]> git.ipfire.org Git - ipfire-2.x.git/blob - config/udev/network-hotplug-bridges
network-hotplug-bridges: Fix logical error in STP_PRIORITY check
[ipfire-2.x.git] / config / udev / network-hotplug-bridges
1 #!/bin/bash
2 ############################################################################
3 # #
4 # This file is part of the IPFire Firewall. #
5 # #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 2 of the License, or #
9 # (at your option) any later version. #
10 # #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
15 # #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
19 # #
20 # Copyright (C) 2016 IPFire Team <info@ipfire.org> #
21 # #
22 ############################################################################
23
24 [ -n "${INTERFACE}" ] || exit 2
25
26 eval $(/usr/local/bin/readhash /var/ipfire/ethernet/settings)
27
28 detect_zone() {
29 local intf="${INTERFACE%?}"
30 intf="${intf%phys}"
31 intf="${intf^^}"
32
33 local zone
34 for zone in GREEN BLUE ORANGE RED; do
35 # Try to find if INTERFACE is the *phys version of a zone
36 if [ "${intf}" = "${zone}" ]; then
37 echo "${zone}"
38 return 0
39 fi
40
41 # Try to find out if this INTERFACE is a slave of a zone
42 local slave
43 for slave in $(get_value "${zone}_SLAVES"); do
44
45 #Compare if the mac address matches or if the name matches
46 if ([ "$(</sys/class/net/${INTERFACE}/address)" = "${slave}" ] || [ "${INTERFACE}" = "${slave}" ]); then
47 echo "${zone}"
48 return 0
49 fi
50 done
51 done
52
53 return 1
54 }
55
56 get_value() {
57 echo "${!1}"
58 }
59
60 random_mac_address() {
61 local address="02"
62
63 for i in $(seq 5); do
64 printf -v address "${address}:%02x" "$(( RANDOM % 256 ))"
65 done
66
67 echo "${address}"
68 }
69
70 # Try to detect which zone we are operating on
71 ZONE=$(detect_zone)
72
73 # Cannot proceed if we could not find a zone
74 if [ -z "${ZONE}" ]; then
75 logger "Could not find a bridged zone for ${INTERFACE}"
76 exit 0
77 fi
78
79 # Determine the mode of this zone
80 MODE="$(get_value "${ZONE}_MODE")"
81
82 # The name of the virtual bridge
83 BRIDGE="$(get_value "${ZONE}_DEV")"
84 STP="$(get_value "${ZONE}_STP")"
85 STP_PRIORITY="$(get_value "${ZONE}_STP_PRIORITY")"
86
87 case "${MODE}" in
88 bridge)
89 # We need to check if $STP_PRIORITY has a valid value if not set it
90 if [ -z "${STP_PRIORITY}" ]; then
91 STP_PRIORITY=16384
92 fi
93
94 ADDRESS="$(get_value "${ZONE}_MACADDR")"
95 [ -n "${ADDRESS}" ] || ADDRESS="$(random_mac_address)"
96
97 # We need to create the bridge if it doesn't exist, yet
98 if [ ! -d "/sys/class/net/${BRIDGE}" ]; then
99 ip link add "${BRIDGE}" address "${ADDRESS}" type bridge \
100 $([ "${STP}" = "on" ] && echo "stp_state 1 priority ${STP_PRIORITY}" )
101 #ip link set "${BRIDGE}" up
102 fi
103
104 if grep -q "INTERFACE=${INTERFACE}" "/var/ipfire/wlanap/settings" 2>/dev/null; then
105 iw dev "${INTERFACE}" set type __ap
106 fi
107
108 # Attach the physical device
109 logger "Attach ${INTERFACE} to ${BRIDGE}"
110 ip link set dev "${INTERFACE}" master "${BRIDGE}"
111 ip link set dev "${INTERFACE}" up
112 ;;
113
114 macvtap)
115 ADDRESS="$(</sys/class/net/${INTERFACE}/address)"
116 GENERATED_ADDRESS=$(random_mac_address)
117
118 ip link add link "${INTERFACE}" "${BRIDGE}" address "${ADDRESS}" type macvlan mode bridge
119 ip link set "${INTERFACE}" address "${GENERATED_ADDRESS}"
120 ip link set "${INTERFACE}" up
121 ;;
122
123 "")
124 exit 0
125 ;;
126
127 *)
128 logger -t "network" "Unhandled mode '${MODE}' for '${ZONE}' (${INTERFACE})"
129 exit 1
130 ;;
131 esac