/*- * Copyright (c) 2025 The NetBSD Foundation, Inc. * All rights reserved. * * This code is derived from software contributed to The NetBSD Foundation * by Emmanuel Nyarko. * * Redistribution and use in source and binary forms, with or without * modification, are permitted provided that the following conditions * are met: * 1. Redistributions of source code must retain the above copyright * notice, this list of conditions and the following disclaimer. * 2. Redistributions in binary form must reproduce the above copyright * notice, this list of conditions and the following disclaimer in the * documentation and/or other materials provided with the distribution. * * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE * POSSIBILITY OF SUCH DAMAGE. */ #include __RCSID("$NetBSD: npfext_route.c,v 1.2 2026/10/01 21:02:56 joe Exp $"); #include #include #include #include #include #include #include #include #include #include #include #include int npfext_route_init(void); nl_ext_t * npfext_route_construct(const char *); int npfext_route_param(nl_ext_t *, const char *, const char *); int npfext_route_init(void) { /* Nothing to initialise. */ return 0; } nl_ext_t * npfext_route_construct(const char *name) { assert(strcmp(name, "route") == 0); return npf_ext_construct(name); } int npfext_route_param(nl_ext_t *ext, const char *param, const char *val) { enum ptype { PARAM_INTERFACE, PARAM_INET4, PARAM_INET6, PARAM_DUP, }; static const struct param { const char * name; enum ptype type; bool reqval; } params[] = { { "interface", PARAM_INTERFACE, true }, { "via", PARAM_INET4, true }, { "via6", PARAM_INET6, true }, { "dup-to", PARAM_DUP, false }, }; for (unsigned i = 0; i < __arraycount(params); i++) { const char *name = params[i].name; struct in_addr addr; struct in6_addr addr6; if (strcmp(name, param) != 0) { continue; } if (val == NULL && params[i].reqval) { return EINVAL; } switch (params[i].type) { case PARAM_DUP: npf_ext_param_bool(ext, name, true); break; case PARAM_INTERFACE: npf_ext_param_string(ext, name, val); break; /* catch invalid addresses early */ case PARAM_INET4: if (inet_pton(AF_INET, val, &addr) != 1) { warn("Invalid IPv4 address `%s'", val); return EINVAL; } npf_ext_param_binary(ext, name, &addr, sizeof(struct in_addr)); break; case PARAM_INET6: if (inet_pton(AF_INET6, val, &addr6) != 1) { warn("Invalid IPv6 address `%s'", val); return EINVAL; } npf_ext_param_binary(ext, name, &addr6, sizeof(struct in6_addr)); break; default: break; } } return 0; }