  1. /*
  2. * ZeroTier One - Network Virtualization Everywhere
  3. * Copyright (C) 2011-2016 ZeroTier, Inc.
  4. *
  5. * This program is free software: you can redistribute it and/or modify
  6. * it under the terms of the GNU General Public License as published by
  7. * the Free Software Foundation, either version 3 of the License, or
  8. * (at your option) any later version.
  9. *
  10. * This program is distributed in the hope that it will be useful,
  11. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * GNU General Public License for more details.
  14. *
  15. * You should have received a copy of the GNU General Public License
  16. * along with this program. If not, see <>.
  17. */
  18. #include <stdio.h>
  19. #include <stdlib.h>
  20. #include <stdint.h>
  21. #include <string.h>
  22. #include <WinSock2.h>
  23. #include <Windows.h>
  24. #include <tchar.h>
  25. #include <malloc.h>
  26. #include <winreg.h>
  27. #include <wchar.h>
  28. #include <ws2ipdef.h>
  29. #include <WS2tcpip.h>
  30. #include <IPHlpApi.h>
  31. #include <nldef.h>
  32. #include <netioapi.h>
  33. #include <atlbase.h>
  34. #include <netlistmgr.h>
  35. #include <nldef.h>
  36. #include <SetupAPI.h>
  37. #include <newdev.h>
  38. #include <cfgmgr32.h>
  39. #include <iostream>
  40. #include <set>
  41. #include "../node/Constants.hpp"
  42. #include "../node/Utils.hpp"
  43. #include "../node/Mutex.hpp"
  44. #include "WindowsEthernetTap.hpp"
  45. #include "OSUtils.hpp"
  46. #include "..\windows\TapDriver6\tap-windows.h"
  47. // Create a fake unused default route to force detection of network type on networks without gateways
  49. // Function signatures of dynamically loaded functions, from newdev.h, setupapi.h, and cfgmgr32.h
  50. typedef BOOL (WINAPI *UpdateDriverForPlugAndPlayDevicesA_t)(_In_opt_ HWND hwndParent,_In_ LPCSTR HardwareId,_In_ LPCSTR FullInfPath,_In_ DWORD InstallFlags,_Out_opt_ PBOOL bRebootRequired);
  51. typedef BOOL (WINAPI *SetupDiGetINFClassA_t)(_In_ PCSTR InfName,_Out_ LPGUID ClassGuid,_Out_writes_(ClassNameSize) PSTR ClassName,_In_ DWORD ClassNameSize,_Out_opt_ PDWORD RequiredSize);
  52. typedef HDEVINFO (WINAPI *SetupDiCreateDeviceInfoList_t)(_In_opt_ CONST GUID *ClassGuid,_In_opt_ HWND hwndParent);
  53. typedef BOOL (WINAPI *SetupDiCreateDeviceInfoA_t)(_In_ HDEVINFO DeviceInfoSet,_In_ PCSTR DeviceName,_In_ CONST GUID *ClassGuid,_In_opt_ PCSTR DeviceDescription,_In_opt_ HWND hwndParent,_In_ DWORD CreationFlags,_Out_opt_ PSP_DEVINFO_DATA DeviceInfoData);
  54. typedef BOOL (WINAPI *SetupDiSetDeviceRegistryPropertyA_t)(_In_ HDEVINFO DeviceInfoSet,_Inout_ PSP_DEVINFO_DATA DeviceInfoData,_In_ DWORD Property,_In_reads_bytes_opt_(PropertyBufferSize) CONST BYTE *PropertyBuffer,_In_ DWORD PropertyBufferSize);
  55. typedef BOOL (WINAPI *SetupDiCallClassInstaller_t)(_In_ DI_FUNCTION InstallFunction,_In_ HDEVINFO DeviceInfoSet,_In_opt_ PSP_DEVINFO_DATA DeviceInfoData);
  56. typedef BOOL (WINAPI *SetupDiDestroyDeviceInfoList_t)(_In_ HDEVINFO DeviceInfoSet);
  57. typedef HDEVINFO (WINAPI *SetupDiGetClassDevsExA_t)(_In_opt_ CONST GUID *ClassGuid,_In_opt_ PCSTR Enumerator,_In_opt_ HWND hwndParent,_In_ DWORD Flags,_In_opt_ HDEVINFO DeviceInfoSet,_In_opt_ PCSTR MachineName,_Reserved_ PVOID Reserved);
  58. typedef BOOL (WINAPI *SetupDiOpenDeviceInfoA_t)(_In_ HDEVINFO DeviceInfoSet,_In_ PCSTR DeviceInstanceId,_In_opt_ HWND hwndParent,_In_ DWORD OpenFlags,_Out_opt_ PSP_DEVINFO_DATA DeviceInfoData);
  59. typedef BOOL (WINAPI *SetupDiEnumDeviceInfo_t)(_In_ HDEVINFO DeviceInfoSet,_In_ DWORD MemberIndex,_Out_ PSP_DEVINFO_DATA DeviceInfoData);
  60. typedef BOOL (WINAPI *SetupDiSetClassInstallParamsA_t)(_In_ HDEVINFO DeviceInfoSet,_In_opt_ PSP_DEVINFO_DATA DeviceInfoData,_In_reads_bytes_opt_(ClassInstallParamsSize) PSP_CLASSINSTALL_HEADER ClassInstallParams,_In_ DWORD ClassInstallParamsSize);
  61. typedef CONFIGRET (WINAPI *CM_Get_Device_ID_ExA_t)(_In_ DEVINST dnDevInst,_Out_writes_(BufferLen) PSTR Buffer,_In_ ULONG BufferLen,_In_ ULONG ulFlags,_In_opt_ HMACHINE hMachine);
  62. typedef BOOL (WINAPI *SetupDiGetDeviceInstanceIdA_t)(_In_ HDEVINFO DeviceInfoSet,_In_ PSP_DEVINFO_DATA DeviceInfoData,_Out_writes_opt_(DeviceInstanceIdSize) PSTR DeviceInstanceId,_In_ DWORD DeviceInstanceIdSize,_Out_opt_ PDWORD RequiredSize);
  63. namespace ZeroTier {
  64. namespace {
  65. // Static/singleton class that when initialized loads a bunch of environment information and a few dynamically loaded DLLs
  66. class WindowsEthernetTapEnv
  67. {
  68. public:
  69. WindowsEthernetTapEnv()
  70. {
  71. #ifdef _WIN64
  72. is64Bit = TRUE;
  73. tapDriverPath = "\\tap-windows\\x64\\zttap300.inf";
  74. #else
  75. is64Bit = FALSE;
  76. IsWow64Process(GetCurrentProcess(),&is64Bit);
  77. if (is64Bit) {
  78. fprintf(stderr,"FATAL: you must use the 64-bit ZeroTier One service on 64-bit Windows systems\r\n");
  79. _exit(1);
  80. }
  81. tapDriverPath = "\\tap-windows\\x86\\zttap300.inf";
  82. #endif
  83. tapDriverName = "zttap300";
  84. setupApiMod = LoadLibraryA("setupapi.dll");
  85. if (!setupApiMod) {
  86. fprintf(stderr,"FATAL: unable to dynamically load setupapi.dll\r\n");
  87. _exit(1);
  88. }
  89. if (!(this->SetupDiGetINFClassA = (SetupDiGetINFClassA_t)GetProcAddress(setupApiMod,"SetupDiGetINFClassA"))) {
  90. fprintf(stderr,"FATAL: SetupDiGetINFClassA not found in setupapi.dll\r\n");
  91. _exit(1);
  92. }
  93. if (!(this->SetupDiCreateDeviceInfoList = (SetupDiCreateDeviceInfoList_t)GetProcAddress(setupApiMod,"SetupDiCreateDeviceInfoList"))) {
  94. fprintf(stderr,"FATAL: SetupDiCreateDeviceInfoList not found in setupapi.dll\r\n");
  95. _exit(1);
  96. }
  97. if (!(this->SetupDiCreateDeviceInfoA = (SetupDiCreateDeviceInfoA_t)GetProcAddress(setupApiMod,"SetupDiCreateDeviceInfoA"))) {
  98. fprintf(stderr,"FATAL: SetupDiCreateDeviceInfoA not found in setupapi.dll\r\n");
  99. _exit(1);
  100. }
  101. if (!(this->SetupDiSetDeviceRegistryPropertyA = (SetupDiSetDeviceRegistryPropertyA_t)GetProcAddress(setupApiMod,"SetupDiSetDeviceRegistryPropertyA"))) {
  102. fprintf(stderr,"FATAL: SetupDiSetDeviceRegistryPropertyA not found in setupapi.dll\r\n");
  103. _exit(1);
  104. }
  105. if (!(this->SetupDiCallClassInstaller = (SetupDiCallClassInstaller_t)GetProcAddress(setupApiMod,"SetupDiCallClassInstaller"))) {
  106. fprintf(stderr,"FATAL: SetupDiCallClassInstaller not found in setupapi.dll\r\n");
  107. _exit(1);
  108. }
  109. if (!(this->SetupDiDestroyDeviceInfoList = (SetupDiDestroyDeviceInfoList_t)GetProcAddress(setupApiMod,"SetupDiDestroyDeviceInfoList"))) {
  110. fprintf(stderr,"FATAL: SetupDiDestroyDeviceInfoList not found in setupapi.dll\r\n");
  111. _exit(1);
  112. }
  113. if (!(this->SetupDiGetClassDevsExA = (SetupDiGetClassDevsExA_t)GetProcAddress(setupApiMod,"SetupDiGetClassDevsExA"))) {
  114. fprintf(stderr,"FATAL: SetupDiGetClassDevsExA not found in setupapi.dll\r\n");
  115. _exit(1);
  116. }
  117. if (!(this->SetupDiOpenDeviceInfoA = (SetupDiOpenDeviceInfoA_t)GetProcAddress(setupApiMod,"SetupDiOpenDeviceInfoA"))) {
  118. fprintf(stderr,"FATAL: SetupDiOpenDeviceInfoA not found in setupapi.dll\r\n");
  119. _exit(1);
  120. }
  121. if (!(this->SetupDiEnumDeviceInfo = (SetupDiEnumDeviceInfo_t)GetProcAddress(setupApiMod,"SetupDiEnumDeviceInfo"))) {
  122. fprintf(stderr,"FATAL: SetupDiEnumDeviceInfo not found in setupapi.dll\r\n");
  123. _exit(1);
  124. }
  125. if (!(this->SetupDiSetClassInstallParamsA = (SetupDiSetClassInstallParamsA_t)GetProcAddress(setupApiMod,"SetupDiSetClassInstallParamsA"))) {
  126. fprintf(stderr,"FATAL: SetupDiSetClassInstallParamsA not found in setupapi.dll\r\n");
  127. _exit(1);
  128. }
  129. if (!(this->SetupDiGetDeviceInstanceIdA = (SetupDiGetDeviceInstanceIdA_t)GetProcAddress(setupApiMod,"SetupDiGetDeviceInstanceIdA"))) {
  130. fprintf(stderr,"FATAL: SetupDiGetDeviceInstanceIdA not found in setupapi.dll\r\n");
  131. _exit(1);
  132. }
  133. newDevMod = LoadLibraryA("newdev.dll");
  134. if (!newDevMod) {
  135. fprintf(stderr,"FATAL: unable to dynamically load newdev.dll\r\n");
  136. _exit(1);
  137. }
  138. if (!(this->UpdateDriverForPlugAndPlayDevicesA = (UpdateDriverForPlugAndPlayDevicesA_t)GetProcAddress(newDevMod,"UpdateDriverForPlugAndPlayDevicesA"))) {
  139. fprintf(stderr,"FATAL: UpdateDriverForPlugAndPlayDevicesA not found in newdev.dll\r\n");
  140. _exit(1);
  141. }
  142. cfgMgrMod = LoadLibraryA("cfgmgr32.dll");
  143. if (!cfgMgrMod) {
  144. fprintf(stderr,"FATAL: unable to dynamically load cfgmgr32.dll\r\n");
  145. _exit(1);
  146. }
  147. if (!(this->CM_Get_Device_ID_ExA = (CM_Get_Device_ID_ExA_t)GetProcAddress(cfgMgrMod,"CM_Get_Device_ID_ExA"))) {
  148. fprintf(stderr,"FATAL: CM_Get_Device_ID_ExA not found in cfgmgr32.dll\r\n");
  149. _exit(1);
  150. }
  151. }
  152. BOOL is64Bit; // is the system 64-bit, regardless of whether this binary is or not
  153. std::string tapDriverPath;
  154. std::string tapDriverName;
  155. UpdateDriverForPlugAndPlayDevicesA_t UpdateDriverForPlugAndPlayDevicesA;
  156. SetupDiGetINFClassA_t SetupDiGetINFClassA;
  157. SetupDiCreateDeviceInfoList_t SetupDiCreateDeviceInfoList;
  158. SetupDiCreateDeviceInfoA_t SetupDiCreateDeviceInfoA;
  159. SetupDiSetDeviceRegistryPropertyA_t SetupDiSetDeviceRegistryPropertyA;
  160. SetupDiCallClassInstaller_t SetupDiCallClassInstaller;
  161. SetupDiDestroyDeviceInfoList_t SetupDiDestroyDeviceInfoList;
  162. SetupDiGetClassDevsExA_t SetupDiGetClassDevsExA;
  163. SetupDiOpenDeviceInfoA_t SetupDiOpenDeviceInfoA;
  164. SetupDiEnumDeviceInfo_t SetupDiEnumDeviceInfo;
  165. SetupDiSetClassInstallParamsA_t SetupDiSetClassInstallParamsA;
  166. SetupDiGetDeviceInstanceIdA_t SetupDiGetDeviceInstanceIdA;
  167. CM_Get_Device_ID_ExA_t CM_Get_Device_ID_ExA;
  168. private:
  169. HMODULE setupApiMod;
  170. HMODULE newDevMod;
  171. HMODULE cfgMgrMod;
  172. };
  173. static const WindowsEthernetTapEnv WINENV;
  174. // Only create or delete devices one at a time
  175. static Mutex _systemTapInitLock;
  176. // Only perform installation or uninstallation options one at a time
  177. static Mutex _systemDeviceManagementLock;
  178. } // anonymous namespace
  179. std::string WindowsEthernetTap::addNewPersistentTapDevice(const char *pathToInf,std::string &deviceInstanceId)
  180. {
  181. Mutex::Lock _l(_systemDeviceManagementLock);
  182. GUID classGuid;
  183. char className[1024];
  184. if (!WINENV.SetupDiGetINFClassA(pathToInf,&classGuid,className,sizeof(className),(PDWORD)0)) {
  185. return std::string("SetupDiGetINFClassA() failed -- unable to read zttap driver INF file");
  186. }
  187. HDEVINFO deviceInfoSet = WINENV.SetupDiCreateDeviceInfoList(&classGuid,(HWND)0);
  188. if (deviceInfoSet == INVALID_HANDLE_VALUE) {
  189. return std::string("SetupDiCreateDeviceInfoList() failed");
  190. }
  191. SP_DEVINFO_DATA deviceInfoData;
  192. memset(&deviceInfoData,0,sizeof(deviceInfoData));
  193. deviceInfoData.cbSize = sizeof(deviceInfoData);
  194. if (!WINENV.SetupDiCreateDeviceInfoA(deviceInfoSet,className,&classGuid,(PCSTR)0,(HWND)0,DICD_GENERATE_ID,&deviceInfoData)) {
  195. WINENV.SetupDiDestroyDeviceInfoList(deviceInfoSet);
  196. return std::string("SetupDiCreateDeviceInfoA() failed");
  197. }
  198. if (!WINENV.SetupDiSetDeviceRegistryPropertyA(deviceInfoSet,&deviceInfoData,SPDRP_HARDWAREID,(const BYTE *)WINENV.tapDriverName.c_str(),(DWORD)(WINENV.tapDriverName.length() + 1))) {
  199. WINENV.SetupDiDestroyDeviceInfoList(deviceInfoSet);
  200. return std::string("SetupDiSetDeviceRegistryPropertyA() failed");
  201. }
  202. if (!WINENV.SetupDiCallClassInstaller(DIF_REGISTERDEVICE,deviceInfoSet,&deviceInfoData)) {
  203. WINENV.SetupDiDestroyDeviceInfoList(deviceInfoSet);
  204. return std::string("SetupDiCallClassInstaller(DIF_REGISTERDEVICE) failed");
  205. }
  206. // HACK: During upgrades, this can fail while the installer is still running. So make 60 attempts
  207. // with a 1s delay between each attempt.
  208. bool driverInstalled = false;
  209. for(int retryCounter=0;retryCounter<60;++retryCounter) {
  210. BOOL rebootRequired = FALSE;
  211. if (WINENV.UpdateDriverForPlugAndPlayDevicesA((HWND)0,WINENV.tapDriverName.c_str(),pathToInf,INSTALLFLAG_FORCE|INSTALLFLAG_NONINTERACTIVE,&rebootRequired)) {
  212. driverInstalled = true;
  213. break;
  214. } else Sleep(1000);
  215. }
  216. if (!driverInstalled) {
  217. WINENV.SetupDiDestroyDeviceInfoList(deviceInfoSet);
  218. return std::string("UpdateDriverForPlugAndPlayDevices() failed (made 60 attempts)");
  219. }
  220. char iidbuf[1024];
  221. DWORD iidReqSize = sizeof(iidbuf);
  222. if (WINENV.SetupDiGetDeviceInstanceIdA(deviceInfoSet,&deviceInfoData,iidbuf,sizeof(iidbuf),&iidReqSize)) {
  223. deviceInstanceId = iidbuf;
  224. } // failure here is not fatal since we only need this on Vista and 2008 -- other versions fill it into the registry automatically
  225. WINENV.SetupDiDestroyDeviceInfoList(deviceInfoSet);
  226. return std::string();
  227. }
  228. std::string WindowsEthernetTap::destroyAllLegacyPersistentTapDevices()
  229. {
  230. char subkeyName[1024];
  231. char subkeyClass[1024];
  232. char data[1024];
  233. std::set<std::string> instanceIdPathsToRemove;
  234. {
  235. HKEY nwAdapters;
  236. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\Control\\Class\\{4D36E972-E325-11CE-BFC1-08002BE10318}",0,KEY_READ|KEY_WRITE,&nwAdapters) != ERROR_SUCCESS)
  237. return std::string("Could not open registry key");
  238. for(DWORD subkeyIndex=0;;++subkeyIndex) {
  239. DWORD type;
  240. DWORD dataLen;
  241. DWORD subkeyNameLen = sizeof(subkeyName);
  242. DWORD subkeyClassLen = sizeof(subkeyClass);
  243. FILETIME lastWriteTime;
  244. if (RegEnumKeyExA(nwAdapters,subkeyIndex,subkeyName,&subkeyNameLen,(DWORD *)0,subkeyClass,&subkeyClassLen,&lastWriteTime) == ERROR_SUCCESS) {
  245. type = 0;
  246. dataLen = sizeof(data);
  247. if (RegGetValueA(nwAdapters,subkeyName,"ComponentId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  248. data[dataLen] = '\0';
  249. if ((!strnicmp(data,"zttap",5))&&(WINENV.tapDriverName != data)) {
  250. std::string instanceIdPath;
  251. type = 0;
  252. dataLen = sizeof(data);
  253. if (RegGetValueA(nwAdapters,subkeyName,"DeviceInstanceID",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS)
  254. instanceIdPath.assign(data,dataLen);
  255. if (instanceIdPath.length() != 0)
  256. instanceIdPathsToRemove.insert(instanceIdPath);
  257. }
  258. }
  259. } else break; // end of list or failure
  260. }
  261. RegCloseKey(nwAdapters);
  262. }
  263. std::string errlist;
  264. for(std::set<std::string>::iterator iidp(instanceIdPathsToRemove.begin());iidp!=instanceIdPathsToRemove.end();++iidp) {
  265. std::string err = deletePersistentTapDevice(iidp->c_str());
  266. if (err.length() > 0) {
  267. if (errlist.length() > 0)
  268. errlist.push_back(',');
  269. errlist.append(err);
  270. }
  271. }
  272. return errlist;
  273. }
  274. std::string WindowsEthernetTap::destroyAllPersistentTapDevices()
  275. {
  276. char subkeyName[1024];
  277. char subkeyClass[1024];
  278. char data[1024];
  279. std::set<std::string> instanceIdPathsToRemove;
  280. {
  281. HKEY nwAdapters;
  282. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\Control\\Class\\{4D36E972-E325-11CE-BFC1-08002BE10318}",0,KEY_READ|KEY_WRITE,&nwAdapters) != ERROR_SUCCESS)
  283. return std::string("Could not open registry key");
  284. for(DWORD subkeyIndex=0;;++subkeyIndex) {
  285. DWORD type;
  286. DWORD dataLen;
  287. DWORD subkeyNameLen = sizeof(subkeyName);
  288. DWORD subkeyClassLen = sizeof(subkeyClass);
  289. FILETIME lastWriteTime;
  290. if (RegEnumKeyExA(nwAdapters,subkeyIndex,subkeyName,&subkeyNameLen,(DWORD *)0,subkeyClass,&subkeyClassLen,&lastWriteTime) == ERROR_SUCCESS) {
  291. type = 0;
  292. dataLen = sizeof(data);
  293. if (RegGetValueA(nwAdapters,subkeyName,"ComponentId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  294. data[dataLen] = '\0';
  295. if (!strnicmp(data,"zttap",5)) {
  296. std::string instanceIdPath;
  297. type = 0;
  298. dataLen = sizeof(data);
  299. if (RegGetValueA(nwAdapters,subkeyName,"DeviceInstanceID",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS)
  300. instanceIdPath.assign(data,dataLen);
  301. if (instanceIdPath.length() != 0)
  302. instanceIdPathsToRemove.insert(instanceIdPath);
  303. }
  304. }
  305. } else break; // end of list or failure
  306. }
  307. RegCloseKey(nwAdapters);
  308. }
  309. std::string errlist;
  310. for(std::set<std::string>::iterator iidp(instanceIdPathsToRemove.begin());iidp!=instanceIdPathsToRemove.end();++iidp) {
  311. std::string err = deletePersistentTapDevice(iidp->c_str());
  312. if (err.length() > 0) {
  313. if (errlist.length() > 0)
  314. errlist.push_back(',');
  315. errlist.append(err);
  316. }
  317. }
  318. return errlist;
  319. }
  320. std::string WindowsEthernetTap::deletePersistentTapDevice(const char *instanceId)
  321. {
  322. char iid[256];
  324. memset(&rmdParams,0,sizeof(rmdParams));
  325. rmdParams.ClassInstallHeader.cbSize = sizeof(SP_CLASSINSTALL_HEADER);
  326. rmdParams.ClassInstallHeader.InstallFunction = DIF_REMOVE;
  327. rmdParams.Scope = DI_REMOVEDEVICE_GLOBAL;
  328. rmdParams.HwProfile = 0;
  329. Mutex::Lock _l(_systemDeviceManagementLock);
  330. HDEVINFO devInfo = WINENV.SetupDiGetClassDevsExA((const GUID *)0,(PCSTR)0,(HWND)0,DIGCF_ALLCLASSES,(HDEVINFO)0,(PCSTR)0,(PVOID)0);
  331. if (devInfo == INVALID_HANDLE_VALUE)
  332. return std::string("SetupDiGetClassDevsExA() failed");
  333. WINENV.SetupDiOpenDeviceInfoA(devInfo,instanceId,(HWND)0,0,(PSP_DEVINFO_DATA)0);
  334. SP_DEVINFO_DATA devInfoData;
  335. memset(&devInfoData,0,sizeof(devInfoData));
  336. devInfoData.cbSize = sizeof(devInfoData);
  337. for(DWORD devIndex=0;WINENV.SetupDiEnumDeviceInfo(devInfo,devIndex,&devInfoData);devIndex++) {
  338. if ((WINENV.CM_Get_Device_ID_ExA(devInfoData.DevInst,iid,sizeof(iid),0,(HMACHINE)0) == CR_SUCCESS)&&(!strcmp(iid,instanceId))) {
  339. if (!WINENV.SetupDiSetClassInstallParamsA(devInfo,&devInfoData,&rmdParams.ClassInstallHeader,sizeof(rmdParams))) {
  340. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  341. return std::string("SetupDiSetClassInstallParams() failed");
  342. }
  343. if (!WINENV.SetupDiCallClassInstaller(DIF_REMOVE,devInfo,&devInfoData)) {
  344. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  345. return std::string("SetupDiCallClassInstaller(DIF_REMOVE) failed");
  346. }
  347. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  348. return std::string();
  349. }
  350. }
  351. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  352. return std::string("instance ID not found");
  353. }
  354. bool WindowsEthernetTap::setPersistentTapDeviceState(const char *instanceId,bool enabled)
  355. {
  356. char iid[256];
  358. Mutex::Lock _l(_systemDeviceManagementLock);
  359. HDEVINFO devInfo = WINENV.SetupDiGetClassDevsExA((const GUID *)0,(PCSTR)0,(HWND)0,DIGCF_ALLCLASSES,(HDEVINFO)0,(PCSTR)0,(PVOID)0);
  360. if (devInfo == INVALID_HANDLE_VALUE)
  361. return false;
  362. WINENV.SetupDiOpenDeviceInfoA(devInfo,instanceId,(HWND)0,0,(PSP_DEVINFO_DATA)0);
  363. SP_DEVINFO_DATA devInfoData;
  364. memset(&devInfoData,0,sizeof(devInfoData));
  365. devInfoData.cbSize = sizeof(devInfoData);
  366. for(DWORD devIndex=0;WINENV.SetupDiEnumDeviceInfo(devInfo,devIndex,&devInfoData);devIndex++) {
  367. if ((WINENV.CM_Get_Device_ID_ExA(devInfoData.DevInst,iid,sizeof(iid),0,(HMACHINE)0) == CR_SUCCESS)&&(!strcmp(iid,instanceId))) {
  368. memset(&params,0,sizeof(params));
  369. params.ClassInstallHeader.cbSize = sizeof(SP_CLASSINSTALL_HEADER);
  370. params.ClassInstallHeader.InstallFunction = DIF_PROPERTYCHANGE;
  371. params.StateChange = enabled ? DICS_ENABLE : DICS_DISABLE;
  372. params.Scope = DICS_FLAG_GLOBAL;
  373. params.HwProfile = 0;
  374. WINENV.SetupDiSetClassInstallParamsA(devInfo,&devInfoData,&params.ClassInstallHeader,sizeof(params));
  375. WINENV.SetupDiCallClassInstaller(DIF_PROPERTYCHANGE,devInfo,&devInfoData);
  376. memset(&params,0,sizeof(params));
  377. params.ClassInstallHeader.cbSize = sizeof(SP_CLASSINSTALL_HEADER);
  378. params.ClassInstallHeader.InstallFunction = DIF_PROPERTYCHANGE;
  379. params.StateChange = enabled ? DICS_ENABLE : DICS_DISABLE;
  380. params.Scope = DICS_FLAG_CONFIGSPECIFIC;
  381. params.HwProfile = 0;
  382. WINENV.SetupDiSetClassInstallParamsA(devInfo,&devInfoData,&params.ClassInstallHeader,sizeof(params));
  383. WINENV.SetupDiCallClassInstaller(DIF_PROPERTYCHANGE,devInfo,&devInfoData);
  384. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  385. return true;
  386. }
  387. }
  388. WINENV.SetupDiDestroyDeviceInfoList(devInfo);
  389. return false;
  390. }
  391. WindowsEthernetTap::WindowsEthernetTap(
  392. const char *hp,
  393. const MAC &mac,
  394. unsigned int mtu,
  395. unsigned int metric,
  396. uint64_t nwid,
  397. const char *friendlyName,
  398. void (*handler)(void *,uint64_t,const MAC &,const MAC &,unsigned int,unsigned int,const void *,unsigned int),
  399. void *arg) :
  400. _handler(handler),
  401. _arg(arg),
  402. _mac(mac),
  403. _nwid(nwid),
  405. _injectSemaphore(INVALID_HANDLE_VALUE),
  406. _pathToHelpers(hp),
  407. _run(true),
  408. _initialized(false),
  409. _enabled(true)
  410. {
  411. char subkeyName[1024];
  412. char subkeyClass[1024];
  413. char data[1024];
  414. char tag[24];
  415. std::string mySubkeyName;
  416. if (mtu > 2800)
  417. throw std::runtime_error("MTU too large.");
  418. // We "tag" registry entries with the network ID to identify persistent devices
  419. Utils::snprintf(tag,sizeof(tag),"%.16llx",(unsigned long long)nwid);
  420. Mutex::Lock _l(_systemTapInitLock);
  421. HKEY nwAdapters;
  422. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\Control\\Class\\{4D36E972-E325-11CE-BFC1-08002BE10318}",0,KEY_READ|KEY_WRITE,&nwAdapters) != ERROR_SUCCESS)
  423. throw std::runtime_error("unable to open registry key for network adapter enumeration");
  424. // Look for the tap instance that corresponds with this network
  425. for(DWORD subkeyIndex=0;;++subkeyIndex) {
  426. DWORD type;
  427. DWORD dataLen;
  428. DWORD subkeyNameLen = sizeof(subkeyName);
  429. DWORD subkeyClassLen = sizeof(subkeyClass);
  430. FILETIME lastWriteTime;
  431. if (RegEnumKeyExA(nwAdapters,subkeyIndex,subkeyName,&subkeyNameLen,(DWORD *)0,subkeyClass,&subkeyClassLen,&lastWriteTime) == ERROR_SUCCESS) {
  432. type = 0;
  433. dataLen = sizeof(data);
  434. if (RegGetValueA(nwAdapters,subkeyName,"ComponentId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  435. data[dataLen] = (char)0;
  436. if (WINENV.tapDriverName == data) {
  437. std::string instanceId;
  438. type = 0;
  439. dataLen = sizeof(data);
  440. if (RegGetValueA(nwAdapters,subkeyName,"NetCfgInstanceId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS)
  441. instanceId.assign(data,dataLen);
  442. std::string instanceIdPath;
  443. type = 0;
  444. dataLen = sizeof(data);
  445. if (RegGetValueA(nwAdapters,subkeyName,"DeviceInstanceID",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS)
  446. instanceIdPath.assign(data,dataLen);
  447. if ((_netCfgInstanceId.length() == 0)&&(instanceId.length() != 0)&&(instanceIdPath.length() != 0)) {
  448. type = 0;
  449. dataLen = sizeof(data);
  450. if (RegGetValueA(nwAdapters,subkeyName,"_ZeroTierTapIdentifier",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  451. data[dataLen] = '\0';
  452. if (!strcmp(data,tag)) {
  453. _netCfgInstanceId = instanceId;
  454. _deviceInstanceId = instanceIdPath;
  455. mySubkeyName = subkeyName;
  456. break; // found it!
  457. }
  458. }
  459. }
  460. }
  461. }
  462. } else break; // no more subkeys or error occurred enumerating them
  463. }
  464. // If there is no device, try to create one
  465. bool creatingNewDevice = (_netCfgInstanceId.length() == 0);
  466. std::string newDeviceInstanceId;
  467. if (creatingNewDevice) {
  468. for(int getNewAttemptCounter=0;getNewAttemptCounter<2;++getNewAttemptCounter) {
  469. for(DWORD subkeyIndex=0;;++subkeyIndex) {
  470. DWORD type;
  471. DWORD dataLen;
  472. DWORD subkeyNameLen = sizeof(subkeyName);
  473. DWORD subkeyClassLen = sizeof(subkeyClass);
  474. FILETIME lastWriteTime;
  475. if (RegEnumKeyExA(nwAdapters,subkeyIndex,subkeyName,&subkeyNameLen,(DWORD *)0,subkeyClass,&subkeyClassLen,&lastWriteTime) == ERROR_SUCCESS) {
  476. type = 0;
  477. dataLen = sizeof(data);
  478. if (RegGetValueA(nwAdapters,subkeyName,"ComponentId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  479. data[dataLen] = '\0';
  480. if (WINENV.tapDriverName == data) {
  481. type = 0;
  482. dataLen = sizeof(data);
  483. if ((RegGetValueA(nwAdapters,subkeyName,"_ZeroTierTapIdentifier",RRF_RT_ANY,&type,(PVOID)data,&dataLen) != ERROR_SUCCESS)||(dataLen <= 0)) {
  484. type = 0;
  485. dataLen = sizeof(data);
  486. if (RegGetValueA(nwAdapters,subkeyName,"NetCfgInstanceId",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS) {
  487. RegSetKeyValueA(nwAdapters,subkeyName,"_ZeroTierTapIdentifier",REG_SZ,tag,(DWORD)(strlen(tag)+1));
  488. _netCfgInstanceId.assign(data,dataLen);
  489. type = 0;
  490. dataLen = sizeof(data);
  491. if (RegGetValueA(nwAdapters,subkeyName,"DeviceInstanceID",RRF_RT_ANY,&type,(PVOID)data,&dataLen) == ERROR_SUCCESS)
  492. _deviceInstanceId.assign(data,dataLen);
  493. mySubkeyName = subkeyName;
  494. // Disable DHCP by default on new devices
  495. HKEY tcpIpInterfaces;
  496. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\services\\Tcpip\\Parameters\\Interfaces",0,KEY_READ|KEY_WRITE,&tcpIpInterfaces) == ERROR_SUCCESS) {
  497. DWORD enable = 0;
  498. RegSetKeyValueA(tcpIpInterfaces,_netCfgInstanceId.c_str(),"EnableDHCP",REG_DWORD,&enable,sizeof(enable));
  499. RegCloseKey(tcpIpInterfaces);
  500. }
  501. break; // found an unused zttap device
  502. }
  503. }
  504. }
  505. }
  506. } else break; // no more keys or error occurred
  507. }
  508. if (_netCfgInstanceId.length() > 0) {
  509. break; // found an unused zttap device
  510. } else {
  511. // no unused zttap devices, so create one
  512. std::string errm = addNewPersistentTapDevice((std::string(_pathToHelpers) + WINENV.tapDriverPath).c_str(),newDeviceInstanceId);
  513. if (errm.length() > 0)
  514. throw std::runtime_error(std::string("unable to create new device instance: ")+errm);
  515. }
  516. }
  517. }
  518. if (_netCfgInstanceId.length() > 0) {
  519. char tmps[64];
  520. unsigned int tmpsl = Utils::snprintf(tmps,sizeof(tmps),"%.2X-%.2X-%.2X-%.2X-%.2X-%.2X",(unsigned int)mac[0],(unsigned int)mac[1],(unsigned int)mac[2],(unsigned int)mac[3],(unsigned int)mac[4],(unsigned int)mac[5]) + 1;
  521. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"NetworkAddress",REG_SZ,tmps,tmpsl);
  522. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"MAC",REG_SZ,tmps,tmpsl);
  523. DWORD tmp = mtu;
  524. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"MTU",REG_DWORD,(LPCVOID)&tmp,sizeof(tmp));
  525. tmp = 0;
  526. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"*NdisDeviceType",REG_DWORD,(LPCVOID)&tmp,sizeof(tmp));
  528. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"*IfType",REG_DWORD,(LPCVOID)&tmp,sizeof(tmp));
  529. if (creatingNewDevice) {
  530. // Vista/2008 does not set this
  531. if (newDeviceInstanceId.length() > 0)
  532. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"DeviceInstanceID",REG_SZ,newDeviceInstanceId.c_str(),(DWORD)newDeviceInstanceId.length());
  533. // Set EnableDHCP to 0 by default on new devices
  534. tmp = 0;
  535. RegSetKeyValueA(nwAdapters,mySubkeyName.c_str(),"EnableDHCP",REG_DWORD,(LPCVOID)&tmp,sizeof(tmp));
  536. }
  537. RegCloseKey(nwAdapters);
  538. } else {
  539. RegCloseKey(nwAdapters);
  540. throw std::runtime_error("unable to find or create tap adapter");
  541. }
  542. {
  543. char nobraces[128]; // strip braces from GUID before converting it, because Windows
  544. const char *nbtmp1 = _netCfgInstanceId.c_str();
  545. char *nbtmp2 = nobraces;
  546. while (*nbtmp1) {
  547. if ((*nbtmp1 != '{')&&(*nbtmp1 != '}'))
  548. *nbtmp2++ = *nbtmp1;
  549. ++nbtmp1;
  550. }
  551. *nbtmp2 = (char)0;
  552. if (UuidFromStringA((RPC_CSTR)nobraces,&_deviceGuid) != RPC_S_OK)
  553. throw std::runtime_error("unable to convert instance ID GUID to native GUID (invalid NetCfgInstanceId in registry?)");
  554. }
  555. // Get the LUID, which is one of like four fucking ways to refer to a network device in Windows
  556. if (ConvertInterfaceGuidToLuid(&_deviceGuid,&_deviceLuid) != NO_ERROR)
  557. throw std::runtime_error("unable to convert device interface GUID to LUID");
  558. _initialized = true;
  559. if (friendlyName)
  560. setFriendlyName(friendlyName);
  561. _injectSemaphore = CreateSemaphore(NULL,0,1,NULL);
  562. _thread = Thread::start(this);
  563. }
  564. WindowsEthernetTap::~WindowsEthernetTap()
  565. {
  566. _run = false;
  567. ReleaseSemaphore(_injectSemaphore,1,NULL);
  568. Thread::join(_thread);
  569. CloseHandle(_injectSemaphore);
  570. setPersistentTapDeviceState(_deviceInstanceId.c_str(),false);
  571. }
  572. void WindowsEthernetTap::setEnabled(bool en)
  573. {
  574. _enabled = en;
  575. }
  576. bool WindowsEthernetTap::enabled() const
  577. {
  578. return _enabled;
  579. }
  580. bool WindowsEthernetTap::addIp(const InetAddress &ip)
  581. {
  582. if (!ip.netmaskBits()) // sanity check... netmask of is WUT?
  583. return false;
  584. Mutex::Lock _l(_assignedIps_m);
  585. if (std::find(_assignedIps.begin(),_assignedIps.end(),ip) != _assignedIps.end())
  586. return true;
  587. _assignedIps.push_back(ip);
  588. _syncIps();
  589. return true;
  590. }
  591. bool WindowsEthernetTap::removeIp(const InetAddress &ip)
  592. {
  593. {
  594. Mutex::Lock _l(_assignedIps_m);
  595. std::vector<InetAddress>::iterator aip(std::find(_assignedIps.begin(),_assignedIps.end(),ip));
  596. if (aip != _assignedIps.end())
  597. _assignedIps.erase(aip);
  598. }
  599. if (!_initialized)
  600. return false;
  601. try {
  603. if (GetUnicastIpAddressTable(AF_UNSPEC,&ipt) == NO_ERROR) {
  604. if ((ipt)&&(ipt->NumEntries > 0)) {
  605. for(DWORD i=0;i<(DWORD)ipt->NumEntries;++i) {
  606. if (ipt->Table[i].InterfaceLuid.Value == _deviceLuid.Value) {
  607. InetAddress addr;
  608. switch(ipt->Table[i].Address.si_family) {
  609. case AF_INET:
  610. addr.set(&(ipt->Table[i].Address.Ipv4.sin_addr.S_un.S_addr),4,ipt->Table[i].OnLinkPrefixLength);
  611. break;
  612. case AF_INET6:
  613. addr.set(ipt->Table[i].Address.Ipv6.sin6_addr.u.Byte,16,ipt->Table[i].OnLinkPrefixLength);
  614. if (addr.ipScope() == InetAddress::IP_SCOPE_LINK_LOCAL)
  615. continue; // can't remove link-local IPv6 addresses
  616. break;
  617. }
  618. if (addr == ip) {
  619. DeleteUnicastIpAddressEntry(&(ipt->Table[i]));
  620. FreeMibTable(ipt);
  621. std::vector<std::string> regIps(_getRegistryIPv4Value("IPAddress"));
  622. std::vector<std::string> regSubnetMasks(_getRegistryIPv4Value("SubnetMask"));
  623. std::string ipstr(ip.toIpString());
  624. for(std::vector<std::string>::iterator rip(regIps.begin()),rm(regSubnetMasks.begin());((rip!=regIps.end())&&(rm!=regSubnetMasks.end()));++rip,++rm) {
  625. if (*rip == ipstr) {
  626. regIps.erase(rip);
  627. regSubnetMasks.erase(rm);
  628. _setRegistryIPv4Value("IPAddress",regIps);
  629. _setRegistryIPv4Value("SubnetMask",regSubnetMasks);
  630. break;
  631. }
  632. }
  633. return true;
  634. }
  635. }
  636. }
  637. }
  638. FreeMibTable((PVOID)ipt);
  639. }
  640. } catch ( ... ) {}
  641. return false;
  642. }
  643. std::vector<InetAddress> WindowsEthernetTap::ips() const
  644. {
  645. static const InetAddress linkLocalLoopback("fe80::1",64); // what is this and why does Windows assign it?
  646. std::vector<InetAddress> addrs;
  647. if (!_initialized)
  648. return addrs;
  649. try {
  651. if (GetUnicastIpAddressTable(AF_UNSPEC,&ipt) == NO_ERROR) {
  652. if ((ipt)&&(ipt->NumEntries > 0)) {
  653. for(DWORD i=0;i<(DWORD)ipt->NumEntries;++i) {
  654. if (ipt->Table[i].InterfaceLuid.Value == _deviceLuid.Value) {
  655. switch(ipt->Table[i].Address.si_family) {
  656. case AF_INET: {
  657. InetAddress ip(&(ipt->Table[i].Address.Ipv4.sin_addr.S_un.S_addr),4,ipt->Table[i].OnLinkPrefixLength);
  658. if (ip != InetAddress::LO4)
  659. addrs.push_back(ip);
  660. } break;
  661. case AF_INET6: {
  662. InetAddress ip(ipt->Table[i].Address.Ipv6.sin6_addr.u.Byte,16,ipt->Table[i].OnLinkPrefixLength);
  663. if ((ip != linkLocalLoopback)&&(ip != InetAddress::LO6))
  664. addrs.push_back(ip);
  665. } break;
  666. }
  667. }
  668. }
  669. }
  670. FreeMibTable(ipt);
  671. }
  672. } catch ( ... ) {} // sanity check, shouldn't happen unless out of memory
  673. std::sort(addrs.begin(),addrs.end());
  674. addrs.erase(std::unique(addrs.begin(),addrs.end()),addrs.end());
  675. return addrs;
  676. }
  677. void WindowsEthernetTap::put(const MAC &from,const MAC &to,unsigned int etherType,const void *data,unsigned int len)
  678. {
  679. if ((!_initialized)||(!_enabled)||(_tap == INVALID_HANDLE_VALUE)||(len > (ZT_IF_MTU)))
  680. return;
  681. Mutex::Lock _l(_injectPending_m);
  682. _injectPending.push( std::pair<Array<char,ZT_IF_MTU + 32>,unsigned int>(Array<char,ZT_IF_MTU + 32>(),len + 14) );
  683. char *d = _injectPending.back();
  684. to.copyTo(d,6);
  685. from.copyTo(d + 6,6);
  686. d[12] = (char)((etherType >> 8) & 0xff);
  687. d[13] = (char)(etherType & 0xff);
  688. memcpy(d + 14,data,len);
  689. ReleaseSemaphore(_injectSemaphore,1,NULL);
  690. }
  691. std::string WindowsEthernetTap::deviceName() const
  692. {
  693. char tmp[1024];
  694. if (ConvertInterfaceLuidToNameA(&_deviceLuid,tmp,sizeof(tmp)) != NO_ERROR)
  695. return std::string("[ConvertInterfaceLuidToName() failed]");
  696. return std::string(tmp);
  697. }
  698. void WindowsEthernetTap::setFriendlyName(const char *dn)
  699. {
  700. if (!_initialized)
  701. return;
  702. HKEY ifp;
  703. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,(std::string("SYSTEM\\CurrentControlSet\\Control\\Network\\{4D36E972-E325-11CE-BFC1-08002BE10318}\\") + _netCfgInstanceId).c_str(),0,KEY_READ|KEY_WRITE,&ifp) == ERROR_SUCCESS) {
  704. RegSetKeyValueA(ifp,"Connection","Name",REG_SZ,(LPCVOID)dn,(DWORD)(strlen(dn)+1));
  705. RegCloseKey(ifp);
  706. }
  707. }
  708. void WindowsEthernetTap::scanMulticastGroups(std::vector<MulticastGroup> &added,std::vector<MulticastGroup> &removed)
  709. {
  710. if (!_initialized)
  711. return;
  712. HANDLE t = _tap;
  713. if (t == INVALID_HANDLE_VALUE)
  714. return;
  715. std::vector<MulticastGroup> newGroups;
  716. // The ZT1 tap driver supports an IOCTL to get multicast memberships at the L2
  717. // level... something Windows does not seem to expose ordinarily. This lets
  718. // pretty much anything work... IPv4, IPv6, IPX, oldskool Netbios, who knows...
  720. DWORD bytesReturned = 0;
  721. if (DeviceIoControl(t,TAP_WIN_IOCTL_GET_MULTICAST_MEMBERSHIPS,(LPVOID)0,0,(LPVOID)mcastbuf,sizeof(mcastbuf),&bytesReturned,NULL)) {
  722. if ((bytesReturned > 0)&&(bytesReturned <= TAP_WIN_IOCTL_GET_MULTICAST_MEMBERSHIPS_OUTPUT_BUF_SIZE)) { // sanity check
  723. MAC mac;
  724. DWORD i = 0;
  725. while ((i + 6) <= bytesReturned) {
  726. mac.setTo(mcastbuf + i,6);
  727. i += 6;
  728. if ((mac.isMulticast())&&(!mac.isBroadcast())) {
  729. // exclude the nulls that may be returned or any other junk Windows puts in there
  730. newGroups.push_back(MulticastGroup(mac,0));
  731. }
  732. }
  733. }
  734. }
  735. std::vector<InetAddress> allIps(ips());
  736. for(std::vector<InetAddress>::iterator ip(allIps.begin());ip!=allIps.end();++ip)
  737. newGroups.push_back(MulticastGroup::deriveMulticastGroupForAddressResolution(*ip));
  738. std::sort(newGroups.begin(),newGroups.end());
  739. newGroups.erase(std::unique(newGroups.begin(),newGroups.end()),newGroups.end());
  740. for(std::vector<MulticastGroup>::iterator m(newGroups.begin());m!=newGroups.end();++m) {
  741. if (!std::binary_search(_multicastGroups.begin(),_multicastGroups.end(),*m))
  742. added.push_back(*m);
  743. }
  744. for(std::vector<MulticastGroup>::iterator m(_multicastGroups.begin());m!=_multicastGroups.end();++m) {
  745. if (!std::binary_search(newGroups.begin(),newGroups.end(),*m))
  746. removed.push_back(*m);
  747. }
  748. _multicastGroups.swap(newGroups);
  749. }
  750. void WindowsEthernetTap::threadMain()
  751. throw()
  752. {
  753. char tapReadBuf[ZT_IF_MTU + 32];
  754. char tapPath[128];
  755. HANDLE wait4[3];
  756. OVERLAPPED tapOvlRead,tapOvlWrite;
  757. Utils::snprintf(tapPath,sizeof(tapPath),"\\\\.\\Global\\%s.tap",_netCfgInstanceId.c_str());
  758. try {
  759. while (_run) {
  760. // Because Windows
  761. Sleep(250);
  762. setPersistentTapDeviceState(_deviceInstanceId.c_str(),false);
  763. Sleep(250);
  764. setPersistentTapDeviceState(_deviceInstanceId.c_str(),true);
  765. Sleep(250);
  766. setPersistentTapDeviceState(_deviceInstanceId.c_str(),false);
  767. Sleep(250);
  768. setPersistentTapDeviceState(_deviceInstanceId.c_str(),true);
  769. Sleep(250);
  771. if (_tap == INVALID_HANDLE_VALUE) {
  772. Sleep(250);
  773. continue;
  774. }
  775. {
  776. uint32_t tmpi = 1;
  777. DWORD bytesReturned = 0;
  778. DeviceIoControl(_tap,TAP_WIN_IOCTL_SET_MEDIA_STATUS,&tmpi,sizeof(tmpi),&tmpi,sizeof(tmpi),&bytesReturned,NULL);
  779. }
  781. {
  782. /* This inserts a fake default route and a fake ARP entry, forcing
  783. * Windows to detect this as a "real" network and apply proper
  784. * firewall rules.
  785. *
  786. * This hack is completely stupid, but Windows made me do it
  787. * by being broken and insane.
  788. *
  789. * Background: Windows tries to detect its network location by
  790. * matching it to the ARP address of the default route. Networks
  791. * without default routes are "unidentified networks" and cannot
  792. * have their firewall classification changed by the user (easily).
  793. *
  794. * Yes, you read that right.
  795. *
  796. * The common workaround is to set *NdisDeviceType to 1, which
  797. * totally disables all Windows firewall functionality. This is
  798. * the answer you'll find on most forums for things like OpenVPN.
  799. *
  800. * Yes, you read that right.
  801. *
  802. * The default route workaround is also known, but for this to
  803. * work there must be a known default IP that resolves to a known
  804. * ARP address. This works for an OpenVPN tunnel, but not here
  805. * because this isn't a tunnel. It's a mesh. There is no "other
  806. * end," or any other known always on IP.
  807. *
  808. * So let's make a fake one and shove it in there along with its
  809. * fake static ARP entry. Also makes it instant-on and static.
  810. *
  811. * We'll have to see what DHCP does with this. In the future we
  812. * probably will not want to do this on DHCP-enabled networks, so
  813. * when we enable DHCP we will go in and yank this wacko hacko from
  814. * the routing table before doing so.
  815. *
  816. * Like Jesse Pinkman would say: "YEEEEAAH BITCH!" */
  817. const uint32_t fakeIp = htonl(0x19fffffe); // -- unrouted IPv4 block
  818. for(int i=0;i<8;++i) {
  819. MIB_IPNET_ROW2 ipnr;
  820. memset(&ipnr,0,sizeof(ipnr));
  821. ipnr.Address.si_family = AF_INET;
  822. ipnr.Address.Ipv4.sin_addr.s_addr = fakeIp;
  823. ipnr.InterfaceLuid.Value = _deviceLuid.Value;
  824. ipnr.PhysicalAddress[0] = _mac[0] ^ 0x10; // just make something up that's consistent and not part of this net
  825. ipnr.PhysicalAddress[1] = 0x00;
  826. ipnr.PhysicalAddress[2] = (UCHAR)((_deviceGuid.Data1 >> 24) & 0xff);
  827. ipnr.PhysicalAddress[3] = (UCHAR)((_deviceGuid.Data1 >> 16) & 0xff);
  828. ipnr.PhysicalAddress[4] = (UCHAR)((_deviceGuid.Data1 >> 8) & 0xff);
  829. ipnr.PhysicalAddress[5] = (UCHAR)(_deviceGuid.Data1 & 0xff);
  830. ipnr.PhysicalAddressLength = 6;
  831. ipnr.State = NlnsPermanent;
  832. ipnr.IsRouter = 1;
  833. ipnr.IsUnreachable = 0;
  834. ipnr.ReachabilityTime.LastReachable = 0x0fffffff;
  835. ipnr.ReachabilityTime.LastUnreachable = 1;
  836. DWORD result = CreateIpNetEntry2(&ipnr);
  837. if (result != NO_ERROR)
  838. Sleep(250);
  839. else break;
  840. }
  841. for(int i=0;i<8;++i) {
  843. memset(&nr,0,sizeof(nr));
  844. InitializeIpForwardEntry(&nr);
  845. nr.InterfaceLuid.Value = _deviceLuid.Value;
  846. nr.DestinationPrefix.Prefix.si_family = AF_INET; // rest is left as
  847. nr.NextHop.si_family = AF_INET;
  848. nr.NextHop.Ipv4.sin_addr.s_addr = fakeIp;
  849. nr.Metric = 9999; // do not use as real default route
  850. nr.Protocol = MIB_IPPROTO_NETMGMT;
  851. DWORD result = CreateIpForwardEntry2(&nr);
  852. if (result != NO_ERROR)
  853. Sleep(250);
  854. else break;
  855. }
  856. }
  857. #endif
  858. // Assign or re-assign any should-be-assigned IPs in case we have restarted
  859. {
  860. Mutex::Lock _l(_assignedIps_m);
  861. _syncIps();
  862. }
  863. memset(&tapOvlRead,0,sizeof(tapOvlRead));
  864. tapOvlRead.hEvent = CreateEvent(NULL,TRUE,FALSE,NULL);
  865. memset(&tapOvlWrite,0,sizeof(tapOvlWrite));
  866. tapOvlWrite.hEvent = CreateEvent(NULL,TRUE,FALSE,NULL);
  867. wait4[0] = _injectSemaphore;
  868. wait4[1] = tapOvlRead.hEvent;
  869. wait4[2] = tapOvlWrite.hEvent; // only included if writeInProgress is true
  870. ReadFile(_tap,tapReadBuf,sizeof(tapReadBuf),NULL,&tapOvlRead);
  871. bool writeInProgress = false;
  872. ULONGLONG timeOfLastBorkCheck = GetTickCount64();
  873. while (_run) {
  874. DWORD waitResult = WaitForMultipleObjectsEx(writeInProgress ? 3 : 2,wait4,FALSE,2500,TRUE);
  875. if (!_run) break; // will also break outer while(_run)
  876. // Check for issues with adapter and close/reopen if any are detected. This
  877. // check fixes a while boatload of Windows adapter 'coma' issues after
  878. // sleep/wake and when adapters are added/removed. Basically if the tap
  879. // device is borked, whack it.
  880. {
  881. ULONGLONG tc = GetTickCount64();
  882. if ((tc - timeOfLastBorkCheck) >= 2500) {
  883. timeOfLastBorkCheck = tc;
  884. char aabuf[16384];
  885. ULONG aalen = sizeof(aabuf);
  887. bool isBorked = false;
  888. PIP_ADAPTER_ADDRESSES aa = reinterpret_cast<PIP_ADAPTER_ADDRESSES>(aabuf);
  889. while (aa) {
  890. if (_deviceLuid.Value == aa->Luid.Value) {
  891. isBorked = (aa->OperStatus != IfOperStatusUp);
  892. break;
  893. }
  894. aa = aa->Next;
  895. }
  896. if (isBorked) {
  897. // Close and reopen tap device if there's an issue (outer loop)
  898. break;
  899. }
  900. }
  901. }
  902. }
  903. if ((waitResult == WAIT_TIMEOUT)||(waitResult == WAIT_FAILED)) {
  904. Sleep(250); // guard against spinning under some conditions
  905. continue;
  906. }
  907. if (HasOverlappedIoCompleted(&tapOvlRead)) {
  908. DWORD bytesRead = 0;
  909. if (GetOverlappedResult(_tap,&tapOvlRead,&bytesRead,FALSE)) {
  910. if ((bytesRead > 14)&&(_enabled)) {
  911. MAC to(tapReadBuf,6);
  912. MAC from(tapReadBuf + 6,6);
  913. unsigned int etherType = ((((unsigned int)tapReadBuf[12]) & 0xff) << 8) | (((unsigned int)tapReadBuf[13]) & 0xff);
  914. try {
  915. // TODO: decode vlans
  916. _handler(_arg,_nwid,from,to,etherType,0,tapReadBuf + 14,bytesRead - 14);
  917. } catch ( ... ) {} // handlers should not throw
  918. }
  919. }
  920. ReadFile(_tap,tapReadBuf,ZT_IF_MTU + 32,NULL,&tapOvlRead);
  921. }
  922. if (writeInProgress) {
  923. if (HasOverlappedIoCompleted(&tapOvlWrite)) {
  924. writeInProgress = false;
  925. _injectPending_m.lock();
  926. _injectPending.pop();
  927. } else continue; // still writing, so skip code below and wait
  928. } else _injectPending_m.lock();
  929. if (!_injectPending.empty()) {
  930. WriteFile(_tap,_injectPending.front(),_injectPending.front().second,NULL,&tapOvlWrite);
  931. writeInProgress = true;
  932. }
  933. _injectPending_m.unlock();
  934. }
  935. CancelIo(_tap);
  936. CloseHandle(tapOvlRead.hEvent);
  937. CloseHandle(tapOvlWrite.hEvent);
  938. CloseHandle(_tap);
  940. // We will restart and re-open the tap unless _run == false
  941. }
  942. } catch ( ... ) {} // catch unexpected exceptions -- this should not happen but would prevent program crash or other weird issues since threads should not throw
  943. }
  944. NET_IFINDEX WindowsEthernetTap::_getDeviceIndex()
  945. {
  946. MIB_IF_TABLE2 *ift = (MIB_IF_TABLE2 *)0;
  947. if (GetIfTable2Ex(MibIfTableRaw,&ift) != NO_ERROR)
  948. throw std::runtime_error("GetIfTable2Ex() failed");
  949. if (ift->NumEntries > 0) {
  950. for(ULONG i=0;i<ift->NumEntries;++i) {
  951. if (ift->Table[i].InterfaceLuid.Value == _deviceLuid.Value) {
  952. NET_IFINDEX idx = ift->Table[i].InterfaceIndex;
  953. FreeMibTable(ift);
  954. return idx;
  955. }
  956. }
  957. }
  958. FreeMibTable(&ift);
  959. throw std::runtime_error("interface not found");
  960. }
  961. std::vector<std::string> WindowsEthernetTap::_getRegistryIPv4Value(const char *regKey)
  962. {
  963. std::vector<std::string> value;
  964. HKEY tcpIpInterfaces;
  965. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\services\\Tcpip\\Parameters\\Interfaces",0,KEY_READ|KEY_WRITE,&tcpIpInterfaces) == ERROR_SUCCESS) {
  966. char buf[16384];
  967. DWORD len = sizeof(buf);
  968. DWORD kt = REG_MULTI_SZ;
  969. if (RegGetValueA(tcpIpInterfaces,_netCfgInstanceId.c_str(),regKey,0,&kt,&buf,&len) == ERROR_SUCCESS) {
  970. switch(kt) {
  971. case REG_SZ:
  972. if (len > 0)
  973. value.push_back(std::string(buf));
  974. break;
  975. case REG_MULTI_SZ: {
  976. for(DWORD k=0,s=0;k<len;++k) {
  977. if (!buf[k]) {
  978. if (s < k) {
  979. value.push_back(std::string(buf + s));
  980. s = k + 1;
  981. } else break;
  982. }
  983. }
  984. } break;
  985. }
  986. }
  987. RegCloseKey(tcpIpInterfaces);
  988. }
  989. return value;
  990. }
  991. void WindowsEthernetTap::_setRegistryIPv4Value(const char *regKey,const std::vector<std::string> &value)
  992. {
  993. std::string regMulti;
  994. for(std::vector<std::string>::const_iterator s(value.begin());s!=value.end();++s) {
  995. regMulti.append(*s);
  996. regMulti.push_back((char)0);
  997. }
  998. HKEY tcpIpInterfaces;
  999. if (RegOpenKeyExA(HKEY_LOCAL_MACHINE,"SYSTEM\\CurrentControlSet\\services\\Tcpip\\Parameters\\Interfaces",0,KEY_READ|KEY_WRITE,&tcpIpInterfaces) == ERROR_SUCCESS) {
  1000. if (regMulti.length() > 0) {
  1001. regMulti.push_back((char)0);
  1002. RegSetKeyValueA(tcpIpInterfaces,_netCfgInstanceId.c_str(),regKey,REG_MULTI_SZ,,(DWORD)regMulti.length());
  1003. } else {
  1004. RegDeleteKeyValueA(tcpIpInterfaces,_netCfgInstanceId.c_str(),regKey);
  1005. }
  1006. RegCloseKey(tcpIpInterfaces);
  1007. }
  1008. }
  1009. void WindowsEthernetTap::_syncIps()
  1010. {
  1011. // assumes _assignedIps_m is locked
  1012. if (!_initialized)
  1013. return;
  1014. std::vector<InetAddress> haveIps(ips());
  1015. for(std::vector<InetAddress>::const_iterator aip(_assignedIps.begin());aip!=_assignedIps.end();++aip) {
  1016. if (std::find(haveIps.begin(),haveIps.end(),*aip) == haveIps.end()) {
  1018. InitializeUnicastIpAddressEntry(&ipr);
  1019. if (aip->isV4()) {
  1020. ipr.Address.Ipv4.sin_family = AF_INET;
  1021. ipr.Address.Ipv4.sin_addr.S_un.S_addr = *((const uint32_t *)aip->rawIpData());
  1022. ipr.OnLinkPrefixLength = aip->netmaskBits();
  1023. if (ipr.OnLinkPrefixLength >= 32)
  1024. continue;
  1025. } else if (aip->isV6()) {
  1026. ipr.Address.Ipv6.sin6_family = AF_INET6;
  1027. memcpy(ipr.Address.Ipv6.sin6_addr.u.Byte,aip->rawIpData(),16);
  1028. ipr.OnLinkPrefixLength = aip->netmaskBits();
  1029. if (ipr.OnLinkPrefixLength >= 128)
  1030. continue;
  1031. } else continue;
  1032. ipr.PrefixOrigin = IpPrefixOriginManual;
  1033. ipr.SuffixOrigin = IpSuffixOriginManual;
  1034. ipr.ValidLifetime = 0xffffffff;
  1035. ipr.PreferredLifetime = 0xffffffff;
  1036. ipr.InterfaceLuid = _deviceLuid;
  1037. ipr.InterfaceIndex = _getDeviceIndex();
  1038. CreateUnicastIpAddressEntry(&ipr);
  1039. }
  1040. std::string ipStr(aip->toString());
  1041. std::vector<std::string> regIps(_getRegistryIPv4Value("IPAddress"));
  1042. if (std::find(regIps.begin(),regIps.end(),ipStr) == regIps.end()) {
  1043. std::vector<std::string> regSubnetMasks(_getRegistryIPv4Value("SubnetMask"));
  1044. regIps.push_back(ipStr);
  1045. regSubnetMasks.push_back(aip->netmask().toIpString());
  1046. _setRegistryIPv4Value("IPAddress",regIps);
  1047. _setRegistryIPv4Value("SubnetMask",regSubnetMasks);
  1048. }
  1049. }
  1050. }
  1051. } // namespace ZeroTier