]>
git.proxmox.com Git - mirror_iproute2.git/blob - ip/iptuntap.c
2 * iptunnel.c "ip tuntap"
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU General Public License
6 * as published by the Free Software Foundation; either version
7 * 2 of the License, or (at your option) any later version.
9 * Authors: David Woodhouse <David.Woodhouse@intel.com>
17 #include <sys/types.h>
18 #include <sys/socket.h>
19 #include <arpa/inet.h>
20 #include <sys/ioctl.h>
22 #include <linux/if_tun.h>
32 #include "ip_common.h"
34 #define TUNDEV "/dev/net/tun"
36 static void usage(void) __attribute__((noreturn
));
38 static void usage(void)
40 fprintf(stderr
, "Usage: ip tuntap { add | del | show | list | lst | help } [ dev PHYS_DEV ]\n");
41 fprintf(stderr
, " [ mode { tun | tap } ] [ user USER ] [ group GROUP ]\n");
42 fprintf(stderr
, " [ one_queue ] [ pi ] [ vnet_hdr ] [ multi_queue ] [ name NAME ]\n");
43 fprintf(stderr
, "\n");
44 fprintf(stderr
, "Where: USER := { STRING | NUMBER }\n");
45 fprintf(stderr
, " GROUP := { STRING | NUMBER }\n");
49 static int tap_add_ioctl(struct ifreq
*ifr
, uid_t uid
, gid_t gid
)
55 ifr
->ifr_flags
|= IFF_TUN_EXCL
;
58 fd
= open(TUNDEV
, O_RDWR
);
63 if (ioctl(fd
, TUNSETIFF
, ifr
)) {
64 perror("ioctl(TUNSETIFF)");
67 if (uid
!= -1 && ioctl(fd
, TUNSETOWNER
, uid
)) {
68 perror("ioctl(TUNSETOWNER)");
71 if (gid
!= -1 && ioctl(fd
, TUNSETGROUP
, gid
)) {
72 perror("ioctl(TUNSETGROUP)");
75 if (ioctl(fd
, TUNSETPERSIST
, 1)) {
76 perror("ioctl(TUNSETPERSIST)");
85 static int tap_del_ioctl(struct ifreq
*ifr
)
87 int fd
= open(TUNDEV
, O_RDWR
);
94 if (ioctl(fd
, TUNSETIFF
, ifr
)) {
95 perror("ioctl(TUNSETIFF)");
98 if (ioctl(fd
, TUNSETPERSIST
, 0)) {
99 perror("ioctl(TUNSETPERSIST)");
108 static int parse_args(int argc
, char **argv
,
109 struct ifreq
*ifr
, uid_t
*uid
, gid_t
*gid
)
113 memset(ifr
, 0, sizeof(*ifr
));
115 ifr
->ifr_flags
|= IFF_NO_PI
;
118 if (matches(*argv
, "mode") == 0) {
120 if (matches(*argv
, "tun") == 0) {
121 if (ifr
->ifr_flags
& IFF_TAP
) {
122 fprintf(stderr
, "You managed to ask for more than one tunnel mode.\n");
125 ifr
->ifr_flags
|= IFF_TUN
;
126 } else if (matches(*argv
, "tap") == 0) {
127 if (ifr
->ifr_flags
& IFF_TUN
) {
128 fprintf(stderr
, "You managed to ask for more than one tunnel mode.\n");
131 ifr
->ifr_flags
|= IFF_TAP
;
133 fprintf(stderr
, "Unknown tunnel mode \"%s\"\n", *argv
);
136 } else if (uid
&& matches(*argv
, "user") == 0) {
141 if (**argv
&& ((user
= strtol(*argv
, &end
, 10)), !*end
))
144 struct passwd
*pw
= getpwnam(*argv
);
147 fprintf(stderr
, "invalid user \"%s\"\n", *argv
);
152 } else if (gid
&& matches(*argv
, "group") == 0) {
158 if (**argv
&& ((group
= strtol(*argv
, &end
, 10)), !*end
))
161 struct group
*gr
= getgrnam(*argv
);
164 fprintf(stderr
, "invalid group \"%s\"\n", *argv
);
169 } else if (matches(*argv
, "pi") == 0) {
170 ifr
->ifr_flags
&= ~IFF_NO_PI
;
171 } else if (matches(*argv
, "one_queue") == 0) {
172 ifr
->ifr_flags
|= IFF_ONE_QUEUE
;
173 } else if (matches(*argv
, "vnet_hdr") == 0) {
174 ifr
->ifr_flags
|= IFF_VNET_HDR
;
175 } else if (matches(*argv
, "multi_queue") == 0) {
176 ifr
->ifr_flags
|= IFF_MULTI_QUEUE
;
177 } else if (matches(*argv
, "dev") == 0) {
179 strncpy(ifr
->ifr_name
, *argv
, IFNAMSIZ
-1);
181 if (matches(*argv
, "name") == 0) {
183 } else if (matches(*argv
, "help") == 0)
185 if (ifr
->ifr_name
[0])
186 duparg2("name", *argv
);
187 strncpy(ifr
->ifr_name
, *argv
, IFNAMSIZ
);
193 if (!(ifr
->ifr_flags
& TUN_TYPE_MASK
)) {
194 fprintf(stderr
, "You failed to specify a tunnel mode\n");
202 static int do_add(int argc
, char **argv
)
208 if (parse_args(argc
, argv
, &ifr
, &uid
, &gid
) < 0)
211 return tap_add_ioctl(&ifr
, uid
, gid
);
214 static int do_del(int argc
, char **argv
)
218 if (parse_args(argc
, argv
, &ifr
, NULL
, NULL
) < 0)
221 return tap_del_ioctl(&ifr
);
224 static int read_prop(char *dev
, char *prop
, long *value
)
226 char fname
[IFNAMSIZ
+25], buf
[80], *endp
;
231 sprintf(fname
, "/sys/class/net/%s/%s", dev
, prop
);
232 fd
= open(fname
, O_RDONLY
);
234 if (strcmp(prop
, "tun_flags"))
235 fprintf(stderr
, "open %s: %s\n", fname
,
239 len
= read(fd
, buf
, sizeof(buf
)-1);
242 fprintf(stderr
, "read %s: %s", fname
, strerror(errno
));
247 result
= strtol(buf
, &endp
, 0);
249 fprintf(stderr
, "Failed to parse %s\n", fname
);
256 static void print_flags(long flags
)
264 if (!(flags
& IFF_NO_PI
))
267 if (flags
& IFF_ONE_QUEUE
)
268 printf(" one_queue");
270 if (flags
& IFF_VNET_HDR
)
273 flags
&= ~(IFF_TUN
|IFF_TAP
|IFF_NO_PI
|IFF_ONE_QUEUE
|IFF_VNET_HDR
);
275 printf(" UNKNOWN_FLAGS:%lx", flags
);
278 static char *pid_name(pid_t pid
)
284 err
= asprintf(&comm
, "/proc/%d/comm", pid
);
288 f
= fopen(comm
, "r");
295 if (fscanf(f
, "%ms\n", &comm
) != 1) {
307 static void show_processes(const char *name
)
309 glob_t globbuf
= { };
313 err
= glob("/proc/[0-9]*/fd/[0-9]*", GLOB_NOSORT
,
318 fd_path
= globbuf
.gl_pathv
;
320 const char *dev_net_tun
= "/dev/net/tun";
321 const size_t linkbuf_len
= strlen(dev_net_tun
) + 2;
322 char linkbuf
[linkbuf_len
], *fdinfo
;
326 if (sscanf(*fd_path
, "/proc/%d/fd/%d", &pid
, &fd
) != 2)
332 err
= readlink(*fd_path
, linkbuf
, linkbuf_len
- 1);
338 if (strcmp(dev_net_tun
, linkbuf
))
341 if (asprintf(&fdinfo
, "/proc/%d/fdinfo/%d", pid
, fd
) < 0)
344 f
= fopen(fdinfo
, "r");
352 char *key
= NULL
, *value
= NULL
;
354 err
= fscanf(f
, "%m[^:]: %ms\n", &key
, &value
);
359 } else if (err
== 2 &&
360 !strcmp("iff", key
) &&
361 !strcmp(name
, value
)) {
362 char *pname
= pid_name(pid
);
364 printf(" %s(%d)", pname
? : "<NULL>", pid
);
382 static int do_show(int argc
, char **argv
)
386 long flags
, owner
= -1, group
= -1;
388 dir
= opendir("/sys/class/net");
393 while ((d
= readdir(dir
))) {
394 if (d
->d_name
[0] == '.' &&
395 (d
->d_name
[1] == 0 || d
->d_name
[1] == '.'))
398 if (read_prop(d
->d_name
, "tun_flags", &flags
))
401 read_prop(d
->d_name
, "owner", &owner
);
402 read_prop(d
->d_name
, "group", &group
);
404 printf("%s:", d
->d_name
);
407 printf(" user %ld", owner
);
409 printf(" group %ld", group
);
412 printf("\tAttached to processes:");
413 show_processes(d
->d_name
);
421 int do_iptuntap(int argc
, char **argv
)
424 if (matches(*argv
, "add") == 0)
425 return do_add(argc
-1, argv
+1);
426 if (matches(*argv
, "delete") == 0)
427 return do_del(argc
-1, argv
+1);
428 if (matches(*argv
, "show") == 0 ||
429 matches(*argv
, "lst") == 0 ||
430 matches(*argv
, "list") == 0)
431 return do_show(argc
-1, argv
+1);
432 if (matches(*argv
, "help") == 0)
435 return do_show(0, NULL
);
437 fprintf(stderr
, "Command \"%s\" is unknown, try \"ip tuntap help\".\n",