]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/network/networkd-network.h
Merge pull request #18385 from kinvolk/mauricio/restrict-network-interfaces
[thirdparty/systemd.git] / src / network / networkd-network.h
CommitLineData
db9ecf05 1/* SPDX-License-Identifier: LGPL-2.1-or-later */
fc2f9534
LP
2#pragma once
3
78404d22
YW
4#include <linux/nl80211.h>
5
634f0f98 6#include "sd-bus.h"
51517f9e 7#include "sd-device.h"
634f0f98 8
737f1405 9#include "bridge.h"
fc2f9534 10#include "condition.h"
a2106925 11#include "conf-parser.h"
634f0f98 12#include "hashmap.h"
5722fb89 13#include "net-condition.h"
737f1405 14#include "netdev.h"
9670e45a 15#include "networkd-bridge-vlan.h"
ca5ad760
YW
16#include "networkd-dhcp-common.h"
17#include "networkd-dhcp4.h"
838d39af 18#include "networkd-dhcp6.h"
7f853950 19#include "networkd-lldp-rx.h"
a2106925 20#include "networkd-lldp-tx.h"
5f506a55 21#include "networkd-ndisc.h"
6e849e95 22#include "networkd-radv.h"
5e0534f1 23#include "networkd-sysctl.h"
fc2f9534 24#include "networkd-util.h"
5e2a51d5 25#include "ordered-set.h"
a2106925 26#include "resolve-util.h"
e77bd3fd 27#include "socket-netlink.h"
fc2f9534 28
63295b42
YW
29/* Special values for *_uplink_index. */
30#define UPLINK_INDEX_AUTO 0 /* uplink will be selected automatically */
31#define UPLINK_INDEX_NONE -1 /* uplink will not be selected automatically */
32
7da377ef 33typedef enum KeepConfiguration {
95355a28
YW
34 KEEP_CONFIGURATION_NO = 0,
35 KEEP_CONFIGURATION_DHCP_ON_START = 1 << 0,
36 KEEP_CONFIGURATION_DHCP_ON_STOP = 1 << 1,
37 KEEP_CONFIGURATION_DHCP = KEEP_CONFIGURATION_DHCP_ON_START | KEEP_CONFIGURATION_DHCP_ON_STOP,
38 KEEP_CONFIGURATION_STATIC = 1 << 2,
39 KEEP_CONFIGURATION_YES = KEEP_CONFIGURATION_DHCP | KEEP_CONFIGURATION_STATIC,
7da377ef 40 _KEEP_CONFIGURATION_MAX,
2d93c20e 41 _KEEP_CONFIGURATION_INVALID = -EINVAL,
7da377ef
SS
42} KeepConfiguration;
43
6f6296b9
YW
44typedef enum IPv6LinkLocalAddressGenMode {
45 IPV6_LINK_LOCAL_ADDRESSS_GEN_MODE_EUI64 = IN6_ADDR_GEN_MODE_EUI64,
46 IPV6_LINK_LOCAL_ADDRESSS_GEN_MODE_NONE = IN6_ADDR_GEN_MODE_NONE,
47 IPV6_LINK_LOCAL_ADDRESSS_GEN_MODE_STABLE_PRIVACY = IN6_ADDR_GEN_MODE_STABLE_PRIVACY,
48 IPV6_LINK_LOCAL_ADDRESSS_GEN_MODE_RANDOM = IN6_ADDR_GEN_MODE_RANDOM,
49 _IPV6_LINK_LOCAL_ADDRESS_GEN_MODE_MAX,
2d93c20e 50 _IPV6_LINK_LOCAL_ADDRESS_GEN_MODE_INVALID = -EINVAL,
6f6296b9
YW
51} IPv6LinkLocalAddressGenMode;
52
61135582
DS
53typedef enum ActivationPolicy {
54 ACTIVATION_POLICY_UP,
55 ACTIVATION_POLICY_ALWAYS_UP,
56 ACTIVATION_POLICY_MANUAL,
57 ACTIVATION_POLICY_ALWAYS_DOWN,
58 ACTIVATION_POLICY_DOWN,
59 ACTIVATION_POLICY_BOUND,
60 _ACTIVATION_POLICY_MAX,
2d93c20e 61 _ACTIVATION_POLICY_INVALID = -EINVAL,
61135582
DS
62} ActivationPolicy;
63
634f0f98
ZJS
64typedef struct Manager Manager;
65
2a71d57f
LP
66typedef struct NetworkDHCPServerEmitAddress {
67 bool emit;
68 struct in_addr *addresses;
69 size_t n_addresses;
70} NetworkDHCPServerEmitAddress;
71
fc2f9534
LP
72struct Network {
73 Manager *manager;
74
db5756f3
YW
75 unsigned n_ref;
76
fc2f9534 77 char *name;
db5756f3 78 char *filename;
7f06b3e1 79 usec_t timestamp;
db5756f3 80 char *description;
fc2f9534 81
db5756f3 82 /* [Match] section */
5722fb89 83 NetMatch match;
1beabe08 84 LIST_HEAD(Condition, conditions);
fc2f9534 85
db5756f3 86 /* Master or stacked netdevs */
c0267a59 87 NetDev *batadv;
fc2f9534
LP
88 NetDev *bridge;
89 NetDev *bond;
6cb955c6 90 NetDev *vrf;
98d20a17 91 NetDev *xfrm;
fc2f9534 92 Hashmap *stacked_netdevs;
c0267a59 93 char *batadv_name;
cebe1257
YW
94 char *bridge_name;
95 char *bond_name;
96 char *vrf_name;
97 Hashmap *stacked_netdev_names;
fc2f9534 98
db5756f3
YW
99 /* [Link] section */
100 struct ether_addr *mac;
101 uint32_t mtu;
102 uint32_t group;
f0c09831 103 bool group_set;
db5756f3
YW
104 int arp;
105 int multicast;
106 int allmulticast;
937e305e 107 int promiscuous;
db5756f3 108 bool unmanaged;
7c644a69 109 int required_for_online; /* Is this network required to be considered online? */
db5756f3 110 LinkOperationalStateRange required_operstate_for_online;
8430841b 111 AddressFamily required_family_for_online;
61135582 112 ActivationPolicy activation_policy;
db5756f3
YW
113
114 /* misc settings */
115 bool configure_without_carrier;
116 int ignore_carrier_loss;
117 KeepConfiguration keep_configuration;
118 char **bind_carrier;
119 bool default_route_on_device;
48ed2766 120 AddressFamily ip_masquerade;
db5756f3 121
fc2f9534 122 /* DHCP Client Support */
2d792895 123 AddressFamily dhcp;
499d555a 124 DHCPClientIdentifier dhcp_client_identifier;
4e26a5ba
YW
125 DUID dhcp_duid;
126 uint32_t dhcp_iaid;
127 bool dhcp_iaid_set;
fc2f9534 128 char *dhcp_vendor_class_identifier;
7b8d23a9 129 char *dhcp_mudurl;
af1c0de0 130 char **dhcp_user_class;
27cb34f5 131 char *dhcp_hostname;
d419ef02 132 char *dhcp_label;
715cedfb 133 uint64_t dhcp_max_attempts;
132be2b8 134 uint32_t dhcp_route_metric;
bdad94d0 135 bool dhcp_route_metric_set;
94e9bd57 136 uint32_t dhcp_route_table;
d6463307 137 uint32_t dhcp_fallback_lease_lifetime;
c695dcf9 138 uint32_t dhcp_route_mtu;
9c77d107 139 uint16_t dhcp_client_port;
cb29c156 140 int dhcp_critical;
db5756f3 141 int dhcp_ip_service_type;
7585baa0 142 bool dhcp_anonymize;
27cb34f5 143 bool dhcp_send_hostname;
e70eca9b 144 int dhcp_broadcast;
94e9bd57 145 bool dhcp_use_dns;
bdad94d0 146 bool dhcp_use_dns_set;
a24e12f0 147 bool dhcp_routes_to_dns;
94e9bd57 148 bool dhcp_use_ntp;
bdad94d0 149 bool dhcp_use_ntp_set;
d7b04506 150 bool dhcp_routes_to_ntp;
299d578f 151 bool dhcp_use_sip;
94e9bd57 152 bool dhcp_use_mtu;
27cb34f5 153 bool dhcp_use_routes;
589397a2 154 int dhcp_use_gateway;
27cb34f5 155 bool dhcp_use_timezone;
94e9bd57 156 bool dhcp_use_hostname;
fc1ba79d 157 bool dhcp_route_table_set;
1501b429 158 bool dhcp_send_release;
0f3ff4ea 159 bool dhcp_send_decline;
94e9bd57 160 DHCPUseDomains dhcp_use_domains;
f225a338 161 bool dhcp_use_domains_set;
6b000af4 162 Set *dhcp_deny_listed_ip;
98ebef62 163 Set *dhcp_allow_listed_ip;
5bc945be 164 Set *dhcp_request_options;
0e96961d 165 OrderedHashmap *dhcp_client_send_options;
7354900d 166 OrderedHashmap *dhcp_client_send_vendor_options;
fc2f9534 167
7802194a 168 /* DHCPv6 Client support */
1536b7b2 169 bool dhcp6_use_address;
caa8ca42 170 bool dhcp6_use_dns;
bdad94d0 171 bool dhcp6_use_dns_set;
38ba3da0 172 bool dhcp6_use_hostname;
caa8ca42 173 bool dhcp6_use_ntp;
bdad94d0 174 bool dhcp6_use_ntp_set;
db5756f3 175 bool dhcp6_rapid_commit;
f225a338
YW
176 DHCPUseDomains dhcp6_use_domains;
177 bool dhcp6_use_domains_set;
4e26a5ba
YW
178 uint32_t dhcp6_iaid;
179 bool dhcp6_iaid_set;
180 bool dhcp6_iaid_set_explicitly;
181 DUID dhcp6_duid;
2805536b 182 uint8_t dhcp6_pd_length;
3175a8c2 183 char *dhcp6_mudurl;
f37f2a6b 184 char **dhcp6_user_class;
ed0d1b2e 185 char **dhcp6_vendor_class;
2805536b 186 struct in6_addr dhcp6_pd_address;
838d39af 187 DHCP6ClientStartMode dhcp6_without_ra;
e7d5fe17 188 OrderedHashmap *dhcp6_client_send_options;
b4ccc5de 189 OrderedHashmap *dhcp6_client_send_vendor_options;
35f6a5cb 190 Set *dhcp6_request_options;
db5756f3
YW
191 /* Start DHCPv6 PD also when 'O' RA flag is set, see RFC 7084, WPD-4 */
192 bool dhcp6_force_pd_other_information;
caa8ca42 193
fc2f9534
LP
194 /* DHCP Server Support */
195 bool dhcp_server;
21b6b87e 196 bool dhcp_server_bind_to_interface;
0017ba31
YW
197 unsigned char dhcp_server_address_prefixlen;
198 struct in_addr dhcp_server_address;
165d7c5c
YW
199 int dhcp_server_uplink_index;
200 char *dhcp_server_uplink_name;
c95df587 201 struct in_addr dhcp_server_relay_target;
11c38d3e
YA
202 char *dhcp_server_relay_agent_circuit_id;
203 char *dhcp_server_relay_agent_remote_id;
2a71d57f 204 NetworkDHCPServerEmitAddress dhcp_server_emit[_SD_DHCP_LEASE_SERVER_TYPE_MAX];
77ff6022 205 bool dhcp_server_emit_router;
fc2f9534 206 bool dhcp_server_emit_timezone;
1a04db0f 207 char *dhcp_server_timezone;
fc2f9534 208 usec_t dhcp_server_default_lease_time_usec, dhcp_server_max_lease_time_usec;
9b3a67c5
TG
209 uint32_t dhcp_server_pool_offset;
210 uint32_t dhcp_server_pool_size;
db5756f3
YW
211 OrderedHashmap *dhcp_server_send_options;
212 OrderedHashmap *dhcp_server_send_vendor_options;
fc2f9534 213
6f6296b9 214 /* link local addressing support */
2d792895 215 AddressFamily link_local;
6f6296b9 216 IPv6LinkLocalAddressGenMode ipv6ll_address_gen_mode;
9e1432d5 217 struct in6_addr ipv6ll_stable_secret;
fc2f9534
LP
218 bool ipv4ll_route;
219
27ff0490 220 /* IPv6 RA support */
56a23cb4 221 RADVPrefixDelegation router_prefix_delegation;
7d5cac19
PF
222 usec_t router_lifetime_usec;
223 uint8_t router_preference;
224 bool router_managed;
225 bool router_other_information;
9e25315c
PF
226 bool router_emit_dns;
227 bool router_emit_domains;
88295a05
PF
228 usec_t router_dns_lifetime_usec;
229 struct in6_addr *router_dns;
230 unsigned n_router_dns;
5e2a51d5 231 OrderedSet *router_search_domains;
63295b42
YW
232 int router_uplink_index;
233 char *router_uplink_name;
99e015e2
YW
234
235 /* DHCPv6 Prefix Delegation support */
e502f94d 236 int dhcp6_pd;
4afd9867 237 bool dhcp6_pd_announce;
99e015e2 238 bool dhcp6_pd_assign;
fec1b650 239 bool dhcp6_pd_manage_temporary_address;
db5756f3 240 int64_t dhcp6_pd_subnet_id;
9fe0b7b4 241 uint32_t dhcp6_pd_route_metric;
b8ce3b44 242 struct in6_addr dhcp6_pd_token;
7d5cac19 243
fc2f9534 244 /* Bridge Support */
7f9915f0
SS
245 int use_bpdu;
246 int hairpin;
247 int fast_leave;
248 int allow_port_to_be_root;
249 int unicast_flood;
7f15b714 250 int multicast_flood;
d3aa8b49 251 int multicast_to_unicast;
7f15b714
TJ
252 int neighbor_suppression;
253 int learning;
1087623b
SS
254 int bridge_proxy_arp;
255 int bridge_proxy_arp_wifi;
b56be296
DJL
256 uint32_t cost;
257 uint16_t priority;
0fadb2a4 258 MulticastRouter multicast_router;
fc2f9534 259
db5756f3 260 /* Bridge VLAN */
ffff9abe 261 bool use_br_vlan;
13b498f9
TJ
262 uint16_t pvid;
263 uint32_t br_vid_bitmap[BRIDGE_VLAN_BITMAP_LEN];
264 uint32_t br_untagged_bitmap[BRIDGE_VLAN_BITMAP_LEN];
265
06828bb6 266 /* CAN support */
74a27268 267 uint32_t can_bitrate;
06828bb6 268 unsigned can_sample_point;
b164b570
YW
269 nsec_t can_time_quanta_ns;
270 uint32_t can_propagation_segment;
271 uint32_t can_phase_buffer_segment_1;
272 uint32_t can_phase_buffer_segment_2;
273 uint32_t can_sync_jump_width;
7e025e9c
RP
274 uint32_t can_data_bitrate;
275 unsigned can_data_sample_point;
b164b570
YW
276 nsec_t can_data_time_quanta_ns;
277 uint32_t can_data_propagation_segment;
278 uint32_t can_data_phase_buffer_segment_1;
279 uint32_t can_data_phase_buffer_segment_2;
280 uint32_t can_data_sync_jump_width;
06828bb6 281 usec_t can_restart_us;
f1c141cb
YW
282 uint32_t can_control_mode_mask;
283 uint32_t can_control_mode_flags;
239f91f7
YW
284 uint16_t can_termination;
285 bool can_termination_set;
06828bb6 286
db5756f3 287 /* sysctl settings */
2d792895 288 AddressFamily ip_forward;
94d76d07 289 int ipv4_accept_local;
d75bf6cf 290 int ipv4_route_localnet;
8749cbcd 291 int ipv6_dad_transmits;
b69c3180 292 int ipv6_hop_limit;
23d8b221 293 int proxy_arp;
4e964aa0 294 uint32_t ipv6_mtu;
db5756f3
YW
295 IPv6PrivacyExtensions ipv6_privacy_extensions;
296 int ipv6_proxy_ndp;
297 Set *ipv6_proxy_ndp_addresses;
4f2e437a 298
db5756f3
YW
299 /* IPv6 accept RA */
300 int ipv6_accept_ra;
1e7a0e21 301 bool ipv6_accept_ra_use_dns;
062c2eea
SS
302 bool ipv6_accept_ra_use_autonomous_prefix;
303 bool ipv6_accept_ra_use_onlink_prefix;
eb64b435
SS
304 bool active_slave;
305 bool primary_slave;
1e7a0e21 306 DHCPUseDomains ipv6_accept_ra_use_domains;
ac24e418 307 IPv6AcceptRAStartDHCP6Client ipv6_accept_ra_start_dhcp6_client;
2ba31d29 308 uint32_t ipv6_accept_ra_route_table;
8ebafba9
YW
309 bool ipv6_accept_ra_route_table_set;
310 uint32_t ipv6_accept_ra_route_metric;
311 bool ipv6_accept_ra_route_metric_set;
75d26411
YW
312 Set *ndisc_deny_listed_router;
313 Set *ndisc_allow_listed_router;
6b000af4 314 Set *ndisc_deny_listed_prefix;
de6b6ff8 315 Set *ndisc_allow_listed_prefix;
16c89e64 316 Set *ndisc_deny_listed_route_prefix;
de6b6ff8 317 Set *ndisc_allow_listed_route_prefix;
2c621495 318 OrderedSet *ipv6_tokens;
1e7a0e21 319
e9a8c550 320 /* LLDP support */
8e1ad1ea 321 LLDPMode lldp_mode; /* LLDP reception */
7272b25e 322 LLDPEmit lldp_emit; /* LLDP transmission */
e9a8c550 323 char *lldp_mud; /* LLDP MUD URL */
fc2f9534 324
9cd9fc8f 325 OrderedHashmap *addresses_by_section;
fc2f9534 326 Hashmap *routes_by_section;
c16c7808 327 Hashmap *nexthops_by_section;
9671ae9d 328 Hashmap *bridge_fdb_entries_by_section;
ff9e0783 329 Hashmap *bridge_mdb_entries_by_section;
e4a71bf3 330 Hashmap *neighbors_by_section;
95b74ef6 331 Hashmap *address_labels_by_section;
057abfd8 332 Hashmap *prefixes_by_section;
203d4df5 333 Hashmap *route_prefixes_by_section;
bce67bbe 334 Hashmap *rules_by_section;
c517a49b 335 Hashmap *dhcp_static_leases_by_section;
34658df2 336 OrderedHashmap *tc_by_section;
518cd6b5 337 OrderedHashmap *sr_iov_by_section;
fc2f9534 338
7ece6f58 339 /* All kinds of DNS configuration */
e77bd3fd 340 struct in_addr_full **dns;
5512a963 341 unsigned n_dns;
5e2a51d5 342 OrderedSet *search_domains, *route_domains;
7ece6f58 343 int dns_default_route;
fc2f9534 344 ResolveSupport llmnr;
aaa297d4 345 ResolveSupport mdns;
ad6c0475 346 DnssecMode dnssec_mode;
c9299be2 347 DnsOverTlsMode dns_over_tls_mode;
8a516214 348 Set *dnssec_negative_trust_anchors;
fc2f9534 349
db5756f3 350 /* NTP */
7ece6f58 351 char **ntp;
fc2f9534
LP
352};
353
35ac3b76
YW
354Network *network_ref(Network *network);
355Network *network_unref(Network *network);
356DEFINE_TRIVIAL_CLEANUP_FUNC(Network*, network_unref);
fc2f9534 357
7f06b3e1
YW
358int network_load(Manager *manager, OrderedHashmap **networks);
359int network_reload(Manager *manager);
360int network_load_one(Manager *manager, OrderedHashmap **networks, const char *filename);
96db6412 361int network_verify(Network *network);
fc2f9534
LP
362
363int network_get_by_name(Manager *manager, const char *name, Network **ret);
add8d07d 364void network_apply_anonymize_if_set(Network *network);
fc2f9534 365
adfeee49 366bool network_has_static_ipv6_configurations(Network *network);
439689c6 367
cebe1257 368CONFIG_PARSER_PROTOTYPE(config_parse_stacked_netdev);
a2106925 369CONFIG_PARSER_PROTOTYPE(config_parse_tunnel);
ca5ad760
YW
370CONFIG_PARSER_PROTOTYPE(config_parse_domains);
371CONFIG_PARSER_PROTOTYPE(config_parse_dns);
a2106925
LP
372CONFIG_PARSER_PROTOTYPE(config_parse_hostname);
373CONFIG_PARSER_PROTOTYPE(config_parse_timezone);
a2106925 374CONFIG_PARSER_PROTOTYPE(config_parse_dnssec_negative_trust_anchors);
a2106925 375CONFIG_PARSER_PROTOTYPE(config_parse_ntp);
4ac77d63 376CONFIG_PARSER_PROTOTYPE(config_parse_required_for_online);
8430841b 377CONFIG_PARSER_PROTOTYPE(config_parse_required_family_for_online);
7da377ef 378CONFIG_PARSER_PROTOTYPE(config_parse_keep_configuration);
6f6296b9 379CONFIG_PARSER_PROTOTYPE(config_parse_ipv6_link_local_address_gen_mode);
61135582 380CONFIG_PARSER_PROTOTYPE(config_parse_activation_policy);
f0c09831 381CONFIG_PARSER_PROTOTYPE(config_parse_link_group);
63295b42 382CONFIG_PARSER_PROTOTYPE(config_parse_uplink);
fc2f9534 383
c9f7b4d3 384const struct ConfigPerfItem* network_network_gperf_lookup(const char *key, GPERF_LEN_TYPE length);
fc2f9534 385
7da377ef
SS
386const char* keep_configuration_to_string(KeepConfiguration i) _const_;
387KeepConfiguration keep_configuration_from_string(const char *s) _pure_;
6f6296b9
YW
388
389const char* ipv6_link_local_address_gen_mode_to_string(IPv6LinkLocalAddressGenMode s) _const_;
390IPv6LinkLocalAddressGenMode ipv6_link_local_address_gen_mode_from_string(const char *s) _pure_;
61135582
DS
391
392const char* activation_policy_to_string(ActivationPolicy i) _const_;
393ActivationPolicy activation_policy_from_string(const char *s) _pure_;