bgpd.c revision 1.141
1/* $OpenBSD: bgpd.c,v 1.141 2007/01/04 12:43:36 claudio Exp $ */ 2 3/* 4 * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org> 5 * 6 * Permission to use, copy, modify, and distribute this software for any 7 * purpose with or without fee is hereby granted, provided that the above 8 * copyright notice and this permission notice appear in all copies. 9 * 10 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES 11 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF 12 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR 13 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES 14 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN 15 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF 16 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. 17 */ 18 19#include <sys/types.h> 20#include <sys/socket.h> 21#include <sys/wait.h> 22#include <netinet/in.h> 23#include <arpa/inet.h> 24#include <err.h> 25#include <errno.h> 26#include <fcntl.h> 27#include <poll.h> 28#include <pwd.h> 29#include <signal.h> 30#include <stdio.h> 31#include <stdlib.h> 32#include <string.h> 33#include <unistd.h> 34 35#include "mrt.h" 36#include "bgpd.h" 37#include "session.h" 38 39void sighdlr(int); 40__dead void usage(void); 41int main(int, char *[]); 42int check_child(pid_t, const char *); 43int send_filterset(struct imsgbuf *, struct filter_set_head *); 44int reconfigure(char *, struct bgpd_config *, struct mrt_head *, 45 struct peer **, struct filter_head *); 46int dispatch_imsg(struct imsgbuf *, int); 47 48int rfd = -1; 49int cflags = 0; 50struct filter_set_head *connectset; 51struct filter_set_head *connectset6; 52struct filter_set_head *staticset; 53struct filter_set_head *staticset6; 54volatile sig_atomic_t mrtdump = 0; 55volatile sig_atomic_t quit = 0; 56volatile sig_atomic_t sigchld = 0; 57volatile sig_atomic_t reconfig = 0; 58pid_t reconfpid = 0; 59struct imsgbuf *ibuf_se; 60struct imsgbuf *ibuf_rde; 61 62void 63sighdlr(int sig) 64{ 65 switch (sig) { 66 case SIGTERM: 67 case SIGINT: 68 quit = 1; 69 break; 70 case SIGCHLD: 71 sigchld = 1; 72 break; 73 case SIGHUP: 74 reconfig = 1; 75 break; 76 case SIGALRM: 77 case SIGUSR1: 78 mrtdump = 1; 79 break; 80 } 81} 82 83__dead void 84usage(void) 85{ 86 extern char *__progname; 87 88 fprintf(stderr, "usage: %s [-cdnv] ", __progname); 89 fprintf(stderr, "[-D macro=value] [-f file] [-r path] [-s path]\n"); 90 exit(1); 91} 92 93#define PFD_PIPE_SESSION 0 94#define PFD_PIPE_ROUTE 1 95#define PFD_SOCK_ROUTE 2 96#define POLL_MAX 3 97#define MAX_TIMEOUT 3600 98 99int 100main(int argc, char *argv[]) 101{ 102 struct bgpd_config conf; 103 struct peer *peer_l, *p; 104 struct mrt_head mrt_l; 105 struct network_head net_l; 106 struct filter_head *rules_l; 107 struct network *net; 108 struct filter_rule *r; 109 struct mrt *m; 110 struct listen_addr *la; 111 struct pollfd pfd[POLL_MAX]; 112 pid_t io_pid = 0, rde_pid = 0, pid; 113 char *conffile; 114 int debug = 0; 115 int ch, timeout, nfds; 116 int pipe_m2s[2]; 117 int pipe_m2r[2]; 118 int pipe_s2r[2]; 119 120 conffile = CONFFILE; 121 bgpd_process = PROC_MAIN; 122 123 log_init(1); /* log to stderr until daemonized */ 124 125 if ((rules_l = calloc(1, sizeof(struct filter_head))) == NULL) 126 err(1, NULL); 127 128 bzero(&conf, sizeof(conf)); 129 LIST_INIT(&mrt_l); 130 TAILQ_INIT(&net_l); 131 TAILQ_INIT(rules_l); 132 peer_l = NULL; 133 conf.csock = SOCKET_NAME; 134 135 while ((ch = getopt(argc, argv, "cdD:f:nr:s:v")) != -1) { 136 switch (ch) { 137 case 'c': 138 conf.opts |= BGPD_OPT_FORCE_DEMOTE; 139 break; 140 case 'd': 141 debug = 1; 142 break; 143 case 'D': 144 if (cmdline_symset(optarg) < 0) 145 log_warnx("could not parse macro definition %s", 146 optarg); 147 break; 148 case 'f': 149 conffile = optarg; 150 break; 151 case 'n': 152 conf.opts |= BGPD_OPT_NOACTION; 153 break; 154 case 'v': 155 if (conf.opts & BGPD_OPT_VERBOSE) 156 conf.opts |= BGPD_OPT_VERBOSE2; 157 conf.opts |= BGPD_OPT_VERBOSE; 158 break; 159 case 'r': 160 conf.rcsock = optarg; 161 break; 162 case 's': 163 conf.csock = optarg; 164 break; 165 default: 166 usage(); 167 /* NOTREACHED */ 168 } 169 } 170 171 if (parse_config(conffile, &conf, &mrt_l, &peer_l, &net_l, rules_l)) { 172 free(rules_l); 173 exit(1); 174 } 175 176 if (conf.opts & BGPD_OPT_NOACTION) { 177 if (conf.opts & BGPD_OPT_VERBOSE) 178 print_config(&conf, &net_l, peer_l, rules_l, &mrt_l); 179 else 180 fprintf(stderr, "configuration OK\n"); 181 exit(0); 182 } 183 cflags = conf.flags; 184 connectset = &conf.connectset; 185 staticset = &conf.staticset; 186 connectset6 = &conf.connectset6; 187 staticset6 = &conf.staticset6; 188 189 if (geteuid()) 190 errx(1, "need root privileges"); 191 192 if (getpwnam(BGPD_USER) == NULL) 193 errx(1, "unknown user %s", BGPD_USER); 194 195 log_init(debug); 196 197 if (!debug) 198 daemon(1, 0); 199 200 log_info("startup"); 201 202 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_m2s) == -1) 203 fatal("socketpair"); 204 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_m2r) == -1) 205 fatal("socketpair"); 206 if (socketpair(AF_UNIX, SOCK_STREAM, PF_UNSPEC, pipe_s2r) == -1) 207 fatal("socketpair"); 208 session_socket_blockmode(pipe_m2s[0], BM_NONBLOCK); 209 session_socket_blockmode(pipe_m2s[1], BM_NONBLOCK); 210 session_socket_blockmode(pipe_m2r[0], BM_NONBLOCK); 211 session_socket_blockmode(pipe_m2r[1], BM_NONBLOCK); 212 session_socket_blockmode(pipe_s2r[0], BM_NONBLOCK); 213 session_socket_blockmode(pipe_s2r[1], BM_NONBLOCK); 214 215 prepare_listeners(&conf); 216 217 /* fork children */ 218 rde_pid = rde_main(&conf, peer_l, &net_l, rules_l, &mrt_l, 219 pipe_m2r, pipe_s2r, pipe_m2s, debug); 220 io_pid = session_main(&conf, peer_l, &net_l, rules_l, &mrt_l, 221 pipe_m2s, pipe_s2r, pipe_m2r); 222 223 setproctitle("parent"); 224 225 signal(SIGTERM, sighdlr); 226 signal(SIGINT, sighdlr); 227 signal(SIGCHLD, sighdlr); 228 signal(SIGHUP, sighdlr); 229 signal(SIGALRM, sighdlr); 230 signal(SIGUSR1, sighdlr); 231 232 close(pipe_m2s[1]); 233 close(pipe_m2r[1]); 234 close(pipe_s2r[0]); 235 close(pipe_s2r[1]); 236 237 if ((ibuf_se = malloc(sizeof(struct imsgbuf))) == NULL || 238 (ibuf_rde = malloc(sizeof(struct imsgbuf))) == NULL) 239 fatal(NULL); 240 imsg_init(ibuf_se, pipe_m2s[0]); 241 imsg_init(ibuf_rde, pipe_m2r[0]); 242 mrt_init(ibuf_rde, ibuf_se); 243 if ((rfd = kr_init(!(conf.flags & BGPD_FLAG_NO_FIB_UPDATE), 244 conf.rtableid)) == -1) 245 quit = 1; 246 if (pftable_clear_all() != 0) 247 quit = 1; 248 249 while ((net = TAILQ_FIRST(&net_l)) != NULL) { 250 TAILQ_REMOVE(&net_l, net, entry); 251 filterset_free(&net->net.attrset); 252 free(net); 253 } 254 255 while ((r = TAILQ_FIRST(rules_l)) != NULL) { 256 TAILQ_REMOVE(rules_l, r, entry); 257 free(r); 258 } 259 TAILQ_FOREACH(la, conf.listen_addrs, entry) { 260 close(la->fd); 261 la->fd = -1; 262 } 263 264 mrt_reconfigure(&mrt_l); 265 266 while (quit == 0) { 267 bzero(pfd, sizeof(pfd)); 268 pfd[PFD_PIPE_SESSION].fd = ibuf_se->fd; 269 pfd[PFD_PIPE_SESSION].events = POLLIN; 270 if (ibuf_se->w.queued) 271 pfd[PFD_PIPE_SESSION].events |= POLLOUT; 272 pfd[PFD_PIPE_ROUTE].fd = ibuf_rde->fd; 273 pfd[PFD_PIPE_ROUTE].events = POLLIN; 274 if (ibuf_rde->w.queued) 275 pfd[PFD_PIPE_ROUTE].events |= POLLOUT; 276 pfd[PFD_SOCK_ROUTE].fd = rfd; 277 pfd[PFD_SOCK_ROUTE].events = POLLIN; 278 279 timeout = mrt_timeout(&mrt_l); 280 if (timeout > MAX_TIMEOUT) 281 timeout = MAX_TIMEOUT; 282 283 if ((nfds = poll(pfd, POLL_MAX, timeout * 1000)) == -1) 284 if (errno != EINTR) { 285 log_warn("poll error"); 286 quit = 1; 287 } 288 289 if (nfds > 0 && pfd[PFD_PIPE_SESSION].revents & POLLOUT) 290 if (msgbuf_write(&ibuf_se->w) < 0) { 291 log_warn("pipe write error (to SE)"); 292 quit = 1; 293 } 294 295 if (nfds > 0 && pfd[PFD_PIPE_ROUTE].revents & POLLOUT) 296 if (msgbuf_write(&ibuf_rde->w) < 0) { 297 log_warn("pipe write error (to RDE)"); 298 quit = 1; 299 } 300 301 if (nfds > 0 && pfd[PFD_PIPE_SESSION].revents & POLLIN) { 302 if (dispatch_imsg(ibuf_se, PFD_PIPE_SESSION) == -1) 303 quit = 1; 304 } 305 306 if (nfds > 0 && pfd[PFD_PIPE_ROUTE].revents & POLLIN) { 307 if (dispatch_imsg(ibuf_rde, PFD_PIPE_ROUTE) == -1) 308 quit = 1; 309 } 310 311 if (nfds > 0 && pfd[PFD_SOCK_ROUTE].revents & POLLIN) { 312 if (kr_dispatch_msg() == -1) 313 quit = 1; 314 } 315 316 if (reconfig) { 317 u_int error; 318 319 reconfig = 0; 320 log_info("rereading config"); 321 switch (reconfigure(conffile, &conf, &mrt_l, &peer_l, 322 rules_l)) { 323 case -1: /* fatal error */ 324 quit = 1; 325 break; 326 case 0: /* all OK */ 327 error = 0; 328 break; 329 default: /* parse error */ 330 error = CTL_RES_PARSE_ERROR; 331 break; 332 } 333 if (reconfpid != 0) { 334 send_imsg_session(IMSG_CTL_RESULT, reconfpid, 335 &error, sizeof(error)); 336 reconfpid = 0; 337 } 338 } 339 340 if (sigchld) { 341 sigchld = 0; 342 if (check_child(io_pid, "session engine")) { 343 quit = 1; 344 io_pid = 0; 345 } 346 if (check_child(rde_pid, "route decision engine")) { 347 quit = 1; 348 rde_pid = 0; 349 } 350 } 351 352 if (mrtdump) { 353 mrtdump = 0; 354 mrt_handler(&mrt_l); 355 } 356 } 357 358 signal(SIGCHLD, SIG_IGN); 359 360 if (io_pid) 361 kill(io_pid, SIGTERM); 362 363 if (rde_pid) 364 kill(rde_pid, SIGTERM); 365 366 while ((p = peer_l) != NULL) { 367 peer_l = p->next; 368 free(p); 369 } 370 while ((m = LIST_FIRST(&mrt_l)) != NULL) { 371 LIST_REMOVE(m, entry); 372 free(m); 373 } 374 while ((la = TAILQ_FIRST(conf.listen_addrs)) != NULL) { 375 TAILQ_REMOVE(conf.listen_addrs, la, entry); 376 close(la->fd); 377 free(la); 378 } 379 380 free(rules_l); 381 control_cleanup(conf.csock); 382 control_cleanup(conf.rcsock); 383 carp_demote_shutdown(); 384 kr_shutdown(); 385 pftable_clear_all(); 386 free(conf.listen_addrs); 387 388 do { 389 if ((pid = wait(NULL)) == -1 && 390 errno != EINTR && errno != ECHILD) 391 fatal("wait"); 392 } while (pid != -1 || (pid == -1 && errno == EINTR)); 393 394 msgbuf_clear(&ibuf_se->w); 395 free(ibuf_se); 396 msgbuf_clear(&ibuf_rde->w); 397 free(ibuf_rde); 398 399 log_info("Terminating"); 400 return (0); 401} 402 403int 404check_child(pid_t pid, const char *pname) 405{ 406 int status; 407 408 if (waitpid(pid, &status, WNOHANG) > 0) { 409 if (WIFEXITED(status)) { 410 log_warnx("Lost child: %s exited", pname); 411 return (1); 412 } 413 if (WIFSIGNALED(status)) { 414 log_warnx("Lost child: %s terminated; signal %d", 415 pname, WTERMSIG(status)); 416 return (1); 417 } 418 } 419 420 return (0); 421} 422 423int 424send_filterset(struct imsgbuf *i, struct filter_set_head *set) 425{ 426 struct filter_set *s; 427 428 TAILQ_FOREACH(s, set, entry) 429 if (imsg_compose(i, IMSG_FILTER_SET, 0, 0, -1, s, 430 sizeof(struct filter_set)) == -1) 431 return (-1); 432 return (0); 433} 434 435int 436reconfigure(char *conffile, struct bgpd_config *conf, struct mrt_head *mrt_l, 437 struct peer **peer_l, struct filter_head *rules_l) 438{ 439 struct network_head net_l; 440 struct network *n; 441 struct peer *p; 442 struct filter_rule *r; 443 struct listen_addr *la; 444 445 if (parse_config(conffile, conf, mrt_l, peer_l, &net_l, rules_l)) { 446 log_warnx("config file %s has errors, not reloading", 447 conffile); 448 return (1); 449 } 450 451 cflags = conf->flags; 452 connectset = &conf->connectset; 453 staticset = &conf->staticset; 454 connectset6 = &conf->connectset6; 455 staticset6 = &conf->staticset6; 456 457 prepare_listeners(conf); 458 459 /* start reconfiguration */ 460 if (imsg_compose(ibuf_se, IMSG_RECONF_CONF, 0, 0, -1, 461 conf, sizeof(struct bgpd_config)) == -1) 462 return (-1); 463 if (imsg_compose(ibuf_rde, IMSG_RECONF_CONF, 0, 0, -1, 464 conf, sizeof(struct bgpd_config)) == -1) 465 return (-1); 466 467 /* send peer list and listeners to the SE */ 468 for (p = *peer_l; p != NULL; p = p->next) 469 if (imsg_compose(ibuf_se, IMSG_RECONF_PEER, p->conf.id, 0, -1, 470 &p->conf, sizeof(struct peer_config)) == -1) 471 return (-1); 472 473 TAILQ_FOREACH(la, conf->listen_addrs, entry) { 474 if (imsg_compose(ibuf_se, IMSG_RECONF_LISTENER, 0, 0, la->fd, 475 la, sizeof(struct listen_addr)) == -1) 476 return (-1); 477 la->fd = -1; 478 } 479 480 /* networks for the RDE */ 481 while ((n = TAILQ_FIRST(&net_l)) != NULL) { 482 if (imsg_compose(ibuf_rde, IMSG_NETWORK_ADD, 0, 0, -1, 483 &n->net, sizeof(struct network_config)) == -1) 484 return (-1); 485 if (send_filterset(ibuf_rde, &n->net.attrset) == -1) 486 return (-1); 487 if (imsg_compose(ibuf_rde, IMSG_NETWORK_DONE, 0, 0, -1, 488 NULL, 0) == -1) 489 return (-1); 490 TAILQ_REMOVE(&net_l, n, entry); 491 filterset_free(&n->net.attrset); 492 free(n); 493 } 494 495 /* redistribute list needs to be reloaded too */ 496 if (kr_reload() == -1) 497 return (-1); 498 499 /* filters for the RDE */ 500 while ((r = TAILQ_FIRST(rules_l)) != NULL) { 501 if (imsg_compose(ibuf_rde, IMSG_RECONF_FILTER, 0, 0, -1, 502 r, sizeof(struct filter_rule)) == -1) 503 return (-1); 504 if (send_filterset(ibuf_rde, &r->set) == -1) 505 return (-1); 506 TAILQ_REMOVE(rules_l, r, entry); 507 filterset_free(&r->set); 508 free(r); 509 } 510 511 /* singal both childs to replace their config */ 512 if (imsg_compose(ibuf_se, IMSG_RECONF_DONE, 0, 0, -1, NULL, 0) == -1 || 513 imsg_compose(ibuf_rde, IMSG_RECONF_DONE, 0, 0, -1, NULL, 0) == -1) 514 return (-1); 515 516 /* mrt changes can be sent out of bound */ 517 mrt_reconfigure(mrt_l); 518 return (0); 519} 520 521int 522dispatch_imsg(struct imsgbuf *ibuf, int idx) 523{ 524 struct imsg imsg; 525 int n; 526 int rv; 527 528 if ((n = imsg_read(ibuf)) == -1) 529 return (-1); 530 531 if (n == 0) { /* connection closed */ 532 log_warnx("dispatch_imsg in main: pipe closed"); 533 return (-1); 534 } 535 536 rv = 0; 537 for (;;) { 538 if ((n = imsg_get(ibuf, &imsg)) == -1) 539 return (-1); 540 541 if (n == 0) 542 break; 543 544 switch (imsg.hdr.type) { 545 case IMSG_KROUTE_CHANGE: 546 if (idx != PFD_PIPE_ROUTE) 547 log_warnx("route request not from RDE"); 548 else if (kr_change(imsg.data)) 549 rv = -1; 550 break; 551 case IMSG_KROUTE_DELETE: 552 if (idx != PFD_PIPE_ROUTE) 553 log_warnx("route request not from RDE"); 554 else if (kr_delete(imsg.data)) 555 rv = -1; 556 break; 557 case IMSG_KROUTE6_CHANGE: 558 if (idx != PFD_PIPE_ROUTE) 559 log_warnx("route request not from RDE"); 560 else if (kr6_change(imsg.data)) 561 rv = -1; 562 break; 563 case IMSG_KROUTE6_DELETE: 564 if (idx != PFD_PIPE_ROUTE) 565 log_warnx("route request not from RDE"); 566 else if (kr6_delete(imsg.data)) 567 rv = -1; 568 break; 569 case IMSG_NEXTHOP_ADD: 570 if (idx != PFD_PIPE_ROUTE) 571 log_warnx("nexthop request not from RDE"); 572 else 573 if (imsg.hdr.len != IMSG_HEADER_SIZE + 574 sizeof(struct bgpd_addr)) 575 log_warnx("wrong imsg len"); 576 else if (kr_nexthop_add(imsg.data) == -1) 577 rv = -1; 578 break; 579 case IMSG_NEXTHOP_REMOVE: 580 if (idx != PFD_PIPE_ROUTE) 581 log_warnx("nexthop request not from RDE"); 582 else 583 if (imsg.hdr.len != IMSG_HEADER_SIZE + 584 sizeof(struct bgpd_addr)) 585 log_warnx("wrong imsg len"); 586 else 587 kr_nexthop_delete(imsg.data); 588 break; 589 case IMSG_PFTABLE_ADD: 590 if (idx != PFD_PIPE_ROUTE) 591 log_warnx("pftable request not from RDE"); 592 else 593 if (imsg.hdr.len != IMSG_HEADER_SIZE + 594 sizeof(struct pftable_msg)) 595 log_warnx("wrong imsg len"); 596 else if (pftable_addr_add(imsg.data) != 0) 597 rv = -1; 598 break; 599 case IMSG_PFTABLE_REMOVE: 600 if (idx != PFD_PIPE_ROUTE) 601 log_warnx("pftable request not from RDE"); 602 else 603 if (imsg.hdr.len != IMSG_HEADER_SIZE + 604 sizeof(struct pftable_msg)) 605 log_warnx("wrong imsg len"); 606 else if (pftable_addr_remove(imsg.data) != 0) 607 rv = -1; 608 break; 609 case IMSG_PFTABLE_COMMIT: 610 if (idx != PFD_PIPE_ROUTE) 611 log_warnx("pftable request not from RDE"); 612 else 613 if (imsg.hdr.len != IMSG_HEADER_SIZE) 614 log_warnx("wrong imsg len"); 615 else if (pftable_commit() != 0) 616 rv = -1; 617 break; 618 case IMSG_CTL_RELOAD: 619 if (idx != PFD_PIPE_SESSION) 620 log_warnx("reload request not from SE"); 621 else 622 reconfig = 1; 623 reconfpid = imsg.hdr.pid; 624 break; 625 case IMSG_CTL_FIB_COUPLE: 626 if (idx != PFD_PIPE_SESSION) 627 log_warnx("couple request not from SE"); 628 else 629 kr_fib_couple(); 630 break; 631 case IMSG_CTL_FIB_DECOUPLE: 632 if (idx != PFD_PIPE_SESSION) 633 log_warnx("decouple request not from SE"); 634 else 635 kr_fib_decouple(); 636 break; 637 case IMSG_CTL_KROUTE: 638 case IMSG_CTL_KROUTE_ADDR: 639 case IMSG_CTL_SHOW_NEXTHOP: 640 case IMSG_CTL_SHOW_INTERFACE: 641 if (idx != PFD_PIPE_SESSION) 642 log_warnx("kroute request not from SE"); 643 else 644 kr_show_route(&imsg); 645 break; 646 case IMSG_IFINFO: 647 if (idx != PFD_PIPE_SESSION) 648 log_warnx("IFINFO request not from SE"); 649 else if (imsg.hdr.len != IMSG_HEADER_SIZE + IFNAMSIZ) 650 log_warnx("IFINFO request with wrong len"); 651 else 652 kr_ifinfo(imsg.data); 653 break; 654 case IMSG_DEMOTE: 655 if (idx != PFD_PIPE_SESSION) 656 log_warnx("demote request not from SE"); 657 else if (imsg.hdr.len != IMSG_HEADER_SIZE + 658 sizeof(struct demote_msg)) 659 log_warnx("DEMOTE request with wrong len"); 660 else { 661 struct demote_msg *msg; 662 663 msg = imsg.data; 664 carp_demote_set(msg->demote_group, msg->level); 665 } 666 break; 667 default: 668 break; 669 } 670 imsg_free(&imsg); 671 if (rv != 0) 672 return (rv); 673 } 674 return (0); 675} 676 677void 678send_nexthop_update(struct kroute_nexthop *msg) 679{ 680 char *gw = NULL; 681 682 if (msg->gateway.af) 683 if (asprintf(&gw, ": via %s", 684 log_addr(&msg->gateway)) == -1) { 685 log_warn("send_nexthop_update"); 686 quit = 1; 687 } 688 689 log_info("nexthop %s now %s%s%s", log_addr(&msg->nexthop), 690 msg->valid ? "valid" : "invalid", 691 msg->connected ? ": directly connected" : "", 692 msg->gateway.af ? gw : ""); 693 694 free(gw); 695 696 if (imsg_compose(ibuf_rde, IMSG_NEXTHOP_UPDATE, 0, 0, -1, 697 msg, sizeof(struct kroute_nexthop)) == -1) 698 quit = 1; 699} 700 701void 702send_imsg_session(int type, pid_t pid, void *data, u_int16_t datalen) 703{ 704 imsg_compose(ibuf_se, type, 0, pid, -1, data, datalen); 705} 706 707int 708bgpd_redistribute(int type, struct kroute *kr, struct kroute6 *kr6) 709{ 710 struct network_config net; 711 struct filter_set_head *h; 712 713 if ((cflags & BGPD_FLAG_REDIST_CONNECTED) && kr && 714 (kr->flags & F_CONNECTED)) 715 h = connectset; 716 else if ((cflags & BGPD_FLAG_REDIST_STATIC) && kr && 717 (kr->flags & F_STATIC)) 718 h = staticset; 719 else if ((cflags & BGPD_FLAG_REDIST6_CONNECTED) && kr6 && 720 (kr6->flags & F_CONNECTED)) 721 h = connectset6; 722 else if ((cflags & BGPD_FLAG_REDIST6_STATIC) && kr6 && 723 (kr6->flags & F_STATIC)) 724 h = staticset6; 725 else 726 return (0); 727 728 bzero(&net, sizeof(net)); 729 if (kr && kr6) 730 fatalx("bgpd_redistribute: unable to redistribute v4 and v6" 731 "together"); 732 if (kr != NULL) { 733 net.prefix.af = AF_INET; 734 net.prefix.v4.s_addr = kr->prefix.s_addr; 735 net.prefixlen = kr->prefixlen; 736 } 737 if (kr6 != NULL) { 738 net.prefix.af = AF_INET6; 739 memcpy(&net.prefix.v6, &kr6->prefix, sizeof(struct in6_addr)); 740 net.prefixlen = kr6->prefixlen; 741 } 742 743 744 if (imsg_compose(ibuf_rde, type, 0, 0, -1, &net, 745 sizeof(struct network_config)) == -1) 746 return (-1); 747 748 /* networks that get deleted don't need to send the filter set */ 749 if (type == IMSG_NETWORK_REMOVE) 750 return (1); 751 752 if (send_filterset(ibuf_rde, h) == -1) 753 return (-1); 754 if (imsg_compose(ibuf_rde, IMSG_NETWORK_DONE, 0, 0, -1, NULL, 0) == -1) 755 return (-1); 756 757 return (1); 758} 759 760int 761bgpd_filternexthop(struct kroute *kr, struct kroute6 *kr6) 762{ 763 /* kernel routes are never filtered */ 764 if (kr && kr->flags & F_KERNEL && kr->prefixlen != 0) 765 return (0); 766 if (kr6 && kr6->flags & F_KERNEL && kr6->prefixlen != 0) 767 return (0); 768 769 if (cflags & BGPD_FLAG_NEXTHOP_BGP) { 770 if (kr && kr->flags & F_BGPD_INSERTED) 771 return (0); 772 if (kr6 && kr6->flags & F_BGPD_INSERTED) 773 return (0); 774 } 775 776 if (cflags & BGPD_FLAG_NEXTHOP_DEFAULT) { 777 if (kr && kr->prefixlen == 0) 778 return (0); 779 if (kr6 && kr6->prefixlen == 0) 780 return (0); 781 } 782 783 return (1); 784} 785