blob: bf21ca955bc449bfa09d9d5bec5de4e818806848 [file] [log] [blame]
paul718e3742002-12-13 20:15:29 +00001/*
2 * Kernel routing table updates by routing socket.
3 * Copyright (C) 1997, 98 Kunihiro Ishiguro
4 *
5 * This file is part of GNU Zebra.
6 *
7 * GNU Zebra is free software; you can redistribute it and/or modify it
8 * under the terms of the GNU General Public License as published by the
9 * Free Software Foundation; either version 2, or (at your option) any
10 * later version.
11 *
12 * GNU Zebra is distributed in the hope that it will be useful, but
13 * WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15 * General Public License for more details.
16 *
17 * You should have received a copy of the GNU General Public License
18 * along with GNU Zebra; see the file COPYING. If not, write to the Free
19 * Software Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA
20 * 02111-1307, USA.
21 */
22
23#include <zebra.h>
24
25#include "if.h"
26#include "prefix.h"
27#include "sockunion.h"
28#include "log.h"
29#include "str.h"
pauledd7c242003-06-04 13:59:38 +000030#include "privs.h"
paul718e3742002-12-13 20:15:29 +000031
32#include "zebra/debug.h"
33#include "zebra/rib.h"
paul6621ca82005-11-23 13:02:08 +000034#include "zebra/rt.h"
Denis Ovsienkodc958242007-08-13 16:03:06 +000035#include "zebra/kernel_socket.h"
paul718e3742002-12-13 20:15:29 +000036
pauledd7c242003-06-04 13:59:38 +000037extern struct zebra_privs_t zserv_privs;
38
paul6621ca82005-11-23 13:02:08 +000039/* kernel socket export */
40extern int rtm_write (int message, union sockunion *dest,
41 union sockunion *mask, union sockunion *gate,
42 unsigned int index, int zebra_flags, int metric);
paul718e3742002-12-13 20:15:29 +000043
44/* Adjust netmask socket length. Return value is a adjusted sin_len
45 value. */
paul6621ca82005-11-23 13:02:08 +000046static int
paul718e3742002-12-13 20:15:29 +000047sin_masklen (struct in_addr mask)
48{
49 char *p, *lim;
50 int len;
51 struct sockaddr_in sin;
52
53 if (mask.s_addr == 0)
54 return sizeof (long);
55
56 sin.sin_addr = mask;
57 len = sizeof (struct sockaddr_in);
58
59 lim = (char *) &sin.sin_addr;
60 p = lim + sizeof (sin.sin_addr);
61
62 while (*--p == 0 && p >= lim)
63 len--;
64 return len;
65}
66
67/* Interface between zebra message and rtm message. */
paul6621ca82005-11-23 13:02:08 +000068static int
paul718e3742002-12-13 20:15:29 +000069kernel_rtm_ipv4 (int cmd, struct prefix *p, struct rib *rib, int family)
70
71{
hassofa2b17e2004-03-04 17:45:00 +000072 struct sockaddr_in *mask = NULL;
paul718e3742002-12-13 20:15:29 +000073 struct sockaddr_in sin_dest, sin_mask, sin_gate;
Christian Frankefa713d92013-07-05 15:35:37 +000074 struct nexthop *nexthop, *tnexthop;
75 int recursing;
paul718e3742002-12-13 20:15:29 +000076 int nexthop_num = 0;
77 unsigned int ifindex = 0;
78 int gate = 0;
79 int error;
Timo Teräsbe6335d2015-05-23 11:08:41 +030080 char prefix_buf[PREFIX_STRLEN];
paul718e3742002-12-13 20:15:29 +000081
Denis Ovsienkodc958242007-08-13 16:03:06 +000082 if (IS_ZEBRA_DEBUG_RIB)
Timo Teräsbe6335d2015-05-23 11:08:41 +030083 prefix2str (p, prefix_buf, sizeof(prefix_buf));
paul718e3742002-12-13 20:15:29 +000084 memset (&sin_dest, 0, sizeof (struct sockaddr_in));
85 sin_dest.sin_family = AF_INET;
Paul Jakma6f0e3f62007-05-10 02:38:51 +000086#ifdef HAVE_STRUCT_SOCKADDR_IN_SIN_LEN
paul718e3742002-12-13 20:15:29 +000087 sin_dest.sin_len = sizeof (struct sockaddr_in);
Paul Jakma6f0e3f62007-05-10 02:38:51 +000088#endif /* HAVE_STRUCT_SOCKADDR_IN_SIN_LEN */
paul718e3742002-12-13 20:15:29 +000089 sin_dest.sin_addr = p->u.prefix4;
90
91 memset (&sin_mask, 0, sizeof (struct sockaddr_in));
92
93 memset (&sin_gate, 0, sizeof (struct sockaddr_in));
94 sin_gate.sin_family = AF_INET;
Paul Jakma6f0e3f62007-05-10 02:38:51 +000095#ifdef HAVE_STRUCT_SOCKADDR_IN_SIN_LEN
paul718e3742002-12-13 20:15:29 +000096 sin_gate.sin_len = sizeof (struct sockaddr_in);
Paul Jakma6f0e3f62007-05-10 02:38:51 +000097#endif /* HAVE_STRUCT_SOCKADDR_IN_SIN_LEN */
paul718e3742002-12-13 20:15:29 +000098
99 /* Make gateway. */
Christian Frankefa713d92013-07-05 15:35:37 +0000100 for (ALL_NEXTHOPS_RO(rib->nexthop, nexthop, tnexthop, recursing))
paul718e3742002-12-13 20:15:29 +0000101 {
Christian Frankefa713d92013-07-05 15:35:37 +0000102 if (CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_RECURSIVE))
103 continue;
104
paul718e3742002-12-13 20:15:29 +0000105 gate = 0;
Denis Ovsienkodc958242007-08-13 16:03:06 +0000106 char gate_buf[INET_ADDRSTRLEN] = "NULL";
paul718e3742002-12-13 20:15:29 +0000107
Greg Troxeldfdb8f12007-08-02 14:13:56 +0000108 /*
109 * XXX We need to refrain from kernel operations in some cases,
110 * but this if statement seems overly cautious - what about
111 * other than ADD and DELETE?
112 */
paul718e3742002-12-13 20:15:29 +0000113 if ((cmd == RTM_ADD
114 && CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_ACTIVE))
115 || (cmd == RTM_DELETE
paul718e3742002-12-13 20:15:29 +0000116 && CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_FIB)
paul718e3742002-12-13 20:15:29 +0000117 ))
118 {
Christian Frankefa713d92013-07-05 15:35:37 +0000119 if (nexthop->type == NEXTHOP_TYPE_IPV4 ||
120 nexthop->type == NEXTHOP_TYPE_IPV4_IFINDEX)
paul718e3742002-12-13 20:15:29 +0000121 {
Christian Frankefa713d92013-07-05 15:35:37 +0000122 sin_gate.sin_addr = nexthop->gate.ipv4;
123 gate = 1;
paul718e3742002-12-13 20:15:29 +0000124 }
Christian Frankefa713d92013-07-05 15:35:37 +0000125 if (nexthop->type == NEXTHOP_TYPE_IFINDEX
126 || nexthop->type == NEXTHOP_TYPE_IFNAME
127 || nexthop->type == NEXTHOP_TYPE_IPV4_IFINDEX)
128 ifindex = nexthop->ifindex;
129 if (nexthop->type == NEXTHOP_TYPE_BLACKHOLE)
paul718e3742002-12-13 20:15:29 +0000130 {
Christian Frankefa713d92013-07-05 15:35:37 +0000131 struct in_addr loopback;
132 loopback.s_addr = htonl (INADDR_LOOPBACK);
133 sin_gate.sin_addr = loopback;
134 gate = 1;
Greg Troxeldfdb8f12007-08-02 14:13:56 +0000135 }
paul718e3742002-12-13 20:15:29 +0000136
paul718e3742002-12-13 20:15:29 +0000137 if (gate && p->prefixlen == 32)
138 mask = NULL;
139 else
140 {
141 masklen2ip (p->prefixlen, &sin_mask.sin_addr);
gdt6083e1f2005-12-29 15:59:57 +0000142 sin_mask.sin_family = AF_INET;
Paul Jakma6f0e3f62007-05-10 02:38:51 +0000143#ifdef HAVE_STRUCT_SOCKADDR_IN_SIN_LEN
paul718e3742002-12-13 20:15:29 +0000144 sin_mask.sin_len = sin_masklen (sin_mask.sin_addr);
Paul Jakma6f0e3f62007-05-10 02:38:51 +0000145#endif /* HAVE_STRUCT_SOCKADDR_IN_SIN_LEN */
paul718e3742002-12-13 20:15:29 +0000146 mask = &sin_mask;
147 }
paul718e3742002-12-13 20:15:29 +0000148
Greg Troxeldfdb8f12007-08-02 14:13:56 +0000149 error = rtm_write (cmd,
150 (union sockunion *)&sin_dest,
151 (union sockunion *)mask,
152 gate ? (union sockunion *)&sin_gate : NULL,
153 ifindex,
154 rib->flags,
155 rib->metric);
paul718e3742002-12-13 20:15:29 +0000156
Denis Ovsienkodc958242007-08-13 16:03:06 +0000157 if (IS_ZEBRA_DEBUG_RIB)
158 {
159 if (!gate)
160 {
Timo Teräsbe6335d2015-05-23 11:08:41 +0300161 zlog_debug ("%s: %s: attention! gate not found for rib %p",
162 __func__, prefix_buf, rib);
David Lamparterf7bf4152013-10-22 17:10:21 +0000163 rib_dump (p, rib);
Denis Ovsienkodc958242007-08-13 16:03:06 +0000164 }
165 else
166 inet_ntop (AF_INET, &sin_gate.sin_addr, gate_buf, INET_ADDRSTRLEN);
167 }
168
169 switch (error)
170 {
171 /* We only flag nexthops as being in FIB if rtm_write() did its work. */
172 case ZEBRA_ERR_NOERROR:
173 nexthop_num++;
174 if (IS_ZEBRA_DEBUG_RIB)
Timo Teräsbe6335d2015-05-23 11:08:41 +0300175 zlog_debug ("%s: %s: successfully did NH %s",
176 __func__, prefix_buf, gate_buf);
Denis Ovsienkodc958242007-08-13 16:03:06 +0000177 if (cmd == RTM_ADD)
178 SET_FLAG (nexthop->flags, NEXTHOP_FLAG_FIB);
179 break;
180
181 /* The only valid case for this error is kernel's failure to install
182 * a multipath route, which is common for FreeBSD. This should be
183 * ignored silently, but logged as an error otherwise.
184 */
185 case ZEBRA_ERR_RTEXIST:
186 if (cmd != RTM_ADD)
187 zlog_err ("%s: rtm_write() returned %d for command %d",
188 __func__, error, cmd);
189 continue;
190 break;
191
192 /* Given that our NEXTHOP_FLAG_FIB matches real kernel FIB, it isn't
193 * normal to get any other messages in ANY case.
194 */
195 case ZEBRA_ERR_RTNOEXIST:
196 case ZEBRA_ERR_RTUNREACH:
197 default:
Timo Teräsbe6335d2015-05-23 11:08:41 +0300198 zlog_err ("%s: %s: rtm_write() unexpectedly returned %d for command %s",
199 __func__, prefix2str(p, prefix_buf, sizeof(prefix_buf)),
200 error, lookup (rtm_type_str, cmd));
Denis Ovsienkodc958242007-08-13 16:03:06 +0000201 break;
202 }
203 } /* if (cmd and flags make sense) */
204 else
205 if (IS_ZEBRA_DEBUG_RIB)
206 zlog_debug ("%s: odd command %s for flags %d",
Denis Ovsienko2d844522007-09-14 11:31:55 +0000207 __func__, lookup (rtm_type_str, cmd), nexthop->flags);
Christian Frankefa713d92013-07-05 15:35:37 +0000208 } /* for (ALL_NEXTHOPS_RO(...))*/
Denis Ovsienkodc958242007-08-13 16:03:06 +0000209
210 /* If there was no useful nexthop, then complain. */
211 if (nexthop_num == 0 && IS_ZEBRA_DEBUG_KERNEL)
212 zlog_debug ("%s: No useful nexthops were found in RIB entry %p", __func__, rib);
paul718e3742002-12-13 20:15:29 +0000213
214 return 0; /*XXX*/
215}
216
217int
218kernel_add_ipv4 (struct prefix *p, struct rib *rib)
219{
pauledd7c242003-06-04 13:59:38 +0000220 int route;
221
222 if (zserv_privs.change(ZPRIVS_RAISE))
223 zlog (NULL, LOG_ERR, "Can't raise privileges");
224 route = kernel_rtm_ipv4 (RTM_ADD, p, rib, AF_INET);
225 if (zserv_privs.change(ZPRIVS_LOWER))
226 zlog (NULL, LOG_ERR, "Can't lower privileges");
227
228 return route;
paul718e3742002-12-13 20:15:29 +0000229}
230
231int
232kernel_delete_ipv4 (struct prefix *p, struct rib *rib)
233{
pauledd7c242003-06-04 13:59:38 +0000234 int route;
235
236 if (zserv_privs.change(ZPRIVS_RAISE))
237 zlog (NULL, LOG_ERR, "Can't raise privileges");
238 route = kernel_rtm_ipv4 (RTM_DELETE, p, rib, AF_INET);
239 if (zserv_privs.change(ZPRIVS_LOWER))
240 zlog (NULL, LOG_ERR, "Can't lower privileges");
241
242 return route;
paul718e3742002-12-13 20:15:29 +0000243}
244
245#ifdef HAVE_IPV6
246
247/* Calculate sin6_len value for netmask socket value. */
paul6621ca82005-11-23 13:02:08 +0000248static int
paul718e3742002-12-13 20:15:29 +0000249sin6_masklen (struct in6_addr mask)
250{
251 struct sockaddr_in6 sin6;
252 char *p, *lim;
253 int len;
254
paul718e3742002-12-13 20:15:29 +0000255 if (IN6_IS_ADDR_UNSPECIFIED (&mask))
256 return sizeof (long);
paul718e3742002-12-13 20:15:29 +0000257
258 sin6.sin6_addr = mask;
259 len = sizeof (struct sockaddr_in6);
260
261 lim = (char *) & sin6.sin6_addr;
262 p = lim + sizeof (sin6.sin6_addr);
263
264 while (*--p == 0 && p >= lim)
265 len--;
266
267 return len;
268}
269
270/* Interface between zebra message and rtm message. */
paul6621ca82005-11-23 13:02:08 +0000271static int
paul718e3742002-12-13 20:15:29 +0000272kernel_rtm_ipv6_multipath (int cmd, struct prefix *p, struct rib *rib,
273 int family)
274{
275 struct sockaddr_in6 *mask;
276 struct sockaddr_in6 sin_dest, sin_mask, sin_gate;
Christian Frankefa713d92013-07-05 15:35:37 +0000277 struct nexthop *nexthop, *tnexthop;
278 int recursing;
paul718e3742002-12-13 20:15:29 +0000279 int nexthop_num = 0;
280 unsigned int ifindex = 0;
281 int gate = 0;
282 int error;
283
284 memset (&sin_dest, 0, sizeof (struct sockaddr_in6));
285 sin_dest.sin6_family = AF_INET6;
286#ifdef SIN6_LEN
287 sin_dest.sin6_len = sizeof (struct sockaddr_in6);
288#endif /* SIN6_LEN */
289 sin_dest.sin6_addr = p->u.prefix6;
290
291 memset (&sin_mask, 0, sizeof (struct sockaddr_in6));
292
293 memset (&sin_gate, 0, sizeof (struct sockaddr_in6));
294 sin_gate.sin6_family = AF_INET6;
Paul Jakma6f0e3f62007-05-10 02:38:51 +0000295#ifdef HAVE_STRUCT_SOCKADDR_IN_SIN_LEN
paul718e3742002-12-13 20:15:29 +0000296 sin_gate.sin6_len = sizeof (struct sockaddr_in6);
Paul Jakma6f0e3f62007-05-10 02:38:51 +0000297#endif /* HAVE_STRUCT_SOCKADDR_IN_SIN_LEN */
paul718e3742002-12-13 20:15:29 +0000298
299 /* Make gateway. */
Christian Frankefa713d92013-07-05 15:35:37 +0000300 for (ALL_NEXTHOPS_RO(rib->nexthop, nexthop, tnexthop, recursing))
paul718e3742002-12-13 20:15:29 +0000301 {
Christian Frankefa713d92013-07-05 15:35:37 +0000302 if (CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_RECURSIVE))
303 continue;
304
paul718e3742002-12-13 20:15:29 +0000305 gate = 0;
306
307 if ((cmd == RTM_ADD
308 && CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_ACTIVE))
309 || (cmd == RTM_DELETE
310#if 0
311 && CHECK_FLAG (nexthop->flags, NEXTHOP_FLAG_FIB)
312#endif
313 ))
314 {
Christian Frankefa713d92013-07-05 15:35:37 +0000315 if (nexthop->type == NEXTHOP_TYPE_IPV6
316 || nexthop->type == NEXTHOP_TYPE_IPV6_IFNAME
317 || nexthop->type == NEXTHOP_TYPE_IPV6_IFINDEX)
paul718e3742002-12-13 20:15:29 +0000318 {
Christian Frankefa713d92013-07-05 15:35:37 +0000319 sin_gate.sin6_addr = nexthop->gate.ipv6;
320 gate = 1;
paul718e3742002-12-13 20:15:29 +0000321 }
Christian Frankefa713d92013-07-05 15:35:37 +0000322 if (nexthop->type == NEXTHOP_TYPE_IFINDEX
323 || nexthop->type == NEXTHOP_TYPE_IFNAME
324 || nexthop->type == NEXTHOP_TYPE_IPV6_IFNAME
325 || nexthop->type == NEXTHOP_TYPE_IPV6_IFINDEX)
326 ifindex = nexthop->ifindex;
paul718e3742002-12-13 20:15:29 +0000327
328 if (cmd == RTM_ADD)
329 SET_FLAG (nexthop->flags, NEXTHOP_FLAG_FIB);
330 }
331
332 /* Under kame set interface index to link local address. */
333#ifdef KAME
334
335#define SET_IN6_LINKLOCAL_IFINDEX(a, i) \
336 do { \
337 (a).s6_addr[2] = ((i) >> 8) & 0xff; \
338 (a).s6_addr[3] = (i) & 0xff; \
339 } while (0)
340
341 if (gate && IN6_IS_ADDR_LINKLOCAL(&sin_gate.sin6_addr))
342 SET_IN6_LINKLOCAL_IFINDEX (sin_gate.sin6_addr, ifindex);
343#endif /* KAME */
344
345 if (gate && p->prefixlen == 128)
346 mask = NULL;
347 else
348 {
349 masklen2ip6 (p->prefixlen, &sin_mask.sin6_addr);
paul6fe70d12005-11-12 22:55:10 +0000350 sin_mask.sin6_family = AF_INET6;
paul718e3742002-12-13 20:15:29 +0000351#ifdef SIN6_LEN
352 sin_mask.sin6_len = sin6_masklen (sin_mask.sin6_addr);
353#endif /* SIN6_LEN */
354 mask = &sin_mask;
355 }
356
357 error = rtm_write (cmd,
358 (union sockunion *) &sin_dest,
359 (union sockunion *) mask,
360 gate ? (union sockunion *)&sin_gate : NULL,
361 ifindex,
362 rib->flags,
363 rib->metric);
364
365#if 0
366 if (error)
367 {
368 zlog_info ("kernel_rtm_ipv6_multipath(): nexthop %d add error=%d.",
369 nexthop_num, error);
370 }
371#endif
372
373 nexthop_num++;
374 }
375
376 /* If there is no useful nexthop then return. */
377 if (nexthop_num == 0)
378 {
379 if (IS_ZEBRA_DEBUG_KERNEL)
ajsb6178002004-12-07 21:12:56 +0000380 zlog_debug ("kernel_rtm_ipv6_multipath(): No useful nexthop.");
paul718e3742002-12-13 20:15:29 +0000381 return 0;
382 }
383
384 return 0; /*XXX*/
385}
386
387int
388kernel_add_ipv6 (struct prefix *p, struct rib *rib)
389{
pauledd7c242003-06-04 13:59:38 +0000390 int route;
391
392 if (zserv_privs.change(ZPRIVS_RAISE))
393 zlog (NULL, LOG_ERR, "Can't raise privileges");
394 route = kernel_rtm_ipv6_multipath (RTM_ADD, p, rib, AF_INET6);
395 if (zserv_privs.change(ZPRIVS_LOWER))
396 zlog (NULL, LOG_ERR, "Can't lower privileges");
397
398 return route;
paul718e3742002-12-13 20:15:29 +0000399}
400
401int
402kernel_delete_ipv6 (struct prefix *p, struct rib *rib)
403{
pauledd7c242003-06-04 13:59:38 +0000404 int route;
405
406 if (zserv_privs.change(ZPRIVS_RAISE))
407 zlog (NULL, LOG_ERR, "Can't raise privileges");
408 route = kernel_rtm_ipv6_multipath (RTM_DELETE, p, rib, AF_INET6);
409 if (zserv_privs.change(ZPRIVS_LOWER))
410 zlog (NULL, LOG_ERR, "Can't lower privileges");
411
412 return route;
paul718e3742002-12-13 20:15:29 +0000413}
paul718e3742002-12-13 20:15:29 +0000414#endif /* HAVE_IPV6 */