]>
Commit | Line | Data |
---|---|---|
0c530ab8 | 1 | /* |
fe8ab488 | 2 | * Copyright (c) 2012-2014 Apple Inc. All rights reserved. |
0c530ab8 | 3 | * |
2d21ac55 | 4 | * @APPLE_OSREFERENCE_LICENSE_HEADER_START@ |
39236c6e | 5 | * |
2d21ac55 A |
6 | * This file contains Original Code and/or Modifications of Original Code |
7 | * as defined in and that are subject to the Apple Public Source License | |
8 | * Version 2.0 (the 'License'). You may not use this file except in | |
9 | * compliance with the License. The rights granted to you under the License | |
10 | * may not be used to create, or enable the creation or redistribution of, | |
11 | * unlawful or unlicensed copies of an Apple operating system, or to | |
12 | * circumvent, violate, or enable the circumvention or violation of, any | |
13 | * terms of an Apple operating system software license agreement. | |
39236c6e | 14 | * |
2d21ac55 A |
15 | * Please obtain a copy of the License at |
16 | * http://www.opensource.apple.com/apsl/ and read it before using this file. | |
39236c6e | 17 | * |
2d21ac55 A |
18 | * The Original Code and all software distributed under the License are |
19 | * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER | |
0c530ab8 A |
20 | * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES, |
21 | * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY, | |
2d21ac55 A |
22 | * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT. |
23 | * Please see the License for the specific language governing rights and | |
24 | * limitations under the License. | |
39236c6e | 25 | * |
2d21ac55 | 26 | * @APPLE_OSREFERENCE_LICENSE_HEADER_END@ |
0c530ab8 | 27 | */ |
0c530ab8 | 28 | |
b0d623f7 | 29 | |
39236c6e A |
30 | #ifndef _NET_IF_IPSEC_H_ |
31 | #define _NET_IF_IPSEC_H_ | |
0c530ab8 | 32 | |
39236c6e | 33 | #ifdef BSD_KERNEL_PRIVATE |
0c530ab8 | 34 | |
39236c6e A |
35 | #include <sys/kern_control.h> |
36 | #include <netinet/ip_var.h> | |
0c530ab8 | 37 | |
0c530ab8 | 38 | |
39236c6e | 39 | errno_t ipsec_register_control(void); |
0c530ab8 | 40 | |
39236c6e A |
41 | /* Helpers */ |
42 | int ipsec_interface_isvalid (ifnet_t interface); | |
9d749ea3 | 43 | boolean_t ipsec_interface_needs_netagent(ifnet_t interface); |
0c530ab8 | 44 | |
fe8ab488 A |
45 | errno_t ipsec_inject_inbound_packet(ifnet_t interface, mbuf_t packet); |
46 | ||
47 | void ipsec_set_pkthdr_for_interface(ifnet_t interface, mbuf_t packet, int family); | |
48 | ||
39037602 A |
49 | void ipsec_set_ipoa_for_interface(ifnet_t interface, struct ip_out_args *ipoa); |
50 | ||
51 | struct ip6_out_args; | |
52 | void ipsec_set_ip6oa_for_interface(ifnet_t interface, struct ip6_out_args *ip6oa); | |
53 | ||
39236c6e | 54 | #endif |
6d2010ae | 55 | |
39236c6e A |
56 | /* |
57 | * Name registered by the ipsec kernel control | |
58 | */ | |
59 | #define IPSEC_CONTROL_NAME "com.apple.net.ipsec_control" | |
6d2010ae | 60 | |
39236c6e A |
61 | /* |
62 | * Socket option names to manage ipsec | |
63 | */ | |
64 | #define IPSEC_OPT_FLAGS 1 | |
65 | #define IPSEC_OPT_IFNAME 2 | |
66 | #define IPSEC_OPT_EXT_IFDATA_STATS 3 /* get|set (type int) */ | |
67 | #define IPSEC_OPT_INC_IFDATA_STATS_IN 4 /* set to increment stat counters (type struct ipsec_stats_param) */ | |
68 | #define IPSEC_OPT_INC_IFDATA_STATS_OUT 5 /* set to increment stat counters (type struct ipsec_stats_param) */ | |
69 | #define IPSEC_OPT_SET_DELEGATE_INTERFACE 6 /* set the delegate interface (char[]) */ | |
fe8ab488 | 70 | #define IPSEC_OPT_OUTPUT_TRAFFIC_CLASS 7 /* set the traffic class for packets leaving the interface, see sys/socket.h */ |
5ba3f43e A |
71 | #define IPSEC_OPT_ENABLE_CHANNEL 8 /* enable a kernel pipe nexus that allows the owner to open a channel to act as a driver */ |
72 | #define IPSEC_OPT_GET_CHANNEL_UUID 9 /* get the uuid of the kernel pipe nexus instance */ | |
73 | #define IPSEC_OPT_ENABLE_FLOWSWITCH 10 /* enable a flowswitch nexus that clients can use */ | |
74 | #define IPSEC_OPT_INPUT_FRAG_SIZE 11 /* set the maximum size of input packets before fragmenting as a uint32_t */ | |
75 | ||
5c9f4661 A |
76 | #define IPSEC_OPT_ENABLE_NETIF 12 /* Must be set before connecting */ |
77 | #define IPSEC_OPT_SLOT_SIZE 13 /* Must be set before connecting */ | |
78 | #define IPSEC_OPT_NETIF_RING_SIZE 14 /* Must be set before connecting */ | |
79 | #define IPSEC_OPT_TX_FSW_RING_SIZE 15 /* Must be set before connecting */ | |
80 | #define IPSEC_OPT_RX_FSW_RING_SIZE 16 /* Must be set before connecting */ | |
81 | ||
39236c6e A |
82 | /* |
83 | * ipsec stats parameter structure | |
84 | */ | |
85 | struct ipsec_stats_param { | |
86 | u_int64_t utsp_packets; | |
87 | u_int64_t utsp_bytes; | |
88 | u_int64_t utsp_errors; | |
89 | }; | |
0c530ab8 | 90 | |
39236c6e | 91 | #endif |