-
- /* This is where we actually invoke userv - all the networks we'll
- be using should already have been registered. */
-
- addrs=safe_malloc(512,"userv_phase_hook:addrs");
- snprintf(addrs,512,"%s,%s,%d,slip",ipaddr_to_string(st->nl.local_address),
- ipaddr_to_string(st->nl.secnet_address),st->nl.mtu);
-
- nets=safe_malloc(1024,"userv_phase_hook:nets");
- *nets=0;
- for (c=st->nl.clients; c; c=c->next) {
- for (i=0; i<c->networks->entries; i++) {
- s=subnet_to_string(&c->networks->list[i]);
- strcat(nets,s);
- strcat(nets,",");
- free(s);
- }
- }
- nets[strlen(nets)-1]=0;
-
- Message(M_INFO,"\nuserv_phase_hook: %s %s %s %s %s\n",st->userv_path,
- st->service_user,st->service_name,addrs,nets);
-
- /* Allocate buffer, plus space for padding. Make sure we end up
- with the start of the packet well-aligned. */
- /* ALIGN(st->max_start_pad,16); */
- /* ALIGN(st->max_end_pad,16); */
-
- st->pending_esc=False;
-
- /* Invoke userv */
- if (pipe(c_stdin)!=0) {
- fatal_perror("userv_phase_hook: pipe(c_stdin)");
- }
- if (pipe(c_stdout)!=0) {
- fatal_perror("userv_phase_hook: pipe(c_stdout)");
- }
- st->txfd=c_stdin[1];
- st->rxfd=c_stdout[0];
-
- child=fork();
- if (child==-1) {
- fatal_perror("userv_phase_hook: fork()");
- }
- if (child==0) {
- char **argv;
-
- /* We are the child. Modify our stdin and stdout, then exec userv */
- dup2(c_stdin[0],0);
- dup2(c_stdout[1],1);
- close(c_stdin[1]);
- close(c_stdout[0]);
-
- /* The arguments are:
- userv
- service-user
- service-name
- local-addr,secnet-addr,mtu,protocol
- route1,route2,... */
- argv=malloc(sizeof(*argv)*6);
- argv[0]=st->userv_path;
- argv[1]=st->service_user;
- argv[2]=st->service_name;
- argv[3]=addrs;
- argv[4]=nets;
- argv[5]=NULL;
- execvp(st->userv_path,argv);
- perror("netlink-userv-ipif: execvp");
-
- exit(1);
- }
- /* We are the parent... */
-
- /* Register for poll() */
- register_for_poll(st, userv_beforepoll, userv_afterpoll, 2, st->nl.name);
-}
-
-static list_t *userv_apply(closure_t *self, struct cloc loc, dict_t *context,
- list_t *args)
-{
- struct userv *st;
- item_t *item;
- dict_t *dict;
-
- st=safe_malloc(sizeof(*st),"userv_apply");
-
- /* First parameter must be a dict */
- item=list_elem(args,0);
- if (!item || item->type!=t_dict)
- cfgfatal(loc,"userv-ipif","parameter must be a dictionary\n");
-
- dict=item->data.dict;
-
- st->netlink_to_tunnel=
- netlink_init(&st->nl,st,loc,dict,
- "netlink-userv-ipif",userv_deliver_to_kernel);
-
- st->userv_path=dict_read_string(dict,"userv-path",False,"userv-netlink",
- loc);
- st->service_user=dict_read_string(dict,"service-user",False,
- "userv-netlink",loc);
- st->service_name=dict_read_string(dict,"service-name",False,
- "userv-netlink",loc);
- if (!st->userv_path) st->userv_path="userv";
- if (!st->service_user) st->service_user="root";
- if (!st->service_name) st->service_name="ipif";
- st->buff=find_cl_if(dict,"buffer",CL_BUFFER,True,"userv-netlink",loc);
- BUF_ALLOC(st->buff,"netlink:userv_apply");
-
- st->rxfd=-1; st->txfd=-1;
- add_hook(PHASE_DROPPRIV,userv_phase_hook,st);
-
- return new_closure(&st->nl.cl);
-}
-
-/* Connection to the kernel through the universal TUN/TAP driver */
-
-struct tun {
- struct netlink nl;
- int fd;
- string_t device_path;
- string_t interface_name;
- string_t ifconfig_path;
- string_t route_path;
- struct buffer_if *buff; /* We receive packets into here
- and send them to the netlink code. */
- netlink_deliver_fn *netlink_to_tunnel;
-};
-
-static int tun_beforepoll(void *sst, struct pollfd *fds, int *nfds_io,
- int *timeout_io, const struct timeval *tv_now,
- uint64_t *now)
-{
- struct tun *st=sst;
- *nfds_io=1;
- fds[0].fd=st->fd;
- fds[0].events=POLLIN|POLLERR|POLLHUP;
- return 0;
-}
-
-static void tun_afterpoll(void *sst, struct pollfd *fds, int nfds,
- const struct timeval *tv_now, uint64_t *now)
-{
- struct tun *st=sst;
- int l;
-
- if (fds[0].revents&POLLERR) {
- printf("tun_afterpoll: hup!\n");
- }
- if (fds[0].revents&POLLIN) {
- BUF_ALLOC(st->buff,"tun_afterpoll");
- buffer_init(st->buff,st->nl.max_start_pad);
- l=read(st->fd,st->buff->start,st->buff->len-st->nl.max_start_pad);
- if (l<0) {
- fatal_perror("tun_afterpoll: read()");
- }
- if (l==0) {
- fatal("tun_afterpoll: read()=0; device gone away?\n");
- }
- if (l>0) {
- st->buff->size=l;
- st->netlink_to_tunnel(&st->nl,NULL,st->buff);
- BUF_ASSERT_FREE(st->buff);
- }
+ string_t net;
+ uint32_t c=M_INFO;
+
+ if (requested) c=M_WARNING;
+ Message(c,"%s: routing table:\n",st->name);
+ for (i=0; i<st->n_routes; i++) {
+ net=subnet_to_string(&st->routes[i].net);
+ Message(c,"%s -> tunnel %s (%s,%s route,%s,quality %d)\n",net,
+ st->routes[i].c->name,
+ st->routes[i].hard?"hard":"soft",
+ st->routes[i].allow_route?"free":"restricted",
+ st->routes[i].up?"up":"down",
+ st->routes[i].quality);
+ free(net);
+ }
+ Message(c,"%s/32 -> netlink \"%s\"\n",
+ ipaddr_to_string(st->secnet_address),st->name);
+ for (i=0; i<st->networks.entries; i++) {
+ net=subnet_to_string(&st->networks.list[i]);
+ Message(c,"%s -> host\n",net);
+ free(net);