provider: Discard routes to VPN server via VPN tunnel
[platform/upstream/connman.git] / src / provider.c
1 /*
2  *
3  *  Connection Manager
4  *
5  *  Copyright (C) 2007-2012  Intel Corporation. All rights reserved.
6  *
7  *  This program is free software; you can redistribute it and/or modify
8  *  it under the terms of the GNU General Public License version 2 as
9  *  published by the Free Software Foundation.
10  *
11  *  This program is distributed in the hope that it will be useful,
12  *  but WITHOUT ANY WARRANTY; without even the implied warranty of
13  *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14  *  GNU General Public License for more details.
15  *
16  *  You should have received a copy of the GNU General Public License
17  *  along with this program; if not, write to the Free Software
18  *  Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
19  *
20  */
21
22 #ifdef HAVE_CONFIG_H
23 #include <config.h>
24 #endif
25
26 #include <errno.h>
27 #include <stdio.h>
28 #include <string.h>
29 #include <stdlib.h>
30 #include <gdbus.h>
31 #include <gweb/gresolv.h>
32
33 #include "connman.h"
34
35 static DBusConnection *connection = NULL;
36
37 static GHashTable *provider_hash = NULL;
38
39 static GSList *driver_list = NULL;
40
41 struct connman_route {
42         int family;
43         char *host;
44         char *netmask;
45         char *gateway;
46 };
47
48 struct connman_provider {
49         int refcount;
50         struct connman_service *vpn_service;
51         int index;
52         char *identifier;
53         char *name;
54         char *type;
55         char *host;
56         char *domain;
57         int family;
58         GHashTable *routes;
59         struct connman_provider_driver *driver;
60         void *driver_data;
61         GHashTable *setting_strings;
62         GHashTable *user_routes;
63         gchar **user_networks;
64         gsize num_user_networks;
65         GResolv *resolv;
66         char **host_ip;
67 };
68
69 static void resolv_result(GResolvResultStatus status,
70                                         char **results, gpointer user_data)
71 {
72         struct connman_provider *provider = user_data;
73
74         DBG("status %d", status);
75
76         if (status == G_RESOLV_RESULT_STATUS_SUCCESS && results != NULL &&
77                                                 g_strv_length(results) > 0)
78                 provider->host_ip = g_strdupv(results);
79
80         connman_provider_unref(provider);
81 }
82
83 static void provider_resolv_host_addr(struct connman_provider *provider)
84 {
85         if (provider->host == NULL)
86                 return;
87
88         if (connman_inet_check_ipaddress(provider->host) > 0)
89                 return;
90
91         if (provider->host_ip != NULL)
92                 return;
93
94         /*
95          * If the hostname is not numeric, try to resolv it. We do not wait
96          * the result as it might take some time. We will get the result
97          * before VPN will feed routes to us because VPN client will need
98          * the IP address also before VPN connection can be established.
99          */
100         provider->resolv = g_resolv_new(0);
101         if (provider->resolv == NULL) {
102                 DBG("Cannot resolv %s", provider->host);
103                 return;
104         }
105
106         DBG("Trying to resolv %s", provider->host);
107
108         connman_provider_ref(provider);
109
110         g_resolv_lookup_hostname(provider->resolv, provider->host,
111                                 resolv_result, provider);
112 }
113
114 void __connman_provider_append_properties(struct connman_provider *provider,
115                                                         DBusMessageIter *iter)
116 {
117         if (provider->host != NULL)
118                 connman_dbus_dict_append_basic(iter, "Host",
119                                         DBUS_TYPE_STRING, &provider->host);
120
121         if (provider->domain != NULL)
122                 connman_dbus_dict_append_basic(iter, "Domain",
123                                         DBUS_TYPE_STRING, &provider->domain);
124
125         if (provider->type != NULL)
126                 connman_dbus_dict_append_basic(iter, "Type", DBUS_TYPE_STRING,
127                                                  &provider->type);
128 }
129
130 int __connman_provider_append_user_route(struct connman_provider *provider,
131                         int family, const char *network, const char *netmask)
132 {
133         struct connman_route *route;
134         char *key = g_strdup_printf("%d/%s/%s", family, network, netmask);
135
136         DBG("family %d network %s netmask %s", family, network, netmask);
137
138         route = g_hash_table_lookup(provider->user_routes, key);
139         if (route == NULL) {
140                 route = g_try_new0(struct connman_route, 1);
141                 if (route == NULL) {
142                         connman_error("out of memory");
143                         return -ENOMEM;
144                 }
145
146                 route->family = family;
147                 route->host = g_strdup(network);
148                 route->netmask = g_strdup(netmask);
149
150                 g_hash_table_replace(provider->user_routes, key, route);
151         } else
152                 g_free(key);
153
154         return 0;
155 }
156
157 static void set_user_networks(struct connman_provider *provider,
158                                                         char **networks)
159 {
160         int i = 0;
161
162         while (networks[i] != NULL) {
163                 char **elems = g_strsplit(networks[i], "/", 0);
164                 char *network, *netmask;
165                 int family = PF_UNSPEC, ret;
166
167                 if (elems == NULL)
168                         break;
169
170                 network = elems[0];
171                 if (network == NULL || *network == '\0') {
172                         DBG("no network/netmask set");
173                         g_strfreev(elems);
174                         break;
175                 }
176
177                 netmask = elems[1];
178                 if (netmask != NULL && *netmask == '\0') {
179                         DBG("no netmask set");
180                         g_strfreev(elems);
181                         break;
182                 }
183
184                 if (g_strrstr(network, ":") != NULL)
185                         family = AF_INET6;
186                 else if (g_strrstr(network, ".") != NULL) {
187                         family = AF_INET;
188
189                         if (g_strrstr(netmask, ".") == NULL) {
190                                 /* We have netmask length */
191                                 in_addr_t addr;
192                                 struct in_addr netmask_in;
193                                 unsigned char prefix_len = 32;
194
195                                 if (netmask != NULL)
196                                         prefix_len = atoi(netmask);
197
198                                 addr = 0xffffffff << (32 - prefix_len);
199                                 netmask_in.s_addr = htonl(addr);
200                                 netmask = inet_ntoa(netmask_in);
201
202                                 DBG("network %s netmask %s", network, netmask);
203                         }
204                 }
205
206                 ret = __connman_provider_append_user_route(provider,
207                                                 family, network, netmask);
208                 g_strfreev(elems);
209
210                 if (ret != 0)
211                         break;
212
213                 i++;
214         }
215 }
216
217 static int provider_load_from_keyfile(struct connman_provider *provider,
218                 GKeyFile *keyfile)
219 {
220         gsize idx = 0;
221         gchar **settings;
222         gchar *key, *value;
223         gsize length;
224
225         settings = g_key_file_get_keys(keyfile, provider->identifier, &length,
226                                 NULL);
227         if (settings == NULL) {
228                 g_key_file_free(keyfile);
229                 return -ENOENT;
230         }
231
232         while (idx < length) {
233                 key = settings[idx];
234                 if (key != NULL) {
235                         if (g_str_equal(key, "Networks") == TRUE) {
236                                 g_strfreev(provider->user_networks);
237                                 provider->user_networks =
238                                         g_key_file_get_string_list(keyfile,
239                                                 provider->identifier,
240                                                 key,
241                                                 &provider->num_user_networks,
242                                                 NULL);
243                         } else {
244                                 value = g_key_file_get_string(keyfile,
245                                                         provider->identifier,
246                                                         key, NULL);
247                                 connman_provider_set_string(provider, key,
248                                                         value);
249                                 g_free(value);
250                         }
251                 }
252                 idx += 1;
253         }
254         g_strfreev(settings);
255
256         if (provider->user_networks != NULL)
257                 set_user_networks(provider, provider->user_networks);
258
259         return 0;
260 }
261
262 static int connman_provider_load(struct connman_provider *provider)
263 {
264         GKeyFile *keyfile;
265
266         DBG("provider %p", provider);
267
268         keyfile = __connman_storage_load_provider(provider->identifier);
269         if (keyfile == NULL)
270                 return -ENOENT;
271
272         provider_load_from_keyfile(provider, keyfile);
273
274         g_key_file_free(keyfile);
275         return 0;
276 }
277
278 static int connman_provider_save(struct connman_provider *provider)
279 {
280         GKeyFile *keyfile;
281
282         DBG("provider %p", provider);
283
284         keyfile = g_key_file_new();
285         if (keyfile == NULL)
286                 return -ENOMEM;
287
288         g_key_file_set_string(keyfile, provider->identifier,
289                         "Name", provider->name);
290         g_key_file_set_string(keyfile, provider->identifier,
291                         "Type", provider->type);
292         g_key_file_set_string(keyfile, provider->identifier,
293                         "Host", provider->host);
294         g_key_file_set_string(keyfile, provider->identifier,
295                         "VPN.Domain", provider->domain);
296         if (provider->user_networks != NULL)
297                 g_key_file_set_string_list(keyfile, provider->identifier,
298                                 "Networks",
299                                 (const gchar **)provider->user_networks,
300                                 provider->num_user_networks);
301
302         if (provider->driver != NULL && provider->driver->save != NULL)
303                 provider->driver->save(provider, keyfile);
304
305         __connman_storage_save_provider(keyfile, provider->identifier);
306         g_key_file_free(keyfile);
307
308         return 0;
309 }
310
311 static struct connman_provider *connman_provider_lookup(const char *identifier)
312 {
313         struct connman_provider *provider = NULL;
314
315         provider = g_hash_table_lookup(provider_hash, identifier);
316
317         return provider;
318 }
319
320 static gboolean match_driver(struct connman_provider *provider,
321                                 struct connman_provider_driver *driver)
322 {
323         if (g_strcmp0(driver->name, provider->type) == 0)
324                 return TRUE;
325
326         return FALSE;
327 }
328
329 static int provider_probe(struct connman_provider *provider)
330 {
331         GSList *list;
332
333         DBG("provider %p name %s", provider, provider->name);
334
335         if (provider->driver != NULL)
336                 return -EALREADY;
337
338         for (list = driver_list; list; list = list->next) {
339                 struct connman_provider_driver *driver = list->data;
340
341                 if (match_driver(provider, driver) == FALSE)
342                         continue;
343
344                 DBG("driver %p name %s", driver, driver->name);
345
346                 if (driver->probe != NULL && driver->probe(provider) == 0) {
347                         provider->driver = driver;
348                         break;
349                 }
350         }
351
352         if (provider->driver == NULL)
353                 return -ENODEV;
354
355         return 0;
356 }
357
358 static void provider_remove(struct connman_provider *provider)
359 {
360         if (provider->driver != NULL) {
361                 provider->driver->remove(provider);
362                 provider->driver = NULL;
363         }
364 }
365
366 static int provider_register(struct connman_provider *provider)
367 {
368         return provider_probe(provider);
369 }
370
371 static void provider_unregister(struct connman_provider *provider)
372 {
373         provider_remove(provider);
374 }
375
376 struct connman_provider *
377 connman_provider_ref_debug(struct connman_provider *provider,
378                         const char *file, int line, const char *caller)
379 {
380         DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount + 1,
381                 file, line, caller);
382
383         __sync_fetch_and_add(&provider->refcount, 1);
384
385         return provider;
386 }
387
388 static void provider_destruct(struct connman_provider *provider)
389 {
390         DBG("provider %p", provider);
391
392         g_free(provider->name);
393         g_free(provider->type);
394         g_free(provider->host);
395         g_free(provider->domain);
396         g_free(provider->identifier);
397         g_strfreev(provider->user_networks);
398         g_hash_table_destroy(provider->routes);
399         g_hash_table_destroy(provider->user_routes);
400         g_hash_table_destroy(provider->setting_strings);
401         if (provider->resolv != NULL) {
402                 g_resolv_unref(provider->resolv);
403                 provider->resolv = NULL;
404         }
405         g_strfreev(provider->host_ip);
406         g_free(provider);
407 }
408
409 void connman_provider_unref_debug(struct connman_provider *provider,
410                                 const char *file, int line, const char *caller)
411 {
412         DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount - 1,
413                 file, line, caller);
414
415         if (__sync_fetch_and_sub(&provider->refcount, 1) != 1)
416                 return;
417
418         provider_remove(provider);
419
420         provider_destruct(provider);
421 }
422
423 static int provider_indicate_state(struct connman_provider *provider,
424                                         enum connman_service_state state)
425 {
426         DBG("state %d", state);
427
428         __connman_service_ipconfig_indicate_state(provider->vpn_service, state,
429                                         CONNMAN_IPCONFIG_TYPE_IPV4);
430
431         return __connman_service_ipconfig_indicate_state(provider->vpn_service,
432                                         state, CONNMAN_IPCONFIG_TYPE_IPV6);
433 }
434
435 int __connman_provider_disconnect(struct connman_provider *provider)
436 {
437         int err;
438
439         DBG("provider %p", provider);
440
441         if (provider->driver != NULL && provider->driver->disconnect != NULL)
442                 err = provider->driver->disconnect(provider);
443         else
444                 return -EOPNOTSUPP;
445
446         if (provider->vpn_service != NULL)
447                 provider_indicate_state(provider,
448                                         CONNMAN_SERVICE_STATE_DISCONNECT);
449
450         if (err < 0) {
451                 if (err != -EINPROGRESS)
452                         return err;
453
454                 return -EINPROGRESS;
455         }
456
457         return 0;
458 }
459
460 int __connman_provider_connect(struct connman_provider *provider)
461 {
462         int err;
463
464         DBG("provider %p", provider);
465
466         if (provider->driver != NULL && provider->driver->connect != NULL) {
467                 provider_resolv_host_addr(provider);
468                 err = provider->driver->connect(provider);
469         } else
470                 return -EOPNOTSUPP;
471
472         if (err < 0) {
473                 if (err != -EINPROGRESS)
474                         return err;
475
476                 provider_indicate_state(provider,
477                                         CONNMAN_SERVICE_STATE_ASSOCIATION);
478
479                 return -EINPROGRESS;
480         }
481
482         return 0;
483 }
484
485 int __connman_provider_remove(const char *path)
486 {
487         struct connman_provider *provider;
488         GHashTableIter iter;
489         gpointer value, key;
490
491         DBG("path %s", path);
492
493         g_hash_table_iter_init(&iter, provider_hash);
494         while (g_hash_table_iter_next(&iter, &key, &value) == TRUE) {
495                 const char *srv_path;
496                 provider = value;
497
498                 if (provider->vpn_service == NULL)
499                         continue;
500
501                 srv_path = __connman_service_get_path(provider->vpn_service);
502
503                 if (g_strcmp0(srv_path, path) == 0) {
504                         DBG("Removing VPN %s", provider->identifier);
505
506                         provider_unregister(provider);
507                         g_hash_table_remove(provider_hash,
508                                                 provider->identifier);
509                         return 0;
510                 }
511         }
512
513         return -ENXIO;
514 }
515
516 static connman_bool_t check_host(char **hosts, char *host)
517 {
518         int i;
519
520         if (hosts == NULL)
521                 return FALSE;
522
523         for (i = 0; hosts[i] != NULL; i++) {
524                 if (g_strcmp0(hosts[i], host) == 0)
525                         return TRUE;
526         }
527
528         return FALSE;
529 }
530
531 static void provider_append_routes(gpointer key, gpointer value,
532                                         gpointer user_data)
533 {
534         struct connman_route *route = value;
535         struct connman_provider *provider = user_data;
536         int index = provider->index;
537
538         /*
539          * If the VPN administrator/user has given a route to
540          * VPN server, then we must discard that because the
541          * server cannot be contacted via VPN tunnel.
542          */
543         if (check_host(provider->host_ip, route->host) == TRUE) {
544                 DBG("Discarding VPN route to %s via %s at index %d",
545                         route->host, route->gateway, index);
546                 return;
547         }
548
549         if (route->family == AF_INET6) {
550                 unsigned char prefix_len = atoi(route->netmask);
551
552                 connman_inet_add_ipv6_network_route(index, route->host,
553                                                         route->gateway,
554                                                         prefix_len);
555         } else {
556                 connman_inet_add_network_route(index, route->host,
557                                                 route->gateway,
558                                                 route->netmask);
559         }
560 }
561
562 static int set_connected(struct connman_provider *provider,
563                                         connman_bool_t connected)
564 {
565         struct connman_service *service = provider->vpn_service;
566         struct connman_ipconfig *ipconfig;
567
568         if (service == NULL)
569                 return -ENODEV;
570
571         ipconfig = __connman_service_get_ipconfig(service, provider->family);
572
573         if (connected == TRUE) {
574                 if (ipconfig == NULL) {
575                         provider_indicate_state(provider,
576                                                 CONNMAN_SERVICE_STATE_FAILURE);
577                         return -EIO;
578                 }
579
580                 __connman_ipconfig_address_add(ipconfig);
581                 __connman_ipconfig_gateway_add(ipconfig);
582
583                 provider_indicate_state(provider,
584                                         CONNMAN_SERVICE_STATE_READY);
585
586                 g_hash_table_foreach(provider->routes, provider_append_routes,
587                                         provider);
588
589                 g_hash_table_foreach(provider->user_routes, provider_append_routes,
590                                         provider);
591
592         } else {
593                 if (ipconfig != NULL) {
594                         provider_indicate_state(provider,
595                                         CONNMAN_SERVICE_STATE_DISCONNECT);
596                         __connman_ipconfig_gateway_remove(ipconfig);
597                 }
598
599                 provider_indicate_state(provider,
600                                         CONNMAN_SERVICE_STATE_IDLE);
601         }
602
603         return 0;
604 }
605
606 int connman_provider_set_state(struct connman_provider *provider,
607                                         enum connman_provider_state state)
608 {
609         if (provider == NULL || provider->vpn_service == NULL)
610                 return -EINVAL;
611
612         switch (state) {
613         case CONNMAN_PROVIDER_STATE_UNKNOWN:
614                 return -EINVAL;
615         case CONNMAN_PROVIDER_STATE_IDLE:
616                 return set_connected(provider, FALSE);
617         case CONNMAN_PROVIDER_STATE_CONNECT:
618                 return provider_indicate_state(provider,
619                                         CONNMAN_SERVICE_STATE_ASSOCIATION);
620         case CONNMAN_PROVIDER_STATE_READY:
621                 return set_connected(provider, TRUE);
622         case CONNMAN_PROVIDER_STATE_DISCONNECT:
623                 return provider_indicate_state(provider,
624                                         CONNMAN_SERVICE_STATE_DISCONNECT);
625         case CONNMAN_PROVIDER_STATE_FAILURE:
626                 return provider_indicate_state(provider,
627                                         CONNMAN_SERVICE_STATE_FAILURE);
628         }
629
630         return -EINVAL;
631 }
632
633 int connman_provider_indicate_error(struct connman_provider *provider,
634                                         enum connman_provider_error error)
635 {
636         enum connman_service_error service_error;
637
638         switch (error) {
639         case CONNMAN_PROVIDER_ERROR_LOGIN_FAILED:
640                 service_error = CONNMAN_SERVICE_ERROR_LOGIN_FAILED;
641                 break;
642         case CONNMAN_PROVIDER_ERROR_AUTH_FAILED:
643                 service_error = CONNMAN_SERVICE_ERROR_AUTH_FAILED;
644                 break;
645         case CONNMAN_PROVIDER_ERROR_CONNECT_FAILED:
646                 service_error = CONNMAN_SERVICE_ERROR_CONNECT_FAILED;
647                 break;
648         default:
649                 service_error = CONNMAN_SERVICE_ERROR_UNKNOWN;
650                 break;
651         }
652
653         return __connman_service_indicate_error(provider->vpn_service,
654                                                         service_error);
655 }
656
657 static void unregister_provider(gpointer data)
658 {
659         struct connman_provider *provider = data;
660
661         DBG("provider %p service %p", provider, provider->vpn_service);
662
663         if (provider->vpn_service != NULL) {
664                 connman_service_unref(provider->vpn_service);
665                 provider->vpn_service = NULL;
666         }
667
668         connman_provider_unref(provider);
669 }
670
671 static void destroy_route(gpointer user_data)
672 {
673         struct connman_route *route = user_data;
674
675         g_free(route->host);
676         g_free(route->netmask);
677         g_free(route->gateway);
678         g_free(route);
679 }
680
681 static void provider_initialize(struct connman_provider *provider)
682 {
683         DBG("provider %p", provider);
684
685         provider->index = 0;
686         provider->name = NULL;
687         provider->type = NULL;
688         provider->domain = NULL;
689         provider->identifier = NULL;
690         provider->user_networks = NULL;
691         provider->routes = g_hash_table_new_full(g_direct_hash, g_direct_equal,
692                                         NULL, destroy_route);
693         provider->user_routes = g_hash_table_new_full(g_str_hash, g_str_equal,
694                                         g_free, destroy_route);
695         provider->setting_strings = g_hash_table_new_full(g_str_hash, g_str_equal,
696                                                         g_free, g_free);
697 }
698
699 static struct connman_provider *connman_provider_new(void)
700 {
701         struct connman_provider *provider;
702
703         provider = g_try_new0(struct connman_provider, 1);
704         if (provider == NULL)
705                 return NULL;
706
707         provider->refcount = 1;
708
709         DBG("provider %p", provider);
710         provider_initialize(provider);
711
712         return provider;
713 }
714
715 static struct connman_provider *connman_provider_get(const char *identifier)
716 {
717         struct connman_provider *provider;
718
719         provider = g_hash_table_lookup(provider_hash, identifier);
720         if (provider != NULL)
721                 return provider;
722
723         provider = connman_provider_new();
724         if (provider == NULL)
725                 return NULL;
726
727         DBG("provider %p", provider);
728
729         provider->identifier = g_strdup(identifier);
730
731         g_hash_table_insert(provider_hash, provider->identifier, provider);
732
733         return provider;
734 }
735
736 static void provider_dbus_ident(char *ident)
737 {
738         int i, len = strlen(ident);
739
740         for (i = 0; i < len; i++) {
741                 if (ident[i] >= '0' && ident[i] <= '9')
742                         continue;
743                 if (ident[i] >= 'a' && ident[i] <= 'z')
744                         continue;
745                 if (ident[i] >= 'A' && ident[i] <= 'Z')
746                         continue;
747                 ident[i] = '_';
748         }
749 }
750
751 static struct connman_provider *provider_create_from_keyfile(GKeyFile *keyfile,
752                 const char *ident)
753 {
754         struct connman_provider *provider;
755
756         if (keyfile == NULL || ident == NULL)
757                 return NULL;
758
759         provider = connman_provider_lookup(ident);
760         if (provider == NULL) {
761                 provider = connman_provider_get(ident);
762                 if (provider == NULL) {
763                         DBG("can not create provider");
764                         return NULL;
765                 }
766
767                 provider_load_from_keyfile(provider, keyfile);
768
769                 if (provider->name == NULL || provider->host == NULL ||
770                                 provider->domain == NULL) {
771                         DBG("cannot get name, host or domain");
772                         connman_provider_unref(provider);
773                         return NULL;
774                 }
775
776                 provider_register(provider);
777         }
778         return provider;
779 }
780
781 static int provider_create_service(struct connman_provider *provider)
782 {
783         if (provider->vpn_service != NULL) {
784                 connman_bool_t connected;
785
786                 connected = __connman_service_is_connected_state(
787                         provider->vpn_service, CONNMAN_IPCONFIG_TYPE_IPV4);
788                 if (connected == TRUE)
789                         return -EALREADY;
790
791                 connected = __connman_service_is_connected_state(
792                         provider->vpn_service, CONNMAN_IPCONFIG_TYPE_IPV6);
793                 if (connected == TRUE)
794                         return -EALREADY;
795
796                 return 0;
797         }
798
799         provider->vpn_service =
800                 __connman_service_create_from_provider(provider);
801
802         if (provider->vpn_service == NULL)
803                 return -EOPNOTSUPP;
804
805         return 0;
806 }
807
808 static void provider_create_all_from_type(const char *provider_type)
809 {
810         unsigned int i;
811         char **providers;
812         char *id, *type;
813         GKeyFile *keyfile;
814         struct connman_provider *provider;
815
816         DBG("provider type %s", provider_type);
817
818         providers = __connman_storage_get_providers();
819
820         for (i = 0; providers[i] != NULL; i+=1) {
821
822                 if (strncmp(providers[i], "provider_", 9) != 0)
823                         continue;
824
825                 id = providers[i] + 9;
826                 keyfile = __connman_storage_load_provider(id);
827
828                 if (keyfile == NULL)
829                         continue;
830
831                 type = g_key_file_get_string(keyfile, id, "Type", NULL);
832
833                 DBG("keyfile %p id %s type %s", keyfile, id, type);
834
835                 if (strcmp(provider_type, type) != 0) {
836                         g_free(type);
837                         g_key_file_free(keyfile);
838                         continue;
839                 }
840
841                 provider = provider_create_from_keyfile(keyfile, id);
842                 if (provider != NULL) {
843                         if (provider_create_service(provider) == -EOPNOTSUPP) {
844                                 DBG("could not create service");
845                                 connman_provider_unref(provider);
846                         }
847                 }
848
849                 g_free(type);
850                 g_key_file_free(keyfile);
851         }
852         g_strfreev(providers);
853 }
854
855 static char **get_user_networks(DBusMessageIter *array, int *count)
856 {
857         DBusMessageIter entry;
858         char **networks = NULL;
859         GSList *list = NULL, *l;
860         int len;
861
862         dbus_message_iter_recurse(array, &entry);
863
864         while (dbus_message_iter_get_arg_type(&entry) == DBUS_TYPE_STRING) {
865                 const char *val;
866                 dbus_message_iter_get_basic(&entry, &val);
867
868                 list = g_slist_prepend(list, g_strdup(val));
869                 dbus_message_iter_next(&entry);
870         }
871
872         len = g_slist_length(list);
873         if (len == 0)
874                 goto out;
875
876         networks = g_try_new(char *, len + 1);
877         if (networks == NULL)
878                 goto out;
879
880         *count = len;
881         networks[len] = 0;
882
883         for (l = list; l != NULL; l = g_slist_next(l))
884                 networks[--len] = l->data;
885
886 out:
887         g_slist_free(list);
888
889         return networks;
890 }
891
892 int __connman_provider_create_and_connect(DBusMessage *msg)
893 {
894         struct connman_provider *provider;
895         DBusMessageIter iter, array;
896         const char *type = NULL, *name = NULL, *service_path;
897         const char *host = NULL, *domain = NULL;
898         char **networks = NULL;
899         char *ident;
900         int err, count = 0;
901
902         dbus_message_iter_init(msg, &iter);
903         dbus_message_iter_recurse(&iter, &array);
904
905         while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
906                 DBusMessageIter entry, value;
907                 const char *key;
908
909                 dbus_message_iter_recurse(&array, &entry);
910                 dbus_message_iter_get_basic(&entry, &key);
911
912                 dbus_message_iter_next(&entry);
913                 dbus_message_iter_recurse(&entry, &value);
914
915                 switch (dbus_message_iter_get_arg_type(&value)) {
916                 case DBUS_TYPE_STRING:
917                         if (g_str_equal(key, "Type") == TRUE)
918                                 dbus_message_iter_get_basic(&value, &type);
919                         else if (g_str_equal(key, "Name") == TRUE)
920                                 dbus_message_iter_get_basic(&value, &name);
921                         else if (g_str_equal(key, "Host") == TRUE)
922                                 dbus_message_iter_get_basic(&value, &host);
923                         else if (g_str_equal(key, "VPN.Domain") == TRUE)
924                                 dbus_message_iter_get_basic(&value, &domain);
925                         break;
926                 case DBUS_TYPE_ARRAY:
927                         if (g_str_equal(key, "Networks") == TRUE)
928                                 networks = get_user_networks(&value, &count);
929                         break;
930                 }
931
932                 dbus_message_iter_next(&array);
933         }
934
935         if (host == NULL || domain == NULL)
936                 return -EINVAL;
937
938         DBG("Type %s name %s networks %p", type, name, networks);
939
940         if (type == NULL || name == NULL)
941                 return -EOPNOTSUPP;
942
943         ident = g_strdup_printf("%s_%s", host, domain);
944         provider_dbus_ident(ident);
945
946         DBG("ident %s", ident);
947
948         provider = connman_provider_lookup(ident);
949         if (provider == NULL) {
950                 provider = connman_provider_get(ident);
951                 if (provider == NULL) {
952                         DBG("can not create provider");
953                         g_free(ident);
954                         return -EOPNOTSUPP;
955                 }
956
957                 provider->host = g_strdup(host);
958                 provider->domain = g_strdup(domain);
959                 provider->name = g_strdup(name);
960                 provider->type = g_strdup(type);
961
962                 if (provider_register(provider) == 0)
963                         connman_provider_load(provider);
964
965                 provider_resolv_host_addr(provider);
966         }
967
968         if (networks != NULL) {
969                 g_strfreev(provider->user_networks);
970                 provider->user_networks = networks;
971                 provider->num_user_networks = count;
972                 set_user_networks(provider, provider->user_networks);
973         }
974
975         dbus_message_iter_init(msg, &iter);
976         dbus_message_iter_recurse(&iter, &array);
977
978         while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
979                 DBusMessageIter entry, value;
980                 const char *key, *str;
981
982                 dbus_message_iter_recurse(&array, &entry);
983                 dbus_message_iter_get_basic(&entry, &key);
984
985                 dbus_message_iter_next(&entry);
986                 dbus_message_iter_recurse(&entry, &value);
987
988                 switch (dbus_message_iter_get_arg_type(&value)) {
989                 case DBUS_TYPE_STRING:
990                         dbus_message_iter_get_basic(&value, &str);
991                         connman_provider_set_string(provider, key, str);
992                         break;
993                 }
994
995                 dbus_message_iter_next(&array);
996         }
997
998         g_free(ident);
999
1000         err = provider_create_service(provider);
1001         if (err == -EALREADY) {
1002                 DBG("provider already connected");
1003         } else {
1004                 if (err == -EOPNOTSUPP) {
1005                         goto unref;
1006                 } else {
1007                         err = __connman_service_connect(provider->vpn_service);
1008
1009                         if (err < 0 && err != -EINPROGRESS)
1010                                 goto failed;
1011                 }
1012         }
1013
1014         connman_provider_save(provider);
1015         service_path = __connman_service_get_path(provider->vpn_service);
1016         g_dbus_send_reply(connection, msg,
1017                                 DBUS_TYPE_OBJECT_PATH, &service_path,
1018                                                         DBUS_TYPE_INVALID);
1019         return 0;
1020
1021 failed:
1022         connman_service_unref(provider->vpn_service);
1023         provider->vpn_service = NULL;
1024
1025 unref:
1026         DBG("can not connect, delete provider");
1027
1028         g_hash_table_remove(provider_hash, provider->identifier);
1029
1030         return err;
1031 }
1032
1033 const char * __connman_provider_get_ident(struct connman_provider *provider)
1034 {
1035         if (provider == NULL)
1036                 return NULL;
1037
1038         return provider->identifier;
1039 }
1040
1041 int connman_provider_set_string(struct connman_provider *provider,
1042                                         const char *key, const char *value)
1043 {
1044         DBG("provider %p key %s value %s", provider, key, value);
1045
1046         if (g_str_equal(key, "Type") == TRUE) {
1047                 g_free(provider->type);
1048                 provider->type = g_strdup(value);
1049         } else if (g_str_equal(key, "Name") == TRUE) {
1050                 g_free(provider->name);
1051                 provider->name = g_strdup(value);
1052         } else if (g_str_equal(key, "Host") == TRUE) {
1053                 g_free(provider->host);
1054                 provider->host = g_strdup(value);
1055         } else if (g_str_equal(key, "VPN.Domain") == TRUE) {
1056                 g_free(provider->domain);
1057                 provider->domain = g_strdup(value);
1058         } else
1059                 g_hash_table_replace(provider->setting_strings,
1060                                 g_strdup(key), g_strdup(value));
1061         return 0;
1062 }
1063
1064 const char *connman_provider_get_string(struct connman_provider *provider,
1065                                                         const char *key)
1066 {
1067         DBG("provider %p key %s", provider, key);
1068
1069         if (g_str_equal(key, "Type") == TRUE)
1070                 return provider->type;
1071         else if (g_str_equal(key, "Name") == TRUE)
1072                 return provider->name;
1073         else if (g_str_equal(key, "Host") == TRUE)
1074                 return provider->host;
1075         else if (g_str_equal(key, "VPN.Domain") == TRUE)
1076                 return provider->domain;
1077
1078         return g_hash_table_lookup(provider->setting_strings, key);
1079 }
1080
1081 connman_bool_t
1082 __connman_provider_check_routes(struct connman_provider *provider)
1083 {
1084         if (provider == NULL)
1085                 return FALSE;
1086
1087         if (provider->user_routes != NULL &&
1088                         g_hash_table_size(provider->user_routes) > 0)
1089                 return TRUE;
1090
1091         if (provider->routes != NULL &&
1092                         g_hash_table_size(provider->routes) > 0)
1093                 return TRUE;
1094
1095         return FALSE;
1096 }
1097
1098 void *connman_provider_get_data(struct connman_provider *provider)
1099 {
1100         return provider->driver_data;
1101 }
1102
1103 void connman_provider_set_data(struct connman_provider *provider, void *data)
1104 {
1105         provider->driver_data = data;
1106 }
1107
1108 void connman_provider_set_index(struct connman_provider *provider, int index)
1109 {
1110         struct connman_service *service = provider->vpn_service;
1111         struct connman_ipconfig *ipconfig;
1112
1113         DBG("");
1114
1115         if (service == NULL)
1116                 return;
1117
1118         ipconfig = __connman_service_get_ip4config(service);
1119
1120         if (ipconfig == NULL) {
1121                 __connman_service_create_ip4config(service, index);
1122
1123                 ipconfig = __connman_service_get_ip4config(service);
1124                 if (ipconfig == NULL) {
1125                         DBG("Couldnt create ipconfig");
1126                         goto done;
1127                 }
1128         }
1129
1130         __connman_ipconfig_set_method(ipconfig, CONNMAN_IPCONFIG_METHOD_FIXED);
1131         __connman_ipconfig_set_index(ipconfig, index);
1132
1133
1134         ipconfig = __connman_service_get_ip6config(service);
1135
1136         if (ipconfig == NULL) {
1137                 __connman_service_create_ip6config(service, index);
1138
1139                 ipconfig = __connman_service_get_ip6config(service);
1140                 if (ipconfig == NULL) {
1141                         DBG("Couldnt create ipconfig for IPv6");
1142                         goto done;
1143                 }
1144         }
1145
1146         __connman_ipconfig_set_method(ipconfig, CONNMAN_IPCONFIG_METHOD_OFF);
1147         __connman_ipconfig_set_index(ipconfig, index);
1148
1149 done:
1150         provider->index = index;
1151 }
1152
1153 int connman_provider_get_index(struct connman_provider *provider)
1154 {
1155         return provider->index;
1156 }
1157
1158 int connman_provider_set_ipaddress(struct connman_provider *provider,
1159                                         struct connman_ipaddress *ipaddress)
1160 {
1161         struct connman_ipconfig *ipconfig = NULL;
1162
1163         ipconfig = __connman_service_get_ipconfig(provider->vpn_service,
1164                                                         ipaddress->family);
1165         if (ipconfig == NULL)
1166                 return -EINVAL;
1167
1168         provider->family = ipaddress->family;
1169
1170         __connman_ipconfig_set_local(ipconfig, ipaddress->local);
1171         __connman_ipconfig_set_peer(ipconfig, ipaddress->peer);
1172         __connman_ipconfig_set_broadcast(ipconfig, ipaddress->broadcast);
1173         __connman_ipconfig_set_gateway(ipconfig, ipaddress->gateway);
1174         __connman_ipconfig_set_prefixlen(ipconfig, ipaddress->prefixlen);
1175
1176         return 0;
1177 }
1178
1179 int connman_provider_set_pac(struct connman_provider *provider, const char *pac)
1180 {
1181         DBG("provider %p pac %s", provider, pac);
1182
1183         __connman_service_set_pac(provider->vpn_service, pac);
1184
1185         return 0;
1186 }
1187
1188
1189 int connman_provider_set_domain(struct connman_provider *provider,
1190                                         const char *domain)
1191 {
1192         DBG("provider %p domain %s", provider, domain);
1193
1194         g_free(provider->domain);
1195         provider->domain = g_strdup(domain);
1196
1197         __connman_service_set_domainname(provider->vpn_service, domain);
1198
1199         return 0;
1200 }
1201
1202 int connman_provider_set_nameservers(struct connman_provider *provider,
1203                                         const char *nameservers)
1204 {
1205         int i;
1206         char **nameservers_array = NULL;
1207
1208         DBG("provider %p nameservers %s", provider, nameservers);
1209
1210         __connman_service_nameserver_clear(provider->vpn_service);
1211
1212         if (nameservers == NULL)
1213                 return 0;
1214
1215         nameservers_array = g_strsplit(nameservers, " ", 0);
1216
1217         for (i = 0; nameservers_array[i] != NULL; i++) {
1218                 __connman_service_nameserver_append(provider->vpn_service,
1219                                                 nameservers_array[i], FALSE);
1220         }
1221
1222         g_strfreev(nameservers_array);
1223
1224         return 0;
1225 }
1226
1227 enum provider_route_type {
1228         PROVIDER_ROUTE_TYPE_NONE = 0,
1229         PROVIDER_ROUTE_TYPE_MASK = 1,
1230         PROVIDER_ROUTE_TYPE_ADDR = 2,
1231         PROVIDER_ROUTE_TYPE_GW   = 3,
1232 };
1233
1234 static int route_env_parse(struct connman_provider *provider, const char *key,
1235                                 int *family, unsigned long *idx,
1236                                 enum provider_route_type *type)
1237 {
1238         char *end;
1239         const char *start;
1240
1241         DBG("name %s", provider->name);
1242
1243         if (!strcmp(provider->type, "openvpn")) {
1244                 if (g_str_has_prefix(key, "route_network_") == TRUE) {
1245                         start = key + strlen("route_network_");
1246                         *type = PROVIDER_ROUTE_TYPE_ADDR;
1247                 } else if (g_str_has_prefix(key, "route_netmask_") == TRUE) {
1248                         start = key + strlen("route_netmask_");
1249                         *type = PROVIDER_ROUTE_TYPE_MASK;
1250                 } else if (g_str_has_prefix(key, "route_gateway_") == TRUE) {
1251                         start = key + strlen("route_gateway_");
1252                         *type = PROVIDER_ROUTE_TYPE_GW;
1253                 } else
1254                         return -EINVAL;
1255
1256                 *family = AF_INET;
1257                 *idx = g_ascii_strtoull(start, &end, 10);
1258
1259         } else if (!strcmp(provider->type, "openconnect")) {
1260                 if (g_str_has_prefix(key, "CISCO_SPLIT_INC_") == TRUE) {
1261                         *family = AF_INET;
1262                         start = key + strlen("CISCO_SPLIT_INC_");
1263                 } else if (g_str_has_prefix(key, "CISCO_IPV6_SPLIT_INC_") == TRUE) {
1264                         *family = AF_INET6;
1265                         start = key + strlen("CISCO_IPV6_SPLIT_INC_");
1266                 } else
1267                         return -EINVAL;
1268
1269                 *idx = g_ascii_strtoull(start, &end, 10);
1270
1271                 if (strncmp(end, "_ADDR", 5) == 0)
1272                         *type = PROVIDER_ROUTE_TYPE_ADDR;
1273                 else if (strncmp(end, "_MASK", 5) == 0)
1274                         *type = PROVIDER_ROUTE_TYPE_MASK;
1275                 else if (strncmp(end, "_MASKLEN", 8) == 0 &&
1276                                 *family == AF_INET6) {
1277                         *type = PROVIDER_ROUTE_TYPE_MASK;
1278                 } else
1279                         return -EINVAL;
1280         }
1281
1282         return 0;
1283 }
1284
1285 int connman_provider_append_route(struct connman_provider *provider,
1286                                         const char *key, const char *value)
1287 {
1288         struct connman_route *route;
1289         int ret, family = 0;
1290         unsigned long idx = 0;
1291         enum provider_route_type type = PROVIDER_ROUTE_TYPE_NONE;
1292
1293         DBG("key %s value %s", key, value);
1294
1295         ret = route_env_parse(provider, key, &family, &idx, &type);
1296         if (ret < 0)
1297                 return ret;
1298
1299         DBG("idx %lu family %d type %d", idx, family, type);
1300
1301         route = g_hash_table_lookup(provider->routes, GINT_TO_POINTER(idx));
1302         if (route == NULL) {
1303                 route = g_try_new0(struct connman_route, 1);
1304                 if (route == NULL) {
1305                         connman_error("out of memory");
1306                         return -ENOMEM;
1307                 }
1308
1309                 route->family = family;
1310
1311                 g_hash_table_replace(provider->routes, GINT_TO_POINTER(idx),
1312                                                 route);
1313         }
1314
1315         switch (type) {
1316         case PROVIDER_ROUTE_TYPE_NONE:
1317                 break;
1318         case PROVIDER_ROUTE_TYPE_MASK:
1319                 route->netmask = g_strdup(value);
1320                 break;
1321         case PROVIDER_ROUTE_TYPE_ADDR:
1322                 route->host = g_strdup(value);
1323                 break;
1324         case PROVIDER_ROUTE_TYPE_GW:
1325                 route->gateway = g_strdup(value);
1326                 break;
1327         }
1328
1329         return 0;
1330 }
1331
1332 const char *connman_provider_get_driver_name(struct connman_provider *provider)
1333 {
1334         if (provider->driver == NULL)
1335                 return NULL;
1336
1337         return provider->driver->name;
1338 }
1339
1340 const char *connman_provider_get_save_group(struct connman_provider *provider)
1341 {
1342         return provider->identifier;
1343 }
1344
1345 static gint compare_priority(gconstpointer a, gconstpointer b)
1346 {
1347         return 0;
1348 }
1349
1350 static void clean_provider(gpointer key, gpointer value, gpointer user_data)
1351 {
1352         struct connman_provider *provider = value;
1353
1354         if (provider->driver != NULL && provider->driver->remove)
1355                 provider->driver->remove(provider);
1356 }
1357
1358 int connman_provider_driver_register(struct connman_provider_driver *driver)
1359 {
1360         DBG("driver %p name %s", driver, driver->name);
1361
1362         driver_list = g_slist_insert_sorted(driver_list, driver,
1363                                                         compare_priority);
1364         provider_create_all_from_type(driver->name);
1365         return 0;
1366 }
1367
1368 void connman_provider_driver_unregister(struct connman_provider_driver *driver)
1369 {
1370         DBG("driver %p name %s", driver, driver->name);
1371
1372         driver_list = g_slist_remove(driver_list, driver);
1373 }
1374
1375 static void provider_remove_all(gpointer key, gpointer value,
1376                                                 gpointer user_data)
1377 {
1378         struct connman_provider *provider = value;
1379
1380         __connman_provider_remove(provider->identifier);
1381 }
1382
1383 static void provider_offline_mode(connman_bool_t enabled)
1384 {
1385         DBG("enabled %d", enabled);
1386
1387         if (enabled == TRUE)
1388                 g_hash_table_foreach(provider_hash, provider_remove_all, NULL);
1389
1390 }
1391
1392 static struct connman_provider *provider_get(int index)
1393 {
1394         GHashTableIter iter;
1395         gpointer value, key;
1396
1397         g_hash_table_iter_init(&iter, provider_hash);
1398
1399         while (g_hash_table_iter_next(&iter, &key, &value) == TRUE) {
1400                 struct connman_provider *provider = value;
1401
1402                 if (provider->index == index)
1403                         return provider;
1404         }
1405
1406         return NULL;
1407 }
1408
1409 static void provider_service_changed(struct connman_service *service,
1410                                 enum connman_service_state state)
1411 {
1412         struct connman_provider *provider;
1413         int vpn_index, service_index;
1414
1415         if (service == NULL)
1416                 return;
1417
1418         switch (state) {
1419         case CONNMAN_SERVICE_STATE_UNKNOWN:
1420         case CONNMAN_SERVICE_STATE_IDLE:
1421         case CONNMAN_SERVICE_STATE_ASSOCIATION:
1422         case CONNMAN_SERVICE_STATE_CONFIGURATION:
1423         case CONNMAN_SERVICE_STATE_READY:
1424         case CONNMAN_SERVICE_STATE_ONLINE:
1425                 return;
1426         case CONNMAN_SERVICE_STATE_DISCONNECT:
1427         case CONNMAN_SERVICE_STATE_FAILURE:
1428                 break;
1429         }
1430
1431         service_index = __connman_service_get_index(service);
1432
1433         vpn_index = __connman_connection_get_vpn_index(service_index);
1434
1435         DBG("service %p %s state %d index %d/%d", service,
1436                 __connman_service_get_ident(service),
1437                 state, service_index, vpn_index);
1438
1439         if (vpn_index < 0)
1440                 return;
1441
1442         provider = provider_get(vpn_index);
1443         if (provider == NULL)
1444                 return;
1445
1446         DBG("disconnect %p index %d", provider, vpn_index);
1447
1448         __connman_provider_disconnect(provider);
1449
1450         return;
1451 }
1452
1453 static struct connman_notifier provider_notifier = {
1454         .name                   = "provider",
1455         .offline_mode           = provider_offline_mode,
1456         .service_state_changed  = provider_service_changed,
1457 };
1458
1459 int __connman_provider_init(void)
1460 {
1461         int err;
1462
1463         DBG("");
1464
1465         connection = connman_dbus_get_connection();
1466
1467         provider_hash = g_hash_table_new_full(g_str_hash, g_str_equal,
1468                                                 NULL, unregister_provider);
1469
1470         err = connman_notifier_register(&provider_notifier);
1471         if (err < 0) {
1472                 g_hash_table_destroy(provider_hash);
1473                 dbus_connection_unref(connection);
1474         }
1475
1476         return err;
1477 }
1478
1479 void __connman_provider_cleanup(void)
1480 {
1481         DBG("");
1482
1483         connman_notifier_unregister(&provider_notifier);
1484
1485         g_hash_table_foreach(provider_hash, clean_provider, NULL);
1486
1487         g_hash_table_destroy(provider_hash);
1488         provider_hash = NULL;
1489
1490         dbus_connection_unref(connection);
1491 }