17c478bd9Sstevel@tonic-gate /*
27c478bd9Sstevel@tonic-gate  * CDDL HEADER START
37c478bd9Sstevel@tonic-gate  *
47c478bd9Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
545916cd2Sjpk  * Common Development and Distribution License (the "License").
645916cd2Sjpk  * You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate  *
87c478bd9Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate  * See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate  * and limitations under the License.
127c478bd9Sstevel@tonic-gate  *
137c478bd9Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate  *
197c478bd9Sstevel@tonic-gate  * CDDL HEADER END
207c478bd9Sstevel@tonic-gate  */
2177c67f2fSkcpoon 
227c478bd9Sstevel@tonic-gate /*
23*f4b3ec61Sdh  * Copyright 2007 Sun Microsystems, Inc.  All rights reserved.
247c478bd9Sstevel@tonic-gate  * Use is subject to license terms.
257c478bd9Sstevel@tonic-gate  */
267c478bd9Sstevel@tonic-gate 
277c478bd9Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
287c478bd9Sstevel@tonic-gate 
297c478bd9Sstevel@tonic-gate #include <sys/types.h>
307c478bd9Sstevel@tonic-gate #include <sys/systm.h>
317c478bd9Sstevel@tonic-gate #include <sys/stream.h>
327c478bd9Sstevel@tonic-gate #include <sys/cmn_err.h>
337c478bd9Sstevel@tonic-gate #include <sys/socket.h>
347c478bd9Sstevel@tonic-gate #include <sys/kmem.h>
357c478bd9Sstevel@tonic-gate #include <sys/strsubr.h>
367c478bd9Sstevel@tonic-gate #include <sys/strsun.h>
377c478bd9Sstevel@tonic-gate 
387c478bd9Sstevel@tonic-gate #include <netinet/in.h>
397c478bd9Sstevel@tonic-gate #include <netinet/ip6.h>
407c478bd9Sstevel@tonic-gate #include <netinet/sctp.h>
417c478bd9Sstevel@tonic-gate 
427c478bd9Sstevel@tonic-gate #include <inet/common.h>
437c478bd9Sstevel@tonic-gate #include <inet/ip.h>
447c478bd9Sstevel@tonic-gate #include <inet/ip6.h>
457c478bd9Sstevel@tonic-gate #include <inet/mib2.h>
46*f4b3ec61Sdh #include <inet/ipclassifier.h>
477c478bd9Sstevel@tonic-gate #include "sctp_impl.h"
487c478bd9Sstevel@tonic-gate #include "sctp_asconf.h"
497c478bd9Sstevel@tonic-gate #include "sctp_addr.h"
507c478bd9Sstevel@tonic-gate 
517c478bd9Sstevel@tonic-gate typedef struct sctp_asconf_s {
521d8c4025Svi 	mblk_t		*head;
531d8c4025Svi 	uint32_t 	cid;
547c478bd9Sstevel@tonic-gate } sctp_asconf_t;
557c478bd9Sstevel@tonic-gate 
561d8c4025Svi /*
571d8c4025Svi  * This is only used on a clustered node to maintain pre-allocated buffer info.
581d8c4025Svi  * before sending an ASCONF chunk. The reason for pre-allocation is we don't
591d8c4025Svi  * want to fail allocating memory when we get then ASCONF-ACK in order to
601d8c4025Svi  * update the clustering subsystem's state for this assoc.
611d8c4025Svi  */
621d8c4025Svi typedef struct sctp_cl_ainfo_s {
631d8c4025Svi 	uchar_t	*sctp_cl_alist;
641d8c4025Svi 	size_t	sctp_cl_asize;
651d8c4025Svi 	uchar_t	*sctp_cl_dlist;
661d8c4025Svi 	size_t	sctp_cl_dsize;
671d8c4025Svi } sctp_cl_ainfo_t;
681d8c4025Svi 
697c478bd9Sstevel@tonic-gate /*
707c478bd9Sstevel@tonic-gate  * The ASCONF chunk per-parameter request interface. ph is the
717c478bd9Sstevel@tonic-gate  * parameter header for the parameter in the request, and cid
727c478bd9Sstevel@tonic-gate  * is the parameters correlation ID. cont should be set to 1
737c478bd9Sstevel@tonic-gate  * if the ASCONF framework should continue processing request
747c478bd9Sstevel@tonic-gate  * parameters following this one, or 0 if it should stop. If
757c478bd9Sstevel@tonic-gate  * cont is -1, this indicates complete memory depletion, which
767c478bd9Sstevel@tonic-gate  * will cause the ASCONF framework to abort building a reply. If
777c478bd9Sstevel@tonic-gate  * act is 1, the callback should take whatever action it needs
787c478bd9Sstevel@tonic-gate  * to fulfil this request. If act is 0, this request has already
797c478bd9Sstevel@tonic-gate  * been processed, so the callback should only verify and pass
807c478bd9Sstevel@tonic-gate  * back error parameters, and not take any action.
817c478bd9Sstevel@tonic-gate  *
827c478bd9Sstevel@tonic-gate  * The callback should return an mblk with any reply enclosed,
837c478bd9Sstevel@tonic-gate  * with the correlation ID in the first four bytes of the
847c478bd9Sstevel@tonic-gate  * message. A NULL return implies implicit success to the
857c478bd9Sstevel@tonic-gate  * requestor.
867c478bd9Sstevel@tonic-gate  */
877c478bd9Sstevel@tonic-gate typedef mblk_t *sctp_asconf_func_t(sctp_t *, sctp_parm_hdr_t *ph, uint32_t cid,
881d8c4025Svi     sctp_faddr_t *, int *cont, int act, in6_addr_t *addr);
897c478bd9Sstevel@tonic-gate 
907c478bd9Sstevel@tonic-gate /*
917c478bd9Sstevel@tonic-gate  * The ASCONF chunk per-parameter ACK interface. ph is the parameter
927c478bd9Sstevel@tonic-gate  * header for the parameter returned in the ACK, and oph is the
937c478bd9Sstevel@tonic-gate  * original parameter sent out in the ASCONF request.
947c478bd9Sstevel@tonic-gate  * If the peer implicitly responded OK (by not including an
957c478bd9Sstevel@tonic-gate  * explicit OK for the request), ph will be NULL.
967c478bd9Sstevel@tonic-gate  * ph can also point to an Unrecognized Parameter parameter,
977c478bd9Sstevel@tonic-gate  * in which case the peer did not understand the request
987c478bd9Sstevel@tonic-gate  * parameter.
997c478bd9Sstevel@tonic-gate  *
1007c478bd9Sstevel@tonic-gate  * ph and oph parameter headers are in host byte order. Encapsulated
1017c478bd9Sstevel@tonic-gate  * parameters will still be in network byte order.
1027c478bd9Sstevel@tonic-gate  */
1037c478bd9Sstevel@tonic-gate typedef void sctp_asconf_ack_func_t(sctp_t *, sctp_parm_hdr_t *ph,
1041d8c4025Svi     sctp_parm_hdr_t *oph, sctp_faddr_t *, in6_addr_t *addr);
1057c478bd9Sstevel@tonic-gate 
1067c478bd9Sstevel@tonic-gate typedef struct {
1077c478bd9Sstevel@tonic-gate 	uint16_t id;
1087c478bd9Sstevel@tonic-gate 	sctp_asconf_func_t *asconf;
1097c478bd9Sstevel@tonic-gate 	sctp_asconf_ack_func_t *asconf_ack;
1107c478bd9Sstevel@tonic-gate } dispatch_t;
1117c478bd9Sstevel@tonic-gate 
1127c478bd9Sstevel@tonic-gate static sctp_asconf_func_t sctp_addip_req, sctp_setprim_req,
1137c478bd9Sstevel@tonic-gate     sctp_asconf_unrec_parm;
1147c478bd9Sstevel@tonic-gate 
1157c478bd9Sstevel@tonic-gate static sctp_asconf_ack_func_t sctp_addip_ack, sctp_setprim_ack,
1167c478bd9Sstevel@tonic-gate     sctp_asconf_ack_unrec_parm;
1177c478bd9Sstevel@tonic-gate 
1187c478bd9Sstevel@tonic-gate static const dispatch_t sctp_asconf_dispatch_tbl[] = {
1197c478bd9Sstevel@tonic-gate /*	ID			ASCONF			ASCONF_ACK */
1207c478bd9Sstevel@tonic-gate 	{ PARM_ADD_IP,		sctp_addip_req,		sctp_addip_ack },
1217c478bd9Sstevel@tonic-gate 	{ PARM_DEL_IP,		sctp_addip_req,		sctp_addip_ack },
1227c478bd9Sstevel@tonic-gate 	{ PARM_SET_PRIMARY,	sctp_setprim_req,	sctp_setprim_ack }
1237c478bd9Sstevel@tonic-gate };
1247c478bd9Sstevel@tonic-gate 
1257c478bd9Sstevel@tonic-gate static const dispatch_t sctp_asconf_default_dispatch = {
1267c478bd9Sstevel@tonic-gate 	0, sctp_asconf_unrec_parm, sctp_asconf_ack_unrec_parm
1277c478bd9Sstevel@tonic-gate };
1287c478bd9Sstevel@tonic-gate 
1297c478bd9Sstevel@tonic-gate /*
1307c478bd9Sstevel@tonic-gate  * ASCONF framework
1317c478bd9Sstevel@tonic-gate  */
1327c478bd9Sstevel@tonic-gate 
1337c478bd9Sstevel@tonic-gate static const dispatch_t *
1347c478bd9Sstevel@tonic-gate sctp_lookup_asconf_dispatch(int id)
1357c478bd9Sstevel@tonic-gate {
1367c478bd9Sstevel@tonic-gate 	int i;
1377c478bd9Sstevel@tonic-gate 
1387c478bd9Sstevel@tonic-gate 	for (i = 0; i < A_CNT(sctp_asconf_dispatch_tbl); i++) {
1397c478bd9Sstevel@tonic-gate 		if (sctp_asconf_dispatch_tbl[i].id == id) {
1407c478bd9Sstevel@tonic-gate 			return (sctp_asconf_dispatch_tbl + i);
1417c478bd9Sstevel@tonic-gate 		}
1427c478bd9Sstevel@tonic-gate 	}
1437c478bd9Sstevel@tonic-gate 
1447c478bd9Sstevel@tonic-gate 	return (&sctp_asconf_default_dispatch);
1457c478bd9Sstevel@tonic-gate }
1467c478bd9Sstevel@tonic-gate 
1477c478bd9Sstevel@tonic-gate /*
1487c478bd9Sstevel@tonic-gate  * Frees mp on failure
1497c478bd9Sstevel@tonic-gate  */
1507c478bd9Sstevel@tonic-gate static mblk_t *
1517c478bd9Sstevel@tonic-gate sctp_asconf_prepend_errwrap(mblk_t *mp, uint32_t cid)
1527c478bd9Sstevel@tonic-gate {
1537c478bd9Sstevel@tonic-gate 	mblk_t		*wmp;
1547c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t	*wph;
1557c478bd9Sstevel@tonic-gate 
1567c478bd9Sstevel@tonic-gate 	/* Prepend a wrapper err cause ind param */
1577c478bd9Sstevel@tonic-gate 	wmp = allocb(sizeof (*wph) + sizeof (cid), BPRI_MED);
1587c478bd9Sstevel@tonic-gate 	if (wmp == NULL) {
1597c478bd9Sstevel@tonic-gate 		freemsg(mp);
1607c478bd9Sstevel@tonic-gate 		return (NULL);
1617c478bd9Sstevel@tonic-gate 	}
1627c478bd9Sstevel@tonic-gate 	wmp->b_wptr += sizeof (*wph) + sizeof (cid);
1637c478bd9Sstevel@tonic-gate 	wph = (sctp_parm_hdr_t *)wmp->b_rptr;
1647c478bd9Sstevel@tonic-gate 	wph->sph_type = htons(PARM_ERROR_IND);
1657c478bd9Sstevel@tonic-gate 	wph->sph_len = htons(msgdsize(mp) + sizeof (*wph) + sizeof (cid));
1667c478bd9Sstevel@tonic-gate 	bcopy(&cid, wph + 1, sizeof (uint32_t));
1677c478bd9Sstevel@tonic-gate 
1687c478bd9Sstevel@tonic-gate 	wmp->b_cont = mp;
1697c478bd9Sstevel@tonic-gate 	return (wmp);
1707c478bd9Sstevel@tonic-gate }
1717c478bd9Sstevel@tonic-gate 
1727c478bd9Sstevel@tonic-gate /*ARGSUSED*/
1737c478bd9Sstevel@tonic-gate static mblk_t *
1747c478bd9Sstevel@tonic-gate sctp_asconf_unrec_parm(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
1751d8c4025Svi     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *addr)
1767c478bd9Sstevel@tonic-gate {
1777c478bd9Sstevel@tonic-gate 	mblk_t *mp = NULL;
1787c478bd9Sstevel@tonic-gate 
1797c478bd9Sstevel@tonic-gate 	/* Unrecognized param; check the high order bits */
1807c478bd9Sstevel@tonic-gate 	if ((ph->sph_type & 0xc000) == 0xc000) {
1817c478bd9Sstevel@tonic-gate 		/* report unrecognized param, and keep processing */
1827c478bd9Sstevel@tonic-gate 		sctp_add_unrec_parm(ph, &mp);
1837c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
1847c478bd9Sstevel@tonic-gate 			*cont = -1;
1857c478bd9Sstevel@tonic-gate 			return (NULL);
1867c478bd9Sstevel@tonic-gate 		}
1877c478bd9Sstevel@tonic-gate 		/* Prepend a the CID and a wrapper err cause ind param */
1887c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_prepend_errwrap(mp, cid);
1897c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
1907c478bd9Sstevel@tonic-gate 			*cont = -1;
1917c478bd9Sstevel@tonic-gate 			return (NULL);
1927c478bd9Sstevel@tonic-gate 		}
1937c478bd9Sstevel@tonic-gate 
1947c478bd9Sstevel@tonic-gate 		*cont = 1;
1957c478bd9Sstevel@tonic-gate 		return (mp);
1967c478bd9Sstevel@tonic-gate 	}
1977c478bd9Sstevel@tonic-gate 	if (ph->sph_type & 0x4000) {
1987c478bd9Sstevel@tonic-gate 		/* Stop processing and drop; report unrecognized param */
1997c478bd9Sstevel@tonic-gate 		sctp_add_unrec_parm(ph, &mp);
2007c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
2017c478bd9Sstevel@tonic-gate 			*cont = -1;
2027c478bd9Sstevel@tonic-gate 			return (NULL);
2037c478bd9Sstevel@tonic-gate 		}
2047c478bd9Sstevel@tonic-gate 		/* Prepend a the CID and a wrapper err cause ind param */
2057c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_prepend_errwrap(mp, cid);
2067c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
2077c478bd9Sstevel@tonic-gate 			*cont = -1;
2087c478bd9Sstevel@tonic-gate 			return (NULL);
2097c478bd9Sstevel@tonic-gate 		}
2107c478bd9Sstevel@tonic-gate 
2117c478bd9Sstevel@tonic-gate 		*cont = 0;
2127c478bd9Sstevel@tonic-gate 		return (mp);
2137c478bd9Sstevel@tonic-gate 	}
2147c478bd9Sstevel@tonic-gate 	if (ph->sph_type & 0x8000) {
2157c478bd9Sstevel@tonic-gate 		/* skip and continue processing */
2167c478bd9Sstevel@tonic-gate 		*cont = 1;
2177c478bd9Sstevel@tonic-gate 		return (NULL);
2187c478bd9Sstevel@tonic-gate 	}
2197c478bd9Sstevel@tonic-gate 
2207c478bd9Sstevel@tonic-gate 	/* 2 high bits are clear; stop processing and drop packet */
2217c478bd9Sstevel@tonic-gate 	*cont = 0;
2227c478bd9Sstevel@tonic-gate 	return (NULL);
2237c478bd9Sstevel@tonic-gate }
2247c478bd9Sstevel@tonic-gate 
2257c478bd9Sstevel@tonic-gate /*ARGSUSED*/
2267c478bd9Sstevel@tonic-gate static void
2277c478bd9Sstevel@tonic-gate sctp_asconf_ack_unrec_parm(sctp_t *sctp, sctp_parm_hdr_t *ph,
2281d8c4025Svi     sctp_parm_hdr_t *oph, sctp_faddr_t *fp, in6_addr_t *laddr)
2297c478bd9Sstevel@tonic-gate {
2307c478bd9Sstevel@tonic-gate 	ASSERT(ph);
2317c478bd9Sstevel@tonic-gate 	sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
2327c478bd9Sstevel@tonic-gate }
2337c478bd9Sstevel@tonic-gate 
2347c478bd9Sstevel@tonic-gate static void
2357c478bd9Sstevel@tonic-gate sctp_asconf_init(sctp_asconf_t *asc)
2367c478bd9Sstevel@tonic-gate {
2377c478bd9Sstevel@tonic-gate 	ASSERT(asc != NULL);
2387c478bd9Sstevel@tonic-gate 
2397c478bd9Sstevel@tonic-gate 	asc->head = NULL;
2407c478bd9Sstevel@tonic-gate 	asc->cid = 0;
2417c478bd9Sstevel@tonic-gate }
2427c478bd9Sstevel@tonic-gate 
2437c478bd9Sstevel@tonic-gate static int
2447c478bd9Sstevel@tonic-gate sctp_asconf_add(sctp_asconf_t *asc, mblk_t *mp)
2457c478bd9Sstevel@tonic-gate {
2467c478bd9Sstevel@tonic-gate 	uint32_t *cp;
2477c478bd9Sstevel@tonic-gate 
2487c478bd9Sstevel@tonic-gate 	/* XXX can't exceed MTU */
2497c478bd9Sstevel@tonic-gate 
2507c478bd9Sstevel@tonic-gate 	cp = (uint32_t *)(mp->b_rptr + sizeof (sctp_parm_hdr_t));
2517c478bd9Sstevel@tonic-gate 	*cp = asc->cid++;
2527c478bd9Sstevel@tonic-gate 
2537c478bd9Sstevel@tonic-gate 	if (asc->head == NULL)
2547c478bd9Sstevel@tonic-gate 		asc->head = mp;
2557c478bd9Sstevel@tonic-gate 	else
2567c478bd9Sstevel@tonic-gate 		linkb(asc->head, mp);
2577c478bd9Sstevel@tonic-gate 
2587c478bd9Sstevel@tonic-gate 	return (0);
2597c478bd9Sstevel@tonic-gate }
2607c478bd9Sstevel@tonic-gate 
2617c478bd9Sstevel@tonic-gate static void
2627c478bd9Sstevel@tonic-gate sctp_asconf_destroy(sctp_asconf_t *asc)
2637c478bd9Sstevel@tonic-gate {
2647c478bd9Sstevel@tonic-gate 	if (asc->head != NULL) {
2657c478bd9Sstevel@tonic-gate 		freemsg(asc->head);
2667c478bd9Sstevel@tonic-gate 		asc->head = NULL;
2677c478bd9Sstevel@tonic-gate 	}
2687c478bd9Sstevel@tonic-gate 	asc->cid = 0;
2697c478bd9Sstevel@tonic-gate }
2707c478bd9Sstevel@tonic-gate 
2717c478bd9Sstevel@tonic-gate static int
2721d8c4025Svi sctp_asconf_send(sctp_t *sctp, sctp_asconf_t *asc, sctp_faddr_t *fp,
2731d8c4025Svi     sctp_cl_ainfo_t *ainfo)
2747c478bd9Sstevel@tonic-gate {
2757c478bd9Sstevel@tonic-gate 	mblk_t			*mp, *nmp;
2767c478bd9Sstevel@tonic-gate 	sctp_chunk_hdr_t	*ch;
2777c478bd9Sstevel@tonic-gate 	boolean_t		isv4;
2787c478bd9Sstevel@tonic-gate 	size_t			msgsize;
2797c478bd9Sstevel@tonic-gate 
2807c478bd9Sstevel@tonic-gate 	ASSERT(asc != NULL && asc->head != NULL);
2817c478bd9Sstevel@tonic-gate 
2827c478bd9Sstevel@tonic-gate 	isv4 = (fp != NULL) ? fp->isv4 : sctp->sctp_current->isv4;
2837c478bd9Sstevel@tonic-gate 
2847c478bd9Sstevel@tonic-gate 	/* SCTP chunk header + Serial Number + Address Param TLV */
2857c478bd9Sstevel@tonic-gate 	msgsize = sizeof (*ch) + sizeof (uint32_t) +
2867c478bd9Sstevel@tonic-gate 	    (isv4 ? PARM_ADDR4_LEN : PARM_ADDR6_LEN);
2877c478bd9Sstevel@tonic-gate 
2887c478bd9Sstevel@tonic-gate 	mp = allocb(msgsize, BPRI_MED);
2897c478bd9Sstevel@tonic-gate 	if (mp == NULL)
2907c478bd9Sstevel@tonic-gate 		return (ENOMEM);
2917c478bd9Sstevel@tonic-gate 
2927c478bd9Sstevel@tonic-gate 	mp->b_wptr += msgsize;
2937c478bd9Sstevel@tonic-gate 	mp->b_cont = asc->head;
2947c478bd9Sstevel@tonic-gate 
2957c478bd9Sstevel@tonic-gate 	ch = (sctp_chunk_hdr_t *)mp->b_rptr;
2967c478bd9Sstevel@tonic-gate 	ch->sch_id = CHUNK_ASCONF;
2977c478bd9Sstevel@tonic-gate 	ch->sch_flags = 0;
2987c478bd9Sstevel@tonic-gate 	ch->sch_len = htons(msgdsize(mp));
2997c478bd9Sstevel@tonic-gate 
3007c478bd9Sstevel@tonic-gate 	nmp = msgpullup(mp, -1);
3017c478bd9Sstevel@tonic-gate 	if (nmp == NULL) {
3027c478bd9Sstevel@tonic-gate 		freeb(mp);
3037c478bd9Sstevel@tonic-gate 		return (ENOMEM);
3047c478bd9Sstevel@tonic-gate 	}
3057c478bd9Sstevel@tonic-gate 
3061d8c4025Svi 	/*
3071d8c4025Svi 	 * Stash the address list and the count so that when the operation
3081d8c4025Svi 	 * completes, i.e. when as get an ACK, we can update the clustering's
3091d8c4025Svi 	 * state for this association.
3101d8c4025Svi 	 */
3111d8c4025Svi 	if (ainfo != NULL) {
3121d8c4025Svi 		ASSERT(cl_sctp_assoc_change != NULL);
3131d8c4025Svi 		ASSERT(nmp->b_prev == NULL);
3141d8c4025Svi 		nmp->b_prev = (mblk_t *)ainfo;
3151d8c4025Svi 	}
3167c478bd9Sstevel@tonic-gate 	/* Clean up the temporary mblk chain */
3177c478bd9Sstevel@tonic-gate 	freemsg(mp);
3187c478bd9Sstevel@tonic-gate 	asc->head = NULL;
3197c478bd9Sstevel@tonic-gate 	asc->cid = 0;
3207c478bd9Sstevel@tonic-gate 
3217c478bd9Sstevel@tonic-gate 	/* Queue it ... */
3227c478bd9Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL) {
3237c478bd9Sstevel@tonic-gate 		sctp->sctp_cxmit_list = nmp;
3247c478bd9Sstevel@tonic-gate 	} else {
3257c478bd9Sstevel@tonic-gate 		linkb(sctp->sctp_cxmit_list, nmp);
3267c478bd9Sstevel@tonic-gate 	}
3277c478bd9Sstevel@tonic-gate 
3287c478bd9Sstevel@tonic-gate 	BUMP_LOCAL(sctp->sctp_obchunks);
3297c478bd9Sstevel@tonic-gate 
3307c478bd9Sstevel@tonic-gate 	/* And try to send it. */
3317c478bd9Sstevel@tonic-gate 	sctp_wput_asconf(sctp, fp);
3327c478bd9Sstevel@tonic-gate 
3337c478bd9Sstevel@tonic-gate 	return (0);
3347c478bd9Sstevel@tonic-gate }
3357c478bd9Sstevel@tonic-gate 
3367c478bd9Sstevel@tonic-gate /*
3377c478bd9Sstevel@tonic-gate  * If the peer does not understand an ASCONF chunk, we simply
3387c478bd9Sstevel@tonic-gate  * clear out the cxmit_list, since we can send nothing further
3397c478bd9Sstevel@tonic-gate  * that the peer will understand.
3407c478bd9Sstevel@tonic-gate  *
3417c478bd9Sstevel@tonic-gate  * Assumes chunk length has already been checked.
3427c478bd9Sstevel@tonic-gate  */
3437c478bd9Sstevel@tonic-gate /*ARGSUSED*/
3447c478bd9Sstevel@tonic-gate void
3451d8c4025Svi sctp_asconf_free_cxmit(sctp_t *sctp, sctp_chunk_hdr_t *ch)
3467c478bd9Sstevel@tonic-gate {
3471d8c4025Svi 	mblk_t		*mp;
3481d8c4025Svi 	mblk_t		*mp1;
3491d8c4025Svi 	sctp_cl_ainfo_t	*ainfo;
3501d8c4025Svi 
3517c478bd9Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL) {
3527c478bd9Sstevel@tonic-gate 		/* Nothing pending */
3537c478bd9Sstevel@tonic-gate 		return;
3547c478bd9Sstevel@tonic-gate 	}
3557c478bd9Sstevel@tonic-gate 
3561d8c4025Svi 	mp = sctp->sctp_cxmit_list;
3571d8c4025Svi 	while (mp != NULL) {
3581d8c4025Svi 		mp1 = mp->b_cont;
3591d8c4025Svi 		mp->b_cont = NULL;
3601d8c4025Svi 		if (mp->b_prev != NULL) {
3611d8c4025Svi 			ainfo = (sctp_cl_ainfo_t *)mp->b_prev;
3621d8c4025Svi 			mp->b_prev = NULL;
3631d8c4025Svi 			kmem_free(ainfo->sctp_cl_alist, ainfo->sctp_cl_asize);
3641d8c4025Svi 			kmem_free(ainfo->sctp_cl_dlist, ainfo->sctp_cl_dsize);
3651d8c4025Svi 			kmem_free(ainfo, sizeof (*ainfo));
3661d8c4025Svi 		}
3671d8c4025Svi 		freeb(mp);
3681d8c4025Svi 		mp = mp1;
3691d8c4025Svi 	}
3707c478bd9Sstevel@tonic-gate 	sctp->sctp_cxmit_list = NULL;
3717c478bd9Sstevel@tonic-gate }
3727c478bd9Sstevel@tonic-gate 
3737c478bd9Sstevel@tonic-gate void
3747c478bd9Sstevel@tonic-gate sctp_input_asconf(sctp_t *sctp, sctp_chunk_hdr_t *ch, sctp_faddr_t *fp)
3757c478bd9Sstevel@tonic-gate {
3767c478bd9Sstevel@tonic-gate 	const dispatch_t	*dp;
3777c478bd9Sstevel@tonic-gate 	mblk_t			*hmp;
3787c478bd9Sstevel@tonic-gate 	mblk_t			*mp;
3797c478bd9Sstevel@tonic-gate 	uint32_t		*idp;
3807c478bd9Sstevel@tonic-gate 	uint32_t		*hidp;
3817c478bd9Sstevel@tonic-gate 	ssize_t			rlen;
3827c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
3837c478bd9Sstevel@tonic-gate 	sctp_chunk_hdr_t	*ach;
3847c478bd9Sstevel@tonic-gate 	int			cont;
3857c478bd9Sstevel@tonic-gate 	int			act;
3867c478bd9Sstevel@tonic-gate 	uint16_t		plen;
3871d8c4025Svi 	uchar_t			*alist = NULL;
3881d8c4025Svi 	size_t			asize = 0;
3891d8c4025Svi 	uchar_t			*dlist = NULL;
3901d8c4025Svi 	size_t			dsize = 0;
3911d8c4025Svi 	uchar_t			*aptr = NULL;
3921d8c4025Svi 	uchar_t			*dptr = NULL;
3931d8c4025Svi 	int			acount = 0;
3941d8c4025Svi 	int			dcount = 0;
395*f4b3ec61Sdh 	sctp_stack_t		*sctps = sctp->sctp_sctps;
3967c478bd9Sstevel@tonic-gate 
3977c478bd9Sstevel@tonic-gate 	ASSERT(ch->sch_id == CHUNK_ASCONF);
3987c478bd9Sstevel@tonic-gate 
3997c478bd9Sstevel@tonic-gate 	idp = (uint32_t *)(ch + 1);
4007c478bd9Sstevel@tonic-gate 	rlen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*idp);
4017c478bd9Sstevel@tonic-gate 
4027c478bd9Sstevel@tonic-gate 	if (rlen < 0 || rlen < sizeof (*idp)) {
4037c478bd9Sstevel@tonic-gate 		/* nothing there; bail out */
4047c478bd9Sstevel@tonic-gate 		return;
4057c478bd9Sstevel@tonic-gate 	}
4067c478bd9Sstevel@tonic-gate 
4077c478bd9Sstevel@tonic-gate 	/* Check for duplicates */
4087c478bd9Sstevel@tonic-gate 	*idp = ntohl(*idp);
4097c478bd9Sstevel@tonic-gate 	if (*idp == (sctp->sctp_fcsn + 1)) {
4107c478bd9Sstevel@tonic-gate 		act = 1;
4117c478bd9Sstevel@tonic-gate 	} else if (*idp == sctp->sctp_fcsn) {
4127c478bd9Sstevel@tonic-gate 		act = 0;
4137c478bd9Sstevel@tonic-gate 	} else {
4147c478bd9Sstevel@tonic-gate 		/* stale or malicious packet; drop */
4157c478bd9Sstevel@tonic-gate 		return;
4167c478bd9Sstevel@tonic-gate 	}
4177c478bd9Sstevel@tonic-gate 
4187c478bd9Sstevel@tonic-gate 	/* Create the ASCONF_ACK header */
4197c478bd9Sstevel@tonic-gate 	hmp = sctp_make_mp(sctp, fp, sizeof (*ach) + sizeof (*idp));
4207c478bd9Sstevel@tonic-gate 	if (hmp == NULL) {
4217c478bd9Sstevel@tonic-gate 		/* Let the peer retransmit */
422*f4b3ec61Sdh 		SCTP_KSTAT(sctps, sctp_send_asconf_ack_failed);
4237c478bd9Sstevel@tonic-gate 		return;
4247c478bd9Sstevel@tonic-gate 	}
4257c478bd9Sstevel@tonic-gate 	ach = (sctp_chunk_hdr_t *)hmp->b_wptr;
4267c478bd9Sstevel@tonic-gate 	ach->sch_id = CHUNK_ASCONF_ACK;
4277c478bd9Sstevel@tonic-gate 	ach->sch_flags = 0;
4287c478bd9Sstevel@tonic-gate 	/* Set the length later */
4297c478bd9Sstevel@tonic-gate 	hidp = (uint32_t *)(ach + 1);
4307c478bd9Sstevel@tonic-gate 	*hidp = htonl(*idp);
4317c478bd9Sstevel@tonic-gate 	hmp->b_wptr = (uchar_t *)(hidp + 1);
4327c478bd9Sstevel@tonic-gate 
4337c478bd9Sstevel@tonic-gate 	/* Move to the Address Parameter */
4347c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(idp + 1);
4357c478bd9Sstevel@tonic-gate 	if (rlen <= ntohs(ph->sph_len)) {
4367c478bd9Sstevel@tonic-gate 		freeb(hmp);
4377c478bd9Sstevel@tonic-gate 		return;
4387c478bd9Sstevel@tonic-gate 	}
4397c478bd9Sstevel@tonic-gate 
4407c478bd9Sstevel@tonic-gate 	/*
4417c478bd9Sstevel@tonic-gate 	 * We already have the association here, so this address parameter
4427c478bd9Sstevel@tonic-gate 	 * doesn't seem to be very useful, should we make sure this is part
4437c478bd9Sstevel@tonic-gate 	 * of the association and send an error, if not?
4447c478bd9Sstevel@tonic-gate 	 * Ignore it for now.
4457c478bd9Sstevel@tonic-gate 	 */
4467c478bd9Sstevel@tonic-gate 	rlen -= ntohs(ph->sph_len);
4477c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + ntohs(ph->sph_len));
4481d8c4025Svi 
4491d8c4025Svi 	/*
4501d8c4025Svi 	 * We need to pre-allocate buffer before processing the ASCONF
4511d8c4025Svi 	 * chunk. We don't want to fail allocating buffers after processing
4521d8c4025Svi 	 * the ASCONF chunk. So, we walk the list and get the number of
4531d8c4025Svi 	 * addresses added and/or deleted.
4541d8c4025Svi 	 */
4551d8c4025Svi 	if (cl_sctp_assoc_change != NULL) {
4561d8c4025Svi 		sctp_parm_hdr_t	*oph = ph;
4571d8c4025Svi 		ssize_t		orlen = rlen;
4581d8c4025Svi 
4591d8c4025Svi 		/*
4601d8c4025Svi 		 * This not very efficient, but there is no better way of
4611d8c4025Svi 		 * doing it.  It should be fine since normally the param list
4621d8c4025Svi 		 * will not be very long.
4631d8c4025Svi 		 */
4641d8c4025Svi 		while (orlen > 0) {
4651d8c4025Svi 			/* Sanity checks */
4661d8c4025Svi 			if (orlen < sizeof (*oph))
4671d8c4025Svi 				break;
4681d8c4025Svi 			plen = ntohs(oph->sph_len);
4691d8c4025Svi 			if (plen < sizeof (*oph) || plen > orlen)
4701d8c4025Svi 				break;
4711d8c4025Svi 			if (oph->sph_type == htons(PARM_ADD_IP))
4721d8c4025Svi 				acount++;
4731d8c4025Svi 			if (oph->sph_type == htons(PARM_DEL_IP))
4741d8c4025Svi 				dcount++;
4751d8c4025Svi 			oph = sctp_next_parm(oph, &orlen);
4761d8c4025Svi 			if (oph == NULL)
4771d8c4025Svi 				break;
4781d8c4025Svi 		}
4791d8c4025Svi 		if (acount > 0 || dcount > 0) {
4801d8c4025Svi 			if (acount > 0) {
4811d8c4025Svi 				asize = sizeof (in6_addr_t) * acount;
4821d8c4025Svi 				alist = kmem_alloc(asize, KM_NOSLEEP);
4831d8c4025Svi 				if (alist == NULL) {
4841d8c4025Svi 					freeb(hmp);
485*f4b3ec61Sdh 					SCTP_KSTAT(sctps, sctp_cl_assoc_change);
4861d8c4025Svi 					return;
4871d8c4025Svi 				}
4881d8c4025Svi 			}
4891d8c4025Svi 			if (dcount > 0) {
4901d8c4025Svi 				dsize = sizeof (in6_addr_t) * dcount;
4911d8c4025Svi 				dlist = kmem_alloc(dsize, KM_NOSLEEP);
4921d8c4025Svi 				if (dlist == NULL) {
4931d8c4025Svi 					if (acount > 0)
4941d8c4025Svi 						kmem_free(alist, asize);
4951d8c4025Svi 					freeb(hmp);
496*f4b3ec61Sdh 					SCTP_KSTAT(sctps, sctp_cl_assoc_change);
4971d8c4025Svi 					return;
4981d8c4025Svi 				}
4991d8c4025Svi 			}
5001d8c4025Svi 			aptr = alist;
5011d8c4025Svi 			dptr = dlist;
5021d8c4025Svi 			/*
5031d8c4025Svi 			 * We will get the actual count when we process
5041d8c4025Svi 			 * the chunk.
5051d8c4025Svi 			 */
5061d8c4025Svi 			acount = 0;
5071d8c4025Svi 			dcount = 0;
5081d8c4025Svi 		}
5091d8c4025Svi 	}
5107c478bd9Sstevel@tonic-gate 	cont = 1;
5117c478bd9Sstevel@tonic-gate 	while (rlen > 0 && cont) {
5121d8c4025Svi 		in6_addr_t	addr;
5131d8c4025Svi 
5147c478bd9Sstevel@tonic-gate 		/* Sanity checks */
5157c478bd9Sstevel@tonic-gate 		if (rlen < sizeof (*ph))
5167c478bd9Sstevel@tonic-gate 			break;
5177c478bd9Sstevel@tonic-gate 		plen = ntohs(ph->sph_len);
5187c478bd9Sstevel@tonic-gate 		if (plen < sizeof (*ph) || plen > rlen) {
5197c478bd9Sstevel@tonic-gate 			break;
5207c478bd9Sstevel@tonic-gate 		}
5217c478bd9Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
5227c478bd9Sstevel@tonic-gate 		dp = sctp_lookup_asconf_dispatch(ntohs(ph->sph_type));
5237c478bd9Sstevel@tonic-gate 		ASSERT(dp);
5247c478bd9Sstevel@tonic-gate 		if (dp->asconf) {
5251d8c4025Svi 			mp = dp->asconf(sctp, ph, *idp, fp, &cont, act, &addr);
5267c478bd9Sstevel@tonic-gate 			if (cont == -1) {
5277c478bd9Sstevel@tonic-gate 				/*
5287c478bd9Sstevel@tonic-gate 				 * Not even enough memory to create
5297c478bd9Sstevel@tonic-gate 				 * an out-of-resources error. Free
5307c478bd9Sstevel@tonic-gate 				 * everything and return; the peer
5317c478bd9Sstevel@tonic-gate 				 * should retransmit.
5327c478bd9Sstevel@tonic-gate 				 */
5337c478bd9Sstevel@tonic-gate 				freemsg(hmp);
5341d8c4025Svi 				if (alist != NULL)
5351d8c4025Svi 					kmem_free(alist, asize);
5361d8c4025Svi 				if (dlist != NULL)
5371d8c4025Svi 					kmem_free(dlist, dsize);
5387c478bd9Sstevel@tonic-gate 				return;
5397c478bd9Sstevel@tonic-gate 			}
5407c478bd9Sstevel@tonic-gate 			if (mp != NULL) {
5417c478bd9Sstevel@tonic-gate 				linkb(hmp, mp);
5421d8c4025Svi 			} else if (act != 0) {
5431d8c4025Svi 				/* update the add/delete list */
5441d8c4025Svi 				if (cl_sctp_assoc_change != NULL) {
5451d8c4025Svi 					if (ph->sph_type ==
5461d8c4025Svi 					    htons(PARM_ADD_IP)) {
5471d8c4025Svi 						ASSERT(alist != NULL);
5481d8c4025Svi 						bcopy(&addr, aptr,
5491d8c4025Svi 						    sizeof (addr));
5501d8c4025Svi 						aptr += sizeof (addr);
5511d8c4025Svi 						acount++;
5521d8c4025Svi 					} else if (ph->sph_type ==
5531d8c4025Svi 					    htons(PARM_DEL_IP)) {
5541d8c4025Svi 						ASSERT(dlist != NULL);
5551d8c4025Svi 						bcopy(&addr, dptr,
5561d8c4025Svi 						    sizeof (addr));
5571d8c4025Svi 						dptr += sizeof (addr);
5581d8c4025Svi 						dcount++;
5591d8c4025Svi 					}
5601d8c4025Svi 				}
5617c478bd9Sstevel@tonic-gate 			}
5627c478bd9Sstevel@tonic-gate 		}
5637c478bd9Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
5647c478bd9Sstevel@tonic-gate 		if (ph == NULL)
5657c478bd9Sstevel@tonic-gate 			break;
5667c478bd9Sstevel@tonic-gate 	}
5677c478bd9Sstevel@tonic-gate 
5681d8c4025Svi 	/*
5691d8c4025Svi 	 * Update clustering's state for this assoc. Note acount/dcount
5701d8c4025Svi 	 * could be zero (i.e. if the add/delete address(es) were not
5711d8c4025Svi 	 * processed successfully). Regardless, if the ?size is > 0,
5721d8c4025Svi 	 * it is the clustering module's responsibility to free the lists.
5731d8c4025Svi 	 */
5741d8c4025Svi 	if (cl_sctp_assoc_change != NULL) {
5751d8c4025Svi 		(*cl_sctp_assoc_change)(sctp->sctp_family, alist, asize,
5761d8c4025Svi 		    acount, dlist, dsize, dcount, SCTP_CL_PADDR,
5771d8c4025Svi 		    (cl_sctp_handle_t)sctp);
5781d8c4025Svi 		/* alist and dlist will be freed by the clustering module */
5791d8c4025Svi 	}
5807c478bd9Sstevel@tonic-gate 	/* Now that the params have been processed, increment the fcsn */
5817c478bd9Sstevel@tonic-gate 	if (act) {
5827c478bd9Sstevel@tonic-gate 		sctp->sctp_fcsn++;
5837c478bd9Sstevel@tonic-gate 	}
5847c478bd9Sstevel@tonic-gate 	BUMP_LOCAL(sctp->sctp_obchunks);
5857c478bd9Sstevel@tonic-gate 
5867c478bd9Sstevel@tonic-gate 	if (fp->isv4)
5877c478bd9Sstevel@tonic-gate 		ach->sch_len = htons(msgdsize(hmp) - sctp->sctp_hdr_len);
5887c478bd9Sstevel@tonic-gate 	else
5897c478bd9Sstevel@tonic-gate 		ach->sch_len = htons(msgdsize(hmp) - sctp->sctp_hdr6_len);
5907c478bd9Sstevel@tonic-gate 	sctp_set_iplen(sctp, hmp);
5917c478bd9Sstevel@tonic-gate 
5927c478bd9Sstevel@tonic-gate 	sctp_add_sendq(sctp, hmp);
5937c478bd9Sstevel@tonic-gate 	sctp_validate_peer(sctp);
5947c478bd9Sstevel@tonic-gate }
5957c478bd9Sstevel@tonic-gate 
5967c478bd9Sstevel@tonic-gate static sctp_parm_hdr_t *
5977c478bd9Sstevel@tonic-gate sctp_lookup_asconf_param(sctp_parm_hdr_t *ph, uint32_t cid, ssize_t rlen)
5987c478bd9Sstevel@tonic-gate {
5997c478bd9Sstevel@tonic-gate 	uint32_t *idp;
6007c478bd9Sstevel@tonic-gate 
6017c478bd9Sstevel@tonic-gate 	while (rlen > 0) {
6027c478bd9Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
6037c478bd9Sstevel@tonic-gate 		if (*idp == cid) {
6047c478bd9Sstevel@tonic-gate 			return (ph);
6057c478bd9Sstevel@tonic-gate 		}
6067c478bd9Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
6077c478bd9Sstevel@tonic-gate 		if (ph == NULL)
6087c478bd9Sstevel@tonic-gate 			break;
6097c478bd9Sstevel@tonic-gate 	}
6107c478bd9Sstevel@tonic-gate 	return (NULL);
6117c478bd9Sstevel@tonic-gate }
6127c478bd9Sstevel@tonic-gate 
6137c478bd9Sstevel@tonic-gate void
6147c478bd9Sstevel@tonic-gate sctp_input_asconf_ack(sctp_t *sctp, sctp_chunk_hdr_t *ch, sctp_faddr_t *fp)
6157c478bd9Sstevel@tonic-gate {
6167c478bd9Sstevel@tonic-gate 	const dispatch_t	*dp;
6177c478bd9Sstevel@tonic-gate 	uint32_t		*idp;
6187c478bd9Sstevel@tonic-gate 	uint32_t		*snp;
6197c478bd9Sstevel@tonic-gate 	ssize_t			rlen;
6207c478bd9Sstevel@tonic-gate 	ssize_t			plen;
6217c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
6227c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t		*oph;
6237c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t		*fph;
6247c478bd9Sstevel@tonic-gate 	mblk_t			*mp;
6257c478bd9Sstevel@tonic-gate 	sctp_chunk_hdr_t	*och;
6267c478bd9Sstevel@tonic-gate 	int			redosrcs = 0;
6277c478bd9Sstevel@tonic-gate 	uint16_t		param_len;
6281d8c4025Svi 	uchar_t			*alist;
6291d8c4025Svi 	uchar_t			*dlist;
6301d8c4025Svi 	uint_t			acount = 0;
6311d8c4025Svi 	uint_t			dcount = 0;
6321d8c4025Svi 	uchar_t			*aptr;
6331d8c4025Svi 	uchar_t			*dptr;
6341d8c4025Svi 	sctp_cl_ainfo_t		*ainfo;
6351d8c4025Svi 	in6_addr_t		addr;
6367c478bd9Sstevel@tonic-gate 
6377c478bd9Sstevel@tonic-gate 	ASSERT(ch->sch_id == CHUNK_ASCONF_ACK);
6387c478bd9Sstevel@tonic-gate 
6397c478bd9Sstevel@tonic-gate 	snp = (uint32_t *)(ch + 1);
6407c478bd9Sstevel@tonic-gate 	rlen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*snp);
6417c478bd9Sstevel@tonic-gate 	if (rlen < 0) {
6427c478bd9Sstevel@tonic-gate 		return;
6437c478bd9Sstevel@tonic-gate 	}
6447c478bd9Sstevel@tonic-gate 
6457c478bd9Sstevel@tonic-gate 	/* Accept only an ACK for the current serial number */
6467c478bd9Sstevel@tonic-gate 	*snp = ntohl(*snp);
6477c478bd9Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL || *snp != (sctp->sctp_lcsn - 1)) {
6487c478bd9Sstevel@tonic-gate 		/* Need to send an abort */
6497c478bd9Sstevel@tonic-gate 		return;
6507c478bd9Sstevel@tonic-gate 	}
6517c478bd9Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 0;
6527c478bd9Sstevel@tonic-gate 	SCTP_FADDR_RC_TIMER_STOP(fp);
6537c478bd9Sstevel@tonic-gate 
6541d8c4025Svi 	mp = sctp->sctp_cxmit_list;
6551d8c4025Svi 	/*
6561d8c4025Svi 	 * We fill in the addresses here to update the clustering's state for
6571d8c4025Svi 	 * this assoc.
6581d8c4025Svi 	 */
6591d8c4025Svi 	if (mp != NULL && cl_sctp_assoc_change != NULL) {
6601d8c4025Svi 		ASSERT(mp->b_prev != NULL);
6611d8c4025Svi 		ainfo = (sctp_cl_ainfo_t *)mp->b_prev;
6621d8c4025Svi 		alist = ainfo->sctp_cl_alist;
6631d8c4025Svi 		dlist = ainfo->sctp_cl_dlist;
6641d8c4025Svi 		aptr = alist;
6651d8c4025Svi 		dptr = dlist;
6661d8c4025Svi 	}
6671d8c4025Svi 
6687c478bd9Sstevel@tonic-gate 	/*
6697c478bd9Sstevel@tonic-gate 	 * Pass explicit replies to callbacks:
6707c478bd9Sstevel@tonic-gate 	 * For each reply in the ACK, look up the corresponding
6717c478bd9Sstevel@tonic-gate 	 * original parameter in the request using the correlation
6727c478bd9Sstevel@tonic-gate 	 * ID, and pass it to the right callback.
6737c478bd9Sstevel@tonic-gate 	 */
6747c478bd9Sstevel@tonic-gate 	och = (sctp_chunk_hdr_t *)sctp->sctp_cxmit_list->b_rptr;
6757c478bd9Sstevel@tonic-gate 
6767c478bd9Sstevel@tonic-gate 	plen = ntohs(och->sch_len) - sizeof (*och) - sizeof (*idp);
6777c478bd9Sstevel@tonic-gate 	idp = (uint32_t *)(och + 1);
6787c478bd9Sstevel@tonic-gate 
6797c478bd9Sstevel@tonic-gate 	/* Get to the 1st ASCONF param, need to skip Address TLV parm */
6807c478bd9Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)(idp + 1);
6817c478bd9Sstevel@tonic-gate 	plen -= ntohs(fph->sph_len);
6827c478bd9Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)((char *)fph + ntohs(fph->sph_len));
6837c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(snp + 1);
6847c478bd9Sstevel@tonic-gate 	while (rlen > 0) {
6857c478bd9Sstevel@tonic-gate 		/* Sanity checks */
6867c478bd9Sstevel@tonic-gate 		if (rlen < sizeof (*ph)) {
6877c478bd9Sstevel@tonic-gate 			break;
6887c478bd9Sstevel@tonic-gate 		}
6897c478bd9Sstevel@tonic-gate 		param_len = ntohs(ph->sph_len);
6907c478bd9Sstevel@tonic-gate 		if (param_len < sizeof (*ph) || param_len > rlen) {
6917c478bd9Sstevel@tonic-gate 			break;
6927c478bd9Sstevel@tonic-gate 		}
6937c478bd9Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
6947c478bd9Sstevel@tonic-gate 		oph = sctp_lookup_asconf_param(fph, *idp, plen);
6957c478bd9Sstevel@tonic-gate 		if (oph != NULL) {
6967c478bd9Sstevel@tonic-gate 			dp = sctp_lookup_asconf_dispatch(ntohs(oph->sph_type));
6977c478bd9Sstevel@tonic-gate 			ASSERT(dp);
6987c478bd9Sstevel@tonic-gate 			if (dp->asconf_ack) {
6991d8c4025Svi 				dp->asconf_ack(sctp, ph, oph, fp, &addr);
7007c478bd9Sstevel@tonic-gate 
7017c478bd9Sstevel@tonic-gate 				/* hack. see below */
7027c478bd9Sstevel@tonic-gate 				if (oph->sph_type == htons(PARM_ADD_IP) ||
7037c478bd9Sstevel@tonic-gate 				    oph->sph_type == htons(PARM_DEL_IP)) {
7047c478bd9Sstevel@tonic-gate 					redosrcs = 1;
7051d8c4025Svi 					/*
7061d8c4025Svi 					 * If the address was sucessfully
7071d8c4025Svi 					 * processed, add it to the add/delete
7081d8c4025Svi 					 * list to send to the clustering
7091d8c4025Svi 					 * module.
7101d8c4025Svi 					 */
7111d8c4025Svi 					if (cl_sctp_assoc_change != NULL &&
7121d8c4025Svi 					    !IN6_IS_ADDR_UNSPECIFIED(&addr)) {
7131d8c4025Svi 						if (oph->sph_type ==
7141d8c4025Svi 						    htons(PARM_ADD_IP)) {
7151d8c4025Svi 							bcopy(&addr, aptr,
7161d8c4025Svi 							    sizeof (addr));
7171d8c4025Svi 							aptr += sizeof (addr);
7181d8c4025Svi 							acount++;
7191d8c4025Svi 						} else {
7201d8c4025Svi 							bcopy(&addr, dptr,
7211d8c4025Svi 							    sizeof (addr));
7221d8c4025Svi 							dptr += sizeof (addr);
7231d8c4025Svi 							dcount++;
7241d8c4025Svi 						}
7251d8c4025Svi 					}
7267c478bd9Sstevel@tonic-gate 				}
7277c478bd9Sstevel@tonic-gate 			}
7287c478bd9Sstevel@tonic-gate 		}
7297c478bd9Sstevel@tonic-gate 
7307c478bd9Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
7317c478bd9Sstevel@tonic-gate 		if (ph == NULL)
7327c478bd9Sstevel@tonic-gate 			break;
7337c478bd9Sstevel@tonic-gate 	}
7347c478bd9Sstevel@tonic-gate 
7357c478bd9Sstevel@tonic-gate 	/*
7367c478bd9Sstevel@tonic-gate 	 * Pass implicit replies to callbacks:
7377c478bd9Sstevel@tonic-gate 	 * For each original request, look up its parameter
7387c478bd9Sstevel@tonic-gate 	 * in the ACK. If there is no corresponding reply,
7397c478bd9Sstevel@tonic-gate 	 * call the callback with a NULL parameter, indicating
7407c478bd9Sstevel@tonic-gate 	 * success.
7417c478bd9Sstevel@tonic-gate 	 */
7427c478bd9Sstevel@tonic-gate 	rlen = plen;
7437c478bd9Sstevel@tonic-gate 	plen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*idp);
7447c478bd9Sstevel@tonic-gate 	oph = fph;
7457c478bd9Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)((char *)ch + sizeof (sctp_chunk_hdr_t) +
7467c478bd9Sstevel@tonic-gate 	    sizeof (uint32_t));
7477c478bd9Sstevel@tonic-gate 	while (rlen > 0) {
7487c478bd9Sstevel@tonic-gate 		idp = (uint32_t *)(oph + 1);
7497c478bd9Sstevel@tonic-gate 		ph = sctp_lookup_asconf_param(fph, *idp, plen);
7507c478bd9Sstevel@tonic-gate 		if (ph == NULL) {
7517c478bd9Sstevel@tonic-gate 			dp = sctp_lookup_asconf_dispatch(ntohs(oph->sph_type));
7527c478bd9Sstevel@tonic-gate 			ASSERT(dp);
7537c478bd9Sstevel@tonic-gate 			if (dp->asconf_ack) {
7541d8c4025Svi 				dp->asconf_ack(sctp, NULL, oph, fp, &addr);
7557c478bd9Sstevel@tonic-gate 
7567c478bd9Sstevel@tonic-gate 				/* hack. see below */
7577c478bd9Sstevel@tonic-gate 				if (oph->sph_type == htons(PARM_ADD_IP) ||
7587c478bd9Sstevel@tonic-gate 				    oph->sph_type == htons(PARM_DEL_IP)) {
7597c478bd9Sstevel@tonic-gate 					redosrcs = 1;
7601d8c4025Svi 					/*
7611d8c4025Svi 					 * If the address was sucessfully
7621d8c4025Svi 					 * processed, add it to the add/delete
7631d8c4025Svi 					 * list to send to the clustering
7641d8c4025Svi 					 * module.
7651d8c4025Svi 					 */
7661d8c4025Svi 					if (cl_sctp_assoc_change != NULL &&
7671d8c4025Svi 					    !IN6_IS_ADDR_UNSPECIFIED(&addr)) {
7681d8c4025Svi 						if (oph->sph_type ==
7691d8c4025Svi 						    htons(PARM_ADD_IP)) {
7701d8c4025Svi 							bcopy(&addr, aptr,
7711d8c4025Svi 							    sizeof (addr));
7721d8c4025Svi 							aptr += sizeof (addr);
7731d8c4025Svi 							acount++;
7741d8c4025Svi 						} else {
7751d8c4025Svi 							bcopy(&addr, dptr,
7761d8c4025Svi 							    sizeof (addr));
7771d8c4025Svi 							dptr += sizeof (addr);
7781d8c4025Svi 							dcount++;
7791d8c4025Svi 						}
7801d8c4025Svi 					}
7817c478bd9Sstevel@tonic-gate 				}
7827c478bd9Sstevel@tonic-gate 			}
7837c478bd9Sstevel@tonic-gate 		}
7847c478bd9Sstevel@tonic-gate 		oph = sctp_next_parm(oph, &rlen);
7857c478bd9Sstevel@tonic-gate 		if (oph == NULL) {
7867c478bd9Sstevel@tonic-gate 			break;
7877c478bd9Sstevel@tonic-gate 		}
7887c478bd9Sstevel@tonic-gate 	}
7897c478bd9Sstevel@tonic-gate 
7907c478bd9Sstevel@tonic-gate 	/* We can now free up the first chunk in the cxmit list */
7917c478bd9Sstevel@tonic-gate 	sctp->sctp_cxmit_list = mp->b_cont;
7927c478bd9Sstevel@tonic-gate 	mp->b_cont = NULL;
7937c478bd9Sstevel@tonic-gate 
7947c478bd9Sstevel@tonic-gate 	fp = SCTP_CHUNK_DEST(mp);
7957c478bd9Sstevel@tonic-gate 	ASSERT(fp != NULL && fp->suna >= MBLKL(mp));
7967c478bd9Sstevel@tonic-gate 	fp->suna -= MBLKL(mp);
7971d8c4025Svi 
7981d8c4025Svi 	/*
7991d8c4025Svi 	 * Update clustering's state for this assoc. Note acount/dcount
8001d8c4025Svi 	 * could be zero (i.e. if the add/delete address(es) did not
8011d8c4025Svi 	 * succeed). Regardless, if the ?size is > 0, it is the clustering
8021d8c4025Svi 	 * module's responsibility to free the lists.
8031d8c4025Svi 	 */
8041d8c4025Svi 	if (cl_sctp_assoc_change != NULL) {
8051d8c4025Svi 		ASSERT(mp->b_prev != NULL);
8061d8c4025Svi 		mp->b_prev = NULL;
8071d8c4025Svi 		ainfo->sctp_cl_alist = NULL;
8081d8c4025Svi 		ainfo->sctp_cl_dlist = NULL;
8091d8c4025Svi 		(*cl_sctp_assoc_change)(sctp->sctp_family, alist,
8101d8c4025Svi 		    ainfo->sctp_cl_asize, acount, dlist, ainfo->sctp_cl_dsize,
8111d8c4025Svi 		    dcount, SCTP_CL_LADDR, (cl_sctp_handle_t)sctp);
8121d8c4025Svi 		/* alist and dlist will be freed by the clustering module */
8131d8c4025Svi 		ainfo->sctp_cl_asize = 0;
8141d8c4025Svi 		ainfo->sctp_cl_dsize = 0;
8151d8c4025Svi 		kmem_free(ainfo, sizeof (*ainfo));
8161d8c4025Svi 	}
8177c478bd9Sstevel@tonic-gate 	freeb(mp);
8187c478bd9Sstevel@tonic-gate 
8197c478bd9Sstevel@tonic-gate 	/* can now send the next control chunk */
8207c478bd9Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list != NULL)
8217c478bd9Sstevel@tonic-gate 		sctp_wput_asconf(sctp, NULL);
8227c478bd9Sstevel@tonic-gate 
8237c478bd9Sstevel@tonic-gate 	/*
8247c478bd9Sstevel@tonic-gate 	 * If an add-ip or del-ip has completed (successfully or
8257c478bd9Sstevel@tonic-gate 	 * unsuccessfully), the pool of available source addresses
8267c478bd9Sstevel@tonic-gate 	 * may have changed, so we need to redo faddr source
8277c478bd9Sstevel@tonic-gate 	 * address selections. This is a bit of a hack since
8287c478bd9Sstevel@tonic-gate 	 * this really belongs in the add/del-ip code. However,
8297c478bd9Sstevel@tonic-gate 	 * that code consists of callbacks called for *each*
8307c478bd9Sstevel@tonic-gate 	 * add/del-ip parameter, and sctp_redo_faddr_srcs() is
8317c478bd9Sstevel@tonic-gate 	 * expensive enough that we really don't want to be
8327c478bd9Sstevel@tonic-gate 	 * doing it for each one. So we do it once here.
8337c478bd9Sstevel@tonic-gate 	 */
8347c478bd9Sstevel@tonic-gate 	if (redosrcs)
8357c478bd9Sstevel@tonic-gate 		sctp_redo_faddr_srcs(sctp);
8367c478bd9Sstevel@tonic-gate }
8377c478bd9Sstevel@tonic-gate 
8387c478bd9Sstevel@tonic-gate static void
8397c478bd9Sstevel@tonic-gate sctp_rc_timer(sctp_t *sctp, sctp_faddr_t *fp)
8407c478bd9Sstevel@tonic-gate {
8417c478bd9Sstevel@tonic-gate #define	SCTP_CLR_SENT_FLAG(mp)	((mp)->b_flag &= ~SCTP_CHUNK_FLAG_SENT)
8427c478bd9Sstevel@tonic-gate 	sctp_faddr_t	*nfp;
8437c478bd9Sstevel@tonic-gate 	sctp_faddr_t	*ofp;
844*f4b3ec61Sdh 	sctp_stack_t	*sctps = sctp->sctp_sctps;
8457c478bd9Sstevel@tonic-gate 
8467c478bd9Sstevel@tonic-gate 	ASSERT(fp != NULL);
8477c478bd9Sstevel@tonic-gate 
8487c478bd9Sstevel@tonic-gate 	fp->rc_timer_running = 0;
8497c478bd9Sstevel@tonic-gate 
8507c478bd9Sstevel@tonic-gate 	if (sctp->sctp_state != SCTPS_ESTABLISHED ||
8517c478bd9Sstevel@tonic-gate 	    sctp->sctp_cxmit_list == NULL) {
8527c478bd9Sstevel@tonic-gate 		return;
8537c478bd9Sstevel@tonic-gate 	}
8547c478bd9Sstevel@tonic-gate 	/*
8557c478bd9Sstevel@tonic-gate 	 * Not a retransmission, this was deferred due to some error
8567c478bd9Sstevel@tonic-gate 	 * condition
8577c478bd9Sstevel@tonic-gate 	 */
8587c478bd9Sstevel@tonic-gate 	if (!SCTP_CHUNK_ISSENT(sctp->sctp_cxmit_list)) {
8597c478bd9Sstevel@tonic-gate 		sctp_wput_asconf(sctp, fp);
8607c478bd9Sstevel@tonic-gate 		return;
8617c478bd9Sstevel@tonic-gate 	}
8627c478bd9Sstevel@tonic-gate 	/*
8637c478bd9Sstevel@tonic-gate 	 * The sent flag indicates if the msg has been sent on this fp.
8647c478bd9Sstevel@tonic-gate 	 */
8657c478bd9Sstevel@tonic-gate 	SCTP_CLR_SENT_FLAG(sctp->sctp_cxmit_list);
8667c478bd9Sstevel@tonic-gate 	/* Retransmission */
8677c478bd9Sstevel@tonic-gate 	if (sctp->sctp_strikes >= sctp->sctp_pa_max_rxt) {
8687c478bd9Sstevel@tonic-gate 		/* time to give up */
869*f4b3ec61Sdh 		BUMP_MIB(&sctps->sctps_mib, sctpAborted);
8707c478bd9Sstevel@tonic-gate 		sctp_assoc_event(sctp, SCTP_COMM_LOST, 0, NULL);
8717c478bd9Sstevel@tonic-gate 		sctp_clean_death(sctp, ETIMEDOUT);
8727c478bd9Sstevel@tonic-gate 		return;
8737c478bd9Sstevel@tonic-gate 	}
8747c478bd9Sstevel@tonic-gate 	if (fp->strikes >= fp->max_retr) {
8757c478bd9Sstevel@tonic-gate 		if (sctp_faddr_dead(sctp, fp, SCTP_FADDRS_DOWN) == -1)
8767c478bd9Sstevel@tonic-gate 			return;
8777c478bd9Sstevel@tonic-gate 	}
8787c478bd9Sstevel@tonic-gate 
8797c478bd9Sstevel@tonic-gate 	fp->strikes++;
8807c478bd9Sstevel@tonic-gate 	sctp->sctp_strikes++;
8817c478bd9Sstevel@tonic-gate 	SCTP_CALC_RXT(fp, sctp->sctp_rto_max);
8827c478bd9Sstevel@tonic-gate 
8837c478bd9Sstevel@tonic-gate 	nfp = sctp_rotate_faddr(sctp, fp);
8847c478bd9Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 0;
8857c478bd9Sstevel@tonic-gate 	ofp = SCTP_CHUNK_DEST(sctp->sctp_cxmit_list);
8867c478bd9Sstevel@tonic-gate 	SCTP_SET_CHUNK_DEST(sctp->sctp_cxmit_list, NULL);
8877c478bd9Sstevel@tonic-gate 	ASSERT(ofp != NULL && ofp == fp);
8887c478bd9Sstevel@tonic-gate 	ASSERT(ofp->suna >= MBLKL(sctp->sctp_cxmit_list));
8897c478bd9Sstevel@tonic-gate 	/*
8907c478bd9Sstevel@tonic-gate 	 * Enter slow start for this destination.
8917c478bd9Sstevel@tonic-gate 	 * XXX anything in the data path that needs to be considered?
8927c478bd9Sstevel@tonic-gate 	 */
8937c478bd9Sstevel@tonic-gate 	ofp->ssthresh = ofp->cwnd / 2;
8947c478bd9Sstevel@tonic-gate 	if (ofp->ssthresh < 2 * ofp->sfa_pmss)
8957c478bd9Sstevel@tonic-gate 		ofp->ssthresh = 2 * ofp->sfa_pmss;
8967c478bd9Sstevel@tonic-gate 	ofp->cwnd = ofp->sfa_pmss;
8977c478bd9Sstevel@tonic-gate 	ofp->pba = 0;
8987c478bd9Sstevel@tonic-gate 	ofp->suna -= MBLKL(sctp->sctp_cxmit_list);
8997c478bd9Sstevel@tonic-gate 	/*
9007c478bd9Sstevel@tonic-gate 	 * The rexmit flags is used to determine if a serial number needs to
9017c478bd9Sstevel@tonic-gate 	 * be assigned or not, so once set we leave it there.
9027c478bd9Sstevel@tonic-gate 	 */
9037c478bd9Sstevel@tonic-gate 	if (!SCTP_CHUNK_WANT_REXMIT(sctp->sctp_cxmit_list))
9047c478bd9Sstevel@tonic-gate 		SCTP_CHUNK_REXMIT(sctp->sctp_cxmit_list);
9057c478bd9Sstevel@tonic-gate 	sctp_wput_asconf(sctp, nfp);
9067c478bd9Sstevel@tonic-gate #undef	SCTP_CLR_SENT_FLAG
9077c478bd9Sstevel@tonic-gate }
9087c478bd9Sstevel@tonic-gate 
9097c478bd9Sstevel@tonic-gate void
9107c478bd9Sstevel@tonic-gate sctp_wput_asconf(sctp_t *sctp, sctp_faddr_t *fp)
9117c478bd9Sstevel@tonic-gate {
9127c478bd9Sstevel@tonic-gate #define	SCTP_SET_SENT_FLAG(mp)	((mp)->b_flag = SCTP_CHUNK_FLAG_SENT)
9137c478bd9Sstevel@tonic-gate 
9147c478bd9Sstevel@tonic-gate 	mblk_t 			*mp;
9157c478bd9Sstevel@tonic-gate 	mblk_t			*ipmp;
9167c478bd9Sstevel@tonic-gate 	uint32_t 		*snp;
9177c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
9187c478bd9Sstevel@tonic-gate 	boolean_t		isv4;
919*f4b3ec61Sdh 	sctp_stack_t		*sctps = sctp->sctp_sctps;
9207c478bd9Sstevel@tonic-gate 
9217c478bd9Sstevel@tonic-gate 	if (sctp->sctp_cchunk_pend || sctp->sctp_cxmit_list == NULL ||
9227c478bd9Sstevel@tonic-gate 	    /* Queue it for later transmission if not yet established */
9237c478bd9Sstevel@tonic-gate 	    sctp->sctp_state < SCTPS_ESTABLISHED) {
9247c478bd9Sstevel@tonic-gate 		ip2dbg(("sctp_wput_asconf: cchunk pending? (%d) or null "\
9257c478bd9Sstevel@tonic-gate 		    "sctp_cxmit_list? (%s) or incorrect state? (%x)\n",
9267c478bd9Sstevel@tonic-gate 		    sctp->sctp_cchunk_pend, sctp->sctp_cxmit_list == NULL ?
9277c478bd9Sstevel@tonic-gate 		    "yes" : "no", sctp->sctp_state));
9287c478bd9Sstevel@tonic-gate 		return;
9297c478bd9Sstevel@tonic-gate 	}
9307c478bd9Sstevel@tonic-gate 
9317c478bd9Sstevel@tonic-gate 	if (fp == NULL)
9327c478bd9Sstevel@tonic-gate 		fp = sctp->sctp_current;
9337c478bd9Sstevel@tonic-gate 
9347c478bd9Sstevel@tonic-gate 	/* OK to send */
9357c478bd9Sstevel@tonic-gate 	ipmp = sctp_make_mp(sctp, fp, 0);
9367c478bd9Sstevel@tonic-gate 	if (ipmp == NULL) {
9377c478bd9Sstevel@tonic-gate 		SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
938*f4b3ec61Sdh 		SCTP_KSTAT(sctps, sctp_send_asconf_failed);
9397c478bd9Sstevel@tonic-gate 		return;
9407c478bd9Sstevel@tonic-gate 	}
9417c478bd9Sstevel@tonic-gate 	mp = sctp->sctp_cxmit_list;
9427c478bd9Sstevel@tonic-gate 	/* Fill in the mandatory  Address Parameter TLV */
9437c478bd9Sstevel@tonic-gate 	isv4 = (fp != NULL) ? fp->isv4 : sctp->sctp_current->isv4;
9447c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(mp->b_rptr + sizeof (sctp_chunk_hdr_t) +
9457c478bd9Sstevel@tonic-gate 	    sizeof (uint32_t));
9467c478bd9Sstevel@tonic-gate 	if (isv4) {
9477c478bd9Sstevel@tonic-gate 		ipha_t		*ipha = (ipha_t *)ipmp->b_rptr;
9487c478bd9Sstevel@tonic-gate 		in6_addr_t	ipaddr;
9497c478bd9Sstevel@tonic-gate 		ipaddr_t	addr4;
9507c478bd9Sstevel@tonic-gate 
9517c478bd9Sstevel@tonic-gate 		ph->sph_type = htons(PARM_ADDR4);
9527c478bd9Sstevel@tonic-gate 		ph->sph_len = htons(PARM_ADDR4_LEN);
9537c478bd9Sstevel@tonic-gate 		if (ipha->ipha_src != INADDR_ANY) {
9547c478bd9Sstevel@tonic-gate 			bcopy(&ipha->ipha_src, ph + 1, IP_ADDR_LEN);
9557c478bd9Sstevel@tonic-gate 		} else {
9567c478bd9Sstevel@tonic-gate 			ipaddr = sctp_get_valid_addr(sctp, B_FALSE);
957df19b344Svi 			/*
958df19b344Svi 			 * All the addresses are down.
959df19b344Svi 			 * Maybe we might have better luck next time.
960df19b344Svi 			 */
961df19b344Svi 			if (IN6_IS_ADDR_V4MAPPED_ANY(&ipaddr)) {
962df19b344Svi 				SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
963df19b344Svi 				freeb(ipmp);
964df19b344Svi 				return;
965df19b344Svi 			}
9667c478bd9Sstevel@tonic-gate 			IN6_V4MAPPED_TO_IPADDR(&ipaddr, addr4);
9677c478bd9Sstevel@tonic-gate 			bcopy(&addr4, ph + 1, IP_ADDR_LEN);
9687c478bd9Sstevel@tonic-gate 		}
9697c478bd9Sstevel@tonic-gate 	} else {
9707c478bd9Sstevel@tonic-gate 		ip6_t		*ip6 = (ip6_t *)ipmp->b_rptr;
9717c478bd9Sstevel@tonic-gate 		in6_addr_t	ipaddr;
9727c478bd9Sstevel@tonic-gate 
9737c478bd9Sstevel@tonic-gate 		ph->sph_type = htons(PARM_ADDR6);
9747c478bd9Sstevel@tonic-gate 		ph->sph_len = htons(PARM_ADDR6_LEN);
9757c478bd9Sstevel@tonic-gate 		if (!IN6_IS_ADDR_UNSPECIFIED(&ip6->ip6_src)) {
9767c478bd9Sstevel@tonic-gate 			bcopy(&ip6->ip6_src, ph + 1, IPV6_ADDR_LEN);
9777c478bd9Sstevel@tonic-gate 		} else {
9787c478bd9Sstevel@tonic-gate 			ipaddr = sctp_get_valid_addr(sctp, B_TRUE);
979df19b344Svi 			/*
980df19b344Svi 			 * All the addresses are down.
981df19b344Svi 			 * Maybe we might have better luck next time.
982df19b344Svi 			 */
983df19b344Svi 			if (IN6_IS_ADDR_UNSPECIFIED(&ipaddr)) {
984df19b344Svi 				SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
985df19b344Svi 				freeb(ipmp);
986df19b344Svi 				return;
987df19b344Svi 			}
9887c478bd9Sstevel@tonic-gate 			bcopy(&ipaddr, ph + 1, IPV6_ADDR_LEN);
9897c478bd9Sstevel@tonic-gate 		}
9907c478bd9Sstevel@tonic-gate 	}
9917c478bd9Sstevel@tonic-gate 
9927c478bd9Sstevel@tonic-gate 	/* Don't exceed CWND */
9937c478bd9Sstevel@tonic-gate 	if ((MBLKL(mp) > (fp->cwnd - fp->suna)) ||
9947c478bd9Sstevel@tonic-gate 	    ((mp = dupb(sctp->sctp_cxmit_list)) == NULL)) {
9957c478bd9Sstevel@tonic-gate 		SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
9967c478bd9Sstevel@tonic-gate 		freeb(ipmp);
9977c478bd9Sstevel@tonic-gate 		return;
9987c478bd9Sstevel@tonic-gate 	}
9997c478bd9Sstevel@tonic-gate 
10007c478bd9Sstevel@tonic-gate 	/* Set the serial number now, if sending for the first time */
10017c478bd9Sstevel@tonic-gate 	if (!SCTP_CHUNK_WANT_REXMIT(mp)) {
10027c478bd9Sstevel@tonic-gate 		snp = (uint32_t *)(mp->b_rptr + sizeof (sctp_chunk_hdr_t));
10037c478bd9Sstevel@tonic-gate 		*snp = htonl(sctp->sctp_lcsn++);
10047c478bd9Sstevel@tonic-gate 	}
10057c478bd9Sstevel@tonic-gate 	SCTP_CHUNK_CLEAR_FLAGS(mp);
10067c478bd9Sstevel@tonic-gate 	fp->suna += MBLKL(mp);
10077c478bd9Sstevel@tonic-gate 	/* Attach the header and send the chunk */
10087c478bd9Sstevel@tonic-gate 	ipmp->b_cont = mp;
10097c478bd9Sstevel@tonic-gate 	sctp_set_iplen(sctp, ipmp);
10107c478bd9Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 1;
10117c478bd9Sstevel@tonic-gate 
10127c478bd9Sstevel@tonic-gate 	SCTP_SET_SENT_FLAG(sctp->sctp_cxmit_list);
10137c478bd9Sstevel@tonic-gate 	SCTP_SET_CHUNK_DEST(sctp->sctp_cxmit_list, fp);
10147c478bd9Sstevel@tonic-gate 	sctp_add_sendq(sctp, ipmp);
10157c478bd9Sstevel@tonic-gate 	SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
10167c478bd9Sstevel@tonic-gate #undef	SCTP_SET_SENT_FLAG
10177c478bd9Sstevel@tonic-gate }
10187c478bd9Sstevel@tonic-gate 
10197c478bd9Sstevel@tonic-gate /*
10207c478bd9Sstevel@tonic-gate  * Generate ASCONF error param, include errph, if present.
10217c478bd9Sstevel@tonic-gate  */
10227c478bd9Sstevel@tonic-gate static mblk_t *
10237c478bd9Sstevel@tonic-gate sctp_asconf_adderr(int err, sctp_parm_hdr_t *errph, uint32_t cid)
10247c478bd9Sstevel@tonic-gate {
10257c478bd9Sstevel@tonic-gate 	mblk_t		*mp;
10267c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t	*eph;
10277c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t	*wph;
10287c478bd9Sstevel@tonic-gate 	size_t		len;
10297c478bd9Sstevel@tonic-gate 	size_t		elen = 0;
10307c478bd9Sstevel@tonic-gate 
10317c478bd9Sstevel@tonic-gate 	len = sizeof (*wph) + sizeof (*eph) + sizeof (cid);
10327c478bd9Sstevel@tonic-gate 	if (errph != NULL) {
10337c478bd9Sstevel@tonic-gate 		elen = ntohs(errph->sph_len);
10347c478bd9Sstevel@tonic-gate 		len += elen;
10357c478bd9Sstevel@tonic-gate 	}
10367c478bd9Sstevel@tonic-gate 	mp = allocb(len, BPRI_MED);
10377c478bd9Sstevel@tonic-gate 	if (mp == NULL) {
10387c478bd9Sstevel@tonic-gate 		return (NULL);
10397c478bd9Sstevel@tonic-gate 	}
10407c478bd9Sstevel@tonic-gate 	wph = (sctp_parm_hdr_t *)mp->b_rptr;
10417c478bd9Sstevel@tonic-gate 	/* error cause wrapper */
10427c478bd9Sstevel@tonic-gate 	wph->sph_type = htons(PARM_ERROR_IND);
10437c478bd9Sstevel@tonic-gate 	wph->sph_len = htons(len);
10447c478bd9Sstevel@tonic-gate 	bcopy(&cid, wph + 1, sizeof (uint32_t));
10457c478bd9Sstevel@tonic-gate 
10467c478bd9Sstevel@tonic-gate 	/* error cause */
10477c478bd9Sstevel@tonic-gate 	eph = (sctp_parm_hdr_t *)((char *)wph + sizeof (sctp_parm_hdr_t) +
10487c478bd9Sstevel@tonic-gate 	    sizeof (cid));
10497c478bd9Sstevel@tonic-gate 	eph->sph_type = htons(err);
10507c478bd9Sstevel@tonic-gate 	eph->sph_len = htons(len - sizeof (*wph) - sizeof (cid));
10517c478bd9Sstevel@tonic-gate 	mp->b_wptr = (uchar_t *)(eph + 1);
10527c478bd9Sstevel@tonic-gate 
10537c478bd9Sstevel@tonic-gate 	/* details */
10547c478bd9Sstevel@tonic-gate 	if (elen > 0) {
10557c478bd9Sstevel@tonic-gate 		bcopy(errph, mp->b_wptr, elen);
10567c478bd9Sstevel@tonic-gate 		mp->b_wptr += elen;
10577c478bd9Sstevel@tonic-gate 	}
10587c478bd9Sstevel@tonic-gate 	return (mp);
10597c478bd9Sstevel@tonic-gate }
10607c478bd9Sstevel@tonic-gate 
10617c478bd9Sstevel@tonic-gate static mblk_t *
10627c478bd9Sstevel@tonic-gate sctp_check_addip_addr(sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph, int *cont,
10637c478bd9Sstevel@tonic-gate     uint32_t cid, in6_addr_t *raddr)
10647c478bd9Sstevel@tonic-gate {
10657c478bd9Sstevel@tonic-gate 	uint16_t	atype;
10667c478bd9Sstevel@tonic-gate 	uint16_t	alen;
10677c478bd9Sstevel@tonic-gate 	mblk_t		*mp;
10687c478bd9Sstevel@tonic-gate 	in6_addr_t	addr;
10697c478bd9Sstevel@tonic-gate 	ipaddr_t	*addr4;
10707c478bd9Sstevel@tonic-gate 
10717c478bd9Sstevel@tonic-gate 	atype = ntohs(ph->sph_type);
10727c478bd9Sstevel@tonic-gate 	alen = ntohs(ph->sph_len);
10737c478bd9Sstevel@tonic-gate 
10747c478bd9Sstevel@tonic-gate 	if (atype != PARM_ADDR4 && atype != PARM_ADDR6) {
10757c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
10767c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
10777c478bd9Sstevel@tonic-gate 			*cont = -1;
10787c478bd9Sstevel@tonic-gate 		}
10797c478bd9Sstevel@tonic-gate 		return (mp);
10807c478bd9Sstevel@tonic-gate 	}
10817c478bd9Sstevel@tonic-gate 	if ((atype == PARM_ADDR4 && alen < PARM_ADDR4_LEN) ||
10827c478bd9Sstevel@tonic-gate 	    (atype == PARM_ADDR6 && alen < PARM_ADDR6_LEN)) {
10837c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
10847c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
10857c478bd9Sstevel@tonic-gate 			*cont = -1;
10867c478bd9Sstevel@tonic-gate 		}
10877c478bd9Sstevel@tonic-gate 		return (mp);
10887c478bd9Sstevel@tonic-gate 	}
10897c478bd9Sstevel@tonic-gate 
10907c478bd9Sstevel@tonic-gate 	/* Address parameter is present; extract and screen it */
10917c478bd9Sstevel@tonic-gate 	if (atype == PARM_ADDR4) {
10927c478bd9Sstevel@tonic-gate 		addr4 = (ipaddr_t *)(ph + 1);
10937c478bd9Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(*addr4, &addr);
10947c478bd9Sstevel@tonic-gate 
10957c478bd9Sstevel@tonic-gate 		/* screen XXX loopback to scoping */
10967c478bd9Sstevel@tonic-gate 		if (*addr4 == 0 || *addr4 == INADDR_BROADCAST ||
10977c478bd9Sstevel@tonic-gate 		    *addr4 == htonl(INADDR_LOOPBACK) || IN_MULTICAST(*addr4)) {
10987c478bd9Sstevel@tonic-gate 			dprint(1, ("addip: addr not unicast: %x:%x:%x:%x\n",
10997c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
11007c478bd9Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
11017c478bd9Sstevel@tonic-gate 			    cid);
11027c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
11037c478bd9Sstevel@tonic-gate 				*cont = -1;
11047c478bd9Sstevel@tonic-gate 			}
11057c478bd9Sstevel@tonic-gate 			return (mp);
11067c478bd9Sstevel@tonic-gate 		}
11077c478bd9Sstevel@tonic-gate 		/*
11087c478bd9Sstevel@tonic-gate 		 * XXX also need to check for subnet
11097c478bd9Sstevel@tonic-gate 		 * broadcasts. This should probably
11107c478bd9Sstevel@tonic-gate 		 * wait until we have full access
11117c478bd9Sstevel@tonic-gate 		 * to the ILL tables.
11127c478bd9Sstevel@tonic-gate 		 */
11137c478bd9Sstevel@tonic-gate 
11147c478bd9Sstevel@tonic-gate 	} else {
11157c478bd9Sstevel@tonic-gate 		bcopy(ph + 1, &addr, sizeof (addr));
11167c478bd9Sstevel@tonic-gate 
11177c478bd9Sstevel@tonic-gate 		/* screen XXX loopback to scoping */
11187c478bd9Sstevel@tonic-gate 		if (IN6_IS_ADDR_LINKLOCAL(&addr) ||
11197c478bd9Sstevel@tonic-gate 		    IN6_IS_ADDR_MULTICAST(&addr) ||
11207c478bd9Sstevel@tonic-gate 		    IN6_IS_ADDR_LOOPBACK(&addr)) {
11217c478bd9Sstevel@tonic-gate 			dprint(1, ("addip: addr not unicast: %x:%x:%x:%x\n",
11227c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
11237c478bd9Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
11247c478bd9Sstevel@tonic-gate 			    cid);
11257c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
11267c478bd9Sstevel@tonic-gate 				*cont = -1;
11277c478bd9Sstevel@tonic-gate 			}
11287c478bd9Sstevel@tonic-gate 			return (mp);
11297c478bd9Sstevel@tonic-gate 		}
11307c478bd9Sstevel@tonic-gate 
11317c478bd9Sstevel@tonic-gate 	}
11327c478bd9Sstevel@tonic-gate 
11337c478bd9Sstevel@tonic-gate 	/* OK */
11347c478bd9Sstevel@tonic-gate 	*raddr = addr;
11357c478bd9Sstevel@tonic-gate 	return (NULL);
11367c478bd9Sstevel@tonic-gate }
11377c478bd9Sstevel@tonic-gate 
11387c478bd9Sstevel@tonic-gate /*
11397c478bd9Sstevel@tonic-gate  * Handles both add and delete address requests.
11407c478bd9Sstevel@tonic-gate  */
11417c478bd9Sstevel@tonic-gate static mblk_t *
11427c478bd9Sstevel@tonic-gate sctp_addip_req(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
11431d8c4025Svi     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *raddr)
11447c478bd9Sstevel@tonic-gate {
11457c478bd9Sstevel@tonic-gate 	in6_addr_t	addr;
11467c478bd9Sstevel@tonic-gate 	uint16_t	type;
11477c478bd9Sstevel@tonic-gate 	mblk_t		*mp;
11487c478bd9Sstevel@tonic-gate 	sctp_faddr_t	*nfp;
114945916cd2Sjpk 	sctp_parm_hdr_t	*oph = ph;
115045916cd2Sjpk 	int		err;
1151*f4b3ec61Sdh 	sctp_stack_t	*sctps = sctp->sctp_sctps;
11527c478bd9Sstevel@tonic-gate 
11537c478bd9Sstevel@tonic-gate 	*cont = 1;
11547c478bd9Sstevel@tonic-gate 
11557c478bd9Sstevel@tonic-gate 	/* Send back an authorization error if addip is disabled */
1156*f4b3ec61Sdh 	if (!sctps->sctps_addip_enabled) {
115745916cd2Sjpk 		err = SCTP_ERR_UNAUTHORIZED;
115845916cd2Sjpk 		goto error_handler;
11597c478bd9Sstevel@tonic-gate 	}
11607c478bd9Sstevel@tonic-gate 	/* Check input */
11617c478bd9Sstevel@tonic-gate 	if (ntohs(ph->sph_len) < (sizeof (*ph) * 2)) {
116245916cd2Sjpk 		err = SCTP_ERR_BAD_MANDPARM;
116345916cd2Sjpk 		goto error_handler;
11647c478bd9Sstevel@tonic-gate 	}
11657c478bd9Sstevel@tonic-gate 
11667c478bd9Sstevel@tonic-gate 	type = ntohs(ph->sph_type);
11677c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + sizeof (sctp_parm_hdr_t) +
11687c478bd9Sstevel@tonic-gate 	    sizeof (cid));
11697c478bd9Sstevel@tonic-gate 	mp = sctp_check_addip_addr(ph, oph, cont, cid, &addr);
11707c478bd9Sstevel@tonic-gate 	if (mp != NULL)
11717c478bd9Sstevel@tonic-gate 		return (mp);
11721d8c4025Svi 	if (raddr != NULL)
11731d8c4025Svi 		*raddr = addr;
11747c478bd9Sstevel@tonic-gate 	if (type == PARM_ADD_IP) {
11757c478bd9Sstevel@tonic-gate 		if (sctp_lookup_faddr(sctp, &addr) != NULL) {
11767c478bd9Sstevel@tonic-gate 			/* Address is already part of association */
11777c478bd9Sstevel@tonic-gate 			dprint(1, ("addip: addr already here: %x:%x:%x:%x\n",
11787c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
117945916cd2Sjpk 			err = SCTP_ERR_BAD_MANDPARM;
118045916cd2Sjpk 			goto error_handler;
11817c478bd9Sstevel@tonic-gate 		}
11827c478bd9Sstevel@tonic-gate 
11837c478bd9Sstevel@tonic-gate 		if (!act) {
11847c478bd9Sstevel@tonic-gate 			return (NULL);
11857c478bd9Sstevel@tonic-gate 		}
11867c478bd9Sstevel@tonic-gate 		/* Add the new address */
11877c478bd9Sstevel@tonic-gate 		mutex_enter(&sctp->sctp_conn_tfp->tf_lock);
118877c67f2fSkcpoon 		err = sctp_add_faddr(sctp, &addr, KM_NOSLEEP, B_FALSE);
118945916cd2Sjpk 		mutex_exit(&sctp->sctp_conn_tfp->tf_lock);
119045916cd2Sjpk 		if (err == ENOMEM) {
11917c478bd9Sstevel@tonic-gate 			/* no memory */
11927c478bd9Sstevel@tonic-gate 			*cont = -1;
11937c478bd9Sstevel@tonic-gate 			return (NULL);
11947c478bd9Sstevel@tonic-gate 		}
119545916cd2Sjpk 		if (err != 0) {
119645916cd2Sjpk 			err = SCTP_ERR_BAD_MANDPARM;
119745916cd2Sjpk 			goto error_handler;
119845916cd2Sjpk 		}
11997c478bd9Sstevel@tonic-gate 		sctp_intf_event(sctp, addr, SCTP_ADDR_ADDED, 0);
12007c478bd9Sstevel@tonic-gate 	} else if (type == PARM_DEL_IP) {
12017c478bd9Sstevel@tonic-gate 		nfp = sctp_lookup_faddr(sctp, &addr);
12027c478bd9Sstevel@tonic-gate 		if (nfp == NULL) {
12037c478bd9Sstevel@tonic-gate 			/*
12047c478bd9Sstevel@tonic-gate 			 * Peer is trying to delete an address that is not
12057c478bd9Sstevel@tonic-gate 			 * part of the association.
12067c478bd9Sstevel@tonic-gate 			 */
12077c478bd9Sstevel@tonic-gate 			dprint(1, ("delip: addr not here: %x:%x:%x:%x\n",
12087c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
120945916cd2Sjpk 			err = SCTP_ERR_BAD_MANDPARM;
121045916cd2Sjpk 			goto error_handler;
12117c478bd9Sstevel@tonic-gate 		}
12127c478bd9Sstevel@tonic-gate 		if (sctp->sctp_faddrs == nfp && nfp->next == NULL) {
12137c478bd9Sstevel@tonic-gate 			/* Peer is trying to delete last address */
12147c478bd9Sstevel@tonic-gate 			dprint(1, ("delip: del last addr: %x:%x:%x:%x\n",
12157c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
121645916cd2Sjpk 			err = SCTP_ERR_DEL_LAST_ADDR;
121745916cd2Sjpk 			goto error_handler;
12187c478bd9Sstevel@tonic-gate 		}
12197c478bd9Sstevel@tonic-gate 		if (nfp == fp) {
12207c478bd9Sstevel@tonic-gate 			/* Peer is trying to delete source address */
12217c478bd9Sstevel@tonic-gate 			dprint(1, ("delip: del src addr: %x:%x:%x:%x\n",
12227c478bd9Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
122345916cd2Sjpk 			err = SCTP_ERR_DEL_SRC_ADDR;
122445916cd2Sjpk 			goto error_handler;
12257c478bd9Sstevel@tonic-gate 		}
12267c478bd9Sstevel@tonic-gate 		if (!act) {
12277c478bd9Sstevel@tonic-gate 			return (NULL);
12287c478bd9Sstevel@tonic-gate 		}
12297c478bd9Sstevel@tonic-gate 
12307c478bd9Sstevel@tonic-gate 		sctp_unlink_faddr(sctp, nfp);
12317c478bd9Sstevel@tonic-gate 		/* Update all references to the deleted faddr */
12327c478bd9Sstevel@tonic-gate 		if (sctp->sctp_primary == nfp) {
12337c478bd9Sstevel@tonic-gate 			sctp->sctp_primary = fp;
12347c478bd9Sstevel@tonic-gate 		}
12357c478bd9Sstevel@tonic-gate 		if (sctp->sctp_current == nfp) {
123677c67f2fSkcpoon 			sctp_set_faddr_current(sctp, fp);
12377c478bd9Sstevel@tonic-gate 		}
12387c478bd9Sstevel@tonic-gate 		if (sctp->sctp_lastdata == nfp) {
12397c478bd9Sstevel@tonic-gate 			sctp->sctp_lastdata = fp;
12407c478bd9Sstevel@tonic-gate 		}
12417c478bd9Sstevel@tonic-gate 		if (sctp->sctp_shutdown_faddr == nfp) {
12427c478bd9Sstevel@tonic-gate 			sctp->sctp_shutdown_faddr = nfp;
12437c478bd9Sstevel@tonic-gate 		}
12447c478bd9Sstevel@tonic-gate 		if (sctp->sctp_lastfaddr == nfp) {
12457c478bd9Sstevel@tonic-gate 			for (fp = sctp->sctp_faddrs; fp->next; fp = fp->next)
12467c478bd9Sstevel@tonic-gate 				;
12477c478bd9Sstevel@tonic-gate 			sctp->sctp_lastfaddr = fp;
12487c478bd9Sstevel@tonic-gate 		}
12497c478bd9Sstevel@tonic-gate 		sctp_intf_event(sctp, addr, SCTP_ADDR_REMOVED, 0);
12507c478bd9Sstevel@tonic-gate 	} else {
12517c478bd9Sstevel@tonic-gate 		ASSERT(0);
12527c478bd9Sstevel@tonic-gate 	}
12537c478bd9Sstevel@tonic-gate 
12547c478bd9Sstevel@tonic-gate 	/* Successful, don't need to return anything. */
12557c478bd9Sstevel@tonic-gate 	return (NULL);
125645916cd2Sjpk 
125745916cd2Sjpk error_handler:
125845916cd2Sjpk 	mp = sctp_asconf_adderr(err, oph, cid);
125945916cd2Sjpk 	if (mp == NULL)
126045916cd2Sjpk 		*cont = -1;
126145916cd2Sjpk 	return (mp);
12627c478bd9Sstevel@tonic-gate }
12637c478bd9Sstevel@tonic-gate 
12647c478bd9Sstevel@tonic-gate /*
12657c478bd9Sstevel@tonic-gate  * Handles both add and delete IP ACKs.
12667c478bd9Sstevel@tonic-gate  */
12677c478bd9Sstevel@tonic-gate /*ARGSUSED*/
12687c478bd9Sstevel@tonic-gate static void
12697c478bd9Sstevel@tonic-gate sctp_addip_ack(sctp_t *sctp, sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph,
12701d8c4025Svi     sctp_faddr_t *fp, in6_addr_t *laddr)
12717c478bd9Sstevel@tonic-gate {
12727c478bd9Sstevel@tonic-gate 	in6_addr_t		addr;
12737c478bd9Sstevel@tonic-gate 	sctp_saddr_ipif_t	*sp;
12747c478bd9Sstevel@tonic-gate 	ipaddr_t		*addr4;
12757c478bd9Sstevel@tonic-gate 	boolean_t		backout = B_FALSE;
12767c478bd9Sstevel@tonic-gate 	uint16_t		type;
12777c478bd9Sstevel@tonic-gate 	uint32_t		*cid;
12787c478bd9Sstevel@tonic-gate 
12791d8c4025Svi 	/* could be an ASSERT */
12801d8c4025Svi 	if (laddr != NULL)
12811d8c4025Svi 		IN6_IPADDR_TO_V4MAPPED(0, laddr);
12821d8c4025Svi 
12837c478bd9Sstevel@tonic-gate 	/* If the peer doesn't understand Add-IP, remember it */
12847c478bd9Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type == htons(PARM_UNRECOGNIZED)) {
12857c478bd9Sstevel@tonic-gate 		sctp->sctp_understands_addip = B_FALSE;
12867c478bd9Sstevel@tonic-gate 		backout = B_TRUE;
12877c478bd9Sstevel@tonic-gate 	}
12887c478bd9Sstevel@tonic-gate 
12897c478bd9Sstevel@tonic-gate 	/*
12907c478bd9Sstevel@tonic-gate 	 * If OK, continue with the add / delete action, otherwise
12917c478bd9Sstevel@tonic-gate 	 * back out the action.
12927c478bd9Sstevel@tonic-gate 	 */
12937c478bd9Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type != htons(PARM_SUCCESS)) {
12947c478bd9Sstevel@tonic-gate 		backout = B_TRUE;
12957c478bd9Sstevel@tonic-gate 		sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
12967c478bd9Sstevel@tonic-gate 	}
12977c478bd9Sstevel@tonic-gate 
12987c478bd9Sstevel@tonic-gate 	type = ntohs(oph->sph_type);
12997c478bd9Sstevel@tonic-gate 	cid = (uint32_t *)(oph + 1);
13007c478bd9Sstevel@tonic-gate 	oph = (sctp_parm_hdr_t *)(cid + 1);
13017c478bd9Sstevel@tonic-gate 	if (oph->sph_type == htons(PARM_ADDR4)) {
13027c478bd9Sstevel@tonic-gate 		addr4 = (ipaddr_t *)(oph + 1);
13037c478bd9Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(*addr4, &addr);
13047c478bd9Sstevel@tonic-gate 	} else {
13057c478bd9Sstevel@tonic-gate 		bcopy(oph + 1, &addr, sizeof (addr));
13067c478bd9Sstevel@tonic-gate 	}
13077c478bd9Sstevel@tonic-gate 
13081d8c4025Svi 	/* Signifies that the address was sucessfully processed */
13091d8c4025Svi 	if (!backout && laddr != NULL)
13101d8c4025Svi 		*laddr = addr;
13111d8c4025Svi 
13121d8c4025Svi 	sp = sctp_saddr_lookup(sctp, &addr, 0);
13137c478bd9Sstevel@tonic-gate 	ASSERT(sp != NULL);
13147c478bd9Sstevel@tonic-gate 
13157c478bd9Sstevel@tonic-gate 	if (type == PARM_ADD_IP) {
13167c478bd9Sstevel@tonic-gate 		if (backout) {
13177c478bd9Sstevel@tonic-gate 			sctp_del_saddr(sctp, sp);
13187c478bd9Sstevel@tonic-gate 		} else {
13197c478bd9Sstevel@tonic-gate 			sp->saddr_ipif_dontsrc = 0;
13207c478bd9Sstevel@tonic-gate 		}
13217c478bd9Sstevel@tonic-gate 	} else if (type == PARM_DEL_IP) {
13227c478bd9Sstevel@tonic-gate 		if (backout) {
13237c478bd9Sstevel@tonic-gate 			sp->saddr_ipif_delete_pending = 0;
13247c478bd9Sstevel@tonic-gate 			sp->saddr_ipif_dontsrc = 0;
13257c478bd9Sstevel@tonic-gate 		} else {
13267c478bd9Sstevel@tonic-gate 			sctp_del_saddr(sctp, sp);
13277c478bd9Sstevel@tonic-gate 		}
13287c478bd9Sstevel@tonic-gate 	} else {
13297c478bd9Sstevel@tonic-gate 		/* Must be either PARM_ADD_IP or PARM_DEL_IP */
13307c478bd9Sstevel@tonic-gate 		ASSERT(0);
13317c478bd9Sstevel@tonic-gate 	}
13327c478bd9Sstevel@tonic-gate }
13337c478bd9Sstevel@tonic-gate 
13347c478bd9Sstevel@tonic-gate /*ARGSUSED*/
13357c478bd9Sstevel@tonic-gate static mblk_t *
13367c478bd9Sstevel@tonic-gate sctp_setprim_req(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
13371d8c4025Svi     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *raddr)
13387c478bd9Sstevel@tonic-gate {
13397c478bd9Sstevel@tonic-gate 	mblk_t *mp;
13407c478bd9Sstevel@tonic-gate 	sctp_parm_hdr_t *oph;
13417c478bd9Sstevel@tonic-gate 	sctp_faddr_t *nfp;
13427c478bd9Sstevel@tonic-gate 	in6_addr_t addr;
13437c478bd9Sstevel@tonic-gate 
13447c478bd9Sstevel@tonic-gate 	*cont = 1;
13457c478bd9Sstevel@tonic-gate 
13467c478bd9Sstevel@tonic-gate 	/* Check input */
13477c478bd9Sstevel@tonic-gate 	if (ntohs(ph->sph_len) < (sizeof (*ph) * 2)) {
13487c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, ph, cid);
13497c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
13507c478bd9Sstevel@tonic-gate 			*cont = -1;
13517c478bd9Sstevel@tonic-gate 		}
13527c478bd9Sstevel@tonic-gate 		return (mp);
13537c478bd9Sstevel@tonic-gate 	}
13547c478bd9Sstevel@tonic-gate 
13557c478bd9Sstevel@tonic-gate 	oph = ph;
13567c478bd9Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + sizeof (sctp_parm_hdr_t) +
13577c478bd9Sstevel@tonic-gate 	    sizeof (cid));
13587c478bd9Sstevel@tonic-gate 	mp = sctp_check_addip_addr(ph, oph, cont, cid, &addr);
13597c478bd9Sstevel@tonic-gate 	if (mp != NULL) {
13607c478bd9Sstevel@tonic-gate 		return (mp);
13617c478bd9Sstevel@tonic-gate 	}
13627c478bd9Sstevel@tonic-gate 
13637c478bd9Sstevel@tonic-gate 	nfp = sctp_lookup_faddr(sctp, &addr);
13647c478bd9Sstevel@tonic-gate 	if (nfp == NULL) {
13657c478bd9Sstevel@tonic-gate 		/*
13667c478bd9Sstevel@tonic-gate 		 * Peer is trying to set an address that is not
13677c478bd9Sstevel@tonic-gate 		 * part of the association.
13687c478bd9Sstevel@tonic-gate 		 */
13697c478bd9Sstevel@tonic-gate 		dprint(1, ("setprim: addr not here: %x:%x:%x:%x\n",
13707c478bd9Sstevel@tonic-gate 		    SCTP_PRINTADDR(addr)));
13717c478bd9Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
13727c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
13737c478bd9Sstevel@tonic-gate 			*cont = -1;
13747c478bd9Sstevel@tonic-gate 		}
13757c478bd9Sstevel@tonic-gate 		return (mp);
13767c478bd9Sstevel@tonic-gate 	}
13777c478bd9Sstevel@tonic-gate 
13787c478bd9Sstevel@tonic-gate 	sctp_intf_event(sctp, addr, SCTP_ADDR_MADE_PRIM, 0);
13797c478bd9Sstevel@tonic-gate 	sctp->sctp_primary = nfp;
13807c478bd9Sstevel@tonic-gate 	if (nfp->state != SCTP_FADDRS_ALIVE || nfp == sctp->sctp_current) {
13817c478bd9Sstevel@tonic-gate 		return (NULL);
13827c478bd9Sstevel@tonic-gate 	}
138377c67f2fSkcpoon 	sctp_set_faddr_current(sctp, nfp);
13847c478bd9Sstevel@tonic-gate 	return (NULL);
13857c478bd9Sstevel@tonic-gate }
13867c478bd9Sstevel@tonic-gate 
13877c478bd9Sstevel@tonic-gate /*ARGSUSED*/
13887c478bd9Sstevel@tonic-gate static void
13897c478bd9Sstevel@tonic-gate sctp_setprim_ack(sctp_t *sctp, sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph,
13901d8c4025Svi     sctp_faddr_t *fp, in6_addr_t *laddr)
13917c478bd9Sstevel@tonic-gate {
13927c478bd9Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type != htons(PARM_SUCCESS)) {
13937c478bd9Sstevel@tonic-gate 		/* If the peer doesn't understand Add-IP, remember it */
13947c478bd9Sstevel@tonic-gate 		if (ph->sph_type == htons(PARM_UNRECOGNIZED)) {
13957c478bd9Sstevel@tonic-gate 			sctp->sctp_understands_addip = B_FALSE;
13967c478bd9Sstevel@tonic-gate 		}
13977c478bd9Sstevel@tonic-gate 		sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
13987c478bd9Sstevel@tonic-gate 	}
13997c478bd9Sstevel@tonic-gate 
14007c478bd9Sstevel@tonic-gate 	/* On success we do nothing */
14017c478bd9Sstevel@tonic-gate }
14027c478bd9Sstevel@tonic-gate 
14037c478bd9Sstevel@tonic-gate int
14047c478bd9Sstevel@tonic-gate sctp_add_ip(sctp_t *sctp, const void *addrs, uint32_t cnt)
14057c478bd9Sstevel@tonic-gate {
14067c478bd9Sstevel@tonic-gate 	struct sockaddr_in	*sin4;
14077c478bd9Sstevel@tonic-gate 	struct sockaddr_in6	*sin6;
14087c478bd9Sstevel@tonic-gate 	mblk_t			*mp;
14097c478bd9Sstevel@tonic-gate 	int			error = 0;
14107c478bd9Sstevel@tonic-gate 	int			i;
14117c478bd9Sstevel@tonic-gate 	sctp_addip4_t		*ad4;
14127c478bd9Sstevel@tonic-gate 	sctp_addip6_t		*ad6;
14137c478bd9Sstevel@tonic-gate 	sctp_asconf_t		asc[1];
14147c478bd9Sstevel@tonic-gate 	uint16_t		type = htons(PARM_ADD_IP);
14157c478bd9Sstevel@tonic-gate 	boolean_t		v4mapped = B_FALSE;
14161d8c4025Svi 	sctp_cl_ainfo_t		*ainfo = NULL;
14177c478bd9Sstevel@tonic-gate 
14187c478bd9Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
14197c478bd9Sstevel@tonic-gate 	if (!sctp->sctp_understands_asconf || !sctp->sctp_understands_addip)
14207c478bd9Sstevel@tonic-gate 		return (EOPNOTSUPP);
14217c478bd9Sstevel@tonic-gate 
14221d8c4025Svi 	/*
14231d8c4025Svi 	 * On a clustered node, we need to pass this list when
14241d8c4025Svi 	 * we get an ASCONF-ACK. We only pre-allocate memory for the
14251d8c4025Svi 	 * list, but fill in the addresses when it is processed
14261d8c4025Svi 	 * successfully after we get an ASCONF-ACK.
14271d8c4025Svi 	 */
14281d8c4025Svi 	if (cl_sctp_assoc_change != NULL) {
14291d8c4025Svi 		ainfo = kmem_zalloc(sizeof (*ainfo), KM_SLEEP);
14301d8c4025Svi 		/*
14311d8c4025Svi 		 * Reserve space for the list of new addresses
14321d8c4025Svi 		 */
14331d8c4025Svi 		ainfo->sctp_cl_asize = sizeof (in6_addr_t) * cnt;
14341d8c4025Svi 		ainfo->sctp_cl_alist = kmem_alloc(ainfo->sctp_cl_asize,
14351d8c4025Svi 		    KM_SLEEP);
14361d8c4025Svi 	}
14371d8c4025Svi 
14387c478bd9Sstevel@tonic-gate 	sctp_asconf_init(asc);
14397c478bd9Sstevel@tonic-gate 
14407c478bd9Sstevel@tonic-gate 	/*
14417c478bd9Sstevel@tonic-gate 	 * Screen addresses:
14427c478bd9Sstevel@tonic-gate 	 * If adding:
14437c478bd9Sstevel@tonic-gate 	 *   o Must not already be a part of the association
14447c478bd9Sstevel@tonic-gate 	 *   o Must be AF_INET or AF_INET6
14457c478bd9Sstevel@tonic-gate 	 *   o XXX Must be valid source address for this node
14467c478bd9Sstevel@tonic-gate 	 *   o Must be unicast
14477c478bd9Sstevel@tonic-gate 	 *   o XXX Must fit scoping rules
14487c478bd9Sstevel@tonic-gate 	 * If deleting:
14497c478bd9Sstevel@tonic-gate 	 *   o Must be part of the association
14507c478bd9Sstevel@tonic-gate 	 */
14517c478bd9Sstevel@tonic-gate 	for (i = 0; i < cnt; i++) {
14527c478bd9Sstevel@tonic-gate 		switch (sctp->sctp_family) {
14537c478bd9Sstevel@tonic-gate 		case AF_INET:
14547c478bd9Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
14557c478bd9Sstevel@tonic-gate 			v4mapped = B_TRUE;
14567c478bd9Sstevel@tonic-gate 			break;
14577c478bd9Sstevel@tonic-gate 
14587c478bd9Sstevel@tonic-gate 		case AF_INET6:
14597c478bd9Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
14607c478bd9Sstevel@tonic-gate 			break;
14617c478bd9Sstevel@tonic-gate 		}
14627c478bd9Sstevel@tonic-gate 
14637c478bd9Sstevel@tonic-gate 		if (v4mapped) {
14647c478bd9Sstevel@tonic-gate 			mp = allocb(sizeof (*ad4), BPRI_MED);
14657c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
14667c478bd9Sstevel@tonic-gate 				error = ENOMEM;
14677c478bd9Sstevel@tonic-gate 				goto fail;
14687c478bd9Sstevel@tonic-gate 			}
14697c478bd9Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad4);
14707c478bd9Sstevel@tonic-gate 			ad4 = (sctp_addip4_t *)mp->b_rptr;
14717c478bd9Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_type = type;
14727c478bd9Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_len =
14737c478bd9Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
14747c478bd9Sstevel@tonic-gate 			    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
14757c478bd9Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
14767c478bd9Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
14777c478bd9Sstevel@tonic-gate 			ad4->sad4_addr = sin4->sin_addr.s_addr;
14787c478bd9Sstevel@tonic-gate 		} else {
14797c478bd9Sstevel@tonic-gate 			mp = allocb(sizeof (*ad6), BPRI_MED);
14807c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
14817c478bd9Sstevel@tonic-gate 				error = ENOMEM;
14827c478bd9Sstevel@tonic-gate 				goto fail;
14837c478bd9Sstevel@tonic-gate 			}
14847c478bd9Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad6);
14857c478bd9Sstevel@tonic-gate 			ad6 = (sctp_addip6_t *)mp->b_rptr;
14867c478bd9Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_type = type;
14877c478bd9Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_len =
14887c478bd9Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
14897c478bd9Sstevel@tonic-gate 			    PARM_ADDR6_LEN + sizeof (ad6->asconf_req_cid));
14907c478bd9Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
14917c478bd9Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
14927c478bd9Sstevel@tonic-gate 			ad6->sad6_addr = sin6->sin6_addr;
14937c478bd9Sstevel@tonic-gate 		}
14947c478bd9Sstevel@tonic-gate 		error = sctp_asconf_add(asc, mp);
14957c478bd9Sstevel@tonic-gate 		if (error != 0)
14967c478bd9Sstevel@tonic-gate 			goto fail;
14977c478bd9Sstevel@tonic-gate 	}
14981d8c4025Svi 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, ainfo);
14997c478bd9Sstevel@tonic-gate 	if (error != 0)
15007c478bd9Sstevel@tonic-gate 		goto fail;
15017c478bd9Sstevel@tonic-gate 
15027c478bd9Sstevel@tonic-gate 	return (0);
15037c478bd9Sstevel@tonic-gate 
15047c478bd9Sstevel@tonic-gate fail:
15051d8c4025Svi 	if (ainfo != NULL) {
15061d8c4025Svi 		kmem_free(ainfo->sctp_cl_alist, ainfo->sctp_cl_asize);
15071d8c4025Svi 		ainfo->sctp_cl_asize = 0;
15081d8c4025Svi 		kmem_free(ainfo, sizeof (*ainfo));
15091d8c4025Svi 	}
15107c478bd9Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
15117c478bd9Sstevel@tonic-gate 	return (error);
15127c478bd9Sstevel@tonic-gate }
15137c478bd9Sstevel@tonic-gate 
15147c478bd9Sstevel@tonic-gate int
15151d8c4025Svi sctp_del_ip(sctp_t *sctp, const void *addrs, uint32_t cnt, uchar_t *ulist,
15161d8c4025Svi     size_t usize)
15177c478bd9Sstevel@tonic-gate {
15187c478bd9Sstevel@tonic-gate 	struct sockaddr_in	*sin4;
15197c478bd9Sstevel@tonic-gate 	struct sockaddr_in6	*sin6;
15207c478bd9Sstevel@tonic-gate 	mblk_t			*mp;
15217c478bd9Sstevel@tonic-gate 	int			error = 0;
15227c478bd9Sstevel@tonic-gate 	int			i;
15237c478bd9Sstevel@tonic-gate 	int			addrcnt = 0;
15247c478bd9Sstevel@tonic-gate 	sctp_addip4_t		*ad4;
15257c478bd9Sstevel@tonic-gate 	sctp_addip6_t		*ad6;
15267c478bd9Sstevel@tonic-gate 	sctp_asconf_t		asc[1];
15277c478bd9Sstevel@tonic-gate 	sctp_saddr_ipif_t	*nsp;
15287c478bd9Sstevel@tonic-gate 	uint16_t		type = htons(PARM_DEL_IP);
15297c478bd9Sstevel@tonic-gate 	boolean_t		v4mapped = B_FALSE;
15307c478bd9Sstevel@tonic-gate 	in6_addr_t		addr;
15317c478bd9Sstevel@tonic-gate 	boolean_t		asconf = B_TRUE;
15321d8c4025Svi 	uint_t			ifindex;
15331d8c4025Svi 	sctp_cl_ainfo_t		*ainfo = NULL;
15341d8c4025Svi 	uchar_t			*p = ulist;
15351d8c4025Svi 	boolean_t		check_lport = B_FALSE;
1536*f4b3ec61Sdh 	sctp_stack_t		*sctps = sctp->sctp_sctps;
15377c478bd9Sstevel@tonic-gate 
15387c478bd9Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
1539*f4b3ec61Sdh 	if (sctp->sctp_state <= SCTPS_LISTEN || !sctps->sctps_addip_enabled ||
15407c478bd9Sstevel@tonic-gate 	    !sctp->sctp_understands_asconf || !sctp->sctp_understands_addip) {
15417c478bd9Sstevel@tonic-gate 		asconf = B_FALSE;
15427c478bd9Sstevel@tonic-gate 	}
15437c478bd9Sstevel@tonic-gate 
15441d8c4025Svi 	if (sctp->sctp_state > SCTPS_BOUND)
15451d8c4025Svi 		check_lport = B_TRUE;
15461d8c4025Svi 
15471d8c4025Svi 	if (asconf) {
15481d8c4025Svi 		/*
15491d8c4025Svi 		 * On a clustered node, we need to pass this list when
15501d8c4025Svi 		 * we get an ASCONF-ACK. We only pre-allocate memory for the
15511d8c4025Svi 		 * list, but fill in the addresses when it is processed
15521d8c4025Svi 		 * successfully after we get an ASCONF-ACK.
15531d8c4025Svi 		 */
15541d8c4025Svi 		if (cl_sctp_assoc_change != NULL) {
15551d8c4025Svi 			ainfo = kmem_alloc(sizeof (*ainfo), KM_SLEEP);
15561d8c4025Svi 			ainfo->sctp_cl_dsize = sizeof (in6_addr_t) * cnt;
15571d8c4025Svi 			ainfo->sctp_cl_dlist = kmem_alloc(ainfo->sctp_cl_dsize,
15581d8c4025Svi 			    KM_SLEEP);
15591d8c4025Svi 		}
15607c478bd9Sstevel@tonic-gate 		sctp_asconf_init(asc);
15611d8c4025Svi 	}
15627c478bd9Sstevel@tonic-gate 	/*
15637c478bd9Sstevel@tonic-gate 	 * Screen addresses:
15647c478bd9Sstevel@tonic-gate 	 * If adding:
15657c478bd9Sstevel@tonic-gate 	 *   o Must not already be a part of the association
15667c478bd9Sstevel@tonic-gate 	 *   o Must be AF_INET or AF_INET6
15677c478bd9Sstevel@tonic-gate 	 *   o XXX Must be valid source address for this node
15687c478bd9Sstevel@tonic-gate 	 *   o Must be unicast
15697c478bd9Sstevel@tonic-gate 	 *   o XXX Must fit scoping rules
15707c478bd9Sstevel@tonic-gate 	 * If deleting:
15717c478bd9Sstevel@tonic-gate 	 *   o Must be part of the association
15727c478bd9Sstevel@tonic-gate 	 */
15737c478bd9Sstevel@tonic-gate 	for (i = 0; i < cnt; i++) {
15741d8c4025Svi 		ifindex = 0;
15751d8c4025Svi 
15767c478bd9Sstevel@tonic-gate 		switch (sctp->sctp_family) {
15777c478bd9Sstevel@tonic-gate 		case AF_INET:
15787c478bd9Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
15791d8c4025Svi 			if (check_lport && sin4->sin_port != sctp->sctp_lport) {
15801d8c4025Svi 				error = EINVAL;
15811d8c4025Svi 				goto fail;
15821d8c4025Svi 			}
15837c478bd9Sstevel@tonic-gate 			v4mapped = B_TRUE;
15847c478bd9Sstevel@tonic-gate 			IN6_IPADDR_TO_V4MAPPED(sin4->sin_addr.s_addr, &addr);
15857c478bd9Sstevel@tonic-gate 			break;
15867c478bd9Sstevel@tonic-gate 
15877c478bd9Sstevel@tonic-gate 		case AF_INET6:
15887c478bd9Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
15891d8c4025Svi 			if (check_lport &&
15901d8c4025Svi 			    sin6->sin6_port != sctp->sctp_lport) {
15911d8c4025Svi 				error = EINVAL;
15921d8c4025Svi 				goto fail;
15931d8c4025Svi 			}
15947c478bd9Sstevel@tonic-gate 			addr = sin6->sin6_addr;
15951d8c4025Svi 			ifindex = sin6->sin6_scope_id;
15967c478bd9Sstevel@tonic-gate 			break;
15977c478bd9Sstevel@tonic-gate 		}
15981d8c4025Svi 		nsp = sctp_saddr_lookup(sctp, &addr, ifindex);
15997c478bd9Sstevel@tonic-gate 		if (nsp == NULL) {
16007c478bd9Sstevel@tonic-gate 			error = EADDRNOTAVAIL;
16017c478bd9Sstevel@tonic-gate 			goto fail;
16027c478bd9Sstevel@tonic-gate 		}
16037c478bd9Sstevel@tonic-gate 
16041d8c4025Svi 		/* Collect the list of addresses, if required */
16051d8c4025Svi 		if (usize >= sizeof (addr)) {
16061d8c4025Svi 			bcopy(&addr, p, sizeof (addr));
16071d8c4025Svi 			p += sizeof (addr);
16081d8c4025Svi 			usize -= sizeof (addr);
16091d8c4025Svi 		}
16107c478bd9Sstevel@tonic-gate 		if (!asconf)
16117c478bd9Sstevel@tonic-gate 			continue;
16127c478bd9Sstevel@tonic-gate 
16137c478bd9Sstevel@tonic-gate 		nsp->saddr_ipif_delete_pending = 1;
16147c478bd9Sstevel@tonic-gate 		nsp->saddr_ipif_dontsrc = 1;
16157c478bd9Sstevel@tonic-gate 		addrcnt++;
16167c478bd9Sstevel@tonic-gate 		if (v4mapped) {
16177c478bd9Sstevel@tonic-gate 			mp = allocb(sizeof (*ad4), BPRI_MED);
16187c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
16197c478bd9Sstevel@tonic-gate 				error = ENOMEM;
16207c478bd9Sstevel@tonic-gate 				goto fail;
16217c478bd9Sstevel@tonic-gate 			}
16227c478bd9Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad4);
16237c478bd9Sstevel@tonic-gate 			ad4 = (sctp_addip4_t *)mp->b_rptr;
16247c478bd9Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_type = type;
16257c478bd9Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_len =
16267c478bd9Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
16277c478bd9Sstevel@tonic-gate 			    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
16287c478bd9Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
16297c478bd9Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
16307c478bd9Sstevel@tonic-gate 			ad4->sad4_addr = sin4->sin_addr.s_addr;
16317c478bd9Sstevel@tonic-gate 		} else {
16327c478bd9Sstevel@tonic-gate 			mp = allocb(sizeof (*ad6), BPRI_MED);
16337c478bd9Sstevel@tonic-gate 			if (mp == NULL) {
16347c478bd9Sstevel@tonic-gate 				error = ENOMEM;
16357c478bd9Sstevel@tonic-gate 				goto fail;
16367c478bd9Sstevel@tonic-gate 			}
16377c478bd9Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad6);
16387c478bd9Sstevel@tonic-gate 			ad6 = (sctp_addip6_t *)mp->b_rptr;
16397c478bd9Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_type = type;
16407c478bd9Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_len =
16417c478bd9Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) + PARM_ADDR6_LEN +
16427c478bd9Sstevel@tonic-gate 			    sizeof (ad6->asconf_req_cid));
16437c478bd9Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
16447c478bd9Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
16457c478bd9Sstevel@tonic-gate 			ad6->sad6_addr = addr;
16467c478bd9Sstevel@tonic-gate 		}
16477c478bd9Sstevel@tonic-gate 
16487c478bd9Sstevel@tonic-gate 		error = sctp_asconf_add(asc, mp);
16497c478bd9Sstevel@tonic-gate 		if (error != 0)
16507c478bd9Sstevel@tonic-gate 			goto fail;
16517c478bd9Sstevel@tonic-gate 	}
16527c478bd9Sstevel@tonic-gate 
16537c478bd9Sstevel@tonic-gate 	if (!asconf) {
16547c478bd9Sstevel@tonic-gate 		sctp_del_saddr_list(sctp, addrs, cnt, B_FALSE);
16557c478bd9Sstevel@tonic-gate 		return (0);
16567c478bd9Sstevel@tonic-gate 	}
16571d8c4025Svi 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, ainfo);
16587c478bd9Sstevel@tonic-gate 	if (error != 0)
16597c478bd9Sstevel@tonic-gate 		goto fail;
16607c478bd9Sstevel@tonic-gate 	sctp_redo_faddr_srcs(sctp);
16617c478bd9Sstevel@tonic-gate 	return (0);
16627c478bd9Sstevel@tonic-gate 
16637c478bd9Sstevel@tonic-gate fail:
16641d8c4025Svi 	if (ainfo != NULL) {
16651d8c4025Svi 		kmem_free(ainfo->sctp_cl_dlist, ainfo->sctp_cl_dsize);
16661d8c4025Svi 		ainfo->sctp_cl_dsize = 0;
16671d8c4025Svi 		kmem_free(ainfo, sizeof (*ainfo));
16681d8c4025Svi 	}
16697c478bd9Sstevel@tonic-gate 	if (!asconf)
16707c478bd9Sstevel@tonic-gate 		return (error);
16717c478bd9Sstevel@tonic-gate 	for (i = 0; i < addrcnt; i++) {
16721d8c4025Svi 		ifindex = 0;
16731d8c4025Svi 
16747c478bd9Sstevel@tonic-gate 		switch (sctp->sctp_family) {
16757c478bd9Sstevel@tonic-gate 		case AF_INET:
16767c478bd9Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
16777c478bd9Sstevel@tonic-gate 			IN6_INADDR_TO_V4MAPPED(&(sin4->sin_addr), &addr);
16787c478bd9Sstevel@tonic-gate 			break;
16797c478bd9Sstevel@tonic-gate 		case AF_INET6:
16807c478bd9Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
16817c478bd9Sstevel@tonic-gate 			addr = sin6->sin6_addr;
16821d8c4025Svi 			ifindex = sin6->sin6_scope_id;
16837c478bd9Sstevel@tonic-gate 			break;
16847c478bd9Sstevel@tonic-gate 		}
16851d8c4025Svi 		nsp = sctp_saddr_lookup(sctp, &addr, ifindex);
16867c478bd9Sstevel@tonic-gate 		ASSERT(nsp != NULL);
16877c478bd9Sstevel@tonic-gate 		nsp->saddr_ipif_delete_pending = 0;
16887c478bd9Sstevel@tonic-gate 		nsp->saddr_ipif_dontsrc = 0;
16897c478bd9Sstevel@tonic-gate 	}
16907c478bd9Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
16917c478bd9Sstevel@tonic-gate 
16927c478bd9Sstevel@tonic-gate 	return (error);
16937c478bd9Sstevel@tonic-gate }
16947c478bd9Sstevel@tonic-gate 
16957c478bd9Sstevel@tonic-gate int
16967c478bd9Sstevel@tonic-gate sctp_set_peerprim(sctp_t *sctp, const void *inp, uint_t inlen)
16977c478bd9Sstevel@tonic-gate {
16987c478bd9Sstevel@tonic-gate 	const struct sctp_setprim	*prim = inp;
16997c478bd9Sstevel@tonic-gate 	const struct sockaddr_storage	*ss;
17007c478bd9Sstevel@tonic-gate 	struct sockaddr_in *sin;
17017c478bd9Sstevel@tonic-gate 	struct sockaddr_in6 *sin6;
17027c478bd9Sstevel@tonic-gate 	in6_addr_t addr;
17037c478bd9Sstevel@tonic-gate 	mblk_t *mp;
17047c478bd9Sstevel@tonic-gate 	sctp_saddr_ipif_t *sp;
17057c478bd9Sstevel@tonic-gate 	sctp_addip4_t *ad4;
17067c478bd9Sstevel@tonic-gate 	sctp_addip6_t *ad6;
17077c478bd9Sstevel@tonic-gate 	sctp_asconf_t asc[1];
17087c478bd9Sstevel@tonic-gate 	int error = 0;
17091d8c4025Svi 	uint_t	ifindex = 0;
17107c478bd9Sstevel@tonic-gate 
17117c478bd9Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
17127c478bd9Sstevel@tonic-gate 	if (!sctp->sctp_understands_asconf || !sctp->sctp_understands_addip) {
17137c478bd9Sstevel@tonic-gate 		return (EOPNOTSUPP);
17147c478bd9Sstevel@tonic-gate 	}
17157c478bd9Sstevel@tonic-gate 
17167c478bd9Sstevel@tonic-gate 	if (inlen < sizeof (*prim))
17177c478bd9Sstevel@tonic-gate 		return (EINVAL);
17187c478bd9Sstevel@tonic-gate 
17197c478bd9Sstevel@tonic-gate 	/* Don't do anything if we are not connected */
17207c478bd9Sstevel@tonic-gate 	if (sctp->sctp_state != SCTPS_ESTABLISHED)
17217c478bd9Sstevel@tonic-gate 		return (EINVAL);
17227c478bd9Sstevel@tonic-gate 
17237c478bd9Sstevel@tonic-gate 	ss = &prim->ssp_addr;
17247c478bd9Sstevel@tonic-gate 	sin = NULL;
17257c478bd9Sstevel@tonic-gate 	sin6 = NULL;
17267c478bd9Sstevel@tonic-gate 	if (ss->ss_family == AF_INET) {
17277c478bd9Sstevel@tonic-gate 		sin = (struct sockaddr_in *)ss;
17287c478bd9Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(sin->sin_addr.s_addr, &addr);
17297c478bd9Sstevel@tonic-gate 	} else if (ss->ss_family == AF_INET6) {
17307c478bd9Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)ss;
17317c478bd9Sstevel@tonic-gate 		addr = sin6->sin6_addr;
17321d8c4025Svi 		ifindex = sin6->sin6_scope_id;
17337c478bd9Sstevel@tonic-gate 	} else {
17347c478bd9Sstevel@tonic-gate 		return (EAFNOSUPPORT);
17357c478bd9Sstevel@tonic-gate 	}
17361d8c4025Svi 	sp = sctp_saddr_lookup(sctp, &addr, ifindex);
17377c478bd9Sstevel@tonic-gate 	if (sp == NULL)
17387c478bd9Sstevel@tonic-gate 		return (EADDRNOTAVAIL);
17397c478bd9Sstevel@tonic-gate 	sctp_asconf_init(asc);
17407c478bd9Sstevel@tonic-gate 	if (sin) {
17417c478bd9Sstevel@tonic-gate 		mp = allocb(sizeof (*ad4), BPRI_MED);
17427c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
17437c478bd9Sstevel@tonic-gate 			error = ENOMEM;
17447c478bd9Sstevel@tonic-gate 			goto fail;
17457c478bd9Sstevel@tonic-gate 		}
17467c478bd9Sstevel@tonic-gate 		mp->b_wptr += sizeof (*ad4);
17477c478bd9Sstevel@tonic-gate 		ad4 = (sctp_addip4_t *)mp->b_rptr;
17487c478bd9Sstevel@tonic-gate 		ad4->sad4_addip_ph.sph_type = htons(PARM_SET_PRIMARY);
17497c478bd9Sstevel@tonic-gate 		ad4->sad4_addip_ph.sph_len = htons(sizeof (sctp_parm_hdr_t) +
17507c478bd9Sstevel@tonic-gate 		    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
17517c478bd9Sstevel@tonic-gate 		ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
17527c478bd9Sstevel@tonic-gate 		ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
17537c478bd9Sstevel@tonic-gate 		ad4->sad4_addr = sin->sin_addr.s_addr;
17547c478bd9Sstevel@tonic-gate 	} else {
17557c478bd9Sstevel@tonic-gate 		mp = allocb(sizeof (*ad6), BPRI_MED);
17567c478bd9Sstevel@tonic-gate 		if (mp == NULL) {
17577c478bd9Sstevel@tonic-gate 			error = ENOMEM;
17587c478bd9Sstevel@tonic-gate 			goto fail;
17597c478bd9Sstevel@tonic-gate 		}
17607c478bd9Sstevel@tonic-gate 		mp->b_wptr += sizeof (*ad6);
17617c478bd9Sstevel@tonic-gate 		ad6 = (sctp_addip6_t *)mp->b_rptr;
17627c478bd9Sstevel@tonic-gate 		ad6->sad6_addip_ph.sph_type = htons(PARM_SET_PRIMARY);
17637c478bd9Sstevel@tonic-gate 		ad6->sad6_addip_ph.sph_len = htons(sizeof (sctp_parm_hdr_t) +
17647c478bd9Sstevel@tonic-gate 		    PARM_ADDR6_LEN + sizeof (ad6->asconf_req_cid));
17657c478bd9Sstevel@tonic-gate 		ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
17667c478bd9Sstevel@tonic-gate 		ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
17677c478bd9Sstevel@tonic-gate 		ad6->sad6_addr = sin6->sin6_addr;
17687c478bd9Sstevel@tonic-gate 	}
17697c478bd9Sstevel@tonic-gate 
17707c478bd9Sstevel@tonic-gate 	error = sctp_asconf_add(asc, mp);
17717c478bd9Sstevel@tonic-gate 	if (error != 0) {
17727c478bd9Sstevel@tonic-gate 		goto fail;
17737c478bd9Sstevel@tonic-gate 	}
17747c478bd9Sstevel@tonic-gate 
17751d8c4025Svi 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, NULL);
17767c478bd9Sstevel@tonic-gate 	if (error == 0) {
17777c478bd9Sstevel@tonic-gate 		return (0);
17787c478bd9Sstevel@tonic-gate 	}
17797c478bd9Sstevel@tonic-gate 
17807c478bd9Sstevel@tonic-gate fail:
17817c478bd9Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
17827c478bd9Sstevel@tonic-gate 	return (error);
17837c478bd9Sstevel@tonic-gate }
1784