2 * Copyright (C) 2012-2013 Steven Barth <steven@midlink.org>
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License v2 as published by
6 * the Free Software Foundation.
8 * This program is distributed in the hope that it will be useful,
9 * but WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
11 * GNU General Public License for more details.
30 #include <arpa/inet.h>
32 #include <netinet/ip6.h>
33 #include <netpacket/packet.h>
34 #include <linux/netlink.h>
35 #include <linux/if_addr.h>
36 #include <linux/neighbour.h>
37 #include <linux/rtnetlink.h>
39 #include <sys/socket.h>
40 #include <sys/ioctl.h>
41 #include <sys/epoll.h>
42 #include <sys/types.h>
44 #include <sys/syscall.h>
46 #include <netlink/msg.h>
47 #include <netlink/socket.h>
48 #include <netlink/attr.h>
49 #include <libubox/uloop.h>
54 static int ioctl_sock;
55 static struct nl_sock *rtnl_socket = NULL;
56 static int urandom_fd = -1;
58 static void sighandler(_unused int signal)
63 static void print_usage(const char *app)
67 " -h, --help Print this help\n"
68 " -l level Specify log level 0..7 (default %d)\n",
73 int main(int argc, char **argv)
75 openlog("odhcpd", LOG_PERROR | LOG_PID, LOG_DAEMON);
78 while ((opt = getopt(argc, argv, "hl:")) != -1) {
84 config.log_level = (atoi(optarg) & LOG_PRIMASK);
85 fprintf(stderr, "Log level set to %d\n", config.log_level);
89 setlogmask(LOG_UPTO(config.log_level));
93 syslog(LOG_ERR, "Must be run as root!");
97 ioctl_sock = socket(AF_INET, SOCK_DGRAM | SOCK_CLOEXEC, 0);
99 if (!(rtnl_socket = odhcpd_create_nl_socket(NETLINK_ROUTE))) {
100 syslog(LOG_ERR, "Unable to open nl socket: %s", strerror(errno));
104 if ((urandom_fd = open("/dev/urandom", O_RDONLY | O_CLOEXEC)) < 0)
107 signal(SIGUSR1, SIG_IGN);
108 signal(SIGINT, sighandler);
109 signal(SIGTERM, sighandler);
127 struct nl_sock *odhcpd_create_nl_socket(int protocol)
129 struct nl_sock *nl_sock;
131 nl_sock = nl_socket_alloc();
135 if (nl_connect(nl_sock, protocol) < 0)
142 nl_socket_free(nl_sock);
148 // Read IPv6 MTU for interface
149 int odhcpd_get_interface_config(const char *ifname, const char *what)
152 const char *sysctl_pattern = "/proc/sys/net/ipv6/conf/%s/%s";
153 snprintf(buf, sizeof(buf), sysctl_pattern, ifname, what);
155 int fd = open(buf, O_RDONLY);
156 ssize_t len = read(fd, buf, sizeof(buf) - 1);
167 // Read IPv6 MAC for interface
168 int odhcpd_get_mac(const struct interface *iface, uint8_t mac[6])
171 memset(&ifr, 0, sizeof(ifr));
172 strncpy(ifr.ifr_name, iface->ifname, sizeof(ifr.ifr_name));
173 if (ioctl(ioctl_sock, SIOCGIFHWADDR, &ifr) < 0)
175 memcpy(mac, ifr.ifr_hwaddr.sa_data, 6);
180 // Forwards a packet on a specific interface
181 ssize_t odhcpd_send(int socket, struct sockaddr_in6 *dest,
182 struct iovec *iov, size_t iov_len,
183 const struct interface *iface)
186 uint8_t cmsg_buf[CMSG_SPACE(sizeof(struct in6_pktinfo))] = {0};
187 struct msghdr msg = {
188 .msg_name = (void *) dest,
189 .msg_namelen = sizeof(*dest),
191 .msg_iovlen = iov_len,
192 .msg_control = cmsg_buf,
193 .msg_controllen = sizeof(cmsg_buf),
197 // Set control data (define destination interface)
198 struct cmsghdr *chdr = CMSG_FIRSTHDR(&msg);
199 chdr->cmsg_level = IPPROTO_IPV6;
200 chdr->cmsg_type = IPV6_PKTINFO;
201 chdr->cmsg_len = CMSG_LEN(sizeof(struct in6_pktinfo));
202 struct in6_pktinfo *pktinfo = (struct in6_pktinfo*)CMSG_DATA(chdr);
203 pktinfo->ipi6_ifindex = iface->ifindex;
205 // Also set scope ID if link-local
206 if (IN6_IS_ADDR_LINKLOCAL(&dest->sin6_addr)
207 || IN6_IS_ADDR_MC_LINKLOCAL(&dest->sin6_addr))
208 dest->sin6_scope_id = iface->ifindex;
210 char ipbuf[INET6_ADDRSTRLEN];
211 inet_ntop(AF_INET6, &dest->sin6_addr, ipbuf, sizeof(ipbuf));
213 ssize_t sent = sendmsg(socket, &msg, MSG_DONTWAIT);
215 syslog(LOG_NOTICE, "Failed to send to %s%%%s (%s)",
216 ipbuf, iface->ifname, strerror(errno));
218 syslog(LOG_DEBUG, "Sent %li bytes to %s%%%s",
219 (long)sent, ipbuf, iface->ifname);
225 struct odhcpd_ipaddr **addrs;
230 static int cb_valid_handler(struct nl_msg *msg, void *arg)
232 struct addr_info *ctxt = (struct addr_info *)arg;
233 struct odhcpd_ipaddr *addrs = *(ctxt->addrs);
234 struct nlmsghdr *hdr = nlmsg_hdr(msg);
235 struct ifaddrmsg *ifa;
236 struct nlattr *nla[__IFA_MAX];
238 if (hdr->nlmsg_type != RTM_NEWADDR)
241 ifa = NLMSG_DATA(hdr);
242 if (ifa->ifa_scope != RT_SCOPE_UNIVERSE ||
243 (ctxt->ifindex && ifa->ifa_index != (unsigned)ctxt->ifindex))
246 nlmsg_parse(hdr, sizeof(*ifa), nla, __IFA_MAX - 1, NULL);
247 if (!nla[IFA_ADDRESS])
250 addrs = realloc(addrs, sizeof(*addrs)*(ctxt->ret + 1));
254 memset(&addrs[ctxt->ret], 0, sizeof(addrs[ctxt->ret]));
255 addrs[ctxt->ret].prefix = ifa->ifa_prefixlen;
257 nla_memcpy(&addrs[ctxt->ret].addr, nla[IFA_ADDRESS],
258 sizeof(addrs[ctxt->ret].addr));
260 if (nla[IFA_CACHEINFO]) {
261 struct ifa_cacheinfo *ifc = nla_data(nla[IFA_CACHEINFO]);
263 addrs[ctxt->ret].preferred = ifc->ifa_prefered;
264 addrs[ctxt->ret].valid = ifc->ifa_valid;
267 if (ifa->ifa_flags & IFA_F_DEPRECATED)
268 addrs[ctxt->ret].preferred = 0;
271 *(ctxt->addrs) = addrs;
276 static int cb_finish_handler(_unused struct nl_msg *msg, void *arg)
278 struct addr_info *ctxt = (struct addr_info *)arg;
285 static int cb_error_handler(_unused struct sockaddr_nl *nla, struct nlmsgerr *err,
288 struct addr_info *ctxt = (struct addr_info *)arg;
291 ctxt->ret = err->error;
296 // Detect an IPV6-address currently assigned to the given interface
297 ssize_t odhcpd_get_interface_addresses(int ifindex, struct odhcpd_ipaddr **addrs)
300 struct ifaddrmsg ifa = {
301 .ifa_family = AF_INET6,
305 .ifa_index = ifindex, };
306 struct nl_cb *cb = nl_cb_alloc(NL_CB_DEFAULT);
307 struct addr_info ctxt = {
319 msg = nlmsg_alloc_simple(RTM_GETADDR, NLM_F_REQUEST | NLM_F_DUMP);
326 nlmsg_append(msg, &ifa, sizeof(ifa), 0);
328 nl_cb_set(cb, NL_CB_VALID, NL_CB_CUSTOM, cb_valid_handler, &ctxt);
329 nl_cb_set(cb, NL_CB_FINISH, NL_CB_CUSTOM, cb_finish_handler, &ctxt);
330 nl_cb_err(cb, NL_CB_CUSTOM, cb_error_handler, &ctxt);
332 nl_send_auto_complete(rtnl_socket, msg);
333 while (ctxt.pending > 0)
334 nl_recvmsgs(rtnl_socket, cb);
343 static int odhcpd_get_linklocal_interface_address(int ifindex, struct in6_addr *lladdr)
346 struct sockaddr_in6 addr = {AF_INET6, 0, 0, ALL_IPV6_ROUTERS, ifindex};
347 socklen_t alen = sizeof(addr);
348 int sock = socket(AF_INET6, SOCK_RAW, IPPROTO_ICMPV6);
350 if (!connect(sock, (struct sockaddr*)&addr, sizeof(addr)) &&
351 !getsockname(sock, (struct sockaddr*)&addr, &alen)) {
352 *lladdr = addr.sin6_addr;
362 * DNS address selection criteria order :
363 * - use IPv6 address with valid lifetime if none is yet selected
364 * - use IPv6 address with a preferred lifetime if the already selected IPv6 address is deprecated
365 * - use an IPv6 ULA address if the already selected IPv6 address is not an ULA address
366 * - use the IPv6 address with the longest preferred lifetime
368 int odhcpd_get_interface_dns_addr(const struct interface *iface, struct in6_addr *addr)
370 time_t now = odhcpd_time();
373 for (size_t i = 0; i < iface->ia_addr_len; ++i) {
374 if (iface->ia_addr[i].valid <= (uint32_t)now)
382 if (iface->ia_addr[m].preferred >= (uint32_t)now &&
383 iface->ia_addr[i].preferred < (uint32_t)now)
386 if (IN6_IS_ADDR_ULA(&iface->ia_addr[i].addr)) {
387 if (!IN6_IS_ADDR_ULA(&iface->ia_addr[m].addr)) {
391 } else if (IN6_IS_ADDR_ULA(&iface->ia_addr[m].addr))
394 if (iface->ia_addr[i].preferred > iface->ia_addr[m].preferred)
399 *addr = iface->ia_addr[m].addr;
403 return odhcpd_get_linklocal_interface_address(iface->ifindex, addr);
406 int odhcpd_setup_route(const struct in6_addr *addr, const int prefixlen,
407 const struct interface *iface, const struct in6_addr *gw,
408 const uint32_t metric, const bool add)
412 .rtm_family = AF_INET6,
413 .rtm_dst_len = prefixlen,
415 .rtm_table = RT_TABLE_MAIN,
416 .rtm_protocol = (add ? RTPROT_STATIC : RTPROT_UNSPEC),
417 .rtm_scope = (add ? (gw ? RT_SCOPE_UNIVERSE : RT_SCOPE_LINK) : RT_SCOPE_NOWHERE),
418 .rtm_type = (add ? RTN_UNICAST : RTN_UNSPEC),
422 msg = nlmsg_alloc_simple(add ? RTM_NEWROUTE : RTM_DELROUTE,
423 add ? NLM_F_CREATE | NLM_F_REPLACE : 0);
427 nlmsg_append(msg, &rtm, sizeof(rtm), 0);
429 nla_put(msg, RTA_DST, sizeof(*addr), addr);
430 nla_put_u32(msg, RTA_OIF, iface->ifindex);
431 nla_put_u32(msg, RTA_PRIORITY, metric);
434 nla_put(msg, RTA_GATEWAY, sizeof(*gw), gw);
436 ret = nl_send_auto_complete(rtnl_socket, msg);
442 return nl_wait_for_ack(rtnl_socket);
445 int odhcpd_setup_proxy_neigh(const struct in6_addr *addr,
446 const struct interface *iface, const bool add)
450 .ndm_family = AF_INET6,
451 .ndm_flags = NTF_PROXY,
452 .ndm_ifindex = iface->ifindex,
454 int ret = 0, flags = NLM_F_REQUEST;
457 flags |= NLM_F_REPLACE | NLM_F_CREATE;
459 msg = nlmsg_alloc_simple(add ? RTM_NEWNEIGH : RTM_DELNEIGH, flags);
463 nlmsg_append(msg, &ndm, sizeof(ndm), 0);
465 nla_put(msg, NDA_DST, sizeof(*addr), addr);
467 ret = nl_send_auto_complete(rtnl_socket, msg);
473 return nl_wait_for_ack(rtnl_socket);
476 struct interface* odhcpd_get_interface_by_index(int ifindex)
478 struct interface *iface;
479 list_for_each_entry(iface, &interfaces, head)
480 if (iface->ifindex == ifindex)
487 struct interface* odhcpd_get_interface_by_name(const char *name)
489 struct interface *iface;
490 list_for_each_entry(iface, &interfaces, head)
491 if (!strcmp(iface->ifname, name))
498 struct interface* odhcpd_get_master_interface(void)
500 struct interface *iface;
501 list_for_each_entry(iface, &interfaces, head)
509 // Convenience function to receive and do basic validation of packets
510 static void odhcpd_receive_packets(struct uloop_fd *u, _unused unsigned int events)
512 struct odhcpd_event *e = container_of(u, struct odhcpd_event, uloop);
514 uint8_t data_buf[RELAYD_BUFFER_SIZE], cmsg_buf[128];
516 struct sockaddr_in6 in6;
517 struct sockaddr_in in;
518 struct sockaddr_ll ll;
519 struct sockaddr_nl nl;
524 socklen_t ret_len = sizeof(ret);
525 getsockopt(u->fd, SOL_SOCKET, SO_ERROR, &ret, &ret_len);
528 e->handle_error(e, ret);
537 struct iovec iov = {data_buf, sizeof(data_buf)};
538 struct msghdr msg = {
539 .msg_name = (void *) &addr,
540 .msg_namelen = sizeof(addr),
543 .msg_control = cmsg_buf,
544 .msg_controllen = sizeof(cmsg_buf),
548 ssize_t len = recvmsg(u->fd, &msg, MSG_DONTWAIT);
557 // Extract destination interface
561 struct in6_pktinfo *pktinfo;
562 struct in_pktinfo *pkt4info;
563 for (struct cmsghdr *ch = CMSG_FIRSTHDR(&msg); ch != NULL; ch = CMSG_NXTHDR(&msg, ch)) {
564 if (ch->cmsg_level == IPPROTO_IPV6 &&
565 ch->cmsg_type == IPV6_PKTINFO) {
566 pktinfo = (struct in6_pktinfo*)CMSG_DATA(ch);
567 destiface = pktinfo->ipi6_ifindex;
568 dest = &pktinfo->ipi6_addr;
569 } else if (ch->cmsg_level == IPPROTO_IP &&
570 ch->cmsg_type == IP_PKTINFO) {
571 pkt4info = (struct in_pktinfo*)CMSG_DATA(ch);
572 destiface = pkt4info->ipi_ifindex;
573 dest = &pkt4info->ipi_addr;
574 } else if (ch->cmsg_level == IPPROTO_IPV6 &&
575 ch->cmsg_type == IPV6_HOPLIMIT) {
576 hlim = (int*)CMSG_DATA(ch);
580 // Check hoplimit if received
581 if (hlim && *hlim != 255)
584 // Detect interface for packet sockets
585 if (addr.ll.sll_family == AF_PACKET)
586 destiface = addr.ll.sll_ifindex;
588 struct interface *iface =
589 odhcpd_get_interface_by_index(destiface);
591 if (!iface && addr.nl.nl_family != AF_NETLINK)
594 char ipbuf[INET6_ADDRSTRLEN] = "kernel";
595 if (addr.ll.sll_family == AF_PACKET &&
596 len >= (ssize_t)sizeof(struct ip6_hdr))
597 inet_ntop(AF_INET6, &data_buf[8], ipbuf, sizeof(ipbuf));
598 else if (addr.in6.sin6_family == AF_INET6)
599 inet_ntop(AF_INET6, &addr.in6.sin6_addr, ipbuf, sizeof(ipbuf));
600 else if (addr.in.sin_family == AF_INET)
601 inet_ntop(AF_INET, &addr.in.sin_addr, ipbuf, sizeof(ipbuf));
603 syslog(LOG_DEBUG, "Received %li Bytes from %s%%%s", (long)len,
604 ipbuf, (iface) ? iface->ifname : "netlink");
606 e->handle_dgram(&addr, data_buf, len, iface, dest);
610 // Register events for the multiplexer
611 int odhcpd_register(struct odhcpd_event *event)
613 event->uloop.cb = odhcpd_receive_packets;
614 return uloop_fd_add(&event->uloop, ULOOP_READ |
615 ((event->handle_error) ? ULOOP_ERROR_CB : 0));
618 int odhcpd_deregister(struct odhcpd_event *event)
620 event->uloop.cb = NULL;
621 return uloop_fd_delete(&event->uloop);
624 void odhcpd_process(struct odhcpd_event *event)
626 odhcpd_receive_packets(&event->uloop, 0);
629 int odhcpd_urandom(void *data, size_t len)
631 return read(urandom_fd, data, len);
635 time_t odhcpd_time(void)
638 syscall(SYS_clock_gettime, CLOCK_MONOTONIC, &ts);
643 static const char hexdigits[] = "0123456789abcdef";
644 static const int8_t hexvals[] = {
645 -1, -1, -1, -1, -1, -1, -1, -1, -1, -2, -2, -1, -1, -2, -1, -1,
646 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
647 -2, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
648 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, -1, -1, -1, -1, -1, -1,
649 -1, 10, 11, 12, 13, 14, 15, -1, -1, -1, -1, -1, -1, -1, -1, -1,
650 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
651 -1, 10, 11, 12, 13, 14, 15, -1, -1, -1, -1, -1, -1, -1, -1, -1,
652 -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
655 ssize_t odhcpd_unhexlify(uint8_t *dst, size_t len, const char *src)
658 for (c = 0; c < len && src[0] && src[1]; ++c) {
659 int8_t x = (int8_t)*src++;
660 int8_t y = (int8_t)*src++;
661 if (x < 0 || (x = hexvals[x]) < 0
662 || y < 0 || (y = hexvals[y]) < 0)
665 while (((int8_t)*src) < 0 ||
666 (*src && hexvals[(uint8_t)*src] < 0))
674 void odhcpd_hexlify(char *dst, const uint8_t *src, size_t len)
676 for (size_t i = 0; i < len; ++i) {
677 *dst++ = hexdigits[src[i] >> 4];
678 *dst++ = hexdigits[src[i] & 0x0f];
684 int odhcpd_bmemcmp(const void *av, const void *bv, size_t bits)
686 const uint8_t *a = av, *b = bv;
687 size_t bytes = bits / 8;
690 int res = memcmp(a, b, bytes);
691 if (res == 0 && bits > 0)
692 res = (a[bytes] >> (8 - bits)) - (b[bytes] >> (8 - bits));
698 void odhcpd_bmemcpy(void *av, const void *bv, size_t bits)
701 const uint8_t *b = bv;
703 size_t bytes = bits / 8;
708 uint8_t mask = (1 << (8 - bits)) - 1;
709 a[bytes] = (a[bytes] & mask) | ((~mask) & b[bytes]);