]> The Tcpdump Group git mirrors - tcpdump/blob - print-ppp.c
In the PPP dissector, pass NULL, rather than bogus strings, to
[tcpdump] / print-ppp.c
1 /*
2 * Copyright (c) 1990, 1991, 1993, 1994, 1995, 1996, 1997
3 * The Regents of the University of California. All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that: (1) source code distributions
7 * retain the above copyright notice and this paragraph in its entirety, (2)
8 * distributions including binary code include the above copyright notice and
9 * this paragraph in its entirety in the documentation or other materials
10 * provided with the distribution, and (3) all advertising materials mentioning
11 * features or use of this software display the following acknowledgement:
12 * ``This product includes software developed by the University of California,
13 * Lawrence Berkeley Laboratory and its contributors.'' Neither the name of
14 * the University nor the names of its contributors may be used to endorse
15 * or promote products derived from this software without specific prior
16 * written permission.
17 * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR IMPLIED
18 * WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED WARRANTIES OF
19 * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
20 *
21 * Extensively modified by Motonori Shindo (mshindo@mshindo.net) for more
22 * complete PPP support.
23 */
24
25 /*
26 * TODO:
27 * o resolve XXX as much as possible
28 * o MP support
29 * o BAP support
30 */
31
32 #ifndef lint
33 static const char rcsid[] =
34 "@(#) $Header: /tcpdump/master/tcpdump/print-ppp.c,v 1.64 2001-09-09 02:04:19 guy Exp $ (LBL)";
35 #endif
36
37 #ifdef HAVE_CONFIG_H
38 #include "config.h"
39 #endif
40
41 #include <sys/param.h>
42 #include <sys/time.h>
43
44 #ifdef __bsdi__
45 #include <net/slcompress.h>
46 #include <net/if_ppp.h>
47 #endif
48
49 #include <netinet/in.h>
50
51 #include <ctype.h>
52 #include <netdb.h>
53 #include <pcap.h>
54 #include <stdio.h>
55
56 #include "interface.h"
57 #include "extract.h"
58 #include "addrtoname.h"
59 #include "ppp.h"
60 #include "chdlc.h"
61 #include "ethertype.h"
62
63 /*
64 * The following constatns are defined by IANA. Please refer to
65 * http://www.isi.edu/in-notes/iana/assignments/ppp-numbers
66 * for the up-to-date information.
67 */
68
69 /* Control Protocols (LCP/IPCP/CCP etc.) Codes */
70
71 #define CPCODES_VEXT 0 /* Vendor-Specific (RFC2153) */
72 #define CPCODES_CONF_REQ 1 /* Configure-Request */
73 #define CPCODES_CONF_ACK 2 /* Configure-Ack */
74 #define CPCODES_CONF_NAK 3 /* Configure-Nak */
75 #define CPCODES_CONF_REJ 4 /* Configure-Reject */
76 #define CPCODES_TERM_REQ 5 /* Terminate-Request */
77 #define CPCODES_TERM_ACK 6 /* Terminate-Ack */
78 #define CPCODES_CODE_REJ 7 /* Code-Reject */
79 #define CPCODES_PROT_REJ 8 /* Protocol-Reject (LCP only) */
80 #define CPCODES_ECHO_REQ 9 /* Echo-Request (LCP only) */
81 #define CPCODES_ECHO_RPL 10 /* Echo-Reply (LCP only) */
82 #define CPCODES_DISC_REQ 11 /* Discard-Request (LCP only) */
83 #define CPCODES_ID 12 /* Identification (LCP only) */
84 #define CPCODES_TIME_REM 13 /* Time-Remaining (LCP only) */
85 #define CPCODES_RESET_REQ 14 /* Reset-Request (CCP only) */
86 #define CPCODES_RESET_REP 15 /* Reset-Reply (CCP only) */
87
88 #define CPCODES_MIN CPCODES_VEXT
89 #define CPCODES_MAX CPCODES_RESET_REP
90
91 static const char *cpcodes[] = {
92 /*
93 * Control Protocol code values (RFC1661)
94 */
95 "Vend-Ext", /* (0) RFC2153 */
96 "Conf-Req", /* (1) */
97 "Conf-Ack", /* (2) */
98 "Conf-Nak", /* (3) */
99 "Conf-Rej", /* (4) */
100 "Term-Req", /* (5) */
101 "Term-Ack", /* (6) */
102 "Code-Rej", /* (7) */
103 "Prot-Rej", /* (8) */
104 "Echo-Req", /* (9) */
105 "Echo-Rep", /* (10) */
106 "Disc-Req", /* (11) */
107 "Ident", /* (12) RFC1570 */
108 "Time-Rem", /* (13) RFC1570 */
109 "Reset-Req", /* (14) RFC1962 */
110 "Reset-Ack", /* (15) RFC1962 */
111 };
112
113 /* LCP Config Options */
114
115 #define LCPOPT_VEXT 0
116 #define LCPOPT_MRU 1
117 #define LCPOPT_ACCM 2
118 #define LCPOPT_AP 3
119 #define LCPOPT_QP 4
120 #define LCPOPT_MN 5
121 #define LCPOPT_DEP6 6
122 #define LCPOPT_PFC 7
123 #define LCPOPT_ACFC 8
124 #define LCPOPT_FCSALT 9
125 #define LCPOPT_SDP 10
126 #define LCPOPT_NUMMODE 11
127 #define LCPOPT_DEP12 12
128 #define LCPOPT_CBACK 13
129 #define LCPOPT_DEP14 14
130 #define LCPOPT_DEP15 15
131 #define LCPOPT_DEP16 16
132 #define LCPOPT_MLMRRU 17
133 #define LCPOPT_MLSSNHF 18
134 #define LCPOPT_MLED 19
135 #define LCPOPT_PROP 20
136 #define LCPOPT_DCEID 21
137 #define LCPOPT_MPP 22
138 #define LCPOPT_LD 23
139 #define LCPOPT_LCPAOPT 24
140 #define LCPOPT_COBS 25
141 #define LCPOPT_PE 26
142 #define LCPOPT_MLHF 27
143 #define LCPOPT_I18N 28
144 #define LCPOPT_SDLOS 29
145 #define LCPOPT_PPPMUX 30
146
147 #define LCPOPT_MIN LCPOPT_VEXT
148 #define LCPOPT_MAX LCPOPT_PPPMUX
149
150 static const char *lcpconfopts[] = {
151 "Vend-Ext", /* (0) */
152 "MRU", /* (1) */
153 "ACCM", /* (2) */
154 "Auth-Prot", /* (3) */
155 "Qual-Prot", /* (4) */
156 "Magic-Num", /* (5) */
157 "deprecated(6)", /* used to be a Quality Protocol */
158 "PFC", /* (7) */
159 "ACFC", /* (8) */
160 "FCS-Alt", /* (9) */
161 "SDP", /* (10) */
162 "Num-Mode", /* (11) */
163 "deprecated(12)", /* used to be a Multi-Link-Procedure*/
164 "Call-Back", /* (13) */
165 "deprecated(14)", /* used to be a Connect-Time */
166 "deprecated(15)", /* used to be a Compund-Frames */
167 "deprecated(16)", /* used to be a Nominal-Data-Encap */
168 "MRRU", /* (17) */
169 "SSNHF", /* (18) */
170 "End-Disc", /* (19) */
171 "Proprietary", /* (20) */
172 "DCE-Id", /* (21) */
173 "MP+", /* (22) */
174 "Link-Disc", /* (23) */
175 "LCP-Auth-Opt", /* (24) */
176 "COBS", /* (25) */
177 "Prefix-elision", /* (26) */
178 "Multilink-header-Form",/* (27) */
179 "I18N", /* (28) */
180 "SDL-over-SONET/SDH", /* (29) */
181 "PPP-Muxing", /* (30) */
182 };
183
184 /* IPV6CP - to be supported */
185 /* ECP - to be supported */
186
187 /* CCP Config Options */
188
189 #define CCPOPT_OUI 0 /* RFC1962 */
190 #define CCPOPT_PRED1 1 /* RFC1962 */
191 #define CCPOPT_PRED2 2 /* RFC1962 */
192 #define CCPOPT_PJUMP 3 /* RFC1962 */
193 /* 4-15 unassigned */
194 #define CCPOPT_HPPPC 16 /* RFC1962 */
195 #define CCPOPT_STACLZS 17 /* RFC1974 */
196 #define CCPOPT_MPPC 18 /* RFC2118 */
197 #define CCPOPT_GFZA 19 /* RFC1962 */
198 #define CCPOPT_V42BIS 20 /* RFC1962 */
199 #define CCPOPT_BSDCOMP 21 /* RFC1977 */
200 /* 22 unassigned */
201 #define CCPOPT_LZSDCP 23 /* RFC1967 */
202 #define CCPOPT_MVRCA 24 /* RFC1975 */
203 #define CCPOPT_DEC 25 /* RFC1976 */
204 #define CCPOPT_DEFLATE 26 /* RFC1979 */
205 /* 27-254 unassigned */
206 #define CCPOPT_RESV 255 /* RFC1962 */
207
208 #define CCPOPT_MIN CCPOPT_OUI
209 #define CCPOPT_MAX CCPOPT_DEFLATE /* XXX: should be CCPOPT_RESV but... */
210
211 static const char *ccpconfopts[] = {
212 "OUI", /* (0) */
213 "Pred-1", /* (1) */
214 "Pred-2", /* (2) */
215 "Puddle", /* (3) */
216 "unassigned(4)", /* (4) */
217 "unassigned(5)", /* (5) */
218 "unassigned(6)", /* (6) */
219 "unassigned(7)", /* (7) */
220 "unassigned(8)", /* (8) */
221 "unassigned(9)", /* (9) */
222 "unassigned(10)", /* (10) */
223 "unassigned(11)", /* (11) */
224 "unassigned(12)", /* (12) */
225 "unassigned(13)", /* (13) */
226 "unassigned(14)", /* (14) */
227 "unassigned(15)", /* (15) */
228 "HP-PPC", /* (16) */
229 "Stac-LZS", /* (17) */
230 "MPPC", /* (18) */
231 "Gand-FZA", /* (19) */
232 "V.42bis", /* (20) */
233 "BSD-Comp", /* (21) */
234 "unassigned(22)", /* (22) */
235 "LZS-DCP", /* (23) */
236 "MVRCA", /* (24) */
237 "DEC", /* (25) */
238 "Deflate", /* (26) */
239 };
240
241 /* BACP Config Options */
242
243 #define BACPOPT_FPEER 1 /* RFC2125 */
244
245 /* SDCP - to be supported */
246
247 /* IPCP Config Options */
248
249 #define IPCPOPT_2ADDR 1 /* RFC1172, RFC1332 (deprecated) */
250 #define IPCPOPT_IPCOMP 2 /* RFC1332 */
251 #define IPCPOPT_ADDR 3 /* RFC1332 */
252 #define IPCPOPT_MOBILE4 4 /* RFC2290 */
253
254 #define IPCPOPT_PRIDNS 129 /* RFC1877 */
255 #define IPCPOPT_PRINBNS 130 /* RFC1877 */
256 #define IPCPOPT_SECDNS 131 /* RFC1877 */
257 #define IPCPOPT_SECNBNS 132 /* RFC1877 */
258
259 /* ATCP - to be supported */
260 /* OSINLCP - to be supported */
261 /* BVCP - to be supported */
262 /* BCP - to be supported */
263 /* IPXCP - to be supported */
264
265 /* Auth Algorithms */
266
267 /* 0-4 Reserved (RFC1994) */
268 #define AUTHALG_CHAPMD5 5 /* RFC1994 */
269 #define AUTHALG_MSCHAP1 128 /* RFC2433 */
270 #define AUTHALG_MSCHAP2 129 /* RFC2795 */
271
272 /* FCS Alternatives - to be supported */
273
274 /* Multilink Endpoint Discriminator (RFC1717) */
275 #define MEDCLASS_NULL 0 /* Null Class */
276 #define MEDCLASS_LOCAL 1 /* Locally Assigned */
277 #define MEDCLASS_IPV4 2 /* Internet Protocol (IPv4) */
278 #define MEDCLASS_MAC 3 /* IEEE 802.1 global MAC address */
279 #define MEDCLASS_MNB 4 /* PPP Magic Number Block */
280 #define MEDCLASS_PSNDN 5 /* Public Switched Network Director Number */
281
282 /* PPP LCP Callback */
283 #define CALLBACK_AUTH 0 /* Location determined by user auth */
284 #define CALLBACK_DSTR 1 /* Dialing string */
285 #define CALLBACK_LID 2 /* Location identifier */
286 #define CALLBACK_E164 3 /* E.164 number */
287 #define CALLBACK_X500 4 /* X.500 distinguished name */
288 #define CALLBACK_CBCP 6 /* Location is determined during CBCP nego */
289
290 /* CHAP */
291
292 #define CHAP_CHAL 1
293 #define CHAP_RESP 2
294 #define CHAP_SUCC 3
295 #define CHAP_FAIL 4
296
297 #define CHAP_CODEMIN CHAP_CHAL
298 #define CHAP_CODEMAX CHAP_FAIL
299
300 static const char *chapcode[] = {
301 "Chal", /* (1) */
302 "Resp", /* (2) */
303 "Succ", /* (3) */
304 "Fail", /* (4) */
305 };
306
307 /* PAP */
308
309 #define PAP_AREQ 1
310 #define PAP_AACK 2
311 #define PAP_ANAK 3
312
313 #define PAP_CODEMIN PAP_AREQ
314 #define PAP_CODEMAX PAP_ANAK
315
316 static const char *papcode[] = {
317 "Auth-Req", /* (1) */
318 "Auth-Ack", /* (2) */
319 "Auth-Nak", /* (3) */
320 };
321
322 /* BAP */
323 #define BAP_CALLREQ 1
324 #define BAP_CALLRES 2
325 #define BAP_CBREQ 3
326 #define BAP_CBRES 4
327 #define BAP_LDQREQ 5
328 #define BAP_LDQRES 6
329 #define BAP_CSIND 7
330 #define BAP_CSRES 8
331
332 static const char *ppp_protoname (u_int proto);
333 static void handle_ctrl_proto (u_int proto,const u_char *p, int length);
334 static void handle_chap (const u_char *p, int length);
335 static void handle_pap (const u_char *p, int length);
336 static void handle_bap (const u_char *p, int length);
337 static int print_lcp_config_options (const u_char *p, int);
338 static int print_ipcp_config_options (const u_char *p, int);
339 static int print_ccp_config_options (const u_char *p, int);
340 static int print_bacp_config_options (const u_char *p, int);
341 static void handle_ppp (u_int proto, const u_char *p, int length);
342
343 static const char *
344 ppp_protoname(u_int proto)
345 {
346 static char buf[20];
347
348 switch (proto) {
349 case PPP_IP: return "IP";
350 case PPP_IPV6: return "IPv6";
351 #ifdef PPP_XNS
352 case PPP_XNS: return "XNS";
353 #endif
354 case PPP_IPX: return "IPX";
355 case PPP_OSI: return "OSI";
356 case PPP_VJC: return "VJC";
357 case PPP_VJNC: return "VJNC";
358 case PPP_COMP: return "COMP";
359 case PPP_IPCP: return "IPCP";
360 case PPP_IPV6CP: return "IPv6CP";
361 case PPP_IPXCP: return "IPXCP";
362 case PPP_OSICP: return "OSICP";
363 case PPP_CCP: return "CCP";
364 case PPP_LCP: return "LCP";
365 case PPP_PAP: return "PAP";
366 #ifdef PPP_LQR
367 case PPP_LQR: return "LQR";
368 #endif
369 case PPP_CHAP: return "CHAP";
370 case PPP_BACP: return "BACP";
371 case PPP_BAP: return "BAP";
372 default:
373 snprintf(buf, sizeof(buf), "unknown-0x%04x", proto);
374 return buf;
375 }
376 }
377
378 /* generic Control Protocol (e.g. LCP, IPCP, CCP, etc.) handler */
379 static void
380 handle_ctrl_proto(u_int proto, const u_char *p, int length)
381 {
382 u_int code, len;
383 int (*pfunc)(const u_char *, int);
384 int x, j;
385
386 if (length < 1) {
387 printf("[|%s]", ppp_protoname(proto));
388 return;
389 } else if (length < 4) {
390 printf("[|%s 0x%02x]", ppp_protoname(proto), *p);
391 return;
392 }
393
394 code = *p;
395 if ((code >= CPCODES_MIN) && (code <= CPCODES_MAX))
396 printf("%s", cpcodes[code]);
397 else {
398 printf("0x%02x", code);
399 return;
400 }
401 p++;
402
403 printf("(%u)", *p); /* ID */
404 p++;
405
406 len = EXTRACT_16BITS(p);
407 p += 2;
408
409 if (length <= 4)
410 return; /* there may be a NULL confreq etc. */
411
412 switch (code) {
413 case CPCODES_VEXT:
414 if (length < 11)
415 break;
416 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
417 p += 4;
418 printf(" OUI=%02x%02x%02x", p[0], p[1], p[2]);
419 /* XXX: need to decode Kind and Value(s)? */
420 break;
421 case CPCODES_CONF_REQ:
422 case CPCODES_CONF_ACK:
423 case CPCODES_CONF_NAK:
424 case CPCODES_CONF_REJ:
425 x = len - 4; /* Code(1), Identifier(1) and Length(2) */
426 do {
427 switch (proto) {
428 case PPP_LCP:
429 pfunc = print_lcp_config_options;
430 break;
431 case PPP_IPCP:
432 pfunc = print_ipcp_config_options;
433 break;
434 case PPP_CCP:
435 pfunc = print_ccp_config_options;
436 break;
437 case PPP_BACP:
438 pfunc = print_bacp_config_options;
439 break;
440 default:
441 /*
442 * This should never happen, but we set
443 * "pfunc" to squelch uninitialized
444 * variable warnings from compilers.
445 */
446 pfunc = NULL;
447 break;
448 }
449 if ((j = (*pfunc)(p, len)) == 0)
450 break;
451 x -= j;
452 p += j;
453 } while (x > 0);
454 break;
455
456 case CPCODES_TERM_REQ:
457 case CPCODES_TERM_ACK:
458 /* XXX: need to decode Data? */
459 break;
460 case CPCODES_CODE_REJ:
461 /* XXX: need to decode Rejected-Packet? */
462 break;
463 case CPCODES_PROT_REJ:
464 if (length < 6)
465 break;
466 printf(", Rejected-Protocol=%04x", EXTRACT_16BITS(p));
467 /* XXX: need to decode Rejected-Information? */
468 break;
469 case CPCODES_ECHO_REQ:
470 case CPCODES_ECHO_RPL:
471 case CPCODES_DISC_REQ:
472 case CPCODES_ID:
473 if (length < 8)
474 break;
475 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
476 /* XXX: need to decode Data? */
477 break;
478 case CPCODES_TIME_REM:
479 if (length < 12)
480 break;
481 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
482 printf(" Seconds-Remaining=%u", EXTRACT_32BITS(p + 4));
483 /* XXX: need to decode Message? */
484 break;
485 default:
486 printf(", unknown-Codes-0x%02x", code);
487 break;
488 }
489 }
490
491 /* LCP config options */
492 static int
493 print_lcp_config_options(const u_char *p, int length)
494 {
495 int len, opt;
496
497 if (length < 2)
498 return 0;
499 len = p[1];
500 opt = p[0];
501 if (length < len)
502 return 0;
503 if ((opt >= LCPOPT_MIN) && (opt <= LCPOPT_MAX))
504 printf(", %s", lcpconfopts[opt]);
505 else {
506 printf(", unknwhown-%d", opt);
507 return len;
508 }
509
510 switch (opt) {
511 case LCPOPT_VEXT:
512 if (len >= 6) {
513 printf(" OUI=%02x%02x%02x", p[2], p[3], p[4]);
514 #if 0
515 printf(" kind=%02x", p[5]);
516 printf(" val=")
517 for (i = 0; i < len - 6; i++) {
518 printf("%02x", p[6 + i]);
519 }
520 #endif
521 }
522 break;
523 case LCPOPT_MRU:
524 if (len == 4)
525 printf("=%u", EXTRACT_16BITS(p + 2));
526 break;
527 case LCPOPT_ACCM:
528 if (len == 6)
529 printf("=%08x", EXTRACT_32BITS(p + 2));
530 break;
531 case LCPOPT_AP:
532 if (len >= 4) {
533 if (p[2] == 0xc0 && p[3] == 0x23)
534 printf(" PAP");
535 else if (p[2] == 0xc2 && p[3] == 0x23) {
536 printf(" CHAP/");
537 switch (p[4]) {
538 default:
539 printf("unknown-algorithm-%u", p[4]);
540 break;
541 case AUTHALG_CHAPMD5:
542 printf("MD5");
543 break;
544 case AUTHALG_MSCHAP1:
545 printf("MSCHAPv1");
546 break;
547 case AUTHALG_MSCHAP2:
548 printf("MSCHAPv2");
549 break;
550 }
551 }
552 else if (p[2] == 0xc2 && p[3] == 0x27)
553 printf(" EAP");
554 else if (p[2] == 0xc0 && p[3] == 0x27)
555 printf(" SPAP");
556 else if (p[2] == 0xc1 && p[3] == 0x23)
557 printf(" Old-SPAP");
558 else
559 printf("unknown");
560 }
561 break;
562 case LCPOPT_QP:
563 if (len >= 4) {
564 if (p[2] == 0xc0 && p[3] == 0x25)
565 printf(" LQR");
566 else
567 printf(" unknown");
568 }
569 break;
570 case LCPOPT_MN:
571 if (len == 6)
572 printf("=%08x", EXTRACT_32BITS(p + 2));
573 break;
574 case LCPOPT_PFC:
575 break;
576 case LCPOPT_ACFC:
577 break;
578 case LCPOPT_LD:
579 if (len == 4)
580 printf("=%04x", EXTRACT_16BITS(p + 2));
581 break;
582 case LCPOPT_CBACK:
583 if (len < 3)
584 break;
585 switch (p[2]) { /* Operation */
586 case CALLBACK_AUTH:
587 printf(" UserAuth");
588 break;
589 case CALLBACK_DSTR:
590 printf(" DialString");
591 break;
592 case CALLBACK_LID:
593 printf(" LocalID");
594 break;
595 case CALLBACK_E164:
596 printf(" E.164");
597 break;
598 case CALLBACK_X500:
599 printf(" X.500");
600 break;
601 case CALLBACK_CBCP:
602 printf(" CBCP");
603 break;
604 default:
605 printf(" unknown-operation=%u", p[2]);
606 break;
607 }
608 break;
609 case LCPOPT_MLMRRU:
610 if (len == 4)
611 printf("=%u", EXTRACT_16BITS(p + 2));
612 break;
613 case LCPOPT_MLED:
614 if (len < 3)
615 break;
616 switch (p[2]) { /* class */
617 case MEDCLASS_NULL:
618 printf(" Null");
619 break;
620 case MEDCLASS_LOCAL:
621 printf(" Local"); /* XXX */
622 break;
623 case MEDCLASS_IPV4:
624 if (len != 7)
625 break;
626 printf(" IPv4=%s", ipaddr_string(p + 3));
627 break;
628 case MEDCLASS_MAC:
629 if (len != 9)
630 break;
631 printf(" MAC=%02x:%02x:%02x:%02x:%02x:%02x",
632 p[3], p[4], p[5], p[6], p[7], p[8]);
633 break;
634 case MEDCLASS_MNB:
635 printf(" Magic-Num-Block"); /* XXX */
636 break;
637 case MEDCLASS_PSNDN:
638 printf(" PSNDN"); /* XXX */
639 break;
640 }
641 break;
642
643 /* XXX: to be supported */
644 #if 0
645 case LCPOPT_DEP6:
646 case LCPOPT_FCSALT:
647 case LCPOPT_SDP:
648 case LCPOPT_NUMMODE:
649 case LCPOPT_DEP12:
650 case LCPOPT_DEP14:
651 case LCPOPT_DEP15:
652 case LCPOPT_DEP16:
653 case LCPOPT_MLSSNHF:
654 case LCPOPT_PROP:
655 case LCPOPT_DCEID:
656 case LCPOPT_MPP:
657 case LCPOPT_LCPAOPT:
658 case LCPOPT_COBS:
659 case LCPOPT_PE:
660 case LCPOPT_MLHF:
661 case LCPOPT_I18N:
662 case LCPOPT_SDLOS:
663 case LCPOPT_PPPMUX:
664 break;
665 #endif
666 }
667 return len;
668 }
669
670 /* CHAP */
671 static void
672 handle_chap(const u_char *p, int length)
673 {
674 u_int code, len;
675 int val_size, name_size, msg_size;
676 const u_char *p0;
677 int i;
678
679 p0 = p;
680 if (length < 1) {
681 printf("[|chap]");
682 return;
683 } else if (length < 4) {
684 printf("[|chap 0x%02x]", *p);
685 return;
686 }
687
688 code = *p;
689 if ((code >= CHAP_CODEMIN) && (code <= CHAP_CODEMAX))
690 printf("%s", chapcode[code - 1]);
691 else {
692 printf("0x%02x", code);
693 return;
694 }
695 p++;
696
697 printf("(%u)", *p); /* ID */
698 p++;
699
700 len = EXTRACT_16BITS(p);
701 p += 2;
702
703 /*
704 * Note that this is a generic CHAP decoding routine. Since we
705 * don't know which flavor of CHAP (i.e. CHAP-MD5, MS-CHAPv1,
706 * MS-CHAPv2) is used at this point, we can't decode packet
707 * specifically to each algorithms. Instead, we simply decode
708 * the GCD (Gratest Common Denominator) for all algorithms.
709 */
710 switch (code) {
711 case CHAP_CHAL:
712 case CHAP_RESP:
713 if (length - (p - p0) < 1)
714 return;
715 val_size = *p; /* value size */
716 p++;
717 if (length - (p - p0) < val_size)
718 return;
719 printf(", Value=");
720 for (i = 0; i < val_size; i++)
721 printf("%02x", *p++);
722 name_size = len - (p - p0);
723 printf(", Name=");
724 for (i = 0; i < name_size; i++)
725 safeputchar(*p++);
726 break;
727 case CHAP_SUCC:
728 case CHAP_FAIL:
729 msg_size = len - (p - p0);
730 printf(", Msg=");
731 for (i = 0; i< msg_size; i++)
732 safeputchar(*p++);
733 break;
734 }
735 }
736
737 /* PAP (see RFC 1334) */
738 static void
739 handle_pap(const u_char *p, int length)
740 {
741 u_int code, len;
742 int peerid_len, passwd_len, msg_len;
743 const u_char *p0;
744 int i;
745
746 p0 = p;
747 if (length < 1) {
748 printf("[|pap]");
749 return;
750 } else if (length < 4) {
751 printf("[|pap 0x%02x]", *p);
752 return;
753 }
754
755 code = *p;
756 if ((code >= PAP_CODEMIN) && (code <= PAP_CODEMAX))
757 printf("%s", papcode[code - 1]);
758 else {
759 printf("0x%02x", code);
760 return;
761 }
762 p++;
763
764 printf("(%u)", *p); /* ID */
765 p++;
766
767 len = EXTRACT_16BITS(p);
768 p += 2;
769
770 switch (code) {
771 case PAP_AREQ:
772 if (length - (p - p0) < 1)
773 return;
774 peerid_len = *p; /* Peer-ID Length */
775 p++;
776 if (length - (p - p0) < peerid_len)
777 return;
778 printf(", Peer=");
779 for (i = 0; i < peerid_len; i++)
780 safeputchar(*p++);
781
782 if (length - (p - p0) < 1)
783 return;
784 passwd_len = *p; /* Password Length */
785 p++;
786 if (length - (p - p0) < passwd_len)
787 return;
788 printf(", Name=");
789 for (i = 0; i < passwd_len; i++)
790 safeputchar(*p++);
791 break;
792 case PAP_AACK:
793 case PAP_ANAK:
794 if (length - (p - p0) < 1)
795 return;
796 msg_len = *p; /* Msg-Length */
797 p++;
798 if (length - (p - p0) < msg_len)
799 return;
800 printf(", Msg=");
801 for (i = 0; i< msg_len; i++)
802 safeputchar(*p++);
803 break;
804 }
805 return;
806 }
807
808 /* BAP */
809 static void
810 handle_bap(const u_char *p, int length)
811 {
812 /* XXX: to be supported!! */
813 }
814
815
816 /* IPCP config options */
817 static int
818 print_ipcp_config_options(const u_char *p, int length)
819 {
820 int len, opt;
821
822 if (length < 2)
823 return 0;
824 len = p[1];
825 opt = p[0];
826 if (length < len)
827 return 0;
828 switch (opt) {
829 case IPCPOPT_2ADDR: /* deprecated */
830 if (len != 10)
831 goto invlen;
832 printf(", IP-Addrs src=%s dst=%s",
833 ipaddr_string(p + 2),
834 ipaddr_string(p + 6));
835 break;
836 case IPCPOPT_IPCOMP:
837 if (len < 4)
838 goto invlen;
839 printf(", IP-Comp");
840 if (EXTRACT_16BITS(p + 2) == PPP_VJC) {
841 printf(" VJ-Comp");
842 /* XXX: VJ-Comp parameters should be decoded */
843 } else
844 printf(" unknown-comp-proto=%04x", EXTRACT_16BITS(p + 2));
845 break;
846 case IPCPOPT_ADDR:
847 if (len != 6)
848 goto invlen;
849 printf(", IP-Addr=%s", ipaddr_string(p + 2));
850 break;
851 case IPCPOPT_MOBILE4:
852 if (len != 6)
853 goto invlen;
854 printf(", Home-Addr=%s", ipaddr_string(p + 2));
855 break;
856 case IPCPOPT_PRIDNS:
857 if (len != 6)
858 goto invlen;
859 printf(", Pri-DNS=%s", ipaddr_string(p + 2));
860 break;
861 case IPCPOPT_PRINBNS:
862 if (len != 6)
863 goto invlen;
864 printf(", Pri-NBNS=%s", ipaddr_string(p + 2));
865 break;
866 case IPCPOPT_SECDNS:
867 if (len != 6)
868 goto invlen;
869 printf(", Sec-DNS=%s", ipaddr_string(p + 2));
870 break;
871 case IPCPOPT_SECNBNS:
872 if (len != 6)
873 goto invlen;
874 printf(", Sec-NBNS=%s", ipaddr_string(p + 2));
875 break;
876 default:
877 printf(", unknown-%d", opt);
878 break;
879 }
880 return len;
881
882 invlen:
883 printf(", invalid-length-%d", opt);
884 return 0;
885 }
886
887 /* CCP config options */
888 static int
889 print_ccp_config_options(const u_char *p, int length)
890 {
891 int len, opt;
892
893 if (length < 2)
894 return 0;
895 len = p[1];
896 opt = p[0];
897 if (length < len)
898 return 0;
899 if ((opt >= CCPOPT_MIN) && (opt <= CCPOPT_MAX))
900 printf(", %s", ccpconfopts[opt]);
901 #if 0 /* XXX */
902 switch (opt) {
903 case CCPOPT_OUI:
904 case CCPOPT_PRED1:
905 case CCPOPT_PRED2:
906 case CCPOPT_PJUMP:
907 case CCPOPT_HPPPC:
908 case CCPOPT_STACLZS:
909 case CCPOPT_MPPC:
910 case CCPOPT_GFZA:
911 case CCPOPT_V42BIS:
912 case CCPOPT_BSDCOMP:
913 case CCPOPT_LZSDCP:
914 case CCPOPT_MVRCA:
915 case CCPOPT_DEC:
916 case CCPOPT_DEFLATE:
917 case CCPOPT_RESV:
918 break;
919
920 default:
921 printf(", unknown-%d", opt);
922 break;
923 }
924 #endif
925 return len;
926 }
927
928 /* BACP config options */
929 static int
930 print_bacp_config_options(const u_char *p, int length)
931 {
932 int len, opt;
933
934 if (length < 2)
935 return 0;
936 len = p[1];
937 opt = p[0];
938 if (length < len)
939 return 0;
940 if (opt == BACPOPT_FPEER) {
941 printf(", Favored-Peer");
942 printf(" Magic-Num=%08x", EXTRACT_32BITS(p + 2));
943 } else {
944 printf(", unknown-option-%d", opt);
945 }
946 return len;
947 }
948
949
950 /* PPP */
951 static void
952 handle_ppp(u_int proto, const u_char *p, int length)
953 {
954 switch (proto) {
955 case PPP_LCP:
956 case PPP_IPCP:
957 case PPP_CCP:
958 case PPP_BACP:
959 handle_ctrl_proto(proto, p, length);
960 break;
961 case PPP_CHAP:
962 handle_chap(p, length);
963 break;
964 case PPP_PAP:
965 handle_pap(p, length);
966 break;
967 case PPP_BAP: /* XXX: not yet completed */
968 handle_bap(p, length);
969 break;
970 case ETHERTYPE_IP: /*XXX*/
971 case PPP_IP:
972 ip_print(p, length);
973 break;
974 #ifdef INET6
975 case ETHERTYPE_IPV6: /*XXX*/
976 case PPP_IPV6:
977 ip6_print(p, length);
978 break;
979 #endif
980 case ETHERTYPE_IPX: /*XXX*/
981 case PPP_IPX:
982 ipx_print(p, length);
983 break;
984 case PPP_OSI:
985 isoclns_print(p, length, length, NULL, NULL);
986 break;
987 default:
988 break;
989 }
990 }
991
992 /* Standard PPP printer */
993 void
994 ppp_print(register const u_char *p, u_int length)
995 {
996 u_int proto;
997 u_int full_length = length;
998
999 /*
1000 * Here, we assume that p points to the Address and Control
1001 * field (if they present).
1002 */
1003 if (length < 2)
1004 goto trunc;
1005 if (*p == PPP_ADDRESS && *(p + 1) == PPP_CONTROL) {
1006 p += 2; /* ACFC not used */
1007 length -= 2;
1008 }
1009
1010 if (length < 2)
1011 goto trunc;
1012 if (*p % 2) {
1013 proto = *p; /* PFC is used */
1014 p++;
1015 length--;
1016 } else {
1017 proto = EXTRACT_16BITS(p);
1018 p += 2;
1019 length -= 2;
1020 }
1021
1022 if (eflag)
1023 printf("%s %d: ", ppp_protoname(proto), full_length);
1024
1025 handle_ppp(proto, p, length);
1026 return;
1027 trunc:
1028 printf("[|ppp]");
1029 }
1030
1031
1032 /* PPP I/F printer */
1033 void
1034 ppp_if_print(u_char *user, const struct pcap_pkthdr *h,
1035 register const u_char *p)
1036 {
1037 register u_int length = h->len;
1038 register u_int caplen = h->caplen;
1039
1040 ++infodelay;
1041 ts_print(&h->ts);
1042
1043 if (caplen < PPP_HDRLEN) {
1044 printf("[|ppp]");
1045 goto out;
1046 }
1047
1048 /*
1049 * Some printers want to get back at the link level addresses,
1050 * and/or check that they're not walking off the end of the packet.
1051 * Rather than pass them all the way down, we set these globals. */
1052
1053 packetp = p;
1054 snapend = p + caplen;
1055
1056 #if 0
1057 /*
1058 * XXX: seems to assume that there are 2 octets prepended to an
1059 * actual PPP frame. The 1st octet looks like Input/Output flag
1060 * while 2nd octet is unknown, at least to me
1061 * (mshindo@mshindo.net).
1062 *
1063 * That was what the original tcpdump code did.
1064 *
1065 * FreeBSD's "if_ppp.c" *does* set the first octet to 1 for outbound
1066 * packets and 0 for inbound packets - but only if the
1067 * protocol field has the 0x8000 bit set (i.e., it's a network
1068 * control protocol); it does so before running the packet through
1069 * "bpf_filter" to see if it should be discarded, and to see
1070 * if we should update the time we sent the most recent packet...
1071 *
1072 * ...but it puts the original address field back after doing
1073 * so.
1074 *
1075 * NetBSD's "if_ppp.c" doesn't set the first octet in that fashion.
1076 *
1077 * I don't know if any PPP implementation handed up to a BPF
1078 * device packets with the first octet being 1 for outbound and
1079 * 0 for inbound packets, so I (guy@alum.mit.edu) don't know
1080 * whether that ever needs to be checked or not.
1081 *
1082 * Note that NetBSD has a DLT_PPP_SERIAL, which it uses for PPP,
1083 * and its tcpdump appears to assume that the frame always
1084 * begins with an address field and a control field, and that
1085 * the address field might be 0x0f or 0x8f, for Cisco
1086 * point-to-point with HDLC framing as per section 4.3.1 of RFC
1087 * 1547, as well as 0xff, for PPP in HDLC-like framing as per
1088 * RFC 1662.
1089 *
1090 * (Is the Cisco framing in question what DLT_C_HDLC, in
1091 * BSD/OS, is?)
1092 */
1093 if (eflag)
1094 printf("%c %4d %02x ", p[0] ? 'O' : 'I', length, p[1]);
1095 #endif
1096
1097 ppp_print(p, length);
1098
1099 if (xflag)
1100 default_print(p, caplen);
1101 out:
1102 putchar('\n');
1103 --infodelay;
1104 if (infoprint)
1105 info(0);
1106 }
1107
1108 /*
1109 * PPP I/F printer to use if we know that RFC 1662-style PPP in HDLC-like
1110 * framing, or Cisco PPP with HDLC framing as per section 4.3.1 of RFC 1547,
1111 * is being used (i.e., we don't check for PPP_ADDRESS and PPP_CONTROL,
1112 * discard them *if* those are the first two octets, and parse the remaining
1113 * packet as a PPP packet, as "ppp_print()" does).
1114 *
1115 * This handles, for example, DLT_PPP_SERIAL in NetBSD.
1116 */
1117 void
1118 ppp_hdlc_if_print(u_char *user, const struct pcap_pkthdr *h,
1119 register const u_char *p)
1120 {
1121 register u_int length = h->len;
1122 register u_int caplen = h->caplen;
1123 u_int proto;
1124
1125 ++infodelay;
1126 ts_print(&h->ts);
1127
1128 if (caplen < 2) {
1129 printf("[|ppp]");
1130 goto out;
1131 }
1132
1133 /*
1134 * Some printers want to get back at the link level addresses,
1135 * and/or check that they're not walking off the end of the packet.
1136 * Rather than pass them all the way down, we set these globals.
1137 */
1138 packetp = p;
1139 snapend = p + caplen;
1140
1141 switch (p[0]) {
1142
1143 case PPP_ADDRESS:
1144 if (caplen < 4) {
1145 printf("[|ppp]");
1146 goto out;
1147 }
1148
1149 if (eflag)
1150 printf("%02x %02x %d ", p[0], p[1], length);
1151 p += 2;
1152 length -= 2;
1153
1154 proto = EXTRACT_16BITS(p);
1155 p += 2;
1156 length -= 2;
1157 if (eflag)
1158 printf("%s: ", ppp_protoname(proto));
1159
1160 handle_ppp(proto, p, length);
1161 break;
1162
1163 case CHDLC_UNICAST:
1164 case CHDLC_BCAST:
1165 chdlc_print(p, length, caplen);
1166 goto out;
1167
1168 default:
1169 if (eflag)
1170 printf("%02x %02x %d ", p[0], p[1], length);
1171 p += 2;
1172 length -= 2;
1173
1174 /*
1175 * XXX - NetBSD's "ppp_netbsd_serial_if_print()" treats
1176 * the next two octets as an Ethernet type; does that
1177 * ever happen?
1178 */
1179 printf("unknown addr %02x; ctrl %02x", p[0], p[1]);
1180 break;
1181 }
1182
1183 if (xflag)
1184 default_print(p, caplen);
1185 out:
1186 putchar('\n');
1187 --infodelay;
1188 if (infoprint)
1189 info(0);
1190 }
1191
1192
1193
1194 struct tok ppptype2str[] = {
1195 { PPP_IP, "IP" },
1196 { PPP_OSI, "OSI" },
1197 { PPP_NS, "NS" },
1198 { PPP_DECNET, "DECNET" },
1199 { PPP_APPLE, "APPLE" },
1200 { PPP_IPX, "IPX" },
1201 { PPP_VJC, "VJC" },
1202 { PPP_VJNC, "VJNC" },
1203 { PPP_BRPDU, "BRPDU" },
1204 { PPP_STII, "STII" },
1205 { PPP_VINES, "VINES" },
1206
1207 { PPP_HELLO, "HELLO" },
1208 { PPP_LUXCOM, "LUXCOM" },
1209 { PPP_SNS, "SNS" },
1210 { PPP_IPCP, "IPCP" },
1211 { PPP_OSICP, "OSICP" },
1212 { PPP_NSCP, "NSCP" },
1213 { PPP_DECNETCP, "DECNETCP" },
1214 { PPP_APPLECP, "APPLECP" },
1215 { PPP_IPXCP, "IPXCP" },
1216 { PPP_STIICP, "STIICP" },
1217 { PPP_VINESCP, "VINESCP" },
1218
1219 { PPP_LCP, "LCP" },
1220 { PPP_PAP, "PAP" },
1221 { PPP_LQM, "LQM" },
1222 { PPP_CHAP, "CHAP" },
1223 { PPP_BACP, "BACP" },
1224 { PPP_BAP, "BAP" },
1225 { PPP_MP, "MP" },
1226 { 0, NULL }
1227 };
1228
1229 #define PPP_BSDI_HDRLEN 24
1230
1231 /* BSD/OS specific PPP printer */
1232 void
1233 ppp_bsdos_if_print(u_char *user, const struct pcap_pkthdr *h,
1234 register const u_char *p)
1235 {
1236 #ifdef __bsdi__
1237 register u_int length = h->len;
1238 register u_int caplen = h->caplen;
1239 register int hdrlength;
1240 u_int16_t ptype;
1241 const u_char *q;
1242 int i;
1243
1244 ++infodelay;
1245 ts_print(&h->ts);
1246
1247 if (caplen < PPP_BSDI_HDRLEN) {
1248 printf("[|ppp]");
1249 goto out;
1250 }
1251
1252 /*
1253 * Some printers want to get back at the link level addresses,
1254 * and/or check that they're not walking off the end of the packet.
1255 * Rather than pass them all the way down, we set these globals.
1256 */
1257 packetp = p;
1258 snapend = p + caplen;
1259 hdrlength = 0;
1260
1261 #if 0
1262 if (p[0] == PPP_ADDRESS && p[1] == PPP_CONTROL) {
1263 if (eflag)
1264 printf("%02x %02x ", p[0], p[1]);
1265 p += 2;
1266 hdrlength = 2;
1267 }
1268
1269 if (eflag)
1270 printf("%d ", length);
1271 /* Retrieve the protocol type */
1272 if (*p & 01) {
1273 /* Compressed protocol field */
1274 ptype = *p;
1275 if (eflag)
1276 printf("%02x ", ptype);
1277 p++;
1278 hdrlength += 1;
1279 } else {
1280 /* Un-compressed protocol field */
1281 ptype = ntohs(*(u_int16_t *)p);
1282 if (eflag)
1283 printf("%04x ", ptype);
1284 p += 2;
1285 hdrlength += 2;
1286 }
1287 #else
1288 ptype = 0; /*XXX*/
1289 if (eflag)
1290 printf("%c ", p[SLC_DIR] ? 'O' : 'I');
1291 if (p[SLC_LLHL]) {
1292 /* link level header */
1293 struct ppp_header *ph;
1294
1295 q = p + SLC_BPFHDRLEN;
1296 ph = (struct ppp_header *)q;
1297 if (ph->phdr_addr == PPP_ADDRESS
1298 && ph->phdr_ctl == PPP_CONTROL) {
1299 if (eflag)
1300 printf("%02x %02x ", q[0], q[1]);
1301 ptype = ntohs(ph->phdr_type);
1302 if (eflag && (ptype == PPP_VJC || ptype == PPP_VJNC)) {
1303 printf("%s ", tok2str(ppptype2str,
1304 "proto-#%d", ptype));
1305 }
1306 } else {
1307 if (eflag) {
1308 printf("LLH=[");
1309 for (i = 0; i < p[SLC_LLHL]; i++)
1310 printf("%02x", q[i]);
1311 printf("] ");
1312 }
1313 }
1314 }
1315 if (eflag)
1316 printf("%d ", length);
1317 if (p[SLC_CHL]) {
1318 q = p + SLC_BPFHDRLEN + p[SLC_LLHL];
1319
1320 switch (ptype) {
1321 case PPP_VJC:
1322 ptype = vjc_print(q, length - (q - p), ptype);
1323 hdrlength = PPP_BSDI_HDRLEN;
1324 p += hdrlength;
1325 switch (ptype) {
1326 case PPP_IP:
1327 ip_print(p, length);
1328 break;
1329 #ifdef INET6
1330 case PPP_IPV6:
1331 ip6_print(p, length);
1332 break;
1333 #endif
1334 }
1335 goto printx;
1336 case PPP_VJNC:
1337 ptype = vjc_print(q, length - (q - p), ptype);
1338 hdrlength = PPP_BSDI_HDRLEN;
1339 p += hdrlength;
1340 switch (ptype) {
1341 case PPP_IP:
1342 ip_print(p, length);
1343 break;
1344 #ifdef INET6
1345 case PPP_IPV6:
1346 ip6_print(p, length);
1347 break;
1348 #endif
1349 }
1350 goto printx;
1351 default:
1352 if (eflag) {
1353 printf("CH=[");
1354 for (i = 0; i < p[SLC_LLHL]; i++)
1355 printf("%02x", q[i]);
1356 printf("] ");
1357 }
1358 break;
1359 }
1360 }
1361
1362 hdrlength = PPP_BSDI_HDRLEN;
1363 #endif
1364
1365 length -= hdrlength;
1366 p += hdrlength;
1367
1368 switch (ptype) {
1369 case PPP_IP:
1370 ip_print(p, length);
1371 break;
1372 #ifdef INET6
1373 case PPP_IPV6:
1374 ip6_print(p, length);
1375 break;
1376 #endif
1377 default:
1378 printf("%s ", tok2str(ppptype2str, "proto-#%d", ptype));
1379 }
1380
1381 printx:
1382 if (xflag)
1383 default_print((const u_char *)p, caplen - hdrlength);
1384 out:
1385 putchar('\n');
1386 --infodelay;
1387 if (infoprint)
1388 info(0);
1389 #endif /* __bsdi__ */
1390 }