1686cdd19SJun-ichiro itojun Hagino /* $FreeBSD$ */ 233841545SHajimu UMEMOTO /* $KAME: nd6.c,v 1.144 2001/05/24 07:44:00 itojun Exp $ */ 3686cdd19SJun-ichiro itojun Hagino 4caf43b02SWarner Losh /*- 582cd038dSYoshinobu Inoue * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 682cd038dSYoshinobu Inoue * All rights reserved. 782cd038dSYoshinobu Inoue * 882cd038dSYoshinobu Inoue * Redistribution and use in source and binary forms, with or without 982cd038dSYoshinobu Inoue * modification, are permitted provided that the following conditions 1082cd038dSYoshinobu Inoue * are met: 1182cd038dSYoshinobu Inoue * 1. Redistributions of source code must retain the above copyright 1282cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer. 1382cd038dSYoshinobu Inoue * 2. Redistributions in binary form must reproduce the above copyright 1482cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer in the 1582cd038dSYoshinobu Inoue * documentation and/or other materials provided with the distribution. 1682cd038dSYoshinobu Inoue * 3. Neither the name of the project nor the names of its contributors 1782cd038dSYoshinobu Inoue * may be used to endorse or promote products derived from this software 1882cd038dSYoshinobu Inoue * without specific prior written permission. 1982cd038dSYoshinobu Inoue * 2082cd038dSYoshinobu Inoue * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 2182cd038dSYoshinobu Inoue * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 2282cd038dSYoshinobu Inoue * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 2382cd038dSYoshinobu Inoue * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 2482cd038dSYoshinobu Inoue * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 2582cd038dSYoshinobu Inoue * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 2682cd038dSYoshinobu Inoue * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2782cd038dSYoshinobu Inoue * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 2882cd038dSYoshinobu Inoue * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 2982cd038dSYoshinobu Inoue * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3082cd038dSYoshinobu Inoue * SUCH DAMAGE. 3182cd038dSYoshinobu Inoue */ 3282cd038dSYoshinobu Inoue 33686cdd19SJun-ichiro itojun Hagino #include "opt_inet.h" 34686cdd19SJun-ichiro itojun Hagino #include "opt_inet6.h" 354b32dfdcSRobert Watson #include "opt_mac.h" 36686cdd19SJun-ichiro itojun Hagino 3782cd038dSYoshinobu Inoue #include <sys/param.h> 3882cd038dSYoshinobu Inoue #include <sys/systm.h> 3933841545SHajimu UMEMOTO #include <sys/callout.h> 404b32dfdcSRobert Watson #include <sys/mac.h> 4182cd038dSYoshinobu Inoue #include <sys/malloc.h> 4282cd038dSYoshinobu Inoue #include <sys/mbuf.h> 4382cd038dSYoshinobu Inoue #include <sys/socket.h> 4482cd038dSYoshinobu Inoue #include <sys/sockio.h> 4582cd038dSYoshinobu Inoue #include <sys/time.h> 4682cd038dSYoshinobu Inoue #include <sys/kernel.h> 47686cdd19SJun-ichiro itojun Hagino #include <sys/protosw.h> 4882cd038dSYoshinobu Inoue #include <sys/errno.h> 4982cd038dSYoshinobu Inoue #include <sys/syslog.h> 5082cd038dSYoshinobu Inoue #include <sys/queue.h> 5133841545SHajimu UMEMOTO #include <sys/sysctl.h> 5282cd038dSYoshinobu Inoue 5382cd038dSYoshinobu Inoue #include <net/if.h> 5431b3783cSHajimu UMEMOTO #include <net/if_arc.h> 5582cd038dSYoshinobu Inoue #include <net/if_dl.h> 5682cd038dSYoshinobu Inoue #include <net/if_types.h> 572049fdeeSMatthew N. Dodd #include <net/iso88025.h> 588e5fd461SMatthew N. Dodd #include <net/fddi.h> 5982cd038dSYoshinobu Inoue #include <net/route.h> 6082cd038dSYoshinobu Inoue 6182cd038dSYoshinobu Inoue #include <netinet/in.h> 6282cd038dSYoshinobu Inoue #include <netinet/if_ether.h> 6382cd038dSYoshinobu Inoue #include <netinet6/in6_var.h> 64686cdd19SJun-ichiro itojun Hagino #include <netinet/ip6.h> 6582cd038dSYoshinobu Inoue #include <netinet6/ip6_var.h> 66a1f7e5f8SHajimu UMEMOTO #include <netinet6/scope6_var.h> 6782cd038dSYoshinobu Inoue #include <netinet6/nd6.h> 68686cdd19SJun-ichiro itojun Hagino #include <netinet/icmp6.h> 6982cd038dSYoshinobu Inoue 7082cd038dSYoshinobu Inoue #include <net/net_osdep.h> 7182cd038dSYoshinobu Inoue 7282cd038dSYoshinobu Inoue #define ND6_SLOWTIMER_INTERVAL (60 * 60) /* 1 hour */ 7382cd038dSYoshinobu Inoue #define ND6_RECALC_REACHTM_INTERVAL (60 * 120) /* 2 hours */ 7482cd038dSYoshinobu Inoue 7582cd038dSYoshinobu Inoue #define SIN6(s) ((struct sockaddr_in6 *)s) 7682cd038dSYoshinobu Inoue #define SDL(s) ((struct sockaddr_dl *)s) 7782cd038dSYoshinobu Inoue 7882cd038dSYoshinobu Inoue /* timer values */ 7982cd038dSYoshinobu Inoue int nd6_prune = 1; /* walk list every 1 seconds */ 8082cd038dSYoshinobu Inoue int nd6_delay = 5; /* delay first probe time 5 second */ 8182cd038dSYoshinobu Inoue int nd6_umaxtries = 3; /* maximum unicast query */ 8282cd038dSYoshinobu Inoue int nd6_mmaxtries = 3; /* maximum multicast query */ 8382cd038dSYoshinobu Inoue int nd6_useloopback = 1; /* use loopback interface for local traffic */ 8433841545SHajimu UMEMOTO int nd6_gctimer = (60 * 60 * 24); /* 1 day: garbage collection timer */ 85686cdd19SJun-ichiro itojun Hagino 86686cdd19SJun-ichiro itojun Hagino /* preventing too many loops in ND option parsing */ 87686cdd19SJun-ichiro itojun Hagino int nd6_maxndopt = 10; /* max # of ND options allowed */ 88686cdd19SJun-ichiro itojun Hagino 89686cdd19SJun-ichiro itojun Hagino int nd6_maxnudhint = 0; /* max # of subsequent upper layer hints */ 9082cd038dSYoshinobu Inoue 9133841545SHajimu UMEMOTO #ifdef ND6_DEBUG 9233841545SHajimu UMEMOTO int nd6_debug = 1; 9333841545SHajimu UMEMOTO #else 9433841545SHajimu UMEMOTO int nd6_debug = 0; 9533841545SHajimu UMEMOTO #endif 9633841545SHajimu UMEMOTO 9782cd038dSYoshinobu Inoue /* for debugging? */ 9882cd038dSYoshinobu Inoue static int nd6_inuse, nd6_allocated; 9982cd038dSYoshinobu Inoue 10082cd038dSYoshinobu Inoue struct llinfo_nd6 llinfo_nd6 = {&llinfo_nd6, &llinfo_nd6}; 101686cdd19SJun-ichiro itojun Hagino struct nd_drhead nd_defrouter; 10282cd038dSYoshinobu Inoue struct nd_prhead nd_prefix = { 0 }; 10382cd038dSYoshinobu Inoue 10482cd038dSYoshinobu Inoue int nd6_recalc_reachtm_interval = ND6_RECALC_REACHTM_INTERVAL; 10582cd038dSYoshinobu Inoue static struct sockaddr_in6 all1_sa; 10682cd038dSYoshinobu Inoue 10777b691e0SBrian Feldman static int nd6_is_new_addr_neighbor __P((struct sockaddr_in6 *, 10877b691e0SBrian Feldman struct ifnet *)); 10931b1bfe1SHajimu UMEMOTO static void nd6_setmtu0 __P((struct ifnet *, struct nd_ifinfo *)); 11082cd038dSYoshinobu Inoue static void nd6_slowtimo __P((void *)); 11133841545SHajimu UMEMOTO static int regen_tmpaddr __P((struct in6_ifaddr *)); 11233841545SHajimu UMEMOTO 11333841545SHajimu UMEMOTO struct callout nd6_slowtimo_ch; 11433841545SHajimu UMEMOTO struct callout nd6_timer_ch; 11533841545SHajimu UMEMOTO extern struct callout in6_tmpaddrtimer_ch; 11682cd038dSYoshinobu Inoue 11782cd038dSYoshinobu Inoue void 11882cd038dSYoshinobu Inoue nd6_init() 11982cd038dSYoshinobu Inoue { 12082cd038dSYoshinobu Inoue static int nd6_init_done = 0; 12182cd038dSYoshinobu Inoue int i; 12282cd038dSYoshinobu Inoue 12382cd038dSYoshinobu Inoue if (nd6_init_done) { 12482cd038dSYoshinobu Inoue log(LOG_NOTICE, "nd6_init called more than once(ignored)\n"); 12582cd038dSYoshinobu Inoue return; 12682cd038dSYoshinobu Inoue } 12782cd038dSYoshinobu Inoue 12882cd038dSYoshinobu Inoue all1_sa.sin6_family = AF_INET6; 12982cd038dSYoshinobu Inoue all1_sa.sin6_len = sizeof(struct sockaddr_in6); 13082cd038dSYoshinobu Inoue for (i = 0; i < sizeof(all1_sa.sin6_addr); i++) 13182cd038dSYoshinobu Inoue all1_sa.sin6_addr.s6_addr[i] = 0xff; 13282cd038dSYoshinobu Inoue 133686cdd19SJun-ichiro itojun Hagino /* initialization of the default router list */ 134686cdd19SJun-ichiro itojun Hagino TAILQ_INIT(&nd_defrouter); 135686cdd19SJun-ichiro itojun Hagino 13682cd038dSYoshinobu Inoue nd6_init_done = 1; 13782cd038dSYoshinobu Inoue 13882cd038dSYoshinobu Inoue /* start timer */ 139690be704SRobert Watson callout_init(&nd6_slowtimo_ch, 0); 14033841545SHajimu UMEMOTO callout_reset(&nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 14133841545SHajimu UMEMOTO nd6_slowtimo, NULL); 14282cd038dSYoshinobu Inoue } 14382cd038dSYoshinobu Inoue 14431b1bfe1SHajimu UMEMOTO struct nd_ifinfo * 14582cd038dSYoshinobu Inoue nd6_ifattach(ifp) 14682cd038dSYoshinobu Inoue struct ifnet *ifp; 14782cd038dSYoshinobu Inoue { 14831b1bfe1SHajimu UMEMOTO struct nd_ifinfo *nd; 14982cd038dSYoshinobu Inoue 15031b1bfe1SHajimu UMEMOTO nd = (struct nd_ifinfo *)malloc(sizeof(*nd), M_IP6NDP, M_WAITOK); 15131b1bfe1SHajimu UMEMOTO bzero(nd, sizeof(*nd)); 15282cd038dSYoshinobu Inoue 15331b1bfe1SHajimu UMEMOTO nd->initialized = 1; 15482cd038dSYoshinobu Inoue 15531b1bfe1SHajimu UMEMOTO nd->chlim = IPV6_DEFHLIM; 15631b1bfe1SHajimu UMEMOTO nd->basereachable = REACHABLE_TIME; 15731b1bfe1SHajimu UMEMOTO nd->reachable = ND_COMPUTE_RTIME(nd->basereachable); 15831b1bfe1SHajimu UMEMOTO nd->retrans = RETRANS_TIMER; 15907cf047dSHajimu UMEMOTO /* 16007cf047dSHajimu UMEMOTO * Note that the default value of ip6_accept_rtadv is 0, which means 16107cf047dSHajimu UMEMOTO * we won't accept RAs by default even if we set ND6_IFF_ACCEPT_RTADV 16207cf047dSHajimu UMEMOTO * here. 16307cf047dSHajimu UMEMOTO */ 16431b1bfe1SHajimu UMEMOTO nd->flags = (ND6_IFF_PERFORMNUD | ND6_IFF_ACCEPT_RTADV); 16531b1bfe1SHajimu UMEMOTO 16631b1bfe1SHajimu UMEMOTO /* XXX: we cannot call nd6_setmtu since ifp is not fully initialized */ 16731b1bfe1SHajimu UMEMOTO nd6_setmtu0(ifp, nd); 16831b1bfe1SHajimu UMEMOTO 16931b1bfe1SHajimu UMEMOTO return nd; 17031b1bfe1SHajimu UMEMOTO } 17131b1bfe1SHajimu UMEMOTO 17231b1bfe1SHajimu UMEMOTO void 17331b1bfe1SHajimu UMEMOTO nd6_ifdetach(nd) 17431b1bfe1SHajimu UMEMOTO struct nd_ifinfo *nd; 17531b1bfe1SHajimu UMEMOTO { 17631b1bfe1SHajimu UMEMOTO 17731b1bfe1SHajimu UMEMOTO free(nd, M_IP6NDP); 17882cd038dSYoshinobu Inoue } 17982cd038dSYoshinobu Inoue 18082cd038dSYoshinobu Inoue /* 18182cd038dSYoshinobu Inoue * Reset ND level link MTU. This function is called when the physical MTU 18282cd038dSYoshinobu Inoue * changes, which means we might have to adjust the ND level MTU. 18382cd038dSYoshinobu Inoue */ 18482cd038dSYoshinobu Inoue void 18582cd038dSYoshinobu Inoue nd6_setmtu(ifp) 18682cd038dSYoshinobu Inoue struct ifnet *ifp; 18782cd038dSYoshinobu Inoue { 18831b1bfe1SHajimu UMEMOTO 18931b1bfe1SHajimu UMEMOTO nd6_setmtu0(ifp, ND_IFINFO(ifp)); 19031b1bfe1SHajimu UMEMOTO } 19131b1bfe1SHajimu UMEMOTO 19231b1bfe1SHajimu UMEMOTO /* XXX todo: do not maintain copy of ifp->if_mtu in ndi->maxmtu */ 19331b1bfe1SHajimu UMEMOTO void 19431b1bfe1SHajimu UMEMOTO nd6_setmtu0(ifp, ndi) 19531b1bfe1SHajimu UMEMOTO struct ifnet *ifp; 19631b1bfe1SHajimu UMEMOTO struct nd_ifinfo *ndi; 19731b1bfe1SHajimu UMEMOTO { 19831b3783cSHajimu UMEMOTO u_int32_t omaxmtu; 19931b1bfe1SHajimu UMEMOTO 20031b3783cSHajimu UMEMOTO omaxmtu = ndi->maxmtu; 20182cd038dSYoshinobu Inoue 20282cd038dSYoshinobu Inoue switch (ifp->if_type) { 20331b3783cSHajimu UMEMOTO case IFT_ARCNET: 20431b3783cSHajimu UMEMOTO ndi->maxmtu = MIN(ARC_PHDS_MAXMTU, ifp->if_mtu); /* RFC2497 */ 20582cd038dSYoshinobu Inoue break; 20682cd038dSYoshinobu Inoue case IFT_FDDI: 20731b3783cSHajimu UMEMOTO ndi->maxmtu = MIN(FDDIIPMTU, ifp->if_mtu); /* RFC2467 */ 20882cd038dSYoshinobu Inoue break; 2092049fdeeSMatthew N. Dodd case IFT_ISO88025: 2102049fdeeSMatthew N. Dodd ndi->maxmtu = MIN(ISO88025_MAX_MTU, ifp->if_mtu); 2112049fdeeSMatthew N. Dodd break; 21282cd038dSYoshinobu Inoue default: 21382cd038dSYoshinobu Inoue ndi->maxmtu = ifp->if_mtu; 21482cd038dSYoshinobu Inoue break; 21582cd038dSYoshinobu Inoue } 21682cd038dSYoshinobu Inoue 21782cd038dSYoshinobu Inoue /* 21831b3783cSHajimu UMEMOTO * Decreasing the interface MTU under IPV6 minimum MTU may cause 21931b3783cSHajimu UMEMOTO * undesirable situation. We thus notify the operator of the change 22031b3783cSHajimu UMEMOTO * explicitly. The check for omaxmtu is necessary to restrict the 22131b3783cSHajimu UMEMOTO * log to the case of changing the MTU, not initializing it. 22282cd038dSYoshinobu Inoue */ 22331b3783cSHajimu UMEMOTO if (omaxmtu >= IPV6_MMTU && ndi->maxmtu < IPV6_MMTU) { 22431b3783cSHajimu UMEMOTO log(LOG_NOTICE, "nd6_setmtu0: " 22531b3783cSHajimu UMEMOTO "new link MTU on %s (%lu) is too small for IPv6\n", 22631b3783cSHajimu UMEMOTO if_name(ifp), (unsigned long)ndi->maxmtu); 22782cd038dSYoshinobu Inoue } 22831b3783cSHajimu UMEMOTO 22931b3783cSHajimu UMEMOTO if (ndi->maxmtu > in6_maxmtu) 23031b3783cSHajimu UMEMOTO in6_setmaxmtu(); /* check all interfaces just in case */ 23131b3783cSHajimu UMEMOTO 23282cd038dSYoshinobu Inoue #undef MIN 23382cd038dSYoshinobu Inoue } 23482cd038dSYoshinobu Inoue 23582cd038dSYoshinobu Inoue void 23682cd038dSYoshinobu Inoue nd6_option_init(opt, icmp6len, ndopts) 23782cd038dSYoshinobu Inoue void *opt; 23882cd038dSYoshinobu Inoue int icmp6len; 23982cd038dSYoshinobu Inoue union nd_opts *ndopts; 24082cd038dSYoshinobu Inoue { 24107eb2995SHajimu UMEMOTO 24282cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 24382cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)opt; 24482cd038dSYoshinobu Inoue ndopts->nd_opts_last 24582cd038dSYoshinobu Inoue = (struct nd_opt_hdr *)(((u_char *)opt) + icmp6len); 24682cd038dSYoshinobu Inoue 24782cd038dSYoshinobu Inoue if (icmp6len == 0) { 24882cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 24982cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 25082cd038dSYoshinobu Inoue } 25182cd038dSYoshinobu Inoue } 25282cd038dSYoshinobu Inoue 25382cd038dSYoshinobu Inoue /* 25482cd038dSYoshinobu Inoue * Take one ND option. 25582cd038dSYoshinobu Inoue */ 25682cd038dSYoshinobu Inoue struct nd_opt_hdr * 25782cd038dSYoshinobu Inoue nd6_option(ndopts) 25882cd038dSYoshinobu Inoue union nd_opts *ndopts; 25982cd038dSYoshinobu Inoue { 26082cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 26182cd038dSYoshinobu Inoue int olen; 26282cd038dSYoshinobu Inoue 26382cd038dSYoshinobu Inoue if (!ndopts) 26477d43daeSSUZUKI Shinsuke panic("ndopts == NULL in nd6_option"); 26582cd038dSYoshinobu Inoue if (!ndopts->nd_opts_last) 26677d43daeSSUZUKI Shinsuke panic("uninitialized ndopts in nd6_option"); 26782cd038dSYoshinobu Inoue if (!ndopts->nd_opts_search) 26882cd038dSYoshinobu Inoue return NULL; 26982cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 27082cd038dSYoshinobu Inoue return NULL; 27182cd038dSYoshinobu Inoue 27282cd038dSYoshinobu Inoue nd_opt = ndopts->nd_opts_search; 27382cd038dSYoshinobu Inoue 27419391949SKris Kennaway /* make sure nd_opt_len is inside the buffer */ 27519391949SKris Kennaway if ((caddr_t)&nd_opt->nd_opt_len >= (caddr_t)ndopts->nd_opts_last) { 27619391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 27719391949SKris Kennaway return NULL; 27819391949SKris Kennaway } 27919391949SKris Kennaway 28082cd038dSYoshinobu Inoue olen = nd_opt->nd_opt_len << 3; 28182cd038dSYoshinobu Inoue if (olen == 0) { 28282cd038dSYoshinobu Inoue /* 28382cd038dSYoshinobu Inoue * Message validation requires that all included 28482cd038dSYoshinobu Inoue * options have a length that is greater than zero. 28582cd038dSYoshinobu Inoue */ 28682cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 28782cd038dSYoshinobu Inoue return NULL; 28882cd038dSYoshinobu Inoue } 28982cd038dSYoshinobu Inoue 29082cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)((caddr_t)nd_opt + olen); 29119391949SKris Kennaway if (ndopts->nd_opts_search > ndopts->nd_opts_last) { 29219391949SKris Kennaway /* option overruns the end of buffer, invalid */ 29319391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 29419391949SKris Kennaway return NULL; 29519391949SKris Kennaway } else if (ndopts->nd_opts_search == ndopts->nd_opts_last) { 29619391949SKris Kennaway /* reached the end of options chain */ 29782cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 29882cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 29982cd038dSYoshinobu Inoue } 30082cd038dSYoshinobu Inoue return nd_opt; 30182cd038dSYoshinobu Inoue } 30282cd038dSYoshinobu Inoue 30382cd038dSYoshinobu Inoue /* 30482cd038dSYoshinobu Inoue * Parse multiple ND options. 30582cd038dSYoshinobu Inoue * This function is much easier to use, for ND routines that do not need 30682cd038dSYoshinobu Inoue * multiple options of the same type. 30782cd038dSYoshinobu Inoue */ 30882cd038dSYoshinobu Inoue int 30982cd038dSYoshinobu Inoue nd6_options(ndopts) 31082cd038dSYoshinobu Inoue union nd_opts *ndopts; 31182cd038dSYoshinobu Inoue { 31282cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 31382cd038dSYoshinobu Inoue int i = 0; 31482cd038dSYoshinobu Inoue 31582cd038dSYoshinobu Inoue if (!ndopts) 31677d43daeSSUZUKI Shinsuke panic("ndopts == NULL in nd6_options"); 31782cd038dSYoshinobu Inoue if (!ndopts->nd_opts_last) 31877d43daeSSUZUKI Shinsuke panic("uninitialized ndopts in nd6_options"); 31982cd038dSYoshinobu Inoue if (!ndopts->nd_opts_search) 32082cd038dSYoshinobu Inoue return 0; 32182cd038dSYoshinobu Inoue 32282cd038dSYoshinobu Inoue while (1) { 32382cd038dSYoshinobu Inoue nd_opt = nd6_option(ndopts); 32482cd038dSYoshinobu Inoue if (!nd_opt && !ndopts->nd_opts_last) { 32582cd038dSYoshinobu Inoue /* 32682cd038dSYoshinobu Inoue * Message validation requires that all included 32782cd038dSYoshinobu Inoue * options have a length that is greater than zero. 32882cd038dSYoshinobu Inoue */ 32933841545SHajimu UMEMOTO icmp6stat.icp6s_nd_badopt++; 33082cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 33182cd038dSYoshinobu Inoue return -1; 33282cd038dSYoshinobu Inoue } 33382cd038dSYoshinobu Inoue 33482cd038dSYoshinobu Inoue if (!nd_opt) 33582cd038dSYoshinobu Inoue goto skip1; 33682cd038dSYoshinobu Inoue 33782cd038dSYoshinobu Inoue switch (nd_opt->nd_opt_type) { 33882cd038dSYoshinobu Inoue case ND_OPT_SOURCE_LINKADDR: 33982cd038dSYoshinobu Inoue case ND_OPT_TARGET_LINKADDR: 34082cd038dSYoshinobu Inoue case ND_OPT_MTU: 34182cd038dSYoshinobu Inoue case ND_OPT_REDIRECTED_HEADER: 34282cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type]) { 34333841545SHajimu UMEMOTO nd6log((LOG_INFO, 34433841545SHajimu UMEMOTO "duplicated ND6 option found (type=%d)\n", 34533841545SHajimu UMEMOTO nd_opt->nd_opt_type)); 34682cd038dSYoshinobu Inoue /* XXX bark? */ 34782cd038dSYoshinobu Inoue } else { 34882cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 34982cd038dSYoshinobu Inoue = nd_opt; 35082cd038dSYoshinobu Inoue } 35182cd038dSYoshinobu Inoue break; 35282cd038dSYoshinobu Inoue case ND_OPT_PREFIX_INFORMATION: 35382cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type] == 0) { 35482cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 35582cd038dSYoshinobu Inoue = nd_opt; 35682cd038dSYoshinobu Inoue } 35782cd038dSYoshinobu Inoue ndopts->nd_opts_pi_end = 35882cd038dSYoshinobu Inoue (struct nd_opt_prefix_info *)nd_opt; 35982cd038dSYoshinobu Inoue break; 36082cd038dSYoshinobu Inoue default: 36182cd038dSYoshinobu Inoue /* 36282cd038dSYoshinobu Inoue * Unknown options must be silently ignored, 36382cd038dSYoshinobu Inoue * to accomodate future extension to the protocol. 36482cd038dSYoshinobu Inoue */ 36533841545SHajimu UMEMOTO nd6log((LOG_DEBUG, 36682cd038dSYoshinobu Inoue "nd6_options: unsupported option %d - " 36733841545SHajimu UMEMOTO "option ignored\n", nd_opt->nd_opt_type)); 36882cd038dSYoshinobu Inoue } 36982cd038dSYoshinobu Inoue 37082cd038dSYoshinobu Inoue skip1: 37182cd038dSYoshinobu Inoue i++; 372686cdd19SJun-ichiro itojun Hagino if (i > nd6_maxndopt) { 373686cdd19SJun-ichiro itojun Hagino icmp6stat.icp6s_nd_toomanyopt++; 37433841545SHajimu UMEMOTO nd6log((LOG_INFO, "too many loop in nd opt\n")); 37582cd038dSYoshinobu Inoue break; 37682cd038dSYoshinobu Inoue } 37782cd038dSYoshinobu Inoue 37882cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 37982cd038dSYoshinobu Inoue break; 38082cd038dSYoshinobu Inoue } 38182cd038dSYoshinobu Inoue 38282cd038dSYoshinobu Inoue return 0; 38382cd038dSYoshinobu Inoue } 38482cd038dSYoshinobu Inoue 38582cd038dSYoshinobu Inoue /* 38682cd038dSYoshinobu Inoue * ND6 timer routine to expire default route list and prefix list 38782cd038dSYoshinobu Inoue */ 38882cd038dSYoshinobu Inoue void 38982cd038dSYoshinobu Inoue nd6_timer(ignored_arg) 39082cd038dSYoshinobu Inoue void *ignored_arg; 39182cd038dSYoshinobu Inoue { 39282cd038dSYoshinobu Inoue int s; 39333841545SHajimu UMEMOTO struct llinfo_nd6 *ln; 39433841545SHajimu UMEMOTO struct nd_defrouter *dr; 39533841545SHajimu UMEMOTO struct nd_prefix *pr; 39633841545SHajimu UMEMOTO struct ifnet *ifp; 39733841545SHajimu UMEMOTO struct in6_ifaddr *ia6, *nia6; 39833841545SHajimu UMEMOTO struct in6_addrlifetime *lt6; 39982cd038dSYoshinobu Inoue 40082cd038dSYoshinobu Inoue s = splnet(); 40133841545SHajimu UMEMOTO callout_reset(&nd6_timer_ch, nd6_prune * hz, 40233841545SHajimu UMEMOTO nd6_timer, NULL); 40382cd038dSYoshinobu Inoue 40482cd038dSYoshinobu Inoue ln = llinfo_nd6.ln_next; 40582cd038dSYoshinobu Inoue while (ln && ln != &llinfo_nd6) { 40682cd038dSYoshinobu Inoue struct rtentry *rt; 40782cd038dSYoshinobu Inoue struct sockaddr_in6 *dst; 40882cd038dSYoshinobu Inoue struct llinfo_nd6 *next = ln->ln_next; 409686cdd19SJun-ichiro itojun Hagino /* XXX: used for the DELAY case only: */ 410686cdd19SJun-ichiro itojun Hagino struct nd_ifinfo *ndi = NULL; 41182cd038dSYoshinobu Inoue 41282cd038dSYoshinobu Inoue if ((rt = ln->ln_rt) == NULL) { 41382cd038dSYoshinobu Inoue ln = next; 41482cd038dSYoshinobu Inoue continue; 41582cd038dSYoshinobu Inoue } 41682cd038dSYoshinobu Inoue if ((ifp = rt->rt_ifp) == NULL) { 41782cd038dSYoshinobu Inoue ln = next; 41882cd038dSYoshinobu Inoue continue; 41982cd038dSYoshinobu Inoue } 42031b1bfe1SHajimu UMEMOTO ndi = ND_IFINFO(ifp); 42182cd038dSYoshinobu Inoue dst = (struct sockaddr_in6 *)rt_key(rt); 42282cd038dSYoshinobu Inoue 42382cd038dSYoshinobu Inoue if (ln->ln_expire > time_second) { 42482cd038dSYoshinobu Inoue ln = next; 42582cd038dSYoshinobu Inoue continue; 42682cd038dSYoshinobu Inoue } 42782cd038dSYoshinobu Inoue 42882cd038dSYoshinobu Inoue /* sanity check */ 42982cd038dSYoshinobu Inoue if (!rt) 43077d43daeSSUZUKI Shinsuke panic("rt=0 in nd6_timer(ln=%p)", ln); 431686cdd19SJun-ichiro itojun Hagino if (rt->rt_llinfo && (struct llinfo_nd6 *)rt->rt_llinfo != ln) 43277d43daeSSUZUKI Shinsuke panic("rt_llinfo(%p) is not equal to ln(%p)", 433686cdd19SJun-ichiro itojun Hagino rt->rt_llinfo, ln); 43482cd038dSYoshinobu Inoue if (!dst) 43577d43daeSSUZUKI Shinsuke panic("dst=0 in nd6_timer(ln=%p)", ln); 43682cd038dSYoshinobu Inoue 43782cd038dSYoshinobu Inoue switch (ln->ln_state) { 43882cd038dSYoshinobu Inoue case ND6_LLINFO_INCOMPLETE: 43982cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_mmaxtries) { 44082cd038dSYoshinobu Inoue ln->ln_asked++; 44182cd038dSYoshinobu Inoue ln->ln_expire = time_second + 44231b1bfe1SHajimu UMEMOTO ND_IFINFO(ifp)->retrans / 1000; 44382cd038dSYoshinobu Inoue nd6_ns_output(ifp, NULL, &dst->sin6_addr, 44482cd038dSYoshinobu Inoue ln, 0); 44582cd038dSYoshinobu Inoue } else { 44682cd038dSYoshinobu Inoue struct mbuf *m = ln->ln_hold; 44782cd038dSYoshinobu Inoue if (m) { 44882cd038dSYoshinobu Inoue /* 449a1f7e5f8SHajimu UMEMOTO * assuming every packet in ln_hold has 450a1f7e5f8SHajimu UMEMOTO * the same IP header 45182cd038dSYoshinobu Inoue */ 45282cd038dSYoshinobu Inoue ln->ln_hold = NULL; 453a1f7e5f8SHajimu UMEMOTO icmp6_error2(m, ICMP6_DST_UNREACH, 454a1f7e5f8SHajimu UMEMOTO ICMP6_DST_UNREACH_ADDR, 0, 455a1f7e5f8SHajimu UMEMOTO rt->rt_ifp); 45682cd038dSYoshinobu Inoue } 45733841545SHajimu UMEMOTO next = nd6_free(rt); 45882cd038dSYoshinobu Inoue } 45982cd038dSYoshinobu Inoue break; 46082cd038dSYoshinobu Inoue case ND6_LLINFO_REACHABLE: 46133841545SHajimu UMEMOTO if (ln->ln_expire) { 46282cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_STALE; 46333841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 46433841545SHajimu UMEMOTO } 46582cd038dSYoshinobu Inoue break; 46633841545SHajimu UMEMOTO 46733841545SHajimu UMEMOTO case ND6_LLINFO_STALE: 46833841545SHajimu UMEMOTO /* Garbage Collection(RFC 2461 5.3) */ 46933841545SHajimu UMEMOTO if (ln->ln_expire) 47033841545SHajimu UMEMOTO next = nd6_free(rt); 47133841545SHajimu UMEMOTO break; 47233841545SHajimu UMEMOTO 47382cd038dSYoshinobu Inoue case ND6_LLINFO_DELAY: 474686cdd19SJun-ichiro itojun Hagino if (ndi && (ndi->flags & ND6_IFF_PERFORMNUD) != 0) { 475686cdd19SJun-ichiro itojun Hagino /* We need NUD */ 47682cd038dSYoshinobu Inoue ln->ln_asked = 1; 47782cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_PROBE; 47882cd038dSYoshinobu Inoue ln->ln_expire = time_second + 479686cdd19SJun-ichiro itojun Hagino ndi->retrans / 1000; 480686cdd19SJun-ichiro itojun Hagino nd6_ns_output(ifp, &dst->sin6_addr, 481686cdd19SJun-ichiro itojun Hagino &dst->sin6_addr, 48282cd038dSYoshinobu Inoue ln, 0); 48333841545SHajimu UMEMOTO } else { 484686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_STALE; /* XXX */ 48533841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 48633841545SHajimu UMEMOTO } 48782cd038dSYoshinobu Inoue break; 48882cd038dSYoshinobu Inoue case ND6_LLINFO_PROBE: 48982cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_umaxtries) { 49082cd038dSYoshinobu Inoue ln->ln_asked++; 49182cd038dSYoshinobu Inoue ln->ln_expire = time_second + 49231b1bfe1SHajimu UMEMOTO ND_IFINFO(ifp)->retrans / 1000; 49382cd038dSYoshinobu Inoue nd6_ns_output(ifp, &dst->sin6_addr, 49482cd038dSYoshinobu Inoue &dst->sin6_addr, ln, 0); 49582cd038dSYoshinobu Inoue } else { 49633841545SHajimu UMEMOTO next = nd6_free(rt); 49782cd038dSYoshinobu Inoue } 49882cd038dSYoshinobu Inoue break; 49982cd038dSYoshinobu Inoue } 50082cd038dSYoshinobu Inoue ln = next; 50182cd038dSYoshinobu Inoue } 50282cd038dSYoshinobu Inoue 50333841545SHajimu UMEMOTO /* expire default router list */ 504686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 50582cd038dSYoshinobu Inoue while (dr) { 50682cd038dSYoshinobu Inoue if (dr->expire && dr->expire < time_second) { 50782cd038dSYoshinobu Inoue struct nd_defrouter *t; 508686cdd19SJun-ichiro itojun Hagino t = TAILQ_NEXT(dr, dr_entry); 50982cd038dSYoshinobu Inoue defrtrlist_del(dr); 51082cd038dSYoshinobu Inoue dr = t; 511686cdd19SJun-ichiro itojun Hagino } else { 512686cdd19SJun-ichiro itojun Hagino dr = TAILQ_NEXT(dr, dr_entry); 51382cd038dSYoshinobu Inoue } 514686cdd19SJun-ichiro itojun Hagino } 51582cd038dSYoshinobu Inoue 51633841545SHajimu UMEMOTO /* 51733841545SHajimu UMEMOTO * expire interface addresses. 51833841545SHajimu UMEMOTO * in the past the loop was inside prefix expiry processing. 51933841545SHajimu UMEMOTO * However, from a stricter speci-confrmance standpoint, we should 52033841545SHajimu UMEMOTO * rather separate address lifetimes and prefix lifetimes. 52133841545SHajimu UMEMOTO */ 52233841545SHajimu UMEMOTO addrloop: 52333841545SHajimu UMEMOTO for (ia6 = in6_ifaddr; ia6; ia6 = nia6) { 52433841545SHajimu UMEMOTO nia6 = ia6->ia_next; 52582cd038dSYoshinobu Inoue /* check address lifetime */ 52682cd038dSYoshinobu Inoue lt6 = &ia6->ia6_lifetime; 52733841545SHajimu UMEMOTO if (IFA6_IS_INVALID(ia6)) { 52833841545SHajimu UMEMOTO int regen = 0; 52933841545SHajimu UMEMOTO 53033841545SHajimu UMEMOTO /* 53133841545SHajimu UMEMOTO * If the expiring address is temporary, try 53233841545SHajimu UMEMOTO * regenerating a new one. This would be useful when 53388ff5695SSUZUKI Shinsuke * we suspended a laptop PC, then turned it on after a 53433841545SHajimu UMEMOTO * period that could invalidate all temporary 53533841545SHajimu UMEMOTO * addresses. Although we may have to restart the 53633841545SHajimu UMEMOTO * loop (see below), it must be after purging the 53733841545SHajimu UMEMOTO * address. Otherwise, we'd see an infinite loop of 53833841545SHajimu UMEMOTO * regeneration. 53933841545SHajimu UMEMOTO */ 54033841545SHajimu UMEMOTO if (ip6_use_tempaddr && 54133841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0) { 54233841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) 54333841545SHajimu UMEMOTO regen = 1; 54433841545SHajimu UMEMOTO } 54533841545SHajimu UMEMOTO 54633841545SHajimu UMEMOTO in6_purgeaddr(&ia6->ia_ifa); 54733841545SHajimu UMEMOTO 54833841545SHajimu UMEMOTO if (regen) 54933841545SHajimu UMEMOTO goto addrloop; /* XXX: see below */ 55083649f07SHajimu UMEMOTO } 55183649f07SHajimu UMEMOTO if (IFA6_IS_DEPRECATED(ia6)) { 55233841545SHajimu UMEMOTO int oldflags = ia6->ia6_flags; 55333841545SHajimu UMEMOTO 55482cd038dSYoshinobu Inoue ia6->ia6_flags |= IN6_IFF_DEPRECATED; 55533841545SHajimu UMEMOTO 55633841545SHajimu UMEMOTO /* 55733841545SHajimu UMEMOTO * If a temporary address has just become deprecated, 55833841545SHajimu UMEMOTO * regenerate a new one if possible. 55933841545SHajimu UMEMOTO */ 56033841545SHajimu UMEMOTO if (ip6_use_tempaddr && 56133841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 56233841545SHajimu UMEMOTO (oldflags & IN6_IFF_DEPRECATED) == 0) { 56333841545SHajimu UMEMOTO 56433841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) { 56533841545SHajimu UMEMOTO /* 56633841545SHajimu UMEMOTO * A new temporary address is 56733841545SHajimu UMEMOTO * generated. 56833841545SHajimu UMEMOTO * XXX: this means the address chain 56933841545SHajimu UMEMOTO * has changed while we are still in 57033841545SHajimu UMEMOTO * the loop. Although the change 57133841545SHajimu UMEMOTO * would not cause disaster (because 57288ff5695SSUZUKI Shinsuke * it's not a deletion, but an 57388ff5695SSUZUKI Shinsuke * addition,) we'd rather restart the 57433841545SHajimu UMEMOTO * loop just for safety. Or does this 57533841545SHajimu UMEMOTO * significantly reduce performance?? 57633841545SHajimu UMEMOTO */ 57733841545SHajimu UMEMOTO goto addrloop; 57833841545SHajimu UMEMOTO } 57933841545SHajimu UMEMOTO } 58083649f07SHajimu UMEMOTO } else { 58133841545SHajimu UMEMOTO /* 58233841545SHajimu UMEMOTO * A new RA might have made a deprecated address 58333841545SHajimu UMEMOTO * preferred. 58433841545SHajimu UMEMOTO */ 58533841545SHajimu UMEMOTO ia6->ia6_flags &= ~IN6_IFF_DEPRECATED; 58682cd038dSYoshinobu Inoue } 58782cd038dSYoshinobu Inoue } 58882cd038dSYoshinobu Inoue 58933841545SHajimu UMEMOTO /* expire prefix list */ 59033841545SHajimu UMEMOTO pr = nd_prefix.lh_first; 59133841545SHajimu UMEMOTO while (pr) { 59282cd038dSYoshinobu Inoue /* 59382cd038dSYoshinobu Inoue * check prefix lifetime. 59482cd038dSYoshinobu Inoue * since pltime is just for autoconf, pltime processing for 59582cd038dSYoshinobu Inoue * prefix is not necessary. 59682cd038dSYoshinobu Inoue */ 59733841545SHajimu UMEMOTO if (pr->ndpr_expire && pr->ndpr_expire < time_second) { 59882cd038dSYoshinobu Inoue struct nd_prefix *t; 599686cdd19SJun-ichiro itojun Hagino t = pr->ndpr_next; 60082cd038dSYoshinobu Inoue 60182cd038dSYoshinobu Inoue /* 60282cd038dSYoshinobu Inoue * address expiration and prefix expiration are 60333841545SHajimu UMEMOTO * separate. NEVER perform in6_purgeaddr here. 60482cd038dSYoshinobu Inoue */ 60582cd038dSYoshinobu Inoue 60682cd038dSYoshinobu Inoue prelist_remove(pr); 60782cd038dSYoshinobu Inoue pr = t; 60882cd038dSYoshinobu Inoue } else 609686cdd19SJun-ichiro itojun Hagino pr = pr->ndpr_next; 61082cd038dSYoshinobu Inoue } 61182cd038dSYoshinobu Inoue splx(s); 61282cd038dSYoshinobu Inoue } 61382cd038dSYoshinobu Inoue 61433841545SHajimu UMEMOTO static int 61533841545SHajimu UMEMOTO regen_tmpaddr(ia6) 61633841545SHajimu UMEMOTO struct in6_ifaddr *ia6; /* deprecated/invalidated temporary address */ 61733841545SHajimu UMEMOTO { 61833841545SHajimu UMEMOTO struct ifaddr *ifa; 61933841545SHajimu UMEMOTO struct ifnet *ifp; 62033841545SHajimu UMEMOTO struct in6_ifaddr *public_ifa6 = NULL; 62133841545SHajimu UMEMOTO 62233841545SHajimu UMEMOTO ifp = ia6->ia_ifa.ifa_ifp; 62333841545SHajimu UMEMOTO for (ifa = ifp->if_addrlist.tqh_first; ifa; 62407eb2995SHajimu UMEMOTO ifa = ifa->ifa_list.tqe_next) { 62533841545SHajimu UMEMOTO struct in6_ifaddr *it6; 62633841545SHajimu UMEMOTO 62733841545SHajimu UMEMOTO if (ifa->ifa_addr->sa_family != AF_INET6) 62833841545SHajimu UMEMOTO continue; 62933841545SHajimu UMEMOTO 63033841545SHajimu UMEMOTO it6 = (struct in6_ifaddr *)ifa; 63133841545SHajimu UMEMOTO 63233841545SHajimu UMEMOTO /* ignore no autoconf addresses. */ 63333841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_AUTOCONF) == 0) 63433841545SHajimu UMEMOTO continue; 63533841545SHajimu UMEMOTO 63633841545SHajimu UMEMOTO /* ignore autoconf addresses with different prefixes. */ 63733841545SHajimu UMEMOTO if (it6->ia6_ndpr == NULL || it6->ia6_ndpr != ia6->ia6_ndpr) 63833841545SHajimu UMEMOTO continue; 63933841545SHajimu UMEMOTO 64033841545SHajimu UMEMOTO /* 64133841545SHajimu UMEMOTO * Now we are looking at an autoconf address with the same 64233841545SHajimu UMEMOTO * prefix as ours. If the address is temporary and is still 64333841545SHajimu UMEMOTO * preferred, do not create another one. It would be rare, but 64433841545SHajimu UMEMOTO * could happen, for example, when we resume a laptop PC after 64533841545SHajimu UMEMOTO * a long period. 64633841545SHajimu UMEMOTO */ 64733841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 64833841545SHajimu UMEMOTO !IFA6_IS_DEPRECATED(it6)) { 64933841545SHajimu UMEMOTO public_ifa6 = NULL; 65033841545SHajimu UMEMOTO break; 65133841545SHajimu UMEMOTO } 65233841545SHajimu UMEMOTO 65333841545SHajimu UMEMOTO /* 65433841545SHajimu UMEMOTO * This is a public autoconf address that has the same prefix 65533841545SHajimu UMEMOTO * as ours. If it is preferred, keep it. We can't break the 65633841545SHajimu UMEMOTO * loop here, because there may be a still-preferred temporary 65733841545SHajimu UMEMOTO * address with the prefix. 65833841545SHajimu UMEMOTO */ 65933841545SHajimu UMEMOTO if (!IFA6_IS_DEPRECATED(it6)) 66033841545SHajimu UMEMOTO public_ifa6 = it6; 66133841545SHajimu UMEMOTO } 66233841545SHajimu UMEMOTO 66333841545SHajimu UMEMOTO if (public_ifa6 != NULL) { 66433841545SHajimu UMEMOTO int e; 66533841545SHajimu UMEMOTO 66633841545SHajimu UMEMOTO if ((e = in6_tmpifadd(public_ifa6, 0)) != 0) { 66733841545SHajimu UMEMOTO log(LOG_NOTICE, "regen_tmpaddr: failed to create a new" 66833841545SHajimu UMEMOTO " tmp addr,errno=%d\n", e); 66933841545SHajimu UMEMOTO return (-1); 67033841545SHajimu UMEMOTO } 67133841545SHajimu UMEMOTO return (0); 67233841545SHajimu UMEMOTO } 67333841545SHajimu UMEMOTO 67433841545SHajimu UMEMOTO return (-1); 67533841545SHajimu UMEMOTO } 67633841545SHajimu UMEMOTO 677686cdd19SJun-ichiro itojun Hagino /* 678686cdd19SJun-ichiro itojun Hagino * Nuke neighbor cache/prefix/default router management table, right before 679686cdd19SJun-ichiro itojun Hagino * ifp goes away. 680686cdd19SJun-ichiro itojun Hagino */ 681686cdd19SJun-ichiro itojun Hagino void 682686cdd19SJun-ichiro itojun Hagino nd6_purge(ifp) 683686cdd19SJun-ichiro itojun Hagino struct ifnet *ifp; 684686cdd19SJun-ichiro itojun Hagino { 685686cdd19SJun-ichiro itojun Hagino struct llinfo_nd6 *ln, *nln; 686686cdd19SJun-ichiro itojun Hagino struct nd_defrouter *dr, *ndr, drany; 687686cdd19SJun-ichiro itojun Hagino struct nd_prefix *pr, *npr; 688686cdd19SJun-ichiro itojun Hagino 689686cdd19SJun-ichiro itojun Hagino /* Nuke default router list entries toward ifp */ 690686cdd19SJun-ichiro itojun Hagino if ((dr = TAILQ_FIRST(&nd_defrouter)) != NULL) { 691686cdd19SJun-ichiro itojun Hagino /* 692686cdd19SJun-ichiro itojun Hagino * The first entry of the list may be stored in 693686cdd19SJun-ichiro itojun Hagino * the routing table, so we'll delete it later. 694686cdd19SJun-ichiro itojun Hagino */ 695686cdd19SJun-ichiro itojun Hagino for (dr = TAILQ_NEXT(dr, dr_entry); dr; dr = ndr) { 696686cdd19SJun-ichiro itojun Hagino ndr = TAILQ_NEXT(dr, dr_entry); 697686cdd19SJun-ichiro itojun Hagino if (dr->ifp == ifp) 698686cdd19SJun-ichiro itojun Hagino defrtrlist_del(dr); 699686cdd19SJun-ichiro itojun Hagino } 700686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 701686cdd19SJun-ichiro itojun Hagino if (dr->ifp == ifp) 702686cdd19SJun-ichiro itojun Hagino defrtrlist_del(dr); 703686cdd19SJun-ichiro itojun Hagino } 704686cdd19SJun-ichiro itojun Hagino 705686cdd19SJun-ichiro itojun Hagino /* Nuke prefix list entries toward ifp */ 706686cdd19SJun-ichiro itojun Hagino for (pr = nd_prefix.lh_first; pr; pr = npr) { 707686cdd19SJun-ichiro itojun Hagino npr = pr->ndpr_next; 708686cdd19SJun-ichiro itojun Hagino if (pr->ndpr_ifp == ifp) { 70933841545SHajimu UMEMOTO /* 71033841545SHajimu UMEMOTO * Previously, pr->ndpr_addr is removed as well, 71133841545SHajimu UMEMOTO * but I strongly believe we don't have to do it. 71233841545SHajimu UMEMOTO * nd6_purge() is only called from in6_ifdetach(), 71333841545SHajimu UMEMOTO * which removes all the associated interface addresses 71433841545SHajimu UMEMOTO * by itself. 71533841545SHajimu UMEMOTO * (jinmei@kame.net 20010129) 71633841545SHajimu UMEMOTO */ 717686cdd19SJun-ichiro itojun Hagino prelist_remove(pr); 718686cdd19SJun-ichiro itojun Hagino } 719686cdd19SJun-ichiro itojun Hagino } 720686cdd19SJun-ichiro itojun Hagino 721686cdd19SJun-ichiro itojun Hagino /* cancel default outgoing interface setting */ 722686cdd19SJun-ichiro itojun Hagino if (nd6_defifindex == ifp->if_index) 723686cdd19SJun-ichiro itojun Hagino nd6_setdefaultiface(0); 724686cdd19SJun-ichiro itojun Hagino 7251026ccc4SHajimu UMEMOTO if (!ip6_forwarding && ip6_accept_rtadv) { /* XXX: too restrictive? */ 726686cdd19SJun-ichiro itojun Hagino /* refresh default router list */ 727686cdd19SJun-ichiro itojun Hagino bzero(&drany, sizeof(drany)); 728686cdd19SJun-ichiro itojun Hagino defrouter_delreq(&drany, 0); 729686cdd19SJun-ichiro itojun Hagino defrouter_select(); 7301026ccc4SHajimu UMEMOTO } 731686cdd19SJun-ichiro itojun Hagino 732686cdd19SJun-ichiro itojun Hagino /* 733686cdd19SJun-ichiro itojun Hagino * Nuke neighbor cache entries for the ifp. 734686cdd19SJun-ichiro itojun Hagino * Note that rt->rt_ifp may not be the same as ifp, 735686cdd19SJun-ichiro itojun Hagino * due to KAME goto ours hack. See RTM_RESOLVE case in 736686cdd19SJun-ichiro itojun Hagino * nd6_rtrequest(), and ip6_input(). 737686cdd19SJun-ichiro itojun Hagino */ 738686cdd19SJun-ichiro itojun Hagino ln = llinfo_nd6.ln_next; 739686cdd19SJun-ichiro itojun Hagino while (ln && ln != &llinfo_nd6) { 740686cdd19SJun-ichiro itojun Hagino struct rtentry *rt; 741686cdd19SJun-ichiro itojun Hagino struct sockaddr_dl *sdl; 742686cdd19SJun-ichiro itojun Hagino 743686cdd19SJun-ichiro itojun Hagino nln = ln->ln_next; 744686cdd19SJun-ichiro itojun Hagino rt = ln->ln_rt; 745686cdd19SJun-ichiro itojun Hagino if (rt && rt->rt_gateway && 746686cdd19SJun-ichiro itojun Hagino rt->rt_gateway->sa_family == AF_LINK) { 747686cdd19SJun-ichiro itojun Hagino sdl = (struct sockaddr_dl *)rt->rt_gateway; 748686cdd19SJun-ichiro itojun Hagino if (sdl->sdl_index == ifp->if_index) 74933841545SHajimu UMEMOTO nln = nd6_free(rt); 750686cdd19SJun-ichiro itojun Hagino } 751686cdd19SJun-ichiro itojun Hagino ln = nln; 752686cdd19SJun-ichiro itojun Hagino } 753686cdd19SJun-ichiro itojun Hagino } 754686cdd19SJun-ichiro itojun Hagino 75582cd038dSYoshinobu Inoue struct rtentry * 75682cd038dSYoshinobu Inoue nd6_lookup(addr6, create, ifp) 75782cd038dSYoshinobu Inoue struct in6_addr *addr6; 75882cd038dSYoshinobu Inoue int create; 75982cd038dSYoshinobu Inoue struct ifnet *ifp; 76082cd038dSYoshinobu Inoue { 76182cd038dSYoshinobu Inoue struct rtentry *rt; 76282cd038dSYoshinobu Inoue struct sockaddr_in6 sin6; 76382cd038dSYoshinobu Inoue 76482cd038dSYoshinobu Inoue bzero(&sin6, sizeof(sin6)); 76582cd038dSYoshinobu Inoue sin6.sin6_len = sizeof(struct sockaddr_in6); 76682cd038dSYoshinobu Inoue sin6.sin6_family = AF_INET6; 76782cd038dSYoshinobu Inoue sin6.sin6_addr = *addr6; 76882cd038dSYoshinobu Inoue rt = rtalloc1((struct sockaddr *)&sin6, create, 0UL); 769d1dd20beSSam Leffler if (rt) { 770d1dd20beSSam Leffler if ((rt->rt_flags & RTF_LLINFO) == 0 && create) { 77182cd038dSYoshinobu Inoue /* 77282cd038dSYoshinobu Inoue * This is the case for the default route. 773d1dd20beSSam Leffler * If we want to create a neighbor cache for the 774d1dd20beSSam Leffler * address, we should free the route for the 775d1dd20beSSam Leffler * destination and allocate an interface route. 77682cd038dSYoshinobu Inoue */ 777d1dd20beSSam Leffler RTFREE_LOCKED(rt); 77882cd038dSYoshinobu Inoue rt = 0; 77982cd038dSYoshinobu Inoue } 78082cd038dSYoshinobu Inoue } 78182cd038dSYoshinobu Inoue if (!rt) { 78282cd038dSYoshinobu Inoue if (create && ifp) { 783686cdd19SJun-ichiro itojun Hagino int e; 784686cdd19SJun-ichiro itojun Hagino 78582cd038dSYoshinobu Inoue /* 78682cd038dSYoshinobu Inoue * If no route is available and create is set, 78782cd038dSYoshinobu Inoue * we allocate a host route for the destination 78882cd038dSYoshinobu Inoue * and treat it like an interface route. 78982cd038dSYoshinobu Inoue * This hack is necessary for a neighbor which can't 79082cd038dSYoshinobu Inoue * be covered by our own prefix. 79182cd038dSYoshinobu Inoue */ 79282cd038dSYoshinobu Inoue struct ifaddr *ifa = 79382cd038dSYoshinobu Inoue ifaof_ifpforaddr((struct sockaddr *)&sin6, ifp); 79482cd038dSYoshinobu Inoue if (ifa == NULL) 79582cd038dSYoshinobu Inoue return (NULL); 79682cd038dSYoshinobu Inoue 79782cd038dSYoshinobu Inoue /* 79882cd038dSYoshinobu Inoue * Create a new route. RTF_LLINFO is necessary 79982cd038dSYoshinobu Inoue * to create a Neighbor Cache entry for the 80082cd038dSYoshinobu Inoue * destination in nd6_rtrequest which will be 80188ff5695SSUZUKI Shinsuke * called in rtrequest via ifa->ifa_rtrequest. 80282cd038dSYoshinobu Inoue */ 803686cdd19SJun-ichiro itojun Hagino if ((e = rtrequest(RTM_ADD, (struct sockaddr *)&sin6, 80407eb2995SHajimu UMEMOTO ifa->ifa_addr, (struct sockaddr *)&all1_sa, 80507eb2995SHajimu UMEMOTO (ifa->ifa_flags | RTF_HOST | RTF_LLINFO) & 80607eb2995SHajimu UMEMOTO ~RTF_CLONING, &rt)) != 0) { 80782cd038dSYoshinobu Inoue log(LOG_ERR, 80882cd038dSYoshinobu Inoue "nd6_lookup: failed to add route for a " 809686cdd19SJun-ichiro itojun Hagino "neighbor(%s), errno=%d\n", 810686cdd19SJun-ichiro itojun Hagino ip6_sprintf(addr6), e); 81107eb2995SHajimu UMEMOTO } 81282cd038dSYoshinobu Inoue if (rt == NULL) 81382cd038dSYoshinobu Inoue return (NULL); 814ba00f009SSam Leffler RT_LOCK(rt); 81582cd038dSYoshinobu Inoue if (rt->rt_llinfo) { 81682cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = 81782cd038dSYoshinobu Inoue (struct llinfo_nd6 *)rt->rt_llinfo; 81882cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_NOSTATE; 81982cd038dSYoshinobu Inoue } 82082cd038dSYoshinobu Inoue } else 82182cd038dSYoshinobu Inoue return (NULL); 82282cd038dSYoshinobu Inoue } 823ba00f009SSam Leffler RT_LOCK_ASSERT(rt); 8247138d65cSSam Leffler RT_REMREF(rt); 82582cd038dSYoshinobu Inoue /* 82682cd038dSYoshinobu Inoue * Validation for the entry. 8273c404a32SHajimu UMEMOTO * Note that the check for rt_llinfo is necessary because a cloned 8283c404a32SHajimu UMEMOTO * route from a parent route that has the L flag (e.g. the default 8293c404a32SHajimu UMEMOTO * route to a p2p interface) may have the flag, too, while the 8303c404a32SHajimu UMEMOTO * destination is not actually a neighbor. 83182cd038dSYoshinobu Inoue * XXX: we can't use rt->rt_ifp to check for the interface, since 83282cd038dSYoshinobu Inoue * it might be the loopback interface if the entry is for our 83382cd038dSYoshinobu Inoue * own address on a non-loopback interface. Instead, we should 8343c404a32SHajimu UMEMOTO * use rt->rt_ifa->ifa_ifp, which would specify the REAL 8353c404a32SHajimu UMEMOTO * interface. 83682cd038dSYoshinobu Inoue */ 83782cd038dSYoshinobu Inoue if ((rt->rt_flags & RTF_GATEWAY) || (rt->rt_flags & RTF_LLINFO) == 0 || 8383c404a32SHajimu UMEMOTO rt->rt_gateway->sa_family != AF_LINK || rt->rt_llinfo == NULL || 83982cd038dSYoshinobu Inoue (ifp && rt->rt_ifa->ifa_ifp != ifp)) { 84082cd038dSYoshinobu Inoue if (create) { 84107eb2995SHajimu UMEMOTO log(LOG_DEBUG, 84207eb2995SHajimu UMEMOTO "nd6_lookup: failed to lookup %s (if = %s)\n", 84307eb2995SHajimu UMEMOTO ip6_sprintf(addr6), 84407eb2995SHajimu UMEMOTO ifp ? if_name(ifp) : "unspec"); 84582cd038dSYoshinobu Inoue /* xxx more logs... kazu */ 84682cd038dSYoshinobu Inoue } 847ba00f009SSam Leffler RT_UNLOCK(rt); 8483c404a32SHajimu UMEMOTO return (NULL); 84982cd038dSYoshinobu Inoue } 850ba00f009SSam Leffler RT_UNLOCK(rt); /* XXX not ready to return rt locked */ 85182cd038dSYoshinobu Inoue return (rt); 85282cd038dSYoshinobu Inoue } 85382cd038dSYoshinobu Inoue 85482cd038dSYoshinobu Inoue /* 85577b691e0SBrian Feldman * Test whether a given IPv6 address is a neighbor or not, ignoring 85677b691e0SBrian Feldman * the actual neighbor cache. The neighbor cache is ignored in order 85777b691e0SBrian Feldman * to not reenter the routing code from within itself. 85882cd038dSYoshinobu Inoue */ 85977b691e0SBrian Feldman static int 86077b691e0SBrian Feldman nd6_is_new_addr_neighbor(addr, ifp) 861686cdd19SJun-ichiro itojun Hagino struct sockaddr_in6 *addr; 86282cd038dSYoshinobu Inoue struct ifnet *ifp; 86382cd038dSYoshinobu Inoue { 8644208ea14SHajimu UMEMOTO struct nd_prefix *pr; 86582cd038dSYoshinobu Inoue 866686cdd19SJun-ichiro itojun Hagino /* 867686cdd19SJun-ichiro itojun Hagino * A link-local address is always a neighbor. 8684208ea14SHajimu UMEMOTO * XXX: a link does not necessarily specify a single interface. 869686cdd19SJun-ichiro itojun Hagino */ 870a1f7e5f8SHajimu UMEMOTO if (IN6_IS_ADDR_LINKLOCAL(&addr->sin6_addr)) { 871a1f7e5f8SHajimu UMEMOTO struct sockaddr_in6 sin6_copy; 872a1f7e5f8SHajimu UMEMOTO u_int32_t zone; 873a1f7e5f8SHajimu UMEMOTO 874a1f7e5f8SHajimu UMEMOTO /* 875a1f7e5f8SHajimu UMEMOTO * We need sin6_copy since sa6_recoverscope() may modify the 876a1f7e5f8SHajimu UMEMOTO * content (XXX). 877a1f7e5f8SHajimu UMEMOTO */ 878a1f7e5f8SHajimu UMEMOTO sin6_copy = *addr; 879a1f7e5f8SHajimu UMEMOTO if (sa6_recoverscope(&sin6_copy)) 880a1f7e5f8SHajimu UMEMOTO return (0); /* XXX: should be impossible */ 881a1f7e5f8SHajimu UMEMOTO if (in6_setscope(&sin6_copy.sin6_addr, ifp, &zone)) 882a1f7e5f8SHajimu UMEMOTO return (0); 883a1f7e5f8SHajimu UMEMOTO if (sin6_copy.sin6_scope_id == zone) 88482cd038dSYoshinobu Inoue return (1); 885a1f7e5f8SHajimu UMEMOTO else 886a1f7e5f8SHajimu UMEMOTO return (0); 887a1f7e5f8SHajimu UMEMOTO } 88882cd038dSYoshinobu Inoue 88982cd038dSYoshinobu Inoue /* 89082cd038dSYoshinobu Inoue * If the address matches one of our addresses, 89182cd038dSYoshinobu Inoue * it should be a neighbor. 8924208ea14SHajimu UMEMOTO * If the address matches one of our on-link prefixes, it should be a 8934208ea14SHajimu UMEMOTO * neighbor. 89482cd038dSYoshinobu Inoue */ 8954208ea14SHajimu UMEMOTO for (pr = nd_prefix.lh_first; pr; pr = pr->ndpr_next) { 8964208ea14SHajimu UMEMOTO if (pr->ndpr_ifp != ifp) 8974208ea14SHajimu UMEMOTO continue; 89882cd038dSYoshinobu Inoue 8994208ea14SHajimu UMEMOTO if (!(pr->ndpr_stateflags & NDPRF_ONLINK)) 9004208ea14SHajimu UMEMOTO continue; 9014208ea14SHajimu UMEMOTO 9024208ea14SHajimu UMEMOTO if (IN6_ARE_MASKED_ADDR_EQUAL(&pr->ndpr_prefix.sin6_addr, 9034208ea14SHajimu UMEMOTO &addr->sin6_addr, &pr->ndpr_mask)) 9044208ea14SHajimu UMEMOTO return (1); 90582cd038dSYoshinobu Inoue } 9064208ea14SHajimu UMEMOTO 9074208ea14SHajimu UMEMOTO /* 9084208ea14SHajimu UMEMOTO * If the default router list is empty, all addresses are regarded 9094208ea14SHajimu UMEMOTO * as on-link, and thus, as a neighbor. 9104208ea14SHajimu UMEMOTO * XXX: we restrict the condition to hosts, because routers usually do 9114208ea14SHajimu UMEMOTO * not have the "default router list". 9124208ea14SHajimu UMEMOTO */ 9134208ea14SHajimu UMEMOTO if (!ip6_forwarding && TAILQ_FIRST(&nd_defrouter) == NULL && 9144208ea14SHajimu UMEMOTO nd6_defifindex == ifp->if_index) { 91582cd038dSYoshinobu Inoue return (1); 91682cd038dSYoshinobu Inoue } 91782cd038dSYoshinobu Inoue 91877b691e0SBrian Feldman return (0); 91977b691e0SBrian Feldman } 92077b691e0SBrian Feldman 92177b691e0SBrian Feldman 92277b691e0SBrian Feldman /* 92377b691e0SBrian Feldman * Detect if a given IPv6 address identifies a neighbor on a given link. 92477b691e0SBrian Feldman * XXX: should take care of the destination of a p2p link? 92577b691e0SBrian Feldman */ 92677b691e0SBrian Feldman int 92777b691e0SBrian Feldman nd6_is_addr_neighbor(addr, ifp) 92877b691e0SBrian Feldman struct sockaddr_in6 *addr; 92977b691e0SBrian Feldman struct ifnet *ifp; 93077b691e0SBrian Feldman { 93177b691e0SBrian Feldman 93277b691e0SBrian Feldman if (nd6_is_new_addr_neighbor(addr, ifp)) 93377b691e0SBrian Feldman return (1); 93477b691e0SBrian Feldman 93582cd038dSYoshinobu Inoue /* 93682cd038dSYoshinobu Inoue * Even if the address matches none of our addresses, it might be 93782cd038dSYoshinobu Inoue * in the neighbor cache. 93882cd038dSYoshinobu Inoue */ 9393c404a32SHajimu UMEMOTO if (nd6_lookup(&addr->sin6_addr, 0, ifp) != NULL) 94082cd038dSYoshinobu Inoue return (1); 94182cd038dSYoshinobu Inoue 94282cd038dSYoshinobu Inoue return (0); 94382cd038dSYoshinobu Inoue } 94482cd038dSYoshinobu Inoue 94582cd038dSYoshinobu Inoue /* 94682cd038dSYoshinobu Inoue * Free an nd6 llinfo entry. 94782cd038dSYoshinobu Inoue */ 94833841545SHajimu UMEMOTO struct llinfo_nd6 * 94982cd038dSYoshinobu Inoue nd6_free(rt) 95082cd038dSYoshinobu Inoue struct rtentry *rt; 95182cd038dSYoshinobu Inoue { 95233841545SHajimu UMEMOTO struct llinfo_nd6 *ln = (struct llinfo_nd6 *)rt->rt_llinfo, *next; 953686cdd19SJun-ichiro itojun Hagino struct in6_addr in6 = ((struct sockaddr_in6 *)rt_key(rt))->sin6_addr; 95482cd038dSYoshinobu Inoue struct nd_defrouter *dr; 95582cd038dSYoshinobu Inoue 95682cd038dSYoshinobu Inoue /* 95733841545SHajimu UMEMOTO * we used to have pfctlinput(PRC_HOSTDEAD) here. 95833841545SHajimu UMEMOTO * even though it is not harmful, it was not really necessary. 95982cd038dSYoshinobu Inoue */ 960686cdd19SJun-ichiro itojun Hagino 961686cdd19SJun-ichiro itojun Hagino if (!ip6_forwarding && ip6_accept_rtadv) { /* XXX: too restrictive? */ 962686cdd19SJun-ichiro itojun Hagino int s; 963686cdd19SJun-ichiro itojun Hagino s = splnet(); 964686cdd19SJun-ichiro itojun Hagino dr = defrouter_lookup(&((struct sockaddr_in6 *)rt_key(rt))->sin6_addr, 965686cdd19SJun-ichiro itojun Hagino rt->rt_ifp); 96633841545SHajimu UMEMOTO 967686cdd19SJun-ichiro itojun Hagino if (ln->ln_router || dr) { 968686cdd19SJun-ichiro itojun Hagino /* 969686cdd19SJun-ichiro itojun Hagino * rt6_flush must be called whether or not the neighbor 970686cdd19SJun-ichiro itojun Hagino * is in the Default Router List. 971686cdd19SJun-ichiro itojun Hagino * See a corresponding comment in nd6_na_input(). 972686cdd19SJun-ichiro itojun Hagino */ 973686cdd19SJun-ichiro itojun Hagino rt6_flush(&in6, rt->rt_ifp); 974686cdd19SJun-ichiro itojun Hagino } 975686cdd19SJun-ichiro itojun Hagino 976686cdd19SJun-ichiro itojun Hagino if (dr) { 977686cdd19SJun-ichiro itojun Hagino /* 978686cdd19SJun-ichiro itojun Hagino * Unreachablity of a router might affect the default 979686cdd19SJun-ichiro itojun Hagino * router selection and on-link detection of advertised 980686cdd19SJun-ichiro itojun Hagino * prefixes. 981686cdd19SJun-ichiro itojun Hagino */ 982686cdd19SJun-ichiro itojun Hagino 983686cdd19SJun-ichiro itojun Hagino /* 984686cdd19SJun-ichiro itojun Hagino * Temporarily fake the state to choose a new default 985686cdd19SJun-ichiro itojun Hagino * router and to perform on-link determination of 98688ff5695SSUZUKI Shinsuke * prefixes correctly. 987686cdd19SJun-ichiro itojun Hagino * Below the state will be set correctly, 988686cdd19SJun-ichiro itojun Hagino * or the entry itself will be deleted. 989686cdd19SJun-ichiro itojun Hagino */ 990686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_INCOMPLETE; 991686cdd19SJun-ichiro itojun Hagino 99233841545SHajimu UMEMOTO /* 99333841545SHajimu UMEMOTO * Since defrouter_select() does not affect the 99433841545SHajimu UMEMOTO * on-link determination and MIP6 needs the check 99533841545SHajimu UMEMOTO * before the default router selection, we perform 99633841545SHajimu UMEMOTO * the check now. 99733841545SHajimu UMEMOTO */ 99833841545SHajimu UMEMOTO pfxlist_onlink_check(); 99933841545SHajimu UMEMOTO 1000686cdd19SJun-ichiro itojun Hagino if (dr == TAILQ_FIRST(&nd_defrouter)) { 1001686cdd19SJun-ichiro itojun Hagino /* 1002686cdd19SJun-ichiro itojun Hagino * It is used as the current default router, 1003686cdd19SJun-ichiro itojun Hagino * so we have to move it to the end of the 1004686cdd19SJun-ichiro itojun Hagino * list and choose a new one. 1005686cdd19SJun-ichiro itojun Hagino * XXX: it is not very efficient if this is 1006686cdd19SJun-ichiro itojun Hagino * the only router. 1007686cdd19SJun-ichiro itojun Hagino */ 1008686cdd19SJun-ichiro itojun Hagino TAILQ_REMOVE(&nd_defrouter, dr, dr_entry); 1009686cdd19SJun-ichiro itojun Hagino TAILQ_INSERT_TAIL(&nd_defrouter, dr, dr_entry); 1010686cdd19SJun-ichiro itojun Hagino 1011686cdd19SJun-ichiro itojun Hagino defrouter_select(); 1012686cdd19SJun-ichiro itojun Hagino } 101382cd038dSYoshinobu Inoue } 101482cd038dSYoshinobu Inoue splx(s); 101582cd038dSYoshinobu Inoue } 101682cd038dSYoshinobu Inoue 101733841545SHajimu UMEMOTO /* 101833841545SHajimu UMEMOTO * Before deleting the entry, remember the next entry as the 101933841545SHajimu UMEMOTO * return value. We need this because pfxlist_onlink_check() above 102033841545SHajimu UMEMOTO * might have freed other entries (particularly the old next entry) as 102133841545SHajimu UMEMOTO * a side effect (XXX). 102233841545SHajimu UMEMOTO */ 102333841545SHajimu UMEMOTO next = ln->ln_next; 1024686cdd19SJun-ichiro itojun Hagino 102533841545SHajimu UMEMOTO /* 102633841545SHajimu UMEMOTO * Detach the route from the routing tree and the list of neighbor 102733841545SHajimu UMEMOTO * caches, and disable the route entry not to be used in already 102833841545SHajimu UMEMOTO * cached routes. 102933841545SHajimu UMEMOTO */ 1030686cdd19SJun-ichiro itojun Hagino rtrequest(RTM_DELETE, rt_key(rt), (struct sockaddr *)0, 1031686cdd19SJun-ichiro itojun Hagino rt_mask(rt), 0, (struct rtentry **)0); 103233841545SHajimu UMEMOTO 103333841545SHajimu UMEMOTO return (next); 103482cd038dSYoshinobu Inoue } 103582cd038dSYoshinobu Inoue 103682cd038dSYoshinobu Inoue /* 103782cd038dSYoshinobu Inoue * Upper-layer reachability hint for Neighbor Unreachability Detection. 103882cd038dSYoshinobu Inoue * 1039cd0fdcf7SHajimu UMEMOTO * XXX cost-effective methods? 104082cd038dSYoshinobu Inoue */ 104182cd038dSYoshinobu Inoue void 1042686cdd19SJun-ichiro itojun Hagino nd6_nud_hint(rt, dst6, force) 104382cd038dSYoshinobu Inoue struct rtentry *rt; 104482cd038dSYoshinobu Inoue struct in6_addr *dst6; 1045686cdd19SJun-ichiro itojun Hagino int force; 104682cd038dSYoshinobu Inoue { 104782cd038dSYoshinobu Inoue struct llinfo_nd6 *ln; 104882cd038dSYoshinobu Inoue 104982cd038dSYoshinobu Inoue /* 105082cd038dSYoshinobu Inoue * If the caller specified "rt", use that. Otherwise, resolve the 105182cd038dSYoshinobu Inoue * routing table by supplied "dst6". 105282cd038dSYoshinobu Inoue */ 105382cd038dSYoshinobu Inoue if (!rt) { 105482cd038dSYoshinobu Inoue if (!dst6) 105582cd038dSYoshinobu Inoue return; 105682cd038dSYoshinobu Inoue if (!(rt = nd6_lookup(dst6, 0, NULL))) 105782cd038dSYoshinobu Inoue return; 105882cd038dSYoshinobu Inoue } 105982cd038dSYoshinobu Inoue 1060686cdd19SJun-ichiro itojun Hagino if ((rt->rt_flags & RTF_GATEWAY) != 0 || 1061686cdd19SJun-ichiro itojun Hagino (rt->rt_flags & RTF_LLINFO) == 0 || 1062686cdd19SJun-ichiro itojun Hagino !rt->rt_llinfo || !rt->rt_gateway || 1063686cdd19SJun-ichiro itojun Hagino rt->rt_gateway->sa_family != AF_LINK) { 106482cd038dSYoshinobu Inoue /* This is not a host route. */ 106582cd038dSYoshinobu Inoue return; 106682cd038dSYoshinobu Inoue } 106782cd038dSYoshinobu Inoue 106882cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 1069ad8d5711SMunechika SUMIKAWA if (ln->ln_state < ND6_LLINFO_REACHABLE) 107082cd038dSYoshinobu Inoue return; 107182cd038dSYoshinobu Inoue 1072686cdd19SJun-ichiro itojun Hagino /* 1073686cdd19SJun-ichiro itojun Hagino * if we get upper-layer reachability confirmation many times, 1074686cdd19SJun-ichiro itojun Hagino * it is possible we have false information. 1075686cdd19SJun-ichiro itojun Hagino */ 1076686cdd19SJun-ichiro itojun Hagino if (!force) { 1077686cdd19SJun-ichiro itojun Hagino ln->ln_byhint++; 1078686cdd19SJun-ichiro itojun Hagino if (ln->ln_byhint > nd6_maxnudhint) 1079686cdd19SJun-ichiro itojun Hagino return; 1080686cdd19SJun-ichiro itojun Hagino } 1081686cdd19SJun-ichiro itojun Hagino 108282cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 108382cd038dSYoshinobu Inoue if (ln->ln_expire) 108482cd038dSYoshinobu Inoue ln->ln_expire = time_second + 108531b1bfe1SHajimu UMEMOTO ND_IFINFO(rt->rt_ifp)->reachable; 108682cd038dSYoshinobu Inoue } 108782cd038dSYoshinobu Inoue 108882cd038dSYoshinobu Inoue void 10898071913dSRuslan Ermilov nd6_rtrequest(req, rt, info) 109082cd038dSYoshinobu Inoue int req; 109182cd038dSYoshinobu Inoue struct rtentry *rt; 10928071913dSRuslan Ermilov struct rt_addrinfo *info; /* xxx unused */ 109382cd038dSYoshinobu Inoue { 109482cd038dSYoshinobu Inoue struct sockaddr *gate = rt->rt_gateway; 109582cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = (struct llinfo_nd6 *)rt->rt_llinfo; 109682cd038dSYoshinobu Inoue static struct sockaddr_dl null_sdl = {sizeof(null_sdl), AF_LINK}; 109782cd038dSYoshinobu Inoue struct ifnet *ifp = rt->rt_ifp; 109882cd038dSYoshinobu Inoue struct ifaddr *ifa; 109982cd038dSYoshinobu Inoue 1100d1dd20beSSam Leffler RT_LOCK_ASSERT(rt); 1101d1dd20beSSam Leffler 110207eb2995SHajimu UMEMOTO if ((rt->rt_flags & RTF_GATEWAY) != 0) 110382cd038dSYoshinobu Inoue return; 110482cd038dSYoshinobu Inoue 110533841545SHajimu UMEMOTO if (nd6_need_cache(ifp) == 0 && (rt->rt_flags & RTF_HOST) == 0) { 110633841545SHajimu UMEMOTO /* 110733841545SHajimu UMEMOTO * This is probably an interface direct route for a link 110833841545SHajimu UMEMOTO * which does not need neighbor caches (e.g. fe80::%lo0/64). 110933841545SHajimu UMEMOTO * We do not need special treatment below for such a route. 111033841545SHajimu UMEMOTO * Moreover, the RTF_LLINFO flag which would be set below 111133841545SHajimu UMEMOTO * would annoy the ndp(8) command. 111233841545SHajimu UMEMOTO */ 111333841545SHajimu UMEMOTO return; 111433841545SHajimu UMEMOTO } 111533841545SHajimu UMEMOTO 1116c3cf07a1SHajimu UMEMOTO if (req == RTM_RESOLVE && 1117c3cf07a1SHajimu UMEMOTO (nd6_need_cache(ifp) == 0 || /* stf case */ 111877b691e0SBrian Feldman !nd6_is_new_addr_neighbor((struct sockaddr_in6 *)rt_key(rt), 111977b691e0SBrian Feldman ifp))) { 1120c3cf07a1SHajimu UMEMOTO /* 1121c3cf07a1SHajimu UMEMOTO * FreeBSD and BSD/OS often make a cloned host route based 1122c3cf07a1SHajimu UMEMOTO * on a less-specific route (e.g. the default route). 1123c3cf07a1SHajimu UMEMOTO * If the less specific route does not have a "gateway" 1124c3cf07a1SHajimu UMEMOTO * (this is the case when the route just goes to a p2p or an 1125c3cf07a1SHajimu UMEMOTO * stf interface), we'll mistakenly make a neighbor cache for 1126c3cf07a1SHajimu UMEMOTO * the host route, and will see strange neighbor solicitation 1127c3cf07a1SHajimu UMEMOTO * for the corresponding destination. In order to avoid the 1128c3cf07a1SHajimu UMEMOTO * confusion, we check if the destination of the route is 1129c3cf07a1SHajimu UMEMOTO * a neighbor in terms of neighbor discovery, and stop the 1130c3cf07a1SHajimu UMEMOTO * process if not. Additionally, we remove the LLINFO flag 1131c3cf07a1SHajimu UMEMOTO * so that ndp(8) will not try to get the neighbor information 1132c3cf07a1SHajimu UMEMOTO * of the destination. 1133c3cf07a1SHajimu UMEMOTO */ 1134c3cf07a1SHajimu UMEMOTO rt->rt_flags &= ~RTF_LLINFO; 1135c3cf07a1SHajimu UMEMOTO return; 1136c3cf07a1SHajimu UMEMOTO } 1137c3cf07a1SHajimu UMEMOTO 113882cd038dSYoshinobu Inoue switch (req) { 113982cd038dSYoshinobu Inoue case RTM_ADD: 114082cd038dSYoshinobu Inoue /* 114182cd038dSYoshinobu Inoue * There is no backward compatibility :) 114282cd038dSYoshinobu Inoue * 114382cd038dSYoshinobu Inoue * if ((rt->rt_flags & RTF_HOST) == 0 && 114482cd038dSYoshinobu Inoue * SIN(rt_mask(rt))->sin_addr.s_addr != 0xffffffff) 114582cd038dSYoshinobu Inoue * rt->rt_flags |= RTF_CLONING; 114682cd038dSYoshinobu Inoue */ 1147686cdd19SJun-ichiro itojun Hagino if (rt->rt_flags & (RTF_CLONING | RTF_LLINFO)) { 114882cd038dSYoshinobu Inoue /* 114982cd038dSYoshinobu Inoue * Case 1: This route should come from 115082cd038dSYoshinobu Inoue * a route to interface. RTF_LLINFO flag is set 115182cd038dSYoshinobu Inoue * for a host route whose destination should be 115282cd038dSYoshinobu Inoue * treated as on-link. 115382cd038dSYoshinobu Inoue */ 115482cd038dSYoshinobu Inoue rt_setgate(rt, rt_key(rt), 115582cd038dSYoshinobu Inoue (struct sockaddr *)&null_sdl); 115682cd038dSYoshinobu Inoue gate = rt->rt_gateway; 115782cd038dSYoshinobu Inoue SDL(gate)->sdl_type = ifp->if_type; 115882cd038dSYoshinobu Inoue SDL(gate)->sdl_index = ifp->if_index; 115982cd038dSYoshinobu Inoue if (ln) 116082cd038dSYoshinobu Inoue ln->ln_expire = time_second; 116182cd038dSYoshinobu Inoue if (ln && ln->ln_expire == 0) { 116233841545SHajimu UMEMOTO /* kludge for desktops */ 116382cd038dSYoshinobu Inoue ln->ln_expire = 1; 116482cd038dSYoshinobu Inoue } 116507eb2995SHajimu UMEMOTO if ((rt->rt_flags & RTF_CLONING) != 0) 116682cd038dSYoshinobu Inoue break; 116782cd038dSYoshinobu Inoue } 1168686cdd19SJun-ichiro itojun Hagino /* 1169686cdd19SJun-ichiro itojun Hagino * In IPv4 code, we try to annonuce new RTF_ANNOUNCE entry here. 1170686cdd19SJun-ichiro itojun Hagino * We don't do that here since llinfo is not ready yet. 1171686cdd19SJun-ichiro itojun Hagino * 1172686cdd19SJun-ichiro itojun Hagino * There are also couple of other things to be discussed: 1173686cdd19SJun-ichiro itojun Hagino * - unsolicited NA code needs improvement beforehand 1174686cdd19SJun-ichiro itojun Hagino * - RFC2461 says we MAY send multicast unsolicited NA 1175686cdd19SJun-ichiro itojun Hagino * (7.2.6 paragraph 4), however, it also says that we 1176686cdd19SJun-ichiro itojun Hagino * SHOULD provide a mechanism to prevent multicast NA storm. 1177686cdd19SJun-ichiro itojun Hagino * we don't have anything like it right now. 117833841545SHajimu UMEMOTO * note that the mechanism needs a mutual agreement 1179686cdd19SJun-ichiro itojun Hagino * between proxies, which means that we need to implement 118033841545SHajimu UMEMOTO * a new protocol, or a new kludge. 118133841545SHajimu UMEMOTO * - from RFC2461 6.2.4, host MUST NOT send an unsolicited NA. 1182686cdd19SJun-ichiro itojun Hagino * we need to check ip6forwarding before sending it. 1183686cdd19SJun-ichiro itojun Hagino * (or should we allow proxy ND configuration only for 1184686cdd19SJun-ichiro itojun Hagino * routers? there's no mention about proxy ND from hosts) 1185686cdd19SJun-ichiro itojun Hagino */ 1186686cdd19SJun-ichiro itojun Hagino #if 0 1187686cdd19SJun-ichiro itojun Hagino /* XXX it does not work */ 118882cd038dSYoshinobu Inoue if (rt->rt_flags & RTF_ANNOUNCE) 118982cd038dSYoshinobu Inoue nd6_na_output(ifp, 119082cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr, 119182cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr, 119282cd038dSYoshinobu Inoue ip6_forwarding ? ND_NA_FLAG_ROUTER : 0, 1193686cdd19SJun-ichiro itojun Hagino 1, NULL); 1194686cdd19SJun-ichiro itojun Hagino #endif 119582cd038dSYoshinobu Inoue /* FALLTHROUGH */ 119682cd038dSYoshinobu Inoue case RTM_RESOLVE: 119733841545SHajimu UMEMOTO if ((ifp->if_flags & (IFF_POINTOPOINT | IFF_LOOPBACK)) == 0) { 1198686cdd19SJun-ichiro itojun Hagino /* 1199686cdd19SJun-ichiro itojun Hagino * Address resolution isn't necessary for a point to 1200686cdd19SJun-ichiro itojun Hagino * point link, so we can skip this test for a p2p link. 1201686cdd19SJun-ichiro itojun Hagino */ 120282cd038dSYoshinobu Inoue if (gate->sa_family != AF_LINK || 120382cd038dSYoshinobu Inoue gate->sa_len < sizeof(null_sdl)) { 1204686cdd19SJun-ichiro itojun Hagino log(LOG_DEBUG, 120533841545SHajimu UMEMOTO "nd6_rtrequest: bad gateway value: %s\n", 120633841545SHajimu UMEMOTO if_name(ifp)); 120782cd038dSYoshinobu Inoue break; 120882cd038dSYoshinobu Inoue } 120982cd038dSYoshinobu Inoue SDL(gate)->sdl_type = ifp->if_type; 121082cd038dSYoshinobu Inoue SDL(gate)->sdl_index = ifp->if_index; 1211686cdd19SJun-ichiro itojun Hagino } 1212686cdd19SJun-ichiro itojun Hagino if (ln != NULL) 121382cd038dSYoshinobu Inoue break; /* This happens on a route change */ 121482cd038dSYoshinobu Inoue /* 121582cd038dSYoshinobu Inoue * Case 2: This route may come from cloning, or a manual route 121682cd038dSYoshinobu Inoue * add with a LL address. 121782cd038dSYoshinobu Inoue */ 121882cd038dSYoshinobu Inoue R_Malloc(ln, struct llinfo_nd6 *, sizeof(*ln)); 121982cd038dSYoshinobu Inoue rt->rt_llinfo = (caddr_t)ln; 122082cd038dSYoshinobu Inoue if (!ln) { 122182cd038dSYoshinobu Inoue log(LOG_DEBUG, "nd6_rtrequest: malloc failed\n"); 122282cd038dSYoshinobu Inoue break; 122382cd038dSYoshinobu Inoue } 122482cd038dSYoshinobu Inoue nd6_inuse++; 122582cd038dSYoshinobu Inoue nd6_allocated++; 1226056c7327SLuigi Rizzo bzero(ln, sizeof(*ln)); 122782cd038dSYoshinobu Inoue ln->ln_rt = rt; 122882cd038dSYoshinobu Inoue /* this is required for "ndp" command. - shin */ 122982cd038dSYoshinobu Inoue if (req == RTM_ADD) { 123082cd038dSYoshinobu Inoue /* 123182cd038dSYoshinobu Inoue * gate should have some valid AF_LINK entry, 123282cd038dSYoshinobu Inoue * and ln->ln_expire should have some lifetime 123382cd038dSYoshinobu Inoue * which is specified by ndp command. 123482cd038dSYoshinobu Inoue */ 123582cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 1236686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 123782cd038dSYoshinobu Inoue } else { 123882cd038dSYoshinobu Inoue /* 123982cd038dSYoshinobu Inoue * When req == RTM_RESOLVE, rt is created and 124082cd038dSYoshinobu Inoue * initialized in rtrequest(), so rt_expire is 0. 124182cd038dSYoshinobu Inoue */ 1242686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_NOSTATE; 124382cd038dSYoshinobu Inoue ln->ln_expire = time_second; 124482cd038dSYoshinobu Inoue } 124582cd038dSYoshinobu Inoue rt->rt_flags |= RTF_LLINFO; 124682cd038dSYoshinobu Inoue ln->ln_next = llinfo_nd6.ln_next; 124782cd038dSYoshinobu Inoue llinfo_nd6.ln_next = ln; 124882cd038dSYoshinobu Inoue ln->ln_prev = &llinfo_nd6; 124982cd038dSYoshinobu Inoue ln->ln_next->ln_prev = ln; 125082cd038dSYoshinobu Inoue 125182cd038dSYoshinobu Inoue /* 125282cd038dSYoshinobu Inoue * check if rt_key(rt) is one of my address assigned 125382cd038dSYoshinobu Inoue * to the interface. 125482cd038dSYoshinobu Inoue */ 125582cd038dSYoshinobu Inoue ifa = (struct ifaddr *)in6ifa_ifpwithaddr(rt->rt_ifp, 125682cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr); 125782cd038dSYoshinobu Inoue if (ifa) { 125882cd038dSYoshinobu Inoue caddr_t macp = nd6_ifptomac(ifp); 125982cd038dSYoshinobu Inoue ln->ln_expire = 0; 126082cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 1261686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 126282cd038dSYoshinobu Inoue if (macp) { 1263056c7327SLuigi Rizzo bcopy(macp, LLADDR(SDL(gate)), ifp->if_addrlen); 126482cd038dSYoshinobu Inoue SDL(gate)->sdl_alen = ifp->if_addrlen; 126582cd038dSYoshinobu Inoue } 126682cd038dSYoshinobu Inoue if (nd6_useloopback) { 126782cd038dSYoshinobu Inoue rt->rt_ifp = &loif[0]; /* XXX */ 126882cd038dSYoshinobu Inoue /* 126982cd038dSYoshinobu Inoue * Make sure rt_ifa be equal to the ifaddr 127082cd038dSYoshinobu Inoue * corresponding to the address. 127182cd038dSYoshinobu Inoue * We need this because when we refer 127282cd038dSYoshinobu Inoue * rt_ifa->ia6_flags in ip6_input, we assume 127382cd038dSYoshinobu Inoue * that the rt_ifa points to the address instead 127482cd038dSYoshinobu Inoue * of the loopback address. 127582cd038dSYoshinobu Inoue */ 127682cd038dSYoshinobu Inoue if (ifa != rt->rt_ifa) { 1277686cdd19SJun-ichiro itojun Hagino IFAFREE(rt->rt_ifa); 127833841545SHajimu UMEMOTO IFAREF(ifa); 127982cd038dSYoshinobu Inoue rt->rt_ifa = ifa; 128082cd038dSYoshinobu Inoue } 128182cd038dSYoshinobu Inoue } 1282686cdd19SJun-ichiro itojun Hagino } else if (rt->rt_flags & RTF_ANNOUNCE) { 1283686cdd19SJun-ichiro itojun Hagino ln->ln_expire = 0; 1284686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_REACHABLE; 1285686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 1286686cdd19SJun-ichiro itojun Hagino 1287686cdd19SJun-ichiro itojun Hagino /* join solicited node multicast for proxy ND */ 1288686cdd19SJun-ichiro itojun Hagino if (ifp->if_flags & IFF_MULTICAST) { 1289686cdd19SJun-ichiro itojun Hagino struct in6_addr llsol; 1290686cdd19SJun-ichiro itojun Hagino int error; 1291686cdd19SJun-ichiro itojun Hagino 1292686cdd19SJun-ichiro itojun Hagino llsol = SIN6(rt_key(rt))->sin6_addr; 1293686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[0] = htons(0xff02); 1294686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[1] = 0; 1295686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[2] = htonl(1); 1296686cdd19SJun-ichiro itojun Hagino llsol.s6_addr8[12] = 0xff; 1297a1f7e5f8SHajimu UMEMOTO if (in6_setscope(&llsol, ifp, NULL)) 1298a1f7e5f8SHajimu UMEMOTO break; 129933841545SHajimu UMEMOTO if (!in6_addmulti(&llsol, ifp, &error)) { 130033841545SHajimu UMEMOTO nd6log((LOG_ERR, "%s: failed to join " 130133841545SHajimu UMEMOTO "%s (errno=%d)\n", if_name(ifp), 130233841545SHajimu UMEMOTO ip6_sprintf(&llsol), error)); 130333841545SHajimu UMEMOTO } 1304686cdd19SJun-ichiro itojun Hagino } 130582cd038dSYoshinobu Inoue } 130682cd038dSYoshinobu Inoue break; 130782cd038dSYoshinobu Inoue 130882cd038dSYoshinobu Inoue case RTM_DELETE: 130982cd038dSYoshinobu Inoue if (!ln) 131082cd038dSYoshinobu Inoue break; 1311686cdd19SJun-ichiro itojun Hagino /* leave from solicited node multicast for proxy ND */ 1312686cdd19SJun-ichiro itojun Hagino if ((rt->rt_flags & RTF_ANNOUNCE) != 0 && 1313686cdd19SJun-ichiro itojun Hagino (ifp->if_flags & IFF_MULTICAST) != 0) { 1314686cdd19SJun-ichiro itojun Hagino struct in6_addr llsol; 1315686cdd19SJun-ichiro itojun Hagino struct in6_multi *in6m; 1316686cdd19SJun-ichiro itojun Hagino 1317686cdd19SJun-ichiro itojun Hagino llsol = SIN6(rt_key(rt))->sin6_addr; 1318686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[0] = htons(0xff02); 1319686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[1] = 0; 1320686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[2] = htonl(1); 1321686cdd19SJun-ichiro itojun Hagino llsol.s6_addr8[12] = 0xff; 1322a1f7e5f8SHajimu UMEMOTO if (in6_setscope(&llsol, ifp, NULL) == 0) { 1323686cdd19SJun-ichiro itojun Hagino IN6_LOOKUP_MULTI(llsol, ifp, in6m); 1324686cdd19SJun-ichiro itojun Hagino if (in6m) 1325686cdd19SJun-ichiro itojun Hagino in6_delmulti(in6m); 1326a1f7e5f8SHajimu UMEMOTO } else 1327a1f7e5f8SHajimu UMEMOTO ; /* XXX: should not happen. bark here? */ 1328686cdd19SJun-ichiro itojun Hagino } 132982cd038dSYoshinobu Inoue nd6_inuse--; 133082cd038dSYoshinobu Inoue ln->ln_next->ln_prev = ln->ln_prev; 133182cd038dSYoshinobu Inoue ln->ln_prev->ln_next = ln->ln_next; 133282cd038dSYoshinobu Inoue ln->ln_prev = NULL; 133382cd038dSYoshinobu Inoue rt->rt_llinfo = 0; 133482cd038dSYoshinobu Inoue rt->rt_flags &= ~RTF_LLINFO; 133582cd038dSYoshinobu Inoue if (ln->ln_hold) 133682cd038dSYoshinobu Inoue m_freem(ln->ln_hold); 133782cd038dSYoshinobu Inoue Free((caddr_t)ln); 133882cd038dSYoshinobu Inoue } 133982cd038dSYoshinobu Inoue } 134082cd038dSYoshinobu Inoue 134182cd038dSYoshinobu Inoue int 134282cd038dSYoshinobu Inoue nd6_ioctl(cmd, data, ifp) 134382cd038dSYoshinobu Inoue u_long cmd; 134482cd038dSYoshinobu Inoue caddr_t data; 134582cd038dSYoshinobu Inoue struct ifnet *ifp; 134682cd038dSYoshinobu Inoue { 134782cd038dSYoshinobu Inoue struct in6_drlist *drl = (struct in6_drlist *)data; 1348f95d4633SHajimu UMEMOTO struct in6_oprlist *oprl = (struct in6_oprlist *)data; 134982cd038dSYoshinobu Inoue struct in6_ndireq *ndi = (struct in6_ndireq *)data; 135082cd038dSYoshinobu Inoue struct in6_nbrinfo *nbi = (struct in6_nbrinfo *)data; 1351686cdd19SJun-ichiro itojun Hagino struct in6_ndifreq *ndif = (struct in6_ndifreq *)data; 135282cd038dSYoshinobu Inoue struct nd_defrouter *dr, any; 135382cd038dSYoshinobu Inoue struct nd_prefix *pr; 135482cd038dSYoshinobu Inoue struct rtentry *rt; 135582cd038dSYoshinobu Inoue int i = 0, error = 0; 135682cd038dSYoshinobu Inoue int s; 135782cd038dSYoshinobu Inoue 135882cd038dSYoshinobu Inoue switch (cmd) { 135982cd038dSYoshinobu Inoue case SIOCGDRLST_IN6: 136033841545SHajimu UMEMOTO /* 136133841545SHajimu UMEMOTO * obsolete API, use sysctl under net.inet6.icmp6 136233841545SHajimu UMEMOTO */ 136382cd038dSYoshinobu Inoue bzero(drl, sizeof(*drl)); 136482cd038dSYoshinobu Inoue s = splnet(); 1365686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 136682cd038dSYoshinobu Inoue while (dr && i < DRLSTSIZ) { 136782cd038dSYoshinobu Inoue drl->defrouter[i].rtaddr = dr->rtaddr; 1368f95d4633SHajimu UMEMOTO in6_clearscope(&drl->defrouter[i].rtaddr); 136982cd038dSYoshinobu Inoue 137082cd038dSYoshinobu Inoue drl->defrouter[i].flags = dr->flags; 137182cd038dSYoshinobu Inoue drl->defrouter[i].rtlifetime = dr->rtlifetime; 137282cd038dSYoshinobu Inoue drl->defrouter[i].expire = dr->expire; 137382cd038dSYoshinobu Inoue drl->defrouter[i].if_index = dr->ifp->if_index; 137482cd038dSYoshinobu Inoue i++; 1375686cdd19SJun-ichiro itojun Hagino dr = TAILQ_NEXT(dr, dr_entry); 137682cd038dSYoshinobu Inoue } 137782cd038dSYoshinobu Inoue splx(s); 137882cd038dSYoshinobu Inoue break; 137982cd038dSYoshinobu Inoue case SIOCGPRLST_IN6: 1380686cdd19SJun-ichiro itojun Hagino /* 138133841545SHajimu UMEMOTO * obsolete API, use sysctl under net.inet6.icmp6 1382f95d4633SHajimu UMEMOTO * 1383f95d4633SHajimu UMEMOTO * XXX the structure in6_prlist was changed in backward- 1384f95d4633SHajimu UMEMOTO * incompatible manner. in6_oprlist is used for SIOCGPRLST_IN6, 1385f95d4633SHajimu UMEMOTO * in6_prlist is used for nd6_sysctl() - fill_prlist(). 138633841545SHajimu UMEMOTO */ 138733841545SHajimu UMEMOTO /* 1388686cdd19SJun-ichiro itojun Hagino * XXX meaning of fields, especialy "raflags", is very 1389686cdd19SJun-ichiro itojun Hagino * differnet between RA prefix list and RR/static prefix list. 1390686cdd19SJun-ichiro itojun Hagino * how about separating ioctls into two? 1391686cdd19SJun-ichiro itojun Hagino */ 1392f95d4633SHajimu UMEMOTO bzero(oprl, sizeof(*oprl)); 139382cd038dSYoshinobu Inoue s = splnet(); 1394686cdd19SJun-ichiro itojun Hagino pr = nd_prefix.lh_first; 139582cd038dSYoshinobu Inoue while (pr && i < PRLSTSIZ) { 139682cd038dSYoshinobu Inoue struct nd_pfxrouter *pfr; 139782cd038dSYoshinobu Inoue int j; 139882cd038dSYoshinobu Inoue 1399a1f7e5f8SHajimu UMEMOTO oprl->prefix[i].prefix = pr->ndpr_prefix.sin6_addr; 1400f95d4633SHajimu UMEMOTO oprl->prefix[i].raflags = pr->ndpr_raf; 1401f95d4633SHajimu UMEMOTO oprl->prefix[i].prefixlen = pr->ndpr_plen; 1402f95d4633SHajimu UMEMOTO oprl->prefix[i].vltime = pr->ndpr_vltime; 1403f95d4633SHajimu UMEMOTO oprl->prefix[i].pltime = pr->ndpr_pltime; 1404f95d4633SHajimu UMEMOTO oprl->prefix[i].if_index = pr->ndpr_ifp->if_index; 1405f95d4633SHajimu UMEMOTO oprl->prefix[i].expire = pr->ndpr_expire; 140682cd038dSYoshinobu Inoue 1407686cdd19SJun-ichiro itojun Hagino pfr = pr->ndpr_advrtrs.lh_first; 140882cd038dSYoshinobu Inoue j = 0; 140982cd038dSYoshinobu Inoue while (pfr) { 141082cd038dSYoshinobu Inoue if (j < DRLSTSIZ) { 1411f95d4633SHajimu UMEMOTO #define RTRADDR oprl->prefix[i].advrtr[j] 141282cd038dSYoshinobu Inoue RTRADDR = pfr->router->rtaddr; 1413f95d4633SHajimu UMEMOTO in6_clearscope(&RTRADDR); 141482cd038dSYoshinobu Inoue #undef RTRADDR 141582cd038dSYoshinobu Inoue } 141682cd038dSYoshinobu Inoue j++; 1417686cdd19SJun-ichiro itojun Hagino pfr = pfr->pfr_next; 141882cd038dSYoshinobu Inoue } 1419f95d4633SHajimu UMEMOTO oprl->prefix[i].advrtrs = j; 1420f95d4633SHajimu UMEMOTO oprl->prefix[i].origin = PR_ORIG_RA; 142182cd038dSYoshinobu Inoue 142282cd038dSYoshinobu Inoue i++; 1423686cdd19SJun-ichiro itojun Hagino pr = pr->ndpr_next; 142482cd038dSYoshinobu Inoue } 1425686cdd19SJun-ichiro itojun Hagino splx(s); 142682cd038dSYoshinobu Inoue 142782cd038dSYoshinobu Inoue break; 142833841545SHajimu UMEMOTO case OSIOCGIFINFO_IN6: 142931b1bfe1SHajimu UMEMOTO /* XXX: old ndp(8) assumes a positive value for linkmtu. */ 143031b1bfe1SHajimu UMEMOTO bzero(&ndi->ndi, sizeof(ndi->ndi)); 143131b3783cSHajimu UMEMOTO ndi->ndi.linkmtu = IN6_LINKMTU(ifp); 143231b1bfe1SHajimu UMEMOTO ndi->ndi.maxmtu = ND_IFINFO(ifp)->maxmtu; 143331b1bfe1SHajimu UMEMOTO ndi->ndi.basereachable = ND_IFINFO(ifp)->basereachable; 143431b1bfe1SHajimu UMEMOTO ndi->ndi.reachable = ND_IFINFO(ifp)->reachable; 143531b1bfe1SHajimu UMEMOTO ndi->ndi.retrans = ND_IFINFO(ifp)->retrans; 143631b1bfe1SHajimu UMEMOTO ndi->ndi.flags = ND_IFINFO(ifp)->flags; 143731b1bfe1SHajimu UMEMOTO ndi->ndi.recalctm = ND_IFINFO(ifp)->recalctm; 143831b1bfe1SHajimu UMEMOTO ndi->ndi.chlim = ND_IFINFO(ifp)->chlim; 143933841545SHajimu UMEMOTO break; 144082cd038dSYoshinobu Inoue case SIOCGIFINFO_IN6: 144131b1bfe1SHajimu UMEMOTO ndi->ndi = *ND_IFINFO(ifp); 144231b3783cSHajimu UMEMOTO ndi->ndi.linkmtu = IN6_LINKMTU(ifp); 144382cd038dSYoshinobu Inoue break; 1444686cdd19SJun-ichiro itojun Hagino case SIOCSIFINFO_FLAGS: 144531b1bfe1SHajimu UMEMOTO ND_IFINFO(ifp)->flags = ndi->ndi.flags; 1446686cdd19SJun-ichiro itojun Hagino break; 1447686cdd19SJun-ichiro itojun Hagino case SIOCSNDFLUSH_IN6: /* XXX: the ioctl name is confusing... */ 144882cd038dSYoshinobu Inoue /* flush default router list */ 144982cd038dSYoshinobu Inoue /* 145082cd038dSYoshinobu Inoue * xxx sumikawa: should not delete route if default 145182cd038dSYoshinobu Inoue * route equals to the top of default router list 145282cd038dSYoshinobu Inoue */ 145382cd038dSYoshinobu Inoue bzero(&any, sizeof(any)); 145482cd038dSYoshinobu Inoue defrouter_delreq(&any, 0); 1455686cdd19SJun-ichiro itojun Hagino defrouter_select(); 145682cd038dSYoshinobu Inoue /* xxx sumikawa: flush prefix list */ 145782cd038dSYoshinobu Inoue break; 145882cd038dSYoshinobu Inoue case SIOCSPFXFLUSH_IN6: 145982cd038dSYoshinobu Inoue { 146082cd038dSYoshinobu Inoue /* flush all the prefix advertised by routers */ 146182cd038dSYoshinobu Inoue struct nd_prefix *pr, *next; 146282cd038dSYoshinobu Inoue 146382cd038dSYoshinobu Inoue s = splnet(); 1464686cdd19SJun-ichiro itojun Hagino for (pr = nd_prefix.lh_first; pr; pr = next) { 146533841545SHajimu UMEMOTO struct in6_ifaddr *ia, *ia_next; 146633841545SHajimu UMEMOTO 1467686cdd19SJun-ichiro itojun Hagino next = pr->ndpr_next; 146833841545SHajimu UMEMOTO 146933841545SHajimu UMEMOTO if (IN6_IS_ADDR_LINKLOCAL(&pr->ndpr_prefix.sin6_addr)) 147033841545SHajimu UMEMOTO continue; /* XXX */ 147133841545SHajimu UMEMOTO 147233841545SHajimu UMEMOTO /* do we really have to remove addresses as well? */ 147333841545SHajimu UMEMOTO for (ia = in6_ifaddr; ia; ia = ia_next) { 147433841545SHajimu UMEMOTO /* ia might be removed. keep the next ptr. */ 147533841545SHajimu UMEMOTO ia_next = ia->ia_next; 147633841545SHajimu UMEMOTO 147733841545SHajimu UMEMOTO if ((ia->ia6_flags & IN6_IFF_AUTOCONF) == 0) 147833841545SHajimu UMEMOTO continue; 147933841545SHajimu UMEMOTO 148033841545SHajimu UMEMOTO if (ia->ia6_ndpr == pr) 148133841545SHajimu UMEMOTO in6_purgeaddr(&ia->ia_ifa); 148233841545SHajimu UMEMOTO } 148382cd038dSYoshinobu Inoue prelist_remove(pr); 148482cd038dSYoshinobu Inoue } 148582cd038dSYoshinobu Inoue splx(s); 148682cd038dSYoshinobu Inoue break; 148782cd038dSYoshinobu Inoue } 148882cd038dSYoshinobu Inoue case SIOCSRTRFLUSH_IN6: 148982cd038dSYoshinobu Inoue { 149082cd038dSYoshinobu Inoue /* flush all the default routers */ 149182cd038dSYoshinobu Inoue struct nd_defrouter *dr, *next; 149282cd038dSYoshinobu Inoue 149382cd038dSYoshinobu Inoue s = splnet(); 1494686cdd19SJun-ichiro itojun Hagino if ((dr = TAILQ_FIRST(&nd_defrouter)) != NULL) { 149582cd038dSYoshinobu Inoue /* 149682cd038dSYoshinobu Inoue * The first entry of the list may be stored in 149782cd038dSYoshinobu Inoue * the routing table, so we'll delete it later. 149882cd038dSYoshinobu Inoue */ 1499686cdd19SJun-ichiro itojun Hagino for (dr = TAILQ_NEXT(dr, dr_entry); dr; dr = next) { 1500686cdd19SJun-ichiro itojun Hagino next = TAILQ_NEXT(dr, dr_entry); 150182cd038dSYoshinobu Inoue defrtrlist_del(dr); 150282cd038dSYoshinobu Inoue } 1503686cdd19SJun-ichiro itojun Hagino defrtrlist_del(TAILQ_FIRST(&nd_defrouter)); 150482cd038dSYoshinobu Inoue } 150582cd038dSYoshinobu Inoue splx(s); 150682cd038dSYoshinobu Inoue break; 150782cd038dSYoshinobu Inoue } 150882cd038dSYoshinobu Inoue case SIOCGNBRINFO_IN6: 150982cd038dSYoshinobu Inoue { 151082cd038dSYoshinobu Inoue struct llinfo_nd6 *ln; 151182cd038dSYoshinobu Inoue struct in6_addr nb_addr = nbi->addr; /* make local for safety */ 151282cd038dSYoshinobu Inoue 1513a1f7e5f8SHajimu UMEMOTO if ((error = in6_setscope(&nb_addr, ifp, NULL)) != 0) 1514a1f7e5f8SHajimu UMEMOTO return (error); 151582cd038dSYoshinobu Inoue 151682cd038dSYoshinobu Inoue s = splnet(); 151782cd038dSYoshinobu Inoue if ((rt = nd6_lookup(&nb_addr, 0, ifp)) == NULL) { 151882cd038dSYoshinobu Inoue error = EINVAL; 1519686cdd19SJun-ichiro itojun Hagino splx(s); 152082cd038dSYoshinobu Inoue break; 152182cd038dSYoshinobu Inoue } 152282cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 152382cd038dSYoshinobu Inoue nbi->state = ln->ln_state; 152482cd038dSYoshinobu Inoue nbi->asked = ln->ln_asked; 152582cd038dSYoshinobu Inoue nbi->isrouter = ln->ln_router; 152682cd038dSYoshinobu Inoue nbi->expire = ln->ln_expire; 152782cd038dSYoshinobu Inoue splx(s); 152882cd038dSYoshinobu Inoue 152982cd038dSYoshinobu Inoue break; 153082cd038dSYoshinobu Inoue } 1531686cdd19SJun-ichiro itojun Hagino case SIOCGDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1532686cdd19SJun-ichiro itojun Hagino ndif->ifindex = nd6_defifindex; 1533686cdd19SJun-ichiro itojun Hagino break; 1534686cdd19SJun-ichiro itojun Hagino case SIOCSDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1535686cdd19SJun-ichiro itojun Hagino return (nd6_setdefaultiface(ndif->ifindex)); 153682cd038dSYoshinobu Inoue } 153782cd038dSYoshinobu Inoue return (error); 153882cd038dSYoshinobu Inoue } 153982cd038dSYoshinobu Inoue 154082cd038dSYoshinobu Inoue /* 154182cd038dSYoshinobu Inoue * Create neighbor cache entry and cache link-layer address, 154282cd038dSYoshinobu Inoue * on reception of inbound ND6 packets. (RS/RA/NS/redirect) 154382cd038dSYoshinobu Inoue */ 154482cd038dSYoshinobu Inoue struct rtentry * 154582cd038dSYoshinobu Inoue nd6_cache_lladdr(ifp, from, lladdr, lladdrlen, type, code) 154682cd038dSYoshinobu Inoue struct ifnet *ifp; 154782cd038dSYoshinobu Inoue struct in6_addr *from; 154882cd038dSYoshinobu Inoue char *lladdr; 154982cd038dSYoshinobu Inoue int lladdrlen; 155082cd038dSYoshinobu Inoue int type; /* ICMP6 type */ 155182cd038dSYoshinobu Inoue int code; /* type dependent information */ 155282cd038dSYoshinobu Inoue { 155382cd038dSYoshinobu Inoue struct rtentry *rt = NULL; 155482cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = NULL; 155582cd038dSYoshinobu Inoue int is_newentry; 155682cd038dSYoshinobu Inoue struct sockaddr_dl *sdl = NULL; 155782cd038dSYoshinobu Inoue int do_update; 155882cd038dSYoshinobu Inoue int olladdr; 155982cd038dSYoshinobu Inoue int llchange; 156082cd038dSYoshinobu Inoue int newstate = 0; 156182cd038dSYoshinobu Inoue 156282cd038dSYoshinobu Inoue if (!ifp) 156382cd038dSYoshinobu Inoue panic("ifp == NULL in nd6_cache_lladdr"); 156482cd038dSYoshinobu Inoue if (!from) 156582cd038dSYoshinobu Inoue panic("from == NULL in nd6_cache_lladdr"); 156682cd038dSYoshinobu Inoue 156782cd038dSYoshinobu Inoue /* nothing must be updated for unspecified address */ 156882cd038dSYoshinobu Inoue if (IN6_IS_ADDR_UNSPECIFIED(from)) 156982cd038dSYoshinobu Inoue return NULL; 157082cd038dSYoshinobu Inoue 157182cd038dSYoshinobu Inoue /* 157282cd038dSYoshinobu Inoue * Validation about ifp->if_addrlen and lladdrlen must be done in 157382cd038dSYoshinobu Inoue * the caller. 157482cd038dSYoshinobu Inoue * 157582cd038dSYoshinobu Inoue * XXX If the link does not have link-layer adderss, what should 157682cd038dSYoshinobu Inoue * we do? (ifp->if_addrlen == 0) 157782cd038dSYoshinobu Inoue * Spec says nothing in sections for RA, RS and NA. There's small 157882cd038dSYoshinobu Inoue * description on it in NS section (RFC 2461 7.2.3). 157982cd038dSYoshinobu Inoue */ 158082cd038dSYoshinobu Inoue 158182cd038dSYoshinobu Inoue rt = nd6_lookup(from, 0, ifp); 158282cd038dSYoshinobu Inoue if (!rt) { 1583686cdd19SJun-ichiro itojun Hagino #if 0 1584686cdd19SJun-ichiro itojun Hagino /* nothing must be done if there's no lladdr */ 1585686cdd19SJun-ichiro itojun Hagino if (!lladdr || !lladdrlen) 1586686cdd19SJun-ichiro itojun Hagino return NULL; 1587686cdd19SJun-ichiro itojun Hagino #endif 1588686cdd19SJun-ichiro itojun Hagino 158982cd038dSYoshinobu Inoue rt = nd6_lookup(from, 1, ifp); 159082cd038dSYoshinobu Inoue is_newentry = 1; 159133841545SHajimu UMEMOTO } else { 159233841545SHajimu UMEMOTO /* do nothing if static ndp is set */ 159333841545SHajimu UMEMOTO if (rt->rt_flags & RTF_STATIC) 159433841545SHajimu UMEMOTO return NULL; 159582cd038dSYoshinobu Inoue is_newentry = 0; 159633841545SHajimu UMEMOTO } 159782cd038dSYoshinobu Inoue 159882cd038dSYoshinobu Inoue if (!rt) 159982cd038dSYoshinobu Inoue return NULL; 160082cd038dSYoshinobu Inoue if ((rt->rt_flags & (RTF_GATEWAY | RTF_LLINFO)) != RTF_LLINFO) { 160182cd038dSYoshinobu Inoue fail: 160233841545SHajimu UMEMOTO (void)nd6_free(rt); 160382cd038dSYoshinobu Inoue return NULL; 160482cd038dSYoshinobu Inoue } 160582cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 160682cd038dSYoshinobu Inoue if (!ln) 160782cd038dSYoshinobu Inoue goto fail; 160882cd038dSYoshinobu Inoue if (!rt->rt_gateway) 160982cd038dSYoshinobu Inoue goto fail; 161082cd038dSYoshinobu Inoue if (rt->rt_gateway->sa_family != AF_LINK) 161182cd038dSYoshinobu Inoue goto fail; 161282cd038dSYoshinobu Inoue sdl = SDL(rt->rt_gateway); 161382cd038dSYoshinobu Inoue 161482cd038dSYoshinobu Inoue olladdr = (sdl->sdl_alen) ? 1 : 0; 161582cd038dSYoshinobu Inoue if (olladdr && lladdr) { 161682cd038dSYoshinobu Inoue if (bcmp(lladdr, LLADDR(sdl), ifp->if_addrlen)) 161782cd038dSYoshinobu Inoue llchange = 1; 161882cd038dSYoshinobu Inoue else 161982cd038dSYoshinobu Inoue llchange = 0; 162082cd038dSYoshinobu Inoue } else 162182cd038dSYoshinobu Inoue llchange = 0; 162282cd038dSYoshinobu Inoue 162382cd038dSYoshinobu Inoue /* 162482cd038dSYoshinobu Inoue * newentry olladdr lladdr llchange (*=record) 162582cd038dSYoshinobu Inoue * 0 n n -- (1) 162682cd038dSYoshinobu Inoue * 0 y n -- (2) 162782cd038dSYoshinobu Inoue * 0 n y -- (3) * STALE 162882cd038dSYoshinobu Inoue * 0 y y n (4) * 162982cd038dSYoshinobu Inoue * 0 y y y (5) * STALE 163082cd038dSYoshinobu Inoue * 1 -- n -- (6) NOSTATE(= PASSIVE) 163182cd038dSYoshinobu Inoue * 1 -- y -- (7) * STALE 163282cd038dSYoshinobu Inoue */ 163382cd038dSYoshinobu Inoue 163482cd038dSYoshinobu Inoue if (lladdr) { /* (3-5) and (7) */ 163582cd038dSYoshinobu Inoue /* 163682cd038dSYoshinobu Inoue * Record source link-layer address 163782cd038dSYoshinobu Inoue * XXX is it dependent to ifp->if_type? 163882cd038dSYoshinobu Inoue */ 163982cd038dSYoshinobu Inoue sdl->sdl_alen = ifp->if_addrlen; 164082cd038dSYoshinobu Inoue bcopy(lladdr, LLADDR(sdl), ifp->if_addrlen); 164182cd038dSYoshinobu Inoue } 164282cd038dSYoshinobu Inoue 164382cd038dSYoshinobu Inoue if (!is_newentry) { 164407eb2995SHajimu UMEMOTO if ((!olladdr && lladdr) || /* (3) */ 164507eb2995SHajimu UMEMOTO (olladdr && lladdr && llchange)) { /* (5) */ 164682cd038dSYoshinobu Inoue do_update = 1; 164782cd038dSYoshinobu Inoue newstate = ND6_LLINFO_STALE; 164882cd038dSYoshinobu Inoue } else /* (1-2,4) */ 164982cd038dSYoshinobu Inoue do_update = 0; 165082cd038dSYoshinobu Inoue } else { 165182cd038dSYoshinobu Inoue do_update = 1; 165282cd038dSYoshinobu Inoue if (!lladdr) /* (6) */ 165382cd038dSYoshinobu Inoue newstate = ND6_LLINFO_NOSTATE; 165482cd038dSYoshinobu Inoue else /* (7) */ 165582cd038dSYoshinobu Inoue newstate = ND6_LLINFO_STALE; 165682cd038dSYoshinobu Inoue } 165782cd038dSYoshinobu Inoue 165882cd038dSYoshinobu Inoue if (do_update) { 165982cd038dSYoshinobu Inoue /* 166082cd038dSYoshinobu Inoue * Update the state of the neighbor cache. 166182cd038dSYoshinobu Inoue */ 166282cd038dSYoshinobu Inoue ln->ln_state = newstate; 166382cd038dSYoshinobu Inoue 166482cd038dSYoshinobu Inoue if (ln->ln_state == ND6_LLINFO_STALE) { 166533841545SHajimu UMEMOTO /* 166633841545SHajimu UMEMOTO * XXX: since nd6_output() below will cause 166733841545SHajimu UMEMOTO * state tansition to DELAY and reset the timer, 166833841545SHajimu UMEMOTO * we must set the timer now, although it is actually 166933841545SHajimu UMEMOTO * meaningless. 167033841545SHajimu UMEMOTO */ 167133841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 167233841545SHajimu UMEMOTO 167382cd038dSYoshinobu Inoue if (ln->ln_hold) { 1674686cdd19SJun-ichiro itojun Hagino /* 1675686cdd19SJun-ichiro itojun Hagino * we assume ifp is not a p2p here, so just 1676686cdd19SJun-ichiro itojun Hagino * set the 2nd argument as the 1st one. 1677686cdd19SJun-ichiro itojun Hagino */ 1678686cdd19SJun-ichiro itojun Hagino nd6_output(ifp, ifp, ln->ln_hold, 167907eb2995SHajimu UMEMOTO (struct sockaddr_in6 *)rt_key(rt), rt); 168033841545SHajimu UMEMOTO ln->ln_hold = NULL; 168182cd038dSYoshinobu Inoue } 168282cd038dSYoshinobu Inoue } else if (ln->ln_state == ND6_LLINFO_INCOMPLETE) { 168382cd038dSYoshinobu Inoue /* probe right away */ 168482cd038dSYoshinobu Inoue ln->ln_expire = time_second; 168582cd038dSYoshinobu Inoue } 168682cd038dSYoshinobu Inoue } 168782cd038dSYoshinobu Inoue 168882cd038dSYoshinobu Inoue /* 168982cd038dSYoshinobu Inoue * ICMP6 type dependent behavior. 169082cd038dSYoshinobu Inoue * 169182cd038dSYoshinobu Inoue * NS: clear IsRouter if new entry 169282cd038dSYoshinobu Inoue * RS: clear IsRouter 169382cd038dSYoshinobu Inoue * RA: set IsRouter if there's lladdr 169482cd038dSYoshinobu Inoue * redir: clear IsRouter if new entry 169582cd038dSYoshinobu Inoue * 169682cd038dSYoshinobu Inoue * RA case, (1): 169782cd038dSYoshinobu Inoue * The spec says that we must set IsRouter in the following cases: 169882cd038dSYoshinobu Inoue * - If lladdr exist, set IsRouter. This means (1-5). 169982cd038dSYoshinobu Inoue * - If it is old entry (!newentry), set IsRouter. This means (7). 170082cd038dSYoshinobu Inoue * So, based on the spec, in (1-5) and (7) cases we must set IsRouter. 170182cd038dSYoshinobu Inoue * A quetion arises for (1) case. (1) case has no lladdr in the 170282cd038dSYoshinobu Inoue * neighbor cache, this is similar to (6). 170382cd038dSYoshinobu Inoue * This case is rare but we figured that we MUST NOT set IsRouter. 170482cd038dSYoshinobu Inoue * 170582cd038dSYoshinobu Inoue * newentry olladdr lladdr llchange NS RS RA redir 170682cd038dSYoshinobu Inoue * D R 170782cd038dSYoshinobu Inoue * 0 n n -- (1) c ? s 170882cd038dSYoshinobu Inoue * 0 y n -- (2) c s s 170982cd038dSYoshinobu Inoue * 0 n y -- (3) c s s 171082cd038dSYoshinobu Inoue * 0 y y n (4) c s s 171182cd038dSYoshinobu Inoue * 0 y y y (5) c s s 171282cd038dSYoshinobu Inoue * 1 -- n -- (6) c c c s 171382cd038dSYoshinobu Inoue * 1 -- y -- (7) c c s c s 171482cd038dSYoshinobu Inoue * 171582cd038dSYoshinobu Inoue * (c=clear s=set) 171682cd038dSYoshinobu Inoue */ 171782cd038dSYoshinobu Inoue switch (type & 0xff) { 171882cd038dSYoshinobu Inoue case ND_NEIGHBOR_SOLICIT: 171982cd038dSYoshinobu Inoue /* 172082cd038dSYoshinobu Inoue * New entry must have is_router flag cleared. 172182cd038dSYoshinobu Inoue */ 172282cd038dSYoshinobu Inoue if (is_newentry) /* (6-7) */ 172382cd038dSYoshinobu Inoue ln->ln_router = 0; 172482cd038dSYoshinobu Inoue break; 172582cd038dSYoshinobu Inoue case ND_REDIRECT: 172682cd038dSYoshinobu Inoue /* 172782cd038dSYoshinobu Inoue * If the icmp is a redirect to a better router, always set the 172882cd038dSYoshinobu Inoue * is_router flag. Otherwise, if the entry is newly created, 172982cd038dSYoshinobu Inoue * clear the flag. [RFC 2461, sec 8.3] 173082cd038dSYoshinobu Inoue */ 173182cd038dSYoshinobu Inoue if (code == ND_REDIRECT_ROUTER) 173282cd038dSYoshinobu Inoue ln->ln_router = 1; 173382cd038dSYoshinobu Inoue else if (is_newentry) /* (6-7) */ 173482cd038dSYoshinobu Inoue ln->ln_router = 0; 173582cd038dSYoshinobu Inoue break; 173682cd038dSYoshinobu Inoue case ND_ROUTER_SOLICIT: 173782cd038dSYoshinobu Inoue /* 173882cd038dSYoshinobu Inoue * is_router flag must always be cleared. 173982cd038dSYoshinobu Inoue */ 174082cd038dSYoshinobu Inoue ln->ln_router = 0; 174182cd038dSYoshinobu Inoue break; 174282cd038dSYoshinobu Inoue case ND_ROUTER_ADVERT: 174382cd038dSYoshinobu Inoue /* 174482cd038dSYoshinobu Inoue * Mark an entry with lladdr as a router. 174582cd038dSYoshinobu Inoue */ 174607eb2995SHajimu UMEMOTO if ((!is_newentry && (olladdr || lladdr)) || /* (2-5) */ 174707eb2995SHajimu UMEMOTO (is_newentry && lladdr)) { /* (7) */ 174882cd038dSYoshinobu Inoue ln->ln_router = 1; 174982cd038dSYoshinobu Inoue } 175082cd038dSYoshinobu Inoue break; 175182cd038dSYoshinobu Inoue } 175282cd038dSYoshinobu Inoue 1753554bf4aaSHajimu UMEMOTO /* 1754554bf4aaSHajimu UMEMOTO * When the link-layer address of a router changes, select the 1755554bf4aaSHajimu UMEMOTO * best router again. In particular, when the neighbor entry is newly 1756554bf4aaSHajimu UMEMOTO * created, it might affect the selection policy. 1757554bf4aaSHajimu UMEMOTO * Question: can we restrict the first condition to the "is_newentry" 1758554bf4aaSHajimu UMEMOTO * case? 1759554bf4aaSHajimu UMEMOTO * XXX: when we hear an RA from a new router with the link-layer 1760554bf4aaSHajimu UMEMOTO * address option, defrouter_select() is called twice, since 1761554bf4aaSHajimu UMEMOTO * defrtrlist_update called the function as well. However, I believe 1762554bf4aaSHajimu UMEMOTO * we can compromise the overhead, since it only happens the first 1763554bf4aaSHajimu UMEMOTO * time. 1764554bf4aaSHajimu UMEMOTO * XXX: although defrouter_select() should not have a bad effect 1765554bf4aaSHajimu UMEMOTO * for those are not autoconfigured hosts, we explicitly avoid such 1766554bf4aaSHajimu UMEMOTO * cases for safety. 1767554bf4aaSHajimu UMEMOTO */ 1768554bf4aaSHajimu UMEMOTO if (do_update && ln->ln_router && !ip6_forwarding && ip6_accept_rtadv) 1769554bf4aaSHajimu UMEMOTO defrouter_select(); 1770554bf4aaSHajimu UMEMOTO 177182cd038dSYoshinobu Inoue return rt; 177282cd038dSYoshinobu Inoue } 177382cd038dSYoshinobu Inoue 177482cd038dSYoshinobu Inoue static void 177582cd038dSYoshinobu Inoue nd6_slowtimo(ignored_arg) 177682cd038dSYoshinobu Inoue void *ignored_arg; 177782cd038dSYoshinobu Inoue { 177882cd038dSYoshinobu Inoue int s = splnet(); 177933841545SHajimu UMEMOTO struct nd_ifinfo *nd6if; 178031b1bfe1SHajimu UMEMOTO struct ifnet *ifp; 178182cd038dSYoshinobu Inoue 178233841545SHajimu UMEMOTO callout_reset(&nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 178333841545SHajimu UMEMOTO nd6_slowtimo, NULL); 1784328a0408SHajimu UMEMOTO IFNET_RLOCK(); 178531b1bfe1SHajimu UMEMOTO for (ifp = TAILQ_FIRST(&ifnet); ifp; ifp = TAILQ_NEXT(ifp, if_list)) { 178631b1bfe1SHajimu UMEMOTO nd6if = ND_IFINFO(ifp); 178782cd038dSYoshinobu Inoue if (nd6if->basereachable && /* already initialized */ 178882cd038dSYoshinobu Inoue (nd6if->recalctm -= ND6_SLOWTIMER_INTERVAL) <= 0) { 178982cd038dSYoshinobu Inoue /* 179082cd038dSYoshinobu Inoue * Since reachable time rarely changes by router 179182cd038dSYoshinobu Inoue * advertisements, we SHOULD insure that a new random 179282cd038dSYoshinobu Inoue * value gets recomputed at least once every few hours. 179382cd038dSYoshinobu Inoue * (RFC 2461, 6.3.4) 179482cd038dSYoshinobu Inoue */ 179582cd038dSYoshinobu Inoue nd6if->recalctm = nd6_recalc_reachtm_interval; 179682cd038dSYoshinobu Inoue nd6if->reachable = ND_COMPUTE_RTIME(nd6if->basereachable); 179782cd038dSYoshinobu Inoue } 179882cd038dSYoshinobu Inoue } 1799328a0408SHajimu UMEMOTO IFNET_RUNLOCK(); 180082cd038dSYoshinobu Inoue splx(s); 180182cd038dSYoshinobu Inoue } 180282cd038dSYoshinobu Inoue 180382cd038dSYoshinobu Inoue #define senderr(e) { error = (e); goto bad;} 180482cd038dSYoshinobu Inoue int 1805686cdd19SJun-ichiro itojun Hagino nd6_output(ifp, origifp, m0, dst, rt0) 180633841545SHajimu UMEMOTO struct ifnet *ifp; 1807686cdd19SJun-ichiro itojun Hagino struct ifnet *origifp; 180882cd038dSYoshinobu Inoue struct mbuf *m0; 180982cd038dSYoshinobu Inoue struct sockaddr_in6 *dst; 181082cd038dSYoshinobu Inoue struct rtentry *rt0; 181182cd038dSYoshinobu Inoue { 181233841545SHajimu UMEMOTO struct mbuf *m = m0; 181333841545SHajimu UMEMOTO struct rtentry *rt = rt0; 1814686cdd19SJun-ichiro itojun Hagino struct sockaddr_in6 *gw6 = NULL; 181582cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = NULL; 181682cd038dSYoshinobu Inoue int error = 0; 181782cd038dSYoshinobu Inoue 181882cd038dSYoshinobu Inoue if (IN6_IS_ADDR_MULTICAST(&dst->sin6_addr)) 181982cd038dSYoshinobu Inoue goto sendpkt; 182082cd038dSYoshinobu Inoue 182133841545SHajimu UMEMOTO if (nd6_need_cache(ifp) == 0) 182282cd038dSYoshinobu Inoue goto sendpkt; 182382cd038dSYoshinobu Inoue 182482cd038dSYoshinobu Inoue /* 1825cd0fdcf7SHajimu UMEMOTO * next hop determination. This routine is derived from ether_output. 182682cd038dSYoshinobu Inoue */ 182732404088SLuigi Rizzo again: 182882cd038dSYoshinobu Inoue if (rt) { 182982cd038dSYoshinobu Inoue if ((rt->rt_flags & RTF_UP) == 0) { 1830d1dd20beSSam Leffler rt0 = rt = rtalloc1((struct sockaddr *)dst, 1, 0UL); 1831d1dd20beSSam Leffler if (rt != NULL) { 18327138d65cSSam Leffler RT_REMREF(rt); 1833d1dd20beSSam Leffler RT_UNLOCK(rt); 183432404088SLuigi Rizzo if (rt->rt_ifp != ifp) 183532404088SLuigi Rizzo /* 183632404088SLuigi Rizzo * XXX maybe we should update ifp too, 183732404088SLuigi Rizzo * but the original code didn't and I 183832404088SLuigi Rizzo * don't know what is correct here. 183932404088SLuigi Rizzo */ 184032404088SLuigi Rizzo goto again; 184182cd038dSYoshinobu Inoue } else 184282cd038dSYoshinobu Inoue senderr(EHOSTUNREACH); 184382cd038dSYoshinobu Inoue } 1844686cdd19SJun-ichiro itojun Hagino 184582cd038dSYoshinobu Inoue if (rt->rt_flags & RTF_GATEWAY) { 1846686cdd19SJun-ichiro itojun Hagino gw6 = (struct sockaddr_in6 *)rt->rt_gateway; 1847686cdd19SJun-ichiro itojun Hagino 1848686cdd19SJun-ichiro itojun Hagino /* 1849686cdd19SJun-ichiro itojun Hagino * We skip link-layer address resolution and NUD 1850686cdd19SJun-ichiro itojun Hagino * if the gateway is not a neighbor from ND point 185188ff5695SSUZUKI Shinsuke * of view, regardless of the value of nd_ifinfo.flags. 185288ff5695SSUZUKI Shinsuke * The second condition is a bit tricky; we skip 1853686cdd19SJun-ichiro itojun Hagino * if the gateway is our own address, which is 1854686cdd19SJun-ichiro itojun Hagino * sometimes used to install a route to a p2p link. 1855686cdd19SJun-ichiro itojun Hagino */ 1856686cdd19SJun-ichiro itojun Hagino if (!nd6_is_addr_neighbor(gw6, ifp) || 1857686cdd19SJun-ichiro itojun Hagino in6ifa_ifpwithaddr(ifp, &gw6->sin6_addr)) { 1858686cdd19SJun-ichiro itojun Hagino /* 1859686cdd19SJun-ichiro itojun Hagino * We allow this kind of tricky route only 1860686cdd19SJun-ichiro itojun Hagino * when the outgoing interface is p2p. 1861686cdd19SJun-ichiro itojun Hagino * XXX: we may need a more generic rule here. 1862686cdd19SJun-ichiro itojun Hagino */ 1863686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) == 0) 1864686cdd19SJun-ichiro itojun Hagino senderr(EHOSTUNREACH); 1865686cdd19SJun-ichiro itojun Hagino 1866686cdd19SJun-ichiro itojun Hagino goto sendpkt; 1867686cdd19SJun-ichiro itojun Hagino } 1868686cdd19SJun-ichiro itojun Hagino 186982cd038dSYoshinobu Inoue if (rt->rt_gwroute == 0) 187082cd038dSYoshinobu Inoue goto lookup; 187182cd038dSYoshinobu Inoue if (((rt = rt->rt_gwroute)->rt_flags & RTF_UP) == 0) { 18722d0e1cf1SHajimu UMEMOTO RT_LOCK(rt); 187382cd038dSYoshinobu Inoue rtfree(rt); rt = rt0; 187407eb2995SHajimu UMEMOTO lookup: 187507eb2995SHajimu UMEMOTO rt->rt_gwroute = rtalloc1(rt->rt_gateway, 1, 0UL); 187682cd038dSYoshinobu Inoue if ((rt = rt->rt_gwroute) == 0) 187782cd038dSYoshinobu Inoue senderr(EHOSTUNREACH); 1878d1dd20beSSam Leffler RT_UNLOCK(rt); 187982cd038dSYoshinobu Inoue } 188082cd038dSYoshinobu Inoue } 188182cd038dSYoshinobu Inoue } 188282cd038dSYoshinobu Inoue 188382cd038dSYoshinobu Inoue /* 188482cd038dSYoshinobu Inoue * Address resolution or Neighbor Unreachability Detection 188582cd038dSYoshinobu Inoue * for the next hop. 188682cd038dSYoshinobu Inoue * At this point, the destination of the packet must be a unicast 188782cd038dSYoshinobu Inoue * or an anycast address(i.e. not a multicast). 188882cd038dSYoshinobu Inoue */ 188982cd038dSYoshinobu Inoue 189082cd038dSYoshinobu Inoue /* Look up the neighbor cache for the nexthop */ 189182cd038dSYoshinobu Inoue if (rt && (rt->rt_flags & RTF_LLINFO) != 0) 189282cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 189382cd038dSYoshinobu Inoue else { 1894686cdd19SJun-ichiro itojun Hagino /* 1895686cdd19SJun-ichiro itojun Hagino * Since nd6_is_addr_neighbor() internally calls nd6_lookup(), 1896686cdd19SJun-ichiro itojun Hagino * the condition below is not very efficient. But we believe 1897686cdd19SJun-ichiro itojun Hagino * it is tolerable, because this should be a rare case. 1898686cdd19SJun-ichiro itojun Hagino */ 1899686cdd19SJun-ichiro itojun Hagino if (nd6_is_addr_neighbor(dst, ifp) && 1900686cdd19SJun-ichiro itojun Hagino (rt = nd6_lookup(&dst->sin6_addr, 1, ifp)) != NULL) 190182cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 190282cd038dSYoshinobu Inoue } 190382cd038dSYoshinobu Inoue if (!ln || !rt) { 1904686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) == 0 && 190531b1bfe1SHajimu UMEMOTO !(ND_IFINFO(ifp)->flags & ND6_IFF_PERFORMNUD)) { 1906686cdd19SJun-ichiro itojun Hagino log(LOG_DEBUG, 1907686cdd19SJun-ichiro itojun Hagino "nd6_output: can't allocate llinfo for %s " 190882cd038dSYoshinobu Inoue "(ln=%p, rt=%p)\n", 190982cd038dSYoshinobu Inoue ip6_sprintf(&dst->sin6_addr), ln, rt); 191082cd038dSYoshinobu Inoue senderr(EIO); /* XXX: good error? */ 191182cd038dSYoshinobu Inoue } 191282cd038dSYoshinobu Inoue 1913686cdd19SJun-ichiro itojun Hagino goto sendpkt; /* send anyway */ 1914686cdd19SJun-ichiro itojun Hagino } 1915686cdd19SJun-ichiro itojun Hagino 1916686cdd19SJun-ichiro itojun Hagino /* We don't have to do link-layer address resolution on a p2p link. */ 1917686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) != 0 && 191833841545SHajimu UMEMOTO ln->ln_state < ND6_LLINFO_REACHABLE) { 1919686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_STALE; 192033841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 192133841545SHajimu UMEMOTO } 192282cd038dSYoshinobu Inoue 192382cd038dSYoshinobu Inoue /* 192482cd038dSYoshinobu Inoue * The first time we send a packet to a neighbor whose entry is 192582cd038dSYoshinobu Inoue * STALE, we have to change the state to DELAY and a sets a timer to 192682cd038dSYoshinobu Inoue * expire in DELAY_FIRST_PROBE_TIME seconds to ensure do 192782cd038dSYoshinobu Inoue * neighbor unreachability detection on expiration. 192882cd038dSYoshinobu Inoue * (RFC 2461 7.3.3) 192982cd038dSYoshinobu Inoue */ 193082cd038dSYoshinobu Inoue if (ln->ln_state == ND6_LLINFO_STALE) { 193182cd038dSYoshinobu Inoue ln->ln_asked = 0; 193282cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_DELAY; 193382cd038dSYoshinobu Inoue ln->ln_expire = time_second + nd6_delay; 193482cd038dSYoshinobu Inoue } 193582cd038dSYoshinobu Inoue 193682cd038dSYoshinobu Inoue /* 193782cd038dSYoshinobu Inoue * If the neighbor cache entry has a state other than INCOMPLETE 193888ff5695SSUZUKI Shinsuke * (i.e. its link-layer address is already resolved), just 193982cd038dSYoshinobu Inoue * send the packet. 194082cd038dSYoshinobu Inoue */ 194182cd038dSYoshinobu Inoue if (ln->ln_state > ND6_LLINFO_INCOMPLETE) 194282cd038dSYoshinobu Inoue goto sendpkt; 194382cd038dSYoshinobu Inoue 194482cd038dSYoshinobu Inoue /* 194582cd038dSYoshinobu Inoue * There is a neighbor cache entry, but no ethernet address 194682cd038dSYoshinobu Inoue * response yet. Replace the held mbuf (if any) with this 194782cd038dSYoshinobu Inoue * latest one. 194882cd038dSYoshinobu Inoue * 194988ff5695SSUZUKI Shinsuke * This code conforms to the rate-limiting rule described in Section 195088ff5695SSUZUKI Shinsuke * 7.2.2 of RFC 2461, because the timer is set correctly after sending 195188ff5695SSUZUKI Shinsuke * an NS below. 195282cd038dSYoshinobu Inoue */ 195333841545SHajimu UMEMOTO if (ln->ln_state == ND6_LLINFO_NOSTATE) 195482cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_INCOMPLETE; 195582cd038dSYoshinobu Inoue if (ln->ln_hold) 195682cd038dSYoshinobu Inoue m_freem(ln->ln_hold); 195782cd038dSYoshinobu Inoue ln->ln_hold = m; 195882cd038dSYoshinobu Inoue if (ln->ln_expire) { 195982cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_mmaxtries && 196082cd038dSYoshinobu Inoue ln->ln_expire < time_second) { 196182cd038dSYoshinobu Inoue ln->ln_asked++; 196282cd038dSYoshinobu Inoue ln->ln_expire = time_second + 196331b1bfe1SHajimu UMEMOTO ND_IFINFO(ifp)->retrans / 1000; 196482cd038dSYoshinobu Inoue nd6_ns_output(ifp, NULL, &dst->sin6_addr, ln, 0); 196582cd038dSYoshinobu Inoue } 196682cd038dSYoshinobu Inoue } 196782cd038dSYoshinobu Inoue return (0); 196882cd038dSYoshinobu Inoue 196982cd038dSYoshinobu Inoue sendpkt: 19700f9ade71SHajimu UMEMOTO #ifdef IPSEC 19710f9ade71SHajimu UMEMOTO /* clean ipsec history once it goes out of the node */ 19720f9ade71SHajimu UMEMOTO ipsec_delaux(m); 19730f9ade71SHajimu UMEMOTO #endif 1974686cdd19SJun-ichiro itojun Hagino 19754b32dfdcSRobert Watson #ifdef MAC 19764b32dfdcSRobert Watson mac_create_mbuf_linklayer(ifp, m); 19774b32dfdcSRobert Watson #endif 197833841545SHajimu UMEMOTO if ((ifp->if_flags & IFF_LOOPBACK) != 0) { 1979686cdd19SJun-ichiro itojun Hagino return ((*ifp->if_output)(origifp, m, (struct sockaddr *)dst, 1980686cdd19SJun-ichiro itojun Hagino rt)); 1981686cdd19SJun-ichiro itojun Hagino } 198282cd038dSYoshinobu Inoue return ((*ifp->if_output)(ifp, m, (struct sockaddr *)dst, rt)); 198382cd038dSYoshinobu Inoue 198482cd038dSYoshinobu Inoue bad: 198582cd038dSYoshinobu Inoue if (m) 198682cd038dSYoshinobu Inoue m_freem(m); 198782cd038dSYoshinobu Inoue return (error); 198882cd038dSYoshinobu Inoue } 198982cd038dSYoshinobu Inoue #undef senderr 199082cd038dSYoshinobu Inoue 199182cd038dSYoshinobu Inoue int 199233841545SHajimu UMEMOTO nd6_need_cache(ifp) 199333841545SHajimu UMEMOTO struct ifnet *ifp; 199433841545SHajimu UMEMOTO { 199533841545SHajimu UMEMOTO /* 199633841545SHajimu UMEMOTO * XXX: we currently do not make neighbor cache on any interface 199733841545SHajimu UMEMOTO * other than ARCnet, Ethernet, FDDI and GIF. 199833841545SHajimu UMEMOTO * 199933841545SHajimu UMEMOTO * RFC2893 says: 200033841545SHajimu UMEMOTO * - unidirectional tunnels needs no ND 200133841545SHajimu UMEMOTO */ 200233841545SHajimu UMEMOTO switch (ifp->if_type) { 200333841545SHajimu UMEMOTO case IFT_ARCNET: 200433841545SHajimu UMEMOTO case IFT_ETHER: 200533841545SHajimu UMEMOTO case IFT_FDDI: 200633841545SHajimu UMEMOTO case IFT_IEEE1394: 200705b6760dSMunechika SUMIKAWA #ifdef IFT_L2VLAN 200805b6760dSMunechika SUMIKAWA case IFT_L2VLAN: 200905b6760dSMunechika SUMIKAWA #endif 201033841545SHajimu UMEMOTO #ifdef IFT_IEEE80211 201133841545SHajimu UMEMOTO case IFT_IEEE80211: 201233841545SHajimu UMEMOTO #endif 2013a9771948SGleb Smirnoff #ifdef IFT_CARP 2014a9771948SGleb Smirnoff case IFT_CARP: 2015a9771948SGleb Smirnoff #endif 201633841545SHajimu UMEMOTO case IFT_GIF: /* XXX need more cases? */ 201759280079SAndrew Thompson case IFT_BRIDGE: 201833841545SHajimu UMEMOTO return (1); 201933841545SHajimu UMEMOTO default: 202033841545SHajimu UMEMOTO return (0); 202133841545SHajimu UMEMOTO } 202233841545SHajimu UMEMOTO } 202333841545SHajimu UMEMOTO 202433841545SHajimu UMEMOTO int 2025cd46a114SLuigi Rizzo nd6_storelladdr(ifp, rt0, m, dst, desten) 202682cd038dSYoshinobu Inoue struct ifnet *ifp; 2027cd46a114SLuigi Rizzo struct rtentry *rt0; 202882cd038dSYoshinobu Inoue struct mbuf *m; 202982cd038dSYoshinobu Inoue struct sockaddr *dst; 203082cd038dSYoshinobu Inoue u_char *desten; 203182cd038dSYoshinobu Inoue { 203282cd038dSYoshinobu Inoue struct sockaddr_dl *sdl; 2033cd46a114SLuigi Rizzo struct rtentry *rt; 2034401df2f2SGleb Smirnoff int error; 203582cd038dSYoshinobu Inoue 203682cd038dSYoshinobu Inoue if (m->m_flags & M_MCAST) { 2037401df2f2SGleb Smirnoff int i; 2038401df2f2SGleb Smirnoff 203982cd038dSYoshinobu Inoue switch (ifp->if_type) { 204082cd038dSYoshinobu Inoue case IFT_ETHER: 204182cd038dSYoshinobu Inoue case IFT_FDDI: 204205b6760dSMunechika SUMIKAWA #ifdef IFT_L2VLAN 204305b6760dSMunechika SUMIKAWA case IFT_L2VLAN: 204405b6760dSMunechika SUMIKAWA #endif 204533841545SHajimu UMEMOTO #ifdef IFT_IEEE80211 204633841545SHajimu UMEMOTO case IFT_IEEE80211: 204733841545SHajimu UMEMOTO #endif 204859280079SAndrew Thompson case IFT_BRIDGE: 20492049fdeeSMatthew N. Dodd case IFT_ISO88025: 205082cd038dSYoshinobu Inoue ETHER_MAP_IPV6_MULTICAST(&SIN6(dst)->sin6_addr, 205182cd038dSYoshinobu Inoue desten); 2052354c3d34SLuigi Rizzo return (0); 205333841545SHajimu UMEMOTO case IFT_IEEE1394: 205488ff5695SSUZUKI Shinsuke /* 205588ff5695SSUZUKI Shinsuke * netbsd can use if_broadcastaddr, but we don't do so 205688ff5695SSUZUKI Shinsuke * to reduce # of ifdef. 205788ff5695SSUZUKI Shinsuke */ 205833841545SHajimu UMEMOTO for (i = 0; i < ifp->if_addrlen; i++) 205933841545SHajimu UMEMOTO desten[i] = ~0; 2060354c3d34SLuigi Rizzo return (0); 206182cd038dSYoshinobu Inoue case IFT_ARCNET: 206282cd038dSYoshinobu Inoue *desten = 0; 2063354c3d34SLuigi Rizzo return (0); 206482cd038dSYoshinobu Inoue default: 2065fef5fd23SBosko Milekic m_freem(m); 2066354c3d34SLuigi Rizzo return (EAFNOSUPPORT); 206782cd038dSYoshinobu Inoue } 206882cd038dSYoshinobu Inoue } 206982cd038dSYoshinobu Inoue 2070530f95fcSGleb Smirnoff if (rt0 == NULL) { 2071530f95fcSGleb Smirnoff /* this could happen, if we could not allocate memory */ 2072530f95fcSGleb Smirnoff m_freem(m); 2073530f95fcSGleb Smirnoff return (ENOMEM); 2074530f95fcSGleb Smirnoff } 2075530f95fcSGleb Smirnoff 2076401df2f2SGleb Smirnoff error = rt_check(&rt, &rt0, dst); 2077401df2f2SGleb Smirnoff if (error) { 2078cd46a114SLuigi Rizzo m_freem(m); 2079401df2f2SGleb Smirnoff return (error); 2080cd46a114SLuigi Rizzo } 20819bd8ca30SGleb Smirnoff RT_UNLOCK(rt); 2082cd46a114SLuigi Rizzo 2083fef5fd23SBosko Milekic if (rt->rt_gateway->sa_family != AF_LINK) { 208433841545SHajimu UMEMOTO printf("nd6_storelladdr: something odd happens\n"); 2085fef5fd23SBosko Milekic m_freem(m); 2086cd46a114SLuigi Rizzo return (EINVAL); 208782cd038dSYoshinobu Inoue } 208882cd038dSYoshinobu Inoue sdl = SDL(rt->rt_gateway); 2089686cdd19SJun-ichiro itojun Hagino if (sdl->sdl_alen == 0) { 2090686cdd19SJun-ichiro itojun Hagino /* this should be impossible, but we bark here for debugging */ 2091686cdd19SJun-ichiro itojun Hagino printf("nd6_storelladdr: sdl_alen == 0\n"); 2092fef5fd23SBosko Milekic m_freem(m); 2093cd46a114SLuigi Rizzo return (EINVAL); 2094686cdd19SJun-ichiro itojun Hagino } 209582cd038dSYoshinobu Inoue 2096686cdd19SJun-ichiro itojun Hagino bcopy(LLADDR(sdl), desten, sdl->sdl_alen); 2097cd46a114SLuigi Rizzo return (0); 209882cd038dSYoshinobu Inoue } 209933841545SHajimu UMEMOTO 210033841545SHajimu UMEMOTO static int nd6_sysctl_drlist(SYSCTL_HANDLER_ARGS); 210133841545SHajimu UMEMOTO static int nd6_sysctl_prlist(SYSCTL_HANDLER_ARGS); 210233841545SHajimu UMEMOTO #ifdef SYSCTL_DECL 210333841545SHajimu UMEMOTO SYSCTL_DECL(_net_inet6_icmp6); 210433841545SHajimu UMEMOTO #endif 210533841545SHajimu UMEMOTO SYSCTL_NODE(_net_inet6_icmp6, ICMPV6CTL_ND6_DRLIST, nd6_drlist, 210633841545SHajimu UMEMOTO CTLFLAG_RD, nd6_sysctl_drlist, ""); 210733841545SHajimu UMEMOTO SYSCTL_NODE(_net_inet6_icmp6, ICMPV6CTL_ND6_PRLIST, nd6_prlist, 210833841545SHajimu UMEMOTO CTLFLAG_RD, nd6_sysctl_prlist, ""); 210933841545SHajimu UMEMOTO 211033841545SHajimu UMEMOTO static int 211133841545SHajimu UMEMOTO nd6_sysctl_drlist(SYSCTL_HANDLER_ARGS) 211233841545SHajimu UMEMOTO { 211333841545SHajimu UMEMOTO int error; 211433841545SHajimu UMEMOTO char buf[1024]; 211533841545SHajimu UMEMOTO struct in6_defrouter *d, *de; 211633841545SHajimu UMEMOTO struct nd_defrouter *dr; 211733841545SHajimu UMEMOTO 211833841545SHajimu UMEMOTO if (req->newptr) 211933841545SHajimu UMEMOTO return EPERM; 212033841545SHajimu UMEMOTO error = 0; 212133841545SHajimu UMEMOTO 212207eb2995SHajimu UMEMOTO for (dr = TAILQ_FIRST(&nd_defrouter); dr; 212333841545SHajimu UMEMOTO dr = TAILQ_NEXT(dr, dr_entry)) { 212433841545SHajimu UMEMOTO d = (struct in6_defrouter *)buf; 212533841545SHajimu UMEMOTO de = (struct in6_defrouter *)(buf + sizeof(buf)); 212633841545SHajimu UMEMOTO 212733841545SHajimu UMEMOTO if (d + 1 <= de) { 212833841545SHajimu UMEMOTO bzero(d, sizeof(*d)); 212933841545SHajimu UMEMOTO d->rtaddr.sin6_family = AF_INET6; 213033841545SHajimu UMEMOTO d->rtaddr.sin6_len = sizeof(d->rtaddr); 2131a1f7e5f8SHajimu UMEMOTO d->rtaddr.sin6_addr = dr->rtaddr; 2132a1f7e5f8SHajimu UMEMOTO if (sa6_recoverscope(&d->rtaddr)) { 213333841545SHajimu UMEMOTO log(LOG_ERR, 2134a1f7e5f8SHajimu UMEMOTO "scope error in router list (%s)\n", 2135a1f7e5f8SHajimu UMEMOTO ip6_sprintf(&d->rtaddr.sin6_addr)); 2136a1f7e5f8SHajimu UMEMOTO /* XXX: press on... */ 2137a1f7e5f8SHajimu UMEMOTO } 213833841545SHajimu UMEMOTO d->flags = dr->flags; 213933841545SHajimu UMEMOTO d->rtlifetime = dr->rtlifetime; 214033841545SHajimu UMEMOTO d->expire = dr->expire; 214133841545SHajimu UMEMOTO d->if_index = dr->ifp->if_index; 214233841545SHajimu UMEMOTO } else 214333841545SHajimu UMEMOTO panic("buffer too short"); 214433841545SHajimu UMEMOTO 214533841545SHajimu UMEMOTO error = SYSCTL_OUT(req, buf, sizeof(*d)); 214633841545SHajimu UMEMOTO if (error) 214733841545SHajimu UMEMOTO break; 214833841545SHajimu UMEMOTO } 214907eb2995SHajimu UMEMOTO 215007eb2995SHajimu UMEMOTO return (error); 215133841545SHajimu UMEMOTO } 215233841545SHajimu UMEMOTO 215333841545SHajimu UMEMOTO static int 215433841545SHajimu UMEMOTO nd6_sysctl_prlist(SYSCTL_HANDLER_ARGS) 215533841545SHajimu UMEMOTO { 215633841545SHajimu UMEMOTO int error; 215733841545SHajimu UMEMOTO char buf[1024]; 215833841545SHajimu UMEMOTO struct in6_prefix *p, *pe; 215933841545SHajimu UMEMOTO struct nd_prefix *pr; 216033841545SHajimu UMEMOTO 216133841545SHajimu UMEMOTO if (req->newptr) 216233841545SHajimu UMEMOTO return EPERM; 216333841545SHajimu UMEMOTO error = 0; 216433841545SHajimu UMEMOTO 216533841545SHajimu UMEMOTO for (pr = nd_prefix.lh_first; pr; pr = pr->ndpr_next) { 216633841545SHajimu UMEMOTO u_short advrtrs; 216733841545SHajimu UMEMOTO size_t advance; 216833841545SHajimu UMEMOTO struct sockaddr_in6 *sin6, *s6; 216933841545SHajimu UMEMOTO struct nd_pfxrouter *pfr; 217033841545SHajimu UMEMOTO 217133841545SHajimu UMEMOTO p = (struct in6_prefix *)buf; 217233841545SHajimu UMEMOTO pe = (struct in6_prefix *)(buf + sizeof(buf)); 217333841545SHajimu UMEMOTO 217433841545SHajimu UMEMOTO if (p + 1 <= pe) { 217533841545SHajimu UMEMOTO bzero(p, sizeof(*p)); 217633841545SHajimu UMEMOTO sin6 = (struct sockaddr_in6 *)(p + 1); 217733841545SHajimu UMEMOTO 217833841545SHajimu UMEMOTO p->prefix = pr->ndpr_prefix; 2179a1f7e5f8SHajimu UMEMOTO if (sa6_recoverscope(&p->prefix)) { 218033841545SHajimu UMEMOTO log(LOG_ERR, 218133841545SHajimu UMEMOTO "scope error in prefix list (%s)\n", 218233841545SHajimu UMEMOTO ip6_sprintf(&p->prefix.sin6_addr)); 2183a1f7e5f8SHajimu UMEMOTO /* XXX: press on... */ 2184a1f7e5f8SHajimu UMEMOTO } 218533841545SHajimu UMEMOTO p->raflags = pr->ndpr_raf; 218633841545SHajimu UMEMOTO p->prefixlen = pr->ndpr_plen; 218733841545SHajimu UMEMOTO p->vltime = pr->ndpr_vltime; 218833841545SHajimu UMEMOTO p->pltime = pr->ndpr_pltime; 218933841545SHajimu UMEMOTO p->if_index = pr->ndpr_ifp->if_index; 219033841545SHajimu UMEMOTO p->expire = pr->ndpr_expire; 219133841545SHajimu UMEMOTO p->refcnt = pr->ndpr_refcnt; 219233841545SHajimu UMEMOTO p->flags = pr->ndpr_stateflags; 219333841545SHajimu UMEMOTO p->origin = PR_ORIG_RA; 219433841545SHajimu UMEMOTO advrtrs = 0; 219507eb2995SHajimu UMEMOTO for (pfr = pr->ndpr_advrtrs.lh_first; pfr; 219633841545SHajimu UMEMOTO pfr = pfr->pfr_next) { 219707eb2995SHajimu UMEMOTO if ((void *)&sin6[advrtrs + 1] > (void *)pe) { 219833841545SHajimu UMEMOTO advrtrs++; 219933841545SHajimu UMEMOTO continue; 220033841545SHajimu UMEMOTO } 220133841545SHajimu UMEMOTO s6 = &sin6[advrtrs]; 220233841545SHajimu UMEMOTO bzero(s6, sizeof(*s6)); 220333841545SHajimu UMEMOTO s6->sin6_family = AF_INET6; 220433841545SHajimu UMEMOTO s6->sin6_len = sizeof(*sin6); 2205a1f7e5f8SHajimu UMEMOTO s6->sin6_addr = pfr->router->rtaddr; 2206a1f7e5f8SHajimu UMEMOTO if (sa6_recoverscope(s6)) { 220733841545SHajimu UMEMOTO log(LOG_ERR, 220833841545SHajimu UMEMOTO "scope error in " 220933841545SHajimu UMEMOTO "prefix list (%s)\n", 221033841545SHajimu UMEMOTO ip6_sprintf(&pfr->router->rtaddr)); 2211a1f7e5f8SHajimu UMEMOTO } 221233841545SHajimu UMEMOTO advrtrs++; 221333841545SHajimu UMEMOTO } 221433841545SHajimu UMEMOTO p->advrtrs = advrtrs; 221533841545SHajimu UMEMOTO } else 221633841545SHajimu UMEMOTO panic("buffer too short"); 221733841545SHajimu UMEMOTO 221833841545SHajimu UMEMOTO advance = sizeof(*p) + sizeof(*sin6) * advrtrs; 221933841545SHajimu UMEMOTO error = SYSCTL_OUT(req, buf, advance); 222033841545SHajimu UMEMOTO if (error) 222133841545SHajimu UMEMOTO break; 222233841545SHajimu UMEMOTO } 222307eb2995SHajimu UMEMOTO 222407eb2995SHajimu UMEMOTO return (error); 222533841545SHajimu UMEMOTO } 2226