You've already forked linux-apfs
mirror of
https://github.com/linux-apfs/linux-apfs.git
synced 2026-05-01 15:00:59 -07:00
Merge branch 'for-next' of git://git.kernel.org/pub/scm/linux/kernel/git/nab/target-pending
* 'for-next' of git://git.kernel.org/pub/scm/linux/kernel/git/nab/target-pending: target: Convert to DIV_ROUND_UP_SECTOR_T usage for sectors / dev_max_sectors kernel.h: Add DIV_ROUND_UP_ULL and DIV_ROUND_UP_SECTOR_T macro usage iscsi-target: Add iSCSI fabric support for target v4.1 iscsi: Add Serial Number Arithmetic LT and GT into iscsi_proto.h iscsi: Use struct scsi_lun in iscsi structs instead of u8[8] iscsi: Resolve iscsi_proto.h naming conflicts with drivers/target/iscsi
This commit is contained in:
@@ -271,7 +271,7 @@ int iser_send_command(struct iscsi_conn *conn,
|
||||
unsigned long edtl;
|
||||
int err;
|
||||
struct iser_data_buf *data_buf;
|
||||
struct iscsi_cmd *hdr = (struct iscsi_cmd *)task->hdr;
|
||||
struct iscsi_scsi_req *hdr = (struct iscsi_scsi_req *)task->hdr;
|
||||
struct scsi_cmnd *sc = task->sc;
|
||||
struct iser_tx_desc *tx_desc = &iser_task->desc;
|
||||
|
||||
|
||||
@@ -397,7 +397,7 @@ struct amap_pdu_data_out {
|
||||
};
|
||||
|
||||
struct be_cmd_bhs {
|
||||
struct iscsi_cmd iscsi_hdr;
|
||||
struct iscsi_scsi_req iscsi_hdr;
|
||||
unsigned char pad1[16];
|
||||
struct pdu_data_out iscsi_data_pdu;
|
||||
unsigned char pad2[BE_SENSE_INFO_SIZE -
|
||||
@@ -428,7 +428,7 @@ struct be_nonio_bhs {
|
||||
};
|
||||
|
||||
struct be_status_bhs {
|
||||
struct iscsi_cmd iscsi_hdr;
|
||||
struct iscsi_scsi_req iscsi_hdr;
|
||||
unsigned char pad1[16];
|
||||
/**
|
||||
* The plus 2 below is to hold the sense info length that gets
|
||||
|
||||
@@ -332,11 +332,11 @@ int bnx2i_send_iscsi_login(struct bnx2i_conn *bnx2i_conn,
|
||||
{
|
||||
struct bnx2i_cmd *bnx2i_cmd;
|
||||
struct bnx2i_login_request *login_wqe;
|
||||
struct iscsi_login *login_hdr;
|
||||
struct iscsi_login_req *login_hdr;
|
||||
u32 dword;
|
||||
|
||||
bnx2i_cmd = (struct bnx2i_cmd *)task->dd_data;
|
||||
login_hdr = (struct iscsi_login *)task->hdr;
|
||||
login_hdr = (struct iscsi_login_req *)task->hdr;
|
||||
login_wqe = (struct bnx2i_login_request *)
|
||||
bnx2i_conn->ep->qp.sq_prod_qe;
|
||||
|
||||
@@ -1349,7 +1349,7 @@ int bnx2i_process_scsi_cmd_resp(struct iscsi_session *session,
|
||||
struct bnx2i_cmd_response *resp_cqe;
|
||||
struct bnx2i_cmd *bnx2i_cmd;
|
||||
struct iscsi_task *task;
|
||||
struct iscsi_cmd_rsp *hdr;
|
||||
struct iscsi_scsi_rsp *hdr;
|
||||
u32 datalen = 0;
|
||||
|
||||
resp_cqe = (struct bnx2i_cmd_response *)cqe;
|
||||
@@ -1376,7 +1376,7 @@ int bnx2i_process_scsi_cmd_resp(struct iscsi_session *session,
|
||||
}
|
||||
bnx2i_iscsi_unmap_sg_list(bnx2i_cmd);
|
||||
|
||||
hdr = (struct iscsi_cmd_rsp *)task->hdr;
|
||||
hdr = (struct iscsi_scsi_rsp *)task->hdr;
|
||||
resp_cqe = (struct bnx2i_cmd_response *)cqe;
|
||||
hdr->opcode = resp_cqe->op_code;
|
||||
hdr->max_cmdsn = cpu_to_be32(resp_cqe->max_cmd_sn);
|
||||
|
||||
@@ -1213,7 +1213,7 @@ static int bnx2i_task_xmit(struct iscsi_task *task)
|
||||
struct bnx2i_conn *bnx2i_conn = conn->dd_data;
|
||||
struct scsi_cmnd *sc = task->sc;
|
||||
struct bnx2i_cmd *cmd = task->dd_data;
|
||||
struct iscsi_cmd *hdr = (struct iscsi_cmd *) task->hdr;
|
||||
struct iscsi_scsi_req *hdr = (struct iscsi_scsi_req *)task->hdr;
|
||||
|
||||
if (atomic_read(&bnx2i_conn->ep->num_active_cmds) + 1 >
|
||||
hba->max_sqes)
|
||||
|
||||
+3
-19
@@ -84,22 +84,6 @@ MODULE_PARM_DESC(debug_libiscsi_eh,
|
||||
__func__, ##arg); \
|
||||
} while (0);
|
||||
|
||||
/* Serial Number Arithmetic, 32 bits, less than, RFC1982 */
|
||||
#define SNA32_CHECK 2147483648UL
|
||||
|
||||
static int iscsi_sna_lt(u32 n1, u32 n2)
|
||||
{
|
||||
return n1 != n2 && ((n1 < n2 && (n2 - n1 < SNA32_CHECK)) ||
|
||||
(n1 > n2 && (n2 - n1 < SNA32_CHECK)));
|
||||
}
|
||||
|
||||
/* Serial Number Arithmetic, 32 bits, less than, RFC1982 */
|
||||
static int iscsi_sna_lte(u32 n1, u32 n2)
|
||||
{
|
||||
return n1 == n2 || ((n1 < n2 && (n2 - n1 < SNA32_CHECK)) ||
|
||||
(n1 > n2 && (n2 - n1 < SNA32_CHECK)));
|
||||
}
|
||||
|
||||
inline void iscsi_conn_queue_work(struct iscsi_conn *conn)
|
||||
{
|
||||
struct Scsi_Host *shost = conn->session->host;
|
||||
@@ -360,7 +344,7 @@ static int iscsi_prep_scsi_cmd_pdu(struct iscsi_task *task)
|
||||
struct iscsi_conn *conn = task->conn;
|
||||
struct iscsi_session *session = conn->session;
|
||||
struct scsi_cmnd *sc = task->sc;
|
||||
struct iscsi_cmd *hdr;
|
||||
struct iscsi_scsi_req *hdr;
|
||||
unsigned hdrlength, cmd_len;
|
||||
itt_t itt;
|
||||
int rc;
|
||||
@@ -374,7 +358,7 @@ static int iscsi_prep_scsi_cmd_pdu(struct iscsi_task *task)
|
||||
if (rc)
|
||||
return rc;
|
||||
}
|
||||
hdr = (struct iscsi_cmd *) task->hdr;
|
||||
hdr = (struct iscsi_scsi_req *)task->hdr;
|
||||
itt = hdr->itt;
|
||||
memset(hdr, 0, sizeof(*hdr));
|
||||
|
||||
@@ -830,7 +814,7 @@ static void iscsi_scsi_cmd_rsp(struct iscsi_conn *conn, struct iscsi_hdr *hdr,
|
||||
struct iscsi_task *task, char *data,
|
||||
int datalen)
|
||||
{
|
||||
struct iscsi_cmd_rsp *rhdr = (struct iscsi_cmd_rsp *)hdr;
|
||||
struct iscsi_scsi_rsp *rhdr = (struct iscsi_scsi_rsp *)hdr;
|
||||
struct iscsi_session *session = conn->session;
|
||||
struct scsi_cmnd *sc = task->sc;
|
||||
|
||||
|
||||
@@ -31,5 +31,6 @@ config TCM_PSCSI
|
||||
|
||||
source "drivers/target/loopback/Kconfig"
|
||||
source "drivers/target/tcm_fc/Kconfig"
|
||||
source "drivers/target/iscsi/Kconfig"
|
||||
|
||||
endif
|
||||
|
||||
@@ -24,5 +24,5 @@ obj-$(CONFIG_TCM_PSCSI) += target_core_pscsi.o
|
||||
|
||||
# Fabric modules
|
||||
obj-$(CONFIG_LOOPBACK_TARGET) += loopback/
|
||||
|
||||
obj-$(CONFIG_TCM_FC) += tcm_fc/
|
||||
obj-$(CONFIG_ISCSI_TARGET) += iscsi/
|
||||
|
||||
@@ -0,0 +1,8 @@
|
||||
config ISCSI_TARGET
|
||||
tristate "Linux-iSCSI.org iSCSI Target Mode Stack"
|
||||
select CRYPTO
|
||||
select CRYPTO_CRC32C
|
||||
select CRYPTO_CRC32C_INTEL if X86
|
||||
help
|
||||
Say M here to enable the ConfigFS enabled Linux-iSCSI.org iSCSI
|
||||
Target Mode Stack.
|
||||
@@ -0,0 +1,20 @@
|
||||
iscsi_target_mod-y += iscsi_target_parameters.o \
|
||||
iscsi_target_seq_pdu_list.o \
|
||||
iscsi_target_tq.o \
|
||||
iscsi_target_auth.o \
|
||||
iscsi_target_datain_values.o \
|
||||
iscsi_target_device.o \
|
||||
iscsi_target_erl0.o \
|
||||
iscsi_target_erl1.o \
|
||||
iscsi_target_erl2.o \
|
||||
iscsi_target_login.o \
|
||||
iscsi_target_nego.o \
|
||||
iscsi_target_nodeattrib.o \
|
||||
iscsi_target_tmr.o \
|
||||
iscsi_target_tpg.o \
|
||||
iscsi_target_util.o \
|
||||
iscsi_target.o \
|
||||
iscsi_target_configfs.o \
|
||||
iscsi_target_stat.o
|
||||
|
||||
obj-$(CONFIG_ISCSI_TARGET) += iscsi_target_mod.o
|
||||
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,42 @@
|
||||
#ifndef ISCSI_TARGET_H
|
||||
#define ISCSI_TARGET_H
|
||||
|
||||
extern struct iscsi_tiqn *iscsit_get_tiqn_for_login(unsigned char *);
|
||||
extern struct iscsi_tiqn *iscsit_get_tiqn(unsigned char *, int);
|
||||
extern void iscsit_put_tiqn_for_login(struct iscsi_tiqn *);
|
||||
extern struct iscsi_tiqn *iscsit_add_tiqn(unsigned char *);
|
||||
extern void iscsit_del_tiqn(struct iscsi_tiqn *);
|
||||
extern int iscsit_access_np(struct iscsi_np *, struct iscsi_portal_group *);
|
||||
extern int iscsit_deaccess_np(struct iscsi_np *, struct iscsi_portal_group *);
|
||||
extern struct iscsi_np *iscsit_add_np(struct __kernel_sockaddr_storage *,
|
||||
char *, int);
|
||||
extern int iscsit_reset_np_thread(struct iscsi_np *, struct iscsi_tpg_np *,
|
||||
struct iscsi_portal_group *);
|
||||
extern int iscsit_del_np(struct iscsi_np *);
|
||||
extern int iscsit_add_reject_from_cmd(u8, int, int, unsigned char *, struct iscsi_cmd *);
|
||||
extern int iscsit_logout_closesession(struct iscsi_cmd *, struct iscsi_conn *);
|
||||
extern int iscsit_logout_closeconnection(struct iscsi_cmd *, struct iscsi_conn *);
|
||||
extern int iscsit_logout_removeconnforrecovery(struct iscsi_cmd *, struct iscsi_conn *);
|
||||
extern int iscsit_send_async_msg(struct iscsi_conn *, u16, u8, u8);
|
||||
extern int iscsit_send_r2t(struct iscsi_cmd *, struct iscsi_conn *);
|
||||
extern int iscsit_build_r2ts_for_cmd(struct iscsi_cmd *, struct iscsi_conn *, int);
|
||||
extern void iscsit_thread_get_cpumask(struct iscsi_conn *);
|
||||
extern int iscsi_target_tx_thread(void *);
|
||||
extern int iscsi_target_rx_thread(void *);
|
||||
extern int iscsit_close_connection(struct iscsi_conn *);
|
||||
extern int iscsit_close_session(struct iscsi_session *);
|
||||
extern void iscsit_fail_session(struct iscsi_session *);
|
||||
extern int iscsit_free_session(struct iscsi_session *);
|
||||
extern void iscsit_stop_session(struct iscsi_session *, int, int);
|
||||
extern int iscsit_release_sessions_for_tpg(struct iscsi_portal_group *, int);
|
||||
|
||||
extern struct iscsit_global *iscsit_global;
|
||||
extern struct target_fabric_configfs *lio_target_fabric_configfs;
|
||||
|
||||
extern struct kmem_cache *lio_dr_cache;
|
||||
extern struct kmem_cache *lio_ooo_cache;
|
||||
extern struct kmem_cache *lio_cmd_cache;
|
||||
extern struct kmem_cache *lio_qr_cache;
|
||||
extern struct kmem_cache *lio_r2t_cache;
|
||||
|
||||
#endif /*** ISCSI_TARGET_H ***/
|
||||
@@ -0,0 +1,490 @@
|
||||
/*******************************************************************************
|
||||
* This file houses the main functions for the iSCSI CHAP support
|
||||
*
|
||||
* \u00a9 Copyright 2007-2011 RisingTide Systems LLC.
|
||||
*
|
||||
* Licensed to the Linux Foundation under the General Public License (GPL) version 2.
|
||||
*
|
||||
* Author: Nicholas A. Bellinger <nab@linux-iscsi.org>
|
||||
*
|
||||
* This program is free software; you can redistribute it and/or modify
|
||||
* it under the terms of the GNU General Public License as published by
|
||||
* the Free Software Foundation; either version 2 of the License, or
|
||||
* (at your option) any later version.
|
||||
*
|
||||
* This program is distributed in the hope that it will be useful,
|
||||
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
||||
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
||||
* GNU General Public License for more details.
|
||||
******************************************************************************/
|
||||
|
||||
#include <linux/string.h>
|
||||
#include <linux/crypto.h>
|
||||
#include <linux/err.h>
|
||||
#include <linux/scatterlist.h>
|
||||
|
||||
#include "iscsi_target_core.h"
|
||||
#include "iscsi_target_nego.h"
|
||||
#include "iscsi_target_auth.h"
|
||||
|
||||
static unsigned char chap_asciihex_to_binaryhex(unsigned char val[2])
|
||||
{
|
||||
unsigned char result = 0;
|
||||
/*
|
||||
* MSB
|
||||
*/
|
||||
if ((val[0] >= 'a') && (val[0] <= 'f'))
|
||||
result = ((val[0] - 'a' + 10) & 0xf) << 4;
|
||||
else
|
||||
if ((val[0] >= 'A') && (val[0] <= 'F'))
|
||||
result = ((val[0] - 'A' + 10) & 0xf) << 4;
|
||||
else /* digit */
|
||||
result = ((val[0] - '0') & 0xf) << 4;
|
||||
/*
|
||||
* LSB
|
||||
*/
|
||||
if ((val[1] >= 'a') && (val[1] <= 'f'))
|
||||
result |= ((val[1] - 'a' + 10) & 0xf);
|
||||
else
|
||||
if ((val[1] >= 'A') && (val[1] <= 'F'))
|
||||
result |= ((val[1] - 'A' + 10) & 0xf);
|
||||
else /* digit */
|
||||
result |= ((val[1] - '0') & 0xf);
|
||||
|
||||
return result;
|
||||
}
|
||||
|
||||
static int chap_string_to_hex(unsigned char *dst, unsigned char *src, int len)
|
||||
{
|
||||
int i, j = 0;
|
||||
|
||||
for (i = 0; i < len; i += 2) {
|
||||
dst[j++] = (unsigned char) chap_asciihex_to_binaryhex(&src[i]);
|
||||
}
|
||||
|
||||
dst[j] = '\0';
|
||||
return j;
|
||||
}
|
||||
|
||||
static void chap_binaryhex_to_asciihex(char *dst, char *src, int src_len)
|
||||
{
|
||||
int i;
|
||||
|
||||
for (i = 0; i < src_len; i++) {
|
||||
sprintf(&dst[i*2], "%02x", (int) src[i] & 0xff);
|
||||
}
|
||||
}
|
||||
|
||||
static void chap_set_random(char *data, int length)
|
||||
{
|
||||
long r;
|
||||
unsigned n;
|
||||
|
||||
while (length > 0) {
|
||||
get_random_bytes(&r, sizeof(long));
|
||||
r = r ^ (r >> 8);
|
||||
r = r ^ (r >> 4);
|
||||
n = r & 0x7;
|
||||
|
||||
get_random_bytes(&r, sizeof(long));
|
||||
r = r ^ (r >> 8);
|
||||
r = r ^ (r >> 5);
|
||||
n = (n << 3) | (r & 0x7);
|
||||
|
||||
get_random_bytes(&r, sizeof(long));
|
||||
r = r ^ (r >> 8);
|
||||
r = r ^ (r >> 5);
|
||||
n = (n << 2) | (r & 0x3);
|
||||
|
||||
*data++ = n;
|
||||
length--;
|
||||
}
|
||||
}
|
||||
|
||||
static void chap_gen_challenge(
|
||||
struct iscsi_conn *conn,
|
||||
int caller,
|
||||
char *c_str,
|
||||
unsigned int *c_len)
|
||||
{
|
||||
unsigned char challenge_asciihex[CHAP_CHALLENGE_LENGTH * 2 + 1];
|
||||
struct iscsi_chap *chap = (struct iscsi_chap *) conn->auth_protocol;
|
||||
|
||||
memset(challenge_asciihex, 0, CHAP_CHALLENGE_LENGTH * 2 + 1);
|
||||
|
||||
chap_set_random(chap->challenge, CHAP_CHALLENGE_LENGTH);
|
||||
chap_binaryhex_to_asciihex(challenge_asciihex, chap->challenge,
|
||||
CHAP_CHALLENGE_LENGTH);
|
||||
/*
|
||||
* Set CHAP_C, and copy the generated challenge into c_str.
|
||||
*/
|
||||
*c_len += sprintf(c_str + *c_len, "CHAP_C=0x%s", challenge_asciihex);
|
||||
*c_len += 1;
|
||||
|
||||
pr_debug("[%s] Sending CHAP_C=0x%s\n\n", (caller) ? "server" : "client",
|
||||
challenge_asciihex);
|
||||
}
|
||||
|
||||
|
||||
static struct iscsi_chap *chap_server_open(
|
||||
struct iscsi_conn *conn,
|
||||
struct iscsi_node_auth *auth,
|
||||
const char *a_str,
|
||||
char *aic_str,
|
||||
unsigned int *aic_len)
|
||||
{
|
||||
struct iscsi_chap *chap;
|
||||
|
||||
if (!(auth->naf_flags & NAF_USERID_SET) ||
|
||||
!(auth->naf_flags & NAF_PASSWORD_SET)) {
|
||||
pr_err("CHAP user or password not set for"
|
||||
" Initiator ACL\n");
|
||||
return NULL;
|
||||
}
|
||||
|
||||
conn->auth_protocol = kzalloc(sizeof(struct iscsi_chap), GFP_KERNEL);
|
||||
if (!conn->auth_protocol)
|
||||
return NULL;
|
||||
|
||||
chap = (struct iscsi_chap *) conn->auth_protocol;
|
||||
/*
|
||||
* We only support MD5 MDA presently.
|
||||
*/
|
||||
if (strncmp(a_str, "CHAP_A=5", 8)) {
|
||||
pr_err("CHAP_A is not MD5.\n");
|
||||
return NULL;
|
||||
}
|
||||
pr_debug("[server] Got CHAP_A=5\n");
|
||||
/*
|
||||
* Send back CHAP_A set to MD5.
|
||||
*/
|
||||
*aic_len = sprintf(aic_str, "CHAP_A=5");
|
||||
*aic_len += 1;
|
||||
chap->digest_type = CHAP_DIGEST_MD5;
|
||||
pr_debug("[server] Sending CHAP_A=%d\n", chap->digest_type);
|
||||
/*
|
||||
* Set Identifier.
|
||||
*/
|
||||
chap->id = ISCSI_TPG_C(conn)->tpg_chap_id++;
|
||||
*aic_len += sprintf(aic_str + *aic_len, "CHAP_I=%d", chap->id);
|
||||
*aic_len += 1;
|
||||
pr_debug("[server] Sending CHAP_I=%d\n", chap->id);
|
||||
/*
|
||||
* Generate Challenge.
|
||||
*/
|
||||
chap_gen_challenge(conn, 1, aic_str, aic_len);
|
||||
|
||||
return chap;
|
||||
}
|
||||
|
||||
static void chap_close(struct iscsi_conn *conn)
|
||||
{
|
||||
kfree(conn->auth_protocol);
|
||||
conn->auth_protocol = NULL;
|
||||
}
|
||||
|
||||
static int chap_server_compute_md5(
|
||||
struct iscsi_conn *conn,
|
||||
struct iscsi_node_auth *auth,
|
||||
char *nr_in_ptr,
|
||||
char *nr_out_ptr,
|
||||
unsigned int *nr_out_len)
|
||||
{
|
||||
char *endptr;
|
||||
unsigned char id, digest[MD5_SIGNATURE_SIZE];
|
||||
unsigned char type, response[MD5_SIGNATURE_SIZE * 2 + 2];
|
||||
unsigned char identifier[10], *challenge = NULL;
|
||||
unsigned char *challenge_binhex = NULL;
|
||||
unsigned char client_digest[MD5_SIGNATURE_SIZE];
|
||||
unsigned char server_digest[MD5_SIGNATURE_SIZE];
|
||||
unsigned char chap_n[MAX_CHAP_N_SIZE], chap_r[MAX_RESPONSE_LENGTH];
|
||||
struct iscsi_chap *chap = (struct iscsi_chap *) conn->auth_protocol;
|
||||
struct crypto_hash *tfm;
|
||||
struct hash_desc desc;
|
||||
struct scatterlist sg;
|
||||
int auth_ret = -1, ret, challenge_len;
|
||||
|
||||
memset(identifier, 0, 10);
|
||||
memset(chap_n, 0, MAX_CHAP_N_SIZE);
|
||||
memset(chap_r, 0, MAX_RESPONSE_LENGTH);
|
||||
memset(digest, 0, MD5_SIGNATURE_SIZE);
|
||||
memset(response, 0, MD5_SIGNATURE_SIZE * 2 + 2);
|
||||
memset(client_digest, 0, MD5_SIGNATURE_SIZE);
|
||||
memset(server_digest, 0, MD5_SIGNATURE_SIZE);
|
||||
|
||||
challenge = kzalloc(CHAP_CHALLENGE_STR_LEN, GFP_KERNEL);
|
||||
if (!challenge) {
|
||||
pr_err("Unable to allocate challenge buffer\n");
|
||||
goto out;
|
||||
}
|
||||
|
||||
challenge_binhex = kzalloc(CHAP_CHALLENGE_STR_LEN, GFP_KERNEL);
|
||||
if (!challenge_binhex) {
|
||||
pr_err("Unable to allocate challenge_binhex buffer\n");
|
||||
goto out;
|
||||
}
|
||||
/*
|
||||
* Extract CHAP_N.
|
||||
*/
|
||||
if (extract_param(nr_in_ptr, "CHAP_N", MAX_CHAP_N_SIZE, chap_n,
|
||||
&type) < 0) {
|
||||
pr_err("Could not find CHAP_N.\n");
|
||||
goto out;
|
||||
}
|
||||
if (type == HEX) {
|
||||
pr_err("Could not find CHAP_N.\n");
|
||||
goto out;
|
||||
}
|
||||
|
||||
if (memcmp(chap_n, auth->userid, strlen(auth->userid)) != 0) {
|
||||
pr_err("CHAP_N values do not match!\n");
|
||||
goto out;
|
||||
}
|
||||
pr_debug("[server] Got CHAP_N=%s\n", chap_n);
|
||||
/*
|
||||
* Extract CHAP_R.
|
||||
*/
|
||||
if (extract_param(nr_in_ptr, "CHAP_R", MAX_RESPONSE_LENGTH, chap_r,
|
||||
&type) < 0) {
|
||||
pr_err("Could not find CHAP_R.\n");
|
||||
goto out;
|
||||
}
|
||||
if (type != HEX) {
|
||||
pr_err("Could not find CHAP_R.\n");
|
||||
goto out;
|
||||
}
|
||||
|
||||
pr_debug("[server] Got CHAP_R=%s\n", chap_r);
|
||||
chap_string_to_hex(client_digest, chap_r, strlen(chap_r));
|
||||
|
||||
tfm = crypto_alloc_hash("md5", 0, CRYPTO_ALG_ASYNC);
|
||||
if (IS_ERR(tfm)) {
|
||||
pr_err("Unable to allocate struct crypto_hash\n");
|
||||
goto out;
|
||||
}
|
||||
desc.tfm = tfm;
|
||||
desc.flags = 0;
|
||||
|
||||
ret = crypto_hash_init(&desc);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_init() failed\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
sg_init_one(&sg, (void *)&chap->id, 1);
|
||||
ret = crypto_hash_update(&desc, &sg, 1);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for id\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
sg_init_one(&sg, (void *)&auth->password, strlen(auth->password));
|
||||
ret = crypto_hash_update(&desc, &sg, strlen(auth->password));
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for password\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
sg_init_one(&sg, (void *)chap->challenge, CHAP_CHALLENGE_LENGTH);
|
||||
ret = crypto_hash_update(&desc, &sg, CHAP_CHALLENGE_LENGTH);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for challenge\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
ret = crypto_hash_final(&desc, server_digest);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_final() failed for server digest\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
crypto_free_hash(tfm);
|
||||
|
||||
chap_binaryhex_to_asciihex(response, server_digest, MD5_SIGNATURE_SIZE);
|
||||
pr_debug("[server] MD5 Server Digest: %s\n", response);
|
||||
|
||||
if (memcmp(server_digest, client_digest, MD5_SIGNATURE_SIZE) != 0) {
|
||||
pr_debug("[server] MD5 Digests do not match!\n\n");
|
||||
goto out;
|
||||
} else
|
||||
pr_debug("[server] MD5 Digests match, CHAP connetication"
|
||||
" successful.\n\n");
|
||||
/*
|
||||
* One way authentication has succeeded, return now if mutual
|
||||
* authentication is not enabled.
|
||||
*/
|
||||
if (!auth->authenticate_target) {
|
||||
kfree(challenge);
|
||||
kfree(challenge_binhex);
|
||||
return 0;
|
||||
}
|
||||
/*
|
||||
* Get CHAP_I.
|
||||
*/
|
||||
if (extract_param(nr_in_ptr, "CHAP_I", 10, identifier, &type) < 0) {
|
||||
pr_err("Could not find CHAP_I.\n");
|
||||
goto out;
|
||||
}
|
||||
|
||||
if (type == HEX)
|
||||
id = (unsigned char)simple_strtoul((char *)&identifier[2],
|
||||
&endptr, 0);
|
||||
else
|
||||
id = (unsigned char)simple_strtoul(identifier, &endptr, 0);
|
||||
/*
|
||||
* RFC 1994 says Identifier is no more than octet (8 bits).
|
||||
*/
|
||||
pr_debug("[server] Got CHAP_I=%d\n", id);
|
||||
/*
|
||||
* Get CHAP_C.
|
||||
*/
|
||||
if (extract_param(nr_in_ptr, "CHAP_C", CHAP_CHALLENGE_STR_LEN,
|
||||
challenge, &type) < 0) {
|
||||
pr_err("Could not find CHAP_C.\n");
|
||||
goto out;
|
||||
}
|
||||
|
||||
if (type != HEX) {
|
||||
pr_err("Could not find CHAP_C.\n");
|
||||
goto out;
|
||||
}
|
||||
pr_debug("[server] Got CHAP_C=%s\n", challenge);
|
||||
challenge_len = chap_string_to_hex(challenge_binhex, challenge,
|
||||
strlen(challenge));
|
||||
if (!challenge_len) {
|
||||
pr_err("Unable to convert incoming challenge\n");
|
||||
goto out;
|
||||
}
|
||||
/*
|
||||
* Generate CHAP_N and CHAP_R for mutual authentication.
|
||||
*/
|
||||
tfm = crypto_alloc_hash("md5", 0, CRYPTO_ALG_ASYNC);
|
||||
if (IS_ERR(tfm)) {
|
||||
pr_err("Unable to allocate struct crypto_hash\n");
|
||||
goto out;
|
||||
}
|
||||
desc.tfm = tfm;
|
||||
desc.flags = 0;
|
||||
|
||||
ret = crypto_hash_init(&desc);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_init() failed\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
sg_init_one(&sg, (void *)&id, 1);
|
||||
ret = crypto_hash_update(&desc, &sg, 1);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for id\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
sg_init_one(&sg, (void *)auth->password_mutual,
|
||||
strlen(auth->password_mutual));
|
||||
ret = crypto_hash_update(&desc, &sg, strlen(auth->password_mutual));
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for"
|
||||
" password_mutual\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
/*
|
||||
* Convert received challenge to binary hex.
|
||||
*/
|
||||
sg_init_one(&sg, (void *)challenge_binhex, challenge_len);
|
||||
ret = crypto_hash_update(&desc, &sg, challenge_len);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_update() failed for ma challenge\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
|
||||
ret = crypto_hash_final(&desc, digest);
|
||||
if (ret < 0) {
|
||||
pr_err("crypto_hash_final() failed for ma digest\n");
|
||||
crypto_free_hash(tfm);
|
||||
goto out;
|
||||
}
|
||||
crypto_free_hash(tfm);
|
||||
/*
|
||||
* Generate CHAP_N and CHAP_R.
|
||||
*/
|
||||
*nr_out_len = sprintf(nr_out_ptr, "CHAP_N=%s", auth->userid_mutual);
|
||||
*nr_out_len += 1;
|
||||
pr_debug("[server] Sending CHAP_N=%s\n", auth->userid_mutual);
|
||||
/*
|
||||
* Convert response from binary hex to ascii hext.
|
||||
*/
|
||||
chap_binaryhex_to_asciihex(response, digest, MD5_SIGNATURE_SIZE);
|
||||
*nr_out_len += sprintf(nr_out_ptr + *nr_out_len, "CHAP_R=0x%s",
|
||||
response);
|
||||
*nr_out_len += 1;
|
||||
pr_debug("[server] Sending CHAP_R=0x%s\n", response);
|
||||
auth_ret = 0;
|
||||
out:
|
||||
kfree(challenge);
|
||||
kfree(challenge_binhex);
|
||||
return auth_ret;
|
||||
}
|
||||
|
||||
static int chap_got_response(
|
||||
struct iscsi_conn *conn,
|
||||
struct iscsi_node_auth *auth,
|
||||
char *nr_in_ptr,
|
||||
char *nr_out_ptr,
|
||||
unsigned int *nr_out_len)
|
||||
{
|
||||
struct iscsi_chap *chap = (struct iscsi_chap *) conn->auth_protocol;
|
||||
|
||||
switch (chap->digest_type) {
|
||||
case CHAP_DIGEST_MD5:
|
||||
if (chap_server_compute_md5(conn, auth, nr_in_ptr,
|
||||
nr_out_ptr, nr_out_len) < 0)
|
||||
return -1;
|
||||
return 0;
|
||||
default:
|
||||
pr_err("Unknown CHAP digest type %d!\n",
|
||||
chap->digest_type);
|
||||
return -1;
|
||||
}
|
||||
}
|
||||
|
||||
u32 chap_main_loop(
|
||||
struct iscsi_conn *conn,
|
||||
struct iscsi_node_auth *auth,
|
||||
char *in_text,
|
||||
char *out_text,
|
||||
int *in_len,
|
||||
int *out_len)
|
||||
{
|
||||
struct iscsi_chap *chap = (struct iscsi_chap *) conn->auth_protocol;
|
||||
|
||||
if (!chap) {
|
||||
chap = chap_server_open(conn, auth, in_text, out_text, out_len);
|
||||
if (!chap)
|
||||
return 2;
|
||||
chap->chap_state = CHAP_STAGE_SERVER_AIC;
|
||||
return 0;
|
||||
} else if (chap->chap_state == CHAP_STAGE_SERVER_AIC) {
|
||||
convert_null_to_semi(in_text, *in_len);
|
||||
if (chap_got_response(conn, auth, in_text, out_text,
|
||||
out_len) < 0) {
|
||||
chap_close(conn);
|
||||
return 2;
|
||||
}
|
||||
if (auth->authenticate_target)
|
||||
chap->chap_state = CHAP_STAGE_SERVER_NR;
|
||||
else
|
||||
*out_len = 0;
|
||||
chap_close(conn);
|
||||
return 1;
|
||||
}
|
||||
|
||||
return 2;
|
||||
}
|
||||
@@ -0,0 +1,31 @@
|
||||
#ifndef _ISCSI_CHAP_H_
|
||||
#define _ISCSI_CHAP_H_
|
||||
|
||||
#define CHAP_DIGEST_MD5 5
|
||||
#define CHAP_DIGEST_SHA 6
|
||||
|
||||
#define CHAP_CHALLENGE_LENGTH 16
|
||||
#define CHAP_CHALLENGE_STR_LEN 4096
|
||||
#define MAX_RESPONSE_LENGTH 64 /* sufficient for MD5 */
|
||||
#define MAX_CHAP_N_SIZE 512
|
||||
|
||||
#define MD5_SIGNATURE_SIZE 16 /* 16 bytes in a MD5 message digest */
|
||||
|
||||
#define CHAP_STAGE_CLIENT_A 1
|
||||
#define CHAP_STAGE_SERVER_AIC 2
|
||||
#define CHAP_STAGE_CLIENT_NR 3
|
||||
#define CHAP_STAGE_CLIENT_NRIC 4
|
||||
#define CHAP_STAGE_SERVER_NR 5
|
||||
|
||||
extern u32 chap_main_loop(struct iscsi_conn *, struct iscsi_node_auth *, char *, char *,
|
||||
int *, int *);
|
||||
|
||||
struct iscsi_chap {
|
||||
unsigned char digest_type;
|
||||
unsigned char id;
|
||||
unsigned char challenge[CHAP_CHALLENGE_LENGTH];
|
||||
unsigned int authenticate_target;
|
||||
unsigned int chap_state;
|
||||
} ____cacheline_aligned;
|
||||
|
||||
#endif /*** _ISCSI_CHAP_H_ ***/
|
||||
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,7 @@
|
||||
#ifndef ISCSI_TARGET_CONFIGFS_H
|
||||
#define ISCSI_TARGET_CONFIGFS_H
|
||||
|
||||
extern int iscsi_target_register_configfs(void);
|
||||
extern void iscsi_target_deregister_configfs(void);
|
||||
|
||||
#endif /* ISCSI_TARGET_CONFIGFS_H */
|
||||
File diff suppressed because it is too large
Load Diff
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,12 @@
|
||||
#ifndef ISCSI_TARGET_DATAIN_VALUES_H
|
||||
#define ISCSI_TARGET_DATAIN_VALUES_H
|
||||
|
||||
extern struct iscsi_datain_req *iscsit_allocate_datain_req(void);
|
||||
extern void iscsit_attach_datain_req(struct iscsi_cmd *, struct iscsi_datain_req *);
|
||||
extern void iscsit_free_datain_req(struct iscsi_cmd *, struct iscsi_datain_req *);
|
||||
extern void iscsit_free_all_datain_reqs(struct iscsi_cmd *);
|
||||
extern struct iscsi_datain_req *iscsit_get_datain_req(struct iscsi_cmd *);
|
||||
extern struct iscsi_datain_req *iscsit_get_datain_values(struct iscsi_cmd *,
|
||||
struct iscsi_datain *);
|
||||
|
||||
#endif /*** ISCSI_TARGET_DATAIN_VALUES_H ***/
|
||||
@@ -0,0 +1,87 @@
|
||||
/*******************************************************************************
|
||||
* This file contains the iSCSI Virtual Device and Disk Transport
|
||||
* agnostic related functions.
|
||||
*
|
||||
\u00a9 Copyright 2007-2011 RisingTide Systems LLC.
|
||||
*
|
||||
* Licensed to the Linux Foundation under the General Public License (GPL) version 2.
|
||||
*
|
||||
* Author: Nicholas A. Bellinger <nab@linux-iscsi.org>
|
||||
*
|
||||
* This program is free software; you can redistribute it and/or modify
|
||||
* it under the terms of the GNU General Public License as published by
|
||||
* the Free Software Foundation; either version 2 of the License, or
|
||||
* (at your option) any later version.
|
||||
*
|
||||
* This program is distributed in the hope that it will be useful,
|
||||
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
||||
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
||||
* GNU General Public License for more details.
|
||||
******************************************************************************/
|
||||
|
||||
#include <scsi/scsi_device.h>
|
||||
#include <target/target_core_base.h>
|
||||
#include <target/target_core_device.h>
|
||||
#include <target/target_core_transport.h>
|
||||
|
||||
#include "iscsi_target_core.h"
|
||||
#include "iscsi_target_device.h"
|
||||
#include "iscsi_target_tpg.h"
|
||||
#include "iscsi_target_util.h"
|
||||
|
||||
int iscsit_get_lun_for_tmr(
|
||||
struct iscsi_cmd *cmd,
|
||||
u64 lun)
|
||||
{
|
||||
u32 unpacked_lun = scsilun_to_int((struct scsi_lun *)&lun);
|
||||
|
||||
return transport_lookup_tmr_lun(&cmd->se_cmd, unpacked_lun);
|
||||
}
|
||||
|
||||
int iscsit_get_lun_for_cmd(
|
||||
struct iscsi_cmd *cmd,
|
||||
unsigned char *cdb,
|
||||
u64 lun)
|
||||
{
|
||||
u32 unpacked_lun = scsilun_to_int((struct scsi_lun *)&lun);
|
||||
|
||||
return transport_lookup_cmd_lun(&cmd->se_cmd, unpacked_lun);
|
||||
}
|
||||
|
||||
void iscsit_determine_maxcmdsn(struct iscsi_session *sess)
|
||||
{
|
||||
struct se_node_acl *se_nacl;
|
||||
|
||||
/*
|
||||
* This is a discovery session, the single queue slot was already
|
||||
* assigned in iscsi_login_zero_tsih(). Since only Logout and
|
||||
* Text Opcodes are allowed during discovery we do not have to worry
|
||||
* about the HBA's queue depth here.
|
||||
*/
|
||||
if (sess->sess_ops->SessionType)
|
||||
return;
|
||||
|
||||
se_nacl = sess->se_sess->se_node_acl;
|
||||
|
||||
/*
|
||||
* This is a normal session, set the Session's CmdSN window to the
|
||||
* struct se_node_acl->queue_depth. The value in struct se_node_acl->queue_depth
|
||||
* has already been validated as a legal value in
|
||||
* core_set_queue_depth_for_node().
|
||||
*/
|
||||
sess->cmdsn_window = se_nacl->queue_depth;
|
||||
sess->max_cmd_sn = (sess->max_cmd_sn + se_nacl->queue_depth) - 1;
|
||||
}
|
||||
|
||||
void iscsit_increment_maxcmdsn(struct iscsi_cmd *cmd, struct iscsi_session *sess)
|
||||
{
|
||||
if (cmd->immediate_cmd || cmd->maxcmdsn_inc)
|
||||
return;
|
||||
|
||||
cmd->maxcmdsn_inc = 1;
|
||||
|
||||
mutex_lock(&sess->cmdsn_mutex);
|
||||
sess->max_cmd_sn += 1;
|
||||
pr_debug("Updated MaxCmdSN to 0x%08x\n", sess->max_cmd_sn);
|
||||
mutex_unlock(&sess->cmdsn_mutex);
|
||||
}
|
||||
@@ -0,0 +1,9 @@
|
||||
#ifndef ISCSI_TARGET_DEVICE_H
|
||||
#define ISCSI_TARGET_DEVICE_H
|
||||
|
||||
extern int iscsit_get_lun_for_tmr(struct iscsi_cmd *, u64);
|
||||
extern int iscsit_get_lun_for_cmd(struct iscsi_cmd *, unsigned char *, u64);
|
||||
extern void iscsit_determine_maxcmdsn(struct iscsi_session *);
|
||||
extern void iscsit_increment_maxcmdsn(struct iscsi_cmd *, struct iscsi_session *);
|
||||
|
||||
#endif /* ISCSI_TARGET_DEVICE_H */
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user