sctp_sysctl.c revision 271746
1/*-
2 * Copyright (c) 2007, by Cisco Systems, Inc. All rights reserved.
3 * Copyright (c) 2008-2012, by Randall Stewart. All rights reserved.
4 * Copyright (c) 2008-2012, by Michael Tuexen. All rights reserved.
5 *
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions are met:
8 *
9 * a) Redistributions of source code must retain the above copyright notice,
10 *    this list of conditions and the following disclaimer.
11 *
12 * b) Redistributions in binary form must reproduce the above copyright
13 *    notice, this list of conditions and the following disclaimer in
14 *    the documentation and/or other materials provided with the distribution.
15 *
16 * c) Neither the name of Cisco Systems, Inc. nor the names of its
17 *    contributors may be used to endorse or promote products derived
18 *    from this software without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
21 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
22 * THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
24 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
25 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
26 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
27 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
28 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
30 * THE POSSIBILITY OF SUCH DAMAGE.
31 */
32
33#include <sys/cdefs.h>
34__FBSDID("$FreeBSD: stable/10/sys/netinet/sctp_sysctl.c 271746 2014-09-18 08:58:22Z tuexen $");
35
36#include <netinet/sctp_os.h>
37#include <netinet/sctp.h>
38#include <netinet/sctp_constants.h>
39#include <netinet/sctp_sysctl.h>
40#include <netinet/sctp_pcb.h>
41#include <netinet/sctputil.h>
42#include <netinet/sctp_output.h>
43#include <sys/smp.h>
44#include <sys/sysctl.h>
45
46FEATURE(sctp, "Stream Control Transmission Protocol");
47
48/*
49 * sysctl tunable variables
50 */
51
52void
53sctp_init_sysctls()
54{
55	SCTP_BASE_SYSCTL(sctp_sendspace) = SCTPCTL_MAXDGRAM_DEFAULT;
56	SCTP_BASE_SYSCTL(sctp_recvspace) = SCTPCTL_RECVSPACE_DEFAULT;
57	SCTP_BASE_SYSCTL(sctp_auto_asconf) = SCTPCTL_AUTOASCONF_DEFAULT;
58	SCTP_BASE_SYSCTL(sctp_multiple_asconfs) = SCTPCTL_MULTIPLEASCONFS_DEFAULT;
59	SCTP_BASE_SYSCTL(sctp_ecn_enable) = SCTPCTL_ECN_ENABLE_DEFAULT;
60	SCTP_BASE_SYSCTL(sctp_pr_enable) = SCTPCTL_PR_ENABLE_DEFAULT;
61	SCTP_BASE_SYSCTL(sctp_auth_disable) = SCTPCTL_AUTH_DISABLE_DEFAULT;
62	SCTP_BASE_SYSCTL(sctp_asconf_enable) = SCTPCTL_ASCONF_ENABLE_DEFAULT;
63	SCTP_BASE_SYSCTL(sctp_reconfig_enable) = SCTPCTL_RECONFIG_ENABLE_DEFAULT;
64	SCTP_BASE_SYSCTL(sctp_nrsack_enable) = SCTPCTL_NRSACK_ENABLE_DEFAULT;
65	SCTP_BASE_SYSCTL(sctp_pktdrop_enable) = SCTPCTL_PKTDROP_ENABLE_DEFAULT;
66	SCTP_BASE_SYSCTL(sctp_strict_sacks) = SCTPCTL_STRICT_SACKS_DEFAULT;
67	SCTP_BASE_SYSCTL(sctp_peer_chunk_oh) = SCTPCTL_PEER_CHKOH_DEFAULT;
68	SCTP_BASE_SYSCTL(sctp_max_burst_default) = SCTPCTL_MAXBURST_DEFAULT;
69	SCTP_BASE_SYSCTL(sctp_fr_max_burst_default) = SCTPCTL_FRMAXBURST_DEFAULT;
70	SCTP_BASE_SYSCTL(sctp_max_chunks_on_queue) = SCTPCTL_MAXCHUNKS_DEFAULT;
71	SCTP_BASE_SYSCTL(sctp_hashtblsize) = SCTPCTL_TCBHASHSIZE_DEFAULT;
72	SCTP_BASE_SYSCTL(sctp_pcbtblsize) = SCTPCTL_PCBHASHSIZE_DEFAULT;
73	SCTP_BASE_SYSCTL(sctp_min_split_point) = SCTPCTL_MIN_SPLIT_POINT_DEFAULT;
74	SCTP_BASE_SYSCTL(sctp_chunkscale) = SCTPCTL_CHUNKSCALE_DEFAULT;
75	SCTP_BASE_SYSCTL(sctp_delayed_sack_time_default) = SCTPCTL_DELAYED_SACK_TIME_DEFAULT;
76	SCTP_BASE_SYSCTL(sctp_sack_freq_default) = SCTPCTL_SACK_FREQ_DEFAULT;
77	SCTP_BASE_SYSCTL(sctp_system_free_resc_limit) = SCTPCTL_SYS_RESOURCE_DEFAULT;
78	SCTP_BASE_SYSCTL(sctp_asoc_free_resc_limit) = SCTPCTL_ASOC_RESOURCE_DEFAULT;
79	SCTP_BASE_SYSCTL(sctp_heartbeat_interval_default) = SCTPCTL_HEARTBEAT_INTERVAL_DEFAULT;
80	SCTP_BASE_SYSCTL(sctp_pmtu_raise_time_default) = SCTPCTL_PMTU_RAISE_TIME_DEFAULT;
81	SCTP_BASE_SYSCTL(sctp_shutdown_guard_time_default) = SCTPCTL_SHUTDOWN_GUARD_TIME_DEFAULT;
82	SCTP_BASE_SYSCTL(sctp_secret_lifetime_default) = SCTPCTL_SECRET_LIFETIME_DEFAULT;
83	SCTP_BASE_SYSCTL(sctp_rto_max_default) = SCTPCTL_RTO_MAX_DEFAULT;
84	SCTP_BASE_SYSCTL(sctp_rto_min_default) = SCTPCTL_RTO_MIN_DEFAULT;
85	SCTP_BASE_SYSCTL(sctp_rto_initial_default) = SCTPCTL_RTO_INITIAL_DEFAULT;
86	SCTP_BASE_SYSCTL(sctp_init_rto_max_default) = SCTPCTL_INIT_RTO_MAX_DEFAULT;
87	SCTP_BASE_SYSCTL(sctp_valid_cookie_life_default) = SCTPCTL_VALID_COOKIE_LIFE_DEFAULT;
88	SCTP_BASE_SYSCTL(sctp_init_rtx_max_default) = SCTPCTL_INIT_RTX_MAX_DEFAULT;
89	SCTP_BASE_SYSCTL(sctp_assoc_rtx_max_default) = SCTPCTL_ASSOC_RTX_MAX_DEFAULT;
90	SCTP_BASE_SYSCTL(sctp_path_rtx_max_default) = SCTPCTL_PATH_RTX_MAX_DEFAULT;
91	SCTP_BASE_SYSCTL(sctp_path_pf_threshold) = SCTPCTL_PATH_PF_THRESHOLD_DEFAULT;
92	SCTP_BASE_SYSCTL(sctp_add_more_threshold) = SCTPCTL_ADD_MORE_ON_OUTPUT_DEFAULT;
93	SCTP_BASE_SYSCTL(sctp_nr_incoming_streams_default) = SCTPCTL_INCOMING_STREAMS_DEFAULT;
94	SCTP_BASE_SYSCTL(sctp_nr_outgoing_streams_default) = SCTPCTL_OUTGOING_STREAMS_DEFAULT;
95	SCTP_BASE_SYSCTL(sctp_cmt_on_off) = SCTPCTL_CMT_ON_OFF_DEFAULT;
96	SCTP_BASE_SYSCTL(sctp_cmt_use_dac) = SCTPCTL_CMT_USE_DAC_DEFAULT;
97	SCTP_BASE_SYSCTL(sctp_use_cwnd_based_maxburst) = SCTPCTL_CWND_MAXBURST_DEFAULT;
98	SCTP_BASE_SYSCTL(sctp_nat_friendly) = SCTPCTL_NAT_FRIENDLY_DEFAULT;
99	SCTP_BASE_SYSCTL(sctp_L2_abc_variable) = SCTPCTL_ABC_L_VAR_DEFAULT;
100	SCTP_BASE_SYSCTL(sctp_mbuf_threshold_count) = SCTPCTL_MAX_CHAINED_MBUFS_DEFAULT;
101	SCTP_BASE_SYSCTL(sctp_do_drain) = SCTPCTL_DO_SCTP_DRAIN_DEFAULT;
102	SCTP_BASE_SYSCTL(sctp_hb_maxburst) = SCTPCTL_HB_MAX_BURST_DEFAULT;
103	SCTP_BASE_SYSCTL(sctp_abort_if_one_2_one_hits_limit) = SCTPCTL_ABORT_AT_LIMIT_DEFAULT;
104	SCTP_BASE_SYSCTL(sctp_strict_data_order) = SCTPCTL_STRICT_DATA_ORDER_DEFAULT;
105	SCTP_BASE_SYSCTL(sctp_min_residual) = SCTPCTL_MIN_RESIDUAL_DEFAULT;
106	SCTP_BASE_SYSCTL(sctp_max_retran_chunk) = SCTPCTL_MAX_RETRAN_CHUNK_DEFAULT;
107	SCTP_BASE_SYSCTL(sctp_logging_level) = SCTPCTL_LOGGING_LEVEL_DEFAULT;
108	SCTP_BASE_SYSCTL(sctp_default_cc_module) = SCTPCTL_DEFAULT_CC_MODULE_DEFAULT;
109	SCTP_BASE_SYSCTL(sctp_default_ss_module) = SCTPCTL_DEFAULT_SS_MODULE_DEFAULT;
110	SCTP_BASE_SYSCTL(sctp_default_frag_interleave) = SCTPCTL_DEFAULT_FRAG_INTERLEAVE_DEFAULT;
111	SCTP_BASE_SYSCTL(sctp_mobility_base) = SCTPCTL_MOBILITY_BASE_DEFAULT;
112	SCTP_BASE_SYSCTL(sctp_mobility_fasthandoff) = SCTPCTL_MOBILITY_FASTHANDOFF_DEFAULT;
113	SCTP_BASE_SYSCTL(sctp_vtag_time_wait) = SCTPCTL_TIME_WAIT_DEFAULT;
114	SCTP_BASE_SYSCTL(sctp_buffer_splitting) = SCTPCTL_BUFFER_SPLITTING_DEFAULT;
115	SCTP_BASE_SYSCTL(sctp_initial_cwnd) = SCTPCTL_INITIAL_CWND_DEFAULT;
116	SCTP_BASE_SYSCTL(sctp_rttvar_bw) = SCTPCTL_RTTVAR_BW_DEFAULT;
117	SCTP_BASE_SYSCTL(sctp_rttvar_rtt) = SCTPCTL_RTTVAR_RTT_DEFAULT;
118	SCTP_BASE_SYSCTL(sctp_rttvar_eqret) = SCTPCTL_RTTVAR_EQRET_DEFAULT;
119	SCTP_BASE_SYSCTL(sctp_steady_step) = SCTPCTL_RTTVAR_STEADYS_DEFAULT;
120	SCTP_BASE_SYSCTL(sctp_use_dccc_ecn) = SCTPCTL_RTTVAR_DCCCECN_DEFAULT;
121	SCTP_BASE_SYSCTL(sctp_blackhole) = SCTPCTL_BLACKHOLE_DEFAULT;
122	SCTP_BASE_SYSCTL(sctp_diag_info_code) = SCTPCTL_DIAG_INFO_CODE_DEFAULT;
123#if defined(SCTP_LOCAL_TRACE_BUF)
124	memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
125#endif
126	SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = SCTPCTL_UDP_TUNNELING_PORT_DEFAULT;
127	SCTP_BASE_SYSCTL(sctp_enable_sack_immediately) = SCTPCTL_SACK_IMMEDIATELY_ENABLE_DEFAULT;
128	SCTP_BASE_SYSCTL(sctp_inits_include_nat_friendly) = SCTPCTL_NAT_FRIENDLY_INITS_DEFAULT;
129#if defined(SCTP_DEBUG)
130	SCTP_BASE_SYSCTL(sctp_debug_on) = SCTPCTL_DEBUG_DEFAULT;
131#endif
132#if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
133	SCTP_BASE_SYSCTL(sctp_output_unlocked) = SCTPCTL_OUTPUT_UNLOCKED_DEFAULT;
134#endif
135}
136
137
138/* It returns an upper limit. No filtering is done here */
139static unsigned int
140sctp_sysctl_number_of_addresses(struct sctp_inpcb *inp)
141{
142	unsigned int cnt;
143	struct sctp_vrf *vrf;
144	struct sctp_ifn *sctp_ifn;
145	struct sctp_ifa *sctp_ifa;
146	struct sctp_laddr *laddr;
147
148	cnt = 0;
149	/* neither Mac OS X nor FreeBSD support mulitple routing functions */
150	if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
151		return (0);
152	}
153	if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
154		LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
155			LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
156				switch (sctp_ifa->address.sa.sa_family) {
157#ifdef INET
158				case AF_INET:
159#endif
160#ifdef INET6
161				case AF_INET6:
162#endif
163					cnt++;
164					break;
165				default:
166					break;
167				}
168			}
169		}
170	} else {
171		LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
172			switch (laddr->ifa->address.sa.sa_family) {
173#ifdef INET
174			case AF_INET:
175#endif
176#ifdef INET6
177			case AF_INET6:
178#endif
179				cnt++;
180				break;
181			default:
182				break;
183			}
184		}
185	}
186	return (cnt);
187}
188
189static int
190sctp_sysctl_copy_out_local_addresses(struct sctp_inpcb *inp, struct sctp_tcb *stcb, struct sysctl_req *req)
191{
192	struct sctp_ifn *sctp_ifn;
193	struct sctp_ifa *sctp_ifa;
194	int loopback_scope, ipv4_local_scope, local_scope, site_scope;
195	int ipv4_addr_legal, ipv6_addr_legal;
196	struct sctp_vrf *vrf;
197	struct xsctp_laddr xladdr;
198	struct sctp_laddr *laddr;
199	int error;
200
201	/* Turn on all the appropriate scope */
202	if (stcb) {
203		/* use association specific values */
204		loopback_scope = stcb->asoc.scope.loopback_scope;
205		ipv4_local_scope = stcb->asoc.scope.ipv4_local_scope;
206		local_scope = stcb->asoc.scope.local_scope;
207		site_scope = stcb->asoc.scope.site_scope;
208		ipv4_addr_legal = stcb->asoc.scope.ipv4_addr_legal;
209		ipv6_addr_legal = stcb->asoc.scope.ipv6_addr_legal;
210	} else {
211		/* Use generic values for endpoints. */
212		loopback_scope = 1;
213		ipv4_local_scope = 1;
214		local_scope = 1;
215		site_scope = 1;
216		if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUND_V6) {
217			ipv6_addr_legal = 1;
218			if (SCTP_IPV6_V6ONLY(inp)) {
219				ipv4_addr_legal = 0;
220			} else {
221				ipv4_addr_legal = 1;
222			}
223		} else {
224			ipv6_addr_legal = 0;
225			ipv4_addr_legal = 1;
226		}
227	}
228
229	/* neither Mac OS X nor FreeBSD support mulitple routing functions */
230	if ((vrf = sctp_find_vrf(inp->def_vrf_id)) == NULL) {
231		SCTP_INP_RUNLOCK(inp);
232		SCTP_INP_INFO_RUNLOCK();
233		return (-1);
234	}
235	if (inp->sctp_flags & SCTP_PCB_FLAGS_BOUNDALL) {
236		LIST_FOREACH(sctp_ifn, &vrf->ifnlist, next_ifn) {
237			if ((loopback_scope == 0) && SCTP_IFN_IS_IFT_LOOP(sctp_ifn))
238				/* Skip loopback if loopback_scope not set */
239				continue;
240			LIST_FOREACH(sctp_ifa, &sctp_ifn->ifalist, next_ifa) {
241				if (stcb) {
242					/*
243					 * ignore if blacklisted at
244					 * association level
245					 */
246					if (sctp_is_addr_restricted(stcb, sctp_ifa))
247						continue;
248				}
249				switch (sctp_ifa->address.sa.sa_family) {
250#ifdef INET
251				case AF_INET:
252					if (ipv4_addr_legal) {
253						struct sockaddr_in *sin;
254
255						sin = &sctp_ifa->address.sin;
256						if (sin->sin_addr.s_addr == 0)
257							continue;
258						if (prison_check_ip4(inp->ip_inp.inp.inp_cred,
259						    &sin->sin_addr) != 0) {
260							continue;
261						}
262						if ((ipv4_local_scope == 0) && (IN4_ISPRIVATE_ADDRESS(&sin->sin_addr)))
263							continue;
264					} else {
265						continue;
266					}
267					break;
268#endif
269#ifdef INET6
270				case AF_INET6:
271					if (ipv6_addr_legal) {
272						struct sockaddr_in6 *sin6;
273
274						sin6 = &sctp_ifa->address.sin6;
275						if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr))
276							continue;
277						if (prison_check_ip6(inp->ip_inp.inp.inp_cred,
278						    &sin6->sin6_addr) != 0) {
279							continue;
280						}
281						if (IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) {
282							if (local_scope == 0)
283								continue;
284							if (sin6->sin6_scope_id == 0) {
285								/*
286								 * bad link
287								 * local
288								 * address
289								 */
290								if (sa6_recoverscope(sin6) != 0)
291									continue;
292							}
293						}
294						if ((site_scope == 0) && (IN6_IS_ADDR_SITELOCAL(&sin6->sin6_addr)))
295							continue;
296					} else {
297						continue;
298					}
299					break;
300#endif
301				default:
302					continue;
303				}
304				memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
305				memcpy((void *)&xladdr.address, (const void *)&sctp_ifa->address, sizeof(union sctp_sockstore));
306				SCTP_INP_RUNLOCK(inp);
307				SCTP_INP_INFO_RUNLOCK();
308				error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
309				if (error) {
310					return (error);
311				} else {
312					SCTP_INP_INFO_RLOCK();
313					SCTP_INP_RLOCK(inp);
314				}
315			}
316		}
317	} else {
318		LIST_FOREACH(laddr, &inp->sctp_addr_list, sctp_nxt_addr) {
319			/* ignore if blacklisted at association level */
320			if (stcb && sctp_is_addr_restricted(stcb, laddr->ifa))
321				continue;
322			memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
323			memcpy((void *)&xladdr.address, (const void *)&laddr->ifa->address, sizeof(union sctp_sockstore));
324			xladdr.start_time.tv_sec = (uint32_t) laddr->start_time.tv_sec;
325			xladdr.start_time.tv_usec = (uint32_t) laddr->start_time.tv_usec;
326			SCTP_INP_RUNLOCK(inp);
327			SCTP_INP_INFO_RUNLOCK();
328			error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
329			if (error) {
330				return (error);
331			} else {
332				SCTP_INP_INFO_RLOCK();
333				SCTP_INP_RLOCK(inp);
334			}
335		}
336	}
337	memset((void *)&xladdr, 0, sizeof(struct xsctp_laddr));
338	xladdr.last = 1;
339	SCTP_INP_RUNLOCK(inp);
340	SCTP_INP_INFO_RUNLOCK();
341	error = SYSCTL_OUT(req, &xladdr, sizeof(struct xsctp_laddr));
342
343	if (error) {
344		return (error);
345	} else {
346		SCTP_INP_INFO_RLOCK();
347		SCTP_INP_RLOCK(inp);
348		return (0);
349	}
350}
351
352/*
353 * sysctl functions
354 */
355static int
356sctp_sysctl_handle_assoclist(SYSCTL_HANDLER_ARGS)
357{
358	unsigned int number_of_endpoints;
359	unsigned int number_of_local_addresses;
360	unsigned int number_of_associations;
361	unsigned int number_of_remote_addresses;
362	unsigned int n;
363	int error;
364	struct sctp_inpcb *inp;
365	struct sctp_tcb *stcb;
366	struct sctp_nets *net;
367	struct xsctp_inpcb xinpcb;
368	struct xsctp_tcb xstcb;
369	struct xsctp_raddr xraddr;
370	struct socket *so;
371
372	number_of_endpoints = 0;
373	number_of_local_addresses = 0;
374	number_of_associations = 0;
375	number_of_remote_addresses = 0;
376
377	SCTP_INP_INFO_RLOCK();
378	if (req->oldptr == NULL) {
379		LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
380			SCTP_INP_RLOCK(inp);
381			number_of_endpoints++;
382			number_of_local_addresses += sctp_sysctl_number_of_addresses(inp);
383			LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
384				number_of_associations++;
385				number_of_local_addresses += sctp_sysctl_number_of_addresses(inp);
386				TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
387					number_of_remote_addresses++;
388				}
389			}
390			SCTP_INP_RUNLOCK(inp);
391		}
392		SCTP_INP_INFO_RUNLOCK();
393		n = (number_of_endpoints + 1) * sizeof(struct xsctp_inpcb) +
394		    (number_of_local_addresses + number_of_endpoints + number_of_associations) * sizeof(struct xsctp_laddr) +
395		    (number_of_associations + number_of_endpoints) * sizeof(struct xsctp_tcb) +
396		    (number_of_remote_addresses + number_of_associations) * sizeof(struct xsctp_raddr);
397
398		/* request some more memory than needed */
399		req->oldidx = (n + n / 8);
400		return (0);
401	}
402	if (req->newptr != NULL) {
403		SCTP_INP_INFO_RUNLOCK();
404		SCTP_LTRACE_ERR_RET(NULL, NULL, NULL, SCTP_FROM_SCTP_SYSCTL, EPERM);
405		return (EPERM);
406	}
407	LIST_FOREACH(inp, &SCTP_BASE_INFO(listhead), sctp_list) {
408		SCTP_INP_RLOCK(inp);
409		if (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_ALLGONE) {
410			/* if its allgone it is being freed - skip it  */
411			goto skip;
412		}
413		xinpcb.last = 0;
414		xinpcb.local_port = ntohs(inp->sctp_lport);
415		xinpcb.flags = inp->sctp_flags;
416		xinpcb.features = inp->sctp_features;
417		xinpcb.total_sends = inp->total_sends;
418		xinpcb.total_recvs = inp->total_recvs;
419		xinpcb.total_nospaces = inp->total_nospaces;
420		xinpcb.fragmentation_point = inp->sctp_frag_point;
421		so = inp->sctp_socket;
422		if ((so == NULL) ||
423		    (inp->sctp_flags & SCTP_PCB_FLAGS_SOCKET_GONE)) {
424			xinpcb.qlen = 0;
425			xinpcb.maxqlen = 0;
426		} else {
427			xinpcb.qlen = so->so_qlen;
428			xinpcb.maxqlen = so->so_qlimit;
429		}
430		SCTP_INP_INCR_REF(inp);
431		SCTP_INP_RUNLOCK(inp);
432		SCTP_INP_INFO_RUNLOCK();
433		error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
434		if (error) {
435			SCTP_INP_DECR_REF(inp);
436			return (error);
437		}
438		SCTP_INP_INFO_RLOCK();
439		SCTP_INP_RLOCK(inp);
440		error = sctp_sysctl_copy_out_local_addresses(inp, NULL, req);
441		if (error) {
442			SCTP_INP_DECR_REF(inp);
443			return (error);
444		}
445		LIST_FOREACH(stcb, &inp->sctp_asoc_list, sctp_tcblist) {
446			SCTP_TCB_LOCK(stcb);
447			atomic_add_int(&stcb->asoc.refcnt, 1);
448			SCTP_TCB_UNLOCK(stcb);
449			xstcb.last = 0;
450			xstcb.local_port = ntohs(inp->sctp_lport);
451			xstcb.remote_port = ntohs(stcb->rport);
452			if (stcb->asoc.primary_destination != NULL)
453				xstcb.primary_addr = stcb->asoc.primary_destination->ro._l_addr;
454			xstcb.heartbeat_interval = stcb->asoc.heart_beat_delay;
455			xstcb.state = SCTP_GET_STATE(&stcb->asoc);	/* FIXME */
456			/* 7.0 does not support these */
457			xstcb.assoc_id = sctp_get_associd(stcb);
458			xstcb.peers_rwnd = stcb->asoc.peers_rwnd;
459			xstcb.in_streams = stcb->asoc.streamincnt;
460			xstcb.out_streams = stcb->asoc.streamoutcnt;
461			xstcb.max_nr_retrans = stcb->asoc.overall_error_count;
462			xstcb.primary_process = 0;	/* not really supported
463							 * yet */
464			xstcb.T1_expireries = stcb->asoc.timoinit + stcb->asoc.timocookie;
465			xstcb.T2_expireries = stcb->asoc.timoshutdown + stcb->asoc.timoshutdownack;
466			xstcb.retransmitted_tsns = stcb->asoc.marked_retrans;
467			xstcb.start_time.tv_sec = (uint32_t) stcb->asoc.start_time.tv_sec;
468			xstcb.start_time.tv_usec = (uint32_t) stcb->asoc.start_time.tv_usec;
469			xstcb.discontinuity_time.tv_sec = (uint32_t) stcb->asoc.discontinuity_time.tv_sec;
470			xstcb.discontinuity_time.tv_usec = (uint32_t) stcb->asoc.discontinuity_time.tv_usec;
471			xstcb.total_sends = stcb->total_sends;
472			xstcb.total_recvs = stcb->total_recvs;
473			xstcb.local_tag = stcb->asoc.my_vtag;
474			xstcb.remote_tag = stcb->asoc.peer_vtag;
475			xstcb.initial_tsn = stcb->asoc.init_seq_number;
476			xstcb.highest_tsn = stcb->asoc.sending_seq - 1;
477			xstcb.cumulative_tsn = stcb->asoc.last_acked_seq;
478			xstcb.cumulative_tsn_ack = stcb->asoc.cumulative_tsn;
479			xstcb.mtu = stcb->asoc.smallest_mtu;
480			xstcb.refcnt = stcb->asoc.refcnt;
481			SCTP_INP_RUNLOCK(inp);
482			SCTP_INP_INFO_RUNLOCK();
483			error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
484			if (error) {
485				SCTP_INP_DECR_REF(inp);
486				atomic_subtract_int(&stcb->asoc.refcnt, 1);
487				return (error);
488			}
489			SCTP_INP_INFO_RLOCK();
490			SCTP_INP_RLOCK(inp);
491			error = sctp_sysctl_copy_out_local_addresses(inp, stcb, req);
492			if (error) {
493				SCTP_INP_DECR_REF(inp);
494				atomic_subtract_int(&stcb->asoc.refcnt, 1);
495				return (error);
496			}
497			TAILQ_FOREACH(net, &stcb->asoc.nets, sctp_next) {
498				xraddr.last = 0;
499				xraddr.address = net->ro._l_addr;
500				xraddr.active = ((net->dest_state & SCTP_ADDR_REACHABLE) == SCTP_ADDR_REACHABLE);
501				xraddr.confirmed = ((net->dest_state & SCTP_ADDR_UNCONFIRMED) == 0);
502				xraddr.heartbeat_enabled = ((net->dest_state & SCTP_ADDR_NOHB) == 0);
503				xraddr.potentially_failed = ((net->dest_state & SCTP_ADDR_PF) == SCTP_ADDR_PF);
504				xraddr.rto = net->RTO;
505				xraddr.max_path_rtx = net->failure_threshold;
506				xraddr.rtx = net->marked_retrans;
507				xraddr.error_counter = net->error_count;
508				xraddr.cwnd = net->cwnd;
509				xraddr.flight_size = net->flight_size;
510				xraddr.mtu = net->mtu;
511				xraddr.rtt = net->rtt / 1000;
512				xraddr.heartbeat_interval = net->heart_beat_delay;
513				xraddr.start_time.tv_sec = (uint32_t) net->start_time.tv_sec;
514				xraddr.start_time.tv_usec = (uint32_t) net->start_time.tv_usec;
515				SCTP_INP_RUNLOCK(inp);
516				SCTP_INP_INFO_RUNLOCK();
517				error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
518				if (error) {
519					SCTP_INP_DECR_REF(inp);
520					atomic_subtract_int(&stcb->asoc.refcnt, 1);
521					return (error);
522				}
523				SCTP_INP_INFO_RLOCK();
524				SCTP_INP_RLOCK(inp);
525			}
526			atomic_subtract_int(&stcb->asoc.refcnt, 1);
527			memset((void *)&xraddr, 0, sizeof(struct xsctp_raddr));
528			xraddr.last = 1;
529			SCTP_INP_RUNLOCK(inp);
530			SCTP_INP_INFO_RUNLOCK();
531			error = SYSCTL_OUT(req, &xraddr, sizeof(struct xsctp_raddr));
532			if (error) {
533				SCTP_INP_DECR_REF(inp);
534				return (error);
535			}
536			SCTP_INP_INFO_RLOCK();
537			SCTP_INP_RLOCK(inp);
538		}
539		SCTP_INP_DECR_REF(inp);
540		SCTP_INP_RUNLOCK(inp);
541		SCTP_INP_INFO_RUNLOCK();
542		memset((void *)&xstcb, 0, sizeof(struct xsctp_tcb));
543		xstcb.last = 1;
544		error = SYSCTL_OUT(req, &xstcb, sizeof(struct xsctp_tcb));
545		if (error) {
546			return (error);
547		}
548skip:
549		SCTP_INP_INFO_RLOCK();
550	}
551	SCTP_INP_INFO_RUNLOCK();
552
553	memset((void *)&xinpcb, 0, sizeof(struct xsctp_inpcb));
554	xinpcb.last = 1;
555	error = SYSCTL_OUT(req, &xinpcb, sizeof(struct xsctp_inpcb));
556	return (error);
557}
558
559static int
560sctp_sysctl_handle_udp_tunneling(SYSCTL_HANDLER_ARGS)
561{
562	int error;
563	uint32_t old, new;
564
565	SCTP_INP_INFO_RLOCK();
566	old = SCTP_BASE_SYSCTL(sctp_udp_tunneling_port);
567	SCTP_INP_INFO_RUNLOCK();
568	new = old;
569	error = sysctl_handle_int(oidp, &new, 0, req);
570	if ((error == 0) &&
571	    (req->newptr != NULL)) {
572		if ((new < SCTPCTL_UDP_TUNNELING_PORT_MIN) ||
573		    (new > SCTPCTL_UDP_TUNNELING_PORT_MAX)) {
574			error = EINVAL;
575		} else {
576			SCTP_INP_INFO_WLOCK();
577			SCTP_BASE_SYSCTL(sctp_udp_tunneling_port) = new;
578			if (old != 0) {
579				sctp_over_udp_stop();
580			}
581			if (new != 0) {
582				error = sctp_over_udp_start();
583			}
584			SCTP_INP_INFO_WUNLOCK();
585		}
586	}
587	return (error);
588}
589
590
591static int
592sctp_sysctl_handle_auth(SYSCTL_HANDLER_ARGS)
593{
594	int error;
595	uint32_t new;
596
597	new = SCTP_BASE_SYSCTL(sctp_auth_disable);
598	error = sysctl_handle_int(oidp, &new, 0, req);
599	if ((error == 0) &&
600	    (req->newptr != NULL)) {
601		if ((new < SCTPCTL_AUTH_DISABLE_MIN) ||
602		    (new > SCTPCTL_AUTH_DISABLE_MAX) ||
603		    ((new == 1) && (SCTP_BASE_SYSCTL(sctp_asconf_enable) == 1))) {
604			error = EINVAL;
605		} else {
606			SCTP_BASE_SYSCTL(sctp_auth_disable) = new;
607		}
608	}
609	return (error);
610}
611
612static int
613sctp_sysctl_handle_asconf(SYSCTL_HANDLER_ARGS)
614{
615	int error;
616	uint32_t new;
617
618	new = SCTP_BASE_SYSCTL(sctp_asconf_enable);
619	error = sysctl_handle_int(oidp, &new, 0, req);
620	if ((error == 0) &&
621	    (req->newptr != NULL)) {
622		if ((new < SCTPCTL_ASCONF_ENABLE_MIN) ||
623		    (new > SCTPCTL_ASCONF_ENABLE_MAX) ||
624		    ((new == 1) && (SCTP_BASE_SYSCTL(sctp_auth_disable) == 1))) {
625			error = EINVAL;
626		} else {
627			SCTP_BASE_SYSCTL(sctp_asconf_enable) = new;
628		}
629	}
630	return (error);
631}
632
633static int
634sctp_sysctl_handle_stats(SYSCTL_HANDLER_ARGS)
635{
636	int error;
637
638#if defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
639	int cpu;
640	struct sctpstat sb, *sarry;
641
642#endif
643
644	if ((req->newptr != NULL) &&
645	    (req->newlen != sizeof(struct sctpstat))) {
646		return (EINVAL);
647	}
648#if defined(SMP) && defined(SCTP_USE_PERCPU_STAT)
649	memset(&sb, 0, sizeof(struct sctpstat));
650	for (cpu = 0; cpu < mp_maxid; cpu++) {
651		sarry = &SCTP_BASE_STATS[cpu];
652		if (sarry->sctps_discontinuitytime.tv_sec > sb.sctps_discontinuitytime.tv_sec) {
653			sb.sctps_discontinuitytime.tv_sec = sarry->sctps_discontinuitytime.tv_sec;
654			sb.sctps_discontinuitytime.tv_usec = sarry->sctps_discontinuitytime.tv_usec;
655		}
656		sb.sctps_currestab += sarry->sctps_currestab;
657		sb.sctps_activeestab += sarry->sctps_activeestab;
658		sb.sctps_restartestab += sarry->sctps_restartestab;
659		sb.sctps_collisionestab += sarry->sctps_collisionestab;
660		sb.sctps_passiveestab += sarry->sctps_passiveestab;
661		sb.sctps_aborted += sarry->sctps_aborted;
662		sb.sctps_shutdown += sarry->sctps_shutdown;
663		sb.sctps_outoftheblue += sarry->sctps_outoftheblue;
664		sb.sctps_checksumerrors += sarry->sctps_checksumerrors;
665		sb.sctps_outcontrolchunks += sarry->sctps_outcontrolchunks;
666		sb.sctps_outorderchunks += sarry->sctps_outorderchunks;
667		sb.sctps_outunorderchunks += sarry->sctps_outunorderchunks;
668		sb.sctps_incontrolchunks += sarry->sctps_incontrolchunks;
669		sb.sctps_inorderchunks += sarry->sctps_inorderchunks;
670		sb.sctps_inunorderchunks += sarry->sctps_inunorderchunks;
671		sb.sctps_fragusrmsgs += sarry->sctps_fragusrmsgs;
672		sb.sctps_reasmusrmsgs += sarry->sctps_reasmusrmsgs;
673		sb.sctps_outpackets += sarry->sctps_outpackets;
674		sb.sctps_inpackets += sarry->sctps_inpackets;
675		sb.sctps_recvpackets += sarry->sctps_recvpackets;
676		sb.sctps_recvdatagrams += sarry->sctps_recvdatagrams;
677		sb.sctps_recvpktwithdata += sarry->sctps_recvpktwithdata;
678		sb.sctps_recvsacks += sarry->sctps_recvsacks;
679		sb.sctps_recvdata += sarry->sctps_recvdata;
680		sb.sctps_recvdupdata += sarry->sctps_recvdupdata;
681		sb.sctps_recvheartbeat += sarry->sctps_recvheartbeat;
682		sb.sctps_recvheartbeatack += sarry->sctps_recvheartbeatack;
683		sb.sctps_recvecne += sarry->sctps_recvecne;
684		sb.sctps_recvauth += sarry->sctps_recvauth;
685		sb.sctps_recvauthmissing += sarry->sctps_recvauthmissing;
686		sb.sctps_recvivalhmacid += sarry->sctps_recvivalhmacid;
687		sb.sctps_recvivalkeyid += sarry->sctps_recvivalkeyid;
688		sb.sctps_recvauthfailed += sarry->sctps_recvauthfailed;
689		sb.sctps_recvexpress += sarry->sctps_recvexpress;
690		sb.sctps_recvexpressm += sarry->sctps_recvexpressm;
691		sb.sctps_recvnocrc += sarry->sctps_recvnocrc;
692		sb.sctps_recvswcrc += sarry->sctps_recvswcrc;
693		sb.sctps_recvhwcrc += sarry->sctps_recvhwcrc;
694		sb.sctps_sendpackets += sarry->sctps_sendpackets;
695		sb.sctps_sendsacks += sarry->sctps_sendsacks;
696		sb.sctps_senddata += sarry->sctps_senddata;
697		sb.sctps_sendretransdata += sarry->sctps_sendretransdata;
698		sb.sctps_sendfastretrans += sarry->sctps_sendfastretrans;
699		sb.sctps_sendmultfastretrans += sarry->sctps_sendmultfastretrans;
700		sb.sctps_sendheartbeat += sarry->sctps_sendheartbeat;
701		sb.sctps_sendecne += sarry->sctps_sendecne;
702		sb.sctps_sendauth += sarry->sctps_sendauth;
703		sb.sctps_senderrors += sarry->sctps_senderrors;
704		sb.sctps_sendnocrc += sarry->sctps_sendnocrc;
705		sb.sctps_sendswcrc += sarry->sctps_sendswcrc;
706		sb.sctps_sendhwcrc += sarry->sctps_sendhwcrc;
707		sb.sctps_pdrpfmbox += sarry->sctps_pdrpfmbox;
708		sb.sctps_pdrpfehos += sarry->sctps_pdrpfehos;
709		sb.sctps_pdrpmbda += sarry->sctps_pdrpmbda;
710		sb.sctps_pdrpmbct += sarry->sctps_pdrpmbct;
711		sb.sctps_pdrpbwrpt += sarry->sctps_pdrpbwrpt;
712		sb.sctps_pdrpcrupt += sarry->sctps_pdrpcrupt;
713		sb.sctps_pdrpnedat += sarry->sctps_pdrpnedat;
714		sb.sctps_pdrppdbrk += sarry->sctps_pdrppdbrk;
715		sb.sctps_pdrptsnnf += sarry->sctps_pdrptsnnf;
716		sb.sctps_pdrpdnfnd += sarry->sctps_pdrpdnfnd;
717		sb.sctps_pdrpdiwnp += sarry->sctps_pdrpdiwnp;
718		sb.sctps_pdrpdizrw += sarry->sctps_pdrpdizrw;
719		sb.sctps_pdrpbadd += sarry->sctps_pdrpbadd;
720		sb.sctps_pdrpmark += sarry->sctps_pdrpmark;
721		sb.sctps_timoiterator += sarry->sctps_timoiterator;
722		sb.sctps_timodata += sarry->sctps_timodata;
723		sb.sctps_timowindowprobe += sarry->sctps_timowindowprobe;
724		sb.sctps_timoinit += sarry->sctps_timoinit;
725		sb.sctps_timosack += sarry->sctps_timosack;
726		sb.sctps_timoshutdown += sarry->sctps_timoshutdown;
727		sb.sctps_timoheartbeat += sarry->sctps_timoheartbeat;
728		sb.sctps_timocookie += sarry->sctps_timocookie;
729		sb.sctps_timosecret += sarry->sctps_timosecret;
730		sb.sctps_timopathmtu += sarry->sctps_timopathmtu;
731		sb.sctps_timoshutdownack += sarry->sctps_timoshutdownack;
732		sb.sctps_timoshutdownguard += sarry->sctps_timoshutdownguard;
733		sb.sctps_timostrmrst += sarry->sctps_timostrmrst;
734		sb.sctps_timoearlyfr += sarry->sctps_timoearlyfr;
735		sb.sctps_timoasconf += sarry->sctps_timoasconf;
736		sb.sctps_timodelprim += sarry->sctps_timodelprim;
737		sb.sctps_timoautoclose += sarry->sctps_timoautoclose;
738		sb.sctps_timoassockill += sarry->sctps_timoassockill;
739		sb.sctps_timoinpkill += sarry->sctps_timoinpkill;
740		sb.sctps_hdrops += sarry->sctps_hdrops;
741		sb.sctps_badsum += sarry->sctps_badsum;
742		sb.sctps_noport += sarry->sctps_noport;
743		sb.sctps_badvtag += sarry->sctps_badvtag;
744		sb.sctps_badsid += sarry->sctps_badsid;
745		sb.sctps_nomem += sarry->sctps_nomem;
746		sb.sctps_fastretransinrtt += sarry->sctps_fastretransinrtt;
747		sb.sctps_markedretrans += sarry->sctps_markedretrans;
748		sb.sctps_naglesent += sarry->sctps_naglesent;
749		sb.sctps_naglequeued += sarry->sctps_naglequeued;
750		sb.sctps_maxburstqueued += sarry->sctps_maxburstqueued;
751		sb.sctps_ifnomemqueued += sarry->sctps_ifnomemqueued;
752		sb.sctps_windowprobed += sarry->sctps_windowprobed;
753		sb.sctps_lowlevelerr += sarry->sctps_lowlevelerr;
754		sb.sctps_lowlevelerrusr += sarry->sctps_lowlevelerrusr;
755		sb.sctps_datadropchklmt += sarry->sctps_datadropchklmt;
756		sb.sctps_datadroprwnd += sarry->sctps_datadroprwnd;
757		sb.sctps_ecnereducedcwnd += sarry->sctps_ecnereducedcwnd;
758		sb.sctps_vtagexpress += sarry->sctps_vtagexpress;
759		sb.sctps_vtagbogus += sarry->sctps_vtagbogus;
760		sb.sctps_primary_randry += sarry->sctps_primary_randry;
761		sb.sctps_cmt_randry += sarry->sctps_cmt_randry;
762		sb.sctps_slowpath_sack += sarry->sctps_slowpath_sack;
763		sb.sctps_wu_sacks_sent += sarry->sctps_wu_sacks_sent;
764		sb.sctps_sends_with_flags += sarry->sctps_sends_with_flags;
765		sb.sctps_sends_with_unord += sarry->sctps_sends_with_unord;
766		sb.sctps_sends_with_eof += sarry->sctps_sends_with_eof;
767		sb.sctps_sends_with_abort += sarry->sctps_sends_with_abort;
768		sb.sctps_protocol_drain_calls += sarry->sctps_protocol_drain_calls;
769		sb.sctps_protocol_drains_done += sarry->sctps_protocol_drains_done;
770		sb.sctps_read_peeks += sarry->sctps_read_peeks;
771		sb.sctps_cached_chk += sarry->sctps_cached_chk;
772		sb.sctps_cached_strmoq += sarry->sctps_cached_strmoq;
773		sb.sctps_left_abandon += sarry->sctps_left_abandon;
774		sb.sctps_send_burst_avoid += sarry->sctps_send_burst_avoid;
775		sb.sctps_send_cwnd_avoid += sarry->sctps_send_cwnd_avoid;
776		sb.sctps_fwdtsn_map_over += sarry->sctps_fwdtsn_map_over;
777		if (req->newptr != NULL) {
778			memcpy(sarry, req->newptr, sizeof(struct sctpstat));
779		}
780	}
781	error = SYSCTL_OUT(req, &sb, sizeof(struct sctpstat));
782#else
783	error = SYSCTL_OUT(req, &SCTP_BASE_STATS, sizeof(struct sctpstat));
784#endif
785	return (error);
786}
787
788#if defined(SCTP_LOCAL_TRACE_BUF)
789static int
790sctp_sysctl_handle_trace_log(SYSCTL_HANDLER_ARGS)
791{
792	int error;
793
794	error = SYSCTL_OUT(req, &SCTP_BASE_SYSCTL(sctp_log), sizeof(struct sctp_log));
795	return (error);
796}
797
798static int
799sctp_sysctl_handle_trace_log_clear(SYSCTL_HANDLER_ARGS)
800{
801	int error = 0;
802
803	memset(&SCTP_BASE_SYSCTL(sctp_log), 0, sizeof(struct sctp_log));
804	return (error);
805}
806
807#endif
808
809#define SCTP_UINT_SYSCTL(mib_name, var_name, prefix)			\
810	static int							\
811	sctp_sysctl_handle_##mib_name(SYSCTL_HANDLER_ARGS)		\
812	{								\
813		int error;						\
814		uint32_t new;						\
815									\
816		new = SCTP_BASE_SYSCTL(var_name);			\
817		error = sysctl_handle_int(oidp, &new, 0, req);		\
818		if ((error == 0) && (req->newptr != NULL)) {		\
819			if ((new < prefix##_MIN) ||			\
820			    (new > prefix##_MAX)) {			\
821				error = EINVAL;				\
822			} else {					\
823				SCTP_BASE_SYSCTL(var_name) = new;	\
824			}						\
825		}							\
826		return (error);						\
827	}								\
828	SYSCTL_PROC(_net_inet_sctp, OID_AUTO, mib_name,			\
829	                 CTLFLAG_VNET|CTLTYPE_UINT|CTLFLAG_RW, NULL, 0,	\
830	                 sctp_sysctl_handle_##mib_name, "UI", prefix##_DESC);
831
832/*
833 * sysctl definitions
834 */
835
836SCTP_UINT_SYSCTL(sendspace, sctp_sendspace, SCTPCTL_MAXDGRAM)
837SCTP_UINT_SYSCTL(recvspace, sctp_recvspace, SCTPCTL_RECVSPACE)
838SCTP_UINT_SYSCTL(auto_asconf, sctp_auto_asconf, SCTPCTL_AUTOASCONF)
839SCTP_UINT_SYSCTL(ecn_enable, sctp_ecn_enable, SCTPCTL_ECN_ENABLE)
840SCTP_UINT_SYSCTL(pr_enable, sctp_pr_enable, SCTPCTL_PR_ENABLE)
841SYSCTL_PROC(_net_inet_sctp, OID_AUTO, auth_disable, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
842    NULL, 0, sctp_sysctl_handle_auth, "IU", SCTPCTL_AUTH_DISABLE_DESC);
843SYSCTL_PROC(_net_inet_sctp, OID_AUTO, asconf_enable, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
844    NULL, 0, sctp_sysctl_handle_asconf, "IU", SCTPCTL_ASCONF_ENABLE_DESC);
845SCTP_UINT_SYSCTL(reconfig_enable, sctp_reconfig_enable, SCTPCTL_RECONFIG_ENABLE)
846SCTP_UINT_SYSCTL(nr_sack_on_off, sctp_nrsack_enable, SCTPCTL_NRSACK_ENABLE)
847SCTP_UINT_SYSCTL(pktdrop_enable, sctp_pktdrop_enable, SCTPCTL_PKTDROP_ENABLE)
848SCTP_UINT_SYSCTL(strict_sacks, sctp_strict_sacks, SCTPCTL_STRICT_SACKS)
849SCTP_UINT_SYSCTL(peer_chkoh, sctp_peer_chunk_oh, SCTPCTL_PEER_CHKOH)
850SCTP_UINT_SYSCTL(maxburst, sctp_max_burst_default, SCTPCTL_MAXBURST)
851SCTP_UINT_SYSCTL(fr_maxburst, sctp_fr_max_burst_default, SCTPCTL_FRMAXBURST)
852SCTP_UINT_SYSCTL(maxchunks, sctp_max_chunks_on_queue, SCTPCTL_MAXCHUNKS)
853SCTP_UINT_SYSCTL(tcbhashsize, sctp_hashtblsize, SCTPCTL_TCBHASHSIZE)
854SCTP_UINT_SYSCTL(pcbhashsize, sctp_pcbtblsize, SCTPCTL_PCBHASHSIZE)
855SCTP_UINT_SYSCTL(min_split_point, sctp_min_split_point, SCTPCTL_MIN_SPLIT_POINT)
856SCTP_UINT_SYSCTL(chunkscale, sctp_chunkscale, SCTPCTL_CHUNKSCALE)
857SCTP_UINT_SYSCTL(delayed_sack_time, sctp_delayed_sack_time_default, SCTPCTL_DELAYED_SACK_TIME)
858SCTP_UINT_SYSCTL(sack_freq, sctp_sack_freq_default, SCTPCTL_SACK_FREQ)
859SCTP_UINT_SYSCTL(sys_resource, sctp_system_free_resc_limit, SCTPCTL_SYS_RESOURCE)
860SCTP_UINT_SYSCTL(asoc_resource, sctp_asoc_free_resc_limit, SCTPCTL_ASOC_RESOURCE)
861SCTP_UINT_SYSCTL(heartbeat_interval, sctp_heartbeat_interval_default, SCTPCTL_HEARTBEAT_INTERVAL)
862SCTP_UINT_SYSCTL(pmtu_raise_time, sctp_pmtu_raise_time_default, SCTPCTL_PMTU_RAISE_TIME)
863SCTP_UINT_SYSCTL(shutdown_guard_time, sctp_shutdown_guard_time_default, SCTPCTL_SHUTDOWN_GUARD_TIME)
864SCTP_UINT_SYSCTL(secret_lifetime, sctp_secret_lifetime_default, SCTPCTL_SECRET_LIFETIME)
865SCTP_UINT_SYSCTL(rto_max, sctp_rto_max_default, SCTPCTL_RTO_MAX)
866SCTP_UINT_SYSCTL(rto_min, sctp_rto_min_default, SCTPCTL_RTO_MIN)
867SCTP_UINT_SYSCTL(rto_initial, sctp_rto_initial_default, SCTPCTL_RTO_INITIAL)
868SCTP_UINT_SYSCTL(init_rto_max, sctp_init_rto_max_default, SCTPCTL_INIT_RTO_MAX)
869SCTP_UINT_SYSCTL(valid_cookie_life, sctp_valid_cookie_life_default, SCTPCTL_VALID_COOKIE_LIFE)
870SCTP_UINT_SYSCTL(init_rtx_max, sctp_init_rtx_max_default, SCTPCTL_INIT_RTX_MAX)
871SCTP_UINT_SYSCTL(assoc_rtx_max, sctp_assoc_rtx_max_default, SCTPCTL_ASSOC_RTX_MAX)
872SCTP_UINT_SYSCTL(path_rtx_max, sctp_path_rtx_max_default, SCTPCTL_PATH_RTX_MAX)
873SCTP_UINT_SYSCTL(path_pf_threshold, sctp_path_pf_threshold, SCTPCTL_PATH_PF_THRESHOLD)
874SCTP_UINT_SYSCTL(add_more_on_output, sctp_add_more_threshold, SCTPCTL_ADD_MORE_ON_OUTPUT)
875SCTP_UINT_SYSCTL(incoming_streams, sctp_nr_incoming_streams_default, SCTPCTL_INCOMING_STREAMS)
876SCTP_UINT_SYSCTL(outgoing_streams, sctp_nr_outgoing_streams_default, SCTPCTL_OUTGOING_STREAMS)
877SCTP_UINT_SYSCTL(cmt_on_off, sctp_cmt_on_off, SCTPCTL_CMT_ON_OFF)
878SCTP_UINT_SYSCTL(cmt_use_dac, sctp_cmt_use_dac, SCTPCTL_CMT_USE_DAC)
879SCTP_UINT_SYSCTL(cwnd_maxburst, sctp_use_cwnd_based_maxburst, SCTPCTL_CWND_MAXBURST)
880SCTP_UINT_SYSCTL(nat_friendly, sctp_nat_friendly, SCTPCTL_NAT_FRIENDLY)
881SCTP_UINT_SYSCTL(abc_l_var, sctp_L2_abc_variable, SCTPCTL_ABC_L_VAR)
882SCTP_UINT_SYSCTL(max_chained_mbufs, sctp_mbuf_threshold_count, SCTPCTL_MAX_CHAINED_MBUFS)
883SCTP_UINT_SYSCTL(do_sctp_drain, sctp_do_drain, SCTPCTL_DO_SCTP_DRAIN)
884SCTP_UINT_SYSCTL(hb_max_burst, sctp_hb_maxburst, SCTPCTL_HB_MAX_BURST)
885SCTP_UINT_SYSCTL(abort_at_limit, sctp_abort_if_one_2_one_hits_limit, SCTPCTL_ABORT_AT_LIMIT)
886SCTP_UINT_SYSCTL(strict_data_order, sctp_strict_data_order, SCTPCTL_STRICT_DATA_ORDER)
887SCTP_UINT_SYSCTL(min_residual, sctp_min_residual, SCTPCTL_MIN_RESIDUAL)
888SCTP_UINT_SYSCTL(max_retran_chunk, sctp_max_retran_chunk, SCTPCTL_MAX_RETRAN_CHUNK)
889SCTP_UINT_SYSCTL(log_level, sctp_logging_level, SCTPCTL_LOGGING_LEVEL)
890SCTP_UINT_SYSCTL(default_cc_module, sctp_default_cc_module, SCTPCTL_DEFAULT_CC_MODULE)
891SCTP_UINT_SYSCTL(default_ss_module, sctp_default_ss_module, SCTPCTL_DEFAULT_SS_MODULE)
892SCTP_UINT_SYSCTL(default_frag_interleave, sctp_default_frag_interleave, SCTPCTL_DEFAULT_FRAG_INTERLEAVE)
893SCTP_UINT_SYSCTL(mobility_base, sctp_mobility_base, SCTPCTL_MOBILITY_BASE)
894SCTP_UINT_SYSCTL(mobility_fasthandoff, sctp_mobility_fasthandoff, SCTPCTL_MOBILITY_FASTHANDOFF)
895#if defined(SCTP_LOCAL_TRACE_BUF)
896SYSCTL_PROC(_net_inet_sctp, OID_AUTO, log, CTLFLAG_VNET | CTLTYPE_STRUCT | CTLFLAG_RD,
897    NULL, 0, sctp_sysctl_handle_trace_log, "S,sctplog", "SCTP logging (struct sctp_log)");
898SYSCTL_PROC(_net_inet_sctp, OID_AUTO, clear_trace, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
899    NULL, 0, sctp_sysctl_handle_trace_log_clear, "IU", "Clear SCTP Logging buffer");
900#endif
901SYSCTL_PROC(_net_inet_sctp, OID_AUTO, udp_tunneling_port, CTLFLAG_VNET | CTLTYPE_UINT | CTLFLAG_RW,
902    NULL, 0, sctp_sysctl_handle_udp_tunneling, "IU", SCTPCTL_UDP_TUNNELING_PORT_DESC);
903SCTP_UINT_SYSCTL(enable_sack_immediately, sctp_enable_sack_immediately, SCTPCTL_SACK_IMMEDIATELY_ENABLE)
904SCTP_UINT_SYSCTL(nat_friendly_init, sctp_inits_include_nat_friendly, SCTPCTL_NAT_FRIENDLY_INITS)
905SCTP_UINT_SYSCTL(vtag_time_wait, sctp_vtag_time_wait, SCTPCTL_TIME_WAIT)
906SCTP_UINT_SYSCTL(buffer_splitting, sctp_buffer_splitting, SCTPCTL_BUFFER_SPLITTING)
907SCTP_UINT_SYSCTL(initial_cwnd, sctp_initial_cwnd, SCTPCTL_INITIAL_CWND)
908SCTP_UINT_SYSCTL(rttvar_bw, sctp_rttvar_bw, SCTPCTL_RTTVAR_BW)
909SCTP_UINT_SYSCTL(rttvar_rtt, sctp_rttvar_rtt, SCTPCTL_RTTVAR_RTT)
910SCTP_UINT_SYSCTL(rttvar_eqret, sctp_rttvar_eqret, SCTPCTL_RTTVAR_EQRET)
911SCTP_UINT_SYSCTL(rttvar_steady_step, sctp_steady_step, SCTPCTL_RTTVAR_STEADYS)
912SCTP_UINT_SYSCTL(use_dcccecn, sctp_use_dccc_ecn, SCTPCTL_RTTVAR_DCCCECN)
913SCTP_UINT_SYSCTL(blackhole, sctp_blackhole, SCTPCTL_BLACKHOLE)
914SCTP_UINT_SYSCTL(diag_info_code, sctp_diag_info_code, SCTPCTL_DIAG_INFO_CODE)
915#ifdef SCTP_DEBUG
916SCTP_UINT_SYSCTL(debug, sctp_debug_on, SCTPCTL_DEBUG)
917#endif
918#if defined(__APPLE__) || defined(SCTP_SO_LOCK_TESTING)
919SCTP_UINT_SYSCTL(output_unlocked, sctp_output_unlocked, SCTPCTL_OUTPUT_UNLOCKED)
920#endif
921SYSCTL_PROC(_net_inet_sctp, OID_AUTO, stats, CTLFLAG_VNET | CTLTYPE_STRUCT | CTLFLAG_RW,
922    NULL, 0, sctp_sysctl_handle_stats, "S,sctpstat", "SCTP statistics (struct sctp_stat)");
923SYSCTL_PROC(_net_inet_sctp, OID_AUTO, assoclist, CTLFLAG_VNET | CTLTYPE_OPAQUE | CTLFLAG_RD,
924    NULL, 0, sctp_sysctl_handle_assoclist, "S,xassoc", "List of active SCTP associations");
925