Blame bootstrap_ver/extensions/libxt_MARK.c

Packit Service fa126c
#include <stdbool.h>
Packit Service fa126c
#include <stdio.h>
Packit Service fa126c
#include <xtables.h>
Packit Service fa126c
#include <linux/netfilter/xt_MARK.h>
Packit Service fa126c
Packit Service fa126c
/* Version 0 */
Packit Service fa126c
struct xt_mark_target_info {
Packit Service fa126c
	unsigned long mark;
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
/* Version 1 */
Packit Service fa126c
enum {
Packit Service fa126c
	XT_MARK_SET=0,
Packit Service fa126c
	XT_MARK_AND,
Packit Service fa126c
	XT_MARK_OR,
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
struct xt_mark_target_info_v1 {
Packit Service fa126c
	unsigned long mark;
Packit Service fa126c
	uint8_t mode;
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
enum {
Packit Service fa126c
	O_SET_MARK = 0,
Packit Service fa126c
	O_AND_MARK,
Packit Service fa126c
	O_OR_MARK,
Packit Service fa126c
	O_XOR_MARK,
Packit Service fa126c
	O_SET_XMARK,
Packit Service fa126c
	F_SET_MARK  = 1 << O_SET_MARK,
Packit Service fa126c
	F_AND_MARK  = 1 << O_AND_MARK,
Packit Service fa126c
	F_OR_MARK   = 1 << O_OR_MARK,
Packit Service fa126c
	F_XOR_MARK  = 1 << O_XOR_MARK,
Packit Service fa126c
	F_SET_XMARK = 1 << O_SET_XMARK,
Packit Service fa126c
	F_ANY       = F_SET_MARK | F_AND_MARK | F_OR_MARK |
Packit Service fa126c
	              F_XOR_MARK | F_SET_XMARK,
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
static void MARK_help(void)
Packit Service fa126c
{
Packit Service fa126c
	printf(
Packit Service fa126c
"MARK target options:\n"
Packit Service fa126c
"  --set-mark value                   Set nfmark value\n"
Packit Service fa126c
"  --and-mark value                   Binary AND the nfmark with value\n"
Packit Service fa126c
"  --or-mark  value                   Binary OR  the nfmark with value\n");
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static const struct xt_option_entry MARK_opts[] = {
Packit Service fa126c
	{.name = "set-mark", .id = O_SET_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "and-mark", .id = O_AND_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "or-mark", .id = O_OR_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	XTOPT_TABLEEND,
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
static const struct xt_option_entry mark_tg_opts[] = {
Packit Service fa126c
	{.name = "set-xmark", .id = O_SET_XMARK, .type = XTTYPE_MARKMASK32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "set-mark", .id = O_SET_MARK, .type = XTTYPE_MARKMASK32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "and-mark", .id = O_AND_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "or-mark", .id = O_OR_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	{.name = "xor-mark", .id = O_XOR_MARK, .type = XTTYPE_UINT32,
Packit Service fa126c
	 .excl = F_ANY},
Packit Service fa126c
	XTOPT_TABLEEND,
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
static void mark_tg_help(void)
Packit Service fa126c
{
Packit Service fa126c
	printf(
Packit Service fa126c
"MARK target options:\n"
Packit Service fa126c
"  --set-xmark value[/mask]  Clear bits in mask and XOR value into nfmark\n"
Packit Service fa126c
"  --set-mark value[/mask]   Clear bits in mask and OR value into nfmark\n"
Packit Service fa126c
"  --and-mark bits           Binary AND the nfmark with bits\n"
Packit Service fa126c
"  --or-mark bits            Binary OR the nfmark with bits\n"
Packit Service fa126c
"  --xor-mark bits           Binary XOR the nfmark with bits\n"
Packit Service fa126c
"\n");
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_parse_v0(struct xt_option_call *cb)
Packit Service fa126c
{
Packit Service fa126c
	struct xt_mark_target_info *markinfo = cb->data;
Packit Service fa126c
Packit Service fa126c
	xtables_option_parse(cb);
Packit Service fa126c
	switch (cb->entry->id) {
Packit Service fa126c
	case O_SET_MARK:
Packit Service fa126c
		markinfo->mark = cb->val.mark;
Packit Service fa126c
		break;
Packit Service fa126c
	default:
Packit Service fa126c
		xtables_error(PARAMETER_PROBLEM,
Packit Service fa126c
			   "MARK target: kernel too old for --%s",
Packit Service fa126c
			   cb->entry->name);
Packit Service fa126c
	}
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_check(struct xt_fcheck_call *cb)
Packit Service fa126c
{
Packit Service fa126c
	if (cb->xflags == 0)
Packit Service fa126c
		xtables_error(PARAMETER_PROBLEM,
Packit Service fa126c
		           "MARK target: Parameter --set/and/or-mark"
Packit Service fa126c
			   " is required");
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_parse_v1(struct xt_option_call *cb)
Packit Service fa126c
{
Packit Service fa126c
	struct xt_mark_target_info_v1 *markinfo = cb->data;
Packit Service fa126c
Packit Service fa126c
	xtables_option_parse(cb);
Packit Service fa126c
	switch (cb->entry->id) {
Packit Service fa126c
	case O_SET_MARK:
Packit Service fa126c
	        markinfo->mode = XT_MARK_SET;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_AND_MARK:
Packit Service fa126c
	        markinfo->mode = XT_MARK_AND;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_OR_MARK:
Packit Service fa126c
	        markinfo->mode = XT_MARK_OR;
Packit Service fa126c
		break;
Packit Service fa126c
	}
Packit Service fa126c
	markinfo->mark = cb->val.u32;
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void mark_tg_parse(struct xt_option_call *cb)
Packit Service fa126c
{
Packit Service fa126c
	struct xt_mark_tginfo2 *info = cb->data;
Packit Service fa126c
Packit Service fa126c
	xtables_option_parse(cb);
Packit Service fa126c
	switch (cb->entry->id) {
Packit Service fa126c
	case O_SET_XMARK:
Packit Service fa126c
		info->mark = cb->val.mark;
Packit Service fa126c
		info->mask = cb->val.mask;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_SET_MARK:
Packit Service fa126c
		info->mark = cb->val.mark;
Packit Service fa126c
		info->mask = cb->val.mark | cb->val.mask;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_AND_MARK:
Packit Service fa126c
		info->mark = 0;
Packit Service fa126c
		info->mask = ~cb->val.u32;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_OR_MARK:
Packit Service fa126c
		info->mark = info->mask = cb->val.u32;
Packit Service fa126c
		break;
Packit Service fa126c
	case O_XOR_MARK:
Packit Service fa126c
		info->mark = cb->val.u32;
Packit Service fa126c
		info->mask = 0;
Packit Service fa126c
		break;
Packit Service fa126c
	}
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void mark_tg_check(struct xt_fcheck_call *cb)
Packit Service fa126c
{
Packit Service fa126c
	if (cb->xflags == 0)
Packit Service fa126c
		xtables_error(PARAMETER_PROBLEM, "MARK: One of the --set-xmark, "
Packit Service fa126c
		           "--{and,or,xor,set}-mark options is required");
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void
Packit Service fa126c
print_mark(unsigned long mark)
Packit Service fa126c
{
Packit Service fa126c
	printf(" 0x%lx", mark);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_print_v0(const void *ip,
Packit Service fa126c
                          const struct xt_entry_target *target, int numeric)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_target_info *markinfo =
Packit Service fa126c
		(const struct xt_mark_target_info *)target->data;
Packit Service fa126c
	printf(" MARK set");
Packit Service fa126c
	print_mark(markinfo->mark);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_save_v0(const void *ip, const struct xt_entry_target *target)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_target_info *markinfo =
Packit Service fa126c
		(const struct xt_mark_target_info *)target->data;
Packit Service fa126c
Packit Service fa126c
	printf(" --set-mark");
Packit Service fa126c
	print_mark(markinfo->mark);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_print_v1(const void *ip, const struct xt_entry_target *target,
Packit Service fa126c
                          int numeric)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_target_info_v1 *markinfo =
Packit Service fa126c
		(const struct xt_mark_target_info_v1 *)target->data;
Packit Service fa126c
Packit Service fa126c
	switch (markinfo->mode) {
Packit Service fa126c
	case XT_MARK_SET:
Packit Service fa126c
		printf(" MARK set");
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_AND:
Packit Service fa126c
		printf(" MARK and");
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_OR:
Packit Service fa126c
		printf(" MARK or");
Packit Service fa126c
		break;
Packit Service fa126c
	}
Packit Service fa126c
	print_mark(markinfo->mark);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void mark_tg_print(const void *ip, const struct xt_entry_target *target,
Packit Service fa126c
                          int numeric)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_tginfo2 *info = (const void *)target->data;
Packit Service fa126c
Packit Service fa126c
	if (info->mark == 0)
Packit Service fa126c
		printf(" MARK and 0x%x", (unsigned int)(uint32_t)~info->mask);
Packit Service fa126c
	else if (info->mark == info->mask)
Packit Service fa126c
		printf(" MARK or 0x%x", info->mark);
Packit Service fa126c
	else if (info->mask == 0)
Packit Service fa126c
		printf(" MARK xor 0x%x", info->mark);
Packit Service fa126c
	else if (info->mask == 0xffffffffU)
Packit Service fa126c
		printf(" MARK set 0x%x", info->mark);
Packit Service fa126c
	else
Packit Service fa126c
		printf(" MARK xset 0x%x/0x%x", info->mark, info->mask);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void MARK_save_v1(const void *ip, const struct xt_entry_target *target)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_target_info_v1 *markinfo =
Packit Service fa126c
		(const struct xt_mark_target_info_v1 *)target->data;
Packit Service fa126c
Packit Service fa126c
	switch (markinfo->mode) {
Packit Service fa126c
	case XT_MARK_SET:
Packit Service fa126c
		printf(" --set-mark");
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_AND:
Packit Service fa126c
		printf(" --and-mark");
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_OR:
Packit Service fa126c
		printf(" --or-mark");
Packit Service fa126c
		break;
Packit Service fa126c
	}
Packit Service fa126c
	print_mark(markinfo->mark);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static void mark_tg_save(const void *ip, const struct xt_entry_target *target)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_tginfo2 *info = (const void *)target->data;
Packit Service fa126c
Packit Service fa126c
	printf(" --set-xmark 0x%x/0x%x", info->mark, info->mask);
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static int mark_tg_xlate(struct xt_xlate *xl,
Packit Service fa126c
			 const struct xt_xlate_tg_params *params)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_tginfo2 *info = (const void *)params->target->data;
Packit Service fa126c
Packit Service fa126c
	xt_xlate_add(xl, "meta mark set ");
Packit Service fa126c
Packit Service fa126c
	if (info->mask == 0xffffffffU)
Packit Service fa126c
		xt_xlate_add(xl, "0x%x ", info->mark);
Packit Service fa126c
	else if (info->mark == 0)
Packit Service fa126c
		xt_xlate_add(xl, "mark and 0x%x ", ~info->mask);
Packit Service fa126c
	else if (info->mark == info->mask)
Packit Service fa126c
		xt_xlate_add(xl, "mark or 0x%x ", info->mark);
Packit Service fa126c
	else if (info->mask == 0)
Packit Service fa126c
		xt_xlate_add(xl, "mark xor 0x%x ", info->mark);
Packit Service fa126c
	else
Packit Service fa126c
		xt_xlate_add(xl, "mark and 0x%x xor 0x%x ", ~info->mask,
Packit Service fa126c
			     info->mark);
Packit Service fa126c
Packit Service fa126c
	return 1;
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static int MARK_xlate(struct xt_xlate *xl,
Packit Service fa126c
		      const struct xt_xlate_tg_params *params)
Packit Service fa126c
{
Packit Service fa126c
	const struct xt_mark_target_info_v1 *markinfo =
Packit Service fa126c
		(const struct xt_mark_target_info_v1 *)params->target->data;
Packit Service fa126c
Packit Service fa126c
	xt_xlate_add(xl, "meta mark set ");
Packit Service fa126c
Packit Service fa126c
	switch(markinfo->mode) {
Packit Service fa126c
	case XT_MARK_SET:
Packit Service fa126c
		xt_xlate_add(xl, "0x%x ", (uint32_t)markinfo->mark);
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_AND:
Packit Service fa126c
		xt_xlate_add(xl, "mark and 0x%x ", (uint32_t)markinfo->mark);
Packit Service fa126c
		break;
Packit Service fa126c
	case XT_MARK_OR:
Packit Service fa126c
		xt_xlate_add(xl, "mark or 0x%x ", (uint32_t)markinfo->mark);
Packit Service fa126c
		break;
Packit Service fa126c
	}
Packit Service fa126c
Packit Service fa126c
	return 1;
Packit Service fa126c
}
Packit Service fa126c
Packit Service fa126c
static struct xtables_target mark_tg_reg[] = {
Packit Service fa126c
	{
Packit Service fa126c
		.family        = NFPROTO_UNSPEC,
Packit Service fa126c
		.name          = "MARK",
Packit Service fa126c
		.version       = XTABLES_VERSION,
Packit Service fa126c
		.revision      = 0,
Packit Service fa126c
		.size          = XT_ALIGN(sizeof(struct xt_mark_target_info)),
Packit Service fa126c
		.userspacesize = XT_ALIGN(sizeof(struct xt_mark_target_info)),
Packit Service fa126c
		.help          = MARK_help,
Packit Service fa126c
		.print         = MARK_print_v0,
Packit Service fa126c
		.save          = MARK_save_v0,
Packit Service fa126c
		.x6_parse      = MARK_parse_v0,
Packit Service fa126c
		.x6_fcheck     = MARK_check,
Packit Service fa126c
		.x6_options    = MARK_opts,
Packit Service fa126c
	},
Packit Service fa126c
	{
Packit Service fa126c
		.family        = NFPROTO_IPV4,
Packit Service fa126c
		.name          = "MARK",
Packit Service fa126c
		.version       = XTABLES_VERSION,
Packit Service fa126c
		.revision      = 1,
Packit Service fa126c
		.size          = XT_ALIGN(sizeof(struct xt_mark_target_info_v1)),
Packit Service fa126c
		.userspacesize = XT_ALIGN(sizeof(struct xt_mark_target_info_v1)),
Packit Service fa126c
		.help          = MARK_help,
Packit Service fa126c
		.print         = MARK_print_v1,
Packit Service fa126c
		.save          = MARK_save_v1,
Packit Service fa126c
		.x6_parse      = MARK_parse_v1,
Packit Service fa126c
		.x6_fcheck     = MARK_check,
Packit Service fa126c
		.x6_options    = MARK_opts,
Packit Service fa126c
		.xlate	       = MARK_xlate,
Packit Service fa126c
	},
Packit Service fa126c
	{
Packit Service fa126c
		.version       = XTABLES_VERSION,
Packit Service fa126c
		.name          = "MARK",
Packit Service fa126c
		.revision      = 2,
Packit Service fa126c
		.family        = NFPROTO_UNSPEC,
Packit Service fa126c
		.size          = XT_ALIGN(sizeof(struct xt_mark_tginfo2)),
Packit Service fa126c
		.userspacesize = XT_ALIGN(sizeof(struct xt_mark_tginfo2)),
Packit Service fa126c
		.help          = mark_tg_help,
Packit Service fa126c
		.print         = mark_tg_print,
Packit Service fa126c
		.save          = mark_tg_save,
Packit Service fa126c
		.x6_parse      = mark_tg_parse,
Packit Service fa126c
		.x6_fcheck     = mark_tg_check,
Packit Service fa126c
		.x6_options    = mark_tg_opts,
Packit Service fa126c
		.xlate	       = mark_tg_xlate,
Packit Service fa126c
	},
Packit Service fa126c
};
Packit Service fa126c
Packit Service fa126c
void _init(void)
Packit Service fa126c
{
Packit Service fa126c
	xtables_register_targets(mark_tg_reg, ARRAY_SIZE(mark_tg_reg));
Packit Service fa126c
}