2 * This program is free software; you can redistribute it and/or modify
3 * it under the terms of the GNU General Public License as published by
4 * the Free Software Foundation; either version 2 of the License, or
5 * (at your option) any later version.
7 * This program is distributed in the hope that it will be useful,
8 * but WITHOUT ANY WARRANTY; without even the implied warranty of
9 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
10 * GNU General Public License for more details.
12 * You should have received a copy of the GNU General Public License
13 * along with this program; if not, write to the Free Software
14 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
18 * Author : Boris Mikhailenko <stg34@stargazer.dp.ua>
21 #include <netinet/in.h>
22 #include <linux/netfilter.h>
27 #include "stg/raw_ip_packet.h"
28 #include "stg/traffcounter.h"
29 #include "stg/plugin_creator.h"
38 //-----------------------------------------------------------------------------
39 //-----------------------------------------------------------------------------
40 //-----------------------------------------------------------------------------
41 PLUGIN_CREATOR<IPQ_CAP> icc;
42 //-----------------------------------------------------------------------------
43 //-----------------------------------------------------------------------------
44 //-----------------------------------------------------------------------------
47 return icc.GetPlugin();
49 //-----------------------------------------------------------------------------
50 //-----------------------------------------------------------------------------
51 //-----------------------------------------------------------------------------
52 const std::string IPQ_CAP::GetVersion() const
54 return "ipq_cap v.1.2";
56 //-----------------------------------------------------------------------------
67 memset(buf, 0, BUFSIZE);
69 //-----------------------------------------------------------------------------
76 errorStr = "Cannot open socket!";
77 printfd(__FILE__, "Cannot open socket\n");
81 if (pthread_create(&thread, NULL, Run, this) == 0)
85 errorStr = "Cannot create thread.";
86 printfd(__FILE__, "Cannot create thread\n");
89 //-----------------------------------------------------------------------------
95 //5 seconds to thread stops itself
96 for (int i = 0; i < 25; i++)
100 struct timespec ts = {0, 200000000};
101 nanosleep(&ts, NULL);
103 //after 5 seconds waiting thread still running. now killing it
106 if (pthread_kill(thread, SIGINT))
108 errorStr = "Cannot kill thread.";
111 for (int i = 0; i < 25 && isRunning; ++i)
113 struct timespec ts = {0, 200000000};
114 nanosleep(&ts, NULL);
118 printfd(__FILE__, "Thread not stopped\n");
122 pthread_join(thread, NULL);
128 //-----------------------------------------------------------------------------
129 void * IPQ_CAP::Run(void * d)
132 sigfillset(&signalSet);
133 pthread_sigmask(SIG_BLOCK, &signalSet, NULL);
135 RAW_PACKET raw_packet;
137 IPQ_CAP * dc = static_cast<IPQ_CAP *>(d);
138 dc->isRunning = true;
139 memset(&raw_packet, 0, sizeof(raw_packet));
140 raw_packet.dataLen = -1;
143 int status = dc->IPQCapRead(&raw_packet, 68);
149 dc->traffCnt->Process(raw_packet);
151 dc->isRunning = false;
154 //-----------------------------------------------------------------------------
155 int IPQ_CAP::IPQCapOpen()
157 ipq_h = ipq_create_handle(0, PF_INET);
160 ipq_destroy_handle(ipq_h);
161 errorStr = "Cannot create ipq handle!";
164 int status = ipq_set_mode(ipq_h, IPQ_COPY_PACKET, PAYLOAD_LEN);
167 ipq_destroy_handle(ipq_h);
168 errorStr = "Cannot set IPQ_COPY_PACKET mode!";
173 //-----------------------------------------------------------------------------
174 int IPQ_CAP::IPQCapClose()
176 ipq_destroy_handle(ipq_h);
179 //-----------------------------------------------------------------------------
180 int IPQ_CAP::IPQCapRead(void * buffer, int blen)
182 memset(buf, 0, BUFSIZE);
183 int status = ipq_read(ipq_h, buf, BUFSIZE, 1);
190 if (ipq_message_type(buf) != IPQM_PACKET)
192 static ipq_packet_msg_t * m = ipq_get_packet(buf);
193 memcpy(buffer, m->payload, blen);
194 ipq_set_verdict(ipq_h, m->packet_id, NF_ACCEPT, 0, NULL);
197 //-----------------------------------------------------------------------------