]> The Tcpdump Group git mirrors - tcpdump/blob - print-dhcp6.c
More bounds checking when fetching addresses and converting to strings.
[tcpdump] / print-dhcp6.c
1 /*
2 * Copyright (C) 1998 and 1999 WIDE Project.
3 * All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 * 1. Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * 2. Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in the
12 * documentation and/or other materials provided with the distribution.
13 * 3. Neither the name of the project nor the names of its contributors
14 * may be used to endorse or promote products derived from this software
15 * without specific prior written permission.
16 *
17 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
18 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
19 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
20 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
21 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
22 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
23 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
25 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
26 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
27 * SUCH DAMAGE.
28 */
29
30 /* \summary: IPv6 DHCP printer */
31
32 /*
33 * RFC3315: DHCPv6
34 * supported DHCPv6 options:
35 * RFC3319: Session Initiation Protocol (SIP) Servers options,
36 * RFC3633: IPv6 Prefix options,
37 * RFC3646: DNS Configuration options,
38 * RFC3898: Network Information Service (NIS) Configuration options,
39 * RFC4075: Simple Network Time Protocol (SNTP) Configuration option,
40 * RFC4242: Information Refresh Time option,
41 * RFC4280: Broadcast and Multicast Control Servers options,
42 * RFC5908: Network Time Protocol (NTP) Server Option for DHCPv6
43 * RFC6334: Dual-Stack Lite option,
44 */
45
46 #ifdef HAVE_CONFIG_H
47 #include <config.h>
48 #endif
49
50 #include "netdissect-stdinc.h"
51
52 #include <stdio.h>
53 #include <string.h>
54
55 #include "netdissect.h"
56 #include "addrtoname.h"
57 #include "extract.h"
58
59 /* lease duration */
60 #define DHCP6_DURATION_INFINITE 0xffffffff
61
62 /* Error Values */
63 #define DH6ERR_FAILURE 16
64 #define DH6ERR_AUTHFAIL 17
65 #define DH6ERR_POORLYFORMED 18
66 #define DH6ERR_UNAVAIL 19
67 #define DH6ERR_OPTUNAVAIL 20
68
69 /* Message type */
70 #define DH6_SOLICIT 1
71 #define DH6_ADVERTISE 2
72 #define DH6_REQUEST 3
73 #define DH6_CONFIRM 4
74 #define DH6_RENEW 5
75 #define DH6_REBIND 6
76 #define DH6_REPLY 7
77 #define DH6_RELEASE 8
78 #define DH6_DECLINE 9
79 #define DH6_RECONFIGURE 10
80 #define DH6_INFORM_REQ 11
81 #define DH6_RELAY_FORW 12
82 #define DH6_RELAY_REPLY 13
83 #define DH6_LEASEQUERY 14
84 #define DH6_LQ_REPLY 15
85
86 static const struct tok dh6_msgtype_str[] = {
87 { DH6_SOLICIT, "solicit" },
88 { DH6_ADVERTISE, "advertise" },
89 { DH6_REQUEST, "request" },
90 { DH6_CONFIRM, "confirm" },
91 { DH6_RENEW, "renew" },
92 { DH6_REBIND, "rebind" },
93 { DH6_REPLY, "reply" },
94 { DH6_RELEASE, "release" },
95 { DH6_DECLINE, "decline" },
96 { DH6_RECONFIGURE, "reconfigure" },
97 { DH6_INFORM_REQ, "inf-req" },
98 { DH6_RELAY_FORW, "relay-fwd" },
99 { DH6_RELAY_REPLY, "relay-reply" },
100 { DH6_LEASEQUERY, "leasequery" },
101 { DH6_LQ_REPLY, "leasequery-reply" },
102 { 0, NULL }
103 };
104
105 /* DHCP6 base packet format */
106 struct dhcp6 {
107 union {
108 nd_uint8_t msgtype;
109 nd_uint32_t xid;
110 } dh6_msgtypexid;
111 /* options follow */
112 };
113 #define DH6_XIDMASK 0x00ffffff
114
115 /* DHCPv6 relay messages */
116 struct dhcp6_relay {
117 nd_uint8_t dh6relay_msgtype;
118 nd_uint8_t dh6relay_hcnt;
119 nd_ipv6 dh6relay_linkaddr; /* XXX: badly aligned */
120 nd_ipv6 dh6relay_peeraddr;
121 /* options follow */
122 };
123
124 /* options */
125 #define DH6OPT_CLIENTID 1
126 #define DH6OPT_SERVERID 2
127 #define DH6OPT_IA_NA 3
128 #define DH6OPT_IA_TA 4
129 #define DH6OPT_IA_ADDR 5
130 #define DH6OPT_ORO 6
131 #define DH6OPT_PREFERENCE 7
132 # define DH6OPT_PREF_MAX 255
133 #define DH6OPT_ELAPSED_TIME 8
134 #define DH6OPT_RELAY_MSG 9
135 /*#define DH6OPT_SERVER_MSG 10 deprecated */
136 #define DH6OPT_AUTH 11
137 # define DH6OPT_AUTHPROTO_DELAYED 2
138 # define DH6OPT_AUTHPROTO_RECONFIG 3
139 # define DH6OPT_AUTHALG_HMACMD5 1
140 # define DH6OPT_AUTHRDM_MONOCOUNTER 0
141 # define DH6OPT_AUTHRECONFIG_KEY 1
142 # define DH6OPT_AUTHRECONFIG_HMACMD5 2
143 #define DH6OPT_UNICAST 12
144 #define DH6OPT_STATUS_CODE 13
145 # define DH6OPT_STCODE_SUCCESS 0
146 # define DH6OPT_STCODE_UNSPECFAIL 1
147 # define DH6OPT_STCODE_NOADDRAVAIL 2
148 # define DH6OPT_STCODE_NOBINDING 3
149 # define DH6OPT_STCODE_NOTONLINK 4
150 # define DH6OPT_STCODE_USEMULTICAST 5
151 # define DH6OPT_STCODE_NOPREFIXAVAIL 6
152 # define DH6OPT_STCODE_UNKNOWNQUERYTYPE 7
153 # define DH6OPT_STCODE_MALFORMEDQUERY 8
154 # define DH6OPT_STCODE_NOTCONFIGURED 9
155 # define DH6OPT_STCODE_NOTALLOWED 10
156 #define DH6OPT_RAPID_COMMIT 14
157 #define DH6OPT_USER_CLASS 15
158 #define DH6OPT_VENDOR_CLASS 16
159 #define DH6OPT_VENDOR_OPTS 17
160 #define DH6OPT_INTERFACE_ID 18
161 #define DH6OPT_RECONF_MSG 19
162 #define DH6OPT_RECONF_ACCEPT 20
163 #define DH6OPT_SIP_SERVER_D 21
164 #define DH6OPT_SIP_SERVER_A 22
165 #define DH6OPT_DNS_SERVERS 23
166 #define DH6OPT_DOMAIN_LIST 24
167 #define DH6OPT_IA_PD 25
168 #define DH6OPT_IA_PD_PREFIX 26
169 #define DH6OPT_NIS_SERVERS 27
170 #define DH6OPT_NISP_SERVERS 28
171 #define DH6OPT_NIS_NAME 29
172 #define DH6OPT_NISP_NAME 30
173 #define DH6OPT_SNTP_SERVERS 31
174 #define DH6OPT_LIFETIME 32
175 #define DH6OPT_BCMCS_SERVER_D 33
176 #define DH6OPT_BCMCS_SERVER_A 34
177 #define DH6OPT_GEOCONF_CIVIC 36
178 #define DH6OPT_REMOTE_ID 37
179 #define DH6OPT_SUBSCRIBER_ID 38
180 #define DH6OPT_CLIENT_FQDN 39
181 #define DH6OPT_PANA_AGENT 40
182 #define DH6OPT_NEW_POSIX_TIMEZONE 41
183 #define DH6OPT_NEW_TZDB_TIMEZONE 42
184 #define DH6OPT_ERO 43
185 #define DH6OPT_LQ_QUERY 44
186 #define DH6OPT_CLIENT_DATA 45
187 #define DH6OPT_CLT_TIME 46
188 #define DH6OPT_LQ_RELAY_DATA 47
189 #define DH6OPT_LQ_CLIENT_LINK 48
190 #define DH6OPT_NTP_SERVER 56
191 # define DH6OPT_NTP_SUBOPTION_SRV_ADDR 1
192 # define DH6OPT_NTP_SUBOPTION_MC_ADDR 2
193 # define DH6OPT_NTP_SUBOPTION_SRV_FQDN 3
194 #define DH6OPT_AFTR_NAME 64
195 #define DH6OPT_MUDURL 112
196
197 static const struct tok dh6opt_str[] = {
198 { DH6OPT_CLIENTID, "client-ID" },
199 { DH6OPT_SERVERID, "server-ID" },
200 { DH6OPT_IA_NA, "IA_NA" },
201 { DH6OPT_IA_TA, "IA_TA" },
202 { DH6OPT_IA_ADDR, "IA_ADDR" },
203 { DH6OPT_ORO, "option-request" },
204 { DH6OPT_PREFERENCE, "preference" },
205 { DH6OPT_ELAPSED_TIME, "elapsed-time" },
206 { DH6OPT_RELAY_MSG, "relay-message" },
207 { DH6OPT_AUTH, "authentication" },
208 { DH6OPT_UNICAST, "server-unicast" },
209 { DH6OPT_STATUS_CODE, "status-code" },
210 { DH6OPT_RAPID_COMMIT, "rapid-commit" },
211 { DH6OPT_USER_CLASS, "user-class" },
212 { DH6OPT_VENDOR_CLASS, "vendor-class" },
213 { DH6OPT_VENDOR_OPTS, "vendor-specific-info" },
214 { DH6OPT_INTERFACE_ID, "interface-ID" },
215 { DH6OPT_RECONF_MSG, "reconfigure-message" },
216 { DH6OPT_RECONF_ACCEPT, "reconfigure-accept" },
217 { DH6OPT_SIP_SERVER_D, "SIP-servers-domain" },
218 { DH6OPT_SIP_SERVER_A, "SIP-servers-address" },
219 { DH6OPT_DNS_SERVERS, "DNS-server" },
220 { DH6OPT_DOMAIN_LIST, "DNS-search-list" },
221 { DH6OPT_IA_PD, "IA_PD" },
222 { DH6OPT_IA_PD_PREFIX, "IA_PD-prefix" },
223 { DH6OPT_SNTP_SERVERS, "SNTP-servers" },
224 { DH6OPT_LIFETIME, "lifetime" },
225 { DH6OPT_NIS_SERVERS, "NIS-server" },
226 { DH6OPT_NISP_SERVERS, "NIS+-server" },
227 { DH6OPT_NIS_NAME, "NIS-domain-name" },
228 { DH6OPT_NISP_NAME, "NIS+-domain-name" },
229 { DH6OPT_BCMCS_SERVER_D, "BCMCS-domain-name" },
230 { DH6OPT_BCMCS_SERVER_A, "BCMCS-server" },
231 { DH6OPT_GEOCONF_CIVIC, "Geoconf-Civic" },
232 { DH6OPT_REMOTE_ID, "Remote-ID" },
233 { DH6OPT_SUBSCRIBER_ID, "Subscriber-ID" },
234 { DH6OPT_CLIENT_FQDN, "Client-FQDN" },
235 { DH6OPT_PANA_AGENT, "PANA-agent" },
236 { DH6OPT_NEW_POSIX_TIMEZONE, "POSIX-timezone" },
237 { DH6OPT_NEW_TZDB_TIMEZONE, "POSIX-tz-database" },
238 { DH6OPT_ERO, "Echo-request-option" },
239 { DH6OPT_LQ_QUERY, "Lease-query" },
240 { DH6OPT_CLIENT_DATA, "LQ-client-data" },
241 { DH6OPT_CLT_TIME, "Clt-time" },
242 { DH6OPT_LQ_RELAY_DATA, "LQ-relay-data" },
243 { DH6OPT_LQ_CLIENT_LINK, "LQ-client-link" },
244 { DH6OPT_NTP_SERVER, "NTP-server" },
245 { DH6OPT_AFTR_NAME, "AFTR-Name" },
246 { DH6OPT_MUDURL, "MUD-URL" },
247 { 0, NULL }
248 };
249
250 static const struct tok dh6opt_stcode_str[] = {
251 { DH6OPT_STCODE_SUCCESS, "Success" }, /* RFC3315 */
252 { DH6OPT_STCODE_UNSPECFAIL, "UnspecFail" }, /* RFC3315 */
253 { DH6OPT_STCODE_NOADDRAVAIL, "NoAddrsAvail" }, /* RFC3315 */
254 { DH6OPT_STCODE_NOBINDING, "NoBinding" }, /* RFC3315 */
255 { DH6OPT_STCODE_NOTONLINK, "NotOnLink" }, /* RFC3315 */
256 { DH6OPT_STCODE_USEMULTICAST, "UseMulticast" }, /* RFC3315 */
257 { DH6OPT_STCODE_NOPREFIXAVAIL, "NoPrefixAvail" }, /* RFC3633 */
258 { DH6OPT_STCODE_UNKNOWNQUERYTYPE, "UnknownQueryType" }, /* RFC5007 */
259 { DH6OPT_STCODE_MALFORMEDQUERY, "MalformedQuery" }, /* RFC5007 */
260 { DH6OPT_STCODE_NOTCONFIGURED, "NotConfigured" }, /* RFC5007 */
261 { DH6OPT_STCODE_NOTALLOWED, "NotAllowed" }, /* RFC5007 */
262 { 0, NULL }
263 };
264
265 struct dhcp6opt {
266 nd_uint16_t dh6opt_type;
267 nd_uint16_t dh6opt_len;
268 /* type-dependent data follows */
269 };
270
271 static const char *
272 dhcp6stcode(const uint16_t code)
273 {
274 return code > 255 ? "INVALID code" : tok2str(dh6opt_stcode_str, "code%u", code);
275 }
276
277 static void
278 dhcp6opt_print(netdissect_options *ndo,
279 const u_char *cp, const u_char *ep)
280 {
281 const struct dhcp6opt *dh6o;
282 const u_char *tp;
283 u_int i;
284 uint16_t opttype;
285 uint16_t optlen;
286 uint8_t auth_proto;
287 uint8_t auth_alg;
288 uint8_t auth_rdm;
289 u_int authinfolen, authrealmlen;
290 u_int remain_len; /* Length of remaining options */
291 u_int label_len; /* Label length */
292 uint16_t subopt_code;
293 uint16_t subopt_len;
294 uint8_t dh6_reconf_type;
295 uint8_t dh6_lq_query_type;
296
297 if (cp == ep)
298 return;
299 while (cp < ep) {
300 if (ep < cp + sizeof(*dh6o))
301 goto trunc;
302 dh6o = (const struct dhcp6opt *)cp;
303 ND_TCHECK_SIZE(dh6o);
304 optlen = GET_BE_U_2(dh6o->dh6opt_len);
305 if (ep < cp + sizeof(*dh6o) + optlen)
306 goto trunc;
307 opttype = GET_BE_U_2(dh6o->dh6opt_type);
308 ND_PRINT(" (%s", tok2str(dh6opt_str, "opt_%u", opttype));
309 ND_TCHECK_LEN(cp + sizeof(*dh6o), optlen);
310 switch (opttype) {
311 case DH6OPT_CLIENTID:
312 case DH6OPT_SERVERID:
313 if (optlen < 2) {
314 /*(*/
315 ND_PRINT(" ?)");
316 break;
317 }
318 tp = (const u_char *)(dh6o + 1);
319 switch (GET_BE_U_2(tp)) {
320 case 1:
321 if (optlen >= 2 + 6) {
322 ND_PRINT(" hwaddr/time type %u time %u ",
323 GET_BE_U_2(tp + 2),
324 GET_BE_U_4(tp + 4));
325 for (i = 8; i < optlen; i++)
326 ND_PRINT("%02x",
327 GET_U_1(tp + i));
328 /*(*/
329 ND_PRINT(")");
330 } else {
331 /*(*/
332 ND_PRINT(" ?)");
333 }
334 break;
335 case 2:
336 if (optlen >= 2 + 8) {
337 ND_PRINT(" vid ");
338 for (i = 2; i < 2 + 8; i++)
339 ND_PRINT("%02x",
340 GET_U_1(tp + i));
341 /*(*/
342 ND_PRINT(")");
343 } else {
344 /*(*/
345 ND_PRINT(" ?)");
346 }
347 break;
348 case 3:
349 if (optlen >= 2 + 2) {
350 ND_PRINT(" hwaddr type %u ",
351 GET_BE_U_2(tp + 2));
352 for (i = 4; i < optlen; i++)
353 ND_PRINT("%02x",
354 GET_U_1(tp + i));
355 /*(*/
356 ND_PRINT(")");
357 } else {
358 /*(*/
359 ND_PRINT(" ?)");
360 }
361 break;
362 default:
363 ND_PRINT(" type %u)", GET_BE_U_2(tp));
364 break;
365 }
366 break;
367 case DH6OPT_IA_ADDR:
368 if (optlen < 24) {
369 /*(*/
370 ND_PRINT(" ?)");
371 break;
372 }
373 tp = (const u_char *)(dh6o + 1);
374 ND_PRINT(" %s", GET_IP6ADDR_STRING(tp));
375 ND_PRINT(" pltime:%u vltime:%u",
376 GET_BE_U_4(tp + 16),
377 GET_BE_U_4(tp + 20));
378 if (optlen > 24) {
379 /* there are sub-options */
380 dhcp6opt_print(ndo, tp + 24, tp + optlen);
381 }
382 ND_PRINT(")");
383 break;
384 case DH6OPT_ORO:
385 case DH6OPT_ERO:
386 if (optlen % 2) {
387 ND_PRINT(" ?)");
388 break;
389 }
390 tp = (const u_char *)(dh6o + 1);
391 for (i = 0; i < optlen; i += 2) {
392 ND_PRINT(" %s",
393 tok2str(dh6opt_str, "opt_%u", GET_BE_U_2(tp + i)));
394 }
395 ND_PRINT(")");
396 break;
397 case DH6OPT_PREFERENCE:
398 if (optlen != 1) {
399 ND_PRINT(" ?)");
400 break;
401 }
402 tp = (const u_char *)(dh6o + 1);
403 ND_PRINT(" %u)", GET_U_1(tp));
404 break;
405 case DH6OPT_ELAPSED_TIME:
406 if (optlen != 2) {
407 ND_PRINT(" ?)");
408 break;
409 }
410 tp = (const u_char *)(dh6o + 1);
411 ND_PRINT(" %u)", GET_BE_U_2(tp));
412 break;
413 case DH6OPT_RELAY_MSG:
414 ND_PRINT(" (");
415 tp = (const u_char *)(dh6o + 1);
416 dhcp6_print(ndo, tp, optlen);
417 ND_PRINT(")");
418 break;
419 case DH6OPT_AUTH:
420 if (optlen < 11) {
421 ND_PRINT(" ?)");
422 break;
423 }
424 tp = (const u_char *)(dh6o + 1);
425 auth_proto = GET_U_1(tp);
426 switch (auth_proto) {
427 case DH6OPT_AUTHPROTO_DELAYED:
428 ND_PRINT(" proto: delayed");
429 break;
430 case DH6OPT_AUTHPROTO_RECONFIG:
431 ND_PRINT(" proto: reconfigure");
432 break;
433 default:
434 ND_PRINT(" proto: %u", auth_proto);
435 break;
436 }
437 tp++;
438 auth_alg = GET_U_1(tp);
439 switch (auth_alg) {
440 case DH6OPT_AUTHALG_HMACMD5:
441 /* XXX: may depend on the protocol */
442 ND_PRINT(", alg: HMAC-MD5");
443 break;
444 default:
445 ND_PRINT(", alg: %u", auth_alg);
446 break;
447 }
448 tp++;
449 auth_rdm = GET_U_1(tp);
450 switch (auth_rdm) {
451 case DH6OPT_AUTHRDM_MONOCOUNTER:
452 ND_PRINT(", RDM: mono");
453 break;
454 default:
455 ND_PRINT(", RDM: %u", auth_rdm);
456 break;
457 }
458 tp++;
459 ND_PRINT(", RD:");
460 for (i = 0; i < 4; i++, tp += 2)
461 ND_PRINT(" %04x", GET_BE_U_2(tp));
462
463 /* protocol dependent part */
464 authinfolen = optlen - 11;
465 switch (auth_proto) {
466 case DH6OPT_AUTHPROTO_DELAYED:
467 if (authinfolen == 0)
468 break;
469 if (authinfolen < 20) {
470 ND_PRINT(" ??");
471 break;
472 }
473 authrealmlen = authinfolen - 20;
474 if (authrealmlen > 0) {
475 ND_PRINT(", realm: ");
476 }
477 for (i = 0; i < authrealmlen; i++, tp++)
478 ND_PRINT("%02x", GET_U_1(tp));
479 ND_PRINT(", key ID: %08x", GET_BE_U_4(tp));
480 tp += 4;
481 ND_PRINT(", HMAC-MD5:");
482 for (i = 0; i < 4; i++, tp+= 4)
483 ND_PRINT(" %08x", GET_BE_U_4(tp));
484 break;
485 case DH6OPT_AUTHPROTO_RECONFIG:
486 if (authinfolen != 17) {
487 ND_PRINT(" ??");
488 break;
489 }
490 switch (GET_U_1(tp)) {
491 case DH6OPT_AUTHRECONFIG_KEY:
492 ND_PRINT(" reconfig-key");
493 break;
494 case DH6OPT_AUTHRECONFIG_HMACMD5:
495 ND_PRINT(" type: HMAC-MD5");
496 break;
497 default:
498 ND_PRINT(" type: ??");
499 break;
500 }
501 tp++;
502 ND_PRINT(" value:");
503 for (i = 0; i < 4; i++, tp+= 4)
504 ND_PRINT(" %08x", GET_BE_U_4(tp));
505 break;
506 default:
507 ND_PRINT(" ??");
508 break;
509 }
510
511 ND_PRINT(")");
512 break;
513 case DH6OPT_RAPID_COMMIT: /* nothing todo */
514 ND_PRINT(")");
515 break;
516 case DH6OPT_INTERFACE_ID:
517 case DH6OPT_SUBSCRIBER_ID:
518 /*
519 * Since we cannot predict the encoding, print hex dump
520 * at most 10 characters.
521 */
522 tp = (const u_char *)(dh6o + 1);
523 ND_PRINT(" ");
524 for (i = 0; i < optlen && i < 10; i++)
525 ND_PRINT("%02x", GET_U_1(tp + i));
526 ND_PRINT("...)");
527 break;
528 case DH6OPT_RECONF_MSG:
529 if (optlen != 1) {
530 ND_PRINT(" ?)");
531 break;
532 }
533 tp = (const u_char *)(dh6o + 1);
534 dh6_reconf_type = GET_U_1(tp);
535 switch (dh6_reconf_type) {
536 case DH6_RENEW:
537 ND_PRINT(" for renew)");
538 break;
539 case DH6_INFORM_REQ:
540 ND_PRINT(" for inf-req)");
541 break;
542 default:
543 ND_PRINT(" for ?\?\?(%02x))", dh6_reconf_type);
544 break;
545 }
546 break;
547 case DH6OPT_RECONF_ACCEPT: /* nothing todo */
548 ND_PRINT(")");
549 break;
550 case DH6OPT_SIP_SERVER_A:
551 case DH6OPT_DNS_SERVERS:
552 case DH6OPT_SNTP_SERVERS:
553 case DH6OPT_NIS_SERVERS:
554 case DH6OPT_NISP_SERVERS:
555 case DH6OPT_BCMCS_SERVER_A:
556 case DH6OPT_PANA_AGENT:
557 case DH6OPT_LQ_CLIENT_LINK:
558 if (optlen % 16) {
559 ND_PRINT(" ?)");
560 break;
561 }
562 tp = (const u_char *)(dh6o + 1);
563 for (i = 0; i < optlen; i += 16)
564 ND_PRINT(" %s", GET_IP6ADDR_STRING(tp + i));
565 ND_PRINT(")");
566 break;
567 case DH6OPT_SIP_SERVER_D:
568 case DH6OPT_DOMAIN_LIST:
569 tp = (const u_char *)(dh6o + 1);
570 while (tp < cp + sizeof(*dh6o) + optlen) {
571 ND_PRINT(" ");
572 if ((tp = fqdn_print(ndo, tp, cp + sizeof(*dh6o) + optlen)) == NULL)
573 goto trunc;
574 }
575 ND_PRINT(")");
576 break;
577 case DH6OPT_STATUS_CODE:
578 if (optlen < 2) {
579 ND_PRINT(" ?)");
580 break;
581 }
582 tp = (const u_char *)(dh6o + 1);
583 ND_PRINT(" %s)", dhcp6stcode(GET_BE_U_2(tp)));
584 break;
585 case DH6OPT_IA_NA:
586 case DH6OPT_IA_PD:
587 if (optlen < 12) {
588 ND_PRINT(" ?)");
589 break;
590 }
591 tp = (const u_char *)(dh6o + 1);
592 ND_PRINT(" IAID:%u T1:%u T2:%u",
593 GET_BE_U_4(tp),
594 GET_BE_U_4(tp + 4),
595 GET_BE_U_4(tp + 8));
596 if (optlen > 12) {
597 /* there are sub-options */
598 dhcp6opt_print(ndo, tp + 12, tp + optlen);
599 }
600 ND_PRINT(")");
601 break;
602 case DH6OPT_IA_TA:
603 if (optlen < 4) {
604 ND_PRINT(" ?)");
605 break;
606 }
607 tp = (const u_char *)(dh6o + 1);
608 ND_PRINT(" IAID:%u", GET_BE_U_4(tp));
609 if (optlen > 4) {
610 /* there are sub-options */
611 dhcp6opt_print(ndo, tp + 4, tp + optlen);
612 }
613 ND_PRINT(")");
614 break;
615 case DH6OPT_IA_PD_PREFIX:
616 if (optlen < 25) {
617 ND_PRINT(" ?)");
618 break;
619 }
620 tp = (const u_char *)(dh6o + 1);
621 ND_PRINT(" %s/%u", GET_IP6ADDR_STRING(tp + 9),
622 GET_U_1(tp + 8));
623 ND_PRINT(" pltime:%u vltime:%u",
624 GET_BE_U_4(tp),
625 GET_BE_U_4(tp + 4));
626 if (optlen > 25) {
627 /* there are sub-options */
628 dhcp6opt_print(ndo, tp + 25, tp + optlen);
629 }
630 ND_PRINT(")");
631 break;
632 case DH6OPT_LIFETIME:
633 case DH6OPT_CLT_TIME:
634 if (optlen != 4) {
635 ND_PRINT(" ?)");
636 break;
637 }
638 tp = (const u_char *)(dh6o + 1);
639 ND_PRINT(" %u)", GET_BE_U_4(tp));
640 break;
641 case DH6OPT_REMOTE_ID:
642 if (optlen < 4) {
643 ND_PRINT(" ?)");
644 break;
645 }
646 tp = (const u_char *)(dh6o + 1);
647 ND_PRINT(" %u ", GET_BE_U_4(tp));
648 /*
649 * Print hex dump first 10 characters.
650 */
651 for (i = 4; i < optlen && i < 14; i++)
652 ND_PRINT("%02x", GET_U_1(tp + i));
653 ND_PRINT("...)");
654 break;
655 case DH6OPT_LQ_QUERY:
656 if (optlen < 17) {
657 ND_PRINT(" ?)");
658 break;
659 }
660 tp = (const u_char *)(dh6o + 1);
661 dh6_lq_query_type = GET_U_1(tp);
662 switch (dh6_lq_query_type) {
663 case 1:
664 ND_PRINT(" by-address");
665 break;
666 case 2:
667 ND_PRINT(" by-clientID");
668 break;
669 default:
670 ND_PRINT(" type_%u", dh6_lq_query_type);
671 break;
672 }
673 ND_PRINT(" %s", GET_IP6ADDR_STRING(tp + 1));
674 if (optlen > 17) {
675 /* there are query-options */
676 dhcp6opt_print(ndo, tp + 17, tp + optlen);
677 }
678 ND_PRINT(")");
679 break;
680 case DH6OPT_CLIENT_DATA:
681 tp = (const u_char *)(dh6o + 1);
682 if (optlen > 0) {
683 /* there are encapsulated options */
684 dhcp6opt_print(ndo, tp, tp + optlen);
685 }
686 ND_PRINT(")");
687 break;
688 case DH6OPT_LQ_RELAY_DATA:
689 if (optlen < 16) {
690 ND_PRINT(" ?)");
691 break;
692 }
693 tp = (const u_char *)(dh6o + 1);
694 ND_PRINT(" %s ", GET_IP6ADDR_STRING(tp));
695 /*
696 * Print hex dump first 10 characters.
697 */
698 for (i = 16; i < optlen && i < 26; i++)
699 ND_PRINT("%02x", GET_U_1(tp + i));
700 ND_PRINT("...)");
701 break;
702 case DH6OPT_NTP_SERVER:
703 if (optlen < 4) {
704 ND_PRINT(" ?)");
705 break;
706 }
707 tp = (const u_char *)(dh6o + 1);
708 while (tp < cp + sizeof(*dh6o) + optlen - 4) {
709 subopt_code = GET_BE_U_2(tp);
710 tp += 2;
711 subopt_len = GET_BE_U_2(tp);
712 tp += 2;
713 if (tp + subopt_len > cp + sizeof(*dh6o) + optlen)
714 goto trunc;
715 ND_PRINT(" subopt:%u", subopt_code);
716 switch (subopt_code) {
717 case DH6OPT_NTP_SUBOPTION_SRV_ADDR:
718 case DH6OPT_NTP_SUBOPTION_MC_ADDR:
719 if (subopt_len != 16) {
720 ND_PRINT(" ?");
721 break;
722 }
723 ND_PRINT(" %s", GET_IP6ADDR_STRING(tp));
724 break;
725 case DH6OPT_NTP_SUBOPTION_SRV_FQDN:
726 ND_PRINT(" ");
727 if (fqdn_print(ndo, tp, tp + subopt_len) == NULL)
728 goto trunc;
729 break;
730 default:
731 ND_PRINT(" ?");
732 break;
733 }
734 tp += subopt_len;
735 }
736 ND_PRINT(")");
737 break;
738 case DH6OPT_AFTR_NAME:
739 if (optlen < 3) {
740 ND_PRINT(" ?)");
741 break;
742 }
743 tp = (const u_char *)(dh6o + 1);
744 remain_len = optlen;
745 ND_PRINT(" ");
746 /* Encoding is described in section 3.1 of RFC 1035 */
747 while (remain_len && GET_U_1(tp)) {
748 label_len = GET_U_1(tp);
749 tp++;
750 if (label_len < remain_len - 1) {
751 (void)nd_printn(ndo, tp, label_len, NULL);
752 tp += label_len;
753 remain_len -= (label_len + 1);
754 if(GET_U_1(tp)) ND_PRINT(".");
755 } else {
756 ND_PRINT(" ?");
757 break;
758 }
759 }
760 ND_PRINT(")");
761 break;
762 case DH6OPT_NEW_POSIX_TIMEZONE: /* all three of these options */
763 case DH6OPT_NEW_TZDB_TIMEZONE: /* are encoded similarly */
764 case DH6OPT_MUDURL: /* although GMT might not work */
765 if (optlen < 5) {
766 ND_PRINT(" ?)");
767 break;
768 }
769 tp = (const u_char *)(dh6o + 1);
770 ND_PRINT("=");
771 (void)nd_printn(ndo, tp, (u_int)optlen, NULL);
772 ND_PRINT(")");
773 break;
774
775 default:
776 ND_PRINT(")");
777 break;
778 }
779
780 cp += sizeof(*dh6o) + optlen;
781 }
782 return;
783
784 trunc:
785 nd_print_trunc(ndo);
786 }
787
788 /*
789 * Print dhcp6 packets
790 */
791 void
792 dhcp6_print(netdissect_options *ndo,
793 const u_char *cp, u_int length)
794 {
795 const struct dhcp6 *dh6;
796 const struct dhcp6_relay *dh6relay;
797 uint8_t msgtype;
798 const u_char *ep;
799 const u_char *extp;
800 const char *name;
801
802 ndo->ndo_protocol = "dhcp6";
803 ND_PRINT("dhcp6");
804
805 ep = ndo->ndo_snapend;
806 if (cp + length < ep)
807 ep = cp + length;
808
809 dh6 = (const struct dhcp6 *)cp;
810 dh6relay = (const struct dhcp6_relay *)cp;
811 ND_TCHECK_4(dh6->dh6_msgtypexid.xid);
812 msgtype = GET_U_1(dh6->dh6_msgtypexid.msgtype);
813 name = tok2str(dh6_msgtype_str, "msgtype-%u", msgtype);
814
815 if (!ndo->ndo_vflag) {
816 ND_PRINT(" %s", name);
817 return;
818 }
819
820 /* XXX relay agent messages have to be handled differently */
821
822 ND_PRINT(" %s (", name); /*)*/
823 if (msgtype != DH6_RELAY_FORW && msgtype != DH6_RELAY_REPLY) {
824 ND_PRINT("xid=%x",
825 GET_BE_U_4(dh6->dh6_msgtypexid.xid) & DH6_XIDMASK);
826 extp = (const u_char *)(dh6 + 1);
827 dhcp6opt_print(ndo, extp, ep);
828 } else { /* relay messages */
829 ND_TCHECK_16(dh6relay->dh6relay_peeraddr);
830
831 ND_PRINT("linkaddr=%s", GET_IP6ADDR_STRING(dh6relay->dh6relay_linkaddr));
832
833 ND_PRINT(" peeraddr=%s", GET_IP6ADDR_STRING(dh6relay->dh6relay_peeraddr));
834
835 dhcp6opt_print(ndo, (const u_char *)(dh6relay + 1), ep);
836 }
837 /*(*/
838 ND_PRINT(")");
839 return;
840
841 trunc:
842 nd_print_trunc(ndo);
843 }