1550b6e40SSowmini Varadhan /* 2550b6e40SSowmini Varadhan * CDDL HEADER START 3550b6e40SSowmini Varadhan * 4550b6e40SSowmini Varadhan * The contents of this file are subject to the terms of the 5550b6e40SSowmini Varadhan * Common Development and Distribution License (the "License"). 6550b6e40SSowmini Varadhan * You may not use this file except in compliance with the License. 7550b6e40SSowmini Varadhan * 8550b6e40SSowmini Varadhan * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 9550b6e40SSowmini Varadhan * or http://www.opensolaris.org/os/licensing. 10550b6e40SSowmini Varadhan * See the License for the specific language governing permissions 11550b6e40SSowmini Varadhan * and limitations under the License. 12550b6e40SSowmini Varadhan * 13550b6e40SSowmini Varadhan * When distributing Covered Code, include this CDDL HEADER in each 14550b6e40SSowmini Varadhan * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 15550b6e40SSowmini Varadhan * If applicable, add the following below this CDDL HEADER, with the 16550b6e40SSowmini Varadhan * fields enclosed by brackets "[]" replaced with your own identifying 17550b6e40SSowmini Varadhan * information: Portions Copyright [yyyy] [name of copyright owner] 18550b6e40SSowmini Varadhan * 19550b6e40SSowmini Varadhan * CDDL HEADER END 20550b6e40SSowmini Varadhan */ 21550b6e40SSowmini Varadhan /* 22550b6e40SSowmini Varadhan * Copyright (c) 2010, Oracle and/or its affiliates. All rights reserved. 23550b6e40SSowmini Varadhan */ 24550b6e40SSowmini Varadhan 25550b6e40SSowmini Varadhan #include <errno.h> 26550b6e40SSowmini Varadhan #include <fcntl.h> 27550b6e40SSowmini Varadhan #include <priv_utils.h> 28550b6e40SSowmini Varadhan #include <signal.h> 29550b6e40SSowmini Varadhan #include <stdlib.h> 30550b6e40SSowmini Varadhan #include <stdio.h> 31550b6e40SSowmini Varadhan #include <strings.h> 32550b6e40SSowmini Varadhan #include <sys/param.h> 33550b6e40SSowmini Varadhan #include <sys/stat.h> 34550b6e40SSowmini Varadhan #include <unistd.h> 35550b6e40SSowmini Varadhan #include <zone.h> 36550b6e40SSowmini Varadhan #include <libipadm.h> 37550b6e40SSowmini Varadhan #include <libdladm.h> 38550b6e40SSowmini Varadhan #include <libdllink.h> 39550b6e40SSowmini Varadhan #include <net/route.h> 40550b6e40SSowmini Varadhan #include <netinet/in.h> 41550b6e40SSowmini Varadhan #include <net/route.h> 42550b6e40SSowmini Varadhan #include <errno.h> 43550b6e40SSowmini Varadhan #include <inet/ip.h> 44550b6e40SSowmini Varadhan #include <string.h> 45550b6e40SSowmini Varadhan #include <libinetutil.h> 46550b6e40SSowmini Varadhan #include <unistd.h> 47550b6e40SSowmini Varadhan #include <libipadm_impl.h> 48550b6e40SSowmini Varadhan #include <sys/brand.h> 49550b6e40SSowmini Varadhan 50550b6e40SSowmini Varadhan #define ROUNDUP_LONG(a) \ 51550b6e40SSowmini Varadhan ((a) > 0 ? (1 + (((a) - 1) | (sizeof (long) - 1))) : sizeof (long)) 52550b6e40SSowmini Varadhan #define HOST_MASK 0xffffffffU 53550b6e40SSowmini Varadhan 54550b6e40SSowmini Varadhan typedef struct ngz_walk_data_s { 55550b6e40SSowmini Varadhan ipadm_handle_t ngz_iph; 56550b6e40SSowmini Varadhan zoneid_t ngz_zoneid; 57550b6e40SSowmini Varadhan char *ngz_ifname; 58550b6e40SSowmini Varadhan boolean_t ngz_s10c; 59550b6e40SSowmini Varadhan ipadm_status_t ngz_ipstatus; 60550b6e40SSowmini Varadhan persist_cb_t ngz_persist_if; 61550b6e40SSowmini Varadhan } ngz_walk_data_t; 62550b6e40SSowmini Varadhan 63550b6e40SSowmini Varadhan /* 64550b6e40SSowmini Varadhan * Tell the kernel to add, delete or change a route 65550b6e40SSowmini Varadhan */ 66550b6e40SSowmini Varadhan static void 67550b6e40SSowmini Varadhan i_ipadm_rtioctl4(int rtsock, 68550b6e40SSowmini Varadhan int action, /* RTM_DELETE, etc */ 69550b6e40SSowmini Varadhan in_addr_t dst, 70550b6e40SSowmini Varadhan in_addr_t gate, 71550b6e40SSowmini Varadhan uint_t masklen, 72550b6e40SSowmini Varadhan char *ifname, 73550b6e40SSowmini Varadhan uint8_t metric, 74550b6e40SSowmini Varadhan int flags) 75550b6e40SSowmini Varadhan { 76550b6e40SSowmini Varadhan static int rt_sock_seqno = 0; 77550b6e40SSowmini Varadhan struct { 78550b6e40SSowmini Varadhan struct rt_msghdr w_rtm; 79550b6e40SSowmini Varadhan struct sockaddr_in w_dst; 80550b6e40SSowmini Varadhan struct sockaddr_in w_gate; 81550b6e40SSowmini Varadhan uint8_t w_space[512]; 82550b6e40SSowmini Varadhan } w; 83550b6e40SSowmini Varadhan struct sockaddr_in w_mask; 84550b6e40SSowmini Varadhan struct sockaddr_dl w_ifp; 85550b6e40SSowmini Varadhan uint8_t *cp; 86550b6e40SSowmini Varadhan long cc; 87550b6e40SSowmini Varadhan 88550b6e40SSowmini Varadhan again: 89550b6e40SSowmini Varadhan (void) memset(&w, 0, sizeof (w)); 90550b6e40SSowmini Varadhan (void) memset(&w_mask, 0, sizeof (w_mask)); 91550b6e40SSowmini Varadhan (void) memset(&w_ifp, 0, sizeof (w_ifp)); 92550b6e40SSowmini Varadhan cp = w.w_space; 93550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen = sizeof (struct rt_msghdr) + 94550b6e40SSowmini Varadhan 2 * ROUNDUP_LONG(sizeof (struct sockaddr_in)); 95550b6e40SSowmini Varadhan w.w_rtm.rtm_version = RTM_VERSION; 96550b6e40SSowmini Varadhan w.w_rtm.rtm_type = action; 97550b6e40SSowmini Varadhan w.w_rtm.rtm_flags = (flags | RTF_ZONE); 98550b6e40SSowmini Varadhan w.w_rtm.rtm_seq = ++rt_sock_seqno; 99550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs = RTA_DST|RTA_GATEWAY; 100550b6e40SSowmini Varadhan if (metric != 0 || action == RTM_CHANGE) { 101550b6e40SSowmini Varadhan w.w_rtm.rtm_rmx.rmx_hopcount = metric; 102550b6e40SSowmini Varadhan w.w_rtm.rtm_inits |= RTV_HOPCOUNT; 103550b6e40SSowmini Varadhan } 104550b6e40SSowmini Varadhan w.w_dst.sin_family = AF_INET; 105550b6e40SSowmini Varadhan w.w_dst.sin_addr.s_addr = dst; 106550b6e40SSowmini Varadhan w.w_gate.sin_family = AF_INET; 107550b6e40SSowmini Varadhan w.w_gate.sin_addr.s_addr = gate; 108550b6e40SSowmini Varadhan if (masklen == HOST_MASK) { 109550b6e40SSowmini Varadhan w.w_rtm.rtm_flags |= RTF_HOST; 110550b6e40SSowmini Varadhan } else { 111550b6e40SSowmini Varadhan struct sockaddr_storage m4; 112550b6e40SSowmini Varadhan 113550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs |= RTA_NETMASK; 114550b6e40SSowmini Varadhan w_mask.sin_family = AF_INET; 115*64639aafSDarren Reed if (plen2mask(masklen, AF_INET, (struct sockaddr *)&m4) != 0) { 116550b6e40SSowmini Varadhan return; 117550b6e40SSowmini Varadhan } 118550b6e40SSowmini Varadhan w_mask.sin_addr = ((struct sockaddr_in *)&m4)->sin_addr; 119550b6e40SSowmini Varadhan (void) memmove(cp, &w_mask, sizeof (w_mask)); 120550b6e40SSowmini Varadhan cp += ROUNDUP_LONG(sizeof (struct sockaddr_in)); 121550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen += ROUNDUP_LONG(sizeof (struct sockaddr_in)); 122550b6e40SSowmini Varadhan } 123550b6e40SSowmini Varadhan w_ifp.sdl_family = AF_LINK; 124550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs |= RTA_IFP; 125550b6e40SSowmini Varadhan w_ifp.sdl_index = if_nametoindex(ifname); 126550b6e40SSowmini Varadhan (void) memmove(cp, &w_ifp, sizeof (w_ifp)); 127550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen += ROUNDUP_LONG(sizeof (struct sockaddr_dl)); 128550b6e40SSowmini Varadhan 129550b6e40SSowmini Varadhan cc = write(rtsock, &w, w.w_rtm.rtm_msglen); 130550b6e40SSowmini Varadhan if (cc < 0) { 131550b6e40SSowmini Varadhan if (errno == ESRCH && (action == RTM_CHANGE || 132550b6e40SSowmini Varadhan action == RTM_DELETE)) { 133550b6e40SSowmini Varadhan if (action == RTM_CHANGE) { 134550b6e40SSowmini Varadhan action = RTM_ADD; 135550b6e40SSowmini Varadhan goto again; 136550b6e40SSowmini Varadhan } 137550b6e40SSowmini Varadhan return; 138550b6e40SSowmini Varadhan } 139550b6e40SSowmini Varadhan return; 140550b6e40SSowmini Varadhan } else if (cc != w.w_rtm.rtm_msglen) { 141550b6e40SSowmini Varadhan return; 142550b6e40SSowmini Varadhan } 143550b6e40SSowmini Varadhan } 144550b6e40SSowmini Varadhan 145550b6e40SSowmini Varadhan static void 146550b6e40SSowmini Varadhan i_ipadm_rtioctl6(int rtsock, 147550b6e40SSowmini Varadhan int action, /* RTM_DELETE, etc */ 148550b6e40SSowmini Varadhan in6_addr_t dst, 149550b6e40SSowmini Varadhan in6_addr_t gate, 150550b6e40SSowmini Varadhan uint_t prefix_length, 151550b6e40SSowmini Varadhan char *ifname, 152550b6e40SSowmini Varadhan int flags) 153550b6e40SSowmini Varadhan { 154550b6e40SSowmini Varadhan static int rt_sock_seqno = 0; 155550b6e40SSowmini Varadhan struct { 156550b6e40SSowmini Varadhan struct rt_msghdr w_rtm; 157550b6e40SSowmini Varadhan struct sockaddr_in6 w_dst; 158550b6e40SSowmini Varadhan struct sockaddr_in6 w_gate; 159550b6e40SSowmini Varadhan uint8_t w_space[512]; 160550b6e40SSowmini Varadhan } w; 161550b6e40SSowmini Varadhan struct sockaddr_in6 w_mask; 162550b6e40SSowmini Varadhan struct sockaddr_dl w_ifp; 163550b6e40SSowmini Varadhan uint8_t *cp; 164550b6e40SSowmini Varadhan long cc; 165550b6e40SSowmini Varadhan 166550b6e40SSowmini Varadhan again: 167550b6e40SSowmini Varadhan (void) memset(&w, 0, sizeof (w)); 168550b6e40SSowmini Varadhan (void) memset(&w_mask, 0, sizeof (w_mask)); 169550b6e40SSowmini Varadhan (void) memset(&w_ifp, 0, sizeof (w_ifp)); 170550b6e40SSowmini Varadhan cp = w.w_space; 171550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen = sizeof (struct rt_msghdr) + 172550b6e40SSowmini Varadhan 2 * ROUNDUP_LONG(sizeof (struct sockaddr_in6)); 173550b6e40SSowmini Varadhan w.w_rtm.rtm_version = RTM_VERSION; 174550b6e40SSowmini Varadhan w.w_rtm.rtm_type = action; 175550b6e40SSowmini Varadhan w.w_rtm.rtm_flags = (flags | RTF_ZONE); 176550b6e40SSowmini Varadhan w.w_rtm.rtm_seq = ++rt_sock_seqno; 177550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs = RTA_DST|RTA_GATEWAY; 178550b6e40SSowmini Varadhan w.w_dst.sin6_family = AF_INET6; 179550b6e40SSowmini Varadhan w.w_dst.sin6_addr = dst; 180550b6e40SSowmini Varadhan w.w_gate.sin6_family = AF_INET6; 181550b6e40SSowmini Varadhan w.w_gate.sin6_addr = gate; 182550b6e40SSowmini Varadhan if (prefix_length == IPV6_ABITS) { 183550b6e40SSowmini Varadhan w.w_rtm.rtm_flags |= RTF_HOST; 184550b6e40SSowmini Varadhan } else { 185550b6e40SSowmini Varadhan struct sockaddr_storage m6; 186550b6e40SSowmini Varadhan 187550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs |= RTA_NETMASK; 188550b6e40SSowmini Varadhan w_mask.sin6_family = AF_INET6; 189*64639aafSDarren Reed if (plen2mask(prefix_length, AF_INET6, 190*64639aafSDarren Reed (struct sockaddr *)&m6) != 0) { 191550b6e40SSowmini Varadhan return; 192550b6e40SSowmini Varadhan } 193550b6e40SSowmini Varadhan w_mask.sin6_addr = ((struct sockaddr_in6 *)&m6)->sin6_addr; 194550b6e40SSowmini Varadhan (void) memmove(cp, &w_mask, sizeof (w_mask)); 195550b6e40SSowmini Varadhan cp += ROUNDUP_LONG(sizeof (struct sockaddr_in6)); 196550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen += 197550b6e40SSowmini Varadhan ROUNDUP_LONG(sizeof (struct sockaddr_in6)); 198550b6e40SSowmini Varadhan } 199550b6e40SSowmini Varadhan w_ifp.sdl_family = AF_LINK; 200550b6e40SSowmini Varadhan w.w_rtm.rtm_addrs |= RTA_IFP; 201550b6e40SSowmini Varadhan w_ifp.sdl_index = if_nametoindex(ifname); 202550b6e40SSowmini Varadhan (void) memmove(cp, &w_ifp, sizeof (w_ifp)); 203550b6e40SSowmini Varadhan w.w_rtm.rtm_msglen += ROUNDUP_LONG(sizeof (struct sockaddr_dl)); 204550b6e40SSowmini Varadhan 205550b6e40SSowmini Varadhan cc = write(rtsock, &w, w.w_rtm.rtm_msglen); 206550b6e40SSowmini Varadhan if (cc < 0) { 207550b6e40SSowmini Varadhan if (errno == ESRCH && (action == RTM_CHANGE || 208550b6e40SSowmini Varadhan action == RTM_DELETE)) { 209550b6e40SSowmini Varadhan if (action == RTM_CHANGE) { 210550b6e40SSowmini Varadhan action = RTM_ADD; 211550b6e40SSowmini Varadhan goto again; 212550b6e40SSowmini Varadhan } 213550b6e40SSowmini Varadhan return; 214550b6e40SSowmini Varadhan } 215550b6e40SSowmini Varadhan return; 216550b6e40SSowmini Varadhan } else if (cc != w.w_rtm.rtm_msglen) { 217550b6e40SSowmini Varadhan return; 218550b6e40SSowmini Varadhan } 219550b6e40SSowmini Varadhan } 220550b6e40SSowmini Varadhan 221550b6e40SSowmini Varadhan /* 222550b6e40SSowmini Varadhan * Return TRUE if running in a Solaris 10 Container. 223550b6e40SSowmini Varadhan */ 224550b6e40SSowmini Varadhan static boolean_t 225550b6e40SSowmini Varadhan i_ipadm_zone_is_s10c(zoneid_t zoneid) 226550b6e40SSowmini Varadhan { 227550b6e40SSowmini Varadhan char brand[MAXNAMELEN]; 228550b6e40SSowmini Varadhan 229550b6e40SSowmini Varadhan if (zone_getattr(zoneid, ZONE_ATTR_BRAND, brand, sizeof (brand)) < 0) 230550b6e40SSowmini Varadhan return (B_FALSE); 231550b6e40SSowmini Varadhan return (strcmp(brand, NATIVE_BRAND_NAME) != 0); 232550b6e40SSowmini Varadhan } 233550b6e40SSowmini Varadhan 234550b6e40SSowmini Varadhan /* 235550b6e40SSowmini Varadhan * Configure addresses on link. `buf' is a string of comma-separated 236550b6e40SSowmini Varadhan * IP addresses. 237550b6e40SSowmini Varadhan */ 238550b6e40SSowmini Varadhan static ipadm_status_t 239550b6e40SSowmini Varadhan i_ipadm_ngz_addr(ipadm_handle_t iph, char *link, char *buf) 240550b6e40SSowmini Varadhan { 241550b6e40SSowmini Varadhan ipadm_status_t ipstatus; 242550b6e40SSowmini Varadhan ipadm_addrobj_t ipaddr; 243550b6e40SSowmini Varadhan char *cp; 244550b6e40SSowmini Varadhan 245550b6e40SSowmini Varadhan for (cp = strtok(buf, ","); cp != NULL; cp = strtok(NULL, ",")) { 246550b6e40SSowmini Varadhan ipstatus = ipadm_create_addrobj(IPADM_ADDR_STATIC, link, 247550b6e40SSowmini Varadhan &ipaddr); 248550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) 249550b6e40SSowmini Varadhan return (ipstatus); 250550b6e40SSowmini Varadhan /* 251550b6e40SSowmini Varadhan * ipadm_set_addr does the appropriate name resolution and 252550b6e40SSowmini Varadhan * sets up the ipadm_static_addr field. 253550b6e40SSowmini Varadhan */ 254550b6e40SSowmini Varadhan ipstatus = ipadm_set_addr(ipaddr, cp, AF_UNSPEC); 255550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) { 256550b6e40SSowmini Varadhan ipadm_destroy_addrobj(ipaddr); 257550b6e40SSowmini Varadhan return (ipstatus); 258550b6e40SSowmini Varadhan } 259550b6e40SSowmini Varadhan 260550b6e40SSowmini Varadhan ipstatus = ipadm_create_addr(iph, ipaddr, 261550b6e40SSowmini Varadhan (IPADM_OPT_ACTIVE | IPADM_OPT_UP)); 262550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) { 263550b6e40SSowmini Varadhan ipadm_destroy_addrobj(ipaddr); 264550b6e40SSowmini Varadhan return (ipstatus); 265550b6e40SSowmini Varadhan } 266550b6e40SSowmini Varadhan ipadm_destroy_addrobj(ipaddr); 267550b6e40SSowmini Varadhan } 268550b6e40SSowmini Varadhan return (IPADM_SUCCESS); 269550b6e40SSowmini Varadhan } 270550b6e40SSowmini Varadhan 271550b6e40SSowmini Varadhan /* 272550b6e40SSowmini Varadhan * The (*persist_if)() will set up persistent information for the interface, 273550b6e40SSowmini Varadhan * based on what interface families are required, so just resolve the 274550b6e40SSowmini Varadhan * address and inform the callback about the linkname, and required address 275550b6e40SSowmini Varadhan * families. 276550b6e40SSowmini Varadhan */ 277550b6e40SSowmini Varadhan static ipadm_status_t 278550b6e40SSowmini Varadhan i_ipadm_ngz_persist_if(char *link, char *buf, 279550b6e40SSowmini Varadhan void (*ngz_persist_if)(char *, boolean_t, boolean_t)) 280550b6e40SSowmini Varadhan { 281550b6e40SSowmini Varadhan char *cp, *slashp, addr[INET6_ADDRSTRLEN]; 282550b6e40SSowmini Varadhan ipadm_status_t ipstatus; 283550b6e40SSowmini Varadhan struct sockaddr_storage ss; 284550b6e40SSowmini Varadhan boolean_t v4 = B_FALSE; 285550b6e40SSowmini Varadhan boolean_t v6 = B_FALSE; 286550b6e40SSowmini Varadhan 287550b6e40SSowmini Varadhan for (cp = strtok(buf, ","); cp != NULL; cp = strtok(NULL, ",")) { 288550b6e40SSowmini Varadhan /* remove the /<masklen> that's always added by zoneadmd */ 289550b6e40SSowmini Varadhan slashp = strchr(cp, '/'); 290550b6e40SSowmini Varadhan (void) strlcpy(addr, cp, (slashp - cp + 1)); 291550b6e40SSowmini Varadhan 292550b6e40SSowmini Varadhan /* resolve the address to find the family */ 293550b6e40SSowmini Varadhan bzero(&ss, sizeof (ss)); 294550b6e40SSowmini Varadhan ipstatus = i_ipadm_resolve_addr(addr, AF_UNSPEC, &ss); 295550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) 296550b6e40SSowmini Varadhan return (ipstatus); 297550b6e40SSowmini Varadhan switch (ss.ss_family) { 298550b6e40SSowmini Varadhan case AF_INET: 299550b6e40SSowmini Varadhan v4 = B_TRUE; 300550b6e40SSowmini Varadhan break; 301550b6e40SSowmini Varadhan case AF_INET6: 302550b6e40SSowmini Varadhan v6 = B_TRUE; 303550b6e40SSowmini Varadhan break; 304550b6e40SSowmini Varadhan default: 305550b6e40SSowmini Varadhan return (IPADM_BAD_ADDR); 306550b6e40SSowmini Varadhan } 307550b6e40SSowmini Varadhan } 308550b6e40SSowmini Varadhan (*ngz_persist_if)(link, v4, v6); 309550b6e40SSowmini Varadhan return (IPADM_SUCCESS); 310550b6e40SSowmini Varadhan } 311550b6e40SSowmini Varadhan 312550b6e40SSowmini Varadhan static void 313550b6e40SSowmini Varadhan i_ipadm_create_ngz_route(int rtsock, char *link, uint8_t *buf, size_t buflen) 314550b6e40SSowmini Varadhan { 315550b6e40SSowmini Varadhan struct in6_addr defrouter; 316550b6e40SSowmini Varadhan boolean_t isv6; 317550b6e40SSowmini Varadhan struct in_addr gw4; 318550b6e40SSowmini Varadhan uint8_t *cp; 319550b6e40SSowmini Varadhan const in6_addr_t ipv6_all_zeros = { 0, 0, 0, 0 }; 320550b6e40SSowmini Varadhan 321550b6e40SSowmini Varadhan if (rtsock == -1) 322550b6e40SSowmini Varadhan return; 323550b6e40SSowmini Varadhan 324550b6e40SSowmini Varadhan for (cp = buf; cp < buf + buflen; cp += sizeof (defrouter)) { 325550b6e40SSowmini Varadhan bcopy(cp, &defrouter, sizeof (defrouter)); 326550b6e40SSowmini Varadhan if (IN6_IS_ADDR_UNSPECIFIED(&defrouter)) 327550b6e40SSowmini Varadhan break; 328550b6e40SSowmini Varadhan isv6 = !IN6_IS_ADDR_V4MAPPED(&defrouter); 329550b6e40SSowmini Varadhan if (isv6) { 330550b6e40SSowmini Varadhan i_ipadm_rtioctl6(rtsock, RTM_ADD, ipv6_all_zeros, 331550b6e40SSowmini Varadhan defrouter, 0, link, RTF_GATEWAY); 332550b6e40SSowmini Varadhan } else { 333550b6e40SSowmini Varadhan IN6_V4MAPPED_TO_INADDR(&defrouter, &gw4); 334550b6e40SSowmini Varadhan i_ipadm_rtioctl4(rtsock, RTM_ADD, INADDR_ANY, 335550b6e40SSowmini Varadhan gw4.s_addr, 0, link, 0, RTF_GATEWAY); 336550b6e40SSowmini Varadhan } 337550b6e40SSowmini Varadhan } 338550b6e40SSowmini Varadhan } 339550b6e40SSowmini Varadhan 340550b6e40SSowmini Varadhan /* 341550b6e40SSowmini Varadhan * Wrapper function to zone_getattr() for retrieving from-gz attributes that 342550b6e40SSowmini Varadhan * were made availabe for exclusive IP non-global zones by zoneadmd from teh 343550b6e40SSowmini Varadhan * global zone. 344550b6e40SSowmini Varadhan */ 345550b6e40SSowmini Varadhan static ipadm_status_t 346550b6e40SSowmini Varadhan i_ipadm_zone_get_network(zoneid_t zoneid, datalink_id_t linkid, int type, 347550b6e40SSowmini Varadhan void *buf, size_t *bufsize) 348550b6e40SSowmini Varadhan { 349550b6e40SSowmini Varadhan zone_net_data_t *zndata; 350550b6e40SSowmini Varadhan 351550b6e40SSowmini Varadhan zndata = calloc(1, sizeof (*zndata) + *bufsize); 352550b6e40SSowmini Varadhan if (zndata == NULL) 353550b6e40SSowmini Varadhan return (IPADM_NO_MEMORY); 354550b6e40SSowmini Varadhan zndata->zn_type = type; 355550b6e40SSowmini Varadhan zndata->zn_linkid = linkid; 356550b6e40SSowmini Varadhan zndata->zn_len = *bufsize; 357550b6e40SSowmini Varadhan 358550b6e40SSowmini Varadhan if (zone_getattr(zoneid, ZONE_ATTR_NETWORK, zndata, 359550b6e40SSowmini Varadhan sizeof (*zndata) + *bufsize) < 0) { 360550b6e40SSowmini Varadhan return (ipadm_errno2status(errno)); 361550b6e40SSowmini Varadhan } 362550b6e40SSowmini Varadhan *bufsize = zndata->zn_len; 363550b6e40SSowmini Varadhan bcopy(zndata->zn_val, buf, *bufsize); 364550b6e40SSowmini Varadhan return (IPADM_SUCCESS); 365550b6e40SSowmini Varadhan } 366550b6e40SSowmini Varadhan 367550b6e40SSowmini Varadhan /* 368550b6e40SSowmini Varadhan * Callback function that configures a single datalink in a non-global zone. 369550b6e40SSowmini Varadhan */ 370550b6e40SSowmini Varadhan static int 371550b6e40SSowmini Varadhan i_ipadm_zone_network_attr(dladm_handle_t dh, datalink_id_t linkid, void *arg) 372550b6e40SSowmini Varadhan { 373550b6e40SSowmini Varadhan ngz_walk_data_t *nwd = arg; 374550b6e40SSowmini Varadhan zoneid_t zoneid = nwd->ngz_zoneid; 375550b6e40SSowmini Varadhan uint8_t buf[PIPE_BUF]; 376550b6e40SSowmini Varadhan dladm_status_t dlstatus; 377550b6e40SSowmini Varadhan ipadm_status_t ipstatus; 378550b6e40SSowmini Varadhan char link[MAXLINKNAMELEN]; 379550b6e40SSowmini Varadhan ipadm_handle_t iph = nwd->ngz_iph; 380550b6e40SSowmini Varadhan int rtsock = iph->iph_rtsock; 381550b6e40SSowmini Varadhan char *ifname = nwd->ngz_ifname; 382550b6e40SSowmini Varadhan boolean_t s10c = nwd->ngz_s10c; 383550b6e40SSowmini Varadhan boolean_t is_ipmgmtd = (iph->iph_flags & IPH_IPMGMTD); 384550b6e40SSowmini Varadhan size_t bufsize = sizeof (buf); 385550b6e40SSowmini Varadhan 386550b6e40SSowmini Varadhan bzero(buf, bufsize); 387550b6e40SSowmini Varadhan ipstatus = i_ipadm_zone_get_network(zoneid, linkid, 388550b6e40SSowmini Varadhan ZONE_NETWORK_ADDRESS, buf, &bufsize); 389550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) 390550b6e40SSowmini Varadhan goto fail; 391550b6e40SSowmini Varadhan 392550b6e40SSowmini Varadhan dlstatus = dladm_datalink_id2info(dh, linkid, NULL, NULL, 393550b6e40SSowmini Varadhan NULL, link, sizeof (link)); 394550b6e40SSowmini Varadhan if (dlstatus != DLADM_STATUS_OK) 395550b6e40SSowmini Varadhan return (DLADM_WALK_CONTINUE); 396550b6e40SSowmini Varadhan 397550b6e40SSowmini Varadhan /* 398550b6e40SSowmini Varadhan * if ifname has been specified, then skip interfaces that don't match 399550b6e40SSowmini Varadhan */ 400550b6e40SSowmini Varadhan if (ifname != NULL && strcmp(ifname, link) != 0) 401550b6e40SSowmini Varadhan return (DLADM_WALK_CONTINUE); 402550b6e40SSowmini Varadhan 403550b6e40SSowmini Varadhan /* 404550b6e40SSowmini Varadhan * Plumb the interface and configure addresses on for S10 Containers. 405550b6e40SSowmini Varadhan * We need to always do this for S10C because ipadm persistent 406550b6e40SSowmini Varadhan * configuration is not available in S10C. For ipkg zones, 407550b6e40SSowmini Varadhan * we skip the actual plumbing/configuration, but will call the 408550b6e40SSowmini Varadhan * (*ngz_persist_if)() callback to create the persistent state for the 409550b6e40SSowmini Varadhan * interface. The interface will be configured in ipkg zones when 410550b6e40SSowmini Varadhan * ipadm_enable_if() is invoked to restore persistent configuration. 411550b6e40SSowmini Varadhan */ 412550b6e40SSowmini Varadhan if (is_ipmgmtd && !s10c) { 413550b6e40SSowmini Varadhan (void) i_ipadm_ngz_persist_if(link, (char *)buf, 414550b6e40SSowmini Varadhan nwd->ngz_persist_if); 415550b6e40SSowmini Varadhan return (DLADM_WALK_CONTINUE); 416550b6e40SSowmini Varadhan } 417550b6e40SSowmini Varadhan ipstatus = i_ipadm_ngz_addr(iph, link, (char *)buf); 418550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) 419550b6e40SSowmini Varadhan goto fail; 420550b6e40SSowmini Varadhan 421550b6e40SSowmini Varadhan /* apply any default router information. */ 422550b6e40SSowmini Varadhan bufsize = sizeof (buf); 423550b6e40SSowmini Varadhan bzero(buf, bufsize); 424550b6e40SSowmini Varadhan ipstatus = i_ipadm_zone_get_network(zoneid, linkid, 425550b6e40SSowmini Varadhan ZONE_NETWORK_DEFROUTER, buf, &bufsize); 426550b6e40SSowmini Varadhan if (ipstatus != IPADM_SUCCESS) 427550b6e40SSowmini Varadhan goto fail; 428550b6e40SSowmini Varadhan 429550b6e40SSowmini Varadhan i_ipadm_create_ngz_route(rtsock, link, buf, bufsize); 430550b6e40SSowmini Varadhan 431550b6e40SSowmini Varadhan return (DLADM_WALK_CONTINUE); 432550b6e40SSowmini Varadhan fail: 433550b6e40SSowmini Varadhan if (ifname != NULL) { 434550b6e40SSowmini Varadhan nwd->ngz_ipstatus = ipstatus; 435550b6e40SSowmini Varadhan return (DLADM_WALK_TERMINATE); 436550b6e40SSowmini Varadhan } 437550b6e40SSowmini Varadhan return (DLADM_WALK_CONTINUE); 438550b6e40SSowmini Varadhan } 439550b6e40SSowmini Varadhan 440550b6e40SSowmini Varadhan /* 441550b6e40SSowmini Varadhan * ipmgmt_net_from_gz_init() initializes exclusive-IP stack non-global zones by 442550b6e40SSowmini Varadhan * extracting configuration that has been saved in the kernel and applying 443550b6e40SSowmini Varadhan * that information to the appropriate datalinks for the zone. If an ifname 444550b6e40SSowmini Varadhan * argument is passed in, only the selected IP interface corresponding to 445550b6e40SSowmini Varadhan * datalink will be initialized, otherwise all datalinks will be plumbed for IP 446550b6e40SSowmini Varadhan * and IP address and route information will be configured. 447550b6e40SSowmini Varadhan */ 448550b6e40SSowmini Varadhan ipadm_status_t 449550b6e40SSowmini Varadhan ipadm_init_net_from_gz(ipadm_handle_t iph, char *ifname, 450550b6e40SSowmini Varadhan void (*persist_if)(char *, boolean_t, boolean_t)) 451550b6e40SSowmini Varadhan { 452550b6e40SSowmini Varadhan ngz_walk_data_t nwd; 453550b6e40SSowmini Varadhan uint64_t flags; 454550b6e40SSowmini Varadhan dladm_handle_t dlh = iph->iph_dlh; 455550b6e40SSowmini Varadhan datalink_id_t linkid; 456550b6e40SSowmini Varadhan 457550b6e40SSowmini Varadhan if (iph->iph_zoneid == GLOBAL_ZONEID) 458550b6e40SSowmini Varadhan return (IPADM_NOTSUP); 459550b6e40SSowmini Varadhan 460550b6e40SSowmini Varadhan if (ifname != NULL && 461550b6e40SSowmini Varadhan i_ipadm_get_flags(iph, ifname, AF_INET, &flags) != IPADM_SUCCESS && 462550b6e40SSowmini Varadhan i_ipadm_get_flags(iph, ifname, AF_INET6, &flags) != IPADM_SUCCESS) 463550b6e40SSowmini Varadhan return (IPADM_ENXIO); 464550b6e40SSowmini Varadhan 465550b6e40SSowmini Varadhan if (ifname != NULL && !(flags & IFF_L3PROTECT)) 466550b6e40SSowmini Varadhan return (IPADM_SUCCESS); /* nothing to initialize */ 467550b6e40SSowmini Varadhan 468550b6e40SSowmini Varadhan nwd.ngz_iph = iph; 469550b6e40SSowmini Varadhan nwd.ngz_zoneid = iph->iph_zoneid; 470550b6e40SSowmini Varadhan nwd.ngz_ifname = ifname; 471550b6e40SSowmini Varadhan nwd.ngz_persist_if = persist_if; 472550b6e40SSowmini Varadhan nwd.ngz_s10c = i_ipadm_zone_is_s10c(iph->iph_zoneid); 473550b6e40SSowmini Varadhan nwd.ngz_ipstatus = IPADM_SUCCESS; 474550b6e40SSowmini Varadhan if (ifname != NULL) { 475550b6e40SSowmini Varadhan if (dladm_name2info(dlh, ifname, &linkid, NULL, NULL, 476550b6e40SSowmini Varadhan NULL) != DLADM_STATUS_OK) { 477550b6e40SSowmini Varadhan return (IPADM_ENXIO); 478550b6e40SSowmini Varadhan } 479550b6e40SSowmini Varadhan (void) i_ipadm_zone_network_attr(dlh, linkid, &nwd); 480550b6e40SSowmini Varadhan } else { 481550b6e40SSowmini Varadhan (void) dladm_walk_datalink_id(i_ipadm_zone_network_attr, dlh, 482550b6e40SSowmini Varadhan &nwd, DATALINK_CLASS_ALL, DATALINK_ANY_MEDIATYPE, 483550b6e40SSowmini Varadhan DLADM_OPT_PERSIST); 484550b6e40SSowmini Varadhan } 485550b6e40SSowmini Varadhan return (nwd.ngz_ipstatus); 486550b6e40SSowmini Varadhan } 487