blob: 8c89ed4f49011d8b35dc2ae54987d2be14f304aa [file] [log] [blame]
Ed Warnickecb9cada2015-12-08 15:45:58 -07001/*
2 * Copyright (c) 2015 Cisco and/or its affiliates.
3 * Licensed under the Apache License, Version 2.0 (the "License");
4 * you may not use this file except in compliance with the License.
5 * You may obtain a copy of the License at:
6 *
7 * http://www.apache.org/licenses/LICENSE-2.0
8 *
9 * Unless required by applicable law or agreed to in writing, software
10 * distributed under the License is distributed on an "AS IS" BASIS,
11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 * See the License for the specific language governing permissions and
13 * limitations under the License.
14 */
15/*
16 * ip/ip_lookup.c: ip4/6 adjacency and lookup table managment
17 *
18 * Copyright (c) 2008 Eliot Dresselhaus
19 *
20 * Permission is hereby granted, free of charge, to any person obtaining
21 * a copy of this software and associated documentation files (the
22 * "Software"), to deal in the Software without restriction, including
23 * without limitation the rights to use, copy, modify, merge, publish,
24 * distribute, sublicense, and/or sell copies of the Software, and to
25 * permit persons to whom the Software is furnished to do so, subject to
26 * the following conditions:
27 *
28 * The above copyright notice and this permission notice shall be
29 * included in all copies or substantial portions of the Software.
30 *
31 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
32 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
33 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
34 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
35 * LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
36 * OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
37 * WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
38 */
39
Ed Warnickecb9cada2015-12-08 15:45:58 -070040#include <vnet/ip/ip.h>
Neale Ranns6c3ebcc2016-10-02 21:20:15 +010041#include <vnet/adj/adj.h>
Neale Ranns0bfe5d82016-08-25 15:29:12 +010042#include <vnet/fib/fib_table.h>
43#include <vnet/fib/ip4_fib.h>
44#include <vnet/fib/ip6_fib.h>
45#include <vnet/mpls/mpls.h>
Neale Ranns32e1c012016-11-22 17:07:28 +000046#include <vnet/mfib/mfib_table.h>
Neale Ranns0bfe5d82016-08-25 15:29:12 +010047#include <vnet/dpo/drop_dpo.h>
48#include <vnet/dpo/classify_dpo.h>
49#include <vnet/dpo/punt_dpo.h>
50#include <vnet/dpo/receive_dpo.h>
Neale Ranns948e00f2016-10-20 13:39:34 +010051#include <vnet/dpo/ip_null_dpo.h>
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -070052#include <vnet/dpo/l3_proxy_dpo.h>
Neale Ranns3f844d02017-02-18 00:03:54 -080053#include <vnet/ip/ip6_neighbor.h>
Neale Ranns37029302018-08-10 05:30:06 -070054#include <vnet/ethernet/arp.h>
Ed Warnickecb9cada2015-12-08 15:45:58 -070055
Billy McFall0683c9c2016-10-13 08:27:31 -040056/**
57 * @file
58 * @brief IPv4 and IPv6 adjacency and lookup table managment.
59 *
60 */
61
Ed Warnickecb9cada2015-12-08 15:45:58 -070062clib_error_t *
63ip_interface_address_add_del (ip_lookup_main_t * lm,
64 u32 sw_if_index,
Dave Barachd7cb1b52016-12-09 09:52:16 -050065 void *addr_fib,
Ed Warnickecb9cada2015-12-08 15:45:58 -070066 u32 address_length,
Dave Barachd7cb1b52016-12-09 09:52:16 -050067 u32 is_del, u32 * result_if_address_index)
Ed Warnickecb9cada2015-12-08 15:45:58 -070068{
Dave Barachd7cb1b52016-12-09 09:52:16 -050069 vnet_main_t *vnm = vnet_get_main ();
70 ip_interface_address_t *a, *prev, *next;
71 uword *p = mhash_get (&lm->address_to_if_address_index, addr_fib);
Ed Warnickecb9cada2015-12-08 15:45:58 -070072
Dave Barachd7cb1b52016-12-09 09:52:16 -050073 vec_validate_init_empty (lm->if_address_pool_index_by_sw_if_index,
74 sw_if_index, ~0);
Ed Warnickecb9cada2015-12-08 15:45:58 -070075 a = p ? pool_elt_at_index (lm->if_address_pool, p[0]) : 0;
76
77 /* Verify given length. */
flyingeagle23d1ed4862017-04-06 16:47:46 +080078 if ((a && (address_length != a->address_length)) ||
79 (address_length == 0) ||
80 (lm->is_ip6 && address_length > 128) ||
81 (!lm->is_ip6 && address_length > 32))
Ed Warnickecb9cada2015-12-08 15:45:58 -070082 {
83 vnm->api_errno = VNET_API_ERROR_ADDRESS_LENGTH_MISMATCH;
Dave Barachd7cb1b52016-12-09 09:52:16 -050084 return clib_error_create
85 ("%U wrong length (expected %d) for interface %U",
86 lm->format_address_and_length, addr_fib,
87 address_length, a ? a->address_length : -1,
88 format_vnet_sw_if_index_name, vnm, sw_if_index);
Ed Warnickecb9cada2015-12-08 15:45:58 -070089 }
90
91 if (is_del)
92 {
Dave Barachd7cb1b52016-12-09 09:52:16 -050093 if (!a)
94 {
95 vnet_sw_interface_t *si = vnet_get_sw_interface (vnm, sw_if_index);
96 vnm->api_errno = VNET_API_ERROR_ADDRESS_NOT_FOUND_FOR_INTERFACE;
97 return clib_error_create ("%U not found for interface %U",
98 lm->format_address_and_length,
99 addr_fib, address_length,
100 format_vnet_sw_interface_name, vnm, si);
101 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700102
103 if (a->prev_this_sw_interface != ~0)
104 {
Dave Barachd7cb1b52016-12-09 09:52:16 -0500105 prev =
106 pool_elt_at_index (lm->if_address_pool,
107 a->prev_this_sw_interface);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700108 prev->next_this_sw_interface = a->next_this_sw_interface;
109 }
110 if (a->next_this_sw_interface != ~0)
111 {
Dave Barachd7cb1b52016-12-09 09:52:16 -0500112 next =
113 pool_elt_at_index (lm->if_address_pool,
114 a->next_this_sw_interface);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700115 next->prev_this_sw_interface = a->prev_this_sw_interface;
116
Dave Barachd7cb1b52016-12-09 09:52:16 -0500117 if (a->prev_this_sw_interface == ~0)
118 lm->if_address_pool_index_by_sw_if_index[sw_if_index] =
119 a->next_this_sw_interface;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700120 }
121
Dave Barachd7cb1b52016-12-09 09:52:16 -0500122 if ((a->next_this_sw_interface == ~0)
123 && (a->prev_this_sw_interface == ~0))
Ed Warnickecb9cada2015-12-08 15:45:58 -0700124 lm->if_address_pool_index_by_sw_if_index[sw_if_index] = ~0;
125
126 mhash_unset (&lm->address_to_if_address_index, addr_fib,
127 /* old_value */ 0);
128 pool_put (lm->if_address_pool, a);
129
130 if (result_if_address_index)
131 *result_if_address_index = ~0;
132 }
133
Dave Barachd7cb1b52016-12-09 09:52:16 -0500134 else if (!a)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700135 {
Dave Barachd7cb1b52016-12-09 09:52:16 -0500136 u32 pi; /* previous index */
137 u32 ai;
138 u32 hi; /* head index */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700139
140 pool_get (lm->if_address_pool, a);
Dave Barachb7b92992018-10-17 10:38:51 -0400141 clib_memset (a, ~0, sizeof (a[0]));
Ed Warnickecb9cada2015-12-08 15:45:58 -0700142 ai = a - lm->if_address_pool;
143
144 hi = pi = lm->if_address_pool_index_by_sw_if_index[sw_if_index];
145 prev = 0;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500146 while (pi != (u32) ~ 0)
147 {
148 prev = pool_elt_at_index (lm->if_address_pool, pi);
149 pi = prev->next_this_sw_interface;
150 }
151 pi = prev ? prev - lm->if_address_pool : (u32) ~ 0;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700152
153 a->address_key = mhash_set (&lm->address_to_if_address_index,
154 addr_fib, ai, /* old_value */ 0);
155 a->address_length = address_length;
156 a->sw_if_index = sw_if_index;
157 a->flags = 0;
158 a->prev_this_sw_interface = pi;
159 a->next_this_sw_interface = ~0;
160 if (prev)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500161 prev->next_this_sw_interface = ai;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700162
Dave Barachd7cb1b52016-12-09 09:52:16 -0500163 lm->if_address_pool_index_by_sw_if_index[sw_if_index] =
164 (hi != ~0) ? hi : ai;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700165 if (result_if_address_index)
166 *result_if_address_index = ai;
167 }
168 else
169 {
Jon Loeliger35ffa3e2017-09-28 13:54:16 -0500170 if (sw_if_index != a->sw_if_index)
171 {
172 if (result_if_address_index)
173 *result_if_address_index = ~0;
174 vnm->api_errno = VNET_API_ERROR_DUPLICATE_IF_ADDRESS;
175 return clib_error_create
176 ("Prefix %U already found on interface %U",
177 lm->format_address_and_length, addr_fib, address_length,
178 format_vnet_sw_if_index_name, vnm, a->sw_if_index);
179 }
180
Ed Warnickecb9cada2015-12-08 15:45:58 -0700181 if (result_if_address_index)
182 *result_if_address_index = a - lm->if_address_pool;
183 }
Dave Barachd7cb1b52016-12-09 09:52:16 -0500184
Ed Warnickecb9cada2015-12-08 15:45:58 -0700185 return /* no error */ 0;
186}
187
Neale Rannsd96bad82017-03-08 01:12:54 -0800188static clib_error_t *
189ip_sw_interface_add_del (vnet_main_t * vnm, u32 sw_if_index, u32 is_add)
190{
191 vec_validate_init_empty (ip4_main.
192 lookup_main.if_address_pool_index_by_sw_if_index,
193 sw_if_index, ~0);
194 vec_validate_init_empty (ip6_main.
195 lookup_main.if_address_pool_index_by_sw_if_index,
196 sw_if_index, ~0);
197
198 return (NULL);
199}
200
201VNET_SW_INTERFACE_ADD_DEL_FUNCTION (ip_sw_interface_add_del);
202
Dave Barachd7cb1b52016-12-09 09:52:16 -0500203void
204ip_lookup_init (ip_lookup_main_t * lm, u32 is_ip6)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700205{
Dave Barachd7cb1b52016-12-09 09:52:16 -0500206 if (!lm->fib_result_n_bytes)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700207 lm->fib_result_n_bytes = sizeof (uword);
208
Ed Warnickecb9cada2015-12-08 15:45:58 -0700209 lm->is_ip6 = is_ip6;
210 if (is_ip6)
211 {
212 lm->format_address_and_length = format_ip6_address_and_length;
213 mhash_init (&lm->address_to_if_address_index, sizeof (uword),
214 sizeof (ip6_address_fib_t));
215 }
216 else
217 {
218 lm->format_address_and_length = format_ip4_address_and_length;
219 mhash_init (&lm->address_to_if_address_index, sizeof (uword),
220 sizeof (ip4_address_fib_t));
221 }
222
223 {
224 int i;
225
226 /* Setup all IP protocols to be punted and builtin-unknown. */
227 for (i = 0; i < 256; i++)
228 {
229 lm->local_next_by_ip_protocol[i] = IP_LOCAL_NEXT_PUNT;
230 lm->builtin_protocol_by_ip_protocol[i] = IP_BUILTIN_PROTOCOL_UNKNOWN;
231 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700232
233 lm->local_next_by_ip_protocol[IP_PROTOCOL_UDP] = IP_LOCAL_NEXT_UDP_LOOKUP;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500234 lm->local_next_by_ip_protocol[is_ip6 ? IP_PROTOCOL_ICMP6 :
235 IP_PROTOCOL_ICMP] = IP_LOCAL_NEXT_ICMP;
236 lm->builtin_protocol_by_ip_protocol[IP_PROTOCOL_UDP] =
237 IP_BUILTIN_PROTOCOL_UDP;
238 lm->builtin_protocol_by_ip_protocol[is_ip6 ? IP_PROTOCOL_ICMP6 :
239 IP_PROTOCOL_ICMP] =
240 IP_BUILTIN_PROTOCOL_ICMP;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700241 }
242}
243
Dave Barachd7cb1b52016-12-09 09:52:16 -0500244u8 *
245format_ip_flow_hash_config (u8 * s, va_list * args)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700246{
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100247 flow_hash_config_t flow_hash_config = va_arg (*args, u32);
Dave Barachd7cb1b52016-12-09 09:52:16 -0500248
Ed Warnickecb9cada2015-12-08 15:45:58 -0700249#define _(n,v) if (flow_hash_config & v) s = format (s, "%s ", #n);
250 foreach_flow_hash_bit;
251#undef _
252
253 return s;
254}
255
Dave Barachd7cb1b52016-12-09 09:52:16 -0500256u8 *
Dave Barachd7cb1b52016-12-09 09:52:16 -0500257format_ip_adjacency_packet_data (u8 * s, va_list * args)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700258{
Ed Warnickecb9cada2015-12-08 15:45:58 -0700259 u32 adj_index = va_arg (*args, u32);
Dave Barachd7cb1b52016-12-09 09:52:16 -0500260 u8 *packet_data = va_arg (*args, u8 *);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700261 u32 n_packet_data_bytes = va_arg (*args, u32);
Dave Barachd7cb1b52016-12-09 09:52:16 -0500262 ip_adjacency_t *adj = adj_get (adj_index);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700263
264 switch (adj->lookup_next_index)
265 {
266 case IP_LOOKUP_NEXT_REWRITE:
Neale Rannsb069a692017-03-15 12:34:25 -0400267 case IP_LOOKUP_NEXT_MCAST:
268 s =
269 format (s, "%U", format_hex_bytes, packet_data, n_packet_data_bytes);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700270 break;
271
272 default:
273 break;
274 }
275
276 return s;
277}
278
Dave Barachd7cb1b52016-12-09 09:52:16 -0500279static uword
280unformat_dpo (unformat_input_t * input, va_list * args)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700281{
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100282 dpo_id_t *dpo = va_arg (*args, dpo_id_t *);
283 fib_protocol_t fp = va_arg (*args, int);
284 dpo_proto_t proto;
285
Dave Barachd7cb1b52016-12-09 09:52:16 -0500286 proto = fib_proto_to_dpo (fp);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700287
288 if (unformat (input, "drop"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500289 dpo_copy (dpo, drop_dpo_get (proto));
Ed Warnickecb9cada2015-12-08 15:45:58 -0700290 else if (unformat (input, "punt"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500291 dpo_copy (dpo, punt_dpo_get (proto));
Ed Warnickecb9cada2015-12-08 15:45:58 -0700292 else if (unformat (input, "local"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500293 receive_dpo_add_or_lock (proto, ~0, NULL, dpo);
Neale Ranns948e00f2016-10-20 13:39:34 +0100294 else if (unformat (input, "null-send-unreach"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500295 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_SEND_ICMP_UNREACH, dpo);
Neale Ranns948e00f2016-10-20 13:39:34 +0100296 else if (unformat (input, "null-send-prohibit"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500297 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_SEND_ICMP_PROHIBIT, dpo);
Neale Ranns948e00f2016-10-20 13:39:34 +0100298 else if (unformat (input, "null"))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500299 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_NONE, dpo);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700300 else if (unformat (input, "classify"))
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100301 {
302 u32 classify_table_index;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700303
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100304 if (!unformat (input, "%d", &classify_table_index))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500305 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100306 clib_warning ("classify adj must specify table index");
Dave Barachd7cb1b52016-12-09 09:52:16 -0500307 return 0;
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100308 }
309
Dave Barachd7cb1b52016-12-09 09:52:16 -0500310 dpo_set (dpo, DPO_CLASSIFY, proto,
311 classify_dpo_create (proto, classify_table_index));
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100312 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700313 else
314 return 0;
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100315
Ed Warnickecb9cada2015-12-08 15:45:58 -0700316 return 1;
317}
318
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100319const ip46_address_t zero_addr = {
Dave Barachd7cb1b52016-12-09 09:52:16 -0500320 .as_u64 = {
321 0, 0},
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100322};
323
Neale Ranns039cbfe2018-02-27 03:45:38 -0800324static clib_error_t *
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100325vnet_ip_route_cmd (vlib_main_t * vm,
Dave Barachd7cb1b52016-12-09 09:52:16 -0500326 unformat_input_t * main_input, vlib_cli_command_t * cmd)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700327{
Dave Barachd7cb1b52016-12-09 09:52:16 -0500328 unformat_input_t _line_input, *line_input = &_line_input;
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800329 u32 table_id, is_del, fib_index, payload_proto;
Neale Ranns948e00f2016-10-20 13:39:34 +0100330 dpo_id_t dpo = DPO_INVALID, *dpos = NULL;
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800331 fib_route_path_t *rpaths = NULL, rpath;
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100332 fib_prefix_t *prefixs = NULL, pfx;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500333 clib_error_t *error = NULL;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700334 f64 count;
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100335 int i;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700336
337 is_del = 0;
338 table_id = 0;
339 count = 1;
Dave Barachb7b92992018-10-17 10:38:51 -0400340 clib_memset (&pfx, 0, sizeof (pfx));
Ed Warnickecb9cada2015-12-08 15:45:58 -0700341
342 /* Get a line of input. */
Dave Barachd7cb1b52016-12-09 09:52:16 -0500343 if (!unformat_user (main_input, unformat_line_input, line_input))
Ed Warnickecb9cada2015-12-08 15:45:58 -0700344 return 0;
345
Ed Warnickecb9cada2015-12-08 15:45:58 -0700346 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
347 {
Dave Barachb7b92992018-10-17 10:38:51 -0400348 clib_memset (&rpath, 0, sizeof (rpath));
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100349
Ed Warnickecb9cada2015-12-08 15:45:58 -0700350 if (unformat (line_input, "table %d", &table_id))
351 ;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700352 else if (unformat (line_input, "count %f", &count))
353 ;
354
355 else if (unformat (line_input, "%U/%d",
Dave Barachd7cb1b52016-12-09 09:52:16 -0500356 unformat_ip4_address, &pfx.fp_addr.ip4, &pfx.fp_len))
357 {
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800358 payload_proto = pfx.fp_proto = FIB_PROTOCOL_IP4;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500359 vec_add1 (prefixs, pfx);
360 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700361 else if (unformat (line_input, "%U/%d",
Dave Barachd7cb1b52016-12-09 09:52:16 -0500362 unformat_ip6_address, &pfx.fp_addr.ip6, &pfx.fp_len))
363 {
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800364 payload_proto = pfx.fp_proto = FIB_PROTOCOL_IP6;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500365 vec_add1 (prefixs, pfx);
366 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700367 else if (unformat (line_input, "via %U",
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800368 unformat_fib_route_path, &rpath, &payload_proto))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500369 {
Neale Ranns8c2f05c2016-12-12 19:35:58 +0000370 vec_add1 (rpaths, rpath);
371 }
372 else if (vec_len (prefixs) > 0 &&
373 unformat (line_input, "via %U",
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100374 unformat_dpo, &dpo, prefixs[0].fp_proto))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500375 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100376 vec_add1 (dpos, dpo);
Dave Barachd7cb1b52016-12-09 09:52:16 -0500377 }
pragash352829f2017-08-17 22:53:24 -0400378 else if (unformat (line_input, "del"))
379 is_del = 1;
380 else if (unformat (line_input, "add"))
381 is_del = 0;
Ed Warnickecb9cada2015-12-08 15:45:58 -0700382 else
Dave Barachd7cb1b52016-12-09 09:52:16 -0500383 {
Ed Warnickecb9cada2015-12-08 15:45:58 -0700384 error = unformat_parse_error (line_input);
385 goto done;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500386 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700387 }
Dave Barachd7cb1b52016-12-09 09:52:16 -0500388
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100389 if (vec_len (prefixs) == 0)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500390 {
391 error =
392 clib_error_return (0, "expected ip4/ip6 destination address/length.");
Ed Warnickecb9cada2015-12-08 15:45:58 -0700393 goto done;
394 }
395
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100396 if (!is_del && vec_len (rpaths) + vec_len (dpos) == 0)
Ed Warnickecb9cada2015-12-08 15:45:58 -0700397 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100398 error = clib_error_return (0, "expected paths.");
Ed Warnickecb9cada2015-12-08 15:45:58 -0700399 goto done;
400 }
401
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100402 if (~0 == table_id)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500403 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100404 /*
405 * if no table_id is passed we will manipulate the default
406 */
407 fib_index = 0;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500408 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100409 else
Dave Barachd7cb1b52016-12-09 09:52:16 -0500410 {
Neale Ranns107e7d42017-04-11 09:55:19 -0700411 fib_index = fib_table_find (prefixs[0].fp_proto, table_id);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700412
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100413 if (~0 == fib_index)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500414 {
415 error = clib_error_return (0, "Nonexistent table id %d", table_id);
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100416 goto done;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500417 }
418 }
Ed Warnickecb9cada2015-12-08 15:45:58 -0700419
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100420 for (i = 0; i < vec_len (prefixs); i++)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500421 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100422 if (is_del && 0 == vec_len (rpaths))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500423 {
424 fib_table_entry_delete (fib_index, &prefixs[i], FIB_SOURCE_CLI);
425 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100426 else if (!is_del && 1 == vec_len (dpos))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500427 {
428 fib_table_entry_special_dpo_add (fib_index,
429 &prefixs[i],
430 FIB_SOURCE_CLI,
431 FIB_ENTRY_FLAG_EXCLUSIVE,
432 &dpos[0]);
433 dpo_reset (&dpos[0]);
434 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100435 else if (vec_len (dpos) > 0)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500436 {
437 error =
438 clib_error_return (0,
439 "Load-balancing over multiple special adjacencies is unsupported");
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100440 goto done;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500441 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100442 else if (0 < vec_len (rpaths))
Dave Barachd7cb1b52016-12-09 09:52:16 -0500443 {
Neale Ranns097fa662018-05-01 05:17:55 -0700444 u32 k, n, incr;
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100445 ip46_address_t dst = prefixs[i].fp_addr;
446 f64 t[2];
447 n = count;
448 t[0] = vlib_time_now (vm);
449 incr = 1 << ((FIB_PROTOCOL_IP4 == prefixs[0].fp_proto ? 32 : 128) -
450 prefixs[i].fp_len);
451
452 for (k = 0; k < n; k++)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500453 {
Neale Ranns097fa662018-05-01 05:17:55 -0700454 fib_prefix_t rpfx = {
455 .fp_len = prefixs[i].fp_len,
456 .fp_proto = prefixs[i].fp_proto,
457 .fp_addr = dst,
458 };
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100459
Neale Ranns097fa662018-05-01 05:17:55 -0700460 if (is_del)
461 fib_table_entry_path_remove2 (fib_index,
462 &rpfx, FIB_SOURCE_CLI, rpaths);
463 else
464 fib_table_entry_path_add2 (fib_index,
465 &rpfx,
466 FIB_SOURCE_CLI,
467 FIB_ENTRY_FLAG_NONE, rpaths);
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100468
469 if (FIB_PROTOCOL_IP4 == prefixs[0].fp_proto)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500470 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100471 dst.ip4.as_u32 =
Dave Barachd7cb1b52016-12-09 09:52:16 -0500472 clib_host_to_net_u32 (incr +
473 clib_net_to_host_u32 (dst.
474 ip4.as_u32));
475 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100476 else
Dave Barachd7cb1b52016-12-09 09:52:16 -0500477 {
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100478 int bucket = (incr < 64 ? 0 : 1);
479 dst.ip6.as_u64[bucket] =
Dave Barachd7cb1b52016-12-09 09:52:16 -0500480 clib_host_to_net_u64 (incr +
481 clib_net_to_host_u64 (dst.ip6.as_u64
482 [bucket]));
Dave Barachd7cb1b52016-12-09 09:52:16 -0500483 }
484 }
Neale Ranns097fa662018-05-01 05:17:55 -0700485
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100486 t[1] = vlib_time_now (vm);
487 if (count > 1)
Dave Barachd7cb1b52016-12-09 09:52:16 -0500488 vlib_cli_output (vm, "%.6e routes/sec", count / (t[1] - t[0]));
489 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100490 else
Dave Barachd7cb1b52016-12-09 09:52:16 -0500491 {
492 error = clib_error_return (0, "Don't understand what you want...");
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100493 goto done;
Dave Barachd7cb1b52016-12-09 09:52:16 -0500494 }
495 }
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100496
Dave Barachd7cb1b52016-12-09 09:52:16 -0500497done:
Neale Ranns0bfe5d82016-08-25 15:29:12 +0100498 vec_free (dpos);
499 vec_free (prefixs);
500 vec_free (rpaths);
Billy McFalla9a20e72017-02-15 11:39:12 -0500501 unformat_free (line_input);
Ed Warnickecb9cada2015-12-08 15:45:58 -0700502 return error;
503}
504
Neale Ranns15002542017-09-10 04:39:11 -0700505clib_error_t *
506vnet_ip_table_cmd (vlib_main_t * vm,
507 unformat_input_t * main_input,
508 vlib_cli_command_t * cmd, fib_protocol_t fproto)
509{
510 unformat_input_t _line_input, *line_input = &_line_input;
511 clib_error_t *error = NULL;
512 u32 table_id, is_add;
Neale Ranns2297af02017-09-12 09:45:04 -0700513 u8 *name = NULL;
Neale Ranns15002542017-09-10 04:39:11 -0700514
515 is_add = 1;
516 table_id = ~0;
517
518 /* Get a line of input. */
519 if (!unformat_user (main_input, unformat_line_input, line_input))
520 return 0;
521
522 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
523 {
524 if (unformat (line_input, "%d", &table_id))
525 ;
526 else if (unformat (line_input, "del"))
527 is_add = 0;
528 else if (unformat (line_input, "add"))
529 is_add = 1;
Neale Ranns2297af02017-09-12 09:45:04 -0700530 else if (unformat (line_input, "name %s", &name))
531 ;
Neale Ranns15002542017-09-10 04:39:11 -0700532 else
533 {
534 error = unformat_parse_error (line_input);
535 goto done;
536 }
537 }
538
539 if (~0 == table_id)
540 {
541 error = clib_error_return (0, "No table id");
542 goto done;
543 }
544 else if (0 == table_id)
545 {
546 error = clib_error_return (0, "Can't change the default table");
547 goto done;
548 }
549 else
550 {
551 if (is_add)
552 {
Neale Ranns2297af02017-09-12 09:45:04 -0700553 ip_table_create (fproto, table_id, 0, name);
Neale Ranns15002542017-09-10 04:39:11 -0700554 }
555 else
556 {
557 ip_table_delete (fproto, table_id, 0);
558 }
559 }
560
561done:
562 unformat_free (line_input);
563 return error;
564}
565
566clib_error_t *
567vnet_ip4_table_cmd (vlib_main_t * vm,
568 unformat_input_t * main_input, vlib_cli_command_t * cmd)
569{
570 return (vnet_ip_table_cmd (vm, main_input, cmd, FIB_PROTOCOL_IP4));
571}
572
573clib_error_t *
574vnet_ip6_table_cmd (vlib_main_t * vm,
575 unformat_input_t * main_input, vlib_cli_command_t * cmd)
576{
577 return (vnet_ip_table_cmd (vm, main_input, cmd, FIB_PROTOCOL_IP6));
578}
579
Dave Barachd7cb1b52016-12-09 09:52:16 -0500580/* *INDENT-OFF* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700581VLIB_CLI_COMMAND (vlib_cli_ip_command, static) = {
582 .path = "ip",
583 .short_help = "Internet protocol (IP) commands",
584};
Dave Barachd7cb1b52016-12-09 09:52:16 -0500585/* *INDENT-ON* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700586
Dave Barachd7cb1b52016-12-09 09:52:16 -0500587/* *INDENT-OFF* */
Billy McFall0683c9c2016-10-13 08:27:31 -0400588VLIB_CLI_COMMAND (vlib_cli_ip6_command, static) = {
589 .path = "ip6",
590 .short_help = "Internet protocol version 6 (IPv6) commands",
591};
Dave Barachd7cb1b52016-12-09 09:52:16 -0500592/* *INDENT-ON* */
Billy McFall0683c9c2016-10-13 08:27:31 -0400593
Dave Barachd7cb1b52016-12-09 09:52:16 -0500594/* *INDENT-OFF* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700595VLIB_CLI_COMMAND (vlib_cli_show_ip_command, static) = {
596 .path = "show ip",
597 .short_help = "Internet protocol (IP) show commands",
598};
Dave Barachd7cb1b52016-12-09 09:52:16 -0500599/* *INDENT-ON* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700600
Dave Barachd7cb1b52016-12-09 09:52:16 -0500601/* *INDENT-OFF* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700602VLIB_CLI_COMMAND (vlib_cli_show_ip6_command, static) = {
603 .path = "show ip6",
Billy McFall0683c9c2016-10-13 08:27:31 -0400604 .short_help = "Internet protocol version 6 (IPv6) show commands",
Ed Warnickecb9cada2015-12-08 15:45:58 -0700605};
Dave Barachd7cb1b52016-12-09 09:52:16 -0500606/* *INDENT-ON* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700607
Keith Burns (alagalah)6ef7bb92016-09-10 14:55:04 -0700608/*?
Billy McFall0683c9c2016-10-13 08:27:31 -0400609 * This command is used to add or delete IPv4 or IPv6 routes. All
610 * IP Addresses ('<em><dst-ip-addr>/<width></em>',
611 * '<em><next-hop-ip-addr></em>' and '<em><adj-hop-ip-addr></em>')
612 * can be IPv4 or IPv6, but all must be of the same form in a single
613 * command. To display the current set of routes, use the commands
614 * '<em>show ip fib</em>' and '<em>show ip6 fib</em>'.
615 *
Keith Burns (alagalah)6ef7bb92016-09-10 14:55:04 -0700616 * @cliexpar
Billy McFall0683c9c2016-10-13 08:27:31 -0400617 * Example of how to add a straight forward static route:
618 * @cliexcmd{ip route add 6.0.1.2/32 via 6.0.0.1 GigabitEthernet2/0/0}
619 * Example of how to delete a straight forward static route:
620 * @cliexcmd{ip route del 6.0.1.2/32 via 6.0.0.1 GigabitEthernet2/0/0}
Keith Burns (alagalah)6ef7bb92016-09-10 14:55:04 -0700621 * Mainly for route add/del performance testing, one can add or delete
622 * multiple routes by adding 'count N' to the previous item:
Billy McFall0683c9c2016-10-13 08:27:31 -0400623 * @cliexcmd{ip route add count 10 7.0.0.0/24 via 6.0.0.1 GigabitEthernet2/0/0}
Keith Burns (alagalah)6ef7bb92016-09-10 14:55:04 -0700624 * Add multiple routes for the same destination to create equal-cost multipath:
Billy McFall0683c9c2016-10-13 08:27:31 -0400625 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.1 GigabitEthernet2/0/0}
626 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.2 GigabitEthernet2/0/0}
627 * For unequal-cost multipath, specify the desired weights. This
628 * combination of weights results in 3/4 of the traffic following the
629 * second path, 1/4 following the first path:
630 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.1 GigabitEthernet2/0/0 weight 1}
631 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.2 GigabitEthernet2/0/0 weight 3}
632 * To add a route to a particular FIB table (VRF), use:
633 * @cliexcmd{ip route add 172.16.24.0/24 table 7 via GigabitEthernet2/0/0}
Keith Burns (alagalah)6ef7bb92016-09-10 14:55:04 -0700634 ?*/
Billy McFall0683c9c2016-10-13 08:27:31 -0400635/* *INDENT-OFF* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700636VLIB_CLI_COMMAND (ip_route_command, static) = {
637 .path = "ip route",
Neale Ranns70ed8ae2017-11-15 12:54:46 -0800638 .short_help = "ip route [add|del] [count <n>] <dst-ip-addr>/<width> [table <table-id>] via [next-hop-address] [next-hop-interface] [next-hop-table <value>] [weight <value>] [preference <value>] [udp-encap-id <value>] [ip4-lookup-in-table <value>] [ip6-lookup-in-table <value>] [mpls-lookup-in-table <value>] [resolve-via-host] [resolve-via-connected] [rx-ip4 <interface>] [out-labels <value value value>]",
Ed Warnickecb9cada2015-12-08 15:45:58 -0700639 .function = vnet_ip_route_cmd,
Dave Barachb2ef4dd2016-03-23 08:56:01 -0400640 .is_mp_safe = 1,
Ed Warnickecb9cada2015-12-08 15:45:58 -0700641};
Neale Ranns15002542017-09-10 04:39:11 -0700642
643/* *INDENT-ON* */
644/*?
645 * This command is used to add or delete IPv4 Tables. All
646 * Tables must be explicitly added before that can be used. Creating a
647 * table will add both unicast and multicast FIBs
648 *
649 ?*/
650/* *INDENT-OFF* */
651VLIB_CLI_COMMAND (ip4_table_command, static) = {
652 .path = "ip table",
653 .short_help = "ip table [add|del] <table-id>",
654 .function = vnet_ip4_table_cmd,
655 .is_mp_safe = 1,
656};
657/* *INDENT-ON* */
658
659/* *INDENT-ON* */
660/*?
661 * This command is used to add or delete IPv4 Tables. All
662 * Tables must be explicitly added before that can be used. Creating a
663 * table will add both unicast and multicast FIBs
664 *
665 ?*/
666/* *INDENT-OFF* */
667VLIB_CLI_COMMAND (ip6_table_command, static) = {
668 .path = "ip6 table",
669 .short_help = "ip6 table [add|del] <table-id>",
670 .function = vnet_ip6_table_cmd,
671 .is_mp_safe = 1,
672};
673
674static clib_error_t *
675ip_table_bind_cmd (vlib_main_t * vm,
676 unformat_input_t * input,
677 vlib_cli_command_t * cmd,
678 fib_protocol_t fproto)
679{
680 vnet_main_t *vnm = vnet_get_main ();
681 clib_error_t *error = 0;
682 u32 sw_if_index, table_id;
683 int rv;
684
685 sw_if_index = ~0;
686
687 if (!unformat_user (input, unformat_vnet_sw_interface, vnm, &sw_if_index))
688 {
689 error = clib_error_return (0, "unknown interface `%U'",
690 format_unformat_error, input);
691 goto done;
692 }
693
694 if (unformat (input, "%d", &table_id))
695 ;
696 else
697 {
698 error = clib_error_return (0, "expected table id `%U'",
699 format_unformat_error, input);
700 goto done;
701 }
702
703 rv = ip_table_bind (fproto, sw_if_index, table_id, 0);
704
705 if (VNET_API_ERROR_ADDRESS_FOUND_FOR_INTERFACE == rv)
706 {
707 error = clib_error_return (0, "IP addresses are still present on %U",
708 format_vnet_sw_if_index_name,
709 vnet_get_main(),
710 sw_if_index);
711 }
712 else if (VNET_API_ERROR_NO_SUCH_FIB == rv)
713 {
714 error = clib_error_return (0, "no such table %d", table_id);
715 }
716 else if (0 != rv)
717 {
718 error = clib_error_return (0, "unknown error");
719 }
720
721 done:
722 return error;
723}
724
725static clib_error_t *
726ip4_table_bind_cmd (vlib_main_t * vm,
727 unformat_input_t * input,
728 vlib_cli_command_t * cmd)
729{
730 return (ip_table_bind_cmd (vm , input, cmd, FIB_PROTOCOL_IP4));
731}
732
733static clib_error_t *
734ip6_table_bind_cmd (vlib_main_t * vm,
735 unformat_input_t * input,
736 vlib_cli_command_t * cmd)
737{
738 return (ip_table_bind_cmd (vm , input, cmd, FIB_PROTOCOL_IP6));
739}
740
741/*?
742 * Place the indicated interface into the supplied IPv4 FIB table (also known
Yichen Wang5c482a92018-08-02 17:12:01 -0700743 * as a VRF). The FIB table must be created using "ip table add" already. To
Neale Ranns15002542017-09-10 04:39:11 -0700744 * display the current IPv4 FIB table, use the command '<em>show ip fib</em>'.
745 * FIB table will only be displayed if a route has been added to the table, or
746 * an IP Address is assigned to an interface in the table (which adds a route
747 * automatically).
748 *
749 * @note IP addresses added after setting the interface IP table are added to
750 * the indicated FIB table. If an IP address is added prior to changing the
751 * table then this is an error. The control plane must remove these addresses
752 * first and then change the table. VPP will not automatically move the
753 * addresses from the old to the new table as it does not know the validity
754 * of such a change.
755 *
756 * @cliexpar
757 * Example of how to add an interface to an IPv4 FIB table (where 2 is the table-id):
758 * @cliexcmd{set interface ip table GigabitEthernet2/0/0 2}
759 ?*/
760/* *INDENT-OFF* */
761VLIB_CLI_COMMAND (set_interface_ip_table_command, static) =
762{
763 .path = "set interface ip table",
764 .function = ip4_table_bind_cmd,
765 .short_help = "set interface ip table <interface> <table-id>",
766};
767/* *INDENT-ON* */
768
769/*?
770 * Place the indicated interface into the supplied IPv6 FIB table (also known
Yichen Wang5c482a92018-08-02 17:12:01 -0700771 * as a VRF). The FIB table must be created using "ip6 table add" already. To
Neale Ranns15002542017-09-10 04:39:11 -0700772 * display the current IPv6 FIB table, use the command '<em>show ip6 fib</em>'.
773 * FIB table will only be displayed if a route has been added to the table, or
774 * an IP Address is assigned to an interface in the table (which adds a route
775 * automatically).
776 *
777 * @note IP addresses added after setting the interface IP table are added to
778 * the indicated FIB table. If an IP address is added prior to changing the
779 * table then this is an error. The control plane must remove these addresses
780 * first and then change the table. VPP will not automatically move the
781 * addresses from the old to the new table as it does not know the validity
782 * of such a change.
783 *
784 * @cliexpar
785 * Example of how to add an interface to an IPv6 FIB table (where 2 is the table-id):
786 * @cliexcmd{set interface ip6 table GigabitEthernet2/0/0 2}
787 ?*/
788/* *INDENT-OFF* */
789VLIB_CLI_COMMAND (set_interface_ip6_table_command, static) =
790{
791 .path = "set interface ip6 table",
792 .function = ip6_table_bind_cmd,
793 .short_help = "set interface ip6 table <interface> <table-id>"
794};
Billy McFall0683c9c2016-10-13 08:27:31 -0400795/* *INDENT-ON* */
Ed Warnickecb9cada2015-12-08 15:45:58 -0700796
Neale Ranns32e1c012016-11-22 17:07:28 +0000797clib_error_t *
798vnet_ip_mroute_cmd (vlib_main_t * vm,
799 unformat_input_t * main_input, vlib_cli_command_t * cmd)
800{
801 unformat_input_t _line_input, *line_input = &_line_input;
Neale Ranns097fa662018-05-01 05:17:55 -0700802 fib_route_path_t rpath, *rpaths = NULL;
Neale Ranns32e1c012016-11-22 17:07:28 +0000803 clib_error_t *error = NULL;
Neale Ranns097fa662018-05-01 05:17:55 -0700804 u32 table_id, is_del, payload_proto;
Neale Ranns32e1c012016-11-22 17:07:28 +0000805 mfib_prefix_t pfx;
806 u32 fib_index;
Neale Ranns32e1c012016-11-22 17:07:28 +0000807 mfib_entry_flags_t eflags = 0;
Neale Ranns52456fc2017-02-15 00:38:27 -0800808 u32 gcount, scount, ss, gg, incr;
809 f64 timet[2];
Neale Rannsad69c1f2018-12-05 16:39:45 +0000810 u32 rpf_id = MFIB_RPF_ID_NONE;
Neale Ranns32e1c012016-11-22 17:07:28 +0000811
Neale Ranns52456fc2017-02-15 00:38:27 -0800812 gcount = scount = 1;
Neale Ranns32e1c012016-11-22 17:07:28 +0000813 is_del = 0;
814 table_id = 0;
Dave Barachb7b92992018-10-17 10:38:51 -0400815 clib_memset (&pfx, 0, sizeof (pfx));
816 clib_memset (&rpath, 0, sizeof (rpath));
Neale Ranns32e1c012016-11-22 17:07:28 +0000817 rpath.frp_sw_if_index = ~0;
818
819 /* Get a line of input. */
820 if (!unformat_user (main_input, unformat_line_input, line_input))
821 return 0;
822
823 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
824 {
825 if (unformat (line_input, "table %d", &table_id))
826 ;
827 else if (unformat (line_input, "del"))
828 is_del = 1;
829 else if (unformat (line_input, "add"))
830 is_del = 0;
Neale Rannsad69c1f2018-12-05 16:39:45 +0000831 else if (unformat (line_input, "rpf-id %d", &rpf_id))
832 ;
Neale Ranns52456fc2017-02-15 00:38:27 -0800833 else if (unformat (line_input, "scount %d", &scount))
834 ;
835 else if (unformat (line_input, "gcount %d", &gcount))
836 ;
Neale Ranns32e1c012016-11-22 17:07:28 +0000837 else if (unformat (line_input, "%U %U",
838 unformat_ip4_address,
839 &pfx.fp_src_addr.ip4,
840 unformat_ip4_address, &pfx.fp_grp_addr.ip4))
841 {
842 pfx.fp_proto = FIB_PROTOCOL_IP4;
843 pfx.fp_len = 64;
844 }
845 else if (unformat (line_input, "%U %U",
846 unformat_ip6_address,
847 &pfx.fp_src_addr.ip6,
848 unformat_ip6_address, &pfx.fp_grp_addr.ip6))
849 {
850 pfx.fp_proto = FIB_PROTOCOL_IP6;
851 pfx.fp_len = 256;
852 }
853 else if (unformat (line_input, "%U/%d",
854 unformat_ip4_address,
855 &pfx.fp_grp_addr.ip4, &pfx.fp_len))
856 {
Dave Barachb7b92992018-10-17 10:38:51 -0400857 clib_memset (&pfx.fp_src_addr.ip4, 0, sizeof (pfx.fp_src_addr.ip4));
Neale Ranns32e1c012016-11-22 17:07:28 +0000858 pfx.fp_proto = FIB_PROTOCOL_IP4;
859 }
860 else if (unformat (line_input, "%U/%d",
861 unformat_ip6_address,
862 &pfx.fp_grp_addr.ip6, &pfx.fp_len))
863 {
Dave Barachb7b92992018-10-17 10:38:51 -0400864 clib_memset (&pfx.fp_src_addr.ip6, 0, sizeof (pfx.fp_src_addr.ip6));
Neale Ranns32e1c012016-11-22 17:07:28 +0000865 pfx.fp_proto = FIB_PROTOCOL_IP6;
866 }
867 else if (unformat (line_input, "%U",
868 unformat_ip4_address, &pfx.fp_grp_addr.ip4))
869 {
Dave Barachb7b92992018-10-17 10:38:51 -0400870 clib_memset (&pfx.fp_src_addr.ip4, 0, sizeof (pfx.fp_src_addr.ip4));
Neale Ranns32e1c012016-11-22 17:07:28 +0000871 pfx.fp_proto = FIB_PROTOCOL_IP4;
872 pfx.fp_len = 32;
873 }
874 else if (unformat (line_input, "%U",
875 unformat_ip6_address, &pfx.fp_grp_addr.ip6))
876 {
Dave Barachb7b92992018-10-17 10:38:51 -0400877 clib_memset (&pfx.fp_src_addr.ip6, 0, sizeof (pfx.fp_src_addr.ip6));
Neale Ranns32e1c012016-11-22 17:07:28 +0000878 pfx.fp_proto = FIB_PROTOCOL_IP6;
879 pfx.fp_len = 128;
880 }
Neale Rannsad69c1f2018-12-05 16:39:45 +0000881 else if (unformat (line_input, "via local Forward"))
Neale Ranns5d85f2d2017-05-02 10:17:17 -0700882 {
Dave Barachb7b92992018-10-17 10:38:51 -0400883 clib_memset (&rpath.frp_addr, 0, sizeof (rpath.frp_addr));
Neale Ranns5d85f2d2017-05-02 10:17:17 -0700884 rpath.frp_sw_if_index = ~0;
885 rpath.frp_weight = 1;
886 rpath.frp_flags |= FIB_ROUTE_PATH_LOCAL;
Neale Ranns37439992018-05-30 02:08:32 -0400887 /*
888 * set the path proto appropriately for the prefix
889 */
890 rpath.frp_proto = fib_proto_to_dpo (pfx.fp_proto);
Neale Ranns097fa662018-05-01 05:17:55 -0700891 rpath.frp_mitf_flags = MFIB_ITF_FLAG_FORWARD;
Neale Ranns32e1c012016-11-22 17:07:28 +0000892 }
Neale Ranns097fa662018-05-01 05:17:55 -0700893 else if (unformat (line_input, "via %U",
894 unformat_fib_route_path, &rpath, &payload_proto))
895 {
896 vec_add1 (rpaths, rpath);
897 }
898 else if (unformat (line_input, "%U",
899 unformat_mfib_itf_flags, &rpath.frp_mitf_flags))
900 ;
Neale Ranns32e1c012016-11-22 17:07:28 +0000901 else if (unformat (line_input, "%U",
902 unformat_mfib_entry_flags, &eflags))
903 ;
904 else
905 {
906 error = unformat_parse_error (line_input);
907 goto done;
908 }
909 }
910
Neale Ranns32e1c012016-11-22 17:07:28 +0000911 if (~0 == table_id)
912 {
913 /*
914 * if no table_id is passed we will manipulate the default
915 */
916 fib_index = 0;
917 }
918 else
919 {
920 fib_index = mfib_table_find (pfx.fp_proto, table_id);
921
922 if (~0 == fib_index)
923 {
924 error = clib_error_return (0, "Nonexistent table id %d", table_id);
925 goto done;
926 }
927 }
928
Neale Ranns52456fc2017-02-15 00:38:27 -0800929 timet[0] = vlib_time_now (vm);
930
931 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
Neale Ranns32e1c012016-11-22 17:07:28 +0000932 {
Neale Ranns52456fc2017-02-15 00:38:27 -0800933 incr = 1 << (32 - (pfx.fp_len % 32));
Neale Ranns32e1c012016-11-22 17:07:28 +0000934 }
935 else
936 {
Neale Ranns52456fc2017-02-15 00:38:27 -0800937 incr = 1 << (128 - (pfx.fp_len % 128));
Neale Ranns32e1c012016-11-22 17:07:28 +0000938 }
939
Neale Ranns52456fc2017-02-15 00:38:27 -0800940 for (ss = 0; ss < scount; ss++)
941 {
942 for (gg = 0; gg < gcount; gg++)
943 {
Neale Ranns097fa662018-05-01 05:17:55 -0700944 if (is_del && 0 == vec_len (rpaths))
Neale Ranns52456fc2017-02-15 00:38:27 -0800945 {
946 /* no path provided => route delete */
947 mfib_table_entry_delete (fib_index, &pfx, MFIB_SOURCE_CLI);
948 }
Neale Rannsad69c1f2018-12-05 16:39:45 +0000949 else if (eflags || (MFIB_RPF_ID_NONE != rpf_id))
Neale Ranns52456fc2017-02-15 00:38:27 -0800950 {
951 mfib_table_entry_update (fib_index, &pfx, MFIB_SOURCE_CLI,
Neale Rannsad69c1f2018-12-05 16:39:45 +0000952 rpf_id, eflags);
Neale Ranns52456fc2017-02-15 00:38:27 -0800953 }
954 else
955 {
956 if (is_del)
957 mfib_table_entry_path_remove (fib_index,
Neale Ranns097fa662018-05-01 05:17:55 -0700958 &pfx, MFIB_SOURCE_CLI, rpaths);
Neale Ranns52456fc2017-02-15 00:38:27 -0800959 else
960 mfib_table_entry_path_update (fib_index,
Neale Ranns097fa662018-05-01 05:17:55 -0700961 &pfx, MFIB_SOURCE_CLI, rpaths);
Neale Ranns52456fc2017-02-15 00:38:27 -0800962 }
963
964 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
965 {
966 pfx.fp_grp_addr.ip4.as_u32 =
967 clib_host_to_net_u32 (incr +
968 clib_net_to_host_u32 (pfx.
969 fp_grp_addr.ip4.
970 as_u32));
971 }
972 else
973 {
974 int bucket = (incr < 64 ? 0 : 1);
975 pfx.fp_grp_addr.ip6.as_u64[bucket] =
976 clib_host_to_net_u64 (incr +
977 clib_net_to_host_u64 (pfx.
978 fp_grp_addr.ip6.as_u64
979 [bucket]));
980
981 }
982 }
983 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
984 {
985 pfx.fp_src_addr.ip4.as_u32 =
986 clib_host_to_net_u32 (1 +
987 clib_net_to_host_u32 (pfx.fp_src_addr.
988 ip4.as_u32));
989 }
990 else
991 {
992 pfx.fp_src_addr.ip6.as_u64[1] =
993 clib_host_to_net_u64 (1 +
994 clib_net_to_host_u64 (pfx.fp_src_addr.
995 ip6.as_u64[1]));
996 }
997 }
998
999 timet[1] = vlib_time_now (vm);
1000
1001 if (scount > 1 || gcount > 1)
1002 vlib_cli_output (vm, "%.6e routes/sec",
1003 (scount * gcount) / (timet[1] - timet[0]));
1004
Neale Ranns32e1c012016-11-22 17:07:28 +00001005done:
Neale Ranns097fa662018-05-01 05:17:55 -07001006 vec_free (rpaths);
Billy McFalla9a20e72017-02-15 11:39:12 -05001007 unformat_free (line_input);
1008
Neale Ranns32e1c012016-11-22 17:07:28 +00001009 return error;
1010}
1011
1012/*?
1013 * This command is used to add or delete IPv4 or IPv6 multicastroutes. All
1014 * IP Addresses ('<em><dst-ip-addr>/<width></em>',
1015 * '<em><next-hop-ip-addr></em>' and '<em><adj-hop-ip-addr></em>')
1016 * can be IPv4 or IPv6, but all must be of the same form in a single
1017 * command. To display the current set of routes, use the commands
1018 * '<em>show ip mfib</em>' and '<em>show ip6 mfib</em>'.
1019 * The full set of support flags for interfaces and route is shown via;
1020 * '<em>show mfib route flags</em>' and '<em>show mfib itf flags</em>'
1021 * respectively.
1022 * @cliexpar
1023 * Example of how to add a forwarding interface to a route (and create the
1024 * route if it does not exist)
1025 * @cliexcmd{ip mroute add 232.1.1.1 via GigabitEthernet2/0/0 Forward}
1026 * Example of how to add an accepting interface to a route (and create the
1027 * route if it does not exist)
1028 * @cliexcmd{ip mroute add 232.1.1.1 via GigabitEthernet2/0/1 Accept}
1029 * Example of changing the route's flags to send signals via the API
1030 * @cliexcmd{ip mroute add 232.1.1.1 Signal}
1031
1032 ?*/
1033/* *INDENT-OFF* */
1034VLIB_CLI_COMMAND (ip_mroute_command, static) =
1035{
1036 .path = "ip mroute",
Neale Rannsad69c1f2018-12-05 16:39:45 +00001037 .short_help = "ip mroute [add|del] <dst-ip-addr>/<width> [table <table-id>] [rpf-id <ID>] [via <next-hop-ip-addr> [<interface>],",
Neale Ranns32e1c012016-11-22 17:07:28 +00001038 .function = vnet_ip_mroute_cmd,
1039 .is_mp_safe = 1,
1040};
1041/* *INDENT-ON* */
1042
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001043/*
Ed Warnickecb9cada2015-12-08 15:45:58 -07001044 * The next two routines address a longstanding script hemorrhoid.
1045 * Probing a v4 or v6 neighbor needs to appear to be synchronous,
1046 * or dependent route-adds will simply fail.
1047 */
1048static clib_error_t *
Dave Barachd7cb1b52016-12-09 09:52:16 -05001049ip6_probe_neighbor_wait (vlib_main_t * vm, ip6_address_t * a, u32 sw_if_index,
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001050 int retry_count)
Ed Warnickecb9cada2015-12-08 15:45:58 -07001051{
Dave Barachd7cb1b52016-12-09 09:52:16 -05001052 vnet_main_t *vnm = vnet_get_main ();
1053 clib_error_t *e;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001054 int i;
1055 int resolved = 0;
1056 uword event_type;
1057 uword *event_data = 0;
1058
Dave Barachd7cb1b52016-12-09 09:52:16 -05001059 ASSERT (vlib_in_process_context (vm));
Ed Warnickecb9cada2015-12-08 15:45:58 -07001060
1061 if (retry_count > 0)
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001062 vnet_register_ip6_neighbor_resolution_event
Ed Warnickecb9cada2015-12-08 15:45:58 -07001063 (vnm, a, vlib_get_current_process (vm)->node_runtime.node_index,
Dave Barachd7cb1b52016-12-09 09:52:16 -05001064 1 /* event */ , 0 /* data */ );
Ed Warnickecb9cada2015-12-08 15:45:58 -07001065
1066 for (i = 0; i < retry_count; i++)
1067 {
1068 /* The interface may be down, etc. */
John Lo86376342018-06-11 20:14:49 -04001069 e = ip6_probe_neighbor (vm, a, sw_if_index, 0);
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001070
Ed Warnickecb9cada2015-12-08 15:45:58 -07001071 if (e)
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001072 return e;
1073
Ed Warnickecb9cada2015-12-08 15:45:58 -07001074 vlib_process_wait_for_event_or_clock (vm, 1.0);
1075 event_type = vlib_process_get_events (vm, &event_data);
Neale Ranns0bfe5d82016-08-25 15:29:12 +01001076 switch (event_type)
1077 {
Dave Barachd7cb1b52016-12-09 09:52:16 -05001078 case 1: /* resolved... */
1079 vlib_cli_output (vm, "Resolved %U", format_ip6_address, a);
1080 resolved = 1;
1081 goto done;
1082
1083 case ~0: /* timeout */
1084 break;
1085
1086 default:
1087 clib_warning ("unknown event_type %d", event_type);
1088 }
Dave Barachb2ef4dd2016-03-23 08:56:01 -04001089 vec_reset_length (event_data);
Ed Warnickecb9cada2015-12-08 15:45:58 -07001090 }
Dave Barachd7cb1b52016-12-09 09:52:16 -05001091
1092done:
Ed Warnickecb9cada2015-12-08 15:45:58 -07001093
1094 if (!resolved)
1095 return clib_error_return (0, "Resolution failed for %U",
Dave Barachd7cb1b52016-12-09 09:52:16 -05001096 format_ip6_address, a);
Ed Warnickecb9cada2015-12-08 15:45:58 -07001097 return 0;
1098}
1099
1100static clib_error_t *
Dave Barachd7cb1b52016-12-09 09:52:16 -05001101ip4_probe_neighbor_wait (vlib_main_t * vm, ip4_address_t * a, u32 sw_if_index,
1102 int retry_count)
Ed Warnickecb9cada2015-12-08 15:45:58 -07001103{
Dave Barachd7cb1b52016-12-09 09:52:16 -05001104 vnet_main_t *vnm = vnet_get_main ();
1105 clib_error_t *e;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001106 int i;
1107 int resolved = 0;
1108 uword event_type;
1109 uword *event_data = 0;
1110
Dave Barachd7cb1b52016-12-09 09:52:16 -05001111 ASSERT (vlib_in_process_context (vm));
Ed Warnickecb9cada2015-12-08 15:45:58 -07001112
1113 if (retry_count > 0)
Dave Barachd7cb1b52016-12-09 09:52:16 -05001114 vnet_register_ip4_arp_resolution_event
Ed Warnickecb9cada2015-12-08 15:45:58 -07001115 (vnm, a, vlib_get_current_process (vm)->node_runtime.node_index,
Dave Barachd7cb1b52016-12-09 09:52:16 -05001116 1 /* event */ , 0 /* data */ );
1117
Ed Warnickecb9cada2015-12-08 15:45:58 -07001118 for (i = 0; i < retry_count; i++)
1119 {
1120 /* The interface may be down, etc. */
John Lo86376342018-06-11 20:14:49 -04001121 e = ip4_probe_neighbor (vm, a, sw_if_index, 0);
Dave Barachd7cb1b52016-12-09 09:52:16 -05001122
Ed Warnickecb9cada2015-12-08 15:45:58 -07001123 if (e)
Dave Barachd7cb1b52016-12-09 09:52:16 -05001124 return e;
1125
Ed Warnickecb9cada2015-12-08 15:45:58 -07001126 vlib_process_wait_for_event_or_clock (vm, 1.0);
1127 event_type = vlib_process_get_events (vm, &event_data);
Dave Barachd7cb1b52016-12-09 09:52:16 -05001128 switch (event_type)
1129 {
1130 case 1: /* resolved... */
1131 vlib_cli_output (vm, "Resolved %U", format_ip4_address, a);
1132 resolved = 1;
1133 goto done;
1134
1135 case ~0: /* timeout */
1136 break;
1137
1138 default:
1139 clib_warning ("unknown event_type %d", event_type);
1140 }
Dave Barachb2ef4dd2016-03-23 08:56:01 -04001141 vec_reset_length (event_data);
Ed Warnickecb9cada2015-12-08 15:45:58 -07001142 }
Dave Barachd7cb1b52016-12-09 09:52:16 -05001143
1144done:
Ed Warnickecb9cada2015-12-08 15:45:58 -07001145
1146 vec_reset_length (event_data);
1147
1148 if (!resolved)
1149 return clib_error_return (0, "Resolution failed for %U",
Dave Barachd7cb1b52016-12-09 09:52:16 -05001150 format_ip4_address, a);
Ed Warnickecb9cada2015-12-08 15:45:58 -07001151 return 0;
1152}
1153
1154static clib_error_t *
1155probe_neighbor_address (vlib_main_t * vm,
Dave Barachd7cb1b52016-12-09 09:52:16 -05001156 unformat_input_t * input, vlib_cli_command_t * cmd)
Ed Warnickecb9cada2015-12-08 15:45:58 -07001157{
Dave Barachd7cb1b52016-12-09 09:52:16 -05001158 vnet_main_t *vnm = vnet_get_main ();
1159 unformat_input_t _line_input, *line_input = &_line_input;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001160 ip4_address_t a4;
1161 ip6_address_t a6;
Dave Barachd7cb1b52016-12-09 09:52:16 -05001162 clib_error_t *error = 0;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001163 u32 sw_if_index = ~0;
1164 int retry_count = 3;
1165 int is_ip4 = 1;
1166 int address_set = 0;
1167
1168 /* Get a line of input. */
Dave Barachd7cb1b52016-12-09 09:52:16 -05001169 if (!unformat_user (input, unformat_line_input, line_input))
Ed Warnickecb9cada2015-12-08 15:45:58 -07001170 return 0;
1171
Dave Barachd7cb1b52016-12-09 09:52:16 -05001172 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
Ed Warnickecb9cada2015-12-08 15:45:58 -07001173 {
Dave Barachd7cb1b52016-12-09 09:52:16 -05001174 if (unformat_user (line_input, unformat_vnet_sw_interface, vnm,
1175 &sw_if_index))
1176 ;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001177 else if (unformat (line_input, "retry %d", &retry_count))
Dave Barachd7cb1b52016-12-09 09:52:16 -05001178 ;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001179
1180 else if (unformat (line_input, "%U", unformat_ip4_address, &a4))
Dave Barachd7cb1b52016-12-09 09:52:16 -05001181 address_set++;
Ed Warnickecb9cada2015-12-08 15:45:58 -07001182 else if (unformat (line_input, "%U", unformat_ip6_address, &a6))
Dave Barachd7cb1b52016-12-09 09:52:16 -05001183 {
1184 address_set++;
1185 is_ip4 = 0;
1186 }
Ed Warnickecb9cada2015-12-08 15:45:58 -07001187 else
Billy McFalla9a20e72017-02-15 11:39:12 -05001188 {
1189 error = clib_error_return (0, "unknown input '%U'",
1190 format_unformat_error, line_input);
1191 goto done;
1192 }
Ed Warnickecb9cada2015-12-08 15:45:58 -07001193 }
1194
Ed Warnickecb9cada2015-12-08 15:45:58 -07001195 if (sw_if_index == ~0)
Billy McFalla9a20e72017-02-15 11:39:12 -05001196 {
1197 error = clib_error_return (0, "Interface required, not set.");
1198 goto done;
1199 }
Ed Warnickecb9cada2015-12-08 15:45:58 -07001200 if (address_set == 0)
Billy McFalla9a20e72017-02-15 11:39:12 -05001201 {
1202 error = clib_error_return (0, "ip address required, not set.");
1203 goto done;
1204 }
Ed Warnickecb9cada2015-12-08 15:45:58 -07001205 if (address_set > 1)
Billy McFalla9a20e72017-02-15 11:39:12 -05001206 {
1207 error = clib_error_return (0, "Multiple ip addresses not supported.");
1208 goto done;
1209 }
Dave Barachd7cb1b52016-12-09 09:52:16 -05001210
Ed Warnickecb9cada2015-12-08 15:45:58 -07001211 if (is_ip4)
1212 error = ip4_probe_neighbor_wait (vm, &a4, sw_if_index, retry_count);
Dave Barachd7cb1b52016-12-09 09:52:16 -05001213 else
Ed Warnickecb9cada2015-12-08 15:45:58 -07001214 error = ip6_probe_neighbor_wait (vm, &a6, sw_if_index, retry_count);
1215
Billy McFalla9a20e72017-02-15 11:39:12 -05001216done:
1217 unformat_free (line_input);
1218
Ed Warnickecb9cada2015-12-08 15:45:58 -07001219 return error;
1220}
1221
Billy McFall0683c9c2016-10-13 08:27:31 -04001222/*?
1223 * The '<em>ip probe-neighbor</em>' command ARPs for IPv4 addresses or
1224 * attempts IPv6 neighbor discovery depending on the supplied IP address
1225 * format.
1226 *
1227 * @note This command will not immediately affect the indicated FIB; it
1228 * is not suitable for use in establishing a FIB entry prior to adding
1229 * recursive FIB entries. As in: don't use it in a script to probe a
1230 * gateway prior to adding a default route. It won't work. Instead,
1231 * configure a static ARP cache entry [see '<em>set ip arp</em>'], or
1232 * a static IPv6 neighbor [see '<em>set ip6 neighbor</em>'].
1233 *
1234 * @cliexpar
1235 * Example of probe for an IPv4 address:
1236 * @cliexcmd{ip probe-neighbor GigabitEthernet2/0/0 172.16.1.2}
1237?*/
1238/* *INDENT-OFF* */
Ed Warnickecb9cada2015-12-08 15:45:58 -07001239VLIB_CLI_COMMAND (ip_probe_neighbor_command, static) = {
1240 .path = "ip probe-neighbor",
1241 .function = probe_neighbor_address,
Billy McFall0683c9c2016-10-13 08:27:31 -04001242 .short_help = "ip probe-neighbor <interface> <ip4-addr> | <ip6-addr> [retry nn]",
Dave Barachb2ef4dd2016-03-23 08:56:01 -04001243 .is_mp_safe = 1,
Ed Warnickecb9cada2015-12-08 15:45:58 -07001244};
Billy McFall0683c9c2016-10-13 08:27:31 -04001245/* *INDENT-ON* */
Dave Barachd7cb1b52016-12-09 09:52:16 -05001246
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001247clib_error_t *
Florin Coras595992c2017-11-06 17:17:08 -08001248vnet_ip_container_proxy_add_del (vnet_ip_container_proxy_args_t * args)
1249{
1250 u32 fib_index;
1251
1252 if (!vnet_sw_interface_is_api_valid (vnet_get_main (), args->sw_if_index))
1253 return clib_error_return_code (0, VNET_API_ERROR_INVALID_INTERFACE, 0,
1254 "invalid sw_if_index");
1255
1256 fib_index = fib_table_get_table_id_for_sw_if_index (args->prefix.fp_proto,
1257 args->sw_if_index);
1258 if (args->is_add)
1259 {
1260 dpo_id_t proxy_dpo = DPO_INVALID;
1261 l3_proxy_dpo_add_or_lock (fib_proto_to_dpo (args->prefix.fp_proto),
1262 args->sw_if_index, &proxy_dpo);
1263 fib_table_entry_special_dpo_add (fib_index,
1264 &args->prefix,
1265 FIB_SOURCE_PROXY,
1266 FIB_ENTRY_FLAG_EXCLUSIVE, &proxy_dpo);
1267 dpo_reset (&proxy_dpo);
1268 }
1269 else
1270 {
1271 fib_table_entry_special_remove (fib_index, &args->prefix,
1272 FIB_SOURCE_PROXY);
1273 }
1274 return 0;
1275}
1276
1277u8
1278ip_container_proxy_is_set (fib_prefix_t * pfx, u32 sw_if_index)
1279{
1280 u32 fib_index;
1281 fib_node_index_t fei;
1282 const dpo_id_t *dpo;
1283 l3_proxy_dpo_t *l3p;
1284 load_balance_t *lb0;
1285
1286 fib_index = fib_table_get_table_id_for_sw_if_index (pfx->fp_proto,
1287 sw_if_index);
1288 if (fib_index == ~0)
1289 return 0;
1290
1291 fei = fib_table_lookup_exact_match (fib_index, pfx);
1292 if (fei == FIB_NODE_INDEX_INVALID)
1293 return 0;
1294
1295 dpo = fib_entry_contribute_ip_forwarding (fei);
1296 lb0 = load_balance_get (dpo->dpoi_index);
1297 dpo = load_balance_get_bucket_i (lb0, 0);
1298 if (dpo->dpoi_type != DPO_L3_PROXY)
1299 return 0;
1300
1301 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
1302 return (l3p->l3p_sw_if_index == sw_if_index);
1303}
1304
Matus Fabian75b9f452018-10-02 23:27:21 -07001305typedef struct ip_container_proxy_walk_ctx_t_
1306{
1307 ip_container_proxy_cb_t cb;
1308 void *ctx;
1309} ip_container_proxy_walk_ctx_t;
1310
1311static fib_table_walk_rc_t
1312ip_container_proxy_fib_table_walk (fib_node_index_t fei, void *arg)
1313{
1314 ip_container_proxy_walk_ctx_t *ctx = arg;
1315 const fib_prefix_t *pfx;
1316 const dpo_id_t *dpo;
1317 load_balance_t *lb;
1318 l3_proxy_dpo_t *l3p;
1319
1320 pfx = fib_entry_get_prefix (fei);
1321 if (fib_entry_is_sourced (fei, FIB_SOURCE_PROXY))
1322 {
1323 dpo = fib_entry_contribute_ip_forwarding (fei);
1324 lb = load_balance_get (dpo->dpoi_index);
1325 dpo = load_balance_get_bucket_i (lb, 0);
1326 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
1327 ctx->cb (pfx, l3p->l3p_sw_if_index, ctx->ctx);
1328 }
1329
1330 return FIB_TABLE_WALK_CONTINUE;
1331}
1332
1333void
1334ip_container_proxy_walk (ip_container_proxy_cb_t cb, void *ctx)
1335{
1336 fib_table_t *fib_table;
1337 ip_container_proxy_walk_ctx_t wctx = {
1338 .cb = cb,
1339 .ctx = ctx,
1340 };
1341
1342 /* *INDENT-OFF* */
1343 pool_foreach (fib_table, ip4_main.fibs,
1344 ({
1345 fib_table_walk(fib_table->ft_index,
1346 FIB_PROTOCOL_IP4,
1347 ip_container_proxy_fib_table_walk,
1348 &wctx);
1349 }));
1350 pool_foreach (fib_table, ip6_main.fibs,
1351 ({
1352 fib_table_walk(fib_table->ft_index,
1353 FIB_PROTOCOL_IP6,
1354 ip_container_proxy_fib_table_walk,
1355 &wctx);
1356 }));
1357 /* *INDENT-ON* */
1358}
1359
Florin Coras595992c2017-11-06 17:17:08 -08001360clib_error_t *
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001361ip_container_cmd (vlib_main_t * vm,
1362 unformat_input_t * main_input, vlib_cli_command_t * cmd)
1363{
1364 unformat_input_t _line_input, *line_input = &_line_input;
1365 fib_prefix_t pfx;
Florin Corase1682c42017-11-07 17:06:36 -08001366 u32 is_del, addr_set = 0;
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001367 vnet_main_t *vnm;
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001368 u32 sw_if_index;
1369
1370 vnm = vnet_get_main ();
1371 is_del = 0;
1372 sw_if_index = ~0;
Dave Barachb7b92992018-10-17 10:38:51 -04001373 clib_memset (&pfx, 0, sizeof (pfx));
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001374
1375 /* Get a line of input. */
1376 if (!unformat_user (main_input, unformat_line_input, line_input))
1377 return 0;
1378
1379 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
1380 {
1381 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
1382 {
1383 pfx.fp_proto = FIB_PROTOCOL_IP4;
1384 pfx.fp_len = 32;
Florin Corase1682c42017-11-07 17:06:36 -08001385 addr_set = 1;
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001386 }
1387 else if (unformat (line_input, "%U",
1388 unformat_ip6_address, &pfx.fp_addr.ip6))
1389 {
1390 pfx.fp_proto = FIB_PROTOCOL_IP6;
1391 pfx.fp_len = 128;
Florin Corase1682c42017-11-07 17:06:36 -08001392 addr_set = 1;
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001393 }
1394 else if (unformat (line_input, "%U",
1395 unformat_vnet_sw_interface, vnm, &sw_if_index))
1396 ;
1397 else if (unformat (line_input, "del"))
1398 is_del = 1;
1399 else
Swarup Nayak76dc22c2017-12-05 09:46:17 +05301400 {
1401 unformat_free (line_input);
1402 return (clib_error_return (0, "unknown input '%U'",
1403 format_unformat_error, line_input));
1404 }
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001405 }
1406
Florin Corase1682c42017-11-07 17:06:36 -08001407 if (~0 == sw_if_index || !addr_set)
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001408 {
Swarup Nayak76dc22c2017-12-05 09:46:17 +05301409 unformat_free (line_input);
Florin Corase1682c42017-11-07 17:06:36 -08001410 vlib_cli_output (vm, "interface and address must be set");
1411 return 0;
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001412 }
1413
Florin Coras595992c2017-11-06 17:17:08 -08001414 vnet_ip_container_proxy_args_t args = {
1415 .prefix = pfx,
1416 .sw_if_index = sw_if_index,
1417 .is_add = !is_del,
1418 };
1419 vnet_ip_container_proxy_add_del (&args);
1420 unformat_free (line_input);
Andrew Yourtchenko5f3fcb92017-10-25 05:50:37 -07001421 return (NULL);
1422}
1423
1424/* *INDENT-OFF* */
1425VLIB_CLI_COMMAND (ip_container_command_node, static) = {
1426 .path = "ip container",
1427 .function = ip_container_cmd,
1428 .short_help = "ip container <address> <interface>",
1429 .is_mp_safe = 1,
1430};
1431/* *INDENT-ON* */
1432
Florin Coras595992c2017-11-06 17:17:08 -08001433clib_error_t *
1434show_ip_container_cmd_fn (vlib_main_t * vm, unformat_input_t * main_input,
1435 vlib_cli_command_t * cmd)
1436{
1437 unformat_input_t _line_input, *line_input = &_line_input;
1438 vnet_main_t *vnm = vnet_get_main ();
1439 fib_prefix_t pfx;
1440 u32 sw_if_index = ~0;
1441 u8 has_proxy;
1442
1443 if (!unformat_user (main_input, unformat_line_input, line_input))
1444 return 0;
1445 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
1446 {
1447 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
1448 {
1449 pfx.fp_proto = FIB_PROTOCOL_IP4;
1450 pfx.fp_len = 32;
1451 }
1452 else if (unformat (line_input, "%U",
1453 unformat_ip6_address, &pfx.fp_addr.ip6))
1454 {
1455 pfx.fp_proto = FIB_PROTOCOL_IP6;
1456 pfx.fp_len = 128;
1457 }
1458 else if (unformat (line_input, "%U",
1459 unformat_vnet_sw_interface, vnm, &sw_if_index))
1460 ;
1461 else
Swarup Nayak76dc22c2017-12-05 09:46:17 +05301462 {
1463 unformat_free (line_input);
1464 return (clib_error_return (0, "unknown input '%U'",
1465 format_unformat_error, line_input));
1466 }
Florin Coras595992c2017-11-06 17:17:08 -08001467 }
1468
1469 if (~0 == sw_if_index)
1470 {
Swarup Nayak76dc22c2017-12-05 09:46:17 +05301471 unformat_free (line_input);
Florin Coras595992c2017-11-06 17:17:08 -08001472 vlib_cli_output (vm, "no interface");
1473 return (clib_error_return (0, "no interface"));
1474 }
1475
1476 has_proxy = ip_container_proxy_is_set (&pfx, sw_if_index);
1477 vlib_cli_output (vm, "ip container proxy is: %s", has_proxy ? "on" : "off");
1478
1479 unformat_free (line_input);
1480 return 0;
1481}
1482
1483/* *INDENT-OFF* */
1484VLIB_CLI_COMMAND (show_ip_container_command, static) = {
1485 .path = "show ip container",
1486 .function = show_ip_container_cmd_fn,
1487 .short_help = "show ip container <address> <interface>",
1488 .is_mp_safe = 1,
1489};
1490/* *INDENT-ON* */
1491
Dave Barachd7cb1b52016-12-09 09:52:16 -05001492/*
1493 * fd.io coding-style-patch-verification: ON
1494 *
1495 * Local Variables:
1496 * eval: (c-set-style "gnu")
1497 * End:
1498 */