_supports_asconf) { 2282f8829a4aSRandall Stewart /* queue an ASCONF DEL_IP_ADDRESS */ 2283f8829a4aSRandall Stewart status = sctp_asconf_queue_add_sa(stcb, sa, 2284f8829a4aSRandall Stewart SCTP_DEL_IP_ADDRESS); 2285f8829a4aSRandall Stewart /* 2286f8829a4aSRandall Stewart * if queued ok, and in correct state, set 2287f8829a4aSRandall Stewart * the ASCONF timer 2288f8829a4aSRandall Stewart */ 2289f8829a4aSRandall Stewart if (status == 0 && 2290f8829a4aSRandall Stewart SCTP_GET_STATE(&stcb->asoc) == 2291f8829a4aSRandall Stewart SCTP_STATE_OPEN) { 2292f8829a4aSRandall Stewart sctp_timer_start(SCTP_TIMER_TYPE_ASCONF, 2293f8829a4aSRandall Stewart stcb->sctp_ep, stcb, 2294f8829a4aSRandall Stewart stcb->asoc.primary_destination); 2295f8829a4aSRandall Stewart } 2296f8829a4aSRandall Stewart } 2297f8829a4aSRandall Stewart } 2298f8829a4aSRandall Stewart next_addr: 2299f8829a4aSRandall Stewart /* 2300f8829a4aSRandall Stewart * Sanity check: Make sure the length isn't 0, otherwise 2301f8829a4aSRandall Stewart * we'll be stuck in this loop for a long time... 2302f8829a4aSRandall Stewart */ 2303f8829a4aSRandall Stewart if (SCTP_SIZE32(plen) == 0) { 2304ad81507eSRandall Stewart SCTP_PRINTF("process_initack_addrs: bad len (%d) type=%xh\n", 2305f8829a4aSRandall Stewart plen, ptype); 2306f8829a4aSRandall Stewart return; 2307f8829a4aSRandall Stewart } 2308f8829a4aSRandall Stewart /* get next parameter */ 2309f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2310f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) 2311f8829a4aSRandall Stewart return; 2312f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2313f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2314f8829a4aSRandall Stewart } /* while */ 2315f8829a4aSRandall Stewart } 2316f8829a4aSRandall Stewart 2317f8829a4aSRandall Stewart /* FIX ME: need to verify return result for v6 address type if v6 disabled */ 2318f8829a4aSRandall Stewart /* 2319f8829a4aSRandall Stewart * checks to see if a specific address is in the initack address list returns 2320f8829a4aSRandall Stewart * 1 if found, 0 if not 2321f8829a4aSRandall Stewart */ 2322f8829a4aSRandall Stewart static uint32_t 2323f8829a4aSRandall Stewart sctp_addr_in_initack(struct sctp_tcb *stcb, struct mbuf *m, uint32_t offset, 2324f8829a4aSRandall Stewart uint32_t length, struct sockaddr *sa) 2325f8829a4aSRandall Stewart { 2326f8829a4aSRandall Stewart struct sctp_paramhdr tmp_param, *ph; 2327f8829a4aSRandall Stewart uint16_t plen, ptype; 2328f8829a4aSRandall Stewart struct sctp_ipv6addr_param addr_store; 2329f8829a4aSRandall Stewart struct sockaddr_in *sin; 2330f8829a4aSRandall Stewart struct sctp_ipv4addr_param *a4p; 2331f8829a4aSRandall Stewart 2332f8829a4aSRandall Stewart #ifdef INET6 233342551e99SRandall Stewart struct sockaddr_in6 *sin6; 2334f8829a4aSRandall Stewart struct sctp_ipv6addr_param *a6p; 233542551e99SRandall Stewart struct sockaddr_in6 sin6_tmp; 2336f8829a4aSRandall Stewart 2337f8829a4aSRandall Stewart #endif /* INET6 */ 2338f8829a4aSRandall Stewart 2339f8829a4aSRandall Stewart if ( 2340f8829a4aSRandall Stewart #ifdef INET6 2341f8829a4aSRandall Stewart (sa->sa_family != AF_INET6) && 2342f8829a4aSRandall Stewart #endif /* INET6 */ 2343f8829a4aSRandall Stewart (sa->sa_family != AF_INET)) 2344f8829a4aSRandall Stewart return (0); 2345f8829a4aSRandall Stewart 2346ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF2, "find_initack_addr: starting search for "); 2347ad81507eSRandall Stewart SCTPDBG_ADDR(SCTP_DEBUG_ASCONF2, sa); 2348f8829a4aSRandall Stewart /* convert to upper bound */ 2349f8829a4aSRandall Stewart length += offset; 2350f8829a4aSRandall Stewart 2351f8829a4aSRandall Stewart if ((offset + sizeof(struct sctp_paramhdr)) > length) { 2352ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2353ad81507eSRandall Stewart "find_initack_addr: invalid offset?\n"); 2354f8829a4aSRandall Stewart return (0); 2355f8829a4aSRandall Stewart } 2356f8829a4aSRandall Stewart /* go through the addresses in the init-ack */ 2357f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *)sctp_m_getptr(m, offset, 2358f8829a4aSRandall Stewart sizeof(struct sctp_paramhdr), (uint8_t *) & tmp_param); 2359f8829a4aSRandall Stewart while (ph != NULL) { 2360f8829a4aSRandall Stewart ptype = ntohs(ph->param_type); 2361f8829a4aSRandall Stewart plen = ntohs(ph->param_length); 2362f8829a4aSRandall Stewart #ifdef INET6 2363f8829a4aSRandall Stewart if (ptype == SCTP_IPV6_ADDRESS && sa->sa_family == AF_INET6) { 2364f8829a4aSRandall Stewart /* get the entire IPv6 address param */ 2365f8829a4aSRandall Stewart a6p = (struct sctp_ipv6addr_param *) 2366f8829a4aSRandall Stewart sctp_m_getptr(m, offset, 2367f8829a4aSRandall Stewart sizeof(struct sctp_ipv6addr_param), 2368f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2369f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv6addr_param) || 2370ad81507eSRandall Stewart (ph == NULL) || 2371ad81507eSRandall Stewart (a6p == NULL)) { 2372f8829a4aSRandall Stewart return (0); 2373f8829a4aSRandall Stewart } 2374f8829a4aSRandall Stewart sin6 = (struct sockaddr_in6 *)sa; 2375f8829a4aSRandall Stewart if (IN6_IS_SCOPE_LINKLOCAL(&sin6->sin6_addr)) { 2376f8829a4aSRandall Stewart /* create a copy and clear scope */ 2377f8829a4aSRandall Stewart memcpy(&sin6_tmp, sin6, 2378f8829a4aSRandall Stewart sizeof(struct sockaddr_in6)); 2379f8829a4aSRandall Stewart sin6 = &sin6_tmp; 2380f8829a4aSRandall Stewart in6_clearscope(&sin6->sin6_addr); 2381f8829a4aSRandall Stewart } 2382f8829a4aSRandall Stewart if (memcmp(&sin6->sin6_addr, a6p->addr, 2383f8829a4aSRandall Stewart sizeof(struct in6_addr)) == 0) { 2384f8829a4aSRandall Stewart /* found it */ 2385f8829a4aSRandall Stewart return (1); 2386f8829a4aSRandall Stewart } 2387f8829a4aSRandall Stewart } else 2388f8829a4aSRandall Stewart #endif /* INET6 */ 2389f8829a4aSRandall Stewart 2390f8829a4aSRandall Stewart if (ptype == SCTP_IPV4_ADDRESS && 2391f8829a4aSRandall Stewart sa->sa_family == AF_INET) { 2392f8829a4aSRandall Stewart /* get the entire IPv4 address param */ 2393f8829a4aSRandall Stewart a4p = (struct sctp_ipv4addr_param *)sctp_m_getptr(m, 2394f8829a4aSRandall Stewart offset, sizeof(struct sctp_ipv4addr_param), 2395f8829a4aSRandall Stewart (uint8_t *) & addr_store); 2396f8829a4aSRandall Stewart if (plen != sizeof(struct sctp_ipv4addr_param) || 2397ad81507eSRandall Stewart (ph == NULL) || 2398ad81507eSRandall Stewart (a4p == NULL)) { 2399f8829a4aSRandall Stewart return (0); 2400f8829a4aSRandall Stewart } 2401f8829a4aSRandall Stewart sin = (struct sockaddr_in *)sa; 2402f8829a4aSRandall Stewart if (sin->sin_addr.s_addr == a4p->addr) { 2403f8829a4aSRandall Stewart /* found it */ 2404f8829a4aSRandall Stewart return (1); 2405f8829a4aSRandall Stewart } 2406f8829a4aSRandall Stewart } 2407f8829a4aSRandall Stewart /* get next parameter */ 2408f8829a4aSRandall Stewart offset += SCTP_SIZE32(plen); 2409f8829a4aSRandall Stewart if (offset + sizeof(struct sctp_paramhdr) > length) 2410f8829a4aSRandall Stewart return (0); 2411f8829a4aSRandall Stewart ph = (struct sctp_paramhdr *) 2412f8829a4aSRandall Stewart sctp_m_getptr(m, offset, sizeof(struct sctp_paramhdr), 2413f8829a4aSRandall Stewart (uint8_t *) & tmp_param); 2414f8829a4aSRandall Stewart } /* while */ 2415f8829a4aSRandall Stewart /* not found! */ 2416f8829a4aSRandall Stewart return (0); 2417f8829a4aSRandall Stewart } 2418f8829a4aSRandall Stewart 2419f8829a4aSRandall Stewart /* 2420f8829a4aSRandall Stewart * makes sure that the current endpoint local addr list is consistent with 2421f8829a4aSRandall Stewart * the new association (eg. subset bound, asconf allowed) adds addresses as 2422f8829a4aSRandall Stewart * necessary 2423f8829a4aSRandall Stewart */ 2424f8829a4aSRandall Stewart static void 2425f8829a4aSRandall Stewart sctp_check_address_list_ep(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2426f8829a4aSRandall Stewart int length, struct sockaddr *init_addr) 2427f8829a4aSRandall Stewart { 2428f8829a4aSRandall Stewart struct sctp_laddr *laddr; 2429f8829a4aSRandall Stewart 2430f8829a4aSRandall Stewart /* go through the endpoint list */ 2431f8829a4aSRandall Stewart LIST_FOREACH(laddr, &stcb->sctp_ep->sctp_addr_list, sctp_nxt_addr) { 2432f8829a4aSRandall Stewart /* be paranoid and validate the laddr */ 2433f8829a4aSRandall Stewart if (laddr->ifa == NULL) { 2434ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, 2435ad81507eSRandall Stewart "check_addr_list_ep: laddr->ifa is NULL"); 2436f8829a4aSRandall Stewart continue; 2437f8829a4aSRandall Stewart } 243842551e99SRandall Stewart if (laddr->ifa == NULL) { 2439ad81507eSRandall Stewart SCTPDBG(SCTP_DEBUG_ASCONF1, "check_addr_list_ep: laddr->ifa->ifa_addr is NULL"); 2440f8829a4aSRandall Stewart continue; 2441f8829a4aSRandall Stewart } 2442f8829a4aSRandall Stewart /* do i have it implicitly? */ 244342551e99SRandall Stewart if (sctp_cmpaddr(&laddr->ifa->address.sa, init_addr)) { 2444f8829a4aSRandall Stewart continue; 2445f8829a4aSRandall Stewart } 2446f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2447f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 244842551e99SRandall Stewart &laddr->ifa->address.sa)) { 2449f8829a4aSRandall Stewart /* try to add it */ 2450f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, laddr->ifa, 2451f8829a4aSRandall Stewart SCTP_ADD_IP_ADDRESS); 2452f8829a4aSRandall Stewart } 2453f8829a4aSRandall Stewart } 2454f8829a4aSRandall Stewart } 2455f8829a4aSRandall Stewart 2456f8829a4aSRandall Stewart /* 2457f8829a4aSRandall Stewart * makes sure that the current kernel address list is consistent with the new 2458f8829a4aSRandall Stewart * association (with all addrs bound) adds addresses as necessary 2459f8829a4aSRandall Stewart */ 2460f8829a4aSRandall Stewart static void 2461f8829a4aSRandall Stewart sctp_check_address_list_all(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2462f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2463f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2464f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2465f8829a4aSRandall Stewart { 246642551e99SRandall Stewart struct sctp_vrf *vrf = NULL; 246742551e99SRandall Stewart struct sctp_ifn *sctp_ifn; 246842551e99SRandall Stewart struct sctp_ifa *sctp_ifa; 246942551e99SRandall Stewart uint32_t vrf_id; 2470f8829a4aSRandall Stewart 2471bff64a4dSRandall Stewart if (stcb) { 2472bff64a4dSRandall Stewart vrf_id = stcb->asoc.vrf_id; 2473bff64a4dSRandall Stewart } else { 2474ad81507eSRandall Stewart return; 2475bff64a4dSRandall Stewart } 247642551e99SRandall Stewart vrf = sctp_find_vrf(vrf_id); 247742551e99SRandall Stewart if (vrf == NULL) { 247842551e99SRandall Stewart return; 247942551e99SRandall Stewart } 2480f8829a4aSRandall Stewart /* go through all our known interfaces */ 248142551e99SRandall Stewart LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) { 248242551e99SRandall Stewart if (loopback_scope == 0 && SCTP_IFN_IS_IFT_LOOP(sctp_ifn)) { 2483f8829a4aSRandall Stewart /* skip loopback interface */ 2484f8829a4aSRandall Stewart continue; 2485f8829a4aSRandall Stewart } 2486f8829a4aSRandall Stewart /* go through each interface address */ 248742551e99SRandall Stewart LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) { 2488f8829a4aSRandall Stewart /* do i have it implicitly? */ 248942551e99SRandall Stewart if (sctp_cmpaddr(&sctp_ifa->address.sa, init_addr)) { 2490f8829a4aSRandall Stewart continue; 2491f8829a4aSRandall Stewart } 2492f8829a4aSRandall Stewart /* check to see if in the init-ack */ 2493f8829a4aSRandall Stewart if (!sctp_addr_in_initack(stcb, m, offset, length, 249442551e99SRandall Stewart &sctp_ifa->address.sa)) { 2495f8829a4aSRandall Stewart /* try to add it */ 2496f8829a4aSRandall Stewart sctp_addr_mgmt_assoc(stcb->sctp_ep, stcb, 249742551e99SRandall Stewart sctp_ifa, SCTP_ADD_IP_ADDRESS); 2498f8829a4aSRandall Stewart } 2499f8829a4aSRandall Stewart } /* end foreach ifa */ 2500f8829a4aSRandall Stewart } /* end foreach ifn */ 2501f8829a4aSRandall Stewart } 2502f8829a4aSRandall Stewart 2503f8829a4aSRandall Stewart /* 2504f8829a4aSRandall Stewart * validates an init-ack chunk (from a cookie-echo) with current addresses 2505f8829a4aSRandall Stewart * adds addresses from the init-ack into our local address list, if needed 2506f8829a4aSRandall Stewart * queues asconf adds/deletes addresses as needed and makes appropriate list 2507f8829a4aSRandall Stewart * changes for source address selection m, offset: points to the start of the 2508f8829a4aSRandall Stewart * address list in an init-ack chunk length: total length of the address 2509f8829a4aSRandall Stewart * params only init_addr: address where my INIT-ACK was sent from 2510f8829a4aSRandall Stewart */ 2511f8829a4aSRandall Stewart void 2512f8829a4aSRandall Stewart sctp_check_address_list(struct sctp_tcb *stcb, struct mbuf *m, int offset, 2513f8829a4aSRandall Stewart int length, struct sockaddr *init_addr, 2514f8829a4aSRandall Stewart uint16_t local_scope, uint16_t site_scope, 2515f8829a4aSRandall Stewart uint16_t ipv4_scope, uint16_t loopback_scope) 2516f8829a4aSRandall Stewart { 2517f8829a4aSRandall Stewart /* process the local addresses in the initack */ 2518f8829a4aSRandall Stewart sctp_process_initack_addresses(stcb, m, offset, length); 2519f8829a4aSRandall Stewart 2520f8829a4aSRandall Stewart if (stcb->sctp_ep->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) { 2521f8829a4aSRandall Stewart /* bound all case */ 2522f8829a4aSRandall Stewart sctp_check_address_list_all(stcb, m, offset, length, init_addr, 2523f8829a4aSRandall Stewart local_scope, site_scope, ipv4_scope, loopback_scope); 2524f8829a4aSRandall Stewart } else { 2525f8829a4aSRandall Stewart /* subset bound case */ 2526f8829a4aSRandall Stewart if (sctp_is_feature_on(stcb->sctp_ep, 2527f8829a4aSRandall Stewart SCTP_PCB_FLAGS_DO_ASCONF)) { 2528f8829a4aSRandall Stewart /* asconf's allowed */ 2529f8829a4aSRandall Stewart sctp_check_address_list_ep(stcb, m, offset, length, 2530f8829a4aSRandall Stewart init_addr); 2531f8829a4aSRandall Stewart } 2532f8829a4aSRandall Stewart /* else, no asconfs allowed, so what we sent is what we get */ 2533f8829a4aSRandall Stewart } 2534f8829a4aSRandall Stewart } 2535f8829a4aSRandall Stewart 2536f8829a4aSRandall Stewart /* 2537f8829a4aSRandall Stewart * sctp_bindx() support 2538f8829a4aSRandall Stewart */ 2539f8829a4aSRandall Stewart uint32_t 254042551e99SRandall Stewart sctp_addr_mgmt_ep_sa(struct sctp_inpcb *inp, struct sockaddr *sa, uint32_t type, uint32_t vrf_id) 2541f8829a4aSRandall Stewart { 254242551e99SRandall Stewart struct sctp_ifa *ifa; 2543f8829a4aSRandall Stewart 254442551e99SRandall Stewart if (sa->sa_len == 0) { 2545f8829a4aSRandall Stewart return (EINVAL); 254642551e99SRandall Stewart } 254742551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 254842551e99SRandall Stewart /* For an add the address MUST be on the system */ 254942551e99SRandall Stewart ifa = sctp_find_ifa_by_addr(sa, vrf_id, 0); 255042551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 255142551e99SRandall Stewart /* For a delete we need to find it in the inp */ 255242551e99SRandall Stewart ifa = sctp_find_ifa_in_ep(inp, sa, 0); 255342551e99SRandall Stewart } else { 255442551e99SRandall Stewart ifa = NULL; 255542551e99SRandall Stewart } 2556f8829a4aSRandall Stewart if (ifa != NULL) { 2557f8829a4aSRandall Stewart /* add this address */ 255842551e99SRandall Stewart struct sctp_asconf_iterator *asc; 255942551e99SRandall Stewart struct sctp_laddr *wi; 256042551e99SRandall Stewart 256142551e99SRandall Stewart SCTP_MALLOC(asc, struct sctp_asconf_iterator *, 256242551e99SRandall Stewart sizeof(struct sctp_asconf_iterator), "SCTP_ASCONF_ITERATOR"); 256342551e99SRandall Stewart if (asc == NULL) { 256442551e99SRandall Stewart return (ENOMEM); 256542551e99SRandall Stewart } 256642551e99SRandall Stewart wi = SCTP_ZONE_GET(sctppcbinfo.ipi_zone_laddr, struct sctp_laddr); 256742551e99SRandall Stewart if (wi == NULL) { 256842551e99SRandall Stewart SCTP_FREE(asc); 256942551e99SRandall Stewart return (ENOMEM); 257042551e99SRandall Stewart } 257142551e99SRandall Stewart if (type == SCTP_ADD_IP_ADDRESS) { 257242551e99SRandall Stewart sctp_add_local_addr_ep(inp, ifa, type); 257342551e99SRandall Stewart } else if (type == SCTP_DEL_IP_ADDRESS) { 257442551e99SRandall Stewart struct sctp_laddr *laddr; 257542551e99SRandall Stewart 257642551e99SRandall Stewart LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) { 257742551e99SRandall Stewart if (ifa == laddr->ifa) { 257842551e99SRandall Stewart /* Mark in the delete */ 257942551e99SRandall Stewart laddr->action = type; 258042551e99SRandall Stewart } 258142551e99SRandall Stewart } 258242551e99SRandall Stewart } 258342551e99SRandall Stewart LIST_INIT(&asc->list_of_work); 258442551e99SRandall Stewart asc->cnt = 1; 258542551e99SRandall Stewart SCTP_INCR_LADDR_COUNT(); 258642551e99SRandall Stewart wi->ifa = ifa; 258742551e99SRandall Stewart wi->action = type; 258842551e99SRandall Stewart atomic_add_int(&ifa->refcount, 1); 258942551e99SRandall Stewart LIST_INSERT_HEAD(&asc->list_of_work, wi, sctp_nxt_addr); 2590ad81507eSRandall Stewart (void)sctp_initiate_iterator(sctp_iterator_ep, 259142551e99SRandall Stewart sctp_iterator_stcb, 259242551e99SRandall Stewart sctp_iterator_ep_end, 259342551e99SRandall Stewart SCTP_PCB_ANY_FLAGS, 259442551e99SRandall Stewart SCTP_PCB_ANY_FEATURES, SCTP_ASOC_ANY_STATE, (void *)asc, 0, 259542551e99SRandall Stewart sctp_iterator_end, inp, 0); 2596f8829a4aSRandall Stewart } else { 2597f8829a4aSRandall Stewart /* invalid address! */ 2598f8829a4aSRandall Stewart return (EADDRNOTAVAIL); 2599f8829a4aSRandall Stewart } 2600f8829a4aSRandall Stewart return (0); 2601f8829a4aSRandall Stewart } 2602