]> git.proxmox.com Git - mirror_frr.git/blame - bfdd/bfd_packet.c
Merge pull request #8078 from idryzhov/fix-zebra-vni
[mirror_frr.git] / bfdd / bfd_packet.c
CommitLineData
e9e2c950
RZ
1/*********************************************************************
2 * Copyright 2017 Cumulus Networks, Inc. All rights reserved.
3 *
4 * This program is free software; you can redistribute it and/or modify it
5 * under the terms of the GNU General Public License as published by the Free
6 * Software Foundation; either version 2 of the License, or (at your option)
7 * any later version.
8 *
9 * This program is distributed in the hope that it will be useful, but WITHOUT
10 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
11 * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
12 * more details.
13 *
14 * You should have received a copy of the GNU General Public License along
15 * with this program; see the file COPYING; if not, write to the Free Software
16 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
17 *
18 * bfd_packet.c: implements the BFD protocol packet handling.
19 *
20 * Authors
21 * -------
22 * Shrijeet Mukherjee [shm@cumulusnetworks.com]
23 * Kanna Rajagopal [kanna@cumulusnetworks.com]
24 * Radhika Mahankali [Radhika@cumulusnetworks.com]
25 */
26
27#include <zebra.h>
28
29#ifdef BFD_LINUX
30#include <linux/if_packet.h>
31#endif /* BFD_LINUX */
32
e9e2c950 33#include <netinet/if_ether.h>
e9e2c950 34#include <netinet/udp.h>
e9e2c950
RZ
35
36#include "lib/sockopt.h"
37
38#include "bfd.h"
39
e9e2c950
RZ
40/*
41 * Prototypes
42 */
7bcadbae 43static int ptm_bfd_process_echo_pkt(struct bfd_vrf_global *bvrf, int s);
2f11c53f
RZ
44int _ptm_bfd_send(struct bfd_session *bs, uint16_t *port, const void *data,
45 size_t datalen);
e9e2c950 46
7bcadbae 47static void bfd_sd_reschedule(struct bfd_vrf_global *bvrf, int sd);
50571b2e 48ssize_t bfd_recv_ipv4(int sd, uint8_t *msgbuf, size_t msgbuflen, uint8_t *ttl,
b333abc2 49 ifindex_t *ifindex, struct sockaddr_any *local,
50571b2e
RZ
50 struct sockaddr_any *peer);
51ssize_t bfd_recv_ipv6(int sd, uint8_t *msgbuf, size_t msgbuflen, uint8_t *ttl,
b333abc2 52 ifindex_t *ifindex, struct sockaddr_any *local,
50571b2e 53 struct sockaddr_any *peer);
2f11c53f
RZ
54int bp_udp_send(int sd, uint8_t ttl, uint8_t *data, size_t datalen,
55 struct sockaddr *to, socklen_t tolen);
7bcadbae
PG
56int bp_bfd_echo_in(struct bfd_vrf_global *bvrf, int sd,
57 uint8_t *ttl, uint32_t *my_discr);
e9e2c950
RZ
58
59/* socket related prototypes */
60static void bp_set_ipopts(int sd);
61static void bp_bind_ip(int sd, uint16_t port);
62static void bp_set_ipv6opts(int sd);
63static void bp_bind_ipv6(int sd, uint16_t port);
64
65
66/*
67 * Functions
68 */
2f11c53f
RZ
69int _ptm_bfd_send(struct bfd_session *bs, uint16_t *port, const void *data,
70 size_t datalen)
e9e2c950
RZ
71{
72 struct sockaddr *sa;
73 struct sockaddr_in sin;
74 struct sockaddr_in6 sin6;
e9e2c950
RZ
75 socklen_t slen;
76 ssize_t rv;
77 int sd = -1;
78
b88113ef 79 if (CHECK_FLAG(bs->flags, BFD_SESS_FLAG_IPV6)) {
e9e2c950
RZ
80 memset(&sin6, 0, sizeof(sin6));
81 sin6.sin6_family = AF_INET6;
79b4a6fc 82 memcpy(&sin6.sin6_addr, &bs->key.peer, sizeof(sin6.sin6_addr));
1db60b57 83 if (bs->ifp && IN6_IS_ADDR_LINKLOCAL(&sin6.sin6_addr))
79b4a6fc
RZ
84 sin6.sin6_scope_id = bs->ifp->ifindex;
85
e9e2c950
RZ
86 sin6.sin6_port =
87 (port) ? *port
b88113ef 88 : (CHECK_FLAG(bs->flags, BFD_SESS_FLAG_MH))
e9e2c950
RZ
89 ? htons(BFD_DEF_MHOP_DEST_PORT)
90 : htons(BFD_DEFDESTPORT);
91
92 sd = bs->sock;
93 sa = (struct sockaddr *)&sin6;
94 slen = sizeof(sin6);
95 } else {
96 memset(&sin, 0, sizeof(sin));
97 sin.sin_family = AF_INET;
79b4a6fc 98 memcpy(&sin.sin_addr, &bs->key.peer, sizeof(sin.sin_addr));
e9e2c950
RZ
99 sin.sin_port =
100 (port) ? *port
b88113ef 101 : (CHECK_FLAG(bs->flags, BFD_SESS_FLAG_MH))
e9e2c950
RZ
102 ? htons(BFD_DEF_MHOP_DEST_PORT)
103 : htons(BFD_DEFDESTPORT);
104
105 sd = bs->sock;
106 sa = (struct sockaddr *)&sin;
107 slen = sizeof(sin);
108 }
109
110#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
111 sa->sa_len = slen;
112#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
113 rv = sendto(sd, data, datalen, 0, sa, slen);
114 if (rv <= 0) {
48da2c31
RZ
115 if (bglobal.debug_network)
116 zlog_debug("packet-send: send failure: %s",
117 strerror(errno));
e9e2c950
RZ
118 return -1;
119 }
48da2c31
RZ
120 if (rv < (ssize_t)datalen) {
121 if (bglobal.debug_network)
122 zlog_debug("packet-send: send partial: %s",
123 strerror(errno));
124 }
e9e2c950
RZ
125
126 return 0;
127}
128
e9e2c950
RZ
129void ptm_bfd_echo_snd(struct bfd_session *bfd)
130{
79b4a6fc 131 struct sockaddr *sa;
2f11c53f
RZ
132 socklen_t salen;
133 int sd;
134 struct bfd_echo_pkt bep;
135 struct sockaddr_in sin;
136 struct sockaddr_in6 sin6;
7bcadbae 137 struct bfd_vrf_global *bvrf = bfd_vrf_look_by_session(bfd);
e9e2c950 138
7bcadbae
PG
139 if (!bvrf)
140 return;
b88113ef
RZ
141 if (!CHECK_FLAG(bfd->flags, BFD_SESS_FLAG_ECHO_ACTIVE))
142 SET_FLAG(bfd->flags, BFD_SESS_FLAG_ECHO_ACTIVE);
e9e2c950 143
2f11c53f
RZ
144 memset(&bep, 0, sizeof(bep));
145 bep.ver = BFD_ECHO_VERSION;
146 bep.len = BFD_ECHO_PKT_LEN;
147 bep.my_discr = htonl(bfd->discrs.my_discr);
148
b88113ef 149 if (CHECK_FLAG(bfd->flags, BFD_SESS_FLAG_IPV6)) {
f1446f98
DS
150 if (bvrf->bg_echov6 == -1)
151 return;
7bcadbae 152 sd = bvrf->bg_echov6;
79b4a6fc 153 memset(&sin6, 0, sizeof(sin6));
4cf4e832 154 sin6.sin6_family = AF_INET6;
79b4a6fc
RZ
155 memcpy(&sin6.sin6_addr, &bfd->key.peer, sizeof(sin6.sin6_addr));
156 if (bfd->ifp && IN6_IS_ADDR_LINKLOCAL(&sin6.sin6_addr))
157 sin6.sin6_scope_id = bfd->ifp->ifindex;
158
2f11c53f
RZ
159 sin6.sin6_port = htons(BFD_DEF_ECHO_PORT);
160#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
161 sin6.sin6_len = sizeof(sin6);
162#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
163
79b4a6fc 164 sa = (struct sockaddr *)&sin6;
2f11c53f 165 salen = sizeof(sin6);
e9e2c950 166 } else {
7bcadbae 167 sd = bvrf->bg_echo;
f91d3ae3 168 memset(&sin, 0, sizeof(sin));
4cf4e832 169 sin.sin_family = AF_INET;
79b4a6fc 170 memcpy(&sin.sin_addr, &bfd->key.peer, sizeof(sin.sin_addr));
2f11c53f
RZ
171 sin.sin_port = htons(BFD_DEF_ECHO_PORT);
172#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
173 sin.sin_len = sizeof(sin);
174#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
e9e2c950 175
79b4a6fc 176 sa = (struct sockaddr *)&sin;
2f11c53f 177 salen = sizeof(sin);
e9e2c950 178 }
79b4a6fc
RZ
179 if (bp_udp_send(sd, BFD_TTL_VAL, (uint8_t *)&bep, sizeof(bep), sa,
180 salen)
2f11c53f
RZ
181 == -1)
182 return;
e9e2c950
RZ
183
184 bfd->stats.tx_echo_pkt++;
185}
186
7bcadbae 187static int ptm_bfd_process_echo_pkt(struct bfd_vrf_global *bvrf, int s)
e9e2c950 188{
e9e2c950 189 struct bfd_session *bfd;
2f11c53f
RZ
190 uint32_t my_discr = 0;
191 uint8_t ttl = 0;
e9e2c950 192
2f11c53f 193 /* Receive and parse echo packet. */
7bcadbae 194 if (bp_bfd_echo_in(bvrf, s, &ttl, &my_discr) == -1)
2f11c53f 195 return 0;
e9e2c950
RZ
196
197 /* Your discriminator not zero - use it to find session */
198 bfd = bfd_id_lookup(my_discr);
199 if (bfd == NULL) {
48da2c31
RZ
200 if (bglobal.debug_network)
201 zlog_debug("echo-packet: no matching session (id:%u)",
202 my_discr);
e9e2c950
RZ
203 return -1;
204 }
205
b88113ef 206 if (!CHECK_FLAG(bfd->flags, BFD_SESS_FLAG_ECHO_ACTIVE)) {
48da2c31
RZ
207 if (bglobal.debug_network)
208 zlog_debug("echo-packet: echo disabled [%s] (id:%u)",
209 bs_to_string(bfd), my_discr);
e9e2c950
RZ
210 return -1;
211 }
212
213 bfd->stats.rx_echo_pkt++;
214
215 /* Compute detect time */
216 bfd->echo_detect_TO = bfd->remote_detect_mult * bfd->echo_xmt_TO;
217
218 /* Update echo receive timeout. */
451eb5a2
RZ
219 if (bfd->echo_detect_TO > 0)
220 bfd_echo_recvtimer_update(bfd);
e9e2c950
RZ
221
222 return 0;
223}
224
225void ptm_bfd_snd(struct bfd_session *bfd, int fbit)
226{
bfea1011 227 struct bfd_pkt cp = {};
e9e2c950 228
e9e2c950
RZ
229 /* Set fields according to section 6.5.7 */
230 cp.diag = bfd->local_diag;
231 BFD_SETVER(cp.diag, BFD_VERSION);
232 cp.flags = 0;
233 BFD_SETSTATE(cp.flags, bfd->ses_state);
9beff0bd 234
b88113ef 235 if (CHECK_FLAG(bfd->flags, BFD_SESS_FLAG_CBIT))
9beff0bd
PG
236 BFD_SETCBIT(cp.flags, BFD_CBIT);
237
e9e2c950 238 BFD_SETDEMANDBIT(cp.flags, BFD_DEF_DEMAND);
0592db96
RZ
239
240 /*
241 * Polling and Final can't be set at the same time.
242 *
243 * RFC 5880, Section 6.5.
244 */
e9e2c950 245 BFD_SETFBIT(cp.flags, fbit);
0592db96
RZ
246 if (fbit == 0)
247 BFD_SETPBIT(cp.flags, bfd->polling);
248
e9e2c950
RZ
249 cp.detect_mult = bfd->detect_mult;
250 cp.len = BFD_PKT_LEN;
251 cp.discrs.my_discr = htonl(bfd->discrs.my_discr);
252 cp.discrs.remote_discr = htonl(bfd->discrs.remote_discr);
253 if (bfd->polling) {
254 cp.timers.desired_min_tx =
f43b9368 255 htonl(bfd->timers.desired_min_tx);
e9e2c950 256 cp.timers.required_min_rx =
f43b9368 257 htonl(bfd->timers.required_min_rx);
e9e2c950 258 } else {
f43b9368
RZ
259 /*
260 * We can only announce current setting on poll, this
261 * avoids timing mismatch with our peer and give it
262 * the oportunity to learn. See `bs_final_handler` for
263 * more information.
264 */
265 cp.timers.desired_min_tx =
266 htonl(bfd->cur_timers.desired_min_tx);
267 cp.timers.required_min_rx =
268 htonl(bfd->cur_timers.required_min_rx);
e9e2c950 269 }
4df3e31c 270 cp.timers.required_min_echo = htonl(bfd->timers.required_min_echo_rx);
e9e2c950 271
2f11c53f 272 if (_ptm_bfd_send(bfd, NULL, &cp, BFD_PKT_LEN) != 0)
e9e2c950 273 return;
e9e2c950
RZ
274
275 bfd->stats.tx_ctrl_pkt++;
276}
277
50571b2e 278ssize_t bfd_recv_ipv4(int sd, uint8_t *msgbuf, size_t msgbuflen, uint8_t *ttl,
b333abc2 279 ifindex_t *ifindex, struct sockaddr_any *local,
50571b2e 280 struct sockaddr_any *peer)
e9e2c950
RZ
281{
282 struct cmsghdr *cm;
e9e2c950 283 ssize_t mlen;
16084964
RZ
284 struct sockaddr_in msgaddr;
285 struct msghdr msghdr;
286 struct iovec iov[1];
287 uint8_t cmsgbuf[255];
288
289 /* Prepare the recvmsg params. */
290 iov[0].iov_base = msgbuf;
50571b2e 291 iov[0].iov_len = msgbuflen;
16084964
RZ
292
293 memset(&msghdr, 0, sizeof(msghdr));
294 msghdr.msg_name = &msgaddr;
295 msghdr.msg_namelen = sizeof(msgaddr);
296 msghdr.msg_iov = iov;
297 msghdr.msg_iovlen = 1;
298 msghdr.msg_control = cmsgbuf;
299 msghdr.msg_controllen = sizeof(cmsgbuf);
300
e9e2c950
RZ
301 mlen = recvmsg(sd, &msghdr, MSG_DONTWAIT);
302 if (mlen == -1) {
03e7f088 303 if (errno != EAGAIN)
259b64eb 304 zlog_err("ipv4-recv: recv failed: %s", strerror(errno));
03e7f088 305
e9e2c950
RZ
306 return -1;
307 }
308
309 /* Get source address */
310 peer->sa_sin = *((struct sockaddr_in *)(msghdr.msg_name));
311
312 /* Get and check TTL */
313 for (cm = CMSG_FIRSTHDR(&msghdr); cm != NULL;
314 cm = CMSG_NXTHDR(&msghdr, cm)) {
315 if (cm->cmsg_level != IPPROTO_IP)
316 continue;
317
318 switch (cm->cmsg_type) {
319#ifdef BFD_LINUX
320 case IP_TTL: {
50571b2e
RZ
321 uint32_t ttlval;
322
323 memcpy(&ttlval, CMSG_DATA(cm), sizeof(ttlval));
324 if (ttlval > 255) {
48da2c31
RZ
325 if (bglobal.debug_network)
326 zlog_debug("ipv4-recv: invalid TTL: %u",
327 ttlval);
e9e2c950
RZ
328 return -1;
329 }
50571b2e 330 *ttl = ttlval;
e9e2c950
RZ
331 break;
332 }
333
334 case IP_PKTINFO: {
335 struct in_pktinfo *pi =
336 (struct in_pktinfo *)CMSG_DATA(cm);
337
338 if (pi == NULL)
339 break;
340
341 local->sa_sin.sin_family = AF_INET;
342 local->sa_sin.sin_addr = pi->ipi_addr;
f43a14d2
RZ
343#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
344 local->sa_sin.sin_len = sizeof(local->sa_sin);
345#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
80edb675 346
b333abc2 347 *ifindex = pi->ipi_ifindex;
e9e2c950
RZ
348 break;
349 }
350#endif /* BFD_LINUX */
351#ifdef BFD_BSD
352 case IP_RECVTTL: {
50571b2e 353 memcpy(ttl, CMSG_DATA(cm), sizeof(*ttl));
e9e2c950
RZ
354 break;
355 }
356
357 case IP_RECVDSTADDR: {
358 struct in_addr ia;
359
360 memcpy(&ia, CMSG_DATA(cm), sizeof(ia));
361 local->sa_sin.sin_family = AF_INET;
362 local->sa_sin.sin_addr = ia;
f43a14d2
RZ
363#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
364 local->sa_sin.sin_len = sizeof(local->sa_sin);
365#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
e9e2c950
RZ
366 break;
367 }
368#endif /* BFD_BSD */
369
370 default:
371 /*
372 * On *BSDs we expect to land here when skipping
373 * the IP_RECVIF header. It will be handled by
374 * getsockopt_ifindex() below.
375 */
376 /* NOTHING */
377 break;
378 }
379 }
380
381 /* OS agnostic way of getting interface name. */
b333abc2
RZ
382 if (*ifindex == IFINDEX_INTERNAL)
383 *ifindex = getsockopt_ifindex(AF_INET, &msghdr);
e9e2c950
RZ
384
385 return mlen;
386}
387
50571b2e 388ssize_t bfd_recv_ipv6(int sd, uint8_t *msgbuf, size_t msgbuflen, uint8_t *ttl,
b333abc2 389 ifindex_t *ifindex, struct sockaddr_any *local,
50571b2e 390 struct sockaddr_any *peer)
e9e2c950
RZ
391{
392 struct cmsghdr *cm;
393 struct in6_pktinfo *pi6 = NULL;
394 ssize_t mlen;
6e01e275 395 uint32_t ttlval;
16084964
RZ
396 struct sockaddr_in6 msgaddr6;
397 struct msghdr msghdr6;
398 struct iovec iov[1];
399 uint8_t cmsgbuf6[255];
400
401 /* Prepare the recvmsg params. */
402 iov[0].iov_base = msgbuf;
50571b2e 403 iov[0].iov_len = msgbuflen;
16084964
RZ
404
405 memset(&msghdr6, 0, sizeof(msghdr6));
406 msghdr6.msg_name = &msgaddr6;
407 msghdr6.msg_namelen = sizeof(msgaddr6);
408 msghdr6.msg_iov = iov;
409 msghdr6.msg_iovlen = 1;
410 msghdr6.msg_control = cmsgbuf6;
411 msghdr6.msg_controllen = sizeof(cmsgbuf6);
412
e9e2c950
RZ
413 mlen = recvmsg(sd, &msghdr6, MSG_DONTWAIT);
414 if (mlen == -1) {
03e7f088 415 if (errno != EAGAIN)
259b64eb 416 zlog_err("ipv6-recv: recv failed: %s", strerror(errno));
03e7f088 417
e9e2c950
RZ
418 return -1;
419 }
420
421 /* Get source address */
422 peer->sa_sin6 = *((struct sockaddr_in6 *)(msghdr6.msg_name));
423
424 /* Get and check TTL */
425 for (cm = CMSG_FIRSTHDR(&msghdr6); cm != NULL;
426 cm = CMSG_NXTHDR(&msghdr6, cm)) {
427 if (cm->cmsg_level != IPPROTO_IPV6)
428 continue;
429
430 if (cm->cmsg_type == IPV6_HOPLIMIT) {
6e01e275 431 memcpy(&ttlval, CMSG_DATA(cm), sizeof(ttlval));
50571b2e 432 if (ttlval > 255) {
48da2c31
RZ
433 if (bglobal.debug_network)
434 zlog_debug("ipv6-recv: invalid TTL: %u",
435 ttlval);
e9e2c950
RZ
436 return -1;
437 }
50571b2e
RZ
438
439 *ttl = ttlval;
e9e2c950
RZ
440 } else if (cm->cmsg_type == IPV6_PKTINFO) {
441 pi6 = (struct in6_pktinfo *)CMSG_DATA(cm);
442 if (pi6) {
f43a14d2 443 local->sa_sin6.sin6_family = AF_INET6;
e9e2c950 444 local->sa_sin6.sin6_addr = pi6->ipi6_addr;
f43a14d2
RZ
445#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
446 local->sa_sin6.sin6_len = sizeof(local->sa_sin6);
447#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
80edb675 448
b333abc2 449 *ifindex = pi6->ipi6_ifindex;
fa3bf3a2
MS
450
451 /* Set scope ID for link local addresses. */
452 if (IN6_IS_ADDR_LINKLOCAL(
453 &peer->sa_sin6.sin6_addr))
454 peer->sa_sin6.sin6_scope_id = *ifindex;
455 if (IN6_IS_ADDR_LINKLOCAL(
456 &local->sa_sin6.sin6_addr))
457 local->sa_sin6.sin6_scope_id = *ifindex;
e9e2c950
RZ
458 }
459 }
460 }
461
462 return mlen;
463}
464
7bcadbae 465static void bfd_sd_reschedule(struct bfd_vrf_global *bvrf, int sd)
e9e2c950 466{
7bcadbae
PG
467 if (sd == bvrf->bg_shop) {
468 THREAD_OFF(bvrf->bg_ev[0]);
469 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_shop,
470 &bvrf->bg_ev[0]);
471 } else if (sd == bvrf->bg_mhop) {
472 THREAD_OFF(bvrf->bg_ev[1]);
473 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_mhop,
474 &bvrf->bg_ev[1]);
475 } else if (sd == bvrf->bg_shop6) {
476 THREAD_OFF(bvrf->bg_ev[2]);
477 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_shop6,
478 &bvrf->bg_ev[2]);
479 } else if (sd == bvrf->bg_mhop6) {
480 THREAD_OFF(bvrf->bg_ev[3]);
481 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_mhop6,
482 &bvrf->bg_ev[3]);
483 } else if (sd == bvrf->bg_echo) {
484 THREAD_OFF(bvrf->bg_ev[4]);
485 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_echo,
486 &bvrf->bg_ev[4]);
487 } else if (sd == bvrf->bg_echov6) {
488 THREAD_OFF(bvrf->bg_ev[5]);
489 thread_add_read(master, bfd_recv_cb, bvrf, bvrf->bg_echov6,
490 &bvrf->bg_ev[5]);
e9e2c950
RZ
491 }
492}
493
03e7f088 494static void cp_debug(bool mhop, struct sockaddr_any *peer,
b333abc2
RZ
495 struct sockaddr_any *local, ifindex_t ifindex,
496 vrf_id_t vrfid, const char *fmt, ...)
03e7f088
RZ
497{
498 char buf[512], peerstr[128], localstr[128], portstr[64], vrfstr[64];
499 va_list vl;
500
48da2c31
RZ
501 /* Don't to any processing if debug is disabled. */
502 if (bglobal.debug_network == false)
503 return;
504
03e7f088
RZ
505 if (peer->sa_sin.sin_family)
506 snprintf(peerstr, sizeof(peerstr), " peer:%s", satostr(peer));
507 else
508 peerstr[0] = 0;
509
510 if (local->sa_sin.sin_family)
511 snprintf(localstr, sizeof(localstr), " local:%s",
512 satostr(local));
513 else
514 localstr[0] = 0;
515
b333abc2
RZ
516 if (ifindex != IFINDEX_INTERNAL)
517 snprintf(portstr, sizeof(portstr), " port:%u", ifindex);
03e7f088
RZ
518 else
519 portstr[0] = 0;
520
b333abc2
RZ
521 if (vrfid != VRF_DEFAULT)
522 snprintf(vrfstr, sizeof(vrfstr), " vrf:%u", vrfid);
03e7f088
RZ
523 else
524 vrfstr[0] = 0;
525
526 va_start(vl, fmt);
527 vsnprintf(buf, sizeof(buf), fmt, vl);
528 va_end(vl);
529
259b64eb
RZ
530 zlog_debug("control-packet: %s [mhop:%s%s%s%s%s]", buf,
531 mhop ? "yes" : "no", peerstr, localstr, portstr, vrfstr);
03e7f088
RZ
532}
533
e9e2c950
RZ
534int bfd_recv_cb(struct thread *t)
535{
536 int sd = THREAD_FD(t);
537 struct bfd_session *bfd;
538 struct bfd_pkt *cp;
8a9f760e 539 bool is_mhop;
e9e2c950 540 ssize_t mlen = 0;
9f37770f 541 uint8_t ttl = 0;
f7b3ca19 542 vrf_id_t vrfid;
b333abc2 543 ifindex_t ifindex = IFINDEX_INTERNAL;
e9e2c950 544 struct sockaddr_any local, peer;
50571b2e 545 uint8_t msgbuf[1516];
134a53ec 546 struct interface *ifp = NULL;
7bcadbae 547 struct bfd_vrf_global *bvrf = THREAD_ARG(t);
e9e2c950 548
102e2157 549 vrfid = bvrf->vrf->vrf_id;
f7b3ca19 550
e9e2c950 551 /* Schedule next read. */
7bcadbae 552 bfd_sd_reschedule(bvrf, sd);
e9e2c950 553
03e7f088 554 /* Handle echo packets. */
7bcadbae
PG
555 if (sd == bvrf->bg_echo || sd == bvrf->bg_echov6) {
556 ptm_bfd_process_echo_pkt(bvrf, sd);
e9e2c950
RZ
557 return 0;
558 }
559
ff98a589 560 /* Sanitize input/output. */
ff98a589
RZ
561 memset(&local, 0, sizeof(local));
562 memset(&peer, 0, sizeof(peer));
563
03e7f088 564 /* Handle control packets. */
8a9f760e 565 is_mhop = false;
7bcadbae
PG
566 if (sd == bvrf->bg_shop || sd == bvrf->bg_mhop) {
567 is_mhop = sd == bvrf->bg_mhop;
b333abc2 568 mlen = bfd_recv_ipv4(sd, msgbuf, sizeof(msgbuf), &ttl, &ifindex,
50571b2e 569 &local, &peer);
7bcadbae
PG
570 } else if (sd == bvrf->bg_shop6 || sd == bvrf->bg_mhop6) {
571 is_mhop = sd == bvrf->bg_mhop6;
b333abc2 572 mlen = bfd_recv_ipv6(sd, msgbuf, sizeof(msgbuf), &ttl, &ifindex,
50571b2e 573 &local, &peer);
e9e2c950 574 }
e9e2c950 575
134a53ec
PG
576 /* update vrf-id because when in vrf-lite mode,
577 * the socket is on default namespace
578 */
579 if (ifindex) {
580 ifp = if_lookup_by_index(ifindex, vrfid);
581 if (ifp)
582 vrfid = ifp->vrf_id;
583 }
584
e9e2c950
RZ
585 /* Implement RFC 5880 6.8.6 */
586 if (mlen < BFD_PKT_LEN) {
b333abc2 587 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 588 "too small (%ld bytes)", mlen);
e9e2c950
RZ
589 return 0;
590 }
591
262e1d25 592 /* Validate single hop packet TTL. */
d8729f8c 593 if ((!is_mhop) && (ttl != BFD_TTL_VAL)) {
b333abc2 594 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
50571b2e
RZ
595 "invalid TTL: %d expected %d", ttl, BFD_TTL_VAL);
596 return 0;
597 }
598
03e7f088
RZ
599 /*
600 * Parse the control header for inconsistencies:
601 * - Invalid version;
602 * - Bad multiplier configuration;
603 * - Short packets;
604 * - Invalid discriminator;
605 */
16084964 606 cp = (struct bfd_pkt *)(msgbuf);
e9e2c950 607 if (BFD_GETVER(cp->diag) != BFD_VERSION) {
b333abc2 608 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 609 "bad version %d", BFD_GETVER(cp->diag));
e9e2c950
RZ
610 return 0;
611 }
612
613 if (cp->detect_mult == 0) {
b333abc2 614 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 615 "detect multiplier set to zero");
e9e2c950
RZ
616 return 0;
617 }
618
619 if ((cp->len < BFD_PKT_LEN) || (cp->len > mlen)) {
b333abc2 620 cp_debug(is_mhop, &peer, &local, ifindex, vrfid, "too small");
e9e2c950
RZ
621 return 0;
622 }
623
624 if (cp->discrs.my_discr == 0) {
b333abc2 625 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 626 "'my discriminator' is zero");
e9e2c950
RZ
627 return 0;
628 }
629
03e7f088 630 /* Find the session that this packet belongs. */
b333abc2 631 bfd = ptm_bfd_sess_find(cp, &peer, &local, ifindex, vrfid, is_mhop);
e9e2c950 632 if (bfd == NULL) {
b333abc2 633 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 634 "no session found");
e9e2c950
RZ
635 return 0;
636 }
637
e9e2c950 638 bfd->stats.rx_ctrl_pkt++;
03e7f088
RZ
639
640 /*
641 * Multi hop: validate packet TTL.
642 * Single hop: set local address that received the packet.
643 */
e9e2c950 644 if (is_mhop) {
262e1d25 645 if (ttl < bfd->mh_ttl) {
b333abc2 646 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
03e7f088 647 "exceeded max hop count (expected %d, got %d)",
262e1d25 648 bfd->mh_ttl, ttl);
e9e2c950
RZ
649 return 0;
650 }
79b4a6fc
RZ
651 } else if (bfd->local_address.sa_sin.sin_family == AF_UNSPEC) {
652 bfd->local_address = local;
e9e2c950
RZ
653 }
654
655 /*
656 * If no interface was detected, save the interface where the
657 * packet came in.
658 */
80edb675 659 if (bfd->ifp == NULL)
b333abc2 660 bfd->ifp = if_lookup_by_index(ifindex, vrfid);
e9e2c950 661
03e7f088 662 /* Log remote discriminator changes. */
e9e2c950 663 if ((bfd->discrs.remote_discr != 0)
03e7f088 664 && (bfd->discrs.remote_discr != ntohl(cp->discrs.my_discr)))
b333abc2 665 cp_debug(is_mhop, &peer, &local, ifindex, vrfid,
e945606e 666 "remote discriminator mismatch (expected %u, got %u)",
03e7f088 667 bfd->discrs.remote_discr, ntohl(cp->discrs.my_discr));
e9e2c950
RZ
668
669 bfd->discrs.remote_discr = ntohl(cp->discrs.my_discr);
670
e9e2c950
RZ
671 /* Save remote diagnostics before state switch. */
672 bfd->remote_diag = cp->diag & BFD_DIAGMASK;
673
c0ef9a8a
RZ
674 /* Update remote timers settings. */
675 bfd->remote_timers.desired_min_tx = ntohl(cp->timers.desired_min_tx);
676 bfd->remote_timers.required_min_rx = ntohl(cp->timers.required_min_rx);
677 bfd->remote_timers.required_min_echo =
678 ntohl(cp->timers.required_min_echo);
679 bfd->remote_detect_mult = cp->detect_mult;
680
9beff0bd
PG
681 if (BFD_GETCBIT(cp->flags))
682 bfd->remote_cbit = 1;
683 else
684 bfd->remote_cbit = 0;
685
aef131af
RZ
686 /* State switch from section 6.2. */
687 bs_state_handler(bfd, BFD_GETSTATE(cp->flags));
e9e2c950 688
c0ef9a8a
RZ
689 /* RFC 5880, Section 6.5: handle POLL/FINAL negotiation sequence. */
690 if (bfd->polling && BFD_GETFBIT(cp->flags)) {
691 /* Disable pooling. */
692 bfd->polling = 0;
e9e2c950 693
c0ef9a8a
RZ
694 /* Handle poll finalization. */
695 bs_final_handler(bfd);
696 } else {
697 /* Received a packet, lets update the receive timer. */
698 bfd_recvtimer_update(bfd);
e9e2c950
RZ
699 }
700
c0ef9a8a
RZ
701 /* Handle echo timers changes. */
702 bs_echo_timer_handler(bfd);
e9e2c950
RZ
703
704 /*
c0ef9a8a
RZ
705 * We've received a packet with the POLL bit set, we must send
706 * a control packet back with the FINAL bit set.
707 *
708 * RFC 5880, Section 6.5.
e9e2c950 709 */
0c1af3e4
RZ
710 if (BFD_GETPBIT(cp->flags)) {
711 /* We are finalizing a poll negotiation. */
712 bs_final_handler(bfd);
713
714 /* Send the control packet with the final bit immediately. */
c0ef9a8a 715 ptm_bfd_snd(bfd, 1);
0c1af3e4 716 }
e9e2c950
RZ
717
718 return 0;
719}
720
2f11c53f
RZ
721/*
722 * bp_bfd_echo_in: proccesses an BFD echo packet. On TTL == BFD_TTL_VAL
723 * the packet is looped back or returns the my discriminator ID along
724 * with the TTL.
725 *
726 * Returns -1 on error or loopback or 0 on success.
727 */
7bcadbae
PG
728int bp_bfd_echo_in(struct bfd_vrf_global *bvrf, int sd,
729 uint8_t *ttl, uint32_t *my_discr)
2f11c53f
RZ
730{
731 struct bfd_echo_pkt *bep;
732 ssize_t rlen;
733 struct sockaddr_any local, peer;
b333abc2
RZ
734 ifindex_t ifindex = IFINDEX_INTERNAL;
735 vrf_id_t vrfid = VRF_DEFAULT;
2f11c53f
RZ
736 uint8_t msgbuf[1516];
737
7bcadbae 738 if (sd == bvrf->bg_echo)
b333abc2 739 rlen = bfd_recv_ipv4(sd, msgbuf, sizeof(msgbuf), ttl, &ifindex,
2f11c53f
RZ
740 &local, &peer);
741 else
b333abc2 742 rlen = bfd_recv_ipv6(sd, msgbuf, sizeof(msgbuf), ttl, &ifindex,
2f11c53f
RZ
743 &local, &peer);
744
745 /* Short packet, better not risk reading it. */
746 if (rlen < (ssize_t)sizeof(*bep)) {
b333abc2 747 cp_debug(false, &peer, &local, ifindex, vrfid,
2f11c53f
RZ
748 "small echo packet");
749 return -1;
750 }
751
752 /* Test for loopback. */
753 if (*ttl == BFD_TTL_VAL) {
754 bp_udp_send(sd, *ttl - 1, msgbuf, rlen,
755 (struct sockaddr *)&peer,
7bcadbae 756 (sd == bvrf->bg_echo) ? sizeof(peer.sa_sin)
2f11c53f
RZ
757 : sizeof(peer.sa_sin6));
758 return -1;
759 }
760
761 /* Read my discriminator from BFD Echo packet. */
762 bep = (struct bfd_echo_pkt *)msgbuf;
763 *my_discr = ntohl(bep->my_discr);
764 if (*my_discr == 0) {
b333abc2 765 cp_debug(false, &peer, &local, ifindex, vrfid,
2f11c53f
RZ
766 "invalid echo packet discriminator (zero)");
767 return -1;
768 }
769
770 return 0;
771}
772
773int bp_udp_send(int sd, uint8_t ttl, uint8_t *data, size_t datalen,
774 struct sockaddr *to, socklen_t tolen)
775{
776 struct cmsghdr *cmsg;
777 ssize_t wlen;
778 int ttlval = ttl;
779 bool is_ipv6 = to->sa_family == AF_INET6;
780 struct msghdr msg;
781 struct iovec iov[1];
782 uint8_t msgctl[255];
783
784 /* Prepare message data. */
785 iov[0].iov_base = data;
786 iov[0].iov_len = datalen;
787
788 memset(&msg, 0, sizeof(msg));
789 memset(msgctl, 0, sizeof(msgctl));
790 msg.msg_name = to;
791 msg.msg_namelen = tolen;
792 msg.msg_iov = iov;
793 msg.msg_iovlen = 1;
794
795 /* Prepare the packet TTL information. */
796 if (ttl > 0) {
797 /* Use ancillary data. */
798 msg.msg_control = msgctl;
799 msg.msg_controllen = CMSG_LEN(sizeof(ttlval));
800
801 /* Configure the ancillary data. */
802 cmsg = CMSG_FIRSTHDR(&msg);
803 cmsg->cmsg_len = CMSG_LEN(sizeof(ttlval));
804 if (is_ipv6) {
805 cmsg->cmsg_level = IPPROTO_IPV6;
806 cmsg->cmsg_type = IPV6_HOPLIMIT;
807 } else {
0cd61f8d 808#ifdef BFD_LINUX
2f11c53f
RZ
809 cmsg->cmsg_level = IPPROTO_IP;
810 cmsg->cmsg_type = IP_TTL;
811#else
812 /* FreeBSD does not support TTL in ancillary data. */
813 msg.msg_control = NULL;
814 msg.msg_controllen = 0;
815
816 bp_set_ttl(sd, ttl);
817#endif /* BFD_BSD */
818 }
819 memcpy(CMSG_DATA(cmsg), &ttlval, sizeof(ttlval));
820 }
821
822 /* Send echo back. */
823 wlen = sendmsg(sd, &msg, 0);
824 if (wlen <= 0) {
48da2c31
RZ
825 if (bglobal.debug_network)
826 zlog_debug("udp-send: loopback failure: (%d) %s", errno,
827 strerror(errno));
2f11c53f
RZ
828 return -1;
829 } else if (wlen < (ssize_t)datalen) {
48da2c31
RZ
830 if (bglobal.debug_network)
831 zlog_debug("udp-send: partial send: %zd expected %zu",
832 wlen, datalen);
2f11c53f
RZ
833 return -1;
834 }
835
836 return 0;
837}
838
e9e2c950
RZ
839
840/*
841 * Sockets creation.
842 */
843
844
845/*
846 * IPv4 sockets
847 */
6e01e275 848int bp_set_ttl(int sd, uint8_t value)
e9e2c950 849{
6e01e275
RZ
850 int ttl = value;
851
852 if (setsockopt(sd, IPPROTO_IP, IP_TTL, &ttl, sizeof(ttl)) == -1) {
259b64eb
RZ
853 zlog_warn("set-ttl: setsockopt(IP_TTL, %d): %s", value,
854 strerror(errno));
e9e2c950
RZ
855 return -1;
856 }
857
858 return 0;
859}
860
6e01e275 861int bp_set_tos(int sd, uint8_t value)
e9e2c950 862{
6e01e275
RZ
863 int tos = value;
864
865 if (setsockopt(sd, IPPROTO_IP, IP_TOS, &tos, sizeof(tos)) == -1) {
259b64eb
RZ
866 zlog_warn("set-tos: setsockopt(IP_TOS, %d): %s", value,
867 strerror(errno));
e9e2c950
RZ
868 return -1;
869 }
870
871 return 0;
872}
873
874static void bp_set_ipopts(int sd)
875{
6e01e275
RZ
876 int rcvttl = BFD_RCV_TTL_VAL;
877
878 if (bp_set_ttl(sd, BFD_TTL_VAL) != 0)
259b64eb 879 zlog_fatal("set-ipopts: TTL configuration failed");
e9e2c950
RZ
880
881 if (setsockopt(sd, IPPROTO_IP, IP_RECVTTL, &rcvttl, sizeof(rcvttl))
882 == -1)
259b64eb
RZ
883 zlog_fatal("set-ipopts: setsockopt(IP_RECVTTL, %d): %s", rcvttl,
884 strerror(errno));
e9e2c950
RZ
885
886#ifdef BFD_LINUX
887 int pktinfo = BFD_PKT_INFO_VAL;
6e01e275 888
e9e2c950
RZ
889 /* Figure out address and interface to do the peer matching. */
890 if (setsockopt(sd, IPPROTO_IP, IP_PKTINFO, &pktinfo, sizeof(pktinfo))
891 == -1)
259b64eb
RZ
892 zlog_fatal("set-ipopts: setsockopt(IP_PKTINFO, %d): %s",
893 pktinfo, strerror(errno));
e9e2c950
RZ
894#endif /* BFD_LINUX */
895#ifdef BFD_BSD
896 int yes = 1;
897
898 /* Find out our address for peer matching. */
899 if (setsockopt(sd, IPPROTO_IP, IP_RECVDSTADDR, &yes, sizeof(yes)) == -1)
259b64eb
RZ
900 zlog_fatal("set-ipopts: setsockopt(IP_RECVDSTADDR, %d): %s",
901 yes, strerror(errno));
e9e2c950
RZ
902
903 /* Find out interface where the packet came in. */
904 if (setsockopt_ifindex(AF_INET, sd, yes) == -1)
259b64eb
RZ
905 zlog_fatal("set-ipopts: setsockopt_ipv4_ifindex(%d): %s", yes,
906 strerror(errno));
e9e2c950
RZ
907#endif /* BFD_BSD */
908}
909
910static void bp_bind_ip(int sd, uint16_t port)
911{
912 struct sockaddr_in sin;
913
914 memset(&sin, 0, sizeof(sin));
915 sin.sin_family = AF_INET;
916 sin.sin_addr.s_addr = htonl(INADDR_ANY);
917 sin.sin_port = htons(port);
918 if (bind(sd, (struct sockaddr *)&sin, sizeof(sin)) == -1)
259b64eb 919 zlog_fatal("bind-ip: bind: %s", strerror(errno));
e9e2c950
RZ
920}
921
4a9feb66 922int bp_udp_shop(const struct vrf *vrf)
e9e2c950
RZ
923{
924 int sd;
925
0cf6db21 926 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66
RZ
927 sd = vrf_socket(AF_INET, SOCK_DGRAM, PF_UNSPEC, vrf->vrf_id,
928 vrf->name);
7bcadbae 929 }
e9e2c950 930 if (sd == -1)
259b64eb 931 zlog_fatal("udp-shop: socket: %s", strerror(errno));
e9e2c950
RZ
932
933 bp_set_ipopts(sd);
934 bp_bind_ip(sd, BFD_DEFDESTPORT);
e9e2c950
RZ
935 return sd;
936}
937
4a9feb66 938int bp_udp_mhop(const struct vrf *vrf)
e9e2c950
RZ
939{
940 int sd;
941
0cf6db21 942 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66
RZ
943 sd = vrf_socket(AF_INET, SOCK_DGRAM, PF_UNSPEC, vrf->vrf_id,
944 vrf->name);
7bcadbae 945 }
e9e2c950 946 if (sd == -1)
259b64eb 947 zlog_fatal("udp-mhop: socket: %s", strerror(errno));
e9e2c950
RZ
948
949 bp_set_ipopts(sd);
950 bp_bind_ip(sd, BFD_DEF_MHOP_DEST_PORT);
951
952 return sd;
953}
954
d245e522 955int bp_peer_socket(const struct bfd_session *bs)
e9e2c950
RZ
956{
957 int sd, pcount;
958 struct sockaddr_in sin;
959 static int srcPort = BFD_SRCPORTINIT;
1f4b73e5
PG
960 const char *device_to_bind = NULL;
961
962 if (bs->key.ifname[0])
963 device_to_bind = (const char *)bs->key.ifname;
031705c9
PG
964 else if ((!vrf_is_backend_netns() && bs->vrf->vrf_id != VRF_DEFAULT)
965 || ((CHECK_FLAG(bs->flags, BFD_SESS_FLAG_MH)
966 && bs->key.vrfname[0])))
1f4b73e5 967 device_to_bind = (const char *)bs->key.vrfname;
e9e2c950 968
0cf6db21 969 frr_with_privs(&bglobal.bfdd_privs) {
e52a6383 970 sd = vrf_socket(AF_INET, SOCK_DGRAM, PF_UNSPEC,
1f4b73e5 971 bs->vrf->vrf_id, device_to_bind);
e52a6383 972 }
03e7f088 973 if (sd == -1) {
259b64eb
RZ
974 zlog_err("ipv4-new: failed to create socket: %s",
975 strerror(errno));
e9e2c950 976 return -1;
03e7f088 977 }
e9e2c950 978
8a9f760e
RZ
979 /* Set TTL to 255 for all transmitted packets */
980 if (bp_set_ttl(sd, BFD_TTL_VAL) != 0) {
981 close(sd);
982 return -1;
e9e2c950
RZ
983 }
984
985 /* Set TOS to CS6 for all transmitted packets */
6e01e275 986 if (bp_set_tos(sd, BFD_TOS_VAL) != 0) {
e9e2c950
RZ
987 close(sd);
988 return -1;
989 }
990
e9e2c950 991 /* Find an available source port in the proper range */
79b4a6fc 992 memset(&sin, 0, sizeof(sin));
e9e2c950
RZ
993 sin.sin_family = AF_INET;
994#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
995 sin.sin_len = sizeof(sin);
996#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
79b4a6fc 997 memcpy(&sin.sin_addr, &bs->key.local, sizeof(sin.sin_addr));
b88113ef 998 if (CHECK_FLAG(bs->flags, BFD_SESS_FLAG_MH) == 0)
e9e2c950
RZ
999 sin.sin_addr.s_addr = INADDR_ANY;
1000
1001 pcount = 0;
1002 do {
1003 if ((++pcount) > (BFD_SRCPORTMAX - BFD_SRCPORTINIT)) {
1004 /* Searched all ports, none available */
259b64eb
RZ
1005 zlog_err("ipv4-new: failed to bind port: %s",
1006 strerror(errno));
e9e2c950
RZ
1007 close(sd);
1008 return -1;
1009 }
1010 if (srcPort >= BFD_SRCPORTMAX)
1011 srcPort = BFD_SRCPORTINIT;
1012 sin.sin_port = htons(srcPort++);
1013 } while (bind(sd, (struct sockaddr *)&sin, sizeof(sin)) < 0);
1014
1015 return sd;
1016}
1017
1018
1019/*
1020 * IPv6 sockets
1021 */
1022
d245e522 1023int bp_peer_socketv6(const struct bfd_session *bs)
e9e2c950 1024{
80edb675 1025 int sd, pcount;
e9e2c950
RZ
1026 struct sockaddr_in6 sin6;
1027 static int srcPort = BFD_SRCPORTINIT;
1f4b73e5
PG
1028 const char *device_to_bind = NULL;
1029
1030 if (bs->key.ifname[0])
1031 device_to_bind = (const char *)bs->key.ifname;
031705c9
PG
1032 else if ((!vrf_is_backend_netns() && bs->vrf->vrf_id != VRF_DEFAULT)
1033 || ((CHECK_FLAG(bs->flags, BFD_SESS_FLAG_MH)
1034 && bs->key.vrfname[0])))
1f4b73e5 1035 device_to_bind = (const char *)bs->key.vrfname;
e9e2c950 1036
0cf6db21 1037 frr_with_privs(&bglobal.bfdd_privs) {
e52a6383 1038 sd = vrf_socket(AF_INET6, SOCK_DGRAM, PF_UNSPEC,
1f4b73e5 1039 bs->vrf->vrf_id, device_to_bind);
e52a6383 1040 }
03e7f088 1041 if (sd == -1) {
259b64eb
RZ
1042 zlog_err("ipv6-new: failed to create socket: %s",
1043 strerror(errno));
e9e2c950 1044 return -1;
03e7f088 1045 }
e9e2c950 1046
8a9f760e
RZ
1047 /* Set TTL to 255 for all transmitted packets */
1048 if (bp_set_ttlv6(sd, BFD_TTL_VAL) != 0) {
1049 close(sd);
1050 return -1;
e9e2c950
RZ
1051 }
1052
1053 /* Set TOS to CS6 for all transmitted packets */
6e01e275 1054 if (bp_set_tosv6(sd, BFD_TOS_VAL) != 0) {
e9e2c950
RZ
1055 close(sd);
1056 return -1;
1057 }
1058
1059 /* Find an available source port in the proper range */
79b4a6fc 1060 memset(&sin6, 0, sizeof(sin6));
e9e2c950
RZ
1061 sin6.sin6_family = AF_INET6;
1062#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
1063 sin6.sin6_len = sizeof(sin6);
1064#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
79b4a6fc 1065 memcpy(&sin6.sin6_addr, &bs->key.local, sizeof(sin6.sin6_addr));
1db60b57 1066 if (bs->ifp && IN6_IS_ADDR_LINKLOCAL(&sin6.sin6_addr))
79b4a6fc 1067 sin6.sin6_scope_id = bs->ifp->ifindex;
e9e2c950 1068
e9e2c950
RZ
1069 pcount = 0;
1070 do {
1071 if ((++pcount) > (BFD_SRCPORTMAX - BFD_SRCPORTINIT)) {
1072 /* Searched all ports, none available */
259b64eb
RZ
1073 zlog_err("ipv6-new: failed to bind port: %s",
1074 strerror(errno));
e9e2c950
RZ
1075 close(sd);
1076 return -1;
1077 }
1078 if (srcPort >= BFD_SRCPORTMAX)
1079 srcPort = BFD_SRCPORTINIT;
1080 sin6.sin6_port = htons(srcPort++);
1081 } while (bind(sd, (struct sockaddr *)&sin6, sizeof(sin6)) < 0);
1082
1083 return sd;
1084}
1085
6e01e275 1086int bp_set_ttlv6(int sd, uint8_t value)
e9e2c950 1087{
6e01e275
RZ
1088 int ttl = value;
1089
1090 if (setsockopt(sd, IPPROTO_IPV6, IPV6_UNICAST_HOPS, &ttl, sizeof(ttl))
e9e2c950 1091 == -1) {
259b64eb
RZ
1092 zlog_warn("set-ttlv6: setsockopt(IPV6_UNICAST_HOPS, %d): %s",
1093 value, strerror(errno));
e9e2c950
RZ
1094 return -1;
1095 }
1096
1097 return 0;
1098}
1099
6e01e275 1100int bp_set_tosv6(int sd, uint8_t value)
e9e2c950 1101{
6e01e275
RZ
1102 int tos = value;
1103
1104 if (setsockopt(sd, IPPROTO_IPV6, IPV6_TCLASS, &tos, sizeof(tos))
e9e2c950 1105 == -1) {
259b64eb
RZ
1106 zlog_warn("set-tosv6: setsockopt(IPV6_TCLASS, %d): %s", value,
1107 strerror(errno));
e9e2c950
RZ
1108 return -1;
1109 }
1110
1111 return 0;
1112}
1113
1114static void bp_set_ipv6opts(int sd)
1115{
6e01e275
RZ
1116 int ipv6_pktinfo = BFD_IPV6_PKT_INFO_VAL;
1117 int ipv6_only = BFD_IPV6_ONLY_VAL;
e9e2c950 1118
6e01e275 1119 if (bp_set_ttlv6(sd, BFD_TTL_VAL) == -1)
259b64eb
RZ
1120 zlog_fatal(
1121 "set-ipv6opts: setsockopt(IPV6_UNICAST_HOPS, %d): %s",
1122 BFD_TTL_VAL, strerror(errno));
e9e2c950 1123
6e01e275 1124 if (setsockopt_ipv6_hoplimit(sd, BFD_RCV_TTL_VAL) == -1)
259b64eb
RZ
1125 zlog_fatal("set-ipv6opts: setsockopt(IPV6_HOPLIMIT, %d): %s",
1126 BFD_RCV_TTL_VAL, strerror(errno));
e9e2c950
RZ
1127
1128 if (setsockopt_ipv6_pktinfo(sd, ipv6_pktinfo) == -1)
259b64eb
RZ
1129 zlog_fatal("set-ipv6opts: setsockopt(IPV6_PKTINFO, %d): %s",
1130 ipv6_pktinfo, strerror(errno));
e9e2c950
RZ
1131
1132 if (setsockopt(sd, IPPROTO_IPV6, IPV6_V6ONLY, &ipv6_only,
1133 sizeof(ipv6_only))
1134 == -1)
259b64eb
RZ
1135 zlog_fatal("set-ipv6opts: setsockopt(IPV6_V6ONLY, %d): %s",
1136 ipv6_only, strerror(errno));
e9e2c950
RZ
1137}
1138
1139static void bp_bind_ipv6(int sd, uint16_t port)
1140{
1141 struct sockaddr_in6 sin6;
1142
1143 memset(&sin6, 0, sizeof(sin6));
1144 sin6.sin6_family = AF_INET6;
1145 sin6.sin6_addr = in6addr_any;
1146 sin6.sin6_port = htons(port);
1147#ifdef HAVE_STRUCT_SOCKADDR_SA_LEN
1148 sin6.sin6_len = sizeof(sin6);
1149#endif /* HAVE_STRUCT_SOCKADDR_SA_LEN */
1150 if (bind(sd, (struct sockaddr *)&sin6, sizeof(sin6)) == -1)
259b64eb 1151 zlog_fatal("bind-ipv6: bind: %s", strerror(errno));
e9e2c950
RZ
1152}
1153
4a9feb66 1154int bp_udp6_shop(const struct vrf *vrf)
e9e2c950
RZ
1155{
1156 int sd;
1157
0cf6db21 1158 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66
RZ
1159 sd = vrf_socket(AF_INET6, SOCK_DGRAM, PF_UNSPEC, vrf->vrf_id,
1160 vrf->name);
7bcadbae 1161 }
f1446f98
DS
1162 if (sd == -1) {
1163 if (errno != EAFNOSUPPORT)
1164 zlog_fatal("udp6-shop: socket: %s", strerror(errno));
1165 else
1166 zlog_warn("udp6-shop: V6 is not supported, continuing");
1167
1168 return -1;
1169 }
e9e2c950
RZ
1170
1171 bp_set_ipv6opts(sd);
1172 bp_bind_ipv6(sd, BFD_DEFDESTPORT);
1173
1174 return sd;
1175}
1176
4a9feb66 1177int bp_udp6_mhop(const struct vrf *vrf)
e9e2c950
RZ
1178{
1179 int sd;
1180
0cf6db21 1181 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66
RZ
1182 sd = vrf_socket(AF_INET6, SOCK_DGRAM, PF_UNSPEC, vrf->vrf_id,
1183 vrf->name);
7bcadbae 1184 }
f1446f98
DS
1185 if (sd == -1) {
1186 if (errno != EAFNOSUPPORT)
1187 zlog_fatal("udp6-mhop: socket: %s", strerror(errno));
1188 else
1189 zlog_warn("udp6-mhop: V6 is not supported, continuing");
1190
1191 return -1;
1192 }
e9e2c950
RZ
1193
1194 bp_set_ipv6opts(sd);
1195 bp_bind_ipv6(sd, BFD_DEF_MHOP_DEST_PORT);
1196
1197 return sd;
1198}
2f11c53f 1199
4a9feb66 1200int bp_echo_socket(const struct vrf *vrf)
2f11c53f
RZ
1201{
1202 int s;
1203
0cf6db21 1204 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66 1205 s = vrf_socket(AF_INET, SOCK_DGRAM, 0, vrf->vrf_id, vrf->name);
7bcadbae 1206 }
2f11c53f 1207 if (s == -1)
259b64eb 1208 zlog_fatal("echo-socket: socket: %s", strerror(errno));
2f11c53f
RZ
1209
1210 bp_set_ipopts(s);
1211 bp_bind_ip(s, BFD_DEF_ECHO_PORT);
1212
1213 return s;
1214}
1215
4a9feb66 1216int bp_echov6_socket(const struct vrf *vrf)
2f11c53f
RZ
1217{
1218 int s;
1219
0cf6db21 1220 frr_with_privs(&bglobal.bfdd_privs) {
4a9feb66 1221 s = vrf_socket(AF_INET6, SOCK_DGRAM, 0, vrf->vrf_id, vrf->name);
7bcadbae 1222 }
f1446f98
DS
1223 if (s == -1) {
1224 if (errno != EAFNOSUPPORT)
1225 zlog_fatal("echov6-socket: socket: %s",
1226 strerror(errno));
1227 else
1228 zlog_warn("echov6-socket: V6 is not supported, continuing");
1229
1230 return -1;
1231 }
2f11c53f
RZ
1232
1233 bp_set_ipv6opts(s);
1234 bp_bind_ipv6(s, BFD_DEF_ECHO_PORT);
1235
1236 return s;
1237}