xref: /titanic_54/usr/src/lib/libiscsit/common/libiscsit.c (revision 5de03f841f1da359071f4d303d88b50ec0e2093a)
1a6d42e7dSPeter Dunlap /*
2a6d42e7dSPeter Dunlap  * CDDL HEADER START
3a6d42e7dSPeter Dunlap  *
4a6d42e7dSPeter Dunlap  * The contents of this file are subject to the terms of the
5a6d42e7dSPeter Dunlap  * Common Development and Distribution License (the "License").
6a6d42e7dSPeter Dunlap  * You may not use this file except in compliance with the License.
7a6d42e7dSPeter Dunlap  *
8a6d42e7dSPeter Dunlap  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
9a6d42e7dSPeter Dunlap  * or http://www.opensolaris.org/os/licensing.
10a6d42e7dSPeter Dunlap  * See the License for the specific language governing permissions
11a6d42e7dSPeter Dunlap  * and limitations under the License.
12a6d42e7dSPeter Dunlap  *
13a6d42e7dSPeter Dunlap  * When distributing Covered Code, include this CDDL HEADER in each
14a6d42e7dSPeter Dunlap  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
15a6d42e7dSPeter Dunlap  * If applicable, add the following below this CDDL HEADER, with the
16a6d42e7dSPeter Dunlap  * fields enclosed by brackets "[]" replaced with your own identifying
17a6d42e7dSPeter Dunlap  * information: Portions Copyright [yyyy] [name of copyright owner]
18a6d42e7dSPeter Dunlap  *
19a6d42e7dSPeter Dunlap  * CDDL HEADER END
20a6d42e7dSPeter Dunlap  */
21a6d42e7dSPeter Dunlap /*
22836fc322SSam Cramer  * Copyright 2009 Sun Microsystems, Inc.  All rights reserved.
23a6d42e7dSPeter Dunlap  * Use is subject to license terms.
24a6d42e7dSPeter Dunlap  */
25a6d42e7dSPeter Dunlap 
26a6d42e7dSPeter Dunlap #include <sys/types.h>
27a6d42e7dSPeter Dunlap #include <sys/stat.h>
28a6d42e7dSPeter Dunlap #include <ctype.h>
29a6d42e7dSPeter Dunlap #include <fcntl.h>
30a6d42e7dSPeter Dunlap #include <uuid/uuid.h>
31a6d42e7dSPeter Dunlap #include <errno.h>
32a6d42e7dSPeter Dunlap #include <unistd.h>
33a6d42e7dSPeter Dunlap #include <strings.h>
34a6d42e7dSPeter Dunlap #include <libintl.h>
35*5de03f84SSue Gleeson #include <libscf.h>
36a6d42e7dSPeter Dunlap 
37a6d42e7dSPeter Dunlap #include <libstmf.h>
38a6d42e7dSPeter Dunlap #include <libiscsit.h>
39a6d42e7dSPeter Dunlap #include <sys/iscsi_protocol.h>
40a6d42e7dSPeter Dunlap #include <sys/iscsit/isns_protocol.h>
41a6d42e7dSPeter Dunlap 
42a6d42e7dSPeter Dunlap /* From iscsitgtd */
43a6d42e7dSPeter Dunlap #define	TARGET_NAME_VERS	2
44a6d42e7dSPeter Dunlap 
45a6d42e7dSPeter Dunlap /* this should be defined someplace central... */
46a6d42e7dSPeter Dunlap #define	ISCSI_NAME_LEN_MAX	223
47a6d42e7dSPeter Dunlap 
48a6d42e7dSPeter Dunlap /* max length of a base64 encoded secret */
49a6d42e7dSPeter Dunlap #define	MAX_BASE64_LEN		341
50a6d42e7dSPeter Dunlap 
51a6d42e7dSPeter Dunlap /* Default RADIUS server port */
52a6d42e7dSPeter Dunlap #define	DEFAULT_RADIUS_PORT	1812
53a6d42e7dSPeter Dunlap 
54*5de03f84SSue Gleeson /* The iscsit SMF service FMRI */
55*5de03f84SSue Gleeson #define	ISCSIT_FMRI		"svc:/network/iscsi/target:default"
56a6d42e7dSPeter Dunlap /*
57a6d42e7dSPeter Dunlap  * The kernel reserves target portal group tag value 1 as the default.
58a6d42e7dSPeter Dunlap  */
59a6d42e7dSPeter Dunlap #define	ISCSIT_DEFAULT_TPGT	1
60a6d42e7dSPeter Dunlap #define	MAXTAG			0xffff
61a6d42e7dSPeter Dunlap 
62a6d42e7dSPeter Dunlap /* helper for property list validation */
63a6d42e7dSPeter Dunlap #define	PROPERR(lst, key, value) { \
64a6d42e7dSPeter Dunlap 	if (lst) { \
65a6d42e7dSPeter Dunlap 		(void) nvlist_add_string(lst, key, value); \
66a6d42e7dSPeter Dunlap 	} \
67a6d42e7dSPeter Dunlap }
68a6d42e7dSPeter Dunlap 
69a6d42e7dSPeter Dunlap /* helper function declarations */
70a6d42e7dSPeter Dunlap static int
71a6d42e7dSPeter Dunlap it_iqn_generate(char *iqn_buf, int iqn_buf_len, char *opt_iqn_suffix);
72a6d42e7dSPeter Dunlap 
73a6d42e7dSPeter Dunlap static int
74a6d42e7dSPeter Dunlap it_val_pass(char *name, char *val, nvlist_t *e);
75a6d42e7dSPeter Dunlap 
76a6d42e7dSPeter Dunlap /* consider making validate funcs public */
77a6d42e7dSPeter Dunlap static int
78a6d42e7dSPeter Dunlap it_validate_configprops(nvlist_t *nvl, nvlist_t *errs);
79a6d42e7dSPeter Dunlap 
80a6d42e7dSPeter Dunlap static int
81a6d42e7dSPeter Dunlap it_validate_tgtprops(nvlist_t *nvl, nvlist_t *errs);
82a6d42e7dSPeter Dunlap 
83a6d42e7dSPeter Dunlap static int
84a6d42e7dSPeter Dunlap it_validate_iniprops(nvlist_t *nvl, nvlist_t *errs);
85a6d42e7dSPeter Dunlap 
86*5de03f84SSue Gleeson static boolean_t
87*5de03f84SSue Gleeson is_iscsit_enabled(void);
88*5de03f84SSue Gleeson 
89a6d42e7dSPeter Dunlap /*
90a6d42e7dSPeter Dunlap  * Function:  it_config_load()
91a6d42e7dSPeter Dunlap  *
92a6d42e7dSPeter Dunlap  * Allocate and create an it_config_t structure representing the
93a6d42e7dSPeter Dunlap  * current iSCSI configuration.  This structure is compiled using
94a6d42e7dSPeter Dunlap  * the 'provider' data returned by stmfGetProviderData().  If there
95a6d42e7dSPeter Dunlap  * is no provider data associated with iscsit, the it_config_t
96a6d42e7dSPeter Dunlap  * structure will be set to a default configuration.
97a6d42e7dSPeter Dunlap  *
98a6d42e7dSPeter Dunlap  * Parameters:
99a6d42e7dSPeter Dunlap  *    cfg	A C representation of the current iSCSI configuration
100a6d42e7dSPeter Dunlap  *
101a6d42e7dSPeter Dunlap  * Return Values:
102a6d42e7dSPeter Dunlap  *    0		Success
103a6d42e7dSPeter Dunlap  *    ENOMEM	Could not allocate resources
104a6d42e7dSPeter Dunlap  *    EINVAL	Invalid parameter
105a6d42e7dSPeter Dunlap  */
106a6d42e7dSPeter Dunlap int
107a6d42e7dSPeter Dunlap it_config_load(it_config_t **cfg)
108a6d42e7dSPeter Dunlap {
109a6d42e7dSPeter Dunlap 	int		ret = 0;
110a6d42e7dSPeter Dunlap 	nvlist_t	*cfg_nv = NULL;
111a6d42e7dSPeter Dunlap 	it_config_t	*newcfg = NULL;
112a6d42e7dSPeter Dunlap 	uint64_t	stmf_token = 0;
113a6d42e7dSPeter Dunlap 
114a6d42e7dSPeter Dunlap 	if (!cfg) {
115a6d42e7dSPeter Dunlap 		return (EINVAL);
116a6d42e7dSPeter Dunlap 	}
117a6d42e7dSPeter Dunlap 
118a6d42e7dSPeter Dunlap 	*cfg = NULL;
119a6d42e7dSPeter Dunlap 
120a6d42e7dSPeter Dunlap 	ret = stmfGetProviderDataProt(ISCSIT_MODNAME, &cfg_nv,
121a6d42e7dSPeter Dunlap 	    STMF_PORT_PROVIDER_TYPE, &stmf_token);
122a6d42e7dSPeter Dunlap 
123a6d42e7dSPeter Dunlap 	if ((ret == STMF_STATUS_SUCCESS) ||
124a6d42e7dSPeter Dunlap 	    (ret == STMF_ERROR_NOT_FOUND)) {
125a6d42e7dSPeter Dunlap 		/*
126a6d42e7dSPeter Dunlap 		 * If not initialized yet, return empty it_config_t
127a6d42e7dSPeter Dunlap 		 * Else, convert nvlist to struct
128a6d42e7dSPeter Dunlap 		 */
129a6d42e7dSPeter Dunlap 		ret = it_nv_to_config(cfg_nv, &newcfg);
130a6d42e7dSPeter Dunlap 	}
131a6d42e7dSPeter Dunlap 
132a6d42e7dSPeter Dunlap 	if (ret == 0) {
133a6d42e7dSPeter Dunlap 		newcfg->stmf_token = stmf_token;
134a6d42e7dSPeter Dunlap 		*cfg = newcfg;
135a6d42e7dSPeter Dunlap 	}
136a6d42e7dSPeter Dunlap 
1373c006dd5SCharles Ting 	if (cfg_nv) {
1383c006dd5SCharles Ting 		nvlist_free(cfg_nv);
1393c006dd5SCharles Ting 	}
1403c006dd5SCharles Ting 
141a6d42e7dSPeter Dunlap 	return (ret);
142a6d42e7dSPeter Dunlap }
143a6d42e7dSPeter Dunlap 
144a6d42e7dSPeter Dunlap /*
145a6d42e7dSPeter Dunlap  * Function:  it_config_commit()
146a6d42e7dSPeter Dunlap  *
147a6d42e7dSPeter Dunlap  * Informs the iscsit service that the configuration has changed and
148a6d42e7dSPeter Dunlap  * commits the new configuration to persistent store by calling
149a6d42e7dSPeter Dunlap  * stmfSetProviderData.  This function can be called multiple times
150a6d42e7dSPeter Dunlap  * during a configuration sequence if necessary.
151a6d42e7dSPeter Dunlap  *
152a6d42e7dSPeter Dunlap  * Parameters:
153a6d42e7dSPeter Dunlap  *    cfg	A C representation of the current iSCSI configuration
154a6d42e7dSPeter Dunlap  *
155a6d42e7dSPeter Dunlap  * Return Values:
156a6d42e7dSPeter Dunlap  *    0		Success
157a6d42e7dSPeter Dunlap  *    ENOMEM	Could not allocate resources
158a6d42e7dSPeter Dunlap  *    EINVAL	Invalid it_config_t structure
159a6d42e7dSPeter Dunlap  *    TBD	ioctl() failed
160a6d42e7dSPeter Dunlap  *    TBD	could not save config to STMF
161a6d42e7dSPeter Dunlap  */
162a6d42e7dSPeter Dunlap int
163a6d42e7dSPeter Dunlap it_config_commit(it_config_t *cfg)
164a6d42e7dSPeter Dunlap {
165a6d42e7dSPeter Dunlap 	int			ret;
166a6d42e7dSPeter Dunlap 	nvlist_t		*cfgnv = NULL;
167a6d42e7dSPeter Dunlap 	char			*packednv = NULL;
168a6d42e7dSPeter Dunlap 	int			iscsit_fd = -1;
169a6d42e7dSPeter Dunlap 	size_t			pnv_size;
170a6d42e7dSPeter Dunlap 	iscsit_ioc_set_config_t	iop;
171a6d42e7dSPeter Dunlap 	it_tgt_t		*tgtp;
172a6d42e7dSPeter Dunlap 
173a6d42e7dSPeter Dunlap 	if (!cfg) {
174a6d42e7dSPeter Dunlap 		return (EINVAL);
175a6d42e7dSPeter Dunlap 	}
176a6d42e7dSPeter Dunlap 
177a6d42e7dSPeter Dunlap 	ret = it_config_to_nv(cfg, &cfgnv);
178a6d42e7dSPeter Dunlap 	if (ret == 0) {
179a6d42e7dSPeter Dunlap 		ret = nvlist_size(cfgnv, &pnv_size, NV_ENCODE_NATIVE);
180a6d42e7dSPeter Dunlap 	}
181a6d42e7dSPeter Dunlap 
182*5de03f84SSue Gleeson 	/*
183*5de03f84SSue Gleeson 	 * If the iscsit service is enabled, send the changes to the
184*5de03f84SSue Gleeson 	 * kernel first.  Kernel will be the final sanity check before
185*5de03f84SSue Gleeson 	 * the config is saved persistently.
186*5de03f84SSue Gleeson 	 *
187*5de03f84SSue Gleeson 	 * This somewhat leaves open the simultaneous-change hole
188*5de03f84SSue Gleeson 	 * that STMF was trying to solve, but is a better sanity
189*5de03f84SSue Gleeson 	 * check and allows for graceful handling of target renames.
190*5de03f84SSue Gleeson 	 */
191*5de03f84SSue Gleeson 	if ((ret == 0) && is_iscsit_enabled()) {
192a6d42e7dSPeter Dunlap 		packednv = malloc(pnv_size);
193a6d42e7dSPeter Dunlap 		if (!packednv) {
194a6d42e7dSPeter Dunlap 			ret = ENOMEM;
195a6d42e7dSPeter Dunlap 		} else {
196a6d42e7dSPeter Dunlap 			ret = nvlist_pack(cfgnv, &packednv, &pnv_size,
197a6d42e7dSPeter Dunlap 			    NV_ENCODE_NATIVE, 0);
198a6d42e7dSPeter Dunlap 		}
199a6d42e7dSPeter Dunlap 
200a6d42e7dSPeter Dunlap 		if (ret == 0) {
201*5de03f84SSue Gleeson 			iscsit_fd = open(ISCSIT_NODE, O_RDWR|O_EXCL);
202*5de03f84SSue Gleeson 			if (iscsit_fd != -1) {
203a6d42e7dSPeter Dunlap 				iop.set_cfg_vers = ISCSIT_API_VERS0;
204a6d42e7dSPeter Dunlap 				iop.set_cfg_pnvlist = packednv;
205a6d42e7dSPeter Dunlap 				iop.set_cfg_pnvlist_len = pnv_size;
206*5de03f84SSue Gleeson 				if ((ioctl(iscsit_fd, ISCSIT_IOC_SET_CONFIG,
207*5de03f84SSue Gleeson 				    &iop)) != 0) {
208a6d42e7dSPeter Dunlap 					ret = errno;
209a6d42e7dSPeter Dunlap 				}
210*5de03f84SSue Gleeson 
211*5de03f84SSue Gleeson 				(void) close(iscsit_fd);
212*5de03f84SSue Gleeson 			} else {
213*5de03f84SSue Gleeson 				ret = errno;
214*5de03f84SSue Gleeson 			}
215*5de03f84SSue Gleeson 		}
216*5de03f84SSue Gleeson 
217*5de03f84SSue Gleeson 		if (packednv != NULL) {
218*5de03f84SSue Gleeson 			free(packednv);
219*5de03f84SSue Gleeson 		}
220a6d42e7dSPeter Dunlap 	}
221a6d42e7dSPeter Dunlap 
222a6d42e7dSPeter Dunlap 	/*
223a6d42e7dSPeter Dunlap 	 * Before saving the config persistently, remove any
224a6d42e7dSPeter Dunlap 	 * PROP_OLD_TARGET_NAME entries.  This is only interesting to
225a6d42e7dSPeter Dunlap 	 * the active service.
226a6d42e7dSPeter Dunlap 	 */
227a6d42e7dSPeter Dunlap 	if (ret == 0) {
228*5de03f84SSue Gleeson 		boolean_t	changed = B_FALSE;
229*5de03f84SSue Gleeson 
230a6d42e7dSPeter Dunlap 		tgtp = cfg->config_tgt_list;
231a6d42e7dSPeter Dunlap 		for (; tgtp != NULL; tgtp = tgtp->tgt_next) {
232a6d42e7dSPeter Dunlap 			if (!tgtp->tgt_properties) {
233a6d42e7dSPeter Dunlap 				continue;
234a6d42e7dSPeter Dunlap 			}
235a6d42e7dSPeter Dunlap 			if (nvlist_exists(tgtp->tgt_properties,
236a6d42e7dSPeter Dunlap 			    PROP_OLD_TARGET_NAME)) {
237a6d42e7dSPeter Dunlap 				(void) nvlist_remove_all(tgtp->tgt_properties,
238a6d42e7dSPeter Dunlap 				    PROP_OLD_TARGET_NAME);
239*5de03f84SSue Gleeson 				changed = B_TRUE;
240a6d42e7dSPeter Dunlap 			}
241a6d42e7dSPeter Dunlap 		}
242*5de03f84SSue Gleeson 
243*5de03f84SSue Gleeson 		if (changed) {
244*5de03f84SSue Gleeson 			/* rebuild the config nvlist */
245*5de03f84SSue Gleeson 			nvlist_free(cfgnv);
246*5de03f84SSue Gleeson 			cfgnv = NULL;
247*5de03f84SSue Gleeson 			ret = it_config_to_nv(cfg, &cfgnv);
248*5de03f84SSue Gleeson 		}
249a6d42e7dSPeter Dunlap 	}
250a6d42e7dSPeter Dunlap 
251a6d42e7dSPeter Dunlap 	/*
252a6d42e7dSPeter Dunlap 	 * stmfGetProviderDataProt() checks to ensure
253a6d42e7dSPeter Dunlap 	 * that the config data hasn't changed since we fetched it.
254a6d42e7dSPeter Dunlap 	 *
255a6d42e7dSPeter Dunlap 	 * The kernel now has a version we need to save persistently.
256a6d42e7dSPeter Dunlap 	 * CLI will 'do the right thing' and warn the user if it
257a6d42e7dSPeter Dunlap 	 * gets STMF_ERROR_PROV_DATA_STALE.  We'll try once to revert
258a6d42e7dSPeter Dunlap 	 * the kernel to the persistently saved data, but ultimately,
259a6d42e7dSPeter Dunlap 	 * it's up to the administrator to validate things are as they
260a6d42e7dSPeter Dunlap 	 * want them to be.
261a6d42e7dSPeter Dunlap 	 */
262a6d42e7dSPeter Dunlap 	if (ret == 0) {
263a6d42e7dSPeter Dunlap 		ret = stmfSetProviderDataProt(ISCSIT_MODNAME, cfgnv,
264a6d42e7dSPeter Dunlap 		    STMF_PORT_PROVIDER_TYPE, &(cfg->stmf_token));
265a6d42e7dSPeter Dunlap 
266a6d42e7dSPeter Dunlap 		if (ret == STMF_STATUS_SUCCESS) {
267a6d42e7dSPeter Dunlap 			ret = 0;
268a6d42e7dSPeter Dunlap 		} else if (ret == STMF_ERROR_NOMEM) {
269a6d42e7dSPeter Dunlap 			ret = ENOMEM;
270a6d42e7dSPeter Dunlap 		} else if (ret == STMF_ERROR_PROV_DATA_STALE) {
271a6d42e7dSPeter Dunlap 			int		st;
272a6d42e7dSPeter Dunlap 			it_config_t	*rcfg = NULL;
273a6d42e7dSPeter Dunlap 
274a6d42e7dSPeter Dunlap 			st = it_config_load(&rcfg);
275a6d42e7dSPeter Dunlap 			if (st == 0) {
276a6d42e7dSPeter Dunlap 				(void) it_config_commit(rcfg);
277a6d42e7dSPeter Dunlap 				it_config_free(rcfg);
278a6d42e7dSPeter Dunlap 			}
279a6d42e7dSPeter Dunlap 		}
280a6d42e7dSPeter Dunlap 	}
281a6d42e7dSPeter Dunlap 
282a6d42e7dSPeter Dunlap 	if (cfgnv) {
283a6d42e7dSPeter Dunlap 		nvlist_free(cfgnv);
284a6d42e7dSPeter Dunlap 	}
285a6d42e7dSPeter Dunlap 
286a6d42e7dSPeter Dunlap 	return (ret);
287a6d42e7dSPeter Dunlap }
288a6d42e7dSPeter Dunlap 
289a6d42e7dSPeter Dunlap /*
290a6d42e7dSPeter Dunlap  * Function:  it_config_setprop()
291a6d42e7dSPeter Dunlap  *
292a6d42e7dSPeter Dunlap  * Validate the provided property list and set the global properties
293a6d42e7dSPeter Dunlap  * for iSCSI Target.  If errlist is not NULL, returns detailed
294a6d42e7dSPeter Dunlap  * errors for each property that failed.  The format for errorlist
295a6d42e7dSPeter Dunlap  * is key = property, value = error string.
296a6d42e7dSPeter Dunlap  *
297a6d42e7dSPeter Dunlap  * Parameters:
298a6d42e7dSPeter Dunlap  *
299a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
300a6d42e7dSPeter Dunlap  *			it_config_load()
301a6d42e7dSPeter Dunlap  *    proplist		nvlist_t containing properties for this target.
302a6d42e7dSPeter Dunlap  *    errlist		(optional)  nvlist_t of errors encountered when
303a6d42e7dSPeter Dunlap  *                      validating the properties.
304a6d42e7dSPeter Dunlap  *
305a6d42e7dSPeter Dunlap  * Return Values:
306a6d42e7dSPeter Dunlap  *    0			Success
307a6d42e7dSPeter Dunlap  *    EINVAL		Invalid property
308a6d42e7dSPeter Dunlap  *
309a6d42e7dSPeter Dunlap  */
310a6d42e7dSPeter Dunlap int
311a6d42e7dSPeter Dunlap it_config_setprop(it_config_t *cfg, nvlist_t *proplist, nvlist_t **errlist)
312a6d42e7dSPeter Dunlap {
313a6d42e7dSPeter Dunlap 	int		ret;
314a6d42e7dSPeter Dunlap 	it_portal_t	*isns = NULL;
315a6d42e7dSPeter Dunlap 	it_portal_t	*pnext = NULL;
316a6d42e7dSPeter Dunlap 	it_portal_t	*newisnslist = NULL;
317a6d42e7dSPeter Dunlap 	char		**arr;
318a6d42e7dSPeter Dunlap 	uint32_t	count;
319a6d42e7dSPeter Dunlap 	uint32_t	newcount;
320a6d42e7dSPeter Dunlap 	nvlist_t	*cprops = NULL;
321a6d42e7dSPeter Dunlap 	char		*val = NULL;
322a6d42e7dSPeter Dunlap 
323a6d42e7dSPeter Dunlap 	if (!cfg || !proplist) {
324a6d42e7dSPeter Dunlap 		return (EINVAL);
325a6d42e7dSPeter Dunlap 	}
326a6d42e7dSPeter Dunlap 
327a6d42e7dSPeter Dunlap 	if (errlist) {
328a6d42e7dSPeter Dunlap 		(void) nvlist_alloc(errlist, 0, 0);
329a6d42e7dSPeter Dunlap 	}
330a6d42e7dSPeter Dunlap 
331a6d42e7dSPeter Dunlap 	/*
332a6d42e7dSPeter Dunlap 	 * copy the existing properties, merge, then validate
333a6d42e7dSPeter Dunlap 	 * the merged properties before committing them.
334a6d42e7dSPeter Dunlap 	 */
335a6d42e7dSPeter Dunlap 	if (cfg->config_global_properties) {
336a6d42e7dSPeter Dunlap 		ret = nvlist_dup(cfg->config_global_properties, &cprops, 0);
337a6d42e7dSPeter Dunlap 	} else {
338a6d42e7dSPeter Dunlap 		ret = nvlist_alloc(&cprops, NV_UNIQUE_NAME, 0);
339a6d42e7dSPeter Dunlap 	}
340a6d42e7dSPeter Dunlap 
341a6d42e7dSPeter Dunlap 	/* base64 encode the radius secret, if it's changed */
342a6d42e7dSPeter Dunlap 	val = NULL;
343a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(proplist, PROP_RADIUS_SECRET, &val);
344a6d42e7dSPeter Dunlap 	if (val) {
345a6d42e7dSPeter Dunlap 		char		bsecret[MAX_BASE64_LEN];
346a6d42e7dSPeter Dunlap 
347a6d42e7dSPeter Dunlap 		ret = it_val_pass(PROP_RADIUS_SECRET, val, *errlist);
348a6d42e7dSPeter Dunlap 
349a6d42e7dSPeter Dunlap 		if (ret == 0) {
350a6d42e7dSPeter Dunlap 			(void) memset(bsecret, 0, MAX_BASE64_LEN);
351a6d42e7dSPeter Dunlap 
352a6d42e7dSPeter Dunlap 			ret = iscsi_binary_to_base64_str((uint8_t *)val,
353a6d42e7dSPeter Dunlap 			    strlen(val), bsecret, MAX_BASE64_LEN);
354a6d42e7dSPeter Dunlap 
355a6d42e7dSPeter Dunlap 			if (ret == 0) {
356a6d42e7dSPeter Dunlap 				/* replace the value in the nvlist */
357a6d42e7dSPeter Dunlap 				ret = nvlist_add_string(proplist,
358a6d42e7dSPeter Dunlap 				    PROP_RADIUS_SECRET, bsecret);
359a6d42e7dSPeter Dunlap 			}
360a6d42e7dSPeter Dunlap 		}
361a6d42e7dSPeter Dunlap 	}
362a6d42e7dSPeter Dunlap 
363a6d42e7dSPeter Dunlap 	if (ret == 0) {
364a6d42e7dSPeter Dunlap 		ret = nvlist_merge(cprops, proplist, 0);
365a6d42e7dSPeter Dunlap 	}
366a6d42e7dSPeter Dunlap 
367a6d42e7dSPeter Dunlap 	/* see if we need to remove the radius server setting */
368a6d42e7dSPeter Dunlap 	val = NULL;
369a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(cprops, PROP_RADIUS_SERVER, &val);
370a6d42e7dSPeter Dunlap 	if (val && (strcasecmp(val, "none") == 0)) {
371a6d42e7dSPeter Dunlap 		(void) nvlist_remove_all(cprops, PROP_RADIUS_SERVER);
372a6d42e7dSPeter Dunlap 	}
373a6d42e7dSPeter Dunlap 
374a6d42e7dSPeter Dunlap 	/* and/or remove the alias */
375a6d42e7dSPeter Dunlap 	val = NULL;
376a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(cprops, PROP_ALIAS, &val);
377a6d42e7dSPeter Dunlap 	if (val && (strcasecmp(val, "none") == 0)) {
378a6d42e7dSPeter Dunlap 		(void) nvlist_remove_all(cprops, PROP_ALIAS);
379a6d42e7dSPeter Dunlap 	}
380a6d42e7dSPeter Dunlap 
381a6d42e7dSPeter Dunlap 	if (ret == 0) {
382a6d42e7dSPeter Dunlap 		ret = it_validate_configprops(cprops, *errlist);
383a6d42e7dSPeter Dunlap 	}
384a6d42e7dSPeter Dunlap 
385a6d42e7dSPeter Dunlap 	if (ret != 0) {
386a6d42e7dSPeter Dunlap 		if (cprops) {
387a6d42e7dSPeter Dunlap 			nvlist_free(cprops);
388a6d42e7dSPeter Dunlap 		}
389a6d42e7dSPeter Dunlap 		return (ret);
390a6d42e7dSPeter Dunlap 	}
391a6d42e7dSPeter Dunlap 
392a6d42e7dSPeter Dunlap 	/*
393a6d42e7dSPeter Dunlap 	 * Update iSNS server list, if exists in provided property list.
394a6d42e7dSPeter Dunlap 	 */
395a6d42e7dSPeter Dunlap 	ret = nvlist_lookup_string_array(proplist, PROP_ISNS_SERVER,
396a6d42e7dSPeter Dunlap 	    &arr, &count);
397a6d42e7dSPeter Dunlap 
398a6d42e7dSPeter Dunlap 	if (ret == 0) {
399a6d42e7dSPeter Dunlap 		/* special case:  if "none", remove all defined */
400a6d42e7dSPeter Dunlap 		if (strcasecmp(arr[0], "none") != 0) {
401a6d42e7dSPeter Dunlap 			ret = it_array_to_portallist(arr, count,
402a6d42e7dSPeter Dunlap 			    ISNS_DEFAULT_SERVER_PORT, &newisnslist, &newcount);
403a6d42e7dSPeter Dunlap 		} else {
404a6d42e7dSPeter Dunlap 			newisnslist = NULL;
405a6d42e7dSPeter Dunlap 			newcount = 0;
406a6d42e7dSPeter Dunlap 			(void) nvlist_remove_all(cprops, PROP_ISNS_SERVER);
407a6d42e7dSPeter Dunlap 		}
408a6d42e7dSPeter Dunlap 
409a6d42e7dSPeter Dunlap 		if (ret == 0) {
410a6d42e7dSPeter Dunlap 			isns = cfg->config_isns_svr_list;
411a6d42e7dSPeter Dunlap 			while (isns) {
412a6d42e7dSPeter Dunlap 				pnext = isns->next;
413a6d42e7dSPeter Dunlap 				free(isns);
414a6d42e7dSPeter Dunlap 				isns = pnext;
415a6d42e7dSPeter Dunlap 			}
416a6d42e7dSPeter Dunlap 
417a6d42e7dSPeter Dunlap 			cfg->config_isns_svr_list = newisnslist;
418a6d42e7dSPeter Dunlap 			cfg->config_isns_svr_count = newcount;
419a6d42e7dSPeter Dunlap 
420a6d42e7dSPeter Dunlap 			/*
421a6d42e7dSPeter Dunlap 			 * Replace the array in the nvlist to ensure
422a6d42e7dSPeter Dunlap 			 * duplicates are properly removed & port numbers
423a6d42e7dSPeter Dunlap 			 * are added.
424a6d42e7dSPeter Dunlap 			 */
425a6d42e7dSPeter Dunlap 			if (newcount > 0) {
426a6d42e7dSPeter Dunlap 				int	i = 0;
427a6d42e7dSPeter Dunlap 				char	**newarray;
428a6d42e7dSPeter Dunlap 
429a6d42e7dSPeter Dunlap 				newarray = malloc(sizeof (char *) * newcount);
430a6d42e7dSPeter Dunlap 				if (newarray == NULL) {
431a6d42e7dSPeter Dunlap 					ret = ENOMEM;
432a6d42e7dSPeter Dunlap 				} else {
433a6d42e7dSPeter Dunlap 					for (isns = newisnslist; isns != NULL;
434a6d42e7dSPeter Dunlap 					    isns = isns->next) {
435a6d42e7dSPeter Dunlap 						(void) sockaddr_to_str(
436a6d42e7dSPeter Dunlap 						    &(isns->portal_addr),
437a6d42e7dSPeter Dunlap 						    &(newarray[i++]));
438a6d42e7dSPeter Dunlap 					}
439a6d42e7dSPeter Dunlap 					(void) nvlist_add_string_array(cprops,
440a6d42e7dSPeter Dunlap 					    PROP_ISNS_SERVER, newarray,
441a6d42e7dSPeter Dunlap 					    newcount);
442a6d42e7dSPeter Dunlap 
443a6d42e7dSPeter Dunlap 					for (i = 0; i < newcount; i++) {
444a6d42e7dSPeter Dunlap 						if (newarray[i]) {
445a6d42e7dSPeter Dunlap 							free(newarray[i]);
446a6d42e7dSPeter Dunlap 						}
447a6d42e7dSPeter Dunlap 					}
448a6d42e7dSPeter Dunlap 					free(newarray);
449a6d42e7dSPeter Dunlap 				}
450a6d42e7dSPeter Dunlap 			}
451a6d42e7dSPeter Dunlap 		}
452a6d42e7dSPeter Dunlap 	} else if (ret == ENOENT) {
453a6d42e7dSPeter Dunlap 		/* not an error */
454a6d42e7dSPeter Dunlap 		ret = 0;
455a6d42e7dSPeter Dunlap 	}
456a6d42e7dSPeter Dunlap 
457a6d42e7dSPeter Dunlap 	if (ret == 0) {
458a6d42e7dSPeter Dunlap 		/* replace the global properties list */
459a6d42e7dSPeter Dunlap 		nvlist_free(cfg->config_global_properties);
460a6d42e7dSPeter Dunlap 		cfg->config_global_properties = cprops;
461a6d42e7dSPeter Dunlap 	} else {
462a6d42e7dSPeter Dunlap 		if (cprops) {
463a6d42e7dSPeter Dunlap 			nvlist_free(cprops);
464a6d42e7dSPeter Dunlap 		}
465a6d42e7dSPeter Dunlap 	}
466a6d42e7dSPeter Dunlap 
467a6d42e7dSPeter Dunlap 	return (ret);
468a6d42e7dSPeter Dunlap }
469a6d42e7dSPeter Dunlap 
470a6d42e7dSPeter Dunlap /*
471a6d42e7dSPeter Dunlap  * Function:  it_config_free()
472a6d42e7dSPeter Dunlap  *
473a6d42e7dSPeter Dunlap  * Free any resources associated with the it_config_t structure.
474a6d42e7dSPeter Dunlap  *
475a6d42e7dSPeter Dunlap  * Parameters:
476a6d42e7dSPeter Dunlap  *    cfg	A C representation of the current iSCSI configuration
477a6d42e7dSPeter Dunlap  */
478a6d42e7dSPeter Dunlap void
479a6d42e7dSPeter Dunlap it_config_free(it_config_t *cfg)
480a6d42e7dSPeter Dunlap {
481a6d42e7dSPeter Dunlap 	it_config_free_cmn(cfg);
482a6d42e7dSPeter Dunlap }
483a6d42e7dSPeter Dunlap 
484a6d42e7dSPeter Dunlap /*
485a6d42e7dSPeter Dunlap  * Function:  it_tgt_create()
486a6d42e7dSPeter Dunlap  *
487a6d42e7dSPeter Dunlap  * Allocate and create an it_tgt_t structure representing a new iSCSI
488a6d42e7dSPeter Dunlap  * target node.  If tgt_name is NULL, then a unique target node name will
489a6d42e7dSPeter Dunlap  * be generated automatically.  Otherwise, the value of tgt_name will be
490a6d42e7dSPeter Dunlap  * used as the target node name.  The new it_tgt_t structure is added to
491a6d42e7dSPeter Dunlap  * the target list (cfg_tgt_list) in the configuration structure, and the
492a6d42e7dSPeter Dunlap  * new target will not be instantiated until the modified configuration
493a6d42e7dSPeter Dunlap  * is committed by calling it_config_commit().
494a6d42e7dSPeter Dunlap  *
495a6d42e7dSPeter Dunlap  * Parameters:
496a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
497a6d42e7dSPeter Dunlap  *			it_config_load()
498a6d42e7dSPeter Dunlap  *    tgt		Pointer to an iSCSI target structure
499a6d42e7dSPeter Dunlap  *    tgt_name		The target node name for the target to be created.
500a6d42e7dSPeter Dunlap  *			The name must be in either IQN or EUI format.  If
501a6d42e7dSPeter Dunlap  *			this value is NULL, a node name will be generated
502a6d42e7dSPeter Dunlap  *			automatically in IQN format.
503a6d42e7dSPeter Dunlap  *
504a6d42e7dSPeter Dunlap  * Return Values:
505a6d42e7dSPeter Dunlap  *    0			Success
506a6d42e7dSPeter Dunlap  *    ENOMEM		Could not allocated resources
507a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter
508a6d42e7dSPeter Dunlap  *    EFAULT		Invalid iSCSI name specified
509836fc322SSam Cramer  *    E2BIG		Too many already exist
510a6d42e7dSPeter Dunlap  */
511a6d42e7dSPeter Dunlap int
512a6d42e7dSPeter Dunlap it_tgt_create(it_config_t *cfg, it_tgt_t **tgt, char *tgt_name)
513a6d42e7dSPeter Dunlap {
514a6d42e7dSPeter Dunlap 	int		ret = 0;
515a6d42e7dSPeter Dunlap 	it_tgt_t	*ptr;
516a6d42e7dSPeter Dunlap 	it_tgt_t	*cfgtgt;
517a6d42e7dSPeter Dunlap 	char		*namep = tgt_name;
518a6d42e7dSPeter Dunlap 	char		buf[ISCSI_NAME_LEN_MAX + 1];
519a6d42e7dSPeter Dunlap 
520a6d42e7dSPeter Dunlap 	if (!cfg || !tgt) {
521a6d42e7dSPeter Dunlap 		return (EINVAL);
522a6d42e7dSPeter Dunlap 	}
523a6d42e7dSPeter Dunlap 
524a6d42e7dSPeter Dunlap 	if (!namep) {
525a6d42e7dSPeter Dunlap 		/* generate a name */
526a6d42e7dSPeter Dunlap 		ret = it_iqn_generate(buf, sizeof (buf), NULL);
527a6d42e7dSPeter Dunlap 		if (ret != 0) {
528a6d42e7dSPeter Dunlap 			return (ret);
529a6d42e7dSPeter Dunlap 		}
530a6d42e7dSPeter Dunlap 		namep = buf;
531a6d42e7dSPeter Dunlap 	} else {
532a6d42e7dSPeter Dunlap 		/* validate the passed-in name */
533a6d42e7dSPeter Dunlap 		if (!validate_iscsi_name(namep)) {
534a6d42e7dSPeter Dunlap 			return (EFAULT);
535a6d42e7dSPeter Dunlap 		}
536a6d42e7dSPeter Dunlap 	}
537a6d42e7dSPeter Dunlap 
538a6d42e7dSPeter Dunlap 	/* make sure this name isn't already on the list */
539a6d42e7dSPeter Dunlap 	cfgtgt = cfg->config_tgt_list;
540a6d42e7dSPeter Dunlap 	while (cfgtgt != NULL) {
541a6d42e7dSPeter Dunlap 		if (strcmp(namep, cfgtgt->tgt_name) == 0) {
542a6d42e7dSPeter Dunlap 			return (EEXIST);
543a6d42e7dSPeter Dunlap 		}
544a6d42e7dSPeter Dunlap 		cfgtgt = cfgtgt->tgt_next;
545a6d42e7dSPeter Dunlap 	}
546a6d42e7dSPeter Dunlap 
547ade94d8bSCharles Ting 	/* Too many targets? */
548ade94d8bSCharles Ting 	if (cfg->config_tgt_count >= MAX_TARGETS) {
549ade94d8bSCharles Ting 		return (E2BIG);
550ade94d8bSCharles Ting 	}
551ade94d8bSCharles Ting 
552a6d42e7dSPeter Dunlap 	ptr = calloc(1, sizeof (it_tgt_t));
553a6d42e7dSPeter Dunlap 	if (ptr == NULL) {
554a6d42e7dSPeter Dunlap 		return (ENOMEM);
555a6d42e7dSPeter Dunlap 	}
556a6d42e7dSPeter Dunlap 
557a6d42e7dSPeter Dunlap 	(void) strlcpy(ptr->tgt_name, namep, sizeof (ptr->tgt_name));
558a6d42e7dSPeter Dunlap 	ptr->tgt_generation = 1;
559a6d42e7dSPeter Dunlap 	ptr->tgt_next = cfg->config_tgt_list;
560a6d42e7dSPeter Dunlap 	cfg->config_tgt_list = ptr;
561a6d42e7dSPeter Dunlap 	cfg->config_tgt_count++;
562a6d42e7dSPeter Dunlap 
563a6d42e7dSPeter Dunlap 	*tgt = ptr;
564a6d42e7dSPeter Dunlap 
565a6d42e7dSPeter Dunlap 	return (0);
566a6d42e7dSPeter Dunlap }
567a6d42e7dSPeter Dunlap 
568a6d42e7dSPeter Dunlap /*
569a6d42e7dSPeter Dunlap  * Function:  it_tgt_setprop()
570a6d42e7dSPeter Dunlap  *
571a6d42e7dSPeter Dunlap  * Validate the provided property list and set the properties for
572a6d42e7dSPeter Dunlap  * the specified target.  If errlist is not NULL, returns detailed
573a6d42e7dSPeter Dunlap  * errors for each property that failed.  The format for errorlist
574a6d42e7dSPeter Dunlap  * is key = property, value = error string.
575a6d42e7dSPeter Dunlap  *
576a6d42e7dSPeter Dunlap  * Parameters:
577a6d42e7dSPeter Dunlap  *
578a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
579a6d42e7dSPeter Dunlap  *			it_config_load()
580a6d42e7dSPeter Dunlap  *    tgt		Pointer to an iSCSI target structure
581a6d42e7dSPeter Dunlap  *    proplist		nvlist_t containing properties for this target.
582a6d42e7dSPeter Dunlap  *    errlist		(optional)  nvlist_t of errors encountered when
583a6d42e7dSPeter Dunlap  *			validating the properties.
584a6d42e7dSPeter Dunlap  *
585a6d42e7dSPeter Dunlap  * Return Values:
586a6d42e7dSPeter Dunlap  *    0			Success
587a6d42e7dSPeter Dunlap  *    EINVAL		Invalid property
588a6d42e7dSPeter Dunlap  *
589a6d42e7dSPeter Dunlap  */
590a6d42e7dSPeter Dunlap int
591a6d42e7dSPeter Dunlap it_tgt_setprop(it_config_t *cfg, it_tgt_t *tgt, nvlist_t *proplist,
592a6d42e7dSPeter Dunlap     nvlist_t **errlist)
593a6d42e7dSPeter Dunlap {
594a6d42e7dSPeter Dunlap 	int		ret;
595a6d42e7dSPeter Dunlap 	nvlist_t	*tprops = NULL;
596a6d42e7dSPeter Dunlap 	char		*val = NULL;
597a6d42e7dSPeter Dunlap 
598a6d42e7dSPeter Dunlap 	if (!cfg || !tgt || !proplist) {
599a6d42e7dSPeter Dunlap 		return (EINVAL);
600a6d42e7dSPeter Dunlap 	}
601a6d42e7dSPeter Dunlap 
602a6d42e7dSPeter Dunlap 	if (errlist) {
603a6d42e7dSPeter Dunlap 		(void) nvlist_alloc(errlist, 0, 0);
604a6d42e7dSPeter Dunlap 	}
605a6d42e7dSPeter Dunlap 
606a6d42e7dSPeter Dunlap 	/*
607a6d42e7dSPeter Dunlap 	 * copy the existing properties, merge, then validate
608a6d42e7dSPeter Dunlap 	 * the merged properties before committing them.
609a6d42e7dSPeter Dunlap 	 */
610a6d42e7dSPeter Dunlap 	if (tgt->tgt_properties) {
611a6d42e7dSPeter Dunlap 		ret = nvlist_dup(tgt->tgt_properties, &tprops, 0);
612a6d42e7dSPeter Dunlap 	} else {
613a6d42e7dSPeter Dunlap 		ret = nvlist_alloc(&tprops, NV_UNIQUE_NAME, 0);
614a6d42e7dSPeter Dunlap 	}
615a6d42e7dSPeter Dunlap 
616a6d42e7dSPeter Dunlap 	if (ret == 0) {
617a6d42e7dSPeter Dunlap 		ret = nvlist_merge(tprops, proplist, 0);
618a6d42e7dSPeter Dunlap 	}
619a6d42e7dSPeter Dunlap 
620a6d42e7dSPeter Dunlap 	/* unset chap username or alias if requested */
621a6d42e7dSPeter Dunlap 	val = NULL;
622a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(proplist, PROP_TARGET_CHAP_USER, &val);
623a6d42e7dSPeter Dunlap 	if (val && (strcasecmp(val, "none") == 0)) {
624a6d42e7dSPeter Dunlap 		(void) nvlist_remove_all(tprops, PROP_TARGET_CHAP_USER);
625a6d42e7dSPeter Dunlap 	}
626a6d42e7dSPeter Dunlap 
627a6d42e7dSPeter Dunlap 	val = NULL;
628a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(proplist, PROP_ALIAS, &val);
629a6d42e7dSPeter Dunlap 	if (val && (strcasecmp(val, "none") == 0)) {
630a6d42e7dSPeter Dunlap 		(void) nvlist_remove_all(tprops, PROP_ALIAS);
631a6d42e7dSPeter Dunlap 	}
632a6d42e7dSPeter Dunlap 
633a6d42e7dSPeter Dunlap 	/* base64 encode the CHAP secret, if it's changed */
634a6d42e7dSPeter Dunlap 	val = NULL;
635a6d42e7dSPeter Dunlap 	(void) nvlist_lookup_string(proplist, PROP_TARGET_CHAP_SECRET, &val);
636a6d42e7dSPeter Dunlap 	if (val) {
637a6d42e7dSPeter Dunlap 		char		bsecret[MAX_BASE64_LEN];
638a6d42e7dSPeter Dunlap 
639a6d42e7dSPeter Dunlap 		ret = it_val_pass(PROP_TARGET_CHAP_SECRET, val, *errlist);
640a6d42e7dSPeter Dunlap 
641a6d42e7dSPeter Dunlap 		if (ret == 0) {
642a6d42e7dSPeter Dunlap 			(void) memset(bsecret, 0, MAX_BASE64_LEN);
643a6d42e7dSPeter Dunlap 
644a6d42e7dSPeter Dunlap 			ret = iscsi_binary_to_base64_str((uint8_t *)val,
645a6d42e7dSPeter Dunlap 			    strlen(val), bsecret, MAX_BASE64_LEN);
646a6d42e7dSPeter Dunlap 
647a6d42e7dSPeter Dunlap 			if (ret == 0) {
648a6d42e7dSPeter Dunlap 				/* replace the value in the nvlist */
649a6d42e7dSPeter Dunlap 				ret = nvlist_add_string(tprops,
650a6d42e7dSPeter Dunlap 				    PROP_TARGET_CHAP_SECRET, bsecret);
651a6d42e7dSPeter Dunlap 			}
652a6d42e7dSPeter Dunlap 		}
653a6d42e7dSPeter Dunlap 	}
654a6d42e7dSPeter Dunlap 
655a6d42e7dSPeter Dunlap 	if (ret == 0) {
656a6d42e7dSPeter Dunlap 		ret = it_validate_tgtprops(tprops, *errlist);
657a6d42e7dSPeter Dunlap 	}
658a6d42e7dSPeter Dunlap 
659a6d42e7dSPeter Dunlap 	if (ret != 0) {
660a6d42e7dSPeter Dunlap 		if (tprops) {
661a6d42e7dSPeter Dunlap 			nvlist_free(tprops);
662a6d42e7dSPeter Dunlap 		}
663a6d42e7dSPeter Dunlap 		return (ret);
664a6d42e7dSPeter Dunlap 	}
665a6d42e7dSPeter Dunlap 
666a6d42e7dSPeter Dunlap 	if (tgt->tgt_properties) {
667a6d42e7dSPeter Dunlap 		nvlist_free(tgt->tgt_properties);
668a6d42e7dSPeter Dunlap 	}
669a6d42e7dSPeter Dunlap 	tgt->tgt_properties = tprops;
670a6d42e7dSPeter Dunlap 
671a6d42e7dSPeter Dunlap 	return (0);
672a6d42e7dSPeter Dunlap }
673a6d42e7dSPeter Dunlap 
674a6d42e7dSPeter Dunlap 
675a6d42e7dSPeter Dunlap /*
676a6d42e7dSPeter Dunlap  * Function:  it_tgt_delete()
677a6d42e7dSPeter Dunlap  *
678a6d42e7dSPeter Dunlap  * Delete target represented by 'tgt', where 'tgt' is an existing
679a6d42e7dSPeter Dunlap  * it_tgt_structure within the configuration 'cfg'.  The target removal
680a6d42e7dSPeter Dunlap  * will not take effect until the modified configuration is committed
681a6d42e7dSPeter Dunlap  * by calling it_config_commit().
682a6d42e7dSPeter Dunlap  *
683a6d42e7dSPeter Dunlap  * Parameters:
684a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
685a6d42e7dSPeter Dunlap  *			it_config_load()
686a6d42e7dSPeter Dunlap  *    tgt		Pointer to an iSCSI target structure
687a6d42e7dSPeter Dunlap  *
688a6d42e7dSPeter Dunlap  *    force		Set the target to offline before removing it from
689a6d42e7dSPeter Dunlap  *			the config.  If not specified, the operation will
690a6d42e7dSPeter Dunlap  *			fail if the target is determined to be online.
691a6d42e7dSPeter Dunlap  * Return Values:
692a6d42e7dSPeter Dunlap  *    0			Success
693a6d42e7dSPeter Dunlap  *    EBUSY		Target is online
694a6d42e7dSPeter Dunlap  */
695a6d42e7dSPeter Dunlap int
696a6d42e7dSPeter Dunlap it_tgt_delete(it_config_t *cfg, it_tgt_t *tgt, boolean_t force)
697a6d42e7dSPeter Dunlap {
698a6d42e7dSPeter Dunlap 	int			ret;
699a6d42e7dSPeter Dunlap 	it_tgt_t		*ptgt;
700a6d42e7dSPeter Dunlap 	it_tgt_t		*prev = NULL;
701a6d42e7dSPeter Dunlap 	stmfDevid		devid;
702a6d42e7dSPeter Dunlap 	stmfTargetProperties	props;
703a6d42e7dSPeter Dunlap 
704a6d42e7dSPeter Dunlap 	if (!cfg || !tgt) {
705a6d42e7dSPeter Dunlap 		return (0);
706a6d42e7dSPeter Dunlap 	}
707a6d42e7dSPeter Dunlap 
708a6d42e7dSPeter Dunlap 	ptgt = cfg->config_tgt_list;
709a6d42e7dSPeter Dunlap 	while (ptgt != NULL) {
710a6d42e7dSPeter Dunlap 		if (strcmp(tgt->tgt_name, ptgt->tgt_name) == 0) {
711a6d42e7dSPeter Dunlap 			break;
712a6d42e7dSPeter Dunlap 		}
713a6d42e7dSPeter Dunlap 		prev = ptgt;
714a6d42e7dSPeter Dunlap 		ptgt = ptgt->tgt_next;
715a6d42e7dSPeter Dunlap 	}
716a6d42e7dSPeter Dunlap 
717a6d42e7dSPeter Dunlap 	if (!ptgt) {
718a6d42e7dSPeter Dunlap 		return (0);
719a6d42e7dSPeter Dunlap 	}
720a6d42e7dSPeter Dunlap 
721a6d42e7dSPeter Dunlap 	/*
722a6d42e7dSPeter Dunlap 	 * check to see if this target is offline.  If it is not,
723a6d42e7dSPeter Dunlap 	 * and the 'force' flag is TRUE, tell STMF to offline it
724a6d42e7dSPeter Dunlap 	 * before removing from the configuration.
725a6d42e7dSPeter Dunlap 	 */
726a6d42e7dSPeter Dunlap 	ret = stmfDevidFromIscsiName(ptgt->tgt_name, &devid);
727a6d42e7dSPeter Dunlap 	if (ret != STMF_STATUS_SUCCESS) {
728a6d42e7dSPeter Dunlap 		/* can't happen? */
729a6d42e7dSPeter Dunlap 		return (EINVAL);
730a6d42e7dSPeter Dunlap 	}
731a6d42e7dSPeter Dunlap 
732a6d42e7dSPeter Dunlap 	ret = stmfGetTargetProperties(&devid, &props);
733a6d42e7dSPeter Dunlap 	if (ret == STMF_STATUS_SUCCESS) {
734a6d42e7dSPeter Dunlap 		/*
735a6d42e7dSPeter Dunlap 		 * only other return is STMF_ERROR_NOT_FOUND, which
736a6d42e7dSPeter Dunlap 		 * means we don't have to offline it.
737a6d42e7dSPeter Dunlap 		 */
738a6d42e7dSPeter Dunlap 		if (props.status == STMF_TARGET_PORT_ONLINE) {
739a6d42e7dSPeter Dunlap 			if (!force) {
740a6d42e7dSPeter Dunlap 				return (EBUSY);
741a6d42e7dSPeter Dunlap 			}
742a6d42e7dSPeter Dunlap 			ret = stmfOfflineTarget(&devid);
743a6d42e7dSPeter Dunlap 			if (ret != 0) {
744a6d42e7dSPeter Dunlap 				return (EBUSY);
745a6d42e7dSPeter Dunlap 			}
746a6d42e7dSPeter Dunlap 		}
747a6d42e7dSPeter Dunlap 	}
748a6d42e7dSPeter Dunlap 
749a6d42e7dSPeter Dunlap 	if (prev) {
750a6d42e7dSPeter Dunlap 		prev->tgt_next = ptgt->tgt_next;
751a6d42e7dSPeter Dunlap 	} else {
752a6d42e7dSPeter Dunlap 		/* first one on the list */
753a6d42e7dSPeter Dunlap 		cfg->config_tgt_list = ptgt->tgt_next;
754a6d42e7dSPeter Dunlap 	}
755a6d42e7dSPeter Dunlap 
756a6d42e7dSPeter Dunlap 	ptgt->tgt_next = NULL; /* Only free this target */
757a6d42e7dSPeter Dunlap 
758a6d42e7dSPeter Dunlap 	cfg->config_tgt_count--;
759a6d42e7dSPeter Dunlap 	it_tgt_free(ptgt);
760a6d42e7dSPeter Dunlap 
761a6d42e7dSPeter Dunlap 	return (0);
762a6d42e7dSPeter Dunlap }
763a6d42e7dSPeter Dunlap 
764a6d42e7dSPeter Dunlap /*
765a6d42e7dSPeter Dunlap  * Function:  it_tgt_free()
766a6d42e7dSPeter Dunlap  *
767a6d42e7dSPeter Dunlap  * Frees an it_tgt_t structure.  If tgt_next is not NULL, frees
768a6d42e7dSPeter Dunlap  * all structures in the list.
769a6d42e7dSPeter Dunlap  */
770a6d42e7dSPeter Dunlap void
771a6d42e7dSPeter Dunlap it_tgt_free(it_tgt_t *tgt)
772a6d42e7dSPeter Dunlap {
773a6d42e7dSPeter Dunlap 	it_tgt_free_cmn(tgt);
774a6d42e7dSPeter Dunlap }
775a6d42e7dSPeter Dunlap 
776a6d42e7dSPeter Dunlap /*
777a6d42e7dSPeter Dunlap  * Function:  it_tpgt_create()
778a6d42e7dSPeter Dunlap  *
779a6d42e7dSPeter Dunlap  * Allocate and create an it_tpgt_t structure representing a new iSCSI
780a6d42e7dSPeter Dunlap  * target portal group tag.  The new it_tpgt_t structure is added to the
781a6d42e7dSPeter Dunlap  * target tpgt list (tgt_tpgt_list) in the it_tgt_t structure.  The new
782a6d42e7dSPeter Dunlap  * target portal group tag will not be instantiated until the modified
783a6d42e7dSPeter Dunlap  * configuration is committed by calling it_config_commit().
784a6d42e7dSPeter Dunlap  *
785a6d42e7dSPeter Dunlap  * Parameters:
786a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
787a6d42e7dSPeter Dunlap  *			it_config_load()
788a6d42e7dSPeter Dunlap  *    tgt		Pointer to the iSCSI target structure associated
789a6d42e7dSPeter Dunlap  *			with the target portal group tag
790a6d42e7dSPeter Dunlap  *    tpgt		Pointer to a target portal group tag structure
791a6d42e7dSPeter Dunlap  *    tpg_name		The name of the TPG to be associated with this TPGT
792a6d42e7dSPeter Dunlap  *    tpgt_tag		16-bit numerical identifier for this TPGT.  If
793a6d42e7dSPeter Dunlap  *			tpgt_tag is '0', this function will choose the
794a6d42e7dSPeter Dunlap  *			tag number.  If tpgt_tag is >0, and the requested
795a6d42e7dSPeter Dunlap  *			tag is determined to be in use, another value
796a6d42e7dSPeter Dunlap  *			will be chosen.
797a6d42e7dSPeter Dunlap  *
798a6d42e7dSPeter Dunlap  * Return Values:
799a6d42e7dSPeter Dunlap  *    0			Success
800a6d42e7dSPeter Dunlap  *    ENOMEM		Could not allocate resources
801a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter
802a6d42e7dSPeter Dunlap  *    EEXIST		Specified tag name is already used.
803a6d42e7dSPeter Dunlap  *    E2BIG		No available tag numbers
804a6d42e7dSPeter Dunlap  */
805a6d42e7dSPeter Dunlap int
806a6d42e7dSPeter Dunlap it_tpgt_create(it_config_t *cfg, it_tgt_t *tgt, it_tpgt_t **tpgt,
807a6d42e7dSPeter Dunlap     char *tpg_name, uint16_t tpgt_tag)
808a6d42e7dSPeter Dunlap {
809a6d42e7dSPeter Dunlap 	it_tpgt_t	*ptr = NULL;
810a6d42e7dSPeter Dunlap 	it_tpgt_t	*cfgt;
811a6d42e7dSPeter Dunlap 	char		tagid_used[MAXTAG + 1];
812a6d42e7dSPeter Dunlap 	uint16_t	tagid = ISCSIT_DEFAULT_TPGT;
813a6d42e7dSPeter Dunlap 
814a6d42e7dSPeter Dunlap 	if (!cfg || !tgt || !tpgt || !tpg_name) {
815a6d42e7dSPeter Dunlap 		return (EINVAL);
816a6d42e7dSPeter Dunlap 	}
817a6d42e7dSPeter Dunlap 
818a6d42e7dSPeter Dunlap 	(void) memset(&(tagid_used[0]), 0, sizeof (tagid_used));
819a6d42e7dSPeter Dunlap 
820a6d42e7dSPeter Dunlap 	/*
821a6d42e7dSPeter Dunlap 	 * Make sure this name and/or tag isn't already on the list
822a6d42e7dSPeter Dunlap 	 * At the same time, capture all tag ids in use for this target
823a6d42e7dSPeter Dunlap 	 *
824a6d42e7dSPeter Dunlap 	 * About tag numbering -- since tag numbers are used by
825a6d42e7dSPeter Dunlap 	 * the iSCSI protocol, we should be careful about reusing
826a6d42e7dSPeter Dunlap 	 * them too quickly.  Start with a value greater than the
827a6d42e7dSPeter Dunlap 	 * highest one currently defined.  If current == MAXTAG,
828a6d42e7dSPeter Dunlap 	 * just find an unused tag.
829a6d42e7dSPeter Dunlap 	 */
830a6d42e7dSPeter Dunlap 	cfgt = tgt->tgt_tpgt_list;
831a6d42e7dSPeter Dunlap 	while (cfgt != NULL) {
832a6d42e7dSPeter Dunlap 		tagid_used[cfgt->tpgt_tag] = 1;
833a6d42e7dSPeter Dunlap 
834a6d42e7dSPeter Dunlap 		if (strcmp(tpg_name, cfgt->tpgt_tpg_name) == 0) {
835a6d42e7dSPeter Dunlap 			return (EEXIST);
836a6d42e7dSPeter Dunlap 		}
837a6d42e7dSPeter Dunlap 
838a6d42e7dSPeter Dunlap 		if (cfgt->tpgt_tag > tagid) {
839a6d42e7dSPeter Dunlap 			tagid = cfgt->tpgt_tag;
840a6d42e7dSPeter Dunlap 		}
841a6d42e7dSPeter Dunlap 
842a6d42e7dSPeter Dunlap 		cfgt = cfgt->tpgt_next;
843a6d42e7dSPeter Dunlap 	}
844a6d42e7dSPeter Dunlap 
845a6d42e7dSPeter Dunlap 	if ((tpgt_tag > ISCSIT_DEFAULT_TPGT) && (tpgt_tag < MAXTAG) &&
846a6d42e7dSPeter Dunlap 	    (tagid_used[tpgt_tag] == 0)) {
847a6d42e7dSPeter Dunlap 		/* ok to use requested */
848a6d42e7dSPeter Dunlap 		tagid = tpgt_tag;
849a6d42e7dSPeter Dunlap 	} else if (tagid == MAXTAG) {
850a6d42e7dSPeter Dunlap 		/*
851a6d42e7dSPeter Dunlap 		 * The highest value is used, find an available id.
852a6d42e7dSPeter Dunlap 		 */
853a6d42e7dSPeter Dunlap 		tagid = ISCSIT_DEFAULT_TPGT + 1;
854a6d42e7dSPeter Dunlap 		for (; tagid < MAXTAG; tagid++) {
855a6d42e7dSPeter Dunlap 			if (tagid_used[tagid] == 0) {
856a6d42e7dSPeter Dunlap 				break;
857a6d42e7dSPeter Dunlap 			}
858a6d42e7dSPeter Dunlap 		}
859a6d42e7dSPeter Dunlap 		if (tagid >= MAXTAG) {
860a6d42e7dSPeter Dunlap 			return (E2BIG);
861a6d42e7dSPeter Dunlap 		}
862a6d42e7dSPeter Dunlap 	} else {
863a6d42e7dSPeter Dunlap 		/* next available ID */
864a6d42e7dSPeter Dunlap 		tagid++;
865a6d42e7dSPeter Dunlap 	}
866a6d42e7dSPeter Dunlap 
867a6d42e7dSPeter Dunlap 	ptr = calloc(1, sizeof (it_tpgt_t));
868a6d42e7dSPeter Dunlap 	if (!ptr) {
869a6d42e7dSPeter Dunlap 		return (ENOMEM);
870a6d42e7dSPeter Dunlap 	}
871a6d42e7dSPeter Dunlap 
872a6d42e7dSPeter Dunlap 	(void) strlcpy(ptr->tpgt_tpg_name, tpg_name,
873a6d42e7dSPeter Dunlap 	    sizeof (ptr->tpgt_tpg_name));
874a6d42e7dSPeter Dunlap 	ptr->tpgt_generation = 1;
875a6d42e7dSPeter Dunlap 	ptr->tpgt_tag = tagid;
876a6d42e7dSPeter Dunlap 
877a6d42e7dSPeter Dunlap 	ptr->tpgt_next = tgt->tgt_tpgt_list;
878a6d42e7dSPeter Dunlap 	tgt->tgt_tpgt_list = ptr;
879a6d42e7dSPeter Dunlap 	tgt->tgt_tpgt_count++;
880a6d42e7dSPeter Dunlap 	tgt->tgt_generation++;
881a6d42e7dSPeter Dunlap 
882a6d42e7dSPeter Dunlap 	*tpgt = ptr;
883a6d42e7dSPeter Dunlap 
884a6d42e7dSPeter Dunlap 	return (0);
885a6d42e7dSPeter Dunlap }
886a6d42e7dSPeter Dunlap 
887a6d42e7dSPeter Dunlap /*
888a6d42e7dSPeter Dunlap  * Function:  it_tpgt_delete()
889a6d42e7dSPeter Dunlap  *
890a6d42e7dSPeter Dunlap  * Delete the target portal group tag represented by 'tpgt', where
891a6d42e7dSPeter Dunlap  * 'tpgt' is an existing is_tpgt_t structure within the target 'tgt'.
892a6d42e7dSPeter Dunlap  * The target portal group tag removal will not take effect until the
893a6d42e7dSPeter Dunlap  * modified configuration is committed by calling it_config_commit().
894a6d42e7dSPeter Dunlap  *
895a6d42e7dSPeter Dunlap  * Parameters:
896a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
897a6d42e7dSPeter Dunlap  *			it_config_load()
898a6d42e7dSPeter Dunlap  *    tgt		Pointer to the iSCSI target structure associated
899a6d42e7dSPeter Dunlap  *			with the target portal group tag
900a6d42e7dSPeter Dunlap  *    tpgt		Pointer to a target portal group tag structure
901a6d42e7dSPeter Dunlap  */
902a6d42e7dSPeter Dunlap void
903a6d42e7dSPeter Dunlap it_tpgt_delete(it_config_t *cfg, it_tgt_t *tgt, it_tpgt_t *tpgt)
904a6d42e7dSPeter Dunlap {
905a6d42e7dSPeter Dunlap 	it_tpgt_t	*ptr;
906a6d42e7dSPeter Dunlap 	it_tpgt_t	*prev = NULL;
907a6d42e7dSPeter Dunlap 
908a6d42e7dSPeter Dunlap 	if (!cfg || !tgt || !tpgt) {
909a6d42e7dSPeter Dunlap 		return;
910a6d42e7dSPeter Dunlap 	}
911a6d42e7dSPeter Dunlap 
912a6d42e7dSPeter Dunlap 	ptr = tgt->tgt_tpgt_list;
913a6d42e7dSPeter Dunlap 	while (ptr) {
914a6d42e7dSPeter Dunlap 		if (ptr->tpgt_tag == tpgt->tpgt_tag) {
915a6d42e7dSPeter Dunlap 			break;
916a6d42e7dSPeter Dunlap 		}
917a6d42e7dSPeter Dunlap 		prev = ptr;
918a6d42e7dSPeter Dunlap 		ptr = ptr->tpgt_next;
919a6d42e7dSPeter Dunlap 	}
920a6d42e7dSPeter Dunlap 
921a6d42e7dSPeter Dunlap 	if (!ptr) {
922a6d42e7dSPeter Dunlap 		return;
923a6d42e7dSPeter Dunlap 	}
924a6d42e7dSPeter Dunlap 
925a6d42e7dSPeter Dunlap 	if (prev) {
926a6d42e7dSPeter Dunlap 		prev->tpgt_next = ptr->tpgt_next;
927a6d42e7dSPeter Dunlap 	} else {
928a6d42e7dSPeter Dunlap 		tgt->tgt_tpgt_list = ptr->tpgt_next;
929a6d42e7dSPeter Dunlap 	}
930a6d42e7dSPeter Dunlap 	ptr->tpgt_next = NULL;
931a6d42e7dSPeter Dunlap 
932a6d42e7dSPeter Dunlap 	tgt->tgt_tpgt_count--;
933a6d42e7dSPeter Dunlap 	tgt->tgt_generation++;
934a6d42e7dSPeter Dunlap 
935a6d42e7dSPeter Dunlap 	it_tpgt_free(ptr);
936a6d42e7dSPeter Dunlap }
937a6d42e7dSPeter Dunlap 
938a6d42e7dSPeter Dunlap /*
939a6d42e7dSPeter Dunlap  * Function:  it_tpgt_free()
940a6d42e7dSPeter Dunlap  *
941a6d42e7dSPeter Dunlap  * Deallocates resources of an it_tpgt_t structure.  If tpgt->next
942a6d42e7dSPeter Dunlap  * is not NULL, frees all members of the list.
943a6d42e7dSPeter Dunlap  */
944a6d42e7dSPeter Dunlap void
945a6d42e7dSPeter Dunlap it_tpgt_free(it_tpgt_t *tpgt)
946a6d42e7dSPeter Dunlap {
947a6d42e7dSPeter Dunlap 	it_tpgt_free_cmn(tpgt);
948a6d42e7dSPeter Dunlap }
949a6d42e7dSPeter Dunlap 
950a6d42e7dSPeter Dunlap /*
951a6d42e7dSPeter Dunlap  * Function:  it_tpg_create()
952a6d42e7dSPeter Dunlap  *
953a6d42e7dSPeter Dunlap  * Allocate and create an it_tpg_t structure representing a new iSCSI
954a6d42e7dSPeter Dunlap  * target portal group.  The new it_tpg_t structure is added to the global
955a6d42e7dSPeter Dunlap  * tpg list (cfg_tgt_list) in the it_config_t structure.  The new target
956a6d42e7dSPeter Dunlap  * portal group will not be instantiated until the modified configuration
957a6d42e7dSPeter Dunlap  * is committed by calling it_config_commit().
958a6d42e7dSPeter Dunlap  *
959a6d42e7dSPeter Dunlap  * Parameters:
960a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
961a6d42e7dSPeter Dunlap  *			it_config_load()
962a6d42e7dSPeter Dunlap  *    tpg		Pointer to the it_tpg_t structure representing
963a6d42e7dSPeter Dunlap  *			the target portal group
964a6d42e7dSPeter Dunlap  *    tpg_name		Identifier for the target portal group
965a6d42e7dSPeter Dunlap  *    portal_ip_port	A string containing an appropriatedly formatted
966a6d42e7dSPeter Dunlap  *			IP address:port.  Both IPv4 and IPv6 addresses are
967a6d42e7dSPeter Dunlap  *			permitted.  This value becomes the first portal in
968a6d42e7dSPeter Dunlap  *			the TPG -- applications can add additional values
969a6d42e7dSPeter Dunlap  *			using it_portal_create() before committing the TPG.
970a6d42e7dSPeter Dunlap  * Return Values:
971a6d42e7dSPeter Dunlap  *    0			Success
972a6d42e7dSPeter Dunlap  *    ENOMEM		Cannot allocate resources
973a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter
974a6d42e7dSPeter Dunlap  *    EEXIST		Requested portal in use by another target portal
975a6d42e7dSPeter Dunlap  *			group
976a6d42e7dSPeter Dunlap  */
977a6d42e7dSPeter Dunlap int
978a6d42e7dSPeter Dunlap it_tpg_create(it_config_t *cfg, it_tpg_t **tpg, char *tpg_name,
979a6d42e7dSPeter Dunlap     char *portal_ip_port)
980a6d42e7dSPeter Dunlap {
981a6d42e7dSPeter Dunlap 	int		ret;
982a6d42e7dSPeter Dunlap 	it_tpg_t	*ptr;
983a6d42e7dSPeter Dunlap 	it_portal_t	*portal = NULL;
984a6d42e7dSPeter Dunlap 
985a6d42e7dSPeter Dunlap 	if (!cfg || !tpg || !tpg_name || !portal_ip_port) {
986a6d42e7dSPeter Dunlap 		return (EINVAL);
987a6d42e7dSPeter Dunlap 	}
988a6d42e7dSPeter Dunlap 
989a6d42e7dSPeter Dunlap 	*tpg = NULL;
990a6d42e7dSPeter Dunlap 
991a6d42e7dSPeter Dunlap 	ptr = cfg->config_tpg_list;
992a6d42e7dSPeter Dunlap 	while (ptr) {
993a6d42e7dSPeter Dunlap 		if (strcmp(tpg_name, ptr->tpg_name) == 0) {
994a6d42e7dSPeter Dunlap 			break;
995a6d42e7dSPeter Dunlap 		}
996a6d42e7dSPeter Dunlap 		ptr = ptr->tpg_next;
997a6d42e7dSPeter Dunlap 	}
998a6d42e7dSPeter Dunlap 
999a6d42e7dSPeter Dunlap 	if (ptr) {
1000a6d42e7dSPeter Dunlap 		return (EEXIST);
1001a6d42e7dSPeter Dunlap 	}
1002a6d42e7dSPeter Dunlap 
1003a6d42e7dSPeter Dunlap 	ptr = calloc(1, sizeof (it_tpg_t));
1004a6d42e7dSPeter Dunlap 	if (!ptr) {
1005a6d42e7dSPeter Dunlap 		return (ENOMEM);
1006a6d42e7dSPeter Dunlap 	}
1007a6d42e7dSPeter Dunlap 
1008a6d42e7dSPeter Dunlap 	ptr->tpg_generation = 1;
1009a6d42e7dSPeter Dunlap 	(void) strlcpy(ptr->tpg_name, tpg_name, sizeof (ptr->tpg_name));
1010a6d42e7dSPeter Dunlap 
1011a6d42e7dSPeter Dunlap 	/* create the portal */
1012a6d42e7dSPeter Dunlap 	ret = it_portal_create(cfg, ptr, &portal, portal_ip_port);
1013a6d42e7dSPeter Dunlap 	if (ret != 0) {
1014a6d42e7dSPeter Dunlap 		free(ptr);
1015a6d42e7dSPeter Dunlap 		return (ret);
1016a6d42e7dSPeter Dunlap 	}
1017a6d42e7dSPeter Dunlap 
1018a6d42e7dSPeter Dunlap 	ptr->tpg_next = cfg->config_tpg_list;
1019a6d42e7dSPeter Dunlap 	cfg->config_tpg_list = ptr;
1020a6d42e7dSPeter Dunlap 	cfg->config_tpg_count++;
1021a6d42e7dSPeter Dunlap 
1022a6d42e7dSPeter Dunlap 	*tpg = ptr;
1023a6d42e7dSPeter Dunlap 
1024a6d42e7dSPeter Dunlap 	return (0);
1025a6d42e7dSPeter Dunlap }
1026a6d42e7dSPeter Dunlap 
1027a6d42e7dSPeter Dunlap /*
1028a6d42e7dSPeter Dunlap  * Function:  it_tpg_delete()
1029a6d42e7dSPeter Dunlap  *
1030a6d42e7dSPeter Dunlap  * Delete target portal group represented by 'tpg', where 'tpg' is an
1031a6d42e7dSPeter Dunlap  * existing it_tpg_t structure within the global configuration 'cfg'.
1032a6d42e7dSPeter Dunlap  * The target portal group removal will not take effect until the
1033a6d42e7dSPeter Dunlap  * modified configuration is committed by calling it_config_commit().
1034a6d42e7dSPeter Dunlap  *
1035a6d42e7dSPeter Dunlap  * Parameters:
1036a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configuration obtained from
1037a6d42e7dSPeter Dunlap  *			it_config_load()
1038a6d42e7dSPeter Dunlap  *    tpg		Pointer to the it_tpg_t structure representing
1039a6d42e7dSPeter Dunlap  *			the target portal group
1040a6d42e7dSPeter Dunlap  *    force		Remove this target portal group even if it's
1041a6d42e7dSPeter Dunlap  *			associated with one or more targets.
1042a6d42e7dSPeter Dunlap  *
1043a6d42e7dSPeter Dunlap  * Return Values:
1044a6d42e7dSPeter Dunlap  *    0			Success
1045a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter
1046a6d42e7dSPeter Dunlap  *    EBUSY		Portal group associated with one or more targets.
1047a6d42e7dSPeter Dunlap  */
1048a6d42e7dSPeter Dunlap int
1049a6d42e7dSPeter Dunlap it_tpg_delete(it_config_t *cfg, it_tpg_t *tpg, boolean_t force)
1050a6d42e7dSPeter Dunlap {
1051a6d42e7dSPeter Dunlap 	it_tpg_t	*ptr;
1052a6d42e7dSPeter Dunlap 	it_tpg_t	*prev = NULL;
1053a6d42e7dSPeter Dunlap 	it_tgt_t	*tgt;
1054a6d42e7dSPeter Dunlap 	it_tpgt_t	*tpgt;
1055a6d42e7dSPeter Dunlap 	it_tpgt_t	*ntpgt;
1056a6d42e7dSPeter Dunlap 
1057a6d42e7dSPeter Dunlap 	if (!cfg || !tpg) {
1058a6d42e7dSPeter Dunlap 		return (EINVAL);
1059a6d42e7dSPeter Dunlap 	}
1060a6d42e7dSPeter Dunlap 
1061a6d42e7dSPeter Dunlap 	ptr = cfg->config_tpg_list;
1062a6d42e7dSPeter Dunlap 	while (ptr) {
1063a6d42e7dSPeter Dunlap 		if (strcmp(ptr->tpg_name, tpg->tpg_name) == 0) {
1064a6d42e7dSPeter Dunlap 			break;
1065a6d42e7dSPeter Dunlap 		}
1066a6d42e7dSPeter Dunlap 		prev = ptr;
1067a6d42e7dSPeter Dunlap 		ptr = ptr->tpg_next;
1068a6d42e7dSPeter Dunlap 	}
1069a6d42e7dSPeter Dunlap 
1070a6d42e7dSPeter Dunlap 	if (!ptr) {
1071a6d42e7dSPeter Dunlap 		return (0);
1072a6d42e7dSPeter Dunlap 	}
1073a6d42e7dSPeter Dunlap 
1074a6d42e7dSPeter Dunlap 	/*
1075a6d42e7dSPeter Dunlap 	 * See if any targets are using this portal group.
1076a6d42e7dSPeter Dunlap 	 * If there are, and the force flag is not set, fail.
1077a6d42e7dSPeter Dunlap 	 */
1078a6d42e7dSPeter Dunlap 	tgt = cfg->config_tgt_list;
1079a6d42e7dSPeter Dunlap 	while (tgt) {
1080a6d42e7dSPeter Dunlap 		tpgt = tgt->tgt_tpgt_list;
1081a6d42e7dSPeter Dunlap 		while (tpgt) {
1082a6d42e7dSPeter Dunlap 			ntpgt = tpgt->tpgt_next;
1083a6d42e7dSPeter Dunlap 
1084a6d42e7dSPeter Dunlap 			if (strcmp(tpgt->tpgt_tpg_name, tpg->tpg_name)
1085a6d42e7dSPeter Dunlap 			    == 0) {
1086a6d42e7dSPeter Dunlap 				if (!force) {
1087a6d42e7dSPeter Dunlap 					return (EBUSY);
1088a6d42e7dSPeter Dunlap 				}
1089a6d42e7dSPeter Dunlap 				it_tpgt_delete(cfg, tgt, tpgt);
1090a6d42e7dSPeter Dunlap 			}
1091a6d42e7dSPeter Dunlap 
1092a6d42e7dSPeter Dunlap 			tpgt = ntpgt;
1093a6d42e7dSPeter Dunlap 		}
1094a6d42e7dSPeter Dunlap 		tgt = tgt->tgt_next;
1095a6d42e7dSPeter Dunlap 	}
1096a6d42e7dSPeter Dunlap 
1097a6d42e7dSPeter Dunlap 	/* Now that it's not in use anywhere, remove the TPG */
1098a6d42e7dSPeter Dunlap 	if (prev) {
1099a6d42e7dSPeter Dunlap 		prev->tpg_next = ptr->tpg_next;
1100a6d42e7dSPeter Dunlap 	} else {
1101a6d42e7dSPeter Dunlap 		cfg->config_tpg_list = ptr->tpg_next;
1102a6d42e7dSPeter Dunlap 	}
1103a6d42e7dSPeter Dunlap 	ptr->tpg_next = NULL;
1104a6d42e7dSPeter Dunlap 
1105a6d42e7dSPeter Dunlap 	cfg->config_tpg_count--;
1106a6d42e7dSPeter Dunlap 
1107a6d42e7dSPeter Dunlap 	it_tpg_free(ptr);
1108a6d42e7dSPeter Dunlap 
1109a6d42e7dSPeter Dunlap 	return (0);
1110a6d42e7dSPeter Dunlap }
1111a6d42e7dSPeter Dunlap 
1112a6d42e7dSPeter Dunlap /*
1113a6d42e7dSPeter Dunlap  * Function:  it_tpg_free()
1114a6d42e7dSPeter Dunlap  *
1115a6d42e7dSPeter Dunlap  * Deallocates resources associated with an it_tpg_t structure.
1116a6d42e7dSPeter Dunlap  * If tpg->next is not NULL, frees all members of the list.
1117a6d42e7dSPeter Dunlap  */
1118a6d42e7dSPeter Dunlap void
1119a6d42e7dSPeter Dunlap it_tpg_free(it_tpg_t *tpg)
1120a6d42e7dSPeter Dunlap {
1121a6d42e7dSPeter Dunlap 	it_tpg_free_cmn(tpg);
1122a6d42e7dSPeter Dunlap }
1123a6d42e7dSPeter Dunlap 
1124a6d42e7dSPeter Dunlap /*
1125a6d42e7dSPeter Dunlap  * Function:  it_portal_create()
1126a6d42e7dSPeter Dunlap  *
1127a6d42e7dSPeter Dunlap  * Add an it_portal_t structure presenting a new portal to the specified
1128a6d42e7dSPeter Dunlap  * target portal group.  The change to the target portal group will not take
1129a6d42e7dSPeter Dunlap  * effect until the modified configuration is committed by calling
1130a6d42e7dSPeter Dunlap  * it_config_commit().
1131a6d42e7dSPeter Dunlap  *
1132a6d42e7dSPeter Dunlap  * Parameters:
1133a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configration obtained from
1134a6d42e7dSPeter Dunlap  *			it_config_load()
1135a6d42e7dSPeter Dunlap  *    tpg		Pointer to the it_tpg_t structure representing the
1136a6d42e7dSPeter Dunlap  *			target portal group
1137a6d42e7dSPeter Dunlap  *    portal		Pointer to the it_portal_t structure representing
1138a6d42e7dSPeter Dunlap  *			the portal
1139a6d42e7dSPeter Dunlap  *    portal_ip_port	A string containing an appropriately formatted
1140a6d42e7dSPeter Dunlap  *			IP address or IP address:port in either IPv4 or
1141a6d42e7dSPeter Dunlap  *			IPv6 format.
1142a6d42e7dSPeter Dunlap  * Return Values:
1143a6d42e7dSPeter Dunlap  *    0			Success
1144a6d42e7dSPeter Dunlap  *    ENOMEM		Could not allocate resources
1145a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter
1146a6d42e7dSPeter Dunlap  *    EEXIST		Portal already configured for another portal group
1147a6d42e7dSPeter Dunlap  */
1148a6d42e7dSPeter Dunlap int
1149a6d42e7dSPeter Dunlap it_portal_create(it_config_t *cfg, it_tpg_t *tpg, it_portal_t **portal,
1150a6d42e7dSPeter Dunlap     char *portal_ip_port)
1151a6d42e7dSPeter Dunlap {
1152a6d42e7dSPeter Dunlap 	struct sockaddr_storage		sa;
1153a6d42e7dSPeter Dunlap 	it_portal_t			*ptr;
1154a6d42e7dSPeter Dunlap 	it_tpg_t			*ctpg = NULL;
1155a6d42e7dSPeter Dunlap 
1156a6d42e7dSPeter Dunlap 	if (!cfg || !tpg || !portal || !portal_ip_port) {
1157a6d42e7dSPeter Dunlap 		return (EINVAL);
1158a6d42e7dSPeter Dunlap 	}
1159a6d42e7dSPeter Dunlap 
1160a6d42e7dSPeter Dunlap 	if ((it_common_convert_sa(portal_ip_port, &sa, ISCSI_LISTEN_PORT))
1161a6d42e7dSPeter Dunlap 	    == NULL) {
1162a6d42e7dSPeter Dunlap 		return (EINVAL);
1163a6d42e7dSPeter Dunlap 	}
1164a6d42e7dSPeter Dunlap 
1165a6d42e7dSPeter Dunlap 	/* Check that this portal doesn't appear in any other tag */
1166a6d42e7dSPeter Dunlap 	ctpg = cfg->config_tpg_list;
1167a6d42e7dSPeter Dunlap 	while (ctpg) {
1168a6d42e7dSPeter Dunlap 		ptr = ctpg->tpg_portal_list;
1169a6d42e7dSPeter Dunlap 		for (; ptr != NULL; ptr = ptr->next) {
1170a6d42e7dSPeter Dunlap 			if (it_sa_compare(&(ptr->portal_addr), &sa) != 0) {
1171a6d42e7dSPeter Dunlap 				continue;
1172a6d42e7dSPeter Dunlap 			}
1173a6d42e7dSPeter Dunlap 
1174a6d42e7dSPeter Dunlap 			/*
1175a6d42e7dSPeter Dunlap 			 * Existing in the same group is not an error,
1176a6d42e7dSPeter Dunlap 			 * but don't add it again.
1177a6d42e7dSPeter Dunlap 			 */
1178a6d42e7dSPeter Dunlap 			if (strcmp(ctpg->tpg_name, tpg->tpg_name) == 0) {
1179a6d42e7dSPeter Dunlap 				return (0);
1180a6d42e7dSPeter Dunlap 			} else {
1181a6d42e7dSPeter Dunlap 				/* Not allowed */
1182a6d42e7dSPeter Dunlap 				return (EEXIST);
1183a6d42e7dSPeter Dunlap 			}
1184a6d42e7dSPeter Dunlap 		}
1185a6d42e7dSPeter Dunlap 		ctpg = ctpg->tpg_next;
1186a6d42e7dSPeter Dunlap 	}
1187a6d42e7dSPeter Dunlap 
1188a6d42e7dSPeter Dunlap 	ptr = calloc(1, sizeof (it_portal_t));
1189a6d42e7dSPeter Dunlap 	if (!ptr) {
1190a6d42e7dSPeter Dunlap 		return (ENOMEM);
1191a6d42e7dSPeter Dunlap 	}
1192a6d42e7dSPeter Dunlap 
1193a6d42e7dSPeter Dunlap 	(void) memcpy(&(ptr->portal_addr), &sa,
1194a6d42e7dSPeter Dunlap 	    sizeof (struct sockaddr_storage));
1195a6d42e7dSPeter Dunlap 	ptr->next = tpg->tpg_portal_list;
1196a6d42e7dSPeter Dunlap 	tpg->tpg_portal_list = ptr;
1197a6d42e7dSPeter Dunlap 	tpg->tpg_portal_count++;
1198a6d42e7dSPeter Dunlap 	tpg->tpg_generation++;
1199a6d42e7dSPeter Dunlap 
1200a6d42e7dSPeter Dunlap 	return (0);
1201a6d42e7dSPeter Dunlap }
1202a6d42e7dSPeter Dunlap 
1203a6d42e7dSPeter Dunlap /*
1204a6d42e7dSPeter Dunlap  * Function:  it_portal_delete()
1205a6d42e7dSPeter Dunlap  *
1206a6d42e7dSPeter Dunlap  * Remove the specified portal from the specified target portal group.
1207a6d42e7dSPeter Dunlap  * The portal removal will not take effect until the modified configuration
1208a6d42e7dSPeter Dunlap  * is committed by calling it_config_commit().
1209a6d42e7dSPeter Dunlap  *
1210a6d42e7dSPeter Dunlap  * Parameters:
1211a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configration obtained from
1212a6d42e7dSPeter Dunlap  *			it_config_load()
1213a6d42e7dSPeter Dunlap  *    tpg		Pointer to the it_tpg_t structure representing the
1214a6d42e7dSPeter Dunlap  *			target portal group
1215a6d42e7dSPeter Dunlap  *    portal		Pointer to the it_portal_t structure representing
1216a6d42e7dSPeter Dunlap  *			the portal
1217a6d42e7dSPeter Dunlap  */
1218a6d42e7dSPeter Dunlap void
1219a6d42e7dSPeter Dunlap it_portal_delete(it_config_t *cfg, it_tpg_t *tpg, it_portal_t *portal)
1220a6d42e7dSPeter Dunlap {
1221a6d42e7dSPeter Dunlap 	it_portal_t	*ptr;
1222a6d42e7dSPeter Dunlap 	it_portal_t	*prev;
1223a6d42e7dSPeter Dunlap 
1224a6d42e7dSPeter Dunlap 	if (!cfg || !tpg || !portal) {
1225a6d42e7dSPeter Dunlap 		return;
1226a6d42e7dSPeter Dunlap 	}
1227a6d42e7dSPeter Dunlap 
1228a6d42e7dSPeter Dunlap 	ptr = tpg->tpg_portal_list;
1229a6d42e7dSPeter Dunlap 	while (ptr) {
1230a6d42e7dSPeter Dunlap 		if (memcmp(&(ptr->portal_addr), &(portal->portal_addr),
1231a6d42e7dSPeter Dunlap 		    sizeof (ptr->portal_addr)) == 0) {
1232a6d42e7dSPeter Dunlap 			break;
1233a6d42e7dSPeter Dunlap 		}
1234a6d42e7dSPeter Dunlap 		prev = ptr;
1235a6d42e7dSPeter Dunlap 		ptr = ptr->next;
1236a6d42e7dSPeter Dunlap 	}
1237a6d42e7dSPeter Dunlap 
1238a6d42e7dSPeter Dunlap 	if (!ptr) {
1239a6d42e7dSPeter Dunlap 		return;
1240a6d42e7dSPeter Dunlap 	}
1241a6d42e7dSPeter Dunlap 
1242a6d42e7dSPeter Dunlap 	if (prev) {
1243a6d42e7dSPeter Dunlap 		prev->next = ptr->next;
1244a6d42e7dSPeter Dunlap 	} else {
1245a6d42e7dSPeter Dunlap 		tpg->tpg_portal_list = ptr->next;
1246a6d42e7dSPeter Dunlap 	}
1247a6d42e7dSPeter Dunlap 	tpg->tpg_portal_count--;
1248a6d42e7dSPeter Dunlap 	tpg->tpg_generation++;
1249a6d42e7dSPeter Dunlap 
1250a6d42e7dSPeter Dunlap 	free(ptr);
1251a6d42e7dSPeter Dunlap }
1252a6d42e7dSPeter Dunlap 
1253a6d42e7dSPeter Dunlap /*
1254a6d42e7dSPeter Dunlap  * Function:  it_ini_create()
1255a6d42e7dSPeter Dunlap  *
1256a6d42e7dSPeter Dunlap  * Add an initiator context to the global configuration. The new
1257a6d42e7dSPeter Dunlap  * initiator context will not be instantiated until the modified
1258a6d42e7dSPeter Dunlap  * configuration is committed by calling it_config_commit().
1259a6d42e7dSPeter Dunlap  *
1260a6d42e7dSPeter Dunlap  * Parameters:
1261a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configration obtained from
1262a6d42e7dSPeter Dunlap  *			it_config_load()
1263a6d42e7dSPeter Dunlap  *    ini		Pointer to the it_ini_t structure representing
1264a6d42e7dSPeter Dunlap  *			the initiator context.
1265a6d42e7dSPeter Dunlap  *    ini_node_name	The iSCSI node name of the remote initiator.
1266a6d42e7dSPeter Dunlap  *
1267a6d42e7dSPeter Dunlap  * Return Values:
1268a6d42e7dSPeter Dunlap  *    0			Success
1269a6d42e7dSPeter Dunlap  *    ENOMEM		Could not allocate resources
1270a6d42e7dSPeter Dunlap  *    EINVAL		Invalid parameter.
1271a6d42e7dSPeter Dunlap  *    EFAULT		Invalid initiator name
1272a6d42e7dSPeter Dunlap  */
1273a6d42e7dSPeter Dunlap int
1274a6d42e7dSPeter Dunlap it_ini_create(it_config_t *cfg, it_ini_t **ini, char *ini_node_name)
1275a6d42e7dSPeter Dunlap {
1276a6d42e7dSPeter Dunlap 	it_ini_t	*ptr;
1277a6d42e7dSPeter Dunlap 
1278a6d42e7dSPeter Dunlap 	if (!cfg || !ini || !ini_node_name) {
1279a6d42e7dSPeter Dunlap 		return (EINVAL);
1280a6d42e7dSPeter Dunlap 	}
1281a6d42e7dSPeter Dunlap 
1282a6d42e7dSPeter Dunlap 	/*
1283a6d42e7dSPeter Dunlap 	 * Ensure this is a valid ini name
1284a6d42e7dSPeter Dunlap 	 */
1285a6d42e7dSPeter Dunlap 	if (!validate_iscsi_name(ini_node_name)) {
1286a6d42e7dSPeter Dunlap 		return (EFAULT);
1287a6d42e7dSPeter Dunlap 	}
1288a6d42e7dSPeter Dunlap 
1289a6d42e7dSPeter Dunlap 	ptr = cfg->config_ini_list;
1290a6d42e7dSPeter Dunlap 	while (ptr) {
1291a6d42e7dSPeter Dunlap 		if (strcmp(ptr->ini_name, ini_node_name) == 0) {
1292a6d42e7dSPeter Dunlap 			break;
1293a6d42e7dSPeter Dunlap 		}
1294a6d42e7dSPeter Dunlap 		ptr = ptr->ini_next;
1295a6d42e7dSPeter Dunlap 	}
1296a6d42e7dSPeter Dunlap 
1297a6d42e7dSPeter Dunlap 	if (ptr) {
1298a6d42e7dSPeter Dunlap 		return (EEXIST);
1299a6d42e7dSPeter Dunlap 	}
1300a6d42e7dSPeter Dunlap 
1301a6d42e7dSPeter Dunlap 	ptr = calloc(1, sizeof (it_ini_t));
1302a6d42e7dSPeter Dunlap 	if (!ptr) {
1303a6d42e7dSPeter Dunlap 		return (ENOMEM);
1304a6d42e7dSPeter Dunlap 	}
1305a6d42e7dSPeter Dunlap 
1306a6d42e7dSPeter Dunlap 	(void) strlcpy(ptr->ini_name, ini_node_name, sizeof (ptr->ini_name));
1307a6d42e7dSPeter Dunlap 	ptr->ini_generation = 1;
1308a6d42e7dSPeter Dunlap 	/* nvlist for props? */
1309a6d42e7dSPeter Dunlap 
1310a6d42e7dSPeter Dunlap 	ptr->ini_next = cfg->config_ini_list;
1311a6d42e7dSPeter Dunlap 	cfg->config_ini_list = ptr;
1312a6d42e7dSPeter Dunlap 	cfg->config_ini_count++;
1313a6d42e7dSPeter Dunlap 
1314a6d42e7dSPeter Dunlap 	*ini = ptr;
1315a6d42e7dSPeter Dunlap 
1316a6d42e7dSPeter Dunlap 	return (0);
1317a6d42e7dSPeter Dunlap }
1318a6d42e7dSPeter Dunlap 
1319a6d42e7dSPeter Dunlap /*
1320a6d42e7dSPeter Dunlap  * Function:  it_ini_setprop()
1321a6d42e7dSPeter Dunlap  *
1322a6d42e7dSPeter Dunlap  * Validate the provided property list and set the initiator properties.
1323a6d42e7dSPeter Dunlap  * If errlist is not NULL, returns detailed errors for each property
1324a6d42e7dSPeter Dunlap  * that failed.  The format for errorlist is key = property,
1325a6d42e7dSPeter Dunlap  * value = error string.
1326a6d42e7dSPeter Dunlap  *
1327a6d42e7dSPeter Dunlap  * Parameters:
1328a6d42e7dSPeter Dunlap  *
1329a6d42e7dSPeter Dunlap  *    ini		The initiator being updated.
1330a6d42e7dSPeter Dunlap  *    proplist		nvlist_t containing properties for this target.
1331a6d42e7dSPeter Dunlap  *    errlist		(optional)  nvlist_t of errors encountered when
1332a6d42e7dSPeter Dunlap  *			validating the properties.
1333a6d42e7dSPeter Dunlap  *
1334a6d42e7dSPeter Dunlap  * Return Values:
1335a6d42e7dSPeter Dunlap  *    0			Success
1336a6d42e7dSPeter Dunlap  *    EINVAL		Invalid property
1337a6d42e7dSPeter Dunlap  *
1338a6d42e7dSPeter Dunlap  */
1339a6d42e7dSPeter Dunlap int
1340a6d42e7dSPeter Dunlap it_ini_setprop(it_ini_t *ini, nvlist_t *proplist, nvlist_t **errlist)
1341a6d42e7dSPeter Dunlap {
1342a6d42e7dSPeter Dunlap 	int		ret;
1343a6d42e7dSPeter Dunlap 	nvlist_t	*iprops = NULL;
1344a6d42e7dSPeter Dunlap 	char		*val = NULL;
1345a6d42e7dSPeter Dunlap 
1346a6d42e7dSPeter Dunlap 	if (!ini || !proplist) {
1347a6d42e7dSPeter Dunlap 		return (EINVAL);
1348a6d42e7dSPeter Dunlap 	}
1349a6d42e7dSPeter Dunlap 
1350a6d42e7dSPeter Dunlap 	if (errlist) {
1351a6d42e7dSPeter Dunlap 		(void) nvlist_alloc(errlist, 0, 0);
1352a6d42e7dSPeter Dunlap 	}
1353a6d42e7dSPeter Dunlap 
1354a6d42e7dSPeter Dunlap 	/*
1355a6d42e7dSPeter Dunlap 	 * copy the existing properties, merge, then validate
1356a6d42e7dSPeter Dunlap 	 * the merged properties before committing them.
1357a6d42e7dSPeter Dunlap 	 */
1358a6d42e7dSPeter Dunlap 	if (ini->ini_properties) {
1359a6d42e7dSPeter Dunlap 		ret = nvlist_dup(ini->ini_properties, &iprops, 0);
1360a6d42e7dSPeter Dunlap 	} else {
1361a6d42e7dSPeter Dunlap 		ret = nvlist_alloc(&iprops, NV_UNIQUE_NAME, 0);
1362a6d42e7dSPeter Dunlap 	}
1363a6d42e7dSPeter Dunlap 
1364a6d42e7dSPeter Dunlap 	if (ret == 0) {
1365a6d42e7dSPeter Dunlap 		ret = nvlist_merge(iprops, proplist, 0);
1366a6d42e7dSPeter Dunlap 	}
1367a6d42e7dSPeter Dunlap 
1368a6d42e7dSPeter Dunlap 	/* unset chap username if requested */
1369a6d42e7dSPeter Dunlap 	if ((nvlist_lookup_string(proplist, PROP_CHAP_USER, &val)) == 0) {
1370a6d42e7dSPeter Dunlap 		if (strcasecmp(val, "none") == 0) {
1371a6d42e7dSPeter Dunlap 			(void) nvlist_remove_all(iprops, PROP_CHAP_USER);
1372a6d42e7dSPeter Dunlap 		}
1373a6d42e7dSPeter Dunlap 	}
1374a6d42e7dSPeter Dunlap 
1375a6d42e7dSPeter Dunlap 	/* base64 encode the CHAP secret, if it's changed */
1376a6d42e7dSPeter Dunlap 	if ((nvlist_lookup_string(proplist, PROP_CHAP_SECRET, &val)) == 0) {
1377a6d42e7dSPeter Dunlap 		char		bsecret[MAX_BASE64_LEN];
1378a6d42e7dSPeter Dunlap 
1379a6d42e7dSPeter Dunlap 		ret = it_val_pass(PROP_CHAP_SECRET, val, *errlist);
1380a6d42e7dSPeter Dunlap 		if (ret == 0) {
1381a6d42e7dSPeter Dunlap 			(void) memset(bsecret, 0, MAX_BASE64_LEN);
1382a6d42e7dSPeter Dunlap 
1383a6d42e7dSPeter Dunlap 			ret = iscsi_binary_to_base64_str((uint8_t *)val,
1384a6d42e7dSPeter Dunlap 			    strlen(val), bsecret, MAX_BASE64_LEN);
1385a6d42e7dSPeter Dunlap 
1386a6d42e7dSPeter Dunlap 			if (ret == 0) {
1387a6d42e7dSPeter Dunlap 				/* replace the value in the nvlist */
1388a6d42e7dSPeter Dunlap 				ret = nvlist_add_string(iprops,
1389a6d42e7dSPeter Dunlap 				    PROP_CHAP_SECRET, bsecret);
1390a6d42e7dSPeter Dunlap 			}
1391a6d42e7dSPeter Dunlap 		}
1392a6d42e7dSPeter Dunlap 	}
1393a6d42e7dSPeter Dunlap 
1394a6d42e7dSPeter Dunlap 	if (ret == 0) {
1395a6d42e7dSPeter Dunlap 		ret = it_validate_iniprops(iprops, *errlist);
1396a6d42e7dSPeter Dunlap 	}
1397a6d42e7dSPeter Dunlap 
1398a6d42e7dSPeter Dunlap 	if (ret != 0) {
1399a6d42e7dSPeter Dunlap 		if (iprops) {
1400a6d42e7dSPeter Dunlap 			nvlist_free(iprops);
1401a6d42e7dSPeter Dunlap 		}
1402a6d42e7dSPeter Dunlap 		return (ret);
1403a6d42e7dSPeter Dunlap 	}
1404a6d42e7dSPeter Dunlap 
1405a6d42e7dSPeter Dunlap 	if (ini->ini_properties) {
1406a6d42e7dSPeter Dunlap 		nvlist_free(ini->ini_properties);
1407a6d42e7dSPeter Dunlap 	}
1408a6d42e7dSPeter Dunlap 	ini->ini_properties = iprops;
1409a6d42e7dSPeter Dunlap 
1410a6d42e7dSPeter Dunlap 	return (0);
1411a6d42e7dSPeter Dunlap }
1412a6d42e7dSPeter Dunlap 
1413a6d42e7dSPeter Dunlap /*
1414a6d42e7dSPeter Dunlap  * Function:  it_ini_delete()
1415a6d42e7dSPeter Dunlap  *
1416a6d42e7dSPeter Dunlap  * Remove the specified initiator context from the global configuration.
1417a6d42e7dSPeter Dunlap  * The removal will not take effect until the modified configuration is
1418a6d42e7dSPeter Dunlap  * committed by calling it_config_commit().
1419a6d42e7dSPeter Dunlap  *
1420a6d42e7dSPeter Dunlap  * Parameters:
1421a6d42e7dSPeter Dunlap  *    cfg		The current iSCSI configration obtained from
1422a6d42e7dSPeter Dunlap  *			it_config_load()
1423a6d42e7dSPeter Dunlap  *    ini		Pointer to the it_ini_t structure representing
1424a6d42e7dSPeter Dunlap  *			the initiator context.
1425a6d42e7dSPeter Dunlap  */
1426a6d42e7dSPeter Dunlap void
1427a6d42e7dSPeter Dunlap it_ini_delete(it_config_t *cfg, it_ini_t *ini)
1428a6d42e7dSPeter Dunlap {
1429a6d42e7dSPeter Dunlap 	it_ini_t	*ptr;
1430a6d42e7dSPeter Dunlap 	it_ini_t	*prev = NULL;
1431a6d42e7dSPeter Dunlap 
1432a6d42e7dSPeter Dunlap 	if (!cfg || !ini) {
1433a6d42e7dSPeter Dunlap 		return;
1434a6d42e7dSPeter Dunlap 	}
1435a6d42e7dSPeter Dunlap 
1436a6d42e7dSPeter Dunlap 	ptr = cfg->config_ini_list;
1437a6d42e7dSPeter Dunlap 	while (ptr) {
1438a6d42e7dSPeter Dunlap 		if (strcmp(ptr->ini_name, ini->ini_name) == 0) {
1439a6d42e7dSPeter Dunlap 			break;
1440a6d42e7dSPeter Dunlap 		}
1441a6d42e7dSPeter Dunlap 		prev = ptr;
1442a6d42e7dSPeter Dunlap 		ptr = ptr->ini_next;
1443a6d42e7dSPeter Dunlap 	}
1444a6d42e7dSPeter Dunlap 
1445a6d42e7dSPeter Dunlap 	if (!ptr) {
1446a6d42e7dSPeter Dunlap 		return;
1447a6d42e7dSPeter Dunlap 	}
1448a6d42e7dSPeter Dunlap 
1449a6d42e7dSPeter Dunlap 	if (prev) {
1450a6d42e7dSPeter Dunlap 		prev->ini_next = ptr->ini_next;
1451a6d42e7dSPeter Dunlap 	} else {
1452a6d42e7dSPeter Dunlap 		cfg->config_ini_list = ptr->ini_next;
1453a6d42e7dSPeter Dunlap 	}
1454a6d42e7dSPeter Dunlap 
1455a6d42e7dSPeter Dunlap 	ptr->ini_next = NULL; /* Only free this initiator */
1456a6d42e7dSPeter Dunlap 
1457a6d42e7dSPeter Dunlap 	cfg->config_ini_count--;
1458a6d42e7dSPeter Dunlap 
1459a6d42e7dSPeter Dunlap 	it_ini_free(ptr);
1460a6d42e7dSPeter Dunlap }
1461a6d42e7dSPeter Dunlap 
1462a6d42e7dSPeter Dunlap /*
1463a6d42e7dSPeter Dunlap  * Function:  it_ini_free()
1464a6d42e7dSPeter Dunlap  *
1465a6d42e7dSPeter Dunlap  * Deallocates resources of an it_ini_t structure. If ini->next is
1466a6d42e7dSPeter Dunlap  * not NULL, frees all members of the list.
1467a6d42e7dSPeter Dunlap  */
1468a6d42e7dSPeter Dunlap void
1469a6d42e7dSPeter Dunlap it_ini_free(it_ini_t *ini)
1470a6d42e7dSPeter Dunlap {
1471a6d42e7dSPeter Dunlap 	it_ini_free_cmn(ini);
1472a6d42e7dSPeter Dunlap }
1473a6d42e7dSPeter Dunlap 
1474a6d42e7dSPeter Dunlap /*
1475a6d42e7dSPeter Dunlap  * Goes through the target property list and validates
1476a6d42e7dSPeter Dunlap  * each entry.  If errs is non-NULL, will return explicit errors
1477a6d42e7dSPeter Dunlap  * for each property that fails validation.
1478a6d42e7dSPeter Dunlap  */
1479a6d42e7dSPeter Dunlap static int
1480a6d42e7dSPeter Dunlap it_validate_tgtprops(nvlist_t *nvl, nvlist_t *errs)
1481a6d42e7dSPeter Dunlap {
1482a6d42e7dSPeter Dunlap 	int		errcnt = 0;
1483a6d42e7dSPeter Dunlap 	nvpair_t	*nvp = NULL;
1484a6d42e7dSPeter Dunlap 	data_type_t	nvtype;
1485a6d42e7dSPeter Dunlap 	char		*name;
1486a6d42e7dSPeter Dunlap 	char		*val;
1487a6d42e7dSPeter Dunlap 	char		*auth = NULL;
1488a6d42e7dSPeter Dunlap 
1489a6d42e7dSPeter Dunlap 	if (!nvl) {
1490a6d42e7dSPeter Dunlap 		return (0);
1491a6d42e7dSPeter Dunlap 	}
1492a6d42e7dSPeter Dunlap 
1493a6d42e7dSPeter Dunlap 	while ((nvp = nvlist_next_nvpair(nvl, nvp)) != NULL) {
1494a6d42e7dSPeter Dunlap 		name = nvpair_name(nvp);
1495a6d42e7dSPeter Dunlap 		nvtype = nvpair_type(nvp);
1496a6d42e7dSPeter Dunlap 
1497a6d42e7dSPeter Dunlap 		if (!name) {
1498a6d42e7dSPeter Dunlap 			continue;
1499a6d42e7dSPeter Dunlap 		}
1500a6d42e7dSPeter Dunlap 
1501a6d42e7dSPeter Dunlap 		val = NULL;
1502a6d42e7dSPeter Dunlap 		if (strcmp(name, PROP_TARGET_CHAP_USER) == 0) {
1503a6d42e7dSPeter Dunlap 			if (nvtype != DATA_TYPE_STRING) {
1504a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1505a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1506a6d42e7dSPeter Dunlap 				errcnt++;
1507a6d42e7dSPeter Dunlap 				continue;
1508a6d42e7dSPeter Dunlap 			}
1509a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_TARGET_CHAP_SECRET) == 0) {
1510a6d42e7dSPeter Dunlap 			/*
1511a6d42e7dSPeter Dunlap 			 * must be between 12 and 255 chars in cleartext.
1512a6d42e7dSPeter Dunlap 			 * will be base64 encoded when it's set.
1513a6d42e7dSPeter Dunlap 			 */
1514a6d42e7dSPeter Dunlap 			if (nvtype == DATA_TYPE_STRING) {
1515a6d42e7dSPeter Dunlap 				(void) nvpair_value_string(nvp, &val);
1516a6d42e7dSPeter Dunlap 			}
1517a6d42e7dSPeter Dunlap 
1518a6d42e7dSPeter Dunlap 			if (!val) {
1519a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1520a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1521a6d42e7dSPeter Dunlap 				errcnt++;
1522a6d42e7dSPeter Dunlap 				continue;
1523a6d42e7dSPeter Dunlap 			}
1524a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_ALIAS) == 0) {
1525a6d42e7dSPeter Dunlap 			if (nvtype != DATA_TYPE_STRING) {
1526a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1527a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1528a6d42e7dSPeter Dunlap 				errcnt++;
1529a6d42e7dSPeter Dunlap 				continue;
1530a6d42e7dSPeter Dunlap 			}
1531a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_AUTH) == 0) {
1532a6d42e7dSPeter Dunlap 			if (nvtype == DATA_TYPE_STRING) {
1533a6d42e7dSPeter Dunlap 				val = NULL;
1534a6d42e7dSPeter Dunlap 				(void) nvpair_value_string(nvp, &val);
1535a6d42e7dSPeter Dunlap 			}
1536a6d42e7dSPeter Dunlap 
1537a6d42e7dSPeter Dunlap 			if (!val) {
1538a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1539a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1540a6d42e7dSPeter Dunlap 				errcnt++;
1541a6d42e7dSPeter Dunlap 				continue;
1542a6d42e7dSPeter Dunlap 			}
1543a6d42e7dSPeter Dunlap 			if ((strcmp(val, PA_AUTH_NONE) != 0) &&
1544a6d42e7dSPeter Dunlap 			    (strcmp(val, PA_AUTH_CHAP) != 0) &&
1545a6d42e7dSPeter Dunlap 			    (strcmp(val, PA_AUTH_RADIUS) != 0) &&
1546a6d42e7dSPeter Dunlap 			    (strcmp(val, "default") != 0)) {
1547a6d42e7dSPeter Dunlap 				PROPERR(errs, val, gettext(
1548a6d42e7dSPeter Dunlap 				    "must be none, chap, radius or default"));
1549a6d42e7dSPeter Dunlap 				errcnt++;
1550a6d42e7dSPeter Dunlap 			}
1551a6d42e7dSPeter Dunlap 			auth = val;
1552a6d42e7dSPeter Dunlap 			continue;
1553a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_OLD_TARGET_NAME) == 0) {
1554a6d42e7dSPeter Dunlap 			continue;
1555a6d42e7dSPeter Dunlap 		} else {
1556a6d42e7dSPeter Dunlap 			/* unrecognized property */
1557a6d42e7dSPeter Dunlap 			PROPERR(errs, name, gettext("unrecognized property"));
1558a6d42e7dSPeter Dunlap 			errcnt++;
1559a6d42e7dSPeter Dunlap 		}
1560a6d42e7dSPeter Dunlap 	}
1561a6d42e7dSPeter Dunlap 
1562a6d42e7dSPeter Dunlap 	if (errcnt) {
1563a6d42e7dSPeter Dunlap 		return (EINVAL);
1564a6d42e7dSPeter Dunlap 	}
1565a6d42e7dSPeter Dunlap 
1566a6d42e7dSPeter Dunlap 	/* if auth is being set to default, remove from this nvlist */
1567a6d42e7dSPeter Dunlap 	if (auth && (strcmp(auth, "default") == 0)) {
1568a6d42e7dSPeter Dunlap 		(void) nvlist_remove_all(nvl, PROP_AUTH);
1569a6d42e7dSPeter Dunlap 	}
1570a6d42e7dSPeter Dunlap 
1571a6d42e7dSPeter Dunlap 	return (0);
1572a6d42e7dSPeter Dunlap }
1573a6d42e7dSPeter Dunlap 
1574a6d42e7dSPeter Dunlap /*
1575a6d42e7dSPeter Dunlap  * Goes through the config property list and validates
1576a6d42e7dSPeter Dunlap  * each entry.  If errs is non-NULL, will return explicit errors
1577a6d42e7dSPeter Dunlap  * for each property that fails validation.
1578a6d42e7dSPeter Dunlap  */
1579a6d42e7dSPeter Dunlap static int
1580a6d42e7dSPeter Dunlap it_validate_configprops(nvlist_t *nvl, nvlist_t *errs)
1581a6d42e7dSPeter Dunlap {
1582a6d42e7dSPeter Dunlap 	int				errcnt = 0;
1583a6d42e7dSPeter Dunlap 	nvpair_t			*nvp = NULL;
1584a6d42e7dSPeter Dunlap 	data_type_t			nvtype;
1585a6d42e7dSPeter Dunlap 	char				*name;
1586a6d42e7dSPeter Dunlap 	char				*val;
1587a6d42e7dSPeter Dunlap 	struct sockaddr_storage		sa;
1588bf604c64SPeter Dunlap 	boolean_t			update_rad_server = B_FALSE;
1589bf604c64SPeter Dunlap 	char				*rad_server;
1590a6d42e7dSPeter Dunlap 	char				*auth = NULL;
1591a6d42e7dSPeter Dunlap 
1592a6d42e7dSPeter Dunlap 	if (!nvl) {
1593a6d42e7dSPeter Dunlap 		return (0);
1594a6d42e7dSPeter Dunlap 	}
1595a6d42e7dSPeter Dunlap 
1596a6d42e7dSPeter Dunlap 	while ((nvp = nvlist_next_nvpair(nvl, nvp)) != NULL) {
1597a6d42e7dSPeter Dunlap 		name = nvpair_name(nvp);
1598a6d42e7dSPeter Dunlap 		nvtype = nvpair_type(nvp);
1599a6d42e7dSPeter Dunlap 
1600a6d42e7dSPeter Dunlap 		if (!name) {
1601a6d42e7dSPeter Dunlap 			continue;
1602a6d42e7dSPeter Dunlap 		}
1603a6d42e7dSPeter Dunlap 
1604a6d42e7dSPeter Dunlap 		val = NULL;
1605a6d42e7dSPeter Dunlap 
1606a6d42e7dSPeter Dunlap 		/* prefetch string value as we mostly need it */
1607a6d42e7dSPeter Dunlap 		if (nvtype == DATA_TYPE_STRING) {
1608a6d42e7dSPeter Dunlap 			(void) nvpair_value_string(nvp, &val);
1609a6d42e7dSPeter Dunlap 		}
1610a6d42e7dSPeter Dunlap 
1611a6d42e7dSPeter Dunlap 		if (strcmp(name, PROP_ALIAS) == 0) {
1612a6d42e7dSPeter Dunlap 			if (!val) {
1613a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1614a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1615a6d42e7dSPeter Dunlap 				errcnt++;
1616a6d42e7dSPeter Dunlap 			}
1617a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_AUTH) == 0) {
1618a6d42e7dSPeter Dunlap 			if (!val) {
1619a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1620a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1621a6d42e7dSPeter Dunlap 				errcnt++;
1622a6d42e7dSPeter Dunlap 				continue;
1623a6d42e7dSPeter Dunlap 			}
1624a6d42e7dSPeter Dunlap 
1625a6d42e7dSPeter Dunlap 			if ((strcmp(val, PA_AUTH_NONE) != 0) &&
1626a6d42e7dSPeter Dunlap 			    (strcmp(val, PA_AUTH_CHAP) != 0) &&
1627a6d42e7dSPeter Dunlap 			    (strcmp(val, PA_AUTH_RADIUS) != 0)) {
1628a6d42e7dSPeter Dunlap 				PROPERR(errs, PROP_AUTH,
1629a6d42e7dSPeter Dunlap 				    gettext("must be none, chap or radius"));
1630a6d42e7dSPeter Dunlap 				errcnt++;
1631a6d42e7dSPeter Dunlap 			}
1632a6d42e7dSPeter Dunlap 
1633a6d42e7dSPeter Dunlap 			auth = val;
1634a6d42e7dSPeter Dunlap 
1635a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_ISNS_ENABLED) == 0) {
1636a6d42e7dSPeter Dunlap 			if (nvtype != DATA_TYPE_BOOLEAN_VALUE) {
1637a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1638a6d42e7dSPeter Dunlap 				    gettext("must be a boolean value"));
1639a6d42e7dSPeter Dunlap 				errcnt++;
1640a6d42e7dSPeter Dunlap 			}
1641a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_ISNS_SERVER) == 0) {
1642a6d42e7dSPeter Dunlap 			char		**arr = NULL;
1643a6d42e7dSPeter Dunlap 			uint32_t	acount = 0;
1644a6d42e7dSPeter Dunlap 
1645a6d42e7dSPeter Dunlap 			(void) nvlist_lookup_string_array(nvl, name,
1646a6d42e7dSPeter Dunlap 			    &arr, &acount);
1647a6d42e7dSPeter Dunlap 
1648a6d42e7dSPeter Dunlap 			while (acount > 0) {
1649a6d42e7dSPeter Dunlap 				if (strcasecmp(arr[acount - 1], "none") == 0) {
1650a6d42e7dSPeter Dunlap 					break;
1651a6d42e7dSPeter Dunlap 				}
1652a6d42e7dSPeter Dunlap 				if ((it_common_convert_sa(arr[acount - 1],
1653a6d42e7dSPeter Dunlap 				    &sa, 0)) == NULL) {
1654a6d42e7dSPeter Dunlap 					PROPERR(errs, arr[acount - 1],
1655a6d42e7dSPeter Dunlap 					    gettext("invalid address"));
1656a6d42e7dSPeter Dunlap 					errcnt++;
1657a6d42e7dSPeter Dunlap 				}
1658a6d42e7dSPeter Dunlap 				acount--;
1659a6d42e7dSPeter Dunlap 			}
1660a6d42e7dSPeter Dunlap 
1661a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_RADIUS_SECRET) == 0) {
1662a6d42e7dSPeter Dunlap 			if (!val) {
1663a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1664a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1665a6d42e7dSPeter Dunlap 				errcnt++;
1666a6d42e7dSPeter Dunlap 				continue;
1667a6d42e7dSPeter Dunlap 			}
1668a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_RADIUS_SERVER) == 0) {
1669a6d42e7dSPeter Dunlap 			struct sockaddr_storage		sa;
1670a6d42e7dSPeter Dunlap 			if (!val) {
1671a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1672a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1673a6d42e7dSPeter Dunlap 				errcnt++;
1674a6d42e7dSPeter Dunlap 				continue;
1675a6d42e7dSPeter Dunlap 			}
1676a6d42e7dSPeter Dunlap 
1677a6d42e7dSPeter Dunlap 			if ((it_common_convert_sa(val, &sa,
1678a6d42e7dSPeter Dunlap 			    DEFAULT_RADIUS_PORT)) == NULL) {
1679a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1680a6d42e7dSPeter Dunlap 				    gettext("invalid address"));
1681a6d42e7dSPeter Dunlap 				errcnt++;
1682a6d42e7dSPeter Dunlap 			} else {
1683a6d42e7dSPeter Dunlap 				/*
1684a6d42e7dSPeter Dunlap 				 * rewrite this property to ensure port
1685a6d42e7dSPeter Dunlap 				 * number is added.
1686a6d42e7dSPeter Dunlap 				 */
1687a6d42e7dSPeter Dunlap 
1688bf604c64SPeter Dunlap 				if (sockaddr_to_str(&sa, &rad_server) == 0) {
1689bf604c64SPeter Dunlap 					update_rad_server = B_TRUE;
1690a6d42e7dSPeter Dunlap 				}
1691a6d42e7dSPeter Dunlap 			}
1692a6d42e7dSPeter Dunlap 		} else {
1693a6d42e7dSPeter Dunlap 			/* unrecognized property */
1694a6d42e7dSPeter Dunlap 			PROPERR(errs, name, gettext("unrecognized property"));
1695a6d42e7dSPeter Dunlap 			errcnt++;
1696a6d42e7dSPeter Dunlap 		}
1697a6d42e7dSPeter Dunlap 	}
1698a6d42e7dSPeter Dunlap 
1699a6d42e7dSPeter Dunlap 	/*
1700bf604c64SPeter Dunlap 	 * If we successfully reformatted the radius server to add the port
1701bf604c64SPeter Dunlap 	 * number then update the nvlist
1702bf604c64SPeter Dunlap 	 */
1703bf604c64SPeter Dunlap 	if (update_rad_server) {
17046ced70a9SPriya Krishnan 		(void) nvlist_add_string(nvl, PROP_RADIUS_SERVER, rad_server);
1705bf604c64SPeter Dunlap 	}
1706bf604c64SPeter Dunlap 
1707bf604c64SPeter Dunlap 	/*
1708a6d42e7dSPeter Dunlap 	 * if auth = radius, ensure radius server & secret are set.
1709a6d42e7dSPeter Dunlap 	 */
1710a6d42e7dSPeter Dunlap 	if (auth) {
1711a6d42e7dSPeter Dunlap 		if (strcmp(auth, PA_AUTH_RADIUS) == 0) {
1712a6d42e7dSPeter Dunlap 			/* need server & secret for radius */
1713a6d42e7dSPeter Dunlap 			if (!nvlist_exists(nvl, PROP_RADIUS_SERVER)) {
1714a6d42e7dSPeter Dunlap 				PROPERR(errs, PROP_RADIUS_SERVER,
1715a6d42e7dSPeter Dunlap 				    gettext("missing required property"));
1716a6d42e7dSPeter Dunlap 				errcnt++;
1717a6d42e7dSPeter Dunlap 			}
1718a6d42e7dSPeter Dunlap 			if (!nvlist_exists(nvl, PROP_RADIUS_SECRET)) {
1719a6d42e7dSPeter Dunlap 				PROPERR(errs, PROP_RADIUS_SECRET,
1720a6d42e7dSPeter Dunlap 				    gettext("missing required property"));
1721a6d42e7dSPeter Dunlap 				errcnt++;
1722a6d42e7dSPeter Dunlap 			}
1723a6d42e7dSPeter Dunlap 		}
1724a6d42e7dSPeter Dunlap 	}
1725a6d42e7dSPeter Dunlap 
1726a6d42e7dSPeter Dunlap 	if (errcnt) {
1727a6d42e7dSPeter Dunlap 		return (EINVAL);
1728a6d42e7dSPeter Dunlap 	}
1729a6d42e7dSPeter Dunlap 
1730a6d42e7dSPeter Dunlap 	return (0);
1731a6d42e7dSPeter Dunlap }
1732a6d42e7dSPeter Dunlap 
1733a6d42e7dSPeter Dunlap /*
1734a6d42e7dSPeter Dunlap  * Goes through the ini property list and validates
1735a6d42e7dSPeter Dunlap  * each entry.  If errs is non-NULL, will return explicit errors
1736a6d42e7dSPeter Dunlap  * for each property that fails validation.
1737a6d42e7dSPeter Dunlap  */
1738a6d42e7dSPeter Dunlap static int
1739a6d42e7dSPeter Dunlap it_validate_iniprops(nvlist_t *nvl, nvlist_t *errs)
1740a6d42e7dSPeter Dunlap {
1741a6d42e7dSPeter Dunlap 	int				errcnt = 0;
1742a6d42e7dSPeter Dunlap 	nvpair_t			*nvp = NULL;
1743a6d42e7dSPeter Dunlap 	data_type_t			nvtype;
1744a6d42e7dSPeter Dunlap 	char				*name;
1745a6d42e7dSPeter Dunlap 	char				*val;
1746a6d42e7dSPeter Dunlap 
1747a6d42e7dSPeter Dunlap 	if (!nvl) {
1748a6d42e7dSPeter Dunlap 		return (0);
1749a6d42e7dSPeter Dunlap 	}
1750a6d42e7dSPeter Dunlap 
1751a6d42e7dSPeter Dunlap 	while ((nvp = nvlist_next_nvpair(nvl, nvp)) != NULL) {
1752a6d42e7dSPeter Dunlap 		name = nvpair_name(nvp);
1753a6d42e7dSPeter Dunlap 		nvtype = nvpair_type(nvp);
1754a6d42e7dSPeter Dunlap 
1755a6d42e7dSPeter Dunlap 		if (!name) {
1756a6d42e7dSPeter Dunlap 			continue;
1757a6d42e7dSPeter Dunlap 		}
1758a6d42e7dSPeter Dunlap 
1759a6d42e7dSPeter Dunlap 		if (strcmp(name, PROP_CHAP_USER) == 0) {
1760a6d42e7dSPeter Dunlap 			if (nvtype != DATA_TYPE_STRING) {
1761a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1762a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1763a6d42e7dSPeter Dunlap 				errcnt++;
1764a6d42e7dSPeter Dunlap 				continue;
1765a6d42e7dSPeter Dunlap 			}
1766a6d42e7dSPeter Dunlap 		} else if (strcmp(name, PROP_CHAP_SECRET) == 0) {
1767a6d42e7dSPeter Dunlap 			/*
1768a6d42e7dSPeter Dunlap 			 * must be between 12 and 255 chars in cleartext.
1769a6d42e7dSPeter Dunlap 			 * will be base64 encoded when it's set.
1770a6d42e7dSPeter Dunlap 			 */
1771a6d42e7dSPeter Dunlap 			if (nvtype == DATA_TYPE_STRING) {
1772a6d42e7dSPeter Dunlap 				val = NULL;
1773a6d42e7dSPeter Dunlap 				(void) nvpair_value_string(nvp, &val);
1774a6d42e7dSPeter Dunlap 			}
1775a6d42e7dSPeter Dunlap 
1776a6d42e7dSPeter Dunlap 			if (!val) {
1777a6d42e7dSPeter Dunlap 				PROPERR(errs, name,
1778a6d42e7dSPeter Dunlap 				    gettext("must be a string value"));
1779a6d42e7dSPeter Dunlap 				errcnt++;
1780a6d42e7dSPeter Dunlap 				continue;
1781a6d42e7dSPeter Dunlap 			}
1782a6d42e7dSPeter Dunlap 		} else {
1783a6d42e7dSPeter Dunlap 			/* unrecognized property */
1784a6d42e7dSPeter Dunlap 			PROPERR(errs, name, gettext("unrecognized property"));
1785a6d42e7dSPeter Dunlap 			errcnt++;
1786a6d42e7dSPeter Dunlap 		}
1787a6d42e7dSPeter Dunlap 	}
1788a6d42e7dSPeter Dunlap 
1789a6d42e7dSPeter Dunlap 	if (errcnt) {
1790a6d42e7dSPeter Dunlap 		return (EINVAL);
1791a6d42e7dSPeter Dunlap 	}
1792a6d42e7dSPeter Dunlap 
1793a6d42e7dSPeter Dunlap 	return (0);
1794a6d42e7dSPeter Dunlap }
1795a6d42e7dSPeter Dunlap 
1796a6d42e7dSPeter Dunlap static int
1797a6d42e7dSPeter Dunlap it_iqn_generate(char *iqn_buf, int iqn_buf_len, char *opt_iqn_suffix)
1798a6d42e7dSPeter Dunlap {
1799a6d42e7dSPeter Dunlap 	int		ret;
1800a6d42e7dSPeter Dunlap 	uuid_t		id;
1801a6d42e7dSPeter Dunlap 	char		id_str[UUID_PRINTABLE_STRING_LENGTH];
1802a6d42e7dSPeter Dunlap 
1803a6d42e7dSPeter Dunlap 	uuid_generate_random(id);
1804a6d42e7dSPeter Dunlap 	uuid_unparse(id, id_str);
1805a6d42e7dSPeter Dunlap 
1806a6d42e7dSPeter Dunlap 	if (opt_iqn_suffix) {
1807a6d42e7dSPeter Dunlap 		ret = snprintf(iqn_buf, iqn_buf_len, "iqn.1986-03.com.sun:"
1808a6d42e7dSPeter Dunlap 		    "%02d:%s.%s", TARGET_NAME_VERS, id_str, opt_iqn_suffix);
1809a6d42e7dSPeter Dunlap 	} else {
1810a6d42e7dSPeter Dunlap 		ret = snprintf(iqn_buf, iqn_buf_len, "iqn.1986-03.com.sun:"
1811a6d42e7dSPeter Dunlap 		    "%02d:%s", TARGET_NAME_VERS, id_str);
1812a6d42e7dSPeter Dunlap 	}
1813a6d42e7dSPeter Dunlap 
1814a6d42e7dSPeter Dunlap 	if (ret > iqn_buf_len) {
1815a6d42e7dSPeter Dunlap 		return (1);
1816a6d42e7dSPeter Dunlap 	}
1817a6d42e7dSPeter Dunlap 
1818a6d42e7dSPeter Dunlap 	return (0);
1819a6d42e7dSPeter Dunlap }
1820a6d42e7dSPeter Dunlap 
1821a6d42e7dSPeter Dunlap static int
1822a6d42e7dSPeter Dunlap it_val_pass(char *name, char *val, nvlist_t *e)
1823a6d42e7dSPeter Dunlap {
1824a6d42e7dSPeter Dunlap 	size_t		sz;
1825a6d42e7dSPeter Dunlap 
1826a6d42e7dSPeter Dunlap 	if (!name || !val) {
1827a6d42e7dSPeter Dunlap 		return (EINVAL);
1828a6d42e7dSPeter Dunlap 	}
1829a6d42e7dSPeter Dunlap 
1830a6d42e7dSPeter Dunlap 	/*
1831a6d42e7dSPeter Dunlap 	 * must be at least 12 chars and less than 256 chars cleartext.
1832a6d42e7dSPeter Dunlap 	 */
1833a6d42e7dSPeter Dunlap 	sz = strlen(val);
1834a6d42e7dSPeter Dunlap 
1835a6d42e7dSPeter Dunlap 	/*
1836a6d42e7dSPeter Dunlap 	 * Since we will be automatically encoding secrets we don't really
1837a6d42e7dSPeter Dunlap 	 * need the prefix anymore.
1838a6d42e7dSPeter Dunlap 	 */
1839a6d42e7dSPeter Dunlap 	if (sz < 12) {
1840a6d42e7dSPeter Dunlap 		PROPERR(e, name, gettext("secret too short"));
1841a6d42e7dSPeter Dunlap 	} else if (sz > 255) {
1842a6d42e7dSPeter Dunlap 		PROPERR(e, name, gettext("secret too long"));
1843a6d42e7dSPeter Dunlap 	} else {
1844a6d42e7dSPeter Dunlap 		/* all is well */
1845a6d42e7dSPeter Dunlap 		return (0);
1846a6d42e7dSPeter Dunlap 	}
1847a6d42e7dSPeter Dunlap 
1848a6d42e7dSPeter Dunlap 	return (1);
1849a6d42e7dSPeter Dunlap }
1850a6d42e7dSPeter Dunlap 
1851a6d42e7dSPeter Dunlap /*
1852a6d42e7dSPeter Dunlap  * Function:  validate_iscsi_name()
1853a6d42e7dSPeter Dunlap  *
1854a6d42e7dSPeter Dunlap  * Ensures the passed-in string is a valid IQN or EUI iSCSI name
1855a6d42e7dSPeter Dunlap  *
1856a6d42e7dSPeter Dunlap  */
1857a6d42e7dSPeter Dunlap boolean_t
1858a6d42e7dSPeter Dunlap validate_iscsi_name(char *in_name)
1859a6d42e7dSPeter Dunlap {
1860a6d42e7dSPeter Dunlap 	size_t		in_len;
1861a6d42e7dSPeter Dunlap 	int		i;
1862a6d42e7dSPeter Dunlap 	char		month[3];
1863a6d42e7dSPeter Dunlap 
1864a6d42e7dSPeter Dunlap 	if (in_name == NULL) {
1865a6d42e7dSPeter Dunlap 		return (B_FALSE);
1866a6d42e7dSPeter Dunlap 	}
1867a6d42e7dSPeter Dunlap 
1868a6d42e7dSPeter Dunlap 	in_len = strlen(in_name);
1869a6d42e7dSPeter Dunlap 	if (in_len < 12) {
1870a6d42e7dSPeter Dunlap 		return (B_FALSE);
1871a6d42e7dSPeter Dunlap 	}
1872a6d42e7dSPeter Dunlap 
1873a6d42e7dSPeter Dunlap 	if (strncasecmp(in_name, "iqn.", 4) == 0) {
1874a6d42e7dSPeter Dunlap 		/*
1875a6d42e7dSPeter Dunlap 		 * IQN names are iqn.yyyy-mm.<xxx>
1876a6d42e7dSPeter Dunlap 		 */
1877a6d42e7dSPeter Dunlap 		if ((!isdigit(in_name[4])) ||
1878a6d42e7dSPeter Dunlap 		    (!isdigit(in_name[5])) ||
1879a6d42e7dSPeter Dunlap 		    (!isdigit(in_name[6])) ||
1880a6d42e7dSPeter Dunlap 		    (!isdigit(in_name[7])) ||
1881a6d42e7dSPeter Dunlap 		    (in_name[8] != '-') ||
1882a6d42e7dSPeter Dunlap 		    (!isdigit(in_name[9])) ||
1883a6d42e7dSPeter Dunlap 		    (!isdigit(in_name[10])) ||
1884a6d42e7dSPeter Dunlap 		    (in_name[11] != '.')) {
1885a6d42e7dSPeter Dunlap 			return (B_FALSE);
1886a6d42e7dSPeter Dunlap 		}
1887a6d42e7dSPeter Dunlap 
1888a6d42e7dSPeter Dunlap 		(void) strncpy(month, &(in_name[9]), 2);
1889a6d42e7dSPeter Dunlap 		month[2] = '\0';
1890a6d42e7dSPeter Dunlap 
1891a6d42e7dSPeter Dunlap 		i = atoi(month);
1892a6d42e7dSPeter Dunlap 		if ((i < 0) || (i > 12)) {
1893a6d42e7dSPeter Dunlap 			return (B_FALSE);
1894a6d42e7dSPeter Dunlap 		}
1895a6d42e7dSPeter Dunlap 
1896836fc322SSam Cramer 		/*
1897836fc322SSam Cramer 		 * RFC 3722: if using only ASCII chars, only the following
1898836fc322SSam Cramer 		 * chars are allowed: dash, dot, colon, lower case a-z, 0-9.
1899836fc322SSam Cramer 		 * We allow upper case names, which should be folded
1900836fc322SSam Cramer 		 * to lower case names later.
1901836fc322SSam Cramer 		 */
1902836fc322SSam Cramer 		for (i = 12; i < in_len; i++) {
1903836fc322SSam Cramer 			char c = in_name[i];
1904836fc322SSam Cramer 
1905836fc322SSam Cramer 			if ((c != '-') && (c != '.') && (c != ':') &&
1906836fc322SSam Cramer 			    !isalpha(c) && !isdigit(c)) {
1907836fc322SSam Cramer 				return (B_FALSE);
1908836fc322SSam Cramer 			}
1909836fc322SSam Cramer 		}
1910836fc322SSam Cramer 
1911a6d42e7dSPeter Dunlap 		/* Finally, validate the overall length, in wide chars */
1912a6d42e7dSPeter Dunlap 		in_len = mbstowcs(NULL, in_name, 0);
1913a6d42e7dSPeter Dunlap 		if (in_len > ISCSI_NAME_LEN_MAX) {
1914a6d42e7dSPeter Dunlap 			return (B_FALSE);
1915a6d42e7dSPeter Dunlap 		}
1916a6d42e7dSPeter Dunlap 	} else if (strncasecmp(in_name, "eui.", 4) == 0) {
1917a6d42e7dSPeter Dunlap 		/*
1918a6d42e7dSPeter Dunlap 		 * EUI names are "eui." + 16 hex chars
1919a6d42e7dSPeter Dunlap 		 */
1920a6d42e7dSPeter Dunlap 		if (in_len != 20) {
1921a6d42e7dSPeter Dunlap 			return (B_FALSE);
1922a6d42e7dSPeter Dunlap 		}
1923a6d42e7dSPeter Dunlap 
1924a6d42e7dSPeter Dunlap 		for (i = 4; i < in_len; i++) {
1925a6d42e7dSPeter Dunlap 			if (!isxdigit(in_name[i])) {
1926a6d42e7dSPeter Dunlap 				return (B_FALSE);
1927a6d42e7dSPeter Dunlap 			}
1928a6d42e7dSPeter Dunlap 		}
1929a6d42e7dSPeter Dunlap 	} else {
1930a6d42e7dSPeter Dunlap 		return (B_FALSE);
1931a6d42e7dSPeter Dunlap 	}
1932a6d42e7dSPeter Dunlap 
1933a6d42e7dSPeter Dunlap 	return (B_TRUE);
1934a6d42e7dSPeter Dunlap }
1935*5de03f84SSue Gleeson 
1936*5de03f84SSue Gleeson static boolean_t
1937*5de03f84SSue Gleeson is_iscsit_enabled(void)
1938*5de03f84SSue Gleeson {
1939*5de03f84SSue Gleeson 	char		*state;
1940*5de03f84SSue Gleeson 
1941*5de03f84SSue Gleeson 	state = smf_get_state(ISCSIT_FMRI);
1942*5de03f84SSue Gleeson 	if (state != NULL) {
1943*5de03f84SSue Gleeson 		if (strcmp(state, SCF_STATE_STRING_ONLINE) == 0) {
1944*5de03f84SSue Gleeson 			return (B_TRUE);
1945*5de03f84SSue Gleeson 		}
1946*5de03f84SSue Gleeson 	}
1947*5de03f84SSue Gleeson 
1948*5de03f84SSue Gleeson 	return (B_FALSE);
1949*5de03f84SSue Gleeson }
1950