1c398230bSWarner Losh /*- 297d8d152SAndre Oppermann * Copyright (c) 2002 Andre Oppermann, Internet Business Solutions AG 397d8d152SAndre Oppermann * All rights reserved. 497d8d152SAndre Oppermann * 597d8d152SAndre Oppermann * Redistribution and use in source and binary forms, with or without 697d8d152SAndre Oppermann * modification, are permitted provided that the following conditions 797d8d152SAndre Oppermann * are met: 897d8d152SAndre Oppermann * 1. Redistributions of source code must retain the above copyright 997d8d152SAndre Oppermann * notice, this list of conditions and the following disclaimer. 1097d8d152SAndre Oppermann * 2. Redistributions in binary form must reproduce the above copyright 1197d8d152SAndre Oppermann * notice, this list of conditions and the following disclaimer in the 1297d8d152SAndre Oppermann * documentation and/or other materials provided with the distribution. 1397d8d152SAndre Oppermann * 3. The name of the author may not be used to endorse or promote 1497d8d152SAndre Oppermann * products derived from this software without specific prior written 1597d8d152SAndre Oppermann * permission. 1697d8d152SAndre Oppermann * 1797d8d152SAndre Oppermann * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND 1897d8d152SAndre Oppermann * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 1997d8d152SAndre Oppermann * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 2097d8d152SAndre Oppermann * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE 2197d8d152SAndre Oppermann * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 2297d8d152SAndre Oppermann * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 2397d8d152SAndre Oppermann * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2497d8d152SAndre Oppermann * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 2597d8d152SAndre Oppermann * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 2697d8d152SAndre Oppermann * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 2797d8d152SAndre Oppermann * SUCH DAMAGE. 2897d8d152SAndre Oppermann * 2997d8d152SAndre Oppermann * $FreeBSD$ 3097d8d152SAndre Oppermann */ 3197d8d152SAndre Oppermann 3297d8d152SAndre Oppermann /* 33e487a5e2SRobert Watson * The tcp_hostcache moves the tcp-specific cached metrics from the routing 34e487a5e2SRobert Watson * table to a dedicated structure indexed by the remote IP address. It keeps 35e487a5e2SRobert Watson * information on the measured TCP parameters of past TCP sessions to allow 36e487a5e2SRobert Watson * better initial start values to be used with later connections to/from the 3797d8d152SAndre Oppermann * same source. Depending on the network parameters (delay, bandwidth, max 38e487a5e2SRobert Watson * MTU, congestion window) between local and remote sites, this can lead to 39e487a5e2SRobert Watson * significant speed-ups for new TCP connections after the first one. 4097d8d152SAndre Oppermann * 41e487a5e2SRobert Watson * Due to the tcp_hostcache, all TCP-specific metrics information in the 42e487a5e2SRobert Watson * routing table has been removed. The inpcb no longer keeps a pointer to 43e487a5e2SRobert Watson * the routing entry, and protocol-initiated route cloning has been removed 44e487a5e2SRobert Watson * as well. With these changes, the routing table has gone back to being 45e487a5e2SRobert Watson * more lightwight and only carries information related to packet forwarding. 4697d8d152SAndre Oppermann * 47e487a5e2SRobert Watson * tcp_hostcache is designed for multiple concurrent access in SMP 48e487a5e2SRobert Watson * environments and high contention. All bucket rows have their own lock and 49e487a5e2SRobert Watson * thus multiple lookups and modifies can be done at the same time as long as 50e487a5e2SRobert Watson * they are in different bucket rows. If a request for insertion of a new 51e487a5e2SRobert Watson * record can't be satisfied, it simply returns an empty structure. Nobody 52e487a5e2SRobert Watson * and nothing outside of tcp_hostcache.c will ever point directly to any 53e487a5e2SRobert Watson * entry in the tcp_hostcache. All communication is done in an 54e487a5e2SRobert Watson * object-oriented way and only functions of tcp_hostcache will manipulate 55e487a5e2SRobert Watson * hostcache entries. Otherwise, we are unable to achieve good behaviour in 56e487a5e2SRobert Watson * concurrent access situations. Since tcp_hostcache is only caching 57e487a5e2SRobert Watson * information, there are no fatal consequences if we either can't satisfy 58e487a5e2SRobert Watson * any particular request or have to drop/overwrite an existing entry because 59e487a5e2SRobert Watson * of bucket limit memory constrains. 6097d8d152SAndre Oppermann */ 6197d8d152SAndre Oppermann 6297d8d152SAndre Oppermann /* 6397d8d152SAndre Oppermann * Many thanks to jlemon for basic structure of tcp_syncache which is being 6497d8d152SAndre Oppermann * followed here. 6597d8d152SAndre Oppermann */ 6697d8d152SAndre Oppermann 6797d8d152SAndre Oppermann #include "opt_inet6.h" 6897d8d152SAndre Oppermann 6997d8d152SAndre Oppermann #include <sys/param.h> 7097d8d152SAndre Oppermann #include <sys/systm.h> 7197d8d152SAndre Oppermann #include <sys/kernel.h> 7297d8d152SAndre Oppermann #include <sys/lock.h> 7397d8d152SAndre Oppermann #include <sys/mutex.h> 7497d8d152SAndre Oppermann #include <sys/malloc.h> 7597d8d152SAndre Oppermann #include <sys/socket.h> 7697d8d152SAndre Oppermann #include <sys/socketvar.h> 7797d8d152SAndre Oppermann #include <sys/sysctl.h> 7897d8d152SAndre Oppermann 7997d8d152SAndre Oppermann #include <net/if.h> 8097d8d152SAndre Oppermann 8197d8d152SAndre Oppermann #include <netinet/in.h> 8297d8d152SAndre Oppermann #include <netinet/in_systm.h> 8397d8d152SAndre Oppermann #include <netinet/ip.h> 8497d8d152SAndre Oppermann #include <netinet/in_var.h> 8597d8d152SAndre Oppermann #include <netinet/in_pcb.h> 8697d8d152SAndre Oppermann #include <netinet/ip_var.h> 8797d8d152SAndre Oppermann #ifdef INET6 8897d8d152SAndre Oppermann #include <netinet/ip6.h> 8997d8d152SAndre Oppermann #include <netinet6/ip6_var.h> 9097d8d152SAndre Oppermann #endif 9197d8d152SAndre Oppermann #include <netinet/tcp.h> 9297d8d152SAndre Oppermann #include <netinet/tcp_var.h> 9397d8d152SAndre Oppermann #ifdef INET6 9497d8d152SAndre Oppermann #include <netinet6/tcp6_var.h> 9597d8d152SAndre Oppermann #endif 9697d8d152SAndre Oppermann 9797d8d152SAndre Oppermann #include <vm/uma.h> 9897d8d152SAndre Oppermann 9997d8d152SAndre Oppermann 10097d8d152SAndre Oppermann TAILQ_HEAD(hc_qhead, hc_metrics); 10197d8d152SAndre Oppermann 10297d8d152SAndre Oppermann struct hc_head { 10397d8d152SAndre Oppermann struct hc_qhead hch_bucket; 10497d8d152SAndre Oppermann u_int hch_length; 10597d8d152SAndre Oppermann struct mtx hch_mtx; 10697d8d152SAndre Oppermann }; 10797d8d152SAndre Oppermann 10897d8d152SAndre Oppermann struct hc_metrics { 10997d8d152SAndre Oppermann /* housekeeping */ 11097d8d152SAndre Oppermann TAILQ_ENTRY(hc_metrics) rmx_q; 11197d8d152SAndre Oppermann struct hc_head *rmx_head; /* head of bucket tail queue */ 11297d8d152SAndre Oppermann struct in_addr ip4; /* IP address */ 11397d8d152SAndre Oppermann struct in6_addr ip6; /* IP6 address */ 114e487a5e2SRobert Watson /* endpoint specific values for TCP */ 11597d8d152SAndre Oppermann u_long rmx_mtu; /* MTU for this path */ 11697d8d152SAndre Oppermann u_long rmx_ssthresh; /* outbound gateway buffer limit */ 11797d8d152SAndre Oppermann u_long rmx_rtt; /* estimated round trip time */ 11897d8d152SAndre Oppermann u_long rmx_rttvar; /* estimated rtt variance */ 11997d8d152SAndre Oppermann u_long rmx_bandwidth; /* estimated bandwidth */ 12097d8d152SAndre Oppermann u_long rmx_cwnd; /* congestion window */ 12197d8d152SAndre Oppermann u_long rmx_sendpipe; /* outbound delay-bandwidth product */ 12297d8d152SAndre Oppermann u_long rmx_recvpipe; /* inbound delay-bandwidth product */ 123e487a5e2SRobert Watson /* TCP hostcache internal data */ 12497d8d152SAndre Oppermann int rmx_expire; /* lifetime for object */ 12597d8d152SAndre Oppermann u_long rmx_hits; /* number of hits */ 12697d8d152SAndre Oppermann u_long rmx_updates; /* number of updates */ 12797d8d152SAndre Oppermann }; 12897d8d152SAndre Oppermann 12997d8d152SAndre Oppermann /* Arbitrary values */ 13097d8d152SAndre Oppermann #define TCP_HOSTCACHE_HASHSIZE 512 13197d8d152SAndre Oppermann #define TCP_HOSTCACHE_BUCKETLIMIT 30 13297d8d152SAndre Oppermann #define TCP_HOSTCACHE_EXPIRE 60*60 /* one hour */ 13397d8d152SAndre Oppermann #define TCP_HOSTCACHE_PRUNE 5*60 /* every 5 minutes */ 13497d8d152SAndre Oppermann 13597d8d152SAndre Oppermann struct tcp_hostcache { 13697d8d152SAndre Oppermann struct hc_head *hashbase; 13797d8d152SAndre Oppermann uma_zone_t zone; 13897d8d152SAndre Oppermann u_int hashsize; 13997d8d152SAndre Oppermann u_int hashmask; 14097d8d152SAndre Oppermann u_int bucket_limit; 14197d8d152SAndre Oppermann u_int cache_count; 14297d8d152SAndre Oppermann u_int cache_limit; 14397d8d152SAndre Oppermann int expire; 144dba3c508SYaroslav Tykhiy int prune; 14597d8d152SAndre Oppermann int purgeall; 14697d8d152SAndre Oppermann }; 14797d8d152SAndre Oppermann static struct tcp_hostcache tcp_hostcache; 14897d8d152SAndre Oppermann 14997d8d152SAndre Oppermann static struct callout tcp_hc_callout; 15097d8d152SAndre Oppermann 15197d8d152SAndre Oppermann static struct hc_metrics *tcp_hc_lookup(struct in_conninfo *); 15297d8d152SAndre Oppermann static struct hc_metrics *tcp_hc_insert(struct in_conninfo *); 15397d8d152SAndre Oppermann static int sysctl_tcp_hc_list(SYSCTL_HANDLER_ARGS); 15497d8d152SAndre Oppermann static void tcp_hc_purge(void *); 15597d8d152SAndre Oppermann 15697d8d152SAndre Oppermann SYSCTL_NODE(_net_inet_tcp, OID_AUTO, hostcache, CTLFLAG_RW, 0, "TCP Host cache"); 15797d8d152SAndre Oppermann 15897d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, cachelimit, CTLFLAG_RDTUN, 15997d8d152SAndre Oppermann &tcp_hostcache.cache_limit, 0, "Overall entry limit for hostcache"); 16097d8d152SAndre Oppermann 16197d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, hashsize, CTLFLAG_RDTUN, 16297d8d152SAndre Oppermann &tcp_hostcache.hashsize, 0, "Size of TCP hostcache hashtable"); 16397d8d152SAndre Oppermann 16497d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, bucketlimit, CTLFLAG_RDTUN, 16597d8d152SAndre Oppermann &tcp_hostcache.bucket_limit, 0, "Per-bucket hash limit for hostcache"); 16697d8d152SAndre Oppermann 16797d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, count, CTLFLAG_RD, 16897d8d152SAndre Oppermann &tcp_hostcache.cache_count, 0, "Current number of entries in hostcache"); 16997d8d152SAndre Oppermann 17097d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, expire, CTLFLAG_RW, 17197d8d152SAndre Oppermann &tcp_hostcache.expire, 0, "Expire time of TCP hostcache entries"); 17297d8d152SAndre Oppermann 173dba3c508SYaroslav Tykhiy SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, prune, CTLFLAG_RW, 174dba3c508SYaroslav Tykhiy &tcp_hostcache.prune, 0, "Time between purge runs"); 175dba3c508SYaroslav Tykhiy 17697d8d152SAndre Oppermann SYSCTL_INT(_net_inet_tcp_hostcache, OID_AUTO, purge, CTLFLAG_RW, 17797d8d152SAndre Oppermann &tcp_hostcache.purgeall, 0, "Expire all entires on next purge run"); 17897d8d152SAndre Oppermann 17997d8d152SAndre Oppermann SYSCTL_PROC(_net_inet_tcp_hostcache, OID_AUTO, list, 18097d8d152SAndre Oppermann CTLTYPE_STRING | CTLFLAG_RD | CTLFLAG_SKIP, 0, 0, 18197d8d152SAndre Oppermann sysctl_tcp_hc_list, "A", "List of all hostcache entries"); 18297d8d152SAndre Oppermann 18397d8d152SAndre Oppermann 18497d8d152SAndre Oppermann static MALLOC_DEFINE(M_HOSTCACHE, "hostcache", "TCP hostcache"); 18597d8d152SAndre Oppermann 18697d8d152SAndre Oppermann #define HOSTCACHE_HASH(ip) \ 18797d8d152SAndre Oppermann (((ip)->s_addr ^ ((ip)->s_addr >> 7) ^ ((ip)->s_addr >> 17)) & \ 18897d8d152SAndre Oppermann tcp_hostcache.hashmask) 18997d8d152SAndre Oppermann 19097d8d152SAndre Oppermann /* XXX: What is the recommended hash to get good entropy for IPv6 addresses? */ 19197d8d152SAndre Oppermann #define HOSTCACHE_HASH6(ip6) \ 19297d8d152SAndre Oppermann (((ip6)->s6_addr32[0] ^ \ 19397d8d152SAndre Oppermann (ip6)->s6_addr32[1] ^ \ 19497d8d152SAndre Oppermann (ip6)->s6_addr32[2] ^ \ 19597d8d152SAndre Oppermann (ip6)->s6_addr32[3]) & \ 19697d8d152SAndre Oppermann tcp_hostcache.hashmask) 19797d8d152SAndre Oppermann 19897d8d152SAndre Oppermann #define THC_LOCK(lp) mtx_lock(lp) 19997d8d152SAndre Oppermann #define THC_UNLOCK(lp) mtx_unlock(lp) 20097d8d152SAndre Oppermann 20197d8d152SAndre Oppermann void 20297d8d152SAndre Oppermann tcp_hc_init(void) 20397d8d152SAndre Oppermann { 20497d8d152SAndre Oppermann int i; 20597d8d152SAndre Oppermann 20697d8d152SAndre Oppermann /* 207e487a5e2SRobert Watson * Initialize hostcache structures. 20897d8d152SAndre Oppermann */ 20997d8d152SAndre Oppermann tcp_hostcache.cache_count = 0; 21097d8d152SAndre Oppermann tcp_hostcache.hashsize = TCP_HOSTCACHE_HASHSIZE; 21197d8d152SAndre Oppermann tcp_hostcache.bucket_limit = TCP_HOSTCACHE_BUCKETLIMIT; 21297d8d152SAndre Oppermann tcp_hostcache.cache_limit = 21397d8d152SAndre Oppermann tcp_hostcache.hashsize * tcp_hostcache.bucket_limit; 21497d8d152SAndre Oppermann tcp_hostcache.expire = TCP_HOSTCACHE_EXPIRE; 215dba3c508SYaroslav Tykhiy tcp_hostcache.prune = TCP_HOSTCACHE_PRUNE; 21697d8d152SAndre Oppermann 21797d8d152SAndre Oppermann TUNABLE_INT_FETCH("net.inet.tcp.hostcache.hashsize", 21897d8d152SAndre Oppermann &tcp_hostcache.hashsize); 21997d8d152SAndre Oppermann TUNABLE_INT_FETCH("net.inet.tcp.hostcache.cachelimit", 22097d8d152SAndre Oppermann &tcp_hostcache.cache_limit); 22197d8d152SAndre Oppermann TUNABLE_INT_FETCH("net.inet.tcp.hostcache.bucketlimit", 22297d8d152SAndre Oppermann &tcp_hostcache.bucket_limit); 22397d8d152SAndre Oppermann if (!powerof2(tcp_hostcache.hashsize)) { 22497d8d152SAndre Oppermann printf("WARNING: hostcache hash size is not a power of 2.\n"); 22597d8d152SAndre Oppermann tcp_hostcache.hashsize = 512; /* safe default */ 22697d8d152SAndre Oppermann } 22797d8d152SAndre Oppermann tcp_hostcache.hashmask = tcp_hostcache.hashsize - 1; 22897d8d152SAndre Oppermann 22997d8d152SAndre Oppermann /* 230e487a5e2SRobert Watson * Allocate the hash table. 23197d8d152SAndre Oppermann */ 23297d8d152SAndre Oppermann tcp_hostcache.hashbase = (struct hc_head *) 23397d8d152SAndre Oppermann malloc(tcp_hostcache.hashsize * sizeof(struct hc_head), 23497d8d152SAndre Oppermann M_HOSTCACHE, M_WAITOK | M_ZERO); 23597d8d152SAndre Oppermann 23697d8d152SAndre Oppermann /* 237e487a5e2SRobert Watson * Initialize the hash buckets. 23897d8d152SAndre Oppermann */ 23997d8d152SAndre Oppermann for (i = 0; i < tcp_hostcache.hashsize; i++) { 24097d8d152SAndre Oppermann TAILQ_INIT(&tcp_hostcache.hashbase[i].hch_bucket); 24197d8d152SAndre Oppermann tcp_hostcache.hashbase[i].hch_length = 0; 24297d8d152SAndre Oppermann mtx_init(&tcp_hostcache.hashbase[i].hch_mtx, "tcp_hc_entry", 24397d8d152SAndre Oppermann NULL, MTX_DEF); 24497d8d152SAndre Oppermann } 24597d8d152SAndre Oppermann 24697d8d152SAndre Oppermann /* 24797d8d152SAndre Oppermann * Allocate the hostcache entries. 24897d8d152SAndre Oppermann */ 24997d8d152SAndre Oppermann tcp_hostcache.zone = uma_zcreate("hostcache", sizeof(struct hc_metrics), 2504efb805cSAndre Oppermann NULL, NULL, NULL, NULL, UMA_ALIGN_PTR, 0); 25197d8d152SAndre Oppermann uma_zone_set_max(tcp_hostcache.zone, tcp_hostcache.cache_limit); 25297d8d152SAndre Oppermann 25397d8d152SAndre Oppermann /* 25497d8d152SAndre Oppermann * Set up periodic cache cleanup. 25597d8d152SAndre Oppermann */ 25697d8d152SAndre Oppermann callout_init(&tcp_hc_callout, CALLOUT_MPSAFE); 257dba3c508SYaroslav Tykhiy callout_reset(&tcp_hc_callout, tcp_hostcache.prune * hz, tcp_hc_purge, 0); 25897d8d152SAndre Oppermann } 25997d8d152SAndre Oppermann 26097d8d152SAndre Oppermann /* 26197d8d152SAndre Oppermann * Internal function: look up an entry in the hostcache or return NULL. 26297d8d152SAndre Oppermann * 26397d8d152SAndre Oppermann * If an entry has been returned, the caller becomes responsible for 26497d8d152SAndre Oppermann * unlocking the bucket row after he is done reading/modifying the entry. 26597d8d152SAndre Oppermann */ 26697d8d152SAndre Oppermann static struct hc_metrics * 26797d8d152SAndre Oppermann tcp_hc_lookup(struct in_conninfo *inc) 26897d8d152SAndre Oppermann { 26997d8d152SAndre Oppermann int hash; 27097d8d152SAndre Oppermann struct hc_head *hc_head; 27197d8d152SAndre Oppermann struct hc_metrics *hc_entry; 27297d8d152SAndre Oppermann 27397d8d152SAndre Oppermann KASSERT(inc != NULL, ("tcp_hc_lookup with NULL in_conninfo pointer")); 27497d8d152SAndre Oppermann 27597d8d152SAndre Oppermann /* 27697d8d152SAndre Oppermann * Hash the foreign ip address. 27797d8d152SAndre Oppermann */ 27897d8d152SAndre Oppermann if (inc->inc_isipv6) 27997d8d152SAndre Oppermann hash = HOSTCACHE_HASH6(&inc->inc6_faddr); 28097d8d152SAndre Oppermann else 28197d8d152SAndre Oppermann hash = HOSTCACHE_HASH(&inc->inc_faddr); 28297d8d152SAndre Oppermann 28397d8d152SAndre Oppermann hc_head = &tcp_hostcache.hashbase[hash]; 28497d8d152SAndre Oppermann 28597d8d152SAndre Oppermann /* 286e487a5e2SRobert Watson * Acquire lock for this bucket row; we release the lock if we don't 287e487a5e2SRobert Watson * find an entry, otherwise the caller has to unlock after he is 288e487a5e2SRobert Watson * done. 28997d8d152SAndre Oppermann */ 29097d8d152SAndre Oppermann THC_LOCK(&hc_head->hch_mtx); 29197d8d152SAndre Oppermann 29297d8d152SAndre Oppermann /* 293e487a5e2SRobert Watson * Iterate through entries in bucket row looking for a match. 29497d8d152SAndre Oppermann */ 29597d8d152SAndre Oppermann TAILQ_FOREACH(hc_entry, &hc_head->hch_bucket, rmx_q) { 29697d8d152SAndre Oppermann if (inc->inc_isipv6) { 29797d8d152SAndre Oppermann if (memcmp(&inc->inc6_faddr, &hc_entry->ip6, 29897d8d152SAndre Oppermann sizeof(inc->inc6_faddr)) == 0) 29997d8d152SAndre Oppermann return hc_entry; 30097d8d152SAndre Oppermann } else { 30197d8d152SAndre Oppermann if (memcmp(&inc->inc_faddr, &hc_entry->ip4, 30297d8d152SAndre Oppermann sizeof(inc->inc_faddr)) == 0) 30397d8d152SAndre Oppermann return hc_entry; 30497d8d152SAndre Oppermann } 30597d8d152SAndre Oppermann } 30697d8d152SAndre Oppermann 30797d8d152SAndre Oppermann /* 308e487a5e2SRobert Watson * We were unsuccessful and didn't find anything. 30997d8d152SAndre Oppermann */ 31097d8d152SAndre Oppermann THC_UNLOCK(&hc_head->hch_mtx); 31197d8d152SAndre Oppermann return NULL; 31297d8d152SAndre Oppermann } 31397d8d152SAndre Oppermann 31497d8d152SAndre Oppermann /* 315e487a5e2SRobert Watson * Internal function: insert an entry into the hostcache or return NULL if 316e487a5e2SRobert Watson * unable to allocate a new one. 31797d8d152SAndre Oppermann * 31897d8d152SAndre Oppermann * If an entry has been returned, the caller becomes responsible for 31997d8d152SAndre Oppermann * unlocking the bucket row after he is done reading/modifying the entry. 32097d8d152SAndre Oppermann */ 32197d8d152SAndre Oppermann static struct hc_metrics * 32297d8d152SAndre Oppermann tcp_hc_insert(struct in_conninfo *inc) 32397d8d152SAndre Oppermann { 32497d8d152SAndre Oppermann int hash; 32597d8d152SAndre Oppermann struct hc_head *hc_head; 32697d8d152SAndre Oppermann struct hc_metrics *hc_entry; 32797d8d152SAndre Oppermann 32897d8d152SAndre Oppermann KASSERT(inc != NULL, ("tcp_hc_insert with NULL in_conninfo pointer")); 32997d8d152SAndre Oppermann 33097d8d152SAndre Oppermann /* 331e487a5e2SRobert Watson * Hash the foreign ip address. 33297d8d152SAndre Oppermann */ 33397d8d152SAndre Oppermann if (inc->inc_isipv6) 33497d8d152SAndre Oppermann hash = HOSTCACHE_HASH6(&inc->inc6_faddr); 33597d8d152SAndre Oppermann else 33697d8d152SAndre Oppermann hash = HOSTCACHE_HASH(&inc->inc_faddr); 33797d8d152SAndre Oppermann 33897d8d152SAndre Oppermann hc_head = &tcp_hostcache.hashbase[hash]; 33997d8d152SAndre Oppermann 34097d8d152SAndre Oppermann /* 341e487a5e2SRobert Watson * Acquire lock for this bucket row; we release the lock if we don't 342e487a5e2SRobert Watson * find an entry, otherwise the caller has to unlock after he is 343e487a5e2SRobert Watson * done. 34497d8d152SAndre Oppermann */ 34597d8d152SAndre Oppermann THC_LOCK(&hc_head->hch_mtx); 34697d8d152SAndre Oppermann 34797d8d152SAndre Oppermann /* 348e487a5e2SRobert Watson * If the bucket limit is reached, reuse the least-used element. 34997d8d152SAndre Oppermann */ 35097d8d152SAndre Oppermann if (hc_head->hch_length >= tcp_hostcache.bucket_limit || 35197d8d152SAndre Oppermann tcp_hostcache.cache_count >= tcp_hostcache.cache_limit) { 35297d8d152SAndre Oppermann hc_entry = TAILQ_LAST(&hc_head->hch_bucket, hc_qhead); 35397d8d152SAndre Oppermann /* 35497d8d152SAndre Oppermann * At first we were dropping the last element, just to 355e487a5e2SRobert Watson * reacquire it in the next two lines again, which isn't very 356e487a5e2SRobert Watson * efficient. Instead just reuse the least used element. 357e487a5e2SRobert Watson * We may drop something that is still "in-use" but we can be 358e487a5e2SRobert Watson * "lossy". 35945024be0SAndre Oppermann * Just give up if this bucket row is empty and we don't have 36045024be0SAndre Oppermann * anything to replace. 36197d8d152SAndre Oppermann */ 36245024be0SAndre Oppermann if (hc_entry == NULL) { 36345024be0SAndre Oppermann THC_UNLOCK(&hc_head->hch_mtx); 36445024be0SAndre Oppermann return NULL; 36545024be0SAndre Oppermann } 36697d8d152SAndre Oppermann TAILQ_REMOVE(&hc_head->hch_bucket, hc_entry, rmx_q); 36797d8d152SAndre Oppermann tcp_hostcache.hashbase[hash].hch_length--; 36897d8d152SAndre Oppermann tcp_hostcache.cache_count--; 36997d8d152SAndre Oppermann tcpstat.tcps_hc_bucketoverflow++; 370cd6c4060SAndre Oppermann #if 0 371cd6c4060SAndre Oppermann uma_zfree(tcp_hostcache.zone, hc_entry); 372cd6c4060SAndre Oppermann #endif 37397d8d152SAndre Oppermann } else { 37497d8d152SAndre Oppermann /* 375e487a5e2SRobert Watson * Allocate a new entry, or balk if not possible. 37697d8d152SAndre Oppermann */ 37797d8d152SAndre Oppermann hc_entry = uma_zalloc(tcp_hostcache.zone, M_NOWAIT); 37897d8d152SAndre Oppermann if (hc_entry == NULL) { 37997d8d152SAndre Oppermann THC_UNLOCK(&hc_head->hch_mtx); 38097d8d152SAndre Oppermann return NULL; 38197d8d152SAndre Oppermann } 38297d8d152SAndre Oppermann } 38397d8d152SAndre Oppermann 38497d8d152SAndre Oppermann /* 385e487a5e2SRobert Watson * Initialize basic information of hostcache entry. 38697d8d152SAndre Oppermann */ 38797d8d152SAndre Oppermann bzero(hc_entry, sizeof(*hc_entry)); 38897d8d152SAndre Oppermann if (inc->inc_isipv6) 389f5bd8e9aSAndre Oppermann bcopy(&inc->inc6_faddr, &hc_entry->ip6, sizeof(hc_entry->ip6)); 39097d8d152SAndre Oppermann else 39197d8d152SAndre Oppermann hc_entry->ip4 = inc->inc_faddr; 39297d8d152SAndre Oppermann hc_entry->rmx_head = hc_head; 39397d8d152SAndre Oppermann hc_entry->rmx_expire = tcp_hostcache.expire; 39497d8d152SAndre Oppermann 39597d8d152SAndre Oppermann /* 396e487a5e2SRobert Watson * Put it upfront. 39797d8d152SAndre Oppermann */ 39897d8d152SAndre Oppermann TAILQ_INSERT_HEAD(&hc_head->hch_bucket, hc_entry, rmx_q); 39997d8d152SAndre Oppermann tcp_hostcache.hashbase[hash].hch_length++; 40097d8d152SAndre Oppermann tcp_hostcache.cache_count++; 40197d8d152SAndre Oppermann tcpstat.tcps_hc_added++; 40297d8d152SAndre Oppermann 40397d8d152SAndre Oppermann return hc_entry; 40497d8d152SAndre Oppermann } 40597d8d152SAndre Oppermann 40697d8d152SAndre Oppermann /* 40797d8d152SAndre Oppermann * External function: look up an entry in the hostcache and fill out the 408e487a5e2SRobert Watson * supplied TCP metrics structure. Fills in NULL when no entry was found or 409e487a5e2SRobert Watson * a value is not set. 41097d8d152SAndre Oppermann */ 41197d8d152SAndre Oppermann void 41297d8d152SAndre Oppermann tcp_hc_get(struct in_conninfo *inc, struct hc_metrics_lite *hc_metrics_lite) 41397d8d152SAndre Oppermann { 41497d8d152SAndre Oppermann struct hc_metrics *hc_entry; 41597d8d152SAndre Oppermann 41697d8d152SAndre Oppermann /* 417e487a5e2SRobert Watson * Find the right bucket. 41897d8d152SAndre Oppermann */ 41997d8d152SAndre Oppermann hc_entry = tcp_hc_lookup(inc); 42097d8d152SAndre Oppermann 42197d8d152SAndre Oppermann /* 422e487a5e2SRobert Watson * If we don't have an existing object. 42397d8d152SAndre Oppermann */ 42497d8d152SAndre Oppermann if (hc_entry == NULL) { 42597d8d152SAndre Oppermann bzero(hc_metrics_lite, sizeof(*hc_metrics_lite)); 42697d8d152SAndre Oppermann return; 42797d8d152SAndre Oppermann } 42897d8d152SAndre Oppermann hc_entry->rmx_hits++; 42997d8d152SAndre Oppermann hc_entry->rmx_expire = tcp_hostcache.expire; /* start over again */ 43097d8d152SAndre Oppermann 43197d8d152SAndre Oppermann hc_metrics_lite->rmx_mtu = hc_entry->rmx_mtu; 43297d8d152SAndre Oppermann hc_metrics_lite->rmx_ssthresh = hc_entry->rmx_ssthresh; 43397d8d152SAndre Oppermann hc_metrics_lite->rmx_rtt = hc_entry->rmx_rtt; 43497d8d152SAndre Oppermann hc_metrics_lite->rmx_rttvar = hc_entry->rmx_rttvar; 43597d8d152SAndre Oppermann hc_metrics_lite->rmx_bandwidth = hc_entry->rmx_bandwidth; 43697d8d152SAndre Oppermann hc_metrics_lite->rmx_cwnd = hc_entry->rmx_cwnd; 43797d8d152SAndre Oppermann hc_metrics_lite->rmx_sendpipe = hc_entry->rmx_sendpipe; 43897d8d152SAndre Oppermann hc_metrics_lite->rmx_recvpipe = hc_entry->rmx_recvpipe; 43997d8d152SAndre Oppermann 44097d8d152SAndre Oppermann /* 441e487a5e2SRobert Watson * Unlock bucket row. 44297d8d152SAndre Oppermann */ 44397d8d152SAndre Oppermann THC_UNLOCK(&hc_entry->rmx_head->hch_mtx); 44497d8d152SAndre Oppermann } 44597d8d152SAndre Oppermann 44697d8d152SAndre Oppermann /* 44797d8d152SAndre Oppermann * External function: look up an entry in the hostcache and return the 448e487a5e2SRobert Watson * discovered path MTU. Returns NULL if no entry is found or value is not 4496fbed4afSRobert Watson * set. 45097d8d152SAndre Oppermann */ 45197d8d152SAndre Oppermann u_long 45297d8d152SAndre Oppermann tcp_hc_getmtu(struct in_conninfo *inc) 45397d8d152SAndre Oppermann { 45497d8d152SAndre Oppermann struct hc_metrics *hc_entry; 45597d8d152SAndre Oppermann u_long mtu; 45697d8d152SAndre Oppermann 45797d8d152SAndre Oppermann hc_entry = tcp_hc_lookup(inc); 45897d8d152SAndre Oppermann if (hc_entry == NULL) { 45997d8d152SAndre Oppermann return 0; 46097d8d152SAndre Oppermann } 46197d8d152SAndre Oppermann hc_entry->rmx_hits++; 46297d8d152SAndre Oppermann hc_entry->rmx_expire = tcp_hostcache.expire; /* start over again */ 46397d8d152SAndre Oppermann 46497d8d152SAndre Oppermann mtu = hc_entry->rmx_mtu; 46597d8d152SAndre Oppermann THC_UNLOCK(&hc_entry->rmx_head->hch_mtx); 46697d8d152SAndre Oppermann return mtu; 46797d8d152SAndre Oppermann } 46897d8d152SAndre Oppermann 46997d8d152SAndre Oppermann /* 470e487a5e2SRobert Watson * External function: update the MTU value of an entry in the hostcache. 47197d8d152SAndre Oppermann * Creates a new entry if none was found. 47297d8d152SAndre Oppermann */ 47397d8d152SAndre Oppermann void 47497d8d152SAndre Oppermann tcp_hc_updatemtu(struct in_conninfo *inc, u_long mtu) 47597d8d152SAndre Oppermann { 47697d8d152SAndre Oppermann struct hc_metrics *hc_entry; 47797d8d152SAndre Oppermann 47897d8d152SAndre Oppermann /* 479e487a5e2SRobert Watson * Find the right bucket. 48097d8d152SAndre Oppermann */ 48197d8d152SAndre Oppermann hc_entry = tcp_hc_lookup(inc); 48297d8d152SAndre Oppermann 48397d8d152SAndre Oppermann /* 484e487a5e2SRobert Watson * If we don't have an existing object, try to insert a new one. 48597d8d152SAndre Oppermann */ 48697d8d152SAndre Oppermann if (hc_entry == NULL) { 48797d8d152SAndre Oppermann hc_entry = tcp_hc_insert(inc); 48897d8d152SAndre Oppermann if (hc_entry == NULL) 48997d8d152SAndre Oppermann return; 49097d8d152SAndre Oppermann } 49197d8d152SAndre Oppermann hc_entry->rmx_updates++; 49297d8d152SAndre Oppermann hc_entry->rmx_expire = tcp_hostcache.expire; /* start over again */ 49397d8d152SAndre Oppermann 49497d8d152SAndre Oppermann hc_entry->rmx_mtu = mtu; 49597d8d152SAndre Oppermann 49697d8d152SAndre Oppermann /* 497e487a5e2SRobert Watson * Put it upfront so we find it faster next time. 49897d8d152SAndre Oppermann */ 49997d8d152SAndre Oppermann TAILQ_REMOVE(&hc_entry->rmx_head->hch_bucket, hc_entry, rmx_q); 50097d8d152SAndre Oppermann TAILQ_INSERT_HEAD(&hc_entry->rmx_head->hch_bucket, hc_entry, rmx_q); 50197d8d152SAndre Oppermann 50297d8d152SAndre Oppermann /* 503e487a5e2SRobert Watson * Unlock bucket row. 50497d8d152SAndre Oppermann */ 50597d8d152SAndre Oppermann THC_UNLOCK(&hc_entry->rmx_head->hch_mtx); 50697d8d152SAndre Oppermann } 50797d8d152SAndre Oppermann 50897d8d152SAndre Oppermann /* 509e487a5e2SRobert Watson * External function: update the TCP metrics of an entry in the hostcache. 51097d8d152SAndre Oppermann * Creates a new entry if none was found. 51197d8d152SAndre Oppermann */ 51297d8d152SAndre Oppermann void 51397d8d152SAndre Oppermann tcp_hc_update(struct in_conninfo *inc, struct hc_metrics_lite *hcml) 51497d8d152SAndre Oppermann { 51597d8d152SAndre Oppermann struct hc_metrics *hc_entry; 51697d8d152SAndre Oppermann 51797d8d152SAndre Oppermann hc_entry = tcp_hc_lookup(inc); 51897d8d152SAndre Oppermann if (hc_entry == NULL) { 51997d8d152SAndre Oppermann hc_entry = tcp_hc_insert(inc); 52097d8d152SAndre Oppermann if (hc_entry == NULL) 52197d8d152SAndre Oppermann return; 52297d8d152SAndre Oppermann } 52397d8d152SAndre Oppermann hc_entry->rmx_updates++; 52497d8d152SAndre Oppermann hc_entry->rmx_expire = tcp_hostcache.expire; /* start over again */ 52597d8d152SAndre Oppermann 52697d8d152SAndre Oppermann if (hcml->rmx_rtt != 0) { 52797d8d152SAndre Oppermann if (hc_entry->rmx_rtt == 0) 52897d8d152SAndre Oppermann hc_entry->rmx_rtt = hcml->rmx_rtt; 52997d8d152SAndre Oppermann else 53097d8d152SAndre Oppermann hc_entry->rmx_rtt = 53197d8d152SAndre Oppermann (hc_entry->rmx_rtt + hcml->rmx_rtt) / 2; 53297d8d152SAndre Oppermann tcpstat.tcps_cachedrtt++; 53397d8d152SAndre Oppermann } 53497d8d152SAndre Oppermann if (hcml->rmx_rttvar != 0) { 53597d8d152SAndre Oppermann if (hc_entry->rmx_rttvar == 0) 53697d8d152SAndre Oppermann hc_entry->rmx_rttvar = hcml->rmx_rttvar; 53797d8d152SAndre Oppermann else 53897d8d152SAndre Oppermann hc_entry->rmx_rttvar = 53997d8d152SAndre Oppermann (hc_entry->rmx_rttvar + hcml->rmx_rttvar) / 2; 54097d8d152SAndre Oppermann tcpstat.tcps_cachedrttvar++; 54197d8d152SAndre Oppermann } 54297d8d152SAndre Oppermann if (hcml->rmx_ssthresh != 0) { 54397d8d152SAndre Oppermann if (hc_entry->rmx_ssthresh == 0) 54497d8d152SAndre Oppermann hc_entry->rmx_ssthresh = hcml->rmx_ssthresh; 54597d8d152SAndre Oppermann else 54697d8d152SAndre Oppermann hc_entry->rmx_ssthresh = 54797d8d152SAndre Oppermann (hc_entry->rmx_ssthresh + hcml->rmx_ssthresh) / 2; 54897d8d152SAndre Oppermann tcpstat.tcps_cachedssthresh++; 54997d8d152SAndre Oppermann } 55097d8d152SAndre Oppermann if (hcml->rmx_bandwidth != 0) { 55197d8d152SAndre Oppermann if (hc_entry->rmx_bandwidth == 0) 55297d8d152SAndre Oppermann hc_entry->rmx_bandwidth = hcml->rmx_bandwidth; 55397d8d152SAndre Oppermann else 55497d8d152SAndre Oppermann hc_entry->rmx_bandwidth = 55597d8d152SAndre Oppermann (hc_entry->rmx_bandwidth + hcml->rmx_bandwidth) / 2; 55697d8d152SAndre Oppermann /* tcpstat.tcps_cachedbandwidth++; */ 55797d8d152SAndre Oppermann } 55897d8d152SAndre Oppermann if (hcml->rmx_cwnd != 0) { 55997d8d152SAndre Oppermann if (hc_entry->rmx_cwnd == 0) 56097d8d152SAndre Oppermann hc_entry->rmx_cwnd = hcml->rmx_cwnd; 56197d8d152SAndre Oppermann else 56297d8d152SAndre Oppermann hc_entry->rmx_cwnd = 56397d8d152SAndre Oppermann (hc_entry->rmx_cwnd + hcml->rmx_cwnd) / 2; 56497d8d152SAndre Oppermann /* tcpstat.tcps_cachedcwnd++; */ 56597d8d152SAndre Oppermann } 56697d8d152SAndre Oppermann if (hcml->rmx_sendpipe != 0) { 56797d8d152SAndre Oppermann if (hc_entry->rmx_sendpipe == 0) 56897d8d152SAndre Oppermann hc_entry->rmx_sendpipe = hcml->rmx_sendpipe; 56997d8d152SAndre Oppermann else 57097d8d152SAndre Oppermann hc_entry->rmx_sendpipe = 57197d8d152SAndre Oppermann (hc_entry->rmx_sendpipe + hcml->rmx_sendpipe) /2; 57297d8d152SAndre Oppermann /* tcpstat.tcps_cachedsendpipe++; */ 57397d8d152SAndre Oppermann } 57497d8d152SAndre Oppermann if (hcml->rmx_recvpipe != 0) { 57597d8d152SAndre Oppermann if (hc_entry->rmx_recvpipe == 0) 57697d8d152SAndre Oppermann hc_entry->rmx_recvpipe = hcml->rmx_recvpipe; 57797d8d152SAndre Oppermann else 57897d8d152SAndre Oppermann hc_entry->rmx_recvpipe = 57997d8d152SAndre Oppermann (hc_entry->rmx_recvpipe + hcml->rmx_recvpipe) /2; 58097d8d152SAndre Oppermann /* tcpstat.tcps_cachedrecvpipe++; */ 58197d8d152SAndre Oppermann } 58297d8d152SAndre Oppermann 58397d8d152SAndre Oppermann TAILQ_REMOVE(&hc_entry->rmx_head->hch_bucket, hc_entry, rmx_q); 58497d8d152SAndre Oppermann TAILQ_INSERT_HEAD(&hc_entry->rmx_head->hch_bucket, hc_entry, rmx_q); 58597d8d152SAndre Oppermann THC_UNLOCK(&hc_entry->rmx_head->hch_mtx); 58697d8d152SAndre Oppermann } 58797d8d152SAndre Oppermann 58897d8d152SAndre Oppermann /* 58997d8d152SAndre Oppermann * Sysctl function: prints the list and values of all hostcache entries in 59097d8d152SAndre Oppermann * unsorted order. 59197d8d152SAndre Oppermann */ 59297d8d152SAndre Oppermann static int 59397d8d152SAndre Oppermann sysctl_tcp_hc_list(SYSCTL_HANDLER_ARGS) 59497d8d152SAndre Oppermann { 59597d8d152SAndre Oppermann int bufsize; 59697d8d152SAndre Oppermann int linesize = 128; 59797d8d152SAndre Oppermann char *p, *buf; 59897d8d152SAndre Oppermann int len, i, error; 59997d8d152SAndre Oppermann struct hc_metrics *hc_entry; 6001d54aa3bSBjoern A. Zeeb #ifdef INET6 6011d54aa3bSBjoern A. Zeeb char ip6buf[INET6_ADDRSTRLEN]; 6021d54aa3bSBjoern A. Zeeb #endif 60397d8d152SAndre Oppermann 60497d8d152SAndre Oppermann bufsize = linesize * (tcp_hostcache.cache_count + 1); 60597d8d152SAndre Oppermann 60697d8d152SAndre Oppermann p = buf = (char *)malloc(bufsize, M_TEMP, M_WAITOK|M_ZERO); 60797d8d152SAndre Oppermann 60897d8d152SAndre Oppermann len = snprintf(p, linesize, 60997d8d152SAndre Oppermann "\nIP address MTU SSTRESH RTT RTTVAR BANDWIDTH " 61097d8d152SAndre Oppermann " CWND SENDPIPE RECVPIPE HITS UPD EXP\n"); 61197d8d152SAndre Oppermann p += len; 61297d8d152SAndre Oppermann 61397d8d152SAndre Oppermann #define msec(u) (((u) + 500) / 1000) 61497d8d152SAndre Oppermann for (i = 0; i < tcp_hostcache.hashsize; i++) { 61597d8d152SAndre Oppermann THC_LOCK(&tcp_hostcache.hashbase[i].hch_mtx); 61697d8d152SAndre Oppermann TAILQ_FOREACH(hc_entry, &tcp_hostcache.hashbase[i].hch_bucket, 61797d8d152SAndre Oppermann rmx_q) { 61897d8d152SAndre Oppermann len = snprintf(p, linesize, 61997d8d152SAndre Oppermann "%-15s %5lu %8lu %6lums %6lums %9lu %8lu %8lu %8lu " 62097d8d152SAndre Oppermann "%4lu %4lu %4i\n", 62197d8d152SAndre Oppermann hc_entry->ip4.s_addr ? inet_ntoa(hc_entry->ip4) : 62297d8d152SAndre Oppermann #ifdef INET6 6231d54aa3bSBjoern A. Zeeb ip6_sprintf(ip6buf, &hc_entry->ip6), 62497d8d152SAndre Oppermann #else 62597d8d152SAndre Oppermann "IPv6?", 62697d8d152SAndre Oppermann #endif 62797d8d152SAndre Oppermann hc_entry->rmx_mtu, 62897d8d152SAndre Oppermann hc_entry->rmx_ssthresh, 62997d8d152SAndre Oppermann msec(hc_entry->rmx_rtt * 63097d8d152SAndre Oppermann (RTM_RTTUNIT / (hz * TCP_RTT_SCALE))), 63197d8d152SAndre Oppermann msec(hc_entry->rmx_rttvar * 63297d8d152SAndre Oppermann (RTM_RTTUNIT / (hz * TCP_RTT_SCALE))), 6332f6e6e9bSAndre Oppermann hc_entry->rmx_bandwidth * 8, 63497d8d152SAndre Oppermann hc_entry->rmx_cwnd, 63597d8d152SAndre Oppermann hc_entry->rmx_sendpipe, 63697d8d152SAndre Oppermann hc_entry->rmx_recvpipe, 63797d8d152SAndre Oppermann hc_entry->rmx_hits, 63897d8d152SAndre Oppermann hc_entry->rmx_updates, 63997d8d152SAndre Oppermann hc_entry->rmx_expire); 64097d8d152SAndre Oppermann p += len; 64197d8d152SAndre Oppermann } 64297d8d152SAndre Oppermann THC_UNLOCK(&tcp_hostcache.hashbase[i].hch_mtx); 64397d8d152SAndre Oppermann } 64497d8d152SAndre Oppermann #undef msec 64597d8d152SAndre Oppermann error = SYSCTL_OUT(req, buf, p - buf); 64697d8d152SAndre Oppermann free(buf, M_TEMP); 64797d8d152SAndre Oppermann return(error); 64897d8d152SAndre Oppermann } 64997d8d152SAndre Oppermann 65097d8d152SAndre Oppermann /* 651e487a5e2SRobert Watson * Expire and purge (old|all) entries in the tcp_hostcache. Runs 652e487a5e2SRobert Watson * periodically from the callout. 65397d8d152SAndre Oppermann */ 65497d8d152SAndre Oppermann static void 65597d8d152SAndre Oppermann tcp_hc_purge(void *arg) 65697d8d152SAndre Oppermann { 657b62dccc7SAndre Oppermann struct hc_metrics *hc_entry, *hc_next; 65897d8d152SAndre Oppermann int all = (intptr_t)arg; 65997d8d152SAndre Oppermann int i; 66097d8d152SAndre Oppermann 66197d8d152SAndre Oppermann if (tcp_hostcache.purgeall) { 66297d8d152SAndre Oppermann all = 1; 66397d8d152SAndre Oppermann tcp_hostcache.purgeall = 0; 66497d8d152SAndre Oppermann } 66597d8d152SAndre Oppermann 66697d8d152SAndre Oppermann for (i = 0; i < tcp_hostcache.hashsize; i++) { 66797d8d152SAndre Oppermann THC_LOCK(&tcp_hostcache.hashbase[i].hch_mtx); 668b62dccc7SAndre Oppermann TAILQ_FOREACH_SAFE(hc_entry, &tcp_hostcache.hashbase[i].hch_bucket, 669b62dccc7SAndre Oppermann rmx_q, hc_next) { 67097d8d152SAndre Oppermann if (all || hc_entry->rmx_expire <= 0) { 67197d8d152SAndre Oppermann TAILQ_REMOVE(&tcp_hostcache.hashbase[i].hch_bucket, 67297d8d152SAndre Oppermann hc_entry, rmx_q); 67397d8d152SAndre Oppermann uma_zfree(tcp_hostcache.zone, hc_entry); 67497d8d152SAndre Oppermann tcp_hostcache.hashbase[i].hch_length--; 67597d8d152SAndre Oppermann tcp_hostcache.cache_count--; 67697d8d152SAndre Oppermann } else 677dba3c508SYaroslav Tykhiy hc_entry->rmx_expire -= tcp_hostcache.prune; 67897d8d152SAndre Oppermann } 67997d8d152SAndre Oppermann THC_UNLOCK(&tcp_hostcache.hashbase[i].hch_mtx); 68097d8d152SAndre Oppermann } 681dba3c508SYaroslav Tykhiy callout_reset(&tcp_hc_callout, tcp_hostcache.prune * hz, tcp_hc_purge, 0); 68297d8d152SAndre Oppermann } 683