pfctl.h revision 1.32
1/* $OpenBSD: pfctl.h,v 1.32 2004/02/17 08:48:29 cedric Exp $ */ 2 3/* 4 * Copyright (c) 2001 Daniel Hartmeier 5 * All rights reserved. 6 * 7 * Redistribution and use in source and binary forms, with or without 8 * modification, are permitted provided that the following conditions 9 * are met: 10 * 11 * - Redistributions of source code must retain the above copyright 12 * notice, this list of conditions and the following disclaimer. 13 * - Redistributions in binary form must reproduce the above 14 * copyright notice, this list of conditions and the following 15 * disclaimer in the documentation and/or other materials provided 16 * with the distribution. 17 * 18 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 19 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 20 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS 21 * FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE 22 * COPYRIGHT HOLDERS OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, 23 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, 24 * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 25 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER 26 * CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 27 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN 28 * ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 29 * POSSIBILITY OF SUCH DAMAGE. 30 * 31 */ 32 33#ifndef _PFCTL_H_ 34#define _PFCTL_H_ 35 36enum { PFRB_TABLES = 1, PFRB_TSTATS, PFRB_ADDRS, PFRB_ASTATS, 37 PFRB_IFACES, PFRB_TRANS, PFRB_MAX }; 38struct pfr_buffer { 39 int pfrb_type; /* type of content, see enum above */ 40 int pfrb_size; /* number of objects in buffer */ 41 int pfrb_msize; /* maximum number of objects in buffer */ 42 void *pfrb_caddr; /* malloc'ated memory area */ 43}; 44#define PFRB_FOREACH(var, buf) \ 45 for ((var) = pfr_buf_next((buf), NULL); \ 46 (var) != NULL; \ 47 (var) = pfr_buf_next((buf), (var))) 48 49void pfr_set_fd(int); 50int pfr_get_fd(void); 51int pfr_clr_tables(struct pfr_table *, int *, int); 52int pfr_add_tables(struct pfr_table *, int, int *, int); 53int pfr_del_tables(struct pfr_table *, int, int *, int); 54int pfr_get_tables(struct pfr_table *, struct pfr_table *, int *, int); 55int pfr_get_tstats(struct pfr_table *, struct pfr_tstats *, int *, int); 56int pfr_clr_tstats(struct pfr_table *, int, int *, int); 57int pfr_clr_addrs(struct pfr_table *, int *, int); 58int pfr_add_addrs(struct pfr_table *, struct pfr_addr *, int, int *, int); 59int pfr_del_addrs(struct pfr_table *, struct pfr_addr *, int, int *, int); 60int pfr_set_addrs(struct pfr_table *, struct pfr_addr *, int, int *, 61 int *, int *, int *, int); 62int pfr_get_addrs(struct pfr_table *, struct pfr_addr *, int *, int); 63int pfr_get_astats(struct pfr_table *, struct pfr_astats *, int *, int); 64int pfr_clr_astats(struct pfr_table *, struct pfr_addr *, int, int *, int); 65int pfr_tst_addrs(struct pfr_table *, struct pfr_addr *, int, int *, int); 66int pfr_set_tflags(struct pfr_table *, int, int, int, int *, int *, int); 67int pfr_ina_begin(struct pfr_table *, int *, int *, int); 68int pfr_ina_commit(struct pfr_table *, int, int *, int *, int); 69int pfr_ina_define(struct pfr_table *, struct pfr_addr *, int, int *, 70 int *, int, int); 71void pfr_buf_clear(struct pfr_buffer *); 72int pfr_buf_add(struct pfr_buffer *, const void *); 73void *pfr_buf_next(struct pfr_buffer *, const void *); 74int pfr_buf_grow(struct pfr_buffer *, int); 75int pfr_buf_load(struct pfr_buffer *, char *, int, 76 int (*)(struct pfr_buffer *, char *, int)); 77char *pfr_strerror(int); 78int pfi_get_ifaces(const char *, struct pfi_if *, int *, int); 79int pfi_clr_istats(const char *, int *, int); 80 81void pfctl_print_title(char *); 82int pfctl_clear_tables(const char *, const char *, int); 83int pfctl_show_tables(const char *, const char *, int); 84int pfctl_command_tables(int, char *[], char *, const char *, char *, 85 const char *, const char *, int); 86int pfctl_show_altq(int, int, int); 87void warn_namespace_collision(const char *); 88int pfctl_show_ifaces(const char *, int); 89 90#ifndef DEFAULT_PRIORITY 91#define DEFAULT_PRIORITY 1 92#endif 93 94#ifndef DEFAULT_QLIMIT 95#define DEFAULT_QLIMIT 50 96#endif 97 98/* 99 * generalized service curve used for admission control 100 */ 101struct segment { 102 LIST_ENTRY(segment) _next; 103 double x, y, d, m; 104}; 105 106int check_commit_altq(int, int); 107void pfaltq_store(struct pf_altq *); 108void pfaltq_free(struct pf_altq *); 109struct pf_altq *pfaltq_lookup(const char *); 110char *rate2str(double); 111 112void print_addr(struct pf_addr_wrap *, sa_family_t, int); 113void print_host(struct pf_state_host *, sa_family_t, int); 114void print_seq(struct pf_state_peer *); 115void print_state(struct pf_state *, int); 116int unmask(struct pf_addr *, sa_family_t); 117 118int pfctl_cmdline_symset(char *); 119int pfctl_add_trans(struct pfr_buffer *, int, const char *, const char *); 120u_int32_t 121 pfctl_get_ticket(struct pfr_buffer *, int, const char *, const char *); 122int pfctl_trans(int, struct pfr_buffer *, u_long, int); 123 124#endif /* _PFCTL_H_ */ 125