xref: /freebsd/sys/netinet/udp_usrreq.c (revision 4cc20ab1f0f3d1126126327aa298ab88c974c53d)
1df8bae1dSRodney W. Grimes /*
26dfab5b1SGarrett Wollman  * Copyright (c) 1982, 1986, 1988, 1990, 1993, 1995
3df8bae1dSRodney W. Grimes  *	The Regents of the University of California.  All rights reserved.
4df8bae1dSRodney W. Grimes  *
5df8bae1dSRodney W. Grimes  * Redistribution and use in source and binary forms, with or without
6df8bae1dSRodney W. Grimes  * modification, are permitted provided that the following conditions
7df8bae1dSRodney W. Grimes  * are met:
8df8bae1dSRodney W. Grimes  * 1. Redistributions of source code must retain the above copyright
9df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer.
10df8bae1dSRodney W. Grimes  * 2. Redistributions in binary form must reproduce the above copyright
11df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer in the
12df8bae1dSRodney W. Grimes  *    documentation and/or other materials provided with the distribution.
13df8bae1dSRodney W. Grimes  * 3. All advertising materials mentioning features or use of this software
14df8bae1dSRodney W. Grimes  *    must display the following acknowledgement:
15df8bae1dSRodney W. Grimes  *	This product includes software developed by the University of
16df8bae1dSRodney W. Grimes  *	California, Berkeley and its contributors.
17df8bae1dSRodney W. Grimes  * 4. Neither the name of the University nor the names of its contributors
18df8bae1dSRodney W. Grimes  *    may be used to endorse or promote products derived from this software
19df8bae1dSRodney W. Grimes  *    without specific prior written permission.
20df8bae1dSRodney W. Grimes  *
21df8bae1dSRodney W. Grimes  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
22df8bae1dSRodney W. Grimes  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23df8bae1dSRodney W. Grimes  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
24df8bae1dSRodney W. Grimes  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
25df8bae1dSRodney W. Grimes  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
26df8bae1dSRodney W. Grimes  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
27df8bae1dSRodney W. Grimes  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28df8bae1dSRodney W. Grimes  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
29df8bae1dSRodney W. Grimes  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30df8bae1dSRodney W. Grimes  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
31df8bae1dSRodney W. Grimes  * SUCH DAMAGE.
32df8bae1dSRodney W. Grimes  *
336dfab5b1SGarrett Wollman  *	@(#)udp_usrreq.c	8.6 (Berkeley) 5/23/95
34c3aac50fSPeter Wemm  * $FreeBSD$
35df8bae1dSRodney W. Grimes  */
36df8bae1dSRodney W. Grimes 
376a800098SYoshinobu Inoue #include "opt_ipsec.h"
38cfa1ca9dSYoshinobu Inoue #include "opt_inet6.h"
39cfa1ca9dSYoshinobu Inoue 
40df8bae1dSRodney W. Grimes #include <sys/param.h>
4126f9a767SRodney W. Grimes #include <sys/systm.h>
42960ed29cSSeigo Tanimura #include <sys/domain.h>
43960ed29cSSeigo Tanimura #include <sys/jail.h>
44b110a8a2SGarrett Wollman #include <sys/kernel.h>
45960ed29cSSeigo Tanimura #include <sys/lock.h>
46df8bae1dSRodney W. Grimes #include <sys/malloc.h>
47df8bae1dSRodney W. Grimes #include <sys/mbuf.h>
48490d50b6SBrian Feldman #include <sys/proc.h>
49df8bae1dSRodney W. Grimes #include <sys/protosw.h>
50960ed29cSSeigo Tanimura #include <sys/signalvar.h>
51df8bae1dSRodney W. Grimes #include <sys/socket.h>
52df8bae1dSRodney W. Grimes #include <sys/socketvar.h>
53960ed29cSSeigo Tanimura #include <sys/sx.h>
54b5e8ce9fSBruce Evans #include <sys/sysctl.h>
55816a3d83SPoul-Henning Kamp #include <sys/syslog.h>
568781d8e9SBruce Evans 
5769c2d429SJeff Roberson #include <vm/uma.h>
58df8bae1dSRodney W. Grimes 
59df8bae1dSRodney W. Grimes #include <net/if.h>
60df8bae1dSRodney W. Grimes #include <net/route.h>
61df8bae1dSRodney W. Grimes 
62df8bae1dSRodney W. Grimes #include <netinet/in.h>
63df8bae1dSRodney W. Grimes #include <netinet/in_systm.h>
64960ed29cSSeigo Tanimura #include <netinet/in_pcb.h>
65960ed29cSSeigo Tanimura #include <netinet/in_var.h>
66df8bae1dSRodney W. Grimes #include <netinet/ip.h>
67cfa1ca9dSYoshinobu Inoue #ifdef INET6
68cfa1ca9dSYoshinobu Inoue #include <netinet/ip6.h>
69cfa1ca9dSYoshinobu Inoue #endif
70960ed29cSSeigo Tanimura #include <netinet/ip_icmp.h>
71960ed29cSSeigo Tanimura #include <netinet/icmp_var.h>
72df8bae1dSRodney W. Grimes #include <netinet/ip_var.h>
73cfa1ca9dSYoshinobu Inoue #ifdef INET6
74cfa1ca9dSYoshinobu Inoue #include <netinet6/ip6_var.h>
75cfa1ca9dSYoshinobu Inoue #endif
76df8bae1dSRodney W. Grimes #include <netinet/udp.h>
77df8bae1dSRodney W. Grimes #include <netinet/udp_var.h>
78df8bae1dSRodney W. Grimes 
79cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
80cfa1ca9dSYoshinobu Inoue #include <netinet6/ipsec.h>
81cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
82cfa1ca9dSYoshinobu Inoue 
83db4f9cc7SJonathan Lemon #include <machine/in_cksum.h>
84db4f9cc7SJonathan Lemon 
85df8bae1dSRodney W. Grimes /*
86df8bae1dSRodney W. Grimes  * UDP protocol implementation.
87df8bae1dSRodney W. Grimes  * Per RFC 768, August, 1980.
88df8bae1dSRodney W. Grimes  */
89df8bae1dSRodney W. Grimes #ifndef	COMPAT_42
900312fbe9SPoul-Henning Kamp static int	udpcksum = 1;
91df8bae1dSRodney W. Grimes #else
920312fbe9SPoul-Henning Kamp static int	udpcksum = 0;		/* XXX */
93df8bae1dSRodney W. Grimes #endif
940312fbe9SPoul-Henning Kamp SYSCTL_INT(_net_inet_udp, UDPCTL_CHECKSUM, checksum, CTLFLAG_RW,
950312fbe9SPoul-Henning Kamp 		&udpcksum, 0, "");
96df8bae1dSRodney W. Grimes 
9776429de4SYoshinobu Inoue int	log_in_vain = 0;
98816a3d83SPoul-Henning Kamp SYSCTL_INT(_net_inet_udp, OID_AUTO, log_in_vain, CTLFLAG_RW,
993d177f46SBill Fumerola     &log_in_vain, 0, "Log all incoming UDP packets");
100816a3d83SPoul-Henning Kamp 
10116f7f31fSGeoff Rehmet static int	blackhole = 0;
10216f7f31fSGeoff Rehmet SYSCTL_INT(_net_inet_udp, OID_AUTO, blackhole, CTLFLAG_RW,
10316f7f31fSGeoff Rehmet 	&blackhole, 0, "Do not send port unreachables for refused connects");
10416f7f31fSGeoff Rehmet 
10576429de4SYoshinobu Inoue struct	inpcbhead udb;		/* from udp_var.h */
106cfa1ca9dSYoshinobu Inoue #define	udb6	udb  /* for KAME src sync over BSD*'s */
1077a2aab80SBrian Feldman struct	inpcbinfo udbinfo;
10815bd2b43SDavid Greenman 
10915bd2b43SDavid Greenman #ifndef UDBHASHSIZE
110c3229e05SDavid Greenman #define UDBHASHSIZE 16
11115bd2b43SDavid Greenman #endif
11215bd2b43SDavid Greenman 
11376429de4SYoshinobu Inoue struct	udpstat udpstat;	/* from udp_var.h */
114c73d99b5SRuslan Ermilov SYSCTL_STRUCT(_net_inet_udp, UDPCTL_STATS, stats, CTLFLAG_RW,
1153d177f46SBill Fumerola     &udpstat, udpstat, "UDP statistics (struct udpstat, netinet/udp_var.h)");
116f2ea20e6SGarrett Wollman 
1170312fbe9SPoul-Henning Kamp static struct	sockaddr_in udp_in = { sizeof(udp_in), AF_INET };
118cfa1ca9dSYoshinobu Inoue #ifdef INET6
119cfa1ca9dSYoshinobu Inoue struct udp_in6 {
120cfa1ca9dSYoshinobu Inoue 	struct sockaddr_in6	uin6_sin;
121cfa1ca9dSYoshinobu Inoue 	u_char			uin6_init_done : 1;
122cfa1ca9dSYoshinobu Inoue } udp_in6 = {
123cfa1ca9dSYoshinobu Inoue 	{ sizeof(udp_in6.uin6_sin), AF_INET6 },
124cfa1ca9dSYoshinobu Inoue 	0
125cfa1ca9dSYoshinobu Inoue };
126cfa1ca9dSYoshinobu Inoue struct udp_ip6 {
127cfa1ca9dSYoshinobu Inoue 	struct ip6_hdr		uip6_ip6;
128cfa1ca9dSYoshinobu Inoue 	u_char			uip6_init_done : 1;
129cfa1ca9dSYoshinobu Inoue } udp_ip6;
130cfa1ca9dSYoshinobu Inoue #endif /* INET6 */
131df8bae1dSRodney W. Grimes 
132c1cd65baSBruce Evans static void udp_append(struct inpcb *last, struct ip *ip, struct mbuf *n,
133c1cd65baSBruce Evans 		int off);
134cfa1ca9dSYoshinobu Inoue #ifdef INET6
1354d77a549SAlfred Perlstein static void ip_2_ip6_hdr(struct ip6_hdr *ip6, struct ip *ip);
136cfa1ca9dSYoshinobu Inoue #endif
137cfa1ca9dSYoshinobu Inoue 
1384d77a549SAlfred Perlstein static int udp_detach(struct socket *so);
1394d77a549SAlfred Perlstein static	int udp_output(struct inpcb *, struct mbuf *, struct sockaddr *,
1404d77a549SAlfred Perlstein 		struct mbuf *, struct thread *);
141df8bae1dSRodney W. Grimes 
142df8bae1dSRodney W. Grimes void
143df8bae1dSRodney W. Grimes udp_init()
144df8bae1dSRodney W. Grimes {
14515bd2b43SDavid Greenman 	LIST_INIT(&udb);
14615bd2b43SDavid Greenman 	udbinfo.listhead = &udb;
147ddd79a97SDavid Greenman 	udbinfo.hashbase = hashinit(UDBHASHSIZE, M_PCB, &udbinfo.hashmask);
1488781d8e9SBruce Evans 	udbinfo.porthashbase = hashinit(UDBHASHSIZE, M_PCB,
1498781d8e9SBruce Evans 					&udbinfo.porthashmask);
15069c2d429SJeff Roberson 	udbinfo.ipi_zone = uma_zcreate("udpcb", sizeof(struct inpcb), NULL,
15169c2d429SJeff Roberson 	    NULL, NULL, NULL, UMA_ALIGN_PTR, UMA_ZONE_NOFREE);
15269c2d429SJeff Roberson 	uma_zone_set_max(udbinfo.ipi_zone, maxsockets);
153df8bae1dSRodney W. Grimes }
154df8bae1dSRodney W. Grimes 
155df8bae1dSRodney W. Grimes void
156f0ffb944SJulian Elischer udp_input(m, off)
157df8bae1dSRodney W. Grimes 	register struct mbuf *m;
158f0ffb944SJulian Elischer 	int off;
159df8bae1dSRodney W. Grimes {
160cfa1ca9dSYoshinobu Inoue 	int iphlen = off;
161df8bae1dSRodney W. Grimes 	register struct ip *ip;
162df8bae1dSRodney W. Grimes 	register struct udphdr *uh;
163df8bae1dSRodney W. Grimes 	register struct inpcb *inp;
164df8bae1dSRodney W. Grimes 	struct mbuf *opts = 0;
165df8bae1dSRodney W. Grimes 	int len;
166df8bae1dSRodney W. Grimes 	struct ip save_ip;
167cfa1ca9dSYoshinobu Inoue 	struct sockaddr *append_sa;
168df8bae1dSRodney W. Grimes 
169df8bae1dSRodney W. Grimes 	udpstat.udps_ipackets++;
170df8bae1dSRodney W. Grimes 
171df8bae1dSRodney W. Grimes 	/*
172df8bae1dSRodney W. Grimes 	 * Strip IP options, if any; should skip this,
173df8bae1dSRodney W. Grimes 	 * make available to user, and use on returned packets,
174df8bae1dSRodney W. Grimes 	 * but we don't yet have a way to check the checksum
175df8bae1dSRodney W. Grimes 	 * with options still present.
176df8bae1dSRodney W. Grimes 	 */
177df8bae1dSRodney W. Grimes 	if (iphlen > sizeof (struct ip)) {
178df8bae1dSRodney W. Grimes 		ip_stripoptions(m, (struct mbuf *)0);
179df8bae1dSRodney W. Grimes 		iphlen = sizeof(struct ip);
180df8bae1dSRodney W. Grimes 	}
181df8bae1dSRodney W. Grimes 
182df8bae1dSRodney W. Grimes 	/*
183df8bae1dSRodney W. Grimes 	 * Get IP and UDP header together in first mbuf.
184df8bae1dSRodney W. Grimes 	 */
185df8bae1dSRodney W. Grimes 	ip = mtod(m, struct ip *);
186df8bae1dSRodney W. Grimes 	if (m->m_len < iphlen + sizeof(struct udphdr)) {
187df8bae1dSRodney W. Grimes 		if ((m = m_pullup(m, iphlen + sizeof(struct udphdr))) == 0) {
188df8bae1dSRodney W. Grimes 			udpstat.udps_hdrops++;
189df8bae1dSRodney W. Grimes 			return;
190df8bae1dSRodney W. Grimes 		}
191df8bae1dSRodney W. Grimes 		ip = mtod(m, struct ip *);
192df8bae1dSRodney W. Grimes 	}
193df8bae1dSRodney W. Grimes 	uh = (struct udphdr *)((caddr_t)ip + iphlen);
194df8bae1dSRodney W. Grimes 
195686cdd19SJun-ichiro itojun Hagino 	/* destination port of 0 is illegal, based on RFC768. */
196686cdd19SJun-ichiro itojun Hagino 	if (uh->uh_dport == 0)
197686cdd19SJun-ichiro itojun Hagino 		goto bad;
198686cdd19SJun-ichiro itojun Hagino 
199df8bae1dSRodney W. Grimes 	/*
200df8bae1dSRodney W. Grimes 	 * Make mbuf data length reflect UDP length.
201df8bae1dSRodney W. Grimes 	 * If not enough data to reflect UDP length, drop.
202df8bae1dSRodney W. Grimes 	 */
203df8bae1dSRodney W. Grimes 	len = ntohs((u_short)uh->uh_ulen);
204df8bae1dSRodney W. Grimes 	if (ip->ip_len != len) {
2057eb7a449SAndras Olah 		if (len > ip->ip_len || len < sizeof(struct udphdr)) {
206df8bae1dSRodney W. Grimes 			udpstat.udps_badlen++;
207df8bae1dSRodney W. Grimes 			goto bad;
208df8bae1dSRodney W. Grimes 		}
209df8bae1dSRodney W. Grimes 		m_adj(m, len - ip->ip_len);
210df8bae1dSRodney W. Grimes 		/* ip->ip_len = len; */
211df8bae1dSRodney W. Grimes 	}
212df8bae1dSRodney W. Grimes 	/*
213df8bae1dSRodney W. Grimes 	 * Save a copy of the IP header in case we want restore it
214df8bae1dSRodney W. Grimes 	 * for sending an ICMP error message in response.
215df8bae1dSRodney W. Grimes 	 */
21648cb400fSRuslan Ermilov 	if (!blackhole)
217df8bae1dSRodney W. Grimes 		save_ip = *ip;
218df8bae1dSRodney W. Grimes 
219df8bae1dSRodney W. Grimes 	/*
220df8bae1dSRodney W. Grimes 	 * Checksum extended UDP header and data.
221df8bae1dSRodney W. Grimes 	 */
2226dfab5b1SGarrett Wollman 	if (uh->uh_sum) {
223db4f9cc7SJonathan Lemon 		if (m->m_pkthdr.csum_flags & CSUM_DATA_VALID) {
224db4f9cc7SJonathan Lemon 			if (m->m_pkthdr.csum_flags & CSUM_PSEUDO_HDR)
225db4f9cc7SJonathan Lemon 				uh->uh_sum = m->m_pkthdr.csum_data;
226db4f9cc7SJonathan Lemon 			else
227db4f9cc7SJonathan Lemon 	                	uh->uh_sum = in_pseudo(ip->ip_src.s_addr,
228506f4949SRuslan Ermilov 				    ip->ip_dst.s_addr, htonl((u_short)len +
229db4f9cc7SJonathan Lemon 				    m->m_pkthdr.csum_data + IPPROTO_UDP));
230db4f9cc7SJonathan Lemon 			uh->uh_sum ^= 0xffff;
231db4f9cc7SJonathan Lemon 		} else {
232cb342100SHajimu UMEMOTO 			char b[9];
233cb342100SHajimu UMEMOTO 			bcopy(((struct ipovly *)ip)->ih_x1, b, 9);
2346effc713SDoug Rabson 			bzero(((struct ipovly *)ip)->ih_x1, 9);
235df8bae1dSRodney W. Grimes 			((struct ipovly *)ip)->ih_len = uh->uh_ulen;
236623ae52eSPoul-Henning Kamp 			uh->uh_sum = in_cksum(m, len + sizeof (struct ip));
237cb342100SHajimu UMEMOTO 			bcopy(b, ((struct ipovly *)ip)->ih_x1, 9);
238db4f9cc7SJonathan Lemon 		}
239623ae52eSPoul-Henning Kamp 		if (uh->uh_sum) {
240df8bae1dSRodney W. Grimes 			udpstat.udps_badsum++;
241df8bae1dSRodney W. Grimes 			m_freem(m);
242df8bae1dSRodney W. Grimes 			return;
243df8bae1dSRodney W. Grimes 		}
244fb9aaba0SRuslan Ermilov 	} else
245fb9aaba0SRuslan Ermilov 		udpstat.udps_nosum++;
246df8bae1dSRodney W. Grimes 
247df8bae1dSRodney W. Grimes 	if (IN_MULTICAST(ntohl(ip->ip_dst.s_addr)) ||
248df8bae1dSRodney W. Grimes 	    in_broadcast(ip->ip_dst, m->m_pkthdr.rcvif)) {
24982c23ebaSBill Fenner 		struct inpcb *last;
250df8bae1dSRodney W. Grimes 		/*
251df8bae1dSRodney W. Grimes 		 * Deliver a multicast or broadcast datagram to *all* sockets
252df8bae1dSRodney W. Grimes 		 * for which the local and remote addresses and ports match
253df8bae1dSRodney W. Grimes 		 * those of the incoming datagram.  This allows more than
254df8bae1dSRodney W. Grimes 		 * one process to receive multi/broadcasts on the same port.
255df8bae1dSRodney W. Grimes 		 * (This really ought to be done for unicast datagrams as
256df8bae1dSRodney W. Grimes 		 * well, but that would cause problems with existing
257df8bae1dSRodney W. Grimes 		 * applications that open both address-specific sockets and
258df8bae1dSRodney W. Grimes 		 * a wildcard socket listening to the same port -- they would
259df8bae1dSRodney W. Grimes 		 * end up receiving duplicates of every unicast datagram.
260df8bae1dSRodney W. Grimes 		 * Those applications open the multiple sockets to overcome an
261df8bae1dSRodney W. Grimes 		 * inadequacy of the UDP socket interface, but for backwards
262df8bae1dSRodney W. Grimes 		 * compatibility we avoid the problem here rather than
263df8bae1dSRodney W. Grimes 		 * fixing the interface.  Maybe 4.5BSD will remedy this?)
264df8bae1dSRodney W. Grimes 		 */
265df8bae1dSRodney W. Grimes 
266df8bae1dSRodney W. Grimes 		/*
267df8bae1dSRodney W. Grimes 		 * Construct sockaddr format source address.
268df8bae1dSRodney W. Grimes 		 */
269df8bae1dSRodney W. Grimes 		udp_in.sin_port = uh->uh_sport;
270df8bae1dSRodney W. Grimes 		udp_in.sin_addr = ip->ip_src;
271df8bae1dSRodney W. Grimes 		/*
272df8bae1dSRodney W. Grimes 		 * Locate pcb(s) for datagram.
273df8bae1dSRodney W. Grimes 		 * (Algorithm copied from raw_intr().)
274df8bae1dSRodney W. Grimes 		 */
275df8bae1dSRodney W. Grimes 		last = NULL;
276cfa1ca9dSYoshinobu Inoue #ifdef INET6
277cfa1ca9dSYoshinobu Inoue 		udp_in6.uin6_init_done = udp_ip6.uip6_init_done = 0;
278cfa1ca9dSYoshinobu Inoue #endif
279cfa1ca9dSYoshinobu Inoue 		LIST_FOREACH(inp, &udb, inp_list) {
280cfa1ca9dSYoshinobu Inoue #ifdef INET6
281369dc8ceSEivind Eklund 			if ((inp->inp_vflag & INP_IPV4) == 0)
282cfa1ca9dSYoshinobu Inoue 				continue;
283cfa1ca9dSYoshinobu Inoue #endif
284df8bae1dSRodney W. Grimes 			if (inp->inp_lport != uh->uh_dport)
285df8bae1dSRodney W. Grimes 				continue;
286df8bae1dSRodney W. Grimes 			if (inp->inp_laddr.s_addr != INADDR_ANY) {
287df8bae1dSRodney W. Grimes 				if (inp->inp_laddr.s_addr !=
288df8bae1dSRodney W. Grimes 				    ip->ip_dst.s_addr)
289df8bae1dSRodney W. Grimes 					continue;
290df8bae1dSRodney W. Grimes 			}
291df8bae1dSRodney W. Grimes 			if (inp->inp_faddr.s_addr != INADDR_ANY) {
292df8bae1dSRodney W. Grimes 				if (inp->inp_faddr.s_addr !=
293df8bae1dSRodney W. Grimes 				    ip->ip_src.s_addr ||
294df8bae1dSRodney W. Grimes 				    inp->inp_fport != uh->uh_sport)
295df8bae1dSRodney W. Grimes 					continue;
296df8bae1dSRodney W. Grimes 			}
297df8bae1dSRodney W. Grimes 
298df8bae1dSRodney W. Grimes 			if (last != NULL) {
299df8bae1dSRodney W. Grimes 				struct mbuf *n;
300df8bae1dSRodney W. Grimes 
301cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
302cfa1ca9dSYoshinobu Inoue 				/* check AH/ESP integrity. */
303cfa1ca9dSYoshinobu Inoue 				if (ipsec4_in_reject_so(m, last->inp_socket))
304cfa1ca9dSYoshinobu Inoue 					ipsecstat.in_polvio++;
305cfa1ca9dSYoshinobu Inoue 					/* do not inject data to pcb */
306cfa1ca9dSYoshinobu Inoue 				else
307cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
308cfa1ca9dSYoshinobu Inoue 				if ((n = m_copy(m, 0, M_COPYALL)) != NULL)
309cfa1ca9dSYoshinobu Inoue 					udp_append(last, ip, n,
310cfa1ca9dSYoshinobu Inoue 						   iphlen +
311cfa1ca9dSYoshinobu Inoue 						   sizeof(struct udphdr));
312df8bae1dSRodney W. Grimes 			}
31382c23ebaSBill Fenner 			last = inp;
314df8bae1dSRodney W. Grimes 			/*
315df8bae1dSRodney W. Grimes 			 * Don't look for additional matches if this one does
316df8bae1dSRodney W. Grimes 			 * not have either the SO_REUSEPORT or SO_REUSEADDR
317df8bae1dSRodney W. Grimes 			 * socket options set.  This heuristic avoids searching
318df8bae1dSRodney W. Grimes 			 * through all pcbs in the common case of a non-shared
319df8bae1dSRodney W. Grimes 			 * port.  It * assumes that an application will never
320df8bae1dSRodney W. Grimes 			 * clear these options after setting them.
321df8bae1dSRodney W. Grimes 			 */
3224cc20ab1SSeigo Tanimura 			if ((last->inp_socket->so_options&(SO_REUSEPORT|SO_REUSEADDR)) == 0)
323df8bae1dSRodney W. Grimes 				break;
324df8bae1dSRodney W. Grimes 		}
325df8bae1dSRodney W. Grimes 
326df8bae1dSRodney W. Grimes 		if (last == NULL) {
327df8bae1dSRodney W. Grimes 			/*
328df8bae1dSRodney W. Grimes 			 * No matching pcb found; discard datagram.
329df8bae1dSRodney W. Grimes 			 * (No need to send an ICMP Port Unreachable
330df8bae1dSRodney W. Grimes 			 * for a broadcast or multicast datgram.)
331df8bae1dSRodney W. Grimes 			 */
332df8bae1dSRodney W. Grimes 			udpstat.udps_noportbcast++;
333df8bae1dSRodney W. Grimes 			goto bad;
334df8bae1dSRodney W. Grimes 		}
335cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
336cfa1ca9dSYoshinobu Inoue 		/* check AH/ESP integrity. */
337cfa1ca9dSYoshinobu Inoue 		if (ipsec4_in_reject_so(m, last->inp_socket)) {
338cfa1ca9dSYoshinobu Inoue 			ipsecstat.in_polvio++;
339df8bae1dSRodney W. Grimes 			goto bad;
340df8bae1dSRodney W. Grimes 		}
341cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
342cfa1ca9dSYoshinobu Inoue 		udp_append(last, ip, m, iphlen + sizeof(struct udphdr));
343df8bae1dSRodney W. Grimes 		return;
344df8bae1dSRodney W. Grimes 	}
345df8bae1dSRodney W. Grimes 	/*
3466d6a026bSDavid Greenman 	 * Locate pcb for datagram.
347df8bae1dSRodney W. Grimes 	 */
348c3229e05SDavid Greenman 	inp = in_pcblookup_hash(&udbinfo, ip->ip_src, uh->uh_sport,
349cfa1ca9dSYoshinobu Inoue 	    ip->ip_dst, uh->uh_dport, 1, m->m_pkthdr.rcvif);
35015bd2b43SDavid Greenman 	if (inp == NULL) {
35175cfc95fSAndrey A. Chernov 		if (log_in_vain) {
352df5c0b8aSBill Fenner 			char buf[4*sizeof "123"];
35375cfc95fSAndrey A. Chernov 
35475cfc95fSAndrey A. Chernov 			strcpy(buf, inet_ntoa(ip->ip_dst));
355592071e8SBruce Evans 			log(LOG_INFO,
356592071e8SBruce Evans 			    "Connection attempt to UDP %s:%d from %s:%d\n",
357592071e8SBruce Evans 			    buf, ntohs(uh->uh_dport), inet_ntoa(ip->ip_src),
358592071e8SBruce Evans 			    ntohs(uh->uh_sport));
35975cfc95fSAndrey A. Chernov 		}
360df8bae1dSRodney W. Grimes 		udpstat.udps_noport++;
361df8bae1dSRodney W. Grimes 		if (m->m_flags & (M_BCAST | M_MCAST)) {
362df8bae1dSRodney W. Grimes 			udpstat.udps_noportbcast++;
363df8bae1dSRodney W. Grimes 			goto bad;
364df8bae1dSRodney W. Grimes 		}
365a57815efSBosko Milekic 		if (badport_bandlim(BANDLIM_ICMP_UNREACH) < 0)
36651508de1SMatthew Dillon 			goto bad;
367582a7760SBruce Evans 		if (blackhole)
36812b4fd06SPoul-Henning Kamp 			goto bad;
36904287599SRuslan Ermilov 		*ip = save_ip;
37004287599SRuslan Ermilov 		ip->ip_len += iphlen;
371582a7760SBruce Evans 		icmp_error(m, ICMP_UNREACH, ICMP_UNREACH_PORT, 0, 0);
372df8bae1dSRodney W. Grimes 		return;
373df8bae1dSRodney W. Grimes 	}
374cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
375cfa1ca9dSYoshinobu Inoue 	if (ipsec4_in_reject_so(m, inp->inp_socket)) {
376cfa1ca9dSYoshinobu Inoue 		ipsecstat.in_polvio++;
377cfa1ca9dSYoshinobu Inoue 		goto bad;
378cfa1ca9dSYoshinobu Inoue 	}
379cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
380df8bae1dSRodney W. Grimes 
381df8bae1dSRodney W. Grimes 	/*
382df8bae1dSRodney W. Grimes 	 * Construct sockaddr format source address.
383df8bae1dSRodney W. Grimes 	 * Stuff source address and datagram in user buffer.
384df8bae1dSRodney W. Grimes 	 */
385df8bae1dSRodney W. Grimes 	udp_in.sin_port = uh->uh_sport;
386df8bae1dSRodney W. Grimes 	udp_in.sin_addr = ip->ip_src;
38782dab6ceSGarrett Wollman 	if (inp->inp_flags & INP_CONTROLOPTS
388cfa1ca9dSYoshinobu Inoue 	    || inp->inp_socket->so_options & SO_TIMESTAMP) {
389cfa1ca9dSYoshinobu Inoue #ifdef INET6
390cfa1ca9dSYoshinobu Inoue 		if (inp->inp_vflag & INP_IPV6) {
391cfa1ca9dSYoshinobu Inoue 			int savedflags;
392cfa1ca9dSYoshinobu Inoue 
393cfa1ca9dSYoshinobu Inoue 			ip_2_ip6_hdr(&udp_ip6.uip6_ip6, ip);
394cfa1ca9dSYoshinobu Inoue 			savedflags = inp->inp_flags;
395cfa1ca9dSYoshinobu Inoue 			inp->inp_flags &= ~INP_UNMAPPABLEOPTS;
396cfa1ca9dSYoshinobu Inoue 			ip6_savecontrol(inp, &opts, &udp_ip6.uip6_ip6, m);
397cfa1ca9dSYoshinobu Inoue 			inp->inp_flags = savedflags;
398cfa1ca9dSYoshinobu Inoue 		} else
399cfa1ca9dSYoshinobu Inoue #endif
40082c23ebaSBill Fenner 		ip_savecontrol(inp, &opts, ip, m);
4014cc20ab1SSeigo Tanimura 	}
40233841545SHajimu UMEMOTO  	m_adj(m, iphlen + sizeof(struct udphdr));
403cfa1ca9dSYoshinobu Inoue #ifdef INET6
404cfa1ca9dSYoshinobu Inoue 	if (inp->inp_vflag & INP_IPV6) {
405cfa1ca9dSYoshinobu Inoue 		in6_sin_2_v4mapsin6(&udp_in, &udp_in6.uin6_sin);
406cfa1ca9dSYoshinobu Inoue 		append_sa = (struct sockaddr *)&udp_in6;
407cfa1ca9dSYoshinobu Inoue 	} else
408cfa1ca9dSYoshinobu Inoue #endif
409cfa1ca9dSYoshinobu Inoue 	append_sa = (struct sockaddr *)&udp_in;
410cfa1ca9dSYoshinobu Inoue 	if (sbappendaddr(&inp->inp_socket->so_rcv, append_sa, m, opts) == 0) {
411df8bae1dSRodney W. Grimes 		udpstat.udps_fullsock++;
412df8bae1dSRodney W. Grimes 		goto bad;
413df8bae1dSRodney W. Grimes 	}
414df8bae1dSRodney W. Grimes 	sorwakeup(inp->inp_socket);
415df8bae1dSRodney W. Grimes 	return;
416df8bae1dSRodney W. Grimes bad:
417df8bae1dSRodney W. Grimes 	m_freem(m);
418df8bae1dSRodney W. Grimes 	if (opts)
419df8bae1dSRodney W. Grimes 		m_freem(opts);
420cfa1ca9dSYoshinobu Inoue 	return;
421cfa1ca9dSYoshinobu Inoue }
422cfa1ca9dSYoshinobu Inoue 
423686cdd19SJun-ichiro itojun Hagino #ifdef INET6
424cfa1ca9dSYoshinobu Inoue static void
425cfa1ca9dSYoshinobu Inoue ip_2_ip6_hdr(ip6, ip)
426cfa1ca9dSYoshinobu Inoue 	struct ip6_hdr *ip6;
427cfa1ca9dSYoshinobu Inoue 	struct ip *ip;
428cfa1ca9dSYoshinobu Inoue {
429cfa1ca9dSYoshinobu Inoue 	bzero(ip6, sizeof(*ip6));
430cfa1ca9dSYoshinobu Inoue 
431cfa1ca9dSYoshinobu Inoue 	ip6->ip6_vfc = IPV6_VERSION;
432cfa1ca9dSYoshinobu Inoue 	ip6->ip6_plen = ip->ip_len;
433cfa1ca9dSYoshinobu Inoue 	ip6->ip6_nxt = ip->ip_p;
434cfa1ca9dSYoshinobu Inoue 	ip6->ip6_hlim = ip->ip_ttl;
435cfa1ca9dSYoshinobu Inoue 	ip6->ip6_src.s6_addr32[2] = ip6->ip6_dst.s6_addr32[2] =
436cfa1ca9dSYoshinobu Inoue 		IPV6_ADDR_INT32_SMP;
437cfa1ca9dSYoshinobu Inoue 	ip6->ip6_src.s6_addr32[3] = ip->ip_src.s_addr;
438cfa1ca9dSYoshinobu Inoue 	ip6->ip6_dst.s6_addr32[3] = ip->ip_dst.s_addr;
439cfa1ca9dSYoshinobu Inoue }
440cfa1ca9dSYoshinobu Inoue #endif
441cfa1ca9dSYoshinobu Inoue 
442cfa1ca9dSYoshinobu Inoue /*
443cfa1ca9dSYoshinobu Inoue  * subroutine of udp_input(), mainly for source code readability.
444cfa1ca9dSYoshinobu Inoue  * caller must properly init udp_ip6 and udp_in6 beforehand.
445cfa1ca9dSYoshinobu Inoue  */
446cfa1ca9dSYoshinobu Inoue static void
447cfa1ca9dSYoshinobu Inoue udp_append(last, ip, n, off)
448cfa1ca9dSYoshinobu Inoue 	struct inpcb *last;
449cfa1ca9dSYoshinobu Inoue 	struct ip *ip;
450cfa1ca9dSYoshinobu Inoue 	struct mbuf *n;
451cfa1ca9dSYoshinobu Inoue 	int off;
452cfa1ca9dSYoshinobu Inoue {
453cfa1ca9dSYoshinobu Inoue 	struct sockaddr *append_sa;
454cfa1ca9dSYoshinobu Inoue 	struct mbuf *opts = 0;
455cfa1ca9dSYoshinobu Inoue 
456cfa1ca9dSYoshinobu Inoue 	if (last->inp_flags & INP_CONTROLOPTS ||
457cfa1ca9dSYoshinobu Inoue 	    last->inp_socket->so_options & SO_TIMESTAMP) {
458cfa1ca9dSYoshinobu Inoue #ifdef INET6
459cfa1ca9dSYoshinobu Inoue 		if (last->inp_vflag & INP_IPV6) {
460cfa1ca9dSYoshinobu Inoue 			int savedflags;
461cfa1ca9dSYoshinobu Inoue 
462cfa1ca9dSYoshinobu Inoue 			if (udp_ip6.uip6_init_done == 0) {
463cfa1ca9dSYoshinobu Inoue 				ip_2_ip6_hdr(&udp_ip6.uip6_ip6, ip);
464cfa1ca9dSYoshinobu Inoue 				udp_ip6.uip6_init_done = 1;
465cfa1ca9dSYoshinobu Inoue 			}
466cfa1ca9dSYoshinobu Inoue 			savedflags = last->inp_flags;
467cfa1ca9dSYoshinobu Inoue 			last->inp_flags &= ~INP_UNMAPPABLEOPTS;
468cfa1ca9dSYoshinobu Inoue 			ip6_savecontrol(last, &opts, &udp_ip6.uip6_ip6, n);
469cfa1ca9dSYoshinobu Inoue 			last->inp_flags = savedflags;
470cfa1ca9dSYoshinobu Inoue 		} else
471cfa1ca9dSYoshinobu Inoue #endif
472cfa1ca9dSYoshinobu Inoue 		ip_savecontrol(last, &opts, ip, n);
4734cc20ab1SSeigo Tanimura 	}
474cfa1ca9dSYoshinobu Inoue #ifdef INET6
475cfa1ca9dSYoshinobu Inoue 	if (last->inp_vflag & INP_IPV6) {
476cfa1ca9dSYoshinobu Inoue 		if (udp_in6.uin6_init_done == 0) {
477cfa1ca9dSYoshinobu Inoue 			in6_sin_2_v4mapsin6(&udp_in, &udp_in6.uin6_sin);
478cfa1ca9dSYoshinobu Inoue 			udp_in6.uin6_init_done = 1;
479cfa1ca9dSYoshinobu Inoue 		}
480cfa1ca9dSYoshinobu Inoue 		append_sa = (struct sockaddr *)&udp_in6.uin6_sin;
481cfa1ca9dSYoshinobu Inoue 	} else
482cfa1ca9dSYoshinobu Inoue #endif
483cfa1ca9dSYoshinobu Inoue 	append_sa = (struct sockaddr *)&udp_in;
484cfa1ca9dSYoshinobu Inoue 	m_adj(n, off);
485cfa1ca9dSYoshinobu Inoue 	if (sbappendaddr(&last->inp_socket->so_rcv, append_sa, n, opts) == 0) {
486cfa1ca9dSYoshinobu Inoue 		m_freem(n);
487cfa1ca9dSYoshinobu Inoue 		if (opts)
488cfa1ca9dSYoshinobu Inoue 			m_freem(opts);
489cfa1ca9dSYoshinobu Inoue 		udpstat.udps_fullsock++;
4904cc20ab1SSeigo Tanimura 	} else
491cfa1ca9dSYoshinobu Inoue 		sorwakeup(last->inp_socket);
492df8bae1dSRodney W. Grimes }
493df8bae1dSRodney W. Grimes 
494df8bae1dSRodney W. Grimes /*
495df8bae1dSRodney W. Grimes  * Notify a udp user of an asynchronous error;
496df8bae1dSRodney W. Grimes  * just wake up so that he can collect error status.
497df8bae1dSRodney W. Grimes  */
49876429de4SYoshinobu Inoue void
499df8bae1dSRodney W. Grimes udp_notify(inp, errno)
500df8bae1dSRodney W. Grimes 	register struct inpcb *inp;
501df8bae1dSRodney W. Grimes 	int errno;
502df8bae1dSRodney W. Grimes {
503df8bae1dSRodney W. Grimes 	inp->inp_socket->so_error = errno;
504df8bae1dSRodney W. Grimes 	sorwakeup(inp->inp_socket);
505df8bae1dSRodney W. Grimes 	sowwakeup(inp->inp_socket);
506df8bae1dSRodney W. Grimes }
507df8bae1dSRodney W. Grimes 
508df8bae1dSRodney W. Grimes void
509b62d102cSBruce Evans udp_ctlinput(cmd, sa, vip)
510df8bae1dSRodney W. Grimes 	int cmd;
511df8bae1dSRodney W. Grimes 	struct sockaddr *sa;
512b62d102cSBruce Evans 	void *vip;
513df8bae1dSRodney W. Grimes {
514c693a045SJonathan Lemon 	struct ip *ip = vip;
515c693a045SJonathan Lemon 	struct udphdr *uh;
5164d77a549SAlfred Perlstein 	void (*notify)(struct inpcb *, int) = udp_notify;
517c693a045SJonathan Lemon         struct in_addr faddr;
518c693a045SJonathan Lemon 	struct inpcb *inp;
519c693a045SJonathan Lemon 	int s;
520c693a045SJonathan Lemon 
521c693a045SJonathan Lemon 	faddr = ((struct sockaddr_in *)sa)->sin_addr;
522c693a045SJonathan Lemon 	if (sa->sa_family != AF_INET || faddr.s_addr == INADDR_ANY)
523c693a045SJonathan Lemon         	return;
524df8bae1dSRodney W. Grimes 
525d1c54148SJesper Skriver 	if (PRC_IS_REDIRECT(cmd)) {
526d1c54148SJesper Skriver 		ip = 0;
527d1c54148SJesper Skriver 		notify = in_rtchange;
528d1c54148SJesper Skriver 	} else if (cmd == PRC_HOSTDEAD)
529d1c54148SJesper Skriver 		ip = 0;
530d1c54148SJesper Skriver 	else if ((unsigned)cmd >= PRC_NCMDS || inetctlerrmap[cmd] == 0)
531df8bae1dSRodney W. Grimes 		return;
532df8bae1dSRodney W. Grimes 	if (ip) {
533c693a045SJonathan Lemon 		s = splnet();
534df8bae1dSRodney W. Grimes 		uh = (struct udphdr *)((caddr_t)ip + (ip->ip_hl << 2));
535c693a045SJonathan Lemon 		inp = in_pcblookup_hash(&udbinfo, faddr, uh->uh_dport,
536c693a045SJonathan Lemon                     ip->ip_src, uh->uh_sport, 0, NULL);
537c693a045SJonathan Lemon 		if (inp != NULL && inp->inp_socket != NULL)
538c693a045SJonathan Lemon 			(*notify)(inp, inetctlerrmap[cmd]);
539c693a045SJonathan Lemon 		splx(s);
540df8bae1dSRodney W. Grimes 	} else
541c693a045SJonathan Lemon 		in_pcbnotifyall(&udb, faddr, inetctlerrmap[cmd], notify);
542df8bae1dSRodney W. Grimes }
543df8bae1dSRodney W. Grimes 
5440312fbe9SPoul-Henning Kamp static int
54582d9ae4eSPoul-Henning Kamp udp_pcblist(SYSCTL_HANDLER_ARGS)
54698271db4SGarrett Wollman {
54798271db4SGarrett Wollman 	int error, i, n, s;
54898271db4SGarrett Wollman 	struct inpcb *inp, **inp_list;
54998271db4SGarrett Wollman 	inp_gen_t gencnt;
55098271db4SGarrett Wollman 	struct xinpgen xig;
55198271db4SGarrett Wollman 
55298271db4SGarrett Wollman 	/*
55398271db4SGarrett Wollman 	 * The process of preparing the TCB list is too time-consuming and
55498271db4SGarrett Wollman 	 * resource-intensive to repeat twice on every request.
55598271db4SGarrett Wollman 	 */
55698271db4SGarrett Wollman 	if (req->oldptr == 0) {
55798271db4SGarrett Wollman 		n = udbinfo.ipi_count;
55898271db4SGarrett Wollman 		req->oldidx = 2 * (sizeof xig)
55998271db4SGarrett Wollman 			+ (n + n/8) * sizeof(struct xinpcb);
56098271db4SGarrett Wollman 		return 0;
56198271db4SGarrett Wollman 	}
56298271db4SGarrett Wollman 
56398271db4SGarrett Wollman 	if (req->newptr != 0)
56498271db4SGarrett Wollman 		return EPERM;
56598271db4SGarrett Wollman 
56698271db4SGarrett Wollman 	/*
56798271db4SGarrett Wollman 	 * OK, now we're committed to doing something.
56898271db4SGarrett Wollman 	 */
56998271db4SGarrett Wollman 	s = splnet();
57098271db4SGarrett Wollman 	gencnt = udbinfo.ipi_gencnt;
57198271db4SGarrett Wollman 	n = udbinfo.ipi_count;
57298271db4SGarrett Wollman 	splx(s);
57398271db4SGarrett Wollman 
57498271db4SGarrett Wollman 	xig.xig_len = sizeof xig;
57598271db4SGarrett Wollman 	xig.xig_count = n;
57698271db4SGarrett Wollman 	xig.xig_gen = gencnt;
57798271db4SGarrett Wollman 	xig.xig_sogen = so_gencnt;
57898271db4SGarrett Wollman 	error = SYSCTL_OUT(req, &xig, sizeof xig);
57998271db4SGarrett Wollman 	if (error)
58098271db4SGarrett Wollman 		return error;
58198271db4SGarrett Wollman 
58298271db4SGarrett Wollman 	inp_list = malloc(n * sizeof *inp_list, M_TEMP, M_WAITOK);
58398271db4SGarrett Wollman 	if (inp_list == 0)
58498271db4SGarrett Wollman 		return ENOMEM;
58598271db4SGarrett Wollman 
58698271db4SGarrett Wollman 	s = splnet();
587fc2ffbe6SPoul-Henning Kamp 	for (inp = LIST_FIRST(udbinfo.listhead), i = 0; inp && i < n;
588fc2ffbe6SPoul-Henning Kamp 	     inp = LIST_NEXT(inp, inp_list)) {
5898a7d8cc6SRobert Watson 		if (inp->inp_gencnt <= gencnt) {
59029dc1288SRobert Watson 			if (cr_canseesocket(req->td->td_ucred,
59129dc1288SRobert Watson 			    inp->inp_socket))
5924787fd37SPaul Saab 				continue;
59398271db4SGarrett Wollman 			inp_list[i++] = inp;
59498271db4SGarrett Wollman 		}
5954787fd37SPaul Saab 	}
59698271db4SGarrett Wollman 	splx(s);
59798271db4SGarrett Wollman 	n = i;
59898271db4SGarrett Wollman 
59998271db4SGarrett Wollman 	error = 0;
60098271db4SGarrett Wollman 	for (i = 0; i < n; i++) {
60198271db4SGarrett Wollman 		inp = inp_list[i];
60298271db4SGarrett Wollman 		if (inp->inp_gencnt <= gencnt) {
60398271db4SGarrett Wollman 			struct xinpcb xi;
60498271db4SGarrett Wollman 			xi.xi_len = sizeof xi;
60598271db4SGarrett Wollman 			/* XXX should avoid extra copy */
60698271db4SGarrett Wollman 			bcopy(inp, &xi.xi_inp, sizeof *inp);
60798271db4SGarrett Wollman 			if (inp->inp_socket)
60898271db4SGarrett Wollman 				sotoxsocket(inp->inp_socket, &xi.xi_socket);
60998271db4SGarrett Wollman 			error = SYSCTL_OUT(req, &xi, sizeof xi);
61098271db4SGarrett Wollman 		}
61198271db4SGarrett Wollman 	}
61298271db4SGarrett Wollman 	if (!error) {
61398271db4SGarrett Wollman 		/*
61498271db4SGarrett Wollman 		 * Give the user an updated idea of our state.
61598271db4SGarrett Wollman 		 * If the generation differs from what we told
61698271db4SGarrett Wollman 		 * her before, she knows that something happened
61798271db4SGarrett Wollman 		 * while we were processing this request, and it
61898271db4SGarrett Wollman 		 * might be necessary to retry.
61998271db4SGarrett Wollman 		 */
62098271db4SGarrett Wollman 		s = splnet();
62198271db4SGarrett Wollman 		xig.xig_gen = udbinfo.ipi_gencnt;
62298271db4SGarrett Wollman 		xig.xig_sogen = so_gencnt;
62398271db4SGarrett Wollman 		xig.xig_count = udbinfo.ipi_count;
62498271db4SGarrett Wollman 		splx(s);
62598271db4SGarrett Wollman 		error = SYSCTL_OUT(req, &xig, sizeof xig);
62698271db4SGarrett Wollman 	}
62798271db4SGarrett Wollman 	free(inp_list, M_TEMP);
62898271db4SGarrett Wollman 	return error;
62998271db4SGarrett Wollman }
63098271db4SGarrett Wollman 
63198271db4SGarrett Wollman SYSCTL_PROC(_net_inet_udp, UDPCTL_PCBLIST, pcblist, CTLFLAG_RD, 0, 0,
63298271db4SGarrett Wollman 	    udp_pcblist, "S,xinpcb", "List of active UDP sockets");
63398271db4SGarrett Wollman 
63498271db4SGarrett Wollman static int
63582d9ae4eSPoul-Henning Kamp udp_getcred(SYSCTL_HANDLER_ARGS)
636490d50b6SBrian Feldman {
637c0511d3bSBrian Feldman 	struct xucred xuc;
638490d50b6SBrian Feldman 	struct sockaddr_in addrs[2];
639490d50b6SBrian Feldman 	struct inpcb *inp;
640490d50b6SBrian Feldman 	int error, s;
641490d50b6SBrian Feldman 
64244731cabSJohn Baldwin 	error = suser_cred(req->td->td_ucred, PRISON_ROOT);
643490d50b6SBrian Feldman 	if (error)
644490d50b6SBrian Feldman 		return (error);
645490d50b6SBrian Feldman 	error = SYSCTL_IN(req, addrs, sizeof(addrs));
646490d50b6SBrian Feldman 	if (error)
647490d50b6SBrian Feldman 		return (error);
648490d50b6SBrian Feldman 	s = splnet();
649490d50b6SBrian Feldman 	inp = in_pcblookup_hash(&udbinfo, addrs[1].sin_addr, addrs[1].sin_port,
650cfa1ca9dSYoshinobu Inoue 				addrs[0].sin_addr, addrs[0].sin_port, 1, NULL);
6512f9a2132SBrian Feldman 	if (inp == NULL || inp->inp_socket == NULL) {
652490d50b6SBrian Feldman 		error = ENOENT;
653490d50b6SBrian Feldman 		goto out;
654490d50b6SBrian Feldman 	}
65529dc1288SRobert Watson 	error = cr_canseesocket(req->td->td_ucred, inp->inp_socket);
6567ce87f12SDavid Malone 	if (error)
6577ce87f12SDavid Malone 		goto out;
65876183f34SDima Dorfman 	cru2x(inp->inp_socket->so_cred, &xuc);
659c0511d3bSBrian Feldman 	error = SYSCTL_OUT(req, &xuc, sizeof(struct xucred));
660490d50b6SBrian Feldman out:
661490d50b6SBrian Feldman 	splx(s);
662490d50b6SBrian Feldman 	return (error);
663490d50b6SBrian Feldman }
664490d50b6SBrian Feldman 
6657ce87f12SDavid Malone SYSCTL_PROC(_net_inet_udp, OID_AUTO, getcred,
6667ce87f12SDavid Malone     CTLTYPE_OPAQUE|CTLFLAG_RW|CTLFLAG_PRISON, 0, 0,
6677ce87f12SDavid Malone     udp_getcred, "S,xucred", "Get the xucred of a UDP connection");
668490d50b6SBrian Feldman 
669490d50b6SBrian Feldman static int
670b40ce416SJulian Elischer udp_output(inp, m, addr, control, td)
671df8bae1dSRodney W. Grimes 	register struct inpcb *inp;
672d25f3712SBrian Feldman 	struct mbuf *m;
67357bf258eSGarrett Wollman 	struct sockaddr *addr;
67457bf258eSGarrett Wollman 	struct mbuf *control;
675b40ce416SJulian Elischer 	struct thread *td;
676df8bae1dSRodney W. Grimes {
677df8bae1dSRodney W. Grimes 	register struct udpiphdr *ui;
678df8bae1dSRodney W. Grimes 	register int len = m->m_pkthdr.len;
679df8bae1dSRodney W. Grimes 	struct in_addr laddr;
68075c13541SPoul-Henning Kamp 	struct sockaddr_in *sin;
6814cc20ab1SSeigo Tanimura 	int s = 0, error = 0;
682df8bae1dSRodney W. Grimes 
683df8bae1dSRodney W. Grimes 	if (control)
684df8bae1dSRodney W. Grimes 		m_freem(control);		/* XXX */
685df8bae1dSRodney W. Grimes 
686430d30d8SBill Fenner 	if (len + sizeof(struct udpiphdr) > IP_MAXPACKET) {
687430d30d8SBill Fenner 		error = EMSGSIZE;
688430d30d8SBill Fenner 		goto release;
689430d30d8SBill Fenner 	}
690430d30d8SBill Fenner 
691df8bae1dSRodney W. Grimes 	if (addr) {
69275c13541SPoul-Henning Kamp 		sin = (struct sockaddr_in *)addr;
693a854ed98SJohn Baldwin 		if (td && jailed(td->td_ucred))
694a854ed98SJohn Baldwin 			prison_remote_ip(td->td_ucred, 0, &sin->sin_addr.s_addr);
695df8bae1dSRodney W. Grimes 		laddr = inp->inp_laddr;
696df8bae1dSRodney W. Grimes 		if (inp->inp_faddr.s_addr != INADDR_ANY) {
697df8bae1dSRodney W. Grimes 			error = EISCONN;
698df8bae1dSRodney W. Grimes 			goto release;
699df8bae1dSRodney W. Grimes 		}
700df8bae1dSRodney W. Grimes 		/*
701df8bae1dSRodney W. Grimes 		 * Must block input while temporarily connected.
702df8bae1dSRodney W. Grimes 		 */
703df8bae1dSRodney W. Grimes 		s = splnet();
704b40ce416SJulian Elischer 		error = in_pcbconnect(inp, addr, td);
705df8bae1dSRodney W. Grimes 		if (error) {
706df8bae1dSRodney W. Grimes 			splx(s);
707df8bae1dSRodney W. Grimes 			goto release;
708df8bae1dSRodney W. Grimes 		}
709df8bae1dSRodney W. Grimes 	} else {
710df8bae1dSRodney W. Grimes 		if (inp->inp_faddr.s_addr == INADDR_ANY) {
711df8bae1dSRodney W. Grimes 			error = ENOTCONN;
712df8bae1dSRodney W. Grimes 			goto release;
713df8bae1dSRodney W. Grimes 		}
714df8bae1dSRodney W. Grimes 	}
715df8bae1dSRodney W. Grimes 	/*
716df8bae1dSRodney W. Grimes 	 * Calculate data length and get a mbuf
717df8bae1dSRodney W. Grimes 	 * for UDP and IP headers.
718df8bae1dSRodney W. Grimes 	 */
719df8bae1dSRodney W. Grimes 	M_PREPEND(m, sizeof(struct udpiphdr), M_DONTWAIT);
720df8bae1dSRodney W. Grimes 	if (m == 0) {
721df8bae1dSRodney W. Grimes 		error = ENOBUFS;
7221c09f774SGarrett Wollman 		if (addr)
7231c09f774SGarrett Wollman 			splx(s);
724df8bae1dSRodney W. Grimes 		goto release;
725df8bae1dSRodney W. Grimes 	}
726df8bae1dSRodney W. Grimes 
727df8bae1dSRodney W. Grimes 	/*
728df8bae1dSRodney W. Grimes 	 * Fill in mbuf with extended UDP header
729df8bae1dSRodney W. Grimes 	 * and addresses and length put into network format.
730df8bae1dSRodney W. Grimes 	 */
731df8bae1dSRodney W. Grimes 	ui = mtod(m, struct udpiphdr *);
732db4f9cc7SJonathan Lemon 	bzero(ui->ui_x1, sizeof(ui->ui_x1));	/* XXX still needed? */
733df8bae1dSRodney W. Grimes 	ui->ui_pr = IPPROTO_UDP;
734df8bae1dSRodney W. Grimes 	ui->ui_src = inp->inp_laddr;
735df8bae1dSRodney W. Grimes 	ui->ui_dst = inp->inp_faddr;
736df8bae1dSRodney W. Grimes 	ui->ui_sport = inp->inp_lport;
737df8bae1dSRodney W. Grimes 	ui->ui_dport = inp->inp_fport;
738db4f9cc7SJonathan Lemon 	ui->ui_ulen = htons((u_short)len + sizeof(struct udphdr));
739df8bae1dSRodney W. Grimes 
740df8bae1dSRodney W. Grimes 	/*
741db4f9cc7SJonathan Lemon 	 * Set up checksum and output datagram.
742df8bae1dSRodney W. Grimes 	 */
743df8bae1dSRodney W. Grimes 	if (udpcksum) {
744db4f9cc7SJonathan Lemon         	ui->ui_sum = in_pseudo(ui->ui_src.s_addr, ui->ui_dst.s_addr,
745db4f9cc7SJonathan Lemon 		    htons((u_short)len + sizeof(struct udphdr) + IPPROTO_UDP));
746db4f9cc7SJonathan Lemon 		m->m_pkthdr.csum_flags = CSUM_UDP;
747db4f9cc7SJonathan Lemon 		m->m_pkthdr.csum_data = offsetof(struct udphdr, uh_sum);
748db4f9cc7SJonathan Lemon 	} else {
749db4f9cc7SJonathan Lemon 		ui->ui_sum = 0;
750df8bae1dSRodney W. Grimes 	}
751df8bae1dSRodney W. Grimes 	((struct ip *)ui)->ip_len = sizeof (struct udpiphdr) + len;
752ca98b82cSDavid Greenman 	((struct ip *)ui)->ip_ttl = inp->inp_ip_ttl;	/* XXX */
753ca98b82cSDavid Greenman 	((struct ip *)ui)->ip_tos = inp->inp_ip_tos;	/* XXX */
754df8bae1dSRodney W. Grimes 	udpstat.udps_opackets++;
755cfa1ca9dSYoshinobu Inoue 
756cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
75733841545SHajimu UMEMOTO 	if (ipsec_setsocket(m, inp->inp_socket) != 0) {
75833841545SHajimu UMEMOTO 		error = ENOBUFS;
75933841545SHajimu UMEMOTO 		goto release;
76033841545SHajimu UMEMOTO 	}
761cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
762df8bae1dSRodney W. Grimes 	error = ip_output(m, inp->inp_options, &inp->inp_route,
7634cc20ab1SSeigo Tanimura 	    (inp->inp_socket->so_options & (SO_DONTROUTE | SO_BROADCAST)),
764df8bae1dSRodney W. Grimes 	    inp->inp_moptions);
765df8bae1dSRodney W. Grimes 
766df8bae1dSRodney W. Grimes 	if (addr) {
767df8bae1dSRodney W. Grimes 		in_pcbdisconnect(inp);
76857bf258eSGarrett Wollman 		inp->inp_laddr = laddr;	/* XXX rehash? */
769df8bae1dSRodney W. Grimes 		splx(s);
770df8bae1dSRodney W. Grimes 	}
771df8bae1dSRodney W. Grimes 	return (error);
772df8bae1dSRodney W. Grimes 
773df8bae1dSRodney W. Grimes release:
774df8bae1dSRodney W. Grimes 	m_freem(m);
775df8bae1dSRodney W. Grimes 	return (error);
776df8bae1dSRodney W. Grimes }
777df8bae1dSRodney W. Grimes 
77876429de4SYoshinobu Inoue u_long	udp_sendspace = 9216;		/* really max datagram size */
779df8bae1dSRodney W. Grimes 					/* 40 1K datagrams */
7800312fbe9SPoul-Henning Kamp SYSCTL_INT(_net_inet_udp, UDPCTL_MAXDGRAM, maxdgram, CTLFLAG_RW,
7813d177f46SBill Fumerola     &udp_sendspace, 0, "Maximum outgoing UDP datagram size");
7820312fbe9SPoul-Henning Kamp 
783cfa1ca9dSYoshinobu Inoue u_long	udp_recvspace = 40 * (1024 +
784cfa1ca9dSYoshinobu Inoue #ifdef INET6
785cfa1ca9dSYoshinobu Inoue 				      sizeof(struct sockaddr_in6)
786cfa1ca9dSYoshinobu Inoue #else
787cfa1ca9dSYoshinobu Inoue 				      sizeof(struct sockaddr_in)
788cfa1ca9dSYoshinobu Inoue #endif
789cfa1ca9dSYoshinobu Inoue 				      );
7900312fbe9SPoul-Henning Kamp SYSCTL_INT(_net_inet_udp, UDPCTL_RECVSPACE, recvspace, CTLFLAG_RW,
7913d177f46SBill Fumerola     &udp_recvspace, 0, "Maximum incoming UDP datagram size");
792df8bae1dSRodney W. Grimes 
793d0390e05SGarrett Wollman static int
794d0390e05SGarrett Wollman udp_abort(struct socket *so)
795df8bae1dSRodney W. Grimes {
796d0390e05SGarrett Wollman 	struct inpcb *inp;
797df8bae1dSRodney W. Grimes 	int s;
798df8bae1dSRodney W. Grimes 
799d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
800d0390e05SGarrett Wollman 	if (inp == 0)
801d0390e05SGarrett Wollman 		return EINVAL;	/* ??? possible? panic instead? */
802d0390e05SGarrett Wollman 	soisdisconnected(so);
803d0390e05SGarrett Wollman 	s = splnet();
804d0390e05SGarrett Wollman 	in_pcbdetach(inp);
805d0390e05SGarrett Wollman 	splx(s);
806d0390e05SGarrett Wollman 	return 0;
807df8bae1dSRodney W. Grimes }
808df8bae1dSRodney W. Grimes 
809d0390e05SGarrett Wollman static int
810b40ce416SJulian Elischer udp_attach(struct socket *so, int proto, struct thread *td)
811d0390e05SGarrett Wollman {
812d0390e05SGarrett Wollman 	struct inpcb *inp;
813d0390e05SGarrett Wollman 	int s, error;
814d0390e05SGarrett Wollman 
815d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
816d0390e05SGarrett Wollman 	if (inp != 0)
817d0390e05SGarrett Wollman 		return EINVAL;
818d0390e05SGarrett Wollman 
819cfa1ca9dSYoshinobu Inoue 	error = soreserve(so, udp_sendspace, udp_recvspace);
820cfa1ca9dSYoshinobu Inoue 	if (error)
821cfa1ca9dSYoshinobu Inoue 		return error;
822df8bae1dSRodney W. Grimes 	s = splnet();
823b40ce416SJulian Elischer 	error = in_pcballoc(so, &udbinfo, td);
824df8bae1dSRodney W. Grimes 	splx(s);
825df8bae1dSRodney W. Grimes 	if (error)
826d0390e05SGarrett Wollman 		return error;
827cfa1ca9dSYoshinobu Inoue 
828cfa1ca9dSYoshinobu Inoue 	inp = (struct inpcb *)so->so_pcb;
829cfa1ca9dSYoshinobu Inoue 	inp->inp_vflag |= INP_IPV4;
830cfa1ca9dSYoshinobu Inoue 	inp->inp_ip_ttl = ip_defttl;
831d0390e05SGarrett Wollman 	return 0;
832df8bae1dSRodney W. Grimes }
833d0390e05SGarrett Wollman 
834d0390e05SGarrett Wollman static int
835b40ce416SJulian Elischer udp_bind(struct socket *so, struct sockaddr *nam, struct thread *td)
836d0390e05SGarrett Wollman {
837d0390e05SGarrett Wollman 	struct inpcb *inp;
838d0390e05SGarrett Wollman 	int s, error;
839d0390e05SGarrett Wollman 
840d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
841d0390e05SGarrett Wollman 	if (inp == 0)
842d0390e05SGarrett Wollman 		return EINVAL;
843df8bae1dSRodney W. Grimes 	s = splnet();
844b40ce416SJulian Elischer 	error = in_pcbbind(inp, nam, td);
845d0390e05SGarrett Wollman 	splx(s);
846d0390e05SGarrett Wollman 	return error;
847d0390e05SGarrett Wollman }
848d0390e05SGarrett Wollman 
849d0390e05SGarrett Wollman static int
850b40ce416SJulian Elischer udp_connect(struct socket *so, struct sockaddr *nam, struct thread *td)
851d0390e05SGarrett Wollman {
852d0390e05SGarrett Wollman 	struct inpcb *inp;
853d0390e05SGarrett Wollman 	int s, error;
85475c13541SPoul-Henning Kamp 	struct sockaddr_in *sin;
855d0390e05SGarrett Wollman 
856d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
857d0390e05SGarrett Wollman 	if (inp == 0)
858d0390e05SGarrett Wollman 		return EINVAL;
859d0390e05SGarrett Wollman 	if (inp->inp_faddr.s_addr != INADDR_ANY)
860d0390e05SGarrett Wollman 		return EISCONN;
861d0390e05SGarrett Wollman 	s = splnet();
86275c13541SPoul-Henning Kamp 	sin = (struct sockaddr_in *)nam;
863a854ed98SJohn Baldwin 	if (td && jailed(td->td_ucred))
864a854ed98SJohn Baldwin 		prison_remote_ip(td->td_ucred, 0, &sin->sin_addr.s_addr);
865b40ce416SJulian Elischer 	error = in_pcbconnect(inp, nam, td);
866df8bae1dSRodney W. Grimes 	splx(s);
8674cc20ab1SSeigo Tanimura 	if (error == 0)
868df8bae1dSRodney W. Grimes 		soisconnected(so);
869d0390e05SGarrett Wollman 	return error;
870df8bae1dSRodney W. Grimes }
871d0390e05SGarrett Wollman 
872d0390e05SGarrett Wollman static int
873d0390e05SGarrett Wollman udp_detach(struct socket *so)
874d0390e05SGarrett Wollman {
875d0390e05SGarrett Wollman 	struct inpcb *inp;
876d0390e05SGarrett Wollman 	int s;
877d0390e05SGarrett Wollman 
878d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
879d0390e05SGarrett Wollman 	if (inp == 0)
880d0390e05SGarrett Wollman 		return EINVAL;
881d0390e05SGarrett Wollman 	s = splnet();
882d0390e05SGarrett Wollman 	in_pcbdetach(inp);
883d0390e05SGarrett Wollman 	splx(s);
884d0390e05SGarrett Wollman 	return 0;
885d0390e05SGarrett Wollman }
886d0390e05SGarrett Wollman 
887d0390e05SGarrett Wollman static int
888d0390e05SGarrett Wollman udp_disconnect(struct socket *so)
889d0390e05SGarrett Wollman {
890d0390e05SGarrett Wollman 	struct inpcb *inp;
891d0390e05SGarrett Wollman 	int s;
892d0390e05SGarrett Wollman 
893d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
894d0390e05SGarrett Wollman 	if (inp == 0)
895d0390e05SGarrett Wollman 		return EINVAL;
896d0390e05SGarrett Wollman 	if (inp->inp_faddr.s_addr == INADDR_ANY)
897d0390e05SGarrett Wollman 		return ENOTCONN;
898d0390e05SGarrett Wollman 
899df8bae1dSRodney W. Grimes 	s = splnet();
900df8bae1dSRodney W. Grimes 	in_pcbdisconnect(inp);
901df8bae1dSRodney W. Grimes 	inp->inp_laddr.s_addr = INADDR_ANY;
902df8bae1dSRodney W. Grimes 	splx(s);
903df8bae1dSRodney W. Grimes 	so->so_state &= ~SS_ISCONNECTED;		/* XXX */
904d0390e05SGarrett Wollman 	return 0;
905df8bae1dSRodney W. Grimes }
906df8bae1dSRodney W. Grimes 
907d0390e05SGarrett Wollman static int
90857bf258eSGarrett Wollman udp_send(struct socket *so, int flags, struct mbuf *m, struct sockaddr *addr,
909b40ce416SJulian Elischer 	    struct mbuf *control, struct thread *td)
910d0390e05SGarrett Wollman {
911d0390e05SGarrett Wollman 	struct inpcb *inp;
912d0390e05SGarrett Wollman 
913d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
914d0390e05SGarrett Wollman 	if (inp == 0) {
915d0390e05SGarrett Wollman 		m_freem(m);
916d0390e05SGarrett Wollman 		return EINVAL;
917d0390e05SGarrett Wollman 	}
918b40ce416SJulian Elischer 	return udp_output(inp, m, addr, control, td);
919d0390e05SGarrett Wollman }
920d0390e05SGarrett Wollman 
92176429de4SYoshinobu Inoue int
922d0390e05SGarrett Wollman udp_shutdown(struct socket *so)
923d0390e05SGarrett Wollman {
924d0390e05SGarrett Wollman 	struct inpcb *inp;
925d0390e05SGarrett Wollman 
926d0390e05SGarrett Wollman 	inp = sotoinpcb(so);
927d0390e05SGarrett Wollman 	if (inp == 0)
928d0390e05SGarrett Wollman 		return EINVAL;
929d0390e05SGarrett Wollman 	socantsendmore(so);
930d0390e05SGarrett Wollman 	return 0;
931d0390e05SGarrett Wollman }
932d0390e05SGarrett Wollman 
933d0390e05SGarrett Wollman struct pr_usrreqs udp_usrreqs = {
934117bcae7SGarrett Wollman 	udp_abort, pru_accept_notsupp, udp_attach, udp_bind, udp_connect,
935117bcae7SGarrett Wollman 	pru_connect2_notsupp, in_control, udp_detach, udp_disconnect,
936117bcae7SGarrett Wollman 	pru_listen_notsupp, in_setpeeraddr, pru_rcvd_notsupp,
937117bcae7SGarrett Wollman 	pru_rcvoob_notsupp, udp_send, pru_sense_null, udp_shutdown,
938f8f6cbbaSPeter Wemm 	in_setsockaddr, sosend, soreceive, sopoll
939d0390e05SGarrett Wollman };
940