2 * Copyright (c) 2015 Cisco and/or its affiliates.
3 * Licensed under the Apache License, Version 2.0 (the "License");
4 * you may not use this file except in compliance with the License.
5 * You may obtain a copy of the License at:
7 * http://www.apache.org/licenses/LICENSE-2.0
9 * Unless required by applicable law or agreed to in writing, software
10 * distributed under the License is distributed on an "AS IS" BASIS,
11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 * See the License for the specific language governing permissions and
13 * limitations under the License.
16 * ip/ip_lookup.c: ip4/6 adjacency and lookup table management
18 * Copyright (c) 2008 Eliot Dresselhaus
20 * Permission is hereby granted, free of charge, to any person obtaining
21 * a copy of this software and associated documentation files (the
22 * "Software"), to deal in the Software without restriction, including
23 * without limitation the rights to use, copy, modify, merge, publish,
24 * distribute, sublicense, and/or sell copies of the Software, and to
25 * permit persons to whom the Software is furnished to do so, subject to
26 * the following conditions:
28 * The above copyright notice and this permission notice shall be
29 * included in all copies or substantial portions of the Software.
31 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
32 * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
33 * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
34 * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
35 * LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
36 * OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
37 * WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
40 #include <vnet/ip/ip.h>
41 #include <vnet/adj/adj.h>
42 #include <vnet/fib/fib_table.h>
43 #include <vnet/fib/ip4_fib.h>
44 #include <vnet/fib/ip6_fib.h>
45 #include <vnet/mpls/mpls.h>
46 #include <vnet/mfib/mfib_table.h>
47 #include <vnet/dpo/drop_dpo.h>
48 #include <vnet/dpo/classify_dpo.h>
49 #include <vnet/dpo/punt_dpo.h>
50 #include <vnet/dpo/receive_dpo.h>
51 #include <vnet/dpo/ip_null_dpo.h>
52 #include <vnet/dpo/l3_proxy_dpo.h>
56 * @brief IPv4 and IPv6 adjacency and lookup table management.
61 ip_sw_interface_add_del (vnet_main_t * vnm, u32 sw_if_index, u32 is_add)
63 vec_validate_init_empty (ip4_main.
64 lookup_main.if_address_pool_index_by_sw_if_index,
66 vec_validate_init_empty (ip6_main.
67 lookup_main.if_address_pool_index_by_sw_if_index,
73 VNET_SW_INTERFACE_ADD_DEL_FUNCTION (ip_sw_interface_add_del);
76 ip_lookup_init (ip_lookup_main_t * lm, u32 is_ip6)
78 if (!lm->fib_result_n_bytes)
79 lm->fib_result_n_bytes = sizeof (uword);
82 mhash_init (&lm->prefix_to_if_prefix_index, sizeof (uword),
83 sizeof (ip_interface_prefix_key_t));
86 lm->format_address_and_length = format_ip6_address_and_length;
87 mhash_init (&lm->address_to_if_address_index, sizeof (uword),
88 sizeof (ip6_address_fib_t));
92 lm->format_address_and_length = format_ip4_address_and_length;
93 mhash_init (&lm->address_to_if_address_index, sizeof (uword),
94 sizeof (ip4_address_fib_t));
100 /* Setup all IP protocols to be punted and builtin-unknown. */
101 for (i = 0; i < 256; i++)
103 lm->local_next_by_ip_protocol[i] = IP_LOCAL_NEXT_PUNT;
104 lm->builtin_protocol_by_ip_protocol[i] = IP_BUILTIN_PROTOCOL_UNKNOWN;
107 lm->local_next_by_ip_protocol[IP_PROTOCOL_UDP] = IP_LOCAL_NEXT_UDP_LOOKUP;
108 lm->local_next_by_ip_protocol[is_ip6 ? IP_PROTOCOL_ICMP6 :
109 IP_PROTOCOL_ICMP] = IP_LOCAL_NEXT_ICMP;
110 lm->builtin_protocol_by_ip_protocol[IP_PROTOCOL_UDP] =
111 IP_BUILTIN_PROTOCOL_UDP;
112 lm->builtin_protocol_by_ip_protocol[is_ip6 ? IP_PROTOCOL_ICMP6 :
114 IP_BUILTIN_PROTOCOL_ICMP;
119 format_ip_flow_hash_config (u8 * s, va_list * args)
121 flow_hash_config_t flow_hash_config = va_arg (*args, u32);
123 #define _(n,v) if (flow_hash_config & v) s = format (s, "%s ", #n);
124 foreach_flow_hash_bit;
131 format_ip_adjacency_packet_data (u8 * s, va_list * args)
133 u8 *packet_data = va_arg (*args, u8 *);
134 u32 n_packet_data_bytes = va_arg (*args, u32);
136 s = format (s, "%U", format_hex_bytes, packet_data, n_packet_data_bytes);
142 unformat_dpo (unformat_input_t * input, va_list * args)
144 dpo_id_t *dpo = va_arg (*args, dpo_id_t *);
145 fib_protocol_t fp = va_arg (*args, int);
148 proto = fib_proto_to_dpo (fp);
150 if (unformat (input, "drop"))
151 dpo_copy (dpo, drop_dpo_get (proto));
152 else if (unformat (input, "punt"))
153 dpo_copy (dpo, punt_dpo_get (proto));
154 else if (unformat (input, "local"))
155 receive_dpo_add_or_lock (proto, ~0, NULL, dpo);
156 else if (unformat (input, "null-send-unreach"))
157 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_SEND_ICMP_UNREACH, dpo);
158 else if (unformat (input, "null-send-prohibit"))
159 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_SEND_ICMP_PROHIBIT, dpo);
160 else if (unformat (input, "null"))
161 ip_null_dpo_add_and_lock (proto, IP_NULL_ACTION_NONE, dpo);
162 else if (unformat (input, "classify"))
164 u32 classify_table_index;
166 if (!unformat (input, "%d", &classify_table_index))
168 clib_warning ("classify adj must specify table index");
172 dpo_set (dpo, DPO_CLASSIFY, proto,
173 classify_dpo_create (proto, classify_table_index));
181 const ip46_address_t zero_addr = {
186 static clib_error_t *
187 vnet_ip_route_cmd (vlib_main_t * vm,
188 unformat_input_t * main_input, vlib_cli_command_t * cmd)
190 unformat_input_t _line_input, *line_input = &_line_input;
191 u32 table_id, is_del, fib_index, payload_proto;
192 dpo_id_t dpo = DPO_INVALID, *dpos = NULL;
193 fib_route_path_t *rpaths = NULL, rpath;
194 fib_prefix_t *prefixs = NULL, pfx;
195 clib_error_t *error = NULL;
202 clib_memset (&pfx, 0, sizeof (pfx));
204 /* Get a line of input. */
205 if (!unformat_user (main_input, unformat_line_input, line_input))
208 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
210 clib_memset (&rpath, 0, sizeof (rpath));
212 if (unformat (line_input, "table %d", &table_id))
214 else if (unformat (line_input, "count %f", &count))
217 else if (unformat (line_input, "%U/%d",
218 unformat_ip4_address, &pfx.fp_addr.ip4, &pfx.fp_len))
220 payload_proto = pfx.fp_proto = FIB_PROTOCOL_IP4;
221 vec_add1 (prefixs, pfx);
223 else if (unformat (line_input, "%U/%d",
224 unformat_ip6_address, &pfx.fp_addr.ip6, &pfx.fp_len))
226 payload_proto = pfx.fp_proto = FIB_PROTOCOL_IP6;
227 vec_add1 (prefixs, pfx);
229 else if (unformat (line_input, "via %U",
230 unformat_fib_route_path, &rpath, &payload_proto))
232 vec_add1 (rpaths, rpath);
234 else if (vec_len (prefixs) > 0 &&
235 unformat (line_input, "via %U",
236 unformat_dpo, &dpo, prefixs[0].fp_proto))
238 vec_add1 (dpos, dpo);
240 else if (unformat (line_input, "del"))
242 else if (unformat (line_input, "add"))
246 error = unformat_parse_error (line_input);
251 if (vec_len (prefixs) == 0)
254 clib_error_return (0, "expected ip4/ip6 destination address/length.");
258 if (!is_del && vec_len (rpaths) + vec_len (dpos) == 0)
260 error = clib_error_return (0, "expected paths.");
267 * if no table_id is passed we will manipulate the default
273 fib_index = fib_table_find (prefixs[0].fp_proto, table_id);
277 error = clib_error_return (0, "Nonexistent table id %d", table_id);
282 for (i = 0; i < vec_len (prefixs); i++)
284 if (is_del && 0 == vec_len (rpaths))
286 fib_table_entry_delete (fib_index, &prefixs[i], FIB_SOURCE_CLI);
288 else if (!is_del && 1 == vec_len (dpos))
290 fib_table_entry_special_dpo_add (fib_index,
293 FIB_ENTRY_FLAG_EXCLUSIVE,
295 dpo_reset (&dpos[0]);
297 else if (vec_len (dpos) > 0)
300 clib_error_return (0,
301 "Load-balancing over multiple special adjacencies is unsupported");
304 else if (0 < vec_len (rpaths))
307 ip46_address_t dst = prefixs[i].fp_addr;
310 t[0] = vlib_time_now (vm);
311 incr = 1 << ((FIB_PROTOCOL_IP4 == prefixs[0].fp_proto ? 32 : 128) -
314 for (k = 0; k < n; k++)
316 fib_prefix_t rpfx = {
317 .fp_len = prefixs[i].fp_len,
318 .fp_proto = prefixs[i].fp_proto,
323 fib_table_entry_path_remove2 (fib_index,
324 &rpfx, FIB_SOURCE_CLI, rpaths);
326 fib_table_entry_path_add2 (fib_index,
329 FIB_ENTRY_FLAG_NONE, rpaths);
331 if (FIB_PROTOCOL_IP4 == prefixs[0].fp_proto)
334 clib_host_to_net_u32 (incr +
335 clib_net_to_host_u32 (dst.
340 int bucket = (incr < 64 ? 0 : 1);
341 dst.ip6.as_u64[bucket] =
342 clib_host_to_net_u64 (incr +
343 clib_net_to_host_u64 (dst.ip6.as_u64
348 t[1] = vlib_time_now (vm);
350 vlib_cli_output (vm, "%.6e routes/sec", count / (t[1] - t[0]));
354 error = clib_error_return (0, "Don't understand what you want...");
363 unformat_free (line_input);
368 vnet_ip_table_cmd (vlib_main_t * vm,
369 unformat_input_t * main_input,
370 vlib_cli_command_t * cmd, fib_protocol_t fproto)
372 unformat_input_t _line_input, *line_input = &_line_input;
373 clib_error_t *error = NULL;
374 u32 table_id, is_add;
380 /* Get a line of input. */
381 if (!unformat_user (main_input, unformat_line_input, line_input))
384 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
386 if (unformat (line_input, "%d", &table_id))
388 else if (unformat (line_input, "del"))
390 else if (unformat (line_input, "add"))
392 else if (unformat (line_input, "name %s", &name))
396 error = unformat_parse_error (line_input);
403 error = clib_error_return (0, "No table id");
406 else if (0 == table_id)
408 error = clib_error_return (0, "Can't change the default table");
415 ip_table_create (fproto, table_id, 0, name);
419 ip_table_delete (fproto, table_id, 0);
424 unformat_free (line_input);
429 vnet_ip4_table_cmd (vlib_main_t * vm,
430 unformat_input_t * main_input, vlib_cli_command_t * cmd)
432 return (vnet_ip_table_cmd (vm, main_input, cmd, FIB_PROTOCOL_IP4));
436 vnet_ip6_table_cmd (vlib_main_t * vm,
437 unformat_input_t * main_input, vlib_cli_command_t * cmd)
439 return (vnet_ip_table_cmd (vm, main_input, cmd, FIB_PROTOCOL_IP6));
443 VLIB_CLI_COMMAND (vlib_cli_ip_command, static) = {
445 .short_help = "Internet protocol (IP) commands",
450 VLIB_CLI_COMMAND (vlib_cli_ip6_command, static) = {
452 .short_help = "Internet protocol version 6 (IPv6) commands",
457 VLIB_CLI_COMMAND (vlib_cli_show_ip_command, static) = {
459 .short_help = "Internet protocol (IP) show commands",
464 VLIB_CLI_COMMAND (vlib_cli_show_ip6_command, static) = {
466 .short_help = "Internet protocol version 6 (IPv6) show commands",
471 * This command is used to add or delete IPv4 or IPv6 routes. All
472 * IP Addresses ('<em><dst-ip-addr>/<width></em>',
473 * '<em><next-hop-ip-addr></em>' and '<em><adj-hop-ip-addr></em>')
474 * can be IPv4 or IPv6, but all must be of the same form in a single
475 * command. To display the current set of routes, use the commands
476 * '<em>show ip fib</em>' and '<em>show ip6 fib</em>'.
479 * Example of how to add a straight forward static route:
480 * @cliexcmd{ip route add 6.0.1.2/32 via 6.0.0.1 GigabitEthernet2/0/0}
481 * Example of how to delete a straight forward static route:
482 * @cliexcmd{ip route del 6.0.1.2/32 via 6.0.0.1 GigabitEthernet2/0/0}
483 * Mainly for route add/del performance testing, one can add or delete
484 * multiple routes by adding 'count N' to the previous item:
485 * @cliexcmd{ip route add count 10 7.0.0.0/24 via 6.0.0.1 GigabitEthernet2/0/0}
486 * Add multiple routes for the same destination to create equal-cost multipath:
487 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.1 GigabitEthernet2/0/0}
488 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.2 GigabitEthernet2/0/0}
489 * For unequal-cost multipath, specify the desired weights. This
490 * combination of weights results in 3/4 of the traffic following the
491 * second path, 1/4 following the first path:
492 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.1 GigabitEthernet2/0/0 weight 1}
493 * @cliexcmd{ip route add 7.0.0.1/32 via 6.0.0.2 GigabitEthernet2/0/0 weight 3}
494 * To add a route to a particular FIB table (VRF), use:
495 * @cliexcmd{ip route add 172.16.24.0/24 table 7 via GigabitEthernet2/0/0}
498 VLIB_CLI_COMMAND (ip_route_command, static) = {
500 .short_help = "ip route [add|del] [count <n>] <dst-ip-addr>/<width> [table <table-id>] via [next-hop-address] [next-hop-interface] [next-hop-table <value>] [weight <value>] [preference <value>] [udp-encap-id <value>] [ip4-lookup-in-table <value>] [ip6-lookup-in-table <value>] [mpls-lookup-in-table <value>] [resolve-via-host] [resolve-via-connected] [rx-ip4 <interface>] [out-labels <value value value>]",
501 .function = vnet_ip_route_cmd,
507 * This command is used to add or delete IPv4 Tables. All
508 * Tables must be explicitly added before that can be used. Creating a
509 * table will add both unicast and multicast FIBs
513 VLIB_CLI_COMMAND (ip4_table_command, static) = {
515 .short_help = "ip table [add|del] <table-id>",
516 .function = vnet_ip4_table_cmd,
522 * This command is used to add or delete IPv4 Tables. All
523 * Tables must be explicitly added before that can be used. Creating a
524 * table will add both unicast and multicast FIBs
528 VLIB_CLI_COMMAND (ip6_table_command, static) = {
530 .short_help = "ip6 table [add|del] <table-id>",
531 .function = vnet_ip6_table_cmd,
534 static clib_error_t *
535 ip_table_bind_cmd (vlib_main_t * vm,
536 unformat_input_t * input,
537 vlib_cli_command_t * cmd,
538 fib_protocol_t fproto)
540 vnet_main_t *vnm = vnet_get_main ();
541 clib_error_t *error = 0;
542 u32 sw_if_index, table_id;
547 if (!unformat_user (input, unformat_vnet_sw_interface, vnm, &sw_if_index))
549 error = clib_error_return (0, "unknown interface `%U'",
550 format_unformat_error, input);
554 if (unformat (input, "%d", &table_id))
558 error = clib_error_return (0, "expected table id `%U'",
559 format_unformat_error, input);
563 rv = ip_table_bind (fproto, sw_if_index, table_id, 0);
565 if (VNET_API_ERROR_ADDRESS_FOUND_FOR_INTERFACE == rv)
567 error = clib_error_return (0, "IP addresses are still present on %U",
568 format_vnet_sw_if_index_name,
572 else if (VNET_API_ERROR_NO_SUCH_FIB == rv)
574 error = clib_error_return (0, "no such table %d", table_id);
578 error = clib_error_return (0, "unknown error");
585 static clib_error_t *
586 ip4_table_bind_cmd (vlib_main_t * vm,
587 unformat_input_t * input,
588 vlib_cli_command_t * cmd)
590 return (ip_table_bind_cmd (vm , input, cmd, FIB_PROTOCOL_IP4));
593 static clib_error_t *
594 ip6_table_bind_cmd (vlib_main_t * vm,
595 unformat_input_t * input,
596 vlib_cli_command_t * cmd)
598 return (ip_table_bind_cmd (vm , input, cmd, FIB_PROTOCOL_IP6));
602 * Place the indicated interface into the supplied IPv4 FIB table (also known
603 * as a VRF). The FIB table must be created using "ip table add" already. To
604 * display the current IPv4 FIB table, use the command '<em>show ip fib</em>'.
605 * FIB table will only be displayed if a route has been added to the table, or
606 * an IP Address is assigned to an interface in the table (which adds a route
609 * @note IP addresses added after setting the interface IP table are added to
610 * the indicated FIB table. If an IP address is added prior to changing the
611 * table then this is an error. The control plane must remove these addresses
612 * first and then change the table. VPP will not automatically move the
613 * addresses from the old to the new table as it does not know the validity
617 * Example of how to add an interface to an IPv4 FIB table (where 2 is the table-id):
618 * @cliexcmd{set interface ip table GigabitEthernet2/0/0 2}
621 VLIB_CLI_COMMAND (set_interface_ip_table_command, static) =
623 .path = "set interface ip table",
624 .function = ip4_table_bind_cmd,
625 .short_help = "set interface ip table <interface> <table-id>",
630 * Place the indicated interface into the supplied IPv6 FIB table (also known
631 * as a VRF). The FIB table must be created using "ip6 table add" already. To
632 * display the current IPv6 FIB table, use the command '<em>show ip6 fib</em>'.
633 * FIB table will only be displayed if a route has been added to the table, or
634 * an IP Address is assigned to an interface in the table (which adds a route
637 * @note IP addresses added after setting the interface IP table are added to
638 * the indicated FIB table. If an IP address is added prior to changing the
639 * table then this is an error. The control plane must remove these addresses
640 * first and then change the table. VPP will not automatically move the
641 * addresses from the old to the new table as it does not know the validity
645 * Example of how to add an interface to an IPv6 FIB table (where 2 is the table-id):
646 * @cliexcmd{set interface ip6 table GigabitEthernet2/0/0 2}
649 VLIB_CLI_COMMAND (set_interface_ip6_table_command, static) =
651 .path = "set interface ip6 table",
652 .function = ip6_table_bind_cmd,
653 .short_help = "set interface ip6 table <interface> <table-id>"
658 vnet_ip_mroute_cmd (vlib_main_t * vm,
659 unformat_input_t * main_input, vlib_cli_command_t * cmd)
661 unformat_input_t _line_input, *line_input = &_line_input;
662 fib_route_path_t rpath, *rpaths = NULL;
663 clib_error_t *error = NULL;
664 u32 table_id, is_del, payload_proto;
667 mfib_entry_flags_t eflags = 0;
668 u32 gcount, scount, ss, gg, incr;
670 u32 rpf_id = MFIB_RPF_ID_NONE;
675 clib_memset (&pfx, 0, sizeof (pfx));
676 clib_memset (&rpath, 0, sizeof (rpath));
677 rpath.frp_sw_if_index = ~0;
679 /* Get a line of input. */
680 if (!unformat_user (main_input, unformat_line_input, line_input))
683 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
685 if (unformat (line_input, "table %d", &table_id))
687 else if (unformat (line_input, "del"))
689 else if (unformat (line_input, "add"))
691 else if (unformat (line_input, "rpf-id %d", &rpf_id))
693 else if (unformat (line_input, "scount %d", &scount))
695 else if (unformat (line_input, "gcount %d", &gcount))
697 else if (unformat (line_input, "%U %U",
698 unformat_ip4_address,
699 &pfx.fp_src_addr.ip4,
700 unformat_ip4_address, &pfx.fp_grp_addr.ip4))
702 pfx.fp_proto = FIB_PROTOCOL_IP4;
705 else if (unformat (line_input, "%U %U",
706 unformat_ip6_address,
707 &pfx.fp_src_addr.ip6,
708 unformat_ip6_address, &pfx.fp_grp_addr.ip6))
710 pfx.fp_proto = FIB_PROTOCOL_IP6;
713 else if (unformat (line_input, "%U/%d",
714 unformat_ip4_address,
715 &pfx.fp_grp_addr.ip4, &pfx.fp_len))
717 clib_memset (&pfx.fp_src_addr.ip4, 0, sizeof (pfx.fp_src_addr.ip4));
718 pfx.fp_proto = FIB_PROTOCOL_IP4;
720 else if (unformat (line_input, "%U/%d",
721 unformat_ip6_address,
722 &pfx.fp_grp_addr.ip6, &pfx.fp_len))
724 clib_memset (&pfx.fp_src_addr.ip6, 0, sizeof (pfx.fp_src_addr.ip6));
725 pfx.fp_proto = FIB_PROTOCOL_IP6;
727 else if (unformat (line_input, "%U",
728 unformat_ip4_address, &pfx.fp_grp_addr.ip4))
730 clib_memset (&pfx.fp_src_addr.ip4, 0, sizeof (pfx.fp_src_addr.ip4));
731 pfx.fp_proto = FIB_PROTOCOL_IP4;
734 else if (unformat (line_input, "%U",
735 unformat_ip6_address, &pfx.fp_grp_addr.ip6))
737 clib_memset (&pfx.fp_src_addr.ip6, 0, sizeof (pfx.fp_src_addr.ip6));
738 pfx.fp_proto = FIB_PROTOCOL_IP6;
741 else if (unformat (line_input, "via local Forward"))
743 clib_memset (&rpath.frp_addr, 0, sizeof (rpath.frp_addr));
744 rpath.frp_sw_if_index = ~0;
745 rpath.frp_weight = 1;
746 rpath.frp_flags |= FIB_ROUTE_PATH_LOCAL;
748 * set the path proto appropriately for the prefix
750 rpath.frp_proto = fib_proto_to_dpo (pfx.fp_proto);
751 rpath.frp_mitf_flags = MFIB_ITF_FLAG_FORWARD;
753 vec_add1 (rpaths, rpath);
755 else if (unformat (line_input, "via %U",
756 unformat_fib_route_path, &rpath, &payload_proto))
758 vec_add1 (rpaths, rpath);
760 else if (unformat (line_input, "%U",
761 unformat_mfib_entry_flags, &eflags))
765 error = unformat_parse_error (line_input);
773 * if no table_id is passed we will manipulate the default
779 fib_index = mfib_table_find (pfx.fp_proto, table_id);
783 error = clib_error_return (0, "Nonexistent table id %d", table_id);
788 timet[0] = vlib_time_now (vm);
790 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
792 incr = 1 << (32 - (pfx.fp_len % 32));
796 incr = 1 << (128 - (pfx.fp_len % 128));
799 for (ss = 0; ss < scount; ss++)
801 for (gg = 0; gg < gcount; gg++)
803 if (is_del && 0 == vec_len (rpaths))
805 /* no path provided => route delete */
806 mfib_table_entry_delete (fib_index, &pfx, MFIB_SOURCE_CLI);
808 else if (eflags || (MFIB_RPF_ID_NONE != rpf_id))
810 mfib_table_entry_update (fib_index, &pfx, MFIB_SOURCE_CLI,
816 mfib_table_entry_path_remove (fib_index,
817 &pfx, MFIB_SOURCE_CLI, rpaths);
819 mfib_table_entry_path_update (fib_index,
820 &pfx, MFIB_SOURCE_CLI, rpaths);
823 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
825 pfx.fp_grp_addr.ip4.as_u32 =
826 clib_host_to_net_u32 (incr +
827 clib_net_to_host_u32 (pfx.
833 int bucket = (incr < 64 ? 0 : 1);
834 pfx.fp_grp_addr.ip6.as_u64[bucket] =
835 clib_host_to_net_u64 (incr +
836 clib_net_to_host_u64 (pfx.
837 fp_grp_addr.ip6.as_u64
842 if (FIB_PROTOCOL_IP4 == pfx.fp_proto)
844 pfx.fp_src_addr.ip4.as_u32 =
845 clib_host_to_net_u32 (1 +
846 clib_net_to_host_u32 (pfx.fp_src_addr.
851 pfx.fp_src_addr.ip6.as_u64[1] =
852 clib_host_to_net_u64 (1 +
853 clib_net_to_host_u64 (pfx.fp_src_addr.
858 timet[1] = vlib_time_now (vm);
860 if (scount > 1 || gcount > 1)
861 vlib_cli_output (vm, "%.6e routes/sec",
862 (scount * gcount) / (timet[1] - timet[0]));
866 unformat_free (line_input);
872 * This command is used to add or delete IPv4 or IPv6 multicast routes. All
873 * IP Addresses ('<em><dst-ip-addr>/<width></em>',
874 * '<em><next-hop-ip-addr></em>' and '<em><adj-hop-ip-addr></em>')
875 * can be IPv4 or IPv6, but all must be of the same form in a single
876 * command. To display the current set of routes, use the commands
877 * '<em>show ip mfib</em>' and '<em>show ip6 mfib</em>'.
878 * The full set of support flags for interfaces and route is shown via;
879 * '<em>show mfib route flags</em>' and '<em>show mfib itf flags</em>'
882 * Example of how to add a forwarding interface to a route (and create the
883 * route if it does not exist)
884 * @cliexcmd{ip mroute add 232.1.1.1 via GigabitEthernet2/0/0 Forward}
885 * Example of how to add an accepting interface to a route (and create the
886 * route if it does not exist)
887 * @cliexcmd{ip mroute add 232.1.1.1 via GigabitEthernet2/0/1 Accept}
888 * Example of changing the route's flags to send signals via the API
889 * @cliexcmd{ip mroute add 232.1.1.1 Signal}
893 VLIB_CLI_COMMAND (ip_mroute_command, static) =
896 .short_help = "ip mroute [add|del] <dst-ip-addr>/<width> [table <table-id>] [rpf-id <ID>] [via <next-hop-ip-addr> [<interface>],",
897 .function = vnet_ip_mroute_cmd,
903 vnet_ip_container_proxy_add_del (vnet_ip_container_proxy_args_t * args)
907 if (!vnet_sw_interface_is_api_valid (vnet_get_main (), args->sw_if_index))
908 return clib_error_return_code (0, VNET_API_ERROR_INVALID_INTERFACE, 0,
909 "invalid sw_if_index");
911 fib_index = fib_table_get_table_id_for_sw_if_index (args->prefix.fp_proto,
915 dpo_id_t proxy_dpo = DPO_INVALID;
916 l3_proxy_dpo_add_or_lock (fib_proto_to_dpo (args->prefix.fp_proto),
917 args->sw_if_index, &proxy_dpo);
918 fib_table_entry_special_dpo_add (fib_index,
921 FIB_ENTRY_FLAG_EXCLUSIVE, &proxy_dpo);
922 dpo_reset (&proxy_dpo);
926 fib_table_entry_special_remove (fib_index, &args->prefix,
933 ip_container_proxy_is_set (fib_prefix_t * pfx, u32 sw_if_index)
936 fib_node_index_t fei;
941 fib_index = fib_table_get_table_id_for_sw_if_index (pfx->fp_proto,
946 fei = fib_table_lookup_exact_match (fib_index, pfx);
947 if (fei == FIB_NODE_INDEX_INVALID)
950 dpo = fib_entry_contribute_ip_forwarding (fei);
951 lb0 = load_balance_get (dpo->dpoi_index);
952 dpo = load_balance_get_bucket_i (lb0, 0);
953 if (dpo->dpoi_type != DPO_L3_PROXY)
956 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
957 return (l3p->l3p_sw_if_index == sw_if_index);
960 typedef struct ip_container_proxy_walk_ctx_t_
962 ip_container_proxy_cb_t cb;
964 } ip_container_proxy_walk_ctx_t;
966 static fib_table_walk_rc_t
967 ip_container_proxy_fib_table_walk (fib_node_index_t fei, void *arg)
969 ip_container_proxy_walk_ctx_t *ctx = arg;
970 const fib_prefix_t *pfx;
975 pfx = fib_entry_get_prefix (fei);
976 if (fib_entry_is_sourced (fei, FIB_SOURCE_PROXY))
978 dpo = fib_entry_contribute_ip_forwarding (fei);
979 lb = load_balance_get (dpo->dpoi_index);
980 dpo = load_balance_get_bucket_i (lb, 0);
981 l3p = l3_proxy_dpo_get (dpo->dpoi_index);
982 ctx->cb (pfx, l3p->l3p_sw_if_index, ctx->ctx);
985 return FIB_TABLE_WALK_CONTINUE;
989 ip_container_proxy_walk (ip_container_proxy_cb_t cb, void *ctx)
991 fib_table_t *fib_table;
992 ip_container_proxy_walk_ctx_t wctx = {
998 pool_foreach (fib_table, ip4_main.fibs,
1000 fib_table_walk(fib_table->ft_index,
1002 ip_container_proxy_fib_table_walk,
1005 pool_foreach (fib_table, ip6_main.fibs,
1007 fib_table_walk(fib_table->ft_index,
1009 ip_container_proxy_fib_table_walk,
1016 ip_container_cmd (vlib_main_t * vm,
1017 unformat_input_t * main_input, vlib_cli_command_t * cmd)
1019 unformat_input_t _line_input, *line_input = &_line_input;
1021 u32 is_del, addr_set = 0;
1025 vnm = vnet_get_main ();
1028 clib_memset (&pfx, 0, sizeof (pfx));
1030 /* Get a line of input. */
1031 if (!unformat_user (main_input, unformat_line_input, line_input))
1034 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
1036 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
1038 pfx.fp_proto = FIB_PROTOCOL_IP4;
1042 else if (unformat (line_input, "%U",
1043 unformat_ip6_address, &pfx.fp_addr.ip6))
1045 pfx.fp_proto = FIB_PROTOCOL_IP6;
1049 else if (unformat (line_input, "%U",
1050 unformat_vnet_sw_interface, vnm, &sw_if_index))
1052 else if (unformat (line_input, "del"))
1056 unformat_free (line_input);
1057 return (clib_error_return (0, "unknown input '%U'",
1058 format_unformat_error, line_input));
1062 if (~0 == sw_if_index || !addr_set)
1064 unformat_free (line_input);
1065 vlib_cli_output (vm, "interface and address must be set");
1069 vnet_ip_container_proxy_args_t args = {
1071 .sw_if_index = sw_if_index,
1074 vnet_ip_container_proxy_add_del (&args);
1075 unformat_free (line_input);
1080 VLIB_CLI_COMMAND (ip_container_command_node, static) = {
1081 .path = "ip container",
1082 .function = ip_container_cmd,
1083 .short_help = "ip container <address> <interface>",
1089 show_ip_container_cmd_fn (vlib_main_t * vm, unformat_input_t * main_input,
1090 vlib_cli_command_t * cmd)
1092 unformat_input_t _line_input, *line_input = &_line_input;
1093 vnet_main_t *vnm = vnet_get_main ();
1095 u32 sw_if_index = ~0;
1098 if (!unformat_user (main_input, unformat_line_input, line_input))
1100 while (unformat_check_input (line_input) != UNFORMAT_END_OF_INPUT)
1102 if (unformat (line_input, "%U", unformat_ip4_address, &pfx.fp_addr.ip4))
1104 pfx.fp_proto = FIB_PROTOCOL_IP4;
1107 else if (unformat (line_input, "%U",
1108 unformat_ip6_address, &pfx.fp_addr.ip6))
1110 pfx.fp_proto = FIB_PROTOCOL_IP6;
1113 else if (unformat (line_input, "%U",
1114 unformat_vnet_sw_interface, vnm, &sw_if_index))
1118 unformat_free (line_input);
1119 return (clib_error_return (0, "unknown input '%U'",
1120 format_unformat_error, line_input));
1124 if (~0 == sw_if_index)
1126 unformat_free (line_input);
1127 vlib_cli_output (vm, "no interface");
1128 return (clib_error_return (0, "no interface"));
1131 has_proxy = ip_container_proxy_is_set (&pfx, sw_if_index);
1132 vlib_cli_output (vm, "ip container proxy is: %s", has_proxy ? "on" : "off");
1134 unformat_free (line_input);
1139 VLIB_CLI_COMMAND (show_ip_container_command, static) = {
1140 .path = "show ip container",
1141 .function = show_ip_container_cmd_fn,
1142 .short_help = "show ip container <address> <interface>",
1148 * fd.io coding-style-patch-verification: ON
1151 * eval: (c-set-style "gnu")