xref: /freebsd/sys/netipsec/ipcomp_var.h (revision 271c3a9060f2ee55607ebe146523f888e1db2654)
1 /*	$FreeBSD$	*/
2 /*	$KAME: ipcomp.h,v 1.8 2000/09/26 07:55:14 itojun Exp $	*/
3 
4 /*-
5  * Copyright (C) 1999 WIDE Project.
6  * All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  * 1. Redistributions of source code must retain the above copyright
12  *    notice, this list of conditions and the following disclaimer.
13  * 2. Redistributions in binary form must reproduce the above copyright
14  *    notice, this list of conditions and the following disclaimer in the
15  *    documentation and/or other materials provided with the distribution.
16  * 3. Neither the name of the project nor the names of its contributors
17  *    may be used to endorse or promote products derived from this software
18  *    without specific prior written permission.
19  *
20  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30  * SUCH DAMAGE.
31  */
32 
33 #ifndef _NETIPSEC_IPCOMP_VAR_H_
34 #define _NETIPSEC_IPCOMP_VAR_H_
35 
36 /*
37  * These define the algorithm indices into the histogram.  They're
38  * presently based on the PF_KEY v2 protocol values which is bogus;
39  * they should be decoupled from the protocol at which time we can
40  * pack them and reduce the size of the array to a minimum.
41  */
42 #define	IPCOMP_ALG_MAX	8
43 
44 struct ipcompstat {
45 	u_int32_t	ipcomps_hdrops;	/* Packet shorter than header shows */
46 	u_int32_t	ipcomps_nopf;	/* Protocol family not supported */
47 	u_int32_t	ipcomps_notdb;
48 	u_int32_t	ipcomps_badkcr;
49 	u_int32_t	ipcomps_qfull;
50 	u_int32_t	ipcomps_noxform;
51 	u_int32_t	ipcomps_wrap;
52 	u_int32_t	ipcomps_input;	/* Input IPcomp packets */
53 	u_int32_t	ipcomps_output;	/* Output IPcomp packets */
54 	u_int32_t	ipcomps_invalid;/* Trying to use an invalid TDB */
55 	u_int64_t	ipcomps_ibytes;	/* Input bytes */
56 	u_int64_t	ipcomps_obytes;	/* Output bytes */
57 	u_int32_t	ipcomps_toobig;	/* Packet got > IP_MAXPACKET */
58 	u_int32_t	ipcomps_pdrops;	/* Packet blocked due to policy */
59 	u_int32_t	ipcomps_crypto;	/* "Crypto" processing failure */
60 	u_int32_t	ipcomps_hist[IPCOMP_ALG_MAX];/* Per-algorithm op count */
61 };
62 
63 #ifdef _KERNEL
64 extern	int ipcomp_enable;
65 extern	struct ipcompstat ipcompstat;
66 #endif /* _KERNEL */
67 #endif /*_NETIPSEC_IPCOMP_VAR_H_*/
68