xref: /xnu-8796.101.5/bsd/netinet/raw_ip.c (revision aca3beaa3dfbd42498b42c5e5ce20a938e6554e5)
1*aca3beaaSApple OSS Distributions /*
2*aca3beaaSApple OSS Distributions  * Copyright (c) 2000-2022 Apple Inc. All rights reserved.
3*aca3beaaSApple OSS Distributions  *
4*aca3beaaSApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5*aca3beaaSApple OSS Distributions  *
6*aca3beaaSApple OSS Distributions  * This file contains Original Code and/or Modifications of Original Code
7*aca3beaaSApple OSS Distributions  * as defined in and that are subject to the Apple Public Source License
8*aca3beaaSApple OSS Distributions  * Version 2.0 (the 'License'). You may not use this file except in
9*aca3beaaSApple OSS Distributions  * compliance with the License. The rights granted to you under the License
10*aca3beaaSApple OSS Distributions  * may not be used to create, or enable the creation or redistribution of,
11*aca3beaaSApple OSS Distributions  * unlawful or unlicensed copies of an Apple operating system, or to
12*aca3beaaSApple OSS Distributions  * circumvent, violate, or enable the circumvention or violation of, any
13*aca3beaaSApple OSS Distributions  * terms of an Apple operating system software license agreement.
14*aca3beaaSApple OSS Distributions  *
15*aca3beaaSApple OSS Distributions  * Please obtain a copy of the License at
16*aca3beaaSApple OSS Distributions  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17*aca3beaaSApple OSS Distributions  *
18*aca3beaaSApple OSS Distributions  * The Original Code and all software distributed under the License are
19*aca3beaaSApple OSS Distributions  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20*aca3beaaSApple OSS Distributions  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21*aca3beaaSApple OSS Distributions  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22*aca3beaaSApple OSS Distributions  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23*aca3beaaSApple OSS Distributions  * Please see the License for the specific language governing rights and
24*aca3beaaSApple OSS Distributions  * limitations under the License.
25*aca3beaaSApple OSS Distributions  *
26*aca3beaaSApple OSS Distributions  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27*aca3beaaSApple OSS Distributions  */
28*aca3beaaSApple OSS Distributions /*
29*aca3beaaSApple OSS Distributions  * Copyright (c) 1982, 1986, 1988, 1993
30*aca3beaaSApple OSS Distributions  *	The Regents of the University of California.  All rights reserved.
31*aca3beaaSApple OSS Distributions  *
32*aca3beaaSApple OSS Distributions  * Redistribution and use in source and binary forms, with or without
33*aca3beaaSApple OSS Distributions  * modification, are permitted provided that the following conditions
34*aca3beaaSApple OSS Distributions  * are met:
35*aca3beaaSApple OSS Distributions  * 1. Redistributions of source code must retain the above copyright
36*aca3beaaSApple OSS Distributions  *    notice, this list of conditions and the following disclaimer.
37*aca3beaaSApple OSS Distributions  * 2. Redistributions in binary form must reproduce the above copyright
38*aca3beaaSApple OSS Distributions  *    notice, this list of conditions and the following disclaimer in the
39*aca3beaaSApple OSS Distributions  *    documentation and/or other materials provided with the distribution.
40*aca3beaaSApple OSS Distributions  * 3. All advertising materials mentioning features or use of this software
41*aca3beaaSApple OSS Distributions  *    must display the following acknowledgement:
42*aca3beaaSApple OSS Distributions  *	This product includes software developed by the University of
43*aca3beaaSApple OSS Distributions  *	California, Berkeley and its contributors.
44*aca3beaaSApple OSS Distributions  * 4. Neither the name of the University nor the names of its contributors
45*aca3beaaSApple OSS Distributions  *    may be used to endorse or promote products derived from this software
46*aca3beaaSApple OSS Distributions  *    without specific prior written permission.
47*aca3beaaSApple OSS Distributions  *
48*aca3beaaSApple OSS Distributions  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
49*aca3beaaSApple OSS Distributions  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
50*aca3beaaSApple OSS Distributions  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
51*aca3beaaSApple OSS Distributions  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
52*aca3beaaSApple OSS Distributions  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
53*aca3beaaSApple OSS Distributions  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
54*aca3beaaSApple OSS Distributions  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
55*aca3beaaSApple OSS Distributions  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
56*aca3beaaSApple OSS Distributions  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
57*aca3beaaSApple OSS Distributions  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
58*aca3beaaSApple OSS Distributions  * SUCH DAMAGE.
59*aca3beaaSApple OSS Distributions  *
60*aca3beaaSApple OSS Distributions  *	@(#)raw_ip.c	8.7 (Berkeley) 5/15/95
61*aca3beaaSApple OSS Distributions  */
62*aca3beaaSApple OSS Distributions /*
63*aca3beaaSApple OSS Distributions  * NOTICE: This file was modified by SPARTA, Inc. in 2005 to introduce
64*aca3beaaSApple OSS Distributions  * support for mandatory and extensible security protections.  This notice
65*aca3beaaSApple OSS Distributions  * is included in support of clause 2.2 (b) of the Apple Public License,
66*aca3beaaSApple OSS Distributions  * Version 2.0.
67*aca3beaaSApple OSS Distributions  */
68*aca3beaaSApple OSS Distributions 
69*aca3beaaSApple OSS Distributions #include <sys/param.h>
70*aca3beaaSApple OSS Distributions #include <sys/systm.h>
71*aca3beaaSApple OSS Distributions #include <sys/kernel.h>
72*aca3beaaSApple OSS Distributions #include <sys/malloc.h>
73*aca3beaaSApple OSS Distributions #include <sys/mbuf.h>
74*aca3beaaSApple OSS Distributions #include <sys/mcache.h>
75*aca3beaaSApple OSS Distributions #include <sys/proc.h>
76*aca3beaaSApple OSS Distributions #include <sys/domain.h>
77*aca3beaaSApple OSS Distributions #include <sys/protosw.h>
78*aca3beaaSApple OSS Distributions #include <sys/socket.h>
79*aca3beaaSApple OSS Distributions #include <sys/socketvar.h>
80*aca3beaaSApple OSS Distributions #include <sys/sysctl.h>
81*aca3beaaSApple OSS Distributions #include <libkern/OSAtomic.h>
82*aca3beaaSApple OSS Distributions #include <kern/zalloc.h>
83*aca3beaaSApple OSS Distributions 
84*aca3beaaSApple OSS Distributions #include <pexpert/pexpert.h>
85*aca3beaaSApple OSS Distributions 
86*aca3beaaSApple OSS Distributions #include <net/if.h>
87*aca3beaaSApple OSS Distributions #include <net/net_api_stats.h>
88*aca3beaaSApple OSS Distributions #include <net/route.h>
89*aca3beaaSApple OSS Distributions #include <net/content_filter.h>
90*aca3beaaSApple OSS Distributions 
91*aca3beaaSApple OSS Distributions #define _IP_VHL
92*aca3beaaSApple OSS Distributions #include <netinet/in.h>
93*aca3beaaSApple OSS Distributions #include <netinet/in_systm.h>
94*aca3beaaSApple OSS Distributions #include <netinet/in_tclass.h>
95*aca3beaaSApple OSS Distributions #include <netinet/ip.h>
96*aca3beaaSApple OSS Distributions #include <netinet/in_pcb.h>
97*aca3beaaSApple OSS Distributions #include <netinet/in_var.h>
98*aca3beaaSApple OSS Distributions #include <netinet/ip_var.h>
99*aca3beaaSApple OSS Distributions 
100*aca3beaaSApple OSS Distributions #include <netinet6/in6_pcb.h>
101*aca3beaaSApple OSS Distributions 
102*aca3beaaSApple OSS Distributions 
103*aca3beaaSApple OSS Distributions #if IPSEC
104*aca3beaaSApple OSS Distributions #include <netinet6/ipsec.h>
105*aca3beaaSApple OSS Distributions #endif /*IPSEC*/
106*aca3beaaSApple OSS Distributions 
107*aca3beaaSApple OSS Distributions #if DUMMYNET
108*aca3beaaSApple OSS Distributions #include <netinet/ip_dummynet.h>
109*aca3beaaSApple OSS Distributions #endif /* DUMMYNET */
110*aca3beaaSApple OSS Distributions 
111*aca3beaaSApple OSS Distributions int rip_detach(struct socket *);
112*aca3beaaSApple OSS Distributions int rip_abort(struct socket *);
113*aca3beaaSApple OSS Distributions int rip_disconnect(struct socket *);
114*aca3beaaSApple OSS Distributions int rip_bind(struct socket *, struct sockaddr *, struct proc *);
115*aca3beaaSApple OSS Distributions int rip_connect(struct socket *, struct sockaddr *, struct proc *);
116*aca3beaaSApple OSS Distributions int rip_shutdown(struct socket *);
117*aca3beaaSApple OSS Distributions 
118*aca3beaaSApple OSS Distributions struct  inpcbhead ripcb;
119*aca3beaaSApple OSS Distributions struct  inpcbinfo ripcbinfo;
120*aca3beaaSApple OSS Distributions 
121*aca3beaaSApple OSS Distributions /* control hooks for dummynet */
122*aca3beaaSApple OSS Distributions #if DUMMYNET
123*aca3beaaSApple OSS Distributions ip_dn_ctl_t *ip_dn_ctl_ptr;
124*aca3beaaSApple OSS Distributions #endif /* DUMMYNET */
125*aca3beaaSApple OSS Distributions 
126*aca3beaaSApple OSS Distributions /*
127*aca3beaaSApple OSS Distributions  * Nominal space allocated to a raw ip socket.
128*aca3beaaSApple OSS Distributions  */
129*aca3beaaSApple OSS Distributions #define RIPSNDQ         8192
130*aca3beaaSApple OSS Distributions #define RIPRCVQ         8192
131*aca3beaaSApple OSS Distributions 
132*aca3beaaSApple OSS Distributions static KALLOC_TYPE_DEFINE(ripzone, struct inpcb, NET_KT_DEFAULT);
133*aca3beaaSApple OSS Distributions 
134*aca3beaaSApple OSS Distributions /*
135*aca3beaaSApple OSS Distributions  * Raw interface to IP protocol.
136*aca3beaaSApple OSS Distributions  */
137*aca3beaaSApple OSS Distributions 
138*aca3beaaSApple OSS Distributions /*
139*aca3beaaSApple OSS Distributions  * Initialize raw connection block q.
140*aca3beaaSApple OSS Distributions  */
141*aca3beaaSApple OSS Distributions void
rip_init(struct protosw * pp,struct domain * dp)142*aca3beaaSApple OSS Distributions rip_init(struct protosw *pp, struct domain *dp)
143*aca3beaaSApple OSS Distributions {
144*aca3beaaSApple OSS Distributions #pragma unused(dp)
145*aca3beaaSApple OSS Distributions 	static int rip_initialized = 0;
146*aca3beaaSApple OSS Distributions 	struct inpcbinfo *pcbinfo;
147*aca3beaaSApple OSS Distributions 
148*aca3beaaSApple OSS Distributions 	VERIFY((pp->pr_flags & (PR_INITIALIZED | PR_ATTACHED)) == PR_ATTACHED);
149*aca3beaaSApple OSS Distributions 
150*aca3beaaSApple OSS Distributions 	if (rip_initialized) {
151*aca3beaaSApple OSS Distributions 		return;
152*aca3beaaSApple OSS Distributions 	}
153*aca3beaaSApple OSS Distributions 	rip_initialized = 1;
154*aca3beaaSApple OSS Distributions 
155*aca3beaaSApple OSS Distributions 	LIST_INIT(&ripcb);
156*aca3beaaSApple OSS Distributions 	ripcbinfo.ipi_listhead = &ripcb;
157*aca3beaaSApple OSS Distributions 	/*
158*aca3beaaSApple OSS Distributions 	 * XXX We don't use the hash list for raw IP, but it's easier
159*aca3beaaSApple OSS Distributions 	 * to allocate a one entry hash list than it is to check all
160*aca3beaaSApple OSS Distributions 	 * over the place for ipi_hashbase == NULL.
161*aca3beaaSApple OSS Distributions 	 */
162*aca3beaaSApple OSS Distributions 	ripcbinfo.ipi_hashbase = hashinit(1, M_PCB, &ripcbinfo.ipi_hashmask);
163*aca3beaaSApple OSS Distributions 	ripcbinfo.ipi_porthashbase = hashinit(1, M_PCB, &ripcbinfo.ipi_porthashmask);
164*aca3beaaSApple OSS Distributions 
165*aca3beaaSApple OSS Distributions 	ripcbinfo.ipi_zone.zov_kt_heap = ripzone;
166*aca3beaaSApple OSS Distributions 
167*aca3beaaSApple OSS Distributions 	pcbinfo = &ripcbinfo;
168*aca3beaaSApple OSS Distributions 	/*
169*aca3beaaSApple OSS Distributions 	 * allocate lock group attribute and group for udp pcb mutexes
170*aca3beaaSApple OSS Distributions 	 */
171*aca3beaaSApple OSS Distributions 	pcbinfo->ipi_lock_grp = lck_grp_alloc_init("ripcb", LCK_GRP_ATTR_NULL);
172*aca3beaaSApple OSS Distributions 
173*aca3beaaSApple OSS Distributions 	/*
174*aca3beaaSApple OSS Distributions 	 * allocate the lock attribute for udp pcb mutexes
175*aca3beaaSApple OSS Distributions 	 */
176*aca3beaaSApple OSS Distributions 	lck_attr_setdefault(&pcbinfo->ipi_lock_attr);
177*aca3beaaSApple OSS Distributions 	lck_rw_init(&pcbinfo->ipi_lock, pcbinfo->ipi_lock_grp,
178*aca3beaaSApple OSS Distributions 	    &pcbinfo->ipi_lock_attr);
179*aca3beaaSApple OSS Distributions 
180*aca3beaaSApple OSS Distributions 	in_pcbinfo_attach(&ripcbinfo);
181*aca3beaaSApple OSS Distributions }
182*aca3beaaSApple OSS Distributions 
183*aca3beaaSApple OSS Distributions static struct   sockaddr_in ripsrc = {
184*aca3beaaSApple OSS Distributions 	.sin_len = sizeof(ripsrc),
185*aca3beaaSApple OSS Distributions 	.sin_family = AF_INET,
186*aca3beaaSApple OSS Distributions 	.sin_port = 0,
187*aca3beaaSApple OSS Distributions 	.sin_addr = { .s_addr = 0 },
188*aca3beaaSApple OSS Distributions 	.sin_zero = {0, 0, 0, 0, 0, 0, 0, 0, }
189*aca3beaaSApple OSS Distributions };
190*aca3beaaSApple OSS Distributions 
191*aca3beaaSApple OSS Distributions /*
192*aca3beaaSApple OSS Distributions  * Setup generic address and protocol structures
193*aca3beaaSApple OSS Distributions  * for raw_input routine, then pass them along with
194*aca3beaaSApple OSS Distributions  * mbuf chain.
195*aca3beaaSApple OSS Distributions  */
196*aca3beaaSApple OSS Distributions void
rip_input(struct mbuf * m,int iphlen)197*aca3beaaSApple OSS Distributions rip_input(struct mbuf *m, int iphlen)
198*aca3beaaSApple OSS Distributions {
199*aca3beaaSApple OSS Distributions 	struct ip *ip = mtod(m, struct ip *);
200*aca3beaaSApple OSS Distributions 	struct inpcb *inp;
201*aca3beaaSApple OSS Distributions 	struct inpcb *last = 0;
202*aca3beaaSApple OSS Distributions 	struct mbuf *opts = 0;
203*aca3beaaSApple OSS Distributions 	int skipit = 0, ret = 0;
204*aca3beaaSApple OSS Distributions 	struct ifnet *ifp = m->m_pkthdr.rcvif;
205*aca3beaaSApple OSS Distributions 	boolean_t is_wake_pkt = false;
206*aca3beaaSApple OSS Distributions 
207*aca3beaaSApple OSS Distributions 	/* Expect 32-bit aligned data pointer on strict-align platforms */
208*aca3beaaSApple OSS Distributions 	MBUF_STRICT_DATA_ALIGNMENT_CHECK_32(m);
209*aca3beaaSApple OSS Distributions 
210*aca3beaaSApple OSS Distributions 	if ((m->m_flags & M_PKTHDR) && (m->m_pkthdr.pkt_flags & PKTF_WAKE_PKT)) {
211*aca3beaaSApple OSS Distributions 		is_wake_pkt = true;
212*aca3beaaSApple OSS Distributions 	}
213*aca3beaaSApple OSS Distributions 
214*aca3beaaSApple OSS Distributions 	ripsrc.sin_addr = ip->ip_src;
215*aca3beaaSApple OSS Distributions 	lck_rw_lock_shared(&ripcbinfo.ipi_lock);
216*aca3beaaSApple OSS Distributions 	LIST_FOREACH(inp, &ripcb, inp_list) {
217*aca3beaaSApple OSS Distributions 		if ((inp->inp_vflag & INP_IPV4) == 0) {
218*aca3beaaSApple OSS Distributions 			continue;
219*aca3beaaSApple OSS Distributions 		}
220*aca3beaaSApple OSS Distributions 		if (inp->inp_ip_p && (inp->inp_ip_p != ip->ip_p)) {
221*aca3beaaSApple OSS Distributions 			continue;
222*aca3beaaSApple OSS Distributions 		}
223*aca3beaaSApple OSS Distributions 		if (inp->inp_laddr.s_addr &&
224*aca3beaaSApple OSS Distributions 		    inp->inp_laddr.s_addr != ip->ip_dst.s_addr) {
225*aca3beaaSApple OSS Distributions 			continue;
226*aca3beaaSApple OSS Distributions 		}
227*aca3beaaSApple OSS Distributions 		if (inp->inp_faddr.s_addr &&
228*aca3beaaSApple OSS Distributions 		    inp->inp_faddr.s_addr != ip->ip_src.s_addr) {
229*aca3beaaSApple OSS Distributions 			continue;
230*aca3beaaSApple OSS Distributions 		}
231*aca3beaaSApple OSS Distributions 		if (inp_restricted_recv(inp, ifp)) {
232*aca3beaaSApple OSS Distributions 			continue;
233*aca3beaaSApple OSS Distributions 		}
234*aca3beaaSApple OSS Distributions 		if (last) {
235*aca3beaaSApple OSS Distributions 			struct mbuf *n = m_copy(m, 0, (int)M_COPYALL);
236*aca3beaaSApple OSS Distributions 
237*aca3beaaSApple OSS Distributions 			skipit = 0;
238*aca3beaaSApple OSS Distributions 
239*aca3beaaSApple OSS Distributions #if NECP
240*aca3beaaSApple OSS Distributions 			if (n && !necp_socket_is_allowed_to_send_recv_v4(last, 0, 0,
241*aca3beaaSApple OSS Distributions 			    &ip->ip_dst, &ip->ip_src, ifp, 0, NULL, NULL, NULL, NULL)) {
242*aca3beaaSApple OSS Distributions 				m_freem(n);
243*aca3beaaSApple OSS Distributions 				/* do not inject data to pcb */
244*aca3beaaSApple OSS Distributions 				skipit = 1;
245*aca3beaaSApple OSS Distributions 			}
246*aca3beaaSApple OSS Distributions #endif /* NECP */
247*aca3beaaSApple OSS Distributions 			if (n && skipit == 0) {
248*aca3beaaSApple OSS Distributions 				int error = 0;
249*aca3beaaSApple OSS Distributions 				if ((last->inp_flags & INP_CONTROLOPTS) != 0 ||
250*aca3beaaSApple OSS Distributions 				    SOFLOW_ENABLED(last->inp_socket) ||
251*aca3beaaSApple OSS Distributions 				    SO_RECV_CONTROL_OPTS(last->inp_socket)) {
252*aca3beaaSApple OSS Distributions 					ret = ip_savecontrol(last, &opts, ip, n);
253*aca3beaaSApple OSS Distributions 					if (ret != 0) {
254*aca3beaaSApple OSS Distributions 						m_freem(n);
255*aca3beaaSApple OSS Distributions 						m_freem(opts);
256*aca3beaaSApple OSS Distributions 						last = inp;
257*aca3beaaSApple OSS Distributions 						continue;
258*aca3beaaSApple OSS Distributions 					}
259*aca3beaaSApple OSS Distributions 				}
260*aca3beaaSApple OSS Distributions 				if (last->inp_flags & INP_STRIPHDR
261*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
262*aca3beaaSApple OSS Distributions 				    /*
263*aca3beaaSApple OSS Distributions 				     * If socket is subject to Content Filter, delay stripping until reinject
264*aca3beaaSApple OSS Distributions 				     */
265*aca3beaaSApple OSS Distributions 				    && (!CFIL_DGRAM_FILTERED(last->inp_socket))
266*aca3beaaSApple OSS Distributions #endif
267*aca3beaaSApple OSS Distributions 				    ) {
268*aca3beaaSApple OSS Distributions 					n->m_len -= iphlen;
269*aca3beaaSApple OSS Distributions 					n->m_pkthdr.len -= iphlen;
270*aca3beaaSApple OSS Distributions 					n->m_data += iphlen;
271*aca3beaaSApple OSS Distributions 				}
272*aca3beaaSApple OSS Distributions 				so_recv_data_stat(last->inp_socket, m, 0);
273*aca3beaaSApple OSS Distributions 				if (sbappendaddr(&last->inp_socket->so_rcv,
274*aca3beaaSApple OSS Distributions 				    (struct sockaddr *)&ripsrc, n,
275*aca3beaaSApple OSS Distributions 				    opts, &error) != 0) {
276*aca3beaaSApple OSS Distributions 					sorwakeup(last->inp_socket);
277*aca3beaaSApple OSS Distributions 				} else {
278*aca3beaaSApple OSS Distributions 					if (error) {
279*aca3beaaSApple OSS Distributions 						/* should notify about lost packet */
280*aca3beaaSApple OSS Distributions 						ipstat.ips_raw_sappend_fail++;
281*aca3beaaSApple OSS Distributions 					}
282*aca3beaaSApple OSS Distributions 				}
283*aca3beaaSApple OSS Distributions 				if (is_wake_pkt) {
284*aca3beaaSApple OSS Distributions 					soevent(last->in6p_socket,
285*aca3beaaSApple OSS Distributions 					    SO_FILT_HINT_LOCKED | SO_FILT_HINT_WAKE_PKT);
286*aca3beaaSApple OSS Distributions 				}
287*aca3beaaSApple OSS Distributions 				opts = 0;
288*aca3beaaSApple OSS Distributions 			}
289*aca3beaaSApple OSS Distributions 		}
290*aca3beaaSApple OSS Distributions 		last = inp;
291*aca3beaaSApple OSS Distributions 	}
292*aca3beaaSApple OSS Distributions 
293*aca3beaaSApple OSS Distributions 	skipit = 0;
294*aca3beaaSApple OSS Distributions #if NECP
295*aca3beaaSApple OSS Distributions 	if (last && !necp_socket_is_allowed_to_send_recv_v4(last, 0, 0,
296*aca3beaaSApple OSS Distributions 	    &ip->ip_dst, &ip->ip_src, ifp, 0, NULL, NULL, NULL, NULL)) {
297*aca3beaaSApple OSS Distributions 		m_freem(m);
298*aca3beaaSApple OSS Distributions 		OSAddAtomic(1, &ipstat.ips_delivered);
299*aca3beaaSApple OSS Distributions 		/* do not inject data to pcb */
300*aca3beaaSApple OSS Distributions 		skipit = 1;
301*aca3beaaSApple OSS Distributions 	}
302*aca3beaaSApple OSS Distributions #endif /* NECP */
303*aca3beaaSApple OSS Distributions 	if (skipit == 0) {
304*aca3beaaSApple OSS Distributions 		if (last) {
305*aca3beaaSApple OSS Distributions 			if ((last->inp_flags & INP_CONTROLOPTS) != 0 ||
306*aca3beaaSApple OSS Distributions 			    SOFLOW_ENABLED(last->inp_socket) ||
307*aca3beaaSApple OSS Distributions 			    SO_RECV_CONTROL_OPTS(last->inp_socket)) {
308*aca3beaaSApple OSS Distributions 				ret = ip_savecontrol(last, &opts, ip, m);
309*aca3beaaSApple OSS Distributions 				if (ret != 0) {
310*aca3beaaSApple OSS Distributions 					m_freem(m);
311*aca3beaaSApple OSS Distributions 					m_freem(opts);
312*aca3beaaSApple OSS Distributions 					goto unlock;
313*aca3beaaSApple OSS Distributions 				}
314*aca3beaaSApple OSS Distributions 			}
315*aca3beaaSApple OSS Distributions 			if (last->inp_flags & INP_STRIPHDR
316*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
317*aca3beaaSApple OSS Distributions 			    /*
318*aca3beaaSApple OSS Distributions 			     * If socket is subject to Content Filter, delay stripping until reinject
319*aca3beaaSApple OSS Distributions 			     */
320*aca3beaaSApple OSS Distributions 			    && (!CFIL_DGRAM_FILTERED(last->inp_socket))
321*aca3beaaSApple OSS Distributions #endif
322*aca3beaaSApple OSS Distributions 			    ) {
323*aca3beaaSApple OSS Distributions 				m->m_len -= iphlen;
324*aca3beaaSApple OSS Distributions 				m->m_pkthdr.len -= iphlen;
325*aca3beaaSApple OSS Distributions 				m->m_data += iphlen;
326*aca3beaaSApple OSS Distributions 			}
327*aca3beaaSApple OSS Distributions 			so_recv_data_stat(last->inp_socket, m, 0);
328*aca3beaaSApple OSS Distributions 			if (sbappendaddr(&last->inp_socket->so_rcv,
329*aca3beaaSApple OSS Distributions 			    (struct sockaddr *)&ripsrc, m, opts, NULL) != 0) {
330*aca3beaaSApple OSS Distributions 				sorwakeup(last->inp_socket);
331*aca3beaaSApple OSS Distributions 			} else {
332*aca3beaaSApple OSS Distributions 				ipstat.ips_raw_sappend_fail++;
333*aca3beaaSApple OSS Distributions 			}
334*aca3beaaSApple OSS Distributions 			if (is_wake_pkt) {
335*aca3beaaSApple OSS Distributions 				soevent(last->in6p_socket,
336*aca3beaaSApple OSS Distributions 				    SO_FILT_HINT_LOCKED | SO_FILT_HINT_WAKE_PKT);
337*aca3beaaSApple OSS Distributions 			}
338*aca3beaaSApple OSS Distributions 		} else {
339*aca3beaaSApple OSS Distributions 			m_freem(m);
340*aca3beaaSApple OSS Distributions 			OSAddAtomic(1, &ipstat.ips_noproto);
341*aca3beaaSApple OSS Distributions 			OSAddAtomic(-1, &ipstat.ips_delivered);
342*aca3beaaSApple OSS Distributions 		}
343*aca3beaaSApple OSS Distributions 	}
344*aca3beaaSApple OSS Distributions unlock:
345*aca3beaaSApple OSS Distributions 	/*
346*aca3beaaSApple OSS Distributions 	 * Keep the list locked because socket filter may force the socket lock
347*aca3beaaSApple OSS Distributions 	 * to be released when calling sbappendaddr() -- see rdar://7627704
348*aca3beaaSApple OSS Distributions 	 */
349*aca3beaaSApple OSS Distributions 	lck_rw_done(&ripcbinfo.ipi_lock);
350*aca3beaaSApple OSS Distributions }
351*aca3beaaSApple OSS Distributions 
352*aca3beaaSApple OSS Distributions /*
353*aca3beaaSApple OSS Distributions  * Generate IP header and pass packet to ip_output.
354*aca3beaaSApple OSS Distributions  * Tack on options user may have setup with control call.
355*aca3beaaSApple OSS Distributions  */
356*aca3beaaSApple OSS Distributions int
rip_output(struct mbuf * m,struct socket * so,u_int32_t dst,struct mbuf * control)357*aca3beaaSApple OSS Distributions rip_output(
358*aca3beaaSApple OSS Distributions 	struct mbuf *m,
359*aca3beaaSApple OSS Distributions 	struct socket *so,
360*aca3beaaSApple OSS Distributions 	u_int32_t dst,
361*aca3beaaSApple OSS Distributions 	struct mbuf *control)
362*aca3beaaSApple OSS Distributions {
363*aca3beaaSApple OSS Distributions 	struct ip *ip;
364*aca3beaaSApple OSS Distributions 	struct inpcb *inp = sotoinpcb(so);
365*aca3beaaSApple OSS Distributions 	int flags = (so->so_options & SO_DONTROUTE) | IP_ALLOWBROADCAST;
366*aca3beaaSApple OSS Distributions 	int inp_flags = inp ? inp->inp_flags : 0;
367*aca3beaaSApple OSS Distributions 	struct ip_out_args ipoa;
368*aca3beaaSApple OSS Distributions 	struct ip_moptions *imo;
369*aca3beaaSApple OSS Distributions 	int tos = IPTOS_UNSPEC;
370*aca3beaaSApple OSS Distributions 	int error = 0;
371*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
372*aca3beaaSApple OSS Distributions 	struct m_tag *cfil_tag = NULL;
373*aca3beaaSApple OSS Distributions 	bool cfil_faddr_use = false;
374*aca3beaaSApple OSS Distributions 	uint32_t cfil_so_state_change_cnt = 0;
375*aca3beaaSApple OSS Distributions 	uint32_t cfil_so_options = 0;
376*aca3beaaSApple OSS Distributions 	int cfil_inp_flags = 0;
377*aca3beaaSApple OSS Distributions 	struct sockaddr *cfil_faddr = NULL;
378*aca3beaaSApple OSS Distributions 	struct sockaddr_in *cfil_sin;
379*aca3beaaSApple OSS Distributions 	u_int32_t cfil_dst = 0;
380*aca3beaaSApple OSS Distributions #endif
381*aca3beaaSApple OSS Distributions 
382*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
383*aca3beaaSApple OSS Distributions 	/*
384*aca3beaaSApple OSS Distributions 	 * If socket is subject to Content Filter and no addr is passed in,
385*aca3beaaSApple OSS Distributions 	 * retrieve CFIL saved state from mbuf and use it if necessary.
386*aca3beaaSApple OSS Distributions 	 */
387*aca3beaaSApple OSS Distributions 	if (CFIL_DGRAM_FILTERED(so) && dst == INADDR_ANY) {
388*aca3beaaSApple OSS Distributions 		cfil_tag = cfil_dgram_get_socket_state(m, &cfil_so_state_change_cnt, &cfil_so_options, &cfil_faddr, &cfil_inp_flags);
389*aca3beaaSApple OSS Distributions 		if (cfil_tag) {
390*aca3beaaSApple OSS Distributions 			cfil_sin = SIN(cfil_faddr);
391*aca3beaaSApple OSS Distributions 			flags = (cfil_so_options & SO_DONTROUTE) | IP_ALLOWBROADCAST;
392*aca3beaaSApple OSS Distributions 			inp_flags = cfil_inp_flags;
393*aca3beaaSApple OSS Distributions 			if (inp && inp->inp_faddr.s_addr == INADDR_ANY) {
394*aca3beaaSApple OSS Distributions 				/*
395*aca3beaaSApple OSS Distributions 				 * Socket is unconnected, simply use the saved faddr as 'addr' to go through
396*aca3beaaSApple OSS Distributions 				 * the connect/disconnect logic.
397*aca3beaaSApple OSS Distributions 				 */
398*aca3beaaSApple OSS Distributions 				dst = cfil_sin->sin_addr.s_addr;
399*aca3beaaSApple OSS Distributions 			} else if ((so->so_state_change_cnt != cfil_so_state_change_cnt) &&
400*aca3beaaSApple OSS Distributions 			    (inp->inp_fport != cfil_sin->sin_port ||
401*aca3beaaSApple OSS Distributions 			    inp->inp_faddr.s_addr != cfil_sin->sin_addr.s_addr)) {
402*aca3beaaSApple OSS Distributions 				/*
403*aca3beaaSApple OSS Distributions 				 * Socket is connected but socket state and dest addr/port changed.
404*aca3beaaSApple OSS Distributions 				 * We need to use the saved faddr and socket options.
405*aca3beaaSApple OSS Distributions 				 */
406*aca3beaaSApple OSS Distributions 				cfil_faddr_use = true;
407*aca3beaaSApple OSS Distributions 				cfil_dst = cfil_sin->sin_addr.s_addr;
408*aca3beaaSApple OSS Distributions 			}
409*aca3beaaSApple OSS Distributions 			m_tag_free(cfil_tag);
410*aca3beaaSApple OSS Distributions 		}
411*aca3beaaSApple OSS Distributions 	}
412*aca3beaaSApple OSS Distributions #endif
413*aca3beaaSApple OSS Distributions 
414*aca3beaaSApple OSS Distributions 	if (so->so_state & SS_ISCONNECTED) {
415*aca3beaaSApple OSS Distributions 		if (dst != INADDR_ANY) {
416*aca3beaaSApple OSS Distributions 			if (m != NULL) {
417*aca3beaaSApple OSS Distributions 				m_freem(m);
418*aca3beaaSApple OSS Distributions 			}
419*aca3beaaSApple OSS Distributions 			if (control != NULL) {
420*aca3beaaSApple OSS Distributions 				m_freem(control);
421*aca3beaaSApple OSS Distributions 			}
422*aca3beaaSApple OSS Distributions 			return EISCONN;
423*aca3beaaSApple OSS Distributions 		}
424*aca3beaaSApple OSS Distributions 		dst = cfil_faddr_use ? cfil_dst : inp->inp_faddr.s_addr;
425*aca3beaaSApple OSS Distributions 	} else {
426*aca3beaaSApple OSS Distributions 		if (dst == INADDR_ANY) {
427*aca3beaaSApple OSS Distributions 			if (m != NULL) {
428*aca3beaaSApple OSS Distributions 				m_freem(m);
429*aca3beaaSApple OSS Distributions 			}
430*aca3beaaSApple OSS Distributions 			if (control != NULL) {
431*aca3beaaSApple OSS Distributions 				m_freem(control);
432*aca3beaaSApple OSS Distributions 			}
433*aca3beaaSApple OSS Distributions 			return ENOTCONN;
434*aca3beaaSApple OSS Distributions 		}
435*aca3beaaSApple OSS Distributions 	}
436*aca3beaaSApple OSS Distributions 
437*aca3beaaSApple OSS Distributions 	bzero(&ipoa, sizeof(ipoa));
438*aca3beaaSApple OSS Distributions 	ipoa.ipoa_boundif = IFSCOPE_NONE;
439*aca3beaaSApple OSS Distributions 	ipoa.ipoa_flags = IPOAF_SELECT_SRCIF;
440*aca3beaaSApple OSS Distributions 
441*aca3beaaSApple OSS Distributions 	int sotc = SO_TC_UNSPEC;
442*aca3beaaSApple OSS Distributions 	int netsvctype = _NET_SERVICE_TYPE_UNSPEC;
443*aca3beaaSApple OSS Distributions 
444*aca3beaaSApple OSS Distributions 
445*aca3beaaSApple OSS Distributions 	if (control != NULL) {
446*aca3beaaSApple OSS Distributions 		tos = so_tos_from_control(control);
447*aca3beaaSApple OSS Distributions 		sotc = so_tc_from_control(control, &netsvctype);
448*aca3beaaSApple OSS Distributions 
449*aca3beaaSApple OSS Distributions 		m_freem(control);
450*aca3beaaSApple OSS Distributions 		control = NULL;
451*aca3beaaSApple OSS Distributions 	}
452*aca3beaaSApple OSS Distributions 	if (sotc == SO_TC_UNSPEC) {
453*aca3beaaSApple OSS Distributions 		sotc = so->so_traffic_class;
454*aca3beaaSApple OSS Distributions 		netsvctype = so->so_netsvctype;
455*aca3beaaSApple OSS Distributions 	}
456*aca3beaaSApple OSS Distributions 
457*aca3beaaSApple OSS Distributions 	if (inp == NULL
458*aca3beaaSApple OSS Distributions #if NECP
459*aca3beaaSApple OSS Distributions 	    || (necp_socket_should_use_flow_divert(inp))
460*aca3beaaSApple OSS Distributions #endif /* NECP */
461*aca3beaaSApple OSS Distributions 	    ) {
462*aca3beaaSApple OSS Distributions 		if (m != NULL) {
463*aca3beaaSApple OSS Distributions 			m_freem(m);
464*aca3beaaSApple OSS Distributions 		}
465*aca3beaaSApple OSS Distributions 		VERIFY(control == NULL);
466*aca3beaaSApple OSS Distributions 		return inp == NULL ? EINVAL : EPROTOTYPE;
467*aca3beaaSApple OSS Distributions 	}
468*aca3beaaSApple OSS Distributions 
469*aca3beaaSApple OSS Distributions 	flags |= IP_OUTARGS;
470*aca3beaaSApple OSS Distributions 	/* If socket was bound to an ifindex, tell ip_output about it */
471*aca3beaaSApple OSS Distributions 	if (inp->inp_flags & INP_BOUND_IF) {
472*aca3beaaSApple OSS Distributions 		ipoa.ipoa_boundif = inp->inp_boundifp->if_index;
473*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |= IPOAF_BOUND_IF;
474*aca3beaaSApple OSS Distributions 	}
475*aca3beaaSApple OSS Distributions 	if (INP_NO_CELLULAR(inp)) {
476*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |=  IPOAF_NO_CELLULAR;
477*aca3beaaSApple OSS Distributions 	}
478*aca3beaaSApple OSS Distributions 	if (INP_NO_EXPENSIVE(inp)) {
479*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |=  IPOAF_NO_EXPENSIVE;
480*aca3beaaSApple OSS Distributions 	}
481*aca3beaaSApple OSS Distributions 	if (INP_NO_CONSTRAINED(inp)) {
482*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |=  IPOAF_NO_CONSTRAINED;
483*aca3beaaSApple OSS Distributions 	}
484*aca3beaaSApple OSS Distributions 	if (INP_AWDL_UNRESTRICTED(inp)) {
485*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |=  IPOAF_AWDL_UNRESTRICTED;
486*aca3beaaSApple OSS Distributions 	}
487*aca3beaaSApple OSS Distributions 	ipoa.ipoa_sotc = sotc;
488*aca3beaaSApple OSS Distributions 	ipoa.ipoa_netsvctype = netsvctype;
489*aca3beaaSApple OSS Distributions 
490*aca3beaaSApple OSS Distributions 	if (inp->inp_flowhash == 0) {
491*aca3beaaSApple OSS Distributions 		inp_calc_flowhash(inp);
492*aca3beaaSApple OSS Distributions 		ASSERT(inp->inp_flowhash != 0);
493*aca3beaaSApple OSS Distributions 	}
494*aca3beaaSApple OSS Distributions 
495*aca3beaaSApple OSS Distributions 	/*
496*aca3beaaSApple OSS Distributions 	 * If the user handed us a complete IP packet, use it.
497*aca3beaaSApple OSS Distributions 	 * Otherwise, allocate an mbuf for a header and fill it in.
498*aca3beaaSApple OSS Distributions 	 */
499*aca3beaaSApple OSS Distributions 	if ((inp_flags & INP_HDRINCL) == 0) {
500*aca3beaaSApple OSS Distributions 		if (m->m_pkthdr.len + sizeof(struct ip) > IP_MAXPACKET) {
501*aca3beaaSApple OSS Distributions 			m_freem(m);
502*aca3beaaSApple OSS Distributions 			return EMSGSIZE;
503*aca3beaaSApple OSS Distributions 		}
504*aca3beaaSApple OSS Distributions 		M_PREPEND(m, sizeof(struct ip), M_WAIT, 1);
505*aca3beaaSApple OSS Distributions 		if (m == NULL) {
506*aca3beaaSApple OSS Distributions 			return ENOBUFS;
507*aca3beaaSApple OSS Distributions 		}
508*aca3beaaSApple OSS Distributions 		ip = mtod(m, struct ip *);
509*aca3beaaSApple OSS Distributions 		if (tos != IPTOS_UNSPEC) {
510*aca3beaaSApple OSS Distributions 			ip->ip_tos = (uint8_t)(tos & IPTOS_MASK);
511*aca3beaaSApple OSS Distributions 		} else {
512*aca3beaaSApple OSS Distributions 			ip->ip_tos = inp->inp_ip_tos;
513*aca3beaaSApple OSS Distributions 		}
514*aca3beaaSApple OSS Distributions 		if (inp->inp_flags2 & INP2_DONTFRAG) {
515*aca3beaaSApple OSS Distributions 			ip->ip_off = IP_DF;
516*aca3beaaSApple OSS Distributions 		} else {
517*aca3beaaSApple OSS Distributions 			ip->ip_off = 0;
518*aca3beaaSApple OSS Distributions 		}
519*aca3beaaSApple OSS Distributions 		ip->ip_p = inp->inp_ip_p;
520*aca3beaaSApple OSS Distributions 		ip->ip_len = (uint16_t)m->m_pkthdr.len;
521*aca3beaaSApple OSS Distributions 		ip->ip_src = inp->inp_laddr;
522*aca3beaaSApple OSS Distributions 		ip->ip_dst.s_addr = dst;
523*aca3beaaSApple OSS Distributions 		ip->ip_ttl = inp->inp_ip_ttl;
524*aca3beaaSApple OSS Distributions 	} else {
525*aca3beaaSApple OSS Distributions 		if (m->m_pkthdr.len > IP_MAXPACKET) {
526*aca3beaaSApple OSS Distributions 			m_freem(m);
527*aca3beaaSApple OSS Distributions 			return EMSGSIZE;
528*aca3beaaSApple OSS Distributions 		}
529*aca3beaaSApple OSS Distributions 		ip = mtod(m, struct ip *);
530*aca3beaaSApple OSS Distributions 		/*
531*aca3beaaSApple OSS Distributions 		 * don't allow both user specified and setsockopt options,
532*aca3beaaSApple OSS Distributions 		 * and don't allow packet length sizes that will crash
533*aca3beaaSApple OSS Distributions 		 */
534*aca3beaaSApple OSS Distributions 		if (m->m_pkthdr.len < sizeof(struct ip) ||
535*aca3beaaSApple OSS Distributions 		    ((IP_VHL_HL(ip->ip_vhl) != (sizeof(*ip) >> 2)) && inp->inp_options) ||
536*aca3beaaSApple OSS Distributions 		    (ip->ip_len > m->m_pkthdr.len) ||
537*aca3beaaSApple OSS Distributions 		    (ip->ip_len < (IP_VHL_HL(ip->ip_vhl) << 2))) {
538*aca3beaaSApple OSS Distributions 			m_freem(m);
539*aca3beaaSApple OSS Distributions 			return EINVAL;
540*aca3beaaSApple OSS Distributions 		}
541*aca3beaaSApple OSS Distributions 		if (ip->ip_id == 0 && !(rfc6864 && IP_OFF_IS_ATOMIC(ntohs(ip->ip_off)))) {
542*aca3beaaSApple OSS Distributions 			ip->ip_id = ip_randomid((uint64_t)m);
543*aca3beaaSApple OSS Distributions 		}
544*aca3beaaSApple OSS Distributions 		/* XXX prevent ip_output from overwriting header fields */
545*aca3beaaSApple OSS Distributions 		flags |= IP_RAWOUTPUT;
546*aca3beaaSApple OSS Distributions 		OSAddAtomic(1, &ipstat.ips_rawout);
547*aca3beaaSApple OSS Distributions 	}
548*aca3beaaSApple OSS Distributions 
549*aca3beaaSApple OSS Distributions 	if (inp->inp_laddr.s_addr != INADDR_ANY) {
550*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |= IPOAF_BOUND_SRCADDR;
551*aca3beaaSApple OSS Distributions 	}
552*aca3beaaSApple OSS Distributions 
553*aca3beaaSApple OSS Distributions #if NECP
554*aca3beaaSApple OSS Distributions 	{
555*aca3beaaSApple OSS Distributions 		necp_kernel_policy_id policy_id;
556*aca3beaaSApple OSS Distributions 		necp_kernel_policy_id skip_policy_id;
557*aca3beaaSApple OSS Distributions 		u_int32_t route_rule_id;
558*aca3beaaSApple OSS Distributions 		u_int32_t pass_flags;
559*aca3beaaSApple OSS Distributions 
560*aca3beaaSApple OSS Distributions 		/*
561*aca3beaaSApple OSS Distributions 		 * We need a route to perform NECP route rule checks
562*aca3beaaSApple OSS Distributions 		 */
563*aca3beaaSApple OSS Distributions 		if ((net_qos_policy_restricted != 0 &&
564*aca3beaaSApple OSS Distributions 		    ROUTE_UNUSABLE(&inp->inp_route))
565*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
566*aca3beaaSApple OSS Distributions 		    || cfil_faddr_use
567*aca3beaaSApple OSS Distributions #endif
568*aca3beaaSApple OSS Distributions 		    ) {
569*aca3beaaSApple OSS Distributions 			struct sockaddr_in to;
570*aca3beaaSApple OSS Distributions 			struct sockaddr_in from;
571*aca3beaaSApple OSS Distributions 			struct in_addr laddr = ip->ip_src;
572*aca3beaaSApple OSS Distributions 
573*aca3beaaSApple OSS Distributions 			ROUTE_RELEASE(&inp->inp_route);
574*aca3beaaSApple OSS Distributions 
575*aca3beaaSApple OSS Distributions 			bzero(&from, sizeof(struct sockaddr_in));
576*aca3beaaSApple OSS Distributions 			from.sin_family = AF_INET;
577*aca3beaaSApple OSS Distributions 			from.sin_len = sizeof(struct sockaddr_in);
578*aca3beaaSApple OSS Distributions 			from.sin_addr = laddr;
579*aca3beaaSApple OSS Distributions 
580*aca3beaaSApple OSS Distributions 			bzero(&to, sizeof(struct sockaddr_in));
581*aca3beaaSApple OSS Distributions 			to.sin_family = AF_INET;
582*aca3beaaSApple OSS Distributions 			to.sin_len = sizeof(struct sockaddr_in);
583*aca3beaaSApple OSS Distributions 			to.sin_addr.s_addr = ip->ip_dst.s_addr;
584*aca3beaaSApple OSS Distributions 
585*aca3beaaSApple OSS Distributions 			if ((error = in_pcbladdr(inp, (struct sockaddr *)&to,
586*aca3beaaSApple OSS Distributions 			    &laddr, ipoa.ipoa_boundif, NULL, 1)) != 0) {
587*aca3beaaSApple OSS Distributions 				printf("%s in_pcbladdr(%p) error %d\n",
588*aca3beaaSApple OSS Distributions 				    __func__, inp, error);
589*aca3beaaSApple OSS Distributions 				m_freem(m);
590*aca3beaaSApple OSS Distributions 				return error;
591*aca3beaaSApple OSS Distributions 			}
592*aca3beaaSApple OSS Distributions 
593*aca3beaaSApple OSS Distributions 			inp_update_necp_policy(inp, (struct sockaddr *)&from,
594*aca3beaaSApple OSS Distributions 			    (struct sockaddr *)&to, ipoa.ipoa_boundif);
595*aca3beaaSApple OSS Distributions 			inp->inp_policyresult.results.qos_marking_gencount = 0;
596*aca3beaaSApple OSS Distributions 		}
597*aca3beaaSApple OSS Distributions 
598*aca3beaaSApple OSS Distributions 		if (!necp_socket_is_allowed_to_send_recv_v4(inp, 0, 0,
599*aca3beaaSApple OSS Distributions 		    &ip->ip_src, &ip->ip_dst, NULL, 0, &policy_id, &route_rule_id, &skip_policy_id, &pass_flags)) {
600*aca3beaaSApple OSS Distributions 			m_freem(m);
601*aca3beaaSApple OSS Distributions 			return EHOSTUNREACH;
602*aca3beaaSApple OSS Distributions 		}
603*aca3beaaSApple OSS Distributions 
604*aca3beaaSApple OSS Distributions 		necp_mark_packet_from_socket(m, inp, policy_id, route_rule_id, skip_policy_id, pass_flags);
605*aca3beaaSApple OSS Distributions 
606*aca3beaaSApple OSS Distributions 		if (net_qos_policy_restricted != 0) {
607*aca3beaaSApple OSS Distributions 			struct ifnet *rt_ifp = NULL;
608*aca3beaaSApple OSS Distributions 
609*aca3beaaSApple OSS Distributions 			if (inp->inp_route.ro_rt != NULL) {
610*aca3beaaSApple OSS Distributions 				rt_ifp = inp->inp_route.ro_rt->rt_ifp;
611*aca3beaaSApple OSS Distributions 			}
612*aca3beaaSApple OSS Distributions 
613*aca3beaaSApple OSS Distributions 			necp_socket_update_qos_marking(inp, inp->inp_route.ro_rt, route_rule_id);
614*aca3beaaSApple OSS Distributions 		}
615*aca3beaaSApple OSS Distributions 	}
616*aca3beaaSApple OSS Distributions #endif /* NECP */
617*aca3beaaSApple OSS Distributions 	if ((so->so_flags1 & SOF1_QOSMARKING_ALLOWED)) {
618*aca3beaaSApple OSS Distributions 		ipoa.ipoa_flags |= IPOAF_QOSMARKING_ALLOWED;
619*aca3beaaSApple OSS Distributions 	}
620*aca3beaaSApple OSS Distributions #if IPSEC
621*aca3beaaSApple OSS Distributions 	if (inp->inp_sp != NULL && ipsec_setsocket(m, so) != 0) {
622*aca3beaaSApple OSS Distributions 		m_freem(m);
623*aca3beaaSApple OSS Distributions 		return ENOBUFS;
624*aca3beaaSApple OSS Distributions 	}
625*aca3beaaSApple OSS Distributions #endif /*IPSEC*/
626*aca3beaaSApple OSS Distributions 
627*aca3beaaSApple OSS Distributions 	if (ROUTE_UNUSABLE(&inp->inp_route)) {
628*aca3beaaSApple OSS Distributions 		ROUTE_RELEASE(&inp->inp_route);
629*aca3beaaSApple OSS Distributions 	}
630*aca3beaaSApple OSS Distributions 
631*aca3beaaSApple OSS Distributions 	set_packet_service_class(m, so, sotc, 0);
632*aca3beaaSApple OSS Distributions 	m->m_pkthdr.pkt_flowsrc = FLOWSRC_INPCB;
633*aca3beaaSApple OSS Distributions 	m->m_pkthdr.pkt_flowid = inp->inp_flowhash;
634*aca3beaaSApple OSS Distributions 	m->m_pkthdr.pkt_flags |= (PKTF_FLOW_ID | PKTF_FLOW_LOCALSRC |
635*aca3beaaSApple OSS Distributions 	    PKTF_FLOW_RAWSOCK);
636*aca3beaaSApple OSS Distributions 	m->m_pkthdr.pkt_proto = inp->inp_ip_p;
637*aca3beaaSApple OSS Distributions 	m->m_pkthdr.tx_rawip_pid = so->last_pid;
638*aca3beaaSApple OSS Distributions 	m->m_pkthdr.tx_rawip_e_pid = so->e_pid;
639*aca3beaaSApple OSS Distributions 	if (so->so_flags & SOF_DELEGATED) {
640*aca3beaaSApple OSS Distributions 		m->m_pkthdr.tx_rawip_e_pid = so->e_pid;
641*aca3beaaSApple OSS Distributions 	} else {
642*aca3beaaSApple OSS Distributions 		m->m_pkthdr.tx_rawip_e_pid = 0;
643*aca3beaaSApple OSS Distributions 	}
644*aca3beaaSApple OSS Distributions #if (DEBUG || DEVELOPMENT)
645*aca3beaaSApple OSS Distributions 	if (so->so_flags & SOF_MARK_WAKE_PKT) {
646*aca3beaaSApple OSS Distributions 		so->so_flags &= ~SOF_MARK_WAKE_PKT;
647*aca3beaaSApple OSS Distributions 		m->m_pkthdr.pkt_flags |= PKTF_WAKE_PKT;
648*aca3beaaSApple OSS Distributions 	}
649*aca3beaaSApple OSS Distributions #endif /* (DEBUG || DEVELOPMENT) */
650*aca3beaaSApple OSS Distributions 
651*aca3beaaSApple OSS Distributions 	imo = inp->inp_moptions;
652*aca3beaaSApple OSS Distributions 	if (imo != NULL) {
653*aca3beaaSApple OSS Distributions 		IMO_ADDREF(imo);
654*aca3beaaSApple OSS Distributions 	}
655*aca3beaaSApple OSS Distributions 	/*
656*aca3beaaSApple OSS Distributions 	 * The domain lock is held across ip_output, so it is okay
657*aca3beaaSApple OSS Distributions 	 * to pass the PCB cached route pointer directly to IP and
658*aca3beaaSApple OSS Distributions 	 * the modules beneath it.
659*aca3beaaSApple OSS Distributions 	 */
660*aca3beaaSApple OSS Distributions 	// TODO: PASS DOWN ROUTE RULE ID
661*aca3beaaSApple OSS Distributions 	error = ip_output(m, inp->inp_options, &inp->inp_route, flags,
662*aca3beaaSApple OSS Distributions 	    imo, &ipoa);
663*aca3beaaSApple OSS Distributions 
664*aca3beaaSApple OSS Distributions 	if (imo != NULL) {
665*aca3beaaSApple OSS Distributions 		IMO_REMREF(imo);
666*aca3beaaSApple OSS Distributions 	}
667*aca3beaaSApple OSS Distributions 
668*aca3beaaSApple OSS Distributions 	if (inp->inp_route.ro_rt != NULL) {
669*aca3beaaSApple OSS Distributions 		struct rtentry *rt = inp->inp_route.ro_rt;
670*aca3beaaSApple OSS Distributions 		struct ifnet *outif;
671*aca3beaaSApple OSS Distributions 
672*aca3beaaSApple OSS Distributions 		if ((rt->rt_flags & (RTF_MULTICAST | RTF_BROADCAST)) ||
673*aca3beaaSApple OSS Distributions 		    inp->inp_socket == NULL ||
674*aca3beaaSApple OSS Distributions #if CONTENT_FILTER
675*aca3beaaSApple OSS Distributions 		    /* Discard temporary route for cfil case */
676*aca3beaaSApple OSS Distributions 		    cfil_faddr_use ||
677*aca3beaaSApple OSS Distributions #endif
678*aca3beaaSApple OSS Distributions 		    !(inp->inp_socket->so_state & SS_ISCONNECTED)) {
679*aca3beaaSApple OSS Distributions 			rt = NULL;      /* unusable */
680*aca3beaaSApple OSS Distributions 		}
681*aca3beaaSApple OSS Distributions 		/*
682*aca3beaaSApple OSS Distributions 		 * Always discard the cached route for unconnected
683*aca3beaaSApple OSS Distributions 		 * socket or if it is a multicast route.
684*aca3beaaSApple OSS Distributions 		 */
685*aca3beaaSApple OSS Distributions 		if (rt == NULL) {
686*aca3beaaSApple OSS Distributions 			ROUTE_RELEASE(&inp->inp_route);
687*aca3beaaSApple OSS Distributions 		}
688*aca3beaaSApple OSS Distributions 
689*aca3beaaSApple OSS Distributions 		/*
690*aca3beaaSApple OSS Distributions 		 * If this is a connected socket and the destination
691*aca3beaaSApple OSS Distributions 		 * route is unicast, update outif with that of the
692*aca3beaaSApple OSS Distributions 		 * route interface used by IP.
693*aca3beaaSApple OSS Distributions 		 */
694*aca3beaaSApple OSS Distributions 		if (rt != NULL &&
695*aca3beaaSApple OSS Distributions 		    (outif = rt->rt_ifp) != inp->inp_last_outifp) {
696*aca3beaaSApple OSS Distributions 			inp->inp_last_outifp = outif;
697*aca3beaaSApple OSS Distributions 		}
698*aca3beaaSApple OSS Distributions 	} else {
699*aca3beaaSApple OSS Distributions 		ROUTE_RELEASE(&inp->inp_route);
700*aca3beaaSApple OSS Distributions 	}
701*aca3beaaSApple OSS Distributions 
702*aca3beaaSApple OSS Distributions 	/*
703*aca3beaaSApple OSS Distributions 	 * If output interface was cellular/expensive/constrained, and this socket is
704*aca3beaaSApple OSS Distributions 	 * denied access to it, generate an event.
705*aca3beaaSApple OSS Distributions 	 */
706*aca3beaaSApple OSS Distributions 	if (error != 0 && (ipoa.ipoa_flags & IPOAF_R_IFDENIED) &&
707*aca3beaaSApple OSS Distributions 	    (INP_NO_CELLULAR(inp) || INP_NO_EXPENSIVE(inp) || INP_NO_CONSTRAINED(inp))) {
708*aca3beaaSApple OSS Distributions 		soevent(so, (SO_FILT_HINT_LOCKED | SO_FILT_HINT_IFDENIED));
709*aca3beaaSApple OSS Distributions 	}
710*aca3beaaSApple OSS Distributions 
711*aca3beaaSApple OSS Distributions 	return error;
712*aca3beaaSApple OSS Distributions }
713*aca3beaaSApple OSS Distributions 
714*aca3beaaSApple OSS Distributions 
715*aca3beaaSApple OSS Distributions /*
716*aca3beaaSApple OSS Distributions  * Raw IP socket option processing.
717*aca3beaaSApple OSS Distributions  */
718*aca3beaaSApple OSS Distributions int
rip_ctloutput(struct socket * so,struct sockopt * sopt)719*aca3beaaSApple OSS Distributions rip_ctloutput(struct socket *so, struct sockopt *sopt)
720*aca3beaaSApple OSS Distributions {
721*aca3beaaSApple OSS Distributions 	struct  inpcb *inp = sotoinpcb(so);
722*aca3beaaSApple OSS Distributions 	int     error, optval;
723*aca3beaaSApple OSS Distributions 
724*aca3beaaSApple OSS Distributions 	/* Allow <SOL_SOCKET,SO_FLUSH> at this level */
725*aca3beaaSApple OSS Distributions 	if (sopt->sopt_level != IPPROTO_IP &&
726*aca3beaaSApple OSS Distributions 	    !(sopt->sopt_level == SOL_SOCKET && sopt->sopt_name == SO_FLUSH)) {
727*aca3beaaSApple OSS Distributions 		return EINVAL;
728*aca3beaaSApple OSS Distributions 	}
729*aca3beaaSApple OSS Distributions 
730*aca3beaaSApple OSS Distributions 	error = 0;
731*aca3beaaSApple OSS Distributions 
732*aca3beaaSApple OSS Distributions 	switch (sopt->sopt_dir) {
733*aca3beaaSApple OSS Distributions 	case SOPT_GET:
734*aca3beaaSApple OSS Distributions 		switch (sopt->sopt_name) {
735*aca3beaaSApple OSS Distributions 		case IP_HDRINCL:
736*aca3beaaSApple OSS Distributions 			optval = inp->inp_flags & INP_HDRINCL;
737*aca3beaaSApple OSS Distributions 			error = sooptcopyout(sopt, &optval, sizeof optval);
738*aca3beaaSApple OSS Distributions 			break;
739*aca3beaaSApple OSS Distributions 
740*aca3beaaSApple OSS Distributions 		case IP_STRIPHDR:
741*aca3beaaSApple OSS Distributions 			optval = inp->inp_flags & INP_STRIPHDR;
742*aca3beaaSApple OSS Distributions 			error = sooptcopyout(sopt, &optval, sizeof optval);
743*aca3beaaSApple OSS Distributions 			break;
744*aca3beaaSApple OSS Distributions 
745*aca3beaaSApple OSS Distributions 
746*aca3beaaSApple OSS Distributions #if DUMMYNET
747*aca3beaaSApple OSS Distributions 		case IP_DUMMYNET_GET:
748*aca3beaaSApple OSS Distributions 			if (!DUMMYNET_LOADED) {
749*aca3beaaSApple OSS Distributions 				ip_dn_init();
750*aca3beaaSApple OSS Distributions 			}
751*aca3beaaSApple OSS Distributions 			if (DUMMYNET_LOADED) {
752*aca3beaaSApple OSS Distributions 				error = ip_dn_ctl_ptr(sopt);
753*aca3beaaSApple OSS Distributions 			} else {
754*aca3beaaSApple OSS Distributions 				error = ENOPROTOOPT;
755*aca3beaaSApple OSS Distributions 			}
756*aca3beaaSApple OSS Distributions 			break;
757*aca3beaaSApple OSS Distributions #endif /* DUMMYNET */
758*aca3beaaSApple OSS Distributions 
759*aca3beaaSApple OSS Distributions 		default:
760*aca3beaaSApple OSS Distributions 			error = ip_ctloutput(so, sopt);
761*aca3beaaSApple OSS Distributions 			break;
762*aca3beaaSApple OSS Distributions 		}
763*aca3beaaSApple OSS Distributions 		break;
764*aca3beaaSApple OSS Distributions 
765*aca3beaaSApple OSS Distributions 	case SOPT_SET:
766*aca3beaaSApple OSS Distributions 		switch (sopt->sopt_name) {
767*aca3beaaSApple OSS Distributions 		case IP_HDRINCL:
768*aca3beaaSApple OSS Distributions 			error = sooptcopyin(sopt, &optval, sizeof optval,
769*aca3beaaSApple OSS Distributions 			    sizeof optval);
770*aca3beaaSApple OSS Distributions 			if (error) {
771*aca3beaaSApple OSS Distributions 				break;
772*aca3beaaSApple OSS Distributions 			}
773*aca3beaaSApple OSS Distributions 			if (optval) {
774*aca3beaaSApple OSS Distributions 				inp->inp_flags |= INP_HDRINCL;
775*aca3beaaSApple OSS Distributions 			} else {
776*aca3beaaSApple OSS Distributions 				inp->inp_flags &= ~INP_HDRINCL;
777*aca3beaaSApple OSS Distributions 			}
778*aca3beaaSApple OSS Distributions 			break;
779*aca3beaaSApple OSS Distributions 
780*aca3beaaSApple OSS Distributions 		case IP_STRIPHDR:
781*aca3beaaSApple OSS Distributions 			error = sooptcopyin(sopt, &optval, sizeof optval,
782*aca3beaaSApple OSS Distributions 			    sizeof optval);
783*aca3beaaSApple OSS Distributions 			if (error) {
784*aca3beaaSApple OSS Distributions 				break;
785*aca3beaaSApple OSS Distributions 			}
786*aca3beaaSApple OSS Distributions 			if (optval) {
787*aca3beaaSApple OSS Distributions 				inp->inp_flags |= INP_STRIPHDR;
788*aca3beaaSApple OSS Distributions 			} else {
789*aca3beaaSApple OSS Distributions 				inp->inp_flags &= ~INP_STRIPHDR;
790*aca3beaaSApple OSS Distributions 			}
791*aca3beaaSApple OSS Distributions 			break;
792*aca3beaaSApple OSS Distributions 
793*aca3beaaSApple OSS Distributions 
794*aca3beaaSApple OSS Distributions #if DUMMYNET
795*aca3beaaSApple OSS Distributions 		case IP_DUMMYNET_CONFIGURE:
796*aca3beaaSApple OSS Distributions 		case IP_DUMMYNET_DEL:
797*aca3beaaSApple OSS Distributions 		case IP_DUMMYNET_FLUSH:
798*aca3beaaSApple OSS Distributions 			if (!DUMMYNET_LOADED) {
799*aca3beaaSApple OSS Distributions 				ip_dn_init();
800*aca3beaaSApple OSS Distributions 			}
801*aca3beaaSApple OSS Distributions 			if (DUMMYNET_LOADED) {
802*aca3beaaSApple OSS Distributions 				error = ip_dn_ctl_ptr(sopt);
803*aca3beaaSApple OSS Distributions 			} else {
804*aca3beaaSApple OSS Distributions 				error = ENOPROTOOPT;
805*aca3beaaSApple OSS Distributions 			}
806*aca3beaaSApple OSS Distributions 			break;
807*aca3beaaSApple OSS Distributions #endif /* DUMMYNET */
808*aca3beaaSApple OSS Distributions 
809*aca3beaaSApple OSS Distributions 		case SO_FLUSH:
810*aca3beaaSApple OSS Distributions 			if ((error = sooptcopyin(sopt, &optval, sizeof(optval),
811*aca3beaaSApple OSS Distributions 			    sizeof(optval))) != 0) {
812*aca3beaaSApple OSS Distributions 				break;
813*aca3beaaSApple OSS Distributions 			}
814*aca3beaaSApple OSS Distributions 
815*aca3beaaSApple OSS Distributions 			error = inp_flush(inp, optval);
816*aca3beaaSApple OSS Distributions 			break;
817*aca3beaaSApple OSS Distributions 
818*aca3beaaSApple OSS Distributions 		default:
819*aca3beaaSApple OSS Distributions 			error = ip_ctloutput(so, sopt);
820*aca3beaaSApple OSS Distributions 			break;
821*aca3beaaSApple OSS Distributions 		}
822*aca3beaaSApple OSS Distributions 		break;
823*aca3beaaSApple OSS Distributions 	}
824*aca3beaaSApple OSS Distributions 
825*aca3beaaSApple OSS Distributions 	return error;
826*aca3beaaSApple OSS Distributions }
827*aca3beaaSApple OSS Distributions 
828*aca3beaaSApple OSS Distributions /*
829*aca3beaaSApple OSS Distributions  * This function exists solely to receive the PRC_IFDOWN messages which
830*aca3beaaSApple OSS Distributions  * are sent by if_down().  It looks for an ifaddr whose ifa_addr is sa,
831*aca3beaaSApple OSS Distributions  * and calls in_ifadown() to remove all routes corresponding to that address.
832*aca3beaaSApple OSS Distributions  * It also receives the PRC_IFUP messages from if_up() and reinstalls the
833*aca3beaaSApple OSS Distributions  * interface routes.
834*aca3beaaSApple OSS Distributions  */
835*aca3beaaSApple OSS Distributions void
rip_ctlinput(int cmd,struct sockaddr * sa,__unused void * vip,__unused struct ifnet * ifp)836*aca3beaaSApple OSS Distributions rip_ctlinput(
837*aca3beaaSApple OSS Distributions 	int cmd,
838*aca3beaaSApple OSS Distributions 	struct sockaddr *sa,
839*aca3beaaSApple OSS Distributions 	__unused void *vip,
840*aca3beaaSApple OSS Distributions 	__unused struct ifnet *ifp)
841*aca3beaaSApple OSS Distributions {
842*aca3beaaSApple OSS Distributions 	struct in_ifaddr *ia = NULL;
843*aca3beaaSApple OSS Distributions 	struct ifnet *iaifp = NULL;
844*aca3beaaSApple OSS Distributions 	int err = 0;
845*aca3beaaSApple OSS Distributions 	int flags, done = 0;
846*aca3beaaSApple OSS Distributions 
847*aca3beaaSApple OSS Distributions 	switch (cmd) {
848*aca3beaaSApple OSS Distributions 	case PRC_IFDOWN:
849*aca3beaaSApple OSS Distributions 		lck_rw_lock_shared(&in_ifaddr_rwlock);
850*aca3beaaSApple OSS Distributions 		for (ia = in_ifaddrhead.tqh_first; ia;
851*aca3beaaSApple OSS Distributions 		    ia = ia->ia_link.tqe_next) {
852*aca3beaaSApple OSS Distributions 			IFA_LOCK(&ia->ia_ifa);
853*aca3beaaSApple OSS Distributions 			if (ia->ia_ifa.ifa_addr == sa &&
854*aca3beaaSApple OSS Distributions 			    (ia->ia_flags & IFA_ROUTE)) {
855*aca3beaaSApple OSS Distributions 				done = 1;
856*aca3beaaSApple OSS Distributions 				IFA_ADDREF_LOCKED(&ia->ia_ifa);
857*aca3beaaSApple OSS Distributions 				IFA_UNLOCK(&ia->ia_ifa);
858*aca3beaaSApple OSS Distributions 				lck_rw_done(&in_ifaddr_rwlock);
859*aca3beaaSApple OSS Distributions 				lck_mtx_lock(rnh_lock);
860*aca3beaaSApple OSS Distributions 				/*
861*aca3beaaSApple OSS Distributions 				 * in_ifscrub kills the interface route.
862*aca3beaaSApple OSS Distributions 				 */
863*aca3beaaSApple OSS Distributions 				in_ifscrub(ia->ia_ifp, ia, 1);
864*aca3beaaSApple OSS Distributions 				/*
865*aca3beaaSApple OSS Distributions 				 * in_ifadown gets rid of all the rest of
866*aca3beaaSApple OSS Distributions 				 * the routes.  This is not quite the right
867*aca3beaaSApple OSS Distributions 				 * thing to do, but at least if we are running
868*aca3beaaSApple OSS Distributions 				 * a routing process they will come back.
869*aca3beaaSApple OSS Distributions 				 */
870*aca3beaaSApple OSS Distributions 				in_ifadown(&ia->ia_ifa, 1);
871*aca3beaaSApple OSS Distributions 				lck_mtx_unlock(rnh_lock);
872*aca3beaaSApple OSS Distributions 				IFA_REMREF(&ia->ia_ifa);
873*aca3beaaSApple OSS Distributions 				break;
874*aca3beaaSApple OSS Distributions 			}
875*aca3beaaSApple OSS Distributions 			IFA_UNLOCK(&ia->ia_ifa);
876*aca3beaaSApple OSS Distributions 		}
877*aca3beaaSApple OSS Distributions 		if (!done) {
878*aca3beaaSApple OSS Distributions 			lck_rw_done(&in_ifaddr_rwlock);
879*aca3beaaSApple OSS Distributions 		}
880*aca3beaaSApple OSS Distributions 		break;
881*aca3beaaSApple OSS Distributions 
882*aca3beaaSApple OSS Distributions 	case PRC_IFUP:
883*aca3beaaSApple OSS Distributions 		lck_rw_lock_shared(&in_ifaddr_rwlock);
884*aca3beaaSApple OSS Distributions 		for (ia = in_ifaddrhead.tqh_first; ia;
885*aca3beaaSApple OSS Distributions 		    ia = ia->ia_link.tqe_next) {
886*aca3beaaSApple OSS Distributions 			IFA_LOCK(&ia->ia_ifa);
887*aca3beaaSApple OSS Distributions 			if (ia->ia_ifa.ifa_addr == sa) {
888*aca3beaaSApple OSS Distributions 				/* keep it locked */
889*aca3beaaSApple OSS Distributions 				break;
890*aca3beaaSApple OSS Distributions 			}
891*aca3beaaSApple OSS Distributions 			IFA_UNLOCK(&ia->ia_ifa);
892*aca3beaaSApple OSS Distributions 		}
893*aca3beaaSApple OSS Distributions 		if (ia == NULL || (ia->ia_flags & IFA_ROUTE) ||
894*aca3beaaSApple OSS Distributions 		    (ia->ia_ifa.ifa_debug & IFD_NOTREADY)) {
895*aca3beaaSApple OSS Distributions 			if (ia != NULL) {
896*aca3beaaSApple OSS Distributions 				IFA_UNLOCK(&ia->ia_ifa);
897*aca3beaaSApple OSS Distributions 			}
898*aca3beaaSApple OSS Distributions 			lck_rw_done(&in_ifaddr_rwlock);
899*aca3beaaSApple OSS Distributions 			return;
900*aca3beaaSApple OSS Distributions 		}
901*aca3beaaSApple OSS Distributions 		IFA_ADDREF_LOCKED(&ia->ia_ifa);
902*aca3beaaSApple OSS Distributions 		IFA_UNLOCK(&ia->ia_ifa);
903*aca3beaaSApple OSS Distributions 		lck_rw_done(&in_ifaddr_rwlock);
904*aca3beaaSApple OSS Distributions 
905*aca3beaaSApple OSS Distributions 		flags = RTF_UP;
906*aca3beaaSApple OSS Distributions 		iaifp = ia->ia_ifa.ifa_ifp;
907*aca3beaaSApple OSS Distributions 
908*aca3beaaSApple OSS Distributions 		if ((iaifp->if_flags & IFF_LOOPBACK)
909*aca3beaaSApple OSS Distributions 		    || (iaifp->if_flags & IFF_POINTOPOINT)) {
910*aca3beaaSApple OSS Distributions 			flags |= RTF_HOST;
911*aca3beaaSApple OSS Distributions 		}
912*aca3beaaSApple OSS Distributions 
913*aca3beaaSApple OSS Distributions 		err = rtinit(&ia->ia_ifa, RTM_ADD, flags);
914*aca3beaaSApple OSS Distributions 		if (err == 0) {
915*aca3beaaSApple OSS Distributions 			IFA_LOCK_SPIN(&ia->ia_ifa);
916*aca3beaaSApple OSS Distributions 			ia->ia_flags |= IFA_ROUTE;
917*aca3beaaSApple OSS Distributions 			IFA_UNLOCK(&ia->ia_ifa);
918*aca3beaaSApple OSS Distributions 		}
919*aca3beaaSApple OSS Distributions 		IFA_REMREF(&ia->ia_ifa);
920*aca3beaaSApple OSS Distributions 		break;
921*aca3beaaSApple OSS Distributions 	}
922*aca3beaaSApple OSS Distributions }
923*aca3beaaSApple OSS Distributions 
924*aca3beaaSApple OSS Distributions u_int32_t       rip_sendspace = RIPSNDQ;
925*aca3beaaSApple OSS Distributions u_int32_t       rip_recvspace = RIPRCVQ;
926*aca3beaaSApple OSS Distributions 
927*aca3beaaSApple OSS Distributions SYSCTL_INT(_net_inet_raw, OID_AUTO, maxdgram, CTLFLAG_RW | CTLFLAG_LOCKED,
928*aca3beaaSApple OSS Distributions     &rip_sendspace, 0, "Maximum outgoing raw IP datagram size");
929*aca3beaaSApple OSS Distributions SYSCTL_INT(_net_inet_raw, OID_AUTO, recvspace, CTLFLAG_RW | CTLFLAG_LOCKED,
930*aca3beaaSApple OSS Distributions     &rip_recvspace, 0, "Maximum incoming raw IP datagram size");
931*aca3beaaSApple OSS Distributions SYSCTL_UINT(_net_inet_raw, OID_AUTO, pcbcount, CTLFLAG_RD | CTLFLAG_LOCKED,
932*aca3beaaSApple OSS Distributions     &ripcbinfo.ipi_count, 0, "Number of active PCBs");
933*aca3beaaSApple OSS Distributions 
934*aca3beaaSApple OSS Distributions static int
rip_attach(struct socket * so,int proto,struct proc * p)935*aca3beaaSApple OSS Distributions rip_attach(struct socket *so, int proto, struct proc *p)
936*aca3beaaSApple OSS Distributions {
937*aca3beaaSApple OSS Distributions 	struct inpcb *inp;
938*aca3beaaSApple OSS Distributions 	int error;
939*aca3beaaSApple OSS Distributions 
940*aca3beaaSApple OSS Distributions 	inp = sotoinpcb(so);
941*aca3beaaSApple OSS Distributions 	if (inp) {
942*aca3beaaSApple OSS Distributions 		panic("rip_attach");
943*aca3beaaSApple OSS Distributions 	}
944*aca3beaaSApple OSS Distributions 	if ((so->so_state & SS_PRIV) == 0) {
945*aca3beaaSApple OSS Distributions 		return EPERM;
946*aca3beaaSApple OSS Distributions 	}
947*aca3beaaSApple OSS Distributions 	if (proto > UINT8_MAX) {
948*aca3beaaSApple OSS Distributions 		return EINVAL;
949*aca3beaaSApple OSS Distributions 	}
950*aca3beaaSApple OSS Distributions 
951*aca3beaaSApple OSS Distributions 	error = soreserve(so, rip_sendspace, rip_recvspace);
952*aca3beaaSApple OSS Distributions 	if (error) {
953*aca3beaaSApple OSS Distributions 		return error;
954*aca3beaaSApple OSS Distributions 	}
955*aca3beaaSApple OSS Distributions 	error = in_pcballoc(so, &ripcbinfo, p);
956*aca3beaaSApple OSS Distributions 	if (error) {
957*aca3beaaSApple OSS Distributions 		return error;
958*aca3beaaSApple OSS Distributions 	}
959*aca3beaaSApple OSS Distributions 	inp = (struct inpcb *)so->so_pcb;
960*aca3beaaSApple OSS Distributions 	inp->inp_vflag |= INP_IPV4;
961*aca3beaaSApple OSS Distributions 	VERIFY(proto <= UINT8_MAX);
962*aca3beaaSApple OSS Distributions 	inp->inp_ip_p = (u_char)proto;
963*aca3beaaSApple OSS Distributions 	inp->inp_ip_ttl = (u_char)ip_defttl;
964*aca3beaaSApple OSS Distributions 	return 0;
965*aca3beaaSApple OSS Distributions }
966*aca3beaaSApple OSS Distributions 
967*aca3beaaSApple OSS Distributions __private_extern__ int
rip_detach(struct socket * so)968*aca3beaaSApple OSS Distributions rip_detach(struct socket *so)
969*aca3beaaSApple OSS Distributions {
970*aca3beaaSApple OSS Distributions 	struct inpcb *inp;
971*aca3beaaSApple OSS Distributions 
972*aca3beaaSApple OSS Distributions 	inp = sotoinpcb(so);
973*aca3beaaSApple OSS Distributions 	if (inp == 0) {
974*aca3beaaSApple OSS Distributions 		panic("rip_detach");
975*aca3beaaSApple OSS Distributions 	}
976*aca3beaaSApple OSS Distributions 	in_pcbdetach(inp);
977*aca3beaaSApple OSS Distributions 	return 0;
978*aca3beaaSApple OSS Distributions }
979*aca3beaaSApple OSS Distributions 
980*aca3beaaSApple OSS Distributions __private_extern__ int
rip_abort(struct socket * so)981*aca3beaaSApple OSS Distributions rip_abort(struct socket *so)
982*aca3beaaSApple OSS Distributions {
983*aca3beaaSApple OSS Distributions 	soisdisconnected(so);
984*aca3beaaSApple OSS Distributions 	return rip_detach(so);
985*aca3beaaSApple OSS Distributions }
986*aca3beaaSApple OSS Distributions 
987*aca3beaaSApple OSS Distributions __private_extern__ int
rip_disconnect(struct socket * so)988*aca3beaaSApple OSS Distributions rip_disconnect(struct socket *so)
989*aca3beaaSApple OSS Distributions {
990*aca3beaaSApple OSS Distributions 	if ((so->so_state & SS_ISCONNECTED) == 0) {
991*aca3beaaSApple OSS Distributions 		return ENOTCONN;
992*aca3beaaSApple OSS Distributions 	}
993*aca3beaaSApple OSS Distributions 	return rip_abort(so);
994*aca3beaaSApple OSS Distributions }
995*aca3beaaSApple OSS Distributions 
996*aca3beaaSApple OSS Distributions __private_extern__ int
rip_bind(struct socket * so,struct sockaddr * nam,struct proc * p)997*aca3beaaSApple OSS Distributions rip_bind(struct socket *so, struct sockaddr *nam, struct proc *p)
998*aca3beaaSApple OSS Distributions {
999*aca3beaaSApple OSS Distributions #pragma unused(p)
1000*aca3beaaSApple OSS Distributions 	struct inpcb *inp = sotoinpcb(so);
1001*aca3beaaSApple OSS Distributions 	struct sockaddr_in sin;
1002*aca3beaaSApple OSS Distributions 	struct ifaddr *ifa = NULL;
1003*aca3beaaSApple OSS Distributions 	struct ifnet *outif = NULL;
1004*aca3beaaSApple OSS Distributions 
1005*aca3beaaSApple OSS Distributions 	if (inp == NULL
1006*aca3beaaSApple OSS Distributions #if NECP
1007*aca3beaaSApple OSS Distributions 	    || (necp_socket_should_use_flow_divert(inp))
1008*aca3beaaSApple OSS Distributions #endif /* NECP */
1009*aca3beaaSApple OSS Distributions 	    ) {
1010*aca3beaaSApple OSS Distributions 		return inp == NULL ? EINVAL : EPROTOTYPE;
1011*aca3beaaSApple OSS Distributions 	}
1012*aca3beaaSApple OSS Distributions 
1013*aca3beaaSApple OSS Distributions 	if (nam->sa_len != sizeof(struct sockaddr_in)) {
1014*aca3beaaSApple OSS Distributions 		return EINVAL;
1015*aca3beaaSApple OSS Distributions 	}
1016*aca3beaaSApple OSS Distributions 
1017*aca3beaaSApple OSS Distributions 	/* Sanitized local copy for interface address searches */
1018*aca3beaaSApple OSS Distributions 	bzero(&sin, sizeof(sin));
1019*aca3beaaSApple OSS Distributions 	sin.sin_family = AF_INET;
1020*aca3beaaSApple OSS Distributions 	sin.sin_len = sizeof(struct sockaddr_in);
1021*aca3beaaSApple OSS Distributions 	sin.sin_addr.s_addr = SIN(nam)->sin_addr.s_addr;
1022*aca3beaaSApple OSS Distributions 
1023*aca3beaaSApple OSS Distributions 	if (TAILQ_EMPTY(&ifnet_head) ||
1024*aca3beaaSApple OSS Distributions 	    (sin.sin_family != AF_INET && sin.sin_family != AF_IMPLINK) ||
1025*aca3beaaSApple OSS Distributions 	    (sin.sin_addr.s_addr && (ifa = ifa_ifwithaddr(SA(&sin))) == 0)) {
1026*aca3beaaSApple OSS Distributions 		return EADDRNOTAVAIL;
1027*aca3beaaSApple OSS Distributions 	} else if (ifa) {
1028*aca3beaaSApple OSS Distributions 		/*
1029*aca3beaaSApple OSS Distributions 		 * Opportunistically determine the outbound
1030*aca3beaaSApple OSS Distributions 		 * interface that may be used; this may not
1031*aca3beaaSApple OSS Distributions 		 * hold true if we end up using a route
1032*aca3beaaSApple OSS Distributions 		 * going over a different interface, e.g.
1033*aca3beaaSApple OSS Distributions 		 * when sending to a local address.  This
1034*aca3beaaSApple OSS Distributions 		 * will get updated again after sending.
1035*aca3beaaSApple OSS Distributions 		 */
1036*aca3beaaSApple OSS Distributions 		IFA_LOCK(ifa);
1037*aca3beaaSApple OSS Distributions 		outif = ifa->ifa_ifp;
1038*aca3beaaSApple OSS Distributions 		IFA_UNLOCK(ifa);
1039*aca3beaaSApple OSS Distributions 		IFA_REMREF(ifa);
1040*aca3beaaSApple OSS Distributions 	}
1041*aca3beaaSApple OSS Distributions 	inp->inp_laddr = sin.sin_addr;
1042*aca3beaaSApple OSS Distributions 	inp->inp_last_outifp = outif;
1043*aca3beaaSApple OSS Distributions 
1044*aca3beaaSApple OSS Distributions 	return 0;
1045*aca3beaaSApple OSS Distributions }
1046*aca3beaaSApple OSS Distributions 
1047*aca3beaaSApple OSS Distributions __private_extern__ int
rip_connect(struct socket * so,struct sockaddr * nam,__unused struct proc * p)1048*aca3beaaSApple OSS Distributions rip_connect(struct socket *so, struct sockaddr *nam, __unused  struct proc *p)
1049*aca3beaaSApple OSS Distributions {
1050*aca3beaaSApple OSS Distributions 	struct inpcb *inp = sotoinpcb(so);
1051*aca3beaaSApple OSS Distributions 	struct sockaddr_in *addr = (struct sockaddr_in *)(void *)nam;
1052*aca3beaaSApple OSS Distributions 
1053*aca3beaaSApple OSS Distributions 	if (inp == NULL
1054*aca3beaaSApple OSS Distributions #if NECP
1055*aca3beaaSApple OSS Distributions 	    || (necp_socket_should_use_flow_divert(inp))
1056*aca3beaaSApple OSS Distributions #endif /* NECP */
1057*aca3beaaSApple OSS Distributions 	    ) {
1058*aca3beaaSApple OSS Distributions 		return inp == NULL ? EINVAL : EPROTOTYPE;
1059*aca3beaaSApple OSS Distributions 	}
1060*aca3beaaSApple OSS Distributions 	if (nam->sa_len != sizeof(*addr)) {
1061*aca3beaaSApple OSS Distributions 		return EINVAL;
1062*aca3beaaSApple OSS Distributions 	}
1063*aca3beaaSApple OSS Distributions 	if (TAILQ_EMPTY(&ifnet_head)) {
1064*aca3beaaSApple OSS Distributions 		return EADDRNOTAVAIL;
1065*aca3beaaSApple OSS Distributions 	}
1066*aca3beaaSApple OSS Distributions 	if ((addr->sin_family != AF_INET) &&
1067*aca3beaaSApple OSS Distributions 	    (addr->sin_family != AF_IMPLINK)) {
1068*aca3beaaSApple OSS Distributions 		return EAFNOSUPPORT;
1069*aca3beaaSApple OSS Distributions 	}
1070*aca3beaaSApple OSS Distributions 
1071*aca3beaaSApple OSS Distributions 	if (!(so->so_flags1 & SOF1_CONNECT_COUNTED)) {
1072*aca3beaaSApple OSS Distributions 		so->so_flags1 |= SOF1_CONNECT_COUNTED;
1073*aca3beaaSApple OSS Distributions 		INC_ATOMIC_INT64_LIM(net_api_stats.nas_socket_inet_dgram_connected);
1074*aca3beaaSApple OSS Distributions 	}
1075*aca3beaaSApple OSS Distributions 
1076*aca3beaaSApple OSS Distributions 	inp->inp_faddr = addr->sin_addr;
1077*aca3beaaSApple OSS Distributions 	soisconnected(so);
1078*aca3beaaSApple OSS Distributions 
1079*aca3beaaSApple OSS Distributions 	return 0;
1080*aca3beaaSApple OSS Distributions }
1081*aca3beaaSApple OSS Distributions 
1082*aca3beaaSApple OSS Distributions __private_extern__ int
rip_shutdown(struct socket * so)1083*aca3beaaSApple OSS Distributions rip_shutdown(struct socket *so)
1084*aca3beaaSApple OSS Distributions {
1085*aca3beaaSApple OSS Distributions 	socantsendmore(so);
1086*aca3beaaSApple OSS Distributions 	return 0;
1087*aca3beaaSApple OSS Distributions }
1088*aca3beaaSApple OSS Distributions 
1089*aca3beaaSApple OSS Distributions __private_extern__ int
rip_send(struct socket * so,int flags,struct mbuf * m,struct sockaddr * nam,struct mbuf * control,struct proc * p)1090*aca3beaaSApple OSS Distributions rip_send(struct socket *so, int flags, struct mbuf *m, struct sockaddr *nam,
1091*aca3beaaSApple OSS Distributions     struct mbuf *control, struct proc *p)
1092*aca3beaaSApple OSS Distributions {
1093*aca3beaaSApple OSS Distributions #pragma unused(flags, p)
1094*aca3beaaSApple OSS Distributions 	struct inpcb *inp = sotoinpcb(so);
1095*aca3beaaSApple OSS Distributions 	u_int32_t dst = INADDR_ANY;
1096*aca3beaaSApple OSS Distributions 	int error = 0;
1097*aca3beaaSApple OSS Distributions 
1098*aca3beaaSApple OSS Distributions 	if (inp == NULL
1099*aca3beaaSApple OSS Distributions #if NECP
1100*aca3beaaSApple OSS Distributions 	    || (necp_socket_should_use_flow_divert(inp) && (error = EPROTOTYPE))
1101*aca3beaaSApple OSS Distributions #endif /* NECP */
1102*aca3beaaSApple OSS Distributions 	    ) {
1103*aca3beaaSApple OSS Distributions 		if (inp == NULL) {
1104*aca3beaaSApple OSS Distributions 			error = EINVAL;
1105*aca3beaaSApple OSS Distributions 		} else {
1106*aca3beaaSApple OSS Distributions 			error = EPROTOTYPE;
1107*aca3beaaSApple OSS Distributions 		}
1108*aca3beaaSApple OSS Distributions 		goto bad;
1109*aca3beaaSApple OSS Distributions 	}
1110*aca3beaaSApple OSS Distributions 
1111*aca3beaaSApple OSS Distributions 	if (nam != NULL) {
1112*aca3beaaSApple OSS Distributions 		dst = ((struct sockaddr_in *)(void *)nam)->sin_addr.s_addr;
1113*aca3beaaSApple OSS Distributions 	}
1114*aca3beaaSApple OSS Distributions 	return rip_output(m, so, dst, control);
1115*aca3beaaSApple OSS Distributions 
1116*aca3beaaSApple OSS Distributions bad:
1117*aca3beaaSApple OSS Distributions 	VERIFY(error != 0);
1118*aca3beaaSApple OSS Distributions 
1119*aca3beaaSApple OSS Distributions 	if (m != NULL) {
1120*aca3beaaSApple OSS Distributions 		m_freem(m);
1121*aca3beaaSApple OSS Distributions 	}
1122*aca3beaaSApple OSS Distributions 	if (control != NULL) {
1123*aca3beaaSApple OSS Distributions 		m_freem(control);
1124*aca3beaaSApple OSS Distributions 	}
1125*aca3beaaSApple OSS Distributions 
1126*aca3beaaSApple OSS Distributions 	return error;
1127*aca3beaaSApple OSS Distributions }
1128*aca3beaaSApple OSS Distributions 
1129*aca3beaaSApple OSS Distributions /* note: rip_unlock is called from different protos  instead of the generic socket_unlock,
1130*aca3beaaSApple OSS Distributions  * it will handle the socket dealloc on last reference
1131*aca3beaaSApple OSS Distributions  * */
1132*aca3beaaSApple OSS Distributions int
rip_unlock(struct socket * so,int refcount,void * debug)1133*aca3beaaSApple OSS Distributions rip_unlock(struct socket *so, int refcount, void *debug)
1134*aca3beaaSApple OSS Distributions {
1135*aca3beaaSApple OSS Distributions 	void *lr_saved;
1136*aca3beaaSApple OSS Distributions 	struct inpcb *inp = sotoinpcb(so);
1137*aca3beaaSApple OSS Distributions 
1138*aca3beaaSApple OSS Distributions 	if (debug == NULL) {
1139*aca3beaaSApple OSS Distributions 		lr_saved = __builtin_return_address(0);
1140*aca3beaaSApple OSS Distributions 	} else {
1141*aca3beaaSApple OSS Distributions 		lr_saved = debug;
1142*aca3beaaSApple OSS Distributions 	}
1143*aca3beaaSApple OSS Distributions 
1144*aca3beaaSApple OSS Distributions 	if (refcount) {
1145*aca3beaaSApple OSS Distributions 		if (so->so_usecount <= 0) {
1146*aca3beaaSApple OSS Distributions 			panic("rip_unlock: bad refoucnt so=%p val=%x lrh= %s",
1147*aca3beaaSApple OSS Distributions 			    so, so->so_usecount, solockhistory_nr(so));
1148*aca3beaaSApple OSS Distributions 			/* NOTREACHED */
1149*aca3beaaSApple OSS Distributions 		}
1150*aca3beaaSApple OSS Distributions 		so->so_usecount--;
1151*aca3beaaSApple OSS Distributions 		if (so->so_usecount == 0 && (inp->inp_wantcnt == WNT_STOPUSING)) {
1152*aca3beaaSApple OSS Distributions 			/* cleanup after last reference */
1153*aca3beaaSApple OSS Distributions 			lck_mtx_unlock(so->so_proto->pr_domain->dom_mtx);
1154*aca3beaaSApple OSS Distributions 			lck_rw_lock_exclusive(&ripcbinfo.ipi_lock);
1155*aca3beaaSApple OSS Distributions 			if (inp->inp_state != INPCB_STATE_DEAD) {
1156*aca3beaaSApple OSS Distributions 				if (SOCK_CHECK_DOM(so, PF_INET6)) {
1157*aca3beaaSApple OSS Distributions 					in6_pcbdetach(inp);
1158*aca3beaaSApple OSS Distributions 				} else {
1159*aca3beaaSApple OSS Distributions 					in_pcbdetach(inp);
1160*aca3beaaSApple OSS Distributions 				}
1161*aca3beaaSApple OSS Distributions 			}
1162*aca3beaaSApple OSS Distributions 			in_pcbdispose(inp);
1163*aca3beaaSApple OSS Distributions 			lck_rw_done(&ripcbinfo.ipi_lock);
1164*aca3beaaSApple OSS Distributions 			return 0;
1165*aca3beaaSApple OSS Distributions 		}
1166*aca3beaaSApple OSS Distributions 	}
1167*aca3beaaSApple OSS Distributions 	so->unlock_lr[so->next_unlock_lr] = lr_saved;
1168*aca3beaaSApple OSS Distributions 	so->next_unlock_lr = (so->next_unlock_lr + 1) % SO_LCKDBG_MAX;
1169*aca3beaaSApple OSS Distributions 	lck_mtx_unlock(so->so_proto->pr_domain->dom_mtx);
1170*aca3beaaSApple OSS Distributions 	return 0;
1171*aca3beaaSApple OSS Distributions }
1172*aca3beaaSApple OSS Distributions 
1173*aca3beaaSApple OSS Distributions static int
1174*aca3beaaSApple OSS Distributions rip_pcblist SYSCTL_HANDLER_ARGS
1175*aca3beaaSApple OSS Distributions {
1176*aca3beaaSApple OSS Distributions #pragma unused(oidp, arg1, arg2)
1177*aca3beaaSApple OSS Distributions 	int error, i, n, sz;
1178*aca3beaaSApple OSS Distributions 	struct inpcb *inp, **inp_list;
1179*aca3beaaSApple OSS Distributions 	inp_gen_t gencnt;
1180*aca3beaaSApple OSS Distributions 	struct xinpgen xig;
1181*aca3beaaSApple OSS Distributions 
1182*aca3beaaSApple OSS Distributions 	/*
1183*aca3beaaSApple OSS Distributions 	 * The process of preparing the TCB list is too time-consuming and
1184*aca3beaaSApple OSS Distributions 	 * resource-intensive to repeat twice on every request.
1185*aca3beaaSApple OSS Distributions 	 */
1186*aca3beaaSApple OSS Distributions 	lck_rw_lock_exclusive(&ripcbinfo.ipi_lock);
1187*aca3beaaSApple OSS Distributions 	if (req->oldptr == USER_ADDR_NULL) {
1188*aca3beaaSApple OSS Distributions 		n = ripcbinfo.ipi_count;
1189*aca3beaaSApple OSS Distributions 		req->oldidx = 2 * (sizeof xig)
1190*aca3beaaSApple OSS Distributions 		    + (n + n / 8) * sizeof(struct xinpcb);
1191*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1192*aca3beaaSApple OSS Distributions 		return 0;
1193*aca3beaaSApple OSS Distributions 	}
1194*aca3beaaSApple OSS Distributions 
1195*aca3beaaSApple OSS Distributions 	if (req->newptr != USER_ADDR_NULL) {
1196*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1197*aca3beaaSApple OSS Distributions 		return EPERM;
1198*aca3beaaSApple OSS Distributions 	}
1199*aca3beaaSApple OSS Distributions 
1200*aca3beaaSApple OSS Distributions 	/*
1201*aca3beaaSApple OSS Distributions 	 * OK, now we're committed to doing something.
1202*aca3beaaSApple OSS Distributions 	 */
1203*aca3beaaSApple OSS Distributions 	gencnt = ripcbinfo.ipi_gencnt;
1204*aca3beaaSApple OSS Distributions 	sz = n = ripcbinfo.ipi_count;
1205*aca3beaaSApple OSS Distributions 
1206*aca3beaaSApple OSS Distributions 	bzero(&xig, sizeof(xig));
1207*aca3beaaSApple OSS Distributions 	xig.xig_len = sizeof xig;
1208*aca3beaaSApple OSS Distributions 	xig.xig_count = n;
1209*aca3beaaSApple OSS Distributions 	xig.xig_gen = gencnt;
1210*aca3beaaSApple OSS Distributions 	xig.xig_sogen = so_gencnt;
1211*aca3beaaSApple OSS Distributions 	error = SYSCTL_OUT(req, &xig, sizeof xig);
1212*aca3beaaSApple OSS Distributions 	if (error) {
1213*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1214*aca3beaaSApple OSS Distributions 		return error;
1215*aca3beaaSApple OSS Distributions 	}
1216*aca3beaaSApple OSS Distributions 	/*
1217*aca3beaaSApple OSS Distributions 	 * We are done if there is no pcb
1218*aca3beaaSApple OSS Distributions 	 */
1219*aca3beaaSApple OSS Distributions 	if (n == 0) {
1220*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1221*aca3beaaSApple OSS Distributions 		return 0;
1222*aca3beaaSApple OSS Distributions 	}
1223*aca3beaaSApple OSS Distributions 
1224*aca3beaaSApple OSS Distributions 	inp_list = kalloc_type(struct inpcb *, n, Z_WAITOK);
1225*aca3beaaSApple OSS Distributions 	if (inp_list == NULL) {
1226*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1227*aca3beaaSApple OSS Distributions 		return ENOMEM;
1228*aca3beaaSApple OSS Distributions 	}
1229*aca3beaaSApple OSS Distributions 
1230*aca3beaaSApple OSS Distributions 	for (inp = ripcbinfo.ipi_listhead->lh_first, i = 0; inp && i < n;
1231*aca3beaaSApple OSS Distributions 	    inp = inp->inp_list.le_next) {
1232*aca3beaaSApple OSS Distributions 		if (inp->inp_gencnt <= gencnt && inp->inp_state != INPCB_STATE_DEAD) {
1233*aca3beaaSApple OSS Distributions 			inp_list[i++] = inp;
1234*aca3beaaSApple OSS Distributions 		}
1235*aca3beaaSApple OSS Distributions 	}
1236*aca3beaaSApple OSS Distributions 	n = i;
1237*aca3beaaSApple OSS Distributions 
1238*aca3beaaSApple OSS Distributions 	error = 0;
1239*aca3beaaSApple OSS Distributions 	for (i = 0; i < n; i++) {
1240*aca3beaaSApple OSS Distributions 		inp = inp_list[i];
1241*aca3beaaSApple OSS Distributions 		if (inp->inp_gencnt <= gencnt && inp->inp_state != INPCB_STATE_DEAD) {
1242*aca3beaaSApple OSS Distributions 			struct xinpcb xi;
1243*aca3beaaSApple OSS Distributions 
1244*aca3beaaSApple OSS Distributions 			bzero(&xi, sizeof(xi));
1245*aca3beaaSApple OSS Distributions 			xi.xi_len = sizeof xi;
1246*aca3beaaSApple OSS Distributions 			/* XXX should avoid extra copy */
1247*aca3beaaSApple OSS Distributions 			inpcb_to_compat(inp, &xi.xi_inp);
1248*aca3beaaSApple OSS Distributions 			if (inp->inp_socket) {
1249*aca3beaaSApple OSS Distributions 				sotoxsocket(inp->inp_socket, &xi.xi_socket);
1250*aca3beaaSApple OSS Distributions 			}
1251*aca3beaaSApple OSS Distributions 			error = SYSCTL_OUT(req, &xi, sizeof xi);
1252*aca3beaaSApple OSS Distributions 		}
1253*aca3beaaSApple OSS Distributions 	}
1254*aca3beaaSApple OSS Distributions 	if (!error) {
1255*aca3beaaSApple OSS Distributions 		/*
1256*aca3beaaSApple OSS Distributions 		 * Give the user an updated idea of our state.
1257*aca3beaaSApple OSS Distributions 		 * If the generation differs from what we told
1258*aca3beaaSApple OSS Distributions 		 * her before, she knows that something happened
1259*aca3beaaSApple OSS Distributions 		 * while we were processing this request, and it
1260*aca3beaaSApple OSS Distributions 		 * might be necessary to retry.
1261*aca3beaaSApple OSS Distributions 		 */
1262*aca3beaaSApple OSS Distributions 		bzero(&xig, sizeof(xig));
1263*aca3beaaSApple OSS Distributions 		xig.xig_len = sizeof xig;
1264*aca3beaaSApple OSS Distributions 		xig.xig_gen = ripcbinfo.ipi_gencnt;
1265*aca3beaaSApple OSS Distributions 		xig.xig_sogen = so_gencnt;
1266*aca3beaaSApple OSS Distributions 		xig.xig_count = ripcbinfo.ipi_count;
1267*aca3beaaSApple OSS Distributions 		error = SYSCTL_OUT(req, &xig, sizeof xig);
1268*aca3beaaSApple OSS Distributions 	}
1269*aca3beaaSApple OSS Distributions 
1270*aca3beaaSApple OSS Distributions 	lck_rw_done(&ripcbinfo.ipi_lock);
1271*aca3beaaSApple OSS Distributions 	kfree_type(struct inpcb *, sz, inp_list);
1272*aca3beaaSApple OSS Distributions 	return error;
1273*aca3beaaSApple OSS Distributions }
1274*aca3beaaSApple OSS Distributions 
1275*aca3beaaSApple OSS Distributions SYSCTL_PROC(_net_inet_raw, OID_AUTO /*XXX*/, pcblist,
1276*aca3beaaSApple OSS Distributions     CTLTYPE_STRUCT | CTLFLAG_RD | CTLFLAG_LOCKED, 0, 0,
1277*aca3beaaSApple OSS Distributions     rip_pcblist, "S,xinpcb", "List of active raw IP sockets");
1278*aca3beaaSApple OSS Distributions 
1279*aca3beaaSApple OSS Distributions #if XNU_TARGET_OS_OSX
1280*aca3beaaSApple OSS Distributions 
1281*aca3beaaSApple OSS Distributions static int
1282*aca3beaaSApple OSS Distributions rip_pcblist64 SYSCTL_HANDLER_ARGS
1283*aca3beaaSApple OSS Distributions {
1284*aca3beaaSApple OSS Distributions #pragma unused(oidp, arg1, arg2)
1285*aca3beaaSApple OSS Distributions 	int error, i, n, sz;
1286*aca3beaaSApple OSS Distributions 	struct inpcb *inp, **inp_list;
1287*aca3beaaSApple OSS Distributions 	inp_gen_t gencnt;
1288*aca3beaaSApple OSS Distributions 	struct xinpgen xig;
1289*aca3beaaSApple OSS Distributions 
1290*aca3beaaSApple OSS Distributions 	/*
1291*aca3beaaSApple OSS Distributions 	 * The process of preparing the TCB list is too time-consuming and
1292*aca3beaaSApple OSS Distributions 	 * resource-intensive to repeat twice on every request.
1293*aca3beaaSApple OSS Distributions 	 */
1294*aca3beaaSApple OSS Distributions 	lck_rw_lock_exclusive(&ripcbinfo.ipi_lock);
1295*aca3beaaSApple OSS Distributions 	if (req->oldptr == USER_ADDR_NULL) {
1296*aca3beaaSApple OSS Distributions 		n = ripcbinfo.ipi_count;
1297*aca3beaaSApple OSS Distributions 		req->oldidx = 2 * (sizeof xig)
1298*aca3beaaSApple OSS Distributions 		    + (n + n / 8) * sizeof(struct xinpcb64);
1299*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1300*aca3beaaSApple OSS Distributions 		return 0;
1301*aca3beaaSApple OSS Distributions 	}
1302*aca3beaaSApple OSS Distributions 
1303*aca3beaaSApple OSS Distributions 	if (req->newptr != USER_ADDR_NULL) {
1304*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1305*aca3beaaSApple OSS Distributions 		return EPERM;
1306*aca3beaaSApple OSS Distributions 	}
1307*aca3beaaSApple OSS Distributions 
1308*aca3beaaSApple OSS Distributions 	/*
1309*aca3beaaSApple OSS Distributions 	 * OK, now we're committed to doing something.
1310*aca3beaaSApple OSS Distributions 	 */
1311*aca3beaaSApple OSS Distributions 	gencnt = ripcbinfo.ipi_gencnt;
1312*aca3beaaSApple OSS Distributions 	sz = n = ripcbinfo.ipi_count;
1313*aca3beaaSApple OSS Distributions 
1314*aca3beaaSApple OSS Distributions 	bzero(&xig, sizeof(xig));
1315*aca3beaaSApple OSS Distributions 	xig.xig_len = sizeof xig;
1316*aca3beaaSApple OSS Distributions 	xig.xig_count = n;
1317*aca3beaaSApple OSS Distributions 	xig.xig_gen = gencnt;
1318*aca3beaaSApple OSS Distributions 	xig.xig_sogen = so_gencnt;
1319*aca3beaaSApple OSS Distributions 	error = SYSCTL_OUT(req, &xig, sizeof xig);
1320*aca3beaaSApple OSS Distributions 	if (error) {
1321*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1322*aca3beaaSApple OSS Distributions 		return error;
1323*aca3beaaSApple OSS Distributions 	}
1324*aca3beaaSApple OSS Distributions 	/*
1325*aca3beaaSApple OSS Distributions 	 * We are done if there is no pcb
1326*aca3beaaSApple OSS Distributions 	 */
1327*aca3beaaSApple OSS Distributions 	if (n == 0) {
1328*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1329*aca3beaaSApple OSS Distributions 		return 0;
1330*aca3beaaSApple OSS Distributions 	}
1331*aca3beaaSApple OSS Distributions 
1332*aca3beaaSApple OSS Distributions 	inp_list = kalloc_type(struct inpcb *, n, Z_WAITOK);
1333*aca3beaaSApple OSS Distributions 	if (inp_list == NULL) {
1334*aca3beaaSApple OSS Distributions 		lck_rw_done(&ripcbinfo.ipi_lock);
1335*aca3beaaSApple OSS Distributions 		return ENOMEM;
1336*aca3beaaSApple OSS Distributions 	}
1337*aca3beaaSApple OSS Distributions 
1338*aca3beaaSApple OSS Distributions 	for (inp = ripcbinfo.ipi_listhead->lh_first, i = 0; inp && i < n;
1339*aca3beaaSApple OSS Distributions 	    inp = inp->inp_list.le_next) {
1340*aca3beaaSApple OSS Distributions 		if (inp->inp_gencnt <= gencnt && inp->inp_state != INPCB_STATE_DEAD) {
1341*aca3beaaSApple OSS Distributions 			inp_list[i++] = inp;
1342*aca3beaaSApple OSS Distributions 		}
1343*aca3beaaSApple OSS Distributions 	}
1344*aca3beaaSApple OSS Distributions 	n = i;
1345*aca3beaaSApple OSS Distributions 
1346*aca3beaaSApple OSS Distributions 	error = 0;
1347*aca3beaaSApple OSS Distributions 	for (i = 0; i < n; i++) {
1348*aca3beaaSApple OSS Distributions 		inp = inp_list[i];
1349*aca3beaaSApple OSS Distributions 		if (inp->inp_gencnt <= gencnt && inp->inp_state != INPCB_STATE_DEAD) {
1350*aca3beaaSApple OSS Distributions 			struct xinpcb64 xi;
1351*aca3beaaSApple OSS Distributions 
1352*aca3beaaSApple OSS Distributions 			bzero(&xi, sizeof(xi));
1353*aca3beaaSApple OSS Distributions 			xi.xi_len = sizeof xi;
1354*aca3beaaSApple OSS Distributions 			inpcb_to_xinpcb64(inp, &xi);
1355*aca3beaaSApple OSS Distributions 			if (inp->inp_socket) {
1356*aca3beaaSApple OSS Distributions 				sotoxsocket64(inp->inp_socket, &xi.xi_socket);
1357*aca3beaaSApple OSS Distributions 			}
1358*aca3beaaSApple OSS Distributions 			error = SYSCTL_OUT(req, &xi, sizeof xi);
1359*aca3beaaSApple OSS Distributions 		}
1360*aca3beaaSApple OSS Distributions 	}
1361*aca3beaaSApple OSS Distributions 	if (!error) {
1362*aca3beaaSApple OSS Distributions 		/*
1363*aca3beaaSApple OSS Distributions 		 * Give the user an updated idea of our state.
1364*aca3beaaSApple OSS Distributions 		 * If the generation differs from what we told
1365*aca3beaaSApple OSS Distributions 		 * her before, she knows that something happened
1366*aca3beaaSApple OSS Distributions 		 * while we were processing this request, and it
1367*aca3beaaSApple OSS Distributions 		 * might be necessary to retry.
1368*aca3beaaSApple OSS Distributions 		 */
1369*aca3beaaSApple OSS Distributions 		bzero(&xig, sizeof(xig));
1370*aca3beaaSApple OSS Distributions 		xig.xig_len = sizeof xig;
1371*aca3beaaSApple OSS Distributions 		xig.xig_gen = ripcbinfo.ipi_gencnt;
1372*aca3beaaSApple OSS Distributions 		xig.xig_sogen = so_gencnt;
1373*aca3beaaSApple OSS Distributions 		xig.xig_count = ripcbinfo.ipi_count;
1374*aca3beaaSApple OSS Distributions 		error = SYSCTL_OUT(req, &xig, sizeof xig);
1375*aca3beaaSApple OSS Distributions 	}
1376*aca3beaaSApple OSS Distributions 
1377*aca3beaaSApple OSS Distributions 	lck_rw_done(&ripcbinfo.ipi_lock);
1378*aca3beaaSApple OSS Distributions 	kfree_type(struct inpcb *, sz, inp_list);
1379*aca3beaaSApple OSS Distributions 	return error;
1380*aca3beaaSApple OSS Distributions }
1381*aca3beaaSApple OSS Distributions 
1382*aca3beaaSApple OSS Distributions SYSCTL_PROC(_net_inet_raw, OID_AUTO, pcblist64,
1383*aca3beaaSApple OSS Distributions     CTLTYPE_STRUCT | CTLFLAG_RD | CTLFLAG_LOCKED, 0, 0,
1384*aca3beaaSApple OSS Distributions     rip_pcblist64, "S,xinpcb64", "List of active raw IP sockets");
1385*aca3beaaSApple OSS Distributions 
1386*aca3beaaSApple OSS Distributions #endif /* XNU_TARGET_OS_OSX */
1387*aca3beaaSApple OSS Distributions 
1388*aca3beaaSApple OSS Distributions 
1389*aca3beaaSApple OSS Distributions static int
1390*aca3beaaSApple OSS Distributions rip_pcblist_n SYSCTL_HANDLER_ARGS
1391*aca3beaaSApple OSS Distributions {
1392*aca3beaaSApple OSS Distributions #pragma unused(oidp, arg1, arg2)
1393*aca3beaaSApple OSS Distributions 	int error = 0;
1394*aca3beaaSApple OSS Distributions 
1395*aca3beaaSApple OSS Distributions 	error = get_pcblist_n(IPPROTO_IP, req, &ripcbinfo);
1396*aca3beaaSApple OSS Distributions 
1397*aca3beaaSApple OSS Distributions 	return error;
1398*aca3beaaSApple OSS Distributions }
1399*aca3beaaSApple OSS Distributions 
1400*aca3beaaSApple OSS Distributions SYSCTL_PROC(_net_inet_raw, OID_AUTO, pcblist_n,
1401*aca3beaaSApple OSS Distributions     CTLTYPE_STRUCT | CTLFLAG_RD | CTLFLAG_LOCKED, 0, 0,
1402*aca3beaaSApple OSS Distributions     rip_pcblist_n, "S,xinpcb_n", "List of active raw IP sockets");
1403*aca3beaaSApple OSS Distributions 
1404*aca3beaaSApple OSS Distributions struct pr_usrreqs rip_usrreqs = {
1405*aca3beaaSApple OSS Distributions 	.pru_abort =            rip_abort,
1406*aca3beaaSApple OSS Distributions 	.pru_attach =           rip_attach,
1407*aca3beaaSApple OSS Distributions 	.pru_bind =             rip_bind,
1408*aca3beaaSApple OSS Distributions 	.pru_connect =          rip_connect,
1409*aca3beaaSApple OSS Distributions 	.pru_control =          in_control,
1410*aca3beaaSApple OSS Distributions 	.pru_detach =           rip_detach,
1411*aca3beaaSApple OSS Distributions 	.pru_disconnect =       rip_disconnect,
1412*aca3beaaSApple OSS Distributions 	.pru_peeraddr =         in_getpeeraddr,
1413*aca3beaaSApple OSS Distributions 	.pru_send =             rip_send,
1414*aca3beaaSApple OSS Distributions 	.pru_shutdown =         rip_shutdown,
1415*aca3beaaSApple OSS Distributions 	.pru_sockaddr =         in_getsockaddr,
1416*aca3beaaSApple OSS Distributions 	.pru_sosend =           sosend,
1417*aca3beaaSApple OSS Distributions 	.pru_soreceive =        soreceive,
1418*aca3beaaSApple OSS Distributions };
1419*aca3beaaSApple OSS Distributions /* DSEP Review Done pl-20051213-v02 @3253 */
1420