ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.29 by pcg, Sat Mar 26 03:16:24 2005 UTC vs.
Revision 1.40 by root, Tue Jan 17 21:25:50 2012 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2005 Marc Lehmann <gvpe@schmorp.de> 3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4 4
5 This file is part of GVPE. 5 This file is part of GVPE.
6 6
7 GVPE is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
8 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
9 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
10 (at your option) any later version. 10 option) any later version.
11 11
12 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
13 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
15 GNU General Public License for more details. 15 Public License for more details.
16 16
17 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
18 along with gvpe; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
19 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
20*/ 30*/
21 31
22#ifndef GVPE_CONF_H__ 32#ifndef GVPE_CONF_H__
23#define GVPE_CONF_H__ 33#define GVPE_CONF_H__
24 34
32#define DEFAULT_REKEY 3600 42#define DEFAULT_REKEY 3600
33#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 43#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
34#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 44#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
35#define DEFAULT_MTU 1500 // let's ether-net 45#define DEFAULT_MTU 1500 // let's ether-net
36#define DEFAULT_MAX_RETRY 3600 // retry at least this often 46#define DEFAULT_MAX_RETRY 3600 // retry at least this often
47#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
48#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
37 49
38#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple 50#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
39#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval 51#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
40#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate 52#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
41#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests 53#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
42 54
43enum { 55enum
56{
44 PROT_UDPv4 = 0x01, // udp over ipv4 57 PROT_UDPv4 = 0x01, // udp over ipv4
45 PROT_IPv4 = 0x02, // generic ip protocol 58 PROT_IPv4 = 0x02, // generic ip protocol
46 PROT_TCPv4 = 0x04, // tcp over ipv4 (server) 59 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
47 PROT_ICMPv4 = 0x08, // icmp over ipv4 60 PROT_ICMPv4 = 0x08, // icmp over ipv4
48 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server) 61 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
62 PROT_IPv42 = 0x20, // temporary hack to invetsigate packet loss
63 PROT_ALL = 0x3f
49}; 64};
50 65
51#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4) 66#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
52#define PROT_SLOW PROT_DNSv4 67#define PROT_SLOW PROT_DNSv4
53 68
54// select the "best" protocol of the available ones 69// select the "best" protocol of the available ones
55u8 best_protocol (u8 protset); 70u8 best_protocol (u8 protset);
56const char *strprotocol (u8 protocol); 71const char *strprotocol (u8 protocol);
57 72
58struct conf_node { 73struct conf_node
74{
59 int id; // the id of this node, a 12-bit-number 75 int id; // the id of this node, a 12-bit-number
60 76
61 RSA *rsa_key; // his public key 77 RSA *rsa_key; // his public key
62 char *nodename; // nodename, an internal nickname. 78 char *nodename; // nodename, an internal nickname.
63 char *hostname; // hostname, if known, or NULL. 79 char *hostname; // hostname, if known, or NULL.
69 u16 dns_port; 85 u16 dns_port;
70 86
71 u8 protocols; // protocols this host can send & receive 87 u8 protocols; // protocols this host can send & receive
72 u16 udp_port, tcp_port; // the port to bind to 88 u16 udp_port, tcp_port; // the port to bind to
73 int max_retry; 89 int max_retry;
90 double max_ttl; // packets expire after this many seconds
91 int max_queue; // maixmum send queue length
74 92
75 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 93 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
76 bool compress; 94 bool compress;
77 bool inherit_tos; // inherit TOS in packets send to this destination 95 bool inherit_tos; // inherit TOS in packets send to this destination
78 96
97 vector<const char *> allow_direct;
98 vector<const char *> deny_direct;
99
79 u32 routerprio; 100 u32 routerprio;
80 101
102 u8 connectable_protocols () const
103 {
104 u8 protocols = this->protocols;
105
106 // mask out endpoints we can't connect to
107 if (!udp_port) protocols &= ~PROT_UDPv4;
108 if (!tcp_port) protocols &= ~PROT_TCPv4;
109 if (!dns_port) protocols &= ~PROT_DNSv4;
110
111 return protocols;
112 }
113
114 bool may_direct (struct conf_node *other);
115 void finalise ();
116
81 void print (); 117 void print ();
82 118
83 ~conf_node (); 119 ~conf_node ();
84}; 120};
85 121
86struct configuration { 122struct configuration
123{
87 typedef vector<conf_node *> node_vector; 124 typedef vector<conf_node *> node_vector;
88 node_vector nodes; 125 node_vector nodes;
89 conf_node default_node; 126 conf_node default_node;
90 conf_node *thisnode; 127 conf_node *thisnode;
91 int mtu; // the mtu used for outgoing tunnel packets 128 int mtu; // the mtu used for outgoing tunnel packets
129 int nfmark; // the SO_MARK // netfilter mark // fwmark
92 double rekey; // rekey interval 130 double rekey; // rekey interval
93 double keepalive; // keepalive probes interval 131 double keepalive; // keepalive probes interval
94 char *ifname; // the interface name (tap0 ...) 132 char *ifname; // the interface name (tap0 ...)
95 bool ifpersist; // should the interface be persistent 133 bool ifpersist; // should the interface be persistent
96 char *prikeyfile; 134 char *prikeyfile;
97 RSA *rsa_key; // our private rsa key 135 RSA *rsa_key; // our private rsa key
98 loglevel llevel; 136 loglevel llevel;
99 u8 ip_proto; // the ip protocol to use 137 u8 ip_proto; // the ip protocol to use
138#if 1//D2
139 u8 ip2_proto; // the ip protocol to use
140#endif
100#if ENABLE_ICMP 141#if ENABLE_ICMP
101 u8 icmp_type; // the icmp type for the icmp-protocol 142 u8 icmp_type; // the icmp type for the icmp-protocol
102#endif 143#endif
103 144
104 char *script_if_up; 145 char *script_if_up;
105 char *script_node_up; 146 char *script_node_up;
147 char *script_node_change;
106 char *script_node_down; 148 char *script_node_down;
107 char *pidfilename; 149 char *pidfilename;
108 150
109#if ENABLE_HTTP_PROXY 151#if ENABLE_HTTP_PROXY
110 char *proxy_auth; // login:password 152 char *proxy_auth; // login:password
112 u16 proxy_port; // the proxy port, e.g. 3128 154 u16 proxy_port; // the proxy port, e.g. 3128
113#endif 155#endif
114 156
115#if ENABLE_DNS 157#if ENABLE_DNS
116 char *dns_forw_host; 158 char *dns_forw_host;
159 bool dns_case_preserving;
117 u16 dns_forw_port; 160 u16 dns_forw_port;
118 float dns_timeout_factor; 161 float dns_timeout_factor;
119 float dns_send_interval; 162 float dns_send_interval;
120 float dns_overlap_factor; 163 float dns_overlap_factor;
121 int dns_max_outstanding; 164 int dns_max_outstanding;
122#endif 165#endif
123 166
124 void init (); 167 void init ();
125 void cleanup (); 168 void cleanup ();
126 void read_config (bool need_keys);
127 void clear_config (); 169 void clear ();
128 170
129 // create a filename from string, replacing %s by the nodename 171 // create a filename from string, replacing %s by the nodename
130 // and using relative paths under confbase. 172 // and using relative paths under confbase.
131 char *config_filename (const char *name, const char *dflt); 173 char *config_filename (const char *name, const char *dflt = 0);
132 174
133 void print (); 175 void print ();
134 176
135 configuration (); 177 configuration ();
136 ~configuration (); 178 ~configuration ();
137}; 179};
138 180
181struct configuration_parser
182{
183 configuration &conf;
184
185 bool need_keys;
186 conf_node *node;
187
188 int argc;
189 char **argv;
190
191 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
192
193 void parse_file (const char *fname);
194 const char *parse_line (char *line);
195 void parse_argv ();
196};
197
139extern struct configuration conf; 198extern struct configuration conf;
140 199
141#define THISNODE ::conf.thisnode 200#define THISNODE ::conf.thisnode
142 201
143#endif 202#endif

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines