ee628a5715994a0b5812aa890f4e12e7aca4f416
2 * Copyright (C) 2012-2013 Steven Barth <steven@midlink.org>
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License v2 as published by
6 * the Free Software Foundation.
8 * This program is distributed in the hope that it will be useful,
9 * but WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
11 * GNU General Public License for more details.
30 #include <arpa/inet.h>
32 #include <netinet/ip6.h>
33 #include <netpacket/packet.h>
34 #include <linux/netlink.h>
35 #include <linux/if_addr.h>
36 #include <linux/neighbour.h>
37 #include <linux/rtnetlink.h>
39 #include <sys/socket.h>
40 #include <sys/ioctl.h>
41 #include <sys/epoll.h>
42 #include <sys/types.h>
44 #include <sys/syscall.h>
46 #include <netlink/msg.h>
47 #include <netlink/socket.h>
48 #include <netlink/attr.h>
49 #include <libubox/uloop.h>
54 static int ioctl_sock
;
55 static struct nl_sock
*rtnl_socket
= NULL
;
56 static int urandom_fd
= -1;
58 static void sighandler(_unused
int signal
)
63 static void print_usage(const char *app
)
67 " -h, --help Print this help\n"
68 " -l level Specify log level 0..7 (default %d)\n",
73 int main(int argc
, char **argv
)
75 openlog("odhcpd", LOG_PERROR
| LOG_PID
, LOG_DAEMON
);
78 while ((opt
= getopt(argc
, argv
, "hl:")) != -1) {
84 config
.log_level
= (atoi(optarg
) & LOG_PRIMASK
);
85 fprintf(stderr
, "Log level set to %d\n", config
.log_level
);
89 setlogmask(LOG_UPTO(config
.log_level
));
93 syslog(LOG_ERR
, "Must be run as root!");
97 ioctl_sock
= socket(AF_INET
, SOCK_DGRAM
| SOCK_CLOEXEC
, 0);
99 if (!(rtnl_socket
= odhcpd_create_nl_socket(NETLINK_ROUTE
))) {
100 syslog(LOG_ERR
, "Unable to open nl socket: %s", strerror(errno
));
104 if ((urandom_fd
= open("/dev/urandom", O_RDONLY
| O_CLOEXEC
)) < 0)
107 signal(SIGUSR1
, SIG_IGN
);
108 signal(SIGINT
, sighandler
);
109 signal(SIGTERM
, sighandler
);
127 struct nl_sock
*odhcpd_create_nl_socket(int protocol
)
129 struct nl_sock
*nl_sock
;
131 nl_sock
= nl_socket_alloc();
135 if (nl_connect(nl_sock
, protocol
) < 0)
142 nl_socket_free(nl_sock
);
148 // Read IPv6 MTU for interface
149 int odhcpd_get_interface_config(const char *ifname
, const char *what
)
152 const char *sysctl_pattern
= "/proc/sys/net/ipv6/conf/%s/%s";
153 snprintf(buf
, sizeof(buf
), sysctl_pattern
, ifname
, what
);
155 int fd
= open(buf
, O_RDONLY
);
156 ssize_t len
= read(fd
, buf
, sizeof(buf
) - 1);
167 // Read IPv6 MAC for interface
168 int odhcpd_get_mac(const struct interface
*iface
, uint8_t mac
[6])
171 memset(&ifr
, 0, sizeof(ifr
));
172 strncpy(ifr
.ifr_name
, iface
->ifname
, sizeof(ifr
.ifr_name
));
173 if (ioctl(ioctl_sock
, SIOCGIFHWADDR
, &ifr
) < 0)
175 memcpy(mac
, ifr
.ifr_hwaddr
.sa_data
, 6);
180 // Forwards a packet on a specific interface
181 ssize_t
odhcpd_send(int socket
, struct sockaddr_in6
*dest
,
182 struct iovec
*iov
, size_t iov_len
,
183 const struct interface
*iface
)
186 uint8_t cmsg_buf
[CMSG_SPACE(sizeof(struct in6_pktinfo
))] = {0};
187 struct msghdr msg
= {
188 .msg_name
= (void *) dest
,
189 .msg_namelen
= sizeof(*dest
),
191 .msg_iovlen
= iov_len
,
192 .msg_control
= cmsg_buf
,
193 .msg_controllen
= sizeof(cmsg_buf
),
197 // Set control data (define destination interface)
198 struct cmsghdr
*chdr
= CMSG_FIRSTHDR(&msg
);
199 chdr
->cmsg_level
= IPPROTO_IPV6
;
200 chdr
->cmsg_type
= IPV6_PKTINFO
;
201 chdr
->cmsg_len
= CMSG_LEN(sizeof(struct in6_pktinfo
));
202 struct in6_pktinfo
*pktinfo
= (struct in6_pktinfo
*)CMSG_DATA(chdr
);
203 pktinfo
->ipi6_ifindex
= iface
->ifindex
;
205 // Also set scope ID if link-local
206 if (IN6_IS_ADDR_LINKLOCAL(&dest
->sin6_addr
)
207 || IN6_IS_ADDR_MC_LINKLOCAL(&dest
->sin6_addr
))
208 dest
->sin6_scope_id
= iface
->ifindex
;
210 char ipbuf
[INET6_ADDRSTRLEN
];
211 inet_ntop(AF_INET6
, &dest
->sin6_addr
, ipbuf
, sizeof(ipbuf
));
213 ssize_t sent
= sendmsg(socket
, &msg
, MSG_DONTWAIT
);
215 syslog(LOG_NOTICE
, "Failed to send to %s%%%s (%s)",
216 ipbuf
, iface
->ifname
, strerror(errno
));
218 syslog(LOG_DEBUG
, "Sent %li bytes to %s%%%s",
219 (long)sent
, ipbuf
, iface
->ifname
);
225 struct odhcpd_ipaddr
**addrs
;
230 static int cb_valid_handler(struct nl_msg
*msg
, void *arg
)
232 struct addr_info
*ctxt
= (struct addr_info
*)arg
;
233 struct odhcpd_ipaddr
*addrs
= *(ctxt
->addrs
);
234 struct nlmsghdr
*hdr
= nlmsg_hdr(msg
);
235 struct ifaddrmsg
*ifa
;
236 struct nlattr
*nla
[__IFA_MAX
];
238 if (hdr
->nlmsg_type
!= RTM_NEWADDR
)
241 ifa
= NLMSG_DATA(hdr
);
242 if (ifa
->ifa_scope
!= RT_SCOPE_UNIVERSE
||
243 (ctxt
->ifindex
&& ifa
->ifa_index
!= (unsigned)ctxt
->ifindex
))
246 nlmsg_parse(hdr
, sizeof(*ifa
), nla
, __IFA_MAX
- 1, NULL
);
247 if (!nla
[IFA_ADDRESS
])
250 addrs
= realloc(addrs
, sizeof(*addrs
)*(ctxt
->ret
+ 1));
254 memset(&addrs
[ctxt
->ret
], 0, sizeof(addrs
[ctxt
->ret
]));
255 addrs
[ctxt
->ret
].prefix
= ifa
->ifa_prefixlen
;
257 nla_memcpy(&addrs
[ctxt
->ret
].addr
, nla
[IFA_ADDRESS
],
258 sizeof(addrs
[ctxt
->ret
].addr
));
260 if (nla
[IFA_CACHEINFO
]) {
261 struct ifa_cacheinfo
*ifc
= nla_data(nla
[IFA_CACHEINFO
]);
263 addrs
[ctxt
->ret
].preferred
= ifc
->ifa_prefered
;
264 addrs
[ctxt
->ret
].valid
= ifc
->ifa_valid
;
267 if (ifa
->ifa_flags
& IFA_F_DEPRECATED
)
268 addrs
[ctxt
->ret
].preferred
= 0;
271 *(ctxt
->addrs
) = addrs
;
276 static int cb_finish_handler(_unused
struct nl_msg
*msg
, void *arg
)
278 struct addr_info
*ctxt
= (struct addr_info
*)arg
;
285 static int cb_error_handler(_unused
struct sockaddr_nl
*nla
, struct nlmsgerr
*err
,
288 struct addr_info
*ctxt
= (struct addr_info
*)arg
;
291 ctxt
->ret
= err
->error
;
296 // Detect an IPV6-address currently assigned to the given interface
297 ssize_t
odhcpd_get_interface_addresses(int ifindex
, struct odhcpd_ipaddr
**addrs
)
300 struct ifaddrmsg ifa
= {
301 .ifa_family
= AF_INET6
,
305 .ifa_index
= ifindex
, };
306 struct nl_cb
*cb
= nl_cb_alloc(NL_CB_DEFAULT
);
307 struct addr_info ctxt
= {
319 msg
= nlmsg_alloc_simple(RTM_GETADDR
, NLM_F_REQUEST
| NLM_F_DUMP
);
326 nlmsg_append(msg
, &ifa
, sizeof(ifa
), 0);
328 nl_cb_set(cb
, NL_CB_VALID
, NL_CB_CUSTOM
, cb_valid_handler
, &ctxt
);
329 nl_cb_set(cb
, NL_CB_FINISH
, NL_CB_CUSTOM
, cb_finish_handler
, &ctxt
);
330 nl_cb_err(cb
, NL_CB_CUSTOM
, cb_error_handler
, &ctxt
);
332 nl_send_auto_complete(rtnl_socket
, msg
);
333 while (ctxt
.pending
> 0)
334 nl_recvmsgs(rtnl_socket
, cb
);
343 static int odhcpd_get_linklocal_interface_address(int ifindex
, struct in6_addr
*lladdr
)
346 struct sockaddr_in6 addr
= {AF_INET6
, 0, 0, ALL_IPV6_ROUTERS
, ifindex
};
347 socklen_t alen
= sizeof(addr
);
348 int sock
= socket(AF_INET6
, SOCK_RAW
, IPPROTO_ICMPV6
);
350 if (!connect(sock
, (struct sockaddr
*)&addr
, sizeof(addr
)) &&
351 !getsockname(sock
, (struct sockaddr
*)&addr
, &alen
)) {
352 *lladdr
= addr
.sin6_addr
;
362 * DNS address selection criteria order :
363 * - use IPv6 address with valid lifetime if none is yet selected
364 * - use IPv6 address with a preferred lifetime if the already selected IPv6 address is deprecated
365 * - use an IPv6 ULA address if the already selected IPv6 address is not an ULA address
366 * - use the IPv6 address with the longest preferred lifetime
368 int odhcpd_get_interface_dns_addr(const struct interface
*iface
, struct in6_addr
*addr
)
370 time_t now
= odhcpd_time();
373 for (size_t i
= 0; i
< iface
->ia_addr_len
; ++i
) {
374 if (iface
->ia_addr
[i
].valid
<= (uint32_t)now
)
382 if (iface
->ia_addr
[m
].preferred
>= (uint32_t)now
&&
383 iface
->ia_addr
[i
].preferred
< (uint32_t)now
)
386 if (IN6_IS_ADDR_ULA(&iface
->ia_addr
[i
].addr
)) {
387 if (!IN6_IS_ADDR_ULA(&iface
->ia_addr
[m
].addr
)) {
391 } else if (IN6_IS_ADDR_ULA(&iface
->ia_addr
[m
].addr
))
394 if (iface
->ia_addr
[i
].preferred
> iface
->ia_addr
[m
].preferred
)
399 *addr
= iface
->ia_addr
[m
].addr
;
403 return odhcpd_get_linklocal_interface_address(iface
->ifindex
, addr
);
406 int odhcpd_setup_route(const struct in6_addr
*addr
, const int prefixlen
,
407 const struct interface
*iface
, const struct in6_addr
*gw
,
408 const uint32_t metric
, const bool add
)
412 .rtm_family
= AF_INET6
,
413 .rtm_dst_len
= prefixlen
,
415 .rtm_table
= RT_TABLE_MAIN
,
416 .rtm_protocol
= (add
? RTPROT_STATIC
: RTPROT_UNSPEC
),
417 .rtm_scope
= (add
? (gw
? RT_SCOPE_UNIVERSE
: RT_SCOPE_LINK
) : RT_SCOPE_NOWHERE
),
418 .rtm_type
= (add
? RTN_UNICAST
: RTN_UNSPEC
),
422 msg
= nlmsg_alloc_simple(add
? RTM_NEWROUTE
: RTM_DELROUTE
,
423 add
? NLM_F_CREATE
| NLM_F_REPLACE
: 0);
427 nlmsg_append(msg
, &rtm
, sizeof(rtm
), 0);
429 nla_put(msg
, RTA_DST
, sizeof(*addr
), addr
);
430 nla_put_u32(msg
, RTA_OIF
, iface
->ifindex
);
431 nla_put_u32(msg
, RTA_PRIORITY
, metric
);
434 nla_put(msg
, RTA_GATEWAY
, sizeof(*gw
), gw
);
436 ret
= nl_send_auto_complete(rtnl_socket
, msg
);
442 return nl_wait_for_ack(rtnl_socket
);
445 int odhcpd_setup_proxy_neigh(const struct in6_addr
*addr
,
446 const struct interface
*iface
, const bool add
)
450 .ndm_family
= AF_INET6
,
451 .ndm_flags
= NTF_PROXY
,
452 .ndm_ifindex
= iface
->ifindex
,
454 int ret
= 0, flags
= NLM_F_REQUEST
;
457 flags
|= NLM_F_REPLACE
| NLM_F_CREATE
;
459 msg
= nlmsg_alloc_simple(add
? RTM_NEWNEIGH
: RTM_DELNEIGH
, flags
);
463 nlmsg_append(msg
, &ndm
, sizeof(ndm
), 0);
465 nla_put(msg
, NDA_DST
, sizeof(*addr
), addr
);
467 ret
= nl_send_auto_complete(rtnl_socket
, msg
);
473 return nl_wait_for_ack(rtnl_socket
);
476 struct interface
* odhcpd_get_interface_by_index(int ifindex
)
478 struct interface
*iface
;
479 list_for_each_entry(iface
, &interfaces
, head
)
480 if (iface
->ifindex
== ifindex
)
487 struct interface
* odhcpd_get_interface_by_name(const char *name
)
489 struct interface
*iface
;
490 list_for_each_entry(iface
, &interfaces
, head
)
491 if (!strcmp(iface
->ifname
, name
))
498 struct interface
* odhcpd_get_master_interface(void)
500 struct interface
*iface
;
501 list_for_each_entry(iface
, &interfaces
, head
)
509 // Convenience function to receive and do basic validation of packets
510 static void odhcpd_receive_packets(struct uloop_fd
*u
, _unused
unsigned int events
)
512 struct odhcpd_event
*e
= container_of(u
, struct odhcpd_event
, uloop
);
514 uint8_t data_buf
[RELAYD_BUFFER_SIZE
], cmsg_buf
[128];
516 struct sockaddr_in6 in6
;
517 struct sockaddr_in in
;
518 struct sockaddr_ll ll
;
519 struct sockaddr_nl nl
;
524 socklen_t ret_len
= sizeof(ret
);
525 getsockopt(u
->fd
, SOL_SOCKET
, SO_ERROR
, &ret
, &ret_len
);
528 e
->handle_error(e
, ret
);
537 struct iovec iov
= {data_buf
, sizeof(data_buf
)};
538 struct msghdr msg
= {
539 .msg_name
= (void *) &addr
,
540 .msg_namelen
= sizeof(addr
),
543 .msg_control
= cmsg_buf
,
544 .msg_controllen
= sizeof(cmsg_buf
),
548 ssize_t len
= recvmsg(u
->fd
, &msg
, MSG_DONTWAIT
);
557 // Extract destination interface
561 struct in6_pktinfo
*pktinfo
;
562 struct in_pktinfo
*pkt4info
;
563 for (struct cmsghdr
*ch
= CMSG_FIRSTHDR(&msg
); ch
!= NULL
; ch
= CMSG_NXTHDR(&msg
, ch
)) {
564 if (ch
->cmsg_level
== IPPROTO_IPV6
&&
565 ch
->cmsg_type
== IPV6_PKTINFO
) {
566 pktinfo
= (struct in6_pktinfo
*)CMSG_DATA(ch
);
567 destiface
= pktinfo
->ipi6_ifindex
;
568 dest
= &pktinfo
->ipi6_addr
;
569 } else if (ch
->cmsg_level
== IPPROTO_IP
&&
570 ch
->cmsg_type
== IP_PKTINFO
) {
571 pkt4info
= (struct in_pktinfo
*)CMSG_DATA(ch
);
572 destiface
= pkt4info
->ipi_ifindex
;
573 dest
= &pkt4info
->ipi_addr
;
574 } else if (ch
->cmsg_level
== IPPROTO_IPV6
&&
575 ch
->cmsg_type
== IPV6_HOPLIMIT
) {
576 hlim
= (int*)CMSG_DATA(ch
);
580 // Check hoplimit if received
581 if (hlim
&& *hlim
!= 255)
584 // Detect interface for packet sockets
585 if (addr
.ll
.sll_family
== AF_PACKET
)
586 destiface
= addr
.ll
.sll_ifindex
;
588 struct interface
*iface
=
589 odhcpd_get_interface_by_index(destiface
);
591 if (!iface
&& addr
.nl
.nl_family
!= AF_NETLINK
)
594 char ipbuf
[INET6_ADDRSTRLEN
] = "kernel";
595 if (addr
.ll
.sll_family
== AF_PACKET
&&
596 len
>= (ssize_t
)sizeof(struct ip6_hdr
))
597 inet_ntop(AF_INET6
, &data_buf
[8], ipbuf
, sizeof(ipbuf
));
598 else if (addr
.in6
.sin6_family
== AF_INET6
)
599 inet_ntop(AF_INET6
, &addr
.in6
.sin6_addr
, ipbuf
, sizeof(ipbuf
));
600 else if (addr
.in
.sin_family
== AF_INET
)
601 inet_ntop(AF_INET
, &addr
.in
.sin_addr
, ipbuf
, sizeof(ipbuf
));
603 syslog(LOG_DEBUG
, "Received %li Bytes from %s%%%s", (long)len
,
604 ipbuf
, (iface
) ? iface
->ifname
: "netlink");
606 e
->handle_dgram(&addr
, data_buf
, len
, iface
, dest
);
610 // Register events for the multiplexer
611 int odhcpd_register(struct odhcpd_event
*event
)
613 event
->uloop
.cb
= odhcpd_receive_packets
;
614 return uloop_fd_add(&event
->uloop
, ULOOP_READ
|
615 ((event
->handle_error
) ? ULOOP_ERROR_CB
: 0));
618 int odhcpd_deregister(struct odhcpd_event
*event
)
620 event
->uloop
.cb
= NULL
;
621 return uloop_fd_delete(&event
->uloop
);
624 void odhcpd_process(struct odhcpd_event
*event
)
626 odhcpd_receive_packets(&event
->uloop
, 0);
629 int odhcpd_urandom(void *data
, size_t len
)
631 return read(urandom_fd
, data
, len
);
635 time_t odhcpd_time(void)
638 syscall(SYS_clock_gettime
, CLOCK_MONOTONIC
, &ts
);
643 static const char hexdigits
[] = "0123456789abcdef";
644 static const int8_t hexvals
[] = {
645 -1, -1, -1, -1, -1, -1, -1, -1, -1, -2, -2, -1, -1, -2, -1, -1,
646 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
647 -2, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
648 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, -1, -1, -1, -1, -1, -1,
649 -1, 10, 11, 12, 13, 14, 15, -1, -1, -1, -1, -1, -1, -1, -1, -1,
650 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
651 -1, 10, 11, 12, 13, 14, 15, -1, -1, -1, -1, -1, -1, -1, -1, -1,
652 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
655 ssize_t
odhcpd_unhexlify(uint8_t *dst
, size_t len
, const char *src
)
658 for (c
= 0; c
< len
&& src
[0] && src
[1]; ++c
) {
659 int8_t x
= (int8_t)*src
++;
660 int8_t y
= (int8_t)*src
++;
661 if (x
< 0 || (x
= hexvals
[x
]) < 0
662 || y
< 0 || (y
= hexvals
[y
]) < 0)
665 while (((int8_t)*src
) < 0 ||
666 (*src
&& hexvals
[(uint8_t)*src
] < 0))
674 void odhcpd_hexlify(char *dst
, const uint8_t *src
, size_t len
)
676 for (size_t i
= 0; i
< len
; ++i
) {
677 *dst
++ = hexdigits
[src
[i
] >> 4];
678 *dst
++ = hexdigits
[src
[i
] & 0x0f];
684 int odhcpd_bmemcmp(const void *av
, const void *bv
, size_t bits
)
686 const uint8_t *a
= av
, *b
= bv
;
687 size_t bytes
= bits
/ 8;
690 int res
= memcmp(a
, b
, bytes
);
691 if (res
== 0 && bits
> 0)
692 res
= (a
[bytes
] >> (8 - bits
)) - (b
[bytes
] >> (8 - bits
));
698 void odhcpd_bmemcpy(void *av
, const void *bv
, size_t bits
)
701 const uint8_t *b
= bv
;
703 size_t bytes
= bits
/ 8;
708 uint8_t mask
= (1 << (8 - bits
)) - 1;
709 a
[bytes
] = (a
[bytes
] & mask
) | ((~mask
) & b
[bytes
]);