1*43a90889SApple OSS Distributions /* 2*43a90889SApple OSS Distributions * Copyright (c) 2021 Apple Inc. All rights reserved. 3*43a90889SApple OSS Distributions * 4*43a90889SApple OSS Distributions * @APPLE_LICENSE_HEADER_START@ 5*43a90889SApple OSS Distributions * 6*43a90889SApple OSS Distributions * This file contains Original Code and/or Modifications of Original Code 7*43a90889SApple OSS Distributions * as defined in and that are subject to the Apple Public Source License 8*43a90889SApple OSS Distributions * Version 2.0 (the 'License'). You may not use this file except in 9*43a90889SApple OSS Distributions * compliance with the License. Please obtain a copy of the License at 10*43a90889SApple OSS Distributions * http://www.opensource.apple.com/apsl/ and read it before using this 11*43a90889SApple OSS Distributions * file. 12*43a90889SApple OSS Distributions * 13*43a90889SApple OSS Distributions * The Original Code and all software distributed under the License are 14*43a90889SApple OSS Distributions * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER 15*43a90889SApple OSS Distributions * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES, 16*43a90889SApple OSS Distributions * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY, 17*43a90889SApple OSS Distributions * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT. 18*43a90889SApple OSS Distributions * Please see the License for the specific language governing rights and 19*43a90889SApple OSS Distributions * limitations under the License. 20*43a90889SApple OSS Distributions * 21*43a90889SApple OSS Distributions * @APPLE_LICENSE_HEADER_END@ 22*43a90889SApple OSS Distributions */ 23*43a90889SApple OSS Distributions 24*43a90889SApple OSS Distributions #ifndef __SOCKET_FLOWS_H__ 25*43a90889SApple OSS Distributions #define __SOCKET_FLOWS_H__ 26*43a90889SApple OSS Distributions 27*43a90889SApple OSS Distributions 28*43a90889SApple OSS Distributions __BEGIN_DECLS 29*43a90889SApple OSS Distributions 30*43a90889SApple OSS Distributions #ifdef PRIVATE 31*43a90889SApple OSS Distributions 32*43a90889SApple OSS Distributions struct soflow_hash_entry { 33*43a90889SApple OSS Distributions LIST_ENTRY(soflow_hash_entry) soflow_entry_link; 34*43a90889SApple OSS Distributions TAILQ_ENTRY(soflow_hash_entry) soflow_entry_list_link; 35*43a90889SApple OSS Distributions os_refcnt_t soflow_ref_count; 36*43a90889SApple OSS Distributions struct soflow_db *soflow_db; 37*43a90889SApple OSS Distributions uint16_t soflow_outifindex; 38*43a90889SApple OSS Distributions in_port_t soflow_fport; 39*43a90889SApple OSS Distributions in_port_t soflow_lport; 40*43a90889SApple OSS Distributions sa_family_t soflow_family; 41*43a90889SApple OSS Distributions uint32_t soflow_flowhash; 42*43a90889SApple OSS Distributions uint64_t soflow_lastused; 43*43a90889SApple OSS Distributions uint32_t soflow_faddr6_ifscope; 44*43a90889SApple OSS Distributions uint32_t soflow_laddr6_ifscope; 45*43a90889SApple OSS Distributions union { 46*43a90889SApple OSS Distributions /* foreign host table entry */ 47*43a90889SApple OSS Distributions struct in_addr_4in6 addr46; 48*43a90889SApple OSS Distributions struct in6_addr addr6; 49*43a90889SApple OSS Distributions } soflow_faddr; 50*43a90889SApple OSS Distributions union { 51*43a90889SApple OSS Distributions /* local host table entry */ 52*43a90889SApple OSS Distributions struct in_addr_4in6 addr46; 53*43a90889SApple OSS Distributions struct in6_addr addr6; 54*43a90889SApple OSS Distributions } soflow_laddr; 55*43a90889SApple OSS Distributions uint8_t soflow_outgoing: 1; 56*43a90889SApple OSS Distributions uint8_t soflow_laddr_updated: 1; 57*43a90889SApple OSS Distributions uint8_t soflow_lport_updated: 1; 58*43a90889SApple OSS Distributions uint8_t soflow_gc: 1; 59*43a90889SApple OSS Distributions uint8_t soflow_feat_gc: 1; 60*43a90889SApple OSS Distributions uint8_t soflow_debug: 1; 61*43a90889SApple OSS Distributions uint8_t soflow_reserved:2; 62*43a90889SApple OSS Distributions 63*43a90889SApple OSS Distributions uint64_t soflow_rxpackets; 64*43a90889SApple OSS Distributions uint64_t soflow_rxbytes; 65*43a90889SApple OSS Distributions uint64_t soflow_txpackets; 66*43a90889SApple OSS Distributions uint64_t soflow_txbytes; 67*43a90889SApple OSS Distributions 68*43a90889SApple OSS Distributions // Feature support (i.e. CFIL, extensible to others) 69*43a90889SApple OSS Distributions uint64_t soflow_feat_ctxt_id; 70*43a90889SApple OSS Distributions void *soflow_feat_ctxt; 71*43a90889SApple OSS Distributions uint32_t soflow_filter_control_unit; 72*43a90889SApple OSS Distributions int32_t soflow_policies_gencount; 73*43a90889SApple OSS Distributions 74*43a90889SApple OSS Distributions #if defined(NSTAT_EXTENSION_FILTER_DOMAIN_INFO) 75*43a90889SApple OSS Distributions uuid_t soflow_uuid; 76*43a90889SApple OSS Distributions nstat_context soflow_nstat_context; 77*43a90889SApple OSS Distributions #endif 78*43a90889SApple OSS Distributions struct timeval soflow_timestamp; 79*43a90889SApple OSS Distributions }; 80*43a90889SApple OSS Distributions 81*43a90889SApple OSS Distributions #define SOFLOW_HASH_SIZE 16 82*43a90889SApple OSS Distributions LIST_HEAD(soflow_hash_head, soflow_hash_entry); 83*43a90889SApple OSS Distributions 84*43a90889SApple OSS Distributions /* 85*43a90889SApple OSS Distributions * struct soflow_db 86*43a90889SApple OSS Distributions * 87*43a90889SApple OSS Distributions * For each UDP socket, this is a hash table maintaining all flows 88*43a90889SApple OSS Distributions * keyed by the flow 4-tuples <lport,fport,laddr,faddr>. 89*43a90889SApple OSS Distributions */ 90*43a90889SApple OSS Distributions struct soflow_db { 91*43a90889SApple OSS Distributions os_refcnt_t soflow_db_ref_count; 92*43a90889SApple OSS Distributions struct socket *soflow_db_so; 93*43a90889SApple OSS Distributions uint32_t soflow_db_count; 94*43a90889SApple OSS Distributions struct soflow_hash_head * __counted_by(SOFLOW_HASH_SIZE) soflow_db_hashbase; 95*43a90889SApple OSS Distributions u_long soflow_db_hashmask; 96*43a90889SApple OSS Distributions struct soflow_hash_entry *soflow_db_only_entry; 97*43a90889SApple OSS Distributions 98*43a90889SApple OSS Distributions uint8_t soflow_db_debug:1; 99*43a90889SApple OSS Distributions uint8_t soflow_db_reserved:7; 100*43a90889SApple OSS Distributions uint64_t soflow_db_flags; 101*43a90889SApple OSS Distributions }; 102*43a90889SApple OSS Distributions 103*43a90889SApple OSS Distributions /* 104*43a90889SApple OSS Distributions * Flags describing the owner socket or the soflow_db 105*43a90889SApple OSS Distributions */ 106*43a90889SApple OSS Distributions #define SOFLOWF_SO_DELAYED_DEAD 0x0001 /* Delayed socket DEAD marking */ 107*43a90889SApple OSS Distributions 108*43a90889SApple OSS Distributions bool soflow_fill_hash_entry_from_address(struct soflow_hash_entry *, bool, struct sockaddr *, bool); 109*43a90889SApple OSS Distributions bool soflow_fill_hash_entry_from_inp(struct soflow_hash_entry *, bool, struct inpcb *, bool); 110*43a90889SApple OSS Distributions void *soflow_db_get_feature_context(struct soflow_db *, u_int64_t); 111*43a90889SApple OSS Distributions u_int64_t soflow_db_get_feature_context_id(struct soflow_db *, struct sockaddr *, struct sockaddr *); 112*43a90889SApple OSS Distributions 113*43a90889SApple OSS Distributions // Per each flow, allow feature to indicate if garbage collection is needed 114*43a90889SApple OSS Distributions typedef bool (*soflow_feat_gc_needed_func)(struct socket *so, struct soflow_hash_entry *hash_entry, u_int64_t current_time); 115*43a90889SApple OSS Distributions 116*43a90889SApple OSS Distributions // Per each flow, allow feature to perform garbage collection 117*43a90889SApple OSS Distributions typedef bool (*soflow_feat_gc_perform_func)(struct socket *so, struct soflow_hash_entry *hash_entry); 118*43a90889SApple OSS Distributions 119*43a90889SApple OSS Distributions // Per each flow, allow feature to detach and clean up context 120*43a90889SApple OSS Distributions typedef bool (*soflow_feat_detach_entry_func)(struct socket *so, struct soflow_hash_entry *hash_entry); 121*43a90889SApple OSS Distributions 122*43a90889SApple OSS Distributions // Per DB, allow feature to detach and clean up context 123*43a90889SApple OSS Distributions typedef bool (*soflow_feat_detach_db_func)(struct socket *so, struct soflow_db *db); 124*43a90889SApple OSS Distributions 125*43a90889SApple OSS Distributions void soflow_feat_set_functions(soflow_feat_gc_needed_func, soflow_feat_gc_perform_func, 126*43a90889SApple OSS Distributions soflow_feat_detach_entry_func, soflow_feat_detach_db_func); 127*43a90889SApple OSS Distributions 128*43a90889SApple OSS Distributions typedef bool (*soflow_entry_apply_func)(struct socket *so, 129*43a90889SApple OSS Distributions struct soflow_hash_entry *hash_entry, 130*43a90889SApple OSS Distributions void *context); 131*43a90889SApple OSS Distributions 132*43a90889SApple OSS Distributions bool soflow_db_apply(struct soflow_db *, soflow_entry_apply_func, void *context); 133*43a90889SApple OSS Distributions 134*43a90889SApple OSS Distributions #endif /* BSD_KERNEL_PRIVATE */ 135*43a90889SApple OSS Distributions 136*43a90889SApple OSS Distributions __END_DECLS 137*43a90889SApple OSS Distributions 138*43a90889SApple OSS Distributions #endif /* __SOCKET_FLOWS_H__ */ 139