1*4dc78e53SAndroid Build Coastguard Worker /* SPDX-License-Identifier: LGPL-2.1-only */
2*4dc78e53SAndroid Build Coastguard Worker /*
3*4dc78e53SAndroid Build Coastguard Worker * Copyright (c) 2003-2009 Thomas Graf <[email protected]>
4*4dc78e53SAndroid Build Coastguard Worker * Copyright (c) 2007 Philip Craig <[email protected]>
5*4dc78e53SAndroid Build Coastguard Worker * Copyright (c) 2007 Secure Computing Corporation
6*4dc78e53SAndroid Build Coastguard Worker * Copyright (c) 2012 Rich Fought <[email protected]>
7*4dc78e53SAndroid Build Coastguard Worker */
8*4dc78e53SAndroid Build Coastguard Worker
9*4dc78e53SAndroid Build Coastguard Worker #include "nl-default.h"
10*4dc78e53SAndroid Build Coastguard Worker
11*4dc78e53SAndroid Build Coastguard Worker #include <linux/rtnetlink.h>
12*4dc78e53SAndroid Build Coastguard Worker
13*4dc78e53SAndroid Build Coastguard Worker #include <netlink/cli/utils.h>
14*4dc78e53SAndroid Build Coastguard Worker #include <netlink/cli/exp.h>
15*4dc78e53SAndroid Build Coastguard Worker
16*4dc78e53SAndroid Build Coastguard Worker static int quiet = 0;
17*4dc78e53SAndroid Build Coastguard Worker
print_usage(void)18*4dc78e53SAndroid Build Coastguard Worker static void print_usage(void)
19*4dc78e53SAndroid Build Coastguard Worker {
20*4dc78e53SAndroid Build Coastguard Worker printf(
21*4dc78e53SAndroid Build Coastguard Worker "Usage: nf-exp-list [OPTION]... [CONNTRACK ENTRY]\n"
22*4dc78e53SAndroid Build Coastguard Worker "\n"
23*4dc78e53SAndroid Build Coastguard Worker "Options\n"
24*4dc78e53SAndroid Build Coastguard Worker " --replace Replace the address if it exists.\n"
25*4dc78e53SAndroid Build Coastguard Worker " -q, --quiet Do not print informal notifications.\n"
26*4dc78e53SAndroid Build Coastguard Worker " -h, --help Show this help\n"
27*4dc78e53SAndroid Build Coastguard Worker " -v, --version Show versioning information\n"
28*4dc78e53SAndroid Build Coastguard Worker "\n"
29*4dc78e53SAndroid Build Coastguard Worker "Expectation Selection\n"
30*4dc78e53SAndroid Build Coastguard Worker " -i, --id=NUM Identifier\n"
31*4dc78e53SAndroid Build Coastguard Worker " --expect-proto=PROTOCOL Expectation protocol\n"
32*4dc78e53SAndroid Build Coastguard Worker " --expect-src=ADDR Expectation source address\n"
33*4dc78e53SAndroid Build Coastguard Worker " --expect-sport=PORT Expectation source port\n"
34*4dc78e53SAndroid Build Coastguard Worker " --expect-dst=ADDR Expectation destination address\n"
35*4dc78e53SAndroid Build Coastguard Worker " --expect-dport=PORT Expectation destination port\n"
36*4dc78e53SAndroid Build Coastguard Worker " --master-proto=PROTOCOL Master conntrack protocol\n"
37*4dc78e53SAndroid Build Coastguard Worker " --master-src=ADDR Master conntrack source address\n"
38*4dc78e53SAndroid Build Coastguard Worker " --master-sport=PORT Master conntrack source port\n"
39*4dc78e53SAndroid Build Coastguard Worker " --master-dst=ADDR Master conntrack destination address\n"
40*4dc78e53SAndroid Build Coastguard Worker " --master-dport=PORT Master conntrack destination port\n"
41*4dc78e53SAndroid Build Coastguard Worker " --mask-proto=PROTOCOL Mask protocol\n"
42*4dc78e53SAndroid Build Coastguard Worker " --mask-src=ADDR Mask source address\n"
43*4dc78e53SAndroid Build Coastguard Worker " --mask-sport=PORT Mask source port\n"
44*4dc78e53SAndroid Build Coastguard Worker " --mask-dst=ADDR Mask destination address\n"
45*4dc78e53SAndroid Build Coastguard Worker " --mask-dport=PORT Mask destination port\n"
46*4dc78e53SAndroid Build Coastguard Worker " -F, --family=FAMILY Address family\n"
47*4dc78e53SAndroid Build Coastguard Worker " --timeout=NUM Timeout value\n"
48*4dc78e53SAndroid Build Coastguard Worker " --helper=STRING Helper Name\n"
49*4dc78e53SAndroid Build Coastguard Worker " --flags Flags\n"
50*4dc78e53SAndroid Build Coastguard Worker );
51*4dc78e53SAndroid Build Coastguard Worker exit(0);
52*4dc78e53SAndroid Build Coastguard Worker }
53*4dc78e53SAndroid Build Coastguard Worker
main(int argc,char * argv[])54*4dc78e53SAndroid Build Coastguard Worker int main(int argc, char *argv[])
55*4dc78e53SAndroid Build Coastguard Worker {
56*4dc78e53SAndroid Build Coastguard Worker struct nl_sock *sock;
57*4dc78e53SAndroid Build Coastguard Worker struct nfnl_exp *exp;
58*4dc78e53SAndroid Build Coastguard Worker struct nl_dump_params params = {
59*4dc78e53SAndroid Build Coastguard Worker .dp_type = NL_DUMP_LINE,
60*4dc78e53SAndroid Build Coastguard Worker .dp_fd = stdout,
61*4dc78e53SAndroid Build Coastguard Worker };
62*4dc78e53SAndroid Build Coastguard Worker int err, nlflags = 0;
63*4dc78e53SAndroid Build Coastguard Worker
64*4dc78e53SAndroid Build Coastguard Worker exp = nl_cli_exp_alloc();
65*4dc78e53SAndroid Build Coastguard Worker
66*4dc78e53SAndroid Build Coastguard Worker for (;;) {
67*4dc78e53SAndroid Build Coastguard Worker int c, optidx = 0;
68*4dc78e53SAndroid Build Coastguard Worker enum {
69*4dc78e53SAndroid Build Coastguard Worker ARG_MARK = 270,
70*4dc78e53SAndroid Build Coastguard Worker ARG_TCP_STATE = 271,
71*4dc78e53SAndroid Build Coastguard Worker ARG_EXPECT_PROTO,
72*4dc78e53SAndroid Build Coastguard Worker ARG_EXPECT_SRC,
73*4dc78e53SAndroid Build Coastguard Worker ARG_EXPECT_SPORT,
74*4dc78e53SAndroid Build Coastguard Worker ARG_EXPECT_DST,
75*4dc78e53SAndroid Build Coastguard Worker ARG_EXPECT_DPORT,
76*4dc78e53SAndroid Build Coastguard Worker ARG_MASTER_PROTO,
77*4dc78e53SAndroid Build Coastguard Worker ARG_MASTER_SRC,
78*4dc78e53SAndroid Build Coastguard Worker ARG_MASTER_SPORT,
79*4dc78e53SAndroid Build Coastguard Worker ARG_MASTER_DST,
80*4dc78e53SAndroid Build Coastguard Worker ARG_MASTER_DPORT,
81*4dc78e53SAndroid Build Coastguard Worker ARG_MASK_PROTO,
82*4dc78e53SAndroid Build Coastguard Worker ARG_MASK_SRC,
83*4dc78e53SAndroid Build Coastguard Worker ARG_MASK_SPORT,
84*4dc78e53SAndroid Build Coastguard Worker ARG_MASK_DST,
85*4dc78e53SAndroid Build Coastguard Worker ARG_MASK_DPORT,
86*4dc78e53SAndroid Build Coastguard Worker ARG_TIMEOUT,
87*4dc78e53SAndroid Build Coastguard Worker ARG_HELPER_NAME,
88*4dc78e53SAndroid Build Coastguard Worker ARG_FLAGS,
89*4dc78e53SAndroid Build Coastguard Worker };
90*4dc78e53SAndroid Build Coastguard Worker static struct option long_opts[] = {
91*4dc78e53SAndroid Build Coastguard Worker { "quiet", 0, 0, 'q' },
92*4dc78e53SAndroid Build Coastguard Worker { "help", 0, 0, 'h' },
93*4dc78e53SAndroid Build Coastguard Worker { "version", 0, 0, 'v' },
94*4dc78e53SAndroid Build Coastguard Worker { "id", 1, 0, 'i' },
95*4dc78e53SAndroid Build Coastguard Worker { "expect-proto", 1, 0, ARG_EXPECT_PROTO },
96*4dc78e53SAndroid Build Coastguard Worker { "expect-src", 1, 0, ARG_EXPECT_SRC },
97*4dc78e53SAndroid Build Coastguard Worker { "expect-sport", 1, 0, ARG_EXPECT_SPORT },
98*4dc78e53SAndroid Build Coastguard Worker { "expect-dst", 1, 0, ARG_EXPECT_DST },
99*4dc78e53SAndroid Build Coastguard Worker { "expect-dport", 1, 0, ARG_EXPECT_DPORT },
100*4dc78e53SAndroid Build Coastguard Worker { "master-proto", 1, 0, ARG_MASTER_PROTO },
101*4dc78e53SAndroid Build Coastguard Worker { "master-src", 1, 0, ARG_MASTER_SRC },
102*4dc78e53SAndroid Build Coastguard Worker { "master-sport", 1, 0, ARG_MASTER_SPORT },
103*4dc78e53SAndroid Build Coastguard Worker { "master-dst", 1, 0, ARG_MASTER_DST },
104*4dc78e53SAndroid Build Coastguard Worker { "master-dport", 1, 0, ARG_MASTER_DPORT },
105*4dc78e53SAndroid Build Coastguard Worker { "mask-proto", 1, 0, ARG_MASK_PROTO },
106*4dc78e53SAndroid Build Coastguard Worker { "mask-src", 1, 0, ARG_MASK_SRC },
107*4dc78e53SAndroid Build Coastguard Worker { "mask-sport", 1, 0, ARG_MASK_SPORT },
108*4dc78e53SAndroid Build Coastguard Worker { "mask-dst", 1, 0, ARG_MASK_DST },
109*4dc78e53SAndroid Build Coastguard Worker { "mask-dport", 1, 0, ARG_MASK_DPORT },
110*4dc78e53SAndroid Build Coastguard Worker { "family", 1, 0, 'F' },
111*4dc78e53SAndroid Build Coastguard Worker { "timeout", 1, 0, ARG_TIMEOUT },
112*4dc78e53SAndroid Build Coastguard Worker { "helper", 1, 0, ARG_HELPER_NAME },
113*4dc78e53SAndroid Build Coastguard Worker { "flags", 1, 0, ARG_FLAGS},
114*4dc78e53SAndroid Build Coastguard Worker { 0, 0, 0, 0 }
115*4dc78e53SAndroid Build Coastguard Worker };
116*4dc78e53SAndroid Build Coastguard Worker
117*4dc78e53SAndroid Build Coastguard Worker c = getopt_long(argc, argv, "46f:hvi:p:F:", long_opts, &optidx);
118*4dc78e53SAndroid Build Coastguard Worker if (c == -1)
119*4dc78e53SAndroid Build Coastguard Worker break;
120*4dc78e53SAndroid Build Coastguard Worker
121*4dc78e53SAndroid Build Coastguard Worker switch (c) {
122*4dc78e53SAndroid Build Coastguard Worker case '?': exit(NLE_INVAL);
123*4dc78e53SAndroid Build Coastguard Worker case 'q': quiet = 1; break;
124*4dc78e53SAndroid Build Coastguard Worker case '4': nfnl_exp_set_family(exp, AF_INET); break;
125*4dc78e53SAndroid Build Coastguard Worker case '6': nfnl_exp_set_family(exp, AF_INET6); break;
126*4dc78e53SAndroid Build Coastguard Worker case 'h': print_usage(); break;
127*4dc78e53SAndroid Build Coastguard Worker case 'v': nl_cli_print_version(); break;
128*4dc78e53SAndroid Build Coastguard Worker case 'i': nl_cli_exp_parse_id(exp, optarg); break;
129*4dc78e53SAndroid Build Coastguard Worker case ARG_EXPECT_PROTO: nl_cli_exp_parse_l4protonum(exp, NFNL_EXP_TUPLE_EXPECT, optarg); break;
130*4dc78e53SAndroid Build Coastguard Worker case ARG_EXPECT_SRC: nl_cli_exp_parse_src(exp, NFNL_EXP_TUPLE_EXPECT, optarg); break;
131*4dc78e53SAndroid Build Coastguard Worker case ARG_EXPECT_SPORT: nl_cli_exp_parse_src_port(exp, NFNL_EXP_TUPLE_EXPECT, optarg); break;
132*4dc78e53SAndroid Build Coastguard Worker case ARG_EXPECT_DST: nl_cli_exp_parse_dst(exp, NFNL_EXP_TUPLE_EXPECT, optarg); break;
133*4dc78e53SAndroid Build Coastguard Worker case ARG_EXPECT_DPORT: nl_cli_exp_parse_dst_port(exp, NFNL_EXP_TUPLE_EXPECT, optarg); break;
134*4dc78e53SAndroid Build Coastguard Worker case ARG_MASTER_PROTO: nl_cli_exp_parse_l4protonum(exp, NFNL_EXP_TUPLE_MASTER, optarg); break;
135*4dc78e53SAndroid Build Coastguard Worker case ARG_MASTER_SRC: nl_cli_exp_parse_src(exp, NFNL_EXP_TUPLE_MASTER, optarg); break;
136*4dc78e53SAndroid Build Coastguard Worker case ARG_MASTER_SPORT: nl_cli_exp_parse_src_port(exp, NFNL_EXP_TUPLE_MASTER, optarg); break;
137*4dc78e53SAndroid Build Coastguard Worker case ARG_MASTER_DST: nl_cli_exp_parse_dst(exp, NFNL_EXP_TUPLE_MASTER, optarg); break;
138*4dc78e53SAndroid Build Coastguard Worker case ARG_MASTER_DPORT: nl_cli_exp_parse_dst_port(exp, NFNL_EXP_TUPLE_MASTER, optarg); break;
139*4dc78e53SAndroid Build Coastguard Worker case ARG_MASK_PROTO: nl_cli_exp_parse_l4protonum(exp, NFNL_EXP_TUPLE_MASK, optarg); break;
140*4dc78e53SAndroid Build Coastguard Worker case ARG_MASK_SRC: nl_cli_exp_parse_src(exp, NFNL_EXP_TUPLE_MASK, optarg); break;
141*4dc78e53SAndroid Build Coastguard Worker case ARG_MASK_SPORT: nl_cli_exp_parse_src_port(exp, NFNL_EXP_TUPLE_MASK, optarg); break;
142*4dc78e53SAndroid Build Coastguard Worker case ARG_MASK_DST: nl_cli_exp_parse_dst(exp, NFNL_EXP_TUPLE_MASK, optarg); break;
143*4dc78e53SAndroid Build Coastguard Worker case ARG_MASK_DPORT: nl_cli_exp_parse_dst_port(exp, NFNL_EXP_TUPLE_MASK, optarg); break;
144*4dc78e53SAndroid Build Coastguard Worker case 'F': nl_cli_exp_parse_family(exp, optarg); break;
145*4dc78e53SAndroid Build Coastguard Worker case ARG_TIMEOUT: nl_cli_exp_parse_timeout(exp, optarg); break;
146*4dc78e53SAndroid Build Coastguard Worker case ARG_HELPER_NAME: nl_cli_exp_parse_helper_name(exp, optarg); break;
147*4dc78e53SAndroid Build Coastguard Worker case ARG_FLAGS: nl_cli_exp_parse_flags(exp, optarg); break;
148*4dc78e53SAndroid Build Coastguard Worker }
149*4dc78e53SAndroid Build Coastguard Worker }
150*4dc78e53SAndroid Build Coastguard Worker
151*4dc78e53SAndroid Build Coastguard Worker sock = nl_cli_alloc_socket();
152*4dc78e53SAndroid Build Coastguard Worker nl_cli_connect(sock, NETLINK_NETFILTER);
153*4dc78e53SAndroid Build Coastguard Worker
154*4dc78e53SAndroid Build Coastguard Worker if ((err = nfnl_exp_del(sock, exp, nlflags)) < 0)
155*4dc78e53SAndroid Build Coastguard Worker nl_cli_fatal(err, "Unable to delete expectation: %s", nl_geterror(err));
156*4dc78e53SAndroid Build Coastguard Worker
157*4dc78e53SAndroid Build Coastguard Worker if (!quiet) {
158*4dc78e53SAndroid Build Coastguard Worker printf("Deleted ");
159*4dc78e53SAndroid Build Coastguard Worker nl_object_dump(OBJ_CAST(exp), ¶ms);
160*4dc78e53SAndroid Build Coastguard Worker }
161*4dc78e53SAndroid Build Coastguard Worker
162*4dc78e53SAndroid Build Coastguard Worker return 0;
163*4dc78e53SAndroid Build Coastguard Worker }
164