ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.10 by pcg, Fri Mar 28 16:21:09 2003 UTC vs.
Revision 1.41 by root, Tue Jan 17 21:38:11 2012 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
3 4
5 This file is part of GVPE.
6
4 This program is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
5 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
6 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
7 (at your option) any later version. 10 option) any later version.
8 11
9 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
10 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
11 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
12 GNU General Public License for more details. 15 Public License for more details.
13 16
14 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
15 along with this program; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
16 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
17*/ 30*/
18 31
19#ifndef VPE_CONF_H__ 32#ifndef GVPE_CONF_H__
20#define VPE_CONF_H__ 33#define GVPE_CONF_H__
21
22#include <sys/types.h>
23#include <sys/socket.h>
24#include <netdb.h>
25
26#ifdef HAVE_OPENSSL_RSA_H
27# include <openssl/rsa.h>
28#else
29# include <rsa.h>
30#endif
31 34
32#include <vector> 35#include <vector>
36
37#include <openssl/rsa.h>
33 38
34#include "slog.h" 39#include "slog.h"
35#include "global.h" 40#include "global.h"
36 41
37#define DEFAULT_REKEY 3600 42#define DEFAULT_REKEY 3600
38#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 43#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
39#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 44#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
45#define DEFAULT_MTU 1500 // let's ether-net
46#define DEFAULT_MAX_RETRY 3600 // retry at least this often
47#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
48#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
49
50#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
51#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
52#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
53#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
40 54
41enum { 55enum
56{
42 PROT_UDPv4 = 1, // udp over ipv4 57 PROT_UDPv4 = 0x01, // udp over ipv4
43 PROT_IPv4 = 2, // generic ip protocol 58 PROT_IPv4 = 0x02, // generic ip protocol
44 PROT_TCPv4 = 4, // tcp over ipv4 (NYI) 59 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
60 PROT_ICMPv4 = 0x08, // icmp over ipv4
61 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
62 PROT_ALL = 0x1f
45}; 63};
64
65#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
66#define PROT_SLOW PROT_DNSv4
46 67
47// select the "best" protocol of the available ones 68// select the "best" protocol of the available ones
48u8 best_protocol (u8 protset); 69u8 best_protocol (u8 protset);
49const char *strprotocol (u8 protocol); 70const char *strprotocol (u8 protocol);
50 71
51struct conf_node { 72struct conf_node
73{
52 int id; // the id of this node, a 12-bit-number 74 int id; // the id of this node, a 12-bit-number
53 75
54 RSA *rsa_key; // his public key 76 RSA *rsa_key; // his public key
55 char *nodename; // nodename, an internal nickname. 77 char *nodename; // nodename, an internal nickname.
56
57 char *hostname; // hostname, if known, or NULL. 78 char *hostname; // hostname, if known, or NULL.
79 char *if_up_data;
80#if ENABLE_DNS
81 char *domain; // dns tunnel domain
82#endif
83 char *dns_hostname;
84 u16 dns_port;
58 85
59 u8 protocols; // protocols this host can send & receive 86 u8 protocols; // protocols this host can send & receive
60 u16 udp_port; // the port to bind to 87 u16 udp_port, tcp_port; // the port to bind to
88 int max_retry;
89 double max_ttl; // packets expire after this many seconds
90 int max_queue; // maixmum send queue length
61 91
62 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 92 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
63 bool compress; 93 bool compress;
64 bool inherit_tos; // inherit TOS in packets send to this destination 94 bool inherit_tos; // inherit TOS in packets send to this destination
65 95
96 vector<const char *> allow_direct;
97 vector<const char *> deny_direct;
98
66 u32 routerprio; 99 u32 routerprio;
67 100
101 u8 connectable_protocols () const
102 {
103 u8 protocols = this->protocols;
104
105 // mask out endpoints we can't connect to
106 if (!udp_port) protocols &= ~PROT_UDPv4;
107 if (!tcp_port) protocols &= ~PROT_TCPv4;
108 if (!dns_port) protocols &= ~PROT_DNSv4;
109
110 return protocols;
111 }
112
113 bool may_direct (struct conf_node *other);
114 void finalise ();
115
68 void print (); 116 void print ();
69 117
70 ~conf_node () 118 ~conf_node ();
71 {
72 if (rsa_key)
73 RSA_free (rsa_key);
74
75 free (nodename);
76 free (hostname);
77 }
78}; 119};
79 120
80struct configuration { 121struct configuration
122{
81 typedef vector<conf_node *> node_vector; 123 typedef vector<conf_node *> node_vector;
82 node_vector nodes; 124 node_vector nodes;
83 conf_node default_node; 125 conf_node default_node;
84 conf_node *thisnode; 126 conf_node *thisnode;
85 int mtu; // the mtu used for outgoing tunnel packets 127 int mtu; // the mtu used for outgoing tunnel packets
128 int nfmark; // the SO_MARK // netfilter mark // fwmark
86 double rekey; // rekey interval 129 double rekey; // rekey interval
87 double keepalive; // keepalive probes interval 130 double keepalive; // keepalive probes interval
88 char *ifname; // the interface name (tap0 ...) 131 char *ifname; // the interface name (tap0 ...)
89 bool ifpersist; // should the interface be persistent 132 bool ifpersist; // should the interface be persistent
90 char *prikeyfile; 133 char *prikeyfile;
91 RSA *rsa_key; // our private rsa key 134 RSA *rsa_key; // our private rsa key
92 loglevel llevel; 135 loglevel llevel;
93 u8 ip_proto; // the ip protocol to use 136 u8 ip_proto; // the ip protocol to use
137#if 1//D2
138 u8 ip2_proto; // the ip protocol to use
139#endif
140#if ENABLE_ICMP
141 u8 icmp_type; // the icmp type for the icmp-protocol
142#endif
94 143
95 char *script_if_up; 144 char *script_if_up;
96 char *script_node_up; 145 char *script_node_up;
146 char *script_node_change;
97 char *script_node_down; 147 char *script_node_down;
148 char *pidfilename;
149
150#if ENABLE_HTTP_PROXY
151 char *proxy_auth; // login:password
152 char *proxy_host; // the proxy hostname, e.g. proxy1.example.net
153 u16 proxy_port; // the proxy port, e.g. 3128
154#endif
155
156#if ENABLE_DNS
157 char *dns_forw_host;
158 bool dns_case_preserving;
159 u16 dns_forw_port;
160 float dns_timeout_factor;
161 float dns_send_interval;
162 float dns_overlap_factor;
163 int dns_max_outstanding;
164#endif
98 165
99 void init (); 166 void init ();
100 void cleanup (); 167 void cleanup ();
101 void read_config (bool need_keys);
102 void clear_config (); 168 void clear ();
103 169
104 // create a filename from string, replacing %s by the nodename 170 // create a filename from string, replacing %s by the nodename
105 // and using relative paths under confbase. 171 // and using relative paths under confbase.
106 char *config_filename (const char *name, const char *dflt); 172 char *config_filename (const char *name, const char *dflt = 0);
107 173
108 void print (); 174 void print ();
109 175
110 configuration (); 176 configuration ();
111 ~configuration (); 177 ~configuration ();
112}; 178};
113 179
180struct configuration_parser
181{
182 configuration &conf;
183
184 bool need_keys;
185 conf_node *node;
186
187 int argc;
188 char **argv;
189
190 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
191
192 void parse_file (const char *fname);
193 const char *parse_line (char *line);
194 void parse_argv ();
195};
196
114extern struct configuration conf; 197extern struct configuration conf;
115 198
116#define THISNODE ::conf.thisnode 199#define THISNODE ::conf.thisnode
117 200
118#endif 201#endif

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines