1 /* -*- Mode: c; tab-width: 8; indent-tabs-mode: 1; c-basic-offset: 8; -*- */
3 * Copyright (c) 1994, 1995, 1996, 1997, 1998
4 * The Regents of the University of California. All rights reserved.
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
11 * 2. Redistributions in binary form must reproduce the above copyright
12 * notice, this list of conditions and the following disclaimer in the
13 * documentation and/or other materials provided with the distribution.
14 * 3. All advertising materials mentioning features or use of this software
15 * must display the following acknowledgement:
16 * This product includes software developed by the Computer Systems
17 * Engineering Group at Lawrence Berkeley Laboratory.
18 * 4. Neither the name of the University nor of the Laboratory may be used
19 * to endorse or promote products derived from this software without
20 * specific prior written permission.
22 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
23 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
24 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
25 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
26 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
27 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
28 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
29 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
30 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
31 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
36 static const char rcsid
[] _U_
=
37 "@(#) $Header: /tcpdump/master/libpcap/inet.c,v 1.75.2.2 2008-04-17 19:10:04 guy Exp $ (LBL)";
45 #include <pcap-stdinc.h>
48 #include <sys/param.h>
52 #include <sys/ioctl.h>
53 #include <sys/socket.h>
54 #ifdef HAVE_SYS_SOCKIO_H
55 #include <sys/sockio.h>
58 struct mbuf
; /* Squelch compiler warnings on some platforms for */
59 struct rtentry
; /* declarations in <net/if.h> */
61 #include <netinet/in.h>
70 #if !defined(WIN32) && !defined(__BORLANDC__)
72 #endif /* !WIN32 && !__BORLANDC__ */
76 #define INT_MAX 2147483647
81 #ifdef HAVE_OS_PROTO_H
85 /* Not all systems have IFF_LOOPBACK */
87 #define ISLOOPBACK(name, flags) ((flags) & IFF_LOOPBACK)
89 #define ISLOOPBACK(name, flags) ((name)[0] == 'l' && (name)[1] == 'o' && \
90 (isdigit((unsigned char)((name)[2])) || (name)[2] == '\0'))
94 dup_sockaddr(struct sockaddr
*sa
, size_t sa_length
)
96 struct sockaddr
*newsa
;
98 if ((newsa
= malloc(sa_length
)) == NULL
)
100 return (memcpy(newsa
, sa
, sa_length
));
104 get_instance(const char *name
)
106 const char *cp
, *endcp
;
109 if (strcmp(name
, "any") == 0) {
111 * Give the "any" device an artificially high instance
112 * number, so it shows up after all other non-loopback
118 endcp
= name
+ strlen(name
);
119 for (cp
= name
; cp
< endcp
&& !isdigit((unsigned char)*cp
); ++cp
)
122 if (isdigit((unsigned char)*cp
))
130 add_or_find_if(pcap_if_t
**curdev_ret
, pcap_if_t
**alldevs
, const char *name
,
131 u_int flags
, const char *description
, char *errbuf
)
134 pcap_if_t
*curdev
, *prevdev
, *nextdev
;
138 * Is there already an entry in the list for this interface?
140 for (curdev
= *alldevs
; curdev
!= NULL
; curdev
= curdev
->next
) {
141 if (strcmp(name
, curdev
->name
) == 0)
142 break; /* yes, we found it */
145 if (curdev
== NULL
) {
147 * No, we didn't find it.
149 * Can we open this interface for live capture?
151 * We do this check so that interfaces that are
152 * supplied by the interface enumeration mechanism
153 * we're using but that don't support packet capture
154 * aren't included in the list. Loopback interfaces
155 * on Solaris are an example of this; we don't just
156 * omit loopback interfaces on all platforms because
157 * you *can* capture on loopback interfaces on some
160 * On OS X, we don't do this check if the device
161 * name begins with "wlt"; at least some versions
162 * of OS X offer monitor mode capturing by having
163 * a separate "monitor mode" device for each wireless
164 * adapter, rather than by implementing the ioctls
165 * that {Free,Net,Open,DragonFly}BSD provide.
166 * Opening that device puts the adapter into monitor
167 * mode, which, at least for some adapters, causes
168 * them to deassociate from the network with which
169 * they're associated.
171 * Instead, we try to open the corresponding "en"
172 * device (so that we don't end up with, for users
173 * without sufficient privilege to open capture
174 * devices, a list of adapters that only includes
178 if (strncmp(name
, "wlt", 3) == 0) {
183 * Try to allocate a buffer for the "en"
186 en_name_len
= strlen(name
) - 1;
187 en_name
= malloc(en_name_len
+ 1);
188 if (en_name
== NULL
) {
189 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
190 "malloc: %s", pcap_strerror(errno
));
193 strcpy(en_name
, "en");
194 strcat(en_name
, name
+ 3);
195 p
= pcap_open_live(en_name
, 68, 0, 0, errbuf
);
199 p
= pcap_open_live(name
, 68, 0, 0, errbuf
);
202 * No. Don't bother including it.
203 * Don't treat this as an error, though.
211 * Yes, we can open it.
212 * Allocate a new entry.
214 curdev
= malloc(sizeof(pcap_if_t
));
215 if (curdev
== NULL
) {
216 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
217 "malloc: %s", pcap_strerror(errno
));
225 curdev
->name
= strdup(name
);
226 if (curdev
->name
== NULL
) {
227 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
228 "malloc: %s", pcap_strerror(errno
));
232 if (description
!= NULL
) {
234 * We have a description for this interface.
236 curdev
->description
= strdup(description
);
237 if (curdev
->description
== NULL
) {
238 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
239 "malloc: %s", pcap_strerror(errno
));
248 curdev
->description
= NULL
;
250 curdev
->addresses
= NULL
; /* list starts out as empty */
252 if (ISLOOPBACK(name
, flags
))
253 curdev
->flags
|= PCAP_IF_LOOPBACK
;
256 * Add it to the list, in the appropriate location.
257 * First, get the instance number of this interface.
259 this_instance
= get_instance(name
);
262 * Now look for the last interface with an instance number
263 * less than or equal to the new interface's instance
264 * number - except that non-loopback interfaces are
265 * arbitrarily treated as having interface numbers less
266 * than those of loopback interfaces, so the loopback
267 * interfaces are put at the end of the list.
269 * We start with "prevdev" being NULL, meaning we're before
270 * the first element in the list.
275 * Get the interface after this one.
277 if (prevdev
== NULL
) {
279 * The next element is the first element.
283 nextdev
= prevdev
->next
;
286 * Are we at the end of the list?
288 if (nextdev
== NULL
) {
290 * Yes - we have to put the new entry
297 * Is the new interface a non-loopback interface
298 * and the next interface a loopback interface?
300 if (!(curdev
->flags
& PCAP_IF_LOOPBACK
) &&
301 (nextdev
->flags
& PCAP_IF_LOOPBACK
)) {
303 * Yes, we should put the new entry
304 * before "nextdev", i.e. after "prevdev".
310 * Is the new interface's instance number less
311 * than the next interface's instance number,
312 * and is it the case that the new interface is a
313 * non-loopback interface or the next interface is
314 * a loopback interface?
316 * (The goal of both loopback tests is to make
317 * sure that we never put a loopback interface
318 * before any non-loopback interface and that we
319 * always put a non-loopback interface before all
320 * loopback interfaces.)
322 if (this_instance
< get_instance(nextdev
->name
) &&
323 (!(curdev
->flags
& PCAP_IF_LOOPBACK
) ||
324 (nextdev
->flags
& PCAP_IF_LOOPBACK
))) {
326 * Yes - we should put the new entry
327 * before "nextdev", i.e. after "prevdev".
336 * Insert before "nextdev".
338 curdev
->next
= nextdev
;
341 * Insert after "prevdev" - unless "prevdev" is null,
342 * in which case this is the first interface.
344 if (prevdev
== NULL
) {
346 * This is the first interface. Pass back a
347 * pointer to it, and put "curdev" before
352 prevdev
->next
= curdev
;
355 *curdev_ret
= curdev
;
360 * XXX - on FreeBSDs that support it, should it get the sysctl named
361 * "dev.{adapter family name}.{adapter unit}.%desc" to get a description
362 * of the adapter? Note that "dev.an.0.%desc" is "Aironet PC4500/PC4800"
363 * with my Cisco 350 card, so the name isn't entirely descriptive. The
364 * "dev.an.0.%pnpinfo" has a better description, although one might argue
365 * that the problem is really a driver bug - if it can find out that it's
366 * a Cisco 340 or 350, rather than an old Aironet card, it should use
367 * that in the description.
369 * Do NetBSD, DragonflyBSD, or OpenBSD support this as well?
370 * Do any other UN*Xes support getting a description?
373 add_addr_to_iflist(pcap_if_t
**alldevs
, const char *name
, u_int flags
,
374 struct sockaddr
*addr
, size_t addr_size
,
375 struct sockaddr
*netmask
, size_t netmask_size
,
376 struct sockaddr
*broadaddr
, size_t broadaddr_size
,
377 struct sockaddr
*dstaddr
, size_t dstaddr_size
,
381 char *description
= NULL
;
382 pcap_addr_t
*curaddr
, *prevaddr
, *nextaddr
;
384 struct ifreq ifrdesc
;
385 char ifdescr
[IFDESCRSIZE
];
391 * Get the description for the interface.
393 memset(&ifrdesc
, 0, sizeof ifrdesc
);
394 strlcpy(ifrdesc
.ifr_name
, name
, sizeof ifrdesc
.ifr_name
);
395 ifrdesc
.ifr_data
= (caddr_t
)&ifdescr
;
396 s
= socket(AF_INET
, SOCK_DGRAM
, 0);
398 if (ioctl(s
, SIOCGIFDESCR
, &ifrdesc
) == 0 &&
399 strlen(ifrdesc
.ifr_data
) != 0)
400 description
= ifrdesc
.ifr_data
;
405 if (add_or_find_if(&curdev
, alldevs
, name
, flags
, description
,
412 if (curdev
== NULL
) {
414 * Device wasn't added because it can't be opened.
421 * "curdev" is an entry for this interface; add an entry for this
422 * address to its list of addresses.
424 * Allocate the new entry and fill it in.
426 curaddr
= malloc(sizeof(pcap_addr_t
));
427 if (curaddr
== NULL
) {
428 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
429 "malloc: %s", pcap_strerror(errno
));
433 curaddr
->next
= NULL
;
435 curaddr
->addr
= dup_sockaddr(addr
, addr_size
);
436 if (curaddr
->addr
== NULL
) {
437 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
438 "malloc: %s", pcap_strerror(errno
));
443 curaddr
->addr
= NULL
;
445 if (netmask
!= NULL
) {
446 curaddr
->netmask
= dup_sockaddr(netmask
, netmask_size
);
447 if (curaddr
->netmask
== NULL
) {
448 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
449 "malloc: %s", pcap_strerror(errno
));
450 if (curaddr
->addr
!= NULL
)
456 curaddr
->netmask
= NULL
;
458 if (broadaddr
!= NULL
) {
459 curaddr
->broadaddr
= dup_sockaddr(broadaddr
, broadaddr_size
);
460 if (curaddr
->broadaddr
== NULL
) {
461 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
462 "malloc: %s", pcap_strerror(errno
));
463 if (curaddr
->netmask
!= NULL
)
464 free(curaddr
->netmask
);
465 if (curaddr
->addr
!= NULL
)
471 curaddr
->broadaddr
= NULL
;
473 if (dstaddr
!= NULL
) {
474 curaddr
->dstaddr
= dup_sockaddr(dstaddr
, dstaddr_size
);
475 if (curaddr
->dstaddr
== NULL
) {
476 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
477 "malloc: %s", pcap_strerror(errno
));
478 if (curaddr
->broadaddr
!= NULL
)
479 free(curaddr
->broadaddr
);
480 if (curaddr
->netmask
!= NULL
)
481 free(curaddr
->netmask
);
482 if (curaddr
->addr
!= NULL
)
488 curaddr
->dstaddr
= NULL
;
491 * Find the end of the list of addresses.
493 for (prevaddr
= curdev
->addresses
; prevaddr
!= NULL
; prevaddr
= nextaddr
) {
494 nextaddr
= prevaddr
->next
;
495 if (nextaddr
== NULL
) {
497 * This is the end of the list.
503 if (prevaddr
== NULL
) {
505 * The list was empty; this is the first member.
507 curdev
->addresses
= curaddr
;
510 * "prevaddr" is the last member of the list; append
513 prevaddr
->next
= curaddr
;
520 pcap_add_if(pcap_if_t
**devlist
, const char *name
, u_int flags
,
521 const char *description
, char *errbuf
)
525 return (add_or_find_if(&curdev
, devlist
, name
, flags
, description
,
531 * Free a list of interfaces.
534 pcap_freealldevs(pcap_if_t
*alldevs
)
536 pcap_if_t
*curdev
, *nextdev
;
537 pcap_addr_t
*curaddr
, *nextaddr
;
539 for (curdev
= alldevs
; curdev
!= NULL
; curdev
= nextdev
) {
540 nextdev
= curdev
->next
;
543 * Free all addresses.
545 for (curaddr
= curdev
->addresses
; curaddr
!= NULL
; curaddr
= nextaddr
) {
546 nextaddr
= curaddr
->next
;
549 if (curaddr
->netmask
)
550 free(curaddr
->netmask
);
551 if (curaddr
->broadaddr
)
552 free(curaddr
->broadaddr
);
553 if (curaddr
->dstaddr
)
554 free(curaddr
->dstaddr
);
559 * Free the name string.
564 * Free the description string, if any.
566 if (curdev
->description
!= NULL
)
567 free(curdev
->description
);
570 * Free the interface.
576 #if !defined(WIN32) && !defined(MSDOS)
579 * Return the name of a network interface attached to the system, or NULL
580 * if none can be found. The interface must be configured up; the
581 * lowest unit number is preferred; loopback is ignored.
584 pcap_lookupdev(errbuf
)
585 register char *errbuf
;
588 /* for old BSD systems, including bsdi3 */
590 #define IF_NAMESIZE IFNAMSIZ
592 static char device
[IF_NAMESIZE
+ 1];
595 if (pcap_findalldevs(&alldevs
, errbuf
) == -1)
598 if (alldevs
== NULL
|| (alldevs
->flags
& PCAP_IF_LOOPBACK
)) {
600 * There are no devices on the list, or the first device
601 * on the list is a loopback device, which means there
602 * are no non-loopback devices on the list. This means
603 * we can't return any device.
605 * XXX - why not return a loopback device? If we can't
606 * capture on it, it won't be on the list, and if it's
607 * on the list, there aren't any non-loopback devices,
608 * so why not just supply it as the default device?
610 (void)strlcpy(errbuf
, "no suitable device found",
615 * Return the name of the first device on the list.
617 (void)strlcpy(device
, alldevs
->name
, sizeof(device
));
621 pcap_freealldevs(alldevs
);
626 pcap_lookupnet(device
, netp
, maskp
, errbuf
)
627 register const char *device
;
628 register bpf_u_int32
*netp
, *maskp
;
629 register char *errbuf
;
632 register struct sockaddr_in
*sin4
;
636 * The pseudo-device "any" listens on all interfaces and therefore
637 * has the network address and -mask "0.0.0.0" therefore catching
638 * all traffic. Using NULL for the interface is the same as "any".
640 if (!device
|| strcmp(device
, "any") == 0
642 || strstr(device
, "dag") != NULL
644 #ifdef HAVE_SEPTEL_API
645 || strstr(device
, "septel") != NULL
647 #ifdef PCAP_SUPPORT_BT
648 || strstr(device
, "bluetooth") != NULL
650 #ifdef PCAP_SUPPORT_USB
651 || strstr(device
, "usb") != NULL
658 fd
= socket(AF_INET
, SOCK_DGRAM
, 0);
660 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
, "socket: %s",
661 pcap_strerror(errno
));
664 memset(&ifr
, 0, sizeof(ifr
));
666 /* XXX Work around Linux kernel bug */
667 ifr
.ifr_addr
.sa_family
= AF_INET
;
669 (void)strncpy(ifr
.ifr_name
, device
, sizeof(ifr
.ifr_name
));
670 if (ioctl(fd
, SIOCGIFADDR
, (char *)&ifr
) < 0) {
671 if (errno
== EADDRNOTAVAIL
) {
672 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
673 "%s: no IPv4 address assigned", device
);
675 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
676 "SIOCGIFADDR: %s: %s",
677 device
, pcap_strerror(errno
));
682 sin4
= (struct sockaddr_in
*)&ifr
.ifr_addr
;
683 *netp
= sin4
->sin_addr
.s_addr
;
684 if (ioctl(fd
, SIOCGIFNETMASK
, (char *)&ifr
) < 0) {
685 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
686 "SIOCGIFNETMASK: %s: %s", device
, pcap_strerror(errno
));
691 *maskp
= sin4
->sin_addr
.s_addr
;
693 if (IN_CLASSA(*netp
))
694 *maskp
= IN_CLASSA_NET
;
695 else if (IN_CLASSB(*netp
))
696 *maskp
= IN_CLASSB_NET
;
697 else if (IN_CLASSC(*netp
))
698 *maskp
= IN_CLASSC_NET
;
700 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
701 "inet class for 0x%x unknown", *netp
);
712 * Return the name of a network interface attached to the system, or NULL
713 * if none can be found. The interface must be configured up; the
714 * lowest unit number is preferred; loopback is ignored.
717 pcap_lookupdev(errbuf
)
718 register char *errbuf
;
721 DWORD dwWindowsMajorVersion
;
722 dwVersion
= GetVersion(); /* get the OS version */
723 dwWindowsMajorVersion
= (DWORD
)(LOBYTE(LOWORD(dwVersion
)));
725 if (dwVersion
>= 0x80000000 && dwWindowsMajorVersion
>= 4) {
727 * Windows 95, 98, ME.
729 ULONG NameLength
= 8192;
730 static char AdaptersName
[8192];
732 if (PacketGetAdapterNames(AdaptersName
,&NameLength
) )
733 return (AdaptersName
);
738 * Windows NT (NT 4.0, W2K, WXP). Convert the names to UNICODE for backward compatibility
740 ULONG NameLength
= 8192;
741 static WCHAR AdaptersName
[8192];
744 WCHAR
*TAdaptersName
= (WCHAR
*)malloc(8192 * sizeof(WCHAR
));
747 if(TAdaptersName
== NULL
)
749 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
, "memory allocation failure");
753 if ( !PacketGetAdapterNames((PTSTR
)TAdaptersName
,&NameLength
) )
755 (void)snprintf(errbuf
, PCAP_ERRBUF_SIZE
,
756 "PacketGetAdapterNames: %s",
757 pcap_win32strerror());
763 tAstr
= (char*)TAdaptersName
;
764 tUstr
= (WCHAR
*)AdaptersName
;
767 * Convert and copy the device names
769 while(sscanf(tAstr
, "%S", tUstr
) > 0)
771 tAstr
+= strlen(tAstr
) + 1;
772 tUstr
+= wcslen(tUstr
) + 1;
781 * Copy the descriptions
785 strcpy((char*)tUstr
, tAstr
);
786 (char*)tUstr
+= strlen(tAstr
) + 1;;
787 tAstr
+= strlen(tAstr
) + 1;
791 return (char *)(AdaptersName
);
797 pcap_lookupnet(device
, netp
, maskp
, errbuf
)
798 register const char *device
;
799 register bpf_u_int32
*netp
, *maskp
;
800 register char *errbuf
;
803 * We need only the first IPv4 address, so we must scan the array returned by PacketGetNetInfo()
804 * in order to skip non IPv4 (i.e. IPv6 addresses)
806 npf_if_addr if_addrs
[MAX_NETWORK_ADDRESSES
];
807 LONG if_addr_size
= 1;
808 struct sockaddr_in
*t_addr
;
811 if (!PacketGetNetInfoEx((void *)device
, if_addrs
, &if_addr_size
)) {
816 for(i
=0; i
<MAX_NETWORK_ADDRESSES
; i
++)
818 if(if_addrs
[i
].IPAddress
.ss_family
== AF_INET
)
820 t_addr
= (struct sockaddr_in
*) &(if_addrs
[i
].IPAddress
);
821 *netp
= t_addr
->sin_addr
.S_un
.S_addr
;
822 t_addr
= (struct sockaddr_in
*) &(if_addrs
[i
].SubnetMask
);
823 *maskp
= t_addr
->sin_addr
.S_un
.S_addr
;
835 #endif /* !WIN32 && !MSDOS */