]> The Tcpdump Group git mirrors - tcpdump/blob - print-ppp.c
add AES and SHA2-*
[tcpdump] / print-ppp.c
1 /*
2 * Copyright (c) 1990, 1991, 1993, 1994, 1995, 1996, 1997
3 * The Regents of the University of California. All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that: (1) source code distributions
7 * retain the above copyright notice and this paragraph in its entirety, (2)
8 * distributions including binary code include the above copyright notice and
9 * this paragraph in its entirety in the documentation or other materials
10 * provided with the distribution, and (3) all advertising materials mentioning
11 * features or use of this software display the following acknowledgement:
12 * ``This product includes software developed by the University of California,
13 * Lawrence Berkeley Laboratory and its contributors.'' Neither the name of
14 * the University nor the names of its contributors may be used to endorse
15 * or promote products derived from this software without specific prior
16 * written permission.
17 * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR IMPLIED
18 * WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED WARRANTIES OF
19 * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
20 *
21 * Extensively modified by Motonori Shindo (mshindo@mshindo.net) for more
22 * complete PPP support.
23 */
24
25 /*
26 * TODO:
27 * o resolve XXX as much as possible
28 * o MP support
29 * o BAP support
30 */
31
32 #ifndef lint
33 static const char rcsid[] =
34 "@(#) $Header: /tcpdump/master/tcpdump/print-ppp.c,v 1.50 2000-09-29 04:58:46 guy Exp $ (LBL)";
35 #endif
36
37 #ifdef HAVE_CONFIG_H
38 #include "config.h"
39 #endif
40
41 #include <sys/param.h>
42 #include <sys/time.h>
43 #include <sys/socket.h>
44 #include <sys/file.h>
45 #include <sys/ioctl.h>
46
47 struct mbuf;
48 struct rtentry;
49
50 #include <netinet/in.h>
51
52 #include <ctype.h>
53 #include <netdb.h>
54 #include <pcap.h>
55 #include <stdio.h>
56 #ifdef __bsdi__
57 #include <net/slcompress.h>
58 #include <net/if_ppp.h>
59 #endif
60
61 #include "interface.h"
62 #include "extract.h"
63 #include "addrtoname.h"
64 #include "ppp.h"
65 #include "chdlc.h"
66 #include "ethertype.h"
67
68 /* XXX This goes somewhere else. */
69 #define PPP_HDRLEN 4
70
71 /*
72 * The following constatns are defined by IANA. Please refer to
73 * http://www.isi.edu/in-notes/iana/assignments/ppp-numbers
74 * for the up-to-date information.
75 */
76
77 /* Control Protocols (LCP/IPCP/CCP etc.) Codes */
78
79 #define CPCODES_VEXT 0 /* Vendor-Specific (RFC2153) */
80 #define CPCODES_CONF_REQ 1 /* Configure-Request */
81 #define CPCODES_CONF_ACK 2 /* Configure-Ack */
82 #define CPCODES_CONF_NAK 3 /* Configure-Nak */
83 #define CPCODES_CONF_REJ 4 /* Configure-Reject */
84 #define CPCODES_TERM_REQ 5 /* Terminate-Request */
85 #define CPCODES_TERM_ACK 6 /* Terminate-Ack */
86 #define CPCODES_CODE_REJ 7 /* Code-Reject */
87 #define CPCODES_PROT_REJ 8 /* Protocol-Reject (LCP only) */
88 #define CPCODES_ECHO_REQ 9 /* Echo-Request (LCP only) */
89 #define CPCODES_ECHO_RPL 10 /* Echo-Reply (LCP only) */
90 #define CPCODES_DISC_REQ 11 /* Discard-Request (LCP only) */
91 #define CPCODES_ID 12 /* Identification (LCP only) */
92 #define CPCODES_TIME_REM 13 /* Time-Remaining (LCP only) */
93 #define CPCODES_RESET_REQ 14 /* Reset-Request (CCP only) */
94 #define CPCODES_RESET_REP 15 /* Reset-Reply (CCP only) */
95
96 #define CPCODES_MIN CPCODES_VEXT
97 #define CPCODES_MAX CPCODES_RESET_REP
98
99 static const char *cpcodes[] = {
100 /*
101 * Control Protocol code values (RFC1661)
102 */
103 "Vend-Ext", /* (0) RFC2153 */
104 "Conf-Req", /* (1) */
105 "Conf-Ack", /* (2) */
106 "Conf-Nak", /* (3) */
107 "Conf-Rej", /* (4) */
108 "Term-Req", /* (5) */
109 "Term-Ack", /* (6) */
110 "Code-Rej", /* (7) */
111 "Prot-Rej", /* (8) */
112 "Echo-Req", /* (9) */
113 "Echo-Rep", /* (10) */
114 "Disc-Req", /* (11) */
115 "Ident", /* (12) RFC1570 */
116 "Time-Rem", /* (13) RFC1570 */
117 "Reset-Req", /* (14) RFC1962 */
118 "Reset-Ack", /* (15) RFC1962 */
119 };
120
121 /* LCP Config Options */
122
123 #define LCPOPT_VEXT 0
124 #define LCPOPT_MRU 1
125 #define LCPOPT_ACCM 2
126 #define LCPOPT_AP 3
127 #define LCPOPT_QP 4
128 #define LCPOPT_MN 5
129 #define LCPOPT_DEP6 6
130 #define LCPOPT_PFC 7
131 #define LCPOPT_ACFC 8
132 #define LCPOPT_FCSALT 9
133 #define LCPOPT_SDP 10
134 #define LCPOPT_NUMMODE 11
135 #define LCPOPT_DEP12 12
136 #define LCPOPT_CBACK 13
137 #define LCPOPT_DEP14 14
138 #define LCPOPT_DEP15 15
139 #define LCPOPT_DEP16 16
140 #define LCPOPT_MLMRRU 17
141 #define LCPOPT_MLSSNHF 18
142 #define LCPOPT_MLED 19
143 #define LCPOPT_PROP 20
144 #define LCPOPT_DCEID 21
145 #define LCPOPT_MPP 22
146 #define LCPOPT_LD 23
147 #define LCPOPT_LCPAOPT 24
148 #define LCPOPT_COBS 25
149 #define LCPOPT_PE 26
150 #define LCPOPT_MLHF 27
151 #define LCPOPT_I18N 28
152 #define LCPOPT_SDLOS 29
153 #define LCPOPT_PPPMUX 30
154
155 #define LCPOPT_MIN LCPOPT_VEXT
156 #define LCPOPT_MAX LCPOPT_PPPMUX
157
158 static const char *lcpconfopts[] = {
159 "Vend-Ext", /* (0) */
160 "MRU", /* (1) */
161 "ACCM", /* (2) */
162 "Auth-Prot", /* (3) */
163 "Qual-Prot", /* (4) */
164 "Magic-Num", /* (5) */
165 "deprecated(6)", /* used to be a Quality Protocol */
166 "PFC", /* (7) */
167 "ACFC", /* (8) */
168 "FCS-Alt", /* (9) */
169 "SDP", /* (10) */
170 "Num-Mode", /* (11) */
171 "deprecated(12)", /* used to be a Multi-Link-Procedure*/
172 "Call-Back", /* (13) */
173 "deprecated(14)", /* used to be a Connect-Time */
174 "deprecated(15)", /* used to be a Compund-Frames */
175 "deprecated(16)", /* used to be a Nominal-Data-Encap */
176 "MRRU", /* (17) */
177 "SSNHF", /* (18) */
178 "End-Disc", /* (19) */
179 "Proprietary", /* (20) */
180 "DCE-Id", /* (21) */
181 "MP+", /* (22) */
182 "Link-Disc", /* (23) */
183 "LCP-Auth-Opt", /* (24) */
184 "COBS", /* (25) */
185 "Prefix-elision", /* (26) */
186 "Multilink-header-Form",/* (27) */
187 "I18N", /* (28) */
188 "SDL-over-SONET/SDH", /* (29) */
189 "PPP-Muxing", /* (30) */
190 };
191
192 /* IPV6CP - to be supported */
193 /* ECP - to be supported */
194
195 /* CCP Config Options */
196
197 #define CCPOPT_OUI 0 /* RFC1962 */
198 #define CCPOPT_PRED1 1 /* RFC1962 */
199 #define CCPOPT_PRED2 2 /* RFC1962 */
200 #define CCPOPT_PJUMP 3 /* RFC1962 */
201 /* 4-15 unassigned */
202 #define CCPOPT_HPPPC 16 /* RFC1962 */
203 #define CCPOPT_STACLZS 17 /* RFC1974 */
204 #define CCPOPT_MPPC 18 /* RFC2118 */
205 #define CCPOPT_GFZA 19 /* RFC1962 */
206 #define CCPOPT_V42BIS 20 /* RFC1962 */
207 #define CCPOPT_BSDCOMP 21 /* RFC1977 */
208 /* 22 unassigned */
209 #define CCPOPT_LZSDCP 23 /* RFC1967 */
210 #define CCPOPT_MVRCA 24 /* RFC1975 */
211 #define CCPOPT_DEC 25 /* RFC1976 */
212 #define CCPOPT_DEFLATE 26 /* RFC1979 */
213 /* 27-254 unassigned */
214 #define CCPOPT_RESV 255 /* RFC1962 */
215
216 #define CCPOPT_MIN CCPOPT_OUI
217 #define CCPOPT_MAX CCPOPT_DEFLATE /* XXX: should be CCPOPT_RESV but... */
218
219 static const char *ccpconfopts[] = {
220 "OUI", /* (0) */
221 "Pred-1", /* (1) */
222 "Pred-2", /* (2) */
223 "Puddle", /* (3) */
224 "unassigned(4)", /* (4) */
225 "unassigned(5)", /* (5) */
226 "unassigned(6)", /* (6) */
227 "unassigned(7)", /* (7) */
228 "unassigned(8)", /* (8) */
229 "unassigned(9)", /* (9) */
230 "unassigned(10)", /* (10) */
231 "unassigned(11)", /* (11) */
232 "unassigned(12)", /* (12) */
233 "unassigned(13)", /* (13) */
234 "unassigned(14)", /* (14) */
235 "unassigned(15)", /* (15) */
236 "HP-PPC", /* (16) */
237 "Stac-LZS", /* (17) */
238 "MPPC", /* (18) */
239 "Gand-FZA", /* (19) */
240 "V.42bis", /* (20) */
241 "BSD-Comp", /* (21) */
242 "unassigned(22)", /* (22) */
243 "LZS-DCP", /* (23) */
244 "MVRCA", /* (24) */
245 "DEC", /* (25) */
246 "Deflate", /* (26) */
247 };
248
249 /* BACP Config Options */
250
251 #define BACPOPT_FPEER 1 /* RFC2125 */
252
253 /* SDCP - to be supported */
254
255 /* IPCP Config Options */
256
257 #define IPCPOPT_2ADDR 1 /* RFC1172, RFC1332 (deprecated) */
258 #define IPCPOPT_IPCOMP 2 /* RFC1332 */
259 #define IPCPOPT_ADDR 3 /* RFC1332 */
260 #define IPCPOPT_MOBILE4 4 /* RFC2290 */
261
262 #define IPCPOPT_PRIDNS 129 /* RFC1877 */
263 #define IPCPOPT_PRINBNS 130 /* RFC1877 */
264 #define IPCPOPT_SECDNS 131 /* RFC1877 */
265 #define IPCPOPT_SECNBNS 132 /* RFC1877 */
266
267 /* ATCP - to be supported */
268 /* OSINLCP - to be supported */
269 /* BVCP - to be supported */
270 /* BCP - to be supported */
271 /* IPXCP - to be supported */
272
273 /* Auth Algorithms */
274
275 /* 0-4 Reserved (RFC1994) */
276 #define AUTHALG_CHAPMD5 5 /* RFC1994 */
277 #define AUTHALG_MSCHAP1 128 /* RFC2433 */
278 #define AUTHALG_MSCHAP2 129 /* RFC2795 */
279
280 /* FCS Alternatives - to be supported */
281
282 /* Multilink Endpoint Discriminator (RFC1717) */
283 #define MEDCLASS_NULL 0 /* Null Class */
284 #define MEDCLASS_LOCAL 1 /* Locally Assigned */
285 #define MEDCLASS_IPV4 2 /* Internet Protocol (IPv4) */
286 #define MEDCLASS_MAC 3 /* IEEE 802.1 global MAC address */
287 #define MEDCLASS_MNB 4 /* PPP Magic Number Block */
288 #define MEDCLASS_PSNDN 5 /* Public Switched Network Director Number */
289
290 /* PPP LCP Callback */
291 #define CALLBACK_AUTH 0 /* Location determined by user auth */
292 #define CALLBACK_DSTR 1 /* Dialing string */
293 #define CALLBACK_LID 2 /* Location identifier */
294 #define CALLBACK_E164 3 /* E.164 number */
295 #define CALLBACK_X500 4 /* X.500 distinguished name */
296 #define CALLBACK_CBCP 6 /* Location is determined during CBCP nego */
297
298 /* CHAP */
299
300 #define CHAP_CHAL 1
301 #define CHAP_RESP 2
302 #define CHAP_SUCC 3
303 #define CHAP_FAIL 4
304
305 #define CHAP_CODEMIN CHAP_CHAL
306 #define CHAP_CODEMAX CHAP_FAIL
307
308 static const char *chapcode[] = {
309 "Chal", /* (1) */
310 "Resp", /* (2) */
311 "Succ", /* (3) */
312 "Fail", /* (4) */
313 };
314
315 /* PAP */
316
317 #define PAP_AREQ 1
318 #define PAP_AACK 2
319 #define PAP_ANAK 3
320
321 #define PAP_CODEMIN PAP_AREQ
322 #define PAP_CODEMAX PAP_ANAK
323
324 static const char *papcode[] = {
325 "Auth-Req", /* (1) */
326 "Auth-Ack", /* (2) */
327 "Auth-Nak", /* (3) */
328 };
329
330 /* BAP */
331 #define BAP_CALLREQ 1
332 #define BAP_CALLRES 2
333 #define BAP_CBREQ 3
334 #define BAP_CBRES 4
335 #define BAP_LDQREQ 5
336 #define BAP_LDQRES 6
337 #define BAP_CSIND 7
338 #define BAP_CSRES 8
339
340 static const char *ppp_protoname __P((u_int proto));
341 static void handle_ctrl_proto __P((u_int proto,const u_char *p, int length));
342 static void handle_chap __P((const u_char *p, int length));
343 static void handle_pap __P((const u_char *p, int length));
344 static void handle_bap __P((const u_char *p, int length));
345 static int print_lcp_config_options __P((const u_char *p, int));
346 static int print_ipcp_config_options __P((const u_char *p, int));
347 static int print_ccp_config_options __P((const u_char *p, int));
348 static int print_bacp_config_options __P((const u_char *p, int));
349 static void handle_ppp __P((u_int proto, const u_char *p, int length));
350
351 static const char *
352 ppp_protoname(u_int proto)
353 {
354 static char buf[20];
355
356 switch (proto) {
357 case PPP_IP: return "IP";
358 #ifdef PPP_XNS
359 case PPP_XNS: return "XNS";
360 #endif
361 case PPP_IPX: return "IPX";
362 case PPP_VJC: return "VJC";
363 case PPP_VJNC: return "VJNC";
364 #ifdef PPP_COMP
365 case PPP_COMP: return "COMP";
366 #endif
367 case PPP_IPCP: return "IPCP";
368 case PPP_IPV6CP: return "IPV6CP";
369 case PPP_IPXCP: return "IPXCP";
370 case PPP_CCP: return "CCP";
371 case PPP_LCP: return "LCP";
372 case PPP_PAP: return "PAP";
373 #ifdef PPP_LQR
374 case PPP_LQR: return "LQR";
375 #endif
376 case PPP_CHAP: return "CHAP";
377 case PPP_BACP: return "BACP";
378 case PPP_BAP: return "BAP";
379 default:
380 snprintf(buf, sizeof(buf), "unknown-0x%04x", proto);
381 return buf;
382 }
383 }
384
385 /* generic Control Protocol (e.g. LCP, IPCP, CCP, etc.) handler */
386 static void
387 handle_ctrl_proto(u_int proto, const u_char *p, int length)
388 {
389 u_int code, len;
390 int (*pfunc)(const u_char *, int);
391 int x, j;
392
393 if (length < 1) {
394 printf("[|%s]", ppp_protoname(proto));
395 return;
396 } else if (length < 4) {
397 printf("[|%s 0x%02x]", ppp_protoname(proto), *p);
398 return;
399 }
400
401 code = *p;
402 if ((code >= CPCODES_MIN) && (code <= CPCODES_MAX))
403 printf("%s", cpcodes[code]);
404 else {
405 printf("0x%02x", code);
406 return;
407 }
408 p++;
409
410 printf("(%u)", *p); /* ID */
411 p++;
412
413 len = EXTRACT_16BITS(p);
414 p += 2;
415
416 if (length <= 4)
417 return; /* there may be a NULL confreq etc. */
418
419 switch (code) {
420 case CPCODES_VEXT:
421 if (length < 11)
422 break;
423 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
424 p += 4;
425 printf(" OUI=%02x%02x%02x", p[0], p[1], p[2]);
426 /* XXX: need to decode Kind and Value(s)? */
427 break;
428 case CPCODES_CONF_REQ:
429 case CPCODES_CONF_ACK:
430 case CPCODES_CONF_NAK:
431 case CPCODES_CONF_REJ:
432 x = len - 4; /* Code(1), Identifier(1) and Length(2) */
433 do {
434 switch (proto) {
435 case PPP_LCP:
436 pfunc = print_lcp_config_options;
437 break;
438 case PPP_IPCP:
439 pfunc = print_ipcp_config_options;
440 break;
441 case PPP_CCP:
442 pfunc = print_ccp_config_options;
443 break;
444 case PPP_BACP:
445 pfunc = print_bacp_config_options;
446 break;
447 }
448 if ((j = (*pfunc)(p, len)) == 0)
449 break;
450 x -= j;
451 p += j;
452 } while (x > 0);
453 break;
454
455 case CPCODES_TERM_REQ:
456 case CPCODES_TERM_ACK:
457 /* XXX: need to decode Data? */
458 break;
459 case CPCODES_CODE_REJ:
460 /* XXX: need to decode Rejected-Packet? */
461 break;
462 case CPCODES_PROT_REJ:
463 if (length < 6)
464 break;
465 printf(", Rejected-Protocol=%04x", EXTRACT_16BITS(p));
466 /* XXX: need to decode Rejected-Information? */
467 break;
468 case CPCODES_ECHO_REQ:
469 case CPCODES_ECHO_RPL:
470 case CPCODES_DISC_REQ:
471 case CPCODES_ID:
472 if (length < 8)
473 break;
474 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
475 /* XXX: need to decode Data? */
476 break;
477 case CPCODES_TIME_REM:
478 if (length < 12)
479 break;
480 printf(", Magic-Num=%08x", EXTRACT_32BITS(p));
481 printf(" Seconds-Remaining=%u", EXTRACT_32BITS(p + 4));
482 /* XXX: need to decode Message? */
483 break;
484 default:
485 printf(", unknown-Codes-0x%02x", code);
486 break;
487 }
488 }
489
490 /* LCP config options */
491 static int
492 print_lcp_config_options(const u_char *p, int length)
493 {
494 int len, opt;
495 int i;
496
497 if (length < 2)
498 return 0;
499 len = p[1];
500 opt = p[0];
501 if (length < len)
502 return 0;
503 if ((opt >= LCPOPT_MIN) && (opt <= LCPOPT_MAX))
504 printf(", %s", lcpconfopts[opt]);
505 else {
506 printf(", unknwhown-%d", opt);
507 return len;
508 }
509
510 switch (opt) {
511 case LCPOPT_VEXT:
512 if (len >= 6) {
513 printf(" OUI=%02x%02x%02x", p[2], p[3], p[4]);
514 #if 0
515 printf(" kind=%02x", p[5]);
516 printf(" val=")
517 for (i = 0; i < len - 6; i++) {
518 printf("%02x", p[6 + i]);
519 }
520 #endif
521 }
522 break;
523 case LCPOPT_MRU:
524 if (len == 4)
525 printf("=%u", EXTRACT_16BITS(p + 2));
526 break;
527 case LCPOPT_ACCM:
528 if (len == 6)
529 printf("=%08x", EXTRACT_32BITS(p + 2));
530 break;
531 case LCPOPT_AP:
532 if (len >= 4) {
533 if (p[2] == 0xc0 && p[3] == 0x23)
534 printf(" PAP");
535 else if (p[2] == 0xc2 && p[3] == 0x23) {
536 printf(" CHAP/");
537 switch (p[4]) {
538 default:
539 printf("unknown-algorithm-%u", p[4]);
540 break;
541 case AUTHALG_CHAPMD5:
542 printf("MD5");
543 break;
544 case AUTHALG_MSCHAP1:
545 printf("MSCHAPv1");
546 break;
547 case AUTHALG_MSCHAP2:
548 printf("MSCHAPv2");
549 break;
550 }
551 }
552 else if (p[2] == 0xc2 && p[3] == 0x27)
553 printf(" EAP");
554 else if (p[2] == 0xc0 && p[3] == 0x27)
555 printf(" SPAP");
556 else if (p[2] == 0xc1 && p[3] == 0x23)
557 printf(" Old-SPAP");
558 else
559 printf("unknown");
560 }
561 break;
562 case LCPOPT_QP:
563 if (len >= 4) {
564 if (p[2] == 0xc0 && p[3] == 0x25)
565 printf(" LQR");
566 else
567 printf(" unknown");
568 }
569 break;
570 case LCPOPT_MN:
571 if (len == 6)
572 printf("=%08x", EXTRACT_32BITS(p + 2));
573 break;
574 case LCPOPT_PFC:
575 break;
576 case LCPOPT_ACFC:
577 break;
578 case LCPOPT_LD:
579 if (len == 4)
580 printf("=%04x", EXTRACT_16BITS(p + 2));
581 break;
582 case LCPOPT_CBACK:
583 if (len < 3)
584 break;
585 switch (p[2]) { /* Operation */
586 case CALLBACK_AUTH:
587 printf(" UserAuth");
588 break;
589 case CALLBACK_DSTR:
590 printf(" DialString");
591 break;
592 case CALLBACK_LID:
593 printf(" LocalID");
594 break;
595 case CALLBACK_E164:
596 printf(" E.164");
597 break;
598 case CALLBACK_X500:
599 printf(" X.500");
600 break;
601 case CALLBACK_CBCP:
602 printf(" CBCP");
603 break;
604 default:
605 printf(" unknown-operation=%u", p[2]);
606 break;
607 }
608 break;
609 case LCPOPT_MLMRRU:
610 if (len == 4)
611 printf("=%u", EXTRACT_16BITS(p + 2));
612 break;
613 case LCPOPT_MLED:
614 if (len < 3)
615 break;
616 switch (p[2]) { /* class */
617 case MEDCLASS_NULL:
618 printf(" Null");
619 break;
620 case MEDCLASS_LOCAL:
621 printf(" Local"); /* XXX */
622 break;
623 case MEDCLASS_IPV4:
624 if (len != 7)
625 break;
626 printf(" IPv4=%s", ipaddr_string(p + 3));
627 break;
628 case MEDCLASS_MAC:
629 if (len != 9)
630 break;
631 printf(" MAC=%02x:%02x:%02x:%02x:%02x:%02x",
632 p[3], p[4], p[5], p[6], p[7], p[8]);
633 break;
634 case MEDCLASS_MNB:
635 printf(" Magic-Num-Block"); /* XXX */
636 break;
637 case MEDCLASS_PSNDN:
638 printf(" PSNDN"); /* XXX */
639 break;
640 }
641 break;
642
643 /* XXX: to be supported */
644 #if 0
645 case LCPOPT_DEP6:
646 case LCPOPT_FCSALT:
647 case LCPOPT_SDP:
648 case LCPOPT_NUMMODE:
649 case LCPOPT_DEP12:
650 case LCPOPT_DEP14:
651 case LCPOPT_DEP15:
652 case LCPOPT_DEP16:
653 case LCPOPT_MLSSNHF:
654 case LCPOPT_PROP:
655 case LCPOPT_DCEID:
656 case LCPOPT_MPP:
657 case LCPOPT_LCPAOPT:
658 case LCPOPT_COBS:
659 case LCPOPT_PE:
660 case LCPOPT_MLHF:
661 case LCPOPT_I18N:
662 case LCPOPT_SDLOS:
663 case LCPOPT_PPPMUX:
664 break;
665 #endif
666 }
667 return len;
668 }
669
670 /* CHAP */
671 static void
672 handle_chap(const u_char *p, int length)
673 {
674 u_int code, len;
675 int val_size, name_size, msg_size;
676 const u_char *p0;
677 int i;
678
679 p0 = p;
680 if (length < 1) {
681 printf("[|chap]");
682 return;
683 } else if (length < 4) {
684 printf("[|chap 0x%02x]", *p);
685 return;
686 }
687
688 code = *p;
689 if ((code >= CHAP_CODEMIN) && (code <= CHAP_CODEMAX))
690 printf("%s", chapcode[code - 1]);
691 else {
692 printf("0x%02x", code);
693 return;
694 }
695 p++;
696
697 printf("(%u)", *p); /* ID */
698 p++;
699
700 len = EXTRACT_16BITS(p);
701 p += 2;
702
703 /*
704 * Note that this is a generic CHAP decoding routine. Since we
705 * don't know which flavor of CHAP (i.e. CHAP-MD5, MS-CHAPv1,
706 * MS-CHAPv2) is used at this point, we can't decode packet
707 * specifically to each algorithms. Instead, we simply decode
708 * the GCD (Gratest Common Denominator) for all algorithms.
709 */
710 switch (code) {
711 case CHAP_CHAL:
712 case CHAP_RESP:
713 if (length - (p - p0) < 1)
714 return;
715 val_size = *p; /* value size */
716 p++;
717 if (length - (p - p0) < val_size)
718 return;
719 printf(", Value=");
720 for (i = 0; i < val_size; i++)
721 printf("%02x", *p++);
722 name_size = len - (p - p0);
723 printf(", Name=");
724 for (i = 0; i < name_size; i++)
725 safeputchar(*p++);
726 break;
727 case CHAP_SUCC:
728 case CHAP_FAIL:
729 msg_size = len - (p - p0);
730 printf(", Msg=");
731 for (i = 0; i< msg_size; i++)
732 safeputchar(*p++);
733 break;
734 }
735 }
736
737 /* PAP (see RFC 1334) */
738 static void
739 handle_pap(const u_char *p, int length)
740 {
741 u_int code, len;
742 int peerid_len, passwd_len, msg_len;
743 const u_char *p0;
744 int i;
745
746 p0 = p;
747 if (length < 1) {
748 printf("[|pap]");
749 return;
750 } else if (length < 4) {
751 printf("[|pap 0x%02x]", *p);
752 return;
753 }
754
755 code = *p;
756 if (length < 4)
757 if ((code >= PAP_CODEMIN) && (code <= PAP_CODEMAX))
758 printf("%s", papcode[code - 1]);
759 else {
760 printf("0x%02x", code);
761 return;
762 }
763 p++;
764
765 printf("(%u)", *p); /* ID */
766 p++;
767
768 len = EXTRACT_16BITS(p);
769 p += 2;
770
771 switch (code) {
772 case PAP_AREQ:
773 if (length - (p - p0) < 1)
774 return;
775 peerid_len = *p; /* Peer-ID Length */
776 p++;
777 if (length - (p - p0) < peerid_len)
778 return;
779 printf(", Peer=");
780 for (i = 0; i < peerid_len; i++)
781 safeputchar(*p++);
782
783 if (length - (p - p0) < 1)
784 return;
785 passwd_len = *p; /* Password Length */
786 p++;
787 if (length - (p - p0) < passwd_len)
788 return;
789 printf(", Name=");
790 for (i = 0; i < passwd_len; i++)
791 safeputchar(*p++);
792 break;
793 case PAP_AACK:
794 case PAP_ANAK:
795 if (length - (p - p0) < 1)
796 return;
797 msg_len = *p; /* Msg-Length */
798 p++;
799 if (length - (p - p0) < msg_len)
800 return;
801 printf(", Msg=");
802 for (i = 0; i< msg_len; i++)
803 safeputchar(*p++);
804 break;
805 }
806 return;
807 }
808
809 /* BAP */
810 static void
811 handle_bap(const u_char *p, int length)
812 {
813 /* XXX: to be supported!! */
814 }
815
816
817 /* IPCP config options */
818 static int
819 print_ipcp_config_options(const u_char *p, int length)
820 {
821 int len, opt;
822
823 if (length < 2)
824 return 0;
825 len = p[1];
826 opt = p[0];
827 if (length < len)
828 return 0;
829 switch (opt) {
830 case IPCPOPT_2ADDR: /* deprecated */
831 if (len != 10)
832 goto invlen;
833 printf(", IP-Addrs src=%s dst=%s",
834 ipaddr_string(p + 2),
835 ipaddr_string(p + 6));
836 break;
837 case IPCPOPT_IPCOMP:
838 if (len != 4)
839 goto invlen;
840 printf(", IP-Comp");
841 if (EXTRACT_16BITS(p + 2) == PPP_VJC) {
842 printf(" VJ-Comp");
843 /* XXX: VJ-Comp parameters should be decoded */
844 } else
845 printf(" unknown-comp-proto=%04x", EXTRACT_16BITS(p + 2));
846 break;
847 case IPCPOPT_ADDR:
848 if (len != 6)
849 goto invlen;
850 printf(", IP-Addr=%s", ipaddr_string(p + 2));
851 break;
852 case IPCPOPT_MOBILE4:
853 if (len != 6)
854 goto invlen;
855 printf(", Home-Addr=%s", ipaddr_string(p + 2));
856 break;
857 case IPCPOPT_PRIDNS:
858 if (len != 6)
859 goto invlen;
860 printf(", Pri-DNS=%s", ipaddr_string(p + 2));
861 break;
862 case IPCPOPT_PRINBNS:
863 if (len != 6)
864 goto invlen;
865 printf(", Pri-NBNS=%s", ipaddr_string(p + 2));
866 break;
867 case IPCPOPT_SECDNS:
868 if (len != 6)
869 goto invlen;
870 printf(", Sec-DNS=%s", ipaddr_string(p + 2));
871 break;
872 case IPCPOPT_SECNBNS:
873 if (len != 6)
874 goto invlen;
875 printf(", Sec-NBNS=%s", ipaddr_string(p + 2));
876 break;
877 default:
878 printf(", unknown-%d", opt);
879 break;
880 }
881 return len;
882
883 invlen:
884 printf(", invalid-length-%d", opt);
885 return 0;
886 }
887
888 /* CCP config options */
889 static int
890 print_ccp_config_options(const u_char *p, int length)
891 {
892 int len, opt;
893
894 if (length < 2)
895 return 0;
896 len = p[1];
897 opt = p[0];
898 if (length < len)
899 return 0;
900 if ((opt >= CCPOPT_MIN) && (opt <= CCPOPT_MAX))
901 printf(", %s", ccpconfopts[opt]);
902 #if 0 /* XXX */
903 switch (opt) {
904 case CCPOPT_OUI:
905 case CCPOPT_PRED1:
906 case CCPOPT_PRED2:
907 case CCPOPT_PJUMP:
908 case CCPOPT_HPPPC:
909 case CCPOPT_STACLZS:
910 case CCPOPT_MPPC:
911 case CCPOPT_GFZA:
912 case CCPOPT_V42BIS:
913 case CCPOPT_BSDCOMP:
914 case CCPOPT_LZSDCP:
915 case CCPOPT_MVRCA:
916 case CCPOPT_DEC:
917 case CCPOPT_DEFLATE:
918 case CCPOPT_RESV:
919 break;
920
921 default:
922 printf(", unknown-%d", opt);
923 break;
924 }
925 #endif
926 return len;
927 }
928
929 /* BACP config options */
930 static int
931 print_bacp_config_options(const u_char *p, int length)
932 {
933 int len, opt;
934
935 if (length < 2)
936 return 0;
937 len = p[1];
938 opt = p[0];
939 if (length < len)
940 return 0;
941 if (opt == BACPOPT_FPEER) {
942 printf(", Favored-Peer");
943 printf(" Magic-Num=%08x", EXTRACT_32BITS(p + 2));
944 } else {
945 printf(", unknown-option-%d", opt);
946 }
947 return len;
948 }
949
950
951 /* PPP */
952 static void
953 handle_ppp(u_int proto, const u_char *p, int length)
954 {
955 switch (proto) {
956 case PPP_LCP:
957 case PPP_IPCP:
958 case PPP_CCP:
959 case PPP_BACP:
960 handle_ctrl_proto(proto, p, length);
961 break;
962 case PPP_CHAP:
963 handle_chap(p, length);
964 break;
965 case PPP_PAP:
966 handle_pap(p, length);
967 break;
968 case PPP_BAP: /* XXX: not yet completed */
969 handle_bap(p, length);
970 break;
971 case ETHERTYPE_IP: /*XXX*/
972 case PPP_IP:
973 ip_print(p, length);
974 break;
975 #ifdef INET6
976 case ETHERTYPE_IPV6: /*XXX*/
977 case PPP_IPV6:
978 ip6_print(p, length);
979 break;
980 #endif
981 case ETHERTYPE_IPX: /*XXX*/
982 case PPP_IPX:
983 ipx_print(p, length);
984 break;
985 }
986 }
987
988 /* Standard PPP printer */
989 void
990 ppp_print(register const u_char *p, u_int length)
991 {
992 u_int proto;
993
994 /*
995 * Here, we assume that p points to the Address and Control
996 * field (if they present).
997 */
998 if (length < 2)
999 goto trunc;
1000 if (*p == PPP_ADDRESS && *(p + 1) == PPP_CONTROL) {
1001 p += 2; /* ACFC not used */
1002 length -= 2;
1003 }
1004
1005 if (length < 2)
1006 goto trunc;
1007 if (*p % 2) {
1008 proto = *p; /* PFC is used */
1009 p++;
1010 length--;
1011 } else {
1012 proto = EXTRACT_16BITS(p);
1013 p += 2;
1014 length -= 2;
1015 }
1016
1017 printf("%s: ", ppp_protoname(proto));
1018
1019 handle_ppp(proto, p, length);
1020 return;
1021 trunc:
1022 printf("[|ppp]");
1023 }
1024
1025
1026 /* PPP I/F printer */
1027 void
1028 ppp_if_print(u_char *user, const struct pcap_pkthdr *h,
1029 register const u_char *p)
1030 {
1031 register u_int length = h->len;
1032 register u_int caplen = h->caplen;
1033 const struct ip *ip;
1034 u_int proto;
1035
1036 ts_print(&h->ts);
1037
1038 if (caplen < PPP_HDRLEN) {
1039 printf("[|ppp]");
1040 goto out;
1041 }
1042
1043 /*
1044 * Some printers want to get back at the link level addresses,
1045 * and/or check that they're not walking off the end of the packet.
1046 * Rather than pass them all the way down, we set these globals. */
1047
1048 packetp = p;
1049 snapend = p + caplen;
1050
1051 #if 0
1052 /*
1053 * XXX: seems to assume that there are 2 octets prepended to an
1054 * actual PPP frame. The 1st octet looks like Input/Output flag
1055 * while 2nd octet is unknown, at least to me
1056 * (mshindo@mshindo.net).
1057 *
1058 * That was what the original tcpdump code did.
1059 *
1060 * FreeBSD's "if_ppp.c" *does* set the first octet to 1 for outbound
1061 * packets and 0 for inbound packets - but only if the
1062 * protocol field has the 0x8000 bit set (i.e., it's a network
1063 * control protocol); it does so before running the packet through
1064 * "bpf_filter" to see if it should be discarded, and to see
1065 * if we should update the time we sent the most recent packet...
1066 *
1067 * ...but it puts the original address field back after doing
1068 * so.
1069 *
1070 * NetBSD's "if_ppp.c" doesn't set the first octet in that fashion.
1071 *
1072 * I don't know if any PPP implementation handed up to a BPF
1073 * device packets with the first octet being 1 for outbound and
1074 * 0 for inbound packets, so I (guy@alum.mit.edu) don't know
1075 * whether that ever needs to be checked or not.
1076 *
1077 * Note that NetBSD has a DLT_PPP_SERIAL, which it uses for PPP,
1078 * and its tcpdump appears to assume that the frame always
1079 * begins with an address field and a control field, and that
1080 * the address field might be 0x0f or 0x8f, for Cisco
1081 * point-to-point with HDLC framing as per section 4.3.1 of RFC
1082 * 1547, as well as 0xff, for PPP in HDLC-like framing as per
1083 * RFC 1662.
1084 *
1085 * (Is the Cisco framing in question what DLT_C_HDLC, in
1086 * BSD/OS, is?)
1087 */
1088 if (eflag)
1089 printf("%c %4d %02x ", p[0] ? 'O' : 'I', length, p[1]);
1090 #endif
1091
1092 ppp_print(p, length);
1093
1094 if (xflag)
1095 default_print(p, caplen);
1096 out:
1097 putchar('\n');
1098 }
1099
1100 /*
1101 * PPP I/F printer to use if we know that RFC 1662-style PPP in HDLC-like
1102 * framing, or Cisco PPP with HDLC framing as per section 4.3.1 of RFC 1547,
1103 * is being used (i.e., we don't check for PPP_ADDRESS and PPP_CONTROL,
1104 * discard them *if* those are the first two octets, and parse the remaining
1105 * packet as a PPP packet, as "ppp_print()" does).
1106 *
1107 * This handles, for example, DLT_PPP_SERIAL in NetBSD.
1108 */
1109 void
1110 ppp_hdlc_if_print(u_char *user, const struct pcap_pkthdr *h,
1111 register const u_char *p)
1112 {
1113 register u_int length = h->len;
1114 register u_int caplen = h->caplen;
1115 u_int proto;
1116
1117 if (caplen < 2) {
1118 printf("[|ppp]");
1119 goto out;
1120 }
1121
1122 /*
1123 * Some printers want to get back at the link level addresses,
1124 * and/or check that they're not walking off the end of the packet.
1125 * Rather than pass them all the way down, we set these globals.
1126 */
1127 packetp = p;
1128 snapend = p + caplen;
1129
1130 switch (p[0]) {
1131
1132 case PPP_ADDRESS:
1133 if (caplen < 4) {
1134 printf("[|ppp]");
1135 goto out;
1136 }
1137
1138 ts_print(&h->ts);
1139 if (eflag)
1140 printf("%02x %02x %d ", p[0], p[1], length);
1141 p += 2;
1142 length -= 2;
1143
1144 proto = EXTRACT_16BITS(p);
1145 p += 2;
1146 length -= 2;
1147 printf("%s: ", ppp_protoname(proto));
1148
1149 handle_ppp(proto, p, length);
1150 break;
1151
1152 case CHDLC_UNICAST:
1153 case CHDLC_BCAST:
1154 /*
1155 * Have the Cisco HDLC print routine do all the work.
1156 */
1157 chdlc_if_print(user, h, p);
1158 return;
1159
1160 default:
1161 ts_print(&h->ts);
1162 if (eflag)
1163 printf("%02x %02x %d ", p[0], p[1], length);
1164 p += 2;
1165 length -= 2;
1166
1167 /*
1168 * XXX - NetBSD's "ppp_netbsd_serial_if_print()" treats
1169 * the next two octets as an Ethernet type; does that
1170 * ever happen?
1171 */
1172 printf("unknown addr %02x; ctrl %02x", p[0], p[1]);
1173 break;
1174 }
1175
1176 if (xflag)
1177 default_print(p, caplen);
1178 out:
1179 putchar('\n');
1180 }
1181
1182
1183
1184 struct tok ppptype2str[] = {
1185 { PPP_IP, "IP" },
1186 { PPP_OSI, "OSI" },
1187 { PPP_NS, "NS" },
1188 { PPP_DECNET, "DECNET" },
1189 { PPP_APPLE, "APPLE" },
1190 { PPP_IPX, "IPX" },
1191 { PPP_VJC, "VJC" },
1192 { PPP_VJNC, "VJNC" },
1193 { PPP_BRPDU, "BRPDU" },
1194 { PPP_STII, "STII" },
1195 { PPP_VINES, "VINES" },
1196
1197 { PPP_HELLO, "HELLO" },
1198 { PPP_LUXCOM, "LUXCOM" },
1199 { PPP_SNS, "SNS" },
1200 { PPP_IPCP, "IPCP" },
1201 { PPP_OSICP, "OSICP" },
1202 { PPP_NSCP, "NSCP" },
1203 { PPP_DECNETCP, "DECNETCP" },
1204 { PPP_APPLECP, "APPLECP" },
1205 { PPP_IPXCP, "IPXCP" },
1206 { PPP_STIICP, "STIICP" },
1207 { PPP_VINESCP, "VINESCP" },
1208
1209 { PPP_LCP, "LCP" },
1210 { PPP_PAP, "PAP" },
1211 { PPP_LQM, "LQM" },
1212 { PPP_CHAP, "CHAP" },
1213 { PPP_BACP, "BACP" },
1214 { PPP_BAP, "BAP" },
1215 { PPP_MP, "MP" },
1216 { 0, NULL }
1217 };
1218
1219 #define PPP_BSDI_HDRLEN 24
1220
1221 /* BSD/OS specific PPP printer */
1222 void
1223 ppp_bsdos_if_print(u_char *user, const struct pcap_pkthdr *h,
1224 register const u_char *p)
1225 {
1226 #ifdef __bsdi__
1227 register u_int length = h->len;
1228 register u_int caplen = h->caplen;
1229 register int hdrlength;
1230 u_int16_t ptype;
1231 const u_char *q;
1232 int i;
1233
1234 ts_print(&h->ts);
1235
1236 if (caplen < PPP_BSDI_HDRLEN) {
1237 printf("[|ppp]");
1238 goto out;
1239 }
1240
1241 /*
1242 * Some printers want to get back at the link level addresses,
1243 * and/or check that they're not walking off the end of the packet.
1244 * Rather than pass them all the way down, we set these globals.
1245 */
1246 packetp = p;
1247 snapend = p + caplen;
1248 hdrlength = 0;
1249
1250 #if 0
1251 if (p[0] == PPP_ADDRESS && p[1] == PPP_CONTROL) {
1252 if (eflag)
1253 printf("%02x %02x ", p[0], p[1]);
1254 p += 2;
1255 hdrlength = 2;
1256 }
1257
1258 if (eflag)
1259 printf("%d ", length);
1260 /* Retrieve the protocol type */
1261 if (*p & 01) {
1262 /* Compressed protocol field */
1263 ptype = *p;
1264 if (eflag)
1265 printf("%02x ", ptype);
1266 p++;
1267 hdrlength += 1;
1268 } else {
1269 /* Un-compressed protocol field */
1270 ptype = ntohs(*(u_int16_t *)p);
1271 if (eflag)
1272 printf("%04x ", ptype);
1273 p += 2;
1274 hdrlength += 2;
1275 }
1276 #else
1277 ptype = 0; /*XXX*/
1278 if (eflag)
1279 printf("%c ", p[SLC_DIR] ? 'O' : 'I');
1280 if (p[SLC_LLHL]) {
1281 /* link level header */
1282 struct ppp_header *ph;
1283
1284 q = p + SLC_BPFHDRLEN;
1285 ph = (struct ppp_header *)q;
1286 if (ph->phdr_addr == PPP_ADDRESS
1287 && ph->phdr_ctl == PPP_CONTROL) {
1288 if (eflag)
1289 printf("%02x %02x ", q[0], q[1]);
1290 ptype = ntohs(ph->phdr_type);
1291 if (eflag && (ptype == PPP_VJC || ptype == PPP_VJNC)) {
1292 printf("%s ", tok2str(ppptype2str,
1293 "proto-#%d", ptype));
1294 }
1295 } else {
1296 if (eflag) {
1297 printf("LLH=[");
1298 for (i = 0; i < p[SLC_LLHL]; i++)
1299 printf("%02x", q[i]);
1300 printf("] ");
1301 }
1302 }
1303 if (eflag)
1304 printf("%d ", length);
1305 }
1306 if (p[SLC_CHL]) {
1307 q = p + SLC_BPFHDRLEN + p[SLC_LLHL];
1308
1309 switch (ptype) {
1310 case PPP_VJC:
1311 ptype = vjc_print(q, length - (q - p), ptype);
1312 hdrlength = PPP_BSDI_HDRLEN;
1313 p += hdrlength;
1314 switch (ptype) {
1315 case PPP_IP:
1316 ip_print(p, length);
1317 break;
1318 #ifdef INET6
1319 case PPP_IPV6:
1320 ip6_print(p, length);
1321 break;
1322 #endif
1323 }
1324 goto printx;
1325 case PPP_VJNC:
1326 ptype = vjc_print(q, length - (q - p), ptype);
1327 hdrlength = PPP_BSDI_HDRLEN;
1328 p += hdrlength;
1329 switch (ptype) {
1330 case PPP_IP:
1331 ip_print(p, length);
1332 break;
1333 #ifdef INET6
1334 case PPP_IPV6:
1335 ip6_print(p, length);
1336 break;
1337 #endif
1338 }
1339 goto printx;
1340 default:
1341 if (eflag) {
1342 printf("CH=[");
1343 for (i = 0; i < p[SLC_LLHL]; i++)
1344 printf("%02x", q[i]);
1345 printf("] ");
1346 }
1347 break;
1348 }
1349 }
1350
1351 hdrlength = PPP_BSDI_HDRLEN;
1352 #endif
1353
1354 length -= hdrlength;
1355 p += hdrlength;
1356
1357 switch (ptype) {
1358 case PPP_IP:
1359 ip_print(p, length);
1360 break;
1361 #ifdef INET6
1362 case PPP_IPV6:
1363 ip6_print(p, length);
1364 break;
1365 #endif
1366 default:
1367 printf("%s ", tok2str(ppptype2str, "proto-#%d", ptype));
1368 }
1369
1370 printx:
1371 if (xflag)
1372 default_print((const u_char *)p, caplen - hdrlength);
1373 out:
1374 putchar('\n');
1375 #endif /* __bsdi__ */
1376 }