2 * Copyright (C) 2006-2008 Stig Venaas <venaas@uninett.no>
4 * Permission to use, copy, modify, and distribute this software for any
5 * purpose with or without fee is hereby granted, provided that the above
6 * copyright notice and this permission notice appear in all copies.
10 #include <sys/socket.h>
11 #include <netinet/in.h>
20 #include <sys/types.h>
21 #include <sys/select.h>
24 #include <arpa/inet.h>
27 #include <openssl/ssl.h>
33 #include "radsecproxy.h"
36 static int client4_sock = -1;
37 static int client6_sock = -1;
38 static struct queue *server_replyq = NULL;
40 /* exactly one of client and server must be non-NULL */
41 /* return who we received from in *client or *server */
42 /* return from in sa if not NULL */
43 unsigned char *radudpget(int s, struct client **client, struct server **server, struct sockaddr_storage *sa) {
45 unsigned char buf[4], *rad = NULL;
46 struct sockaddr_storage from;
47 socklen_t fromlen = sizeof(from);
49 struct list_node *node;
59 if (select(s + 1, &readfds, NULL, NULL, NULL) < 1)
61 cnt = recvfrom(s, buf, 4, MSG_PEEK | MSG_TRUNC, (struct sockaddr *)&from, &fromlen);
63 debug(DBG_WARN, "radudpget: recv failed");
67 debug(DBG_WARN, "radudpget: length too small");
73 ? find_clconf(RAD_UDP, (struct sockaddr *)&from, NULL)
74 : find_srvconf(RAD_UDP, (struct sockaddr *)&from, NULL);
76 debug(DBG_WARN, "radudpget: got packet from wrong or unknown UDP peer %s, ignoring", addr2string((struct sockaddr *)&from, fromlen));
83 debug(DBG_WARN, "radudpget: length too small");
90 debug(DBG_ERR, "radudpget: malloc failed");
95 cnt = recv(s, rad, len, MSG_TRUNC);
96 debug(DBG_DBG, "radudpget: got %d bytes from %s", cnt, addr2string((struct sockaddr *)&from, fromlen));
99 debug(DBG_WARN, "radudpget: packet smaller than length field in radius header");
103 debug(DBG_DBG, "radudpget: packet was padded with %d bytes", cnt - len);
106 node = list_first(p->clients);
107 *client = node ? (struct client *)node->data : addclient(p);
111 *server = p->servers;
119 int clientradputudp(struct server *server, unsigned char *rad) {
121 struct sockaddr_storage sa;
122 struct sockaddr *sap;
123 struct clsrvconf *conf = server->conf;
124 in_port_t *port = NULL;
128 if (*rad == RAD_Accounting_Request) {
129 sap = (struct sockaddr *)&sa;
130 memcpy(sap, conf->addrinfo->ai_addr, conf->addrinfo->ai_addrlen);
132 sap = conf->addrinfo->ai_addr;
134 switch (sap->sa_family) {
136 port = &((struct sockaddr_in *)sap)->sin_port;
139 port = &((struct sockaddr_in6 *)sap)->sin6_port;
145 if (*rad == RAD_Accounting_Request)
146 *port = htons(ntohs(*port) + 1);
148 if (sendto(server->sock, rad, len, 0, sap, conf->addrinfo->ai_addrlen) >= 0) {
149 debug(DBG_DBG, "clienradputudp: sent UDP of length %d to %s port %d", len, conf->host, ntohs(*port));
153 debug(DBG_WARN, "clientradputudp: send failed");
157 void *udpclientrd(void *arg) {
158 struct server *server;
164 buf = radudpget(*s, NULL, &server, NULL);
165 if (!replyh(server, buf))
170 void *udpserverrd(void *arg) {
172 int *sp = (int *)arg;
175 memset(&rq, 0, sizeof(struct request));
176 rq.buf = radudpget(*sp, &rq.from, NULL, &rq.fromsa);
177 rq.fromudpsock = *sp;
183 void *udpserverwr(void *arg) {
184 struct queue *replyq = (struct queue *)arg;
188 pthread_mutex_lock(&replyq->mutex);
189 while (!(reply = (struct reply *)list_shift(replyq->entries))) {
190 debug(DBG_DBG, "udp server writer, waiting for signal");
191 pthread_cond_wait(&replyq->cond, &replyq->mutex);
192 debug(DBG_DBG, "udp server writer, got signal");
194 pthread_mutex_unlock(&replyq->mutex);
196 if (sendto(reply->toudpsock, reply->buf, RADLEN(reply->buf), 0,
197 (struct sockaddr *)&reply->tosa, SOCKADDR_SIZE(reply->tosa)) < 0)
198 debug(DBG_WARN, "sendudp: send failed");
204 void addclientudp(struct client *client) {
205 client->replyq = server_replyq;
208 void addserverextraudp(struct clsrvconf *conf) {
209 switch (conf->addrinfo->ai_family) {
211 if (client4_sock < 0) {
212 client4_sock = bindtoaddr(getsrcprotores(RAD_UDP), AF_INET, 0, 1);
213 if (client4_sock < 0)
214 debugx(1, DBG_ERR, "addserver: failed to create client socket for server %s", conf->host);
216 conf->servers->sock = client4_sock;
219 if (client6_sock < 0) {
220 client6_sock = bindtoaddr(getsrcprotores(RAD_UDP), AF_INET6, 0, 1);
221 if (client6_sock < 0)
222 debugx(1, DBG_ERR, "addserver: failed to create client socket for server %s", conf->host);
224 conf->servers->sock = client6_sock;
227 debugx(1, DBG_ERR, "addserver: unsupported address family");
231 void initextraudp() {
232 pthread_t cl4th, cl6th, srvth;
234 if (client4_sock >= 0)
235 if (pthread_create(&cl4th, NULL, udpclientrd, (void *)&client4_sock))
236 debugx(1, DBG_ERR, "pthread_create failed");
237 if (client6_sock >= 0)
238 if (pthread_create(&cl6th, NULL, udpclientrd, (void *)&client6_sock))
239 debugx(1, DBG_ERR, "pthread_create failed");
241 if (find_clconf_type(RAD_UDP, NULL)) {
242 server_replyq = newqueue();
243 if (pthread_create(&srvth, NULL, udpserverwr, (void *)server_replyq))
244 debugx(1, DBG_ERR, "pthread_create failed");