xref: /freebsd/sys/netinet/sctp_sysctl.c (revision 830940567b49bb0c08dfaed40418999e76616909)
1 /*-
2  * Copyright (c) 2007, by Cisco Systems, Inc. All rights reserved.
3  *
4  * Redistribution and use in source and binary forms, with or without
5  * modification, are permitted provided that the following conditions are met:
6  *
7  * a) Redistributions of source code must retain the above copyright notice,
8  *   this list of conditions and the following disclaimer.
9  *
10  * b) Redistributions in binary form must reproduce the above copyright
11  *    notice, this list of conditions and the following disclaimer in
12  *   the documentation and/or other materials provided with the distribution.
13  *
14  * c) Neither the name of Cisco Systems, Inc. nor the names of its
15  *    contributors may be used to endorse or promote products derived
16  *    from this software without specific prior written permission.
17  *
18  * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
19  * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
20  * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21  * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
22  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
23  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
24  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
25  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
26  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
27  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
28  * THE POSSIBILITY OF SUCH DAMAGE.
29  */
30 
31 #include <sys/cdefs.h>
32 __FBSDID("$FreeBSD$");
33 
34 #include <netinet/sctp_os.h>
35 #include <netinet/sctp.h>
36 #include <netinet/sctp_constants.h>
37 #include <netinet/sctp_sysctl.h>
38 #include <netinet/sctp_pcb.h>
39 #include <netinet/sctputil.h>
40 #include <netinet/sctp_output.h>
41 
42 /*
43  * sysctl tunable variables
44  */
45 
46 void
47 sctp_init_sysctls()
48 {
49 	SCTP_BASE_SYSCTL(sctp_sendspace) = SCTPCTL_MAXDGRAM_DEFAULT;
50 	SCTP_BASE_SYSCTL(sctp_recvspace) = SCTPCTL_RECVSPACE_DEFAULT;
51 	SCTP_BASE_SYSCTL(sctp_auto_asconf) = SCTPCTL_AUTOASCONF_DEFAULT;
52 	SCTP_BASE_SYSCTL(sctp_multiple_asconfs) = SCTPCTL_MULTIPLEASCONFS_DEFAULT;
53 	SCTP_BASE_SYSCTL(sctp_ecn_enable) = SCTPCTL_ECN_ENABLE_DEFAULT;
54 	SCTP_BASE_SYSCTL(sctp_ecn_nonce) = SCTPCTL_ECN_NONCE_DEFAULT;
55 	SCTP_BASE_SYSCTL(sctp_strict_sacks) = SCTPCTL_STRICT_SACKS_DEFAULT;
56 	SCTP_BASE_SYSCTL(sctp_no_csum_on_loopback) = SCTPCTL_LOOPBACK_NOCSUM_DEFAULT;
57 	SCTP_BASE_SYSCTL(sctp_strict_init) = SCTPCTL_STRICT_INIT_DEFAULT;
58 	SCTP_BASE_SYSCTL(sctp_peer_chunk_oh) = SCTPCTL_PEER_CHKOH_DEFAULT;
59 	SCTP_BASE_SYSCTL(sctp_max_burst_default) = SCTPCTL_MAXBURST_DEFAULT;
60 	SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue) = SCTPCTL_MAXCHUNKS_DEFAULT;
61 	SCTP_BASE_SYSCTL(sctp_hashtblsize) = SCTPCTL_TCBHASHSIZE_DEFAULT;
62 	SCTP_BASE_SYSCTL(sctp_pcbtblsize) = SCTPCTL_PCBHASHSIZE_DEFAULT;
63 	SCTP_BASE_SYSCTL(sctp_min_split_point) = SCTPCTL_MIN_SPLIT_POINT_DEFAULT;
64 	SCTP_BASE_SYSCTL(sctp_chunkscale) = SCTPCTL_CHUNKSCALE_DEFAULT;
65 	SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default) = SCTPCTL_DELAYED_SACK_TIME_DEFAULT;
66 	SCTP_BASE_SYSCTL(sctp_sack_freq_default) = SCTPCTL_SACK_FREQ_DEFAULT;
67 	SCTP_BASE_SYSCTL(sctp_system_free_resc_limit) = SCTPCTL_SYS_RESOURCE_DEFAULT;
68 	SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit) = SCTPCTL_ASOC_RESOURCE_DEFAULT;
69 	SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default) = SCTPCTL_HEARTBEAT_INTERVAL_DEFAULT;
70 	SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default) = SCTPCTL_PMTU_RAISE_TIME_DEFAULT;
71 	SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default) = SCTPCTL_SHUTDOWN_GUARD_TIME_DEFAULT;
72 	SCTP_BASE_SYSCTL(sctp_secret_lifetime_default) = SCTPCTL_SECRET_LIFETIME_DEFAULT;
73 	SCTP_BASE_SYSCTL(sctp_rto_max_default) = SCTPCTL_RTO_MAX_DEFAULT;
74 	SCTP_BASE_SYSCTL(sctp_rto_min_default) = SCTPCTL_RTO_MIN_DEFAULT;
75 	SCTP_BASE_SYSCTL(sctp_rto_initial_default) = SCTPCTL_RTO_INITIAL_DEFAULT;
76 	SCTP_BASE_SYSCTL(sctp_init_rto_max_default) = SCTPCTL_INIT_RTO_MAX_DEFAULT;
77 	SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default) = SCTPCTL_VALID_COOKIE_LIFE_DEFAULT;
78 	SCTP_BASE_SYSCTL(sctp_init_rtx_max_default) = SCTPCTL_INIT_RTX_MAX_DEFAULT;
79 	SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default) = SCTPCTL_ASSOC_RTX_MAX_DEFAULT;
80 	SCTP_BASE_SYSCTL(sctp_path_rtx_max_default) = SCTPCTL_PATH_RTX_MAX_DEFAULT;
81 	SCTP_BASE_SYSCTL(sctp_add_more_threshold) = SCTPCTL_ADD_MORE_ON_OUTPUT_DEFAULT;
82 	SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default) = SCTPCTL_OUTGOING_STREAMS_DEFAULT;
83 	SCTP_BASE_SYSCTL(sctp_cmt_on_off) = SCTPCTL_CMT_ON_OFF_DEFAULT;
84 	/* EY */
85 	SCTP_BASE_SYSCTL(sctp_nr_sack_on_off) = SCTPCTL_NR_SACK_ON_OFF_DEFAULT;
86 	SCTP_BASE_SYSCTL(sctp_cmt_use_dac) = SCTPCTL_CMT_USE_DAC_DEFAULT;
87 	SCTP_BASE_SYSCTL(sctp_cmt_pf) = SCTPCTL_CMT_PF_DEFAULT;
88 	SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst) = SCTPCTL_CWND_MAXBURST_DEFAULT;
89 	SCTP_BASE_SYSCTL(sctp_early_fr) = SCTPCTL_EARLY_FAST_RETRAN_DEFAULT;
90 	SCTP_BASE_SYSCTL(sctp_early_fr_msec) = SCTPCTL_EARLY_FAST_RETRAN_MSEC_DEFAULT;
91 	SCTP_BASE_SYSCTL(sctp_asconf_auth_nochk) = SCTPCTL_ASCONF_AUTH_NOCHK_DEFAULT;
92 	SCTP_BASE_SYSCTL(sctp_auth_disable) = SCTPCTL_AUTH_DISABLE_DEFAULT;
93 	SCTP_BASE_SYSCTL(sctp_nat_friendly) = SCTPCTL_NAT_FRIENDLY_DEFAULT;
94 	SCTP_BASE_SYSCTL(sctp_L2_abc_variable) = SCTPCTL_ABC_L_VAR_DEFAULT;
95 	SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count) = SCTPCTL_MAX_CHAINED_MBUFS_DEFAULT;
96 	SCTP_BASE_SYSCTL(sctp_do_drain) = SCTPCTL_DO_SCTP_DRAIN_DEFAULT;
97 	SCTP_BASE_SYSCTL(sctp_hb_maxburst) = SCTPCTL_HB_MAX_BURST_DEFAULT;
98 	SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit) = SCTPCTL_ABORT_AT_LIMIT_DEFAULT;
99 	SCTP_BASE_SYSCTL(sctp_strict_data_order) = SCTPCTL_STRICT_DATA_ORDER_DEFAULT;
100 	SCTP_BASE_SYSCTL(sctp_min_residual) = SCTPCTL_MIN_RESIDUAL_DEFAULT;
101 	SCTP_BASE_SYSCTL(sctp_max_retran_chunk) = SCTPCTL_MAX_RETRAN_CHUNK_DEFAULT;
102 	SCTP_BASE_SYSCTL(sctp_logging_level) = SCTPCTL_LOGGING_LEVEL_DEFAULT;
103 	/* JRS - Variable for default congestion control module */
104 	SCTP_BASE_SYSCTL(sctp_default_cc_module) = SCTPCTL_DEFAULT_CC_MODULE_DEFAULT;
105 	SCTP_BASE_SYSCTL(sctp_default_frag_interleave) = SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DEFAULT;
106 	SCTP_BASE_SYSCTL(sctp_mobility_base) = SCTPCTL_MOBILITY_BASE_DEFAULT;
107 	SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff) = SCTPCTL_MOBILITY_FASTHANDOFF_DEFAULT;
108 	SCTP_BASE_SYSCTL(sctp_vtag_time_wait) = SCTPCTL_TIME_WAIT_DEFAULT;
109 #if defined(SCTP_LOCAL_TRACE_BUF)
110 	memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
111 #endif
112 	SCTP_BASE_SYSCTL(sctp_udp_tunneling_for_client_enable) = SCTPCTL_UDP_TUNNELING_FOR_CLIENT_ENABLE_DEFAULT;
113 	SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = SCTPCTL_UDP_TUNNELING_PORT_DEFAULT;
114 	SCTP_BASE_SYSCTL(sctp_enable_sack_immediately) = SCTPCTL_SACK_IMMEDIATELY_ENABLE_DEFAULT;
115 	SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly) = SCTPCTL_NAT_FRIENDLY_INITS_DEFAULT;
116 #if defined(SCTP_DEBUG)
117 	SCTP_BASE_SYSCTL(sctp_debug_on) = SCTPCTL_DEBUG_DEFAULT;
118 #endif
119 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
120 	SCTP_BASE_SYSCTL(sctp_output_unlocked) = SCTPCTL_OUTPUT_UNLOCKED_DEFAULT;
121 #endif
122 }
123 
124 
125 /* It returns an upper limit. No filtering is done here */
126 static unsigned int
127 number_of_addresses(struct sctp_inpcb *inp)
128 {
129 	int cnt;
130 	struct sctp_vrf *vrf;
131 	struct sctp_ifn *sctp_ifn;
132 	struct sctp_ifa *sctp_ifa;
133 	struct sctp_laddr *laddr;
134 
135 	cnt = 0;
136 	/* neither Mac OS X nor FreeBSD support mulitple routing functions */
137 	if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
138 		return (0);
139 	}
140 	if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
141 		LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
142 			LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
143 				if ((sctp_ifa->address.sa.sa_family == AF_INET) ||
144 				    (sctp_ifa->address.sa.sa_family == AF_INET6)) {
145 					cnt++;
146 				}
147 			}
148 		}
149 	} else {
150 		LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
151 			if ((laddr->ifa->address.sa.sa_family == AF_INET) ||
152 			    (laddr->ifa->address.sa.sa_family == AF_INET6)) {
153 				cnt++;
154 			}
155 		}
156 	}
157 	return (cnt);
158 }
159 
160 static int
161 copy_out_local_addresses(struct sctp_inpcb *inp, struct sctp_tcb *stcb, struct sysctl_req *req)
162 {
163 	struct sctp_ifn *sctp_ifn;
164 	struct sctp_ifa *sctp_ifa;
165 	int loopback_scope, ipv4_local_scope, local_scope, site_scope;
166 	int ipv4_addr_legal, ipv6_addr_legal;
167 	struct sctp_vrf *vrf;
168 	struct xsctp_laddr xladdr;
169 	struct sctp_laddr *laddr;
170 	int error;
171 
172 	/* Turn on all the appropriate scope */
173 	if (stcb) {
174 		/* use association specific values */
175 		loopback_scope = stcb->asoc.loopback_scope;
176 		ipv4_local_scope = stcb->asoc.ipv4_local_scope;
177 		local_scope = stcb->asoc.local_scope;
178 		site_scope = stcb->asoc.site_scope;
179 	} else {
180 		/* use generic values for endpoints */
181 		loopback_scope = 1;
182 		ipv4_local_scope = 1;
183 		local_scope = 1;
184 		site_scope = 1;
185 	}
186 
187 	/* use only address families of interest */
188 	if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) {
189 		ipv6_addr_legal = 1;
190 		if (SCTP_IPV6_V6ONLY(inp)) {
191 			ipv4_addr_legal = 0;
192 		} else {
193 			ipv4_addr_legal = 1;
194 		}
195 	} else {
196 		ipv4_addr_legal = 1;
197 		ipv6_addr_legal = 0;
198 	}
199 
200 	error = 0;
201 
202 	/* neither Mac OS X nor FreeBSD support mulitple routing functions */
203 	if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
204 		SCTP_INP_RUNLOCK(inp);
205 		SCTP_INP_INFO_RUNLOCK();
206 		return (-1);
207 	}
208 	if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
209 		LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
210 			if ((loopback_scope == 0) && SCTP_IFN_IS_IFT_LOOP(sctp_ifn))
211 				/* Skip loopback if loopback_scope not set */
212 				continue;
213 			LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
214 				if (stcb) {
215 					/*
216 					 * ignore if blacklisted at
217 					 * association level
218 					 */
219 					if (sctp_is_addr_restricted(stcb, sctp_ifa))
220 						continue;
221 				}
222 				switch (sctp_ifa->address.sa.sa_family) {
223 				case AF_INET:
224 					if (ipv4_addr_legal) {
225 						struct sockaddr_in *sin;
226 
227 						sin = (struct sockaddr_in *)&sctp_ifa->address.sa;
228 						if (sin->sin_addr.s_addr == 0)
229 							continue;
230 						if ((ipv4_local_scope == 0) && (IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)))
231 							continue;
232 					} else {
233 						continue;
234 					}
235 					break;
236 #ifdef INET6
237 				case AF_INET6:
238 					if (ipv6_addr_legal) {
239 						struct sockaddr_in6 *sin6;
240 
241 						sin6 = (struct sockaddr_in6 *)&sctp_ifa->address.sa;
242 						if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr))
243 							continue;
244 						if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) {
245 							if (local_scope == 0)
246 								continue;
247 							if (sin6->sin6_scope_id == 0) {
248 								/*
249 								 * bad link
250 								 * local
251 								 * address
252 								 */
253 								if (sa6_recoverscope(sin6) != 0)
254 									continue;
255 							}
256 						}
257 						if ((site_scope == 0) && (IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)))
258 							continue;
259 					} else {
260 						continue;
261 					}
262 					break;
263 #endif
264 				default:
265 					continue;
266 				}
267 				memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
268 				memcpy((void *)&xladdr.address, (const void *)&sctp_ifa->address, sizeof(union sctp_sockstore));
269 				SCTP_INP_RUNLOCK(inp);
270 				SCTP_INP_INFO_RUNLOCK();
271 				error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
272 				if (error) {
273 					return (error);
274 				} else {
275 					SCTP_INP_INFO_RLOCK();
276 					SCTP_INP_RLOCK(inp);
277 				}
278 			}
279 		}
280 	} else {
281 		LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
282 			/* ignore if blacklisted at association level */
283 			if (stcb && sctp_is_addr_restricted(stcb, laddr->ifa))
284 				continue;
285 			memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
286 			memcpy((void *)&xladdr.address, (const void *)&laddr->ifa->address, sizeof(union sctp_sockstore));
287 			xladdr.start_time.tv_sec = (uint32_t) laddr->start_time.tv_sec;
288 			xladdr.start_time.tv_usec = (uint32_t) laddr->start_time.tv_usec;
289 			SCTP_INP_RUNLOCK(inp);
290 			SCTP_INP_INFO_RUNLOCK();
291 			error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
292 			if (error) {
293 				return (error);
294 			} else {
295 				SCTP_INP_INFO_RLOCK();
296 				SCTP_INP_RLOCK(inp);
297 			}
298 		}
299 	}
300 	memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
301 	xladdr.last = 1;
302 	SCTP_INP_RUNLOCK(inp);
303 	SCTP_INP_INFO_RUNLOCK();
304 	error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
305 
306 	if (error) {
307 		return (error);
308 	} else {
309 		SCTP_INP_INFO_RLOCK();
310 		SCTP_INP_RLOCK(inp);
311 		return (0);
312 	}
313 }
314 
315 /*
316  * sysctl functions
317  */
318 static int
319 sctp_assoclist(SYSCTL_HANDLER_ARGS)
320 {
321 	unsigned int number_of_endpoints;
322 	unsigned int number_of_local_addresses;
323 	unsigned int number_of_associations;
324 	unsigned int number_of_remote_addresses;
325 	unsigned int n;
326 	int error;
327 	struct sctp_inpcb *inp;
328 	struct sctp_tcb *stcb;
329 	struct sctp_nets *net;
330 	struct xsctp_inpcb xinpcb;
331 	struct xsctp_tcb xstcb;
332 	struct xsctp_raddr xraddr;
333 
334 	number_of_endpoints = 0;
335 	number_of_local_addresses = 0;
336 	number_of_associations = 0;
337 	number_of_remote_addresses = 0;
338 
339 	SCTP_INP_INFO_RLOCK();
340 	if (req->oldptr == USER_ADDR_NULL) {
341 		LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
342 			SCTP_INP_RLOCK(inp);
343 			number_of_endpoints++;
344 			number_of_local_addresses += number_of_addresses(inp);
345 			LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
346 				number_of_associations++;
347 				number_of_local_addresses += number_of_addresses(inp);
348 				TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
349 					number_of_remote_addresses++;
350 				}
351 			}
352 			SCTP_INP_RUNLOCK(inp);
353 		}
354 		SCTP_INP_INFO_RUNLOCK();
355 		n = (number_of_endpoints + 1) * sizeof(struct xsctp_inpcb) +
356 		    (number_of_local_addresses + number_of_endpoints + number_of_associations) * sizeof(struct xsctp_laddr) +
357 		    (number_of_associations + number_of_endpoints) * sizeof(struct xsctp_tcb) +
358 		    (number_of_remote_addresses + number_of_associations) * sizeof(struct xsctp_raddr);
359 
360 		/* request some more memory than needed */
361 		req->oldidx = (n + n / 8);
362 		return 0;
363 	}
364 	if (req->newptr != USER_ADDR_NULL) {
365 		SCTP_INP_INFO_RUNLOCK();
366 		SCTP_LTRACE_ERR_RET(NULL, NULL, NULL, SCTP_FROM_SCTP_SYSCTL, EPERM);
367 		return EPERM;
368 	}
369 	LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
370 		SCTP_INP_RLOCK(inp);
371 		xinpcb.last = 0;
372 		xinpcb.local_port = ntohs(inp->sctp_lport);
373 		xinpcb.flags = inp->sctp_flags;
374 		xinpcb.features = inp->sctp_features;
375 		xinpcb.total_sends = inp->total_sends;
376 		xinpcb.total_recvs = inp->total_recvs;
377 		xinpcb.total_nospaces = inp->total_nospaces;
378 		xinpcb.fragmentation_point = inp->sctp_frag_point;
379 		if ((inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_ALLGONE) ||
380 		    (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_GONE)) {
381 			xinpcb.qlen = 0;
382 			xinpcb.maxqlen = 0;
383 		} else {
384 			xinpcb.qlen = inp->sctp_socket->so_qlen;
385 			xinpcb.maxqlen = inp->sctp_socket->so_qlimit;
386 		}
387 		SCTP_INP_INCR_REF(inp);
388 		SCTP_INP_RUNLOCK(inp);
389 		SCTP_INP_INFO_RUNLOCK();
390 		error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
391 		if (error) {
392 			SCTP_INP_DECR_REF(inp);
393 			return error;
394 		}
395 		SCTP_INP_INFO_RLOCK();
396 		SCTP_INP_RLOCK(inp);
397 		error = copy_out_local_addresses(inp, NULL, req);
398 		if (error) {
399 			SCTP_INP_DECR_REF(inp);
400 			return error;
401 		}
402 		LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
403 			SCTP_TCB_LOCK(stcb);
404 			atomic_add_int(&stcb->asoc.refcnt, 1);
405 			SCTP_TCB_UNLOCK(stcb);
406 			xstcb.last = 0;
407 			xstcb.local_port = ntohs(inp->sctp_lport);
408 			xstcb.remote_port = ntohs(stcb->rport);
409 			if (stcb->asoc.primary_destination != NULL)
410 				xstcb.primary_addr = stcb->asoc.primary_destination->ro._l_addr;
411 			xstcb.heartbeat_interval = stcb->asoc.heart_beat_delay;
412 			xstcb.state = SCTP_GET_STATE(&stcb->asoc);	/* FIXME */
413 			/* 7.0 does not support these */
414 			xstcb.assoc_id = sctp_get_associd(stcb);
415 			xstcb.peers_rwnd = stcb->asoc.peers_rwnd;
416 			xstcb.in_streams = stcb->asoc.streamincnt;
417 			xstcb.out_streams = stcb->asoc.streamoutcnt;
418 			xstcb.max_nr_retrans = stcb->asoc.overall_error_count;
419 			xstcb.primary_process = 0;	/* not really supported
420 							 * yet */
421 			xstcb.T1_expireries = stcb->asoc.timoinit + stcb->asoc.timocookie;
422 			xstcb.T2_expireries = stcb->asoc.timoshutdown + stcb->asoc.timoshutdownack;
423 			xstcb.retransmitted_tsns = stcb->asoc.marked_retrans;
424 			xstcb.start_time.tv_sec = (uint32_t) stcb->asoc.start_time.tv_sec;
425 			xstcb.start_time.tv_usec = (uint32_t) stcb->asoc.start_time.tv_usec;
426 			xstcb.discontinuity_time.tv_sec = (uint32_t) stcb->asoc.discontinuity_time.tv_sec;
427 			xstcb.discontinuity_time.tv_usec = (uint32_t) stcb->asoc.discontinuity_time.tv_usec;
428 			xstcb.total_sends = stcb->total_sends;
429 			xstcb.total_recvs = stcb->total_recvs;
430 			xstcb.local_tag = stcb->asoc.my_vtag;
431 			xstcb.remote_tag = stcb->asoc.peer_vtag;
432 			xstcb.initial_tsn = stcb->asoc.init_seq_number;
433 			xstcb.highest_tsn = stcb->asoc.sending_seq - 1;
434 			xstcb.cumulative_tsn = stcb->asoc.last_acked_seq;
435 			xstcb.cumulative_tsn_ack = stcb->asoc.cumulative_tsn;
436 			xstcb.mtu = stcb->asoc.smallest_mtu;
437 			xstcb.refcnt = stcb->asoc.refcnt;
438 			SCTP_INP_RUNLOCK(inp);
439 			SCTP_INP_INFO_RUNLOCK();
440 			error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
441 			if (error) {
442 				SCTP_INP_DECR_REF(inp);
443 				atomic_subtract_int(&stcb->asoc.refcnt, 1);
444 				return error;
445 			}
446 			SCTP_INP_INFO_RLOCK();
447 			SCTP_INP_RLOCK(inp);
448 			error = copy_out_local_addresses(inp, stcb, req);
449 			if (error) {
450 				SCTP_INP_DECR_REF(inp);
451 				atomic_subtract_int(&stcb->asoc.refcnt, 1);
452 				return error;
453 			}
454 			TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
455 				xraddr.last = 0;
456 				xraddr.address = net->ro._l_addr;
457 				xraddr.active = ((net->dest_state & SCTP_ADDR_REACHABLE) == SCTP_ADDR_REACHABLE);
458 				xraddr.confirmed = ((net->dest_state & SCTP_ADDR_UNCONFIRMED) == 0);
459 				xraddr.heartbeat_enabled = ((net->dest_state & SCTP_ADDR_NOHB) == 0);
460 				xraddr.rto = net->RTO;
461 				xraddr.max_path_rtx = net->failure_threshold;
462 				xraddr.rtx = net->marked_retrans;
463 				xraddr.error_counter = net->error_count;
464 				xraddr.cwnd = net->cwnd;
465 				xraddr.flight_size = net->flight_size;
466 				xraddr.mtu = net->mtu;
467 				xraddr.rtt = net->rtt;
468 				xraddr.start_time.tv_sec = (uint32_t) net->start_time.tv_sec;
469 				xraddr.start_time.tv_usec = (uint32_t) net->start_time.tv_usec;
470 				SCTP_INP_RUNLOCK(inp);
471 				SCTP_INP_INFO_RUNLOCK();
472 				error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
473 				if (error) {
474 					SCTP_INP_DECR_REF(inp);
475 					atomic_subtract_int(&stcb->asoc.refcnt, 1);
476 					return error;
477 				}
478 				SCTP_INP_INFO_RLOCK();
479 				SCTP_INP_RLOCK(inp);
480 			}
481 			atomic_subtract_int(&stcb->asoc.refcnt, 1);
482 			memset((void *)&xraddr, 0, sizeof(struct xsctp_raddr));
483 			xraddr.last = 1;
484 			SCTP_INP_RUNLOCK(inp);
485 			SCTP_INP_INFO_RUNLOCK();
486 			error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
487 			if (error) {
488 				SCTP_INP_DECR_REF(inp);
489 				return error;
490 			}
491 			SCTP_INP_INFO_RLOCK();
492 			SCTP_INP_RLOCK(inp);
493 		}
494 		SCTP_INP_DECR_REF(inp);
495 		SCTP_INP_RUNLOCK(inp);
496 		SCTP_INP_INFO_RUNLOCK();
497 		memset((void *)&xstcb, 0, sizeof(struct xsctp_tcb));
498 		xstcb.last = 1;
499 		error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
500 		if (error) {
501 			return error;
502 		}
503 		SCTP_INP_INFO_RLOCK();
504 	}
505 	SCTP_INP_INFO_RUNLOCK();
506 
507 	memset((void *)&xinpcb, 0, sizeof(struct xsctp_inpcb));
508 	xinpcb.last = 1;
509 	error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
510 	return error;
511 }
512 
513 
514 #define RANGECHK(var, min, max) \
515 	if ((var) < (min)) { (var) = (min); } \
516 	else if ((var) > (max)) { (var) = (max); }
517 
518 static int
519 sysctl_sctp_udp_tunneling_check(SYSCTL_HANDLER_ARGS)
520 {
521 	int error;
522 	uint32_t old_sctp_udp_tunneling_port;
523 
524 	SCTP_INP_INFO_RLOCK();
525 	old_sctp_udp_tunneling_port = SCTP_BASE_SYSCTL(sctp_udp_tunneling_port);
526 	SCTP_INP_INFO_RUNLOCK();
527 	error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
528 	if (error == 0) {
529 		RANGECHK(SCTP_BASE_SYSCTL(sctp_udp_tunneling_port), SCTPCTL_UDP_TUNNELING_PORT_MIN, SCTPCTL_UDP_TUNNELING_PORT_MAX);
530 		if (old_sctp_udp_tunneling_port == SCTP_BASE_SYSCTL(sctp_udp_tunneling_port)) {
531 			error = 0;
532 			goto out;
533 		}
534 		SCTP_INP_INFO_WLOCK();
535 		if (old_sctp_udp_tunneling_port) {
536 			sctp_over_udp_stop();
537 		}
538 		if (SCTP_BASE_SYSCTL(sctp_udp_tunneling_port)) {
539 			if (sctp_over_udp_start()) {
540 				SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = 0;
541 			}
542 		}
543 		SCTP_INP_INFO_WUNLOCK();
544 	}
545 out:
546 	return (error);
547 }
548 
549 
550 static int
551 sysctl_sctp_check(SYSCTL_HANDLER_ARGS)
552 {
553 	int error;
554 
555 	error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
556 	if (error == 0) {
557 		RANGECHK(SCTP_BASE_SYSCTL(sctp_sendspace), SCTPCTL_MAXDGRAM_MIN, SCTPCTL_MAXDGRAM_MAX);
558 		RANGECHK(SCTP_BASE_SYSCTL(sctp_recvspace), SCTPCTL_RECVSPACE_MIN, SCTPCTL_RECVSPACE_MAX);
559 #if defined(__FreeBSD__) || defined(SCTP_APPLE_AUTO_ASCONF)
560 		RANGECHK(SCTP_BASE_SYSCTL(sctp_auto_asconf), SCTPCTL_AUTOASCONF_MIN, SCTPCTL_AUTOASCONF_MAX);
561 #endif
562 		RANGECHK(SCTP_BASE_SYSCTL(sctp_ecn_enable), SCTPCTL_ECN_ENABLE_MIN, SCTPCTL_ECN_ENABLE_MAX);
563 		RANGECHK(SCTP_BASE_SYSCTL(sctp_ecn_nonce), SCTPCTL_ECN_NONCE_MIN, SCTPCTL_ECN_NONCE_MAX);
564 		RANGECHK(SCTP_BASE_SYSCTL(sctp_strict_sacks), SCTPCTL_STRICT_SACKS_MIN, SCTPCTL_STRICT_SACKS_MAX);
565 		RANGECHK(SCTP_BASE_SYSCTL(sctp_no_csum_on_loopback), SCTPCTL_LOOPBACK_NOCSUM_MIN, SCTPCTL_LOOPBACK_NOCSUM_MAX);
566 		RANGECHK(SCTP_BASE_SYSCTL(sctp_strict_init), SCTPCTL_STRICT_INIT_MIN, SCTPCTL_STRICT_INIT_MAX);
567 		RANGECHK(SCTP_BASE_SYSCTL(sctp_peer_chunk_oh), SCTPCTL_PEER_CHKOH_MIN, SCTPCTL_PEER_CHKOH_MAX);
568 		RANGECHK(SCTP_BASE_SYSCTL(sctp_max_burst_default), SCTPCTL_MAXBURST_MIN, SCTPCTL_MAXBURST_MAX);
569 		RANGECHK(SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue), SCTPCTL_MAXCHUNKS_MIN, SCTPCTL_MAXCHUNKS_MAX);
570 		RANGECHK(SCTP_BASE_SYSCTL(sctp_hashtblsize), SCTPCTL_TCBHASHSIZE_MIN, SCTPCTL_TCBHASHSIZE_MAX);
571 		RANGECHK(SCTP_BASE_SYSCTL(sctp_pcbtblsize), SCTPCTL_PCBHASHSIZE_MIN, SCTPCTL_PCBHASHSIZE_MAX);
572 		RANGECHK(SCTP_BASE_SYSCTL(sctp_min_split_point), SCTPCTL_MIN_SPLIT_POINT_MIN, SCTPCTL_MIN_SPLIT_POINT_MAX);
573 		RANGECHK(SCTP_BASE_SYSCTL(sctp_chunkscale), SCTPCTL_CHUNKSCALE_MIN, SCTPCTL_CHUNKSCALE_MAX);
574 		RANGECHK(SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default), SCTPCTL_DELAYED_SACK_TIME_MIN, SCTPCTL_DELAYED_SACK_TIME_MAX);
575 		RANGECHK(SCTP_BASE_SYSCTL(sctp_sack_freq_default), SCTPCTL_SACK_FREQ_MIN, SCTPCTL_SACK_FREQ_MAX);
576 		RANGECHK(SCTP_BASE_SYSCTL(sctp_system_free_resc_limit), SCTPCTL_SYS_RESOURCE_MIN, SCTPCTL_SYS_RESOURCE_MAX);
577 		RANGECHK(SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit), SCTPCTL_ASOC_RESOURCE_MIN, SCTPCTL_ASOC_RESOURCE_MAX);
578 		RANGECHK(SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default), SCTPCTL_HEARTBEAT_INTERVAL_MIN, SCTPCTL_HEARTBEAT_INTERVAL_MAX);
579 		RANGECHK(SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default), SCTPCTL_PMTU_RAISE_TIME_MIN, SCTPCTL_PMTU_RAISE_TIME_MAX);
580 		RANGECHK(SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default), SCTPCTL_SHUTDOWN_GUARD_TIME_MIN, SCTPCTL_SHUTDOWN_GUARD_TIME_MAX);
581 		RANGECHK(SCTP_BASE_SYSCTL(sctp_secret_lifetime_default), SCTPCTL_SECRET_LIFETIME_MIN, SCTPCTL_SECRET_LIFETIME_MAX);
582 		RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_max_default), SCTPCTL_RTO_MAX_MIN, SCTPCTL_RTO_MAX_MAX);
583 		RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_min_default), SCTPCTL_RTO_MIN_MIN, SCTPCTL_RTO_MIN_MAX);
584 		RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_initial_default), SCTPCTL_RTO_INITIAL_MIN, SCTPCTL_RTO_INITIAL_MAX);
585 		RANGECHK(SCTP_BASE_SYSCTL(sctp_init_rto_max_default), SCTPCTL_INIT_RTO_MAX_MIN, SCTPCTL_INIT_RTO_MAX_MAX);
586 		RANGECHK(SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default), SCTPCTL_VALID_COOKIE_LIFE_MIN, SCTPCTL_VALID_COOKIE_LIFE_MAX);
587 		RANGECHK(SCTP_BASE_SYSCTL(sctp_init_rtx_max_default), SCTPCTL_INIT_RTX_MAX_MIN, SCTPCTL_INIT_RTX_MAX_MAX);
588 		RANGECHK(SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default), SCTPCTL_ASSOC_RTX_MAX_MIN, SCTPCTL_ASSOC_RTX_MAX_MAX);
589 		RANGECHK(SCTP_BASE_SYSCTL(sctp_path_rtx_max_default), SCTPCTL_PATH_RTX_MAX_MIN, SCTPCTL_PATH_RTX_MAX_MAX);
590 		RANGECHK(SCTP_BASE_SYSCTL(sctp_add_more_threshold), SCTPCTL_ADD_MORE_ON_OUTPUT_MIN, SCTPCTL_ADD_MORE_ON_OUTPUT_MAX);
591 		RANGECHK(SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default), SCTPCTL_OUTGOING_STREAMS_MIN, SCTPCTL_OUTGOING_STREAMS_MAX);
592 		RANGECHK(SCTP_BASE_SYSCTL(sctp_cmt_on_off), SCTPCTL_CMT_ON_OFF_MIN, SCTPCTL_CMT_ON_OFF_MAX);
593 		/* EY */
594 		RANGECHK(SCTP_BASE_SYSCTL(sctp_nr_sack_on_off), SCTPCTL_NR_SACK_ON_OFF_MIN, SCTPCTL_NR_SACK_ON_OFF_MAX);
595 		RANGECHK(SCTP_BASE_SYSCTL(sctp_cmt_use_dac), SCTPCTL_CMT_USE_DAC_MIN, SCTPCTL_CMT_USE_DAC_MAX);
596 		RANGECHK(SCTP_BASE_SYSCTL(sctp_cmt_pf), SCTPCTL_CMT_PF_MIN, SCTPCTL_CMT_PF_MAX);
597 		RANGECHK(SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst), SCTPCTL_CWND_MAXBURST_MIN, SCTPCTL_CWND_MAXBURST_MAX);
598 		RANGECHK(SCTP_BASE_SYSCTL(sctp_early_fr), SCTPCTL_EARLY_FAST_RETRAN_MIN, SCTPCTL_EARLY_FAST_RETRAN_MAX);
599 		RANGECHK(SCTP_BASE_SYSCTL(sctp_early_fr_msec), SCTPCTL_EARLY_FAST_RETRAN_MSEC_MIN, SCTPCTL_EARLY_FAST_RETRAN_MSEC_MAX);
600 		RANGECHK(SCTP_BASE_SYSCTL(sctp_asconf_auth_nochk), SCTPCTL_ASCONF_AUTH_NOCHK_MIN, SCTPCTL_ASCONF_AUTH_NOCHK_MAX);
601 		RANGECHK(SCTP_BASE_SYSCTL(sctp_auth_disable), SCTPCTL_AUTH_DISABLE_MIN, SCTPCTL_AUTH_DISABLE_MAX);
602 		RANGECHK(SCTP_BASE_SYSCTL(sctp_nat_friendly), SCTPCTL_NAT_FRIENDLY_MIN, SCTPCTL_NAT_FRIENDLY_MAX);
603 		RANGECHK(SCTP_BASE_SYSCTL(sctp_L2_abc_variable), SCTPCTL_ABC_L_VAR_MIN, SCTPCTL_ABC_L_VAR_MAX);
604 		RANGECHK(SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count), SCTPCTL_MAX_CHAINED_MBUFS_MIN, SCTPCTL_MAX_CHAINED_MBUFS_MAX);
605 		RANGECHK(SCTP_BASE_SYSCTL(sctp_do_drain), SCTPCTL_DO_SCTP_DRAIN_MIN, SCTPCTL_DO_SCTP_DRAIN_MAX);
606 		RANGECHK(SCTP_BASE_SYSCTL(sctp_hb_maxburst), SCTPCTL_HB_MAX_BURST_MIN, SCTPCTL_HB_MAX_BURST_MAX);
607 		RANGECHK(SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit), SCTPCTL_ABORT_AT_LIMIT_MIN, SCTPCTL_ABORT_AT_LIMIT_MAX);
608 		RANGECHK(SCTP_BASE_SYSCTL(sctp_strict_data_order), SCTPCTL_STRICT_DATA_ORDER_MIN, SCTPCTL_STRICT_DATA_ORDER_MAX);
609 		RANGECHK(SCTP_BASE_SYSCTL(sctp_min_residual), SCTPCTL_MIN_RESIDUAL_MIN, SCTPCTL_MIN_RESIDUAL_MAX);
610 		RANGECHK(SCTP_BASE_SYSCTL(sctp_max_retran_chunk), SCTPCTL_MAX_RETRAN_CHUNK_MIN, SCTPCTL_MAX_RETRAN_CHUNK_MAX);
611 		RANGECHK(SCTP_BASE_SYSCTL(sctp_logging_level), SCTPCTL_LOGGING_LEVEL_MIN, SCTPCTL_LOGGING_LEVEL_MAX);
612 		RANGECHK(SCTP_BASE_SYSCTL(sctp_default_cc_module), SCTPCTL_DEFAULT_CC_MODULE_MIN, SCTPCTL_DEFAULT_CC_MODULE_MAX);
613 		RANGECHK(SCTP_BASE_SYSCTL(sctp_default_frag_interleave), SCTPCTL_DEFAULT_FRAG_INTERLEAVE_MIN, SCTPCTL_DEFAULT_FRAG_INTERLEAVE_MAX);
614 		RANGECHK(SCTP_BASE_SYSCTL(sctp_vtag_time_wait), SCTPCTL_TIME_WAIT_MIN, SCTPCTL_TIME_WAIT_MAX);
615 
616 #if defined(__FreeBSD__) || defined(SCTP_APPLE_MOBILITY_BASE)
617 		RANGECHK(SCTP_BASE_SYSCTL(sctp_mobility_base), SCTPCTL_MOBILITY_BASE_MIN, SCTPCTL_MOBILITY_BASE_MAX);
618 #endif
619 #if defined(__FreeBSD__) || defined(SCTP_APPLE_MOBILITY_FASTHANDOFF)
620 		RANGECHK(SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff), SCTPCTL_MOBILITY_FASTHANDOFF_MIN, SCTPCTL_MOBILITY_FASTHANDOFF_MAX);
621 #endif
622 		RANGECHK(SCTP_BASE_SYSCTL(sctp_udp_tunneling_for_client_enable), SCTPCTL_UDP_TUNNELING_FOR_CLIENT_ENABLE_MIN, SCTPCTL_UDP_TUNNELING_FOR_CLIENT_ENABLE_MAX);
623 		RANGECHK(SCTP_BASE_SYSCTL(sctp_enable_sack_immediately), SCTPCTL_SACK_IMMEDIATELY_ENABLE_MIN, SCTPCTL_SACK_IMMEDIATELY_ENABLE_MAX);
624 		RANGECHK(SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly), SCTPCTL_NAT_FRIENDLY_INITS_MIN, SCTPCTL_NAT_FRIENDLY_INITS_MAX);
625 
626 #ifdef SCTP_DEBUG
627 		RANGECHK(SCTP_BASE_SYSCTL(sctp_debug_on), SCTPCTL_DEBUG_MIN, SCTPCTL_DEBUG_MAX);
628 #endif
629 #if defined (__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
630 		RANGECHK(SCTP_BASE_SYSCTL(sctp_output_unlocked), SCTPCTL_OUTPUT_UNLOCKED_MIN, SCTPCTL_OUTPUT_UNLOCKED_MAX);
631 #endif
632 	}
633 	return (error);
634 }
635 
636 
637 
638 #if defined(SCTP_LOCAL_TRACE_BUF)
639 static int
640 sysctl_sctp_cleartrace(SYSCTL_HANDLER_ARGS)
641 {
642 	int error = 0;
643 
644 	memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
645 	return (error);
646 }
647 
648 #endif
649 
650 
651 /*
652  * sysctl definitions
653  */
654 
655 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, sendspace, CTLTYPE_INT | CTLFLAG_RW,
656     &SCTP_BASE_SYSCTL(sctp_sendspace), 0, sysctl_sctp_check, "IU",
657     SCTPCTL_MAXDGRAM_DESC);
658 
659 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, recvspace, CTLTYPE_INT | CTLFLAG_RW,
660     &SCTP_BASE_SYSCTL(sctp_recvspace), 0, sysctl_sctp_check, "IU",
661     SCTPCTL_RECVSPACE_DESC);
662 
663 #if defined(__FreeBSD__) || defined(SCTP_APPLE_AUTO_ASCONF)
664 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, auto_asconf, CTLTYPE_INT | CTLFLAG_RW,
665     &SCTP_BASE_SYSCTL(sctp_auto_asconf), 0, sysctl_sctp_check, "IU",
666     SCTPCTL_AUTOASCONF_DESC);
667 #endif
668 
669 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, ecn_enable, CTLTYPE_INT | CTLFLAG_RW,
670     &SCTP_BASE_SYSCTL(sctp_ecn_enable), 0, sysctl_sctp_check, "IU",
671     SCTPCTL_ECN_ENABLE_DESC);
672 
673 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, ecn_nonce, CTLTYPE_INT | CTLFLAG_RW,
674     &SCTP_BASE_SYSCTL(sctp_ecn_nonce), 0, sysctl_sctp_check, "IU",
675     SCTPCTL_ECN_NONCE_DESC);
676 
677 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, strict_sacks, CTLTYPE_INT | CTLFLAG_RW,
678     &SCTP_BASE_SYSCTL(sctp_strict_sacks), 0, sysctl_sctp_check, "IU",
679     SCTPCTL_STRICT_SACKS_DESC);
680 
681 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, loopback_nocsum, CTLTYPE_INT | CTLFLAG_RW,
682     &SCTP_BASE_SYSCTL(sctp_no_csum_on_loopback), 0, sysctl_sctp_check, "IU",
683     SCTPCTL_LOOPBACK_NOCSUM_DESC);
684 
685 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, strict_init, CTLTYPE_INT | CTLFLAG_RW,
686     &SCTP_BASE_SYSCTL(sctp_strict_init), 0, sysctl_sctp_check, "IU",
687     SCTPCTL_STRICT_INIT_DESC);
688 
689 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, peer_chkoh, CTLTYPE_INT | CTLFLAG_RW,
690     &SCTP_BASE_SYSCTL(sctp_peer_chunk_oh), 0, sysctl_sctp_check, "IU",
691     SCTPCTL_PEER_CHKOH_DESC);
692 
693 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, maxburst, CTLTYPE_INT | CTLFLAG_RW,
694     &SCTP_BASE_SYSCTL(sctp_max_burst_default), 0, sysctl_sctp_check, "IU",
695     SCTPCTL_MAXBURST_DESC);
696 
697 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, maxchunks, CTLTYPE_INT | CTLFLAG_RW,
698     &SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue), 0, sysctl_sctp_check, "IU",
699     SCTPCTL_MAXCHUNKS_DESC);
700 
701 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, tcbhashsize, CTLTYPE_INT | CTLFLAG_RW,
702     &SCTP_BASE_SYSCTL(sctp_hashtblsize), 0, sysctl_sctp_check, "IU",
703     SCTPCTL_TCBHASHSIZE_DESC);
704 
705 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, pcbhashsize, CTLTYPE_INT | CTLFLAG_RW,
706     &SCTP_BASE_SYSCTL(sctp_pcbtblsize), 0, sysctl_sctp_check, "IU",
707     SCTPCTL_PCBHASHSIZE_DESC);
708 
709 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, min_split_point, CTLTYPE_INT | CTLFLAG_RW,
710     &SCTP_BASE_SYSCTL(sctp_min_split_point), 0, sysctl_sctp_check, "IU",
711     SCTPCTL_MIN_SPLIT_POINT_DESC);
712 
713 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, chunkscale, CTLTYPE_INT | CTLFLAG_RW,
714     &SCTP_BASE_SYSCTL(sctp_chunkscale), 0, sysctl_sctp_check, "IU",
715     SCTPCTL_CHUNKSCALE_DESC);
716 
717 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, delayed_sack_time, CTLTYPE_INT | CTLFLAG_RW,
718     &SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default), 0, sysctl_sctp_check, "IU",
719     SCTPCTL_DELAYED_SACK_TIME_DESC);
720 
721 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, sack_freq, CTLTYPE_INT | CTLFLAG_RW,
722     &SCTP_BASE_SYSCTL(sctp_sack_freq_default), 0, sysctl_sctp_check, "IU",
723     SCTPCTL_SACK_FREQ_DESC);
724 
725 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, sys_resource, CTLTYPE_INT | CTLFLAG_RW,
726     &SCTP_BASE_SYSCTL(sctp_system_free_resc_limit), 0, sysctl_sctp_check, "IU",
727     SCTPCTL_SYS_RESOURCE_DESC);
728 
729 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, asoc_resource, CTLTYPE_INT | CTLFLAG_RW,
730     &SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit), 0, sysctl_sctp_check, "IU",
731     SCTPCTL_ASOC_RESOURCE_DESC);
732 
733 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, heartbeat_interval, CTLTYPE_INT | CTLFLAG_RW,
734     &SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default), 0, sysctl_sctp_check, "IU",
735     SCTPCTL_HEARTBEAT_INTERVAL_DESC);
736 
737 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, pmtu_raise_time, CTLTYPE_INT | CTLFLAG_RW,
738     &SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default), 0, sysctl_sctp_check, "IU",
739     SCTPCTL_PMTU_RAISE_TIME_DESC);
740 
741 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, shutdown_guard_time, CTLTYPE_INT | CTLFLAG_RW,
742     &SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default), 0, sysctl_sctp_check, "IU",
743     SCTPCTL_SHUTDOWN_GUARD_TIME_DESC);
744 
745 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, secret_lifetime, CTLTYPE_INT | CTLFLAG_RW,
746     &SCTP_BASE_SYSCTL(sctp_secret_lifetime_default), 0, sysctl_sctp_check, "IU",
747     SCTPCTL_SECRET_LIFETIME_DESC);
748 
749 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, rto_max, CTLTYPE_INT | CTLFLAG_RW,
750     &SCTP_BASE_SYSCTL(sctp_rto_max_default), 0, sysctl_sctp_check, "IU",
751     SCTPCTL_RTO_MAX_DESC);
752 
753 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, rto_min, CTLTYPE_INT | CTLFLAG_RW,
754     &SCTP_BASE_SYSCTL(sctp_rto_min_default), 0, sysctl_sctp_check, "IU",
755     SCTPCTL_RTO_MIN_DESC);
756 
757 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, rto_initial, CTLTYPE_INT | CTLFLAG_RW,
758     &SCTP_BASE_SYSCTL(sctp_rto_initial_default), 0, sysctl_sctp_check, "IU",
759     SCTPCTL_RTO_INITIAL_DESC);
760 
761 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, init_rto_max, CTLTYPE_INT | CTLFLAG_RW,
762     &SCTP_BASE_SYSCTL(sctp_init_rto_max_default), 0, sysctl_sctp_check, "IU",
763     SCTPCTL_INIT_RTO_MAX_DESC);
764 
765 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, valid_cookie_life, CTLTYPE_INT | CTLFLAG_RW,
766     &SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default), 0, sysctl_sctp_check, "IU",
767     SCTPCTL_VALID_COOKIE_LIFE_DESC);
768 
769 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, init_rtx_max, CTLTYPE_INT | CTLFLAG_RW,
770     &SCTP_BASE_SYSCTL(sctp_init_rtx_max_default), 0, sysctl_sctp_check, "IU",
771     SCTPCTL_INIT_RTX_MAX_DESC);
772 
773 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, assoc_rtx_max, CTLTYPE_INT | CTLFLAG_RW,
774     &SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default), 0, sysctl_sctp_check, "IU",
775     SCTPCTL_ASSOC_RTX_MAX_DESC);
776 
777 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, path_rtx_max, CTLTYPE_INT | CTLFLAG_RW,
778     &SCTP_BASE_SYSCTL(sctp_path_rtx_max_default), 0, sysctl_sctp_check, "IU",
779     SCTPCTL_PATH_RTX_MAX_DESC);
780 
781 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, add_more_on_output, CTLTYPE_INT | CTLFLAG_RW,
782     &SCTP_BASE_SYSCTL(sctp_add_more_threshold), 0, sysctl_sctp_check, "IU",
783     SCTPCTL_ADD_MORE_ON_OUTPUT_DESC);
784 
785 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, outgoing_streams, CTLTYPE_INT | CTLFLAG_RW,
786     &SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default), 0, sysctl_sctp_check, "IU",
787     SCTPCTL_OUTGOING_STREAMS_DESC);
788 
789 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, cmt_on_off, CTLTYPE_INT | CTLFLAG_RW,
790     &SCTP_BASE_SYSCTL(sctp_cmt_on_off), 0, sysctl_sctp_check, "IU",
791     SCTPCTL_CMT_ON_OFF_DESC);
792 
793 /* EY */
794 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, nr_sack_on_off, CTLTYPE_INT | CTLFLAG_RW,
795     &SCTP_BASE_SYSCTL(sctp_nr_sack_on_off), 0, sysctl_sctp_check, "IU",
796     SCTPCTL_NR_SACK_ON_OFF_DESC);
797 
798 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, cmt_use_dac, CTLTYPE_INT | CTLFLAG_RW,
799     &SCTP_BASE_SYSCTL(sctp_cmt_use_dac), 0, sysctl_sctp_check, "IU",
800     SCTPCTL_CMT_USE_DAC_DESC);
801 
802 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, cmt_pf, CTLTYPE_INT | CTLFLAG_RW,
803     &SCTP_BASE_SYSCTL(sctp_cmt_pf), 0, sysctl_sctp_check, "IU",
804     SCTPCTL_CMT_PF_DESC);
805 
806 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, cwnd_maxburst, CTLTYPE_INT | CTLFLAG_RW,
807     &SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst), 0, sysctl_sctp_check, "IU",
808     SCTPCTL_CWND_MAXBURST_DESC);
809 
810 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, early_fast_retran, CTLTYPE_INT | CTLFLAG_RW,
811     &SCTP_BASE_SYSCTL(sctp_early_fr), 0, sysctl_sctp_check, "IU",
812     SCTPCTL_EARLY_FAST_RETRAN_DESC);
813 
814 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, early_fast_retran_msec, CTLTYPE_INT | CTLFLAG_RW,
815     &SCTP_BASE_SYSCTL(sctp_early_fr_msec), 0, sysctl_sctp_check, "IU",
816     SCTPCTL_EARLY_FAST_RETRAN_MSEC_DESC);
817 
818 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, asconf_auth_nochk, CTLTYPE_INT | CTLFLAG_RW,
819     &SCTP_BASE_SYSCTL(sctp_asconf_auth_nochk), 0, sysctl_sctp_check, "IU",
820     SCTPCTL_ASCONF_AUTH_NOCHK_DESC);
821 
822 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, auth_disable, CTLTYPE_INT | CTLFLAG_RW,
823     &SCTP_BASE_SYSCTL(sctp_auth_disable), 0, sysctl_sctp_check, "IU",
824     SCTPCTL_AUTH_DISABLE_DESC);
825 
826 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, nat_friendly, CTLTYPE_INT | CTLFLAG_RW,
827     &SCTP_BASE_SYSCTL(sctp_nat_friendly), 0, sysctl_sctp_check, "IU",
828     SCTPCTL_NAT_FRIENDLY_DESC);
829 
830 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, abc_l_var, CTLTYPE_INT | CTLFLAG_RW,
831     &SCTP_BASE_SYSCTL(sctp_L2_abc_variable), 0, sysctl_sctp_check, "IU",
832     SCTPCTL_ABC_L_VAR_DESC);
833 
834 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, max_chained_mbufs, CTLTYPE_INT | CTLFLAG_RW,
835     &SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count), 0, sysctl_sctp_check, "IU",
836     SCTPCTL_MAX_CHAINED_MBUFS_DESC);
837 
838 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, do_sctp_drain, CTLTYPE_INT | CTLFLAG_RW,
839     &SCTP_BASE_SYSCTL(sctp_do_drain), 0, sysctl_sctp_check, "IU",
840     SCTPCTL_DO_SCTP_DRAIN_DESC);
841 
842 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, hb_max_burst, CTLTYPE_INT | CTLFLAG_RW,
843     &SCTP_BASE_SYSCTL(sctp_hb_maxburst), 0, sysctl_sctp_check, "IU",
844     SCTPCTL_HB_MAX_BURST_DESC);
845 
846 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, abort_at_limit, CTLTYPE_INT | CTLFLAG_RW,
847     &SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit), 0, sysctl_sctp_check, "IU",
848     SCTPCTL_ABORT_AT_LIMIT_DESC);
849 
850 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, strict_data_order, CTLTYPE_INT | CTLFLAG_RW,
851     &SCTP_BASE_SYSCTL(sctp_strict_data_order), 0, sysctl_sctp_check, "IU",
852     SCTPCTL_STRICT_DATA_ORDER_DESC);
853 
854 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, min_residual, CTLTYPE_INT | CTLFLAG_RW,
855     &SCTP_BASE_SYSCTL(sctp_min_residual), 0, sysctl_sctp_check, "IU",
856     SCTPCTL_MIN_RESIDUAL_DESC);
857 
858 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, max_retran_chunk, CTLTYPE_INT | CTLFLAG_RW,
859     &SCTP_BASE_SYSCTL(sctp_max_retran_chunk), 0, sysctl_sctp_check, "IU",
860     SCTPCTL_MAX_RETRAN_CHUNK_DESC);
861 
862 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, log_level, CTLTYPE_INT | CTLFLAG_RW,
863     &SCTP_BASE_SYSCTL(sctp_logging_level), 0, sysctl_sctp_check, "IU",
864     SCTPCTL_LOGGING_LEVEL_DESC);
865 
866 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, default_cc_module, CTLTYPE_INT | CTLFLAG_RW,
867     &SCTP_BASE_SYSCTL(sctp_default_cc_module), 0, sysctl_sctp_check, "IU",
868     SCTPCTL_DEFAULT_CC_MODULE_DESC);
869 
870 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, default_frag_interleave, CTLTYPE_INT | CTLFLAG_RW,
871     &SCTP_BASE_SYSCTL(sctp_default_frag_interleave), 0, sysctl_sctp_check, "IU",
872     SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DESC);
873 
874 #if defined(__FreeBSD__) || defined(SCTP_APPLE_MOBILITY_BASE)
875 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, mobility_base, CTLTYPE_INT | CTLFLAG_RW,
876     &SCTP_BASE_SYSCTL(sctp_mobility_base), 0, sysctl_sctp_check, "IU",
877     SCTPCTL_MOBILITY_BASE_DESC);
878 #endif
879 
880 #if defined(__FreeBSD__) || defined(SCTP_APPLE_MOBILITY_FASTHANDOFF)
881 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, mobility_fasthandoff, CTLTYPE_INT | CTLFLAG_RW,
882     &SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff), 0, sysctl_sctp_check, "IU",
883     SCTPCTL_MOBILITY_FASTHANDOFF_DESC);
884 #endif
885 
886 #if defined(SCTP_LOCAL_TRACE_BUF)
887 SYSCTL_STRUCT(_net_inet_sctp, OID_AUTO, log, CTLFLAG_RD,
888     &SCTP_BASE_SYSCTL(sctp_log), sctp_log,
889     "SCTP logging (struct sctp_log)");
890 
891 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, clear_trace, CTLTYPE_OPAQUE | CTLFLAG_RW,
892     &SCTP_BASE_SYSCTL(sctp_log), 0, sysctl_sctp_cleartrace, "IU",
893     "Clear SCTP Logging buffer");
894 
895 
896 
897 #endif
898 
899 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, udp_tunneling_for_client_enable, CTLTYPE_INT | CTLFLAG_RW,
900     &SCTP_BASE_SYSCTL(sctp_udp_tunneling_for_client_enable), 0, sysctl_sctp_check, "IU",
901     SCTPCTL_UDP_TUNNELING_FOR_CLIENT_ENABLE_DESC);
902 
903 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, udp_tunneling_port, CTLTYPE_INT | CTLFLAG_RW,
904     &SCTP_BASE_SYSCTL(sctp_udp_tunneling_port), 0, sysctl_sctp_udp_tunneling_check, "IU",
905     SCTPCTL_UDP_TUNNELING_PORT_DESC);
906 
907 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, enable_sack_immediately, CTLTYPE_INT | CTLFLAG_RW,
908     &SCTP_BASE_SYSCTL(sctp_enable_sack_immediately), 0, sysctl_sctp_check, "IU",
909     SCTPCTL_SACK_IMMEDIATELY_ENABLE_DESC);
910 
911 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, nat_friendly_init, CTLTYPE_INT | CTLFLAG_RW,
912     &SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly), 0, sysctl_sctp_check, "IU",
913     SCTPCTL_NAT_FRIENDLY_INITS_DESC);
914 
915 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, vtag_time_wait, CTLTYPE_INT | CTLFLAG_RW,
916     &SCTP_BASE_SYSCTL(sctp_vtag_time_wait), 0, sysctl_sctp_check, "IU",
917     SCTPCTL_TIME_WAIT_DESC);
918 
919 #ifdef SCTP_DEBUG
920 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, debug, CTLTYPE_INT | CTLFLAG_RW,
921     &SCTP_BASE_SYSCTL(sctp_debug_on), 0, sysctl_sctp_check, "IU",
922     SCTPCTL_DEBUG_DESC);
923 #endif				/* SCTP_DEBUG */
924 
925 
926 #if defined (__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
927 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, output_unlocked, CTLTYPE_INT | CTLFLAG_RW,
928     &SCTP_BASE_SYSCTL(sctp_output_unlocked), 0, sysctl_sctp_check, "IU",
929     SCTPCTL_OUTPUT_UNLOCKED_DESC);
930 #endif
931 
932 SYSCTL_STRUCT(_net_inet_sctp, OID_AUTO, stats, CTLFLAG_RW,
933     &SCTP_BASE_STATS, sctpstat,
934     "SCTP statistics (struct sctp_stat)");
935 
936 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, assoclist, CTLFLAG_RD,
937     0, 0, sctp_assoclist,
938     "S,xassoc", "List of active SCTP associations");
939