in6_proto.c revision 1.48
1/*	$NetBSD: in6_proto.c,v 1.48 2003/08/07 08:52:32 itojun Exp $	*/
2/*	$KAME: in6_proto.c,v 1.66 2000/10/10 15:35:47 itojun Exp $	*/
3
4/*
5 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
6 * All rights reserved.
7 *
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
10 * are met:
11 * 1. Redistributions of source code must retain the above copyright
12 *    notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 *    notice, this list of conditions and the following disclaimer in the
15 *    documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of the project nor the names of its contributors
17 *    may be used to endorse or promote products derived from this software
18 *    without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 * SUCH DAMAGE.
31 */
32
33/*
34 * Copyright (c) 1982, 1986, 1993
35 *	The Regents of the University of California.  All rights reserved.
36 *
37 * Redistribution and use in source and binary forms, with or without
38 * modification, are permitted provided that the following conditions
39 * are met:
40 * 1. Redistributions of source code must retain the above copyright
41 *    notice, this list of conditions and the following disclaimer.
42 * 2. Redistributions in binary form must reproduce the above copyright
43 *    notice, this list of conditions and the following disclaimer in the
44 *    documentation and/or other materials provided with the distribution.
45 * 3. All advertising materials mentioning features or use of this software
46 *    must display the following acknowledgement:
47 *	This product includes software developed by the University of
48 *	California, Berkeley and its contributors.
49 * 4. Neither the name of the University nor the names of its contributors
50 *    may be used to endorse or promote products derived from this software
51 *    without specific prior written permission.
52 *
53 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
54 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
55 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
56 * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
57 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
58 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
59 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
60 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
61 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
62 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
63 * SUCH DAMAGE.
64 *
65 *	@(#)in_proto.c	8.1 (Berkeley) 6/10/93
66 */
67
68#include <sys/cdefs.h>
69__KERNEL_RCSID(0, "$NetBSD: in6_proto.c,v 1.48 2003/08/07 08:52:32 itojun Exp $");
70
71#include "opt_inet.h"
72#include "opt_ipsec.h"
73#include "opt_iso.h"
74
75#include <sys/param.h>
76#include <sys/socket.h>
77#include <sys/protosw.h>
78#include <sys/kernel.h>
79#include <sys/domain.h>
80#include <sys/mbuf.h>
81
82#include <net/if.h>
83#include <net/radix.h>
84#include <net/route.h>
85
86#include <netinet/in.h>
87#include <netinet/in_systm.h>
88#include <netinet/in_var.h>
89#include <netinet/ip_encap.h>
90#include <netinet/ip.h>
91#include <netinet/ip_var.h>
92#include <netinet/in_pcb.h>
93#include <netinet/ip6.h>
94#include <netinet6/ip6_var.h>
95#include <netinet/icmp6.h>
96#include <netinet6/in6_pcb.h>
97
98#include <netinet/tcp.h>
99#include <netinet/tcp_fsm.h>
100#include <netinet/tcp_seq.h>
101#include <netinet/tcp_timer.h>
102#include <netinet/tcp_var.h>
103#include <netinet/tcpip.h>
104#include <netinet/tcp_debug.h>
105
106#include <netinet6/udp6.h>
107#include <netinet6/udp6_var.h>
108
109#include <netinet6/pim6_var.h>
110
111#include <netinet6/nd6.h>
112
113#ifdef IPSEC
114#include <netinet6/ipsec.h>
115#include <netinet6/ah.h>
116#ifdef IPSEC_ESP
117#include <netinet6/esp.h>
118#endif
119#include <netinet6/ipcomp.h>
120#endif /* IPSEC */
121
122#include <netinet6/ip6protosw.h>
123
124#include <net/net_osdep.h>
125
126#ifndef offsetof		/* XXX */
127#define	offsetof(type, member)	((size_t)(&((type *)0)->member))
128#endif
129
130/*
131 * TCP/IP protocol family: IP6, ICMP6, UDP, TCP.
132 */
133
134extern	struct domain inet6domain;
135
136struct ip6protosw inet6sw[] = {
137{ 0,		&inet6domain,	IPPROTO_IPV6,	0,
138  0,		0,		0,		0,
139  0,
140  ip6_init,	0,		frag6_slowtimo,	frag6_drain,
141  ip6_sysctl,
142},
143{ SOCK_DGRAM,	&inet6domain,	IPPROTO_UDP,	PR_ATOMIC|PR_ADDR,
144  udp6_input,	0,		udp6_ctlinput,	ip6_ctloutput,
145  udp6_usrreq,	udp6_init,
146  0,		0,		0,
147  udp6_sysctl,
148},
149{ SOCK_STREAM,	&inet6domain,	IPPROTO_TCP,	PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN|PR_ABRTACPTDIS,
150  tcp6_input,	0,		tcp6_ctlinput,	tcp_ctloutput,
151  tcp_usrreq,
152#ifdef INET	/* don't call initialization and timeout routines twice */
153  0,		0,		0,		tcp6_drain,
154#else
155  tcp_init,	0,		tcp_slowtimo,	tcp6_drain,
156#endif
157  tcp_sysctl,
158},
159{ SOCK_RAW,	&inet6domain,	IPPROTO_RAW,	PR_ATOMIC|PR_ADDR,
160  rip6_input,	rip6_output,	rip6_ctlinput,	rip6_ctloutput,
161  rip6_usrreq,
162  0,		0,		0,		0,
163},
164{ SOCK_RAW,	&inet6domain,	IPPROTO_ICMPV6,	PR_ATOMIC|PR_ADDR|PR_LASTHDR,
165  icmp6_input,	rip6_output,	rip6_ctlinput,	rip6_ctloutput,
166  rip6_usrreq,
167  icmp6_init,	icmp6_fasttimo,	0,		0,
168  icmp6_sysctl,
169},
170{ SOCK_RAW,	&inet6domain,	IPPROTO_DSTOPTS,PR_ATOMIC|PR_ADDR,
171  dest6_input,	0,	 	0,		0,
172  0,
173  0,		0,		0,		0,
174},
175{ SOCK_RAW,	&inet6domain,	IPPROTO_ROUTING,PR_ATOMIC|PR_ADDR,
176  route6_input,	0,	 	0,		0,
177  0,
178  0,		0,		0,		0,
179},
180{ SOCK_RAW,	&inet6domain,	IPPROTO_FRAGMENT,PR_ATOMIC|PR_ADDR,
181  frag6_input,	0,	 	0,		0,
182  0,
183  0,		0,		0,		0,
184},
185#ifdef IPSEC
186{ SOCK_RAW,	&inet6domain,	IPPROTO_AH,	PR_ATOMIC|PR_ADDR,
187  ah6_input,	0,	 	ah6_ctlinput,	0,
188  0,
189  0,		0,		0,		0,
190  ipsec6_sysctl,
191},
192#ifdef IPSEC_ESP
193{ SOCK_RAW,	&inet6domain,	IPPROTO_ESP,	PR_ATOMIC|PR_ADDR,
194  esp6_input,	0,	 	esp6_ctlinput,	0,
195  0,
196  0,		0,		0,		0,
197  ipsec6_sysctl,
198},
199#endif
200{ SOCK_RAW,	&inet6domain,	IPPROTO_IPCOMP,	PR_ATOMIC|PR_ADDR,
201  ipcomp6_input, 0,	 	0,		0,
202  0,
203  0,		0,		0,		0,
204  ipsec6_sysctl,
205},
206#endif /* IPSEC */
207#ifdef INET
208{ SOCK_RAW,	&inet6domain,	IPPROTO_IPV4,	PR_ATOMIC|PR_ADDR|PR_LASTHDR,
209  encap6_input,	rip6_output, 	encap6_ctlinput, rip6_ctloutput,
210  rip6_usrreq,
211  encap_init,	0,		0,		0,
212},
213#endif
214{ SOCK_RAW,	&inet6domain,	IPPROTO_IPV6,	PR_ATOMIC|PR_ADDR|PR_LASTHDR,
215  encap6_input, rip6_output,	encap6_ctlinput, rip6_ctloutput,
216  rip6_usrreq,
217  encap_init,	0,		0,		0,
218},
219#ifdef ISO
220{ SOCK_RAW,	&inet6domain,	IPPROTO_EON,	PR_ATOMIC|PR_ADDR|PR_LASTHDR,
221  encap6_input,	rip6_output,	encap6_ctlinput, rip6_ctloutput,
222  rip6_usrreq,	/*XXX*/
223  encap_init,	0,		0,		0,
224},
225#endif
226{ SOCK_RAW,     &inet6domain,	IPPROTO_PIM,	PR_ATOMIC|PR_ADDR|PR_LASTHDR,
227  pim6_input,	rip6_output,	0,              rip6_ctloutput,
228  rip6_usrreq,
229  0,            0,              0,              0,
230},
231/* raw wildcard */
232{ SOCK_RAW,	&inet6domain,	0,		PR_ATOMIC|PR_ADDR,
233  rip6_input,	rip6_output,	0,		rip6_ctloutput,
234  rip6_usrreq,
235  rip6_init,	0,		0,		0,
236},
237};
238
239struct domain inet6domain =
240    { AF_INET6, "internet6", 0, 0, 0,
241      (struct protosw *)inet6sw,
242      (struct protosw *)&inet6sw[sizeof(inet6sw)/sizeof(inet6sw[0])], 0,
243      rn_inithead,
244      offsetof(struct sockaddr_in6, sin6_addr) << 3,
245      sizeof(struct sockaddr_in6),
246      in6_domifattach, in6_domifdetach, };
247
248/*
249 * Internet configuration info
250 */
251#ifndef	IPV6FORWARDING
252#ifdef GATEWAY6
253#define	IPV6FORWARDING	1	/* forward IP6 packets not for us */
254#else
255#define	IPV6FORWARDING	0	/* don't forward IP6 packets not for us */
256#endif /* GATEWAY6 */
257#endif /* !IPV6FORWARDING */
258
259int	ip6_forwarding = IPV6FORWARDING;	/* act as router? */
260int	ip6_sendredirects = 1;
261int	ip6_defhlim = IPV6_DEFHLIM;
262int	ip6_defmcasthlim = IPV6_DEFAULT_MULTICAST_HOPS;
263int	ip6_accept_rtadv = 0;	/* "IPV6FORWARDING ? 0 : 1" is dangerous */
264int	ip6_maxfragpackets = 200;
265int	ip6_maxfrags = 200;
266int	ip6_log_interval = 5;
267int	ip6_hdrnestlimit = 50;	/* appropriate? */
268int	ip6_dad_count = 1;	/* DupAddrDetectionTransmits */
269u_int32_t ip6_flow_seq;
270int	ip6_auto_flowlabel = 1;
271int	ip6_use_deprecated = 1;	/* allow deprecated addr (RFC2462 5.5.4) */
272int	ip6_rr_prune = 5;	/* router renumbering prefix
273				 * walk list every 5 sec. */
274int	ip6_v6only = 1;
275
276u_int32_t ip6_id = 0UL;
277int	ip6_keepfaith = 0;
278time_t	ip6_log_time = (time_t)0L;
279
280/* icmp6 */
281/*
282 * BSDI4 defines these variables in in_proto.c...
283 * XXX: what if we don't define INET? Should we define pmtu6_expire
284 * or so? (jinmei@kame.net 19990310)
285 */
286int pmtu_expire = 60*10;
287
288/* raw IP6 parameters */
289/*
290 * Nominal space allocated to a raw ip socket.
291 */
292#define	RIPV6SNDQ	8192
293#define	RIPV6RCVQ	8192
294
295u_long	rip6_sendspace = RIPV6SNDQ;
296u_long	rip6_recvspace = RIPV6RCVQ;
297
298/* ICMPV6 parameters */
299int	icmp6_rediraccept = 1;		/* accept and process redirects */
300int	icmp6_redirtimeout = 10 * 60;	/* 10 minutes */
301int	icmp6errppslim = 100;		/* 100pps */
302int	icmp6_nodeinfo = 1;		/* enable/disable NI response */
303
304/* UDP on IP6 parameters */
305int	udp6_sendspace = 9216;		/* really max datagram size */
306int	udp6_recvspace = 40 * (1024 + sizeof(struct sockaddr_in6));
307					/* 40 1K datagrams */
308