2 * node.c - ipfix probe graph node
4 * Copyright (c) 2017 Cisco and/or its affiliates.
5 * Licensed under the Apache License, Version 2.0 (the "License");
6 * you may not use this file except in compliance with the License.
7 * You may obtain a copy of the License at:
9 * http://www.apache.org/licenses/LICENSE-2.0
11 * Unless required by applicable law or agreed to in writing, software
12 * distributed under the License is distributed on an "AS IS" BASIS,
13 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14 * See the License for the specific language governing permissions and
15 * limitations under the License.
17 #include <vlib/vlib.h>
18 #include <vnet/vnet.h>
19 #include <vppinfra/crc32.h>
20 #include <vppinfra/xxhash.h>
21 #include <vppinfra/error.h>
22 #include <flowprobe/flowprobe.h>
23 #include <vnet/ip/ip6_packet.h>
24 #include <vnet/udp/udp_local.h>
25 #include <vlibmemory/api.h>
27 static void flowprobe_export_entry (vlib_main_t * vm, flowprobe_entry_t * e);
31 * flow record generator graph node
36 /** interface handle */
39 /** packet timestamp */
41 /** size of the buffer */
51 ip46_address_t src_address;
52 ip46_address_t dst_address;
60 flowprobe_variant_t which;
63 static char *flowprobe_variant_strings[] = {
64 [FLOW_VARIANT_IP4] = "IP4",
65 [FLOW_VARIANT_IP6] = "IP6",
66 [FLOW_VARIANT_L2] = "L2",
67 [FLOW_VARIANT_L2_IP4] = "L2-IP4",
68 [FLOW_VARIANT_L2_IP6] = "L2-IP6",
71 /* packet trace format function */
73 format_flowprobe_trace (u8 * s, va_list * args)
75 CLIB_UNUSED (vlib_main_t * vm) = va_arg (*args, vlib_main_t *);
76 CLIB_UNUSED (vlib_node_t * node) = va_arg (*args, vlib_node_t *);
77 flowprobe_trace_t *t = va_arg (*args, flowprobe_trace_t *);
78 u32 indent = format_get_indent (s);
81 "FLOWPROBE[%s]: rx_sw_if_index %d, tx_sw_if_index %d, "
82 "timestamp %lld, size %d", flowprobe_variant_strings[t->which],
83 t->rx_sw_if_index, t->tx_sw_if_index,
84 t->timestamp, t->buffer_size);
86 if (t->which == FLOW_VARIANT_L2)
87 s = format (s, "\n%U -> %U", format_white_space, indent,
88 format_ethernet_address, &t->src_mac,
89 format_ethernet_address, &t->dst_mac);
92 && (t->which == FLOW_VARIANT_L2_IP4 || t->which == FLOW_VARIANT_IP4
93 || t->which == FLOW_VARIANT_L2_IP6 || t->which == FLOW_VARIANT_IP6))
95 format (s, "\n%U%U: %U -> %U", format_white_space, indent,
96 format_ip_protocol, t->protocol, format_ip46_address,
97 &t->src_address, IP46_TYPE_ANY, format_ip46_address,
98 &t->dst_address, IP46_TYPE_ANY);
102 vlib_node_registration_t flowprobe_input_ip4_node;
103 vlib_node_registration_t flowprobe_input_ip6_node;
104 vlib_node_registration_t flowprobe_input_l2_node;
105 vlib_node_registration_t flowprobe_output_ip4_node;
106 vlib_node_registration_t flowprobe_output_ip6_node;
107 vlib_node_registration_t flowprobe_output_l2_node;
109 /* No counters at the moment */
110 #define foreach_flowprobe_error \
111 _(COLLISION, "Hash table collisions") \
112 _(BUFFER, "Buffer allocation error") \
113 _(EXPORTED_PACKETS, "Exported packets") \
114 _(INPATH, "Exported packets in path")
118 #define _(sym,str) FLOWPROBE_ERROR_##sym,
119 foreach_flowprobe_error
124 static char *flowprobe_error_strings[] = {
125 #define _(sym,string) string,
126 foreach_flowprobe_error
133 FLOWPROBE_NEXT_IP4_LOOKUP,
137 #define FLOWPROBE_NEXT_NODES { \
138 [FLOWPROBE_NEXT_DROP] = "error-drop", \
139 [FLOWPROBE_NEXT_IP4_LOOKUP] = "ip4-lookup", \
142 static inline flowprobe_variant_t
143 flowprobe_get_variant (flowprobe_variant_t which,
144 flowprobe_record_t flags, u16 ethertype)
146 if (which == FLOW_VARIANT_L2
147 && (flags & FLOW_RECORD_L3 || flags & FLOW_RECORD_L4))
148 return ethertype == ETHERNET_TYPE_IP6 ? FLOW_VARIANT_L2_IP6 : ethertype ==
149 ETHERNET_TYPE_IP4 ? FLOW_VARIANT_L2_IP4 : FLOW_VARIANT_L2;
154 * NTP rfc868 : 2 208 988 800 corresponds to 00:00 1 Jan 1970 GMT
156 #define NTP_TIMESTAMP 2208988800LU
159 flowprobe_common_add (vlib_buffer_t * to_b, flowprobe_entry_t * e, u16 offset)
163 /* Ingress interface */
164 u32 rx_if = clib_host_to_net_u32 (e->key.rx_sw_if_index);
165 clib_memcpy_fast (to_b->data + offset, &rx_if, sizeof (rx_if));
166 offset += sizeof (rx_if);
168 /* Egress interface */
169 u32 tx_if = clib_host_to_net_u32 (e->key.tx_sw_if_index);
170 clib_memcpy_fast (to_b->data + offset, &tx_if, sizeof (tx_if));
171 offset += sizeof (tx_if);
176 to_b->data[offset++] = (e->key.direction == FLOW_DIRECTION_TX);
178 /* packet delta count */
179 u64 packetdelta = clib_host_to_net_u64 (e->packetcount);
180 clib_memcpy_fast (to_b->data + offset, &packetdelta, sizeof (u64));
181 offset += sizeof (u64);
183 /* flowStartNanoseconds */
184 u32 t = clib_host_to_net_u32 (e->flow_start.sec + NTP_TIMESTAMP);
185 clib_memcpy_fast (to_b->data + offset, &t, sizeof (u32));
186 offset += sizeof (u32);
187 t = clib_host_to_net_u32 (e->flow_start.nsec);
188 clib_memcpy_fast (to_b->data + offset, &t, sizeof (u32));
189 offset += sizeof (u32);
191 /* flowEndNanoseconds */
192 t = clib_host_to_net_u32 (e->flow_end.sec + NTP_TIMESTAMP);
193 clib_memcpy_fast (to_b->data + offset, &t, sizeof (u32));
194 offset += sizeof (u32);
195 t = clib_host_to_net_u32 (e->flow_end.nsec);
196 clib_memcpy_fast (to_b->data + offset, &t, sizeof (u32));
197 offset += sizeof (u32);
199 return offset - start;
203 flowprobe_l2_add (vlib_buffer_t * to_b, flowprobe_entry_t * e, u16 offset)
207 /* src mac address */
208 clib_memcpy_fast (to_b->data + offset, &e->key.src_mac, 6);
211 /* dst mac address */
212 clib_memcpy_fast (to_b->data + offset, &e->key.dst_mac, 6);
216 clib_memcpy_fast (to_b->data + offset, &e->key.ethertype, 2);
219 return offset - start;
223 flowprobe_l3_ip6_add (vlib_buffer_t * to_b, flowprobe_entry_t * e, u16 offset)
227 /* ip6 src address */
228 clib_memcpy_fast (to_b->data + offset, &e->key.src_address,
229 sizeof (ip6_address_t));
230 offset += sizeof (ip6_address_t);
232 /* ip6 dst address */
233 clib_memcpy_fast (to_b->data + offset, &e->key.dst_address,
234 sizeof (ip6_address_t));
235 offset += sizeof (ip6_address_t);
238 to_b->data[offset++] = e->key.protocol;
240 /* octetDeltaCount */
241 u64 octetdelta = clib_host_to_net_u64 (e->octetcount);
242 clib_memcpy_fast (to_b->data + offset, &octetdelta, sizeof (u64));
243 offset += sizeof (u64);
245 return offset - start;
249 flowprobe_l3_ip4_add (vlib_buffer_t * to_b, flowprobe_entry_t * e, u16 offset)
253 /* ip4 src address */
254 clib_memcpy_fast (to_b->data + offset, &e->key.src_address.ip4,
255 sizeof (ip4_address_t));
256 offset += sizeof (ip4_address_t);
258 /* ip4 dst address */
259 clib_memcpy_fast (to_b->data + offset, &e->key.dst_address.ip4,
260 sizeof (ip4_address_t));
261 offset += sizeof (ip4_address_t);
264 to_b->data[offset++] = e->key.protocol;
266 /* octetDeltaCount */
267 u64 octetdelta = clib_host_to_net_u64 (e->octetcount);
268 clib_memcpy_fast (to_b->data + offset, &octetdelta, sizeof (u64));
269 offset += sizeof (u64);
271 return offset - start;
275 flowprobe_l4_add (vlib_buffer_t * to_b, flowprobe_entry_t * e, u16 offset)
280 clib_memcpy_fast (to_b->data + offset, &e->key.src_port, 2);
284 clib_memcpy_fast (to_b->data + offset, &e->key.dst_port, 2);
287 /* tcp control bits */
288 u16 control_bits = htons (e->prot.tcp.flags);
289 clib_memcpy_fast (to_b->data + offset, &control_bits, 2);
292 return offset - start;
296 flowprobe_hash (flowprobe_key_t * k)
298 flowprobe_main_t *fm = &flowprobe_main;
301 #ifdef clib_crc32c_uses_intrinsics
302 h = clib_crc32c ((u8 *) k, sizeof (*k));
306 for (i = 0; i < sizeof (*k) / 8; i++)
307 tmp ^= ((u64 *) k)[i];
309 h = clib_xxhash (tmp);
312 return h >> (32 - fm->ht_log2len);
316 flowprobe_lookup (u32 my_cpu_number, flowprobe_key_t * k, u32 * poolindex,
319 flowprobe_main_t *fm = &flowprobe_main;
320 flowprobe_entry_t *e;
323 h = (fm->active_timer) ? flowprobe_hash (k) : 0;
325 /* Lookup in the flow state pool */
326 *poolindex = fm->hash_per_worker[my_cpu_number][h];
327 if (*poolindex != ~0)
329 e = pool_elt_at_index (fm->pool_per_worker[my_cpu_number], *poolindex);
332 /* Verify key or report collision */
333 if (memcmp (k, &e->key, sizeof (flowprobe_key_t)))
343 flowprobe_create (u32 my_cpu_number, flowprobe_key_t * k, u32 * poolindex)
345 flowprobe_main_t *fm = &flowprobe_main;
348 flowprobe_entry_t *e;
351 h = (fm->active_timer) ? flowprobe_hash (k) : 0;
353 pool_get (fm->pool_per_worker[my_cpu_number], e);
354 *poolindex = e - fm->pool_per_worker[my_cpu_number];
355 fm->hash_per_worker[my_cpu_number][h] = *poolindex;
359 if (fm->passive_timer > 0)
361 e->passive_timer_handle = tw_timer_start_2t_1w_2048sl
362 (fm->timers_per_worker[my_cpu_number], *poolindex, 0,
369 add_to_flow_record_state (vlib_main_t *vm, vlib_node_runtime_t *node,
370 flowprobe_main_t *fm, vlib_buffer_t *b,
371 timestamp_nsec_t timestamp, u16 length,
372 flowprobe_variant_t which,
373 flowprobe_direction_t direction,
374 flowprobe_trace_t *t)
379 ASSERT (direction == FLOW_DIRECTION_RX || direction == FLOW_DIRECTION_TX);
381 u32 my_cpu_number = vm->thread_index;
384 flowprobe_record_t flags = fm->context[which].flags;
385 bool collect_ip4 = false, collect_ip6 = false;
387 ethernet_header_t *eth = ethernet_buffer_get_header (b);
388 u16 ethertype = clib_net_to_host_u16 (eth->type);
389 u16 l2_hdr_sz = sizeof (ethernet_header_t);
391 flowprobe_key_t k = {};
393 ip4_header_t *ip4 = 0;
394 ip6_header_t *ip6 = 0;
395 udp_header_t *udp = 0;
396 tcp_header_t *tcp = 0;
399 if (flags & FLOW_RECORD_L3 || flags & FLOW_RECORD_L4)
401 collect_ip4 = which == FLOW_VARIANT_L2_IP4 || which == FLOW_VARIANT_IP4;
402 collect_ip6 = which == FLOW_VARIANT_L2_IP6 || which == FLOW_VARIANT_IP6;
405 k.rx_sw_if_index = vnet_buffer (b)->sw_if_index[VLIB_RX];
406 k.tx_sw_if_index = vnet_buffer (b)->sw_if_index[VLIB_TX];
409 k.direction = direction;
411 if (flags & FLOW_RECORD_L2)
413 clib_memcpy_fast (k.src_mac, eth->src_address, 6);
414 clib_memcpy_fast (k.dst_mac, eth->dst_address, 6);
415 k.ethertype = ethertype;
417 if (ethertype == ETHERNET_TYPE_VLAN)
420 ethernet_vlan_header_tv_t *ethv =
421 (ethernet_vlan_header_tv_t *) (&(eth->type));
422 /*Q in Q possibility */
423 while (clib_net_to_host_u16 (ethv->type) == ETHERNET_TYPE_VLAN)
426 l2_hdr_sz += sizeof (ethernet_vlan_header_tv_t);
428 k.ethertype = ethertype = clib_net_to_host_u16 ((ethv)->type);
430 if (collect_ip6 && ethertype == ETHERNET_TYPE_IP6)
432 ip6 = (ip6_header_t *) (b->data + l2_hdr_sz);
433 if (flags & FLOW_RECORD_L3)
435 k.src_address.as_u64[0] = ip6->src_address.as_u64[0];
436 k.src_address.as_u64[1] = ip6->src_address.as_u64[1];
437 k.dst_address.as_u64[0] = ip6->dst_address.as_u64[0];
438 k.dst_address.as_u64[1] = ip6->dst_address.as_u64[1];
440 k.protocol = ip6->protocol;
441 if (k.protocol == IP_PROTOCOL_UDP)
442 udp = (udp_header_t *) (ip6 + 1);
443 else if (k.protocol == IP_PROTOCOL_TCP)
444 tcp = (tcp_header_t *) (ip6 + 1);
446 octets = clib_net_to_host_u16 (ip6->payload_length)
447 + sizeof (ip6_header_t);
449 if (collect_ip4 && ethertype == ETHERNET_TYPE_IP4)
451 ip4 = (ip4_header_t *) (b->data + l2_hdr_sz);
452 if (flags & FLOW_RECORD_L3)
454 k.src_address.ip4.as_u32 = ip4->src_address.as_u32;
455 k.dst_address.ip4.as_u32 = ip4->dst_address.as_u32;
457 k.protocol = ip4->protocol;
458 if ((flags & FLOW_RECORD_L4) && k.protocol == IP_PROTOCOL_UDP)
459 udp = (udp_header_t *) (ip4 + 1);
460 else if ((flags & FLOW_RECORD_L4) && k.protocol == IP_PROTOCOL_TCP)
461 tcp = (tcp_header_t *) (ip4 + 1);
463 octets = clib_net_to_host_u16 (ip4->length);
468 k.src_port = udp->src_port;
469 k.dst_port = udp->dst_port;
473 k.src_port = tcp->src_port;
474 k.dst_port = tcp->dst_port;
475 tcp_flags = tcp->flags;
480 t->rx_sw_if_index = k.rx_sw_if_index;
481 t->tx_sw_if_index = k.tx_sw_if_index;
482 clib_memcpy_fast (t->src_mac, k.src_mac, 6);
483 clib_memcpy_fast (t->dst_mac, k.dst_mac, 6);
484 t->ethertype = k.ethertype;
485 t->src_address.ip4.as_u32 = k.src_address.ip4.as_u32;
486 t->dst_address.ip4.as_u32 = k.dst_address.ip4.as_u32;
487 t->protocol = k.protocol;
488 t->src_port = k.src_port;
489 t->dst_port = k.dst_port;
493 flowprobe_entry_t *e = 0;
494 f64 now = vlib_time_now (vm);
495 if (fm->active_timer > 0)
498 bool collision = false;
500 e = flowprobe_lookup (my_cpu_number, &k, &poolindex, &collision);
503 /* Flush data and clean up entry for reuse. */
505 flowprobe_export_entry (vm, e);
507 e->flow_start = timestamp;
508 vlib_node_increment_counter (vm, node->node_index,
509 FLOWPROBE_ERROR_COLLISION, 1);
511 if (!e) /* Create new entry */
513 e = flowprobe_create (my_cpu_number, &k, &poolindex);
514 e->last_exported = now;
515 e->flow_start = timestamp;
520 e = &fm->stateless_entry[my_cpu_number];
528 e->octetcount += octets;
529 e->last_updated = now;
530 e->flow_end = timestamp;
531 e->prot.tcp.flags |= tcp_flags;
532 if (fm->active_timer == 0
533 || (now > e->last_exported + fm->active_timer))
534 flowprobe_export_entry (vm, e);
539 flowprobe_get_headersize (void)
541 return sizeof (ip4_header_t) + sizeof (udp_header_t) +
542 sizeof (ipfix_message_header_t) + sizeof (ipfix_set_header_t);
546 flowprobe_export_send (vlib_main_t * vm, vlib_buffer_t * b0,
547 flowprobe_variant_t which)
549 flowprobe_main_t *fm = &flowprobe_main;
550 flow_report_main_t *frm = &flow_report_main;
551 ipfix_exporter_t *exp = pool_elt_at_index (frm->exporters, 0);
553 ip4_ipfix_template_packet_t *tp;
554 ipfix_set_header_t *s;
555 ipfix_message_header_t *h;
558 flowprobe_record_t flags = fm->context[which].flags;
559 u32 my_cpu_number = vm->thread_index;
562 flow_report_stream_t *stream;
564 /* Nothing to send */
565 if (fm->context[which].next_record_offset_per_worker[my_cpu_number] <=
566 flowprobe_get_headersize ())
569 u32 i, index = vec_len (exp->streams);
570 for (i = 0; i < index; i++)
571 if (exp->streams[i].domain_id == 1)
576 if (i == vec_len (exp->streams))
578 vec_validate (exp->streams, index);
579 exp->streams[index].domain_id = 1;
581 stream = &exp->streams[index];
583 tp = vlib_buffer_get_current (b0);
584 ip = (ip4_header_t *) & tp->ip4;
585 udp = (udp_header_t *) (ip + 1);
586 h = (ipfix_message_header_t *) (udp + 1);
587 s = (ipfix_set_header_t *) (h + 1);
589 ip->ip_version_and_header_length = 0x45;
591 ip->protocol = IP_PROTOCOL_UDP;
592 ip->flags_and_fragment_offset = 0;
593 ip->src_address.as_u32 = exp->src_address.ip.ip4.as_u32;
594 ip->dst_address.as_u32 = exp->ipfix_collector.ip.ip4.as_u32;
595 udp->src_port = clib_host_to_net_u16 (stream->src_port);
596 udp->dst_port = clib_host_to_net_u16 (exp->collector_port);
599 /* FIXUP: message header export_time */
600 h->export_time = (u32)
601 (((f64) frm->unix_time_0) +
602 (vlib_time_now (frm->vlib_main) - frm->vlib_time_0));
603 h->export_time = clib_host_to_net_u32 (h->export_time);
604 h->domain_id = clib_host_to_net_u32 (stream->domain_id);
606 /* FIXUP: message header sequence_number */
607 h->sequence_number = stream->sequence_number++;
608 h->sequence_number = clib_host_to_net_u32 (h->sequence_number);
610 s->set_id_length = ipfix_set_id_length (fm->template_reports[flags],
612 (sizeof (*ip) + sizeof (*udp) +
614 h->version_length = version_length (b0->current_length -
615 (sizeof (*ip) + sizeof (*udp)));
617 ip->length = clib_host_to_net_u16 (b0->current_length);
619 ip->checksum = ip4_header_checksum (ip);
620 udp->length = clib_host_to_net_u16 (b0->current_length - sizeof (*ip));
622 if (exp->udp_checksum)
624 /* RFC 7011 section 10.3.2. */
625 udp->checksum = ip4_tcp_udp_compute_checksum (vm, b0, ip);
626 if (udp->checksum == 0)
627 udp->checksum = 0xffff;
630 ASSERT (ip4_header_checksum_is_valid (ip));
632 /* Find or allocate a frame */
633 f = fm->context[which].frames_per_worker[my_cpu_number];
634 if (PREDICT_FALSE (f == 0))
637 f = vlib_get_frame_to_node (vm, ip4_lookup_node.index);
638 fm->context[which].frames_per_worker[my_cpu_number] = f;
639 u32 bi0 = vlib_get_buffer_index (vm, b0);
641 /* Enqueue the buffer */
642 to_next = vlib_frame_vector_args (f);
647 vlib_put_frame_to_node (vm, ip4_lookup_node.index, f);
648 vlib_node_increment_counter (vm, flowprobe_output_l2_node.index,
649 FLOWPROBE_ERROR_EXPORTED_PACKETS, 1);
651 fm->context[which].frames_per_worker[my_cpu_number] = 0;
652 fm->context[which].buffers_per_worker[my_cpu_number] = 0;
653 fm->context[which].next_record_offset_per_worker[my_cpu_number] =
654 flowprobe_get_headersize ();
657 static vlib_buffer_t *
658 flowprobe_get_buffer (vlib_main_t * vm, flowprobe_variant_t which)
660 flowprobe_main_t *fm = &flowprobe_main;
661 ipfix_exporter_t *exp = pool_elt_at_index (flow_report_main.exporters, 0);
664 u32 my_cpu_number = vm->thread_index;
666 /* Find or allocate a buffer */
667 b0 = fm->context[which].buffers_per_worker[my_cpu_number];
669 /* Need to allocate a buffer? */
670 if (PREDICT_FALSE (b0 == 0))
672 if (vlib_buffer_alloc (vm, &bi0, 1) != 1)
674 vlib_node_increment_counter (vm, flowprobe_output_l2_node.index,
675 FLOWPROBE_ERROR_BUFFER, 1);
679 /* Initialize the buffer */
680 b0 = fm->context[which].buffers_per_worker[my_cpu_number] =
681 vlib_get_buffer (vm, bi0);
683 b0->current_data = 0;
684 b0->current_length = flowprobe_get_headersize ();
686 (VLIB_BUFFER_TOTAL_LENGTH_VALID | VNET_BUFFER_F_FLOW_REPORT);
687 vnet_buffer (b0)->sw_if_index[VLIB_RX] = 0;
688 vnet_buffer (b0)->sw_if_index[VLIB_TX] = exp->fib_index;
689 fm->context[which].next_record_offset_per_worker[my_cpu_number] =
697 flowprobe_export_entry (vlib_main_t * vm, flowprobe_entry_t * e)
699 u32 my_cpu_number = vm->thread_index;
700 flowprobe_main_t *fm = &flowprobe_main;
701 ipfix_exporter_t *exp = pool_elt_at_index (flow_report_main.exporters, 0);
703 bool collect_ip4 = false, collect_ip6 = false;
704 flowprobe_variant_t which = e->key.which;
705 flowprobe_record_t flags = fm->context[which].flags;
707 fm->context[which].next_record_offset_per_worker[my_cpu_number];
709 if (offset < flowprobe_get_headersize ())
710 offset = flowprobe_get_headersize ();
712 b0 = flowprobe_get_buffer (vm, which);
713 /* No available buffer, what to do... */
717 if (flags & FLOW_RECORD_L3)
719 collect_ip4 = which == FLOW_VARIANT_L2_IP4 || which == FLOW_VARIANT_IP4;
720 collect_ip6 = which == FLOW_VARIANT_L2_IP6 || which == FLOW_VARIANT_IP6;
723 offset += flowprobe_common_add (b0, e, offset);
725 if (flags & FLOW_RECORD_L2)
726 offset += flowprobe_l2_add (b0, e, offset);
728 offset += flowprobe_l3_ip6_add (b0, e, offset);
730 offset += flowprobe_l3_ip4_add (b0, e, offset);
731 if (flags & FLOW_RECORD_L4)
732 offset += flowprobe_l4_add (b0, e, offset);
734 /* Reset per flow-export counters */
737 e->last_exported = vlib_time_now (vm);
739 b0->current_length = offset;
741 fm->context[which].next_record_offset_per_worker[my_cpu_number] = offset;
742 /* Time to flush the buffer? */
743 if (offset + fm->template_size[flags] > exp->path_mtu)
744 flowprobe_export_send (vm, b0, which);
748 flowprobe_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
749 vlib_frame_t *frame, flowprobe_variant_t which,
750 flowprobe_direction_t direction)
752 u32 n_left_from, *from, *to_next;
753 flowprobe_next_t next_index;
754 flowprobe_main_t *fm = &flowprobe_main;
755 timestamp_nsec_t timestamp;
757 unix_time_now_nsec_fraction (×tamp.sec, ×tamp.nsec);
759 from = vlib_frame_vector_args (frame);
760 n_left_from = frame->n_vectors;
761 next_index = node->cached_next_index;
763 while (n_left_from > 0)
767 vlib_get_next_frame (vm, node, next_index, to_next, n_left_to_next);
769 while (n_left_from >= 4 && n_left_to_next >= 2)
771 u32 next0 = FLOWPROBE_NEXT_DROP;
772 u32 next1 = FLOWPROBE_NEXT_DROP;
775 vlib_buffer_t *b0, *b1;
777 /* Prefetch next iteration. */
779 vlib_buffer_t *p2, *p3;
781 p2 = vlib_get_buffer (vm, from[2]);
782 p3 = vlib_get_buffer (vm, from[3]);
784 vlib_prefetch_buffer_header (p2, LOAD);
785 vlib_prefetch_buffer_header (p3, LOAD);
787 clib_prefetch_store (p2->data);
788 clib_prefetch_store (p3->data);
791 /* speculatively enqueue b0 and b1 to the current next frame */
792 to_next[0] = bi0 = from[0];
793 to_next[1] = bi1 = from[1];
799 b0 = vlib_get_buffer (vm, bi0);
800 b1 = vlib_get_buffer (vm, bi1);
802 vnet_feature_next (&next0, b0);
803 vnet_feature_next (&next1, b1);
805 len0 = vlib_buffer_length_in_chain (vm, b0);
806 ethernet_header_t *eh0 = vlib_buffer_get_current (b0);
807 u16 ethertype0 = clib_net_to_host_u16 (eh0->type);
809 if (PREDICT_TRUE ((b0->flags & VNET_BUFFER_F_FLOW_REPORT) == 0))
810 add_to_flow_record_state (
811 vm, node, fm, b0, timestamp, len0,
812 flowprobe_get_variant (which, fm->context[which].flags,
816 len1 = vlib_buffer_length_in_chain (vm, b1);
817 ethernet_header_t *eh1 = vlib_buffer_get_current (b1);
818 u16 ethertype1 = clib_net_to_host_u16 (eh1->type);
820 if (PREDICT_TRUE ((b1->flags & VNET_BUFFER_F_FLOW_REPORT) == 0))
821 add_to_flow_record_state (
822 vm, node, fm, b1, timestamp, len1,
823 flowprobe_get_variant (which, fm->context[which].flags,
827 /* verify speculative enqueues, maybe switch current next frame */
828 vlib_validate_buffer_enqueue_x2 (vm, node, next_index,
829 to_next, n_left_to_next,
830 bi0, bi1, next0, next1);
833 while (n_left_from > 0 && n_left_to_next > 0)
837 u32 next0 = FLOWPROBE_NEXT_DROP;
840 /* speculatively enqueue b0 to the current next frame */
848 b0 = vlib_get_buffer (vm, bi0);
850 vnet_feature_next (&next0, b0);
852 len0 = vlib_buffer_length_in_chain (vm, b0);
853 ethernet_header_t *eh0 = vlib_buffer_get_current (b0);
854 u16 ethertype0 = clib_net_to_host_u16 (eh0->type);
856 if (PREDICT_TRUE ((b0->flags & VNET_BUFFER_F_FLOW_REPORT) == 0))
858 flowprobe_trace_t *t = 0;
859 if (PREDICT_FALSE ((node->flags & VLIB_NODE_FLAG_TRACE)
860 && (b0->flags & VLIB_BUFFER_IS_TRACED)))
861 t = vlib_add_trace (vm, node, b0, sizeof (*t));
863 add_to_flow_record_state (
864 vm, node, fm, b0, timestamp, len0,
865 flowprobe_get_variant (which, fm->context[which].flags,
870 /* verify speculative enqueue, maybe switch current next frame */
871 vlib_validate_buffer_enqueue_x1 (vm, node, next_index,
872 to_next, n_left_to_next,
876 vlib_put_next_frame (vm, node, next_index, n_left_to_next);
878 return frame->n_vectors;
882 flowprobe_input_ip4_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
885 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_IP4,
890 flowprobe_input_ip6_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
893 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_IP6,
898 flowprobe_input_l2_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
901 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_L2,
906 flowprobe_output_ip4_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
909 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_IP4,
914 flowprobe_output_ip6_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
917 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_IP6,
922 flowprobe_output_l2_node_fn (vlib_main_t *vm, vlib_node_runtime_t *node,
925 return flowprobe_node_fn (vm, node, frame, FLOW_VARIANT_L2,
930 flush_record (flowprobe_variant_t which)
932 vlib_main_t *vm = vlib_get_main ();
933 vlib_buffer_t *b = flowprobe_get_buffer (vm, which);
935 flowprobe_export_send (vm, b, which);
939 flowprobe_flush_callback_ip4 (void)
941 flush_record (FLOW_VARIANT_IP4);
945 flowprobe_flush_callback_ip6 (void)
947 flush_record (FLOW_VARIANT_IP6);
951 flowprobe_flush_callback_l2 (void)
953 flush_record (FLOW_VARIANT_L2);
954 flush_record (FLOW_VARIANT_L2_IP4);
955 flush_record (FLOW_VARIANT_L2_IP6);
960 flowprobe_delete_by_index (u32 my_cpu_number, u32 poolindex)
962 flowprobe_main_t *fm = &flowprobe_main;
963 flowprobe_entry_t *e;
966 e = pool_elt_at_index (fm->pool_per_worker[my_cpu_number], poolindex);
969 h = flowprobe_hash (&e->key);
972 fm->hash_per_worker[my_cpu_number][h] = ~0;
974 pool_put_index (fm->pool_per_worker[my_cpu_number], poolindex);
978 /* Per worker process processing the active/passive expired entries */
980 flowprobe_walker_process (vlib_main_t * vm,
981 vlib_node_runtime_t * rt, vlib_frame_t * f)
983 flowprobe_main_t *fm = &flowprobe_main;
984 flowprobe_entry_t *e;
985 ipfix_exporter_t *exp = pool_elt_at_index (flow_report_main.exporters, 0);
988 * $$$$ Remove this check from here and track FRM status and disable
989 * this process if required.
991 if (ip_address_is_zero (&exp->ipfix_collector) ||
992 ip_address_is_zero (&exp->src_address))
997 fm->disabled = false;
999 u32 cpu_index = os_get_thread_index ();
1000 u32 *to_be_removed = 0, *i;
1003 * Tick the timer when required and process the vector of expired
1006 f64 start_time = vlib_time_now (vm);
1009 tw_timer_expire_timers_2t_1w_2048sl (fm->timers_per_worker[cpu_index],
1012 vec_foreach (i, fm->expired_passive_per_worker[cpu_index])
1015 f64 now = vlib_time_now (vm);
1016 if (now > start_time + 100e-6
1017 || exported > FLOW_MAXIMUM_EXPORT_ENTRIES - 1)
1020 if (pool_is_free_index (fm->pool_per_worker[cpu_index], *i))
1022 clib_warning ("Element is %d is freed already\n", *i);
1026 e = pool_elt_at_index (fm->pool_per_worker[cpu_index], *i);
1028 /* Check last update timestamp. If it is longer than passive time nuke
1029 * entry. Otherwise restart timer with what's left
1030 * Premature passive timer by more than 10%
1032 if ((now - e->last_updated) < (u64) (fm->passive_timer * 0.9))
1034 u64 delta = fm->passive_timer - (now - e->last_updated);
1035 e->passive_timer_handle = tw_timer_start_2t_1w_2048sl
1036 (fm->timers_per_worker[cpu_index], *i, 0, delta);
1038 else /* Nuke entry */
1040 vec_add1 (to_be_removed, *i);
1042 /* If anything to report send it to the exporter */
1043 if (e->packetcount && now > e->last_exported + fm->active_timer)
1046 flowprobe_export_entry (vm, e);
1051 vec_delete (fm->expired_passive_per_worker[cpu_index], count, 0);
1053 vec_foreach (i, to_be_removed) flowprobe_delete_by_index (cpu_index, *i);
1054 vec_free (to_be_removed);
1060 VLIB_REGISTER_NODE (flowprobe_input_ip4_node) = {
1061 .function = flowprobe_input_ip4_node_fn,
1062 .name = "flowprobe-input-ip4",
1063 .vector_size = sizeof (u32),
1064 .format_trace = format_flowprobe_trace,
1065 .type = VLIB_NODE_TYPE_INTERNAL,
1066 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1067 .error_strings = flowprobe_error_strings,
1068 .n_next_nodes = FLOWPROBE_N_NEXT,
1069 .next_nodes = FLOWPROBE_NEXT_NODES,
1071 VLIB_REGISTER_NODE (flowprobe_input_ip6_node) = {
1072 .function = flowprobe_input_ip6_node_fn,
1073 .name = "flowprobe-input-ip6",
1074 .vector_size = sizeof (u32),
1075 .format_trace = format_flowprobe_trace,
1076 .type = VLIB_NODE_TYPE_INTERNAL,
1077 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1078 .error_strings = flowprobe_error_strings,
1079 .n_next_nodes = FLOWPROBE_N_NEXT,
1080 .next_nodes = FLOWPROBE_NEXT_NODES,
1082 VLIB_REGISTER_NODE (flowprobe_input_l2_node) = {
1083 .function = flowprobe_input_l2_node_fn,
1084 .name = "flowprobe-input-l2",
1085 .vector_size = sizeof (u32),
1086 .format_trace = format_flowprobe_trace,
1087 .type = VLIB_NODE_TYPE_INTERNAL,
1088 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1089 .error_strings = flowprobe_error_strings,
1090 .n_next_nodes = FLOWPROBE_N_NEXT,
1091 .next_nodes = FLOWPROBE_NEXT_NODES,
1093 VLIB_REGISTER_NODE (flowprobe_output_ip4_node) = {
1094 .function = flowprobe_output_ip4_node_fn,
1095 .name = "flowprobe-output-ip4",
1096 .vector_size = sizeof (u32),
1097 .format_trace = format_flowprobe_trace,
1098 .type = VLIB_NODE_TYPE_INTERNAL,
1099 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1100 .error_strings = flowprobe_error_strings,
1101 .n_next_nodes = FLOWPROBE_N_NEXT,
1102 .next_nodes = FLOWPROBE_NEXT_NODES,
1104 VLIB_REGISTER_NODE (flowprobe_output_ip6_node) = {
1105 .function = flowprobe_output_ip6_node_fn,
1106 .name = "flowprobe-output-ip6",
1107 .vector_size = sizeof (u32),
1108 .format_trace = format_flowprobe_trace,
1109 .type = VLIB_NODE_TYPE_INTERNAL,
1110 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1111 .error_strings = flowprobe_error_strings,
1112 .n_next_nodes = FLOWPROBE_N_NEXT,
1113 .next_nodes = FLOWPROBE_NEXT_NODES,
1115 VLIB_REGISTER_NODE (flowprobe_output_l2_node) = {
1116 .function = flowprobe_output_l2_node_fn,
1117 .name = "flowprobe-output-l2",
1118 .vector_size = sizeof (u32),
1119 .format_trace = format_flowprobe_trace,
1120 .type = VLIB_NODE_TYPE_INTERNAL,
1121 .n_errors = ARRAY_LEN (flowprobe_error_strings),
1122 .error_strings = flowprobe_error_strings,
1123 .n_next_nodes = FLOWPROBE_N_NEXT,
1124 .next_nodes = FLOWPROBE_NEXT_NODES,
1126 VLIB_REGISTER_NODE (flowprobe_walker_node) = {
1127 .function = flowprobe_walker_process,
1128 .name = "flowprobe-walker",
1129 .type = VLIB_NODE_TYPE_INPUT,
1130 .state = VLIB_NODE_STATE_INTERRUPT,
1135 * fd.io coding-style-patch-verification: ON
1138 * eval: (c-set-style "gnu")