2 * Copyright (c) 2017 Cisco and/or its affiliates.
3 * Licensed under the Apache License, Version 2.0 (the "License");
4 * you may not use this file except in compliance with the License.
5 * You may obtain a copy of the License at:
7 * http://www.apache.org/licenses/LICENSE-2.0
9 * Unless required by applicable law or agreed to in writing, software
10 * distributed under the License is distributed on an "AS IS" BASIS,
11 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 * See the License for the specific language governing permissions and
13 * limitations under the License.
16 #ifndef __VOM_ACL_BINDING_H__
17 #define __VOM_ACL_BINDING_H__
21 #include "vom/acl_list.hpp"
22 #include "vom/acl_types.hpp"
24 #include "vom/inspect.hpp"
25 #include "vom/interface.hpp"
26 #include "vom/object_base.hpp"
28 #include "vom/rpc_cmd.hpp"
29 #include "vom/singular_db.hpp"
34 * A binding between an ACL and an interface.
35 * A representation of the application of the ACL to the interface.
37 template <typename LIST, typename BIND, typename DUMP>
38 class binding : public object_base
42 * The key for a binding is the direction and the interface
44 typedef std::pair<direction_t, interface::key_type> key_t;
47 * Construct a new object matching the desried state
49 binding(const direction_t& direction, const interface& itf, const LIST& acl)
50 : m_direction(direction)
51 , m_itf(itf.singular())
52 , m_acl(acl.singular())
61 binding(const binding& o)
62 : m_direction(o.m_direction)
75 m_db.release(std::make_pair(m_direction, m_itf->key()), this);
79 * Return the 'singular instance' of the L2 config that matches this
82 std::shared_ptr<binding> singular() const { return find_or_add(*this); }
85 * convert to string format for debug purposes
87 std::string to_string() const
90 s << "acl-binding:[" << m_direction.to_string() << " " << m_itf->to_string()
91 << " " << m_acl->to_string() << " " << m_binding.to_string() << "]";
97 * Dump all bindings into the stream provided
99 static void dump(std::ostream& os) { m_db.dump(os); }
102 * A command class that binds the ACL to the interface
104 class bind_cmd : public rpc_cmd<HW::item<bool>, rc_t, BIND>
110 bind_cmd(HW::item<bool>& item,
111 const direction_t& direction,
114 : rpc_cmd<HW::item<bool>, rc_t, BIND>(item)
115 , m_direction(direction)
122 * Issue the command to VPP/HW
124 rc_t issue(connection& con);
127 * convert to string format for debug purposes
129 std::string to_string() const
131 std::ostringstream s;
132 s << "acl-bind:[" << m_direction.to_string()
133 << " itf:" << m_itf.to_string() << " acl:" << m_acl.to_string() << "]";
139 * Comparison operator - only used for UT
141 bool operator==(const bind_cmd& other) const
143 return ((m_itf == other.m_itf) && (m_acl == m_acl));
148 * The direction of the binding
150 const direction_t m_direction;
153 * The interface to bind to
155 const handle_t m_itf;
160 const handle_t m_acl;
164 * A command class that binds the ACL to the interface
166 class unbind_cmd : public rpc_cmd<HW::item<bool>, rc_t, BIND>
172 unbind_cmd(HW::item<bool>& item,
173 const direction_t& direction,
176 : rpc_cmd<HW::item<bool>, rc_t, BIND>(item)
177 , m_direction(direction)
184 * Issue the command to VPP/HW
186 rc_t issue(connection& con);
189 * convert to string format for debug purposes
191 std::string to_string() const
193 std::ostringstream s;
194 s << "acl-unbind:[" << m_direction.to_string()
195 << " itf:" << m_itf.to_string() << " acl:" << m_acl.to_string() << "]";
201 * Comparison operator - only used for UT
203 bool operator==(const unbind_cmd& other) const
205 return ((m_itf == other.m_itf) && (m_acl == m_acl));
210 * The direction of the binding
212 const direction_t m_direction;
215 * The interface to bind to
217 const handle_t m_itf;
222 const handle_t m_acl;
226 * A cmd class that Dumps all the ACLs
228 class dump_cmd : public VOM::dump_cmd<DUMP>
234 dump_cmd() = default;
235 dump_cmd(const dump_cmd& d) = default;
238 * Issue the command to VPP/HW
240 rc_t issue(connection& con);
243 * convert to string format for debug purposes
245 std::string to_string() const { return ("acl-bind-dump"); }
256 * Class definition for listeners to OM events
258 class event_handler : public OM::listener, public inspect::command_handler
263 OM::register_listener(this);
264 inspect::register_handler({ "acl-binding" }, "ACL bindings", this);
266 virtual ~event_handler() = default;
269 * Handle a populate event
271 void handle_populate(const client_db::key_t& key);
274 * Handle a replay event
276 void handle_replay() { m_db.replay(); }
279 * Show the object in the Singular DB
281 void show(std::ostream& os) { m_db.dump(os); }
284 * Get the sortable Id of the listener
286 dependency_t order() const { return (dependency_t::BINDING); }
290 * event_handler to register with OM
292 static event_handler m_evh;
295 * Enquue commonds to the VPP command Q for the update
297 void update(const binding& obj)
301 new bind_cmd(m_binding, m_direction, m_itf->handle(), m_acl->handle()));
307 * Find or Add the instance in the DB
309 static std::shared_ptr<binding> find_or_add(const binding& temp)
311 return (m_db.find_or_add(
312 std::make_pair(temp.m_direction, temp.m_itf->key()), temp));
316 * It's the OM class that calls singular()
318 friend class VOM::OM;
321 * It's the singular_db class that calls replay()
323 friend class singular_db<key_t, binding>;
326 * Sweep/reap the object if still stale
331 HW::enqueue(new unbind_cmd(m_binding, m_direction, m_itf->handle(),
338 * Replay the objects state to HW
344 new bind_cmd(m_binding, m_direction, m_itf->handle(), m_acl->handle()));
349 * The direction the of the packets on which to apply the ACL
352 const direction_t m_direction;
355 * A reference counting pointer the interface that this L3 layer
356 * represents. By holding the reference here, we can guarantee that
357 * this object will outlive the interface
359 const std::shared_ptr<interface> m_itf;
362 * A reference counting pointer the ACL that this
363 * interface is bound to. By holding the reference here, we can
364 * guarantee that this object will outlive the BD.
366 const std::shared_ptr<LIST> m_acl;
369 * HW configuration for the binding. The bool representing the
372 HW::item<bool> m_binding;
375 * A map of all L2 interfaces key against the interface's handle_t
377 static singular_db<key_t, binding> m_db;
381 * Typedef the L3 binding type
383 typedef binding<l3_list,
384 vapi::Acl_interface_add_del,
385 vapi::Acl_interface_list_dump>
389 * Typedef the L2 binding type
391 typedef binding<l2_list,
392 vapi::Macip_acl_interface_add_del,
393 vapi::Macip_acl_interface_list_dump>
397 * Definition of the static Singular DB for ACL bindings
399 template <typename LIST, typename BIND, typename DUMP>
400 singular_db<typename ACL::binding<LIST, BIND, DUMP>::key_t,
401 ACL::binding<LIST, BIND, DUMP>>
402 binding<LIST, BIND, DUMP>::m_db;
404 template <typename LIST, typename BIND, typename DUMP>
405 typename ACL::binding<LIST, BIND, DUMP>::event_handler
406 binding<LIST, BIND, DUMP>::m_evh;
409 std::ostream& operator<<(
411 const std::pair<direction_t, interface::key_type>& key);
415 * fd.io coding-style-patch-verification: ON
418 * eval: (c-set-style "mozilla")