1*a71a9546SAutomerger Merge Worker /*
2*a71a9546SAutomerger Merge Worker * Copyright (c) 2012-2013 Patrick McHardy <[email protected]>
3*a71a9546SAutomerger Merge Worker */
4*a71a9546SAutomerger Merge Worker
5*a71a9546SAutomerger Merge Worker #include <stdio.h>
6*a71a9546SAutomerger Merge Worker #include <string.h>
7*a71a9546SAutomerger Merge Worker #include <xtables.h>
8*a71a9546SAutomerger Merge Worker #include <linux/netfilter_ipv6/ip6_tables.h>
9*a71a9546SAutomerger Merge Worker #include <linux/netfilter_ipv6/ip6t_NPT.h>
10*a71a9546SAutomerger Merge Worker
11*a71a9546SAutomerger Merge Worker enum {
12*a71a9546SAutomerger Merge Worker O_SRC_PFX = 1 << 0,
13*a71a9546SAutomerger Merge Worker O_DST_PFX = 1 << 1,
14*a71a9546SAutomerger Merge Worker };
15*a71a9546SAutomerger Merge Worker
16*a71a9546SAutomerger Merge Worker static const struct xt_option_entry SNPT_options[] = {
17*a71a9546SAutomerger Merge Worker { .name = "src-pfx", .id = O_SRC_PFX, .type = XTTYPE_HOSTMASK,
18*a71a9546SAutomerger Merge Worker .flags = XTOPT_MAND },
19*a71a9546SAutomerger Merge Worker { .name = "dst-pfx", .id = O_DST_PFX, .type = XTTYPE_HOSTMASK,
20*a71a9546SAutomerger Merge Worker .flags = XTOPT_MAND },
21*a71a9546SAutomerger Merge Worker { }
22*a71a9546SAutomerger Merge Worker };
23*a71a9546SAutomerger Merge Worker
SNPT_help(void)24*a71a9546SAutomerger Merge Worker static void SNPT_help(void)
25*a71a9546SAutomerger Merge Worker {
26*a71a9546SAutomerger Merge Worker printf("SNPT target options:"
27*a71a9546SAutomerger Merge Worker "\n"
28*a71a9546SAutomerger Merge Worker " --src-pfx prefix/length\n"
29*a71a9546SAutomerger Merge Worker " --dst-pfx prefix/length\n"
30*a71a9546SAutomerger Merge Worker "\n");
31*a71a9546SAutomerger Merge Worker }
32*a71a9546SAutomerger Merge Worker
SNPT_parse(struct xt_option_call * cb)33*a71a9546SAutomerger Merge Worker static void SNPT_parse(struct xt_option_call *cb)
34*a71a9546SAutomerger Merge Worker {
35*a71a9546SAutomerger Merge Worker struct ip6t_npt_tginfo *npt = cb->data;
36*a71a9546SAutomerger Merge Worker
37*a71a9546SAutomerger Merge Worker xtables_option_parse(cb);
38*a71a9546SAutomerger Merge Worker switch (cb->entry->id) {
39*a71a9546SAutomerger Merge Worker case O_SRC_PFX:
40*a71a9546SAutomerger Merge Worker npt->src_pfx = cb->val.haddr;
41*a71a9546SAutomerger Merge Worker npt->src_pfx_len = cb->val.hlen;
42*a71a9546SAutomerger Merge Worker break;
43*a71a9546SAutomerger Merge Worker case O_DST_PFX:
44*a71a9546SAutomerger Merge Worker npt->dst_pfx = cb->val.haddr;
45*a71a9546SAutomerger Merge Worker npt->dst_pfx_len = cb->val.hlen;
46*a71a9546SAutomerger Merge Worker break;
47*a71a9546SAutomerger Merge Worker }
48*a71a9546SAutomerger Merge Worker }
49*a71a9546SAutomerger Merge Worker
SNPT_print(const void * ip,const struct xt_entry_target * target,int numeric)50*a71a9546SAutomerger Merge Worker static void SNPT_print(const void *ip, const struct xt_entry_target *target,
51*a71a9546SAutomerger Merge Worker int numeric)
52*a71a9546SAutomerger Merge Worker {
53*a71a9546SAutomerger Merge Worker const struct ip6t_npt_tginfo *npt = (const void *)target->data;
54*a71a9546SAutomerger Merge Worker
55*a71a9546SAutomerger Merge Worker printf(" SNPT src-pfx %s/%u", xtables_ip6addr_to_numeric(&npt->src_pfx.in6),
56*a71a9546SAutomerger Merge Worker npt->src_pfx_len);
57*a71a9546SAutomerger Merge Worker printf(" dst-pfx %s/%u", xtables_ip6addr_to_numeric(&npt->dst_pfx.in6),
58*a71a9546SAutomerger Merge Worker npt->dst_pfx_len);
59*a71a9546SAutomerger Merge Worker }
60*a71a9546SAutomerger Merge Worker
SNPT_save(const void * ip,const struct xt_entry_target * target)61*a71a9546SAutomerger Merge Worker static void SNPT_save(const void *ip, const struct xt_entry_target *target)
62*a71a9546SAutomerger Merge Worker {
63*a71a9546SAutomerger Merge Worker static const struct in6_addr zero_addr;
64*a71a9546SAutomerger Merge Worker const struct ip6t_npt_tginfo *info = (const void *)target->data;
65*a71a9546SAutomerger Merge Worker
66*a71a9546SAutomerger Merge Worker if (memcmp(&info->src_pfx.in6, &zero_addr, sizeof(zero_addr)) != 0 ||
67*a71a9546SAutomerger Merge Worker info->src_pfx_len != 0)
68*a71a9546SAutomerger Merge Worker printf(" --src-pfx %s/%u",
69*a71a9546SAutomerger Merge Worker xtables_ip6addr_to_numeric(&info->src_pfx.in6),
70*a71a9546SAutomerger Merge Worker info->src_pfx_len);
71*a71a9546SAutomerger Merge Worker if (memcmp(&info->dst_pfx.in6, &zero_addr, sizeof(zero_addr)) != 0 ||
72*a71a9546SAutomerger Merge Worker info->dst_pfx_len != 0)
73*a71a9546SAutomerger Merge Worker printf(" --dst-pfx %s/%u",
74*a71a9546SAutomerger Merge Worker xtables_ip6addr_to_numeric(&info->dst_pfx.in6),
75*a71a9546SAutomerger Merge Worker info->dst_pfx_len);
76*a71a9546SAutomerger Merge Worker }
77*a71a9546SAutomerger Merge Worker
78*a71a9546SAutomerger Merge Worker static struct xtables_target snpt_tg_reg = {
79*a71a9546SAutomerger Merge Worker .name = "SNPT",
80*a71a9546SAutomerger Merge Worker .version = XTABLES_VERSION,
81*a71a9546SAutomerger Merge Worker .family = NFPROTO_IPV6,
82*a71a9546SAutomerger Merge Worker .size = XT_ALIGN(sizeof(struct ip6t_npt_tginfo)),
83*a71a9546SAutomerger Merge Worker .userspacesize = offsetof(struct ip6t_npt_tginfo, adjustment),
84*a71a9546SAutomerger Merge Worker .help = SNPT_help,
85*a71a9546SAutomerger Merge Worker .x6_parse = SNPT_parse,
86*a71a9546SAutomerger Merge Worker .print = SNPT_print,
87*a71a9546SAutomerger Merge Worker .save = SNPT_save,
88*a71a9546SAutomerger Merge Worker .x6_options = SNPT_options,
89*a71a9546SAutomerger Merge Worker };
90*a71a9546SAutomerger Merge Worker
_init(void)91*a71a9546SAutomerger Merge Worker void _init(void)
92*a71a9546SAutomerger Merge Worker {
93*a71a9546SAutomerger Merge Worker xtables_register_target(&snpt_tg_reg);
94*a71a9546SAutomerger Merge Worker }
95