summaryrefslogtreecommitdiffstats
path: root/src/expr
diff options
context:
space:
mode:
authorArturo Borrero Gonzalez <arturo.borrero.glez@gmail.com>2013-06-26 13:37:15 +0200
committerPablo Neira Ayuso <pablo@netfilter.org>2013-06-27 19:43:44 +0200
commit845952009ee304cc523bb428eef56c5bbbd2c786 (patch)
tree7ea07198bd5bd025884484c4f99a8dcc910ddcc8 /src/expr
parentadf8c43fe9cf032a1499beca26e548e3a82f8d1c (diff)
payload: xml: use string for base attribute
This patch implements using a string instead of a number for the <base> node. Signed-off-by: Arturo Borrero Gonzalez <arturo.borrero.glez@gmail.com> Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'src/expr')
-rw-r--r--src/expr/payload.c55
1 files changed, 46 insertions, 9 deletions
diff --git a/src/expr/payload.c b/src/expr/payload.c
index dc42918..ae72fa2 100644
--- a/src/expr/payload.c
+++ b/src/expr/payload.c
@@ -212,13 +212,19 @@ nft_rule_expr_payload_xml_parse(struct nft_rule_expr *e, char *xml)
/* Get and set <base>. Not mandatory */
node = mxmlFindElement(tree, tree, "base", NULL, NULL, MXML_DESCEND);
if (node != NULL) {
- tmp = strtoull(node->child->value.opaque, &endptr, 10);
- if (tmp > UINT32_MAX || tmp < 0 || *endptr) {
+
+ if (strcmp(node->child->value.opaque, "link") == 0) {
+ payload->base = NFT_PAYLOAD_LL_HEADER;
+ } else if (strcmp(node->child->value.opaque, "network") == 0) {
+ payload->base = NFT_PAYLOAD_NETWORK_HEADER;
+ } else if (strcmp(node->child->value.opaque,
+ "transport") == 0) {
+ payload->base = NFT_PAYLOAD_TRANSPORT_HEADER;
+ } else {
mxmlDelete(tree);
return -1;
}
- payload->base = (uint32_t)tmp;
e->flags |= (1 << NFT_EXPR_PAYLOAD_BASE);
}
@@ -257,6 +263,41 @@ nft_rule_expr_payload_xml_parse(struct nft_rule_expr *e, char *xml)
}
static int
+nft_rule_expr_payload_snprintf_xml(char *buf, size_t len, uint32_t flags,
+ struct nft_expr_payload *p)
+{
+ int size = len, offset = 0, ret;
+
+ ret = snprintf(buf, len, "<dreg>%u</dreg><offset>%u</offset>"
+ "<len>%u</len>", p->dreg, p->offset, p->len);
+ SNPRINTF_BUFFER_SIZE(ret, size, len, offset);
+
+ /* A default option is not provided.
+ * The <base> node will be missing; Is not mandatory.
+ */
+
+ switch (p->base) {
+ case NFT_PAYLOAD_LL_HEADER:
+ ret = snprintf(buf+offset, len, "<base>link</base>");
+ break;
+ case NFT_PAYLOAD_NETWORK_HEADER:
+ ret = snprintf(buf+offset, len, "<base>network</base>");
+ break;
+ case NFT_PAYLOAD_TRANSPORT_HEADER:
+ ret = snprintf(buf+offset, len, "<base>transport</base>");
+ break;
+ default:
+ ret = snprintf(buf+offset, len, "<base>unknown</base>");
+ break;
+ }
+
+ SNPRINTF_BUFFER_SIZE(ret, size, len, offset);
+
+ return offset;
+}
+
+
+static int
nft_rule_expr_payload_snprintf(char *buf, size_t len, uint32_t type,
uint32_t flags, struct nft_rule_expr *e)
{
@@ -264,12 +305,8 @@ nft_rule_expr_payload_snprintf(char *buf, size_t len, uint32_t type,
switch(type) {
case NFT_RULE_O_XML:
- return snprintf(buf, len, "<dreg>%u</dreg>"
- "<base>%u</base><offset>%u</offset>"
- "<len>%u</len>",
- payload->dreg, payload->base,
- payload->offset, payload->len);
-
+ return nft_rule_expr_payload_snprintf_xml(buf, len, flags,
+ payload);
case NFT_RULE_O_DEFAULT:
return snprintf(buf, len, "dreg=%u base=%u offset=%u len=%u ",
payload->dreg, payload->base,