summaryrefslogtreecommitdiff
path: root/src/network.c
diff options
context:
space:
mode:
authorroot <root@build-vm.(none)>2010-06-14 15:51:25 -0700
committerroot <root@build-vm.(none)>2010-06-14 15:51:25 -0700
commitc4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5 (patch)
tree86ee5befd8195f56dcd91f9fd4e06368bf507a11 /src/network.c
downloadconntrack-tools-c4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5.tar.gz
conntrack-tools-c4414d9a8b31bedfb7471cd2365aaf5ea5cf55d5.zip
debian conntrack 0.9.14-2
Diffstat (limited to 'src/network.c')
-rw-r--r--src/network.c131
1 files changed, 131 insertions, 0 deletions
diff --git a/src/network.c b/src/network.c
new file mode 100644
index 0000000..6a66a2b
--- /dev/null
+++ b/src/network.c
@@ -0,0 +1,131 @@
+/*
+ * (C) 2006-2007 by Pablo Neira Ayuso <pablo@netfilter.org>
+ *
+ * This program is free software; you can redistribute it and/or modify
+ * it under the terms of the GNU General Public License as published by
+ * the Free Software Foundation; either version 2 of the License, or
+ * (at your option) any later version.
+ *
+ * This program is distributed in the hope that it will be useful,
+ * but WITHOUT ANY WARRANTY; without even the implied warranty of
+ * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
+ * GNU General Public License for more details.
+ *
+ * You should have received a copy of the GNU General Public License
+ * along with this program; if not, write to the Free Software
+ * Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
+ */
+
+#include "conntrackd.h"
+#include "network.h"
+#include "log.h"
+
+#include <stdlib.h>
+#include <time.h>
+#include <string.h>
+
+#define NETHDR_ALIGNTO 4
+
+static unsigned int seq_set, cur_seq;
+
+int nethdr_align(int value)
+{
+ return (value + NETHDR_ALIGNTO - 1) & ~(NETHDR_ALIGNTO - 1);
+}
+
+int nethdr_size(int len)
+{
+ return NETHDR_SIZ + len;
+}
+
+static inline void __nethdr_set(struct nethdr *net, int len)
+{
+ if (!seq_set) {
+ seq_set = 1;
+ cur_seq = time(NULL);
+ }
+ net->version = CONNTRACKD_PROTOCOL_VERSION;
+ net->len = len;
+ net->seq = cur_seq++;
+}
+
+void nethdr_set(struct nethdr *net, int type)
+{
+ __nethdr_set(net, NETHDR_SIZ);
+ net->type = type;
+}
+
+void nethdr_set_ack(struct nethdr *net)
+{
+ __nethdr_set(net, NETHDR_ACK_SIZ);
+}
+
+void nethdr_set_ctl(struct nethdr *net)
+{
+ __nethdr_set(net, NETHDR_SIZ);
+}
+
+static int local_seq_set = 0;
+
+/* this function only tracks, it does not update the last sequence received */
+int nethdr_track_seq(uint32_t seq, uint32_t *exp_seq)
+{
+ int ret = SEQ_UNKNOWN;
+
+ /* netlink sequence tracking initialization */
+ if (!local_seq_set) {
+ ret = SEQ_UNSET;
+ goto out;
+ }
+
+ /* fast path: we received the correct sequence */
+ if (seq == STATE_SYNC(last_seq_recv)+1) {
+ ret = SEQ_IN_SYNC;
+ goto out;
+ }
+
+ /* out of sequence: some messages got lost */
+ if (after(seq, STATE_SYNC(last_seq_recv)+1)) {
+ STATE_SYNC(error).msg_rcv_lost +=
+ seq - STATE_SYNC(last_seq_recv) + 1;
+ ret = SEQ_AFTER;
+ goto out;
+ }
+
+ /* out of sequence: replayed/delayed packet? */
+ if (before(seq, STATE_SYNC(last_seq_recv)+1)) {
+ STATE_SYNC(error).msg_rcv_before++;
+ ret = SEQ_BEFORE;
+ }
+
+out:
+ *exp_seq = STATE_SYNC(last_seq_recv)+1;
+
+ return ret;
+}
+
+void nethdr_track_update_seq(uint32_t seq)
+{
+ if (!local_seq_set)
+ local_seq_set = 1;
+
+ STATE_SYNC(last_seq_recv) = seq;
+}
+
+int nethdr_track_is_seq_set()
+{
+ return local_seq_set;
+}
+
+#include "cache.h"
+
+static int status2type[] = {
+ [C_OBJ_NEW] = NET_T_STATE_NEW,
+ [C_OBJ_ALIVE] = NET_T_STATE_UPD,
+ [C_OBJ_DEAD] = NET_T_STATE_DEL,
+};
+
+int object_status_to_network_type(int status)
+{
+ return status2type[status];
+}