xref: /xnu-10063.141.1/bsd/netkey/key_debug.c (revision d8b80295118ef25ac3a784134bcf95cd8e88109f)
1*d8b80295SApple OSS Distributions /*	$FreeBSD: src/sys/netkey/key_debug.c,v 1.10.2.5 2002/04/28 05:40:28 suz Exp $	*/
2*d8b80295SApple OSS Distributions /*	$KAME: key_debug.c,v 1.26 2001/06/27 10:46:50 sakane Exp $	*/
3*d8b80295SApple OSS Distributions 
4*d8b80295SApple OSS Distributions /*
5*d8b80295SApple OSS Distributions  * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
6*d8b80295SApple OSS Distributions  * All rights reserved.
7*d8b80295SApple OSS Distributions  *
8*d8b80295SApple OSS Distributions  * Redistribution and use in source and binary forms, with or without
9*d8b80295SApple OSS Distributions  * modification, are permitted provided that the following conditions
10*d8b80295SApple OSS Distributions  * are met:
11*d8b80295SApple OSS Distributions  * 1. Redistributions of source code must retain the above copyright
12*d8b80295SApple OSS Distributions  *    notice, this list of conditions and the following disclaimer.
13*d8b80295SApple OSS Distributions  * 2. Redistributions in binary form must reproduce the above copyright
14*d8b80295SApple OSS Distributions  *    notice, this list of conditions and the following disclaimer in the
15*d8b80295SApple OSS Distributions  *    documentation and/or other materials provided with the distribution.
16*d8b80295SApple OSS Distributions  * 3. Neither the name of the project nor the names of its contributors
17*d8b80295SApple OSS Distributions  *    may be used to endorse or promote products derived from this software
18*d8b80295SApple OSS Distributions  *    without specific prior written permission.
19*d8b80295SApple OSS Distributions  *
20*d8b80295SApple OSS Distributions  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21*d8b80295SApple OSS Distributions  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22*d8b80295SApple OSS Distributions  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23*d8b80295SApple OSS Distributions  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24*d8b80295SApple OSS Distributions  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25*d8b80295SApple OSS Distributions  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26*d8b80295SApple OSS Distributions  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27*d8b80295SApple OSS Distributions  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28*d8b80295SApple OSS Distributions  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29*d8b80295SApple OSS Distributions  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30*d8b80295SApple OSS Distributions  * SUCH DAMAGE.
31*d8b80295SApple OSS Distributions  */
32*d8b80295SApple OSS Distributions 
33*d8b80295SApple OSS Distributions #include <sys/types.h>
34*d8b80295SApple OSS Distributions #include <sys/param.h>
35*d8b80295SApple OSS Distributions #ifdef KERNEL
36*d8b80295SApple OSS Distributions #include <sys/systm.h>
37*d8b80295SApple OSS Distributions #include <sys/mbuf.h>
38*d8b80295SApple OSS Distributions #include <sys/queue.h>
39*d8b80295SApple OSS Distributions #endif
40*d8b80295SApple OSS Distributions #include <sys/socket.h>
41*d8b80295SApple OSS Distributions 
42*d8b80295SApple OSS Distributions #include <net/route.h>
43*d8b80295SApple OSS Distributions 
44*d8b80295SApple OSS Distributions #include <netkey/key_var.h>
45*d8b80295SApple OSS Distributions #include <netkey/key_debug.h>
46*d8b80295SApple OSS Distributions 
47*d8b80295SApple OSS Distributions #include <netinet/in.h>
48*d8b80295SApple OSS Distributions #include <netinet6/ipsec.h>
49*d8b80295SApple OSS Distributions 
50*d8b80295SApple OSS Distributions #ifndef KERNEL
51*d8b80295SApple OSS Distributions #include <ctype.h>
52*d8b80295SApple OSS Distributions #include <stdio.h>
53*d8b80295SApple OSS Distributions #include <stdlib.h>
54*d8b80295SApple OSS Distributions #endif /* !KERNEL */
55*d8b80295SApple OSS Distributions 
56*d8b80295SApple OSS Distributions #if !defined(KERNEL) || (defined(KERNEL) && defined(IPSEC_DEBUG))
57*d8b80295SApple OSS Distributions 
58*d8b80295SApple OSS Distributions static void kdebug_sadb_prop(struct sadb_ext *);
59*d8b80295SApple OSS Distributions static void kdebug_sadb_identity(struct sadb_ext *);
60*d8b80295SApple OSS Distributions static void kdebug_sadb_supported(struct sadb_ext *);
61*d8b80295SApple OSS Distributions static void kdebug_sadb_lifetime(struct sadb_ext *);
62*d8b80295SApple OSS Distributions static void kdebug_sadb_sa(struct sadb_ext *);
63*d8b80295SApple OSS Distributions static void kdebug_sadb_address(struct sadb_ext *);
64*d8b80295SApple OSS Distributions static void kdebug_sadb_key(struct sadb_ext *);
65*d8b80295SApple OSS Distributions static void kdebug_sadb_x_sa2(struct sadb_ext *);
66*d8b80295SApple OSS Distributions 
67*d8b80295SApple OSS Distributions #ifdef KERNEL
68*d8b80295SApple OSS Distributions static void kdebug_secreplay(struct secreplay *);
69*d8b80295SApple OSS Distributions #endif
70*d8b80295SApple OSS Distributions 
71*d8b80295SApple OSS Distributions #ifndef KERNEL
72*d8b80295SApple OSS Distributions #define panic(param)    { printf(param); exit(-1); }
73*d8b80295SApple OSS Distributions #endif
74*d8b80295SApple OSS Distributions 
75*d8b80295SApple OSS Distributions /* NOTE: host byte order */
76*d8b80295SApple OSS Distributions 
77*d8b80295SApple OSS Distributions /* %%%: about struct sadb_msg */
78*d8b80295SApple OSS Distributions void
kdebug_sadb(base)79*d8b80295SApple OSS Distributions kdebug_sadb(base)
80*d8b80295SApple OSS Distributions struct sadb_msg *base;
81*d8b80295SApple OSS Distributions {
82*d8b80295SApple OSS Distributions 	struct sadb_ext *ext;
83*d8b80295SApple OSS Distributions 	int tlen, extlen;
84*d8b80295SApple OSS Distributions 
85*d8b80295SApple OSS Distributions 	/* sanity check */
86*d8b80295SApple OSS Distributions 	if (base == NULL) {
87*d8b80295SApple OSS Distributions 		panic("kdebug_sadb: NULL pointer was passed.");
88*d8b80295SApple OSS Distributions 	}
89*d8b80295SApple OSS Distributions 
90*d8b80295SApple OSS Distributions 	printf("sadb_msg{ version=%u type=%u errno=%u satype=%u\n",
91*d8b80295SApple OSS Distributions 	    base->sadb_msg_version, base->sadb_msg_type,
92*d8b80295SApple OSS Distributions 	    base->sadb_msg_errno, base->sadb_msg_satype);
93*d8b80295SApple OSS Distributions 	printf("  len=%u reserved=%u seq=%u pid=%u\n",
94*d8b80295SApple OSS Distributions 	    base->sadb_msg_len, base->sadb_msg_reserved,
95*d8b80295SApple OSS Distributions 	    base->sadb_msg_seq, base->sadb_msg_pid);
96*d8b80295SApple OSS Distributions 
97*d8b80295SApple OSS Distributions 	tlen = PFKEY_UNUNIT64(base->sadb_msg_len) - sizeof(struct sadb_msg);
98*d8b80295SApple OSS Distributions 	ext = (struct sadb_ext *)((caddr_t)base + sizeof(struct sadb_msg));
99*d8b80295SApple OSS Distributions 
100*d8b80295SApple OSS Distributions 	while (tlen > 0) {
101*d8b80295SApple OSS Distributions 		printf("sadb_ext{ len=%u type=%u }\n",
102*d8b80295SApple OSS Distributions 		    ext->sadb_ext_len, ext->sadb_ext_type);
103*d8b80295SApple OSS Distributions 
104*d8b80295SApple OSS Distributions 		if (ext->sadb_ext_len == 0) {
105*d8b80295SApple OSS Distributions 			printf("kdebug_sadb: invalid ext_len=0 was passed.\n");
106*d8b80295SApple OSS Distributions 			return;
107*d8b80295SApple OSS Distributions 		}
108*d8b80295SApple OSS Distributions 		if (ext->sadb_ext_len > tlen) {
109*d8b80295SApple OSS Distributions 			printf("kdebug_sadb: ext_len exceeds end of buffer.\n");
110*d8b80295SApple OSS Distributions 			return;
111*d8b80295SApple OSS Distributions 		}
112*d8b80295SApple OSS Distributions 
113*d8b80295SApple OSS Distributions 		switch (ext->sadb_ext_type) {
114*d8b80295SApple OSS Distributions 		case SADB_EXT_SA:
115*d8b80295SApple OSS Distributions 			kdebug_sadb_sa(ext);
116*d8b80295SApple OSS Distributions 			break;
117*d8b80295SApple OSS Distributions 		case SADB_EXT_LIFETIME_CURRENT:
118*d8b80295SApple OSS Distributions 		case SADB_EXT_LIFETIME_HARD:
119*d8b80295SApple OSS Distributions 		case SADB_EXT_LIFETIME_SOFT:
120*d8b80295SApple OSS Distributions 			kdebug_sadb_lifetime(ext);
121*d8b80295SApple OSS Distributions 			break;
122*d8b80295SApple OSS Distributions 		case SADB_EXT_ADDRESS_SRC:
123*d8b80295SApple OSS Distributions 		case SADB_EXT_ADDRESS_DST:
124*d8b80295SApple OSS Distributions 		case SADB_EXT_ADDRESS_PROXY:
125*d8b80295SApple OSS Distributions 			kdebug_sadb_address(ext);
126*d8b80295SApple OSS Distributions 			break;
127*d8b80295SApple OSS Distributions 		case SADB_EXT_KEY_AUTH:
128*d8b80295SApple OSS Distributions 		case SADB_EXT_KEY_ENCRYPT:
129*d8b80295SApple OSS Distributions 			kdebug_sadb_key(ext);
130*d8b80295SApple OSS Distributions 			break;
131*d8b80295SApple OSS Distributions 		case SADB_EXT_IDENTITY_SRC:
132*d8b80295SApple OSS Distributions 		case SADB_EXT_IDENTITY_DST:
133*d8b80295SApple OSS Distributions 			kdebug_sadb_identity(ext);
134*d8b80295SApple OSS Distributions 			break;
135*d8b80295SApple OSS Distributions 		case SADB_EXT_SENSITIVITY:
136*d8b80295SApple OSS Distributions 			break;
137*d8b80295SApple OSS Distributions 		case SADB_EXT_PROPOSAL:
138*d8b80295SApple OSS Distributions 			kdebug_sadb_prop(ext);
139*d8b80295SApple OSS Distributions 			break;
140*d8b80295SApple OSS Distributions 		case SADB_EXT_SUPPORTED_AUTH:
141*d8b80295SApple OSS Distributions 		case SADB_EXT_SUPPORTED_ENCRYPT:
142*d8b80295SApple OSS Distributions 			kdebug_sadb_supported(ext);
143*d8b80295SApple OSS Distributions 			break;
144*d8b80295SApple OSS Distributions 		case SADB_EXT_SPIRANGE:
145*d8b80295SApple OSS Distributions 		case SADB_X_EXT_KMPRIVATE:
146*d8b80295SApple OSS Distributions 			break;
147*d8b80295SApple OSS Distributions 		case SADB_X_EXT_POLICY:
148*d8b80295SApple OSS Distributions 			kdebug_sadb_x_policy(ext);
149*d8b80295SApple OSS Distributions 			break;
150*d8b80295SApple OSS Distributions 		case SADB_X_EXT_SA2:
151*d8b80295SApple OSS Distributions 			kdebug_sadb_x_sa2(ext);
152*d8b80295SApple OSS Distributions 			break;
153*d8b80295SApple OSS Distributions 		case SADB_EXT_SESSION_ID:
154*d8b80295SApple OSS Distributions 			kdebug_sadb_session_id(ext);
155*d8b80295SApple OSS Distributions 			break;
156*d8b80295SApple OSS Distributions 		case SADB_EXT_SASTAT:
157*d8b80295SApple OSS Distributions 			kdebug_sadb_sastat(ext);
158*d8b80295SApple OSS Distributions 			break;
159*d8b80295SApple OSS Distributions 		default:
160*d8b80295SApple OSS Distributions 			printf("kdebug_sadb: invalid ext_type %u was passed.\n",
161*d8b80295SApple OSS Distributions 			    ext->sadb_ext_type);
162*d8b80295SApple OSS Distributions 			return;
163*d8b80295SApple OSS Distributions 		}
164*d8b80295SApple OSS Distributions 
165*d8b80295SApple OSS Distributions 		extlen = PFKEY_UNUNIT64(ext->sadb_ext_len);
166*d8b80295SApple OSS Distributions 		tlen -= extlen;
167*d8b80295SApple OSS Distributions 		ext = (struct sadb_ext *)((caddr_t)ext + extlen);
168*d8b80295SApple OSS Distributions 	}
169*d8b80295SApple OSS Distributions 
170*d8b80295SApple OSS Distributions 	return;
171*d8b80295SApple OSS Distributions }
172*d8b80295SApple OSS Distributions 
173*d8b80295SApple OSS Distributions static void
kdebug_sadb_prop(ext)174*d8b80295SApple OSS Distributions kdebug_sadb_prop(ext)
175*d8b80295SApple OSS Distributions struct sadb_ext *ext;
176*d8b80295SApple OSS Distributions {
177*d8b80295SApple OSS Distributions 	struct sadb_prop *prop = (struct sadb_prop *)ext;
178*d8b80295SApple OSS Distributions 	struct sadb_comb *comb;
179*d8b80295SApple OSS Distributions 	int len;
180*d8b80295SApple OSS Distributions 
181*d8b80295SApple OSS Distributions 	/* sanity check */
182*d8b80295SApple OSS Distributions 	if (ext == NULL) {
183*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_prop: NULL pointer was passed.");
184*d8b80295SApple OSS Distributions 	}
185*d8b80295SApple OSS Distributions 
186*d8b80295SApple OSS Distributions 	len = (PFKEY_UNUNIT64(prop->sadb_prop_len) - sizeof(*prop))
187*d8b80295SApple OSS Distributions 	    / sizeof(*comb);
188*d8b80295SApple OSS Distributions 	comb = (struct sadb_comb *)(prop + 1);
189*d8b80295SApple OSS Distributions 	printf("sadb_prop{ replay=%u\n", prop->sadb_prop_replay);
190*d8b80295SApple OSS Distributions 
191*d8b80295SApple OSS Distributions 	while (len--) {
192*d8b80295SApple OSS Distributions 		printf("sadb_comb{ auth=%u encrypt=%u "
193*d8b80295SApple OSS Distributions 		    "flags=0x%04x reserved=0x%08x\n",
194*d8b80295SApple OSS Distributions 		    comb->sadb_comb_auth, comb->sadb_comb_encrypt,
195*d8b80295SApple OSS Distributions 		    comb->sadb_comb_flags, comb->sadb_comb_reserved);
196*d8b80295SApple OSS Distributions 
197*d8b80295SApple OSS Distributions 		printf("  auth_minbits=%u auth_maxbits=%u "
198*d8b80295SApple OSS Distributions 		    "encrypt_minbits=%u encrypt_maxbits=%u\n",
199*d8b80295SApple OSS Distributions 		    comb->sadb_comb_auth_minbits,
200*d8b80295SApple OSS Distributions 		    comb->sadb_comb_auth_maxbits,
201*d8b80295SApple OSS Distributions 		    comb->sadb_comb_encrypt_minbits,
202*d8b80295SApple OSS Distributions 		    comb->sadb_comb_encrypt_maxbits);
203*d8b80295SApple OSS Distributions 
204*d8b80295SApple OSS Distributions 		printf("  soft_alloc=%u hard_alloc=%u "
205*d8b80295SApple OSS Distributions 		    "soft_bytes=%lu hard_bytes=%lu\n",
206*d8b80295SApple OSS Distributions 		    comb->sadb_comb_soft_allocations,
207*d8b80295SApple OSS Distributions 		    comb->sadb_comb_hard_allocations,
208*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_soft_bytes,
209*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_hard_bytes);
210*d8b80295SApple OSS Distributions 
211*d8b80295SApple OSS Distributions 		printf("  soft_alloc=%lu hard_alloc=%lu "
212*d8b80295SApple OSS Distributions 		    "soft_bytes=%lu hard_bytes=%lu }\n",
213*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_soft_addtime,
214*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_hard_addtime,
215*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_soft_usetime,
216*d8b80295SApple OSS Distributions 		    (u_int32_t)comb->sadb_comb_hard_usetime);
217*d8b80295SApple OSS Distributions 		comb++;
218*d8b80295SApple OSS Distributions 	}
219*d8b80295SApple OSS Distributions 	printf("}\n");
220*d8b80295SApple OSS Distributions 
221*d8b80295SApple OSS Distributions 	return;
222*d8b80295SApple OSS Distributions }
223*d8b80295SApple OSS Distributions 
224*d8b80295SApple OSS Distributions static void
kdebug_sadb_identity(ext)225*d8b80295SApple OSS Distributions kdebug_sadb_identity(ext)
226*d8b80295SApple OSS Distributions struct sadb_ext *ext;
227*d8b80295SApple OSS Distributions {
228*d8b80295SApple OSS Distributions 	struct sadb_ident *id = (struct sadb_ident *)ext;
229*d8b80295SApple OSS Distributions 	int len;
230*d8b80295SApple OSS Distributions 
231*d8b80295SApple OSS Distributions 	/* sanity check */
232*d8b80295SApple OSS Distributions 	if (ext == NULL) {
233*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_identity: NULL pointer was passed.");
234*d8b80295SApple OSS Distributions 	}
235*d8b80295SApple OSS Distributions 
236*d8b80295SApple OSS Distributions 	len = PFKEY_UNUNIT64(id->sadb_ident_len) - sizeof(*id);
237*d8b80295SApple OSS Distributions 	printf("sadb_ident_%s{",
238*d8b80295SApple OSS Distributions 	    id->sadb_ident_exttype == SADB_EXT_IDENTITY_SRC ? "src" : "dst");
239*d8b80295SApple OSS Distributions 	switch (id->sadb_ident_type) {
240*d8b80295SApple OSS Distributions 	default:
241*d8b80295SApple OSS Distributions 		printf(" type=%d id=%lu",
242*d8b80295SApple OSS Distributions 		    id->sadb_ident_type, (u_int32_t)id->sadb_ident_id);
243*d8b80295SApple OSS Distributions 		if (len) {
244*d8b80295SApple OSS Distributions #ifdef KERNEL
245*d8b80295SApple OSS Distributions 			ipsec_hexdump((caddr_t)(id + 1), len); /*XXX cast ?*/
246*d8b80295SApple OSS Distributions #else
247*d8b80295SApple OSS Distributions 			char *p, *ep;
248*d8b80295SApple OSS Distributions 			printf("\n  str=\"");
249*d8b80295SApple OSS Distributions 			p = (char *)(id + 1);
250*d8b80295SApple OSS Distributions 			ep = p + len;
251*d8b80295SApple OSS Distributions 			for (/*nothing*/; *p && p < ep; p++) {
252*d8b80295SApple OSS Distributions 				if (isprint(*p)) {
253*d8b80295SApple OSS Distributions 					printf("%c", *p & 0xff);
254*d8b80295SApple OSS Distributions 				} else {
255*d8b80295SApple OSS Distributions 					printf("\\%03o", *p & 0xff);
256*d8b80295SApple OSS Distributions 				}
257*d8b80295SApple OSS Distributions 			}
258*d8b80295SApple OSS Distributions #endif
259*d8b80295SApple OSS Distributions 			printf("\"");
260*d8b80295SApple OSS Distributions 		}
261*d8b80295SApple OSS Distributions 		break;
262*d8b80295SApple OSS Distributions 	}
263*d8b80295SApple OSS Distributions 
264*d8b80295SApple OSS Distributions 	printf(" }\n");
265*d8b80295SApple OSS Distributions 
266*d8b80295SApple OSS Distributions 	return;
267*d8b80295SApple OSS Distributions }
268*d8b80295SApple OSS Distributions 
269*d8b80295SApple OSS Distributions static void
kdebug_sadb_supported(ext)270*d8b80295SApple OSS Distributions kdebug_sadb_supported(ext)
271*d8b80295SApple OSS Distributions struct sadb_ext *ext;
272*d8b80295SApple OSS Distributions {
273*d8b80295SApple OSS Distributions 	struct sadb_supported *sup = (struct sadb_supported *)ext;
274*d8b80295SApple OSS Distributions 	struct sadb_alg *alg;
275*d8b80295SApple OSS Distributions 	int len;
276*d8b80295SApple OSS Distributions 
277*d8b80295SApple OSS Distributions 	/* sanity check */
278*d8b80295SApple OSS Distributions 	if (ext == NULL) {
279*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_supported: NULL pointer was passed.");
280*d8b80295SApple OSS Distributions 	}
281*d8b80295SApple OSS Distributions 
282*d8b80295SApple OSS Distributions 	len = (PFKEY_UNUNIT64(sup->sadb_supported_len) - sizeof(*sup))
283*d8b80295SApple OSS Distributions 	    / sizeof(*alg);
284*d8b80295SApple OSS Distributions 	alg = (struct sadb_alg *)(sup + 1);
285*d8b80295SApple OSS Distributions 	printf("sadb_sup{\n");
286*d8b80295SApple OSS Distributions 	while (len--) {
287*d8b80295SApple OSS Distributions 		printf("  { id=%d ivlen=%d min=%d max=%d }\n",
288*d8b80295SApple OSS Distributions 		    alg->sadb_alg_id, alg->sadb_alg_ivlen,
289*d8b80295SApple OSS Distributions 		    alg->sadb_alg_minbits, alg->sadb_alg_maxbits);
290*d8b80295SApple OSS Distributions 		alg++;
291*d8b80295SApple OSS Distributions 	}
292*d8b80295SApple OSS Distributions 	printf("}\n");
293*d8b80295SApple OSS Distributions 
294*d8b80295SApple OSS Distributions 	return;
295*d8b80295SApple OSS Distributions }
296*d8b80295SApple OSS Distributions 
297*d8b80295SApple OSS Distributions static void
kdebug_sadb_lifetime(ext)298*d8b80295SApple OSS Distributions kdebug_sadb_lifetime(ext)
299*d8b80295SApple OSS Distributions struct sadb_ext *ext;
300*d8b80295SApple OSS Distributions {
301*d8b80295SApple OSS Distributions 	struct sadb_lifetime *lft = (struct sadb_lifetime *)ext;
302*d8b80295SApple OSS Distributions 
303*d8b80295SApple OSS Distributions 	/* sanity check */
304*d8b80295SApple OSS Distributions 	if (ext == NULL) {
305*d8b80295SApple OSS Distributions 		printf("kdebug_sadb_lifetime: NULL pointer was passed.\n");
306*d8b80295SApple OSS Distributions 	}
307*d8b80295SApple OSS Distributions 
308*d8b80295SApple OSS Distributions 	printf("sadb_lifetime{ alloc=%u, bytes=%u\n",
309*d8b80295SApple OSS Distributions 	    lft->sadb_lifetime_allocations,
310*d8b80295SApple OSS Distributions 	    (u_int32_t)lft->sadb_lifetime_bytes);
311*d8b80295SApple OSS Distributions 	printf("  addtime=%u, usetime=%u }\n",
312*d8b80295SApple OSS Distributions 	    (u_int32_t)lft->sadb_lifetime_addtime,
313*d8b80295SApple OSS Distributions 	    (u_int32_t)lft->sadb_lifetime_usetime);
314*d8b80295SApple OSS Distributions 
315*d8b80295SApple OSS Distributions 	return;
316*d8b80295SApple OSS Distributions }
317*d8b80295SApple OSS Distributions 
318*d8b80295SApple OSS Distributions static void
kdebug_sadb_sa(ext)319*d8b80295SApple OSS Distributions kdebug_sadb_sa(ext)
320*d8b80295SApple OSS Distributions struct sadb_ext *ext;
321*d8b80295SApple OSS Distributions {
322*d8b80295SApple OSS Distributions 	struct sadb_sa *sa = (struct sadb_sa *)ext;
323*d8b80295SApple OSS Distributions 
324*d8b80295SApple OSS Distributions 	/* sanity check */
325*d8b80295SApple OSS Distributions 	if (ext == NULL) {
326*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_sa: NULL pointer was passed.");
327*d8b80295SApple OSS Distributions 	}
328*d8b80295SApple OSS Distributions 
329*d8b80295SApple OSS Distributions 	printf("sadb_sa{ spi=%u replay=%u state=%u\n",
330*d8b80295SApple OSS Distributions 	    (u_int32_t)ntohl(sa->sadb_sa_spi), sa->sadb_sa_replay,
331*d8b80295SApple OSS Distributions 	    sa->sadb_sa_state);
332*d8b80295SApple OSS Distributions 	printf("  auth=%u encrypt=%u flags=0x%08x }\n",
333*d8b80295SApple OSS Distributions 	    sa->sadb_sa_auth, sa->sadb_sa_encrypt, sa->sadb_sa_flags);
334*d8b80295SApple OSS Distributions 
335*d8b80295SApple OSS Distributions 	return;
336*d8b80295SApple OSS Distributions }
337*d8b80295SApple OSS Distributions 
338*d8b80295SApple OSS Distributions static void
kdebug_sadb_address(ext)339*d8b80295SApple OSS Distributions kdebug_sadb_address(ext)
340*d8b80295SApple OSS Distributions struct sadb_ext *ext;
341*d8b80295SApple OSS Distributions {
342*d8b80295SApple OSS Distributions 	struct sadb_address *addr = (struct sadb_address *)ext;
343*d8b80295SApple OSS Distributions 
344*d8b80295SApple OSS Distributions 	/* sanity check */
345*d8b80295SApple OSS Distributions 	if (ext == NULL) {
346*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_address: NULL pointer was passed.");
347*d8b80295SApple OSS Distributions 	}
348*d8b80295SApple OSS Distributions 
349*d8b80295SApple OSS Distributions 	printf("sadb_address{ proto=%u prefixlen=%u reserved=0x%02x%02x }\n",
350*d8b80295SApple OSS Distributions 	    addr->sadb_address_proto, addr->sadb_address_prefixlen,
351*d8b80295SApple OSS Distributions 	    ((u_char *)&addr->sadb_address_reserved)[0],
352*d8b80295SApple OSS Distributions 	    ((u_char *)&addr->sadb_address_reserved)[1]);
353*d8b80295SApple OSS Distributions 
354*d8b80295SApple OSS Distributions 	kdebug_sockaddr((struct sockaddr *)((caddr_t)ext + sizeof(*addr)));
355*d8b80295SApple OSS Distributions 
356*d8b80295SApple OSS Distributions 	return;
357*d8b80295SApple OSS Distributions }
358*d8b80295SApple OSS Distributions 
359*d8b80295SApple OSS Distributions static void
kdebug_sadb_key(ext)360*d8b80295SApple OSS Distributions kdebug_sadb_key(ext)
361*d8b80295SApple OSS Distributions struct sadb_ext *ext;
362*d8b80295SApple OSS Distributions {
363*d8b80295SApple OSS Distributions 	struct sadb_key *key = (struct sadb_key *)ext;
364*d8b80295SApple OSS Distributions 
365*d8b80295SApple OSS Distributions 	/* sanity check */
366*d8b80295SApple OSS Distributions 	if (ext == NULL) {
367*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_key: NULL pointer was passed.");
368*d8b80295SApple OSS Distributions 	}
369*d8b80295SApple OSS Distributions 
370*d8b80295SApple OSS Distributions 	printf("sadb_key{ bits=%u reserved=%u\n",
371*d8b80295SApple OSS Distributions 	    key->sadb_key_bits, key->sadb_key_reserved);
372*d8b80295SApple OSS Distributions 	printf("  key=");
373*d8b80295SApple OSS Distributions 
374*d8b80295SApple OSS Distributions 	/* sanity check 2 */
375*d8b80295SApple OSS Distributions 	if ((key->sadb_key_bits >> 3) >
376*d8b80295SApple OSS Distributions 	    (PFKEY_UNUNIT64(key->sadb_key_len) - sizeof(struct sadb_key))) {
377*d8b80295SApple OSS Distributions 		printf("kdebug_sadb_key: key length mismatch, bit:%d len:%ld.\n",
378*d8b80295SApple OSS Distributions 		    key->sadb_key_bits >> 3,
379*d8b80295SApple OSS Distributions 		    (long)PFKEY_UNUNIT64(key->sadb_key_len) - sizeof(struct sadb_key));
380*d8b80295SApple OSS Distributions 	}
381*d8b80295SApple OSS Distributions 
382*d8b80295SApple OSS Distributions 	ipsec_hexdump((caddr_t)key + sizeof(struct sadb_key),
383*d8b80295SApple OSS Distributions 	    key->sadb_key_bits >> 3);
384*d8b80295SApple OSS Distributions 	printf(" }\n");
385*d8b80295SApple OSS Distributions 	return;
386*d8b80295SApple OSS Distributions }
387*d8b80295SApple OSS Distributions 
388*d8b80295SApple OSS Distributions static void
kdebug_sadb_x_sa2(ext)389*d8b80295SApple OSS Distributions kdebug_sadb_x_sa2(ext)
390*d8b80295SApple OSS Distributions struct sadb_ext *ext;
391*d8b80295SApple OSS Distributions {
392*d8b80295SApple OSS Distributions 	struct sadb_x_sa2 *sa2 = (struct sadb_x_sa2 *)ext;
393*d8b80295SApple OSS Distributions 
394*d8b80295SApple OSS Distributions 	/* sanity check */
395*d8b80295SApple OSS Distributions 	if (ext == NULL) {
396*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_x_sa2: NULL pointer was passed.");
397*d8b80295SApple OSS Distributions 	}
398*d8b80295SApple OSS Distributions 
399*d8b80295SApple OSS Distributions 	printf("sadb_x_sa2{ mode=%u reqid=%u\n",
400*d8b80295SApple OSS Distributions 	    sa2->sadb_x_sa2_mode, sa2->sadb_x_sa2_reqid);
401*d8b80295SApple OSS Distributions 	printf("  reserved1=%u reserved2=%u sequence=%u }\n",
402*d8b80295SApple OSS Distributions 	    sa2->sadb_x_sa2_reserved1, sa2->sadb_x_sa2_reserved2,
403*d8b80295SApple OSS Distributions 	    sa2->sadb_x_sa2_sequence);
404*d8b80295SApple OSS Distributions 
405*d8b80295SApple OSS Distributions 	return;
406*d8b80295SApple OSS Distributions }
407*d8b80295SApple OSS Distributions 
408*d8b80295SApple OSS Distributions static void
kdebug_sadb_session_id(ext)409*d8b80295SApple OSS Distributions kdebug_sadb_session_id(ext)
410*d8b80295SApple OSS Distributions struct sadb_ext *ext;
411*d8b80295SApple OSS Distributions {
412*d8b80295SApple OSS Distributions 	struct sadb_session_id *p = (__typeof__(p))ext;
413*d8b80295SApple OSS Distributions 
414*d8b80295SApple OSS Distributions 	/* sanity check */
415*d8b80295SApple OSS Distributions 	if (ext == NULL) {
416*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_session_id: NULL pointer was passed.");
417*d8b80295SApple OSS Distributions 	}
418*d8b80295SApple OSS Distributions 
419*d8b80295SApple OSS Distributions 	printf("sadb_session_id{ id0=%llx, id1=%llx}\n",
420*d8b80295SApple OSS Distributions 	    p->sadb_session_id_v[0],
421*d8b80295SApple OSS Distributions 	    p->sadb_session_id_v[1]);
422*d8b80295SApple OSS Distributions 
423*d8b80295SApple OSS Distributions 	return;
424*d8b80295SApple OSS Distributions }
425*d8b80295SApple OSS Distributions 
426*d8b80295SApple OSS Distributions static void
kdebug_sadb_sastat(ext)427*d8b80295SApple OSS Distributions kdebug_sadb_sastat(ext)
428*d8b80295SApple OSS Distributions struct sadb_ext *ext;
429*d8b80295SApple OSS Distributions {
430*d8b80295SApple OSS Distributions 	struct sadb_sastat *p = (__typeof__(p))ext;
431*d8b80295SApple OSS Distributions 	struct sastat      *stats;
432*d8b80295SApple OSS Distributions 	int    i;
433*d8b80295SApple OSS Distributions 
434*d8b80295SApple OSS Distributions 	/* sanity check */
435*d8b80295SApple OSS Distributions 	if (ext == NULL) {
436*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_sastat: NULL pointer was passed.");
437*d8b80295SApple OSS Distributions 	}
438*d8b80295SApple OSS Distributions 
439*d8b80295SApple OSS Distributions 	printf("sadb_sastat{ dir=%u num=%u\n",
440*d8b80295SApple OSS Distributions 	    p->sadb_sastat_dir, p->sadb_sastat_list_len);
441*d8b80295SApple OSS Distributions 	stats = (__typeof__(stats))(p + 1);
442*d8b80295SApple OSS Distributions 	for (i = 0; i < p->sadb_sastat_list_len; i++) {
443*d8b80295SApple OSS Distributions 		printf("  spi=%x,\n",
444*d8b80295SApple OSS Distributions 		    stats[i].spi);
445*d8b80295SApple OSS Distributions 	}
446*d8b80295SApple OSS Distributions 	printf("}\n");
447*d8b80295SApple OSS Distributions 
448*d8b80295SApple OSS Distributions 	return;
449*d8b80295SApple OSS Distributions }
450*d8b80295SApple OSS Distributions 
451*d8b80295SApple OSS Distributions void
kdebug_sadb_x_policy(ext)452*d8b80295SApple OSS Distributions kdebug_sadb_x_policy(ext)
453*d8b80295SApple OSS Distributions struct sadb_ext *ext;
454*d8b80295SApple OSS Distributions {
455*d8b80295SApple OSS Distributions 	struct sadb_x_policy *xpl = (struct sadb_x_policy *)ext;
456*d8b80295SApple OSS Distributions 	struct sockaddr *addr;
457*d8b80295SApple OSS Distributions 
458*d8b80295SApple OSS Distributions 	/* sanity check */
459*d8b80295SApple OSS Distributions 	if (ext == NULL) {
460*d8b80295SApple OSS Distributions 		panic("kdebug_sadb_x_policy: NULL pointer was passed.");
461*d8b80295SApple OSS Distributions 	}
462*d8b80295SApple OSS Distributions 
463*d8b80295SApple OSS Distributions 	printf("sadb_x_policy{ type=%u dir=%u id=%x }\n",
464*d8b80295SApple OSS Distributions 	    xpl->sadb_x_policy_type, xpl->sadb_x_policy_dir,
465*d8b80295SApple OSS Distributions 	    xpl->sadb_x_policy_id);
466*d8b80295SApple OSS Distributions 
467*d8b80295SApple OSS Distributions 	if (xpl->sadb_x_policy_type == IPSEC_POLICY_IPSEC) {
468*d8b80295SApple OSS Distributions 		int tlen;
469*d8b80295SApple OSS Distributions 		struct sadb_x_ipsecrequest *xisr;
470*d8b80295SApple OSS Distributions 
471*d8b80295SApple OSS Distributions 		tlen = PFKEY_UNUNIT64(xpl->sadb_x_policy_len) - sizeof(*xpl);
472*d8b80295SApple OSS Distributions 		xisr = (struct sadb_x_ipsecrequest *)(xpl + 1);
473*d8b80295SApple OSS Distributions 
474*d8b80295SApple OSS Distributions 		while (tlen > 0) {
475*d8b80295SApple OSS Distributions 			printf(" { len=%u proto=%u mode=%u level=%u reqid=%u\n",
476*d8b80295SApple OSS Distributions 			    xisr->sadb_x_ipsecrequest_len,
477*d8b80295SApple OSS Distributions 			    xisr->sadb_x_ipsecrequest_proto,
478*d8b80295SApple OSS Distributions 			    xisr->sadb_x_ipsecrequest_mode,
479*d8b80295SApple OSS Distributions 			    xisr->sadb_x_ipsecrequest_level,
480*d8b80295SApple OSS Distributions 			    xisr->sadb_x_ipsecrequest_reqid);
481*d8b80295SApple OSS Distributions 
482*d8b80295SApple OSS Distributions 			if (xisr->sadb_x_ipsecrequest_len > sizeof(*xisr)) {
483*d8b80295SApple OSS Distributions 				addr = (struct sockaddr *)(xisr + 1);
484*d8b80295SApple OSS Distributions 				kdebug_sockaddr(addr);
485*d8b80295SApple OSS Distributions 				addr = (struct sockaddr *)((caddr_t)addr
486*d8b80295SApple OSS Distributions 				    + addr->sa_len);
487*d8b80295SApple OSS Distributions 				kdebug_sockaddr(addr);
488*d8b80295SApple OSS Distributions 			}
489*d8b80295SApple OSS Distributions 
490*d8b80295SApple OSS Distributions 			printf(" }\n");
491*d8b80295SApple OSS Distributions 
492*d8b80295SApple OSS Distributions 			/* prevent infinite loop */
493*d8b80295SApple OSS Distributions 			if (xisr->sadb_x_ipsecrequest_len <= 0) {
494*d8b80295SApple OSS Distributions 				printf("kdebug_sadb_x_policy: wrong policy struct.\n");
495*d8b80295SApple OSS Distributions 				return;
496*d8b80295SApple OSS Distributions 			}
497*d8b80295SApple OSS Distributions 			/* prevent overflow */
498*d8b80295SApple OSS Distributions 			if (xisr->sadb_x_ipsecrequest_len > tlen) {
499*d8b80295SApple OSS Distributions 				printf("invalid ipsec policy length\n");
500*d8b80295SApple OSS Distributions 				return;
501*d8b80295SApple OSS Distributions 			}
502*d8b80295SApple OSS Distributions 
503*d8b80295SApple OSS Distributions 			tlen -= xisr->sadb_x_ipsecrequest_len;
504*d8b80295SApple OSS Distributions 
505*d8b80295SApple OSS Distributions 			xisr = (struct sadb_x_ipsecrequest *)((caddr_t)xisr
506*d8b80295SApple OSS Distributions 			    + xisr->sadb_x_ipsecrequest_len);
507*d8b80295SApple OSS Distributions 		}
508*d8b80295SApple OSS Distributions 
509*d8b80295SApple OSS Distributions 		if (tlen != 0) {
510*d8b80295SApple OSS Distributions 			panic("kdebug_sadb_x_policy: wrong policy struct.");
511*d8b80295SApple OSS Distributions 		}
512*d8b80295SApple OSS Distributions 	}
513*d8b80295SApple OSS Distributions 
514*d8b80295SApple OSS Distributions 	return;
515*d8b80295SApple OSS Distributions }
516*d8b80295SApple OSS Distributions 
517*d8b80295SApple OSS Distributions #ifdef KERNEL
518*d8b80295SApple OSS Distributions /* %%%: about SPD and SAD */
519*d8b80295SApple OSS Distributions void
kdebug_secpolicy(sp)520*d8b80295SApple OSS Distributions kdebug_secpolicy(sp)
521*d8b80295SApple OSS Distributions struct secpolicy *sp;
522*d8b80295SApple OSS Distributions {
523*d8b80295SApple OSS Distributions 	/* sanity check */
524*d8b80295SApple OSS Distributions 	if (sp == NULL) {
525*d8b80295SApple OSS Distributions 		panic("kdebug_secpolicy: NULL pointer was passed.");
526*d8b80295SApple OSS Distributions 	}
527*d8b80295SApple OSS Distributions 
528*d8b80295SApple OSS Distributions 	printf("secpolicy{ refcnt=%u state=%u policy=%u\n",
529*d8b80295SApple OSS Distributions 	    sp->refcnt, sp->state, sp->policy);
530*d8b80295SApple OSS Distributions 
531*d8b80295SApple OSS Distributions 	kdebug_secpolicyindex(&sp->spidx);
532*d8b80295SApple OSS Distributions 
533*d8b80295SApple OSS Distributions 	switch (sp->policy) {
534*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_DISCARD:
535*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_GENERATE:
536*d8b80295SApple OSS Distributions 		printf("  type=discard }\n");
537*d8b80295SApple OSS Distributions 		break;
538*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_NONE:
539*d8b80295SApple OSS Distributions 		printf("  type=none }\n");
540*d8b80295SApple OSS Distributions 		break;
541*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_IPSEC:
542*d8b80295SApple OSS Distributions 	{
543*d8b80295SApple OSS Distributions 		struct ipsecrequest *isr;
544*d8b80295SApple OSS Distributions 		for (isr = sp->req; isr != NULL; isr = isr->next) {
545*d8b80295SApple OSS Distributions 			printf("  level=%u\n", isr->level);
546*d8b80295SApple OSS Distributions 			kdebug_secasindex(&isr->saidx);
547*d8b80295SApple OSS Distributions 		}
548*d8b80295SApple OSS Distributions 		printf("  }\n");
549*d8b80295SApple OSS Distributions 	}
550*d8b80295SApple OSS Distributions 	break;
551*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_BYPASS:
552*d8b80295SApple OSS Distributions 		printf("  type=bypass }\n");
553*d8b80295SApple OSS Distributions 		break;
554*d8b80295SApple OSS Distributions 	case IPSEC_POLICY_ENTRUST:
555*d8b80295SApple OSS Distributions 		printf("  type=entrust }\n");
556*d8b80295SApple OSS Distributions 		break;
557*d8b80295SApple OSS Distributions 	default:
558*d8b80295SApple OSS Distributions 		printf("kdebug_secpolicy: Invalid policy found. %d\n",
559*d8b80295SApple OSS Distributions 		    sp->policy);
560*d8b80295SApple OSS Distributions 		break;
561*d8b80295SApple OSS Distributions 	}
562*d8b80295SApple OSS Distributions 
563*d8b80295SApple OSS Distributions 	return;
564*d8b80295SApple OSS Distributions }
565*d8b80295SApple OSS Distributions 
566*d8b80295SApple OSS Distributions void
kdebug_secpolicyindex(spidx)567*d8b80295SApple OSS Distributions kdebug_secpolicyindex(spidx)
568*d8b80295SApple OSS Distributions struct secpolicyindex *spidx;
569*d8b80295SApple OSS Distributions {
570*d8b80295SApple OSS Distributions 	/* sanity check */
571*d8b80295SApple OSS Distributions 	if (spidx == NULL) {
572*d8b80295SApple OSS Distributions 		panic("kdebug_secpolicyindex: NULL pointer was passed.");
573*d8b80295SApple OSS Distributions 	}
574*d8b80295SApple OSS Distributions 
575*d8b80295SApple OSS Distributions 	printf("secpolicyindex{ dir=%u prefs=%u prefd=%u ul_proto=%u internal_if=%s\n",
576*d8b80295SApple OSS Distributions 	    spidx->dir, spidx->prefs, spidx->prefd, spidx->ul_proto,
577*d8b80295SApple OSS Distributions 	    (spidx->internal_if) ? spidx->internal_if->if_xname : "N/A");
578*d8b80295SApple OSS Distributions 
579*d8b80295SApple OSS Distributions 	ipsec_hexdump((caddr_t)&spidx->src,
580*d8b80295SApple OSS Distributions 	    ((struct sockaddr *)&spidx->src)->sa_len);
581*d8b80295SApple OSS Distributions 	printf("\n");
582*d8b80295SApple OSS Distributions 	ipsec_hexdump((caddr_t)&spidx->dst,
583*d8b80295SApple OSS Distributions 	    ((struct sockaddr *)&spidx->dst)->sa_len);
584*d8b80295SApple OSS Distributions 	printf("}\n");
585*d8b80295SApple OSS Distributions 
586*d8b80295SApple OSS Distributions 	return;
587*d8b80295SApple OSS Distributions }
588*d8b80295SApple OSS Distributions 
589*d8b80295SApple OSS Distributions void
kdebug_secasindex(saidx)590*d8b80295SApple OSS Distributions kdebug_secasindex(saidx)
591*d8b80295SApple OSS Distributions struct secasindex *saidx;
592*d8b80295SApple OSS Distributions {
593*d8b80295SApple OSS Distributions 	/* sanity check */
594*d8b80295SApple OSS Distributions 	if (saidx == NULL) {
595*d8b80295SApple OSS Distributions 		panic("kdebug_secpolicyindex: NULL pointer was passed.");
596*d8b80295SApple OSS Distributions 	}
597*d8b80295SApple OSS Distributions 
598*d8b80295SApple OSS Distributions 	printf("secasindex{ mode=%u proto=%u\n",
599*d8b80295SApple OSS Distributions 	    saidx->mode, saidx->proto);
600*d8b80295SApple OSS Distributions 
601*d8b80295SApple OSS Distributions 	ipsec_hexdump((caddr_t)&saidx->src,
602*d8b80295SApple OSS Distributions 	    ((struct sockaddr *)&saidx->src)->sa_len);
603*d8b80295SApple OSS Distributions 	printf("\n");
604*d8b80295SApple OSS Distributions 	ipsec_hexdump((caddr_t)&saidx->dst,
605*d8b80295SApple OSS Distributions 	    ((struct sockaddr *)&saidx->dst)->sa_len);
606*d8b80295SApple OSS Distributions 	printf("\n");
607*d8b80295SApple OSS Distributions 
608*d8b80295SApple OSS Distributions 	return;
609*d8b80295SApple OSS Distributions }
610*d8b80295SApple OSS Distributions 
611*d8b80295SApple OSS Distributions void
kdebug_secasv(sav)612*d8b80295SApple OSS Distributions kdebug_secasv(sav)
613*d8b80295SApple OSS Distributions struct secasvar *sav;
614*d8b80295SApple OSS Distributions {
615*d8b80295SApple OSS Distributions 	/* sanity check */
616*d8b80295SApple OSS Distributions 	if (sav == NULL) {
617*d8b80295SApple OSS Distributions 		panic("kdebug_secasv: NULL pointer was passed.");
618*d8b80295SApple OSS Distributions 	}
619*d8b80295SApple OSS Distributions 
620*d8b80295SApple OSS Distributions 	printf("secas{");
621*d8b80295SApple OSS Distributions 	kdebug_secasindex(&sav->sah->saidx);
622*d8b80295SApple OSS Distributions 
623*d8b80295SApple OSS Distributions 	printf("  refcnt=%u state=%u auth=%u enc=%u\n",
624*d8b80295SApple OSS Distributions 	    sav->refcnt, sav->state, sav->alg_auth, sav->alg_enc);
625*d8b80295SApple OSS Distributions 	printf("  spi=%u flags=%u\n",
626*d8b80295SApple OSS Distributions 	    (u_int32_t)ntohl(sav->spi), sav->flags);
627*d8b80295SApple OSS Distributions 
628*d8b80295SApple OSS Distributions 	if (sav->key_auth != NULL) {
629*d8b80295SApple OSS Distributions 		kdebug_sadb_key((struct sadb_ext *)sav->key_auth);
630*d8b80295SApple OSS Distributions 	}
631*d8b80295SApple OSS Distributions 	if (sav->key_enc != NULL) {
632*d8b80295SApple OSS Distributions 		kdebug_sadb_key((struct sadb_ext *)sav->key_enc);
633*d8b80295SApple OSS Distributions 	}
634*d8b80295SApple OSS Distributions 	if (sav->iv != NULL) {
635*d8b80295SApple OSS Distributions 		printf("  iv=");
636*d8b80295SApple OSS Distributions 		ipsec_hexdump(sav->iv, sav->ivlen ? sav->ivlen : 8);
637*d8b80295SApple OSS Distributions 		printf("\n");
638*d8b80295SApple OSS Distributions 	}
639*d8b80295SApple OSS Distributions 
640*d8b80295SApple OSS Distributions 	if (sav->replay[0] != NULL) {
641*d8b80295SApple OSS Distributions 		kdebug_secreplay(sav->replay[0]);
642*d8b80295SApple OSS Distributions 	}
643*d8b80295SApple OSS Distributions 	if (sav->lft_c != NULL) {
644*d8b80295SApple OSS Distributions 		kdebug_sadb_lifetime((struct sadb_ext *)sav->lft_c);
645*d8b80295SApple OSS Distributions 	}
646*d8b80295SApple OSS Distributions 	if (sav->lft_h != NULL) {
647*d8b80295SApple OSS Distributions 		kdebug_sadb_lifetime((struct sadb_ext *)sav->lft_h);
648*d8b80295SApple OSS Distributions 	}
649*d8b80295SApple OSS Distributions 	if (sav->lft_s != NULL) {
650*d8b80295SApple OSS Distributions 		kdebug_sadb_lifetime((struct sadb_ext *)sav->lft_s);
651*d8b80295SApple OSS Distributions 	}
652*d8b80295SApple OSS Distributions 
653*d8b80295SApple OSS Distributions #if notyet
654*d8b80295SApple OSS Distributions 	/* XXX: misc[123] ? */
655*d8b80295SApple OSS Distributions #endif
656*d8b80295SApple OSS Distributions 
657*d8b80295SApple OSS Distributions 	return;
658*d8b80295SApple OSS Distributions }
659*d8b80295SApple OSS Distributions 
660*d8b80295SApple OSS Distributions static void
kdebug_secreplay(rpl)661*d8b80295SApple OSS Distributions kdebug_secreplay(rpl)
662*d8b80295SApple OSS Distributions struct secreplay *rpl;
663*d8b80295SApple OSS Distributions {
664*d8b80295SApple OSS Distributions 	size_t len;
665*d8b80295SApple OSS Distributions 	int l;
666*d8b80295SApple OSS Distributions 
667*d8b80295SApple OSS Distributions 	/* sanity check */
668*d8b80295SApple OSS Distributions 	if (rpl == NULL) {
669*d8b80295SApple OSS Distributions 		panic("kdebug_secreplay: NULL pointer was passed.");
670*d8b80295SApple OSS Distributions 	}
671*d8b80295SApple OSS Distributions 
672*d8b80295SApple OSS Distributions 	printf(" secreplay{ count=%u wsize=%zu seq=%u lastseq=%u",
673*d8b80295SApple OSS Distributions 	    rpl->count, rpl->wsize, rpl->seq, rpl->lastseq);
674*d8b80295SApple OSS Distributions 
675*d8b80295SApple OSS Distributions 	if (rpl->bitmap == NULL) {
676*d8b80295SApple OSS Distributions 		printf(" }\n");
677*d8b80295SApple OSS Distributions 		return;
678*d8b80295SApple OSS Distributions 	}
679*d8b80295SApple OSS Distributions 
680*d8b80295SApple OSS Distributions 	printf("\n   bitmap { ");
681*d8b80295SApple OSS Distributions 
682*d8b80295SApple OSS Distributions 	for (len = 0; len < rpl->wsize; len++) {
683*d8b80295SApple OSS Distributions 		for (l = 7; l >= 0; l--) {
684*d8b80295SApple OSS Distributions 			printf("%u", (((rpl->bitmap)[len] >> l) & 1) ? 1 : 0);
685*d8b80295SApple OSS Distributions 		}
686*d8b80295SApple OSS Distributions 	}
687*d8b80295SApple OSS Distributions 	printf(" }\n");
688*d8b80295SApple OSS Distributions 
689*d8b80295SApple OSS Distributions 	return;
690*d8b80295SApple OSS Distributions }
691*d8b80295SApple OSS Distributions 
692*d8b80295SApple OSS Distributions void
kdebug_mbufhdr(m)693*d8b80295SApple OSS Distributions kdebug_mbufhdr(m)
694*d8b80295SApple OSS Distributions struct mbuf *m;
695*d8b80295SApple OSS Distributions {
696*d8b80295SApple OSS Distributions 	/* sanity check */
697*d8b80295SApple OSS Distributions 	if (m == NULL) {
698*d8b80295SApple OSS Distributions 		return;
699*d8b80295SApple OSS Distributions 	}
700*d8b80295SApple OSS Distributions 
701*d8b80295SApple OSS Distributions 	printf("mbuf(0x%llx){ m_next:0x%llx m_nextpkt:0x%llx m_data:0x%llx "
702*d8b80295SApple OSS Distributions 	    "m_len:%d m_type:0x%02x m_flags:0x%02x }\n",
703*d8b80295SApple OSS Distributions 	    (uint64_t)VM_KERNEL_ADDRPERM(m),
704*d8b80295SApple OSS Distributions 	    (uint64_t)VM_KERNEL_ADDRPERM(m->m_next),
705*d8b80295SApple OSS Distributions 	    (uint64_t)VM_KERNEL_ADDRPERM(m->m_nextpkt),
706*d8b80295SApple OSS Distributions 	    (uint64_t)VM_KERNEL_ADDRPERM(m->m_data),
707*d8b80295SApple OSS Distributions 	    m->m_len, m->m_type, m->m_flags);
708*d8b80295SApple OSS Distributions 
709*d8b80295SApple OSS Distributions 	if (m->m_flags & M_PKTHDR) {
710*d8b80295SApple OSS Distributions 		printf("  m_pkthdr{ len:%d rcvif:0x%llx }\n",
711*d8b80295SApple OSS Distributions 		    m->m_pkthdr.len,
712*d8b80295SApple OSS Distributions 		    (uint64_t)VM_KERNEL_ADDRPERM(m->m_pkthdr.rcvif));
713*d8b80295SApple OSS Distributions 	}
714*d8b80295SApple OSS Distributions 
715*d8b80295SApple OSS Distributions 	if (m->m_flags & M_EXT) {
716*d8b80295SApple OSS Distributions 		printf("  m_ext{ ext_buf:0x%llx ext_free:0x%llx "
717*d8b80295SApple OSS Distributions 		    "ext_size:%u ext_ref:0x%llx }\n",
718*d8b80295SApple OSS Distributions 		    (uint64_t)VM_KERNEL_ADDRPERM(m->m_ext.ext_buf),
719*d8b80295SApple OSS Distributions 		    (uint64_t)VM_KERNEL_ADDRPERM(m_get_ext_free(m)),
720*d8b80295SApple OSS Distributions 		    m->m_ext.ext_size,
721*d8b80295SApple OSS Distributions 		    (uint64_t)VM_KERNEL_ADDRPERM(m_get_rfa(m)));
722*d8b80295SApple OSS Distributions 	}
723*d8b80295SApple OSS Distributions 
724*d8b80295SApple OSS Distributions 	return;
725*d8b80295SApple OSS Distributions }
726*d8b80295SApple OSS Distributions 
727*d8b80295SApple OSS Distributions void
kdebug_mbuf(m0)728*d8b80295SApple OSS Distributions kdebug_mbuf(m0)
729*d8b80295SApple OSS Distributions struct mbuf *m0;
730*d8b80295SApple OSS Distributions {
731*d8b80295SApple OSS Distributions 	struct mbuf *m = m0;
732*d8b80295SApple OSS Distributions 	int i, j;
733*d8b80295SApple OSS Distributions 
734*d8b80295SApple OSS Distributions 	for (j = 0; m; m = m->m_next) {
735*d8b80295SApple OSS Distributions 		kdebug_mbufhdr(m);
736*d8b80295SApple OSS Distributions 		printf("  m_data:\n");
737*d8b80295SApple OSS Distributions 		for (i = 0; i < m->m_len; i++) {
738*d8b80295SApple OSS Distributions 			if (i && i % 32 == 0) {
739*d8b80295SApple OSS Distributions 				printf("\n");
740*d8b80295SApple OSS Distributions 			}
741*d8b80295SApple OSS Distributions 			if (i % 4 == 0) {
742*d8b80295SApple OSS Distributions 				printf(" ");
743*d8b80295SApple OSS Distributions 			}
744*d8b80295SApple OSS Distributions 			printf("%02x", mtod(m, u_char *)[i]);
745*d8b80295SApple OSS Distributions 			j++;
746*d8b80295SApple OSS Distributions 		}
747*d8b80295SApple OSS Distributions 		printf("\n");
748*d8b80295SApple OSS Distributions 	}
749*d8b80295SApple OSS Distributions 
750*d8b80295SApple OSS Distributions 	return;
751*d8b80295SApple OSS Distributions }
752*d8b80295SApple OSS Distributions #endif /* KERNEL */
753*d8b80295SApple OSS Distributions 
754*d8b80295SApple OSS Distributions void
kdebug_sockaddr(addr)755*d8b80295SApple OSS Distributions kdebug_sockaddr(addr)
756*d8b80295SApple OSS Distributions struct sockaddr *addr;
757*d8b80295SApple OSS Distributions {
758*d8b80295SApple OSS Distributions 	struct sockaddr_in *sin4;
759*d8b80295SApple OSS Distributions 	struct sockaddr_in6 *sin6;
760*d8b80295SApple OSS Distributions 
761*d8b80295SApple OSS Distributions 	/* sanity check */
762*d8b80295SApple OSS Distributions 	if (addr == NULL) {
763*d8b80295SApple OSS Distributions 		panic("kdebug_sockaddr: NULL pointer was passed.");
764*d8b80295SApple OSS Distributions 	}
765*d8b80295SApple OSS Distributions 
766*d8b80295SApple OSS Distributions 	/* NOTE: We deal with port number as host byte order. */
767*d8b80295SApple OSS Distributions 	printf("sockaddr{ len=%u family=%u", addr->sa_len, addr->sa_family);
768*d8b80295SApple OSS Distributions 
769*d8b80295SApple OSS Distributions 	switch (addr->sa_family) {
770*d8b80295SApple OSS Distributions 	case AF_INET:
771*d8b80295SApple OSS Distributions 		sin4 = (struct sockaddr_in *)addr;
772*d8b80295SApple OSS Distributions 		printf(" port=%u\n", ntohs(sin4->sin_port));
773*d8b80295SApple OSS Distributions 		ipsec_hexdump((caddr_t)&sin4->sin_addr, sizeof(sin4->sin_addr));
774*d8b80295SApple OSS Distributions 		break;
775*d8b80295SApple OSS Distributions 	case AF_INET6:
776*d8b80295SApple OSS Distributions 		sin6 = (struct sockaddr_in6 *)addr;
777*d8b80295SApple OSS Distributions 		printf(" port=%u\n", ntohs(sin6->sin6_port));
778*d8b80295SApple OSS Distributions 		printf("  flowinfo=0x%08x, scope_id=0x%08x\n",
779*d8b80295SApple OSS Distributions 		    sin6->sin6_flowinfo, sin6->sin6_scope_id);
780*d8b80295SApple OSS Distributions 		ipsec_hexdump((caddr_t)&sin6->sin6_addr,
781*d8b80295SApple OSS Distributions 		    sizeof(sin6->sin6_addr));
782*d8b80295SApple OSS Distributions 		break;
783*d8b80295SApple OSS Distributions 	}
784*d8b80295SApple OSS Distributions 
785*d8b80295SApple OSS Distributions 	printf("  }\n");
786*d8b80295SApple OSS Distributions 
787*d8b80295SApple OSS Distributions 	return;
788*d8b80295SApple OSS Distributions }
789*d8b80295SApple OSS Distributions 
790*d8b80295SApple OSS Distributions void
ipsec_bindump(buf,len)791*d8b80295SApple OSS Distributions ipsec_bindump(buf, len)
792*d8b80295SApple OSS Distributions caddr_t buf;
793*d8b80295SApple OSS Distributions int len;
794*d8b80295SApple OSS Distributions {
795*d8b80295SApple OSS Distributions 	int i;
796*d8b80295SApple OSS Distributions 
797*d8b80295SApple OSS Distributions 	for (i = 0; i < len; i++) {
798*d8b80295SApple OSS Distributions 		printf("%c", (unsigned char)buf[i]);
799*d8b80295SApple OSS Distributions 	}
800*d8b80295SApple OSS Distributions 
801*d8b80295SApple OSS Distributions 	return;
802*d8b80295SApple OSS Distributions }
803*d8b80295SApple OSS Distributions 
804*d8b80295SApple OSS Distributions 
805*d8b80295SApple OSS Distributions void
ipsec_hexdump(buf,len)806*d8b80295SApple OSS Distributions ipsec_hexdump(buf, len)
807*d8b80295SApple OSS Distributions caddr_t buf;
808*d8b80295SApple OSS Distributions int len;
809*d8b80295SApple OSS Distributions {
810*d8b80295SApple OSS Distributions 	int i;
811*d8b80295SApple OSS Distributions 
812*d8b80295SApple OSS Distributions 	for (i = 0; i < len; i++) {
813*d8b80295SApple OSS Distributions 		if (i != 0 && i % 32 == 0) {
814*d8b80295SApple OSS Distributions 			printf("\n");
815*d8b80295SApple OSS Distributions 		}
816*d8b80295SApple OSS Distributions 		if (i % 4 == 0) {
817*d8b80295SApple OSS Distributions 			printf(" ");
818*d8b80295SApple OSS Distributions 		}
819*d8b80295SApple OSS Distributions 		printf("%02x", (unsigned char)buf[i]);
820*d8b80295SApple OSS Distributions 	}
821*d8b80295SApple OSS Distributions #if 0
822*d8b80295SApple OSS Distributions 	if (i % 32 != 0) {
823*d8b80295SApple OSS Distributions 		printf("\n");
824*d8b80295SApple OSS Distributions 	}
825*d8b80295SApple OSS Distributions #endif
826*d8b80295SApple OSS Distributions 
827*d8b80295SApple OSS Distributions 	return;
828*d8b80295SApple OSS Distributions }
829*d8b80295SApple OSS Distributions 
830*d8b80295SApple OSS Distributions #endif /* !defined(KERNEL) || (defined(KERNEL) && defined(IPSEC_DEBUG)) */
831