blob: ab39ee90418eeef50fed58dab34bf57dca460265 [file] [log] [blame]
Harald Welte0ac4f892005-08-27 22:37:30 -07001/*
2 * Hop Limit modification target for ip6tables
3 * Maciej Soltysiak <solt@dns.toxicfilms.tv>
4 * Based on HW's TTL module
5 *
6 * This software is distributed under the terms of GNU GPL
7 */
8
9#include <linux/module.h>
10#include <linux/skbuff.h>
11#include <linux/ip.h>
12
13#include <linux/netfilter_ipv6/ip6_tables.h>
14#include <linux/netfilter_ipv6/ip6t_HL.h>
15
16MODULE_AUTHOR("Maciej Soltysiak <solt@dns.toxicfilms.tv>");
17MODULE_DESCRIPTION("IP tables Hop Limit modification module");
18MODULE_LICENSE("GPL");
19
20static unsigned int ip6t_hl_target(struct sk_buff **pskb,
21 const struct net_device *in,
22 const struct net_device *out,
23 unsigned int hooknum,
24 const void *targinfo, void *userinfo)
25{
26 struct ipv6hdr *ip6h;
27 const struct ip6t_HL_info *info = targinfo;
28 u_int16_t diffs[2];
29 int new_hl;
30
31 if (!skb_make_writable(pskb, (*pskb)->len))
32 return NF_DROP;
33
34 ip6h = (*pskb)->nh.ipv6h;
35
36 switch (info->mode) {
37 case IP6T_HL_SET:
38 new_hl = info->hop_limit;
39 break;
40 case IP6T_HL_INC:
41 new_hl = ip6h->hop_limit + info->hop_limit;
42 if (new_hl > 255)
43 new_hl = 255;
44 break;
45 case IP6T_HL_DEC:
46 new_hl = ip6h->hop_limit - info->hop_limit;
47 if (new_hl < 0)
48 new_hl = 0;
49 break;
50 default:
51 new_hl = ip6h->hop_limit;
52 break;
53 }
54
55 if (new_hl != ip6h->hop_limit) {
56 diffs[0] = htons(((unsigned)ip6h->hop_limit) << 8) ^ 0xFFFF;
57 ip6h->hop_limit = new_hl;
58 diffs[1] = htons(((unsigned)ip6h->hop_limit) << 8);
59 }
60
61 return IP6T_CONTINUE;
62}
63
64static int ip6t_hl_checkentry(const char *tablename,
Harald Welte2e4e6a12006-01-12 13:30:04 -080065 const void *entry,
Harald Welte0ac4f892005-08-27 22:37:30 -070066 void *targinfo,
67 unsigned int targinfosize,
68 unsigned int hook_mask)
69{
70 struct ip6t_HL_info *info = targinfo;
71
Harald Welte0ac4f892005-08-27 22:37:30 -070072 if (info->mode > IP6T_HL_MAXMODE) {
73 printk(KERN_WARNING "ip6t_HL: invalid or unknown Mode %u\n",
74 info->mode);
75 return 0;
76 }
Harald Welte0ac4f892005-08-27 22:37:30 -070077 if ((info->mode != IP6T_HL_SET) && (info->hop_limit == 0)) {
78 printk(KERN_WARNING "ip6t_HL: increment/decrement doesn't "
79 "make sense with value 0\n");
80 return 0;
81 }
Harald Welte0ac4f892005-08-27 22:37:30 -070082 return 1;
83}
84
85static struct ip6t_target ip6t_HL = {
86 .name = "HL",
87 .target = ip6t_hl_target,
Patrick McHardy7f939712006-03-20 18:01:43 -080088 .targetsize = sizeof(struct ip6t_HL_info),
89 .table = "mangle",
Harald Welte0ac4f892005-08-27 22:37:30 -070090 .checkentry = ip6t_hl_checkentry,
91 .me = THIS_MODULE
92};
93
94static int __init init(void)
95{
96 return ip6t_register_target(&ip6t_HL);
97}
98
99static void __exit fini(void)
100{
101 ip6t_unregister_target(&ip6t_HL);
102}
103
104module_init(init);
105module_exit(fini);