ipoe.c 83.1 KB
Newer Older
K
Kozlov Dmitry 已提交
1 2 3 4 5 6 7
#include <unistd.h>
#include <stdlib.h>
#include <stdio.h>
#include <stdarg.h>
#include <errno.h>
#include <string.h>
#include <fcntl.h>
8
#include <assert.h>
K
Kozlov Dmitry 已提交
9 10 11
#include <time.h>
#include <arpa/inet.h>
#include <netinet/in.h>
12 13
#include <net/ethernet.h>
#include <netinet/ip.h>
K
Kozlov Dmitry 已提交
14 15 16
#include <sys/socket.h>
#include <sys/ioctl.h>
#include <linux/if.h>
17
#include <linux/route.h>
K
Kozlov Dmitry 已提交
18 19 20 21 22 23 24 25 26 27 28 29 30 31

#include <pcre.h>

#include "events.h"
#include "list.h"
#include "triton.h"
#include "log.h"
#include "mempool.h"
#include "utils.h"
#include "cli.h"
#include "ap_session.h"
#include "pwdb.h"
#include "ipdb.h"

32
#include "iputils.h"
33 34
#include "ipset.h"

K
Kozlov Dmitry 已提交
35 36 37 38 39 40
#include "connlimit.h"

#include "ipoe.h"

#include "memdebug.h"

41 42 43
#define USERNAME_UNSET 0
#define USERNAME_IFNAME 1
#define USERNAME_LUA 2
K
Kozlov Dmitry 已提交
44

K
Kozlov Dmitry 已提交
45 46 47
#define MODE_L2 0
#define MODE_L3 1

D
Dmitry Kozlov 已提交
48 49 50
struct ifaddr {
	struct list_head entry;
	in_addr_t addr;
51
	int mask;
D
Dmitry Kozlov 已提交
52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90
	int refs;
};

struct iplink_arg {
	pcre *re;
	const char *opt;
	long *arg1;
};

struct unit_cache {
	struct list_head entry;
	int ifindex;
};

struct l4_redirect {
	struct list_head entry;
	in_addr_t addr;
	time_t timeout;
};

struct gw_addr {
	struct list_head entry;
	in_addr_t addr;
	int mask;
	int mask1;
};

struct disc_item {
	struct list_head entry;
	struct dhcpv4_packet *pack;
	struct timespec ts;
};

struct delay {
	struct list_head entry;
	unsigned int conn_cnt;
	int delay;
};

91 92 93 94 95 96 97
struct request_item {
	struct list_head entry;
	uint32_t xid;
	time_t expire;
	int cnt;
};

98 99
enum {SID_MAC, SID_IP};

K
Kozlov Dmitry 已提交
100
static int conf_dhcpv4 = 1;
101 102
static int conf_up;
static int conf_mode;
K
Kozlov Dmitry 已提交
103
static int conf_shared = 1;
104
static int conf_ifcfg = 1;
105 106 107
static int conf_nat;
static int conf_arp;
static int conf_ipv6;
108
static uint32_t conf_src;
109
static const char *conf_ip_pool;
110
static const char *conf_l4_redirect_pool;
K
Kozlov Dmitry 已提交
111 112
//static int conf_dhcpv6;
static int conf_username;
113
static const char *conf_password;
K
Kozlov Dmitry 已提交
114
static int conf_unit_cache;
K
Kozlov Dmitry 已提交
115
static int conf_noauth;
116 117 118 119
#ifdef RADIUS
static int conf_attr_dhcp_client_ip;
static int conf_attr_dhcp_router_ip;
static int conf_attr_dhcp_mask;
120
static int conf_attr_dhcp_lease_time;
D
Dmitry Kozlov 已提交
121
static int conf_attr_dhcp_renew_time;
122
static int conf_attr_l4_redirect;
123 124
static int conf_attr_l4_redirect_table;
static int conf_attr_l4_redirect_ipset;
125
static const char *conf_attr_dhcp_opt82;
126 127
static const char *conf_attr_dhcp_opt82_remote_id;
static const char *conf_attr_dhcp_opt82_circuit_id;
128 129
#endif
static int conf_l4_redirect_table;
130
static int conf_l4_redirect_on_reject;
131
static const char *conf_l4_redirect_ipset;
D
Dmitry Kozlov 已提交
132
static int conf_vlan_timeout = 30;
133
static int conf_max_request = 3;
134 135
static int conf_session_timeout;
static int conf_idle_timeout;
136

K
Kozlov Dmitry 已提交
137
static const char *conf_relay;
K
Kozlov Dmitry 已提交
138 139 140 141 142

#ifdef USE_LUA
static const char *conf_lua_username_func;
#endif

143 144 145
static int conf_offer_timeout = 10;
static int conf_relay_timeout = 3;
static int conf_relay_retransmit = 3;
146
static LIST_HEAD(conf_gw_addr);
K
Kozlov Dmitry 已提交
147 148 149
static int conf_netmask = 24;
static int conf_lease_time = 600;
static int conf_lease_timeout = 660;
D
Dmitry Kozlov 已提交
150
static int conf_renew_time = 300;
K
Kozlov Dmitry 已提交
151
static int conf_verbose;
152
static const char *conf_agent_remote_id;
153
static int conf_proto;
D
Dmitry Kozlov 已提交
154
static LIST_HEAD(conf_offer_delay);
155
static const char *conf_vlan_name;
156
static int conf_ip_unnumbered;
157
static int conf_check_mac_change;
158
static int conf_soft_terminate;
159
static int conf_calling_sid = SID_MAC;
K
Kozlov Dmitry 已提交
160 161 162

static unsigned int stat_starting;
static unsigned int stat_active;
D
Dmitry Kozlov 已提交
163
static unsigned int stat_delayed_offer;
K
Kozlov Dmitry 已提交
164 165

static mempool_t ses_pool;
D
Dmitry Kozlov 已提交
166
static mempool_t disc_item_pool;
167
static mempool_t req_item_pool;
K
Kozlov Dmitry 已提交
168

169
static int connlimit_loaded;
170
static int radius_loaded;
171

K
Kozlov Dmitry 已提交
172
static LIST_HEAD(serv_list);
D
Dmitry Kozlov 已提交
173
static pthread_mutex_t serv_lock = PTHREAD_MUTEX_INITIALIZER;
D
Dmitry Kozlov 已提交
174

K
Kozlov Dmitry 已提交
175 176 177 178 179
static pthread_mutex_t uc_lock = PTHREAD_MUTEX_INITIALIZER;
static LIST_HEAD(uc_list);
static int uc_size;
static mempool_t uc_pool;

180 181 182 183 184
static pthread_rwlock_t l4_list_lock = PTHREAD_RWLOCK_INITIALIZER;
static LIST_HEAD(l4_redirect_list);
static struct triton_timer_t l4_redirect_timer;
static struct triton_context_t l4_redirect_ctx;

K
Kozlov Dmitry 已提交
185
static void ipoe_session_finished(struct ap_session *s);
K
Kozlov Dmitry 已提交
186
static void ipoe_drop_sessions(struct ipoe_serv *serv, struct ipoe_session *skip);
D
Dmitry Kozlov 已提交
187
static void ipoe_serv_release(struct ipoe_serv *serv);
K
Kozlov Dmitry 已提交
188
static void __ipoe_session_activate(struct ipoe_session *ses);
189
static void ipoe_ses_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack);
D
Dmitry Kozlov 已提交
190
static void __ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack, int force);
191
static void ipoe_session_keepalive(struct dhcpv4_packet *pack);
D
Dmitry Kozlov 已提交
192
static void add_interface(const char *ifname, int ifindex, const char *opt, int parent_ifindex, int vid);
D
Dmitry Kozlov 已提交
193
static int get_offer_delay();
194
static void __ipoe_session_start(struct ipoe_session *ses);
195 196
static int ipoe_rad_send_auth_request(struct rad_plugin_t *rad, struct rad_packet_t *pack);
static int ipoe_rad_send_acct_request(struct rad_plugin_t *rad, struct rad_packet_t *pack);
K
Kozlov Dmitry 已提交
197

K
Kozlov Dmitry 已提交
198
static struct ipoe_session *ipoe_session_lookup(struct ipoe_serv *serv, struct dhcpv4_packet *pack, struct ipoe_session **opt82_ses)
K
Kozlov Dmitry 已提交
199
{
K
Kozlov Dmitry 已提交
200
	struct ipoe_session *ses, *res = NULL;
D
Dmitry Kozlov 已提交
201

K
Kozlov Dmitry 已提交
202 203
	uint8_t *agent_circuit_id = NULL;
	uint8_t *agent_remote_id = NULL;
K
Kozlov Dmitry 已提交
204 205 206 207
	int opt82_match;

	if (opt82_ses)
		*opt82_ses = NULL;
K
Kozlov Dmitry 已提交
208

209
	if (!conf_check_mac_change || (pack->relay_agent && dhcpv4_parse_opt82(pack->relay_agent, &agent_circuit_id, &agent_remote_id))) {
K
Kozlov Dmitry 已提交
210 211 212
		agent_circuit_id = NULL;
		agent_remote_id = NULL;
	}
K
Kozlov Dmitry 已提交
213

K
Kozlov Dmitry 已提交
214
	list_for_each_entry(ses, &serv->sessions, entry) {
215
		opt82_match = conf_check_mac_change && pack->relay_agent != NULL;
D
Dmitry Kozlov 已提交
216

217
		if (agent_circuit_id && !ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
218
			opt82_match = 0;
D
Dmitry Kozlov 已提交
219

K
Kozlov Dmitry 已提交
220 221
		if (opt82_match && agent_remote_id && !ses->agent_remote_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
222

K
Kozlov Dmitry 已提交
223 224
		if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
225

K
Kozlov Dmitry 已提交
226 227
		if (opt82_match && !agent_remote_id && ses->agent_remote_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
228

K
Kozlov Dmitry 已提交
229
		if (opt82_match && agent_circuit_id) {
K
Kozlov Dmitry 已提交
230
			if (*agent_circuit_id != *ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
231
				opt82_match = 0;
D
Dmitry Kozlov 已提交
232

K
Kozlov Dmitry 已提交
233
			if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
K
Kozlov Dmitry 已提交
234
				opt82_match = 0;
K
Kozlov Dmitry 已提交
235
		}
D
Dmitry Kozlov 已提交
236

K
Kozlov Dmitry 已提交
237
		if (opt82_match && agent_remote_id) {
K
Kozlov Dmitry 已提交
238
			if (*agent_remote_id != *ses->agent_remote_id)
K
Kozlov Dmitry 已提交
239 240
				opt82_match = 0;

K
Kozlov Dmitry 已提交
241
			if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
K
Kozlov Dmitry 已提交
242
				opt82_match = 0;
K
Kozlov Dmitry 已提交
243
		}
K
Kozlov Dmitry 已提交
244 245 246

		if (opt82_match && opt82_ses)
			*opt82_ses = ses;
D
Dmitry Kozlov 已提交
247

D
Dmitry Kozlov 已提交
248
		if (memcmp(pack->hdr->chaddr, ses->hwaddr, ETH_ALEN))
K
Kozlov Dmitry 已提交
249
			continue;
D
Dmitry Kozlov 已提交
250

K
Kozlov Dmitry 已提交
251 252
		res = ses;
		break;
D
Dmitry Kozlov 已提交
253

K
Kozlov Dmitry 已提交
254
		/*if (pack->client_id && !ses->client_id)
255
			continue;
D
Dmitry Kozlov 已提交
256

257 258
		if (!pack->client_id && ses->client_id)
			continue;
D
Dmitry Kozlov 已提交
259

K
Kozlov Dmitry 已提交
260 261 262 263 264 265 266
		if (pack->client_id) {
			if (pack->client_id->len != ses->client_id->len)
				continue;
			if (memcmp(pack->client_id->data, ses->client_id->data, pack->client_id->len))
				continue;
		}

K
Kozlov Dmitry 已提交
267 268 269 270 271
		ses1 = ses;

		if (pack->hdr->xid != ses->xid)
			continue;

K
Kozlov Dmitry 已提交
272
		return ses;*/
K
Kozlov Dmitry 已提交
273 274
	}

K
Kozlov Dmitry 已提交
275 276
	if (!res || !pack->relay_agent || !opt82_ses || *opt82_ses)
		return res;
D
Dmitry Kozlov 已提交
277

K
Kozlov Dmitry 已提交
278 279 280
	list_for_each_entry(ses, &serv->sessions, entry) {
		if (agent_circuit_id && !ses->agent_circuit_id)
			continue;
D
Dmitry Kozlov 已提交
281

K
Kozlov Dmitry 已提交
282 283
		if (opt82_match && agent_remote_id && !ses->agent_remote_id)
			continue;
D
Dmitry Kozlov 已提交
284

K
Kozlov Dmitry 已提交
285 286
		if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
			continue;
D
Dmitry Kozlov 已提交
287

K
Kozlov Dmitry 已提交
288 289
		if (opt82_match && !agent_remote_id && ses->agent_remote_id)
			continue;
D
Dmitry Kozlov 已提交
290

K
Kozlov Dmitry 已提交
291 292 293
		if (opt82_match && agent_circuit_id) {
			if (*agent_circuit_id != *ses->agent_circuit_id)
				continue;
D
Dmitry Kozlov 已提交
294

K
Kozlov Dmitry 已提交
295 296 297
			if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
				continue;
		}
D
Dmitry Kozlov 已提交
298

K
Kozlov Dmitry 已提交
299 300 301 302 303 304 305 306 307 308 309
		if (opt82_match && agent_remote_id) {
			if (*agent_remote_id != *ses->agent_remote_id)
				continue;

			if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
				continue;
		}

		*opt82_ses = ses;
		break;
	}
D
Dmitry Kozlov 已提交
310

K
Kozlov Dmitry 已提交
311
	return res;
K
Kozlov Dmitry 已提交
312 313 314 315 316 317 318 319
}

static void ipoe_session_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), timer);

	triton_timer_del(t);

K
Kozlov Dmitry 已提交
320
	log_ppp_info2("ipoe: session timed out\n");
K
Kozlov Dmitry 已提交
321

322
	ap_session_terminate(&ses->ses, TERM_LOST_CARRIER, 1);
K
Kozlov Dmitry 已提交
323 324
}

325 326 327 328 329 330 331 332
static void ipoe_session_l4_redirect_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), l4_redirect_timer);

	triton_timer_del(t);

	log_ppp_info2("ipoe: session timed out\n");

333
	ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
334 335
}

336 337 338 339 340 341 342 343 344 345 346 347 348 349
static void ipoe_relay_timeout(struct triton_timer_t *t)
{
	struct ipoe_session *ses = container_of(t, typeof(*ses), timer);

	if (!ses->serv->dhcpv4_relay || !ses->dhcpv4_request) {
		triton_timer_del(t);
		return;
	}

	if (++ses->relay_retransmit > conf_relay_retransmit) {
		triton_timer_del(t);

		log_ppp_info2("ipoe: relay timed out\n");

350
		ap_session_terminate(&ses->ses, TERM_LOST_CARRIER, 1);
351 352 353 354 355
	} else
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
}


356
static char *ipoe_session_get_username(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
357
{
358 359 360
	if (ses->username)
		return ses->username;

K
Kozlov Dmitry 已提交
361
#ifdef USE_LUA
362 363 364
	if (ses->serv->opt_username == USERNAME_LUA)
		return ipoe_lua_get_username(ses, ses->serv->opt_lua_username_func ? : conf_lua_username_func);
	else
K
Kozlov Dmitry 已提交
365
#endif
366 367
	if (!ses->dhcpv4_request)
		return _strdup(ses->ctrl.calling_station_id);
368

369
	return _strdup(ses->ses.ifname);
K
Kozlov Dmitry 已提交
370 371
}

372
static void l4_redirect_list_add(in_addr_t addr)
373 374 375 376 377 378 379 380 381 382 383 384
{
	struct l4_redirect *n = _malloc(sizeof(*n));
	struct timespec ts;

	if (!n)
		return;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	memset(n, 0, sizeof(*n));
	n->addr = addr;
	n->timeout = ts.tv_sec + conf_l4_redirect_on_reject;
D
Dmitry Kozlov 已提交
385

386
	ipoe_nl_add_exclude(addr, 32);
387 388 389 390 391 392

	if (conf_l4_redirect_table)
		iprule_add(addr, conf_l4_redirect_table);

	if (conf_l4_redirect_ipset)
		ipset_add(conf_l4_redirect_ipset, addr);
393 394

	pthread_rwlock_wrlock(&l4_list_lock);
D
Dmitry Kozlov 已提交
395

396
	list_add_tail(&n->entry, &l4_redirect_list);
D
Dmitry Kozlov 已提交
397

398 399 400
	if (!l4_redirect_timer.tpd)
		triton_timer_add(&l4_redirect_ctx, &l4_redirect_timer, 0);

D
Dmitry Kozlov 已提交
401
	pthread_rwlock_unlock(&l4_list_lock);
402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431
}

static int l4_redirect_list_check(in_addr_t addr)
{
	struct l4_redirect *n;

	pthread_rwlock_rdlock(&l4_list_lock);
	list_for_each_entry(n, &l4_redirect_list, entry) {
		if (n->addr == addr) {
			pthread_rwlock_unlock(&l4_list_lock);
			return 1;
		}
	}
	pthread_rwlock_unlock(&l4_list_lock);
	return 0;
}

static void l4_redirect_list_timer(struct triton_timer_t *t)
{
	struct l4_redirect *n;
	struct timespec ts;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	pthread_rwlock_wrlock(&l4_list_lock);
	while (!list_empty(&l4_redirect_list)) {
		n = list_entry(l4_redirect_list.next, typeof(*n), entry);
		if (ts.tv_sec > n->timeout) {
			list_del(&n->entry);
			pthread_rwlock_unlock(&l4_list_lock);
432 433 434

			if (conf_l4_redirect_table)
				iprule_del(n->addr, conf_l4_redirect_table);
D
Dmitry Kozlov 已提交
435

436 437
			if (conf_l4_redirect_ipset)
				ipset_del(conf_l4_redirect_ipset, n->addr);
D
Dmitry Kozlov 已提交
438

439
			ipoe_nl_del_exclude(n->addr);
440 441 442 443 444 445 446 447 448 449 450 451 452

			_free(n);
			pthread_rwlock_wrlock(&l4_list_lock);
		} else
			break;
	}

	if (list_empty(&l4_redirect_list) && l4_redirect_timer.tpd)
		triton_timer_del(&l4_redirect_timer);

	pthread_rwlock_unlock(&l4_list_lock);
}

453 454 455
static void ipoe_change_l4_redirect(struct ipoe_session *ses, int del)
{
	in_addr_t addr;
D
Dmitry Kozlov 已提交
456

457
	if (ses->ses.ipv4)
458
		addr = ses->ses.ipv4->peer_addr;
459 460
	else
		addr = ses->yiaddr;
D
Dmitry Kozlov 已提交
461

462
	if (ses->l4_redirect_table) {
463
		if (del) {
464
			iprule_del(addr, ses->l4_redirect_table);
465 466
			ses->l4_redirect_set = 0;
		} else {
467
			iprule_add(addr, ses->l4_redirect_table);
468 469 470
			ses->l4_redirect_set = 1;
		}
	}
471

472
	if (conf_l4_redirect_ipset || ses->l4_redirect_ipset) {
473
		if (del) {
474
			ipset_del(ses->l4_redirect_ipset ?: conf_l4_redirect_ipset, addr);
475 476
			ses->l4_redirect_set = 0;
		} else {
477
			ipset_add(ses->l4_redirect_ipset ?: conf_l4_redirect_ipset, addr);
478 479
			ses->l4_redirect_set = 1;
		}
K
Kozlov Dmitry 已提交
480
	}
481 482 483

	if (del && ses->l4_redirect_timer.tpd)
		triton_timer_del(&ses->l4_redirect_timer);
484 485 486 487 488 489 490
}

static void ipoe_change_addr(struct ipoe_session *ses, in_addr_t newaddr)
{

}

491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525
static int ipoe_create_interface(struct ipoe_session *ses)
{
	struct unit_cache *uc;
	struct ifreq ifr;

	pthread_mutex_lock(&uc_lock);
	if (!list_empty(&uc_list)) {
		uc = list_entry(uc_list.next, typeof(*uc), entry);
		ses->ifindex = uc->ifindex;
		list_del(&uc->entry);
		--uc_size;
		pthread_mutex_unlock(&uc_lock);
		mempool_free(uc);
	} else {
		pthread_mutex_unlock(&uc_lock);
		ses->ifindex = ipoe_nl_create(0, 0, ses->serv->opt_mode == MODE_L2 ? ses->serv->ifname : NULL, ses->hwaddr);
		if (ses->ifindex == -1) {
			log_ppp_error("ipoe: failed to create interface\n");
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
			return -1;
		}
	}

	memset(&ifr, 0, sizeof(ifr));
	ifr.ifr_ifindex = ses->ifindex;
	if (ioctl(sock_fd, SIOCGIFNAME, &ifr, sizeof(ifr))) {
		log_ppp_error("ipoe: failed to get interface name\n");
		ses->ifindex = -1;
		ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
		return -1;
	}

	strncpy(ses->ses.ifname, ifr.ifr_name, AP_IFNAME_LEN);
	ses->ses.ifindex = ses->ifindex;
	ses->ses.unit_idx = ses->ifindex;
526
	ses->ctrl.dont_ifcfg = !conf_ip_unnumbered;
527

528 529
	log_ppp_info2("create interface %s parent %s\n", ifr.ifr_name, ses->serv->ifname);

530 531 532
	return 0;
}

533 534 535 536 537 538 539
static void auth_result(struct ipoe_session *ses, int r)
{
	char *username = ses->username;

	ses->username = NULL;

	if (r == PWDB_DENIED) {
540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557
		if (conf_l4_redirect_on_reject && ses->dhcpv4_request) {
			ses->l4_redirect = 1;
			if (conf_l4_redirect_pool) {
				if (ses->ses.ipv4_pool_name)
					_free(ses->ses.ipv4_pool_name);
				ses->ses.ipv4_pool_name = _strdup(conf_l4_redirect_pool);
			}

			ses->l4_redirect_timer.expire = ipoe_session_l4_redirect_timeout;
			ses->l4_redirect_timer.expire_tv.tv_sec = conf_l4_redirect_on_reject;
			triton_timer_add(&ses->ctx, &ses->l4_redirect_timer, 0);

			ap_session_set_username(&ses->ses, username);
			log_ppp_info1("%s: authentication failed\n", ses->ses.username);
			log_ppp_info1("%s: start temporary session (l4-redirect)\n", ses->ses.username);
			goto cont;
		}

558 559 560 561 562 563 564 565
		pthread_rwlock_wrlock(&ses_lock);
		ses->ses.username = username;
		ses->ses.terminate_cause = TERM_AUTH_ERROR;
		pthread_rwlock_unlock(&ses_lock);
		if (conf_ppp_verbose)
			log_ppp_warn("authentication failed\n");
		if (conf_l4_redirect_on_reject && !ses->dhcpv4_request)
			l4_redirect_list_add(ses->yiaddr);
566
		ap_session_terminate(&ses->ses, TERM_AUTH_ERROR, 1);
567 568 569 570 571
		return;
	}

	ap_session_set_username(&ses->ses, username);
	log_ppp_info1("%s: authentication succeeded\n", ses->ses.username);
572 573

cont:
574 575 576 577
	triton_event_fire(EV_SES_AUTHORIZED, &ses->ses);

	if (ses->serv->opt_nat)
		ses->ses.ipv4 = ipdb_get_ipv4(&ses->ses);
D
Dmitry Kozlov 已提交
578

579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598
	if (ses->serv->opt_shared == 0 && (!ses->ses.ipv4 || ses->ses.ipv4->peer_addr == ses->yiaddr)) {
		strncpy(ses->ses.ifname, ses->serv->ifname, AP_IFNAME_LEN);
		ses->ses.ifindex = ses->serv->ifindex;
	} else if (ses->ifindex == -1) {
		if (ipoe_create_interface(ses))
			return;
	}

	ap_session_set_ifindex(&ses->ses);

	if (ses->dhcpv4_request && ses->serv->dhcpv4_relay) {
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);

		ses->timer.expire = ipoe_relay_timeout;
		ses->timer.period = conf_relay_timeout * 1000;
		triton_timer_add(&ses->ctx, &ses->timer, 0);
	} else
		__ipoe_session_start(ses);
}

K
Kozlov Dmitry 已提交
599 600 601 602
static void ipoe_session_start(struct ipoe_session *ses)
{
	int r;
	char *passwd;
603
	char *username;
604
	const char *pass;
D
Dmitry Kozlov 已提交
605

606 607 608 609
	if (ses->dhcpv4_request && conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(ses->dhcpv4_request, 0, log_ppp_info2);
	}
K
Kozlov Dmitry 已提交
610

D
Dmitry Kozlov 已提交
611
	__sync_add_and_fetch(&stat_starting, 1);
D
Dmitry Kozlov 已提交
612

613
	assert(!ses->ses.username);
614

615
	strncpy(ses->ses.ifname, ses->serv->ifname, AP_IFNAME_LEN);
D
Dmitry Kozlov 已提交
616

617 618 619 620 621
	username = ipoe_session_get_username(ses);

	if (!username) {
		ipoe_session_finished(&ses->ses);
		return;
K
Kozlov Dmitry 已提交
622
	}
623 624

	ses->ses.unit_idx = ses->serv->ifindex;
D
Dmitry Kozlov 已提交
625

K
Kozlov Dmitry 已提交
626 627 628 629
	triton_event_fire(EV_CTRL_STARTING, &ses->ses);
	triton_event_fire(EV_CTRL_STARTED, &ses->ses);

	ap_session_starting(&ses->ses);
D
Dmitry Kozlov 已提交
630 631

	if (conf_noauth)
632 633
		r = PWDB_SUCCESS;
	else {
634 635 636
		if (ses->serv->opt_shared && ipoe_create_interface(ses))
			return;

637
#ifdef RADIUS
638
		if (radius_loaded) {
639 640
			ses->radius.send_access_request = ipoe_rad_send_auth_request;
			ses->radius.send_accounting_request = ipoe_rad_send_acct_request;
641 642 643 644
			rad_register_plugin(&ses->ses, &ses->radius);
		}
#endif

645 646 647 648 649 650 651 652
		if (conf_password) {
			if (!strcmp(conf_password, "csid"))
				pass = ses->ctrl.calling_station_id;
			else
				pass = conf_password;
		} else
			pass = username;

653
		ses->username = username;
654
		r = pwdb_check(&ses->ses, (pwdb_callback)auth_result, ses, username, PPP_PAP, pass);
D
Dmitry Kozlov 已提交
655

656 657 658
		if (r == PWDB_WAIT)
			return;

K
Kozlov Dmitry 已提交
659
		if (r == PWDB_NO_IMPL) {
660
			passwd = pwdb_get_passwd(&ses->ses, username);
661
			if (!passwd || strcmp(passwd, pass))
K
Kozlov Dmitry 已提交
662 663 664 665 666
				r = PWDB_DENIED;
			else {
				r = PWDB_SUCCESS;
				_free(passwd);
			}
K
Kozlov Dmitry 已提交
667 668
		}
	}
D
Dmitry Kozlov 已提交
669

670
	auth_result(ses, r);
K
Kozlov Dmitry 已提交
671 672
}

673 674 675 676 677
static void find_gw_addr(struct ipoe_session *ses)
{
	struct gw_addr *a;

	list_for_each_entry(a, &conf_gw_addr, entry) {
678
		if ((ntohl(ses->yiaddr) & (a->mask1)) == (ntohl(a->addr) & (a->mask1))) {
679
			ses->router = a->addr;
680 681 682 683 684 685
			ses->mask = a->mask;
			return;
		}
	}
}

D
Dmitry Kozlov 已提交
686
static void __ipoe_session_start(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
687
{
688
	if (!ses->yiaddr) {
689
		dhcpv4_get_ip(ses->serv->dhcpv4, &ses->yiaddr, &ses->router, &ses->mask);
690 691 692
		if (ses->yiaddr)
			ses->dhcp_addr = 1;
	}
693

694 695 696
	if (!ses->yiaddr && !ses->serv->opt_nat)
		ses->ses.ipv4 = ipdb_get_ipv4(&ses->ses);

K
Kozlov Dmitry 已提交
697
	if (ses->ses.ipv4) {
698 699
		if (!ses->mask)
			ses->mask = ses->ses.ipv4->mask;
K
Kozlov Dmitry 已提交
700

K
Kozlov Dmitry 已提交
701 702
		if (!ses->yiaddr)
			ses->yiaddr = ses->ses.ipv4->peer_addr;
D
Dmitry Kozlov 已提交
703

704 705
		if (!ses->router)
			ses->router = ses->ses.ipv4->addr;
K
Kozlov Dmitry 已提交
706
	} /*else if (ses->yiaddr) {
K
Kozlov Dmitry 已提交
707 708 709 710 711
		ses->ses.ipv4 = &ses->ipv4;
		ses->ipv4.addr = ses->siaddr;
		ses->ipv4.peer_addr = ses->yiaddr;
		ses->ipv4.mask = ses->mask;
		ses->ipv4.owner = NULL;
K
Kozlov Dmitry 已提交
712
	}*/
D
Dmitry Kozlov 已提交
713

K
Kozlov Dmitry 已提交
714 715 716
	if (ses->dhcpv4_request) {
		if (!ses->yiaddr) {
			log_ppp_error("no free IPv4 address\n");
717
			ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
718 719
			return;
		}
720 721 722

		if (!ses->router)
			find_gw_addr(ses);
D
Dmitry Kozlov 已提交
723

724 725
		if (!ses->mask)
			ses->mask = conf_netmask;
D
Dmitry Kozlov 已提交
726

727 728
		if (!ses->mask)
			ses->mask = 32;
D
Dmitry Kozlov 已提交
729

730 731 732 733 734 735 736 737 738 739 740 741 742 743 744 745
		if (ses->dhcpv4_request->hdr->giaddr) {
			/*uint32_t mask = ses->mask == 32 ? 0xffffffff : (((1 << ses->mask) - 1) << (32 - ses->mask));

			ses->siaddr = iproute_get(ses->dhcpv4_request->hdr->giaddr);
			if ((ntohl(ses->router) & mask) == (ntohl(ses->siaddr) & mask))
				ses->siaddr = ses->router;
			else if (!ses->router)
				ses->router = ses->dhcpv4_request->hdr->giaddr;*/
			if (ses->serv->opt_mode == MODE_L2)
				ses->siaddr = ses->router;
			else {
				ses->siaddr = iproute_get(ses->dhcpv4_request->hdr->giaddr, NULL);
				if (!ses->router)
					ses->router = ses->dhcpv4_request->hdr->giaddr;
			}
		}
D
Dmitry Kozlov 已提交
746

747 748
		if (!ses->router) {
			log_ppp_error("can't determine router address\n");
749
			ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
750
			return;
D
Dmitry Kozlov 已提交
751 752
		}

K
Kozlov Dmitry 已提交
753 754
		if (!ses->siaddr && ses->router != ses->yiaddr)
			ses->siaddr = ses->router;
D
Dmitry Kozlov 已提交
755

756
		if (!ses->siaddr)
D
Dmitry Kozlov 已提交
757
			ses->siaddr = ses->serv->opt_src;
758

K
Kozlov Dmitry 已提交
759 760
		if (!ses->siaddr && ses->serv->dhcpv4_relay)
			ses->siaddr = ses->serv->dhcpv4_relay->giaddr;
761

K
Kozlov Dmitry 已提交
762 763
		if (!ses->siaddr) {
			log_ppp_error("can't determine Server-ID\n");
764
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
K
Kozlov Dmitry 已提交
765 766
			return;
		}
767

768 769 770
		if (ses->ses.ipv4 && !ses->ses.ipv4->addr)
			ses->ses.ipv4->addr = ses->siaddr;

D
Dmitry Kozlov 已提交
771
		dhcpv4_send_reply(DHCPOFFER, ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
772 773 774

		dhcpv4_packet_free(ses->dhcpv4_request);
		ses->dhcpv4_request = NULL;
D
Dmitry Kozlov 已提交
775

776
		ses->timer.expire = ipoe_session_timeout;
777
		ses->timer.period = 0;
778 779
		ses->timer.expire_tv.tv_sec = conf_offer_timeout;
		triton_timer_add(&ses->ctx, &ses->timer, 0);
780 781 782
	} else {
		if (!ses->siaddr)
			find_gw_addr(ses);
D
Dmitry Kozlov 已提交
783

784 785 786 787
		if (!ses->siaddr)
			ses->siaddr = ses->serv->opt_src;

		if (!ses->siaddr)
788
			ses->siaddr = iproute_get(ses->yiaddr, NULL);
789 790 791

		if (!ses->siaddr) {
			log_ppp_error("can't determine local address\n");
792
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
793 794
			return;
		}
D
Dmitry Kozlov 已提交
795

796 797 798
		if (ses->ses.ipv4 && !ses->ses.ipv4->addr)
			ses->ses.ipv4->addr = ses->siaddr;

K
Kozlov Dmitry 已提交
799
		__ipoe_session_activate(ses);
800
	}
K
Kozlov Dmitry 已提交
801 802
}

803
static void ipoe_serv_add_addr(struct ipoe_serv *serv, in_addr_t addr, int mask)
804 805 806 807
{
	struct ifaddr *a;

	pthread_mutex_lock(&serv->lock);
D
Dmitry Kozlov 已提交
808

809 810 811 812 813
	if (serv->opt_shared) {
		list_for_each_entry(a, &serv->addr_list, entry) {
			if (a->addr == addr) {
				a->refs++;
				pthread_mutex_unlock(&serv->lock);
K
Kozlov Dmitry 已提交
814

815 816
				return;
			}
K
Kozlov Dmitry 已提交
817 818 819 820 821
		}
	}

	a = _malloc(sizeof(*a));
	a->addr = addr;
822
	a->mask = mask;
K
Kozlov Dmitry 已提交
823 824 825
	a->refs = 1;
	list_add_tail(&a->entry, &serv->addr_list);

826
	if (ipaddr_add(serv->ifindex, a->addr, mask))
K
Kozlov Dmitry 已提交
827 828 829 830 831
		log_warn("ipoe: failed to add addess to interface '%s'\n", serv->ifname);

	pthread_mutex_unlock(&serv->lock);
}

832
static void ipoe_serv_del_addr(struct ipoe_serv *serv, in_addr_t addr, int lock)
K
Kozlov Dmitry 已提交
833 834 835
{
	struct ifaddr *a;

836 837
	if (lock)
		pthread_mutex_lock(&serv->lock);
K
Kozlov Dmitry 已提交
838 839 840 841

	list_for_each_entry(a, &serv->addr_list, entry) {
		if (a->addr == addr) {
			if (--a->refs == 0) {
842
				if (ipaddr_del(serv->ifindex, a->addr, a->mask))
K
Kozlov Dmitry 已提交
843 844 845
					log_warn("ipoe: failed to delete addess from interface '%s'\n", serv->ifname);
				list_del(&a->entry);
				_free(a);
846
			}
K
Kozlov Dmitry 已提交
847
			break;
848
		}
K
Kozlov Dmitry 已提交
849
	}
D
Dmitry Kozlov 已提交
850

851 852
	if (lock)
		pthread_mutex_unlock(&serv->lock);
K
Kozlov Dmitry 已提交
853 854 855 856 857 858
}

static void ipoe_ifcfg_add(struct ipoe_session *ses)
{
	struct ipoe_serv *serv = ses->serv;

859 860
	if (ses->serv->opt_ifcfg)
		ipoe_serv_add_addr(ses->serv, ses->siaddr, conf_ip_unnumbered ? 32 : ses->mask);
D
Dmitry Kozlov 已提交
861

862
	if (conf_ip_unnumbered) {
863
		if (iproute_add(serv->ifindex, ses->serv->opt_src ? ses->serv->opt_src : ses->router, ses->yiaddr, 0, conf_proto))
K
Kozlov Dmitry 已提交
864
			log_ppp_warn("ipoe: failed to add route to interface '%s'\n", serv->ifname);
865
	}
866 867 868 869

	ses->ifcfg = 1;
}

D
Dmitry Kozlov 已提交
870
static void ipoe_ifcfg_del(struct ipoe_session *ses, int lock)
871 872
{
	struct ipoe_serv *serv = ses->serv;
D
Dmitry Kozlov 已提交
873

874 875 876
	if (conf_ip_unnumbered) {
		if (iproute_del(serv->ifindex, ses->yiaddr, conf_proto))
			log_ppp_warn("ipoe: failed to delete route from interface '%s'\n", serv->ifname);
K
Kozlov Dmitry 已提交
877
	}
878 879

	if (ses->serv->opt_ifcfg)
880
		ipoe_serv_del_addr(ses->serv, ses->siaddr, lock);
881 882
}

K
Kozlov Dmitry 已提交
883
static void __ipoe_session_activate(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
884
{
885 886
	uint32_t addr;

887 888
	if (ses->terminating)
		return;
D
Dmitry Kozlov 已提交
889

890
	if (ses->ifindex != -1) {
K
Kozlov Dmitry 已提交
891
		addr = 0;
892 893 894 895 896 897
		if (!ses->ses.ipv4) {
			if (ses->serv->opt_mode == MODE_L3) {
				addr = 1;
				ses->ctrl.dont_ifcfg = 1;
			}
		} else if (ses->ses.ipv4->peer_addr != ses->yiaddr)
898
			addr = ses->ses.ipv4->peer_addr;
899 900
		else if (!conf_ip_unnumbered)
			ses->ctrl.dont_ifcfg = 1;
901 902 903 904 905 906 907 908 909 910

		if (ses->dhcpv4_request && ses->serv->opt_mode == MODE_L3) {
			in_addr_t gw;
			iproute_get(ses->router, &gw);
			if (gw)
				iproute_add(0, ses->siaddr, ses->yiaddr, gw, conf_proto);
			else
				iproute_add(0, ses->siaddr, ses->router, gw, conf_proto);
		}

911
		if (ipoe_nl_modify(ses->ifindex, ses->yiaddr, addr, NULL, NULL)) {
912
			ap_session_terminate(&ses->ses, TERM_NAS_ERROR, 1);
913 914
			return;
		}
K
Kozlov Dmitry 已提交
915
	}
D
Dmitry Kozlov 已提交
916

917 918 919 920 921 922
	if (!ses->ses.ipv4) {
		ses->ses.ipv4 = &ses->ipv4;
		ses->ipv4.owner = NULL;
		ses->ipv4.peer_addr = ses->yiaddr;
		ses->ipv4.addr = ses->siaddr;
	}
D
Dmitry Kozlov 已提交
923

924 925 926
	if (ses->ifindex == -1) {
		if (ses->serv->opt_ifcfg || (ses->serv->opt_mode == MODE_L2))
			ipoe_ifcfg_add(ses);
D
Dmitry Kozlov 已提交
927

928 929 930
		ipoe_nl_add_exclude(ses->yiaddr, 32);

		ses->ctrl.dont_ifcfg = 1;
931
	} else if (ses->ctrl.dont_ifcfg && ses->serv->opt_mode == MODE_L2)
932
		ipaddr_add(ses->ifindex, ses->siaddr, ses->mask);
D
Dmitry Kozlov 已提交
933

934 935
	if (ses->l4_redirect)
		ipoe_change_l4_redirect(ses, 0);
D
Dmitry Kozlov 已提交
936

937 938
	if (ses->serv->opt_mode == MODE_L2 && ses->serv->opt_ipv6 && sock6_fd != -1) {
		ses->ses.ipv6 = ipdb_get_ipv6(&ses->ses);
D
Dmitry Kozlov 已提交
939
		if (!ses->ses.ipv6)
940
			log_ppp_warn("ipoe: no free IPv6 address\n");
D
Dmitry Kozlov 已提交
941
		else if (!ses->ses.ipv6->peer_intf_id)
D
Dmitry Kozlov 已提交
942
			ses->ses.ipv6->peer_intf_id = htobe64(1);
943
	}
944

D
Dmitry Kozlov 已提交
945 946 947 948
	__sync_sub_and_fetch(&stat_starting, 1);
	__sync_add_and_fetch(&stat_active, 1);
	ses->started = 1;

K
Kozlov Dmitry 已提交
949 950
	ap_session_activate(&ses->ses);

951 952
	if (ses->dhcpv4_request) {
		if (ses->ses.state == AP_STATE_ACTIVE)
D
Dmitry Kozlov 已提交
953
			dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
954 955
		else
			dhcpv4_send_nak(ses->serv->dhcpv4, ses->dhcpv4_request);
K
Kozlov Dmitry 已提交
956

957 958 959
		dhcpv4_packet_free(ses->dhcpv4_request);
		ses->dhcpv4_request = NULL;
	}
D
Dmitry Kozlov 已提交
960

K
Kozlov Dmitry 已提交
961
	ses->timer.expire = ipoe_session_timeout;
962
	ses->timer.period = 0;
K
Kozlov Dmitry 已提交
963 964 965
	ses->timer.expire_tv.tv_sec = conf_lease_timeout ? conf_lease_timeout : ses->lease_time;
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);
K
Kozlov Dmitry 已提交
966 967
}

968
static void ipoe_session_activate(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
969
{
970
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);
D
Dmitry Kozlov 已提交
971

972 973 974 975 976 977 978
	if (ses->ses.state == AP_STATE_ACTIVE) {
		ipoe_session_keepalive(pack);
		return;
	}

	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
979

980 981
	ses->dhcpv4_request = pack;

K
Kozlov Dmitry 已提交
982
	if (ses->serv->dhcpv4_relay)
983
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
K
Kozlov Dmitry 已提交
984 985 986 987 988
	else
		__ipoe_session_activate(ses);
}

static void ipoe_session_keepalive(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
989
{
K
Kozlov Dmitry 已提交
990 991 992 993
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
994

K
Kozlov Dmitry 已提交
995 996
	ses->dhcpv4_request = pack;

K
Kozlov Dmitry 已提交
997 998 999 1000
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);

	ses->xid = ses->dhcpv4_request->hdr->xid;
D
Dmitry Kozlov 已提交
1001

1002
	if (/*ses->ses.state == AP_STATE_ACTIVE &&*/ ses->serv->dhcpv4_relay) {
1003
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, ses->dhcpv4_request, ses->relay_server_id, ses->serv->ifname, conf_agent_remote_id);
K
Kozlov Dmitry 已提交
1004 1005
		return;
	}
K
Kozlov Dmitry 已提交
1006

K
Kozlov Dmitry 已提交
1007
	if (ses->ses.state == AP_STATE_ACTIVE) {
D
Dmitry Kozlov 已提交
1008
		dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1009
	} else
1010
		dhcpv4_send_nak(ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request);
K
Kozlov Dmitry 已提交
1011 1012 1013 1014

	dhcpv4_packet_free(ses->dhcpv4_request);
	ses->dhcpv4_request = NULL;
}
D
Dmitry Kozlov 已提交
1015

K
Kozlov Dmitry 已提交
1016 1017 1018 1019 1020 1021 1022 1023
static void ipoe_session_decline(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1024

K
Kozlov Dmitry 已提交
1025 1026 1027 1028 1029
	if (pack->msg_type == DHCPDECLINE && ses->serv->dhcpv4_relay)
		dhcpv4_relay_send(ses->serv->dhcpv4_relay, pack, 0, ses->serv->ifname, conf_agent_remote_id);

	dhcpv4_packet_free(pack);

1030
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
K
Kozlov Dmitry 已提交
1031
}
K
Kozlov Dmitry 已提交
1032

K
Kozlov Dmitry 已提交
1033 1034 1035
static void ipoe_session_started(struct ap_session *s)
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);
D
Dmitry Kozlov 已提交
1036

1037
	log_ppp_info1("ipoe: session started\n");
K
Kozlov Dmitry 已提交
1038

K
Kozlov Dmitry 已提交
1039 1040
	if (ses->timer.tpd)
		triton_timer_mod(&ses->timer, 0);
D
Dmitry Kozlov 已提交
1041

1042 1043 1044 1045 1046 1047 1048 1049
	if (ses->ifindex != -1 && ses->xid) {
		ses->dhcpv4 = dhcpv4_create(ses->ctrl.ctx, ses->ses.ifname, "");
		if (!ses->dhcpv4) {
			//terminate
			return;
		}
		ses->dhcpv4->recv = ipoe_ses_recv_dhcpv4;
	}
K
Kozlov Dmitry 已提交
1050 1051 1052 1053
}

static void ipoe_session_free(struct ipoe_session *ses)
{
D
Dmitry Kozlov 已提交
1054 1055 1056 1057
	if (ses->started)
		__sync_sub_and_fetch(&stat_active, 1);
	else
		__sync_sub_and_fetch(&stat_starting, 1);
D
Dmitry Kozlov 已提交
1058

K
Kozlov Dmitry 已提交
1059 1060
	if (ses->timer.tpd)
		triton_timer_del(&ses->timer);
D
Dmitry Kozlov 已提交
1061

1062
	if (ses->l4_redirect_timer.tpd)
1063
		triton_timer_del(&ses->l4_redirect_timer);
K
Kozlov Dmitry 已提交
1064

K
Kozlov Dmitry 已提交
1065 1066
	if (ses->dhcpv4_request)
		dhcpv4_packet_free(ses->dhcpv4_request);
D
Dmitry Kozlov 已提交
1067

1068 1069
	if (ses->dhcpv4_relay_reply)
		dhcpv4_packet_free(ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1070

1071 1072
	if (ses->ctrl.called_station_id)
		_free(ses->ctrl.called_station_id);
D
Dmitry Kozlov 已提交
1073

1074 1075
	if (ses->ctrl.calling_station_id)
		_free(ses->ctrl.calling_station_id);
D
Dmitry Kozlov 已提交
1076

1077 1078
	if (ses->l4_redirect_ipset)
		_free(ses->l4_redirect_ipset);
1079

K
Kozlov Dmitry 已提交
1080
	triton_context_unregister(&ses->ctx);
D
Dmitry Kozlov 已提交
1081

K
Kozlov Dmitry 已提交
1082 1083
	if (ses->data)
		_free(ses->data);
D
Dmitry Kozlov 已提交
1084

K
Kozlov Dmitry 已提交
1085 1086 1087 1088 1089 1090
	mempool_free(ses);
}

static void ipoe_session_finished(struct ap_session *s)
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);
1091
	struct unit_cache *uc;
K
Kozlov Dmitry 已提交
1092

1093
	log_ppp_info1("ipoe: session finished\n");
K
Kozlov Dmitry 已提交
1094 1095 1096

	pthread_mutex_lock(&ses->serv->lock);
	list_del(&ses->entry);
D
Dmitry Kozlov 已提交
1097 1098
	if  ((ses->serv->vid || ses->serv->need_close) && list_empty(&ses->serv->sessions))
		triton_context_call(&ses->serv->ctx, (triton_event_func)ipoe_serv_release, ses->serv);
K
Kozlov Dmitry 已提交
1099 1100
	pthread_mutex_unlock(&ses->serv->lock);

1101 1102 1103 1104 1105 1106 1107 1108 1109 1110
	if (ses->ifindex != -1) {
		if (uc_size < conf_unit_cache && ipoe_nl_modify(ses->ifindex, 0, 0, "", NULL)) {
			uc = mempool_alloc(uc_pool);
			uc->ifindex = ses->ifindex;
			pthread_mutex_lock(&uc_lock);
			list_add_tail(&uc->entry, &uc_list);
			++uc_size;
			pthread_mutex_unlock(&uc_lock);
		} else
			ipoe_nl_delete(ses->ifindex);
1111 1112
	} else
		ipoe_nl_del_exclude(ses->yiaddr);
1113

1114
	if (ses->dhcp_addr)
1115
		dhcpv4_put_ip(ses->serv->dhcpv4, ses->yiaddr);
1116

K
Kozlov Dmitry 已提交
1117
	if (ses->relay_addr && ses->serv->dhcpv4_relay)
1118
		dhcpv4_relay_send_release(ses->serv->dhcpv4_relay, ses->hwaddr, ses->xid, ses->yiaddr, ses->client_id, ses->relay_agent, ses->serv->ifname, conf_agent_remote_id);
1119

1120
	if (ses->ifcfg)
D
Dmitry Kozlov 已提交
1121
		ipoe_ifcfg_del(ses, 1);
D
Dmitry Kozlov 已提交
1122

1123 1124
	if (ses->dhcpv4)
		dhcpv4_free(ses->dhcpv4);
1125 1126

	triton_event_fire(EV_CTRL_FINISHED, s);
D
Dmitry Kozlov 已提交
1127

K
Kozlov Dmitry 已提交
1128 1129 1130
	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_free, ses);
}

1131
static void ipoe_session_terminated(struct ipoe_session *ses)
K
Kozlov Dmitry 已提交
1132
{
K
Kozlov Dmitry 已提交
1133
	if (ses->l4_redirect_set)
1134 1135
		ipoe_change_l4_redirect(ses, 1);

1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152 1153 1154
	ap_session_finished(&ses->ses);
}

static void ipoe_session_terminated_pkt(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}

	dhcpv4_send_nak(ses->serv->dhcpv4, pack);

	dhcpv4_packet_free(pack);

	ipoe_session_terminated(ses);
}

1155
static int ipoe_session_terminate(struct ap_session *s, int hard)
1156 1157 1158
{
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);

1159
	if (hard || !conf_soft_terminate || ses->UP)
1160 1161 1162
		ipoe_session_terminated(ses);
	else
		ses->terminate = 1;
1163 1164

	return 0;
K
Kozlov Dmitry 已提交
1165 1166 1167 1168 1169 1170
}


static void ipoe_session_close(struct triton_context_t *ctx)
{
	struct ipoe_session *ses = container_of(ctx, typeof(*ses), ctx);
D
Dmitry Kozlov 已提交
1171

K
Kozlov Dmitry 已提交
1172 1173 1174 1175 1176 1177
	if (ses->ses.state)
		ap_session_terminate(&ses->ses, TERM_ADMIN_RESET, 1);
	else
		ipoe_session_finished(&ses->ses);
}

1178
static struct ipoe_session *ipoe_session_create_dhcpv4(struct ipoe_serv *serv, struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
1179 1180 1181
{
	struct ipoe_session *ses;
	int dlen = 0;
1182
	uint8_t *ptr = NULL;
D
Dmitry Kozlov 已提交
1183

1184 1185
	ses = ipoe_session_alloc();
	if (!ses)
K
Kozlov Dmitry 已提交
1186 1187 1188 1189
		return NULL;

	ses->serv = serv;
	ses->dhcpv4_request = pack;
1190
	strncpy(ses->ses.ifname, serv->ifname, AP_IFNAME_LEN);
D
Dmitry Kozlov 已提交
1191

K
Kozlov Dmitry 已提交
1192 1193 1194
	ses->xid = pack->hdr->xid;
	memcpy(ses->hwaddr, pack->hdr->chaddr, 6);
	ses->giaddr = pack->hdr->giaddr;
K
Kozlov Dmitry 已提交
1195
	ses->lease_time = conf_lease_time;
D
Dmitry Kozlov 已提交
1196
	ses->renew_time = conf_renew_time;
K
Kozlov Dmitry 已提交
1197 1198

	if (pack->client_id)
K
Kozlov Dmitry 已提交
1199
		dlen += sizeof(struct dhcpv4_option) + pack->client_id->len;
D
Dmitry Kozlov 已提交
1200

K
Kozlov Dmitry 已提交
1201 1202
	if (pack->relay_agent)
		dlen += sizeof(struct dhcpv4_option) + pack->relay_agent->len;
D
Dmitry Kozlov 已提交
1203

K
Kozlov Dmitry 已提交
1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214
	if (dlen) {
		ses->data = _malloc(dlen);
		if (!ses->data) {
			log_emerg("out of memery\n");
			mempool_free(ses);
			return NULL;
		}
		ptr = ses->data;
	}

	if (pack->client_id) {
K
Kozlov Dmitry 已提交
1215
		ses->client_id = (struct dhcpv4_option *)ptr;
K
Kozlov Dmitry 已提交
1216
		ses->client_id->len = pack->client_id->len;
1217
		ses->client_id->data = (uint8_t *)(ses->client_id + 1);
K
Kozlov Dmitry 已提交
1218
		memcpy(ses->client_id->data, pack->client_id->data, pack->client_id->len);
K
Kozlov Dmitry 已提交
1219 1220
		ptr += sizeof(struct dhcpv4_option) + pack->client_id->len;
	}
D
Dmitry Kozlov 已提交
1221

K
Kozlov Dmitry 已提交
1222 1223 1224
	if (pack->relay_agent) {
		ses->relay_agent = (struct dhcpv4_option *)ptr;
		ses->relay_agent->len = pack->relay_agent->len;
1225
		ses->relay_agent->data = (uint8_t *)(ses->relay_agent + 1);
K
Kozlov Dmitry 已提交
1226 1227 1228 1229
		memcpy(ses->relay_agent->data, pack->relay_agent->data, pack->relay_agent->len);
		ptr += sizeof(struct dhcpv4_option) + pack->relay_agent->len;
		if (dhcpv4_parse_opt82(ses->relay_agent, &ses->agent_circuit_id, &ses->agent_remote_id))
			ses->relay_agent = NULL;
K
Kozlov Dmitry 已提交
1230 1231
	}

1232
	ses->ctrl.dont_ifcfg = 1;
D
Dmitry Kozlov 已提交
1233

K
Kozlov Dmitry 已提交
1234
	ses->ctrl.calling_station_id = _malloc(19);
1235
	ses->ctrl.called_station_id = _strdup(serv->ifname);
D
Dmitry Kozlov 已提交
1236

K
Kozlov Dmitry 已提交
1237 1238 1239
	ptr = ses->hwaddr;
	sprintf(ses->ctrl.calling_station_id, "%02x:%02x:%02x:%02x:%02x:%02x",
		ptr[0], ptr[1], ptr[2], ptr[3], ptr[4], ptr[5]);
D
Dmitry Kozlov 已提交
1240

K
Kozlov Dmitry 已提交
1241 1242 1243
	ses->ses.ctrl = &ses->ctrl;
	ses->ses.chan_name = ses->ctrl.calling_station_id;

1244 1245 1246
	if (conf_ip_pool)
		ses->ses.ipv4_pool_name = _strdup(conf_ip_pool);

K
Kozlov Dmitry 已提交
1247 1248 1249 1250 1251 1252 1253
	triton_context_register(&ses->ctx, &ses->ses);

	triton_context_wakeup(&ses->ctx);

	//pthread_mutex_lock(&serv->lock);
	list_add_tail(&ses->entry, &serv->sessions);
	//pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
1254

D
Dmitry Kozlov 已提交
1255 1256
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);
D
Dmitry Kozlov 已提交
1257

1258
	dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1259 1260 1261 1262 1263 1264

	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_start, ses);

	return ses;
}

1265
static void __ipoe_session_terminate(struct ap_session *s)
K
Kozlov Dmitry 已提交
1266
{
1267 1268 1269 1270 1271 1272
	struct ipoe_session *ses = container_of(s, typeof(*ses), ses);

	if (ses->terminate)
		ipoe_session_terminated(ses);
	else
		ap_session_terminate(s, TERM_USER_REQUEST, 1);
K
Kozlov Dmitry 已提交
1273 1274
}

1275 1276 1277
static void ipoe_ses_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(dhcpv4->ctx, typeof(*ses), ctx);
K
Kozlov Dmitry 已提交
1278 1279 1280
	int opt82_match;
	uint8_t *agent_circuit_id = NULL;
	uint8_t *agent_remote_id = NULL;
1281 1282 1283

	if (ap_shutdown)
		return;
D
Dmitry Kozlov 已提交
1284

1285 1286
	if (conf_verbose) {
		log_ppp_info2("recv ");
1287
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
1288
	}
K
Kozlov Dmitry 已提交
1289

1290 1291 1292 1293 1294 1295 1296
	if (ses->terminate) {
		if (pack->msg_type != DHCPDISCOVER)
			dhcpv4_send_nak(dhcpv4, pack);
		triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_terminated, ses);
		return;
	}

K
Kozlov Dmitry 已提交
1297 1298 1299 1300 1301
	if (pack->relay_agent && dhcpv4_parse_opt82(pack->relay_agent, &agent_circuit_id, &agent_remote_id)) {
		agent_circuit_id = NULL;
		agent_remote_id = NULL;
	}

1302
	opt82_match = pack->relay_agent != NULL;
D
Dmitry Kozlov 已提交
1303

1304
	if (agent_circuit_id && !ses->agent_circuit_id)
K
Kozlov Dmitry 已提交
1305
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1306

K
Kozlov Dmitry 已提交
1307 1308
	if (opt82_match && agent_remote_id && !ses->agent_remote_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1309

K
Kozlov Dmitry 已提交
1310 1311
	if (opt82_match && !agent_circuit_id && ses->agent_circuit_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1312

K
Kozlov Dmitry 已提交
1313 1314
	if (opt82_match && !agent_remote_id && ses->agent_remote_id)
		opt82_match = 0;
D
Dmitry Kozlov 已提交
1315

K
Kozlov Dmitry 已提交
1316 1317 1318
	if (opt82_match && agent_circuit_id) {
		if (*agent_circuit_id != *ses->agent_circuit_id)
			opt82_match = 0;
D
Dmitry Kozlov 已提交
1319

K
Kozlov Dmitry 已提交
1320 1321 1322
		if (memcmp(agent_circuit_id + 1, ses->agent_circuit_id + 1, *agent_circuit_id))
			opt82_match = 0;
	}
D
Dmitry Kozlov 已提交
1323

K
Kozlov Dmitry 已提交
1324 1325 1326 1327 1328 1329 1330 1331
	if (opt82_match && agent_remote_id) {
		if (*agent_remote_id != *ses->agent_remote_id)
			opt82_match = 0;

		if (memcmp(agent_remote_id + 1, ses->agent_remote_id + 1, *agent_remote_id))
			opt82_match = 0;
	}

1332
	if (conf_check_mac_change && pack->relay_agent && !opt82_match) {
K
Kozlov Dmitry 已提交
1333 1334 1335 1336 1337 1338
		log_ppp_info2("port change detected\n");
		if (pack->msg_type == DHCPREQUEST)
			dhcpv4_send_nak(dhcpv4, pack);
		triton_context_call(ses->ctrl.ctx, (triton_event_func)__ipoe_session_terminate, &ses->ses);
		return;
	}
D
Dmitry Kozlov 已提交
1339

1340 1341 1342 1343
	if (pack->msg_type == DHCPDISCOVER) {
		if (ses->yiaddr) {
			if (ses->serv->dhcpv4_relay) {
				dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1344
				ipoe_session_keepalive(pack);
1345
			} else
D
Dmitry Kozlov 已提交
1346
				dhcpv4_send_reply(DHCPOFFER, dhcpv4, pack, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
1347 1348
		}
	} else if (pack->msg_type == DHCPREQUEST) {
D
Dmitry Kozlov 已提交
1349
		ses->xid = pack->hdr->xid;
1350 1351 1352 1353 1354 1355 1356 1357 1358
		if (pack->hdr->ciaddr == ses->yiaddr && pack->hdr->xid != ses->xid)
			ses->xid = pack->hdr->xid;
		if ((pack->server_id && (pack->server_id != ses->siaddr || pack->request_ip != ses->yiaddr)) ||
			(pack->hdr->ciaddr && (pack->hdr->xid != ses->xid || pack->hdr->ciaddr != ses->yiaddr))) {

			if (pack->server_id == ses->siaddr)
				dhcpv4_send_nak(dhcpv4, pack);
			else if (ses->serv->dhcpv4_relay)
				dhcpv4_relay_send(ses->serv->dhcpv4_relay, pack, 0, ses->serv->ifname, conf_agent_remote_id);
D
Dmitry Kozlov 已提交
1359

K
Kozlov Dmitry 已提交
1360
			triton_context_call(ses->ctrl.ctx, (triton_event_func)__ipoe_session_terminate, &ses->ses);
1361 1362 1363 1364 1365 1366
		} else {
			dhcpv4_packet_ref(pack);
			ipoe_session_keepalive(pack);
		}
	} else if (pack->msg_type == DHCPDECLINE || pack->msg_type == DHCPRELEASE) {
		dhcpv4_packet_ref(pack);
K
Kozlov Dmitry 已提交
1367
		triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_decline, pack);
1368 1369 1370
	}
}

1371 1372 1373 1374 1375 1376 1377 1378
static void ipoe_ses_recv_dhcpv4_discover(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1379

1380
	if (ses->yiaddr)
D
Dmitry Kozlov 已提交
1381
		dhcpv4_send_reply(DHCPOFFER, ses->dhcpv4 ?: ses->serv->dhcpv4, pack, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1382

1383 1384 1385 1386 1387 1388 1389 1390
	dhcpv4_packet_free(pack);
}

static void ipoe_ses_recv_dhcpv4_request(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	ses->xid = pack->hdr->xid;
D
Dmitry Kozlov 已提交
1391

1392 1393 1394 1395
	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1396

1397 1398 1399 1400 1401 1402
	if ((pack->server_id && (pack->server_id != ses->siaddr || pack->request_ip != ses->yiaddr)) ||
		(pack->hdr->ciaddr && (pack->hdr->ciaddr != ses->yiaddr))) {

		if (pack->server_id == ses->siaddr)
			dhcpv4_send_nak(ses->serv->dhcpv4, pack);

1403
		ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1404 1405 1406 1407 1408 1409 1410 1411 1412 1413 1414 1415 1416

		dhcpv4_packet_free(pack);
		return;
	}

	if (ses->ses.state == AP_STATE_STARTING && ses->yiaddr)
		ipoe_session_activate(pack);
	else if (ses->ses.state == AP_STATE_ACTIVE)
		ipoe_session_keepalive(pack);
	else
		dhcpv4_packet_free(pack);
}

D
Dmitry Kozlov 已提交
1417 1418 1419 1420 1421 1422 1423 1424
static void ipoe_serv_disc_timer(struct triton_timer_t *t)
{
	struct ipoe_serv *serv = container_of(t, typeof(*serv), disc_timer);
	struct disc_item *d;
	struct timespec ts;
	int delay, offer_delay;

	clock_gettime(CLOCK_MONOTONIC, &ts);
D
Dmitry Kozlov 已提交
1425 1426

	while (!list_empty(&serv->disc_list)) {
D
Dmitry Kozlov 已提交
1427
	  d = list_entry(serv->disc_list.next, typeof(*d), entry);
D
Dmitry Kozlov 已提交
1428

D
Dmitry Kozlov 已提交
1429 1430 1431 1432 1433 1434 1435 1436 1437 1438
		delay = (ts.tv_sec - d->ts.tv_sec) * 1000 + (ts.tv_nsec - d->ts.tv_nsec) / 1000000;
		offer_delay = get_offer_delay();

		if (delay < offer_delay - 1) {
			delay = offer_delay - delay;
			t->expire_tv.tv_sec = delay / 1000;
			t->expire_tv.tv_usec = (delay % 1000) * 1000;
			triton_timer_mod(t, 0);
			return;
		}
D
Dmitry Kozlov 已提交
1439

D
Dmitry Kozlov 已提交
1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457
		__ipoe_recv_dhcpv4(serv->dhcpv4, d->pack, 1);

		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);

		__sync_sub_and_fetch(&stat_delayed_offer, 1);
	}

	triton_timer_del(t);
}

static void ipoe_serv_add_disc(struct ipoe_serv *serv, struct dhcpv4_packet *pack, int offer_delay)
{
	struct disc_item *d = mempool_alloc(disc_item_pool);

	if (!d)
		return;
D
Dmitry Kozlov 已提交
1458

D
Dmitry Kozlov 已提交
1459
	__sync_add_and_fetch(&stat_delayed_offer, 1);
D
Dmitry Kozlov 已提交
1460

D
Dmitry Kozlov 已提交
1461 1462 1463 1464
	dhcpv4_packet_ref(pack);
	d->pack = pack;
	clock_gettime(CLOCK_MONOTONIC, &d->ts);
	list_add_tail(&d->entry, &serv->disc_list);
D
Dmitry Kozlov 已提交
1465

D
Dmitry Kozlov 已提交
1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482
	if (!serv->disc_timer.tpd) {
		serv->disc_timer.expire_tv.tv_sec = offer_delay / 1000;
		serv->disc_timer.expire_tv.tv_usec = (offer_delay % 1000) * 1000;
		triton_timer_add(&serv->ctx, &serv->disc_timer, 0);
	}
}

static void ipoe_serv_check_disc(struct ipoe_serv *serv, struct dhcpv4_packet *pack)
{
	struct disc_item *d;

	list_for_each_entry(d, &serv->disc_list, entry) {
		if (d->pack->hdr->xid != pack->hdr->xid)
			continue;

		if (memcmp(d->pack->hdr->chaddr, pack->hdr->chaddr, ETH_ALEN))
			continue;
D
Dmitry Kozlov 已提交
1483

D
Dmitry Kozlov 已提交
1484 1485 1486
		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);
D
Dmitry Kozlov 已提交
1487

D
Dmitry Kozlov 已提交
1488
		__sync_sub_and_fetch(&stat_delayed_offer, 1);
D
Dmitry Kozlov 已提交
1489

D
Dmitry Kozlov 已提交
1490 1491 1492 1493
		break;
	}
}

1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519
static int ipoe_serv_request_check(struct ipoe_serv *serv, uint32_t xid)
{
	struct request_item *r;
	struct list_head *pos, *n;
	struct timespec ts;

	clock_gettime(CLOCK_MONOTONIC, &ts);

	list_for_each_safe(pos, n, &serv->req_list) {
		r = list_entry(pos, typeof(*r), entry);
		if (r->xid == xid) {
			if (++r->cnt == conf_max_request) {
				list_del(&r->entry);
				mempool_free(r);
				return 1;
			}

			r->expire = ts.tv_sec + 30;
			return 0;
		}

		if (ts.tv_sec > r->expire) {
			list_del(&r->entry);
			mempool_free(r);
		}
	}
D
Dmitry Kozlov 已提交
1520

1521 1522 1523 1524 1525 1526 1527 1528 1529
	r = mempool_alloc(req_item_pool);
	r->xid = xid;
	r->expire = ts.tv_sec + 30;
	r->cnt = 0;
	list_add_tail(&r->entry, &serv->req_list);

	return 0;
}

1530 1531 1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542
static void port_change_detected(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}

	dhcpv4_packet_free(pack);

	log_ppp_warn("port change detected\n");

1543
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1544
}
D
Dmitry Kozlov 已提交
1545

1546 1547 1548 1549 1550 1551 1552 1553
static void mac_change_detected(struct dhcpv4_packet *pack)
{
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);

	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 0, log_ppp_info2);
	}
D
Dmitry Kozlov 已提交
1554

1555
	dhcpv4_packet_free(pack);
D
Dmitry Kozlov 已提交
1556

1557
	log_ppp_warn("mac change detected\n");
D
Dmitry Kozlov 已提交
1558

1559
	ap_session_terminate(&ses->ses, TERM_USER_REQUEST, 1);
1560 1561
}

D
Dmitry Kozlov 已提交
1562
static void __ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack, int force)
K
Kozlov Dmitry 已提交
1563 1564
{
	struct ipoe_serv *serv = container_of(dhcpv4->ctx, typeof(*serv), ctx);
K
Kozlov Dmitry 已提交
1565
	struct ipoe_session *ses, *opt82_ses;
D
Dmitry Kozlov 已提交
1566
	int offer_delay;
K
Kozlov Dmitry 已提交
1567 1568
	//struct dhcpv4_packet *reply;

D
Dmitry Kozlov 已提交
1569 1570 1571
	if (serv->timer.tpd)
		triton_timer_mod(&serv->timer, 0);

1572 1573
	if (ap_shutdown)
		return;
D
Dmitry Kozlov 已提交
1574

1575
	if (connlimit_loaded && pack->msg_type == DHCPDISCOVER && connlimit_check(serv->opt_shared ? cl_key_from_mac(pack->hdr->chaddr) : serv->ifindex))
1576
		return;
1577

K
Kozlov Dmitry 已提交
1578 1579
	pthread_mutex_lock(&serv->lock);
	if (pack->msg_type == DHCPDISCOVER) {
K
Kozlov Dmitry 已提交
1580
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1581
		if (!ses) {
1582 1583
			if (serv->opt_shared == 0)
				ipoe_drop_sessions(serv, NULL);
K
Kozlov Dmitry 已提交
1584
			else if (opt82_ses) {
1585 1586
				dhcpv4_packet_ref(pack);
				triton_context_call(&opt82_ses->ctx, (triton_event_func)mac_change_detected, pack);
K
Kozlov Dmitry 已提交
1587
			}
1588

D
Dmitry Kozlov 已提交
1589 1590 1591 1592 1593 1594 1595 1596 1597
			offer_delay = get_offer_delay();
			if (offer_delay == -1)
				goto out;

			if (offer_delay && !force) {
				ipoe_serv_add_disc(serv, pack, offer_delay);
				goto out;
			}

1598
			ses = ipoe_session_create_dhcpv4(serv, pack);
K
Kozlov Dmitry 已提交
1599
		}	else {
1600 1601 1602 1603 1604
			if (ses->terminate) {
				triton_context_call(ses->ctrl.ctx, (triton_event_func)ipoe_session_terminated, ses);
				goto out;
			}

1605
			if (conf_check_mac_change && ((opt82_ses && ses != opt82_ses) || (!opt82_ses && pack->relay_agent))) {
1606 1607 1608 1609
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)port_change_detected, pack);
				if (opt82_ses)
					triton_context_call(&opt82_ses->ctx, (triton_event_func)__ipoe_session_terminate, &opt82_ses->ses);
K
Kozlov Dmitry 已提交
1610 1611
				goto out;
			}
D
Dmitry Kozlov 已提交
1612

1613 1614
			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_discover, pack);
K
Kozlov Dmitry 已提交
1615 1616
		}
	} else if (pack->msg_type == DHCPREQUEST) {
D
Dmitry Kozlov 已提交
1617
		ipoe_serv_check_disc(serv, pack);
D
Dmitry Kozlov 已提交
1618

K
Kozlov Dmitry 已提交
1619
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1620 1621 1622

		if (!ses) {
			if (conf_verbose) {
1623
				log_debug("%s: recv ", serv->ifname);
D
Dmitry Kozlov 已提交
1624
				dhcpv4_print_packet(pack, 0, log_debug);
K
Kozlov Dmitry 已提交
1625
			}
D
Dmitry Kozlov 已提交
1626

1627 1628 1629 1630
			if (!pack->server_id)
				dhcpv4_send_nak(dhcpv4, pack);

			if (serv->opt_shared == 0)
1631
				ipoe_drop_sessions(serv, NULL);
1632
			else if (opt82_ses) {
1633 1634
				dhcpv4_packet_ref(pack);
				triton_context_call(&opt82_ses->ctx, (triton_event_func)mac_change_detected, pack);
1635 1636
			} else if (list_empty(&conf_offer_delay) || ipoe_serv_request_check(serv, pack->hdr->xid))
				dhcpv4_send_nak(dhcpv4, pack);
K
Kozlov Dmitry 已提交
1637
		} else {
1638 1639 1640 1641 1642 1643
			if (ses->terminate) {
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_terminated_pkt, pack);
				goto out;
			}

1644
			if (conf_check_mac_change && ((opt82_ses && ses != opt82_ses) || (!opt82_ses && pack->relay_agent))) {
1645 1646 1647 1648 1649
				dhcpv4_packet_ref(pack);
				triton_context_call(&ses->ctx, (triton_event_func)port_change_detected, pack);
				if (opt82_ses)
					triton_context_call(&opt82_ses->ctx, (triton_event_func)__ipoe_session_terminate, &opt82_ses->ses);
				goto out;
K
Kozlov Dmitry 已提交
1650
			}
D
Dmitry Kozlov 已提交
1651

1652 1653 1654 1655 1656
			if (serv->opt_shared == 0)
				ipoe_drop_sessions(serv, ses);

			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_request, pack);
K
Kozlov Dmitry 已提交
1657 1658
		}
	} else if (pack->msg_type == DHCPDECLINE || pack->msg_type == DHCPRELEASE) {
K
Kozlov Dmitry 已提交
1659
		ses = ipoe_session_lookup(serv, pack, &opt82_ses);
K
Kozlov Dmitry 已提交
1660
		if (ses) {
D
Dmitry Kozlov 已提交
1661
			ses->xid = pack->hdr->xid;
K
Kozlov Dmitry 已提交
1662 1663
			dhcpv4_packet_ref(pack);
			triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_decline, pack);
K
Kozlov Dmitry 已提交
1664
		}
K
Kozlov Dmitry 已提交
1665
	}
K
Kozlov Dmitry 已提交
1666 1667

out:
K
Kozlov Dmitry 已提交
1668 1669 1670
	pthread_mutex_unlock(&serv->lock);
}

D
Dmitry Kozlov 已提交
1671 1672 1673 1674 1675
static void ipoe_recv_dhcpv4(struct dhcpv4_serv *dhcpv4, struct dhcpv4_packet *pack)
{
	__ipoe_recv_dhcpv4(dhcpv4, pack, 0);
}

K
Kozlov Dmitry 已提交
1676 1677 1678 1679 1680 1681 1682 1683 1684
static int parse_dhcpv4_mask(uint32_t mask)
{
	int i;

	for (i = 31; i >= 0 && (mask & (1 << i)); i--);

	return 32 - (i + 1);
}

1685
static void ipoe_ses_recv_dhcpv4_relay(struct dhcpv4_packet *pack)
K
Kozlov Dmitry 已提交
1686
{
1687
	struct ipoe_session *ses = container_of(triton_context_self(), typeof(*ses), ctx);
K
Kozlov Dmitry 已提交
1688 1689
	struct dhcpv4_option *opt;

1690 1691
	if (ses->dhcpv4_relay_reply)
		dhcpv4_packet_free(ses->dhcpv4_relay_reply);
D
Dmitry Kozlov 已提交
1692

1693 1694 1695 1696 1697
	if (!ses->dhcpv4_request) {
		ses->dhcpv4_relay_reply = NULL;
		return;
	}

1698 1699
	ses->dhcpv4_relay_reply = pack;

K
Kozlov Dmitry 已提交
1700 1701 1702 1703 1704
	if (conf_verbose) {
		log_ppp_info2("recv ");
		dhcpv4_print_packet(pack, 1, log_ppp_info2);
	}

1705 1706 1707
	opt = dhcpv4_packet_find_opt(pack, 51);
	if (opt)
		ses->lease_time = ntohl(*(uint32_t *)opt->data);
K
Kozlov Dmitry 已提交
1708

D
Dmitry Kozlov 已提交
1709 1710 1711 1712
	opt = dhcpv4_packet_find_opt(pack, 58);
	if (opt)
		ses->renew_time = ntohl(*(uint32_t *)opt->data);

1713 1714 1715
	opt = dhcpv4_packet_find_opt(pack, 1);
	if (opt)
		ses->mask = parse_dhcpv4_mask(ntohl(*(uint32_t *)opt->data));
K
Kozlov Dmitry 已提交
1716

1717 1718 1719 1720
	opt = dhcpv4_packet_find_opt(pack, 3);
	if (opt)
		ses->router = *(uint32_t *)opt->data;

1721 1722 1723
	if (pack->msg_type == DHCPOFFER) {
		if (ses->ses.state == AP_STATE_STARTING) {
			triton_timer_del(&ses->timer);
K
Kozlov Dmitry 已提交
1724

1725 1726 1727 1728 1729 1730 1731 1732 1733
			ses->relay_server_id = pack->server_id;

			if (!ses->yiaddr) {
				ses->yiaddr = pack->hdr->yiaddr;
				ses->relay_addr = 1;
			}

			__ipoe_session_start(ses);
		} else
D
Dmitry Kozlov 已提交
1734
			dhcpv4_send_reply(DHCPOFFER, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1735 1736 1737 1738
	} else if (pack->msg_type == DHCPACK) {
		if (ses->ses.state == AP_STATE_STARTING)
			__ipoe_session_activate(ses);
		else
D
Dmitry Kozlov 已提交
1739
			dhcpv4_send_reply(DHCPACK, ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request, ses->yiaddr, ses->siaddr, ses->router, ses->mask, ses->lease_time, ses->renew_time, ses->dhcpv4_relay_reply);
K
Kozlov Dmitry 已提交
1740 1741

	} else if (pack->msg_type == DHCPNAK) {
1742
		dhcpv4_send_nak(ses->dhcpv4 ?: ses->serv->dhcpv4, ses->dhcpv4_request);
1743
		ap_session_terminate(&ses->ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
1744 1745
		return;
	}
D
Dmitry Kozlov 已提交
1746

K
Kozlov Dmitry 已提交
1747 1748 1749 1750 1751 1752 1753 1754 1755 1756 1757 1758
	dhcpv4_packet_free(ses->dhcpv4_relay_reply);
	ses->dhcpv4_relay_reply = NULL;
}

static void ipoe_recv_dhcpv4_relay(struct dhcpv4_packet *pack)
{
	struct ipoe_serv *serv = container_of(triton_context_self(), typeof(*serv), ctx);
	struct ipoe_session *ses;
	int found = 0;
	//struct dhcpv4_packet *reply;

	if (ap_shutdown) {
K
Kozlov Dmitry 已提交
1759
		dhcpv4_packet_free(pack);
K
Kozlov Dmitry 已提交
1760 1761 1762 1763 1764 1765 1766 1767 1768 1769 1770 1771
		return;
	}

	pthread_mutex_lock(&serv->lock);
	list_for_each_entry(ses, &serv->sessions, entry) {
		if (ses->xid != pack->hdr->xid)
			continue;
		if (memcmp(ses->hwaddr, pack->hdr->chaddr, 6))
			continue;

		found = 1;
		break;
K
Kozlov Dmitry 已提交
1772
	}
D
Dmitry Kozlov 已提交
1773

1774 1775
	if (found) {
		triton_context_call(&ses->ctx, (triton_event_func)ipoe_ses_recv_dhcpv4_relay, pack);
K
Kozlov Dmitry 已提交
1776 1777 1778
	} else
		dhcpv4_packet_free(pack);

K
Kozlov Dmitry 已提交
1779 1780 1781
	pthread_mutex_unlock(&serv->lock);
}

K
Kozlov Dmitry 已提交
1782

1783 1784 1785
static struct ipoe_session *ipoe_session_create_up(struct ipoe_serv *serv, struct ethhdr *eth, struct iphdr *iph)
{
	struct ipoe_session *ses;
1786
	uint8_t *hwaddr = eth->h_source;
1787

1788 1789
	if (ap_shutdown)
		return NULL;
D
Dmitry Kozlov 已提交
1790

1791 1792
	if (l4_redirect_list_check(iph->saddr))
		return NULL;
D
Dmitry Kozlov 已提交
1793

1794 1795
	ses = ipoe_session_alloc();
	if (!ses)
1796 1797 1798 1799
		return NULL;

	ses->serv = serv;
	memcpy(ses->hwaddr, eth->h_source, 6);
1800
	ses->yiaddr = iph->saddr;
1801
	ses->UP = 1;
K
Kozlov Dmitry 已提交
1802

1803
	ses->ctrl.called_station_id = _strdup(serv->ifname);
1804

1805 1806 1807 1808 1809 1810 1811 1812
	if (conf_calling_sid == SID_MAC) {
		ses->ctrl.calling_station_id = _malloc(19);
		sprintf(ses->ctrl.calling_station_id, "%02x:%02x:%02x:%02x:%02x:%02x",
				hwaddr[0], hwaddr[1], hwaddr[2], hwaddr[3], hwaddr[4], hwaddr[5]);
	} else {
		ses->ctrl.calling_station_id = _malloc(17);
		u_inet_ntoa(iph->saddr, ses->ctrl.calling_station_id);
	}
1813

1814 1815 1816 1817 1818 1819
	if (ses->serv->opt_username == USERNAME_IFNAME)
		ses->username = _strdup(serv->ifname);
	else {
		ses->username = _malloc(17);
		u_inet_ntoa(iph->saddr, ses->username);
	}
D
Dmitry Kozlov 已提交
1820

1821
	ses->ses.chan_name = ses->ctrl.calling_station_id;
D
Dmitry Kozlov 已提交
1822

1823 1824
	if (conf_ip_pool)
		ses->ses.ipv4_pool_name = _strdup(conf_ip_pool);
D
Dmitry Kozlov 已提交
1825

1826 1827 1828 1829 1830 1831 1832 1833
	triton_context_register(&ses->ctx, &ses->ses);

	triton_context_wakeup(&ses->ctx);

	//pthread_mutex_lock(&serv->lock);
	list_add_tail(&ses->entry, &serv->sessions);
	//pthread_mutex_unlock(&serv->lock);

D
Dmitry Kozlov 已提交
1834 1835 1836
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);

1837 1838 1839 1840 1841
	triton_context_call(&ses->ctx, (triton_event_func)ipoe_session_start, ses);

	return ses;
}

1842 1843 1844 1845 1846 1847 1848 1849 1850 1851 1852 1853 1854 1855 1856
struct ipoe_session *ipoe_session_alloc(void)
{
	struct ipoe_session *ses;

	ses = mempool_alloc(ses_pool);
	if (!ses) {
		log_emerg("out of memery\n");
		return NULL;
	}

	memset(ses, 0, sizeof(*ses));

	ap_session_init(&ses->ses);

	ses->ifindex = -1;
D
Dmitry Kozlov 已提交
1857

1858 1859 1860 1861 1862 1863 1864 1865
	ses->ctx.before_switch = log_switch;
	ses->ctx.close = ipoe_session_close;
	ses->ctrl.ctx = &ses->ctx;
	ses->ctrl.started = ipoe_session_started;
	ses->ctrl.finished = ipoe_session_finished;
	ses->ctrl.terminate = ipoe_session_terminate;
	ses->ctrl.type = CTRL_TYPE_IPOE;
	ses->ctrl.name = "ipoe";
1866
	ses->l4_redirect_table = conf_l4_redirect_table;
1867 1868

	ses->ses.ctrl = &ses->ctrl;
D
Dmitry Kozlov 已提交
1869

1870 1871 1872
	ses->ses.idle_timeout = conf_idle_timeout;
	ses->ses.session_timeout = conf_session_timeout;

1873 1874 1875
	return ses;
}

1876 1877 1878 1879 1880 1881 1882 1883
void ipoe_recv_up(int ifindex, struct ethhdr *eth, struct iphdr *iph)
{
	struct ipoe_serv *serv;
	struct ipoe_session *ses;

	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->ifindex != ifindex)
			continue;
K
Kozlov Dmitry 已提交
1884 1885 1886

		if (!serv->opt_up)
			return;
D
Dmitry Kozlov 已提交
1887

1888 1889
		pthread_mutex_lock(&serv->lock);
		list_for_each_entry(ses, &serv->sessions, entry) {
1890
			if (ses->yiaddr == iph->saddr) {
1891 1892 1893 1894 1895
				pthread_mutex_unlock(&serv->lock);
				return;
			}
		}
		pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
1896

1897
		ipoe_session_create_up(serv, eth, iph);
1898 1899

		break;
1900 1901 1902
	}
}

1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913 1914 1915
#ifdef RADIUS
static void ev_radius_access_accept(struct ev_radius_t *ev)
{
	struct ipoe_session *ses = container_of(ev->ses, typeof(*ses), ses);
	struct rad_attr_t *attr;

	if (ev->ses->ctrl->type != CTRL_TYPE_IPOE)
		return;

	list_for_each_entry(attr, &ev->reply->attrs, entry) {
		if (attr->attr->id == conf_attr_dhcp_client_ip)
			ses->yiaddr = attr->val.ipaddr;
		else if (attr->attr->id == conf_attr_dhcp_router_ip)
1916
			ses->router = attr->val.ipaddr;
1917
		else if (attr->attr->id == conf_attr_dhcp_mask) {
1918 1919 1920 1921
			if (attr->attr->type == ATTR_TYPE_INTEGER) {
				if (attr->val.integer > 0 && attr->val.integer < 31)
					ses->mask = attr->val.integer;
			} else if (attr->attr->type == ATTR_TYPE_IPADDR) {
1922 1923 1924
				if (attr->val.ipaddr == 0xffffffff)
					ses->mask = 32;
				else
1925
#if __BYTE_ORDER == __LITTLE_ENDIAN
1926
				ses->mask = 31 - ffs(htonl(attr->val.ipaddr));
1927
#else
1928
				ses->mask = 31 - ffs(attr->val.ipaddr);
1929 1930
#endif
			}
1931 1932 1933 1934 1935 1936
		} else if (attr->attr->id == conf_attr_l4_redirect) {
			if (attr->attr->type == ATTR_TYPE_STRING) {
				if (attr->len && attr->val.string[0] != '0')
					ses->l4_redirect = 1;
			} else if (attr->val.integer != 0)
				ses->l4_redirect = 1;
1937 1938
		} else if (attr->attr->id == conf_attr_dhcp_lease_time)
			ses->lease_time = attr->val.integer;
D
Dmitry Kozlov 已提交
1939 1940
		else if (attr->attr->id == conf_attr_dhcp_renew_time)
			ses->renew_time = attr->val.integer;
1941 1942 1943 1944 1945 1946
		else if (attr->attr->id == conf_attr_l4_redirect_table)
			ses->l4_redirect_table = attr->val.integer;
		else if (attr->attr->id == conf_attr_l4_redirect_ipset) {
			if (attr->attr->type == ATTR_TYPE_STRING)
				ses->l4_redirect_ipset = _strdup(attr->val.string);
		}
1947 1948 1949 1950 1951 1952 1953 1954
	}
}

static void ev_radius_coa(struct ev_radius_t *ev)
{
	struct ipoe_session *ses = container_of(ev->ses, typeof(*ses), ses);
	struct rad_attr_t *attr;
	int l4_redirect;
D
Dmitry Kozlov 已提交
1955

1956 1957
	if (ev->ses->ctrl->type != CTRL_TYPE_IPOE)
		return;
D
Dmitry Kozlov 已提交
1958

1959 1960 1961 1962 1963 1964 1965 1966 1967 1968 1969
	l4_redirect = ses->l4_redirect;

	list_for_each_entry(attr, &ev->request->attrs, entry) {
		if (attr->attr->id == conf_attr_l4_redirect) {
			if (attr->attr->type == ATTR_TYPE_STRING)
				ses->l4_redirect = attr->len && attr->val.string[0] != '0';
			else
				ses->l4_redirect = ((unsigned int)attr->val.integer) > 0;
		} else if (strcmp(attr->attr->name, "Framed-IP-Address") == 0) {
			if (ses->ses.ipv4 && ses->ses.ipv4->peer_addr != attr->val.ipaddr)
				ipoe_change_addr(ses, attr->val.ipaddr);
1970 1971
		} else if (attr->attr->id == conf_attr_dhcp_lease_time)
			ses->lease_time = attr->val.integer;
D
Dmitry Kozlov 已提交
1972 1973
		else if (attr->attr->id == conf_attr_dhcp_renew_time)
			ses->renew_time = attr->val.integer;
1974 1975 1976 1977 1978 1979 1980 1981 1982 1983
		else if (attr->attr->id == conf_attr_l4_redirect_table)
			ses->l4_redirect_table = attr->val.integer;
		else if (attr->attr->id == conf_attr_l4_redirect_ipset) {
			if (attr->attr->type == ATTR_TYPE_STRING) {
				if (ses->l4_redirect_ipset && strcmp(ses->l4_redirect_ipset, attr->val.string)) {
					_free(ses->l4_redirect_ipset);
					ses->l4_redirect_ipset = _strdup(attr->val.string);
				}
			}
		}
1984 1985 1986
	}

	//if (l4_redirect && !ses->l4_redirect) || (!l4_redirect && ses->l4_redirect))
K
Kozlov Dmitry 已提交
1987
	if (l4_redirect != ses->l4_redirect && ev->ses->state == AP_STATE_ACTIVE)
1988 1989
		ipoe_change_l4_redirect(ses, l4_redirect);
}
1990

1991
static int ipoe_rad_send_acct_request(struct rad_plugin_t *rad, struct rad_packet_t *pack)
1992 1993 1994 1995 1996
{
	struct ipoe_session *ses = container_of(rad, typeof(*ses), radius);

	if (!ses->relay_agent)
		return 0;
D
Dmitry Kozlov 已提交
1997

1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010
	if (conf_attr_dhcp_opt82 &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82, ses->relay_agent->data, ses->relay_agent->len))
		return -1;

	if (conf_attr_dhcp_opt82_remote_id && ses->agent_remote_id &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82_remote_id, ses->agent_remote_id + 1, *ses->agent_remote_id))
		return -1;

	if (conf_attr_dhcp_opt82_circuit_id && ses->agent_circuit_id &&
		rad_packet_add_octets(pack, NULL, conf_attr_dhcp_opt82_circuit_id, ses->agent_circuit_id + 1, *ses->agent_circuit_id))
		return -1;

	return 0;
2011 2012
}

2013 2014 2015 2016 2017 2018 2019 2020 2021 2022 2023 2024
static int ipoe_rad_send_auth_request(struct rad_plugin_t *rad, struct rad_packet_t *pack)
{
	struct ipoe_session *ses = container_of(rad, typeof(*ses), radius);

	if (ipoe_rad_send_acct_request(rad, pack))
		return -1;

	if (ses->yiaddr)
		rad_packet_add_ipaddr(pack, NULL, "Framed-IP-Address", ses->yiaddr);

	return 0;
}
2025 2026
#endif

D
Dmitry Kozlov 已提交
2027
static void ipoe_serv_release(struct ipoe_serv *serv)
K
Kozlov Dmitry 已提交
2028
{
2029 2030 2031 2032 2033 2034
	pthread_mutex_lock(&serv->lock);
	if (!list_empty(&serv->sessions)) {
		pthread_mutex_unlock(&serv->lock);
		return;
	}
	pthread_mutex_unlock(&serv->lock);
D
Dmitry Kozlov 已提交
2035

D
Dmitry Kozlov 已提交
2036
	if (serv->vid && !serv->need_close && !ap_shutdown) {
D
Dmitry Kozlov 已提交
2037 2038 2039 2040 2041 2042 2043
		if (serv->timer.tpd)
			triton_timer_mod(&serv->timer, 0);
		else
			triton_timer_add(&serv->ctx, &serv->timer, 0);

		return;
	}
D
Dmitry Kozlov 已提交
2044

D
Dmitry Kozlov 已提交
2045 2046 2047 2048 2049
	log_info2("ipoe: stop interface %s\n", serv->ifname);

	pthread_mutex_lock(&serv_lock);
	list_del(&serv->entry);
	pthread_mutex_unlock(&serv_lock);
2050

K
Kozlov Dmitry 已提交
2051 2052
	if (serv->dhcpv4)
		dhcpv4_free(serv->dhcpv4);
D
Dmitry Kozlov 已提交
2053

K
Kozlov Dmitry 已提交
2054
	if (serv->dhcpv4_relay) {
2055
		ipoe_serv_del_addr(serv, serv->dhcpv4_relay->giaddr, 0);
K
Kozlov Dmitry 已提交
2056 2057
		dhcpv4_relay_free(serv->dhcpv4_relay, &serv->ctx);
	}
K
Kozlov Dmitry 已提交
2058

2059 2060 2061
	if (serv->arp)
		arpd_stop(serv->arp);

D
Dmitry Kozlov 已提交
2062 2063 2064 2065 2066 2067 2068
	while (!list_empty(&serv->disc_list)) {
		struct disc_item *d = list_entry(serv->disc_list.next, typeof(*d), entry);
		list_del(&d->entry);
		dhcpv4_packet_free(d->pack);
		mempool_free(d);
		__sync_sub_and_fetch(&stat_delayed_offer, 1);
	}
D
Dmitry Kozlov 已提交
2069

2070 2071 2072 2073 2074
	while (!list_empty(&serv->req_list)) {
		struct request_item *r = list_first_entry(&serv->req_list, typeof(*r), entry);
		list_del(&r->entry);
		mempool_free(r);
	}
D
Dmitry Kozlov 已提交
2075 2076 2077

	if (serv->disc_timer.tpd)
		triton_timer_del(&serv->disc_timer);
D
Dmitry Kozlov 已提交
2078

D
Dmitry Kozlov 已提交
2079 2080 2081 2082 2083 2084 2085 2086
	if (serv->timer.tpd)
		triton_timer_del(&serv->timer);

	if (serv->vid) {
		log_info2("ipoe: remove vlan %s\n", serv->ifname);
		iplink_vlan_del(serv->ifindex);
		ipoe_nl_add_vlan_mon_vid(serv->parent_ifindex, serv->vid);
	}
D
Dmitry Kozlov 已提交
2087

D
Dmitry Kozlov 已提交
2088
	triton_context_unregister(&serv->ctx);
K
Kozlov Dmitry 已提交
2089 2090 2091 2092 2093

	_free(serv->ifname);
	_free(serv);
}

D
Dmitry Kozlov 已提交
2094 2095 2096 2097 2098 2099 2100 2101 2102 2103 2104 2105 2106 2107 2108
static void ipoe_serv_close(struct triton_context_t *ctx)
{
	struct ipoe_serv *serv = container_of(ctx, typeof(*serv), ctx);

	pthread_mutex_lock(&serv->lock);
	if (!list_empty(&serv->sessions)) {
		serv->need_close = 1;
		pthread_mutex_unlock(&serv->lock);
		return;
	}
	pthread_mutex_unlock(&serv->lock);

	ipoe_serv_release(serv);
}

2109 2110 2111 2112 2113 2114 2115 2116
static void l4_redirect_ctx_close(struct triton_context_t *ctx)
{
	struct l4_redirect *n;

	pthread_rwlock_wrlock(&l4_list_lock);
	while (!list_empty(&l4_redirect_list)) {
		n = list_entry(l4_redirect_list.next, typeof(*n), entry);
		list_del(&n->entry);
2117 2118 2119

		if (conf_l4_redirect_table)
			iprule_del(n->addr, conf_l4_redirect_table);
D
Dmitry Kozlov 已提交
2120

2121 2122
		if (conf_l4_redirect_ipset)
			ipset_del(conf_l4_redirect_ipset, n->addr);
D
Dmitry Kozlov 已提交
2123

2124
		ipoe_nl_del_exclude(n->addr);
D
Dmitry Kozlov 已提交
2125

2126 2127 2128 2129 2130 2131
		_free(n);
	}
	pthread_rwlock_unlock(&l4_list_lock);

	if (l4_redirect_timer.tpd)
		triton_timer_del(&l4_redirect_timer);
D
Dmitry Kozlov 已提交
2132

2133 2134 2135
	triton_context_unregister(&l4_redirect_ctx);
}

K
Kozlov Dmitry 已提交
2136 2137 2138 2139 2140
static int show_stat_exec(const char *cmd, char * const *fields, int fields_cnt, void *client)
{
	cli_send(client, "ipoe:\r\n");
	cli_sendv(client,"  starting: %u\r\n", stat_starting);
	cli_sendv(client,"  active: %u\r\n", stat_active);
D
Dmitry Kozlov 已提交
2141
	cli_sendv(client,"  delayed: %u\r\n", stat_delayed_offer);
K
Kozlov Dmitry 已提交
2142 2143 2144 2145 2146 2147 2148 2149 2150 2151

	return CLI_CMD_OK;
}

void __export ipoe_get_stat(unsigned int **starting, unsigned int **active)
{
	*starting = &stat_starting;
	*active = &stat_active;
}

K
Kozlov Dmitry 已提交
2152 2153
static void __terminate(struct ap_session *ses)
{
2154
	ap_session_terminate(ses, TERM_NAS_REQUEST, 1);
K
Kozlov Dmitry 已提交
2155 2156 2157
}

static void ipoe_drop_sessions(struct ipoe_serv *serv, struct ipoe_session *skip)
K
Kozlov Dmitry 已提交
2158
{
K
Kozlov Dmitry 已提交
2159 2160 2161 2162 2163 2164
	struct ipoe_session *ses;

	list_for_each_entry(ses, &serv->sessions, entry) {
		if (ses == skip)
			continue;

2165 2166
		ses->terminating = 1;
		if (ses->ifcfg) {
D
Dmitry Kozlov 已提交
2167
			ipoe_ifcfg_del(ses, 0);
2168 2169 2170
			ses->ifcfg = 0;
		}

K
Kozlov Dmitry 已提交
2171 2172
		if (ses->ses.state == AP_STATE_ACTIVE)
			ap_session_ifdown(&ses->ses);
K
Kozlov Dmitry 已提交
2173

K
Kozlov Dmitry 已提交
2174 2175
		triton_context_call(&ses->ctx, (triton_event_func)__terminate, &ses->ses);
	}
K
Kozlov Dmitry 已提交
2176 2177
}

2178 2179 2180 2181 2182 2183 2184 2185 2186 2187 2188 2189
struct ipoe_serv *ipoe_find_serv(const char *ifname)
{
	struct ipoe_serv *serv;

	list_for_each_entry(serv, &serv_list, entry) {
		if (strcmp(serv->ifname, ifname) == 0)
			return serv;
	}

	return NULL;
}

D
Dmitry Kozlov 已提交
2190 2191 2192 2193 2194 2195 2196 2197 2198 2199 2200 2201 2202 2203
static int get_offer_delay()
{
	struct delay *r, *prev = NULL;

	list_for_each_entry(r, &conf_offer_delay, entry) {
		if (!prev || stat_active >= r->conn_cnt) {
			prev = r;
			continue;
		}
		break;
	}

	if (prev)
		return prev->delay;
D
Dmitry Kozlov 已提交
2204

D
Dmitry Kozlov 已提交
2205 2206 2207
	return 0;
}

2208
static int make_vlan_name(const char *parent, int svid, int cvid, char *name)
2209
{
2210
	char *ptr1 = name, *endptr = name + IFNAMSIZ;
2211
	const char *ptr2 = conf_vlan_name;
2212
	char svid_str[5], cvid_str[5], *ptr3;
2213

2214 2215
	sprintf(svid_str, "%i", svid);
	sprintf(cvid_str, "%i", cvid);
2216 2217 2218 2219 2220 2221 2222

	while (ptr1 < endptr && *ptr2) {
		if (ptr2[0] == '%' && ptr2[1] == 'I') {
			while (ptr1 < endptr && *parent)
				*ptr1++ = *parent++;
			ptr2 += 2;
		} else if (ptr2[0] == '%' && ptr2[1] == 'N') {
2223 2224 2225 2226 2227 2228
			ptr3 = cvid_str;
			while (ptr1 < endptr && *ptr3)
				*ptr1++ = *ptr3++;
			ptr2 += 2;
		} else if (ptr2[0] == '%' && ptr2[1] == 'P') {
			ptr3 = svid_str;
2229 2230 2231 2232 2233 2234 2235
			while (ptr1 < endptr && *ptr3)
				*ptr1++ = *ptr3++;
			ptr2 += 2;
		} else
			*ptr1++ = *ptr2++;
	}

2236 2237 2238
	if (ptr1 == endptr)
		return 1;

2239 2240
	*ptr1 = 0;

2241
	return 0;
2242 2243
}

D
Dmitry Kozlov 已提交
2244 2245 2246 2247 2248 2249
void ipoe_vlan_notify(int ifindex, int vid)
{
	struct conf_sect_t *sect = conf_get_section("ipoe");
	struct conf_option_t *opt;
	struct ifreq ifr;
	char *ptr;
2250
	int len, r, svid;
D
Dmitry Kozlov 已提交
2251 2252 2253 2254
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	int pcre_offset;
2255
	char ifname[IFNAMSIZ];
D
Dmitry Kozlov 已提交
2256 2257 2258 2259 2260 2261 2262 2263 2264 2265

	if (!sect)
		return;

	memset(&ifr, 0, sizeof(ifr));
	ifr.ifr_ifindex = ifindex;
	if (ioctl(sock_fd, SIOCGIFNAME, &ifr, sizeof(ifr))) {
		log_error("ipoe: vlan-mon: failed to get interface name, ifindex=%i\n", ifindex);
		return;
	}
D
Dmitry Kozlov 已提交
2266

2267 2268 2269
	svid = iplink_vlan_get_vid(ifindex);

	if (make_vlan_name(ifr.ifr_name, svid, vid, ifname)) {
D
Dmitry Kozlov 已提交
2270 2271 2272
		log_error("ipoe: vlan-mon: %s.%i: interface name is too long\n", ifr.ifr_name, vid);
		return;
	}
D
Dmitry Kozlov 已提交
2273

D
Dmitry Kozlov 已提交
2274
	log_info2("ipoe: create vlan %s parent %s\n", ifname, ifr.ifr_name);
2275 2276

	strcpy(ifr.ifr_name, ifname);
D
Dmitry Kozlov 已提交
2277 2278
	len = strlen(ifr.ifr_name);

D
Dmitry Kozlov 已提交
2279
	if (iplink_vlan_add(ifr.ifr_name, ifindex, vid)) {
D
Dmitry Kozlov 已提交
2280
		log_warn("ipoe: vlan-mon: %s: failed to add vlan\n", ifr.ifr_name);
D
Dmitry Kozlov 已提交
2281 2282
		return;
	}
D
Dmitry Kozlov 已提交
2283

D
Dmitry Kozlov 已提交
2284 2285 2286
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr, sizeof(ifr));
	ifr.ifr_flags |= IFF_UP;
	ioctl(sock_fd, SIOCSIFFLAGS, &ifr, sizeof(ifr));
D
Dmitry Kozlov 已提交
2287

D
Dmitry Kozlov 已提交
2288 2289 2290 2291 2292 2293 2294 2295 2296 2297
	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr, sizeof(ifr))) {
		log_error("ipoe: vlan-mon: %s: failed to get interface index\n", ifr.ifr_name);
		return;
	}

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "interface"))
			continue;
		if (!opt->val)
			continue;
D
Dmitry Kozlov 已提交
2298

D
Dmitry Kozlov 已提交
2299 2300 2301 2302 2303 2304 2305 2306
		ptr = strchr(opt->val, ',');
		if (!ptr)
			ptr = strchr(opt->val, 0);

		if (ptr - opt->val > 3 && memcmp(opt->val, "re:", 3) == 0) {
			pattern = _malloc(ptr - (opt->val + 3) + 1);
			memcpy(pattern, opt->val + 3, ptr - (opt->val + 3));
			pattern[ptr - (opt->val + 3)] = 0;
D
Dmitry Kozlov 已提交
2307

D
Dmitry Kozlov 已提交
2308
			re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
2309

D
Dmitry Kozlov 已提交
2310
			_free(pattern);
D
Dmitry Kozlov 已提交
2311

D
Dmitry Kozlov 已提交
2312 2313 2314 2315 2316
			if (!re)
				continue;

			r = pcre_exec(re, NULL, ifr.ifr_name, len, 0, 0, NULL, 0);
			pcre_free(re);
D
Dmitry Kozlov 已提交
2317

D
Dmitry Kozlov 已提交
2318 2319
			if (r < 0)
				continue;
D
Dmitry Kozlov 已提交
2320

D
Dmitry Kozlov 已提交
2321 2322 2323 2324 2325 2326 2327 2328 2329 2330
			add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt->val, ifindex, vid);
		} else if (ptr - opt->val == len && memcmp(opt->val, ifr.ifr_name, len) == 0)
			add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt->val, ifindex, vid);
	}
}

static void ipoe_serv_timeout(struct triton_timer_t *t)
{
	struct ipoe_serv *serv = container_of(t, typeof(*serv), timer);

D
Dmitry Kozlov 已提交
2331
	serv->need_close = 1;
D
Dmitry Kozlov 已提交
2332

D
Dmitry Kozlov 已提交
2333
	ipoe_serv_release(serv);
D
Dmitry Kozlov 已提交
2334 2335 2336
}

static void add_interface(const char *ifname, int ifindex, const char *opt, int parent_ifindex, int vid)
K
Kozlov Dmitry 已提交
2337
{
K
Kozlov Dmitry 已提交
2338
	char *str0 = NULL, *str, *ptr1, *ptr2;
K
Kozlov Dmitry 已提交
2339
	int end;
K
Kozlov Dmitry 已提交
2340
	struct ipoe_serv *serv;
K
Kozlov Dmitry 已提交
2341 2342 2343 2344
	int opt_shared = conf_shared;
	int opt_dhcpv4 = 0;
	int opt_up = 0;
	int opt_mode = conf_mode;
2345
	int opt_ifcfg = conf_ifcfg;
2346
	int opt_nat = conf_nat;
2347
	int opt_username = conf_username;
2348
	int opt_ipv6 = conf_ipv6;
2349 2350 2351
#ifdef USE_LUA
	char *opt_lua_username_func = NULL;
#endif
K
Kozlov Dmitry 已提交
2352
	const char *opt_relay = conf_relay;
2353 2354
	in_addr_t relay_addr = conf_relay ? inet_addr(conf_relay) : 0;
	in_addr_t opt_giaddr = 0;
2355
	in_addr_t opt_src = conf_src;
2356 2357
	int opt_arp = conf_arp;
	struct ifreq ifr;
K
Kozlov Dmitry 已提交
2358 2359 2360 2361 2362

	str0 = strchr(opt, ',');
	if (str0) {
		str0 = _strdup(str0 + 1);
		str = str0;
D
Dmitry Kozlov 已提交
2363

K
Kozlov Dmitry 已提交
2364 2365
		while (1) {
			for (ptr1 = str + 1; *ptr1 && *ptr1 != '='; ptr1++);
K
Kozlov Dmitry 已提交
2366

K
Kozlov Dmitry 已提交
2367 2368
			if (!*ptr1)
				goto parse_err;
D
Dmitry Kozlov 已提交
2369

K
Kozlov Dmitry 已提交
2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396 2397
			*ptr1 = 0;

			for (ptr2 = ++ptr1; *ptr2 && *ptr2 != ','; ptr2++);

			end = *ptr2 == 0;

			if (!end)
				*ptr2 = 0;

			if (ptr2 == ptr1)
				goto parse_err;

			if (strcmp(str, "start") == 0) {
				if (!strcmp(ptr1, "up"))
					opt_up = 1;
				else if (!strcmp(ptr1, "dhcpv4"))
					opt_dhcpv4 = 1;
				else
					goto parse_err;
			} else if (strcmp(str, "shared") == 0) {
				opt_shared = atoi(ptr1);
			} else if (strcmp(str, "mode") == 0) {
				if (!strcmp(ptr1, "L2"))
					opt_mode = MODE_L2;
				else if (!strcmp(ptr1, "L3"))
					opt_mode = MODE_L3;
				else
					goto parse_err;
2398 2399
			} else if (strcmp(str, "ifcfg") == 0) {
				opt_ifcfg = atoi(ptr1);
K
Kozlov Dmitry 已提交
2400 2401 2402 2403
			} else if (strcmp(str, "relay") == 0) {
				opt_relay = ptr1;
				relay_addr = inet_addr(ptr1);
			} else if (strcmp(str, "giaddr") == 0) {
2404
				opt_giaddr = inet_addr(ptr1);
2405 2406
			} else if (strcmp(str, "nat") == 0) {
				opt_nat = atoi(ptr1);
2407 2408
			} else if (strcmp(str, "src") == 0) {
				opt_src = inet_addr(ptr1);
2409 2410
			} else if (strcmp(str, "proxy-arp") == 0) {
				opt_arp = atoi(ptr1);
2411 2412
			} else if (strcmp(str, "ipv6") == 0) {
				opt_ipv6 = atoi(ptr1);
2413 2414 2415 2416 2417 2418 2419
			} else if (strcmp(str, "username") == 0) {
				if (strcmp(ptr1, "ifname") == 0)
					opt_username = USERNAME_IFNAME;
#ifdef USE_LUA
				else if (strlen(ptr1) > 4 && memcmp(ptr1, "lua:", 4) == 0) {
					opt_username = USERNAME_LUA;
					opt_lua_username_func = _strdup(ptr1 + 4);
D
Dmitry Kozlov 已提交
2420
				}
2421 2422 2423
#endif
				else
					log_error("ipoe: unknown username value '%s'\n", ptr1);
2424
			}
K
Kozlov Dmitry 已提交
2425 2426 2427 2428 2429 2430

			if (end)
				break;

			str = ptr2 + 1;
		}
D
Dmitry Kozlov 已提交
2431
	}
K
Kozlov Dmitry 已提交
2432 2433 2434 2435 2436 2437

	if (!opt_up && !opt_dhcpv4) {
		opt_up = conf_up;
		opt_dhcpv4 = conf_dhcpv4;
	}

2438 2439 2440 2441 2442 2443 2444 2445 2446
	if (opt_relay && !opt_giaddr && opt_dhcpv4) {
		struct sockaddr_in addr;
		int sock;
		socklen_t len = sizeof(addr);

		memset(&addr, 0, sizeof(addr));
		addr.sin_family = AF_INET;
		addr.sin_addr.s_addr = relay_addr;
		addr.sin_port = htons(DHCP_SERV_PORT);
D
Dmitry Kozlov 已提交
2447

2448
		sock = socket(PF_INET, SOCK_DGRAM, IPPROTO_UDP);
D
Dmitry Kozlov 已提交
2449

2450 2451 2452 2453
		if (connect(sock, &addr, sizeof(addr))) {
			log_error("dhcpv4: relay: %s: connect: %s\n", opt_relay, strerror(errno));
			goto out_err;
		}
D
Dmitry Kozlov 已提交
2454

2455 2456 2457 2458 2459 2460
		getsockname(sock, &addr, &len);
		opt_giaddr = addr.sin_addr.s_addr;

		close(sock);
	}

2461 2462 2463
	if (opt_up)
		ipoe_nl_add_interface(ifindex);

D
Dmitry Kozlov 已提交
2464
	pthread_mutex_lock(&serv_lock);
K
Kozlov Dmitry 已提交
2465
	list_for_each_entry(serv, &serv_list, entry) {
2466
		if (strcmp(ifname, serv->ifname))
K
Kozlov Dmitry 已提交
2467 2468 2469 2470
			continue;

		serv->active = 1;
		serv->ifindex = ifindex;
D
Dmitry Kozlov 已提交
2471

K
Kozlov Dmitry 已提交
2472 2473 2474
		if ((opt_shared && !serv->opt_shared) || (!opt_shared && serv->opt_shared)) {
			ipoe_drop_sessions(serv, NULL);
			serv->opt_shared = opt_shared;
K
Kozlov Dmitry 已提交
2475
		}
K
Kozlov Dmitry 已提交
2476 2477

		if (opt_dhcpv4 && !serv->dhcpv4) {
2478
			serv->dhcpv4 = dhcpv4_create(&serv->ctx, serv->ifname, opt);
K
Kozlov Dmitry 已提交
2479 2480 2481 2482 2483 2484 2485
			if (serv->dhcpv4)
				serv->dhcpv4->recv = ipoe_recv_dhcpv4;
		} else if (!opt_dhcpv4 && serv->dhcpv4) {
			dhcpv4_free(serv->dhcpv4);
			serv->dhcpv4 = NULL;
		}

D
Dmitry Kozlov 已提交
2486
		if (serv->dhcpv4_relay &&
2487
				(serv->dhcpv4_relay->addr != relay_addr || serv->dhcpv4_relay->giaddr != opt_giaddr)) {
2488
			if (serv->opt_ifcfg)
2489
				ipoe_serv_del_addr(serv, serv->dhcpv4_relay->giaddr, 0);
K
Kozlov Dmitry 已提交
2490 2491 2492 2493
			dhcpv4_relay_free(serv->dhcpv4_relay, &serv->ctx);
			serv->dhcpv4_relay = NULL;
		}

2494
		if (!serv->dhcpv4_relay && serv->opt_dhcpv4 && opt_relay) {
2495
			if (opt_ifcfg)
2496
				ipoe_serv_add_addr(serv, opt_giaddr, 32);
K
Kozlov Dmitry 已提交
2497
			serv->dhcpv4_relay = dhcpv4_relay_create(opt_relay, opt_giaddr, &serv->ctx, (triton_event_func)ipoe_recv_dhcpv4_relay);
K
Kozlov Dmitry 已提交
2498
		}
2499 2500 2501 2502 2503 2504

		if (serv->arp && !conf_arp) {
			arpd_stop(serv->arp);
			serv->arp = NULL;
		} else if (!serv->arp && conf_arp)
			serv->arp = arpd_start(serv);
D
Dmitry Kozlov 已提交
2505

2506 2507 2508
		serv->opt_up = opt_up;
		serv->opt_mode = opt_mode;
		serv->opt_ifcfg = opt_ifcfg;
2509
		serv->opt_nat = opt_nat;
2510
		serv->opt_src = opt_src;
2511
		serv->opt_arp = opt_arp;
2512
		serv->opt_username = opt_username;
2513
		serv->opt_ipv6 = opt_ipv6;
2514 2515 2516 2517 2518
#ifdef USE_LUA
		if (serv->opt_lua_username_func && (!opt_lua_username_func || strcmp(serv->opt_lua_username_func, opt_lua_username_func))) {
			_free(serv->opt_lua_username_func);
			serv->opt_lua_username_func = NULL;
		}
D
Dmitry Kozlov 已提交
2519

2520 2521 2522 2523 2524
		if (!serv->opt_lua_username_func && opt_lua_username_func)
			serv->opt_lua_username_func = opt_lua_username_func;
		else if (opt_lua_username_func)
			_free(opt_lua_username_func);
#endif
K
Kozlov Dmitry 已提交
2525 2526 2527 2528

		if (str0)
			_free(str0);

D
Dmitry Kozlov 已提交
2529
		pthread_mutex_unlock(&serv_lock);
K
Kozlov Dmitry 已提交
2530
		return;
K
Kozlov Dmitry 已提交
2531
	}
D
Dmitry Kozlov 已提交
2532
	pthread_mutex_unlock(&serv_lock);
K
Kozlov Dmitry 已提交
2533

2534 2535 2536 2537 2538
	opt = strchr(opt, ',');
	if (opt)
		opt++;

	log_info2("ipoe: start interface %s (%s)\n", ifname, opt ? opt : "");
D
Dmitry Kozlov 已提交
2539

2540 2541
	memset(&ifr, 0, sizeof(ifr));
	strcpy(ifr.ifr_name, ifname);
D
Dmitry Kozlov 已提交
2542

2543 2544 2545 2546
	if (ioctl(sock_fd, SIOCGIFHWADDR, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFHWADDR): %s\n", ifname, strerror(errno));
		return;
	}
D
Dmitry Kozlov 已提交
2547

D
Dmitry Kozlov 已提交
2548
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
2549

D
Dmitry Kozlov 已提交
2550 2551 2552 2553 2554
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}
2555

K
Kozlov Dmitry 已提交
2556 2557
	serv = _malloc(sizeof(*serv));
	memset(serv, 0, sizeof(*serv));
2558
	serv->ctx.close = ipoe_serv_close;
2559
	serv->ctx.before_switch = log_switch;
D
Dmitry Kozlov 已提交
2560
	pthread_mutex_init(&serv->lock, NULL);
K
Kozlov Dmitry 已提交
2561 2562
	serv->ifname = _strdup(ifname);
	serv->ifindex = ifindex;
K
Kozlov Dmitry 已提交
2563 2564 2565 2566
	serv->opt_shared = opt_shared;
	serv->opt_dhcpv4 = opt_dhcpv4;
	serv->opt_up = opt_up;
	serv->opt_mode = opt_mode;
2567
	serv->opt_ifcfg = opt_ifcfg;
2568
	serv->opt_nat = opt_nat;
2569
	serv->opt_src = opt_src;
2570
	serv->opt_arp = opt_arp;
2571
	serv->opt_username = opt_username;
2572
	serv->opt_ipv6 = opt_ipv6;
2573 2574 2575
#ifdef USE_LUA
	serv->opt_lua_username_func = opt_lua_username_func;
#endif
D
Dmitry Kozlov 已提交
2576 2577
	serv->parent_ifindex = parent_ifindex = parent_ifindex;
	serv->vid = vid;
2578
	serv->active = 1;
K
Kozlov Dmitry 已提交
2579
	INIT_LIST_HEAD(&serv->sessions);
2580
	INIT_LIST_HEAD(&serv->addr_list);
D
Dmitry Kozlov 已提交
2581
	INIT_LIST_HEAD(&serv->disc_list);
2582
	INIT_LIST_HEAD(&serv->req_list);
2583
	memcpy(serv->hwaddr, ifr.ifr_hwaddr.sa_data, ETH_ALEN);
D
Dmitry Kozlov 已提交
2584
	serv->disc_timer.expire = ipoe_serv_disc_timer;
D
Dmitry Kozlov 已提交
2585

K
Kozlov Dmitry 已提交
2586 2587 2588
	triton_context_register(&serv->ctx, NULL);

	if (serv->opt_dhcpv4) {
2589
		serv->dhcpv4 = dhcpv4_create(&serv->ctx, serv->ifname, opt);
K
Kozlov Dmitry 已提交
2590
		if (serv->dhcpv4)
2591
			serv->dhcpv4->recv = ipoe_recv_dhcpv4;
D
Dmitry Kozlov 已提交
2592

2593
		if (opt_relay) {
2594
			if (opt_ifcfg)
2595
				ipoe_serv_add_addr(serv, opt_giaddr, 32);
K
Kozlov Dmitry 已提交
2596 2597
			serv->dhcpv4_relay = dhcpv4_relay_create(opt_relay, opt_giaddr, &serv->ctx, (triton_event_func)ipoe_recv_dhcpv4_relay);
		}
K
Kozlov Dmitry 已提交
2598 2599
	}

2600 2601
	if (serv->opt_arp)
		serv->arp = arpd_start(serv);
D
Dmitry Kozlov 已提交
2602

D
Dmitry Kozlov 已提交
2603 2604 2605 2606 2607
	if (vid) {
		serv->timer.expire = ipoe_serv_timeout;
		serv->timer.expire_tv.tv_sec = conf_vlan_timeout;
		triton_timer_add(&serv->ctx, &serv->timer, 0);
	}
2608

K
Kozlov Dmitry 已提交
2609 2610
	triton_context_wakeup(&serv->ctx);

D
Dmitry Kozlov 已提交
2611
	pthread_mutex_lock(&serv_lock);
2612
	list_add_tail(&serv->entry, &serv_list);
D
Dmitry Kozlov 已提交
2613
	pthread_mutex_unlock(&serv_lock);
2614

K
Kozlov Dmitry 已提交
2615 2616 2617
	if (str0)
		_free(str0);

K
Kozlov Dmitry 已提交
2618 2619
	return;

K
Kozlov Dmitry 已提交
2620
parse_err:
K
Kozlov Dmitry 已提交
2621
	log_error("ipoe: failed to parse '%s'\n", opt);
2622
out_err:
K
Kozlov Dmitry 已提交
2623
	_free(str0);
K
Kozlov Dmitry 已提交
2624 2625 2626 2627 2628 2629 2630 2631 2632 2633 2634 2635 2636 2637
}

static void load_interface(const char *opt)
{
	const char *ptr;
	struct ifreq ifr;

	for (ptr = opt; *ptr && *ptr != ','; ptr++);

	if (ptr - opt >= sizeof(ifr.ifr_name))
		return;

	memcpy(ifr.ifr_name, opt, ptr - opt);
	ifr.ifr_name[ptr - opt] = 0;
D
Dmitry Kozlov 已提交
2638

K
Kozlov Dmitry 已提交
2639 2640 2641 2642
	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFINDEX): %s\n", ifr.ifr_name, strerror(errno));
		return;
	}
D
Dmitry Kozlov 已提交
2643

D
Dmitry Kozlov 已提交
2644
	add_interface(ifr.ifr_name, ifr.ifr_ifindex, opt, 0, 0);
K
Kozlov Dmitry 已提交
2645 2646 2647 2648 2649 2650
}

static int __load_interface_re(int index, int flags, const char *name, struct iplink_arg *arg)
{
	if (pcre_exec(arg->re, NULL, name, strlen(name), 0, 0, NULL, 0) < 0)
		return 0;
2651

D
Dmitry Kozlov 已提交
2652
	add_interface(name, index, arg->opt, 0, 0);
K
Kozlov Dmitry 已提交
2653 2654 2655 2656 2657 2658 2659 2660 2661 2662 2663 2664 2665 2666

	return 0;
}

static void load_interface_re(const char *opt)
{
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	const char *ptr;
	int pcre_offset;
	struct iplink_arg arg;

	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
2667

K
Kozlov Dmitry 已提交
2668 2669 2670
	pattern = _malloc(ptr - (opt + 3) + 1);
	memcpy(pattern, opt + 3, ptr - (opt + 3));
	pattern[ptr - (opt + 3)] = 0;
D
Dmitry Kozlov 已提交
2671

K
Kozlov Dmitry 已提交
2672
	re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
2673

K
Kozlov Dmitry 已提交
2674
	if (!re) {
D
Dmitry Kozlov 已提交
2675
		log_error("ipoe: '%s': %s at %i\r\n", pattern, pcre_err, pcre_offset);
K
Kozlov Dmitry 已提交
2676 2677 2678 2679 2680 2681 2682 2683 2684 2685 2686 2687 2688 2689 2690 2691 2692
		return;
	}

	arg.re = re;
	arg.opt = opt;

	iplink_list((iplink_list_func)__load_interface_re, &arg);

	pcre_free(re);
	_free(pattern);
}

static void load_interfaces(struct conf_sect_t *sect)
{
	struct ipoe_serv *serv;
	struct conf_option_t *opt;

2693 2694
	ipoe_nl_delete_interfaces();

K
Kozlov Dmitry 已提交
2695 2696 2697 2698 2699 2700 2701 2702 2703 2704 2705 2706 2707 2708
	list_for_each_entry(serv, &serv_list, entry)
		serv->active = 0;

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "interface"))
			continue;
		if (!opt->val)
			continue;

		if (strlen(opt->val) > 3 && memcmp(opt->val, "re:", 3) == 0)
			load_interface_re(opt->val);
		else
			load_interface(opt->val);
	}
D
Dmitry Kozlov 已提交
2709

D
Dmitry Kozlov 已提交
2710
	list_for_each_entry(serv, &serv_list, entry) {
D
Dmitry Kozlov 已提交
2711
		if (!serv->active && !serv->vid) {
2712
			ipoe_drop_sessions(serv, NULL);
D
Dmitry Kozlov 已提交
2713
			triton_context_call(&serv->ctx, (triton_event_func)ipoe_serv_release, serv);
K
Kozlov Dmitry 已提交
2714 2715 2716 2717
		}
	}
}

2718 2719 2720 2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734 2735 2736 2737 2738 2739 2740 2741 2742
static void parse_local_net(const char *opt)
{
	const char *ptr;
	char str[17];
	in_addr_t addr;
	int mask;
	char *endptr;

	ptr = strchr(opt, '/');
	if (ptr) {
		memcpy(str, opt, ptr - opt);
		str[ptr - opt] = 0;
		addr = inet_addr(str);
		if (addr == INADDR_NONE)
			goto out_err;
		mask = strtoul(ptr + 1, &endptr, 10);
		if (mask > 32)
			goto out_err;
	} else {
		addr = inet_addr(opt);
		if (addr == INADDR_NONE)
			goto out_err;
		mask = 24;
	}

2743
	ipoe_nl_add_net(addr, mask);
2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765

	return;

out_err:
	log_error("ipoe: failed to parse 'local-net=%s'\n", opt);
}

static void load_local_nets(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;

	ipoe_nl_delete_nets();

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "local-net"))
			continue;
		if (!opt->val)
			continue;
		parse_local_net(opt->val);
	}
}

2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776 2777 2778 2779 2780 2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801
static void load_gw_addr(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;
	struct gw_addr *a;
	char addr[17];
	char *ptr;

	while (!list_empty(&conf_gw_addr)) {
		a = list_entry(conf_gw_addr.next, typeof(*a), entry);
		list_del(&a->entry);
		_free(a);
	}

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "gw-ip-address"))
			continue;
		if (!opt->val)
			continue;

		a = _malloc(sizeof(*a));
		ptr = strchr(opt->val, '/');
		if (ptr) {
			memcpy(addr, opt->val, ptr - opt->val);
			addr[ptr - opt->val] = 0;
			a->addr = inet_addr(addr);
			a->mask = atoi(ptr + 1);
		} else {
			a->addr = inet_addr(opt->val);
			a->mask = 32;
		}

		if (a->addr == 0xffffffff || a->mask < 1 || a->mask > 32) {
			log_error("ipoe: failed to parse '%s=%s'\n", opt->name, opt->val);
			_free(a);
			continue;
		}
2802 2803

		a->mask1 = ((1 << a->mask) - 1) << (32 - a->mask);
2804 2805 2806 2807
		list_add_tail(&a->entry, &conf_gw_addr);
	}
}

2808 2809 2810 2811 2812 2813
#ifdef RADIUS
static void parse_conf_rad_attr(const char *opt, int *val)
{
	struct rad_dict_attr_t *attr;

	opt = conf_get_opt("ipoe", opt);
D
Dmitry Kozlov 已提交
2814

2815
	*val = 0;
2816 2817 2818 2819 2820 2821 2822 2823 2824 2825 2826

	if (opt) {
		if (atoi(opt) > 0)
			*val = atoi(opt);
		else {
			attr = rad_dict_find_attr(opt);
			if (attr)
				*val = attr->id;
			else
				log_emerg("ipoe: couldn't find '%s' in dictionary\n", opt);
		}
2827
	}
2828
}
K
Kozlov Dmitry 已提交
2829

2830 2831 2832 2833 2834
static void load_radius_attrs(void)
{
	parse_conf_rad_attr("attr-dhcp-client-ip", &conf_attr_dhcp_client_ip);
	parse_conf_rad_attr("attr-dhcp-router-ip", &conf_attr_dhcp_router_ip);
	parse_conf_rad_attr("attr-dhcp-mask", &conf_attr_dhcp_mask);
2835
	parse_conf_rad_attr("attr-dhcp-lease-time", &conf_attr_dhcp_lease_time);
D
Dmitry Kozlov 已提交
2836
	parse_conf_rad_attr("attr-dhcp-renew-time", &conf_attr_dhcp_renew_time);
2837
	parse_conf_rad_attr("attr-l4-redirect", &conf_attr_l4_redirect);
2838 2839
	parse_conf_rad_attr("attr-l4-redirect-table", &conf_attr_l4_redirect_table);
	parse_conf_rad_attr("attr-l4-redirect-ipset", &conf_attr_l4_redirect_ipset);
2840
	conf_attr_dhcp_opt82 = conf_get_opt("ipoe", "attr-dhcp-opt82");
2841 2842
	conf_attr_dhcp_opt82_remote_id = conf_get_opt("ipoe", "attr-dhcp-opt82-remote-id");
	conf_attr_dhcp_opt82_circuit_id = conf_get_opt("ipoe", "attr-dhcp-opt82-circuit-id");
2843 2844 2845
}
#endif

D
Dmitry Kozlov 已提交
2846 2847 2848 2849 2850 2851 2852 2853 2854 2855 2856 2857 2858 2859 2860 2861 2862 2863 2864 2865 2866 2867 2868 2869 2870 2871 2872 2873 2874 2875 2876 2877 2878 2879 2880 2881 2882 2883 2884 2885 2886 2887 2888 2889 2890 2891 2892 2893 2894 2895 2896 2897 2898 2899 2900 2901 2902 2903 2904 2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916 2917 2918 2919 2920
static void strip(char *str)
{
	char *ptr = str;
	char *endptr = strchr(str, 0);
	while (1) {
		ptr = strchr(ptr, ' ');
		if (ptr)
			memmove(ptr, ptr + 1, endptr - ptr - 1);
		else
			break;
	}
}

int parse_offer_delay(const char *str)
{
	char *str1;
	char *ptr1, *ptr2, *ptr3, *endptr;
	struct delay *r;

	while (!list_empty(&conf_offer_delay)) {
		r = list_entry(conf_offer_delay.next, typeof(*r), entry);
		list_del(&r->entry);
		_free(r);
	}

	if (!str)
		return 0;

	str1 = _strdup(str);
	strip(str1);

	ptr1 = str1;

	while (1) {
		ptr2 = strchr(ptr1, ',');
		if (ptr2)
			*ptr2 = 0;
		ptr3 = strchr(ptr1, ':');
		if (ptr3)
			*ptr3 = 0;

		r = _malloc(sizeof(*r));
		memset(r, 0, sizeof(*r));

		r->delay = strtol(ptr1, &endptr, 10);
		if (*endptr)
			goto out_err;

		if (list_empty(&conf_offer_delay))
			r->conn_cnt = 0;
		else {
			if (!ptr3)
				goto out_err;
			r->conn_cnt = strtol(ptr3 + 1, &endptr, 10);
			if (*endptr)
				goto out_err;
		}

		list_add_tail(&r->entry, &conf_offer_delay);

		if (!ptr2)
			break;

		ptr1 = ptr2 + 1;
	}

	_free(str1);
	return 0;

out_err:
	_free(str1);
	log_error("ipoe: failed to parse offer-delay\n");
	return -1;
}

D
Dmitry Kozlov 已提交
2921 2922 2923 2924 2925 2926 2927 2928 2929 2930
static int parse_vlan_mon(const char *opt, long *mask)
{
	char *ptr, *ptr2;
	int vid, vid2;

	ptr = strchr(opt, ',');
	if (!ptr)
		ptr = strchr(opt, 0);

	if (*ptr == ',')
D
Dmitry Kozlov 已提交
2931
		memset(mask, 0xff, 4096/8);
D
Dmitry Kozlov 已提交
2932
	else if (*ptr == 0) {
D
Dmitry Kozlov 已提交
2933
		memset(mask, 0, 4096/8);
D
Dmitry Kozlov 已提交
2934 2935 2936 2937 2938 2939 2940 2941 2942 2943 2944 2945 2946 2947 2948 2949 2950
		return 0;
	} else
		goto out_err;

	while (1) {
		vid = strtol(ptr + 1, &ptr2, 10);
		if (vid <= 0 || vid >= 4096) {
			log_error("ipoe: vlan-mon=%s: invalid vlan %i\n", opt, vid);
			return -1;
		}

		if (*ptr2 == '-') {
			vid2 = strtol(ptr2 + 1, &ptr2, 10);
			if (vid2 <= 0 || vid2 >= 4096) {
				log_error("ipoe: vlan-mon=%s: invalid vlan %i\n", opt, vid2);
				return -1;
			}
D
Dmitry Kozlov 已提交
2951

D
Dmitry Kozlov 已提交
2952
			for (; vid < vid2; vid++)
D
Dmitry Kozlov 已提交
2953
				mask[vid / (8*sizeof(long))] &= ~(1lu << (vid % (8*sizeof(long))));
D
Dmitry Kozlov 已提交
2954
		}
D
Dmitry Kozlov 已提交
2955

D
Dmitry Kozlov 已提交
2956
		mask[vid / (8*sizeof(long))] &= ~(1lu << (vid % (8*sizeof(long))));
D
Dmitry Kozlov 已提交
2957 2958 2959 2960 2961 2962 2963 2964 2965 2966 2967

		if (*ptr2 == 0)
			break;

		if (*ptr2 != ',')
			goto out_err;

		ptr = ptr2;
	}

	return 0;
D
Dmitry Kozlov 已提交
2968

D
Dmitry Kozlov 已提交
2969 2970 2971 2972 2973
out_err:
	log_error("ipoe: vlan-mon=%s: failed to parse\n", opt);
	return -1;
}

D
Dmitry Kozlov 已提交
2974
static void add_vlan_mon(const char *opt, long *mask)
D
Dmitry Kozlov 已提交
2975 2976 2977 2978
{
	const char *ptr;
	struct ifreq ifr;
	int ifindex;
D
Dmitry Kozlov 已提交
2979 2980
	long mask1[4096/8/sizeof(long)];
	struct ipoe_serv *serv;
D
Dmitry Kozlov 已提交
2981

D
Dmitry Kozlov 已提交
2982
	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
2983

2984
	if (ptr - opt >= IFNAMSIZ) {
D
Dmitry Kozlov 已提交
2985 2986 2987 2988 2989
		log_error("ipoe: vlan-mon=%s: interface name is too long\n", opt);
		return;
	}

	memset(&ifr, 0, sizeof(ifr));
D
Dmitry Kozlov 已提交
2990

D
Dmitry Kozlov 已提交
2991 2992 2993 2994 2995 2996 2997 2998 2999
	memcpy(ifr.ifr_name, opt, ptr - opt);
	ifr.ifr_name[ptr - opt] = 0;

	if (ioctl(sock_fd, SIOCGIFINDEX, &ifr)) {
		log_error("ipoe: '%s': ioctl(SIOCGIFINDEX): %s\n", ifr.ifr_name, strerror(errno));
		return;
	}

	ifindex = ifr.ifr_ifindex;
D
Dmitry Kozlov 已提交
3000

D
Dmitry Kozlov 已提交
3001
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
3002

D
Dmitry Kozlov 已提交
3003 3004 3005 3006 3007 3008
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}

D
Dmitry Kozlov 已提交
3009 3010 3011 3012 3013 3014 3015
	memcpy(mask1, mask, sizeof(mask1));
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->vid && serv->parent_ifindex == ifindex)
			mask1[serv->vid / (8*sizeof(long))] |= 1lu << (serv->vid % (8*sizeof(long)));
	}

	ipoe_nl_add_vlan_mon(ifindex, mask1, sizeof(mask1));
D
Dmitry Kozlov 已提交
3016 3017 3018 3019 3020
}

static int __load_vlan_mon_re(int index, int flags, const char *name, struct iplink_arg *arg)
{
	struct ifreq ifr;
D
Dmitry Kozlov 已提交
3021 3022
	long mask1[4096/8/sizeof(long)];
	struct ipoe_serv *serv;
D
Dmitry Kozlov 已提交
3023 3024 3025 3026 3027 3028

	if (pcre_exec(arg->re, NULL, name, strlen(name), 0, 0, NULL, 0) < 0)
		return 0;

	memset(&ifr, 0, sizeof(ifr));
	strcpy(ifr.ifr_name, name);
D
Dmitry Kozlov 已提交
3029

D
Dmitry Kozlov 已提交
3030
	ioctl(sock_fd, SIOCGIFFLAGS, &ifr);
D
Dmitry Kozlov 已提交
3031

D
Dmitry Kozlov 已提交
3032 3033 3034 3035 3036
	if (!(ifr.ifr_flags & IFF_UP)) {
		ifr.ifr_flags |= IFF_UP;

		ioctl(sock_fd, SIOCSIFFLAGS, &ifr);
	}
D
Dmitry Kozlov 已提交
3037

D
Dmitry Kozlov 已提交
3038 3039 3040 3041 3042
	memcpy(mask1, arg->arg1, sizeof(mask1));
	list_for_each_entry(serv, &serv_list, entry) {
		if (serv->vid && serv->parent_ifindex == index)
			mask1[serv->vid / (8*sizeof(long))] |= 1lu << (serv->vid % (8*sizeof(long)));
	}
D
Dmitry Kozlov 已提交
3043

D
Dmitry Kozlov 已提交
3044
	ipoe_nl_add_vlan_mon(index, mask1, sizeof(mask1));
D
Dmitry Kozlov 已提交
3045 3046 3047 3048 3049 3050 3051 3052 3053 3054 3055 3056 3057 3058

	return 0;
}

static void load_vlan_mon_re(const char *opt, long *mask, int len)
{
	pcre *re = NULL;
	const char *pcre_err;
	char *pattern;
	const char *ptr;
	int pcre_offset;
	struct iplink_arg arg;

	for (ptr = opt; *ptr && *ptr != ','; ptr++);
D
Dmitry Kozlov 已提交
3059

D
Dmitry Kozlov 已提交
3060 3061 3062
	pattern = _malloc(ptr - (opt + 3) + 1);
	memcpy(pattern, opt + 3, ptr - (opt + 3));
	pattern[ptr - (opt + 3)] = 0;
D
Dmitry Kozlov 已提交
3063

D
Dmitry Kozlov 已提交
3064
	re = pcre_compile2(pattern, 0, NULL, &pcre_err, &pcre_offset, NULL);
D
Dmitry Kozlov 已提交
3065

D
Dmitry Kozlov 已提交
3066 3067 3068 3069 3070 3071 3072 3073 3074 3075 3076 3077 3078 3079 3080 3081 3082 3083 3084 3085 3086 3087 3088 3089 3090 3091 3092 3093 3094
	if (!re) {
		log_error("ipoe: '%s': %s at %i\r\n", pattern, pcre_err, pcre_offset);
		return;
	}

	arg.re = re;
	arg.opt = opt;
	arg.arg1 = mask;

	iplink_list((iplink_list_func)__load_vlan_mon_re, &arg);

	pcre_free(re);
	_free(pattern);

}

static void load_vlan_mon(struct conf_sect_t *sect)
{
	struct conf_option_t *opt;
	long mask[4096/8/sizeof(long)];

	ipoe_nl_del_vlan_mon(-1);

	list_for_each_entry(opt, &sect->items, entry) {
		if (strcmp(opt->name, "vlan-mon"))
			continue;

		if (!opt->val)
			continue;
D
Dmitry Kozlov 已提交
3095

D
Dmitry Kozlov 已提交
3096 3097 3098 3099 3100 3101
		if (parse_vlan_mon(opt->val, mask))
			continue;

		if (strlen(opt->val) > 3 && !memcmp(opt->val, "re:", 3))
			load_vlan_mon_re(opt->val, mask, sizeof(mask));
		else
D
Dmitry Kozlov 已提交
3102
			add_vlan_mon(opt->val, mask);
D
Dmitry Kozlov 已提交
3103 3104 3105 3106
	}
}


K
Kozlov Dmitry 已提交
3107 3108 3109 3110
static void load_config(void)
{
	const char *opt;
	struct conf_sect_t *s = conf_get_section("ipoe");
K
Kozlov Dmitry 已提交
3111
	struct conf_option_t *opt1;
K
Kozlov Dmitry 已提交
3112 3113 3114 3115 3116 3117 3118 3119 3120 3121 3122 3123

	if (!s)
		return;

	opt = conf_get_opt("ipoe", "username");
	if (opt) {
		if (strcmp(opt, "ifname") == 0)
			conf_username = USERNAME_IFNAME;
#ifdef USE_LUA
		else if (strlen(opt) > 4 && memcmp(opt, "lua:", 4) == 0) {
			conf_username = USERNAME_LUA;
			conf_lua_username_func = opt + 4;
K
Kozlov Dmitry 已提交
3124
		}
K
Kozlov Dmitry 已提交
3125
#endif
K
Kozlov Dmitry 已提交
3126
		else
K
Kozlov Dmitry 已提交
3127
			log_emerg("ipoe: unknown username value '%s'\n", opt);
3128 3129
	} else
		conf_username = USERNAME_UNSET;
D
Dmitry Kozlov 已提交
3130

3131 3132 3133 3134 3135 3136 3137 3138 3139 3140
	opt = conf_get_opt("ipoe", "password");
	if (opt) {
		if (!strcmp(opt, "username"))
			conf_password = NULL;
		else if (!strcmp(opt, "empty"))
			conf_password = "";
		else
			conf_password = opt;
	} else
		conf_password = NULL;
K
Kozlov Dmitry 已提交
3141 3142 3143 3144 3145 3146 3147 3148 3149 3150

	opt = conf_get_opt("ipoe", "netmask");
	if (opt) {
		conf_netmask = atoi(opt);
		if (conf_netmask <= 0 || conf_netmask > 32) {
			log_error("ipoe: invalid netmask %s\n", opt);
			conf_netmask = 0;
		}
	} else
		conf_netmask = 0;
D
Dmitry Kozlov 已提交
3151

K
Kozlov Dmitry 已提交
3152 3153 3154
	opt = conf_get_opt("ipoe", "verbose");
	if (opt)
		conf_verbose = atoi(opt);
K
Kozlov Dmitry 已提交
3155 3156 3157 3158

	opt = conf_get_opt("ipoe", "lease-time");
	if (opt)
		conf_lease_time = atoi(opt);
K
Kozlov Dmitry 已提交
3159 3160
	else
		conf_lease_time = 600;
D
Dmitry Kozlov 已提交
3161

D
Dmitry Kozlov 已提交
3162 3163 3164 3165 3166 3167
	opt = conf_get_opt("ipoe", "renew-time");
	if (opt)
		conf_renew_time = atoi(opt);
	else
		conf_renew_time = conf_lease_time/2;

K
Kozlov Dmitry 已提交
3168
	opt = conf_get_opt("ipoe", "max-lease-time");
K
Kozlov Dmitry 已提交
3169 3170
	if (opt)
		conf_lease_timeout = atoi(opt);
K
Kozlov Dmitry 已提交
3171
	else
3172
		conf_lease_timeout = conf_lease_time;
D
Dmitry Kozlov 已提交
3173

K
Kozlov Dmitry 已提交
3174 3175 3176
	opt = conf_get_opt("ipoe", "unit-cache");
	if (opt)
		conf_unit_cache = atoi(opt);
D
Dmitry Kozlov 已提交
3177

3178
	opt = conf_get_opt("ipoe", "l4-redirect-table");
3179
	if (opt && atoi(opt) > 0)
3180 3181
		conf_l4_redirect_table = atoi(opt);
	else
3182
		conf_l4_redirect_table = 0;
D
Dmitry Kozlov 已提交
3183

3184
	conf_l4_redirect_ipset = conf_get_opt("ipoe", "l4-redirect-ipset");
D
Dmitry Kozlov 已提交
3185

3186 3187 3188 3189 3190
	opt = conf_get_opt("ipoe", "l4-redirect-on-reject");
	if (opt) {
		conf_l4_redirect_on_reject = atoi(opt);
	} else
		conf_l4_redirect_on_reject = 0;
D
Dmitry Kozlov 已提交
3191

3192 3193 3194 3195 3196
	if (conf_l4_redirect_on_reject) {
		l4_redirect_timer.period = conf_l4_redirect_on_reject / 10 * 1000;
		if (l4_redirect_timer.tpd)
			triton_timer_mod(&l4_redirect_timer, 0);
	}
D
Dmitry Kozlov 已提交
3197

K
Kozlov Dmitry 已提交
3198 3199 3200 3201 3202
	opt = conf_get_opt("ipoe", "shared");
	if (opt)
		conf_shared = atoi(opt);
	else
		conf_shared = 1;
D
Dmitry Kozlov 已提交
3203

3204 3205 3206 3207 3208
	opt = conf_get_opt("ipoe", "ifcfg");
	if (opt)
		conf_ifcfg = atoi(opt);
	else
		conf_ifcfg = 1;
D
Dmitry Kozlov 已提交
3209

3210 3211 3212 3213 3214
	opt = conf_get_opt("ipoe", "nat");
	if (opt)
		conf_nat = atoi(opt);
	else
		conf_nat = 0;
3215 3216 3217 3218 3219 3220

	opt = conf_get_opt("ipoe", "src");
	if (opt)
		conf_src = inet_addr(opt);
	else
		conf_src = 0;
3221 3222 3223 3224 3225 3226

	opt = conf_get_opt("ipoe", "proxy-arp");
	if (opt)
		conf_arp = atoi(opt);
	else
		conf_arp = 0;
D
Dmitry Kozlov 已提交
3227

3228 3229 3230 3231
	if (conf_arp < 0 || conf_arp > 2) {
		log_error("ipoe: arp=%s: invalid value\n", opt);
		conf_arp = 0;
	}
D
Dmitry Kozlov 已提交
3232

K
Kozlov Dmitry 已提交
3233 3234 3235 3236 3237 3238 3239 3240 3241 3242
	opt = conf_get_opt("ipoe", "mode");
	if (opt) {
		if (!strcmp(opt, "L2"))
			conf_mode = MODE_L2;
		else if (!strcmp(opt, "L3"))
			conf_mode = MODE_L3;
		else
			log_emerg("ipoe: failed to parse 'mode=%s'\n", opt);
	} else
		conf_mode = MODE_L2;
D
Dmitry Kozlov 已提交
3243

K
Kozlov Dmitry 已提交
3244
	conf_relay = conf_get_opt("ipoe", "relay");
3245 3246 3247 3248 3249 3250

	opt = conf_get_opt("ipoe", "relay-timeout");
	if (opt && atoi(opt) > 0)
		conf_relay_timeout = atoi(opt);
	else
		conf_relay_timeout = 3;
D
Dmitry Kozlov 已提交
3251

3252 3253 3254 3255 3256
	opt = conf_get_opt("ipoe", "relay-retransmit");
	if (opt && atoi(opt) > 0)
		conf_relay_retransmit = atoi(opt);
	else
		conf_relay_retransmit = 3;
D
Dmitry Kozlov 已提交
3257

3258 3259 3260 3261
	opt = conf_get_opt("ipoe", "agent-remote-id");
	if (opt)
		conf_agent_remote_id = opt;
	else
3262
		conf_agent_remote_id = NULL;
D
Dmitry Kozlov 已提交
3263

3264 3265 3266 3267 3268
	opt = conf_get_opt("ipoe", "ipv6");
	if (opt)
		conf_ipv6 = atoi(opt);
	else
		conf_ipv6 = 0;
D
Dmitry Kozlov 已提交
3269

K
Kozlov Dmitry 已提交
3270 3271 3272 3273 3274
	opt = conf_get_opt("ipoe", "noauth");
	if (opt)
		conf_noauth = atoi(opt);
	else
		conf_noauth = 0;
K
Kozlov Dmitry 已提交
3275 3276 3277 3278 3279 3280 3281 3282 3283 3284 3285 3286 3287 3288 3289

	conf_dhcpv4 = 0;
	conf_up = 0;

	list_for_each_entry(opt1, &s->items, entry) {
		if (strcmp(opt1->name, "start"))
			continue;
		if (!strcmp(opt1->val, "dhcpv4"))
			conf_dhcpv4 = 1;
		else if (!strcmp(opt1->val, "up"))
			conf_up = 1;
	}

	if (!conf_dhcpv4 && !conf_up)
		conf_dhcpv4 = 1;
D
Dmitry Kozlov 已提交
3290

3291 3292 3293 3294
	opt = conf_get_opt("ipoe", "proto");
	if (opt && atoi(opt) > 0)
		conf_proto = atoi(opt);
	else
3295
		conf_proto = 3;
D
Dmitry Kozlov 已提交
3296

D
Dmitry Kozlov 已提交
3297 3298 3299 3300 3301
	opt = conf_get_opt("ipoe", "vlan-timeout");
	if (opt && atoi(opt) > 0)
		conf_vlan_timeout = atoi(opt);
	else
		conf_vlan_timeout = 60;
D
Dmitry Kozlov 已提交
3302

3303 3304 3305 3306 3307
	opt = conf_get_opt("ipoe", "offer-timeout");
	if (opt && atoi(opt) > 0)
		conf_offer_timeout = atoi(opt);
	else
		conf_offer_timeout = 10;
D
Dmitry Kozlov 已提交
3308

3309
	conf_ip_pool = conf_get_opt("ipoe", "ip-pool");
3310
	conf_l4_redirect_pool = conf_get_opt("ipoe", "l4-redirect-ip-pool");
3311 3312 3313 3314

	conf_vlan_name = conf_get_opt("ipoe", "vlan-name");
	if (!conf_vlan_name)
		conf_vlan_name = "%I.%N";
D
Dmitry Kozlov 已提交
3315

3316 3317 3318 3319 3320
	opt = conf_get_opt("ipoe", "ip-unnumbered");
	if (opt)
		conf_ip_unnumbered = atoi(opt);
	else
		conf_ip_unnumbered = 1;
D
Dmitry Kozlov 已提交
3321

3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333
	opt = conf_get_opt("ipoe", "idle-timeout");
	if (opt)
		conf_idle_timeout = atoi(opt);
	else
		conf_idle_timeout = 0;

	opt = conf_get_opt("ipoe", "session-timeout");
	if (opt)
		conf_session_timeout = atoi(opt);
	else
		conf_session_timeout = 0;

3334 3335 3336 3337 3338 3339
	opt = conf_get_opt("ipoe", "soft-terminate");
	if (opt)
		conf_soft_terminate = atoi(opt);
	else
		conf_soft_terminate = 0;

3340 3341 3342 3343 3344 3345
	opt = conf_get_opt("ipoe", "check-mac-change");
	if (opt)
		conf_check_mac_change = atoi(opt);
	else
		conf_check_mac_change = 1;

3346 3347 3348 3349 3350 3351 3352 3353 3354 3355 3356
	opt = conf_get_opt("ipoe", "calling-sid");
	if (opt) {
		if (!strcmp(opt, "mac"))
			conf_calling_sid = SID_MAC;
		else if (!strcmp(opt, "ip"))
			conf_calling_sid = SID_IP;
		else
			log_error("ipoe: failed to parse 'calling-sid=%s'\n", opt);
	} else
		conf_calling_sid = SID_MAC;

3357 3358 3359 3360
#ifdef RADIUS
	if (triton_module_loaded("radius"))
		load_radius_attrs();
#endif
D
Dmitry Kozlov 已提交
3361 3362

	parse_offer_delay(conf_get_opt("ipoe", "offer-delay"));
D
Dmitry Kozlov 已提交
3363

K
Kozlov Dmitry 已提交
3364 3365
	load_interfaces(s);
	load_local_nets(s);
D
Dmitry Kozlov 已提交
3366
	load_vlan_mon(s);
3367
	load_gw_addr(s);
K
Kozlov Dmitry 已提交
3368 3369
}

3370 3371 3372 3373 3374 3375 3376 3377
static struct triton_context_t l4_redirect_ctx = {
	.close = l4_redirect_ctx_close,
};

static struct triton_timer_t l4_redirect_timer = {
	.expire = l4_redirect_list_timer,
};

K
Kozlov Dmitry 已提交
3378 3379 3380
static void ipoe_init(void)
{
	ses_pool = mempool_create(sizeof(struct ipoe_session));
D
Dmitry Kozlov 已提交
3381
	disc_item_pool = mempool_create(sizeof(struct disc_item));
3382
	req_item_pool = mempool_create(sizeof(struct request_item));
K
Kozlov Dmitry 已提交
3383
	uc_pool = mempool_create(sizeof(struct unit_cache));
3384

3385 3386 3387
	triton_context_register(&l4_redirect_ctx, NULL);
	triton_context_wakeup(&l4_redirect_ctx);

K
Kozlov Dmitry 已提交
3388 3389
	load_config();

3390 3391 3392
	if (conf_l4_redirect_ipset)
		ipset_flush(conf_l4_redirect_ipset);

K
Kozlov Dmitry 已提交
3393
	cli_register_simple_cmd2(show_stat_exec, NULL, 2, "show", "stat");
D
Dmitry Kozlov 已提交
3394

K
Kozlov Dmitry 已提交
3395
	triton_event_register_handler(EV_CONFIG_RELOAD, (triton_event_func)load_config);
3396 3397

#ifdef RADIUS
3398
	if (triton_module_loaded("radius")) {
3399 3400
		triton_event_register_handler(EV_RADIUS_ACCESS_ACCEPT, (triton_event_func)ev_radius_access_accept);
		triton_event_register_handler(EV_RADIUS_COA, (triton_event_func)ev_radius_coa);
3401
	}
3402
#endif
D
Dmitry Kozlov 已提交
3403

3404
	connlimit_loaded = triton_module_loaded("connlimit");
3405
	radius_loaded = triton_module_loaded("radius");
K
Kozlov Dmitry 已提交
3406 3407
}

3408
DEFINE_INIT(52, ipoe_init);