ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.33 by pcg, Thu Aug 7 16:34:21 2008 UTC vs.
Revision 1.47 by root, Sun Feb 2 23:58:32 2014 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2005 Marc Lehmann <gvpe@schmorp.de> 3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4 4
5 This file is part of GVPE. 5 This file is part of GVPE.
6 6
7 GVPE is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
8 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
9 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
10 (at your option) any later version. 10 option) any later version.
11 11
12 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
13 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
15 GNU General Public License for more details. 15 Public License for more details.
16 16
17 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
18 along with gvpe; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
19 Foundation, Inc. 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
20*/ 30*/
21 31
22#ifndef GVPE_CONF_H__ 32#ifndef GVPE_CONF_H__
23#define GVPE_CONF_H__ 33#define GVPE_CONF_H__
24 34
25#include <vector> 35#include <vector>
26 36
37#include <sys/types.h>
38
27#include <openssl/rsa.h> 39#include <openssl/rsa.h>
28 40
29#include "slog.h" 41#include "slog.h"
30#include "global.h" 42#include "global.h"
31 43
32#define DEFAULT_REKEY 3600 44#define DEFAULT_REKEY 3607 // interval between rekeys
45#define DEFAULT_RESEED 3613 // interval between rng reseeds
33#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 46#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
34#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 47#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
35#define DEFAULT_MTU 1500 // let's ether-net 48#define DEFAULT_MTU 1500 // let's ether-net
36#define DEFAULT_MAX_RETRY 3600 // retry at least this often 49#define DEFAULT_MAX_RETRY 3600 // retry at least this often
37#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds 50#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
38#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets 51#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
39 52
40#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple 53#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
41#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval 54#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
42#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate 55#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
43#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests 56#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
47 PROT_UDPv4 = 0x01, // udp over ipv4 60 PROT_UDPv4 = 0x01, // udp over ipv4
48 PROT_IPv4 = 0x02, // generic ip protocol 61 PROT_IPv4 = 0x02, // generic ip protocol
49 PROT_TCPv4 = 0x04, // tcp over ipv4 (server) 62 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
50 PROT_ICMPv4 = 0x08, // icmp over ipv4 63 PROT_ICMPv4 = 0x08, // icmp over ipv4
51 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server) 64 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
65 PROT_ALL = 0x1f
52}; 66};
53 67
54#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4) 68#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
55#define PROT_SLOW PROT_DNSv4 69#define PROT_SLOW PROT_DNSv4
56 70
79 int max_queue; // maixmum send queue length 93 int max_queue; // maixmum send queue length
80 94
81 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 95 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
82 bool compress; 96 bool compress;
83 bool inherit_tos; // inherit TOS in packets send to this destination 97 bool inherit_tos; // inherit TOS in packets send to this destination
98 bool low_power; // node is a low-power node (reduce cpu usage, wakeups and assume higher latency)
84 99
85 vector<const char *> allow_direct; 100 vector<const char *> allow_direct;
86 vector<const char *> deny_direct; 101 vector<const char *> deny_direct;
87 102
88 u32 routerprio; 103 u32 routerprio;
89 104
105 u8 connectable_protocols () const
106 {
107 u8 protocols = this->protocols;
108
109 // mask out endpoints we can't connect to
110 if (!udp_port) protocols &= ~PROT_UDPv4;
111 if (!tcp_port) protocols &= ~PROT_TCPv4;
112 if (!dns_port) protocols &= ~PROT_DNSv4;
113
114 return protocols;
115 }
116
90 bool can_direct (struct conf_node *other); 117 bool may_direct (struct conf_node *other);
118 void finalise ();
91 119
92 void print (); 120 void print ();
93 121
94 ~conf_node (); 122 ~conf_node ();
95}; 123};
98{ 126{
99 typedef vector<conf_node *> node_vector; 127 typedef vector<conf_node *> node_vector;
100 node_vector nodes; 128 node_vector nodes;
101 conf_node default_node; 129 conf_node default_node;
102 conf_node *thisnode; 130 conf_node *thisnode;
131 char serial[SERIAL_SIZE];
132 char *seed_dev; // the randomd evice to use for seeding
133 double reseed; // the interval between additional seeds
103 int mtu; // the mtu used for outgoing tunnel packets 134 int mtu; // the mtu used for outgoing tunnel packets
135 int nfmark; // the SO_MARK // netfilter mark // fwmark
104 double rekey; // rekey interval 136 double rekey; // rekey interval
105 double keepalive; // keepalive probes interval 137 double keepalive; // keepalive probes interval
106 char *ifname; // the interface name (tap0 ...) 138 char *ifname; // the interface name (tap0 ...)
107 bool ifpersist; // should the interface be persistent 139 bool ifpersist; // should the interface be persistent
108 char *prikeyfile; 140 char *prikeyfile;
109 RSA *rsa_key; // our private rsa key 141 RSA *rsa_key; // our private rsa key
110 loglevel llevel; 142 loglevel llevel;
111 u8 ip_proto; // the ip protocol to use 143 u8 ip_proto; // the ip protocol to use
144 uid_t change_uid; // the uid of the user to switch to, or 0
145 gid_t change_gid; // the gid of the user to switch to, or 0
146 char *change_root;// the path to chroot to, "/" == anonymous
112#if ENABLE_ICMP 147#if ENABLE_ICMP
113 u8 icmp_type; // the icmp type for the icmp-protocol 148 u8 icmp_type; // the icmp type for the icmp-protocol
114#endif 149#endif
115 150
116 char *script_if_up; 151 char *script_if_up;
117 char *script_node_up; 152 char *script_node_up;
153 char *script_node_change;
118 char *script_node_down; 154 char *script_node_down;
119 char *pidfilename; 155 char *pidfilename;
120 156
121#if ENABLE_HTTP_PROXY 157#if ENABLE_HTTP_PROXY
122 char *proxy_auth; // login:password 158 char *proxy_auth; // login:password
124 u16 proxy_port; // the proxy port, e.g. 3128 160 u16 proxy_port; // the proxy port, e.g. 3128
125#endif 161#endif
126 162
127#if ENABLE_DNS 163#if ENABLE_DNS
128 char *dns_forw_host; 164 char *dns_forw_host;
165 bool dns_case_preserving;
129 u16 dns_forw_port; 166 u16 dns_forw_port;
130 float dns_timeout_factor; 167 float dns_timeout_factor;
131 float dns_send_interval; 168 float dns_send_interval;
132 float dns_overlap_factor; 169 float dns_overlap_factor;
133 int dns_max_outstanding; 170 int dns_max_outstanding;
135 172
136 void init (); 173 void init ();
137 void cleanup (); 174 void cleanup ();
138 void clear (); 175 void clear ();
139 176
177 conf_node *find_node (const char *name);
178
140 // create a filename from string, replacing %s by the nodename 179 // create a filename from string, replacing %s by the nodename
141 // and using relative paths under confbase. 180 // and using relative paths under confbase.
142 char *config_filename (const char *name, const char *dflt); 181 char *config_filename (const char *name, const char *dflt = 0);
143 182
144 void print (); 183 void print ();
145 184
146 configuration (); 185 configuration ();
147 ~configuration (); 186 ~configuration ();
157 int argc; 196 int argc;
158 char **argv; 197 char **argv;
159 198
160 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv); 199 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
161 200
201 void parse_file (const char *fname);
162 const char *parse_line (char *line); 202 const char *parse_line (char *line);
163 void parse_argv (); 203 void parse_argv ();
164}; 204};
165 205
166extern struct configuration conf; 206extern struct configuration conf;

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines