5 * Copyright (C) 2012 Intel Corporation. All rights reserved.
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License version 2 as
9 * published by the Free Software Foundation.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
31 #include <connman/log.h>
32 #include <gweb/gresolv.h>
35 #include "../src/connman.h"
36 #include "connman/agent.h"
37 #include "connman/vpn-dbus.h"
38 #include "vpn-provider.h"
41 static DBusConnection *connection;
42 static GHashTable *provider_hash;
43 static GSList *driver_list;
44 static int configuration_count;
45 static gboolean handle_routes;
63 enum vpn_provider_state state;
72 struct vpn_provider_driver *driver;
74 GHashTable *setting_strings;
75 GHashTable *user_routes;
76 GSList *user_networks;
79 struct vpn_ipconfig *ipconfig_ipv4;
80 struct vpn_ipconfig *ipconfig_ipv6;
87 static void append_properties(DBusMessageIter *iter,
88 struct vpn_provider *provider);
90 static void free_route(gpointer data)
92 struct vpn_route *route = data;
94 g_free(route->network);
95 g_free(route->netmask);
96 g_free(route->gateway);
101 static void free_setting(gpointer data)
103 struct vpn_setting *setting = data;
105 g_free(setting->value);
109 static void append_route(DBusMessageIter *iter, void *user_data)
111 struct vpn_route *route = user_data;
112 DBusMessageIter item;
115 connman_dbus_dict_open(iter, &item);
120 if (route->family == AF_INET)
122 else if (route->family == AF_INET6)
126 connman_dbus_dict_append_basic(&item, "ProtocolFamily",
127 DBUS_TYPE_INT32, &family);
129 if (route->network != NULL)
130 connman_dbus_dict_append_basic(&item, "Network",
131 DBUS_TYPE_STRING, &route->network);
133 if (route->netmask != NULL)
134 connman_dbus_dict_append_basic(&item, "Netmask",
135 DBUS_TYPE_STRING, &route->netmask);
137 if (route->gateway != NULL)
138 connman_dbus_dict_append_basic(&item, "Gateway",
139 DBUS_TYPE_STRING, &route->gateway);
142 connman_dbus_dict_close(iter, &item);
145 static void append_routes(DBusMessageIter *iter, void *user_data)
147 GHashTable *routes = user_data;
151 if (routes == NULL) {
152 append_route(iter, NULL);
156 g_hash_table_iter_init(&hash, routes);
158 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
159 DBusMessageIter dict;
161 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT, NULL,
163 append_route(&dict, value);
164 dbus_message_iter_close_container(iter, &dict);
168 static void send_routes(struct vpn_provider *provider, GHashTable *routes,
171 connman_dbus_property_changed_array(provider->path,
172 VPN_CONNECTION_INTERFACE,
174 DBUS_TYPE_DICT_ENTRY,
179 static int provider_routes_changed(struct vpn_provider *provider)
181 DBG("provider %p", provider);
183 send_routes(provider, provider->routes, "ServerRoutes");
188 static GSList *read_route_dict(GSList *routes, DBusMessageIter *dicts)
190 DBusMessageIter dict, value, entry;
191 const char *network, *netmask, *gateway;
192 struct vpn_route *route;
196 dbus_message_iter_recurse(dicts, &entry);
198 network = netmask = gateway = NULL;
201 while (dbus_message_iter_get_arg_type(&entry) == DBUS_TYPE_DICT_ENTRY) {
203 dbus_message_iter_recurse(&entry, &dict);
204 dbus_message_iter_get_basic(&dict, &key);
206 dbus_message_iter_next(&dict);
207 dbus_message_iter_recurse(&dict, &value);
209 type = dbus_message_iter_get_arg_type(&value);
212 case DBUS_TYPE_STRING:
213 if (g_str_equal(key, "ProtocolFamily") == TRUE)
214 dbus_message_iter_get_basic(&value, &family);
215 else if (g_str_equal(key, "Network") == TRUE)
216 dbus_message_iter_get_basic(&value, &network);
217 else if (g_str_equal(key, "Netmask") == TRUE)
218 dbus_message_iter_get_basic(&value, &netmask);
219 else if (g_str_equal(key, "Gateway") == TRUE)
220 dbus_message_iter_get_basic(&value, &gateway);
224 dbus_message_iter_next(&entry);
227 DBG("family %d network %s netmask %s gateway %s", family,
228 network, netmask, gateway);
230 if (network == NULL || netmask == NULL) {
231 DBG("Ignoring route as network/netmask is missing");
235 route = g_try_new(struct vpn_route, 1);
237 g_slist_free_full(routes, free_route);
241 if (family == PF_UNSPEC) {
242 family = connman_inet_check_ipaddress(network);
244 DBG("Cannot get address family of %s (%d/%s)", network,
245 family, gai_strerror(family));
264 route->family = family;
265 route->network = g_strdup(network);
266 route->netmask = g_strdup(netmask);
267 route->gateway = g_strdup(gateway);
269 routes = g_slist_prepend(routes, route);
273 static GSList *get_user_networks(DBusMessageIter *array)
275 DBusMessageIter entry;
278 while (dbus_message_iter_get_arg_type(array) == DBUS_TYPE_ARRAY) {
280 dbus_message_iter_recurse(array, &entry);
282 while (dbus_message_iter_get_arg_type(&entry) ==
284 DBusMessageIter dicts;
286 dbus_message_iter_recurse(&entry, &dicts);
288 while (dbus_message_iter_get_arg_type(&dicts) ==
291 list = read_route_dict(list, &dicts);
292 dbus_message_iter_next(&dicts);
295 dbus_message_iter_next(&entry);
298 dbus_message_iter_next(array);
304 static void set_user_networks(struct vpn_provider *provider, GSList *networks)
308 for (list = networks; list != NULL; list = g_slist_next(list)) {
309 struct vpn_route *route = list->data;
311 if (__vpn_provider_append_user_route(provider,
312 route->family, route->network,
313 route->netmask, route->gateway) != 0)
318 static void del_routes(struct vpn_provider *provider)
323 g_hash_table_iter_init(&hash, provider->user_routes);
324 while (handle_routes == TRUE && g_hash_table_iter_next(&hash,
325 &key, &value) == TRUE) {
326 struct vpn_route *route = value;
327 if (route->family == AF_INET6) {
328 unsigned char prefixlen = atoi(route->netmask);
329 connman_inet_del_ipv6_network_route(provider->index,
333 connman_inet_del_host_route(provider->index,
337 g_hash_table_remove_all(provider->user_routes);
338 g_slist_free_full(provider->user_networks, free_route);
339 provider->user_networks = NULL;
342 static void send_value(const char *path, const char *key, const char *value)
344 const char *empty = "";
352 connman_dbus_property_changed_basic(path,
353 VPN_CONNECTION_INTERFACE,
359 static gboolean provider_send_changed(gpointer data)
361 struct vpn_provider *provider = data;
363 provider_routes_changed(provider);
365 provider->notify_id = 0;
370 static void provider_schedule_changed(struct vpn_provider *provider)
372 if (provider->notify_id != 0)
373 g_source_remove(provider->notify_id);
375 provider->notify_id = g_timeout_add(100, provider_send_changed,
379 static DBusMessage *get_properties(DBusConnection *conn,
380 DBusMessage *msg, void *data)
382 struct vpn_provider *provider = data;
384 DBusMessageIter array;
386 DBG("provider %p", provider);
388 reply = dbus_message_new_method_return(msg);
392 dbus_message_iter_init_append(reply, &array);
394 append_properties(&array, provider);
399 static DBusMessage *set_property(DBusConnection *conn, DBusMessage *msg,
402 struct vpn_provider *provider = data;
403 DBusMessageIter iter, value;
407 DBG("conn %p", conn);
409 if (dbus_message_iter_init(msg, &iter) == FALSE)
410 return __connman_error_invalid_arguments(msg);
412 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_STRING)
413 return __connman_error_invalid_arguments(msg);
415 dbus_message_iter_get_basic(&iter, &name);
416 dbus_message_iter_next(&iter);
418 if (dbus_message_iter_get_arg_type(&iter) != DBUS_TYPE_VARIANT)
419 return __connman_error_invalid_arguments(msg);
421 dbus_message_iter_recurse(&iter, &value);
423 type = dbus_message_iter_get_arg_type(&value);
425 if (g_str_equal(name, "UserRoutes") == TRUE) {
428 if (type != DBUS_TYPE_ARRAY)
429 return __connman_error_invalid_arguments(msg);
431 networks = get_user_networks(&value);
432 if (networks != NULL) {
433 del_routes(provider);
434 provider->user_networks = networks;
435 set_user_networks(provider, provider->user_networks);
437 if (handle_routes == FALSE)
438 send_routes(provider, provider->user_routes,
442 return __connman_error_invalid_property(msg);
444 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
447 static DBusMessage *clear_property(DBusConnection *conn, DBusMessage *msg,
450 struct vpn_provider *provider = data;
453 DBG("conn %p", conn);
455 dbus_message_get_args(msg, NULL, DBUS_TYPE_STRING, &name,
458 if (g_str_equal(name, "UserRoutes") == TRUE) {
459 del_routes(provider);
461 if (handle_routes == FALSE)
462 send_routes(provider, provider->user_routes, name);
463 } else if (vpn_provider_get_string(provider, name) != NULL) {
464 vpn_provider_set_string(provider, name, NULL);
466 return __connman_error_invalid_property(msg);
469 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
472 static DBusMessage *do_connect(DBusConnection *conn, DBusMessage *msg,
475 struct vpn_provider *provider = data;
478 DBG("conn %p provider %p", conn, provider);
480 err = __vpn_provider_connect(provider, msg);
482 return __connman_error_failed(msg, -err);
487 static DBusMessage *do_disconnect(DBusConnection *conn, DBusMessage *msg,
490 struct vpn_provider *provider = data;
493 DBG("conn %p provider %p", conn, provider);
495 err = __vpn_provider_disconnect(provider);
496 if (err < 0 && err != -EINPROGRESS)
497 return __connman_error_failed(msg, -err);
499 return g_dbus_create_reply(msg, DBUS_TYPE_INVALID);
502 static const GDBusMethodTable connection_methods[] = {
503 { GDBUS_METHOD("GetProperties",
504 NULL, GDBUS_ARGS({ "properties", "a{sv}" }),
506 { GDBUS_METHOD("SetProperty",
507 GDBUS_ARGS({ "name", "s" }, { "value", "v" }),
508 NULL, set_property) },
509 { GDBUS_METHOD("ClearProperty",
510 GDBUS_ARGS({ "name", "s" }), NULL,
512 { GDBUS_ASYNC_METHOD("Connect", NULL, NULL, do_connect) },
513 { GDBUS_METHOD("Disconnect", NULL, NULL, do_disconnect) },
517 static const GDBusSignalTable connection_signals[] = {
518 { GDBUS_SIGNAL("PropertyChanged",
519 GDBUS_ARGS({ "name", "s" }, { "value", "v" })) },
523 static void resolv_result(GResolvResultStatus status,
524 char **results, gpointer user_data)
526 struct vpn_provider *provider = user_data;
528 DBG("status %d", status);
530 if (status == G_RESOLV_RESULT_STATUS_SUCCESS && results != NULL &&
531 g_strv_length(results) > 0)
532 provider->host_ip = g_strdupv(results);
534 vpn_provider_unref(provider);
537 static void provider_resolv_host_addr(struct vpn_provider *provider)
539 if (provider->host == NULL)
542 if (connman_inet_check_ipaddress(provider->host) > 0)
545 if (provider->host_ip != NULL)
549 * If the hostname is not numeric, try to resolv it. We do not wait
550 * the result as it might take some time. We will get the result
551 * before VPN will feed routes to us because VPN client will need
552 * the IP address also before VPN connection can be established.
554 provider->resolv = g_resolv_new(0);
555 if (provider->resolv == NULL) {
556 DBG("Cannot resolv %s", provider->host);
560 DBG("Trying to resolv %s", provider->host);
562 vpn_provider_ref(provider);
564 g_resolv_lookup_hostname(provider->resolv, provider->host,
565 resolv_result, provider);
568 void __vpn_provider_append_properties(struct vpn_provider *provider,
569 DBusMessageIter *iter)
571 if (provider->host != NULL)
572 connman_dbus_dict_append_basic(iter, "Host",
573 DBUS_TYPE_STRING, &provider->host);
575 if (provider->domain != NULL)
576 connman_dbus_dict_append_basic(iter, "Domain",
577 DBUS_TYPE_STRING, &provider->domain);
579 if (provider->type != NULL)
580 connman_dbus_dict_append_basic(iter, "Type", DBUS_TYPE_STRING,
584 int __vpn_provider_append_user_route(struct vpn_provider *provider,
585 int family, const char *network,
586 const char *netmask, const char *gateway)
588 struct vpn_route *route;
589 char *key = g_strdup_printf("%d/%s/%s/%s", family, network,
590 netmask, gateway != NULL ? gateway : "");
592 DBG("family %d network %s netmask %s gw %s", family, network,
595 route = g_hash_table_lookup(provider->user_routes, key);
597 route = g_try_new0(struct vpn_route, 1);
599 connman_error("out of memory");
603 route->family = family;
604 route->network = g_strdup(network);
605 route->netmask = g_strdup(netmask);
606 route->gateway = g_strdup(gateway);
608 g_hash_table_replace(provider->user_routes, key, route);
615 static struct vpn_route *get_route(char *route_str)
617 char **elems = g_strsplit(route_str, "/", 0);
618 char *network, *netmask, *gateway, *family_str;
619 int family = PF_UNSPEC;
620 struct vpn_route *route = NULL;
625 family_str = elems[0];
628 if (network == NULL || network[0] == '\0')
632 if (netmask == NULL || netmask[0] == '\0')
637 route = g_try_new0(struct vpn_route, 1);
641 if (family_str[0] == '\0' || atoi(family_str) == 0) {
644 switch (family_str[0]) {
654 if (g_strrstr(network, ":") != NULL) {
655 if (family != PF_UNSPEC && family != AF_INET6)
656 DBG("You have IPv6 address but you have non IPv6 route");
657 } else if (g_strrstr(network, ".") != NULL) {
658 if (family != PF_UNSPEC && family != AF_INET)
659 DBG("You have IPv4 address but you have non IPv4 route");
661 if (g_strrstr(netmask, ".") == NULL) {
662 /* We have netmask length */
664 struct in_addr netmask_in;
665 unsigned char prefix_len = 32;
667 if (netmask != NULL) {
669 long int value = strtol(netmask, &ptr, 10);
670 if (ptr != netmask && *ptr == '\0' &&
675 addr = 0xffffffff << (32 - prefix_len);
676 netmask_in.s_addr = htonl(addr);
677 netmask = inet_ntoa(netmask_in);
679 DBG("network %s netmask %s", network, netmask);
683 if (family == PF_UNSPEC) {
684 family = connman_inet_check_ipaddress(network);
685 if (family < 0 || family == PF_UNSPEC)
689 route->family = family;
690 route->network = g_strdup(network);
691 route->netmask = g_strdup(netmask);
692 route->gateway = g_strdup(gateway);
699 static GSList *get_routes(gchar **networks)
701 struct vpn_route *route;
702 GSList *routes = NULL;
705 for (i = 0; networks[i] != NULL; i++) {
706 route = get_route(networks[i]);
708 routes = g_slist_prepend(routes, route);
714 static int provider_load_from_keyfile(struct vpn_provider *provider,
720 gsize length, num_user_networks;
721 gchar **networks = NULL;
723 settings = g_key_file_get_keys(keyfile, provider->identifier, &length,
725 if (settings == NULL) {
726 g_key_file_free(keyfile);
730 while (idx < length) {
733 if (g_str_equal(key, "Networks") == TRUE) {
734 networks = g_key_file_get_string_list(keyfile,
735 provider->identifier,
739 provider->user_networks = get_routes(networks);
742 value = g_key_file_get_string(keyfile,
743 provider->identifier,
745 vpn_provider_set_string(provider, key,
752 g_strfreev(settings);
753 g_strfreev(networks);
755 if (provider->user_networks != NULL)
756 set_user_networks(provider, provider->user_networks);
762 static int vpn_provider_load(struct vpn_provider *provider)
766 DBG("provider %p", provider);
768 keyfile = __connman_storage_load_provider(provider->identifier);
772 provider_load_from_keyfile(provider, keyfile);
774 g_key_file_free(keyfile);
778 static gchar **create_network_list(GSList *networks, gsize *count)
781 gchar **result = NULL;
782 unsigned int num_elems = 0;
784 for (list = networks; list != NULL; list = g_slist_next(list)) {
785 struct vpn_route *route = list->data;
788 result = g_try_realloc(result,
789 (num_elems + 1) * sizeof(gchar *));
793 switch (route->family) {
805 result[num_elems] = g_strdup_printf("%d/%s/%s/%s",
806 family, route->network, route->netmask,
807 route->gateway == NULL ? "" : route->gateway);
812 result = g_try_realloc(result, (num_elems + 1) * sizeof(gchar *));
816 result[num_elems] = NULL;
821 static int vpn_provider_save(struct vpn_provider *provider)
825 DBG("provider %p", provider);
827 keyfile = g_key_file_new();
831 g_key_file_set_string(keyfile, provider->identifier,
832 "Name", provider->name);
833 g_key_file_set_string(keyfile, provider->identifier,
834 "Type", provider->type);
835 g_key_file_set_string(keyfile, provider->identifier,
836 "Host", provider->host);
837 g_key_file_set_string(keyfile, provider->identifier,
838 "VPN.Domain", provider->domain);
839 if (provider->user_networks != NULL) {
843 networks = create_network_list(provider->user_networks,
845 if (networks != NULL) {
846 g_key_file_set_string_list(keyfile,
847 provider->identifier,
849 (const gchar ** const)networks,
851 g_strfreev(networks);
855 if (provider->config_file != NULL && strlen(provider->config_file) > 0)
856 g_key_file_set_string(keyfile, provider->identifier,
857 "Config.file", provider->config_file);
859 if (provider->config_entry != NULL &&
860 strlen(provider->config_entry) > 0)
861 g_key_file_set_string(keyfile, provider->identifier,
862 "Config.ident", provider->config_entry);
864 if (provider->driver != NULL && provider->driver->save != NULL)
865 provider->driver->save(provider, keyfile);
867 __connman_storage_save_provider(keyfile, provider->identifier);
868 g_key_file_free(keyfile);
873 struct vpn_provider *__vpn_provider_lookup(const char *identifier)
875 struct vpn_provider *provider = NULL;
877 provider = g_hash_table_lookup(provider_hash, identifier);
882 static gboolean match_driver(struct vpn_provider *provider,
883 struct vpn_provider_driver *driver)
885 if (g_strcmp0(driver->name, provider->type) == 0)
891 static int provider_probe(struct vpn_provider *provider)
895 DBG("provider %p driver %p name %s", provider, provider->driver,
898 if (provider->driver != NULL)
901 for (list = driver_list; list; list = list->next) {
902 struct vpn_provider_driver *driver = list->data;
904 if (match_driver(provider, driver) == FALSE)
907 DBG("driver %p name %s", driver, driver->name);
909 if (driver->probe != NULL && driver->probe(provider) == 0) {
910 provider->driver = driver;
915 if (provider->driver == NULL)
921 static void provider_remove(struct vpn_provider *provider)
923 if (provider->driver != NULL) {
924 provider->driver->remove(provider);
925 provider->driver = NULL;
929 static int provider_register(struct vpn_provider *provider)
931 return provider_probe(provider);
934 static void provider_unregister(struct vpn_provider *provider)
936 provider_remove(provider);
939 struct vpn_provider *
940 vpn_provider_ref_debug(struct vpn_provider *provider,
941 const char *file, int line, const char *caller)
943 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount + 1,
946 __sync_fetch_and_add(&provider->refcount, 1);
951 static void provider_destruct(struct vpn_provider *provider)
953 DBG("provider %p", provider);
955 if (provider->notify_id != 0)
956 g_source_remove(provider->notify_id);
958 g_free(provider->name);
959 g_free(provider->type);
960 g_free(provider->host);
961 g_free(provider->domain);
962 g_free(provider->identifier);
963 g_free(provider->path);
964 g_slist_free_full(provider->user_networks, free_route);
965 g_strfreev(provider->nameservers);
966 g_hash_table_destroy(provider->routes);
967 g_hash_table_destroy(provider->user_routes);
968 g_hash_table_destroy(provider->setting_strings);
969 if (provider->resolv != NULL) {
970 g_resolv_unref(provider->resolv);
971 provider->resolv = NULL;
973 __vpn_ipconfig_unref(provider->ipconfig_ipv4);
974 __vpn_ipconfig_unref(provider->ipconfig_ipv6);
976 g_strfreev(provider->host_ip);
977 g_free(provider->config_file);
978 g_free(provider->config_entry);
982 void vpn_provider_unref_debug(struct vpn_provider *provider,
983 const char *file, int line, const char *caller)
985 DBG("%p ref %d by %s:%d:%s()", provider, provider->refcount - 1,
988 if (__sync_fetch_and_sub(&provider->refcount, 1) != 1)
991 provider_remove(provider);
993 provider_destruct(provider);
996 static void configuration_count_add(void)
998 DBG("count %d", configuration_count + 1);
1000 __sync_fetch_and_add(&configuration_count, 1);
1003 static void configuration_count_del(void)
1005 DBG("count %d", configuration_count - 1);
1007 if (__sync_fetch_and_sub(&configuration_count, 1) != 1)
1013 int __vpn_provider_disconnect(struct vpn_provider *provider)
1017 DBG("provider %p", provider);
1019 if (provider->driver != NULL && provider->driver->disconnect != NULL)
1020 err = provider->driver->disconnect(provider);
1024 if (err == -EINPROGRESS)
1025 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1030 static void connect_cb(struct vpn_provider *provider, void *user_data,
1033 DBusMessage *pending = user_data;
1035 DBG("provider %p user %p error %d", provider, user_data, error);
1038 DBusMessage *reply = __connman_error_failed(pending, error);
1040 g_dbus_send_message(connection, reply);
1042 vpn_provider_indicate_error(provider,
1043 VPN_PROVIDER_ERROR_CONNECT_FAILED);
1044 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1046 g_dbus_send_reply(connection, pending, DBUS_TYPE_INVALID);
1048 dbus_message_unref(pending);
1051 int __vpn_provider_connect(struct vpn_provider *provider, DBusMessage *msg)
1055 DBG("provider %p", provider);
1057 if (provider->driver != NULL && provider->driver->connect != NULL) {
1058 dbus_message_ref(msg);
1059 err = provider->driver->connect(provider, connect_cb, msg);
1063 if (err == -EINPROGRESS)
1064 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_CONNECT);
1069 static void connection_removed_signal(struct vpn_provider *provider)
1071 DBusMessage *signal;
1072 DBusMessageIter iter;
1074 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1075 VPN_MANAGER_INTERFACE, "ConnectionRemoved");
1079 dbus_message_iter_init_append(signal, &iter);
1080 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1082 dbus_connection_send(connection, signal, NULL);
1083 dbus_message_unref(signal);
1086 static char *get_ident(const char *path)
1093 pos = strrchr(path, '/');
1100 int __vpn_provider_remove(const char *path)
1102 struct vpn_provider *provider;
1105 DBG("path %s", path);
1107 ident = get_ident(path);
1109 provider = __vpn_provider_lookup(ident);
1110 if (provider != NULL)
1111 return __vpn_provider_delete(provider);
1116 int __vpn_provider_delete(struct vpn_provider *provider)
1118 DBG("Deleting VPN %s", provider->identifier);
1120 connection_removed_signal(provider);
1122 provider_unregister(provider);
1124 __connman_storage_remove_provider(provider->identifier);
1126 g_hash_table_remove(provider_hash, provider->identifier);
1131 static void append_ipv4(DBusMessageIter *iter, void *user_data)
1133 struct vpn_provider *provider = user_data;
1134 const char *address, *gateway, *peer;
1136 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv4);
1137 if (address != NULL) {
1139 struct in_addr netmask;
1143 prefixlen = __vpn_ipconfig_get_prefixlen(
1144 provider->ipconfig_ipv4);
1146 addr = 0xffffffff << (32 - prefixlen);
1147 netmask.s_addr = htonl(addr);
1148 mask = inet_ntoa(netmask);
1150 connman_dbus_dict_append_basic(iter, "Address",
1151 DBUS_TYPE_STRING, &address);
1153 connman_dbus_dict_append_basic(iter, "Netmask",
1154 DBUS_TYPE_STRING, &mask);
1157 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv4);
1158 if (gateway != NULL)
1159 connman_dbus_dict_append_basic(iter, "Gateway",
1160 DBUS_TYPE_STRING, &gateway);
1162 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv4);
1164 connman_dbus_dict_append_basic(iter, "Peer",
1165 DBUS_TYPE_STRING, &peer);
1168 static void append_ipv6(DBusMessageIter *iter, void *user_data)
1170 struct vpn_provider *provider = user_data;
1171 const char *address, *gateway, *peer;
1173 address = __vpn_ipconfig_get_local(provider->ipconfig_ipv6);
1174 if (address != NULL) {
1175 unsigned char prefixlen;
1177 connman_dbus_dict_append_basic(iter, "Address",
1178 DBUS_TYPE_STRING, &address);
1180 prefixlen = __vpn_ipconfig_get_prefixlen(
1181 provider->ipconfig_ipv6);
1183 connman_dbus_dict_append_basic(iter, "PrefixLength",
1184 DBUS_TYPE_BYTE, &prefixlen);
1187 gateway = __vpn_ipconfig_get_gateway(provider->ipconfig_ipv6);
1188 if (gateway != NULL)
1189 connman_dbus_dict_append_basic(iter, "Gateway",
1190 DBUS_TYPE_STRING, &gateway);
1192 peer = __vpn_ipconfig_get_peer(provider->ipconfig_ipv6);
1194 connman_dbus_dict_append_basic(iter, "Peer",
1195 DBUS_TYPE_STRING, &peer);
1198 static const char *state2string(enum vpn_provider_state state)
1201 case VPN_PROVIDER_STATE_UNKNOWN:
1203 case VPN_PROVIDER_STATE_IDLE:
1205 case VPN_PROVIDER_STATE_CONNECT:
1206 return "configuration";
1207 case VPN_PROVIDER_STATE_READY:
1209 case VPN_PROVIDER_STATE_DISCONNECT:
1210 return "disconnect";
1211 case VPN_PROVIDER_STATE_FAILURE:
1218 static int provider_indicate_state(struct vpn_provider *provider,
1219 enum vpn_provider_state state)
1222 enum vpn_provider_state old_state;
1224 str = state2string(state);
1225 DBG("provider %p state %s/%d", provider, str, state);
1229 old_state = provider->state;
1230 provider->state = state;
1232 if (state == VPN_PROVIDER_STATE_READY) {
1233 connman_dbus_property_changed_basic(provider->path,
1234 VPN_CONNECTION_INTERFACE, "Index",
1235 DBUS_TYPE_INT32, &provider->index);
1237 if (provider->family == AF_INET)
1238 connman_dbus_property_changed_dict(provider->path,
1239 VPN_CONNECTION_INTERFACE, "IPv4",
1240 append_ipv4, provider);
1241 else if (provider->family == AF_INET6)
1242 connman_dbus_property_changed_dict(provider->path,
1243 VPN_CONNECTION_INTERFACE, "IPv6",
1244 append_ipv6, provider);
1247 if (old_state != state)
1248 connman_dbus_property_changed_basic(provider->path,
1249 VPN_CONNECTION_INTERFACE, "State",
1250 DBUS_TYPE_STRING, &str);
1253 * We do not stay in failure state as clients like connmand can
1254 * get confused about our current state.
1256 if (provider->state == VPN_PROVIDER_STATE_FAILURE)
1257 provider->state = VPN_PROVIDER_STATE_IDLE;
1262 static void append_nameservers(DBusMessageIter *iter, char **servers)
1268 for (i = 0; servers[i] != NULL; i++) {
1269 DBG("servers[%d] %s", i, servers[i]);
1270 dbus_message_iter_append_basic(iter,
1271 DBUS_TYPE_STRING, &servers[i]);
1275 static void append_dns(DBusMessageIter *iter, void *user_data)
1277 struct vpn_provider *provider = user_data;
1279 if (provider->nameservers != NULL)
1280 append_nameservers(iter, provider->nameservers);
1283 static void append_state(DBusMessageIter *iter,
1284 struct vpn_provider *provider)
1288 switch (provider->state) {
1289 case VPN_PROVIDER_STATE_UNKNOWN:
1290 case VPN_PROVIDER_STATE_IDLE:
1293 case VPN_PROVIDER_STATE_CONNECT:
1294 str = "configuration";
1296 case VPN_PROVIDER_STATE_READY:
1299 case VPN_PROVIDER_STATE_DISCONNECT:
1302 case VPN_PROVIDER_STATE_FAILURE:
1307 connman_dbus_dict_append_basic(iter, "State",
1308 DBUS_TYPE_STRING, &str);
1311 static void append_properties(DBusMessageIter *iter,
1312 struct vpn_provider *provider)
1314 DBusMessageIter dict;
1315 GHashTableIter hash;
1316 gpointer value, key;
1318 connman_dbus_dict_open(iter, &dict);
1320 append_state(&dict, provider);
1322 if (provider->type != NULL)
1323 connman_dbus_dict_append_basic(&dict, "Type",
1324 DBUS_TYPE_STRING, &provider->type);
1326 if (provider->name != NULL)
1327 connman_dbus_dict_append_basic(&dict, "Name",
1328 DBUS_TYPE_STRING, &provider->name);
1330 if (provider->host != NULL)
1331 connman_dbus_dict_append_basic(&dict, "Host",
1332 DBUS_TYPE_STRING, &provider->host);
1333 if (provider->index >= 0)
1334 connman_dbus_dict_append_basic(&dict, "Index",
1335 DBUS_TYPE_INT32, &provider->index);
1336 if (provider->domain != NULL)
1337 connman_dbus_dict_append_basic(&dict, "Domain",
1338 DBUS_TYPE_STRING, &provider->domain);
1340 if (provider->family == AF_INET)
1341 connman_dbus_dict_append_dict(&dict, "IPv4", append_ipv4,
1343 else if (provider->family == AF_INET6)
1344 connman_dbus_dict_append_dict(&dict, "IPv6", append_ipv6,
1347 connman_dbus_dict_append_array(&dict, "Nameservers",
1348 DBUS_TYPE_STRING, append_dns, provider);
1350 connman_dbus_dict_append_array(&dict, "UserRoutes",
1351 DBUS_TYPE_DICT_ENTRY, append_routes,
1352 provider->user_routes);
1354 connman_dbus_dict_append_array(&dict, "ServerRoutes",
1355 DBUS_TYPE_DICT_ENTRY, append_routes,
1358 if (provider->setting_strings != NULL) {
1359 g_hash_table_iter_init(&hash, provider->setting_strings);
1361 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
1362 struct vpn_setting *setting = value;
1364 if (setting->hide_value == FALSE &&
1365 setting->value != NULL)
1366 connman_dbus_dict_append_basic(&dict, key,
1372 connman_dbus_dict_close(iter, &dict);
1375 static void connection_added_signal(struct vpn_provider *provider)
1377 DBusMessage *signal;
1378 DBusMessageIter iter;
1380 signal = dbus_message_new_signal(VPN_MANAGER_PATH,
1381 VPN_MANAGER_INTERFACE, "ConnectionAdded");
1385 dbus_message_iter_init_append(signal, &iter);
1386 dbus_message_iter_append_basic(&iter, DBUS_TYPE_OBJECT_PATH,
1388 append_properties(&iter, provider);
1390 dbus_connection_send(connection, signal, NULL);
1391 dbus_message_unref(signal);
1394 static connman_bool_t check_host(char **hosts, char *host)
1401 for (i = 0; hosts[i] != NULL; i++) {
1402 if (g_strcmp0(hosts[i], host) == 0)
1409 static void provider_append_routes(gpointer key, gpointer value,
1412 struct vpn_route *route = value;
1413 struct vpn_provider *provider = user_data;
1414 int index = provider->index;
1416 if (handle_routes == FALSE)
1420 * If the VPN administrator/user has given a route to
1421 * VPN server, then we must discard that because the
1422 * server cannot be contacted via VPN tunnel.
1424 if (check_host(provider->host_ip, route->network) == TRUE) {
1425 DBG("Discarding VPN route to %s via %s at index %d",
1426 route->network, route->gateway, index);
1430 if (route->family == AF_INET6) {
1431 unsigned char prefix_len = atoi(route->netmask);
1433 connman_inet_add_ipv6_network_route(index, route->network,
1437 connman_inet_add_network_route(index, route->network,
1443 static int set_connected(struct vpn_provider *provider,
1444 connman_bool_t connected)
1446 struct vpn_ipconfig *ipconfig;
1448 DBG("provider %p id %s connected %d", provider,
1449 provider->identifier, connected);
1451 if (connected == TRUE) {
1452 if (provider->family == AF_INET6)
1453 ipconfig = provider->ipconfig_ipv6;
1455 ipconfig = provider->ipconfig_ipv4;
1457 __vpn_ipconfig_address_add(ipconfig, provider->family);
1459 if (handle_routes == TRUE)
1460 __vpn_ipconfig_gateway_add(ipconfig, provider->family);
1462 provider_indicate_state(provider,
1463 VPN_PROVIDER_STATE_READY);
1465 g_hash_table_foreach(provider->routes, provider_append_routes,
1468 g_hash_table_foreach(provider->user_routes,
1469 provider_append_routes, provider);
1472 provider_indicate_state(provider,
1473 VPN_PROVIDER_STATE_DISCONNECT);
1475 provider_indicate_state(provider,
1476 VPN_PROVIDER_STATE_IDLE);
1482 int vpn_provider_set_state(struct vpn_provider *provider,
1483 enum vpn_provider_state state)
1485 if (provider == NULL)
1489 case VPN_PROVIDER_STATE_UNKNOWN:
1491 case VPN_PROVIDER_STATE_IDLE:
1492 return set_connected(provider, FALSE);
1493 case VPN_PROVIDER_STATE_CONNECT:
1494 return provider_indicate_state(provider, state);
1495 case VPN_PROVIDER_STATE_READY:
1496 return set_connected(provider, TRUE);
1497 case VPN_PROVIDER_STATE_DISCONNECT:
1498 return provider_indicate_state(provider, state);
1499 case VPN_PROVIDER_STATE_FAILURE:
1500 return provider_indicate_state(provider, state);
1505 int vpn_provider_indicate_error(struct vpn_provider *provider,
1506 enum vpn_provider_error error)
1508 DBG("provider %p id %s error %d", provider, provider->identifier,
1512 case VPN_PROVIDER_ERROR_LOGIN_FAILED:
1514 case VPN_PROVIDER_ERROR_AUTH_FAILED:
1515 vpn_provider_set_state(provider, VPN_PROVIDER_STATE_FAILURE);
1517 case VPN_PROVIDER_ERROR_CONNECT_FAILED:
1526 static int connection_unregister(struct vpn_provider *provider)
1528 DBG("provider %p path %s", provider, provider->path);
1530 if (provider->path == NULL)
1533 g_dbus_unregister_interface(connection, provider->path,
1534 VPN_CONNECTION_INTERFACE);
1536 g_free(provider->path);
1537 provider->path = NULL;
1542 static int connection_register(struct vpn_provider *provider)
1544 DBG("provider %p path %s", provider, provider->path);
1546 if (provider->path != NULL)
1549 provider->path = g_strdup_printf("%s/connection/%s", VPN_PATH,
1550 provider->identifier);
1552 g_dbus_register_interface(connection, provider->path,
1553 VPN_CONNECTION_INTERFACE,
1554 connection_methods, connection_signals,
1555 NULL, provider, NULL);
1560 static void unregister_provider(gpointer data)
1562 struct vpn_provider *provider = data;
1564 configuration_count_del();
1566 connection_unregister(provider);
1568 vpn_provider_unref(provider);
1571 static void provider_initialize(struct vpn_provider *provider)
1573 DBG("provider %p", provider);
1575 provider->index = 0;
1577 provider->name = NULL;
1578 provider->type = NULL;
1579 provider->domain = NULL;
1580 provider->identifier = NULL;
1581 provider->user_networks = NULL;
1582 provider->routes = g_hash_table_new_full(g_direct_hash, g_direct_equal,
1584 provider->user_routes = g_hash_table_new_full(g_str_hash, g_str_equal,
1585 g_free, free_route);
1586 provider->setting_strings = g_hash_table_new_full(g_str_hash,
1587 g_str_equal, g_free, free_setting);
1590 static struct vpn_provider *vpn_provider_new(void)
1592 struct vpn_provider *provider;
1594 provider = g_try_new0(struct vpn_provider, 1);
1595 if (provider == NULL)
1598 provider->refcount = 1;
1600 DBG("provider %p", provider);
1601 provider_initialize(provider);
1606 static struct vpn_provider *vpn_provider_get(const char *identifier)
1608 struct vpn_provider *provider;
1610 provider = g_hash_table_lookup(provider_hash, identifier);
1611 if (provider != NULL)
1614 provider = vpn_provider_new();
1615 if (provider == NULL)
1618 DBG("provider %p", provider);
1620 provider->identifier = g_strdup(identifier);
1622 g_hash_table_insert(provider_hash, provider->identifier, provider);
1624 configuration_count_add();
1629 static void provider_dbus_ident(char *ident)
1631 int i, len = strlen(ident);
1633 for (i = 0; i < len; i++) {
1634 if (ident[i] >= '0' && ident[i] <= '9')
1636 if (ident[i] >= 'a' && ident[i] <= 'z')
1638 if (ident[i] >= 'A' && ident[i] <= 'Z')
1644 static struct vpn_provider *provider_create_from_keyfile(GKeyFile *keyfile,
1647 struct vpn_provider *provider;
1649 if (keyfile == NULL || ident == NULL)
1652 provider = __vpn_provider_lookup(ident);
1653 if (provider == NULL) {
1654 provider = vpn_provider_get(ident);
1655 if (provider == NULL) {
1656 DBG("can not create provider");
1660 provider_load_from_keyfile(provider, keyfile);
1662 if (provider->name == NULL || provider->host == NULL ||
1663 provider->domain == NULL) {
1664 DBG("cannot get name, host or domain");
1665 vpn_provider_unref(provider);
1669 if (provider_register(provider) == 0)
1670 connection_register(provider);
1675 static void provider_create_all_from_type(const char *provider_type)
1682 DBG("provider type %s", provider_type);
1684 providers = __connman_storage_get_providers();
1686 if (providers == NULL)
1689 for (i = 0; providers[i] != NULL; i+=1) {
1691 if (strncmp(providers[i], "provider_", 9) != 0)
1694 id = providers[i] + 9;
1695 keyfile = __connman_storage_load_provider(id);
1697 if (keyfile == NULL)
1700 type = g_key_file_get_string(keyfile, id, "Type", NULL);
1702 DBG("keyfile %p id %s type %s", keyfile, id, type);
1704 if (strcmp(provider_type, type) != 0) {
1706 g_key_file_free(keyfile);
1710 if (provider_create_from_keyfile(keyfile, id) == NULL)
1711 DBG("could not create provider");
1714 g_key_file_free(keyfile);
1716 g_strfreev(providers);
1719 char *__vpn_provider_create_identifier(const char *host, const char *domain)
1723 ident = g_strdup_printf("%s_%s", host, domain);
1727 provider_dbus_ident(ident);
1732 int __vpn_provider_create(DBusMessage *msg)
1734 struct vpn_provider *provider;
1735 DBusMessageIter iter, array;
1736 const char *type = NULL, *name = NULL;
1737 const char *host = NULL, *domain = NULL;
1738 GSList *networks = NULL;
1742 dbus_message_iter_init(msg, &iter);
1743 dbus_message_iter_recurse(&iter, &array);
1745 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1746 DBusMessageIter entry, value;
1749 dbus_message_iter_recurse(&array, &entry);
1750 dbus_message_iter_get_basic(&entry, &key);
1752 dbus_message_iter_next(&entry);
1753 dbus_message_iter_recurse(&entry, &value);
1755 switch (dbus_message_iter_get_arg_type(&value)) {
1756 case DBUS_TYPE_STRING:
1757 if (g_str_equal(key, "Type") == TRUE)
1758 dbus_message_iter_get_basic(&value, &type);
1759 else if (g_str_equal(key, "Name") == TRUE)
1760 dbus_message_iter_get_basic(&value, &name);
1761 else if (g_str_equal(key, "Host") == TRUE)
1762 dbus_message_iter_get_basic(&value, &host);
1763 else if (g_str_equal(key, "VPN.Domain") == TRUE ||
1764 g_str_equal(key, "Domain") == TRUE)
1765 dbus_message_iter_get_basic(&value, &domain);
1767 case DBUS_TYPE_ARRAY:
1768 if (g_str_equal(key, "UserRoutes") == TRUE)
1769 networks = get_user_networks(&value);
1773 dbus_message_iter_next(&array);
1776 if (host == NULL || domain == NULL)
1779 DBG("Type %s name %s networks %p", type, name, networks);
1781 if (type == NULL || name == NULL)
1784 ident = __vpn_provider_create_identifier(host, domain);
1785 DBG("ident %s", ident);
1787 provider = __vpn_provider_lookup(ident);
1788 if (provider == NULL) {
1789 provider = vpn_provider_get(ident);
1790 if (provider == NULL) {
1791 DBG("can not create provider");
1796 provider->host = g_strdup(host);
1797 provider->domain = g_strdup(domain);
1798 provider->name = g_strdup(name);
1799 provider->type = g_strdup(type);
1801 if (provider_register(provider) == 0)
1802 vpn_provider_load(provider);
1804 provider_resolv_host_addr(provider);
1807 if (networks != NULL) {
1808 g_slist_free_full(provider->user_networks, free_route);
1809 provider->user_networks = networks;
1810 set_user_networks(provider, provider->user_networks);
1813 dbus_message_iter_init(msg, &iter);
1814 dbus_message_iter_recurse(&iter, &array);
1816 while (dbus_message_iter_get_arg_type(&array) == DBUS_TYPE_DICT_ENTRY) {
1817 DBusMessageIter entry, value;
1818 const char *key, *str;
1820 dbus_message_iter_recurse(&array, &entry);
1821 dbus_message_iter_get_basic(&entry, &key);
1823 dbus_message_iter_next(&entry);
1824 dbus_message_iter_recurse(&entry, &value);
1826 switch (dbus_message_iter_get_arg_type(&value)) {
1827 case DBUS_TYPE_STRING:
1828 dbus_message_iter_get_basic(&value, &str);
1829 vpn_provider_set_string(provider, key, str);
1833 dbus_message_iter_next(&array);
1838 vpn_provider_save(provider);
1840 err = provider_register(provider);
1841 if (err != 0 && err != -EALREADY)
1844 connection_register(provider);
1846 DBG("provider %p index %d path %s", provider, provider->index,
1849 g_dbus_send_reply(connection, msg,
1850 DBUS_TYPE_OBJECT_PATH, &provider->path,
1853 connection_added_signal(provider);
1858 static const char *get_string(GHashTable *settings, const char *key)
1860 DBG("settings %p key %s", settings, key);
1862 return g_hash_table_lookup(settings, key);
1865 static GSList *parse_user_networks(const char *network_str)
1867 GSList *networks = NULL;
1868 char **elems = g_strsplit(network_str, ",", 0);
1874 while (elems[i] != NULL) {
1875 struct vpn_route *vpn_route;
1876 char *network, *netmask, *gateway;
1880 route = g_strsplit(elems[i], "/", 0);
1885 if (network == NULL || network[0] == '\0')
1888 family = connman_inet_check_ipaddress(network);
1890 DBG("Cannot get address family of %s (%d/%s)", network,
1891 family, gai_strerror(family));
1902 DBG("Unsupported address family %d", family);
1907 if (netmask == NULL || netmask[0] == '\0')
1912 vpn_route = g_try_new0(struct vpn_route, 1);
1913 if (vpn_route == NULL) {
1918 vpn_route->family = family;
1919 vpn_route->network = g_strdup(network);
1920 vpn_route->netmask = g_strdup(netmask);
1921 vpn_route->gateway = g_strdup(gateway);
1923 DBG("route %s/%s%s%s", network, netmask,
1924 gateway ? " via " : "", gateway ? gateway : "");
1926 networks = g_slist_prepend(networks, vpn_route);
1935 return g_slist_reverse(networks);
1938 int __vpn_provider_create_from_config(GHashTable *settings,
1939 const char *config_ident,
1940 const char *config_entry)
1942 struct vpn_provider *provider;
1943 const char *type, *name, *host, *domain, *networks_str;
1946 GHashTableIter hash;
1947 gpointer value, key;
1950 type = get_string(settings, "Type");
1951 name = get_string(settings, "Name");
1952 host = get_string(settings, "Host");
1953 domain = get_string(settings, "Domain");
1954 networks_str = get_string(settings, "Networks");
1955 networks = parse_user_networks(networks_str);
1957 if (host == NULL || domain == NULL) {
1962 DBG("type %s name %s networks %s", type, name, networks_str);
1964 if (type == NULL || name == NULL) {
1969 ident = __vpn_provider_create_identifier(host, domain);
1970 DBG("ident %s", ident);
1972 provider = __vpn_provider_lookup(ident);
1973 if (provider == NULL) {
1974 provider = vpn_provider_get(ident);
1975 if (provider == NULL) {
1976 DBG("can not create provider");
1981 provider->host = g_strdup(host);
1982 provider->domain = g_strdup(domain);
1983 provider->name = g_strdup(name);
1984 provider->type = g_ascii_strdown(type, -1);
1986 provider->config_file = g_strdup(config_ident);
1987 provider->config_entry = g_strdup(config_entry);
1989 if (provider_register(provider) == 0)
1990 vpn_provider_load(provider);
1992 provider_resolv_host_addr(provider);
1995 if (networks != NULL) {
1996 g_slist_free_full(provider->user_networks, free_route);
1997 provider->user_networks = networks;
1998 set_user_networks(provider, provider->user_networks);
2001 g_hash_table_iter_init(&hash, settings);
2003 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE)
2004 vpn_provider_set_string(provider, key, value);
2006 vpn_provider_save(provider);
2008 err = provider_register(provider);
2009 if (err != 0 && err != -EALREADY)
2012 connection_register(provider);
2014 DBG("provider %p index %d path %s", provider, provider->index,
2017 connection_added_signal(provider);
2025 g_slist_free_full(networks, free_route);
2030 static void append_connection_structs(DBusMessageIter *iter, void *user_data)
2032 DBusMessageIter entry;
2033 GHashTableIter hash;
2034 gpointer value, key;
2036 g_hash_table_iter_init(&hash, provider_hash);
2038 while (g_hash_table_iter_next(&hash, &key, &value) == TRUE) {
2039 struct vpn_provider *provider = value;
2041 DBG("path %s", provider->path);
2043 if (provider->identifier == NULL)
2046 dbus_message_iter_open_container(iter, DBUS_TYPE_STRUCT,
2048 dbus_message_iter_append_basic(&entry, DBUS_TYPE_OBJECT_PATH,
2050 append_properties(&entry, provider);
2051 dbus_message_iter_close_container(iter, &entry);
2055 DBusMessage *__vpn_provider_get_connections(DBusMessage *msg)
2061 reply = dbus_message_new_method_return(msg);
2065 __connman_dbus_append_objpath_dict_array(reply,
2066 append_connection_structs, NULL);
2071 const char * __vpn_provider_get_ident(struct vpn_provider *provider)
2073 if (provider == NULL)
2076 return provider->identifier;
2079 static int set_string(struct vpn_provider *provider,
2080 const char *key, const char *value, gboolean hide_value)
2082 DBG("provider %p key %s value %s", provider, key,
2083 hide_value ? "<not printed>" : value);
2085 if (g_str_equal(key, "Type") == TRUE) {
2086 g_free(provider->type);
2087 provider->type = g_ascii_strdown(value, -1);
2088 send_value(provider->path, "Type", provider->type);
2089 } else if (g_str_equal(key, "Name") == TRUE) {
2090 g_free(provider->name);
2091 provider->name = g_strdup(value);
2092 send_value(provider->path, "Name", provider->name);
2093 } else if (g_str_equal(key, "Host") == TRUE) {
2094 g_free(provider->host);
2095 provider->host = g_strdup(value);
2096 send_value(provider->path, "Host", provider->host);
2097 } else if (g_str_equal(key, "VPN.Domain") == TRUE ||
2098 g_str_equal(key, "Domain") == TRUE) {
2099 g_free(provider->domain);
2100 provider->domain = g_strdup(value);
2101 send_value(provider->path, "Domain", provider->domain);
2103 struct vpn_setting *setting;
2105 setting = g_try_new(struct vpn_setting, 1);
2106 if (setting == NULL)
2109 setting->value = g_strdup(value);
2110 setting->hide_value = hide_value;
2112 if (hide_value == FALSE)
2113 send_value(provider->path, key, setting->value);
2115 g_hash_table_replace(provider->setting_strings,
2116 g_strdup(key), setting);
2122 int vpn_provider_set_string(struct vpn_provider *provider,
2123 const char *key, const char *value)
2125 return set_string(provider, key, value, FALSE);
2128 int vpn_provider_set_string_hide_value(struct vpn_provider *provider,
2129 const char *key, const char *value)
2131 return set_string(provider, key, value, TRUE);
2134 const char *vpn_provider_get_string(struct vpn_provider *provider,
2137 struct vpn_setting *setting;
2139 DBG("provider %p key %s", provider, key);
2141 if (g_str_equal(key, "Type") == TRUE)
2142 return provider->type;
2143 else if (g_str_equal(key, "Name") == TRUE)
2144 return provider->name;
2145 else if (g_str_equal(key, "Host") == TRUE)
2146 return provider->host;
2147 else if (g_str_equal(key, "HostIP") == TRUE) {
2148 if (provider->host_ip == NULL ||
2149 provider->host_ip[0] == NULL)
2150 return provider->host;
2152 return provider->host_ip[0];
2153 } else if (g_str_equal(key, "VPN.Domain") == TRUE ||
2154 g_str_equal(key, "Domain") == TRUE)
2155 return provider->domain;
2157 setting = g_hash_table_lookup(provider->setting_strings, key);
2158 if (setting == NULL)
2161 return setting->value;
2164 connman_bool_t __vpn_provider_check_routes(struct vpn_provider *provider)
2166 if (provider == NULL)
2169 if (provider->user_routes != NULL &&
2170 g_hash_table_size(provider->user_routes) > 0)
2173 if (provider->routes != NULL &&
2174 g_hash_table_size(provider->routes) > 0)
2180 void *vpn_provider_get_data(struct vpn_provider *provider)
2182 return provider->driver_data;
2185 void vpn_provider_set_data(struct vpn_provider *provider, void *data)
2187 provider->driver_data = data;
2190 void vpn_provider_set_index(struct vpn_provider *provider, int index)
2192 DBG("index %d provider %p", index, provider);
2194 if (provider->ipconfig_ipv4 == NULL) {
2195 provider->ipconfig_ipv4 = __vpn_ipconfig_create(index,
2197 if (provider->ipconfig_ipv4 == NULL) {
2198 DBG("Couldnt create ipconfig for IPv4");
2203 __vpn_ipconfig_set_index(provider->ipconfig_ipv4, index);
2205 if (provider->ipconfig_ipv6 == NULL) {
2206 provider->ipconfig_ipv6 = __vpn_ipconfig_create(index,
2208 if (provider->ipconfig_ipv6 == NULL) {
2209 DBG("Couldnt create ipconfig for IPv6");
2214 __vpn_ipconfig_set_index(provider->ipconfig_ipv6, index);
2217 provider->index = index;
2220 int vpn_provider_get_index(struct vpn_provider *provider)
2222 return provider->index;
2225 int vpn_provider_set_ipaddress(struct vpn_provider *provider,
2226 struct connman_ipaddress *ipaddress)
2228 struct vpn_ipconfig *ipconfig = NULL;
2230 switch (ipaddress->family) {
2232 ipconfig = provider->ipconfig_ipv4;
2235 ipconfig = provider->ipconfig_ipv6;
2241 DBG("provider %p ipconfig %p family %d", provider, ipconfig,
2244 if (ipconfig == NULL)
2247 provider->family = ipaddress->family;
2249 __vpn_ipconfig_set_local(ipconfig, ipaddress->local);
2250 __vpn_ipconfig_set_peer(ipconfig, ipaddress->peer);
2251 __vpn_ipconfig_set_broadcast(ipconfig, ipaddress->broadcast);
2252 __vpn_ipconfig_set_gateway(ipconfig, ipaddress->gateway);
2253 __vpn_ipconfig_set_prefixlen(ipconfig, ipaddress->prefixlen);
2258 int vpn_provider_set_pac(struct vpn_provider *provider,
2261 DBG("provider %p pac %s", provider, pac);
2267 int vpn_provider_set_domain(struct vpn_provider *provider,
2270 DBG("provider %p domain %s", provider, domain);
2272 g_free(provider->domain);
2273 provider->domain = g_strdup(domain);
2278 int vpn_provider_set_nameservers(struct vpn_provider *provider,
2279 const char *nameservers)
2281 DBG("provider %p nameservers %s", provider, nameservers);
2283 g_strfreev(provider->nameservers);
2284 provider->nameservers = NULL;
2286 if (nameservers == NULL)
2289 provider->nameservers = g_strsplit(nameservers, " ", 0);
2294 enum provider_route_type {
2295 PROVIDER_ROUTE_TYPE_NONE = 0,
2296 PROVIDER_ROUTE_TYPE_MASK = 1,
2297 PROVIDER_ROUTE_TYPE_ADDR = 2,
2298 PROVIDER_ROUTE_TYPE_GW = 3,
2301 static int route_env_parse(struct vpn_provider *provider, const char *key,
2302 int *family, unsigned long *idx,
2303 enum provider_route_type *type)
2308 DBG("name %s", provider->name);
2310 if (!strcmp(provider->type, "openvpn")) {
2311 if (g_str_has_prefix(key, "route_network_") == TRUE) {
2312 start = key + strlen("route_network_");
2313 *type = PROVIDER_ROUTE_TYPE_ADDR;
2314 } else if (g_str_has_prefix(key, "route_netmask_") == TRUE) {
2315 start = key + strlen("route_netmask_");
2316 *type = PROVIDER_ROUTE_TYPE_MASK;
2317 } else if (g_str_has_prefix(key, "route_gateway_") == TRUE) {
2318 start = key + strlen("route_gateway_");
2319 *type = PROVIDER_ROUTE_TYPE_GW;
2324 *idx = g_ascii_strtoull(start, &end, 10);
2326 } else if (!strcmp(provider->type, "openconnect")) {
2327 if (g_str_has_prefix(key, "CISCO_SPLIT_INC_") == TRUE) {
2329 start = key + strlen("CISCO_SPLIT_INC_");
2330 } else if (g_str_has_prefix(key,
2331 "CISCO_IPV6_SPLIT_INC_") == TRUE) {
2333 start = key + strlen("CISCO_IPV6_SPLIT_INC_");
2337 *idx = g_ascii_strtoull(start, &end, 10);
2339 if (strncmp(end, "_ADDR", 5) == 0)
2340 *type = PROVIDER_ROUTE_TYPE_ADDR;
2341 else if (strncmp(end, "_MASK", 5) == 0)
2342 *type = PROVIDER_ROUTE_TYPE_MASK;
2343 else if (strncmp(end, "_MASKLEN", 8) == 0 &&
2344 *family == AF_INET6) {
2345 *type = PROVIDER_ROUTE_TYPE_MASK;
2353 int vpn_provider_append_route(struct vpn_provider *provider,
2354 const char *key, const char *value)
2356 struct vpn_route *route;
2357 int ret, family = 0;
2358 unsigned long idx = 0;
2359 enum provider_route_type type = PROVIDER_ROUTE_TYPE_NONE;
2361 DBG("key %s value %s", key, value);
2363 ret = route_env_parse(provider, key, &family, &idx, &type);
2367 DBG("idx %lu family %d type %d", idx, family, type);
2369 route = g_hash_table_lookup(provider->routes, GINT_TO_POINTER(idx));
2370 if (route == NULL) {
2371 route = g_try_new0(struct vpn_route, 1);
2372 if (route == NULL) {
2373 connman_error("out of memory");
2377 route->family = family;
2379 g_hash_table_replace(provider->routes, GINT_TO_POINTER(idx),
2384 case PROVIDER_ROUTE_TYPE_NONE:
2386 case PROVIDER_ROUTE_TYPE_MASK:
2387 route->netmask = g_strdup(value);
2389 case PROVIDER_ROUTE_TYPE_ADDR:
2390 route->network = g_strdup(value);
2392 case PROVIDER_ROUTE_TYPE_GW:
2393 route->gateway = g_strdup(value);
2397 if (handle_routes == FALSE) {
2398 if (route->netmask != NULL && route->gateway != NULL &&
2399 route->network != NULL)
2400 provider_schedule_changed(provider);
2406 const char *vpn_provider_get_driver_name(struct vpn_provider *provider)
2408 if (provider->driver == NULL)
2411 return provider->driver->name;
2414 const char *vpn_provider_get_save_group(struct vpn_provider *provider)
2416 return provider->identifier;
2419 static gint compare_priority(gconstpointer a, gconstpointer b)
2424 static void clean_provider(gpointer key, gpointer value, gpointer user_data)
2426 struct vpn_provider *provider = value;
2428 if (provider->driver != NULL && provider->driver->remove)
2429 provider->driver->remove(provider);
2431 connection_unregister(provider);
2434 int vpn_provider_driver_register(struct vpn_provider_driver *driver)
2436 DBG("driver %p name %s", driver, driver->name);
2438 driver_list = g_slist_insert_sorted(driver_list, driver,
2440 provider_create_all_from_type(driver->name);
2444 void vpn_provider_driver_unregister(struct vpn_provider_driver *driver)
2446 GHashTableIter iter;
2447 gpointer value, key;
2449 DBG("driver %p name %s", driver, driver->name);
2451 driver_list = g_slist_remove(driver_list, driver);
2453 g_hash_table_iter_init(&iter, provider_hash);
2454 while (g_hash_table_iter_next(&iter, &key, &value) == TRUE) {
2455 struct vpn_provider *provider = value;
2457 if (provider != NULL && provider->driver != NULL &&
2458 provider->driver->type == driver->type &&
2459 g_strcmp0(provider->driver->name,
2460 driver->name) == 0) {
2461 provider->driver = NULL;
2466 static gboolean check_vpn_count(gpointer data)
2468 if (configuration_count == 0) {
2469 connman_info("No VPN configurations found, quitting.");
2476 void __vpn_provider_check_connections(void)
2479 * If we were started when there is no providers configured,
2480 * then just quit. This happens when connman starts and its
2481 * vpn plugin asks connman-vpnd if it has any connections
2482 * configured. If there are none, then we can stop the vpn
2485 g_timeout_add(1000, check_vpn_count, NULL);
2488 const char *vpn_provider_get_name(struct vpn_provider *provider)
2490 return provider->name;
2493 const char *vpn_provider_get_host(struct vpn_provider *provider)
2495 return provider->host;
2498 const char *vpn_provider_get_path(struct vpn_provider *provider)
2500 return provider->path;
2503 static int agent_probe(struct connman_agent *agent)
2505 DBG("agent %p", agent);
2509 static void agent_remove(struct connman_agent *agent)
2511 DBG("agent %p", agent);
2514 static struct connman_agent_driver agent_driver = {
2516 .interface = VPN_AGENT_INTERFACE,
2517 .probe = agent_probe,
2518 .remove = agent_remove,
2521 static void remove_unprovisioned_providers()
2524 GKeyFile *keyfile, *configkeyfile;
2525 char *file, *section;
2528 providers = __connman_storage_get_providers();
2529 if (providers == NULL)
2532 for (; providers[i] != NULL; i++) {
2533 char *group = providers[i] + sizeof("provider_") - 1;
2534 file = section = NULL;
2535 keyfile = configkeyfile = NULL;
2537 keyfile = __connman_storage_load_provider(group);
2538 if (keyfile == NULL)
2541 file = g_key_file_get_string(keyfile, group,
2542 "Config.file", NULL);
2546 section = g_key_file_get_string(keyfile, group,
2547 "Config.ident", NULL);
2548 if (section == NULL)
2551 configkeyfile = __connman_storage_load_provider_config(file);
2552 if (configkeyfile == NULL) {
2554 * Config file is missing, remove the provisioned
2557 __connman_storage_remove_provider(group);
2561 if (g_key_file_has_group(configkeyfile, section) == FALSE)
2563 * Config section is missing, remove the provisioned
2566 __connman_storage_remove_provider(group);
2569 if (keyfile != NULL)
2570 g_key_file_free(keyfile);
2572 if (configkeyfile != NULL)
2573 g_key_file_free(configkeyfile);
2579 g_strfreev(providers);
2582 int __vpn_provider_init(gboolean do_routes)
2588 handle_routes = do_routes;
2590 err = connman_agent_driver_register(&agent_driver);
2592 connman_error("Cannot register agent driver for %s",
2597 connection = connman_dbus_get_connection();
2599 remove_unprovisioned_providers();
2601 provider_hash = g_hash_table_new_full(g_str_hash, g_str_equal,
2602 NULL, unregister_provider);
2606 void __vpn_provider_cleanup(void)
2610 g_hash_table_foreach(provider_hash, clean_provider, NULL);
2612 g_hash_table_destroy(provider_hash);
2613 provider_hash = NULL;
2615 connman_agent_driver_unregister(&agent_driver);
2617 dbus_connection_unref(connection);