ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
(Generate patch)

Comparing gvpe/src/conf.h (file contents):
Revision 1.28 by pcg, Wed Mar 23 17:03:58 2005 UTC vs.
Revision 1.46 by root, Fri Oct 11 07:56:07 2013 UTC

1/* 1/*
2 conf.h -- configuration database 2 conf.h -- configuration database
3 Copyright (C) 2003-2005 Marc Lehmann <gvpe@schmorp.de> 3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4 4
5 This file is part of GVPE. 5 This file is part of GVPE.
6 6
7 GVPE is free software; you can redistribute it and/or modify 7 GVPE is free software; you can redistribute it and/or modify it
8 it under the terms of the GNU General Public License as published by 8 under the terms of the GNU General Public License as published by the
9 the Free Software Foundation; either version 2 of the License, or 9 Free Software Foundation; either version 3 of the License, or (at your
10 (at your option) any later version. 10 option) any later version.
11 11
12 This program is distributed in the hope that it will be useful, 12 This program is distributed in the hope that it will be useful, but
13 but WITHOUT ANY WARRANTY; without even the implied warranty of 13 WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
15 GNU General Public License for more details. 15 Public License for more details.
16 16
17 You should have received a copy of the GNU General Public License 17 You should have received a copy of the GNU General Public License along
18 along with gvpe; if not, write to the Free Software 18 with this program; if not, see <http://www.gnu.org/licenses/>.
19 Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
20*/ 30*/
21 31
22#ifndef GVPE_CONF_H__ 32#ifndef GVPE_CONF_H__
23#define GVPE_CONF_H__ 33#define GVPE_CONF_H__
24 34
27#include <openssl/rsa.h> 37#include <openssl/rsa.h>
28 38
29#include "slog.h" 39#include "slog.h"
30#include "global.h" 40#include "global.h"
31 41
32#define DEFAULT_REKEY 3600 42#define DEFAULT_REKEY 3607 // interval between rekeys
43#define DEFAULT_RESEED 3613 // interval between rng reseeds
33#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...) 44#define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
34#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare 45#define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
35#define DEFAULT_MTU 1500 // let's ether-net 46#define DEFAULT_MTU 1500 // let's ether-net
36#define DEFAULT_MAX_RETRY 3600 // retry at least this often 47#define DEFAULT_MAX_RETRY 3600 // retry at least this often
48#define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
49#define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
37 50
38#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple 51#define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
39#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval 52#define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
40#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate 53#define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
41#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests 54#define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
42 55
43enum { 56enum
57{
44 PROT_UDPv4 = 0x01, // udp over ipv4 58 PROT_UDPv4 = 0x01, // udp over ipv4
45 PROT_IPv4 = 0x02, // generic ip protocol 59 PROT_IPv4 = 0x02, // generic ip protocol
46 PROT_TCPv4 = 0x04, // tcp over ipv4 (server) 60 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
47 PROT_ICMPv4 = 0x08, // icmp over ipv4 61 PROT_ICMPv4 = 0x08, // icmp over ipv4
48 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server) 62 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
63 PROT_ALL = 0x1f
49}; 64};
50 65
51#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4) 66#define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
52#define PROT_SLOW PROT_DNSv4 67#define PROT_SLOW PROT_DNSv4
53 68
54// select the "best" protocol of the available ones 69// select the "best" protocol of the available ones
55u8 best_protocol (u8 protset); 70u8 best_protocol (u8 protset);
56const char *strprotocol (u8 protocol); 71const char *strprotocol (u8 protocol);
57 72
58struct conf_node { 73struct conf_node
74{
59 int id; // the id of this node, a 12-bit-number 75 int id; // the id of this node, a 12-bit-number
60 76
61 RSA *rsa_key; // his public key 77 RSA *rsa_key; // his public key
62 char *nodename; // nodename, an internal nickname. 78 char *nodename; // nodename, an internal nickname.
63 char *hostname; // hostname, if known, or NULL. 79 char *hostname; // hostname, if known, or NULL.
80 char *if_up_data;
64#if ENABLE_DNS 81#if ENABLE_DNS
65 char *domain; // dns tunnel domain 82 char *domain; // dns tunnel domain
66#endif 83#endif
67 char *dns_hostname; 84 char *dns_hostname;
68 u16 dns_port; 85 u16 dns_port;
69 86
70 u8 protocols; // protocols this host can send & receive 87 u8 protocols; // protocols this host can send & receive
71 u16 udp_port, tcp_port; // the port to bind to 88 u16 udp_port, tcp_port; // the port to bind to
72 int max_retry; 89 int max_retry;
90 double max_ttl; // packets expire after this many seconds
91 int max_queue; // maixmum send queue length
73 92
74 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode; 93 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
75 bool compress; 94 bool compress;
76 bool inherit_tos; // inherit TOS in packets send to this destination 95 bool inherit_tos; // inherit TOS in packets send to this destination
96 bool low_power; // node is a low-power node (reduce cpu usage, wakeups and assume higher latency)
97
98 vector<const char *> allow_direct;
99 vector<const char *> deny_direct;
77 100
78 u32 routerprio; 101 u32 routerprio;
79 102
103 u8 connectable_protocols () const
104 {
105 u8 protocols = this->protocols;
106
107 // mask out endpoints we can't connect to
108 if (!udp_port) protocols &= ~PROT_UDPv4;
109 if (!tcp_port) protocols &= ~PROT_TCPv4;
110 if (!dns_port) protocols &= ~PROT_DNSv4;
111
112 return protocols;
113 }
114
115 bool may_direct (struct conf_node *other);
116 void finalise ();
117
80 void print (); 118 void print ();
81 119
82 ~conf_node (); 120 ~conf_node ();
83}; 121};
84 122
85struct configuration { 123struct configuration
124{
86 typedef vector<conf_node *> node_vector; 125 typedef vector<conf_node *> node_vector;
87 node_vector nodes; 126 node_vector nodes;
88 conf_node default_node; 127 conf_node default_node;
89 conf_node *thisnode; 128 conf_node *thisnode;
129 char serial[SERIAL_SIZE];
130 char *seed_dev; // the randomd evice to use for seeding
131 double reseed; // the interval between additional seeds
90 int mtu; // the mtu used for outgoing tunnel packets 132 int mtu; // the mtu used for outgoing tunnel packets
133 int nfmark; // the SO_MARK // netfilter mark // fwmark
91 double rekey; // rekey interval 134 double rekey; // rekey interval
92 double keepalive; // keepalive probes interval 135 double keepalive; // keepalive probes interval
93 char *ifname; // the interface name (tap0 ...) 136 char *ifname; // the interface name (tap0 ...)
94 bool ifpersist; // should the interface be persistent 137 bool ifpersist; // should the interface be persistent
95 char *prikeyfile; 138 char *prikeyfile;
96 RSA *rsa_key; // our private rsa key 139 RSA *rsa_key; // our private rsa key
97 loglevel llevel; 140 loglevel llevel;
98 u8 ip_proto; // the ip protocol to use 141 u8 ip_proto; // the ip protocol to use
142 uid_t change_uid; // the uid of the user to switch to, or 0
143 gid_t change_gid; // the gid of the user to switch to, or 0
144 char *change_root;// the path to chroot to, "/" == anonymous
99#if ENABLE_ICMP 145#if ENABLE_ICMP
100 u8 icmp_type; // the icmp type for the icmp-protocol 146 u8 icmp_type; // the icmp type for the icmp-protocol
101#endif 147#endif
102 148
103 char *script_if_up; 149 char *script_if_up;
104 char *script_node_up; 150 char *script_node_up;
151 char *script_node_change;
105 char *script_node_down; 152 char *script_node_down;
106 char *pidfilename; 153 char *pidfilename;
107 154
108#if ENABLE_HTTP_PROXY 155#if ENABLE_HTTP_PROXY
109 char *proxy_auth; // login:password 156 char *proxy_auth; // login:password
111 u16 proxy_port; // the proxy port, e.g. 3128 158 u16 proxy_port; // the proxy port, e.g. 3128
112#endif 159#endif
113 160
114#if ENABLE_DNS 161#if ENABLE_DNS
115 char *dns_forw_host; 162 char *dns_forw_host;
163 bool dns_case_preserving;
116 u16 dns_forw_port; 164 u16 dns_forw_port;
117 float dns_timeout_factor; 165 float dns_timeout_factor;
118 float dns_send_interval; 166 float dns_send_interval;
119 float dns_overlap_factor; 167 float dns_overlap_factor;
120 int dns_max_outstanding; 168 int dns_max_outstanding;
121#endif 169#endif
122 170
123 void init (); 171 void init ();
124 void cleanup (); 172 void cleanup ();
125 void read_config (bool need_keys);
126 void clear_config (); 173 void clear ();
174
175 conf_node *find_node (const char *name);
127 176
128 // create a filename from string, replacing %s by the nodename 177 // create a filename from string, replacing %s by the nodename
129 // and using relative paths under confbase. 178 // and using relative paths under confbase.
130 char *config_filename (const char *name, const char *dflt); 179 char *config_filename (const char *name, const char *dflt = 0);
131 180
132 void print (); 181 void print ();
133 182
134 configuration (); 183 configuration ();
135 ~configuration (); 184 ~configuration ();
136}; 185};
137 186
187struct configuration_parser
188{
189 configuration &conf;
190
191 bool need_keys;
192 conf_node *node;
193
194 int argc;
195 char **argv;
196
197 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
198
199 void parse_file (const char *fname);
200 const char *parse_line (char *line);
201 void parse_argv ();
202};
203
138extern struct configuration conf; 204extern struct configuration conf;
139 205
140#define THISNODE ::conf.thisnode 206#define THISNODE ::conf.thisnode
141 207
142#endif 208#endif

Diff Legend

Removed lines
+ Added lines
< Changed lines
> Changed lines