1686cdd19SJun-ichiro itojun Hagino /* $FreeBSD$ */ 233841545SHajimu UMEMOTO /* $KAME: nd6.c,v 1.144 2001/05/24 07:44:00 itojun Exp $ */ 3686cdd19SJun-ichiro itojun Hagino 482cd038dSYoshinobu Inoue /* 582cd038dSYoshinobu Inoue * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 682cd038dSYoshinobu Inoue * All rights reserved. 782cd038dSYoshinobu Inoue * 882cd038dSYoshinobu Inoue * Redistribution and use in source and binary forms, with or without 982cd038dSYoshinobu Inoue * modification, are permitted provided that the following conditions 1082cd038dSYoshinobu Inoue * are met: 1182cd038dSYoshinobu Inoue * 1. Redistributions of source code must retain the above copyright 1282cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer. 1382cd038dSYoshinobu Inoue * 2. Redistributions in binary form must reproduce the above copyright 1482cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer in the 1582cd038dSYoshinobu Inoue * documentation and/or other materials provided with the distribution. 1682cd038dSYoshinobu Inoue * 3. Neither the name of the project nor the names of its contributors 1782cd038dSYoshinobu Inoue * may be used to endorse or promote products derived from this software 1882cd038dSYoshinobu Inoue * without specific prior written permission. 1982cd038dSYoshinobu Inoue * 2082cd038dSYoshinobu Inoue * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 2182cd038dSYoshinobu Inoue * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 2282cd038dSYoshinobu Inoue * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 2382cd038dSYoshinobu Inoue * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 2482cd038dSYoshinobu Inoue * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 2582cd038dSYoshinobu Inoue * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 2682cd038dSYoshinobu Inoue * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2782cd038dSYoshinobu Inoue * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 2882cd038dSYoshinobu Inoue * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 2982cd038dSYoshinobu Inoue * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3082cd038dSYoshinobu Inoue * SUCH DAMAGE. 3182cd038dSYoshinobu Inoue */ 3282cd038dSYoshinobu Inoue 3382cd038dSYoshinobu Inoue /* 3482cd038dSYoshinobu Inoue * XXX 3582cd038dSYoshinobu Inoue * KAME 970409 note: 3682cd038dSYoshinobu Inoue * BSD/OS version heavily modifies this code, related to llinfo. 3782cd038dSYoshinobu Inoue * Since we don't have BSD/OS version of net/route.c in our hand, 3882cd038dSYoshinobu Inoue * I left the code mostly as it was in 970310. -- itojun 3982cd038dSYoshinobu Inoue */ 4082cd038dSYoshinobu Inoue 41686cdd19SJun-ichiro itojun Hagino #include "opt_inet.h" 42686cdd19SJun-ichiro itojun Hagino #include "opt_inet6.h" 43686cdd19SJun-ichiro itojun Hagino 4482cd038dSYoshinobu Inoue #include <sys/param.h> 4582cd038dSYoshinobu Inoue #include <sys/systm.h> 4633841545SHajimu UMEMOTO #include <sys/callout.h> 4782cd038dSYoshinobu Inoue #include <sys/malloc.h> 4882cd038dSYoshinobu Inoue #include <sys/mbuf.h> 4982cd038dSYoshinobu Inoue #include <sys/socket.h> 5082cd038dSYoshinobu Inoue #include <sys/sockio.h> 5182cd038dSYoshinobu Inoue #include <sys/time.h> 5282cd038dSYoshinobu Inoue #include <sys/kernel.h> 53686cdd19SJun-ichiro itojun Hagino #include <sys/protosw.h> 5482cd038dSYoshinobu Inoue #include <sys/errno.h> 5582cd038dSYoshinobu Inoue #include <sys/syslog.h> 5682cd038dSYoshinobu Inoue #include <sys/queue.h> 5733841545SHajimu UMEMOTO #include <sys/sysctl.h> 5882cd038dSYoshinobu Inoue 5982cd038dSYoshinobu Inoue #include <net/if.h> 6082cd038dSYoshinobu Inoue #include <net/if_dl.h> 6182cd038dSYoshinobu Inoue #include <net/if_types.h> 6282cd038dSYoshinobu Inoue #include <net/if_atm.h> 638e5fd461SMatthew N. Dodd #include <net/fddi.h> 6482cd038dSYoshinobu Inoue #include <net/route.h> 6582cd038dSYoshinobu Inoue 6682cd038dSYoshinobu Inoue #include <netinet/in.h> 6782cd038dSYoshinobu Inoue #include <netinet/if_ether.h> 6882cd038dSYoshinobu Inoue #include <netinet6/in6_var.h> 69686cdd19SJun-ichiro itojun Hagino #include <netinet/ip6.h> 7082cd038dSYoshinobu Inoue #include <netinet6/ip6_var.h> 7182cd038dSYoshinobu Inoue #include <netinet6/nd6.h> 7282cd038dSYoshinobu Inoue #include <netinet6/in6_prefix.h> 73686cdd19SJun-ichiro itojun Hagino #include <netinet/icmp6.h> 7482cd038dSYoshinobu Inoue 7582cd038dSYoshinobu Inoue #include <net/net_osdep.h> 7682cd038dSYoshinobu Inoue 7782cd038dSYoshinobu Inoue #define ND6_SLOWTIMER_INTERVAL (60 * 60) /* 1 hour */ 7882cd038dSYoshinobu Inoue #define ND6_RECALC_REACHTM_INTERVAL (60 * 120) /* 2 hours */ 7982cd038dSYoshinobu Inoue 8082cd038dSYoshinobu Inoue #define SIN6(s) ((struct sockaddr_in6 *)s) 8182cd038dSYoshinobu Inoue #define SDL(s) ((struct sockaddr_dl *)s) 8282cd038dSYoshinobu Inoue 8382cd038dSYoshinobu Inoue /* timer values */ 8482cd038dSYoshinobu Inoue int nd6_prune = 1; /* walk list every 1 seconds */ 8582cd038dSYoshinobu Inoue int nd6_delay = 5; /* delay first probe time 5 second */ 8682cd038dSYoshinobu Inoue int nd6_umaxtries = 3; /* maximum unicast query */ 8782cd038dSYoshinobu Inoue int nd6_mmaxtries = 3; /* maximum multicast query */ 8882cd038dSYoshinobu Inoue int nd6_useloopback = 1; /* use loopback interface for local traffic */ 8933841545SHajimu UMEMOTO int nd6_gctimer = (60 * 60 * 24); /* 1 day: garbage collection timer */ 90686cdd19SJun-ichiro itojun Hagino 91686cdd19SJun-ichiro itojun Hagino /* preventing too many loops in ND option parsing */ 92686cdd19SJun-ichiro itojun Hagino int nd6_maxndopt = 10; /* max # of ND options allowed */ 93686cdd19SJun-ichiro itojun Hagino 94686cdd19SJun-ichiro itojun Hagino int nd6_maxnudhint = 0; /* max # of subsequent upper layer hints */ 9582cd038dSYoshinobu Inoue 9633841545SHajimu UMEMOTO #ifdef ND6_DEBUG 9733841545SHajimu UMEMOTO int nd6_debug = 1; 9833841545SHajimu UMEMOTO #else 9933841545SHajimu UMEMOTO int nd6_debug = 0; 10033841545SHajimu UMEMOTO #endif 10133841545SHajimu UMEMOTO 10282cd038dSYoshinobu Inoue /* for debugging? */ 10382cd038dSYoshinobu Inoue static int nd6_inuse, nd6_allocated; 10482cd038dSYoshinobu Inoue 10582cd038dSYoshinobu Inoue struct llinfo_nd6 llinfo_nd6 = {&llinfo_nd6, &llinfo_nd6}; 106686cdd19SJun-ichiro itojun Hagino static size_t nd_ifinfo_indexlim = 8; 10782cd038dSYoshinobu Inoue struct nd_ifinfo *nd_ifinfo = NULL; 108686cdd19SJun-ichiro itojun Hagino struct nd_drhead nd_defrouter; 10982cd038dSYoshinobu Inoue struct nd_prhead nd_prefix = { 0 }; 11082cd038dSYoshinobu Inoue 11182cd038dSYoshinobu Inoue int nd6_recalc_reachtm_interval = ND6_RECALC_REACHTM_INTERVAL; 11282cd038dSYoshinobu Inoue static struct sockaddr_in6 all1_sa; 11382cd038dSYoshinobu Inoue 11482cd038dSYoshinobu Inoue static void nd6_slowtimo __P((void *)); 11533841545SHajimu UMEMOTO static int regen_tmpaddr __P((struct in6_ifaddr *)); 11633841545SHajimu UMEMOTO 11733841545SHajimu UMEMOTO struct callout nd6_slowtimo_ch; 11833841545SHajimu UMEMOTO struct callout nd6_timer_ch; 11933841545SHajimu UMEMOTO extern struct callout in6_tmpaddrtimer_ch; 12082cd038dSYoshinobu Inoue 12182cd038dSYoshinobu Inoue void 12282cd038dSYoshinobu Inoue nd6_init() 12382cd038dSYoshinobu Inoue { 12482cd038dSYoshinobu Inoue static int nd6_init_done = 0; 12582cd038dSYoshinobu Inoue int i; 12682cd038dSYoshinobu Inoue 12782cd038dSYoshinobu Inoue if (nd6_init_done) { 12882cd038dSYoshinobu Inoue log(LOG_NOTICE, "nd6_init called more than once(ignored)\n"); 12982cd038dSYoshinobu Inoue return; 13082cd038dSYoshinobu Inoue } 13182cd038dSYoshinobu Inoue 13282cd038dSYoshinobu Inoue all1_sa.sin6_family = AF_INET6; 13382cd038dSYoshinobu Inoue all1_sa.sin6_len = sizeof(struct sockaddr_in6); 13482cd038dSYoshinobu Inoue for (i = 0; i < sizeof(all1_sa.sin6_addr); i++) 13582cd038dSYoshinobu Inoue all1_sa.sin6_addr.s6_addr[i] = 0xff; 13682cd038dSYoshinobu Inoue 137686cdd19SJun-ichiro itojun Hagino /* initialization of the default router list */ 138686cdd19SJun-ichiro itojun Hagino TAILQ_INIT(&nd_defrouter); 139686cdd19SJun-ichiro itojun Hagino 14082cd038dSYoshinobu Inoue nd6_init_done = 1; 14182cd038dSYoshinobu Inoue 14282cd038dSYoshinobu Inoue /* start timer */ 14333841545SHajimu UMEMOTO callout_reset(&nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 14433841545SHajimu UMEMOTO nd6_slowtimo, NULL); 14582cd038dSYoshinobu Inoue } 14682cd038dSYoshinobu Inoue 14782cd038dSYoshinobu Inoue void 14882cd038dSYoshinobu Inoue nd6_ifattach(ifp) 14982cd038dSYoshinobu Inoue struct ifnet *ifp; 15082cd038dSYoshinobu Inoue { 15182cd038dSYoshinobu Inoue 15282cd038dSYoshinobu Inoue /* 15382cd038dSYoshinobu Inoue * We have some arrays that should be indexed by if_index. 15482cd038dSYoshinobu Inoue * since if_index will grow dynamically, they should grow too. 15582cd038dSYoshinobu Inoue */ 156686cdd19SJun-ichiro itojun Hagino if (nd_ifinfo == NULL || if_index >= nd_ifinfo_indexlim) { 15782cd038dSYoshinobu Inoue size_t n; 15882cd038dSYoshinobu Inoue caddr_t q; 15982cd038dSYoshinobu Inoue 160686cdd19SJun-ichiro itojun Hagino while (if_index >= nd_ifinfo_indexlim) 161686cdd19SJun-ichiro itojun Hagino nd_ifinfo_indexlim <<= 1; 16282cd038dSYoshinobu Inoue 16382cd038dSYoshinobu Inoue /* grow nd_ifinfo */ 164686cdd19SJun-ichiro itojun Hagino n = nd_ifinfo_indexlim * sizeof(struct nd_ifinfo); 16582cd038dSYoshinobu Inoue q = (caddr_t)malloc(n, M_IP6NDP, M_WAITOK); 16682cd038dSYoshinobu Inoue bzero(q, n); 16782cd038dSYoshinobu Inoue if (nd_ifinfo) { 16882cd038dSYoshinobu Inoue bcopy((caddr_t)nd_ifinfo, q, n/2); 16982cd038dSYoshinobu Inoue free((caddr_t)nd_ifinfo, M_IP6NDP); 17082cd038dSYoshinobu Inoue } 17182cd038dSYoshinobu Inoue nd_ifinfo = (struct nd_ifinfo *)q; 17282cd038dSYoshinobu Inoue } 17382cd038dSYoshinobu Inoue 17482cd038dSYoshinobu Inoue #define ND nd_ifinfo[ifp->if_index] 175686cdd19SJun-ichiro itojun Hagino 176bf1c6fefSHidetoshi Shimokawa /* 177bf1c6fefSHidetoshi Shimokawa * Don't initialize if called twice. 178bf1c6fefSHidetoshi Shimokawa * XXX: to detect this, we should choose a member that is never set 179bf1c6fefSHidetoshi Shimokawa * before initialization of the ND structure itself. We formaly used 180bf1c6fefSHidetoshi Shimokawa * the linkmtu member, which was not suitable because it could be 181bf1c6fefSHidetoshi Shimokawa * initialized via "ifconfig mtu". 182bf1c6fefSHidetoshi Shimokawa */ 183bf1c6fefSHidetoshi Shimokawa if (ND.basereachable) 184686cdd19SJun-ichiro itojun Hagino return; 185686cdd19SJun-ichiro itojun Hagino 186f9132cebSJonathan Lemon ND.linkmtu = ifnet_byindex(ifp->if_index)->if_mtu; 18782cd038dSYoshinobu Inoue ND.chlim = IPV6_DEFHLIM; 18882cd038dSYoshinobu Inoue ND.basereachable = REACHABLE_TIME; 18982cd038dSYoshinobu Inoue ND.reachable = ND_COMPUTE_RTIME(ND.basereachable); 19082cd038dSYoshinobu Inoue ND.retrans = RETRANS_TIMER; 19182cd038dSYoshinobu Inoue ND.receivedra = 0; 192686cdd19SJun-ichiro itojun Hagino ND.flags = ND6_IFF_PERFORMNUD; 19382cd038dSYoshinobu Inoue nd6_setmtu(ifp); 19482cd038dSYoshinobu Inoue #undef ND 19582cd038dSYoshinobu Inoue } 19682cd038dSYoshinobu Inoue 19782cd038dSYoshinobu Inoue /* 19882cd038dSYoshinobu Inoue * Reset ND level link MTU. This function is called when the physical MTU 19982cd038dSYoshinobu Inoue * changes, which means we might have to adjust the ND level MTU. 20082cd038dSYoshinobu Inoue */ 20182cd038dSYoshinobu Inoue void 20282cd038dSYoshinobu Inoue nd6_setmtu(ifp) 20382cd038dSYoshinobu Inoue struct ifnet *ifp; 20482cd038dSYoshinobu Inoue { 20582cd038dSYoshinobu Inoue #define MIN(a,b) ((a) < (b) ? (a) : (b)) 20682cd038dSYoshinobu Inoue struct nd_ifinfo *ndi = &nd_ifinfo[ifp->if_index]; 20782cd038dSYoshinobu Inoue u_long oldmaxmtu = ndi->maxmtu; 20882cd038dSYoshinobu Inoue u_long oldlinkmtu = ndi->linkmtu; 20982cd038dSYoshinobu Inoue 21082cd038dSYoshinobu Inoue switch (ifp->if_type) { 21182cd038dSYoshinobu Inoue case IFT_ARCNET: /* XXX MTU handling needs more work */ 21282cd038dSYoshinobu Inoue ndi->maxmtu = MIN(60480, ifp->if_mtu); 21382cd038dSYoshinobu Inoue break; 21482cd038dSYoshinobu Inoue case IFT_ETHER: 21582cd038dSYoshinobu Inoue ndi->maxmtu = MIN(ETHERMTU, ifp->if_mtu); 21682cd038dSYoshinobu Inoue break; 21782cd038dSYoshinobu Inoue case IFT_FDDI: 21882cd038dSYoshinobu Inoue ndi->maxmtu = MIN(FDDIIPMTU, ifp->if_mtu); 21982cd038dSYoshinobu Inoue break; 22082cd038dSYoshinobu Inoue case IFT_ATM: 22182cd038dSYoshinobu Inoue ndi->maxmtu = MIN(ATMMTU, ifp->if_mtu); 22282cd038dSYoshinobu Inoue break; 22333841545SHajimu UMEMOTO case IFT_IEEE1394: /* XXX should be IEEE1394MTU(1500) */ 22433841545SHajimu UMEMOTO ndi->maxmtu = MIN(ETHERMTU, ifp->if_mtu); 22533841545SHajimu UMEMOTO break; 22633841545SHajimu UMEMOTO #ifdef IFT_IEEE80211 22733841545SHajimu UMEMOTO case IFT_IEEE80211: /* XXX should be IEEE80211MTU(1500) */ 22833841545SHajimu UMEMOTO ndi->maxmtu = MIN(ETHERMTU, ifp->if_mtu); 22933841545SHajimu UMEMOTO break; 23033841545SHajimu UMEMOTO #endif 23182cd038dSYoshinobu Inoue default: 23282cd038dSYoshinobu Inoue ndi->maxmtu = ifp->if_mtu; 23382cd038dSYoshinobu Inoue break; 23482cd038dSYoshinobu Inoue } 23582cd038dSYoshinobu Inoue 23682cd038dSYoshinobu Inoue if (oldmaxmtu != ndi->maxmtu) { 23782cd038dSYoshinobu Inoue /* 23882cd038dSYoshinobu Inoue * If the ND level MTU is not set yet, or if the maxmtu 23982cd038dSYoshinobu Inoue * is reset to a smaller value than the ND level MTU, 24082cd038dSYoshinobu Inoue * also reset the ND level MTU. 24182cd038dSYoshinobu Inoue */ 24282cd038dSYoshinobu Inoue if (ndi->linkmtu == 0 || 24382cd038dSYoshinobu Inoue ndi->maxmtu < ndi->linkmtu) { 24482cd038dSYoshinobu Inoue ndi->linkmtu = ndi->maxmtu; 24582cd038dSYoshinobu Inoue /* also adjust in6_maxmtu if necessary. */ 24682cd038dSYoshinobu Inoue if (oldlinkmtu == 0) { 24782cd038dSYoshinobu Inoue /* 24882cd038dSYoshinobu Inoue * XXX: the case analysis is grotty, but 24982cd038dSYoshinobu Inoue * it is not efficient to call in6_setmaxmtu() 25082cd038dSYoshinobu Inoue * here when we are during the initialization 25182cd038dSYoshinobu Inoue * procedure. 25282cd038dSYoshinobu Inoue */ 25382cd038dSYoshinobu Inoue if (in6_maxmtu < ndi->linkmtu) 25482cd038dSYoshinobu Inoue in6_maxmtu = ndi->linkmtu; 25582cd038dSYoshinobu Inoue } else 25682cd038dSYoshinobu Inoue in6_setmaxmtu(); 25782cd038dSYoshinobu Inoue } 25882cd038dSYoshinobu Inoue } 25982cd038dSYoshinobu Inoue #undef MIN 26082cd038dSYoshinobu Inoue } 26182cd038dSYoshinobu Inoue 26282cd038dSYoshinobu Inoue void 26382cd038dSYoshinobu Inoue nd6_option_init(opt, icmp6len, ndopts) 26482cd038dSYoshinobu Inoue void *opt; 26582cd038dSYoshinobu Inoue int icmp6len; 26682cd038dSYoshinobu Inoue union nd_opts *ndopts; 26782cd038dSYoshinobu Inoue { 26882cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 26982cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)opt; 27082cd038dSYoshinobu Inoue ndopts->nd_opts_last 27182cd038dSYoshinobu Inoue = (struct nd_opt_hdr *)(((u_char *)opt) + icmp6len); 27282cd038dSYoshinobu Inoue 27382cd038dSYoshinobu Inoue if (icmp6len == 0) { 27482cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 27582cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 27682cd038dSYoshinobu Inoue } 27782cd038dSYoshinobu Inoue } 27882cd038dSYoshinobu Inoue 27982cd038dSYoshinobu Inoue /* 28082cd038dSYoshinobu Inoue * Take one ND option. 28182cd038dSYoshinobu Inoue */ 28282cd038dSYoshinobu Inoue struct nd_opt_hdr * 28382cd038dSYoshinobu Inoue nd6_option(ndopts) 28482cd038dSYoshinobu Inoue union nd_opts *ndopts; 28582cd038dSYoshinobu Inoue { 28682cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 28782cd038dSYoshinobu Inoue int olen; 28882cd038dSYoshinobu Inoue 28982cd038dSYoshinobu Inoue if (!ndopts) 29082cd038dSYoshinobu Inoue panic("ndopts == NULL in nd6_option\n"); 29182cd038dSYoshinobu Inoue if (!ndopts->nd_opts_last) 29282cd038dSYoshinobu Inoue panic("uninitialized ndopts in nd6_option\n"); 29382cd038dSYoshinobu Inoue if (!ndopts->nd_opts_search) 29482cd038dSYoshinobu Inoue return NULL; 29582cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 29682cd038dSYoshinobu Inoue return NULL; 29782cd038dSYoshinobu Inoue 29882cd038dSYoshinobu Inoue nd_opt = ndopts->nd_opts_search; 29982cd038dSYoshinobu Inoue 30019391949SKris Kennaway /* make sure nd_opt_len is inside the buffer */ 30119391949SKris Kennaway if ((caddr_t)&nd_opt->nd_opt_len >= (caddr_t)ndopts->nd_opts_last) { 30219391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 30319391949SKris Kennaway return NULL; 30419391949SKris Kennaway } 30519391949SKris Kennaway 30682cd038dSYoshinobu Inoue olen = nd_opt->nd_opt_len << 3; 30782cd038dSYoshinobu Inoue if (olen == 0) { 30882cd038dSYoshinobu Inoue /* 30982cd038dSYoshinobu Inoue * Message validation requires that all included 31082cd038dSYoshinobu Inoue * options have a length that is greater than zero. 31182cd038dSYoshinobu Inoue */ 31282cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 31382cd038dSYoshinobu Inoue return NULL; 31482cd038dSYoshinobu Inoue } 31582cd038dSYoshinobu Inoue 31682cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)((caddr_t)nd_opt + olen); 31719391949SKris Kennaway if (ndopts->nd_opts_search > ndopts->nd_opts_last) { 31819391949SKris Kennaway /* option overruns the end of buffer, invalid */ 31919391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 32019391949SKris Kennaway return NULL; 32119391949SKris Kennaway } else if (ndopts->nd_opts_search == ndopts->nd_opts_last) { 32219391949SKris Kennaway /* reached the end of options chain */ 32382cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 32482cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 32582cd038dSYoshinobu Inoue } 32682cd038dSYoshinobu Inoue return nd_opt; 32782cd038dSYoshinobu Inoue } 32882cd038dSYoshinobu Inoue 32982cd038dSYoshinobu Inoue /* 33082cd038dSYoshinobu Inoue * Parse multiple ND options. 33182cd038dSYoshinobu Inoue * This function is much easier to use, for ND routines that do not need 33282cd038dSYoshinobu Inoue * multiple options of the same type. 33382cd038dSYoshinobu Inoue */ 33482cd038dSYoshinobu Inoue int 33582cd038dSYoshinobu Inoue nd6_options(ndopts) 33682cd038dSYoshinobu Inoue union nd_opts *ndopts; 33782cd038dSYoshinobu Inoue { 33882cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 33982cd038dSYoshinobu Inoue int i = 0; 34082cd038dSYoshinobu Inoue 34182cd038dSYoshinobu Inoue if (!ndopts) 34282cd038dSYoshinobu Inoue panic("ndopts == NULL in nd6_options\n"); 34382cd038dSYoshinobu Inoue if (!ndopts->nd_opts_last) 34482cd038dSYoshinobu Inoue panic("uninitialized ndopts in nd6_options\n"); 34582cd038dSYoshinobu Inoue if (!ndopts->nd_opts_search) 34682cd038dSYoshinobu Inoue return 0; 34782cd038dSYoshinobu Inoue 34882cd038dSYoshinobu Inoue while (1) { 34982cd038dSYoshinobu Inoue nd_opt = nd6_option(ndopts); 35082cd038dSYoshinobu Inoue if (!nd_opt && !ndopts->nd_opts_last) { 35182cd038dSYoshinobu Inoue /* 35282cd038dSYoshinobu Inoue * Message validation requires that all included 35382cd038dSYoshinobu Inoue * options have a length that is greater than zero. 35482cd038dSYoshinobu Inoue */ 35533841545SHajimu UMEMOTO icmp6stat.icp6s_nd_badopt++; 35682cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 35782cd038dSYoshinobu Inoue return -1; 35882cd038dSYoshinobu Inoue } 35982cd038dSYoshinobu Inoue 36082cd038dSYoshinobu Inoue if (!nd_opt) 36182cd038dSYoshinobu Inoue goto skip1; 36282cd038dSYoshinobu Inoue 36382cd038dSYoshinobu Inoue switch (nd_opt->nd_opt_type) { 36482cd038dSYoshinobu Inoue case ND_OPT_SOURCE_LINKADDR: 36582cd038dSYoshinobu Inoue case ND_OPT_TARGET_LINKADDR: 36682cd038dSYoshinobu Inoue case ND_OPT_MTU: 36782cd038dSYoshinobu Inoue case ND_OPT_REDIRECTED_HEADER: 36882cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type]) { 36933841545SHajimu UMEMOTO nd6log((LOG_INFO, 37033841545SHajimu UMEMOTO "duplicated ND6 option found (type=%d)\n", 37133841545SHajimu UMEMOTO nd_opt->nd_opt_type)); 37282cd038dSYoshinobu Inoue /* XXX bark? */ 37382cd038dSYoshinobu Inoue } else { 37482cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 37582cd038dSYoshinobu Inoue = nd_opt; 37682cd038dSYoshinobu Inoue } 37782cd038dSYoshinobu Inoue break; 37882cd038dSYoshinobu Inoue case ND_OPT_PREFIX_INFORMATION: 37982cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type] == 0) { 38082cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 38182cd038dSYoshinobu Inoue = nd_opt; 38282cd038dSYoshinobu Inoue } 38382cd038dSYoshinobu Inoue ndopts->nd_opts_pi_end = 38482cd038dSYoshinobu Inoue (struct nd_opt_prefix_info *)nd_opt; 38582cd038dSYoshinobu Inoue break; 38682cd038dSYoshinobu Inoue default: 38782cd038dSYoshinobu Inoue /* 38882cd038dSYoshinobu Inoue * Unknown options must be silently ignored, 38982cd038dSYoshinobu Inoue * to accomodate future extension to the protocol. 39082cd038dSYoshinobu Inoue */ 39133841545SHajimu UMEMOTO nd6log((LOG_DEBUG, 39282cd038dSYoshinobu Inoue "nd6_options: unsupported option %d - " 39333841545SHajimu UMEMOTO "option ignored\n", nd_opt->nd_opt_type)); 39482cd038dSYoshinobu Inoue } 39582cd038dSYoshinobu Inoue 39682cd038dSYoshinobu Inoue skip1: 39782cd038dSYoshinobu Inoue i++; 398686cdd19SJun-ichiro itojun Hagino if (i > nd6_maxndopt) { 399686cdd19SJun-ichiro itojun Hagino icmp6stat.icp6s_nd_toomanyopt++; 40033841545SHajimu UMEMOTO nd6log((LOG_INFO, "too many loop in nd opt\n")); 40182cd038dSYoshinobu Inoue break; 40282cd038dSYoshinobu Inoue } 40382cd038dSYoshinobu Inoue 40482cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 40582cd038dSYoshinobu Inoue break; 40682cd038dSYoshinobu Inoue } 40782cd038dSYoshinobu Inoue 40882cd038dSYoshinobu Inoue return 0; 40982cd038dSYoshinobu Inoue } 41082cd038dSYoshinobu Inoue 41182cd038dSYoshinobu Inoue /* 41282cd038dSYoshinobu Inoue * ND6 timer routine to expire default route list and prefix list 41382cd038dSYoshinobu Inoue */ 41482cd038dSYoshinobu Inoue void 41582cd038dSYoshinobu Inoue nd6_timer(ignored_arg) 41682cd038dSYoshinobu Inoue void *ignored_arg; 41782cd038dSYoshinobu Inoue { 41882cd038dSYoshinobu Inoue int s; 41933841545SHajimu UMEMOTO struct llinfo_nd6 *ln; 42033841545SHajimu UMEMOTO struct nd_defrouter *dr; 42133841545SHajimu UMEMOTO struct nd_prefix *pr; 42233841545SHajimu UMEMOTO struct ifnet *ifp; 42333841545SHajimu UMEMOTO struct in6_ifaddr *ia6, *nia6; 42433841545SHajimu UMEMOTO struct in6_addrlifetime *lt6; 42582cd038dSYoshinobu Inoue 42682cd038dSYoshinobu Inoue s = splnet(); 42733841545SHajimu UMEMOTO callout_reset(&nd6_timer_ch, nd6_prune * hz, 42833841545SHajimu UMEMOTO nd6_timer, NULL); 42982cd038dSYoshinobu Inoue 43082cd038dSYoshinobu Inoue ln = llinfo_nd6.ln_next; 43182cd038dSYoshinobu Inoue while (ln && ln != &llinfo_nd6) { 43282cd038dSYoshinobu Inoue struct rtentry *rt; 43382cd038dSYoshinobu Inoue struct sockaddr_in6 *dst; 43482cd038dSYoshinobu Inoue struct llinfo_nd6 *next = ln->ln_next; 435686cdd19SJun-ichiro itojun Hagino /* XXX: used for the DELAY case only: */ 436686cdd19SJun-ichiro itojun Hagino struct nd_ifinfo *ndi = NULL; 43782cd038dSYoshinobu Inoue 43882cd038dSYoshinobu Inoue if ((rt = ln->ln_rt) == NULL) { 43982cd038dSYoshinobu Inoue ln = next; 44082cd038dSYoshinobu Inoue continue; 44182cd038dSYoshinobu Inoue } 44282cd038dSYoshinobu Inoue if ((ifp = rt->rt_ifp) == NULL) { 44382cd038dSYoshinobu Inoue ln = next; 44482cd038dSYoshinobu Inoue continue; 44582cd038dSYoshinobu Inoue } 446686cdd19SJun-ichiro itojun Hagino ndi = &nd_ifinfo[ifp->if_index]; 44782cd038dSYoshinobu Inoue dst = (struct sockaddr_in6 *)rt_key(rt); 44882cd038dSYoshinobu Inoue 44982cd038dSYoshinobu Inoue if (ln->ln_expire > time_second) { 45082cd038dSYoshinobu Inoue ln = next; 45182cd038dSYoshinobu Inoue continue; 45282cd038dSYoshinobu Inoue } 45382cd038dSYoshinobu Inoue 45482cd038dSYoshinobu Inoue /* sanity check */ 45582cd038dSYoshinobu Inoue if (!rt) 45682cd038dSYoshinobu Inoue panic("rt=0 in nd6_timer(ln=%p)\n", ln); 457686cdd19SJun-ichiro itojun Hagino if (rt->rt_llinfo && (struct llinfo_nd6 *)rt->rt_llinfo != ln) 458686cdd19SJun-ichiro itojun Hagino panic("rt_llinfo(%p) is not equal to ln(%p)\n", 459686cdd19SJun-ichiro itojun Hagino rt->rt_llinfo, ln); 46082cd038dSYoshinobu Inoue if (!dst) 46182cd038dSYoshinobu Inoue panic("dst=0 in nd6_timer(ln=%p)\n", ln); 46282cd038dSYoshinobu Inoue 46382cd038dSYoshinobu Inoue switch (ln->ln_state) { 46482cd038dSYoshinobu Inoue case ND6_LLINFO_INCOMPLETE: 46582cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_mmaxtries) { 46682cd038dSYoshinobu Inoue ln->ln_asked++; 46782cd038dSYoshinobu Inoue ln->ln_expire = time_second + 46882cd038dSYoshinobu Inoue nd_ifinfo[ifp->if_index].retrans / 1000; 46982cd038dSYoshinobu Inoue nd6_ns_output(ifp, NULL, &dst->sin6_addr, 47082cd038dSYoshinobu Inoue ln, 0); 47182cd038dSYoshinobu Inoue } else { 47282cd038dSYoshinobu Inoue struct mbuf *m = ln->ln_hold; 47382cd038dSYoshinobu Inoue if (m) { 47482cd038dSYoshinobu Inoue if (rt->rt_ifp) { 47582cd038dSYoshinobu Inoue /* 47682cd038dSYoshinobu Inoue * Fake rcvif to make ICMP error 47782cd038dSYoshinobu Inoue * more helpful in diagnosing 47882cd038dSYoshinobu Inoue * for the receiver. 47982cd038dSYoshinobu Inoue * XXX: should we consider 48082cd038dSYoshinobu Inoue * older rcvif? 48182cd038dSYoshinobu Inoue */ 48282cd038dSYoshinobu Inoue m->m_pkthdr.rcvif = rt->rt_ifp; 48382cd038dSYoshinobu Inoue } 48482cd038dSYoshinobu Inoue icmp6_error(m, ICMP6_DST_UNREACH, 48582cd038dSYoshinobu Inoue ICMP6_DST_UNREACH_ADDR, 0); 48682cd038dSYoshinobu Inoue ln->ln_hold = NULL; 48782cd038dSYoshinobu Inoue } 48833841545SHajimu UMEMOTO next = nd6_free(rt); 48982cd038dSYoshinobu Inoue } 49082cd038dSYoshinobu Inoue break; 49182cd038dSYoshinobu Inoue case ND6_LLINFO_REACHABLE: 49233841545SHajimu UMEMOTO if (ln->ln_expire) { 49382cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_STALE; 49433841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 49533841545SHajimu UMEMOTO } 49682cd038dSYoshinobu Inoue break; 49733841545SHajimu UMEMOTO 49833841545SHajimu UMEMOTO case ND6_LLINFO_STALE: 49933841545SHajimu UMEMOTO /* Garbage Collection(RFC 2461 5.3) */ 50033841545SHajimu UMEMOTO if (ln->ln_expire) 50133841545SHajimu UMEMOTO next = nd6_free(rt); 50233841545SHajimu UMEMOTO break; 50333841545SHajimu UMEMOTO 50482cd038dSYoshinobu Inoue case ND6_LLINFO_DELAY: 505686cdd19SJun-ichiro itojun Hagino if (ndi && (ndi->flags & ND6_IFF_PERFORMNUD) != 0) { 506686cdd19SJun-ichiro itojun Hagino /* We need NUD */ 50782cd038dSYoshinobu Inoue ln->ln_asked = 1; 50882cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_PROBE; 50982cd038dSYoshinobu Inoue ln->ln_expire = time_second + 510686cdd19SJun-ichiro itojun Hagino ndi->retrans / 1000; 511686cdd19SJun-ichiro itojun Hagino nd6_ns_output(ifp, &dst->sin6_addr, 512686cdd19SJun-ichiro itojun Hagino &dst->sin6_addr, 51382cd038dSYoshinobu Inoue ln, 0); 51433841545SHajimu UMEMOTO } else { 515686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_STALE; /* XXX */ 51633841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 51733841545SHajimu UMEMOTO } 51882cd038dSYoshinobu Inoue break; 51982cd038dSYoshinobu Inoue case ND6_LLINFO_PROBE: 52082cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_umaxtries) { 52182cd038dSYoshinobu Inoue ln->ln_asked++; 52282cd038dSYoshinobu Inoue ln->ln_expire = time_second + 52382cd038dSYoshinobu Inoue nd_ifinfo[ifp->if_index].retrans / 1000; 52482cd038dSYoshinobu Inoue nd6_ns_output(ifp, &dst->sin6_addr, 52582cd038dSYoshinobu Inoue &dst->sin6_addr, ln, 0); 52682cd038dSYoshinobu Inoue } else { 52733841545SHajimu UMEMOTO next = nd6_free(rt); 52882cd038dSYoshinobu Inoue } 52982cd038dSYoshinobu Inoue break; 53082cd038dSYoshinobu Inoue } 53182cd038dSYoshinobu Inoue ln = next; 53282cd038dSYoshinobu Inoue } 53382cd038dSYoshinobu Inoue 53433841545SHajimu UMEMOTO /* expire default router list */ 535686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 53682cd038dSYoshinobu Inoue while (dr) { 53782cd038dSYoshinobu Inoue if (dr->expire && dr->expire < time_second) { 53882cd038dSYoshinobu Inoue struct nd_defrouter *t; 539686cdd19SJun-ichiro itojun Hagino t = TAILQ_NEXT(dr, dr_entry); 54082cd038dSYoshinobu Inoue defrtrlist_del(dr); 54182cd038dSYoshinobu Inoue dr = t; 542686cdd19SJun-ichiro itojun Hagino } else { 543686cdd19SJun-ichiro itojun Hagino dr = TAILQ_NEXT(dr, dr_entry); 54482cd038dSYoshinobu Inoue } 545686cdd19SJun-ichiro itojun Hagino } 54682cd038dSYoshinobu Inoue 54733841545SHajimu UMEMOTO /* 54833841545SHajimu UMEMOTO * expire interface addresses. 54933841545SHajimu UMEMOTO * in the past the loop was inside prefix expiry processing. 55033841545SHajimu UMEMOTO * However, from a stricter speci-confrmance standpoint, we should 55133841545SHajimu UMEMOTO * rather separate address lifetimes and prefix lifetimes. 55233841545SHajimu UMEMOTO */ 55333841545SHajimu UMEMOTO addrloop: 55433841545SHajimu UMEMOTO for (ia6 = in6_ifaddr; ia6; ia6 = nia6) { 55533841545SHajimu UMEMOTO nia6 = ia6->ia_next; 55682cd038dSYoshinobu Inoue /* check address lifetime */ 55782cd038dSYoshinobu Inoue lt6 = &ia6->ia6_lifetime; 55833841545SHajimu UMEMOTO if (IFA6_IS_INVALID(ia6)) { 55933841545SHajimu UMEMOTO int regen = 0; 56033841545SHajimu UMEMOTO 56133841545SHajimu UMEMOTO /* 56233841545SHajimu UMEMOTO * If the expiring address is temporary, try 56333841545SHajimu UMEMOTO * regenerating a new one. This would be useful when 56488ff5695SSUZUKI Shinsuke * we suspended a laptop PC, then turned it on after a 56533841545SHajimu UMEMOTO * period that could invalidate all temporary 56633841545SHajimu UMEMOTO * addresses. Although we may have to restart the 56733841545SHajimu UMEMOTO * loop (see below), it must be after purging the 56833841545SHajimu UMEMOTO * address. Otherwise, we'd see an infinite loop of 56933841545SHajimu UMEMOTO * regeneration. 57033841545SHajimu UMEMOTO */ 57133841545SHajimu UMEMOTO if (ip6_use_tempaddr && 57233841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0) { 57333841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) 57433841545SHajimu UMEMOTO regen = 1; 57533841545SHajimu UMEMOTO } 57633841545SHajimu UMEMOTO 57733841545SHajimu UMEMOTO in6_purgeaddr(&ia6->ia_ifa); 57833841545SHajimu UMEMOTO 57933841545SHajimu UMEMOTO if (regen) 58033841545SHajimu UMEMOTO goto addrloop; /* XXX: see below */ 58133841545SHajimu UMEMOTO } else if (IFA6_IS_DEPRECATED(ia6)) { 58233841545SHajimu UMEMOTO int oldflags = ia6->ia6_flags; 58333841545SHajimu UMEMOTO 58482cd038dSYoshinobu Inoue ia6->ia6_flags |= IN6_IFF_DEPRECATED; 58533841545SHajimu UMEMOTO 58633841545SHajimu UMEMOTO /* 58733841545SHajimu UMEMOTO * If a temporary address has just become deprecated, 58833841545SHajimu UMEMOTO * regenerate a new one if possible. 58933841545SHajimu UMEMOTO */ 59033841545SHajimu UMEMOTO if (ip6_use_tempaddr && 59133841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 59233841545SHajimu UMEMOTO (oldflags & IN6_IFF_DEPRECATED) == 0) { 59333841545SHajimu UMEMOTO 59433841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) { 59533841545SHajimu UMEMOTO /* 59633841545SHajimu UMEMOTO * A new temporary address is 59733841545SHajimu UMEMOTO * generated. 59833841545SHajimu UMEMOTO * XXX: this means the address chain 59933841545SHajimu UMEMOTO * has changed while we are still in 60033841545SHajimu UMEMOTO * the loop. Although the change 60133841545SHajimu UMEMOTO * would not cause disaster (because 60288ff5695SSUZUKI Shinsuke * it's not a deletion, but an 60388ff5695SSUZUKI Shinsuke * addition,) we'd rather restart the 60433841545SHajimu UMEMOTO * loop just for safety. Or does this 60533841545SHajimu UMEMOTO * significantly reduce performance?? 60633841545SHajimu UMEMOTO */ 60733841545SHajimu UMEMOTO goto addrloop; 60833841545SHajimu UMEMOTO } 60933841545SHajimu UMEMOTO } 61033841545SHajimu UMEMOTO } else if (IFA6_IS_DEPRECATED(ia6)) { 61133841545SHajimu UMEMOTO /* 61233841545SHajimu UMEMOTO * A new RA might have made a deprecated address 61333841545SHajimu UMEMOTO * preferred. 61433841545SHajimu UMEMOTO */ 61533841545SHajimu UMEMOTO ia6->ia6_flags &= ~IN6_IFF_DEPRECATED; 61682cd038dSYoshinobu Inoue } 61782cd038dSYoshinobu Inoue } 61882cd038dSYoshinobu Inoue 61933841545SHajimu UMEMOTO /* expire prefix list */ 62033841545SHajimu UMEMOTO pr = nd_prefix.lh_first; 62133841545SHajimu UMEMOTO while (pr) { 62282cd038dSYoshinobu Inoue /* 62382cd038dSYoshinobu Inoue * check prefix lifetime. 62482cd038dSYoshinobu Inoue * since pltime is just for autoconf, pltime processing for 62582cd038dSYoshinobu Inoue * prefix is not necessary. 62682cd038dSYoshinobu Inoue */ 62733841545SHajimu UMEMOTO if (pr->ndpr_expire && pr->ndpr_expire < time_second) { 62882cd038dSYoshinobu Inoue struct nd_prefix *t; 629686cdd19SJun-ichiro itojun Hagino t = pr->ndpr_next; 63082cd038dSYoshinobu Inoue 63182cd038dSYoshinobu Inoue /* 63282cd038dSYoshinobu Inoue * address expiration and prefix expiration are 63333841545SHajimu UMEMOTO * separate. NEVER perform in6_purgeaddr here. 63482cd038dSYoshinobu Inoue */ 63582cd038dSYoshinobu Inoue 63682cd038dSYoshinobu Inoue prelist_remove(pr); 63782cd038dSYoshinobu Inoue pr = t; 63882cd038dSYoshinobu Inoue } else 639686cdd19SJun-ichiro itojun Hagino pr = pr->ndpr_next; 64082cd038dSYoshinobu Inoue } 64182cd038dSYoshinobu Inoue splx(s); 64282cd038dSYoshinobu Inoue } 64382cd038dSYoshinobu Inoue 64433841545SHajimu UMEMOTO static int 64533841545SHajimu UMEMOTO regen_tmpaddr(ia6) 64633841545SHajimu UMEMOTO struct in6_ifaddr *ia6; /* deprecated/invalidated temporary address */ 64733841545SHajimu UMEMOTO { 64833841545SHajimu UMEMOTO struct ifaddr *ifa; 64933841545SHajimu UMEMOTO struct ifnet *ifp; 65033841545SHajimu UMEMOTO struct in6_ifaddr *public_ifa6 = NULL; 65133841545SHajimu UMEMOTO 65233841545SHajimu UMEMOTO ifp = ia6->ia_ifa.ifa_ifp; 65333841545SHajimu UMEMOTO for (ifa = ifp->if_addrlist.tqh_first; ifa; 65433841545SHajimu UMEMOTO ifa = ifa->ifa_list.tqe_next) 65533841545SHajimu UMEMOTO { 65633841545SHajimu UMEMOTO struct in6_ifaddr *it6; 65733841545SHajimu UMEMOTO 65833841545SHajimu UMEMOTO if (ifa->ifa_addr->sa_family != AF_INET6) 65933841545SHajimu UMEMOTO continue; 66033841545SHajimu UMEMOTO 66133841545SHajimu UMEMOTO it6 = (struct in6_ifaddr *)ifa; 66233841545SHajimu UMEMOTO 66333841545SHajimu UMEMOTO /* ignore no autoconf addresses. */ 66433841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_AUTOCONF) == 0) 66533841545SHajimu UMEMOTO continue; 66633841545SHajimu UMEMOTO 66733841545SHajimu UMEMOTO /* ignore autoconf addresses with different prefixes. */ 66833841545SHajimu UMEMOTO if (it6->ia6_ndpr == NULL || it6->ia6_ndpr != ia6->ia6_ndpr) 66933841545SHajimu UMEMOTO continue; 67033841545SHajimu UMEMOTO 67133841545SHajimu UMEMOTO /* 67233841545SHajimu UMEMOTO * Now we are looking at an autoconf address with the same 67333841545SHajimu UMEMOTO * prefix as ours. If the address is temporary and is still 67433841545SHajimu UMEMOTO * preferred, do not create another one. It would be rare, but 67533841545SHajimu UMEMOTO * could happen, for example, when we resume a laptop PC after 67633841545SHajimu UMEMOTO * a long period. 67733841545SHajimu UMEMOTO */ 67833841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 67933841545SHajimu UMEMOTO !IFA6_IS_DEPRECATED(it6)) { 68033841545SHajimu UMEMOTO public_ifa6 = NULL; 68133841545SHajimu UMEMOTO break; 68233841545SHajimu UMEMOTO } 68333841545SHajimu UMEMOTO 68433841545SHajimu UMEMOTO /* 68533841545SHajimu UMEMOTO * This is a public autoconf address that has the same prefix 68633841545SHajimu UMEMOTO * as ours. If it is preferred, keep it. We can't break the 68733841545SHajimu UMEMOTO * loop here, because there may be a still-preferred temporary 68833841545SHajimu UMEMOTO * address with the prefix. 68933841545SHajimu UMEMOTO */ 69033841545SHajimu UMEMOTO if (!IFA6_IS_DEPRECATED(it6)) 69133841545SHajimu UMEMOTO public_ifa6 = it6; 69233841545SHajimu UMEMOTO } 69333841545SHajimu UMEMOTO 69433841545SHajimu UMEMOTO if (public_ifa6 != NULL) { 69533841545SHajimu UMEMOTO int e; 69633841545SHajimu UMEMOTO 69733841545SHajimu UMEMOTO if ((e = in6_tmpifadd(public_ifa6, 0)) != 0) { 69833841545SHajimu UMEMOTO log(LOG_NOTICE, "regen_tmpaddr: failed to create a new" 69933841545SHajimu UMEMOTO " tmp addr,errno=%d\n", e); 70033841545SHajimu UMEMOTO return(-1); 70133841545SHajimu UMEMOTO } 70233841545SHajimu UMEMOTO return(0); 70333841545SHajimu UMEMOTO } 70433841545SHajimu UMEMOTO 70533841545SHajimu UMEMOTO return(-1); 70633841545SHajimu UMEMOTO } 70733841545SHajimu UMEMOTO 708686cdd19SJun-ichiro itojun Hagino /* 709686cdd19SJun-ichiro itojun Hagino * Nuke neighbor cache/prefix/default router management table, right before 710686cdd19SJun-ichiro itojun Hagino * ifp goes away. 711686cdd19SJun-ichiro itojun Hagino */ 712686cdd19SJun-ichiro itojun Hagino void 713686cdd19SJun-ichiro itojun Hagino nd6_purge(ifp) 714686cdd19SJun-ichiro itojun Hagino struct ifnet *ifp; 715686cdd19SJun-ichiro itojun Hagino { 716686cdd19SJun-ichiro itojun Hagino struct llinfo_nd6 *ln, *nln; 717686cdd19SJun-ichiro itojun Hagino struct nd_defrouter *dr, *ndr, drany; 718686cdd19SJun-ichiro itojun Hagino struct nd_prefix *pr, *npr; 719686cdd19SJun-ichiro itojun Hagino 720686cdd19SJun-ichiro itojun Hagino /* Nuke default router list entries toward ifp */ 721686cdd19SJun-ichiro itojun Hagino if ((dr = TAILQ_FIRST(&nd_defrouter)) != NULL) { 722686cdd19SJun-ichiro itojun Hagino /* 723686cdd19SJun-ichiro itojun Hagino * The first entry of the list may be stored in 724686cdd19SJun-ichiro itojun Hagino * the routing table, so we'll delete it later. 725686cdd19SJun-ichiro itojun Hagino */ 726686cdd19SJun-ichiro itojun Hagino for (dr = TAILQ_NEXT(dr, dr_entry); dr; dr = ndr) { 727686cdd19SJun-ichiro itojun Hagino ndr = TAILQ_NEXT(dr, dr_entry); 728686cdd19SJun-ichiro itojun Hagino if (dr->ifp == ifp) 729686cdd19SJun-ichiro itojun Hagino defrtrlist_del(dr); 730686cdd19SJun-ichiro itojun Hagino } 731686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 732686cdd19SJun-ichiro itojun Hagino if (dr->ifp == ifp) 733686cdd19SJun-ichiro itojun Hagino defrtrlist_del(dr); 734686cdd19SJun-ichiro itojun Hagino } 735686cdd19SJun-ichiro itojun Hagino 736686cdd19SJun-ichiro itojun Hagino /* Nuke prefix list entries toward ifp */ 737686cdd19SJun-ichiro itojun Hagino for (pr = nd_prefix.lh_first; pr; pr = npr) { 738686cdd19SJun-ichiro itojun Hagino npr = pr->ndpr_next; 739686cdd19SJun-ichiro itojun Hagino if (pr->ndpr_ifp == ifp) { 74033841545SHajimu UMEMOTO /* 74133841545SHajimu UMEMOTO * Previously, pr->ndpr_addr is removed as well, 74233841545SHajimu UMEMOTO * but I strongly believe we don't have to do it. 74333841545SHajimu UMEMOTO * nd6_purge() is only called from in6_ifdetach(), 74433841545SHajimu UMEMOTO * which removes all the associated interface addresses 74533841545SHajimu UMEMOTO * by itself. 74633841545SHajimu UMEMOTO * (jinmei@kame.net 20010129) 74733841545SHajimu UMEMOTO */ 748686cdd19SJun-ichiro itojun Hagino prelist_remove(pr); 749686cdd19SJun-ichiro itojun Hagino } 750686cdd19SJun-ichiro itojun Hagino } 751686cdd19SJun-ichiro itojun Hagino 752686cdd19SJun-ichiro itojun Hagino /* cancel default outgoing interface setting */ 753686cdd19SJun-ichiro itojun Hagino if (nd6_defifindex == ifp->if_index) 754686cdd19SJun-ichiro itojun Hagino nd6_setdefaultiface(0); 755686cdd19SJun-ichiro itojun Hagino 7561026ccc4SHajimu UMEMOTO if (!ip6_forwarding && ip6_accept_rtadv) { /* XXX: too restrictive? */ 757686cdd19SJun-ichiro itojun Hagino /* refresh default router list */ 758686cdd19SJun-ichiro itojun Hagino bzero(&drany, sizeof(drany)); 759686cdd19SJun-ichiro itojun Hagino defrouter_delreq(&drany, 0); 760686cdd19SJun-ichiro itojun Hagino defrouter_select(); 7611026ccc4SHajimu UMEMOTO } 762686cdd19SJun-ichiro itojun Hagino 763686cdd19SJun-ichiro itojun Hagino /* 764686cdd19SJun-ichiro itojun Hagino * Nuke neighbor cache entries for the ifp. 765686cdd19SJun-ichiro itojun Hagino * Note that rt->rt_ifp may not be the same as ifp, 766686cdd19SJun-ichiro itojun Hagino * due to KAME goto ours hack. See RTM_RESOLVE case in 767686cdd19SJun-ichiro itojun Hagino * nd6_rtrequest(), and ip6_input(). 768686cdd19SJun-ichiro itojun Hagino */ 769686cdd19SJun-ichiro itojun Hagino ln = llinfo_nd6.ln_next; 770686cdd19SJun-ichiro itojun Hagino while (ln && ln != &llinfo_nd6) { 771686cdd19SJun-ichiro itojun Hagino struct rtentry *rt; 772686cdd19SJun-ichiro itojun Hagino struct sockaddr_dl *sdl; 773686cdd19SJun-ichiro itojun Hagino 774686cdd19SJun-ichiro itojun Hagino nln = ln->ln_next; 775686cdd19SJun-ichiro itojun Hagino rt = ln->ln_rt; 776686cdd19SJun-ichiro itojun Hagino if (rt && rt->rt_gateway && 777686cdd19SJun-ichiro itojun Hagino rt->rt_gateway->sa_family == AF_LINK) { 778686cdd19SJun-ichiro itojun Hagino sdl = (struct sockaddr_dl *)rt->rt_gateway; 779686cdd19SJun-ichiro itojun Hagino if (sdl->sdl_index == ifp->if_index) 78033841545SHajimu UMEMOTO nln = nd6_free(rt); 781686cdd19SJun-ichiro itojun Hagino } 782686cdd19SJun-ichiro itojun Hagino ln = nln; 783686cdd19SJun-ichiro itojun Hagino } 784686cdd19SJun-ichiro itojun Hagino } 785686cdd19SJun-ichiro itojun Hagino 78682cd038dSYoshinobu Inoue struct rtentry * 78782cd038dSYoshinobu Inoue nd6_lookup(addr6, create, ifp) 78882cd038dSYoshinobu Inoue struct in6_addr *addr6; 78982cd038dSYoshinobu Inoue int create; 79082cd038dSYoshinobu Inoue struct ifnet *ifp; 79182cd038dSYoshinobu Inoue { 79282cd038dSYoshinobu Inoue struct rtentry *rt; 79382cd038dSYoshinobu Inoue struct sockaddr_in6 sin6; 79482cd038dSYoshinobu Inoue 79582cd038dSYoshinobu Inoue bzero(&sin6, sizeof(sin6)); 79682cd038dSYoshinobu Inoue sin6.sin6_len = sizeof(struct sockaddr_in6); 79782cd038dSYoshinobu Inoue sin6.sin6_family = AF_INET6; 79882cd038dSYoshinobu Inoue sin6.sin6_addr = *addr6; 799686cdd19SJun-ichiro itojun Hagino #ifdef SCOPEDROUTING 800686cdd19SJun-ichiro itojun Hagino sin6.sin6_scope_id = in6_addr2scopeid(ifp, addr6); 801686cdd19SJun-ichiro itojun Hagino #endif 80282cd038dSYoshinobu Inoue rt = rtalloc1((struct sockaddr *)&sin6, create, 0UL); 80382cd038dSYoshinobu Inoue if (rt && (rt->rt_flags & RTF_LLINFO) == 0) { 80482cd038dSYoshinobu Inoue /* 80582cd038dSYoshinobu Inoue * This is the case for the default route. 80682cd038dSYoshinobu Inoue * If we want to create a neighbor cache for the address, we 80782cd038dSYoshinobu Inoue * should free the route for the destination and allocate an 80882cd038dSYoshinobu Inoue * interface route. 80982cd038dSYoshinobu Inoue */ 81082cd038dSYoshinobu Inoue if (create) { 81182cd038dSYoshinobu Inoue RTFREE(rt); 81282cd038dSYoshinobu Inoue rt = 0; 81382cd038dSYoshinobu Inoue } 81482cd038dSYoshinobu Inoue } 81582cd038dSYoshinobu Inoue if (!rt) { 81682cd038dSYoshinobu Inoue if (create && ifp) { 817686cdd19SJun-ichiro itojun Hagino int e; 818686cdd19SJun-ichiro itojun Hagino 81982cd038dSYoshinobu Inoue /* 82082cd038dSYoshinobu Inoue * If no route is available and create is set, 82182cd038dSYoshinobu Inoue * we allocate a host route for the destination 82282cd038dSYoshinobu Inoue * and treat it like an interface route. 82382cd038dSYoshinobu Inoue * This hack is necessary for a neighbor which can't 82482cd038dSYoshinobu Inoue * be covered by our own prefix. 82582cd038dSYoshinobu Inoue */ 82682cd038dSYoshinobu Inoue struct ifaddr *ifa = 82782cd038dSYoshinobu Inoue ifaof_ifpforaddr((struct sockaddr *)&sin6, ifp); 82882cd038dSYoshinobu Inoue if (ifa == NULL) 82982cd038dSYoshinobu Inoue return(NULL); 83082cd038dSYoshinobu Inoue 83182cd038dSYoshinobu Inoue /* 83282cd038dSYoshinobu Inoue * Create a new route. RTF_LLINFO is necessary 83382cd038dSYoshinobu Inoue * to create a Neighbor Cache entry for the 83482cd038dSYoshinobu Inoue * destination in nd6_rtrequest which will be 83588ff5695SSUZUKI Shinsuke * called in rtrequest via ifa->ifa_rtrequest. 83682cd038dSYoshinobu Inoue */ 837686cdd19SJun-ichiro itojun Hagino if ((e = rtrequest(RTM_ADD, (struct sockaddr *)&sin6, 83882cd038dSYoshinobu Inoue ifa->ifa_addr, 83982cd038dSYoshinobu Inoue (struct sockaddr *)&all1_sa, 84082cd038dSYoshinobu Inoue (ifa->ifa_flags | 841686cdd19SJun-ichiro itojun Hagino RTF_HOST | RTF_LLINFO) & 842686cdd19SJun-ichiro itojun Hagino ~RTF_CLONING, 843686cdd19SJun-ichiro itojun Hagino &rt)) != 0) 84482cd038dSYoshinobu Inoue log(LOG_ERR, 84582cd038dSYoshinobu Inoue "nd6_lookup: failed to add route for a " 846686cdd19SJun-ichiro itojun Hagino "neighbor(%s), errno=%d\n", 847686cdd19SJun-ichiro itojun Hagino ip6_sprintf(addr6), e); 84882cd038dSYoshinobu Inoue if (rt == NULL) 84982cd038dSYoshinobu Inoue return(NULL); 85082cd038dSYoshinobu Inoue if (rt->rt_llinfo) { 85182cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = 85282cd038dSYoshinobu Inoue (struct llinfo_nd6 *)rt->rt_llinfo; 85382cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_NOSTATE; 85482cd038dSYoshinobu Inoue } 85582cd038dSYoshinobu Inoue } else 85682cd038dSYoshinobu Inoue return(NULL); 85782cd038dSYoshinobu Inoue } 85882cd038dSYoshinobu Inoue rt->rt_refcnt--; 85982cd038dSYoshinobu Inoue /* 86082cd038dSYoshinobu Inoue * Validation for the entry. 8613c404a32SHajimu UMEMOTO * Note that the check for rt_llinfo is necessary because a cloned 8623c404a32SHajimu UMEMOTO * route from a parent route that has the L flag (e.g. the default 8633c404a32SHajimu UMEMOTO * route to a p2p interface) may have the flag, too, while the 8643c404a32SHajimu UMEMOTO * destination is not actually a neighbor. 86582cd038dSYoshinobu Inoue * XXX: we can't use rt->rt_ifp to check for the interface, since 86682cd038dSYoshinobu Inoue * it might be the loopback interface if the entry is for our 86782cd038dSYoshinobu Inoue * own address on a non-loopback interface. Instead, we should 8683c404a32SHajimu UMEMOTO * use rt->rt_ifa->ifa_ifp, which would specify the REAL 8693c404a32SHajimu UMEMOTO * interface. 87082cd038dSYoshinobu Inoue */ 87182cd038dSYoshinobu Inoue if ((rt->rt_flags & RTF_GATEWAY) || (rt->rt_flags & RTF_LLINFO) == 0 || 8723c404a32SHajimu UMEMOTO rt->rt_gateway->sa_family != AF_LINK || rt->rt_llinfo == NULL || 87382cd038dSYoshinobu Inoue (ifp && rt->rt_ifa->ifa_ifp != ifp)) { 87482cd038dSYoshinobu Inoue if (create) { 87582cd038dSYoshinobu Inoue log(LOG_DEBUG, "nd6_lookup: failed to lookup %s (if = %s)\n", 87682cd038dSYoshinobu Inoue ip6_sprintf(addr6), ifp ? if_name(ifp) : "unspec"); 87782cd038dSYoshinobu Inoue /* xxx more logs... kazu */ 87882cd038dSYoshinobu Inoue } 8793c404a32SHajimu UMEMOTO return(NULL); 88082cd038dSYoshinobu Inoue } 88182cd038dSYoshinobu Inoue return(rt); 88282cd038dSYoshinobu Inoue } 88382cd038dSYoshinobu Inoue 88482cd038dSYoshinobu Inoue /* 88582cd038dSYoshinobu Inoue * Detect if a given IPv6 address identifies a neighbor on a given link. 88682cd038dSYoshinobu Inoue * XXX: should take care of the destination of a p2p link? 88782cd038dSYoshinobu Inoue */ 88882cd038dSYoshinobu Inoue int 88982cd038dSYoshinobu Inoue nd6_is_addr_neighbor(addr, ifp) 890686cdd19SJun-ichiro itojun Hagino struct sockaddr_in6 *addr; 89182cd038dSYoshinobu Inoue struct ifnet *ifp; 89282cd038dSYoshinobu Inoue { 89333841545SHajimu UMEMOTO struct ifaddr *ifa; 89482cd038dSYoshinobu Inoue int i; 89582cd038dSYoshinobu Inoue 89682cd038dSYoshinobu Inoue #define IFADDR6(a) ((((struct in6_ifaddr *)(a))->ia_addr).sin6_addr) 89782cd038dSYoshinobu Inoue #define IFMASK6(a) ((((struct in6_ifaddr *)(a))->ia_prefixmask).sin6_addr) 89882cd038dSYoshinobu Inoue 899686cdd19SJun-ichiro itojun Hagino /* 900686cdd19SJun-ichiro itojun Hagino * A link-local address is always a neighbor. 901686cdd19SJun-ichiro itojun Hagino * XXX: we should use the sin6_scope_id field rather than the embedded 902686cdd19SJun-ichiro itojun Hagino * interface index. 903686cdd19SJun-ichiro itojun Hagino */ 904686cdd19SJun-ichiro itojun Hagino if (IN6_IS_ADDR_LINKLOCAL(&addr->sin6_addr) && 905686cdd19SJun-ichiro itojun Hagino ntohs(*(u_int16_t *)&addr->sin6_addr.s6_addr[2]) == ifp->if_index) 90682cd038dSYoshinobu Inoue return(1); 90782cd038dSYoshinobu Inoue 90882cd038dSYoshinobu Inoue /* 90982cd038dSYoshinobu Inoue * If the address matches one of our addresses, 91082cd038dSYoshinobu Inoue * it should be a neighbor. 91182cd038dSYoshinobu Inoue */ 912686cdd19SJun-ichiro itojun Hagino for (ifa = ifp->if_addrlist.tqh_first; 913686cdd19SJun-ichiro itojun Hagino ifa; 914686cdd19SJun-ichiro itojun Hagino ifa = ifa->ifa_list.tqe_next) 91582cd038dSYoshinobu Inoue { 91682cd038dSYoshinobu Inoue if (ifa->ifa_addr->sa_family != AF_INET6) 91782cd038dSYoshinobu Inoue next: continue; 91882cd038dSYoshinobu Inoue 91982cd038dSYoshinobu Inoue for (i = 0; i < 4; i++) { 920686cdd19SJun-ichiro itojun Hagino if ((IFADDR6(ifa).s6_addr32[i] ^ 921686cdd19SJun-ichiro itojun Hagino addr->sin6_addr.s6_addr32[i]) & 92282cd038dSYoshinobu Inoue IFMASK6(ifa).s6_addr32[i]) 92382cd038dSYoshinobu Inoue goto next; 92482cd038dSYoshinobu Inoue } 92582cd038dSYoshinobu Inoue return(1); 92682cd038dSYoshinobu Inoue } 92782cd038dSYoshinobu Inoue 92882cd038dSYoshinobu Inoue /* 92982cd038dSYoshinobu Inoue * Even if the address matches none of our addresses, it might be 93082cd038dSYoshinobu Inoue * in the neighbor cache. 93182cd038dSYoshinobu Inoue */ 9323c404a32SHajimu UMEMOTO if (nd6_lookup(&addr->sin6_addr, 0, ifp) != NULL) 93382cd038dSYoshinobu Inoue return(1); 93482cd038dSYoshinobu Inoue 93582cd038dSYoshinobu Inoue return(0); 93682cd038dSYoshinobu Inoue #undef IFADDR6 93782cd038dSYoshinobu Inoue #undef IFMASK6 93882cd038dSYoshinobu Inoue } 93982cd038dSYoshinobu Inoue 94082cd038dSYoshinobu Inoue /* 94182cd038dSYoshinobu Inoue * Free an nd6 llinfo entry. 94282cd038dSYoshinobu Inoue */ 94333841545SHajimu UMEMOTO struct llinfo_nd6 * 94482cd038dSYoshinobu Inoue nd6_free(rt) 94582cd038dSYoshinobu Inoue struct rtentry *rt; 94682cd038dSYoshinobu Inoue { 94733841545SHajimu UMEMOTO struct llinfo_nd6 *ln = (struct llinfo_nd6 *)rt->rt_llinfo, *next; 948686cdd19SJun-ichiro itojun Hagino struct in6_addr in6 = ((struct sockaddr_in6 *)rt_key(rt))->sin6_addr; 94982cd038dSYoshinobu Inoue struct nd_defrouter *dr; 95082cd038dSYoshinobu Inoue 95182cd038dSYoshinobu Inoue /* 95233841545SHajimu UMEMOTO * we used to have pfctlinput(PRC_HOSTDEAD) here. 95333841545SHajimu UMEMOTO * even though it is not harmful, it was not really necessary. 95482cd038dSYoshinobu Inoue */ 955686cdd19SJun-ichiro itojun Hagino 956686cdd19SJun-ichiro itojun Hagino if (!ip6_forwarding && ip6_accept_rtadv) { /* XXX: too restrictive? */ 957686cdd19SJun-ichiro itojun Hagino int s; 958686cdd19SJun-ichiro itojun Hagino s = splnet(); 959686cdd19SJun-ichiro itojun Hagino dr = defrouter_lookup(&((struct sockaddr_in6 *)rt_key(rt))->sin6_addr, 960686cdd19SJun-ichiro itojun Hagino rt->rt_ifp); 96133841545SHajimu UMEMOTO 962686cdd19SJun-ichiro itojun Hagino if (ln->ln_router || dr) { 963686cdd19SJun-ichiro itojun Hagino /* 964686cdd19SJun-ichiro itojun Hagino * rt6_flush must be called whether or not the neighbor 965686cdd19SJun-ichiro itojun Hagino * is in the Default Router List. 966686cdd19SJun-ichiro itojun Hagino * See a corresponding comment in nd6_na_input(). 967686cdd19SJun-ichiro itojun Hagino */ 968686cdd19SJun-ichiro itojun Hagino rt6_flush(&in6, rt->rt_ifp); 969686cdd19SJun-ichiro itojun Hagino } 970686cdd19SJun-ichiro itojun Hagino 971686cdd19SJun-ichiro itojun Hagino if (dr) { 972686cdd19SJun-ichiro itojun Hagino /* 973686cdd19SJun-ichiro itojun Hagino * Unreachablity of a router might affect the default 974686cdd19SJun-ichiro itojun Hagino * router selection and on-link detection of advertised 975686cdd19SJun-ichiro itojun Hagino * prefixes. 976686cdd19SJun-ichiro itojun Hagino */ 977686cdd19SJun-ichiro itojun Hagino 978686cdd19SJun-ichiro itojun Hagino /* 979686cdd19SJun-ichiro itojun Hagino * Temporarily fake the state to choose a new default 980686cdd19SJun-ichiro itojun Hagino * router and to perform on-link determination of 98188ff5695SSUZUKI Shinsuke * prefixes correctly. 982686cdd19SJun-ichiro itojun Hagino * Below the state will be set correctly, 983686cdd19SJun-ichiro itojun Hagino * or the entry itself will be deleted. 984686cdd19SJun-ichiro itojun Hagino */ 985686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_INCOMPLETE; 986686cdd19SJun-ichiro itojun Hagino 98733841545SHajimu UMEMOTO /* 98833841545SHajimu UMEMOTO * Since defrouter_select() does not affect the 98933841545SHajimu UMEMOTO * on-link determination and MIP6 needs the check 99033841545SHajimu UMEMOTO * before the default router selection, we perform 99133841545SHajimu UMEMOTO * the check now. 99233841545SHajimu UMEMOTO */ 99333841545SHajimu UMEMOTO pfxlist_onlink_check(); 99433841545SHajimu UMEMOTO 995686cdd19SJun-ichiro itojun Hagino if (dr == TAILQ_FIRST(&nd_defrouter)) { 996686cdd19SJun-ichiro itojun Hagino /* 997686cdd19SJun-ichiro itojun Hagino * It is used as the current default router, 998686cdd19SJun-ichiro itojun Hagino * so we have to move it to the end of the 999686cdd19SJun-ichiro itojun Hagino * list and choose a new one. 1000686cdd19SJun-ichiro itojun Hagino * XXX: it is not very efficient if this is 1001686cdd19SJun-ichiro itojun Hagino * the only router. 1002686cdd19SJun-ichiro itojun Hagino */ 1003686cdd19SJun-ichiro itojun Hagino TAILQ_REMOVE(&nd_defrouter, dr, dr_entry); 1004686cdd19SJun-ichiro itojun Hagino TAILQ_INSERT_TAIL(&nd_defrouter, dr, dr_entry); 1005686cdd19SJun-ichiro itojun Hagino 1006686cdd19SJun-ichiro itojun Hagino defrouter_select(); 1007686cdd19SJun-ichiro itojun Hagino } 100882cd038dSYoshinobu Inoue } 100982cd038dSYoshinobu Inoue splx(s); 101082cd038dSYoshinobu Inoue } 101182cd038dSYoshinobu Inoue 101233841545SHajimu UMEMOTO /* 101333841545SHajimu UMEMOTO * Before deleting the entry, remember the next entry as the 101433841545SHajimu UMEMOTO * return value. We need this because pfxlist_onlink_check() above 101533841545SHajimu UMEMOTO * might have freed other entries (particularly the old next entry) as 101633841545SHajimu UMEMOTO * a side effect (XXX). 101733841545SHajimu UMEMOTO */ 101833841545SHajimu UMEMOTO next = ln->ln_next; 1019686cdd19SJun-ichiro itojun Hagino 102033841545SHajimu UMEMOTO /* 102133841545SHajimu UMEMOTO * Detach the route from the routing tree and the list of neighbor 102233841545SHajimu UMEMOTO * caches, and disable the route entry not to be used in already 102333841545SHajimu UMEMOTO * cached routes. 102433841545SHajimu UMEMOTO */ 1025686cdd19SJun-ichiro itojun Hagino rtrequest(RTM_DELETE, rt_key(rt), (struct sockaddr *)0, 1026686cdd19SJun-ichiro itojun Hagino rt_mask(rt), 0, (struct rtentry **)0); 102733841545SHajimu UMEMOTO 102833841545SHajimu UMEMOTO return(next); 102982cd038dSYoshinobu Inoue } 103082cd038dSYoshinobu Inoue 103182cd038dSYoshinobu Inoue /* 103282cd038dSYoshinobu Inoue * Upper-layer reachability hint for Neighbor Unreachability Detection. 103382cd038dSYoshinobu Inoue * 103482cd038dSYoshinobu Inoue * XXX cost-effective metods? 103582cd038dSYoshinobu Inoue */ 103682cd038dSYoshinobu Inoue void 1037686cdd19SJun-ichiro itojun Hagino nd6_nud_hint(rt, dst6, force) 103882cd038dSYoshinobu Inoue struct rtentry *rt; 103982cd038dSYoshinobu Inoue struct in6_addr *dst6; 1040686cdd19SJun-ichiro itojun Hagino int force; 104182cd038dSYoshinobu Inoue { 104282cd038dSYoshinobu Inoue struct llinfo_nd6 *ln; 104382cd038dSYoshinobu Inoue 104482cd038dSYoshinobu Inoue /* 104582cd038dSYoshinobu Inoue * If the caller specified "rt", use that. Otherwise, resolve the 104682cd038dSYoshinobu Inoue * routing table by supplied "dst6". 104782cd038dSYoshinobu Inoue */ 104882cd038dSYoshinobu Inoue if (!rt) { 104982cd038dSYoshinobu Inoue if (!dst6) 105082cd038dSYoshinobu Inoue return; 105182cd038dSYoshinobu Inoue if (!(rt = nd6_lookup(dst6, 0, NULL))) 105282cd038dSYoshinobu Inoue return; 105382cd038dSYoshinobu Inoue } 105482cd038dSYoshinobu Inoue 1055686cdd19SJun-ichiro itojun Hagino if ((rt->rt_flags & RTF_GATEWAY) != 0 || 1056686cdd19SJun-ichiro itojun Hagino (rt->rt_flags & RTF_LLINFO) == 0 || 1057686cdd19SJun-ichiro itojun Hagino !rt->rt_llinfo || !rt->rt_gateway || 1058686cdd19SJun-ichiro itojun Hagino rt->rt_gateway->sa_family != AF_LINK) { 105982cd038dSYoshinobu Inoue /* This is not a host route. */ 106082cd038dSYoshinobu Inoue return; 106182cd038dSYoshinobu Inoue } 106282cd038dSYoshinobu Inoue 106382cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 1064ad8d5711SMunechika SUMIKAWA if (ln->ln_state < ND6_LLINFO_REACHABLE) 106582cd038dSYoshinobu Inoue return; 106682cd038dSYoshinobu Inoue 1067686cdd19SJun-ichiro itojun Hagino /* 1068686cdd19SJun-ichiro itojun Hagino * if we get upper-layer reachability confirmation many times, 1069686cdd19SJun-ichiro itojun Hagino * it is possible we have false information. 1070686cdd19SJun-ichiro itojun Hagino */ 1071686cdd19SJun-ichiro itojun Hagino if (!force) { 1072686cdd19SJun-ichiro itojun Hagino ln->ln_byhint++; 1073686cdd19SJun-ichiro itojun Hagino if (ln->ln_byhint > nd6_maxnudhint) 1074686cdd19SJun-ichiro itojun Hagino return; 1075686cdd19SJun-ichiro itojun Hagino } 1076686cdd19SJun-ichiro itojun Hagino 107782cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 107882cd038dSYoshinobu Inoue if (ln->ln_expire) 107982cd038dSYoshinobu Inoue ln->ln_expire = time_second + 108082cd038dSYoshinobu Inoue nd_ifinfo[rt->rt_ifp->if_index].reachable; 108182cd038dSYoshinobu Inoue } 108282cd038dSYoshinobu Inoue 108382cd038dSYoshinobu Inoue void 10848071913dSRuslan Ermilov nd6_rtrequest(req, rt, info) 108582cd038dSYoshinobu Inoue int req; 108682cd038dSYoshinobu Inoue struct rtentry *rt; 10878071913dSRuslan Ermilov struct rt_addrinfo *info; /* xxx unused */ 108882cd038dSYoshinobu Inoue { 108982cd038dSYoshinobu Inoue struct sockaddr *gate = rt->rt_gateway; 109082cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = (struct llinfo_nd6 *)rt->rt_llinfo; 109182cd038dSYoshinobu Inoue static struct sockaddr_dl null_sdl = {sizeof(null_sdl), AF_LINK}; 109282cd038dSYoshinobu Inoue struct ifnet *ifp = rt->rt_ifp; 109382cd038dSYoshinobu Inoue struct ifaddr *ifa; 109482cd038dSYoshinobu Inoue 109588ff5695SSUZUKI Shinsuke if ((rt->rt_flags & RTF_GATEWAY)) 109682cd038dSYoshinobu Inoue return; 109782cd038dSYoshinobu Inoue 109833841545SHajimu UMEMOTO if (nd6_need_cache(ifp) == 0 && (rt->rt_flags & RTF_HOST) == 0) { 109933841545SHajimu UMEMOTO /* 110033841545SHajimu UMEMOTO * This is probably an interface direct route for a link 110133841545SHajimu UMEMOTO * which does not need neighbor caches (e.g. fe80::%lo0/64). 110233841545SHajimu UMEMOTO * We do not need special treatment below for such a route. 110333841545SHajimu UMEMOTO * Moreover, the RTF_LLINFO flag which would be set below 110433841545SHajimu UMEMOTO * would annoy the ndp(8) command. 110533841545SHajimu UMEMOTO */ 110633841545SHajimu UMEMOTO return; 110733841545SHajimu UMEMOTO } 110833841545SHajimu UMEMOTO 1109c3cf07a1SHajimu UMEMOTO if (req == RTM_RESOLVE && 1110c3cf07a1SHajimu UMEMOTO (nd6_need_cache(ifp) == 0 || /* stf case */ 1111c3cf07a1SHajimu UMEMOTO !nd6_is_addr_neighbor((struct sockaddr_in6 *)rt_key(rt), ifp))) { 1112c3cf07a1SHajimu UMEMOTO /* 1113c3cf07a1SHajimu UMEMOTO * FreeBSD and BSD/OS often make a cloned host route based 1114c3cf07a1SHajimu UMEMOTO * on a less-specific route (e.g. the default route). 1115c3cf07a1SHajimu UMEMOTO * If the less specific route does not have a "gateway" 1116c3cf07a1SHajimu UMEMOTO * (this is the case when the route just goes to a p2p or an 1117c3cf07a1SHajimu UMEMOTO * stf interface), we'll mistakenly make a neighbor cache for 1118c3cf07a1SHajimu UMEMOTO * the host route, and will see strange neighbor solicitation 1119c3cf07a1SHajimu UMEMOTO * for the corresponding destination. In order to avoid the 1120c3cf07a1SHajimu UMEMOTO * confusion, we check if the destination of the route is 1121c3cf07a1SHajimu UMEMOTO * a neighbor in terms of neighbor discovery, and stop the 1122c3cf07a1SHajimu UMEMOTO * process if not. Additionally, we remove the LLINFO flag 1123c3cf07a1SHajimu UMEMOTO * so that ndp(8) will not try to get the neighbor information 1124c3cf07a1SHajimu UMEMOTO * of the destination. 1125c3cf07a1SHajimu UMEMOTO */ 1126c3cf07a1SHajimu UMEMOTO rt->rt_flags &= ~RTF_LLINFO; 1127c3cf07a1SHajimu UMEMOTO return; 1128c3cf07a1SHajimu UMEMOTO } 1129c3cf07a1SHajimu UMEMOTO 113082cd038dSYoshinobu Inoue switch (req) { 113182cd038dSYoshinobu Inoue case RTM_ADD: 113282cd038dSYoshinobu Inoue /* 113382cd038dSYoshinobu Inoue * There is no backward compatibility :) 113482cd038dSYoshinobu Inoue * 113582cd038dSYoshinobu Inoue * if ((rt->rt_flags & RTF_HOST) == 0 && 113682cd038dSYoshinobu Inoue * SIN(rt_mask(rt))->sin_addr.s_addr != 0xffffffff) 113782cd038dSYoshinobu Inoue * rt->rt_flags |= RTF_CLONING; 113882cd038dSYoshinobu Inoue */ 1139686cdd19SJun-ichiro itojun Hagino if (rt->rt_flags & (RTF_CLONING | RTF_LLINFO)) { 114082cd038dSYoshinobu Inoue /* 114182cd038dSYoshinobu Inoue * Case 1: This route should come from 114282cd038dSYoshinobu Inoue * a route to interface. RTF_LLINFO flag is set 114382cd038dSYoshinobu Inoue * for a host route whose destination should be 114482cd038dSYoshinobu Inoue * treated as on-link. 114582cd038dSYoshinobu Inoue */ 114682cd038dSYoshinobu Inoue rt_setgate(rt, rt_key(rt), 114782cd038dSYoshinobu Inoue (struct sockaddr *)&null_sdl); 114882cd038dSYoshinobu Inoue gate = rt->rt_gateway; 114982cd038dSYoshinobu Inoue SDL(gate)->sdl_type = ifp->if_type; 115082cd038dSYoshinobu Inoue SDL(gate)->sdl_index = ifp->if_index; 115182cd038dSYoshinobu Inoue if (ln) 115282cd038dSYoshinobu Inoue ln->ln_expire = time_second; 1153686cdd19SJun-ichiro itojun Hagino #if 1 115482cd038dSYoshinobu Inoue if (ln && ln->ln_expire == 0) { 115533841545SHajimu UMEMOTO /* kludge for desktops */ 1156686cdd19SJun-ichiro itojun Hagino #if 0 115788ff5695SSUZUKI Shinsuke printf("nd6_rtequest: time.tv_sec is zero; " 1158686cdd19SJun-ichiro itojun Hagino "treat it as 1\n"); 1159686cdd19SJun-ichiro itojun Hagino #endif 116082cd038dSYoshinobu Inoue ln->ln_expire = 1; 116182cd038dSYoshinobu Inoue } 1162686cdd19SJun-ichiro itojun Hagino #endif 116388ff5695SSUZUKI Shinsuke if ((rt->rt_flags & RTF_CLONING)) 116482cd038dSYoshinobu Inoue break; 116582cd038dSYoshinobu Inoue } 1166686cdd19SJun-ichiro itojun Hagino /* 1167686cdd19SJun-ichiro itojun Hagino * In IPv4 code, we try to annonuce new RTF_ANNOUNCE entry here. 1168686cdd19SJun-ichiro itojun Hagino * We don't do that here since llinfo is not ready yet. 1169686cdd19SJun-ichiro itojun Hagino * 1170686cdd19SJun-ichiro itojun Hagino * There are also couple of other things to be discussed: 1171686cdd19SJun-ichiro itojun Hagino * - unsolicited NA code needs improvement beforehand 1172686cdd19SJun-ichiro itojun Hagino * - RFC2461 says we MAY send multicast unsolicited NA 1173686cdd19SJun-ichiro itojun Hagino * (7.2.6 paragraph 4), however, it also says that we 1174686cdd19SJun-ichiro itojun Hagino * SHOULD provide a mechanism to prevent multicast NA storm. 1175686cdd19SJun-ichiro itojun Hagino * we don't have anything like it right now. 117633841545SHajimu UMEMOTO * note that the mechanism needs a mutual agreement 1177686cdd19SJun-ichiro itojun Hagino * between proxies, which means that we need to implement 117833841545SHajimu UMEMOTO * a new protocol, or a new kludge. 117933841545SHajimu UMEMOTO * - from RFC2461 6.2.4, host MUST NOT send an unsolicited NA. 1180686cdd19SJun-ichiro itojun Hagino * we need to check ip6forwarding before sending it. 1181686cdd19SJun-ichiro itojun Hagino * (or should we allow proxy ND configuration only for 1182686cdd19SJun-ichiro itojun Hagino * routers? there's no mention about proxy ND from hosts) 1183686cdd19SJun-ichiro itojun Hagino */ 1184686cdd19SJun-ichiro itojun Hagino #if 0 1185686cdd19SJun-ichiro itojun Hagino /* XXX it does not work */ 118682cd038dSYoshinobu Inoue if (rt->rt_flags & RTF_ANNOUNCE) 118782cd038dSYoshinobu Inoue nd6_na_output(ifp, 118882cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr, 118982cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr, 119082cd038dSYoshinobu Inoue ip6_forwarding ? ND_NA_FLAG_ROUTER : 0, 1191686cdd19SJun-ichiro itojun Hagino 1, NULL); 1192686cdd19SJun-ichiro itojun Hagino #endif 119382cd038dSYoshinobu Inoue /* FALLTHROUGH */ 119482cd038dSYoshinobu Inoue case RTM_RESOLVE: 119533841545SHajimu UMEMOTO if ((ifp->if_flags & (IFF_POINTOPOINT | IFF_LOOPBACK)) == 0) { 1196686cdd19SJun-ichiro itojun Hagino /* 1197686cdd19SJun-ichiro itojun Hagino * Address resolution isn't necessary for a point to 1198686cdd19SJun-ichiro itojun Hagino * point link, so we can skip this test for a p2p link. 1199686cdd19SJun-ichiro itojun Hagino */ 120082cd038dSYoshinobu Inoue if (gate->sa_family != AF_LINK || 120182cd038dSYoshinobu Inoue gate->sa_len < sizeof(null_sdl)) { 1202686cdd19SJun-ichiro itojun Hagino log(LOG_DEBUG, 120333841545SHajimu UMEMOTO "nd6_rtrequest: bad gateway value: %s\n", 120433841545SHajimu UMEMOTO if_name(ifp)); 120582cd038dSYoshinobu Inoue break; 120682cd038dSYoshinobu Inoue } 120782cd038dSYoshinobu Inoue SDL(gate)->sdl_type = ifp->if_type; 120882cd038dSYoshinobu Inoue SDL(gate)->sdl_index = ifp->if_index; 1209686cdd19SJun-ichiro itojun Hagino } 1210686cdd19SJun-ichiro itojun Hagino if (ln != NULL) 121182cd038dSYoshinobu Inoue break; /* This happens on a route change */ 121282cd038dSYoshinobu Inoue /* 121382cd038dSYoshinobu Inoue * Case 2: This route may come from cloning, or a manual route 121482cd038dSYoshinobu Inoue * add with a LL address. 121582cd038dSYoshinobu Inoue */ 121682cd038dSYoshinobu Inoue R_Malloc(ln, struct llinfo_nd6 *, sizeof(*ln)); 121782cd038dSYoshinobu Inoue rt->rt_llinfo = (caddr_t)ln; 121882cd038dSYoshinobu Inoue if (!ln) { 121982cd038dSYoshinobu Inoue log(LOG_DEBUG, "nd6_rtrequest: malloc failed\n"); 122082cd038dSYoshinobu Inoue break; 122182cd038dSYoshinobu Inoue } 122282cd038dSYoshinobu Inoue nd6_inuse++; 122382cd038dSYoshinobu Inoue nd6_allocated++; 122482cd038dSYoshinobu Inoue Bzero(ln, sizeof(*ln)); 122582cd038dSYoshinobu Inoue ln->ln_rt = rt; 122682cd038dSYoshinobu Inoue /* this is required for "ndp" command. - shin */ 122782cd038dSYoshinobu Inoue if (req == RTM_ADD) { 122882cd038dSYoshinobu Inoue /* 122982cd038dSYoshinobu Inoue * gate should have some valid AF_LINK entry, 123082cd038dSYoshinobu Inoue * and ln->ln_expire should have some lifetime 123182cd038dSYoshinobu Inoue * which is specified by ndp command. 123282cd038dSYoshinobu Inoue */ 123382cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 1234686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 123582cd038dSYoshinobu Inoue } else { 123682cd038dSYoshinobu Inoue /* 123782cd038dSYoshinobu Inoue * When req == RTM_RESOLVE, rt is created and 123882cd038dSYoshinobu Inoue * initialized in rtrequest(), so rt_expire is 0. 123982cd038dSYoshinobu Inoue */ 1240686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_NOSTATE; 124182cd038dSYoshinobu Inoue ln->ln_expire = time_second; 124282cd038dSYoshinobu Inoue } 124382cd038dSYoshinobu Inoue rt->rt_flags |= RTF_LLINFO; 124482cd038dSYoshinobu Inoue ln->ln_next = llinfo_nd6.ln_next; 124582cd038dSYoshinobu Inoue llinfo_nd6.ln_next = ln; 124682cd038dSYoshinobu Inoue ln->ln_prev = &llinfo_nd6; 124782cd038dSYoshinobu Inoue ln->ln_next->ln_prev = ln; 124882cd038dSYoshinobu Inoue 124982cd038dSYoshinobu Inoue /* 125082cd038dSYoshinobu Inoue * check if rt_key(rt) is one of my address assigned 125182cd038dSYoshinobu Inoue * to the interface. 125282cd038dSYoshinobu Inoue */ 125382cd038dSYoshinobu Inoue ifa = (struct ifaddr *)in6ifa_ifpwithaddr(rt->rt_ifp, 125482cd038dSYoshinobu Inoue &SIN6(rt_key(rt))->sin6_addr); 125582cd038dSYoshinobu Inoue if (ifa) { 125682cd038dSYoshinobu Inoue caddr_t macp = nd6_ifptomac(ifp); 125782cd038dSYoshinobu Inoue ln->ln_expire = 0; 125882cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_REACHABLE; 1259686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 126082cd038dSYoshinobu Inoue if (macp) { 126182cd038dSYoshinobu Inoue Bcopy(macp, LLADDR(SDL(gate)), ifp->if_addrlen); 126282cd038dSYoshinobu Inoue SDL(gate)->sdl_alen = ifp->if_addrlen; 126382cd038dSYoshinobu Inoue } 126482cd038dSYoshinobu Inoue if (nd6_useloopback) { 126582cd038dSYoshinobu Inoue rt->rt_ifp = &loif[0]; /* XXX */ 126682cd038dSYoshinobu Inoue /* 126782cd038dSYoshinobu Inoue * Make sure rt_ifa be equal to the ifaddr 126882cd038dSYoshinobu Inoue * corresponding to the address. 126982cd038dSYoshinobu Inoue * We need this because when we refer 127082cd038dSYoshinobu Inoue * rt_ifa->ia6_flags in ip6_input, we assume 127182cd038dSYoshinobu Inoue * that the rt_ifa points to the address instead 127282cd038dSYoshinobu Inoue * of the loopback address. 127382cd038dSYoshinobu Inoue */ 127482cd038dSYoshinobu Inoue if (ifa != rt->rt_ifa) { 1275686cdd19SJun-ichiro itojun Hagino IFAFREE(rt->rt_ifa); 127633841545SHajimu UMEMOTO IFAREF(ifa); 127782cd038dSYoshinobu Inoue rt->rt_ifa = ifa; 127882cd038dSYoshinobu Inoue } 127982cd038dSYoshinobu Inoue } 1280686cdd19SJun-ichiro itojun Hagino } else if (rt->rt_flags & RTF_ANNOUNCE) { 1281686cdd19SJun-ichiro itojun Hagino ln->ln_expire = 0; 1282686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_REACHABLE; 1283686cdd19SJun-ichiro itojun Hagino ln->ln_byhint = 0; 1284686cdd19SJun-ichiro itojun Hagino 1285686cdd19SJun-ichiro itojun Hagino /* join solicited node multicast for proxy ND */ 1286686cdd19SJun-ichiro itojun Hagino if (ifp->if_flags & IFF_MULTICAST) { 1287686cdd19SJun-ichiro itojun Hagino struct in6_addr llsol; 1288686cdd19SJun-ichiro itojun Hagino int error; 1289686cdd19SJun-ichiro itojun Hagino 1290686cdd19SJun-ichiro itojun Hagino llsol = SIN6(rt_key(rt))->sin6_addr; 1291686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[0] = htons(0xff02); 1292686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[1] = htons(ifp->if_index); 1293686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[1] = 0; 1294686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[2] = htonl(1); 1295686cdd19SJun-ichiro itojun Hagino llsol.s6_addr8[12] = 0xff; 1296686cdd19SJun-ichiro itojun Hagino 129733841545SHajimu UMEMOTO if (!in6_addmulti(&llsol, ifp, &error)) { 129833841545SHajimu UMEMOTO nd6log((LOG_ERR, "%s: failed to join " 129933841545SHajimu UMEMOTO "%s (errno=%d)\n", if_name(ifp), 130033841545SHajimu UMEMOTO ip6_sprintf(&llsol), error)); 130133841545SHajimu UMEMOTO } 1302686cdd19SJun-ichiro itojun Hagino } 130382cd038dSYoshinobu Inoue } 130482cd038dSYoshinobu Inoue break; 130582cd038dSYoshinobu Inoue 130682cd038dSYoshinobu Inoue case RTM_DELETE: 130782cd038dSYoshinobu Inoue if (!ln) 130882cd038dSYoshinobu Inoue break; 1309686cdd19SJun-ichiro itojun Hagino /* leave from solicited node multicast for proxy ND */ 1310686cdd19SJun-ichiro itojun Hagino if ((rt->rt_flags & RTF_ANNOUNCE) != 0 && 1311686cdd19SJun-ichiro itojun Hagino (ifp->if_flags & IFF_MULTICAST) != 0) { 1312686cdd19SJun-ichiro itojun Hagino struct in6_addr llsol; 1313686cdd19SJun-ichiro itojun Hagino struct in6_multi *in6m; 1314686cdd19SJun-ichiro itojun Hagino 1315686cdd19SJun-ichiro itojun Hagino llsol = SIN6(rt_key(rt))->sin6_addr; 1316686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[0] = htons(0xff02); 1317686cdd19SJun-ichiro itojun Hagino llsol.s6_addr16[1] = htons(ifp->if_index); 1318686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[1] = 0; 1319686cdd19SJun-ichiro itojun Hagino llsol.s6_addr32[2] = htonl(1); 1320686cdd19SJun-ichiro itojun Hagino llsol.s6_addr8[12] = 0xff; 1321686cdd19SJun-ichiro itojun Hagino 1322686cdd19SJun-ichiro itojun Hagino IN6_LOOKUP_MULTI(llsol, ifp, in6m); 1323686cdd19SJun-ichiro itojun Hagino if (in6m) 1324686cdd19SJun-ichiro itojun Hagino in6_delmulti(in6m); 1325686cdd19SJun-ichiro itojun Hagino } 132682cd038dSYoshinobu Inoue nd6_inuse--; 132782cd038dSYoshinobu Inoue ln->ln_next->ln_prev = ln->ln_prev; 132882cd038dSYoshinobu Inoue ln->ln_prev->ln_next = ln->ln_next; 132982cd038dSYoshinobu Inoue ln->ln_prev = NULL; 133082cd038dSYoshinobu Inoue rt->rt_llinfo = 0; 133182cd038dSYoshinobu Inoue rt->rt_flags &= ~RTF_LLINFO; 133282cd038dSYoshinobu Inoue if (ln->ln_hold) 133382cd038dSYoshinobu Inoue m_freem(ln->ln_hold); 133482cd038dSYoshinobu Inoue Free((caddr_t)ln); 133582cd038dSYoshinobu Inoue } 133682cd038dSYoshinobu Inoue } 133782cd038dSYoshinobu Inoue 133882cd038dSYoshinobu Inoue int 133982cd038dSYoshinobu Inoue nd6_ioctl(cmd, data, ifp) 134082cd038dSYoshinobu Inoue u_long cmd; 134182cd038dSYoshinobu Inoue caddr_t data; 134282cd038dSYoshinobu Inoue struct ifnet *ifp; 134382cd038dSYoshinobu Inoue { 134482cd038dSYoshinobu Inoue struct in6_drlist *drl = (struct in6_drlist *)data; 134582cd038dSYoshinobu Inoue struct in6_prlist *prl = (struct in6_prlist *)data; 134682cd038dSYoshinobu Inoue struct in6_ndireq *ndi = (struct in6_ndireq *)data; 134782cd038dSYoshinobu Inoue struct in6_nbrinfo *nbi = (struct in6_nbrinfo *)data; 1348686cdd19SJun-ichiro itojun Hagino struct in6_ndifreq *ndif = (struct in6_ndifreq *)data; 134982cd038dSYoshinobu Inoue struct nd_defrouter *dr, any; 135082cd038dSYoshinobu Inoue struct nd_prefix *pr; 135182cd038dSYoshinobu Inoue struct rtentry *rt; 135282cd038dSYoshinobu Inoue int i = 0, error = 0; 135382cd038dSYoshinobu Inoue int s; 135482cd038dSYoshinobu Inoue 135582cd038dSYoshinobu Inoue switch (cmd) { 135682cd038dSYoshinobu Inoue case SIOCGDRLST_IN6: 135733841545SHajimu UMEMOTO /* 135833841545SHajimu UMEMOTO * obsolete API, use sysctl under net.inet6.icmp6 135933841545SHajimu UMEMOTO */ 136082cd038dSYoshinobu Inoue bzero(drl, sizeof(*drl)); 136182cd038dSYoshinobu Inoue s = splnet(); 1362686cdd19SJun-ichiro itojun Hagino dr = TAILQ_FIRST(&nd_defrouter); 136382cd038dSYoshinobu Inoue while (dr && i < DRLSTSIZ) { 136482cd038dSYoshinobu Inoue drl->defrouter[i].rtaddr = dr->rtaddr; 136582cd038dSYoshinobu Inoue if (IN6_IS_ADDR_LINKLOCAL(&drl->defrouter[i].rtaddr)) { 136682cd038dSYoshinobu Inoue /* XXX: need to this hack for KAME stack */ 136782cd038dSYoshinobu Inoue drl->defrouter[i].rtaddr.s6_addr16[1] = 0; 136882cd038dSYoshinobu Inoue } else 136982cd038dSYoshinobu Inoue log(LOG_ERR, 137082cd038dSYoshinobu Inoue "default router list contains a " 137182cd038dSYoshinobu Inoue "non-linklocal address(%s)\n", 137282cd038dSYoshinobu Inoue ip6_sprintf(&drl->defrouter[i].rtaddr)); 137382cd038dSYoshinobu Inoue 137482cd038dSYoshinobu Inoue drl->defrouter[i].flags = dr->flags; 137582cd038dSYoshinobu Inoue drl->defrouter[i].rtlifetime = dr->rtlifetime; 137682cd038dSYoshinobu Inoue drl->defrouter[i].expire = dr->expire; 137782cd038dSYoshinobu Inoue drl->defrouter[i].if_index = dr->ifp->if_index; 137882cd038dSYoshinobu Inoue i++; 1379686cdd19SJun-ichiro itojun Hagino dr = TAILQ_NEXT(dr, dr_entry); 138082cd038dSYoshinobu Inoue } 138182cd038dSYoshinobu Inoue splx(s); 138282cd038dSYoshinobu Inoue break; 138382cd038dSYoshinobu Inoue case SIOCGPRLST_IN6: 1384686cdd19SJun-ichiro itojun Hagino /* 138533841545SHajimu UMEMOTO * obsolete API, use sysctl under net.inet6.icmp6 138633841545SHajimu UMEMOTO */ 138733841545SHajimu UMEMOTO /* 1388686cdd19SJun-ichiro itojun Hagino * XXX meaning of fields, especialy "raflags", is very 1389686cdd19SJun-ichiro itojun Hagino * differnet between RA prefix list and RR/static prefix list. 1390686cdd19SJun-ichiro itojun Hagino * how about separating ioctls into two? 1391686cdd19SJun-ichiro itojun Hagino */ 139282cd038dSYoshinobu Inoue bzero(prl, sizeof(*prl)); 139382cd038dSYoshinobu Inoue s = splnet(); 1394686cdd19SJun-ichiro itojun Hagino pr = nd_prefix.lh_first; 139582cd038dSYoshinobu Inoue while (pr && i < PRLSTSIZ) { 139682cd038dSYoshinobu Inoue struct nd_pfxrouter *pfr; 139782cd038dSYoshinobu Inoue int j; 139882cd038dSYoshinobu Inoue 139933841545SHajimu UMEMOTO (void)in6_embedscope(&prl->prefix[i].prefix, 140033841545SHajimu UMEMOTO &pr->ndpr_prefix, NULL, NULL); 140182cd038dSYoshinobu Inoue prl->prefix[i].raflags = pr->ndpr_raf; 140282cd038dSYoshinobu Inoue prl->prefix[i].prefixlen = pr->ndpr_plen; 140382cd038dSYoshinobu Inoue prl->prefix[i].vltime = pr->ndpr_vltime; 140482cd038dSYoshinobu Inoue prl->prefix[i].pltime = pr->ndpr_pltime; 140582cd038dSYoshinobu Inoue prl->prefix[i].if_index = pr->ndpr_ifp->if_index; 140682cd038dSYoshinobu Inoue prl->prefix[i].expire = pr->ndpr_expire; 140782cd038dSYoshinobu Inoue 1408686cdd19SJun-ichiro itojun Hagino pfr = pr->ndpr_advrtrs.lh_first; 140982cd038dSYoshinobu Inoue j = 0; 141082cd038dSYoshinobu Inoue while (pfr) { 141182cd038dSYoshinobu Inoue if (j < DRLSTSIZ) { 141282cd038dSYoshinobu Inoue #define RTRADDR prl->prefix[i].advrtr[j] 141382cd038dSYoshinobu Inoue RTRADDR = pfr->router->rtaddr; 141482cd038dSYoshinobu Inoue if (IN6_IS_ADDR_LINKLOCAL(&RTRADDR)) { 141582cd038dSYoshinobu Inoue /* XXX: hack for KAME */ 141682cd038dSYoshinobu Inoue RTRADDR.s6_addr16[1] = 0; 141782cd038dSYoshinobu Inoue } else 141882cd038dSYoshinobu Inoue log(LOG_ERR, 141982cd038dSYoshinobu Inoue "a router(%s) advertises " 142082cd038dSYoshinobu Inoue "a prefix with " 142182cd038dSYoshinobu Inoue "non-link local address\n", 142282cd038dSYoshinobu Inoue ip6_sprintf(&RTRADDR)); 142382cd038dSYoshinobu Inoue #undef RTRADDR 142482cd038dSYoshinobu Inoue } 142582cd038dSYoshinobu Inoue j++; 1426686cdd19SJun-ichiro itojun Hagino pfr = pfr->pfr_next; 142782cd038dSYoshinobu Inoue } 142882cd038dSYoshinobu Inoue prl->prefix[i].advrtrs = j; 1429686cdd19SJun-ichiro itojun Hagino prl->prefix[i].origin = PR_ORIG_RA; 143082cd038dSYoshinobu Inoue 143182cd038dSYoshinobu Inoue i++; 1432686cdd19SJun-ichiro itojun Hagino pr = pr->ndpr_next; 143382cd038dSYoshinobu Inoue } 143482cd038dSYoshinobu Inoue { 143582cd038dSYoshinobu Inoue struct rr_prefix *rpp; 143682cd038dSYoshinobu Inoue 143782cd038dSYoshinobu Inoue for (rpp = LIST_FIRST(&rr_prefix); rpp; 143882cd038dSYoshinobu Inoue rpp = LIST_NEXT(rpp, rp_entry)) { 143982cd038dSYoshinobu Inoue if (i >= PRLSTSIZ) 144082cd038dSYoshinobu Inoue break; 144133841545SHajimu UMEMOTO (void)in6_embedscope(&prl->prefix[i].prefix, 144233841545SHajimu UMEMOTO &pr->ndpr_prefix, NULL, NULL); 144382cd038dSYoshinobu Inoue prl->prefix[i].raflags = rpp->rp_raf; 144482cd038dSYoshinobu Inoue prl->prefix[i].prefixlen = rpp->rp_plen; 144582cd038dSYoshinobu Inoue prl->prefix[i].vltime = rpp->rp_vltime; 144682cd038dSYoshinobu Inoue prl->prefix[i].pltime = rpp->rp_pltime; 144782cd038dSYoshinobu Inoue prl->prefix[i].if_index = rpp->rp_ifp->if_index; 144882cd038dSYoshinobu Inoue prl->prefix[i].expire = rpp->rp_expire; 144982cd038dSYoshinobu Inoue prl->prefix[i].advrtrs = 0; 1450686cdd19SJun-ichiro itojun Hagino prl->prefix[i].origin = rpp->rp_origin; 145182cd038dSYoshinobu Inoue i++; 145282cd038dSYoshinobu Inoue } 145382cd038dSYoshinobu Inoue } 1454686cdd19SJun-ichiro itojun Hagino splx(s); 145582cd038dSYoshinobu Inoue 145682cd038dSYoshinobu Inoue break; 145733841545SHajimu UMEMOTO case OSIOCGIFINFO_IN6: 145833841545SHajimu UMEMOTO if (!nd_ifinfo || i >= nd_ifinfo_indexlim) { 145933841545SHajimu UMEMOTO error = EINVAL; 146033841545SHajimu UMEMOTO break; 146133841545SHajimu UMEMOTO } 146233841545SHajimu UMEMOTO ndi->ndi.linkmtu = nd_ifinfo[ifp->if_index].linkmtu; 146333841545SHajimu UMEMOTO ndi->ndi.maxmtu = nd_ifinfo[ifp->if_index].maxmtu; 146433841545SHajimu UMEMOTO ndi->ndi.basereachable = 146533841545SHajimu UMEMOTO nd_ifinfo[ifp->if_index].basereachable; 146633841545SHajimu UMEMOTO ndi->ndi.reachable = nd_ifinfo[ifp->if_index].reachable; 146733841545SHajimu UMEMOTO ndi->ndi.retrans = nd_ifinfo[ifp->if_index].retrans; 146833841545SHajimu UMEMOTO ndi->ndi.flags = nd_ifinfo[ifp->if_index].flags; 146933841545SHajimu UMEMOTO ndi->ndi.recalctm = nd_ifinfo[ifp->if_index].recalctm; 147033841545SHajimu UMEMOTO ndi->ndi.chlim = nd_ifinfo[ifp->if_index].chlim; 147133841545SHajimu UMEMOTO ndi->ndi.receivedra = nd_ifinfo[ifp->if_index].receivedra; 147233841545SHajimu UMEMOTO break; 147382cd038dSYoshinobu Inoue case SIOCGIFINFO_IN6: 1474686cdd19SJun-ichiro itojun Hagino if (!nd_ifinfo || i >= nd_ifinfo_indexlim) { 1475686cdd19SJun-ichiro itojun Hagino error = EINVAL; 1476686cdd19SJun-ichiro itojun Hagino break; 1477686cdd19SJun-ichiro itojun Hagino } 147882cd038dSYoshinobu Inoue ndi->ndi = nd_ifinfo[ifp->if_index]; 147982cd038dSYoshinobu Inoue break; 1480686cdd19SJun-ichiro itojun Hagino case SIOCSIFINFO_FLAGS: 1481686cdd19SJun-ichiro itojun Hagino /* XXX: almost all other fields of ndi->ndi is unused */ 1482686cdd19SJun-ichiro itojun Hagino if (!nd_ifinfo || i >= nd_ifinfo_indexlim) { 1483686cdd19SJun-ichiro itojun Hagino error = EINVAL; 1484686cdd19SJun-ichiro itojun Hagino break; 1485686cdd19SJun-ichiro itojun Hagino } 1486686cdd19SJun-ichiro itojun Hagino nd_ifinfo[ifp->if_index].flags = ndi->ndi.flags; 1487686cdd19SJun-ichiro itojun Hagino break; 1488686cdd19SJun-ichiro itojun Hagino case SIOCSNDFLUSH_IN6: /* XXX: the ioctl name is confusing... */ 148982cd038dSYoshinobu Inoue /* flush default router list */ 149082cd038dSYoshinobu Inoue /* 149182cd038dSYoshinobu Inoue * xxx sumikawa: should not delete route if default 149282cd038dSYoshinobu Inoue * route equals to the top of default router list 149382cd038dSYoshinobu Inoue */ 149482cd038dSYoshinobu Inoue bzero(&any, sizeof(any)); 149582cd038dSYoshinobu Inoue defrouter_delreq(&any, 0); 1496686cdd19SJun-ichiro itojun Hagino defrouter_select(); 149782cd038dSYoshinobu Inoue /* xxx sumikawa: flush prefix list */ 149882cd038dSYoshinobu Inoue break; 149982cd038dSYoshinobu Inoue case SIOCSPFXFLUSH_IN6: 150082cd038dSYoshinobu Inoue { 150182cd038dSYoshinobu Inoue /* flush all the prefix advertised by routers */ 150282cd038dSYoshinobu Inoue struct nd_prefix *pr, *next; 150382cd038dSYoshinobu Inoue 150482cd038dSYoshinobu Inoue s = splnet(); 1505686cdd19SJun-ichiro itojun Hagino for (pr = nd_prefix.lh_first; pr; pr = next) { 150633841545SHajimu UMEMOTO struct in6_ifaddr *ia, *ia_next; 150733841545SHajimu UMEMOTO 1508686cdd19SJun-ichiro itojun Hagino next = pr->ndpr_next; 150933841545SHajimu UMEMOTO 151033841545SHajimu UMEMOTO if (IN6_IS_ADDR_LINKLOCAL(&pr->ndpr_prefix.sin6_addr)) 151133841545SHajimu UMEMOTO continue; /* XXX */ 151233841545SHajimu UMEMOTO 151333841545SHajimu UMEMOTO /* do we really have to remove addresses as well? */ 151433841545SHajimu UMEMOTO for (ia = in6_ifaddr; ia; ia = ia_next) { 151533841545SHajimu UMEMOTO /* ia might be removed. keep the next ptr. */ 151633841545SHajimu UMEMOTO ia_next = ia->ia_next; 151733841545SHajimu UMEMOTO 151833841545SHajimu UMEMOTO if ((ia->ia6_flags & IN6_IFF_AUTOCONF) == 0) 151933841545SHajimu UMEMOTO continue; 152033841545SHajimu UMEMOTO 152133841545SHajimu UMEMOTO if (ia->ia6_ndpr == pr) 152233841545SHajimu UMEMOTO in6_purgeaddr(&ia->ia_ifa); 152333841545SHajimu UMEMOTO } 152482cd038dSYoshinobu Inoue prelist_remove(pr); 152582cd038dSYoshinobu Inoue } 152682cd038dSYoshinobu Inoue splx(s); 152782cd038dSYoshinobu Inoue break; 152882cd038dSYoshinobu Inoue } 152982cd038dSYoshinobu Inoue case SIOCSRTRFLUSH_IN6: 153082cd038dSYoshinobu Inoue { 153182cd038dSYoshinobu Inoue /* flush all the default routers */ 153282cd038dSYoshinobu Inoue struct nd_defrouter *dr, *next; 153382cd038dSYoshinobu Inoue 153482cd038dSYoshinobu Inoue s = splnet(); 1535686cdd19SJun-ichiro itojun Hagino if ((dr = TAILQ_FIRST(&nd_defrouter)) != NULL) { 153682cd038dSYoshinobu Inoue /* 153782cd038dSYoshinobu Inoue * The first entry of the list may be stored in 153882cd038dSYoshinobu Inoue * the routing table, so we'll delete it later. 153982cd038dSYoshinobu Inoue */ 1540686cdd19SJun-ichiro itojun Hagino for (dr = TAILQ_NEXT(dr, dr_entry); dr; dr = next) { 1541686cdd19SJun-ichiro itojun Hagino next = TAILQ_NEXT(dr, dr_entry); 154282cd038dSYoshinobu Inoue defrtrlist_del(dr); 154382cd038dSYoshinobu Inoue } 1544686cdd19SJun-ichiro itojun Hagino defrtrlist_del(TAILQ_FIRST(&nd_defrouter)); 154582cd038dSYoshinobu Inoue } 154682cd038dSYoshinobu Inoue splx(s); 154782cd038dSYoshinobu Inoue break; 154882cd038dSYoshinobu Inoue } 154982cd038dSYoshinobu Inoue case SIOCGNBRINFO_IN6: 155082cd038dSYoshinobu Inoue { 155182cd038dSYoshinobu Inoue struct llinfo_nd6 *ln; 155282cd038dSYoshinobu Inoue struct in6_addr nb_addr = nbi->addr; /* make local for safety */ 155382cd038dSYoshinobu Inoue 155482cd038dSYoshinobu Inoue /* 155582cd038dSYoshinobu Inoue * XXX: KAME specific hack for scoped addresses 155682cd038dSYoshinobu Inoue * XXXX: for other scopes than link-local? 155782cd038dSYoshinobu Inoue */ 155882cd038dSYoshinobu Inoue if (IN6_IS_ADDR_LINKLOCAL(&nbi->addr) || 155982cd038dSYoshinobu Inoue IN6_IS_ADDR_MC_LINKLOCAL(&nbi->addr)) { 156082cd038dSYoshinobu Inoue u_int16_t *idp = (u_int16_t *)&nb_addr.s6_addr[2]; 156182cd038dSYoshinobu Inoue 156282cd038dSYoshinobu Inoue if (*idp == 0) 156382cd038dSYoshinobu Inoue *idp = htons(ifp->if_index); 156482cd038dSYoshinobu Inoue } 156582cd038dSYoshinobu Inoue 156682cd038dSYoshinobu Inoue s = splnet(); 156782cd038dSYoshinobu Inoue if ((rt = nd6_lookup(&nb_addr, 0, ifp)) == NULL) { 156882cd038dSYoshinobu Inoue error = EINVAL; 1569686cdd19SJun-ichiro itojun Hagino splx(s); 157082cd038dSYoshinobu Inoue break; 157182cd038dSYoshinobu Inoue } 157282cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 157382cd038dSYoshinobu Inoue nbi->state = ln->ln_state; 157482cd038dSYoshinobu Inoue nbi->asked = ln->ln_asked; 157582cd038dSYoshinobu Inoue nbi->isrouter = ln->ln_router; 157682cd038dSYoshinobu Inoue nbi->expire = ln->ln_expire; 157782cd038dSYoshinobu Inoue splx(s); 157882cd038dSYoshinobu Inoue 157982cd038dSYoshinobu Inoue break; 158082cd038dSYoshinobu Inoue } 1581686cdd19SJun-ichiro itojun Hagino case SIOCGDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1582686cdd19SJun-ichiro itojun Hagino ndif->ifindex = nd6_defifindex; 1583686cdd19SJun-ichiro itojun Hagino break; 1584686cdd19SJun-ichiro itojun Hagino case SIOCSDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1585686cdd19SJun-ichiro itojun Hagino return(nd6_setdefaultiface(ndif->ifindex)); 1586686cdd19SJun-ichiro itojun Hagino break; 158782cd038dSYoshinobu Inoue } 158882cd038dSYoshinobu Inoue return(error); 158982cd038dSYoshinobu Inoue } 159082cd038dSYoshinobu Inoue 159182cd038dSYoshinobu Inoue /* 159282cd038dSYoshinobu Inoue * Create neighbor cache entry and cache link-layer address, 159382cd038dSYoshinobu Inoue * on reception of inbound ND6 packets. (RS/RA/NS/redirect) 159482cd038dSYoshinobu Inoue */ 159582cd038dSYoshinobu Inoue struct rtentry * 159682cd038dSYoshinobu Inoue nd6_cache_lladdr(ifp, from, lladdr, lladdrlen, type, code) 159782cd038dSYoshinobu Inoue struct ifnet *ifp; 159882cd038dSYoshinobu Inoue struct in6_addr *from; 159982cd038dSYoshinobu Inoue char *lladdr; 160082cd038dSYoshinobu Inoue int lladdrlen; 160182cd038dSYoshinobu Inoue int type; /* ICMP6 type */ 160282cd038dSYoshinobu Inoue int code; /* type dependent information */ 160382cd038dSYoshinobu Inoue { 160482cd038dSYoshinobu Inoue struct rtentry *rt = NULL; 160582cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = NULL; 160682cd038dSYoshinobu Inoue int is_newentry; 160782cd038dSYoshinobu Inoue struct sockaddr_dl *sdl = NULL; 160882cd038dSYoshinobu Inoue int do_update; 160982cd038dSYoshinobu Inoue int olladdr; 161082cd038dSYoshinobu Inoue int llchange; 161182cd038dSYoshinobu Inoue int newstate = 0; 161282cd038dSYoshinobu Inoue 161382cd038dSYoshinobu Inoue if (!ifp) 161482cd038dSYoshinobu Inoue panic("ifp == NULL in nd6_cache_lladdr"); 161582cd038dSYoshinobu Inoue if (!from) 161682cd038dSYoshinobu Inoue panic("from == NULL in nd6_cache_lladdr"); 161782cd038dSYoshinobu Inoue 161882cd038dSYoshinobu Inoue /* nothing must be updated for unspecified address */ 161982cd038dSYoshinobu Inoue if (IN6_IS_ADDR_UNSPECIFIED(from)) 162082cd038dSYoshinobu Inoue return NULL; 162182cd038dSYoshinobu Inoue 162282cd038dSYoshinobu Inoue /* 162382cd038dSYoshinobu Inoue * Validation about ifp->if_addrlen and lladdrlen must be done in 162482cd038dSYoshinobu Inoue * the caller. 162582cd038dSYoshinobu Inoue * 162682cd038dSYoshinobu Inoue * XXX If the link does not have link-layer adderss, what should 162782cd038dSYoshinobu Inoue * we do? (ifp->if_addrlen == 0) 162882cd038dSYoshinobu Inoue * Spec says nothing in sections for RA, RS and NA. There's small 162982cd038dSYoshinobu Inoue * description on it in NS section (RFC 2461 7.2.3). 163082cd038dSYoshinobu Inoue */ 163182cd038dSYoshinobu Inoue 163282cd038dSYoshinobu Inoue rt = nd6_lookup(from, 0, ifp); 163382cd038dSYoshinobu Inoue if (!rt) { 1634686cdd19SJun-ichiro itojun Hagino #if 0 1635686cdd19SJun-ichiro itojun Hagino /* nothing must be done if there's no lladdr */ 1636686cdd19SJun-ichiro itojun Hagino if (!lladdr || !lladdrlen) 1637686cdd19SJun-ichiro itojun Hagino return NULL; 1638686cdd19SJun-ichiro itojun Hagino #endif 1639686cdd19SJun-ichiro itojun Hagino 164082cd038dSYoshinobu Inoue rt = nd6_lookup(from, 1, ifp); 164182cd038dSYoshinobu Inoue is_newentry = 1; 164233841545SHajimu UMEMOTO } else { 164333841545SHajimu UMEMOTO /* do nothing if static ndp is set */ 164433841545SHajimu UMEMOTO if (rt->rt_flags & RTF_STATIC) 164533841545SHajimu UMEMOTO return NULL; 164682cd038dSYoshinobu Inoue is_newentry = 0; 164733841545SHajimu UMEMOTO } 164882cd038dSYoshinobu Inoue 164982cd038dSYoshinobu Inoue if (!rt) 165082cd038dSYoshinobu Inoue return NULL; 165182cd038dSYoshinobu Inoue if ((rt->rt_flags & (RTF_GATEWAY | RTF_LLINFO)) != RTF_LLINFO) { 165282cd038dSYoshinobu Inoue fail: 165333841545SHajimu UMEMOTO (void)nd6_free(rt); 165482cd038dSYoshinobu Inoue return NULL; 165582cd038dSYoshinobu Inoue } 165682cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 165782cd038dSYoshinobu Inoue if (!ln) 165882cd038dSYoshinobu Inoue goto fail; 165982cd038dSYoshinobu Inoue if (!rt->rt_gateway) 166082cd038dSYoshinobu Inoue goto fail; 166182cd038dSYoshinobu Inoue if (rt->rt_gateway->sa_family != AF_LINK) 166282cd038dSYoshinobu Inoue goto fail; 166382cd038dSYoshinobu Inoue sdl = SDL(rt->rt_gateway); 166482cd038dSYoshinobu Inoue 166582cd038dSYoshinobu Inoue olladdr = (sdl->sdl_alen) ? 1 : 0; 166682cd038dSYoshinobu Inoue if (olladdr && lladdr) { 166782cd038dSYoshinobu Inoue if (bcmp(lladdr, LLADDR(sdl), ifp->if_addrlen)) 166882cd038dSYoshinobu Inoue llchange = 1; 166982cd038dSYoshinobu Inoue else 167082cd038dSYoshinobu Inoue llchange = 0; 167182cd038dSYoshinobu Inoue } else 167282cd038dSYoshinobu Inoue llchange = 0; 167382cd038dSYoshinobu Inoue 167482cd038dSYoshinobu Inoue /* 167582cd038dSYoshinobu Inoue * newentry olladdr lladdr llchange (*=record) 167682cd038dSYoshinobu Inoue * 0 n n -- (1) 167782cd038dSYoshinobu Inoue * 0 y n -- (2) 167882cd038dSYoshinobu Inoue * 0 n y -- (3) * STALE 167982cd038dSYoshinobu Inoue * 0 y y n (4) * 168082cd038dSYoshinobu Inoue * 0 y y y (5) * STALE 168182cd038dSYoshinobu Inoue * 1 -- n -- (6) NOSTATE(= PASSIVE) 168282cd038dSYoshinobu Inoue * 1 -- y -- (7) * STALE 168382cd038dSYoshinobu Inoue */ 168482cd038dSYoshinobu Inoue 168582cd038dSYoshinobu Inoue if (lladdr) { /* (3-5) and (7) */ 168682cd038dSYoshinobu Inoue /* 168782cd038dSYoshinobu Inoue * Record source link-layer address 168882cd038dSYoshinobu Inoue * XXX is it dependent to ifp->if_type? 168982cd038dSYoshinobu Inoue */ 169082cd038dSYoshinobu Inoue sdl->sdl_alen = ifp->if_addrlen; 169182cd038dSYoshinobu Inoue bcopy(lladdr, LLADDR(sdl), ifp->if_addrlen); 169282cd038dSYoshinobu Inoue } 169382cd038dSYoshinobu Inoue 169482cd038dSYoshinobu Inoue if (!is_newentry) { 169582cd038dSYoshinobu Inoue if ((!olladdr && lladdr) /* (3) */ 169682cd038dSYoshinobu Inoue || (olladdr && lladdr && llchange)) { /* (5) */ 169782cd038dSYoshinobu Inoue do_update = 1; 169882cd038dSYoshinobu Inoue newstate = ND6_LLINFO_STALE; 169982cd038dSYoshinobu Inoue } else /* (1-2,4) */ 170082cd038dSYoshinobu Inoue do_update = 0; 170182cd038dSYoshinobu Inoue } else { 170282cd038dSYoshinobu Inoue do_update = 1; 170382cd038dSYoshinobu Inoue if (!lladdr) /* (6) */ 170482cd038dSYoshinobu Inoue newstate = ND6_LLINFO_NOSTATE; 170582cd038dSYoshinobu Inoue else /* (7) */ 170682cd038dSYoshinobu Inoue newstate = ND6_LLINFO_STALE; 170782cd038dSYoshinobu Inoue } 170882cd038dSYoshinobu Inoue 170982cd038dSYoshinobu Inoue if (do_update) { 171082cd038dSYoshinobu Inoue /* 171182cd038dSYoshinobu Inoue * Update the state of the neighbor cache. 171282cd038dSYoshinobu Inoue */ 171382cd038dSYoshinobu Inoue ln->ln_state = newstate; 171482cd038dSYoshinobu Inoue 171582cd038dSYoshinobu Inoue if (ln->ln_state == ND6_LLINFO_STALE) { 171633841545SHajimu UMEMOTO /* 171733841545SHajimu UMEMOTO * XXX: since nd6_output() below will cause 171833841545SHajimu UMEMOTO * state tansition to DELAY and reset the timer, 171933841545SHajimu UMEMOTO * we must set the timer now, although it is actually 172033841545SHajimu UMEMOTO * meaningless. 172133841545SHajimu UMEMOTO */ 172233841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 172333841545SHajimu UMEMOTO 172482cd038dSYoshinobu Inoue if (ln->ln_hold) { 1725686cdd19SJun-ichiro itojun Hagino /* 1726686cdd19SJun-ichiro itojun Hagino * we assume ifp is not a p2p here, so just 1727686cdd19SJun-ichiro itojun Hagino * set the 2nd argument as the 1st one. 1728686cdd19SJun-ichiro itojun Hagino */ 1729686cdd19SJun-ichiro itojun Hagino nd6_output(ifp, ifp, ln->ln_hold, 173082cd038dSYoshinobu Inoue (struct sockaddr_in6 *)rt_key(rt), 173182cd038dSYoshinobu Inoue rt); 173233841545SHajimu UMEMOTO ln->ln_hold = NULL; 173382cd038dSYoshinobu Inoue } 173482cd038dSYoshinobu Inoue } else if (ln->ln_state == ND6_LLINFO_INCOMPLETE) { 173582cd038dSYoshinobu Inoue /* probe right away */ 173682cd038dSYoshinobu Inoue ln->ln_expire = time_second; 173782cd038dSYoshinobu Inoue } 173882cd038dSYoshinobu Inoue } 173982cd038dSYoshinobu Inoue 174082cd038dSYoshinobu Inoue /* 174182cd038dSYoshinobu Inoue * ICMP6 type dependent behavior. 174282cd038dSYoshinobu Inoue * 174382cd038dSYoshinobu Inoue * NS: clear IsRouter if new entry 174482cd038dSYoshinobu Inoue * RS: clear IsRouter 174582cd038dSYoshinobu Inoue * RA: set IsRouter if there's lladdr 174682cd038dSYoshinobu Inoue * redir: clear IsRouter if new entry 174782cd038dSYoshinobu Inoue * 174882cd038dSYoshinobu Inoue * RA case, (1): 174982cd038dSYoshinobu Inoue * The spec says that we must set IsRouter in the following cases: 175082cd038dSYoshinobu Inoue * - If lladdr exist, set IsRouter. This means (1-5). 175182cd038dSYoshinobu Inoue * - If it is old entry (!newentry), set IsRouter. This means (7). 175282cd038dSYoshinobu Inoue * So, based on the spec, in (1-5) and (7) cases we must set IsRouter. 175382cd038dSYoshinobu Inoue * A quetion arises for (1) case. (1) case has no lladdr in the 175482cd038dSYoshinobu Inoue * neighbor cache, this is similar to (6). 175582cd038dSYoshinobu Inoue * This case is rare but we figured that we MUST NOT set IsRouter. 175682cd038dSYoshinobu Inoue * 175782cd038dSYoshinobu Inoue * newentry olladdr lladdr llchange NS RS RA redir 175882cd038dSYoshinobu Inoue * D R 175982cd038dSYoshinobu Inoue * 0 n n -- (1) c ? s 176082cd038dSYoshinobu Inoue * 0 y n -- (2) c s s 176182cd038dSYoshinobu Inoue * 0 n y -- (3) c s s 176282cd038dSYoshinobu Inoue * 0 y y n (4) c s s 176382cd038dSYoshinobu Inoue * 0 y y y (5) c s s 176482cd038dSYoshinobu Inoue * 1 -- n -- (6) c c c s 176582cd038dSYoshinobu Inoue * 1 -- y -- (7) c c s c s 176682cd038dSYoshinobu Inoue * 176782cd038dSYoshinobu Inoue * (c=clear s=set) 176882cd038dSYoshinobu Inoue */ 176982cd038dSYoshinobu Inoue switch (type & 0xff) { 177082cd038dSYoshinobu Inoue case ND_NEIGHBOR_SOLICIT: 177182cd038dSYoshinobu Inoue /* 177282cd038dSYoshinobu Inoue * New entry must have is_router flag cleared. 177382cd038dSYoshinobu Inoue */ 177482cd038dSYoshinobu Inoue if (is_newentry) /* (6-7) */ 177582cd038dSYoshinobu Inoue ln->ln_router = 0; 177682cd038dSYoshinobu Inoue break; 177782cd038dSYoshinobu Inoue case ND_REDIRECT: 177882cd038dSYoshinobu Inoue /* 177982cd038dSYoshinobu Inoue * If the icmp is a redirect to a better router, always set the 178082cd038dSYoshinobu Inoue * is_router flag. Otherwise, if the entry is newly created, 178182cd038dSYoshinobu Inoue * clear the flag. [RFC 2461, sec 8.3] 178282cd038dSYoshinobu Inoue */ 178382cd038dSYoshinobu Inoue if (code == ND_REDIRECT_ROUTER) 178482cd038dSYoshinobu Inoue ln->ln_router = 1; 178582cd038dSYoshinobu Inoue else if (is_newentry) /* (6-7) */ 178682cd038dSYoshinobu Inoue ln->ln_router = 0; 178782cd038dSYoshinobu Inoue break; 178882cd038dSYoshinobu Inoue case ND_ROUTER_SOLICIT: 178982cd038dSYoshinobu Inoue /* 179082cd038dSYoshinobu Inoue * is_router flag must always be cleared. 179182cd038dSYoshinobu Inoue */ 179282cd038dSYoshinobu Inoue ln->ln_router = 0; 179382cd038dSYoshinobu Inoue break; 179482cd038dSYoshinobu Inoue case ND_ROUTER_ADVERT: 179582cd038dSYoshinobu Inoue /* 179682cd038dSYoshinobu Inoue * Mark an entry with lladdr as a router. 179782cd038dSYoshinobu Inoue */ 179882cd038dSYoshinobu Inoue if ((!is_newentry && (olladdr || lladdr)) /* (2-5) */ 179982cd038dSYoshinobu Inoue || (is_newentry && lladdr)) { /* (7) */ 180082cd038dSYoshinobu Inoue ln->ln_router = 1; 180182cd038dSYoshinobu Inoue } 180282cd038dSYoshinobu Inoue break; 180382cd038dSYoshinobu Inoue } 180482cd038dSYoshinobu Inoue 1805554bf4aaSHajimu UMEMOTO /* 1806554bf4aaSHajimu UMEMOTO * When the link-layer address of a router changes, select the 1807554bf4aaSHajimu UMEMOTO * best router again. In particular, when the neighbor entry is newly 1808554bf4aaSHajimu UMEMOTO * created, it might affect the selection policy. 1809554bf4aaSHajimu UMEMOTO * Question: can we restrict the first condition to the "is_newentry" 1810554bf4aaSHajimu UMEMOTO * case? 1811554bf4aaSHajimu UMEMOTO * XXX: when we hear an RA from a new router with the link-layer 1812554bf4aaSHajimu UMEMOTO * address option, defrouter_select() is called twice, since 1813554bf4aaSHajimu UMEMOTO * defrtrlist_update called the function as well. However, I believe 1814554bf4aaSHajimu UMEMOTO * we can compromise the overhead, since it only happens the first 1815554bf4aaSHajimu UMEMOTO * time. 1816554bf4aaSHajimu UMEMOTO * XXX: although defrouter_select() should not have a bad effect 1817554bf4aaSHajimu UMEMOTO * for those are not autoconfigured hosts, we explicitly avoid such 1818554bf4aaSHajimu UMEMOTO * cases for safety. 1819554bf4aaSHajimu UMEMOTO */ 1820554bf4aaSHajimu UMEMOTO if (do_update && ln->ln_router && !ip6_forwarding && ip6_accept_rtadv) 1821554bf4aaSHajimu UMEMOTO defrouter_select(); 1822554bf4aaSHajimu UMEMOTO 182382cd038dSYoshinobu Inoue return rt; 182482cd038dSYoshinobu Inoue } 182582cd038dSYoshinobu Inoue 182682cd038dSYoshinobu Inoue static void 182782cd038dSYoshinobu Inoue nd6_slowtimo(ignored_arg) 182882cd038dSYoshinobu Inoue void *ignored_arg; 182982cd038dSYoshinobu Inoue { 183082cd038dSYoshinobu Inoue int s = splnet(); 183133841545SHajimu UMEMOTO int i; 183233841545SHajimu UMEMOTO struct nd_ifinfo *nd6if; 183382cd038dSYoshinobu Inoue 183433841545SHajimu UMEMOTO callout_reset(&nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 183533841545SHajimu UMEMOTO nd6_slowtimo, NULL); 183682cd038dSYoshinobu Inoue for (i = 1; i < if_index + 1; i++) { 1837686cdd19SJun-ichiro itojun Hagino if (!nd_ifinfo || i >= nd_ifinfo_indexlim) 1838686cdd19SJun-ichiro itojun Hagino continue; 183982cd038dSYoshinobu Inoue nd6if = &nd_ifinfo[i]; 184082cd038dSYoshinobu Inoue if (nd6if->basereachable && /* already initialized */ 184182cd038dSYoshinobu Inoue (nd6if->recalctm -= ND6_SLOWTIMER_INTERVAL) <= 0) { 184282cd038dSYoshinobu Inoue /* 184382cd038dSYoshinobu Inoue * Since reachable time rarely changes by router 184482cd038dSYoshinobu Inoue * advertisements, we SHOULD insure that a new random 184582cd038dSYoshinobu Inoue * value gets recomputed at least once every few hours. 184682cd038dSYoshinobu Inoue * (RFC 2461, 6.3.4) 184782cd038dSYoshinobu Inoue */ 184882cd038dSYoshinobu Inoue nd6if->recalctm = nd6_recalc_reachtm_interval; 184982cd038dSYoshinobu Inoue nd6if->reachable = ND_COMPUTE_RTIME(nd6if->basereachable); 185082cd038dSYoshinobu Inoue } 185182cd038dSYoshinobu Inoue } 185282cd038dSYoshinobu Inoue splx(s); 185382cd038dSYoshinobu Inoue } 185482cd038dSYoshinobu Inoue 185582cd038dSYoshinobu Inoue #define senderr(e) { error = (e); goto bad;} 185682cd038dSYoshinobu Inoue int 1857686cdd19SJun-ichiro itojun Hagino nd6_output(ifp, origifp, m0, dst, rt0) 185833841545SHajimu UMEMOTO struct ifnet *ifp; 1859686cdd19SJun-ichiro itojun Hagino struct ifnet *origifp; 186082cd038dSYoshinobu Inoue struct mbuf *m0; 186182cd038dSYoshinobu Inoue struct sockaddr_in6 *dst; 186282cd038dSYoshinobu Inoue struct rtentry *rt0; 186382cd038dSYoshinobu Inoue { 186433841545SHajimu UMEMOTO struct mbuf *m = m0; 186533841545SHajimu UMEMOTO struct rtentry *rt = rt0; 1866686cdd19SJun-ichiro itojun Hagino struct sockaddr_in6 *gw6 = NULL; 186782cd038dSYoshinobu Inoue struct llinfo_nd6 *ln = NULL; 186882cd038dSYoshinobu Inoue int error = 0; 186982cd038dSYoshinobu Inoue 187082cd038dSYoshinobu Inoue if (IN6_IS_ADDR_MULTICAST(&dst->sin6_addr)) 187182cd038dSYoshinobu Inoue goto sendpkt; 187282cd038dSYoshinobu Inoue 187333841545SHajimu UMEMOTO if (nd6_need_cache(ifp) == 0) 187482cd038dSYoshinobu Inoue goto sendpkt; 187582cd038dSYoshinobu Inoue 187682cd038dSYoshinobu Inoue /* 187782cd038dSYoshinobu Inoue * next hop determination. This routine is derived from ether_outpout. 187882cd038dSYoshinobu Inoue */ 187982cd038dSYoshinobu Inoue if (rt) { 188082cd038dSYoshinobu Inoue if ((rt->rt_flags & RTF_UP) == 0) { 188182cd038dSYoshinobu Inoue if ((rt0 = rt = rtalloc1((struct sockaddr *)dst, 1, 0UL)) != 188282cd038dSYoshinobu Inoue NULL) 188382cd038dSYoshinobu Inoue { 188482cd038dSYoshinobu Inoue rt->rt_refcnt--; 1885686cdd19SJun-ichiro itojun Hagino if (rt->rt_ifp != ifp) { 1886686cdd19SJun-ichiro itojun Hagino /* XXX: loop care? */ 1887686cdd19SJun-ichiro itojun Hagino return nd6_output(ifp, origifp, m0, 1888686cdd19SJun-ichiro itojun Hagino dst, rt); 1889686cdd19SJun-ichiro itojun Hagino } 189082cd038dSYoshinobu Inoue } else 189182cd038dSYoshinobu Inoue senderr(EHOSTUNREACH); 189282cd038dSYoshinobu Inoue } 1893686cdd19SJun-ichiro itojun Hagino 189482cd038dSYoshinobu Inoue if (rt->rt_flags & RTF_GATEWAY) { 1895686cdd19SJun-ichiro itojun Hagino gw6 = (struct sockaddr_in6 *)rt->rt_gateway; 1896686cdd19SJun-ichiro itojun Hagino 1897686cdd19SJun-ichiro itojun Hagino /* 1898686cdd19SJun-ichiro itojun Hagino * We skip link-layer address resolution and NUD 1899686cdd19SJun-ichiro itojun Hagino * if the gateway is not a neighbor from ND point 190088ff5695SSUZUKI Shinsuke * of view, regardless of the value of nd_ifinfo.flags. 190188ff5695SSUZUKI Shinsuke * The second condition is a bit tricky; we skip 1902686cdd19SJun-ichiro itojun Hagino * if the gateway is our own address, which is 1903686cdd19SJun-ichiro itojun Hagino * sometimes used to install a route to a p2p link. 1904686cdd19SJun-ichiro itojun Hagino */ 1905686cdd19SJun-ichiro itojun Hagino if (!nd6_is_addr_neighbor(gw6, ifp) || 1906686cdd19SJun-ichiro itojun Hagino in6ifa_ifpwithaddr(ifp, &gw6->sin6_addr)) { 1907686cdd19SJun-ichiro itojun Hagino /* 1908686cdd19SJun-ichiro itojun Hagino * We allow this kind of tricky route only 1909686cdd19SJun-ichiro itojun Hagino * when the outgoing interface is p2p. 1910686cdd19SJun-ichiro itojun Hagino * XXX: we may need a more generic rule here. 1911686cdd19SJun-ichiro itojun Hagino */ 1912686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) == 0) 1913686cdd19SJun-ichiro itojun Hagino senderr(EHOSTUNREACH); 1914686cdd19SJun-ichiro itojun Hagino 1915686cdd19SJun-ichiro itojun Hagino goto sendpkt; 1916686cdd19SJun-ichiro itojun Hagino } 1917686cdd19SJun-ichiro itojun Hagino 191882cd038dSYoshinobu Inoue if (rt->rt_gwroute == 0) 191982cd038dSYoshinobu Inoue goto lookup; 192082cd038dSYoshinobu Inoue if (((rt = rt->rt_gwroute)->rt_flags & RTF_UP) == 0) { 192182cd038dSYoshinobu Inoue rtfree(rt); rt = rt0; 192282cd038dSYoshinobu Inoue lookup: rt->rt_gwroute = rtalloc1(rt->rt_gateway, 1, 0UL); 192382cd038dSYoshinobu Inoue if ((rt = rt->rt_gwroute) == 0) 192482cd038dSYoshinobu Inoue senderr(EHOSTUNREACH); 192582cd038dSYoshinobu Inoue } 192682cd038dSYoshinobu Inoue } 192782cd038dSYoshinobu Inoue } 192882cd038dSYoshinobu Inoue 192982cd038dSYoshinobu Inoue /* 193082cd038dSYoshinobu Inoue * Address resolution or Neighbor Unreachability Detection 193182cd038dSYoshinobu Inoue * for the next hop. 193282cd038dSYoshinobu Inoue * At this point, the destination of the packet must be a unicast 193382cd038dSYoshinobu Inoue * or an anycast address(i.e. not a multicast). 193482cd038dSYoshinobu Inoue */ 193582cd038dSYoshinobu Inoue 193682cd038dSYoshinobu Inoue /* Look up the neighbor cache for the nexthop */ 193782cd038dSYoshinobu Inoue if (rt && (rt->rt_flags & RTF_LLINFO) != 0) 193882cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 193982cd038dSYoshinobu Inoue else { 1940686cdd19SJun-ichiro itojun Hagino /* 1941686cdd19SJun-ichiro itojun Hagino * Since nd6_is_addr_neighbor() internally calls nd6_lookup(), 1942686cdd19SJun-ichiro itojun Hagino * the condition below is not very efficient. But we believe 1943686cdd19SJun-ichiro itojun Hagino * it is tolerable, because this should be a rare case. 1944686cdd19SJun-ichiro itojun Hagino */ 1945686cdd19SJun-ichiro itojun Hagino if (nd6_is_addr_neighbor(dst, ifp) && 1946686cdd19SJun-ichiro itojun Hagino (rt = nd6_lookup(&dst->sin6_addr, 1, ifp)) != NULL) 194782cd038dSYoshinobu Inoue ln = (struct llinfo_nd6 *)rt->rt_llinfo; 194882cd038dSYoshinobu Inoue } 194982cd038dSYoshinobu Inoue if (!ln || !rt) { 1950686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) == 0 && 1951686cdd19SJun-ichiro itojun Hagino !(nd_ifinfo[ifp->if_index].flags & ND6_IFF_PERFORMNUD)) { 1952686cdd19SJun-ichiro itojun Hagino log(LOG_DEBUG, 1953686cdd19SJun-ichiro itojun Hagino "nd6_output: can't allocate llinfo for %s " 195482cd038dSYoshinobu Inoue "(ln=%p, rt=%p)\n", 195582cd038dSYoshinobu Inoue ip6_sprintf(&dst->sin6_addr), ln, rt); 195682cd038dSYoshinobu Inoue senderr(EIO); /* XXX: good error? */ 195782cd038dSYoshinobu Inoue } 195882cd038dSYoshinobu Inoue 1959686cdd19SJun-ichiro itojun Hagino goto sendpkt; /* send anyway */ 1960686cdd19SJun-ichiro itojun Hagino } 1961686cdd19SJun-ichiro itojun Hagino 1962686cdd19SJun-ichiro itojun Hagino /* We don't have to do link-layer address resolution on a p2p link. */ 1963686cdd19SJun-ichiro itojun Hagino if ((ifp->if_flags & IFF_POINTOPOINT) != 0 && 196433841545SHajimu UMEMOTO ln->ln_state < ND6_LLINFO_REACHABLE) { 1965686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_STALE; 196633841545SHajimu UMEMOTO ln->ln_expire = time_second + nd6_gctimer; 196733841545SHajimu UMEMOTO } 196882cd038dSYoshinobu Inoue 196982cd038dSYoshinobu Inoue /* 197082cd038dSYoshinobu Inoue * The first time we send a packet to a neighbor whose entry is 197182cd038dSYoshinobu Inoue * STALE, we have to change the state to DELAY and a sets a timer to 197282cd038dSYoshinobu Inoue * expire in DELAY_FIRST_PROBE_TIME seconds to ensure do 197382cd038dSYoshinobu Inoue * neighbor unreachability detection on expiration. 197482cd038dSYoshinobu Inoue * (RFC 2461 7.3.3) 197582cd038dSYoshinobu Inoue */ 197682cd038dSYoshinobu Inoue if (ln->ln_state == ND6_LLINFO_STALE) { 197782cd038dSYoshinobu Inoue ln->ln_asked = 0; 197882cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_DELAY; 197982cd038dSYoshinobu Inoue ln->ln_expire = time_second + nd6_delay; 198082cd038dSYoshinobu Inoue } 198182cd038dSYoshinobu Inoue 198282cd038dSYoshinobu Inoue /* 198382cd038dSYoshinobu Inoue * If the neighbor cache entry has a state other than INCOMPLETE 198488ff5695SSUZUKI Shinsuke * (i.e. its link-layer address is already resolved), just 198582cd038dSYoshinobu Inoue * send the packet. 198682cd038dSYoshinobu Inoue */ 198782cd038dSYoshinobu Inoue if (ln->ln_state > ND6_LLINFO_INCOMPLETE) 198882cd038dSYoshinobu Inoue goto sendpkt; 198982cd038dSYoshinobu Inoue 199082cd038dSYoshinobu Inoue /* 199182cd038dSYoshinobu Inoue * There is a neighbor cache entry, but no ethernet address 199282cd038dSYoshinobu Inoue * response yet. Replace the held mbuf (if any) with this 199382cd038dSYoshinobu Inoue * latest one. 199482cd038dSYoshinobu Inoue * 199588ff5695SSUZUKI Shinsuke * This code conforms to the rate-limiting rule described in Section 199688ff5695SSUZUKI Shinsuke * 7.2.2 of RFC 2461, because the timer is set correctly after sending 199788ff5695SSUZUKI Shinsuke * an NS below. 199882cd038dSYoshinobu Inoue */ 199933841545SHajimu UMEMOTO if (ln->ln_state == ND6_LLINFO_NOSTATE) 200082cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_INCOMPLETE; 200182cd038dSYoshinobu Inoue if (ln->ln_hold) 200282cd038dSYoshinobu Inoue m_freem(ln->ln_hold); 200382cd038dSYoshinobu Inoue ln->ln_hold = m; 200482cd038dSYoshinobu Inoue if (ln->ln_expire) { 200582cd038dSYoshinobu Inoue if (ln->ln_asked < nd6_mmaxtries && 200682cd038dSYoshinobu Inoue ln->ln_expire < time_second) { 200782cd038dSYoshinobu Inoue ln->ln_asked++; 200882cd038dSYoshinobu Inoue ln->ln_expire = time_second + 200982cd038dSYoshinobu Inoue nd_ifinfo[ifp->if_index].retrans / 1000; 201082cd038dSYoshinobu Inoue nd6_ns_output(ifp, NULL, &dst->sin6_addr, ln, 0); 201182cd038dSYoshinobu Inoue } 201282cd038dSYoshinobu Inoue } 201382cd038dSYoshinobu Inoue return(0); 201482cd038dSYoshinobu Inoue 201582cd038dSYoshinobu Inoue sendpkt: 2016686cdd19SJun-ichiro itojun Hagino 201733841545SHajimu UMEMOTO if ((ifp->if_flags & IFF_LOOPBACK) != 0) { 2018686cdd19SJun-ichiro itojun Hagino return((*ifp->if_output)(origifp, m, (struct sockaddr *)dst, 2019686cdd19SJun-ichiro itojun Hagino rt)); 2020686cdd19SJun-ichiro itojun Hagino } 202182cd038dSYoshinobu Inoue return((*ifp->if_output)(ifp, m, (struct sockaddr *)dst, rt)); 202282cd038dSYoshinobu Inoue 202382cd038dSYoshinobu Inoue bad: 202482cd038dSYoshinobu Inoue if (m) 202582cd038dSYoshinobu Inoue m_freem(m); 202682cd038dSYoshinobu Inoue return (error); 202782cd038dSYoshinobu Inoue } 202882cd038dSYoshinobu Inoue #undef senderr 202982cd038dSYoshinobu Inoue 203082cd038dSYoshinobu Inoue int 203133841545SHajimu UMEMOTO nd6_need_cache(ifp) 203233841545SHajimu UMEMOTO struct ifnet *ifp; 203333841545SHajimu UMEMOTO { 203433841545SHajimu UMEMOTO /* 203533841545SHajimu UMEMOTO * XXX: we currently do not make neighbor cache on any interface 203633841545SHajimu UMEMOTO * other than ARCnet, Ethernet, FDDI and GIF. 203733841545SHajimu UMEMOTO * 203833841545SHajimu UMEMOTO * RFC2893 says: 203933841545SHajimu UMEMOTO * - unidirectional tunnels needs no ND 204033841545SHajimu UMEMOTO */ 204133841545SHajimu UMEMOTO switch (ifp->if_type) { 204233841545SHajimu UMEMOTO case IFT_ARCNET: 204333841545SHajimu UMEMOTO case IFT_ETHER: 204433841545SHajimu UMEMOTO case IFT_FDDI: 204533841545SHajimu UMEMOTO case IFT_IEEE1394: 204605b6760dSMunechika SUMIKAWA #ifdef IFT_L2VLAN 204705b6760dSMunechika SUMIKAWA case IFT_L2VLAN: 204805b6760dSMunechika SUMIKAWA #endif 204933841545SHajimu UMEMOTO #ifdef IFT_IEEE80211 205033841545SHajimu UMEMOTO case IFT_IEEE80211: 205133841545SHajimu UMEMOTO #endif 205233841545SHajimu UMEMOTO case IFT_GIF: /* XXX need more cases? */ 205333841545SHajimu UMEMOTO return(1); 205433841545SHajimu UMEMOTO default: 205533841545SHajimu UMEMOTO return(0); 205633841545SHajimu UMEMOTO } 205733841545SHajimu UMEMOTO } 205833841545SHajimu UMEMOTO 205933841545SHajimu UMEMOTO int 206082cd038dSYoshinobu Inoue nd6_storelladdr(ifp, rt, m, dst, desten) 206182cd038dSYoshinobu Inoue struct ifnet *ifp; 206282cd038dSYoshinobu Inoue struct rtentry *rt; 206382cd038dSYoshinobu Inoue struct mbuf *m; 206482cd038dSYoshinobu Inoue struct sockaddr *dst; 206582cd038dSYoshinobu Inoue u_char *desten; 206682cd038dSYoshinobu Inoue { 206733841545SHajimu UMEMOTO int i; 206882cd038dSYoshinobu Inoue struct sockaddr_dl *sdl; 206982cd038dSYoshinobu Inoue 207082cd038dSYoshinobu Inoue if (m->m_flags & M_MCAST) { 207182cd038dSYoshinobu Inoue switch (ifp->if_type) { 207282cd038dSYoshinobu Inoue case IFT_ETHER: 207382cd038dSYoshinobu Inoue case IFT_FDDI: 207405b6760dSMunechika SUMIKAWA #ifdef IFT_L2VLAN 207505b6760dSMunechika SUMIKAWA case IFT_L2VLAN: 207605b6760dSMunechika SUMIKAWA #endif 207733841545SHajimu UMEMOTO #ifdef IFT_IEEE80211 207833841545SHajimu UMEMOTO case IFT_IEEE80211: 207933841545SHajimu UMEMOTO #endif 208082cd038dSYoshinobu Inoue ETHER_MAP_IPV6_MULTICAST(&SIN6(dst)->sin6_addr, 208182cd038dSYoshinobu Inoue desten); 208282cd038dSYoshinobu Inoue return(1); 208333841545SHajimu UMEMOTO case IFT_IEEE1394: 208488ff5695SSUZUKI Shinsuke /* 208588ff5695SSUZUKI Shinsuke * netbsd can use if_broadcastaddr, but we don't do so 208688ff5695SSUZUKI Shinsuke * to reduce # of ifdef. 208788ff5695SSUZUKI Shinsuke */ 208833841545SHajimu UMEMOTO for (i = 0; i < ifp->if_addrlen; i++) 208933841545SHajimu UMEMOTO desten[i] = ~0; 209033841545SHajimu UMEMOTO return(1); 209182cd038dSYoshinobu Inoue case IFT_ARCNET: 209282cd038dSYoshinobu Inoue *desten = 0; 209382cd038dSYoshinobu Inoue return(1); 209482cd038dSYoshinobu Inoue default: 2095fef5fd23SBosko Milekic m_freem(m); 209682cd038dSYoshinobu Inoue return(0); 209782cd038dSYoshinobu Inoue } 209882cd038dSYoshinobu Inoue } 209982cd038dSYoshinobu Inoue 2100fef5fd23SBosko Milekic if (rt == NULL) { 210133841545SHajimu UMEMOTO /* this could happen, if we could not allocate memory */ 2102fef5fd23SBosko Milekic m_freem(m); 2103fef5fd23SBosko Milekic return(0); 2104fef5fd23SBosko Milekic } 2105fef5fd23SBosko Milekic if (rt->rt_gateway->sa_family != AF_LINK) { 210633841545SHajimu UMEMOTO printf("nd6_storelladdr: something odd happens\n"); 2107fef5fd23SBosko Milekic m_freem(m); 210882cd038dSYoshinobu Inoue return(0); 210982cd038dSYoshinobu Inoue } 211082cd038dSYoshinobu Inoue sdl = SDL(rt->rt_gateway); 2111686cdd19SJun-ichiro itojun Hagino if (sdl->sdl_alen == 0) { 2112686cdd19SJun-ichiro itojun Hagino /* this should be impossible, but we bark here for debugging */ 2113686cdd19SJun-ichiro itojun Hagino printf("nd6_storelladdr: sdl_alen == 0\n"); 2114fef5fd23SBosko Milekic m_freem(m); 2115686cdd19SJun-ichiro itojun Hagino return(0); 2116686cdd19SJun-ichiro itojun Hagino } 211782cd038dSYoshinobu Inoue 2118686cdd19SJun-ichiro itojun Hagino bcopy(LLADDR(sdl), desten, sdl->sdl_alen); 211982cd038dSYoshinobu Inoue return(1); 212082cd038dSYoshinobu Inoue } 212133841545SHajimu UMEMOTO 212233841545SHajimu UMEMOTO static int nd6_sysctl_drlist(SYSCTL_HANDLER_ARGS); 212333841545SHajimu UMEMOTO static int nd6_sysctl_prlist(SYSCTL_HANDLER_ARGS); 212433841545SHajimu UMEMOTO #ifdef SYSCTL_DECL 212533841545SHajimu UMEMOTO SYSCTL_DECL(_net_inet6_icmp6); 212633841545SHajimu UMEMOTO #endif 212733841545SHajimu UMEMOTO SYSCTL_NODE(_net_inet6_icmp6, ICMPV6CTL_ND6_DRLIST, nd6_drlist, 212833841545SHajimu UMEMOTO CTLFLAG_RD, nd6_sysctl_drlist, ""); 212933841545SHajimu UMEMOTO SYSCTL_NODE(_net_inet6_icmp6, ICMPV6CTL_ND6_PRLIST, nd6_prlist, 213033841545SHajimu UMEMOTO CTLFLAG_RD, nd6_sysctl_prlist, ""); 213133841545SHajimu UMEMOTO 213233841545SHajimu UMEMOTO static int 213333841545SHajimu UMEMOTO nd6_sysctl_drlist(SYSCTL_HANDLER_ARGS) 213433841545SHajimu UMEMOTO { 213533841545SHajimu UMEMOTO int error; 213633841545SHajimu UMEMOTO char buf[1024]; 213733841545SHajimu UMEMOTO struct in6_defrouter *d, *de; 213833841545SHajimu UMEMOTO struct nd_defrouter *dr; 213933841545SHajimu UMEMOTO 214033841545SHajimu UMEMOTO if (req->newptr) 214133841545SHajimu UMEMOTO return EPERM; 214233841545SHajimu UMEMOTO error = 0; 214333841545SHajimu UMEMOTO 214433841545SHajimu UMEMOTO for (dr = TAILQ_FIRST(&nd_defrouter); 214533841545SHajimu UMEMOTO dr; 214633841545SHajimu UMEMOTO dr = TAILQ_NEXT(dr, dr_entry)) { 214733841545SHajimu UMEMOTO d = (struct in6_defrouter *)buf; 214833841545SHajimu UMEMOTO de = (struct in6_defrouter *)(buf + sizeof(buf)); 214933841545SHajimu UMEMOTO 215033841545SHajimu UMEMOTO if (d + 1 <= de) { 215133841545SHajimu UMEMOTO bzero(d, sizeof(*d)); 215233841545SHajimu UMEMOTO d->rtaddr.sin6_family = AF_INET6; 215333841545SHajimu UMEMOTO d->rtaddr.sin6_len = sizeof(d->rtaddr); 215433841545SHajimu UMEMOTO if (in6_recoverscope(&d->rtaddr, &dr->rtaddr, 215533841545SHajimu UMEMOTO dr->ifp) != 0) 215633841545SHajimu UMEMOTO log(LOG_ERR, 215733841545SHajimu UMEMOTO "scope error in " 215833841545SHajimu UMEMOTO "default router list (%s)\n", 215933841545SHajimu UMEMOTO ip6_sprintf(&dr->rtaddr)); 216033841545SHajimu UMEMOTO d->flags = dr->flags; 216133841545SHajimu UMEMOTO d->rtlifetime = dr->rtlifetime; 216233841545SHajimu UMEMOTO d->expire = dr->expire; 216333841545SHajimu UMEMOTO d->if_index = dr->ifp->if_index; 216433841545SHajimu UMEMOTO } else 216533841545SHajimu UMEMOTO panic("buffer too short"); 216633841545SHajimu UMEMOTO 216733841545SHajimu UMEMOTO error = SYSCTL_OUT(req, buf, sizeof(*d)); 216833841545SHajimu UMEMOTO if (error) 216933841545SHajimu UMEMOTO break; 217033841545SHajimu UMEMOTO } 217133841545SHajimu UMEMOTO return error; 217233841545SHajimu UMEMOTO } 217333841545SHajimu UMEMOTO 217433841545SHajimu UMEMOTO static int 217533841545SHajimu UMEMOTO nd6_sysctl_prlist(SYSCTL_HANDLER_ARGS) 217633841545SHajimu UMEMOTO { 217733841545SHajimu UMEMOTO int error; 217833841545SHajimu UMEMOTO char buf[1024]; 217933841545SHajimu UMEMOTO struct in6_prefix *p, *pe; 218033841545SHajimu UMEMOTO struct nd_prefix *pr; 218133841545SHajimu UMEMOTO 218233841545SHajimu UMEMOTO if (req->newptr) 218333841545SHajimu UMEMOTO return EPERM; 218433841545SHajimu UMEMOTO error = 0; 218533841545SHajimu UMEMOTO 218633841545SHajimu UMEMOTO for (pr = nd_prefix.lh_first; pr; pr = pr->ndpr_next) { 218733841545SHajimu UMEMOTO u_short advrtrs; 218833841545SHajimu UMEMOTO size_t advance; 218933841545SHajimu UMEMOTO struct sockaddr_in6 *sin6, *s6; 219033841545SHajimu UMEMOTO struct nd_pfxrouter *pfr; 219133841545SHajimu UMEMOTO 219233841545SHajimu UMEMOTO p = (struct in6_prefix *)buf; 219333841545SHajimu UMEMOTO pe = (struct in6_prefix *)(buf + sizeof(buf)); 219433841545SHajimu UMEMOTO 219533841545SHajimu UMEMOTO if (p + 1 <= pe) { 219633841545SHajimu UMEMOTO bzero(p, sizeof(*p)); 219733841545SHajimu UMEMOTO sin6 = (struct sockaddr_in6 *)(p + 1); 219833841545SHajimu UMEMOTO 219933841545SHajimu UMEMOTO p->prefix = pr->ndpr_prefix; 220033841545SHajimu UMEMOTO if (in6_recoverscope(&p->prefix, 220133841545SHajimu UMEMOTO &p->prefix.sin6_addr, pr->ndpr_ifp) != 0) 220233841545SHajimu UMEMOTO log(LOG_ERR, 220333841545SHajimu UMEMOTO "scope error in prefix list (%s)\n", 220433841545SHajimu UMEMOTO ip6_sprintf(&p->prefix.sin6_addr)); 220533841545SHajimu UMEMOTO p->raflags = pr->ndpr_raf; 220633841545SHajimu UMEMOTO p->prefixlen = pr->ndpr_plen; 220733841545SHajimu UMEMOTO p->vltime = pr->ndpr_vltime; 220833841545SHajimu UMEMOTO p->pltime = pr->ndpr_pltime; 220933841545SHajimu UMEMOTO p->if_index = pr->ndpr_ifp->if_index; 221033841545SHajimu UMEMOTO p->expire = pr->ndpr_expire; 221133841545SHajimu UMEMOTO p->refcnt = pr->ndpr_refcnt; 221233841545SHajimu UMEMOTO p->flags = pr->ndpr_stateflags; 221333841545SHajimu UMEMOTO p->origin = PR_ORIG_RA; 221433841545SHajimu UMEMOTO advrtrs = 0; 221533841545SHajimu UMEMOTO for (pfr = pr->ndpr_advrtrs.lh_first; 221633841545SHajimu UMEMOTO pfr; 221733841545SHajimu UMEMOTO pfr = pfr->pfr_next) { 221833841545SHajimu UMEMOTO if ((void *)&sin6[advrtrs + 1] > 221933841545SHajimu UMEMOTO (void *)pe) { 222033841545SHajimu UMEMOTO advrtrs++; 222133841545SHajimu UMEMOTO continue; 222233841545SHajimu UMEMOTO } 222333841545SHajimu UMEMOTO s6 = &sin6[advrtrs]; 222433841545SHajimu UMEMOTO bzero(s6, sizeof(*s6)); 222533841545SHajimu UMEMOTO s6->sin6_family = AF_INET6; 222633841545SHajimu UMEMOTO s6->sin6_len = sizeof(*sin6); 222733841545SHajimu UMEMOTO if (in6_recoverscope(s6, 222833841545SHajimu UMEMOTO &pfr->router->rtaddr, 222933841545SHajimu UMEMOTO pfr->router->ifp) != 0) 223033841545SHajimu UMEMOTO log(LOG_ERR, 223133841545SHajimu UMEMOTO "scope error in " 223233841545SHajimu UMEMOTO "prefix list (%s)\n", 223333841545SHajimu UMEMOTO ip6_sprintf(&pfr->router->rtaddr)); 223433841545SHajimu UMEMOTO advrtrs++; 223533841545SHajimu UMEMOTO } 223633841545SHajimu UMEMOTO p->advrtrs = advrtrs; 223733841545SHajimu UMEMOTO } else 223833841545SHajimu UMEMOTO panic("buffer too short"); 223933841545SHajimu UMEMOTO 224033841545SHajimu UMEMOTO advance = sizeof(*p) + sizeof(*sin6) * advrtrs; 224133841545SHajimu UMEMOTO error = SYSCTL_OUT(req, buf, advance); 224233841545SHajimu UMEMOTO if (error) 224333841545SHajimu UMEMOTO break; 224433841545SHajimu UMEMOTO } 224533841545SHajimu UMEMOTO return error; 224633841545SHajimu UMEMOTO } 2247