1 /* $KAME: if_faith.c,v 1.23 2001/12/17 13:55:29 sumikawa Exp $ */
4 * Copyright (c) 1982, 1986, 1993
5 * The Regents of the University of California. All rights reserved.
7 * Redistribution and use in source and binary forms, with or without
8 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
15 * 3. All advertising materials mentioning features or use of this software
16 * must display the following acknowledgement:
17 * This product includes software developed by the University of
18 * California, Berkeley and its contributors.
19 * 4. Neither the name of the University nor the names of its contributors
20 * may be used to endorse or promote products derived from this software
21 * without specific prior written permission.
23 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
35 * $FreeBSD: src/sys/net/if_faith.c,v 1.3.2.6 2002/04/28 05:40:25 suz Exp $
39 * @(#)if_loop.c 8.1 (Berkeley) 6/10/93
40 * Id: if_loop.c,v 1.22 1996/06/19 16:24:10 wollman Exp
44 * Loopback interface driver for protocol testing and timing.
47 #include "use_faith.h"
50 #include "opt_inet6.h"
52 #include <sys/param.h>
53 #include <sys/systm.h>
54 #include <sys/kernel.h>
57 #include <sys/socket.h>
58 #include <sys/errno.h>
59 #include <sys/sockio.h>
61 #include <sys/queue.h>
62 #include <sys/types.h>
63 #include <sys/malloc.h>
66 #include <net/if_types.h>
67 #include <net/netisr.h>
68 #include <net/route.h>
70 #include <net/if_clone.h>
73 #include <netinet/in.h>
74 #include <netinet/in_systm.h>
75 #include <netinet/in_var.h>
76 #include <netinet/ip.h>
81 #include <netinet/in.h>
83 #include <netinet6/in6_var.h>
84 #include <netinet/ip6.h>
85 #include <netinet6/ip6_var.h>
88 #include <net/net_osdep.h>
90 #define FAITHNAME "faith"
93 struct ifnet sc_if; /* must be first */
94 LIST_ENTRY(faith_softc) sc_list;
97 static int faithioctl (struct ifnet *, u_long, caddr_t, struct ucred *);
98 int faithoutput (struct ifnet *, struct mbuf *, struct sockaddr *,
100 static void faithrtrequest (int, struct rtentry *, struct rt_addrinfo *);
102 static int faithprefix (struct in6_addr *);
105 static int faithmodevent (module_t, int, void *);
107 static MALLOC_DEFINE(M_FAITH, FAITHNAME, "Firewall Assisted Tunnel Interface");
108 LIST_HEAD(, faith_softc) faith_softc_list;
110 int faith_clone_create (struct if_clone *, int, caddr_t);
111 int faith_clone_destroy (struct ifnet *);
113 struct if_clone faith_cloner = IF_CLONE_INITIALIZER(FAITHNAME,
114 faith_clone_create, faith_clone_destroy, NFAITH, IF_MAXUNIT);
116 #define FAITHMTU 1500
119 faithmodevent(module_t mod, int type, void *data)
124 LIST_INIT(&faith_softc_list);
125 if_clone_attach(&faith_cloner);
128 faithprefix_p = faithprefix;
134 faithprefix_p = NULL;
137 if_clone_detach(&faith_cloner);
139 while (!LIST_EMPTY(&faith_softc_list))
141 &LIST_FIRST(&faith_softc_list)->sc_if);
148 static moduledata_t faith_mod = {
154 DECLARE_MODULE(if_faith, faith_mod, SI_SUB_PSEUDO, SI_ORDER_ANY);
155 MODULE_VERSION(if_faith, 1);
158 faith_clone_create(struct if_clone *ifc, int unit, caddr_t param __unused)
160 struct faith_softc *sc;
162 sc = kmalloc(sizeof(struct faith_softc), M_FAITH, M_WAITOK | M_ZERO);
164 sc->sc_if.if_softc = sc;
165 if_initname(&(sc->sc_if), FAITHNAME, unit);
167 sc->sc_if.if_mtu = FAITHMTU;
168 /* Change to BROADCAST experimentaly to announce its prefix. */
169 sc->sc_if.if_flags = /* IFF_LOOPBACK */ IFF_BROADCAST | IFF_MULTICAST;
170 sc->sc_if.if_ioctl = faithioctl;
171 sc->sc_if.if_output = faithoutput;
172 sc->sc_if.if_type = IFT_FAITH;
173 sc->sc_if.if_hdrlen = 0;
174 sc->sc_if.if_addrlen = 0;
175 sc->sc_if.if_snd.ifq_maxlen = ifqmaxlen;
176 if_attach(&sc->sc_if, NULL);
177 bpfattach(&sc->sc_if, DLT_NULL, sizeof(u_int));
178 LIST_INSERT_HEAD(&faith_softc_list, sc, sc_list);
183 faith_clone_destroy(struct ifnet *ifp)
185 struct faith_softc *sc = (struct faith_softc *) ifp;
187 LIST_REMOVE(sc, sc_list);
197 faithoutput(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst,
202 if ((m->m_flags & M_PKTHDR) == 0)
203 panic("faithoutput no HDR");
205 /* BPF write needs to be handled specially */
206 if (dst->sa_family == AF_UNSPEC) {
207 dst->sa_family = *(mtod(m, int *));
208 m->m_len -= sizeof(int);
209 m->m_pkthdr.len -= sizeof(int);
210 m->m_data += sizeof(int);
213 if (ifp->if_bpf != NULL) {
215 * We need to prepend the address family as
218 uint32_t af = dst->sa_family;
220 bpf_ptap(ifp->if_bpf, m, &af, sizeof(af));
223 if (rt && rt->rt_flags & (RTF_REJECT|RTF_BLACKHOLE)) {
225 return (rt->rt_flags & RTF_BLACKHOLE ? 0 :
226 rt->rt_flags & RTF_HOST ? EHOSTUNREACH : ENETUNREACH);
229 ifp->if_obytes += m->m_pkthdr.len;
230 switch (dst->sa_family) {
246 /* XXX do we need more sanity checks? */
248 m->m_pkthdr.rcvif = ifp;
249 m->m_flags &= ~M_HASH;
251 ifp->if_ibytes += m->m_pkthdr.len;
252 netisr_queue(isr, m);
258 faithrtrequest(int cmd, struct rtentry *rt, struct rt_addrinfo *info)
261 rt->rt_rmx.rmx_mtu = rt->rt_ifp->if_mtu; /* for ISO */
263 * For optimal performance, the send and receive buffers
264 * should be at least twice the MTU plus a little more for
267 rt->rt_rmx.rmx_recvpipe =
268 rt->rt_rmx.rmx_sendpipe = 3 * FAITHMTU;
273 * Process an ioctl request.
277 faithioctl(struct ifnet *ifp, u_long cmd, caddr_t data, struct ucred *cr)
280 struct ifreq *ifr = (struct ifreq *)data;
286 ifp->if_flags |= IFF_UP | IFF_RUNNING;
287 ifa = (struct ifaddr *)data;
288 ifa->ifa_rtrequest = faithrtrequest;
290 * Everything else is done at a higher level.
297 error = EAFNOSUPPORT; /* XXX */
300 switch (ifr->ifr_addr.sa_family) {
311 error = EAFNOSUPPORT;
318 ifp->if_mtu = ifr->ifr_mtu;
334 * XXX could be layer violation to call sys/net from sys/netinet6
337 faithprefix(struct in6_addr *in6)
340 struct sockaddr_in6 sin6;
343 if (ip6_keepfaith == 0)
346 bzero(&sin6, sizeof sin6);
347 sin6.sin6_family = AF_INET6;
348 sin6.sin6_len = sizeof(struct sockaddr_in6);
349 sin6.sin6_addr = *in6;
350 rt = rtpurelookup((struct sockaddr *)&sin6);
351 if (rt != NULL && rt->rt_ifp && rt->rt_ifp->if_type == IFT_FAITH &&
352 (rt->rt_ifp->if_flags & IFF_UP))