]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/libsystemd-network/sd-ndisc.c
systemctl: allow percent-based MemoryLimit= settings via systemctl set-property
[thirdparty/systemd.git] / src / libsystemd-network / sd-ndisc.c
CommitLineData
e3169126
PF
1/***
2 This file is part of systemd.
3
4 Copyright (C) 2014 Intel Corporation. All rights reserved.
5
6 systemd is free software; you can redistribute it and/or modify it
7 under the terms of the GNU Lesser General Public License as published by
8 the Free Software Foundation; either version 2.1 of the License, or
9 (at your option) any later version.
10
11 systemd is distributed in the hope that it will be useful, but
12 WITHOUT ANY WARRANTY; without even the implied warranty of
13 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 Lesser General Public License for more details.
15
16 You should have received a copy of the GNU Lesser General Public License
17 along with systemd; If not, see <http://www.gnu.org/licenses/>.
18***/
19
20#include <netinet/icmp6.h>
07630cea 21#include <netinet/in.h>
e3169126 22
07630cea
LP
23#include "sd-ndisc.h"
24
b5efdb8a 25#include "alloc-util.h"
1e7a0e21 26#include "fd-util.h"
07630cea 27#include "icmp6-util.h"
9d96e6c3 28#include "in-addr-util.h"
1e7a0e21
LP
29#include "ndisc-internal.h"
30#include "ndisc-router.h"
940367a0 31#include "socket-util.h"
d7fa4380 32#include "string-util.h"
1e7a0e21 33#include "util.h"
e3169126 34
9c2438b8 35#define NDISC_ROUTER_SOLICITATION_INTERVAL (4U * USEC_PER_SEC)
1e7a0e21 36#define NDISC_MAX_ROUTER_SOLICITATIONS 3U
e3169126 37
1e7a0e21
LP
38static void ndisc_callback(sd_ndisc *ndisc, sd_ndisc_event event, sd_ndisc_router *rt) {
39 assert(ndisc);
e3169126 40
1e7a0e21 41 log_ndisc("Invoking callback for '%c'.", event);
09667885 42
1e7a0e21
LP
43 if (!ndisc->callback)
44 return;
9d96e6c3 45
1e7a0e21 46 ndisc->callback(ndisc, event, rt, ndisc->userdata);
5624c480
PF
47}
48
1e7a0e21 49_public_ int sd_ndisc_set_callback(
a1140666 50 sd_ndisc *nd,
a1140666
LP
51 sd_ndisc_callback_t callback,
52 void *userdata) {
53
54 assert_return(nd, -EINVAL);
e3169126
PF
55
56 nd->callback = callback;
57 nd->userdata = userdata;
58
59 return 0;
60}
61
1e7a0e21 62_public_ int sd_ndisc_set_ifindex(sd_ndisc *nd, int ifindex) {
2f8e7633
LP
63 assert_return(nd, -EINVAL);
64 assert_return(ifindex > 0, -EINVAL);
1e7a0e21 65 assert_return(nd->fd < 0, -EBUSY);
e3169126 66
2f8e7633 67 nd->ifindex = ifindex;
e3169126
PF
68 return 0;
69}
70
1e7a0e21 71_public_ int sd_ndisc_set_mac(sd_ndisc *nd, const struct ether_addr *mac_addr) {
a1140666 72 assert_return(nd, -EINVAL);
e3169126
PF
73
74 if (mac_addr)
1e7a0e21 75 nd->mac_addr = *mac_addr;
e3169126 76 else
eccaf899 77 zero(nd->mac_addr);
e3169126
PF
78
79 return 0;
e3169126
PF
80}
81
1e7a0e21 82_public_ int sd_ndisc_attach_event(sd_ndisc *nd, sd_event *event, int64_t priority) {
e3169126
PF
83 int r;
84
85 assert_return(nd, -EINVAL);
1e7a0e21 86 assert_return(nd->fd < 0, -EBUSY);
e3169126
PF
87 assert_return(!nd->event, -EBUSY);
88
89 if (event)
90 nd->event = sd_event_ref(event);
91 else {
92 r = sd_event_default(&nd->event);
93 if (r < 0)
94 return 0;
95 }
96
97 nd->event_priority = priority;
98
99 return 0;
100}
101
1e7a0e21
LP
102_public_ int sd_ndisc_detach_event(sd_ndisc *nd) {
103
e3169126 104 assert_return(nd, -EINVAL);
1e7a0e21 105 assert_return(nd->fd < 0, -EBUSY);
e3169126
PF
106
107 nd->event = sd_event_unref(nd->event);
e3169126
PF
108 return 0;
109}
110
1e7a0e21 111_public_ sd_event *sd_ndisc_get_event(sd_ndisc *nd) {
a1140666 112 assert_return(nd, NULL);
e3169126
PF
113
114 return nd->event;
115}
116
1e7a0e21 117_public_ sd_ndisc *sd_ndisc_ref(sd_ndisc *nd) {
e3169126 118
9c8e3101
LP
119 if (!nd)
120 return NULL;
121
122 assert(nd->n_ref > 0);
123 nd->n_ref++;
e3169126
PF
124
125 return nd;
126}
127
5c4c338a 128static int ndisc_reset(sd_ndisc *nd) {
e3169126
PF
129 assert(nd);
130
3e261cfd 131 nd->timeout_event_source = sd_event_source_unref(nd->timeout_event_source);
1e7a0e21
LP
132 nd->recv_event_source = sd_event_source_unref(nd->recv_event_source);
133 nd->fd = safe_close(nd->fd);
e3169126
PF
134
135 return 0;
136}
137
1e7a0e21 138_public_ sd_ndisc *sd_ndisc_unref(sd_ndisc *nd) {
e3169126 139
9c8e3101
LP
140 if (!nd)
141 return NULL;
142
143 assert(nd->n_ref > 0);
144 nd->n_ref--;
145
146 if (nd->n_ref > 0)
147 return NULL;
e3169126 148
5c4c338a 149 ndisc_reset(nd);
4d7b83da 150 sd_ndisc_detach_event(nd);
9c8e3101
LP
151 free(nd);
152
e3169126
PF
153 return NULL;
154}
155
1e7a0e21 156_public_ int sd_ndisc_new(sd_ndisc **ret) {
4afd3348 157 _cleanup_(sd_ndisc_unrefp) sd_ndisc *nd = NULL;
e3169126 158
a1140666 159 assert_return(ret, -EINVAL);
e3169126 160
4d7b83da 161 nd = new0(sd_ndisc, 1);
e3169126
PF
162 if (!nd)
163 return -ENOMEM;
164
9c8e3101 165 nd->n_ref = 1;
03de7ed9 166 nd->fd = -1;
e3169126
PF
167
168 *ret = nd;
169 nd = NULL;
170
171 return 0;
172}
173
1e7a0e21 174_public_ int sd_ndisc_get_mtu(sd_ndisc *nd, uint32_t *mtu) {
d14b5bc6
PF
175 assert_return(nd, -EINVAL);
176 assert_return(mtu, -EINVAL);
177
178 if (nd->mtu == 0)
1e7a0e21 179 return -ENODATA;
d14b5bc6
PF
180
181 *mtu = nd->mtu;
d14b5bc6
PF
182 return 0;
183}
184
1e7a0e21
LP
185_public_ int sd_ndisc_get_hop_limit(sd_ndisc *nd, uint8_t *ret) {
186 assert_return(nd, -EINVAL);
187 assert_return(ret, -EINVAL);
d77bde34 188
1e7a0e21
LP
189 if (nd->hop_limit == 0)
190 return -ENODATA;
d77bde34 191
1e7a0e21 192 *ret = nd->hop_limit;
d77bde34
PF
193 return 0;
194}
195
1e7a0e21 196static int ndisc_handle_datagram(sd_ndisc *nd, sd_ndisc_router *rt) {
f6e0ce66 197 int r;
d77bde34 198
f6e0ce66 199 assert(nd);
1e7a0e21 200 assert(rt);
d77bde34 201
1e7a0e21
LP
202 r = ndisc_router_parse(rt);
203 if (r == -EBADMSG) /* Bad packet */
9d96e6c3 204 return 0;
f6e0ce66 205 if (r < 0)
1e7a0e21 206 return 0;
09667885 207
1e7a0e21
LP
208 /* Update global variables we keep */
209 if (rt->mtu > 0)
210 nd->mtu = rt->mtu;
211 if (rt->hop_limit > 0)
212 nd->hop_limit = rt->hop_limit;
09667885 213
1e7a0e21
LP
214 log_ndisc("Received Router Advertisement: flags %s preference %s lifetime %" PRIu16 " sec",
215 rt->flags & ND_RA_FLAG_MANAGED ? "MANAGED" : rt->flags & ND_RA_FLAG_OTHER ? "OTHER" : "none",
216 rt->preference == SD_NDISC_PREFERENCE_HIGH ? "high" : rt->preference == SD_NDISC_PREFERENCE_LOW ? "low" : "medium",
217 rt->lifetime);
09667885 218
1e7a0e21 219 ndisc_callback(nd, SD_NDISC_EVENT_ROUTER, rt);
09667885
PF
220 return 0;
221}
222
1e7a0e21
LP
223static int ndisc_recv(sd_event_source *s, int fd, uint32_t revents, void *userdata) {
224 _cleanup_(sd_ndisc_router_unrefp) sd_ndisc_router *rt = NULL;
4d7b83da 225 sd_ndisc *nd = userdata;
cddf4d81
TG
226 union {
227 struct cmsghdr cmsghdr;
1e7a0e21
LP
228 uint8_t buf[CMSG_SPACE(sizeof(int)) + /* ttl */
229 CMSG_SPACE(sizeof(struct timeval))];
cddf4d81
TG
230 } control = {};
231 struct iovec iov = {};
232 union sockaddr_union sa = {};
233 struct msghdr msg = {
234 .msg_name = &sa.sa,
235 .msg_namelen = sizeof(sa),
236 .msg_iov = &iov,
237 .msg_iovlen = 1,
238 .msg_control = &control,
239 .msg_controllen = sizeof(control),
240 };
241 struct cmsghdr *cmsg;
4edc2c9b 242 ssize_t len, buflen;
e3169126
PF
243
244 assert(s);
245 assert(nd);
246 assert(nd->event);
247
4edc2c9b
LP
248 buflen = next_datagram_size_fd(fd);
249 if (buflen < 0)
1e7a0e21 250 return log_ndisc_errno(buflen, "Failed to determine datagram size to read: %m");
cddf4d81 251
1e7a0e21
LP
252 rt = ndisc_router_new(buflen);
253 if (!rt)
09667885
PF
254 return -ENOMEM;
255
1e7a0e21
LP
256 iov.iov_base = NDISC_ROUTER_RAW(rt);
257 iov.iov_len = rt->raw_size;
cddf4d81 258
1e7a0e21 259 len = recvmsg(fd, &msg, MSG_DONTWAIT);
09667885 260 if (len < 0) {
0d43d2fc
TG
261 if (errno == EAGAIN || errno == EINTR)
262 return 0;
263
1e7a0e21 264 return log_ndisc_errno(errno, "Could not receive message from ICMPv6 socket: %m");
004845d1 265 }
1e7a0e21
LP
266
267 if ((size_t) len != rt->raw_size) {
268 log_ndisc("Packet size mismatch.");
269 return -EINVAL;
004845d1
LP
270 }
271
1e7a0e21
LP
272 if (msg.msg_namelen == sizeof(struct sockaddr_in6) &&
273 sa.in6.sin6_family == AF_INET6) {
274
275 if (in_addr_is_link_local(AF_INET6, (union in_addr_union*) &sa.in6.sin6_addr) <= 0) {
276 _cleanup_free_ char *addr = NULL;
277
278 (void) in_addr_to_string(AF_INET6, (union in_addr_union*) &sa.in6.sin6_addr, &addr);
279 log_ndisc("Received RA from non-link-local address %s. Ignoring.", strna(addr));
280 return 0;
281 }
282
283 rt->address = sa.in6.sin6_addr;
284
285 } else if (msg.msg_namelen > 0) {
286 log_ndisc("Received invalid source address size from ICMPv6 socket: %zu bytes", (size_t) msg.msg_namelen);
287 return -EINVAL;
288 }
289
290 /* namelen == 0 only happens when running the test-suite over a socketpair */
cddf4d81
TG
291
292 assert(!(msg.msg_flags & MSG_CTRUNC));
293 assert(!(msg.msg_flags & MSG_TRUNC));
294
295 CMSG_FOREACH(cmsg, &msg) {
296 if (cmsg->cmsg_level == SOL_IPV6 &&
297 cmsg->cmsg_type == IPV6_HOPLIMIT &&
298 cmsg->cmsg_len == CMSG_LEN(sizeof(int))) {
1e7a0e21 299 int hops = *(int*) CMSG_DATA(cmsg);
cddf4d81
TG
300
301 if (hops != 255) {
1e7a0e21 302 log_ndisc("Received RA with invalid hop limit %d. Ignoring.", hops);
cddf4d81
TG
303 return 0;
304 }
cddf4d81 305 }
d7fa4380 306
1e7a0e21
LP
307 if (cmsg->cmsg_level == SOL_SOCKET &&
308 cmsg->cmsg_type == SO_TIMESTAMP &&
309 cmsg->cmsg_len == CMSG_LEN(sizeof(struct timeval)))
310 triple_timestamp_from_realtime(&rt->timestamp, timeval_load(CMSG_DATA(cmsg)));
d7fa4380 311 }
3ccd3163 312
1e7a0e21
LP
313 if (!triple_timestamp_is_set(&rt->timestamp))
314 triple_timestamp_get(&rt->timestamp);
e3169126 315
3e261cfd 316 nd->timeout_event_source = sd_event_source_unref(nd->timeout_event_source);
09667885 317
1e7a0e21 318 return ndisc_handle_datagram(nd, rt);
e3169126
PF
319}
320
1e7a0e21 321static int ndisc_timeout(sd_event_source *s, uint64_t usec, void *userdata) {
4d7b83da 322 sd_ndisc *nd = userdata;
9c4f6ccb 323 usec_t time_now, next_timeout;
e3169126
PF
324 int r;
325
326 assert(s);
327 assert(nd);
328 assert(nd->event);
329
46ec6687 330 if (nd->nd_sent >= NDISC_MAX_ROUTER_SOLICITATIONS) {
1e7a0e21
LP
331 nd->timeout_event_source = sd_event_source_unref(nd->timeout_event_source);
332 ndisc_callback(nd, SD_NDISC_EVENT_TIMEOUT, NULL);
333 return 0;
334 }
e3169126 335
1e7a0e21
LP
336 r = icmp6_send_router_solicitation(nd->fd, &nd->mac_addr);
337 if (r < 0) {
338 log_ndisc_errno(r, "Error sending Router Solicitation: %m");
339 goto fail;
340 }
e3169126 341
1e7a0e21
LP
342 log_ndisc("Sent Router Solicitation");
343 nd->nd_sent++;
e3169126 344
1e7a0e21
LP
345 assert_se(sd_event_now(nd->event, clock_boottime_or_monotonic(), &time_now) >= 0);
346 next_timeout = time_now + NDISC_ROUTER_SOLICITATION_INTERVAL;
e3169126 347
1e7a0e21
LP
348 r = sd_event_source_set_time(nd->timeout_event_source, next_timeout);
349 if (r < 0) {
350 log_ndisc_errno(r, "Error updating timer: %m");
351 goto fail;
352 }
9021bb9f 353
1e7a0e21
LP
354 r = sd_event_source_set_enabled(nd->timeout_event_source, SD_EVENT_ONESHOT);
355 if (r < 0) {
356 log_ndisc_errno(r, "Error reenabling timer: %m");
357 goto fail;
e3169126
PF
358 }
359
360 return 0;
b9e7b1cf
LP
361
362fail:
363 sd_ndisc_stop(nd);
364 return 0;
e3169126
PF
365}
366
1e7a0e21 367_public_ int sd_ndisc_stop(sd_ndisc *nd) {
836cf090 368 assert_return(nd, -EINVAL);
836cf090 369
1e7a0e21 370 if (nd->fd < 0)
c1c9b211
LP
371 return 0;
372
1e7a0e21 373 log_ndisc("Stopping IPv6 Router Solicitation client");
836cf090 374
5c4c338a 375 ndisc_reset(nd);
1e7a0e21 376 return 1;
836cf090
PF
377}
378
1e7a0e21 379_public_ int sd_ndisc_start(sd_ndisc *nd) {
e3169126
PF
380 int r;
381
a1140666
LP
382 assert_return(nd, -EINVAL);
383 assert_return(nd->event, -EINVAL);
384 assert_return(nd->ifindex > 0, -EINVAL);
e3169126 385
1e7a0e21
LP
386 if (nd->fd >= 0)
387 return 0;
e3169126 388
1e7a0e21
LP
389 assert(!nd->recv_event_source);
390 assert(!nd->timeout_event_source);
e3169126 391
1e7a0e21
LP
392 nd->fd = icmp6_bind_router_solicitation(nd->ifindex);
393 if (nd->fd < 0)
394 return nd->fd;
395
396 r = sd_event_add_io(nd->event, &nd->recv_event_source, nd->fd, EPOLLIN, ndisc_recv, nd);
e3169126 397 if (r < 0)
5c4c338a 398 goto fail;
e3169126 399
3e261cfd 400 r = sd_event_source_set_priority(nd->recv_event_source, nd->event_priority);
e3169126 401 if (r < 0)
5c4c338a 402 goto fail;
e3169126 403
3e261cfd 404 (void) sd_event_source_set_description(nd->recv_event_source, "ndisc-receive-message");
9021bb9f 405
1e7a0e21 406 r = sd_event_add_time(nd->event, &nd->timeout_event_source, clock_boottime_or_monotonic(), 0, 0, ndisc_timeout, nd);
e3169126 407 if (r < 0)
5c4c338a 408 goto fail;
e3169126 409
3e261cfd 410 r = sd_event_source_set_priority(nd->timeout_event_source, nd->event_priority);
9021bb9f 411 if (r < 0)
5c4c338a 412 goto fail;
e3169126 413
3e261cfd 414 (void) sd_event_source_set_description(nd->timeout_event_source, "ndisc-timeout");
5c4c338a 415
1e7a0e21
LP
416 log_ndisc("Started IPv6 Router Solicitation client");
417 return 1;
e3169126 418
5c4c338a
LP
419fail:
420 ndisc_reset(nd);
e3169126
PF
421 return r;
422}