5 * Copyright (C) 2012 Intel Corporation. All rights reserved.
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
31 #include <connman/log.h>
32 #include <gweb/gresolv.h>
35 #include "../src/connman.h"
36 #include "connman/agent.h"
37 #include "connman/vpn-dbus.h"
38 #include "vpn-provider.h"
41 static DBusConnection *connection;
42 static GHashTable *provider_hash;
43 static GSList *driver_list;
44 static int configuration_count;
45 static gboolean handle_routes;
64 enum vpn_provider_state state;
73 struct vpn_provider_driver *driver;
75 GHashTable *setting_strings;
76 GHashTable *user_routes;
77 GSList *user_networks;
80 struct vpn_ipconfig *ipconfig_ipv4;
81 struct vpn_ipconfig *ipconfig_ipv6;
86 connman_bool_t immutable;
89 static void append_properties(DBusMessageIter *iter,
90 struct vpn_provider *provider);
92 static void free_route(gpointer data)
94 struct vpn_route *route = data;
96 g_free(route->network);
97 g_free(route->netmask);
98 g_free(route->gateway);
103 static void free_setting(gpointer data)
105 struct vpn_setting *setting = data;
107 g_free(setting->value);
111 static void append_route(DBusMessageIter *iter, void *user_data)
113 struct vpn_route *route = user_data;
114 DBusMessageIter item;
117 connman_dbus_dict_open(iter, &item);
122 if (route->family == AF_INET)
124 else if (route->family == AF_INET6)
128 connman_dbus_dict_append_basic(&item, "ProtocolFamily",
129 DBUS_TYPE_INT32, &family);
131 if (route->network != NULL)
132 connman_dbus_dict_append_basic(&item, "Network",
133 DBUS_TYPE_STRING, &route->network);
135 if (route->netmask != NULL)
136 connman_dbus_dict_append_basic(&item, "Netmask",
137 DBUS_TYPE_STRING, &route->netmask);
139 if (route->gateway != NULL)
140 connman_dbus_dict_append_basic(&item, "Gateway",
141 DBUS_TYPE_STRING, &route->gateway);
144 connman_dbus_dict_close(iter, &item);
147 static void append_routes(DBusMessageIter *iter, void *user_data)
149 GHashTable *routes = user_data;
153 if (routes == NULL) {
154 append_route(iter, NULL);
158 g_hash_table_iter_init(&hash, routes);
160 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
161 DBusMessageIter dict;
163 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT, NULL,
165 append_route(&dict, value);
166 dbus_message_iter_close_container(iter, &dict);
170 static void send_routes(struct vpn_provider *provider, GHashTable *routes,
173 connman_dbus_property_changed_array(provider->path,
174 VPN_CONNECTION_INTERFACE,
176 DBUS_TYPE_DICT_ENTRY,
181 static int provider_routes_changed(struct vpn_provider *provider)
183 DBG("provider %p", provider);
185 send_routes(provider, provider->routes, "ServerRoutes");
190 static GSList *read_route_dict(GSList *routes, DBusMessageIter *dicts)
192 DBusMessageIter dict, value, entry;
193 const char *network, *netmask, *gateway;
194 struct vpn_route *route;
198 dbus_message_iter_recurse(dicts, &entry);
200 network = netmask = gateway = NULL;
203 while (dbus_message_iter_get_arg_type(&entry) == DBUS_TYPE_DICT_ENTRY) {
205 dbus_message_iter_recurse(&entry, &dict);
206 dbus_message_iter_get_basic(&dict, &key);
208 dbus_message_iter_next(&dict);
209 dbus_message_iter_recurse(&dict, &value);
211 type = dbus_message_iter_get_arg_type(&value);
214 case DBUS_TYPE_STRING:
215 if (g_str_equal(key, "ProtocolFamily") == TRUE)
216 dbus_message_iter_get_basic(&value, &family);
217 else if (g_str_equal(key, "Network") == TRUE)
218 dbus_message_iter_get_basic(&value, &network);
219 else if (g_str_equal(key, "Netmask") == TRUE)
220 dbus_message_iter_get_basic(&value, &netmask);
221 else if (g_str_equal(key, "Gateway") == TRUE)
222 dbus_message_iter_get_basic(&value, &gateway);
226 dbus_message_iter_next(&entry);
229 DBG("family %d network %s netmask %s gateway %s", family,
230 network, netmask, gateway);
232 if (network == NULL || netmask == NULL) {
233 DBG("Ignoring route as network/netmask is missing");
237 route = g_try_new(struct vpn_route, 1);
239 g_slist_free_full(routes, free_route);
243 if (family == PF_UNSPEC) {
244 family = connman_inet_check_ipaddress(network);
246 DBG("Cannot get address family of %s (%d/%s)", network,
247 family, gai_strerror(family));
266 route->family = family;
267 route->network = g_strdup(network);
268 route->netmask = g_strdup(netmask);
269 route->gateway = g_strdup(gateway);
271 routes = g_slist_prepend(routes, route);
275 static GSList *get_user_networks(DBusMessageIter *array)
277 DBusMessageIter entry;
280 while (dbus_message_iter_get_arg_type(array) == DBUS_TYPE_ARRAY) {
282 dbus_message_iter_recurse(array, &entry);
284 while (dbus_message_iter_get_arg_type(&entry) ==
286 DBusMessageIter dicts;
288 dbus_message_iter_recurse(&entry, &dicts);
290 while (dbus_message_iter_get_arg_type(&dicts) ==
293 list = read_route_dict(list, &dicts);
294 dbus_message_iter_next(&dicts);
297 dbus_message_iter_next(&entry);
300 dbus_message_iter_next(array);
306 static void set_user_networks(struct vpn_provider *provider, GSList *networks)
310 for (list = networks; list != NULL; list = g_slist_next(list)) {
311 struct vpn_route *route = list->data;
313 if (__vpn_provider_append_user_route(provider,
314 route->family, route->network,
315 route->netmask, route->gateway) != 0)
320 static void del_routes(struct vpn_provider *provider)
325 g_hash_table_iter_init(&hash, provider->user_routes);
326 while (handle_routes == TRUE && g_hash_table_iter_next(&hash,
327 &key, &value) == TRUE) {
328 struct vpn_route *route = value;
329 if (route->family == AF_INET6) {
330 unsigned char prefixlen = atoi(route->netmask);
331 connman_inet_del_ipv6_network_route(provider->index,
335 connman_inet_del_host_route(provider->index,
339 g_hash_table_remove_all(provider->user_routes);
340 g_slist_free_full(provider->user_networks, free_route);
341 provider->user_networks = NULL;
344 static void send_value(const char *path, const char *key, const char *value)
346 const char *empty = "";
354 connman_dbus_property_changed_basic(path,
355 VPN_CONNECTION_INTERFACE,
361 static gboolean provider_send_changed(gpointer data)
363 struct vpn_provider *provider = data;
365 provider_routes_changed(provider);
367 provider->notify_id = 0;
372 static void provider_schedule_changed(struct vpn_provider *provider)
374 if (provider->notify_id != 0)
375 g_source_remove(provider->notify_id);
377 provider->notify_id = g_timeout_add(100, provider_send_changed,
381 static DBusMessage *get_properties(DBusConnection *conn,
382 DBusMessage *msg, void *data)
384 struct vpn_provider *provider = data;
386 DBusMessageIter array;
388 DBG("provider %p", provider);
390 reply = dbus_message_new_method_return(msg);
394 dbus_message_iter_init_append(reply, &array);
396 append_properties(&array, provider);
401 static DBusMessage *set_property(DBusConnection *conn, DBusMessage *msg,
404 struct vpn_provider *provider = data;
405 DBusMessageIter iter, value;
409 DBG("conn %p", conn);
411 if (provider->immutable == TRUE)
412 return __connman_error_not_supported(msg);
414 if (dbus_message_iter_init(msg, &iter) == FALSE)
415 return __connman_error_invalid_arguments(msg);
417 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_STRING)
418 return __connman_error_invalid_arguments(msg);
420 dbus_message_iter_get_basic(&iter, &name);
421 dbus_message_iter_next(&iter);
423 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_VARIANT)
424 return __connman_error_invalid_arguments(msg);
426 dbus_message_iter_recurse(&iter, &value);
428 type = dbus_message_iter_get_arg_type(&value);
430 if (g_str_equal(name, "UserRoutes") == TRUE) {
433 if (type != DBUS_TYPE_ARRAY)
434 return __connman_error_invalid_arguments(msg);
436 networks = get_user_networks(&value);
437 if (networks != NULL) {
438 del_routes(provider);
439 provider->user_networks = networks;
440 set_user_networks(provider, provider->user_networks);
442 if (handle_routes == FALSE)
443 send_routes(provider, provider->user_routes,
449 dbus_message_iter_get_basic(&value, &str);
450 vpn_provider_set_string(provider, name, str);
453 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
456 static DBusMessage *clear_property(DBusConnection *conn, DBusMessage *msg,
459 struct vpn_provider *provider = data;
462 DBG("conn %p", conn);
464 if (provider->immutable == TRUE)
465 return __connman_error_not_supported(msg);
467 dbus_message_get_args(msg, NULL, DBUS_TYPE_STRING, &name,
470 if (g_str_equal(name, "UserRoutes") == TRUE) {
471 del_routes(provider);
473 if (handle_routes == FALSE)
474 send_routes(provider, provider->user_routes, name);
475 } else if (vpn_provider_get_string(provider, name) != NULL) {
476 vpn_provider_set_string(provider, name, NULL);
478 return __connman_error_invalid_property(msg);
481 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
484 static DBusMessage *do_connect(DBusConnection *conn, DBusMessage *msg,
487 struct vpn_provider *provider = data;
490 DBG("conn %p provider %p", conn, provider);
492 err = __vpn_provider_connect(provider, msg);
494 return __connman_error_failed(msg, -err);
499 static DBusMessage *do_disconnect(DBusConnection *conn, DBusMessage *msg,
502 struct vpn_provider *provider = data;
505 DBG("conn %p provider %p", conn, provider);
507 err = __vpn_provider_disconnect(provider);
508 if (err < 0 && err != -EINPROGRESS)
509 return __connman_error_failed(msg, -err);
511 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
514 static const GDBusMethodTable connection_methods[] = {
515 { GDBUS_METHOD("GetProperties",
516 NULL, GDBUS_ARGS({ "properties", "a{sv}" }),
518 { GDBUS_METHOD("SetProperty",
519 GDBUS_ARGS({ "name", "s" }, { "value", "v" }),
520 NULL, set_property) },
521 { GDBUS_METHOD("ClearProperty",
522 GDBUS_ARGS({ "name", "s" }), NULL,
524 { GDBUS_ASYNC_METHOD("Connect", NULL, NULL, do_connect) },
525 { GDBUS_METHOD("Disconnect", NULL, NULL, do_disconnect) },
529 static const GDBusSignalTable connection_signals[] = {
530 { GDBUS_SIGNAL("PropertyChanged",
531 GDBUS_ARGS({ "name", "s" }, { "value", "v" })) },
535 static void resolv_result(GResolvResultStatus status,
536 char **results, gpointer user_data)
538 struct vpn_provider *provider = user_data;
540 DBG("status %d", status);
542 if (status == G_RESOLV_RESULT_STATUS_SUCCESS && results != NULL &&
543 g_strv_length(results) > 0)
544 provider->host_ip = g_strdupv(results);
546 vpn_provider_unref(provider);
549 static void provider_resolv_host_addr(struct vpn_provider *provider)
551 if (provider->host == NULL)
554 if (connman_inet_check_ipaddress(provider->host) > 0)
557 if (provider->host_ip != NULL)
561 * If the hostname is not numeric, try to resolv it. We do not wait
562 * the result as it might take some time. We will get the result
563 * before VPN will feed routes to us because VPN client will need
564 * the IP address also before VPN connection can be established.
566 provider->resolv = g_resolv_new(0);
567 if (provider->resolv == NULL) {
568 DBG("Cannot resolv %s", provider->host);
572 DBG("Trying to resolv %s", provider->host);
574 vpn_provider_ref(provider);
576 g_resolv_lookup_hostname(provider->resolv, provider->host,
577 resolv_result, provider);
580 void __vpn_provider_append_properties(struct vpn_provider *provider,
581 DBusMessageIter *iter)
583 if (provider->host != NULL)
584 connman_dbus_dict_append_basic(iter, "Host",
585 DBUS_TYPE_STRING, &provider->host);
587 if (provider->domain != NULL)
588 connman_dbus_dict_append_basic(iter, "Domain",
589 DBUS_TYPE_STRING, &provider->domain);
591 if (provider->type != NULL)
592 connman_dbus_dict_append_basic(iter, "Type", DBUS_TYPE_STRING,
596 int __vpn_provider_append_user_route(struct vpn_provider *provider,
597 int family, const char *network,
598 const char *netmask, const char *gateway)
600 struct vpn_route *route;
601 char *key = g_strdup_printf("%d/%s/%s/%s", family, network,
602 netmask, gateway != NULL ? gateway : "");
604 DBG("family %d network %s netmask %s gw %s", family, network,
607 route = g_hash_table_lookup(provider->user_routes, key);
609 route = g_try_new0(struct vpn_route, 1);
611 connman_error("out of memory");
615 route->family = family;
616 route->network = g_strdup(network);
617 route->netmask = g_strdup(netmask);
618 route->gateway = g_strdup(gateway);
620 g_hash_table_replace(provider->user_routes, key, route);
627 static struct vpn_route *get_route(char *route_str)
629 char **elems = g_strsplit(route_str, "/", 0);
630 char *network, *netmask, *gateway, *family_str;
631 int family = PF_UNSPEC;
632 struct vpn_route *route = NULL;
637 family_str = elems[0];
640 if (network == NULL || network[0] == '\0')
644 if (netmask == NULL || netmask[0] == '\0')
649 route = g_try_new0(struct vpn_route, 1);
653 if (family_str[0] == '\0' || atoi(family_str) == 0) {
656 switch (family_str[0]) {
666 if (g_strrstr(network, ":") != NULL) {
667 if (family != PF_UNSPEC && family != AF_INET6)
668 DBG("You have IPv6 address but you have non IPv6 route");
669 } else if (g_strrstr(network, ".") != NULL) {
670 if (family != PF_UNSPEC && family != AF_INET)
671 DBG("You have IPv4 address but you have non IPv4 route");
673 if (g_strrstr(netmask, ".") == NULL) {
674 /* We have netmask length */
676 struct in_addr netmask_in;
677 unsigned char prefix_len = 32;
679 if (netmask != NULL) {
681 long int value = strtol(netmask, &ptr, 10);
682 if (ptr != netmask && *ptr == '\0' &&
687 addr = 0xffffffff << (32 - prefix_len);
688 netmask_in.s_addr = htonl(addr);
689 netmask = inet_ntoa(netmask_in);
691 DBG("network %s netmask %s", network, netmask);
695 if (family == PF_UNSPEC) {
696 family = connman_inet_check_ipaddress(network);
697 if (family < 0 || family == PF_UNSPEC)
701 route->family = family;
702 route->network = g_strdup(network);
703 route->netmask = g_strdup(netmask);
704 route->gateway = g_strdup(gateway);
711 static GSList *get_routes(gchar **networks)
713 struct vpn_route *route;
714 GSList *routes = NULL;
717 for (i = 0; networks[i] != NULL; i++) {
718 route = get_route(networks[i]);
720 routes = g_slist_prepend(routes, route);
726 static int provider_load_from_keyfile(struct vpn_provider *provider,
732 gsize length, num_user_networks;
733 gchar **networks = NULL;
735 settings = g_key_file_get_keys(keyfile, provider->identifier, &length,
737 if (settings == NULL) {
738 g_key_file_free(keyfile);
742 while (idx < length) {
745 if (g_str_equal(key, "Networks") == TRUE) {
746 networks = g_key_file_get_string_list(keyfile,
747 provider->identifier,
751 provider->user_networks = get_routes(networks);
754 value = g_key_file_get_string(keyfile,
755 provider->identifier,
757 vpn_provider_set_string(provider, key,
764 g_strfreev(settings);
765 g_strfreev(networks);
767 if (provider->user_networks != NULL)
768 set_user_networks(provider, provider->user_networks);
774 static int vpn_provider_load(struct vpn_provider *provider)
778 DBG("provider %p", provider);
780 keyfile = __connman_storage_load_provider(provider->identifier);
784 provider_load_from_keyfile(provider, keyfile);
786 g_key_file_free(keyfile);
790 static gchar **create_network_list(GSList *networks, gsize *count)
793 gchar **result = NULL;
794 unsigned int num_elems = 0;
796 for (list = networks; list != NULL; list = g_slist_next(list)) {
797 struct vpn_route *route = list->data;
800 result = g_try_realloc(result,
801 (num_elems + 1) * sizeof(gchar *));
805 switch (route->family) {
817 result[num_elems] = g_strdup_printf("%d/%s/%s/%s",
818 family, route->network, route->netmask,
819 route->gateway == NULL ? "" : route->gateway);
824 result = g_try_realloc(result, (num_elems + 1) * sizeof(gchar *));
828 result[num_elems] = NULL;
833 static int vpn_provider_save(struct vpn_provider *provider)
837 DBG("provider %p immutable %s", provider,
838 provider->immutable ? "yes" : "no");
840 if (provider->immutable == TRUE) {
842 * Do not save providers that are provisioned via .config
848 keyfile = g_key_file_new();
852 g_key_file_set_string(keyfile, provider->identifier,
853 "Name", provider->name);
854 g_key_file_set_string(keyfile, provider->identifier,
855 "Type", provider->type);
856 g_key_file_set_string(keyfile, provider->identifier,
857 "Host", provider->host);
858 g_key_file_set_string(keyfile, provider->identifier,
859 "VPN.Domain", provider->domain);
860 if (provider->user_networks != NULL) {
864 networks = create_network_list(provider->user_networks,
866 if (networks != NULL) {
867 g_key_file_set_string_list(keyfile,
868 provider->identifier,
870 (const gchar ** const)networks,
872 g_strfreev(networks);
876 if (provider->config_file != NULL && strlen(provider->config_file) > 0)
877 g_key_file_set_string(keyfile, provider->identifier,
878 "Config.file", provider->config_file);
880 if (provider->config_entry != NULL &&
881 strlen(provider->config_entry) > 0)
882 g_key_file_set_string(keyfile, provider->identifier,
883 "Config.ident", provider->config_entry);
885 if (provider->driver != NULL && provider->driver->save != NULL)
886 provider->driver->save(provider, keyfile);
888 __connman_storage_save_provider(keyfile, provider->identifier);
889 g_key_file_free(keyfile);
894 struct vpn_provider *__vpn_provider_lookup(const char *identifier)
896 struct vpn_provider *provider = NULL;
898 provider = g_hash_table_lookup(provider_hash, identifier);
903 static gboolean match_driver(struct vpn_provider *provider,
904 struct vpn_provider_driver *driver)
906 if (g_strcmp0(driver->name, provider->type) == 0)
912 static int provider_probe(struct vpn_provider *provider)
916 DBG("provider %p driver %p name %s", provider, provider->driver,
919 if (provider->driver != NULL)
922 for (list = driver_list; list; list = list->next) {
923 struct vpn_provider_driver *driver = list->data;
925 if (match_driver(provider, driver) == FALSE)
928 DBG("driver %p name %s", driver, driver->name);
930 if (driver->probe != NULL && driver->probe(provider) == 0) {
931 provider->driver = driver;
936 if (provider->driver == NULL)
942 static void provider_remove(struct vpn_provider *provider)
944 if (provider->driver != NULL) {
945 provider->driver->remove(provider);
946 provider->driver = NULL;
950 static int provider_register(struct vpn_provider *provider)
952 return provider_probe(provider);
955 static void provider_unregister(struct vpn_provider *provider)
957 provider_remove(provider);
960 struct vpn_provider *
961 vpn_provider_ref_debug(struct vpn_provider *provider,
962 const char *file, int line, const char *caller)
964 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount + 1,
967 __sync_fetch_and_add(&provider->refcount, 1);
972 static void provider_destruct(struct vpn_provider *provider)
974 DBG("provider %p", provider);
976 if (provider->notify_id != 0)
977 g_source_remove(provider->notify_id);
979 g_free(provider->name);
980 g_free(provider->type);
981 g_free(provider->host);
982 g_free(provider->domain);
983 g_free(provider->identifier);
984 g_free(provider->path);
985 g_slist_free_full(provider->user_networks, free_route);
986 g_strfreev(provider->nameservers);
987 g_hash_table_destroy(provider->routes);
988 g_hash_table_destroy(provider->user_routes);
989 g_hash_table_destroy(provider->setting_strings);
990 if (provider->resolv != NULL) {
991 g_resolv_unref(provider->resolv);
992 provider->resolv = NULL;
994 __vpn_ipconfig_unref(provider->ipconfig_ipv4);
995 __vpn_ipconfig_unref(provider->ipconfig_ipv6);
997 g_strfreev(provider->host_ip);
998 g_free(provider->config_file);
999 g_free(provider->config_entry);
1003 void vpn_provider_unref_debug(struct vpn_provider *provider,
1004 const char *file, int line, const char *caller)
1006 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount - 1,
1007 file, line, caller);
1009 if (__sync_fetch_and_sub(&provider->refcount, 1) != 1)
1012 provider_remove(provider);
1014 provider_destruct(provider);
1017 static void configuration_count_add(void)
1019 DBG("count %d", configuration_count + 1);
1021 __sync_fetch_and_add(&configuration_count, 1);
1024 static void configuration_count_del(void)
1026 DBG("count %d", configuration_count - 1);
1028 if (__sync_fetch_and_sub(&configuration_count, 1) != 1)
1032 int __vpn_provider_disconnect(struct vpn_provider *provider)
1036 DBG("provider %p", provider);
1038 if (provider->driver != NULL && provider->driver->disconnect != NULL)
1039 err = provider->driver->disconnect(provider);
1043 if (err == -EINPROGRESS)
1044 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1049 static void connect_cb(struct vpn_provider *provider, void *user_data,
1052 DBusMessage *pending = user_data;
1054 DBG("provider %p user %p error %d", provider, user_data, error);
1057 DBusMessage *reply = __connman_error_failed(pending, error);
1059 g_dbus_send_message(connection, reply);
1061 vpn_provider_indicate_error(provider,
1062 VPN_PROVIDER_ERROR_CONNECT_FAILED);
1063 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1065 g_dbus_send_reply(connection, pending, DBUS_TYPE_INVALID);
1067 dbus_message_unref(pending);
1070 int __vpn_provider_connect(struct vpn_provider *provider, DBusMessage *msg)
1074 DBG("provider %p", provider);
1076 if (provider->driver != NULL && provider->driver->connect != NULL) {
1077 dbus_message_ref(msg);
1078 err = provider->driver->connect(provider, connect_cb, msg);
1082 if (err == -EINPROGRESS)
1083 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1088 static void connection_removed_signal(struct vpn_provider *provider)
1090 DBusMessage *signal;
1091 DBusMessageIter iter;
1093 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1094 VPN_MANAGER_INTERFACE, "ConnectionRemoved");
1098 dbus_message_iter_init_append(signal, &iter);
1099 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1101 dbus_connection_send(connection, signal, NULL);
1102 dbus_message_unref(signal);
1105 static char *get_ident(const char *path)
1112 pos = strrchr(path, '/');
1119 int __vpn_provider_remove(const char *path)
1121 struct vpn_provider *provider;
1124 DBG("path %s", path);
1126 ident = get_ident(path);
1128 provider = __vpn_provider_lookup(ident);
1129 if (provider != NULL)
1130 return __vpn_provider_delete(provider);
1135 int __vpn_provider_delete(struct vpn_provider *provider)
1137 DBG("Deleting VPN %s", provider->identifier);
1139 connection_removed_signal(provider);
1141 provider_unregister(provider);
1143 __connman_storage_remove_provider(provider->identifier);
1145 g_hash_table_remove(provider_hash, provider->identifier);
1150 static void append_ipv4(DBusMessageIter *iter, void *user_data)
1152 struct vpn_provider *provider = user_data;
1153 const char *address, *gateway, *peer;
1155 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv4);
1156 if (address != NULL) {
1158 struct in_addr netmask;
1162 prefixlen = __vpn_ipconfig_get_prefixlen(
1163 provider->ipconfig_ipv4);
1165 addr = 0xffffffff << (32 - prefixlen);
1166 netmask.s_addr = htonl(addr);
1167 mask = inet_ntoa(netmask);
1169 connman_dbus_dict_append_basic(iter, "Address",
1170 DBUS_TYPE_STRING, &address);
1172 connman_dbus_dict_append_basic(iter, "Netmask",
1173 DBUS_TYPE_STRING, &mask);
1176 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv4);
1177 if (gateway != NULL)
1178 connman_dbus_dict_append_basic(iter, "Gateway",
1179 DBUS_TYPE_STRING, &gateway);
1181 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv4);
1183 connman_dbus_dict_append_basic(iter, "Peer",
1184 DBUS_TYPE_STRING, &peer);
1187 static void append_ipv6(DBusMessageIter *iter, void *user_data)
1189 struct vpn_provider *provider = user_data;
1190 const char *address, *gateway, *peer;
1192 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv6);
1193 if (address != NULL) {
1194 unsigned char prefixlen;
1196 connman_dbus_dict_append_basic(iter, "Address",
1197 DBUS_TYPE_STRING, &address);
1199 prefixlen = __vpn_ipconfig_get_prefixlen(
1200 provider->ipconfig_ipv6);
1202 connman_dbus_dict_append_basic(iter, "PrefixLength",
1203 DBUS_TYPE_BYTE, &prefixlen);
1206 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv6);
1207 if (gateway != NULL)
1208 connman_dbus_dict_append_basic(iter, "Gateway",
1209 DBUS_TYPE_STRING, &gateway);
1211 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv6);
1213 connman_dbus_dict_append_basic(iter, "Peer",
1214 DBUS_TYPE_STRING, &peer);
1217 static const char *state2string(enum vpn_provider_state state)
1220 case VPN_PROVIDER_STATE_UNKNOWN:
1222 case VPN_PROVIDER_STATE_IDLE:
1224 case VPN_PROVIDER_STATE_CONNECT:
1225 return "configuration";
1226 case VPN_PROVIDER_STATE_READY:
1228 case VPN_PROVIDER_STATE_DISCONNECT:
1229 return "disconnect";
1230 case VPN_PROVIDER_STATE_FAILURE:
1237 static void append_nameservers(DBusMessageIter *iter, char **servers)
1243 for (i = 0; servers[i] != NULL; i++) {
1244 DBG("servers[%d] %s", i, servers[i]);
1245 dbus_message_iter_append_basic(iter,
1246 DBUS_TYPE_STRING, &servers[i]);
1250 static void append_dns(DBusMessageIter *iter, void *user_data)
1252 struct vpn_provider *provider = user_data;
1254 if (provider->nameservers != NULL)
1255 append_nameservers(iter, provider->nameservers);
1258 static int provider_indicate_state(struct vpn_provider *provider,
1259 enum vpn_provider_state state)
1262 enum vpn_provider_state old_state;
1264 str = state2string(state);
1265 DBG("provider %p state %s/%d", provider, str, state);
1269 old_state = provider->state;
1270 provider->state = state;
1272 if (state == VPN_PROVIDER_STATE_READY) {
1273 connman_dbus_property_changed_basic(provider->path,
1274 VPN_CONNECTION_INTERFACE, "Index",
1275 DBUS_TYPE_INT32, &provider->index);
1277 if (provider->family == AF_INET)
1278 connman_dbus_property_changed_dict(provider->path,
1279 VPN_CONNECTION_INTERFACE, "IPv4",
1280 append_ipv4, provider);
1281 else if (provider->family == AF_INET6)
1282 connman_dbus_property_changed_dict(provider->path,
1283 VPN_CONNECTION_INTERFACE, "IPv6",
1284 append_ipv6, provider);
1286 connman_dbus_property_changed_array(provider->path,
1287 VPN_CONNECTION_INTERFACE,
1290 append_dns, provider);
1292 if (provider->domain != NULL)
1293 connman_dbus_property_changed_basic(provider->path,
1294 VPN_CONNECTION_INTERFACE,
1300 if (old_state != state)
1301 connman_dbus_property_changed_basic(provider->path,
1302 VPN_CONNECTION_INTERFACE, "State",
1303 DBUS_TYPE_STRING, &str);
1306 * We do not stay in failure state as clients like connmand can
1307 * get confused about our current state.
1309 if (provider->state == VPN_PROVIDER_STATE_FAILURE)
1310 provider->state = VPN_PROVIDER_STATE_IDLE;
1315 static void append_state(DBusMessageIter *iter,
1316 struct vpn_provider *provider)
1320 switch (provider->state) {
1321 case VPN_PROVIDER_STATE_UNKNOWN:
1322 case VPN_PROVIDER_STATE_IDLE:
1325 case VPN_PROVIDER_STATE_CONNECT:
1326 str = "configuration";
1328 case VPN_PROVIDER_STATE_READY:
1331 case VPN_PROVIDER_STATE_DISCONNECT:
1334 case VPN_PROVIDER_STATE_FAILURE:
1339 connman_dbus_dict_append_basic(iter, "State",
1340 DBUS_TYPE_STRING, &str);
1343 static void append_properties(DBusMessageIter *iter,
1344 struct vpn_provider *provider)
1346 DBusMessageIter dict;
1347 GHashTableIter hash;
1348 gpointer value, key;
1350 connman_dbus_dict_open(iter, &dict);
1352 append_state(&dict, provider);
1354 if (provider->type != NULL)
1355 connman_dbus_dict_append_basic(&dict, "Type",
1356 DBUS_TYPE_STRING, &provider->type);
1358 if (provider->name != NULL)
1359 connman_dbus_dict_append_basic(&dict, "Name",
1360 DBUS_TYPE_STRING, &provider->name);
1362 if (provider->host != NULL)
1363 connman_dbus_dict_append_basic(&dict, "Host",
1364 DBUS_TYPE_STRING, &provider->host);
1365 if (provider->index >= 0)
1366 connman_dbus_dict_append_basic(&dict, "Index",
1367 DBUS_TYPE_INT32, &provider->index);
1368 if (provider->domain != NULL)
1369 connman_dbus_dict_append_basic(&dict, "Domain",
1370 DBUS_TYPE_STRING, &provider->domain);
1372 connman_dbus_dict_append_basic(&dict, "Immutable", DBUS_TYPE_BOOLEAN,
1373 &provider->immutable);
1375 if (provider->family == AF_INET)
1376 connman_dbus_dict_append_dict(&dict, "IPv4", append_ipv4,
1378 else if (provider->family == AF_INET6)
1379 connman_dbus_dict_append_dict(&dict, "IPv6", append_ipv6,
1382 connman_dbus_dict_append_array(&dict, "Nameservers",
1383 DBUS_TYPE_STRING, append_dns, provider);
1385 connman_dbus_dict_append_array(&dict, "UserRoutes",
1386 DBUS_TYPE_DICT_ENTRY, append_routes,
1387 provider->user_routes);
1389 connman_dbus_dict_append_array(&dict, "ServerRoutes",
1390 DBUS_TYPE_DICT_ENTRY, append_routes,
1393 if (provider->setting_strings != NULL) {
1394 g_hash_table_iter_init(&hash, provider->setting_strings);
1396 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
1397 struct vpn_setting *setting = value;
1399 if (setting->hide_value == FALSE &&
1400 setting->value != NULL)
1401 connman_dbus_dict_append_basic(&dict, key,
1407 connman_dbus_dict_close(iter, &dict);
1410 static void connection_added_signal(struct vpn_provider *provider)
1412 DBusMessage *signal;
1413 DBusMessageIter iter;
1415 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1416 VPN_MANAGER_INTERFACE, "ConnectionAdded");
1420 dbus_message_iter_init_append(signal, &iter);
1421 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1423 append_properties(&iter, provider);
1425 dbus_connection_send(connection, signal, NULL);
1426 dbus_message_unref(signal);
1429 static connman_bool_t check_host(char **hosts, char *host)
1436 for (i = 0; hosts[i] != NULL; i++) {
1437 if (g_strcmp0(hosts[i], host) == 0)
1444 static void provider_append_routes(gpointer key, gpointer value,
1447 struct vpn_route *route = value;
1448 struct vpn_provider *provider = user_data;
1449 int index = provider->index;
1451 if (handle_routes == FALSE)
1455 * If the VPN administrator/user has given a route to
1456 * VPN server, then we must discard that because the
1457 * server cannot be contacted via VPN tunnel.
1459 if (check_host(provider->host_ip, route->network) == TRUE) {
1460 DBG("Discarding VPN route to %s via %s at index %d",
1461 route->network, route->gateway, index);
1465 if (route->family == AF_INET6) {
1466 unsigned char prefix_len = atoi(route->netmask);
1468 connman_inet_add_ipv6_network_route(index, route->network,
1472 connman_inet_add_network_route(index, route->network,
1478 static int set_connected(struct vpn_provider *provider,
1479 connman_bool_t connected)
1481 struct vpn_ipconfig *ipconfig;
1483 DBG("provider %p id %s connected %d", provider,
1484 provider->identifier, connected);
1486 if (connected == TRUE) {
1487 if (provider->family == AF_INET6)
1488 ipconfig = provider->ipconfig_ipv6;
1490 ipconfig = provider->ipconfig_ipv4;
1492 __vpn_ipconfig_address_add(ipconfig, provider->family);
1494 if (handle_routes == TRUE)
1495 __vpn_ipconfig_gateway_add(ipconfig, provider->family);
1497 provider_indicate_state(provider,
1498 VPN_PROVIDER_STATE_READY);
1500 g_hash_table_foreach(provider->routes, provider_append_routes,
1503 g_hash_table_foreach(provider->user_routes,
1504 provider_append_routes, provider);
1507 provider_indicate_state(provider,
1508 VPN_PROVIDER_STATE_DISCONNECT);
1510 provider_indicate_state(provider,
1511 VPN_PROVIDER_STATE_IDLE);
1517 int vpn_provider_set_state(struct vpn_provider *provider,
1518 enum vpn_provider_state state)
1520 if (provider == NULL)
1524 case VPN_PROVIDER_STATE_UNKNOWN:
1526 case VPN_PROVIDER_STATE_IDLE:
1527 return set_connected(provider, FALSE);
1528 case VPN_PROVIDER_STATE_CONNECT:
1529 return provider_indicate_state(provider, state);
1530 case VPN_PROVIDER_STATE_READY:
1531 return set_connected(provider, TRUE);
1532 case VPN_PROVIDER_STATE_DISCONNECT:
1533 return provider_indicate_state(provider, state);
1534 case VPN_PROVIDER_STATE_FAILURE:
1535 return provider_indicate_state(provider, state);
1540 int vpn_provider_indicate_error(struct vpn_provider *provider,
1541 enum vpn_provider_error error)
1543 DBG("provider %p id %s error %d", provider, provider->identifier,
1547 case VPN_PROVIDER_ERROR_LOGIN_FAILED:
1549 case VPN_PROVIDER_ERROR_AUTH_FAILED:
1550 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1552 case VPN_PROVIDER_ERROR_CONNECT_FAILED:
1561 static int connection_unregister(struct vpn_provider *provider)
1563 DBG("provider %p path %s", provider, provider->path);
1565 if (provider->path == NULL)
1568 g_dbus_unregister_interface(connection, provider->path,
1569 VPN_CONNECTION_INTERFACE);
1571 g_free(provider->path);
1572 provider->path = NULL;
1577 static int connection_register(struct vpn_provider *provider)
1579 DBG("provider %p path %s", provider, provider->path);
1581 if (provider->path != NULL)
1584 provider->path = g_strdup_printf("%s/connection/%s", VPN_PATH,
1585 provider->identifier);
1587 g_dbus_register_interface(connection, provider->path,
1588 VPN_CONNECTION_INTERFACE,
1589 connection_methods, connection_signals,
1590 NULL, provider, NULL);
1595 static void unregister_provider(gpointer data)
1597 struct vpn_provider *provider = data;
1599 configuration_count_del();
1601 connection_unregister(provider);
1603 vpn_provider_unref(provider);
1606 static void provider_initialize(struct vpn_provider *provider)
1608 DBG("provider %p", provider);
1610 provider->index = 0;
1612 provider->name = NULL;
1613 provider->type = NULL;
1614 provider->domain = NULL;
1615 provider->identifier = NULL;
1616 provider->immutable = FALSE;
1617 provider->user_networks = NULL;
1618 provider->routes = g_hash_table_new_full(g_direct_hash, g_direct_equal,
1620 provider->user_routes = g_hash_table_new_full(g_str_hash, g_str_equal,
1621 g_free, free_route);
1622 provider->setting_strings = g_hash_table_new_full(g_str_hash,
1623 g_str_equal, g_free, free_setting);
1626 static struct vpn_provider *vpn_provider_new(void)
1628 struct vpn_provider *provider;
1630 provider = g_try_new0(struct vpn_provider, 1);
1631 if (provider == NULL)
1634 provider->refcount = 1;
1636 DBG("provider %p", provider);
1637 provider_initialize(provider);
1642 static struct vpn_provider *vpn_provider_get(const char *identifier)
1644 struct vpn_provider *provider;
1646 provider = g_hash_table_lookup(provider_hash, identifier);
1647 if (provider != NULL)
1650 provider = vpn_provider_new();
1651 if (provider == NULL)
1654 DBG("provider %p", provider);
1656 provider->identifier = g_strdup(identifier);
1658 g_hash_table_insert(provider_hash, provider->identifier, provider);
1660 configuration_count_add();
1665 static void provider_dbus_ident(char *ident)
1667 int i, len = strlen(ident);
1669 for (i = 0; i < len; i++) {
1670 if (ident[i] >= '0' && ident[i] <= '9')
1672 if (ident[i] >= 'a' && ident[i] <= 'z')
1674 if (ident[i] >= 'A' && ident[i] <= 'Z')
1680 static struct vpn_provider *provider_create_from_keyfile(GKeyFile *keyfile,
1683 struct vpn_provider *provider;
1685 if (keyfile == NULL || ident == NULL)
1688 provider = __vpn_provider_lookup(ident);
1689 if (provider == NULL) {
1690 provider = vpn_provider_get(ident);
1691 if (provider == NULL) {
1692 DBG("can not create provider");
1696 provider_load_from_keyfile(provider, keyfile);
1698 if (provider->name == NULL || provider->host == NULL ||
1699 provider->domain == NULL) {
1700 DBG("cannot get name, host or domain");
1701 vpn_provider_unref(provider);
1705 if (provider_register(provider) == 0)
1706 connection_register(provider);
1711 static void provider_create_all_from_type(const char *provider_type)
1718 DBG("provider type %s", provider_type);
1720 providers = __connman_storage_get_providers();
1722 if (providers == NULL)
1725 for (i = 0; providers[i] != NULL; i+=1) {
1727 if (strncmp(providers[i], "provider_", 9) != 0)
1730 id = providers[i] + 9;
1731 keyfile = __connman_storage_load_provider(id);
1733 if (keyfile == NULL)
1736 type = g_key_file_get_string(keyfile, id, "Type", NULL);
1738 DBG("keyfile %p id %s type %s", keyfile, id, type);
1740 if (strcmp(provider_type, type) != 0) {
1742 g_key_file_free(keyfile);
1746 if (provider_create_from_keyfile(keyfile, id) == NULL)
1747 DBG("could not create provider");
1750 g_key_file_free(keyfile);
1752 g_strfreev(providers);
1755 char *__vpn_provider_create_identifier(const char *host, const char *domain)
1759 ident = g_strdup_printf("%s_%s", host, domain);
1763 provider_dbus_ident(ident);
1768 int __vpn_provider_create(DBusMessage *msg)
1770 struct vpn_provider *provider;
1771 DBusMessageIter iter, array;
1772 const char *type = NULL, *name = NULL;
1773 const char *host = NULL, *domain = NULL;
1774 GSList *networks = NULL;
1778 dbus_message_iter_init(msg, &iter);
1779 dbus_message_iter_recurse(&iter, &array);
1781 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1782 DBusMessageIter entry, value;
1785 dbus_message_iter_recurse(&array, &entry);
1786 dbus_message_iter_get_basic(&entry, &key);
1788 dbus_message_iter_next(&entry);
1789 dbus_message_iter_recurse(&entry, &value);
1791 switch (dbus_message_iter_get_arg_type(&value)) {
1792 case DBUS_TYPE_STRING:
1793 if (g_str_equal(key, "Type") == TRUE)
1794 dbus_message_iter_get_basic(&value, &type);
1795 else if (g_str_equal(key, "Name") == TRUE)
1796 dbus_message_iter_get_basic(&value, &name);
1797 else if (g_str_equal(key, "Host") == TRUE)
1798 dbus_message_iter_get_basic(&value, &host);
1799 else if (g_str_equal(key, "VPN.Domain") == TRUE ||
1800 g_str_equal(key, "Domain") == TRUE)
1801 dbus_message_iter_get_basic(&value, &domain);
1803 case DBUS_TYPE_ARRAY:
1804 if (g_str_equal(key, "UserRoutes") == TRUE)
1805 networks = get_user_networks(&value);
1809 dbus_message_iter_next(&array);
1812 if (host == NULL || domain == NULL)
1815 DBG("Type %s name %s networks %p", type, name, networks);
1817 if (type == NULL || name == NULL)
1820 ident = __vpn_provider_create_identifier(host, domain);
1821 DBG("ident %s", ident);
1823 provider = __vpn_provider_lookup(ident);
1824 if (provider == NULL) {
1825 provider = vpn_provider_get(ident);
1826 if (provider == NULL) {
1827 DBG("can not create provider");
1832 provider->host = g_strdup(host);
1833 provider->domain = g_strdup(domain);
1834 provider->name = g_strdup(name);
1835 provider->type = g_strdup(type);
1837 if (provider_register(provider) == 0)
1838 vpn_provider_load(provider);
1840 provider_resolv_host_addr(provider);
1843 if (networks != NULL) {
1844 g_slist_free_full(provider->user_networks, free_route);
1845 provider->user_networks = networks;
1846 set_user_networks(provider, provider->user_networks);
1849 dbus_message_iter_init(msg, &iter);
1850 dbus_message_iter_recurse(&iter, &array);
1852 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1853 DBusMessageIter entry, value;
1854 const char *key, *str;
1856 dbus_message_iter_recurse(&array, &entry);
1857 dbus_message_iter_get_basic(&entry, &key);
1859 dbus_message_iter_next(&entry);
1860 dbus_message_iter_recurse(&entry, &value);
1862 switch (dbus_message_iter_get_arg_type(&value)) {
1863 case DBUS_TYPE_STRING:
1864 dbus_message_iter_get_basic(&value, &str);
1865 vpn_provider_set_string(provider, key, str);
1869 dbus_message_iter_next(&array);
1874 vpn_provider_save(provider);
1876 err = provider_register(provider);
1877 if (err != 0 && err != -EALREADY)
1880 connection_register(provider);
1882 DBG("provider %p index %d path %s", provider, provider->index,
1885 g_dbus_send_reply(connection, msg,
1886 DBUS_TYPE_OBJECT_PATH, &provider->path,
1889 connection_added_signal(provider);
1894 static const char *get_string(GHashTable *settings, const char *key)
1896 DBG("settings %p key %s", settings, key);
1898 return g_hash_table_lookup(settings, key);
1901 static GSList *parse_user_networks(const char *network_str)
1903 GSList *networks = NULL;
1907 if (network_str == NULL)
1910 elems = g_strsplit(network_str, ",", 0);
1914 while (elems[i] != NULL) {
1915 struct vpn_route *vpn_route;
1916 char *network, *netmask, *gateway;
1920 route = g_strsplit(elems[i], "/", 0);
1925 if (network == NULL || network[0] == '\0')
1928 family = connman_inet_check_ipaddress(network);
1930 DBG("Cannot get address family of %s (%d/%s)", network,
1931 family, gai_strerror(family));
1942 DBG("Unsupported address family %d", family);
1947 if (netmask == NULL || netmask[0] == '\0')
1952 vpn_route = g_try_new0(struct vpn_route, 1);
1953 if (vpn_route == NULL) {
1958 vpn_route->family = family;
1959 vpn_route->network = g_strdup(network);
1960 vpn_route->netmask = g_strdup(netmask);
1961 vpn_route->gateway = g_strdup(gateway);
1963 DBG("route %s/%s%s%s", network, netmask,
1964 gateway ? " via " : "", gateway ? gateway : "");
1966 networks = g_slist_prepend(networks, vpn_route);
1975 return g_slist_reverse(networks);
1978 int __vpn_provider_create_from_config(GHashTable *settings,
1979 const char *config_ident,
1980 const char *config_entry)
1982 struct vpn_provider *provider;
1983 const char *type, *name, *host, *domain, *networks_str;
1986 GHashTableIter hash;
1987 gpointer value, key;
1990 type = get_string(settings, "Type");
1991 name = get_string(settings, "Name");
1992 host = get_string(settings, "Host");
1993 domain = get_string(settings, "Domain");
1994 networks_str = get_string(settings, "Networks");
1995 networks = parse_user_networks(networks_str);
1997 if (host == NULL || domain == NULL) {
2002 DBG("type %s name %s networks %s", type, name, networks_str);
2004 if (type == NULL || name == NULL) {
2009 ident = __vpn_provider_create_identifier(host, domain);
2010 DBG("ident %s", ident);
2012 provider = __vpn_provider_lookup(ident);
2013 if (provider == NULL) {
2014 provider = vpn_provider_get(ident);
2015 if (provider == NULL) {
2016 DBG("can not create provider");
2021 provider->host = g_strdup(host);
2022 provider->domain = g_strdup(domain);
2023 provider->name = g_strdup(name);
2024 provider->type = g_ascii_strdown(type, -1);
2026 provider->config_file = g_strdup(config_ident);
2027 provider->config_entry = g_strdup(config_entry);
2029 provider_register(provider);
2031 provider_resolv_host_addr(provider);
2034 if (networks != NULL) {
2035 g_slist_free_full(provider->user_networks, free_route);
2036 provider->user_networks = networks;
2037 set_user_networks(provider, provider->user_networks);
2040 g_hash_table_iter_init(&hash, settings);
2042 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE)
2043 __vpn_provider_set_string_immutable(provider, key, value);
2045 provider->immutable = TRUE;
2047 vpn_provider_save(provider);
2049 err = provider_register(provider);
2050 if (err != 0 && err != -EALREADY)
2053 connection_register(provider);
2055 DBG("provider %p index %d path %s", provider, provider->index,
2058 connection_added_signal(provider);
2066 g_slist_free_full(networks, free_route);
2071 static void append_connection_structs(DBusMessageIter *iter, void *user_data)
2073 DBusMessageIter entry;
2074 GHashTableIter hash;
2075 gpointer value, key;
2077 g_hash_table_iter_init(&hash, provider_hash);
2079 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
2080 struct vpn_provider *provider = value;
2082 DBG("path %s", provider->path);
2084 if (provider->identifier == NULL)
2087 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT,
2089 dbus_message_iter_append_basic(&entry, DBUS_TYPE_OBJECT_PATH,
2091 append_properties(&entry, provider);
2092 dbus_message_iter_close_container(iter, &entry);
2096 DBusMessage *__vpn_provider_get_connections(DBusMessage *msg)
2102 reply = dbus_message_new_method_return(msg);
2106 __connman_dbus_append_objpath_dict_array(reply,
2107 append_connection_structs, NULL);
2112 const char * __vpn_provider_get_ident(struct vpn_provider *provider)
2114 if (provider == NULL)
2117 return provider->identifier;
2120 static int set_string(struct vpn_provider *provider,
2121 const char *key, const char *value,
2122 gboolean hide_value, gboolean immutable)
2124 DBG("provider %p key %s immutable %s value %s", provider, key,
2125 immutable ? "yes" : "no",
2126 hide_value ? "<not printed>" : value);
2128 if (g_str_equal(key, "Type") == TRUE) {
2129 g_free(provider->type);
2130 provider->type = g_ascii_strdown(value, -1);
2131 send_value(provider->path, "Type", provider->type);
2132 } else if (g_str_equal(key, "Name") == TRUE) {
2133 g_free(provider->name);
2134 provider->name = g_strdup(value);
2135 send_value(provider->path, "Name", provider->name);
2136 } else if (g_str_equal(key, "Host") == TRUE) {
2137 g_free(provider->host);
2138 provider->host = g_strdup(value);
2139 send_value(provider->path, "Host", provider->host);
2140 } else if (g_str_equal(key, "VPN.Domain") == TRUE ||
2141 g_str_equal(key, "Domain") == TRUE) {
2142 g_free(provider->domain);
2143 provider->domain = g_strdup(value);
2144 send_value(provider->path, "Domain", provider->domain);
2146 struct vpn_setting *setting;
2148 setting = g_hash_table_lookup(provider->setting_strings, key);
2149 if (setting != NULL && immutable == FALSE &&
2150 setting->immutable == TRUE) {
2151 DBG("Trying to set immutable variable %s", key);
2155 setting = g_try_new0(struct vpn_setting, 1);
2156 if (setting == NULL)
2159 setting->value = g_strdup(value);
2160 setting->hide_value = hide_value;
2162 if (immutable == TRUE)
2163 setting->immutable = TRUE;
2165 if (hide_value == FALSE)
2166 send_value(provider->path, key, setting->value);
2168 g_hash_table_replace(provider->setting_strings,
2169 g_strdup(key), setting);
2175 int vpn_provider_set_string(struct vpn_provider *provider,
2176 const char *key, const char *value)
2178 return set_string(provider, key, value, FALSE, FALSE);
2181 int vpn_provider_set_string_hide_value(struct vpn_provider *provider,
2182 const char *key, const char *value)
2184 return set_string(provider, key, value, TRUE, FALSE);
2187 int __vpn_provider_set_string_immutable(struct vpn_provider *provider,
2188 const char *key, const char *value)
2190 return set_string(provider, key, value, FALSE, TRUE);
2193 const char *vpn_provider_get_string(struct vpn_provider *provider,
2196 struct vpn_setting *setting;
2198 DBG("provider %p key %s", provider, key);
2200 if (g_str_equal(key, "Type") == TRUE)
2201 return provider->type;
2202 else if (g_str_equal(key, "Name") == TRUE)
2203 return provider->name;
2204 else if (g_str_equal(key, "Host") == TRUE)
2205 return provider->host;
2206 else if (g_str_equal(key, "HostIP") == TRUE) {
2207 if (provider->host_ip == NULL ||
2208 provider->host_ip[0] == NULL)
2209 return provider->host;
2211 return provider->host_ip[0];
2212 } else if (g_str_equal(key, "VPN.Domain") == TRUE ||
2213 g_str_equal(key, "Domain") == TRUE)
2214 return provider->domain;
2216 setting = g_hash_table_lookup(provider->setting_strings, key);
2217 if (setting == NULL)
2220 return setting->value;
2223 connman_bool_t __vpn_provider_check_routes(struct vpn_provider *provider)
2225 if (provider == NULL)
2228 if (provider->user_routes != NULL &&
2229 g_hash_table_size(provider->user_routes) > 0)
2232 if (provider->routes != NULL &&
2233 g_hash_table_size(provider->routes) > 0)
2239 void *vpn_provider_get_data(struct vpn_provider *provider)
2241 return provider->driver_data;
2244 void vpn_provider_set_data(struct vpn_provider *provider, void *data)
2246 provider->driver_data = data;
2249 void vpn_provider_set_index(struct vpn_provider *provider, int index)
2251 DBG("index %d provider %p", index, provider);
2253 if (provider->ipconfig_ipv4 == NULL) {
2254 provider->ipconfig_ipv4 = __vpn_ipconfig_create(index,
2256 if (provider->ipconfig_ipv4 == NULL) {
2257 DBG("Couldnt create ipconfig for IPv4");
2262 __vpn_ipconfig_set_index(provider->ipconfig_ipv4, index);
2264 if (provider->ipconfig_ipv6 == NULL) {
2265 provider->ipconfig_ipv6 = __vpn_ipconfig_create(index,
2267 if (provider->ipconfig_ipv6 == NULL) {
2268 DBG("Couldnt create ipconfig for IPv6");
2273 __vpn_ipconfig_set_index(provider->ipconfig_ipv6, index);
2276 provider->index = index;
2279 int vpn_provider_get_index(struct vpn_provider *provider)
2281 return provider->index;
2284 int vpn_provider_set_ipaddress(struct vpn_provider *provider,
2285 struct connman_ipaddress *ipaddress)
2287 struct vpn_ipconfig *ipconfig = NULL;
2289 switch (ipaddress->family) {
2291 ipconfig = provider->ipconfig_ipv4;
2294 ipconfig = provider->ipconfig_ipv6;
2300 DBG("provider %p ipconfig %p family %d", provider, ipconfig,
2303 if (ipconfig == NULL)
2306 provider->family = ipaddress->family;
2308 __vpn_ipconfig_set_local(ipconfig, ipaddress->local);
2309 __vpn_ipconfig_set_peer(ipconfig, ipaddress->peer);
2310 __vpn_ipconfig_set_broadcast(ipconfig, ipaddress->broadcast);
2311 __vpn_ipconfig_set_gateway(ipconfig, ipaddress->gateway);
2312 __vpn_ipconfig_set_prefixlen(ipconfig, ipaddress->prefixlen);
2317 int vpn_provider_set_pac(struct vpn_provider *provider,
2320 DBG("provider %p pac %s", provider, pac);
2326 int vpn_provider_set_domain(struct vpn_provider *provider,
2329 DBG("provider %p domain %s", provider, domain);
2331 g_free(provider->domain);
2332 provider->domain = g_strdup(domain);
2337 int vpn_provider_set_nameservers(struct vpn_provider *provider,
2338 const char *nameservers)
2340 DBG("provider %p nameservers %s", provider, nameservers);
2342 g_strfreev(provider->nameservers);
2343 provider->nameservers = NULL;
2345 if (nameservers == NULL)
2348 provider->nameservers = g_strsplit(nameservers, " ", 0);
2353 enum provider_route_type {
2354 PROVIDER_ROUTE_TYPE_NONE = 0,
2355 PROVIDER_ROUTE_TYPE_MASK = 1,
2356 PROVIDER_ROUTE_TYPE_ADDR = 2,
2357 PROVIDER_ROUTE_TYPE_GW = 3,
2360 static int route_env_parse(struct vpn_provider *provider, const char *key,
2361 int *family, unsigned long *idx,
2362 enum provider_route_type *type)
2367 DBG("name %s", provider->name);
2369 if (!strcmp(provider->type, "openvpn")) {
2370 if (g_str_has_prefix(key, "route_network_") == TRUE) {
2371 start = key + strlen("route_network_");
2372 *type = PROVIDER_ROUTE_TYPE_ADDR;
2373 } else if (g_str_has_prefix(key, "route_netmask_") == TRUE) {
2374 start = key + strlen("route_netmask_");
2375 *type = PROVIDER_ROUTE_TYPE_MASK;
2376 } else if (g_str_has_prefix(key, "route_gateway_") == TRUE) {
2377 start = key + strlen("route_gateway_");
2378 *type = PROVIDER_ROUTE_TYPE_GW;
2383 *idx = g_ascii_strtoull(start, &end, 10);
2385 } else if (!strcmp(provider->type, "openconnect")) {
2386 if (g_str_has_prefix(key, "CISCO_SPLIT_INC_") == TRUE) {
2388 start = key + strlen("CISCO_SPLIT_INC_");
2389 } else if (g_str_has_prefix(key,
2390 "CISCO_IPV6_SPLIT_INC_") == TRUE) {
2392 start = key + strlen("CISCO_IPV6_SPLIT_INC_");
2396 *idx = g_ascii_strtoull(start, &end, 10);
2398 if (strncmp(end, "_ADDR", 5) == 0)
2399 *type = PROVIDER_ROUTE_TYPE_ADDR;
2400 else if (strncmp(end, "_MASK", 5) == 0)
2401 *type = PROVIDER_ROUTE_TYPE_MASK;
2402 else if (strncmp(end, "_MASKLEN", 8) == 0 &&
2403 *family == AF_INET6) {
2404 *type = PROVIDER_ROUTE_TYPE_MASK;
2412 int vpn_provider_append_route(struct vpn_provider *provider,
2413 const char *key, const char *value)
2415 struct vpn_route *route;
2416 int ret, family = 0;
2417 unsigned long idx = 0;
2418 enum provider_route_type type = PROVIDER_ROUTE_TYPE_NONE;
2420 DBG("key %s value %s", key, value);
2422 ret = route_env_parse(provider, key, &family, &idx, &type);
2426 DBG("idx %lu family %d type %d", idx, family, type);
2428 route = g_hash_table_lookup(provider->routes, GINT_TO_POINTER(idx));
2429 if (route == NULL) {
2430 route = g_try_new0(struct vpn_route, 1);
2431 if (route == NULL) {
2432 connman_error("out of memory");
2436 route->family = family;
2438 g_hash_table_replace(provider->routes, GINT_TO_POINTER(idx),
2443 case PROVIDER_ROUTE_TYPE_NONE:
2445 case PROVIDER_ROUTE_TYPE_MASK:
2446 route->netmask = g_strdup(value);
2448 case PROVIDER_ROUTE_TYPE_ADDR:
2449 route->network = g_strdup(value);
2451 case PROVIDER_ROUTE_TYPE_GW:
2452 route->gateway = g_strdup(value);
2456 if (handle_routes == FALSE) {
2457 if (route->netmask != NULL && route->gateway != NULL &&
2458 route->network != NULL)
2459 provider_schedule_changed(provider);
2465 const char *vpn_provider_get_driver_name(struct vpn_provider *provider)
2467 if (provider->driver == NULL)
2470 return provider->driver->name;
2473 const char *vpn_provider_get_save_group(struct vpn_provider *provider)
2475 return provider->identifier;
2478 static gint compare_priority(gconstpointer a, gconstpointer b)
2483 static void clean_provider(gpointer key, gpointer value, gpointer user_data)
2485 struct vpn_provider *provider = value;
2487 if (provider->driver != NULL && provider->driver->remove)
2488 provider->driver->remove(provider);
2490 connection_unregister(provider);
2493 int vpn_provider_driver_register(struct vpn_provider_driver *driver)
2495 DBG("driver %p name %s", driver, driver->name);
2497 driver_list = g_slist_insert_sorted(driver_list, driver,
2499 provider_create_all_from_type(driver->name);
2503 void vpn_provider_driver_unregister(struct vpn_provider_driver *driver)
2505 GHashTableIter iter;
2506 gpointer value, key;
2508 DBG("driver %p name %s", driver, driver->name);
2510 driver_list = g_slist_remove(driver_list, driver);
2512 g_hash_table_iter_init(&iter, provider_hash);
2513 while (g_hash_table_iter_next(&iter, &key, &value) == TRUE) {
2514 struct vpn_provider *provider = value;
2516 if (provider != NULL && provider->driver != NULL &&
2517 provider->driver->type == driver->type &&
2518 g_strcmp0(provider->driver->name,
2519 driver->name) == 0) {
2520 provider->driver = NULL;
2525 const char *vpn_provider_get_name(struct vpn_provider *provider)
2527 return provider->name;
2530 const char *vpn_provider_get_host(struct vpn_provider *provider)
2532 return provider->host;
2535 const char *vpn_provider_get_path(struct vpn_provider *provider)
2537 return provider->path;
2540 static int agent_probe(struct connman_agent *agent)
2542 DBG("agent %p", agent);
2546 static void agent_remove(struct connman_agent *agent)
2548 DBG("agent %p", agent);
2551 static struct connman_agent_driver agent_driver = {
2553 .interface = VPN_AGENT_INTERFACE,
2554 .probe = agent_probe,
2555 .remove = agent_remove,
2558 static void remove_unprovisioned_providers()
2561 GKeyFile *keyfile, *configkeyfile;
2562 char *file, *section;
2565 providers = __connman_storage_get_providers();
2566 if (providers == NULL)
2569 for (; providers[i] != NULL; i++) {
2570 char *group = providers[i] + sizeof("provider_") - 1;
2571 file = section = NULL;
2572 keyfile = configkeyfile = NULL;
2574 keyfile = __connman_storage_load_provider(group);
2575 if (keyfile == NULL)
2578 file = g_key_file_get_string(keyfile, group,
2579 "Config.file", NULL);
2583 section = g_key_file_get_string(keyfile, group,
2584 "Config.ident", NULL);
2585 if (section == NULL)
2588 configkeyfile = __connman_storage_load_provider_config(file);
2589 if (configkeyfile == NULL) {
2591 * Config file is missing, remove the provisioned
2594 __connman_storage_remove_provider(group);
2598 if (g_key_file_has_group(configkeyfile, section) == FALSE)
2600 * Config section is missing, remove the provisioned
2603 __connman_storage_remove_provider(group);
2606 if (keyfile != NULL)
2607 g_key_file_free(keyfile);
2609 if (configkeyfile != NULL)
2610 g_key_file_free(configkeyfile);
2616 g_strfreev(providers);
2619 int __vpn_provider_init(gboolean do_routes)
2625 handle_routes = do_routes;
2627 err = connman_agent_driver_register(&agent_driver);
2629 connman_error("Cannot register agent driver for %s",
2634 connection = connman_dbus_get_connection();
2636 remove_unprovisioned_providers();
2638 provider_hash = g_hash_table_new_full(g_str_hash, g_str_equal,
2639 NULL, unregister_provider);
2643 void __vpn_provider_cleanup(void)
2647 g_hash_table_foreach(provider_hash, clean_provider, NULL);
2649 g_hash_table_destroy(provider_hash);
2650 provider_hash = NULL;
2652 connman_agent_driver_unregister(&agent_driver);
2654 dbus_connection_unref(connection);