blob: e90be8b45d32448fbe2914638d85381098a05b63 [file] [log] [blame]
Neale Rannse4031132020-10-26 13:00:06 +00001/*
2 * Copyright (c) 2015 Cisco and/or its affiliates.
3 * Licensed under the Apache License, Version 2.0 (the "License");
4 * you may not use this file except in compliance with the License.
5 * You may obtain a copy of the License at:
6 *
7 * http://www.apache.org/licenses/LICENSE-2.0
8 *
9 * Unless required by applicable law or agreed to in writing, software
10 * distributed under the License is distributed on an "AS IS" BASIS,
11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 * See the License for the specific language governing permissions and
13 * limitations under the License.
14 */
15/*
16 * ip/ip_lookup.c: ip4/6 adjacency and lookup table management
17 *
18 * Copyright (c) 2008 Eliot Dresselhaus
19 *
20 * Permission is hereby granted, free of charge, to any person obtaining
21 * a copy of this software and associated documentation files (the
22 * "Software"), to deal in the Software without restriction, including
23 * without limitation the rights to use, copy, modify, merge, publish,
24 * distribute, sublicense, and/or sell copies of the Software, and to
25 * permit persons to whom the Software is furnished to do so, subject to
26 * the following conditions:
27 *
28 * The above copyright notice and this permission notice shall be
29 * included in all copies or substantial portions of the Software.
30 *
31 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
32 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
33 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
34 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
35 * LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
36 * OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
37 * WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
38 */
39
40#include <vnet/ip/ip_container_proxy.h>
41#include <vnet/ip/format.h>
42#include <vnet/fib/fib_table.h>
43#include <vnet/dpo/l3_proxy_dpo.h>
44#include <vnet/dpo/load_balance.h>
45
46clib_error_t *
47vnet_ip_container_proxy_add_del (vnet_ip_container_proxy_args_t * args)
48{
49 u32 fib_index;
50
51 if (!vnet_sw_interface_is_api_valid (vnet_get_main (), args->sw_if_index))
52 return clib_error_return_code (0, VNET_API_ERROR_INVALID_INTERFACE, 0,
53 "invalid sw_if_index");
54
55 fib_index = fib_table_get_table_id_for_sw_if_index (args->prefix.fp_proto,
56 args->sw_if_index);
57 if (args->is_add)
58 {
59 dpo_id_t proxy_dpo = DPO_INVALID;
60 l3_proxy_dpo_add_or_lock (fib_proto_to_dpo (args->prefix.fp_proto),
61 args->sw_if_index, &proxy_dpo);
62 fib_table_entry_special_dpo_add (fib_index,
63 &args->prefix,
64 FIB_SOURCE_PROXY,
65 FIB_ENTRY_FLAG_EXCLUSIVE, &proxy_dpo);
66 dpo_reset (&proxy_dpo);
67 }
68 else
69 {
70 fib_table_entry_special_remove (fib_index, &args->prefix,
71 FIB_SOURCE_PROXY);
72 }
73 return 0;
74}
75
76u8
77ip_container_proxy_is_set (fib_prefix_t * pfx, u32 sw_if_index)
78{
79 u32 fib_index;
80 fib_node_index_t fei;
81 const dpo_id_t *dpo;
82 l3_proxy_dpo_t *l3p;
83 load_balance_t *lb0;
84
85 fib_index = fib_table_get_table_id_for_sw_if_index (pfx->fp_proto,
86 sw_if_index);
87 if (fib_index == ~0)
88 return 0;
89
90 fei = fib_table_lookup_exact_match (fib_index, pfx);
91 if (fei == FIB_NODE_INDEX_INVALID)
92 return 0;
93
94 dpo = fib_entry_contribute_ip_forwarding (fei);
95 lb0 = load_balance_get (dpo->dpoi_index);
96 dpo = load_balance_get_bucket_i (lb0, 0);
97 if (dpo->dpoi_type != DPO_L3_PROXY)
98 return 0;
99
100 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
101 return (l3p->l3p_sw_if_index == sw_if_index);
102}
103
104typedef struct ip_container_proxy_walk_ctx_t_
105{
106 ip_container_proxy_cb_t cb;
107 void *ctx;
108} ip_container_proxy_walk_ctx_t;
109
110static fib_table_walk_rc_t
111ip_container_proxy_fib_table_walk (fib_node_index_t fei, void *arg)
112{
113 ip_container_proxy_walk_ctx_t *ctx = arg;
114 const fib_prefix_t *pfx;
115 const dpo_id_t *dpo;
116 load_balance_t *lb;
117 l3_proxy_dpo_t *l3p;
118
119 pfx = fib_entry_get_prefix (fei);
120 if (fib_entry_is_sourced (fei, FIB_SOURCE_PROXY))
121 {
122 dpo = fib_entry_contribute_ip_forwarding (fei);
123 lb = load_balance_get (dpo->dpoi_index);
124 dpo = load_balance_get_bucket_i (lb, 0);
125 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
126 ctx->cb (pfx, l3p->l3p_sw_if_index, ctx->ctx);
127 }
128
129 return FIB_TABLE_WALK_CONTINUE;
130}
131
132void
133ip_container_proxy_walk (ip_container_proxy_cb_t cb, void *ctx)
134{
135 fib_table_t *fib_table;
136 ip_container_proxy_walk_ctx_t wctx = {
137 .cb = cb,
138 .ctx = ctx,
139 };
140
141 /* *INDENT-OFF* */
142 pool_foreach (fib_table, ip4_main.fibs,
143 ({
144 fib_table_walk(fib_table->ft_index,
145 FIB_PROTOCOL_IP4,
146 ip_container_proxy_fib_table_walk,
147 &wctx);
148 }));
149 pool_foreach (fib_table, ip6_main.fibs,
150 ({
151 fib_table_walk(fib_table->ft_index,
152 FIB_PROTOCOL_IP6,
153 ip_container_proxy_fib_table_walk,
154 &wctx);
155 }));
156 /* *INDENT-ON* */
157}
158
159clib_error_t *
160ip_container_cmd (vlib_main_t * vm,
161 unformat_input_t * main_input, vlib_cli_command_t * cmd)
162{
163 unformat_input_t _line_input, *line_input = &_line_input;
164 fib_prefix_t pfx;
165 u32 is_del, addr_set = 0;
166 vnet_main_t *vnm;
167 u32 sw_if_index;
168
169 vnm = vnet_get_main ();
170 is_del = 0;
171 sw_if_index = ~0;
172 clib_memset (&pfx, 0, sizeof (pfx));
173
174 /* Get a line of input. */
175 if (!unformat_user (main_input, unformat_line_input, line_input))
176 return 0;
177
178 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
179 {
180 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
181 {
182 pfx.fp_proto = FIB_PROTOCOL_IP4;
183 pfx.fp_len = 32;
184 addr_set = 1;
185 }
186 else if (unformat (line_input, "%U",
187 unformat_ip6_address, &pfx.fp_addr.ip6))
188 {
189 pfx.fp_proto = FIB_PROTOCOL_IP6;
190 pfx.fp_len = 128;
191 addr_set = 1;
192 }
193 else if (unformat (line_input, "%U",
194 unformat_vnet_sw_interface, vnm, &sw_if_index))
195 ;
196 else if (unformat (line_input, "del"))
197 is_del = 1;
198 else
199 {
200 unformat_free (line_input);
201 return (clib_error_return (0, "unknown input '%U'",
202 format_unformat_error, line_input));
203 }
204 }
205
206 if (~0 == sw_if_index || !addr_set)
207 {
208 unformat_free (line_input);
209 vlib_cli_output (vm, "interface and address must be set");
210 return 0;
211 }
212
213 vnet_ip_container_proxy_args_t args = {
214 .prefix = pfx,
215 .sw_if_index = sw_if_index,
216 .is_add = !is_del,
217 };
218 vnet_ip_container_proxy_add_del (&args);
219 unformat_free (line_input);
220 return (NULL);
221}
222
223/* *INDENT-OFF* */
224VLIB_CLI_COMMAND (ip_container_command_node, static) = {
225 .path = "ip container",
226 .function = ip_container_cmd,
227 .short_help = "ip container <address> <interface>",
228 .is_mp_safe = 1,
229};
230/* *INDENT-ON* */
231
232clib_error_t *
233show_ip_container_cmd_fn (vlib_main_t * vm, unformat_input_t * main_input,
234 vlib_cli_command_t * cmd)
235{
236 unformat_input_t _line_input, *line_input = &_line_input;
237 vnet_main_t *vnm = vnet_get_main ();
238 fib_prefix_t pfx;
239 u32 sw_if_index = ~0;
240 u8 has_proxy;
241
242 if (!unformat_user (main_input, unformat_line_input, line_input))
243 return 0;
244 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
245 {
246 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
247 {
248 pfx.fp_proto = FIB_PROTOCOL_IP4;
249 pfx.fp_len = 32;
250 }
251 else if (unformat (line_input, "%U",
252 unformat_ip6_address, &pfx.fp_addr.ip6))
253 {
254 pfx.fp_proto = FIB_PROTOCOL_IP6;
255 pfx.fp_len = 128;
256 }
257 else if (unformat (line_input, "%U",
258 unformat_vnet_sw_interface, vnm, &sw_if_index))
259 ;
260 else
261 {
262 unformat_free (line_input);
263 return (clib_error_return (0, "unknown input '%U'",
264 format_unformat_error, line_input));
265 }
266 }
267
268 if (~0 == sw_if_index)
269 {
270 unformat_free (line_input);
271 vlib_cli_output (vm, "no interface");
272 return (clib_error_return (0, "no interface"));
273 }
274
275 has_proxy = ip_container_proxy_is_set (&pfx, sw_if_index);
276 vlib_cli_output (vm, "ip container proxy is: %s", has_proxy ? "on" : "off");
277
278 unformat_free (line_input);
279 return 0;
280}
281
282/* *INDENT-OFF* */
283VLIB_CLI_COMMAND (show_ip_container_command, static) = {
284 .path = "show ip container",
285 .function = show_ip_container_cmd_fn,
286 .short_help = "show ip container <address> <interface>",
287 .is_mp_safe = 1,
288};
289/* *INDENT-ON* */
290
291/*
292 * fd.io coding-style-patch-verification: ON
293 *
294 * Local Variables:
295 * eval: (c-set-style "gnu")
296 * End:
297 */