4 * Copyright (c) 2015 Cisco and/or its affiliates.
5 * Licensed under the Apache License, Version 2.0 (the "License");
6 * you may not use this file except in compliance with the License.
7 * You may obtain a copy of the License at:
9 * http://www.apache.org/licenses/LICENSE-2.0
11 * Unless required by applicable law or agreed to in writing, software
12 * distributed under the License is distributed on an "AS IS" BASIS,
13 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14 * See the License for the specific language governing permissions and
15 * limitations under the License.
18 #include <vlib/vlib.h>
19 #include <vnet/vnet.h>
20 #include <vppinfra/error.h>
21 #include <srv6-ad/ad.h>
24 /******************************* Packet tracing *******************************/
29 } srv6_ad_localsid_trace_t;
34 ip6_address_t src, dst;
35 } srv6_ad_rewrite_trace_t;
38 format_srv6_ad_localsid_trace (u8 * s, va_list * args)
40 CLIB_UNUSED (vlib_main_t * vm) = va_arg (*args, vlib_main_t *);
41 CLIB_UNUSED (vlib_node_t * node) = va_arg (*args, vlib_node_t *);
42 srv6_ad_localsid_trace_t *t = va_arg (*args, srv6_ad_localsid_trace_t *);
44 return format (s, "SRv6-AD-localsid: localsid_index %d", t->localsid_index);
48 format_srv6_ad_rewrite_trace (u8 * s, va_list * args)
50 CLIB_UNUSED (vlib_main_t * vm) = va_arg (*args, vlib_main_t *);
51 CLIB_UNUSED (vlib_node_t * node) = va_arg (*args, vlib_node_t *);
52 srv6_ad_rewrite_trace_t *t = va_arg (*args, srv6_ad_rewrite_trace_t *);
54 if (PREDICT_FALSE (t->error != 0))
56 return format (s, "SRv6-AD-rewrite: cache is empty");
59 return format (s, "SRv6-AD-rewrite: src %U dst %U",
60 format_ip6_address, &t->src, format_ip6_address, &t->dst);
64 /***************************** Nodes registration *****************************/
66 vlib_node_registration_t srv6_ad4_rewrite_node;
67 vlib_node_registration_t srv6_ad6_rewrite_node;
70 /****************************** Packet counters *******************************/
72 #define foreach_srv6_ad_rewrite_counter \
73 _(PROCESSED, "srv6-ad rewritten packets") \
74 _(NO_RW, "(Error) No header for rewriting.")
78 #define _(sym,str) SRV6_AD_REWRITE_COUNTER_##sym,
79 foreach_srv6_ad_rewrite_counter
81 SRV6_AD_REWRITE_N_COUNTERS,
82 } srv6_ad_rewrite_counters;
84 static char *srv6_ad_rewrite_counter_strings[] = {
85 #define _(sym,string) string,
86 foreach_srv6_ad_rewrite_counter
91 /********************************* Next nodes *********************************/
95 SRV6_AD_LOCALSID_NEXT_ERROR,
96 SRV6_AD_LOCALSID_NEXT_REWRITE4,
97 SRV6_AD_LOCALSID_NEXT_REWRITE6,
98 SRV6_AD_LOCALSID_NEXT_INTERFACE,
99 SRV6_AD_LOCALSID_N_NEXT,
100 } srv6_ad_localsid_next_t;
104 SRV6_AD_REWRITE_NEXT_ERROR,
105 SRV6_AD_REWRITE_NEXT_LOOKUP,
106 SRV6_AD_REWRITE_N_NEXT,
107 } srv6_ad_rewrite_next_t;
110 /******************************* Local SID node *******************************/
113 * @brief Function doing SRH processing for AD behavior
115 static_always_inline void
116 end_ad_processing (vlib_buffer_t * b0,
118 ip6_sr_header_t * sr0,
119 ip6_sr_localsid_t * ls0, u32 * next0)
121 ip6_address_t *new_dst0;
123 ip6_ext_header_t *next_ext_header;
125 srv6_ad_localsid_t *ls0_mem;
127 if (PREDICT_FALSE (ip0->protocol != IP_PROTOCOL_IPV6_ROUTE ||
128 sr0->type != ROUTING_HEADER_TYPE_SR))
133 if (PREDICT_FALSE (sr0->segments_left == 0))
138 /* Decrement Segments Left and update Destination Address */
139 sr0->segments_left -= 1;
140 new_dst0 = (ip6_address_t *) (sr0->segments) + sr0->segments_left;
141 ip0->dst_address.as_u64[0] = new_dst0->as_u64[0];
142 ip0->dst_address.as_u64[1] = new_dst0->as_u64[1];
144 /* Compute the total size of the IPv6 header and extensions */
145 total_size = sizeof (ip6_header_t);
146 next_ext_header = (ip6_ext_header_t *) (ip0 + 1);
147 next_hdr = ip0->protocol;
149 while (ip6_ext_hdr (next_hdr))
151 total_size += ip6_ext_header_len (next_ext_header);
152 next_hdr = next_ext_header->next_hdr;
153 next_ext_header = ip6_ext_next_header (next_ext_header);
156 /* Make sure next header is valid */
157 if (PREDICT_FALSE (next_hdr != IP_PROTOCOL_IPV6 &&
158 next_hdr != IP_PROTOCOL_IP_IN_IP &&
159 next_hdr != IP_PROTOCOL_IP6_ETHERNET))
164 /* Retrieve SID memory */
165 ls0_mem = ls0->plugin_mem;
167 /* Cache IP header and extensions */
168 if (PREDICT_FALSE (total_size > ls0_mem->rw_len))
170 vec_validate (ls0_mem->rewrite, total_size - 1);
172 clib_memcpy_fast (ls0_mem->rewrite, ip0, total_size);
173 ls0_mem->rw_len = total_size;
175 /* Remove IP header and extensions */
176 vlib_buffer_advance (b0, total_size);
178 if (next_hdr == IP_PROTOCOL_IP6_ETHERNET)
180 /* Set output interface */
181 vnet_buffer (b0)->sw_if_index[VLIB_TX] = ls0_mem->sw_if_index_out;
183 /* Set next node to interface-output */
184 *next0 = SRV6_AD_LOCALSID_NEXT_INTERFACE;
188 /* Set Xconnect adjacency to VNF */
189 vnet_buffer (b0)->ip.adj_index[VLIB_TX] = ls0_mem->nh_adj;
191 /* Set next node to ip-rewrite */
192 *next0 = (next_hdr == IP_PROTOCOL_IPV6) ?
193 SRV6_AD_LOCALSID_NEXT_REWRITE6 : SRV6_AD_LOCALSID_NEXT_REWRITE4;
198 * @brief SRv6 AD Localsid graph node
201 srv6_ad_localsid_fn (vlib_main_t * vm,
202 vlib_node_runtime_t * node, vlib_frame_t * frame)
204 ip6_sr_main_t *sm = &sr_main;
205 u32 n_left_from, next_index, *from, *to_next;
207 from = vlib_frame_vector_args (frame);
208 n_left_from = frame->n_vectors;
209 next_index = node->cached_next_index;
211 while (n_left_from > 0)
215 vlib_get_next_frame (vm, node, next_index, to_next, n_left_to_next);
217 /* TODO: Dual/quad loop */
219 while (n_left_from > 0 && n_left_to_next > 0)
223 ip6_header_t *ip0 = 0;
224 ip6_sr_header_t *sr0;
225 ip6_sr_localsid_t *ls0;
226 u32 next0 = SRV6_AD_LOCALSID_NEXT_ERROR;
235 b0 = vlib_get_buffer (vm, bi0);
236 ip0 = vlib_buffer_get_current (b0);
237 sr0 = (ip6_sr_header_t *) (ip0 + 1);
239 /* Lookup the SR End behavior based on IP DA (adj) */
240 ls0 = pool_elt_at_index (sm->localsids,
241 vnet_buffer (b0)->ip.adj_index[VLIB_TX]);
244 end_ad_processing (b0, ip0, sr0, ls0, &next0);
246 if (PREDICT_FALSE (b0->flags & VLIB_BUFFER_IS_TRACED))
248 srv6_ad_localsid_trace_t *tr =
249 vlib_add_trace (vm, node, b0, sizeof *tr);
250 tr->localsid_index = ls0 - sm->localsids;
253 /* This increments the SRv6 per LocalSID counters. */
254 vlib_increment_combined_counter (((next0 ==
255 SRV6_AD_LOCALSID_NEXT_ERROR) ?
256 &(sm->sr_ls_invalid_counters) :
257 &(sm->sr_ls_valid_counters)),
259 ls0 - sm->localsids, 1,
260 vlib_buffer_length_in_chain (vm,
263 vlib_validate_buffer_enqueue_x1 (vm, node, next_index, to_next,
264 n_left_to_next, bi0, next0);
268 vlib_put_next_frame (vm, node, next_index, n_left_to_next);
271 return frame->n_vectors;
275 VLIB_REGISTER_NODE (srv6_ad_localsid_node) = {
276 .function = srv6_ad_localsid_fn,
277 .name = "srv6-ad-localsid",
278 .vector_size = sizeof (u32),
279 .format_trace = format_srv6_ad_localsid_trace,
280 .type = VLIB_NODE_TYPE_INTERNAL,
281 .n_next_nodes = SRV6_AD_LOCALSID_N_NEXT,
283 [SRV6_AD_LOCALSID_NEXT_REWRITE4] = "ip4-rewrite",
284 [SRV6_AD_LOCALSID_NEXT_REWRITE6] = "ip6-rewrite",
285 [SRV6_AD_LOCALSID_NEXT_INTERFACE] = "interface-output",
286 [SRV6_AD_LOCALSID_NEXT_ERROR] = "error-drop",
292 /******************************* Rewriting node *******************************/
295 * @brief Graph node for applying a SR policy into an IPv6 packet. Encapsulation
298 srv6_ad2_rewrite_fn (vlib_main_t * vm,
299 vlib_node_runtime_t * node, vlib_frame_t * frame)
301 ip6_sr_main_t *srm = &sr_main;
302 srv6_ad_main_t *sm = &srv6_ad_main;
303 u32 n_left_from, next_index, *from, *to_next;
306 from = vlib_frame_vector_args (frame);
307 n_left_from = frame->n_vectors;
308 next_index = node->cached_next_index;
310 while (n_left_from > 0)
314 vlib_get_next_frame (vm, node, next_index, to_next, n_left_to_next);
316 /* TODO: Dual/quad loop */
318 while (n_left_from > 0 && n_left_to_next > 0)
322 ethernet_header_t *en0;
323 ip6_header_t *ip0 = 0;
324 ip6_sr_localsid_t *ls0;
325 srv6_ad_localsid_t *ls0_mem;
326 u32 next0 = SRV6_AD_REWRITE_NEXT_LOOKUP;
335 b0 = vlib_get_buffer (vm, bi0);
336 en0 = vlib_buffer_get_current (b0);
337 ls0 = pool_elt_at_index (srm->localsids,
338 sm->sw_iface_localsid2[vnet_buffer
341 ls0_mem = ls0->plugin_mem;
343 if (PREDICT_FALSE (ls0_mem == NULL || ls0_mem->rewrite == NULL))
345 next0 = SRV6_AD_REWRITE_NEXT_ERROR;
346 b0->error = node->errors[SRV6_AD_REWRITE_COUNTER_NO_RW];
350 ASSERT (VLIB_BUFFER_PRE_DATA_SIZE >=
351 (ls0_mem->rw_len + b0->current_data));
353 clib_memcpy_fast (((u8 *) en0) - ls0_mem->rw_len,
354 ls0_mem->rewrite, ls0_mem->rw_len);
355 vlib_buffer_advance (b0, -(word) ls0_mem->rw_len);
357 ip0 = vlib_buffer_get_current (b0);
359 ip0->payload_length =
360 clib_host_to_net_u16 (b0->current_length -
361 sizeof (ip6_header_t));
364 if (PREDICT_FALSE (node->flags & VLIB_NODE_FLAG_TRACE) &&
365 PREDICT_FALSE (b0->flags & VLIB_BUFFER_IS_TRACED))
367 srv6_ad_rewrite_trace_t *tr =
368 vlib_add_trace (vm, node, b0, sizeof *tr);
371 if (next0 == SRV6_AD_REWRITE_NEXT_ERROR)
377 clib_memcpy_fast (tr->src.as_u8, ip0->src_address.as_u8,
378 sizeof tr->src.as_u8);
379 clib_memcpy_fast (tr->dst.as_u8, ip0->dst_address.as_u8,
380 sizeof tr->dst.as_u8);
384 /* Increment per-SID AD rewrite counters */
385 vlib_increment_combined_counter (((next0 ==
386 SRV6_AD_LOCALSID_NEXT_ERROR) ?
387 &(sm->invalid_counters) :
388 &(sm->valid_counters)),
389 vm->thread_index, ls0_mem->index,
390 1, vlib_buffer_length_in_chain (vm,
393 vlib_validate_buffer_enqueue_x1 (vm, node, next_index, to_next,
394 n_left_to_next, bi0, next0);
399 vlib_put_next_frame (vm, node, next_index, n_left_to_next);
402 /* Update counters */
403 vlib_node_increment_counter (vm, srv6_ad4_rewrite_node.index,
404 SRV6_AD_REWRITE_COUNTER_PROCESSED,
407 return frame->n_vectors;
411 VLIB_REGISTER_NODE (srv6_ad2_rewrite_node) = {
412 .function = srv6_ad2_rewrite_fn,
413 .name = "srv6-ad2-rewrite",
414 .vector_size = sizeof (u32),
415 .format_trace = format_srv6_ad_rewrite_trace,
416 .type = VLIB_NODE_TYPE_INTERNAL,
417 .n_errors = SRV6_AD_REWRITE_N_COUNTERS,
418 .error_strings = srv6_ad_rewrite_counter_strings,
419 .n_next_nodes = SRV6_AD_REWRITE_N_NEXT,
421 [SRV6_AD_REWRITE_NEXT_LOOKUP] = "ip6-lookup",
422 [SRV6_AD_REWRITE_NEXT_ERROR] = "error-drop",
429 * @brief Graph node for applying a SR policy into an IPv6 packet. Encapsulation
432 srv6_ad4_rewrite_fn (vlib_main_t * vm,
433 vlib_node_runtime_t * node, vlib_frame_t * frame)
435 ip6_sr_main_t *srm = &sr_main;
436 srv6_ad_main_t *sm = &srv6_ad_main;
437 u32 n_left_from, next_index, *from, *to_next;
440 from = vlib_frame_vector_args (frame);
441 n_left_from = frame->n_vectors;
442 next_index = node->cached_next_index;
444 while (n_left_from > 0)
448 vlib_get_next_frame (vm, node, next_index, to_next, n_left_to_next);
450 /* TODO: Dual/quad loop */
452 while (n_left_from > 0 && n_left_to_next > 0)
456 ip4_header_t *ip0_encap = 0;
457 ip6_header_t *ip0 = 0;
458 ip6_sr_localsid_t *ls0;
459 srv6_ad_localsid_t *ls0_mem;
460 u32 next0 = SRV6_AD_REWRITE_NEXT_LOOKUP;
470 b0 = vlib_get_buffer (vm, bi0);
471 ip0_encap = vlib_buffer_get_current (b0);
472 ls0 = pool_elt_at_index (srm->localsids,
473 sm->sw_iface_localsid4[vnet_buffer
476 ls0_mem = ls0->plugin_mem;
478 if (PREDICT_FALSE (ls0_mem == NULL || ls0_mem->rewrite == NULL))
480 next0 = SRV6_AD_REWRITE_NEXT_ERROR;
481 b0->error = node->errors[SRV6_AD_REWRITE_COUNTER_NO_RW];
485 ASSERT (VLIB_BUFFER_PRE_DATA_SIZE >=
486 (ls0_mem->rw_len + b0->current_data));
488 clib_memcpy_fast (((u8 *) ip0_encap) - ls0_mem->rw_len,
489 ls0_mem->rewrite, ls0_mem->rw_len);
490 vlib_buffer_advance (b0, -(word) ls0_mem->rw_len);
492 ip0 = vlib_buffer_get_current (b0);
494 /* Update inner IPv4 TTL and checksum */
497 checksum0 = ip0_encap->checksum + clib_host_to_net_u16 (0x0100);
498 checksum0 += checksum0 >= 0xffff;
499 ip0_encap->checksum = checksum0;
501 /* Update outer IPv6 length (in case it has changed) */
502 new_l0 = ls0_mem->rw_len - sizeof (ip6_header_t) +
503 clib_net_to_host_u16 (ip0_encap->length);
504 ip0->payload_length = clib_host_to_net_u16 (new_l0);
507 if (PREDICT_FALSE (node->flags & VLIB_NODE_FLAG_TRACE) &&
508 PREDICT_FALSE (b0->flags & VLIB_BUFFER_IS_TRACED))
510 srv6_ad_rewrite_trace_t *tr =
511 vlib_add_trace (vm, node, b0, sizeof *tr);
514 if (next0 == SRV6_AD_REWRITE_NEXT_ERROR)
520 clib_memcpy_fast (tr->src.as_u8, ip0->src_address.as_u8,
521 sizeof tr->src.as_u8);
522 clib_memcpy_fast (tr->dst.as_u8, ip0->dst_address.as_u8,
523 sizeof tr->dst.as_u8);
527 /* Increment per-SID AD rewrite counters */
528 vlib_increment_combined_counter (((next0 ==
529 SRV6_AD_LOCALSID_NEXT_ERROR) ?
530 &(sm->invalid_counters) :
531 &(sm->valid_counters)),
532 vm->thread_index, ls0_mem->index,
533 1, vlib_buffer_length_in_chain (vm,
536 vlib_validate_buffer_enqueue_x1 (vm, node, next_index, to_next,
537 n_left_to_next, bi0, next0);
542 vlib_put_next_frame (vm, node, next_index, n_left_to_next);
545 /* Update counters */
546 vlib_node_increment_counter (vm, srv6_ad4_rewrite_node.index,
547 SRV6_AD_REWRITE_COUNTER_PROCESSED,
550 return frame->n_vectors;
554 VLIB_REGISTER_NODE (srv6_ad4_rewrite_node) = {
555 .function = srv6_ad4_rewrite_fn,
556 .name = "srv6-ad4-rewrite",
557 .vector_size = sizeof (u32),
558 .format_trace = format_srv6_ad_rewrite_trace,
559 .type = VLIB_NODE_TYPE_INTERNAL,
560 .n_errors = SRV6_AD_REWRITE_N_COUNTERS,
561 .error_strings = srv6_ad_rewrite_counter_strings,
562 .n_next_nodes = SRV6_AD_REWRITE_N_NEXT,
564 [SRV6_AD_REWRITE_NEXT_LOOKUP] = "ip6-lookup",
565 [SRV6_AD_REWRITE_NEXT_ERROR] = "error-drop",
572 * @brief Graph node for applying a SR policy into an IPv6 packet. Encapsulation
575 srv6_ad6_rewrite_fn (vlib_main_t * vm,
576 vlib_node_runtime_t * node, vlib_frame_t * frame)
578 ip6_sr_main_t *srm = &sr_main;
579 srv6_ad_main_t *sm = &srv6_ad_main;
580 u32 n_left_from, next_index, *from, *to_next;
583 from = vlib_frame_vector_args (frame);
584 n_left_from = frame->n_vectors;
585 next_index = node->cached_next_index;
587 while (n_left_from > 0)
591 vlib_get_next_frame (vm, node, next_index, to_next, n_left_to_next);
593 /* TODO: Dual/quad loop */
595 while (n_left_from > 0 && n_left_to_next > 0)
599 ip6_header_t *ip0 = 0, *ip0_encap = 0;
600 ip6_sr_localsid_t *ls0;
601 srv6_ad_localsid_t *ls0_mem;
602 u32 next0 = SRV6_AD_REWRITE_NEXT_LOOKUP;
612 b0 = vlib_get_buffer (vm, bi0);
613 ip0_encap = vlib_buffer_get_current (b0);
614 ls0 = pool_elt_at_index (srm->localsids,
615 sm->sw_iface_localsid6[vnet_buffer
618 ls0_mem = ls0->plugin_mem;
620 if (PREDICT_FALSE (ls0_mem == NULL || ls0_mem->rewrite == NULL))
622 next0 = SRV6_AD_REWRITE_NEXT_ERROR;
623 b0->error = node->errors[SRV6_AD_REWRITE_COUNTER_NO_RW];
627 ASSERT (VLIB_BUFFER_PRE_DATA_SIZE >=
628 (ls0_mem->rw_len + b0->current_data));
630 clib_memcpy_fast (((u8 *) ip0_encap) - ls0_mem->rw_len,
631 ls0_mem->rewrite, ls0_mem->rw_len);
632 vlib_buffer_advance (b0, -(word) ls0_mem->rw_len);
634 ip0 = vlib_buffer_get_current (b0);
636 /* Update inner IPv6 hop limit */
637 ip0_encap->hop_limit -= 1;
639 /* Update outer IPv6 length (in case it has changed) */
640 new_l0 = ls0_mem->rw_len +
641 clib_net_to_host_u16 (ip0_encap->payload_length);
642 ip0->payload_length = clib_host_to_net_u16 (new_l0);
645 if (PREDICT_FALSE (node->flags & VLIB_NODE_FLAG_TRACE) &&
646 PREDICT_FALSE (b0->flags & VLIB_BUFFER_IS_TRACED))
648 srv6_ad_rewrite_trace_t *tr =
649 vlib_add_trace (vm, node, b0, sizeof *tr);
652 if (next0 == SRV6_AD_REWRITE_NEXT_ERROR)
658 clib_memcpy_fast (tr->src.as_u8, ip0->src_address.as_u8,
659 sizeof tr->src.as_u8);
660 clib_memcpy_fast (tr->dst.as_u8, ip0->dst_address.as_u8,
661 sizeof tr->dst.as_u8);
665 /* Increment per-SID AD rewrite counters */
666 vlib_increment_combined_counter (((next0 ==
667 SRV6_AD_LOCALSID_NEXT_ERROR) ?
668 &(sm->invalid_counters) :
669 &(sm->valid_counters)),
670 vm->thread_index, ls0_mem->index,
671 1, vlib_buffer_length_in_chain (vm,
674 vlib_validate_buffer_enqueue_x1 (vm, node, next_index, to_next,
675 n_left_to_next, bi0, next0);
680 vlib_put_next_frame (vm, node, next_index, n_left_to_next);
683 /* Update counters */
684 vlib_node_increment_counter (vm, srv6_ad6_rewrite_node.index,
685 SRV6_AD_REWRITE_COUNTER_PROCESSED,
688 return frame->n_vectors;
692 VLIB_REGISTER_NODE (srv6_ad6_rewrite_node) = {
693 .function = srv6_ad6_rewrite_fn,
694 .name = "srv6-ad6-rewrite",
695 .vector_size = sizeof (u32),
696 .format_trace = format_srv6_ad_rewrite_trace,
697 .type = VLIB_NODE_TYPE_INTERNAL,
698 .n_errors = SRV6_AD_REWRITE_N_COUNTERS,
699 .error_strings = srv6_ad_rewrite_counter_strings,
700 .n_next_nodes = SRV6_AD_REWRITE_N_NEXT,
702 [SRV6_AD_REWRITE_NEXT_LOOKUP] = "ip6-lookup",
703 [SRV6_AD_REWRITE_NEXT_ERROR] = "error-drop",
709 * fd.io coding-style-patch-verification: ON
712 * eval: (c-set-style "gnu")