xref: /xnu-8796.101.5/bsd/netinet6/ip6_var.h (revision aca3beaa3dfbd42498b42c5e5ce20a938e6554e5)
1 /*
2  * Copyright (c) 2000-2021 Apple Inc. All rights reserved.
3  *
4  * @APPLE_OSREFERENCE_LICENSE_HEADER_START@
5  *
6  * This file contains Original Code and/or Modifications of Original Code
7  * as defined in and that are subject to the Apple Public Source License
8  * Version 2.0 (the 'License'). You may not use this file except in
9  * compliance with the License. The rights granted to you under the License
10  * may not be used to create, or enable the creation or redistribution of,
11  * unlawful or unlicensed copies of an Apple operating system, or to
12  * circumvent, violate, or enable the circumvention or violation of, any
13  * terms of an Apple operating system software license agreement.
14  *
15  * Please obtain a copy of the License at
16  * http://www.opensource.apple.com/apsl/ and read it before using this file.
17  *
18  * The Original Code and all software distributed under the License are
19  * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
20  * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
21  * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
22  * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
23  * Please see the License for the specific language governing rights and
24  * limitations under the License.
25  *
26  * @APPLE_OSREFERENCE_LICENSE_HEADER_END@
27  */
28 
29 /*
30  * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
31  * All rights reserved.
32  *
33  * Redistribution and use in source and binary forms, with or without
34  * modification, are permitted provided that the following conditions
35  * are met:
36  * 1. Redistributions of source code must retain the above copyright
37  *    notice, this list of conditions and the following disclaimer.
38  * 2. Redistributions in binary form must reproduce the above copyright
39  *    notice, this list of conditions and the following disclaimer in the
40  *    documentation and/or other materials provided with the distribution.
41  * 3. Neither the name of the project nor the names of its contributors
42  *    may be used to endorse or promote products derived from this software
43  *    without specific prior written permission.
44  *
45  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
46  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
47  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
48  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
49  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
50  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
51  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
52  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
53  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
54  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
55  * SUCH DAMAGE.
56  */
57 
58 /*
59  * Copyright (c) 1982, 1986, 1993
60  *	The Regents of the University of California.  All rights reserved.
61  *
62  * Redistribution and use in source and binary forms, with or without
63  * modification, are permitted provided that the following conditions
64  * are met:
65  * 1. Redistributions of source code must retain the above copyright
66  *    notice, this list of conditions and the following disclaimer.
67  * 2. Redistributions in binary form must reproduce the above copyright
68  *    notice, this list of conditions and the following disclaimer in the
69  *    documentation and/or other materials provided with the distribution.
70  * 3. All advertising materials mentioning features or use of this software
71  *    must display the following acknowledgement:
72  *	This product includes software developed by the University of
73  *	California, Berkeley and its contributors.
74  * 4. Neither the name of the University nor the names of its contributors
75  *    may be used to endorse or promote products derived from this software
76  *    without specific prior written permission.
77  *
78  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
79  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
80  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
81  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
82  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
83  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
84  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
85  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
86  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
87  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
88  * SUCH DAMAGE.
89  *
90  *	@(#)ip_var.h	8.1 (Berkeley) 6/10/93
91  */
92 
93 #ifndef _NETINET6_IP6_VAR_H_
94 #define _NETINET6_IP6_VAR_H_
95 #include <sys/appleapiopts.h>
96 
97 #ifdef BSD_KERNEL_PRIVATE
98 #include <kern/zalloc.h>
99 #include <net/ethernet.h>
100 
101 struct ip6asfrag;
102 /*
103  * IP6 reassembly queue structure.  Each fragment
104  * being reassembled is attached to one of these structures.
105  */
106 struct  ip6q {
107 	struct ip6asfrag *ip6q_down;
108 	struct ip6asfrag *ip6q_up;
109 	u_int32_t       ip6q_ident;
110 	u_int8_t        ip6q_nxt;
111 	u_int8_t        ip6q_ecn;
112 	u_int8_t        ip6q_ttl;
113 	struct in6_addr ip6q_src, ip6q_dst;
114 	struct ip6q     *ip6q_next;
115 	struct ip6q     *ip6q_prev;
116 	int             ip6q_unfrglen;  /* len of unfragmentable part */
117 	int             ip6q_nfrag;     /* # of fragments */
118 	uint32_t        ip6q_csum_flags; /* checksum flags */
119 	uint32_t        ip6q_csum;      /* partial checksum value */
120 	uint32_t        ip6q_flags;
121 	uint32_t        ip6q_dst_ifscope, ip6q_src_ifscope;
122 #define IP6QF_DIRTY    0x00000001
123 };
124 
125 struct  ip6_moptions {
126 	decl_lck_mtx_data(, im6o_lock);
127 	uint32_t im6o_refcnt;           /* ref count */
128 	uint32_t im6o_debug;            /* see ifa_debug flags */
129 	struct  ifnet *im6o_multicast_ifp; /* ifp for outgoing multicasts */
130 	u_char  im6o_multicast_hlim;    /* hoplimit for outgoing multicasts */
131 	u_char  im6o_multicast_loop;    /* 1 >= hear sends if a member */
132 	u_short im6o_num_memberships;   /* no. memberships this socket */
133 	u_short im6o_max_memberships;   /* max memberships this socket */
134 	struct  in6_multi **im6o_membership;    /* group memberships */
135 	struct  in6_mfilter *im6o_mfilters;     /* source filters */
136 	void (*im6o_trace)              /* callback fn for tracing refs */
137 	(struct ip6_moptions *, int);
138 };
139 
140 #define IM6O_LOCK_ASSERT_HELD(_im6o)                                    \
141 	LCK_MTX_ASSERT(&(_im6o)->im6o_lock, LCK_MTX_ASSERT_OWNED)
142 
143 #define IM6O_LOCK_ASSERT_NOTHELD(_im6o)                                 \
144 	LCK_MTX_ASSERT(&(_im6o)->im6o_lock, LCK_MTX_ASSERT_NOTOWNED)
145 
146 #define IM6O_LOCK(_im6o)                                                \
147 	lck_mtx_lock(&(_im6o)->im6o_lock)
148 
149 #define IM6O_LOCK_SPIN(_im6o)                                           \
150 	lck_mtx_lock_spin(&(_im6o)->im6o_lock)
151 
152 #define IM6O_CONVERT_LOCK(_im6o) do {                                   \
153 	IM6O_LOCK_ASSERT_HELD(_im6o);                                   \
154 	lck_mtx_convert_spin(&(_im6o)->im6o_lock);                      \
155 } while (0)
156 
157 #define IM6O_UNLOCK(_im6o)                                              \
158 	lck_mtx_unlock(&(_im6o)->im6o_lock)
159 
160 #define IM6O_ADDREF(_im6o)                                              \
161 	im6o_addref(_im6o, 0)
162 
163 #define IM6O_ADDREF_LOCKED(_im6o)                                       \
164 	im6o_addref(_im6o, 1)
165 
166 #define IM6O_REMREF(_im6o)                                              \
167 	im6o_remref(_im6o)
168 
169 struct ip6_exthdrs {
170 	struct mbuf *ip6e_ip6;
171 	struct mbuf *ip6e_hbh;
172 	struct mbuf *ip6e_dest1;
173 	struct mbuf *ip6e_rthdr;
174 	struct mbuf *ip6e_dest2;
175 	boolean_t merged;
176 };
177 
178 /*
179  * Control options for outgoing packets
180  */
181 
182 /* Routing header related info */
183 struct  ip6po_rhinfo {
184 	struct  ip6_rthdr *ip6po_rhi_rthdr; /* Routing header */
185 	struct  route_in6 ip6po_rhi_route; /* Route to the 1st hop */
186 };
187 #define ip6po_rthdr     ip6po_rhinfo.ip6po_rhi_rthdr
188 #define ip6po_route     ip6po_rhinfo.ip6po_rhi_route
189 
190 /* Nexthop related info */
191 struct  ip6po_nhinfo {
192 	struct  sockaddr *ip6po_nhi_nexthop;
193 	struct  route_in6 ip6po_nhi_route; /* Route to the nexthop */
194 };
195 #define ip6po_nexthop   ip6po_nhinfo.ip6po_nhi_nexthop
196 #define ip6po_nextroute ip6po_nhinfo.ip6po_nhi_route
197 
198 struct  ip6_pktopts {
199 	struct  mbuf *ip6po_m;  /* Pointer to mbuf storing the data */
200 	int     ip6po_hlim;     /* Hoplimit for outgoing packets */
201 
202 	/* Outgoing IF/address information */
203 	struct  in6_pktinfo *ip6po_pktinfo;
204 
205 	/* Next-hop address information */
206 	struct  ip6po_nhinfo ip6po_nhinfo;
207 
208 	struct  ip6_hbh *ip6po_hbh; /* Hop-by-Hop options header */
209 
210 	/* Destination options header (before a routing header) */
211 	struct  ip6_dest *ip6po_dest1;
212 
213 	/* Routing header related info. */
214 	struct  ip6po_rhinfo ip6po_rhinfo;
215 
216 	/* Destination options header (after a routing header) */
217 	struct  ip6_dest *ip6po_dest2;
218 
219 	int     ip6po_tclass;   /* traffic class */
220 
221 	int     ip6po_minmtu;  /* fragment vs PMTU discovery policy */
222 #define IP6PO_MINMTU_MCASTONLY  -1 /* default; send at min MTU for multicast */
223 #define IP6PO_MINMTU_DISABLE     0 /* always perform pmtu disc */
224 #define IP6PO_MINMTU_ALL         1 /* always send at min MTU */
225 
226 	/* whether temporary addresses are preferred as source address */
227 	int     ip6po_prefer_tempaddr;
228 
229 #define IP6PO_TEMPADDR_SYSTEM   -1 /* follow the system default */
230 #define IP6PO_TEMPADDR_NOTPREFER 0 /* not prefer temporary address */
231 #define IP6PO_TEMPADDR_PREFER    1 /* prefer temporary address */
232 
233 	int ip6po_flags;
234 #if 0   /* parameters in this block is obsolete. do not reuse the values. */
235 #define IP6PO_REACHCONF 0x01    /* upper-layer reachability confirmation. */
236 #define IP6PO_MINMTU    0x02    /* use minimum MTU (IPV6_USE_MIN_MTU) */
237 #endif
238 #define IP6PO_DONTFRAG          0x04    /* no fragmentation (IPV6_DONTFRAG) */
239 #define IP6PO_USECOA            0x08    /* use care of address */
240 };
241 
242 /*
243  * Control options for incoming packets
244  */
245 #endif /* BSD_KERNEL_PRIVATE */
246 
247 #define IP6S_SRCRULE_COUNT 16
248 #include <netinet6/scope6_var.h>
249 
250 struct  ip6stat {
251 	u_quad_t ip6s_total;            /* total packets received */
252 	u_quad_t ip6s_tooshort;         /* packet too short */
253 	u_quad_t ip6s_toosmall;         /* not enough data */
254 	u_quad_t ip6s_fragments;        /* fragments received */
255 	u_quad_t ip6s_fragdropped;      /* frags dropped(dups, out of space) */
256 	u_quad_t ip6s_fragtimeout;      /* fragments timed out */
257 	u_quad_t ip6s_fragoverflow;     /* fragments that exceeded limit */
258 	u_quad_t ip6s_forward;          /* packets forwarded */
259 	u_quad_t ip6s_cantforward;      /* packets rcvd for unreachable dest */
260 	u_quad_t ip6s_redirectsent;     /* packets forwarded on same net */
261 	u_quad_t ip6s_delivered;        /* datagrams delivered to upper level */
262 	u_quad_t ip6s_localout;         /* total ip packets generated here */
263 	u_quad_t ip6s_odropped;         /* lost packets due to nobufs, etc. */
264 	u_quad_t ip6s_reassembled;      /* total packets reassembled ok */
265 	u_quad_t ip6s_atmfrag_rcvd;     /* atomic fragments received */
266 	u_quad_t ip6s_fragmented;       /* datagrams successfully fragmented */
267 	u_quad_t ip6s_ofragments;       /* output fragments created */
268 	u_quad_t ip6s_cantfrag;         /* don't fragment flag was set, etc. */
269 	u_quad_t ip6s_badoptions;       /* error in option processing */
270 	u_quad_t ip6s_noroute;          /* packets discarded due to no route */
271 	u_quad_t ip6s_badvers;          /* ip6 version != 6 */
272 	u_quad_t ip6s_rawout;           /* total raw ip packets generated */
273 	u_quad_t ip6s_badscope;         /* scope error */
274 	u_quad_t ip6s_notmember;        /* don't join this multicast group */
275 	u_quad_t ip6s_nxthist[256];     /* next header history */
276 	u_quad_t ip6s_m1;               /* one mbuf */
277 	u_quad_t ip6s_m2m[32];          /* two or more mbuf */
278 	u_quad_t ip6s_mext1;            /* one ext mbuf */
279 	u_quad_t ip6s_mext2m;           /* two or more ext mbuf */
280 	u_quad_t ip6s_exthdrtoolong;    /* ext hdr are not continuous */
281 	u_quad_t ip6s_nogif;            /* no match gif found */
282 	u_quad_t ip6s_toomanyhdr;       /* discarded due to too many headers */
283 
284 	/*
285 	 * statistics for improvement of the source address selection
286 	 * algorithm:
287 	 */
288 	/* number of times that address selection fails */
289 	u_quad_t ip6s_sources_none;
290 	/* number of times that an address on the outgoing I/F is chosen */
291 	u_quad_t ip6s_sources_sameif[SCOPE6_ID_MAX];
292 	/* number of times that an address on a non-outgoing I/F is chosen */
293 	u_quad_t ip6s_sources_otherif[SCOPE6_ID_MAX];
294 	/*
295 	 * number of times that an address that has the same scope
296 	 * from the destination is chosen.
297 	 */
298 	u_quad_t ip6s_sources_samescope[SCOPE6_ID_MAX];
299 	/*
300 	 * number of times that an address that has a different scope
301 	 * from the destination is chosen.
302 	 */
303 	u_quad_t ip6s_sources_otherscope[SCOPE6_ID_MAX];
304 	/* number of times that a deprecated address is chosen */
305 	u_quad_t ip6s_sources_deprecated[SCOPE6_ID_MAX];
306 
307 	u_quad_t ip6s_forward_cachehit;
308 	u_quad_t ip6s_forward_cachemiss;
309 
310 	/* number of times that each rule of source selection is applied. */
311 	u_quad_t ip6s_sources_rule[IP6S_SRCRULE_COUNT];
312 
313 	/* number of times we ignored address on expensive secondary interfaces */
314 	u_quad_t ip6s_sources_skip_expensive_secondary_if;
315 
316 	/* pkt dropped, no mbufs for control data */
317 	u_quad_t ip6s_pktdropcntrl;
318 
319 	/* total packets trimmed/adjusted  */
320 	u_quad_t ip6s_adj;
321 	/* hwcksum info discarded during adjustment */
322 	u_quad_t ip6s_adj_hwcsum_clr;
323 
324 	/* duplicate address detection collisions */
325 	u_quad_t ip6s_dad_collide;
326 
327 	/* DAD NS looped back */
328 	u_quad_t ip6s_dad_loopcount;
329 
330 	/* NECP policy related drop */
331 	u_quad_t ip6s_necp_policy_drop;
332 
333 	/* CLAT46 stats */
334 	u_quad_t ip6s_clat464_in_tooshort_drop;
335 	u_quad_t ip6s_clat464_in_nov6addr_drop;
336 	u_quad_t ip6s_clat464_in_nov4addr_drop;
337 	u_quad_t ip6s_clat464_in_v4synthfail_drop;
338 	u_quad_t ip6s_clat464_in_64transfail_drop;
339 	u_quad_t ip6s_clat464_in_64proto_transfail_drop;
340 	u_quad_t ip6s_clat464_in_64frag_transfail_drop;
341 	u_quad_t ip6s_clat464_in_invalpbuf_drop;
342 	u_quad_t ip6s_clat464_in_success;
343 	u_quad_t ip6s_clat464_in_drop;
344 	u_quad_t ip6s_clat464_in_v4_drop;
345 
346 	u_quad_t ip6s_clat464_out_nov6addr_drop;
347 	u_quad_t ip6s_clat464_out_v6synthfail_drop;
348 	u_quad_t ip6s_clat464_out_46transfail_drop;
349 	u_quad_t ip6s_clat464_out_46proto_transfail_drop;
350 	u_quad_t ip6s_clat464_out_46frag_transfail_drop;
351 	u_quad_t ip6s_clat464_out_invalpbuf_drop;
352 	u_quad_t ip6s_clat464_out_success;
353 	u_quad_t ip6s_clat464_out_drop;
354 
355 	u_quad_t ip6s_clat464_v6addr_conffail;
356 	u_quad_t ip6s_clat464_plat64_pfx_setfail;
357 	u_quad_t ip6s_clat464_plat64_pfx_getfail;
358 
359 	u_quad_t ip6s_overlap_frag_drop;
360 
361 	u_quad_t ip6s_rcv_if_weak_match;
362 	u_quad_t ip6s_rcv_if_no_match;
363 };
364 
365 enum ip6s_sources_rule_index {
366 	IP6S_SRCRULE_0, IP6S_SRCRULE_1, IP6S_SRCRULE_2, IP6S_SRCRULE_3, IP6S_SRCRULE_4,
367 	IP6S_SRCRULE_5, IP6S_SRCRULE_5_5, IP6S_SRCRULE_6, IP6S_SRCRULE_7,
368 	IP6S_SRCRULE_7x, IP6S_SRCRULE_8
369 };
370 
371 #ifdef BSD_KERNEL_PRIVATE
372 /*
373  * IPv6 onion peeling state.
374  *
375  * This is currently allocated for packets destined to the all-nodes
376  * multicast address over Ethernet.  IPv6 destination address information
377  * is now stored in the mbuf itself.
378  */
379 struct ip6aux {
380 	u_int32_t ip6a_flags;
381 #define IP6A_HASEEN     0x01            /* HA was present */
382 
383 #ifdef notyet
384 #define IP6A_SWAP       0x02            /* swapped home/care-of on packet */
385 #define IP6A_BRUID      0x04            /* BR Unique Identifier was present */
386 #define IP6A_RTALERTSEEN 0x08           /* rtalert present */
387 
388 	/* ip6.ip6_src */
389 	struct in6_addr ip6a_careof;    /* care-of address of the peer */
390 	struct in6_addr ip6a_home;      /* home address of the peer */
391 	u_int16_t       ip6a_bruid;     /* BR unique identifier */
392 
393 	/* rtalert */
394 	u_int16_t ip6a_rtalert;         /* rtalert option value */
395 #endif /* notyet */
396 
397 	/* ether source address if all-nodes multicast destination */
398 	u_char ip6a_ehsrc[ETHER_ADDR_LEN];
399 };
400 
401 /* flags passed to ip6_output as last parameter */
402 #define IPV6_UNSPECSRC          0x01    /* allow :: as the source address */
403 #define IPV6_FORWARDING         0x02    /* most of IPv6 header exists */
404 #define IPV6_MINMTU             0x04    /* use minimum MTU (IPV6_USE_MIN_MTU) */
405 #define IPV6_FLAG_NOSRCIFSEL    0x80    /* bypas source address selection */
406 #define IPV6_OUTARGS            0x100   /* has ancillary output info */
407 
408 #ifdef BSD_KERNEL_PRIVATE
409 #define IP6_HDR_ALIGNED_P(_ip6) ((((uintptr_t)(_ip6)) & ((uintptr_t)3)) == 0)
410 
411 /*
412  * On platforms which require strict alignment (currently for anything but
413  * i386 or x86_64), this macro checks whether the pointer to the IP header
414  * is 32-bit aligned, and assert otherwise.
415  */
416 #if defined(__i386__) || defined(__x86_64__)
417 #define IP6_HDR_STRICT_ALIGNMENT_CHECK(_ip6) do { } while (0)
418 #else /* !__i386__ && !__x86_64__ */
419 #define IP6_HDR_STRICT_ALIGNMENT_CHECK(_ip6) do {                       \
420 	if (!IP_HDR_ALIGNED_P(_ip6)) {                                  \
421 	        panic_plain("\n%s: Unaligned IPv6 header %p\n",         \
422 	            __func__, _ip6);                                    \
423 	}                                                               \
424 } while (0)
425 #endif /* !__i386__ && !__x86_64__ */
426 #endif /* BSD_KERNEL_PRIVATE */
427 
428 #include <net/flowadv.h>
429 
430 /*
431  * Extra information passed to ip6_output when IPV6_OUTARGS is set.
432  */
433 struct ip6_out_args {
434 	unsigned int    ip6oa_boundif;  /* bound outgoing interface */
435 	struct flowadv  ip6oa_flowadv;  /* flow advisory code */
436 	u_int32_t       ip6oa_flags;    /* IP6OAF flags (see below) */
437 #define IP6OAF_SELECT_SRCIF     0x00000001      /* src interface selection */
438 #define IP6OAF_BOUND_IF         0x00000002      /* boundif value is valid */
439 #define IP6OAF_BOUND_SRCADDR    0x00000004      /* bound to src address */
440 #define IP6OAF_NO_CELLULAR      0x00000010      /* skip IFT_CELLULAR */
441 #define IP6OAF_NO_EXPENSIVE     0x00000020      /* skip IFEF_EXPENSIVE */
442 #define IP6OAF_AWDL_UNRESTRICTED 0x00000040     /* privileged AWDL */
443 #define IP6OAF_QOSMARKING_ALLOWED 0x00000080    /* policy allows Fastlane DSCP marking */
444 #define IP6OAF_INTCOPROC_ALLOWED 0x00000100     /* access to internal coproc interfaces */
445 #define IP6OAF_NO_LOW_POWER     0x00000200      /* skip low power */
446 #define IP6OAF_NO_CONSTRAINED   0x00000400      /* skip IFXF_CONSTRAINED */
447 #define IP6OAF_SKIP_PF          0x00000800      /* skip PF */
448 #define IP6OAF_DONT_FRAG        0x00001000      /* Don't fragment */
449 #define IP6OAF_REDO_QOSMARKING_POLICY   0x00002000      /* Re-evaluate QOS marking policy */
450 #define IP6OAF_R_IFDENIED        0x00004000      /* return flag: denied access to interface */
451 	int             ip6oa_sotc;             /* traffic class for Fastlane DSCP mapping */
452 	int             ip6oa_netsvctype;
453 	int32_t         qos_marking_gencount;
454 };
455 
456 #define IP6OAF_RET_MASK (IP6OAF_R_IFDENIED)
457 
458 extern struct ip6stat ip6stat;  /* statistics */
459 extern int ip6_defhlim;         /* default hop limit */
460 extern int ip6_defmcasthlim;    /* default multicast hop limit */
461 extern int ip6_forwarding;      /* act as router? */
462 extern int ip6_gif_hlim;        /* Hop limit for gif encap packet */
463 extern int ip6_use_deprecated;  /* allow deprecated addr as source */
464 extern int ip6_rr_prune;        /* router renumbering prefix */
465                                 /*   walk list every 5 sec. */
466 extern int ip6_mcast_pmtu;      /* enable pMTU discovery for multicast? */
467 #define ip6_mapped_addr_on      (!ip6_v6only)
468 extern int ip6_v6only;
469 
470 extern int ip6_neighborgcthresh; /* Threshold # of NDP entries for GC */
471 extern int ip6_maxifprefixes;   /* Max acceptable prefixes via RA per IF */
472 extern int ip6_maxifdefrouters; /* Max acceptable def routers via RA */
473 extern int ip6_maxdynroutes;    /* Max # of routes created via redirect */
474 extern int ip6_sendredirects;   /* send IP redirects when forwarding? */
475 extern int ip6_accept_rtadv;    /* deprecated */
476 extern int ip6_log_interval;
477 extern uint64_t ip6_log_time;
478 extern int ip6_hdrnestlimit;    /* upper limit of # of extension headers */
479 extern int ip6_dad_count;       /* DupAddrDetectionTransmits */
480 
481 /* RFC4193 Unique Local Unicast Prefixes only */
482 extern int ip6_only_allow_rfc4193_prefix;
483 
484 extern int ip6_auto_flowlabel;
485 extern int ip6_auto_linklocal;
486 
487 extern int ip6_anonportmin;             /* minimum ephemeral port */
488 extern int ip6_anonportmax;             /* maximum ephemeral port */
489 extern int ip6_lowportmin;              /* minimum reserved port */
490 extern int ip6_lowportmax;              /* maximum reserved port */
491 
492 extern int ip6_use_tempaddr; /* whether to use temporary addresses. */
493 extern int ip6_ula_use_tempaddr; /* whether to use temporary ULA addresses */
494 
495 /* whether to prefer temporary addresses in the source address selection */
496 extern int ip6_prefer_tempaddr;
497 
498 /* whether to use the default scope zone when unspecified */
499 extern int ip6_use_defzone;
500 
501 /* how many times to try allocating cga address after conflict */
502 extern int ip6_cga_conflict_retries;
503 #define IPV6_CGA_CONFLICT_RETRIES_DEFAULT 3
504 #define IPV6_CGA_CONFLICT_RETRIES_MAX     10
505 
506 extern struct pr_usrreqs rip6_usrreqs;
507 extern struct pr_usrreqs icmp6_dgram_usrreqs;
508 
509 struct sockopt;
510 struct inpcb;
511 struct ip6_hdr;
512 struct in6_ifaddr;
513 struct ip6protosw;
514 struct domain;
515 
516 extern int icmp6_ctloutput(struct socket *, struct sockopt *);
517 extern int icmp6_dgram_ctloutput(struct socket *, struct sockopt *);
518 extern int icmp6_dgram_send(struct socket *, int, struct mbuf *,
519     struct sockaddr *, struct mbuf *, struct proc *);
520 extern int icmp6_dgram_attach(struct socket *, int, struct proc *);
521 
522 extern void ip6_init(struct ip6protosw *, struct domain *);
523 extern void ip6_input(struct mbuf *);
524 extern void ip6_setsrcifaddr_info(struct mbuf *, uint32_t, struct in6_ifaddr *);
525 extern void ip6_setdstifaddr_info(struct mbuf *, uint32_t, struct in6_ifaddr *);
526 extern int ip6_getsrcifaddr_info(struct mbuf *, uint32_t *, uint32_t *);
527 extern int ip6_getdstifaddr_info(struct mbuf *, uint32_t *, uint32_t *);
528 extern uint32_t ip6_input_getsrcifscope(struct mbuf *);
529 extern uint32_t ip6_input_getdstifscope(struct mbuf *);
530 extern void ip6_output_setsrcifscope(struct mbuf *, uint32_t, struct in6_ifaddr *);
531 extern void ip6_output_setdstifscope(struct mbuf *, uint32_t, struct in6_ifaddr *);
532 extern uint32_t ip6_output_getsrcifscope(struct mbuf *);
533 extern uint32_t ip6_output_getdstifscope(struct mbuf *);
534 
535 extern void ip6_freepcbopts(struct ip6_pktopts *);
536 extern int ip6_unknown_opt(u_int8_t *, struct mbuf *, size_t);
537 extern char *ip6_get_prevhdr(struct mbuf *, int);
538 extern int ip6_nexthdr(struct mbuf *, int, int, int *);
539 extern int ip6_lasthdr(struct mbuf *, int, int, int *);
540 extern boolean_t ip6_pkt_has_ulp(struct mbuf *m);
541 
542 extern void ip6_moptions_init(void);
543 extern struct ip6_moptions *ip6_allocmoptions(zalloc_flags_t);
544 extern void im6o_addref(struct ip6_moptions *, int);
545 extern void im6o_remref(struct ip6_moptions *);
546 
547 extern struct ip6aux *ip6_addaux(struct mbuf *);
548 extern struct ip6aux *ip6_findaux(struct mbuf *);
549 extern void ip6_delaux(struct mbuf *);
550 
551 extern int ip6_process_hopopts(struct mbuf *, u_int8_t *, int, u_int32_t *,
552     u_int32_t *);
553 extern struct mbuf **ip6_savecontrol_v4(struct inpcb *, struct mbuf *,
554     struct mbuf **, int *);
555 extern int ip6_savecontrol(struct inpcb *, struct mbuf *, struct mbuf **);
556 extern struct mbuf *ip6_forward(struct mbuf *, struct route_in6 *, int);
557 extern void ip6_notify_pmtu(struct inpcb *, struct sockaddr_in6 *, u_int32_t *);
558 extern void ip6_mloopback(struct ifnet *, struct ifnet *, struct mbuf *,
559     struct sockaddr_in6 *, uint32_t, int32_t);
560 extern int ip6_output(struct mbuf *, struct ip6_pktopts *, struct route_in6 *,
561     int, struct ip6_moptions *, struct ifnet **, struct ip6_out_args *);
562 extern int ip6_output_list(struct mbuf *, int, struct ip6_pktopts *,
563     struct route_in6 *, int, struct ip6_moptions *, struct ifnet **,
564     struct ip6_out_args *);
565 extern int ip6_ctloutput(struct socket *, struct sockopt *);
566 extern int ip6_raw_ctloutput(struct socket *, struct sockopt *);
567 extern void ip6_initpktopts(struct ip6_pktopts *);
568 extern int ip6_setpktoptions(struct mbuf *, struct ip6_pktopts *, int, int);
569 extern void ip6_clearpktopts(struct ip6_pktopts *, int);
570 extern struct ip6_pktopts *ip6_copypktopts(struct ip6_pktopts *, zalloc_flags_t);
571 extern int ip6_optlen(struct inpcb *);
572 extern void ip6_drain(void);
573 extern int ip6_do_fragmentation(struct mbuf **, uint32_t, struct ifnet *, uint32_t,
574     struct ip6_hdr *, uint8_t *, uint32_t, int, uint32_t);
575 
576 extern int route6_input(struct mbuf **, int *, int);
577 
578 extern void frag6_init(void);
579 extern int frag6_input(struct mbuf **, int *, int);
580 extern void frag6_drain(void);
581 
582 extern int rip6_input(struct mbuf **, int *, int);
583 extern void rip6_ctlinput(int, struct sockaddr *, void *, struct ifnet *);
584 extern int rip6_ctloutput(struct socket *so, struct sockopt *sopt);
585 extern int rip6_output(struct mbuf *, struct socket *, struct sockaddr_in6 *,
586     struct mbuf *, int);
587 
588 extern int dest6_input(struct mbuf **, int *, int);
589 /*
590  * IPv6 source address selection hints
591  */
592 #define IPV6_SRCSEL_HINT_PREFER_TMPADDR         0x00000001
593 
594 extern struct ifaddr * in6_selectsrc_core_ifa(struct sockaddr_in6 *, struct ifnet *, int);
595 extern struct in6_addr * in6_selectsrc_core(struct sockaddr_in6 *,
596     uint32_t, struct ifnet *, int,
597     struct in6_addr *, struct ifnet **, int *, struct ifaddr **, struct route_in6 *);
598 extern struct in6_addr *in6_selectsrc(struct sockaddr_in6 *,
599     struct ip6_pktopts *, struct inpcb *, struct route_in6 *,
600     struct ifnet **, struct in6_addr *, unsigned int, int *);
601 extern struct in6_addrpolicy *in6_addrsel_lookup_policy(struct sockaddr_in6 *);
602 extern int in6_selectroute(struct sockaddr_in6 *, struct sockaddr_in6 *,
603     struct ip6_pktopts *, struct ip6_moptions *, struct in6_ifaddr **,
604     struct route_in6 *, struct ifnet **, struct rtentry **, int,
605     struct ip6_out_args *);
606 extern int ip6_setpktopts(struct mbuf *control, struct ip6_pktopts *opt,
607     struct ip6_pktopts *stickyopt, int uproto);
608 extern u_int32_t ip6_randomid(void);
609 extern u_int32_t ip6_randomflowlabel(void);
610 #endif /* BSD_KERNEL_PRIVATE */
611 #endif /* !_NETINET6_IP6_VAR_H_ */
612