2 * Network Configuration - VPN Service Module
4 * Copyright (c) 2015 Samsung Electronics Co., Ltd. All rights reserved.
6 * Licensed under the Apache License, Version 2.0 (the "License");
7 * you may not use this file except in compliance with the License.
8 * You may obtain a copy of the License at
10 * http://www.apache.org/licenses/LICENSE-2.0
12 * Unless required by applicable law or agreed to in writing, software
13 * distributed under the License is distributed on an "AS IS" BASIS,
14 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
15 * See the License for the specific language governing permissions and
16 * limitations under the License.
23 #include <gio/gunixfdlist.h>
26 #include "vpnsvc-internal.h"
30 static Vpnsvc *vpnsvc = NULL;
32 /*********************
35 gboolean handle_vpn_init(Vpnsvc *object,
36 GDBusMethodInvocation *invocation,
37 const gchar *arg_iface_name,
38 guint arg_iface_name_len)
40 DBG("handle_vpn_init");
42 int result = VPNSVC_ERROR_NONE;
44 vpnsvc_tun_s handle_s;
50 DBG("vpn_init, %s, %u\n", arg_iface_name, arg_iface_name_len);
52 msg = g_dbus_method_invocation_get_message(invocation);
53 fd_list = g_dbus_message_get_unix_fd_list(msg);
54 fds = g_unix_fd_list_peek_fds(fd_list, &fd_list_length);
56 if (fd_list_length <= 0)
57 DBG("D-Bus Message doesn't contain any fd!");
61 result = vpn_service_init(arg_iface_name, arg_iface_name_len, *fds, &handle_s);
63 DBG("handle_s.fd : %d, handle_s.index : %d, handle_s.name : %s",
64 handle_s.fd, handle_s.index, handle_s.name);
66 vpnsvc_complete_vpn_init(object, invocation, result, handle_s.index, handle_s.name);
71 gboolean handle_vpn_deinit(Vpnsvc *object,
72 GDBusMethodInvocation *invocation,
73 const gchar *arg_dev_name)
75 DBG("handle_vpn_deinit");
77 int result = VPNSVC_ERROR_NONE;
79 DBG("vpn_deinit, %s\n", arg_dev_name);
81 result = vpn_service_deinit(arg_dev_name);
83 vpnsvc_complete_vpn_deinit(object, invocation, result);
88 gboolean handle_vpn_protect(Vpnsvc *object,
89 GDBusMethodInvocation *invocation,
90 const gchar *arg_dev_name)
92 DBG("handle_vpn_protect");
94 int result = VPNSVC_ERROR_NONE;
102 msg = g_dbus_method_invocation_get_message(invocation);
103 fd_list = g_dbus_message_get_unix_fd_list(msg);
104 fds = g_unix_fd_list_peek_fds(fd_list, &fd_list_length);
105 if (fd_list_length <= 0)
106 DBG("D-Bus Message doesn't contain any fd!");
109 DBG("vpn_protect, %d, %s\n", socket, arg_dev_name);
111 result = vpn_service_protect(socket, arg_dev_name);
113 vpnsvc_complete_vpn_protect(object, invocation, result);
118 gboolean handle_vpn_up(Vpnsvc *object,
119 GDBusMethodInvocation *invocation,
120 const gchar *arg_iface_name)
122 DBG("handle_vpn_up");
124 int result = VPNSVC_ERROR_NONE;
126 result = vpn_service_up(arg_iface_name);
128 vpnsvc_complete_vpn_up(object, invocation, result);
133 gboolean handle_vpn_down(Vpnsvc *object,
134 GDBusMethodInvocation *invocation,
135 const gchar *arg_iface_name)
137 DBG("handle_vpn_down");
139 int result = VPNSVC_ERROR_NONE;
141 result = vpn_service_down(arg_iface_name);
143 vpnsvc_complete_vpn_down(object, invocation, result);
148 #define MAX_NUM_ROUTE_RULE 255
150 gboolean handle_vpn_block_networks(Vpnsvc *object,
151 GDBusMethodInvocation *invocation,
152 GVariant *arg_nets_vpn,
153 guint arg_nr_nets_vpn,
154 GVariant *arg_nets_orig,
155 guint arg_nr_nets_orig)
157 DBG("handle_vpn_block_networks");
159 int result = VPNSVC_ERROR_NONE;
160 if (arg_nr_nets_vpn > MAX_NUM_ROUTE_RULE) {
161 ERR("Number of allowing networks over VPN interface is exceeded %d,"
162 " Limit is %d", arg_nr_nets_vpn, MAX_NUM_ROUTE_RULE);
163 result = VPNSVC_ERROR_INVALID_PARAMETER;
164 goto method_complete;
167 if (arg_nr_nets_orig > MAX_NUM_ROUTE_RULE) {
168 ERR("Number of allowing networks over original interface is exceeded"
169 " %d, Limit is %d", arg_nr_nets_orig, MAX_NUM_ROUTE_RULE);
170 result = VPNSVC_ERROR_INVALID_PARAMETER;
171 goto method_complete;
175 char *nets_vpn[arg_nr_nets_vpn];
176 int prefix_vpn[arg_nr_nets_vpn];
178 char *nets_orig[arg_nr_nets_orig];
179 int prefix_orig[arg_nr_nets_orig];
186 DBG("vpn_block_networks");
188 memset(nets_vpn, 0, sizeof(char *) * arg_nr_nets_vpn);
189 memset(prefix_vpn, 0, sizeof(int) * arg_nr_nets_vpn);
190 memset(nets_orig, 0, sizeof(char *) * arg_nr_nets_orig);
191 memset(prefix_orig, 0, sizeof(int) * arg_nr_nets_orig);
193 /* arg_nets_vpn check */
194 if (arg_nr_nets_vpn > 0) {
195 if (arg_nets_vpn != NULL) {
196 GVariant *dict_nets_vpn = g_variant_get_variant(arg_nets_vpn);
197 g_variant_iter_init(&iter, dict_nets_vpn);
199 while (g_variant_iter_loop(&iter, "{si}", &route_dest, &route_prefix)) {
200 if (i >= arg_nr_nets_vpn) {
201 WARN("No more space for allowing network over VPN interface."
202 " next index %d / space size %d", i, arg_nr_nets_vpn);
206 int tmp_route_len = strlen(route_dest);
207 nets_vpn[i] = g_try_malloc0(sizeof(char) * tmp_route_len + 1);
208 strncpy(nets_vpn[i], route_dest, tmp_route_len);
209 nets_vpn[i][tmp_route_len] = '\0';
210 prefix_vpn[i] = route_prefix;
211 DBG("nets_vpn[%d] = %s \t", i, (nets_vpn[i] == NULL) ? "" : nets_vpn[i]);
212 DBG("prefix_vpn[%d] = %d ", i, prefix_vpn[i]);
218 /* arg_nets_orig check */
219 if (arg_nr_nets_orig > 0) {
220 if (arg_nets_orig != NULL) {
221 GVariant *dict_nets_orig = g_variant_get_variant(arg_nets_orig);
222 g_variant_iter_init(&iter, dict_nets_orig);
224 while (g_variant_iter_loop(&iter, "{si}", &route_dest, &route_prefix)) {
225 if (i >= arg_nr_nets_orig) {
226 WARN("No more space for allowing network over VPN interface."
227 " next index %d / space size %d", i, arg_nr_nets_orig);
231 int tmp_route_len = strlen(route_dest);
232 nets_orig[i] = g_try_malloc0(sizeof(char) * tmp_route_len + 1);
233 strncpy(nets_orig[i], route_dest, tmp_route_len);
234 nets_orig[i][tmp_route_len] = '\0';
235 prefix_orig[i] = route_prefix;
236 DBG("nets_orig[%d] = %s \t", i, (nets_orig[i] == NULL) ? "" : nets_orig[i]);
237 DBG("prefix_orig[%d] = %d ", i, prefix_orig[i]);
244 result = vpn_service_block_networks(nets_vpn, prefix_vpn, arg_nr_nets_vpn, nets_orig, prefix_orig, arg_nr_nets_orig);
246 for (i = 0; i < arg_nr_nets_vpn; ++i) {
250 for (i = 0; i < arg_nr_nets_orig; ++i) {
251 g_free(nets_orig[i]);
256 vpnsvc_complete_vpn_block_networks(object, invocation, result);
261 gboolean handle_vpn_unblock_networks(Vpnsvc *object,
262 GDBusMethodInvocation *invocation)
264 DBG("handle_vpn_unblock_networks");
266 int result = VPNSVC_ERROR_NONE;
268 DBG("vpn_unblock_networks");
270 result = vpn_service_unblock_networks();
272 vpnsvc_complete_vpn_unblock_networks(object, invocation, result);
277 gboolean handle_vpn_update_settings(Vpnsvc *object,
278 GDBusMethodInvocation *invocation,
279 gint arg_iface_index,
280 const gchar *arg_local_ip,
281 const gchar *arg_remote_ip,
284 int result = VPNSVC_ERROR_NONE;
285 DBG("handle_vpn_update_settings");
287 result = vpn_service_update_settings(arg_iface_index, arg_local_ip, arg_remote_ip, arg_mtu);
289 vpnsvc_complete_vpn_update_settings(object, invocation, result);
294 gboolean handle_vpn_add_route(Vpnsvc *object,
295 GDBusMethodInvocation *invocation,
296 gchar *arg_iface_name,
297 const gchar *arg_route,
300 DBG("handle_vpn_add_route");
302 int result = VPNSVC_ERROR_NONE;
304 result = vpn_service_add_route(arg_iface_name, arg_route, arg_prefix);
306 vpnsvc_complete_vpn_add_route(object, invocation, result);
311 gboolean handle_vpn_remove_route(Vpnsvc *object,
312 GDBusMethodInvocation *invocation,
313 gchar *arg_iface_name,
314 const gchar *arg_route,
318 DBG("handle_vpn_remove_route");
320 int result = VPNSVC_ERROR_NONE;
322 result = vpn_service_remove_route(arg_iface_name, arg_route, arg_prefix);
324 vpnsvc_complete_vpn_remove_route(object, invocation, result);
329 gboolean handle_vpn_add_dns_server(Vpnsvc *object,
330 GDBusMethodInvocation *invocation,
331 gchar *arg_iface_name,
332 const gchar *arg_dns_server)
334 DBG("handle_vpn_add_dns_server");
336 int result = VPNSVC_ERROR_NONE;
338 result = vpn_service_add_dns_server(arg_iface_name, arg_dns_server);
340 vpnsvc_complete_vpn_add_dns_server(object, invocation, result);
345 /*****************************
346 * Initializations Functions *
347 ****************************/
348 Vpnsvc *get_vpnsvc_object(void)
353 void vpnsvc_create_and_init(void)
355 DBG("Create vpn object.");
356 GDBusInterfaceSkeleton *interface_vpn = NULL;
357 GDBusConnection *connection = NULL;
358 GDBusObjectManagerServer *server = netdbus_get_vpn_manager();
362 connection = netdbus_get_connection();
363 g_dbus_object_manager_server_set_connection(server, connection);
366 vpnsvc = vpnsvc_skeleton_new();
367 interface_vpn = G_DBUS_INTERFACE_SKELETON(vpnsvc);
370 g_signal_connect(vpnsvc, "handle-vpn-init",
371 G_CALLBACK(handle_vpn_init), NULL);
372 g_signal_connect(vpnsvc, "handle-vpn-deinit",
373 G_CALLBACK(handle_vpn_deinit), NULL);
374 g_signal_connect(vpnsvc, "handle-vpn-protect",
375 G_CALLBACK(handle_vpn_protect), NULL);
376 g_signal_connect(vpnsvc, "handle-vpn-up",
377 G_CALLBACK(handle_vpn_up), NULL);
378 g_signal_connect(vpnsvc, "handle-vpn-down",
379 G_CALLBACK(handle_vpn_down), NULL);
380 g_signal_connect(vpnsvc, "handle-vpn-block-networks",
381 G_CALLBACK(handle_vpn_block_networks), NULL);
382 g_signal_connect(vpnsvc, "handle-vpn-unblock-networks",
383 G_CALLBACK(handle_vpn_unblock_networks), NULL);
384 g_signal_connect(vpnsvc, "handle-vpn-update-settings",
385 G_CALLBACK(handle_vpn_update_settings), NULL);
386 g_signal_connect(vpnsvc, "handle-vpn-add-route",
387 G_CALLBACK(handle_vpn_add_route), NULL);
388 g_signal_connect(vpnsvc, "handle-vpn-remove-route",
389 G_CALLBACK(handle_vpn_remove_route), NULL);
390 g_signal_connect(vpnsvc, "handle-vpn-add-dns-server",
391 G_CALLBACK(handle_vpn_add_dns_server), NULL);
393 if (!g_dbus_interface_skeleton_export(interface_vpn, connection,
394 NETCONFIG_VPNSVC_PATH, NULL)) {
395 ERR("Export NETCONFIG_VPNSVC_PATH for vpn failed");
401 void vpnsvc_destroy_deinit(void)
403 DBG("Deinit vpn object.");
406 g_object_unref(vpnsvc);