diff options
| author | 2008-05-09 02:52:15 +0000 | |
|---|---|---|
| committer | 2008-05-09 02:52:15 +0000 | |
| commit | 338fceb4a95edb6498c1dac3afa93de1693c71fb (patch) | |
| tree | 79d42f919f93236f2e27fcb5dc1069139c483854 /sys/kern/uipc_socket.c | |
| parent | divert packets to local socket without modifying the ip header; (diff) | |
| download | wireguard-openbsd-338fceb4a95edb6498c1dac3afa93de1693c71fb.tar.xz wireguard-openbsd-338fceb4a95edb6498c1dac3afa93de1693c71fb.zip | |
Add SO_BINDANY socket option from BSD/OS.
The option allows a socket to be bound to addresses which are not
local to the machine. In order to receive packets for these addresses
SO_BINDANY needs to be combined with matching outgoing pf(4) divert
rules, see pf.conf(5).
ok beck@
Diffstat (limited to 'sys/kern/uipc_socket.c')
| -rw-r--r-- | sys/kern/uipc_socket.c | 11 |
1 files changed, 10 insertions, 1 deletions
diff --git a/sys/kern/uipc_socket.c b/sys/kern/uipc_socket.c index 45728e18533..7422689fa11 100644 --- a/sys/kern/uipc_socket.c +++ b/sys/kern/uipc_socket.c @@ -1,4 +1,4 @@ -/* $OpenBSD: uipc_socket.c,v 1.68 2008/05/02 06:49:32 ckuethe Exp $ */ +/* $OpenBSD: uipc_socket.c,v 1.69 2008/05/09 02:52:15 markus Exp $ */ /* $NetBSD: uipc_socket.c,v 1.21 1996/02/04 02:17:52 christos Exp $ */ /* @@ -981,6 +981,13 @@ sosetopt(struct socket *so, int level, int optname, struct mbuf *m0) error = ENOPROTOOPT; } else { switch (optname) { + case SO_BINDANY: + if ((error = suser(curproc, 0)) != 0) /* XXX */ + goto bad; + break; + } + + switch (optname) { case SO_LINGER: if (m == NULL || m->m_len != sizeof (struct linger) || @@ -992,6 +999,7 @@ sosetopt(struct socket *so, int level, int optname, struct mbuf *m0) so->so_linger = mtod(m, struct linger *)->l_linger; /* FALLTHROUGH */ + case SO_BINDANY: case SO_DEBUG: case SO_KEEPALIVE: case SO_DONTROUTE: @@ -1127,6 +1135,7 @@ sogetopt(struct socket *so, int level, int optname, struct mbuf **mp) mtod(m, struct linger *)->l_linger = so->so_linger; break; + case SO_BINDANY: case SO_USELOOPBACK: case SO_DONTROUTE: case SO_DEBUG: |
