ipoe.c 84.5 KB
Newer Older
K
Kozlov Dmitry 已提交
1 2 3 4 5 6 7
#include <unistd.h>
#include <stdlib.h>
#include <stdio.h>
#include <stdarg.h>
#include <errno.h>
#include <string.h>
#include <fcntl.h>
8
#include <assert.h>
K
Kozlov Dmitry 已提交
9 10 11
#include <time.h>
#include <arpa/inet.h>
#include <netinet/in.h>
12 13
#include <net/ethernet.h>
#include <netinet/ip.h>
K
Kozlov Dmitry 已提交
14 15 16
#include <sys/socket.h>
#include <sys/ioctl.h>
#include <linux/if.h>
17
#include <linux/route.h>
K
Kozlov Dmitry 已提交
18 19 20 21 22 23 24 25 26 27 28 29 30 31

#include <pcre.h>

#include "events.h"
#include "list.h"
#include "triton.h"
#include "log.h"
#include "mempool.h"
#include "utils.h"
#include "cli.h"
#include "ap_session.h"
#include "pwdb.h"
#include "ipdb.h"

32
#include "iputils.h"
33 34
#include "ipset.h"

K
Kozlov Dmitry 已提交
35 36 37 38 39 40
#include "connlimit.h"

#include "ipoe.h"

#include "memdebug.h"

41 42 43
#define USERNAME_UNSET 0
#define USERNAME_IFNAME 1
#define USERNAME_LUA 2
K
Kozlov Dmitry 已提交
44

K
Kozlov Dmitry 已提交
45 46 47
#define MODE_L2 0
#define MODE_L3 1

D
Dmitry Kozlov 已提交
48 49 50
struct ifaddr {
	struct list_head entry;
	in_addr_t addr;
51
	int mask;
D
Dmitry Kozlov 已提交
52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90
	int refs;
};

struct iplink_arg {
	pcre *re;
	const char *opt;
	long *arg1;
};

struct unit_cache {
	struct list_head entry;
	int ifindex;
};

struct l4_redirect {
	struct list_head entry;
	in_addr_t addr;
	time_t timeout;
};

struct gw_addr {
	struct list_head entry;
	in_addr_t addr;
	int mask;
	int mask1;
};

struct disc_item {
	struct list_head entry;
	struct dhcpv4_packet *pack;
	struct timespec ts;
};

struct delay {
	struct list_head entry;
	unsigned int conn_cnt;
	int delay;
};

91 92 93 94 95 96 97
struct request_item {
	struct list_head entry;
	uint32_t xid;
	time_t expire;
	int cnt;
};

98 99
enum {SID_MAC, SID_IP};

K
Kozlov Dmitry 已提交
100
static int conf_dhcpv4 = 1;
101 102
static int conf_up;
static int conf_mode;
K
Kozlov Dmitry 已提交
103
static int conf_shared = 1;
104
static int conf_ifcfg = 1;
105 106 107
static int conf_nat;
static int conf_arp;
static int conf_ipv6;
108
static uint32_t conf_src;
109
static const char *conf_ip_pool;
110
static const char *conf_l4_redirect_pool;
K
Kozlov Dmitry 已提交
111 112
//static int conf_dhcpv6;
static int conf_username;
113
static const char *conf_password;
K
Kozlov Dmitry 已提交
114
static int conf_unit_cache;
K
Kozlov Dmitry 已提交
115
static int conf_noauth;
116 117 118 119
#ifdef RADIUS
static int conf_attr_dhcp_client_ip;
static int conf_attr_dhcp_router_ip;
static int conf_attr_dhcp_mask;
120
static int conf_attr_dhcp_lease_time;
D
Dmitry Kozlov 已提交
121
static int conf_attr_dhcp_renew_time;
122
static int conf_attr_l4_redirect;
123 124
static int conf_attr_l4_redirect_table;
static int conf_attr_l4_redirect_ipset;
125
static const char *conf_attr_dhcp_opt82;
126 127
static const char *conf_attr_dhcp_opt82_remote_id;
static const char *conf_attr_dhcp_opt82_circuit_id;
128 129
#endif
static int conf_l4_redirect_table;
130
static int conf_l4_redirect_on_reject;
131
static const char *conf_l4_redirect_ipset;
D
Dmitry Kozlov 已提交
132
static int conf_vlan_timeout = 30;
133
static int conf_max_request = 3;
134 135
static int conf_session_timeout;
static int conf_idle_timeout;
136

K
Kozlov Dmitry 已提交
137
static const char *conf_relay;
K
Kozlov Dmitry 已提交
138 139 140 141 142

#ifdef USE_LUA
static const char *conf_lua_username_func;
#endif

143 144 145
static int conf_offer_timeout = 10;
static int conf_relay_timeout = 3;
static int conf_relay_retransmit = 3;
146
static LIST_HEAD(conf_gw_addr);
K
Kozlov Dmitry 已提交
147 148 149
static int conf_netmask = 24;
static int conf_lease_time = 600;
static int conf_lease_timeout = 660;
D
Dmitry Kozlov 已提交
150
static int conf_renew_time = 300;
K
Kozlov Dmitry 已提交
151
static int conf_verbose;
152
static const char *conf_agent_remote_id;
153
static int conf_proto;
D
Dmitry Kozlov 已提交
154
static LIST_HEAD(conf_offer_delay);
155
static const char *conf_vlan_name;
156
static int conf_ip_unnumbered;
157
static int conf_check_mac_change;
158
static int conf_soft_terminate;
159
static int conf_calling_sid = SID_MAC;
K
Kozlov Dmitry 已提交
160 161 162

static unsigned int stat_starting;
static unsigned int stat_active;
D
Dmitry Kozlov 已提交
163
static unsigned int stat_delayed_offer;
K
Kozlov Dmitry 已提交
164 165

static mempool_t ses_pool;
D
Dmitry Kozlov 已提交
166
static mempool_t disc_item_pool;
167
static mempool_t req_item_pool;
K
Kozlov Dmitry 已提交
168

169
static int connlimit_loaded;
170
static int radius_loaded;
171

K
Kozlov Dmitry 已提交
172
static LIST_HEAD(serv_list);
D
Dmitry Kozlov 已提交
173
static pthread_mutex_t serv_lock = PTHREAD_MUTEX_INITIALIZER;
D
Dmitry Kozlov 已提交
174

K
Kozlov Dmitry 已提交
175 176 177 178 179
static pthread_mutex_t uc_lock = PTHREAD_MUTEX_INITIALIZER;
static LIST_HEAD(uc_list);
static int uc_size;
static mempool_t uc_pool;

180 181 182 183 184
static pthread_rwlock_t l4_list_lock = PTHREAD_RWLOCK_INITIALIZER;
static LIST_HEAD(l4_redirect_list);
static struct triton_timer_t l4_redirect_timer;
static struct triton_context_t l4_redirect_ctx;

K
Kozlov Dmitry 已提交
185
static void ipoe_session_finished(struct ap_session *s);
K
Kozlov Dmitry 已提交
186
static void ipoe_drop_sessions(struct ipoe_serv *serv, struct ipoe_session *skip);
D
Dmitry Kozlov 已提交
187
static void ipoe_serv_release(struct ipoe_serv *serv);
K
Kozlov Dmitry 已提交
188
static void __ipoe_session_activate(struct ipoe_session *ses);
189
static void ipoe_ses_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack);
D
Dmitry Kozlov 已提交
190
static void __ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack, int force);
191
static void ipoe_session_keepalive(struct dhcpv4_packet *pack);
D
Dmitry Kozlov 已提交
192
static void add_interface(const char *ifname, int ifindex, const char *opt, int parent_ifindex, int vid);
D
Dmitry Kozlov 已提交
193
static int get_offer_delay();
194
static void __ipoe_session_start(struct ipoe_session *ses);
195 196
static int ipoe_rad_send_auth_request(struct rad_plugin_t *rad, struct rad_packet_t *pack);
static int ipoe_rad_send_acct_request(struct rad_plugin_t *rad, struct rad_packet_t *pack);
K
Kozlov Dmitry 已提交
197

K
Kozlov Dmitry 已提交
198
static struct ipoe_session *ipoe_session_lookup(struct ipoe_serv *serv, struct dhcpv4_packet *pack, struct ipoe_session **opt82_ses)
K
Kozlov Dmitry 已提交
199
{
K
Kozlov Dmitry 已提交
200
	struct ipoe_session *ses, *res = NULL;
D
Dmitry Kozlov 已提交
201

K
Kozlov Dmitry 已提交
202 203
	uint8_t *agent_circuit_id = NULL;
	uint8_t *agent_remote_id = NULL;
K
Kozlov Dmitry 已提交
204 205 206 207
	int opt82_match;

	if (opt82_ses)
		*opt82_ses = NULL;
K
Kozlov Dmitry 已提交
208

209
	if (!conf_check_mac_change || (pack->relay_agent && dhcpv4_parse_opt82(pack->relay_agent, &agent_circuit_id, &agent_remote_id))) {
K
Kozlov Dmitry 已提交
210 211 212
		agent_circuit_id = NULL;
		agent_remote_id = NULL;
	}
K
Kozlov Dmitry 已提交
213

K
Kozlov Dmitry 已提交
214
	list_for_each_entry(ses, &serv->sessions, entry) {
215
		opt82_match = conf_check_mac_change && pack->relay_agent != NULL;
D
Dmitry Kozlov 已提交
216

217
		if (agent_circuit_id && !ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
218
			opt82_match = 0;
D
Dmitry Kozlov 已提交
219

K
Kozlov Dmitry 已提交
220 221
		if (opt82_match && agent_remote_id && !ses->agent_remote_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
222

K
Kozlov Dmitry 已提交
223 224
		if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
225

K
Kozlov Dmitry 已提交
226 227
		if (opt82_match && !agent_remote_id && ses->agent_remote_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
228

K
Kozlov Dmitry 已提交
229
		if (opt82_match && agent_circuit_id) {
K
Kozlov Dmitry 已提交
230
			if (*agent_circuit_id != *ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
231
				opt82_match = 0;
D
Dmitry Kozlov 已提交
232

K
Kozlov Dmitry 已提交
233
			if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
K
Kozlov Dmitry 已提交
234
				opt82_match = 0;
K
Kozlov Dmitry 已提交
235
		}
D
Dmitry Kozlov 已提交
236

K
Kozlov Dmitry 已提交
237
		if (opt82_match && agent_remote_id) {
K
Kozlov Dmitry 已提交
238
			if (*agent_remote_id != *ses->agent_remote_id)
K
Kozlov Dmitry 已提交
239 240
				opt82_match = 0;

K
Kozlov Dmitry 已提交
241
			if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
K
Kozlov Dmitry 已提交
242
				opt82_match = 0;
K
Kozlov Dmitry 已提交
243
		}
K
Kozlov Dmitry 已提交
244 245 246

		if (opt82_match && opt82_ses)
			*opt82_ses = ses;
D
Dmitry Kozlov 已提交
247

D
Dmitry Kozlov 已提交
248
		if (memcmp(pack->hdr->chaddr, ses->hwaddr, ETH_ALEN))
K
Kozlov Dmitry 已提交
249
			continue;
D
Dmitry Kozlov 已提交
250

K
Kozlov Dmitry 已提交
251 252
		res = ses;
		break;
D
Dmitry Kozlov 已提交
253

K
Kozlov Dmitry 已提交
254
		/*if (pack->client_id && !ses->client_id)
255
			continue;
D
Dmitry Kozlov 已提交
256

257 258
		if (!pack->client_id && ses->client_id)
			continue;
D
Dmitry Kozlov 已提交
259

K
Kozlov Dmitry 已提交
260 261 262 263 264 265 266
		if (pack->client_id) {
			if (pack->client_id->len != ses->client_id->len)
				continue;
			if (memcmp(pack->client_id->data, ses->client_id->data, pack->client_id->len))
				continue;
		}

K
Kozlov Dmitry 已提交
267 268 269 270 271
		ses1 = ses;

		if (pack->hdr->xid != ses->xid)
			continue;

K
Kozlov Dmitry 已提交
272
		return ses;*/
K
Kozlov Dmitry 已提交
273 274
	}

K
Kozlov Dmitry 已提交
275 276
	if (!res || !pack->relay_agent || !opt82_ses || *opt82_ses)
		return res;
D
Dmitry Kozlov 已提交
277

K
Kozlov Dmitry 已提交
278 279 280
	list_for_each_entry(ses, &serv->sessions, entry) {
		if (agent_circuit_id && !ses->agent_circuit_id)
			continue;
D
Dmitry Kozlov 已提交
281

K
Kozlov Dmitry 已提交
282 283
		if (opt82_match && agent_remote_id && !ses->agent_remote_id)
			continue;
D
Dmitry Kozlov 已提交
284

K
Kozlov Dmitry 已提交
285 286
		if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
			continue;
D
Dmitry Kozlov 已提交
287

K
Kozlov Dmitry 已提交
288 289
		if (opt82_match && !agent_remote_id && ses->agent_remote_id)
			continue;
D
Dmitry Kozlov 已提交
290

K
Kozlov Dmitry 已提交
291 292 293
		if (opt82_match && agent_circuit_id) {
			if (*agent_circuit_id != *ses->agent_circuit_id)
				continue;
D
Dmitry Kozlov 已提交
294

K
Kozlov Dmitry 已提交
295 296 297
			if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
				continue;
		}
D
Dmitry Kozlov 已提交
298

K
Kozlov Dmitry 已提交
299 300 301 302 303 304 305 306 307 308 309
		if (opt82_match && agent_remote_id) {
			if (*agent_remote_id != *ses->agent_remote_id)
				continue;

			if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
				continue;
		}

		*opt82_ses = ses;
		break;
	}
D
Dmitry Kozlov 已提交
310

K
Kozlov Dmitry 已提交
311
	return res;
K
Kozlov Dmitry 已提交
312 313 314 315 316 317 318 319
}

static void ipoe_session_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), timer);

	triton_timer_del(t);

K
Kozlov Dmitry 已提交
320
	log_ppp_info2("ipoe: session timed out\n");
K
Kozlov Dmitry 已提交
321

322
	ap_session_terminate(&ses->ses, TERM_LOST_CARRIER, 1);
K
Kozlov Dmitry 已提交
323 324
}

325 326 327 328 329 330 331 332
static void ipoe_session_l4_redirect_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), l4_redirect_timer);

	triton_timer_del(t);

	log_ppp_info2("ipoe: session timed out\n");

333
	ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
334 335
}

336 337 338 339 340 341 342 343 344 345 346 347 348 349
static void ipoe_relay_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), timer);

	if (!ses->serv->dhcpv4_relay || !ses->dhcpv4_request) {
		triton_timer_del(t);
		return;
	}

	if (++ses->relay_retransmit > conf_relay_retransmit) {
		triton_timer_del(t);

		log_ppp_info2("ipoe: relay timed out\n");

350
		ap_session_terminate(&ses->ses, TERM_LOST_CARRIER, 1);
351 352 353 354 355
	} else
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
}


356
static char *ipoe_session_get_username(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
357
{
358 359 360
	if (ses->username)
		return ses->username;

K
Kozlov Dmitry 已提交
361
#ifdef USE_LUA
362 363 364
	if (ses->serv->opt_username == USERNAME_LUA)
		return ipoe_lua_get_username(ses, ses->serv->opt_lua_username_func ? : conf_lua_username_func);
	else
K
Kozlov Dmitry 已提交
365
#endif
366 367
	if (!ses->dhcpv4_request)
		return _strdup(ses->ctrl.calling_station_id);
368

369
	return _strdup(ses->serv->ifname);
K
Kozlov Dmitry 已提交
370 371
}

372
static void l4_redirect_list_add(in_addr_t addr)
373 374 375 376 377 378 379 380 381 382 383 384
{
	struct l4_redirect *n = _malloc(sizeof(*n));
	struct timespec ts;

	if (!n)
		return;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	memset(n, 0, sizeof(*n));
	n->addr = addr;
	n->timeout = ts.tv_sec + conf_l4_redirect_on_reject;
D
Dmitry Kozlov 已提交
385

386
	ipoe_nl_add_exclude(addr, 32);
387 388 389 390 391 392

	if (conf_l4_redirect_table)
		iprule_add(addr, conf_l4_redirect_table);

	if (conf_l4_redirect_ipset)
		ipset_add(conf_l4_redirect_ipset, addr);
393 394

	pthread_rwlock_wrlock(&l4_list_lock);
D
Dmitry Kozlov 已提交
395

396
	list_add_tail(&n->entry, &l4_redirect_list);
D
Dmitry Kozlov 已提交
397

398 399 400
	if (!l4_redirect_timer.tpd)
		triton_timer_add(&l4_redirect_ctx, &l4_redirect_timer, 0);

D
Dmitry Kozlov 已提交
401
	pthread_rwlock_unlock(&l4_list_lock);
402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431
}

static int l4_redirect_list_check(in_addr_t addr)
{
	struct l4_redirect *n;

	pthread_rwlock_rdlock(&l4_list_lock);
	list_for_each_entry(n, &l4_redirect_list, entry) {
		if (n->addr == addr) {
			pthread_rwlock_unlock(&l4_list_lock);
			return 1;
		}
	}
	pthread_rwlock_unlock(&l4_list_lock);
	return 0;
}

static void l4_redirect_list_timer(struct triton_timer_t *t)
{
	struct l4_redirect *n;
	struct timespec ts;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	pthread_rwlock_wrlock(&l4_list_lock);
	while (!list_empty(&l4_redirect_list)) {
		n = list_entry(l4_redirect_list.next, typeof(*n), entry);
		if (ts.tv_sec > n->timeout) {
			list_del(&n->entry);
			pthread_rwlock_unlock(&l4_list_lock);
432 433 434

			if (conf_l4_redirect_table)
				iprule_del(n->addr, conf_l4_redirect_table);
D
Dmitry Kozlov 已提交
435

436 437
			if (conf_l4_redirect_ipset)
				ipset_del(conf_l4_redirect_ipset, n->addr);
D
Dmitry Kozlov 已提交
438

439
			ipoe_nl_del_exclude(n->addr);
440 441 442 443 444 445 446 447 448 449 450 451 452

			_free(n);
			pthread_rwlock_wrlock(&l4_list_lock);
		} else
			break;
	}

	if (list_empty(&l4_redirect_list) && l4_redirect_timer.tpd)
		triton_timer_del(&l4_redirect_timer);

	pthread_rwlock_unlock(&l4_list_lock);
}

453 454 455
static void ipoe_change_l4_redirect(struct ipoe_session *ses, int del)
{
	in_addr_t addr;
D
Dmitry Kozlov 已提交
456

457
	if (ses->ses.ipv4)
458
		addr = ses->ses.ipv4->peer_addr;
459 460
	else
		addr = ses->yiaddr;
D
Dmitry Kozlov 已提交
461

462
	if (ses->l4_redirect_table) {
463
		if (del) {
464
			iprule_del(addr, ses->l4_redirect_table);
465 466
			ses->l4_redirect_set = 0;
		} else {
467
			iprule_add(addr, ses->l4_redirect_table);
468 469 470
			ses->l4_redirect_set = 1;
		}
	}
471

472
	if (conf_l4_redirect_ipset || ses->l4_redirect_ipset) {
473
		if (del) {
474
			ipset_del(ses->l4_redirect_ipset ?: conf_l4_redirect_ipset, addr);
475 476
			ses->l4_redirect_set = 0;
		} else {
477
			ipset_add(ses->l4_redirect_ipset ?: conf_l4_redirect_ipset, addr);
478 479
			ses->l4_redirect_set = 1;
		}
K
Kozlov Dmitry 已提交
480
	}
481 482 483

	if (del && ses->l4_redirect_timer.tpd)
		triton_timer_del(&ses->l4_redirect_timer);
484 485 486 487 488 489 490
}

static void ipoe_change_addr(struct ipoe_session *ses, in_addr_t newaddr)
{

}

491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525
static int ipoe_create_interface(struct ipoe_session *ses)
{
	struct unit_cache *uc;
	struct ifreq ifr;

	pthread_mutex_lock(&uc_lock);
	if (!list_empty(&uc_list)) {
		uc = list_entry(uc_list.next, typeof(*uc), entry);
		ses->ifindex = uc->ifindex;
		list_del(&uc->entry);
		--uc_size;
		pthread_mutex_unlock(&uc_lock);
		mempool_free(uc);
	} else {
		pthread_mutex_unlock(&uc_lock);
		ses->ifindex = ipoe_nl_create(0, 0, ses->serv->opt_mode == MODE_L2 ? ses->serv->ifname : NULL, ses->hwaddr);
		if (ses->ifindex == -1) {
			log_ppp_error("ipoe: failed to create interface\n");
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
			return -1;
		}
	}

	memset(&ifr, 0, sizeof(ifr));
	ifr.ifr_ifindex = ses->ifindex;
	if (ioctl(sock_fd, SIOCGIFNAME, &ifr, sizeof(ifr))) {
		log_ppp_error("ipoe: failed to get interface name\n");
		ses->ifindex = -1;
		ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
		return -1;
	}

	strncpy(ses->ses.ifname, ifr.ifr_name, AP_IFNAME_LEN);
	ses->ses.ifindex = ses->ifindex;
	ses->ses.unit_idx = ses->ifindex;
526
	ses->ctrl.dont_ifcfg = !conf_ip_unnumbered;
527

528 529
	log_ppp_info2("create interface %s parent %s\n", ifr.ifr_name, ses->serv->ifname);

530 531 532
	return 0;
}

533 534 535 536 537 538 539
static void auth_result(struct ipoe_session *ses, int r)
{
	char *username = ses->username;

	ses->username = NULL;

	if (r == PWDB_DENIED) {
540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557
		if (conf_l4_redirect_on_reject && ses->dhcpv4_request) {
			ses->l4_redirect = 1;
			if (conf_l4_redirect_pool) {
				if (ses->ses.ipv4_pool_name)
					_free(ses->ses.ipv4_pool_name);
				ses->ses.ipv4_pool_name = _strdup(conf_l4_redirect_pool);
			}

			ses->l4_redirect_timer.expire = ipoe_session_l4_redirect_timeout;
			ses->l4_redirect_timer.expire_tv.tv_sec = conf_l4_redirect_on_reject;
			triton_timer_add(&ses->ctx, &ses->l4_redirect_timer, 0);

			ap_session_set_username(&ses->ses, username);
			log_ppp_info1("%s: authentication failed\n", ses->ses.username);
			log_ppp_info1("%s: start temporary session (l4-redirect)\n", ses->ses.username);
			goto cont;
		}

558 559 560 561 562 563 564 565
		pthread_rwlock_wrlock(&ses_lock);
		ses->ses.username = username;
		ses->ses.terminate_cause = TERM_AUTH_ERROR;
		pthread_rwlock_unlock(&ses_lock);
		if (conf_ppp_verbose)
			log_ppp_warn("authentication failed\n");
		if (conf_l4_redirect_on_reject && !ses->dhcpv4_request)
			l4_redirect_list_add(ses->yiaddr);
566
		ap_session_terminate(&ses->ses, TERM_AUTH_ERROR, 1);
567 568 569 570 571
		return;
	}

	ap_session_set_username(&ses->ses, username);
	log_ppp_info1("%s: authentication succeeded\n", ses->ses.username);
572 573

cont:
574 575 576 577
	triton_event_fire(EV_SES_AUTHORIZED, &ses->ses);

	if (ses->serv->opt_nat)
		ses->ses.ipv4 = ipdb_get_ipv4(&ses->ses);
D
Dmitry Kozlov 已提交
578

579
	if (ses->serv->opt_shared == 0 && ses->ses.ipv4 && ses->ses.ipv4->peer_addr != ses->yiaddr) {
580 581 582
		if (ipoe_create_interface(ses))
			return;

583 584
		ap_session_set_ifindex(&ses->ses);
	}
585 586 587 588 589 590 591 592 593 594 595

	if (ses->dhcpv4_request && ses->serv->dhcpv4_relay) {
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);

		ses->timer.expire = ipoe_relay_timeout;
		ses->timer.period = conf_relay_timeout * 1000;
		triton_timer_add(&ses->ctx, &ses->timer, 0);
	} else
		__ipoe_session_start(ses);
}

K
Kozlov Dmitry 已提交
596 597 598 599
static void ipoe_session_start(struct ipoe_session *ses)
{
	int r;
	char *passwd;
600
	char *username;
601
	const char *pass;
D
Dmitry Kozlov 已提交
602

603 604 605 606
	if (ses->dhcpv4_request && conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(ses->dhcpv4_request, 0, log_ppp_info2);
	}
K
Kozlov Dmitry 已提交
607

D
Dmitry Kozlov 已提交
608
	__sync_add_and_fetch(&stat_starting, 1);
D
Dmitry Kozlov 已提交
609

610
	assert(!ses->ses.username);
611

612 613 614 615 616
	username = ipoe_session_get_username(ses);

	if (!username) {
		ipoe_session_finished(&ses->ses);
		return;
K
Kozlov Dmitry 已提交
617
	}
618 619

	ses->ses.unit_idx = ses->serv->ifindex;
D
Dmitry Kozlov 已提交
620

K
Kozlov Dmitry 已提交
621 622 623 624
	triton_event_fire(EV_CTRL_STARTING, &ses->ses);
	triton_event_fire(EV_CTRL_STARTED, &ses->ses);

	ap_session_starting(&ses->ses);
D
Dmitry Kozlov 已提交
625 626

	if (conf_noauth)
627 628
		r = PWDB_SUCCESS;
	else {
629 630 631
		if (ses->serv->opt_shared && ipoe_create_interface(ses))
			return;

632
#ifdef RADIUS
633
		if (radius_loaded) {
634 635
			ses->radius.send_access_request = ipoe_rad_send_auth_request;
			ses->radius.send_accounting_request = ipoe_rad_send_acct_request;
636 637 638 639
			rad_register_plugin(&ses->ses, &ses->radius);
		}
#endif

640 641 642 643 644 645 646 647
		if (conf_password) {
			if (!strcmp(conf_password, "csid"))
				pass = ses->ctrl.calling_station_id;
			else
				pass = conf_password;
		} else
			pass = username;

648
		ses->username = username;
649
		r = pwdb_check(&ses->ses, (pwdb_callback)auth_result, ses, username, PPP_PAP, pass);
D
Dmitry Kozlov 已提交
650

651 652 653
		if (r == PWDB_WAIT)
			return;

K
Kozlov Dmitry 已提交
654
		if (r == PWDB_NO_IMPL) {
655
			passwd = pwdb_get_passwd(&ses->ses, username);
656
			if (!passwd || strcmp(passwd, pass))
K
Kozlov Dmitry 已提交
657 658 659 660 661
				r = PWDB_DENIED;
			else {
				r = PWDB_SUCCESS;
				_free(passwd);
			}
K
Kozlov Dmitry 已提交
662 663
		}
	}
D
Dmitry Kozlov 已提交
664

665
	auth_result(ses, r);
K
Kozlov Dmitry 已提交
666 667
}

668 669 670 671 672
static void find_gw_addr(struct ipoe_session *ses)
{
	struct gw_addr *a;

	list_for_each_entry(a, &conf_gw_addr, entry) {
673
		if ((ntohl(ses->yiaddr) & (a->mask1)) == (ntohl(a->addr) & (a->mask1))) {
674
			ses->router = a->addr;
675 676 677 678 679 680
			ses->mask = a->mask;
			return;
		}
	}
}

D
Dmitry Kozlov 已提交
681
static void __ipoe_session_start(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
682
{
683
	if (!ses->yiaddr) {
684
		dhcpv4_get_ip(ses->serv->dhcpv4, &ses->yiaddr, &ses->router, &ses->mask);
685 686 687
		if (ses->yiaddr)
			ses->dhcp_addr = 1;
	}
688

689 690 691
	if (!ses->yiaddr && !ses->serv->opt_nat)
		ses->ses.ipv4 = ipdb_get_ipv4(&ses->ses);

K
Kozlov Dmitry 已提交
692
	if (ses->ses.ipv4) {
693 694
		if (!ses->mask)
			ses->mask = ses->ses.ipv4->mask;
K
Kozlov Dmitry 已提交
695

K
Kozlov Dmitry 已提交
696 697
		if (!ses->yiaddr)
			ses->yiaddr = ses->ses.ipv4->peer_addr;
D
Dmitry Kozlov 已提交
698

699 700
		if (!ses->router)
			ses->router = ses->ses.ipv4->addr;
K
Kozlov Dmitry 已提交
701
	} /*else if (ses->yiaddr) {
K
Kozlov Dmitry 已提交
702 703 704 705 706
		ses->ses.ipv4 = &ses->ipv4;
		ses->ipv4.addr = ses->siaddr;
		ses->ipv4.peer_addr = ses->yiaddr;
		ses->ipv4.mask = ses->mask;
		ses->ipv4.owner = NULL;
K
Kozlov Dmitry 已提交
707
	}*/
D
Dmitry Kozlov 已提交
708

K
Kozlov Dmitry 已提交
709 710 711
	if (ses->dhcpv4_request) {
		if (!ses->yiaddr) {
			log_ppp_error("no free IPv4 address\n");
712
			ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
713 714
			return;
		}
715 716 717

		if (!ses->router)
			find_gw_addr(ses);
D
Dmitry Kozlov 已提交
718

719 720
		if (!ses->mask)
			ses->mask = conf_netmask;
D
Dmitry Kozlov 已提交
721

722 723
		if (!ses->mask)
			ses->mask = 32;
D
Dmitry Kozlov 已提交
724

725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740
		if (ses->dhcpv4_request->hdr->giaddr) {
			/*uint32_t mask = ses->mask == 32 ? 0xffffffff : (((1 << ses->mask) - 1) << (32 - ses->mask));

			ses->siaddr = iproute_get(ses->dhcpv4_request->hdr->giaddr);
			if ((ntohl(ses->router) & mask) == (ntohl(ses->siaddr) & mask))
				ses->siaddr = ses->router;
			else if (!ses->router)
				ses->router = ses->dhcpv4_request->hdr->giaddr;*/
			if (ses->serv->opt_mode == MODE_L2)
				ses->siaddr = ses->router;
			else {
				ses->siaddr = iproute_get(ses->dhcpv4_request->hdr->giaddr, NULL);
				if (!ses->router)
					ses->router = ses->dhcpv4_request->hdr->giaddr;
			}
		}
D
Dmitry Kozlov 已提交
741

742 743
		if (!ses->router) {
			log_ppp_error("can't determine router address\n");
744
			ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
745
			return;
D
Dmitry Kozlov 已提交
746 747
		}

K
Kozlov Dmitry 已提交
748 749
		if (!ses->siaddr && ses->router != ses->yiaddr)
			ses->siaddr = ses->router;
D
Dmitry Kozlov 已提交
750

751
		if (!ses->siaddr)
D
Dmitry Kozlov 已提交
752
			ses->siaddr = ses->serv->opt_src;
753

K
Kozlov Dmitry 已提交
754 755
		if (!ses->siaddr && ses->serv->dhcpv4_relay)
			ses->siaddr = ses->serv->dhcpv4_relay->giaddr;
756

K
Kozlov Dmitry 已提交
757 758
		if (!ses->siaddr) {
			log_ppp_error("can't determine Server-ID\n");
759
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
K
Kozlov Dmitry 已提交
760 761
			return;
		}
762

763 764 765
		if (ses->ses.ipv4 && !ses->ses.ipv4->addr)
			ses->ses.ipv4->addr = ses->siaddr;

D
Dmitry Kozlov 已提交
766
		dhcpv4_send_reply(DHCPOFFER, ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
767 768 769

		dhcpv4_packet_free(ses->dhcpv4_request);
		ses->dhcpv4_request = NULL;
D
Dmitry Kozlov 已提交
770

771
		ses->timer.expire = ipoe_session_timeout;
772
		ses->timer.period = 0;
773 774
		ses->timer.expire_tv.tv_sec = conf_offer_timeout;
		triton_timer_add(&ses->ctx, &ses->timer, 0);
775 776 777
	} else {
		if (!ses->siaddr)
			find_gw_addr(ses);
D
Dmitry Kozlov 已提交
778

779 780 781 782
		if (!ses->siaddr)
			ses->siaddr = ses->serv->opt_src;

		if (!ses->siaddr)
783
			ses->siaddr = iproute_get(ses->yiaddr, NULL);
784 785 786

		if (!ses->siaddr) {
			log_ppp_error("can't determine local address\n");
787
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
788 789
			return;
		}
D
Dmitry Kozlov 已提交
790

791 792 793
		if (ses->ses.ipv4 && !ses->ses.ipv4->addr)
			ses->ses.ipv4->addr = ses->siaddr;

K
Kozlov Dmitry 已提交
794
		__ipoe_session_activate(ses);
795
	}
K
Kozlov Dmitry 已提交
796 797
}

798
static void ipoe_serv_add_addr(struct ipoe_serv *serv, in_addr_t addr, int mask)
799 800 801 802
{
	struct ifaddr *a;

	pthread_mutex_lock(&serv->lock);
D
Dmitry Kozlov 已提交
803

804 805 806 807 808
	if (serv->opt_shared) {
		list_for_each_entry(a, &serv->addr_list, entry) {
			if (a->addr == addr) {
				a->refs++;
				pthread_mutex_unlock(&serv->lock);
K
Kozlov Dmitry 已提交
809

810 811
				return;
			}
K
Kozlov Dmitry 已提交
812 813 814 815 816
		}
	}

	a = _malloc(sizeof(*a));
	a->addr = addr;
817
	a->mask = mask;
K
Kozlov Dmitry 已提交
818 819 820
	a->refs = 1;
	list_add_tail(&a->entry, &serv->addr_list);

821
	if (ipaddr_add(serv->ifindex, a->addr, mask))
K
Kozlov Dmitry 已提交
822 823 824 825 826
		log_warn("ipoe: failed to add addess to interface '%s'\n", serv->ifname);

	pthread_mutex_unlock(&serv->lock);
}

827
static void ipoe_serv_del_addr(struct ipoe_serv *serv, in_addr_t addr, int lock)
K
Kozlov Dmitry 已提交
828 829 830
{
	struct ifaddr *a;

831 832
	if (lock)
		pthread_mutex_lock(&serv->lock);
K
Kozlov Dmitry 已提交
833 834 835 836

	list_for_each_entry(a, &serv->addr_list, entry) {
		if (a->addr == addr) {
			if (--a->refs == 0) {
837
				if (ipaddr_del(serv->ifindex, a->addr, a->mask))
K
Kozlov Dmitry 已提交
838 839 840
					log_warn("ipoe: failed to delete addess from interface '%s'\n", serv->ifname);
				list_del(&a->entry);
				_free(a);
841
			}
K
Kozlov Dmitry 已提交
842
			break;
843
		}
K
Kozlov Dmitry 已提交
844
	}
D
Dmitry Kozlov 已提交
845

846 847
	if (lock)
		pthread_mutex_unlock(&serv->lock);
K
Kozlov Dmitry 已提交
848 849 850 851 852 853
}

static void ipoe_ifcfg_add(struct ipoe_session *ses)
{
	struct ipoe_serv *serv = ses->serv;

854 855
	if (ses->serv->opt_ifcfg)
		ipoe_serv_add_addr(ses->serv, ses->siaddr, conf_ip_unnumbered ? 32 : ses->mask);
D
Dmitry Kozlov 已提交
856

857
	if (conf_ip_unnumbered) {
858
		if (iproute_add(serv->ifindex, ses->serv->opt_src ? ses->serv->opt_src : ses->router, ses->yiaddr, 0, conf_proto))
K
Kozlov Dmitry 已提交
859
			log_ppp_warn("ipoe: failed to add route to interface '%s'\n", serv->ifname);
860
	}
861 862 863 864

	ses->ifcfg = 1;
}

D
Dmitry Kozlov 已提交
865
static void ipoe_ifcfg_del(struct ipoe_session *ses, int lock)
866 867
{
	struct ipoe_serv *serv = ses->serv;
D
Dmitry Kozlov 已提交
868

869 870 871
	if (conf_ip_unnumbered) {
		if (iproute_del(serv->ifindex, ses->yiaddr, conf_proto))
			log_ppp_warn("ipoe: failed to delete route from interface '%s'\n", serv->ifname);
K
Kozlov Dmitry 已提交
872
	}
873 874

	if (ses->serv->opt_ifcfg)
875
		ipoe_serv_del_addr(ses->serv, ses->siaddr, lock);
876 877
}

K
Kozlov Dmitry 已提交
878
static void __ipoe_session_activate(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
879
{
880 881
	uint32_t addr;

882 883
	if (ses->terminating)
		return;
D
Dmitry Kozlov 已提交
884

885
	if (ses->ifindex != -1) {
K
Kozlov Dmitry 已提交
886
		addr = 0;
887 888 889 890 891 892
		if (!ses->ses.ipv4) {
			if (ses->serv->opt_mode == MODE_L3) {
				addr = 1;
				ses->ctrl.dont_ifcfg = 1;
			}
		} else if (ses->ses.ipv4->peer_addr != ses->yiaddr)
893
			addr = ses->ses.ipv4->peer_addr;
894 895
		else if (!conf_ip_unnumbered)
			ses->ctrl.dont_ifcfg = 1;
896 897 898 899 900 901 902 903 904 905

		if (ses->dhcpv4_request && ses->serv->opt_mode == MODE_L3) {
			in_addr_t gw;
			iproute_get(ses->router, &gw);
			if (gw)
				iproute_add(0, ses->siaddr, ses->yiaddr, gw, conf_proto);
			else
				iproute_add(0, ses->siaddr, ses->router, gw, conf_proto);
		}

906
		if (ipoe_nl_modify(ses->ifindex, ses->yiaddr, addr, NULL, NULL)) {
907
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
908 909
			return;
		}
K
Kozlov Dmitry 已提交
910
	}
D
Dmitry Kozlov 已提交
911

912 913 914 915 916 917
	if (!ses->ses.ipv4) {
		ses->ses.ipv4 = &ses->ipv4;
		ses->ipv4.owner = NULL;
		ses->ipv4.peer_addr = ses->yiaddr;
		ses->ipv4.addr = ses->siaddr;
	}
D
Dmitry Kozlov 已提交
918

919 920 921
	if (ses->ifindex == -1) {
		if (ses->serv->opt_ifcfg || (ses->serv->opt_mode == MODE_L2))
			ipoe_ifcfg_add(ses);
D
Dmitry Kozlov 已提交
922

923 924 925
		ipoe_nl_add_exclude(ses->yiaddr, 32);

		ses->ctrl.dont_ifcfg = 1;
926
	} else if (ses->ctrl.dont_ifcfg && ses->serv->opt_mode == MODE_L2)
927
		ipaddr_add(ses->ifindex, ses->siaddr, ses->mask);
D
Dmitry Kozlov 已提交
928

929 930
	if (ses->l4_redirect)
		ipoe_change_l4_redirect(ses, 0);
D
Dmitry Kozlov 已提交
931

932 933
	if (ses->serv->opt_mode == MODE_L2 && ses->serv->opt_ipv6 && sock6_fd != -1) {
		ses->ses.ipv6 = ipdb_get_ipv6(&ses->ses);
D
Dmitry Kozlov 已提交
934
		if (!ses->ses.ipv6)
935
			log_ppp_warn("ipoe: no free IPv6 address\n");
D
Dmitry Kozlov 已提交
936
		else if (!ses->ses.ipv6->peer_intf_id)
D
Dmitry Kozlov 已提交
937
			ses->ses.ipv6->peer_intf_id = htobe64(1);
938
	}
939

D
Dmitry Kozlov 已提交
940 941 942 943
	__sync_sub_and_fetch(&stat_starting, 1);
	__sync_add_and_fetch(&stat_active, 1);
	ses->started = 1;

K
Kozlov Dmitry 已提交
944 945
	ap_session_activate(&ses->ses);

946 947
	if (ses->dhcpv4_request) {
		if (ses->ses.state == AP_STATE_ACTIVE)
D
Dmitry Kozlov 已提交
948
			dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
949 950
		else
			dhcpv4_send_nak(ses->serv->dhcpv4, ses->dhcpv4_request);
K
Kozlov Dmitry 已提交
951

952 953 954
		dhcpv4_packet_free(ses->dhcpv4_request);
		ses->dhcpv4_request = NULL;
	}
D
Dmitry Kozlov 已提交
955

K
Kozlov Dmitry 已提交
956
	ses->timer.expire = ipoe_session_timeout;
957
	ses->timer.period = 0;
958
	ses->timer.expire_tv.tv_sec = ses->lease_time;
K
Kozlov Dmitry 已提交
959 960
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);
K
Kozlov Dmitry 已提交
961 962
}

963
static void ipoe_session_activate(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
964
{
965
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);
D
Dmitry Kozlov 已提交
966

967 968 969 970 971 972 973
	if (ses->ses.state == AP_STATE_ACTIVE) {
		ipoe_session_keepalive(pack);
		return;
	}

	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
974

975 976
	ses->dhcpv4_request = pack;

K
Kozlov Dmitry 已提交
977
	if (ses->serv->dhcpv4_relay)
978
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
K
Kozlov Dmitry 已提交
979 980 981 982 983
	else
		__ipoe_session_activate(ses);
}

static void ipoe_session_keepalive(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
984
{
K
Kozlov Dmitry 已提交
985 986 987 988
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
989

K
Kozlov Dmitry 已提交
990 991
	ses->dhcpv4_request = pack;

K
Kozlov Dmitry 已提交
992 993 994 995
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);

	ses->xid = ses->dhcpv4_request->hdr->xid;
D
Dmitry Kozlov 已提交
996

997
	if (/*ses->ses.state == AP_STATE_ACTIVE &&*/ ses->serv->dhcpv4_relay) {
998
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
K
Kozlov Dmitry 已提交
999 1000
		return;
	}
K
Kozlov Dmitry 已提交
1001

K
Kozlov Dmitry 已提交
1002
	if (ses->ses.state == AP_STATE_ACTIVE) {
D
Dmitry Kozlov 已提交
1003
		dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1004
	} else
1005
		dhcpv4_send_nak(ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request);
K
Kozlov Dmitry 已提交
1006 1007 1008 1009

	dhcpv4_packet_free(ses->dhcpv4_request);
	ses->dhcpv4_request = NULL;
}
D
Dmitry Kozlov 已提交
1010

K
Kozlov Dmitry 已提交
1011 1012 1013 1014 1015 1016 1017 1018
static void ipoe_session_decline(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1019

K
Kozlov Dmitry 已提交
1020 1021 1022 1023 1024
	if (pack->msg_type == DHCPDECLINE && ses->serv->dhcpv4_relay)
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, pack, 0, ses->serv->ifname, conf_agent_remote_id);

	dhcpv4_packet_free(pack);

1025
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
K
Kozlov Dmitry 已提交
1026
}
K
Kozlov Dmitry 已提交
1027

K
Kozlov Dmitry 已提交
1028 1029 1030
static void ipoe_session_started(struct ap_session *s)
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);
D
Dmitry Kozlov 已提交
1031

1032
	log_ppp_info1("ipoe: session started\n");
K
Kozlov Dmitry 已提交
1033

K
Kozlov Dmitry 已提交
1034 1035
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);
D
Dmitry Kozlov 已提交
1036

1037 1038 1039 1040 1041 1042 1043 1044
	if (ses->ifindex != -1 && ses->xid) {
		ses->dhcpv4 = dhcpv4_create(ses->ctrl.ctx, ses->ses.ifname, "");
		if (!ses->dhcpv4) {
			//terminate
			return;
		}
		ses->dhcpv4->recv = ipoe_ses_recv_dhcpv4;
	}
K
Kozlov Dmitry 已提交
1045 1046 1047 1048
}

static void ipoe_session_free(struct ipoe_session *ses)
{
D
Dmitry Kozlov 已提交
1049 1050 1051 1052
	if (ses->started)
		__sync_sub_and_fetch(&stat_active, 1);
	else
		__sync_sub_and_fetch(&stat_starting, 1);
D
Dmitry Kozlov 已提交
1053

K
Kozlov Dmitry 已提交
1054 1055
	if (ses->timer.tpd)
		triton_timer_del(&ses->timer);
D
Dmitry Kozlov 已提交
1056

1057
	if (ses->l4_redirect_timer.tpd)
1058
		triton_timer_del(&ses->l4_redirect_timer);
K
Kozlov Dmitry 已提交
1059

K
Kozlov Dmitry 已提交
1060 1061
	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
1062

1063 1064
	if (ses->dhcpv4_relay_reply)
		dhcpv4_packet_free(ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1065

1066 1067
	if (ses->ctrl.called_station_id)
		_free(ses->ctrl.called_station_id);
D
Dmitry Kozlov 已提交
1068

1069 1070
	if (ses->ctrl.calling_station_id)
		_free(ses->ctrl.calling_station_id);
D
Dmitry Kozlov 已提交
1071

1072 1073
	if (ses->l4_redirect_ipset)
		_free(ses->l4_redirect_ipset);
1074

K
Kozlov Dmitry 已提交
1075
	triton_context_unregister(&ses->ctx);
D
Dmitry Kozlov 已提交
1076

K
Kozlov Dmitry 已提交
1077 1078
	if (ses->data)
		_free(ses->data);
D
Dmitry Kozlov 已提交
1079

K
Kozlov Dmitry 已提交
1080 1081 1082 1083 1084 1085
	mempool_free(ses);
}

static void ipoe_session_finished(struct ap_session *s)
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);
1086
	struct unit_cache *uc;
K
Kozlov Dmitry 已提交
1087

1088
	log_ppp_info1("ipoe: session finished\n");
K
Kozlov Dmitry 已提交
1089

1090 1091 1092 1093 1094 1095 1096 1097 1098 1099
	if (ses->ifindex != -1) {
		if (uc_size < conf_unit_cache && ipoe_nl_modify(ses->ifindex, 0, 0, "", NULL)) {
			uc = mempool_alloc(uc_pool);
			uc->ifindex = ses->ifindex;
			pthread_mutex_lock(&uc_lock);
			list_add_tail(&uc->entry, &uc_list);
			++uc_size;
			pthread_mutex_unlock(&uc_lock);
		} else
			ipoe_nl_delete(ses->ifindex);
1100 1101
	} else
		ipoe_nl_del_exclude(ses->yiaddr);
1102

1103
	if (ses->dhcp_addr)
1104
		dhcpv4_put_ip(ses->serv->dhcpv4, ses->yiaddr);
1105

K
Kozlov Dmitry 已提交
1106
	if (ses->relay_addr && ses->serv->dhcpv4_relay)
1107
		dhcpv4_relay_send_release(ses->serv->dhcpv4_relay, ses->hwaddr, ses->xid, ses->yiaddr, ses->client_id, ses->relay_agent, ses->serv->ifname, conf_agent_remote_id);
1108

1109
	if (ses->ifcfg)
D
Dmitry Kozlov 已提交
1110
		ipoe_ifcfg_del(ses, 1);
D
Dmitry Kozlov 已提交
1111

1112 1113
	if (ses->dhcpv4)
		dhcpv4_free(ses->dhcpv4);
1114 1115

	triton_event_fire(EV_CTRL_FINISHED, s);
D
Dmitry Kozlov 已提交
1116

1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139
	if (s->ifindex == ses->serv->ifindex && strcmp(s->ifname, ses->serv->ifname)) {
		struct ifreq ifr;

		strcpy(ifr.ifr_name, s->ifname);

		ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
		ifr.ifr_flags &= ~IFF_UP;
		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);

		strcpy(ifr.ifr_newname, ses->serv->ifname);
		ioctl(sock_fd, SIOCSIFNAME, &ifr);

		strcpy(ifr.ifr_name, ses->serv->ifname);
		ifr.ifr_flags |= IFF_UP;
		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}

	pthread_mutex_lock(&ses->serv->lock);
	list_del(&ses->entry);
	if  ((ses->serv->vid || ses->serv->need_close) && list_empty(&ses->serv->sessions))
		triton_context_call(&ses->serv->ctx, (triton_event_func)ipoe_serv_release, ses->serv);
	pthread_mutex_unlock(&ses->serv->lock);

K
Kozlov Dmitry 已提交
1140 1141 1142
	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_free, ses);
}

1143
static void ipoe_session_terminated(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
1144
{
K
Kozlov Dmitry 已提交
1145
	if (ses->l4_redirect_set)
1146 1147
		ipoe_change_l4_redirect(ses, 1);

1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166
	ap_session_finished(&ses->ses);
}

static void ipoe_session_terminated_pkt(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}

	dhcpv4_send_nak(ses->serv->dhcpv4, pack);

	dhcpv4_packet_free(pack);

	ipoe_session_terminated(ses);
}

1167
static int ipoe_session_terminate(struct ap_session *s, int hard)
1168 1169 1170
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);

1171
	if (hard || !conf_soft_terminate || ses->UP)
1172 1173 1174
		ipoe_session_terminated(ses);
	else
		ses->terminate = 1;
1175 1176

	return 0;
K
Kozlov Dmitry 已提交
1177 1178 1179 1180 1181 1182
}


static void ipoe_session_close(struct triton_context_t *ctx)
{
	struct ipoe_session *ses = container_of(ctx, typeof(*ses), ctx);
D
Dmitry Kozlov 已提交
1183

K
Kozlov Dmitry 已提交
1184 1185 1186 1187 1188 1189
	if (ses->ses.state)
		ap_session_terminate(&ses->ses, TERM_ADMIN_RESET, 1);
	else
		ipoe_session_finished(&ses->ses);
}

1190
static struct ipoe_session *ipoe_session_create_dhcpv4(struct ipoe_serv *serv, struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
1191 1192 1193
{
	struct ipoe_session *ses;
	int dlen = 0;
1194
	uint8_t *ptr = NULL;
D
Dmitry Kozlov 已提交
1195

1196 1197
	ses = ipoe_session_alloc();
	if (!ses)
K
Kozlov Dmitry 已提交
1198 1199 1200 1201
		return NULL;

	ses->serv = serv;
	ses->dhcpv4_request = pack;
1202 1203 1204

	if (!serv->opt_shared)
		strncpy(ses->ses.ifname, serv->ifname, AP_IFNAME_LEN);
D
Dmitry Kozlov 已提交
1205

K
Kozlov Dmitry 已提交
1206 1207 1208
	ses->xid = pack->hdr->xid;
	memcpy(ses->hwaddr, pack->hdr->chaddr, 6);
	ses->giaddr = pack->hdr->giaddr;
K
Kozlov Dmitry 已提交
1209
	ses->lease_time = conf_lease_time;
D
Dmitry Kozlov 已提交
1210
	ses->renew_time = conf_renew_time;
K
Kozlov Dmitry 已提交
1211 1212

	if (pack->client_id)
K
Kozlov Dmitry 已提交
1213
		dlen += sizeof(struct dhcpv4_option) + pack->client_id->len;
D
Dmitry Kozlov 已提交
1214

K
Kozlov Dmitry 已提交
1215 1216
	if (pack->relay_agent)
		dlen += sizeof(struct dhcpv4_option) + pack->relay_agent->len;
D
Dmitry Kozlov 已提交
1217

K
Kozlov Dmitry 已提交
1218 1219 1220 1221 1222 1223 1224 1225 1226 1227 1228
	if (dlen) {
		ses->data = _malloc(dlen);
		if (!ses->data) {
			log_emerg("out of memery\n");
			mempool_free(ses);
			return NULL;
		}
		ptr = ses->data;
	}

	if (pack->client_id) {
K
Kozlov Dmitry 已提交
1229
		ses->client_id = (struct dhcpv4_option *)ptr;
K
Kozlov Dmitry 已提交
1230
		ses->client_id->len = pack->client_id->len;
1231
		ses->client_id->data = (uint8_t *)(ses->client_id + 1);
K
Kozlov Dmitry 已提交
1232
		memcpy(ses->client_id->data, pack->client_id->data, pack->client_id->len);
K
Kozlov Dmitry 已提交
1233 1234
		ptr += sizeof(struct dhcpv4_option) + pack->client_id->len;
	}
D
Dmitry Kozlov 已提交
1235

K
Kozlov Dmitry 已提交
1236 1237 1238
	if (pack->relay_agent) {
		ses->relay_agent = (struct dhcpv4_option *)ptr;
		ses->relay_agent->len = pack->relay_agent->len;
1239
		ses->relay_agent->data = (uint8_t *)(ses->relay_agent + 1);
K
Kozlov Dmitry 已提交
1240 1241 1242 1243
		memcpy(ses->relay_agent->data, pack->relay_agent->data, pack->relay_agent->len);
		ptr += sizeof(struct dhcpv4_option) + pack->relay_agent->len;
		if (dhcpv4_parse_opt82(ses->relay_agent, &ses->agent_circuit_id, &ses->agent_remote_id))
			ses->relay_agent = NULL;
K
Kozlov Dmitry 已提交
1244 1245
	}

1246
	ses->ctrl.dont_ifcfg = 1;
D
Dmitry Kozlov 已提交
1247

K
Kozlov Dmitry 已提交
1248
	ses->ctrl.calling_station_id = _malloc(19);
1249
	ses->ctrl.called_station_id = _strdup(serv->ifname);
D
Dmitry Kozlov 已提交
1250

K
Kozlov Dmitry 已提交
1251 1252 1253
	ptr = ses->hwaddr;
	sprintf(ses->ctrl.calling_station_id, "%02x:%02x:%02x:%02x:%02x:%02x",
		ptr[0], ptr[1], ptr[2], ptr[3], ptr[4], ptr[5]);
D
Dmitry Kozlov 已提交
1254

K
Kozlov Dmitry 已提交
1255 1256 1257
	ses->ses.ctrl = &ses->ctrl;
	ses->ses.chan_name = ses->ctrl.calling_station_id;

1258 1259 1260
	if (conf_ip_pool)
		ses->ses.ipv4_pool_name = _strdup(conf_ip_pool);

K
Kozlov Dmitry 已提交
1261 1262 1263 1264 1265 1266 1267
	triton_context_register(&ses->ctx, &ses->ses);

	triton_context_wakeup(&ses->ctx);

	//pthread_mutex_lock(&serv->lock);
	list_add_tail(&ses->entry, &serv->sessions);
	//pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
1268

D
Dmitry Kozlov 已提交
1269 1270
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);
D
Dmitry Kozlov 已提交
1271

1272
	dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1273 1274 1275 1276 1277 1278

	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_start, ses);

	return ses;
}

1279
static void __ipoe_session_terminate(struct ap_session *s)
K
Kozlov Dmitry 已提交
1280
{
1281 1282 1283 1284 1285 1286
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);

	if (ses->terminate)
		ipoe_session_terminated(ses);
	else
		ap_session_terminate(s, TERM_USER_REQUEST, 1);
K
Kozlov Dmitry 已提交
1287 1288
}

1289 1290 1291
static void ipoe_ses_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(dhcpv4->ctx, typeof(*ses), ctx);
K
Kozlov Dmitry 已提交
1292 1293 1294
	int opt82_match;
	uint8_t *agent_circuit_id = NULL;
	uint8_t *agent_remote_id = NULL;
1295 1296 1297

	if (ap_shutdown)
		return;
D
Dmitry Kozlov 已提交
1298

1299 1300
	if (conf_verbose) {
		log_ppp_info2("recv ");
1301
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
1302
	}
K
Kozlov Dmitry 已提交
1303

1304 1305 1306 1307 1308 1309 1310
	if (ses->terminate) {
		if (pack->msg_type != DHCPDISCOVER)
			dhcpv4_send_nak(dhcpv4, pack);
		triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_terminated, ses);
		return;
	}

K
Kozlov Dmitry 已提交
1311 1312 1313 1314 1315
	if (pack->relay_agent && dhcpv4_parse_opt82(pack->relay_agent, &agent_circuit_id, &agent_remote_id)) {
		agent_circuit_id = NULL;
		agent_remote_id = NULL;
	}

1316
	opt82_match = pack->relay_agent != NULL;
D
Dmitry Kozlov 已提交
1317

1318
	if (agent_circuit_id && !ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
1319
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1320

K
Kozlov Dmitry 已提交
1321 1322
	if (opt82_match && agent_remote_id && !ses->agent_remote_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1323

K
Kozlov Dmitry 已提交
1324 1325
	if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1326

K
Kozlov Dmitry 已提交
1327 1328
	if (opt82_match && !agent_remote_id && ses->agent_remote_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1329

K
Kozlov Dmitry 已提交
1330 1331 1332
	if (opt82_match && agent_circuit_id) {
		if (*agent_circuit_id != *ses->agent_circuit_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
1333

K
Kozlov Dmitry 已提交
1334 1335 1336
		if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
			opt82_match = 0;
	}
D
Dmitry Kozlov 已提交
1337

K
Kozlov Dmitry 已提交
1338 1339 1340 1341 1342 1343 1344 1345
	if (opt82_match && agent_remote_id) {
		if (*agent_remote_id != *ses->agent_remote_id)
			opt82_match = 0;

		if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
			opt82_match = 0;
	}

1346
	if (conf_check_mac_change && pack->relay_agent && !opt82_match) {
K
Kozlov Dmitry 已提交
1347 1348 1349 1350 1351 1352
		log_ppp_info2("port change detected\n");
		if (pack->msg_type == DHCPREQUEST)
			dhcpv4_send_nak(dhcpv4, pack);
		triton_context_call(ses->ctrl.ctx, (triton_event_func)__ipoe_session_terminate, &ses->ses);
		return;
	}
D
Dmitry Kozlov 已提交
1353

1354 1355 1356 1357
	if (pack->msg_type == DHCPDISCOVER) {
		if (ses->yiaddr) {
			if (ses->serv->dhcpv4_relay) {
				dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1358
				ipoe_session_keepalive(pack);
1359
			} else
D
Dmitry Kozlov 已提交
1360
				dhcpv4_send_reply(DHCPOFFER, dhcpv4, pack, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
1361 1362
		}
	} else if (pack->msg_type == DHCPREQUEST) {
D
Dmitry Kozlov 已提交
1363
		ses->xid = pack->hdr->xid;
1364 1365 1366 1367 1368 1369 1370 1371 1372
		if (pack->hdr->ciaddr == ses->yiaddr && pack->hdr->xid != ses->xid)
			ses->xid = pack->hdr->xid;
		if ((pack->server_id && (pack->server_id != ses->siaddr || pack->request_ip != ses->yiaddr)) ||
			(pack->hdr->ciaddr && (pack->hdr->xid != ses->xid || pack->hdr->ciaddr != ses->yiaddr))) {

			if (pack->server_id == ses->siaddr)
				dhcpv4_send_nak(dhcpv4, pack);
			else if (ses->serv->dhcpv4_relay)
				dhcpv4_relay_send(ses->serv->dhcpv4_relay, pack, 0, ses->serv->ifname, conf_agent_remote_id);
D
Dmitry Kozlov 已提交
1373

K
Kozlov Dmitry 已提交
1374
			triton_context_call(ses->ctrl.ctx, (triton_event_func)__ipoe_session_terminate, &ses->ses);
1375 1376 1377 1378 1379 1380
		} else {
			dhcpv4_packet_ref(pack);
			ipoe_session_keepalive(pack);
		}
	} else if (pack->msg_type == DHCPDECLINE || pack->msg_type == DHCPRELEASE) {
		dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1381
		triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_decline, pack);
1382 1383 1384
	}
}

1385 1386 1387 1388 1389 1390 1391 1392
static void ipoe_ses_recv_dhcpv4_discover(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1393

1394
	if (ses->yiaddr)
D
Dmitry Kozlov 已提交
1395
		dhcpv4_send_reply(DHCPOFFER, ses->dhcpv4 ?: ses->serv->dhcpv4, pack, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1396

1397 1398 1399 1400 1401 1402 1403 1404
	dhcpv4_packet_free(pack);
}

static void ipoe_ses_recv_dhcpv4_request(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	ses->xid = pack->hdr->xid;
D
Dmitry Kozlov 已提交
1405

1406 1407 1408 1409
	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1410

1411 1412 1413 1414 1415 1416
	if ((pack->server_id && (pack->server_id != ses->siaddr || pack->request_ip != ses->yiaddr)) ||
		(pack->hdr->ciaddr && (pack->hdr->ciaddr != ses->yiaddr))) {

		if (pack->server_id == ses->siaddr)
			dhcpv4_send_nak(ses->serv->dhcpv4, pack);

1417
		ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1418 1419 1420 1421 1422 1423 1424 1425 1426 1427 1428 1429 1430

		dhcpv4_packet_free(pack);
		return;
	}

	if (ses->ses.state == AP_STATE_STARTING && ses->yiaddr)
		ipoe_session_activate(pack);
	else if (ses->ses.state == AP_STATE_ACTIVE)
		ipoe_session_keepalive(pack);
	else
		dhcpv4_packet_free(pack);
}

D
Dmitry Kozlov 已提交
1431 1432 1433 1434 1435 1436 1437 1438
static void ipoe_serv_disc_timer(struct triton_timer_t *t)
{
	struct ipoe_serv *serv = container_of(t, typeof(*serv), disc_timer);
	struct disc_item *d;
	struct timespec ts;
	int delay, offer_delay;

	clock_gettime(CLOCK_MONOTONIC, &ts);
D
Dmitry Kozlov 已提交
1439 1440

	while (!list_empty(&serv->disc_list)) {
D
Dmitry Kozlov 已提交
1441
	  d = list_entry(serv->disc_list.next, typeof(*d), entry);
D
Dmitry Kozlov 已提交
1442

D
Dmitry Kozlov 已提交
1443 1444 1445 1446 1447 1448 1449 1450 1451 1452
		delay = (ts.tv_sec - d->ts.tv_sec) * 1000 + (ts.tv_nsec - d->ts.tv_nsec) / 1000000;
		offer_delay = get_offer_delay();

		if (delay < offer_delay - 1) {
			delay = offer_delay - delay;
			t->expire_tv.tv_sec = delay / 1000;
			t->expire_tv.tv_usec = (delay % 1000) * 1000;
			triton_timer_mod(t, 0);
			return;
		}
D
Dmitry Kozlov 已提交
1453

D
Dmitry Kozlov 已提交
1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471
		__ipoe_recv_dhcpv4(serv->dhcpv4, d->pack, 1);

		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);

		__sync_sub_and_fetch(&stat_delayed_offer, 1);
	}

	triton_timer_del(t);
}

static void ipoe_serv_add_disc(struct ipoe_serv *serv, struct dhcpv4_packet *pack, int offer_delay)
{
	struct disc_item *d = mempool_alloc(disc_item_pool);

	if (!d)
		return;
D
Dmitry Kozlov 已提交
1472

D
Dmitry Kozlov 已提交
1473
	__sync_add_and_fetch(&stat_delayed_offer, 1);
D
Dmitry Kozlov 已提交
1474

D
Dmitry Kozlov 已提交
1475 1476 1477 1478
	dhcpv4_packet_ref(pack);
	d->pack = pack;
	clock_gettime(CLOCK_MONOTONIC, &d->ts);
	list_add_tail(&d->entry, &serv->disc_list);
D
Dmitry Kozlov 已提交
1479

D
Dmitry Kozlov 已提交
1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496
	if (!serv->disc_timer.tpd) {
		serv->disc_timer.expire_tv.tv_sec = offer_delay / 1000;
		serv->disc_timer.expire_tv.tv_usec = (offer_delay % 1000) * 1000;
		triton_timer_add(&serv->ctx, &serv->disc_timer, 0);
	}
}

static void ipoe_serv_check_disc(struct ipoe_serv *serv, struct dhcpv4_packet *pack)
{
	struct disc_item *d;

	list_for_each_entry(d, &serv->disc_list, entry) {
		if (d->pack->hdr->xid != pack->hdr->xid)
			continue;

		if (memcmp(d->pack->hdr->chaddr, pack->hdr->chaddr, ETH_ALEN))
			continue;
D
Dmitry Kozlov 已提交
1497

D
Dmitry Kozlov 已提交
1498 1499 1500
		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);
D
Dmitry Kozlov 已提交
1501

D
Dmitry Kozlov 已提交
1502
		__sync_sub_and_fetch(&stat_delayed_offer, 1);
D
Dmitry Kozlov 已提交
1503

D
Dmitry Kozlov 已提交
1504 1505 1506 1507
		break;
	}
}

1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530 1531 1532 1533
static int ipoe_serv_request_check(struct ipoe_serv *serv, uint32_t xid)
{
	struct request_item *r;
	struct list_head *pos, *n;
	struct timespec ts;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	list_for_each_safe(pos, n, &serv->req_list) {
		r = list_entry(pos, typeof(*r), entry);
		if (r->xid == xid) {
			if (++r->cnt == conf_max_request) {
				list_del(&r->entry);
				mempool_free(r);
				return 1;
			}

			r->expire = ts.tv_sec + 30;
			return 0;
		}

		if (ts.tv_sec > r->expire) {
			list_del(&r->entry);
			mempool_free(r);
		}
	}
D
Dmitry Kozlov 已提交
1534

1535 1536 1537 1538 1539 1540 1541 1542 1543
	r = mempool_alloc(req_item_pool);
	r->xid = xid;
	r->expire = ts.tv_sec + 30;
	r->cnt = 0;
	list_add_tail(&r->entry, &serv->req_list);

	return 0;
}

1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556
static void port_change_detected(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}

	dhcpv4_packet_free(pack);

	log_ppp_warn("port change detected\n");

1557
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1558
}
D
Dmitry Kozlov 已提交
1559

1560 1561 1562 1563 1564 1565 1566 1567
static void mac_change_detected(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1568

1569
	dhcpv4_packet_free(pack);
D
Dmitry Kozlov 已提交
1570

1571
	log_ppp_warn("mac change detected\n");
D
Dmitry Kozlov 已提交
1572

1573
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1574 1575
}

D
Dmitry Kozlov 已提交
1576
static void __ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack, int force)
K
Kozlov Dmitry 已提交
1577 1578
{
	struct ipoe_serv *serv = container_of(dhcpv4->ctx, typeof(*serv), ctx);
K
Kozlov Dmitry 已提交
1579
	struct ipoe_session *ses, *opt82_ses;
D
Dmitry Kozlov 已提交
1580
	int offer_delay;
K
Kozlov Dmitry 已提交
1581 1582
	//struct dhcpv4_packet *reply;

D
Dmitry Kozlov 已提交
1583 1584 1585
	if (serv->timer.tpd)
		triton_timer_mod(&serv->timer, 0);

1586 1587
	if (ap_shutdown)
		return;
D
Dmitry Kozlov 已提交
1588

1589
	if (connlimit_loaded && pack->msg_type == DHCPDISCOVER && connlimit_check(serv->opt_shared ? cl_key_from_mac(pack->hdr->chaddr) : serv->ifindex))
1590
		return;
1591

K
Kozlov Dmitry 已提交
1592 1593
	pthread_mutex_lock(&serv->lock);
	if (pack->msg_type == DHCPDISCOVER) {
K
Kozlov Dmitry 已提交
1594
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1595
		if (!ses) {
1596 1597
			if (serv->opt_shared == 0)
				ipoe_drop_sessions(serv, NULL);
K
Kozlov Dmitry 已提交
1598
			else if (opt82_ses) {
1599 1600
				dhcpv4_packet_ref(pack);
				triton_context_call(&opt82_ses->ctx, (triton_event_func)mac_change_detected, pack);
K
Kozlov Dmitry 已提交
1601
			}
1602

D
Dmitry Kozlov 已提交
1603 1604 1605 1606 1607 1608 1609 1610 1611
			offer_delay = get_offer_delay();
			if (offer_delay == -1)
				goto out;

			if (offer_delay && !force) {
				ipoe_serv_add_disc(serv, pack, offer_delay);
				goto out;
			}

1612
			ses = ipoe_session_create_dhcpv4(serv, pack);
K
Kozlov Dmitry 已提交
1613
		}	else {
1614 1615 1616 1617 1618
			if (ses->terminate) {
				triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_terminated, ses);
				goto out;
			}

1619
			if (conf_check_mac_change && ((opt82_ses && ses != opt82_ses) || (!opt82_ses && pack->relay_agent))) {
1620 1621 1622 1623
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)port_change_detected, pack);
				if (opt82_ses)
					triton_context_call(&opt82_ses->ctx, (triton_event_func)__ipoe_session_terminate, &opt82_ses->ses);
K
Kozlov Dmitry 已提交
1624 1625
				goto out;
			}
D
Dmitry Kozlov 已提交
1626

1627 1628
			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_discover, pack);
K
Kozlov Dmitry 已提交
1629 1630
		}
	} else if (pack->msg_type == DHCPREQUEST) {
D
Dmitry Kozlov 已提交
1631
		ipoe_serv_check_disc(serv, pack);
D
Dmitry Kozlov 已提交
1632

K
Kozlov Dmitry 已提交
1633
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1634 1635 1636

		if (!ses) {
			if (conf_verbose) {
1637
				log_debug("%s: recv ", serv->ifname);
D
Dmitry Kozlov 已提交
1638
				dhcpv4_print_packet(pack, 0, log_debug);
K
Kozlov Dmitry 已提交
1639
			}
D
Dmitry Kozlov 已提交
1640

1641 1642 1643 1644
			if (!pack->server_id)
				dhcpv4_send_nak(dhcpv4, pack);

			if (serv->opt_shared == 0)
1645
				ipoe_drop_sessions(serv, NULL);
1646
			else if (opt82_ses) {
1647 1648
				dhcpv4_packet_ref(pack);
				triton_context_call(&opt82_ses->ctx, (triton_event_func)mac_change_detected, pack);
1649 1650
			} else if (list_empty(&conf_offer_delay) || ipoe_serv_request_check(serv, pack->hdr->xid))
				dhcpv4_send_nak(dhcpv4, pack);
K
Kozlov Dmitry 已提交
1651
		} else {
1652 1653 1654 1655 1656 1657
			if (ses->terminate) {
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_terminated_pkt, pack);
				goto out;
			}

1658
			if (conf_check_mac_change && ((opt82_ses && ses != opt82_ses) || (!opt82_ses && pack->relay_agent))) {
1659 1660 1661 1662 1663
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)port_change_detected, pack);
				if (opt82_ses)
					triton_context_call(&opt82_ses->ctx, (triton_event_func)__ipoe_session_terminate, &opt82_ses->ses);
				goto out;
K
Kozlov Dmitry 已提交
1664
			}
D
Dmitry Kozlov 已提交
1665

1666 1667 1668 1669 1670
			if (serv->opt_shared == 0)
				ipoe_drop_sessions(serv, ses);

			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_request, pack);
K
Kozlov Dmitry 已提交
1671 1672
		}
	} else if (pack->msg_type == DHCPDECLINE || pack->msg_type == DHCPRELEASE) {
K
Kozlov Dmitry 已提交
1673
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1674
		if (ses) {
D
Dmitry Kozlov 已提交
1675
			ses->xid = pack->hdr->xid;
K
Kozlov Dmitry 已提交
1676 1677
			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_decline, pack);
K
Kozlov Dmitry 已提交
1678
		}
K
Kozlov Dmitry 已提交
1679
	}
K
Kozlov Dmitry 已提交
1680 1681

out:
K
Kozlov Dmitry 已提交
1682 1683 1684
	pthread_mutex_unlock(&serv->lock);
}

D
Dmitry Kozlov 已提交
1685 1686 1687 1688 1689
static void ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack)
{
	__ipoe_recv_dhcpv4(dhcpv4, pack, 0);
}

K
Kozlov Dmitry 已提交
1690 1691 1692 1693 1694 1695 1696 1697 1698
static int parse_dhcpv4_mask(uint32_t mask)
{
	int i;

	for (i = 31; i >= 0 && (mask & (1 << i)); i--);

	return 32 - (i + 1);
}

1699
static void ipoe_ses_recv_dhcpv4_relay(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
1700
{
1701
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);
K
Kozlov Dmitry 已提交
1702 1703
	struct dhcpv4_option *opt;

1704 1705
	if (ses->dhcpv4_relay_reply)
		dhcpv4_packet_free(ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1706

1707 1708 1709 1710 1711
	if (!ses->dhcpv4_request) {
		ses->dhcpv4_relay_reply = NULL;
		return;
	}

1712 1713
	ses->dhcpv4_relay_reply = pack;

K
Kozlov Dmitry 已提交
1714 1715 1716 1717 1718
	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 1, log_ppp_info2);
	}

1719 1720 1721
	opt = dhcpv4_packet_find_opt(pack, 51);
	if (opt)
		ses->lease_time = ntohl(*(uint32_t *)opt->data);
K
Kozlov Dmitry 已提交
1722

D
Dmitry Kozlov 已提交
1723 1724 1725 1726
	opt = dhcpv4_packet_find_opt(pack, 58);
	if (opt)
		ses->renew_time = ntohl(*(uint32_t *)opt->data);

1727 1728 1729
	opt = dhcpv4_packet_find_opt(pack, 1);
	if (opt)
		ses->mask = parse_dhcpv4_mask(ntohl(*(uint32_t *)opt->data));
K
Kozlov Dmitry 已提交
1730

1731 1732 1733 1734
	opt = dhcpv4_packet_find_opt(pack, 3);
	if (opt)
		ses->router = *(uint32_t *)opt->data;

1735 1736 1737
	if (pack->msg_type == DHCPOFFER) {
		if (ses->ses.state == AP_STATE_STARTING) {
			triton_timer_del(&ses->timer);
K
Kozlov Dmitry 已提交
1738

1739 1740 1741 1742 1743 1744 1745 1746 1747
			ses->relay_server_id = pack->server_id;

			if (!ses->yiaddr) {
				ses->yiaddr = pack->hdr->yiaddr;
				ses->relay_addr = 1;
			}

			__ipoe_session_start(ses);
		} else
D
Dmitry Kozlov 已提交
1748
			dhcpv4_send_reply(DHCPOFFER, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1749 1750 1751 1752
	} else if (pack->msg_type == DHCPACK) {
		if (ses->ses.state == AP_STATE_STARTING)
			__ipoe_session_activate(ses);
		else
D
Dmitry Kozlov 已提交
1753
			dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1754 1755

	} else if (pack->msg_type == DHCPNAK) {
1756
		dhcpv4_send_nak(ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request);
1757
		ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
1758 1759
		return;
	}
D
Dmitry Kozlov 已提交
1760

K
Kozlov Dmitry 已提交
1761 1762 1763 1764 1765 1766 1767 1768 1769 1770 1771 1772
	dhcpv4_packet_free(ses->dhcpv4_relay_reply);
	ses->dhcpv4_relay_reply = NULL;
}

static void ipoe_recv_dhcpv4_relay(struct dhcpv4_packet *pack)
{
	struct ipoe_serv *serv = container_of(triton_context_self(), typeof(*serv), ctx);
	struct ipoe_session *ses;
	int found = 0;
	//struct dhcpv4_packet *reply;

	if (ap_shutdown) {
K
Kozlov Dmitry 已提交
1773
		dhcpv4_packet_free(pack);
K
Kozlov Dmitry 已提交
1774 1775 1776 1777 1778 1779 1780 1781 1782 1783 1784 1785
		return;
	}

	pthread_mutex_lock(&serv->lock);
	list_for_each_entry(ses, &serv->sessions, entry) {
		if (ses->xid != pack->hdr->xid)
			continue;
		if (memcmp(ses->hwaddr, pack->hdr->chaddr, 6))
			continue;

		found = 1;
		break;
K
Kozlov Dmitry 已提交
1786
	}
D
Dmitry Kozlov 已提交
1787

1788 1789
	if (found) {
		triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_relay, pack);
K
Kozlov Dmitry 已提交
1790 1791 1792
	} else
		dhcpv4_packet_free(pack);

K
Kozlov Dmitry 已提交
1793 1794 1795
	pthread_mutex_unlock(&serv->lock);
}

K
Kozlov Dmitry 已提交
1796

1797 1798 1799
static struct ipoe_session *ipoe_session_create_up(struct ipoe_serv *serv, struct ethhdr *eth, struct iphdr *iph)
{
	struct ipoe_session *ses;
1800
	uint8_t *hwaddr = eth->h_source;
1801

1802 1803
	if (ap_shutdown)
		return NULL;
D
Dmitry Kozlov 已提交
1804

1805 1806
	if (l4_redirect_list_check(iph->saddr))
		return NULL;
D
Dmitry Kozlov 已提交
1807

1808 1809
	ses = ipoe_session_alloc();
	if (!ses)
1810 1811 1812 1813
		return NULL;

	ses->serv = serv;
	memcpy(ses->hwaddr, eth->h_source, 6);
1814
	ses->yiaddr = iph->saddr;
1815
	ses->UP = 1;
K
Kozlov Dmitry 已提交
1816

1817
	ses->ctrl.called_station_id = _strdup(serv->ifname);
1818

1819 1820 1821 1822 1823 1824 1825 1826
	if (conf_calling_sid == SID_MAC) {
		ses->ctrl.calling_station_id = _malloc(19);
		sprintf(ses->ctrl.calling_station_id, "%02x:%02x:%02x:%02x:%02x:%02x",
				hwaddr[0], hwaddr[1], hwaddr[2], hwaddr[3], hwaddr[4], hwaddr[5]);
	} else {
		ses->ctrl.calling_station_id = _malloc(17);
		u_inet_ntoa(iph->saddr, ses->ctrl.calling_station_id);
	}
1827

1828 1829 1830 1831 1832 1833
	if (ses->serv->opt_username == USERNAME_IFNAME)
		ses->username = _strdup(serv->ifname);
	else {
		ses->username = _malloc(17);
		u_inet_ntoa(iph->saddr, ses->username);
	}
D
Dmitry Kozlov 已提交
1834

1835
	ses->ses.chan_name = ses->ctrl.calling_station_id;
D
Dmitry Kozlov 已提交
1836

1837 1838
	if (conf_ip_pool)
		ses->ses.ipv4_pool_name = _strdup(conf_ip_pool);
D
Dmitry Kozlov 已提交
1839

1840 1841 1842 1843 1844 1845 1846 1847
	triton_context_register(&ses->ctx, &ses->ses);

	triton_context_wakeup(&ses->ctx);

	//pthread_mutex_lock(&serv->lock);
	list_add_tail(&ses->entry, &serv->sessions);
	//pthread_mutex_unlock(&serv->lock);

D
Dmitry Kozlov 已提交
1848 1849 1850
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);

1851 1852 1853 1854 1855
	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_start, ses);

	return ses;
}

1856 1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870
struct ipoe_session *ipoe_session_alloc(void)
{
	struct ipoe_session *ses;

	ses = mempool_alloc(ses_pool);
	if (!ses) {
		log_emerg("out of memery\n");
		return NULL;
	}

	memset(ses, 0, sizeof(*ses));

	ap_session_init(&ses->ses);

	ses->ifindex = -1;
D
Dmitry Kozlov 已提交
1871

1872 1873 1874 1875 1876 1877 1878 1879
	ses->ctx.before_switch = log_switch;
	ses->ctx.close = ipoe_session_close;
	ses->ctrl.ctx = &ses->ctx;
	ses->ctrl.started = ipoe_session_started;
	ses->ctrl.finished = ipoe_session_finished;
	ses->ctrl.terminate = ipoe_session_terminate;
	ses->ctrl.type = CTRL_TYPE_IPOE;
	ses->ctrl.name = "ipoe";
1880
	ses->l4_redirect_table = conf_l4_redirect_table;
1881 1882

	ses->ses.ctrl = &ses->ctrl;
D
Dmitry Kozlov 已提交
1883

1884 1885 1886
	ses->ses.idle_timeout = conf_idle_timeout;
	ses->ses.session_timeout = conf_session_timeout;

1887 1888 1889
	return ses;
}

1890 1891 1892 1893 1894 1895 1896 1897
void ipoe_recv_up(int ifindex, struct ethhdr *eth, struct iphdr *iph)
{
	struct ipoe_serv *serv;
	struct ipoe_session *ses;

	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->ifindex != ifindex)
			continue;
K
Kozlov Dmitry 已提交
1898 1899 1900

		if (!serv->opt_up)
			return;
D
Dmitry Kozlov 已提交
1901

1902 1903
		pthread_mutex_lock(&serv->lock);
		list_for_each_entry(ses, &serv->sessions, entry) {
1904
			if (ses->yiaddr == iph->saddr) {
1905 1906 1907 1908 1909
				pthread_mutex_unlock(&serv->lock);
				return;
			}
		}
		pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
1910

1911
		ipoe_session_create_up(serv, eth, iph);
1912 1913

		break;
1914 1915 1916
	}
}

1917 1918 1919 1920 1921
#ifdef RADIUS
static void ev_radius_access_accept(struct ev_radius_t *ev)
{
	struct ipoe_session *ses = container_of(ev->ses, typeof(*ses), ses);
	struct rad_attr_t *attr;
1922
	int lease_time_set = 0, renew_time_set = 0;
1923 1924 1925 1926 1927 1928 1929 1930

	if (ev->ses->ctrl->type != CTRL_TYPE_IPOE)
		return;

	list_for_each_entry(attr, &ev->reply->attrs, entry) {
		if (attr->attr->id == conf_attr_dhcp_client_ip)
			ses->yiaddr = attr->val.ipaddr;
		else if (attr->attr->id == conf_attr_dhcp_router_ip)
1931
			ses->router = attr->val.ipaddr;
1932
		else if (attr->attr->id == conf_attr_dhcp_mask) {
1933 1934 1935 1936
			if (attr->attr->type == ATTR_TYPE_INTEGER) {
				if (attr->val.integer > 0 && attr->val.integer < 31)
					ses->mask = attr->val.integer;
			} else if (attr->attr->type == ATTR_TYPE_IPADDR) {
1937 1938 1939
				if (attr->val.ipaddr == 0xffffffff)
					ses->mask = 32;
				else
1940
#if __BYTE_ORDER == __LITTLE_ENDIAN
1941
				ses->mask = 31 - ffs(htonl(attr->val.ipaddr));
1942
#else
1943
				ses->mask = 31 - ffs(attr->val.ipaddr);
1944 1945
#endif
			}
1946 1947 1948 1949 1950 1951
		} else if (attr->attr->id == conf_attr_l4_redirect) {
			if (attr->attr->type == ATTR_TYPE_STRING) {
				if (attr->len && attr->val.string[0] != '0')
					ses->l4_redirect = 1;
			} else if (attr->val.integer != 0)
				ses->l4_redirect = 1;
1952
		} else if (attr->attr->id == conf_attr_dhcp_lease_time) {
1953
			ses->lease_time = attr->val.integer;
1954 1955
			lease_time_set = 1;
		}	else if (attr->attr->id == conf_attr_dhcp_renew_time) {
D
Dmitry Kozlov 已提交
1956
			ses->renew_time = attr->val.integer;
1957 1958
			renew_time_set = 1;
		} else if (attr->attr->id == conf_attr_l4_redirect_table)
1959 1960 1961 1962 1963
			ses->l4_redirect_table = attr->val.integer;
		else if (attr->attr->id == conf_attr_l4_redirect_ipset) {
			if (attr->attr->type == ATTR_TYPE_STRING)
				ses->l4_redirect_ipset = _strdup(attr->val.string);
		}
1964
	}
1965 1966 1967 1968 1969 1970 1971

	if (lease_time_set && !renew_time_set)
		ses->renew_time = ses->lease_time / 2;
	else if (renew_time_set && ses->renew_time > ses->lease_time) {
		log_ppp_warn("ipoe: overriding renew time\n");
		ses->renew_time = ses->lease_time / 2;
	}
1972 1973 1974 1975 1976 1977 1978
}

static void ev_radius_coa(struct ev_radius_t *ev)
{
	struct ipoe_session *ses = container_of(ev->ses, typeof(*ses), ses);
	struct rad_attr_t *attr;
	int l4_redirect;
1979
	int lease_time_set = 0, renew_time_set = 0;
D
Dmitry Kozlov 已提交
1980

1981 1982
	if (ev->ses->ctrl->type != CTRL_TYPE_IPOE)
		return;
D
Dmitry Kozlov 已提交
1983

1984 1985 1986 1987 1988 1989 1990 1991 1992 1993 1994
	l4_redirect = ses->l4_redirect;

	list_for_each_entry(attr, &ev->request->attrs, entry) {
		if (attr->attr->id == conf_attr_l4_redirect) {
			if (attr->attr->type == ATTR_TYPE_STRING)
				ses->l4_redirect = attr->len && attr->val.string[0] != '0';
			else
				ses->l4_redirect = ((unsigned int)attr->val.integer) > 0;
		} else if (strcmp(attr->attr->name, "Framed-IP-Address") == 0) {
			if (ses->ses.ipv4 && ses->ses.ipv4->peer_addr != attr->val.ipaddr)
				ipoe_change_addr(ses, attr->val.ipaddr);
1995
		} else if (attr->attr->id == conf_attr_dhcp_lease_time) {
1996
			ses->lease_time = attr->val.integer;
1997 1998
			lease_time_set = 1;
		} else if (attr->attr->id == conf_attr_dhcp_renew_time) {
D
Dmitry Kozlov 已提交
1999
			ses->renew_time = attr->val.integer;
2000 2001
			renew_time_set = 1;
		} else if (attr->attr->id == conf_attr_l4_redirect_table)
2002 2003 2004 2005 2006 2007 2008 2009 2010
			ses->l4_redirect_table = attr->val.integer;
		else if (attr->attr->id == conf_attr_l4_redirect_ipset) {
			if (attr->attr->type == ATTR_TYPE_STRING) {
				if (ses->l4_redirect_ipset && strcmp(ses->l4_redirect_ipset, attr->val.string)) {
					_free(ses->l4_redirect_ipset);
					ses->l4_redirect_ipset = _strdup(attr->val.string);
				}
			}
		}
2011 2012
	}

2013 2014 2015 2016 2017 2018 2019
	if (lease_time_set && !renew_time_set)
		ses->renew_time = ses->lease_time / 2;
	else if (renew_time_set && ses->renew_time > ses->lease_time) {
		log_ppp_warn("ipoe: overriding renew time\n");
		ses->renew_time = ses->lease_time / 2;
	}

2020
	//if (l4_redirect && !ses->l4_redirect) || (!l4_redirect && ses->l4_redirect))
K
Kozlov Dmitry 已提交
2021
	if (l4_redirect != ses->l4_redirect && ev->ses->state == AP_STATE_ACTIVE)
2022 2023
		ipoe_change_l4_redirect(ses, l4_redirect);
}
2024

2025
static int ipoe_rad_send_acct_request(struct rad_plugin_t *rad, struct rad_packet_t *pack)
2026 2027 2028 2029 2030
{
	struct ipoe_session *ses = container_of(rad, typeof(*ses), radius);

	if (!ses->relay_agent)
		return 0;
D
Dmitry Kozlov 已提交
2031

2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044
	if (conf_attr_dhcp_opt82 &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82, ses->relay_agent->data, ses->relay_agent->len))
		return -1;

	if (conf_attr_dhcp_opt82_remote_id && ses->agent_remote_id &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82_remote_id, ses->agent_remote_id + 1, *ses->agent_remote_id))
		return -1;

	if (conf_attr_dhcp_opt82_circuit_id && ses->agent_circuit_id &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82_circuit_id, ses->agent_circuit_id + 1, *ses->agent_circuit_id))
		return -1;

	return 0;
2045 2046
}

2047 2048 2049 2050 2051 2052 2053 2054 2055 2056 2057 2058
static int ipoe_rad_send_auth_request(struct rad_plugin_t *rad, struct rad_packet_t *pack)
{
	struct ipoe_session *ses = container_of(rad, typeof(*ses), radius);

	if (ipoe_rad_send_acct_request(rad, pack))
		return -1;

	if (ses->yiaddr)
		rad_packet_add_ipaddr(pack, NULL, "Framed-IP-Address", ses->yiaddr);

	return 0;
}
2059 2060
#endif

D
Dmitry Kozlov 已提交
2061
static void ipoe_serv_release(struct ipoe_serv *serv)
K
Kozlov Dmitry 已提交
2062
{
2063 2064 2065 2066 2067 2068
	pthread_mutex_lock(&serv->lock);
	if (!list_empty(&serv->sessions)) {
		pthread_mutex_unlock(&serv->lock);
		return;
	}
	pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
2069

D
Dmitry Kozlov 已提交
2070
	if (serv->vid && !serv->need_close && !ap_shutdown) {
D
Dmitry Kozlov 已提交
2071 2072 2073 2074 2075 2076 2077
		if (serv->timer.tpd)
			triton_timer_mod(&serv->timer, 0);
		else
			triton_timer_add(&serv->ctx, &serv->timer, 0);

		return;
	}
D
Dmitry Kozlov 已提交
2078

D
Dmitry Kozlov 已提交
2079 2080 2081 2082 2083
	log_info2("ipoe: stop interface %s\n", serv->ifname);

	pthread_mutex_lock(&serv_lock);
	list_del(&serv->entry);
	pthread_mutex_unlock(&serv_lock);
2084

K
Kozlov Dmitry 已提交
2085 2086
	if (serv->dhcpv4)
		dhcpv4_free(serv->dhcpv4);
D
Dmitry Kozlov 已提交
2087

K
Kozlov Dmitry 已提交
2088
	if (serv->dhcpv4_relay) {
2089
		ipoe_serv_del_addr(serv, serv->dhcpv4_relay->giaddr, 0);
K
Kozlov Dmitry 已提交
2090 2091
		dhcpv4_relay_free(serv->dhcpv4_relay, &serv->ctx);
	}
K
Kozlov Dmitry 已提交
2092

2093 2094 2095
	if (serv->arp)
		arpd_stop(serv->arp);

D
Dmitry Kozlov 已提交
2096 2097 2098 2099 2100 2101 2102
	while (!list_empty(&serv->disc_list)) {
		struct disc_item *d = list_entry(serv->disc_list.next, typeof(*d), entry);
		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);
		__sync_sub_and_fetch(&stat_delayed_offer, 1);
	}
D
Dmitry Kozlov 已提交
2103

2104 2105 2106 2107 2108
	while (!list_empty(&serv->req_list)) {
		struct request_item *r = list_first_entry(&serv->req_list, typeof(*r), entry);
		list_del(&r->entry);
		mempool_free(r);
	}
D
Dmitry Kozlov 已提交
2109 2110 2111

	if (serv->disc_timer.tpd)
		triton_timer_del(&serv->disc_timer);
D
Dmitry Kozlov 已提交
2112

D
Dmitry Kozlov 已提交
2113 2114 2115 2116 2117 2118 2119 2120
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);

	if (serv->vid) {
		log_info2("ipoe: remove vlan %s\n", serv->ifname);
		iplink_vlan_del(serv->ifindex);
		ipoe_nl_add_vlan_mon_vid(serv->parent_ifindex, serv->vid);
	}
D
Dmitry Kozlov 已提交
2121

D
Dmitry Kozlov 已提交
2122
	triton_context_unregister(&serv->ctx);
K
Kozlov Dmitry 已提交
2123 2124 2125 2126 2127

	_free(serv->ifname);
	_free(serv);
}

D
Dmitry Kozlov 已提交
2128 2129 2130 2131 2132 2133 2134 2135 2136 2137 2138 2139 2140 2141 2142
static void ipoe_serv_close(struct triton_context_t *ctx)
{
	struct ipoe_serv *serv = container_of(ctx, typeof(*serv), ctx);

	pthread_mutex_lock(&serv->lock);
	if (!list_empty(&serv->sessions)) {
		serv->need_close = 1;
		pthread_mutex_unlock(&serv->lock);
		return;
	}
	pthread_mutex_unlock(&serv->lock);

	ipoe_serv_release(serv);
}

2143 2144 2145 2146 2147 2148 2149 2150
static void l4_redirect_ctx_close(struct triton_context_t *ctx)
{
	struct l4_redirect *n;

	pthread_rwlock_wrlock(&l4_list_lock);
	while (!list_empty(&l4_redirect_list)) {
		n = list_entry(l4_redirect_list.next, typeof(*n), entry);
		list_del(&n->entry);
2151 2152 2153

		if (conf_l4_redirect_table)
			iprule_del(n->addr, conf_l4_redirect_table);
D
Dmitry Kozlov 已提交
2154

2155 2156
		if (conf_l4_redirect_ipset)
			ipset_del(conf_l4_redirect_ipset, n->addr);
D
Dmitry Kozlov 已提交
2157

2158
		ipoe_nl_del_exclude(n->addr);
D
Dmitry Kozlov 已提交
2159

2160 2161 2162 2163 2164 2165
		_free(n);
	}
	pthread_rwlock_unlock(&l4_list_lock);

	if (l4_redirect_timer.tpd)
		triton_timer_del(&l4_redirect_timer);
D
Dmitry Kozlov 已提交
2166

2167 2168 2169
	triton_context_unregister(&l4_redirect_ctx);
}

K
Kozlov Dmitry 已提交
2170 2171 2172 2173 2174
static int show_stat_exec(const char *cmd, char * const *fields, int fields_cnt, void *client)
{
	cli_send(client, "ipoe:\r\n");
	cli_sendv(client,"  starting: %u\r\n", stat_starting);
	cli_sendv(client,"  active: %u\r\n", stat_active);
D
Dmitry Kozlov 已提交
2175
	cli_sendv(client,"  delayed: %u\r\n", stat_delayed_offer);
K
Kozlov Dmitry 已提交
2176 2177 2178 2179 2180 2181 2182 2183 2184 2185

	return CLI_CMD_OK;
}

void __export ipoe_get_stat(unsigned int **starting, unsigned int **active)
{
	*starting = &stat_starting;
	*active = &stat_active;
}

K
Kozlov Dmitry 已提交
2186 2187
static void __terminate(struct ap_session *ses)
{
2188
	ap_session_terminate(ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
2189 2190 2191
}

static void ipoe_drop_sessions(struct ipoe_serv *serv, struct ipoe_session *skip)
K
Kozlov Dmitry 已提交
2192
{
K
Kozlov Dmitry 已提交
2193 2194 2195 2196 2197 2198
	struct ipoe_session *ses;

	list_for_each_entry(ses, &serv->sessions, entry) {
		if (ses == skip)
			continue;

2199 2200
		ses->terminating = 1;
		if (ses->ifcfg) {
D
Dmitry Kozlov 已提交
2201
			ipoe_ifcfg_del(ses, 0);
2202 2203 2204
			ses->ifcfg = 0;
		}

K
Kozlov Dmitry 已提交
2205 2206
		if (ses->ses.state == AP_STATE_ACTIVE)
			ap_session_ifdown(&ses->ses);
K
Kozlov Dmitry 已提交
2207

K
Kozlov Dmitry 已提交
2208 2209
		triton_context_call(&ses->ctx, (triton_event_func)__terminate, &ses->ses);
	}
K
Kozlov Dmitry 已提交
2210 2211
}

2212 2213 2214 2215 2216 2217 2218 2219 2220 2221 2222 2223
struct ipoe_serv *ipoe_find_serv(const char *ifname)
{
	struct ipoe_serv *serv;

	list_for_each_entry(serv, &serv_list, entry) {
		if (strcmp(serv->ifname, ifname) == 0)
			return serv;
	}

	return NULL;
}

D
Dmitry Kozlov 已提交
2224 2225 2226 2227 2228 2229 2230 2231 2232 2233 2234 2235 2236 2237
static int get_offer_delay()
{
	struct delay *r, *prev = NULL;

	list_for_each_entry(r, &conf_offer_delay, entry) {
		if (!prev || stat_active >= r->conn_cnt) {
			prev = r;
			continue;
		}
		break;
	}

	if (prev)
		return prev->delay;
D
Dmitry Kozlov 已提交
2238

D
Dmitry Kozlov 已提交
2239 2240 2241
	return 0;
}

2242
static int make_vlan_name(const char *parent, int svid, int cvid, char *name)
2243
{
2244
	char *ptr1 = name, *endptr = name + IFNAMSIZ;
2245
	const char *ptr2 = conf_vlan_name;
2246
	char svid_str[5], cvid_str[5], *ptr3;
2247

2248 2249 2250 2251 2252
#ifdef USE_LUA
	if (!memcmp(conf_vlan_name, "lua:", 4))
		return ipoe_lua_make_vlan_name(conf_vlan_name + 4, parent, svid, cvid, name);
#endif

2253 2254
	sprintf(svid_str, "%i", svid);
	sprintf(cvid_str, "%i", cvid);
2255 2256 2257 2258 2259 2260 2261

	while (ptr1 < endptr && *ptr2) {
		if (ptr2[0] == '%' && ptr2[1] == 'I') {
			while (ptr1 < endptr && *parent)
				*ptr1++ = *parent++;
			ptr2 += 2;
		} else if (ptr2[0] == '%' && ptr2[1] == 'N') {
2262 2263 2264 2265 2266 2267
			ptr3 = cvid_str;
			while (ptr1 < endptr && *ptr3)
				*ptr1++ = *ptr3++;
			ptr2 += 2;
		} else if (ptr2[0] == '%' && ptr2[1] == 'P') {
			ptr3 = svid_str;
2268 2269 2270 2271 2272 2273 2274
			while (ptr1 < endptr && *ptr3)
				*ptr1++ = *ptr3++;
			ptr2 += 2;
		} else
			*ptr1++ = *ptr2++;
	}

2275 2276 2277
	if (ptr1 == endptr)
		return 1;

2278 2279
	*ptr1 = 0;

2280
	return 0;
2281 2282
}

D
Dmitry Kozlov 已提交
2283 2284 2285 2286 2287 2288
void ipoe_vlan_notify(int ifindex, int vid)
{
	struct conf_sect_t *sect = conf_get_section("ipoe");
	struct conf_option_t *opt;
	struct ifreq ifr;
	char *ptr;
2289
	int len, r, svid;
D
Dmitry Kozlov 已提交
2290 2291 2292 2293
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	int pcre_offset;
2294
	char ifname[IFNAMSIZ];
D
Dmitry Kozlov 已提交
2295 2296 2297 2298 2299 2300 2301 2302 2303 2304

	if (!sect)
		return;

	memset(&ifr, 0, sizeof(ifr));
	ifr.ifr_ifindex = ifindex;
	if (ioctl(sock_fd, SIOCGIFNAME, &ifr, sizeof(ifr))) {
		log_error("ipoe: vlan-mon: failed to get interface name, ifindex=%i\n", ifindex);
		return;
	}
D
Dmitry Kozlov 已提交
2305

2306 2307 2308
	svid = iplink_vlan_get_vid(ifindex);

	if (make_vlan_name(ifr.ifr_name, svid, vid, ifname)) {
D
Dmitry Kozlov 已提交
2309 2310 2311
		log_error("ipoe: vlan-mon: %s.%i: interface name is too long\n", ifr.ifr_name, vid);
		return;
	}
D
Dmitry Kozlov 已提交
2312

D
Dmitry Kozlov 已提交
2313
	log_info2("ipoe: create vlan %s parent %s\n", ifname, ifr.ifr_name);
2314 2315

	strcpy(ifr.ifr_name, ifname);
D
Dmitry Kozlov 已提交
2316 2317
	len = strlen(ifr.ifr_name);

D
Dmitry Kozlov 已提交
2318
	if (iplink_vlan_add(ifr.ifr_name, ifindex, vid)) {
D
Dmitry Kozlov 已提交
2319
		log_warn("ipoe: vlan-mon: %s: failed to add vlan\n", ifr.ifr_name);
D
Dmitry Kozlov 已提交
2320 2321
		return;
	}
D
Dmitry Kozlov 已提交
2322

D
Dmitry Kozlov 已提交
2323 2324 2325
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr, sizeof(ifr));
	ifr.ifr_flags |= IFF_UP;
	ioctl(sock_fd, SIOCSIFFLAGS, &ifr, sizeof(ifr));
D
Dmitry Kozlov 已提交
2326

D
Dmitry Kozlov 已提交
2327 2328 2329 2330 2331 2332 2333 2334 2335 2336
	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr, sizeof(ifr))) {
		log_error("ipoe: vlan-mon: %s: failed to get interface index\n", ifr.ifr_name);
		return;
	}

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "interface"))
			continue;
		if (!opt->val)
			continue;
D
Dmitry Kozlov 已提交
2337

D
Dmitry Kozlov 已提交
2338 2339 2340 2341 2342 2343 2344 2345
		ptr = strchr(opt->val, ',');
		if (!ptr)
			ptr = strchr(opt->val, 0);

		if (ptr - opt->val > 3 && memcmp(opt->val, "re:", 3) == 0) {
			pattern = _malloc(ptr - (opt->val + 3) + 1);
			memcpy(pattern, opt->val + 3, ptr - (opt->val + 3));
			pattern[ptr - (opt->val + 3)] = 0;
D
Dmitry Kozlov 已提交
2346

D
Dmitry Kozlov 已提交
2347
			re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
2348

D
Dmitry Kozlov 已提交
2349
			_free(pattern);
D
Dmitry Kozlov 已提交
2350

D
Dmitry Kozlov 已提交
2351 2352 2353 2354 2355
			if (!re)
				continue;

			r = pcre_exec(re, NULL, ifr.ifr_name, len, 0, 0, NULL, 0);
			pcre_free(re);
D
Dmitry Kozlov 已提交
2356

D
Dmitry Kozlov 已提交
2357 2358
			if (r < 0)
				continue;
D
Dmitry Kozlov 已提交
2359

D
Dmitry Kozlov 已提交
2360 2361 2362 2363 2364 2365 2366 2367 2368 2369
			add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt->val, ifindex, vid);
		} else if (ptr - opt->val == len && memcmp(opt->val, ifr.ifr_name, len) == 0)
			add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt->val, ifindex, vid);
	}
}

static void ipoe_serv_timeout(struct triton_timer_t *t)
{
	struct ipoe_serv *serv = container_of(t, typeof(*serv), timer);

D
Dmitry Kozlov 已提交
2370
	serv->need_close = 1;
D
Dmitry Kozlov 已提交
2371

D
Dmitry Kozlov 已提交
2372
	ipoe_serv_release(serv);
D
Dmitry Kozlov 已提交
2373 2374 2375
}

static void add_interface(const char *ifname, int ifindex, const char *opt, int parent_ifindex, int vid)
K
Kozlov Dmitry 已提交
2376
{
K
Kozlov Dmitry 已提交
2377
	char *str0 = NULL, *str, *ptr1, *ptr2;
K
Kozlov Dmitry 已提交
2378
	int end;
K
Kozlov Dmitry 已提交
2379
	struct ipoe_serv *serv;
K
Kozlov Dmitry 已提交
2380 2381 2382 2383
	int opt_shared = conf_shared;
	int opt_dhcpv4 = 0;
	int opt_up = 0;
	int opt_mode = conf_mode;
2384
	int opt_ifcfg = conf_ifcfg;
2385
	int opt_nat = conf_nat;
2386
	int opt_username = conf_username;
2387
	int opt_ipv6 = conf_ipv6;
2388 2389 2390
#ifdef USE_LUA
	char *opt_lua_username_func = NULL;
#endif
K
Kozlov Dmitry 已提交
2391
	const char *opt_relay = conf_relay;
2392 2393
	in_addr_t relay_addr = conf_relay ? inet_addr(conf_relay) : 0;
	in_addr_t opt_giaddr = 0;
2394
	in_addr_t opt_src = conf_src;
2395 2396
	int opt_arp = conf_arp;
	struct ifreq ifr;
K
Kozlov Dmitry 已提交
2397 2398 2399 2400 2401

	str0 = strchr(opt, ',');
	if (str0) {
		str0 = _strdup(str0 + 1);
		str = str0;
D
Dmitry Kozlov 已提交
2402

K
Kozlov Dmitry 已提交
2403 2404
		while (1) {
			for (ptr1 = str + 1; *ptr1 && *ptr1 != '='; ptr1++);
K
Kozlov Dmitry 已提交
2405

K
Kozlov Dmitry 已提交
2406 2407
			if (!*ptr1)
				goto parse_err;
D
Dmitry Kozlov 已提交
2408

K
Kozlov Dmitry 已提交
2409 2410 2411 2412 2413 2414 2415 2416 2417 2418 2419 2420 2421 2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432 2433 2434 2435 2436
			*ptr1 = 0;

			for (ptr2 = ++ptr1; *ptr2 && *ptr2 != ','; ptr2++);

			end = *ptr2 == 0;

			if (!end)
				*ptr2 = 0;

			if (ptr2 == ptr1)
				goto parse_err;

			if (strcmp(str, "start") == 0) {
				if (!strcmp(ptr1, "up"))
					opt_up = 1;
				else if (!strcmp(ptr1, "dhcpv4"))
					opt_dhcpv4 = 1;
				else
					goto parse_err;
			} else if (strcmp(str, "shared") == 0) {
				opt_shared = atoi(ptr1);
			} else if (strcmp(str, "mode") == 0) {
				if (!strcmp(ptr1, "L2"))
					opt_mode = MODE_L2;
				else if (!strcmp(ptr1, "L3"))
					opt_mode = MODE_L3;
				else
					goto parse_err;
2437 2438
			} else if (strcmp(str, "ifcfg") == 0) {
				opt_ifcfg = atoi(ptr1);
K
Kozlov Dmitry 已提交
2439 2440 2441 2442
			} else if (strcmp(str, "relay") == 0) {
				opt_relay = ptr1;
				relay_addr = inet_addr(ptr1);
			} else if (strcmp(str, "giaddr") == 0) {
2443
				opt_giaddr = inet_addr(ptr1);
2444 2445
			} else if (strcmp(str, "nat") == 0) {
				opt_nat = atoi(ptr1);
2446 2447
			} else if (strcmp(str, "src") == 0) {
				opt_src = inet_addr(ptr1);
2448 2449
			} else if (strcmp(str, "proxy-arp") == 0) {
				opt_arp = atoi(ptr1);
2450 2451
			} else if (strcmp(str, "ipv6") == 0) {
				opt_ipv6 = atoi(ptr1);
2452 2453 2454 2455 2456 2457 2458
			} else if (strcmp(str, "username") == 0) {
				if (strcmp(ptr1, "ifname") == 0)
					opt_username = USERNAME_IFNAME;
#ifdef USE_LUA
				else if (strlen(ptr1) > 4 && memcmp(ptr1, "lua:", 4) == 0) {
					opt_username = USERNAME_LUA;
					opt_lua_username_func = _strdup(ptr1 + 4);
D
Dmitry Kozlov 已提交
2459
				}
2460 2461 2462
#endif
				else
					log_error("ipoe: unknown username value '%s'\n", ptr1);
2463
			}
K
Kozlov Dmitry 已提交
2464 2465 2466 2467 2468 2469

			if (end)
				break;

			str = ptr2 + 1;
		}
D
Dmitry Kozlov 已提交
2470
	}
K
Kozlov Dmitry 已提交
2471 2472 2473 2474 2475 2476

	if (!opt_up && !opt_dhcpv4) {
		opt_up = conf_up;
		opt_dhcpv4 = conf_dhcpv4;
	}

2477 2478 2479 2480 2481 2482 2483 2484 2485
	if (opt_relay && !opt_giaddr && opt_dhcpv4) {
		struct sockaddr_in addr;
		int sock;
		socklen_t len = sizeof(addr);

		memset(&addr, 0, sizeof(addr));
		addr.sin_family = AF_INET;
		addr.sin_addr.s_addr = relay_addr;
		addr.sin_port = htons(DHCP_SERV_PORT);
D
Dmitry Kozlov 已提交
2486

2487
		sock = socket(PF_INET, SOCK_DGRAM, IPPROTO_UDP);
D
Dmitry Kozlov 已提交
2488

2489 2490 2491 2492
		if (connect(sock, &addr, sizeof(addr))) {
			log_error("dhcpv4: relay: %s: connect: %s\n", opt_relay, strerror(errno));
			goto out_err;
		}
D
Dmitry Kozlov 已提交
2493

2494 2495 2496 2497 2498 2499
		getsockname(sock, &addr, &len);
		opt_giaddr = addr.sin_addr.s_addr;

		close(sock);
	}

2500 2501 2502
	if (opt_up)
		ipoe_nl_add_interface(ifindex);

D
Dmitry Kozlov 已提交
2503
	pthread_mutex_lock(&serv_lock);
K
Kozlov Dmitry 已提交
2504
	list_for_each_entry(serv, &serv_list, entry) {
2505
		if (strcmp(ifname, serv->ifname))
K
Kozlov Dmitry 已提交
2506 2507 2508 2509
			continue;

		serv->active = 1;
		serv->ifindex = ifindex;
D
Dmitry Kozlov 已提交
2510

K
Kozlov Dmitry 已提交
2511 2512 2513
		if ((opt_shared && !serv->opt_shared) || (!opt_shared && serv->opt_shared)) {
			ipoe_drop_sessions(serv, NULL);
			serv->opt_shared = opt_shared;
K
Kozlov Dmitry 已提交
2514
		}
K
Kozlov Dmitry 已提交
2515 2516

		if (opt_dhcpv4 && !serv->dhcpv4) {
2517
			serv->dhcpv4 = dhcpv4_create(&serv->ctx, serv->ifname, opt);
K
Kozlov Dmitry 已提交
2518 2519 2520 2521 2522 2523 2524
			if (serv->dhcpv4)
				serv->dhcpv4->recv = ipoe_recv_dhcpv4;
		} else if (!opt_dhcpv4 && serv->dhcpv4) {
			dhcpv4_free(serv->dhcpv4);
			serv->dhcpv4 = NULL;
		}

D
Dmitry Kozlov 已提交
2525
		if (serv->dhcpv4_relay &&
2526
				(serv->dhcpv4_relay->addr != relay_addr || serv->dhcpv4_relay->giaddr != opt_giaddr)) {
2527
			if (serv->opt_ifcfg)
2528
				ipoe_serv_del_addr(serv, serv->dhcpv4_relay->giaddr, 0);
K
Kozlov Dmitry 已提交
2529 2530 2531 2532
			dhcpv4_relay_free(serv->dhcpv4_relay, &serv->ctx);
			serv->dhcpv4_relay = NULL;
		}

2533
		if (!serv->dhcpv4_relay && serv->opt_dhcpv4 && opt_relay) {
2534
			if (opt_ifcfg)
2535
				ipoe_serv_add_addr(serv, opt_giaddr, 32);
K
Kozlov Dmitry 已提交
2536
			serv->dhcpv4_relay = dhcpv4_relay_create(opt_relay, opt_giaddr, &serv->ctx, (triton_event_func)ipoe_recv_dhcpv4_relay);
K
Kozlov Dmitry 已提交
2537
		}
2538 2539 2540 2541 2542 2543

		if (serv->arp && !conf_arp) {
			arpd_stop(serv->arp);
			serv->arp = NULL;
		} else if (!serv->arp && conf_arp)
			serv->arp = arpd_start(serv);
D
Dmitry Kozlov 已提交
2544

2545 2546 2547
		serv->opt_up = opt_up;
		serv->opt_mode = opt_mode;
		serv->opt_ifcfg = opt_ifcfg;
2548
		serv->opt_nat = opt_nat;
2549
		serv->opt_src = opt_src;
2550
		serv->opt_arp = opt_arp;
2551
		serv->opt_username = opt_username;
2552
		serv->opt_ipv6 = opt_ipv6;
2553 2554 2555 2556 2557
#ifdef USE_LUA
		if (serv->opt_lua_username_func && (!opt_lua_username_func || strcmp(serv->opt_lua_username_func, opt_lua_username_func))) {
			_free(serv->opt_lua_username_func);
			serv->opt_lua_username_func = NULL;
		}
D
Dmitry Kozlov 已提交
2558

2559 2560 2561 2562 2563
		if (!serv->opt_lua_username_func && opt_lua_username_func)
			serv->opt_lua_username_func = opt_lua_username_func;
		else if (opt_lua_username_func)
			_free(opt_lua_username_func);
#endif
K
Kozlov Dmitry 已提交
2564 2565 2566 2567

		if (str0)
			_free(str0);

D
Dmitry Kozlov 已提交
2568
		pthread_mutex_unlock(&serv_lock);
K
Kozlov Dmitry 已提交
2569
		return;
K
Kozlov Dmitry 已提交
2570
	}
D
Dmitry Kozlov 已提交
2571
	pthread_mutex_unlock(&serv_lock);
K
Kozlov Dmitry 已提交
2572

2573 2574 2575 2576 2577
	opt = strchr(opt, ',');
	if (opt)
		opt++;

	log_info2("ipoe: start interface %s (%s)\n", ifname, opt ? opt : "");
D
Dmitry Kozlov 已提交
2578

2579 2580
	memset(&ifr, 0, sizeof(ifr));
	strcpy(ifr.ifr_name, ifname);
D
Dmitry Kozlov 已提交
2581

2582 2583 2584 2585
	if (ioctl(sock_fd, SIOCGIFHWADDR, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFHWADDR): %s\n", ifname, strerror(errno));
		return;
	}
D
Dmitry Kozlov 已提交
2586

D
Dmitry Kozlov 已提交
2587
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
2588

D
Dmitry Kozlov 已提交
2589 2590 2591 2592 2593
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}
2594

K
Kozlov Dmitry 已提交
2595 2596
	serv = _malloc(sizeof(*serv));
	memset(serv, 0, sizeof(*serv));
2597
	serv->ctx.close = ipoe_serv_close;
2598
	serv->ctx.before_switch = log_switch;
D
Dmitry Kozlov 已提交
2599
	pthread_mutex_init(&serv->lock, NULL);
K
Kozlov Dmitry 已提交
2600 2601
	serv->ifname = _strdup(ifname);
	serv->ifindex = ifindex;
K
Kozlov Dmitry 已提交
2602 2603 2604 2605
	serv->opt_shared = opt_shared;
	serv->opt_dhcpv4 = opt_dhcpv4;
	serv->opt_up = opt_up;
	serv->opt_mode = opt_mode;
2606
	serv->opt_ifcfg = opt_ifcfg;
2607
	serv->opt_nat = opt_nat;
2608
	serv->opt_src = opt_src;
2609
	serv->opt_arp = opt_arp;
2610
	serv->opt_username = opt_username;
2611
	serv->opt_ipv6 = opt_ipv6;
2612 2613 2614
#ifdef USE_LUA
	serv->opt_lua_username_func = opt_lua_username_func;
#endif
D
Dmitry Kozlov 已提交
2615 2616
	serv->parent_ifindex = parent_ifindex = parent_ifindex;
	serv->vid = vid;
2617
	serv->active = 1;
K
Kozlov Dmitry 已提交
2618
	INIT_LIST_HEAD(&serv->sessions);
2619
	INIT_LIST_HEAD(&serv->addr_list);
D
Dmitry Kozlov 已提交
2620
	INIT_LIST_HEAD(&serv->disc_list);
2621
	INIT_LIST_HEAD(&serv->req_list);
2622
	memcpy(serv->hwaddr, ifr.ifr_hwaddr.sa_data, ETH_ALEN);
D
Dmitry Kozlov 已提交
2623
	serv->disc_timer.expire = ipoe_serv_disc_timer;
D
Dmitry Kozlov 已提交
2624

K
Kozlov Dmitry 已提交
2625 2626 2627
	triton_context_register(&serv->ctx, NULL);

	if (serv->opt_dhcpv4) {
2628
		serv->dhcpv4 = dhcpv4_create(&serv->ctx, serv->ifname, opt);
K
Kozlov Dmitry 已提交
2629
		if (serv->dhcpv4)
2630
			serv->dhcpv4->recv = ipoe_recv_dhcpv4;
D
Dmitry Kozlov 已提交
2631

2632
		if (opt_relay) {
2633
			if (opt_ifcfg)
2634
				ipoe_serv_add_addr(serv, opt_giaddr, 32);
K
Kozlov Dmitry 已提交
2635 2636
			serv->dhcpv4_relay = dhcpv4_relay_create(opt_relay, opt_giaddr, &serv->ctx, (triton_event_func)ipoe_recv_dhcpv4_relay);
		}
K
Kozlov Dmitry 已提交
2637 2638
	}

2639 2640
	if (serv->opt_arp)
		serv->arp = arpd_start(serv);
D
Dmitry Kozlov 已提交
2641

D
Dmitry Kozlov 已提交
2642 2643 2644 2645 2646
	if (vid) {
		serv->timer.expire = ipoe_serv_timeout;
		serv->timer.expire_tv.tv_sec = conf_vlan_timeout;
		triton_timer_add(&serv->ctx, &serv->timer, 0);
	}
2647

K
Kozlov Dmitry 已提交
2648 2649
	triton_context_wakeup(&serv->ctx);

D
Dmitry Kozlov 已提交
2650
	pthread_mutex_lock(&serv_lock);
2651
	list_add_tail(&serv->entry, &serv_list);
D
Dmitry Kozlov 已提交
2652
	pthread_mutex_unlock(&serv_lock);
2653

K
Kozlov Dmitry 已提交
2654 2655 2656
	if (str0)
		_free(str0);

K
Kozlov Dmitry 已提交
2657 2658
	return;

K
Kozlov Dmitry 已提交
2659
parse_err:
K
Kozlov Dmitry 已提交
2660
	log_error("ipoe: failed to parse '%s'\n", opt);
2661
out_err:
K
Kozlov Dmitry 已提交
2662
	_free(str0);
K
Kozlov Dmitry 已提交
2663 2664 2665 2666 2667 2668
}

static void load_interface(const char *opt)
{
	const char *ptr;
	struct ifreq ifr;
2669
	struct ipoe_serv *serv;
K
Kozlov Dmitry 已提交
2670 2671 2672 2673 2674 2675 2676 2677

	for (ptr = opt; *ptr && *ptr != ','; ptr++);

	if (ptr - opt >= sizeof(ifr.ifr_name))
		return;

	memcpy(ifr.ifr_name, opt, ptr - opt);
	ifr.ifr_name[ptr - opt] = 0;
D
Dmitry Kozlov 已提交
2678

2679 2680 2681 2682 2683 2684 2685 2686 2687 2688
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->active)
			continue;

		if (!strcmp(serv->ifname, ifr.ifr_name)) {
			add_interface(serv->ifname, serv->ifindex, opt, 0, 0);
			return;
		}
	}

K
Kozlov Dmitry 已提交
2689 2690 2691 2692
	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFINDEX): %s\n", ifr.ifr_name, strerror(errno));
		return;
	}
D
Dmitry Kozlov 已提交
2693

D
Dmitry Kozlov 已提交
2694
	add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt, 0, 0);
K
Kozlov Dmitry 已提交
2695 2696 2697 2698 2699 2700
}

static int __load_interface_re(int index, int flags, const char *name, struct iplink_arg *arg)
{
	if (pcre_exec(arg->re, NULL, name, strlen(name), 0, 0, NULL, 0) < 0)
		return 0;
2701

D
Dmitry Kozlov 已提交
2702
	add_interface(name, index, arg->opt, 0, 0);
K
Kozlov Dmitry 已提交
2703 2704 2705 2706 2707 2708 2709 2710 2711 2712 2713 2714

	return 0;
}

static void load_interface_re(const char *opt)
{
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	const char *ptr;
	int pcre_offset;
	struct iplink_arg arg;
2715
	struct ipoe_serv *serv;
K
Kozlov Dmitry 已提交
2716 2717

	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
2718

K
Kozlov Dmitry 已提交
2719 2720 2721
	pattern = _malloc(ptr - (opt + 3) + 1);
	memcpy(pattern, opt + 3, ptr - (opt + 3));
	pattern[ptr - (opt + 3)] = 0;
D
Dmitry Kozlov 已提交
2722

K
Kozlov Dmitry 已提交
2723
	re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
2724

K
Kozlov Dmitry 已提交
2725
	if (!re) {
D
Dmitry Kozlov 已提交
2726
		log_error("ipoe: '%s': %s at %i\r\n", pattern, pcre_err, pcre_offset);
K
Kozlov Dmitry 已提交
2727 2728 2729 2730 2731 2732 2733 2734
		return;
	}

	arg.re = re;
	arg.opt = opt;

	iplink_list((iplink_list_func)__load_interface_re, &arg);

2735 2736 2737 2738 2739 2740 2741 2742
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->active)
			continue;

		if (pcre_exec(re, NULL, serv->ifname, strlen(serv->ifname), 0, 0, NULL, 0) >= 0)
			add_interface(serv->ifname, serv->ifindex, opt, 0, 0);
	}

K
Kozlov Dmitry 已提交
2743 2744 2745 2746 2747 2748 2749 2750 2751
	pcre_free(re);
	_free(pattern);
}

static void load_interfaces(struct conf_sect_t *sect)
{
	struct ipoe_serv *serv;
	struct conf_option_t *opt;

2752 2753
	ipoe_nl_delete_interfaces();

K
Kozlov Dmitry 已提交
2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767
	list_for_each_entry(serv, &serv_list, entry)
		serv->active = 0;

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "interface"))
			continue;
		if (!opt->val)
			continue;

		if (strlen(opt->val) > 3 && memcmp(opt->val, "re:", 3) == 0)
			load_interface_re(opt->val);
		else
			load_interface(opt->val);
	}
D
Dmitry Kozlov 已提交
2768

D
Dmitry Kozlov 已提交
2769
	list_for_each_entry(serv, &serv_list, entry) {
D
Dmitry Kozlov 已提交
2770
		if (!serv->active && !serv->vid) {
2771
			ipoe_drop_sessions(serv, NULL);
D
Dmitry Kozlov 已提交
2772
			triton_context_call(&serv->ctx, (triton_event_func)ipoe_serv_release, serv);
K
Kozlov Dmitry 已提交
2773 2774 2775 2776
		}
	}
}

2777 2778 2779 2780 2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801
static void parse_local_net(const char *opt)
{
	const char *ptr;
	char str[17];
	in_addr_t addr;
	int mask;
	char *endptr;

	ptr = strchr(opt, '/');
	if (ptr) {
		memcpy(str, opt, ptr - opt);
		str[ptr - opt] = 0;
		addr = inet_addr(str);
		if (addr == INADDR_NONE)
			goto out_err;
		mask = strtoul(ptr + 1, &endptr, 10);
		if (mask > 32)
			goto out_err;
	} else {
		addr = inet_addr(opt);
		if (addr == INADDR_NONE)
			goto out_err;
		mask = 24;
	}

2802
	ipoe_nl_add_net(addr, mask);
2803 2804 2805 2806 2807 2808 2809 2810 2811 2812 2813 2814 2815 2816 2817 2818 2819 2820 2821 2822 2823 2824

	return;

out_err:
	log_error("ipoe: failed to parse 'local-net=%s'\n", opt);
}

static void load_local_nets(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;

	ipoe_nl_delete_nets();

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "local-net"))
			continue;
		if (!opt->val)
			continue;
		parse_local_net(opt->val);
	}
}

2825 2826 2827 2828 2829 2830 2831 2832 2833 2834 2835 2836 2837 2838 2839 2840 2841 2842 2843 2844 2845 2846 2847 2848 2849 2850 2851 2852 2853 2854 2855 2856 2857 2858 2859 2860
static void load_gw_addr(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;
	struct gw_addr *a;
	char addr[17];
	char *ptr;

	while (!list_empty(&conf_gw_addr)) {
		a = list_entry(conf_gw_addr.next, typeof(*a), entry);
		list_del(&a->entry);
		_free(a);
	}

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "gw-ip-address"))
			continue;
		if (!opt->val)
			continue;

		a = _malloc(sizeof(*a));
		ptr = strchr(opt->val, '/');
		if (ptr) {
			memcpy(addr, opt->val, ptr - opt->val);
			addr[ptr - opt->val] = 0;
			a->addr = inet_addr(addr);
			a->mask = atoi(ptr + 1);
		} else {
			a->addr = inet_addr(opt->val);
			a->mask = 32;
		}

		if (a->addr == 0xffffffff || a->mask < 1 || a->mask > 32) {
			log_error("ipoe: failed to parse '%s=%s'\n", opt->name, opt->val);
			_free(a);
			continue;
		}
2861 2862

		a->mask1 = ((1 << a->mask) - 1) << (32 - a->mask);
2863 2864 2865 2866
		list_add_tail(&a->entry, &conf_gw_addr);
	}
}

2867 2868 2869 2870 2871 2872
#ifdef RADIUS
static void parse_conf_rad_attr(const char *opt, int *val)
{
	struct rad_dict_attr_t *attr;

	opt = conf_get_opt("ipoe", opt);
D
Dmitry Kozlov 已提交
2873

2874
	*val = 0;
2875 2876 2877 2878 2879 2880 2881 2882 2883 2884 2885

	if (opt) {
		if (atoi(opt) > 0)
			*val = atoi(opt);
		else {
			attr = rad_dict_find_attr(opt);
			if (attr)
				*val = attr->id;
			else
				log_emerg("ipoe: couldn't find '%s' in dictionary\n", opt);
		}
2886
	}
2887
}
K
Kozlov Dmitry 已提交
2888

2889 2890 2891 2892 2893
static void load_radius_attrs(void)
{
	parse_conf_rad_attr("attr-dhcp-client-ip", &conf_attr_dhcp_client_ip);
	parse_conf_rad_attr("attr-dhcp-router-ip", &conf_attr_dhcp_router_ip);
	parse_conf_rad_attr("attr-dhcp-mask", &conf_attr_dhcp_mask);
2894
	parse_conf_rad_attr("attr-dhcp-lease-time", &conf_attr_dhcp_lease_time);
D
Dmitry Kozlov 已提交
2895
	parse_conf_rad_attr("attr-dhcp-renew-time", &conf_attr_dhcp_renew_time);
2896
	parse_conf_rad_attr("attr-l4-redirect", &conf_attr_l4_redirect);
2897 2898
	parse_conf_rad_attr("attr-l4-redirect-table", &conf_attr_l4_redirect_table);
	parse_conf_rad_attr("attr-l4-redirect-ipset", &conf_attr_l4_redirect_ipset);
2899
	conf_attr_dhcp_opt82 = conf_get_opt("ipoe", "attr-dhcp-opt82");
2900 2901
	conf_attr_dhcp_opt82_remote_id = conf_get_opt("ipoe", "attr-dhcp-opt82-remote-id");
	conf_attr_dhcp_opt82_circuit_id = conf_get_opt("ipoe", "attr-dhcp-opt82-circuit-id");
2902 2903 2904
}
#endif

D
Dmitry Kozlov 已提交
2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916 2917 2918 2919 2920 2921 2922 2923 2924 2925 2926 2927 2928 2929 2930 2931 2932 2933 2934 2935 2936 2937 2938 2939 2940 2941 2942 2943 2944 2945 2946 2947 2948 2949 2950 2951 2952 2953 2954 2955 2956 2957 2958 2959 2960 2961 2962 2963 2964 2965 2966 2967 2968 2969 2970 2971 2972 2973 2974 2975 2976 2977 2978 2979
static void strip(char *str)
{
	char *ptr = str;
	char *endptr = strchr(str, 0);
	while (1) {
		ptr = strchr(ptr, ' ');
		if (ptr)
			memmove(ptr, ptr + 1, endptr - ptr - 1);
		else
			break;
	}
}

int parse_offer_delay(const char *str)
{
	char *str1;
	char *ptr1, *ptr2, *ptr3, *endptr;
	struct delay *r;

	while (!list_empty(&conf_offer_delay)) {
		r = list_entry(conf_offer_delay.next, typeof(*r), entry);
		list_del(&r->entry);
		_free(r);
	}

	if (!str)
		return 0;

	str1 = _strdup(str);
	strip(str1);

	ptr1 = str1;

	while (1) {
		ptr2 = strchr(ptr1, ',');
		if (ptr2)
			*ptr2 = 0;
		ptr3 = strchr(ptr1, ':');
		if (ptr3)
			*ptr3 = 0;

		r = _malloc(sizeof(*r));
		memset(r, 0, sizeof(*r));

		r->delay = strtol(ptr1, &endptr, 10);
		if (*endptr)
			goto out_err;

		if (list_empty(&conf_offer_delay))
			r->conn_cnt = 0;
		else {
			if (!ptr3)
				goto out_err;
			r->conn_cnt = strtol(ptr3 + 1, &endptr, 10);
			if (*endptr)
				goto out_err;
		}

		list_add_tail(&r->entry, &conf_offer_delay);

		if (!ptr2)
			break;

		ptr1 = ptr2 + 1;
	}

	_free(str1);
	return 0;

out_err:
	_free(str1);
	log_error("ipoe: failed to parse offer-delay\n");
	return -1;
}

D
Dmitry Kozlov 已提交
2980 2981 2982 2983 2984 2985 2986 2987 2988 2989
static int parse_vlan_mon(const char *opt, long *mask)
{
	char *ptr, *ptr2;
	int vid, vid2;

	ptr = strchr(opt, ',');
	if (!ptr)
		ptr = strchr(opt, 0);

	if (*ptr == ',')
D
Dmitry Kozlov 已提交
2990
		memset(mask, 0xff, 4096/8);
D
Dmitry Kozlov 已提交
2991
	else if (*ptr == 0) {
D
Dmitry Kozlov 已提交
2992
		memset(mask, 0, 4096/8);
D
Dmitry Kozlov 已提交
2993 2994 2995 2996 2997 2998 2999 3000 3001 3002 3003 3004 3005 3006 3007 3008 3009
		return 0;
	} else
		goto out_err;

	while (1) {
		vid = strtol(ptr + 1, &ptr2, 10);
		if (vid <= 0 || vid >= 4096) {
			log_error("ipoe: vlan-mon=%s: invalid vlan %i\n", opt, vid);
			return -1;
		}

		if (*ptr2 == '-') {
			vid2 = strtol(ptr2 + 1, &ptr2, 10);
			if (vid2 <= 0 || vid2 >= 4096) {
				log_error("ipoe: vlan-mon=%s: invalid vlan %i\n", opt, vid2);
				return -1;
			}
D
Dmitry Kozlov 已提交
3010

D
Dmitry Kozlov 已提交
3011
			for (; vid < vid2; vid++)
D
Dmitry Kozlov 已提交
3012
				mask[vid / (8*sizeof(long))] &= ~(1lu << (vid % (8*sizeof(long))));
D
Dmitry Kozlov 已提交
3013
		}
D
Dmitry Kozlov 已提交
3014

D
Dmitry Kozlov 已提交
3015
		mask[vid / (8*sizeof(long))] &= ~(1lu << (vid % (8*sizeof(long))));
D
Dmitry Kozlov 已提交
3016 3017 3018 3019 3020 3021 3022 3023 3024 3025 3026

		if (*ptr2 == 0)
			break;

		if (*ptr2 != ',')
			goto out_err;

		ptr = ptr2;
	}

	return 0;
D
Dmitry Kozlov 已提交
3027

D
Dmitry Kozlov 已提交
3028 3029 3030 3031 3032
out_err:
	log_error("ipoe: vlan-mon=%s: failed to parse\n", opt);
	return -1;
}

D
Dmitry Kozlov 已提交
3033
static void add_vlan_mon(const char *opt, long *mask)
D
Dmitry Kozlov 已提交
3034 3035 3036 3037
{
	const char *ptr;
	struct ifreq ifr;
	int ifindex;
D
Dmitry Kozlov 已提交
3038 3039
	long mask1[4096/8/sizeof(long)];
	struct ipoe_serv *serv;
D
Dmitry Kozlov 已提交
3040

D
Dmitry Kozlov 已提交
3041
	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
3042

3043
	if (ptr - opt >= IFNAMSIZ) {
D
Dmitry Kozlov 已提交
3044 3045 3046 3047 3048
		log_error("ipoe: vlan-mon=%s: interface name is too long\n", opt);
		return;
	}

	memset(&ifr, 0, sizeof(ifr));
D
Dmitry Kozlov 已提交
3049

D
Dmitry Kozlov 已提交
3050 3051 3052 3053 3054 3055 3056 3057 3058
	memcpy(ifr.ifr_name, opt, ptr - opt);
	ifr.ifr_name[ptr - opt] = 0;

	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFINDEX): %s\n", ifr.ifr_name, strerror(errno));
		return;
	}

	ifindex = ifr.ifr_ifindex;
D
Dmitry Kozlov 已提交
3059

D
Dmitry Kozlov 已提交
3060
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
3061

D
Dmitry Kozlov 已提交
3062 3063 3064 3065 3066 3067
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}

D
Dmitry Kozlov 已提交
3068 3069 3070 3071 3072 3073 3074
	memcpy(mask1, mask, sizeof(mask1));
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->vid && serv->parent_ifindex == ifindex)
			mask1[serv->vid / (8*sizeof(long))] |= 1lu << (serv->vid % (8*sizeof(long)));
	}

	ipoe_nl_add_vlan_mon(ifindex, mask1, sizeof(mask1));
D
Dmitry Kozlov 已提交
3075 3076 3077 3078 3079
}

static int __load_vlan_mon_re(int index, int flags, const char *name, struct iplink_arg *arg)
{
	struct ifreq ifr;
D
Dmitry Kozlov 已提交
3080 3081
	long mask1[4096/8/sizeof(long)];
	struct ipoe_serv *serv;
D
Dmitry Kozlov 已提交
3082 3083 3084 3085 3086 3087

	if (pcre_exec(arg->re, NULL, name, strlen(name), 0, 0, NULL, 0) < 0)
		return 0;

	memset(&ifr, 0, sizeof(ifr));
	strcpy(ifr.ifr_name, name);
D
Dmitry Kozlov 已提交
3088

D
Dmitry Kozlov 已提交
3089
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
3090

D
Dmitry Kozlov 已提交
3091 3092 3093 3094 3095
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}
D
Dmitry Kozlov 已提交
3096

D
Dmitry Kozlov 已提交
3097 3098 3099 3100 3101
	memcpy(mask1, arg->arg1, sizeof(mask1));
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->vid && serv->parent_ifindex == index)
			mask1[serv->vid / (8*sizeof(long))] |= 1lu << (serv->vid % (8*sizeof(long)));
	}
D
Dmitry Kozlov 已提交
3102

D
Dmitry Kozlov 已提交
3103
	ipoe_nl_add_vlan_mon(index, mask1, sizeof(mask1));
D
Dmitry Kozlov 已提交
3104 3105 3106 3107 3108 3109 3110 3111 3112 3113 3114 3115 3116 3117

	return 0;
}

static void load_vlan_mon_re(const char *opt, long *mask, int len)
{
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	const char *ptr;
	int pcre_offset;
	struct iplink_arg arg;

	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
3118

D
Dmitry Kozlov 已提交
3119 3120 3121
	pattern = _malloc(ptr - (opt + 3) + 1);
	memcpy(pattern, opt + 3, ptr - (opt + 3));
	pattern[ptr - (opt + 3)] = 0;
D
Dmitry Kozlov 已提交
3122

D
Dmitry Kozlov 已提交
3123
	re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
3124

D
Dmitry Kozlov 已提交
3125 3126 3127 3128 3129 3130 3131 3132 3133 3134 3135 3136 3137 3138 3139 3140 3141 3142 3143 3144 3145 3146 3147 3148 3149 3150 3151 3152 3153
	if (!re) {
		log_error("ipoe: '%s': %s at %i\r\n", pattern, pcre_err, pcre_offset);
		return;
	}

	arg.re = re;
	arg.opt = opt;
	arg.arg1 = mask;

	iplink_list((iplink_list_func)__load_vlan_mon_re, &arg);

	pcre_free(re);
	_free(pattern);

}

static void load_vlan_mon(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;
	long mask[4096/8/sizeof(long)];

	ipoe_nl_del_vlan_mon(-1);

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "vlan-mon"))
			continue;

		if (!opt->val)
			continue;
D
Dmitry Kozlov 已提交
3154

D
Dmitry Kozlov 已提交
3155 3156 3157 3158 3159 3160
		if (parse_vlan_mon(opt->val, mask))
			continue;

		if (strlen(opt->val) > 3 && !memcmp(opt->val, "re:", 3))
			load_vlan_mon_re(opt->val, mask, sizeof(mask));
		else
D
Dmitry Kozlov 已提交
3161
			add_vlan_mon(opt->val, mask);
D
Dmitry Kozlov 已提交
3162 3163 3164 3165
	}
}


K
Kozlov Dmitry 已提交
3166 3167 3168 3169
static void load_config(void)
{
	const char *opt;
	struct conf_sect_t *s = conf_get_section("ipoe");
K
Kozlov Dmitry 已提交
3170
	struct conf_option_t *opt1;
K
Kozlov Dmitry 已提交
3171 3172 3173 3174 3175 3176 3177 3178 3179 3180 3181 3182

	if (!s)
		return;

	opt = conf_get_opt("ipoe", "username");
	if (opt) {
		if (strcmp(opt, "ifname") == 0)
			conf_username = USERNAME_IFNAME;
#ifdef USE_LUA
		else if (strlen(opt) > 4 && memcmp(opt, "lua:", 4) == 0) {
			conf_username = USERNAME_LUA;
			conf_lua_username_func = opt + 4;
K
Kozlov Dmitry 已提交
3183
		}
K
Kozlov Dmitry 已提交
3184
#endif
K
Kozlov Dmitry 已提交
3185
		else
K
Kozlov Dmitry 已提交
3186
			log_emerg("ipoe: unknown username value '%s'\n", opt);
3187 3188
	} else
		conf_username = USERNAME_UNSET;
D
Dmitry Kozlov 已提交
3189

3190 3191 3192 3193 3194 3195 3196 3197 3198 3199
	opt = conf_get_opt("ipoe", "password");
	if (opt) {
		if (!strcmp(opt, "username"))
			conf_password = NULL;
		else if (!strcmp(opt, "empty"))
			conf_password = "";
		else
			conf_password = opt;
	} else
		conf_password = NULL;
K
Kozlov Dmitry 已提交
3200 3201 3202 3203 3204 3205 3206 3207 3208 3209

	opt = conf_get_opt("ipoe", "netmask");
	if (opt) {
		conf_netmask = atoi(opt);
		if (conf_netmask <= 0 || conf_netmask > 32) {
			log_error("ipoe: invalid netmask %s\n", opt);
			conf_netmask = 0;
		}
	} else
		conf_netmask = 0;
D
Dmitry Kozlov 已提交
3210

K
Kozlov Dmitry 已提交
3211 3212 3213
	opt = conf_get_opt("ipoe", "verbose");
	if (opt)
		conf_verbose = atoi(opt);
K
Kozlov Dmitry 已提交
3214 3215 3216 3217

	opt = conf_get_opt("ipoe", "lease-time");
	if (opt)
		conf_lease_time = atoi(opt);
K
Kozlov Dmitry 已提交
3218 3219
	else
		conf_lease_time = 600;
D
Dmitry Kozlov 已提交
3220

D
Dmitry Kozlov 已提交
3221 3222 3223 3224 3225 3226
	opt = conf_get_opt("ipoe", "renew-time");
	if (opt)
		conf_renew_time = atoi(opt);
	else
		conf_renew_time = conf_lease_time/2;

K
Kozlov Dmitry 已提交
3227
	opt = conf_get_opt("ipoe", "max-lease-time");
K
Kozlov Dmitry 已提交
3228 3229
	if (opt)
		conf_lease_timeout = atoi(opt);
K
Kozlov Dmitry 已提交
3230
	else
3231
		conf_lease_timeout = conf_lease_time;
D
Dmitry Kozlov 已提交
3232

K
Kozlov Dmitry 已提交
3233 3234 3235
	opt = conf_get_opt("ipoe", "unit-cache");
	if (opt)
		conf_unit_cache = atoi(opt);
D
Dmitry Kozlov 已提交
3236

3237
	opt = conf_get_opt("ipoe", "l4-redirect-table");
3238
	if (opt && atoi(opt) > 0)
3239 3240
		conf_l4_redirect_table = atoi(opt);
	else
3241
		conf_l4_redirect_table = 0;
D
Dmitry Kozlov 已提交
3242

3243
	conf_l4_redirect_ipset = conf_get_opt("ipoe", "l4-redirect-ipset");
D
Dmitry Kozlov 已提交
3244

3245 3246 3247 3248 3249
	opt = conf_get_opt("ipoe", "l4-redirect-on-reject");
	if (opt) {
		conf_l4_redirect_on_reject = atoi(opt);
	} else
		conf_l4_redirect_on_reject = 0;
D
Dmitry Kozlov 已提交
3250

3251 3252 3253 3254 3255
	if (conf_l4_redirect_on_reject) {
		l4_redirect_timer.period = conf_l4_redirect_on_reject / 10 * 1000;
		if (l4_redirect_timer.tpd)
			triton_timer_mod(&l4_redirect_timer, 0);
	}
D
Dmitry Kozlov 已提交
3256

K
Kozlov Dmitry 已提交
3257 3258 3259 3260 3261
	opt = conf_get_opt("ipoe", "shared");
	if (opt)
		conf_shared = atoi(opt);
	else
		conf_shared = 1;
D
Dmitry Kozlov 已提交
3262

3263 3264 3265 3266 3267
	opt = conf_get_opt("ipoe", "ifcfg");
	if (opt)
		conf_ifcfg = atoi(opt);
	else
		conf_ifcfg = 1;
D
Dmitry Kozlov 已提交
3268

3269 3270 3271 3272 3273
	opt = conf_get_opt("ipoe", "nat");
	if (opt)
		conf_nat = atoi(opt);
	else
		conf_nat = 0;
3274 3275 3276 3277 3278 3279

	opt = conf_get_opt("ipoe", "src");
	if (opt)
		conf_src = inet_addr(opt);
	else
		conf_src = 0;
3280 3281 3282 3283 3284 3285

	opt = conf_get_opt("ipoe", "proxy-arp");
	if (opt)
		conf_arp = atoi(opt);
	else
		conf_arp = 0;
D
Dmitry Kozlov 已提交
3286

3287 3288 3289 3290
	if (conf_arp < 0 || conf_arp > 2) {
		log_error("ipoe: arp=%s: invalid value\n", opt);
		conf_arp = 0;
	}
D
Dmitry Kozlov 已提交
3291

K
Kozlov Dmitry 已提交
3292 3293 3294 3295 3296 3297 3298 3299 3300 3301
	opt = conf_get_opt("ipoe", "mode");
	if (opt) {
		if (!strcmp(opt, "L2"))
			conf_mode = MODE_L2;
		else if (!strcmp(opt, "L3"))
			conf_mode = MODE_L3;
		else
			log_emerg("ipoe: failed to parse 'mode=%s'\n", opt);
	} else
		conf_mode = MODE_L2;
D
Dmitry Kozlov 已提交
3302

K
Kozlov Dmitry 已提交
3303
	conf_relay = conf_get_opt("ipoe", "relay");
3304 3305 3306 3307 3308 3309

	opt = conf_get_opt("ipoe", "relay-timeout");
	if (opt && atoi(opt) > 0)
		conf_relay_timeout = atoi(opt);
	else
		conf_relay_timeout = 3;
D
Dmitry Kozlov 已提交
3310

3311 3312 3313 3314 3315
	opt = conf_get_opt("ipoe", "relay-retransmit");
	if (opt && atoi(opt) > 0)
		conf_relay_retransmit = atoi(opt);
	else
		conf_relay_retransmit = 3;
D
Dmitry Kozlov 已提交
3316

3317 3318 3319 3320
	opt = conf_get_opt("ipoe", "agent-remote-id");
	if (opt)
		conf_agent_remote_id = opt;
	else
3321
		conf_agent_remote_id = NULL;
D
Dmitry Kozlov 已提交
3322

3323 3324 3325 3326 3327
	opt = conf_get_opt("ipoe", "ipv6");
	if (opt)
		conf_ipv6 = atoi(opt);
	else
		conf_ipv6 = 0;
D
Dmitry Kozlov 已提交
3328

K
Kozlov Dmitry 已提交
3329 3330 3331 3332 3333
	opt = conf_get_opt("ipoe", "noauth");
	if (opt)
		conf_noauth = atoi(opt);
	else
		conf_noauth = 0;
K
Kozlov Dmitry 已提交
3334 3335 3336 3337 3338 3339 3340 3341 3342 3343 3344 3345 3346 3347 3348

	conf_dhcpv4 = 0;
	conf_up = 0;

	list_for_each_entry(opt1, &s->items, entry) {
		if (strcmp(opt1->name, "start"))
			continue;
		if (!strcmp(opt1->val, "dhcpv4"))
			conf_dhcpv4 = 1;
		else if (!strcmp(opt1->val, "up"))
			conf_up = 1;
	}

	if (!conf_dhcpv4 && !conf_up)
		conf_dhcpv4 = 1;
D
Dmitry Kozlov 已提交
3349

3350 3351 3352 3353
	opt = conf_get_opt("ipoe", "proto");
	if (opt && atoi(opt) > 0)
		conf_proto = atoi(opt);
	else
3354
		conf_proto = 3;
D
Dmitry Kozlov 已提交
3355

D
Dmitry Kozlov 已提交
3356 3357 3358 3359 3360
	opt = conf_get_opt("ipoe", "vlan-timeout");
	if (opt && atoi(opt) > 0)
		conf_vlan_timeout = atoi(opt);
	else
		conf_vlan_timeout = 60;
D
Dmitry Kozlov 已提交
3361

3362 3363 3364 3365 3366
	opt = conf_get_opt("ipoe", "offer-timeout");
	if (opt && atoi(opt) > 0)
		conf_offer_timeout = atoi(opt);
	else
		conf_offer_timeout = 10;
D
Dmitry Kozlov 已提交
3367

3368
	conf_ip_pool = conf_get_opt("ipoe", "ip-pool");
3369
	conf_l4_redirect_pool = conf_get_opt("ipoe", "l4-redirect-ip-pool");
3370 3371 3372 3373

	conf_vlan_name = conf_get_opt("ipoe", "vlan-name");
	if (!conf_vlan_name)
		conf_vlan_name = "%I.%N";
D
Dmitry Kozlov 已提交
3374

3375 3376 3377 3378 3379
	opt = conf_get_opt("ipoe", "ip-unnumbered");
	if (opt)
		conf_ip_unnumbered = atoi(opt);
	else
		conf_ip_unnumbered = 1;
D
Dmitry Kozlov 已提交
3380

3381 3382 3383 3384 3385 3386 3387 3388 3389 3390 3391 3392
	opt = conf_get_opt("ipoe", "idle-timeout");
	if (opt)
		conf_idle_timeout = atoi(opt);
	else
		conf_idle_timeout = 0;

	opt = conf_get_opt("ipoe", "session-timeout");
	if (opt)
		conf_session_timeout = atoi(opt);
	else
		conf_session_timeout = 0;

3393 3394 3395 3396 3397 3398
	opt = conf_get_opt("ipoe", "soft-terminate");
	if (opt)
		conf_soft_terminate = atoi(opt);
	else
		conf_soft_terminate = 0;

3399 3400 3401 3402 3403 3404
	opt = conf_get_opt("ipoe", "check-mac-change");
	if (opt)
		conf_check_mac_change = atoi(opt);
	else
		conf_check_mac_change = 1;

3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415
	opt = conf_get_opt("ipoe", "calling-sid");
	if (opt) {
		if (!strcmp(opt, "mac"))
			conf_calling_sid = SID_MAC;
		else if (!strcmp(opt, "ip"))
			conf_calling_sid = SID_IP;
		else
			log_error("ipoe: failed to parse 'calling-sid=%s'\n", opt);
	} else
		conf_calling_sid = SID_MAC;

3416 3417 3418 3419
#ifdef RADIUS
	if (triton_module_loaded("radius"))
		load_radius_attrs();
#endif
D
Dmitry Kozlov 已提交
3420 3421

	parse_offer_delay(conf_get_opt("ipoe", "offer-delay"));
D
Dmitry Kozlov 已提交
3422

K
Kozlov Dmitry 已提交
3423 3424
	load_interfaces(s);
	load_local_nets(s);
D
Dmitry Kozlov 已提交
3425
	load_vlan_mon(s);
3426
	load_gw_addr(s);
K
Kozlov Dmitry 已提交
3427 3428
}

3429 3430 3431 3432 3433 3434 3435 3436
static struct triton_context_t l4_redirect_ctx = {
	.close = l4_redirect_ctx_close,
};

static struct triton_timer_t l4_redirect_timer = {
	.expire = l4_redirect_list_timer,
};

K
Kozlov Dmitry 已提交
3437 3438 3439
static void ipoe_init(void)
{
	ses_pool = mempool_create(sizeof(struct ipoe_session));
D
Dmitry Kozlov 已提交
3440
	disc_item_pool = mempool_create(sizeof(struct disc_item));
3441
	req_item_pool = mempool_create(sizeof(struct request_item));
K
Kozlov Dmitry 已提交
3442
	uc_pool = mempool_create(sizeof(struct unit_cache));
3443

3444 3445 3446
	triton_context_register(&l4_redirect_ctx, NULL);
	triton_context_wakeup(&l4_redirect_ctx);

K
Kozlov Dmitry 已提交
3447 3448
	load_config();

3449 3450 3451
	if (conf_l4_redirect_ipset)
		ipset_flush(conf_l4_redirect_ipset);

K
Kozlov Dmitry 已提交
3452
	cli_register_simple_cmd2(show_stat_exec, NULL, 2, "show", "stat");
D
Dmitry Kozlov 已提交
3453

K
Kozlov Dmitry 已提交
3454
	triton_event_register_handler(EV_CONFIG_RELOAD, (triton_event_func)load_config);
3455 3456

#ifdef RADIUS
3457
	if (triton_module_loaded("radius")) {
3458 3459
		triton_event_register_handler(EV_RADIUS_ACCESS_ACCEPT, (triton_event_func)ev_radius_access_accept);
		triton_event_register_handler(EV_RADIUS_COA, (triton_event_func)ev_radius_coa);
3460
	}
3461
#endif
D
Dmitry Kozlov 已提交
3462

3463
	connlimit_loaded = triton_module_loaded("connlimit");
3464
	radius_loaded = triton_module_loaded("radius");
K
Kozlov Dmitry 已提交
3465 3466
}

3467
DEFINE_INIT(52, ipoe_init);