bgpd.c revision 1.140
1/*	$OpenBSD: bgpd.c,v 1.140 2006/11/28 16:39:34 henning Exp $ */
2
3/*
4 * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org>
5 *
6 * Permission to use, copy, modify, and distribute this software for any
7 * purpose with or without fee is hereby granted, provided that the above
8 * copyright notice and this permission notice appear in all copies.
9 *
10 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
15 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
16 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 */
18
19#include <sys/types.h>
20#include <sys/socket.h>
21#include <sys/wait.h>
22#include <netinet/in.h>
23#include <arpa/inet.h>
24#include <err.h>
25#include <errno.h>
26#include <fcntl.h>
27#include <poll.h>
28#include <pwd.h>
29#include <signal.h>
30#include <stdio.h>
31#include <stdlib.h>
32#include <string.h>
33#include <unistd.h>
34
35#include "mrt.h"
36#include "bgpd.h"
37#include "session.h"
38
39void		sighdlr(int);
40__dead void	usage(void);
41int		main(int, char *[]);
42int		check_child(pid_t, const char *);
43int		send_filterset(struct imsgbuf *, struct filter_set_head *);
44int		reconfigure(char *, struct bgpd_config *, struct mrt_head *,
45		    struct peer **, struct filter_head *);
46int		dispatch_imsg(struct imsgbuf *, int);
47
48int			 rfd = -1;
49int			 cflags = 0;
50struct filter_set_head	*connectset;
51struct filter_set_head	*connectset6;
52struct filter_set_head	*staticset;
53struct filter_set_head	*staticset6;
54volatile sig_atomic_t	 mrtdump = 0;
55volatile sig_atomic_t	 quit = 0;
56volatile sig_atomic_t	 sigchld = 0;
57volatile sig_atomic_t	 reconfig = 0;
58pid_t			 reconfpid = 0;
59struct imsgbuf		*ibuf_se;
60struct imsgbuf		*ibuf_rde;
61
62void
63sighdlr(int sig)
64{
65	switch (sig) {
66	case SIGTERM:
67	case SIGINT:
68		quit = 1;
69		break;
70	case SIGCHLD:
71		sigchld = 1;
72		break;
73	case SIGHUP:
74		reconfig = 1;
75		break;
76	case SIGALRM:
77	case SIGUSR1:
78		mrtdump = 1;
79		break;
80	}
81}
82
83__dead void
84usage(void)
85{
86	extern char *__progname;
87
88	fprintf(stderr, "usage: %s [-cdnv] ", __progname);
89	fprintf(stderr, "[-D macro=value] [-f file] [-r path] [-s path]\n");
90	exit(1);
91}
92
93#define PFD_PIPE_SESSION	0
94#define PFD_PIPE_ROUTE		1
95#define PFD_SOCK_ROUTE		2
96#define POLL_MAX		3
97#define MAX_TIMEOUT		3600
98
99int
100main(int argc, char *argv[])
101{
102	struct bgpd_config	 conf;
103	struct peer		*peer_l, *p;
104	struct mrt_head		 mrt_l;
105	struct network_head	 net_l;
106	struct filter_head	*rules_l;
107	struct network		*net;
108	struct filter_rule	*r;
109	struct mrt		*m;
110	struct listen_addr	*la;
111	struct pollfd		 pfd[POLL_MAX];
112	pid_t			 io_pid = 0, rde_pid = 0, pid;
113	char			*conffile;
114	int			 debug = 0;
115	int			 ch, timeout, nfds;
116	int			 pipe_m2s[2];
117	int			 pipe_m2r[2];
118	int			 pipe_s2r[2];
119
120	conffile = CONFFILE;
121	bgpd_process = PROC_MAIN;
122
123	log_init(1);		/* log to stderr until daemonized */
124
125	if ((rules_l = calloc(1, sizeof(struct filter_head))) == NULL)
126		err(1, NULL);
127
128	bzero(&conf, sizeof(conf));
129	LIST_INIT(&mrt_l);
130	TAILQ_INIT(&net_l);
131	TAILQ_INIT(rules_l);
132	peer_l = NULL;
133	conf.csock = SOCKET_NAME;
134
135	while ((ch = getopt(argc, argv, "cdD:f:nr:s:v")) != -1) {
136		switch (ch) {
137		case 'c':
138			conf.opts |= BGPD_OPT_FORCE_DEMOTE;
139			break;
140		case 'd':
141			debug = 1;
142			break;
143		case 'D':
144			if (cmdline_symset(optarg) < 0)
145				log_warnx("could not parse macro definition %s",
146				    optarg);
147			break;
148		case 'f':
149			conffile = optarg;
150			break;
151		case 'n':
152			conf.opts |= BGPD_OPT_NOACTION;
153			break;
154		case 'v':
155			if (conf.opts & BGPD_OPT_VERBOSE)
156				conf.opts |= BGPD_OPT_VERBOSE2;
157			conf.opts |= BGPD_OPT_VERBOSE;
158			break;
159		case 'r':
160			conf.rcsock = optarg;
161			break;
162		case 's':
163			conf.csock = optarg;
164			break;
165		default:
166			usage();
167			/* NOTREACHED */
168		}
169	}
170
171	if (parse_config(conffile, &conf, &mrt_l, &peer_l, &net_l, rules_l)) {
172		free(rules_l);
173		exit(1);
174	}
175
176	if (conf.opts & BGPD_OPT_NOACTION) {
177		if (conf.opts & BGPD_OPT_VERBOSE)
178			print_config(&conf, &net_l, peer_l, rules_l, &mrt_l);
179		else
180			fprintf(stderr, "configuration OK\n");
181		exit(0);
182	}
183	cflags = conf.flags;
184	connectset = &conf.connectset;
185	staticset = &conf.staticset;
186	connectset6 = &conf.connectset6;
187	staticset6 = &conf.staticset6;
188
189	if (geteuid())
190		errx(1, "need root privileges");
191
192	if (getpwnam(BGPD_USER) == NULL)
193		errx(1, "unknown user %s", BGPD_USER);
194
195	log_init(debug);
196
197	if (!debug)
198		daemon(1, 0);
199
200	log_info("startup");
201
202	if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_m2s) == -1)
203		fatal("socketpair");
204	if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_m2r) == -1)
205		fatal("socketpair");
206	if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_s2r) == -1)
207		fatal("socketpair");
208	session_socket_blockmode(pipe_m2s[0], BM_NONBLOCK);
209	session_socket_blockmode(pipe_m2s[1], BM_NONBLOCK);
210	session_socket_blockmode(pipe_m2r[0], BM_NONBLOCK);
211	session_socket_blockmode(pipe_m2r[1], BM_NONBLOCK);
212	session_socket_blockmode(pipe_s2r[0], BM_NONBLOCK);
213	session_socket_blockmode(pipe_s2r[1], BM_NONBLOCK);
214
215	prepare_listeners(&conf);
216
217	/* fork children */
218	rde_pid = rde_main(&conf, peer_l, &net_l, rules_l, &mrt_l,
219	    pipe_m2r, pipe_s2r, pipe_m2s);
220	io_pid = session_main(&conf, peer_l, &net_l, rules_l, &mrt_l,
221	    pipe_m2s, pipe_s2r, pipe_m2r);
222
223	setproctitle("parent");
224
225	signal(SIGTERM, sighdlr);
226	signal(SIGINT, sighdlr);
227	signal(SIGCHLD, sighdlr);
228	signal(SIGHUP, sighdlr);
229	signal(SIGALRM, sighdlr);
230	signal(SIGUSR1, sighdlr);
231
232	close(pipe_m2s[1]);
233	close(pipe_m2r[1]);
234	close(pipe_s2r[0]);
235	close(pipe_s2r[1]);
236
237	if ((ibuf_se = malloc(sizeof(struct imsgbuf))) == NULL ||
238	    (ibuf_rde = malloc(sizeof(struct imsgbuf))) == NULL)
239		fatal(NULL);
240	imsg_init(ibuf_se, pipe_m2s[0]);
241	imsg_init(ibuf_rde, pipe_m2r[0]);
242	mrt_init(ibuf_rde, ibuf_se);
243	if ((rfd = kr_init(!(conf.flags & BGPD_FLAG_NO_FIB_UPDATE),
244	    conf.rtableid)) == -1)
245		quit = 1;
246	if (pftable_clear_all() != 0)
247		quit = 1;
248
249	while ((net = TAILQ_FIRST(&net_l)) != NULL) {
250		TAILQ_REMOVE(&net_l, net, entry);
251		filterset_free(&net->net.attrset);
252		free(net);
253	}
254
255	while ((r = TAILQ_FIRST(rules_l)) != NULL) {
256		TAILQ_REMOVE(rules_l, r, entry);
257		free(r);
258	}
259	TAILQ_FOREACH(la, conf.listen_addrs, entry) {
260		close(la->fd);
261		la->fd = -1;
262	}
263
264	mrt_reconfigure(&mrt_l);
265
266	while (quit == 0) {
267		bzero(pfd, sizeof(pfd));
268		pfd[PFD_PIPE_SESSION].fd = ibuf_se->fd;
269		pfd[PFD_PIPE_SESSION].events = POLLIN;
270		if (ibuf_se->w.queued)
271			pfd[PFD_PIPE_SESSION].events |= POLLOUT;
272		pfd[PFD_PIPE_ROUTE].fd = ibuf_rde->fd;
273		pfd[PFD_PIPE_ROUTE].events = POLLIN;
274		if (ibuf_rde->w.queued)
275			pfd[PFD_PIPE_ROUTE].events |= POLLOUT;
276		pfd[PFD_SOCK_ROUTE].fd = rfd;
277		pfd[PFD_SOCK_ROUTE].events = POLLIN;
278
279		timeout = mrt_timeout(&mrt_l);
280		if (timeout > MAX_TIMEOUT)
281			timeout = MAX_TIMEOUT;
282
283		if ((nfds = poll(pfd, POLL_MAX, timeout * 1000)) == -1)
284			if (errno != EINTR) {
285				log_warn("poll error");
286				quit = 1;
287			}
288
289		if (nfds > 0 && pfd[PFD_PIPE_SESSION].revents & POLLOUT)
290			if (msgbuf_write(&ibuf_se->w) < 0) {
291				log_warn("pipe write error (to SE)");
292				quit = 1;
293			}
294
295		if (nfds > 0 && pfd[PFD_PIPE_ROUTE].revents & POLLOUT)
296			if (msgbuf_write(&ibuf_rde->w) < 0) {
297				log_warn("pipe write error (to RDE)");
298				quit = 1;
299			}
300
301		if (nfds > 0 && pfd[PFD_PIPE_SESSION].revents & POLLIN) {
302			if (dispatch_imsg(ibuf_se, PFD_PIPE_SESSION) == -1)
303				quit = 1;
304		}
305
306		if (nfds > 0 && pfd[PFD_PIPE_ROUTE].revents & POLLIN) {
307			if (dispatch_imsg(ibuf_rde, PFD_PIPE_ROUTE) == -1)
308				quit = 1;
309		}
310
311		if (nfds > 0 && pfd[PFD_SOCK_ROUTE].revents & POLLIN) {
312			if (kr_dispatch_msg() == -1)
313				quit = 1;
314		}
315
316		if (reconfig) {
317			u_int	error;
318
319			reconfig = 0;
320			log_info("rereading config");
321			switch (reconfigure(conffile, &conf, &mrt_l, &peer_l,
322			    rules_l)) {
323			case -1:	/* fatal error */
324				quit = 1;
325				break;
326			case 0:		/* all OK */
327				error = 0;
328				break;
329			default:	/* parse error */
330				error = CTL_RES_PARSE_ERROR;
331				break;
332			}
333			if (reconfpid != 0) {
334				send_imsg_session(IMSG_CTL_RESULT, reconfpid,
335				    &error, sizeof(error));
336				reconfpid = 0;
337			}
338		}
339
340		if (sigchld) {
341			sigchld = 0;
342			if (check_child(io_pid, "session engine")) {
343				quit = 1;
344				io_pid = 0;
345			}
346			if (check_child(rde_pid, "route decision engine")) {
347				quit = 1;
348				rde_pid = 0;
349			}
350		}
351
352		if (mrtdump) {
353			mrtdump = 0;
354			mrt_handler(&mrt_l);
355		}
356	}
357
358	signal(SIGCHLD, SIG_IGN);
359
360	if (io_pid)
361		kill(io_pid, SIGTERM);
362
363	if (rde_pid)
364		kill(rde_pid, SIGTERM);
365
366	while ((p = peer_l) != NULL) {
367		peer_l = p->next;
368		free(p);
369	}
370	while ((m = LIST_FIRST(&mrt_l)) != NULL) {
371		LIST_REMOVE(m, entry);
372		free(m);
373	}
374	while ((la = TAILQ_FIRST(conf.listen_addrs)) != NULL) {
375		TAILQ_REMOVE(conf.listen_addrs, la, entry);
376		close(la->fd);
377		free(la);
378	}
379
380	free(rules_l);
381	control_cleanup(conf.csock);
382	control_cleanup(conf.rcsock);
383	carp_demote_shutdown();
384	kr_shutdown();
385	pftable_clear_all();
386	free(conf.listen_addrs);
387
388	do {
389		if ((pid = wait(NULL)) == -1 &&
390		    errno != EINTR && errno != ECHILD)
391			fatal("wait");
392	} while (pid != -1 || (pid == -1 && errno == EINTR));
393
394	msgbuf_clear(&ibuf_se->w);
395	free(ibuf_se);
396	msgbuf_clear(&ibuf_rde->w);
397	free(ibuf_rde);
398
399	log_info("Terminating");
400	return (0);
401}
402
403int
404check_child(pid_t pid, const char *pname)
405{
406	int	status;
407
408	if (waitpid(pid, &status, WNOHANG) > 0) {
409		if (WIFEXITED(status)) {
410			log_warnx("Lost child: %s exited", pname);
411			return (1);
412		}
413		if (WIFSIGNALED(status)) {
414			log_warnx("Lost child: %s terminated; signal %d",
415			    pname, WTERMSIG(status));
416			return (1);
417		}
418	}
419
420	return (0);
421}
422
423int
424send_filterset(struct imsgbuf *i, struct filter_set_head *set)
425{
426	struct filter_set	*s;
427
428	TAILQ_FOREACH(s, set, entry)
429		if (imsg_compose(i, IMSG_FILTER_SET, 0, 0, -1, s,
430		    sizeof(struct filter_set)) == -1)
431			return (-1);
432	return (0);
433}
434
435int
436reconfigure(char *conffile, struct bgpd_config *conf, struct mrt_head *mrt_l,
437    struct peer **peer_l, struct filter_head *rules_l)
438{
439	struct network_head	 net_l;
440	struct network		*n;
441	struct peer		*p;
442	struct filter_rule	*r;
443	struct listen_addr	*la;
444
445	if (parse_config(conffile, conf, mrt_l, peer_l, &net_l, rules_l)) {
446		log_warnx("config file %s has errors, not reloading",
447		    conffile);
448		return (1);
449	}
450
451	cflags = conf->flags;
452	connectset = &conf->connectset;
453	staticset = &conf->staticset;
454	connectset6 = &conf->connectset6;
455	staticset6 = &conf->staticset6;
456
457	prepare_listeners(conf);
458
459	/* start reconfiguration */
460	if (imsg_compose(ibuf_se, IMSG_RECONF_CONF, 0, 0, -1,
461	    conf, sizeof(struct bgpd_config)) == -1)
462		return (-1);
463	if (imsg_compose(ibuf_rde, IMSG_RECONF_CONF, 0, 0, -1,
464	    conf, sizeof(struct bgpd_config)) == -1)
465		return (-1);
466
467	/* send peer list and listeners to the SE */
468	for (p = *peer_l; p != NULL; p = p->next)
469		if (imsg_compose(ibuf_se, IMSG_RECONF_PEER, p->conf.id, 0, -1,
470		    &p->conf, sizeof(struct peer_config)) == -1)
471			return (-1);
472
473	TAILQ_FOREACH(la, conf->listen_addrs, entry) {
474		if (imsg_compose(ibuf_se, IMSG_RECONF_LISTENER, 0, 0, la->fd,
475		    la, sizeof(struct listen_addr)) == -1)
476			return (-1);
477		la->fd = -1;
478	}
479
480	/* networks for the RDE */
481	while ((n = TAILQ_FIRST(&net_l)) != NULL) {
482		if (imsg_compose(ibuf_rde, IMSG_NETWORK_ADD, 0, 0, -1,
483		    &n->net, sizeof(struct network_config)) == -1)
484			return (-1);
485		if (send_filterset(ibuf_rde, &n->net.attrset) == -1)
486			return (-1);
487		if (imsg_compose(ibuf_rde, IMSG_NETWORK_DONE, 0, 0, -1,
488		    NULL, 0) == -1)
489			return (-1);
490		TAILQ_REMOVE(&net_l, n, entry);
491		filterset_free(&n->net.attrset);
492		free(n);
493	}
494
495	/* redistribute list needs to be reloaded too */
496	if (kr_reload() == -1)
497		return (-1);
498
499	/* filters for the RDE */
500	while ((r = TAILQ_FIRST(rules_l)) != NULL) {
501		if (imsg_compose(ibuf_rde, IMSG_RECONF_FILTER, 0, 0, -1,
502		    r, sizeof(struct filter_rule)) == -1)
503			return (-1);
504		if (send_filterset(ibuf_rde, &r->set) == -1)
505			return (-1);
506		TAILQ_REMOVE(rules_l, r, entry);
507		filterset_free(&r->set);
508		free(r);
509	}
510
511	/* singal both childs to replace their config */
512	if (imsg_compose(ibuf_se, IMSG_RECONF_DONE, 0, 0, -1, NULL, 0) == -1 ||
513	    imsg_compose(ibuf_rde, IMSG_RECONF_DONE, 0, 0, -1, NULL, 0) == -1)
514		return (-1);
515
516	/* mrt changes can be sent out of bound */
517	mrt_reconfigure(mrt_l);
518	return (0);
519}
520
521int
522dispatch_imsg(struct imsgbuf *ibuf, int idx)
523{
524	struct imsg		 imsg;
525	int			 n;
526	int			 rv;
527
528	if ((n = imsg_read(ibuf)) == -1)
529		return (-1);
530
531	if (n == 0) {	/* connection closed */
532		log_warnx("dispatch_imsg in main: pipe closed");
533		return (-1);
534	}
535
536	rv = 0;
537	for (;;) {
538		if ((n = imsg_get(ibuf, &imsg)) == -1)
539			return (-1);
540
541		if (n == 0)
542			break;
543
544		switch (imsg.hdr.type) {
545		case IMSG_KROUTE_CHANGE:
546			if (idx != PFD_PIPE_ROUTE)
547				log_warnx("route request not from RDE");
548			else if (kr_change(imsg.data))
549				rv = -1;
550			break;
551		case IMSG_KROUTE_DELETE:
552			if (idx != PFD_PIPE_ROUTE)
553				log_warnx("route request not from RDE");
554			else if (kr_delete(imsg.data))
555				rv = -1;
556			break;
557		case IMSG_KROUTE6_CHANGE:
558			if (idx != PFD_PIPE_ROUTE)
559				log_warnx("route request not from RDE");
560			else if (kr6_change(imsg.data))
561				rv = -1;
562			break;
563		case IMSG_KROUTE6_DELETE:
564			if (idx != PFD_PIPE_ROUTE)
565				log_warnx("route request not from RDE");
566			else if (kr6_delete(imsg.data))
567				rv = -1;
568			break;
569		case IMSG_NEXTHOP_ADD:
570			if (idx != PFD_PIPE_ROUTE)
571				log_warnx("nexthop request not from RDE");
572			else
573				if (imsg.hdr.len != IMSG_HEADER_SIZE +
574				    sizeof(struct bgpd_addr))
575					log_warnx("wrong imsg len");
576				else if (kr_nexthop_add(imsg.data) == -1)
577					rv = -1;
578			break;
579		case IMSG_NEXTHOP_REMOVE:
580			if (idx != PFD_PIPE_ROUTE)
581				log_warnx("nexthop request not from RDE");
582			else
583				if (imsg.hdr.len != IMSG_HEADER_SIZE +
584				    sizeof(struct bgpd_addr))
585					log_warnx("wrong imsg len");
586				else
587					kr_nexthop_delete(imsg.data);
588			break;
589		case IMSG_PFTABLE_ADD:
590			if (idx != PFD_PIPE_ROUTE)
591				log_warnx("pftable request not from RDE");
592			else
593				if (imsg.hdr.len != IMSG_HEADER_SIZE +
594				    sizeof(struct pftable_msg))
595					log_warnx("wrong imsg len");
596				else if (pftable_addr_add(imsg.data) != 0)
597					rv = -1;
598			break;
599		case IMSG_PFTABLE_REMOVE:
600			if (idx != PFD_PIPE_ROUTE)
601				log_warnx("pftable request not from RDE");
602			else
603				if (imsg.hdr.len != IMSG_HEADER_SIZE +
604				    sizeof(struct pftable_msg))
605					log_warnx("wrong imsg len");
606				else if (pftable_addr_remove(imsg.data) != 0)
607					rv = -1;
608			break;
609		case IMSG_PFTABLE_COMMIT:
610			if (idx != PFD_PIPE_ROUTE)
611				log_warnx("pftable request not from RDE");
612			else
613				if (imsg.hdr.len != IMSG_HEADER_SIZE)
614					log_warnx("wrong imsg len");
615				else if (pftable_commit() != 0)
616					rv = -1;
617			break;
618		case IMSG_CTL_RELOAD:
619			if (idx != PFD_PIPE_SESSION)
620				log_warnx("reload request not from SE");
621			else
622				reconfig = 1;
623				reconfpid = imsg.hdr.pid;
624			break;
625		case IMSG_CTL_FIB_COUPLE:
626			if (idx != PFD_PIPE_SESSION)
627				log_warnx("couple request not from SE");
628			else
629				kr_fib_couple();
630			break;
631		case IMSG_CTL_FIB_DECOUPLE:
632			if (idx != PFD_PIPE_SESSION)
633				log_warnx("decouple request not from SE");
634			else
635				kr_fib_decouple();
636			break;
637		case IMSG_CTL_KROUTE:
638		case IMSG_CTL_KROUTE_ADDR:
639		case IMSG_CTL_SHOW_NEXTHOP:
640		case IMSG_CTL_SHOW_INTERFACE:
641			if (idx != PFD_PIPE_SESSION)
642				log_warnx("kroute request not from SE");
643			else
644				kr_show_route(&imsg);
645			break;
646		case IMSG_IFINFO:
647			if (idx != PFD_PIPE_SESSION)
648				log_warnx("IFINFO request not from SE");
649			else if (imsg.hdr.len != IMSG_HEADER_SIZE + IFNAMSIZ)
650				log_warnx("IFINFO request with wrong len");
651			else
652				kr_ifinfo(imsg.data);
653			break;
654		case IMSG_DEMOTE:
655			if (idx != PFD_PIPE_SESSION)
656				log_warnx("demote request not from SE");
657			else if (imsg.hdr.len != IMSG_HEADER_SIZE +
658			    sizeof(struct demote_msg))
659				log_warnx("DEMOTE request with wrong len");
660			else {
661				struct demote_msg	*msg;
662
663				msg = imsg.data;
664				carp_demote_set(msg->demote_group, msg->level);
665			}
666			break;
667		default:
668			break;
669		}
670		imsg_free(&imsg);
671		if (rv != 0)
672			return (rv);
673	}
674	return (0);
675}
676
677void
678send_nexthop_update(struct kroute_nexthop *msg)
679{
680	char	*gw = NULL;
681
682	if (msg->gateway.af)
683		if (asprintf(&gw, ": via %s",
684		    log_addr(&msg->gateway)) == -1) {
685			log_warn("send_nexthop_update");
686			quit = 1;
687		}
688
689	log_info("nexthop %s now %s%s%s", log_addr(&msg->nexthop),
690	    msg->valid ? "valid" : "invalid",
691	    msg->connected ? ": directly connected" : "",
692	    msg->gateway.af ? gw : "");
693
694	free(gw);
695
696	if (imsg_compose(ibuf_rde, IMSG_NEXTHOP_UPDATE, 0, 0, -1,
697	    msg, sizeof(struct kroute_nexthop)) == -1)
698		quit = 1;
699}
700
701void
702send_imsg_session(int type, pid_t pid, void *data, u_int16_t datalen)
703{
704	imsg_compose(ibuf_se, type, 0, pid, -1, data, datalen);
705}
706
707int
708bgpd_redistribute(int type, struct kroute *kr, struct kroute6 *kr6)
709{
710	struct network_config	 net;
711	struct filter_set_head	*h;
712
713	if ((cflags & BGPD_FLAG_REDIST_CONNECTED) && kr &&
714	    (kr->flags & F_CONNECTED))
715		h = connectset;
716	else if ((cflags & BGPD_FLAG_REDIST_STATIC) && kr &&
717	    (kr->flags & F_STATIC))
718		h = staticset;
719	else if ((cflags & BGPD_FLAG_REDIST6_CONNECTED) && kr6 &&
720	    (kr6->flags & F_CONNECTED))
721		h = connectset6;
722	else if ((cflags & BGPD_FLAG_REDIST6_STATIC) && kr6 &&
723	    (kr6->flags & F_STATIC))
724		h = staticset6;
725	else
726		return (0);
727
728	bzero(&net, sizeof(net));
729	if (kr && kr6)
730		fatalx("bgpd_redistribute: unable to redistribute v4 and v6"
731		    "together");
732	if (kr != NULL) {
733		net.prefix.af = AF_INET;
734		net.prefix.v4.s_addr = kr->prefix.s_addr;
735		net.prefixlen = kr->prefixlen;
736	}
737	if (kr6 != NULL) {
738		net.prefix.af = AF_INET6;
739		memcpy(&net.prefix.v6, &kr6->prefix, sizeof(struct in6_addr));
740		net.prefixlen = kr6->prefixlen;
741	}
742
743
744	if (imsg_compose(ibuf_rde, type, 0, 0, -1, &net,
745	    sizeof(struct network_config)) == -1)
746		return (-1);
747
748	/* networks that get deleted don't need to send the filter set */
749	if (type == IMSG_NETWORK_REMOVE)
750		return (1);
751
752	if (send_filterset(ibuf_rde, h) == -1)
753		return (-1);
754	if (imsg_compose(ibuf_rde, IMSG_NETWORK_DONE, 0, 0, -1, NULL, 0) == -1)
755		return (-1);
756
757	return (1);
758}
759
760int
761bgpd_filternexthop(struct kroute *kr, struct kroute6 *kr6)
762{
763	/* kernel routes are never filtered */
764	if (kr && kr->flags & F_KERNEL && kr->prefixlen != 0)
765		return (0);
766	if (kr6 && kr6->flags & F_KERNEL && kr6->prefixlen != 0)
767		return (0);
768
769	if (cflags & BGPD_FLAG_NEXTHOP_BGP) {
770		if (kr && kr->flags & F_BGPD_INSERTED)
771			return (0);
772		if (kr6 && kr6->flags & F_BGPD_INSERTED)
773			return (0);
774	}
775
776	if (cflags & BGPD_FLAG_NEXTHOP_DEFAULT) {
777		if (kr && kr->prefixlen == 0)
778			return (0);
779		if (kr6 && kr6->prefixlen == 0)
780			return (0);
781	}
782
783	return (1);
784}
785