5 * Copyright (C) 2012-2013 Intel Corporation. All rights reserved.
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
31 #include <connman/log.h>
32 #include <gweb/gresolv.h>
35 #include "../src/connman.h"
36 #include "connman/agent.h"
37 #include "connman/vpn-dbus.h"
38 #include "vpn-provider.h"
40 #include "plugins/vpn.h"
42 static DBusConnection *connection;
43 static GHashTable *provider_hash;
44 static GSList *driver_list;
45 static int configuration_count;
46 static bool handle_routes;
65 enum vpn_provider_state state;
74 struct vpn_provider_driver *driver;
76 GHashTable *setting_strings;
77 GHashTable *user_routes;
78 GSList *user_networks;
81 struct vpn_ipconfig *ipconfig_ipv4;
82 struct vpn_ipconfig *ipconfig_ipv6;
88 struct connman_ipaddress *prev_ipv4_addr;
89 struct connman_ipaddress *prev_ipv6_addr;
92 static void append_properties(DBusMessageIter *iter,
93 struct vpn_provider *provider);
95 static void free_route(gpointer data)
97 struct vpn_route *route = data;
99 g_free(route->network);
100 g_free(route->netmask);
101 g_free(route->gateway);
106 static void free_setting(gpointer data)
108 struct vpn_setting *setting = data;
110 g_free(setting->value);
114 static void append_route(DBusMessageIter *iter, void *user_data)
116 struct vpn_route *route = user_data;
117 DBusMessageIter item;
120 connman_dbus_dict_open(iter, &item);
125 if (route->family == AF_INET)
127 else if (route->family == AF_INET6)
131 connman_dbus_dict_append_basic(&item, "ProtocolFamily",
132 DBUS_TYPE_INT32, &family);
135 connman_dbus_dict_append_basic(&item, "Network",
136 DBUS_TYPE_STRING, &route->network);
139 connman_dbus_dict_append_basic(&item, "Netmask",
140 DBUS_TYPE_STRING, &route->netmask);
143 connman_dbus_dict_append_basic(&item, "Gateway",
144 DBUS_TYPE_STRING, &route->gateway);
147 connman_dbus_dict_close(iter, &item);
150 static void append_routes(DBusMessageIter *iter, void *user_data)
152 GHashTable *routes = user_data;
157 append_route(iter, NULL);
161 g_hash_table_iter_init(&hash, routes);
163 while (g_hash_table_iter_next(&hash, &key, &value)) {
164 DBusMessageIter dict;
166 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT, NULL,
168 append_route(&dict, value);
169 dbus_message_iter_close_container(iter, &dict);
173 static void send_routes(struct vpn_provider *provider, GHashTable *routes,
176 connman_dbus_property_changed_array(provider->path,
177 VPN_CONNECTION_INTERFACE,
179 DBUS_TYPE_DICT_ENTRY,
184 static int provider_routes_changed(struct vpn_provider *provider)
186 DBG("provider %p", provider);
188 send_routes(provider, provider->routes, "ServerRoutes");
193 static GSList *read_route_dict(GSList *routes, DBusMessageIter *dicts)
195 DBusMessageIter dict, value, entry;
196 const char *network, *netmask, *gateway;
197 struct vpn_route *route;
201 dbus_message_iter_recurse(dicts, &entry);
203 network = netmask = gateway = NULL;
206 while (dbus_message_iter_get_arg_type(&entry) == DBUS_TYPE_DICT_ENTRY) {
208 dbus_message_iter_recurse(&entry, &dict);
209 dbus_message_iter_get_basic(&dict, &key);
211 dbus_message_iter_next(&dict);
212 dbus_message_iter_recurse(&dict, &value);
214 type = dbus_message_iter_get_arg_type(&value);
217 case DBUS_TYPE_INT32:
218 if (g_str_equal(key, "ProtocolFamily"))
219 dbus_message_iter_get_basic(&value, &family);
222 case DBUS_TYPE_STRING:
223 if (g_str_equal(key, "Network"))
224 dbus_message_iter_get_basic(&value, &network);
225 else if (g_str_equal(key, "Netmask"))
226 dbus_message_iter_get_basic(&value, &netmask);
227 else if (g_str_equal(key, "Gateway"))
228 dbus_message_iter_get_basic(&value, &gateway);
232 dbus_message_iter_next(&entry);
235 DBG("family %d network %s netmask %s gateway %s", family,
236 network, netmask, gateway);
238 if (!network || !netmask) {
239 DBG("Ignoring route as network/netmask is missing");
243 route = g_try_new(struct vpn_route, 1);
245 g_slist_free_full(routes, free_route);
249 if (family == PF_UNSPEC) {
250 family = connman_inet_check_ipaddress(network);
252 DBG("Cannot get address family of %s (%d/%s)", network,
253 family, gai_strerror(family));
272 route->family = family;
273 route->network = g_strdup(network);
274 route->netmask = g_strdup(netmask);
275 route->gateway = g_strdup(gateway);
277 routes = g_slist_prepend(routes, route);
281 static GSList *get_user_networks(DBusMessageIter *array)
283 DBusMessageIter entry;
286 while (dbus_message_iter_get_arg_type(array) == DBUS_TYPE_ARRAY) {
288 dbus_message_iter_recurse(array, &entry);
290 while (dbus_message_iter_get_arg_type(&entry) ==
292 DBusMessageIter dicts;
294 dbus_message_iter_recurse(&entry, &dicts);
296 while (dbus_message_iter_get_arg_type(&dicts) ==
299 list = read_route_dict(list, &dicts);
300 dbus_message_iter_next(&dicts);
303 dbus_message_iter_next(&entry);
306 dbus_message_iter_next(array);
312 static void set_user_networks(struct vpn_provider *provider, GSList *networks)
316 for (list = networks; list; list = g_slist_next(list)) {
317 struct vpn_route *route = list->data;
319 if (__vpn_provider_append_user_route(provider,
320 route->family, route->network,
321 route->netmask, route->gateway) != 0)
326 static void del_routes(struct vpn_provider *provider)
331 g_hash_table_iter_init(&hash, provider->user_routes);
332 while (handle_routes && g_hash_table_iter_next(&hash,
334 struct vpn_route *route = value;
335 if (route->family == AF_INET6) {
336 unsigned char prefixlen = atoi(route->netmask);
337 connman_inet_del_ipv6_network_route(provider->index,
341 connman_inet_del_host_route(provider->index,
345 g_hash_table_remove_all(provider->user_routes);
346 g_slist_free_full(provider->user_networks, free_route);
347 provider->user_networks = NULL;
350 static void send_value(const char *path, const char *key, const char *value)
352 const char *empty = "";
360 connman_dbus_property_changed_basic(path,
361 VPN_CONNECTION_INTERFACE,
367 static gboolean provider_send_changed(gpointer data)
369 struct vpn_provider *provider = data;
371 provider_routes_changed(provider);
373 provider->notify_id = 0;
378 static void provider_schedule_changed(struct vpn_provider *provider)
380 if (provider->notify_id != 0)
381 g_source_remove(provider->notify_id);
383 provider->notify_id = g_timeout_add(100, provider_send_changed,
387 static DBusMessage *get_properties(DBusConnection *conn,
388 DBusMessage *msg, void *data)
390 struct vpn_provider *provider = data;
392 DBusMessageIter array;
394 DBG("provider %p", provider);
396 reply = dbus_message_new_method_return(msg);
400 dbus_message_iter_init_append(reply, &array);
402 append_properties(&array, provider);
407 static DBusMessage *set_property(DBusConnection *conn, DBusMessage *msg,
410 struct vpn_provider *provider = data;
411 DBusMessageIter iter, value;
415 DBG("conn %p", conn);
417 if (provider->immutable)
418 return __connman_error_not_supported(msg);
420 if (!dbus_message_iter_init(msg, &iter))
421 return __connman_error_invalid_arguments(msg);
423 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_STRING)
424 return __connman_error_invalid_arguments(msg);
426 dbus_message_iter_get_basic(&iter, &name);
427 dbus_message_iter_next(&iter);
429 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_VARIANT)
430 return __connman_error_invalid_arguments(msg);
432 dbus_message_iter_recurse(&iter, &value);
434 type = dbus_message_iter_get_arg_type(&value);
436 if (g_str_equal(name, "UserRoutes")) {
439 if (type != DBUS_TYPE_ARRAY)
440 return __connman_error_invalid_arguments(msg);
442 networks = get_user_networks(&value);
444 del_routes(provider);
445 provider->user_networks = networks;
446 set_user_networks(provider, provider->user_networks);
449 send_routes(provider, provider->user_routes,
455 dbus_message_iter_get_basic(&value, &str);
456 vpn_provider_set_string(provider, name, str);
459 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
462 static DBusMessage *clear_property(DBusConnection *conn, DBusMessage *msg,
465 struct vpn_provider *provider = data;
468 DBG("conn %p", conn);
470 if (provider->immutable)
471 return __connman_error_not_supported(msg);
473 dbus_message_get_args(msg, NULL, DBUS_TYPE_STRING, &name,
476 if (g_str_equal(name, "UserRoutes")) {
477 del_routes(provider);
480 send_routes(provider, provider->user_routes, name);
481 } else if (vpn_provider_get_string(provider, name)) {
482 vpn_provider_set_string(provider, name, NULL);
484 return __connman_error_invalid_property(msg);
487 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
490 static DBusMessage *do_connect(DBusConnection *conn, DBusMessage *msg,
493 struct vpn_provider *provider = data;
496 DBG("conn %p provider %p", conn, provider);
498 err = __vpn_provider_connect(provider, msg);
500 return __connman_error_failed(msg, -err);
505 static DBusMessage *do_connect2(DBusConnection *conn, DBusMessage *msg,
508 return do_connect(conn, msg, data);
511 static DBusMessage *do_disconnect(DBusConnection *conn, DBusMessage *msg,
514 struct vpn_provider *provider = data;
517 DBG("conn %p provider %p", conn, provider);
519 err = __vpn_provider_disconnect(provider);
520 if (err < 0 && err != -EINPROGRESS)
521 return __connman_error_failed(msg, -err);
523 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
526 static const GDBusMethodTable connection_methods[] = {
527 { GDBUS_METHOD("GetProperties",
528 NULL, GDBUS_ARGS({ "properties", "a{sv}" }),
530 { GDBUS_METHOD("SetProperty",
531 GDBUS_ARGS({ "name", "s" }, { "value", "v" }),
532 NULL, set_property) },
533 { GDBUS_METHOD("ClearProperty",
534 GDBUS_ARGS({ "name", "s" }), NULL,
536 { GDBUS_ASYNC_METHOD("Connect", NULL, NULL, do_connect) },
537 { GDBUS_ASYNC_METHOD("Connect2",
538 GDBUS_ARGS({ "dbus_sender", "s" }),
539 NULL, do_connect2) },
540 { GDBUS_METHOD("Disconnect", NULL, NULL, do_disconnect) },
544 static const GDBusSignalTable connection_signals[] = {
545 { GDBUS_SIGNAL("PropertyChanged",
546 GDBUS_ARGS({ "name", "s" }, { "value", "v" })) },
550 static void resolv_result(GResolvResultStatus status,
551 char **results, gpointer user_data)
553 struct vpn_provider *provider = user_data;
555 DBG("status %d", status);
557 if (status == G_RESOLV_RESULT_STATUS_SUCCESS && results &&
558 g_strv_length(results) > 0)
559 provider->host_ip = g_strdupv(results);
561 vpn_provider_unref(provider);
563 /* Remove the resolver here so that it will not be left
564 * hanging around and cause double free in unregister_provider()
566 g_resolv_unref(provider->resolv);
567 provider->resolv = NULL;
570 static void provider_resolv_host_addr(struct vpn_provider *provider)
575 if (connman_inet_check_ipaddress(provider->host) > 0)
578 if (provider->host_ip)
582 * If the hostname is not numeric, try to resolv it. We do not wait
583 * the result as it might take some time. We will get the result
584 * before VPN will feed routes to us because VPN client will need
585 * the IP address also before VPN connection can be established.
587 provider->resolv = g_resolv_new(0);
588 if (!provider->resolv) {
589 DBG("Cannot resolv %s", provider->host);
593 DBG("Trying to resolv %s", provider->host);
595 vpn_provider_ref(provider);
597 g_resolv_lookup_hostname(provider->resolv, provider->host,
598 resolv_result, provider);
601 void __vpn_provider_append_properties(struct vpn_provider *provider,
602 DBusMessageIter *iter)
605 connman_dbus_dict_append_basic(iter, "Host",
606 DBUS_TYPE_STRING, &provider->host);
608 if (provider->domain)
609 connman_dbus_dict_append_basic(iter, "Domain",
610 DBUS_TYPE_STRING, &provider->domain);
613 connman_dbus_dict_append_basic(iter, "Type", DBUS_TYPE_STRING,
617 int __vpn_provider_append_user_route(struct vpn_provider *provider,
618 int family, const char *network,
619 const char *netmask, const char *gateway)
621 struct vpn_route *route;
622 char *key = g_strdup_printf("%d/%s/%s/%s", family, network,
623 netmask, gateway ? gateway : "");
625 DBG("family %d network %s netmask %s gw %s", family, network,
628 route = g_hash_table_lookup(provider->user_routes, key);
630 route = g_try_new0(struct vpn_route, 1);
632 connman_error("out of memory");
636 route->family = family;
637 route->network = g_strdup(network);
638 route->netmask = g_strdup(netmask);
639 route->gateway = g_strdup(gateway);
641 g_hash_table_replace(provider->user_routes, key, route);
648 static struct vpn_route *get_route(char *route_str)
650 char **elems = g_strsplit(route_str, "/", 0);
651 char *network, *netmask, *gateway, *family_str;
652 int family = PF_UNSPEC;
653 struct vpn_route *route = NULL;
658 family_str = elems[0];
661 if (!network || network[0] == '\0')
665 if (!netmask || netmask[0] == '\0')
670 route = g_try_new0(struct vpn_route, 1);
674 if (family_str[0] == '\0' || atoi(family_str) == 0) {
677 switch (family_str[0]) {
687 if (g_strrstr(network, ":")) {
688 if (family != PF_UNSPEC && family != AF_INET6)
689 DBG("You have IPv6 address but you have non IPv6 route");
690 } else if (g_strrstr(network, ".")) {
691 if (family != PF_UNSPEC && family != AF_INET)
692 DBG("You have IPv4 address but you have non IPv4 route");
694 if (!g_strrstr(netmask, ".")) {
695 /* We have netmask length */
697 struct in_addr netmask_in;
698 unsigned char prefix_len = 32;
700 long int value = strtol(netmask, &ptr, 10);
702 if (ptr != netmask && *ptr == '\0' && value <= 32)
705 addr = 0xffffffff << (32 - prefix_len);
706 netmask_in.s_addr = htonl(addr);
707 netmask = inet_ntoa(netmask_in);
709 DBG("network %s netmask %s", network, netmask);
713 if (family == PF_UNSPEC) {
714 family = connman_inet_check_ipaddress(network);
715 if (family < 0 || family == PF_UNSPEC)
719 route->family = family;
720 route->network = g_strdup(network);
721 route->netmask = g_strdup(netmask);
722 route->gateway = g_strdup(gateway);
729 static GSList *get_routes(gchar **networks)
731 struct vpn_route *route;
732 GSList *routes = NULL;
735 for (i = 0; networks[i]; i++) {
736 route = get_route(networks[i]);
738 routes = g_slist_prepend(routes, route);
744 static int provider_load_from_keyfile(struct vpn_provider *provider,
750 gsize length, num_user_networks;
751 gchar **networks = NULL;
753 settings = g_key_file_get_keys(keyfile, provider->identifier, &length,
756 g_key_file_free(keyfile);
760 while (idx < length) {
763 if (g_str_equal(key, "Networks")) {
764 networks = __vpn_config_get_string_list(keyfile,
765 provider->identifier,
769 provider->user_networks = get_routes(networks);
772 value = __vpn_config_get_string(keyfile,
773 provider->identifier,
775 vpn_provider_set_string(provider, key,
782 g_strfreev(settings);
783 g_strfreev(networks);
785 if (provider->user_networks)
786 set_user_networks(provider, provider->user_networks);
792 static int vpn_provider_load(struct vpn_provider *provider)
796 DBG("provider %p", provider);
798 keyfile = __connman_storage_load_provider(provider->identifier);
802 provider_load_from_keyfile(provider, keyfile);
804 g_key_file_free(keyfile);
808 static gchar **create_network_list(GSList *networks, gsize *count)
811 gchar **result = NULL;
813 unsigned int num_elems = 0;
815 for (list = networks; list; list = g_slist_next(list)) {
816 struct vpn_route *route = list->data;
819 prev_result = result;
820 result = g_try_realloc(result,
821 (num_elems + 1) * sizeof(gchar *));
827 switch (route->family) {
839 result[num_elems] = g_strdup_printf("%d/%s/%s/%s",
840 family, route->network, route->netmask,
841 !route->gateway ? "" : route->gateway);
846 prev_result = result;
847 result = g_try_realloc(result, (num_elems + 1) * sizeof(gchar *));
853 result[num_elems] = NULL;
858 static int vpn_provider_save(struct vpn_provider *provider)
862 DBG("provider %p immutable %s", provider,
863 provider->immutable ? "yes" : "no");
865 if (provider->immutable) {
867 * Do not save providers that are provisioned via .config
873 keyfile = g_key_file_new();
877 g_key_file_set_string(keyfile, provider->identifier,
878 "Name", provider->name);
879 g_key_file_set_string(keyfile, provider->identifier,
880 "Type", provider->type);
881 g_key_file_set_string(keyfile, provider->identifier,
882 "Host", provider->host);
883 g_key_file_set_string(keyfile, provider->identifier,
884 "VPN.Domain", provider->domain);
885 if (provider->user_networks) {
889 networks = create_network_list(provider->user_networks,
892 g_key_file_set_string_list(keyfile,
893 provider->identifier,
895 (const gchar ** const)networks,
897 g_strfreev(networks);
901 if (provider->config_file && strlen(provider->config_file) > 0)
902 g_key_file_set_string(keyfile, provider->identifier,
903 "Config.file", provider->config_file);
905 if (provider->config_entry &&
906 strlen(provider->config_entry) > 0)
907 g_key_file_set_string(keyfile, provider->identifier,
908 "Config.ident", provider->config_entry);
910 if (provider->driver && provider->driver->save)
911 provider->driver->save(provider, keyfile);
913 __connman_storage_save_provider(keyfile, provider->identifier);
914 g_key_file_free(keyfile);
919 struct vpn_provider *__vpn_provider_lookup(const char *identifier)
921 struct vpn_provider *provider = NULL;
923 provider = g_hash_table_lookup(provider_hash, identifier);
928 static bool match_driver(struct vpn_provider *provider,
929 struct vpn_provider_driver *driver)
931 if (g_strcmp0(driver->name, provider->type) == 0)
937 static int provider_probe(struct vpn_provider *provider)
941 DBG("provider %p driver %p name %s", provider, provider->driver,
944 if (provider->driver)
947 for (list = driver_list; list; list = list->next) {
948 struct vpn_provider_driver *driver = list->data;
950 if (!match_driver(provider, driver))
953 DBG("driver %p name %s", driver, driver->name);
955 if (driver->probe && driver->probe(provider) == 0) {
956 provider->driver = driver;
961 if (!provider->driver)
967 static void provider_remove(struct vpn_provider *provider)
969 if (provider->driver) {
970 provider->driver->remove(provider);
971 provider->driver = NULL;
975 static int provider_register(struct vpn_provider *provider)
977 return provider_probe(provider);
980 static void provider_unregister(struct vpn_provider *provider)
982 provider_remove(provider);
985 struct vpn_provider *
986 vpn_provider_ref_debug(struct vpn_provider *provider,
987 const char *file, int line, const char *caller)
989 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount + 1,
992 __sync_fetch_and_add(&provider->refcount, 1);
997 static void provider_destruct(struct vpn_provider *provider)
999 DBG("provider %p", provider);
1001 if (provider->notify_id != 0)
1002 g_source_remove(provider->notify_id);
1004 g_free(provider->name);
1005 g_free(provider->type);
1006 g_free(provider->host);
1007 g_free(provider->domain);
1008 g_free(provider->identifier);
1009 g_free(provider->path);
1010 g_slist_free_full(provider->user_networks, free_route);
1011 g_strfreev(provider->nameservers);
1012 g_hash_table_destroy(provider->routes);
1013 g_hash_table_destroy(provider->user_routes);
1014 g_hash_table_destroy(provider->setting_strings);
1015 if (provider->resolv) {
1016 g_resolv_unref(provider->resolv);
1017 provider->resolv = NULL;
1019 __vpn_ipconfig_unref(provider->ipconfig_ipv4);
1020 __vpn_ipconfig_unref(provider->ipconfig_ipv6);
1022 g_strfreev(provider->host_ip);
1023 g_free(provider->config_file);
1024 g_free(provider->config_entry);
1025 connman_ipaddress_free(provider->prev_ipv4_addr);
1026 connman_ipaddress_free(provider->prev_ipv6_addr);
1030 void vpn_provider_unref_debug(struct vpn_provider *provider,
1031 const char *file, int line, const char *caller)
1033 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount - 1,
1034 file, line, caller);
1036 if (__sync_fetch_and_sub(&provider->refcount, 1) != 1)
1039 provider_remove(provider);
1041 provider_destruct(provider);
1044 static void configuration_count_add(void)
1046 DBG("count %d", configuration_count + 1);
1048 __sync_fetch_and_add(&configuration_count, 1);
1051 static void configuration_count_del(void)
1053 DBG("count %d", configuration_count - 1);
1055 if (__sync_fetch_and_sub(&configuration_count, 1) != 1)
1059 int __vpn_provider_disconnect(struct vpn_provider *provider)
1063 DBG("provider %p", provider);
1065 if (provider->driver && provider->driver->disconnect)
1066 err = provider->driver->disconnect(provider);
1070 if (err == -EINPROGRESS)
1071 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1076 static void connect_cb(struct vpn_provider *provider, void *user_data,
1079 DBusMessage *pending = user_data;
1081 DBG("provider %p user %p error %d", provider, user_data, error);
1084 DBusMessage *reply = __connman_error_failed(pending, error);
1086 g_dbus_send_message(connection, reply);
1088 vpn_provider_indicate_error(provider,
1089 VPN_PROVIDER_ERROR_CONNECT_FAILED);
1090 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1092 g_dbus_send_reply(connection, pending, DBUS_TYPE_INVALID);
1094 dbus_message_unref(pending);
1097 int __vpn_provider_connect(struct vpn_provider *provider, DBusMessage *msg)
1101 DBG("provider %p", provider);
1103 if (provider->driver && provider->driver->connect) {
1104 const char *dbus_sender = dbus_message_get_sender(msg);
1106 dbus_message_ref(msg);
1108 if (dbus_message_has_signature(msg,
1109 DBUS_TYPE_STRING_AS_STRING)) {
1110 const char *sender = NULL;
1112 dbus_message_get_args(msg, NULL, DBUS_TYPE_STRING,
1113 &sender, DBUS_TYPE_INVALID);
1114 if (sender && sender[0])
1115 dbus_sender = sender;
1118 err = provider->driver->connect(provider, connect_cb,
1123 if (err == -EINPROGRESS)
1124 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1129 static void connection_removed_signal(struct vpn_provider *provider)
1131 DBusMessage *signal;
1132 DBusMessageIter iter;
1134 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1135 VPN_MANAGER_INTERFACE, "ConnectionRemoved");
1139 dbus_message_iter_init_append(signal, &iter);
1140 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1142 dbus_connection_send(connection, signal, NULL);
1143 dbus_message_unref(signal);
1146 static char *get_ident(const char *path)
1153 pos = strrchr(path, '/');
1160 int __vpn_provider_remove(const char *path)
1162 struct vpn_provider *provider;
1165 DBG("path %s", path);
1167 ident = get_ident(path);
1169 provider = __vpn_provider_lookup(ident);
1171 return __vpn_provider_delete(provider);
1176 int __vpn_provider_delete(struct vpn_provider *provider)
1178 DBG("Deleting VPN %s", provider->identifier);
1180 connection_removed_signal(provider);
1182 provider_unregister(provider);
1184 __connman_storage_remove_provider(provider->identifier);
1186 g_hash_table_remove(provider_hash, provider->identifier);
1191 static void append_ipv4(DBusMessageIter *iter, void *user_data)
1193 struct vpn_provider *provider = user_data;
1194 const char *address, *gateway, *peer;
1196 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv4);
1199 struct in_addr netmask;
1203 prefixlen = __vpn_ipconfig_get_prefixlen(
1204 provider->ipconfig_ipv4);
1206 addr = 0xffffffff << (32 - prefixlen);
1207 netmask.s_addr = htonl(addr);
1208 mask = inet_ntoa(netmask);
1210 connman_dbus_dict_append_basic(iter, "Address",
1211 DBUS_TYPE_STRING, &address);
1213 connman_dbus_dict_append_basic(iter, "Netmask",
1214 DBUS_TYPE_STRING, &mask);
1217 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv4);
1219 connman_dbus_dict_append_basic(iter, "Gateway",
1220 DBUS_TYPE_STRING, &gateway);
1222 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv4);
1224 connman_dbus_dict_append_basic(iter, "Peer",
1225 DBUS_TYPE_STRING, &peer);
1228 static void append_ipv6(DBusMessageIter *iter, void *user_data)
1230 struct vpn_provider *provider = user_data;
1231 const char *address, *gateway, *peer;
1233 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv6);
1235 unsigned char prefixlen;
1237 connman_dbus_dict_append_basic(iter, "Address",
1238 DBUS_TYPE_STRING, &address);
1240 prefixlen = __vpn_ipconfig_get_prefixlen(
1241 provider->ipconfig_ipv6);
1243 connman_dbus_dict_append_basic(iter, "PrefixLength",
1244 DBUS_TYPE_BYTE, &prefixlen);
1247 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv6);
1249 connman_dbus_dict_append_basic(iter, "Gateway",
1250 DBUS_TYPE_STRING, &gateway);
1252 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv6);
1254 connman_dbus_dict_append_basic(iter, "Peer",
1255 DBUS_TYPE_STRING, &peer);
1258 static const char *state2string(enum vpn_provider_state state)
1261 case VPN_PROVIDER_STATE_UNKNOWN:
1263 case VPN_PROVIDER_STATE_IDLE:
1265 case VPN_PROVIDER_STATE_CONNECT:
1266 return "configuration";
1267 case VPN_PROVIDER_STATE_READY:
1269 case VPN_PROVIDER_STATE_DISCONNECT:
1270 return "disconnect";
1271 case VPN_PROVIDER_STATE_FAILURE:
1278 static void append_nameservers(DBusMessageIter *iter, char **servers)
1284 for (i = 0; servers[i]; i++) {
1285 DBG("servers[%d] %s", i, servers[i]);
1286 dbus_message_iter_append_basic(iter,
1287 DBUS_TYPE_STRING, &servers[i]);
1291 static void append_dns(DBusMessageIter *iter, void *user_data)
1293 struct vpn_provider *provider = user_data;
1295 if (provider->nameservers)
1296 append_nameservers(iter, provider->nameservers);
1299 static int provider_indicate_state(struct vpn_provider *provider,
1300 enum vpn_provider_state state)
1303 enum vpn_provider_state old_state;
1305 str = state2string(state);
1306 DBG("provider %p state %s/%d", provider, str, state);
1310 old_state = provider->state;
1311 provider->state = state;
1313 if (state == VPN_PROVIDER_STATE_READY) {
1314 connman_dbus_property_changed_basic(provider->path,
1315 VPN_CONNECTION_INTERFACE, "Index",
1316 DBUS_TYPE_INT32, &provider->index);
1318 if (provider->family == AF_INET)
1319 connman_dbus_property_changed_dict(provider->path,
1320 VPN_CONNECTION_INTERFACE, "IPv4",
1321 append_ipv4, provider);
1322 else if (provider->family == AF_INET6)
1323 connman_dbus_property_changed_dict(provider->path,
1324 VPN_CONNECTION_INTERFACE, "IPv6",
1325 append_ipv6, provider);
1327 connman_dbus_property_changed_array(provider->path,
1328 VPN_CONNECTION_INTERFACE,
1331 append_dns, provider);
1333 if (provider->domain)
1334 connman_dbus_property_changed_basic(provider->path,
1335 VPN_CONNECTION_INTERFACE,
1341 if (old_state != state)
1342 connman_dbus_property_changed_basic(provider->path,
1343 VPN_CONNECTION_INTERFACE, "State",
1344 DBUS_TYPE_STRING, &str);
1349 static void append_state(DBusMessageIter *iter,
1350 struct vpn_provider *provider)
1354 switch (provider->state) {
1355 case VPN_PROVIDER_STATE_UNKNOWN:
1356 case VPN_PROVIDER_STATE_IDLE:
1359 case VPN_PROVIDER_STATE_CONNECT:
1360 str = "configuration";
1362 case VPN_PROVIDER_STATE_READY:
1365 case VPN_PROVIDER_STATE_DISCONNECT:
1368 case VPN_PROVIDER_STATE_FAILURE:
1373 connman_dbus_dict_append_basic(iter, "State",
1374 DBUS_TYPE_STRING, &str);
1377 static void append_properties(DBusMessageIter *iter,
1378 struct vpn_provider *provider)
1380 DBusMessageIter dict;
1381 GHashTableIter hash;
1382 gpointer value, key;
1383 dbus_bool_t immutable;
1385 connman_dbus_dict_open(iter, &dict);
1387 append_state(&dict, provider);
1390 connman_dbus_dict_append_basic(&dict, "Type",
1391 DBUS_TYPE_STRING, &provider->type);
1394 connman_dbus_dict_append_basic(&dict, "Name",
1395 DBUS_TYPE_STRING, &provider->name);
1398 connman_dbus_dict_append_basic(&dict, "Host",
1399 DBUS_TYPE_STRING, &provider->host);
1400 if (provider->index >= 0)
1401 connman_dbus_dict_append_basic(&dict, "Index",
1402 DBUS_TYPE_INT32, &provider->index);
1403 if (provider->domain)
1404 connman_dbus_dict_append_basic(&dict, "Domain",
1405 DBUS_TYPE_STRING, &provider->domain);
1407 immutable = provider->immutable;
1408 connman_dbus_dict_append_basic(&dict, "Immutable", DBUS_TYPE_BOOLEAN,
1411 if (provider->family == AF_INET)
1412 connman_dbus_dict_append_dict(&dict, "IPv4", append_ipv4,
1414 else if (provider->family == AF_INET6)
1415 connman_dbus_dict_append_dict(&dict, "IPv6", append_ipv6,
1418 connman_dbus_dict_append_array(&dict, "Nameservers",
1419 DBUS_TYPE_STRING, append_dns, provider);
1421 connman_dbus_dict_append_array(&dict, "UserRoutes",
1422 DBUS_TYPE_DICT_ENTRY, append_routes,
1423 provider->user_routes);
1425 connman_dbus_dict_append_array(&dict, "ServerRoutes",
1426 DBUS_TYPE_DICT_ENTRY, append_routes,
1429 if (provider->setting_strings) {
1430 g_hash_table_iter_init(&hash, provider->setting_strings);
1432 while (g_hash_table_iter_next(&hash, &key, &value)) {
1433 struct vpn_setting *setting = value;
1435 if (!setting->hide_value &&
1437 connman_dbus_dict_append_basic(&dict, key,
1443 connman_dbus_dict_close(iter, &dict);
1446 static void connection_added_signal(struct vpn_provider *provider)
1448 DBusMessage *signal;
1449 DBusMessageIter iter;
1451 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1452 VPN_MANAGER_INTERFACE, "ConnectionAdded");
1456 dbus_message_iter_init_append(signal, &iter);
1457 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1459 append_properties(&iter, provider);
1461 dbus_connection_send(connection, signal, NULL);
1462 dbus_message_unref(signal);
1465 static bool check_host(char **hosts, char *host)
1472 for (i = 0; hosts[i]; i++) {
1473 if (g_strcmp0(hosts[i], host) == 0)
1480 static void provider_append_routes(gpointer key, gpointer value,
1483 struct vpn_route *route = value;
1484 struct vpn_provider *provider = user_data;
1485 int index = provider->index;
1491 * If the VPN administrator/user has given a route to
1492 * VPN server, then we must discard that because the
1493 * server cannot be contacted via VPN tunnel.
1495 if (check_host(provider->host_ip, route->network)) {
1496 DBG("Discarding VPN route to %s via %s at index %d",
1497 route->network, route->gateway, index);
1501 if (route->family == AF_INET6) {
1502 unsigned char prefix_len = atoi(route->netmask);
1504 connman_inet_add_ipv6_network_route(index, route->network,
1508 connman_inet_add_network_route(index, route->network,
1514 static int set_connected(struct vpn_provider *provider,
1517 struct vpn_ipconfig *ipconfig;
1519 DBG("provider %p id %s connected %d", provider,
1520 provider->identifier, connected);
1523 if (provider->family == AF_INET6)
1524 ipconfig = provider->ipconfig_ipv6;
1526 ipconfig = provider->ipconfig_ipv4;
1528 __vpn_ipconfig_address_add(ipconfig, provider->family);
1531 __vpn_ipconfig_gateway_add(ipconfig, provider->family);
1533 provider_indicate_state(provider,
1534 VPN_PROVIDER_STATE_READY);
1536 g_hash_table_foreach(provider->routes, provider_append_routes,
1539 g_hash_table_foreach(provider->user_routes,
1540 provider_append_routes, provider);
1543 provider_indicate_state(provider,
1544 VPN_PROVIDER_STATE_DISCONNECT);
1546 provider_indicate_state(provider,
1547 VPN_PROVIDER_STATE_IDLE);
1553 int vpn_provider_set_state(struct vpn_provider *provider,
1554 enum vpn_provider_state state)
1560 case VPN_PROVIDER_STATE_UNKNOWN:
1562 case VPN_PROVIDER_STATE_IDLE:
1563 return set_connected(provider, false);
1564 case VPN_PROVIDER_STATE_CONNECT:
1565 return provider_indicate_state(provider, state);
1566 case VPN_PROVIDER_STATE_READY:
1567 return set_connected(provider, true);
1568 case VPN_PROVIDER_STATE_DISCONNECT:
1569 return provider_indicate_state(provider, state);
1570 case VPN_PROVIDER_STATE_FAILURE:
1571 return provider_indicate_state(provider, state);
1576 int vpn_provider_indicate_error(struct vpn_provider *provider,
1577 enum vpn_provider_error error)
1579 DBG("provider %p id %s error %d", provider, provider->identifier,
1582 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1585 case VPN_PROVIDER_ERROR_UNKNOWN:
1586 case VPN_PROVIDER_ERROR_CONNECT_FAILED:
1589 case VPN_PROVIDER_ERROR_LOGIN_FAILED:
1590 case VPN_PROVIDER_ERROR_AUTH_FAILED:
1591 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_IDLE);
1595 if (provider->driver && provider->driver->set_state)
1596 provider->driver->set_state(provider, provider->state);
1601 static int connection_unregister(struct vpn_provider *provider)
1603 DBG("provider %p path %s", provider, provider->path);
1605 if (!provider->path)
1608 g_dbus_unregister_interface(connection, provider->path,
1609 VPN_CONNECTION_INTERFACE);
1611 g_free(provider->path);
1612 provider->path = NULL;
1617 static int connection_register(struct vpn_provider *provider)
1619 DBG("provider %p path %s", provider, provider->path);
1624 provider->path = g_strdup_printf("%s/connection/%s", VPN_PATH,
1625 provider->identifier);
1627 g_dbus_register_interface(connection, provider->path,
1628 VPN_CONNECTION_INTERFACE,
1629 connection_methods, connection_signals,
1630 NULL, provider, NULL);
1635 static void unregister_provider(gpointer data)
1637 struct vpn_provider *provider = data;
1639 configuration_count_del();
1641 connection_unregister(provider);
1643 /* If the provider has any DNS resolver queries pending,
1644 * they need to be cleared here because the unref will not
1645 * be able to do that (because the provider_resolv_host_addr()
1646 * has increased the ref count by 1). This is quite rare as
1647 * normally the resolving either returns a value or has a
1648 * timeout which clears the memory. Typically resolv_result() will
1649 * unref the provider but in this case that call has not yet
1652 if (provider->resolv)
1653 vpn_provider_unref(provider);
1655 vpn_provider_unref(provider);
1658 static void provider_initialize(struct vpn_provider *provider)
1660 DBG("provider %p", provider);
1662 provider->index = 0;
1664 provider->name = NULL;
1665 provider->type = NULL;
1666 provider->domain = NULL;
1667 provider->identifier = NULL;
1668 provider->immutable = false;
1669 provider->user_networks = NULL;
1670 provider->routes = g_hash_table_new_full(g_direct_hash, g_direct_equal,
1672 provider->user_routes = g_hash_table_new_full(g_str_hash, g_str_equal,
1673 g_free, free_route);
1674 provider->setting_strings = g_hash_table_new_full(g_str_hash,
1675 g_str_equal, g_free, free_setting);
1678 static struct vpn_provider *vpn_provider_new(void)
1680 struct vpn_provider *provider;
1682 provider = g_try_new0(struct vpn_provider, 1);
1686 provider->refcount = 1;
1688 DBG("provider %p", provider);
1689 provider_initialize(provider);
1694 static struct vpn_provider *vpn_provider_get(const char *identifier)
1696 struct vpn_provider *provider;
1698 provider = g_hash_table_lookup(provider_hash, identifier);
1702 provider = vpn_provider_new();
1706 DBG("provider %p", provider);
1708 provider->identifier = g_strdup(identifier);
1710 g_hash_table_insert(provider_hash, provider->identifier, provider);
1712 configuration_count_add();
1717 static void provider_dbus_ident(char *ident)
1719 int i, len = strlen(ident);
1721 for (i = 0; i < len; i++) {
1722 if (ident[i] >= '0' && ident[i] <= '9')
1724 if (ident[i] >= 'a' && ident[i] <= 'z')
1726 if (ident[i] >= 'A' && ident[i] <= 'Z')
1732 static struct vpn_provider *provider_create_from_keyfile(GKeyFile *keyfile,
1735 struct vpn_provider *provider;
1737 if (!keyfile || !ident)
1740 provider = __vpn_provider_lookup(ident);
1742 provider = vpn_provider_get(ident);
1744 DBG("can not create provider");
1748 provider_load_from_keyfile(provider, keyfile);
1750 if (!provider->name || !provider->host ||
1751 !provider->domain) {
1752 DBG("cannot get name, host or domain");
1753 vpn_provider_unref(provider);
1757 if (provider_register(provider) == 0)
1758 connection_register(provider);
1763 static void provider_create_all_from_type(const char *provider_type)
1770 DBG("provider type %s", provider_type);
1772 providers = __connman_storage_get_providers();
1777 for (i = 0; providers[i]; i += 1) {
1779 if (strncmp(providers[i], "provider_", 9) != 0)
1782 id = providers[i] + 9;
1783 keyfile = __connman_storage_load_provider(id);
1788 type = __vpn_config_get_string(keyfile, id, "Type", NULL);
1790 DBG("keyfile %p id %s type %s", keyfile, id, type);
1792 if (strcmp(provider_type, type) != 0) {
1794 g_key_file_free(keyfile);
1798 if (!provider_create_from_keyfile(keyfile, id))
1799 DBG("could not create provider");
1802 g_key_file_free(keyfile);
1804 g_strfreev(providers);
1807 char *__vpn_provider_create_identifier(const char *host, const char *domain)
1811 ident = g_strdup_printf("%s_%s", host, domain);
1815 provider_dbus_ident(ident);
1820 int __vpn_provider_create(DBusMessage *msg)
1822 struct vpn_provider *provider;
1823 DBusMessageIter iter, array;
1824 const char *type = NULL, *name = NULL;
1825 const char *host = NULL, *domain = NULL;
1826 GSList *networks = NULL;
1830 dbus_message_iter_init(msg, &iter);
1831 dbus_message_iter_recurse(&iter, &array);
1833 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1834 DBusMessageIter entry, value;
1837 dbus_message_iter_recurse(&array, &entry);
1838 dbus_message_iter_get_basic(&entry, &key);
1840 dbus_message_iter_next(&entry);
1841 dbus_message_iter_recurse(&entry, &value);
1843 switch (dbus_message_iter_get_arg_type(&value)) {
1844 case DBUS_TYPE_STRING:
1845 if (g_str_equal(key, "Type"))
1846 dbus_message_iter_get_basic(&value, &type);
1847 else if (g_str_equal(key, "Name"))
1848 dbus_message_iter_get_basic(&value, &name);
1849 else if (g_str_equal(key, "Host"))
1850 dbus_message_iter_get_basic(&value, &host);
1851 else if (g_str_equal(key, "VPN.Domain") ||
1852 g_str_equal(key, "Domain"))
1853 dbus_message_iter_get_basic(&value, &domain);
1855 case DBUS_TYPE_ARRAY:
1856 if (g_str_equal(key, "UserRoutes"))
1857 networks = get_user_networks(&value);
1861 dbus_message_iter_next(&array);
1864 if (!host || !domain)
1867 DBG("Type %s name %s networks %p", type, name, networks);
1872 ident = __vpn_provider_create_identifier(host, domain);
1873 DBG("ident %s", ident);
1875 provider = __vpn_provider_lookup(ident);
1877 provider = vpn_provider_get(ident);
1879 DBG("can not create provider");
1884 provider->host = g_strdup(host);
1885 provider->domain = g_strdup(domain);
1886 provider->name = g_strdup(name);
1887 provider->type = g_strdup(type);
1889 if (provider_register(provider) == 0)
1890 vpn_provider_load(provider);
1892 provider_resolv_host_addr(provider);
1896 g_slist_free_full(provider->user_networks, free_route);
1897 provider->user_networks = networks;
1898 set_user_networks(provider, provider->user_networks);
1901 dbus_message_iter_init(msg, &iter);
1902 dbus_message_iter_recurse(&iter, &array);
1904 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1905 DBusMessageIter entry, value;
1906 const char *key, *str;
1908 dbus_message_iter_recurse(&array, &entry);
1909 dbus_message_iter_get_basic(&entry, &key);
1911 dbus_message_iter_next(&entry);
1912 dbus_message_iter_recurse(&entry, &value);
1914 switch (dbus_message_iter_get_arg_type(&value)) {
1915 case DBUS_TYPE_STRING:
1916 dbus_message_iter_get_basic(&value, &str);
1917 vpn_provider_set_string(provider, key, str);
1921 dbus_message_iter_next(&array);
1926 vpn_provider_save(provider);
1928 err = provider_register(provider);
1929 if (err != 0 && err != -EALREADY)
1932 connection_register(provider);
1934 DBG("provider %p index %d path %s", provider, provider->index,
1937 g_dbus_send_reply(connection, msg,
1938 DBUS_TYPE_OBJECT_PATH, &provider->path,
1941 connection_added_signal(provider);
1946 static const char *get_string(GHashTable *settings, const char *key)
1948 DBG("settings %p key %s", settings, key);
1950 return g_hash_table_lookup(settings, key);
1953 static GSList *parse_user_networks(const char *network_str)
1955 GSList *networks = NULL;
1962 elems = g_strsplit(network_str, ",", 0);
1967 struct vpn_route *vpn_route;
1968 char *network, *netmask, *gateway;
1972 route = g_strsplit(elems[i], "/", 0);
1977 if (!network || network[0] == '\0')
1980 family = connman_inet_check_ipaddress(network);
1982 DBG("Cannot get address family of %s (%d/%s)", network,
1983 family, gai_strerror(family));
1994 DBG("Unsupported address family %d", family);
1999 if (!netmask || netmask[0] == '\0')
2004 vpn_route = g_try_new0(struct vpn_route, 1);
2010 vpn_route->family = family;
2011 vpn_route->network = g_strdup(network);
2012 vpn_route->netmask = g_strdup(netmask);
2013 vpn_route->gateway = g_strdup(gateway);
2015 DBG("route %s/%s%s%s", network, netmask,
2016 gateway ? " via " : "", gateway ? gateway : "");
2018 networks = g_slist_prepend(networks, vpn_route);
2027 return g_slist_reverse(networks);
2030 int __vpn_provider_create_from_config(GHashTable *settings,
2031 const char *config_ident,
2032 const char *config_entry)
2034 struct vpn_provider *provider;
2035 const char *type, *name, *host, *domain, *networks_str;
2038 GHashTableIter hash;
2039 gpointer value, key;
2042 type = get_string(settings, "Type");
2043 name = get_string(settings, "Name");
2044 host = get_string(settings, "Host");
2045 domain = get_string(settings, "Domain");
2046 networks_str = get_string(settings, "Networks");
2047 networks = parse_user_networks(networks_str);
2049 if (!host || !domain) {
2054 DBG("type %s name %s networks %s", type, name, networks_str);
2056 if (!type || !name) {
2061 ident = __vpn_provider_create_identifier(host, domain);
2062 DBG("ident %s", ident);
2064 provider = __vpn_provider_lookup(ident);
2066 provider = vpn_provider_get(ident);
2068 DBG("can not create provider");
2073 provider->host = g_strdup(host);
2074 provider->domain = g_strdup(domain);
2075 provider->name = g_strdup(name);
2076 provider->type = g_ascii_strdown(type, -1);
2078 provider->config_file = g_strdup(config_ident);
2079 provider->config_entry = g_strdup(config_entry);
2081 provider_register(provider);
2083 provider_resolv_host_addr(provider);
2087 g_slist_free_full(provider->user_networks, free_route);
2088 provider->user_networks = networks;
2089 set_user_networks(provider, provider->user_networks);
2092 g_hash_table_iter_init(&hash, settings);
2094 while (g_hash_table_iter_next(&hash, &key, &value))
2095 __vpn_provider_set_string_immutable(provider, key, value);
2097 provider->immutable = true;
2099 vpn_provider_save(provider);
2101 err = provider_register(provider);
2102 if (err != 0 && err != -EALREADY)
2105 connection_register(provider);
2107 DBG("provider %p index %d path %s", provider, provider->index,
2110 connection_added_signal(provider);
2118 g_slist_free_full(networks, free_route);
2123 static void append_connection_structs(DBusMessageIter *iter, void *user_data)
2125 DBusMessageIter entry;
2126 GHashTableIter hash;
2127 gpointer value, key;
2129 g_hash_table_iter_init(&hash, provider_hash);
2131 while (g_hash_table_iter_next(&hash, &key, &value)) {
2132 struct vpn_provider *provider = value;
2134 DBG("path %s", provider->path);
2136 if (!provider->identifier)
2139 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT,
2141 dbus_message_iter_append_basic(&entry, DBUS_TYPE_OBJECT_PATH,
2143 append_properties(&entry, provider);
2144 dbus_message_iter_close_container(iter, &entry);
2148 DBusMessage *__vpn_provider_get_connections(DBusMessage *msg)
2154 reply = dbus_message_new_method_return(msg);
2158 __connman_dbus_append_objpath_dict_array(reply,
2159 append_connection_structs, NULL);
2164 const char *__vpn_provider_get_ident(struct vpn_provider *provider)
2169 return provider->identifier;
2172 static int set_string(struct vpn_provider *provider,
2173 const char *key, const char *value,
2174 bool hide_value, bool immutable)
2176 DBG("provider %p key %s immutable %s value %s", provider, key,
2177 immutable ? "yes" : "no",
2178 hide_value ? "<not printed>" : value);
2180 if (g_str_equal(key, "Type")) {
2181 g_free(provider->type);
2182 provider->type = g_ascii_strdown(value, -1);
2183 send_value(provider->path, "Type", provider->type);
2184 } else if (g_str_equal(key, "Name")) {
2185 g_free(provider->name);
2186 provider->name = g_strdup(value);
2187 send_value(provider->path, "Name", provider->name);
2188 } else if (g_str_equal(key, "Host")) {
2189 g_free(provider->host);
2190 provider->host = g_strdup(value);
2191 send_value(provider->path, "Host", provider->host);
2192 } else if (g_str_equal(key, "VPN.Domain") ||
2193 g_str_equal(key, "Domain")) {
2194 g_free(provider->domain);
2195 provider->domain = g_strdup(value);
2196 send_value(provider->path, "Domain", provider->domain);
2198 struct vpn_setting *setting;
2200 setting = g_hash_table_lookup(provider->setting_strings, key);
2201 if (setting && !immutable &&
2202 setting->immutable) {
2203 DBG("Trying to set immutable variable %s", key);
2207 setting = g_try_new0(struct vpn_setting, 1);
2211 setting->value = g_strdup(value);
2212 setting->hide_value = hide_value;
2215 setting->immutable = true;
2218 send_value(provider->path, key, setting->value);
2220 g_hash_table_replace(provider->setting_strings,
2221 g_strdup(key), setting);
2227 int vpn_provider_set_string(struct vpn_provider *provider,
2228 const char *key, const char *value)
2230 return set_string(provider, key, value, false, false);
2233 int vpn_provider_set_string_hide_value(struct vpn_provider *provider,
2234 const char *key, const char *value)
2236 return set_string(provider, key, value, true, false);
2239 int __vpn_provider_set_string_immutable(struct vpn_provider *provider,
2240 const char *key, const char *value)
2242 return set_string(provider, key, value, false, true);
2245 const char *vpn_provider_get_string(struct vpn_provider *provider,
2248 struct vpn_setting *setting;
2250 DBG("provider %p key %s", provider, key);
2252 if (g_str_equal(key, "Type"))
2253 return provider->type;
2254 else if (g_str_equal(key, "Name"))
2255 return provider->name;
2256 else if (g_str_equal(key, "Host"))
2257 return provider->host;
2258 else if (g_str_equal(key, "HostIP")) {
2259 if (!provider->host_ip ||
2260 !provider->host_ip[0])
2261 return provider->host;
2263 return provider->host_ip[0];
2264 } else if (g_str_equal(key, "VPN.Domain") ||
2265 g_str_equal(key, "Domain"))
2266 return provider->domain;
2268 setting = g_hash_table_lookup(provider->setting_strings, key);
2272 return setting->value;
2275 bool __vpn_provider_check_routes(struct vpn_provider *provider)
2280 if (provider->user_routes &&
2281 g_hash_table_size(provider->user_routes) > 0)
2284 if (provider->routes &&
2285 g_hash_table_size(provider->routes) > 0)
2291 void *vpn_provider_get_data(struct vpn_provider *provider)
2293 return provider->driver_data;
2296 void vpn_provider_set_data(struct vpn_provider *provider, void *data)
2298 provider->driver_data = data;
2301 void vpn_provider_set_index(struct vpn_provider *provider, int index)
2303 DBG("index %d provider %p", index, provider);
2305 if (!provider->ipconfig_ipv4) {
2306 provider->ipconfig_ipv4 = __vpn_ipconfig_create(index,
2308 if (!provider->ipconfig_ipv4) {
2309 DBG("Couldnt create ipconfig for IPv4");
2314 __vpn_ipconfig_set_index(provider->ipconfig_ipv4, index);
2316 if (!provider->ipconfig_ipv6) {
2317 provider->ipconfig_ipv6 = __vpn_ipconfig_create(index,
2319 if (!provider->ipconfig_ipv6) {
2320 DBG("Couldnt create ipconfig for IPv6");
2325 __vpn_ipconfig_set_index(provider->ipconfig_ipv6, index);
2328 provider->index = index;
2331 int vpn_provider_get_index(struct vpn_provider *provider)
2333 return provider->index;
2336 int vpn_provider_set_ipaddress(struct vpn_provider *provider,
2337 struct connman_ipaddress *ipaddress)
2339 struct vpn_ipconfig *ipconfig = NULL;
2341 switch (ipaddress->family) {
2343 ipconfig = provider->ipconfig_ipv4;
2346 ipconfig = provider->ipconfig_ipv6;
2352 DBG("provider %p state %d ipconfig %p family %d", provider,
2353 provider->state, ipconfig, ipaddress->family);
2358 provider->family = ipaddress->family;
2360 if (provider->state == VPN_PROVIDER_STATE_CONNECT ||
2361 provider->state == VPN_PROVIDER_STATE_READY) {
2362 struct connman_ipaddress *addr =
2363 __vpn_ipconfig_get_address(ipconfig);
2366 * Remember the old address so that we can remove it in notify
2367 * function in plugins/vpn.c if we ever restart
2369 if (ipaddress->family == AF_INET6) {
2370 connman_ipaddress_free(provider->prev_ipv6_addr);
2371 provider->prev_ipv6_addr =
2372 connman_ipaddress_copy(addr);
2374 connman_ipaddress_free(provider->prev_ipv4_addr);
2375 provider->prev_ipv4_addr =
2376 connman_ipaddress_copy(addr);
2380 if (ipaddress->local) {
2381 __vpn_ipconfig_set_local(ipconfig, ipaddress->local);
2382 __vpn_ipconfig_set_peer(ipconfig, ipaddress->peer);
2383 __vpn_ipconfig_set_broadcast(ipconfig, ipaddress->broadcast);
2384 __vpn_ipconfig_set_gateway(ipconfig, ipaddress->gateway);
2385 __vpn_ipconfig_set_prefixlen(ipconfig, ipaddress->prefixlen);
2391 int vpn_provider_set_pac(struct vpn_provider *provider,
2394 DBG("provider %p pac %s", provider, pac);
2400 int vpn_provider_set_domain(struct vpn_provider *provider,
2403 DBG("provider %p domain %s", provider, domain);
2405 g_free(provider->domain);
2406 provider->domain = g_strdup(domain);
2411 int vpn_provider_set_nameservers(struct vpn_provider *provider,
2412 const char *nameservers)
2414 DBG("provider %p nameservers %s", provider, nameservers);
2416 g_strfreev(provider->nameservers);
2417 provider->nameservers = NULL;
2422 provider->nameservers = g_strsplit(nameservers, " ", 0);
2427 static int route_env_parse(struct vpn_provider *provider, const char *key,
2428 int *family, unsigned long *idx,
2429 enum vpn_provider_route_type *type)
2434 DBG("name %s", provider->name);
2436 if (provider->driver && provider->driver->route_env_parse)
2437 return provider->driver->route_env_parse(provider, key, family, idx,
2443 int vpn_provider_append_route(struct vpn_provider *provider,
2444 const char *key, const char *value)
2446 struct vpn_route *route;
2447 int ret, family = 0;
2448 unsigned long idx = 0;
2449 enum vpn_provider_route_type type = VPN_PROVIDER_ROUTE_TYPE_NONE;
2451 DBG("key %s value %s", key, value);
2453 ret = route_env_parse(provider, key, &family, &idx, &type);
2457 DBG("idx %lu family %d type %d", idx, family, type);
2459 route = g_hash_table_lookup(provider->routes, GINT_TO_POINTER(idx));
2461 route = g_try_new0(struct vpn_route, 1);
2463 connman_error("out of memory");
2467 route->family = family;
2469 g_hash_table_replace(provider->routes, GINT_TO_POINTER(idx),
2474 case VPN_PROVIDER_ROUTE_TYPE_NONE:
2476 case VPN_PROVIDER_ROUTE_TYPE_MASK:
2477 route->netmask = g_strdup(value);
2479 case VPN_PROVIDER_ROUTE_TYPE_ADDR:
2480 route->network = g_strdup(value);
2482 case VPN_PROVIDER_ROUTE_TYPE_GW:
2483 route->gateway = g_strdup(value);
2487 if (!handle_routes) {
2488 if (route->netmask && route->gateway &&
2490 provider_schedule_changed(provider);
2496 const char *vpn_provider_get_driver_name(struct vpn_provider *provider)
2498 if (!provider->driver)
2501 return provider->driver->name;
2504 const char *vpn_provider_get_save_group(struct vpn_provider *provider)
2506 return provider->identifier;
2509 static gint compare_priority(gconstpointer a, gconstpointer b)
2514 static void clean_provider(gpointer key, gpointer value, gpointer user_data)
2516 struct vpn_provider *provider = value;
2518 if (provider->driver && provider->driver->remove)
2519 provider->driver->remove(provider);
2521 connection_unregister(provider);
2524 int vpn_provider_driver_register(struct vpn_provider_driver *driver)
2526 DBG("driver %p name %s", driver, driver->name);
2528 driver_list = g_slist_insert_sorted(driver_list, driver,
2530 provider_create_all_from_type(driver->name);
2534 void vpn_provider_driver_unregister(struct vpn_provider_driver *driver)
2536 GHashTableIter iter;
2537 gpointer value, key;
2539 DBG("driver %p name %s", driver, driver->name);
2541 driver_list = g_slist_remove(driver_list, driver);
2543 g_hash_table_iter_init(&iter, provider_hash);
2544 while (g_hash_table_iter_next(&iter, &key, &value)) {
2545 struct vpn_provider *provider = value;
2547 if (provider && provider->driver &&
2548 provider->driver->type == driver->type &&
2549 g_strcmp0(provider->driver->name,
2550 driver->name) == 0) {
2551 provider->driver = NULL;
2556 const char *vpn_provider_get_name(struct vpn_provider *provider)
2558 return provider->name;
2561 const char *vpn_provider_get_host(struct vpn_provider *provider)
2563 return provider->host;
2566 const char *vpn_provider_get_path(struct vpn_provider *provider)
2568 return provider->path;
2571 void vpn_provider_change_address(struct vpn_provider *provider)
2573 switch (provider->family) {
2575 connman_inet_set_address(provider->index,
2576 __vpn_ipconfig_get_address(provider->ipconfig_ipv4));
2579 connman_inet_set_ipv6_address(provider->index,
2580 __vpn_ipconfig_get_address(provider->ipconfig_ipv6));
2587 void vpn_provider_clear_address(struct vpn_provider *provider, int family)
2589 const char *address;
2592 DBG("provider %p family %d ipv4 %p ipv6 %p", provider, family,
2593 provider->prev_ipv4_addr, provider->prev_ipv6_addr);
2597 if (provider->prev_ipv4_addr) {
2598 connman_ipaddress_get_ip(provider->prev_ipv4_addr,
2601 DBG("ipv4 %s/%d", address, len);
2603 connman_inet_clear_address(provider->index,
2604 provider->prev_ipv4_addr);
2605 connman_ipaddress_free(provider->prev_ipv4_addr);
2606 provider->prev_ipv4_addr = NULL;
2610 if (provider->prev_ipv6_addr) {
2611 connman_ipaddress_get_ip(provider->prev_ipv6_addr,
2614 DBG("ipv6 %s/%d", address, len);
2616 connman_inet_clear_ipv6_address(provider->index,
2619 connman_ipaddress_free(provider->prev_ipv6_addr);
2620 provider->prev_ipv6_addr = NULL;
2628 static int agent_probe(struct connman_agent *agent)
2630 DBG("agent %p", agent);
2634 static void agent_remove(struct connman_agent *agent)
2636 DBG("agent %p", agent);
2639 static struct connman_agent_driver agent_driver = {
2641 .interface = VPN_AGENT_INTERFACE,
2642 .probe = agent_probe,
2643 .remove = agent_remove,
2646 static void remove_unprovisioned_providers(void)
2649 GKeyFile *keyfile, *configkeyfile;
2650 char *file, *section;
2653 providers = __connman_storage_get_providers();
2657 for (; providers[i]; i++) {
2658 char *group = providers[i] + sizeof("provider_") - 1;
2659 file = section = NULL;
2660 keyfile = configkeyfile = NULL;
2662 keyfile = __connman_storage_load_provider(group);
2666 file = __vpn_config_get_string(keyfile, group,
2667 "Config.file", NULL);
2671 section = __vpn_config_get_string(keyfile, group,
2672 "Config.ident", NULL);
2676 configkeyfile = __connman_storage_load_provider_config(file);
2677 if (!configkeyfile) {
2679 * Config file is missing, remove the provisioned
2682 __connman_storage_remove_provider(group);
2686 if (!g_key_file_has_group(configkeyfile, section))
2688 * Config section is missing, remove the provisioned
2691 __connman_storage_remove_provider(group);
2695 g_key_file_free(keyfile);
2698 g_key_file_free(configkeyfile);
2704 g_strfreev(providers);
2707 int __vpn_provider_init(bool do_routes)
2713 handle_routes = do_routes;
2715 err = connman_agent_driver_register(&agent_driver);
2717 connman_error("Cannot register agent driver for %s",
2722 connection = connman_dbus_get_connection();
2724 remove_unprovisioned_providers();
2726 provider_hash = g_hash_table_new_full(g_str_hash, g_str_equal,
2727 NULL, unregister_provider);
2731 void __vpn_provider_cleanup(void)
2735 connman_agent_driver_unregister(&agent_driver);
2737 g_hash_table_foreach(provider_hash, clean_provider, NULL);
2739 g_hash_table_destroy(provider_hash);
2740 provider_hash = NULL;
2742 dbus_connection_unref(connection);