xref: /freebsd/usr.sbin/ppp/command.c (revision f9ce010afdd3136fc73e2b500f2ed916bf9cfa59)
1 /*
2  *		PPP User command processing module
3  *
4  *	    Written by Toshiharu OHNO (tony-o@iij.ad.jp)
5  *
6  *   Copyright (C) 1993, Internet Initiative Japan, Inc. All rights reserverd.
7  *
8  * Redistribution and use in source and binary forms are permitted
9  * provided that the above copyright notice and this paragraph are
10  * duplicated in all such forms and that any documentation,
11  * advertising materials, and other materials related to such
12  * distribution and use acknowledge that the software was developed
13  * by the Internet Initiative Japan, Inc.  The name of the
14  * IIJ may not be used to endorse or promote products derived
15  * from this software without specific prior written permission.
16  * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR
17  * IMPLIED WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED
18  * WARRANTIES OF MERCHANTIBILITY AND FITNESS FOR A PARTICULAR PURPOSE.
19  *
20  * $FreeBSD$
21  *
22  */
23 #include <sys/param.h>
24 #include <netinet/in_systm.h>
25 #include <netinet/in.h>
26 #include <netinet/ip.h>
27 #include <arpa/inet.h>
28 #include <sys/socket.h>
29 #include <net/route.h>
30 #include <netdb.h>
31 #include <sys/un.h>
32 
33 #include <ctype.h>
34 #include <errno.h>
35 #include <fcntl.h>
36 #include <paths.h>
37 #include <stdio.h>
38 #include <stdlib.h>
39 #include <string.h>
40 #include <sys/wait.h>
41 #include <termios.h>
42 #include <unistd.h>
43 
44 #ifndef NONAT
45 #ifdef __FreeBSD__
46 #include <alias.h>
47 #else
48 #include "alias.h"
49 #endif
50 #endif
51 #include "layer.h"
52 #include "defs.h"
53 #include "command.h"
54 #include "mbuf.h"
55 #include "log.h"
56 #include "timer.h"
57 #include "fsm.h"
58 #include "lcp.h"
59 #include "iplist.h"
60 #include "throughput.h"
61 #include "slcompress.h"
62 #include "lqr.h"
63 #include "hdlc.h"
64 #include "ipcp.h"
65 #ifndef NONAT
66 #include "alias_cmd.h"
67 #endif
68 #include "systems.h"
69 #include "filter.h"
70 #include "descriptor.h"
71 #include "main.h"
72 #include "route.h"
73 #include "ccp.h"
74 #include "auth.h"
75 #include "async.h"
76 #include "link.h"
77 #include "physical.h"
78 #include "mp.h"
79 #ifndef NORADIUS
80 #include "radius.h"
81 #endif
82 #include "bundle.h"
83 #include "server.h"
84 #include "prompt.h"
85 #include "chat.h"
86 #include "chap.h"
87 #include "cbcp.h"
88 #include "datalink.h"
89 #include "iface.h"
90 
91 /* ``set'' values */
92 #define	VAR_AUTHKEY	0
93 #define	VAR_DIAL	1
94 #define	VAR_LOGIN	2
95 #define	VAR_AUTHNAME	3
96 #define	VAR_AUTOLOAD	4
97 #define	VAR_WINSIZE	5
98 #define	VAR_DEVICE	6
99 #define	VAR_ACCMAP	7
100 #define	VAR_MRRU	8
101 #define	VAR_MRU		9
102 #define	VAR_MTU		10
103 #define	VAR_OPENMODE	11
104 #define	VAR_PHONE	12
105 #define	VAR_HANGUP	13
106 #define	VAR_IDLETIMEOUT	14
107 #define	VAR_LQRPERIOD	15
108 #define	VAR_LCPRETRY	16
109 #define	VAR_CHAPRETRY	17
110 #define	VAR_PAPRETRY	18
111 #define	VAR_CCPRETRY	19
112 #define	VAR_IPCPRETRY	20
113 #define	VAR_DNS		21
114 #define	VAR_NBNS	22
115 #define	VAR_MODE	23
116 #define	VAR_CALLBACK	24
117 #define	VAR_CBCP	25
118 #define	VAR_CHOKED	26
119 #define	VAR_SENDPIPE	27
120 #define	VAR_RECVPIPE	28
121 #define	VAR_RADIUS	29
122 #define	VAR_CD		30
123 #define	VAR_PARITY	31
124 #define VAR_CRTSCTS	32
125 #define VAR_URGENTPORTS	33
126 
127 /* ``accept|deny|disable|enable'' masks */
128 #define NEG_HISMASK (1)
129 #define NEG_MYMASK (2)
130 
131 /* ``accept|deny|disable|enable'' values */
132 #define NEG_ACFCOMP	40
133 #define NEG_CHAP05	41
134 #define NEG_CHAP80	42
135 #define NEG_CHAP80LM	43
136 #define NEG_DEFLATE	44
137 #define NEG_DNS		45
138 #define NEG_ENDDISC	46
139 #define NEG_LQR		47
140 #define NEG_PAP		48
141 #define NEG_PPPDDEFLATE	49
142 #define NEG_PRED1	50
143 #define NEG_PROTOCOMP	51
144 #define NEG_SHORTSEQ	52
145 #define NEG_VJCOMP	53
146 
147 const char Version[] = "2.23";
148 const char VersionDate[] = "$Date: 1999/08/22 01:29:53 $";
149 
150 static int ShowCommand(struct cmdargs const *);
151 static int TerminalCommand(struct cmdargs const *);
152 static int QuitCommand(struct cmdargs const *);
153 static int OpenCommand(struct cmdargs const *);
154 static int CloseCommand(struct cmdargs const *);
155 static int DownCommand(struct cmdargs const *);
156 static int SetCommand(struct cmdargs const *);
157 static int LinkCommand(struct cmdargs const *);
158 static int AddCommand(struct cmdargs const *);
159 static int DeleteCommand(struct cmdargs const *);
160 static int NegotiateCommand(struct cmdargs const *);
161 static int ClearCommand(struct cmdargs const *);
162 static int RunListCommand(struct cmdargs const *);
163 static int IfaceAddCommand(struct cmdargs const *);
164 static int IfaceDeleteCommand(struct cmdargs const *);
165 static int IfaceClearCommand(struct cmdargs const *);
166 static int SetProcTitle(struct cmdargs const *);
167 #ifndef NONAT
168 static int AliasEnable(struct cmdargs const *);
169 static int AliasOption(struct cmdargs const *);
170 #endif
171 
172 static const char *
173 showcx(struct cmdtab const *cmd)
174 {
175   if (cmd->lauth & LOCAL_CX)
176     return "(c)";
177   else if (cmd->lauth & LOCAL_CX_OPT)
178     return "(o)";
179 
180   return "";
181 }
182 
183 static int
184 HelpCommand(struct cmdargs const *arg)
185 {
186   struct cmdtab const *cmd;
187   int n, cmax, dmax, cols, cxlen;
188   const char *cx;
189 
190   if (!arg->prompt) {
191     log_Printf(LogWARN, "help: Cannot help without a prompt\n");
192     return 0;
193   }
194 
195   if (arg->argc > arg->argn) {
196     for (cmd = arg->cmdtab; cmd->name || cmd->alias; cmd++)
197       if ((cmd->lauth & arg->prompt->auth) &&
198           ((cmd->name && !strcasecmp(cmd->name, arg->argv[arg->argn])) ||
199            (cmd->alias && !strcasecmp(cmd->alias, arg->argv[arg->argn])))) {
200 	prompt_Printf(arg->prompt, "%s %s\n", cmd->syntax, showcx(cmd));
201 	return 0;
202       }
203     return -1;
204   }
205 
206   cmax = dmax = 0;
207   for (cmd = arg->cmdtab; cmd->func; cmd++)
208     if (cmd->name && (cmd->lauth & arg->prompt->auth)) {
209       if ((n = strlen(cmd->name) + strlen(showcx(cmd))) > cmax)
210         cmax = n;
211       if ((n = strlen(cmd->helpmes)) > dmax)
212         dmax = n;
213     }
214 
215   cols = 80 / (dmax + cmax + 3);
216   n = 0;
217   prompt_Printf(arg->prompt, "(o) = Optional context,"
218                 " (c) = Context required\n");
219   for (cmd = arg->cmdtab; cmd->func; cmd++)
220     if (cmd->name && (cmd->lauth & arg->prompt->auth)) {
221       cx = showcx(cmd);
222       cxlen = cmax - strlen(cmd->name);
223       if (n % cols != 0)
224         prompt_Printf(arg->prompt, " ");
225       prompt_Printf(arg->prompt, "%s%-*.*s: %-*.*s",
226               cmd->name, cxlen, cxlen, cx, dmax, dmax, cmd->helpmes);
227       if (++n % cols == 0)
228         prompt_Printf(arg->prompt, "\n");
229     }
230   if (n % cols != 0)
231     prompt_Printf(arg->prompt, "\n");
232 
233   return 0;
234 }
235 
236 static int
237 CloneCommand(struct cmdargs const *arg)
238 {
239   char namelist[LINE_LEN];
240   char *name;
241   int f;
242 
243   if (arg->argc == arg->argn)
244     return -1;
245 
246   namelist[sizeof namelist - 1] = '\0';
247   for (f = arg->argn; f < arg->argc; f++) {
248     strncpy(namelist, arg->argv[f], sizeof namelist - 1);
249     for(name = strtok(namelist, ", "); name; name = strtok(NULL,", "))
250       bundle_DatalinkClone(arg->bundle, arg->cx, name);
251   }
252 
253   return 0;
254 }
255 
256 static int
257 RemoveCommand(struct cmdargs const *arg)
258 {
259   if (arg->argc != arg->argn)
260     return -1;
261 
262   if (arg->cx->state != DATALINK_CLOSED) {
263     log_Printf(LogWARN, "remove: Cannot delete links that aren't closed\n");
264     return 2;
265   }
266 
267   bundle_DatalinkRemove(arg->bundle, arg->cx);
268   return 0;
269 }
270 
271 static int
272 RenameCommand(struct cmdargs const *arg)
273 {
274   if (arg->argc != arg->argn + 1)
275     return -1;
276 
277   if (bundle_RenameDatalink(arg->bundle, arg->cx, arg->argv[arg->argn]))
278     return 0;
279 
280   log_Printf(LogWARN, "%s -> %s: target name already exists\n",
281              arg->cx->name, arg->argv[arg->argn]);
282   return 1;
283 }
284 
285 int
286 LoadCommand(struct cmdargs const *arg)
287 {
288   const char *err;
289   int n, mode;
290 
291   mode = arg->bundle->phys_type.all;
292 
293   if (arg->argn < arg->argc) {
294     for (n = arg->argn; n < arg->argc; n++)
295       if ((err = system_IsValid(arg->argv[n], arg->prompt, mode)) != NULL) {
296         log_Printf(LogWARN, "%s: %s\n", arg->argv[n], err);
297         return 1;
298       }
299 
300     for (n = arg->argn; n < arg->argc; n++) {
301       bundle_SetLabel(arg->bundle, arg->argv[arg->argc - 1]);
302       system_Select(arg->bundle, arg->argv[n], CONFFILE, arg->prompt, arg->cx);
303     }
304     bundle_SetLabel(arg->bundle, arg->argv[arg->argc - 1]);
305   } else if ((err = system_IsValid("default", arg->prompt, mode)) != NULL) {
306     log_Printf(LogWARN, "default: %s\n", err);
307     return 1;
308   } else {
309     bundle_SetLabel(arg->bundle, "default");
310     system_Select(arg->bundle, "default", CONFFILE, arg->prompt, arg->cx);
311     bundle_SetLabel(arg->bundle, "default");
312   }
313 
314   return 0;
315 }
316 
317 int
318 SaveCommand(struct cmdargs const *arg)
319 {
320   log_Printf(LogWARN, "save command is not implemented (yet).\n");
321   return 1;
322 }
323 
324 static int
325 DialCommand(struct cmdargs const *arg)
326 {
327   int res;
328 
329   if ((arg->cx && !(arg->cx->physical->type & (PHYS_INTERACTIVE|PHYS_AUTO)))
330       || (!arg->cx &&
331           (arg->bundle->phys_type.all & ~(PHYS_INTERACTIVE|PHYS_AUTO)))) {
332     log_Printf(LogWARN, "Manual dial is only available for auto and"
333               " interactive links\n");
334     return 1;
335   }
336 
337   if (arg->argc > arg->argn && (res = LoadCommand(arg)) != 0)
338     return res;
339 
340   bundle_Open(arg->bundle, arg->cx ? arg->cx->name : NULL, PHYS_ALL, 1);
341 
342   return 0;
343 }
344 
345 #define isinword(ch) (isalnum(ch) || (ch) == '_')
346 
347 static char *
348 strstrword(char *big, const char *little)
349 {
350   /* Get the first occurance of the word ``little'' in ``big'' */
351   char *pos;
352   int len;
353 
354   pos = big;
355   len = strlen(little);
356 
357   while ((pos = strstr(pos, little)) != NULL)
358     if ((pos != big && isinword(pos[-1])) || isinword(pos[len]))
359       pos++;
360     else if (pos != big && pos[-1] == '\\')
361       memmove(pos - 1, pos, strlen(pos) + 1);
362     else
363       break;
364 
365   return pos;
366 }
367 
368 static char *
369 subst(char *tgt, const char *oldstr, const char *newstr)
370 {
371   /* tgt is a malloc()d area... realloc() as necessary */
372   char *word, *ntgt;
373   int ltgt, loldstr, lnewstr, pos;
374 
375   if ((word = strstrword(tgt, oldstr)) == NULL)
376     return tgt;
377 
378   ltgt = strlen(tgt) + 1;
379   loldstr = strlen(oldstr);
380   lnewstr = strlen(newstr);
381   do {
382     pos = word - tgt;
383     if (loldstr > lnewstr)
384       bcopy(word + loldstr, word + lnewstr, ltgt - pos - loldstr);
385     if (loldstr != lnewstr) {
386       ntgt = realloc(tgt, ltgt += lnewstr - loldstr);
387       if (ntgt == NULL)
388         break;			/* Oh wonderful ! */
389       word = ntgt + pos;
390       tgt = ntgt;
391     }
392     if (lnewstr > loldstr)
393       bcopy(word + loldstr, word + lnewstr, ltgt - pos - loldstr);
394     bcopy(newstr, word, lnewstr);
395   } while ((word = strstrword(word, oldstr)));
396 
397   return tgt;
398 }
399 
400 void
401 command_Expand(char **nargv, int argc, char const *const *oargv,
402                struct bundle *bundle, int inc0, pid_t pid)
403 {
404   int arg;
405   char pidstr[12];
406 
407   if (inc0)
408     arg = 0;		/* Start at arg 0 */
409   else {
410     nargv[0] = strdup(oargv[0]);
411     arg = 1;
412   }
413   snprintf(pidstr, sizeof pidstr, "%d", (int)pid);
414   for (; arg < argc; arg++) {
415     nargv[arg] = strdup(oargv[arg]);
416     nargv[arg] = subst(nargv[arg], "HISADDR",
417                        inet_ntoa(bundle->ncp.ipcp.peer_ip));
418     nargv[arg] = subst(nargv[arg], "AUTHNAME", bundle->cfg.auth.name);
419     nargv[arg] = subst(nargv[arg], "INTERFACE", bundle->iface->name);
420     nargv[arg] = subst(nargv[arg], "MYADDR", inet_ntoa(bundle->ncp.ipcp.my_ip));
421     nargv[arg] = subst(nargv[arg], "USER", bundle->ncp.mp.peer.authname);
422     nargv[arg] = subst(nargv[arg], "PEER_ENDDISC",
423                        mp_Enddisc(bundle->ncp.mp.peer.enddisc.class,
424                                   bundle->ncp.mp.peer.enddisc.address,
425                                   bundle->ncp.mp.peer.enddisc.len));
426     nargv[arg] = subst(nargv[arg], "ENDDISC",
427                        mp_Enddisc(bundle->ncp.mp.cfg.enddisc.class,
428                                   bundle->ncp.mp.cfg.enddisc.address,
429                                   bundle->ncp.mp.cfg.enddisc.len));
430     nargv[arg] = subst(nargv[arg], "PROCESSID", pidstr);
431     nargv[arg] = subst(nargv[arg], "LABEL", bundle_GetLabel(bundle));
432   }
433   nargv[arg] = NULL;
434 }
435 
436 static int
437 ShellCommand(struct cmdargs const *arg, int bg)
438 {
439   const char *shell;
440   pid_t shpid, pid;
441 
442 #ifdef SHELL_ONLY_INTERACTIVELY
443   /* we're only allowed to shell when we run ppp interactively */
444   if (arg->prompt && arg->prompt->owner) {
445     log_Printf(LogWARN, "Can't start a shell from a network connection\n");
446     return 1;
447   }
448 #endif
449 
450   if (arg->argc == arg->argn) {
451     if (!arg->prompt) {
452       log_Printf(LogWARN, "Can't start an interactive shell from"
453                 " a config file\n");
454       return 1;
455     } else if (arg->prompt->owner) {
456       log_Printf(LogWARN, "Can't start an interactive shell from"
457                 " a socket connection\n");
458       return 1;
459     } else if (bg) {
460       log_Printf(LogWARN, "Can only start an interactive shell in"
461 		" the foreground mode\n");
462       return 1;
463     }
464   }
465 
466   pid = getpid();
467   if ((shpid = fork()) == 0) {
468     int i, fd;
469 
470     if ((shell = getenv("SHELL")) == 0)
471       shell = _PATH_BSHELL;
472 
473     timer_TermService();
474 
475     if (arg->prompt)
476       fd = arg->prompt->fd_out;
477     else if ((fd = open(_PATH_DEVNULL, O_RDWR)) == -1) {
478       log_Printf(LogALERT, "Failed to open %s: %s\n",
479                 _PATH_DEVNULL, strerror(errno));
480       exit(1);
481     }
482     dup2(fd, STDIN_FILENO);
483     dup2(fd, STDOUT_FILENO);
484     dup2(fd, STDERR_FILENO);
485     for (i = getdtablesize(); i > STDERR_FILENO; i--)
486       fcntl(i, F_SETFD, 1);
487 
488     setuid(geteuid());
489     if (arg->argc > arg->argn) {
490       /* substitute pseudo args */
491       char *argv[MAXARGS];
492       int argc = arg->argc - arg->argn;
493 
494       if (argc >= sizeof argv / sizeof argv[0]) {
495         argc = sizeof argv / sizeof argv[0] - 1;
496         log_Printf(LogWARN, "Truncating shell command to %d args\n", argc);
497       }
498       command_Expand(argv, argc, arg->argv + arg->argn, arg->bundle, 0, pid);
499       if (bg) {
500 	pid_t p;
501 
502 	p = getpid();
503 	if (daemon(1, 1) == -1) {
504 	  log_Printf(LogERROR, "%d: daemon: %s\n", (int)p, strerror(errno));
505 	  exit(1);
506 	}
507       } else if (arg->prompt)
508         printf("ppp: Pausing until %s finishes\n", arg->argv[arg->argn]);
509       execvp(argv[0], argv);
510     } else {
511       if (arg->prompt)
512         printf("ppp: Pausing until %s finishes\n", shell);
513       prompt_TtyOldMode(arg->prompt);
514       execl(shell, shell, NULL);
515     }
516 
517     log_Printf(LogWARN, "exec() of %s failed: %s\n",
518               arg->argc > arg->argn ? arg->argv[arg->argn] : shell,
519               strerror(errno));
520     _exit(255);
521   }
522 
523   if (shpid == (pid_t) - 1)
524     log_Printf(LogERROR, "Fork failed: %s\n", strerror(errno));
525   else {
526     int status;
527     waitpid(shpid, &status, 0);
528   }
529 
530   if (arg->prompt && !arg->prompt->owner)
531     prompt_TtyCommandMode(arg->prompt);
532 
533   return 0;
534 }
535 
536 static int
537 BgShellCommand(struct cmdargs const *arg)
538 {
539   if (arg->argc == arg->argn)
540     return -1;
541   return ShellCommand(arg, 1);
542 }
543 
544 static int
545 FgShellCommand(struct cmdargs const *arg)
546 {
547   return ShellCommand(arg, 0);
548 }
549 
550 #ifndef NONAT
551 static struct cmdtab const AliasCommands[] =
552 {
553   {"addr", NULL, nat_RedirectAddr, LOCAL_AUTH,
554    "static address translation", "nat addr [addr_local addr_alias]"},
555   {"deny_incoming", NULL, AliasOption, LOCAL_AUTH,
556    "stop incoming connections", "nat deny_incoming yes|no",
557    (const void *) PKT_ALIAS_DENY_INCOMING},
558   {"enable", NULL, AliasEnable, LOCAL_AUTH,
559    "enable NAT", "nat enable yes|no"},
560   {"log", NULL, AliasOption, LOCAL_AUTH,
561    "log NAT link creation", "nat log yes|no",
562    (const void *) PKT_ALIAS_LOG},
563   {"port", NULL, nat_RedirectPort, LOCAL_AUTH, "port redirection",
564    "nat port proto localaddr:port[-port] aliasport[-aliasport]"},
565   {"pptp", NULL, nat_Pptp, LOCAL_AUTH,
566    "Set the PPTP address", "nat pptp IP"},
567   {"proxy", NULL, nat_ProxyRule, LOCAL_AUTH,
568    "proxy control", "nat proxy server host[:port] ..."},
569   {"same_ports", NULL, AliasOption, LOCAL_AUTH,
570    "try to leave port numbers unchanged", "nat same_ports yes|no",
571    (const void *) PKT_ALIAS_SAME_PORTS},
572   {"unregistered_only", NULL, AliasOption, LOCAL_AUTH,
573    "translate unregistered (private) IP address space only",
574    "nat unregistered_only yes|no",
575    (const void *) PKT_ALIAS_UNREGISTERED_ONLY},
576   {"use_sockets", NULL, AliasOption, LOCAL_AUTH,
577    "allocate host sockets", "nat use_sockets yes|no",
578    (const void *) PKT_ALIAS_USE_SOCKETS},
579   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
580    "Display this message", "nat help|? [command]", AliasCommands},
581   {NULL, NULL, NULL},
582 };
583 #endif
584 
585 static struct cmdtab const AllowCommands[] = {
586   {"modes", "mode", AllowModes, LOCAL_AUTH,
587   "Only allow certain ppp modes", "allow modes mode..."},
588   {"users", "user", AllowUsers, LOCAL_AUTH,
589   "Only allow ppp access to certain users", "allow users logname..."},
590   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
591   "Display this message", "allow help|? [command]", AllowCommands},
592   {NULL, NULL, NULL},
593 };
594 
595 static struct cmdtab const IfaceCommands[] =
596 {
597   {"add", NULL, IfaceAddCommand, LOCAL_AUTH,
598    "Add iface address", "iface add addr[/bits| mask] peer", NULL},
599   {NULL, "add!", IfaceAddCommand, LOCAL_AUTH,
600    "Add or change an iface address", "iface add! addr[/bits| mask] peer",
601    (void *)1},
602   {"clear", NULL, IfaceClearCommand, LOCAL_AUTH,
603    "Clear iface address(es)", "iface clear"},
604   {"delete", "rm", IfaceDeleteCommand, LOCAL_AUTH,
605    "Delete iface address", "iface delete addr", NULL},
606   {NULL, "rm!", IfaceDeleteCommand, LOCAL_AUTH,
607    "Delete iface address", "iface delete addr", (void *)1},
608   {NULL, "delete!", IfaceDeleteCommand, LOCAL_AUTH,
609    "Delete iface address", "iface delete addr", (void *)1},
610   {"show", NULL, iface_Show, LOCAL_AUTH,
611    "Show iface address(es)", "iface show"},
612   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
613    "Display this message", "nat help|? [command]", IfaceCommands},
614   {NULL, NULL, NULL},
615 };
616 
617 static struct cmdtab const Commands[] = {
618   {"accept", NULL, NegotiateCommand, LOCAL_AUTH | LOCAL_CX_OPT,
619   "accept option request", "accept option .."},
620   {"add", NULL, AddCommand, LOCAL_AUTH,
621   "add route", "add dest mask gateway", NULL},
622   {NULL, "add!", AddCommand, LOCAL_AUTH,
623   "add or change route", "add! dest mask gateway", (void *)1},
624   {"allow", "auth", RunListCommand, LOCAL_AUTH,
625   "Allow ppp access", "allow users|modes ....", AllowCommands},
626   {"bg", "!bg", BgShellCommand, LOCAL_AUTH,
627   "Run a background command", "[!]bg command"},
628   {"clear", NULL, ClearCommand, LOCAL_AUTH | LOCAL_CX_OPT,
629   "Clear throughput statistics",
630   "clear ipcp|physical [current|overall|peak]..."},
631   {"clone", NULL, CloneCommand, LOCAL_AUTH | LOCAL_CX,
632   "Clone a link", "clone newname..."},
633   {"close", NULL, CloseCommand, LOCAL_AUTH | LOCAL_CX_OPT,
634   "Close an FSM", "close [lcp|ccp]"},
635   {"delete", NULL, DeleteCommand, LOCAL_AUTH,
636   "delete route", "delete dest", NULL},
637   {NULL, "delete!", DeleteCommand, LOCAL_AUTH,
638   "delete a route if it exists", "delete! dest", (void *)1},
639   {"deny", NULL, NegotiateCommand, LOCAL_AUTH | LOCAL_CX_OPT,
640   "Deny option request", "deny option .."},
641   {"dial", "call", DialCommand, LOCAL_AUTH | LOCAL_CX_OPT,
642   "Dial and login", "dial|call [system ...]", NULL},
643   {"disable", NULL, NegotiateCommand, LOCAL_AUTH | LOCAL_CX_OPT,
644   "Disable option", "disable option .."},
645   {"down", NULL, DownCommand, LOCAL_AUTH | LOCAL_CX_OPT,
646   "Generate a down event", "down [ccp|lcp]"},
647   {"enable", NULL, NegotiateCommand, LOCAL_AUTH | LOCAL_CX_OPT,
648   "Enable option", "enable option .."},
649   {"iface", "interface", RunListCommand, LOCAL_AUTH,
650   "interface control", "iface option ...", IfaceCommands},
651   {"link", "datalink", LinkCommand, LOCAL_AUTH,
652   "Link specific commands", "link name command ..."},
653   {"load", NULL, LoadCommand, LOCAL_AUTH | LOCAL_CX_OPT,
654   "Load settings", "load [system ...]"},
655 #ifndef NONAT
656   {"nat", "alias", RunListCommand, LOCAL_AUTH,
657   "NAT control", "nat option yes|no", AliasCommands},
658 #endif
659   {"open", NULL, OpenCommand, LOCAL_AUTH | LOCAL_CX_OPT,
660   "Open an FSM", "open! [lcp|ccp|ipcp]", (void *)1},
661   {"passwd", NULL, PasswdCommand, LOCAL_NO_AUTH,
662   "Password for manipulation", "passwd LocalPassword"},
663   {"quit", "bye", QuitCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
664   "Quit PPP program", "quit|bye [all]"},
665   {"remove", "rm", RemoveCommand, LOCAL_AUTH | LOCAL_CX,
666   "Remove a link", "remove"},
667   {"rename", "mv", RenameCommand, LOCAL_AUTH | LOCAL_CX,
668   "Rename a link", "rename name"},
669   {"save", NULL, SaveCommand, LOCAL_AUTH,
670   "Save settings", "save"},
671   {"set", "setup", SetCommand, LOCAL_AUTH | LOCAL_CX_OPT,
672   "Set parameters", "set[up] var value"},
673   {"shell", "!", FgShellCommand, LOCAL_AUTH,
674   "Run a subshell", "shell|! [sh command]"},
675   {"show", NULL, ShowCommand, LOCAL_AUTH | LOCAL_CX_OPT,
676   "Show status and stats", "show var"},
677   {"term", NULL, TerminalCommand, LOCAL_AUTH | LOCAL_CX,
678   "Enter terminal mode", "term"},
679   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
680   "Display this message", "help|? [command]", Commands},
681   {NULL, NULL, NULL},
682 };
683 
684 static int
685 ShowEscape(struct cmdargs const *arg)
686 {
687   if (arg->cx->physical->async.cfg.EscMap[32]) {
688     int code, bit;
689     const char *sep = "";
690 
691     for (code = 0; code < 32; code++)
692       if (arg->cx->physical->async.cfg.EscMap[code])
693 	for (bit = 0; bit < 8; bit++)
694 	  if (arg->cx->physical->async.cfg.EscMap[code] & (1 << bit)) {
695 	    prompt_Printf(arg->prompt, "%s0x%02x", sep, (code << 3) + bit);
696             sep = ", ";
697           }
698     prompt_Printf(arg->prompt, "\n");
699   }
700   return 0;
701 }
702 
703 static int
704 ShowTimerList(struct cmdargs const *arg)
705 {
706   timer_Show(0, arg->prompt);
707   return 0;
708 }
709 
710 static int
711 ShowStopped(struct cmdargs const *arg)
712 {
713   prompt_Printf(arg->prompt, " Stopped Timer:  LCP: ");
714   if (!arg->cx->physical->link.lcp.fsm.StoppedTimer.load)
715     prompt_Printf(arg->prompt, "Disabled");
716   else
717     prompt_Printf(arg->prompt, "%ld secs",
718                   arg->cx->physical->link.lcp.fsm.StoppedTimer.load / SECTICKS);
719 
720   prompt_Printf(arg->prompt, ", CCP: ");
721   if (!arg->cx->physical->link.ccp.fsm.StoppedTimer.load)
722     prompt_Printf(arg->prompt, "Disabled");
723   else
724     prompt_Printf(arg->prompt, "%ld secs",
725                   arg->cx->physical->link.ccp.fsm.StoppedTimer.load / SECTICKS);
726 
727   prompt_Printf(arg->prompt, "\n");
728 
729   return 0;
730 }
731 
732 static int
733 ShowVersion(struct cmdargs const *arg)
734 {
735   prompt_Printf(arg->prompt, "PPP Version %s - %s\n", Version, VersionDate);
736   return 0;
737 }
738 
739 static int
740 ShowProtocolStats(struct cmdargs const *arg)
741 {
742   struct link *l = command_ChooseLink(arg);
743 
744   prompt_Printf(arg->prompt, "%s:\n", l->name);
745   link_ReportProtocolStatus(l, arg->prompt);
746   return 0;
747 }
748 
749 static struct cmdtab const ShowCommands[] = {
750   {"bundle", NULL, bundle_ShowStatus, LOCAL_AUTH,
751   "bundle details", "show bundle"},
752   {"ccp", NULL, ccp_ReportStatus, LOCAL_AUTH | LOCAL_CX_OPT,
753   "CCP status", "show cpp"},
754   {"compress", NULL, sl_Show, LOCAL_AUTH,
755   "VJ compression stats", "show compress"},
756   {"escape", NULL, ShowEscape, LOCAL_AUTH | LOCAL_CX,
757   "escape characters", "show escape"},
758   {"filter", NULL, filter_Show, LOCAL_AUTH,
759   "packet filters", "show filter [in|out|dial|alive]"},
760   {"hdlc", NULL, hdlc_ReportStatus, LOCAL_AUTH | LOCAL_CX,
761   "HDLC errors", "show hdlc"},
762   {"iface", "interface", iface_Show, LOCAL_AUTH,
763   "Interface status", "show iface"},
764   {"ipcp", NULL, ipcp_Show, LOCAL_AUTH,
765   "IPCP status", "show ipcp"},
766   {"layers", NULL, link_ShowLayers, LOCAL_AUTH | LOCAL_CX_OPT,
767   "Protocol layers", "show layers"},
768   {"lcp", NULL, lcp_ReportStatus, LOCAL_AUTH | LOCAL_CX,
769   "LCP status", "show lcp"},
770   {"link", "datalink", datalink_Show, LOCAL_AUTH | LOCAL_CX,
771   "(high-level) link info", "show link"},
772   {"links", NULL, bundle_ShowLinks, LOCAL_AUTH,
773   "available link names", "show links"},
774   {"log", NULL, log_ShowLevel, LOCAL_AUTH,
775   "log levels", "show log"},
776   {"mem", NULL, mbuf_Show, LOCAL_AUTH,
777   "mbuf allocations", "show mem"},
778   {"physical", NULL, physical_ShowStatus, LOCAL_AUTH | LOCAL_CX,
779   "(low-level) link info", "show physical"},
780   {"mp", "multilink", mp_ShowStatus, LOCAL_AUTH,
781   "multilink setup", "show mp"},
782   {"proto", NULL, ShowProtocolStats, LOCAL_AUTH | LOCAL_CX_OPT,
783   "protocol summary", "show proto"},
784   {"route", NULL, route_Show, LOCAL_AUTH,
785   "routing table", "show route"},
786   {"stopped", NULL, ShowStopped, LOCAL_AUTH | LOCAL_CX,
787   "STOPPED timeout", "show stopped"},
788   {"timers", NULL, ShowTimerList, LOCAL_AUTH,
789   "alarm timers", "show timers"},
790   {"version", NULL, ShowVersion, LOCAL_NO_AUTH | LOCAL_AUTH,
791   "version string", "show version"},
792   {"who", NULL, log_ShowWho, LOCAL_AUTH,
793   "client list", "show who"},
794   {"help", "?", HelpCommand, LOCAL_NO_AUTH | LOCAL_AUTH,
795   "Display this message", "show help|? [command]", ShowCommands},
796   {NULL, NULL, NULL},
797 };
798 
799 static struct cmdtab const *
800 FindCommand(struct cmdtab const *cmds, const char *str, int *pmatch)
801 {
802   int nmatch;
803   int len;
804   struct cmdtab const *found;
805 
806   found = NULL;
807   len = strlen(str);
808   nmatch = 0;
809   while (cmds->func) {
810     if (cmds->name && strncasecmp(str, cmds->name, len) == 0) {
811       if (cmds->name[len] == '\0') {
812 	*pmatch = 1;
813 	return cmds;
814       }
815       nmatch++;
816       found = cmds;
817     } else if (cmds->alias && strncasecmp(str, cmds->alias, len) == 0) {
818       if (cmds->alias[len] == '\0') {
819 	*pmatch = 1;
820 	return cmds;
821       }
822       nmatch++;
823       found = cmds;
824     }
825     cmds++;
826   }
827   *pmatch = nmatch;
828   return found;
829 }
830 
831 static const char *
832 mkPrefix(int argc, char const *const *argv, char *tgt, int sz)
833 {
834   int f, tlen, len;
835 
836   tlen = 0;
837   for (f = 0; f < argc && tlen < sz - 2; f++) {
838     if (f)
839       tgt[tlen++] = ' ';
840     len = strlen(argv[f]);
841     if (len > sz - tlen - 1)
842       len = sz - tlen - 1;
843     strncpy(tgt+tlen, argv[f], len);
844     tlen += len;
845   }
846   tgt[tlen] = '\0';
847   return tgt;
848 }
849 
850 static int
851 FindExec(struct bundle *bundle, struct cmdtab const *cmds, int argc, int argn,
852          char const *const *argv, struct prompt *prompt, struct datalink *cx)
853 {
854   struct cmdtab const *cmd;
855   int val = 1;
856   int nmatch;
857   struct cmdargs arg;
858   char prefix[100];
859 
860   cmd = FindCommand(cmds, argv[argn], &nmatch);
861   if (nmatch > 1)
862     log_Printf(LogWARN, "%s: Ambiguous command\n",
863               mkPrefix(argn+1, argv, prefix, sizeof prefix));
864   else if (cmd && (!prompt || (cmd->lauth & prompt->auth))) {
865     if ((cmd->lauth & LOCAL_CX) && !cx)
866       /* We've got no context, but we require it */
867       cx = bundle2datalink(bundle, NULL);
868 
869     if ((cmd->lauth & LOCAL_CX) && !cx)
870       log_Printf(LogWARN, "%s: No context (use the `link' command)\n",
871                 mkPrefix(argn+1, argv, prefix, sizeof prefix));
872     else {
873       if (cx && !(cmd->lauth & (LOCAL_CX|LOCAL_CX_OPT))) {
874         log_Printf(LogWARN, "%s: Redundant context (%s) ignored\n",
875                   mkPrefix(argn+1, argv, prefix, sizeof prefix), cx->name);
876         cx = NULL;
877       }
878       arg.cmdtab = cmds;
879       arg.cmd = cmd;
880       arg.argc = argc;
881       arg.argn = argn+1;
882       arg.argv = argv;
883       arg.bundle = bundle;
884       arg.cx = cx;
885       arg.prompt = prompt;
886       val = (*cmd->func) (&arg);
887     }
888   } else
889     log_Printf(LogWARN, "%s: Invalid command\n",
890               mkPrefix(argn+1, argv, prefix, sizeof prefix));
891 
892   if (val == -1)
893     log_Printf(LogWARN, "Usage: %s\n", cmd->syntax);
894   else if (val)
895     log_Printf(LogWARN, "%s: Failed %d\n",
896               mkPrefix(argn+1, argv, prefix, sizeof prefix), val);
897 
898   return val;
899 }
900 
901 int
902 command_Interpret(char *buff, int nb, char *argv[MAXARGS])
903 {
904   char *cp;
905 
906   if (nb > 0) {
907     cp = buff + strcspn(buff, "\r\n");
908     if (cp)
909       *cp = '\0';
910     return MakeArgs(buff, argv, MAXARGS);
911   }
912   return 0;
913 }
914 
915 static int
916 arghidden(int argc, char const *const *argv, int n)
917 {
918   /* Is arg n of the given command to be hidden from the log ? */
919 
920   /* set authkey xxxxx */
921   /* set key xxxxx */
922   if (n == 2 && !strncasecmp(argv[0], "se", 2) &&
923       (!strncasecmp(argv[1], "authk", 5) || !strncasecmp(argv[1], "ke", 2)))
924     return 1;
925 
926   /* passwd xxxxx */
927   if (n == 1 && !strncasecmp(argv[0], "p", 1))
928     return 1;
929 
930   /* set server port xxxxx .... */
931   if (n == 3 && !strncasecmp(argv[0], "se", 2) &&
932       !strncasecmp(argv[1], "se", 2))
933     return 1;
934 
935   return 0;
936 }
937 
938 void
939 command_Run(struct bundle *bundle, int argc, char const *const *argv,
940            struct prompt *prompt, const char *label, struct datalink *cx)
941 {
942   if (argc > 0) {
943     if (log_IsKept(LogCOMMAND)) {
944       char buf[LINE_LEN];
945       int f, n;
946 
947       if (label) {
948         strncpy(buf, label, sizeof buf - 3);
949         buf[sizeof buf - 3] = '\0';
950         strcat(buf, ": ");
951         n = strlen(buf);
952       } else {
953         *buf = '\0';
954         n = 0;
955       }
956       buf[sizeof buf - 1] = '\0';	/* In case we run out of room in buf */
957 
958       for (f = 0; f < argc; f++) {
959         if (n < sizeof buf - 1 && f)
960           buf[n++] = ' ';
961         if (arghidden(argc, argv, f))
962           strncpy(buf+n, "********", sizeof buf - n - 1);
963         else
964           strncpy(buf+n, argv[f], sizeof buf - n - 1);
965         n += strlen(buf+n);
966       }
967       log_Printf(LogCOMMAND, "%s\n", buf);
968     }
969     FindExec(bundle, Commands, argc, 0, argv, prompt, cx);
970   }
971 }
972 
973 void
974 command_Decode(struct bundle *bundle, char *buff, int nb, struct prompt *prompt,
975               const char *label)
976 {
977   int argc;
978   char *argv[MAXARGS];
979 
980   argc = command_Interpret(buff, nb, argv);
981   command_Run(bundle, argc, (char const *const *)argv, prompt, label, NULL);
982 }
983 
984 static int
985 ShowCommand(struct cmdargs const *arg)
986 {
987   if (!arg->prompt)
988     log_Printf(LogWARN, "show: Cannot show without a prompt\n");
989   else if (arg->argc > arg->argn)
990     FindExec(arg->bundle, ShowCommands, arg->argc, arg->argn, arg->argv,
991              arg->prompt, arg->cx);
992   else
993     prompt_Printf(arg->prompt, "Use ``show ?'' to get a list.\n");
994 
995   return 0;
996 }
997 
998 static int
999 TerminalCommand(struct cmdargs const *arg)
1000 {
1001   if (!arg->prompt) {
1002     log_Printf(LogWARN, "term: Need a prompt\n");
1003     return 1;
1004   }
1005 
1006   if (arg->cx->physical->link.lcp.fsm.state > ST_CLOSED) {
1007     prompt_Printf(arg->prompt, "LCP state is [%s]\n",
1008                   State2Nam(arg->cx->physical->link.lcp.fsm.state));
1009     return 1;
1010   }
1011 
1012   datalink_Up(arg->cx, 0, 0);
1013   prompt_TtyTermMode(arg->prompt, arg->cx);
1014   return 0;
1015 }
1016 
1017 static int
1018 QuitCommand(struct cmdargs const *arg)
1019 {
1020   if (!arg->prompt || prompt_IsController(arg->prompt) ||
1021       (arg->argc > arg->argn && !strcasecmp(arg->argv[arg->argn], "all") &&
1022        (arg->prompt->auth & LOCAL_AUTH)))
1023     Cleanup(EX_NORMAL);
1024   if (arg->prompt)
1025     prompt_Destroy(arg->prompt, 1);
1026 
1027   return 0;
1028 }
1029 
1030 static int
1031 OpenCommand(struct cmdargs const *arg)
1032 {
1033   if (arg->argc == arg->argn)
1034     bundle_Open(arg->bundle, arg->cx ? arg->cx->name : NULL, PHYS_ALL, 1);
1035   else if (arg->argc == arg->argn + 1) {
1036     if (!strcasecmp(arg->argv[arg->argn], "lcp")) {
1037       struct datalink *cx = arg->cx ?
1038         arg->cx : bundle2datalink(arg->bundle, NULL);
1039       if (cx) {
1040         if (cx->physical->link.lcp.fsm.state == ST_OPENED)
1041           fsm_Reopen(&cx->physical->link.lcp.fsm);
1042         else
1043           bundle_Open(arg->bundle, cx->name, PHYS_ALL, 1);
1044       } else
1045         log_Printf(LogWARN, "open lcp: You must specify a link\n");
1046     } else if (!strcasecmp(arg->argv[arg->argn], "ccp")) {
1047       struct fsm *fp;
1048 
1049       fp = &command_ChooseLink(arg)->ccp.fsm;
1050       if (fp->link->lcp.fsm.state != ST_OPENED)
1051         log_Printf(LogWARN, "open: LCP must be open before opening CCP\n");
1052       else if (fp->state == ST_OPENED)
1053         fsm_Reopen(fp);
1054       else {
1055         fp->open_mode = 0;	/* Not passive any more */
1056         if (fp->state == ST_STOPPED) {
1057           fsm_Down(fp);
1058           fsm_Up(fp);
1059         } else {
1060           fsm_Up(fp);
1061           fsm_Open(fp);
1062         }
1063       }
1064     } else if (!strcasecmp(arg->argv[arg->argn], "ipcp")) {
1065       if (arg->cx)
1066         log_Printf(LogWARN, "open ipcp: You need not specify a link\n");
1067       if (arg->bundle->ncp.ipcp.fsm.state == ST_OPENED)
1068         fsm_Reopen(&arg->bundle->ncp.ipcp.fsm);
1069       else
1070         bundle_Open(arg->bundle, NULL, PHYS_ALL, 1);
1071     } else
1072       return -1;
1073   } else
1074     return -1;
1075 
1076   return 0;
1077 }
1078 
1079 static int
1080 CloseCommand(struct cmdargs const *arg)
1081 {
1082   if (arg->argc == arg->argn)
1083     bundle_Close(arg->bundle, arg->cx ? arg->cx->name : NULL, CLOSE_STAYDOWN);
1084   else if (arg->argc == arg->argn + 1) {
1085     if (!strcasecmp(arg->argv[arg->argn], "lcp"))
1086       bundle_Close(arg->bundle, arg->cx ? arg->cx->name : NULL, CLOSE_LCP);
1087     else if (!strcasecmp(arg->argv[arg->argn], "ccp") ||
1088              !strcasecmp(arg->argv[arg->argn], "ccp!")) {
1089       struct fsm *fp;
1090 
1091       fp = &command_ChooseLink(arg)->ccp.fsm;
1092       if (fp->state == ST_OPENED) {
1093         fsm_Close(fp);
1094         if (arg->argv[arg->argn][3] == '!')
1095           fp->open_mode = 0;		/* Stay ST_CLOSED */
1096         else
1097           fp->open_mode = OPEN_PASSIVE;	/* Wait for the peer to start */
1098       }
1099     } else
1100       return -1;
1101   } else
1102     return -1;
1103 
1104   return 0;
1105 }
1106 
1107 static int
1108 DownCommand(struct cmdargs const *arg)
1109 {
1110   if (arg->argc == arg->argn) {
1111       if (arg->cx)
1112         datalink_Down(arg->cx, CLOSE_STAYDOWN);
1113       else
1114         bundle_Down(arg->bundle, CLOSE_STAYDOWN);
1115   } else if (arg->argc == arg->argn + 1) {
1116     if (!strcasecmp(arg->argv[arg->argn], "lcp")) {
1117       if (arg->cx)
1118         datalink_Down(arg->cx, CLOSE_LCP);
1119       else
1120         bundle_Down(arg->bundle, CLOSE_LCP);
1121     } else if (!strcasecmp(arg->argv[arg->argn], "ccp")) {
1122       struct fsm *fp = arg->cx ? &arg->cx->physical->link.ccp.fsm :
1123                                  &arg->bundle->ncp.mp.link.ccp.fsm;
1124       fsm2initial(fp);
1125     } else
1126       return -1;
1127   } else
1128     return -1;
1129 
1130   return 0;
1131 }
1132 
1133 static int
1134 SetModemSpeed(struct cmdargs const *arg)
1135 {
1136   long speed;
1137   char *end;
1138 
1139   if (arg->argc > arg->argn && *arg->argv[arg->argn]) {
1140     if (arg->argc > arg->argn+1) {
1141       log_Printf(LogWARN, "SetModemSpeed: Too many arguments");
1142       return -1;
1143     }
1144     if (strcasecmp(arg->argv[arg->argn], "sync") == 0) {
1145       physical_SetSync(arg->cx->physical);
1146       return 0;
1147     }
1148     end = NULL;
1149     speed = strtol(arg->argv[arg->argn], &end, 10);
1150     if (*end) {
1151       log_Printf(LogWARN, "SetModemSpeed: Bad argument \"%s\"",
1152                 arg->argv[arg->argn]);
1153       return -1;
1154     }
1155     if (physical_SetSpeed(arg->cx->physical, speed))
1156       return 0;
1157     log_Printf(LogWARN, "%s: Invalid speed\n", arg->argv[arg->argn]);
1158   } else
1159     log_Printf(LogWARN, "SetModemSpeed: No speed specified\n");
1160 
1161   return -1;
1162 }
1163 
1164 static int
1165 SetStoppedTimeout(struct cmdargs const *arg)
1166 {
1167   struct link *l = &arg->cx->physical->link;
1168 
1169   l->lcp.fsm.StoppedTimer.load = 0;
1170   l->ccp.fsm.StoppedTimer.load = 0;
1171   if (arg->argc <= arg->argn+2) {
1172     if (arg->argc > arg->argn) {
1173       l->lcp.fsm.StoppedTimer.load = atoi(arg->argv[arg->argn]) * SECTICKS;
1174       if (arg->argc > arg->argn+1)
1175         l->ccp.fsm.StoppedTimer.load = atoi(arg->argv[arg->argn+1]) * SECTICKS;
1176     }
1177     return 0;
1178   }
1179   return -1;
1180 }
1181 
1182 #define ismask(x) \
1183   (*x == '0' && strlen(x) == 4 && strspn(x+1, "0123456789.") == 3)
1184 
1185 static int
1186 SetServer(struct cmdargs const *arg)
1187 {
1188   int res = -1;
1189 
1190   if (arg->argc > arg->argn && arg->argc < arg->argn+4) {
1191     const char *port, *passwd, *mask;
1192 
1193     /* What's what ? */
1194     port = arg->argv[arg->argn];
1195     if (arg->argc == arg->argn + 2) {
1196       passwd = arg->argv[arg->argn+1];
1197       mask = NULL;
1198     } else if (arg->argc == arg->argn + 3) {
1199       passwd = arg->argv[arg->argn+1];
1200       mask = arg->argv[arg->argn+2];
1201       if (!ismask(mask))
1202         return -1;
1203     } else if (strcasecmp(port, "none") == 0) {
1204       if (server_Close(arg->bundle))
1205         log_Printf(LogPHASE, "Disabled server port.\n");
1206       return 0;
1207     } else
1208       return -1;
1209 
1210     strncpy(server.passwd, passwd, sizeof server.passwd - 1);
1211     server.passwd[sizeof server.passwd - 1] = '\0';
1212 
1213     if (*port == '/') {
1214       mode_t imask;
1215       char *ptr, name[LINE_LEN + 12];
1216 
1217       if (mask != NULL) {
1218 	unsigned m;
1219 
1220 	if (sscanf(mask, "%o", &m) == 1)
1221 	  imask = m;
1222         else
1223           return -1;
1224       } else
1225         imask = (mode_t)-1;
1226 
1227       ptr = strstr(port, "%d");
1228       if (ptr) {
1229         snprintf(name, sizeof name, "%.*s%d%s",
1230                  (int)(ptr - port), port, arg->bundle->unit, ptr + 2);
1231         port = name;
1232       }
1233       res = server_LocalOpen(arg->bundle, port, imask);
1234     } else {
1235       int iport, add = 0;
1236 
1237       if (mask != NULL)
1238         return -1;
1239 
1240       if (*port == '+') {
1241         port++;
1242         add = 1;
1243       }
1244       if (strspn(port, "0123456789") != strlen(port)) {
1245         struct servent *s;
1246 
1247         if ((s = getservbyname(port, "tcp")) == NULL) {
1248 	  iport = 0;
1249 	  log_Printf(LogWARN, "%s: Invalid port or service\n", port);
1250 	} else
1251 	  iport = ntohs(s->s_port);
1252       } else
1253         iport = atoi(port);
1254 
1255       if (iport) {
1256         if (add)
1257           iport += arg->bundle->unit;
1258         res = server_TcpOpen(arg->bundle, iport);
1259       } else
1260         res = -1;
1261     }
1262   }
1263 
1264   return res;
1265 }
1266 
1267 static int
1268 SetEscape(struct cmdargs const *arg)
1269 {
1270   int code;
1271   int argc = arg->argc - arg->argn;
1272   char const *const *argv = arg->argv + arg->argn;
1273 
1274   for (code = 0; code < 33; code++)
1275     arg->cx->physical->async.cfg.EscMap[code] = 0;
1276 
1277   while (argc-- > 0) {
1278     sscanf(*argv++, "%x", &code);
1279     code &= 0xff;
1280     arg->cx->physical->async.cfg.EscMap[code >> 3] |= (1 << (code & 7));
1281     arg->cx->physical->async.cfg.EscMap[32] = 1;
1282   }
1283   return 0;
1284 }
1285 
1286 static int
1287 SetInterfaceAddr(struct cmdargs const *arg)
1288 {
1289   struct ipcp *ipcp = &arg->bundle->ncp.ipcp;
1290   const char *hisaddr;
1291 
1292   if (arg->argc > arg->argn + 4)
1293     return -1;
1294 
1295   hisaddr = NULL;
1296   memset(&ipcp->cfg.my_range, '\0', sizeof ipcp->cfg.my_range);
1297   memset(&ipcp->cfg.peer_range, '\0', sizeof ipcp->cfg.peer_range);
1298   ipcp->cfg.HaveTriggerAddress = 0;
1299   ipcp->cfg.netmask.s_addr = INADDR_ANY;
1300   iplist_reset(&ipcp->cfg.peer_list);
1301 
1302   if (arg->argc > arg->argn) {
1303     if (!ParseAddr(ipcp, arg->argv[arg->argn],
1304                    &ipcp->cfg.my_range.ipaddr, &ipcp->cfg.my_range.mask,
1305                    &ipcp->cfg.my_range.width))
1306       return 1;
1307     if (arg->argc > arg->argn+1) {
1308       hisaddr = arg->argv[arg->argn+1];
1309       if (arg->argc > arg->argn+2) {
1310         ipcp->ifmask = ipcp->cfg.netmask = GetIpAddr(arg->argv[arg->argn+2]);
1311 	if (arg->argc > arg->argn+3) {
1312 	  ipcp->cfg.TriggerAddress = GetIpAddr(arg->argv[arg->argn+3]);
1313 	  ipcp->cfg.HaveTriggerAddress = 1;
1314 	}
1315       }
1316     }
1317   }
1318 
1319   /* 0.0.0.0 means any address (0 bits) */
1320   if (ipcp->cfg.my_range.ipaddr.s_addr == INADDR_ANY) {
1321     ipcp->cfg.my_range.mask.s_addr = INADDR_ANY;
1322     ipcp->cfg.my_range.width = 0;
1323   }
1324   ipcp->my_ip.s_addr = ipcp->cfg.my_range.ipaddr.s_addr;
1325   bundle_AdjustFilters(arg->bundle, &ipcp->my_ip, NULL);
1326 
1327   if (hisaddr && !ipcp_UseHisaddr(arg->bundle, hisaddr,
1328                                   arg->bundle->phys_type.all & PHYS_AUTO))
1329     return 4;
1330 
1331   return 0;
1332 }
1333 
1334 static int
1335 SetRetry(int argc, char const *const *argv, u_int *timeout, u_int *maxreq,
1336           u_int *maxtrm, int def)
1337 {
1338   if (argc == 0) {
1339     *timeout = DEF_FSMRETRY;
1340     *maxreq = def;
1341     if (maxtrm != NULL)
1342       *maxtrm = def;
1343   } else {
1344     long l = atol(argv[0]);
1345 
1346     if (l < MIN_FSMRETRY) {
1347       log_Printf(LogWARN, "%ld: Invalid FSM retry period - min %d\n",
1348                  l, MIN_FSMRETRY);
1349       return 1;
1350     } else
1351       *timeout = l;
1352 
1353     if (argc > 1) {
1354       l = atol(argv[1]);
1355       if (l < 1) {
1356         log_Printf(LogWARN, "%ld: Invalid FSM REQ tries - changed to 1\n", l);
1357         l = 1;
1358       }
1359       *maxreq = l;
1360 
1361       if (argc > 2 && maxtrm != NULL) {
1362         l = atol(argv[2]);
1363         if (l < 1) {
1364           log_Printf(LogWARN, "%ld: Invalid FSM TRM tries - changed to 1\n", l);
1365           l = 1;
1366         }
1367         *maxtrm = l;
1368       }
1369     }
1370   }
1371 
1372   return 0;
1373 }
1374 
1375 static int
1376 SetVariable(struct cmdargs const *arg)
1377 {
1378   long long_val, param = (long)arg->cmd->args;
1379   int mode, dummyint, f;
1380   const char *argp;
1381   struct datalink *cx = arg->cx;	/* LOCAL_CX uses this */
1382   const char *err = NULL;
1383   struct link *l = command_ChooseLink(arg);	/* LOCAL_CX_OPT uses this */
1384   struct in_addr dummyaddr, *addr;
1385 
1386   if (arg->argc > arg->argn)
1387     argp = arg->argv[arg->argn];
1388   else
1389     argp = "";
1390 
1391   if ((arg->cmd->lauth & LOCAL_CX) && !cx) {
1392     log_Printf(LogWARN, "set %s: No context (use the `link' command)\n",
1393               arg->cmd->name);
1394     return 1;
1395   } else if (cx && !(arg->cmd->lauth & (LOCAL_CX|LOCAL_CX_OPT))) {
1396     log_Printf(LogWARN, "set %s: Redundant context (%s) ignored\n",
1397               arg->cmd->name, cx->name);
1398     cx = NULL;
1399   }
1400 
1401   switch (param) {
1402   case VAR_AUTHKEY:
1403     strncpy(arg->bundle->cfg.auth.key, argp,
1404             sizeof arg->bundle->cfg.auth.key - 1);
1405     arg->bundle->cfg.auth.key[sizeof arg->bundle->cfg.auth.key - 1] = '\0';
1406     break;
1407 
1408   case VAR_AUTHNAME:
1409     switch (bundle_Phase(arg->bundle)) {
1410       case PHASE_DEAD:
1411       case PHASE_ESTABLISH:
1412         strncpy(arg->bundle->cfg.auth.name, argp,
1413                 sizeof arg->bundle->cfg.auth.name - 1);
1414         arg->bundle->cfg.auth.name[sizeof arg->bundle->cfg.auth.name-1] = '\0';
1415         break;
1416       default:
1417         err = "set authname: Only available at phase DEAD/ESTABLISH\n";
1418         log_Printf(LogWARN, err);
1419         break;
1420     }
1421     break;
1422 
1423   case VAR_AUTOLOAD:
1424     if (arg->argc == arg->argn + 3) {
1425       int v1, v2, v3;
1426       char *end;
1427 
1428       v1 = strtol(arg->argv[arg->argn], &end, 0);
1429       if (v1 < 0 || *end) {
1430         log_Printf(LogWARN, "autoload: %s: Invalid min percentage\n",
1431                    arg->argv[arg->argn]);
1432         return 1;
1433       }
1434 
1435       v2 = strtol(arg->argv[arg->argn + 1], &end, 0);
1436       if (v2 < 0 || *end) {
1437         log_Printf(LogWARN, "autoload: %s: Invalid max percentage\n",
1438                    arg->argv[arg->argn + 1]);
1439         return 1;
1440       }
1441       if (v2 < v1) {
1442         v3 = v1;
1443         v1 = v2;
1444         v2 = v3;
1445       }
1446 
1447       v3 = strtol(arg->argv[arg->argn + 2], &end, 0);
1448       if (v3 <= 0 || *end) {
1449         log_Printf(LogWARN, "autoload: %s: Invalid throughput period\n",
1450                    arg->argv[arg->argn + 2]);
1451         return 1;
1452       }
1453 
1454       arg->bundle->ncp.mp.cfg.autoload.min = v1;
1455       arg->bundle->ncp.mp.cfg.autoload.max = v2;
1456       arg->bundle->ncp.mp.cfg.autoload.period = v3;
1457       mp_RestartAutoloadTimer(&arg->bundle->ncp.mp);
1458     } else {
1459       err = "Set autoload requires three arguments\n";
1460       log_Printf(LogWARN, err);
1461     }
1462     break;
1463 
1464   case VAR_DIAL:
1465     strncpy(cx->cfg.script.dial, argp, sizeof cx->cfg.script.dial - 1);
1466     cx->cfg.script.dial[sizeof cx->cfg.script.dial - 1] = '\0';
1467     break;
1468 
1469   case VAR_LOGIN:
1470     strncpy(cx->cfg.script.login, argp, sizeof cx->cfg.script.login - 1);
1471     cx->cfg.script.login[sizeof cx->cfg.script.login - 1] = '\0';
1472     break;
1473 
1474   case VAR_WINSIZE:
1475     if (arg->argc > arg->argn) {
1476       l->ccp.cfg.deflate.out.winsize = atoi(arg->argv[arg->argn]);
1477       if (l->ccp.cfg.deflate.out.winsize < 8 ||
1478           l->ccp.cfg.deflate.out.winsize > 15) {
1479           log_Printf(LogWARN, "%d: Invalid outgoing window size\n",
1480                     l->ccp.cfg.deflate.out.winsize);
1481           l->ccp.cfg.deflate.out.winsize = 15;
1482       }
1483       if (arg->argc > arg->argn+1) {
1484         l->ccp.cfg.deflate.in.winsize = atoi(arg->argv[arg->argn+1]);
1485         if (l->ccp.cfg.deflate.in.winsize < 8 ||
1486             l->ccp.cfg.deflate.in.winsize > 15) {
1487             log_Printf(LogWARN, "%d: Invalid incoming window size\n",
1488                       l->ccp.cfg.deflate.in.winsize);
1489             l->ccp.cfg.deflate.in.winsize = 15;
1490         }
1491       } else
1492         l->ccp.cfg.deflate.in.winsize = 0;
1493     } else {
1494       err = "No window size specified\n";
1495       log_Printf(LogWARN, err);
1496     }
1497     break;
1498 
1499   case VAR_DEVICE:
1500     physical_SetDeviceList(cx->physical, arg->argc - arg->argn,
1501                            arg->argv + arg->argn);
1502     break;
1503 
1504   case VAR_ACCMAP:
1505     if (arg->argc > arg->argn) {
1506       u_long ulong_val;
1507       sscanf(argp, "%lx", &ulong_val);
1508       cx->physical->link.lcp.cfg.accmap = (u_int32_t)ulong_val;
1509     } else {
1510       err = "No accmap specified\n";
1511       log_Printf(LogWARN, err);
1512     }
1513     break;
1514 
1515   case VAR_MODE:
1516     mode = Nam2mode(argp);
1517     if (mode == PHYS_NONE || mode == PHYS_ALL) {
1518       log_Printf(LogWARN, "%s: Invalid mode\n", argp);
1519       return -1;
1520     }
1521     bundle_SetMode(arg->bundle, cx, mode);
1522     break;
1523 
1524   case VAR_MRRU:
1525     switch (bundle_Phase(arg->bundle)) {
1526       case PHASE_DEAD:
1527         break;
1528       case PHASE_ESTABLISH:
1529         /* Make sure none of our links are DATALINK_LCP or greater */
1530         if (bundle_HighestState(arg->bundle) >= DATALINK_LCP) {
1531           log_Printf(LogWARN, "mrru: Only changable before LCP negotiations\n");
1532           return 1;
1533         }
1534         break;
1535       default:
1536         log_Printf(LogWARN, "mrru: Only changable at phase DEAD/ESTABLISH\n");
1537         return 1;
1538     }
1539     long_val = atol(argp);
1540     if (long_val && long_val < MIN_MRU) {
1541       log_Printf(LogWARN, "MRRU %ld: too small - min %d\n", long_val, MIN_MRU);
1542       return 1;
1543     } else if (long_val > MAX_MRU) {
1544       log_Printf(LogWARN, "MRRU %ld: too big - max %d\n", long_val, MAX_MRU);
1545       return 1;
1546     } else
1547       arg->bundle->ncp.mp.cfg.mrru = long_val;
1548     break;
1549 
1550   case VAR_MRU:
1551     long_val = atol(argp);
1552     if (long_val == 0)
1553       l->lcp.cfg.mru = DEF_MRU;
1554     else if (long_val < MIN_MRU) {
1555       log_Printf(LogWARN, "MRU %ld: too small - min %d\n", long_val, MIN_MRU);
1556       return 1;
1557     } else if (long_val > MAX_MRU) {
1558       log_Printf(LogWARN, "MRU %ld: too big - max %d\n", long_val, MAX_MRU);
1559       return 1;
1560     } else
1561       l->lcp.cfg.mru = long_val;
1562     break;
1563 
1564   case VAR_MTU:
1565     long_val = atol(argp);
1566     if (long_val && long_val < MIN_MTU) {
1567       log_Printf(LogWARN, "MTU %ld: too small - min %d\n", long_val, MIN_MTU);
1568       return 1;
1569     } else if (long_val > MAX_MTU) {
1570       log_Printf(LogWARN, "MTU %ld: too big - max %d\n", long_val, MAX_MTU);
1571       return 1;
1572     } else
1573       arg->bundle->cfg.mtu = long_val;
1574     break;
1575 
1576   case VAR_OPENMODE:
1577     if (strcasecmp(argp, "active") == 0)
1578       cx->physical->link.lcp.cfg.openmode = arg->argc > arg->argn+1 ?
1579         atoi(arg->argv[arg->argn+1]) : 1;
1580     else if (strcasecmp(argp, "passive") == 0)
1581       cx->physical->link.lcp.cfg.openmode = OPEN_PASSIVE;
1582     else {
1583       err = "%s: Invalid openmode\n";
1584       log_Printf(LogWARN, err, argp);
1585     }
1586     break;
1587 
1588   case VAR_PHONE:
1589     strncpy(cx->cfg.phone.list, argp, sizeof cx->cfg.phone.list - 1);
1590     cx->cfg.phone.list[sizeof cx->cfg.phone.list - 1] = '\0';
1591     cx->phone.alt = cx->phone.next = NULL;
1592     break;
1593 
1594   case VAR_HANGUP:
1595     strncpy(cx->cfg.script.hangup, argp, sizeof cx->cfg.script.hangup - 1);
1596     cx->cfg.script.hangup[sizeof cx->cfg.script.hangup - 1] = '\0';
1597     break;
1598 
1599   case VAR_IDLETIMEOUT:
1600     if (arg->argc > arg->argn+2)
1601       err = "Too many idle timeout values\n";
1602     else if (arg->argc == arg->argn)
1603       err = "Too few idle timeout values\n";
1604     else {
1605       int timeout, min;
1606 
1607       timeout = atoi(argp);
1608       min = arg->argc == arg->argn + 2 ? atoi(arg->argv[arg->argn + 1]) : -1;
1609       bundle_SetIdleTimer(arg->bundle, timeout, min);
1610     }
1611     if (err)
1612       log_Printf(LogWARN, err);
1613     break;
1614 
1615   case VAR_LQRPERIOD:
1616     long_val = atol(argp);
1617     if (long_val < MIN_LQRPERIOD) {
1618       log_Printf(LogWARN, "%ld: Invalid lqr period - min %d\n",
1619                  long_val, MIN_LQRPERIOD);
1620       return 1;
1621     } else
1622       l->lcp.cfg.lqrperiod = long_val;
1623     break;
1624 
1625   case VAR_LCPRETRY:
1626     return SetRetry(arg->argc - arg->argn, arg->argv + arg->argn,
1627                     &cx->physical->link.lcp.cfg.fsm.timeout,
1628                     &cx->physical->link.lcp.cfg.fsm.maxreq,
1629                     &cx->physical->link.lcp.cfg.fsm.maxtrm, DEF_FSMTRIES);
1630     break;
1631 
1632   case VAR_CHAPRETRY:
1633     return SetRetry(arg->argc - arg->argn, arg->argv + arg->argn,
1634                     &cx->chap.auth.cfg.fsm.timeout,
1635                     &cx->chap.auth.cfg.fsm.maxreq, NULL, DEF_FSMAUTHTRIES);
1636     break;
1637 
1638   case VAR_PAPRETRY:
1639     return SetRetry(arg->argc - arg->argn, arg->argv + arg->argn,
1640                     &cx->pap.cfg.fsm.timeout, &cx->pap.cfg.fsm.maxreq,
1641                     NULL, DEF_FSMAUTHTRIES);
1642     break;
1643 
1644   case VAR_CCPRETRY:
1645     return SetRetry(arg->argc - arg->argn, arg->argv + arg->argn,
1646                     &l->ccp.cfg.fsm.timeout, &l->ccp.cfg.fsm.maxreq,
1647                     &l->ccp.cfg.fsm.maxtrm, DEF_FSMTRIES);
1648     break;
1649 
1650   case VAR_IPCPRETRY:
1651     return SetRetry(arg->argc - arg->argn, arg->argv + arg->argn,
1652                     &arg->bundle->ncp.ipcp.cfg.fsm.timeout,
1653                     &arg->bundle->ncp.ipcp.cfg.fsm.maxreq,
1654                     &arg->bundle->ncp.ipcp.cfg.fsm.maxtrm, DEF_FSMTRIES);
1655     break;
1656 
1657   case VAR_NBNS:
1658   case VAR_DNS:
1659     if (param == VAR_DNS)
1660       addr = arg->bundle->ncp.ipcp.cfg.ns.dns;
1661     else
1662       addr = arg->bundle->ncp.ipcp.cfg.ns.nbns;
1663 
1664     addr[0].s_addr = addr[1].s_addr = INADDR_ANY;
1665 
1666     if (arg->argc > arg->argn) {
1667       ParseAddr(&arg->bundle->ncp.ipcp, arg->argv[arg->argn],
1668                 addr, &dummyaddr, &dummyint);
1669       if (arg->argc > arg->argn+1)
1670         ParseAddr(&arg->bundle->ncp.ipcp, arg->argv[arg->argn + 1],
1671                   addr + 1, &dummyaddr, &dummyint);
1672 
1673       if (addr[1].s_addr == INADDR_ANY)
1674         addr[1].s_addr = addr[0].s_addr;
1675       if (addr[0].s_addr == INADDR_ANY)
1676         addr[0].s_addr = addr[1].s_addr;
1677     }
1678     break;
1679 
1680   case VAR_CALLBACK:
1681     cx->cfg.callback.opmask = 0;
1682     for (dummyint = arg->argn; dummyint < arg->argc; dummyint++) {
1683       if (!strcasecmp(arg->argv[dummyint], "auth"))
1684         cx->cfg.callback.opmask |= CALLBACK_BIT(CALLBACK_AUTH);
1685       else if (!strcasecmp(arg->argv[dummyint], "cbcp"))
1686         cx->cfg.callback.opmask |= CALLBACK_BIT(CALLBACK_CBCP);
1687       else if (!strcasecmp(arg->argv[dummyint], "e.164")) {
1688         if (dummyint == arg->argc - 1)
1689           log_Printf(LogWARN, "No E.164 arg (E.164 ignored) !\n");
1690         else {
1691           cx->cfg.callback.opmask |= CALLBACK_BIT(CALLBACK_E164);
1692           strncpy(cx->cfg.callback.msg, arg->argv[++dummyint],
1693                   sizeof cx->cfg.callback.msg - 1);
1694           cx->cfg.callback.msg[sizeof cx->cfg.callback.msg - 1] = '\0';
1695         }
1696       } else if (!strcasecmp(arg->argv[dummyint], "none"))
1697         cx->cfg.callback.opmask |= CALLBACK_BIT(CALLBACK_NONE);
1698       else
1699         return -1;
1700     }
1701     if (cx->cfg.callback.opmask == CALLBACK_BIT(CALLBACK_NONE))
1702       cx->cfg.callback.opmask = 0;
1703     break;
1704 
1705   case VAR_CBCP:
1706     cx->cfg.cbcp.delay = 0;
1707     *cx->cfg.cbcp.phone = '\0';
1708     cx->cfg.cbcp.fsmretry = DEF_FSMRETRY;
1709     if (arg->argc > arg->argn) {
1710       strncpy(cx->cfg.cbcp.phone, arg->argv[arg->argn],
1711               sizeof cx->cfg.cbcp.phone - 1);
1712       cx->cfg.cbcp.phone[sizeof cx->cfg.cbcp.phone - 1] = '\0';
1713       if (arg->argc > arg->argn + 1) {
1714         cx->cfg.cbcp.delay = atoi(arg->argv[arg->argn + 1]);
1715         if (arg->argc > arg->argn + 2) {
1716           long_val = atol(arg->argv[arg->argn + 2]);
1717           if (long_val < MIN_FSMRETRY)
1718             log_Printf(LogWARN, "%ld: Invalid CBCP FSM retry period - min %d\n",
1719                        long_val, MIN_FSMRETRY);
1720           else
1721             cx->cfg.cbcp.fsmretry = long_val;
1722         }
1723       }
1724     }
1725     break;
1726 
1727   case VAR_CHOKED:
1728     arg->bundle->cfg.choked.timeout = atoi(argp);
1729     if (arg->bundle->cfg.choked.timeout <= 0)
1730       arg->bundle->cfg.choked.timeout = CHOKED_TIMEOUT;
1731     break;
1732 
1733   case VAR_SENDPIPE:
1734     long_val = atol(argp);
1735     arg->bundle->ncp.ipcp.cfg.sendpipe = long_val;
1736     break;
1737 
1738   case VAR_RECVPIPE:
1739     long_val = atol(argp);
1740     arg->bundle->ncp.ipcp.cfg.recvpipe = long_val;
1741     break;
1742 
1743 #ifndef NORADIUS
1744   case VAR_RADIUS:
1745     if (!*argp)
1746       *arg->bundle->radius.cfg.file = '\0';
1747     else if (access(argp, R_OK)) {
1748       log_Printf(LogWARN, "%s: %s\n", argp, strerror(errno));
1749       return 1;
1750     } else {
1751       strncpy(arg->bundle->radius.cfg.file, argp,
1752               sizeof arg->bundle->radius.cfg.file - 1);
1753       arg->bundle->radius.cfg.file
1754         [sizeof arg->bundle->radius.cfg.file - 1] = '\0';
1755     }
1756     break;
1757 #endif
1758 
1759   case VAR_CD:
1760     if (*argp) {
1761       long_val = atol(argp);
1762       if (long_val < 0)
1763         long_val = 0;
1764       cx->physical->cfg.cd.delay = long_val;
1765       cx->physical->cfg.cd.required = argp[strlen(argp)-1] == '!';
1766     } else {
1767       cx->physical->cfg.cd.delay = DEF_CDDELAY;
1768       cx->physical->cfg.cd.required = 0;
1769     }
1770     break;
1771 
1772   case VAR_PARITY:
1773     if (arg->argc == arg->argn + 1)
1774       return physical_SetParity(arg->cx->physical, argp);
1775     else {
1776       err = "Parity value must be odd, even or none\n";
1777       log_Printf(LogWARN, err);
1778     }
1779     break;
1780 
1781   case VAR_CRTSCTS:
1782     if (strcasecmp(argp, "on") == 0)
1783       physical_SetRtsCts(arg->cx->physical, 1);
1784     else if (strcasecmp(argp, "off") == 0)
1785       physical_SetRtsCts(arg->cx->physical, 0);
1786     else {
1787       err = "RTS/CTS value must be on or off\n";
1788       log_Printf(LogWARN, err);
1789     }
1790     break;
1791 
1792   case VAR_URGENTPORTS:
1793     if (arg->argn == arg->argc)
1794       ipcp_ClearUrgentPorts(&arg->bundle->ncp.ipcp);
1795     else for (f = arg->argn; f < arg->argc; f++)
1796       if (*arg->argv[f] == '+')
1797         ipcp_AddUrgentPort(&arg->bundle->ncp.ipcp, atoi(arg->argv[f] + 1));
1798       else if (*arg->argv[f] == '-')
1799         ipcp_RemoveUrgentPort(&arg->bundle->ncp.ipcp, atoi(arg->argv[f] + 1));
1800       else {
1801         if (f == arg->argn)
1802           ipcp_ClearUrgentPorts(&arg->bundle->ncp.ipcp);
1803         ipcp_AddUrgentPort(&arg->bundle->ncp.ipcp, atoi(arg->argv[f]));
1804       }
1805     break;
1806   }
1807 
1808   return err ? 1 : 0;
1809 }
1810 
1811 static struct cmdtab const SetCommands[] = {
1812   {"accmap", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1813   "accmap value", "set accmap hex-value", (const void *)VAR_ACCMAP},
1814   {"authkey", "key", SetVariable, LOCAL_AUTH,
1815   "authentication key", "set authkey|key key", (const void *)VAR_AUTHKEY},
1816   {"authname", NULL, SetVariable, LOCAL_AUTH,
1817   "authentication name", "set authname name", (const void *)VAR_AUTHNAME},
1818   {"autoload", NULL, SetVariable, LOCAL_AUTH,
1819   "auto link [de]activation", "set autoload maxtime maxload mintime minload",
1820   (const void *)VAR_AUTOLOAD},
1821   {"bandwidth", NULL, mp_SetDatalinkBandwidth, LOCAL_AUTH | LOCAL_CX,
1822   "datalink bandwidth", "set bandwidth value"},
1823   {"callback", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1824   "callback control", "set callback [none|auth|cbcp|"
1825   "E.164 *|number[,number]...]...", (const void *)VAR_CALLBACK},
1826   {"cbcp", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1827   "CBCP control", "set cbcp [*|phone[,phone...] [delay [timeout]]]",
1828   (const void *)VAR_CBCP},
1829   {"ccpretry", "ccpretries", SetVariable, LOCAL_AUTH | LOCAL_CX_OPT,
1830    "CCP retries", "set ccpretry value [attempts]", (const void *)VAR_CCPRETRY},
1831   {"cd", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX, "Carrier delay requirement",
1832    "set cd value[!]", (const void *)VAR_CD},
1833   {"chapretry", "chapretries", SetVariable, LOCAL_AUTH | LOCAL_CX,
1834    "CHAP retries", "set chapretry value [attempts]",
1835    (const void *)VAR_CHAPRETRY},
1836   {"choked", NULL, SetVariable, LOCAL_AUTH,
1837   "choked timeout", "set choked [secs]", (const void *)VAR_CHOKED},
1838   {"ctsrts", "crtscts", SetVariable, LOCAL_AUTH | LOCAL_CX,
1839    "Use hardware flow control", "set ctsrts [on|off]",
1840    (const char *)VAR_CRTSCTS},
1841   {"deflate", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX_OPT,
1842   "deflate window sizes", "set deflate out-winsize in-winsize",
1843   (const void *) VAR_WINSIZE},
1844   {"device", "line", SetVariable, LOCAL_AUTH | LOCAL_CX,
1845   "physical device name", "set device|line device-name[,device-name]",
1846   (const void *) VAR_DEVICE},
1847   {"dial", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1848   "dialing script", "set dial chat-script", (const void *) VAR_DIAL},
1849   {"dns", NULL, SetVariable, LOCAL_AUTH, "Domain Name Server",
1850   "set dns pri-addr [sec-addr]", (const void *)VAR_DNS},
1851   {"enddisc", NULL, mp_SetEnddisc, LOCAL_AUTH,
1852   "Endpoint Discriminator", "set enddisc [IP|magic|label|psn value]"},
1853   {"escape", NULL, SetEscape, LOCAL_AUTH | LOCAL_CX,
1854   "escape characters", "set escape hex-digit ..."},
1855   {"filter", NULL, filter_Set, LOCAL_AUTH,
1856   "packet filters", "set filter alive|dial|in|out rule-no permit|deny "
1857   "[src_addr[/width]] [dst_addr[/width]] [tcp|udp|icmp|ospf|igmp "
1858   "[src [lt|eq|gt port]] [dst [lt|eq|gt port]] [estab] [syn] [finrst]]"},
1859   {"hangup", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1860   "hangup script", "set hangup chat-script", (const void *) VAR_HANGUP},
1861   {"ifaddr", NULL, SetInterfaceAddr, LOCAL_AUTH, "destination address",
1862   "set ifaddr [src-addr [dst-addr [netmask [trg-addr]]]]"},
1863   {"ipcpretry", "ipcpretries", SetVariable, LOCAL_AUTH, "IPCP retries",
1864    "set ipcpretry value [attempts]", (const void *)VAR_IPCPRETRY},
1865   {"lcpretry", "lcpretries", SetVariable, LOCAL_AUTH | LOCAL_CX, "LCP retries",
1866    "set lcpretry value [attempts]", (const void *)VAR_LCPRETRY},
1867   {"log", NULL, log_SetLevel, LOCAL_AUTH, "log level",
1868   "set log [local] [+|-]async|cbcp|ccp|chat|command|connect|debug|hdlc|id0|"
1869   "ipcp|lcp|lqm|phase|physical|sync|tcp/ip|timer|tun..."},
1870   {"login", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX,
1871   "login script", "set login chat-script", (const void *) VAR_LOGIN},
1872   {"lqrperiod", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX_OPT,
1873   "LQR period", "set lqrperiod value", (const void *)VAR_LQRPERIOD},
1874   {"mode", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX, "mode value",
1875   "set mode interactive|auto|ddial|background", (const void *)VAR_MODE},
1876   {"mrru", NULL, SetVariable, LOCAL_AUTH, "MRRU value",
1877   "set mrru value", (const void *)VAR_MRRU},
1878   {"mru", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX_OPT,
1879   "MRU value", "set mru value", (const void *)VAR_MRU},
1880   {"mtu", NULL, SetVariable, LOCAL_AUTH,
1881   "interface MTU value", "set mtu value", (const void *)VAR_MTU},
1882   {"nbns", NULL, SetVariable, LOCAL_AUTH, "NetBIOS Name Server",
1883   "set nbns pri-addr [sec-addr]", (const void *)VAR_NBNS},
1884   {"openmode", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX, "open mode",
1885   "set openmode active|passive [secs]", (const void *)VAR_OPENMODE},
1886   {"papretry", "papretries", SetVariable, LOCAL_AUTH | LOCAL_CX, "PAP retries",
1887    "set papretry value [attempts]", (const void *)VAR_PAPRETRY},
1888   {"parity", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX, "serial parity",
1889    "set parity [odd|even|none]", (const void *)VAR_PARITY},
1890   {"phone", NULL, SetVariable, LOCAL_AUTH | LOCAL_CX, "telephone number(s)",
1891   "set phone phone1[:phone2[...]]", (const void *)VAR_PHONE},
1892   {"proctitle", "title", SetProcTitle, LOCAL_AUTH,
1893   "Process title", "set proctitle [value]"},
1894 #ifndef NORADIUS
1895   {"radius", NULL, SetVariable, LOCAL_AUTH,
1896   "RADIUS Config", "set radius cfgfile", (const void *)VAR_RADIUS},
1897 #endif
1898   {"reconnect", NULL, datalink_SetReconnect, LOCAL_AUTH | LOCAL_CX,
1899   "Reconnect timeout", "set reconnect value ntries"},
1900   {"recvpipe", NULL, SetVariable, LOCAL_AUTH,
1901   "RECVPIPE value", "set recvpipe value", (const void *)VAR_RECVPIPE},
1902   {"redial", NULL, datalink_SetRedial, LOCAL_AUTH | LOCAL_CX,
1903   "Redial timeout", "set redial secs[+inc[-incmax]][.next] [attempts]"},
1904   {"sendpipe", NULL, SetVariable, LOCAL_AUTH,
1905   "SENDPIPE value", "set sendpipe value", (const void *)VAR_SENDPIPE},
1906   {"server", "socket", SetServer, LOCAL_AUTH,
1907   "server port", "set server|socket TcpPort|LocalName|none password [mask]"},
1908   {"speed", NULL, SetModemSpeed, LOCAL_AUTH | LOCAL_CX,
1909   "physical speed", "set speed value|sync"},
1910   {"stopped", NULL, SetStoppedTimeout, LOCAL_AUTH | LOCAL_CX,
1911   "STOPPED timeouts", "set stopped [LCPseconds [CCPseconds]]"},
1912   {"timeout", NULL, SetVariable, LOCAL_AUTH, "Idle timeout",
1913   "set timeout idletime", (const void *)VAR_IDLETIMEOUT},
1914   {"urgent", NULL, SetVariable, LOCAL_AUTH,
1915   "urgent ports", "set urgent [+|-]port...", (const void *)VAR_URGENTPORTS},
1916   {"vj", NULL, ipcp_vjset, LOCAL_AUTH,
1917   "vj values", "set vj slots|slotcomp [value]"},
1918   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
1919   "Display this message", "set help|? [command]", SetCommands},
1920   {NULL, NULL, NULL},
1921 };
1922 
1923 static int
1924 SetCommand(struct cmdargs const *arg)
1925 {
1926   if (arg->argc > arg->argn)
1927     FindExec(arg->bundle, SetCommands, arg->argc, arg->argn, arg->argv,
1928              arg->prompt, arg->cx);
1929   else if (arg->prompt)
1930     prompt_Printf(arg->prompt, "Use `set ?' to get a list or `set ? <var>' for"
1931 	    " syntax help.\n");
1932   else
1933     log_Printf(LogWARN, "set command must have arguments\n");
1934 
1935   return 0;
1936 }
1937 
1938 static int
1939 AddCommand(struct cmdargs const *arg)
1940 {
1941   struct in_addr dest, gateway, netmask;
1942   int gw, addrs;
1943 
1944   if (arg->argc != arg->argn+3 && arg->argc != arg->argn+2)
1945     return -1;
1946 
1947   addrs = 0;
1948   if (arg->argc == arg->argn+2) {
1949     if (!strcasecmp(arg->argv[arg->argn], "default"))
1950       dest.s_addr = netmask.s_addr = INADDR_ANY;
1951     else {
1952       int width;
1953 
1954       if (!ParseAddr(&arg->bundle->ncp.ipcp, arg->argv[arg->argn],
1955 	             &dest, &netmask, &width))
1956         return -1;
1957       if (!strncasecmp(arg->argv[arg->argn], "MYADDR", 6))
1958         addrs = ROUTE_DSTMYADDR;
1959       else if (!strncasecmp(arg->argv[arg->argn], "HISADDR", 7))
1960         addrs = ROUTE_DSTHISADDR;
1961     }
1962     gw = 1;
1963   } else {
1964     if (strcasecmp(arg->argv[arg->argn], "MYADDR") == 0) {
1965       addrs = ROUTE_DSTMYADDR;
1966       dest = arg->bundle->ncp.ipcp.my_ip;
1967     } else if (strcasecmp(arg->argv[arg->argn], "HISADDR") == 0) {
1968       addrs = ROUTE_DSTHISADDR;
1969       dest = arg->bundle->ncp.ipcp.peer_ip;
1970     } else
1971       dest = GetIpAddr(arg->argv[arg->argn]);
1972     netmask = GetIpAddr(arg->argv[arg->argn+1]);
1973     gw = 2;
1974   }
1975 
1976   if (strcasecmp(arg->argv[arg->argn+gw], "HISADDR") == 0) {
1977     gateway = arg->bundle->ncp.ipcp.peer_ip;
1978     addrs |= ROUTE_GWHISADDR;
1979   } else
1980     gateway = GetIpAddr(arg->argv[arg->argn+gw]);
1981 
1982   if (bundle_SetRoute(arg->bundle, RTM_ADD, dest, gateway, netmask,
1983                   arg->cmd->args ? 1 : 0, (addrs & ROUTE_GWHISADDR) ? 1 : 0)
1984       && addrs != ROUTE_STATIC)
1985     route_Add(&arg->bundle->ncp.ipcp.route, addrs, dest, netmask, gateway);
1986 
1987   return 0;
1988 }
1989 
1990 static int
1991 DeleteCommand(struct cmdargs const *arg)
1992 {
1993   struct in_addr dest, none;
1994   int addrs;
1995 
1996   if (arg->argc == arg->argn+1) {
1997     if(strcasecmp(arg->argv[arg->argn], "all") == 0) {
1998       route_IfDelete(arg->bundle, 0);
1999       route_DeleteAll(&arg->bundle->ncp.ipcp.route);
2000     } else {
2001       addrs = 0;
2002       if (strcasecmp(arg->argv[arg->argn], "MYADDR") == 0) {
2003         dest = arg->bundle->ncp.ipcp.my_ip;
2004         addrs = ROUTE_DSTMYADDR;
2005       } else if (strcasecmp(arg->argv[arg->argn], "HISADDR") == 0) {
2006         dest = arg->bundle->ncp.ipcp.peer_ip;
2007         addrs = ROUTE_DSTHISADDR;
2008       } else {
2009         dest = GetIpAddr(arg->argv[arg->argn]);
2010         if (dest.s_addr == INADDR_NONE) {
2011           log_Printf(LogWARN, "%s: Invalid IP address\n", arg->argv[arg->argn]);
2012           return -1;
2013         }
2014         addrs = ROUTE_STATIC;
2015       }
2016       none.s_addr = INADDR_ANY;
2017       bundle_SetRoute(arg->bundle, RTM_DELETE, dest, none, none,
2018                       arg->cmd->args ? 1 : 0, 0);
2019       route_Delete(&arg->bundle->ncp.ipcp.route, addrs, dest);
2020     }
2021   } else
2022     return -1;
2023 
2024   return 0;
2025 }
2026 
2027 #ifndef NONAT
2028 static int
2029 AliasEnable(struct cmdargs const *arg)
2030 {
2031   if (arg->argc == arg->argn+1) {
2032     if (strcasecmp(arg->argv[arg->argn], "yes") == 0) {
2033       if (!arg->bundle->NatEnabled) {
2034         if (arg->bundle->ncp.ipcp.fsm.state == ST_OPENED)
2035           PacketAliasSetAddress(arg->bundle->ncp.ipcp.my_ip);
2036         arg->bundle->NatEnabled = 1;
2037       }
2038       return 0;
2039     } else if (strcasecmp(arg->argv[arg->argn], "no") == 0) {
2040       arg->bundle->NatEnabled = 0;
2041       arg->bundle->cfg.opt &= ~OPT_IFACEALIAS;
2042       /* Don't iface_Clear() - there may be manually configured addresses */
2043       return 0;
2044     }
2045   }
2046 
2047   return -1;
2048 }
2049 
2050 
2051 static int
2052 AliasOption(struct cmdargs const *arg)
2053 {
2054   long param = (long)arg->cmd->args;
2055 
2056   if (arg->argc == arg->argn+1) {
2057     if (strcasecmp(arg->argv[arg->argn], "yes") == 0) {
2058       if (arg->bundle->NatEnabled) {
2059 	PacketAliasSetMode(param, param);
2060 	return 0;
2061       }
2062       log_Printf(LogWARN, "nat not enabled\n");
2063     } else if (strcmp(arg->argv[arg->argn], "no") == 0) {
2064       if (arg->bundle->NatEnabled) {
2065 	PacketAliasSetMode(0, param);
2066 	return 0;
2067       }
2068       log_Printf(LogWARN, "nat not enabled\n");
2069     }
2070   }
2071   return -1;
2072 }
2073 #endif /* #ifndef NONAT */
2074 
2075 static int
2076 LinkCommand(struct cmdargs const *arg)
2077 {
2078   if (arg->argc > arg->argn+1) {
2079     char namelist[LINE_LEN];
2080     struct datalink *cx;
2081     char *name;
2082     int result = 0;
2083 
2084     if (!strcmp(arg->argv[arg->argn], "*")) {
2085       struct datalink *dl;
2086 
2087       cx = arg->bundle->links;
2088       while (cx) {
2089         /* Watch it, the command could be a ``remove'' */
2090         dl = cx->next;
2091         FindExec(arg->bundle, Commands, arg->argc, arg->argn+1, arg->argv,
2092                  arg->prompt, cx);
2093         for (cx = arg->bundle->links; cx; cx = cx->next)
2094           if (cx == dl)
2095             break;		/* Pointer's still valid ! */
2096       }
2097     } else {
2098       strncpy(namelist, arg->argv[arg->argn], sizeof namelist - 1);
2099       namelist[sizeof namelist - 1] = '\0';
2100       for(name = strtok(namelist, ", "); name; name = strtok(NULL,", "))
2101         if (!bundle2datalink(arg->bundle, name)) {
2102           log_Printf(LogWARN, "link: %s: Invalid link name\n", name);
2103           return 1;
2104         }
2105 
2106       strncpy(namelist, arg->argv[arg->argn], sizeof namelist - 1);
2107       namelist[sizeof namelist - 1] = '\0';
2108       for(name = strtok(namelist, ", "); name; name = strtok(NULL,", ")) {
2109         cx = bundle2datalink(arg->bundle, name);
2110         if (cx)
2111           FindExec(arg->bundle, Commands, arg->argc, arg->argn+1, arg->argv,
2112                    arg->prompt, cx);
2113         else {
2114           log_Printf(LogWARN, "link: %s: Invalidated link name !\n", name);
2115           result++;
2116         }
2117       }
2118     }
2119     return result;
2120   }
2121 
2122   log_Printf(LogWARN, "Usage: %s\n", arg->cmd->syntax);
2123   return 2;
2124 }
2125 
2126 struct link *
2127 command_ChooseLink(struct cmdargs const *arg)
2128 {
2129   if (arg->cx)
2130     return &arg->cx->physical->link;
2131   else if (!arg->bundle->ncp.mp.cfg.mrru) {
2132     struct datalink *dl = bundle2datalink(arg->bundle, NULL);
2133     if (dl)
2134       return &dl->physical->link;
2135   }
2136   return &arg->bundle->ncp.mp.link;
2137 }
2138 
2139 static const char *
2140 ident_cmd(const char *cmd, unsigned *keep, unsigned *add)
2141 {
2142   const char *result;
2143 
2144   switch (*cmd) {
2145     case 'A':
2146     case 'a':
2147       result = "accept";
2148       *keep = NEG_MYMASK;
2149       *add = NEG_ACCEPTED;
2150       break;
2151     case 'D':
2152     case 'd':
2153       switch (cmd[1]) {
2154         case 'E':
2155         case 'e':
2156           result = "deny";
2157           *keep = NEG_MYMASK;
2158           *add = 0;
2159           break;
2160         case 'I':
2161         case 'i':
2162           result = "disable";
2163           *keep = NEG_HISMASK;
2164           *add = 0;
2165           break;
2166         default:
2167           return NULL;
2168       }
2169       break;
2170     case 'E':
2171     case 'e':
2172       result = "enable";
2173       *keep = NEG_HISMASK;
2174       *add = NEG_ENABLED;
2175       break;
2176     default:
2177       return NULL;
2178   }
2179 
2180   return result;
2181 }
2182 
2183 static int
2184 OptSet(struct cmdargs const *arg)
2185 {
2186   int bit = (int)(long)arg->cmd->args;
2187   const char *cmd;
2188   unsigned keep;			/* Keep these bits */
2189   unsigned add;				/* Add these bits */
2190 
2191   if ((cmd = ident_cmd(arg->argv[arg->argn-2], &keep, &add)) == NULL)
2192     return 1;
2193 
2194   if (add)
2195     arg->bundle->cfg.opt |= bit;
2196   else
2197     arg->bundle->cfg.opt &= ~bit;
2198   return 0;
2199 }
2200 
2201 static int
2202 IfaceAliasOptSet(struct cmdargs const *arg)
2203 {
2204   unsigned save = arg->bundle->cfg.opt;
2205   int result = OptSet(arg);
2206 
2207   if (result == 0)
2208     if (Enabled(arg->bundle, OPT_IFACEALIAS) && !arg->bundle->NatEnabled) {
2209       arg->bundle->cfg.opt = save;
2210       log_Printf(LogWARN, "Cannot enable iface-alias without NAT\n");
2211       result = 2;
2212     }
2213 
2214   return result;
2215 }
2216 
2217 static int
2218 NegotiateSet(struct cmdargs const *arg)
2219 {
2220   long param = (long)arg->cmd->args;
2221   struct link *l = command_ChooseLink(arg);	/* LOCAL_CX_OPT uses this */
2222   struct datalink *cx = arg->cx;	/* LOCAL_CX uses this */
2223   const char *cmd;
2224   unsigned keep;			/* Keep these bits */
2225   unsigned add;				/* Add these bits */
2226 
2227   if ((cmd = ident_cmd(arg->argv[arg->argn-2], &keep, &add)) == NULL)
2228     return 1;
2229 
2230   if ((arg->cmd->lauth & LOCAL_CX) && !cx) {
2231     log_Printf(LogWARN, "%s %s: No context (use the `link' command)\n",
2232               cmd, arg->cmd->name);
2233     return 2;
2234   } else if (cx && !(arg->cmd->lauth & (LOCAL_CX|LOCAL_CX_OPT))) {
2235     log_Printf(LogWARN, "%s %s: Redundant context (%s) ignored\n",
2236               cmd, arg->cmd->name, cx->name);
2237     cx = NULL;
2238   }
2239 
2240   switch (param) {
2241     case NEG_ACFCOMP:
2242       cx->physical->link.lcp.cfg.acfcomp &= keep;
2243       cx->physical->link.lcp.cfg.acfcomp |= add;
2244       break;
2245     case NEG_CHAP05:
2246       cx->physical->link.lcp.cfg.chap05 &= keep;
2247       cx->physical->link.lcp.cfg.chap05 |= add;
2248       break;
2249 #ifdef HAVE_DES
2250     case NEG_CHAP80:
2251       cx->physical->link.lcp.cfg.chap80nt &= keep;
2252       cx->physical->link.lcp.cfg.chap80nt |= add;
2253       break;
2254     case NEG_CHAP80LM:
2255       cx->physical->link.lcp.cfg.chap80lm &= keep;
2256       cx->physical->link.lcp.cfg.chap80lm |= add;
2257       break;
2258 #endif
2259     case NEG_DEFLATE:
2260       l->ccp.cfg.neg[CCP_NEG_DEFLATE] &= keep;
2261       l->ccp.cfg.neg[CCP_NEG_DEFLATE] |= add;
2262       break;
2263     case NEG_DNS:
2264       arg->bundle->ncp.ipcp.cfg.ns.dns_neg &= keep;
2265       arg->bundle->ncp.ipcp.cfg.ns.dns_neg |= add;
2266       break;
2267     case NEG_ENDDISC:
2268       arg->bundle->ncp.mp.cfg.negenddisc &= keep;
2269       arg->bundle->ncp.mp.cfg.negenddisc |= add;
2270       break;
2271     case NEG_LQR:
2272       cx->physical->link.lcp.cfg.lqr &= keep;
2273       cx->physical->link.lcp.cfg.lqr |= add;
2274       break;
2275     case NEG_PAP:
2276       cx->physical->link.lcp.cfg.pap &= keep;
2277       cx->physical->link.lcp.cfg.pap |= add;
2278       break;
2279     case NEG_PPPDDEFLATE:
2280       l->ccp.cfg.neg[CCP_NEG_DEFLATE24] &= keep;
2281       l->ccp.cfg.neg[CCP_NEG_DEFLATE24] |= add;
2282       break;
2283     case NEG_PRED1:
2284       l->ccp.cfg.neg[CCP_NEG_PRED1] &= keep;
2285       l->ccp.cfg.neg[CCP_NEG_PRED1] |= add;
2286       break;
2287     case NEG_PROTOCOMP:
2288       cx->physical->link.lcp.cfg.protocomp &= keep;
2289       cx->physical->link.lcp.cfg.protocomp |= add;
2290       break;
2291     case NEG_SHORTSEQ:
2292       switch (bundle_Phase(arg->bundle)) {
2293         case PHASE_DEAD:
2294           break;
2295         case PHASE_ESTABLISH:
2296           /* Make sure none of our links are DATALINK_LCP or greater */
2297           if (bundle_HighestState(arg->bundle) >= DATALINK_LCP) {
2298             log_Printf(LogWARN, "shortseq: Only changable before"
2299                        " LCP negotiations\n");
2300             return 1;
2301           }
2302           break;
2303         default:
2304           log_Printf(LogWARN, "shortseq: Only changable at phase"
2305                      " DEAD/ESTABLISH\n");
2306           return 1;
2307       }
2308       arg->bundle->ncp.mp.cfg.shortseq &= keep;
2309       arg->bundle->ncp.mp.cfg.shortseq |= add;
2310       break;
2311     case NEG_VJCOMP:
2312       arg->bundle->ncp.ipcp.cfg.vj.neg &= keep;
2313       arg->bundle->ncp.ipcp.cfg.vj.neg |= add;
2314       break;
2315   }
2316 
2317   return 0;
2318 }
2319 
2320 static struct cmdtab const NegotiateCommands[] = {
2321   {"idcheck", NULL, OptSet, LOCAL_AUTH, "Check FSM reply ids",
2322   "disable|enable", (const void *)OPT_IDCHECK},
2323   {"iface-alias", NULL, IfaceAliasOptSet, LOCAL_AUTH,
2324    "retain interface addresses", "disable|enable",
2325    (const void *)OPT_IFACEALIAS},
2326   {"keep-session", NULL, OptSet, LOCAL_AUTH, "Retain device session leader",
2327   "disable|enable", (const void *)OPT_KEEPSESSION},
2328   {"loopback", NULL, OptSet, LOCAL_AUTH, "Loop packets for local iface",
2329   "disable|enable", (const void *)OPT_LOOPBACK},
2330   {"passwdauth", NULL, OptSet, LOCAL_AUTH, "Use passwd file",
2331   "disable|enable", (const void *)OPT_PASSWDAUTH},
2332   {"proxy", NULL, OptSet, LOCAL_AUTH, "Create a proxy ARP entry",
2333   "disable|enable", (const void *)OPT_PROXY},
2334   {"proxyall", NULL, OptSet, LOCAL_AUTH, "Proxy ARP for all remote hosts",
2335   "disable|enable", (const void *)OPT_PROXYALL},
2336   {"sroutes", NULL, OptSet, LOCAL_AUTH, "Use sticky routes",
2337   "disable|enable", (const void *)OPT_SROUTES},
2338   {"throughput", NULL, OptSet, LOCAL_AUTH, "Rolling throughput",
2339   "disable|enable", (const void *)OPT_THROUGHPUT},
2340   {"utmp", NULL, OptSet, LOCAL_AUTH, "Log connections in utmp",
2341   "disable|enable", (const void *)OPT_UTMP},
2342 
2343 #define OPT_MAX 10	/* accept/deny allowed below and not above */
2344 
2345   {"acfcomp", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2346   "Address & Control field compression", "accept|deny|disable|enable",
2347   (const void *)NEG_ACFCOMP},
2348   {"chap", "chap05", NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2349   "Challenge Handshake Authentication Protocol", "accept|deny|disable|enable",
2350   (const void *)NEG_CHAP05},
2351 #ifdef HAVE_DES
2352   {"mschap", "chap80nt", NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2353   "Microsoft (NT) CHAP", "accept|deny|disable|enable",
2354   (const void *)NEG_CHAP80},
2355   {"LANMan", "chap80lm", NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2356   "Microsoft (NT) CHAP", "accept|deny|disable|enable",
2357   (const void *)NEG_CHAP80LM},
2358 #endif
2359   {"deflate", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX_OPT,
2360   "Deflate compression", "accept|deny|disable|enable",
2361   (const void *)NEG_DEFLATE},
2362   {"deflate24", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX_OPT,
2363   "Deflate (type 24) compression", "accept|deny|disable|enable",
2364   (const void *)NEG_PPPDDEFLATE},
2365   {"dns", NULL, NegotiateSet, LOCAL_AUTH,
2366   "DNS specification", "accept|deny|disable|enable", (const void *)NEG_DNS},
2367   {"enddisc", NULL, NegotiateSet, LOCAL_AUTH, "ENDDISC negotiation",
2368   "accept|deny|disable|enable", (const void *)NEG_ENDDISC},
2369   {"lqr", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2370   "Link Quality Reports", "accept|deny|disable|enable",
2371   (const void *)NEG_LQR},
2372   {"pap", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2373   "Password Authentication protocol", "accept|deny|disable|enable",
2374   (const void *)NEG_PAP},
2375   {"pred1", "predictor1", NegotiateSet, LOCAL_AUTH | LOCAL_CX_OPT,
2376   "Predictor 1 compression", "accept|deny|disable|enable",
2377   (const void *)NEG_PRED1},
2378   {"protocomp", NULL, NegotiateSet, LOCAL_AUTH | LOCAL_CX,
2379   "Protocol field compression", "accept|deny|disable|enable",
2380   (const void *)NEG_PROTOCOMP},
2381   {"shortseq", NULL, NegotiateSet, LOCAL_AUTH,
2382   "MP Short Sequence Numbers", "accept|deny|disable|enable",
2383   (const void *)NEG_SHORTSEQ},
2384   {"vjcomp", NULL, NegotiateSet, LOCAL_AUTH,
2385   "Van Jacobson header compression", "accept|deny|disable|enable",
2386   (const void *)NEG_VJCOMP},
2387   {"help", "?", HelpCommand, LOCAL_AUTH | LOCAL_NO_AUTH,
2388   "Display this message", "accept|deny|disable|enable help|? [value]",
2389   NegotiateCommands},
2390   {NULL, NULL, NULL},
2391 };
2392 
2393 static int
2394 NegotiateCommand(struct cmdargs const *arg)
2395 {
2396   if (arg->argc > arg->argn) {
2397     char const *argv[3];
2398     unsigned keep, add;
2399     int n;
2400 
2401     if ((argv[0] = ident_cmd(arg->argv[arg->argn-1], &keep, &add)) == NULL)
2402       return -1;
2403     argv[2] = NULL;
2404 
2405     for (n = arg->argn; n < arg->argc; n++) {
2406       argv[1] = arg->argv[n];
2407       FindExec(arg->bundle, NegotiateCommands + (keep == NEG_HISMASK ?
2408                0 : OPT_MAX), 2, 1, argv, arg->prompt, arg->cx);
2409     }
2410   } else if (arg->prompt)
2411     prompt_Printf(arg->prompt, "Use `%s ?' to get a list.\n",
2412 	    arg->argv[arg->argn-1]);
2413   else
2414     log_Printf(LogWARN, "%s command must have arguments\n",
2415               arg->argv[arg->argn] );
2416 
2417   return 0;
2418 }
2419 
2420 const char *
2421 command_ShowNegval(unsigned val)
2422 {
2423   switch (val&3) {
2424     case 1: return "disabled & accepted";
2425     case 2: return "enabled & denied";
2426     case 3: return "enabled & accepted";
2427   }
2428   return "disabled & denied";
2429 }
2430 
2431 static int
2432 ClearCommand(struct cmdargs const *arg)
2433 {
2434   struct pppThroughput *t;
2435   struct datalink *cx;
2436   int i, clear_type;
2437 
2438   if (arg->argc < arg->argn + 1)
2439     return -1;
2440 
2441   if (strcasecmp(arg->argv[arg->argn], "physical") == 0) {
2442     cx = arg->cx;
2443     if (!cx)
2444       cx = bundle2datalink(arg->bundle, NULL);
2445     if (!cx) {
2446       log_Printf(LogWARN, "A link must be specified for ``clear physical''\n");
2447       return 1;
2448     }
2449     t = &cx->physical->link.throughput;
2450   } else if (strcasecmp(arg->argv[arg->argn], "ipcp") == 0)
2451     t = &arg->bundle->ncp.ipcp.throughput;
2452   else
2453     return -1;
2454 
2455   if (arg->argc > arg->argn + 1) {
2456     clear_type = 0;
2457     for (i = arg->argn + 1; i < arg->argc; i++)
2458       if (strcasecmp(arg->argv[i], "overall") == 0)
2459         clear_type |= THROUGHPUT_OVERALL;
2460       else if (strcasecmp(arg->argv[i], "current") == 0)
2461         clear_type |= THROUGHPUT_CURRENT;
2462       else if (strcasecmp(arg->argv[i], "peak") == 0)
2463         clear_type |= THROUGHPUT_PEAK;
2464       else
2465         return -1;
2466   } else
2467     clear_type = THROUGHPUT_ALL;
2468 
2469   throughput_clear(t, clear_type, arg->prompt);
2470   return 0;
2471 }
2472 
2473 static int
2474 RunListCommand(struct cmdargs const *arg)
2475 {
2476   const char *cmd = arg->argc ? arg->argv[arg->argc - 1] : "???";
2477 
2478   if (arg->argc > arg->argn)
2479     FindExec(arg->bundle, arg->cmd->args, arg->argc, arg->argn, arg->argv,
2480              arg->prompt, arg->cx);
2481   else if (arg->prompt)
2482     prompt_Printf(arg->prompt, "Use `%s help' to get a list or `%s help"
2483                   " <option>' for syntax help.\n", cmd, cmd);
2484   else
2485     log_Printf(LogWARN, "%s command must have arguments\n", cmd);
2486 
2487   return 0;
2488 }
2489 
2490 static int
2491 IfaceAddCommand(struct cmdargs const *arg)
2492 {
2493   int bits, n, how;
2494   struct in_addr ifa, mask, brd;
2495 
2496   if (arg->argc == arg->argn + 1) {
2497     if (!ParseAddr(NULL, arg->argv[arg->argn], &ifa, NULL, NULL))
2498       return -1;
2499     mask.s_addr = brd.s_addr = INADDR_BROADCAST;
2500   } else {
2501     if (arg->argc == arg->argn + 2) {
2502       if (!ParseAddr(NULL, arg->argv[arg->argn], &ifa, &mask, &bits))
2503         return -1;
2504       n = 1;
2505     } else if (arg->argc == arg->argn + 3) {
2506       if (!ParseAddr(NULL, arg->argv[arg->argn], &ifa, NULL, NULL))
2507         return -1;
2508       if (!ParseAddr(NULL, arg->argv[arg->argn + 1], &mask, NULL, NULL))
2509         return -1;
2510       n = 2;
2511     } else
2512       return -1;
2513 
2514     if (!ParseAddr(NULL, arg->argv[arg->argn + n], &brd, NULL, NULL))
2515       return -1;
2516   }
2517 
2518   how = IFACE_ADD_LAST;
2519   if (arg->cmd->args)
2520     how |= IFACE_FORCE_ADD;
2521 
2522   return !iface_inAdd(arg->bundle->iface, ifa, mask, brd, how);
2523 }
2524 
2525 static int
2526 IfaceDeleteCommand(struct cmdargs const *arg)
2527 {
2528   struct in_addr ifa;
2529   int ok;
2530 
2531   if (arg->argc != arg->argn + 1)
2532     return -1;
2533 
2534   if (!ParseAddr(NULL, arg->argv[arg->argn], &ifa, NULL, NULL))
2535     return -1;
2536 
2537   if (arg->bundle->ncp.ipcp.fsm.state == ST_OPENED &&
2538       arg->bundle->ncp.ipcp.my_ip.s_addr == ifa.s_addr) {
2539     log_Printf(LogWARN, "%s: Cannot remove active interface address\n",
2540                inet_ntoa(ifa));
2541     return 1;
2542   }
2543 
2544   ok = iface_inDelete(arg->bundle->iface, ifa);
2545   if (!ok) {
2546     if (arg->cmd->args)
2547       ok = 1;
2548     else if (arg->prompt)
2549       prompt_Printf(arg->prompt, "%s: No such address\n", inet_ntoa(ifa));
2550     else
2551       log_Printf(LogWARN, "%s: No such address\n", inet_ntoa(ifa));
2552   }
2553 
2554   return !ok;
2555 }
2556 
2557 static int
2558 IfaceClearCommand(struct cmdargs const *arg)
2559 {
2560   int how;
2561 
2562   if (arg->argc != arg->argn)
2563     return -1;
2564 
2565   how = arg->bundle->ncp.ipcp.fsm.state == ST_OPENED ||
2566         arg->bundle->phys_type.all & PHYS_AUTO ?
2567         IFACE_CLEAR_ALIASES : IFACE_CLEAR_ALL;
2568   iface_Clear(arg->bundle->iface, how);
2569 
2570   return 0;
2571 }
2572 
2573 static int
2574 SetProcTitle(struct cmdargs const *arg)
2575 {
2576   static char title[LINE_LEN];
2577   char *argv[MAXARGS], *ptr;
2578   int len, remaining, f, argc = arg->argc - arg->argn;
2579 
2580   if (arg->argc == arg->argn) {
2581     arg->bundle->argv[0] = arg->bundle->argv0;
2582     arg->bundle->argv[1] = arg->bundle->argv1;
2583     return 0;
2584   }
2585 
2586   if (argc >= sizeof argv / sizeof argv[0]) {
2587     argc = sizeof argv / sizeof argv[0] - 1;
2588     log_Printf(LogWARN, "Truncating proc title to %d args\n", argc);
2589   }
2590   command_Expand(argv, argc, arg->argv + arg->argn, arg->bundle, 1, getpid());
2591 
2592   ptr = title;
2593   remaining = sizeof title - 1;
2594   for (f = 0; f < argc && remaining; f++) {
2595     if (f) {
2596       *ptr++ = ' ';
2597       remaining--;
2598     }
2599     len = strlen(argv[f]);
2600     if (len > remaining)
2601       len = remaining;
2602     memcpy(ptr, argv[f], len);
2603     remaining -= len;
2604     ptr += len;
2605   }
2606   *ptr = '\0';
2607 
2608   arg->bundle->argv[0] = title;
2609   arg->bundle->argv[1] = NULL;
2610 
2611   return 0;
2612 }
2613