5 * Copyright (C) 2012-2013 Intel Corporation. All rights reserved.
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
31 #include <connman/log.h>
32 #include <gweb/gresolv.h>
35 #include "../src/connman.h"
36 #include "connman/agent.h"
37 #include "connman/vpn-dbus.h"
38 #include "vpn-provider.h"
41 static DBusConnection *connection;
42 static GHashTable *provider_hash;
43 static GSList *driver_list;
44 static int configuration_count;
45 static bool handle_routes;
64 enum vpn_provider_state state;
73 struct vpn_provider_driver *driver;
75 GHashTable *setting_strings;
76 GHashTable *user_routes;
77 GSList *user_networks;
80 struct vpn_ipconfig *ipconfig_ipv4;
81 struct vpn_ipconfig *ipconfig_ipv6;
87 struct connman_ipaddress *prev_ipv4_addr;
88 struct connman_ipaddress *prev_ipv6_addr;
91 static void append_properties(DBusMessageIter *iter,
92 struct vpn_provider *provider);
94 static void free_route(gpointer data)
96 struct vpn_route *route = data;
98 g_free(route->network);
99 g_free(route->netmask);
100 g_free(route->gateway);
105 static void free_setting(gpointer data)
107 struct vpn_setting *setting = data;
109 g_free(setting->value);
113 static void append_route(DBusMessageIter *iter, void *user_data)
115 struct vpn_route *route = user_data;
116 DBusMessageIter item;
119 connman_dbus_dict_open(iter, &item);
124 if (route->family == AF_INET)
126 else if (route->family == AF_INET6)
130 connman_dbus_dict_append_basic(&item, "ProtocolFamily",
131 DBUS_TYPE_INT32, &family);
134 connman_dbus_dict_append_basic(&item, "Network",
135 DBUS_TYPE_STRING, &route->network);
138 connman_dbus_dict_append_basic(&item, "Netmask",
139 DBUS_TYPE_STRING, &route->netmask);
142 connman_dbus_dict_append_basic(&item, "Gateway",
143 DBUS_TYPE_STRING, &route->gateway);
146 connman_dbus_dict_close(iter, &item);
149 static void append_routes(DBusMessageIter *iter, void *user_data)
151 GHashTable *routes = user_data;
156 append_route(iter, NULL);
160 g_hash_table_iter_init(&hash, routes);
162 while (g_hash_table_iter_next(&hash, &key, &value)) {
163 DBusMessageIter dict;
165 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT, NULL,
167 append_route(&dict, value);
168 dbus_message_iter_close_container(iter, &dict);
172 static void send_routes(struct vpn_provider *provider, GHashTable *routes,
175 connman_dbus_property_changed_array(provider->path,
176 VPN_CONNECTION_INTERFACE,
178 DBUS_TYPE_DICT_ENTRY,
183 static int provider_routes_changed(struct vpn_provider *provider)
185 DBG("provider %p", provider);
187 send_routes(provider, provider->routes, "ServerRoutes");
192 static GSList *read_route_dict(GSList *routes, DBusMessageIter *dicts)
194 DBusMessageIter dict, value, entry;
195 const char *network, *netmask, *gateway;
196 struct vpn_route *route;
200 dbus_message_iter_recurse(dicts, &entry);
202 network = netmask = gateway = NULL;
205 while (dbus_message_iter_get_arg_type(&entry) == DBUS_TYPE_DICT_ENTRY) {
207 dbus_message_iter_recurse(&entry, &dict);
208 dbus_message_iter_get_basic(&dict, &key);
210 dbus_message_iter_next(&dict);
211 dbus_message_iter_recurse(&dict, &value);
213 type = dbus_message_iter_get_arg_type(&value);
216 case DBUS_TYPE_INT32:
217 if (g_str_equal(key, "ProtocolFamily"))
218 dbus_message_iter_get_basic(&value, &family);
221 case DBUS_TYPE_STRING:
222 if (g_str_equal(key, "Network"))
223 dbus_message_iter_get_basic(&value, &network);
224 else if (g_str_equal(key, "Netmask"))
225 dbus_message_iter_get_basic(&value, &netmask);
226 else if (g_str_equal(key, "Gateway"))
227 dbus_message_iter_get_basic(&value, &gateway);
231 dbus_message_iter_next(&entry);
234 DBG("family %d network %s netmask %s gateway %s", family,
235 network, netmask, gateway);
237 if (!network || !netmask) {
238 DBG("Ignoring route as network/netmask is missing");
242 route = g_try_new(struct vpn_route, 1);
244 g_slist_free_full(routes, free_route);
248 if (family == PF_UNSPEC) {
249 family = connman_inet_check_ipaddress(network);
251 DBG("Cannot get address family of %s (%d/%s)", network,
252 family, gai_strerror(family));
271 route->family = family;
272 route->network = g_strdup(network);
273 route->netmask = g_strdup(netmask);
274 route->gateway = g_strdup(gateway);
276 routes = g_slist_prepend(routes, route);
280 static GSList *get_user_networks(DBusMessageIter *array)
282 DBusMessageIter entry;
285 while (dbus_message_iter_get_arg_type(array) == DBUS_TYPE_ARRAY) {
287 dbus_message_iter_recurse(array, &entry);
289 while (dbus_message_iter_get_arg_type(&entry) ==
291 DBusMessageIter dicts;
293 dbus_message_iter_recurse(&entry, &dicts);
295 while (dbus_message_iter_get_arg_type(&dicts) ==
298 list = read_route_dict(list, &dicts);
299 dbus_message_iter_next(&dicts);
302 dbus_message_iter_next(&entry);
305 dbus_message_iter_next(array);
311 static void set_user_networks(struct vpn_provider *provider, GSList *networks)
315 for (list = networks; list; list = g_slist_next(list)) {
316 struct vpn_route *route = list->data;
318 if (__vpn_provider_append_user_route(provider,
319 route->family, route->network,
320 route->netmask, route->gateway) != 0)
325 static void del_routes(struct vpn_provider *provider)
330 g_hash_table_iter_init(&hash, provider->user_routes);
331 while (handle_routes && g_hash_table_iter_next(&hash,
333 struct vpn_route *route = value;
334 if (route->family == AF_INET6) {
335 unsigned char prefixlen = atoi(route->netmask);
336 connman_inet_del_ipv6_network_route(provider->index,
340 connman_inet_del_host_route(provider->index,
344 g_hash_table_remove_all(provider->user_routes);
345 g_slist_free_full(provider->user_networks, free_route);
346 provider->user_networks = NULL;
349 static void send_value(const char *path, const char *key, const char *value)
351 const char *empty = "";
359 connman_dbus_property_changed_basic(path,
360 VPN_CONNECTION_INTERFACE,
366 static gboolean provider_send_changed(gpointer data)
368 struct vpn_provider *provider = data;
370 provider_routes_changed(provider);
372 provider->notify_id = 0;
377 static void provider_schedule_changed(struct vpn_provider *provider)
379 if (provider->notify_id != 0)
380 g_source_remove(provider->notify_id);
382 provider->notify_id = g_timeout_add(100, provider_send_changed,
386 static DBusMessage *get_properties(DBusConnection *conn,
387 DBusMessage *msg, void *data)
389 struct vpn_provider *provider = data;
391 DBusMessageIter array;
393 DBG("provider %p", provider);
395 reply = dbus_message_new_method_return(msg);
399 dbus_message_iter_init_append(reply, &array);
401 append_properties(&array, provider);
406 static DBusMessage *set_property(DBusConnection *conn, DBusMessage *msg,
409 struct vpn_provider *provider = data;
410 DBusMessageIter iter, value;
414 DBG("conn %p", conn);
416 if (provider->immutable)
417 return __connman_error_not_supported(msg);
419 if (!dbus_message_iter_init(msg, &iter))
420 return __connman_error_invalid_arguments(msg);
422 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_STRING)
423 return __connman_error_invalid_arguments(msg);
425 dbus_message_iter_get_basic(&iter, &name);
426 dbus_message_iter_next(&iter);
428 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_VARIANT)
429 return __connman_error_invalid_arguments(msg);
431 dbus_message_iter_recurse(&iter, &value);
433 type = dbus_message_iter_get_arg_type(&value);
435 if (g_str_equal(name, "UserRoutes")) {
438 if (type != DBUS_TYPE_ARRAY)
439 return __connman_error_invalid_arguments(msg);
441 networks = get_user_networks(&value);
443 del_routes(provider);
444 provider->user_networks = networks;
445 set_user_networks(provider, provider->user_networks);
448 send_routes(provider, provider->user_routes,
454 dbus_message_iter_get_basic(&value, &str);
455 vpn_provider_set_string(provider, name, str);
458 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
461 static DBusMessage *clear_property(DBusConnection *conn, DBusMessage *msg,
464 struct vpn_provider *provider = data;
467 DBG("conn %p", conn);
469 if (provider->immutable)
470 return __connman_error_not_supported(msg);
472 dbus_message_get_args(msg, NULL, DBUS_TYPE_STRING, &name,
475 if (g_str_equal(name, "UserRoutes")) {
476 del_routes(provider);
479 send_routes(provider, provider->user_routes, name);
480 } else if (vpn_provider_get_string(provider, name)) {
481 vpn_provider_set_string(provider, name, NULL);
483 return __connman_error_invalid_property(msg);
486 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
489 static DBusMessage *do_connect(DBusConnection *conn, DBusMessage *msg,
492 struct vpn_provider *provider = data;
495 DBG("conn %p provider %p", conn, provider);
497 err = __vpn_provider_connect(provider, msg);
499 return __connman_error_failed(msg, -err);
504 static DBusMessage *do_disconnect(DBusConnection *conn, DBusMessage *msg,
507 struct vpn_provider *provider = data;
510 DBG("conn %p provider %p", conn, provider);
512 err = __vpn_provider_disconnect(provider);
513 if (err < 0 && err != -EINPROGRESS)
514 return __connman_error_failed(msg, -err);
516 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
519 static const GDBusMethodTable connection_methods[] = {
520 { GDBUS_METHOD("GetProperties",
521 NULL, GDBUS_ARGS({ "properties", "a{sv}" }),
523 { GDBUS_METHOD("SetProperty",
524 GDBUS_ARGS({ "name", "s" }, { "value", "v" }),
525 NULL, set_property) },
526 { GDBUS_METHOD("ClearProperty",
527 GDBUS_ARGS({ "name", "s" }), NULL,
529 { GDBUS_ASYNC_METHOD("Connect", NULL, NULL, do_connect) },
530 { GDBUS_METHOD("Disconnect", NULL, NULL, do_disconnect) },
534 static const GDBusSignalTable connection_signals[] = {
535 { GDBUS_SIGNAL("PropertyChanged",
536 GDBUS_ARGS({ "name", "s" }, { "value", "v" })) },
540 static void resolv_result(GResolvResultStatus status,
541 char **results, gpointer user_data)
543 struct vpn_provider *provider = user_data;
545 DBG("status %d", status);
547 if (status == G_RESOLV_RESULT_STATUS_SUCCESS && results &&
548 g_strv_length(results) > 0)
549 provider->host_ip = g_strdupv(results);
551 vpn_provider_unref(provider);
554 static void provider_resolv_host_addr(struct vpn_provider *provider)
559 if (connman_inet_check_ipaddress(provider->host) > 0)
562 if (provider->host_ip)
566 * If the hostname is not numeric, try to resolv it. We do not wait
567 * the result as it might take some time. We will get the result
568 * before VPN will feed routes to us because VPN client will need
569 * the IP address also before VPN connection can be established.
571 provider->resolv = g_resolv_new(0);
572 if (!provider->resolv) {
573 DBG("Cannot resolv %s", provider->host);
577 DBG("Trying to resolv %s", provider->host);
579 vpn_provider_ref(provider);
581 g_resolv_lookup_hostname(provider->resolv, provider->host,
582 resolv_result, provider);
585 void __vpn_provider_append_properties(struct vpn_provider *provider,
586 DBusMessageIter *iter)
589 connman_dbus_dict_append_basic(iter, "Host",
590 DBUS_TYPE_STRING, &provider->host);
592 if (provider->domain)
593 connman_dbus_dict_append_basic(iter, "Domain",
594 DBUS_TYPE_STRING, &provider->domain);
597 connman_dbus_dict_append_basic(iter, "Type", DBUS_TYPE_STRING,
601 int __vpn_provider_append_user_route(struct vpn_provider *provider,
602 int family, const char *network,
603 const char *netmask, const char *gateway)
605 struct vpn_route *route;
606 char *key = g_strdup_printf("%d/%s/%s/%s", family, network,
607 netmask, gateway ? gateway : "");
609 DBG("family %d network %s netmask %s gw %s", family, network,
612 route = g_hash_table_lookup(provider->user_routes, key);
614 route = g_try_new0(struct vpn_route, 1);
616 connman_error("out of memory");
620 route->family = family;
621 route->network = g_strdup(network);
622 route->netmask = g_strdup(netmask);
623 route->gateway = g_strdup(gateway);
625 g_hash_table_replace(provider->user_routes, key, route);
632 static struct vpn_route *get_route(char *route_str)
634 char **elems = g_strsplit(route_str, "/", 0);
635 char *network, *netmask, *gateway, *family_str;
636 int family = PF_UNSPEC;
637 struct vpn_route *route = NULL;
642 family_str = elems[0];
645 if (!network || network[0] == '\0')
649 if (!netmask || netmask[0] == '\0')
654 route = g_try_new0(struct vpn_route, 1);
658 if (family_str[0] == '\0' || atoi(family_str) == 0) {
661 switch (family_str[0]) {
671 if (g_strrstr(network, ":")) {
672 if (family != PF_UNSPEC && family != AF_INET6)
673 DBG("You have IPv6 address but you have non IPv6 route");
674 } else if (g_strrstr(network, ".")) {
675 if (family != PF_UNSPEC && family != AF_INET)
676 DBG("You have IPv4 address but you have non IPv4 route");
678 if (!g_strrstr(netmask, ".")) {
679 /* We have netmask length */
681 struct in_addr netmask_in;
682 unsigned char prefix_len = 32;
686 long int value = strtol(netmask, &ptr, 10);
687 if (ptr != netmask && *ptr == '\0' &&
692 addr = 0xffffffff << (32 - prefix_len);
693 netmask_in.s_addr = htonl(addr);
694 netmask = inet_ntoa(netmask_in);
696 DBG("network %s netmask %s", network, netmask);
700 if (family == PF_UNSPEC) {
701 family = connman_inet_check_ipaddress(network);
702 if (family < 0 || family == PF_UNSPEC)
706 route->family = family;
707 route->network = g_strdup(network);
708 route->netmask = g_strdup(netmask);
709 route->gateway = g_strdup(gateway);
716 static GSList *get_routes(gchar **networks)
718 struct vpn_route *route;
719 GSList *routes = NULL;
722 for (i = 0; networks[i]; i++) {
723 route = get_route(networks[i]);
725 routes = g_slist_prepend(routes, route);
731 static int provider_load_from_keyfile(struct vpn_provider *provider,
737 gsize length, num_user_networks;
738 gchar **networks = NULL;
740 settings = g_key_file_get_keys(keyfile, provider->identifier, &length,
743 g_key_file_free(keyfile);
747 while (idx < length) {
750 if (g_str_equal(key, "Networks")) {
751 networks = __vpn_config_get_string_list(keyfile,
752 provider->identifier,
756 provider->user_networks = get_routes(networks);
759 value = __vpn_config_get_string(keyfile,
760 provider->identifier,
762 vpn_provider_set_string(provider, key,
769 g_strfreev(settings);
770 g_strfreev(networks);
772 if (provider->user_networks)
773 set_user_networks(provider, provider->user_networks);
779 static int vpn_provider_load(struct vpn_provider *provider)
783 DBG("provider %p", provider);
785 keyfile = __connman_storage_load_provider(provider->identifier);
789 provider_load_from_keyfile(provider, keyfile);
791 g_key_file_free(keyfile);
795 static gchar **create_network_list(GSList *networks, gsize *count)
798 gchar **result = NULL;
799 unsigned int num_elems = 0;
801 for (list = networks; list; list = g_slist_next(list)) {
802 struct vpn_route *route = list->data;
805 result = g_try_realloc(result,
806 (num_elems + 1) * sizeof(gchar *));
810 switch (route->family) {
822 result[num_elems] = g_strdup_printf("%d/%s/%s/%s",
823 family, route->network, route->netmask,
824 !route->gateway ? "" : route->gateway);
829 result = g_try_realloc(result, (num_elems + 1) * sizeof(gchar *));
833 result[num_elems] = NULL;
838 static int vpn_provider_save(struct vpn_provider *provider)
842 DBG("provider %p immutable %s", provider,
843 provider->immutable ? "yes" : "no");
845 if (provider->immutable) {
847 * Do not save providers that are provisioned via .config
853 keyfile = g_key_file_new();
857 g_key_file_set_string(keyfile, provider->identifier,
858 "Name", provider->name);
859 g_key_file_set_string(keyfile, provider->identifier,
860 "Type", provider->type);
861 g_key_file_set_string(keyfile, provider->identifier,
862 "Host", provider->host);
863 g_key_file_set_string(keyfile, provider->identifier,
864 "VPN.Domain", provider->domain);
865 if (provider->user_networks) {
869 networks = create_network_list(provider->user_networks,
872 g_key_file_set_string_list(keyfile,
873 provider->identifier,
875 (const gchar ** const)networks,
877 g_strfreev(networks);
881 if (provider->config_file && strlen(provider->config_file) > 0)
882 g_key_file_set_string(keyfile, provider->identifier,
883 "Config.file", provider->config_file);
885 if (provider->config_entry &&
886 strlen(provider->config_entry) > 0)
887 g_key_file_set_string(keyfile, provider->identifier,
888 "Config.ident", provider->config_entry);
890 if (provider->driver && provider->driver->save)
891 provider->driver->save(provider, keyfile);
893 __connman_storage_save_provider(keyfile, provider->identifier);
894 g_key_file_free(keyfile);
899 struct vpn_provider *__vpn_provider_lookup(const char *identifier)
901 struct vpn_provider *provider = NULL;
903 provider = g_hash_table_lookup(provider_hash, identifier);
908 static bool match_driver(struct vpn_provider *provider,
909 struct vpn_provider_driver *driver)
911 if (g_strcmp0(driver->name, provider->type) == 0)
917 static int provider_probe(struct vpn_provider *provider)
921 DBG("provider %p driver %p name %s", provider, provider->driver,
924 if (provider->driver)
927 for (list = driver_list; list; list = list->next) {
928 struct vpn_provider_driver *driver = list->data;
930 if (!match_driver(provider, driver))
933 DBG("driver %p name %s", driver, driver->name);
935 if (driver->probe && driver->probe(provider) == 0) {
936 provider->driver = driver;
941 if (!provider->driver)
947 static void provider_remove(struct vpn_provider *provider)
949 if (provider->driver) {
950 provider->driver->remove(provider);
951 provider->driver = NULL;
955 static int provider_register(struct vpn_provider *provider)
957 return provider_probe(provider);
960 static void provider_unregister(struct vpn_provider *provider)
962 provider_remove(provider);
965 struct vpn_provider *
966 vpn_provider_ref_debug(struct vpn_provider *provider,
967 const char *file, int line, const char *caller)
969 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount + 1,
972 __sync_fetch_and_add(&provider->refcount, 1);
977 static void provider_destruct(struct vpn_provider *provider)
979 DBG("provider %p", provider);
981 if (provider->notify_id != 0)
982 g_source_remove(provider->notify_id);
984 g_free(provider->name);
985 g_free(provider->type);
986 g_free(provider->host);
987 g_free(provider->domain);
988 g_free(provider->identifier);
989 g_free(provider->path);
990 g_slist_free_full(provider->user_networks, free_route);
991 g_strfreev(provider->nameservers);
992 g_hash_table_destroy(provider->routes);
993 g_hash_table_destroy(provider->user_routes);
994 g_hash_table_destroy(provider->setting_strings);
995 if (provider->resolv) {
996 g_resolv_unref(provider->resolv);
997 provider->resolv = NULL;
999 __vpn_ipconfig_unref(provider->ipconfig_ipv4);
1000 __vpn_ipconfig_unref(provider->ipconfig_ipv6);
1002 g_strfreev(provider->host_ip);
1003 g_free(provider->config_file);
1004 g_free(provider->config_entry);
1005 connman_ipaddress_free(provider->prev_ipv4_addr);
1006 connman_ipaddress_free(provider->prev_ipv6_addr);
1010 void vpn_provider_unref_debug(struct vpn_provider *provider,
1011 const char *file, int line, const char *caller)
1013 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount - 1,
1014 file, line, caller);
1016 if (__sync_fetch_and_sub(&provider->refcount, 1) != 1)
1019 provider_remove(provider);
1021 provider_destruct(provider);
1024 static void configuration_count_add(void)
1026 DBG("count %d", configuration_count + 1);
1028 __sync_fetch_and_add(&configuration_count, 1);
1031 static void configuration_count_del(void)
1033 DBG("count %d", configuration_count - 1);
1035 if (__sync_fetch_and_sub(&configuration_count, 1) != 1)
1039 int __vpn_provider_disconnect(struct vpn_provider *provider)
1043 DBG("provider %p", provider);
1045 if (provider->driver && provider->driver->disconnect)
1046 err = provider->driver->disconnect(provider);
1050 if (err == -EINPROGRESS)
1051 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1056 static void connect_cb(struct vpn_provider *provider, void *user_data,
1059 DBusMessage *pending = user_data;
1061 DBG("provider %p user %p error %d", provider, user_data, error);
1064 DBusMessage *reply = __connman_error_failed(pending, error);
1066 g_dbus_send_message(connection, reply);
1068 vpn_provider_indicate_error(provider,
1069 VPN_PROVIDER_ERROR_CONNECT_FAILED);
1070 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1072 g_dbus_send_reply(connection, pending, DBUS_TYPE_INVALID);
1074 dbus_message_unref(pending);
1077 int __vpn_provider_connect(struct vpn_provider *provider, DBusMessage *msg)
1081 DBG("provider %p", provider);
1083 if (provider->driver && provider->driver->connect) {
1084 dbus_message_ref(msg);
1085 err = provider->driver->connect(provider, connect_cb,
1086 dbus_message_get_sender(msg),
1091 if (err == -EINPROGRESS)
1092 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1097 static void connection_removed_signal(struct vpn_provider *provider)
1099 DBusMessage *signal;
1100 DBusMessageIter iter;
1102 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1103 VPN_MANAGER_INTERFACE, "ConnectionRemoved");
1107 dbus_message_iter_init_append(signal, &iter);
1108 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1110 dbus_connection_send(connection, signal, NULL);
1111 dbus_message_unref(signal);
1114 static char *get_ident(const char *path)
1121 pos = strrchr(path, '/');
1128 int __vpn_provider_remove(const char *path)
1130 struct vpn_provider *provider;
1133 DBG("path %s", path);
1135 ident = get_ident(path);
1137 provider = __vpn_provider_lookup(ident);
1139 return __vpn_provider_delete(provider);
1144 int __vpn_provider_delete(struct vpn_provider *provider)
1146 DBG("Deleting VPN %s", provider->identifier);
1148 connection_removed_signal(provider);
1150 provider_unregister(provider);
1152 __connman_storage_remove_provider(provider->identifier);
1154 g_hash_table_remove(provider_hash, provider->identifier);
1159 static void append_ipv4(DBusMessageIter *iter, void *user_data)
1161 struct vpn_provider *provider = user_data;
1162 const char *address, *gateway, *peer;
1164 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv4);
1167 struct in_addr netmask;
1171 prefixlen = __vpn_ipconfig_get_prefixlen(
1172 provider->ipconfig_ipv4);
1174 addr = 0xffffffff << (32 - prefixlen);
1175 netmask.s_addr = htonl(addr);
1176 mask = inet_ntoa(netmask);
1178 connman_dbus_dict_append_basic(iter, "Address",
1179 DBUS_TYPE_STRING, &address);
1181 connman_dbus_dict_append_basic(iter, "Netmask",
1182 DBUS_TYPE_STRING, &mask);
1185 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv4);
1187 connman_dbus_dict_append_basic(iter, "Gateway",
1188 DBUS_TYPE_STRING, &gateway);
1190 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv4);
1192 connman_dbus_dict_append_basic(iter, "Peer",
1193 DBUS_TYPE_STRING, &peer);
1196 static void append_ipv6(DBusMessageIter *iter, void *user_data)
1198 struct vpn_provider *provider = user_data;
1199 const char *address, *gateway, *peer;
1201 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv6);
1203 unsigned char prefixlen;
1205 connman_dbus_dict_append_basic(iter, "Address",
1206 DBUS_TYPE_STRING, &address);
1208 prefixlen = __vpn_ipconfig_get_prefixlen(
1209 provider->ipconfig_ipv6);
1211 connman_dbus_dict_append_basic(iter, "PrefixLength",
1212 DBUS_TYPE_BYTE, &prefixlen);
1215 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv6);
1217 connman_dbus_dict_append_basic(iter, "Gateway",
1218 DBUS_TYPE_STRING, &gateway);
1220 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv6);
1222 connman_dbus_dict_append_basic(iter, "Peer",
1223 DBUS_TYPE_STRING, &peer);
1226 static const char *state2string(enum vpn_provider_state state)
1229 case VPN_PROVIDER_STATE_UNKNOWN:
1231 case VPN_PROVIDER_STATE_IDLE:
1233 case VPN_PROVIDER_STATE_CONNECT:
1234 return "configuration";
1235 case VPN_PROVIDER_STATE_READY:
1237 case VPN_PROVIDER_STATE_DISCONNECT:
1238 return "disconnect";
1239 case VPN_PROVIDER_STATE_FAILURE:
1246 static void append_nameservers(DBusMessageIter *iter, char **servers)
1252 for (i = 0; servers[i]; i++) {
1253 DBG("servers[%d] %s", i, servers[i]);
1254 dbus_message_iter_append_basic(iter,
1255 DBUS_TYPE_STRING, &servers[i]);
1259 static void append_dns(DBusMessageIter *iter, void *user_data)
1261 struct vpn_provider *provider = user_data;
1263 if (provider->nameservers)
1264 append_nameservers(iter, provider->nameservers);
1267 static int provider_indicate_state(struct vpn_provider *provider,
1268 enum vpn_provider_state state)
1271 enum vpn_provider_state old_state;
1273 str = state2string(state);
1274 DBG("provider %p state %s/%d", provider, str, state);
1278 old_state = provider->state;
1279 provider->state = state;
1281 if (state == VPN_PROVIDER_STATE_READY) {
1282 connman_dbus_property_changed_basic(provider->path,
1283 VPN_CONNECTION_INTERFACE, "Index",
1284 DBUS_TYPE_INT32, &provider->index);
1286 if (provider->family == AF_INET)
1287 connman_dbus_property_changed_dict(provider->path,
1288 VPN_CONNECTION_INTERFACE, "IPv4",
1289 append_ipv4, provider);
1290 else if (provider->family == AF_INET6)
1291 connman_dbus_property_changed_dict(provider->path,
1292 VPN_CONNECTION_INTERFACE, "IPv6",
1293 append_ipv6, provider);
1295 connman_dbus_property_changed_array(provider->path,
1296 VPN_CONNECTION_INTERFACE,
1299 append_dns, provider);
1301 if (provider->domain)
1302 connman_dbus_property_changed_basic(provider->path,
1303 VPN_CONNECTION_INTERFACE,
1309 if (old_state != state)
1310 connman_dbus_property_changed_basic(provider->path,
1311 VPN_CONNECTION_INTERFACE, "State",
1312 DBUS_TYPE_STRING, &str);
1317 static void append_state(DBusMessageIter *iter,
1318 struct vpn_provider *provider)
1322 switch (provider->state) {
1323 case VPN_PROVIDER_STATE_UNKNOWN:
1324 case VPN_PROVIDER_STATE_IDLE:
1327 case VPN_PROVIDER_STATE_CONNECT:
1328 str = "configuration";
1330 case VPN_PROVIDER_STATE_READY:
1333 case VPN_PROVIDER_STATE_DISCONNECT:
1336 case VPN_PROVIDER_STATE_FAILURE:
1341 connman_dbus_dict_append_basic(iter, "State",
1342 DBUS_TYPE_STRING, &str);
1345 static void append_properties(DBusMessageIter *iter,
1346 struct vpn_provider *provider)
1348 DBusMessageIter dict;
1349 GHashTableIter hash;
1350 gpointer value, key;
1351 dbus_bool_t immutable;
1353 connman_dbus_dict_open(iter, &dict);
1355 append_state(&dict, provider);
1358 connman_dbus_dict_append_basic(&dict, "Type",
1359 DBUS_TYPE_STRING, &provider->type);
1362 connman_dbus_dict_append_basic(&dict, "Name",
1363 DBUS_TYPE_STRING, &provider->name);
1366 connman_dbus_dict_append_basic(&dict, "Host",
1367 DBUS_TYPE_STRING, &provider->host);
1368 if (provider->index >= 0)
1369 connman_dbus_dict_append_basic(&dict, "Index",
1370 DBUS_TYPE_INT32, &provider->index);
1371 if (provider->domain)
1372 connman_dbus_dict_append_basic(&dict, "Domain",
1373 DBUS_TYPE_STRING, &provider->domain);
1375 immutable = provider->immutable;
1376 connman_dbus_dict_append_basic(&dict, "Immutable", DBUS_TYPE_BOOLEAN,
1379 if (provider->family == AF_INET)
1380 connman_dbus_dict_append_dict(&dict, "IPv4", append_ipv4,
1382 else if (provider->family == AF_INET6)
1383 connman_dbus_dict_append_dict(&dict, "IPv6", append_ipv6,
1386 connman_dbus_dict_append_array(&dict, "Nameservers",
1387 DBUS_TYPE_STRING, append_dns, provider);
1389 connman_dbus_dict_append_array(&dict, "UserRoutes",
1390 DBUS_TYPE_DICT_ENTRY, append_routes,
1391 provider->user_routes);
1393 connman_dbus_dict_append_array(&dict, "ServerRoutes",
1394 DBUS_TYPE_DICT_ENTRY, append_routes,
1397 if (provider->setting_strings) {
1398 g_hash_table_iter_init(&hash, provider->setting_strings);
1400 while (g_hash_table_iter_next(&hash, &key, &value)) {
1401 struct vpn_setting *setting = value;
1403 if (!setting->hide_value &&
1405 connman_dbus_dict_append_basic(&dict, key,
1411 connman_dbus_dict_close(iter, &dict);
1414 static void connection_added_signal(struct vpn_provider *provider)
1416 DBusMessage *signal;
1417 DBusMessageIter iter;
1419 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1420 VPN_MANAGER_INTERFACE, "ConnectionAdded");
1424 dbus_message_iter_init_append(signal, &iter);
1425 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1427 append_properties(&iter, provider);
1429 dbus_connection_send(connection, signal, NULL);
1430 dbus_message_unref(signal);
1433 static bool check_host(char **hosts, char *host)
1440 for (i = 0; hosts[i]; i++) {
1441 if (g_strcmp0(hosts[i], host) == 0)
1448 static void provider_append_routes(gpointer key, gpointer value,
1451 struct vpn_route *route = value;
1452 struct vpn_provider *provider = user_data;
1453 int index = provider->index;
1459 * If the VPN administrator/user has given a route to
1460 * VPN server, then we must discard that because the
1461 * server cannot be contacted via VPN tunnel.
1463 if (check_host(provider->host_ip, route->network)) {
1464 DBG("Discarding VPN route to %s via %s at index %d",
1465 route->network, route->gateway, index);
1469 if (route->family == AF_INET6) {
1470 unsigned char prefix_len = atoi(route->netmask);
1472 connman_inet_add_ipv6_network_route(index, route->network,
1476 connman_inet_add_network_route(index, route->network,
1482 static int set_connected(struct vpn_provider *provider,
1485 struct vpn_ipconfig *ipconfig;
1487 DBG("provider %p id %s connected %d", provider,
1488 provider->identifier, connected);
1491 if (provider->family == AF_INET6)
1492 ipconfig = provider->ipconfig_ipv6;
1494 ipconfig = provider->ipconfig_ipv4;
1496 __vpn_ipconfig_address_add(ipconfig, provider->family);
1499 __vpn_ipconfig_gateway_add(ipconfig, provider->family);
1501 provider_indicate_state(provider,
1502 VPN_PROVIDER_STATE_READY);
1504 g_hash_table_foreach(provider->routes, provider_append_routes,
1507 g_hash_table_foreach(provider->user_routes,
1508 provider_append_routes, provider);
1511 provider_indicate_state(provider,
1512 VPN_PROVIDER_STATE_DISCONNECT);
1514 provider_indicate_state(provider,
1515 VPN_PROVIDER_STATE_IDLE);
1521 int vpn_provider_set_state(struct vpn_provider *provider,
1522 enum vpn_provider_state state)
1528 case VPN_PROVIDER_STATE_UNKNOWN:
1530 case VPN_PROVIDER_STATE_IDLE:
1531 return set_connected(provider, false);
1532 case VPN_PROVIDER_STATE_CONNECT:
1533 return provider_indicate_state(provider, state);
1534 case VPN_PROVIDER_STATE_READY:
1535 return set_connected(provider, true);
1536 case VPN_PROVIDER_STATE_DISCONNECT:
1537 return provider_indicate_state(provider, state);
1538 case VPN_PROVIDER_STATE_FAILURE:
1539 return provider_indicate_state(provider, state);
1544 int vpn_provider_indicate_error(struct vpn_provider *provider,
1545 enum vpn_provider_error error)
1547 DBG("provider %p id %s error %d", provider, provider->identifier,
1550 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1553 case VPN_PROVIDER_ERROR_UNKNOWN:
1554 case VPN_PROVIDER_ERROR_CONNECT_FAILED:
1557 case VPN_PROVIDER_ERROR_LOGIN_FAILED:
1558 case VPN_PROVIDER_ERROR_AUTH_FAILED:
1559 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_IDLE);
1566 static int connection_unregister(struct vpn_provider *provider)
1568 DBG("provider %p path %s", provider, provider->path);
1570 if (!provider->path)
1573 g_dbus_unregister_interface(connection, provider->path,
1574 VPN_CONNECTION_INTERFACE);
1576 g_free(provider->path);
1577 provider->path = NULL;
1582 static int connection_register(struct vpn_provider *provider)
1584 DBG("provider %p path %s", provider, provider->path);
1589 provider->path = g_strdup_printf("%s/connection/%s", VPN_PATH,
1590 provider->identifier);
1592 g_dbus_register_interface(connection, provider->path,
1593 VPN_CONNECTION_INTERFACE,
1594 connection_methods, connection_signals,
1595 NULL, provider, NULL);
1600 static void unregister_provider(gpointer data)
1602 struct vpn_provider *provider = data;
1604 configuration_count_del();
1606 connection_unregister(provider);
1608 vpn_provider_unref(provider);
1611 static void provider_initialize(struct vpn_provider *provider)
1613 DBG("provider %p", provider);
1615 provider->index = 0;
1617 provider->name = NULL;
1618 provider->type = NULL;
1619 provider->domain = NULL;
1620 provider->identifier = NULL;
1621 provider->immutable = false;
1622 provider->user_networks = NULL;
1623 provider->routes = g_hash_table_new_full(g_direct_hash, g_direct_equal,
1625 provider->user_routes = g_hash_table_new_full(g_str_hash, g_str_equal,
1626 g_free, free_route);
1627 provider->setting_strings = g_hash_table_new_full(g_str_hash,
1628 g_str_equal, g_free, free_setting);
1631 static struct vpn_provider *vpn_provider_new(void)
1633 struct vpn_provider *provider;
1635 provider = g_try_new0(struct vpn_provider, 1);
1639 provider->refcount = 1;
1641 DBG("provider %p", provider);
1642 provider_initialize(provider);
1647 static struct vpn_provider *vpn_provider_get(const char *identifier)
1649 struct vpn_provider *provider;
1651 provider = g_hash_table_lookup(provider_hash, identifier);
1655 provider = vpn_provider_new();
1659 DBG("provider %p", provider);
1661 provider->identifier = g_strdup(identifier);
1663 g_hash_table_insert(provider_hash, provider->identifier, provider);
1665 configuration_count_add();
1670 static void provider_dbus_ident(char *ident)
1672 int i, len = strlen(ident);
1674 for (i = 0; i < len; i++) {
1675 if (ident[i] >= '0' && ident[i] <= '9')
1677 if (ident[i] >= 'a' && ident[i] <= 'z')
1679 if (ident[i] >= 'A' && ident[i] <= 'Z')
1685 static struct vpn_provider *provider_create_from_keyfile(GKeyFile *keyfile,
1688 struct vpn_provider *provider;
1690 if (!keyfile || !ident)
1693 provider = __vpn_provider_lookup(ident);
1695 provider = vpn_provider_get(ident);
1697 DBG("can not create provider");
1701 provider_load_from_keyfile(provider, keyfile);
1703 if (!provider->name || !provider->host ||
1704 !provider->domain) {
1705 DBG("cannot get name, host or domain");
1706 vpn_provider_unref(provider);
1710 if (provider_register(provider) == 0)
1711 connection_register(provider);
1716 static void provider_create_all_from_type(const char *provider_type)
1723 DBG("provider type %s", provider_type);
1725 providers = __connman_storage_get_providers();
1730 for (i = 0; providers[i]; i += 1) {
1732 if (strncmp(providers[i], "provider_", 9) != 0)
1735 id = providers[i] + 9;
1736 keyfile = __connman_storage_load_provider(id);
1741 type = __vpn_config_get_string(keyfile, id, "Type", NULL);
1743 DBG("keyfile %p id %s type %s", keyfile, id, type);
1745 if (strcmp(provider_type, type) != 0) {
1747 g_key_file_free(keyfile);
1751 if (!provider_create_from_keyfile(keyfile, id))
1752 DBG("could not create provider");
1755 g_key_file_free(keyfile);
1757 g_strfreev(providers);
1760 #if !defined TIZEN_EXT
1761 char *__vpn_provider_create_identifier(const char *host, const char *domain)
1765 ident = g_strdup_printf("%s_%s", host, domain);
1769 provider_dbus_ident(ident);
1774 char *__vpn_provider_create_identifier(const char *host, const char *domain, const char *name)
1778 ident = g_strdup_printf("%s_%s_%s", host, domain, name);
1782 provider_dbus_ident(ident);
1788 int __vpn_provider_create(DBusMessage *msg)
1790 struct vpn_provider *provider;
1791 DBusMessageIter iter, array;
1792 const char *type = NULL, *name = NULL;
1793 const char *host = NULL, *domain = NULL;
1794 GSList *networks = NULL;
1798 dbus_message_iter_init(msg, &iter);
1799 dbus_message_iter_recurse(&iter, &array);
1801 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1802 DBusMessageIter entry, value;
1805 dbus_message_iter_recurse(&array, &entry);
1806 dbus_message_iter_get_basic(&entry, &key);
1808 dbus_message_iter_next(&entry);
1809 dbus_message_iter_recurse(&entry, &value);
1811 switch (dbus_message_iter_get_arg_type(&value)) {
1812 case DBUS_TYPE_STRING:
1813 if (g_str_equal(key, "Type"))
1814 dbus_message_iter_get_basic(&value, &type);
1815 else if (g_str_equal(key, "Name"))
1816 dbus_message_iter_get_basic(&value, &name);
1817 else if (g_str_equal(key, "Host"))
1818 dbus_message_iter_get_basic(&value, &host);
1819 else if (g_str_equal(key, "VPN.Domain") ||
1820 g_str_equal(key, "Domain"))
1821 dbus_message_iter_get_basic(&value, &domain);
1823 case DBUS_TYPE_ARRAY:
1824 if (g_str_equal(key, "UserRoutes"))
1825 networks = get_user_networks(&value);
1829 dbus_message_iter_next(&array);
1832 if (!host || !domain)
1835 DBG("Type %s name %s networks %p", type, name, networks);
1840 #if !defined TIZEN_EXT
1841 ident = __vpn_provider_create_identifier(host, domain);
1843 ident = __vpn_provider_create_identifier(host, domain, name);
1845 DBG("ident %s", ident);
1847 provider = __vpn_provider_lookup(ident);
1849 provider = vpn_provider_get(ident);
1851 DBG("can not create provider");
1856 provider->host = g_strdup(host);
1857 provider->domain = g_strdup(domain);
1858 provider->name = g_strdup(name);
1859 provider->type = g_strdup(type);
1861 if (provider_register(provider) == 0)
1862 vpn_provider_load(provider);
1864 provider_resolv_host_addr(provider);
1868 g_slist_free_full(provider->user_networks, free_route);
1869 provider->user_networks = networks;
1870 set_user_networks(provider, provider->user_networks);
1873 dbus_message_iter_init(msg, &iter);
1874 dbus_message_iter_recurse(&iter, &array);
1876 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1877 DBusMessageIter entry, value;
1878 const char *key, *str;
1880 dbus_message_iter_recurse(&array, &entry);
1881 dbus_message_iter_get_basic(&entry, &key);
1883 dbus_message_iter_next(&entry);
1884 dbus_message_iter_recurse(&entry, &value);
1886 switch (dbus_message_iter_get_arg_type(&value)) {
1887 case DBUS_TYPE_STRING:
1888 dbus_message_iter_get_basic(&value, &str);
1889 vpn_provider_set_string(provider, key, str);
1893 dbus_message_iter_next(&array);
1898 vpn_provider_save(provider);
1900 err = provider_register(provider);
1901 if (err != 0 && err != -EALREADY)
1904 connection_register(provider);
1906 DBG("provider %p index %d path %s", provider, provider->index,
1909 g_dbus_send_reply(connection, msg,
1910 DBUS_TYPE_OBJECT_PATH, &provider->path,
1913 connection_added_signal(provider);
1918 static const char *get_string(GHashTable *settings, const char *key)
1920 DBG("settings %p key %s", settings, key);
1922 return g_hash_table_lookup(settings, key);
1925 static GSList *parse_user_networks(const char *network_str)
1927 GSList *networks = NULL;
1934 elems = g_strsplit(network_str, ",", 0);
1939 struct vpn_route *vpn_route;
1940 char *network, *netmask, *gateway;
1944 route = g_strsplit(elems[i], "/", 0);
1949 if (!network || network[0] == '\0')
1952 family = connman_inet_check_ipaddress(network);
1954 DBG("Cannot get address family of %s (%d/%s)", network,
1955 family, gai_strerror(family));
1966 DBG("Unsupported address family %d", family);
1971 if (!netmask || netmask[0] == '\0')
1976 vpn_route = g_try_new0(struct vpn_route, 1);
1982 vpn_route->family = family;
1983 vpn_route->network = g_strdup(network);
1984 vpn_route->netmask = g_strdup(netmask);
1985 vpn_route->gateway = g_strdup(gateway);
1987 DBG("route %s/%s%s%s", network, netmask,
1988 gateway ? " via " : "", gateway ? gateway : "");
1990 networks = g_slist_prepend(networks, vpn_route);
1999 return g_slist_reverse(networks);
2002 int __vpn_provider_create_from_config(GHashTable *settings,
2003 const char *config_ident,
2004 const char *config_entry)
2006 struct vpn_provider *provider;
2007 const char *type, *name, *host, *domain, *networks_str;
2010 GHashTableIter hash;
2011 gpointer value, key;
2014 type = get_string(settings, "Type");
2015 name = get_string(settings, "Name");
2016 host = get_string(settings, "Host");
2017 domain = get_string(settings, "Domain");
2018 networks_str = get_string(settings, "Networks");
2019 networks = parse_user_networks(networks_str);
2021 if (!host || !domain) {
2026 DBG("type %s name %s networks %s", type, name, networks_str);
2028 if (!type || !name) {
2033 #if !defined TIZEN_EXT
2034 ident = __vpn_provider_create_identifier(host, domain);
2036 ident = __vpn_provider_create_identifier(host, domain, name);
2038 DBG("ident %s", ident);
2040 provider = __vpn_provider_lookup(ident);
2042 provider = vpn_provider_get(ident);
2044 DBG("can not create provider");
2049 provider->host = g_strdup(host);
2050 provider->domain = g_strdup(domain);
2051 provider->name = g_strdup(name);
2052 provider->type = g_ascii_strdown(type, -1);
2054 provider->config_file = g_strdup(config_ident);
2055 provider->config_entry = g_strdup(config_entry);
2057 provider_register(provider);
2059 provider_resolv_host_addr(provider);
2063 g_slist_free_full(provider->user_networks, free_route);
2064 provider->user_networks = networks;
2065 set_user_networks(provider, provider->user_networks);
2068 g_hash_table_iter_init(&hash, settings);
2070 while (g_hash_table_iter_next(&hash, &key, &value))
2071 __vpn_provider_set_string_immutable(provider, key, value);
2073 provider->immutable = true;
2075 vpn_provider_save(provider);
2077 err = provider_register(provider);
2078 if (err != 0 && err != -EALREADY)
2081 connection_register(provider);
2083 DBG("provider %p index %d path %s", provider, provider->index,
2086 connection_added_signal(provider);
2094 g_slist_free_full(networks, free_route);
2099 static void append_connection_structs(DBusMessageIter *iter, void *user_data)
2101 DBusMessageIter entry;
2102 GHashTableIter hash;
2103 gpointer value, key;
2105 g_hash_table_iter_init(&hash, provider_hash);
2107 while (g_hash_table_iter_next(&hash, &key, &value)) {
2108 struct vpn_provider *provider = value;
2110 DBG("path %s", provider->path);
2112 if (!provider->identifier)
2115 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT,
2117 dbus_message_iter_append_basic(&entry, DBUS_TYPE_OBJECT_PATH,
2119 append_properties(&entry, provider);
2120 dbus_message_iter_close_container(iter, &entry);
2124 DBusMessage *__vpn_provider_get_connections(DBusMessage *msg)
2130 reply = dbus_message_new_method_return(msg);
2134 __connman_dbus_append_objpath_dict_array(reply,
2135 append_connection_structs, NULL);
2140 const char *__vpn_provider_get_ident(struct vpn_provider *provider)
2145 return provider->identifier;
2148 static int set_string(struct vpn_provider *provider,
2149 const char *key, const char *value,
2150 bool hide_value, bool immutable)
2152 DBG("provider %p key %s immutable %s value %s", provider, key,
2153 immutable ? "yes" : "no",
2154 hide_value ? "<not printed>" : value);
2156 if (g_str_equal(key, "Type")) {
2157 g_free(provider->type);
2158 provider->type = g_ascii_strdown(value, -1);
2159 send_value(provider->path, "Type", provider->type);
2160 } else if (g_str_equal(key, "Name")) {
2161 g_free(provider->name);
2162 provider->name = g_strdup(value);
2163 send_value(provider->path, "Name", provider->name);
2164 } else if (g_str_equal(key, "Host")) {
2165 g_free(provider->host);
2166 provider->host = g_strdup(value);
2167 send_value(provider->path, "Host", provider->host);
2168 } else if (g_str_equal(key, "VPN.Domain") ||
2169 g_str_equal(key, "Domain")) {
2170 g_free(provider->domain);
2171 provider->domain = g_strdup(value);
2172 send_value(provider->path, "Domain", provider->domain);
2174 struct vpn_setting *setting;
2176 setting = g_hash_table_lookup(provider->setting_strings, key);
2177 if (setting && !immutable &&
2178 setting->immutable) {
2179 DBG("Trying to set immutable variable %s", key);
2183 setting = g_try_new0(struct vpn_setting, 1);
2187 setting->value = g_strdup(value);
2188 setting->hide_value = hide_value;
2191 setting->immutable = true;
2194 send_value(provider->path, key, setting->value);
2196 g_hash_table_replace(provider->setting_strings,
2197 g_strdup(key), setting);
2203 int vpn_provider_set_string(struct vpn_provider *provider,
2204 const char *key, const char *value)
2206 return set_string(provider, key, value, false, false);
2209 int vpn_provider_set_string_hide_value(struct vpn_provider *provider,
2210 const char *key, const char *value)
2212 return set_string(provider, key, value, true, false);
2215 int __vpn_provider_set_string_immutable(struct vpn_provider *provider,
2216 const char *key, const char *value)
2218 return set_string(provider, key, value, false, true);
2221 const char *vpn_provider_get_string(struct vpn_provider *provider,
2224 struct vpn_setting *setting;
2226 DBG("provider %p key %s", provider, key);
2228 if (g_str_equal(key, "Type"))
2229 return provider->type;
2230 else if (g_str_equal(key, "Name"))
2231 return provider->name;
2232 else if (g_str_equal(key, "Host"))
2233 return provider->host;
2234 else if (g_str_equal(key, "HostIP")) {
2235 if (!provider->host_ip ||
2236 !provider->host_ip[0])
2237 return provider->host;
2239 return provider->host_ip[0];
2240 } else if (g_str_equal(key, "VPN.Domain") ||
2241 g_str_equal(key, "Domain"))
2242 return provider->domain;
2244 setting = g_hash_table_lookup(provider->setting_strings, key);
2248 return setting->value;
2251 bool __vpn_provider_check_routes(struct vpn_provider *provider)
2256 if (provider->user_routes &&
2257 g_hash_table_size(provider->user_routes) > 0)
2260 if (provider->routes &&
2261 g_hash_table_size(provider->routes) > 0)
2267 void *vpn_provider_get_data(struct vpn_provider *provider)
2269 return provider->driver_data;
2272 void vpn_provider_set_data(struct vpn_provider *provider, void *data)
2274 provider->driver_data = data;
2277 void vpn_provider_set_index(struct vpn_provider *provider, int index)
2279 DBG("index %d provider %p", index, provider);
2281 if (!provider->ipconfig_ipv4) {
2282 provider->ipconfig_ipv4 = __vpn_ipconfig_create(index,
2284 if (!provider->ipconfig_ipv4) {
2285 DBG("Couldnt create ipconfig for IPv4");
2290 __vpn_ipconfig_set_index(provider->ipconfig_ipv4, index);
2292 if (!provider->ipconfig_ipv6) {
2293 provider->ipconfig_ipv6 = __vpn_ipconfig_create(index,
2295 if (!provider->ipconfig_ipv6) {
2296 DBG("Couldnt create ipconfig for IPv6");
2301 __vpn_ipconfig_set_index(provider->ipconfig_ipv6, index);
2304 provider->index = index;
2307 int vpn_provider_get_index(struct vpn_provider *provider)
2309 return provider->index;
2312 int vpn_provider_set_ipaddress(struct vpn_provider *provider,
2313 struct connman_ipaddress *ipaddress)
2315 struct vpn_ipconfig *ipconfig = NULL;
2317 switch (ipaddress->family) {
2319 ipconfig = provider->ipconfig_ipv4;
2322 ipconfig = provider->ipconfig_ipv6;
2328 DBG("provider %p state %d ipconfig %p family %d", provider,
2329 provider->state, ipconfig, ipaddress->family);
2334 provider->family = ipaddress->family;
2336 if (provider->state == VPN_PROVIDER_STATE_CONNECT ||
2337 provider->state == VPN_PROVIDER_STATE_READY) {
2338 struct connman_ipaddress *addr =
2339 __vpn_ipconfig_get_address(ipconfig);
2342 * Remember the old address so that we can remove it in notify
2343 * function in plugins/vpn.c if we ever restart
2345 if (ipaddress->family == AF_INET6) {
2346 connman_ipaddress_free(provider->prev_ipv6_addr);
2347 provider->prev_ipv6_addr =
2348 connman_ipaddress_copy(addr);
2350 connman_ipaddress_free(provider->prev_ipv4_addr);
2351 provider->prev_ipv4_addr =
2352 connman_ipaddress_copy(addr);
2356 if (ipaddress->local) {
2357 __vpn_ipconfig_set_local(ipconfig, ipaddress->local);
2358 __vpn_ipconfig_set_peer(ipconfig, ipaddress->peer);
2359 __vpn_ipconfig_set_broadcast(ipconfig, ipaddress->broadcast);
2360 __vpn_ipconfig_set_gateway(ipconfig, ipaddress->gateway);
2361 __vpn_ipconfig_set_prefixlen(ipconfig, ipaddress->prefixlen);
2367 int vpn_provider_set_pac(struct vpn_provider *provider,
2370 DBG("provider %p pac %s", provider, pac);
2376 int vpn_provider_set_domain(struct vpn_provider *provider,
2379 DBG("provider %p domain %s", provider, domain);
2381 g_free(provider->domain);
2382 provider->domain = g_strdup(domain);
2387 int vpn_provider_set_nameservers(struct vpn_provider *provider,
2388 const char *nameservers)
2390 DBG("provider %p nameservers %s", provider, nameservers);
2392 g_strfreev(provider->nameservers);
2393 provider->nameservers = NULL;
2398 provider->nameservers = g_strsplit(nameservers, " ", 0);
2403 enum provider_route_type {
2404 PROVIDER_ROUTE_TYPE_NONE = 0,
2405 PROVIDER_ROUTE_TYPE_MASK = 1,
2406 PROVIDER_ROUTE_TYPE_ADDR = 2,
2407 PROVIDER_ROUTE_TYPE_GW = 3,
2410 static int route_env_parse(struct vpn_provider *provider, const char *key,
2411 int *family, unsigned long *idx,
2412 enum provider_route_type *type)
2417 DBG("name %s", provider->name);
2419 if (!strcmp(provider->type, "openvpn")) {
2420 if (g_str_has_prefix(key, "route_network_")) {
2421 start = key + strlen("route_network_");
2422 *type = PROVIDER_ROUTE_TYPE_ADDR;
2423 } else if (g_str_has_prefix(key, "route_netmask_")) {
2424 start = key + strlen("route_netmask_");
2425 *type = PROVIDER_ROUTE_TYPE_MASK;
2426 } else if (g_str_has_prefix(key, "route_gateway_")) {
2427 start = key + strlen("route_gateway_");
2428 *type = PROVIDER_ROUTE_TYPE_GW;
2433 *idx = g_ascii_strtoull(start, &end, 10);
2435 } else if (!strcmp(provider->type, "openconnect")) {
2436 if (g_str_has_prefix(key, "CISCO_SPLIT_INC_")) {
2438 start = key + strlen("CISCO_SPLIT_INC_");
2439 } else if (g_str_has_prefix(key,
2440 "CISCO_IPV6_SPLIT_INC_")) {
2442 start = key + strlen("CISCO_IPV6_SPLIT_INC_");
2446 *idx = g_ascii_strtoull(start, &end, 10);
2448 if (strncmp(end, "_ADDR", 5) == 0)
2449 *type = PROVIDER_ROUTE_TYPE_ADDR;
2450 else if (strncmp(end, "_MASK", 5) == 0)
2451 *type = PROVIDER_ROUTE_TYPE_MASK;
2452 else if (strncmp(end, "_MASKLEN", 8) == 0 &&
2453 *family == AF_INET6) {
2454 *type = PROVIDER_ROUTE_TYPE_MASK;
2462 int vpn_provider_append_route(struct vpn_provider *provider,
2463 const char *key, const char *value)
2465 struct vpn_route *route;
2466 int ret, family = 0;
2467 unsigned long idx = 0;
2468 enum provider_route_type type = PROVIDER_ROUTE_TYPE_NONE;
2470 DBG("key %s value %s", key, value);
2472 ret = route_env_parse(provider, key, &family, &idx, &type);
2476 DBG("idx %lu family %d type %d", idx, family, type);
2478 route = g_hash_table_lookup(provider->routes, GINT_TO_POINTER(idx));
2480 route = g_try_new0(struct vpn_route, 1);
2482 connman_error("out of memory");
2486 route->family = family;
2488 g_hash_table_replace(provider->routes, GINT_TO_POINTER(idx),
2493 case PROVIDER_ROUTE_TYPE_NONE:
2495 case PROVIDER_ROUTE_TYPE_MASK:
2496 route->netmask = g_strdup(value);
2498 case PROVIDER_ROUTE_TYPE_ADDR:
2499 route->network = g_strdup(value);
2501 case PROVIDER_ROUTE_TYPE_GW:
2502 route->gateway = g_strdup(value);
2506 if (!handle_routes) {
2507 if (route->netmask && route->gateway &&
2509 provider_schedule_changed(provider);
2515 const char *vpn_provider_get_driver_name(struct vpn_provider *provider)
2517 if (!provider->driver)
2520 return provider->driver->name;
2523 const char *vpn_provider_get_save_group(struct vpn_provider *provider)
2525 return provider->identifier;
2528 static gint compare_priority(gconstpointer a, gconstpointer b)
2533 static void clean_provider(gpointer key, gpointer value, gpointer user_data)
2535 struct vpn_provider *provider = value;
2537 if (provider->driver && provider->driver->remove)
2538 provider->driver->remove(provider);
2540 connection_unregister(provider);
2543 int vpn_provider_driver_register(struct vpn_provider_driver *driver)
2545 DBG("driver %p name %s", driver, driver->name);
2547 driver_list = g_slist_insert_sorted(driver_list, driver,
2549 provider_create_all_from_type(driver->name);
2553 void vpn_provider_driver_unregister(struct vpn_provider_driver *driver)
2555 GHashTableIter iter;
2556 gpointer value, key;
2558 DBG("driver %p name %s", driver, driver->name);
2560 driver_list = g_slist_remove(driver_list, driver);
2562 g_hash_table_iter_init(&iter, provider_hash);
2563 while (g_hash_table_iter_next(&iter, &key, &value)) {
2564 struct vpn_provider *provider = value;
2566 if (provider && provider->driver &&
2567 provider->driver->type == driver->type &&
2568 g_strcmp0(provider->driver->name,
2569 driver->name) == 0) {
2570 provider->driver = NULL;
2575 const char *vpn_provider_get_name(struct vpn_provider *provider)
2577 return provider->name;
2580 const char *vpn_provider_get_host(struct vpn_provider *provider)
2582 return provider->host;
2585 const char *vpn_provider_get_path(struct vpn_provider *provider)
2587 return provider->path;
2590 void vpn_provider_change_address(struct vpn_provider *provider)
2592 switch (provider->family) {
2594 connman_inet_set_address(provider->index,
2595 __vpn_ipconfig_get_address(provider->ipconfig_ipv4));
2598 connman_inet_set_ipv6_address(provider->index,
2599 __vpn_ipconfig_get_address(provider->ipconfig_ipv6));
2606 void vpn_provider_clear_address(struct vpn_provider *provider, int family)
2608 const char *address;
2611 DBG("provider %p family %d ipv4 %p ipv6 %p", provider, family,
2612 provider->prev_ipv4_addr, provider->prev_ipv6_addr);
2616 if (provider->prev_ipv4_addr) {
2617 connman_ipaddress_get_ip(provider->prev_ipv4_addr,
2620 DBG("ipv4 %s/%d", address, len);
2622 connman_inet_clear_address(provider->index,
2623 provider->prev_ipv4_addr);
2624 connman_ipaddress_free(provider->prev_ipv4_addr);
2625 provider->prev_ipv4_addr = NULL;
2629 if (provider->prev_ipv6_addr) {
2630 connman_ipaddress_get_ip(provider->prev_ipv6_addr,
2633 DBG("ipv6 %s/%d", address, len);
2635 connman_inet_clear_ipv6_address(provider->index,
2638 connman_ipaddress_free(provider->prev_ipv6_addr);
2639 provider->prev_ipv6_addr = NULL;
2647 static int agent_probe(struct connman_agent *agent)
2649 DBG("agent %p", agent);
2653 static void agent_remove(struct connman_agent *agent)
2655 DBG("agent %p", agent);
2658 static struct connman_agent_driver agent_driver = {
2660 .interface = VPN_AGENT_INTERFACE,
2661 .probe = agent_probe,
2662 .remove = agent_remove,
2665 static void remove_unprovisioned_providers(void)
2668 GKeyFile *keyfile, *configkeyfile;
2669 char *file, *section;
2672 providers = __connman_storage_get_providers();
2676 for (; providers[i]; i++) {
2677 char *group = providers[i] + sizeof("provider_") - 1;
2678 file = section = NULL;
2679 keyfile = configkeyfile = NULL;
2681 keyfile = __connman_storage_load_provider(group);
2685 file = __vpn_config_get_string(keyfile, group,
2686 "Config.file", NULL);
2690 section = __vpn_config_get_string(keyfile, group,
2691 "Config.ident", NULL);
2695 configkeyfile = __connman_storage_load_provider_config(file);
2696 if (!configkeyfile) {
2698 * Config file is missing, remove the provisioned
2701 __connman_storage_remove_provider(group);
2705 if (!g_key_file_has_group(configkeyfile, section))
2707 * Config section is missing, remove the provisioned
2710 __connman_storage_remove_provider(group);
2714 g_key_file_free(keyfile);
2717 g_key_file_free(configkeyfile);
2723 g_strfreev(providers);
2726 int __vpn_provider_init(bool do_routes)
2732 handle_routes = do_routes;
2734 err = connman_agent_driver_register(&agent_driver);
2736 connman_error("Cannot register agent driver for %s",
2741 connection = connman_dbus_get_connection();
2743 remove_unprovisioned_providers();
2745 provider_hash = g_hash_table_new_full(g_str_hash, g_str_equal,
2746 NULL, unregister_provider);
2750 void __vpn_provider_cleanup(void)
2754 connman_agent_driver_unregister(&agent_driver);
2756 g_hash_table_foreach(provider_hash, clean_provider, NULL);
2758 g_hash_table_destroy(provider_hash);
2759 provider_hash = NULL;
2761 dbus_connection_unref(connection);