ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.24 by pcg, Thu Mar 3 07:24:57 2005 UTC vs.
Revision 1.43 by root, Sat Jul 13 04:10:29 2013 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2004 Marc Lehmann <pcg@goof.com> 3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4 4
5 This file is part of GVPE.
6
5 This program is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
6 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
7 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
8 (at your option) any later version. 10 option) any later version.
9 11
10 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
11 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
13 GNU General Public License for more details. 15 Public License for more details.
14 16
15 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
16 along with this program; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
17 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
18*/ 30*/
19 31
20#ifndef VPE_CONF_H__ 32#ifndef GVPE_CONF_H__
21#define VPE_CONF_H__ 33#define GVPE_CONF_H__
22 34
23#include <vector> 35#include <vector>
24 36
25#include <openssl/rsa.h> 37#include <openssl/rsa.h>
26 38
27#include "slog.h" 39#include "slog.h"
28#include "global.h" 40#include "global.h"
29 41
30#define DEFAULT_REKEY 3600 42#define DEFAULT_REKEY 3607 // interval between rekeys
43#define DEFAULT_RESEED 3613 // interval between rng reseeds
31#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 44#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
32#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 45#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
33#define DEFAULT_MTU 1500 // let's ether-net 46#define DEFAULT_MTU 1500 // let's ether-net
34#define DEFAULT_MAX_RETRY 28800 // retry at least this often 47#define DEFAULT_MAX_RETRY 3600 // retry at least this often
48#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
49#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
50
51#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
52#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
53#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
54#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
35 55
36enum { 56enum
57{
37 PROT_UDPv4 = 0x01, // udp over ipv4 58 PROT_UDPv4 = 0x01, // udp over ipv4
38 PROT_IPv4 = 0x02, // generic ip protocol 59 PROT_IPv4 = 0x02, // generic ip protocol
39 PROT_TCPv4 = 0x04, // tcp over ipv4 (server) 60 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
40 PROT_ICMPv4 = 0x08, // icmp over ipv4 61 PROT_ICMPv4 = 0x08, // icmp over ipv4
41 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server) 62 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
63 PROT_ALL = 0x1f
42}; 64};
65
66#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
67#define PROT_SLOW PROT_DNSv4
43 68
44// select the "best" protocol of the available ones 69// select the "best" protocol of the available ones
45u8 best_protocol (u8 protset); 70u8 best_protocol (u8 protset);
46const char *strprotocol (u8 protocol); 71const char *strprotocol (u8 protocol);
47 72
48struct conf_node { 73struct conf_node
74{
49 int id; // the id of this node, a 12-bit-number 75 int id; // the id of this node, a 12-bit-number
50 76
51 RSA *rsa_key; // his public key 77 RSA *rsa_key; // his public key
52 char *nodename; // nodename, an internal nickname. 78 char *nodename; // nodename, an internal nickname.
53 char *hostname; // hostname, if known, or NULL. 79 char *hostname; // hostname, if known, or NULL.
80 char *if_up_data;
54#if ENABLE_DNS 81#if ENABLE_DNS
55 char *domain; // dns tunnel domain 82 char *domain; // dns tunnel domain
56#endif 83#endif
57 char *dns_hostname; 84 char *dns_hostname;
58 u16 dns_port; 85 u16 dns_port;
59 86
60 u8 protocols; // protocols this host can send & receive 87 u8 protocols; // protocols this host can send & receive
61 u16 udp_port, tcp_port; // the port to bind to 88 u16 udp_port, tcp_port; // the port to bind to
62 int max_retry; 89 int max_retry;
90 double max_ttl; // packets expire after this many seconds
91 int max_queue; // maixmum send queue length
63 92
64 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 93 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
65 bool compress; 94 bool compress;
66 bool inherit_tos; // inherit TOS in packets send to this destination 95 bool inherit_tos; // inherit TOS in packets send to this destination
67 96
97 vector<const char *> allow_direct;
98 vector<const char *> deny_direct;
99
68 u32 routerprio; 100 u32 routerprio;
69 101
102 u8 connectable_protocols () const
103 {
104 u8 protocols = this->protocols;
105
106 // mask out endpoints we can't connect to
107 if (!udp_port) protocols &= ~PROT_UDPv4;
108 if (!tcp_port) protocols &= ~PROT_TCPv4;
109 if (!dns_port) protocols &= ~PROT_DNSv4;
110
111 return protocols;
112 }
113
114 bool may_direct (struct conf_node *other);
115 void finalise ();
116
70 void print (); 117 void print ();
71 118
72 ~conf_node (); 119 ~conf_node ();
73}; 120};
74 121
75struct configuration { 122struct configuration
123{
76 typedef vector<conf_node *> node_vector; 124 typedef vector<conf_node *> node_vector;
77 node_vector nodes; 125 node_vector nodes;
78 conf_node default_node; 126 conf_node default_node;
79 conf_node *thisnode; 127 conf_node *thisnode;
128 char *seed_dev; // the randomd evice to use for seeding
129 double reseed; // the interval between additional seeds
80 int mtu; // the mtu used for outgoing tunnel packets 130 int mtu; // the mtu used for outgoing tunnel packets
131 int nfmark; // the SO_MARK // netfilter mark // fwmark
81 double rekey; // rekey interval 132 double rekey; // rekey interval
82 double keepalive; // keepalive probes interval 133 double keepalive; // keepalive probes interval
83 char *ifname; // the interface name (tap0 ...) 134 char *ifname; // the interface name (tap0 ...)
84 bool ifpersist; // should the interface be persistent 135 bool ifpersist; // should the interface be persistent
85 char *prikeyfile; 136 char *prikeyfile;
86 RSA *rsa_key; // our private rsa key 137 RSA *rsa_key; // our private rsa key
87 loglevel llevel; 138 loglevel llevel;
88 u8 ip_proto; // the ip protocol to use 139 u8 ip_proto; // the ip protocol to use
140 uid_t change_uid; // the uid of the user to switch to, or 0
141 gid_t change_gid; // the gid of the user to switch to, or 0
142 char *change_root;// the path to chroot to, "/" == anonymous
89#if ENABLE_ICMP 143#if ENABLE_ICMP
90 u8 icmp_type; // the icmp type for the icmp-protocol 144 u8 icmp_type; // the icmp type for the icmp-protocol
91#endif 145#endif
92 146
93 char *script_if_up; 147 char *script_if_up;
94 char *script_node_up; 148 char *script_node_up;
149 char *script_node_change;
95 char *script_node_down; 150 char *script_node_down;
96 char *pidfilename; 151 char *pidfilename;
97 152
98#if ENABLE_HTTP_PROXY 153#if ENABLE_HTTP_PROXY
99 char *proxy_auth; // login:password 154 char *proxy_auth; // login:password
101 u16 proxy_port; // the proxy port, e.g. 3128 156 u16 proxy_port; // the proxy port, e.g. 3128
102#endif 157#endif
103 158
104#if ENABLE_DNS 159#if ENABLE_DNS
105 char *dns_forw_host; 160 char *dns_forw_host;
161 bool dns_case_preserving;
106 u16 dns_forw_port; 162 u16 dns_forw_port;
163 float dns_timeout_factor;
164 float dns_send_interval;
165 float dns_overlap_factor;
166 int dns_max_outstanding;
107#endif 167#endif
108 168
109 void init (); 169 void init ();
110 void cleanup (); 170 void cleanup ();
111 void read_config (bool need_keys);
112 void clear_config (); 171 void clear ();
113 172
114 // create a filename from string, replacing %s by the nodename 173 // create a filename from string, replacing %s by the nodename
115 // and using relative paths under confbase. 174 // and using relative paths under confbase.
116 char *config_filename (const char *name, const char *dflt); 175 char *config_filename (const char *name, const char *dflt = 0);
117 176
118 void print (); 177 void print ();
119 178
120 configuration (); 179 configuration ();
121 ~configuration (); 180 ~configuration ();
122}; 181};
123 182
183struct configuration_parser
184{
185 configuration &conf;
186
187 bool need_keys;
188 conf_node *node;
189
190 int argc;
191 char **argv;
192
193 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
194
195 void parse_file (const char *fname);
196 const char *parse_line (char *line);
197 void parse_argv ();
198};
199
124extern struct configuration conf; 200extern struct configuration conf;
125 201
126#define THISNODE ::conf.thisnode 202#define THISNODE ::conf.thisnode
127 203
128#endif 204#endif

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines