Skip to content

Commit 3d8d268

Browse files
T-Xfxlb
authored andcommitted
Add support for B.A.T.M.A.N. Advanced
This adds support for the layer 2 mesh routing protocol B.A.T.M.A.N. Advanced. "batadv" can be used to filter on batman-adv packets. It also allows later filters to look at frames inside the tunnel when both "version" and "type" are specified. Documentation for the batman-adv protocol can be found at the following locations: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/tree/Documentation/networking/batman-adv.rst https://www.open-mesh.org/ Signed-off-by: Linus Lüssing <linus.luessing@c0d3.blue>
1 parent 350244e commit 3d8d268

11 files changed

+453
-3
lines changed

Makefile.in

+2
Original file line numberDiff line numberDiff line change
@@ -134,6 +134,8 @@ PUBHDR = \
134134
HDR = $(PUBHDR) \
135135
arcnet.h \
136136
atmuni31.h \
137+
batadv_legacy_packet.h \
138+
batadv_packet.h \
137139
diag-control.h \
138140
ethertype.h \
139141
extract.h \

batadv_legacy_packet.h

+77
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,77 @@
1+
/* SPDX-License-Identifier: BSD-3 */
2+
/* Copyright (C) 2020 Linus Lüssing */
3+
4+
#ifndef _BATADV_LEGACY_PACKET_H_
5+
#define _BATADV_LEGACY_PACKET_H_
6+
7+
enum batadv_legacy_packettype {
8+
BATADV_LEGACY_IV_OGM = 0x01,
9+
BATADV_LEGACY_ICMP = 0x02,
10+
BATADV_LEGACY_UNICAST = 0x03,
11+
BATADV_LEGACY_BCAST = 0x04,
12+
BATADV_LEGACY_VIS = 0x05,
13+
BATADV_LEGACY_UNICAST_FRAG = 0x06,
14+
BATADV_LEGACY_TT_QUERY = 0x07,
15+
BATADV_LEGACY_ROAM_ADV = 0x08,
16+
BATADV_LEGACY_UNICAST_4ADDR = 0x09,
17+
BATADV_LEGACY_CODED = 0x0a,
18+
};
19+
20+
#define ETH_ALEN 6
21+
22+
struct batadv_legacy_unicast_packet {
23+
uint8_t packet_type;
24+
uint8_t version;
25+
uint8_t ttl;
26+
uint8_t ttvn;
27+
uint8_t dest[ETH_ALEN];
28+
};
29+
30+
struct batadv_legacy_unicast_4addr_packet {
31+
uint8_t packet_type;
32+
uint8_t version;
33+
uint8_t ttl;
34+
uint8_t src[ETH_ALEN];
35+
uint8_t subtype;
36+
uint8_t reserved;
37+
};
38+
39+
struct batadv_legacy_unicast_frag_packet {
40+
uint8_t packet_type;
41+
uint8_t version;
42+
uint8_t ttl;
43+
uint8_t ttvn;
44+
uint8_t dest[ETH_ALEN];
45+
uint8_t flags;
46+
uint8_t align;
47+
uint8_t orig[ETH_ALEN];
48+
uint8_t seqno[2]; /* 2-byte integral value */
49+
};
50+
51+
struct batadv_legacy_bcast_packet {
52+
uint8_t packet_type;
53+
uint8_t version;
54+
uint8_t ttl;
55+
uint8_t reserved;
56+
uint8_t seqno[4]; /* 4-byte integral value */
57+
uint8_t orig[ETH_ALEN];
58+
};
59+
60+
struct batadv_legacy_coded_packet {
61+
uint8_t packet_type;
62+
uint8_t version;
63+
uint8_t ttl;
64+
uint8_t first_ttvn;
65+
uint8_t first_source[ETH_ALEN];
66+
uint8_t first_orig_dest[ETH_ALEN];
67+
uint8_t first_crc[4]; /* 4-byte integral value */
68+
uint8_t second_ttl;
69+
uint8_t second_ttvn;
70+
uint8_t second_dest[ETH_ALEN];
71+
uint8_t second_source[ETH_ALEN];
72+
uint8_t second_orig_dest[ETH_ALEN];
73+
uint8_t second_crc[4]; /* 4-byte integral value */
74+
uint8_t coded_len[2]; /* 2-byte integral value */
75+
};
76+
77+
#endif /* _BATADV_LEGACY_PACKET_H_ */

batadv_packet.h

+78
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,78 @@
1+
/* SPDX-License-Identifier: BSD-3 */
2+
/* Copyright (C) 2020 Linus Lüssing */
3+
4+
#ifndef _BATADV_PACKET_H_
5+
#define _BATADV_PACKET_H_
6+
7+
/* For the definitive and most recent packet format definition,
8+
* see the batadv_packet.h in the Linux kernel.
9+
*/
10+
11+
enum batadv_packettype {
12+
BATADV_IV_OGM = 0x00,
13+
BATADV_BCAST = 0x01,
14+
BATADV_CODED = 0x02,
15+
BATADV_ELP = 0x03,
16+
BATADV_OGM2 = 0x04,
17+
BATADV_UNICAST = 0x40,
18+
BATADV_UNICAST_FRAG = 0x41,
19+
BATADV_UNICAST_4ADDR = 0x42,
20+
BATADV_ICMP = 0x43,
21+
BATADV_UNICAST_TVLV = 0x44,
22+
};
23+
24+
#define ETH_ALEN 6
25+
26+
struct batadv_unicast_packet {
27+
uint8_t packet_type;
28+
uint8_t version;
29+
uint8_t ttl;
30+
uint8_t ttvn;
31+
uint8_t dest[ETH_ALEN];
32+
};
33+
34+
struct batadv_unicast_4addr_packet {
35+
struct batadv_unicast_packet u;
36+
uint8_t src[ETH_ALEN];
37+
uint8_t subtype;
38+
uint8_t reserved;
39+
};
40+
41+
struct batadv_frag_packet {
42+
uint8_t packet_type;
43+
uint8_t version;
44+
uint8_t ttl;
45+
uint8_t num_pri; /* number and priority */
46+
uint8_t dest[ETH_ALEN];
47+
uint8_t orig[ETH_ALEN];
48+
uint8_t seqno[2]; /* 2-byte integral value */
49+
uint8_t total_size[2]; /* 2-byte integral value */
50+
};
51+
52+
struct batadv_bcast_packet {
53+
uint8_t packet_type;
54+
uint8_t version;
55+
uint8_t ttl;
56+
uint8_t reserved;
57+
uint8_t seqno[4]; /* 4-byte integral value */
58+
uint8_t orig[ETH_ALEN];
59+
};
60+
61+
struct batadv_coded_packet {
62+
uint8_t packet_type;
63+
uint8_t version;
64+
uint8_t ttl;
65+
uint8_t first_ttvn;
66+
uint8_t first_source[ETH_ALEN];
67+
uint8_t first_orig_dest[ETH_ALEN];
68+
uint8_t first_crc[4]; /* 4-byte integral value */
69+
uint8_t second_ttl;
70+
uint8_t second_ttvn;
71+
uint8_t second_dest[ETH_ALEN];
72+
uint8_t second_source[ETH_ALEN];
73+
uint8_t second_orig_dest[ETH_ALEN];
74+
uint8_t second_crc[4]; /* 4-byte integral value */
75+
uint8_t coded_len[2]; /* 2-byte integral value */
76+
};
77+
78+
#endif /* _BATADV_PACKET_H_ */

ethertype.h

+3
Original file line numberDiff line numberDiff line change
@@ -49,6 +49,9 @@
4949
#ifndef ETHERTYPE_TRAIL
5050
#define ETHERTYPE_TRAIL 0x1000
5151
#endif
52+
#ifndef ETHERTYPE_BATMAN
53+
#define ETHERTYPE_BATMAN 0x4305 /* B.A.T.M.A.N. Advanced */
54+
#endif
5255
#ifndef ETHERTYPE_MOPDL
5356
#define ETHERTYPE_MOPDL 0x6001
5457
#endif

gencode.c

+164
Original file line numberDiff line numberDiff line change
@@ -60,6 +60,8 @@
6060
#include "sunatmpos.h"
6161
#include "pflog.h"
6262
#include "ppp.h"
63+
#include "batadv_packet.h"
64+
#include "batadv_legacy_packet.h"
6365
#include "pcap/sll.h"
6466
#include "pcap/ipnet.h"
6567
#include "arcnet.h"
@@ -9436,6 +9438,168 @@ gen_geneve(compiler_state_t *cstate, bpf_u_int32 vni, int has_vni)
94369438
return b1;
94379439
}
94389440

9441+
static struct block *
9442+
gen_batadv_check_version(compiler_state_t *cstate, struct block *b0, bpf_u_int32 version)
9443+
{
9444+
struct block *b1;
9445+
9446+
if (version > UINT8_MAX)
9447+
bpf_error(cstate,
9448+
"batman-adv compatibility version number %u unsupported",
9449+
version);
9450+
9451+
b1 = gen_cmp(cstate, OR_LINKPL, 1, BPF_B, version);
9452+
gen_and(b0, b1);
9453+
9454+
return b1;
9455+
}
9456+
9457+
static struct block *
9458+
gen_batadv_check_type(compiler_state_t *cstate, struct block *b0,
9459+
bpf_u_int32 version, bpf_u_int32 type)
9460+
{
9461+
struct block *b1;
9462+
9463+
switch (version) {
9464+
case 14:
9465+
case 15:
9466+
if (type > UINT8_MAX)
9467+
bpf_error(cstate,
9468+
"batman-adv packet type %u unsupported for compatibility version %u",
9469+
type, version);
9470+
9471+
b1 = gen_cmp(cstate, OR_LINKPL, 0, BPF_B, type);
9472+
gen_and(b0, b1);
9473+
b0 = b1;
9474+
9475+
break;
9476+
default:
9477+
bpf_error(cstate,
9478+
"batman-adv compatibility version number %u unsupported",
9479+
version);
9480+
}
9481+
9482+
return b0;
9483+
}
9484+
9485+
9486+
static void gen_batadv_push_offset(compiler_state_t *cstate, u_int offset)
9487+
{
9488+
PUSH_LINKHDR(cstate, DLT_EN10MB, cstate->off_linkpl.is_variable,
9489+
cstate->off_linkpl.constant_part + cstate->off_nl + offset,
9490+
cstate->off_linkpl.reg);
9491+
9492+
cstate->off_linktype.constant_part += cstate->off_linkhdr.constant_part;
9493+
cstate->off_linkpl.constant_part += cstate->off_linkhdr.constant_part;
9494+
9495+
cstate->off_nl = 0;
9496+
cstate->off_nl_nosnap = 0; /* no 802.2 LLC */
9497+
}
9498+
9499+
static void
9500+
gen_batadv_offsets_v14(compiler_state_t *cstate, bpf_u_int32 type)
9501+
{
9502+
size_t offset;
9503+
9504+
switch (type) {
9505+
case BATADV_LEGACY_UNICAST: /* 0x03 */
9506+
offset = sizeof(struct batadv_legacy_unicast_packet);
9507+
break;
9508+
case BATADV_LEGACY_BCAST: /* 0x04 */
9509+
offset = sizeof(struct batadv_legacy_bcast_packet);
9510+
break;
9511+
case BATADV_LEGACY_UNICAST_FRAG: /* 0x06 */
9512+
offset = sizeof(struct batadv_legacy_unicast_frag_packet);
9513+
break;
9514+
case BATADV_LEGACY_UNICAST_4ADDR: /* 0x09 */
9515+
offset = sizeof(struct batadv_legacy_unicast_4addr_packet);
9516+
break;
9517+
case BATADV_LEGACY_CODED: /* 0x0a */
9518+
offset = sizeof(struct batadv_legacy_coded_packet);
9519+
break;
9520+
default:
9521+
offset = 0;
9522+
}
9523+
9524+
if (offset)
9525+
gen_batadv_push_offset(cstate, (u_int)offset);
9526+
}
9527+
9528+
static void
9529+
gen_batadv_offsets_v15(compiler_state_t *cstate, bpf_u_int32 type)
9530+
{
9531+
size_t offset;
9532+
9533+
switch (type) {
9534+
case BATADV_BCAST: /* 0x01 */
9535+
offset = sizeof(struct batadv_bcast_packet);
9536+
break;
9537+
case BATADV_CODED: /* 0x02 */
9538+
offset = sizeof(struct batadv_coded_packet);
9539+
break;
9540+
case BATADV_UNICAST: /* 0x40 */
9541+
offset = sizeof(struct batadv_unicast_packet);
9542+
break;
9543+
case BATADV_UNICAST_FRAG: /* 0x41 */
9544+
offset = sizeof(struct batadv_frag_packet);
9545+
break;
9546+
case BATADV_UNICAST_4ADDR: /* 0x42 */
9547+
offset = sizeof(struct batadv_unicast_4addr_packet);
9548+
break;
9549+
case BATADV_UNICAST_TVLV:
9550+
/* unsupported for now, needs variable offset to
9551+
* take tvlv_len into account
9552+
*/
9553+
/* fall through */
9554+
default:
9555+
offset = 0;
9556+
}
9557+
9558+
if (offset)
9559+
gen_batadv_push_offset(cstate, (u_int)offset);
9560+
}
9561+
9562+
static void
9563+
gen_batadv_offsets(compiler_state_t *cstate, bpf_u_int32 version, bpf_u_int32 type)
9564+
{
9565+
switch (version) {
9566+
case 14:
9567+
gen_batadv_offsets_v14(cstate, type);
9568+
break;
9569+
case 15:
9570+
gen_batadv_offsets_v15(cstate, type);
9571+
break;
9572+
default:
9573+
break;
9574+
}
9575+
}
9576+
9577+
struct block *
9578+
gen_batadv(compiler_state_t *cstate, bpf_u_int32 version, int has_version,
9579+
bpf_u_int32 type, int has_type)
9580+
{
9581+
struct block *b0;
9582+
9583+
/*
9584+
* Catch errors reported by us and routines below us, and return NULL
9585+
* on an error.
9586+
*/
9587+
if (setjmp(cstate->top_ctx))
9588+
return (NULL);
9589+
9590+
b0 = gen_linktype(cstate, ETHERTYPE_BATMAN);
9591+
9592+
if (has_version)
9593+
b0 = gen_batadv_check_version(cstate, b0, version);
9594+
9595+
if (has_type) {
9596+
b0 = gen_batadv_check_type(cstate, b0, version, type);
9597+
gen_batadv_offsets(cstate, version, type);
9598+
}
9599+
9600+
return b0;
9601+
}
9602+
94399603
/* Check that the encapsulated frame has a link layer header
94409604
* for Ethernet filters. */
94419605
static struct block *

gencode.h

+3
Original file line numberDiff line numberDiff line change
@@ -358,6 +358,9 @@ struct block *gen_pppoes(compiler_state_t *, bpf_u_int32, int);
358358

359359
struct block *gen_geneve(compiler_state_t *, bpf_u_int32, int);
360360

361+
struct block *gen_batadv(compiler_state_t *, bpf_u_int32, int,
362+
bpf_u_int32, int);
363+
361364
struct block *gen_atmfield_code(compiler_state_t *, int, bpf_u_int32,
362365
int, int);
363366
struct block *gen_atmtype_abbrev(compiler_state_t *, int);

0 commit comments

Comments
 (0)