2 * ss.c "sockstat", socket statistics
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU General Public License
6 * as published by the Free Software Foundation; either version
7 * 2 of the License, or (at your option) any later version.
9 * Authors: Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
17 #include <sys/ioctl.h>
18 #include <sys/socket.h>
20 #include <netinet/in.h>
24 #include <arpa/inet.h>
34 #include "libnetlink.h"
35 #include "namespace.h"
38 #include <linux/tcp.h>
39 #include <linux/sock_diag.h>
40 #include <linux/inet_diag.h>
41 #include <linux/unix_diag.h>
42 #include <linux/netdevice.h> /* for MAX_ADDR_LEN */
43 #include <linux/filter.h>
44 #include <linux/packet_diag.h>
45 #include <linux/netlink_diag.h>
46 #include <linux/sctp.h>
48 #define MAGIC_SEQ 123456
50 #define DIAG_REQUEST(_req, _r) \
52 struct nlmsghdr nlh; \
56 .nlmsg_type = SOCK_DIAG_BY_FAMILY, \
57 .nlmsg_flags = NLM_F_ROOT|NLM_F_MATCH|NLM_F_REQUEST,\
58 .nlmsg_seq = MAGIC_SEQ, \
59 .nlmsg_len = sizeof(_req), \
64 #include <selinux/selinux.h>
66 /* Stubs for SELinux functions */
67 static int is_selinux_enabled(void)
72 static int getpidcon(pid_t pid
, char **context
)
78 static int getfilecon(char *path
, char **context
)
84 static int security_get_initial_context(char *name
, char **context
)
92 int resolve_services
= 1;
93 int preferred_family
= AF_UNSPEC
;
111 static const char *TCP_PROTO
= "tcp";
112 static const char *SCTP_PROTO
= "sctp";
113 static const char *UDP_PROTO
= "udp";
114 static const char *RAW_PROTO
= "raw";
115 static const char *dg_proto
;
132 #define PACKET_DBM ((1<<PACKET_DG_DB)|(1<<PACKET_R_DB))
133 #define UNIX_DBM ((1<<UNIX_DG_DB)|(1<<UNIX_ST_DB)|(1<<UNIX_SQ_DB))
134 #define ALL_DB ((1<<MAX_DB)-1)
135 #define INET_L4_DBM ((1<<TCP_DB)|(1<<UDP_DB)|(1<<DCCP_DB)|(1<<SCTP_DB))
136 #define INET_DBM (INET_L4_DBM | (1<<RAW_DB))
155 SCTP_STATE_CLOSED
= 0,
156 SCTP_STATE_COOKIE_WAIT
= 1,
157 SCTP_STATE_COOKIE_ECHOED
= 2,
158 SCTP_STATE_ESTABLISHED
= 3,
159 SCTP_STATE_SHUTDOWN_PENDING
= 4,
160 SCTP_STATE_SHUTDOWN_SENT
= 5,
161 SCTP_STATE_SHUTDOWN_RECEIVED
= 6,
162 SCTP_STATE_SHUTDOWN_ACK_SENT
= 7,
165 #define SS_ALL ((1 << SS_MAX) - 1)
166 #define SS_CONN (SS_ALL & ~((1<<SS_LISTEN)|(1<<SS_CLOSE)|(1<<SS_TIME_WAIT)|(1<<SS_SYN_RECV)))
168 #include "ssfilter.h"
178 static const struct filter default_dbs
[MAX_DB
] = {
181 .families
= (1 << AF_INET
) | (1 << AF_INET6
),
185 .families
= (1 << AF_INET
) | (1 << AF_INET6
),
188 .states
= (1 << SS_ESTABLISHED
),
189 .families
= (1 << AF_INET
) | (1 << AF_INET6
),
192 .states
= (1 << SS_ESTABLISHED
),
193 .families
= (1 << AF_INET
) | (1 << AF_INET6
),
196 .states
= (1 << SS_CLOSE
),
197 .families
= (1 << AF_UNIX
),
201 .families
= (1 << AF_UNIX
),
205 .families
= (1 << AF_UNIX
),
208 .states
= (1 << SS_CLOSE
),
209 .families
= (1 << AF_PACKET
),
212 .states
= (1 << SS_CLOSE
),
213 .families
= (1 << AF_PACKET
),
216 .states
= (1 << SS_CLOSE
),
217 .families
= (1 << AF_NETLINK
),
221 .families
= (1 << AF_INET
) | (1 << AF_INET6
),
225 static const struct filter default_afs
[AF_MAX
] = {
240 .states
= (1 << SS_CLOSE
),
243 .dbs
= (1 << NETLINK_DB
),
244 .states
= (1 << SS_CLOSE
),
248 static int do_default
= 1;
249 static struct filter current_filter
;
251 static void filter_db_set(struct filter
*f
, int db
)
253 f
->states
|= default_dbs
[db
].states
;
258 static void filter_af_set(struct filter
*f
, int af
)
260 f
->states
|= default_afs
[af
].states
;
261 f
->families
|= 1 << af
;
263 preferred_family
= af
;
266 static int filter_af_get(struct filter
*f
, int af
)
268 return f
->families
& (1 << af
);
271 static void filter_default_dbs(struct filter
*f
)
273 filter_db_set(f
, UDP_DB
);
274 filter_db_set(f
, DCCP_DB
);
275 filter_db_set(f
, TCP_DB
);
276 filter_db_set(f
, RAW_DB
);
277 filter_db_set(f
, UNIX_ST_DB
);
278 filter_db_set(f
, UNIX_DG_DB
);
279 filter_db_set(f
, UNIX_SQ_DB
);
280 filter_db_set(f
, PACKET_R_DB
);
281 filter_db_set(f
, PACKET_DG_DB
);
282 filter_db_set(f
, NETLINK_DB
);
283 filter_db_set(f
, SCTP_DB
);
286 static void filter_states_set(struct filter
*f
, int states
)
292 static void filter_merge_defaults(struct filter
*f
)
297 for (db
= 0; db
< MAX_DB
; db
++) {
298 if (!(f
->dbs
& (1 << db
)))
301 if (!(default_dbs
[db
].families
& f
->families
))
302 f
->families
|= default_dbs
[db
].families
;
304 for (af
= 0; af
< AF_MAX
; af
++) {
305 if (!(f
->families
& (1 << af
)))
308 if (!(default_afs
[af
].dbs
& f
->dbs
))
309 f
->dbs
|= default_afs
[af
].dbs
;
313 static FILE *generic_proc_open(const char *env
, const char *name
)
315 const char *p
= getenv(env
);
319 p
= getenv("PROC_ROOT") ? : "/proc";
320 snprintf(store
, sizeof(store
)-1, "%s/%s", p
, name
);
324 return fopen(p
, "r");
326 #define net_tcp_open() generic_proc_open("PROC_NET_TCP", "net/tcp")
327 #define net_tcp6_open() generic_proc_open("PROC_NET_TCP6", "net/tcp6")
328 #define net_udp_open() generic_proc_open("PROC_NET_UDP", "net/udp")
329 #define net_udp6_open() generic_proc_open("PROC_NET_UDP6", "net/udp6")
330 #define net_raw_open() generic_proc_open("PROC_NET_RAW", "net/raw")
331 #define net_raw6_open() generic_proc_open("PROC_NET_RAW6", "net/raw6")
332 #define net_unix_open() generic_proc_open("PROC_NET_UNIX", "net/unix")
333 #define net_packet_open() generic_proc_open("PROC_NET_PACKET", \
335 #define net_netlink_open() generic_proc_open("PROC_NET_NETLINK", \
337 #define slabinfo_open() generic_proc_open("PROC_SLABINFO", "slabinfo")
338 #define net_sockstat_open() generic_proc_open("PROC_NET_SOCKSTAT", \
340 #define net_sockstat6_open() generic_proc_open("PROC_NET_SOCKSTAT6", \
342 #define net_snmp_open() generic_proc_open("PROC_NET_SNMP", "net/snmp")
343 #define ephemeral_ports_open() generic_proc_open("PROC_IP_LOCAL_PORT_RANGE", \
344 "sys/net/ipv4/ip_local_port_range")
347 struct user_ent
*next
;
356 #define USER_ENT_HASH_SIZE 256
357 struct user_ent
*user_ent_hash
[USER_ENT_HASH_SIZE
];
359 static int user_ent_hashfn(unsigned int ino
)
361 int val
= (ino
>> 24) ^ (ino
>> 16) ^ (ino
>> 8) ^ ino
;
363 return val
& (USER_ENT_HASH_SIZE
- 1);
366 static void user_ent_add(unsigned int ino
, char *process
,
371 struct user_ent
*p
, **pp
;
373 p
= malloc(sizeof(struct user_ent
));
375 fprintf(stderr
, "ss: failed to malloc buffer\n");
382 p
->process
= strdup(process
);
383 p
->process_ctx
= strdup(proc_ctx
);
384 p
->socket_ctx
= strdup(sock_ctx
);
386 pp
= &user_ent_hash
[user_ent_hashfn(ino
)];
391 static void user_ent_destroy(void)
393 struct user_ent
*p
, *p_next
;
396 while (cnt
!= USER_ENT_HASH_SIZE
) {
397 p
= user_ent_hash
[cnt
];
400 free(p
->process_ctx
);
410 static void user_ent_hash_build(void)
412 const char *root
= getenv("PROC_ROOT") ? : "/proc/";
419 const char *no_ctx
= "unavailable";
420 static int user_ent_hash_build_init
;
422 /* If show_users & show_proc_ctx set only do this once */
423 if (user_ent_hash_build_init
!= 0)
426 user_ent_hash_build_init
= 1;
428 strncpy(name
, root
, sizeof(name
)-1);
429 name
[sizeof(name
)-1] = 0;
431 if (strlen(name
) == 0 || name
[strlen(name
)-1] != '/')
434 nameoff
= strlen(name
);
440 while ((d
= readdir(dir
)) != NULL
) {
448 if (sscanf(d
->d_name
, "%d%c", &pid
, &crap
) != 1)
451 if (getpidcon(pid
, &pid_context
) != 0)
452 pid_context
= strdup(no_ctx
);
454 snprintf(name
+ nameoff
, sizeof(name
) - nameoff
, "%d/fd/", pid
);
456 if ((dir1
= opendir(name
)) == NULL
) {
464 while ((d1
= readdir(dir1
)) != NULL
) {
465 const char *pattern
= "socket:[";
472 if (sscanf(d1
->d_name
, "%d%c", &fd
, &crap
) != 1)
475 snprintf(name
+pos
, sizeof(name
) - pos
, "%d", fd
);
477 link_len
= readlink(name
, lnk
, sizeof(lnk
)-1);
480 lnk
[link_len
] = '\0';
482 if (strncmp(lnk
, pattern
, strlen(pattern
)))
485 sscanf(lnk
, "socket:[%u]", &ino
);
487 snprintf(tmp
, sizeof(tmp
), "%s/%d/fd/%s",
488 root
, pid
, d1
->d_name
);
490 if (getfilecon(tmp
, &sock_context
) <= 0)
491 sock_context
= strdup(no_ctx
);
496 snprintf(tmp
, sizeof(tmp
), "%s/%d/stat",
498 if ((fp
= fopen(tmp
, "r")) != NULL
) {
499 if (fscanf(fp
, "%*d (%[^)])", p
) < 1)
504 user_ent_add(ino
, p
, pid
, fd
,
505 pid_context
, sock_context
);
520 #define ENTRY_BUF_SIZE 512
521 static int find_entry(unsigned int ino
, char **buf
, int type
)
527 int len
, new_buf_len
;
534 p
= user_ent_hash
[user_ent_hashfn(ino
)];
541 ptr
= *buf
+ buf_used
;
544 len
= snprintf(ptr
, buf_len
- buf_used
,
545 "(\"%s\",pid=%d,fd=%d),",
546 p
->process
, p
->pid
, p
->fd
);
549 len
= snprintf(ptr
, buf_len
- buf_used
,
550 "(\"%s\",pid=%d,proc_ctx=%s,fd=%d),",
552 p
->process_ctx
, p
->fd
);
555 len
= snprintf(ptr
, buf_len
- buf_used
,
556 "(\"%s\",pid=%d,proc_ctx=%s,fd=%d,sock_ctx=%s),",
558 p
->process_ctx
, p
->fd
,
562 fprintf(stderr
, "ss: invalid type: %d\n", type
);
566 if (len
< 0 || len
>= buf_len
- buf_used
) {
567 new_buf_len
= buf_len
+ ENTRY_BUF_SIZE
;
568 new_buf
= realloc(*buf
, new_buf_len
);
570 fprintf(stderr
, "ss: failed to malloc buffer\n");
574 buf_len
= new_buf_len
;
586 ptr
= *buf
+ buf_used
;
592 /* Get stats from slab */
602 static struct slabstat slabstat
;
604 static int get_slabstat(struct slabstat
*s
)
609 static int slabstat_valid
;
610 static const char * const slabstat_ids
[] = {
621 memset(s
, 0, sizeof(*s
));
623 fp
= slabinfo_open();
627 cnt
= sizeof(*s
)/sizeof(int);
629 if (!fgets(buf
, sizeof(buf
), fp
)) {
633 while (fgets(buf
, sizeof(buf
), fp
) != NULL
) {
636 for (i
= 0; i
< ARRAY_SIZE(slabstat_ids
); i
++) {
637 if (memcmp(buf
, slabstat_ids
[i
], strlen(slabstat_ids
[i
])) == 0) {
638 sscanf(buf
, "%*s%d", ((int *)s
) + i
);
653 static unsigned long long cookie_sk_get(const uint32_t *cookie
)
655 return (((unsigned long long)cookie
[1] << 31) << 1) | cookie
[0];
658 static const char *sctp_sstate_name
[] = {
659 [SCTP_STATE_CLOSED
] = "CLOSED",
660 [SCTP_STATE_COOKIE_WAIT
] = "COOKIE_WAIT",
661 [SCTP_STATE_COOKIE_ECHOED
] = "COOKIE_ECHOED",
662 [SCTP_STATE_ESTABLISHED
] = "ESTAB",
663 [SCTP_STATE_SHUTDOWN_PENDING
] = "SHUTDOWN_PENDING",
664 [SCTP_STATE_SHUTDOWN_SENT
] = "SHUTDOWN_SENT",
665 [SCTP_STATE_SHUTDOWN_RECEIVED
] = "SHUTDOWN_RECEIVED",
666 [SCTP_STATE_SHUTDOWN_ACK_SENT
] = "ACK_SENT",
670 struct sockstat
*next
;
684 unsigned long long sk
;
691 unsigned int ce_state
;
701 unsigned int timeout
;
704 double rto
, ato
, rtt
, rttvar
;
705 int qack
, ssthresh
, backoff
;
713 unsigned int lastsnd
;
714 unsigned int lastrcv
;
715 unsigned int lastack
;
717 double pacing_rate_max
;
718 double delivery_rate
;
719 unsigned long long bytes_acked
;
720 unsigned long long bytes_received
;
721 unsigned int segs_out
;
722 unsigned int segs_in
;
723 unsigned int data_segs_out
;
724 unsigned int data_segs_in
;
725 unsigned int unacked
;
726 unsigned int retrans
;
727 unsigned int retrans_total
;
730 unsigned int fackets
;
731 unsigned int reordering
;
732 unsigned int not_sent
;
736 unsigned long long busy_time
;
737 unsigned long long rwnd_limited
;
738 unsigned long long sndbuf_limited
;
742 bool has_ecnseen_opt
;
743 bool has_fastopen_opt
;
746 struct dctcpstat
*dctcp
;
747 struct tcp_bbr_info
*bbr_info
;
750 /* SCTP assocs share the same inode number with their parent endpoint. So if we
751 * have seen the inode number before, it must be an assoc instead of the next
753 static bool is_sctp_assoc(struct sockstat
*s
, const char *sock_name
)
755 if (strcmp(sock_name
, "sctp"))
757 if (!sctp_ino
|| sctp_ino
!= s
->ino
)
762 static const char *unix_netid_name(int type
)
775 static const char *proto_name(int protocol
)
793 static void sock_state_print(struct sockstat
*s
)
795 const char *sock_name
;
796 static const char * const sstate_name
[] = {
798 [SS_ESTABLISHED
] = "ESTAB",
799 [SS_SYN_SENT
] = "SYN-SENT",
800 [SS_SYN_RECV
] = "SYN-RECV",
801 [SS_FIN_WAIT1
] = "FIN-WAIT-1",
802 [SS_FIN_WAIT2
] = "FIN-WAIT-2",
803 [SS_TIME_WAIT
] = "TIME-WAIT",
804 [SS_CLOSE
] = "UNCONN",
805 [SS_CLOSE_WAIT
] = "CLOSE-WAIT",
806 [SS_LAST_ACK
] = "LAST-ACK",
807 [SS_LISTEN
] = "LISTEN",
808 [SS_CLOSING
] = "CLOSING",
811 switch (s
->local
.family
) {
813 sock_name
= unix_netid_name(s
->type
);
817 sock_name
= proto_name(s
->type
);
820 sock_name
= s
->type
== SOCK_RAW
? "p_raw" : "p_dgr";
826 sock_name
= "unknown";
830 printf("%-*s ", netid_width
,
831 is_sctp_assoc(s
, sock_name
) ? "" : sock_name
);
833 if (is_sctp_assoc(s
, sock_name
))
834 printf("`- %-*s ", state_width
- 3,
835 sctp_sstate_name
[s
->state
]);
837 printf("%-*s ", state_width
, sstate_name
[s
->state
]);
840 printf("%-6d %-6d ", s
->rq
, s
->wq
);
843 static void sock_details_print(struct sockstat
*s
)
846 printf(" uid:%u", s
->uid
);
848 printf(" ino:%u", s
->ino
);
849 printf(" sk:%llx", s
->sk
);
852 printf(" fwmark:0x%x", s
->mark
);
855 static void sock_addr_print_width(int addr_len
, const char *addr
, char *delim
,
856 int port_len
, const char *port
, const char *ifname
)
859 printf("%*s%%%s%s%-*s ", addr_len
, addr
, ifname
, delim
,
862 printf("%*s%s%-*s ", addr_len
, addr
, delim
, port_len
, port
);
866 static void sock_addr_print(const char *addr
, char *delim
, const char *port
,
869 sock_addr_print_width(addr_width
, addr
, delim
, serv_width
, port
, ifname
);
872 static const char *print_ms_timer(unsigned int timeout
)
875 int secs
, msecs
, minutes
;
880 msecs
= timeout
%1000;
884 snprintf(buf
, sizeof(buf
)-16, "%dmin", minutes
);
891 sprintf(buf
+strlen(buf
), "%d%s", secs
, msecs
? "." : "sec");
894 sprintf(buf
+strlen(buf
), "%03dms", msecs
);
905 struct scache
*rlist
;
907 static void init_service_resolver(void)
910 FILE *fp
= popen("/usr/sbin/rpcinfo -p 2>/dev/null", "r");
915 if (!fgets(buf
, sizeof(buf
), fp
)) {
919 while (fgets(buf
, sizeof(buf
), fp
) != NULL
) {
920 unsigned int progn
, port
;
921 char proto
[128], prog
[128] = "rpc.";
924 if (sscanf(buf
, "%u %*d %s %u %s",
925 &progn
, proto
, &port
, prog
+4) != 4)
928 if (!(c
= malloc(sizeof(*c
))))
932 c
->name
= strdup(prog
);
933 if (strcmp(proto
, TCP_PROTO
) == 0)
934 c
->proto
= TCP_PROTO
;
935 else if (strcmp(proto
, UDP_PROTO
) == 0)
936 c
->proto
= UDP_PROTO
;
937 else if (strcmp(proto
, SCTP_PROTO
) == 0)
938 c
->proto
= SCTP_PROTO
;
947 /* Even do not try default linux ephemeral port ranges:
948 * default /etc/services contains so much of useless crap
949 * wouldbe "allocated" to this area that resolution
950 * is really harmful. I shrug each time when seeing
951 * "socks" or "cfinger" in dumps.
953 static int is_ephemeral(int port
)
955 static int min
= 0, max
;
958 FILE *f
= ephemeral_ports_open();
960 if (!f
|| fscanf(f
, "%d %d", &min
, &max
) < 2) {
967 return port
>= min
&& port
<= max
;
971 static const char *__resolve_service(int port
)
975 for (c
= rlist
; c
; c
= c
->next
) {
976 if (c
->port
== port
&& c
->proto
== dg_proto
)
980 if (!is_ephemeral(port
)) {
988 se
= getservbyport(htons(port
), dg_proto
);
996 #define SCACHE_BUCKETS 1024
997 static struct scache
*cache_htab
[SCACHE_BUCKETS
];
999 static const char *resolve_service(int port
)
1001 static char buf
[128];
1012 if (!resolve_services
)
1015 if (dg_proto
== RAW_PROTO
)
1016 return inet_proto_n2a(port
, buf
, sizeof(buf
));
1019 hash
= (port
^(((unsigned long)dg_proto
)>>2)) % SCACHE_BUCKETS
;
1021 for (c
= cache_htab
[hash
]; c
; c
= c
->next
) {
1022 if (c
->port
== port
&& c
->proto
== dg_proto
)
1026 c
= malloc(sizeof(*c
));
1029 res
= __resolve_service(port
);
1031 c
->name
= res
? strdup(res
) : NULL
;
1032 c
->proto
= dg_proto
;
1033 c
->next
= cache_htab
[hash
];
1034 cache_htab
[hash
] = c
;
1041 sprintf(buf
, "%u", port
);
1045 static void inet_addr_print(const inet_prefix
*a
, int port
, unsigned int ifindex
)
1048 const char *ap
= buf
;
1049 int est_len
= addr_width
;
1050 const char *ifname
= NULL
;
1052 if (a
->family
== AF_INET
) {
1053 if (a
->data
[0] == 0) {
1057 ap
= format_host(AF_INET
, 4, a
->data
);
1060 if (!memcmp(a
->data
, &in6addr_any
, sizeof(in6addr_any
))) {
1064 ap
= format_host(a
->family
, 16, a
->data
);
1066 /* Numeric IPv6 addresses should be bracketed */
1067 if (strchr(ap
, ':')) {
1068 snprintf(buf
, sizeof(buf
),
1073 est_len
= strlen(ap
);
1074 if (est_len
<= addr_width
)
1075 est_len
= addr_width
;
1077 est_len
= addr_width
+ ((est_len
-addr_width
+3)/4)*4;
1082 ifname
= ll_index_to_name(ifindex
);
1083 est_len
-= strlen(ifname
) + 1; /* +1 for percent char */
1088 sock_addr_print_width(est_len
, ap
, ":", serv_width
, resolve_service(port
),
1098 struct aafilter
*next
;
1101 static int inet2_addr_match(const inet_prefix
*a
, const inet_prefix
*p
,
1104 if (!inet_addr_match(a
, p
, plen
))
1107 /* Cursed "v4 mapped" addresses: v4 mapped socket matches
1108 * pure IPv4 rule, but v4-mapped rule selects only v4-mapped
1110 if (p
->family
== AF_INET
&& a
->family
== AF_INET6
) {
1111 if (a
->data
[0] == 0 && a
->data
[1] == 0 &&
1112 a
->data
[2] == htonl(0xffff)) {
1113 inet_prefix tmp
= *a
;
1115 tmp
.data
[0] = a
->data
[3];
1116 return inet_addr_match(&tmp
, p
, plen
);
1122 static int unix_match(const inet_prefix
*a
, const inet_prefix
*p
)
1124 char *addr
, *pattern
;
1126 memcpy(&addr
, a
->data
, sizeof(addr
));
1127 memcpy(&pattern
, p
->data
, sizeof(pattern
));
1128 if (pattern
== NULL
)
1132 return !fnmatch(pattern
, addr
, 0);
1135 static int run_ssfilter(struct ssfilter
*f
, struct sockstat
*s
)
1140 if (s
->local
.family
== AF_UNIX
) {
1143 memcpy(&p
, s
->local
.data
, sizeof(p
));
1144 return p
== NULL
|| (p
[0] == '@' && strlen(p
) == 6 &&
1145 strspn(p
+1, "0123456789abcdef") == 5);
1147 if (s
->local
.family
== AF_PACKET
)
1148 return s
->lport
== 0 && s
->local
.data
[0] == 0;
1149 if (s
->local
.family
== AF_NETLINK
)
1150 return s
->lport
< 0;
1152 return is_ephemeral(s
->lport
);
1156 struct aafilter
*a
= (void *)f
->pred
;
1158 if (a
->addr
.family
== AF_UNIX
)
1159 return unix_match(&s
->remote
, &a
->addr
);
1160 if (a
->port
!= -1 && a
->port
!= s
->rport
)
1162 if (a
->addr
.bitlen
) {
1164 if (!inet2_addr_match(&s
->remote
, &a
->addr
, a
->addr
.bitlen
))
1166 } while ((a
= a
->next
) != NULL
);
1173 struct aafilter
*a
= (void *)f
->pred
;
1175 if (a
->addr
.family
== AF_UNIX
)
1176 return unix_match(&s
->local
, &a
->addr
);
1177 if (a
->port
!= -1 && a
->port
!= s
->lport
)
1179 if (a
->addr
.bitlen
) {
1181 if (!inet2_addr_match(&s
->local
, &a
->addr
, a
->addr
.bitlen
))
1183 } while ((a
= a
->next
) != NULL
);
1190 struct aafilter
*a
= (void *)f
->pred
;
1192 return s
->rport
>= a
->port
;
1196 struct aafilter
*a
= (void *)f
->pred
;
1198 return s
->rport
<= a
->port
;
1202 struct aafilter
*a
= (void *)f
->pred
;
1204 return s
->lport
>= a
->port
;
1208 struct aafilter
*a
= (void *)f
->pred
;
1210 return s
->lport
<= a
->port
;
1214 struct aafilter
*a
= (void *)f
->pred
;
1216 return s
->iface
== a
->iface
;
1220 struct aafilter
*a
= (void *)f
->pred
;
1222 return (s
->mark
& a
->mask
) == a
->mark
;
1224 /* Yup. It is recursion. Sorry. */
1226 return run_ssfilter(f
->pred
, s
) && run_ssfilter(f
->post
, s
);
1228 return run_ssfilter(f
->pred
, s
) || run_ssfilter(f
->post
, s
);
1230 return !run_ssfilter(f
->pred
, s
);
1236 /* Relocate external jumps by reloc. */
1237 static void ssfilter_patch(char *a
, int len
, int reloc
)
1240 struct inet_diag_bc_op
*op
= (struct inet_diag_bc_op
*)a
;
1242 if (op
->no
== len
+4)
1251 static int ssfilter_bytecompile(struct ssfilter
*f
, char **bytecode
)
1256 if (!(*bytecode
= malloc(4))) abort();
1257 ((struct inet_diag_bc_op
*)*bytecode
)[0] = (struct inet_diag_bc_op
){ INET_DIAG_BC_AUTO
, 4, 8 };
1263 struct aafilter
*a
= (void *)f
->pred
;
1266 int code
= (f
->type
== SSF_DCOND
? INET_DIAG_BC_D_COND
: INET_DIAG_BC_S_COND
);
1269 for (b
= a
; b
; b
= b
->next
) {
1270 len
+= 4 + sizeof(struct inet_diag_hostcond
);
1271 if (a
->addr
.family
== AF_INET6
)
1278 if (!(ptr
= malloc(len
))) abort();
1280 for (b
= a
; b
; b
= b
->next
) {
1281 struct inet_diag_bc_op
*op
= (struct inet_diag_bc_op
*)ptr
;
1282 int alen
= (a
->addr
.family
== AF_INET6
? 16 : 4);
1283 int oplen
= alen
+ 4 + sizeof(struct inet_diag_hostcond
);
1284 struct inet_diag_hostcond
*cond
= (struct inet_diag_hostcond
*)(ptr
+4);
1286 *op
= (struct inet_diag_bc_op
){ code
, oplen
, oplen
+4 };
1287 cond
->family
= a
->addr
.family
;
1288 cond
->port
= a
->port
;
1289 cond
->prefix_len
= a
->addr
.bitlen
;
1290 memcpy(cond
->addr
, a
->addr
.data
, alen
);
1293 op
= (struct inet_diag_bc_op
*)ptr
;
1294 *op
= (struct inet_diag_bc_op
){ INET_DIAG_BC_JMP
, 4, len
- (ptr
-*bytecode
)};
1298 return ptr
- *bytecode
;
1302 struct aafilter
*x
= (void *)f
->pred
;
1304 if (!(*bytecode
= malloc(8))) abort();
1305 ((struct inet_diag_bc_op
*)*bytecode
)[0] = (struct inet_diag_bc_op
){ INET_DIAG_BC_D_GE
, 8, 12 };
1306 ((struct inet_diag_bc_op
*)*bytecode
)[1] = (struct inet_diag_bc_op
){ 0, 0, x
->port
};
1311 struct aafilter
*x
= (void *)f
->pred
;
1313 if (!(*bytecode
= malloc(8))) abort();
1314 ((struct inet_diag_bc_op
*)*bytecode
)[0] = (struct inet_diag_bc_op
){ INET_DIAG_BC_D_LE
, 8, 12 };
1315 ((struct inet_diag_bc_op
*)*bytecode
)[1] = (struct inet_diag_bc_op
){ 0, 0, x
->port
};
1320 struct aafilter
*x
= (void *)f
->pred
;
1322 if (!(*bytecode
= malloc(8))) abort();
1323 ((struct inet_diag_bc_op
*)*bytecode
)[0] = (struct inet_diag_bc_op
){ INET_DIAG_BC_S_GE
, 8, 12 };
1324 ((struct inet_diag_bc_op
*)*bytecode
)[1] = (struct inet_diag_bc_op
){ 0, 0, x
->port
};
1329 struct aafilter
*x
= (void *)f
->pred
;
1331 if (!(*bytecode
= malloc(8))) abort();
1332 ((struct inet_diag_bc_op
*)*bytecode
)[0] = (struct inet_diag_bc_op
){ INET_DIAG_BC_S_LE
, 8, 12 };
1333 ((struct inet_diag_bc_op
*)*bytecode
)[1] = (struct inet_diag_bc_op
){ 0, 0, x
->port
};
1339 char *a1
= NULL
, *a2
= NULL
, *a
;
1342 l1
= ssfilter_bytecompile(f
->pred
, &a1
);
1343 l2
= ssfilter_bytecompile(f
->post
, &a2
);
1349 if (!(a
= malloc(l1
+l2
))) abort();
1351 memcpy(a
+l1
, a2
, l2
);
1353 ssfilter_patch(a
, l1
, l2
);
1359 char *a1
= NULL
, *a2
= NULL
, *a
;
1362 l1
= ssfilter_bytecompile(f
->pred
, &a1
);
1363 l2
= ssfilter_bytecompile(f
->post
, &a2
);
1369 if (!(a
= malloc(l1
+l2
+4))) abort();
1371 memcpy(a
+l1
+4, a2
, l2
);
1373 *(struct inet_diag_bc_op
*)(a
+l1
) = (struct inet_diag_bc_op
){ INET_DIAG_BC_JMP
, 4, l2
+4 };
1379 char *a1
= NULL
, *a
;
1382 l1
= ssfilter_bytecompile(f
->pred
, &a1
);
1387 if (!(a
= malloc(l1
+4))) abort();
1390 *(struct inet_diag_bc_op
*)(a
+l1
) = (struct inet_diag_bc_op
){ INET_DIAG_BC_JMP
, 4, 8 };
1396 /* bytecompile for SSF_DEVCOND not supported yet */
1401 struct aafilter
*a
= (void *)f
->pred
;
1403 struct inet_diag_bc_op op
;
1404 struct inet_diag_markcond cond
;
1406 int inslen
= sizeof(struct instr
);
1408 if (!(*bytecode
= malloc(inslen
))) abort();
1409 ((struct instr
*)*bytecode
)[0] = (struct instr
) {
1410 { INET_DIAG_BC_MARK_COND
, inslen
, inslen
+ 4 },
1411 { a
->mark
, a
->mask
},
1421 static int remember_he(struct aafilter
*a
, struct hostent
*he
)
1423 char **ptr
= he
->h_addr_list
;
1427 if (he
->h_addrtype
== AF_INET
)
1429 else if (he
->h_addrtype
== AF_INET6
)
1435 struct aafilter
*b
= a
;
1437 if (a
->addr
.bitlen
) {
1438 if ((b
= malloc(sizeof(*b
))) == NULL
)
1443 memcpy(b
->addr
.data
, *ptr
, len
);
1444 b
->addr
.bytelen
= len
;
1445 b
->addr
.bitlen
= len
*8;
1446 b
->addr
.family
= he
->h_addrtype
;
1453 static int get_dns_host(struct aafilter
*a
, const char *addr
, int fam
)
1455 static int notfirst
;
1464 he
= gethostbyname2(addr
, fam
== AF_UNSPEC
? AF_INET
: fam
);
1466 cnt
= remember_he(a
, he
);
1467 if (fam
== AF_UNSPEC
) {
1468 he
= gethostbyname2(addr
, AF_INET6
);
1470 cnt
+= remember_he(a
, he
);
1475 static int xll_initted
;
1477 static void xll_init(void)
1479 struct rtnl_handle rth
;
1481 if (rtnl_open(&rth
, 0) < 0)
1489 static const char *xll_index_to_name(int index
)
1493 return ll_index_to_name(index
);
1496 static int xll_name_to_index(const char *dev
)
1500 return ll_name_to_index(dev
);
1503 void *parse_devcond(char *name
)
1505 struct aafilter a
= { .iface
= 0 };
1506 struct aafilter
*res
;
1508 a
.iface
= xll_name_to_index(name
);
1513 n
= strtoul(name
, &end
, 0);
1514 if (!end
|| end
== name
|| *end
|| n
> UINT_MAX
)
1520 res
= malloc(sizeof(*res
));
1526 void *parse_hostcond(char *addr
, bool is_port
)
1529 struct aafilter a
= { .port
= -1 };
1530 struct aafilter
*res
;
1531 int fam
= preferred_family
;
1532 struct filter
*f
= ¤t_filter
;
1534 if (fam
== AF_UNIX
|| strncmp(addr
, "unix:", 5) == 0) {
1537 a
.addr
.family
= AF_UNIX
;
1538 if (strncmp(addr
, "unix:", 5) == 0)
1541 a
.addr
.bitlen
= 8*strlen(p
);
1542 memcpy(a
.addr
.data
, &p
, sizeof(p
));
1547 if (fam
== AF_PACKET
|| strncmp(addr
, "link:", 5) == 0) {
1548 a
.addr
.family
= AF_PACKET
;
1550 if (strncmp(addr
, "link:", 5) == 0)
1552 port
= strchr(addr
, ':');
1555 if (port
[1] && strcmp(port
+1, "*")) {
1556 if (get_integer(&a
.port
, port
+1, 0)) {
1557 if ((a
.port
= xll_name_to_index(port
+1)) <= 0)
1562 if (addr
[0] && strcmp(addr
, "*")) {
1566 if (ll_proto_a2n(&tmp
, addr
))
1568 a
.addr
.data
[0] = ntohs(tmp
);
1574 if (fam
== AF_NETLINK
|| strncmp(addr
, "netlink:", 8) == 0) {
1575 a
.addr
.family
= AF_NETLINK
;
1577 if (strncmp(addr
, "netlink:", 8) == 0)
1579 port
= strchr(addr
, ':');
1582 if (port
[1] && strcmp(port
+1, "*")) {
1583 if (get_integer(&a
.port
, port
+1, 0)) {
1584 if (strcmp(port
+1, "kernel") == 0)
1591 if (addr
[0] && strcmp(addr
, "*")) {
1593 if (nl_proto_a2n(&a
.addr
.data
[0], addr
) == -1)
1600 if (fam
== AF_INET
|| !strncmp(addr
, "inet:", 5)) {
1602 if (!strncmp(addr
, "inet:", 5))
1604 } else if (fam
== AF_INET6
|| !strncmp(addr
, "inet6:", 6)) {
1606 if (!strncmp(addr
, "inet6:", 6))
1610 /* URL-like literal [] */
1611 if (addr
[0] == '[') {
1613 if ((port
= strchr(addr
, ']')) == NULL
)
1616 } else if (addr
[0] == '*') {
1619 port
= strrchr(strchr(addr
, '/') ? : addr
, ':');
1625 if (port
&& *port
) {
1629 if (*port
&& *port
!= '*') {
1630 if (get_integer(&a
.port
, port
, 0)) {
1631 struct servent
*se1
= NULL
;
1632 struct servent
*se2
= NULL
;
1634 if (current_filter
.dbs
&(1<<UDP_DB
))
1635 se1
= getservbyname(port
, UDP_PROTO
);
1636 if (current_filter
.dbs
&(1<<TCP_DB
))
1637 se2
= getservbyname(port
, TCP_PROTO
);
1638 if (se1
&& se2
&& se1
->s_port
!= se2
->s_port
) {
1639 fprintf(stderr
, "Error: ambiguous port \"%s\".\n", port
);
1645 a
.port
= ntohs(se1
->s_port
);
1649 for (s
= rlist
; s
; s
= s
->next
) {
1650 if ((s
->proto
== UDP_PROTO
&&
1651 (current_filter
.dbs
&(1<<UDP_DB
))) ||
1652 (s
->proto
== TCP_PROTO
&&
1653 (current_filter
.dbs
&(1<<TCP_DB
)))) {
1654 if (s
->name
&& strcmp(s
->name
, port
) == 0) {
1655 if (a
.port
> 0 && a
.port
!= s
->port
) {
1656 fprintf(stderr
, "Error: ambiguous port \"%s\".\n", port
);
1664 fprintf(stderr
, "Error: \"%s\" does not look like a port.\n", port
);
1671 if (!is_port
&& *addr
&& *addr
!= '*') {
1672 if (get_prefix_1(&a
.addr
, addr
, fam
)) {
1673 if (get_dns_host(&a
, addr
, fam
)) {
1674 fprintf(stderr
, "Error: an inet prefix is expected rather than \"%s\".\n", addr
);
1681 if (fam
!= AF_UNSPEC
) {
1682 int states
= f
->states
;
1684 filter_af_set(f
, fam
);
1685 filter_states_set(f
, states
);
1688 res
= malloc(sizeof(*res
));
1690 memcpy(res
, &a
, sizeof(a
));
1694 void *parse_markmask(const char *markmask
)
1696 struct aafilter a
, *res
;
1698 if (strchr(markmask
, '/')) {
1699 if (sscanf(markmask
, "%i/%i", &a
.mark
, &a
.mask
) != 2)
1702 a
.mask
= 0xffffffff;
1703 if (sscanf(markmask
, "%i", &a
.mark
) != 1)
1707 res
= malloc(sizeof(*res
));
1709 memcpy(res
, &a
, sizeof(a
));
1713 static void proc_ctx_print(struct sockstat
*s
)
1717 if (show_proc_ctx
|| show_sock_ctx
) {
1718 if (find_entry(s
->ino
, &buf
,
1719 (show_proc_ctx
& show_sock_ctx
) ?
1720 PROC_SOCK_CTX
: PROC_CTX
) > 0) {
1721 printf(" users:(%s)", buf
);
1724 } else if (show_users
) {
1725 if (find_entry(s
->ino
, &buf
, USERS
) > 0) {
1726 printf(" users:(%s)", buf
);
1732 static void inet_stats_print(struct sockstat
*s
)
1734 sock_state_print(s
);
1736 inet_addr_print(&s
->local
, s
->lport
, s
->iface
);
1737 inet_addr_print(&s
->remote
, s
->rport
, 0);
1742 static int proc_parse_inet_addr(char *loc
, char *rem
, int family
, struct
1745 s
->local
.family
= s
->remote
.family
= family
;
1746 if (family
== AF_INET
) {
1747 sscanf(loc
, "%x:%x", s
->local
.data
, (unsigned *)&s
->lport
);
1748 sscanf(rem
, "%x:%x", s
->remote
.data
, (unsigned *)&s
->rport
);
1749 s
->local
.bytelen
= s
->remote
.bytelen
= 4;
1752 sscanf(loc
, "%08x%08x%08x%08x:%x",
1758 sscanf(rem
, "%08x%08x%08x%08x:%x",
1764 s
->local
.bytelen
= s
->remote
.bytelen
= 16;
1770 static int proc_inet_split_line(char *line
, char **loc
, char **rem
, char **data
)
1774 if ((p
= strchr(line
, ':')) == NULL
)
1778 if ((p
= strchr(*loc
, ':')) == NULL
)
1783 if ((p
= strchr(*rem
, ':')) == NULL
)
1791 static char *sprint_bw(char *buf
, double bw
)
1794 sprintf(buf
, "%.1fM", bw
/ 1000000.);
1795 else if (bw
> 1000.)
1796 sprintf(buf
, "%.1fK", bw
/ 1000.);
1798 sprintf(buf
, "%g", bw
);
1803 static void sctp_stats_print(struct sctp_info
*s
)
1806 printf(" tag:%x", s
->sctpi_tag
);
1808 printf(" state:%s", sctp_sstate_name
[s
->sctpi_state
]);
1810 printf(" rwnd:%d", s
->sctpi_rwnd
);
1811 if (s
->sctpi_unackdata
)
1812 printf(" unackdata:%d", s
->sctpi_unackdata
);
1813 if (s
->sctpi_penddata
)
1814 printf(" penddata:%d", s
->sctpi_penddata
);
1815 if (s
->sctpi_instrms
)
1816 printf(" instrms:%d", s
->sctpi_instrms
);
1817 if (s
->sctpi_outstrms
)
1818 printf(" outstrms:%d", s
->sctpi_outstrms
);
1819 if (s
->sctpi_inqueue
)
1820 printf(" inqueue:%d", s
->sctpi_inqueue
);
1821 if (s
->sctpi_outqueue
)
1822 printf(" outqueue:%d", s
->sctpi_outqueue
);
1823 if (s
->sctpi_overall_error
)
1824 printf(" overerr:%d", s
->sctpi_overall_error
);
1825 if (s
->sctpi_max_burst
)
1826 printf(" maxburst:%d", s
->sctpi_max_burst
);
1827 if (s
->sctpi_maxseg
)
1828 printf(" maxseg:%d", s
->sctpi_maxseg
);
1829 if (s
->sctpi_peer_rwnd
)
1830 printf(" prwnd:%d", s
->sctpi_peer_rwnd
);
1831 if (s
->sctpi_peer_tag
)
1832 printf(" ptag:%x", s
->sctpi_peer_tag
);
1833 if (s
->sctpi_peer_capable
)
1834 printf(" pcapable:%d", s
->sctpi_peer_capable
);
1835 if (s
->sctpi_peer_sack
)
1836 printf(" psack:%d", s
->sctpi_peer_sack
);
1837 if (s
->sctpi_s_autoclose
)
1838 printf(" autoclose:%d", s
->sctpi_s_autoclose
);
1839 if (s
->sctpi_s_adaptation_ind
)
1840 printf(" adapind:%d", s
->sctpi_s_adaptation_ind
);
1841 if (s
->sctpi_s_pd_point
)
1842 printf(" pdpoint:%d", s
->sctpi_s_pd_point
);
1843 if (s
->sctpi_s_nodelay
)
1844 printf(" nodealy:%d", s
->sctpi_s_nodelay
);
1845 if (s
->sctpi_s_disable_fragments
)
1846 printf(" nofrag:%d", s
->sctpi_s_disable_fragments
);
1847 if (s
->sctpi_s_v4mapped
)
1848 printf(" v4mapped:%d", s
->sctpi_s_v4mapped
);
1849 if (s
->sctpi_s_frag_interleave
)
1850 printf(" fraginl:%d", s
->sctpi_s_frag_interleave
);
1853 static void tcp_stats_print(struct tcpstat
*s
)
1859 if (s
->has_sack_opt
)
1863 if (s
->has_ecnseen_opt
)
1865 if (s
->has_fastopen_opt
)
1866 printf(" fastopen");
1868 printf(" %s", s
->cong_alg
);
1869 if (s
->has_wscale_opt
)
1870 printf(" wscale:%d,%d", s
->snd_wscale
, s
->rcv_wscale
);
1872 printf(" rto:%g", s
->rto
);
1874 printf(" backoff:%u", s
->backoff
);
1876 printf(" rtt:%g/%g", s
->rtt
, s
->rttvar
);
1878 printf(" ato:%g", s
->ato
);
1881 printf(" qack:%d", s
->qack
);
1886 printf(" mss:%d", s
->mss
);
1888 printf(" rcvmss:%d", s
->rcv_mss
);
1890 printf(" advmss:%d", s
->advmss
);
1892 printf(" cwnd:%u", s
->cwnd
);
1894 printf(" ssthresh:%d", s
->ssthresh
);
1897 printf(" bytes_acked:%llu", s
->bytes_acked
);
1898 if (s
->bytes_received
)
1899 printf(" bytes_received:%llu", s
->bytes_received
);
1901 printf(" segs_out:%u", s
->segs_out
);
1903 printf(" segs_in:%u", s
->segs_in
);
1904 if (s
->data_segs_out
)
1905 printf(" data_segs_out:%u", s
->data_segs_out
);
1906 if (s
->data_segs_in
)
1907 printf(" data_segs_in:%u", s
->data_segs_in
);
1909 if (s
->dctcp
&& s
->dctcp
->enabled
) {
1910 struct dctcpstat
*dctcp
= s
->dctcp
;
1912 printf(" dctcp:(ce_state:%u,alpha:%u,ab_ecn:%u,ab_tot:%u)",
1913 dctcp
->ce_state
, dctcp
->alpha
, dctcp
->ab_ecn
,
1915 } else if (s
->dctcp
) {
1916 printf(" dctcp:fallback_mode");
1922 bw
= s
->bbr_info
->bbr_bw_hi
;
1924 bw
|= s
->bbr_info
->bbr_bw_lo
;
1926 printf(" bbr:(bw:%sbps,mrtt:%g",
1927 sprint_bw(b1
, bw
* 8.0),
1928 (double)s
->bbr_info
->bbr_min_rtt
/ 1000.0);
1929 if (s
->bbr_info
->bbr_pacing_gain
)
1930 printf(",pacing_gain:%g",
1931 (double)s
->bbr_info
->bbr_pacing_gain
/ 256.0);
1932 if (s
->bbr_info
->bbr_cwnd_gain
)
1933 printf(",cwnd_gain:%g",
1934 (double)s
->bbr_info
->bbr_cwnd_gain
/ 256.0);
1939 printf(" send %sbps", sprint_bw(b1
, s
->send_bps
));
1941 printf(" lastsnd:%u", s
->lastsnd
);
1943 printf(" lastrcv:%u", s
->lastrcv
);
1945 printf(" lastack:%u", s
->lastack
);
1947 if (s
->pacing_rate
) {
1948 printf(" pacing_rate %sbps", sprint_bw(b1
, s
->pacing_rate
));
1949 if (s
->pacing_rate_max
)
1950 printf("/%sbps", sprint_bw(b1
,
1951 s
->pacing_rate_max
));
1954 if (s
->delivery_rate
)
1955 printf(" delivery_rate %sbps", sprint_bw(b1
, s
->delivery_rate
));
1957 printf(" app_limited");
1960 printf(" busy:%llums", s
->busy_time
/ 1000);
1961 if (s
->rwnd_limited
)
1962 printf(" rwnd_limited:%llums(%.1f%%)",
1963 s
->rwnd_limited
/ 1000,
1964 100.0 * s
->rwnd_limited
/ s
->busy_time
);
1965 if (s
->sndbuf_limited
)
1966 printf(" sndbuf_limited:%llums(%.1f%%)",
1967 s
->sndbuf_limited
/ 1000,
1968 100.0 * s
->sndbuf_limited
/ s
->busy_time
);
1972 printf(" unacked:%u", s
->unacked
);
1973 if (s
->retrans
|| s
->retrans_total
)
1974 printf(" retrans:%u/%u", s
->retrans
, s
->retrans_total
);
1976 printf(" lost:%u", s
->lost
);
1977 if (s
->sacked
&& s
->ss
.state
!= SS_LISTEN
)
1978 printf(" sacked:%u", s
->sacked
);
1980 printf(" fackets:%u", s
->fackets
);
1981 if (s
->reordering
!= 3)
1982 printf(" reordering:%d", s
->reordering
);
1984 printf(" rcv_rtt:%g", s
->rcv_rtt
);
1986 printf(" rcv_space:%d", s
->rcv_space
);
1988 printf(" notsent:%u", s
->not_sent
);
1990 printf(" minrtt:%g", s
->min_rtt
);
1993 static void tcp_timer_print(struct tcpstat
*s
)
1995 static const char * const tmr_name
[] = {
2007 printf(" timer:(%s,%s,%d)",
2009 print_ms_timer(s
->timeout
),
2014 static void sctp_timer_print(struct tcpstat
*s
)
2017 printf(" timer:(T3_RTX,%s,%d)",
2018 print_ms_timer(s
->timeout
), s
->retrans
);
2021 static int tcp_show_line(char *line
, const struct filter
*f
, int family
)
2023 int rto
= 0, ato
= 0;
2024 struct tcpstat s
= {};
2025 char *loc
, *rem
, *data
;
2028 int hz
= get_user_hz();
2030 if (proc_inet_split_line(line
, &loc
, &rem
, &data
))
2033 int state
= (data
[1] >= 'A') ? (data
[1] - 'A' + 10) : (data
[1] - '0');
2035 if (!(f
->states
& (1 << state
)))
2038 proc_parse_inet_addr(loc
, rem
, family
, &s
.ss
);
2040 if (f
->f
&& run_ssfilter(f
->f
, &s
.ss
) == 0)
2044 n
= sscanf(data
, "%x %x:%x %x:%x %x %d %d %u %d %llx %d %d %d %u %d %[^\n]\n",
2045 &s
.ss
.state
, &s
.ss
.wq
, &s
.ss
.rq
,
2046 &s
.timer
, &s
.timeout
, &s
.retrans
, &s
.ss
.uid
, &s
.probes
,
2047 &s
.ss
.ino
, &s
.ss
.refcnt
, &s
.ss
.sk
, &rto
, &ato
, &s
.qack
, &s
.cwnd
,
2060 s
.retrans
= s
.timer
!= 1 ? s
.probes
: s
.retrans
;
2061 s
.timeout
= (s
.timeout
* 1000 + hz
- 1) / hz
;
2062 s
.ato
= (double)ato
/ hz
;
2064 s
.rto
= (double)rto
;
2065 s
.ssthresh
= s
.ssthresh
== -1 ? 0 : s
.ssthresh
;
2066 s
.rto
= s
.rto
!= 3 * hz
? s
.rto
/ hz
: 0;
2067 s
.ss
.type
= IPPROTO_TCP
;
2069 inet_stats_print(&s
.ss
);
2072 tcp_timer_print(&s
);
2075 sock_details_print(&s
.ss
);
2077 printf(" opt:\"%s\"", opt
);
2081 tcp_stats_print(&s
);
2087 static int generic_record_read(FILE *fp
,
2088 int (*worker
)(char*, const struct filter
*, int),
2089 const struct filter
*f
, int fam
)
2094 if (fgets(line
, sizeof(line
), fp
) == NULL
)
2097 while (fgets(line
, sizeof(line
), fp
) != NULL
) {
2098 int n
= strlen(line
);
2100 if (n
== 0 || line
[n
-1] != '\n') {
2106 if (worker(line
, f
, fam
) < 0)
2111 return ferror(fp
) ? -1 : 0;
2114 static void print_skmeminfo(struct rtattr
*tb
[], int attrtype
)
2116 const __u32
*skmeminfo
;
2118 if (!tb
[attrtype
]) {
2119 if (attrtype
== INET_DIAG_SKMEMINFO
) {
2120 if (!tb
[INET_DIAG_MEMINFO
])
2123 const struct inet_diag_meminfo
*minfo
=
2124 RTA_DATA(tb
[INET_DIAG_MEMINFO
]);
2126 printf(" mem:(r%u,w%u,f%u,t%u)",
2135 skmeminfo
= RTA_DATA(tb
[attrtype
]);
2137 printf(" skmem:(r%u,rb%u,t%u,tb%u,f%u,w%u,o%u",
2138 skmeminfo
[SK_MEMINFO_RMEM_ALLOC
],
2139 skmeminfo
[SK_MEMINFO_RCVBUF
],
2140 skmeminfo
[SK_MEMINFO_WMEM_ALLOC
],
2141 skmeminfo
[SK_MEMINFO_SNDBUF
],
2142 skmeminfo
[SK_MEMINFO_FWD_ALLOC
],
2143 skmeminfo
[SK_MEMINFO_WMEM_QUEUED
],
2144 skmeminfo
[SK_MEMINFO_OPTMEM
]);
2146 if (RTA_PAYLOAD(tb
[attrtype
]) >=
2147 (SK_MEMINFO_BACKLOG
+ 1) * sizeof(__u32
))
2148 printf(",bl%u", skmeminfo
[SK_MEMINFO_BACKLOG
]);
2150 if (RTA_PAYLOAD(tb
[attrtype
]) >=
2151 (SK_MEMINFO_DROPS
+ 1) * sizeof(__u32
))
2152 printf(",d%u", skmeminfo
[SK_MEMINFO_DROPS
]);
2157 #define TCPI_HAS_OPT(info, opt) !!(info->tcpi_options & (opt))
2159 static void tcp_show_info(const struct nlmsghdr
*nlh
, struct inet_diag_msg
*r
,
2160 struct rtattr
*tb
[])
2163 struct tcpstat s
= {};
2165 s
.ss
.state
= r
->idiag_state
;
2167 print_skmeminfo(tb
, INET_DIAG_SKMEMINFO
);
2169 if (tb
[INET_DIAG_INFO
]) {
2170 struct tcp_info
*info
;
2171 int len
= RTA_PAYLOAD(tb
[INET_DIAG_INFO
]);
2173 /* workaround for older kernels with less fields */
2174 if (len
< sizeof(*info
)) {
2175 info
= alloca(sizeof(*info
));
2176 memcpy(info
, RTA_DATA(tb
[INET_DIAG_INFO
]), len
);
2177 memset((char *)info
+ len
, 0, sizeof(*info
) - len
);
2179 info
= RTA_DATA(tb
[INET_DIAG_INFO
]);
2182 s
.has_ts_opt
= TCPI_HAS_OPT(info
, TCPI_OPT_TIMESTAMPS
);
2183 s
.has_sack_opt
= TCPI_HAS_OPT(info
, TCPI_OPT_SACK
);
2184 s
.has_ecn_opt
= TCPI_HAS_OPT(info
, TCPI_OPT_ECN
);
2185 s
.has_ecnseen_opt
= TCPI_HAS_OPT(info
, TCPI_OPT_ECN_SEEN
);
2186 s
.has_fastopen_opt
= TCPI_HAS_OPT(info
, TCPI_OPT_SYN_DATA
);
2189 if (tb
[INET_DIAG_CONG
])
2191 rta_getattr_str(tb
[INET_DIAG_CONG
]),
2192 sizeof(s
.cong_alg
) - 1);
2194 if (TCPI_HAS_OPT(info
, TCPI_OPT_WSCALE
)) {
2195 s
.has_wscale_opt
= true;
2196 s
.snd_wscale
= info
->tcpi_snd_wscale
;
2197 s
.rcv_wscale
= info
->tcpi_rcv_wscale
;
2200 if (info
->tcpi_rto
&& info
->tcpi_rto
!= 3000000)
2201 s
.rto
= (double)info
->tcpi_rto
/ 1000;
2203 s
.backoff
= info
->tcpi_backoff
;
2204 s
.rtt
= (double)info
->tcpi_rtt
/ 1000;
2205 s
.rttvar
= (double)info
->tcpi_rttvar
/ 1000;
2206 s
.ato
= (double)info
->tcpi_ato
/ 1000;
2207 s
.mss
= info
->tcpi_snd_mss
;
2208 s
.rcv_mss
= info
->tcpi_rcv_mss
;
2209 s
.advmss
= info
->tcpi_advmss
;
2210 s
.rcv_space
= info
->tcpi_rcv_space
;
2211 s
.rcv_rtt
= (double)info
->tcpi_rcv_rtt
/ 1000;
2212 s
.lastsnd
= info
->tcpi_last_data_sent
;
2213 s
.lastrcv
= info
->tcpi_last_data_recv
;
2214 s
.lastack
= info
->tcpi_last_ack_recv
;
2215 s
.unacked
= info
->tcpi_unacked
;
2216 s
.retrans
= info
->tcpi_retrans
;
2217 s
.retrans_total
= info
->tcpi_total_retrans
;
2218 s
.lost
= info
->tcpi_lost
;
2219 s
.sacked
= info
->tcpi_sacked
;
2220 s
.reordering
= info
->tcpi_reordering
;
2221 s
.rcv_space
= info
->tcpi_rcv_space
;
2222 s
.cwnd
= info
->tcpi_snd_cwnd
;
2224 if (info
->tcpi_snd_ssthresh
< 0xFFFF)
2225 s
.ssthresh
= info
->tcpi_snd_ssthresh
;
2227 rtt
= (double) info
->tcpi_rtt
;
2228 if (tb
[INET_DIAG_VEGASINFO
]) {
2229 const struct tcpvegas_info
*vinfo
2230 = RTA_DATA(tb
[INET_DIAG_VEGASINFO
]);
2232 if (vinfo
->tcpv_enabled
&&
2233 vinfo
->tcpv_rtt
&& vinfo
->tcpv_rtt
!= 0x7fffffff)
2234 rtt
= vinfo
->tcpv_rtt
;
2237 if (tb
[INET_DIAG_DCTCPINFO
]) {
2238 struct dctcpstat
*dctcp
= malloc(sizeof(struct
2241 const struct tcp_dctcp_info
*dinfo
2242 = RTA_DATA(tb
[INET_DIAG_DCTCPINFO
]);
2244 dctcp
->enabled
= !!dinfo
->dctcp_enabled
;
2245 dctcp
->ce_state
= dinfo
->dctcp_ce_state
;
2246 dctcp
->alpha
= dinfo
->dctcp_alpha
;
2247 dctcp
->ab_ecn
= dinfo
->dctcp_ab_ecn
;
2248 dctcp
->ab_tot
= dinfo
->dctcp_ab_tot
;
2252 if (tb
[INET_DIAG_BBRINFO
]) {
2253 const void *bbr_info
= RTA_DATA(tb
[INET_DIAG_BBRINFO
]);
2254 int len
= min(RTA_PAYLOAD(tb
[INET_DIAG_BBRINFO
]),
2255 sizeof(*s
.bbr_info
));
2257 s
.bbr_info
= calloc(1, sizeof(*s
.bbr_info
));
2258 if (s
.bbr_info
&& bbr_info
)
2259 memcpy(s
.bbr_info
, bbr_info
, len
);
2262 if (rtt
> 0 && info
->tcpi_snd_mss
&& info
->tcpi_snd_cwnd
) {
2263 s
.send_bps
= (double) info
->tcpi_snd_cwnd
*
2264 (double)info
->tcpi_snd_mss
* 8000000. / rtt
;
2267 if (info
->tcpi_pacing_rate
&&
2268 info
->tcpi_pacing_rate
!= ~0ULL) {
2269 s
.pacing_rate
= info
->tcpi_pacing_rate
* 8.;
2271 if (info
->tcpi_max_pacing_rate
&&
2272 info
->tcpi_max_pacing_rate
!= ~0ULL)
2273 s
.pacing_rate_max
= info
->tcpi_max_pacing_rate
* 8.;
2275 s
.bytes_acked
= info
->tcpi_bytes_acked
;
2276 s
.bytes_received
= info
->tcpi_bytes_received
;
2277 s
.segs_out
= info
->tcpi_segs_out
;
2278 s
.segs_in
= info
->tcpi_segs_in
;
2279 s
.data_segs_out
= info
->tcpi_data_segs_out
;
2280 s
.data_segs_in
= info
->tcpi_data_segs_in
;
2281 s
.not_sent
= info
->tcpi_notsent_bytes
;
2282 if (info
->tcpi_min_rtt
&& info
->tcpi_min_rtt
!= ~0U)
2283 s
.min_rtt
= (double) info
->tcpi_min_rtt
/ 1000;
2284 s
.delivery_rate
= info
->tcpi_delivery_rate
* 8.;
2285 s
.app_limited
= info
->tcpi_delivery_rate_app_limited
;
2286 s
.busy_time
= info
->tcpi_busy_time
;
2287 s
.rwnd_limited
= info
->tcpi_rwnd_limited
;
2288 s
.sndbuf_limited
= info
->tcpi_sndbuf_limited
;
2289 tcp_stats_print(&s
);
2295 static const char *format_host_sa(struct sockaddr_storage
*sa
)
2298 struct sockaddr_in sin
;
2299 struct sockaddr_in6 sin6
;
2300 } *saddr
= (void *)sa
;
2302 switch (sa
->ss_family
) {
2304 return format_host(AF_INET
, 4, &saddr
->sin
.sin_addr
);
2306 return format_host(AF_INET6
, 16, &saddr
->sin6
.sin6_addr
);
2312 static void sctp_show_info(const struct nlmsghdr
*nlh
, struct inet_diag_msg
*r
,
2313 struct rtattr
*tb
[])
2315 struct sockaddr_storage
*sa
;
2318 print_skmeminfo(tb
, INET_DIAG_SKMEMINFO
);
2320 if (tb
[INET_DIAG_LOCALS
]) {
2321 len
= RTA_PAYLOAD(tb
[INET_DIAG_LOCALS
]);
2322 sa
= RTA_DATA(tb
[INET_DIAG_LOCALS
]);
2324 printf("locals:%s", format_host_sa(sa
));
2325 for (sa
++, len
-= sizeof(*sa
); len
> 0; sa
++, len
-= sizeof(*sa
))
2326 printf(",%s", format_host_sa(sa
));
2329 if (tb
[INET_DIAG_PEERS
]) {
2330 len
= RTA_PAYLOAD(tb
[INET_DIAG_PEERS
]);
2331 sa
= RTA_DATA(tb
[INET_DIAG_PEERS
]);
2333 printf(" peers:%s", format_host_sa(sa
));
2334 for (sa
++, len
-= sizeof(*sa
); len
> 0; sa
++, len
-= sizeof(*sa
))
2335 printf(",%s", format_host_sa(sa
));
2337 if (tb
[INET_DIAG_INFO
]) {
2338 struct sctp_info
*info
;
2339 len
= RTA_PAYLOAD(tb
[INET_DIAG_INFO
]);
2341 /* workaround for older kernels with less fields */
2342 if (len
< sizeof(*info
)) {
2343 info
= alloca(sizeof(*info
));
2344 memcpy(info
, RTA_DATA(tb
[INET_DIAG_INFO
]), len
);
2345 memset((char *)info
+ len
, 0, sizeof(*info
) - len
);
2347 info
= RTA_DATA(tb
[INET_DIAG_INFO
]);
2349 sctp_stats_print(info
);
2353 static void parse_diag_msg(struct nlmsghdr
*nlh
, struct sockstat
*s
)
2355 struct rtattr
*tb
[INET_DIAG_MAX
+1];
2356 struct inet_diag_msg
*r
= NLMSG_DATA(nlh
);
2358 parse_rtattr(tb
, INET_DIAG_MAX
, (struct rtattr
*)(r
+1),
2359 nlh
->nlmsg_len
- NLMSG_LENGTH(sizeof(*r
)));
2361 s
->state
= r
->idiag_state
;
2362 s
->local
.family
= s
->remote
.family
= r
->idiag_family
;
2363 s
->lport
= ntohs(r
->id
.idiag_sport
);
2364 s
->rport
= ntohs(r
->id
.idiag_dport
);
2365 s
->wq
= r
->idiag_wqueue
;
2366 s
->rq
= r
->idiag_rqueue
;
2367 s
->ino
= r
->idiag_inode
;
2368 s
->uid
= r
->idiag_uid
;
2369 s
->iface
= r
->id
.idiag_if
;
2370 s
->sk
= cookie_sk_get(&r
->id
.idiag_cookie
[0]);
2373 if (tb
[INET_DIAG_MARK
])
2374 s
->mark
= rta_getattr_u32(tb
[INET_DIAG_MARK
]);
2375 if (tb
[INET_DIAG_PROTOCOL
])
2376 s
->raw_prot
= rta_getattr_u8(tb
[INET_DIAG_PROTOCOL
]);
2380 if (s
->local
.family
== AF_INET
)
2381 s
->local
.bytelen
= s
->remote
.bytelen
= 4;
2383 s
->local
.bytelen
= s
->remote
.bytelen
= 16;
2385 memcpy(s
->local
.data
, r
->id
.idiag_src
, s
->local
.bytelen
);
2386 memcpy(s
->remote
.data
, r
->id
.idiag_dst
, s
->local
.bytelen
);
2389 static int inet_show_sock(struct nlmsghdr
*nlh
,
2392 struct rtattr
*tb
[INET_DIAG_MAX
+1];
2393 struct inet_diag_msg
*r
= NLMSG_DATA(nlh
);
2395 parse_rtattr(tb
, INET_DIAG_MAX
, (struct rtattr
*)(r
+1),
2396 nlh
->nlmsg_len
- NLMSG_LENGTH(sizeof(*r
)));
2398 if (tb
[INET_DIAG_PROTOCOL
])
2399 s
->type
= rta_getattr_u8(tb
[INET_DIAG_PROTOCOL
]);
2401 inet_stats_print(s
);
2404 struct tcpstat t
= {};
2406 t
.timer
= r
->idiag_timer
;
2407 t
.timeout
= r
->idiag_expires
;
2408 t
.retrans
= r
->idiag_retrans
;
2409 if (s
->type
== IPPROTO_SCTP
)
2410 sctp_timer_print(&t
);
2412 tcp_timer_print(&t
);
2416 sock_details_print(s
);
2417 if (s
->local
.family
== AF_INET6
&& tb
[INET_DIAG_SKV6ONLY
]) {
2418 unsigned char v6only
;
2420 v6only
= rta_getattr_u8(tb
[INET_DIAG_SKV6ONLY
]);
2421 printf(" v6only:%u", v6only
);
2423 if (tb
[INET_DIAG_SHUTDOWN
]) {
2426 mask
= rta_getattr_u8(tb
[INET_DIAG_SHUTDOWN
]);
2427 printf(" %c-%c", mask
& 1 ? '-' : '<', mask
& 2 ? '-' : '>');
2431 if (show_mem
|| (show_tcpinfo
&& s
->type
!= IPPROTO_UDP
)) {
2433 if (s
->type
== IPPROTO_SCTP
)
2434 sctp_show_info(nlh
, r
, tb
);
2436 tcp_show_info(nlh
, r
, tb
);
2444 static int tcpdiag_send(int fd
, int protocol
, struct filter
*f
)
2446 struct sockaddr_nl nladdr
= { .nl_family
= AF_NETLINK
};
2448 struct nlmsghdr nlh
;
2449 struct inet_diag_req r
;
2451 .nlh
.nlmsg_len
= sizeof(req
),
2452 .nlh
.nlmsg_flags
= NLM_F_ROOT
| NLM_F_MATCH
| NLM_F_REQUEST
,
2453 .nlh
.nlmsg_seq
= MAGIC_SEQ
,
2454 .r
.idiag_family
= AF_INET
,
2455 .r
.idiag_states
= f
->states
,
2461 struct iovec iov
[3];
2464 if (protocol
== IPPROTO_UDP
)
2467 if (protocol
== IPPROTO_TCP
)
2468 req
.nlh
.nlmsg_type
= TCPDIAG_GETSOCK
;
2470 req
.nlh
.nlmsg_type
= DCCPDIAG_GETSOCK
;
2472 req
.r
.idiag_ext
|= (1<<(INET_DIAG_MEMINFO
-1));
2473 req
.r
.idiag_ext
|= (1<<(INET_DIAG_SKMEMINFO
-1));
2477 req
.r
.idiag_ext
|= (1<<(INET_DIAG_INFO
-1));
2478 req
.r
.idiag_ext
|= (1<<(INET_DIAG_VEGASINFO
-1));
2479 req
.r
.idiag_ext
|= (1<<(INET_DIAG_CONG
-1));
2482 iov
[0] = (struct iovec
){
2484 .iov_len
= sizeof(req
)
2487 bclen
= ssfilter_bytecompile(f
->f
, &bc
);
2489 rta
.rta_type
= INET_DIAG_REQ_BYTECODE
;
2490 rta
.rta_len
= RTA_LENGTH(bclen
);
2491 iov
[1] = (struct iovec
){ &rta
, sizeof(rta
) };
2492 iov
[2] = (struct iovec
){ bc
, bclen
};
2493 req
.nlh
.nlmsg_len
+= RTA_LENGTH(bclen
);
2498 msg
= (struct msghdr
) {
2499 .msg_name
= (void *)&nladdr
,
2500 .msg_namelen
= sizeof(nladdr
),
2502 .msg_iovlen
= iovlen
,
2505 if (sendmsg(fd
, &msg
, 0) < 0) {
2513 static int sockdiag_send(int family
, int fd
, int protocol
, struct filter
*f
)
2515 struct sockaddr_nl nladdr
= { .nl_family
= AF_NETLINK
};
2516 DIAG_REQUEST(req
, struct inet_diag_req_v2 r
);
2521 struct iovec iov
[3];
2524 if (family
== PF_UNSPEC
)
2525 return tcpdiag_send(fd
, protocol
, f
);
2527 memset(&req
.r
, 0, sizeof(req
.r
));
2528 req
.r
.sdiag_family
= family
;
2529 req
.r
.sdiag_protocol
= protocol
;
2530 req
.r
.idiag_states
= f
->states
;
2532 req
.r
.idiag_ext
|= (1<<(INET_DIAG_MEMINFO
-1));
2533 req
.r
.idiag_ext
|= (1<<(INET_DIAG_SKMEMINFO
-1));
2537 req
.r
.idiag_ext
|= (1<<(INET_DIAG_INFO
-1));
2538 req
.r
.idiag_ext
|= (1<<(INET_DIAG_VEGASINFO
-1));
2539 req
.r
.idiag_ext
|= (1<<(INET_DIAG_CONG
-1));
2542 iov
[0] = (struct iovec
){
2544 .iov_len
= sizeof(req
)
2547 bclen
= ssfilter_bytecompile(f
->f
, &bc
);
2549 rta
.rta_type
= INET_DIAG_REQ_BYTECODE
;
2550 rta
.rta_len
= RTA_LENGTH(bclen
);
2551 iov
[1] = (struct iovec
){ &rta
, sizeof(rta
) };
2552 iov
[2] = (struct iovec
){ bc
, bclen
};
2553 req
.nlh
.nlmsg_len
+= RTA_LENGTH(bclen
);
2558 msg
= (struct msghdr
) {
2559 .msg_name
= (void *)&nladdr
,
2560 .msg_namelen
= sizeof(nladdr
),
2562 .msg_iovlen
= iovlen
,
2565 if (sendmsg(fd
, &msg
, 0) < 0) {
2573 struct inet_diag_arg
{
2576 struct rtnl_handle
*rth
;
2579 static int kill_inet_sock(struct nlmsghdr
*h
, void *arg
, struct sockstat
*s
)
2581 struct inet_diag_msg
*d
= NLMSG_DATA(h
);
2582 struct inet_diag_arg
*diag_arg
= arg
;
2583 struct rtnl_handle
*rth
= diag_arg
->rth
;
2585 DIAG_REQUEST(req
, struct inet_diag_req_v2 r
);
2587 req
.nlh
.nlmsg_type
= SOCK_DESTROY
;
2588 req
.nlh
.nlmsg_flags
= NLM_F_REQUEST
| NLM_F_ACK
;
2589 req
.nlh
.nlmsg_seq
= ++rth
->seq
;
2590 req
.r
.sdiag_family
= d
->idiag_family
;
2591 req
.r
.sdiag_protocol
= diag_arg
->protocol
;
2594 if (diag_arg
->protocol
== IPPROTO_RAW
) {
2595 struct inet_diag_req_raw
*raw
= (void *)&req
.r
;
2597 BUILD_BUG_ON(sizeof(req
.r
) != sizeof(*raw
));
2598 raw
->sdiag_raw_protocol
= s
->raw_prot
;
2601 return rtnl_talk(rth
, &req
.nlh
, NULL
, 0);
2604 static int show_one_inet_sock(const struct sockaddr_nl
*addr
,
2605 struct nlmsghdr
*h
, void *arg
)
2608 struct inet_diag_arg
*diag_arg
= arg
;
2609 struct inet_diag_msg
*r
= NLMSG_DATA(h
);
2610 struct sockstat s
= {};
2612 if (!(diag_arg
->f
->families
& (1 << r
->idiag_family
)))
2615 parse_diag_msg(h
, &s
);
2616 s
.type
= diag_arg
->protocol
;
2618 if (diag_arg
->f
->f
&& run_ssfilter(diag_arg
->f
->f
, &s
) == 0)
2621 if (diag_arg
->f
->kill
&& kill_inet_sock(h
, arg
, &s
) != 0) {
2622 if (errno
== EOPNOTSUPP
|| errno
== ENOENT
) {
2623 /* Socket can't be closed, or is already closed. */
2626 perror("SOCK_DESTROY answers");
2631 err
= inet_show_sock(h
, &s
);
2638 static int inet_show_netlink(struct filter
*f
, FILE *dump_fp
, int protocol
)
2641 struct rtnl_handle rth
, rth2
;
2642 int family
= PF_INET
;
2643 struct inet_diag_arg arg
= { .f
= f
, .protocol
= protocol
};
2645 if (rtnl_open_byproto(&rth
, 0, NETLINK_SOCK_DIAG
))
2649 if (rtnl_open_byproto(&rth2
, 0, NETLINK_SOCK_DIAG
)) {
2656 rth
.dump
= MAGIC_SEQ
;
2657 rth
.dump_fp
= dump_fp
;
2658 if (preferred_family
== PF_INET6
)
2662 if ((err
= sockdiag_send(family
, rth
.fd
, protocol
, f
)))
2665 if ((err
= rtnl_dump_filter(&rth
, show_one_inet_sock
, &arg
))) {
2666 if (family
!= PF_UNSPEC
) {
2672 if (family
== PF_INET
&& preferred_family
!= PF_INET
) {
2680 rtnl_close(arg
.rth
);
2684 static int tcp_show_netlink_file(struct filter
*f
)
2690 if ((fp
= fopen(getenv("TCPDIAG_FILE"), "r")) == NULL
) {
2691 perror("fopen($TCPDIAG_FILE)");
2697 struct nlmsghdr
*h
= (struct nlmsghdr
*)buf
;
2698 struct sockstat s
= {};
2700 status
= fread(buf
, 1, sizeof(*h
), fp
);
2702 perror("Reading header from $TCPDIAG_FILE");
2705 if (status
!= sizeof(*h
)) {
2706 perror("Unexpected EOF reading $TCPDIAG_FILE");
2710 status
= fread(h
+1, 1, NLMSG_ALIGN(h
->nlmsg_len
-sizeof(*h
)), fp
);
2713 perror("Reading $TCPDIAG_FILE");
2716 if (status
+ sizeof(*h
) < h
->nlmsg_len
) {
2717 perror("Unexpected EOF reading $TCPDIAG_FILE");
2721 /* The only legal exit point */
2722 if (h
->nlmsg_type
== NLMSG_DONE
) {
2727 if (h
->nlmsg_type
== NLMSG_ERROR
) {
2728 struct nlmsgerr
*err
= (struct nlmsgerr
*)NLMSG_DATA(h
);
2730 if (h
->nlmsg_len
< NLMSG_LENGTH(sizeof(struct nlmsgerr
))) {
2731 fprintf(stderr
, "ERROR truncated\n");
2733 errno
= -err
->error
;
2734 perror("TCPDIAG answered");
2739 parse_diag_msg(h
, &s
);
2740 s
.type
= IPPROTO_TCP
;
2742 if (f
&& f
->f
&& run_ssfilter(f
->f
, &s
) == 0)
2745 err2
= inet_show_sock(h
, &s
);
2756 static int tcp_show(struct filter
*f
)
2760 int bufsize
= 64*1024;
2762 if (!filter_af_get(f
, AF_INET
) && !filter_af_get(f
, AF_INET6
))
2765 dg_proto
= TCP_PROTO
;
2767 if (getenv("TCPDIAG_FILE"))
2768 return tcp_show_netlink_file(f
);
2770 if (!getenv("PROC_NET_TCP") && !getenv("PROC_ROOT")
2771 && inet_show_netlink(f
, NULL
, IPPROTO_TCP
) == 0)
2774 /* Sigh... We have to parse /proc/net/tcp... */
2777 /* Estimate amount of sockets and try to allocate
2778 * huge buffer to read all the table at one read.
2779 * Limit it by 16MB though. The assumption is: as soon as
2780 * kernel was able to hold information about N connections,
2781 * it is able to give us some memory for snapshot.
2784 get_slabstat(&slabstat
);
2786 int guess
= slabstat
.socks
+slabstat
.tcp_syns
;
2788 if (f
->states
&(1<<SS_TIME_WAIT
))
2789 guess
+= slabstat
.tcp_tws
;
2790 if (guess
> (16*1024*1024)/128)
2791 guess
= (16*1024*1024)/128;
2793 if (guess
> bufsize
)
2796 while (bufsize
>= 64*1024) {
2797 if ((buf
= malloc(bufsize
)) != NULL
)
2806 if (f
->families
& (1<<AF_INET
)) {
2807 if ((fp
= net_tcp_open()) == NULL
)
2810 setbuffer(fp
, buf
, bufsize
);
2811 if (generic_record_read(fp
, tcp_show_line
, f
, AF_INET
))
2816 if ((f
->families
& (1<<AF_INET6
)) &&
2817 (fp
= net_tcp6_open()) != NULL
) {
2818 setbuffer(fp
, buf
, bufsize
);
2819 if (generic_record_read(fp
, tcp_show_line
, f
, AF_INET6
))
2829 int saved_errno
= errno
;
2834 errno
= saved_errno
;
2839 static int dccp_show(struct filter
*f
)
2841 if (!filter_af_get(f
, AF_INET
) && !filter_af_get(f
, AF_INET6
))
2844 if (!getenv("PROC_NET_DCCP") && !getenv("PROC_ROOT")
2845 && inet_show_netlink(f
, NULL
, IPPROTO_DCCP
) == 0)
2851 static int sctp_show(struct filter
*f
)
2853 if (!filter_af_get(f
, AF_INET
) && !filter_af_get(f
, AF_INET6
))
2856 if (!getenv("PROC_NET_SCTP") && !getenv("PROC_ROOT")
2857 && inet_show_netlink(f
, NULL
, IPPROTO_SCTP
) == 0)
2863 static int dgram_show_line(char *line
, const struct filter
*f
, int family
)
2865 struct sockstat s
= {};
2866 char *loc
, *rem
, *data
;
2870 if (proc_inet_split_line(line
, &loc
, &rem
, &data
))
2873 int state
= (data
[1] >= 'A') ? (data
[1] - 'A' + 10) : (data
[1] - '0');
2875 if (!(f
->states
& (1 << state
)))
2878 proc_parse_inet_addr(loc
, rem
, family
, &s
);
2880 if (f
->f
&& run_ssfilter(f
->f
, &s
) == 0)
2884 n
= sscanf(data
, "%x %x:%x %*x:%*x %*x %d %*d %u %d %llx %[^\n]\n",
2885 &s
.state
, &s
.wq
, &s
.rq
,
2887 &s
.refcnt
, &s
.sk
, opt
);
2892 s
.type
= dg_proto
== UDP_PROTO
? IPPROTO_UDP
: 0;
2893 inet_stats_print(&s
);
2895 if (show_details
&& opt
[0])
2896 printf(" opt:\"%s\"", opt
);
2902 static int udp_show(struct filter
*f
)
2906 if (!filter_af_get(f
, AF_INET
) && !filter_af_get(f
, AF_INET6
))
2909 dg_proto
= UDP_PROTO
;
2911 if (!getenv("PROC_NET_UDP") && !getenv("PROC_ROOT")
2912 && inet_show_netlink(f
, NULL
, IPPROTO_UDP
) == 0)
2915 if (f
->families
&(1<<AF_INET
)) {
2916 if ((fp
= net_udp_open()) == NULL
)
2918 if (generic_record_read(fp
, dgram_show_line
, f
, AF_INET
))
2923 if ((f
->families
&(1<<AF_INET6
)) &&
2924 (fp
= net_udp6_open()) != NULL
) {
2925 if (generic_record_read(fp
, dgram_show_line
, f
, AF_INET6
))
2933 int saved_errno
= errno
;
2937 errno
= saved_errno
;
2942 static int raw_show(struct filter
*f
)
2946 if (!filter_af_get(f
, AF_INET
) && !filter_af_get(f
, AF_INET6
))
2949 dg_proto
= RAW_PROTO
;
2951 if (!getenv("PROC_NET_RAW") && !getenv("PROC_ROOT") &&
2952 inet_show_netlink(f
, NULL
, IPPROTO_RAW
) == 0)
2955 if (f
->families
&(1<<AF_INET
)) {
2956 if ((fp
= net_raw_open()) == NULL
)
2958 if (generic_record_read(fp
, dgram_show_line
, f
, AF_INET
))
2963 if ((f
->families
&(1<<AF_INET6
)) &&
2964 (fp
= net_raw6_open()) != NULL
) {
2965 if (generic_record_read(fp
, dgram_show_line
, f
, AF_INET6
))
2973 int saved_errno
= errno
;
2977 errno
= saved_errno
;
2982 #define MAX_UNIX_REMEMBER (1024*1024/sizeof(struct sockstat))
2984 static void unix_list_drop_first(struct sockstat
**list
)
2986 struct sockstat
*s
= *list
;
2988 (*list
) = (*list
)->next
;
2993 static bool unix_type_skip(struct sockstat
*s
, struct filter
*f
)
2995 if (s
->type
== SOCK_STREAM
&& !(f
->dbs
&(1<<UNIX_ST_DB
)))
2997 if (s
->type
== SOCK_DGRAM
&& !(f
->dbs
&(1<<UNIX_DG_DB
)))
2999 if (s
->type
== SOCK_SEQPACKET
&& !(f
->dbs
&(1<<UNIX_SQ_DB
)))
3004 static void unix_stats_print(struct sockstat
*s
, struct filter
*f
)
3006 char port_name
[30] = {};
3008 sock_state_print(s
);
3010 sock_addr_print(s
->name
?: "*", " ",
3011 int_to_str(s
->lport
, port_name
), NULL
);
3012 sock_addr_print(s
->peer_name
?: "*", " ",
3013 int_to_str(s
->rport
, port_name
), NULL
);
3018 static int unix_show_sock(const struct sockaddr_nl
*addr
, struct nlmsghdr
*nlh
,
3021 struct filter
*f
= (struct filter
*)arg
;
3022 struct unix_diag_msg
*r
= NLMSG_DATA(nlh
);
3023 struct rtattr
*tb
[UNIX_DIAG_MAX
+1];
3025 struct sockstat stat
= { .name
= "*", .peer_name
= "*" };
3027 parse_rtattr(tb
, UNIX_DIAG_MAX
, (struct rtattr
*)(r
+1),
3028 nlh
->nlmsg_len
- NLMSG_LENGTH(sizeof(*r
)));
3030 stat
.type
= r
->udiag_type
;
3031 stat
.state
= r
->udiag_state
;
3032 stat
.ino
= stat
.lport
= r
->udiag_ino
;
3033 stat
.local
.family
= stat
.remote
.family
= AF_UNIX
;
3035 if (unix_type_skip(&stat
, f
))
3038 if (tb
[UNIX_DIAG_RQLEN
]) {
3039 struct unix_diag_rqlen
*rql
= RTA_DATA(tb
[UNIX_DIAG_RQLEN
]);
3041 stat
.rq
= rql
->udiag_rqueue
;
3042 stat
.wq
= rql
->udiag_wqueue
;
3044 if (tb
[UNIX_DIAG_NAME
]) {
3045 int len
= RTA_PAYLOAD(tb
[UNIX_DIAG_NAME
]);
3047 memcpy(name
, RTA_DATA(tb
[UNIX_DIAG_NAME
]), len
);
3049 if (name
[0] == '\0') {
3051 for (i
= 0; i
< len
; i
++)
3052 if (name
[i
] == '\0')
3055 stat
.name
= &name
[0];
3056 memcpy(stat
.local
.data
, &stat
.name
, sizeof(stat
.name
));
3058 if (tb
[UNIX_DIAG_PEER
])
3059 stat
.rport
= rta_getattr_u32(tb
[UNIX_DIAG_PEER
]);
3061 if (f
->f
&& run_ssfilter(f
->f
, &stat
) == 0)
3064 unix_stats_print(&stat
, f
);
3067 print_skmeminfo(tb
, UNIX_DIAG_MEMINFO
);
3069 if (tb
[UNIX_DIAG_SHUTDOWN
]) {
3072 mask
= rta_getattr_u8(tb
[UNIX_DIAG_SHUTDOWN
]);
3073 printf(" %c-%c", mask
& 1 ? '-' : '<', mask
& 2 ? '-' : '>');
3081 static int handle_netlink_request(struct filter
*f
, struct nlmsghdr
*req
,
3082 size_t size
, rtnl_filter_t show_one_sock
)
3085 struct rtnl_handle rth
;
3087 if (rtnl_open_byproto(&rth
, 0, NETLINK_SOCK_DIAG
))
3090 rth
.dump
= MAGIC_SEQ
;
3092 if (rtnl_send(&rth
, req
, size
) < 0)
3095 if (rtnl_dump_filter(&rth
, show_one_sock
, f
))
3104 static int unix_show_netlink(struct filter
*f
)
3106 DIAG_REQUEST(req
, struct unix_diag_req r
);
3108 req
.r
.sdiag_family
= AF_UNIX
;
3109 req
.r
.udiag_states
= f
->states
;
3110 req
.r
.udiag_show
= UDIAG_SHOW_NAME
| UDIAG_SHOW_PEER
| UDIAG_SHOW_RQLEN
;
3112 req
.r
.udiag_show
|= UDIAG_SHOW_MEMINFO
;
3114 return handle_netlink_request(f
, &req
.nlh
, sizeof(req
), unix_show_sock
);
3117 static int unix_show(struct filter
*f
)
3124 struct sockstat
*list
= NULL
;
3125 const int unix_state_map
[] = { SS_CLOSE
, SS_SYN_SENT
,
3126 SS_ESTABLISHED
, SS_CLOSING
};
3128 if (!filter_af_get(f
, AF_UNIX
))
3131 if (!getenv("PROC_NET_UNIX") && !getenv("PROC_ROOT")
3132 && unix_show_netlink(f
) == 0)
3135 if ((fp
= net_unix_open()) == NULL
)
3137 if (!fgets(buf
, sizeof(buf
), fp
)) {
3142 if (memcmp(buf
, "Peer", 4) == 0)
3146 while (fgets(buf
, sizeof(buf
), fp
)) {
3147 struct sockstat
*u
, **insp
;
3150 if (!(u
= calloc(1, sizeof(*u
))))
3153 if (sscanf(buf
, "%x: %x %x %x %x %x %d %s",
3154 &u
->rport
, &u
->rq
, &u
->wq
, &flags
, &u
->type
,
3155 &u
->state
, &u
->ino
, name
) < 8)
3159 u
->local
.family
= u
->remote
.family
= AF_UNIX
;
3161 if (flags
& (1 << 16)) {
3162 u
->state
= SS_LISTEN
;
3163 } else if (u
->state
> 0 &&
3164 u
->state
<= ARRAY_SIZE(unix_state_map
)) {
3165 u
->state
= unix_state_map
[u
->state
-1];
3166 if (u
->type
== SOCK_DGRAM
&& u
->state
== SS_CLOSE
&& u
->rport
)
3167 u
->state
= SS_ESTABLISHED
;
3169 if (unix_type_skip(u
, f
) ||
3170 !(f
->states
& (1 << u
->state
))) {
3182 u
->name
= strdup(name
);
3192 for (p
= list
; p
; p
= p
->next
) {
3193 if (u
->rport
== p
->lport
)
3199 u
->peer_name
= p
->name
? : "*";
3203 struct sockstat st
= {
3204 .local
.family
= AF_UNIX
,
3205 .remote
.family
= AF_UNIX
,
3208 memcpy(st
.local
.data
, &u
->name
, sizeof(u
->name
));
3209 if (strcmp(u
->peer_name
, "*"))
3210 memcpy(st
.remote
.data
, &u
->peer_name
,
3211 sizeof(u
->peer_name
));
3212 if (run_ssfilter(f
->f
, &st
) == 0) {
3221 if (u
->type
< (*insp
)->type
||
3222 (u
->type
== (*insp
)->type
&&
3223 u
->ino
< (*insp
)->ino
))
3225 insp
= &(*insp
)->next
;
3230 if (++cnt
> MAX_UNIX_REMEMBER
) {
3232 unix_stats_print(list
, f
);
3235 unix_list_drop_first(&list
);
3242 unix_stats_print(list
, f
);
3245 unix_list_drop_first(&list
);
3251 static int packet_stats_print(struct sockstat
*s
, const struct filter
*f
)
3253 const char *addr
, *port
;
3256 s
->local
.family
= s
->remote
.family
= AF_PACKET
;
3259 s
->local
.data
[0] = s
->prot
;
3260 if (run_ssfilter(f
->f
, s
) == 0)
3264 sock_state_print(s
);
3269 addr
= ll_proto_n2a(htons(s
->prot
), ll_name
, sizeof(ll_name
));
3274 port
= xll_index_to_name(s
->iface
);
3276 sock_addr_print(addr
, ":", port
, NULL
);
3277 sock_addr_print("", "*", "", NULL
);
3282 sock_details_print(s
);
3287 static void packet_show_ring(struct packet_diag_ring
*ring
)
3289 printf("blk_size:%d", ring
->pdr_block_size
);
3290 printf(",blk_nr:%d", ring
->pdr_block_nr
);
3291 printf(",frm_size:%d", ring
->pdr_frame_size
);
3292 printf(",frm_nr:%d", ring
->pdr_frame_nr
);
3293 printf(",tmo:%d", ring
->pdr_retire_tmo
);
3294 printf(",features:0x%x", ring
->pdr_features
);
3297 static int packet_show_sock(const struct sockaddr_nl
*addr
,
3298 struct nlmsghdr
*nlh
, void *arg
)
3300 const struct filter
*f
= arg
;
3301 struct packet_diag_msg
*r
= NLMSG_DATA(nlh
);
3302 struct packet_diag_info
*pinfo
= NULL
;
3303 struct packet_diag_ring
*ring_rx
= NULL
, *ring_tx
= NULL
;
3304 struct rtattr
*tb
[PACKET_DIAG_MAX
+1];
3305 struct sockstat stat
= {};
3306 uint32_t fanout
= 0;
3307 bool has_fanout
= false;
3309 parse_rtattr(tb
, PACKET_DIAG_MAX
, (struct rtattr
*)(r
+1),
3310 nlh
->nlmsg_len
- NLMSG_LENGTH(sizeof(*r
)));
3312 /* use /proc/net/packet if all info are not available */
3313 if (!tb
[PACKET_DIAG_MEMINFO
])
3316 stat
.type
= r
->pdiag_type
;
3317 stat
.prot
= r
->pdiag_num
;
3318 stat
.ino
= r
->pdiag_ino
;
3319 stat
.state
= SS_CLOSE
;
3320 stat
.sk
= cookie_sk_get(&r
->pdiag_cookie
[0]);
3322 if (tb
[PACKET_DIAG_MEMINFO
]) {
3323 __u32
*skmeminfo
= RTA_DATA(tb
[PACKET_DIAG_MEMINFO
]);
3325 stat
.rq
= skmeminfo
[SK_MEMINFO_RMEM_ALLOC
];
3328 if (tb
[PACKET_DIAG_INFO
]) {
3329 pinfo
= RTA_DATA(tb
[PACKET_DIAG_INFO
]);
3330 stat
.lport
= stat
.iface
= pinfo
->pdi_index
;
3333 if (tb
[PACKET_DIAG_UID
])
3334 stat
.uid
= rta_getattr_u32(tb
[PACKET_DIAG_UID
]);
3336 if (tb
[PACKET_DIAG_RX_RING
])
3337 ring_rx
= RTA_DATA(tb
[PACKET_DIAG_RX_RING
]);
3339 if (tb
[PACKET_DIAG_TX_RING
])
3340 ring_tx
= RTA_DATA(tb
[PACKET_DIAG_TX_RING
]);
3342 if (tb
[PACKET_DIAG_FANOUT
]) {
3344 fanout
= rta_getattr_u32(tb
[PACKET_DIAG_FANOUT
]);
3347 if (packet_stats_print(&stat
, f
))
3352 printf("\n\tver:%d", pinfo
->pdi_version
);
3353 printf(" cpy_thresh:%d", pinfo
->pdi_copy_thresh
);
3355 if (pinfo
->pdi_flags
& PDI_RUNNING
)
3357 if (pinfo
->pdi_flags
& PDI_AUXDATA
)
3359 if (pinfo
->pdi_flags
& PDI_ORIGDEV
)
3361 if (pinfo
->pdi_flags
& PDI_VNETHDR
)
3363 if (pinfo
->pdi_flags
& PDI_LOSS
)
3365 if (!pinfo
->pdi_flags
)
3370 printf("\n\tring_rx(");
3371 packet_show_ring(ring_rx
);
3375 printf("\n\tring_tx(");
3376 packet_show_ring(ring_tx
);
3380 uint16_t type
= (fanout
>> 16) & 0xffff;
3382 printf("\n\tfanout(");
3383 printf("id:%d,", fanout
& 0xffff);
3399 printf("0x%x", type
);
3405 if (show_bpf
&& tb
[PACKET_DIAG_FILTER
]) {
3406 struct sock_filter
*fil
=
3407 RTA_DATA(tb
[PACKET_DIAG_FILTER
]);
3408 int num
= RTA_PAYLOAD(tb
[PACKET_DIAG_FILTER
]) /
3409 sizeof(struct sock_filter
);
3411 printf("\n\tbpf filter (%d): ", num
);
3413 printf(" 0x%02x %u %u %u,",
3414 fil
->code
, fil
->jt
, fil
->jf
, fil
->k
);
3423 static int packet_show_netlink(struct filter
*f
)
3425 DIAG_REQUEST(req
, struct packet_diag_req r
);
3427 req
.r
.sdiag_family
= AF_PACKET
;
3428 req
.r
.pdiag_show
= PACKET_SHOW_INFO
| PACKET_SHOW_MEMINFO
|
3429 PACKET_SHOW_FILTER
| PACKET_SHOW_RING_CFG
| PACKET_SHOW_FANOUT
;
3431 return handle_netlink_request(f
, &req
.nlh
, sizeof(req
), packet_show_sock
);
3434 static int packet_show_line(char *buf
, const struct filter
*f
, int fam
)
3436 unsigned long long sk
;
3437 struct sockstat stat
= {};
3438 int type
, prot
, iface
, state
, rq
, uid
, ino
;
3440 sscanf(buf
, "%llx %*d %d %x %d %d %u %u %u",
3442 &type
, &prot
, &iface
, &state
,
3445 if (stat
.type
== SOCK_RAW
&& !(f
->dbs
&(1<<PACKET_R_DB
)))
3447 if (stat
.type
== SOCK_DGRAM
&& !(f
->dbs
&(1<<PACKET_DG_DB
)))
3452 stat
.lport
= stat
.iface
= iface
;
3457 stat
.state
= SS_CLOSE
;
3459 if (packet_stats_print(&stat
, f
))
3466 static int packet_show(struct filter
*f
)
3471 if (!filter_af_get(f
, AF_PACKET
) || !(f
->states
& (1 << SS_CLOSE
)))
3474 if (!getenv("PROC_NET_PACKET") && !getenv("PROC_ROOT") &&
3475 packet_show_netlink(f
) == 0)
3478 if ((fp
= net_packet_open()) == NULL
)
3480 if (generic_record_read(fp
, packet_show_line
, f
, AF_PACKET
))
3487 static int netlink_show_one(struct filter
*f
,
3488 int prot
, int pid
, unsigned int groups
,
3489 int state
, int dst_pid
, unsigned int dst_group
,
3491 unsigned long long sk
, unsigned long long cb
)
3493 struct sockstat st
= {
3497 .local
.family
= AF_NETLINK
,
3498 .remote
.family
= AF_NETLINK
,
3501 SPRINT_BUF(prot_buf
) = {};
3502 const char *prot_name
;
3503 char procname
[64] = {};
3508 st
.local
.data
[0] = prot
;
3509 if (run_ssfilter(f
->f
, &st
) == 0)
3513 sock_state_print(&st
);
3515 if (resolve_services
)
3516 prot_name
= nl_proto_n2a(prot
, prot_buf
, sizeof(prot_buf
));
3518 prot_name
= int_to_str(prot
, prot_buf
);
3522 } else if (resolve_services
) {
3527 strncpy(procname
, "kernel", 6);
3528 } else if (pid
> 0) {
3531 snprintf(procname
, sizeof(procname
), "%s/%d/stat",
3532 getenv("PROC_ROOT") ? : "/proc", pid
);
3533 if ((fp
= fopen(procname
, "r")) != NULL
) {
3534 if (fscanf(fp
, "%*d (%[^)])", procname
) == 1) {
3535 snprintf(procname
+strlen(procname
),
3536 sizeof(procname
)-strlen(procname
),
3544 int_to_str(pid
, procname
);
3546 int_to_str(pid
, procname
);
3549 sock_addr_print(prot_name
, ":", procname
, NULL
);
3551 if (state
== NETLINK_CONNECTED
) {
3552 char dst_group_buf
[30];
3553 char dst_pid_buf
[30];
3555 sock_addr_print(int_to_str(dst_group
, dst_group_buf
), ":",
3556 int_to_str(dst_pid
, dst_pid_buf
), NULL
);
3558 sock_addr_print("", "*", "", NULL
);
3561 char *pid_context
= NULL
;
3563 if (show_proc_ctx
) {
3564 /* The pid value will either be:
3565 * 0 if destination kernel - show kernel initial context.
3566 * A valid process pid - use getpidcon.
3567 * A unique value allocated by the kernel or netlink user
3568 * to the process - show context as "not available".
3571 security_get_initial_context("kernel", &pid_context
);
3573 getpidcon(pid
, &pid_context
);
3575 if (pid_context
!= NULL
) {
3576 printf("proc_ctx=%-*s ", serv_width
, pid_context
);
3579 printf("proc_ctx=%-*s ", serv_width
, "unavailable");
3584 printf(" sk=%llx cb=%llx groups=0x%08x", sk
, cb
, groups
);
3591 static int netlink_show_sock(const struct sockaddr_nl
*addr
,
3592 struct nlmsghdr
*nlh
, void *arg
)
3594 struct filter
*f
= (struct filter
*)arg
;
3595 struct netlink_diag_msg
*r
= NLMSG_DATA(nlh
);
3596 struct rtattr
*tb
[NETLINK_DIAG_MAX
+1];
3598 unsigned long groups
= 0;
3600 parse_rtattr(tb
, NETLINK_DIAG_MAX
, (struct rtattr
*)(r
+1),
3601 nlh
->nlmsg_len
- NLMSG_LENGTH(sizeof(*r
)));
3603 if (tb
[NETLINK_DIAG_GROUPS
] && RTA_PAYLOAD(tb
[NETLINK_DIAG_GROUPS
]))
3604 groups
= *(unsigned long *) RTA_DATA(tb
[NETLINK_DIAG_GROUPS
]);
3606 if (tb
[NETLINK_DIAG_MEMINFO
]) {
3607 const __u32
*skmeminfo
;
3609 skmeminfo
= RTA_DATA(tb
[NETLINK_DIAG_MEMINFO
]);
3611 rq
= skmeminfo
[SK_MEMINFO_RMEM_ALLOC
];
3612 wq
= skmeminfo
[SK_MEMINFO_WMEM_ALLOC
];
3615 if (netlink_show_one(f
, r
->ndiag_protocol
, r
->ndiag_portid
, groups
,
3616 r
->ndiag_state
, r
->ndiag_dst_portid
, r
->ndiag_dst_group
,
3623 print_skmeminfo(tb
, NETLINK_DIAG_MEMINFO
);
3630 static int netlink_show_netlink(struct filter
*f
)
3632 DIAG_REQUEST(req
, struct netlink_diag_req r
);
3634 req
.r
.sdiag_family
= AF_NETLINK
;
3635 req
.r
.sdiag_protocol
= NDIAG_PROTO_ALL
;
3636 req
.r
.ndiag_show
= NDIAG_SHOW_GROUPS
| NDIAG_SHOW_MEMINFO
;
3638 return handle_netlink_request(f
, &req
.nlh
, sizeof(req
), netlink_show_sock
);
3641 static int netlink_show(struct filter
*f
)
3646 unsigned int groups
;
3648 unsigned long long sk
, cb
;
3650 if (!filter_af_get(f
, AF_NETLINK
) || !(f
->states
& (1 << SS_CLOSE
)))
3653 if (!getenv("PROC_NET_NETLINK") && !getenv("PROC_ROOT") &&
3654 netlink_show_netlink(f
) == 0)
3657 if ((fp
= net_netlink_open()) == NULL
)
3659 if (!fgets(buf
, sizeof(buf
), fp
)) {
3664 while (fgets(buf
, sizeof(buf
), fp
)) {
3665 sscanf(buf
, "%llx %d %d %x %d %d %llx %d",
3667 &prot
, &pid
, &groups
, &rq
, &wq
, &cb
, &rc
);
3669 netlink_show_one(f
, prot
, pid
, groups
, 0, 0, 0, rq
, wq
, sk
, cb
);
3676 struct sock_diag_msg
{
3680 static int generic_show_sock(const struct sockaddr_nl
*addr
,
3681 struct nlmsghdr
*nlh
, void *arg
)
3683 struct sock_diag_msg
*r
= NLMSG_DATA(nlh
);
3684 struct inet_diag_arg inet_arg
= { .f
= arg
, .protocol
= IPPROTO_MAX
};
3686 switch (r
->sdiag_family
) {
3689 return show_one_inet_sock(addr
, nlh
, &inet_arg
);
3691 return unix_show_sock(addr
, nlh
, arg
);
3693 return packet_show_sock(addr
, nlh
, arg
);
3695 return netlink_show_sock(addr
, nlh
, arg
);
3701 static int handle_follow_request(struct filter
*f
)
3705 struct rtnl_handle rth
;
3707 if (f
->families
& (1 << AF_INET
) && f
->dbs
& (1 << TCP_DB
))
3708 groups
|= 1 << (SKNLGRP_INET_TCP_DESTROY
- 1);
3709 if (f
->families
& (1 << AF_INET
) && f
->dbs
& (1 << UDP_DB
))
3710 groups
|= 1 << (SKNLGRP_INET_UDP_DESTROY
- 1);
3711 if (f
->families
& (1 << AF_INET6
) && f
->dbs
& (1 << TCP_DB
))
3712 groups
|= 1 << (SKNLGRP_INET6_TCP_DESTROY
- 1);
3713 if (f
->families
& (1 << AF_INET6
) && f
->dbs
& (1 << UDP_DB
))
3714 groups
|= 1 << (SKNLGRP_INET6_UDP_DESTROY
- 1);
3719 if (rtnl_open_byproto(&rth
, groups
, NETLINK_SOCK_DIAG
))
3723 rth
.local
.nl_pid
= 0;
3725 if (rtnl_dump_filter(&rth
, generic_show_sock
, f
))
3732 static int get_snmp_int(char *proto
, char *key
, int *result
)
3736 int protolen
= strlen(proto
);
3737 int keylen
= strlen(key
);
3741 if ((fp
= net_snmp_open()) == NULL
)
3744 while (fgets(buf
, sizeof(buf
), fp
) != NULL
) {
3748 if (memcmp(buf
, proto
, protolen
))
3750 while ((p
= strchr(p
, ' ')) != NULL
) {
3753 if (memcmp(p
, key
, keylen
) == 0 &&
3754 (p
[keylen
] == ' ' || p
[keylen
] == '\n'))
3757 if (fgets(buf
, sizeof(buf
), fp
) == NULL
)
3759 if (memcmp(buf
, proto
, protolen
))
3762 while ((p
= strchr(p
, ' ')) != NULL
) {
3765 sscanf(p
, "%d", result
);
3778 /* Get stats from sockstat */
3798 static void get_sockstat_line(char *line
, struct ssummary
*s
)
3800 char id
[256], rem
[256];
3802 if (sscanf(line
, "%[^ ] %[^\n]\n", id
, rem
) != 2)
3805 if (strcmp(id
, "sockets:") == 0)
3806 sscanf(rem
, "%*s%d", &s
->socks
);
3807 else if (strcmp(id
, "UDP:") == 0)
3808 sscanf(rem
, "%*s%d", &s
->udp4
);
3809 else if (strcmp(id
, "UDP6:") == 0)
3810 sscanf(rem
, "%*s%d", &s
->udp6
);
3811 else if (strcmp(id
, "RAW:") == 0)
3812 sscanf(rem
, "%*s%d", &s
->raw4
);
3813 else if (strcmp(id
, "RAW6:") == 0)
3814 sscanf(rem
, "%*s%d", &s
->raw6
);
3815 else if (strcmp(id
, "TCP6:") == 0)
3816 sscanf(rem
, "%*s%d", &s
->tcp6_hashed
);
3817 else if (strcmp(id
, "FRAG:") == 0)
3818 sscanf(rem
, "%*s%d%*s%d", &s
->frag4
, &s
->frag4_mem
);
3819 else if (strcmp(id
, "FRAG6:") == 0)
3820 sscanf(rem
, "%*s%d%*s%d", &s
->frag6
, &s
->frag6_mem
);
3821 else if (strcmp(id
, "TCP:") == 0)
3822 sscanf(rem
, "%*s%d%*s%d%*s%d%*s%d%*s%d",
3824 &s
->tcp_orphans
, &s
->tcp_tws
, &s
->tcp_total
, &s
->tcp_mem
);
3827 static int get_sockstat(struct ssummary
*s
)
3832 memset(s
, 0, sizeof(*s
));
3834 if ((fp
= net_sockstat_open()) == NULL
)
3836 while (fgets(buf
, sizeof(buf
), fp
) != NULL
)
3837 get_sockstat_line(buf
, s
);
3840 if ((fp
= net_sockstat6_open()) == NULL
)
3842 while (fgets(buf
, sizeof(buf
), fp
) != NULL
)
3843 get_sockstat_line(buf
, s
);
3849 static int print_summary(void)
3854 if (get_sockstat(&s
) < 0)
3855 perror("ss: get_sockstat");
3856 if (get_snmp_int("Tcp:", "CurrEstab", &tcp_estab
) < 0)
3857 perror("ss: get_snmpstat");
3859 get_slabstat(&slabstat
);
3861 printf("Total: %d (kernel %d)\n", s
.socks
, slabstat
.socks
);
3863 printf("TCP: %d (estab %d, closed %d, orphaned %d, synrecv %d, timewait %d/%d), ports %d\n",
3864 s
.tcp_total
+ slabstat
.tcp_syns
+ s
.tcp_tws
,
3866 s
.tcp_total
- (s
.tcp4_hashed
+s
.tcp6_hashed
-s
.tcp_tws
),
3869 s
.tcp_tws
, slabstat
.tcp_tws
,
3874 printf("Transport Total IP IPv6\n");
3875 printf("* %-9d %-9s %-9s\n", slabstat
.socks
, "-", "-");
3876 printf("RAW %-9d %-9d %-9d\n", s
.raw4
+s
.raw6
, s
.raw4
, s
.raw6
);
3877 printf("UDP %-9d %-9d %-9d\n", s
.udp4
+s
.udp6
, s
.udp4
, s
.udp6
);
3878 printf("TCP %-9d %-9d %-9d\n", s
.tcp4_hashed
+s
.tcp6_hashed
, s
.tcp4_hashed
, s
.tcp6_hashed
);
3879 printf("INET %-9d %-9d %-9d\n",
3880 s
.raw4
+s
.udp4
+s
.tcp4_hashed
+
3881 s
.raw6
+s
.udp6
+s
.tcp6_hashed
,
3882 s
.raw4
+s
.udp4
+s
.tcp4_hashed
,
3883 s
.raw6
+s
.udp6
+s
.tcp6_hashed
);
3884 printf("FRAG %-9d %-9d %-9d\n", s
.frag4
+s
.frag6
, s
.frag4
, s
.frag6
);
3891 static void _usage(FILE *dest
)
3894 "Usage: ss [ OPTIONS ]\n"
3895 " ss [ OPTIONS ] [ FILTER ]\n"
3896 " -h, --help this message\n"
3897 " -V, --version output version information\n"
3898 " -n, --numeric don't resolve service names\n"
3899 " -r, --resolve resolve host names\n"
3900 " -a, --all display all sockets\n"
3901 " -l, --listening display listening sockets\n"
3902 " -o, --options show timer information\n"
3903 " -e, --extended show detailed socket information\n"
3904 " -m, --memory show socket memory usage\n"
3905 " -p, --processes show process using socket\n"
3906 " -i, --info show internal TCP information\n"
3907 " -s, --summary show socket usage summary\n"
3908 " -b, --bpf show bpf filter socket information\n"
3909 " -E, --events continually display sockets as they are destroyed\n"
3910 " -Z, --context display process SELinux security contexts\n"
3911 " -z, --contexts display process and socket SELinux security contexts\n"
3912 " -N, --net switch to the specified network namespace name\n"
3914 " -4, --ipv4 display only IP version 4 sockets\n"
3915 " -6, --ipv6 display only IP version 6 sockets\n"
3916 " -0, --packet display PACKET sockets\n"
3917 " -t, --tcp display only TCP sockets\n"
3918 " -S, --sctp display only SCTP sockets\n"
3919 " -u, --udp display only UDP sockets\n"
3920 " -d, --dccp display only DCCP sockets\n"
3921 " -w, --raw display only RAW sockets\n"
3922 " -x, --unix display only Unix domain sockets\n"
3923 " -f, --family=FAMILY display sockets of type FAMILY\n"
3924 " FAMILY := {inet|inet6|link|unix|netlink|help}\n"
3926 " -K, --kill forcibly close sockets, display what was closed\n"
3927 " -H, --no-header Suppress header line\n"
3929 " -A, --query=QUERY, --socket=QUERY\n"
3930 " QUERY := {all|inet|tcp|udp|raw|unix|unix_dgram|unix_stream|unix_seqpacket|packet|netlink}[,QUERY]\n"
3932 " -D, --diag=FILE Dump raw information about TCP sockets to FILE\n"
3933 " -F, --filter=FILE read filter information from FILE\n"
3934 " FILTER := [ state STATE-FILTER ] [ EXPRESSION ]\n"
3935 " STATE-FILTER := {all|connected|synchronized|bucket|big|TCP-STATES}\n"
3936 " TCP-STATES := {established|syn-sent|syn-recv|fin-wait-{1,2}|time-wait|closed|close-wait|last-ack|listening|closing}\n"
3937 " connected := {established|syn-sent|syn-recv|fin-wait-{1,2}|time-wait|close-wait|last-ack|closing}\n"
3938 " synchronized := {established|syn-recv|fin-wait-{1,2}|time-wait|close-wait|last-ack|closing}\n"
3939 " bucket := {syn-recv|time-wait}\n"
3940 " big := {established|syn-sent|fin-wait-{1,2}|closed|close-wait|last-ack|listening|closing}\n"
3944 static void help(void) __attribute__((noreturn
));
3945 static void help(void)
3951 static void usage(void) __attribute__((noreturn
));
3952 static void usage(void)
3959 static int scan_state(const char *state
)
3961 static const char * const sstate_namel
[] = {
3963 [SS_ESTABLISHED
] = "established",
3964 [SS_SYN_SENT
] = "syn-sent",
3965 [SS_SYN_RECV
] = "syn-recv",
3966 [SS_FIN_WAIT1
] = "fin-wait-1",
3967 [SS_FIN_WAIT2
] = "fin-wait-2",
3968 [SS_TIME_WAIT
] = "time-wait",
3969 [SS_CLOSE
] = "unconnected",
3970 [SS_CLOSE_WAIT
] = "close-wait",
3971 [SS_LAST_ACK
] = "last-ack",
3972 [SS_LISTEN
] = "listening",
3973 [SS_CLOSING
] = "closing",
3977 if (strcasecmp(state
, "close") == 0 ||
3978 strcasecmp(state
, "closed") == 0)
3979 return (1<<SS_CLOSE
);
3980 if (strcasecmp(state
, "syn-rcv") == 0)
3981 return (1<<SS_SYN_RECV
);
3982 if (strcasecmp(state
, "established") == 0)
3983 return (1<<SS_ESTABLISHED
);
3984 if (strcasecmp(state
, "all") == 0)
3986 if (strcasecmp(state
, "connected") == 0)
3987 return SS_ALL
& ~((1<<SS_CLOSE
)|(1<<SS_LISTEN
));
3988 if (strcasecmp(state
, "synchronized") == 0)
3989 return SS_ALL
& ~((1<<SS_CLOSE
)|(1<<SS_LISTEN
)|(1<<SS_SYN_SENT
));
3990 if (strcasecmp(state
, "bucket") == 0)
3991 return (1<<SS_SYN_RECV
)|(1<<SS_TIME_WAIT
);
3992 if (strcasecmp(state
, "big") == 0)
3993 return SS_ALL
& ~((1<<SS_SYN_RECV
)|(1<<SS_TIME_WAIT
));
3994 for (i
= 0; i
< SS_MAX
; i
++) {
3995 if (strcasecmp(state
, sstate_namel
[i
]) == 0)
3999 fprintf(stderr
, "ss: wrong state name: %s\n", state
);
4003 static const struct option long_opts
[] = {
4004 { "numeric", 0, 0, 'n' },
4005 { "resolve", 0, 0, 'r' },
4006 { "options", 0, 0, 'o' },
4007 { "extended", 0, 0, 'e' },
4008 { "memory", 0, 0, 'm' },
4009 { "info", 0, 0, 'i' },
4010 { "processes", 0, 0, 'p' },
4011 { "bpf", 0, 0, 'b' },
4012 { "events", 0, 0, 'E' },
4013 { "dccp", 0, 0, 'd' },
4014 { "tcp", 0, 0, 't' },
4015 { "sctp", 0, 0, 'S' },
4016 { "udp", 0, 0, 'u' },
4017 { "raw", 0, 0, 'w' },
4018 { "unix", 0, 0, 'x' },
4019 { "all", 0, 0, 'a' },
4020 { "listening", 0, 0, 'l' },
4021 { "ipv4", 0, 0, '4' },
4022 { "ipv6", 0, 0, '6' },
4023 { "packet", 0, 0, '0' },
4024 { "family", 1, 0, 'f' },
4025 { "socket", 1, 0, 'A' },
4026 { "query", 1, 0, 'A' },
4027 { "summary", 0, 0, 's' },
4028 { "diag", 1, 0, 'D' },
4029 { "filter", 1, 0, 'F' },
4030 { "version", 0, 0, 'V' },
4031 { "help", 0, 0, 'h' },
4032 { "context", 0, 0, 'Z' },
4033 { "contexts", 0, 0, 'z' },
4034 { "net", 1, 0, 'N' },
4035 { "kill", 0, 0, 'K' },
4036 { "no-header", 0, 0, 'H' },
4041 int main(int argc
, char *argv
[])
4046 const char *dump_tcpdiag
= NULL
;
4047 FILE *filter_fp
= NULL
;
4049 int state_filter
= 0;
4050 int addrp_width
, screen_width
= 80;
4052 while ((ch
= getopt_long(argc
, argv
,
4053 "dhaletuwxnro460spbEf:miA:D:F:vVzZN:KHS",
4054 long_opts
, NULL
)) != EOF
) {
4057 resolve_services
= 0;
4077 user_ent_hash_build();
4087 filter_db_set(¤t_filter
, DCCP_DB
);
4090 filter_db_set(¤t_filter
, TCP_DB
);
4093 filter_db_set(¤t_filter
, SCTP_DB
);
4096 filter_db_set(¤t_filter
, UDP_DB
);
4099 filter_db_set(¤t_filter
, RAW_DB
);
4102 filter_af_set(¤t_filter
, AF_UNIX
);
4105 state_filter
= SS_ALL
;
4108 state_filter
= (1 << SS_LISTEN
) | (1 << SS_CLOSE
);
4111 filter_af_set(¤t_filter
, AF_INET
);
4114 filter_af_set(¤t_filter
, AF_INET6
);
4117 filter_af_set(¤t_filter
, AF_PACKET
);
4120 if (strcmp(optarg
, "inet") == 0)
4121 filter_af_set(¤t_filter
, AF_INET
);
4122 else if (strcmp(optarg
, "inet6") == 0)
4123 filter_af_set(¤t_filter
, AF_INET6
);
4124 else if (strcmp(optarg
, "link") == 0)
4125 filter_af_set(¤t_filter
, AF_PACKET
);
4126 else if (strcmp(optarg
, "unix") == 0)
4127 filter_af_set(¤t_filter
, AF_UNIX
);
4128 else if (strcmp(optarg
, "netlink") == 0)
4129 filter_af_set(¤t_filter
, AF_NETLINK
);
4130 else if (strcmp(optarg
, "help") == 0)
4133 fprintf(stderr
, "ss: \"%s\" is invalid family\n",
4143 current_filter
.dbs
= 0;
4144 state_filter
= state_filter
?
4145 state_filter
: SS_CONN
;
4151 if ((p1
= strchr(p
, ',')) != NULL
)
4153 if (strcmp(p
, "all") == 0) {
4154 filter_default_dbs(¤t_filter
);
4155 } else if (strcmp(p
, "inet") == 0) {
4156 filter_db_set(¤t_filter
, UDP_DB
);
4157 filter_db_set(¤t_filter
, DCCP_DB
);
4158 filter_db_set(¤t_filter
, TCP_DB
);
4159 filter_db_set(¤t_filter
, SCTP_DB
);
4160 filter_db_set(¤t_filter
, RAW_DB
);
4161 } else if (strcmp(p
, "udp") == 0) {
4162 filter_db_set(¤t_filter
, UDP_DB
);
4163 } else if (strcmp(p
, "dccp") == 0) {
4164 filter_db_set(¤t_filter
, DCCP_DB
);
4165 } else if (strcmp(p
, "tcp") == 0) {
4166 filter_db_set(¤t_filter
, TCP_DB
);
4167 } else if (strcmp(p
, "sctp") == 0) {
4168 filter_db_set(¤t_filter
, SCTP_DB
);
4169 } else if (strcmp(p
, "raw") == 0) {
4170 filter_db_set(¤t_filter
, RAW_DB
);
4171 } else if (strcmp(p
, "unix") == 0) {
4172 filter_db_set(¤t_filter
, UNIX_ST_DB
);
4173 filter_db_set(¤t_filter
, UNIX_DG_DB
);
4174 filter_db_set(¤t_filter
, UNIX_SQ_DB
);
4175 } else if (strcasecmp(p
, "unix_stream") == 0 ||
4176 strcmp(p
, "u_str") == 0) {
4177 filter_db_set(¤t_filter
, UNIX_ST_DB
);
4178 } else if (strcasecmp(p
, "unix_dgram") == 0 ||
4179 strcmp(p
, "u_dgr") == 0) {
4180 filter_db_set(¤t_filter
, UNIX_DG_DB
);
4181 } else if (strcasecmp(p
, "unix_seqpacket") == 0 ||
4182 strcmp(p
, "u_seq") == 0) {
4183 filter_db_set(¤t_filter
, UNIX_SQ_DB
);
4184 } else if (strcmp(p
, "packet") == 0) {
4185 filter_db_set(¤t_filter
, PACKET_R_DB
);
4186 filter_db_set(¤t_filter
, PACKET_DG_DB
);
4187 } else if (strcmp(p
, "packet_raw") == 0 ||
4188 strcmp(p
, "p_raw") == 0) {
4189 filter_db_set(¤t_filter
, PACKET_R_DB
);
4190 } else if (strcmp(p
, "packet_dgram") == 0 ||
4191 strcmp(p
, "p_dgr") == 0) {
4192 filter_db_set(¤t_filter
, PACKET_DG_DB
);
4193 } else if (strcmp(p
, "netlink") == 0) {
4194 filter_db_set(¤t_filter
, NETLINK_DB
);
4196 fprintf(stderr
, "ss: \"%s\" is illegal socket table id\n", p
);
4207 dump_tcpdiag
= optarg
;
4211 fprintf(stderr
, "More than one filter file\n");
4214 if (optarg
[0] == '-')
4217 filter_fp
= fopen(optarg
, "r");
4219 perror("fopen filter file");
4225 printf("ss utility, iproute2-ss%s\n", SNAPSHOT
);
4231 if (is_selinux_enabled() <= 0) {
4232 fprintf(stderr
, "ss: SELinux is not enabled.\n");
4236 user_ent_hash_build();
4239 if (netns_switch(optarg
))
4243 current_filter
.kill
= 1;
4261 if (do_default
&& argc
== 0)
4266 if (strcmp(*argv
, "state") == 0) {
4270 state_filter
|= scan_state(*argv
);
4272 } else if (strcmp(*argv
, "exclude") == 0 ||
4273 strcmp(*argv
, "excl") == 0) {
4276 state_filter
= SS_ALL
;
4277 state_filter
&= ~scan_state(*argv
);
4286 state_filter
= state_filter
? state_filter
: SS_CONN
;
4287 filter_default_dbs(¤t_filter
);
4290 filter_states_set(¤t_filter
, state_filter
);
4291 filter_merge_defaults(¤t_filter
);
4293 if (resolve_services
&& resolve_hosts
&&
4294 (current_filter
.dbs
& (UNIX_DBM
|INET_L4_DBM
)))
4295 init_service_resolver();
4297 if (current_filter
.dbs
== 0) {
4298 fprintf(stderr
, "ss: no socket tables to show with such filter.\n");
4301 if (current_filter
.families
== 0) {
4302 fprintf(stderr
, "ss: no families to show with such filter.\n");
4305 if (current_filter
.states
== 0) {
4306 fprintf(stderr
, "ss: no socket states to show with such filter.\n");
4311 FILE *dump_fp
= stdout
;
4313 if (!(current_filter
.dbs
& (1<<TCP_DB
))) {
4314 fprintf(stderr
, "ss: tcpdiag dump requested and no tcp in filter.\n");
4317 if (dump_tcpdiag
[0] != '-') {
4318 dump_fp
= fopen(dump_tcpdiag
, "w");
4319 if (!dump_tcpdiag
) {
4320 perror("fopen dump file");
4324 inet_show_netlink(¤t_filter
, dump_fp
, IPPROTO_TCP
);
4329 if (ssfilter_parse(¤t_filter
.f
, argc
, argv
, filter_fp
))
4333 if (current_filter
.dbs
&(current_filter
.dbs
-1))
4337 if (current_filter
.states
&(current_filter
.states
-1))
4340 if (isatty(STDOUT_FILENO
)) {
4343 if (ioctl(STDOUT_FILENO
, TIOCGWINSZ
, &w
) != -1) {
4345 screen_width
= w
.ws_col
;
4349 addrp_width
= screen_width
;
4350 addrp_width
-= netid_width
+1;
4351 addrp_width
-= state_width
+1;
4354 if (addrp_width
&1) {
4357 else if (state_width
)
4364 serv_width
= resolve_services
? 7 : 5;
4366 if (addrp_width
< 15+serv_width
+1)
4367 addrp_width
= 15+serv_width
+1;
4369 addr_width
= addrp_width
- serv_width
- 1;
4373 printf("%-*s ", netid_width
, "Netid");
4375 printf("%-*s ", state_width
, "State");
4376 printf("%-6s %-6s ", "Recv-Q", "Send-Q");
4379 /* Make enough space for the local/remote port field */
4384 printf("%*s:%-*s %*s:%-*s\n",
4385 addr_width
, "Local Address", serv_width
, "Port",
4386 addr_width
, "Peer Address", serv_width
, "Port");
4392 exit(handle_follow_request(¤t_filter
));
4394 if (current_filter
.dbs
& (1<<NETLINK_DB
))
4395 netlink_show(¤t_filter
);
4396 if (current_filter
.dbs
& PACKET_DBM
)
4397 packet_show(¤t_filter
);
4398 if (current_filter
.dbs
& UNIX_DBM
)
4399 unix_show(¤t_filter
);
4400 if (current_filter
.dbs
& (1<<RAW_DB
))
4401 raw_show(¤t_filter
);
4402 if (current_filter
.dbs
& (1<<UDP_DB
))
4403 udp_show(¤t_filter
);
4404 if (current_filter
.dbs
& (1<<TCP_DB
))
4405 tcp_show(¤t_filter
);
4406 if (current_filter
.dbs
& (1<<DCCP_DB
))
4407 dccp_show(¤t_filter
);
4408 if (current_filter
.dbs
& (1<<SCTP_DB
))
4409 sctp_show(¤t_filter
);
4411 if (show_users
|| show_proc_ctx
|| show_sock_ctx
)