1caf43b02SWarner Losh /*- 251369649SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 351369649SPedro F. Giffuni * 482cd038dSYoshinobu Inoue * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 582cd038dSYoshinobu Inoue * All rights reserved. 682cd038dSYoshinobu Inoue * 782cd038dSYoshinobu Inoue * Redistribution and use in source and binary forms, with or without 882cd038dSYoshinobu Inoue * modification, are permitted provided that the following conditions 982cd038dSYoshinobu Inoue * are met: 1082cd038dSYoshinobu Inoue * 1. Redistributions of source code must retain the above copyright 1182cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer. 1282cd038dSYoshinobu Inoue * 2. Redistributions in binary form must reproduce the above copyright 1382cd038dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer in the 1482cd038dSYoshinobu Inoue * documentation and/or other materials provided with the distribution. 1582cd038dSYoshinobu Inoue * 3. Neither the name of the project nor the names of its contributors 1682cd038dSYoshinobu Inoue * may be used to endorse or promote products derived from this software 1782cd038dSYoshinobu Inoue * without specific prior written permission. 1882cd038dSYoshinobu Inoue * 1982cd038dSYoshinobu Inoue * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 2082cd038dSYoshinobu Inoue * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 2182cd038dSYoshinobu Inoue * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 2282cd038dSYoshinobu Inoue * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 2382cd038dSYoshinobu Inoue * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 2482cd038dSYoshinobu Inoue * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 2582cd038dSYoshinobu Inoue * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 2682cd038dSYoshinobu Inoue * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 2782cd038dSYoshinobu Inoue * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 2882cd038dSYoshinobu Inoue * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 2982cd038dSYoshinobu Inoue * SUCH DAMAGE. 30b48287a3SDavid E. O'Brien * 31b48287a3SDavid E. O'Brien * $KAME: nd6.c,v 1.144 2001/05/24 07:44:00 itojun Exp $ 3282cd038dSYoshinobu Inoue */ 3382cd038dSYoshinobu Inoue 34b48287a3SDavid E. O'Brien #include <sys/cdefs.h> 35b48287a3SDavid E. O'Brien __FBSDID("$FreeBSD$"); 36b48287a3SDavid E. O'Brien 37686cdd19SJun-ichiro itojun Hagino #include "opt_inet.h" 38686cdd19SJun-ichiro itojun Hagino #include "opt_inet6.h" 39686cdd19SJun-ichiro itojun Hagino 4082cd038dSYoshinobu Inoue #include <sys/param.h> 4182cd038dSYoshinobu Inoue #include <sys/systm.h> 42e2e050c8SConrad Meyer #include <sys/eventhandler.h> 4333841545SHajimu UMEMOTO #include <sys/callout.h> 44d748f7efSMark Johnston #include <sys/lock.h> 4582cd038dSYoshinobu Inoue #include <sys/malloc.h> 4682cd038dSYoshinobu Inoue #include <sys/mbuf.h> 47d748f7efSMark Johnston #include <sys/mutex.h> 4882cd038dSYoshinobu Inoue #include <sys/socket.h> 4982cd038dSYoshinobu Inoue #include <sys/sockio.h> 5082cd038dSYoshinobu Inoue #include <sys/time.h> 5182cd038dSYoshinobu Inoue #include <sys/kernel.h> 52686cdd19SJun-ichiro itojun Hagino #include <sys/protosw.h> 5382cd038dSYoshinobu Inoue #include <sys/errno.h> 5482cd038dSYoshinobu Inoue #include <sys/syslog.h> 556e6b3f7cSQing Li #include <sys/rwlock.h> 5682cd038dSYoshinobu Inoue #include <sys/queue.h> 5757f60867SMark Johnston #include <sys/sdt.h> 5833841545SHajimu UMEMOTO #include <sys/sysctl.h> 5982cd038dSYoshinobu Inoue 6082cd038dSYoshinobu Inoue #include <net/if.h> 6176039bc8SGleb Smirnoff #include <net/if_var.h> 6282cd038dSYoshinobu Inoue #include <net/if_dl.h> 6382cd038dSYoshinobu Inoue #include <net/if_types.h> 6482cd038dSYoshinobu Inoue #include <net/route.h> 65e7d8af4fSAlexander V. Chernikov #include <net/route/route_var.h> 66539642a2SAlexander V. Chernikov #include <net/route/nhop.h> 674b79449eSBjoern A. Zeeb #include <net/vnet.h> 6882cd038dSYoshinobu Inoue 6982cd038dSYoshinobu Inoue #include <netinet/in.h> 7057f60867SMark Johnston #include <netinet/in_kdtrace.h> 716e6b3f7cSQing Li #include <net/if_llatbl.h> 7282cd038dSYoshinobu Inoue #include <netinet/if_ether.h> 7382cd038dSYoshinobu Inoue #include <netinet6/in6_var.h> 74686cdd19SJun-ichiro itojun Hagino #include <netinet/ip6.h> 7582cd038dSYoshinobu Inoue #include <netinet6/ip6_var.h> 76a1f7e5f8SHajimu UMEMOTO #include <netinet6/scope6_var.h> 7782cd038dSYoshinobu Inoue #include <netinet6/nd6.h> 78a283298cSHiroki Sato #include <netinet6/in6_ifattach.h> 79686cdd19SJun-ichiro itojun Hagino #include <netinet/icmp6.h> 801db8d1f8SAna Kukec #include <netinet6/send.h> 8182cd038dSYoshinobu Inoue 82743eee66SSUZUKI Shinsuke #include <sys/limits.h> 83743eee66SSUZUKI Shinsuke 84aed55708SRobert Watson #include <security/mac/mac_framework.h> 85aed55708SRobert Watson 8682cd038dSYoshinobu Inoue #define ND6_SLOWTIMER_INTERVAL (60 * 60) /* 1 hour */ 8782cd038dSYoshinobu Inoue #define ND6_RECALC_REACHTM_INTERVAL (60 * 120) /* 2 hours */ 8882cd038dSYoshinobu Inoue 8947e8d432SGleb Smirnoff #define SIN6(s) ((const struct sockaddr_in6 *)(s)) 9082cd038dSYoshinobu Inoue 915e0a6f31SMark Johnston MALLOC_DEFINE(M_IP6NDP, "ip6ndp", "IPv6 Neighbor Discovery"); 925e0a6f31SMark Johnston 9382cea7e6SBjoern A. Zeeb /* timer values */ 9482cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_prune) = 1; /* walk list every 1 seconds */ 9582cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_delay) = 5; /* delay first probe time 5 second */ 9682cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_umaxtries) = 3; /* maximum unicast query */ 9782cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_mmaxtries) = 3; /* maximum multicast query */ 9882cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_useloopback) = 1; /* use loopback interface for 9982cea7e6SBjoern A. Zeeb * local traffic */ 10082cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_gctimer) = (60 * 60 * 24); /* 1 day: garbage 10182cea7e6SBjoern A. Zeeb * collection timer */ 102686cdd19SJun-ichiro itojun Hagino 103686cdd19SJun-ichiro itojun Hagino /* preventing too many loops in ND option parsing */ 1045f901c92SAndrew Turner VNET_DEFINE_STATIC(int, nd6_maxndopt) = 10; /* max # of ND options allowed */ 10582cea7e6SBjoern A. Zeeb 10682cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_maxnudhint) = 0; /* max # of subsequent upper 10782cea7e6SBjoern A. Zeeb * layer hints */ 1085f901c92SAndrew Turner VNET_DEFINE_STATIC(int, nd6_maxqueuelen) = 1; /* max pkts cached in unresolved 10982cea7e6SBjoern A. Zeeb * ND entries */ 1101e77c105SRobert Watson #define V_nd6_maxndopt VNET(nd6_maxndopt) 1111e77c105SRobert Watson #define V_nd6_maxqueuelen VNET(nd6_maxqueuelen) 112686cdd19SJun-ichiro itojun Hagino 11382cea7e6SBjoern A. Zeeb #ifdef ND6_DEBUG 11482cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_debug) = 1; 11582cea7e6SBjoern A. Zeeb #else 11682cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_debug) = 0; 11782cea7e6SBjoern A. Zeeb #endif 11833841545SHajimu UMEMOTO 11930b45077SBjoern A. Zeeb static eventhandler_tag lle_event_eh, iflladdr_event_eh, ifnet_link_event_eh; 12030aee131SAndrey V. Elsukov 121eddfbb76SRobert Watson VNET_DEFINE(struct nd_prhead, nd_prefix); 1224de485feSMark Johnston VNET_DEFINE(struct rwlock, nd6_lock); 123d748f7efSMark Johnston VNET_DEFINE(uint64_t, nd6_list_genid); 124d748f7efSMark Johnston VNET_DEFINE(struct mtx, nd6_onlink_mtx); 12582cd038dSYoshinobu Inoue 12682cea7e6SBjoern A. Zeeb VNET_DEFINE(int, nd6_recalc_reachtm_interval) = ND6_RECALC_REACHTM_INTERVAL; 1271e77c105SRobert Watson #define V_nd6_recalc_reachtm_interval VNET(nd6_recalc_reachtm_interval) 12844e33a07SMarko Zec 1291db8d1f8SAna Kukec int (*send_sendso_input_hook)(struct mbuf *, struct ifnet *, int, int); 1301db8d1f8SAna Kukec 131f0316e1aSAlexander V. Chernikov static int nd6_is_new_addr_neighbor(const struct sockaddr_in6 *, 1326f56329aSXin LI struct ifnet *); 1339233d8f3SDavid E. O'Brien static void nd6_setmtu0(struct ifnet *, struct nd_ifinfo *); 1349233d8f3SDavid E. O'Brien static void nd6_slowtimo(void *); 1359233d8f3SDavid E. O'Brien static int regen_tmpaddr(struct in6_ifaddr *); 136435bece4SMark Johnston static void nd6_free(struct llentry **, int); 13717a03656SEric van Gyzen static void nd6_free_redirect(const struct llentry *); 1389233d8f3SDavid E. O'Brien static void nd6_llinfo_timer(void *); 1399b420b3dSAlexander V. Chernikov static void nd6_llinfo_settimer_locked(struct llentry *, long); 1406e6b3f7cSQing Li static void clear_llinfo_pqueue(struct llentry *); 14174787ef4SAlexander V. Chernikov static void nd6_rtrequest(int, struct rtentry *, struct nhop_object *, 14274787ef4SAlexander V. Chernikov struct rt_addrinfo *); 1434fb3a820SAlexander V. Chernikov static int nd6_resolve_slow(struct ifnet *, int, struct mbuf *, 1446d768226SGeorge V. Neville-Neil const struct sockaddr_in6 *, u_char *, uint32_t *, struct llentry **); 1451fe201c3SAlexander V. Chernikov static int nd6_need_cache(struct ifnet *); 1461fe201c3SAlexander V. Chernikov 14733841545SHajimu UMEMOTO 1485f901c92SAndrew Turner VNET_DEFINE_STATIC(struct callout, nd6_slowtimo_ch); 1491e77c105SRobert Watson #define V_nd6_slowtimo_ch VNET(nd6_slowtimo_ch) 150eddfbb76SRobert Watson 1516db65273SBjoern A. Zeeb VNET_DEFINE_STATIC(struct callout, nd6_timer_ch); 1529901091eSBjoern A. Zeeb #define V_nd6_timer_ch VNET(nd6_timer_ch) 153eddfbb76SRobert Watson 1543c5018caSBjoern A. Zeeb SYSCTL_DECL(_net_inet6_icmp6); 1553c5018caSBjoern A. Zeeb 15630aee131SAndrey V. Elsukov static void 15730aee131SAndrey V. Elsukov nd6_lle_event(void *arg __unused, struct llentry *lle, int evt) 15830aee131SAndrey V. Elsukov { 15930aee131SAndrey V. Elsukov struct rt_addrinfo rtinfo; 160314294deSAlexander V. Chernikov struct sockaddr_in6 dst; 16130aee131SAndrey V. Elsukov struct sockaddr_dl gw; 16230aee131SAndrey V. Elsukov struct ifnet *ifp; 16330aee131SAndrey V. Elsukov int type; 164559b4296SAlan Somers int fibnum; 16530aee131SAndrey V. Elsukov 16630aee131SAndrey V. Elsukov LLE_WLOCK_ASSERT(lle); 16730aee131SAndrey V. Elsukov 168314294deSAlexander V. Chernikov if (lltable_get_af(lle->lle_tbl) != AF_INET6) 169314294deSAlexander V. Chernikov return; 170314294deSAlexander V. Chernikov 17130aee131SAndrey V. Elsukov switch (evt) { 17230aee131SAndrey V. Elsukov case LLENTRY_RESOLVED: 17330aee131SAndrey V. Elsukov type = RTM_ADD; 17430aee131SAndrey V. Elsukov KASSERT(lle->la_flags & LLE_VALID, 17530aee131SAndrey V. Elsukov ("%s: %p resolved but not valid?", __func__, lle)); 17630aee131SAndrey V. Elsukov break; 17730aee131SAndrey V. Elsukov case LLENTRY_EXPIRED: 17830aee131SAndrey V. Elsukov type = RTM_DELETE; 17930aee131SAndrey V. Elsukov break; 18030aee131SAndrey V. Elsukov default: 18130aee131SAndrey V. Elsukov return; 18230aee131SAndrey V. Elsukov } 18330aee131SAndrey V. Elsukov 184314294deSAlexander V. Chernikov ifp = lltable_get_ifp(lle->lle_tbl); 18530aee131SAndrey V. Elsukov 18630aee131SAndrey V. Elsukov bzero(&dst, sizeof(dst)); 18730aee131SAndrey V. Elsukov bzero(&gw, sizeof(gw)); 18830aee131SAndrey V. Elsukov bzero(&rtinfo, sizeof(rtinfo)); 189314294deSAlexander V. Chernikov lltable_fill_sa_entry(lle, (struct sockaddr *)&dst); 19030aee131SAndrey V. Elsukov dst.sin6_scope_id = in6_getscopezone(ifp, 191314294deSAlexander V. Chernikov in6_addrscope(&dst.sin6_addr)); 19230aee131SAndrey V. Elsukov gw.sdl_len = sizeof(struct sockaddr_dl); 19330aee131SAndrey V. Elsukov gw.sdl_family = AF_LINK; 19430aee131SAndrey V. Elsukov gw.sdl_alen = ifp->if_addrlen; 19530aee131SAndrey V. Elsukov gw.sdl_index = ifp->if_index; 19630aee131SAndrey V. Elsukov gw.sdl_type = ifp->if_type; 19730aee131SAndrey V. Elsukov if (evt == LLENTRY_RESOLVED) 1984fb3a820SAlexander V. Chernikov bcopy(lle->ll_addr, gw.sdl_data, ifp->if_addrlen); 19930aee131SAndrey V. Elsukov rtinfo.rti_info[RTAX_DST] = (struct sockaddr *)&dst; 20030aee131SAndrey V. Elsukov rtinfo.rti_info[RTAX_GATEWAY] = (struct sockaddr *)&gw; 20130aee131SAndrey V. Elsukov rtinfo.rti_addrs = RTA_DST | RTA_GATEWAY; 202559b4296SAlan Somers fibnum = V_rt_add_addr_allfibs ? RT_ALL_FIBS : ifp->if_fib; 20330aee131SAndrey V. Elsukov rt_missmsg_fib(type, &rtinfo, RTF_HOST | RTF_LLDATA | ( 204559b4296SAlan Somers type == RTM_ADD ? RTF_UP: 0), 0, fibnum); 20530aee131SAndrey V. Elsukov } 20630aee131SAndrey V. Elsukov 2074fb3a820SAlexander V. Chernikov /* 2084fb3a820SAlexander V. Chernikov * A handler for interface link layer address change event. 2094fb3a820SAlexander V. Chernikov */ 2104fb3a820SAlexander V. Chernikov static void 2114fb3a820SAlexander V. Chernikov nd6_iflladdr(void *arg __unused, struct ifnet *ifp) 2124fb3a820SAlexander V. Chernikov { 2134fb3a820SAlexander V. Chernikov 2144fb3a820SAlexander V. Chernikov lltable_update_ifaddr(LLTABLE6(ifp)); 2154fb3a820SAlexander V. Chernikov } 2164fb3a820SAlexander V. Chernikov 21782cd038dSYoshinobu Inoue void 2181272577eSXin LI nd6_init(void) 21982cd038dSYoshinobu Inoue { 22082cd038dSYoshinobu Inoue 221d748f7efSMark Johnston mtx_init(&V_nd6_onlink_mtx, "nd6 onlink", NULL, MTX_DEF); 222d748f7efSMark Johnston rw_init(&V_nd6_lock, "nd6 list"); 2234de485feSMark Johnston 22444e33a07SMarko Zec LIST_INIT(&V_nd_prefix); 225ad675b32SBjoern A. Zeeb nd6_defrouter_init(); 22682cea7e6SBjoern A. Zeeb 2279901091eSBjoern A. Zeeb /* Start timers. */ 228603724d3SBjoern A. Zeeb callout_init(&V_nd6_slowtimo_ch, 0); 229603724d3SBjoern A. Zeeb callout_reset(&V_nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 230f6dfe47aSMarko Zec nd6_slowtimo, curvnet); 231d6ad6a86SMark Johnston 2329901091eSBjoern A. Zeeb callout_init(&V_nd6_timer_ch, 0); 2339901091eSBjoern A. Zeeb callout_reset(&V_nd6_timer_ch, hz, nd6_timer, curvnet); 2349901091eSBjoern A. Zeeb 235d6ad6a86SMark Johnston nd6_dad_init(); 2364fb3a820SAlexander V. Chernikov if (IS_DEFAULT_VNET(curvnet)) { 23730aee131SAndrey V. Elsukov lle_event_eh = EVENTHANDLER_REGISTER(lle_event, nd6_lle_event, 23830aee131SAndrey V. Elsukov NULL, EVENTHANDLER_PRI_ANY); 2394fb3a820SAlexander V. Chernikov iflladdr_event_eh = EVENTHANDLER_REGISTER(iflladdr_event, 2404fb3a820SAlexander V. Chernikov nd6_iflladdr, NULL, EVENTHANDLER_PRI_ANY); 24130b45077SBjoern A. Zeeb ifnet_link_event_eh = EVENTHANDLER_REGISTER(ifnet_link_event, 24230b45077SBjoern A. Zeeb nd6_ifnet_link_event, NULL, EVENTHANDLER_PRI_ANY); 2434fb3a820SAlexander V. Chernikov } 24482cd038dSYoshinobu Inoue } 24582cd038dSYoshinobu Inoue 246bc29160dSMarko Zec #ifdef VIMAGE 247bc29160dSMarko Zec void 248bc29160dSMarko Zec nd6_destroy() 249bc29160dSMarko Zec { 250bc29160dSMarko Zec 251bc29160dSMarko Zec callout_drain(&V_nd6_slowtimo_ch); 252bc29160dSMarko Zec callout_drain(&V_nd6_timer_ch); 2534fb3a820SAlexander V. Chernikov if (IS_DEFAULT_VNET(curvnet)) { 25430b45077SBjoern A. Zeeb EVENTHANDLER_DEREGISTER(ifnet_link_event, ifnet_link_event_eh); 25530aee131SAndrey V. Elsukov EVENTHANDLER_DEREGISTER(lle_event, lle_event_eh); 2564fb3a820SAlexander V. Chernikov EVENTHANDLER_DEREGISTER(iflladdr_event, iflladdr_event_eh); 2574fb3a820SAlexander V. Chernikov } 2584de485feSMark Johnston rw_destroy(&V_nd6_lock); 259d748f7efSMark Johnston mtx_destroy(&V_nd6_onlink_mtx); 260bc29160dSMarko Zec } 261bc29160dSMarko Zec #endif 262bc29160dSMarko Zec 26331b1bfe1SHajimu UMEMOTO struct nd_ifinfo * 2641272577eSXin LI nd6_ifattach(struct ifnet *ifp) 26582cd038dSYoshinobu Inoue { 26631b1bfe1SHajimu UMEMOTO struct nd_ifinfo *nd; 26782cd038dSYoshinobu Inoue 268fc315641SMark Johnston nd = malloc(sizeof(*nd), M_IP6NDP, M_WAITOK | M_ZERO); 26931b1bfe1SHajimu UMEMOTO nd->initialized = 1; 27082cd038dSYoshinobu Inoue 27131b1bfe1SHajimu UMEMOTO nd->chlim = IPV6_DEFHLIM; 27231b1bfe1SHajimu UMEMOTO nd->basereachable = REACHABLE_TIME; 27331b1bfe1SHajimu UMEMOTO nd->reachable = ND_COMPUTE_RTIME(nd->basereachable); 27431b1bfe1SHajimu UMEMOTO nd->retrans = RETRANS_TIMER; 275a283298cSHiroki Sato 276a283298cSHiroki Sato nd->flags = ND6_IFF_PERFORMNUD; 277a283298cSHiroki Sato 278af805644SHiroki Sato /* A loopback interface always has ND6_IFF_AUTO_LINKLOCAL. 279af805644SHiroki Sato * XXXHRS: Clear ND6_IFF_AUTO_LINKLOCAL on an IFT_BRIDGE interface by 280af805644SHiroki Sato * default regardless of the V_ip6_auto_linklocal configuration to 281af805644SHiroki Sato * give a reasonable default behavior. 282af805644SHiroki Sato */ 283af805644SHiroki Sato if ((V_ip6_auto_linklocal && ifp->if_type != IFT_BRIDGE) || 284af805644SHiroki Sato (ifp->if_flags & IFF_LOOPBACK)) 285a283298cSHiroki Sato nd->flags |= ND6_IFF_AUTO_LINKLOCAL; 286af805644SHiroki Sato /* 287af805644SHiroki Sato * A loopback interface does not need to accept RTADV. 288af805644SHiroki Sato * XXXHRS: Clear ND6_IFF_ACCEPT_RTADV on an IFT_BRIDGE interface by 289af805644SHiroki Sato * default regardless of the V_ip6_accept_rtadv configuration to 290af805644SHiroki Sato * prevent the interface from accepting RA messages arrived 291af805644SHiroki Sato * on one of the member interfaces with ND6_IFF_ACCEPT_RTADV. 292af805644SHiroki Sato */ 293af805644SHiroki Sato if (V_ip6_accept_rtadv && 294af805644SHiroki Sato !(ifp->if_flags & IFF_LOOPBACK) && 295af805644SHiroki Sato (ifp->if_type != IFT_BRIDGE)) 296a283298cSHiroki Sato nd->flags |= ND6_IFF_ACCEPT_RTADV; 297e7fa8d0aSHiroki Sato if (V_ip6_no_radr && !(ifp->if_flags & IFF_LOOPBACK)) 298e7fa8d0aSHiroki Sato nd->flags |= ND6_IFF_NO_RADR; 29931b1bfe1SHajimu UMEMOTO 30031b1bfe1SHajimu UMEMOTO /* XXX: we cannot call nd6_setmtu since ifp is not fully initialized */ 30131b1bfe1SHajimu UMEMOTO nd6_setmtu0(ifp, nd); 30231b1bfe1SHajimu UMEMOTO 30331b1bfe1SHajimu UMEMOTO return nd; 30431b1bfe1SHajimu UMEMOTO } 30531b1bfe1SHajimu UMEMOTO 30631b1bfe1SHajimu UMEMOTO void 30789856f7eSBjoern A. Zeeb nd6_ifdetach(struct ifnet *ifp, struct nd_ifinfo *nd) 30831b1bfe1SHajimu UMEMOTO { 309a68cc388SGleb Smirnoff struct epoch_tracker et; 31089856f7eSBjoern A. Zeeb struct ifaddr *ifa, *next; 31189856f7eSBjoern A. Zeeb 312a68cc388SGleb Smirnoff NET_EPOCH_ENTER(et); 313d7c5a620SMatt Macy CK_STAILQ_FOREACH_SAFE(ifa, &ifp->if_addrhead, ifa_link, next) { 31489856f7eSBjoern A. Zeeb if (ifa->ifa_addr->sa_family != AF_INET6) 31589856f7eSBjoern A. Zeeb continue; 31689856f7eSBjoern A. Zeeb 31789856f7eSBjoern A. Zeeb /* stop DAD processing */ 31889856f7eSBjoern A. Zeeb nd6_dad_stop(ifa); 31989856f7eSBjoern A. Zeeb } 320a68cc388SGleb Smirnoff NET_EPOCH_EXIT(et); 32131b1bfe1SHajimu UMEMOTO 32231b1bfe1SHajimu UMEMOTO free(nd, M_IP6NDP); 32382cd038dSYoshinobu Inoue } 32482cd038dSYoshinobu Inoue 32582cd038dSYoshinobu Inoue /* 32682cd038dSYoshinobu Inoue * Reset ND level link MTU. This function is called when the physical MTU 32782cd038dSYoshinobu Inoue * changes, which means we might have to adjust the ND level MTU. 32882cd038dSYoshinobu Inoue */ 32982cd038dSYoshinobu Inoue void 3301272577eSXin LI nd6_setmtu(struct ifnet *ifp) 33182cd038dSYoshinobu Inoue { 3327e037c12SKristof Provost if (ifp->if_afdata[AF_INET6] == NULL) 3337e037c12SKristof Provost return; 33431b1bfe1SHajimu UMEMOTO 33531b1bfe1SHajimu UMEMOTO nd6_setmtu0(ifp, ND_IFINFO(ifp)); 33631b1bfe1SHajimu UMEMOTO } 33731b1bfe1SHajimu UMEMOTO 33831b1bfe1SHajimu UMEMOTO /* XXX todo: do not maintain copy of ifp->if_mtu in ndi->maxmtu */ 33931b1bfe1SHajimu UMEMOTO void 3401272577eSXin LI nd6_setmtu0(struct ifnet *ifp, struct nd_ifinfo *ndi) 34131b1bfe1SHajimu UMEMOTO { 34231b3783cSHajimu UMEMOTO u_int32_t omaxmtu; 34331b1bfe1SHajimu UMEMOTO 34431b3783cSHajimu UMEMOTO omaxmtu = ndi->maxmtu; 34582cd038dSYoshinobu Inoue ndi->maxmtu = ifp->if_mtu; 34682cd038dSYoshinobu Inoue 34782cd038dSYoshinobu Inoue /* 34831b3783cSHajimu UMEMOTO * Decreasing the interface MTU under IPV6 minimum MTU may cause 34931b3783cSHajimu UMEMOTO * undesirable situation. We thus notify the operator of the change 35031b3783cSHajimu UMEMOTO * explicitly. The check for omaxmtu is necessary to restrict the 35131b3783cSHajimu UMEMOTO * log to the case of changing the MTU, not initializing it. 35282cd038dSYoshinobu Inoue */ 35331b3783cSHajimu UMEMOTO if (omaxmtu >= IPV6_MMTU && ndi->maxmtu < IPV6_MMTU) { 35431b3783cSHajimu UMEMOTO log(LOG_NOTICE, "nd6_setmtu0: " 35531b3783cSHajimu UMEMOTO "new link MTU on %s (%lu) is too small for IPv6\n", 35631b3783cSHajimu UMEMOTO if_name(ifp), (unsigned long)ndi->maxmtu); 35782cd038dSYoshinobu Inoue } 35831b3783cSHajimu UMEMOTO 359603724d3SBjoern A. Zeeb if (ndi->maxmtu > V_in6_maxmtu) 36031b3783cSHajimu UMEMOTO in6_setmaxmtu(); /* check all interfaces just in case */ 36131b3783cSHajimu UMEMOTO 36282cd038dSYoshinobu Inoue } 36382cd038dSYoshinobu Inoue 36482cd038dSYoshinobu Inoue void 3651272577eSXin LI nd6_option_init(void *opt, int icmp6len, union nd_opts *ndopts) 36682cd038dSYoshinobu Inoue { 36707eb2995SHajimu UMEMOTO 36882cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 36982cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)opt; 37082cd038dSYoshinobu Inoue ndopts->nd_opts_last 37182cd038dSYoshinobu Inoue = (struct nd_opt_hdr *)(((u_char *)opt) + icmp6len); 37282cd038dSYoshinobu Inoue 37382cd038dSYoshinobu Inoue if (icmp6len == 0) { 37482cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 37582cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 37682cd038dSYoshinobu Inoue } 37782cd038dSYoshinobu Inoue } 37882cd038dSYoshinobu Inoue 37982cd038dSYoshinobu Inoue /* 38082cd038dSYoshinobu Inoue * Take one ND option. 38182cd038dSYoshinobu Inoue */ 38282cd038dSYoshinobu Inoue struct nd_opt_hdr * 3831272577eSXin LI nd6_option(union nd_opts *ndopts) 38482cd038dSYoshinobu Inoue { 38582cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 38682cd038dSYoshinobu Inoue int olen; 38782cd038dSYoshinobu Inoue 38839e19560SBjoern A. Zeeb KASSERT(ndopts != NULL, ("%s: ndopts == NULL", __func__)); 38939e19560SBjoern A. Zeeb KASSERT(ndopts->nd_opts_last != NULL, ("%s: uninitialized ndopts", 39039e19560SBjoern A. Zeeb __func__)); 3912ce62dceSSUZUKI Shinsuke if (ndopts->nd_opts_search == NULL) 39282cd038dSYoshinobu Inoue return NULL; 39382cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 39482cd038dSYoshinobu Inoue return NULL; 39582cd038dSYoshinobu Inoue 39682cd038dSYoshinobu Inoue nd_opt = ndopts->nd_opts_search; 39782cd038dSYoshinobu Inoue 39819391949SKris Kennaway /* make sure nd_opt_len is inside the buffer */ 39919391949SKris Kennaway if ((caddr_t)&nd_opt->nd_opt_len >= (caddr_t)ndopts->nd_opts_last) { 40019391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 40119391949SKris Kennaway return NULL; 40219391949SKris Kennaway } 40319391949SKris Kennaway 40482cd038dSYoshinobu Inoue olen = nd_opt->nd_opt_len << 3; 40582cd038dSYoshinobu Inoue if (olen == 0) { 40682cd038dSYoshinobu Inoue /* 40782cd038dSYoshinobu Inoue * Message validation requires that all included 40882cd038dSYoshinobu Inoue * options have a length that is greater than zero. 40982cd038dSYoshinobu Inoue */ 41082cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 41182cd038dSYoshinobu Inoue return NULL; 41282cd038dSYoshinobu Inoue } 41382cd038dSYoshinobu Inoue 41482cd038dSYoshinobu Inoue ndopts->nd_opts_search = (struct nd_opt_hdr *)((caddr_t)nd_opt + olen); 41519391949SKris Kennaway if (ndopts->nd_opts_search > ndopts->nd_opts_last) { 41619391949SKris Kennaway /* option overruns the end of buffer, invalid */ 41719391949SKris Kennaway bzero(ndopts, sizeof(*ndopts)); 41819391949SKris Kennaway return NULL; 41919391949SKris Kennaway } else if (ndopts->nd_opts_search == ndopts->nd_opts_last) { 42019391949SKris Kennaway /* reached the end of options chain */ 42182cd038dSYoshinobu Inoue ndopts->nd_opts_done = 1; 42282cd038dSYoshinobu Inoue ndopts->nd_opts_search = NULL; 42382cd038dSYoshinobu Inoue } 42482cd038dSYoshinobu Inoue return nd_opt; 42582cd038dSYoshinobu Inoue } 42682cd038dSYoshinobu Inoue 42782cd038dSYoshinobu Inoue /* 42882cd038dSYoshinobu Inoue * Parse multiple ND options. 42982cd038dSYoshinobu Inoue * This function is much easier to use, for ND routines that do not need 43082cd038dSYoshinobu Inoue * multiple options of the same type. 43182cd038dSYoshinobu Inoue */ 43282cd038dSYoshinobu Inoue int 4331272577eSXin LI nd6_options(union nd_opts *ndopts) 43482cd038dSYoshinobu Inoue { 43582cd038dSYoshinobu Inoue struct nd_opt_hdr *nd_opt; 43682cd038dSYoshinobu Inoue int i = 0; 43782cd038dSYoshinobu Inoue 43839e19560SBjoern A. Zeeb KASSERT(ndopts != NULL, ("%s: ndopts == NULL", __func__)); 43939e19560SBjoern A. Zeeb KASSERT(ndopts->nd_opts_last != NULL, ("%s: uninitialized ndopts", 44039e19560SBjoern A. Zeeb __func__)); 4412ce62dceSSUZUKI Shinsuke if (ndopts->nd_opts_search == NULL) 44282cd038dSYoshinobu Inoue return 0; 44382cd038dSYoshinobu Inoue 44482cd038dSYoshinobu Inoue while (1) { 44582cd038dSYoshinobu Inoue nd_opt = nd6_option(ndopts); 4462ce62dceSSUZUKI Shinsuke if (nd_opt == NULL && ndopts->nd_opts_last == NULL) { 44782cd038dSYoshinobu Inoue /* 44882cd038dSYoshinobu Inoue * Message validation requires that all included 44982cd038dSYoshinobu Inoue * options have a length that is greater than zero. 45082cd038dSYoshinobu Inoue */ 451e27b0c87SRobert Watson ICMP6STAT_INC(icp6s_nd_badopt); 45282cd038dSYoshinobu Inoue bzero(ndopts, sizeof(*ndopts)); 45382cd038dSYoshinobu Inoue return -1; 45482cd038dSYoshinobu Inoue } 45582cd038dSYoshinobu Inoue 4562ce62dceSSUZUKI Shinsuke if (nd_opt == NULL) 45782cd038dSYoshinobu Inoue goto skip1; 45882cd038dSYoshinobu Inoue 45982cd038dSYoshinobu Inoue switch (nd_opt->nd_opt_type) { 46082cd038dSYoshinobu Inoue case ND_OPT_SOURCE_LINKADDR: 46182cd038dSYoshinobu Inoue case ND_OPT_TARGET_LINKADDR: 46282cd038dSYoshinobu Inoue case ND_OPT_MTU: 46382cd038dSYoshinobu Inoue case ND_OPT_REDIRECTED_HEADER: 46411d8451dSHiroki Sato case ND_OPT_NONCE: 46582cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type]) { 46633841545SHajimu UMEMOTO nd6log((LOG_INFO, 46733841545SHajimu UMEMOTO "duplicated ND6 option found (type=%d)\n", 46833841545SHajimu UMEMOTO nd_opt->nd_opt_type)); 46982cd038dSYoshinobu Inoue /* XXX bark? */ 47082cd038dSYoshinobu Inoue } else { 47182cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 47282cd038dSYoshinobu Inoue = nd_opt; 47382cd038dSYoshinobu Inoue } 47482cd038dSYoshinobu Inoue break; 47582cd038dSYoshinobu Inoue case ND_OPT_PREFIX_INFORMATION: 47682cd038dSYoshinobu Inoue if (ndopts->nd_opt_array[nd_opt->nd_opt_type] == 0) { 47782cd038dSYoshinobu Inoue ndopts->nd_opt_array[nd_opt->nd_opt_type] 47882cd038dSYoshinobu Inoue = nd_opt; 47982cd038dSYoshinobu Inoue } 48082cd038dSYoshinobu Inoue ndopts->nd_opts_pi_end = 48182cd038dSYoshinobu Inoue (struct nd_opt_prefix_info *)nd_opt; 48282cd038dSYoshinobu Inoue break; 483abbe8356SBjoern A. Zeeb /* What about ND_OPT_ROUTE_INFO? RFC 4191 */ 484abbe8356SBjoern A. Zeeb case ND_OPT_RDNSS: /* RFC 6106 */ 485abbe8356SBjoern A. Zeeb case ND_OPT_DNSSL: /* RFC 6106 */ 486abbe8356SBjoern A. Zeeb /* 487abbe8356SBjoern A. Zeeb * Silently ignore options we know and do not care about 488abbe8356SBjoern A. Zeeb * in the kernel. 489abbe8356SBjoern A. Zeeb */ 490abbe8356SBjoern A. Zeeb break; 49182cd038dSYoshinobu Inoue default: 49282cd038dSYoshinobu Inoue /* 49382cd038dSYoshinobu Inoue * Unknown options must be silently ignored, 494a4641f4eSPedro F. Giffuni * to accommodate future extension to the protocol. 49582cd038dSYoshinobu Inoue */ 49633841545SHajimu UMEMOTO nd6log((LOG_DEBUG, 49782cd038dSYoshinobu Inoue "nd6_options: unsupported option %d - " 49833841545SHajimu UMEMOTO "option ignored\n", nd_opt->nd_opt_type)); 49982cd038dSYoshinobu Inoue } 50082cd038dSYoshinobu Inoue 50182cd038dSYoshinobu Inoue skip1: 50282cd038dSYoshinobu Inoue i++; 503603724d3SBjoern A. Zeeb if (i > V_nd6_maxndopt) { 504e27b0c87SRobert Watson ICMP6STAT_INC(icp6s_nd_toomanyopt); 50533841545SHajimu UMEMOTO nd6log((LOG_INFO, "too many loop in nd opt\n")); 50682cd038dSYoshinobu Inoue break; 50782cd038dSYoshinobu Inoue } 50882cd038dSYoshinobu Inoue 50982cd038dSYoshinobu Inoue if (ndopts->nd_opts_done) 51082cd038dSYoshinobu Inoue break; 51182cd038dSYoshinobu Inoue } 51282cd038dSYoshinobu Inoue 51382cd038dSYoshinobu Inoue return 0; 51482cd038dSYoshinobu Inoue } 51582cd038dSYoshinobu Inoue 51682cd038dSYoshinobu Inoue /* 517743eee66SSUZUKI Shinsuke * ND6 timer routine to handle ND6 entries 51882cd038dSYoshinobu Inoue */ 5199b420b3dSAlexander V. Chernikov static void 5206e6b3f7cSQing Li nd6_llinfo_settimer_locked(struct llentry *ln, long tick) 521743eee66SSUZUKI Shinsuke { 522ef8d671cSHajimu UMEMOTO int canceled; 523ef8d671cSHajimu UMEMOTO 524e6950476SBjoern A. Zeeb LLE_WLOCK_ASSERT(ln); 525e6950476SBjoern A. Zeeb 526743eee66SSUZUKI Shinsuke if (tick < 0) { 5276e6b3f7cSQing Li ln->la_expire = 0; 528743eee66SSUZUKI Shinsuke ln->ln_ntick = 0; 5290447c136SAlexander V. Chernikov canceled = callout_stop(&ln->lle_timer); 530743eee66SSUZUKI Shinsuke } else { 5317d26db17SHiroki Sato ln->la_expire = time_uptime + tick / hz; 5326e6b3f7cSQing Li LLE_ADDREF(ln); 533743eee66SSUZUKI Shinsuke if (tick > INT_MAX) { 534743eee66SSUZUKI Shinsuke ln->ln_ntick = tick - INT_MAX; 5350447c136SAlexander V. Chernikov canceled = callout_reset(&ln->lle_timer, INT_MAX, 536743eee66SSUZUKI Shinsuke nd6_llinfo_timer, ln); 537743eee66SSUZUKI Shinsuke } else { 538743eee66SSUZUKI Shinsuke ln->ln_ntick = 0; 5390447c136SAlexander V. Chernikov canceled = callout_reset(&ln->lle_timer, tick, 540743eee66SSUZUKI Shinsuke nd6_llinfo_timer, ln); 541743eee66SSUZUKI Shinsuke } 542743eee66SSUZUKI Shinsuke } 5437c4676ddSRandall Stewart if (canceled > 0) 544ef8d671cSHajimu UMEMOTO LLE_REMREF(ln); 545743eee66SSUZUKI Shinsuke } 54682cd038dSYoshinobu Inoue 54726deb882SAlexander V. Chernikov /* 54826deb882SAlexander V. Chernikov * Gets source address of the first packet in hold queue 54926deb882SAlexander V. Chernikov * and stores it in @src. 55026deb882SAlexander V. Chernikov * Returns pointer to @src (if hold queue is not empty) or NULL. 55126deb882SAlexander V. Chernikov * 552c0b8aeaeSAlexander V. Chernikov * Set noinline to be dtrace-friendly 55326deb882SAlexander V. Chernikov */ 554c0b8aeaeSAlexander V. Chernikov static __noinline struct in6_addr * 55526deb882SAlexander V. Chernikov nd6_llinfo_get_holdsrc(struct llentry *ln, struct in6_addr *src) 55626deb882SAlexander V. Chernikov { 55726deb882SAlexander V. Chernikov struct ip6_hdr hdr; 55826deb882SAlexander V. Chernikov struct mbuf *m; 55926deb882SAlexander V. Chernikov 56026deb882SAlexander V. Chernikov if (ln->la_hold == NULL) 56126deb882SAlexander V. Chernikov return (NULL); 56226deb882SAlexander V. Chernikov 56326deb882SAlexander V. Chernikov /* 56426deb882SAlexander V. Chernikov * assume every packet in la_hold has the same IP header 56526deb882SAlexander V. Chernikov */ 56626deb882SAlexander V. Chernikov m = ln->la_hold; 56706a60e4bSAlexander V. Chernikov if (sizeof(hdr) > m->m_len) 56826deb882SAlexander V. Chernikov return (NULL); 56926deb882SAlexander V. Chernikov 57026deb882SAlexander V. Chernikov m_copydata(m, 0, sizeof(hdr), (caddr_t)&hdr); 57126deb882SAlexander V. Chernikov *src = hdr.ip6_src; 57226deb882SAlexander V. Chernikov 57326deb882SAlexander V. Chernikov return (src); 57426deb882SAlexander V. Chernikov } 57526deb882SAlexander V. Chernikov 576aa5f023eSAlexander V. Chernikov /* 57712cb7521SAlexander V. Chernikov * Checks if we need to switch from STALE state. 57812cb7521SAlexander V. Chernikov * 57912cb7521SAlexander V. Chernikov * RFC 4861 requires switching from STALE to DELAY state 58012cb7521SAlexander V. Chernikov * on first packet matching entry, waiting V_nd6_delay and 58112cb7521SAlexander V. Chernikov * transition to PROBE state (if upper layer confirmation was 58212cb7521SAlexander V. Chernikov * not received). 58312cb7521SAlexander V. Chernikov * 58412cb7521SAlexander V. Chernikov * This code performs a bit differently: 58512cb7521SAlexander V. Chernikov * On packet hit we don't change state (but desired state 58612cb7521SAlexander V. Chernikov * can be guessed by control plane). However, after V_nd6_delay 58712cb7521SAlexander V. Chernikov * seconds code will transition to PROBE state (so DELAY state 58812cb7521SAlexander V. Chernikov * is kinda skipped in most situations). 58912cb7521SAlexander V. Chernikov * 59012cb7521SAlexander V. Chernikov * Typically, V_nd6_gctimer is bigger than V_nd6_delay, so 59112cb7521SAlexander V. Chernikov * we perform the following upon entering STALE state: 59212cb7521SAlexander V. Chernikov * 59312cb7521SAlexander V. Chernikov * 1) Arm timer to run each V_nd6_delay seconds to make sure that 59412cb7521SAlexander V. Chernikov * if packet was transmitted at the start of given interval, we 59512cb7521SAlexander V. Chernikov * would be able to switch to PROBE state in V_nd6_delay seconds 59612cb7521SAlexander V. Chernikov * as user expects. 59712cb7521SAlexander V. Chernikov * 59812cb7521SAlexander V. Chernikov * 2) Reschedule timer until original V_nd6_gctimer expires keeping 59912cb7521SAlexander V. Chernikov * lle in STALE state (remaining timer value stored in lle_remtime). 60012cb7521SAlexander V. Chernikov * 60112cb7521SAlexander V. Chernikov * 3) Reschedule timer if packet was transmitted less that V_nd6_delay 60212cb7521SAlexander V. Chernikov * seconds ago. 60312cb7521SAlexander V. Chernikov * 60412cb7521SAlexander V. Chernikov * Returns non-zero value if the entry is still STALE (storing 60512cb7521SAlexander V. Chernikov * the next timer interval in @pdelay). 60612cb7521SAlexander V. Chernikov * 60712cb7521SAlexander V. Chernikov * Returns zero value if original timer expired or we need to switch to 60812cb7521SAlexander V. Chernikov * PROBE (store that in @do_switch variable). 60912cb7521SAlexander V. Chernikov */ 61012cb7521SAlexander V. Chernikov static int 61112cb7521SAlexander V. Chernikov nd6_is_stale(struct llentry *lle, long *pdelay, int *do_switch) 61212cb7521SAlexander V. Chernikov { 61312cb7521SAlexander V. Chernikov int nd_delay, nd_gctimer, r_skip_req; 61412cb7521SAlexander V. Chernikov time_t lle_hittime; 61512cb7521SAlexander V. Chernikov long delay; 61612cb7521SAlexander V. Chernikov 61712cb7521SAlexander V. Chernikov *do_switch = 0; 61812cb7521SAlexander V. Chernikov nd_gctimer = V_nd6_gctimer; 61912cb7521SAlexander V. Chernikov nd_delay = V_nd6_delay; 62012cb7521SAlexander V. Chernikov 62112cb7521SAlexander V. Chernikov LLE_REQ_LOCK(lle); 62212cb7521SAlexander V. Chernikov r_skip_req = lle->r_skip_req; 62312cb7521SAlexander V. Chernikov lle_hittime = lle->lle_hittime; 62412cb7521SAlexander V. Chernikov LLE_REQ_UNLOCK(lle); 62512cb7521SAlexander V. Chernikov 62612cb7521SAlexander V. Chernikov if (r_skip_req > 0) { 62712cb7521SAlexander V. Chernikov 62812cb7521SAlexander V. Chernikov /* 62912cb7521SAlexander V. Chernikov * Nonzero r_skip_req value was set upon entering 63012cb7521SAlexander V. Chernikov * STALE state. Since value was not changed, no 63112cb7521SAlexander V. Chernikov * packets were passed using this lle. Ask for 63212cb7521SAlexander V. Chernikov * timer reschedule and keep STALE state. 63312cb7521SAlexander V. Chernikov */ 63412cb7521SAlexander V. Chernikov delay = (long)(MIN(nd_gctimer, nd_delay)); 63512cb7521SAlexander V. Chernikov delay *= hz; 63612cb7521SAlexander V. Chernikov if (lle->lle_remtime > delay) 63712cb7521SAlexander V. Chernikov lle->lle_remtime -= delay; 63812cb7521SAlexander V. Chernikov else { 63912cb7521SAlexander V. Chernikov delay = lle->lle_remtime; 64012cb7521SAlexander V. Chernikov lle->lle_remtime = 0; 64112cb7521SAlexander V. Chernikov } 64212cb7521SAlexander V. Chernikov 64312cb7521SAlexander V. Chernikov if (delay == 0) { 64412cb7521SAlexander V. Chernikov 64512cb7521SAlexander V. Chernikov /* 64612cb7521SAlexander V. Chernikov * The original ng6_gctime timeout ended, 64712cb7521SAlexander V. Chernikov * no more rescheduling. 64812cb7521SAlexander V. Chernikov */ 64912cb7521SAlexander V. Chernikov return (0); 65012cb7521SAlexander V. Chernikov } 65112cb7521SAlexander V. Chernikov 65212cb7521SAlexander V. Chernikov *pdelay = delay; 65312cb7521SAlexander V. Chernikov return (1); 65412cb7521SAlexander V. Chernikov } 65512cb7521SAlexander V. Chernikov 65612cb7521SAlexander V. Chernikov /* 65712cb7521SAlexander V. Chernikov * Packet received. Verify timestamp 65812cb7521SAlexander V. Chernikov */ 65912cb7521SAlexander V. Chernikov delay = (long)(time_uptime - lle_hittime); 66012cb7521SAlexander V. Chernikov if (delay < nd_delay) { 66112cb7521SAlexander V. Chernikov 66212cb7521SAlexander V. Chernikov /* 66312cb7521SAlexander V. Chernikov * V_nd6_delay still not passed since the first 66412cb7521SAlexander V. Chernikov * hit in STALE state. 66512cb7521SAlexander V. Chernikov * Reshedule timer and return. 66612cb7521SAlexander V. Chernikov */ 66712cb7521SAlexander V. Chernikov *pdelay = (long)(nd_delay - delay) * hz; 66812cb7521SAlexander V. Chernikov return (1); 66912cb7521SAlexander V. Chernikov } 67012cb7521SAlexander V. Chernikov 67112cb7521SAlexander V. Chernikov /* Request switching to probe */ 67212cb7521SAlexander V. Chernikov *do_switch = 1; 67312cb7521SAlexander V. Chernikov return (0); 67412cb7521SAlexander V. Chernikov } 67512cb7521SAlexander V. Chernikov 67612cb7521SAlexander V. Chernikov 67712cb7521SAlexander V. Chernikov /* 678aa5f023eSAlexander V. Chernikov * Switch @lle state to new state optionally arming timers. 679c0b8aeaeSAlexander V. Chernikov * 680c0b8aeaeSAlexander V. Chernikov * Set noinline to be dtrace-friendly 681aa5f023eSAlexander V. Chernikov */ 682c0b8aeaeSAlexander V. Chernikov __noinline void 683aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(struct llentry *lle, int newstate) 684aa5f023eSAlexander V. Chernikov { 685aa5f023eSAlexander V. Chernikov struct ifnet *ifp; 68612cb7521SAlexander V. Chernikov int nd_gctimer, nd_delay; 68712cb7521SAlexander V. Chernikov long delay, remtime; 688aa5f023eSAlexander V. Chernikov 689aa5f023eSAlexander V. Chernikov delay = 0; 69012cb7521SAlexander V. Chernikov remtime = 0; 691aa5f023eSAlexander V. Chernikov 692aa5f023eSAlexander V. Chernikov switch (newstate) { 693aa5f023eSAlexander V. Chernikov case ND6_LLINFO_INCOMPLETE: 694aa5f023eSAlexander V. Chernikov ifp = lle->lle_tbl->llt_ifp; 695aa5f023eSAlexander V. Chernikov delay = (long)ND_IFINFO(ifp)->retrans * hz / 1000; 696aa5f023eSAlexander V. Chernikov break; 697aa5f023eSAlexander V. Chernikov case ND6_LLINFO_REACHABLE: 698aa5f023eSAlexander V. Chernikov if (!ND6_LLINFO_PERMANENT(lle)) { 699aa5f023eSAlexander V. Chernikov ifp = lle->lle_tbl->llt_ifp; 700aa5f023eSAlexander V. Chernikov delay = (long)ND_IFINFO(ifp)->reachable * hz; 701aa5f023eSAlexander V. Chernikov } 702aa5f023eSAlexander V. Chernikov break; 703aa5f023eSAlexander V. Chernikov case ND6_LLINFO_STALE: 70412cb7521SAlexander V. Chernikov 70512cb7521SAlexander V. Chernikov /* 70612cb7521SAlexander V. Chernikov * Notify fast path that we want to know if any packet 70712cb7521SAlexander V. Chernikov * is transmitted by setting r_skip_req. 70812cb7521SAlexander V. Chernikov */ 70912cb7521SAlexander V. Chernikov LLE_REQ_LOCK(lle); 71012cb7521SAlexander V. Chernikov lle->r_skip_req = 1; 71112cb7521SAlexander V. Chernikov LLE_REQ_UNLOCK(lle); 71212cb7521SAlexander V. Chernikov nd_delay = V_nd6_delay; 71312cb7521SAlexander V. Chernikov nd_gctimer = V_nd6_gctimer; 71412cb7521SAlexander V. Chernikov 71512cb7521SAlexander V. Chernikov delay = (long)(MIN(nd_gctimer, nd_delay)) * hz; 71612cb7521SAlexander V. Chernikov remtime = (long)nd_gctimer * hz - delay; 717aa5f023eSAlexander V. Chernikov break; 718aa5f023eSAlexander V. Chernikov case ND6_LLINFO_DELAY: 719aa5f023eSAlexander V. Chernikov lle->la_asked = 0; 720aa5f023eSAlexander V. Chernikov delay = (long)V_nd6_delay * hz; 721aa5f023eSAlexander V. Chernikov break; 722aa5f023eSAlexander V. Chernikov } 723aa5f023eSAlexander V. Chernikov 724aa5f023eSAlexander V. Chernikov if (delay > 0) 725aa5f023eSAlexander V. Chernikov nd6_llinfo_settimer_locked(lle, delay); 726aa5f023eSAlexander V. Chernikov 72712cb7521SAlexander V. Chernikov lle->lle_remtime = remtime; 728aa5f023eSAlexander V. Chernikov lle->ln_state = newstate; 729aa5f023eSAlexander V. Chernikov } 730aa5f023eSAlexander V. Chernikov 731c0b8aeaeSAlexander V. Chernikov /* 732c0b8aeaeSAlexander V. Chernikov * Timer-dependent part of nd state machine. 733c0b8aeaeSAlexander V. Chernikov * 734c0b8aeaeSAlexander V. Chernikov * Set noinline to be dtrace-friendly 735c0b8aeaeSAlexander V. Chernikov */ 736c0b8aeaeSAlexander V. Chernikov static __noinline void 7371272577eSXin LI nd6_llinfo_timer(void *arg) 738743eee66SSUZUKI Shinsuke { 739b8a6e03fSGleb Smirnoff struct epoch_tracker et; 7406e6b3f7cSQing Li struct llentry *ln; 74126deb882SAlexander V. Chernikov struct in6_addr *dst, *pdst, *psrc, src; 742743eee66SSUZUKI Shinsuke struct ifnet *ifp; 743435bece4SMark Johnston struct nd_ifinfo *ndi; 74412cb7521SAlexander V. Chernikov int do_switch, send_ns; 74512cb7521SAlexander V. Chernikov long delay; 74682cd038dSYoshinobu Inoue 74719291ab3SBjoern A. Zeeb KASSERT(arg != NULL, ("%s: arg NULL", __func__)); 7486e6b3f7cSQing Li ln = (struct llentry *)arg; 749435bece4SMark Johnston ifp = lltable_get_ifp(ln->lle_tbl); 750435bece4SMark Johnston CURVNET_SET(ifp->if_vnet); 751435bece4SMark Johnston 752435bece4SMark Johnston ND6_RLOCK(); 7532575fbb8SRandall Stewart LLE_WLOCK(ln); 7540447c136SAlexander V. Chernikov if (callout_pending(&ln->lle_timer)) { 7552575fbb8SRandall Stewart /* 7562575fbb8SRandall Stewart * Here we are a bit odd here in the treatment of 7572575fbb8SRandall Stewart * active/pending. If the pending bit is set, it got 7582575fbb8SRandall Stewart * rescheduled before I ran. The active 7592575fbb8SRandall Stewart * bit we ignore, since if it was stopped 7602575fbb8SRandall Stewart * in ll_tablefree() and was currently running 7612575fbb8SRandall Stewart * it would have return 0 so the code would 7622575fbb8SRandall Stewart * not have deleted it since the callout could 7632575fbb8SRandall Stewart * not be stopped so we want to go through 7642575fbb8SRandall Stewart * with the delete here now. If the callout 7652575fbb8SRandall Stewart * was restarted, the pending bit will be back on and 7662575fbb8SRandall Stewart * we just want to bail since the callout_reset would 7672575fbb8SRandall Stewart * return 1 and our reference would have been removed 7682575fbb8SRandall Stewart * by nd6_llinfo_settimer_locked above since canceled 7692575fbb8SRandall Stewart * would have been 1. 7702575fbb8SRandall Stewart */ 7712575fbb8SRandall Stewart LLE_WUNLOCK(ln); 772435bece4SMark Johnston ND6_RUNLOCK(); 773435bece4SMark Johnston CURVNET_RESTORE(); 7742575fbb8SRandall Stewart return; 7752575fbb8SRandall Stewart } 776b8a6e03fSGleb Smirnoff NET_EPOCH_ENTER(et); 77726deb882SAlexander V. Chernikov ndi = ND_IFINFO(ifp); 77826deb882SAlexander V. Chernikov send_ns = 0; 77926deb882SAlexander V. Chernikov dst = &ln->r_l3addr.addr6; 78026deb882SAlexander V. Chernikov pdst = dst; 78182cd038dSYoshinobu Inoue 782743eee66SSUZUKI Shinsuke if (ln->ln_ntick > 0) { 783743eee66SSUZUKI Shinsuke if (ln->ln_ntick > INT_MAX) { 784743eee66SSUZUKI Shinsuke ln->ln_ntick -= INT_MAX; 785e6950476SBjoern A. Zeeb nd6_llinfo_settimer_locked(ln, INT_MAX); 786743eee66SSUZUKI Shinsuke } else { 787743eee66SSUZUKI Shinsuke ln->ln_ntick = 0; 788e6950476SBjoern A. Zeeb nd6_llinfo_settimer_locked(ln, ln->ln_ntick); 78982cd038dSYoshinobu Inoue } 7906e6b3f7cSQing Li goto done; 791743eee66SSUZUKI Shinsuke } 792743eee66SSUZUKI Shinsuke 793287e3cb4SHajimu UMEMOTO if (ln->la_flags & LLE_STATIC) { 7946e6b3f7cSQing Li goto done; 7956e6b3f7cSQing Li } 79682cd038dSYoshinobu Inoue 7976e6b3f7cSQing Li if (ln->la_flags & LLE_DELETED) { 798435bece4SMark Johnston nd6_free(&ln, 0); 7996e6b3f7cSQing Li goto done; 8006e6b3f7cSQing Li } 80182cd038dSYoshinobu Inoue 80282cd038dSYoshinobu Inoue switch (ln->ln_state) { 80382cd038dSYoshinobu Inoue case ND6_LLINFO_INCOMPLETE: 8046e6b3f7cSQing Li if (ln->la_asked < V_nd6_mmaxtries) { 8056e6b3f7cSQing Li ln->la_asked++; 80626deb882SAlexander V. Chernikov send_ns = 1; 80726deb882SAlexander V. Chernikov /* Send NS to multicast address */ 80826deb882SAlexander V. Chernikov pdst = NULL; 80982cd038dSYoshinobu Inoue } else { 8106e6b3f7cSQing Li struct mbuf *m = ln->la_hold; 81182cd038dSYoshinobu Inoue if (m) { 81231d4137bSSUZUKI Shinsuke struct mbuf *m0; 81331d4137bSSUZUKI Shinsuke 81482cd038dSYoshinobu Inoue /* 8156e6b3f7cSQing Li * assuming every packet in la_hold has the 816e6950476SBjoern A. Zeeb * same IP header. Send error after unlock. 81782cd038dSYoshinobu Inoue */ 81831d4137bSSUZUKI Shinsuke m0 = m->m_nextpkt; 81931d4137bSSUZUKI Shinsuke m->m_nextpkt = NULL; 8206e6b3f7cSQing Li ln->la_hold = m0; 82131d4137bSSUZUKI Shinsuke clear_llinfo_pqueue(ln); 82282cd038dSYoshinobu Inoue } 823435bece4SMark Johnston nd6_free(&ln, 0); 824*bc74b819SAndrew Gallatin if (m != NULL) { 825*bc74b819SAndrew Gallatin struct mbuf *n = m; 826*bc74b819SAndrew Gallatin 827*bc74b819SAndrew Gallatin /* 828*bc74b819SAndrew Gallatin * if there are any ummapped mbufs, we 829*bc74b819SAndrew Gallatin * must free them, rather than using 830*bc74b819SAndrew Gallatin * them for an ICMP, as they cannot be 831*bc74b819SAndrew Gallatin * checksummed. 832*bc74b819SAndrew Gallatin */ 833*bc74b819SAndrew Gallatin while ((n = n->m_next) != NULL) { 834*bc74b819SAndrew Gallatin if (n->m_flags & M_EXTPG) 835*bc74b819SAndrew Gallatin break; 836*bc74b819SAndrew Gallatin } 837*bc74b819SAndrew Gallatin if (n != NULL) { 838*bc74b819SAndrew Gallatin m_freem(m); 839*bc74b819SAndrew Gallatin m = NULL; 840*bc74b819SAndrew Gallatin } else { 841e6950476SBjoern A. Zeeb icmp6_error2(m, ICMP6_DST_UNREACH, 842e6950476SBjoern A. Zeeb ICMP6_DST_UNREACH_ADDR, 0, ifp); 84382cd038dSYoshinobu Inoue } 844*bc74b819SAndrew Gallatin } 845*bc74b819SAndrew Gallatin } 84682cd038dSYoshinobu Inoue break; 84782cd038dSYoshinobu Inoue case ND6_LLINFO_REACHABLE: 848aa5f023eSAlexander V. Chernikov if (!ND6_LLINFO_PERMANENT(ln)) 849aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_STALE); 85082cd038dSYoshinobu Inoue break; 85133841545SHajimu UMEMOTO 85233841545SHajimu UMEMOTO case ND6_LLINFO_STALE: 85312cb7521SAlexander V. Chernikov if (nd6_is_stale(ln, &delay, &do_switch) != 0) { 85412cb7521SAlexander V. Chernikov 85512cb7521SAlexander V. Chernikov /* 85612cb7521SAlexander V. Chernikov * No packet has used this entry and GC timeout 85712cb7521SAlexander V. Chernikov * has not been passed. Reshedule timer and 85812cb7521SAlexander V. Chernikov * return. 85912cb7521SAlexander V. Chernikov */ 86012cb7521SAlexander V. Chernikov nd6_llinfo_settimer_locked(ln, delay); 86112cb7521SAlexander V. Chernikov break; 86212cb7521SAlexander V. Chernikov } 86312cb7521SAlexander V. Chernikov 86412cb7521SAlexander V. Chernikov if (do_switch == 0) { 86512cb7521SAlexander V. Chernikov 86612cb7521SAlexander V. Chernikov /* 86712cb7521SAlexander V. Chernikov * GC timer has ended and entry hasn't been used. 86812cb7521SAlexander V. Chernikov * Run Garbage collector (RFC 4861, 5.3) 86912cb7521SAlexander V. Chernikov */ 870435bece4SMark Johnston if (!ND6_LLINFO_PERMANENT(ln)) 871435bece4SMark Johnston nd6_free(&ln, 1); 87233841545SHajimu UMEMOTO break; 87312cb7521SAlexander V. Chernikov } 87412cb7521SAlexander V. Chernikov 87512cb7521SAlexander V. Chernikov /* Entry has been used AND delay timer has ended. */ 87612cb7521SAlexander V. Chernikov 87712cb7521SAlexander V. Chernikov /* FALLTHROUGH */ 87833841545SHajimu UMEMOTO 87982cd038dSYoshinobu Inoue case ND6_LLINFO_DELAY: 880686cdd19SJun-ichiro itojun Hagino if (ndi && (ndi->flags & ND6_IFF_PERFORMNUD) != 0) { 881686cdd19SJun-ichiro itojun Hagino /* We need NUD */ 8826e6b3f7cSQing Li ln->la_asked = 1; 883aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_PROBE); 88426deb882SAlexander V. Chernikov send_ns = 1; 885aa5f023eSAlexander V. Chernikov } else 886aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_STALE); /* XXX */ 88782cd038dSYoshinobu Inoue break; 88882cd038dSYoshinobu Inoue case ND6_LLINFO_PROBE: 8896e6b3f7cSQing Li if (ln->la_asked < V_nd6_umaxtries) { 8906e6b3f7cSQing Li ln->la_asked++; 89126deb882SAlexander V. Chernikov send_ns = 1; 89282cd038dSYoshinobu Inoue } else { 893435bece4SMark Johnston nd6_free(&ln, 0); 89482cd038dSYoshinobu Inoue } 89582cd038dSYoshinobu Inoue break; 896e6950476SBjoern A. Zeeb default: 897e6950476SBjoern A. Zeeb panic("%s: paths in a dark night can be confusing: %d", 898e6950476SBjoern A. Zeeb __func__, ln->ln_state); 89982cd038dSYoshinobu Inoue } 9006e6b3f7cSQing Li done: 901435bece4SMark Johnston if (ln != NULL) 902435bece4SMark Johnston ND6_RUNLOCK(); 90326deb882SAlexander V. Chernikov if (send_ns != 0) { 90426deb882SAlexander V. Chernikov nd6_llinfo_settimer_locked(ln, (long)ndi->retrans * hz / 1000); 90526deb882SAlexander V. Chernikov psrc = nd6_llinfo_get_holdsrc(ln, &src); 90626deb882SAlexander V. Chernikov LLE_FREE_LOCKED(ln); 90726deb882SAlexander V. Chernikov ln = NULL; 90826deb882SAlexander V. Chernikov nd6_ns_output(ifp, psrc, pdst, dst, NULL); 90926deb882SAlexander V. Chernikov } 91026deb882SAlexander V. Chernikov 9116e6b3f7cSQing Li if (ln != NULL) 912e6950476SBjoern A. Zeeb LLE_FREE_LOCKED(ln); 913b8a6e03fSGleb Smirnoff NET_EPOCH_EXIT(et); 914f0c0b143SHajimu UMEMOTO CURVNET_RESTORE(); 91582cd038dSYoshinobu Inoue } 91682cd038dSYoshinobu Inoue 917743eee66SSUZUKI Shinsuke 918743eee66SSUZUKI Shinsuke /* 919743eee66SSUZUKI Shinsuke * ND6 timer routine to expire default route list and prefix list 920743eee66SSUZUKI Shinsuke */ 921743eee66SSUZUKI Shinsuke void 9228b615593SMarko Zec nd6_timer(void *arg) 923743eee66SSUZUKI Shinsuke { 92421ca7b57SMarko Zec CURVNET_SET((struct vnet *) arg); 925b8a6e03fSGleb Smirnoff struct epoch_tracker et; 926d748f7efSMark Johnston struct nd_prhead prl; 9273b0b2840SJohn Baldwin struct nd_prefix *pr, *npr; 928ca1163bdSMark Johnston struct ifnet *ifp; 929743eee66SSUZUKI Shinsuke struct in6_ifaddr *ia6, *nia6; 9308cd3b204SMark Johnston uint64_t genid; 931743eee66SSUZUKI Shinsuke 932d748f7efSMark Johnston LIST_INIT(&prl); 9334de485feSMark Johnston 934d6dbfed8SGleb Smirnoff NET_EPOCH_ENTER(et); 935ad675b32SBjoern A. Zeeb nd6_defrouter_timer(); 93682cd038dSYoshinobu Inoue 93733841545SHajimu UMEMOTO /* 93833841545SHajimu UMEMOTO * expire interface addresses. 93933841545SHajimu UMEMOTO * in the past the loop was inside prefix expiry processing. 94033841545SHajimu UMEMOTO * However, from a stricter speci-confrmance standpoint, we should 94133841545SHajimu UMEMOTO * rather separate address lifetimes and prefix lifetimes. 942d1da0a06SRobert Watson * 943d1da0a06SRobert Watson * XXXRW: in6_ifaddrhead locking. 94433841545SHajimu UMEMOTO */ 94533841545SHajimu UMEMOTO addrloop: 946d7c5a620SMatt Macy CK_STAILQ_FOREACH_SAFE(ia6, &V_in6_ifaddrhead, ia_link, nia6) { 94782cd038dSYoshinobu Inoue /* check address lifetime */ 94833841545SHajimu UMEMOTO if (IFA6_IS_INVALID(ia6)) { 94933841545SHajimu UMEMOTO int regen = 0; 95033841545SHajimu UMEMOTO 95133841545SHajimu UMEMOTO /* 95233841545SHajimu UMEMOTO * If the expiring address is temporary, try 95333841545SHajimu UMEMOTO * regenerating a new one. This would be useful when 95488ff5695SSUZUKI Shinsuke * we suspended a laptop PC, then turned it on after a 95533841545SHajimu UMEMOTO * period that could invalidate all temporary 95633841545SHajimu UMEMOTO * addresses. Although we may have to restart the 95733841545SHajimu UMEMOTO * loop (see below), it must be after purging the 95833841545SHajimu UMEMOTO * address. Otherwise, we'd see an infinite loop of 95933841545SHajimu UMEMOTO * regeneration. 96033841545SHajimu UMEMOTO */ 961603724d3SBjoern A. Zeeb if (V_ip6_use_tempaddr && 96233841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0) { 96333841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) 96433841545SHajimu UMEMOTO regen = 1; 96533841545SHajimu UMEMOTO } 96633841545SHajimu UMEMOTO 96733841545SHajimu UMEMOTO in6_purgeaddr(&ia6->ia_ifa); 96833841545SHajimu UMEMOTO 96933841545SHajimu UMEMOTO if (regen) 97033841545SHajimu UMEMOTO goto addrloop; /* XXX: see below */ 97143068328SHajimu UMEMOTO } else if (IFA6_IS_DEPRECATED(ia6)) { 97233841545SHajimu UMEMOTO int oldflags = ia6->ia6_flags; 97333841545SHajimu UMEMOTO 97482cd038dSYoshinobu Inoue ia6->ia6_flags |= IN6_IFF_DEPRECATED; 97533841545SHajimu UMEMOTO 97633841545SHajimu UMEMOTO /* 97733841545SHajimu UMEMOTO * If a temporary address has just become deprecated, 97833841545SHajimu UMEMOTO * regenerate a new one if possible. 97933841545SHajimu UMEMOTO */ 980603724d3SBjoern A. Zeeb if (V_ip6_use_tempaddr && 98133841545SHajimu UMEMOTO (ia6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 98233841545SHajimu UMEMOTO (oldflags & IN6_IFF_DEPRECATED) == 0) { 98333841545SHajimu UMEMOTO 98433841545SHajimu UMEMOTO if (regen_tmpaddr(ia6) == 0) { 98533841545SHajimu UMEMOTO /* 98633841545SHajimu UMEMOTO * A new temporary address is 98733841545SHajimu UMEMOTO * generated. 98833841545SHajimu UMEMOTO * XXX: this means the address chain 98933841545SHajimu UMEMOTO * has changed while we are still in 99033841545SHajimu UMEMOTO * the loop. Although the change 99133841545SHajimu UMEMOTO * would not cause disaster (because 99288ff5695SSUZUKI Shinsuke * it's not a deletion, but an 99388ff5695SSUZUKI Shinsuke * addition,) we'd rather restart the 99433841545SHajimu UMEMOTO * loop just for safety. Or does this 99533841545SHajimu UMEMOTO * significantly reduce performance?? 99633841545SHajimu UMEMOTO */ 99733841545SHajimu UMEMOTO goto addrloop; 99833841545SHajimu UMEMOTO } 99933841545SHajimu UMEMOTO } 10006401c828SHiroki Sato } else if ((ia6->ia6_flags & IN6_IFF_TENTATIVE) != 0) { 10016401c828SHiroki Sato /* 10026401c828SHiroki Sato * Schedule DAD for a tentative address. This happens 10036401c828SHiroki Sato * if the interface was down or not running 10046401c828SHiroki Sato * when the address was configured. 10056401c828SHiroki Sato */ 10066401c828SHiroki Sato int delay; 10076401c828SHiroki Sato 10086401c828SHiroki Sato delay = arc4random() % 10096401c828SHiroki Sato (MAX_RTR_SOLICITATION_DELAY * hz); 10106401c828SHiroki Sato nd6_dad_start((struct ifaddr *)ia6, delay); 101183649f07SHajimu UMEMOTO } else { 101233841545SHajimu UMEMOTO /* 10136401c828SHiroki Sato * Check status of the interface. If it is down, 10146401c828SHiroki Sato * mark the address as tentative for future DAD. 10156401c828SHiroki Sato */ 1016ca1163bdSMark Johnston ifp = ia6->ia_ifp; 1017ca1163bdSMark Johnston if ((ND_IFINFO(ifp)->flags & ND6_IFF_NO_DAD) == 0 && 1018ca1163bdSMark Johnston ((ifp->if_flags & IFF_UP) == 0 || 1019ca1163bdSMark Johnston (ifp->if_drv_flags & IFF_DRV_RUNNING) == 0 || 1020ca1163bdSMark Johnston (ND_IFINFO(ifp)->flags & ND6_IFF_IFDISABLED) != 0)){ 10216401c828SHiroki Sato ia6->ia6_flags &= ~IN6_IFF_DUPLICATED; 10226401c828SHiroki Sato ia6->ia6_flags |= IN6_IFF_TENTATIVE; 10236401c828SHiroki Sato } 1024ca1163bdSMark Johnston 10256401c828SHiroki Sato /* 102633841545SHajimu UMEMOTO * A new RA might have made a deprecated address 102733841545SHajimu UMEMOTO * preferred. 102833841545SHajimu UMEMOTO */ 102933841545SHajimu UMEMOTO ia6->ia6_flags &= ~IN6_IFF_DEPRECATED; 103082cd038dSYoshinobu Inoue } 103182cd038dSYoshinobu Inoue } 1032b8a6e03fSGleb Smirnoff NET_EPOCH_EXIT(et); 103382cd038dSYoshinobu Inoue 1034d748f7efSMark Johnston ND6_WLOCK(); 1035d748f7efSMark Johnston restart: 10363b0b2840SJohn Baldwin LIST_FOREACH_SAFE(pr, &V_nd_prefix, ndpr_entry, npr) { 103782cd038dSYoshinobu Inoue /* 1038d748f7efSMark Johnston * Expire prefixes. Since the pltime is only used for 1039d748f7efSMark Johnston * autoconfigured addresses, pltime processing for prefixes is 1040d748f7efSMark Johnston * not necessary. 1041d748f7efSMark Johnston * 1042d748f7efSMark Johnston * Only unlink after all derived addresses have expired. This 1043d748f7efSMark Johnston * may not occur until two hours after the prefix has expired 1044d748f7efSMark Johnston * per RFC 4862. If the prefix expires before its derived 1045d748f7efSMark Johnston * addresses, mark it off-link. This will be done automatically 1046d748f7efSMark Johnston * after unlinking if no address references remain. 104782cd038dSYoshinobu Inoue */ 1048d748f7efSMark Johnston if (pr->ndpr_vltime == ND6_INFINITE_LIFETIME || 1049d748f7efSMark Johnston time_uptime - pr->ndpr_lastupdate <= pr->ndpr_vltime) 1050d748f7efSMark Johnston continue; 105182cd038dSYoshinobu Inoue 1052d748f7efSMark Johnston if (pr->ndpr_addrcnt == 0) { 1053d748f7efSMark Johnston nd6_prefix_unlink(pr, &prl); 1054d748f7efSMark Johnston continue; 10553b0b2840SJohn Baldwin } 1056d748f7efSMark Johnston if ((pr->ndpr_stateflags & NDPRF_ONLINK) != 0) { 10578cd3b204SMark Johnston genid = V_nd6_list_genid; 10588cd3b204SMark Johnston nd6_prefix_ref(pr); 1059d748f7efSMark Johnston ND6_WUNLOCK(); 1060d748f7efSMark Johnston ND6_ONLINK_LOCK(); 10618cd3b204SMark Johnston (void)nd6_prefix_offlink(pr); 10628cd3b204SMark Johnston ND6_ONLINK_UNLOCK(); 1063d748f7efSMark Johnston ND6_WLOCK(); 10648cd3b204SMark Johnston nd6_prefix_rele(pr); 10658cd3b204SMark Johnston if (genid != V_nd6_list_genid) 1066d748f7efSMark Johnston goto restart; 1067d748f7efSMark Johnston } 1068d748f7efSMark Johnston } 1069d748f7efSMark Johnston ND6_WUNLOCK(); 1070d748f7efSMark Johnston 1071d748f7efSMark Johnston while ((pr = LIST_FIRST(&prl)) != NULL) { 1072d748f7efSMark Johnston LIST_REMOVE(pr, ndpr_entry); 1073d748f7efSMark Johnston nd6_prefix_del(pr); 107482cd038dSYoshinobu Inoue } 107599a0c406SBjoern A. Zeeb 107699a0c406SBjoern A. Zeeb callout_reset(&V_nd6_timer_ch, V_nd6_prune * hz, 107799a0c406SBjoern A. Zeeb nd6_timer, curvnet); 107899a0c406SBjoern A. Zeeb 10798b615593SMarko Zec CURVNET_RESTORE(); 108082cd038dSYoshinobu Inoue } 108182cd038dSYoshinobu Inoue 10821272577eSXin LI /* 10831272577eSXin LI * ia6 - deprecated/invalidated temporary address 10841272577eSXin LI */ 108533841545SHajimu UMEMOTO static int 10861272577eSXin LI regen_tmpaddr(struct in6_ifaddr *ia6) 108733841545SHajimu UMEMOTO { 108833841545SHajimu UMEMOTO struct ifaddr *ifa; 108933841545SHajimu UMEMOTO struct ifnet *ifp; 109033841545SHajimu UMEMOTO struct in6_ifaddr *public_ifa6 = NULL; 109133841545SHajimu UMEMOTO 1092b8a6e03fSGleb Smirnoff NET_EPOCH_ASSERT(); 1093b8a6e03fSGleb Smirnoff 109433841545SHajimu UMEMOTO ifp = ia6->ia_ifa.ifa_ifp; 1095d7c5a620SMatt Macy CK_STAILQ_FOREACH(ifa, &ifp->if_addrhead, ifa_link) { 109633841545SHajimu UMEMOTO struct in6_ifaddr *it6; 109733841545SHajimu UMEMOTO 109833841545SHajimu UMEMOTO if (ifa->ifa_addr->sa_family != AF_INET6) 109933841545SHajimu UMEMOTO continue; 110033841545SHajimu UMEMOTO 110133841545SHajimu UMEMOTO it6 = (struct in6_ifaddr *)ifa; 110233841545SHajimu UMEMOTO 110333841545SHajimu UMEMOTO /* ignore no autoconf addresses. */ 110433841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_AUTOCONF) == 0) 110533841545SHajimu UMEMOTO continue; 110633841545SHajimu UMEMOTO 110733841545SHajimu UMEMOTO /* ignore autoconf addresses with different prefixes. */ 110833841545SHajimu UMEMOTO if (it6->ia6_ndpr == NULL || it6->ia6_ndpr != ia6->ia6_ndpr) 110933841545SHajimu UMEMOTO continue; 111033841545SHajimu UMEMOTO 111133841545SHajimu UMEMOTO /* 111233841545SHajimu UMEMOTO * Now we are looking at an autoconf address with the same 111333841545SHajimu UMEMOTO * prefix as ours. If the address is temporary and is still 111433841545SHajimu UMEMOTO * preferred, do not create another one. It would be rare, but 111533841545SHajimu UMEMOTO * could happen, for example, when we resume a laptop PC after 111633841545SHajimu UMEMOTO * a long period. 111733841545SHajimu UMEMOTO */ 111833841545SHajimu UMEMOTO if ((it6->ia6_flags & IN6_IFF_TEMPORARY) != 0 && 111933841545SHajimu UMEMOTO !IFA6_IS_DEPRECATED(it6)) { 112033841545SHajimu UMEMOTO public_ifa6 = NULL; 112133841545SHajimu UMEMOTO break; 112233841545SHajimu UMEMOTO } 112333841545SHajimu UMEMOTO 112433841545SHajimu UMEMOTO /* 112533841545SHajimu UMEMOTO * This is a public autoconf address that has the same prefix 112633841545SHajimu UMEMOTO * as ours. If it is preferred, keep it. We can't break the 112733841545SHajimu UMEMOTO * loop here, because there may be a still-preferred temporary 112833841545SHajimu UMEMOTO * address with the prefix. 112933841545SHajimu UMEMOTO */ 113033841545SHajimu UMEMOTO if (!IFA6_IS_DEPRECATED(it6)) 113133841545SHajimu UMEMOTO public_ifa6 = it6; 1132dff78447SMark Johnston } 1133c1752bcdSQing Li if (public_ifa6 != NULL) 1134c1752bcdSQing Li ifa_ref(&public_ifa6->ia_ifa); 113533841545SHajimu UMEMOTO 113633841545SHajimu UMEMOTO if (public_ifa6 != NULL) { 113733841545SHajimu UMEMOTO int e; 113833841545SHajimu UMEMOTO 1139743eee66SSUZUKI Shinsuke if ((e = in6_tmpifadd(public_ifa6, 0, 0)) != 0) { 1140c1752bcdSQing Li ifa_free(&public_ifa6->ia_ifa); 114133841545SHajimu UMEMOTO log(LOG_NOTICE, "regen_tmpaddr: failed to create a new" 114233841545SHajimu UMEMOTO " tmp addr,errno=%d\n", e); 114333841545SHajimu UMEMOTO return (-1); 114433841545SHajimu UMEMOTO } 1145c1752bcdSQing Li ifa_free(&public_ifa6->ia_ifa); 114633841545SHajimu UMEMOTO return (0); 114733841545SHajimu UMEMOTO } 114833841545SHajimu UMEMOTO 114933841545SHajimu UMEMOTO return (-1); 115033841545SHajimu UMEMOTO } 115133841545SHajimu UMEMOTO 1152686cdd19SJun-ichiro itojun Hagino /* 1153df890b8eSMark Johnston * Remove prefix and default router list entries corresponding to ifp. Neighbor 1154df890b8eSMark Johnston * cache entries are freed in in6_domifdetach(). 1155686cdd19SJun-ichiro itojun Hagino */ 1156686cdd19SJun-ichiro itojun Hagino void 11571272577eSXin LI nd6_purge(struct ifnet *ifp) 1158686cdd19SJun-ichiro itojun Hagino { 1159d748f7efSMark Johnston struct nd_prhead prl; 1160686cdd19SJun-ichiro itojun Hagino struct nd_prefix *pr, *npr; 1161686cdd19SJun-ichiro itojun Hagino 1162d748f7efSMark Johnston LIST_INIT(&prl); 11634de485feSMark Johnston 1164ad675b32SBjoern A. Zeeb /* Purge default router list entries toward ifp. */ 1165ad675b32SBjoern A. Zeeb nd6_defrouter_purge(ifp); 1166d748f7efSMark Johnston 1167ad675b32SBjoern A. Zeeb ND6_WLOCK(); 1168d748f7efSMark Johnston /* 1169d748f7efSMark Johnston * Remove prefixes on ifp. We should have already removed addresses on 1170d748f7efSMark Johnston * this interface, so no addresses should be referencing these prefixes. 1171d748f7efSMark Johnston */ 1172d748f7efSMark Johnston LIST_FOREACH_SAFE(pr, &V_nd_prefix, ndpr_entry, npr) { 1173d748f7efSMark Johnston if (pr->ndpr_ifp == ifp) 1174d748f7efSMark Johnston nd6_prefix_unlink(pr, &prl); 1175d748f7efSMark Johnston } 11764de485feSMark Johnston ND6_WUNLOCK(); 11774de485feSMark Johnston 1178ad675b32SBjoern A. Zeeb /* Delete the unlinked prefix objects. */ 1179d748f7efSMark Johnston while ((pr = LIST_FIRST(&prl)) != NULL) { 1180d748f7efSMark Johnston LIST_REMOVE(pr, ndpr_entry); 1181d748f7efSMark Johnston nd6_prefix_del(pr); 1182686cdd19SJun-ichiro itojun Hagino } 1183686cdd19SJun-ichiro itojun Hagino 1184686cdd19SJun-ichiro itojun Hagino /* cancel default outgoing interface setting */ 1185603724d3SBjoern A. Zeeb if (V_nd6_defifindex == ifp->if_index) 1186686cdd19SJun-ichiro itojun Hagino nd6_setdefaultiface(0); 1187686cdd19SJun-ichiro itojun Hagino 1188e7fa8d0aSHiroki Sato if (ND_IFINFO(ifp)->flags & ND6_IFF_ACCEPT_RTADV) { 1189a283298cSHiroki Sato /* Refresh default router list. */ 1190559b4296SAlan Somers defrouter_select_fib(ifp->if_fib); 11916e6b3f7cSQing Li } 11921026ccc4SHajimu UMEMOTO } 1193686cdd19SJun-ichiro itojun Hagino 1194686cdd19SJun-ichiro itojun Hagino /* 11956e6b3f7cSQing Li * the caller acquires and releases the lock on the lltbls 11966e6b3f7cSQing Li * Returns the llentry locked 1197686cdd19SJun-ichiro itojun Hagino */ 11986e6b3f7cSQing Li struct llentry * 1199f0316e1aSAlexander V. Chernikov nd6_lookup(const struct in6_addr *addr6, int flags, struct ifnet *ifp) 120082cd038dSYoshinobu Inoue { 120182cd038dSYoshinobu Inoue struct sockaddr_in6 sin6; 12026e6b3f7cSQing Li struct llentry *ln; 120382cd038dSYoshinobu Inoue 120482cd038dSYoshinobu Inoue bzero(&sin6, sizeof(sin6)); 120582cd038dSYoshinobu Inoue sin6.sin6_len = sizeof(struct sockaddr_in6); 120682cd038dSYoshinobu Inoue sin6.sin6_family = AF_INET6; 120782cd038dSYoshinobu Inoue sin6.sin6_addr = *addr6; 1208686cdd19SJun-ichiro itojun Hagino 12096e6b3f7cSQing Li IF_AFDATA_LOCK_ASSERT(ifp); 121082cd038dSYoshinobu Inoue 1211f506d933SAlexander V. Chernikov ln = lla_lookup(LLTABLE6(ifp), flags, (struct sockaddr *)&sin6); 1212b4b1367aSAlexander V. Chernikov 1213b4b1367aSAlexander V. Chernikov return (ln); 1214b4b1367aSAlexander V. Chernikov } 1215b4b1367aSAlexander V. Chernikov 1216d64df9a2SBjoern A. Zeeb static struct llentry * 1217f0316e1aSAlexander V. Chernikov nd6_alloc(const struct in6_addr *addr6, int flags, struct ifnet *ifp) 1218b4b1367aSAlexander V. Chernikov { 1219b4b1367aSAlexander V. Chernikov struct sockaddr_in6 sin6; 1220b4b1367aSAlexander V. Chernikov struct llentry *ln; 1221b4b1367aSAlexander V. Chernikov 1222b4b1367aSAlexander V. Chernikov bzero(&sin6, sizeof(sin6)); 1223b4b1367aSAlexander V. Chernikov sin6.sin6_len = sizeof(struct sockaddr_in6); 1224b4b1367aSAlexander V. Chernikov sin6.sin6_family = AF_INET6; 1225b4b1367aSAlexander V. Chernikov sin6.sin6_addr = *addr6; 1226b4b1367aSAlexander V. Chernikov 12275a255516SAlexander V. Chernikov ln = lltable_alloc_entry(LLTABLE6(ifp), 0, (struct sockaddr *)&sin6); 1228b4b1367aSAlexander V. Chernikov if (ln != NULL) 122982cd038dSYoshinobu Inoue ln->ln_state = ND6_LLINFO_NOSTATE; 12306e6b3f7cSQing Li 12316e6b3f7cSQing Li return (ln); 123282cd038dSYoshinobu Inoue } 123382cd038dSYoshinobu Inoue 123482cd038dSYoshinobu Inoue /* 123577b691e0SBrian Feldman * Test whether a given IPv6 address is a neighbor or not, ignoring 123677b691e0SBrian Feldman * the actual neighbor cache. The neighbor cache is ignored in order 123777b691e0SBrian Feldman * to not reenter the routing code from within itself. 123882cd038dSYoshinobu Inoue */ 123977b691e0SBrian Feldman static int 1240f0316e1aSAlexander V. Chernikov nd6_is_new_addr_neighbor(const struct sockaddr_in6 *addr, struct ifnet *ifp) 124182cd038dSYoshinobu Inoue { 12424208ea14SHajimu UMEMOTO struct nd_prefix *pr; 1243559b4296SAlan Somers struct ifaddr *ifa; 12449a1b64d5SAlexander V. Chernikov struct rt_addrinfo info; 12459a1b64d5SAlexander V. Chernikov struct sockaddr_in6 rt_key; 1246f7d91d8cSMark Johnston const struct sockaddr *dst6; 1247d748f7efSMark Johnston uint64_t genid; 1248d748f7efSMark Johnston int error, fibnum; 124982cd038dSYoshinobu Inoue 1250686cdd19SJun-ichiro itojun Hagino /* 1251686cdd19SJun-ichiro itojun Hagino * A link-local address is always a neighbor. 12524208ea14SHajimu UMEMOTO * XXX: a link does not necessarily specify a single interface. 1253686cdd19SJun-ichiro itojun Hagino */ 1254a1f7e5f8SHajimu UMEMOTO if (IN6_IS_ADDR_LINKLOCAL(&addr->sin6_addr)) { 1255a1f7e5f8SHajimu UMEMOTO struct sockaddr_in6 sin6_copy; 1256a1f7e5f8SHajimu UMEMOTO u_int32_t zone; 1257a1f7e5f8SHajimu UMEMOTO 1258a1f7e5f8SHajimu UMEMOTO /* 1259a1f7e5f8SHajimu UMEMOTO * We need sin6_copy since sa6_recoverscope() may modify the 1260a1f7e5f8SHajimu UMEMOTO * content (XXX). 1261a1f7e5f8SHajimu UMEMOTO */ 1262a1f7e5f8SHajimu UMEMOTO sin6_copy = *addr; 1263a1f7e5f8SHajimu UMEMOTO if (sa6_recoverscope(&sin6_copy)) 1264a1f7e5f8SHajimu UMEMOTO return (0); /* XXX: should be impossible */ 1265a1f7e5f8SHajimu UMEMOTO if (in6_setscope(&sin6_copy.sin6_addr, ifp, &zone)) 1266a1f7e5f8SHajimu UMEMOTO return (0); 1267a1f7e5f8SHajimu UMEMOTO if (sin6_copy.sin6_scope_id == zone) 126882cd038dSYoshinobu Inoue return (1); 1269a1f7e5f8SHajimu UMEMOTO else 1270a1f7e5f8SHajimu UMEMOTO return (0); 1271a1f7e5f8SHajimu UMEMOTO } 127282cd038dSYoshinobu Inoue 12739a1b64d5SAlexander V. Chernikov bzero(&rt_key, sizeof(rt_key)); 12749a1b64d5SAlexander V. Chernikov bzero(&info, sizeof(info)); 12759a1b64d5SAlexander V. Chernikov info.rti_info[RTAX_DST] = (struct sockaddr *)&rt_key; 12769a1b64d5SAlexander V. Chernikov 127782cd038dSYoshinobu Inoue /* 127882cd038dSYoshinobu Inoue * If the address matches one of our addresses, 127982cd038dSYoshinobu Inoue * it should be a neighbor. 12804208ea14SHajimu UMEMOTO * If the address matches one of our on-link prefixes, it should be a 12814208ea14SHajimu UMEMOTO * neighbor. 128282cd038dSYoshinobu Inoue */ 1283d748f7efSMark Johnston ND6_RLOCK(); 1284d748f7efSMark Johnston restart: 12853b0b2840SJohn Baldwin LIST_FOREACH(pr, &V_nd_prefix, ndpr_entry) { 12864208ea14SHajimu UMEMOTO if (pr->ndpr_ifp != ifp) 12874208ea14SHajimu UMEMOTO continue; 128882cd038dSYoshinobu Inoue 1289d748f7efSMark Johnston if ((pr->ndpr_stateflags & NDPRF_ONLINK) == 0) { 1290f7d91d8cSMark Johnston dst6 = (const struct sockaddr *)&pr->ndpr_prefix; 12919a1b64d5SAlexander V. Chernikov 1292559b4296SAlan Somers /* 1293559b4296SAlan Somers * We only need to check all FIBs if add_addr_allfibs 1294559b4296SAlan Somers * is unset. If set, checking any FIB will suffice. 1295559b4296SAlan Somers */ 1296559b4296SAlan Somers fibnum = V_rt_add_addr_allfibs ? rt_numfibs - 1 : 0; 1297559b4296SAlan Somers for (; fibnum < rt_numfibs; fibnum++) { 1298d748f7efSMark Johnston genid = V_nd6_list_genid; 1299d748f7efSMark Johnston ND6_RUNLOCK(); 1300d748f7efSMark Johnston 1301559b4296SAlan Somers /* 1302559b4296SAlan Somers * Restore length field before 1303559b4296SAlan Somers * retrying lookup 1304559b4296SAlan Somers */ 13059a1b64d5SAlexander V. Chernikov rt_key.sin6_len = sizeof(rt_key); 1306559b4296SAlan Somers error = rib_lookup_info(fibnum, dst6, 0, 0, 1307559b4296SAlan Somers &info); 1308d748f7efSMark Johnston 1309d748f7efSMark Johnston ND6_RLOCK(); 1310d748f7efSMark Johnston if (genid != V_nd6_list_genid) 1311d748f7efSMark Johnston goto restart; 1312559b4296SAlan Somers if (error == 0) 1313559b4296SAlan Somers break; 1314559b4296SAlan Somers } 1315d748f7efSMark Johnston if (error != 0) 13164208ea14SHajimu UMEMOTO continue; 1317d748f7efSMark Johnston 1318baf7c373SQing Li /* 1319baf7c373SQing Li * This is the case where multiple interfaces 1320baf7c373SQing Li * have the same prefix, but only one is installed 1321baf7c373SQing Li * into the routing table and that prefix entry 1322baf7c373SQing Li * is not the one being examined here. In the case 1323baf7c373SQing Li * where RADIX_MPATH is enabled, multiple route 1324baf7c373SQing Li * entries (of the same rt_key value) will be 1325baf7c373SQing Li * installed because the interface addresses all 1326baf7c373SQing Li * differ. 1327baf7c373SQing Li */ 1328baf7c373SQing Li if (!IN6_ARE_ADDR_EQUAL(&pr->ndpr_prefix.sin6_addr, 13299a1b64d5SAlexander V. Chernikov &rt_key.sin6_addr)) 1330baf7c373SQing Li continue; 1331baf7c373SQing Li } 13324208ea14SHajimu UMEMOTO 13334208ea14SHajimu UMEMOTO if (IN6_ARE_MASKED_ADDR_EQUAL(&pr->ndpr_prefix.sin6_addr, 1334d748f7efSMark Johnston &addr->sin6_addr, &pr->ndpr_mask)) { 1335d748f7efSMark Johnston ND6_RUNLOCK(); 13364208ea14SHajimu UMEMOTO return (1); 133782cd038dSYoshinobu Inoue } 1338d748f7efSMark Johnston } 1339d748f7efSMark Johnston ND6_RUNLOCK(); 13404208ea14SHajimu UMEMOTO 13414208ea14SHajimu UMEMOTO /* 1342743eee66SSUZUKI Shinsuke * If the address is assigned on the node of the other side of 1343743eee66SSUZUKI Shinsuke * a p2p interface, the address should be a neighbor. 1344743eee66SSUZUKI Shinsuke */ 1345559b4296SAlan Somers if (ifp->if_flags & IFF_POINTOPOINT) { 1346a68cc388SGleb Smirnoff struct epoch_tracker et; 1347a68cc388SGleb Smirnoff 1348a68cc388SGleb Smirnoff NET_EPOCH_ENTER(et); 1349d7c5a620SMatt Macy CK_STAILQ_FOREACH(ifa, &ifp->if_addrhead, ifa_link) { 1350559b4296SAlan Somers if (ifa->ifa_addr->sa_family != addr->sin6_family) 1351559b4296SAlan Somers continue; 1352559b4296SAlan Somers if (ifa->ifa_dstaddr != NULL && 1353559b4296SAlan Somers sa_equal(addr, ifa->ifa_dstaddr)) { 1354a68cc388SGleb Smirnoff NET_EPOCH_EXIT(et); 1355559b4296SAlan Somers return 1; 13568c0fec80SRobert Watson } 1357559b4296SAlan Somers } 1358a68cc388SGleb Smirnoff NET_EPOCH_EXIT(et); 13598c0fec80SRobert Watson } 1360743eee66SSUZUKI Shinsuke 1361743eee66SSUZUKI Shinsuke /* 13624208ea14SHajimu UMEMOTO * If the default router list is empty, all addresses are regarded 13634208ea14SHajimu UMEMOTO * as on-link, and thus, as a neighbor. 13644208ea14SHajimu UMEMOTO */ 1365e7fa8d0aSHiroki Sato if (ND_IFINFO(ifp)->flags & ND6_IFF_ACCEPT_RTADV && 1366ad675b32SBjoern A. Zeeb nd6_defrouter_list_empty() && 1367603724d3SBjoern A. Zeeb V_nd6_defifindex == ifp->if_index) { 136882cd038dSYoshinobu Inoue return (1); 136982cd038dSYoshinobu Inoue } 137082cd038dSYoshinobu Inoue 137177b691e0SBrian Feldman return (0); 137277b691e0SBrian Feldman } 137377b691e0SBrian Feldman 137477b691e0SBrian Feldman 137577b691e0SBrian Feldman /* 137677b691e0SBrian Feldman * Detect if a given IPv6 address identifies a neighbor on a given link. 137777b691e0SBrian Feldman * XXX: should take care of the destination of a p2p link? 137877b691e0SBrian Feldman */ 137977b691e0SBrian Feldman int 1380f0316e1aSAlexander V. Chernikov nd6_is_addr_neighbor(const struct sockaddr_in6 *addr, struct ifnet *ifp) 138177b691e0SBrian Feldman { 13826e6b3f7cSQing Li struct llentry *lle; 13836e6b3f7cSQing Li int rc = 0; 138477b691e0SBrian Feldman 1385b8a6e03fSGleb Smirnoff NET_EPOCH_ASSERT(); 13866e6b3f7cSQing Li IF_AFDATA_UNLOCK_ASSERT(ifp); 138777b691e0SBrian Feldman if (nd6_is_new_addr_neighbor(addr, ifp)) 138877b691e0SBrian Feldman return (1); 138977b691e0SBrian Feldman 139082cd038dSYoshinobu Inoue /* 139182cd038dSYoshinobu Inoue * Even if the address matches none of our addresses, it might be 139282cd038dSYoshinobu Inoue * in the neighbor cache. 139382cd038dSYoshinobu Inoue */ 13946e6b3f7cSQing Li if ((lle = nd6_lookup(&addr->sin6_addr, 0, ifp)) != NULL) { 13956e6b3f7cSQing Li LLE_RUNLOCK(lle); 13966e6b3f7cSQing Li rc = 1; 13976e6b3f7cSQing Li } 13986e6b3f7cSQing Li return (rc); 139982cd038dSYoshinobu Inoue } 140082cd038dSYoshinobu Inoue 140182cd038dSYoshinobu Inoue /* 140282cd038dSYoshinobu Inoue * Free an nd6 llinfo entry. 1403743eee66SSUZUKI Shinsuke * Since the function would cause significant changes in the kernel, DO NOT 1404743eee66SSUZUKI Shinsuke * make it global, unless you have a strong reason for the change, and are sure 1405743eee66SSUZUKI Shinsuke * that the change is safe. 1406c0b8aeaeSAlexander V. Chernikov * 1407c0b8aeaeSAlexander V. Chernikov * Set noinline to be dtrace-friendly 140882cd038dSYoshinobu Inoue */ 1409c0b8aeaeSAlexander V. Chernikov static __noinline void 1410435bece4SMark Johnston nd6_free(struct llentry **lnp, int gc) 141182cd038dSYoshinobu Inoue { 1412e6950476SBjoern A. Zeeb struct ifnet *ifp; 1413435bece4SMark Johnston struct llentry *ln; 1414435bece4SMark Johnston struct nd_defrouter *dr; 1415435bece4SMark Johnston 1416435bece4SMark Johnston ln = *lnp; 1417435bece4SMark Johnston *lnp = NULL; 1418e6950476SBjoern A. Zeeb 1419e6950476SBjoern A. Zeeb LLE_WLOCK_ASSERT(ln); 1420435bece4SMark Johnston ND6_RLOCK_ASSERT(); 1421435bece4SMark Johnston 1422435bece4SMark Johnston ifp = lltable_get_ifp(ln->lle_tbl); 1423435bece4SMark Johnston if ((ND_IFINFO(ifp)->flags & ND6_IFF_ACCEPT_RTADV) != 0) 1424435bece4SMark Johnston dr = defrouter_lookup_locked(&ln->r_l3addr.addr6, ifp); 1425435bece4SMark Johnston else 1426435bece4SMark Johnston dr = NULL; 1427435bece4SMark Johnston ND6_RUNLOCK(); 1428435bece4SMark Johnston 1429435bece4SMark Johnston if ((ln->la_flags & LLE_DELETED) == 0) 1430435bece4SMark Johnston EVENTHANDLER_INVOKE(lle_event, ln, LLENTRY_EXPIRED); 143182cd038dSYoshinobu Inoue 143282cd038dSYoshinobu Inoue /* 143333841545SHajimu UMEMOTO * we used to have pfctlinput(PRC_HOSTDEAD) here. 143433841545SHajimu UMEMOTO * even though it is not harmful, it was not really necessary. 143582cd038dSYoshinobu Inoue */ 1436686cdd19SJun-ichiro itojun Hagino 1437743eee66SSUZUKI Shinsuke /* cancel timer */ 1438e6950476SBjoern A. Zeeb nd6_llinfo_settimer_locked(ln, -1); 1439e6950476SBjoern A. Zeeb 1440e7fa8d0aSHiroki Sato if (ND_IFINFO(ifp)->flags & ND6_IFF_ACCEPT_RTADV) { 1441743eee66SSUZUKI Shinsuke if (dr != NULL && dr->expire && 1442743eee66SSUZUKI Shinsuke ln->ln_state == ND6_LLINFO_STALE && gc) { 1443743eee66SSUZUKI Shinsuke /* 1444743eee66SSUZUKI Shinsuke * If the reason for the deletion is just garbage 1445743eee66SSUZUKI Shinsuke * collection, and the neighbor is an active default 1446743eee66SSUZUKI Shinsuke * router, do not delete it. Instead, reset the GC 1447743eee66SSUZUKI Shinsuke * timer using the router's lifetime. 1448743eee66SSUZUKI Shinsuke * Simply deleting the entry would affect default 1449743eee66SSUZUKI Shinsuke * router selection, which is not necessarily a good 1450743eee66SSUZUKI Shinsuke * thing, especially when we're using router preference 1451743eee66SSUZUKI Shinsuke * values. 1452743eee66SSUZUKI Shinsuke * XXX: the check for ln_state would be redundant, 1453743eee66SSUZUKI Shinsuke * but we intentionally keep it just in case. 1454743eee66SSUZUKI Shinsuke */ 14557d26db17SHiroki Sato if (dr->expire > time_uptime) 1456e6950476SBjoern A. Zeeb nd6_llinfo_settimer_locked(ln, 14577d26db17SHiroki Sato (dr->expire - time_uptime) * hz); 1458743eee66SSUZUKI Shinsuke else 1459e6950476SBjoern A. Zeeb nd6_llinfo_settimer_locked(ln, 1460e6950476SBjoern A. Zeeb (long)V_nd6_gctimer * hz); 1461e6950476SBjoern A. Zeeb 1462ef8d671cSHajimu UMEMOTO LLE_REMREF(ln); 1463ef8d671cSHajimu UMEMOTO LLE_WUNLOCK(ln); 14644de485feSMark Johnston defrouter_rele(dr); 1465d3cdb716SAlexander V. Chernikov return; 1466743eee66SSUZUKI Shinsuke } 1467743eee66SSUZUKI Shinsuke 1468686cdd19SJun-ichiro itojun Hagino if (dr) { 1469686cdd19SJun-ichiro itojun Hagino /* 1470686cdd19SJun-ichiro itojun Hagino * Unreachablity of a router might affect the default 1471686cdd19SJun-ichiro itojun Hagino * router selection and on-link detection of advertised 1472686cdd19SJun-ichiro itojun Hagino * prefixes. 1473686cdd19SJun-ichiro itojun Hagino */ 1474686cdd19SJun-ichiro itojun Hagino 1475686cdd19SJun-ichiro itojun Hagino /* 1476686cdd19SJun-ichiro itojun Hagino * Temporarily fake the state to choose a new default 1477686cdd19SJun-ichiro itojun Hagino * router and to perform on-link determination of 147888ff5695SSUZUKI Shinsuke * prefixes correctly. 1479686cdd19SJun-ichiro itojun Hagino * Below the state will be set correctly, 1480686cdd19SJun-ichiro itojun Hagino * or the entry itself will be deleted. 1481686cdd19SJun-ichiro itojun Hagino */ 1482686cdd19SJun-ichiro itojun Hagino ln->ln_state = ND6_LLINFO_INCOMPLETE; 14831d5089c2SBjoern A. Zeeb } 1484686cdd19SJun-ichiro itojun Hagino 14851d5089c2SBjoern A. Zeeb if (ln->ln_router || dr) { 14861d5089c2SBjoern A. Zeeb 14871d5089c2SBjoern A. Zeeb /* 14881d5089c2SBjoern A. Zeeb * We need to unlock to avoid a LOR with rt6_flush() with the 14891d5089c2SBjoern A. Zeeb * rnh and for the calls to pfxlist_onlink_check() and 1490559b4296SAlan Somers * defrouter_select_fib() in the block further down for calls 14911d5089c2SBjoern A. Zeeb * into nd6_lookup(). We still hold a ref. 14921d5089c2SBjoern A. Zeeb */ 14931d5089c2SBjoern A. Zeeb LLE_WUNLOCK(ln); 14941d5089c2SBjoern A. Zeeb 14951d5089c2SBjoern A. Zeeb /* 14961d5089c2SBjoern A. Zeeb * rt6_flush must be called whether or not the neighbor 14971d5089c2SBjoern A. Zeeb * is in the Default Router List. 14981d5089c2SBjoern A. Zeeb * See a corresponding comment in nd6_na_input(). 14991d5089c2SBjoern A. Zeeb */ 1500314294deSAlexander V. Chernikov rt6_flush(&ln->r_l3addr.addr6, ifp); 15011d5089c2SBjoern A. Zeeb } 15021d5089c2SBjoern A. Zeeb 15031d5089c2SBjoern A. Zeeb if (dr) { 150433841545SHajimu UMEMOTO /* 1505559b4296SAlan Somers * Since defrouter_select_fib() does not affect the 150633841545SHajimu UMEMOTO * on-link determination and MIP6 needs the check 150733841545SHajimu UMEMOTO * before the default router selection, we perform 150833841545SHajimu UMEMOTO * the check now. 150933841545SHajimu UMEMOTO */ 151033841545SHajimu UMEMOTO pfxlist_onlink_check(); 151133841545SHajimu UMEMOTO 1512686cdd19SJun-ichiro itojun Hagino /* 15131d5089c2SBjoern A. Zeeb * Refresh default router list. 1514686cdd19SJun-ichiro itojun Hagino */ 1515559b4296SAlan Somers defrouter_select_fib(dr->ifp->if_fib); 1516686cdd19SJun-ichiro itojun Hagino } 15171d5089c2SBjoern A. Zeeb 151817a03656SEric van Gyzen /* 151917a03656SEric van Gyzen * If this entry was added by an on-link redirect, remove the 152017a03656SEric van Gyzen * corresponding host route. 152117a03656SEric van Gyzen */ 152217a03656SEric van Gyzen if (ln->la_flags & LLE_REDIRECT) 152317a03656SEric van Gyzen nd6_free_redirect(ln); 152417a03656SEric van Gyzen 15251d5089c2SBjoern A. Zeeb if (ln->ln_router || dr) 15261d5089c2SBjoern A. Zeeb LLE_WLOCK(ln); 152782cd038dSYoshinobu Inoue } 152882cd038dSYoshinobu Inoue 152933841545SHajimu UMEMOTO /* 1530e6950476SBjoern A. Zeeb * Save to unlock. We still hold an extra reference and will not 1531e6950476SBjoern A. Zeeb * free(9) in llentry_free() if someone else holds one as well. 1532e6950476SBjoern A. Zeeb */ 1533e6950476SBjoern A. Zeeb LLE_WUNLOCK(ln); 15346e6b3f7cSQing Li IF_AFDATA_LOCK(ifp); 15356e6b3f7cSQing Li LLE_WLOCK(ln); 1536b1ec2940SGleb Smirnoff /* Guard against race with other llentry_free(). */ 1537b1ec2940SGleb Smirnoff if (ln->la_flags & LLE_LINKED) { 1538d3cdb716SAlexander V. Chernikov /* Remove callout reference */ 1539becba438SBjoern A. Zeeb LLE_REMREF(ln); 1540d3cdb716SAlexander V. Chernikov lltable_unlink_entry(ln->lle_tbl, ln); 1541d3cdb716SAlexander V. Chernikov } 15426e6b3f7cSQing Li IF_AFDATA_UNLOCK(ifp); 154333841545SHajimu UMEMOTO 1544d3cdb716SAlexander V. Chernikov llentry_free(ln); 15454de485feSMark Johnston if (dr != NULL) 15464de485feSMark Johnston defrouter_rele(dr); 154782cd038dSYoshinobu Inoue } 154882cd038dSYoshinobu Inoue 1549e8b0643eSAlexander V. Chernikov static int 1550539642a2SAlexander V. Chernikov nd6_isdynrte(const struct rtentry *rt, const struct nhop_object *nh, void *xap) 1551e8b0643eSAlexander V. Chernikov { 1552e8b0643eSAlexander V. Chernikov 1553539642a2SAlexander V. Chernikov if (nh->nh_flags & NHF_REDIRECT) 1554e8b0643eSAlexander V. Chernikov return (1); 1555e8b0643eSAlexander V. Chernikov 1556e8b0643eSAlexander V. Chernikov return (0); 1557e8b0643eSAlexander V. Chernikov } 1558539642a2SAlexander V. Chernikov 155982cd038dSYoshinobu Inoue /* 156017a03656SEric van Gyzen * Remove the rtentry for the given llentry, 156117a03656SEric van Gyzen * both of which were installed by a redirect. 156217a03656SEric van Gyzen */ 156317a03656SEric van Gyzen static void 156417a03656SEric van Gyzen nd6_free_redirect(const struct llentry *ln) 156517a03656SEric van Gyzen { 156617a03656SEric van Gyzen int fibnum; 156717a03656SEric van Gyzen struct sockaddr_in6 sin6; 1568e8b0643eSAlexander V. Chernikov struct rt_addrinfo info; 156917a03656SEric van Gyzen 157017a03656SEric van Gyzen lltable_fill_sa_entry(ln, (struct sockaddr *)&sin6); 1571e8b0643eSAlexander V. Chernikov memset(&info, 0, sizeof(info)); 1572e8b0643eSAlexander V. Chernikov info.rti_info[RTAX_DST] = (struct sockaddr *)&sin6; 1573e8b0643eSAlexander V. Chernikov info.rti_filter = nd6_isdynrte; 157417a03656SEric van Gyzen 1575e8b0643eSAlexander V. Chernikov for (fibnum = 0; fibnum < rt_numfibs; fibnum++) 1576e8b0643eSAlexander V. Chernikov rtrequest1_fib(RTM_DELETE, &info, NULL, fibnum); 157717a03656SEric van Gyzen } 157817a03656SEric van Gyzen 157917a03656SEric van Gyzen /* 15800f1aca65SQing Li * Rejuvenate this function for routing operations related 15810f1aca65SQing Li * processing. 15820f1aca65SQing Li */ 15830f1aca65SQing Li void 158474787ef4SAlexander V. Chernikov nd6_rtrequest(int req, struct rtentry *rt, struct nhop_object *nh, 158574787ef4SAlexander V. Chernikov struct rt_addrinfo *info) 15860f1aca65SQing Li { 158739e19560SBjoern A. Zeeb struct sockaddr_in6 *gateway; 15880f1aca65SQing Li struct nd_defrouter *dr; 15890f1aca65SQing Li 1590aaad3c4fSAlexander V. Chernikov gateway = &nh->gw6_sa; 15910f1aca65SQing Li 15920f1aca65SQing Li switch (req) { 15930f1aca65SQing Li case RTM_ADD: 15940f1aca65SQing Li break; 15950f1aca65SQing Li 15960f1aca65SQing Li case RTM_DELETE: 15970f1aca65SQing Li /* 15980f1aca65SQing Li * Only indirect routes are interesting. 15990f1aca65SQing Li */ 1600aaad3c4fSAlexander V. Chernikov if ((nh->nh_flags & NHF_GATEWAY) == 0) 16010f1aca65SQing Li return; 16020f1aca65SQing Li /* 16030f1aca65SQing Li * check for default route 16040f1aca65SQing Li */ 1605aaad3c4fSAlexander V. Chernikov if (nh->nh_flags & NHF_DEFAULT) { 1606aaad3c4fSAlexander V. Chernikov dr = defrouter_lookup(&gateway->sin6_addr, nh->nh_ifp); 16074de485feSMark Johnston if (dr != NULL) { 16080f1aca65SQing Li dr->installed = 0; 16094de485feSMark Johnston defrouter_rele(dr); 16104de485feSMark Johnston } 16110f1aca65SQing Li } 16120f1aca65SQing Li break; 16130f1aca65SQing Li } 16140f1aca65SQing Li } 16150f1aca65SQing Li 16160f1aca65SQing Li 161782cd038dSYoshinobu Inoue int 16181272577eSXin LI nd6_ioctl(u_long cmd, caddr_t data, struct ifnet *ifp) 161982cd038dSYoshinobu Inoue { 162082cd038dSYoshinobu Inoue struct in6_ndireq *ndi = (struct in6_ndireq *)data; 162182cd038dSYoshinobu Inoue struct in6_nbrinfo *nbi = (struct in6_nbrinfo *)data; 1622686cdd19SJun-ichiro itojun Hagino struct in6_ndifreq *ndif = (struct in6_ndifreq *)data; 1623a68cc388SGleb Smirnoff struct epoch_tracker et; 1624d0bec2c5SHiroki Sato int error = 0; 162582cd038dSYoshinobu Inoue 16260de0dd9bSHiroki Sato if (ifp->if_afdata[AF_INET6] == NULL) 16270de0dd9bSHiroki Sato return (EPFNOSUPPORT); 162882cd038dSYoshinobu Inoue switch (cmd) { 162933841545SHajimu UMEMOTO case OSIOCGIFINFO_IN6: 16302ce62dceSSUZUKI Shinsuke #define ND ndi->ndi 163131b1bfe1SHajimu UMEMOTO /* XXX: old ndp(8) assumes a positive value for linkmtu. */ 16322ce62dceSSUZUKI Shinsuke bzero(&ND, sizeof(ND)); 16332ce62dceSSUZUKI Shinsuke ND.linkmtu = IN6_LINKMTU(ifp); 16342ce62dceSSUZUKI Shinsuke ND.maxmtu = ND_IFINFO(ifp)->maxmtu; 16352ce62dceSSUZUKI Shinsuke ND.basereachable = ND_IFINFO(ifp)->basereachable; 16362ce62dceSSUZUKI Shinsuke ND.reachable = ND_IFINFO(ifp)->reachable; 16372ce62dceSSUZUKI Shinsuke ND.retrans = ND_IFINFO(ifp)->retrans; 16382ce62dceSSUZUKI Shinsuke ND.flags = ND_IFINFO(ifp)->flags; 16392ce62dceSSUZUKI Shinsuke ND.recalctm = ND_IFINFO(ifp)->recalctm; 16402ce62dceSSUZUKI Shinsuke ND.chlim = ND_IFINFO(ifp)->chlim; 164133841545SHajimu UMEMOTO break; 164282cd038dSYoshinobu Inoue case SIOCGIFINFO_IN6: 16432ce62dceSSUZUKI Shinsuke ND = *ND_IFINFO(ifp); 164482cd038dSYoshinobu Inoue break; 1645b9204379SSUZUKI Shinsuke case SIOCSIFINFO_IN6: 1646b9204379SSUZUKI Shinsuke /* 1647b9204379SSUZUKI Shinsuke * used to change host variables from userland. 1648a4641f4eSPedro F. Giffuni * intended for a use on router to reflect RA configurations. 1649b9204379SSUZUKI Shinsuke */ 1650b9204379SSUZUKI Shinsuke /* 0 means 'unspecified' */ 1651b9204379SSUZUKI Shinsuke if (ND.linkmtu != 0) { 1652b9204379SSUZUKI Shinsuke if (ND.linkmtu < IPV6_MMTU || 1653b9204379SSUZUKI Shinsuke ND.linkmtu > IN6_LINKMTU(ifp)) { 1654b9204379SSUZUKI Shinsuke error = EINVAL; 1655b9204379SSUZUKI Shinsuke break; 1656b9204379SSUZUKI Shinsuke } 1657b9204379SSUZUKI Shinsuke ND_IFINFO(ifp)->linkmtu = ND.linkmtu; 1658b9204379SSUZUKI Shinsuke } 1659b9204379SSUZUKI Shinsuke 1660b9204379SSUZUKI Shinsuke if (ND.basereachable != 0) { 1661b9204379SSUZUKI Shinsuke int obasereachable = ND_IFINFO(ifp)->basereachable; 1662b9204379SSUZUKI Shinsuke 1663b9204379SSUZUKI Shinsuke ND_IFINFO(ifp)->basereachable = ND.basereachable; 1664b9204379SSUZUKI Shinsuke if (ND.basereachable != obasereachable) 1665b9204379SSUZUKI Shinsuke ND_IFINFO(ifp)->reachable = 1666b9204379SSUZUKI Shinsuke ND_COMPUTE_RTIME(ND.basereachable); 1667b9204379SSUZUKI Shinsuke } 1668b9204379SSUZUKI Shinsuke if (ND.retrans != 0) 1669b9204379SSUZUKI Shinsuke ND_IFINFO(ifp)->retrans = ND.retrans; 1670b9204379SSUZUKI Shinsuke if (ND.chlim != 0) 1671b9204379SSUZUKI Shinsuke ND_IFINFO(ifp)->chlim = ND.chlim; 1672b9204379SSUZUKI Shinsuke /* FALLTHROUGH */ 1673686cdd19SJun-ichiro itojun Hagino case SIOCSIFINFO_FLAGS: 1674a283298cSHiroki Sato { 1675a283298cSHiroki Sato struct ifaddr *ifa; 1676a283298cSHiroki Sato struct in6_ifaddr *ia; 1677a283298cSHiroki Sato 1678a283298cSHiroki Sato if ((ND_IFINFO(ifp)->flags & ND6_IFF_IFDISABLED) && 1679a283298cSHiroki Sato !(ND.flags & ND6_IFF_IFDISABLED)) { 1680a283298cSHiroki Sato /* ifdisabled 1->0 transision */ 1681a283298cSHiroki Sato 1682a283298cSHiroki Sato /* 1683a283298cSHiroki Sato * If the interface is marked as ND6_IFF_IFDISABLED and 1684a283298cSHiroki Sato * has an link-local address with IN6_IFF_DUPLICATED, 1685a283298cSHiroki Sato * do not clear ND6_IFF_IFDISABLED. 1686a283298cSHiroki Sato * See RFC 4862, Section 5.4.5. 1687a283298cSHiroki Sato */ 1688ef2e580eSGleb Smirnoff NET_EPOCH_ENTER(et); 1689d7c5a620SMatt Macy CK_STAILQ_FOREACH(ifa, &ifp->if_addrhead, ifa_link) { 1690a283298cSHiroki Sato if (ifa->ifa_addr->sa_family != AF_INET6) 1691a283298cSHiroki Sato continue; 1692a283298cSHiroki Sato ia = (struct in6_ifaddr *)ifa; 1693a283298cSHiroki Sato if ((ia->ia6_flags & IN6_IFF_DUPLICATED) && 1694d0bec2c5SHiroki Sato IN6_IS_ADDR_LINKLOCAL(IA6_IN6(ia))) 1695a283298cSHiroki Sato break; 1696a283298cSHiroki Sato } 1697ef2e580eSGleb Smirnoff NET_EPOCH_EXIT(et); 1698a283298cSHiroki Sato 1699d0bec2c5SHiroki Sato if (ifa != NULL) { 1700d0bec2c5SHiroki Sato /* LLA is duplicated. */ 1701a283298cSHiroki Sato ND.flags |= ND6_IFF_IFDISABLED; 1702a283298cSHiroki Sato log(LOG_ERR, "Cannot enable an interface" 1703a283298cSHiroki Sato " with a link-local address marked" 1704a283298cSHiroki Sato " duplicate.\n"); 1705a283298cSHiroki Sato } else { 1706a283298cSHiroki Sato ND_IFINFO(ifp)->flags &= ~ND6_IFF_IFDISABLED; 1707154d5f73SHiroki Sato if (ifp->if_flags & IFF_UP) 1708a283298cSHiroki Sato in6_if_up(ifp); 1709a283298cSHiroki Sato } 1710a283298cSHiroki Sato } else if (!(ND_IFINFO(ifp)->flags & ND6_IFF_IFDISABLED) && 1711a283298cSHiroki Sato (ND.flags & ND6_IFF_IFDISABLED)) { 1712a283298cSHiroki Sato /* ifdisabled 0->1 transision */ 1713a283298cSHiroki Sato /* Mark all IPv6 address as tentative. */ 1714a283298cSHiroki Sato 1715a283298cSHiroki Sato ND_IFINFO(ifp)->flags |= ND6_IFF_IFDISABLED; 17166401c828SHiroki Sato if (V_ip6_dad_count > 0 && 17176401c828SHiroki Sato (ND_IFINFO(ifp)->flags & ND6_IFF_NO_DAD) == 0) { 1718ef2e580eSGleb Smirnoff NET_EPOCH_ENTER(et); 1719d7c5a620SMatt Macy CK_STAILQ_FOREACH(ifa, &ifp->if_addrhead, 1720d0bec2c5SHiroki Sato ifa_link) { 1721d0bec2c5SHiroki Sato if (ifa->ifa_addr->sa_family != 1722d0bec2c5SHiroki Sato AF_INET6) 1723a283298cSHiroki Sato continue; 1724a283298cSHiroki Sato ia = (struct in6_ifaddr *)ifa; 1725a283298cSHiroki Sato ia->ia6_flags |= IN6_IFF_TENTATIVE; 1726a283298cSHiroki Sato } 1727ef2e580eSGleb Smirnoff NET_EPOCH_EXIT(et); 1728a283298cSHiroki Sato } 1729d0bec2c5SHiroki Sato } 1730a283298cSHiroki Sato 1731154d5f73SHiroki Sato if (ND.flags & ND6_IFF_AUTO_LINKLOCAL) { 1732154d5f73SHiroki Sato if (!(ND_IFINFO(ifp)->flags & ND6_IFF_AUTO_LINKLOCAL)) { 1733a283298cSHiroki Sato /* auto_linklocal 0->1 transision */ 1734a283298cSHiroki Sato 1735a283298cSHiroki Sato /* If no link-local address on ifp, configure */ 1736a283298cSHiroki Sato ND_IFINFO(ifp)->flags |= ND6_IFF_AUTO_LINKLOCAL; 1737a283298cSHiroki Sato in6_ifattach(ifp, NULL); 1738154d5f73SHiroki Sato } else if (!(ND.flags & ND6_IFF_IFDISABLED) && 1739154d5f73SHiroki Sato ifp->if_flags & IFF_UP) { 174077bc4985SHiroki Sato /* 174177bc4985SHiroki Sato * When the IF already has 1742154d5f73SHiroki Sato * ND6_IFF_AUTO_LINKLOCAL, no link-local 1743154d5f73SHiroki Sato * address is assigned, and IFF_UP, try to 1744154d5f73SHiroki Sato * assign one. 174577bc4985SHiroki Sato */ 1746ef2e580eSGleb Smirnoff NET_EPOCH_ENTER(et); 1747d7c5a620SMatt Macy CK_STAILQ_FOREACH(ifa, &ifp->if_addrhead, 1748d0bec2c5SHiroki Sato ifa_link) { 1749d0bec2c5SHiroki Sato if (ifa->ifa_addr->sa_family != 1750d0bec2c5SHiroki Sato AF_INET6) 175177bc4985SHiroki Sato continue; 175277bc4985SHiroki Sato ia = (struct in6_ifaddr *)ifa; 1753d0bec2c5SHiroki Sato if (IN6_IS_ADDR_LINKLOCAL(IA6_IN6(ia))) 175477bc4985SHiroki Sato break; 175577bc4985SHiroki Sato } 1756ef2e580eSGleb Smirnoff NET_EPOCH_EXIT(et); 1757d0bec2c5SHiroki Sato if (ifa != NULL) 1758d0bec2c5SHiroki Sato /* No LLA is configured. */ 175977bc4985SHiroki Sato in6_ifattach(ifp, NULL); 1760a283298cSHiroki Sato } 1761a283298cSHiroki Sato } 17622ce62dceSSUZUKI Shinsuke ND_IFINFO(ifp)->flags = ND.flags; 1763686cdd19SJun-ichiro itojun Hagino break; 1764b8a6e03fSGleb Smirnoff } 17652ce62dceSSUZUKI Shinsuke #undef ND 1766686cdd19SJun-ichiro itojun Hagino case SIOCSNDFLUSH_IN6: /* XXX: the ioctl name is confusing... */ 1767743eee66SSUZUKI Shinsuke /* sync kernel routing table with the default router list */ 1768743eee66SSUZUKI Shinsuke defrouter_reset(); 1769808c432fSBjoern A. Zeeb defrouter_select_fib(RT_ALL_FIBS); 177082cd038dSYoshinobu Inoue break; 177182cd038dSYoshinobu Inoue case SIOCSPFXFLUSH_IN6: 177282cd038dSYoshinobu Inoue { 177382cd038dSYoshinobu Inoue /* flush all the prefix advertised by routers */ 177433841545SHajimu UMEMOTO struct in6_ifaddr *ia, *ia_next; 1775d748f7efSMark Johnston struct nd_prefix *pr, *next; 1776d748f7efSMark Johnston struct nd_prhead prl; 177733841545SHajimu UMEMOTO 1778d748f7efSMark Johnston LIST_INIT(&prl); 1779d748f7efSMark Johnston 1780d748f7efSMark Johnston ND6_WLOCK(); 1781d748f7efSMark Johnston LIST_FOREACH_SAFE(pr, &V_nd_prefix, ndpr_entry, next) { 178233841545SHajimu UMEMOTO if (IN6_IS_ADDR_LINKLOCAL(&pr->ndpr_prefix.sin6_addr)) 178333841545SHajimu UMEMOTO continue; /* XXX */ 1784d748f7efSMark Johnston nd6_prefix_unlink(pr, &prl); 1785d748f7efSMark Johnston } 1786d748f7efSMark Johnston ND6_WUNLOCK(); 178733841545SHajimu UMEMOTO 1788d748f7efSMark Johnston while ((pr = LIST_FIRST(&prl)) != NULL) { 1789d748f7efSMark Johnston LIST_REMOVE(pr, ndpr_entry); 1790d1da0a06SRobert Watson /* XXXRW: in6_ifaddrhead locking. */ 1791d7c5a620SMatt Macy CK_STAILQ_FOREACH_SAFE(ia, &V_in6_ifaddrhead, ia_link, 179280af0152SRobert Watson ia_next) { 179333841545SHajimu UMEMOTO if ((ia->ia6_flags & IN6_IFF_AUTOCONF) == 0) 179433841545SHajimu UMEMOTO continue; 179533841545SHajimu UMEMOTO 179633841545SHajimu UMEMOTO if (ia->ia6_ndpr == pr) 179733841545SHajimu UMEMOTO in6_purgeaddr(&ia->ia_ifa); 179833841545SHajimu UMEMOTO } 1799d748f7efSMark Johnston nd6_prefix_del(pr); 180082cd038dSYoshinobu Inoue } 180182cd038dSYoshinobu Inoue break; 180282cd038dSYoshinobu Inoue } 180382cd038dSYoshinobu Inoue case SIOCSRTRFLUSH_IN6: 180482cd038dSYoshinobu Inoue { 180582cd038dSYoshinobu Inoue /* flush all the default routers */ 180682cd038dSYoshinobu Inoue 1807743eee66SSUZUKI Shinsuke defrouter_reset(); 1808ad675b32SBjoern A. Zeeb nd6_defrouter_flush_all(); 1809808c432fSBjoern A. Zeeb defrouter_select_fib(RT_ALL_FIBS); 181082cd038dSYoshinobu Inoue break; 181182cd038dSYoshinobu Inoue } 181282cd038dSYoshinobu Inoue case SIOCGNBRINFO_IN6: 181382cd038dSYoshinobu Inoue { 18146e6b3f7cSQing Li struct llentry *ln; 181582cd038dSYoshinobu Inoue struct in6_addr nb_addr = nbi->addr; /* make local for safety */ 181682cd038dSYoshinobu Inoue 1817a1f7e5f8SHajimu UMEMOTO if ((error = in6_setscope(&nb_addr, ifp, NULL)) != 0) 1818a1f7e5f8SHajimu UMEMOTO return (error); 181982cd038dSYoshinobu Inoue 1820a68cc388SGleb Smirnoff NET_EPOCH_ENTER(et); 18216e6b3f7cSQing Li ln = nd6_lookup(&nb_addr, 0, ifp); 1822a68cc388SGleb Smirnoff NET_EPOCH_EXIT(et); 18236e6b3f7cSQing Li 18246e6b3f7cSQing Li if (ln == NULL) { 182582cd038dSYoshinobu Inoue error = EINVAL; 182682cd038dSYoshinobu Inoue break; 182782cd038dSYoshinobu Inoue } 182882cd038dSYoshinobu Inoue nbi->state = ln->ln_state; 18296e6b3f7cSQing Li nbi->asked = ln->la_asked; 183082cd038dSYoshinobu Inoue nbi->isrouter = ln->ln_router; 18315a041915SHiroki Sato if (ln->la_expire == 0) 18325a041915SHiroki Sato nbi->expire = 0; 18335a041915SHiroki Sato else 1834427c2f4eSAlexander V. Chernikov nbi->expire = ln->la_expire + ln->lle_remtime / hz + 18355a041915SHiroki Sato (time_second - time_uptime); 18366e6b3f7cSQing Li LLE_RUNLOCK(ln); 183782cd038dSYoshinobu Inoue break; 183882cd038dSYoshinobu Inoue } 1839686cdd19SJun-ichiro itojun Hagino case SIOCGDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1840603724d3SBjoern A. Zeeb ndif->ifindex = V_nd6_defifindex; 1841686cdd19SJun-ichiro itojun Hagino break; 1842686cdd19SJun-ichiro itojun Hagino case SIOCSDEFIFACE_IN6: /* XXX: should be implemented as a sysctl? */ 1843686cdd19SJun-ichiro itojun Hagino return (nd6_setdefaultiface(ndif->ifindex)); 184482cd038dSYoshinobu Inoue } 184582cd038dSYoshinobu Inoue return (error); 184682cd038dSYoshinobu Inoue } 184782cd038dSYoshinobu Inoue 184882cd038dSYoshinobu Inoue /* 18490e2dcee6SAlexander V. Chernikov * Calculates new isRouter value based on provided parameters and 18500e2dcee6SAlexander V. Chernikov * returns it. 18510e2dcee6SAlexander V. Chernikov */ 18520e2dcee6SAlexander V. Chernikov static int 18530e2dcee6SAlexander V. Chernikov nd6_is_router(int type, int code, int is_new, int old_addr, int new_addr, 18540e2dcee6SAlexander V. Chernikov int ln_router) 18550e2dcee6SAlexander V. Chernikov { 18560e2dcee6SAlexander V. Chernikov 18570e2dcee6SAlexander V. Chernikov /* 18580e2dcee6SAlexander V. Chernikov * ICMP6 type dependent behavior. 18590e2dcee6SAlexander V. Chernikov * 18600e2dcee6SAlexander V. Chernikov * NS: clear IsRouter if new entry 18610e2dcee6SAlexander V. Chernikov * RS: clear IsRouter 18620e2dcee6SAlexander V. Chernikov * RA: set IsRouter if there's lladdr 18630e2dcee6SAlexander V. Chernikov * redir: clear IsRouter if new entry 18640e2dcee6SAlexander V. Chernikov * 18650e2dcee6SAlexander V. Chernikov * RA case, (1): 18660e2dcee6SAlexander V. Chernikov * The spec says that we must set IsRouter in the following cases: 18670e2dcee6SAlexander V. Chernikov * - If lladdr exist, set IsRouter. This means (1-5). 18680e2dcee6SAlexander V. Chernikov * - If it is old entry (!newentry), set IsRouter. This means (7). 18690e2dcee6SAlexander V. Chernikov * So, based on the spec, in (1-5) and (7) cases we must set IsRouter. 18700e2dcee6SAlexander V. Chernikov * A quetion arises for (1) case. (1) case has no lladdr in the 18710e2dcee6SAlexander V. Chernikov * neighbor cache, this is similar to (6). 18720e2dcee6SAlexander V. Chernikov * This case is rare but we figured that we MUST NOT set IsRouter. 18730e2dcee6SAlexander V. Chernikov * 187441a31e78SAlexander V. Chernikov * is_new old_addr new_addr NS RS RA redir 18750e2dcee6SAlexander V. Chernikov * D R 187641a31e78SAlexander V. Chernikov * 0 n n (1) c ? s 187741a31e78SAlexander V. Chernikov * 0 y n (2) c s s 187841a31e78SAlexander V. Chernikov * 0 n y (3) c s s 187941a31e78SAlexander V. Chernikov * 0 y y (4) c s s 188041a31e78SAlexander V. Chernikov * 0 y y (5) c s s 188141a31e78SAlexander V. Chernikov * 1 -- n (6) c c c s 188241a31e78SAlexander V. Chernikov * 1 -- y (7) c c s c s 18830e2dcee6SAlexander V. Chernikov * 18840e2dcee6SAlexander V. Chernikov * (c=clear s=set) 18850e2dcee6SAlexander V. Chernikov */ 18860e2dcee6SAlexander V. Chernikov switch (type & 0xff) { 18870e2dcee6SAlexander V. Chernikov case ND_NEIGHBOR_SOLICIT: 18880e2dcee6SAlexander V. Chernikov /* 18890e2dcee6SAlexander V. Chernikov * New entry must have is_router flag cleared. 18900e2dcee6SAlexander V. Chernikov */ 18910e2dcee6SAlexander V. Chernikov if (is_new) /* (6-7) */ 18920e2dcee6SAlexander V. Chernikov ln_router = 0; 18930e2dcee6SAlexander V. Chernikov break; 18940e2dcee6SAlexander V. Chernikov case ND_REDIRECT: 18950e2dcee6SAlexander V. Chernikov /* 18960e2dcee6SAlexander V. Chernikov * If the icmp is a redirect to a better router, always set the 18970e2dcee6SAlexander V. Chernikov * is_router flag. Otherwise, if the entry is newly created, 18980e2dcee6SAlexander V. Chernikov * clear the flag. [RFC 2461, sec 8.3] 18990e2dcee6SAlexander V. Chernikov */ 19000e2dcee6SAlexander V. Chernikov if (code == ND_REDIRECT_ROUTER) 19010e2dcee6SAlexander V. Chernikov ln_router = 1; 19020e2dcee6SAlexander V. Chernikov else { 19030e2dcee6SAlexander V. Chernikov if (is_new) /* (6-7) */ 19040e2dcee6SAlexander V. Chernikov ln_router = 0; 19050e2dcee6SAlexander V. Chernikov } 19060e2dcee6SAlexander V. Chernikov break; 19070e2dcee6SAlexander V. Chernikov case ND_ROUTER_SOLICIT: 19080e2dcee6SAlexander V. Chernikov /* 19090e2dcee6SAlexander V. Chernikov * is_router flag must always be cleared. 19100e2dcee6SAlexander V. Chernikov */ 19110e2dcee6SAlexander V. Chernikov ln_router = 0; 19120e2dcee6SAlexander V. Chernikov break; 19130e2dcee6SAlexander V. Chernikov case ND_ROUTER_ADVERT: 19140e2dcee6SAlexander V. Chernikov /* 19150e2dcee6SAlexander V. Chernikov * Mark an entry with lladdr as a router. 19160e2dcee6SAlexander V. Chernikov */ 19170e2dcee6SAlexander V. Chernikov if ((!is_new && (old_addr || new_addr)) || /* (2-5) */ 19180e2dcee6SAlexander V. Chernikov (is_new && new_addr)) { /* (7) */ 19190e2dcee6SAlexander V. Chernikov ln_router = 1; 19200e2dcee6SAlexander V. Chernikov } 19210e2dcee6SAlexander V. Chernikov break; 19220e2dcee6SAlexander V. Chernikov } 19230e2dcee6SAlexander V. Chernikov 19240e2dcee6SAlexander V. Chernikov return (ln_router); 19250e2dcee6SAlexander V. Chernikov } 19260e2dcee6SAlexander V. Chernikov 19270e2dcee6SAlexander V. Chernikov /* 192882cd038dSYoshinobu Inoue * Create neighbor cache entry and cache link-layer address, 192982cd038dSYoshinobu Inoue * on reception of inbound ND6 packets. (RS/RA/NS/redirect) 19301272577eSXin LI * 19311272577eSXin LI * type - ICMP6 type 19321272577eSXin LI * code - type dependent information 19336e6b3f7cSQing Li * 193482cd038dSYoshinobu Inoue */ 19350e2dcee6SAlexander V. Chernikov void 19361272577eSXin LI nd6_cache_lladdr(struct ifnet *ifp, struct in6_addr *from, char *lladdr, 19371272577eSXin LI int lladdrlen, int type, int code) 193882cd038dSYoshinobu Inoue { 19395a255516SAlexander V. Chernikov struct llentry *ln = NULL, *ln_tmp; 194082cd038dSYoshinobu Inoue int is_newentry; 194182cd038dSYoshinobu Inoue int do_update; 194282cd038dSYoshinobu Inoue int olladdr; 194382cd038dSYoshinobu Inoue int llchange; 194468352503SBjoern A. Zeeb int flags; 19453d3728e9SQing Li uint16_t router = 0; 19466e6b3f7cSQing Li struct sockaddr_in6 sin6; 1947fd14c50bSKip Macy struct mbuf *chain = NULL; 19484fb3a820SAlexander V. Chernikov u_char linkhdr[LLE_MAX_LINKHDR]; 19494fb3a820SAlexander V. Chernikov size_t linkhdrsize; 19504fb3a820SAlexander V. Chernikov int lladdr_off; 19516e6b3f7cSQing Li 1952b8a6e03fSGleb Smirnoff NET_EPOCH_ASSERT(); 19536e6b3f7cSQing Li IF_AFDATA_UNLOCK_ASSERT(ifp); 195482cd038dSYoshinobu Inoue 195539e19560SBjoern A. Zeeb KASSERT(ifp != NULL, ("%s: ifp == NULL", __func__)); 195639e19560SBjoern A. Zeeb KASSERT(from != NULL, ("%s: from == NULL", __func__)); 195782cd038dSYoshinobu Inoue 195882cd038dSYoshinobu Inoue /* nothing must be updated for unspecified address */ 195982cd038dSYoshinobu Inoue if (IN6_IS_ADDR_UNSPECIFIED(from)) 19600e2dcee6SAlexander V. Chernikov return; 196182cd038dSYoshinobu Inoue 196282cd038dSYoshinobu Inoue /* 196382cd038dSYoshinobu Inoue * Validation about ifp->if_addrlen and lladdrlen must be done in 196482cd038dSYoshinobu Inoue * the caller. 196582cd038dSYoshinobu Inoue * 196682cd038dSYoshinobu Inoue * XXX If the link does not have link-layer adderss, what should 196782cd038dSYoshinobu Inoue * we do? (ifp->if_addrlen == 0) 196882cd038dSYoshinobu Inoue * Spec says nothing in sections for RA, RS and NA. There's small 196982cd038dSYoshinobu Inoue * description on it in NS section (RFC 2461 7.2.3). 197082cd038dSYoshinobu Inoue */ 1971f506d933SAlexander V. Chernikov flags = lladdr ? LLE_EXCLUSIVE : 0; 19726e6b3f7cSQing Li ln = nd6_lookup(from, flags, ifp); 19735a255516SAlexander V. Chernikov is_newentry = 0; 19746e6b3f7cSQing Li if (ln == NULL) { 1975f506d933SAlexander V. Chernikov flags |= LLE_EXCLUSIVE; 19765a255516SAlexander V. Chernikov ln = nd6_alloc(from, 0, ifp); 19775a255516SAlexander V. Chernikov if (ln == NULL) 19780e2dcee6SAlexander V. Chernikov return; 1979501adf01SAlexander V. Chernikov 1980501adf01SAlexander V. Chernikov /* 1981501adf01SAlexander V. Chernikov * Since we already know all the data for the new entry, 1982501adf01SAlexander V. Chernikov * fill it before insertion. 1983501adf01SAlexander V. Chernikov */ 19844fb3a820SAlexander V. Chernikov if (lladdr != NULL) { 19854fb3a820SAlexander V. Chernikov linkhdrsize = sizeof(linkhdr); 19864fb3a820SAlexander V. Chernikov if (lltable_calc_llheader(ifp, AF_INET6, lladdr, 19874fb3a820SAlexander V. Chernikov linkhdr, &linkhdrsize, &lladdr_off) != 0) 19884fb3a820SAlexander V. Chernikov return; 19894fb3a820SAlexander V. Chernikov lltable_set_entry_addr(ifp, ln, linkhdr, linkhdrsize, 19904fb3a820SAlexander V. Chernikov lladdr_off); 19914fb3a820SAlexander V. Chernikov } 19924fb3a820SAlexander V. Chernikov 19935a255516SAlexander V. Chernikov IF_AFDATA_WLOCK(ifp); 19945a255516SAlexander V. Chernikov LLE_WLOCK(ln); 19955a255516SAlexander V. Chernikov /* Prefer any existing lle over newly-created one */ 1996f506d933SAlexander V. Chernikov ln_tmp = nd6_lookup(from, LLE_EXCLUSIVE, ifp); 19975a255516SAlexander V. Chernikov if (ln_tmp == NULL) 19985a255516SAlexander V. Chernikov lltable_link_entry(LLTABLE6(ifp), ln); 19995a255516SAlexander V. Chernikov IF_AFDATA_WUNLOCK(ifp); 20001496229aSAlexander V. Chernikov if (ln_tmp == NULL) { 2001ab415c83SAlexander V. Chernikov /* No existing lle, mark as new entry (6,7) */ 200282cd038dSYoshinobu Inoue is_newentry = 1; 2003f8116f39SEric van Gyzen if (lladdr != NULL) { /* (7) */ 2004aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_STALE); 2005ab415c83SAlexander V. Chernikov EVENTHANDLER_INVOKE(lle_event, ln, 2006ab415c83SAlexander V. Chernikov LLENTRY_RESOLVED); 2007f8116f39SEric van Gyzen } 20081496229aSAlexander V. Chernikov } else { 20095a255516SAlexander V. Chernikov lltable_free_entry(LLTABLE6(ifp), ln); 20105a255516SAlexander V. Chernikov ln = ln_tmp; 20115a255516SAlexander V. Chernikov ln_tmp = NULL; 20125a255516SAlexander V. Chernikov } 20135a255516SAlexander V. Chernikov } 201433841545SHajimu UMEMOTO /* do nothing if static ndp is set */ 20155a255516SAlexander V. Chernikov if ((ln->la_flags & LLE_STATIC)) { 2016f506d933SAlexander V. Chernikov if (flags & LLE_EXCLUSIVE) 20170e2dcee6SAlexander V. Chernikov LLE_WUNLOCK(ln); 20180e2dcee6SAlexander V. Chernikov else 20190e2dcee6SAlexander V. Chernikov LLE_RUNLOCK(ln); 20200e2dcee6SAlexander V. Chernikov return; 20213d3728e9SQing Li } 202282cd038dSYoshinobu Inoue 20236e6b3f7cSQing Li olladdr = (ln->la_flags & LLE_VALID) ? 1 : 0; 202482cd038dSYoshinobu Inoue if (olladdr && lladdr) { 20254fb3a820SAlexander V. Chernikov llchange = bcmp(lladdr, ln->ll_addr, 20266e6b3f7cSQing Li ifp->if_addrlen); 202741a31e78SAlexander V. Chernikov } else if (!olladdr && lladdr) 202841a31e78SAlexander V. Chernikov llchange = 1; 202941a31e78SAlexander V. Chernikov else 203082cd038dSYoshinobu Inoue llchange = 0; 203182cd038dSYoshinobu Inoue 203282cd038dSYoshinobu Inoue /* 203382cd038dSYoshinobu Inoue * newentry olladdr lladdr llchange (*=record) 203482cd038dSYoshinobu Inoue * 0 n n -- (1) 203582cd038dSYoshinobu Inoue * 0 y n -- (2) 203641a31e78SAlexander V. Chernikov * 0 n y y (3) * STALE 203782cd038dSYoshinobu Inoue * 0 y y n (4) * 203882cd038dSYoshinobu Inoue * 0 y y y (5) * STALE 203982cd038dSYoshinobu Inoue * 1 -- n -- (6) NOSTATE(= PASSIVE) 204082cd038dSYoshinobu Inoue * 1 -- y -- (7) * STALE 204182cd038dSYoshinobu Inoue */ 204282cd038dSYoshinobu Inoue 2043501adf01SAlexander V. Chernikov do_update = 0; 20447503e0c7SAlexander V. Chernikov if (is_newentry == 0 && llchange != 0) { 2045501adf01SAlexander V. Chernikov do_update = 1; /* (3,5) */ 2046501adf01SAlexander V. Chernikov 204782cd038dSYoshinobu Inoue /* 204882cd038dSYoshinobu Inoue * Record source link-layer address 204982cd038dSYoshinobu Inoue * XXX is it dependent to ifp->if_type? 205082cd038dSYoshinobu Inoue */ 20514fb3a820SAlexander V. Chernikov linkhdrsize = sizeof(linkhdr); 20524fb3a820SAlexander V. Chernikov if (lltable_calc_llheader(ifp, AF_INET6, lladdr, 20534fb3a820SAlexander V. Chernikov linkhdr, &linkhdrsize, &lladdr_off) != 0) 20544fb3a820SAlexander V. Chernikov return; 20554fb3a820SAlexander V. Chernikov 20564fb3a820SAlexander V. Chernikov if (lltable_try_set_entry_addr(ifp, ln, linkhdr, linkhdrsize, 20574fb3a820SAlexander V. Chernikov lladdr_off) == 0) { 205812cb7521SAlexander V. Chernikov /* Entry was deleted */ 205912cb7521SAlexander V. Chernikov return; 206012cb7521SAlexander V. Chernikov } 206112cb7521SAlexander V. Chernikov 2062aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_STALE); 206382cd038dSYoshinobu Inoue 2064501adf01SAlexander V. Chernikov EVENTHANDLER_INVOKE(lle_event, ln, LLENTRY_RESOLVED); 206582cd038dSYoshinobu Inoue 2066d7968c29SAlexander V. Chernikov if (ln->la_hold != NULL) 2067d7968c29SAlexander V. Chernikov nd6_grab_holdchain(ln, &chain, &sin6); 206882cd038dSYoshinobu Inoue } 206982cd038dSYoshinobu Inoue 20700e2dcee6SAlexander V. Chernikov /* Calculates new router status */ 20710e2dcee6SAlexander V. Chernikov router = nd6_is_router(type, code, is_newentry, olladdr, 20720e2dcee6SAlexander V. Chernikov lladdr != NULL ? 1 : 0, ln->ln_router); 207382cd038dSYoshinobu Inoue 20740e2dcee6SAlexander V. Chernikov ln->ln_router = router; 20750e2dcee6SAlexander V. Chernikov /* Mark non-router redirects with special flag */ 20760e2dcee6SAlexander V. Chernikov if ((type & 0xFF) == ND_REDIRECT && code != ND_REDIRECT_ROUTER) 20770e2dcee6SAlexander V. Chernikov ln->la_flags |= LLE_REDIRECT; 2078c2b3a02bSKip Macy 2079f506d933SAlexander V. Chernikov if (flags & LLE_EXCLUSIVE) 20806e6b3f7cSQing Li LLE_WUNLOCK(ln); 20816e6b3f7cSQing Li else 20826e6b3f7cSQing Li LLE_RUNLOCK(ln); 20830e2dcee6SAlexander V. Chernikov 2084d7968c29SAlexander V. Chernikov if (chain != NULL) 2085151ba793SAlexander Kabaev nd6_flush_holdchain(ifp, chain, &sin6); 20866e6b3f7cSQing Li 2087554bf4aaSHajimu UMEMOTO /* 2088554bf4aaSHajimu UMEMOTO * When the link-layer address of a router changes, select the 2089554bf4aaSHajimu UMEMOTO * best router again. In particular, when the neighbor entry is newly 2090554bf4aaSHajimu UMEMOTO * created, it might affect the selection policy. 2091554bf4aaSHajimu UMEMOTO * Question: can we restrict the first condition to the "is_newentry" 2092554bf4aaSHajimu UMEMOTO * case? 2093554bf4aaSHajimu UMEMOTO * XXX: when we hear an RA from a new router with the link-layer 2094559b4296SAlan Somers * address option, defrouter_select_fib() is called twice, since 2095554bf4aaSHajimu UMEMOTO * defrtrlist_update called the function as well. However, I believe 2096554bf4aaSHajimu UMEMOTO * we can compromise the overhead, since it only happens the first 2097554bf4aaSHajimu UMEMOTO * time. 2098559b4296SAlan Somers * XXX: although defrouter_select_fib() should not have a bad effect 2099554bf4aaSHajimu UMEMOTO * for those are not autoconfigured hosts, we explicitly avoid such 2100554bf4aaSHajimu UMEMOTO * cases for safety. 2101554bf4aaSHajimu UMEMOTO */ 2102501adf01SAlexander V. Chernikov if ((do_update || is_newentry) && router && 2103a283298cSHiroki Sato ND_IFINFO(ifp)->flags & ND6_IFF_ACCEPT_RTADV) { 21046e6b3f7cSQing Li /* 21056e6b3f7cSQing Li * guaranteed recursion 21066e6b3f7cSQing Li */ 2107559b4296SAlan Somers defrouter_select_fib(ifp->if_fib); 21086e6b3f7cSQing Li } 210982cd038dSYoshinobu Inoue } 211082cd038dSYoshinobu Inoue 211182cd038dSYoshinobu Inoue static void 21128b615593SMarko Zec nd6_slowtimo(void *arg) 211382cd038dSYoshinobu Inoue { 2114a68cc388SGleb Smirnoff struct epoch_tracker et; 21158b615593SMarko Zec CURVNET_SET((struct vnet *) arg); 211633841545SHajimu UMEMOTO struct nd_ifinfo *nd6if; 211731b1bfe1SHajimu UMEMOTO struct ifnet *ifp; 211882cd038dSYoshinobu Inoue 2119603724d3SBjoern A. Zeeb callout_reset(&V_nd6_slowtimo_ch, ND6_SLOWTIMER_INTERVAL * hz, 2120f6dfe47aSMarko Zec nd6_slowtimo, curvnet); 2121a68cc388SGleb Smirnoff NET_EPOCH_ENTER(et); 21224f6c66ccSMatt Macy CK_STAILQ_FOREACH(ifp, &V_ifnet, if_link) { 21230de0dd9bSHiroki Sato if (ifp->if_afdata[AF_INET6] == NULL) 21240de0dd9bSHiroki Sato continue; 212531b1bfe1SHajimu UMEMOTO nd6if = ND_IFINFO(ifp); 212682cd038dSYoshinobu Inoue if (nd6if->basereachable && /* already initialized */ 212782cd038dSYoshinobu Inoue (nd6if->recalctm -= ND6_SLOWTIMER_INTERVAL) <= 0) { 212882cd038dSYoshinobu Inoue /* 212982cd038dSYoshinobu Inoue * Since reachable time rarely changes by router 213082cd038dSYoshinobu Inoue * advertisements, we SHOULD insure that a new random 213182cd038dSYoshinobu Inoue * value gets recomputed at least once every few hours. 213282cd038dSYoshinobu Inoue * (RFC 2461, 6.3.4) 213382cd038dSYoshinobu Inoue */ 2134603724d3SBjoern A. Zeeb nd6if->recalctm = V_nd6_recalc_reachtm_interval; 213582cd038dSYoshinobu Inoue nd6if->reachable = ND_COMPUTE_RTIME(nd6if->basereachable); 213682cd038dSYoshinobu Inoue } 213782cd038dSYoshinobu Inoue } 2138a68cc388SGleb Smirnoff NET_EPOCH_EXIT(et); 21398b615593SMarko Zec CURVNET_RESTORE(); 214082cd038dSYoshinobu Inoue } 214182cd038dSYoshinobu Inoue 2142d7968c29SAlexander V. Chernikov void 2143d7968c29SAlexander V. Chernikov nd6_grab_holdchain(struct llentry *ln, struct mbuf **chain, 2144d7968c29SAlexander V. Chernikov struct sockaddr_in6 *sin6) 2145d7968c29SAlexander V. Chernikov { 2146d7968c29SAlexander V. Chernikov 2147d7968c29SAlexander V. Chernikov LLE_WLOCK_ASSERT(ln); 2148d7968c29SAlexander V. Chernikov 2149d7968c29SAlexander V. Chernikov *chain = ln->la_hold; 2150d7968c29SAlexander V. Chernikov ln->la_hold = NULL; 2151314294deSAlexander V. Chernikov lltable_fill_sa_entry(ln, (struct sockaddr *)sin6); 2152d7968c29SAlexander V. Chernikov 2153d7968c29SAlexander V. Chernikov if (ln->ln_state == ND6_LLINFO_STALE) { 2154d7968c29SAlexander V. Chernikov 2155d7968c29SAlexander V. Chernikov /* 2156d7968c29SAlexander V. Chernikov * The first time we send a packet to a 2157d7968c29SAlexander V. Chernikov * neighbor whose entry is STALE, we have 2158d7968c29SAlexander V. Chernikov * to change the state to DELAY and a sets 2159d7968c29SAlexander V. Chernikov * a timer to expire in DELAY_FIRST_PROBE_TIME 2160d7968c29SAlexander V. Chernikov * seconds to ensure do neighbor unreachability 2161d7968c29SAlexander V. Chernikov * detection on expiration. 2162d7968c29SAlexander V. Chernikov * (RFC 2461 7.3.3) 2163d7968c29SAlexander V. Chernikov */ 2164aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(ln, ND6_LLINFO_DELAY); 2165d7968c29SAlexander V. Chernikov } 2166d7968c29SAlexander V. Chernikov } 2167d7968c29SAlexander V. Chernikov 21681fe201c3SAlexander V. Chernikov int 2169d7968c29SAlexander V. Chernikov nd6_output_ifp(struct ifnet *ifp, struct ifnet *origifp, struct mbuf *m, 2170637670e7SAlexander V. Chernikov struct sockaddr_in6 *dst, struct route *ro) 2171d7968c29SAlexander V. Chernikov { 2172d7968c29SAlexander V. Chernikov int error; 2173d7968c29SAlexander V. Chernikov int ip6len; 2174d7968c29SAlexander V. Chernikov struct ip6_hdr *ip6; 2175d7968c29SAlexander V. Chernikov struct m_tag *mtag; 2176d7968c29SAlexander V. Chernikov 2177d7968c29SAlexander V. Chernikov #ifdef MAC 2178d7968c29SAlexander V. Chernikov mac_netinet6_nd6_send(ifp, m); 2179d7968c29SAlexander V. Chernikov #endif 2180d7968c29SAlexander V. Chernikov 2181d7968c29SAlexander V. Chernikov /* 2182d7968c29SAlexander V. Chernikov * If called from nd6_ns_output() (NS), nd6_na_output() (NA), 2183d7968c29SAlexander V. Chernikov * icmp6_redirect_output() (REDIRECT) or from rip6_output() (RS, RA 2184d7968c29SAlexander V. Chernikov * as handled by rtsol and rtadvd), mbufs will be tagged for SeND 2185d7968c29SAlexander V. Chernikov * to be diverted to user space. When re-injected into the kernel, 2186d7968c29SAlexander V. Chernikov * send_output() will directly dispatch them to the outgoing interface. 2187d7968c29SAlexander V. Chernikov */ 2188d7968c29SAlexander V. Chernikov if (send_sendso_input_hook != NULL) { 2189d7968c29SAlexander V. Chernikov mtag = m_tag_find(m, PACKET_TAG_ND_OUTGOING, NULL); 2190d7968c29SAlexander V. Chernikov if (mtag != NULL) { 2191d7968c29SAlexander V. Chernikov ip6 = mtod(m, struct ip6_hdr *); 2192d7968c29SAlexander V. Chernikov ip6len = sizeof(struct ip6_hdr) + ntohs(ip6->ip6_plen); 2193d7968c29SAlexander V. Chernikov /* Use the SEND socket */ 2194d7968c29SAlexander V. Chernikov error = send_sendso_input_hook(m, ifp, SND_OUT, 2195d7968c29SAlexander V. Chernikov ip6len); 2196d7968c29SAlexander V. Chernikov /* -1 == no app on SEND socket */ 2197d7968c29SAlexander V. Chernikov if (error == 0 || error != -1) 2198d7968c29SAlexander V. Chernikov return (error); 2199d7968c29SAlexander V. Chernikov } 2200d7968c29SAlexander V. Chernikov } 2201d7968c29SAlexander V. Chernikov 2202d7968c29SAlexander V. Chernikov m_clrprotoflags(m); /* Avoid confusing lower layers. */ 2203d7968c29SAlexander V. Chernikov IP_PROBE(send, NULL, NULL, mtod(m, struct ip6_hdr *), ifp, NULL, 2204d7968c29SAlexander V. Chernikov mtod(m, struct ip6_hdr *)); 2205d7968c29SAlexander V. Chernikov 2206d7968c29SAlexander V. Chernikov if ((ifp->if_flags & IFF_LOOPBACK) == 0) 2207d7968c29SAlexander V. Chernikov origifp = ifp; 2208d7968c29SAlexander V. Chernikov 2209637670e7SAlexander V. Chernikov error = (*ifp->if_output)(origifp, m, (struct sockaddr *)dst, ro); 2210d7968c29SAlexander V. Chernikov return (error); 2211d7968c29SAlexander V. Chernikov } 2212d7968c29SAlexander V. Chernikov 2213f6990c4eSAlexander V. Chernikov /* 22144fb3a820SAlexander V. Chernikov * Lookup link headerfor @sa_dst address. Stores found 22154fb3a820SAlexander V. Chernikov * data in @desten buffer. Copy of lle ln_flags can be also 22161fe201c3SAlexander V. Chernikov * saved in @pflags if @pflags is non-NULL. 22171fe201c3SAlexander V. Chernikov * 22181fe201c3SAlexander V. Chernikov * If destination LLE does not exists or lle state modification 22191fe201c3SAlexander V. Chernikov * is required, call "slow" version. 22201fe201c3SAlexander V. Chernikov * 22211fe201c3SAlexander V. Chernikov * Return values: 22221fe201c3SAlexander V. Chernikov * - 0 on success (address copied to buffer). 22231fe201c3SAlexander V. Chernikov * - EWOULDBLOCK (no local error, but address is still unresolved) 22241fe201c3SAlexander V. Chernikov * - other errors (alloc failure, etc) 2225f6990c4eSAlexander V. Chernikov */ 222682cd038dSYoshinobu Inoue int 22271fe201c3SAlexander V. Chernikov nd6_resolve(struct ifnet *ifp, int is_gw, struct mbuf *m, 22286d768226SGeorge V. Neville-Neil const struct sockaddr *sa_dst, u_char *desten, uint32_t *pflags, 22296d768226SGeorge V. Neville-Neil struct llentry **plle) 223082cd038dSYoshinobu Inoue { 2231f6990c4eSAlexander V. Chernikov struct llentry *ln = NULL; 22321fe201c3SAlexander V. Chernikov const struct sockaddr_in6 *dst6; 22331fe201c3SAlexander V. Chernikov 2234b8a6e03fSGleb Smirnoff NET_EPOCH_ASSERT(); 2235b8a6e03fSGleb Smirnoff 22361fe201c3SAlexander V. Chernikov if (pflags != NULL) 22371fe201c3SAlexander V. Chernikov *pflags = 0; 22381fe201c3SAlexander V. Chernikov 22391fe201c3SAlexander V. Chernikov dst6 = (const struct sockaddr_in6 *)sa_dst; 22406e6b3f7cSQing Li 2241f6990c4eSAlexander V. Chernikov /* discard the packet if IPv6 operation is disabled on the interface */ 2242f6990c4eSAlexander V. Chernikov if ((ND_IFINFO(ifp)->flags & ND6_IFF_IFDISABLED)) { 2243f6990c4eSAlexander V. Chernikov m_freem(m); 2244f6990c4eSAlexander V. Chernikov return (ENETDOWN); /* better error? */ 2245f6990c4eSAlexander V. Chernikov } 2246f6990c4eSAlexander V. Chernikov 22471fe201c3SAlexander V. Chernikov if (m != NULL && m->m_flags & M_MCAST) { 22481fe201c3SAlexander V. Chernikov switch (ifp->if_type) { 22491fe201c3SAlexander V. Chernikov case IFT_ETHER: 22501fe201c3SAlexander V. Chernikov case IFT_L2VLAN: 22511fe201c3SAlexander V. Chernikov case IFT_BRIDGE: 22521fe201c3SAlexander V. Chernikov ETHER_MAP_IPV6_MULTICAST(&dst6->sin6_addr, 22531fe201c3SAlexander V. Chernikov desten); 22541fe201c3SAlexander V. Chernikov return (0); 22551fe201c3SAlexander V. Chernikov default: 22561fe201c3SAlexander V. Chernikov m_freem(m); 22571fe201c3SAlexander V. Chernikov return (EAFNOSUPPORT); 22581fe201c3SAlexander V. Chernikov } 22591fe201c3SAlexander V. Chernikov } 2260f6990c4eSAlexander V. Chernikov 2261ea17754cSMike Karels ln = nd6_lookup(&dst6->sin6_addr, plle ? LLE_EXCLUSIVE : LLE_UNLOCKED, 2262ea17754cSMike Karels ifp); 226312cb7521SAlexander V. Chernikov if (ln != NULL && (ln->r_flags & RLLE_VALID) != 0) { 226412cb7521SAlexander V. Chernikov /* Entry found, let's copy lle info */ 22654fb3a820SAlexander V. Chernikov bcopy(ln->r_linkdata, desten, ln->r_hdrlen); 22661fe201c3SAlexander V. Chernikov if (pflags != NULL) 226712cb7521SAlexander V. Chernikov *pflags = LLE_VALID | (ln->r_flags & RLLE_IFADDR); 226812cb7521SAlexander V. Chernikov /* Check if we have feedback request from nd6 timer */ 226912cb7521SAlexander V. Chernikov if (ln->r_skip_req != 0) { 227012cb7521SAlexander V. Chernikov LLE_REQ_LOCK(ln); 227112cb7521SAlexander V. Chernikov ln->r_skip_req = 0; /* Notify that entry was used */ 227212cb7521SAlexander V. Chernikov ln->lle_hittime = time_uptime; 227312cb7521SAlexander V. Chernikov LLE_REQ_UNLOCK(ln); 227412cb7521SAlexander V. Chernikov } 2275ea17754cSMike Karels if (plle) { 2276ea17754cSMike Karels LLE_ADDREF(ln); 2277ea17754cSMike Karels *plle = ln; 2278ea17754cSMike Karels LLE_WUNLOCK(ln); 2279ea17754cSMike Karels } 22801fe201c3SAlexander V. Chernikov return (0); 2281ea17754cSMike Karels } else if (plle && ln) 2282ea17754cSMike Karels LLE_WUNLOCK(ln); 228312cb7521SAlexander V. Chernikov 22846d768226SGeorge V. Neville-Neil return (nd6_resolve_slow(ifp, 0, m, dst6, desten, pflags, plle)); 228512cb7521SAlexander V. Chernikov } 22866e6b3f7cSQing Li 22876e6b3f7cSQing Li 22886e6b3f7cSQing Li /* 22891fe201c3SAlexander V. Chernikov * Do L2 address resolution for @sa_dst address. Stores found 22901fe201c3SAlexander V. Chernikov * address in @desten buffer. Copy of lle ln_flags can be also 22911fe201c3SAlexander V. Chernikov * saved in @pflags if @pflags is non-NULL. 22926e6b3f7cSQing Li * 22931fe201c3SAlexander V. Chernikov * Heavy version. 22941fe201c3SAlexander V. Chernikov * Function assume that destination LLE does not exist, 2295f506d933SAlexander V. Chernikov * is invalid or stale, so LLE_EXCLUSIVE lock needs to be acquired. 2296c0b8aeaeSAlexander V. Chernikov * 2297c0b8aeaeSAlexander V. Chernikov * Set noinline to be dtrace-friendly 22986e6b3f7cSQing Li */ 2299c0b8aeaeSAlexander V. Chernikov static __noinline int 23004fb3a820SAlexander V. Chernikov nd6_resolve_slow(struct ifnet *ifp, int flags, struct mbuf *m, 23016d768226SGeorge V. Neville-Neil const struct sockaddr_in6 *dst, u_char *desten, uint32_t *pflags, 23026d768226SGeorge V. Neville-Neil struct llentry **plle) 23036e6b3f7cSQing Li { 23045a255516SAlexander V. Chernikov struct llentry *lle = NULL, *lle_tmp; 2305aa5f023eSAlexander V. Chernikov struct in6_addr *psrc, src; 23064fb3a820SAlexander V. Chernikov int send_ns, ll_len; 23074fb3a820SAlexander V. Chernikov char *lladdr; 230882cd038dSYoshinobu Inoue 2309b8a6e03fSGleb Smirnoff NET_EPOCH_ASSERT(); 2310b8a6e03fSGleb Smirnoff 231182cd038dSYoshinobu Inoue /* 231282cd038dSYoshinobu Inoue * Address resolution or Neighbor Unreachability Detection 231382cd038dSYoshinobu Inoue * for the next hop. 231482cd038dSYoshinobu Inoue * At this point, the destination of the packet must be a unicast 231582cd038dSYoshinobu Inoue * or an anycast address(i.e. not a multicast). 231682cd038dSYoshinobu Inoue */ 2317f6990c4eSAlexander V. Chernikov if (lle == NULL) { 2318f506d933SAlexander V. Chernikov lle = nd6_lookup(&dst->sin6_addr, LLE_EXCLUSIVE, ifp); 2319f6990c4eSAlexander V. Chernikov if ((lle == NULL) && nd6_is_addr_neighbor(dst, ifp)) { 2320686cdd19SJun-ichiro itojun Hagino /* 2321686cdd19SJun-ichiro itojun Hagino * Since nd6_is_addr_neighbor() internally calls nd6_lookup(), 2322686cdd19SJun-ichiro itojun Hagino * the condition below is not very efficient. But we believe 2323686cdd19SJun-ichiro itojun Hagino * it is tolerable, because this should be a rare case. 2324686cdd19SJun-ichiro itojun Hagino */ 23255a255516SAlexander V. Chernikov lle = nd6_alloc(&dst->sin6_addr, 0, ifp); 2326f6990c4eSAlexander V. Chernikov if (lle == NULL) { 23271d54aa3bSBjoern A. Zeeb char ip6buf[INET6_ADDRSTRLEN]; 2328686cdd19SJun-ichiro itojun Hagino log(LOG_DEBUG, 2329686cdd19SJun-ichiro itojun Hagino "nd6_output: can't allocate llinfo for %s " 2330bbd8aebaSQing Li "(ln=%p)\n", 2331f6990c4eSAlexander V. Chernikov ip6_sprintf(ip6buf, &dst->sin6_addr), lle); 23329dffa6a3SAlexander V. Chernikov m_freem(m); 23339dffa6a3SAlexander V. Chernikov return (ENOBUFS); 233482cd038dSYoshinobu Inoue } 23355a255516SAlexander V. Chernikov 23365a255516SAlexander V. Chernikov IF_AFDATA_WLOCK(ifp); 23375a255516SAlexander V. Chernikov LLE_WLOCK(lle); 23385a255516SAlexander V. Chernikov /* Prefer any existing entry over newly-created one */ 2339f506d933SAlexander V. Chernikov lle_tmp = nd6_lookup(&dst->sin6_addr, LLE_EXCLUSIVE, ifp); 23405a255516SAlexander V. Chernikov if (lle_tmp == NULL) 23415a255516SAlexander V. Chernikov lltable_link_entry(LLTABLE6(ifp), lle); 23425a255516SAlexander V. Chernikov IF_AFDATA_WUNLOCK(ifp); 23435a255516SAlexander V. Chernikov if (lle_tmp != NULL) { 23445a255516SAlexander V. Chernikov lltable_free_entry(LLTABLE6(ifp), lle); 23455a255516SAlexander V. Chernikov lle = lle_tmp; 23465a255516SAlexander V. Chernikov lle_tmp = NULL; 23475a255516SAlexander V. Chernikov } 23485a255516SAlexander V. Chernikov } 23495a255516SAlexander V. Chernikov } 23505a255516SAlexander V. Chernikov if (lle == NULL) { 23511fe201c3SAlexander V. Chernikov m_freem(m); 23521fe201c3SAlexander V. Chernikov return (ENOBUFS); 2353686cdd19SJun-ichiro itojun Hagino } 2354686cdd19SJun-ichiro itojun Hagino 2355f6990c4eSAlexander V. Chernikov LLE_WLOCK_ASSERT(lle); 2356f6990c4eSAlexander V. Chernikov 235782cd038dSYoshinobu Inoue /* 235882cd038dSYoshinobu Inoue * The first time we send a packet to a neighbor whose entry is 235982cd038dSYoshinobu Inoue * STALE, we have to change the state to DELAY and a sets a timer to 236082cd038dSYoshinobu Inoue * expire in DELAY_FIRST_PROBE_TIME seconds to ensure do 236182cd038dSYoshinobu Inoue * neighbor unreachability detection on expiration. 236282cd038dSYoshinobu Inoue * (RFC 2461 7.3.3) 236382cd038dSYoshinobu Inoue */ 2364aa5f023eSAlexander V. Chernikov if (lle->ln_state == ND6_LLINFO_STALE) 2365aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(lle, ND6_LLINFO_DELAY); 236682cd038dSYoshinobu Inoue 236782cd038dSYoshinobu Inoue /* 236882cd038dSYoshinobu Inoue * If the neighbor cache entry has a state other than INCOMPLETE 236988ff5695SSUZUKI Shinsuke * (i.e. its link-layer address is already resolved), just 237082cd038dSYoshinobu Inoue * send the packet. 237182cd038dSYoshinobu Inoue */ 23721fe201c3SAlexander V. Chernikov if (lle->ln_state > ND6_LLINFO_INCOMPLETE) { 23734fb3a820SAlexander V. Chernikov if (flags & LLE_ADDRONLY) { 23744fb3a820SAlexander V. Chernikov lladdr = lle->ll_addr; 23754fb3a820SAlexander V. Chernikov ll_len = ifp->if_addrlen; 23764fb3a820SAlexander V. Chernikov } else { 23774fb3a820SAlexander V. Chernikov lladdr = lle->r_linkdata; 23784fb3a820SAlexander V. Chernikov ll_len = lle->r_hdrlen; 23794fb3a820SAlexander V. Chernikov } 23804fb3a820SAlexander V. Chernikov bcopy(lladdr, desten, ll_len); 23811fe201c3SAlexander V. Chernikov if (pflags != NULL) 23821fe201c3SAlexander V. Chernikov *pflags = lle->la_flags; 23836d768226SGeorge V. Neville-Neil if (plle) { 23846d768226SGeorge V. Neville-Neil LLE_ADDREF(lle); 23856d768226SGeorge V. Neville-Neil *plle = lle; 23866d768226SGeorge V. Neville-Neil } 23871fe201c3SAlexander V. Chernikov LLE_WUNLOCK(lle); 23881fe201c3SAlexander V. Chernikov return (0); 23891fe201c3SAlexander V. Chernikov } 239082cd038dSYoshinobu Inoue 239182cd038dSYoshinobu Inoue /* 239282cd038dSYoshinobu Inoue * There is a neighbor cache entry, but no ethernet address 2393743eee66SSUZUKI Shinsuke * response yet. Append this latest packet to the end of the 2394b0ab3725SLuiz Otavio O Souza * packet queue in the mbuf. When it exceeds nd6_maxqueuelen, 2395743eee66SSUZUKI Shinsuke * the oldest packet in the queue will be removed. 239682cd038dSYoshinobu Inoue */ 23976e6b3f7cSQing Li 2398f6990c4eSAlexander V. Chernikov if (lle->la_hold != NULL) { 2399743eee66SSUZUKI Shinsuke struct mbuf *m_hold; 2400743eee66SSUZUKI Shinsuke int i; 2401743eee66SSUZUKI Shinsuke 2402743eee66SSUZUKI Shinsuke i = 0; 2403f6990c4eSAlexander V. Chernikov for (m_hold = lle->la_hold; m_hold; m_hold = m_hold->m_nextpkt){ 2404743eee66SSUZUKI Shinsuke i++; 2405743eee66SSUZUKI Shinsuke if (m_hold->m_nextpkt == NULL) { 2406743eee66SSUZUKI Shinsuke m_hold->m_nextpkt = m; 2407743eee66SSUZUKI Shinsuke break; 240882cd038dSYoshinobu Inoue } 240982cd038dSYoshinobu Inoue } 2410603724d3SBjoern A. Zeeb while (i >= V_nd6_maxqueuelen) { 2411f6990c4eSAlexander V. Chernikov m_hold = lle->la_hold; 2412f6990c4eSAlexander V. Chernikov lle->la_hold = lle->la_hold->m_nextpkt; 241331d4137bSSUZUKI Shinsuke m_freem(m_hold); 2414743eee66SSUZUKI Shinsuke i--; 2415743eee66SSUZUKI Shinsuke } 2416743eee66SSUZUKI Shinsuke } else { 2417f6990c4eSAlexander V. Chernikov lle->la_hold = m; 24186e6b3f7cSQing Li } 2419743eee66SSUZUKI Shinsuke 2420743eee66SSUZUKI Shinsuke /* 2421743eee66SSUZUKI Shinsuke * If there has been no NS for the neighbor after entering the 2422743eee66SSUZUKI Shinsuke * INCOMPLETE state, send the first solicitation. 2423aa5f023eSAlexander V. Chernikov * Note that for newly-created lle la_asked will be 0, 2424aa5f023eSAlexander V. Chernikov * so we will transition from ND6_LLINFO_NOSTATE to 2425aa5f023eSAlexander V. Chernikov * ND6_LLINFO_INCOMPLETE state here. 2426743eee66SSUZUKI Shinsuke */ 2427aa5f023eSAlexander V. Chernikov psrc = NULL; 2428aa5f023eSAlexander V. Chernikov send_ns = 0; 2429aa5f023eSAlexander V. Chernikov if (lle->la_asked == 0) { 2430f6990c4eSAlexander V. Chernikov lle->la_asked++; 2431aa5f023eSAlexander V. Chernikov send_ns = 1; 243226deb882SAlexander V. Chernikov psrc = nd6_llinfo_get_holdsrc(lle, &src); 2433aa5f023eSAlexander V. Chernikov 2434aa5f023eSAlexander V. Chernikov nd6_llinfo_setstate(lle, ND6_LLINFO_INCOMPLETE); 2435743eee66SSUZUKI Shinsuke } 2436aa5f023eSAlexander V. Chernikov LLE_WUNLOCK(lle); 2437aa5f023eSAlexander V. Chernikov if (send_ns != 0) 2438aa5f023eSAlexander V. Chernikov nd6_ns_output(ifp, psrc, NULL, &dst->sin6_addr, NULL); 2439e6950476SBjoern A. Zeeb 24401fe201c3SAlexander V. Chernikov return (EWOULDBLOCK); 244182cd038dSYoshinobu Inoue } 244282cd038dSYoshinobu Inoue 24434fb3a820SAlexander V. Chernikov /* 24444fb3a820SAlexander V. Chernikov * Do L2 address resolution for @sa_dst address. Stores found 24454fb3a820SAlexander V. Chernikov * address in @desten buffer. Copy of lle ln_flags can be also 24464fb3a820SAlexander V. Chernikov * saved in @pflags if @pflags is non-NULL. 24474fb3a820SAlexander V. Chernikov * 24484fb3a820SAlexander V. Chernikov * Return values: 24494fb3a820SAlexander V. Chernikov * - 0 on success (address copied to buffer). 24504fb3a820SAlexander V. Chernikov * - EWOULDBLOCK (no local error, but address is still unresolved) 24514fb3a820SAlexander V. Chernikov * - other errors (alloc failure, etc) 24524fb3a820SAlexander V. Chernikov */ 24534fb3a820SAlexander V. Chernikov int 24544fb3a820SAlexander V. Chernikov nd6_resolve_addr(struct ifnet *ifp, int flags, const struct sockaddr *dst, 24554fb3a820SAlexander V. Chernikov char *desten, uint32_t *pflags) 24564fb3a820SAlexander V. Chernikov { 24574fb3a820SAlexander V. Chernikov int error; 24584fb3a820SAlexander V. Chernikov 24594fb3a820SAlexander V. Chernikov flags |= LLE_ADDRONLY; 24604fb3a820SAlexander V. Chernikov error = nd6_resolve_slow(ifp, flags, NULL, 24616d768226SGeorge V. Neville-Neil (const struct sockaddr_in6 *)dst, desten, pflags, NULL); 24624fb3a820SAlexander V. Chernikov return (error); 24634fb3a820SAlexander V. Chernikov } 24646e6b3f7cSQing Li 24656e6b3f7cSQing Li int 2466151ba793SAlexander Kabaev nd6_flush_holdchain(struct ifnet *ifp, struct mbuf *chain, 24679c9bde01SAlexander V. Chernikov struct sockaddr_in6 *dst) 24686e6b3f7cSQing Li { 24696e6b3f7cSQing Li struct mbuf *m, *m_head; 24706e6b3f7cSQing Li int error = 0; 24716e6b3f7cSQing Li 24726e6b3f7cSQing Li m_head = chain; 24736e6b3f7cSQing Li 24746e6b3f7cSQing Li while (m_head) { 24756e6b3f7cSQing Li m = m_head; 24766e6b3f7cSQing Li m_head = m_head->m_nextpkt; 2477151ba793SAlexander Kabaev error = nd6_output_ifp(ifp, ifp, m, dst, NULL); 24786e6b3f7cSQing Li } 24796e6b3f7cSQing Li 24806e6b3f7cSQing Li /* 24816e6b3f7cSQing Li * XXX 24821fe201c3SAlexander V. Chernikov * note that intermediate errors are blindly ignored 24836e6b3f7cSQing Li */ 24846e6b3f7cSQing Li return (error); 24856e6b3f7cSQing Li } 24866e6b3f7cSQing Li 24871fe201c3SAlexander V. Chernikov static int 24881272577eSXin LI nd6_need_cache(struct ifnet *ifp) 248933841545SHajimu UMEMOTO { 249033841545SHajimu UMEMOTO /* 249133841545SHajimu UMEMOTO * XXX: we currently do not make neighbor cache on any interface 24923a4fc8a8SBrooks Davis * other than Ethernet and GIF. 249333841545SHajimu UMEMOTO * 249433841545SHajimu UMEMOTO * RFC2893 says: 249533841545SHajimu UMEMOTO * - unidirectional tunnels needs no ND 249633841545SHajimu UMEMOTO */ 249733841545SHajimu UMEMOTO switch (ifp->if_type) { 249833841545SHajimu UMEMOTO case IFT_ETHER: 249933841545SHajimu UMEMOTO case IFT_IEEE1394: 250005b6760dSMunechika SUMIKAWA case IFT_L2VLAN: 2501e4cd31ddSJeff Roberson case IFT_INFINIBAND: 250259280079SAndrew Thompson case IFT_BRIDGE: 2503c57086ceSHajimu UMEMOTO case IFT_PROPVIRTUAL: 250433841545SHajimu UMEMOTO return (1); 250533841545SHajimu UMEMOTO default: 250633841545SHajimu UMEMOTO return (0); 250733841545SHajimu UMEMOTO } 250833841545SHajimu UMEMOTO } 250933841545SHajimu UMEMOTO 25106e6b3f7cSQing Li /* 2511f6b84910SAlexander V. Chernikov * Add pernament ND6 link-layer record for given 2512f6b84910SAlexander V. Chernikov * interface address. 2513f6b84910SAlexander V. Chernikov * 2514f6b84910SAlexander V. Chernikov * Very similar to IPv4 arp_ifinit(), but: 2515f6b84910SAlexander V. Chernikov * 1) IPv6 DAD is performed in different place 2516f6b84910SAlexander V. Chernikov * 2) It is called by IPv6 protocol stack in contrast to 2517f6b84910SAlexander V. Chernikov * arp_ifinit() which is typically called in SIOCSIFADDR 2518f6b84910SAlexander V. Chernikov * driver ioctl handler. 2519f6b84910SAlexander V. Chernikov * 2520f6b84910SAlexander V. Chernikov */ 2521f6b84910SAlexander V. Chernikov int 2522f6b84910SAlexander V. Chernikov nd6_add_ifa_lle(struct in6_ifaddr *ia) 2523f6b84910SAlexander V. Chernikov { 2524f6b84910SAlexander V. Chernikov struct ifnet *ifp; 25255a255516SAlexander V. Chernikov struct llentry *ln, *ln_tmp; 25265a255516SAlexander V. Chernikov struct sockaddr *dst; 2527f6b84910SAlexander V. Chernikov 2528f6b84910SAlexander V. Chernikov ifp = ia->ia_ifa.ifa_ifp; 2529af6209a1SAndrey V. Elsukov if (nd6_need_cache(ifp) == 0) 2530af6209a1SAndrey V. Elsukov return (0); 25315a255516SAlexander V. Chernikov 2532f6b84910SAlexander V. Chernikov ia->ia_ifa.ifa_rtrequest = nd6_rtrequest; 25335a255516SAlexander V. Chernikov dst = (struct sockaddr *)&ia->ia_addr; 25345a255516SAlexander V. Chernikov ln = lltable_alloc_entry(LLTABLE6(ifp), LLE_IFADDR, dst); 25355a255516SAlexander V. Chernikov if (ln == NULL) 25365a255516SAlexander V. Chernikov return (ENOBUFS); 25375a255516SAlexander V. Chernikov 25385a255516SAlexander V. Chernikov IF_AFDATA_WLOCK(ifp); 25395a255516SAlexander V. Chernikov LLE_WLOCK(ln); 25405a255516SAlexander V. Chernikov /* Unlink any entry if exists */ 25415a255516SAlexander V. Chernikov ln_tmp = lla_lookup(LLTABLE6(ifp), LLE_EXCLUSIVE, dst); 25425a255516SAlexander V. Chernikov if (ln_tmp != NULL) 25435a255516SAlexander V. Chernikov lltable_unlink_entry(LLTABLE6(ifp), ln_tmp); 25445a255516SAlexander V. Chernikov lltable_link_entry(LLTABLE6(ifp), ln); 25455a255516SAlexander V. Chernikov IF_AFDATA_WUNLOCK(ifp); 25465a255516SAlexander V. Chernikov 25475a255516SAlexander V. Chernikov if (ln_tmp != NULL) 25485a255516SAlexander V. Chernikov EVENTHANDLER_INVOKE(lle_event, ln_tmp, LLENTRY_EXPIRED); 25495a255516SAlexander V. Chernikov EVENTHANDLER_INVOKE(lle_event, ln, LLENTRY_RESOLVED); 25505a255516SAlexander V. Chernikov 25515a255516SAlexander V. Chernikov LLE_WUNLOCK(ln); 25525a255516SAlexander V. Chernikov if (ln_tmp != NULL) 25535a255516SAlexander V. Chernikov llentry_free(ln_tmp); 25545a255516SAlexander V. Chernikov 25555a255516SAlexander V. Chernikov return (0); 2556f6b84910SAlexander V. Chernikov } 2557f6b84910SAlexander V. Chernikov 2558f6b84910SAlexander V. Chernikov /* 25593e7a2321SAlexander V. Chernikov * Removes either all lle entries for given @ia, or lle 25603e7a2321SAlexander V. Chernikov * corresponding to @ia address. 2561f6b84910SAlexander V. Chernikov */ 2562f6b84910SAlexander V. Chernikov void 25633e7a2321SAlexander V. Chernikov nd6_rem_ifa_lle(struct in6_ifaddr *ia, int all) 2564f6b84910SAlexander V. Chernikov { 2565f6b84910SAlexander V. Chernikov struct sockaddr_in6 mask, addr; 25663e7a2321SAlexander V. Chernikov struct sockaddr *saddr, *smask; 2567f6b84910SAlexander V. Chernikov struct ifnet *ifp; 2568f6b84910SAlexander V. Chernikov 2569f6b84910SAlexander V. Chernikov ifp = ia->ia_ifa.ifa_ifp; 2570f6b84910SAlexander V. Chernikov memcpy(&addr, &ia->ia_addr, sizeof(ia->ia_addr)); 2571f6b84910SAlexander V. Chernikov memcpy(&mask, &ia->ia_prefixmask, sizeof(ia->ia_prefixmask)); 25723e7a2321SAlexander V. Chernikov saddr = (struct sockaddr *)&addr; 25733e7a2321SAlexander V. Chernikov smask = (struct sockaddr *)&mask; 25743e7a2321SAlexander V. Chernikov 25753e7a2321SAlexander V. Chernikov if (all != 0) 25763e7a2321SAlexander V. Chernikov lltable_prefix_free(AF_INET6, saddr, smask, LLE_STATIC); 25773e7a2321SAlexander V. Chernikov else 25783e7a2321SAlexander V. Chernikov lltable_delete_addr(LLTABLE6(ifp), LLE_IFADDR, saddr); 2579f6b84910SAlexander V. Chernikov } 2580f6b84910SAlexander V. Chernikov 258131d4137bSSUZUKI Shinsuke static void 25826e6b3f7cSQing Li clear_llinfo_pqueue(struct llentry *ln) 258331d4137bSSUZUKI Shinsuke { 258431d4137bSSUZUKI Shinsuke struct mbuf *m_hold, *m_hold_next; 258531d4137bSSUZUKI Shinsuke 25866e6b3f7cSQing Li for (m_hold = ln->la_hold; m_hold; m_hold = m_hold_next) { 258731d4137bSSUZUKI Shinsuke m_hold_next = m_hold->m_nextpkt; 258831d4137bSSUZUKI Shinsuke m_freem(m_hold); 258931d4137bSSUZUKI Shinsuke } 259031d4137bSSUZUKI Shinsuke 25916e6b3f7cSQing Li ln->la_hold = NULL; 259231d4137bSSUZUKI Shinsuke } 259331d4137bSSUZUKI Shinsuke 259433841545SHajimu UMEMOTO static int 259533841545SHajimu UMEMOTO nd6_sysctl_prlist(SYSCTL_HANDLER_ARGS) 259633841545SHajimu UMEMOTO { 25977195094cSMarius Strobl struct in6_prefix p; 25987195094cSMarius Strobl struct sockaddr_in6 s6; 259933841545SHajimu UMEMOTO struct nd_prefix *pr; 26007195094cSMarius Strobl struct nd_pfxrouter *pfr; 26017195094cSMarius Strobl time_t maxexpire; 26027195094cSMarius Strobl int error; 26031d54aa3bSBjoern A. Zeeb char ip6buf[INET6_ADDRSTRLEN]; 260433841545SHajimu UMEMOTO 260533841545SHajimu UMEMOTO if (req->newptr) 26067195094cSMarius Strobl return (EPERM); 260733841545SHajimu UMEMOTO 2608cc51be7bSMark Johnston error = sysctl_wire_old_buffer(req, 0); 2609cc51be7bSMark Johnston if (error != 0) 2610cc51be7bSMark Johnston return (error); 2611cc51be7bSMark Johnston 26127195094cSMarius Strobl bzero(&p, sizeof(p)); 26137195094cSMarius Strobl p.origin = PR_ORIG_RA; 26147195094cSMarius Strobl bzero(&s6, sizeof(s6)); 26157195094cSMarius Strobl s6.sin6_family = AF_INET6; 26167195094cSMarius Strobl s6.sin6_len = sizeof(s6); 26177195094cSMarius Strobl 2618cc51be7bSMark Johnston ND6_RLOCK(); 26193b0b2840SJohn Baldwin LIST_FOREACH(pr, &V_nd_prefix, ndpr_entry) { 26207195094cSMarius Strobl p.prefix = pr->ndpr_prefix; 26217195094cSMarius Strobl if (sa6_recoverscope(&p.prefix)) { 26227195094cSMarius Strobl log(LOG_ERR, "scope error in prefix list (%s)\n", 26237195094cSMarius Strobl ip6_sprintf(ip6buf, &p.prefix.sin6_addr)); 2624a1f7e5f8SHajimu UMEMOTO /* XXX: press on... */ 2625a1f7e5f8SHajimu UMEMOTO } 26267195094cSMarius Strobl p.raflags = pr->ndpr_raf; 26277195094cSMarius Strobl p.prefixlen = pr->ndpr_plen; 26287195094cSMarius Strobl p.vltime = pr->ndpr_vltime; 26297195094cSMarius Strobl p.pltime = pr->ndpr_pltime; 26307195094cSMarius Strobl p.if_index = pr->ndpr_ifp->if_index; 2631743eee66SSUZUKI Shinsuke if (pr->ndpr_vltime == ND6_INFINITE_LIFETIME) 26327195094cSMarius Strobl p.expire = 0; 2633743eee66SSUZUKI Shinsuke else { 2634743eee66SSUZUKI Shinsuke /* XXX: we assume time_t is signed. */ 2635743eee66SSUZUKI Shinsuke maxexpire = (-1) & 26367195094cSMarius Strobl ~((time_t)1 << ((sizeof(maxexpire) * 8) - 1)); 26377195094cSMarius Strobl if (pr->ndpr_vltime < maxexpire - pr->ndpr_lastupdate) 26387195094cSMarius Strobl p.expire = pr->ndpr_lastupdate + 2639ffa0165aSHiroki Sato pr->ndpr_vltime + 2640ffa0165aSHiroki Sato (time_second - time_uptime); 26417195094cSMarius Strobl else 26427195094cSMarius Strobl p.expire = maxexpire; 2643743eee66SSUZUKI Shinsuke } 26440bbf244eSMark Johnston p.refcnt = pr->ndpr_addrcnt; 26457195094cSMarius Strobl p.flags = pr->ndpr_stateflags; 26467195094cSMarius Strobl p.advrtrs = 0; 26477195094cSMarius Strobl LIST_FOREACH(pfr, &pr->ndpr_advrtrs, pfr_entry) 26487195094cSMarius Strobl p.advrtrs++; 26497195094cSMarius Strobl error = SYSCTL_OUT(req, &p, sizeof(p)); 26507195094cSMarius Strobl if (error != 0) 2651cc51be7bSMark Johnston break; 26527195094cSMarius Strobl LIST_FOREACH(pfr, &pr->ndpr_advrtrs, pfr_entry) { 26537195094cSMarius Strobl s6.sin6_addr = pfr->router->rtaddr; 26547195094cSMarius Strobl if (sa6_recoverscope(&s6)) 26557195094cSMarius Strobl log(LOG_ERR, 26567195094cSMarius Strobl "scope error in prefix list (%s)\n", 26577195094cSMarius Strobl ip6_sprintf(ip6buf, &pfr->router->rtaddr)); 26587195094cSMarius Strobl error = SYSCTL_OUT(req, &s6, sizeof(s6)); 26597195094cSMarius Strobl if (error != 0) 2660d748f7efSMark Johnston goto out; 2661cc51be7bSMark Johnston } 2662cc51be7bSMark Johnston } 2663d748f7efSMark Johnston out: 2664cc51be7bSMark Johnston ND6_RUNLOCK(); 26657195094cSMarius Strobl return (error); 26667195094cSMarius Strobl } 26673c5018caSBjoern A. Zeeb SYSCTL_PROC(_net_inet6_icmp6, ICMPV6CTL_ND6_PRLIST, nd6_prlist, 26683c5018caSBjoern A. Zeeb CTLTYPE_OPAQUE | CTLFLAG_RD | CTLFLAG_MPSAFE, 26693c5018caSBjoern A. Zeeb NULL, 0, nd6_sysctl_prlist, "S,in6_prefix", 26703c5018caSBjoern A. Zeeb "NDP prefix list"); 26713c5018caSBjoern A. Zeeb SYSCTL_INT(_net_inet6_icmp6, ICMPV6CTL_ND6_MAXQLEN, nd6_maxqueuelen, 26723c5018caSBjoern A. Zeeb CTLFLAG_VNET | CTLFLAG_RW, &VNET_NAME(nd6_maxqueuelen), 1, ""); 26733c5018caSBjoern A. Zeeb SYSCTL_INT(_net_inet6_icmp6, OID_AUTO, nd6_gctimer, 26743c5018caSBjoern A. Zeeb CTLFLAG_VNET | CTLFLAG_RW, &VNET_NAME(nd6_gctimer), (60 * 60 * 24), ""); 2675