]> CyberLeo.Net >> Repos - FreeBSD/stable/10.git/blob - sys/netinet/sctp_sysctl.c
MFC r269858:
[FreeBSD/stable/10.git] / sys / netinet / sctp_sysctl.c
1 /*-
2  * Copyright (c) 2007, by Cisco Systems, Inc. All rights reserved.
3  * Copyright (c) 2008-2012, by Randall Stewart. All rights reserved.
4  * Copyright (c) 2008-2012, by Michael Tuexen. All rights reserved.
5  *
6  * Redistribution and use in source and binary forms, with or without
7  * modification, are permitted provided that the following conditions are met:
8  *
9  * a) Redistributions of source code must retain the above copyright notice,
10  *    this list of conditions and the following disclaimer.
11  *
12  * b) Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in
14  *    the documentation and/or other materials provided with the distribution.
15  *
16  * c) Neither the name of Cisco Systems, Inc. nor the names of its
17  *    contributors may be used to endorse or promote products derived
18  *    from this software without specific prior written permission.
19  *
20  * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
21  * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
22  * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23  * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
24  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
25  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
26  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
27  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
28  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
30  * THE POSSIBILITY OF SUCH DAMAGE.
31  */
32
33 #include <sys/cdefs.h>
34 __FBSDID("$FreeBSD$");
35
36 #include <netinet/sctp_os.h>
37 #include <netinet/sctp.h>
38 #include <netinet/sctp_constants.h>
39 #include <netinet/sctp_sysctl.h>
40 #include <netinet/sctp_pcb.h>
41 #include <netinet/sctputil.h>
42 #include <netinet/sctp_output.h>
43 #include <sys/smp.h>
44
45 /*
46  * sysctl tunable variables
47  */
48
49 void
50 sctp_init_sysctls()
51 {
52         printf("sctp_init_sysctls().\n");
53         SCTP_BASE_SYSCTL(sctp_sendspace) = SCTPCTL_MAXDGRAM_DEFAULT;
54         SCTP_BASE_SYSCTL(sctp_recvspace) = SCTPCTL_RECVSPACE_DEFAULT;
55         SCTP_BASE_SYSCTL(sctp_auto_asconf) = SCTPCTL_AUTOASCONF_DEFAULT;
56         SCTP_BASE_SYSCTL(sctp_multiple_asconfs) = SCTPCTL_MULTIPLEASCONFS_DEFAULT;
57         SCTP_BASE_SYSCTL(sctp_ecn_enable) = SCTPCTL_ECN_ENABLE_DEFAULT;
58         SCTP_BASE_SYSCTL(sctp_pr_enable) = SCTPCTL_PR_ENABLE_DEFAULT;
59         SCTP_BASE_SYSCTL(sctp_auth_disable) = SCTPCTL_AUTH_DISABLE_DEFAULT;
60         SCTP_BASE_SYSCTL(sctp_asconf_enable) = SCTPCTL_ASCONF_ENABLE_DEFAULT;
61         SCTP_BASE_SYSCTL(sctp_reconfig_enable) = SCTPCTL_RECONFIG_ENABLE_DEFAULT;
62         SCTP_BASE_SYSCTL(sctp_nrsack_enable) = SCTPCTL_NRSACK_ENABLE_DEFAULT;
63         SCTP_BASE_SYSCTL(sctp_pktdrop_enable) = SCTPCTL_PKTDROP_ENABLE_DEFAULT;
64         SCTP_BASE_SYSCTL(sctp_strict_sacks) = SCTPCTL_STRICT_SACKS_DEFAULT;
65         SCTP_BASE_SYSCTL(sctp_peer_chunk_oh) = SCTPCTL_PEER_CHKOH_DEFAULT;
66         SCTP_BASE_SYSCTL(sctp_max_burst_default) = SCTPCTL_MAXBURST_DEFAULT;
67         SCTP_BASE_SYSCTL(sctp_fr_max_burst_default) = SCTPCTL_FRMAXBURST_DEFAULT;
68         SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue) = SCTPCTL_MAXCHUNKS_DEFAULT;
69         SCTP_BASE_SYSCTL(sctp_hashtblsize) = SCTPCTL_TCBHASHSIZE_DEFAULT;
70         SCTP_BASE_SYSCTL(sctp_pcbtblsize) = SCTPCTL_PCBHASHSIZE_DEFAULT;
71         SCTP_BASE_SYSCTL(sctp_min_split_point) = SCTPCTL_MIN_SPLIT_POINT_DEFAULT;
72         SCTP_BASE_SYSCTL(sctp_chunkscale) = SCTPCTL_CHUNKSCALE_DEFAULT;
73         SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default) = SCTPCTL_DELAYED_SACK_TIME_DEFAULT;
74         SCTP_BASE_SYSCTL(sctp_sack_freq_default) = SCTPCTL_SACK_FREQ_DEFAULT;
75         SCTP_BASE_SYSCTL(sctp_system_free_resc_limit) = SCTPCTL_SYS_RESOURCE_DEFAULT;
76         SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit) = SCTPCTL_ASOC_RESOURCE_DEFAULT;
77         SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default) = SCTPCTL_HEARTBEAT_INTERVAL_DEFAULT;
78         SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default) = SCTPCTL_PMTU_RAISE_TIME_DEFAULT;
79         SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default) = SCTPCTL_SHUTDOWN_GUARD_TIME_DEFAULT;
80         SCTP_BASE_SYSCTL(sctp_secret_lifetime_default) = SCTPCTL_SECRET_LIFETIME_DEFAULT;
81         SCTP_BASE_SYSCTL(sctp_rto_max_default) = SCTPCTL_RTO_MAX_DEFAULT;
82         SCTP_BASE_SYSCTL(sctp_rto_min_default) = SCTPCTL_RTO_MIN_DEFAULT;
83         SCTP_BASE_SYSCTL(sctp_rto_initial_default) = SCTPCTL_RTO_INITIAL_DEFAULT;
84         SCTP_BASE_SYSCTL(sctp_init_rto_max_default) = SCTPCTL_INIT_RTO_MAX_DEFAULT;
85         SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default) = SCTPCTL_VALID_COOKIE_LIFE_DEFAULT;
86         SCTP_BASE_SYSCTL(sctp_init_rtx_max_default) = SCTPCTL_INIT_RTX_MAX_DEFAULT;
87         SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default) = SCTPCTL_ASSOC_RTX_MAX_DEFAULT;
88         SCTP_BASE_SYSCTL(sctp_path_rtx_max_default) = SCTPCTL_PATH_RTX_MAX_DEFAULT;
89         SCTP_BASE_SYSCTL(sctp_path_pf_threshold) = SCTPCTL_PATH_PF_THRESHOLD_DEFAULT;
90         SCTP_BASE_SYSCTL(sctp_add_more_threshold) = SCTPCTL_ADD_MORE_ON_OUTPUT_DEFAULT;
91         SCTP_BASE_SYSCTL(sctp_nr_incoming_streams_default) = SCTPCTL_INCOMING_STREAMS_DEFAULT;
92         SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default) = SCTPCTL_OUTGOING_STREAMS_DEFAULT;
93         SCTP_BASE_SYSCTL(sctp_cmt_on_off) = SCTPCTL_CMT_ON_OFF_DEFAULT;
94         SCTP_BASE_SYSCTL(sctp_cmt_use_dac) = SCTPCTL_CMT_USE_DAC_DEFAULT;
95         SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst) = SCTPCTL_CWND_MAXBURST_DEFAULT;
96         SCTP_BASE_SYSCTL(sctp_nat_friendly) = SCTPCTL_NAT_FRIENDLY_DEFAULT;
97         SCTP_BASE_SYSCTL(sctp_L2_abc_variable) = SCTPCTL_ABC_L_VAR_DEFAULT;
98         SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count) = SCTPCTL_MAX_CHAINED_MBUFS_DEFAULT;
99         SCTP_BASE_SYSCTL(sctp_do_drain) = SCTPCTL_DO_SCTP_DRAIN_DEFAULT;
100         SCTP_BASE_SYSCTL(sctp_hb_maxburst) = SCTPCTL_HB_MAX_BURST_DEFAULT;
101         SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit) = SCTPCTL_ABORT_AT_LIMIT_DEFAULT;
102         SCTP_BASE_SYSCTL(sctp_strict_data_order) = SCTPCTL_STRICT_DATA_ORDER_DEFAULT;
103         SCTP_BASE_SYSCTL(sctp_min_residual) = SCTPCTL_MIN_RESIDUAL_DEFAULT;
104         SCTP_BASE_SYSCTL(sctp_max_retran_chunk) = SCTPCTL_MAX_RETRAN_CHUNK_DEFAULT;
105         SCTP_BASE_SYSCTL(sctp_logging_level) = SCTPCTL_LOGGING_LEVEL_DEFAULT;
106         /* JRS - Variable for default congestion control module */
107         SCTP_BASE_SYSCTL(sctp_default_cc_module) = SCTPCTL_DEFAULT_CC_MODULE_DEFAULT;
108         /* RS - Variable for default stream scheduling module */
109         SCTP_BASE_SYSCTL(sctp_default_ss_module) = SCTPCTL_DEFAULT_SS_MODULE_DEFAULT;
110         SCTP_BASE_SYSCTL(sctp_default_frag_interleave) = SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DEFAULT;
111         SCTP_BASE_SYSCTL(sctp_mobility_base) = SCTPCTL_MOBILITY_BASE_DEFAULT;
112         SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff) = SCTPCTL_MOBILITY_FASTHANDOFF_DEFAULT;
113         SCTP_BASE_SYSCTL(sctp_vtag_time_wait) = SCTPCTL_TIME_WAIT_DEFAULT;
114         SCTP_BASE_SYSCTL(sctp_buffer_splitting) = SCTPCTL_BUFFER_SPLITTING_DEFAULT;
115         SCTP_BASE_SYSCTL(sctp_initial_cwnd) = SCTPCTL_INITIAL_CWND_DEFAULT;
116         SCTP_BASE_SYSCTL(sctp_rttvar_bw) = SCTPCTL_RTTVAR_BW_DEFAULT;
117         SCTP_BASE_SYSCTL(sctp_rttvar_rtt) = SCTPCTL_RTTVAR_RTT_DEFAULT;
118         SCTP_BASE_SYSCTL(sctp_rttvar_eqret) = SCTPCTL_RTTVAR_EQRET_DEFAULT;
119         SCTP_BASE_SYSCTL(sctp_steady_step) = SCTPCTL_RTTVAR_STEADYS_DEFAULT;
120         SCTP_BASE_SYSCTL(sctp_use_dccc_ecn) = SCTPCTL_RTTVAR_DCCCECN_DEFAULT;
121         SCTP_BASE_SYSCTL(sctp_blackhole) = SCTPCTL_BLACKHOLE_DEFAULT;
122         SCTP_BASE_SYSCTL(sctp_diag_info_code) = SCTPCTL_DIAG_INFO_CODE_DEFAULT;
123 #if defined(SCTP_LOCAL_TRACE_BUF)
124         memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
125 #endif
126         SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = SCTPCTL_UDP_TUNNELING_PORT_DEFAULT;
127         SCTP_BASE_SYSCTL(sctp_enable_sack_immediately) = SCTPCTL_SACK_IMMEDIATELY_ENABLE_DEFAULT;
128         SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly) = SCTPCTL_NAT_FRIENDLY_INITS_DEFAULT;
129 #if defined(SCTP_DEBUG)
130         SCTP_BASE_SYSCTL(sctp_debug_on) = SCTPCTL_DEBUG_DEFAULT;
131 printf("debug = %d.\n", SCTP_BASE_SYSCTL(sctp_debug_on));
132 #endif
133 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
134         SCTP_BASE_SYSCTL(sctp_output_unlocked) = SCTPCTL_OUTPUT_UNLOCKED_DEFAULT;
135 #endif
136 }
137
138
139 /* It returns an upper limit. No filtering is done here */
140 static unsigned int
141 number_of_addresses(struct sctp_inpcb *inp)
142 {
143         unsigned int cnt;
144         struct sctp_vrf *vrf;
145         struct sctp_ifn *sctp_ifn;
146         struct sctp_ifa *sctp_ifa;
147         struct sctp_laddr *laddr;
148
149         cnt = 0;
150         /* neither Mac OS X nor FreeBSD support mulitple routing functions */
151         if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
152                 return (0);
153         }
154         if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
155                 LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
156                         LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
157                                 switch (sctp_ifa->address.sa.sa_family) {
158 #ifdef INET
159                                 case AF_INET:
160 #endif
161 #ifdef INET6
162                                 case AF_INET6:
163 #endif
164                                         cnt++;
165                                         break;
166                                 default:
167                                         break;
168                                 }
169                         }
170                 }
171         } else {
172                 LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
173                         switch (laddr->ifa->address.sa.sa_family) {
174 #ifdef INET
175                         case AF_INET:
176 #endif
177 #ifdef INET6
178                         case AF_INET6:
179 #endif
180                                 cnt++;
181                                 break;
182                         default:
183                                 break;
184                         }
185                 }
186         }
187         return (cnt);
188 }
189
190 static int
191 copy_out_local_addresses(struct sctp_inpcb *inp, struct sctp_tcb *stcb, struct sysctl_req *req)
192 {
193         struct sctp_ifn *sctp_ifn;
194         struct sctp_ifa *sctp_ifa;
195         int loopback_scope, ipv4_local_scope, local_scope, site_scope;
196         int ipv4_addr_legal, ipv6_addr_legal;
197         struct sctp_vrf *vrf;
198         struct xsctp_laddr xladdr;
199         struct sctp_laddr *laddr;
200         int error;
201
202         /* Turn on all the appropriate scope */
203         if (stcb) {
204                 /* use association specific values */
205                 loopback_scope = stcb->asoc.scope.loopback_scope;
206                 ipv4_local_scope = stcb->asoc.scope.ipv4_local_scope;
207                 local_scope = stcb->asoc.scope.local_scope;
208                 site_scope = stcb->asoc.scope.site_scope;
209                 ipv4_addr_legal = stcb->asoc.scope.ipv4_addr_legal;
210                 ipv6_addr_legal = stcb->asoc.scope.ipv6_addr_legal;
211         } else {
212                 /* Use generic values for endpoints. */
213                 loopback_scope = 1;
214                 ipv4_local_scope = 1;
215                 local_scope = 1;
216                 site_scope = 1;
217                 if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) {
218                         ipv6_addr_legal = 1;
219                         if (SCTP_IPV6_V6ONLY(inp)) {
220                                 ipv4_addr_legal = 0;
221                         } else {
222                                 ipv4_addr_legal = 1;
223                         }
224                 } else {
225                         ipv6_addr_legal = 0;
226                         ipv4_addr_legal = 1;
227                 }
228         }
229
230         /* neither Mac OS X nor FreeBSD support mulitple routing functions */
231         if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
232                 SCTP_INP_RUNLOCK(inp);
233                 SCTP_INP_INFO_RUNLOCK();
234                 return (-1);
235         }
236         if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
237                 LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
238                         if ((loopback_scope == 0) && SCTP_IFN_IS_IFT_LOOP(sctp_ifn))
239                                 /* Skip loopback if loopback_scope not set */
240                                 continue;
241                         LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
242                                 if (stcb) {
243                                         /*
244                                          * ignore if blacklisted at
245                                          * association level
246                                          */
247                                         if (sctp_is_addr_restricted(stcb, sctp_ifa))
248                                                 continue;
249                                 }
250                                 switch (sctp_ifa->address.sa.sa_family) {
251 #ifdef INET
252                                 case AF_INET:
253                                         if (ipv4_addr_legal) {
254                                                 struct sockaddr_in *sin;
255
256                                                 sin = (struct sockaddr_in *)&sctp_ifa->address.sa;
257                                                 if (sin->sin_addr.s_addr == 0)
258                                                         continue;
259                                                 if (prison_check_ip4(inp->ip_inp.inp.inp_cred,
260                                                     &sin->sin_addr) != 0) {
261                                                         continue;
262                                                 }
263                                                 if ((ipv4_local_scope == 0) && (IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)))
264                                                         continue;
265                                         } else {
266                                                 continue;
267                                         }
268                                         break;
269 #endif
270 #ifdef INET6
271                                 case AF_INET6:
272                                         if (ipv6_addr_legal) {
273                                                 struct sockaddr_in6 *sin6;
274
275                                                 sin6 = (struct sockaddr_in6 *)&sctp_ifa->address.sa;
276                                                 if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr))
277                                                         continue;
278                                                 if (prison_check_ip6(inp->ip_inp.inp.inp_cred,
279                                                     &sin6->sin6_addr) != 0) {
280                                                         continue;
281                                                 }
282                                                 if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) {
283                                                         if (local_scope == 0)
284                                                                 continue;
285                                                         if (sin6->sin6_scope_id == 0) {
286                                                                 /*
287                                                                  * bad link
288                                                                  * local
289                                                                  * address
290                                                                  */
291                                                                 if (sa6_recoverscope(sin6) != 0)
292                                                                         continue;
293                                                         }
294                                                 }
295                                                 if ((site_scope == 0) && (IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)))
296                                                         continue;
297                                         } else {
298                                                 continue;
299                                         }
300                                         break;
301 #endif
302                                 default:
303                                         continue;
304                                 }
305                                 memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
306                                 memcpy((void *)&xladdr.address, (const void *)&sctp_ifa->address, sizeof(union sctp_sockstore));
307                                 SCTP_INP_RUNLOCK(inp);
308                                 SCTP_INP_INFO_RUNLOCK();
309                                 error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
310                                 if (error) {
311                                         return (error);
312                                 } else {
313                                         SCTP_INP_INFO_RLOCK();
314                                         SCTP_INP_RLOCK(inp);
315                                 }
316                         }
317                 }
318         } else {
319                 LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
320                         /* ignore if blacklisted at association level */
321                         if (stcb && sctp_is_addr_restricted(stcb, laddr->ifa))
322                                 continue;
323                         memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
324                         memcpy((void *)&xladdr.address, (const void *)&laddr->ifa->address, sizeof(union sctp_sockstore));
325                         xladdr.start_time.tv_sec = (uint32_t) laddr->start_time.tv_sec;
326                         xladdr.start_time.tv_usec = (uint32_t) laddr->start_time.tv_usec;
327                         SCTP_INP_RUNLOCK(inp);
328                         SCTP_INP_INFO_RUNLOCK();
329                         error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
330                         if (error) {
331                                 return (error);
332                         } else {
333                                 SCTP_INP_INFO_RLOCK();
334                                 SCTP_INP_RLOCK(inp);
335                         }
336                 }
337         }
338         memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
339         xladdr.last = 1;
340         SCTP_INP_RUNLOCK(inp);
341         SCTP_INP_INFO_RUNLOCK();
342         error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
343
344         if (error) {
345                 return (error);
346         } else {
347                 SCTP_INP_INFO_RLOCK();
348                 SCTP_INP_RLOCK(inp);
349                 return (0);
350         }
351 }
352
353 /*
354  * sysctl functions
355  */
356 static int
357 sctp_assoclist(SYSCTL_HANDLER_ARGS)
358 {
359         unsigned int number_of_endpoints;
360         unsigned int number_of_local_addresses;
361         unsigned int number_of_associations;
362         unsigned int number_of_remote_addresses;
363         unsigned int n;
364         int error;
365         struct sctp_inpcb *inp;
366         struct sctp_tcb *stcb;
367         struct sctp_nets *net;
368         struct xsctp_inpcb xinpcb;
369         struct xsctp_tcb xstcb;
370         struct xsctp_raddr xraddr;
371         struct socket *so;
372
373         number_of_endpoints = 0;
374         number_of_local_addresses = 0;
375         number_of_associations = 0;
376         number_of_remote_addresses = 0;
377
378         SCTP_INP_INFO_RLOCK();
379         if (req->oldptr == USER_ADDR_NULL) {
380                 LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
381                         SCTP_INP_RLOCK(inp);
382                         number_of_endpoints++;
383                         number_of_local_addresses += number_of_addresses(inp);
384                         LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
385                                 number_of_associations++;
386                                 number_of_local_addresses += number_of_addresses(inp);
387                                 TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
388                                         number_of_remote_addresses++;
389                                 }
390                         }
391                         SCTP_INP_RUNLOCK(inp);
392                 }
393                 SCTP_INP_INFO_RUNLOCK();
394                 n = (number_of_endpoints + 1) * sizeof(struct xsctp_inpcb) +
395                     (number_of_local_addresses + number_of_endpoints + number_of_associations) * sizeof(struct xsctp_laddr) +
396                     (number_of_associations + number_of_endpoints) * sizeof(struct xsctp_tcb) +
397                     (number_of_remote_addresses + number_of_associations) * sizeof(struct xsctp_raddr);
398
399                 /* request some more memory than needed */
400                 req->oldidx = (n + n / 8);
401                 return (0);
402         }
403         if (req->newptr != USER_ADDR_NULL) {
404                 SCTP_INP_INFO_RUNLOCK();
405                 SCTP_LTRACE_ERR_RET(NULL, NULL, NULL, SCTP_FROM_SCTP_SYSCTL, EPERM);
406                 return (EPERM);
407         }
408         LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
409                 SCTP_INP_RLOCK(inp);
410                 if (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_ALLGONE) {
411                         /* if its allgone it is being freed - skip it  */
412                         goto skip;
413                 }
414                 xinpcb.last = 0;
415                 xinpcb.local_port = ntohs(inp->sctp_lport);
416                 xinpcb.flags = inp->sctp_flags;
417                 xinpcb.features = inp->sctp_features;
418                 xinpcb.total_sends = inp->total_sends;
419                 xinpcb.total_recvs = inp->total_recvs;
420                 xinpcb.total_nospaces = inp->total_nospaces;
421                 xinpcb.fragmentation_point = inp->sctp_frag_point;
422                 so = inp->sctp_socket;
423                 if ((so == NULL) ||
424                     (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_GONE)) {
425                         xinpcb.qlen = 0;
426                         xinpcb.maxqlen = 0;
427                 } else {
428                         xinpcb.qlen = so->so_qlen;
429                         xinpcb.maxqlen = so->so_qlimit;
430                 }
431                 SCTP_INP_INCR_REF(inp);
432                 SCTP_INP_RUNLOCK(inp);
433                 SCTP_INP_INFO_RUNLOCK();
434                 error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
435                 if (error) {
436                         SCTP_INP_DECR_REF(inp);
437                         return (error);
438                 }
439                 SCTP_INP_INFO_RLOCK();
440                 SCTP_INP_RLOCK(inp);
441                 error = copy_out_local_addresses(inp, NULL, req);
442                 if (error) {
443                         SCTP_INP_DECR_REF(inp);
444                         return (error);
445                 }
446                 LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
447                         SCTP_TCB_LOCK(stcb);
448                         atomic_add_int(&stcb->asoc.refcnt, 1);
449                         SCTP_TCB_UNLOCK(stcb);
450                         xstcb.last = 0;
451                         xstcb.local_port = ntohs(inp->sctp_lport);
452                         xstcb.remote_port = ntohs(stcb->rport);
453                         if (stcb->asoc.primary_destination != NULL)
454                                 xstcb.primary_addr = stcb->asoc.primary_destination->ro._l_addr;
455                         xstcb.heartbeat_interval = stcb->asoc.heart_beat_delay;
456                         xstcb.state = SCTP_GET_STATE(&stcb->asoc);      /* FIXME */
457                         /* 7.0 does not support these */
458                         xstcb.assoc_id = sctp_get_associd(stcb);
459                         xstcb.peers_rwnd = stcb->asoc.peers_rwnd;
460                         xstcb.in_streams = stcb->asoc.streamincnt;
461                         xstcb.out_streams = stcb->asoc.streamoutcnt;
462                         xstcb.max_nr_retrans = stcb->asoc.overall_error_count;
463                         xstcb.primary_process = 0;      /* not really supported
464                                                          * yet */
465                         xstcb.T1_expireries = stcb->asoc.timoinit + stcb->asoc.timocookie;
466                         xstcb.T2_expireries = stcb->asoc.timoshutdown + stcb->asoc.timoshutdownack;
467                         xstcb.retransmitted_tsns = stcb->asoc.marked_retrans;
468                         xstcb.start_time.tv_sec = (uint32_t) stcb->asoc.start_time.tv_sec;
469                         xstcb.start_time.tv_usec = (uint32_t) stcb->asoc.start_time.tv_usec;
470                         xstcb.discontinuity_time.tv_sec = (uint32_t) stcb->asoc.discontinuity_time.tv_sec;
471                         xstcb.discontinuity_time.tv_usec = (uint32_t) stcb->asoc.discontinuity_time.tv_usec;
472                         xstcb.total_sends = stcb->total_sends;
473                         xstcb.total_recvs = stcb->total_recvs;
474                         xstcb.local_tag = stcb->asoc.my_vtag;
475                         xstcb.remote_tag = stcb->asoc.peer_vtag;
476                         xstcb.initial_tsn = stcb->asoc.init_seq_number;
477                         xstcb.highest_tsn = stcb->asoc.sending_seq - 1;
478                         xstcb.cumulative_tsn = stcb->asoc.last_acked_seq;
479                         xstcb.cumulative_tsn_ack = stcb->asoc.cumulative_tsn;
480                         xstcb.mtu = stcb->asoc.smallest_mtu;
481                         xstcb.refcnt = stcb->asoc.refcnt;
482                         SCTP_INP_RUNLOCK(inp);
483                         SCTP_INP_INFO_RUNLOCK();
484                         error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
485                         if (error) {
486                                 SCTP_INP_DECR_REF(inp);
487                                 atomic_subtract_int(&stcb->asoc.refcnt, 1);
488                                 return (error);
489                         }
490                         SCTP_INP_INFO_RLOCK();
491                         SCTP_INP_RLOCK(inp);
492                         error = copy_out_local_addresses(inp, stcb, req);
493                         if (error) {
494                                 SCTP_INP_DECR_REF(inp);
495                                 atomic_subtract_int(&stcb->asoc.refcnt, 1);
496                                 return (error);
497                         }
498                         TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
499                                 xraddr.last = 0;
500                                 xraddr.address = net->ro._l_addr;
501                                 xraddr.active = ((net->dest_state & SCTP_ADDR_REACHABLE) == SCTP_ADDR_REACHABLE);
502                                 xraddr.confirmed = ((net->dest_state & SCTP_ADDR_UNCONFIRMED) == 0);
503                                 xraddr.heartbeat_enabled = ((net->dest_state & SCTP_ADDR_NOHB) == 0);
504                                 xraddr.potentially_failed = ((net->dest_state & SCTP_ADDR_PF) == SCTP_ADDR_PF);
505                                 xraddr.rto = net->RTO;
506                                 xraddr.max_path_rtx = net->failure_threshold;
507                                 xraddr.rtx = net->marked_retrans;
508                                 xraddr.error_counter = net->error_count;
509                                 xraddr.cwnd = net->cwnd;
510                                 xraddr.flight_size = net->flight_size;
511                                 xraddr.mtu = net->mtu;
512                                 xraddr.rtt = net->rtt / 1000;
513                                 xraddr.heartbeat_interval = net->heart_beat_delay;
514                                 xraddr.start_time.tv_sec = (uint32_t) net->start_time.tv_sec;
515                                 xraddr.start_time.tv_usec = (uint32_t) net->start_time.tv_usec;
516                                 SCTP_INP_RUNLOCK(inp);
517                                 SCTP_INP_INFO_RUNLOCK();
518                                 error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
519                                 if (error) {
520                                         SCTP_INP_DECR_REF(inp);
521                                         atomic_subtract_int(&stcb->asoc.refcnt, 1);
522                                         return (error);
523                                 }
524                                 SCTP_INP_INFO_RLOCK();
525                                 SCTP_INP_RLOCK(inp);
526                         }
527                         atomic_subtract_int(&stcb->asoc.refcnt, 1);
528                         memset((void *)&xraddr, 0, sizeof(struct xsctp_raddr));
529                         xraddr.last = 1;
530                         SCTP_INP_RUNLOCK(inp);
531                         SCTP_INP_INFO_RUNLOCK();
532                         error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
533                         if (error) {
534                                 SCTP_INP_DECR_REF(inp);
535                                 return (error);
536                         }
537                         SCTP_INP_INFO_RLOCK();
538                         SCTP_INP_RLOCK(inp);
539                 }
540                 SCTP_INP_DECR_REF(inp);
541                 SCTP_INP_RUNLOCK(inp);
542                 SCTP_INP_INFO_RUNLOCK();
543                 memset((void *)&xstcb, 0, sizeof(struct xsctp_tcb));
544                 xstcb.last = 1;
545                 error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
546                 if (error) {
547                         return (error);
548                 }
549 skip:
550                 SCTP_INP_INFO_RLOCK();
551         }
552         SCTP_INP_INFO_RUNLOCK();
553
554         memset((void *)&xinpcb, 0, sizeof(struct xsctp_inpcb));
555         xinpcb.last = 1;
556         error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
557         return (error);
558 }
559
560
561 #define RANGECHK(var, min, max) \
562         if ((var) < (min)) { (var) = (min); } \
563         else if ((var) > (max)) { (var) = (max); }
564
565 static int
566 sysctl_sctp_udp_tunneling_check(SYSCTL_HANDLER_ARGS)
567 {
568         int error;
569         uint32_t old_sctp_udp_tunneling_port;
570
571         SCTP_INP_INFO_RLOCK();
572         old_sctp_udp_tunneling_port = SCTP_BASE_SYSCTL(sctp_udp_tunneling_port);
573         SCTP_INP_INFO_RUNLOCK();
574         error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
575         if (error == 0) {
576                 RANGECHK(SCTP_BASE_SYSCTL(sctp_udp_tunneling_port), SCTPCTL_UDP_TUNNELING_PORT_MIN, SCTPCTL_UDP_TUNNELING_PORT_MAX);
577                 if (old_sctp_udp_tunneling_port == SCTP_BASE_SYSCTL(sctp_udp_tunneling_port)) {
578                         error = 0;
579                         goto out;
580                 }
581                 SCTP_INP_INFO_WLOCK();
582                 if (old_sctp_udp_tunneling_port) {
583                         sctp_over_udp_stop();
584                 }
585                 if (SCTP_BASE_SYSCTL(sctp_udp_tunneling_port)) {
586                         if (sctp_over_udp_start()) {
587                                 SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = 0;
588                         }
589                 }
590                 SCTP_INP_INFO_WUNLOCK();
591         }
592 out:
593         return (error);
594 }
595
596
597 static int
598 sysctl_sctp_check(SYSCTL_HANDLER_ARGS)
599 {
600         int error;
601
602         error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
603         if (error == 0) {
604                 RANGECHK(SCTP_BASE_SYSCTL(sctp_sendspace), SCTPCTL_MAXDGRAM_MIN, SCTPCTL_MAXDGRAM_MAX);
605                 RANGECHK(SCTP_BASE_SYSCTL(sctp_recvspace), SCTPCTL_RECVSPACE_MIN, SCTPCTL_RECVSPACE_MAX);
606                 RANGECHK(SCTP_BASE_SYSCTL(sctp_auto_asconf), SCTPCTL_AUTOASCONF_MIN, SCTPCTL_AUTOASCONF_MAX);
607                 RANGECHK(SCTP_BASE_SYSCTL(sctp_ecn_enable), SCTPCTL_ECN_ENABLE_MIN, SCTPCTL_ECN_ENABLE_MAX);
608                 RANGECHK(SCTP_BASE_SYSCTL(sctp_pr_enable), SCTPCTL_PR_ENABLE_MIN, SCTPCTL_PR_ENABLE_MAX);
609                 RANGECHK(SCTP_BASE_SYSCTL(sctp_reconfig_enable), SCTPCTL_RECONFIG_ENABLE_MIN, SCTPCTL_RECONFIG_ENABLE_MAX);
610                 RANGECHK(SCTP_BASE_SYSCTL(sctp_nrsack_enable), SCTPCTL_NRSACK_ENABLE_MIN, SCTPCTL_NRSACK_ENABLE_MAX);
611                 RANGECHK(SCTP_BASE_SYSCTL(sctp_pktdrop_enable), SCTPCTL_PKTDROP_ENABLE_MIN, SCTPCTL_PKTDROP_ENABLE_MAX);
612                 RANGECHK(SCTP_BASE_SYSCTL(sctp_strict_sacks), SCTPCTL_STRICT_SACKS_MIN, SCTPCTL_STRICT_SACKS_MAX);
613                 RANGECHK(SCTP_BASE_SYSCTL(sctp_peer_chunk_oh), SCTPCTL_PEER_CHKOH_MIN, SCTPCTL_PEER_CHKOH_MAX);
614                 RANGECHK(SCTP_BASE_SYSCTL(sctp_max_burst_default), SCTPCTL_MAXBURST_MIN, SCTPCTL_MAXBURST_MAX);
615                 RANGECHK(SCTP_BASE_SYSCTL(sctp_fr_max_burst_default), SCTPCTL_FRMAXBURST_MIN, SCTPCTL_FRMAXBURST_MAX);
616                 RANGECHK(SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue), SCTPCTL_MAXCHUNKS_MIN, SCTPCTL_MAXCHUNKS_MAX);
617                 RANGECHK(SCTP_BASE_SYSCTL(sctp_hashtblsize), SCTPCTL_TCBHASHSIZE_MIN, SCTPCTL_TCBHASHSIZE_MAX);
618                 RANGECHK(SCTP_BASE_SYSCTL(sctp_pcbtblsize), SCTPCTL_PCBHASHSIZE_MIN, SCTPCTL_PCBHASHSIZE_MAX);
619                 RANGECHK(SCTP_BASE_SYSCTL(sctp_min_split_point), SCTPCTL_MIN_SPLIT_POINT_MIN, SCTPCTL_MIN_SPLIT_POINT_MAX);
620                 RANGECHK(SCTP_BASE_SYSCTL(sctp_chunkscale), SCTPCTL_CHUNKSCALE_MIN, SCTPCTL_CHUNKSCALE_MAX);
621                 RANGECHK(SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default), SCTPCTL_DELAYED_SACK_TIME_MIN, SCTPCTL_DELAYED_SACK_TIME_MAX);
622                 RANGECHK(SCTP_BASE_SYSCTL(sctp_sack_freq_default), SCTPCTL_SACK_FREQ_MIN, SCTPCTL_SACK_FREQ_MAX);
623                 RANGECHK(SCTP_BASE_SYSCTL(sctp_system_free_resc_limit), SCTPCTL_SYS_RESOURCE_MIN, SCTPCTL_SYS_RESOURCE_MAX);
624                 RANGECHK(SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit), SCTPCTL_ASOC_RESOURCE_MIN, SCTPCTL_ASOC_RESOURCE_MAX);
625                 RANGECHK(SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default), SCTPCTL_HEARTBEAT_INTERVAL_MIN, SCTPCTL_HEARTBEAT_INTERVAL_MAX);
626                 RANGECHK(SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default), SCTPCTL_PMTU_RAISE_TIME_MIN, SCTPCTL_PMTU_RAISE_TIME_MAX);
627                 RANGECHK(SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default), SCTPCTL_SHUTDOWN_GUARD_TIME_MIN, SCTPCTL_SHUTDOWN_GUARD_TIME_MAX);
628                 RANGECHK(SCTP_BASE_SYSCTL(sctp_secret_lifetime_default), SCTPCTL_SECRET_LIFETIME_MIN, SCTPCTL_SECRET_LIFETIME_MAX);
629                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_max_default), SCTPCTL_RTO_MAX_MIN, SCTPCTL_RTO_MAX_MAX);
630                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_min_default), SCTPCTL_RTO_MIN_MIN, SCTPCTL_RTO_MIN_MAX);
631                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rto_initial_default), SCTPCTL_RTO_INITIAL_MIN, SCTPCTL_RTO_INITIAL_MAX);
632                 RANGECHK(SCTP_BASE_SYSCTL(sctp_init_rto_max_default), SCTPCTL_INIT_RTO_MAX_MIN, SCTPCTL_INIT_RTO_MAX_MAX);
633                 RANGECHK(SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default), SCTPCTL_VALID_COOKIE_LIFE_MIN, SCTPCTL_VALID_COOKIE_LIFE_MAX);
634                 RANGECHK(SCTP_BASE_SYSCTL(sctp_init_rtx_max_default), SCTPCTL_INIT_RTX_MAX_MIN, SCTPCTL_INIT_RTX_MAX_MAX);
635                 RANGECHK(SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default), SCTPCTL_ASSOC_RTX_MAX_MIN, SCTPCTL_ASSOC_RTX_MAX_MAX);
636                 RANGECHK(SCTP_BASE_SYSCTL(sctp_path_rtx_max_default), SCTPCTL_PATH_RTX_MAX_MIN, SCTPCTL_PATH_RTX_MAX_MAX);
637                 RANGECHK(SCTP_BASE_SYSCTL(sctp_path_pf_threshold), SCTPCTL_PATH_PF_THRESHOLD_MIN, SCTPCTL_PATH_PF_THRESHOLD_MAX);
638                 RANGECHK(SCTP_BASE_SYSCTL(sctp_add_more_threshold), SCTPCTL_ADD_MORE_ON_OUTPUT_MIN, SCTPCTL_ADD_MORE_ON_OUTPUT_MAX);
639                 RANGECHK(SCTP_BASE_SYSCTL(sctp_nr_incoming_streams_default), SCTPCTL_INCOMING_STREAMS_MIN, SCTPCTL_INCOMING_STREAMS_MAX);
640                 RANGECHK(SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default), SCTPCTL_OUTGOING_STREAMS_MIN, SCTPCTL_OUTGOING_STREAMS_MAX);
641                 RANGECHK(SCTP_BASE_SYSCTL(sctp_cmt_on_off), SCTPCTL_CMT_ON_OFF_MIN, SCTPCTL_CMT_ON_OFF_MAX);
642                 RANGECHK(SCTP_BASE_SYSCTL(sctp_cmt_use_dac), SCTPCTL_CMT_USE_DAC_MIN, SCTPCTL_CMT_USE_DAC_MAX);
643                 RANGECHK(SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst), SCTPCTL_CWND_MAXBURST_MIN, SCTPCTL_CWND_MAXBURST_MAX);
644                 RANGECHK(SCTP_BASE_SYSCTL(sctp_nat_friendly), SCTPCTL_NAT_FRIENDLY_MIN, SCTPCTL_NAT_FRIENDLY_MAX);
645                 RANGECHK(SCTP_BASE_SYSCTL(sctp_L2_abc_variable), SCTPCTL_ABC_L_VAR_MIN, SCTPCTL_ABC_L_VAR_MAX);
646                 RANGECHK(SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count), SCTPCTL_MAX_CHAINED_MBUFS_MIN, SCTPCTL_MAX_CHAINED_MBUFS_MAX);
647                 RANGECHK(SCTP_BASE_SYSCTL(sctp_do_drain), SCTPCTL_DO_SCTP_DRAIN_MIN, SCTPCTL_DO_SCTP_DRAIN_MAX);
648                 RANGECHK(SCTP_BASE_SYSCTL(sctp_hb_maxburst), SCTPCTL_HB_MAX_BURST_MIN, SCTPCTL_HB_MAX_BURST_MAX);
649                 RANGECHK(SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit), SCTPCTL_ABORT_AT_LIMIT_MIN, SCTPCTL_ABORT_AT_LIMIT_MAX);
650                 RANGECHK(SCTP_BASE_SYSCTL(sctp_strict_data_order), SCTPCTL_STRICT_DATA_ORDER_MIN, SCTPCTL_STRICT_DATA_ORDER_MAX);
651                 RANGECHK(SCTP_BASE_SYSCTL(sctp_min_residual), SCTPCTL_MIN_RESIDUAL_MIN, SCTPCTL_MIN_RESIDUAL_MAX);
652                 RANGECHK(SCTP_BASE_SYSCTL(sctp_max_retran_chunk), SCTPCTL_MAX_RETRAN_CHUNK_MIN, SCTPCTL_MAX_RETRAN_CHUNK_MAX);
653                 RANGECHK(SCTP_BASE_SYSCTL(sctp_logging_level), SCTPCTL_LOGGING_LEVEL_MIN, SCTPCTL_LOGGING_LEVEL_MAX);
654                 RANGECHK(SCTP_BASE_SYSCTL(sctp_default_cc_module), SCTPCTL_DEFAULT_CC_MODULE_MIN, SCTPCTL_DEFAULT_CC_MODULE_MAX);
655                 RANGECHK(SCTP_BASE_SYSCTL(sctp_default_ss_module), SCTPCTL_DEFAULT_SS_MODULE_MIN, SCTPCTL_DEFAULT_SS_MODULE_MAX);
656                 RANGECHK(SCTP_BASE_SYSCTL(sctp_default_frag_interleave), SCTPCTL_DEFAULT_FRAG_INTERLEAVE_MIN, SCTPCTL_DEFAULT_FRAG_INTERLEAVE_MAX);
657                 RANGECHK(SCTP_BASE_SYSCTL(sctp_vtag_time_wait), SCTPCTL_TIME_WAIT_MIN, SCTPCTL_TIME_WAIT_MAX);
658                 RANGECHK(SCTP_BASE_SYSCTL(sctp_buffer_splitting), SCTPCTL_BUFFER_SPLITTING_MIN, SCTPCTL_BUFFER_SPLITTING_MAX);
659                 RANGECHK(SCTP_BASE_SYSCTL(sctp_initial_cwnd), SCTPCTL_INITIAL_CWND_MIN, SCTPCTL_INITIAL_CWND_MAX);
660                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rttvar_bw), SCTPCTL_RTTVAR_BW_MIN, SCTPCTL_RTTVAR_BW_MAX);
661                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rttvar_rtt), SCTPCTL_RTTVAR_RTT_MIN, SCTPCTL_RTTVAR_RTT_MAX);
662                 RANGECHK(SCTP_BASE_SYSCTL(sctp_rttvar_eqret), SCTPCTL_RTTVAR_EQRET_MIN, SCTPCTL_RTTVAR_EQRET_MAX);
663                 RANGECHK(SCTP_BASE_SYSCTL(sctp_steady_step), SCTPCTL_RTTVAR_STEADYS_MIN, SCTPCTL_RTTVAR_STEADYS_MAX);
664                 RANGECHK(SCTP_BASE_SYSCTL(sctp_use_dccc_ecn), SCTPCTL_RTTVAR_DCCCECN_MIN, SCTPCTL_RTTVAR_DCCCECN_MAX);
665                 RANGECHK(SCTP_BASE_SYSCTL(sctp_mobility_base), SCTPCTL_MOBILITY_BASE_MIN, SCTPCTL_MOBILITY_BASE_MAX);
666                 RANGECHK(SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff), SCTPCTL_MOBILITY_FASTHANDOFF_MIN, SCTPCTL_MOBILITY_FASTHANDOFF_MAX);
667                 RANGECHK(SCTP_BASE_SYSCTL(sctp_enable_sack_immediately), SCTPCTL_SACK_IMMEDIATELY_ENABLE_MIN, SCTPCTL_SACK_IMMEDIATELY_ENABLE_MAX);
668                 RANGECHK(SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly), SCTPCTL_NAT_FRIENDLY_INITS_MIN, SCTPCTL_NAT_FRIENDLY_INITS_MAX);
669                 RANGECHK(SCTP_BASE_SYSCTL(sctp_blackhole), SCTPCTL_BLACKHOLE_MIN, SCTPCTL_BLACKHOLE_MAX);
670                 RANGECHK(SCTP_BASE_SYSCTL(sctp_diag_info_code), SCTPCTL_DIAG_INFO_CODE_MIN, SCTPCTL_DIAG_INFO_CODE_MAX);
671
672 #ifdef SCTP_DEBUG
673                 RANGECHK(SCTP_BASE_SYSCTL(sctp_debug_on), SCTPCTL_DEBUG_MIN, SCTPCTL_DEBUG_MAX);
674 #endif
675 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
676                 RANGECHK(SCTP_BASE_SYSCTL(sctp_output_unlocked), SCTPCTL_OUTPUT_UNLOCKED_MIN, SCTPCTL_OUTPUT_UNLOCKED_MAX);
677 #endif
678         }
679         return (error);
680 }
681
682 static int
683 sysctl_sctp_auth_check(SYSCTL_HANDLER_ARGS)
684 {
685         int error;
686
687         error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
688         if (error == 0) {
689                 if (SCTP_BASE_SYSCTL(sctp_auth_disable) < SCTPCTL_AUTH_DISABLE_MIN) {
690                         SCTP_BASE_SYSCTL(sctp_auth_disable) = SCTPCTL_AUTH_DISABLE_MIN;
691                 }
692                 if (SCTP_BASE_SYSCTL(sctp_auth_disable) > SCTPCTL_AUTH_DISABLE_MAX) {
693                         SCTP_BASE_SYSCTL(sctp_auth_disable) = SCTPCTL_AUTH_DISABLE_MAX;
694                 }
695                 if ((SCTP_BASE_SYSCTL(sctp_auth_disable) == 1) &&
696                     (SCTP_BASE_SYSCTL(sctp_asconf_enable) == 1)) {
697                         /*
698                          * You can't disable AUTH with disabling ASCONF
699                          * first
700                          */
701                         SCTP_BASE_SYSCTL(sctp_auth_disable) = 0;
702                 }
703         }
704         return (error);
705 }
706
707 static int
708 sysctl_sctp_asconf_check(SYSCTL_HANDLER_ARGS)
709 {
710         int error;
711
712         error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
713         if (error == 0) {
714                 if (SCTP_BASE_SYSCTL(sctp_asconf_enable) < SCTPCTL_ASCONF_ENABLE_MIN) {
715                         SCTP_BASE_SYSCTL(sctp_asconf_enable) = SCTPCTL_ASCONF_ENABLE_MIN;
716                 }
717                 if (SCTP_BASE_SYSCTL(sctp_asconf_enable) > SCTPCTL_ASCONF_ENABLE_MAX) {
718                         SCTP_BASE_SYSCTL(sctp_asconf_enable) = SCTPCTL_ASCONF_ENABLE_MAX;
719                 }
720                 if ((SCTP_BASE_SYSCTL(sctp_asconf_enable) == 1) &&
721                     (SCTP_BASE_SYSCTL(sctp_auth_disable) == 1)) {
722                         /*
723                          * You can't enable ASCONF without enabling AUTH
724                          * first
725                          */
726                         SCTP_BASE_SYSCTL(sctp_asconf_enable) = 0;
727                 }
728         }
729         return (error);
730 }
731
732 #if defined(__FreeBSD__) && defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
733 static int
734 sysctl_stat_get(SYSCTL_HANDLER_ARGS)
735 {
736         int cpu, error;
737         struct sctpstat sb, *sarry, *cpin = NULL;
738
739         if ((req->newptr) && (req->newlen == sizeof(struct sctpstat))) {
740                 /*
741                  * User wants us to clear or at least reset the counters to
742                  * the specified values.
743                  */
744                 cpin = (struct sctpstat *)req->newptr;
745         } else if (req->newptr) {
746                 /* Must be a stat structure */
747                 return (EINVAL);
748         }
749         memset(&sb, 0, sizeof(sb));
750         for (cpu = 0; cpu < mp_maxid; cpu++) {
751                 sarry = &SCTP_BASE_STATS[cpu];
752                 if (sarry->sctps_discontinuitytime.tv_sec > sb.sctps_discontinuitytime.tv_sec) {
753                         sb.sctps_discontinuitytime.tv_sec = sarry->sctps_discontinuitytime.tv_sec;
754                         sb.sctps_discontinuitytime.tv_usec = sarry->sctps_discontinuitytime.tv_usec;
755                 }
756                 sb.sctps_currestab += sarry->sctps_currestab;
757                 sb.sctps_activeestab += sarry->sctps_activeestab;
758                 sb.sctps_restartestab += sarry->sctps_restartestab;
759                 sb.sctps_collisionestab += sarry->sctps_collisionestab;
760                 sb.sctps_passiveestab += sarry->sctps_passiveestab;
761                 sb.sctps_aborted += sarry->sctps_aborted;
762                 sb.sctps_shutdown += sarry->sctps_shutdown;
763                 sb.sctps_outoftheblue += sarry->sctps_outoftheblue;
764                 sb.sctps_checksumerrors += sarry->sctps_checksumerrors;
765                 sb.sctps_outcontrolchunks += sarry->sctps_outcontrolchunks;
766                 sb.sctps_outorderchunks += sarry->sctps_outorderchunks;
767                 sb.sctps_outunorderchunks += sarry->sctps_outunorderchunks;
768                 sb.sctps_incontrolchunks += sarry->sctps_incontrolchunks;
769                 sb.sctps_inorderchunks += sarry->sctps_inorderchunks;
770                 sb.sctps_inunorderchunks += sarry->sctps_inunorderchunks;
771                 sb.sctps_fragusrmsgs += sarry->sctps_fragusrmsgs;
772                 sb.sctps_reasmusrmsgs += sarry->sctps_reasmusrmsgs;
773                 sb.sctps_outpackets += sarry->sctps_outpackets;
774                 sb.sctps_inpackets += sarry->sctps_inpackets;
775                 sb.sctps_recvpackets += sarry->sctps_recvpackets;
776                 sb.sctps_recvdatagrams += sarry->sctps_recvdatagrams;
777                 sb.sctps_recvpktwithdata += sarry->sctps_recvpktwithdata;
778                 sb.sctps_recvsacks += sarry->sctps_recvsacks;
779                 sb.sctps_recvdata += sarry->sctps_recvdata;
780                 sb.sctps_recvdupdata += sarry->sctps_recvdupdata;
781                 sb.sctps_recvheartbeat += sarry->sctps_recvheartbeat;
782                 sb.sctps_recvheartbeatack += sarry->sctps_recvheartbeatack;
783                 sb.sctps_recvecne += sarry->sctps_recvecne;
784                 sb.sctps_recvauth += sarry->sctps_recvauth;
785                 sb.sctps_recvauthmissing += sarry->sctps_recvauthmissing;
786                 sb.sctps_recvivalhmacid += sarry->sctps_recvivalhmacid;
787                 sb.sctps_recvivalkeyid += sarry->sctps_recvivalkeyid;
788                 sb.sctps_recvauthfailed += sarry->sctps_recvauthfailed;
789                 sb.sctps_recvexpress += sarry->sctps_recvexpress;
790                 sb.sctps_recvexpressm += sarry->sctps_recvexpressm;
791                 sb.sctps_recvnocrc += sarry->sctps_recvnocrc;
792                 sb.sctps_recvswcrc += sarry->sctps_recvswcrc;
793                 sb.sctps_recvhwcrc += sarry->sctps_recvhwcrc;
794                 sb.sctps_sendpackets += sarry->sctps_sendpackets;
795                 sb.sctps_sendsacks += sarry->sctps_sendsacks;
796                 sb.sctps_senddata += sarry->sctps_senddata;
797                 sb.sctps_sendretransdata += sarry->sctps_sendretransdata;
798                 sb.sctps_sendfastretrans += sarry->sctps_sendfastretrans;
799                 sb.sctps_sendmultfastretrans += sarry->sctps_sendmultfastretrans;
800                 sb.sctps_sendheartbeat += sarry->sctps_sendheartbeat;
801                 sb.sctps_sendecne += sarry->sctps_sendecne;
802                 sb.sctps_sendauth += sarry->sctps_sendauth;
803                 sb.sctps_senderrors += sarry->sctps_senderrors;
804                 sb.sctps_sendnocrc += sarry->sctps_sendnocrc;
805                 sb.sctps_sendswcrc += sarry->sctps_sendswcrc;
806                 sb.sctps_sendhwcrc += sarry->sctps_sendhwcrc;
807                 sb.sctps_pdrpfmbox += sarry->sctps_pdrpfmbox;
808                 sb.sctps_pdrpfehos += sarry->sctps_pdrpfehos;
809                 sb.sctps_pdrpmbda += sarry->sctps_pdrpmbda;
810                 sb.sctps_pdrpmbct += sarry->sctps_pdrpmbct;
811                 sb.sctps_pdrpbwrpt += sarry->sctps_pdrpbwrpt;
812                 sb.sctps_pdrpcrupt += sarry->sctps_pdrpcrupt;
813                 sb.sctps_pdrpnedat += sarry->sctps_pdrpnedat;
814                 sb.sctps_pdrppdbrk += sarry->sctps_pdrppdbrk;
815                 sb.sctps_pdrptsnnf += sarry->sctps_pdrptsnnf;
816                 sb.sctps_pdrpdnfnd += sarry->sctps_pdrpdnfnd;
817                 sb.sctps_pdrpdiwnp += sarry->sctps_pdrpdiwnp;
818                 sb.sctps_pdrpdizrw += sarry->sctps_pdrpdizrw;
819                 sb.sctps_pdrpbadd += sarry->sctps_pdrpbadd;
820                 sb.sctps_pdrpmark += sarry->sctps_pdrpmark;
821                 sb.sctps_timoiterator += sarry->sctps_timoiterator;
822                 sb.sctps_timodata += sarry->sctps_timodata;
823                 sb.sctps_timowindowprobe += sarry->sctps_timowindowprobe;
824                 sb.sctps_timoinit += sarry->sctps_timoinit;
825                 sb.sctps_timosack += sarry->sctps_timosack;
826                 sb.sctps_timoshutdown += sarry->sctps_timoshutdown;
827                 sb.sctps_timoheartbeat += sarry->sctps_timoheartbeat;
828                 sb.sctps_timocookie += sarry->sctps_timocookie;
829                 sb.sctps_timosecret += sarry->sctps_timosecret;
830                 sb.sctps_timopathmtu += sarry->sctps_timopathmtu;
831                 sb.sctps_timoshutdownack += sarry->sctps_timoshutdownack;
832                 sb.sctps_timoshutdownguard += sarry->sctps_timoshutdownguard;
833                 sb.sctps_timostrmrst += sarry->sctps_timostrmrst;
834                 sb.sctps_timoearlyfr += sarry->sctps_timoearlyfr;
835                 sb.sctps_timoasconf += sarry->sctps_timoasconf;
836                 sb.sctps_timodelprim += sarry->sctps_timodelprim;
837                 sb.sctps_timoautoclose += sarry->sctps_timoautoclose;
838                 sb.sctps_timoassockill += sarry->sctps_timoassockill;
839                 sb.sctps_timoinpkill += sarry->sctps_timoinpkill;
840                 sb.sctps_hdrops += sarry->sctps_hdrops;
841                 sb.sctps_badsum += sarry->sctps_badsum;
842                 sb.sctps_noport += sarry->sctps_noport;
843                 sb.sctps_badvtag += sarry->sctps_badvtag;
844                 sb.sctps_badsid += sarry->sctps_badsid;
845                 sb.sctps_nomem += sarry->sctps_nomem;
846                 sb.sctps_fastretransinrtt += sarry->sctps_fastretransinrtt;
847                 sb.sctps_markedretrans += sarry->sctps_markedretrans;
848                 sb.sctps_naglesent += sarry->sctps_naglesent;
849                 sb.sctps_naglequeued += sarry->sctps_naglequeued;
850                 sb.sctps_maxburstqueued += sarry->sctps_maxburstqueued;
851                 sb.sctps_ifnomemqueued += sarry->sctps_ifnomemqueued;
852                 sb.sctps_windowprobed += sarry->sctps_windowprobed;
853                 sb.sctps_lowlevelerr += sarry->sctps_lowlevelerr;
854                 sb.sctps_lowlevelerrusr += sarry->sctps_lowlevelerrusr;
855                 sb.sctps_datadropchklmt += sarry->sctps_datadropchklmt;
856                 sb.sctps_datadroprwnd += sarry->sctps_datadroprwnd;
857                 sb.sctps_ecnereducedcwnd += sarry->sctps_ecnereducedcwnd;
858                 sb.sctps_vtagexpress += sarry->sctps_vtagexpress;
859                 sb.sctps_vtagbogus += sarry->sctps_vtagbogus;
860                 sb.sctps_primary_randry += sarry->sctps_primary_randry;
861                 sb.sctps_cmt_randry += sarry->sctps_cmt_randry;
862                 sb.sctps_slowpath_sack += sarry->sctps_slowpath_sack;
863                 sb.sctps_wu_sacks_sent += sarry->sctps_wu_sacks_sent;
864                 sb.sctps_sends_with_flags += sarry->sctps_sends_with_flags;
865                 sb.sctps_sends_with_unord += sarry->sctps_sends_with_unord;
866                 sb.sctps_sends_with_eof += sarry->sctps_sends_with_eof;
867                 sb.sctps_sends_with_abort += sarry->sctps_sends_with_abort;
868                 sb.sctps_protocol_drain_calls += sarry->sctps_protocol_drain_calls;
869                 sb.sctps_protocol_drains_done += sarry->sctps_protocol_drains_done;
870                 sb.sctps_read_peeks += sarry->sctps_read_peeks;
871                 sb.sctps_cached_chk += sarry->sctps_cached_chk;
872                 sb.sctps_cached_strmoq += sarry->sctps_cached_strmoq;
873                 sb.sctps_left_abandon += sarry->sctps_left_abandon;
874                 sb.sctps_send_burst_avoid += sarry->sctps_send_burst_avoid;
875                 sb.sctps_send_cwnd_avoid += sarry->sctps_send_cwnd_avoid;
876                 sb.sctps_fwdtsn_map_over += sarry->sctps_fwdtsn_map_over;
877                 if (cpin) {
878                         memcpy(sarry, cpin, sizeof(struct sctpstat));
879                 }
880         }
881         error = SYSCTL_OUT(req, &sb, sizeof(sb));
882         return (error);
883 }
884
885 #endif
886
887 #if defined(SCTP_LOCAL_TRACE_BUF)
888 static int
889 sysctl_sctp_cleartrace(SYSCTL_HANDLER_ARGS)
890 {
891         int error = 0;
892
893         memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
894         return (error);
895 }
896
897 #endif
898
899
900 /*
901  * sysctl definitions
902  */
903
904 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, sendspace, CTLTYPE_UINT | CTLFLAG_RW,
905     &SCTP_BASE_SYSCTL(sctp_sendspace), 0, sysctl_sctp_check, "IU",
906     SCTPCTL_MAXDGRAM_DESC);
907
908 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, recvspace, CTLTYPE_UINT | CTLFLAG_RW,
909     &SCTP_BASE_SYSCTL(sctp_recvspace), 0, sysctl_sctp_check, "IU",
910     SCTPCTL_RECVSPACE_DESC);
911
912 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, auto_asconf, CTLTYPE_UINT | CTLFLAG_RW,
913     &SCTP_BASE_SYSCTL(sctp_auto_asconf), 0, sysctl_sctp_check, "IU",
914     SCTPCTL_AUTOASCONF_DESC);
915
916 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, ecn_enable, CTLTYPE_UINT | CTLFLAG_RW,
917     &SCTP_BASE_SYSCTL(sctp_ecn_enable), 0, sysctl_sctp_check, "IU",
918     SCTPCTL_ECN_ENABLE_DESC);
919
920 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, pr_enable, CTLTYPE_UINT | CTLFLAG_RW,
921     &SCTP_BASE_SYSCTL(sctp_pr_enable), 0, sysctl_sctp_check, "IU",
922     SCTPCTL_PR_ENABLE_DESC);
923
924 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, auth_disable, CTLTYPE_UINT | CTLFLAG_RW,
925     &SCTP_BASE_SYSCTL(sctp_auth_disable), 0, sysctl_sctp_auth_check, "IU",
926     SCTPCTL_AUTH_DISABLE_DESC);
927
928 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, asconf_enable, CTLTYPE_UINT | CTLFLAG_RW,
929     &SCTP_BASE_SYSCTL(sctp_asconf_enable), 0, sysctl_sctp_asconf_check, "IU",
930     SCTPCTL_ASCONF_ENABLE_DESC);
931
932 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, reconfig_enable, CTLTYPE_UINT | CTLFLAG_RW,
933     &SCTP_BASE_SYSCTL(sctp_reconfig_enable), 0, sysctl_sctp_check, "IU",
934     SCTPCTL_RECONFIG_ENABLE_DESC);
935
936 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, nr_sack_on_off, CTLTYPE_UINT | CTLFLAG_RW,
937     &SCTP_BASE_SYSCTL(sctp_nrsack_enable), 0, sysctl_sctp_check, "IU",
938     SCTPCTL_NRSACK_ENABLE_DESC);
939
940 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, pktdrop_enable, CTLTYPE_UINT | CTLFLAG_RW,
941     &SCTP_BASE_SYSCTL(sctp_pktdrop_enable), 0, sysctl_sctp_check, "IU",
942     SCTPCTL_PKTDROP_ENABLE_DESC);
943
944 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, strict_sacks, CTLTYPE_UINT | CTLFLAG_RW,
945     &SCTP_BASE_SYSCTL(sctp_strict_sacks), 0, sysctl_sctp_check, "IU",
946     SCTPCTL_STRICT_SACKS_DESC);
947
948
949 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, peer_chkoh, CTLTYPE_UINT | CTLFLAG_RW,
950     &SCTP_BASE_SYSCTL(sctp_peer_chunk_oh), 0, sysctl_sctp_check, "IU",
951     SCTPCTL_PEER_CHKOH_DESC);
952
953 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, maxburst, CTLTYPE_UINT | CTLFLAG_RW,
954     &SCTP_BASE_SYSCTL(sctp_max_burst_default), 0, sysctl_sctp_check, "IU",
955     SCTPCTL_MAXBURST_DESC);
956
957 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, fr_maxburst, CTLTYPE_UINT | CTLFLAG_RW,
958     &SCTP_BASE_SYSCTL(sctp_fr_max_burst_default), 0, sysctl_sctp_check, "IU",
959     SCTPCTL_FRMAXBURST_DESC);
960
961 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, maxchunks, CTLTYPE_UINT | CTLFLAG_RW,
962     &SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue), 0, sysctl_sctp_check, "IU",
963     SCTPCTL_MAXCHUNKS_DESC);
964
965 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, tcbhashsize, CTLTYPE_UINT | CTLFLAG_RW,
966     &SCTP_BASE_SYSCTL(sctp_hashtblsize), 0, sysctl_sctp_check, "IU",
967     SCTPCTL_TCBHASHSIZE_DESC);
968
969 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, pcbhashsize, CTLTYPE_UINT | CTLFLAG_RW,
970     &SCTP_BASE_SYSCTL(sctp_pcbtblsize), 0, sysctl_sctp_check, "IU",
971     SCTPCTL_PCBHASHSIZE_DESC);
972
973 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, min_split_point, CTLTYPE_UINT | CTLFLAG_RW,
974     &SCTP_BASE_SYSCTL(sctp_min_split_point), 0, sysctl_sctp_check, "IU",
975     SCTPCTL_MIN_SPLIT_POINT_DESC);
976
977 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, chunkscale, CTLTYPE_UINT | CTLFLAG_RW,
978     &SCTP_BASE_SYSCTL(sctp_chunkscale), 0, sysctl_sctp_check, "IU",
979     SCTPCTL_CHUNKSCALE_DESC);
980
981 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, delayed_sack_time, CTLTYPE_UINT | CTLFLAG_RW,
982     &SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default), 0, sysctl_sctp_check, "IU",
983     SCTPCTL_DELAYED_SACK_TIME_DESC);
984
985 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, sack_freq, CTLTYPE_UINT | CTLFLAG_RW,
986     &SCTP_BASE_SYSCTL(sctp_sack_freq_default), 0, sysctl_sctp_check, "IU",
987     SCTPCTL_SACK_FREQ_DESC);
988
989 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, sys_resource, CTLTYPE_UINT | CTLFLAG_RW,
990     &SCTP_BASE_SYSCTL(sctp_system_free_resc_limit), 0, sysctl_sctp_check, "IU",
991     SCTPCTL_SYS_RESOURCE_DESC);
992
993 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, asoc_resource, CTLTYPE_UINT | CTLFLAG_RW,
994     &SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit), 0, sysctl_sctp_check, "IU",
995     SCTPCTL_ASOC_RESOURCE_DESC);
996
997 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, heartbeat_interval, CTLTYPE_UINT | CTLFLAG_RW,
998     &SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default), 0, sysctl_sctp_check, "IU",
999     SCTPCTL_HEARTBEAT_INTERVAL_DESC);
1000
1001 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, pmtu_raise_time, CTLTYPE_UINT | CTLFLAG_RW,
1002     &SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default), 0, sysctl_sctp_check, "IU",
1003     SCTPCTL_PMTU_RAISE_TIME_DESC);
1004
1005 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, shutdown_guard_time, CTLTYPE_UINT | CTLFLAG_RW,
1006     &SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default), 0, sysctl_sctp_check, "IU",
1007     SCTPCTL_SHUTDOWN_GUARD_TIME_DESC);
1008
1009 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, secret_lifetime, CTLTYPE_UINT | CTLFLAG_RW,
1010     &SCTP_BASE_SYSCTL(sctp_secret_lifetime_default), 0, sysctl_sctp_check, "IU",
1011     SCTPCTL_SECRET_LIFETIME_DESC);
1012
1013 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rto_max, CTLTYPE_UINT | CTLFLAG_RW,
1014     &SCTP_BASE_SYSCTL(sctp_rto_max_default), 0, sysctl_sctp_check, "IU",
1015     SCTPCTL_RTO_MAX_DESC);
1016
1017 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rto_min, CTLTYPE_UINT | CTLFLAG_RW,
1018     &SCTP_BASE_SYSCTL(sctp_rto_min_default), 0, sysctl_sctp_check, "IU",
1019     SCTPCTL_RTO_MIN_DESC);
1020
1021 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rto_initial, CTLTYPE_UINT | CTLFLAG_RW,
1022     &SCTP_BASE_SYSCTL(sctp_rto_initial_default), 0, sysctl_sctp_check, "IU",
1023     SCTPCTL_RTO_INITIAL_DESC);
1024
1025 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, init_rto_max, CTLTYPE_UINT | CTLFLAG_RW,
1026     &SCTP_BASE_SYSCTL(sctp_init_rto_max_default), 0, sysctl_sctp_check, "IU",
1027     SCTPCTL_INIT_RTO_MAX_DESC);
1028
1029 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, valid_cookie_life, CTLTYPE_UINT | CTLFLAG_RW,
1030     &SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default), 0, sysctl_sctp_check, "IU",
1031     SCTPCTL_VALID_COOKIE_LIFE_DESC);
1032
1033 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, init_rtx_max, CTLTYPE_UINT | CTLFLAG_RW,
1034     &SCTP_BASE_SYSCTL(sctp_init_rtx_max_default), 0, sysctl_sctp_check, "IU",
1035     SCTPCTL_INIT_RTX_MAX_DESC);
1036
1037 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, assoc_rtx_max, CTLTYPE_UINT | CTLFLAG_RW,
1038     &SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default), 0, sysctl_sctp_check, "IU",
1039     SCTPCTL_ASSOC_RTX_MAX_DESC);
1040
1041 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, path_rtx_max, CTLTYPE_UINT | CTLFLAG_RW,
1042     &SCTP_BASE_SYSCTL(sctp_path_rtx_max_default), 0, sysctl_sctp_check, "IU",
1043     SCTPCTL_PATH_RTX_MAX_DESC);
1044
1045 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, path_pf_threshold, CTLTYPE_UINT | CTLFLAG_RW,
1046     &SCTP_BASE_SYSCTL(sctp_path_pf_threshold), 0, sysctl_sctp_check, "IU",
1047     SCTPCTL_PATH_PF_THRESHOLD_DESC);
1048
1049 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, add_more_on_output, CTLTYPE_UINT | CTLFLAG_RW,
1050     &SCTP_BASE_SYSCTL(sctp_add_more_threshold), 0, sysctl_sctp_check, "IU",
1051     SCTPCTL_ADD_MORE_ON_OUTPUT_DESC);
1052
1053 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, incoming_streams, CTLTYPE_UINT | CTLFLAG_RW,
1054     &SCTP_BASE_SYSCTL(sctp_nr_incoming_streams_default), 0, sysctl_sctp_check, "IU",
1055     SCTPCTL_INCOMING_STREAMS_DESC);
1056
1057 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, outgoing_streams, CTLTYPE_UINT | CTLFLAG_RW,
1058     &SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default), 0, sysctl_sctp_check, "IU",
1059     SCTPCTL_OUTGOING_STREAMS_DESC);
1060
1061 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, cmt_on_off, CTLTYPE_UINT | CTLFLAG_RW,
1062     &SCTP_BASE_SYSCTL(sctp_cmt_on_off), 0, sysctl_sctp_check, "IU",
1063     SCTPCTL_CMT_ON_OFF_DESC);
1064
1065 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, cmt_use_dac, CTLTYPE_UINT | CTLFLAG_RW,
1066     &SCTP_BASE_SYSCTL(sctp_cmt_use_dac), 0, sysctl_sctp_check, "IU",
1067     SCTPCTL_CMT_USE_DAC_DESC);
1068
1069 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, cwnd_maxburst, CTLTYPE_UINT | CTLFLAG_RW,
1070     &SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst), 0, sysctl_sctp_check, "IU",
1071     SCTPCTL_CWND_MAXBURST_DESC);
1072
1073 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, nat_friendly, CTLTYPE_UINT | CTLFLAG_RW,
1074     &SCTP_BASE_SYSCTL(sctp_nat_friendly), 0, sysctl_sctp_check, "IU",
1075     SCTPCTL_NAT_FRIENDLY_DESC);
1076
1077 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, abc_l_var, CTLTYPE_UINT | CTLFLAG_RW,
1078     &SCTP_BASE_SYSCTL(sctp_L2_abc_variable), 0, sysctl_sctp_check, "IU",
1079     SCTPCTL_ABC_L_VAR_DESC);
1080
1081 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, max_chained_mbufs, CTLTYPE_UINT | CTLFLAG_RW,
1082     &SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count), 0, sysctl_sctp_check, "IU",
1083     SCTPCTL_MAX_CHAINED_MBUFS_DESC);
1084
1085 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, do_sctp_drain, CTLTYPE_UINT | CTLFLAG_RW,
1086     &SCTP_BASE_SYSCTL(sctp_do_drain), 0, sysctl_sctp_check, "IU",
1087     SCTPCTL_DO_SCTP_DRAIN_DESC);
1088
1089 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, hb_max_burst, CTLTYPE_UINT | CTLFLAG_RW,
1090     &SCTP_BASE_SYSCTL(sctp_hb_maxburst), 0, sysctl_sctp_check, "IU",
1091     SCTPCTL_HB_MAX_BURST_DESC);
1092
1093 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, abort_at_limit, CTLTYPE_UINT | CTLFLAG_RW,
1094     &SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit), 0, sysctl_sctp_check, "IU",
1095     SCTPCTL_ABORT_AT_LIMIT_DESC);
1096
1097 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, strict_data_order, CTLTYPE_UINT | CTLFLAG_RW,
1098     &SCTP_BASE_SYSCTL(sctp_strict_data_order), 0, sysctl_sctp_check, "IU",
1099     SCTPCTL_STRICT_DATA_ORDER_DESC);
1100
1101 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, min_residual, CTLTYPE_UINT | CTLFLAG_RW,
1102     &SCTP_BASE_SYSCTL(sctp_min_residual), 0, sysctl_sctp_check, "IU",
1103     SCTPCTL_MIN_RESIDUAL_DESC);
1104
1105 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, max_retran_chunk, CTLTYPE_UINT | CTLFLAG_RW,
1106     &SCTP_BASE_SYSCTL(sctp_max_retran_chunk), 0, sysctl_sctp_check, "IU",
1107     SCTPCTL_MAX_RETRAN_CHUNK_DESC);
1108
1109 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, log_level, CTLTYPE_UINT | CTLFLAG_RW,
1110     &SCTP_BASE_SYSCTL(sctp_logging_level), 0, sysctl_sctp_check, "IU",
1111     SCTPCTL_LOGGING_LEVEL_DESC);
1112
1113 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, default_cc_module, CTLTYPE_UINT | CTLFLAG_RW,
1114     &SCTP_BASE_SYSCTL(sctp_default_cc_module), 0, sysctl_sctp_check, "IU",
1115     SCTPCTL_DEFAULT_CC_MODULE_DESC);
1116
1117 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, default_ss_module, CTLTYPE_UINT | CTLFLAG_RW,
1118     &SCTP_BASE_SYSCTL(sctp_default_ss_module), 0, sysctl_sctp_check, "IU",
1119     SCTPCTL_DEFAULT_SS_MODULE_DESC);
1120
1121 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, default_frag_interleave, CTLTYPE_UINT | CTLFLAG_RW,
1122     &SCTP_BASE_SYSCTL(sctp_default_frag_interleave), 0, sysctl_sctp_check, "IU",
1123     SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DESC);
1124
1125 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, mobility_base, CTLTYPE_UINT | CTLFLAG_RW,
1126     &SCTP_BASE_SYSCTL(sctp_mobility_base), 0, sysctl_sctp_check, "IU",
1127     SCTPCTL_MOBILITY_BASE_DESC);
1128
1129 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, mobility_fasthandoff, CTLTYPE_UINT | CTLFLAG_RW,
1130     &SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff), 0, sysctl_sctp_check, "IU",
1131     SCTPCTL_MOBILITY_FASTHANDOFF_DESC);
1132
1133 #if defined(SCTP_LOCAL_TRACE_BUF)
1134 SYSCTL_VNET_STRUCT(_net_inet_sctp, OID_AUTO, log, CTLFLAG_RD,
1135     &SCTP_BASE_SYSCTL(sctp_log), sctp_log,
1136     "SCTP logging (struct sctp_log)");
1137
1138 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, clear_trace, CTLTYPE_UINT | CTLFLAG_RW,
1139     &SCTP_BASE_SYSCTL(sctp_log), 0, sysctl_sctp_cleartrace, "IU",
1140     "Clear SCTP Logging buffer");
1141 #endif
1142
1143 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, udp_tunneling_port, CTLTYPE_UINT | CTLFLAG_RW,
1144     &SCTP_BASE_SYSCTL(sctp_udp_tunneling_port), 0, sysctl_sctp_udp_tunneling_check, "IU",
1145     SCTPCTL_UDP_TUNNELING_PORT_DESC);
1146
1147 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, enable_sack_immediately, CTLTYPE_UINT | CTLFLAG_RW,
1148     &SCTP_BASE_SYSCTL(sctp_enable_sack_immediately), 0, sysctl_sctp_check, "IU",
1149     SCTPCTL_SACK_IMMEDIATELY_ENABLE_DESC);
1150
1151 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, nat_friendly_init, CTLTYPE_UINT | CTLFLAG_RW,
1152     &SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly), 0, sysctl_sctp_check, "IU",
1153     SCTPCTL_NAT_FRIENDLY_INITS_DESC);
1154
1155 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, vtag_time_wait, CTLTYPE_UINT | CTLFLAG_RW,
1156     &SCTP_BASE_SYSCTL(sctp_vtag_time_wait), 0, sysctl_sctp_check, "IU",
1157     SCTPCTL_TIME_WAIT_DESC);
1158
1159 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, buffer_splitting, CTLTYPE_UINT | CTLFLAG_RW,
1160     &SCTP_BASE_SYSCTL(sctp_buffer_splitting), 0, sysctl_sctp_check, "IU",
1161     SCTPCTL_BUFFER_SPLITTING_DESC);
1162
1163 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, initial_cwnd, CTLTYPE_UINT | CTLFLAG_RW,
1164     &SCTP_BASE_SYSCTL(sctp_initial_cwnd), 0, sysctl_sctp_check, "IU",
1165     SCTPCTL_INITIAL_CWND_DESC);
1166
1167 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rttvar_bw, CTLTYPE_UINT | CTLFLAG_RW,
1168     &SCTP_BASE_SYSCTL(sctp_rttvar_bw), 0, sysctl_sctp_check, "IU",
1169     SCTPCTL_RTTVAR_BW_DESC);
1170
1171 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rttvar_rtt, CTLTYPE_UINT | CTLFLAG_RW,
1172     &SCTP_BASE_SYSCTL(sctp_rttvar_rtt), 0, sysctl_sctp_check, "IU",
1173     SCTPCTL_RTTVAR_RTT_DESC);
1174
1175 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rttvar_eqret, CTLTYPE_UINT | CTLFLAG_RW,
1176     &SCTP_BASE_SYSCTL(sctp_rttvar_eqret), 0, sysctl_sctp_check, "IU",
1177     SCTPCTL_RTTVAR_EQRET_DESC);
1178
1179 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, rttvar_steady_step, CTLTYPE_UINT | CTLFLAG_RW,
1180     &SCTP_BASE_SYSCTL(sctp_steady_step), 0, sysctl_sctp_check, "IU",
1181     SCTPCTL_RTTVAR_STEADYS_DESC);
1182
1183 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, use_dcccecn, CTLTYPE_UINT | CTLFLAG_RW,
1184     &SCTP_BASE_SYSCTL(sctp_use_dccc_ecn), 0, sysctl_sctp_check, "IU",
1185     SCTPCTL_RTTVAR_DCCCECN_DESC);
1186
1187 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, blackhole, CTLTYPE_UINT | CTLFLAG_RW,
1188     &SCTP_BASE_SYSCTL(sctp_blackhole), 0, sysctl_sctp_check, "IU",
1189     SCTPCTL_BLACKHOLE_DESC);
1190
1191 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, diag_info_code, CTLTYPE_UINT | CTLFLAG_RW,
1192     &SCTP_BASE_SYSCTL(sctp_diag_info_code), 0, sysctl_sctp_check, "IU",
1193     SCTPCTL_DIAG_INFO_CODE_DESC);
1194
1195 #ifdef SCTP_DEBUG
1196 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, debug, CTLTYPE_UINT | CTLFLAG_RW,
1197     &SCTP_BASE_SYSCTL(sctp_debug_on), 0, sysctl_sctp_check, "IU",
1198     SCTPCTL_DEBUG_DESC);
1199 #endif
1200
1201
1202 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
1203 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, output_unlocked, CTLTYPE_UINT | CTLFLAG_RW,
1204     &SCTP_BASE_SYSCTL(sctp_output_unlocked), 0, sysctl_sctp_check, "IU",
1205     SCTPCTL_OUTPUT_UNLOCKED_DESC);
1206 #endif
1207
1208 #if defined(__FreeBSD__) && defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
1209 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, stats,
1210     CTLTYPE_STRUCT | CTLFLAG_RW,
1211     0, 0, sysctl_stat_get, "S,sctpstat",
1212     "SCTP statistics (struct sctp_stat)");
1213 #else
1214 SYSCTL_VNET_STRUCT(_net_inet_sctp, OID_AUTO, stats, CTLFLAG_RW,
1215     &SCTP_BASE_STATS_SYSCTL, sctpstat,
1216     "SCTP statistics (struct sctp_stat)");
1217 #endif
1218
1219 SYSCTL_VNET_PROC(_net_inet_sctp, OID_AUTO, assoclist, CTLTYPE_OPAQUE | CTLFLAG_RD,
1220     0, 0, sctp_assoclist,
1221     "S,xassoc", "List of active SCTP associations");