diff options
author | root <root@build-vm.(none)> | 2010-06-14 15:51:25 -0700 |
---|---|---|
committer | root <root@build-vm.(none)> | 2010-06-14 15:51:25 -0700 |
commit | c4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5 (patch) | |
tree | 86ee5befd8195f56dcd91f9fd4e06368bf507a11 /src/network.c | |
download | conntrack-tools-c4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5.tar.gz conntrack-tools-c4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5.zip |
debian conntrack 0.9.14-2
Diffstat (limited to 'src/network.c')
-rw-r--r-- | src/network.c | 131 |
1 files changed, 131 insertions, 0 deletions
diff --git a/src/network.c b/src/network.c new file mode 100644 index 0000000..6a66a2b --- /dev/null +++ b/src/network.c @@ -0,0 +1,131 @@ +/* + * (C) 2006-2007 by Pablo Neira Ayuso <pablo@netfilter.org> + * + * This program is free software; you can redistribute it and/or modify + * it under the terms of the GNU General Public License as published by + * the Free Software Foundation; either version 2 of the License, or + * (at your option) any later version. + * + * This program is distributed in the hope that it will be useful, + * but WITHOUT ANY WARRANTY; without even the implied warranty of + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the + * GNU General Public License for more details. + * + * You should have received a copy of the GNU General Public License + * along with this program; if not, write to the Free Software + * Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA. + */ + +#include "conntrackd.h" +#include "network.h" +#include "log.h" + +#include <stdlib.h> +#include <time.h> +#include <string.h> + +#define NETHDR_ALIGNTO 4 + +static unsigned int seq_set, cur_seq; + +int nethdr_align(int value) +{ + return (value + NETHDR_ALIGNTO - 1) & ~(NETHDR_ALIGNTO - 1); +} + +int nethdr_size(int len) +{ + return NETHDR_SIZ + len; +} + +static inline void __nethdr_set(struct nethdr *net, int len) +{ + if (!seq_set) { + seq_set = 1; + cur_seq = time(NULL); + } + net->version = CONNTRACKD_PROTOCOL_VERSION; + net->len = len; + net->seq = cur_seq++; +} + +void nethdr_set(struct nethdr *net, int type) +{ + __nethdr_set(net, NETHDR_SIZ); + net->type = type; +} + +void nethdr_set_ack(struct nethdr *net) +{ + __nethdr_set(net, NETHDR_ACK_SIZ); +} + +void nethdr_set_ctl(struct nethdr *net) +{ + __nethdr_set(net, NETHDR_SIZ); +} + +static int local_seq_set = 0; + +/* this function only tracks, it does not update the last sequence received */ +int nethdr_track_seq(uint32_t seq, uint32_t *exp_seq) +{ + int ret = SEQ_UNKNOWN; + + /* netlink sequence tracking initialization */ + if (!local_seq_set) { + ret = SEQ_UNSET; + goto out; + } + + /* fast path: we received the correct sequence */ + if (seq == STATE_SYNC(last_seq_recv)+1) { + ret = SEQ_IN_SYNC; + goto out; + } + + /* out of sequence: some messages got lost */ + if (after(seq, STATE_SYNC(last_seq_recv)+1)) { + STATE_SYNC(error).msg_rcv_lost += + seq - STATE_SYNC(last_seq_recv) + 1; + ret = SEQ_AFTER; + goto out; + } + + /* out of sequence: replayed/delayed packet? */ + if (before(seq, STATE_SYNC(last_seq_recv)+1)) { + STATE_SYNC(error).msg_rcv_before++; + ret = SEQ_BEFORE; + } + +out: + *exp_seq = STATE_SYNC(last_seq_recv)+1; + + return ret; +} + +void nethdr_track_update_seq(uint32_t seq) +{ + if (!local_seq_set) + local_seq_set = 1; + + STATE_SYNC(last_seq_recv) = seq; +} + +int nethdr_track_is_seq_set() +{ + return local_seq_set; +} + +#include "cache.h" + +static int status2type[] = { + [C_OBJ_NEW] = NET_T_STATE_NEW, + [C_OBJ_ALIVE] = NET_T_STATE_UPD, + [C_OBJ_DEAD] = NET_T_STATE_DEL, +}; + +int object_status_to_network_type(int status) +{ + return status2type[status]; +} |