2 * encap.c : L2TPv3 tunnel encapsulation
4 * Copyright (c) 2013 Cisco and/or its affiliates.
5 * Licensed under the Apache License, Version 2.0 (the "License");
6 * you may not use this file except in compliance with the License.
7 * You may obtain a copy of the License at:
9 * http://www.apache.org/licenses/LICENSE-2.0
11 * Unless required by applicable law or agreed to in writing, software
12 * distributed under the License is distributed on an "AS IS" BASIS,
13 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14 * See the License for the specific language governing permissions and
15 * limitations under the License.
18 #include <vppinfra/error.h>
19 #include <vppinfra/hash.h>
20 #include <vnet/vnet.h>
21 #include <vnet/ip/ip.h>
22 #include <vnet/ethernet/ethernet.h>
23 #include <vnet/l2tp/l2tp.h>
25 /* Statistics (not really errors) */
26 #define foreach_l2t_encap_error \
27 _(NETWORK_TO_USER, "L2TP L2 network to user (ip6) pkts") \
28 _(LOOKUP_FAIL_TO_L3, "L2TP L2 session lookup failed pkts") \
29 _(ADMIN_DOWN, "L2TP tunnel is down")
31 static char * l2t_encap_error_strings[] = {
32 #define _(sym,string) string,
33 foreach_l2t_encap_error
38 #define _(sym,str) L2T_ENCAP_ERROR_##sym,
39 foreach_l2t_encap_error
47 L2T_ENCAP_NEXT_IP6_LOOKUP,
52 u32 cached_session_index;
53 u32 cached_sw_if_index;
54 vnet_main_t * vnet_main;
55 } l2tp_encap_runtime_t;
57 vlib_node_registration_t l2t_encap_node;
61 static inline void stage0 (vlib_main_t * vm,
62 vlib_node_runtime_t * node,
65 vlib_buffer_t *b = vlib_get_buffer (vm, buffer_index);
66 vlib_prefetch_buffer_header (b, STORE);
67 CLIB_PREFETCH (b->data, 2*CLIB_CACHE_LINE_BYTES, STORE);
70 static inline void stage1 (vlib_main_t * vm,
71 vlib_node_runtime_t * node,
74 l2tp_encap_runtime_t * rt = (void *) node->runtime_data;
75 vlib_buffer_t *b = vlib_get_buffer (vm, bi);
76 vnet_hw_interface_t * hi;
78 u32 sw_if_index = vnet_buffer(b)->sw_if_index[VLIB_TX];
79 u32 session_index = rt->cached_session_index;
81 if (PREDICT_FALSE(rt->cached_sw_if_index != sw_if_index))
83 hi = vnet_get_sup_hw_interface (rt->vnet_main, sw_if_index);
84 session_index = rt->cached_session_index = hi->dev_instance;
85 rt->cached_sw_if_index = sw_if_index;
88 /* Remember mapping index, prefetch the mini counter */
89 vnet_buffer(b)->l2t.next_index = L2T_ENCAP_NEXT_IP6_LOOKUP;
90 vnet_buffer(b)->l2t.session_index = session_index;
92 /* $$$$ prefetch counter... */
95 static inline u32 last_stage (vlib_main_t *vm, vlib_node_runtime_t *node,
98 vlib_buffer_t *b = vlib_get_buffer (vm, bi);
99 l2t_main_t *lm = &l2t_main;
100 vlib_node_t *n = vlib_get_node (vm, l2t_encap_node.index);
101 u32 node_counter_base_index = n->error_heap_index;
102 vlib_error_main_t * em = &vm->error_main;
103 l2tpv3_header_t * l2tp;
109 u32 next_index = L2T_ENCAP_NEXT_IP6_LOOKUP;
111 /* Other-than-output pkt? We're done... */
112 if (vnet_buffer(b)->l2t.next_index != L2T_ENCAP_NEXT_IP6_LOOKUP)
113 return vnet_buffer(b)->l2t.next_index;
115 em->counters[node_counter_base_index + L2T_ENCAP_ERROR_NETWORK_TO_USER] += 1;
117 session_index = vnet_buffer(b)->l2t.session_index;
120 session_index_to_counter_index (session_index,
121 SESSION_COUNTER_NETWORK_TO_USER);
123 /* per-mapping byte stats include the ethernet header */
124 vlib_increment_combined_counter (&lm->counter_main,
127 1 /* packet_increment */,
128 vlib_buffer_length_in_chain (vm, b));
130 s = pool_elt_at_index (lm->sessions, session_index);
132 vnet_buffer(b)->sw_if_index[VLIB_TX] = s->encap_fib_index;
134 /* Paint on an l2tpv3 hdr */
135 vlib_buffer_advance (b, -(s->l2tp_hdr_size));
136 l2tp = vlib_buffer_get_current (b);
138 l2tp->session_id = s->remote_session_id;
139 l2tp->cookie = s->remote_cookie;
140 if (PREDICT_FALSE (s->l2_sublayer_present)) {
141 l2tp->l2_specific_sublayer = 0;
144 /* Paint on an ip6 header */
145 vlib_buffer_advance (b, -(sizeof (*ip6)));
146 ip6 = vlib_buffer_get_current (b);
148 if (PREDICT_FALSE(!(s->admin_up))) {
149 b->error = node->errors[L2T_ENCAP_ERROR_ADMIN_DOWN];
150 next_index = L2T_ENCAP_NEXT_DROP;
154 ip6->ip_version_traffic_class_and_flow_label =
155 clib_host_to_net_u32 (0x6<<28);
157 /* calculate ip6 payload length */
158 payload_length = vlib_buffer_length_in_chain (vm, b);
159 payload_length -= sizeof (*ip6);
161 ip6->payload_length = clib_host_to_net_u16 (payload_length);
162 ip6->protocol = IP_PROTOCOL_L2TP;
163 ip6->hop_limit = 0xff;
164 ip6->src_address.as_u64[0] = s->our_address.as_u64[0];
165 ip6->src_address.as_u64[1] = s->our_address.as_u64[1];
166 ip6->dst_address.as_u64[0] = s->client_address.as_u64[0];
167 ip6->dst_address.as_u64[1] = s->client_address.as_u64[1];
171 if (PREDICT_FALSE(b->flags & VLIB_BUFFER_IS_TRACED)) {
172 l2t_trace_t *t = vlib_add_trace (vm, node, b, sizeof (*t));
173 t->is_user_to_network = 0;
174 t->our_address.as_u64[0] =
175 ip6->src_address.as_u64[0];
176 t->our_address.as_u64[1] =
177 ip6->src_address.as_u64[1];
178 t->client_address.as_u64[0] =
179 ip6->dst_address.as_u64[0];
180 t->client_address.as_u64[1] =
181 ip6->dst_address.as_u64[1];
182 t->session_index = session_index;
188 #include <vnet/pipeline.h>
190 uword l2t_encap_node_fn (vlib_main_t * vm,
191 vlib_node_runtime_t * node,
192 vlib_frame_t * frame)
194 return dispatch_pipeline (vm, node, frame);
198 VLIB_REGISTER_NODE (l2t_encap_node) = {
199 .function = l2t_encap_node_fn,
200 .name = "l2tp-encap",
201 .vector_size = sizeof (u32),
202 .format_trace = format_l2t_trace,
203 .type = VLIB_NODE_TYPE_INTERNAL,
204 .runtime_data_bytes = sizeof (l2tp_encap_runtime_t),
206 .n_errors = ARRAY_LEN(l2t_encap_error_strings),
207 .error_strings = l2t_encap_error_strings,
209 .n_next_nodes = L2T_ENCAP_N_NEXT,
211 // add dispositions here
213 [L2T_ENCAP_NEXT_IP6_LOOKUP] = "ip6-lookup",
214 [L2T_ENCAP_NEXT_DROP] = "error-drop",
218 VLIB_NODE_FUNCTION_MULTIARCH (l2t_encap_node, l2t_encap_node_fn)
220 void l2tp_encap_init (vlib_main_t * vm)
222 l2tp_encap_runtime_t * rt;
224 rt = vlib_node_get_runtime_data (vm, l2t_encap_node.index);
225 rt->vnet_main = vnet_get_main();
226 rt->cached_sw_if_index = (u32) ~0;
227 rt->cached_session_index = (u32) ~0;