1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
|
#include "internal.h"
#include <stdio.h>
#include <stdint.h>
#include <string.h> /* for memcpy */
#include <arpa/inet.h>
#include <errno.h>
#include <libmnl/libmnl.h>
#include <linux/netfilter/nf_tables.h>
#include <libnftnl/rule.h>
#include <libnftnl/expr.h>
struct nftnl_expr_flow {
char *table_name;
};
static int nftnl_expr_flow_set(struct nftnl_expr *e, uint16_t type,
const void *data, uint32_t data_len)
{
struct nftnl_expr_flow *flow = nftnl_expr_data(e);
switch (type) {
case NFTNL_EXPR_FLOW_TABLE_NAME:
flow->table_name = strdup((const char *)data);
if (!flow->table_name)
return -1;
break;
default:
return -1;
}
return 0;
}
static const void *nftnl_expr_flow_get(const struct nftnl_expr *e,
uint16_t type, uint32_t *data_len)
{
struct nftnl_expr_flow *flow = nftnl_expr_data(e);
switch(type) {
case NFTNL_EXPR_FLOW_TABLE_NAME:
*data_len = strlen(flow->table_name) + 1;
return flow->table_name;
}
return NULL;
}
static int nftnl_expr_flow_cb(const struct nlattr *attr, void *data)
{
const struct nlattr **tb = data;
int type = mnl_attr_get_type(attr);
if (mnl_attr_type_valid(attr, NFTA_FLOW_MAX) < 0)
return MNL_CB_OK;
switch(type) {
case NFTA_FLOW_TABLE_NAME:
if (mnl_attr_validate(attr, MNL_TYPE_STRING) < 0)
abi_breakage();
break;
}
tb[type] = attr;
return MNL_CB_OK;
}
static void nftnl_expr_flow_build(struct nlmsghdr *nlh,
const struct nftnl_expr *e)
{
struct nftnl_expr_flow *flow = nftnl_expr_data(e);
if (e->flags & (1 << NFTNL_EXPR_FLOW_TABLE_NAME))
mnl_attr_put_strz(nlh, NFTA_FLOW_TABLE_NAME, flow->table_name);
}
static int nftnl_expr_flow_parse(struct nftnl_expr *e, struct nlattr *attr)
{
struct nftnl_expr_flow *flow = nftnl_expr_data(e);
struct nlattr *tb[NFTA_FLOW_MAX+1] = {};
int ret = 0;
if (mnl_attr_parse_nested(attr, nftnl_expr_flow_cb, tb) < 0)
return -1;
if (tb[NFTA_FLOW_TABLE_NAME]) {
flow->table_name =
strdup(mnl_attr_get_str(tb[NFTA_FLOW_TABLE_NAME]));
if (!flow->table_name)
return -1;
e->flags |= (1 << NFTNL_EXPR_FLOW_TABLE_NAME);
}
return ret;
}
static int nftnl_expr_flow_snprintf(char *buf, size_t remain,
uint32_t flags, const struct nftnl_expr *e)
{
struct nftnl_expr_flow *l = nftnl_expr_data(e);
int offset = 0, ret;
ret = snprintf(buf, remain, "flowtable %s ", l->table_name);
SNPRINTF_BUFFER_SIZE(ret, remain, offset);
return offset;
}
static void nftnl_expr_flow_free(const struct nftnl_expr *e)
{
struct nftnl_expr_flow *flow = nftnl_expr_data(e);
xfree(flow->table_name);
}
struct expr_ops expr_ops_flow = {
.name = "flow_offload",
.alloc_len = sizeof(struct nftnl_expr_flow),
.max_attr = NFTA_FLOW_MAX,
.free = nftnl_expr_flow_free,
.set = nftnl_expr_flow_set,
.get = nftnl_expr_flow_get,
.parse = nftnl_expr_flow_parse,
.build = nftnl_expr_flow_build,
.output = nftnl_expr_flow_snprintf,
};
|