0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * CDDL HEADER START
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * The contents of this file are subject to the terms of the
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Common Development and Distribution License (the "License").
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * You may not use this file except in compliance with the License.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * See the License for the specific language governing permissions
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * and limitations under the License.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * When distributing Covered Code, include this CDDL HEADER in each
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * If applicable, add the following below this CDDL HEADER, with the
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * fields enclosed by brackets "[]" replaced with your own identifying
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * information: Portions Copyright [yyyy] [name of copyright owner]
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * CDDL HEADER END
bfcb55b84554e024ad218fb452e863d9f2acd644Rao Shoaib * Copyright 2009 Sun Microsystems, Inc. All rights reserved.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Use is subject to license terms.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangningstatic int ip_helper_stream_close(queue_t *, int);
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangningstatic struct module_info ip_helper_stream_info = {
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning 0, "iphelper", IP_MOD_MINPSZ, IP_MOD_MAXPSZ, IP_MOD_HIWAT, IP_MOD_LOWAT
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning NULL, NULL, NULL, ip_helper_stream_close, NULL,
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning (pfi_t)ip_helper_wput, (pfi_t)ip_wsrv, NULL, NULL, NULL,
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning &ip_helper_stream_info, NULL, NULL, NULL, STRUIOT_NONE
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * set the q_ptr of the 'q' to the conn_t pointer passed in
bfcb55b84554e024ad218fb452e863d9f2acd644Rao Shoaibip_helper_share_conn(queue_t *q, mblk_t *mp, cred_t *crp)
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark conn_t *connp = *((conn_t **)mp->b_cont->b_rptr);
bfcb55b84554e024ad218fb452e863d9f2acd644Rao Shoaib * This operation is allowed only on helper streams with kcred
bfcb55b84554e024ad218fb452e863d9f2acd644Rao Shoaib if (kcred != crp || msgdsize(mp->b_cont) != sizeof (void *)) {
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark connp->conn_helper_info->iphs_minfo = q->q_ptr;
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning struct iocblk *iocp = (struct iocblk *)mp->b_rptr;
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark /* We only handle ioctl related messages here */
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark/* ARGSUSED3 */
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangningip_helper_stream_setup(queue_t *q, dev_t *devp, int flag, int sflag,
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark ip_minfop = kmem_alloc(sizeof (ip_helper_minfo_t), KM_SLEEP);
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Clone the device, allocate minor device number
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning ip_minfop->ip_minfo_dev = inet_minor_alloc(ip_minor_arena_la);
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * numbers in the large arena are exhausted
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Try small arena.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Or this is a 32 bit system, 32 bit systems do not have
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * ip_minor_arena_la
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning ip_minfop->ip_minfo_dev = inet_minor_alloc(ip_minor_arena_sa);
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning *devp = makedevice(maj, (ulong_t)(ip_minfop->ip_minfo_dev));
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark/* ARGSUSED1 */
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning kmem_free(ip_minfop, sizeof (ip_helper_minfo_t));
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangning * Public interface for creating an IP stream with shared conn_t
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Handles multiple callers in parallel by using conn_lock.
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Note that we allocate the helper stream without any locks, which means
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * we might need to free it if we had two threads doing this concurrently
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * for the conn_t.
0f1702c5201310f0529cd5abb77652e5e9b241b6Yu Xiangningip_create_helper_stream(conn_t *connp, ldi_ident_t li)
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark /* Already allocated */
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark helper = kmem_alloc(sizeof (ip_helper_stream_info_t), KM_SLEEP);
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * open ip device via the layered interface.
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * pass in kcred as some threads do not have the
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * priviledge to open /dev/ip and the check in
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * secpolicy_spec_open() will fail the open
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark error = ldi_open_by_name((connp->conn_family == AF_INET6 ? DEV_IP6 :
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark DEV_IP), IP_HELPER_STR, kcred, &helper->iphs_handle, li);
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark kmem_free(helper, sizeof (ip_helper_stream_info_t));
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark /* Make sure we are the only one */
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark /* Some other thread won - discard this stream */
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark (void) ldi_close(helper->iphs_handle, 0, kcred);
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark kmem_free(helper, sizeof (ip_helper_stream_info_t));
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Share connp with the helper stream. We hold conn_lock across this
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark error = ldi_ioctl(helper->iphs_handle, SIOCSQPTR, (intptr_t)connp,
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Passing in a zero flag indicates that an error
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * occured and stream was not shared
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark (void) ldi_close(helper->iphs_handle, 0, kcred);
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark kmem_free(helper, sizeof (ip_helper_stream_info_t));
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Public interface for freeing IP helper stream
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * Caller must ensure no concurrent use of the conn_t, which is normally
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark * done by calling this from the close routine when the conn_t is quiesced.
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark ASSERT(connp->conn_helper_info->iphs_handle != NULL);
bd670b35a010421b6e1a5536c34453a827007c81Erik Nordmark (void) ldi_close(connp->conn_helper_info->iphs_handle,