Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 1 | /* |
| 2 | * Copyright (C) 2012 The Android Open Source Project |
| 3 | * |
| 4 | * Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | * you may not use this file except in compliance with the License. |
| 6 | * You may obtain a copy of the License at |
| 7 | * |
Sasha Levitskiy | 329c3b4 | 2012-07-30 16:11:23 -0700 | [diff] [blame] | 8 | * http://www.apache.org/licenses/LICENSE-2.0 |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 9 | * |
| 10 | * Unless required by applicable law or agreed to in writing, software |
| 11 | * distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | * See the License for the specific language governing permissions and |
| 14 | * limitations under the License. |
| 15 | */ |
| 16 | |
Lorenzo Colitti | 37f2e37 | 2013-04-12 00:44:06 +0900 | [diff] [blame] | 17 | #include <dirent.h> |
Dan Albert | aa1be2b | 2015-01-06 09:36:17 -0800 | [diff] [blame] | 18 | #include <errno.h> |
Elliott Hughes | 5f4938f | 2015-01-28 11:22:38 -0800 | [diff] [blame] | 19 | #include <malloc.h> |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 20 | |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 21 | #define LOG_TAG "InterfaceController" |
Elliott Hughes | bbd5626 | 2015-12-04 15:45:10 -0800 | [diff] [blame] | 22 | #include <android-base/file.h> |
| 23 | #include <android-base/stringprintf.h> |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 24 | #include <cutils/log.h> |
Lorenzo Colitti | 0ea8ff8 | 2014-10-28 00:15:07 +0900 | [diff] [blame] | 25 | #include <logwrap/logwrap.h> |
Erik Kline | c296f09 | 2016-08-02 15:22:53 +0900 | [diff] [blame^] | 26 | #include <netutils/ifc.h> |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 27 | |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 28 | #include "InterfaceController.h" |
Sreeram Ramachandran | a481180 | 2014-04-10 12:10:24 -0700 | [diff] [blame] | 29 | #include "RouteController.h" |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 30 | |
Dan Albert | 5407e14 | 2015-03-16 10:05:59 -0700 | [diff] [blame] | 31 | using android::base::StringPrintf; |
| 32 | using android::base::WriteStringToFile; |
| 33 | |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 34 | namespace { |
| 35 | |
Lorenzo Colitti | 37f2e37 | 2013-04-12 00:44:06 +0900 | [diff] [blame] | 36 | const char ipv6_proc_path[] = "/proc/sys/net/ipv6/conf"; |
| 37 | |
Erik Kline | 145fd25 | 2015-05-12 15:58:49 +0900 | [diff] [blame] | 38 | const char ipv4_neigh_conf_dir[] = "/proc/sys/net/ipv4/neigh"; |
| 39 | |
| 40 | const char ipv6_neigh_conf_dir[] = "/proc/sys/net/ipv6/neigh"; |
| 41 | |
Dmitry Shmidt | 6d6c0e6 | 2013-06-11 16:18:06 -0700 | [diff] [blame] | 42 | const char sys_net_path[] = "/sys/class/net"; |
| 43 | |
Erik Kline | bdcba11 | 2016-05-26 17:00:31 +0900 | [diff] [blame] | 44 | const char wl_util_path[] = "/vendor/xbin/wlutil"; |
Lorenzo Colitti | 0ea8ff8 | 2014-10-28 00:15:07 +0900 | [diff] [blame] | 45 | |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 46 | bool isInterfaceName(const char *name) { |
| 47 | return strcmp(name, ".") && |
| 48 | strcmp(name, "..") && |
| 49 | strcmp(name, "default") && |
| 50 | strcmp(name, "all"); |
| 51 | } |
| 52 | |
| 53 | int writeValueToPath( |
| 54 | const char* dirname, const char* subdirname, const char* basename, |
| 55 | const char* value) { |
| 56 | std::string path(StringPrintf("%s/%s/%s", dirname, subdirname, basename)); |
Erik Kline | 3f95777 | 2015-06-03 17:44:24 +0900 | [diff] [blame] | 57 | return WriteStringToFile(value, path) ? 0 : -1; |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 58 | } |
| 59 | |
| 60 | void setOnAllInterfaces(const char* dirname, const char* basename, const char* value) { |
| 61 | // Set the default value, which is used by any interfaces that are created in the future. |
| 62 | writeValueToPath(dirname, "default", basename, value); |
| 63 | |
| 64 | // Set the value on all the interfaces that currently exist. |
| 65 | DIR* dir = opendir(dirname); |
| 66 | if (!dir) { |
| 67 | ALOGE("Can't list %s: %s", dirname, strerror(errno)); |
| 68 | return; |
| 69 | } |
| 70 | dirent* d; |
| 71 | while ((d = readdir(dir))) { |
| 72 | if ((d->d_type != DT_DIR) || !isInterfaceName(d->d_name)) { |
| 73 | continue; |
| 74 | } |
| 75 | writeValueToPath(dirname, d->d_name, basename, value); |
| 76 | } |
| 77 | closedir(dir); |
| 78 | } |
| 79 | |
Erik Kline | 7adf8d7 | 2015-07-28 18:51:01 +0900 | [diff] [blame] | 80 | void setIPv6UseOutgoingInterfaceAddrsOnly(const char *value) { |
| 81 | setOnAllInterfaces(ipv6_proc_path, "use_oif_addrs_only", value); |
| 82 | } |
| 83 | |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 84 | } // namespace |
| 85 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 86 | void InterfaceController::initializeAll() { |
| 87 | // Initial IPv6 settings. |
| 88 | // By default, accept_ra is set to 1 (accept RAs unless forwarding is on) on all interfaces. |
| 89 | // This causes RAs to work or not work based on whether forwarding is on, and causes routes |
| 90 | // learned from RAs to go away when forwarding is turned on. Make this behaviour predictable |
| 91 | // by always setting accept_ra to 2. |
| 92 | setAcceptRA("2"); |
Lorenzo Colitti | 37f2e37 | 2013-04-12 00:44:06 +0900 | [diff] [blame] | 93 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 94 | setAcceptRARouteTable(-RouteController::ROUTE_TABLE_OFFSET_FROM_INDEX); |
Erik Kline | 59273ed | 2014-12-08 16:05:28 +0900 | [diff] [blame] | 95 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 96 | // Enable optimistic DAD for IPv6 addresses on all interfaces. |
| 97 | setIPv6OptimisticMode("1"); |
Erik Kline | 145fd25 | 2015-05-12 15:58:49 +0900 | [diff] [blame] | 98 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 99 | // Reduce the ARP/ND base reachable time from the default (30sec) to 15sec. |
| 100 | setBaseReachableTimeMs(15 * 1000); |
Erik Kline | 7adf8d7 | 2015-07-28 18:51:01 +0900 | [diff] [blame] | 101 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 102 | // When sending traffic via a given interface use only addresses configured |
| 103 | // on that interface as possible source addresses. |
| 104 | setIPv6UseOutgoingInterfaceAddrsOnly("1"); |
Dmitry Shmidt | 2eab1f7 | 2012-07-26 16:08:02 -0700 | [diff] [blame] | 105 | } |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 106 | |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 107 | int InterfaceController::setEnableIPv6(const char *interface, const int on) { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 108 | if (!isIfaceName(interface)) { |
| 109 | errno = ENOENT; |
| 110 | return -1; |
| 111 | } |
| 112 | // When disable_ipv6 changes from 1 to 0, the kernel starts autoconf. |
| 113 | // When disable_ipv6 changes from 0 to 1, the kernel clears all autoconf |
| 114 | // addresses and routes and disables IPv6 on the interface. |
| 115 | const char *disable_ipv6 = on ? "0" : "1"; |
| 116 | return writeValueToPath(ipv6_proc_path, interface, "disable_ipv6", disable_ipv6); |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 117 | } |
| 118 | |
Erik Kline | 2c5aaa1 | 2016-06-08 13:24:45 +0900 | [diff] [blame] | 119 | int InterfaceController::setAcceptIPv6Ra(const char *interface, const int on) { |
| 120 | if (!isIfaceName(interface)) { |
| 121 | errno = ENOENT; |
| 122 | return -1; |
| 123 | } |
| 124 | // Because forwarding can be enabled even when tethering is off, we always |
| 125 | // use mode "2" (accept RAs, even if forwarding is enabled). |
| 126 | const char *accept_ra = on ? "2" : "0"; |
| 127 | return writeValueToPath(ipv6_proc_path, interface, "accept_ra", accept_ra); |
| 128 | } |
| 129 | |
| 130 | int InterfaceController::setAcceptIPv6Dad(const char *interface, const int on) { |
| 131 | if (!isIfaceName(interface)) { |
| 132 | errno = ENOENT; |
| 133 | return -1; |
| 134 | } |
| 135 | const char *accept_dad = on ? "1" : "0"; |
| 136 | return writeValueToPath(ipv6_proc_path, interface, "accept_dad", accept_dad); |
| 137 | } |
| 138 | |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 139 | int InterfaceController::setIPv6PrivacyExtensions(const char *interface, const int on) { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 140 | if (!isIfaceName(interface)) { |
| 141 | errno = ENOENT; |
| 142 | return -1; |
| 143 | } |
| 144 | // 0: disable IPv6 privacy addresses |
| 145 | // 0: enable IPv6 privacy addresses and prefer them over non-privacy ones. |
| 146 | return writeValueToPath(ipv6_proc_path, interface, "use_tempaddr", on ? "2" : "0"); |
Lorenzo Colitti | 70afde6 | 2013-03-04 17:58:40 +0900 | [diff] [blame] | 147 | } |
Lorenzo Colitti | 37f2e37 | 2013-04-12 00:44:06 +0900 | [diff] [blame] | 148 | |
Lorenzo Colitti | 0ea8ff8 | 2014-10-28 00:15:07 +0900 | [diff] [blame] | 149 | // Enables or disables IPv6 ND offload. This is useful for 464xlat on wifi, IPv6 tethering, and |
| 150 | // generally implementing IPv6 neighbour discovery and duplicate address detection properly. |
| 151 | // TODO: This should be implemented in wpa_supplicant via driver commands instead. |
| 152 | int InterfaceController::setIPv6NdOffload(char* interface, const int on) { |
| 153 | // Only supported on Broadcom chipsets via wlutil for now. |
| 154 | if (access(wl_util_path, X_OK) == 0) { |
| 155 | const char *argv[] = { |
| 156 | wl_util_path, |
| 157 | "-a", |
| 158 | interface, |
| 159 | "ndoe", |
| 160 | on ? "1" : "0" |
| 161 | }; |
| 162 | int ret = android_fork_execvp(ARRAY_SIZE(argv), const_cast<char**>(argv), NULL, |
| 163 | false, false); |
| 164 | ALOGD("%s ND offload on %s: %d (%s)", |
| 165 | (on ? "enabling" : "disabling"), interface, ret, strerror(errno)); |
| 166 | return ret; |
| 167 | } else { |
| 168 | return 0; |
| 169 | } |
| 170 | } |
| 171 | |
Sreeram Ramachandran | a481180 | 2014-04-10 12:10:24 -0700 | [diff] [blame] | 172 | void InterfaceController::setAcceptRA(const char *value) { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 173 | setOnAllInterfaces(ipv6_proc_path, "accept_ra", value); |
Sreeram Ramachandran | a481180 | 2014-04-10 12:10:24 -0700 | [diff] [blame] | 174 | } |
| 175 | |
Sreeram Ramachandran | a01d6ef | 2014-04-10 19:37:59 -0700 | [diff] [blame] | 176 | // |tableOrOffset| is interpreted as: |
Sreeram Ramachandran | a481180 | 2014-04-10 12:10:24 -0700 | [diff] [blame] | 177 | // If == 0: default. Routes go into RT6_TABLE_MAIN. |
| 178 | // If > 0: user set. Routes go into the specified table. |
| 179 | // If < 0: automatic. The absolute value is intepreted as an offset and added to the interface |
| 180 | // ID to get the table. If it's set to -1000, routes from interface ID 5 will go into |
| 181 | // table 1005, etc. |
Sreeram Ramachandran | a01d6ef | 2014-04-10 19:37:59 -0700 | [diff] [blame] | 182 | void InterfaceController::setAcceptRARouteTable(int tableOrOffset) { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 183 | std::string value(StringPrintf("%d", tableOrOffset)); |
| 184 | setOnAllInterfaces(ipv6_proc_path, "accept_ra_rt_table", value.c_str()); |
Lorenzo Colitti | 37f2e37 | 2013-04-12 00:44:06 +0900 | [diff] [blame] | 185 | } |
Dmitry Shmidt | 6d6c0e6 | 2013-06-11 16:18:06 -0700 | [diff] [blame] | 186 | |
Dmitry Shmidt | 6d6c0e6 | 2013-06-11 16:18:06 -0700 | [diff] [blame] | 187 | int InterfaceController::setMtu(const char *interface, const char *mtu) |
| 188 | { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 189 | if (!isIfaceName(interface)) { |
| 190 | errno = ENOENT; |
| 191 | return -1; |
| 192 | } |
| 193 | return writeValueToPath(sys_net_path, interface, "mtu", mtu); |
Dmitry Shmidt | 6d6c0e6 | 2013-06-11 16:18:06 -0700 | [diff] [blame] | 194 | } |
Erik Kline | 59273ed | 2014-12-08 16:05:28 +0900 | [diff] [blame] | 195 | |
Erik Kline | c296f09 | 2016-08-02 15:22:53 +0900 | [diff] [blame^] | 196 | |
| 197 | int InterfaceController::addAddress(const char *interface, |
| 198 | const char *addrString, int prefixLength) { |
| 199 | return ifc_add_address(interface, addrString, prefixLength); |
| 200 | } |
| 201 | |
| 202 | int InterfaceController::delAddress(const char *interface, |
| 203 | const char *addrString, int prefixLength) { |
| 204 | return ifc_del_address(interface, addrString, prefixLength); |
| 205 | } |
| 206 | |
Erik Kline | 145fd25 | 2015-05-12 15:58:49 +0900 | [diff] [blame] | 207 | void InterfaceController::setBaseReachableTimeMs(unsigned int millis) { |
| 208 | std::string value(StringPrintf("%u", millis)); |
| 209 | setOnAllInterfaces(ipv4_neigh_conf_dir, "base_reachable_time_ms", value.c_str()); |
| 210 | setOnAllInterfaces(ipv6_neigh_conf_dir, "base_reachable_time_ms", value.c_str()); |
| 211 | } |
| 212 | |
Erik Kline | 59273ed | 2014-12-08 16:05:28 +0900 | [diff] [blame] | 213 | void InterfaceController::setIPv6OptimisticMode(const char *value) { |
Erik Kline | e1da484 | 2015-05-12 15:56:06 +0900 | [diff] [blame] | 214 | setOnAllInterfaces(ipv6_proc_path, "optimistic_dad", value); |
| 215 | setOnAllInterfaces(ipv6_proc_path, "use_optimistic", value); |
Erik Kline | 59273ed | 2014-12-08 16:05:28 +0900 | [diff] [blame] | 216 | } |