ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.22 by pcg, Tue Mar 1 04:38:21 2005 UTC vs.
Revision 1.38 by root, Sun Mar 6 19:40:28 2011 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2004 Marc Lehmann <pcg@goof.com> 3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4 4
5 This file is part of GVPE.
6
5 This program is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
6 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
7 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
8 (at your option) any later version. 10 option) any later version.
9 11
10 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
11 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
13 GNU General Public License for more details. 15 Public License for more details.
14 16
15 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
16 along with this program; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
17 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
18*/ 30*/
19 31
20#ifndef VPE_CONF_H__ 32#ifndef GVPE_CONF_H__
21#define VPE_CONF_H__ 33#define GVPE_CONF_H__
22 34
23#include <vector> 35#include <vector>
24 36
25#include <openssl/rsa.h> 37#include <openssl/rsa.h>
26 38
27#include "slog.h" 39#include "slog.h"
28#include "global.h" 40#include "global.h"
29 41
30#define DEFAULT_REKEY 3600 42#define DEFAULT_REKEY 3600
31#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 43#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
32#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 44#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
33#define DEFAULT_MTU 1500 // let's ether-net 45#define DEFAULT_MTU 1500 // let's ether-net
34#define DEFAULT_MAX_RETRY 28800 // retry at least this often 46#define DEFAULT_MAX_RETRY 3600 // retry at least this often
47#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
48#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
49
50#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
51#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
52#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
53#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
35 54
36enum { 55enum
56{
37 PROT_UDPv4 = 0x01, // udp over ipv4 57 PROT_UDPv4 = 0x01, // udp over ipv4
38 PROT_IPv4 = 0x02, // generic ip protocol 58 PROT_IPv4 = 0x02, // generic ip protocol
39 PROT_TCPv4 = 0x04, // tcp over ipv4 (server) 59 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
40 PROT_ICMPv4 = 0x08, // icmp over ipv4 60 PROT_ICMPv4 = 0x08, // icmp over ipv4
41 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server) 61 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
42}; 62};
43 63
64#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
65#define PROT_SLOW PROT_DNSv4
66
44// select the "best" protocol of the available ones 67// select the "best" protocol of the available ones
45u8 best_protocol (u8 protset); 68u8 best_protocol (u8 protset);
46const char *strprotocol (u8 protocol); 69const char *strprotocol (u8 protocol);
47 70
48struct conf_node { 71struct conf_node
72{
49 int id; // the id of this node, a 12-bit-number 73 int id; // the id of this node, a 12-bit-number
50 74
51 RSA *rsa_key; // his public key 75 RSA *rsa_key; // his public key
52 char *nodename; // nodename, an internal nickname. 76 char *nodename; // nodename, an internal nickname.
53 char *hostname; // hostname, if known, or NULL. 77 char *hostname; // hostname, if known, or NULL.
78 char *if_up_data;
54#if ENABLE_DNS 79#if ENABLE_DNS
55 char *domain; // dns tunnel domain 80 char *domain; // dns tunnel domain
81#endif
82 char *dns_hostname;
56 u16 dns_port; 83 u16 dns_port;
57#endif
58 84
59 u8 protocols; // protocols this host can send & receive 85 u8 protocols; // protocols this host can send & receive
60 u16 udp_port, tcp_port; // the port to bind to 86 u16 udp_port, tcp_port; // the port to bind to
61 int max_retry; 87 int max_retry;
88 double max_ttl; // packets expire after this many seconds
89 int max_queue; // maixmum send queue length
62 90
63 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 91 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
64 bool compress; 92 bool compress;
65 bool inherit_tos; // inherit TOS in packets send to this destination 93 bool inherit_tos; // inherit TOS in packets send to this destination
66 94
95 vector<const char *> allow_direct;
96 vector<const char *> deny_direct;
97
67 u32 routerprio; 98 u32 routerprio;
99
100 u8 connectable_protocols () const
101 {
102 u8 protocols = this->protocols;
103
104 // mask out endpoints we can't connect to
105 if (!udp_port) protocols &= ~PROT_UDPv4;
106 if (!tcp_port) protocols &= ~PROT_TCPv4;
107 if (!dns_port) protocols &= ~PROT_DNSv4;
108
109 return protocols;
110 }
111
112 bool may_direct (struct conf_node *other);
113 void finalise ();
68 114
69 void print (); 115 void print ();
70 116
71 ~conf_node (); 117 ~conf_node ();
72}; 118};
73 119
74struct configuration { 120struct configuration
121{
75 typedef vector<conf_node *> node_vector; 122 typedef vector<conf_node *> node_vector;
76 node_vector nodes; 123 node_vector nodes;
77 conf_node default_node; 124 conf_node default_node;
78 conf_node *thisnode; 125 conf_node *thisnode;
79 int mtu; // the mtu used for outgoing tunnel packets 126 int mtu; // the mtu used for outgoing tunnel packets
127 int nfmark; // the SO_MARK // netfilter mark // fwmark
80 double rekey; // rekey interval 128 double rekey; // rekey interval
81 double keepalive; // keepalive probes interval 129 double keepalive; // keepalive probes interval
82 char *ifname; // the interface name (tap0 ...) 130 char *ifname; // the interface name (tap0 ...)
83 bool ifpersist; // should the interface be persistent 131 bool ifpersist; // should the interface be persistent
84 char *prikeyfile; 132 char *prikeyfile;
89 u8 icmp_type; // the icmp type for the icmp-protocol 137 u8 icmp_type; // the icmp type for the icmp-protocol
90#endif 138#endif
91 139
92 char *script_if_up; 140 char *script_if_up;
93 char *script_node_up; 141 char *script_node_up;
142 char *script_node_change;
94 char *script_node_down; 143 char *script_node_down;
95 char *pidfilename; 144 char *pidfilename;
96 145
97#if ENABLE_HTTP_PROXY 146#if ENABLE_HTTP_PROXY
98 char *proxy_auth; // login:password 147 char *proxy_auth; // login:password
99 char *proxy_host; // the proxy hostname, e.g. proxy1.example.net 148 char *proxy_host; // the proxy hostname, e.g. proxy1.example.net
100 u16 proxy_port; // the proxy port, e.g. 3128 149 u16 proxy_port; // the proxy port, e.g. 3128
101#endif 150#endif
151
102#if ENABLE_DNS 152#if ENABLE_DNS
103 char *dns_forw_host; 153 char *dns_forw_host;
154 bool dns_case_preserving;
104 u16 dns_forw_port; 155 u16 dns_forw_port;
156 float dns_timeout_factor;
157 float dns_send_interval;
158 float dns_overlap_factor;
159 int dns_max_outstanding;
105#endif 160#endif
106 161
107 void init (); 162 void init ();
108 void cleanup (); 163 void cleanup ();
109 void read_config (bool need_keys);
110 void clear_config (); 164 void clear ();
111 165
112 // create a filename from string, replacing %s by the nodename 166 // create a filename from string, replacing %s by the nodename
113 // and using relative paths under confbase. 167 // and using relative paths under confbase.
114 char *config_filename (const char *name, const char *dflt); 168 char *config_filename (const char *name, const char *dflt = 0);
115 169
116 void print (); 170 void print ();
117 171
118 configuration (); 172 configuration ();
119 ~configuration (); 173 ~configuration ();
174};
175
176struct configuration_parser
177{
178 configuration &conf;
179
180 bool need_keys;
181 conf_node *node;
182
183 int argc;
184 char **argv;
185
186 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
187
188 void parse_file (const char *fname);
189 const char *parse_line (char *line);
190 void parse_argv ();
120}; 191};
121 192
122extern struct configuration conf; 193extern struct configuration conf;
123 194
124#define THISNODE ::conf.thisnode 195#define THISNODE ::conf.thisnode

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines