]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/blob - sys/netinet/sctp_sysctl.c
MFstable/12 r340921:
[FreeBSD/FreeBSD.git] / sys / netinet / sctp_sysctl.c
1 /*-
2  * SPDX-License-Identifier: BSD-3-Clause
3  *
4  * Copyright (c) 2007, by Cisco Systems, Inc. All rights reserved.
5  * Copyright (c) 2008-2012, by Randall Stewart. All rights reserved.
6  * Copyright (c) 2008-2012, by Michael Tuexen. All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions are met:
10  *
11  * a) Redistributions of source code must retain the above copyright notice,
12  *    this list of conditions and the following disclaimer.
13  *
14  * b) Redistributions in binary form must reproduce the above copyright
15  *    notice, this list of conditions and the following disclaimer in
16  *    the documentation and/or other materials provided with the distribution.
17  *
18  * c) Neither the name of Cisco Systems, Inc. nor the names of its
19  *    contributors may be used to endorse or promote products derived
20  *    from this software without specific prior written permission.
21  *
22  * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
23  * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
24  * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
25  * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
26  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
27  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
28  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
29  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
30  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
31  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
32  * THE POSSIBILITY OF SUCH DAMAGE.
33  */
34
35 #include <sys/cdefs.h>
36 __FBSDID("$FreeBSD$");
37
38 #include <netinet/sctp_os.h>
39 #include <netinet/sctp.h>
40 #include <netinet/sctp_constants.h>
41 #include <netinet/sctp_sysctl.h>
42 #include <netinet/sctp_pcb.h>
43 #include <netinet/sctputil.h>
44 #include <netinet/sctp_output.h>
45 #include <sys/smp.h>
46 #include <sys/sysctl.h>
47
48 FEATURE(sctp, "Stream Control Transmission Protocol");
49
50 /*
51  * sysctl tunable variables
52  */
53
54 void
55 sctp_init_sysctls()
56 {
57         SCTP_BASE_SYSCTL(sctp_sendspace) = SCTPCTL_MAXDGRAM_DEFAULT;
58         SCTP_BASE_SYSCTL(sctp_recvspace) = SCTPCTL_RECVSPACE_DEFAULT;
59         SCTP_BASE_SYSCTL(sctp_auto_asconf) = SCTPCTL_AUTOASCONF_DEFAULT;
60         SCTP_BASE_SYSCTL(sctp_multiple_asconfs) = SCTPCTL_MULTIPLEASCONFS_DEFAULT;
61         SCTP_BASE_SYSCTL(sctp_ecn_enable) = SCTPCTL_ECN_ENABLE_DEFAULT;
62         SCTP_BASE_SYSCTL(sctp_pr_enable) = SCTPCTL_PR_ENABLE_DEFAULT;
63         SCTP_BASE_SYSCTL(sctp_auth_enable) = SCTPCTL_AUTH_ENABLE_DEFAULT;
64         SCTP_BASE_SYSCTL(sctp_asconf_enable) = SCTPCTL_ASCONF_ENABLE_DEFAULT;
65         SCTP_BASE_SYSCTL(sctp_reconfig_enable) = SCTPCTL_RECONFIG_ENABLE_DEFAULT;
66         SCTP_BASE_SYSCTL(sctp_nrsack_enable) = SCTPCTL_NRSACK_ENABLE_DEFAULT;
67         SCTP_BASE_SYSCTL(sctp_pktdrop_enable) = SCTPCTL_PKTDROP_ENABLE_DEFAULT;
68         SCTP_BASE_SYSCTL(sctp_peer_chunk_oh) = SCTPCTL_PEER_CHKOH_DEFAULT;
69         SCTP_BASE_SYSCTL(sctp_max_burst_default) = SCTPCTL_MAXBURST_DEFAULT;
70         SCTP_BASE_SYSCTL(sctp_fr_max_burst_default) = SCTPCTL_FRMAXBURST_DEFAULT;
71         SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue) = SCTPCTL_MAXCHUNKS_DEFAULT;
72         SCTP_BASE_SYSCTL(sctp_hashtblsize) = SCTPCTL_TCBHASHSIZE_DEFAULT;
73         SCTP_BASE_SYSCTL(sctp_pcbtblsize) = SCTPCTL_PCBHASHSIZE_DEFAULT;
74         SCTP_BASE_SYSCTL(sctp_min_split_point) = SCTPCTL_MIN_SPLIT_POINT_DEFAULT;
75         SCTP_BASE_SYSCTL(sctp_chunkscale) = SCTPCTL_CHUNKSCALE_DEFAULT;
76         SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default) = SCTPCTL_DELAYED_SACK_TIME_DEFAULT;
77         SCTP_BASE_SYSCTL(sctp_sack_freq_default) = SCTPCTL_SACK_FREQ_DEFAULT;
78         SCTP_BASE_SYSCTL(sctp_system_free_resc_limit) = SCTPCTL_SYS_RESOURCE_DEFAULT;
79         SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit) = SCTPCTL_ASOC_RESOURCE_DEFAULT;
80         SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default) = SCTPCTL_HEARTBEAT_INTERVAL_DEFAULT;
81         SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default) = SCTPCTL_PMTU_RAISE_TIME_DEFAULT;
82         SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default) = SCTPCTL_SHUTDOWN_GUARD_TIME_DEFAULT;
83         SCTP_BASE_SYSCTL(sctp_secret_lifetime_default) = SCTPCTL_SECRET_LIFETIME_DEFAULT;
84         SCTP_BASE_SYSCTL(sctp_rto_max_default) = SCTPCTL_RTO_MAX_DEFAULT;
85         SCTP_BASE_SYSCTL(sctp_rto_min_default) = SCTPCTL_RTO_MIN_DEFAULT;
86         SCTP_BASE_SYSCTL(sctp_rto_initial_default) = SCTPCTL_RTO_INITIAL_DEFAULT;
87         SCTP_BASE_SYSCTL(sctp_init_rto_max_default) = SCTPCTL_INIT_RTO_MAX_DEFAULT;
88         SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default) = SCTPCTL_VALID_COOKIE_LIFE_DEFAULT;
89         SCTP_BASE_SYSCTL(sctp_init_rtx_max_default) = SCTPCTL_INIT_RTX_MAX_DEFAULT;
90         SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default) = SCTPCTL_ASSOC_RTX_MAX_DEFAULT;
91         SCTP_BASE_SYSCTL(sctp_path_rtx_max_default) = SCTPCTL_PATH_RTX_MAX_DEFAULT;
92         SCTP_BASE_SYSCTL(sctp_path_pf_threshold) = SCTPCTL_PATH_PF_THRESHOLD_DEFAULT;
93         SCTP_BASE_SYSCTL(sctp_add_more_threshold) = SCTPCTL_ADD_MORE_ON_OUTPUT_DEFAULT;
94         SCTP_BASE_SYSCTL(sctp_nr_incoming_streams_default) = SCTPCTL_INCOMING_STREAMS_DEFAULT;
95         SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default) = SCTPCTL_OUTGOING_STREAMS_DEFAULT;
96         SCTP_BASE_SYSCTL(sctp_cmt_on_off) = SCTPCTL_CMT_ON_OFF_DEFAULT;
97         SCTP_BASE_SYSCTL(sctp_cmt_use_dac) = SCTPCTL_CMT_USE_DAC_DEFAULT;
98         SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst) = SCTPCTL_CWND_MAXBURST_DEFAULT;
99         SCTP_BASE_SYSCTL(sctp_nat_friendly) = SCTPCTL_NAT_FRIENDLY_DEFAULT;
100         SCTP_BASE_SYSCTL(sctp_L2_abc_variable) = SCTPCTL_ABC_L_VAR_DEFAULT;
101         SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count) = SCTPCTL_MAX_CHAINED_MBUFS_DEFAULT;
102         SCTP_BASE_SYSCTL(sctp_do_drain) = SCTPCTL_DO_SCTP_DRAIN_DEFAULT;
103         SCTP_BASE_SYSCTL(sctp_hb_maxburst) = SCTPCTL_HB_MAX_BURST_DEFAULT;
104         SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit) = SCTPCTL_ABORT_AT_LIMIT_DEFAULT;
105         SCTP_BASE_SYSCTL(sctp_min_residual) = SCTPCTL_MIN_RESIDUAL_DEFAULT;
106         SCTP_BASE_SYSCTL(sctp_max_retran_chunk) = SCTPCTL_MAX_RETRAN_CHUNK_DEFAULT;
107         SCTP_BASE_SYSCTL(sctp_logging_level) = SCTPCTL_LOGGING_LEVEL_DEFAULT;
108         SCTP_BASE_SYSCTL(sctp_default_cc_module) = SCTPCTL_DEFAULT_CC_MODULE_DEFAULT;
109         SCTP_BASE_SYSCTL(sctp_default_ss_module) = SCTPCTL_DEFAULT_SS_MODULE_DEFAULT;
110         SCTP_BASE_SYSCTL(sctp_default_frag_interleave) = SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DEFAULT;
111         SCTP_BASE_SYSCTL(sctp_mobility_base) = SCTPCTL_MOBILITY_BASE_DEFAULT;
112         SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff) = SCTPCTL_MOBILITY_FASTHANDOFF_DEFAULT;
113         SCTP_BASE_SYSCTL(sctp_vtag_time_wait) = SCTPCTL_TIME_WAIT_DEFAULT;
114         SCTP_BASE_SYSCTL(sctp_buffer_splitting) = SCTPCTL_BUFFER_SPLITTING_DEFAULT;
115         SCTP_BASE_SYSCTL(sctp_initial_cwnd) = SCTPCTL_INITIAL_CWND_DEFAULT;
116         SCTP_BASE_SYSCTL(sctp_rttvar_bw) = SCTPCTL_RTTVAR_BW_DEFAULT;
117         SCTP_BASE_SYSCTL(sctp_rttvar_rtt) = SCTPCTL_RTTVAR_RTT_DEFAULT;
118         SCTP_BASE_SYSCTL(sctp_rttvar_eqret) = SCTPCTL_RTTVAR_EQRET_DEFAULT;
119         SCTP_BASE_SYSCTL(sctp_steady_step) = SCTPCTL_RTTVAR_STEADYS_DEFAULT;
120         SCTP_BASE_SYSCTL(sctp_use_dccc_ecn) = SCTPCTL_RTTVAR_DCCCECN_DEFAULT;
121         SCTP_BASE_SYSCTL(sctp_blackhole) = SCTPCTL_BLACKHOLE_DEFAULT;
122         SCTP_BASE_SYSCTL(sctp_diag_info_code) = SCTPCTL_DIAG_INFO_CODE_DEFAULT;
123 #if defined(SCTP_LOCAL_TRACE_BUF)
124         memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
125 #endif
126         SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = SCTPCTL_UDP_TUNNELING_PORT_DEFAULT;
127         SCTP_BASE_SYSCTL(sctp_enable_sack_immediately) = SCTPCTL_SACK_IMMEDIATELY_ENABLE_DEFAULT;
128         SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly) = SCTPCTL_NAT_FRIENDLY_INITS_DEFAULT;
129 #if defined(SCTP_DEBUG)
130         SCTP_BASE_SYSCTL(sctp_debug_on) = SCTPCTL_DEBUG_DEFAULT;
131 #endif
132 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
133         SCTP_BASE_SYSCTL(sctp_output_unlocked) = SCTPCTL_OUTPUT_UNLOCKED_DEFAULT;
134 #endif
135 }
136
137
138 /* It returns an upper limit. No filtering is done here */
139 static unsigned int
140 sctp_sysctl_number_of_addresses(struct sctp_inpcb *inp)
141 {
142         unsigned int cnt;
143         struct sctp_vrf *vrf;
144         struct sctp_ifn *sctp_ifn;
145         struct sctp_ifa *sctp_ifa;
146         struct sctp_laddr *laddr;
147
148         cnt = 0;
149         /* neither Mac OS X nor FreeBSD support mulitple routing functions */
150         if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
151                 return (0);
152         }
153         if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
154                 LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
155                         LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
156                                 switch (sctp_ifa->address.sa.sa_family) {
157 #ifdef INET
158                                 case AF_INET:
159 #endif
160 #ifdef INET6
161                                 case AF_INET6:
162 #endif
163                                         cnt++;
164                                         break;
165                                 default:
166                                         break;
167                                 }
168                         }
169                 }
170         } else {
171                 LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
172                         switch (laddr->ifa->address.sa.sa_family) {
173 #ifdef INET
174                         case AF_INET:
175 #endif
176 #ifdef INET6
177                         case AF_INET6:
178 #endif
179                                 cnt++;
180                                 break;
181                         default:
182                                 break;
183                         }
184                 }
185         }
186         return (cnt);
187 }
188
189 static int
190 sctp_sysctl_copy_out_local_addresses(struct sctp_inpcb *inp, struct sctp_tcb *stcb, struct sysctl_req *req)
191 {
192         struct sctp_ifn *sctp_ifn;
193         struct sctp_ifa *sctp_ifa;
194         int loopback_scope, ipv4_local_scope, local_scope, site_scope;
195         int ipv4_addr_legal, ipv6_addr_legal;
196         struct sctp_vrf *vrf;
197         struct xsctp_laddr xladdr;
198         struct sctp_laddr *laddr;
199         int error;
200
201         /* Turn on all the appropriate scope */
202         if (stcb) {
203                 /* use association specific values */
204                 loopback_scope = stcb->asoc.scope.loopback_scope;
205                 ipv4_local_scope = stcb->asoc.scope.ipv4_local_scope;
206                 local_scope = stcb->asoc.scope.local_scope;
207                 site_scope = stcb->asoc.scope.site_scope;
208                 ipv4_addr_legal = stcb->asoc.scope.ipv4_addr_legal;
209                 ipv6_addr_legal = stcb->asoc.scope.ipv6_addr_legal;
210         } else {
211                 /* Use generic values for endpoints. */
212                 loopback_scope = 1;
213                 ipv4_local_scope = 1;
214                 local_scope = 1;
215                 site_scope = 1;
216                 if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) {
217                         ipv6_addr_legal = 1;
218                         if (SCTP_IPV6_V6ONLY(inp)) {
219                                 ipv4_addr_legal = 0;
220                         } else {
221                                 ipv4_addr_legal = 1;
222                         }
223                 } else {
224                         ipv6_addr_legal = 0;
225                         ipv4_addr_legal = 1;
226                 }
227         }
228
229         /* neither Mac OS X nor FreeBSD support mulitple routing functions */
230         if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
231                 SCTP_INP_RUNLOCK(inp);
232                 SCTP_INP_INFO_RUNLOCK();
233                 return (-1);
234         }
235         if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
236                 LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
237                         if ((loopback_scope == 0) && SCTP_IFN_IS_IFT_LOOP(sctp_ifn))
238                                 /* Skip loopback if loopback_scope not set */
239                                 continue;
240                         LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
241                                 if (stcb) {
242                                         /*
243                                          * ignore if blacklisted at
244                                          * association level
245                                          */
246                                         if (sctp_is_addr_restricted(stcb, sctp_ifa))
247                                                 continue;
248                                 }
249                                 switch (sctp_ifa->address.sa.sa_family) {
250 #ifdef INET
251                                 case AF_INET:
252                                         if (ipv4_addr_legal) {
253                                                 struct sockaddr_in *sin;
254
255                                                 sin = &sctp_ifa->address.sin;
256                                                 if (sin->sin_addr.s_addr == 0)
257                                                         continue;
258                                                 if (prison_check_ip4(inp->ip_inp.inp.inp_cred,
259                                                     &sin->sin_addr) != 0) {
260                                                         continue;
261                                                 }
262                                                 if ((ipv4_local_scope == 0) && (IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)))
263                                                         continue;
264                                         } else {
265                                                 continue;
266                                         }
267                                         break;
268 #endif
269 #ifdef INET6
270                                 case AF_INET6:
271                                         if (ipv6_addr_legal) {
272                                                 struct sockaddr_in6 *sin6;
273
274                                                 sin6 = &sctp_ifa->address.sin6;
275                                                 if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr))
276                                                         continue;
277                                                 if (prison_check_ip6(inp->ip_inp.inp.inp_cred,
278                                                     &sin6->sin6_addr) != 0) {
279                                                         continue;
280                                                 }
281                                                 if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) {
282                                                         if (local_scope == 0)
283                                                                 continue;
284                                                 }
285                                                 if ((site_scope == 0) && (IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)))
286                                                         continue;
287                                         } else {
288                                                 continue;
289                                         }
290                                         break;
291 #endif
292                                 default:
293                                         continue;
294                                 }
295                                 memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
296                                 memcpy((void *)&xladdr.address, (const void *)&sctp_ifa->address, sizeof(union sctp_sockstore));
297                                 SCTP_INP_RUNLOCK(inp);
298                                 SCTP_INP_INFO_RUNLOCK();
299                                 error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
300                                 if (error) {
301                                         return (error);
302                                 } else {
303                                         SCTP_INP_INFO_RLOCK();
304                                         SCTP_INP_RLOCK(inp);
305                                 }
306                         }
307                 }
308         } else {
309                 LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
310                         /* ignore if blacklisted at association level */
311                         if (stcb && sctp_is_addr_restricted(stcb, laddr->ifa))
312                                 continue;
313                         memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
314                         memcpy((void *)&xladdr.address, (const void *)&laddr->ifa->address, sizeof(union sctp_sockstore));
315                         xladdr.start_time.tv_sec = (uint32_t)laddr->start_time.tv_sec;
316                         xladdr.start_time.tv_usec = (uint32_t)laddr->start_time.tv_usec;
317                         SCTP_INP_RUNLOCK(inp);
318                         SCTP_INP_INFO_RUNLOCK();
319                         error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
320                         if (error) {
321                                 return (error);
322                         } else {
323                                 SCTP_INP_INFO_RLOCK();
324                                 SCTP_INP_RLOCK(inp);
325                         }
326                 }
327         }
328         memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
329         xladdr.last = 1;
330         SCTP_INP_RUNLOCK(inp);
331         SCTP_INP_INFO_RUNLOCK();
332         error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
333
334         if (error) {
335                 return (error);
336         } else {
337                 SCTP_INP_INFO_RLOCK();
338                 SCTP_INP_RLOCK(inp);
339                 return (0);
340         }
341 }
342
343 /*
344  * sysctl functions
345  */
346 static int
347 sctp_sysctl_handle_assoclist(SYSCTL_HANDLER_ARGS)
348 {
349         unsigned int number_of_endpoints;
350         unsigned int number_of_local_addresses;
351         unsigned int number_of_associations;
352         unsigned int number_of_remote_addresses;
353         unsigned int n;
354         int error;
355         struct sctp_inpcb *inp;
356         struct sctp_tcb *stcb;
357         struct sctp_nets *net;
358         struct xsctp_inpcb xinpcb;
359         struct xsctp_tcb xstcb;
360         struct xsctp_raddr xraddr;
361         struct socket *so;
362
363         number_of_endpoints = 0;
364         number_of_local_addresses = 0;
365         number_of_associations = 0;
366         number_of_remote_addresses = 0;
367
368         SCTP_INP_INFO_RLOCK();
369         if (req->oldptr == NULL) {
370                 LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
371                         SCTP_INP_RLOCK(inp);
372                         number_of_endpoints++;
373                         number_of_local_addresses += sctp_sysctl_number_of_addresses(inp);
374                         LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
375                                 number_of_associations++;
376                                 number_of_local_addresses += sctp_sysctl_number_of_addresses(inp);
377                                 TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
378                                         number_of_remote_addresses++;
379                                 }
380                         }
381                         SCTP_INP_RUNLOCK(inp);
382                 }
383                 SCTP_INP_INFO_RUNLOCK();
384                 n = (number_of_endpoints + 1) * sizeof(struct xsctp_inpcb) +
385                     (number_of_local_addresses + number_of_endpoints + number_of_associations) * sizeof(struct xsctp_laddr) +
386                     (number_of_associations + number_of_endpoints) * sizeof(struct xsctp_tcb) +
387                     (number_of_remote_addresses + number_of_associations) * sizeof(struct xsctp_raddr);
388
389                 /* request some more memory than needed */
390                 req->oldidx = (n + n / 8);
391                 return (0);
392         }
393         if (req->newptr != NULL) {
394                 SCTP_INP_INFO_RUNLOCK();
395                 SCTP_LTRACE_ERR_RET(NULL, NULL, NULL, SCTP_FROM_SCTP_SYSCTL, EPERM);
396                 return (EPERM);
397         }
398         memset(&xinpcb, 0, sizeof(xinpcb));
399         memset(&xstcb, 0, sizeof(xstcb));
400         memset(&xraddr, 0, sizeof(xraddr));
401         LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
402                 SCTP_INP_RLOCK(inp);
403                 if (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_ALLGONE) {
404                         /* if its allgone it is being freed - skip it  */
405                         goto skip;
406                 }
407                 xinpcb.last = 0;
408                 xinpcb.local_port = ntohs(inp->sctp_lport);
409                 xinpcb.flags = inp->sctp_flags;
410                 xinpcb.features = inp->sctp_features;
411                 xinpcb.total_sends = inp->total_sends;
412                 xinpcb.total_recvs = inp->total_recvs;
413                 xinpcb.total_nospaces = inp->total_nospaces;
414                 xinpcb.fragmentation_point = inp->sctp_frag_point;
415                 xinpcb.socket = (uintptr_t)inp->sctp_socket;
416                 so = inp->sctp_socket;
417                 if ((so == NULL) ||
418                     (!SCTP_IS_LISTENING(inp)) ||
419                     (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_GONE)) {
420                         xinpcb.qlen = 0;
421                         xinpcb.maxqlen = 0;
422                 } else {
423                         xinpcb.qlen = so->sol_qlen;
424                         xinpcb.qlen_old = so->sol_qlen > USHRT_MAX ?
425                             USHRT_MAX : (uint16_t)so->sol_qlen;
426                         xinpcb.maxqlen = so->sol_qlimit;
427                         xinpcb.maxqlen_old = so->sol_qlimit > USHRT_MAX ?
428                             USHRT_MAX : (uint16_t)so->sol_qlimit;
429                 }
430                 SCTP_INP_INCR_REF(inp);
431                 SCTP_INP_RUNLOCK(inp);
432                 SCTP_INP_INFO_RUNLOCK();
433                 error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
434                 if (error) {
435                         SCTP_INP_DECR_REF(inp);
436                         return (error);
437                 }
438                 SCTP_INP_INFO_RLOCK();
439                 SCTP_INP_RLOCK(inp);
440                 error = sctp_sysctl_copy_out_local_addresses(inp, NULL, req);
441                 if (error) {
442                         SCTP_INP_DECR_REF(inp);
443                         return (error);
444                 }
445                 LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
446                         SCTP_TCB_LOCK(stcb);
447                         atomic_add_int(&stcb->asoc.refcnt, 1);
448                         SCTP_TCB_UNLOCK(stcb);
449                         xstcb.last = 0;
450                         xstcb.local_port = ntohs(inp->sctp_lport);
451                         xstcb.remote_port = ntohs(stcb->rport);
452                         if (stcb->asoc.primary_destination != NULL)
453                                 xstcb.primary_addr = stcb->asoc.primary_destination->ro._l_addr;
454                         xstcb.heartbeat_interval = stcb->asoc.heart_beat_delay;
455                         xstcb.state = (uint32_t)sctp_map_assoc_state(stcb->asoc.state);
456                         /* 7.0 does not support these */
457                         xstcb.assoc_id = sctp_get_associd(stcb);
458                         xstcb.peers_rwnd = stcb->asoc.peers_rwnd;
459                         xstcb.in_streams = stcb->asoc.streamincnt;
460                         xstcb.out_streams = stcb->asoc.streamoutcnt;
461                         xstcb.max_nr_retrans = stcb->asoc.overall_error_count;
462                         xstcb.primary_process = 0;      /* not really supported
463                                                          * yet */
464                         xstcb.T1_expireries = stcb->asoc.timoinit + stcb->asoc.timocookie;
465                         xstcb.T2_expireries = stcb->asoc.timoshutdown + stcb->asoc.timoshutdownack;
466                         xstcb.retransmitted_tsns = stcb->asoc.marked_retrans;
467                         xstcb.start_time.tv_sec = (uint32_t)stcb->asoc.start_time.tv_sec;
468                         xstcb.start_time.tv_usec = (uint32_t)stcb->asoc.start_time.tv_usec;
469                         xstcb.discontinuity_time.tv_sec = (uint32_t)stcb->asoc.discontinuity_time.tv_sec;
470                         xstcb.discontinuity_time.tv_usec = (uint32_t)stcb->asoc.discontinuity_time.tv_usec;
471                         xstcb.total_sends = stcb->total_sends;
472                         xstcb.total_recvs = stcb->total_recvs;
473                         xstcb.local_tag = stcb->asoc.my_vtag;
474                         xstcb.remote_tag = stcb->asoc.peer_vtag;
475                         xstcb.initial_tsn = stcb->asoc.init_seq_number;
476                         xstcb.highest_tsn = stcb->asoc.sending_seq - 1;
477                         xstcb.cumulative_tsn = stcb->asoc.last_acked_seq;
478                         xstcb.cumulative_tsn_ack = stcb->asoc.cumulative_tsn;
479                         xstcb.mtu = stcb->asoc.smallest_mtu;
480                         xstcb.refcnt = stcb->asoc.refcnt;
481                         SCTP_INP_RUNLOCK(inp);
482                         SCTP_INP_INFO_RUNLOCK();
483                         error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
484                         if (error) {
485                                 SCTP_INP_DECR_REF(inp);
486                                 atomic_subtract_int(&stcb->asoc.refcnt, 1);
487                                 return (error);
488                         }
489                         SCTP_INP_INFO_RLOCK();
490                         SCTP_INP_RLOCK(inp);
491                         error = sctp_sysctl_copy_out_local_addresses(inp, stcb, req);
492                         if (error) {
493                                 SCTP_INP_DECR_REF(inp);
494                                 atomic_subtract_int(&stcb->asoc.refcnt, 1);
495                                 return (error);
496                         }
497                         TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
498                                 xraddr.last = 0;
499                                 xraddr.address = net->ro._l_addr;
500                                 xraddr.active = ((net->dest_state & SCTP_ADDR_REACHABLE) == SCTP_ADDR_REACHABLE);
501                                 xraddr.confirmed = ((net->dest_state & SCTP_ADDR_UNCONFIRMED) == 0);
502                                 xraddr.heartbeat_enabled = ((net->dest_state & SCTP_ADDR_NOHB) == 0);
503                                 xraddr.potentially_failed = ((net->dest_state & SCTP_ADDR_PF) == SCTP_ADDR_PF);
504                                 xraddr.rto = net->RTO;
505                                 xraddr.max_path_rtx = net->failure_threshold;
506                                 xraddr.rtx = net->marked_retrans;
507                                 xraddr.error_counter = net->error_count;
508                                 xraddr.cwnd = net->cwnd;
509                                 xraddr.flight_size = net->flight_size;
510                                 xraddr.mtu = net->mtu;
511                                 xraddr.rtt = net->rtt / 1000;
512                                 xraddr.heartbeat_interval = net->heart_beat_delay;
513                                 xraddr.ssthresh = net->ssthresh;
514                                 xraddr.encaps_port = net->port;
515                                 if (net->dest_state & SCTP_ADDR_UNCONFIRMED) {
516                                         xraddr.state = SCTP_UNCONFIRMED;
517                                 } else if (net->dest_state & SCTP_ADDR_REACHABLE) {
518                                         xraddr.state = SCTP_ACTIVE;
519                                 } else {
520                                         xraddr.state = SCTP_INACTIVE;
521                                 }
522                                 xraddr.start_time.tv_sec = (uint32_t)net->start_time.tv_sec;
523                                 xraddr.start_time.tv_usec = (uint32_t)net->start_time.tv_usec;
524                                 SCTP_INP_RUNLOCK(inp);
525                                 SCTP_INP_INFO_RUNLOCK();
526                                 error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
527                                 if (error) {
528                                         SCTP_INP_DECR_REF(inp);
529                                         atomic_subtract_int(&stcb->asoc.refcnt, 1);
530                                         return (error);
531                                 }
532                                 SCTP_INP_INFO_RLOCK();
533                                 SCTP_INP_RLOCK(inp);
534                         }
535                         atomic_subtract_int(&stcb->asoc.refcnt, 1);
536                         memset((void *)&xraddr, 0, sizeof(struct xsctp_raddr));
537                         xraddr.last = 1;
538                         SCTP_INP_RUNLOCK(inp);
539                         SCTP_INP_INFO_RUNLOCK();
540                         error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
541                         if (error) {
542                                 SCTP_INP_DECR_REF(inp);
543                                 return (error);
544                         }
545                         SCTP_INP_INFO_RLOCK();
546                         SCTP_INP_RLOCK(inp);
547                 }
548                 SCTP_INP_DECR_REF(inp);
549                 SCTP_INP_RUNLOCK(inp);
550                 SCTP_INP_INFO_RUNLOCK();
551                 memset((void *)&xstcb, 0, sizeof(struct xsctp_tcb));
552                 xstcb.last = 1;
553                 error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
554                 if (error) {
555                         return (error);
556                 }
557 skip:
558                 SCTP_INP_INFO_RLOCK();
559         }
560         SCTP_INP_INFO_RUNLOCK();
561
562         memset((void *)&xinpcb, 0, sizeof(struct xsctp_inpcb));
563         xinpcb.last = 1;
564         error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
565         return (error);
566 }
567
568 static int
569 sctp_sysctl_handle_udp_tunneling(SYSCTL_HANDLER_ARGS)
570 {
571         int error;
572         uint32_t old, new;
573
574         SCTP_INP_INFO_RLOCK();
575         old = SCTP_BASE_SYSCTL(sctp_udp_tunneling_port);
576         SCTP_INP_INFO_RUNLOCK();
577         new = old;
578         error = sysctl_handle_int(oidp, &new, 0, req);
579         if ((error == 0) &&
580             (req->newptr != NULL)) {
581 #if (SCTPCTL_UDP_TUNNELING_PORT_MIN == 0)
582                 if (new > SCTPCTL_UDP_TUNNELING_PORT_MAX) {
583 #else
584                 if ((new < SCTPCTL_UDP_TUNNELING_PORT_MIN) ||
585                     (new > SCTPCTL_UDP_TUNNELING_PORT_MAX)) {
586 #endif
587                         error = EINVAL;
588                 } else {
589                         SCTP_INP_INFO_WLOCK();
590                         SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = new;
591                         if (old != 0) {
592                                 sctp_over_udp_stop();
593                         }
594                         if (new != 0) {
595                                 error = sctp_over_udp_start();
596                         }
597                         SCTP_INP_INFO_WUNLOCK();
598                 }
599         }
600         return (error);
601 }
602
603
604 static int
605 sctp_sysctl_handle_auth(SYSCTL_HANDLER_ARGS)
606 {
607         int error;
608         uint32_t new;
609
610         new = SCTP_BASE_SYSCTL(sctp_auth_enable);
611         error = sysctl_handle_int(oidp, &new, 0, req);
612         if ((error == 0) &&
613             (req->newptr != NULL)) {
614 #if (SCTPCTL_AUTH_ENABLE_MIN == 0)
615                 if ((new > SCTPCTL_AUTH_ENABLE_MAX) ||
616                     ((new == 0) && (SCTP_BASE_SYSCTL(sctp_asconf_enable) == 1))) {
617 #else
618                 if ((new < SCTPCTL_AUTH_ENABLE_MIN) ||
619                     (new > SCTPCTL_AUTH_ENABLE_MAX) ||
620                     ((new == 0) && (SCTP_BASE_SYSCTL(sctp_asconf_enable) == 1))) {
621 #endif
622                         error = EINVAL;
623                 } else {
624                         SCTP_BASE_SYSCTL(sctp_auth_enable) = new;
625                 }
626         }
627         return (error);
628 }
629
630 static int
631 sctp_sysctl_handle_asconf(SYSCTL_HANDLER_ARGS)
632 {
633         int error;
634         uint32_t new;
635
636         new = SCTP_BASE_SYSCTL(sctp_asconf_enable);
637         error = sysctl_handle_int(oidp, &new, 0, req);
638         if ((error == 0) &&
639             (req->newptr != NULL)) {
640 #if (SCTPCTL_ASCONF_ENABLE_MIN == 0)
641                 if ((new > SCTPCTL_ASCONF_ENABLE_MAX) ||
642                     ((new == 1) && (SCTP_BASE_SYSCTL(sctp_auth_enable) == 0))) {
643 #else
644                 if ((new < SCTPCTL_ASCONF_ENABLE_MIN) ||
645                     (new > SCTPCTL_ASCONF_ENABLE_MAX) ||
646                     ((new == 1) && (SCTP_BASE_SYSCTL(sctp_auth_enable) == 0))) {
647 #endif
648                         error = EINVAL;
649                 } else {
650                         SCTP_BASE_SYSCTL(sctp_asconf_enable) = new;
651                 }
652         }
653         return (error);
654 }
655
656 static int
657 sctp_sysctl_handle_stats(SYSCTL_HANDLER_ARGS)
658 {
659         int error;
660 #if defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
661         struct sctpstat *sarry;
662         struct sctpstat sb;
663         int cpu;
664 #endif
665         struct sctpstat sb_temp;
666
667         if ((req->newptr != NULL) &&
668             (req->newlen != sizeof(struct sctpstat))) {
669                 return (EINVAL);
670         }
671         memset(&sb_temp, 0, sizeof(struct sctpstat));
672
673         if (req->newptr != NULL) {
674                 error = SYSCTL_IN(req, &sb_temp, sizeof(struct sctpstat));
675                 if (error != 0) {
676                         return (error);
677                 }
678         }
679 #if defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
680         memset(&sb, 0, sizeof(sb));
681         for (cpu = 0; cpu < mp_maxid; cpu++) {
682                 sarry = &SCTP_BASE_STATS[cpu];
683                 if (sarry->sctps_discontinuitytime.tv_sec > sb.sctps_discontinuitytime.tv_sec) {
684                         sb.sctps_discontinuitytime.tv_sec = sarry->sctps_discontinuitytime.tv_sec;
685                         sb.sctps_discontinuitytime.tv_usec = sarry->sctps_discontinuitytime.tv_usec;
686                 }
687                 sb.sctps_currestab += sarry->sctps_currestab;
688                 sb.sctps_activeestab += sarry->sctps_activeestab;
689                 sb.sctps_restartestab += sarry->sctps_restartestab;
690                 sb.sctps_collisionestab += sarry->sctps_collisionestab;
691                 sb.sctps_passiveestab += sarry->sctps_passiveestab;
692                 sb.sctps_aborted += sarry->sctps_aborted;
693                 sb.sctps_shutdown += sarry->sctps_shutdown;
694                 sb.sctps_outoftheblue += sarry->sctps_outoftheblue;
695                 sb.sctps_checksumerrors += sarry->sctps_checksumerrors;
696                 sb.sctps_outcontrolchunks += sarry->sctps_outcontrolchunks;
697                 sb.sctps_outorderchunks += sarry->sctps_outorderchunks;
698                 sb.sctps_outunorderchunks += sarry->sctps_outunorderchunks;
699                 sb.sctps_incontrolchunks += sarry->sctps_incontrolchunks;
700                 sb.sctps_inorderchunks += sarry->sctps_inorderchunks;
701                 sb.sctps_inunorderchunks += sarry->sctps_inunorderchunks;
702                 sb.sctps_fragusrmsgs += sarry->sctps_fragusrmsgs;
703                 sb.sctps_reasmusrmsgs += sarry->sctps_reasmusrmsgs;
704                 sb.sctps_outpackets += sarry->sctps_outpackets;
705                 sb.sctps_inpackets += sarry->sctps_inpackets;
706                 sb.sctps_recvpackets += sarry->sctps_recvpackets;
707                 sb.sctps_recvdatagrams += sarry->sctps_recvdatagrams;
708                 sb.sctps_recvpktwithdata += sarry->sctps_recvpktwithdata;
709                 sb.sctps_recvsacks += sarry->sctps_recvsacks;
710                 sb.sctps_recvdata += sarry->sctps_recvdata;
711                 sb.sctps_recvdupdata += sarry->sctps_recvdupdata;
712                 sb.sctps_recvheartbeat += sarry->sctps_recvheartbeat;
713                 sb.sctps_recvheartbeatack += sarry->sctps_recvheartbeatack;
714                 sb.sctps_recvecne += sarry->sctps_recvecne;
715                 sb.sctps_recvauth += sarry->sctps_recvauth;
716                 sb.sctps_recvauthmissing += sarry->sctps_recvauthmissing;
717                 sb.sctps_recvivalhmacid += sarry->sctps_recvivalhmacid;
718                 sb.sctps_recvivalkeyid += sarry->sctps_recvivalkeyid;
719                 sb.sctps_recvauthfailed += sarry->sctps_recvauthfailed;
720                 sb.sctps_recvexpress += sarry->sctps_recvexpress;
721                 sb.sctps_recvexpressm += sarry->sctps_recvexpressm;
722                 sb.sctps_recvswcrc += sarry->sctps_recvswcrc;
723                 sb.sctps_recvhwcrc += sarry->sctps_recvhwcrc;
724                 sb.sctps_sendpackets += sarry->sctps_sendpackets;
725                 sb.sctps_sendsacks += sarry->sctps_sendsacks;
726                 sb.sctps_senddata += sarry->sctps_senddata;
727                 sb.sctps_sendretransdata += sarry->sctps_sendretransdata;
728                 sb.sctps_sendfastretrans += sarry->sctps_sendfastretrans;
729                 sb.sctps_sendmultfastretrans += sarry->sctps_sendmultfastretrans;
730                 sb.sctps_sendheartbeat += sarry->sctps_sendheartbeat;
731                 sb.sctps_sendecne += sarry->sctps_sendecne;
732                 sb.sctps_sendauth += sarry->sctps_sendauth;
733                 sb.sctps_senderrors += sarry->sctps_senderrors;
734                 sb.sctps_sendswcrc += sarry->sctps_sendswcrc;
735                 sb.sctps_sendhwcrc += sarry->sctps_sendhwcrc;
736                 sb.sctps_pdrpfmbox += sarry->sctps_pdrpfmbox;
737                 sb.sctps_pdrpfehos += sarry->sctps_pdrpfehos;
738                 sb.sctps_pdrpmbda += sarry->sctps_pdrpmbda;
739                 sb.sctps_pdrpmbct += sarry->sctps_pdrpmbct;
740                 sb.sctps_pdrpbwrpt += sarry->sctps_pdrpbwrpt;
741                 sb.sctps_pdrpcrupt += sarry->sctps_pdrpcrupt;
742                 sb.sctps_pdrpnedat += sarry->sctps_pdrpnedat;
743                 sb.sctps_pdrppdbrk += sarry->sctps_pdrppdbrk;
744                 sb.sctps_pdrptsnnf += sarry->sctps_pdrptsnnf;
745                 sb.sctps_pdrpdnfnd += sarry->sctps_pdrpdnfnd;
746                 sb.sctps_pdrpdiwnp += sarry->sctps_pdrpdiwnp;
747                 sb.sctps_pdrpdizrw += sarry->sctps_pdrpdizrw;
748                 sb.sctps_pdrpbadd += sarry->sctps_pdrpbadd;
749                 sb.sctps_pdrpmark += sarry->sctps_pdrpmark;
750                 sb.sctps_timoiterator += sarry->sctps_timoiterator;
751                 sb.sctps_timodata += sarry->sctps_timodata;
752                 sb.sctps_timowindowprobe += sarry->sctps_timowindowprobe;
753                 sb.sctps_timoinit += sarry->sctps_timoinit;
754                 sb.sctps_timosack += sarry->sctps_timosack;
755                 sb.sctps_timoshutdown += sarry->sctps_timoshutdown;
756                 sb.sctps_timoheartbeat += sarry->sctps_timoheartbeat;
757                 sb.sctps_timocookie += sarry->sctps_timocookie;
758                 sb.sctps_timosecret += sarry->sctps_timosecret;
759                 sb.sctps_timopathmtu += sarry->sctps_timopathmtu;
760                 sb.sctps_timoshutdownack += sarry->sctps_timoshutdownack;
761                 sb.sctps_timoshutdownguard += sarry->sctps_timoshutdownguard;
762                 sb.sctps_timostrmrst += sarry->sctps_timostrmrst;
763                 sb.sctps_timoearlyfr += sarry->sctps_timoearlyfr;
764                 sb.sctps_timoasconf += sarry->sctps_timoasconf;
765                 sb.sctps_timodelprim += sarry->sctps_timodelprim;
766                 sb.sctps_timoautoclose += sarry->sctps_timoautoclose;
767                 sb.sctps_timoassockill += sarry->sctps_timoassockill;
768                 sb.sctps_timoinpkill += sarry->sctps_timoinpkill;
769                 sb.sctps_hdrops += sarry->sctps_hdrops;
770                 sb.sctps_badsum += sarry->sctps_badsum;
771                 sb.sctps_noport += sarry->sctps_noport;
772                 sb.sctps_badvtag += sarry->sctps_badvtag;
773                 sb.sctps_badsid += sarry->sctps_badsid;
774                 sb.sctps_nomem += sarry->sctps_nomem;
775                 sb.sctps_fastretransinrtt += sarry->sctps_fastretransinrtt;
776                 sb.sctps_markedretrans += sarry->sctps_markedretrans;
777                 sb.sctps_naglesent += sarry->sctps_naglesent;
778                 sb.sctps_naglequeued += sarry->sctps_naglequeued;
779                 sb.sctps_maxburstqueued += sarry->sctps_maxburstqueued;
780                 sb.sctps_ifnomemqueued += sarry->sctps_ifnomemqueued;
781                 sb.sctps_windowprobed += sarry->sctps_windowprobed;
782                 sb.sctps_lowlevelerr += sarry->sctps_lowlevelerr;
783                 sb.sctps_lowlevelerrusr += sarry->sctps_lowlevelerrusr;
784                 sb.sctps_datadropchklmt += sarry->sctps_datadropchklmt;
785                 sb.sctps_datadroprwnd += sarry->sctps_datadroprwnd;
786                 sb.sctps_ecnereducedcwnd += sarry->sctps_ecnereducedcwnd;
787                 sb.sctps_vtagexpress += sarry->sctps_vtagexpress;
788                 sb.sctps_vtagbogus += sarry->sctps_vtagbogus;
789                 sb.sctps_primary_randry += sarry->sctps_primary_randry;
790                 sb.sctps_cmt_randry += sarry->sctps_cmt_randry;
791                 sb.sctps_slowpath_sack += sarry->sctps_slowpath_sack;
792                 sb.sctps_wu_sacks_sent += sarry->sctps_wu_sacks_sent;
793                 sb.sctps_sends_with_flags += sarry->sctps_sends_with_flags;
794                 sb.sctps_sends_with_unord += sarry->sctps_sends_with_unord;
795                 sb.sctps_sends_with_eof += sarry->sctps_sends_with_eof;
796                 sb.sctps_sends_with_abort += sarry->sctps_sends_with_abort;
797                 sb.sctps_protocol_drain_calls += sarry->sctps_protocol_drain_calls;
798                 sb.sctps_protocol_drains_done += sarry->sctps_protocol_drains_done;
799                 sb.sctps_read_peeks += sarry->sctps_read_peeks;
800                 sb.sctps_cached_chk += sarry->sctps_cached_chk;
801                 sb.sctps_cached_strmoq += sarry->sctps_cached_strmoq;
802                 sb.sctps_left_abandon += sarry->sctps_left_abandon;
803                 sb.sctps_send_burst_avoid += sarry->sctps_send_burst_avoid;
804                 sb.sctps_send_cwnd_avoid += sarry->sctps_send_cwnd_avoid;
805                 sb.sctps_fwdtsn_map_over += sarry->sctps_fwdtsn_map_over;
806                 if (req->newptr != NULL) {
807                         memcpy(sarry, &sb_temp, sizeof(struct sctpstat));
808                 }
809         }
810         error = SYSCTL_OUT(req, &sb, sizeof(struct sctpstat));
811 #else
812         error = SYSCTL_OUT(req, &SCTP_BASE_STATS, sizeof(struct sctpstat));
813         if (error != 0) {
814                 return (error);
815         }
816         if (req->newptr != NULL) {
817                 memcpy(&SCTP_BASE_STATS, &sb_temp, sizeof(struct sctpstat));
818         }
819 #endif
820         return (error);
821 }
822
823 #if defined(SCTP_LOCAL_TRACE_BUF)
824 static int
825 sctp_sysctl_handle_trace_log(SYSCTL_HANDLER_ARGS)
826 {
827         int error;
828
829         error = SYSCTL_OUT(req, &SCTP_BASE_SYSCTL(sctp_log), sizeof(struct sctp_log));
830         return (error);
831 }
832
833 static int
834 sctp_sysctl_handle_trace_log_clear(SYSCTL_HANDLER_ARGS)
835 {
836         int error = 0;
837
838         memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
839         return (error);
840 }
841 #endif
842
843 #define SCTP_UINT_SYSCTL(mib_name, var_name, prefix)                    \
844         static int                                                      \
845         sctp_sysctl_handle_##mib_name(SYSCTL_HANDLER_ARGS)              \
846         {                                                               \
847                 int error;                                              \
848                 uint32_t new;                                           \
849                                                                         \
850                 new = SCTP_BASE_SYSCTL(var_name);                       \
851                 error = sysctl_handle_int(oidp, &new, 0, req);          \
852                 if ((error == 0) && (req->newptr != NULL)) {            \
853                         if ((new < prefix##_MIN) ||                     \
854                             (new > prefix##_MAX)) {                     \
855                                 error = EINVAL;                         \
856                         } else {                                        \
857                                 SCTP_BASE_SYSCTL(var_name) = new;       \
858                         }                                               \
859                 }                                                       \
860                 return (error);                                         \
861         }                                                               \
862         SYSCTL_PROC(_net_inet_sctp, OID_AUTO, mib_name,                 \
863                          CTLFLAG_VNET|CTLTYPE_UINT|CTLFLAG_RW, NULL, 0, \
864                          sctp_sysctl_handle_##mib_name, "UI", prefix##_DESC);
865
866 /*
867  * sysctl definitions
868  */
869
870 SCTP_UINT_SYSCTL(sendspace, sctp_sendspace, SCTPCTL_MAXDGRAM)
871 SCTP_UINT_SYSCTL(recvspace, sctp_recvspace, SCTPCTL_RECVSPACE)
872 SCTP_UINT_SYSCTL(auto_asconf, sctp_auto_asconf, SCTPCTL_AUTOASCONF)
873 SCTP_UINT_SYSCTL(ecn_enable, sctp_ecn_enable, SCTPCTL_ECN_ENABLE)
874 SCTP_UINT_SYSCTL(pr_enable, sctp_pr_enable, SCTPCTL_PR_ENABLE)
875 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, auth_enable, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
876     NULL, 0, sctp_sysctl_handle_auth, "IU", SCTPCTL_AUTH_ENABLE_DESC);
877 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, asconf_enable, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
878     NULL, 0, sctp_sysctl_handle_asconf, "IU", SCTPCTL_ASCONF_ENABLE_DESC);
879 SCTP_UINT_SYSCTL(reconfig_enable, sctp_reconfig_enable, SCTPCTL_RECONFIG_ENABLE)
880 SCTP_UINT_SYSCTL(nrsack_enable, sctp_nrsack_enable, SCTPCTL_NRSACK_ENABLE)
881 SCTP_UINT_SYSCTL(pktdrop_enable, sctp_pktdrop_enable, SCTPCTL_PKTDROP_ENABLE)
882 SCTP_UINT_SYSCTL(peer_chkoh, sctp_peer_chunk_oh, SCTPCTL_PEER_CHKOH)
883 SCTP_UINT_SYSCTL(maxburst, sctp_max_burst_default, SCTPCTL_MAXBURST)
884 SCTP_UINT_SYSCTL(fr_maxburst, sctp_fr_max_burst_default, SCTPCTL_FRMAXBURST)
885 SCTP_UINT_SYSCTL(maxchunks, sctp_max_chunks_on_queue, SCTPCTL_MAXCHUNKS)
886 SCTP_UINT_SYSCTL(tcbhashsize, sctp_hashtblsize, SCTPCTL_TCBHASHSIZE)
887 SCTP_UINT_SYSCTL(pcbhashsize, sctp_pcbtblsize, SCTPCTL_PCBHASHSIZE)
888 SCTP_UINT_SYSCTL(min_split_point, sctp_min_split_point, SCTPCTL_MIN_SPLIT_POINT)
889 SCTP_UINT_SYSCTL(chunkscale, sctp_chunkscale, SCTPCTL_CHUNKSCALE)
890 SCTP_UINT_SYSCTL(delayed_sack_time, sctp_delayed_sack_time_default, SCTPCTL_DELAYED_SACK_TIME)
891 SCTP_UINT_SYSCTL(sack_freq, sctp_sack_freq_default, SCTPCTL_SACK_FREQ)
892 SCTP_UINT_SYSCTL(sys_resource, sctp_system_free_resc_limit, SCTPCTL_SYS_RESOURCE)
893 SCTP_UINT_SYSCTL(asoc_resource, sctp_asoc_free_resc_limit, SCTPCTL_ASOC_RESOURCE)
894 SCTP_UINT_SYSCTL(heartbeat_interval, sctp_heartbeat_interval_default, SCTPCTL_HEARTBEAT_INTERVAL)
895 SCTP_UINT_SYSCTL(pmtu_raise_time, sctp_pmtu_raise_time_default, SCTPCTL_PMTU_RAISE_TIME)
896 SCTP_UINT_SYSCTL(shutdown_guard_time, sctp_shutdown_guard_time_default, SCTPCTL_SHUTDOWN_GUARD_TIME)
897 SCTP_UINT_SYSCTL(secret_lifetime, sctp_secret_lifetime_default, SCTPCTL_SECRET_LIFETIME)
898 SCTP_UINT_SYSCTL(rto_max, sctp_rto_max_default, SCTPCTL_RTO_MAX)
899 SCTP_UINT_SYSCTL(rto_min, sctp_rto_min_default, SCTPCTL_RTO_MIN)
900 SCTP_UINT_SYSCTL(rto_initial, sctp_rto_initial_default, SCTPCTL_RTO_INITIAL)
901 SCTP_UINT_SYSCTL(init_rto_max, sctp_init_rto_max_default, SCTPCTL_INIT_RTO_MAX)
902 SCTP_UINT_SYSCTL(valid_cookie_life, sctp_valid_cookie_life_default, SCTPCTL_VALID_COOKIE_LIFE)
903 SCTP_UINT_SYSCTL(init_rtx_max, sctp_init_rtx_max_default, SCTPCTL_INIT_RTX_MAX)
904 SCTP_UINT_SYSCTL(assoc_rtx_max, sctp_assoc_rtx_max_default, SCTPCTL_ASSOC_RTX_MAX)
905 SCTP_UINT_SYSCTL(path_rtx_max, sctp_path_rtx_max_default, SCTPCTL_PATH_RTX_MAX)
906 SCTP_UINT_SYSCTL(path_pf_threshold, sctp_path_pf_threshold, SCTPCTL_PATH_PF_THRESHOLD)
907 SCTP_UINT_SYSCTL(add_more_on_output, sctp_add_more_threshold, SCTPCTL_ADD_MORE_ON_OUTPUT)
908 SCTP_UINT_SYSCTL(incoming_streams, sctp_nr_incoming_streams_default, SCTPCTL_INCOMING_STREAMS)
909 SCTP_UINT_SYSCTL(outgoing_streams, sctp_nr_outgoing_streams_default, SCTPCTL_OUTGOING_STREAMS)
910 SCTP_UINT_SYSCTL(cmt_on_off, sctp_cmt_on_off, SCTPCTL_CMT_ON_OFF)
911 SCTP_UINT_SYSCTL(cmt_use_dac, sctp_cmt_use_dac, SCTPCTL_CMT_USE_DAC)
912 SCTP_UINT_SYSCTL(cwnd_maxburst, sctp_use_cwnd_based_maxburst, SCTPCTL_CWND_MAXBURST)
913 SCTP_UINT_SYSCTL(nat_friendly, sctp_nat_friendly, SCTPCTL_NAT_FRIENDLY)
914 SCTP_UINT_SYSCTL(abc_l_var, sctp_L2_abc_variable, SCTPCTL_ABC_L_VAR)
915 SCTP_UINT_SYSCTL(max_chained_mbufs, sctp_mbuf_threshold_count, SCTPCTL_MAX_CHAINED_MBUFS)
916 SCTP_UINT_SYSCTL(do_sctp_drain, sctp_do_drain, SCTPCTL_DO_SCTP_DRAIN)
917 SCTP_UINT_SYSCTL(hb_max_burst, sctp_hb_maxburst, SCTPCTL_HB_MAX_BURST)
918 SCTP_UINT_SYSCTL(abort_at_limit, sctp_abort_if_one_2_one_hits_limit, SCTPCTL_ABORT_AT_LIMIT)
919 SCTP_UINT_SYSCTL(min_residual, sctp_min_residual, SCTPCTL_MIN_RESIDUAL)
920 SCTP_UINT_SYSCTL(max_retran_chunk, sctp_max_retran_chunk, SCTPCTL_MAX_RETRAN_CHUNK)
921 SCTP_UINT_SYSCTL(log_level, sctp_logging_level, SCTPCTL_LOGGING_LEVEL)
922 SCTP_UINT_SYSCTL(default_cc_module, sctp_default_cc_module, SCTPCTL_DEFAULT_CC_MODULE)
923 SCTP_UINT_SYSCTL(default_ss_module, sctp_default_ss_module, SCTPCTL_DEFAULT_SS_MODULE)
924 SCTP_UINT_SYSCTL(default_frag_interleave, sctp_default_frag_interleave, SCTPCTL_DEFAULT_FRAG_INTERLEAVE)
925 SCTP_UINT_SYSCTL(mobility_base, sctp_mobility_base, SCTPCTL_MOBILITY_BASE)
926 SCTP_UINT_SYSCTL(mobility_fasthandoff, sctp_mobility_fasthandoff, SCTPCTL_MOBILITY_FASTHANDOFF)
927 #if defined(SCTP_LOCAL_TRACE_BUF)
928 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, log, CTLFLAG_VNET | CTLTYPE_STRUCT | CTLFLAG_RD,
929     NULL, 0, sctp_sysctl_handle_trace_log, "S,sctplog", "SCTP logging (struct sctp_log)");
930 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, clear_trace, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
931     NULL, 0, sctp_sysctl_handle_trace_log_clear, "IU", "Clear SCTP Logging buffer");
932 #endif
933 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, udp_tunneling_port, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
934     NULL, 0, sctp_sysctl_handle_udp_tunneling, "IU", SCTPCTL_UDP_TUNNELING_PORT_DESC);
935 SCTP_UINT_SYSCTL(enable_sack_immediately, sctp_enable_sack_immediately, SCTPCTL_SACK_IMMEDIATELY_ENABLE)
936 SCTP_UINT_SYSCTL(nat_friendly_init, sctp_inits_include_nat_friendly, SCTPCTL_NAT_FRIENDLY_INITS)
937 SCTP_UINT_SYSCTL(vtag_time_wait, sctp_vtag_time_wait, SCTPCTL_TIME_WAIT)
938 SCTP_UINT_SYSCTL(buffer_splitting, sctp_buffer_splitting, SCTPCTL_BUFFER_SPLITTING)
939 SCTP_UINT_SYSCTL(initial_cwnd, sctp_initial_cwnd, SCTPCTL_INITIAL_CWND)
940 SCTP_UINT_SYSCTL(rttvar_bw, sctp_rttvar_bw, SCTPCTL_RTTVAR_BW)
941 SCTP_UINT_SYSCTL(rttvar_rtt, sctp_rttvar_rtt, SCTPCTL_RTTVAR_RTT)
942 SCTP_UINT_SYSCTL(rttvar_eqret, sctp_rttvar_eqret, SCTPCTL_RTTVAR_EQRET)
943 SCTP_UINT_SYSCTL(rttvar_steady_step, sctp_steady_step, SCTPCTL_RTTVAR_STEADYS)
944 SCTP_UINT_SYSCTL(use_dcccecn, sctp_use_dccc_ecn, SCTPCTL_RTTVAR_DCCCECN)
945 SCTP_UINT_SYSCTL(blackhole, sctp_blackhole, SCTPCTL_BLACKHOLE)
946 SCTP_UINT_SYSCTL(diag_info_code, sctp_diag_info_code, SCTPCTL_DIAG_INFO_CODE)
947 #ifdef SCTP_DEBUG
948 SCTP_UINT_SYSCTL(debug, sctp_debug_on, SCTPCTL_DEBUG)
949 #endif
950 #if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
951 SCTP_UINT_SYSCTL(output_unlocked, sctp_output_unlocked, SCTPCTL_OUTPUT_UNLOCKED)
952 #endif
953 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, stats, CTLFLAG_VNET | CTLTYPE_STRUCT | CTLFLAG_RW,
954     NULL, 0, sctp_sysctl_handle_stats, "S,sctpstat", "SCTP statistics (struct sctp_stat)");
955 SYSCTL_PROC(_net_inet_sctp, OID_AUTO, assoclist, CTLFLAG_VNET | CTLTYPE_OPAQUE | CTLFLAG_RD,
956     NULL, 0, sctp_sysctl_handle_assoclist, "S,xassoc", "List of active SCTP associations");