From d5e1f43e14bff7072e5a7a232bb2b04fcd710d52 Mon Sep 17 00:00:00 2001 From: Florian Westphal Date: Wed, 14 Nov 2012 16:20:15 +0100 Subject: examples: add connlabel dump/set/clear demo programs Signed-off-by: Florian Westphal --- examples/nfct-mnl-dump-labels.c | 103 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 103 insertions(+) create mode 100644 examples/nfct-mnl-dump-labels.c (limited to 'examples/nfct-mnl-dump-labels.c') diff --git a/examples/nfct-mnl-dump-labels.c b/examples/nfct-mnl-dump-labels.c new file mode 100644 index 0000000..98df430 --- /dev/null +++ b/examples/nfct-mnl-dump-labels.c @@ -0,0 +1,103 @@ +#include +#include +#include + +#include +#include + +static void print_label(struct nf_conntrack *ct, struct nfct_labelmap *map) +{ + unsigned int i, max; + const struct nfct_bitmask *b = nfct_get_attr(ct, ATTR_CONNLABELS); + if (!b) + return; + + puts("labels:"); + max = nfct_bitmask_maxbit(b); + for (i = 0; i <= max; i++) { + if (nfct_bitmask_test_bit(b, i)) + printf("\t'%s' (%d)\n", map ? nfct_labelmap_get_name(map, i) : "", i); + } +} + +static int data_cb(const struct nlmsghdr *nlh, void *data) +{ + struct nf_conntrack *ct; + char buf[4096]; + + ct = nfct_new(); + if (ct == NULL) + return MNL_CB_OK; + + nfct_nlmsg_parse(nlh, ct); + + nfct_snprintf(buf, sizeof(buf), ct, NFCT_T_UNKNOWN, NFCT_O_DEFAULT, 0); + printf("%s\n", buf); + + print_label(ct, data); + + nfct_destroy(ct); + + return MNL_CB_OK; +} + +int main(void) +{ + struct mnl_socket *nl; + struct nlmsghdr *nlh; + struct nfgenmsg *nfh; + char buf[MNL_SOCKET_BUFFER_SIZE]; + unsigned int seq, portid; + int ret; + struct nfct_labelmap *l = nfct_labelmap_new(NULL); + + nl = mnl_socket_open(NETLINK_NETFILTER); + if (nl == NULL) { + perror("mnl_socket_open"); + exit(EXIT_FAILURE); + } + + if (mnl_socket_bind(nl, 0, MNL_SOCKET_AUTOPID) < 0) { + perror("mnl_socket_bind"); + exit(EXIT_FAILURE); + } + portid = mnl_socket_get_portid(nl); + + nlh = mnl_nlmsg_put_header(buf); + nlh->nlmsg_type = (NFNL_SUBSYS_CTNETLINK << 8) | IPCTNL_MSG_CT_GET; + nlh->nlmsg_flags = NLM_F_REQUEST|NLM_F_DUMP; + nlh->nlmsg_seq = seq = time(NULL); + + nfh = mnl_nlmsg_put_extra_header(nlh, sizeof(struct nfgenmsg)); + nfh->nfgen_family = AF_UNSPEC; + nfh->version = NFNETLINK_V0; + nfh->res_id = 0; + + + ret = mnl_socket_sendto(nl, nlh, nlh->nlmsg_len); + if (ret == -1) { + perror("mnl_socket_sendto"); + exit(EXIT_FAILURE); + } + + ret = mnl_socket_recvfrom(nl, buf, sizeof(buf)); + + + while (ret > 0) { + ret = mnl_cb_run(buf, ret, seq, portid, data_cb, l); + if (ret <= MNL_CB_STOP) + break; + ret = mnl_socket_recvfrom(nl, buf, sizeof(buf)); + } + if (ret == -1) { + perror("mnl_socket_recvfrom"); + exit(EXIT_FAILURE); + } + + if (l) + nfct_labelmap_destroy(l); + + mnl_socket_close(nl); + + return 0; +} -- cgit v1.2.3