162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0 262306a36Sopenharmony_ci// Copyright (c) 2018 Facebook 362306a36Sopenharmony_ci 462306a36Sopenharmony_ci#include <linux/stddef.h> 562306a36Sopenharmony_ci#include <linux/bpf.h> 662306a36Sopenharmony_ci#include <sys/socket.h> 762306a36Sopenharmony_ci 862306a36Sopenharmony_ci#include <bpf/bpf_helpers.h> 962306a36Sopenharmony_ci#include <bpf/bpf_endian.h> 1062306a36Sopenharmony_ci 1162306a36Sopenharmony_ci#include <bpf_sockopt_helpers.h> 1262306a36Sopenharmony_ci 1362306a36Sopenharmony_ci#define SRC1_IP4 0xAC100001U /* 172.16.0.1 */ 1462306a36Sopenharmony_ci#define SRC2_IP4 0x00000000U 1562306a36Sopenharmony_ci#define SRC_REWRITE_IP4 0x7f000004U 1662306a36Sopenharmony_ci#define DST_IP4 0xC0A801FEU /* 192.168.1.254 */ 1762306a36Sopenharmony_ci#define DST_REWRITE_IP4 0x7f000001U 1862306a36Sopenharmony_ci#define DST_PORT 4040 1962306a36Sopenharmony_ci#define DST_REWRITE_PORT4 4444 2062306a36Sopenharmony_ci 2162306a36Sopenharmony_ciSEC("cgroup/sendmsg4") 2262306a36Sopenharmony_ciint sendmsg_v4_prog(struct bpf_sock_addr *ctx) 2362306a36Sopenharmony_ci{ 2462306a36Sopenharmony_ci if (ctx->type != SOCK_DGRAM) 2562306a36Sopenharmony_ci return 0; 2662306a36Sopenharmony_ci 2762306a36Sopenharmony_ci if (!get_set_sk_priority(ctx)) 2862306a36Sopenharmony_ci return 0; 2962306a36Sopenharmony_ci 3062306a36Sopenharmony_ci /* Rewrite source. */ 3162306a36Sopenharmony_ci if (ctx->msg_src_ip4 == bpf_htonl(SRC1_IP4) || 3262306a36Sopenharmony_ci ctx->msg_src_ip4 == bpf_htonl(SRC2_IP4)) { 3362306a36Sopenharmony_ci ctx->msg_src_ip4 = bpf_htonl(SRC_REWRITE_IP4); 3462306a36Sopenharmony_ci } else { 3562306a36Sopenharmony_ci /* Unexpected source. Reject sendmsg. */ 3662306a36Sopenharmony_ci return 0; 3762306a36Sopenharmony_ci } 3862306a36Sopenharmony_ci 3962306a36Sopenharmony_ci /* Rewrite destination. */ 4062306a36Sopenharmony_ci if ((ctx->user_ip4 >> 24) == (bpf_htonl(DST_IP4) >> 24) && 4162306a36Sopenharmony_ci ctx->user_port == bpf_htons(DST_PORT)) { 4262306a36Sopenharmony_ci ctx->user_ip4 = bpf_htonl(DST_REWRITE_IP4); 4362306a36Sopenharmony_ci ctx->user_port = bpf_htons(DST_REWRITE_PORT4); 4462306a36Sopenharmony_ci } else { 4562306a36Sopenharmony_ci /* Unexpected source. Reject sendmsg. */ 4662306a36Sopenharmony_ci return 0; 4762306a36Sopenharmony_ci } 4862306a36Sopenharmony_ci 4962306a36Sopenharmony_ci return 1; 5062306a36Sopenharmony_ci} 5162306a36Sopenharmony_ci 5262306a36Sopenharmony_cichar _license[] SEC("license") = "GPL"; 53