ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/gvpe/src/conf.h
Revision: 1.47
Committed: Sun Feb 2 23:58:32 2014 UTC (10 years, 3 months ago) by root
Content type: text/plain
Branch: MAIN
CVS Tags: rel-3_0, HEAD
Changes since 1.46: +2 -0 lines
Log Message:
*** empty log message ***

File Contents

# Content
1 /*
2 conf.h -- configuration database
3 Copyright (C) 2003-2008 Marc Lehmann <gvpe@schmorp.de>
4
5 This file is part of GVPE.
6
7 GVPE is free software; you can redistribute it and/or modify it
8 under the terms of the GNU General Public License as published by the
9 Free Software Foundation; either version 3 of the License, or (at your
10 option) any later version.
11
12 This program is distributed in the hope that it will be useful, but
13 WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
15 Public License for more details.
16
17 You should have received a copy of the GNU General Public License along
18 with this program; if not, see <http://www.gnu.org/licenses/>.
19
20 Additional permission under GNU GPL version 3 section 7
21
22 If you modify this Program, or any covered work, by linking or
23 combining it with the OpenSSL project's OpenSSL library (or a modified
24 version of that library), containing parts covered by the terms of the
25 OpenSSL or SSLeay licenses, the licensors of this Program grant you
26 additional permission to convey the resulting work. Corresponding
27 Source for a non-source form of such a combination shall include the
28 source code for the parts of OpenSSL used as well as that of the
29 covered work.
30 */
31
32 #ifndef GVPE_CONF_H__
33 #define GVPE_CONF_H__
34
35 #include <vector>
36
37 #include <sys/types.h>
38
39 #include <openssl/rsa.h>
40
41 #include "slog.h"
42 #include "global.h"
43
44 #define DEFAULT_REKEY 3607 // interval between rekeys
45 #define DEFAULT_RESEED 3613 // interval between rng reseeds
46 #define DEFAULT_KEEPALIVE 60 // one keepalive/minute (it's just 8 bytes...)
47 #define DEFAULT_UDPPORT 655 // same as tinc, conflicts would be rare
48 #define DEFAULT_MTU 1500 // let's ether-net
49 #define DEFAULT_MAX_RETRY 3600 // retry at least this often
50 #define DEFAULT_MAX_TTL 60 // packets expire after this many seconds
51 #define DEFAULT_MAX_QUEUE 512 // never queue more than this many packets
52
53 #define DEFAULT_DNS_TIMEOUT_FACTOR 8.F // initial retry timeout multiple
54 #define DEFAULT_DNS_SEND_INTERVAL .01F // minimum send interval
55 #define DEFAULT_DNS_OVERLAP_FACTOR .5F // RTT * LATENCY_FACTOR == sending rate
56 #define DEFAULT_DNS_MAX_OUTSTANDING 100 // max. number of outstanding requests
57
58 enum
59 {
60 PROT_UDPv4 = 0x01, // udp over ipv4
61 PROT_IPv4 = 0x02, // generic ip protocol
62 PROT_TCPv4 = 0x04, // tcp over ipv4 (server)
63 PROT_ICMPv4 = 0x08, // icmp over ipv4
64 PROT_DNSv4 = 0x10, // dns tunnel ipv4 (server)
65 PROT_ALL = 0x1f
66 };
67
68 #define PROT_RELIABLE (PROT_TCPv4 | PROT_DNSv4)
69 #define PROT_SLOW PROT_DNSv4
70
71 // select the "best" protocol of the available ones
72 u8 best_protocol (u8 protset);
73 const char *strprotocol (u8 protocol);
74
75 struct conf_node
76 {
77 int id; // the id of this node, a 12-bit-number
78
79 RSA *rsa_key; // his public key
80 char *nodename; // nodename, an internal nickname.
81 char *hostname; // hostname, if known, or NULL.
82 char *if_up_data;
83 #if ENABLE_DNS
84 char *domain; // dns tunnel domain
85 #endif
86 char *dns_hostname;
87 u16 dns_port;
88
89 u8 protocols; // protocols this host can send & receive
90 u16 udp_port, tcp_port; // the port to bind to
91 int max_retry;
92 double max_ttl; // packets expire after this many seconds
93 int max_queue; // maixmum send queue length
94
95 enum connectmode { C_ONDEMAND, C_NEVER, C_ALWAYS, C_DISABLED } connectmode;
96 bool compress;
97 bool inherit_tos; // inherit TOS in packets send to this destination
98 bool low_power; // node is a low-power node (reduce cpu usage, wakeups and assume higher latency)
99
100 vector<const char *> allow_direct;
101 vector<const char *> deny_direct;
102
103 u32 routerprio;
104
105 u8 connectable_protocols () const
106 {
107 u8 protocols = this->protocols;
108
109 // mask out endpoints we can't connect to
110 if (!udp_port) protocols &= ~PROT_UDPv4;
111 if (!tcp_port) protocols &= ~PROT_TCPv4;
112 if (!dns_port) protocols &= ~PROT_DNSv4;
113
114 return protocols;
115 }
116
117 bool may_direct (struct conf_node *other);
118 void finalise ();
119
120 void print ();
121
122 ~conf_node ();
123 };
124
125 struct configuration
126 {
127 typedef vector<conf_node *> node_vector;
128 node_vector nodes;
129 conf_node default_node;
130 conf_node *thisnode;
131 char serial[SERIAL_SIZE];
132 char *seed_dev; // the randomd evice to use for seeding
133 double reseed; // the interval between additional seeds
134 int mtu; // the mtu used for outgoing tunnel packets
135 int nfmark; // the SO_MARK // netfilter mark // fwmark
136 double rekey; // rekey interval
137 double keepalive; // keepalive probes interval
138 char *ifname; // the interface name (tap0 ...)
139 bool ifpersist; // should the interface be persistent
140 char *prikeyfile;
141 RSA *rsa_key; // our private rsa key
142 loglevel llevel;
143 u8 ip_proto; // the ip protocol to use
144 uid_t change_uid; // the uid of the user to switch to, or 0
145 gid_t change_gid; // the gid of the user to switch to, or 0
146 char *change_root;// the path to chroot to, "/" == anonymous
147 #if ENABLE_ICMP
148 u8 icmp_type; // the icmp type for the icmp-protocol
149 #endif
150
151 char *script_if_up;
152 char *script_node_up;
153 char *script_node_change;
154 char *script_node_down;
155 char *pidfilename;
156
157 #if ENABLE_HTTP_PROXY
158 char *proxy_auth; // login:password
159 char *proxy_host; // the proxy hostname, e.g. proxy1.example.net
160 u16 proxy_port; // the proxy port, e.g. 3128
161 #endif
162
163 #if ENABLE_DNS
164 char *dns_forw_host;
165 bool dns_case_preserving;
166 u16 dns_forw_port;
167 float dns_timeout_factor;
168 float dns_send_interval;
169 float dns_overlap_factor;
170 int dns_max_outstanding;
171 #endif
172
173 void init ();
174 void cleanup ();
175 void clear ();
176
177 conf_node *find_node (const char *name);
178
179 // create a filename from string, replacing %s by the nodename
180 // and using relative paths under confbase.
181 char *config_filename (const char *name, const char *dflt = 0);
182
183 void print ();
184
185 configuration ();
186 ~configuration ();
187 };
188
189 struct configuration_parser
190 {
191 configuration &conf;
192
193 bool need_keys;
194 conf_node *node;
195
196 int argc;
197 char **argv;
198
199 configuration_parser (configuration &conf, bool need_keys, int argc, char **argv);
200
201 void parse_file (const char *fname);
202 const char *parse_line (char *line);
203 void parse_argv ();
204 };
205
206 extern struct configuration conf;
207
208 #define THISNODE ::conf.thisnode
209
210 #endif
211