]> git.saurik.com Git - apple/xnu.git/blob - bsd/netinet/mptcp_var.h
cc16b1c705ae140fa65f1fed052f9e736ef989cb
[apple/xnu.git] / bsd / netinet / mptcp_var.h
1 /*
2 * Copyright (c) 2012-2020 Apple Inc. All rights reserved.
3 *
4 * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. The rights granted to you under the License
10 * may not be used to create, or enable the creation or redistribution of,
11 * unlawful or unlicensed copies of an Apple operating system, or to
12 * circumvent, violate, or enable the circumvention or violation of, any
13 * terms of an Apple operating system software license agreement.
14 *
15 * Please obtain a copy of the License at
16 * http://www.opensource.apple.com/apsl/ and read it before using this file.
17 *
18 * The Original Code and all software distributed under the License are
19 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23 * Please see the License for the specific language governing rights and
24 * limitations under the License.
25 *
26 * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27 */
28
29 #ifndef _NETINET_MPTCP_VAR_H_
30 #define _NETINET_MPTCP_VAR_H_
31
32 #ifdef PRIVATE
33 #include <netinet/in.h>
34 #include <netinet/tcp.h>
35 #endif
36
37 #ifdef BSD_KERNEL_PRIVATE
38 #include <sys/queue.h>
39 #include <sys/protosw.h>
40 #include <kern/locks.h>
41 #include <mach/boolean.h>
42 #include <netinet/mp_pcb.h>
43 #include <netinet/tcp_var.h>
44 #include <os/log.h>
45
46 struct mpt_itf_info {
47 uint32_t ifindex;
48 uint32_t has_v4_conn:1,
49 has_v6_conn:1,
50 has_nat64_conn:1,
51 no_mptcp_support:1;
52 };
53
54 /*
55 * MPTCP Session
56 *
57 * This is an extension to the multipath PCB specific for MPTCP, protected by
58 * the per-PCB mpp_lock (also the socket's lock);
59 */
60 struct mptses {
61 struct mppcb *mpte_mppcb; /* back ptr to multipath PCB */
62 struct mptcb *mpte_mptcb; /* ptr to MPTCP PCB */
63 TAILQ_HEAD(, mptopt) mpte_sopts; /* list of socket options */
64 TAILQ_HEAD(, mptsub) mpte_subflows; /* list of subflows */
65 #define MPTCP_MAX_NUM_SUBFLOWS 256
66 uint16_t mpte_numflows; /* # of subflows in list */
67 uint16_t mpte_nummpcapflows; /* # of MP_CAP subflows */
68 sae_associd_t mpte_associd; /* MPTCP association ID */
69 sae_connid_t mpte_connid_last; /* last used connection ID */
70
71 uint64_t mpte_time_target;
72 thread_call_t mpte_time_thread;
73
74 uint32_t mpte_last_cellicon_set;
75 uint32_t mpte_cellicon_increments;
76
77 union {
78 /* Source address of initial subflow */
79 struct sockaddr _mpte_src;
80 struct sockaddr_in _mpte_src_v4;
81 struct sockaddr_in6 _mpte_src_v6;
82 } mpte_u_src;
83 #define mpte_src mpte_u_src._mpte_src
84 #define __mpte_src_v4 mpte_u_src._mpte_src_v4
85 #define __mpte_src_v6 mpte_u_src._mpte_src_v6
86 union {
87 /* Destination address of initial subflow */
88 struct sockaddr _mpte_dst;
89 struct sockaddr_in _mpte_dst_v4;
90 struct sockaddr_in6 _mpte_dst_v6;
91 } mpte_u_dst;
92 #define mpte_dst mpte_u_dst._mpte_dst
93 #define __mpte_dst_v4 mpte_u_dst._mpte_dst_v4
94 #define __mpte_dst_v6 mpte_u_dst._mpte_dst_v6
95
96 struct sockaddr_in mpte_dst_v4_nat64;
97
98 struct sockaddr_in mpte_dst_unicast_v4;
99 struct sockaddr_in6 mpte_dst_unicast_v6;
100
101 uint16_t mpte_alternate_port; /* Alternate port for subflow establishment (network-byte-order) */
102
103 int mpte_epid;
104 uuid_t mpte_euuid;
105
106 struct mptsub *mpte_active_sub; /* ptr to last active subf */
107 uint16_t mpte_flags; /* per mptcp session flags */
108 #define MPTE_SND_REM_ADDR 0x01 /* Send Remove_addr option */
109 #define MPTE_SVCTYPE_CHECKED 0x02 /* Did entitlement-check for service-type */
110 #define MPTE_FIRSTPARTY 0x04 /* First-party app used multipath_extended entitlement */
111 #define MPTE_ACCESS_GRANTED 0x08 /* Access to cellular has been granted for this connection */
112 #define MPTE_FORCE_ENABLE 0x10 /* For MPTCP regardless of heuristics to detect middleboxes */
113 #define MPTE_IN_WORKLOOP 0x20 /* Are we currently inside the workloop ? */
114 #define MPTE_WORKLOOP_RELAUNCH 0x40 /* Another event got queued, we should restart the workloop */
115 #define MPTE_UNICAST_IP 0x80 /* New subflows are only being established towards the unicast IP in the ADD_ADDR */
116 #define MPTE_CELL_PROHIBITED 0x100 /* Cell access has been prohibited based on signal quality */
117 uint8_t mpte_svctype; /* MPTCP Service type */
118 uint8_t mpte_lost_aid; /* storing lost address id */
119 uint8_t mpte_addrid_last; /* storing address id parm */
120
121 #define MPTE_ITFINFO_SIZE 4
122 uint32_t mpte_itfinfo_size;
123 struct mpt_itf_info _mpte_itfinfo[MPTE_ITFINFO_SIZE];
124 struct mpt_itf_info *mpte_itfinfo;
125
126 struct mbuf *mpte_reinjectq;
127
128 /* The below is used for stats */
129 uint32_t mpte_subflow_switches; /* Number of subflow-switches in sending */
130 uint32_t mpte_used_cell:1,
131 mpte_used_wifi:1,
132 mpte_initial_cell:1,
133 mpte_triggered_cell,
134 mpte_handshake_success:1;
135
136 struct mptcp_itf_stats mpte_itfstats[MPTCP_ITFSTATS_SIZE];
137 uint64_t mpte_init_txbytes __attribute__((aligned(8)));
138 uint64_t mpte_init_rxbytes __attribute__((aligned(8)));
139 };
140
141 static inline struct socket *
142 mptetoso(struct mptses *mpte)
143 {
144 return mpte->mpte_mppcb->mpp_socket;
145 }
146
147 static inline struct mptses *
148 mptompte(struct mppcb *mp)
149 {
150 return (struct mptses *)mp->mpp_pcbe;
151 }
152
153 static inline struct mptses *
154 mpsotompte(struct socket *so)
155 {
156 return mptompte(mpsotomppcb(so));
157 }
158
159 static inline boolean_t
160 mpp_try_lock(struct mppcb *mp)
161 {
162 if (!lck_mtx_try_lock(&mp->mpp_lock)) {
163 return false;
164 }
165
166 VERIFY(!(mp->mpp_flags & MPP_INSIDE_OUTPUT));
167 VERIFY(!(mp->mpp_flags & MPP_INSIDE_INPUT));
168
169 return true;
170 }
171
172 static inline void
173 mpp_lock(struct mppcb *mp)
174 {
175 lck_mtx_lock(&mp->mpp_lock);
176 VERIFY(!(mp->mpp_flags & MPP_INSIDE_OUTPUT));
177 VERIFY(!(mp->mpp_flags & MPP_INSIDE_INPUT));
178 }
179
180 static inline void
181 mpp_unlock(struct mppcb *mp)
182 {
183 VERIFY(!(mp->mpp_flags & MPP_INSIDE_OUTPUT));
184 VERIFY(!(mp->mpp_flags & MPP_INSIDE_INPUT));
185 lck_mtx_unlock(&mp->mpp_lock);
186 }
187
188 static inline lck_mtx_t *
189 mpp_getlock(struct mppcb *mp, int flags)
190 {
191 if (flags & PR_F_WILLUNLOCK) {
192 VERIFY(!(mp->mpp_flags & MPP_INSIDE_OUTPUT));
193 VERIFY(!(mp->mpp_flags & MPP_INSIDE_INPUT));
194 }
195
196 return &mp->mpp_lock;
197 }
198
199 static inline int
200 mptcp_subflow_cwnd_space(struct socket *so)
201 {
202 struct tcpcb *tp = sototcpcb(so);
203 int cwnd = (int)(MIN(tp->snd_wnd, tp->snd_cwnd) - (so->so_snd.sb_cc));
204
205 return MIN(cwnd, sbspace(&so->so_snd));
206 }
207
208
209 /*
210 * MPTCP socket options
211 */
212 struct mptopt {
213 TAILQ_ENTRY(mptopt) mpo_entry; /* glue to other options */
214 uint32_t mpo_flags; /* see flags below */
215 int mpo_level; /* sopt_level */
216 int mpo_name; /* sopt_name */
217 int mpo_intval; /* sopt_val */
218 };
219
220 #define MPOF_ATTACHED 0x1 /* attached to MP socket */
221 #define MPOF_SUBFLOW_OK 0x2 /* can be issued on subflow socket */
222 #define MPOF_INTERIM 0x4 /* has not been issued on any subflow */
223
224 /*
225 * MPTCP subflow
226 *
227 * Note that mpts_flags and mpts_evctl are modified via atomic operations.
228 */
229 struct mptsub {
230 TAILQ_ENTRY(mptsub) mpts_entry; /* glue to peer subflows */
231 uint32_t mpts_refcnt; /* reference count */
232 uint32_t mpts_flags; /* see flags below */
233 long mpts_evctl; /* subflow control events */
234 sae_connid_t mpts_connid; /* subflow connection ID */
235 int mpts_oldintval; /* sopt_val before sosetopt */
236 struct mptses *mpts_mpte; /* back ptr to MPTCP session */
237 struct socket *mpts_socket; /* subflow socket */
238 struct sockaddr *mpts_src; /* source address */
239
240 union {
241 /* destination address */
242 struct sockaddr _mpts_dst;
243 struct sockaddr_in _mpts_dst_v4;
244 struct sockaddr_in6 _mpts_dst_v6;
245 } mpts_u_dst;
246 #define mpts_dst mpts_u_dst._mpts_dst
247 #define __mpts_dst_v4 mpts_u_dst._mpts_dst_v4
248 #define __mpts_dst_v6 mpts_u_dst._mpts_dst_v6
249 u_int32_t mpts_rel_seq; /* running count of subflow # */
250 u_int32_t mpts_iss; /* Initial sequence number, taking TFO into account */
251 u_int32_t mpts_ifscope; /* scoped to the interface */
252 uint32_t mpts_probesoon; /* send probe after probeto */
253 uint32_t mpts_probecnt; /* number of probes sent */
254 uint32_t mpts_maxseg; /* cached value of t_maxseg */
255 };
256
257 /*
258 * Valid values for mpts_flags. In particular:
259 *
260 * - MP_CAPABLE means that the connection is successfully established as
261 * MPTCP and data transfer may occur, but is not yet ready for multipath-
262 * related semantics until MP_READY. I.e. if this is on the first subflow,
263 * it causes the MPTCP socket to transition to a connected state, except
264 * that additional subflows will not be established; they will be marked
265 * with PENDING and will be processed when the first subflow is marked
266 * with MP_READY.
267 *
268 * - MP_READY implies that an MP_CAPABLE connection has been confirmed as
269 * an MPTCP connection. See notes above.
270 *
271 * - MP_DEGRADED implies that the connection has lost its MPTCP capabilities
272 * but data transfer on the MPTCP socket is unaffected. Any existing
273 * PENDING subflows will be disconnected, and further attempts to connect
274 * additional subflows will be rejected.
275 *
276 * Note that these are per-subflow flags. The setting and clearing of MP_READY
277 * reflects the state of the MPTCP connection with regards to its multipath
278 * semantics, via the MPTCPF_JOIN_READY flag. Until that flag is set (meaning
279 * until at least a subflow is marked with MP_READY), further connectx(2)
280 * attempts to join will be queued. When the flag is cleared (after it has
281 * been set), further connectx(2) will fail (and existing queued ones will be
282 * aborted) and the MPTCP connection loses all of its multipath semantics.
283 *
284 * Keep in sync with bsd/dev/dtrace/scripts/mptcp.d.
285 */
286 #define MPTSF_ATTACHED 0x00000001 /* attached to MPTCP PCB */
287 #define MPTSF_CONNECTING 0x00000002 /* connection was attempted */
288 #define MPTSF_CONNECT_PENDING 0x00000004 /* will connect when MPTCP is ready */
289 #define MPTSF_CONNECTED 0x00000008 /* connection is established */
290 #define MPTSF_DISCONNECTING 0x00000010 /* disconnection was attempted */
291 #define MPTSF_DISCONNECTED 0x00000020 /* has been disconnected */
292 #define MPTSF_MP_CAPABLE 0x00000040 /* connected as a MPTCP subflow */
293 #define MPTSF_MP_READY 0x00000080 /* MPTCP has been confirmed */
294 #define MPTSF_MP_DEGRADED 0x00000100 /* has lost its MPTCP capabilities */
295 #define MPTSF_PREFERRED 0x00000200 /* primary/preferred subflow */
296 #define MPTSF_SOPT_OLDVAL 0x00000400 /* old option value is valid */
297 #define MPTSF_SOPT_INPROG 0x00000800 /* sosetopt in progress */
298 #define MPTSF_FAILINGOVER 0x00001000 /* subflow not used for output */
299 #define MPTSF_ACTIVE 0x00002000 /* subflow currently in use */
300 #define MPTSF_MPCAP_CTRSET 0x00004000 /* mpcap counter */
301 #define MPTSF_CLOSED 0x00008000 /* soclose_locked has been called on this subflow */
302 #define MPTSF_TFO_REQD 0x00010000 /* TFO requested */
303 #define MPTSF_CLOSE_REQD 0x00020000 /* A close has been requested from NECP */
304 #define MPTSF_INITIAL_SUB 0x00040000 /* This is the initial subflow */
305 #define MPTSF_READ_STALL 0x00080000 /* A read-stall has been detected */
306 #define MPTSF_WRITE_STALL 0x00100000 /* A write-stall has been detected */
307 #define MPTSF_FULLY_ESTABLISHED 0x00200000 /* Subflow is fully established and it has been confirmed
308 * whether or not it supports MPTCP.
309 * No need for further middlebox-detection.
310 */
311 #define MPTSF_CELLICON_SET 0x00400000 /* This subflow set the cellicon */
312
313 #define MPTSF_BITS \
314 "\020\1ATTACHED\2CONNECTING\3PENDING\4CONNECTED\5DISCONNECTING" \
315 "\6DISCONNECTED\7MP_CAPABLE\10MP_READY\11MP_DEGRADED" \
316 "\12PREFERRED\13SOPT_OLDVAL" \
317 "\14SOPT_INPROG\15FAILINGOVER\16ACTIVE\17MPCAP_CTRSET" \
318 "\20CLOSED\21TFO_REQD\22CLOSEREQD\23INITIALSUB\24READ_STALL" \
319 "\25WRITE_STALL\26CONFIRMED"
320
321 /*
322 * MPTCP states
323 * Keep in sync with bsd/dev/dtrace/mptcp.d
324 */
325 typedef enum mptcp_state {
326 MPTCPS_CLOSED = 0, /* closed */
327 MPTCPS_LISTEN = 1, /* not yet implemented */
328 MPTCPS_ESTABLISHED = 2, /* MPTCP connection established */
329 MPTCPS_CLOSE_WAIT = 3, /* rcvd DFIN, waiting for close */
330 MPTCPS_FIN_WAIT_1 = 4, /* have closed, sent DFIN */
331 MPTCPS_CLOSING = 5, /* closed xchd DFIN, waiting DFIN ACK */
332 MPTCPS_LAST_ACK = 6, /* had DFIN and close; await DFIN ACK */
333 MPTCPS_FIN_WAIT_2 = 7, /* have closed, DFIN is acked */
334 MPTCPS_TIME_WAIT = 8, /* in 2*MSL quiet wait after close */
335 MPTCPS_TERMINATE = 9, /* terminal state */
336 } mptcp_state_t;
337
338 typedef u_int64_t mptcp_key_t;
339 typedef u_int32_t mptcp_token_t;
340 typedef u_int8_t mptcp_addr_id;
341
342
343 /* Address ID list */
344 struct mptcp_subf_auth_entry {
345 LIST_ENTRY(mptcp_subf_auth_entry) msae_next;
346 u_int32_t msae_laddr_rand; /* Local nonce */
347 u_int32_t msae_raddr_rand; /* Remote nonce */
348 mptcp_addr_id msae_laddr_id; /* Local addr ID */
349 mptcp_addr_id msae_raddr_id; /* Remote addr ID */
350 };
351
352 /*
353 * MPTCP Protocol Control Block
354 *
355 * Protected by per-MPTCP mpt_lock.
356 * Keep in sync with bsd/dev/dtrace/scripts/mptcp.d.
357 */
358 struct mptcb {
359 struct mptses *mpt_mpte; /* back ptr to MPTCP session */
360 mptcp_state_t mpt_state; /* MPTCP state */
361 uint32_t mpt_flags; /* see flags below */
362 uint8_t mpt_version; /* MPTCP proto version */
363 uint8_t mpt_peer_version; /* Version from peer */
364 u_short mpt_softerror; /* error not yet reported */
365 /*
366 * Authentication and metadata invariants
367 */
368 mptcp_key_t mpt_localkey; /* in network byte order */
369 mptcp_key_t mpt_remotekey; /* in network byte order */
370 mptcp_token_t mpt_localtoken; /* HMAC SHA1 of local key */
371 mptcp_token_t mpt_remotetoken; /* HMAC SHA1 of remote key */
372
373 /*
374 * Timer vars for scenarios where subflow level acks arrive, but
375 * Data ACKs do not.
376 */
377 int mpt_rxtshift; /* num of consecutive retrans */
378 uint64_t mpt_rxtstart; /* time at which rxt started */
379 uint64_t mpt_rtseq; /* seq # being tracked */
380 uint64_t mpt_timewait; /* timewait */
381 uint32_t mpt_timer_vals; /* timer related values */
382 /*
383 * Sending side
384 */
385 uint64_t mpt_snduna; /* DSN of last unacked byte */
386 uint64_t mpt_sndnxt; /* DSN of next byte to send */
387 uint64_t mpt_sndmax; /* DSN of max byte sent */
388 uint64_t mpt_local_idsn; /* First byte's DSN */
389 uint32_t mpt_sndwnd;
390 uint64_t mpt_sndwl1;
391 uint64_t mpt_sndwl2;
392 /*
393 * Receiving side
394 */
395 uint64_t mpt_rcvnxt; /* Next expected DSN */
396 uint64_t mpt_remote_idsn; /* Peer's IDSN */
397 uint64_t mpt_rcvadv;
398 uint32_t mpt_rcvwnd;
399 LIST_HEAD(, mptcp_subf_auth_entry) mpt_subauth_list; /* address IDs */
400 /*
401 * Fastclose
402 */
403 uint64_t mpt_dsn_at_csum_fail; /* MPFail Opt DSN */
404 uint32_t mpt_ssn_at_csum_fail; /* MPFail Subflow Seq */
405 /*
406 * Zombie handling
407 */
408 #define MPT_GC_TICKS (30)
409 #define MPT_GC_TICKS_FAST (10)
410 int32_t mpt_gc_ticks; /* Used for zombie deletion */
411
412 uint32_t mpt_notsent_lowat; /* TCP_NOTSENT_LOWAT support */
413
414 struct tsegqe_head mpt_segq;
415 uint32_t mpt_reassqlen; /* length of reassembly queue */
416 };
417
418 /* valid values for mpt_flags (see also notes on mpts_flags above) */
419 #define MPTCPF_CHECKSUM 0x001 /* checksum DSS option */
420 #define MPTCPF_FALLBACK_TO_TCP 0x002 /* Fallback to TCP */
421 #define MPTCPF_JOIN_READY 0x004 /* Ready to start 2 or more subflows */
422 #define MPTCPF_RECVD_MPFAIL 0x008 /* Received MP_FAIL option */
423 #define MPTCPF_SND_64BITDSN 0x010 /* Send full 64-bit DSN */
424 #define MPTCPF_SND_64BITACK 0x020 /* Send 64-bit ACK response */
425 #define MPTCPF_RCVD_64BITACK 0x040 /* Received 64-bit Data ACK */
426 #define MPTCPF_POST_FALLBACK_SYNC 0x080 /* Post fallback resend data */
427 #define MPTCPF_FALLBACK_HEURISTIC 0x100 /* Send SYN without MP_CAPABLE due to heuristic */
428 #define MPTCPF_HEURISTIC_TRAC 0x200 /* Tracked this connection in the heuristics as a failure */
429 #define MPTCPF_REASS_INPROG 0x400 /* Reassembly is in progress */
430 #define MPTCPF_UNICAST_IP 0x800
431
432 #define MPTCPF_BITS \
433 "\020\1CHECKSUM\2FALLBACK_TO_TCP\3JOIN_READY\4RECVD_MPFAIL" \
434 "\5SND_64BITDSN\6SND_64BITACK\7RCVD_64BITACK\10POST_FALLBACK_SYNC" \
435 "\11FALLBACK_HEURISTIC\12HEURISTIC_TRAC\13REASS_INPROG"
436
437 /* valid values for mpt_timer_vals */
438 #define MPTT_REXMT 0x01 /* Starting Retransmit Timer */
439 #define MPTT_TW 0x02 /* Starting Timewait Timer */
440 #define MPTT_FASTCLOSE 0x04 /* Starting Fastclose wait timer */
441
442 /* events for close FSM */
443 #define MPCE_CLOSE 0x1
444 #define MPCE_RECV_DATA_ACK 0x2
445 #define MPCE_RECV_DATA_FIN 0x4
446
447 /* mptcb manipulation */
448 static inline struct mptcb *
449 tptomptp(struct tcpcb *tp)
450 {
451 return tp->t_mptcb;
452 }
453
454 /*
455 * MPTCP control block and state structures are allocated along with
456 * the MP protocol control block; the folllowing represents the layout.
457 */
458 struct mpp_mtp {
459 struct mppcb mpp; /* Multipath PCB */
460 struct mptses mpp_ses; /* MPTCP session */
461 struct mptcb mtcb; /* MPTCP PCB */
462 };
463
464 #ifdef SYSCTL_DECL
465 SYSCTL_DECL(_net_inet_mptcp);
466 #endif /* SYSCTL_DECL */
467
468 extern struct mppcbinfo mtcbinfo;
469 extern struct pr_usrreqs mptcp_usrreqs;
470 extern os_log_t mptcp_log_handle;
471
472 /* Encryption algorithm related definitions */
473 #define SHA1_TRUNCATED 8
474
475 /* MPTCP Debugging Levels */
476 #define MPTCP_LOGLVL_NONE 0x0 /* No debug logging */
477 #define MPTCP_LOGLVL_ERR 0x1 /* Errors in execution are logged */
478 #define MPTCP_LOGLVL_LOG 0x2 /* Important logs */
479 #define MPTCP_LOGLVL_VERBOSE 0x4 /* Verbose logs */
480
481 /* MPTCP sub-components for debug logging */
482 #define MPTCP_NO_DBG 0x00 /* No areas are logged */
483 #define MPTCP_STATE_DBG 0x01 /* State machine logging */
484 #define MPTCP_SOCKET_DBG 0x02 /* Socket call logging */
485 #define MPTCP_SENDER_DBG 0x04 /* Sender side logging */
486 #define MPTCP_RECEIVER_DBG 0x08 /* Receiver logging */
487 #define MPTCP_EVENTS_DBG 0x10 /* Subflow events logging */
488
489 /* Mask to obtain 32-bit portion of data sequence number */
490 #define MPTCP_DATASEQ_LOW32_MASK (0xffffffff)
491 #define MPTCP_DATASEQ_LOW32(seq) (seq & MPTCP_DATASEQ_LOW32_MASK)
492
493 /* Mask to obtain upper 32-bit portion of data sequence number */
494 #define MPTCP_DATASEQ_HIGH32_MASK (0xffffffff00000000)
495 #define MPTCP_DATASEQ_HIGH32(seq) (seq & MPTCP_DATASEQ_HIGH32_MASK)
496
497 /* Mask to obtain 32-bit portion of data ack */
498 #define MPTCP_DATAACK_LOW32_MASK (0xffffffff)
499 #define MPTCP_DATAACK_LOW32(ack) (ack & MPTCP_DATAACK_LOW32_MASK)
500
501 /* Mask to obtain upper 32-bit portion of data ack */
502 #define MPTCP_DATAACK_HIGH32_MASK (0xffffffff00000000)
503 #define MPTCP_DATAACK_HIGH32(ack) (ack & MPTCP_DATAACK_HIGH32_MASK)
504
505 /*
506 * x is the 64-bit data sequence number, y the 32-bit data seq number to be
507 * extended. z is y extended to the appropriate 64-bit value.
508 * This algorithm is based on the fact that subflow level window sizes are
509 * at the maximum 2**30 (in reality, they are a lot lesser). A high throughput
510 * application sending on a large number of subflows can in theory have very
511 * large MPTCP level send and receive windows. In which case, 64 bit DSNs
512 * must be sent in place of 32 bit DSNs on wire. For us, with 2 subflows at
513 * 512K each, sequence wraparound detection can be done by checking whether
514 * the 32-bit value obtained on wire is 2**31 bytes apart from the stored
515 * lower 32-bits of the Data Sequence Number. Bogus DSNs are dropped by
516 * comparing against rwnd. Bogus DSNs within rwnd cannot be protected against
517 * and are as weak as bogus TCP sequence numbers.
518 */
519 #define MPTCP_EXTEND_DSN(x, y, z) { \
520 if ((MPTCP_DATASEQ_LOW32(x) > y) && \
521 ((((u_int32_t)MPTCP_DATASEQ_LOW32(x)) - (u_int32_t)y) >= \
522 (u_int32_t)(1U << 31))) { \
523 /* \
524 * y wrapped around and x and y are 2**31 bytes apart \
525 */ \
526 z = MPTCP_DATASEQ_HIGH32(x) + 0x100000000; \
527 z |= y; \
528 } else if ((MPTCP_DATASEQ_LOW32(x) < y) && \
529 (((u_int32_t)y - \
530 ((u_int32_t)MPTCP_DATASEQ_LOW32(x))) >= \
531 (u_int32_t)(1U << 31))) { \
532 /* \
533 * x wrapped around and x and y are 2**31 apart \
534 */ \
535 z = MPTCP_DATASEQ_HIGH32(x) - 0x100000000; \
536 z |= y; \
537 } else { \
538 z = MPTCP_DATASEQ_HIGH32(x) | y; \
539 } \
540 }
541
542 #define mptcplog(x, y, z) do { \
543 if ((mptcp_dbg_area & y) && (mptcp_dbg_level & z)) \
544 log x; \
545 } while (0)
546
547 extern int mptcp_enable; /* Multipath TCP */
548 extern int mptcp_mpcap_retries; /* Multipath TCP retries */
549 extern int mptcp_join_retries; /* Multipath TCP Join retries */
550 extern int mptcp_dss_csum; /* Multipath DSS Option checksum */
551 extern int mptcp_fail_thresh; /* Multipath failover thresh of retransmits */
552 extern int mptcp_subflow_keeptime; /* Multipath subflow TCP_KEEPALIVE opt */
553 extern uint32_t mptcp_dbg_level; /* Multipath TCP debugging level */
554 extern uint32_t mptcp_dbg_area; /* Multipath TCP debugging area */
555 extern int mptcp_developer_mode; /* Allow aggregation mode */
556 extern uint32_t mptcp_cellicon_refcount;
557
558 #define MPTCP_CELLICON_TOGGLE_RATE (5 * TCP_RETRANSHZ) /* Only toggle every 5 seconds */
559
560 extern int tcp_jack_rxmt; /* Join ACK retransmission value in msecs */
561
562 __BEGIN_DECLS
563 extern void mptcp_init(struct protosw *, struct domain *);
564 extern int mptcp_ctloutput(struct socket *, struct sockopt *);
565 extern int mptcp_session_create(struct mppcb *);
566 extern boolean_t mptcp_ok_to_create_subflows(struct mptcb *mp_tp);
567 extern void mptcp_check_subflows_and_add(struct mptses *mpte);
568 extern void mptcp_check_subflows_and_remove(struct mptses *mpte);
569 extern void mptcpstats_inc_switch(struct mptses *mpte, const struct mptsub *mpts);
570 extern void mptcpstats_update(struct mptcp_itf_stats *stats, const struct mptsub *mpts);
571 extern int mptcpstats_get_index_by_ifindex(struct mptcp_itf_stats *stats, u_short ifindex, boolean_t create);
572 extern struct mptses *mptcp_drop(struct mptses *mpte, struct mptcb *mp_tp, u_short errno);
573 extern struct mptses *mptcp_close(struct mptses *, struct mptcb *);
574 extern int mptcp_lock(struct socket *, int, void *);
575 extern int mptcp_unlock(struct socket *, int, void *);
576 extern lck_mtx_t *mptcp_getlock(struct socket *, int);
577 extern void mptcp_subflow_workloop(struct mptses *);
578
579 extern void mptcp_sched_create_subflows(struct mptses *);
580
581 extern void mptcp_finish_usrclosed(struct mptses *mpte);
582 extern struct mptopt *mptcp_sopt_alloc(zalloc_flags_t);
583 extern const char *mptcp_sopt2str(int, int);
584 extern void mptcp_sopt_free(struct mptopt *);
585 extern void mptcp_sopt_insert(struct mptses *, struct mptopt *);
586 extern void mptcp_sopt_remove(struct mptses *, struct mptopt *);
587 extern struct mptopt *mptcp_sopt_find(struct mptses *, struct sockopt *);
588
589 extern int mptcp_subflow_add(struct mptses *, struct sockaddr *,
590 struct sockaddr *, uint32_t, sae_connid_t *);
591 extern void mptcp_subflow_del(struct mptses *, struct mptsub *);
592
593 extern void mptcp_handle_input(struct socket *so);
594 #define MPTCP_SUBOUT_PROBING 0x01
595 extern int mptcp_subflow_output(struct mptses *mpte, struct mptsub *mpts, int flags);
596 extern void mptcp_clean_reinjectq(struct mptses *mpte);
597 extern void mptcp_subflow_shutdown(struct mptses *, struct mptsub *);
598 extern void mptcp_subflow_disconnect(struct mptses *, struct mptsub *);
599 extern int mptcp_subflow_sosetopt(struct mptses *, struct mptsub *,
600 struct mptopt *);
601 extern int mptcp_subflow_sogetopt(struct mptses *, struct socket *,
602 struct mptopt *);
603
604 extern void mptcp_input(struct mptses *, struct mbuf *);
605 extern boolean_t mptcp_can_send_more(struct mptcb *mp_tp, boolean_t ignore_reinject);
606 extern int mptcp_output(struct mptses *);
607 extern void mptcp_close_fsm(struct mptcb *, uint32_t);
608
609 extern void mptcp_hmac_sha1(mptcp_key_t, mptcp_key_t, u_int32_t, u_int32_t,
610 u_char*);
611 extern void mptcp_get_hmac(mptcp_addr_id, struct mptcb *, u_char *);
612 extern void mptcp_get_rands(mptcp_addr_id, struct mptcb *, u_int32_t *,
613 u_int32_t *);
614 extern void mptcp_set_raddr_rand(mptcp_addr_id, struct mptcb *, mptcp_addr_id,
615 u_int32_t);
616 extern int mptcp_init_remote_parms(struct mptcb *);
617 extern boolean_t mptcp_ok_to_keepalive(struct mptcb *);
618 extern void mptcp_insert_dsn(struct mppcb *, struct mbuf *);
619 extern void mptcp_output_getm_dsnmap32(struct socket *so, int off,
620 uint32_t *dsn, uint32_t *relseq,
621 uint16_t *data_len, uint16_t *dss_csum);
622 extern void mptcp_output_getm_dsnmap64(struct socket *so, int off,
623 uint64_t *dsn, uint32_t *relseq,
624 uint16_t *data_len, uint16_t *dss_csum);
625 extern void mptcp_act_on_txfail(struct socket *);
626 extern struct mptsub *mptcp_get_subflow(struct mptses *mpte, struct mptsub **preferred);
627 extern int mptcp_get_map_for_dsn(struct socket *so, uint64_t dsn_fail, uint32_t *tcp_seq);
628 extern int32_t mptcp_adj_sendlen(struct socket *so, int32_t off);
629 extern void mptcp_sbrcv_grow(struct mptcb *mp_tp);
630 extern int32_t mptcp_sbspace(struct mptcb *);
631 extern void mptcp_notify_mpready(struct socket *);
632 extern void mptcp_notify_mpfail(struct socket *);
633 extern void mptcp_notify_close(struct socket *);
634 extern boolean_t mptcp_no_rto_spike(struct socket*);
635 extern int mptcp_set_notsent_lowat(struct mptses *mpte, int optval);
636 extern u_int32_t mptcp_get_notsent_lowat(struct mptses *mpte);
637 extern int mptcp_notsent_lowat_check(struct socket *so);
638 extern void mptcp_ask_symptoms(struct mptses *mpte);
639 extern void mptcp_control_register(void);
640 extern int mptcp_is_wifi_unusable_for_session(struct mptses *mpte);
641 extern boolean_t symptoms_is_wifi_lossy(void);
642 extern void mptcp_ask_for_nat64(struct ifnet *ifp);
643 extern void mptcp_session_necp_cb(void *, int, uint32_t, uint32_t, bool *);
644 extern struct sockaddr *mptcp_get_session_dst(struct mptses *mpte,
645 boolean_t has_v6, boolean_t has_v4);
646 extern void mptcp_set_restrictions(struct socket *mp_so);
647 extern void mptcp_clear_cellicon(void);
648 extern void mptcp_unset_cellicon(struct mptses *mpte, struct mptsub *mpts, uint32_t val);
649 extern void mptcp_reset_rexmit_state(struct tcpcb *tp);
650 extern void mptcp_reset_keepalive(struct tcpcb *tp);
651 extern int mptcp_validate_csum(struct tcpcb *tp, struct mbuf *m, uint64_t dsn,
652 uint32_t sseq, uint16_t dlen, uint16_t csum, int dfin);
653 __END_DECLS
654
655 #endif /* BSD_KERNEL_PRIVATE */
656 #ifdef PRIVATE
657
658 typedef struct mptcp_flow {
659 uint64_t flow_len;
660 uint64_t flow_tcpci_offset;
661 uint32_t flow_flags;
662 sae_connid_t flow_cid;
663 struct sockaddr_storage flow_src;
664 struct sockaddr_storage flow_dst;
665 uint32_t flow_relseq; /* last subflow rel seq# */
666 int32_t flow_soerror; /* subflow level error */
667 uint32_t flow_probecnt; /* number of probes sent */
668 conninfo_tcp_t flow_ci; /* must be the last field */
669 } mptcp_flow_t;
670
671 typedef struct conninfo_mptcp {
672 uint64_t mptcpci_len;
673 uint64_t mptcpci_flow_offset; /* offsetof first flow */
674 uint64_t mptcpci_nflows; /* number of subflows */
675 uint32_t mptcpci_state; /* MPTCP level state */
676 uint32_t mptcpci_mpte_flags; /* Session flags */
677 uint32_t mptcpci_flags; /* MPTCB flags */
678 uint32_t mptcpci_ltoken; /* local token */
679 uint32_t mptcpci_rtoken; /* remote token */
680 uint32_t mptcpci_notsent_lowat; /* NOTSENT_LOWAT */
681
682 /* Send side */
683 uint64_t mptcpci_snduna; /* DSN of last unacked byte */
684 uint64_t mptcpci_sndnxt; /* DSN of next byte to send */
685 uint64_t mptcpci_sndmax; /* DSN of max byte sent */
686 uint64_t mptcpci_lidsn; /* Local IDSN */
687 uint32_t mptcpci_sndwnd; /* Send window snapshot */
688
689 /* Receive side */
690 uint64_t mptcpci_rcvnxt; /* Next expected DSN */
691 uint64_t mptcpci_rcvatmark; /* Session level rcvnxt */
692 uint64_t mptcpci_ridsn; /* Peer's IDSN */
693 uint32_t mptcpci_rcvwnd; /* Receive window */
694
695 uint8_t mptcpci_mpte_addrid; /* last addr id */
696
697 mptcp_flow_t mptcpci_flows[1];
698 } conninfo_mptcp_t;
699
700 /* Use SymptomsD notifications of wifi and cell status in subflow selection */
701 #define MPTCP_KERN_CTL_NAME "com.apple.network.advisory"
702 typedef struct symptoms_advisory {
703 union {
704 uint32_t sa_nwk_status_int;
705 struct {
706 union {
707 #define SYMPTOMS_ADVISORY_NOCOMMENT 0x0000
708 #define SYMPTOMS_ADVISORY_USEAPP 0xFFFF /* Very ugly workaround to avoid breaking backwards compatibility - ToDo: Fix it in +1 */
709 uint16_t sa_nwk_status;
710 struct {
711 #define SYMPTOMS_ADVISORY_WIFI_BAD 0x01
712 #define SYMPTOMS_ADVISORY_WIFI_OK 0x02
713 uint8_t sa_wifi_status;
714 #define SYMPTOMS_ADVISORY_CELL_BAD 0x01
715 #define SYMPTOMS_ADVISORY_CELL_OK 0x02
716 uint8_t sa_cell_status;
717 };
718 };
719 uint16_t sa_unused;
720 };
721 };
722 } symptoms_advisory_t;
723
724 #define MPTCP_TARGET_BASED_RSSI_THRESHOLD -75
725 struct mptcp_symptoms_answer {
726 struct symptoms_advisory advisory;
727 uuid_t uuid;
728 int32_t rssi;
729 };
730
731 struct mptcp_symptoms_ask_uuid {
732 uint32_t cmd;
733 #define MPTCP_SYMPTOMS_ASK_UUID 1
734 uuid_t uuid;
735 uint32_t priority;
736 #define MPTCP_SYMPTOMS_UNKNOWN 0
737 #define MPTCP_SYMPTOMS_BACKGROUND 1
738 #define MPTCP_SYMPTOMS_FOREGROUND 2
739 };
740
741 struct kev_mptcp_data {
742 int value;
743 };
744
745 #endif /* PRIVATE */
746 #endif /* _NETINET_MPTCP_VAR_H_ */