1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346
|
/*
* $Id: IPQueue.xs,v 1.20 2001/11/24 09:29:58 jmorris Exp $
*
* Copyright (c) 2000 James Morris <jmorris@intercode.com.au>
* This code is GPL.
*/
#include "EXTERN.h"
#include "perl.h"
#include "XSUB.h"
#include "libipq.h"
#include <linux/netfilter.h>
static int
not_here(char *s)
{
croak("%s not implemented on this architecture", s);
return -1;
}
static double
constant(char *name, int arg)
{
errno = 0;
switch (*name) {
case 'A':
break;
case 'B':
break;
case 'C':
break;
case 'D':
break;
case 'E':
break;
case 'F':
break;
case 'G':
break;
case 'H':
break;
case 'I':
if (strEQ(name, "IPQ_COPY_META"))
return IPQ_COPY_META;
if (strEQ(name, "IPQ_COPY_PACKET"))
return IPQ_COPY_PACKET;
break;
break;
case 'J':
break;
case 'K':
break;
case 'L':
break;
case 'M':
break;
case 'N':
if (strEQ(name, "NF_ACCEPT"))
return NF_ACCEPT;
if (strEQ(name, "NF_DROP"))
return NF_DROP;
break;
case 'O':
break;
case 'P':
break;
case 'Q':
break;
case 'R':
break;
case 'S':
break;
case 'T':
break;
case 'U':
break;
case 'V':
break;
case 'W':
break;
case 'X':
break;
case 'Y':
break;
case 'Z':
break;
}
errno = EINVAL;
return 0;
not_there:
errno = ENOENT;
return 0;
}
/* IPQ context */
typedef struct ipqxs_ctx
{
struct ipq_handle *handle; /* C library handle */
unsigned char *buf; /* Packet buffer */
size_t buflen; /* Buffer size */
} ipqxs_ctx_t;
/* Packet message */
typedef ipq_packet_msg_t ipqxs_packet_t;
/* Minimum buffer size, big enough to hold metadata + netlink message header */
#define IPQXS_MIN_BUFLEN (sizeof (ipqxs_packet_t) + sizeof (struct nlmsghdr))
MODULE = IPTables::IPv4::IPQueue PACKAGE = IPTables::IPv4::IPQueue
double
constant(name,arg)
char *name
int arg
ipqxs_ctx_t *
_ipqxs_init_ctx(flags, protocol)
unsigned int flags
unsigned int protocol
CODE:
RETVAL = (ipqxs_ctx_t *)safemalloc(sizeof(ipqxs_ctx_t));
if (RETVAL == NULL) {
warn("Unable to allocate context\n");
XSRETURN_UNDEF;
}
Zero(RETVAL, 1, ipqxs_ctx_t);
RETVAL->handle = ipq_create_handle(flags, protocol);
if (RETVAL->handle == NULL) {
Safefree(RETVAL);
XSRETURN_UNDEF;
}
OUTPUT:
RETVAL
int
_ipqxs_set_mode (ctx, mode, range)
ipqxs_ctx_t *ctx
unsigned char mode
size_t range
PREINIT:
size_t newlen;
CODE:
newlen = IPQXS_MIN_BUFLEN + range;
if (ctx->buflen != newlen) {
ctx->buf = (unsigned char *)saferealloc(ctx->buf, newlen);
ctx->buflen = newlen;
if (ctx->buf == NULL) {
warn("Unable to allocate packet buffer");
ctx->buflen = 0;
XSRETURN_UNDEF;
}
}
RETVAL = ipq_set_mode(ctx->handle, mode, range);
OUTPUT:
RETVAL
ipqxs_packet_t *
_ipqxs_get_message (ctx, timeout)
ipqxs_ctx_t *ctx
int timeout
PREINIT:
int status;
char *CLASS = "IPTables::IPv4::IPQueue::Packet";
CODE:
status = ipq_read(ctx->handle, ctx->buf, ctx->buflen, timeout);
if (status <= 0)
XSRETURN_UNDEF;
switch (ipq_message_type(ctx->buf)) {
case IPQM_PACKET: {
ipq_packet_msg_t *pm = ipq_get_packet(ctx->buf);
unsigned int size = sizeof(ipqxs_packet_t) + pm->data_len;
RETVAL = (ipqxs_packet_t *)safemalloc(size);
if(RETVAL == NULL) {
warn("Unable to allocate packet");
XSRETURN_UNDEF;
}
Copy(pm, RETVAL, size, char);
break;
}
case NLMSG_ERROR:
errno = ipq_get_msgerr(ctx->buf);
XSRETURN_UNDEF;
default:
XSRETURN_UNDEF;
}
OUTPUT:
RETVAL
CLEANUP:
SvTAINTED_on(ST(0));
int
_ipqxs_set_verdict(ctx, id, verdict, data_len, buf)
ipqxs_ctx_t *ctx
unsigned long id
unsigned int verdict
size_t data_len
unsigned char *buf
CODE:
if (data_len == 0 || !buf)
buf = NULL;
RETVAL = ipq_set_verdict(ctx->handle, id, verdict, data_len, buf);
OUTPUT:
RETVAL
void
_ipqxs_destroy_ctx(ctx)
ipqxs_ctx_t *ctx
CODE:
if (ctx->buf)
Safefree(ctx->buf);
Safefree(ctx);
char *
_ipqxs_errstr()
CODE:
RETVAL = ipq_errstr();
OUTPUT:
RETVAL
MODULE = IPTables::IPv4::IPQueue PACKAGE = IPTables::IPv4::IPQueue::Packet
# Accessors
unsigned long
packet_id(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->packet_id;
OUTPUT:
RETVAL
unsigned long
mark(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->mark;
OUTPUT:
RETVAL
long
timestamp_sec(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->timestamp_sec;
OUTPUT:
RETVAL
long
timestamp_usec(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->timestamp_usec;
OUTPUT:
RETVAL
unsigned int
hook(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->hook;
OUTPUT:
RETVAL
char *
indev_name(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->indev_name;
OUTPUT:
RETVAL
char *
outdev_name(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->outdev_name;
OUTPUT:
RETVAL
unsigned short
hw_protocol(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->hw_protocol;
OUTPUT:
RETVAL
unsigned short
hw_type(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->hw_type;
OUTPUT:
RETVAL
unsigned char
hw_addrlen(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->hw_addrlen;
OUTPUT:
RETVAL
unsigned char *
hw_addr(self)
ipqxs_packet_t *self
CODE:
ST(0) = sv_newmortal();
sv_setpvn(ST(0), (void *)self->hw_addr, self->hw_addrlen);
size_t
data_len(self)
ipqxs_packet_t *self
CODE:
RETVAL = self->data_len;
OUTPUT:
RETVAL
unsigned char *
payload(self)
ipqxs_packet_t *self
CODE:
if (self->data_len == 0)
XSRETURN_UNDEF;
ST(0) = sv_newmortal();
sv_setpvn(ST(0), (void *)self->payload, self->data_len);
# Need to provide a destructor for this object.
void
DESTROY(self)
ipqxs_packet_t *self
CODE:
safefree((char *)self);
|