2 * Copyright (C)2006 USAGI/WIDE Project
4 * This program is free software; you can redistribute it and/or modify
5 * it under the terms of the GNU General Public License as published by
6 * the Free Software Foundation; either version 2 of the License, or
7 * (at your option) any later version.
9 * This program is distributed in the hope that it will be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
14 * You should have received a copy of the GNU General Public License
15 * along with this program; if not, see <http://www.gnu.org/licenses>.
19 * Masahide NAKAMURA @USAGI
26 #include <sys/types.h>
27 #include <sys/socket.h>
28 #include <arpa/inet.h>
29 #include <sys/ioctl.h>
32 #include <linux/if_arp.h>
33 #include <linux/if_tunnel.h>
34 #include <linux/ip6_tunnel.h>
38 #include "ip_common.h"
40 #define IP6_FLOWINFO_TCLASS htonl(0x0FF00000)
41 #define IP6_FLOWINFO_FLOWLABEL htonl(0x000FFFFF)
43 #define DEFAULT_TNL_HOP_LIMIT (64)
45 static void usage(void) __attribute__((noreturn
));
47 static void usage(void)
49 fprintf(stderr
, "Usage: ip -f inet6 tunnel { add | change | del | show } [ NAME ]\n");
50 fprintf(stderr
, " [ mode { ip6ip6 | ipip6 | ip6gre | vti6 | any } ]\n");
51 fprintf(stderr
, " [ remote ADDR local ADDR ] [ dev PHYS_DEV ]\n");
52 fprintf(stderr
, " [ encaplimit ELIM ]\n");
53 fprintf(stderr
," [ hoplimit TTL ] [ tclass TCLASS ] [ flowlabel FLOWLABEL ]\n");
54 fprintf(stderr
, " [ dscp inherit ]\n");
55 fprintf(stderr
, " [ [i|o]seq ] [ [i|o]key KEY ] [ [i|o]csum ]\n");
56 fprintf(stderr
, "\n");
57 fprintf(stderr
, "Where: NAME := STRING\n");
58 fprintf(stderr
, " ADDR := IPV6_ADDRESS\n");
59 fprintf(stderr
, " ELIM := { none | 0..255 }(default=%d)\n",
60 IPV6_DEFAULT_TNL_ENCAP_LIMIT
);
61 fprintf(stderr
, " TTL := 0..255 (default=%d)\n",
62 DEFAULT_TNL_HOP_LIMIT
);
63 fprintf(stderr
, " TCLASS := { 0x0..0xff | inherit }\n");
64 fprintf(stderr
, " FLOWLABEL := { 0x0..0xfffff | inherit }\n");
65 fprintf(stderr
, " KEY := { DOTTED_QUAD | NUMBER }\n");
69 static void print_tunnel(struct ip6_tnl_parm2
*p
)
74 /* Do not use format_host() for local addr,
75 * symbolic name will not be useful.
77 printf("%s: %s/ipv6 remote %s local %s",
79 tnl_strproto(p
->proto
),
80 format_host(AF_INET6
, 16, &p
->raddr
, s1
, sizeof(s1
)),
81 rt_addr_n2a(AF_INET6
, 16, &p
->laddr
, s2
, sizeof(s2
)));
83 const char *n
= ll_index_to_name(p
->link
);
88 if (p
->flags
& IP6_TNL_F_IGN_ENCAP_LIMIT
)
89 printf(" encaplimit none");
91 printf(" encaplimit %u", p
->encap_limit
);
93 printf(" hoplimit %u", p
->hop_limit
);
95 if (p
->flags
& IP6_TNL_F_USE_ORIG_TCLASS
)
96 printf(" tclass inherit");
98 __u32 val
= ntohl(p
->flowinfo
& IP6_FLOWINFO_TCLASS
);
99 printf(" tclass 0x%02x", (__u8
)(val
>> 20));
102 if (p
->flags
& IP6_TNL_F_USE_ORIG_FLOWLABEL
)
103 printf(" flowlabel inherit");
105 printf(" flowlabel 0x%05x", ntohl(p
->flowinfo
& IP6_FLOWINFO_FLOWLABEL
));
107 printf(" (flowinfo 0x%08x)", ntohl(p
->flowinfo
));
109 if (p
->flags
& IP6_TNL_F_RCV_DSCP_COPY
)
110 printf(" dscp inherit");
112 if (p
->proto
== IPPROTO_GRE
) {
113 if ((p
->i_flags
&GRE_KEY
) && (p
->o_flags
&GRE_KEY
) && p
->o_key
== p
->i_key
)
114 printf(" key %u", ntohl(p
->i_key
));
115 else if ((p
->i_flags
|p
->o_flags
)&GRE_KEY
) {
116 if (p
->i_flags
&GRE_KEY
)
117 printf(" ikey %u", ntohl(p
->i_key
));
118 if (p
->o_flags
&GRE_KEY
)
119 printf(" okey %u", ntohl(p
->o_key
));
122 if (p
->i_flags
&GRE_SEQ
)
123 printf("%s Drop packets out of sequence.", _SL_
);
124 if (p
->i_flags
&GRE_CSUM
)
125 printf("%s Checksum in received packet is required.", _SL_
);
126 if (p
->o_flags
&GRE_SEQ
)
127 printf("%s Sequence packets on output.", _SL_
);
128 if (p
->o_flags
&GRE_CSUM
)
129 printf("%s Checksum output packets.", _SL_
);
133 static int parse_args(int argc
, char **argv
, int cmd
, struct ip6_tnl_parm2
*p
)
136 char medium
[IFNAMSIZ
];
138 memset(medium
, 0, sizeof(medium
));
141 if (strcmp(*argv
, "mode") == 0) {
143 if (strcmp(*argv
, "ipv6/ipv6") == 0 ||
144 strcmp(*argv
, "ip6ip6") == 0)
145 p
->proto
= IPPROTO_IPV6
;
146 else if (strcmp(*argv
, "vti6") == 0) {
147 p
->proto
= IPPROTO_IPV6
;
148 p
->i_flags
|= VTI_ISVTI
;
149 } else if (strcmp(*argv
, "ip/ipv6") == 0 ||
150 strcmp(*argv
, "ipv4/ipv6") == 0 ||
151 strcmp(*argv
, "ipip6") == 0 ||
152 strcmp(*argv
, "ip4ip6") == 0)
153 p
->proto
= IPPROTO_IPIP
;
154 else if (strcmp(*argv
, "ip6gre") == 0 ||
155 strcmp(*argv
, "gre/ipv6") == 0)
156 p
->proto
= IPPROTO_GRE
;
157 else if (strcmp(*argv
, "any/ipv6") == 0 ||
158 strcmp(*argv
, "any") == 0)
161 fprintf(stderr
,"Unknown tunnel mode \"%s\"\n", *argv
);
164 } else if (strcmp(*argv
, "remote") == 0) {
167 get_prefix(&raddr
, *argv
, preferred_family
);
168 if (raddr
.family
== AF_UNSPEC
)
169 invarg("\"remote\" address family is AF_UNSPEC", *argv
);
170 memcpy(&p
->raddr
, &raddr
.data
, sizeof(p
->raddr
));
171 } else if (strcmp(*argv
, "local") == 0) {
174 get_prefix(&laddr
, *argv
, preferred_family
);
175 if (laddr
.family
== AF_UNSPEC
)
176 invarg("\"local\" address family is AF_UNSPEC", *argv
);
177 memcpy(&p
->laddr
, &laddr
.data
, sizeof(p
->laddr
));
178 } else if (strcmp(*argv
, "dev") == 0) {
180 strncpy(medium
, *argv
, IFNAMSIZ
- 1);
181 } else if (strcmp(*argv
, "encaplimit") == 0) {
183 if (strcmp(*argv
, "none") == 0) {
184 p
->flags
|= IP6_TNL_F_IGN_ENCAP_LIMIT
;
187 if (get_u8(&uval
, *argv
, 0) < -1)
188 invarg("invalid ELIM", *argv
);
189 p
->encap_limit
= uval
;
190 p
->flags
&= ~IP6_TNL_F_IGN_ENCAP_LIMIT
;
192 } else if (strcmp(*argv
, "hoplimit") == 0 ||
193 strcmp(*argv
, "ttl") == 0 ||
194 strcmp(*argv
, "hlim") == 0) {
197 if (get_u8(&uval
, *argv
, 0))
198 invarg("invalid TTL", *argv
);
200 } else if (strcmp(*argv
, "tclass") == 0 ||
201 strcmp(*argv
, "tc") == 0 ||
202 strcmp(*argv
, "tos") == 0 ||
203 matches(*argv
, "dsfield") == 0) {
206 p
->flowinfo
&= ~IP6_FLOWINFO_TCLASS
;
207 if (strcmp(*argv
, "inherit") == 0)
208 p
->flags
|= IP6_TNL_F_USE_ORIG_TCLASS
;
210 if (get_u8(&uval
, *argv
, 16))
211 invarg("invalid TClass", *argv
);
212 p
->flowinfo
|= htonl((__u32
)uval
<< 20) & IP6_FLOWINFO_TCLASS
;
213 p
->flags
&= ~IP6_TNL_F_USE_ORIG_TCLASS
;
215 } else if (strcmp(*argv
, "flowlabel") == 0 ||
216 strcmp(*argv
, "fl") == 0) {
219 p
->flowinfo
&= ~IP6_FLOWINFO_FLOWLABEL
;
220 if (strcmp(*argv
, "inherit") == 0)
221 p
->flags
|= IP6_TNL_F_USE_ORIG_FLOWLABEL
;
223 if (get_u32(&uval
, *argv
, 16))
224 invarg("invalid Flowlabel", *argv
);
226 invarg("invalid Flowlabel", *argv
);
227 p
->flowinfo
|= htonl(uval
) & IP6_FLOWINFO_FLOWLABEL
;
228 p
->flags
&= ~IP6_TNL_F_USE_ORIG_FLOWLABEL
;
230 } else if (strcmp(*argv
, "dscp") == 0) {
232 if (strcmp(*argv
, "inherit") != 0)
233 invarg("not inherit", *argv
);
234 p
->flags
|= IP6_TNL_F_RCV_DSCP_COPY
;
235 } else if (strcmp(*argv
, "key") == 0) {
237 p
->i_flags
|= GRE_KEY
;
238 p
->o_flags
|= GRE_KEY
;
239 p
->i_key
= p
->o_key
= tnl_parse_key("key", *argv
);
240 } else if (strcmp(*argv
, "ikey") == 0) {
242 p
->i_flags
|= GRE_KEY
;
243 p
->i_key
= tnl_parse_key("ikey", *argv
);
244 } else if (strcmp(*argv
, "okey") == 0) {
246 p
->o_flags
|= GRE_KEY
;
247 p
->o_key
= tnl_parse_key("okey", *argv
);
248 } else if (strcmp(*argv
, "seq") == 0) {
249 p
->i_flags
|= GRE_SEQ
;
250 p
->o_flags
|= GRE_SEQ
;
251 } else if (strcmp(*argv
, "iseq") == 0) {
252 p
->i_flags
|= GRE_SEQ
;
253 } else if (strcmp(*argv
, "oseq") == 0) {
254 p
->o_flags
|= GRE_SEQ
;
255 } else if (strcmp(*argv
, "csum") == 0) {
256 p
->i_flags
|= GRE_CSUM
;
257 p
->o_flags
|= GRE_CSUM
;
258 } else if (strcmp(*argv
, "icsum") == 0) {
259 p
->i_flags
|= GRE_CSUM
;
260 } else if (strcmp(*argv
, "ocsum") == 0) {
261 p
->o_flags
|= GRE_CSUM
;
263 if (strcmp(*argv
, "name") == 0) {
266 else if (matches(*argv
, "help") == 0)
269 duparg2("name", *argv
);
270 strncpy(p
->name
, *argv
, IFNAMSIZ
- 1);
271 if (cmd
== SIOCCHGTUNNEL
&& count
== 0) {
272 struct ip6_tnl_parm2 old_p
;
273 memset(&old_p
, 0, sizeof(old_p
));
274 if (tnl_get_ioctl(*argv
, &old_p
))
283 p
->link
= ll_name_to_index(medium
);
285 fprintf(stderr
, "Cannot find device \"%s\"\n", medium
);
292 static void ip6_tnl_parm_init(struct ip6_tnl_parm2
*p
, int apply_default
)
294 memset(p
, 0, sizeof(*p
));
295 p
->proto
= IPPROTO_IPV6
;
297 p
->hop_limit
= DEFAULT_TNL_HOP_LIMIT
;
298 p
->encap_limit
= IPV6_DEFAULT_TNL_ENCAP_LIMIT
;
303 * @p1: user specified parameter
304 * @p2: database entry
306 static int ip6_tnl_parm_match(const struct ip6_tnl_parm2
*p1
,
307 const struct ip6_tnl_parm2
*p2
)
309 return ((!p1
->link
|| p1
->link
== p2
->link
) &&
310 (!p1
->name
[0] || strcmp(p1
->name
, p2
->name
) == 0) &&
311 (memcmp(&p1
->laddr
, &in6addr_any
, sizeof(p1
->laddr
)) == 0 ||
312 memcmp(&p1
->laddr
, &p2
->laddr
, sizeof(p1
->laddr
)) == 0) &&
313 (memcmp(&p1
->raddr
, &in6addr_any
, sizeof(p1
->raddr
)) == 0 ||
314 memcmp(&p1
->raddr
, &p2
->raddr
, sizeof(p1
->raddr
)) == 0) &&
315 (!p1
->proto
|| !p2
->proto
|| p1
->proto
== p2
->proto
) &&
316 (!p1
->encap_limit
|| p1
->encap_limit
== p2
->encap_limit
) &&
317 (!p1
->hop_limit
|| p1
->hop_limit
== p2
->hop_limit
) &&
318 (!(p1
->flowinfo
& IP6_FLOWINFO_TCLASS
) ||
319 !((p1
->flowinfo
^ p2
->flowinfo
) & IP6_FLOWINFO_TCLASS
)) &&
320 (!(p1
->flowinfo
& IP6_FLOWINFO_FLOWLABEL
) ||
321 !((p1
->flowinfo
^ p2
->flowinfo
) & IP6_FLOWINFO_FLOWLABEL
)) &&
322 (!p1
->flags
|| (p1
->flags
& p2
->flags
)));
325 static int do_tunnels_list(struct ip6_tnl_parm2
*p
)
329 FILE *fp
= fopen("/proc/net/dev", "r");
335 /* skip two lines at the begenning of the file */
336 if (!fgets(buf
, sizeof(buf
), fp
) ||
337 !fgets(buf
, sizeof(buf
), fp
)) {
338 fprintf(stderr
, "/proc/net/dev read error\n");
342 while (fgets(buf
, sizeof(buf
), fp
) != NULL
) {
345 unsigned long rx_bytes
, rx_packets
, rx_errs
, rx_drops
,
347 tx_bytes
, tx_packets
, tx_errs
, tx_drops
,
348 tx_fifo
, tx_colls
, tx_carrier
, rx_multi
;
349 struct ip6_tnl_parm2 p1
;
352 buf
[sizeof(buf
) - 1] = '\0';
353 if ((ptr
= strchr(buf
, ':')) == NULL
||
354 (*ptr
++ = 0, sscanf(buf
, "%s", name
) != 1)) {
355 fprintf(stderr
, "Wrong format for /proc/net/dev. Giving up.\n");
358 if (sscanf(ptr
, "%ld%ld%ld%ld%ld%ld%ld%*d%ld%ld%ld%ld%ld%ld%ld",
359 &rx_bytes
, &rx_packets
, &rx_errs
, &rx_drops
,
360 &rx_fifo
, &rx_frame
, &rx_multi
,
361 &tx_bytes
, &tx_packets
, &tx_errs
, &tx_drops
,
362 &tx_fifo
, &tx_colls
, &tx_carrier
) != 14)
364 if (p
->name
[0] && strcmp(p
->name
, name
))
366 index
= ll_name_to_index(name
);
369 type
= ll_index_to_type(index
);
371 fprintf(stderr
, "Failed to get type of \"%s\"\n", name
);
374 if (type
!= ARPHRD_TUNNEL6
&& type
!= ARPHRD_IP6GRE
)
376 memset(&p1
, 0, sizeof(p1
));
377 ip6_tnl_parm_init(&p1
, 0);
378 if (type
== ARPHRD_IP6GRE
)
379 p1
.proto
= IPPROTO_GRE
;
380 strcpy(p1
.name
, name
);
381 p1
.link
= ll_name_to_index(p1
.name
);
384 if (tnl_get_ioctl(p1
.name
, &p1
))
386 if (!ip6_tnl_parm_match(p
, &p1
))
391 printf("RX: Packets Bytes Errors CsumErrs OutOfSeq Mcasts%s", _SL_
);
392 printf(" %-10ld %-12ld %-6ld %-8ld %-8ld %-8ld%s",
393 rx_packets
, rx_bytes
, rx_errs
, rx_frame
, rx_fifo
, rx_multi
, _SL_
);
394 printf("TX: Packets Bytes Errors DeadLoop NoRoute NoBufs%s", _SL_
);
395 printf(" %-10ld %-12ld %-6ld %-8ld %-8ld %-6ld",
396 tx_packets
, tx_bytes
, tx_errs
, tx_colls
, tx_carrier
, tx_drops
);
406 static int do_show(int argc
, char **argv
)
408 struct ip6_tnl_parm2 p
;
411 ip6_tnl_parm_init(&p
, 0);
412 p
.proto
= 0; /* default to any */
414 if (parse_args(argc
, argv
, SIOCGETTUNNEL
, &p
) < 0)
417 if (!p
.name
[0] || show_stats
)
420 if (tnl_get_ioctl(p
.name
, &p
))
429 static int do_add(int cmd
, int argc
, char **argv
)
431 struct ip6_tnl_parm2 p
;
432 const char *basedev
= "ip6tnl0";
434 ip6_tnl_parm_init(&p
, 1);
436 if (parse_args(argc
, argv
, cmd
, &p
) < 0)
439 if (p
.proto
== IPPROTO_GRE
)
441 else if (p
.i_flags
& VTI_ISVTI
)
442 basedev
= "ip6_vti0";
444 return tnl_add_ioctl(cmd
, basedev
, p
.name
, &p
);
447 static int do_del(int argc
, char **argv
)
449 struct ip6_tnl_parm2 p
;
450 const char *basedev
= "ip6tnl0";
452 ip6_tnl_parm_init(&p
, 1);
454 if (parse_args(argc
, argv
, SIOCDELTUNNEL
, &p
) < 0)
457 if (p
.proto
== IPPROTO_GRE
)
459 else if (p
.i_flags
& VTI_ISVTI
)
460 basedev
= "ip6_vti0";
462 return tnl_del_ioctl(basedev
, p
.name
, &p
);
465 int do_ip6tunnel(int argc
, char **argv
)
467 switch (preferred_family
) {
469 preferred_family
= AF_INET6
;
474 fprintf(stderr
, "Unsupported protocol family: %d\n", preferred_family
);
479 if (matches(*argv
, "add") == 0)
480 return do_add(SIOCADDTUNNEL
, argc
- 1, argv
+ 1);
481 if (matches(*argv
, "change") == 0)
482 return do_add(SIOCCHGTUNNEL
, argc
- 1, argv
+ 1);
483 if (matches(*argv
, "delete") == 0)
484 return do_del(argc
- 1, argv
+ 1);
485 if (matches(*argv
, "show") == 0 ||
486 matches(*argv
, "lst") == 0 ||
487 matches(*argv
, "list") == 0)
488 return do_show(argc
- 1, argv
+ 1);
489 if (matches(*argv
, "help") == 0)
492 return do_show(0, NULL
);
494 fprintf(stderr
, "Command \"%s\" is unknown, try \"ip -f inet6 tunnel help\".\n", *argv
);