2021-10-21 15:24:11 -06:00
|
|
|
//go:build !e2e_testing
|
2021-03-29 13:29:20 -06:00
|
|
|
// +build !e2e_testing
|
|
|
|
|
2021-11-11 15:37:29 -07:00
|
|
|
package overlay
|
2020-07-01 09:20:52 -06:00
|
|
|
|
|
|
|
import (
|
|
|
|
"fmt"
|
|
|
|
"io"
|
|
|
|
"net"
|
|
|
|
"os"
|
2024-03-28 14:17:28 -06:00
|
|
|
"sync/atomic"
|
2020-07-01 09:20:52 -06:00
|
|
|
|
2021-03-26 08:46:30 -06:00
|
|
|
"github.com/sirupsen/logrus"
|
2022-08-05 08:58:10 -06:00
|
|
|
"github.com/slackhq/nebula/cidr"
|
2024-03-28 14:17:28 -06:00
|
|
|
"github.com/slackhq/nebula/config"
|
2021-11-12 10:19:28 -07:00
|
|
|
"github.com/slackhq/nebula/iputil"
|
2024-03-28 14:17:28 -06:00
|
|
|
"github.com/slackhq/nebula/util"
|
2020-07-01 09:20:52 -06:00
|
|
|
)
|
|
|
|
|
2021-11-12 09:47:36 -07:00
|
|
|
type tun struct {
|
2020-07-01 09:20:52 -06:00
|
|
|
io.ReadWriteCloser
|
2022-08-05 08:58:10 -06:00
|
|
|
fd int
|
|
|
|
cidr *net.IPNet
|
2024-03-28 14:17:28 -06:00
|
|
|
Routes atomic.Pointer[[]Route]
|
|
|
|
routeTree atomic.Pointer[cidr.Tree4[iputil.VpnIp]]
|
2022-08-05 08:58:10 -06:00
|
|
|
l *logrus.Logger
|
2020-07-01 09:20:52 -06:00
|
|
|
}
|
|
|
|
|
2024-03-28 14:17:28 -06:00
|
|
|
func newTunFromFd(c *config.C, l *logrus.Logger, deviceFd int, cidr *net.IPNet) (*tun, error) {
|
2022-11-11 09:18:43 -07:00
|
|
|
// XXX Android returns an fd in non-blocking mode which is necessary for shutdown to work properly.
|
|
|
|
// Be sure not to call file.Fd() as it will set the fd to blocking mode.
|
2020-07-01 09:20:52 -06:00
|
|
|
file := os.NewFile(uintptr(deviceFd), "/dev/net/tun")
|
|
|
|
|
2024-03-28 14:17:28 -06:00
|
|
|
t := &tun{
|
2020-07-01 09:20:52 -06:00
|
|
|
ReadWriteCloser: file,
|
2022-11-11 09:18:43 -07:00
|
|
|
fd: deviceFd,
|
2021-11-12 11:47:09 -07:00
|
|
|
cidr: cidr,
|
2021-03-26 08:46:30 -06:00
|
|
|
l: l,
|
2024-03-28 14:17:28 -06:00
|
|
|
}
|
|
|
|
|
|
|
|
err := t.reload(c, true)
|
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
|
|
|
|
c.RegisterReloadCallback(func(c *config.C) {
|
|
|
|
err := t.reload(c, false)
|
|
|
|
if err != nil {
|
|
|
|
util.LogWithContextIfNeeded("failed to reload tun device", err, t.l)
|
|
|
|
}
|
|
|
|
})
|
|
|
|
|
|
|
|
return t, nil
|
2020-07-01 09:20:52 -06:00
|
|
|
}
|
|
|
|
|
2024-03-28 14:17:28 -06:00
|
|
|
func newTun(_ *config.C, _ *logrus.Logger, _ *net.IPNet, _ bool) (*tun, error) {
|
2020-07-01 09:20:52 -06:00
|
|
|
return nil, fmt.Errorf("newTun not supported in Android")
|
|
|
|
}
|
|
|
|
|
2022-08-05 08:58:10 -06:00
|
|
|
func (t *tun) RouteFor(ip iputil.VpnIp) iputil.VpnIp {
|
2024-03-28 14:17:28 -06:00
|
|
|
_, r := t.routeTree.Load().MostSpecificContains(ip)
|
2023-12-06 14:18:21 -07:00
|
|
|
return r
|
2021-11-12 10:19:28 -07:00
|
|
|
}
|
|
|
|
|
2021-11-12 09:47:36 -07:00
|
|
|
func (t tun) Activate() error {
|
2020-07-01 09:20:52 -06:00
|
|
|
return nil
|
|
|
|
}
|
2020-07-28 06:53:16 -06:00
|
|
|
|
2024-03-28 14:17:28 -06:00
|
|
|
func (t *tun) reload(c *config.C, initial bool) error {
|
|
|
|
change, routes, err := getAllRoutesFromConfig(c, t.cidr, initial)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
if !initial && !change {
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
routeTree, err := makeRouteTree(t.l, routes, false)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
// Teach nebula how to handle the routes
|
|
|
|
t.Routes.Store(&routes)
|
|
|
|
t.routeTree.Store(routeTree)
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2021-11-12 11:47:09 -07:00
|
|
|
func (t *tun) Cidr() *net.IPNet {
|
|
|
|
return t.cidr
|
2020-07-28 06:53:16 -06:00
|
|
|
}
|
|
|
|
|
2021-11-12 11:47:09 -07:00
|
|
|
func (t *tun) Name() string {
|
2021-11-12 10:19:28 -07:00
|
|
|
return "android"
|
2020-07-28 06:53:16 -06:00
|
|
|
}
|
2021-02-25 13:01:14 -07:00
|
|
|
|
2021-11-12 09:47:36 -07:00
|
|
|
func (t *tun) NewMultiQueueReader() (io.ReadWriteCloser, error) {
|
2021-02-25 13:01:14 -07:00
|
|
|
return nil, fmt.Errorf("TODO: multiqueue not implemented for android")
|
|
|
|
}
|