1 /* $FreeBSD: src/sys/netinet6/udp6_usrreq.c,v 1.6.2.6 2001/07/29 19:32:40 ume Exp $ */
2 /* $KAME: udp6_usrreq.c,v 1.27 2001/05/21 05:45:10 jinmei Exp $ */
5 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
11 * 1. Redistributions of source code must retain the above copyright
12 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of the project nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 * Copyright (c) 1982, 1986, 1989, 1993
35 * The Regents of the University of California. All rights reserved.
37 * Redistribution and use in source and binary forms, with or without
38 * modification, are permitted provided that the following conditions
40 * 1. Redistributions of source code must retain the above copyright
41 * notice, this list of conditions and the following disclaimer.
42 * 2. Redistributions in binary form must reproduce the above copyright
43 * notice, this list of conditions and the following disclaimer in the
44 * documentation and/or other materials provided with the distribution.
45 * 3. All advertising materials mentioning features or use of this software
46 * must display the following acknowledgement:
47 * This product includes software developed by the University of
48 * California, Berkeley and its contributors.
49 * 4. Neither the name of the University nor the names of its contributors
50 * may be used to endorse or promote products derived from this software
51 * without specific prior written permission.
53 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
54 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
55 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
56 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
57 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
58 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
59 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
60 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
61 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
62 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
65 * @(#)udp_var.h 8.1 (Berkeley) 6/10/93
68 #include <sys/param.h>
69 #include <sys/kernel.h>
70 #include <sys/malloc.h>
72 #include <sys/protosw.h>
73 #include <sys/socket.h>
74 #include <sys/socketvar.h>
75 #include <sys/sysctl.h>
76 #include <sys/errno.h>
78 #include <sys/systm.h>
79 #include <sys/syslog.h>
83 #include <net/route.h>
84 #include <net/if_types.h>
86 #include <netinet/in.h>
87 #include <netinet/in_systm.h>
88 #include <netinet/ip.h>
89 #include <netinet/in_pcb.h>
90 #include <netinet/in_var.h>
91 #include <netinet/ip_var.h>
92 #include <netinet/udp.h>
93 #include <netinet/udp_var.h>
94 #include <netinet/ip6.h>
95 #include <netinet6/ip6_var.h>
96 #include <netinet6/in6_pcb.h>
97 #include <netinet/icmp6.h>
98 #include <netinet6/udp6_var.h>
99 #include <netinet6/ip6protosw.h>
102 #include <netinet6/ipsec.h>
103 #include <netinet6/ipsec6.h>
104 extern int ipsec_bypass
;
108 #if defined(NFAITH) && NFAITH > 0
109 #include <net/if_faith.h>
113 * UDP protocol inplementation.
114 * Per RFC 768, August, 1980.
117 extern struct protosw inetsw
[];
118 static int in6_mcmatch
__P((struct inpcb
*, struct in6_addr
*, struct ifnet
*));
119 static int udp6_detach
__P((struct socket
*so
));
122 in6_mcmatch(in6p
, ia6
, ifp
)
124 register struct in6_addr
*ia6
;
127 struct ip6_moptions
*im6o
= in6p
->in6p_moptions
;
128 struct in6_multi_mship
*imm
;
133 for (imm
= im6o
->im6o_memberships
.lh_first
; imm
!= NULL
;
134 imm
= imm
->i6mm_chain
.le_next
) {
136 imm
->i6mm_maddr
->in6m_ifp
== ifp
) &&
137 IN6_ARE_ADDR_EQUAL(&imm
->i6mm_maddr
->in6m_addr
,
145 udp6_input(mp
, offp
, proto
)
149 struct mbuf
*m
= *mp
;
150 register struct ip6_hdr
*ip6
;
151 register struct udphdr
*uh
;
152 register struct inpcb
*in6p
;
153 struct mbuf
*opts
= NULL
;
156 struct sockaddr_in6 udp_in6
;
158 IP6_EXTHDR_CHECK(m
, off
, sizeof(struct udphdr
), IPPROTO_DONE
);
160 ip6
= mtod(m
, struct ip6_hdr
*);
162 #if defined(NFAITH) && 0 < NFAITH
163 if (faithprefix(&ip6
->ip6_dst
)) {
164 /* XXX send icmp6 host/port unreach? */
170 udpstat
.udps_ipackets
++;
172 plen
= ntohs(ip6
->ip6_plen
) - off
+ sizeof(*ip6
);
173 uh
= (struct udphdr
*)((caddr_t
)ip6
+ off
);
174 ulen
= ntohs((u_short
)uh
->uh_ulen
);
177 udpstat
.udps_badlen
++;
182 * Checksum extended UDP header and data.
186 udpstat
.udps_nosum
++;
188 else if (in6_cksum(m
, IPPROTO_UDP
, off
, ulen
) != 0) {
189 udpstat
.udps_badsum
++;
193 if (IN6_IS_ADDR_MULTICAST(&ip6
->ip6_dst
)) {
197 * Deliver a multicast datagram to all sockets
198 * for which the local and remote addresses and ports match
199 * those of the incoming datagram. This allows more than
200 * one process to receive multicasts on the same port.
201 * (This really ought to be done for unicast datagrams as
202 * well, but that would cause problems with existing
203 * applications that open both address-specific sockets and
204 * a wildcard socket listening to the same port -- they would
205 * end up receiving duplicates of every unicast datagram.
206 * Those applications open the multiple sockets to overcome an
207 * inadequacy of the UDP socket interface, but for backwards
208 * compatibility we avoid the problem here rather than
209 * fixing the interface. Maybe 4.5BSD will remedy this?)
213 * In a case that laddr should be set to the link-local
214 * address (this happens in RIPng), the multicast address
215 * specified in the received packet does not match with
216 * laddr. To cure this situation, the matching is relaxed
217 * if the receiving interface is the same as one specified
218 * in the socket and if the destination multicast address
219 * matches one of the multicast groups specified in the socket.
223 * Construct sockaddr format source address.
225 init_sin6(&udp_in6
, m
); /* general init */
226 udp_in6
.sin6_port
= uh
->uh_sport
;
228 * KAME note: usually we drop udphdr from mbuf here.
229 * We need udphdr for IPsec processing so we do that later.
233 * Locate pcb(s) for datagram.
234 * (Algorithm copied from raw_intr().)
237 LIST_FOREACH(in6p
, &udb
, inp_list
) {
238 if ((in6p
->inp_vflag
& INP_IPV6
) == 0)
240 if (in6p
->in6p_lport
!= uh
->uh_dport
)
242 if (!IN6_IS_ADDR_UNSPECIFIED(&in6p
->in6p_laddr
)) {
243 if (!IN6_ARE_ADDR_EQUAL(&in6p
->in6p_laddr
,
245 !in6_mcmatch(in6p
, &ip6
->ip6_dst
,
249 if (!IN6_IS_ADDR_UNSPECIFIED(&in6p
->in6p_faddr
)) {
250 if (!IN6_ARE_ADDR_EQUAL(&in6p
->in6p_faddr
,
252 in6p
->in6p_fport
!= uh
->uh_sport
)
261 * Check AH/ESP integrity.
263 if (ipsec_bypass
== 0 && ipsec6_in_reject_so(m
, last
->inp_socket
))
264 ipsec6stat
.in_polvio
++;
265 /* do not inject data into pcb */
268 if ((n
= m_copy(m
, 0, M_COPYALL
)) != NULL
) {
271 * m_copy(m, offset, ...) above.
272 * sbappendaddr() expects M_PKTHDR,
273 * and m_copy() will copy M_PKTHDR
274 * only if offset is 0.
276 if (last
->in6p_flags
& IN6P_CONTROLOPTS
277 || last
->in6p_socket
->so_options
& SO_TIMESTAMP
)
278 ip6_savecontrol(last
, &opts
,
281 m_adj(n
, off
+ sizeof(struct udphdr
));
282 if (sbappendaddr(&last
->in6p_socket
->so_rcv
,
283 (struct sockaddr
*)&udp_in6
,
288 udpstat
.udps_fullsock
++;
290 sorwakeup(last
->in6p_socket
);
296 * Don't look for additional matches if this one does
297 * not have either the SO_REUSEPORT or SO_REUSEADDR
298 * socket options set. This heuristic avoids searching
299 * through all pcbs in the common case of a non-shared
300 * port. It assumes that an application will never
301 * clear these options after setting them.
303 if ((last
->in6p_socket
->so_options
&
304 (SO_REUSEPORT
|SO_REUSEADDR
)) == 0)
310 * No matching pcb found; discard datagram.
311 * (No need to send an ICMP Port Unreachable
312 * for a broadcast or multicast datgram.)
314 udpstat
.udps_noport
++;
316 udpstat
.udps_noportmcast
++;
322 * Check AH/ESP integrity.
324 if (ipsec_bypass
== 0 && ipsec6_in_reject_so(m
, last
->inp_socket
)) {
325 ipsec6stat
.in_polvio
++;
329 if (last
->in6p_flags
& IN6P_CONTROLOPTS
330 || last
->in6p_socket
->so_options
& SO_TIMESTAMP
)
331 ip6_savecontrol(last
, &opts
, ip6
, m
);
333 m_adj(m
, off
+ sizeof(struct udphdr
));
334 if (sbappendaddr(&last
->in6p_socket
->so_rcv
,
335 (struct sockaddr
*)&udp_in6
,
337 udpstat
.udps_fullsock
++;
340 sorwakeup(last
->in6p_socket
);
344 * Locate pcb for datagram.
346 in6p
= in6_pcblookup_hash(&udbinfo
, &ip6
->ip6_src
, uh
->uh_sport
,
347 &ip6
->ip6_dst
, uh
->uh_dport
, 1,
351 char buf
[INET6_ADDRSTRLEN
];
353 strcpy(buf
, ip6_sprintf(&ip6
->ip6_dst
));
355 "Connection attempt to UDP %s:%d from %s:%d\n",
356 buf
, ntohs(uh
->uh_dport
),
357 ip6_sprintf(&ip6
->ip6_src
), ntohs(uh
->uh_sport
));
359 udpstat
.udps_noport
++;
360 if (m
->m_flags
& M_MCAST
) {
361 printf("UDP6: M_MCAST is set in a unicast packet.\n");
363 udpstat
.udps_noportmcast
++;
367 icmp6_error(m
, ICMP6_DST_UNREACH
, ICMP6_DST_UNREACH_NOPORT
, 0);
372 * Check AH/ESP integrity.
374 if (ipsec_bypass
== 0 && ipsec6_in_reject_so(m
, in6p
->in6p_socket
)) {
375 ipsec6stat
.in_polvio
++;
381 * Construct sockaddr format source address.
382 * Stuff source address and datagram in user buffer.
384 init_sin6(&udp_in6
, m
); /* general init */
385 udp_in6
.sin6_port
= uh
->uh_sport
;
386 if (in6p
->in6p_flags
& IN6P_CONTROLOPTS
387 || in6p
->in6p_socket
->so_options
& SO_TIMESTAMP
)
388 ip6_savecontrol(in6p
, &opts
, ip6
, m
);
389 m_adj(m
, off
+ sizeof(struct udphdr
));
390 if (sbappendaddr(&in6p
->in6p_socket
->so_rcv
,
391 (struct sockaddr
*)&udp_in6
,
393 udpstat
.udps_fullsock
++;
396 sorwakeup(in6p
->in6p_socket
);
407 udp6_ctlinput(cmd
, sa
, d
)
416 struct ip6ctlparam
*ip6cp
= NULL
;
417 const struct sockaddr_in6
*sa6_src
= NULL
;
418 void (*notify
) __P((struct inpcb
*, int)) = udp_notify
;
419 struct udp_portonly
{
424 if (sa
->sa_family
!= AF_INET6
||
425 sa
->sa_len
!= sizeof(struct sockaddr_in6
))
428 if ((unsigned)cmd
>= PRC_NCMDS
)
430 if (PRC_IS_REDIRECT(cmd
))
431 notify
= in6_rtchange
, d
= NULL
;
432 else if (cmd
== PRC_HOSTDEAD
)
434 else if (inet6ctlerrmap
[cmd
] == 0)
437 /* if the parameter is from icmp6, decode it. */
439 ip6cp
= (struct ip6ctlparam
*)d
;
441 ip6
= ip6cp
->ip6c_ip6
;
442 off
= ip6cp
->ip6c_off
;
443 sa6_src
= ip6cp
->ip6c_src
;
452 * XXX: We assume that when IPV6 is non NULL,
453 * M and OFF are valid.
456 /* check if we can safely examine src and dst ports */
457 if (m
->m_pkthdr
.len
< off
+ sizeof(*uhp
))
460 bzero(&uh
, sizeof(uh
));
461 m_copydata(m
, off
, sizeof(*uhp
), (caddr_t
)&uh
);
463 (void) in6_pcbnotify(&udb
, sa
, uh
.uh_dport
,
464 (struct sockaddr
*)ip6cp
->ip6c_src
,
465 uh
.uh_sport
, cmd
, notify
);
467 (void) in6_pcbnotify(&udb
, sa
, 0, (struct sockaddr
*)&sa6_src
,
473 udp6_getcred SYSCTL_HANDLER_ARGS
475 struct sockaddr_in6 addrs
[2];
479 error
= suser(req
->p
->p_ucred
, &req
->p
->p_acflag
);
483 if (req
->newlen
!= sizeof(addrs
))
485 if (req
->oldlen
!= sizeof(struct ucred
))
487 error
= SYSCTL_IN(req
, addrs
, sizeof(addrs
));
491 inp
= in6_pcblookup_hash(&udbinfo
, &addrs
[1].sin6_addr
,
493 &addrs
[0].sin6_addr
, addrs
[0].sin6_port
,
495 if (!inp
|| !inp
->inp_socket
|| !inp
->inp_socket
->so_cred
) {
499 error
= SYSCTL_OUT(req
, inp
->inp_socket
->so_cred
->pc_ucred
,
500 sizeof(struct ucred
));
507 SYSCTL_PROC(_net_inet6_udp6
, OID_AUTO
, getcred
, CTLTYPE_OPAQUE
|CTLFLAG_RW
,
509 udp6_getcred
, "S,ucred", "Get the ucred of a UDP6 connection");
513 udp6_abort(struct socket
*so
)
520 return EINVAL
; /* ??? possible? panic instead? */
521 soisdisconnected(so
);
529 udp6_attach(struct socket
*so
, int proto
, struct proc
*p
)
538 if (so
->so_snd
.sb_hiwat
== 0 || so
->so_rcv
.sb_hiwat
== 0) {
539 error
= soreserve(so
, udp_sendspace
, udp_recvspace
);
544 error
= in_pcballoc(so
, &udbinfo
, p
);
548 inp
= (struct inpcb
*)so
->so_pcb
;
549 inp
->inp_vflag
|= INP_IPV6
;
550 inp
->in6p_hops
= -1; /* use kernel default */
551 inp
->in6p_cksum
= -1; /* just to be sure */
554 * IPv4 TTL initialization is necessary for an IPv6 socket as well,
555 * because the socket may be bound to an IPv6 wildcard address,
556 * which may match an IPv4-mapped IPv6 address.
558 inp
->inp_ip_ttl
= ip_defttl
;
563 udp6_bind(struct socket
*so
, struct sockaddr
*nam
, struct proc
*p
)
572 inp
->inp_vflag
&= ~INP_IPV4
;
573 inp
->inp_vflag
|= INP_IPV6
;
574 if ((inp
->inp_flags
& IN6P_IPV6_V6ONLY
) == 0) {
575 struct sockaddr_in6
*sin6_p
;
577 sin6_p
= (struct sockaddr_in6
*)nam
;
579 if (IN6_IS_ADDR_UNSPECIFIED(&sin6_p
->sin6_addr
))
580 inp
->inp_vflag
|= INP_IPV4
;
581 else if (IN6_IS_ADDR_V4MAPPED(&sin6_p
->sin6_addr
)) {
582 struct sockaddr_in sin
;
584 in6_sin6_2_sin(&sin
, sin6_p
);
585 inp
->inp_vflag
|= INP_IPV4
;
586 inp
->inp_vflag
&= ~INP_IPV6
;
588 error
= in_pcbbind(inp
, (struct sockaddr
*)&sin
, p
);
595 error
= in6_pcbbind(inp
, nam
, p
);
601 udp6_connect(struct socket
*so
, struct sockaddr
*nam
, struct proc
*p
)
610 if ((inp
->inp_flags
& IN6P_IPV6_V6ONLY
) == 0) {
611 struct sockaddr_in6
*sin6_p
;
613 sin6_p
= (struct sockaddr_in6
*)nam
;
614 if (IN6_IS_ADDR_V4MAPPED(&sin6_p
->sin6_addr
)) {
615 struct sockaddr_in sin
;
617 if (inp
->inp_faddr
.s_addr
!= INADDR_ANY
)
619 in6_sin6_2_sin(&sin
, sin6_p
);
621 error
= in_pcbconnect(inp
, (struct sockaddr
*)&sin
, p
);
624 inp
->inp_vflag
|= INP_IPV4
;
625 inp
->inp_vflag
&= ~INP_IPV6
;
632 if (!IN6_IS_ADDR_UNSPECIFIED(&inp
->in6p_faddr
))
635 error
= in6_pcbconnect(inp
, nam
, p
);
638 if (ip6_mapped_addr_on
) { /* should be non mapped addr */
639 inp
->inp_vflag
&= ~INP_IPV4
;
640 inp
->inp_vflag
|= INP_IPV6
;
648 udp6_detach(struct socket
*so
)
663 udp6_disconnect(struct socket
*so
)
672 if (inp
->inp_vflag
& INP_IPV4
) {
673 struct pr_usrreqs
*pru
;
675 pru
= ip_protox
[IPPROTO_UDP
]->pr_usrreqs
;
676 return ((*pru
->pru_disconnect
)(so
));
679 if (IN6_IS_ADDR_UNSPECIFIED(&inp
->in6p_faddr
))
683 in6_pcbdisconnect(inp
);
684 inp
->in6p_laddr
= in6addr_any
;
686 so
->so_state
&= ~SS_ISCONNECTED
; /* XXX */
691 udp6_send(struct socket
*so
, int flags
, struct mbuf
*m
, struct sockaddr
*addr
,
692 struct mbuf
*control
, struct proc
*p
)
704 if (addr
->sa_len
!= sizeof(struct sockaddr_in6
)) {
708 if (addr
->sa_family
!= AF_INET6
) {
709 error
= EAFNOSUPPORT
;
714 if (ip6_mapped_addr_on
) {
716 struct sockaddr_in6
*sin6
= 0;
719 hasv4addr
= (inp
->inp_vflag
& INP_IPV4
);
721 sin6
= (struct sockaddr_in6
*)addr
;
722 hasv4addr
= IN6_IS_ADDR_V4MAPPED(&sin6
->sin6_addr
)
726 struct pr_usrreqs
*pru
;
729 in6_sin6_2_sin_in_sock(addr
);
730 pru
= ip_protox
[IPPROTO_UDP
]->pr_usrreqs
;
731 error
= ((*pru
->pru_send
)(so
, flags
, m
, addr
, control
,
733 /* addr will just be freed in sendit(). */
738 return udp6_output(inp
, m
, addr
, control
, p
);
745 struct pr_usrreqs udp6_usrreqs
= {
746 udp6_abort
, pru_accept_notsupp
, udp6_attach
, udp6_bind
, udp6_connect
,
747 pru_connect2_notsupp
, in6_control
, udp6_detach
, udp6_disconnect
,
748 pru_listen_notsupp
, in6_mapped_peeraddr
, pru_rcvd_notsupp
,
749 pru_rcvoob_notsupp
, udp6_send
, pru_sense_null
, udp_shutdown
,
750 in6_mapped_sockaddr
, sosend
, soreceive
, sopoll