xref: /freebsd/sys/netinet/tcp_usrreq.c (revision 0af4ce45472c3ddad8d1835815f5d09943fc7274)
1c398230bSWarner Losh /*-
251369649SPedro F. Giffuni  * SPDX-License-Identifier: BSD-3-Clause
351369649SPedro F. Giffuni  *
4df8bae1dSRodney W. Grimes  * Copyright (c) 1982, 1986, 1988, 1993
5623dce13SRobert Watson  *	The Regents of the University of California.
6497057eeSRobert Watson  * Copyright (c) 2006-2007 Robert N. M. Watson
7fa046d87SRobert Watson  * Copyright (c) 2010-2011 Juniper Networks, Inc.
8623dce13SRobert Watson  * All rights reserved.
9df8bae1dSRodney W. Grimes  *
10fa046d87SRobert Watson  * Portions of this software were developed by Robert N. M. Watson under
11fa046d87SRobert Watson  * contract to Juniper Networks, Inc.
12fa046d87SRobert Watson  *
13df8bae1dSRodney W. Grimes  * Redistribution and use in source and binary forms, with or without
14df8bae1dSRodney W. Grimes  * modification, are permitted provided that the following conditions
15df8bae1dSRodney W. Grimes  * are met:
16df8bae1dSRodney W. Grimes  * 1. Redistributions of source code must retain the above copyright
17df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer.
18df8bae1dSRodney W. Grimes  * 2. Redistributions in binary form must reproduce the above copyright
19df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer in the
20df8bae1dSRodney W. Grimes  *    documentation and/or other materials provided with the distribution.
21fbbd9655SWarner Losh  * 3. Neither the name of the University nor the names of its contributors
22df8bae1dSRodney W. Grimes  *    may be used to endorse or promote products derived from this software
23df8bae1dSRodney W. Grimes  *    without specific prior written permission.
24df8bae1dSRodney W. Grimes  *
25df8bae1dSRodney W. Grimes  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
26df8bae1dSRodney W. Grimes  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
27df8bae1dSRodney W. Grimes  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
28df8bae1dSRodney W. Grimes  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
29df8bae1dSRodney W. Grimes  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
30df8bae1dSRodney W. Grimes  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
31df8bae1dSRodney W. Grimes  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
32df8bae1dSRodney W. Grimes  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
33df8bae1dSRodney W. Grimes  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
34df8bae1dSRodney W. Grimes  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
35df8bae1dSRodney W. Grimes  * SUCH DAMAGE.
36df8bae1dSRodney W. Grimes  *
371fdbc7aeSGarrett Wollman  *	From: @(#)tcp_usrreq.c	8.2 (Berkeley) 1/3/94
38df8bae1dSRodney W. Grimes  */
39df8bae1dSRodney W. Grimes 
404b421e2dSMike Silbersack #include <sys/cdefs.h>
414b421e2dSMike Silbersack __FBSDID("$FreeBSD$");
424b421e2dSMike Silbersack 
43497057eeSRobert Watson #include "opt_ddb.h"
441cfd4b53SBruce M Simpson #include "opt_inet.h"
45fb59c426SYoshinobu Inoue #include "opt_inet6.h"
46fcf59617SAndrey V. Elsukov #include "opt_ipsec.h"
47b2e60773SJohn Baldwin #include "opt_kern_tls.h"
480cc12cc5SJoerg Wunsch #include "opt_tcpdebug.h"
490cc12cc5SJoerg Wunsch 
50df8bae1dSRodney W. Grimes #include <sys/param.h>
51df8bae1dSRodney W. Grimes #include <sys/systm.h>
52adc56f5aSEdward Tomasz Napierala #include <sys/arb.h>
539077f387SGleb Smirnoff #include <sys/limits.h>
54f76fcf6dSJeffrey Hsu #include <sys/malloc.h>
5555bceb1eSRandall Stewart #include <sys/refcount.h>
56c7a82f90SGarrett Wollman #include <sys/kernel.h>
57b2e60773SJohn Baldwin #include <sys/ktls.h>
58adc56f5aSEdward Tomasz Napierala #include <sys/qmath.h>
5998163b98SPoul-Henning Kamp #include <sys/sysctl.h>
60df8bae1dSRodney W. Grimes #include <sys/mbuf.h>
61fb59c426SYoshinobu Inoue #ifdef INET6
62fb59c426SYoshinobu Inoue #include <sys/domain.h>
63fb59c426SYoshinobu Inoue #endif /* INET6 */
64df8bae1dSRodney W. Grimes #include <sys/socket.h>
65df8bae1dSRodney W. Grimes #include <sys/socketvar.h>
66df8bae1dSRodney W. Grimes #include <sys/protosw.h>
6791421ba2SRobert Watson #include <sys/proc.h>
6891421ba2SRobert Watson #include <sys/jail.h>
69adc56f5aSEdward Tomasz Napierala #include <sys/stats.h>
70df8bae1dSRodney W. Grimes 
71497057eeSRobert Watson #ifdef DDB
72497057eeSRobert Watson #include <ddb/ddb.h>
73497057eeSRobert Watson #endif
74497057eeSRobert Watson 
75df8bae1dSRodney W. Grimes #include <net/if.h>
7676039bc8SGleb Smirnoff #include <net/if_var.h>
77df8bae1dSRodney W. Grimes #include <net/route.h>
78530c0060SRobert Watson #include <net/vnet.h>
79df8bae1dSRodney W. Grimes 
80df8bae1dSRodney W. Grimes #include <netinet/in.h>
815d06879aSGeorge V. Neville-Neil #include <netinet/in_kdtrace.h>
82df8bae1dSRodney W. Grimes #include <netinet/in_pcb.h>
83b287c6c7SBjoern A. Zeeb #include <netinet/in_systm.h>
84b5e8ce9fSBruce Evans #include <netinet/in_var.h>
85df8bae1dSRodney W. Grimes #include <netinet/ip_var.h>
86fb59c426SYoshinobu Inoue #ifdef INET6
87b287c6c7SBjoern A. Zeeb #include <netinet/ip6.h>
88b287c6c7SBjoern A. Zeeb #include <netinet6/in6_pcb.h>
89fb59c426SYoshinobu Inoue #include <netinet6/ip6_var.h>
90a1f7e5f8SHajimu UMEMOTO #include <netinet6/scope6_var.h>
91fb59c426SYoshinobu Inoue #endif
922de3e790SGleb Smirnoff #include <netinet/tcp.h>
93df8bae1dSRodney W. Grimes #include <netinet/tcp_fsm.h>
94df8bae1dSRodney W. Grimes #include <netinet/tcp_seq.h>
95df8bae1dSRodney W. Grimes #include <netinet/tcp_timer.h>
96df8bae1dSRodney W. Grimes #include <netinet/tcp_var.h>
972529f56eSJonathan T. Looney #include <netinet/tcp_log_buf.h>
98df8bae1dSRodney W. Grimes #include <netinet/tcpip.h>
994644fda3SGleb Smirnoff #include <netinet/cc/cc.h>
100c560df6fSPatrick Kelsey #include <netinet/tcp_fastopen.h>
101fd389e7cSRandall Stewart #include <netinet/tcp_hpts.h>
10286a996e6SHiren Panchasara #ifdef TCPPCAP
10386a996e6SHiren Panchasara #include <netinet/tcp_pcap.h>
10486a996e6SHiren Panchasara #endif
105610ee2f9SDavid Greenman #ifdef TCPDEBUG
106df8bae1dSRodney W. Grimes #include <netinet/tcp_debug.h>
107610ee2f9SDavid Greenman #endif
10809fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
109bc65987aSKip Macy #include <netinet/tcp_offload.h>
11009fe6320SNavdeep Parhar #endif
111fcf59617SAndrey V. Elsukov #include <netipsec/ipsec_support.h>
112df8bae1dSRodney W. Grimes 
113adc56f5aSEdward Tomasz Napierala #include <vm/vm.h>
114adc56f5aSEdward Tomasz Napierala #include <vm/vm_param.h>
115adc56f5aSEdward Tomasz Napierala #include <vm/pmap.h>
116adc56f5aSEdward Tomasz Napierala #include <vm/vm_extern.h>
117adc56f5aSEdward Tomasz Napierala #include <vm/vm_map.h>
118adc56f5aSEdward Tomasz Napierala #include <vm/vm_page.h>
119adc56f5aSEdward Tomasz Napierala 
120df8bae1dSRodney W. Grimes /*
121df8bae1dSRodney W. Grimes  * TCP protocol interface to socket abstraction.
122df8bae1dSRodney W. Grimes  */
123b287c6c7SBjoern A. Zeeb #ifdef INET
1244d77a549SAlfred Perlstein static int	tcp_connect(struct tcpcb *, struct sockaddr *,
1254d77a549SAlfred Perlstein 		    struct thread *td);
126b287c6c7SBjoern A. Zeeb #endif /* INET */
127fb59c426SYoshinobu Inoue #ifdef INET6
1284d77a549SAlfred Perlstein static int	tcp6_connect(struct tcpcb *, struct sockaddr *,
1294d77a549SAlfred Perlstein 		    struct thread *td);
130fb59c426SYoshinobu Inoue #endif /* INET6 */
131623dce13SRobert Watson static void	tcp_disconnect(struct tcpcb *);
132623dce13SRobert Watson static void	tcp_usrclosed(struct tcpcb *);
133b8af5dfaSRobert Watson static void	tcp_fill_info(struct tcpcb *, struct tcp_info *);
1342c37256eSGarrett Wollman 
135d3b6c96bSRandall Stewart static int	tcp_pru_options_support(struct tcpcb *tp, int flags);
136d3b6c96bSRandall Stewart 
1372c37256eSGarrett Wollman #ifdef TCPDEBUG
1381db24ffbSJonathan Lemon #define	TCPDEBUG0	int ostate = 0
1392c37256eSGarrett Wollman #define	TCPDEBUG1()	ostate = tp ? tp->t_state : 0
1404cc20ab1SSeigo Tanimura #define	TCPDEBUG2(req)	if (tp && (so->so_options & SO_DEBUG)) \
1414cc20ab1SSeigo Tanimura 				tcp_trace(TA_USER, ostate, tp, 0, 0, req)
1422c37256eSGarrett Wollman #else
1432c37256eSGarrett Wollman #define	TCPDEBUG0
1442c37256eSGarrett Wollman #define	TCPDEBUG1()
1452c37256eSGarrett Wollman #define	TCPDEBUG2(req)
1462c37256eSGarrett Wollman #endif
1472c37256eSGarrett Wollman 
1482c37256eSGarrett Wollman /*
14925102351SMike Karels  * tcp_require_unique port requires a globally-unique source port for each
15025102351SMike Karels  * outgoing connection.  The default is to require the 4-tuple to be unique.
15125102351SMike Karels  */
15225102351SMike Karels VNET_DEFINE(int, tcp_require_unique_port) = 0;
15325102351SMike Karels SYSCTL_INT(_net_inet_tcp, OID_AUTO, require_unique_port,
15425102351SMike Karels     CTLFLAG_VNET | CTLFLAG_RW, &VNET_NAME(tcp_require_unique_port), 0,
15525102351SMike Karels     "Require globally-unique ephemeral port for outgoing connections");
15625102351SMike Karels #define	V_tcp_require_unique_port	VNET(tcp_require_unique_port)
15725102351SMike Karels 
15825102351SMike Karels /*
1592c37256eSGarrett Wollman  * TCP attaches to socket via pru_attach(), reserving space,
1602c37256eSGarrett Wollman  * and an internet control block.
1612c37256eSGarrett Wollman  */
1622c37256eSGarrett Wollman static int
163b40ce416SJulian Elischer tcp_usr_attach(struct socket *so, int proto, struct thread *td)
1642c37256eSGarrett Wollman {
165f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
166623dce13SRobert Watson 	struct tcpcb *tp = NULL;
167623dce13SRobert Watson 	int error;
1682c37256eSGarrett Wollman 	TCPDEBUG0;
1692c37256eSGarrett Wollman 
170623dce13SRobert Watson 	inp = sotoinpcb(so);
171623dce13SRobert Watson 	KASSERT(inp == NULL, ("tcp_usr_attach: inp != NULL"));
1722c37256eSGarrett Wollman 	TCPDEBUG1();
1732c37256eSGarrett Wollman 
1740f6385e7SGleb Smirnoff 	if (so->so_snd.sb_hiwat == 0 || so->so_rcv.sb_hiwat == 0) {
1750f6385e7SGleb Smirnoff 		error = soreserve(so, V_tcp_sendspace, V_tcp_recvspace);
1762c37256eSGarrett Wollman 		if (error)
1772c37256eSGarrett Wollman 			goto out;
1780f6385e7SGleb Smirnoff 	}
1792c37256eSGarrett Wollman 
1800f6385e7SGleb Smirnoff 	so->so_rcv.sb_flags |= SB_AUTOSIZE;
1810f6385e7SGleb Smirnoff 	so->so_snd.sb_flags |= SB_AUTOSIZE;
1820f6385e7SGleb Smirnoff 	error = in_pcballoc(so, &V_tcbinfo);
1837669c586SGleb Smirnoff 	if (error)
1840f6385e7SGleb Smirnoff 		goto out;
1850f6385e7SGleb Smirnoff 	inp = sotoinpcb(so);
1860f6385e7SGleb Smirnoff #ifdef INET6
1870f6385e7SGleb Smirnoff 	if (inp->inp_vflag & INP_IPV6PROTO) {
1880f6385e7SGleb Smirnoff 		inp->inp_vflag |= INP_IPV6;
1890f6385e7SGleb Smirnoff 		if ((inp->inp_flags & IN6P_IPV6_V6ONLY) == 0)
1900f6385e7SGleb Smirnoff 			inp->inp_vflag |= INP_IPV4;
1910f6385e7SGleb Smirnoff 		inp->in6p_hops = -1;	/* use kernel default */
1920f6385e7SGleb Smirnoff 	}
1930f6385e7SGleb Smirnoff 	else
1940f6385e7SGleb Smirnoff #endif
1950f6385e7SGleb Smirnoff 		inp->inp_vflag |= INP_IPV4;
1960f6385e7SGleb Smirnoff 	tp = tcp_newtcpcb(inp);
1970f6385e7SGleb Smirnoff 	if (tp == NULL) {
1987669c586SGleb Smirnoff 		error = ENOBUFS;
1990f6385e7SGleb Smirnoff 		in_pcbdetach(inp);
2000f6385e7SGleb Smirnoff 		in_pcbfree(inp);
2010f6385e7SGleb Smirnoff 		goto out;
2020f6385e7SGleb Smirnoff 	}
2030f6385e7SGleb Smirnoff 	tp->t_state = TCPS_CLOSED;
2040f6385e7SGleb Smirnoff 	INP_WUNLOCK(inp);
2050f6385e7SGleb Smirnoff 	TCPSTATES_INC(TCPS_CLOSED);
2062c37256eSGarrett Wollman out:
2072c37256eSGarrett Wollman 	TCPDEBUG2(PRU_ATTACH);
2085d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_ATTACH);
2090f6385e7SGleb Smirnoff 	return (error);
2102c37256eSGarrett Wollman }
2112c37256eSGarrett Wollman 
2122c37256eSGarrett Wollman /*
2133fed74e9SGleb Smirnoff  * tcp_usr_detach is called when the socket layer loses its final reference
214a152f8a3SRobert Watson  * to the socket, be it a file descriptor reference, a reference from TCP,
215a152f8a3SRobert Watson  * etc.  At this point, there is only one case in which we will keep around
216a152f8a3SRobert Watson  * inpcb state: time wait.
2172c37256eSGarrett Wollman  */
218bc725eafSRobert Watson static void
2193fed74e9SGleb Smirnoff tcp_usr_detach(struct socket *so)
2202c37256eSGarrett Wollman {
2213fed74e9SGleb Smirnoff 	struct inpcb *inp;
2222c37256eSGarrett Wollman 	struct tcpcb *tp;
2232c37256eSGarrett Wollman 
2243fed74e9SGleb Smirnoff 	inp = sotoinpcb(so);
2253fed74e9SGleb Smirnoff 	KASSERT(inp != NULL, ("%s: inp == NULL", __func__));
2263fed74e9SGleb Smirnoff 	INP_WLOCK(inp);
2273fed74e9SGleb Smirnoff 	KASSERT(so->so_pcb == inp && inp->inp_socket == so,
2283fed74e9SGleb Smirnoff 		("%s: socket %p inp %p mismatch", __func__, so, inp));
229953b5606SRobert Watson 
230a152f8a3SRobert Watson 	tp = intotcpcb(inp);
231a152f8a3SRobert Watson 
232ad71fe3cSRobert Watson 	if (inp->inp_flags & INP_TIMEWAIT) {
233623dce13SRobert Watson 		/*
234a152f8a3SRobert Watson 		 * There are two cases to handle: one in which the time wait
235a152f8a3SRobert Watson 		 * state is being discarded (INP_DROPPED), and one in which
236a152f8a3SRobert Watson 		 * this connection will remain in timewait.  In the former,
237a152f8a3SRobert Watson 		 * it is time to discard all state (except tcptw, which has
238a152f8a3SRobert Watson 		 * already been discarded by the timewait close code, which
239a152f8a3SRobert Watson 		 * should be further up the call stack somewhere).  In the
240a152f8a3SRobert Watson 		 * latter case, we detach from the socket, but leave the pcb
241a152f8a3SRobert Watson 		 * present until timewait ends.
242623dce13SRobert Watson 		 *
243a152f8a3SRobert Watson 		 * XXXRW: Would it be cleaner to free the tcptw here?
244cea40c48SJulien Charbon 		 *
245cea40c48SJulien Charbon 		 * Astute question indeed, from twtcp perspective there are
246dd388cfdSGleb Smirnoff 		 * four cases to consider:
247cea40c48SJulien Charbon 		 *
2483fed74e9SGleb Smirnoff 		 * #1 tcp_usr_detach is called at tcptw creation time by
249cea40c48SJulien Charbon 		 *  tcp_twstart, then do not discard the newly created tcptw
250cea40c48SJulien Charbon 		 *  and leave inpcb present until timewait ends
2513fed74e9SGleb Smirnoff 		 * #2 tcp_usr_detach is called at tcptw creation time by
252dd388cfdSGleb Smirnoff 		 *  tcp_twstart, but connection is local and tw will be
253dd388cfdSGleb Smirnoff 		 *  discarded immediately
2543fed74e9SGleb Smirnoff 		 * #3 tcp_usr_detach is called at timewait end (or reuse) by
255cea40c48SJulien Charbon 		 *  tcp_twclose, then the tcptw has already been discarded
256ff9b006dSJulien Charbon 		 *  (or reused) and inpcb is freed here
2573fed74e9SGleb Smirnoff 		 * #4 tcp_usr_detach is called() after timewait ends (or reuse)
258cea40c48SJulien Charbon 		 *  (e.g. by soclose), then tcptw has already been discarded
259ff9b006dSJulien Charbon 		 *  (or reused) and inpcb is freed here
260cea40c48SJulien Charbon 		 *
261cea40c48SJulien Charbon 		 *  In all three cases the tcptw should not be freed here.
262623dce13SRobert Watson 		 */
263ad71fe3cSRobert Watson 		if (inp->inp_flags & INP_DROPPED) {
264ef396441SGleb Smirnoff 			KASSERT(tp == NULL, ("tcp_detach: INP_TIMEWAIT && "
265ef396441SGleb Smirnoff 			    "INP_DROPPED && tp != NULL"));
266623dce13SRobert Watson 			in_pcbdetach(inp);
2670206cdb8SBjoern A. Zeeb 			in_pcbfree(inp);
2680206cdb8SBjoern A. Zeeb 		} else {
269623dce13SRobert Watson 			in_pcbdetach(inp);
2708501a69cSRobert Watson 			INP_WUNLOCK(inp);
271623dce13SRobert Watson 		}
272623dce13SRobert Watson 	} else {
273e6e65783SRobert Watson 		/*
274a152f8a3SRobert Watson 		 * If the connection is not in timewait, we consider two
275a152f8a3SRobert Watson 		 * two conditions: one in which no further processing is
276a152f8a3SRobert Watson 		 * necessary (dropped || embryonic), and one in which TCP is
277a152f8a3SRobert Watson 		 * not yet done, but no longer requires the socket, so the
278a152f8a3SRobert Watson 		 * pcb will persist for the time being.
279a152f8a3SRobert Watson 		 *
280a152f8a3SRobert Watson 		 * XXXRW: Does the second case still occur?
281e6e65783SRobert Watson 		 */
282ad71fe3cSRobert Watson 		if (inp->inp_flags & INP_DROPPED ||
283623dce13SRobert Watson 		    tp->t_state < TCPS_SYN_SENT) {
284623dce13SRobert Watson 			tcp_discardcb(tp);
285623dce13SRobert Watson 			in_pcbdetach(inp);
2860206cdb8SBjoern A. Zeeb 			in_pcbfree(inp);
287db3cee51SNavdeep Parhar 		} else {
288a152f8a3SRobert Watson 			in_pcbdetach(inp);
289db3cee51SNavdeep Parhar 			INP_WUNLOCK(inp);
290db3cee51SNavdeep Parhar 		}
291623dce13SRobert Watson 	}
292623dce13SRobert Watson }
293c78cbc7bSRobert Watson 
294b287c6c7SBjoern A. Zeeb #ifdef INET
2952c37256eSGarrett Wollman /*
2962c37256eSGarrett Wollman  * Give the socket an address.
2972c37256eSGarrett Wollman  */
2982c37256eSGarrett Wollman static int
299b40ce416SJulian Elischer tcp_usr_bind(struct socket *so, struct sockaddr *nam, struct thread *td)
3002c37256eSGarrett Wollman {
3012c37256eSGarrett Wollman 	int error = 0;
302f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
303623dce13SRobert Watson 	struct tcpcb *tp = NULL;
3042c37256eSGarrett Wollman 	struct sockaddr_in *sinp;
3052c37256eSGarrett Wollman 
30652710de1SPawel Jakub Dawidek 	sinp = (struct sockaddr_in *)nam;
307f96603b5SMark Johnston 	if (nam->sa_family != AF_INET) {
308f96603b5SMark Johnston 		/*
309f96603b5SMark Johnston 		 * Preserve compatibility with old programs.
310f96603b5SMark Johnston 		 */
311f96603b5SMark Johnston 		if (nam->sa_family != AF_UNSPEC ||
3123f1f6b6eSMichael Tuexen 		    nam->sa_len < offsetof(struct sockaddr_in, sin_zero) ||
313f96603b5SMark Johnston 		    sinp->sin_addr.s_addr != INADDR_ANY)
314f161d294SMark Johnston 			return (EAFNOSUPPORT);
315f96603b5SMark Johnston 		nam->sa_family = AF_INET;
316f96603b5SMark Johnston 	}
31752710de1SPawel Jakub Dawidek 	if (nam->sa_len != sizeof(*sinp))
31852710de1SPawel Jakub Dawidek 		return (EINVAL);
319f161d294SMark Johnston 
3202c37256eSGarrett Wollman 	/*
3212c37256eSGarrett Wollman 	 * Must check for multicast addresses and disallow binding
3222c37256eSGarrett Wollman 	 * to them.
3232c37256eSGarrett Wollman 	 */
324f161d294SMark Johnston 	if (IN_MULTICAST(ntohl(sinp->sin_addr.s_addr)))
32552710de1SPawel Jakub Dawidek 		return (EAFNOSUPPORT);
32652710de1SPawel Jakub Dawidek 
327623dce13SRobert Watson 	TCPDEBUG0;
328623dce13SRobert Watson 	inp = sotoinpcb(so);
329623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_bind: inp == NULL"));
3308501a69cSRobert Watson 	INP_WLOCK(inp);
331ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
332623dce13SRobert Watson 		error = EINVAL;
3332c37256eSGarrett Wollman 		goto out;
334623dce13SRobert Watson 	}
335623dce13SRobert Watson 	tp = intotcpcb(inp);
336623dce13SRobert Watson 	TCPDEBUG1();
337fa046d87SRobert Watson 	INP_HASH_WLOCK(&V_tcbinfo);
338623dce13SRobert Watson 	error = in_pcbbind(inp, nam, td->td_ucred);
339fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
340623dce13SRobert Watson out:
341623dce13SRobert Watson 	TCPDEBUG2(PRU_BIND);
3425d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_BIND);
3438501a69cSRobert Watson 	INP_WUNLOCK(inp);
344623dce13SRobert Watson 
345623dce13SRobert Watson 	return (error);
3462c37256eSGarrett Wollman }
347b287c6c7SBjoern A. Zeeb #endif /* INET */
3482c37256eSGarrett Wollman 
349fb59c426SYoshinobu Inoue #ifdef INET6
350fb59c426SYoshinobu Inoue static int
351b40ce416SJulian Elischer tcp6_usr_bind(struct socket *so, struct sockaddr *nam, struct thread *td)
352fb59c426SYoshinobu Inoue {
353fb59c426SYoshinobu Inoue 	int error = 0;
354f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
355623dce13SRobert Watson 	struct tcpcb *tp = NULL;
3560ecd976eSBjoern A. Zeeb 	struct sockaddr_in6 *sin6;
3574a91aa8fSMichael Tuexen 	u_char vflagsav;
358fb59c426SYoshinobu Inoue 
3590ecd976eSBjoern A. Zeeb 	sin6 = (struct sockaddr_in6 *)nam;
360f161d294SMark Johnston 	if (nam->sa_family != AF_INET6)
361f161d294SMark Johnston 		return (EAFNOSUPPORT);
3620ecd976eSBjoern A. Zeeb 	if (nam->sa_len != sizeof(*sin6))
36352710de1SPawel Jakub Dawidek 		return (EINVAL);
364f161d294SMark Johnston 
365fb59c426SYoshinobu Inoue 	/*
366fb59c426SYoshinobu Inoue 	 * Must check for multicast addresses and disallow binding
367fb59c426SYoshinobu Inoue 	 * to them.
368fb59c426SYoshinobu Inoue 	 */
369f161d294SMark Johnston 	if (IN6_IS_ADDR_MULTICAST(&sin6->sin6_addr))
37052710de1SPawel Jakub Dawidek 		return (EAFNOSUPPORT);
37152710de1SPawel Jakub Dawidek 
372623dce13SRobert Watson 	TCPDEBUG0;
373623dce13SRobert Watson 	inp = sotoinpcb(so);
374623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp6_usr_bind: inp == NULL"));
3758501a69cSRobert Watson 	INP_WLOCK(inp);
3764a91aa8fSMichael Tuexen 	vflagsav = inp->inp_vflag;
377ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
378623dce13SRobert Watson 		error = EINVAL;
379623dce13SRobert Watson 		goto out;
380623dce13SRobert Watson 	}
381623dce13SRobert Watson 	tp = intotcpcb(inp);
382623dce13SRobert Watson 	TCPDEBUG1();
383fa046d87SRobert Watson 	INP_HASH_WLOCK(&V_tcbinfo);
384fb59c426SYoshinobu Inoue 	inp->inp_vflag &= ~INP_IPV4;
385fb59c426SYoshinobu Inoue 	inp->inp_vflag |= INP_IPV6;
386b287c6c7SBjoern A. Zeeb #ifdef INET
38766ef17c4SHajimu UMEMOTO 	if ((inp->inp_flags & IN6P_IPV6_V6ONLY) == 0) {
3880ecd976eSBjoern A. Zeeb 		if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr))
389fb59c426SYoshinobu Inoue 			inp->inp_vflag |= INP_IPV4;
3900ecd976eSBjoern A. Zeeb 		else if (IN6_IS_ADDR_V4MAPPED(&sin6->sin6_addr)) {
391fb59c426SYoshinobu Inoue 			struct sockaddr_in sin;
392fb59c426SYoshinobu Inoue 
3930ecd976eSBjoern A. Zeeb 			in6_sin6_2_sin(&sin, sin6);
394888973f5SMichael Tuexen 			if (IN_MULTICAST(ntohl(sin.sin_addr.s_addr))) {
395888973f5SMichael Tuexen 				error = EAFNOSUPPORT;
396888973f5SMichael Tuexen 				INP_HASH_WUNLOCK(&V_tcbinfo);
397888973f5SMichael Tuexen 				goto out;
398888973f5SMichael Tuexen 			}
399fb59c426SYoshinobu Inoue 			inp->inp_vflag |= INP_IPV4;
400fb59c426SYoshinobu Inoue 			inp->inp_vflag &= ~INP_IPV6;
401b0330ed9SPawel Jakub Dawidek 			error = in_pcbbind(inp, (struct sockaddr *)&sin,
402b0330ed9SPawel Jakub Dawidek 			    td->td_ucred);
403fa046d87SRobert Watson 			INP_HASH_WUNLOCK(&V_tcbinfo);
404fb59c426SYoshinobu Inoue 			goto out;
405fb59c426SYoshinobu Inoue 		}
406fb59c426SYoshinobu Inoue 	}
407b287c6c7SBjoern A. Zeeb #endif
408b0330ed9SPawel Jakub Dawidek 	error = in6_pcbbind(inp, nam, td->td_ucred);
409fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
410623dce13SRobert Watson out:
4114a91aa8fSMichael Tuexen 	if (error != 0)
4124a91aa8fSMichael Tuexen 		inp->inp_vflag = vflagsav;
413623dce13SRobert Watson 	TCPDEBUG2(PRU_BIND);
4145d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_BIND);
4158501a69cSRobert Watson 	INP_WUNLOCK(inp);
416623dce13SRobert Watson 	return (error);
417fb59c426SYoshinobu Inoue }
418fb59c426SYoshinobu Inoue #endif /* INET6 */
419fb59c426SYoshinobu Inoue 
420b287c6c7SBjoern A. Zeeb #ifdef INET
4212c37256eSGarrett Wollman /*
4222c37256eSGarrett Wollman  * Prepare to accept connections.
4232c37256eSGarrett Wollman  */
4242c37256eSGarrett Wollman static int
425d374e81eSRobert Watson tcp_usr_listen(struct socket *so, int backlog, struct thread *td)
4262c37256eSGarrett Wollman {
4272c37256eSGarrett Wollman 	int error = 0;
428f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
429623dce13SRobert Watson 	struct tcpcb *tp = NULL;
4302c37256eSGarrett Wollman 
431623dce13SRobert Watson 	TCPDEBUG0;
432623dce13SRobert Watson 	inp = sotoinpcb(so);
433623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_listen: inp == NULL"));
4348501a69cSRobert Watson 	INP_WLOCK(inp);
435ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
436623dce13SRobert Watson 		error = EINVAL;
437623dce13SRobert Watson 		goto out;
438623dce13SRobert Watson 	}
439623dce13SRobert Watson 	tp = intotcpcb(inp);
440623dce13SRobert Watson 	TCPDEBUG1();
4410daccb9cSRobert Watson 	SOCK_LOCK(so);
4420daccb9cSRobert Watson 	error = solisten_proto_check(so);
443bd4a39ccSMark Johnston 	if (error != 0) {
444bd4a39ccSMark Johnston 		SOCK_UNLOCK(so);
445bd4a39ccSMark Johnston 		goto out;
446bd4a39ccSMark Johnston 	}
447bd4a39ccSMark Johnston 	if (inp->inp_lport == 0) {
448fa046d87SRobert Watson 		INP_HASH_WLOCK(&V_tcbinfo);
449bd4a39ccSMark Johnston 		error = in_pcbbind(inp, NULL, td->td_ucred);
450fa046d87SRobert Watson 		INP_HASH_WUNLOCK(&V_tcbinfo);
451bd4a39ccSMark Johnston 	}
4520daccb9cSRobert Watson 	if (error == 0) {
45357f60867SMark Johnston 		tcp_state_change(tp, TCPS_LISTEN);
454d374e81eSRobert Watson 		solisten_proto(so, backlog);
45509fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
45637cc0ecbSNavdeep Parhar 		if ((so->so_options & SO_NO_OFFLOAD) == 0)
45709fe6320SNavdeep Parhar 			tcp_offload_listen_start(tp);
45809fe6320SNavdeep Parhar #endif
459bd4a39ccSMark Johnston 	} else {
460bd4a39ccSMark Johnston 		solisten_proto_abort(so);
4610daccb9cSRobert Watson 	}
4620daccb9cSRobert Watson 	SOCK_UNLOCK(so);
463623dce13SRobert Watson 
46468bd7ed1SJonathan T. Looney 	if (IS_FASTOPEN(tp->t_flags))
465281a0fd4SPatrick Kelsey 		tp->t_tfo_pending = tcp_fastopen_alloc_counter();
46618a75309SPatrick Kelsey 
467623dce13SRobert Watson out:
468623dce13SRobert Watson 	TCPDEBUG2(PRU_LISTEN);
4695d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_LISTEN);
4708501a69cSRobert Watson 	INP_WUNLOCK(inp);
471623dce13SRobert Watson 	return (error);
4722c37256eSGarrett Wollman }
473b287c6c7SBjoern A. Zeeb #endif /* INET */
4742c37256eSGarrett Wollman 
475fb59c426SYoshinobu Inoue #ifdef INET6
476fb59c426SYoshinobu Inoue static int
477d374e81eSRobert Watson tcp6_usr_listen(struct socket *so, int backlog, struct thread *td)
478fb59c426SYoshinobu Inoue {
479fb59c426SYoshinobu Inoue 	int error = 0;
480f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
481623dce13SRobert Watson 	struct tcpcb *tp = NULL;
4824a91aa8fSMichael Tuexen 	u_char vflagsav;
483fb59c426SYoshinobu Inoue 
484623dce13SRobert Watson 	TCPDEBUG0;
485623dce13SRobert Watson 	inp = sotoinpcb(so);
486623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp6_usr_listen: inp == NULL"));
4878501a69cSRobert Watson 	INP_WLOCK(inp);
488ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
489623dce13SRobert Watson 		error = EINVAL;
490623dce13SRobert Watson 		goto out;
491623dce13SRobert Watson 	}
4924a91aa8fSMichael Tuexen 	vflagsav = inp->inp_vflag;
493623dce13SRobert Watson 	tp = intotcpcb(inp);
494623dce13SRobert Watson 	TCPDEBUG1();
4950daccb9cSRobert Watson 	SOCK_LOCK(so);
4960daccb9cSRobert Watson 	error = solisten_proto_check(so);
497bd4a39ccSMark Johnston 	if (error != 0) {
498bd4a39ccSMark Johnston 		SOCK_UNLOCK(so);
499bd4a39ccSMark Johnston 		goto out;
500bd4a39ccSMark Johnston 	}
501fa046d87SRobert Watson 	INP_HASH_WLOCK(&V_tcbinfo);
502bd4a39ccSMark Johnston 	if (inp->inp_lport == 0) {
503fb59c426SYoshinobu Inoue 		inp->inp_vflag &= ~INP_IPV4;
50466ef17c4SHajimu UMEMOTO 		if ((inp->inp_flags & IN6P_IPV6_V6ONLY) == 0)
505fb59c426SYoshinobu Inoue 			inp->inp_vflag |= INP_IPV4;
506bd4a39ccSMark Johnston 		error = in6_pcbbind(inp, NULL, td->td_ucred);
507fb59c426SYoshinobu Inoue 	}
508fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
5090daccb9cSRobert Watson 	if (error == 0) {
51057f60867SMark Johnston 		tcp_state_change(tp, TCPS_LISTEN);
511d374e81eSRobert Watson 		solisten_proto(so, backlog);
51209fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
51337cc0ecbSNavdeep Parhar 		if ((so->so_options & SO_NO_OFFLOAD) == 0)
51409fe6320SNavdeep Parhar 			tcp_offload_listen_start(tp);
51509fe6320SNavdeep Parhar #endif
516bd4a39ccSMark Johnston 	} else {
517bd4a39ccSMark Johnston 		solisten_proto_abort(so);
5180daccb9cSRobert Watson 	}
5190daccb9cSRobert Watson 	SOCK_UNLOCK(so);
520623dce13SRobert Watson 
52168bd7ed1SJonathan T. Looney 	if (IS_FASTOPEN(tp->t_flags))
522281a0fd4SPatrick Kelsey 		tp->t_tfo_pending = tcp_fastopen_alloc_counter();
52318a75309SPatrick Kelsey 
5244a91aa8fSMichael Tuexen 	if (error != 0)
5254a91aa8fSMichael Tuexen 		inp->inp_vflag = vflagsav;
5264a91aa8fSMichael Tuexen 
527623dce13SRobert Watson out:
528623dce13SRobert Watson 	TCPDEBUG2(PRU_LISTEN);
5295d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_LISTEN);
5308501a69cSRobert Watson 	INP_WUNLOCK(inp);
531623dce13SRobert Watson 	return (error);
532fb59c426SYoshinobu Inoue }
533fb59c426SYoshinobu Inoue #endif /* INET6 */
534fb59c426SYoshinobu Inoue 
535b287c6c7SBjoern A. Zeeb #ifdef INET
5362c37256eSGarrett Wollman /*
5372c37256eSGarrett Wollman  * Initiate connection to peer.
5382c37256eSGarrett Wollman  * Create a template for use in transmissions on this connection.
5392c37256eSGarrett Wollman  * Enter SYN_SENT state, and mark socket as connecting.
5402c37256eSGarrett Wollman  * Start keep-alive timer, and seed output sequence space.
5412c37256eSGarrett Wollman  * Send initial segment on connection.
5422c37256eSGarrett Wollman  */
5432c37256eSGarrett Wollman static int
544b40ce416SJulian Elischer tcp_usr_connect(struct socket *so, struct sockaddr *nam, struct thread *td)
5452c37256eSGarrett Wollman {
546109eb549SGleb Smirnoff 	struct epoch_tracker et;
5472c37256eSGarrett Wollman 	int error = 0;
548f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
549623dce13SRobert Watson 	struct tcpcb *tp = NULL;
5502c37256eSGarrett Wollman 	struct sockaddr_in *sinp;
5512c37256eSGarrett Wollman 
55257bf258eSGarrett Wollman 	sinp = (struct sockaddr_in *)nam;
553f161d294SMark Johnston 	if (nam->sa_family != AF_INET)
554f161d294SMark Johnston 		return (EAFNOSUPPORT);
555e29ef13fSDon Lewis 	if (nam->sa_len != sizeof (*sinp))
556e29ef13fSDon Lewis 		return (EINVAL);
557f161d294SMark Johnston 
55852710de1SPawel Jakub Dawidek 	/*
55952710de1SPawel Jakub Dawidek 	 * Must disallow TCP ``connections'' to multicast addresses.
56052710de1SPawel Jakub Dawidek 	 */
561f161d294SMark Johnston 	if (IN_MULTICAST(ntohl(sinp->sin_addr.s_addr)))
56252710de1SPawel Jakub Dawidek 		return (EAFNOSUPPORT);
563f161d294SMark Johnston 	if (ntohl(sinp->sin_addr.s_addr) == INADDR_BROADCAST)
564f903a308SMichael Tuexen 		return (EACCES);
565b89e82ddSJamie Gritton 	if ((error = prison_remote_ip4(td->td_ucred, &sinp->sin_addr)) != 0)
566b89e82ddSJamie Gritton 		return (error);
56775c13541SPoul-Henning Kamp 
568623dce13SRobert Watson 	TCPDEBUG0;
569623dce13SRobert Watson 	inp = sotoinpcb(so);
570623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_connect: inp == NULL"));
5718501a69cSRobert Watson 	INP_WLOCK(inp);
572eb96dc33SJulien Charbon 	if (inp->inp_flags & INP_TIMEWAIT) {
573eb96dc33SJulien Charbon 		error = EADDRINUSE;
574eb96dc33SJulien Charbon 		goto out;
575eb96dc33SJulien Charbon 	}
576eb96dc33SJulien Charbon 	if (inp->inp_flags & INP_DROPPED) {
577eb96dc33SJulien Charbon 		error = ECONNREFUSED;
578623dce13SRobert Watson 		goto out;
579623dce13SRobert Watson 	}
580bd4a39ccSMark Johnston 	if (SOLISTENING(so)) {
581bd4a39ccSMark Johnston 		error = EOPNOTSUPP;
582bd4a39ccSMark Johnston 		goto out;
583bd4a39ccSMark Johnston 	}
584623dce13SRobert Watson 	tp = intotcpcb(inp);
585623dce13SRobert Watson 	TCPDEBUG1();
586c1604fe4SGleb Smirnoff 	NET_EPOCH_ENTER(et);
587b40ce416SJulian Elischer 	if ((error = tcp_connect(tp, nam, td)) != 0)
588c1604fe4SGleb Smirnoff 		goto out_in_epoch;
58909fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
59009fe6320SNavdeep Parhar 	if (registered_toedevs > 0 &&
59137cc0ecbSNavdeep Parhar 	    (so->so_options & SO_NO_OFFLOAD) == 0 &&
59209fe6320SNavdeep Parhar 	    (error = tcp_offload_connect(so, nam)) == 0)
593c1604fe4SGleb Smirnoff 		goto out_in_epoch;
59409fe6320SNavdeep Parhar #endif
59509fe6320SNavdeep Parhar 	tcp_timer_activate(tp, TT_KEEP, TP_KEEPINIT(tp));
59640fa3e40SGleb Smirnoff 	error = tcp_output(tp);
597f64dc2abSGleb Smirnoff 	KASSERT(error >= 0, ("TCP stack %s requested tcp_drop(%p) at connect()",
598f64dc2abSGleb Smirnoff 	    tp->t_fb->tfb_tcp_block_name, tp));
599c1604fe4SGleb Smirnoff out_in_epoch:
600109eb549SGleb Smirnoff 	NET_EPOCH_EXIT(et);
601623dce13SRobert Watson out:
602623dce13SRobert Watson 	TCPDEBUG2(PRU_CONNECT);
603e79cb051SGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_CONNECT);
6048501a69cSRobert Watson 	INP_WUNLOCK(inp);
605623dce13SRobert Watson 	return (error);
6062c37256eSGarrett Wollman }
607b287c6c7SBjoern A. Zeeb #endif /* INET */
6082c37256eSGarrett Wollman 
609fb59c426SYoshinobu Inoue #ifdef INET6
610fb59c426SYoshinobu Inoue static int
611b40ce416SJulian Elischer tcp6_usr_connect(struct socket *so, struct sockaddr *nam, struct thread *td)
612fb59c426SYoshinobu Inoue {
613109eb549SGleb Smirnoff 	struct epoch_tracker et;
614fb59c426SYoshinobu Inoue 	int error = 0;
615f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
616623dce13SRobert Watson 	struct tcpcb *tp = NULL;
6170ecd976eSBjoern A. Zeeb 	struct sockaddr_in6 *sin6;
6184a91aa8fSMichael Tuexen 	u_int8_t incflagsav;
6194a91aa8fSMichael Tuexen 	u_char vflagsav;
620623dce13SRobert Watson 
621623dce13SRobert Watson 	TCPDEBUG0;
622fb59c426SYoshinobu Inoue 
6230ecd976eSBjoern A. Zeeb 	sin6 = (struct sockaddr_in6 *)nam;
624f161d294SMark Johnston 	if (nam->sa_family != AF_INET6)
625f161d294SMark Johnston 		return (EAFNOSUPPORT);
6260ecd976eSBjoern A. Zeeb 	if (nam->sa_len != sizeof (*sin6))
627e29ef13fSDon Lewis 		return (EINVAL);
628f161d294SMark Johnston 
62952710de1SPawel Jakub Dawidek 	/*
63052710de1SPawel Jakub Dawidek 	 * Must disallow TCP ``connections'' to multicast addresses.
63152710de1SPawel Jakub Dawidek 	 */
632f161d294SMark Johnston 	if (IN6_IS_ADDR_MULTICAST(&sin6->sin6_addr))
63352710de1SPawel Jakub Dawidek 		return (EAFNOSUPPORT);
634fb59c426SYoshinobu Inoue 
635623dce13SRobert Watson 	inp = sotoinpcb(so);
636623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp6_usr_connect: inp == NULL"));
6378501a69cSRobert Watson 	INP_WLOCK(inp);
6384a91aa8fSMichael Tuexen 	vflagsav = inp->inp_vflag;
6394a91aa8fSMichael Tuexen 	incflagsav = inp->inp_inc.inc_flags;
640eb96dc33SJulien Charbon 	if (inp->inp_flags & INP_TIMEWAIT) {
641eb96dc33SJulien Charbon 		error = EADDRINUSE;
642eb96dc33SJulien Charbon 		goto out;
643eb96dc33SJulien Charbon 	}
644eb96dc33SJulien Charbon 	if (inp->inp_flags & INP_DROPPED) {
645eb96dc33SJulien Charbon 		error = ECONNREFUSED;
646623dce13SRobert Watson 		goto out;
647623dce13SRobert Watson 	}
648bd4a39ccSMark Johnston 	if (SOLISTENING(so)) {
649bd4a39ccSMark Johnston 		error = EINVAL;
650bd4a39ccSMark Johnston 		goto out;
651bd4a39ccSMark Johnston 	}
652623dce13SRobert Watson 	tp = intotcpcb(inp);
653623dce13SRobert Watson 	TCPDEBUG1();
654b287c6c7SBjoern A. Zeeb #ifdef INET
655fa046d87SRobert Watson 	/*
656fa046d87SRobert Watson 	 * XXXRW: Some confusion: V4/V6 flags relate to binding, and
657fa046d87SRobert Watson 	 * therefore probably require the hash lock, which isn't held here.
658fa046d87SRobert Watson 	 * Is this a significant problem?
659fa046d87SRobert Watson 	 */
6600ecd976eSBjoern A. Zeeb 	if (IN6_IS_ADDR_V4MAPPED(&sin6->sin6_addr)) {
661fb59c426SYoshinobu Inoue 		struct sockaddr_in sin;
662fb59c426SYoshinobu Inoue 
663d46a5312SMaxim Konovalov 		if ((inp->inp_flags & IN6P_IPV6_V6ONLY) != 0) {
664d46a5312SMaxim Konovalov 			error = EINVAL;
665d46a5312SMaxim Konovalov 			goto out;
666d46a5312SMaxim Konovalov 		}
6675dba6adaSMichael Tuexen 		if ((inp->inp_vflag & INP_IPV4) == 0) {
6685dba6adaSMichael Tuexen 			error = EAFNOSUPPORT;
6695dba6adaSMichael Tuexen 			goto out;
6705dba6adaSMichael Tuexen 		}
67133841545SHajimu UMEMOTO 
6720ecd976eSBjoern A. Zeeb 		in6_sin6_2_sin(&sin, sin6);
673888973f5SMichael Tuexen 		if (IN_MULTICAST(ntohl(sin.sin_addr.s_addr))) {
674888973f5SMichael Tuexen 			error = EAFNOSUPPORT;
675888973f5SMichael Tuexen 			goto out;
676888973f5SMichael Tuexen 		}
677f903a308SMichael Tuexen 		if (ntohl(sin.sin_addr.s_addr) == INADDR_BROADCAST) {
678f903a308SMichael Tuexen 			error = EACCES;
6792cf21ae5SRandall Stewart 			goto out;
6802cf21ae5SRandall Stewart 		}
681b89e82ddSJamie Gritton 		if ((error = prison_remote_ip4(td->td_ucred,
682b89e82ddSJamie Gritton 		    &sin.sin_addr)) != 0)
683413628a7SBjoern A. Zeeb 			goto out;
6844a91aa8fSMichael Tuexen 		inp->inp_vflag |= INP_IPV4;
6854a91aa8fSMichael Tuexen 		inp->inp_vflag &= ~INP_IPV6;
686c1604fe4SGleb Smirnoff 		NET_EPOCH_ENTER(et);
687b40ce416SJulian Elischer 		if ((error = tcp_connect(tp, (struct sockaddr *)&sin, td)) != 0)
688c1604fe4SGleb Smirnoff 			goto out_in_epoch;
68909fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
69009fe6320SNavdeep Parhar 		if (registered_toedevs > 0 &&
691adfaf8f6SNavdeep Parhar 		    (so->so_options & SO_NO_OFFLOAD) == 0 &&
69209fe6320SNavdeep Parhar 		    (error = tcp_offload_connect(so, nam)) == 0)
693c1604fe4SGleb Smirnoff 			goto out_in_epoch;
69409fe6320SNavdeep Parhar #endif
69540fa3e40SGleb Smirnoff 		error = tcp_output(tp);
696c1604fe4SGleb Smirnoff 		goto out_in_epoch;
6975dba6adaSMichael Tuexen 	} else {
6985dba6adaSMichael Tuexen 		if ((inp->inp_vflag & INP_IPV6) == 0) {
6995dba6adaSMichael Tuexen 			error = EAFNOSUPPORT;
7005dba6adaSMichael Tuexen 			goto out;
7015dba6adaSMichael Tuexen 		}
702fb59c426SYoshinobu Inoue 	}
703b287c6c7SBjoern A. Zeeb #endif
7044a91aa8fSMichael Tuexen 	if ((error = prison_remote_ip6(td->td_ucred, &sin6->sin6_addr)) != 0)
7054a91aa8fSMichael Tuexen 		goto out;
706fb59c426SYoshinobu Inoue 	inp->inp_vflag &= ~INP_IPV4;
707fb59c426SYoshinobu Inoue 	inp->inp_vflag |= INP_IPV6;
708dcdb4371SBjoern A. Zeeb 	inp->inp_inc.inc_flags |= INC_ISIPV6;
709b40ce416SJulian Elischer 	if ((error = tcp6_connect(tp, nam, td)) != 0)
710fb59c426SYoshinobu Inoue 		goto out;
71109fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
71209fe6320SNavdeep Parhar 	if (registered_toedevs > 0 &&
713adfaf8f6SNavdeep Parhar 	    (so->so_options & SO_NO_OFFLOAD) == 0 &&
71409fe6320SNavdeep Parhar 	    (error = tcp_offload_connect(so, nam)) == 0)
71509fe6320SNavdeep Parhar 		goto out;
71609fe6320SNavdeep Parhar #endif
71709fe6320SNavdeep Parhar 	tcp_timer_activate(tp, TT_KEEP, TP_KEEPINIT(tp));
718109eb549SGleb Smirnoff 	NET_EPOCH_ENTER(et);
71940fa3e40SGleb Smirnoff 	error = tcp_output(tp);
7207754e281SBjoern A. Zeeb #ifdef INET
721c1604fe4SGleb Smirnoff out_in_epoch:
7227754e281SBjoern A. Zeeb #endif
723109eb549SGleb Smirnoff 	NET_EPOCH_EXIT(et);
724623dce13SRobert Watson out:
725f64dc2abSGleb Smirnoff 	KASSERT(error >= 0, ("TCP stack %s requested tcp_drop(%p) at connect()",
726f64dc2abSGleb Smirnoff 	    tp->t_fb->tfb_tcp_block_name, tp));
7274a91aa8fSMichael Tuexen 	/*
7284a91aa8fSMichael Tuexen 	 * If the implicit bind in the connect call fails, restore
7294a91aa8fSMichael Tuexen 	 * the flags we modified.
7304a91aa8fSMichael Tuexen 	 */
7314a91aa8fSMichael Tuexen 	if (error != 0 && inp->inp_lport == 0) {
7324a91aa8fSMichael Tuexen 		inp->inp_vflag = vflagsav;
7334a91aa8fSMichael Tuexen 		inp->inp_inc.inc_flags = incflagsav;
7344a91aa8fSMichael Tuexen 	}
7354a91aa8fSMichael Tuexen 
736623dce13SRobert Watson 	TCPDEBUG2(PRU_CONNECT);
7375d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_CONNECT);
7388501a69cSRobert Watson 	INP_WUNLOCK(inp);
739623dce13SRobert Watson 	return (error);
740fb59c426SYoshinobu Inoue }
741fb59c426SYoshinobu Inoue #endif /* INET6 */
742fb59c426SYoshinobu Inoue 
7432c37256eSGarrett Wollman /*
7442c37256eSGarrett Wollman  * Initiate disconnect from peer.
7452c37256eSGarrett Wollman  * If connection never passed embryonic stage, just drop;
7462c37256eSGarrett Wollman  * else if don't need to let data drain, then can just drop anyways,
7472c37256eSGarrett Wollman  * else have to begin TCP shutdown process: mark socket disconnecting,
7482c37256eSGarrett Wollman  * drain unread data, state switch to reflect user close, and
7492c37256eSGarrett Wollman  * send segment (e.g. FIN) to peer.  Socket will be really disconnected
7502c37256eSGarrett Wollman  * when peer sends FIN and acks ours.
7512c37256eSGarrett Wollman  *
7522c37256eSGarrett Wollman  * SHOULD IMPLEMENT LATER PRU_CONNECT VIA REALLOC TCPCB.
7532c37256eSGarrett Wollman  */
7542c37256eSGarrett Wollman static int
7552c37256eSGarrett Wollman tcp_usr_disconnect(struct socket *so)
7562c37256eSGarrett Wollman {
757f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
758623dce13SRobert Watson 	struct tcpcb *tp = NULL;
7596573d758SMatt Macy 	struct epoch_tracker et;
760623dce13SRobert Watson 	int error = 0;
7612c37256eSGarrett Wollman 
762623dce13SRobert Watson 	TCPDEBUG0;
76397a95ee1SGleb Smirnoff 	NET_EPOCH_ENTER(et);
764623dce13SRobert Watson 	inp = sotoinpcb(so);
765623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_disconnect: inp == NULL"));
7668501a69cSRobert Watson 	INP_WLOCK(inp);
767489dcc92SJulien Charbon 	if (inp->inp_flags & INP_TIMEWAIT)
768489dcc92SJulien Charbon 		goto out;
769489dcc92SJulien Charbon 	if (inp->inp_flags & INP_DROPPED) {
77021367f63SSam Leffler 		error = ECONNRESET;
771623dce13SRobert Watson 		goto out;
772623dce13SRobert Watson 	}
773623dce13SRobert Watson 	tp = intotcpcb(inp);
774623dce13SRobert Watson 	TCPDEBUG1();
775623dce13SRobert Watson 	tcp_disconnect(tp);
776623dce13SRobert Watson out:
777623dce13SRobert Watson 	TCPDEBUG2(PRU_DISCONNECT);
7785d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_DISCONNECT);
7798501a69cSRobert Watson 	INP_WUNLOCK(inp);
78097a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
781623dce13SRobert Watson 	return (error);
7822c37256eSGarrett Wollman }
7832c37256eSGarrett Wollman 
784b287c6c7SBjoern A. Zeeb #ifdef INET
7852c37256eSGarrett Wollman /*
7868296cddfSRobert Watson  * Accept a connection.  Essentially all the work is done at higher levels;
7878296cddfSRobert Watson  * just return the address of the peer, storing through addr.
7882c37256eSGarrett Wollman  */
7892c37256eSGarrett Wollman static int
79057bf258eSGarrett Wollman tcp_usr_accept(struct socket *so, struct sockaddr **nam)
7912c37256eSGarrett Wollman {
7922c37256eSGarrett Wollman 	int error = 0;
793f76fcf6dSJeffrey Hsu 	struct inpcb *inp = NULL;
7941db24ffbSJonathan Lemon 	struct tcpcb *tp = NULL;
79526ef6ac4SDon Lewis 	struct in_addr addr;
79626ef6ac4SDon Lewis 	in_port_t port = 0;
7971db24ffbSJonathan Lemon 	TCPDEBUG0;
7982c37256eSGarrett Wollman 
7993d2d3ef4SRobert Watson 	if (so->so_state & SS_ISDISCONNECTED)
8003d2d3ef4SRobert Watson 		return (ECONNABORTED);
801f76fcf6dSJeffrey Hsu 
802f76fcf6dSJeffrey Hsu 	inp = sotoinpcb(so);
803623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_accept: inp == NULL"));
8048501a69cSRobert Watson 	INP_WLOCK(inp);
805ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
8063d2d3ef4SRobert Watson 		error = ECONNABORTED;
807623dce13SRobert Watson 		goto out;
808623dce13SRobert Watson 	}
8091db24ffbSJonathan Lemon 	tp = intotcpcb(inp);
8101db24ffbSJonathan Lemon 	TCPDEBUG1();
811f76fcf6dSJeffrey Hsu 
812f76fcf6dSJeffrey Hsu 	/*
81354d642bbSRobert Watson 	 * We inline in_getpeeraddr and COMMON_END here, so that we can
81426ef6ac4SDon Lewis 	 * copy the data of interest and defer the malloc until after we
81526ef6ac4SDon Lewis 	 * release the lock.
816f76fcf6dSJeffrey Hsu 	 */
81726ef6ac4SDon Lewis 	port = inp->inp_fport;
81826ef6ac4SDon Lewis 	addr = inp->inp_faddr;
819f76fcf6dSJeffrey Hsu 
820623dce13SRobert Watson out:
821623dce13SRobert Watson 	TCPDEBUG2(PRU_ACCEPT);
8225d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_ACCEPT);
8238501a69cSRobert Watson 	INP_WUNLOCK(inp);
82426ef6ac4SDon Lewis 	if (error == 0)
82526ef6ac4SDon Lewis 		*nam = in_sockaddr(port, &addr);
82626ef6ac4SDon Lewis 	return error;
8272c37256eSGarrett Wollman }
828b287c6c7SBjoern A. Zeeb #endif /* INET */
8292c37256eSGarrett Wollman 
830fb59c426SYoshinobu Inoue #ifdef INET6
831fb59c426SYoshinobu Inoue static int
832fb59c426SYoshinobu Inoue tcp6_usr_accept(struct socket *so, struct sockaddr **nam)
833fb59c426SYoshinobu Inoue {
834f76fcf6dSJeffrey Hsu 	struct inpcb *inp = NULL;
835fb59c426SYoshinobu Inoue 	int error = 0;
8361db24ffbSJonathan Lemon 	struct tcpcb *tp = NULL;
83726ef6ac4SDon Lewis 	struct in_addr addr;
83826ef6ac4SDon Lewis 	struct in6_addr addr6;
8396573d758SMatt Macy 	struct epoch_tracker et;
84026ef6ac4SDon Lewis 	in_port_t port = 0;
84126ef6ac4SDon Lewis 	int v4 = 0;
8421db24ffbSJonathan Lemon 	TCPDEBUG0;
843fb59c426SYoshinobu Inoue 
844b4470c16SRobert Watson 	if (so->so_state & SS_ISDISCONNECTED)
845b4470c16SRobert Watson 		return (ECONNABORTED);
846f76fcf6dSJeffrey Hsu 
847f76fcf6dSJeffrey Hsu 	inp = sotoinpcb(so);
848623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp6_usr_accept: inp == NULL"));
84997a95ee1SGleb Smirnoff 	NET_EPOCH_ENTER(et);
8508501a69cSRobert Watson 	INP_WLOCK(inp);
851ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
85221367f63SSam Leffler 		error = ECONNABORTED;
853623dce13SRobert Watson 		goto out;
854623dce13SRobert Watson 	}
8551db24ffbSJonathan Lemon 	tp = intotcpcb(inp);
8561db24ffbSJonathan Lemon 	TCPDEBUG1();
857623dce13SRobert Watson 
85826ef6ac4SDon Lewis 	/*
85926ef6ac4SDon Lewis 	 * We inline in6_mapped_peeraddr and COMMON_END here, so that we can
86026ef6ac4SDon Lewis 	 * copy the data of interest and defer the malloc until after we
86126ef6ac4SDon Lewis 	 * release the lock.
86226ef6ac4SDon Lewis 	 */
86326ef6ac4SDon Lewis 	if (inp->inp_vflag & INP_IPV4) {
86426ef6ac4SDon Lewis 		v4 = 1;
86526ef6ac4SDon Lewis 		port = inp->inp_fport;
86626ef6ac4SDon Lewis 		addr = inp->inp_faddr;
86726ef6ac4SDon Lewis 	} else {
86826ef6ac4SDon Lewis 		port = inp->inp_fport;
86926ef6ac4SDon Lewis 		addr6 = inp->in6p_faddr;
87026ef6ac4SDon Lewis 	}
87126ef6ac4SDon Lewis 
872623dce13SRobert Watson out:
873623dce13SRobert Watson 	TCPDEBUG2(PRU_ACCEPT);
8745d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_ACCEPT);
8758501a69cSRobert Watson 	INP_WUNLOCK(inp);
87697a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
87726ef6ac4SDon Lewis 	if (error == 0) {
87826ef6ac4SDon Lewis 		if (v4)
87926ef6ac4SDon Lewis 			*nam = in6_v4mapsin6_sockaddr(port, &addr);
88026ef6ac4SDon Lewis 		else
88126ef6ac4SDon Lewis 			*nam = in6_sockaddr(port, &addr6);
88226ef6ac4SDon Lewis 	}
88326ef6ac4SDon Lewis 	return error;
884fb59c426SYoshinobu Inoue }
885fb59c426SYoshinobu Inoue #endif /* INET6 */
886f76fcf6dSJeffrey Hsu 
887f76fcf6dSJeffrey Hsu /*
8882c37256eSGarrett Wollman  * Mark the connection as being incapable of further output.
8892c37256eSGarrett Wollman  */
8902c37256eSGarrett Wollman static int
8912c37256eSGarrett Wollman tcp_usr_shutdown(struct socket *so)
8922c37256eSGarrett Wollman {
8932c37256eSGarrett Wollman 	int error = 0;
894f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
895623dce13SRobert Watson 	struct tcpcb *tp = NULL;
8966573d758SMatt Macy 	struct epoch_tracker et;
8972c37256eSGarrett Wollman 
898623dce13SRobert Watson 	TCPDEBUG0;
899623dce13SRobert Watson 	inp = sotoinpcb(so);
900623dce13SRobert Watson 	KASSERT(inp != NULL, ("inp == NULL"));
9018501a69cSRobert Watson 	INP_WLOCK(inp);
902ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
903*0af4ce45SGleb Smirnoff 		INP_WUNLOCK(inp);
904*0af4ce45SGleb Smirnoff 		return (ECONNRESET);
905623dce13SRobert Watson 	}
906*0af4ce45SGleb Smirnoff 	tp = intotcpcb(inp);
907*0af4ce45SGleb Smirnoff 	NET_EPOCH_ENTER(et);
908623dce13SRobert Watson 	TCPDEBUG1();
9092c37256eSGarrett Wollman 	socantsendmore(so);
910623dce13SRobert Watson 	tcp_usrclosed(tp);
911ad71fe3cSRobert Watson 	if (!(inp->inp_flags & INP_DROPPED))
912f64dc2abSGleb Smirnoff 		error = tcp_output_nodrop(tp);
913623dce13SRobert Watson 	TCPDEBUG2(PRU_SHUTDOWN);
9145d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_SHUTDOWN);
915f64dc2abSGleb Smirnoff 	error = tcp_unlock_or_drop(tp, error);
91697a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
917623dce13SRobert Watson 
918623dce13SRobert Watson 	return (error);
9192c37256eSGarrett Wollman }
9202c37256eSGarrett Wollman 
9212c37256eSGarrett Wollman /*
9222c37256eSGarrett Wollman  * After a receive, possibly send window update to peer.
9232c37256eSGarrett Wollman  */
9242c37256eSGarrett Wollman static int
9252c37256eSGarrett Wollman tcp_usr_rcvd(struct socket *so, int flags)
9262c37256eSGarrett Wollman {
927109eb549SGleb Smirnoff 	struct epoch_tracker et;
928f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
929623dce13SRobert Watson 	struct tcpcb *tp = NULL;
930f64dc2abSGleb Smirnoff 	int outrv = 0, error = 0;
9312c37256eSGarrett Wollman 
932623dce13SRobert Watson 	TCPDEBUG0;
933623dce13SRobert Watson 	inp = sotoinpcb(so);
934623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_rcvd: inp == NULL"));
9358501a69cSRobert Watson 	INP_WLOCK(inp);
936ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
93737a7f557SGleb Smirnoff 		INP_WUNLOCK(inp);
93837a7f557SGleb Smirnoff 		return (ECONNRESET);
939623dce13SRobert Watson 	}
94037a7f557SGleb Smirnoff 	tp = intotcpcb(inp);
94137a7f557SGleb Smirnoff 	NET_EPOCH_ENTER(et);
942623dce13SRobert Watson 	TCPDEBUG1();
943281a0fd4SPatrick Kelsey 	/*
944281a0fd4SPatrick Kelsey 	 * For passively-created TFO connections, don't attempt a window
945281a0fd4SPatrick Kelsey 	 * update while still in SYN_RECEIVED as this may trigger an early
946281a0fd4SPatrick Kelsey 	 * SYN|ACK.  It is preferable to have the SYN|ACK be sent along with
947281a0fd4SPatrick Kelsey 	 * application response data, or failing that, when the DELACK timer
948281a0fd4SPatrick Kelsey 	 * expires.
949281a0fd4SPatrick Kelsey 	 */
95068bd7ed1SJonathan T. Looney 	if (IS_FASTOPEN(tp->t_flags) &&
951281a0fd4SPatrick Kelsey 	    (tp->t_state == TCPS_SYN_RECEIVED))
952281a0fd4SPatrick Kelsey 		goto out;
95309fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
95409fe6320SNavdeep Parhar 	if (tp->t_flags & TF_TOE)
95509fe6320SNavdeep Parhar 		tcp_offload_rcvd(tp);
956460cf046SNavdeep Parhar 	else
95709fe6320SNavdeep Parhar #endif
958f64dc2abSGleb Smirnoff 		outrv = tcp_output_nodrop(tp);
959623dce13SRobert Watson out:
960623dce13SRobert Watson 	TCPDEBUG2(PRU_RCVD);
9615d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_RCVD);
962f64dc2abSGleb Smirnoff 	(void) tcp_unlock_or_drop(tp, outrv);
963f64dc2abSGleb Smirnoff 	NET_EPOCH_EXIT(et);
964623dce13SRobert Watson 	return (error);
9652c37256eSGarrett Wollman }
9662c37256eSGarrett Wollman 
9672c37256eSGarrett Wollman /*
9682c37256eSGarrett Wollman  * Do a send by putting data in output queue and updating urgent
9699c9906e9SPeter Wemm  * marker if URG set.  Possibly send more data.  Unlike the other
9709c9906e9SPeter Wemm  * pru_*() routines, the mbuf chains are our responsibility.  We
9719c9906e9SPeter Wemm  * must either enqueue them or free them.  The other pru_* routines
9729c9906e9SPeter Wemm  * generally are caller-frees.
9732c37256eSGarrett Wollman  */
9742c37256eSGarrett Wollman static int
97557bf258eSGarrett Wollman tcp_usr_send(struct socket *so, int flags, struct mbuf *m,
976b40ce416SJulian Elischer     struct sockaddr *nam, struct mbuf *control, struct thread *td)
9772c37256eSGarrett Wollman {
97897a95ee1SGleb Smirnoff 	struct epoch_tracker et;
9792c37256eSGarrett Wollman 	int error = 0;
980f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
981623dce13SRobert Watson 	struct tcpcb *tp = NULL;
982888973f5SMichael Tuexen #ifdef INET
98351e08d53SMichael Tuexen #ifdef INET6
98451e08d53SMichael Tuexen 	struct sockaddr_in sin;
98551e08d53SMichael Tuexen #endif
98651e08d53SMichael Tuexen 	struct sockaddr_in *sinp;
987888973f5SMichael Tuexen #endif
988fb59c426SYoshinobu Inoue #ifdef INET6
989fb59c426SYoshinobu Inoue 	int isipv6;
990fb59c426SYoshinobu Inoue #endif
9914a91aa8fSMichael Tuexen 	u_int8_t incflagsav;
9924a91aa8fSMichael Tuexen 	u_char vflagsav;
9934a91aa8fSMichael Tuexen 	bool restoreflags;
9949c9906e9SPeter Wemm 	TCPDEBUG0;
9952c37256eSGarrett Wollman 
996f76fcf6dSJeffrey Hsu 	/*
99797a95ee1SGleb Smirnoff 	 * We require the pcbinfo "read lock" if we will close the socket
99897a95ee1SGleb Smirnoff 	 * as part of this call.
999f76fcf6dSJeffrey Hsu 	 */
100097a95ee1SGleb Smirnoff 	NET_EPOCH_ENTER(et);
1001f76fcf6dSJeffrey Hsu 	inp = sotoinpcb(so);
1002623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_send: inp == NULL"));
10038501a69cSRobert Watson 	INP_WLOCK(inp);
1004f64dc2abSGleb Smirnoff 	tp = intotcpcb(inp);
10054a91aa8fSMichael Tuexen 	vflagsav = inp->inp_vflag;
10064a91aa8fSMichael Tuexen 	incflagsav = inp->inp_inc.inc_flags;
10074a91aa8fSMichael Tuexen 	restoreflags = false;
1008ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
10097ff0b850SAndre Oppermann 		if (control)
10107ff0b850SAndre Oppermann 			m_freem(control);
101121367f63SSam Leffler 		error = ECONNRESET;
10129c9906e9SPeter Wemm 		goto out;
10139c9906e9SPeter Wemm 	}
1014d8acd268SMark Johnston 	if (control != NULL) {
1015d8acd268SMark Johnston 		/* TCP doesn't do control messages (rights, creds, etc) */
1016d8acd268SMark Johnston 		if (control->m_len) {
1017d8acd268SMark Johnston 			m_freem(control);
1018d8acd268SMark Johnston 			error = EINVAL;
1019d8acd268SMark Johnston 			goto out;
1020d8acd268SMark Johnston 		}
1021d8acd268SMark Johnston 		m_freem(control);	/* empty control, just free it */
1022d8acd268SMark Johnston 		control = NULL;
1023d8acd268SMark Johnston 	}
10247d2608a5SMark Johnston 	if ((flags & PRUS_OOB) != 0 &&
10257d2608a5SMark Johnston 	    (error = tcp_pru_options_support(tp, PRUS_OOB)) != 0)
1026d3b6c96bSRandall Stewart 		goto out;
10277d2608a5SMark Johnston 
10289c9906e9SPeter Wemm 	TCPDEBUG1();
1029888973f5SMichael Tuexen 	if (nam != NULL && tp->t_state < TCPS_SYN_SENT) {
1030bd4a39ccSMark Johnston 		if (tp->t_state == TCPS_LISTEN) {
1031bd4a39ccSMark Johnston 			error = EINVAL;
1032bd4a39ccSMark Johnston 			goto out;
1033bd4a39ccSMark Johnston 		}
1034888973f5SMichael Tuexen 		switch (nam->sa_family) {
1035888973f5SMichael Tuexen #ifdef INET
1036888973f5SMichael Tuexen 		case AF_INET:
1037888973f5SMichael Tuexen 			sinp = (struct sockaddr_in *)nam;
1038888973f5SMichael Tuexen 			if (sinp->sin_len != sizeof(struct sockaddr_in)) {
1039888973f5SMichael Tuexen 				error = EINVAL;
1040888973f5SMichael Tuexen 				goto out;
1041888973f5SMichael Tuexen 			}
1042888973f5SMichael Tuexen 			if ((inp->inp_vflag & INP_IPV6) != 0) {
1043888973f5SMichael Tuexen 				error = EAFNOSUPPORT;
1044888973f5SMichael Tuexen 				goto out;
1045888973f5SMichael Tuexen 			}
1046888973f5SMichael Tuexen 			if (IN_MULTICAST(ntohl(sinp->sin_addr.s_addr))) {
1047888973f5SMichael Tuexen 				error = EAFNOSUPPORT;
1048888973f5SMichael Tuexen 				goto out;
1049888973f5SMichael Tuexen 			}
1050f903a308SMichael Tuexen 			if (ntohl(sinp->sin_addr.s_addr) == INADDR_BROADCAST) {
1051f903a308SMichael Tuexen 				error = EACCES;
10522cf21ae5SRandall Stewart 				goto out;
10532cf21ae5SRandall Stewart 			}
1054888973f5SMichael Tuexen 			if ((error = prison_remote_ip4(td->td_ucred,
10557d2608a5SMark Johnston 			    &sinp->sin_addr)))
1056888973f5SMichael Tuexen 				goto out;
1057888973f5SMichael Tuexen #ifdef INET6
1058888973f5SMichael Tuexen 			isipv6 = 0;
1059888973f5SMichael Tuexen #endif
1060888973f5SMichael Tuexen 			break;
1061888973f5SMichael Tuexen #endif /* INET */
1062888973f5SMichael Tuexen #ifdef INET6
1063888973f5SMichael Tuexen 		case AF_INET6:
1064888973f5SMichael Tuexen 		{
10650ecd976eSBjoern A. Zeeb 			struct sockaddr_in6 *sin6;
1066888973f5SMichael Tuexen 
10670ecd976eSBjoern A. Zeeb 			sin6 = (struct sockaddr_in6 *)nam;
10680ecd976eSBjoern A. Zeeb 			if (sin6->sin6_len != sizeof(*sin6)) {
1069888973f5SMichael Tuexen 				error = EINVAL;
1070888973f5SMichael Tuexen 				goto out;
1071888973f5SMichael Tuexen 			}
1072e240ce42SMichael Tuexen 			if ((inp->inp_vflag & INP_IPV6PROTO) == 0) {
1073e240ce42SMichael Tuexen 				error = EAFNOSUPPORT;
1074e240ce42SMichael Tuexen 				goto out;
1075e240ce42SMichael Tuexen 			}
10760ecd976eSBjoern A. Zeeb 			if (IN6_IS_ADDR_MULTICAST(&sin6->sin6_addr)) {
1077888973f5SMichael Tuexen 				error = EAFNOSUPPORT;
1078888973f5SMichael Tuexen 				goto out;
1079888973f5SMichael Tuexen 			}
10800ecd976eSBjoern A. Zeeb 			if (IN6_IS_ADDR_V4MAPPED(&sin6->sin6_addr)) {
1081888973f5SMichael Tuexen #ifdef INET
1082888973f5SMichael Tuexen 				if ((inp->inp_flags & IN6P_IPV6_V6ONLY) != 0) {
1083888973f5SMichael Tuexen 					error = EINVAL;
1084888973f5SMichael Tuexen 					goto out;
1085888973f5SMichael Tuexen 				}
1086888973f5SMichael Tuexen 				if ((inp->inp_vflag & INP_IPV4) == 0) {
1087888973f5SMichael Tuexen 					error = EAFNOSUPPORT;
1088888973f5SMichael Tuexen 					goto out;
1089888973f5SMichael Tuexen 				}
10904a91aa8fSMichael Tuexen 				restoreflags = true;
1091888973f5SMichael Tuexen 				inp->inp_vflag &= ~INP_IPV6;
1092888973f5SMichael Tuexen 				sinp = &sin;
10930ecd976eSBjoern A. Zeeb 				in6_sin6_2_sin(sinp, sin6);
1094888973f5SMichael Tuexen 				if (IN_MULTICAST(
1095888973f5SMichael Tuexen 				    ntohl(sinp->sin_addr.s_addr))) {
1096888973f5SMichael Tuexen 					error = EAFNOSUPPORT;
1097888973f5SMichael Tuexen 					goto out;
1098888973f5SMichael Tuexen 				}
1099888973f5SMichael Tuexen 				if ((error = prison_remote_ip4(td->td_ucred,
11007d2608a5SMark Johnston 				    &sinp->sin_addr)))
1101888973f5SMichael Tuexen 					goto out;
1102888973f5SMichael Tuexen 				isipv6 = 0;
1103888973f5SMichael Tuexen #else /* !INET */
1104888973f5SMichael Tuexen 				error = EAFNOSUPPORT;
1105888973f5SMichael Tuexen 				goto out;
1106888973f5SMichael Tuexen #endif /* INET */
1107888973f5SMichael Tuexen 			} else {
1108888973f5SMichael Tuexen 				if ((inp->inp_vflag & INP_IPV6) == 0) {
1109888973f5SMichael Tuexen 					error = EAFNOSUPPORT;
1110888973f5SMichael Tuexen 					goto out;
1111888973f5SMichael Tuexen 				}
11124a91aa8fSMichael Tuexen 				restoreflags = true;
1113888973f5SMichael Tuexen 				inp->inp_vflag &= ~INP_IPV4;
1114888973f5SMichael Tuexen 				inp->inp_inc.inc_flags |= INC_ISIPV6;
1115888973f5SMichael Tuexen 				if ((error = prison_remote_ip6(td->td_ucred,
11167d2608a5SMark Johnston 				    &sin6->sin6_addr)))
1117888973f5SMichael Tuexen 					goto out;
1118888973f5SMichael Tuexen 				isipv6 = 1;
1119888973f5SMichael Tuexen 			}
1120888973f5SMichael Tuexen 			break;
1121888973f5SMichael Tuexen 		}
1122888973f5SMichael Tuexen #endif /* INET6 */
1123888973f5SMichael Tuexen 		default:
1124888973f5SMichael Tuexen 			error = EAFNOSUPPORT;
1125888973f5SMichael Tuexen 			goto out;
1126888973f5SMichael Tuexen 		}
1127888973f5SMichael Tuexen 	}
11282c37256eSGarrett Wollman 	if (!(flags & PRUS_OOB)) {
1129651e4e6aSGleb Smirnoff 		sbappendstream(&so->so_snd, m, flags);
11307d2608a5SMark Johnston 		m = NULL;
11312c37256eSGarrett Wollman 		if (nam && tp->t_state < TCPS_SYN_SENT) {
1132bd4a39ccSMark Johnston 			KASSERT(tp->t_state == TCPS_CLOSED,
1133bd4a39ccSMark Johnston 			    ("%s: tp %p is listening", __func__, tp));
1134bd4a39ccSMark Johnston 
11352c37256eSGarrett Wollman 			/*
11362c37256eSGarrett Wollman 			 * Do implied connect if not yet connected,
11372c37256eSGarrett Wollman 			 * initialize window to default value, and
11380c39d38dSGleb Smirnoff 			 * initialize maxseg using peer's cached MSS.
11392c37256eSGarrett Wollman 			 */
1140fb59c426SYoshinobu Inoue #ifdef INET6
1141fb59c426SYoshinobu Inoue 			if (isipv6)
1142b40ce416SJulian Elischer 				error = tcp6_connect(tp, nam, td);
1143fb59c426SYoshinobu Inoue #endif /* INET6 */
1144b287c6c7SBjoern A. Zeeb #if defined(INET6) && defined(INET)
1145b287c6c7SBjoern A. Zeeb 			else
1146b287c6c7SBjoern A. Zeeb #endif
1147b287c6c7SBjoern A. Zeeb #ifdef INET
1148888973f5SMichael Tuexen 				error = tcp_connect(tp,
1149888973f5SMichael Tuexen 				    (struct sockaddr *)sinp, td);
1150b287c6c7SBjoern A. Zeeb #endif
11514a91aa8fSMichael Tuexen 			/*
11524a91aa8fSMichael Tuexen 			 * The bind operation in tcp_connect succeeded. We
11534a91aa8fSMichael Tuexen 			 * no longer want to restore the flags if later
11544a91aa8fSMichael Tuexen 			 * operations fail.
11554a91aa8fSMichael Tuexen 			 */
11564a91aa8fSMichael Tuexen 			if (error == 0 || inp->inp_lport != 0)
11574a91aa8fSMichael Tuexen 				restoreflags = false;
11584a91aa8fSMichael Tuexen 
11597d2608a5SMark Johnston 			if (error) {
11607d2608a5SMark Johnston 				/* m is freed if PRUS_NOTREADY is unset. */
11617d2608a5SMark Johnston 				sbflush(&so->so_snd);
11622c37256eSGarrett Wollman 				goto out;
11637d2608a5SMark Johnston 			}
1164c560df6fSPatrick Kelsey 			if (IS_FASTOPEN(tp->t_flags))
1165c560df6fSPatrick Kelsey 				tcp_fastopen_connect(tp);
116618a75309SPatrick Kelsey 			else {
11672c37256eSGarrett Wollman 				tp->snd_wnd = TTCP_CLIENT_SND_WND;
11682c37256eSGarrett Wollman 				tcp_mss(tp, -1);
11692c37256eSGarrett Wollman 			}
1170c560df6fSPatrick Kelsey 		}
11712c37256eSGarrett Wollman 		if (flags & PRUS_EOF) {
11722c37256eSGarrett Wollman 			/*
11732c37256eSGarrett Wollman 			 * Close the send side of the connection after
11742c37256eSGarrett Wollman 			 * the data is sent.
11752c37256eSGarrett Wollman 			 */
11762c37256eSGarrett Wollman 			socantsendmore(so);
1177623dce13SRobert Watson 			tcp_usrclosed(tp);
11782c37256eSGarrett Wollman 		}
1179e854dd38SRandall Stewart 		if (TCPS_HAVEESTABLISHED(tp->t_state) &&
1180e854dd38SRandall Stewart 		    ((tp->t_flags2 & TF2_FBYTES_COMPLETE) == 0) &&
1181e854dd38SRandall Stewart 		    (tp->t_fbyte_out == 0) &&
1182e854dd38SRandall Stewart 		    (so->so_snd.sb_ccc > 0)) {
1183e854dd38SRandall Stewart 			tp->t_fbyte_out = ticks;
1184e854dd38SRandall Stewart 			if (tp->t_fbyte_out == 0)
1185e854dd38SRandall Stewart 				tp->t_fbyte_out = 1;
1186e854dd38SRandall Stewart 			if (tp->t_fbyte_out && tp->t_fbyte_in)
1187e854dd38SRandall Stewart 				tp->t_flags2 |= TF2_FBYTES_COMPLETE;
1188e854dd38SRandall Stewart 		}
11892cbcd3c1SGleb Smirnoff 		if (!(inp->inp_flags & INP_DROPPED) &&
11902cbcd3c1SGleb Smirnoff 		    !(flags & PRUS_NOTREADY)) {
1191b0acefa8SBill Fenner 			if (flags & PRUS_MORETOCOME)
1192b0acefa8SBill Fenner 				tp->t_flags |= TF_MORETOCOME;
1193f64dc2abSGleb Smirnoff 			error = tcp_output_nodrop(tp);
1194b0acefa8SBill Fenner 			if (flags & PRUS_MORETOCOME)
1195b0acefa8SBill Fenner 				tp->t_flags &= ~TF_MORETOCOME;
1196b0acefa8SBill Fenner 		}
11972c37256eSGarrett Wollman 	} else {
1198623dce13SRobert Watson 		/*
1199623dce13SRobert Watson 		 * XXXRW: PRUS_EOF not implemented with PRUS_OOB?
1200623dce13SRobert Watson 		 */
1201d2bc35abSRobert Watson 		SOCKBUF_LOCK(&so->so_snd);
12022c37256eSGarrett Wollman 		if (sbspace(&so->so_snd) < -512) {
1203d2bc35abSRobert Watson 			SOCKBUF_UNLOCK(&so->so_snd);
12042c37256eSGarrett Wollman 			error = ENOBUFS;
12052c37256eSGarrett Wollman 			goto out;
12062c37256eSGarrett Wollman 		}
12072c37256eSGarrett Wollman 		/*
12082c37256eSGarrett Wollman 		 * According to RFC961 (Assigned Protocols),
12092c37256eSGarrett Wollman 		 * the urgent pointer points to the last octet
12102c37256eSGarrett Wollman 		 * of urgent data.  We continue, however,
12112c37256eSGarrett Wollman 		 * to consider it to indicate the first octet
12122c37256eSGarrett Wollman 		 * of data past the urgent section.
12132c37256eSGarrett Wollman 		 * Otherwise, snd_up should be one lower.
12142c37256eSGarrett Wollman 		 */
1215651e4e6aSGleb Smirnoff 		sbappendstream_locked(&so->so_snd, m, flags);
1216d2bc35abSRobert Watson 		SOCKBUF_UNLOCK(&so->so_snd);
12177d2608a5SMark Johnston 		m = NULL;
1218ef53690bSGarrett Wollman 		if (nam && tp->t_state < TCPS_SYN_SENT) {
1219ef53690bSGarrett Wollman 			/*
1220ef53690bSGarrett Wollman 			 * Do implied connect if not yet connected,
1221ef53690bSGarrett Wollman 			 * initialize window to default value, and
12220c39d38dSGleb Smirnoff 			 * initialize maxseg using peer's cached MSS.
1223ef53690bSGarrett Wollman 			 */
122418a75309SPatrick Kelsey 
1225c560df6fSPatrick Kelsey 			/*
1226c560df6fSPatrick Kelsey 			 * Not going to contemplate SYN|URG
1227c560df6fSPatrick Kelsey 			 */
1228c560df6fSPatrick Kelsey 			if (IS_FASTOPEN(tp->t_flags))
1229c560df6fSPatrick Kelsey 				tp->t_flags &= ~TF_FASTOPEN;
1230fb59c426SYoshinobu Inoue #ifdef INET6
1231fb59c426SYoshinobu Inoue 			if (isipv6)
1232b40ce416SJulian Elischer 				error = tcp6_connect(tp, nam, td);
1233fb59c426SYoshinobu Inoue #endif /* INET6 */
1234b287c6c7SBjoern A. Zeeb #if defined(INET6) && defined(INET)
1235b287c6c7SBjoern A. Zeeb 			else
1236b287c6c7SBjoern A. Zeeb #endif
1237b287c6c7SBjoern A. Zeeb #ifdef INET
1238888973f5SMichael Tuexen 				error = tcp_connect(tp,
1239888973f5SMichael Tuexen 				    (struct sockaddr *)sinp, td);
1240b287c6c7SBjoern A. Zeeb #endif
12414a91aa8fSMichael Tuexen 			/*
12424a91aa8fSMichael Tuexen 			 * The bind operation in tcp_connect succeeded. We
12434a91aa8fSMichael Tuexen 			 * no longer want to restore the flags if later
12444a91aa8fSMichael Tuexen 			 * operations fail.
12454a91aa8fSMichael Tuexen 			 */
12464a91aa8fSMichael Tuexen 			if (error == 0 || inp->inp_lport != 0)
12474a91aa8fSMichael Tuexen 				restoreflags = false;
12484a91aa8fSMichael Tuexen 
12497d2608a5SMark Johnston 			if (error != 0) {
12507d2608a5SMark Johnston 				/* m is freed if PRUS_NOTREADY is unset. */
12517d2608a5SMark Johnston 				sbflush(&so->so_snd);
1252ef53690bSGarrett Wollman 				goto out;
12537d2608a5SMark Johnston 			}
1254ef53690bSGarrett Wollman 			tp->snd_wnd = TTCP_CLIENT_SND_WND;
1255ef53690bSGarrett Wollman 			tcp_mss(tp, -1);
1256623dce13SRobert Watson 		}
1257300fa232SGleb Smirnoff 		tp->snd_up = tp->snd_una + sbavail(&so->so_snd);
12587d2608a5SMark Johnston 		if ((flags & PRUS_NOTREADY) == 0) {
12592cdbfa66SPaul Saab 			tp->t_flags |= TF_FORCEDATA;
1260f64dc2abSGleb Smirnoff 			error = tcp_output_nodrop(tp);
12612cdbfa66SPaul Saab 			tp->t_flags &= ~TF_FORCEDATA;
12622c37256eSGarrett Wollman 		}
12632cbcd3c1SGleb Smirnoff 	}
12642529f56eSJonathan T. Looney 	TCP_LOG_EVENT(tp, NULL,
12652529f56eSJonathan T. Looney 	    &inp->inp_socket->so_rcv,
12662529f56eSJonathan T. Looney 	    &inp->inp_socket->so_snd,
12672529f56eSJonathan T. Looney 	    TCP_LOG_USERSEND, error,
12682529f56eSJonathan T. Looney 	    0, NULL, false);
12697d2608a5SMark Johnston 
1270d1401c90SRobert Watson out:
12714a91aa8fSMichael Tuexen 	/*
12727d2608a5SMark Johnston 	 * In case of PRUS_NOTREADY, the caller or tcp_usr_ready() is
12737d2608a5SMark Johnston 	 * responsible for freeing memory.
12747d2608a5SMark Johnston 	 */
12757d2608a5SMark Johnston 	if (m != NULL && (flags & PRUS_NOTREADY) == 0)
12767d2608a5SMark Johnston 		m_freem(m);
12777d2608a5SMark Johnston 
12787d2608a5SMark Johnston 	/*
12794a91aa8fSMichael Tuexen 	 * If the request was unsuccessful and we changed flags,
12804a91aa8fSMichael Tuexen 	 * restore the original flags.
12814a91aa8fSMichael Tuexen 	 */
12824a91aa8fSMichael Tuexen 	if (error != 0 && restoreflags) {
12834a91aa8fSMichael Tuexen 		inp->inp_vflag = vflagsav;
12844a91aa8fSMichael Tuexen 		inp->inp_inc.inc_flags = incflagsav;
12854a91aa8fSMichael Tuexen 	}
1286d1401c90SRobert Watson 	TCPDEBUG2((flags & PRUS_OOB) ? PRU_SENDOOB :
12872c37256eSGarrett Wollman 		  ((flags & PRUS_EOF) ? PRU_SEND_EOF : PRU_SEND));
12885d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, (flags & PRUS_OOB) ? PRU_SENDOOB :
12895d06879aSGeorge V. Neville-Neil 		   ((flags & PRUS_EOF) ? PRU_SEND_EOF : PRU_SEND));
1290f64dc2abSGleb Smirnoff 	error = tcp_unlock_or_drop(tp, error);
129197a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
129273fddedaSPeter Grehan 	return (error);
12932c37256eSGarrett Wollman }
12942c37256eSGarrett Wollman 
12952cbcd3c1SGleb Smirnoff static int
12962cbcd3c1SGleb Smirnoff tcp_usr_ready(struct socket *so, struct mbuf *m, int count)
12972cbcd3c1SGleb Smirnoff {
1298109eb549SGleb Smirnoff 	struct epoch_tracker et;
12992cbcd3c1SGleb Smirnoff 	struct inpcb *inp;
13002cbcd3c1SGleb Smirnoff 	struct tcpcb *tp;
13012cbcd3c1SGleb Smirnoff 	int error;
13022cbcd3c1SGleb Smirnoff 
13032cbcd3c1SGleb Smirnoff 	inp = sotoinpcb(so);
13042cbcd3c1SGleb Smirnoff 	INP_WLOCK(inp);
13052cbcd3c1SGleb Smirnoff 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
13062cbcd3c1SGleb Smirnoff 		INP_WUNLOCK(inp);
130782334850SJohn Baldwin 		mb_free_notready(m, count);
13082cbcd3c1SGleb Smirnoff 		return (ECONNRESET);
13092cbcd3c1SGleb Smirnoff 	}
13102cbcd3c1SGleb Smirnoff 	tp = intotcpcb(inp);
13112cbcd3c1SGleb Smirnoff 
13122cbcd3c1SGleb Smirnoff 	SOCKBUF_LOCK(&so->so_snd);
13132cbcd3c1SGleb Smirnoff 	error = sbready(&so->so_snd, m, count);
13142cbcd3c1SGleb Smirnoff 	SOCKBUF_UNLOCK(&so->so_snd);
1315f64dc2abSGleb Smirnoff 	if (error) {
13162cbcd3c1SGleb Smirnoff 		INP_WUNLOCK(inp);
1317f64dc2abSGleb Smirnoff 		return (error);
1318f64dc2abSGleb Smirnoff 	}
1319f64dc2abSGleb Smirnoff 	NET_EPOCH_ENTER(et);
1320f64dc2abSGleb Smirnoff 	error = tcp_output_unlock(tp);
1321f64dc2abSGleb Smirnoff 	NET_EPOCH_EXIT(et);
13222cbcd3c1SGleb Smirnoff 
13232cbcd3c1SGleb Smirnoff 	return (error);
13242cbcd3c1SGleb Smirnoff }
13252cbcd3c1SGleb Smirnoff 
13262c37256eSGarrett Wollman /*
1327a152f8a3SRobert Watson  * Abort the TCP.  Drop the connection abruptly.
13282c37256eSGarrett Wollman  */
1329ac45e92fSRobert Watson static void
13302c37256eSGarrett Wollman tcp_usr_abort(struct socket *so)
13312c37256eSGarrett Wollman {
1332f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
1333a152f8a3SRobert Watson 	struct tcpcb *tp = NULL;
13346573d758SMatt Macy 	struct epoch_tracker et;
1335623dce13SRobert Watson 	TCPDEBUG0;
1336c78cbc7bSRobert Watson 
1337ac45e92fSRobert Watson 	inp = sotoinpcb(so);
1338c78cbc7bSRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_abort: inp == NULL"));
1339c78cbc7bSRobert Watson 
134097a95ee1SGleb Smirnoff 	NET_EPOCH_ENTER(et);
13418501a69cSRobert Watson 	INP_WLOCK(inp);
1342c78cbc7bSRobert Watson 	KASSERT(inp->inp_socket != NULL,
1343c78cbc7bSRobert Watson 	    ("tcp_usr_abort: inp_socket == NULL"));
1344c78cbc7bSRobert Watson 
1345c78cbc7bSRobert Watson 	/*
1346a152f8a3SRobert Watson 	 * If we still have full TCP state, and we're not dropped, drop.
1347c78cbc7bSRobert Watson 	 */
1348ad71fe3cSRobert Watson 	if (!(inp->inp_flags & INP_TIMEWAIT) &&
1349ad71fe3cSRobert Watson 	    !(inp->inp_flags & INP_DROPPED)) {
1350c78cbc7bSRobert Watson 		tp = intotcpcb(inp);
1351a152f8a3SRobert Watson 		TCPDEBUG1();
13528fa799bdSJonathan T. Looney 		tp = tcp_drop(tp, ECONNABORTED);
13538fa799bdSJonathan T. Looney 		if (tp == NULL)
13548fa799bdSJonathan T. Looney 			goto dropped;
1355a152f8a3SRobert Watson 		TCPDEBUG2(PRU_ABORT);
13565d06879aSGeorge V. Neville-Neil 		TCP_PROBE2(debug__user, tp, PRU_ABORT);
1357c78cbc7bSRobert Watson 	}
1358ad71fe3cSRobert Watson 	if (!(inp->inp_flags & INP_DROPPED)) {
1359a152f8a3SRobert Watson 		SOCK_LOCK(so);
1360a152f8a3SRobert Watson 		so->so_state |= SS_PROTOREF;
1361a152f8a3SRobert Watson 		SOCK_UNLOCK(so);
1362ad71fe3cSRobert Watson 		inp->inp_flags |= INP_SOCKREF;
1363a152f8a3SRobert Watson 	}
13648501a69cSRobert Watson 	INP_WUNLOCK(inp);
13658fa799bdSJonathan T. Looney dropped:
136697a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
1367a152f8a3SRobert Watson }
1368a152f8a3SRobert Watson 
1369a152f8a3SRobert Watson /*
1370a152f8a3SRobert Watson  * TCP socket is closed.  Start friendly disconnect.
1371a152f8a3SRobert Watson  */
1372a152f8a3SRobert Watson static void
1373a152f8a3SRobert Watson tcp_usr_close(struct socket *so)
1374a152f8a3SRobert Watson {
1375a152f8a3SRobert Watson 	struct inpcb *inp;
1376a152f8a3SRobert Watson 	struct tcpcb *tp = NULL;
13776573d758SMatt Macy 	struct epoch_tracker et;
1378a152f8a3SRobert Watson 	TCPDEBUG0;
1379a152f8a3SRobert Watson 
1380a152f8a3SRobert Watson 	inp = sotoinpcb(so);
1381a152f8a3SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_close: inp == NULL"));
1382a152f8a3SRobert Watson 
138397a95ee1SGleb Smirnoff 	NET_EPOCH_ENTER(et);
13848501a69cSRobert Watson 	INP_WLOCK(inp);
1385a152f8a3SRobert Watson 	KASSERT(inp->inp_socket != NULL,
1386a152f8a3SRobert Watson 	    ("tcp_usr_close: inp_socket == NULL"));
1387a152f8a3SRobert Watson 
1388a152f8a3SRobert Watson 	/*
1389a152f8a3SRobert Watson 	 * If we still have full TCP state, and we're not dropped, initiate
1390a152f8a3SRobert Watson 	 * a disconnect.
1391a152f8a3SRobert Watson 	 */
1392ad71fe3cSRobert Watson 	if (!(inp->inp_flags & INP_TIMEWAIT) &&
1393ad71fe3cSRobert Watson 	    !(inp->inp_flags & INP_DROPPED)) {
1394a152f8a3SRobert Watson 		tp = intotcpcb(inp);
1395a152f8a3SRobert Watson 		TCPDEBUG1();
1396a152f8a3SRobert Watson 		tcp_disconnect(tp);
1397a152f8a3SRobert Watson 		TCPDEBUG2(PRU_CLOSE);
13985d06879aSGeorge V. Neville-Neil 		TCP_PROBE2(debug__user, tp, PRU_CLOSE);
1399a152f8a3SRobert Watson 	}
1400ad71fe3cSRobert Watson 	if (!(inp->inp_flags & INP_DROPPED)) {
1401a152f8a3SRobert Watson 		SOCK_LOCK(so);
1402a152f8a3SRobert Watson 		so->so_state |= SS_PROTOREF;
1403a152f8a3SRobert Watson 		SOCK_UNLOCK(so);
1404ad71fe3cSRobert Watson 		inp->inp_flags |= INP_SOCKREF;
1405a152f8a3SRobert Watson 	}
14068501a69cSRobert Watson 	INP_WUNLOCK(inp);
140797a95ee1SGleb Smirnoff 	NET_EPOCH_EXIT(et);
14082c37256eSGarrett Wollman }
14092c37256eSGarrett Wollman 
1410d3b6c96bSRandall Stewart static int
1411d3b6c96bSRandall Stewart tcp_pru_options_support(struct tcpcb *tp, int flags)
1412d3b6c96bSRandall Stewart {
1413d3b6c96bSRandall Stewart 	/*
1414d3b6c96bSRandall Stewart 	 * If the specific TCP stack has a pru_options
1415d3b6c96bSRandall Stewart 	 * specified then it does not always support
1416d3b6c96bSRandall Stewart 	 * all the PRU_XX options and we must ask it.
1417d3b6c96bSRandall Stewart 	 * If the function is not specified then all
1418d3b6c96bSRandall Stewart 	 * of the PRU_XX options are supported.
1419d3b6c96bSRandall Stewart 	 */
1420d3b6c96bSRandall Stewart 	int ret = 0;
1421d3b6c96bSRandall Stewart 
1422d3b6c96bSRandall Stewart 	if (tp->t_fb->tfb_pru_options) {
1423d3b6c96bSRandall Stewart 		ret = (*tp->t_fb->tfb_pru_options)(tp, flags);
1424d3b6c96bSRandall Stewart 	}
1425d3b6c96bSRandall Stewart 	return (ret);
1426d3b6c96bSRandall Stewart }
1427d3b6c96bSRandall Stewart 
14282c37256eSGarrett Wollman /*
14292c37256eSGarrett Wollman  * Receive out-of-band data.
14302c37256eSGarrett Wollman  */
14312c37256eSGarrett Wollman static int
14322c37256eSGarrett Wollman tcp_usr_rcvoob(struct socket *so, struct mbuf *m, int flags)
14332c37256eSGarrett Wollman {
14342c37256eSGarrett Wollman 	int error = 0;
1435f76fcf6dSJeffrey Hsu 	struct inpcb *inp;
1436623dce13SRobert Watson 	struct tcpcb *tp = NULL;
14372c37256eSGarrett Wollman 
1438623dce13SRobert Watson 	TCPDEBUG0;
1439623dce13SRobert Watson 	inp = sotoinpcb(so);
1440623dce13SRobert Watson 	KASSERT(inp != NULL, ("tcp_usr_rcvoob: inp == NULL"));
14418501a69cSRobert Watson 	INP_WLOCK(inp);
1442ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
144321367f63SSam Leffler 		error = ECONNRESET;
1444623dce13SRobert Watson 		goto out;
1445623dce13SRobert Watson 	}
1446623dce13SRobert Watson 	tp = intotcpcb(inp);
1447d3b6c96bSRandall Stewart 	error = tcp_pru_options_support(tp, PRUS_OOB);
1448d3b6c96bSRandall Stewart 	if (error) {
1449d3b6c96bSRandall Stewart 		goto out;
1450d3b6c96bSRandall Stewart 	}
1451623dce13SRobert Watson 	TCPDEBUG1();
14522c37256eSGarrett Wollman 	if ((so->so_oobmark == 0 &&
1453c0b99ffaSRobert Watson 	     (so->so_rcv.sb_state & SBS_RCVATMARK) == 0) ||
14544cc20ab1SSeigo Tanimura 	    so->so_options & SO_OOBINLINE ||
14554cc20ab1SSeigo Tanimura 	    tp->t_oobflags & TCPOOB_HADDATA) {
14562c37256eSGarrett Wollman 		error = EINVAL;
14572c37256eSGarrett Wollman 		goto out;
14582c37256eSGarrett Wollman 	}
14592c37256eSGarrett Wollman 	if ((tp->t_oobflags & TCPOOB_HAVEDATA) == 0) {
14602c37256eSGarrett Wollman 		error = EWOULDBLOCK;
14612c37256eSGarrett Wollman 		goto out;
14622c37256eSGarrett Wollman 	}
14632c37256eSGarrett Wollman 	m->m_len = 1;
14642c37256eSGarrett Wollman 	*mtod(m, caddr_t) = tp->t_iobc;
14652c37256eSGarrett Wollman 	if ((flags & MSG_PEEK) == 0)
14662c37256eSGarrett Wollman 		tp->t_oobflags ^= (TCPOOB_HAVEDATA | TCPOOB_HADDATA);
1467623dce13SRobert Watson 
1468623dce13SRobert Watson out:
1469623dce13SRobert Watson 	TCPDEBUG2(PRU_RCVOOB);
14705d06879aSGeorge V. Neville-Neil 	TCP_PROBE2(debug__user, tp, PRU_RCVOOB);
14718501a69cSRobert Watson 	INP_WUNLOCK(inp);
1472623dce13SRobert Watson 	return (error);
14732c37256eSGarrett Wollman }
14742c37256eSGarrett Wollman 
1475b287c6c7SBjoern A. Zeeb #ifdef INET
14762c37256eSGarrett Wollman struct pr_usrreqs tcp_usrreqs = {
1477756d52a1SPoul-Henning Kamp 	.pru_abort =		tcp_usr_abort,
1478756d52a1SPoul-Henning Kamp 	.pru_accept =		tcp_usr_accept,
1479756d52a1SPoul-Henning Kamp 	.pru_attach =		tcp_usr_attach,
1480756d52a1SPoul-Henning Kamp 	.pru_bind =		tcp_usr_bind,
1481756d52a1SPoul-Henning Kamp 	.pru_connect =		tcp_usr_connect,
1482756d52a1SPoul-Henning Kamp 	.pru_control =		in_control,
1483756d52a1SPoul-Henning Kamp 	.pru_detach =		tcp_usr_detach,
1484756d52a1SPoul-Henning Kamp 	.pru_disconnect =	tcp_usr_disconnect,
1485756d52a1SPoul-Henning Kamp 	.pru_listen =		tcp_usr_listen,
148654d642bbSRobert Watson 	.pru_peeraddr =		in_getpeeraddr,
1487756d52a1SPoul-Henning Kamp 	.pru_rcvd =		tcp_usr_rcvd,
1488756d52a1SPoul-Henning Kamp 	.pru_rcvoob =		tcp_usr_rcvoob,
1489756d52a1SPoul-Henning Kamp 	.pru_send =		tcp_usr_send,
14902cbcd3c1SGleb Smirnoff 	.pru_ready =		tcp_usr_ready,
1491756d52a1SPoul-Henning Kamp 	.pru_shutdown =		tcp_usr_shutdown,
149254d642bbSRobert Watson 	.pru_sockaddr =		in_getsockaddr,
1493a152f8a3SRobert Watson 	.pru_sosetlabel =	in_pcbsosetlabel,
1494a152f8a3SRobert Watson 	.pru_close =		tcp_usr_close,
14952c37256eSGarrett Wollman };
1496b287c6c7SBjoern A. Zeeb #endif /* INET */
1497df8bae1dSRodney W. Grimes 
1498fb59c426SYoshinobu Inoue #ifdef INET6
1499fb59c426SYoshinobu Inoue struct pr_usrreqs tcp6_usrreqs = {
1500756d52a1SPoul-Henning Kamp 	.pru_abort =		tcp_usr_abort,
1501756d52a1SPoul-Henning Kamp 	.pru_accept =		tcp6_usr_accept,
1502756d52a1SPoul-Henning Kamp 	.pru_attach =		tcp_usr_attach,
1503756d52a1SPoul-Henning Kamp 	.pru_bind =		tcp6_usr_bind,
1504756d52a1SPoul-Henning Kamp 	.pru_connect =		tcp6_usr_connect,
1505756d52a1SPoul-Henning Kamp 	.pru_control =		in6_control,
1506756d52a1SPoul-Henning Kamp 	.pru_detach =		tcp_usr_detach,
1507756d52a1SPoul-Henning Kamp 	.pru_disconnect =	tcp_usr_disconnect,
1508756d52a1SPoul-Henning Kamp 	.pru_listen =		tcp6_usr_listen,
1509756d52a1SPoul-Henning Kamp 	.pru_peeraddr =		in6_mapped_peeraddr,
1510756d52a1SPoul-Henning Kamp 	.pru_rcvd =		tcp_usr_rcvd,
1511756d52a1SPoul-Henning Kamp 	.pru_rcvoob =		tcp_usr_rcvoob,
1512756d52a1SPoul-Henning Kamp 	.pru_send =		tcp_usr_send,
15132cbcd3c1SGleb Smirnoff 	.pru_ready =		tcp_usr_ready,
1514756d52a1SPoul-Henning Kamp 	.pru_shutdown =		tcp_usr_shutdown,
1515756d52a1SPoul-Henning Kamp 	.pru_sockaddr =		in6_mapped_sockaddr,
1516a152f8a3SRobert Watson 	.pru_sosetlabel =	in_pcbsosetlabel,
1517a152f8a3SRobert Watson 	.pru_close =		tcp_usr_close,
1518fb59c426SYoshinobu Inoue };
1519fb59c426SYoshinobu Inoue #endif /* INET6 */
1520fb59c426SYoshinobu Inoue 
1521b287c6c7SBjoern A. Zeeb #ifdef INET
1522a0292f23SGarrett Wollman /*
1523a0292f23SGarrett Wollman  * Common subroutine to open a TCP connection to remote host specified
1524a0292f23SGarrett Wollman  * by struct sockaddr_in in mbuf *nam.  Call in_pcbbind to assign a local
15255200e00eSIan Dowse  * port number if needed.  Call in_pcbconnect_setup to do the routing and
15265200e00eSIan Dowse  * to choose a local host address (interface).  If there is an existing
15275200e00eSIan Dowse  * incarnation of the same connection in TIME-WAIT state and if the remote
15285200e00eSIan Dowse  * host was sending CC options and if the connection duration was < MSL, then
1529a0292f23SGarrett Wollman  * truncate the previous TIME-WAIT state and proceed.
1530a0292f23SGarrett Wollman  * Initialize connection parameters and enter SYN-SENT state.
1531a0292f23SGarrett Wollman  */
15320312fbe9SPoul-Henning Kamp static int
1533ad3f9ab3SAndre Oppermann tcp_connect(struct tcpcb *tp, struct sockaddr *nam, struct thread *td)
1534a0292f23SGarrett Wollman {
1535a0292f23SGarrett Wollman 	struct inpcb *inp = tp->t_inpcb, *oinp;
1536a0292f23SGarrett Wollman 	struct socket *so = inp->inp_socket;
15375200e00eSIan Dowse 	struct in_addr laddr;
15385200e00eSIan Dowse 	u_short lport;
1539c3229e05SDavid Greenman 	int error;
1540a0292f23SGarrett Wollman 
1541c1604fe4SGleb Smirnoff 	NET_EPOCH_ASSERT();
15428501a69cSRobert Watson 	INP_WLOCK_ASSERT(inp);
1543fa046d87SRobert Watson 	INP_HASH_WLOCK(&V_tcbinfo);
1544623dce13SRobert Watson 
154525102351SMike Karels 	if (V_tcp_require_unique_port && inp->inp_lport == 0) {
15464616026fSErmal Luçi 		error = in_pcbbind(inp, (struct sockaddr *)0, td->td_ucred);
15474616026fSErmal Luçi 		if (error)
1548fa046d87SRobert Watson 			goto out;
1549a0292f23SGarrett Wollman 	}
1550a0292f23SGarrett Wollman 
1551a0292f23SGarrett Wollman 	/*
1552a0292f23SGarrett Wollman 	 * Cannot simply call in_pcbconnect, because there might be an
1553a0292f23SGarrett Wollman 	 * earlier incarnation of this same connection still in
1554a0292f23SGarrett Wollman 	 * TIME_WAIT state, creating an ADDRINUSE error.
1555a0292f23SGarrett Wollman 	 */
15565200e00eSIan Dowse 	laddr = inp->inp_laddr;
15575200e00eSIan Dowse 	lport = inp->inp_lport;
15585200e00eSIan Dowse 	error = in_pcbconnect_setup(inp, nam, &laddr.s_addr, &lport,
1559b0330ed9SPawel Jakub Dawidek 	    &inp->inp_faddr.s_addr, &inp->inp_fport, &oinp, td->td_ucred);
15605200e00eSIan Dowse 	if (error && oinp == NULL)
1561fa046d87SRobert Watson 		goto out;
1562fa046d87SRobert Watson 	if (oinp) {
1563fa046d87SRobert Watson 		error = EADDRINUSE;
1564fa046d87SRobert Watson 		goto out;
1565fa046d87SRobert Watson 	}
156625102351SMike Karels 	/* Handle initial bind if it hadn't been done in advance. */
156725102351SMike Karels 	if (inp->inp_lport == 0) {
156825102351SMike Karels 		inp->inp_lport = lport;
156925102351SMike Karels 		if (in_pcbinshash(inp) != 0) {
157025102351SMike Karels 			inp->inp_lport = 0;
157125102351SMike Karels 			error = EAGAIN;
157225102351SMike Karels 			goto out;
157325102351SMike Karels 		}
157425102351SMike Karels 	}
15755200e00eSIan Dowse 	inp->inp_laddr = laddr;
157615bd2b43SDavid Greenman 	in_pcbrehash(inp);
1577fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
1578a0292f23SGarrett Wollman 
1579087b55eaSAndre Oppermann 	/*
1580087b55eaSAndre Oppermann 	 * Compute window scaling to request:
1581087b55eaSAndre Oppermann 	 * Scale to fit into sweet spot.  See tcp_syncache.c.
1582087b55eaSAndre Oppermann 	 * XXX: This should move to tcp_output().
1583087b55eaSAndre Oppermann 	 */
1584a0292f23SGarrett Wollman 	while (tp->request_r_scale < TCP_MAX_WINSHIFT &&
15859b3bc6bfSMike Silbersack 	    (TCP_MAXWIN << tp->request_r_scale) < sb_max)
1586a0292f23SGarrett Wollman 		tp->request_r_scale++;
1587a0292f23SGarrett Wollman 
1588a0292f23SGarrett Wollman 	soisconnecting(so);
158978b50714SRobert Watson 	TCPSTAT_INC(tcps_connattempt);
159057f60867SMark Johnston 	tcp_state_change(tp, TCPS_SYN_SENT);
15918e02b4e0SMichael Tuexen 	tp->iss = tcp_new_isn(&inp->inp_inc);
15928e02b4e0SMichael Tuexen 	if (tp->t_flags & TF_REQ_TSTMP)
15938e02b4e0SMichael Tuexen 		tp->ts_offset = tcp_new_ts_offset(&inp->inp_inc);
1594a0292f23SGarrett Wollman 	tcp_sendseqinit(tp);
1595a45d2726SAndras Olah 
1596a0292f23SGarrett Wollman 	return 0;
1597fa046d87SRobert Watson 
1598fa046d87SRobert Watson out:
1599fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
1600fa046d87SRobert Watson 	return (error);
1601a0292f23SGarrett Wollman }
1602b287c6c7SBjoern A. Zeeb #endif /* INET */
1603a0292f23SGarrett Wollman 
1604fb59c426SYoshinobu Inoue #ifdef INET6
1605fb59c426SYoshinobu Inoue static int
1606ad3f9ab3SAndre Oppermann tcp6_connect(struct tcpcb *tp, struct sockaddr *nam, struct thread *td)
1607fb59c426SYoshinobu Inoue {
1608a7e201bbSAndrey V. Elsukov 	struct inpcb *inp = tp->t_inpcb;
1609fb59c426SYoshinobu Inoue 	int error;
1610fb59c426SYoshinobu Inoue 
16118501a69cSRobert Watson 	INP_WLOCK_ASSERT(inp);
1612fa046d87SRobert Watson 	INP_HASH_WLOCK(&V_tcbinfo);
1613623dce13SRobert Watson 
161425102351SMike Karels 	if (V_tcp_require_unique_port && inp->inp_lport == 0) {
16154616026fSErmal Luçi 		error = in6_pcbbind(inp, (struct sockaddr *)0, td->td_ucred);
16164616026fSErmal Luçi 		if (error)
1617fa046d87SRobert Watson 			goto out;
1618fb59c426SYoshinobu Inoue 	}
1619a7e201bbSAndrey V. Elsukov 	error = in6_pcbconnect(inp, nam, td->td_ucred);
1620a7e201bbSAndrey V. Elsukov 	if (error != 0)
1621b598155aSRobert Watson 		goto out;
1622fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
1623fb59c426SYoshinobu Inoue 
1624fb59c426SYoshinobu Inoue 	/* Compute window scaling to request.  */
1625fb59c426SYoshinobu Inoue 	while (tp->request_r_scale < TCP_MAX_WINSHIFT &&
1626970caf60SBjoern A. Zeeb 	    (TCP_MAXWIN << tp->request_r_scale) < sb_max)
1627fb59c426SYoshinobu Inoue 		tp->request_r_scale++;
1628fb59c426SYoshinobu Inoue 
1629a7e201bbSAndrey V. Elsukov 	soisconnecting(inp->inp_socket);
163078b50714SRobert Watson 	TCPSTAT_INC(tcps_connattempt);
163157f60867SMark Johnston 	tcp_state_change(tp, TCPS_SYN_SENT);
16328e02b4e0SMichael Tuexen 	tp->iss = tcp_new_isn(&inp->inp_inc);
16338e02b4e0SMichael Tuexen 	if (tp->t_flags & TF_REQ_TSTMP)
16348e02b4e0SMichael Tuexen 		tp->ts_offset = tcp_new_ts_offset(&inp->inp_inc);
1635fb59c426SYoshinobu Inoue 	tcp_sendseqinit(tp);
1636fb59c426SYoshinobu Inoue 
1637fb59c426SYoshinobu Inoue 	return 0;
1638fa046d87SRobert Watson 
1639fa046d87SRobert Watson out:
1640fa046d87SRobert Watson 	INP_HASH_WUNLOCK(&V_tcbinfo);
1641fa046d87SRobert Watson 	return error;
1642fb59c426SYoshinobu Inoue }
1643fb59c426SYoshinobu Inoue #endif /* INET6 */
1644fb59c426SYoshinobu Inoue 
1645cfe8b629SGarrett Wollman /*
1646b8af5dfaSRobert Watson  * Export TCP internal state information via a struct tcp_info, based on the
1647b8af5dfaSRobert Watson  * Linux 2.6 API.  Not ABI compatible as our constants are mapped differently
1648b8af5dfaSRobert Watson  * (TCP state machine, etc).  We export all information using FreeBSD-native
1649b8af5dfaSRobert Watson  * constants -- for example, the numeric values for tcpi_state will differ
1650b8af5dfaSRobert Watson  * from Linux.
1651b8af5dfaSRobert Watson  */
1652b8af5dfaSRobert Watson static void
1653ad3f9ab3SAndre Oppermann tcp_fill_info(struct tcpcb *tp, struct tcp_info *ti)
1654b8af5dfaSRobert Watson {
1655b8af5dfaSRobert Watson 
16568501a69cSRobert Watson 	INP_WLOCK_ASSERT(tp->t_inpcb);
1657b8af5dfaSRobert Watson 	bzero(ti, sizeof(*ti));
1658b8af5dfaSRobert Watson 
1659b8af5dfaSRobert Watson 	ti->tcpi_state = tp->t_state;
1660b8af5dfaSRobert Watson 	if ((tp->t_flags & TF_REQ_TSTMP) && (tp->t_flags & TF_RCVD_TSTMP))
1661b8af5dfaSRobert Watson 		ti->tcpi_options |= TCPI_OPT_TIMESTAMPS;
16623529149eSAndre Oppermann 	if (tp->t_flags & TF_SACK_PERMIT)
1663b8af5dfaSRobert Watson 		ti->tcpi_options |= TCPI_OPT_SACK;
1664b8af5dfaSRobert Watson 	if ((tp->t_flags & TF_REQ_SCALE) && (tp->t_flags & TF_RCVD_SCALE)) {
1665b8af5dfaSRobert Watson 		ti->tcpi_options |= TCPI_OPT_WSCALE;
1666b8af5dfaSRobert Watson 		ti->tcpi_snd_wscale = tp->snd_scale;
1667b8af5dfaSRobert Watson 		ti->tcpi_rcv_wscale = tp->rcv_scale;
1668b8af5dfaSRobert Watson 	}
16693cf38784SMichael Tuexen 	if (tp->t_flags2 & TF2_ECN_PERMIT)
16705a17b6adSMichael Tuexen 		ti->tcpi_options |= TCPI_OPT_ECN;
16711baaf834SBruce M Simpson 
167243d94734SJohn Baldwin 	ti->tcpi_rto = tp->t_rxtcur * tick;
16733ac12506SJonathan T. Looney 	ti->tcpi_last_data_recv = ((uint32_t)ticks - tp->t_rcvtime) * tick;
16741baaf834SBruce M Simpson 	ti->tcpi_rtt = ((u_int64_t)tp->t_srtt * tick) >> TCP_RTT_SHIFT;
16751baaf834SBruce M Simpson 	ti->tcpi_rttvar = ((u_int64_t)tp->t_rttvar * tick) >> TCP_RTTVAR_SHIFT;
16761baaf834SBruce M Simpson 
1677b8af5dfaSRobert Watson 	ti->tcpi_snd_ssthresh = tp->snd_ssthresh;
1678b8af5dfaSRobert Watson 	ti->tcpi_snd_cwnd = tp->snd_cwnd;
1679b8af5dfaSRobert Watson 
1680b8af5dfaSRobert Watson 	/*
1681b8af5dfaSRobert Watson 	 * FreeBSD-specific extension fields for tcp_info.
1682b8af5dfaSRobert Watson 	 */
1683c8443a1dSRobert Watson 	ti->tcpi_rcv_space = tp->rcv_wnd;
1684535fbad6SKip Macy 	ti->tcpi_rcv_nxt = tp->rcv_nxt;
1685b8af5dfaSRobert Watson 	ti->tcpi_snd_wnd = tp->snd_wnd;
16861c18314dSAndre Oppermann 	ti->tcpi_snd_bwnd = 0;		/* Unused, kept for compat. */
1687535fbad6SKip Macy 	ti->tcpi_snd_nxt = tp->snd_nxt;
168843d94734SJohn Baldwin 	ti->tcpi_snd_mss = tp->t_maxseg;
168943d94734SJohn Baldwin 	ti->tcpi_rcv_mss = tp->t_maxseg;
1690f5d34df5SGeorge V. Neville-Neil 	ti->tcpi_snd_rexmitpack = tp->t_sndrexmitpack;
1691f5d34df5SGeorge V. Neville-Neil 	ti->tcpi_rcv_ooopack = tp->t_rcvoopack;
1692f5d34df5SGeorge V. Neville-Neil 	ti->tcpi_snd_zerowin = tp->t_sndzerowin;
1693a6456410SNavdeep Parhar #ifdef TCP_OFFLOAD
1694a6456410SNavdeep Parhar 	if (tp->t_flags & TF_TOE) {
1695a6456410SNavdeep Parhar 		ti->tcpi_options |= TCPI_OPT_TOE;
1696a6456410SNavdeep Parhar 		tcp_offload_tcp_info(tp, ti);
1697a6456410SNavdeep Parhar 	}
1698a6456410SNavdeep Parhar #endif
1699b8af5dfaSRobert Watson }
1700b8af5dfaSRobert Watson 
1701b8af5dfaSRobert Watson /*
17021e8f5ffaSRobert Watson  * tcp_ctloutput() must drop the inpcb lock before performing copyin on
17031e8f5ffaSRobert Watson  * socket option arguments.  When it re-acquires the lock after the copy, it
17041e8f5ffaSRobert Watson  * has to revalidate that the connection is still valid for the socket
17051e8f5ffaSRobert Watson  * option.
1706cfe8b629SGarrett Wollman  */
1707bac5bedfSConrad Meyer #define INP_WLOCK_RECHECK_CLEANUP(inp, cleanup) do {			\
17088501a69cSRobert Watson 	INP_WLOCK(inp);							\
1709ad71fe3cSRobert Watson 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {		\
17108501a69cSRobert Watson 		INP_WUNLOCK(inp);					\
1711bac5bedfSConrad Meyer 		cleanup;						\
17121e8f5ffaSRobert Watson 		return (ECONNRESET);					\
17131e8f5ffaSRobert Watson 	}								\
17141e8f5ffaSRobert Watson 	tp = intotcpcb(inp);						\
17151e8f5ffaSRobert Watson } while(0)
1716bac5bedfSConrad Meyer #define INP_WLOCK_RECHECK(inp) INP_WLOCK_RECHECK_CLEANUP((inp), /* noop */)
17171e8f5ffaSRobert Watson 
1718fc4d53ccSGleb Smirnoff static int
1719fc4d53ccSGleb Smirnoff tcp_ctloutput_set(struct inpcb *inp, struct sockopt *sopt)
1720df8bae1dSRodney W. Grimes {
1721fc4d53ccSGleb Smirnoff 	struct	tcpcb *tp = intotcpcb(inp);
1722fc4d53ccSGleb Smirnoff 	int error = 0;
1723df8bae1dSRodney W. Grimes 
1724fc4d53ccSGleb Smirnoff 	MPASS(sopt->sopt_dir == SOPT_SET);
1725fc4d53ccSGleb Smirnoff 
1726cfe8b629SGarrett Wollman 	if (sopt->sopt_level != IPPROTO_TCP) {
1727fb59c426SYoshinobu Inoue #ifdef INET6
1728de156263SGleb Smirnoff 		if (inp->inp_vflag & INP_IPV6PROTO)
1729fc4d53ccSGleb Smirnoff 			error = ip6_ctloutput(inp->inp_socket, sopt);
1730de156263SGleb Smirnoff #endif
1731de156263SGleb Smirnoff #if defined(INET6) && defined(INET)
1732de156263SGleb Smirnoff 		else
1733de156263SGleb Smirnoff #endif
1734de156263SGleb Smirnoff #ifdef INET
1735de156263SGleb Smirnoff 			error = ip_ctloutput(inp->inp_socket, sopt);
1736de156263SGleb Smirnoff #endif
17375dff1c38SMichael Tuexen 		/*
1738de156263SGleb Smirnoff 		 * When an IP-level socket option affects TCP, pass control
1739de156263SGleb Smirnoff 		 * down to stack tfb_tcp_ctloutput, otherwise return what
1740de156263SGleb Smirnoff 		 * IP level returned.
17415dff1c38SMichael Tuexen 		 */
1742de156263SGleb Smirnoff 		switch (sopt->sopt_level) {
1743de156263SGleb Smirnoff #ifdef INET6
1744de156263SGleb Smirnoff 		case IPPROTO_IPV6:
1745de156263SGleb Smirnoff 			if ((inp->inp_vflag & INP_IPV6PROTO) == 0)
1746de156263SGleb Smirnoff 				return (error);
1747de156263SGleb Smirnoff 			switch (sopt->sopt_name) {
1748de156263SGleb Smirnoff 			case IPV6_TCLASS:
1749de156263SGleb Smirnoff 				/* Notify tcp stacks that care (e.g. RACK). */
1750de156263SGleb Smirnoff 				break;
1751de156263SGleb Smirnoff 			case IPV6_USE_MIN_MTU:
1752f581a26eSGleb Smirnoff 				/* Update t_maxseg accordingly. */
1753f581a26eSGleb Smirnoff 				break;
1754de156263SGleb Smirnoff 			default:
1755de156263SGleb Smirnoff 				return (error);
17565dff1c38SMichael Tuexen 			}
1757de156263SGleb Smirnoff 			break;
1758b287c6c7SBjoern A. Zeeb #endif
1759b287c6c7SBjoern A. Zeeb #ifdef INET
1760de156263SGleb Smirnoff 		case IPPROTO_IP:
1761de156263SGleb Smirnoff 			switch (sopt->sopt_name) {
1762de156263SGleb Smirnoff 			case IP_TOS:
1763de156263SGleb Smirnoff 			case IP_TTL:
1764de156263SGleb Smirnoff 				/* Notify tcp stacks that care (e.g. RACK). */
1765de156263SGleb Smirnoff 				break;
1766de156263SGleb Smirnoff 			default:
1767df8bae1dSRodney W. Grimes 				return (error);
1768de156263SGleb Smirnoff 			}
1769de156263SGleb Smirnoff 			break;
1770de156263SGleb Smirnoff #endif
1771de156263SGleb Smirnoff 		default:
1772de156263SGleb Smirnoff 			return (error);
1773de156263SGleb Smirnoff 		}
1774fc4d53ccSGleb Smirnoff 	} else if (sopt->sopt_name == TCP_FUNCTION_BLK) {
1775fc4d53ccSGleb Smirnoff 		/*
1776fc4d53ccSGleb Smirnoff 		 * Protect the TCP option TCP_FUNCTION_BLK so
1777fc4d53ccSGleb Smirnoff 		 * that a sub-function can *never* overwrite this.
1778fc4d53ccSGleb Smirnoff 		 */
1779fc4d53ccSGleb Smirnoff 		struct tcp_function_set fsn;
1780fc4d53ccSGleb Smirnoff 		struct tcp_function_block *blk;
1781fc4d53ccSGleb Smirnoff 
1782fc4d53ccSGleb Smirnoff 		error = sooptcopyin(sopt, &fsn, sizeof fsn, sizeof fsn);
1783fc4d53ccSGleb Smirnoff 		if (error)
1784fc4d53ccSGleb Smirnoff 			return (error);
1785fc4d53ccSGleb Smirnoff 
178668cea2b1SJohn Baldwin 		INP_WLOCK(inp);
1787ad71fe3cSRobert Watson 		if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
17888501a69cSRobert Watson 			INP_WUNLOCK(inp);
17891e8f5ffaSRobert Watson 			return (ECONNRESET);
1790623dce13SRobert Watson 		}
179155bceb1eSRandall Stewart 		tp = intotcpcb(inp);
1792fc4d53ccSGleb Smirnoff 
179355bceb1eSRandall Stewart 		blk = find_and_ref_tcp_functions(&fsn);
179455bceb1eSRandall Stewart 		if (blk == NULL) {
179555bceb1eSRandall Stewart 			INP_WUNLOCK(inp);
179655bceb1eSRandall Stewart 			return (ENOENT);
179755bceb1eSRandall Stewart 		}
1798587d67c0SRandall Stewart 		if (tp->t_fb == blk) {
1799587d67c0SRandall Stewart 			/* You already have this */
1800587d67c0SRandall Stewart 			refcount_release(&blk->tfb_refcnt);
1801587d67c0SRandall Stewart 			INP_WUNLOCK(inp);
1802587d67c0SRandall Stewart 			return (0);
1803587d67c0SRandall Stewart 		}
1804587d67c0SRandall Stewart 		if (tp->t_state != TCPS_CLOSED) {
1805587d67c0SRandall Stewart 			/*
1806587d67c0SRandall Stewart 			 * The user has advanced the state
1807587d67c0SRandall Stewart 			 * past the initial point, we may not
1808587d67c0SRandall Stewart 			 * be able to switch.
1809587d67c0SRandall Stewart 			 */
1810587d67c0SRandall Stewart 			if (blk->tfb_tcp_handoff_ok != NULL) {
1811587d67c0SRandall Stewart 				/*
1812587d67c0SRandall Stewart 				 * Does the stack provide a
1813587d67c0SRandall Stewart 				 * query mechanism, if so it may
1814587d67c0SRandall Stewart 				 * still be possible?
1815587d67c0SRandall Stewart 				 */
1816587d67c0SRandall Stewart 				error = (*blk->tfb_tcp_handoff_ok)(tp);
1817c6c0be27SMichael Tuexen 			} else
1818c6c0be27SMichael Tuexen 				error = EINVAL;
1819587d67c0SRandall Stewart 			if (error) {
1820587d67c0SRandall Stewart 				refcount_release(&blk->tfb_refcnt);
1821587d67c0SRandall Stewart 				INP_WUNLOCK(inp);
1822587d67c0SRandall Stewart 				return(error);
1823587d67c0SRandall Stewart 			}
1824587d67c0SRandall Stewart 		}
182555bceb1eSRandall Stewart 		if (blk->tfb_flags & TCP_FUNC_BEING_REMOVED) {
182655bceb1eSRandall Stewart 			refcount_release(&blk->tfb_refcnt);
182755bceb1eSRandall Stewart 			INP_WUNLOCK(inp);
182855bceb1eSRandall Stewart 			return (ENOENT);
182955bceb1eSRandall Stewart 		}
183055bceb1eSRandall Stewart 		/*
183155bceb1eSRandall Stewart 		 * Release the old refcnt, the
1832587d67c0SRandall Stewart 		 * lookup acquired a ref on the
1833587d67c0SRandall Stewart 		 * new one already.
183455bceb1eSRandall Stewart 		 */
1835587d67c0SRandall Stewart 		if (tp->t_fb->tfb_tcp_fb_fini) {
1836086a3556SAndrew Gallatin 			struct epoch_tracker et;
1837587d67c0SRandall Stewart 			/*
1838587d67c0SRandall Stewart 			 * Tell the stack to cleanup with 0 i.e.
1839587d67c0SRandall Stewart 			 * the tcb is not going away.
1840587d67c0SRandall Stewart 			 */
1841086a3556SAndrew Gallatin 			NET_EPOCH_ENTER(et);
1842587d67c0SRandall Stewart 			(*tp->t_fb->tfb_tcp_fb_fini)(tp, 0);
1843086a3556SAndrew Gallatin 			NET_EPOCH_EXIT(et);
1844587d67c0SRandall Stewart 		}
18453ee9c3c4SRandall Stewart #ifdef TCPHPTS
18463ee9c3c4SRandall Stewart 		/* Assure that we are not on any hpts */
1847a370832bSGleb Smirnoff 		tcp_hpts_remove(tp->t_inpcb);
18483ee9c3c4SRandall Stewart #endif
18493ee9c3c4SRandall Stewart 		if (blk->tfb_tcp_fb_init) {
18503ee9c3c4SRandall Stewart 			error = (*blk->tfb_tcp_fb_init)(tp);
18513ee9c3c4SRandall Stewart 			if (error) {
18523ee9c3c4SRandall Stewart 				refcount_release(&blk->tfb_refcnt);
18533ee9c3c4SRandall Stewart 				if (tp->t_fb->tfb_tcp_fb_init) {
18543ee9c3c4SRandall Stewart 					if((*tp->t_fb->tfb_tcp_fb_init)(tp) != 0)  {
18553ee9c3c4SRandall Stewart 						/* Fall back failed, drop the connection */
18563ee9c3c4SRandall Stewart 						INP_WUNLOCK(inp);
1857fc4d53ccSGleb Smirnoff 						soabort(inp->inp_socket);
18583ee9c3c4SRandall Stewart 						return(error);
18593ee9c3c4SRandall Stewart 					}
18603ee9c3c4SRandall Stewart 				}
18613ee9c3c4SRandall Stewart 				goto err_out;
18623ee9c3c4SRandall Stewart 			}
18633ee9c3c4SRandall Stewart 		}
186455bceb1eSRandall Stewart 		refcount_release(&tp->t_fb->tfb_refcnt);
186555bceb1eSRandall Stewart 		tp->t_fb = blk;
186655bceb1eSRandall Stewart #ifdef TCP_OFFLOAD
186755bceb1eSRandall Stewart 		if (tp->t_flags & TF_TOE) {
186855bceb1eSRandall Stewart 			tcp_offload_ctloutput(tp, sopt->sopt_dir,
186955bceb1eSRandall Stewart 			     sopt->sopt_name);
187055bceb1eSRandall Stewart 		}
187155bceb1eSRandall Stewart #endif
18723ee9c3c4SRandall Stewart err_out:
187355bceb1eSRandall Stewart 		INP_WUNLOCK(inp);
187455bceb1eSRandall Stewart 		return (error);
1875fc4d53ccSGleb Smirnoff 	}
1876fc4d53ccSGleb Smirnoff 
1877fc4d53ccSGleb Smirnoff 	INP_WLOCK(inp);
1878fc4d53ccSGleb Smirnoff 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
1879fc4d53ccSGleb Smirnoff 		INP_WUNLOCK(inp);
1880fc4d53ccSGleb Smirnoff 		return (ECONNRESET);
1881fc4d53ccSGleb Smirnoff 	}
1882fc4d53ccSGleb Smirnoff 	tp = intotcpcb(inp);
1883fc4d53ccSGleb Smirnoff 
1884fc4d53ccSGleb Smirnoff 	/* Pass in the INP locked, caller must unlock it. */
1885fc4d53ccSGleb Smirnoff 	return (tp->t_fb->tfb_tcp_ctloutput(inp->inp_socket, sopt, inp, tp));
1886fc4d53ccSGleb Smirnoff }
1887fc4d53ccSGleb Smirnoff 
1888fc4d53ccSGleb Smirnoff static int
1889fc4d53ccSGleb Smirnoff tcp_ctloutput_get(struct inpcb *inp, struct sockopt *sopt)
1890fc4d53ccSGleb Smirnoff {
1891fc4d53ccSGleb Smirnoff 	int	error = 0;
1892fc4d53ccSGleb Smirnoff 	struct	tcpcb *tp;
1893fc4d53ccSGleb Smirnoff 
1894fc4d53ccSGleb Smirnoff 	MPASS(sopt->sopt_dir == SOPT_GET);
1895fc4d53ccSGleb Smirnoff 
1896fc4d53ccSGleb Smirnoff 	if (sopt->sopt_level != IPPROTO_TCP) {
1897fc4d53ccSGleb Smirnoff #ifdef INET6
1898fc4d53ccSGleb Smirnoff 		if (inp->inp_vflag & INP_IPV6PROTO)
1899fc4d53ccSGleb Smirnoff 			error = ip6_ctloutput(inp->inp_socket, sopt);
1900fc4d53ccSGleb Smirnoff #endif /* INET6 */
1901fc4d53ccSGleb Smirnoff #if defined(INET6) && defined(INET)
1902fc4d53ccSGleb Smirnoff 		else
1903fc4d53ccSGleb Smirnoff #endif
1904fc4d53ccSGleb Smirnoff #ifdef INET
1905fc4d53ccSGleb Smirnoff 			error = ip_ctloutput(inp->inp_socket, sopt);
1906fc4d53ccSGleb Smirnoff #endif
1907fc4d53ccSGleb Smirnoff 		return (error);
1908fc4d53ccSGleb Smirnoff 	}
1909fc4d53ccSGleb Smirnoff 	INP_WLOCK(inp);
1910fc4d53ccSGleb Smirnoff 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
1911fc4d53ccSGleb Smirnoff 		INP_WUNLOCK(inp);
1912fc4d53ccSGleb Smirnoff 		return (ECONNRESET);
1913fc4d53ccSGleb Smirnoff 	}
1914fc4d53ccSGleb Smirnoff 	tp = intotcpcb(inp);
1915fc4d53ccSGleb Smirnoff 	if (((sopt->sopt_name == TCP_FUNCTION_BLK) ||
1916e2833083SPeter Lei 	     (sopt->sopt_name == TCP_FUNCTION_ALIAS))) {
1917fc4d53ccSGleb Smirnoff 		struct tcp_function_set fsn;
1918fc4d53ccSGleb Smirnoff 
1919e2833083SPeter Lei 		if (sopt->sopt_name == TCP_FUNCTION_ALIAS) {
1920e2833083SPeter Lei 			memset(&fsn, 0, sizeof(fsn));
1921e2833083SPeter Lei 			find_tcp_function_alias(tp->t_fb, &fsn);
1922e2833083SPeter Lei 		} else {
1923e2833083SPeter Lei 			strncpy(fsn.function_set_name,
1924e2833083SPeter Lei 			    tp->t_fb->tfb_tcp_block_name,
1925c73b6f4dSEd Maste 			    TCP_FUNCTION_NAME_LEN_MAX);
1926c73b6f4dSEd Maste 			fsn.function_set_name[TCP_FUNCTION_NAME_LEN_MAX - 1] = '\0';
1927e2833083SPeter Lei 		}
192855bceb1eSRandall Stewart 		fsn.pcbcnt = tp->t_fb->tfb_refcnt;
192955bceb1eSRandall Stewart 		INP_WUNLOCK(inp);
193055bceb1eSRandall Stewart 		error = sooptcopyout(sopt, &fsn, sizeof fsn);
193155bceb1eSRandall Stewart 		return (error);
193255bceb1eSRandall Stewart 	}
1933fc4d53ccSGleb Smirnoff 
1934fc4d53ccSGleb Smirnoff 	/* Pass in the INP locked, caller must unlock it. */
1935fc4d53ccSGleb Smirnoff 	return (tp->t_fb->tfb_tcp_ctloutput(inp->inp_socket, sopt, inp, tp));
1936fc4d53ccSGleb Smirnoff }
1937fc4d53ccSGleb Smirnoff 
1938fc4d53ccSGleb Smirnoff int
1939fc4d53ccSGleb Smirnoff tcp_ctloutput(struct socket *so, struct sockopt *sopt)
1940fc4d53ccSGleb Smirnoff {
1941fc4d53ccSGleb Smirnoff 	int	error;
1942fc4d53ccSGleb Smirnoff 	struct	inpcb *inp;
1943fc4d53ccSGleb Smirnoff 
1944fc4d53ccSGleb Smirnoff 	error = 0;
1945fc4d53ccSGleb Smirnoff 	inp = sotoinpcb(so);
1946fc4d53ccSGleb Smirnoff 	KASSERT(inp != NULL, ("tcp_ctloutput: inp == NULL"));
1947fc4d53ccSGleb Smirnoff 
1948fc4d53ccSGleb Smirnoff 	if (sopt->sopt_dir == SOPT_SET)
1949fc4d53ccSGleb Smirnoff 		return (tcp_ctloutput_set(inp, sopt));
1950fc4d53ccSGleb Smirnoff 	else if (sopt->sopt_dir == SOPT_GET)
1951fc4d53ccSGleb Smirnoff 		return (tcp_ctloutput_get(inp, sopt));
1952fc4d53ccSGleb Smirnoff 	else
1953fc4d53ccSGleb Smirnoff 		panic("%s: sopt_dir $%d", __func__, sopt->sopt_dir);
195455bceb1eSRandall Stewart }
195555bceb1eSRandall Stewart 
19562529f56eSJonathan T. Looney /*
19572529f56eSJonathan T. Looney  * If this assert becomes untrue, we need to change the size of the buf
19582529f56eSJonathan T. Looney  * variable in tcp_default_ctloutput().
19592529f56eSJonathan T. Looney  */
19602529f56eSJonathan T. Looney #ifdef CTASSERT
19612529f56eSJonathan T. Looney CTASSERT(TCP_CA_NAME_MAX <= TCP_LOG_ID_LEN);
19622529f56eSJonathan T. Looney CTASSERT(TCP_LOG_REASON_LEN <= TCP_LOG_ID_LEN);
19632529f56eSJonathan T. Looney #endif
19642529f56eSJonathan T. Looney 
1965ec1db6e1SJohn Baldwin #ifdef KERN_TLS
1966ec1db6e1SJohn Baldwin static int
1967ec1db6e1SJohn Baldwin copyin_tls_enable(struct sockopt *sopt, struct tls_enable *tls)
1968ec1db6e1SJohn Baldwin {
1969ec1db6e1SJohn Baldwin 	struct tls_enable_v0 tls_v0;
1970ec1db6e1SJohn Baldwin 	int error;
1971ec1db6e1SJohn Baldwin 
1972ec1db6e1SJohn Baldwin 	if (sopt->sopt_valsize == sizeof(tls_v0)) {
1973ec1db6e1SJohn Baldwin 		error = sooptcopyin(sopt, &tls_v0, sizeof(tls_v0),
1974ec1db6e1SJohn Baldwin 		    sizeof(tls_v0));
1975ec1db6e1SJohn Baldwin 		if (error)
1976ec1db6e1SJohn Baldwin 			return (error);
1977ec1db6e1SJohn Baldwin 		memset(tls, 0, sizeof(*tls));
1978ec1db6e1SJohn Baldwin 		tls->cipher_key = tls_v0.cipher_key;
1979ec1db6e1SJohn Baldwin 		tls->iv = tls_v0.iv;
1980ec1db6e1SJohn Baldwin 		tls->auth_key = tls_v0.auth_key;
1981ec1db6e1SJohn Baldwin 		tls->cipher_algorithm = tls_v0.cipher_algorithm;
1982ec1db6e1SJohn Baldwin 		tls->cipher_key_len = tls_v0.cipher_key_len;
1983ec1db6e1SJohn Baldwin 		tls->iv_len = tls_v0.iv_len;
1984ec1db6e1SJohn Baldwin 		tls->auth_algorithm = tls_v0.auth_algorithm;
1985ec1db6e1SJohn Baldwin 		tls->auth_key_len = tls_v0.auth_key_len;
1986ec1db6e1SJohn Baldwin 		tls->flags = tls_v0.flags;
1987ec1db6e1SJohn Baldwin 		tls->tls_vmajor = tls_v0.tls_vmajor;
1988ec1db6e1SJohn Baldwin 		tls->tls_vminor = tls_v0.tls_vminor;
1989ec1db6e1SJohn Baldwin 		return (0);
1990ec1db6e1SJohn Baldwin 	}
1991ec1db6e1SJohn Baldwin 
1992ec1db6e1SJohn Baldwin 	return (sooptcopyin(sopt, tls, sizeof(*tls), sizeof(*tls)));
1993ec1db6e1SJohn Baldwin }
1994ec1db6e1SJohn Baldwin #endif
1995ec1db6e1SJohn Baldwin 
1996b8d60729SRandall Stewart extern struct cc_algo newreno_cc_algo;
1997b8d60729SRandall Stewart 
1998b8d60729SRandall Stewart static int
1999b8d60729SRandall Stewart tcp_congestion(struct socket *so, struct sockopt *sopt, struct inpcb *inp, struct tcpcb *tp)
2000b8d60729SRandall Stewart {
2001b8d60729SRandall Stewart 	struct cc_algo *algo;
2002b8d60729SRandall Stewart 	void *ptr = NULL;
2003b8d60729SRandall Stewart 	struct cc_var cc_mem;
2004b8d60729SRandall Stewart 	char	buf[TCP_CA_NAME_MAX];
2005b8d60729SRandall Stewart 	size_t mem_sz;
2006b8d60729SRandall Stewart 	int error;
2007b8d60729SRandall Stewart 
2008b8d60729SRandall Stewart 	INP_WUNLOCK(inp);
2009b8d60729SRandall Stewart 	error = sooptcopyin(sopt, buf, TCP_CA_NAME_MAX - 1, 1);
2010b8d60729SRandall Stewart 	if (error)
2011b8d60729SRandall Stewart 		return(error);
2012b8d60729SRandall Stewart 	buf[sopt->sopt_valsize] = '\0';
2013b8d60729SRandall Stewart 	CC_LIST_RLOCK();
2014b8d60729SRandall Stewart 	STAILQ_FOREACH(algo, &cc_list, entries)
2015b8d60729SRandall Stewart 		if (strncmp(buf, algo->name,
2016b8d60729SRandall Stewart 			    TCP_CA_NAME_MAX) == 0) {
2017b8d60729SRandall Stewart 			if (algo->flags & CC_MODULE_BEING_REMOVED) {
2018b8d60729SRandall Stewart 				/* We can't "see" modules being unloaded */
2019b8d60729SRandall Stewart 				continue;
2020b8d60729SRandall Stewart 			}
2021b8d60729SRandall Stewart 			break;
2022b8d60729SRandall Stewart 		}
2023b8d60729SRandall Stewart 	if (algo == NULL) {
2024b8d60729SRandall Stewart 		CC_LIST_RUNLOCK();
2025b8d60729SRandall Stewart 		return(ESRCH);
2026b8d60729SRandall Stewart 	}
2027b8d60729SRandall Stewart do_over:
2028b8d60729SRandall Stewart 	if (algo->cb_init != NULL) {
2029b8d60729SRandall Stewart 		/* We can now pre-get the memory for the CC */
2030b8d60729SRandall Stewart 		mem_sz = (*algo->cc_data_sz)();
2031b8d60729SRandall Stewart 		if (mem_sz == 0) {
2032b8d60729SRandall Stewart 			goto no_mem_needed;
2033b8d60729SRandall Stewart 		}
2034b8d60729SRandall Stewart 		CC_LIST_RUNLOCK();
2035b8d60729SRandall Stewart 		ptr = malloc(mem_sz, M_CC_MEM, M_WAITOK);
2036b8d60729SRandall Stewart 		CC_LIST_RLOCK();
2037b8d60729SRandall Stewart 		STAILQ_FOREACH(algo, &cc_list, entries)
2038b8d60729SRandall Stewart 			if (strncmp(buf, algo->name,
2039b8d60729SRandall Stewart 				    TCP_CA_NAME_MAX) == 0)
2040b8d60729SRandall Stewart 				break;
2041b8d60729SRandall Stewart 		if (algo == NULL) {
2042b8d60729SRandall Stewart 			if (ptr)
2043b8d60729SRandall Stewart 				free(ptr, M_CC_MEM);
2044b8d60729SRandall Stewart 			CC_LIST_RUNLOCK();
2045b8d60729SRandall Stewart 			return(ESRCH);
2046b8d60729SRandall Stewart 		}
2047b8d60729SRandall Stewart 	} else {
2048b8d60729SRandall Stewart no_mem_needed:
2049b8d60729SRandall Stewart 		mem_sz = 0;
2050b8d60729SRandall Stewart 		ptr = NULL;
2051b8d60729SRandall Stewart 	}
2052b8d60729SRandall Stewart 	/*
2053b8d60729SRandall Stewart 	 * Make sure its all clean and zero and also get
2054b8d60729SRandall Stewart 	 * back the inplock.
2055b8d60729SRandall Stewart 	 */
2056b8d60729SRandall Stewart 	memset(&cc_mem, 0, sizeof(cc_mem));
2057b8d60729SRandall Stewart 	if (mem_sz != (*algo->cc_data_sz)()) {
2058b8d60729SRandall Stewart 		if (ptr)
2059b8d60729SRandall Stewart 			free(ptr, M_CC_MEM);
2060b8d60729SRandall Stewart 		goto do_over;
2061b8d60729SRandall Stewart 	}
2062df07bfdaSMichael Tuexen 	INP_WLOCK(inp);
2063df07bfdaSMichael Tuexen 	if (inp->inp_flags & (INP_TIMEWAIT | INP_DROPPED)) {
2064df07bfdaSMichael Tuexen 		INP_WUNLOCK(inp);
2065df07bfdaSMichael Tuexen 		CC_LIST_RUNLOCK();
2066df07bfdaSMichael Tuexen 		free(ptr, M_CC_MEM);
2067df07bfdaSMichael Tuexen 		return (ECONNRESET);
2068df07bfdaSMichael Tuexen 	}
2069df07bfdaSMichael Tuexen 	tp = intotcpcb(inp);
2070df07bfdaSMichael Tuexen 	if (ptr != NULL)
2071b8d60729SRandall Stewart 		memset(ptr, 0, mem_sz);
2072b8d60729SRandall Stewart 	CC_LIST_RUNLOCK();
2073b8d60729SRandall Stewart 	cc_mem.ccvc.tcp = tp;
2074b8d60729SRandall Stewart 	/*
2075b8d60729SRandall Stewart 	 * We once again hold a write lock over the tcb so it's
2076b8d60729SRandall Stewart 	 * safe to do these things without ordering concerns.
2077b8d60729SRandall Stewart 	 * Note here we init into stack memory.
2078b8d60729SRandall Stewart 	 */
2079b8d60729SRandall Stewart 	if (algo->cb_init != NULL)
2080b8d60729SRandall Stewart 		error = algo->cb_init(&cc_mem, ptr);
2081b8d60729SRandall Stewart 	else
2082b8d60729SRandall Stewart 		error = 0;
2083b8d60729SRandall Stewart 	/*
2084b8d60729SRandall Stewart 	 * The CC algorithms, when given their memory
2085b8d60729SRandall Stewart 	 * should not fail we could in theory have a
2086b8d60729SRandall Stewart 	 * KASSERT here.
2087b8d60729SRandall Stewart 	 */
2088b8d60729SRandall Stewart 	if (error == 0) {
2089b8d60729SRandall Stewart 		/*
2090b8d60729SRandall Stewart 		 * Touchdown, lets go ahead and move the
2091b8d60729SRandall Stewart 		 * connection to the new CC module by
2092b8d60729SRandall Stewart 		 * copying in the cc_mem after we call
2093b8d60729SRandall Stewart 		 * the old ones cleanup (if any).
2094b8d60729SRandall Stewart 		 */
2095b8d60729SRandall Stewart 		if (CC_ALGO(tp)->cb_destroy != NULL)
2096b8d60729SRandall Stewart 			CC_ALGO(tp)->cb_destroy(tp->ccv);
2097b8d60729SRandall Stewart 		memcpy(tp->ccv, &cc_mem, sizeof(struct cc_var));
2098b8d60729SRandall Stewart 		tp->cc_algo = algo;
2099b8d60729SRandall Stewart 		/* Ok now are we where we have gotten past any conn_init? */
2100b8d60729SRandall Stewart 		if (TCPS_HAVEESTABLISHED(tp->t_state) && (CC_ALGO(tp)->conn_init != NULL)) {
2101b8d60729SRandall Stewart 			/* Yep run the connection init for the new CC */
2102b8d60729SRandall Stewart 			CC_ALGO(tp)->conn_init(tp->ccv);
2103b8d60729SRandall Stewart 		}
2104b8d60729SRandall Stewart 	} else if (ptr)
2105b8d60729SRandall Stewart 		free(ptr, M_CC_MEM);
2106b8d60729SRandall Stewart 	INP_WUNLOCK(inp);
2107b8d60729SRandall Stewart 	return (error);
2108b8d60729SRandall Stewart }
2109b8d60729SRandall Stewart 
211055bceb1eSRandall Stewart int
211155bceb1eSRandall Stewart tcp_default_ctloutput(struct socket *so, struct sockopt *sopt, struct inpcb *inp, struct tcpcb *tp)
211255bceb1eSRandall Stewart {
211355bceb1eSRandall Stewart 	int	error, opt, optval;
211455bceb1eSRandall Stewart 	u_int	ui;
211555bceb1eSRandall Stewart 	struct	tcp_info ti;
2116b2e60773SJohn Baldwin #ifdef KERN_TLS
2117b2e60773SJohn Baldwin 	struct tls_enable tls;
2118b2e60773SJohn Baldwin #endif
21192529f56eSJonathan T. Looney 	char	*pbuf, buf[TCP_LOG_ID_LEN];
2120adc56f5aSEdward Tomasz Napierala #ifdef STATS
2121adc56f5aSEdward Tomasz Napierala 	struct statsblob *sbp;
2122adc56f5aSEdward Tomasz Napierala #endif
2123af6fef3aSGleb Smirnoff 	size_t	len;
2124df8bae1dSRodney W. Grimes 
2125f581a26eSGleb Smirnoff 	INP_WLOCK_ASSERT(inp);
2126f581a26eSGleb Smirnoff 
2127f581a26eSGleb Smirnoff 	switch (sopt->sopt_level) {
2128f581a26eSGleb Smirnoff #ifdef INET6
2129f581a26eSGleb Smirnoff 	case IPPROTO_IPV6:
2130f581a26eSGleb Smirnoff 		MPASS(inp->inp_vflag & INP_IPV6PROTO);
2131f581a26eSGleb Smirnoff 		switch (sopt->sopt_name) {
2132f581a26eSGleb Smirnoff 		case IPV6_USE_MIN_MTU:
2133f581a26eSGleb Smirnoff 			tcp6_use_min_mtu(tp);
2134f581a26eSGleb Smirnoff 			/* FALLTHROUGH */
2135f581a26eSGleb Smirnoff 		}
2136f581a26eSGleb Smirnoff 		INP_WUNLOCK(inp);
2137f581a26eSGleb Smirnoff 		return (0);
2138f581a26eSGleb Smirnoff #endif
2139f581a26eSGleb Smirnoff #ifdef INET
2140f581a26eSGleb Smirnoff 	case IPPROTO_IP:
2141f581a26eSGleb Smirnoff 		INP_WUNLOCK(inp);
2142f581a26eSGleb Smirnoff 		return (0);
2143f581a26eSGleb Smirnoff #endif
2144f581a26eSGleb Smirnoff 	}
2145f581a26eSGleb Smirnoff 
2146d519cedbSGleb Smirnoff 	/*
2147d519cedbSGleb Smirnoff 	 * For TCP_CCALGOOPT forward the control to CC module, for both
2148d519cedbSGleb Smirnoff 	 * SOPT_SET and SOPT_GET.
2149d519cedbSGleb Smirnoff 	 */
2150d519cedbSGleb Smirnoff 	switch (sopt->sopt_name) {
2151d519cedbSGleb Smirnoff 	case TCP_CCALGOOPT:
2152d519cedbSGleb Smirnoff 		INP_WUNLOCK(inp);
2153c8b53cedSMichael Tuexen 		if (sopt->sopt_valsize > CC_ALGOOPT_LIMIT)
2154c8b53cedSMichael Tuexen 			return (EINVAL);
2155af6fef3aSGleb Smirnoff 		pbuf = malloc(sopt->sopt_valsize, M_TEMP, M_WAITOK | M_ZERO);
2156af6fef3aSGleb Smirnoff 		error = sooptcopyin(sopt, pbuf, sopt->sopt_valsize,
2157d519cedbSGleb Smirnoff 		    sopt->sopt_valsize);
2158d519cedbSGleb Smirnoff 		if (error) {
2159af6fef3aSGleb Smirnoff 			free(pbuf, M_TEMP);
2160d519cedbSGleb Smirnoff 			return (error);
2161d519cedbSGleb Smirnoff 		}
2162bac5bedfSConrad Meyer 		INP_WLOCK_RECHECK_CLEANUP(inp, free(pbuf, M_TEMP));
2163d519cedbSGleb Smirnoff 		if (CC_ALGO(tp)->ctl_output != NULL)
2164af6fef3aSGleb Smirnoff 			error = CC_ALGO(tp)->ctl_output(tp->ccv, sopt, pbuf);
2165d519cedbSGleb Smirnoff 		else
2166d519cedbSGleb Smirnoff 			error = ENOENT;
2167d519cedbSGleb Smirnoff 		INP_WUNLOCK(inp);
2168d519cedbSGleb Smirnoff 		if (error == 0 && sopt->sopt_dir == SOPT_GET)
2169af6fef3aSGleb Smirnoff 			error = sooptcopyout(sopt, pbuf, sopt->sopt_valsize);
2170af6fef3aSGleb Smirnoff 		free(pbuf, M_TEMP);
2171d519cedbSGleb Smirnoff 		return (error);
2172d519cedbSGleb Smirnoff 	}
2173d519cedbSGleb Smirnoff 
2174cfe8b629SGarrett Wollman 	switch (sopt->sopt_dir) {
2175cfe8b629SGarrett Wollman 	case SOPT_SET:
2176cfe8b629SGarrett Wollman 		switch (sopt->sopt_name) {
2177fcf59617SAndrey V. Elsukov #if defined(IPSEC_SUPPORT) || defined(TCP_SIGNATURE)
217888f6b043SBruce M Simpson 		case TCP_MD5SIG:
2179fcf59617SAndrey V. Elsukov 			if (!TCPMD5_ENABLED()) {
21808501a69cSRobert Watson 				INP_WUNLOCK(inp);
2181fcf59617SAndrey V. Elsukov 				return (ENOPROTOOPT);
2182fcf59617SAndrey V. Elsukov 			}
2183fcf59617SAndrey V. Elsukov 			error = TCPMD5_PCBCTL(inp, sopt);
21841cfd4b53SBruce M Simpson 			if (error)
21851e8f5ffaSRobert Watson 				return (error);
218609fe6320SNavdeep Parhar 			goto unlock_and_done;
2187fcf59617SAndrey V. Elsukov #endif /* IPSEC */
218809fe6320SNavdeep Parhar 
2189df8bae1dSRodney W. Grimes 		case TCP_NODELAY:
2190cfe8b629SGarrett Wollman 		case TCP_NOOPT:
21910471a8c7SRichard Scheffenegger 		case TCP_LRD:
21928501a69cSRobert Watson 			INP_WUNLOCK(inp);
2193cfe8b629SGarrett Wollman 			error = sooptcopyin(sopt, &optval, sizeof optval,
2194cfe8b629SGarrett Wollman 			    sizeof optval);
2195cfe8b629SGarrett Wollman 			if (error)
21961e8f5ffaSRobert Watson 				return (error);
2197cfe8b629SGarrett Wollman 
21988501a69cSRobert Watson 			INP_WLOCK_RECHECK(inp);
2199cfe8b629SGarrett Wollman 			switch (sopt->sopt_name) {
2200cfe8b629SGarrett Wollman 			case TCP_NODELAY:
2201cfe8b629SGarrett Wollman 				opt = TF_NODELAY;
2202cfe8b629SGarrett Wollman 				break;
2203cfe8b629SGarrett Wollman 			case TCP_NOOPT:
2204cfe8b629SGarrett Wollman 				opt = TF_NOOPT;
2205cfe8b629SGarrett Wollman 				break;
22060471a8c7SRichard Scheffenegger 			case TCP_LRD:
22070471a8c7SRichard Scheffenegger 				opt = TF_LRD;
22080471a8c7SRichard Scheffenegger 				break;
2209cfe8b629SGarrett Wollman 			default:
2210cfe8b629SGarrett Wollman 				opt = 0; /* dead code to fool gcc */
2211cfe8b629SGarrett Wollman 				break;
2212cfe8b629SGarrett Wollman 			}
2213cfe8b629SGarrett Wollman 
2214cfe8b629SGarrett Wollman 			if (optval)
2215cfe8b629SGarrett Wollman 				tp->t_flags |= opt;
2216df8bae1dSRodney W. Grimes 			else
2217cfe8b629SGarrett Wollman 				tp->t_flags &= ~opt;
221809fe6320SNavdeep Parhar unlock_and_done:
221909fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
222009fe6320SNavdeep Parhar 			if (tp->t_flags & TF_TOE) {
222109fe6320SNavdeep Parhar 				tcp_offload_ctloutput(tp, sopt->sopt_dir,
222209fe6320SNavdeep Parhar 				    sopt->sopt_name);
222309fe6320SNavdeep Parhar 			}
222409fe6320SNavdeep Parhar #endif
22258501a69cSRobert Watson 			INP_WUNLOCK(inp);
2226df8bae1dSRodney W. Grimes 			break;
2227df8bae1dSRodney W. Grimes 
2228007581c0SJonathan Lemon 		case TCP_NOPUSH:
22298501a69cSRobert Watson 			INP_WUNLOCK(inp);
2230007581c0SJonathan Lemon 			error = sooptcopyin(sopt, &optval, sizeof optval,
2231007581c0SJonathan Lemon 			    sizeof optval);
2232007581c0SJonathan Lemon 			if (error)
22331e8f5ffaSRobert Watson 				return (error);
2234007581c0SJonathan Lemon 
22358501a69cSRobert Watson 			INP_WLOCK_RECHECK(inp);
2236007581c0SJonathan Lemon 			if (optval)
2237007581c0SJonathan Lemon 				tp->t_flags |= TF_NOPUSH;
2238d28b9e89SJohn Baldwin 			else if (tp->t_flags & TF_NOPUSH) {
2239007581c0SJonathan Lemon 				tp->t_flags &= ~TF_NOPUSH;
2240109eb549SGleb Smirnoff 				if (TCPS_HAVEESTABLISHED(tp->t_state)) {
2241109eb549SGleb Smirnoff 					struct epoch_tracker et;
2242109eb549SGleb Smirnoff 
2243109eb549SGleb Smirnoff 					NET_EPOCH_ENTER(et);
2244f64dc2abSGleb Smirnoff 					error = tcp_output_nodrop(tp);
2245109eb549SGleb Smirnoff 					NET_EPOCH_EXIT(et);
2246109eb549SGleb Smirnoff 				}
2247007581c0SJonathan Lemon 			}
224809fe6320SNavdeep Parhar 			goto unlock_and_done;
2249007581c0SJonathan Lemon 
22509e644c23SMichael Tuexen 		case TCP_REMOTE_UDP_ENCAPS_PORT:
22519e644c23SMichael Tuexen 			INP_WUNLOCK(inp);
22529e644c23SMichael Tuexen 			error = sooptcopyin(sopt, &optval, sizeof optval,
22539e644c23SMichael Tuexen 			    sizeof optval);
22549e644c23SMichael Tuexen 			if (error)
22559e644c23SMichael Tuexen 				return (error);
22569e644c23SMichael Tuexen 			if ((optval < TCP_TUNNELING_PORT_MIN) ||
22579e644c23SMichael Tuexen 			    (optval > TCP_TUNNELING_PORT_MAX)) {
22589e644c23SMichael Tuexen 				/* Its got to be in range */
22599e644c23SMichael Tuexen 				return (EINVAL);
22609e644c23SMichael Tuexen 			}
22619e644c23SMichael Tuexen 			if ((V_tcp_udp_tunneling_port == 0) && (optval != 0)) {
22629e644c23SMichael Tuexen 				/* You have to have enabled a UDP tunneling port first */
22639e644c23SMichael Tuexen 				return (EINVAL);
22649e644c23SMichael Tuexen 			}
22659e644c23SMichael Tuexen 			INP_WLOCK_RECHECK(inp);
22669e644c23SMichael Tuexen 			if (tp->t_state != TCPS_CLOSED) {
22679e644c23SMichael Tuexen 				/* You can't change after you are connected */
22689e644c23SMichael Tuexen 				error = EINVAL;
22699e644c23SMichael Tuexen 			} else {
22709e644c23SMichael Tuexen 				/* Ok we are all good set the port */
22719e644c23SMichael Tuexen 				tp->t_port = htons(optval);
22729e644c23SMichael Tuexen 			}
22739e644c23SMichael Tuexen 			goto unlock_and_done;
22749e644c23SMichael Tuexen 
2275df8bae1dSRodney W. Grimes 		case TCP_MAXSEG:
22768501a69cSRobert Watson 			INP_WUNLOCK(inp);
2277cfe8b629SGarrett Wollman 			error = sooptcopyin(sopt, &optval, sizeof optval,
2278cfe8b629SGarrett Wollman 			    sizeof optval);
2279cfe8b629SGarrett Wollman 			if (error)
22801e8f5ffaSRobert Watson 				return (error);
2281df8bae1dSRodney W. Grimes 
22828501a69cSRobert Watson 			INP_WLOCK_RECHECK(inp);
228353369ac9SAndre Oppermann 			if (optval > 0 && optval <= tp->t_maxseg &&
2284603724d3SBjoern A. Zeeb 			    optval + 40 >= V_tcp_minmss)
2285cfe8b629SGarrett Wollman 				tp->t_maxseg = optval;
2286a0292f23SGarrett Wollman 			else
2287a0292f23SGarrett Wollman 				error = EINVAL;
228809fe6320SNavdeep Parhar 			goto unlock_and_done;
2289a0292f23SGarrett Wollman 
2290b8af5dfaSRobert Watson 		case TCP_INFO:
22918501a69cSRobert Watson 			INP_WUNLOCK(inp);
2292b8af5dfaSRobert Watson 			error = EINVAL;
2293b8af5dfaSRobert Watson 			break;
2294b8af5dfaSRobert Watson 
2295adc56f5aSEdward Tomasz Napierala 		case TCP_STATS:
2296adc56f5aSEdward Tomasz Napierala 			INP_WUNLOCK(inp);
2297adc56f5aSEdward Tomasz Napierala #ifdef STATS
2298adc56f5aSEdward Tomasz Napierala 			error = sooptcopyin(sopt, &optval, sizeof optval,
2299adc56f5aSEdward Tomasz Napierala 			    sizeof optval);
2300adc56f5aSEdward Tomasz Napierala 			if (error)
2301adc56f5aSEdward Tomasz Napierala 				return (error);
2302adc56f5aSEdward Tomasz Napierala 
2303adc56f5aSEdward Tomasz Napierala 			if (optval > 0)
2304adc56f5aSEdward Tomasz Napierala 				sbp = stats_blob_alloc(
2305adc56f5aSEdward Tomasz Napierala 				    V_tcp_perconn_stats_dflt_tpl, 0);
2306adc56f5aSEdward Tomasz Napierala 			else
2307adc56f5aSEdward Tomasz Napierala 				sbp = NULL;
2308adc56f5aSEdward Tomasz Napierala 
2309adc56f5aSEdward Tomasz Napierala 			INP_WLOCK_RECHECK(inp);
2310adc56f5aSEdward Tomasz Napierala 			if ((tp->t_stats != NULL && sbp == NULL) ||
2311adc56f5aSEdward Tomasz Napierala 			    (tp->t_stats == NULL && sbp != NULL)) {
2312adc56f5aSEdward Tomasz Napierala 				struct statsblob *t = tp->t_stats;
2313adc56f5aSEdward Tomasz Napierala 				tp->t_stats = sbp;
2314adc56f5aSEdward Tomasz Napierala 				sbp = t;
2315adc56f5aSEdward Tomasz Napierala 			}
2316adc56f5aSEdward Tomasz Napierala 			INP_WUNLOCK(inp);
2317adc56f5aSEdward Tomasz Napierala 
2318adc56f5aSEdward Tomasz Napierala 			stats_blob_destroy(sbp);
2319adc56f5aSEdward Tomasz Napierala #else
2320adc56f5aSEdward Tomasz Napierala 			return (EOPNOTSUPP);
2321adc56f5aSEdward Tomasz Napierala #endif /* !STATS */
2322adc56f5aSEdward Tomasz Napierala 			break;
2323adc56f5aSEdward Tomasz Napierala 
2324dbc42409SLawrence Stewart 		case TCP_CONGESTION:
2325b8d60729SRandall Stewart 			error = tcp_congestion(so, sopt, inp, tp);
232673e263b1SGleb Smirnoff 			break;
2327dbc42409SLawrence Stewart 
2328a034518aSAndrew Gallatin 		case TCP_REUSPORT_LB_NUMA:
2329a034518aSAndrew Gallatin 			INP_WUNLOCK(inp);
2330a034518aSAndrew Gallatin 			error = sooptcopyin(sopt, &optval, sizeof(optval),
2331a034518aSAndrew Gallatin 			    sizeof(optval));
2332a034518aSAndrew Gallatin 			INP_WLOCK_RECHECK(inp);
2333a034518aSAndrew Gallatin 			if (!error)
2334a034518aSAndrew Gallatin 				error = in_pcblbgroup_numa(inp, optval);
2335a034518aSAndrew Gallatin 			INP_WUNLOCK(inp);
2336a034518aSAndrew Gallatin 			break;
2337a034518aSAndrew Gallatin 
2338b2e60773SJohn Baldwin #ifdef KERN_TLS
2339b2e60773SJohn Baldwin 		case TCP_TXTLS_ENABLE:
2340b2e60773SJohn Baldwin 			INP_WUNLOCK(inp);
2341ec1db6e1SJohn Baldwin 			error = copyin_tls_enable(sopt, &tls);
2342b2e60773SJohn Baldwin 			if (error)
2343b2e60773SJohn Baldwin 				break;
2344b2e60773SJohn Baldwin 			error = ktls_enable_tx(so, &tls);
2345b2e60773SJohn Baldwin 			break;
2346b2e60773SJohn Baldwin 		case TCP_TXTLS_MODE:
2347b2e60773SJohn Baldwin 			INP_WUNLOCK(inp);
2348b2e60773SJohn Baldwin 			error = sooptcopyin(sopt, &ui, sizeof(ui), sizeof(ui));
2349b2e60773SJohn Baldwin 			if (error)
2350b2e60773SJohn Baldwin 				return (error);
2351b2e60773SJohn Baldwin 
2352b2e60773SJohn Baldwin 			INP_WLOCK_RECHECK(inp);
2353b2e60773SJohn Baldwin 			error = ktls_set_tx_mode(so, ui);
2354b2e60773SJohn Baldwin 			INP_WUNLOCK(inp);
2355b2e60773SJohn Baldwin 			break;
2356f1f93475SJohn Baldwin 		case TCP_RXTLS_ENABLE:
2357f1f93475SJohn Baldwin 			INP_WUNLOCK(inp);
2358f1f93475SJohn Baldwin 			error = sooptcopyin(sopt, &tls, sizeof(tls),
2359f1f93475SJohn Baldwin 			    sizeof(tls));
2360f1f93475SJohn Baldwin 			if (error)
2361f1f93475SJohn Baldwin 				break;
2362f1f93475SJohn Baldwin 			error = ktls_enable_rx(so, &tls);
2363f1f93475SJohn Baldwin 			break;
2364b2e60773SJohn Baldwin #endif
2365b2e60773SJohn Baldwin 
23669077f387SGleb Smirnoff 		case TCP_KEEPIDLE:
23679077f387SGleb Smirnoff 		case TCP_KEEPINTVL:
23689077f387SGleb Smirnoff 		case TCP_KEEPINIT:
23699077f387SGleb Smirnoff 			INP_WUNLOCK(inp);
23709077f387SGleb Smirnoff 			error = sooptcopyin(sopt, &ui, sizeof(ui), sizeof(ui));
23719077f387SGleb Smirnoff 			if (error)
23729077f387SGleb Smirnoff 				return (error);
23739077f387SGleb Smirnoff 
23749077f387SGleb Smirnoff 			if (ui > (UINT_MAX / hz)) {
23759077f387SGleb Smirnoff 				error = EINVAL;
23769077f387SGleb Smirnoff 				break;
23779077f387SGleb Smirnoff 			}
23789077f387SGleb Smirnoff 			ui *= hz;
23799077f387SGleb Smirnoff 
23809077f387SGleb Smirnoff 			INP_WLOCK_RECHECK(inp);
23819077f387SGleb Smirnoff 			switch (sopt->sopt_name) {
23829077f387SGleb Smirnoff 			case TCP_KEEPIDLE:
23839077f387SGleb Smirnoff 				tp->t_keepidle = ui;
23849077f387SGleb Smirnoff 				/*
23859077f387SGleb Smirnoff 				 * XXX: better check current remaining
23869077f387SGleb Smirnoff 				 * timeout and "merge" it with new value.
23879077f387SGleb Smirnoff 				 */
23889077f387SGleb Smirnoff 				if ((tp->t_state > TCPS_LISTEN) &&
23899077f387SGleb Smirnoff 				    (tp->t_state <= TCPS_CLOSING))
23909077f387SGleb Smirnoff 					tcp_timer_activate(tp, TT_KEEP,
23919077f387SGleb Smirnoff 					    TP_KEEPIDLE(tp));
23929077f387SGleb Smirnoff 				break;
23939077f387SGleb Smirnoff 			case TCP_KEEPINTVL:
23949077f387SGleb Smirnoff 				tp->t_keepintvl = ui;
23959077f387SGleb Smirnoff 				if ((tp->t_state == TCPS_FIN_WAIT_2) &&
23969077f387SGleb Smirnoff 				    (TP_MAXIDLE(tp) > 0))
23979077f387SGleb Smirnoff 					tcp_timer_activate(tp, TT_2MSL,
23989077f387SGleb Smirnoff 					    TP_MAXIDLE(tp));
23999077f387SGleb Smirnoff 				break;
24009077f387SGleb Smirnoff 			case TCP_KEEPINIT:
24019077f387SGleb Smirnoff 				tp->t_keepinit = ui;
24029077f387SGleb Smirnoff 				if (tp->t_state == TCPS_SYN_RECEIVED ||
24039077f387SGleb Smirnoff 				    tp->t_state == TCPS_SYN_SENT)
24049077f387SGleb Smirnoff 					tcp_timer_activate(tp, TT_KEEP,
24059077f387SGleb Smirnoff 					    TP_KEEPINIT(tp));
24069077f387SGleb Smirnoff 				break;
24079077f387SGleb Smirnoff 			}
240809fe6320SNavdeep Parhar 			goto unlock_and_done;
24099077f387SGleb Smirnoff 
241085c05144SGleb Smirnoff 		case TCP_KEEPCNT:
241185c05144SGleb Smirnoff 			INP_WUNLOCK(inp);
241285c05144SGleb Smirnoff 			error = sooptcopyin(sopt, &ui, sizeof(ui), sizeof(ui));
241385c05144SGleb Smirnoff 			if (error)
241485c05144SGleb Smirnoff 				return (error);
241585c05144SGleb Smirnoff 
241685c05144SGleb Smirnoff 			INP_WLOCK_RECHECK(inp);
241785c05144SGleb Smirnoff 			tp->t_keepcnt = ui;
241885c05144SGleb Smirnoff 			if ((tp->t_state == TCPS_FIN_WAIT_2) &&
241985c05144SGleb Smirnoff 			    (TP_MAXIDLE(tp) > 0))
242085c05144SGleb Smirnoff 				tcp_timer_activate(tp, TT_2MSL,
242185c05144SGleb Smirnoff 				    TP_MAXIDLE(tp));
242285c05144SGleb Smirnoff 			goto unlock_and_done;
242385c05144SGleb Smirnoff 
242486a996e6SHiren Panchasara #ifdef TCPPCAP
242586a996e6SHiren Panchasara 		case TCP_PCAP_OUT:
242686a996e6SHiren Panchasara 		case TCP_PCAP_IN:
242786a996e6SHiren Panchasara 			INP_WUNLOCK(inp);
242886a996e6SHiren Panchasara 			error = sooptcopyin(sopt, &optval, sizeof optval,
242986a996e6SHiren Panchasara 			    sizeof optval);
243086a996e6SHiren Panchasara 			if (error)
243186a996e6SHiren Panchasara 				return (error);
243286a996e6SHiren Panchasara 
243386a996e6SHiren Panchasara 			INP_WLOCK_RECHECK(inp);
243486a996e6SHiren Panchasara 			if (optval >= 0)
243586a996e6SHiren Panchasara 				tcp_pcap_set_sock_max(TCP_PCAP_OUT ?
243686a996e6SHiren Panchasara 					&(tp->t_outpkts) : &(tp->t_inpkts),
243786a996e6SHiren Panchasara 					optval);
243886a996e6SHiren Panchasara 			else
243986a996e6SHiren Panchasara 				error = EINVAL;
244086a996e6SHiren Panchasara 			goto unlock_and_done;
244186a996e6SHiren Panchasara #endif
244286a996e6SHiren Panchasara 
2443c560df6fSPatrick Kelsey 		case TCP_FASTOPEN: {
2444c560df6fSPatrick Kelsey 			struct tcp_fastopen tfo_optval;
2445c560df6fSPatrick Kelsey 
2446281a0fd4SPatrick Kelsey 			INP_WUNLOCK(inp);
2447c560df6fSPatrick Kelsey 			if (!V_tcp_fastopen_client_enable &&
2448c560df6fSPatrick Kelsey 			    !V_tcp_fastopen_server_enable)
2449281a0fd4SPatrick Kelsey 				return (EPERM);
2450281a0fd4SPatrick Kelsey 
2451c560df6fSPatrick Kelsey 			error = sooptcopyin(sopt, &tfo_optval,
2452c560df6fSPatrick Kelsey 				    sizeof(tfo_optval), sizeof(int));
2453281a0fd4SPatrick Kelsey 			if (error)
2454281a0fd4SPatrick Kelsey 				return (error);
2455281a0fd4SPatrick Kelsey 
2456281a0fd4SPatrick Kelsey 			INP_WLOCK_RECHECK(inp);
2457d442a657SMichael Tuexen 			if ((tp->t_state != TCPS_CLOSED) &&
2458d442a657SMichael Tuexen 			    (tp->t_state != TCPS_LISTEN)) {
2459d442a657SMichael Tuexen 				error = EINVAL;
2460d442a657SMichael Tuexen 				goto unlock_and_done;
2461d442a657SMichael Tuexen 			}
2462c560df6fSPatrick Kelsey 			if (tfo_optval.enable) {
2463c560df6fSPatrick Kelsey 				if (tp->t_state == TCPS_LISTEN) {
2464c560df6fSPatrick Kelsey 					if (!V_tcp_fastopen_server_enable) {
2465c560df6fSPatrick Kelsey 						error = EPERM;
2466c560df6fSPatrick Kelsey 						goto unlock_and_done;
2467c560df6fSPatrick Kelsey 					}
2468c560df6fSPatrick Kelsey 
2469c560df6fSPatrick Kelsey 					if (tp->t_tfo_pending == NULL)
2470281a0fd4SPatrick Kelsey 						tp->t_tfo_pending =
2471281a0fd4SPatrick Kelsey 						    tcp_fastopen_alloc_counter();
2472c560df6fSPatrick Kelsey 				} else {
2473c560df6fSPatrick Kelsey 					/*
2474c560df6fSPatrick Kelsey 					 * If a pre-shared key was provided,
2475c560df6fSPatrick Kelsey 					 * stash it in the client cookie
2476c560df6fSPatrick Kelsey 					 * field of the tcpcb for use during
2477c560df6fSPatrick Kelsey 					 * connect.
2478c560df6fSPatrick Kelsey 					 */
2479c560df6fSPatrick Kelsey 					if (sopt->sopt_valsize ==
2480c560df6fSPatrick Kelsey 					    sizeof(tfo_optval)) {
2481c560df6fSPatrick Kelsey 						memcpy(tp->t_tfo_cookie.client,
2482c560df6fSPatrick Kelsey 						       tfo_optval.psk,
2483c560df6fSPatrick Kelsey 						       TCP_FASTOPEN_PSK_LEN);
2484c560df6fSPatrick Kelsey 						tp->t_tfo_client_cookie_len =
2485c560df6fSPatrick Kelsey 						    TCP_FASTOPEN_PSK_LEN;
2486c560df6fSPatrick Kelsey 					}
2487c560df6fSPatrick Kelsey 				}
2488d442a657SMichael Tuexen 				tp->t_flags |= TF_FASTOPEN;
2489281a0fd4SPatrick Kelsey 			} else
2490281a0fd4SPatrick Kelsey 				tp->t_flags &= ~TF_FASTOPEN;
2491281a0fd4SPatrick Kelsey 			goto unlock_and_done;
2492c560df6fSPatrick Kelsey 		}
2493281a0fd4SPatrick Kelsey 
2494e24e5683SJonathan T. Looney #ifdef TCP_BLACKBOX
24952529f56eSJonathan T. Looney 		case TCP_LOG:
24962529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
24972529f56eSJonathan T. Looney 			error = sooptcopyin(sopt, &optval, sizeof optval,
24982529f56eSJonathan T. Looney 			    sizeof optval);
24992529f56eSJonathan T. Looney 			if (error)
25002529f56eSJonathan T. Looney 				return (error);
25012529f56eSJonathan T. Looney 
25022529f56eSJonathan T. Looney 			INP_WLOCK_RECHECK(inp);
25032529f56eSJonathan T. Looney 			error = tcp_log_state_change(tp, optval);
25042529f56eSJonathan T. Looney 			goto unlock_and_done;
25052529f56eSJonathan T. Looney 
25062529f56eSJonathan T. Looney 		case TCP_LOGBUF:
25072529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
25082529f56eSJonathan T. Looney 			error = EINVAL;
25092529f56eSJonathan T. Looney 			break;
25102529f56eSJonathan T. Looney 
25112529f56eSJonathan T. Looney 		case TCP_LOGID:
25122529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
25132529f56eSJonathan T. Looney 			error = sooptcopyin(sopt, buf, TCP_LOG_ID_LEN - 1, 0);
25142529f56eSJonathan T. Looney 			if (error)
25152529f56eSJonathan T. Looney 				break;
25162529f56eSJonathan T. Looney 			buf[sopt->sopt_valsize] = '\0';
25172529f56eSJonathan T. Looney 			INP_WLOCK_RECHECK(inp);
25182529f56eSJonathan T. Looney 			error = tcp_log_set_id(tp, buf);
25192529f56eSJonathan T. Looney 			/* tcp_log_set_id() unlocks the INP. */
25202529f56eSJonathan T. Looney 			break;
25212529f56eSJonathan T. Looney 
25222529f56eSJonathan T. Looney 		case TCP_LOGDUMP:
25232529f56eSJonathan T. Looney 		case TCP_LOGDUMPID:
25242529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
25252529f56eSJonathan T. Looney 			error =
25262529f56eSJonathan T. Looney 			    sooptcopyin(sopt, buf, TCP_LOG_REASON_LEN - 1, 0);
25272529f56eSJonathan T. Looney 			if (error)
25282529f56eSJonathan T. Looney 				break;
25292529f56eSJonathan T. Looney 			buf[sopt->sopt_valsize] = '\0';
25302529f56eSJonathan T. Looney 			INP_WLOCK_RECHECK(inp);
25312529f56eSJonathan T. Looney 			if (sopt->sopt_name == TCP_LOGDUMP) {
25322529f56eSJonathan T. Looney 				error = tcp_log_dump_tp_logbuf(tp, buf,
25332529f56eSJonathan T. Looney 				    M_WAITOK, true);
25342529f56eSJonathan T. Looney 				INP_WUNLOCK(inp);
25352529f56eSJonathan T. Looney 			} else {
25362529f56eSJonathan T. Looney 				tcp_log_dump_tp_bucket_logbufs(tp, buf);
25372529f56eSJonathan T. Looney 				/*
25382529f56eSJonathan T. Looney 				 * tcp_log_dump_tp_bucket_logbufs() drops the
25392529f56eSJonathan T. Looney 				 * INP lock.
25402529f56eSJonathan T. Looney 				 */
25412529f56eSJonathan T. Looney 			}
25422529f56eSJonathan T. Looney 			break;
2543e24e5683SJonathan T. Looney #endif
25442529f56eSJonathan T. Looney 
2545df8bae1dSRodney W. Grimes 		default:
25468501a69cSRobert Watson 			INP_WUNLOCK(inp);
2547df8bae1dSRodney W. Grimes 			error = ENOPROTOOPT;
2548df8bae1dSRodney W. Grimes 			break;
2549df8bae1dSRodney W. Grimes 		}
2550df8bae1dSRodney W. Grimes 		break;
2551df8bae1dSRodney W. Grimes 
2552cfe8b629SGarrett Wollman 	case SOPT_GET:
25531e8f5ffaSRobert Watson 		tp = intotcpcb(inp);
2554cfe8b629SGarrett Wollman 		switch (sopt->sopt_name) {
2555fcf59617SAndrey V. Elsukov #if defined(IPSEC_SUPPORT) || defined(TCP_SIGNATURE)
255688f6b043SBruce M Simpson 		case TCP_MD5SIG:
2557fcf59617SAndrey V. Elsukov 			if (!TCPMD5_ENABLED()) {
25588501a69cSRobert Watson 				INP_WUNLOCK(inp);
2559fcf59617SAndrey V. Elsukov 				return (ENOPROTOOPT);
2560fcf59617SAndrey V. Elsukov 			}
2561fcf59617SAndrey V. Elsukov 			error = TCPMD5_PCBCTL(inp, sopt);
25621cfd4b53SBruce M Simpson 			break;
2563265ed012SBruce M Simpson #endif
25641e8f5ffaSRobert Watson 
2565df8bae1dSRodney W. Grimes 		case TCP_NODELAY:
2566cfe8b629SGarrett Wollman 			optval = tp->t_flags & TF_NODELAY;
25678501a69cSRobert Watson 			INP_WUNLOCK(inp);
2568b8af5dfaSRobert Watson 			error = sooptcopyout(sopt, &optval, sizeof optval);
2569df8bae1dSRodney W. Grimes 			break;
2570df8bae1dSRodney W. Grimes 		case TCP_MAXSEG:
2571cfe8b629SGarrett Wollman 			optval = tp->t_maxseg;
25728501a69cSRobert Watson 			INP_WUNLOCK(inp);
2573b8af5dfaSRobert Watson 			error = sooptcopyout(sopt, &optval, sizeof optval);
2574df8bae1dSRodney W. Grimes 			break;
25759e644c23SMichael Tuexen 		case TCP_REMOTE_UDP_ENCAPS_PORT:
25769e644c23SMichael Tuexen 			optval = ntohs(tp->t_port);
25779e644c23SMichael Tuexen 			INP_WUNLOCK(inp);
25789e644c23SMichael Tuexen 			error = sooptcopyout(sopt, &optval, sizeof optval);
25799e644c23SMichael Tuexen 			break;
2580a0292f23SGarrett Wollman 		case TCP_NOOPT:
2581cfe8b629SGarrett Wollman 			optval = tp->t_flags & TF_NOOPT;
25828501a69cSRobert Watson 			INP_WUNLOCK(inp);
2583b8af5dfaSRobert Watson 			error = sooptcopyout(sopt, &optval, sizeof optval);
2584a0292f23SGarrett Wollman 			break;
2585a0292f23SGarrett Wollman 		case TCP_NOPUSH:
2586cfe8b629SGarrett Wollman 			optval = tp->t_flags & TF_NOPUSH;
25878501a69cSRobert Watson 			INP_WUNLOCK(inp);
2588b8af5dfaSRobert Watson 			error = sooptcopyout(sopt, &optval, sizeof optval);
2589b8af5dfaSRobert Watson 			break;
2590b8af5dfaSRobert Watson 		case TCP_INFO:
2591b8af5dfaSRobert Watson 			tcp_fill_info(tp, &ti);
25928501a69cSRobert Watson 			INP_WUNLOCK(inp);
2593b8af5dfaSRobert Watson 			error = sooptcopyout(sopt, &ti, sizeof ti);
2594a0292f23SGarrett Wollman 			break;
2595adc56f5aSEdward Tomasz Napierala 		case TCP_STATS:
2596adc56f5aSEdward Tomasz Napierala 			{
2597adc56f5aSEdward Tomasz Napierala #ifdef STATS
2598adc56f5aSEdward Tomasz Napierala 			int nheld;
2599adc56f5aSEdward Tomasz Napierala 			TYPEOF_MEMBER(struct statsblob, flags) sbflags = 0;
2600adc56f5aSEdward Tomasz Napierala 
2601adc56f5aSEdward Tomasz Napierala 			error = 0;
2602adc56f5aSEdward Tomasz Napierala 			socklen_t outsbsz = sopt->sopt_valsize;
2603adc56f5aSEdward Tomasz Napierala 			if (tp->t_stats == NULL)
2604adc56f5aSEdward Tomasz Napierala 				error = ENOENT;
2605adc56f5aSEdward Tomasz Napierala 			else if (outsbsz >= tp->t_stats->cursz)
2606adc56f5aSEdward Tomasz Napierala 				outsbsz = tp->t_stats->cursz;
2607adc56f5aSEdward Tomasz Napierala 			else if (outsbsz >= sizeof(struct statsblob))
2608adc56f5aSEdward Tomasz Napierala 				outsbsz = sizeof(struct statsblob);
2609adc56f5aSEdward Tomasz Napierala 			else
2610adc56f5aSEdward Tomasz Napierala 				error = EINVAL;
2611adc56f5aSEdward Tomasz Napierala 			INP_WUNLOCK(inp);
2612adc56f5aSEdward Tomasz Napierala 			if (error)
2613adc56f5aSEdward Tomasz Napierala 				break;
2614adc56f5aSEdward Tomasz Napierala 
2615adc56f5aSEdward Tomasz Napierala 			sbp = sopt->sopt_val;
2616adc56f5aSEdward Tomasz Napierala 			nheld = atop(round_page(((vm_offset_t)sbp) +
2617adc56f5aSEdward Tomasz Napierala 			    (vm_size_t)outsbsz) - trunc_page((vm_offset_t)sbp));
2618adc56f5aSEdward Tomasz Napierala 			vm_page_t ma[nheld];
2619adc56f5aSEdward Tomasz Napierala 			if (vm_fault_quick_hold_pages(
2620adc56f5aSEdward Tomasz Napierala 			    &curproc->p_vmspace->vm_map, (vm_offset_t)sbp,
2621adc56f5aSEdward Tomasz Napierala 			    outsbsz, VM_PROT_READ | VM_PROT_WRITE, ma,
2622adc56f5aSEdward Tomasz Napierala 			    nheld) < 0) {
2623adc56f5aSEdward Tomasz Napierala 				error = EFAULT;
2624adc56f5aSEdward Tomasz Napierala 				break;
2625adc56f5aSEdward Tomasz Napierala 			}
2626adc56f5aSEdward Tomasz Napierala 
2627adc56f5aSEdward Tomasz Napierala 			if ((error = copyin_nofault(&(sbp->flags), &sbflags,
2628adc56f5aSEdward Tomasz Napierala 			    SIZEOF_MEMBER(struct statsblob, flags))))
2629adc56f5aSEdward Tomasz Napierala 				goto unhold;
2630adc56f5aSEdward Tomasz Napierala 
2631adc56f5aSEdward Tomasz Napierala 			INP_WLOCK_RECHECK(inp);
2632adc56f5aSEdward Tomasz Napierala 			error = stats_blob_snapshot(&sbp, outsbsz, tp->t_stats,
2633adc56f5aSEdward Tomasz Napierala 			    sbflags | SB_CLONE_USRDSTNOFAULT);
2634adc56f5aSEdward Tomasz Napierala 			INP_WUNLOCK(inp);
2635adc56f5aSEdward Tomasz Napierala 			sopt->sopt_valsize = outsbsz;
2636adc56f5aSEdward Tomasz Napierala unhold:
2637adc56f5aSEdward Tomasz Napierala 			vm_page_unhold_pages(ma, nheld);
2638adc56f5aSEdward Tomasz Napierala #else
2639adc56f5aSEdward Tomasz Napierala 			INP_WUNLOCK(inp);
2640adc56f5aSEdward Tomasz Napierala 			error = EOPNOTSUPP;
2641adc56f5aSEdward Tomasz Napierala #endif /* !STATS */
2642adc56f5aSEdward Tomasz Napierala 			break;
2643adc56f5aSEdward Tomasz Napierala 			}
2644dbc42409SLawrence Stewart 		case TCP_CONGESTION:
2645af6fef3aSGleb Smirnoff 			len = strlcpy(buf, CC_ALGO(tp)->name, TCP_CA_NAME_MAX);
2646dbc42409SLawrence Stewart 			INP_WUNLOCK(inp);
2647af6fef3aSGleb Smirnoff 			error = sooptcopyout(sopt, buf, len + 1);
2648dbc42409SLawrence Stewart 			break;
26492f3eb7f4SGleb Smirnoff 		case TCP_KEEPIDLE:
26502f3eb7f4SGleb Smirnoff 		case TCP_KEEPINTVL:
26512f3eb7f4SGleb Smirnoff 		case TCP_KEEPINIT:
26522f3eb7f4SGleb Smirnoff 		case TCP_KEEPCNT:
26532f3eb7f4SGleb Smirnoff 			switch (sopt->sopt_name) {
26542f3eb7f4SGleb Smirnoff 			case TCP_KEEPIDLE:
26555a17b6adSMichael Tuexen 				ui = TP_KEEPIDLE(tp) / hz;
26562f3eb7f4SGleb Smirnoff 				break;
26572f3eb7f4SGleb Smirnoff 			case TCP_KEEPINTVL:
26585a17b6adSMichael Tuexen 				ui = TP_KEEPINTVL(tp) / hz;
26592f3eb7f4SGleb Smirnoff 				break;
26602f3eb7f4SGleb Smirnoff 			case TCP_KEEPINIT:
26615a17b6adSMichael Tuexen 				ui = TP_KEEPINIT(tp) / hz;
26622f3eb7f4SGleb Smirnoff 				break;
26632f3eb7f4SGleb Smirnoff 			case TCP_KEEPCNT:
26645a17b6adSMichael Tuexen 				ui = TP_KEEPCNT(tp);
26652f3eb7f4SGleb Smirnoff 				break;
26662f3eb7f4SGleb Smirnoff 			}
26672f3eb7f4SGleb Smirnoff 			INP_WUNLOCK(inp);
26682f3eb7f4SGleb Smirnoff 			error = sooptcopyout(sopt, &ui, sizeof(ui));
26692f3eb7f4SGleb Smirnoff 			break;
267086a996e6SHiren Panchasara #ifdef TCPPCAP
267186a996e6SHiren Panchasara 		case TCP_PCAP_OUT:
267286a996e6SHiren Panchasara 		case TCP_PCAP_IN:
267386a996e6SHiren Panchasara 			optval = tcp_pcap_get_sock_max(TCP_PCAP_OUT ?
267486a996e6SHiren Panchasara 					&(tp->t_outpkts) : &(tp->t_inpkts));
267586a996e6SHiren Panchasara 			INP_WUNLOCK(inp);
267686a996e6SHiren Panchasara 			error = sooptcopyout(sopt, &optval, sizeof optval);
267786a996e6SHiren Panchasara 			break;
267886a996e6SHiren Panchasara #endif
2679281a0fd4SPatrick Kelsey 		case TCP_FASTOPEN:
2680281a0fd4SPatrick Kelsey 			optval = tp->t_flags & TF_FASTOPEN;
2681281a0fd4SPatrick Kelsey 			INP_WUNLOCK(inp);
2682281a0fd4SPatrick Kelsey 			error = sooptcopyout(sopt, &optval, sizeof optval);
2683281a0fd4SPatrick Kelsey 			break;
2684e24e5683SJonathan T. Looney #ifdef TCP_BLACKBOX
26852529f56eSJonathan T. Looney 		case TCP_LOG:
26862529f56eSJonathan T. Looney 			optval = tp->t_logstate;
26872529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
26882529f56eSJonathan T. Looney 			error = sooptcopyout(sopt, &optval, sizeof(optval));
26892529f56eSJonathan T. Looney 			break;
26902529f56eSJonathan T. Looney 		case TCP_LOGBUF:
26912529f56eSJonathan T. Looney 			/* tcp_log_getlogbuf() does INP_WUNLOCK(inp) */
26922529f56eSJonathan T. Looney 			error = tcp_log_getlogbuf(sopt, tp);
26932529f56eSJonathan T. Looney 			break;
26942529f56eSJonathan T. Looney 		case TCP_LOGID:
26952529f56eSJonathan T. Looney 			len = tcp_log_get_id(tp, buf);
26962529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
26972529f56eSJonathan T. Looney 			error = sooptcopyout(sopt, buf, len + 1);
26982529f56eSJonathan T. Looney 			break;
26992529f56eSJonathan T. Looney 		case TCP_LOGDUMP:
27002529f56eSJonathan T. Looney 		case TCP_LOGDUMPID:
27012529f56eSJonathan T. Looney 			INP_WUNLOCK(inp);
27022529f56eSJonathan T. Looney 			error = EINVAL;
27032529f56eSJonathan T. Looney 			break;
2704e24e5683SJonathan T. Looney #endif
2705b2e60773SJohn Baldwin #ifdef KERN_TLS
2706b2e60773SJohn Baldwin 		case TCP_TXTLS_MODE:
2707bf256782SMark Johnston 			error = ktls_get_tx_mode(so, &optval);
2708b2e60773SJohn Baldwin 			INP_WUNLOCK(inp);
2709bf256782SMark Johnston 			if (error == 0)
2710bf256782SMark Johnston 				error = sooptcopyout(sopt, &optval,
2711bf256782SMark Johnston 				    sizeof(optval));
2712b2e60773SJohn Baldwin 			break;
2713f1f93475SJohn Baldwin 		case TCP_RXTLS_MODE:
2714bf256782SMark Johnston 			error = ktls_get_rx_mode(so, &optval);
2715f1f93475SJohn Baldwin 			INP_WUNLOCK(inp);
2716bf256782SMark Johnston 			if (error == 0)
2717bf256782SMark Johnston 				error = sooptcopyout(sopt, &optval,
2718bf256782SMark Johnston 				    sizeof(optval));
2719f1f93475SJohn Baldwin 			break;
2720b2e60773SJohn Baldwin #endif
27210471a8c7SRichard Scheffenegger 		case TCP_LRD:
27220471a8c7SRichard Scheffenegger 			optval = tp->t_flags & TF_LRD;
27230471a8c7SRichard Scheffenegger 			INP_WUNLOCK(inp);
27240471a8c7SRichard Scheffenegger 			error = sooptcopyout(sopt, &optval, sizeof optval);
27250471a8c7SRichard Scheffenegger 			break;
2726df8bae1dSRodney W. Grimes 		default:
27278501a69cSRobert Watson 			INP_WUNLOCK(inp);
2728df8bae1dSRodney W. Grimes 			error = ENOPROTOOPT;
2729df8bae1dSRodney W. Grimes 			break;
2730df8bae1dSRodney W. Grimes 		}
2731df8bae1dSRodney W. Grimes 		break;
2732df8bae1dSRodney W. Grimes 	}
2733df8bae1dSRodney W. Grimes 	return (error);
2734df8bae1dSRodney W. Grimes }
27358501a69cSRobert Watson #undef INP_WLOCK_RECHECK
2736bac5bedfSConrad Meyer #undef INP_WLOCK_RECHECK_CLEANUP
2737df8bae1dSRodney W. Grimes 
273826e30fbbSDavid Greenman /*
2739df8bae1dSRodney W. Grimes  * Initiate (or continue) disconnect.
2740df8bae1dSRodney W. Grimes  * If embryonic state, just send reset (once).
2741df8bae1dSRodney W. Grimes  * If in ``let data drain'' option and linger null, just drop.
2742df8bae1dSRodney W. Grimes  * Otherwise (hard), mark socket disconnecting and drop
2743df8bae1dSRodney W. Grimes  * current input data; switch states based on user close, and
2744df8bae1dSRodney W. Grimes  * send segment to peer (with FIN).
2745df8bae1dSRodney W. Grimes  */
2746623dce13SRobert Watson static void
2747ad3f9ab3SAndre Oppermann tcp_disconnect(struct tcpcb *tp)
2748df8bae1dSRodney W. Grimes {
2749e6e0b5ffSRobert Watson 	struct inpcb *inp = tp->t_inpcb;
2750e6e0b5ffSRobert Watson 	struct socket *so = inp->inp_socket;
2751e6e0b5ffSRobert Watson 
275297a95ee1SGleb Smirnoff 	NET_EPOCH_ASSERT();
27538501a69cSRobert Watson 	INP_WLOCK_ASSERT(inp);
2754df8bae1dSRodney W. Grimes 
2755623dce13SRobert Watson 	/*
2756623dce13SRobert Watson 	 * Neither tcp_close() nor tcp_drop() should return NULL, as the
2757623dce13SRobert Watson 	 * socket is still open.
2758623dce13SRobert Watson 	 */
27598db239dcSMichael Tuexen 	if (tp->t_state < TCPS_ESTABLISHED &&
27608db239dcSMichael Tuexen 	    !(tp->t_state > TCPS_LISTEN && IS_FASTOPEN(tp->t_flags))) {
2761df8bae1dSRodney W. Grimes 		tp = tcp_close(tp);
2762623dce13SRobert Watson 		KASSERT(tp != NULL,
2763623dce13SRobert Watson 		    ("tcp_disconnect: tcp_close() returned NULL"));
2764623dce13SRobert Watson 	} else if ((so->so_options & SO_LINGER) && so->so_linger == 0) {
2765243917feSSeigo Tanimura 		tp = tcp_drop(tp, 0);
2766623dce13SRobert Watson 		KASSERT(tp != NULL,
2767623dce13SRobert Watson 		    ("tcp_disconnect: tcp_drop() returned NULL"));
2768623dce13SRobert Watson 	} else {
2769df8bae1dSRodney W. Grimes 		soisdisconnecting(so);
2770df8bae1dSRodney W. Grimes 		sbflush(&so->so_rcv);
2771623dce13SRobert Watson 		tcp_usrclosed(tp);
2772ad71fe3cSRobert Watson 		if (!(inp->inp_flags & INP_DROPPED))
2773f64dc2abSGleb Smirnoff 			/* Ignore stack's drop request, we already at it. */
2774f64dc2abSGleb Smirnoff 			(void)tcp_output_nodrop(tp);
2775df8bae1dSRodney W. Grimes 	}
2776df8bae1dSRodney W. Grimes }
2777df8bae1dSRodney W. Grimes 
2778df8bae1dSRodney W. Grimes /*
2779df8bae1dSRodney W. Grimes  * User issued close, and wish to trail through shutdown states:
2780df8bae1dSRodney W. Grimes  * if never received SYN, just forget it.  If got a SYN from peer,
2781df8bae1dSRodney W. Grimes  * but haven't sent FIN, then go to FIN_WAIT_1 state to send peer a FIN.
2782df8bae1dSRodney W. Grimes  * If already got a FIN from peer, then almost done; go to LAST_ACK
2783df8bae1dSRodney W. Grimes  * state.  In all other cases, have already sent FIN to peer (e.g.
2784df8bae1dSRodney W. Grimes  * after PRU_SHUTDOWN), and just have to play tedious game waiting
2785df8bae1dSRodney W. Grimes  * for peer to send FIN or not respond to keep-alives, etc.
2786df8bae1dSRodney W. Grimes  * We can let the user exit from the close as soon as the FIN is acked.
2787df8bae1dSRodney W. Grimes  */
2788623dce13SRobert Watson static void
2789ad3f9ab3SAndre Oppermann tcp_usrclosed(struct tcpcb *tp)
2790df8bae1dSRodney W. Grimes {
2791df8bae1dSRodney W. Grimes 
279297a95ee1SGleb Smirnoff 	NET_EPOCH_ASSERT();
27938501a69cSRobert Watson 	INP_WLOCK_ASSERT(tp->t_inpcb);
2794e6e0b5ffSRobert Watson 
2795df8bae1dSRodney W. Grimes 	switch (tp->t_state) {
2796df8bae1dSRodney W. Grimes 	case TCPS_LISTEN:
279709fe6320SNavdeep Parhar #ifdef TCP_OFFLOAD
279809fe6320SNavdeep Parhar 		tcp_offload_listen_stop(tp);
279909fe6320SNavdeep Parhar #endif
2800550e9d42SHiren Panchasara 		tcp_state_change(tp, TCPS_CLOSED);
2801bc65987aSKip Macy 		/* FALLTHROUGH */
2802bc65987aSKip Macy 	case TCPS_CLOSED:
2803df8bae1dSRodney W. Grimes 		tp = tcp_close(tp);
2804623dce13SRobert Watson 		/*
2805623dce13SRobert Watson 		 * tcp_close() should never return NULL here as the socket is
2806623dce13SRobert Watson 		 * still open.
2807623dce13SRobert Watson 		 */
2808623dce13SRobert Watson 		KASSERT(tp != NULL,
2809623dce13SRobert Watson 		    ("tcp_usrclosed: tcp_close() returned NULL"));
2810df8bae1dSRodney W. Grimes 		break;
2811df8bae1dSRodney W. Grimes 
2812a0292f23SGarrett Wollman 	case TCPS_SYN_SENT:
2813df8bae1dSRodney W. Grimes 	case TCPS_SYN_RECEIVED:
2814a0292f23SGarrett Wollman 		tp->t_flags |= TF_NEEDFIN;
2815a0292f23SGarrett Wollman 		break;
2816a0292f23SGarrett Wollman 
2817df8bae1dSRodney W. Grimes 	case TCPS_ESTABLISHED:
281857f60867SMark Johnston 		tcp_state_change(tp, TCPS_FIN_WAIT_1);
2819df8bae1dSRodney W. Grimes 		break;
2820df8bae1dSRodney W. Grimes 
2821df8bae1dSRodney W. Grimes 	case TCPS_CLOSE_WAIT:
282257f60867SMark Johnston 		tcp_state_change(tp, TCPS_LAST_ACK);
2823df8bae1dSRodney W. Grimes 		break;
2824df8bae1dSRodney W. Grimes 	}
2825abc7d910SRobert Watson 	if (tp->t_state >= TCPS_FIN_WAIT_2) {
2826df8bae1dSRodney W. Grimes 		soisdisconnected(tp->t_inpcb->inp_socket);
2827abc7d910SRobert Watson 		/* Prevent the connection hanging in FIN_WAIT_2 forever. */
28287c72af87SMohan Srinivasan 		if (tp->t_state == TCPS_FIN_WAIT_2) {
28297c72af87SMohan Srinivasan 			int timeout;
28307c72af87SMohan Srinivasan 
28317c72af87SMohan Srinivasan 			timeout = (tcp_fast_finwait2_recycle) ?
28329077f387SGleb Smirnoff 			    tcp_finwait2_timeout : TP_MAXIDLE(tp);
2833b8152ba7SAndre Oppermann 			tcp_timer_activate(tp, TT_2MSL, timeout);
2834b6239c4aSAndras Olah 		}
2835df8bae1dSRodney W. Grimes 	}
28367c72af87SMohan Srinivasan }
2837497057eeSRobert Watson 
2838497057eeSRobert Watson #ifdef DDB
2839497057eeSRobert Watson static void
2840497057eeSRobert Watson db_print_indent(int indent)
2841497057eeSRobert Watson {
2842497057eeSRobert Watson 	int i;
2843497057eeSRobert Watson 
2844497057eeSRobert Watson 	for (i = 0; i < indent; i++)
2845497057eeSRobert Watson 		db_printf(" ");
2846497057eeSRobert Watson }
2847497057eeSRobert Watson 
2848497057eeSRobert Watson static void
2849497057eeSRobert Watson db_print_tstate(int t_state)
2850497057eeSRobert Watson {
2851497057eeSRobert Watson 
2852497057eeSRobert Watson 	switch (t_state) {
2853497057eeSRobert Watson 	case TCPS_CLOSED:
2854497057eeSRobert Watson 		db_printf("TCPS_CLOSED");
2855497057eeSRobert Watson 		return;
2856497057eeSRobert Watson 
2857497057eeSRobert Watson 	case TCPS_LISTEN:
2858497057eeSRobert Watson 		db_printf("TCPS_LISTEN");
2859497057eeSRobert Watson 		return;
2860497057eeSRobert Watson 
2861497057eeSRobert Watson 	case TCPS_SYN_SENT:
2862497057eeSRobert Watson 		db_printf("TCPS_SYN_SENT");
2863497057eeSRobert Watson 		return;
2864497057eeSRobert Watson 
2865497057eeSRobert Watson 	case TCPS_SYN_RECEIVED:
2866497057eeSRobert Watson 		db_printf("TCPS_SYN_RECEIVED");
2867497057eeSRobert Watson 		return;
2868497057eeSRobert Watson 
2869497057eeSRobert Watson 	case TCPS_ESTABLISHED:
2870497057eeSRobert Watson 		db_printf("TCPS_ESTABLISHED");
2871497057eeSRobert Watson 		return;
2872497057eeSRobert Watson 
2873497057eeSRobert Watson 	case TCPS_CLOSE_WAIT:
2874497057eeSRobert Watson 		db_printf("TCPS_CLOSE_WAIT");
2875497057eeSRobert Watson 		return;
2876497057eeSRobert Watson 
2877497057eeSRobert Watson 	case TCPS_FIN_WAIT_1:
2878497057eeSRobert Watson 		db_printf("TCPS_FIN_WAIT_1");
2879497057eeSRobert Watson 		return;
2880497057eeSRobert Watson 
2881497057eeSRobert Watson 	case TCPS_CLOSING:
2882497057eeSRobert Watson 		db_printf("TCPS_CLOSING");
2883497057eeSRobert Watson 		return;
2884497057eeSRobert Watson 
2885497057eeSRobert Watson 	case TCPS_LAST_ACK:
2886497057eeSRobert Watson 		db_printf("TCPS_LAST_ACK");
2887497057eeSRobert Watson 		return;
2888497057eeSRobert Watson 
2889497057eeSRobert Watson 	case TCPS_FIN_WAIT_2:
2890497057eeSRobert Watson 		db_printf("TCPS_FIN_WAIT_2");
2891497057eeSRobert Watson 		return;
2892497057eeSRobert Watson 
2893497057eeSRobert Watson 	case TCPS_TIME_WAIT:
2894497057eeSRobert Watson 		db_printf("TCPS_TIME_WAIT");
2895497057eeSRobert Watson 		return;
2896497057eeSRobert Watson 
2897497057eeSRobert Watson 	default:
2898497057eeSRobert Watson 		db_printf("unknown");
2899497057eeSRobert Watson 		return;
2900497057eeSRobert Watson 	}
2901497057eeSRobert Watson }
2902497057eeSRobert Watson 
2903497057eeSRobert Watson static void
2904497057eeSRobert Watson db_print_tflags(u_int t_flags)
2905497057eeSRobert Watson {
2906497057eeSRobert Watson 	int comma;
2907497057eeSRobert Watson 
2908497057eeSRobert Watson 	comma = 0;
2909497057eeSRobert Watson 	if (t_flags & TF_ACKNOW) {
2910497057eeSRobert Watson 		db_printf("%sTF_ACKNOW", comma ? ", " : "");
2911497057eeSRobert Watson 		comma = 1;
2912497057eeSRobert Watson 	}
2913497057eeSRobert Watson 	if (t_flags & TF_DELACK) {
2914497057eeSRobert Watson 		db_printf("%sTF_DELACK", comma ? ", " : "");
2915497057eeSRobert Watson 		comma = 1;
2916497057eeSRobert Watson 	}
2917497057eeSRobert Watson 	if (t_flags & TF_NODELAY) {
2918497057eeSRobert Watson 		db_printf("%sTF_NODELAY", comma ? ", " : "");
2919497057eeSRobert Watson 		comma = 1;
2920497057eeSRobert Watson 	}
2921497057eeSRobert Watson 	if (t_flags & TF_NOOPT) {
2922497057eeSRobert Watson 		db_printf("%sTF_NOOPT", comma ? ", " : "");
2923497057eeSRobert Watson 		comma = 1;
2924497057eeSRobert Watson 	}
2925497057eeSRobert Watson 	if (t_flags & TF_SENTFIN) {
2926497057eeSRobert Watson 		db_printf("%sTF_SENTFIN", comma ? ", " : "");
2927497057eeSRobert Watson 		comma = 1;
2928497057eeSRobert Watson 	}
2929497057eeSRobert Watson 	if (t_flags & TF_REQ_SCALE) {
2930497057eeSRobert Watson 		db_printf("%sTF_REQ_SCALE", comma ? ", " : "");
2931497057eeSRobert Watson 		comma = 1;
2932497057eeSRobert Watson 	}
2933497057eeSRobert Watson 	if (t_flags & TF_RCVD_SCALE) {
2934497057eeSRobert Watson 		db_printf("%sTF_RECVD_SCALE", comma ? ", " : "");
2935497057eeSRobert Watson 		comma = 1;
2936497057eeSRobert Watson 	}
2937497057eeSRobert Watson 	if (t_flags & TF_REQ_TSTMP) {
2938497057eeSRobert Watson 		db_printf("%sTF_REQ_TSTMP", comma ? ", " : "");
2939497057eeSRobert Watson 		comma = 1;
2940497057eeSRobert Watson 	}
2941497057eeSRobert Watson 	if (t_flags & TF_RCVD_TSTMP) {
2942497057eeSRobert Watson 		db_printf("%sTF_RCVD_TSTMP", comma ? ", " : "");
2943497057eeSRobert Watson 		comma = 1;
2944497057eeSRobert Watson 	}
2945497057eeSRobert Watson 	if (t_flags & TF_SACK_PERMIT) {
2946497057eeSRobert Watson 		db_printf("%sTF_SACK_PERMIT", comma ? ", " : "");
2947497057eeSRobert Watson 		comma = 1;
2948497057eeSRobert Watson 	}
2949497057eeSRobert Watson 	if (t_flags & TF_NEEDSYN) {
2950497057eeSRobert Watson 		db_printf("%sTF_NEEDSYN", comma ? ", " : "");
2951497057eeSRobert Watson 		comma = 1;
2952497057eeSRobert Watson 	}
2953497057eeSRobert Watson 	if (t_flags & TF_NEEDFIN) {
2954497057eeSRobert Watson 		db_printf("%sTF_NEEDFIN", comma ? ", " : "");
2955497057eeSRobert Watson 		comma = 1;
2956497057eeSRobert Watson 	}
2957497057eeSRobert Watson 	if (t_flags & TF_NOPUSH) {
2958497057eeSRobert Watson 		db_printf("%sTF_NOPUSH", comma ? ", " : "");
2959497057eeSRobert Watson 		comma = 1;
2960497057eeSRobert Watson 	}
2961497057eeSRobert Watson 	if (t_flags & TF_MORETOCOME) {
2962497057eeSRobert Watson 		db_printf("%sTF_MORETOCOME", comma ? ", " : "");
2963497057eeSRobert Watson 		comma = 1;
2964497057eeSRobert Watson 	}
2965497057eeSRobert Watson 	if (t_flags & TF_LQ_OVERFLOW) {
2966497057eeSRobert Watson 		db_printf("%sTF_LQ_OVERFLOW", comma ? ", " : "");
2967497057eeSRobert Watson 		comma = 1;
2968497057eeSRobert Watson 	}
2969497057eeSRobert Watson 	if (t_flags & TF_LASTIDLE) {
2970497057eeSRobert Watson 		db_printf("%sTF_LASTIDLE", comma ? ", " : "");
2971497057eeSRobert Watson 		comma = 1;
2972497057eeSRobert Watson 	}
2973497057eeSRobert Watson 	if (t_flags & TF_RXWIN0SENT) {
2974497057eeSRobert Watson 		db_printf("%sTF_RXWIN0SENT", comma ? ", " : "");
2975497057eeSRobert Watson 		comma = 1;
2976497057eeSRobert Watson 	}
2977497057eeSRobert Watson 	if (t_flags & TF_FASTRECOVERY) {
2978497057eeSRobert Watson 		db_printf("%sTF_FASTRECOVERY", comma ? ", " : "");
2979497057eeSRobert Watson 		comma = 1;
2980497057eeSRobert Watson 	}
2981dbc42409SLawrence Stewart 	if (t_flags & TF_CONGRECOVERY) {
2982dbc42409SLawrence Stewart 		db_printf("%sTF_CONGRECOVERY", comma ? ", " : "");
2983dbc42409SLawrence Stewart 		comma = 1;
2984dbc42409SLawrence Stewart 	}
2985497057eeSRobert Watson 	if (t_flags & TF_WASFRECOVERY) {
2986497057eeSRobert Watson 		db_printf("%sTF_WASFRECOVERY", comma ? ", " : "");
2987497057eeSRobert Watson 		comma = 1;
2988497057eeSRobert Watson 	}
2989497057eeSRobert Watson 	if (t_flags & TF_SIGNATURE) {
2990497057eeSRobert Watson 		db_printf("%sTF_SIGNATURE", comma ? ", " : "");
2991497057eeSRobert Watson 		comma = 1;
2992497057eeSRobert Watson 	}
2993497057eeSRobert Watson 	if (t_flags & TF_FORCEDATA) {
2994497057eeSRobert Watson 		db_printf("%sTF_FORCEDATA", comma ? ", " : "");
2995497057eeSRobert Watson 		comma = 1;
2996497057eeSRobert Watson 	}
2997497057eeSRobert Watson 	if (t_flags & TF_TSO) {
2998497057eeSRobert Watson 		db_printf("%sTF_TSO", comma ? ", " : "");
2999497057eeSRobert Watson 		comma = 1;
3000497057eeSRobert Watson 	}
3001281a0fd4SPatrick Kelsey 	if (t_flags & TF_FASTOPEN) {
3002281a0fd4SPatrick Kelsey 		db_printf("%sTF_FASTOPEN", comma ? ", " : "");
3003281a0fd4SPatrick Kelsey 		comma = 1;
3004281a0fd4SPatrick Kelsey 	}
3005497057eeSRobert Watson }
3006497057eeSRobert Watson 
3007497057eeSRobert Watson static void
30083cf38784SMichael Tuexen db_print_tflags2(u_int t_flags2)
30093cf38784SMichael Tuexen {
30103cf38784SMichael Tuexen 	int comma;
30113cf38784SMichael Tuexen 
30123cf38784SMichael Tuexen 	comma = 0;
30133cf38784SMichael Tuexen 	if (t_flags2 & TF2_ECN_PERMIT) {
30143cf38784SMichael Tuexen 		db_printf("%sTF2_ECN_PERMIT", comma ? ", " : "");
30153cf38784SMichael Tuexen 		comma = 1;
30163cf38784SMichael Tuexen 	}
30173cf38784SMichael Tuexen }
30183cf38784SMichael Tuexen 
30193cf38784SMichael Tuexen static void
3020497057eeSRobert Watson db_print_toobflags(char t_oobflags)
3021497057eeSRobert Watson {
3022497057eeSRobert Watson 	int comma;
3023497057eeSRobert Watson 
3024497057eeSRobert Watson 	comma = 0;
3025497057eeSRobert Watson 	if (t_oobflags & TCPOOB_HAVEDATA) {
3026497057eeSRobert Watson 		db_printf("%sTCPOOB_HAVEDATA", comma ? ", " : "");
3027497057eeSRobert Watson 		comma = 1;
3028497057eeSRobert Watson 	}
3029497057eeSRobert Watson 	if (t_oobflags & TCPOOB_HADDATA) {
3030497057eeSRobert Watson 		db_printf("%sTCPOOB_HADDATA", comma ? ", " : "");
3031497057eeSRobert Watson 		comma = 1;
3032497057eeSRobert Watson 	}
3033497057eeSRobert Watson }
3034497057eeSRobert Watson 
3035497057eeSRobert Watson static void
3036497057eeSRobert Watson db_print_tcpcb(struct tcpcb *tp, const char *name, int indent)
3037497057eeSRobert Watson {
3038497057eeSRobert Watson 
3039497057eeSRobert Watson 	db_print_indent(indent);
3040497057eeSRobert Watson 	db_printf("%s at %p\n", name, tp);
3041497057eeSRobert Watson 
3042497057eeSRobert Watson 	indent += 2;
3043497057eeSRobert Watson 
3044497057eeSRobert Watson 	db_print_indent(indent);
3045497057eeSRobert Watson 	db_printf("t_segq first: %p   t_segqlen: %d   t_dupacks: %d\n",
3046c28440dbSRandall Stewart 	   TAILQ_FIRST(&tp->t_segq), tp->t_segqlen, tp->t_dupacks);
3047497057eeSRobert Watson 
3048497057eeSRobert Watson 	db_print_indent(indent);
304985d94372SRobert Watson 	db_printf("tt_rexmt: %p   tt_persist: %p   tt_keep: %p\n",
3050e2f2059fSMike Silbersack 	    &tp->t_timers->tt_rexmt, &tp->t_timers->tt_persist, &tp->t_timers->tt_keep);
3051497057eeSRobert Watson 
3052497057eeSRobert Watson 	db_print_indent(indent);
3053e2f2059fSMike Silbersack 	db_printf("tt_2msl: %p   tt_delack: %p   t_inpcb: %p\n", &tp->t_timers->tt_2msl,
3054e2f2059fSMike Silbersack 	    &tp->t_timers->tt_delack, tp->t_inpcb);
3055497057eeSRobert Watson 
3056497057eeSRobert Watson 	db_print_indent(indent);
3057497057eeSRobert Watson 	db_printf("t_state: %d (", tp->t_state);
3058497057eeSRobert Watson 	db_print_tstate(tp->t_state);
3059497057eeSRobert Watson 	db_printf(")\n");
3060497057eeSRobert Watson 
3061497057eeSRobert Watson 	db_print_indent(indent);
3062497057eeSRobert Watson 	db_printf("t_flags: 0x%x (", tp->t_flags);
3063497057eeSRobert Watson 	db_print_tflags(tp->t_flags);
3064497057eeSRobert Watson 	db_printf(")\n");
3065497057eeSRobert Watson 
3066497057eeSRobert Watson 	db_print_indent(indent);
30673cf38784SMichael Tuexen 	db_printf("t_flags2: 0x%x (", tp->t_flags2);
30683cf38784SMichael Tuexen 	db_print_tflags2(tp->t_flags2);
30693cf38784SMichael Tuexen 	db_printf(")\n");
30703cf38784SMichael Tuexen 
30713cf38784SMichael Tuexen 	db_print_indent(indent);
3072497057eeSRobert Watson 	db_printf("snd_una: 0x%08x   snd_max: 0x%08x   snd_nxt: x0%08x\n",
3073497057eeSRobert Watson 	    tp->snd_una, tp->snd_max, tp->snd_nxt);
3074497057eeSRobert Watson 
3075497057eeSRobert Watson 	db_print_indent(indent);
3076497057eeSRobert Watson 	db_printf("snd_up: 0x%08x   snd_wl1: 0x%08x   snd_wl2: 0x%08x\n",
3077497057eeSRobert Watson 	   tp->snd_up, tp->snd_wl1, tp->snd_wl2);
3078497057eeSRobert Watson 
3079497057eeSRobert Watson 	db_print_indent(indent);
3080497057eeSRobert Watson 	db_printf("iss: 0x%08x   irs: 0x%08x   rcv_nxt: 0x%08x\n",
3081497057eeSRobert Watson 	    tp->iss, tp->irs, tp->rcv_nxt);
3082497057eeSRobert Watson 
3083497057eeSRobert Watson 	db_print_indent(indent);
30843ac12506SJonathan T. Looney 	db_printf("rcv_adv: 0x%08x   rcv_wnd: %u   rcv_up: 0x%08x\n",
3085497057eeSRobert Watson 	    tp->rcv_adv, tp->rcv_wnd, tp->rcv_up);
3086497057eeSRobert Watson 
3087497057eeSRobert Watson 	db_print_indent(indent);
30883ac12506SJonathan T. Looney 	db_printf("snd_wnd: %u   snd_cwnd: %u\n",
30891c18314dSAndre Oppermann 	   tp->snd_wnd, tp->snd_cwnd);
3090497057eeSRobert Watson 
3091497057eeSRobert Watson 	db_print_indent(indent);
30923ac12506SJonathan T. Looney 	db_printf("snd_ssthresh: %u   snd_recover: "
30931c18314dSAndre Oppermann 	    "0x%08x\n", tp->snd_ssthresh, tp->snd_recover);
3094497057eeSRobert Watson 
3095497057eeSRobert Watson 	db_print_indent(indent);
30960c39d38dSGleb Smirnoff 	db_printf("t_rcvtime: %u   t_startime: %u\n",
30970c39d38dSGleb Smirnoff 	    tp->t_rcvtime, tp->t_starttime);
3098497057eeSRobert Watson 
3099497057eeSRobert Watson 	db_print_indent(indent);
31001c18314dSAndre Oppermann 	db_printf("t_rttime: %u   t_rtsq: 0x%08x\n",
31011c18314dSAndre Oppermann 	    tp->t_rtttime, tp->t_rtseq);
3102497057eeSRobert Watson 
3103497057eeSRobert Watson 	db_print_indent(indent);
31041c18314dSAndre Oppermann 	db_printf("t_rxtcur: %d   t_maxseg: %u   t_srtt: %d\n",
31051c18314dSAndre Oppermann 	    tp->t_rxtcur, tp->t_maxseg, tp->t_srtt);
3106497057eeSRobert Watson 
3107497057eeSRobert Watson 	db_print_indent(indent);
3108497057eeSRobert Watson 	db_printf("t_rttvar: %d   t_rxtshift: %d   t_rttmin: %u   "
3109497057eeSRobert Watson 	    "t_rttbest: %u\n", tp->t_rttvar, tp->t_rxtshift, tp->t_rttmin,
3110497057eeSRobert Watson 	    tp->t_rttbest);
3111497057eeSRobert Watson 
3112497057eeSRobert Watson 	db_print_indent(indent);
31133ac12506SJonathan T. Looney 	db_printf("t_rttupdated: %lu   max_sndwnd: %u   t_softerror: %d\n",
3114497057eeSRobert Watson 	    tp->t_rttupdated, tp->max_sndwnd, tp->t_softerror);
3115497057eeSRobert Watson 
3116497057eeSRobert Watson 	db_print_indent(indent);
3117497057eeSRobert Watson 	db_printf("t_oobflags: 0x%x (", tp->t_oobflags);
3118497057eeSRobert Watson 	db_print_toobflags(tp->t_oobflags);
3119497057eeSRobert Watson 	db_printf(")   t_iobc: 0x%02x\n", tp->t_iobc);
3120497057eeSRobert Watson 
3121497057eeSRobert Watson 	db_print_indent(indent);
3122497057eeSRobert Watson 	db_printf("snd_scale: %u   rcv_scale: %u   request_r_scale: %u\n",
3123497057eeSRobert Watson 	    tp->snd_scale, tp->rcv_scale, tp->request_r_scale);
3124497057eeSRobert Watson 
3125497057eeSRobert Watson 	db_print_indent(indent);
31269f78a87aSJohn Baldwin 	db_printf("ts_recent: %u   ts_recent_age: %u\n",
31271a553740SAndre Oppermann 	    tp->ts_recent, tp->ts_recent_age);
3128497057eeSRobert Watson 
3129497057eeSRobert Watson 	db_print_indent(indent);
3130497057eeSRobert Watson 	db_printf("ts_offset: %u   last_ack_sent: 0x%08x   snd_cwnd_prev: "
31313ac12506SJonathan T. Looney 	    "%u\n", tp->ts_offset, tp->last_ack_sent, tp->snd_cwnd_prev);
3132497057eeSRobert Watson 
3133497057eeSRobert Watson 	db_print_indent(indent);
31343ac12506SJonathan T. Looney 	db_printf("snd_ssthresh_prev: %u   snd_recover_prev: 0x%08x   "
31359f78a87aSJohn Baldwin 	    "t_badrxtwin: %u\n", tp->snd_ssthresh_prev,
3136497057eeSRobert Watson 	    tp->snd_recover_prev, tp->t_badrxtwin);
3137497057eeSRobert Watson 
3138497057eeSRobert Watson 	db_print_indent(indent);
31393529149eSAndre Oppermann 	db_printf("snd_numholes: %d  snd_holes first: %p\n",
31403529149eSAndre Oppermann 	    tp->snd_numholes, TAILQ_FIRST(&tp->snd_holes));
3141497057eeSRobert Watson 
3142497057eeSRobert Watson 	db_print_indent(indent);
3143a3574665SMichael Tuexen 	db_printf("snd_fack: 0x%08x   rcv_numsacks: %d\n",
3144a3574665SMichael Tuexen 	    tp->snd_fack, tp->rcv_numsacks);
3145497057eeSRobert Watson 
3146497057eeSRobert Watson 	/* Skip sackblks, sackhint. */
3147497057eeSRobert Watson 
3148497057eeSRobert Watson 	db_print_indent(indent);
3149497057eeSRobert Watson 	db_printf("t_rttlow: %d   rfbuf_ts: %u   rfbuf_cnt: %d\n",
3150497057eeSRobert Watson 	    tp->t_rttlow, tp->rfbuf_ts, tp->rfbuf_cnt);
3151497057eeSRobert Watson }
3152497057eeSRobert Watson 
3153497057eeSRobert Watson DB_SHOW_COMMAND(tcpcb, db_show_tcpcb)
3154497057eeSRobert Watson {
3155497057eeSRobert Watson 	struct tcpcb *tp;
3156497057eeSRobert Watson 
3157497057eeSRobert Watson 	if (!have_addr) {
3158497057eeSRobert Watson 		db_printf("usage: show tcpcb <addr>\n");
3159497057eeSRobert Watson 		return;
3160497057eeSRobert Watson 	}
3161497057eeSRobert Watson 	tp = (struct tcpcb *)addr;
3162497057eeSRobert Watson 
3163497057eeSRobert Watson 	db_print_tcpcb(tp, "tcpcb", 0);
3164497057eeSRobert Watson }
3165497057eeSRobert Watson #endif
3166