stroke now uses constant size string buffer
[strongswan.git] / src / stroke / stroke.c
1 /* Stroke for charon is the counterpart to whack from pluto
2 * Copyright (C) 2006 Martin Willi - Hochschule fuer Technik Rapperswil
3 *
4 * This program is free software; you can redistribute it and/or modify it
5 * under the terms of the GNU General Public License as published by the
6 * Free Software Foundation; either version 2 of the License, or (at your
7 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
8 *
9 * This program is distributed in the hope that it will be useful, but
10 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
11 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
12 * for more details.
13 */
14
15 #include <stdlib.h>
16 #include <sys/types.h>
17 #include <sys/stat.h>
18 #include <sys/socket.h>
19 #include <sys/un.h>
20 #include <sys/fcntl.h>
21 #include <unistd.h>
22 #include <dirent.h>
23 #include <errno.h>
24 #include <stdio.h>
25 #include <linux/stddef.h>
26
27 #include "stroke.h"
28
29 #define streq(a, b) (strcmp((a), (b)) == 0) /* clearer shorthand */
30
31 static char* push_string(stroke_msg_t *msg, char *string)
32 {
33 u_int string_start = msg->length;
34
35 if (string == NULL || msg->length + strlen(string) >= sizeof(stroke_msg_t))
36 {
37 return NULL;
38 }
39 else
40 {
41 msg->length += strlen(string) + 1;
42 strcpy((char*)msg + string_start, string);
43 return (char*)string_start;
44 }
45 }
46
47 static int send_stroke_msg (stroke_msg_t *msg)
48 {
49 struct sockaddr_un ctl_addr = { AF_UNIX, STROKE_SOCKET };
50 int sock;
51 char buffer[64];
52 int byte_count;
53
54 sock = socket(AF_UNIX, SOCK_STREAM, 0);
55 if (sock < 0)
56 {
57 fprintf(stderr, "Opening unix socket %s: %s\n", STROKE_SOCKET, strerror(errno));
58 return -1;
59 }
60 if (connect(sock, (struct sockaddr *)&ctl_addr,
61 offsetof(struct sockaddr_un, sun_path) + strlen(ctl_addr.sun_path)) < 0)
62 {
63 fprintf(stderr, "Connect to socket failed: %s\n", strerror(errno));
64 close(sock);
65 return -1;
66 }
67
68 /* send message */
69 if (write(sock, msg, msg->length) != msg->length)
70 {
71 fprintf(stderr, "writing to socket failed: %s\n", strerror(errno));
72 close(sock);
73 return -1;
74 }
75
76 while ((byte_count = read(sock, buffer, sizeof(buffer)-1)) > 0)
77 {
78 buffer[byte_count] = '\0';
79 printf("%s", buffer);
80 }
81 if (byte_count < 0)
82 {
83 fprintf(stderr, "reading from socket failed: %s\n", strerror(errno));
84 }
85
86 close(sock);
87 return 0;
88 }
89
90 static int add_connection(char *name,
91 char *my_id, char *other_id,
92 char *my_addr, char *other_addr,
93 char *my_net, char *other_net,
94 u_int my_netmask, u_int other_netmask)
95 {
96 stroke_msg_t msg;
97
98 msg.length = offsetof(stroke_msg_t, buffer);
99 msg.type = STR_ADD_CONN;
100
101 msg.add_conn.name = push_string(&msg, name);
102 msg.add_conn.ikev2 = 1;
103
104 msg.add_conn.me.id = push_string(&msg, my_id);
105 msg.add_conn.me.address = push_string(&msg, my_addr);
106 msg.add_conn.me.subnet = push_string(&msg, my_net);
107 msg.add_conn.me.subnet_mask = my_netmask;
108 msg.add_conn.me.cert = NULL;
109
110 msg.add_conn.other.id = push_string(&msg, other_id);
111 msg.add_conn.other.address = push_string(&msg, other_addr);
112 msg.add_conn.other.subnet = push_string(&msg, other_net);
113 msg.add_conn.other.subnet_mask = other_netmask;
114 msg.add_conn.other.cert = NULL;
115
116 return send_stroke_msg(&msg);
117 }
118
119 static int initiate_connection(char *name)
120 {
121 stroke_msg_t msg;
122
123 msg.length = offsetof(stroke_msg_t, buffer);
124 msg.type = STR_INITIATE;
125 msg.initiate.name = push_string(&msg, name);
126 return send_stroke_msg(&msg);
127 }
128
129 static int terminate_connection(char *name)
130 {
131 stroke_msg_t msg;
132
133 msg.type = STR_TERMINATE;
134 msg.length = offsetof(stroke_msg_t, buffer);
135 msg.initiate.name = push_string(&msg, name);
136 return send_stroke_msg(&msg);
137 }
138
139 static int show_status(char *mode, char *connection)
140 {
141 stroke_msg_t msg;
142
143 if (strcmp(mode, "statusall") == 0)
144 msg.type = STR_STATUS_ALL;
145 else
146 msg.type = STR_STATUS;
147
148 msg.length = offsetof(stroke_msg_t, buffer);
149 msg.status.name = push_string(&msg, connection);
150 return send_stroke_msg(&msg);
151 }
152
153 static int list_certs(void)
154 {
155 stroke_msg_t msg;
156
157 msg.type = STR_LIST_CERTS;
158 msg.length = offsetof(stroke_msg_t, buffer);
159 return send_stroke_msg(&msg);
160 }
161
162 static int set_logtype(char *context, char *type, int enable)
163 {
164 stroke_msg_t msg;
165
166 msg.type = STR_LOGTYPE;
167 msg.length = offsetof(stroke_msg_t, buffer);
168 msg.logtype.context = push_string(&msg, context);
169 msg.logtype.type = push_string(&msg, type);
170 msg.logtype.enable = enable;
171 return send_stroke_msg(&msg);
172 }
173
174 static int set_loglevel(char *context, u_int level)
175 {
176 stroke_msg_t msg;
177
178 msg.type = STR_LOGLEVEL;
179 msg.length = offsetof(stroke_msg_t, buffer);
180 msg.loglevel.context = push_string(&msg, context);
181 msg.loglevel.level = level;
182 return send_stroke_msg(&msg);
183 }
184
185 static void exit_error(char *error)
186 {
187 if (error)
188 {
189 fprintf(stderr, "%s\n", error);
190 }
191 exit(-1);
192 }
193
194 static void exit_usage(char *error)
195 {
196 printf("Usage:\n");
197 printf(" Add a connection:\n");
198 printf(" stroke add NAME MY_ID OTHER_ID MY_ADDR OTHER_ADDR\\\n");
199 printf(" MY_NET OTHER_NET MY_NETBITS OTHER_NETBITS\n");
200 printf(" where: ID is any IKEv2 ID \n");
201 printf(" ADDR is a IPv4 address\n");
202 printf(" NET is a IPv4 address of the subnet to tunnel\n");
203 printf(" NETBITS is the size of the subnet, as the \"24\" in 192.168.0.0/24\n");
204 printf(" Initiate a connection:\n");
205 printf(" stroke up NAME\n");
206 printf(" where: NAME is a connection name added with \"stroke add\"\n");
207 printf(" Terminate a connection:\n");
208 printf(" stroke down NAME\n");
209 printf(" where: NAME is a connection name added with \"stroke add\"\n");
210 printf(" Set logtype for a logging context:\n");
211 printf(" stroke logtype CONTEXT TYPE ENABLE\n");
212 printf(" where: CONTEXT is PARSR|GNRAT|IKESA|SAMGR|CHDSA|MESSG|TPOOL|WORKR|SCHED|\n");
213 printf(" SENDR|RECVR|SOCKT|TESTR|DAEMN|CONFG|ENCPL|PAYLD\n");
214 printf(" TYPE is CONTROL|ERROR|AUDIT|RAW|PRIVATE\n");
215 printf(" ENABLE is 0|1\n");
216 printf(" Set loglevel for a logging context:\n");
217 printf(" stroke loglevel CONTEXT LEVEL\n");
218 printf(" where: CONTEXT is PARSR|GNRAT|IKESA|SAMGR|CHDSA|MESSG|TPOOL|WORKR|SCHED|\n");
219 printf(" SENDR|RECVR|SOCKT|TESTR|DAEMN|CONFG|ENCPL|PAYLD\n");
220 printf(" LEVEL is 0|1|2|3\n");
221 printf(" Show connection status:\n");
222 printf(" stroke status\n");
223 printf(" Show list of locally loaded certificates:\n");
224 printf(" stroke listcerts\n");
225 exit_error(error);
226 }
227
228 int main(int argc, char *argv[])
229 {
230 int res = 0;
231 char *op;
232
233 if (argc < 2)
234 {
235 exit_usage(NULL);
236 }
237
238 op = argv[1];
239
240 if (streq(op, "status") || streq(op, "statusall"))
241 {
242 res = show_status(op, argc > 2 ? argv[2] : NULL);
243 }
244 else if (streq(op, "listcerts") || streq(op, "listall"))
245 {
246 res = list_certs();
247 }
248 else if (streq(op, "up"))
249 {
250 if (argc < 3)
251 {
252 exit_usage("\"up\" needs a connection name");
253 }
254 res = initiate_connection(argv[2]);
255 }
256 else if (streq(op, "down"))
257 {
258 if (argc < 3)
259 {
260 exit_usage("\"down\" needs a connection name");
261 }
262 res = terminate_connection(argv[2]);
263 }
264 else if (streq(op, "add"))
265 {
266 if (argc < 11)
267 {
268 exit_usage("\"add\" needs more parameters...");
269 }
270 res = add_connection(argv[2],
271 argv[3], argv[4],
272 argv[5], argv[6],
273 argv[7], argv[8],
274 atoi(argv[9]), atoi(argv[10]));
275 }
276 else if (streq(op, "logtype"))
277 {
278 if (argc < 5)
279 {
280 exit_usage("\"logtype\" needs more parameters...");
281 }
282 res = set_logtype(argv[2], argv[3], atoi(argv[4]));
283 }
284 else if (streq(op, "loglevel"))
285 {
286 if (argc < 4)
287 {
288 exit_usage("\"logtype\" needs more parameters...");
289 }
290 res = set_loglevel(argv[2], atoi(argv[3]));
291 }
292 else
293 {
294 exit_usage(NULL);
295 }
296
297 return res;
298 }