sliver-openvswitch.git
14 years agoAdd ability to set controller for specific bridges
Keith Amidon [Mon, 18 Jan 2010 00:55:30 +0000 (16:55 -0800)]
Add ability to set controller for specific bridges

Some applications would prefer that the controller only be enabled for
a subset of bridges.  This commit introduces an alternative syntax for
the XAPI vSwitchController key to enable the specification of such a
configuration.

The implementation of the configuration is currently a hack.  The
problem is that some bridges (especially internal bridges) are only
created when a VIF is added to them.  This means that attempting to
set the controller on boot as we used to do won't work.  Ideally we
would should hook the creation of the bridge and set the controller at
that time.  However, in XenServer 5.5 I can't find an appropriate
place to hook to do so.

To meet immediate requirements, this commit hacks the startup-based
approach by spawning background processes that watch for the creation
of the bridge and set the controller when it becomes available.  We'll
have to replace it with a better and more robust solution ASAP.

14 years agonetdev-linux: Properly store netdev_dev pointer for RTNL callbacks.
Jesse Gross [Sat, 16 Jan 2010 14:45:45 +0000 (09:45 -0500)]
netdev-linux: Properly store netdev_dev pointer for RTNL callbacks.

We were storing a struct netdev_dev_linux ** instead of a
netdev_dev_linux * in the cache map.  This prevented the cache
from being invalidated on changes such as link status.

14 years agortnetlink: Fix typo in comments referencing rtnetlink_notifier_register()
Justin Pettit [Sat, 16 Jan 2010 08:53:09 +0000 (00:53 -0800)]
rtnetlink: Fix typo in comments referencing rtnetlink_notifier_register()

14 years agonetdev: Increase default ingress policing burst size
Justin Pettit [Sat, 16 Jan 2010 01:27:28 +0000 (17:27 -0800)]
netdev: Increase default ingress policing burst size

The default burst rate was 10Kb.  This increases it to 1000kb, since
we were having problems getting traffic through at 10kb.  A better value
probably exists between these two points, but that will require
additional experimentation.

14 years agoidl: Gracefully handle destroying a transaction before receiving its reply.
Ben Pfaff [Fri, 15 Jan 2010 23:22:54 +0000 (15:22 -0800)]
idl: Gracefully handle destroying a transaction before receiving its reply.

If ovsdb_idl_txn_destroy() is called to destroy a transaction before its
reply has been received from the database server, then until now we would
drop the connection to the database when the reply actually arrived,
because we would have no record of that transaction ID any longer.

Notably, ovs-vswitchd does this: it "fires and forgets" database
transactions.  (Really, it should not do that, but that's a bigger commit.)

This commit fixes the problem by not dropping the database connection in
such a case.

This fixes an observed problem such that sometimes ovs-vsctl took a long
time to complete, which was because ovs-vswitchd was dropping its
connection to the database and backing off.

14 years agonetdev-linux: Don't close(0) when closing an ordinary netdev.
Ben Pfaff [Fri, 15 Jan 2010 22:06:15 +0000 (14:06 -0800)]
netdev-linux: Don't close(0) when closing an ordinary netdev.

Calling close(0) at random points is bad.  It means that the next call to
socket() or open() returns fd 0.  Then the next time a netdev gets closed,
that socket or file fd gets closed too, and you end up with weird "Bad
file descriptor" errors.

Found by installing the following as lib/unistd.h in the source tree:

#ifndef UNISTD_H
#define UNISTD_H 1

#include <stdlib.h>
#include_next <unistd.h>

#undef close
#define close(fd) rpl_close(fd)

static inline int rpl_close(int fd)
{
    if (!fd) {
        abort();
    }
    return (close)(fd);
}

#endif

14 years agoEnable daemon monitoring and automatic restart by default.
Ben Pfaff [Fri, 15 Jan 2010 21:09:32 +0000 (13:09 -0800)]
Enable daemon monitoring and automatic restart by default.

Tested on a XenServer by running "kill -SEGV" on the daemon processes and
watching them restart automatically and by running plain "kill" and
watching them terminate normally.

14 years agodaemon: Add support for process monitoring and restart.
Ben Pfaff [Fri, 15 Jan 2010 20:13:46 +0000 (12:13 -0800)]
daemon: Add support for process monitoring and restart.

14 years agodaemon: Refactor code.
Ben Pfaff [Fri, 15 Jan 2010 23:29:52 +0000 (15:29 -0800)]
daemon: Refactor code.

This commit should not change behavior, but it paves the way for
implementing --monitor in the following commit.

14 years agotests: New macro OVS_WAIT_WHILE.
Ben Pfaff [Fri, 15 Jan 2010 20:12:51 +0000 (12:12 -0800)]
tests: New macro OVS_WAIT_WHILE.

For use by upcoming tests.

14 years agotests: Factor OVSDB_INIT out of OVS_VSCTL_SETUP for other tests to use.
Ben Pfaff [Fri, 15 Jan 2010 20:12:36 +0000 (12:12 -0800)]
tests: Factor OVSDB_INIT out of OVS_VSCTL_SETUP for other tests to use.

New tests in upcoming commits will use this.

14 years agofatal-signal: After fork, clear hooks instead of disabling them.
Ben Pfaff [Fri, 15 Jan 2010 23:28:14 +0000 (15:28 -0800)]
fatal-signal: After fork, clear hooks instead of disabling them.

Until now, fatal_signal_fork() has simply disabled all the fatal signal
callback hooks.  This worked fine, because a daemon process forked only
once and the parent didn't do much before it exited.

But upcoming commits will introduce a --monitor option, which requires
processes to fork multiple times.  Sometimes the parent process will fork,
then run for a while, then fork again.  It's not good to disable the
hooks in the child process in such a case, because that prevents e.g.
pidfiles from being removed at the child's exit.

So this commit changes the semantics of fatal_signal_fork() to just
clearing out hooks.  After hooks are cleared, new hooks can be added and
will be executed on process termination in the usual way.

This commit also introduces a cancellation callback function so that a
canceled hook can free resources.

14 years agounixctl: Avoid double error reporting.
Ben Pfaff [Fri, 15 Jan 2010 18:31:57 +0000 (10:31 -0800)]
unixctl: Avoid double error reporting.

All of these programs were re-reporting an error that
unixctl_server_create() had already reported.  There's no need for that.

14 years agounixctl: Improve error reporting.
Ben Pfaff [Fri, 15 Jan 2010 18:31:06 +0000 (10:31 -0800)]
unixctl: Improve error reporting.

The ovs_error() function is our standard way of reporting startup errors,
so use it.  (It also outputs the program name at the beginning of the
message.)

14 years agotests: Improve error reporting for timeval test failures.
Ben Pfaff [Fri, 15 Jan 2010 18:26:20 +0000 (10:26 -0800)]
tests: Improve error reporting for timeval test failures.

14 years agonetdev: Fix build for switchui.
Jesse Gross [Fri, 15 Jan 2010 16:48:29 +0000 (11:48 -0500)]
netdev: Fix build for switchui.

14 years agoxenserver: Give ovs-vsctl a bit more time to do its work
Justin Pettit [Fri, 15 Jan 2010 16:33:03 +0000 (08:33 -0800)]
xenserver: Give ovs-vsctl a bit more time to do its work

Creating bonds sometimes fails due to ovs-vsctl timing out.  This commit
increases the time interface-reconfigure gives ovs-vsctl from five to
twenty seconds.  We should investigate why it's taking ovs-vsctl so
long, but this helps for now.

14 years agonetdev-linux: Cleanup tap netdev.
Jesse Gross [Tue, 12 Jan 2010 20:58:40 +0000 (15:58 -0500)]
netdev-linux: Cleanup tap netdev.

TAP devices need to be treated slightly differently from other other
devices because they cannot be opened multiple times.  Instead we
open them once and share the file descriptor.  This means that if
the netdev is opened multiple times one reader can drain the buffers
of another.  While this is a deviation from the normal convention,
it does not impact current or planned users.

In addition, this cleans up some confusion between the file
descriptor for tap devices versus other FD's.

14 years agogre: Add support for destroying GRE devices.
Jesse Gross [Tue, 12 Jan 2010 00:00:17 +0000 (19:00 -0500)]
gre: Add support for destroying GRE devices.

This allows GRE tunnel devices to be torn down on graceful exit
of vswitch and cleaned up on restart for non-graceful exits.

14 years agonetdev: Fully handle netdev lifecycle through refcounting.
Jesse Gross [Tue, 12 Jan 2010 21:01:43 +0000 (16:01 -0500)]
netdev: Fully handle netdev lifecycle through refcounting.

This builds on earlier work that implemented netdev object refcounting.
However, rather than requiring explicit create and destroy calls,
these operations are now performed automatically based on the referenece
count.  This is important because in certain situations it is not
possible to know whether a netdev has already been created.  A
workaround existed (which looked fairly similar to this paradigm) but
introduced it's own issues.  This simplifies and unifies the API.

14 years agoovs-vsctl: Add option to create fake iface when adding a bond
Justin Pettit [Fri, 15 Jan 2010 05:53:43 +0000 (21:53 -0800)]
ovs-vsctl: Add option to create fake iface when adding a bond

Some systems, such as XenServer, expect that bonds have their own interface.
This commit adds the ability to do that with the "--fake-iface" option
in ovs-vsctl's add-bond command.  It also has XenServer's
interface-reconfigure use it.

Part of solution to Bug #2376

14 years agogre: Workarounds for large packets over GRE
Jesse Gross [Fri, 15 Jan 2010 01:58:20 +0000 (20:58 -0500)]
gre: Workarounds for large packets over GRE

The first change is to not propagate the IP DF bit from the inner
packet to the outer packet.  Large TCP packets can get segmented
first which will set the DF bit.  However these segmented packets
might still be too large after the GRE header is added, requiring
fragmentation.

The second change is to raise the MTU of the GRE tunnel device.
This prevents packets from being dropped in the datapath before
they can be fragmented.  Since the datapath is layer 2 it does not
do any fragmentation and drops any packets that are too large.

Both of these are temporary workarounds that need to be addressed
more carefully in the future.

Bug #2379

14 years agoRelease Open vSwitch 0.99.0. v0.99.0
Justin Pettit [Fri, 15 Jan 2010 07:24:09 +0000 (23:24 -0800)]
Release Open vSwitch 0.99.0.

This is an "unstable" release.

14 years agoovs-vsctl: Don't mask timeout argument
Justin Pettit [Fri, 15 Jan 2010 02:06:33 +0000 (18:06 -0800)]
ovs-vsctl: Don't mask timeout argument

ovs-vsctl supports the "--timeout" option, which specifies the amount
of time that the operation is allowed to take before a SIGALRM is
raised.  The code that parsed options had a local "timeout" that masked
the global one that was supposed to be set.

14 years agobonding: Use device names instead of Xen OpaqueRefs
Jesse Gross [Wed, 13 Jan 2010 22:43:09 +0000 (17:43 -0500)]
bonding: Use device names instead of Xen OpaqueRefs

When configuring the slaves of a bond, interface-reconfigure was
directly writing the Xen OpaqueRef as the name instead of first
converting it into a standard device name.

Bug #2377

14 years agoovsdb: Provide helper function to determine if IDL has ever connected
Justin Pettit [Thu, 14 Jan 2010 21:10:35 +0000 (13:10 -0800)]
ovsdb: Provide helper function to determine if IDL has ever connected

14 years agoovs-brcompatd: Don't consume CPU if can't connect to config db
Justin Pettit [Thu, 14 Jan 2010 20:20:09 +0000 (12:20 -0800)]
ovs-brcompatd: Don't consume CPU if can't connect to config db

When ovs-brcompatd can't connect to the database, the "ovs" variable
is never set.  The function "brc_recv_update" takes care of draining
brcompat kernel module's netlink messages.  When the netlink message
comes in to modify the bridge, that function never gets called, so a
netlink message always appears to be ready and we consume 100% CPU
looping.

With this commit, we log a warning and drop the request on the floor.

Bug #2373

14 years agodatapath: Disable preemption updating per-CPU data in dp_dev_recv().
Ben Pfaff [Wed, 13 Jan 2010 18:43:31 +0000 (10:43 -0800)]
datapath: Disable preemption updating per-CPU data in dp_dev_recv().

dp_dev_recv() is called from do_output(), which can be called from
execute_actions(), which can be called from process context with
preemption enabled, so it needs to disabled preemption before it can
access per-CPU data.

Build tested on a few different kernels.

Bug #2316.

Reported-by: John Galgay <john@galgay.net>
CC: Dan Wendlandt <dan@nicira.com>
14 years agoovsdb-client: Fix regression introduced with changes to daemonize().
Ben Pfaff [Wed, 13 Jan 2010 17:55:52 +0000 (09:55 -0800)]
ovsdb-client: Fix regression introduced with changes to daemonize().

daemonize() now closes the standard file descriptors, but ovsdb-client's
"monitor" command uses stdout even after daemonizing.  This caused
tests that used "ovsdb-client --detach monitor" to fail without printing
their complete output.  This commit fixes the problem.

14 years agodaemon: Close standard file descriptors when daemonizing.
Ben Pfaff [Tue, 12 Jan 2010 22:10:11 +0000 (14:10 -0800)]
daemon: Close standard file descriptors when daemonizing.

Before SSH terminates, it waits for the PTYs that it creates for use as
stdin, stdout, and stderr to be closed.  When any of the Open vSwitch
daemons were started in the background over an SSH session, they held
those file descriptors open and thus the SSH session hung.  This commit
fixes the problem by closing those file descriptors, allowing SSH to
terminate.

14 years agoxenserver: Make BRCOMPATD_MEMLEAK_LOGFILE setting work.
Ben Pfaff [Tue, 12 Jan 2010 18:57:12 +0000 (10:57 -0800)]
xenserver: Make BRCOMPATD_MEMLEAK_LOGFILE setting work.

Sometimes it's too bad that shell variables don't need declarations.

14 years agoovsdb-idl: Fix memory leak committing a no-op transaction.
Ben Pfaff [Tue, 12 Jan 2010 18:51:52 +0000 (10:51 -0800)]
ovsdb-idl: Fix memory leak committing a no-op transaction.

Partial fix for bug #2373.

14 years agojsonrpc: Fix memory leak in jsonrpc_session_send() when not connected.
Ben Pfaff [Tue, 12 Jan 2010 18:51:30 +0000 (10:51 -0800)]
jsonrpc: Fix memory leak in jsonrpc_session_send() when not connected.

Partial fix for bug #2373.

14 years agovswitchd: Fix issue of networking not working when Tools not installed
Justin Pettit [Tue, 12 Jan 2010 02:36:56 +0000 (18:36 -0800)]
vswitchd: Fix issue of networking not working when Tools not installed

During the transition to the configuration database, not all code from
the bridge compatibility layer was updated.  In particular, the code
which removes port configuration based on RTNL notifications of port
removal was not updated.  This commit brings that code back.

Note that the code that removes ports based on actively checking whether
ports exist is still commented out pending a review of its impact on GRE
support.

Bug #2370

14 years agoovs-vsctl: Print correct fail-mode
Justin Pettit [Tue, 12 Jan 2010 00:57:29 +0000 (16:57 -0800)]
ovs-vsctl: Print correct fail-mode

When printing the fail-mode, ovs-vsctl would always attempt to print the
top-level one--even if it didn't exist.  So, in addition to sometimes
being wrong, it could cause segfaults.

Thanks to Peter Balland for reporting the error.

Bug #2374

14 years agoreconnect: Fix repeated RECONNECT_CONNECT that was confusing JSON-RPC.
Ben Pfaff [Tue, 12 Jan 2010 01:00:25 +0000 (17:00 -0800)]
reconnect: Fix repeated RECONNECT_CONNECT that was confusing JSON-RPC.

reconnect_run() returns RECONNECT_CONNECT to tell the client that it should
start a new connection.  The client is then supposed to call
reconnect_connecting() to tell the FSM that it has begun a connection
attempt.  However, even after reconnect_connecting() was called,
reconnect_run() continued to return RECONNECT_CONNECT on each call until
the connection succeeded or failed.  This confused the jsonrpc_session
client, which expected that it would get a 0 return value from
reconnect_run() while the connection attempt was in progress.  Connections
that required multiple trips through the main poll loop, e.g. for SSL
negotiation, would often get cut off to start a second connection attempt.

This commit change reconnect_run() to return RECONNECT_CONNECT only until
the client tells it that a connection is in progress, which fixes the
problem.  This change entails a change to the internal details of the
reconnect FSM, so this commit also updates the reconnect tests to match.

Reported by Jeremy Stribling.

14 years agodebian: Fix tab/space issues
Justin Pettit [Mon, 11 Jan 2010 23:31:14 +0000 (15:31 -0800)]
debian: Fix tab/space issues

14 years agodebian: Create the config database if it doesn't exist on startup
Justin Pettit [Mon, 11 Jan 2010 23:20:44 +0000 (15:20 -0800)]
debian: Create the config database if it doesn't exist on startup

On startup, create an empty config database if it doesn't already exist.  This
is the behavior of the XenServer init scripts.

14 years agovswitch: Fix null pointer dereference in iface_is_internal().
Ben Pfaff [Mon, 11 Jan 2010 23:21:33 +0000 (15:21 -0800)]
vswitch: Fix null pointer dereference in iface_is_internal().

Reported by Henrik Amren.

14 years agoovsdb-tool: Make show-log command offer more verbose output.
Ben Pfaff [Mon, 11 Jan 2010 21:47:35 +0000 (13:47 -0800)]
ovsdb-tool: Make show-log command offer more verbose output.

This may be useful for debugging.

With fixes suggested by Justin Pettit.

14 years agoovsdb: Improve comments.
Ben Pfaff [Mon, 11 Jan 2010 21:30:15 +0000 (13:30 -0800)]
ovsdb: Improve comments.

Suggested by Justin Pettit.

14 years agoovsdb: Save some space in the log for newly inserted records.
Ben Pfaff [Mon, 11 Jan 2010 21:14:54 +0000 (13:14 -0800)]
ovsdb: Save some space in the log for newly inserted records.

When a new record is inserted into a database, ovsdb logs the values of all
of the fields in the record.  However, often new records have many columns
that contain default values.  There is no need to log those values, so this
commit causes them to be omitted.

As a side effect, this also makes "ovsdb-tool show-log --more --more"
output easier to read, because record insertions print less noise.  (Adding
--more --more to this command makes it print changes to database records.
The --more option will be introduced in an upcoming commit.)

14 years agoovsdb: Add tests for OVSDB protocol over SSL.
Ben Pfaff [Mon, 11 Jan 2010 21:07:11 +0000 (13:07 -0800)]
ovsdb: Add tests for OVSDB protocol over SSL.

14 years agojsonrpc: Check RPC status after trying to send, not before.
Ben Pfaff [Mon, 11 Jan 2010 21:06:42 +0000 (13:06 -0800)]
jsonrpc: Check RPC status after trying to send, not before.

This usually prevented JSON-RPC over SSL from working.

Reported-by: Jeremy Stribling <strib@nicira.com>
14 years agoovsdb: Clarify spec for map mutation insert mutator.
Ben Pfaff [Mon, 11 Jan 2010 20:03:20 +0000 (12:03 -0800)]
ovsdb: Clarify spec for map mutation insert mutator.

Suggested by Jeremy Stribling.

14 years agosflow: Improve documentation phrasing.
Ben Pfaff [Mon, 11 Jan 2010 19:13:49 +0000 (11:13 -0800)]
sflow: Improve documentation phrasing.

Suggested by Justin Pettit.

14 years agosflow: Document how the agent address is determined.
Ben Pfaff [Mon, 11 Jan 2010 19:11:03 +0000 (11:11 -0800)]
sflow: Document how the agent address is determined.

14 years agosflow: Fix byte order problem.
Ben Pfaff [Mon, 11 Jan 2010 19:10:24 +0000 (11:10 -0800)]
sflow: Fix byte order problem.

Reported by Justin Pettit.

14 years agosflow: Improve user-visible string.
Ben Pfaff [Mon, 11 Jan 2010 19:10:01 +0000 (11:10 -0800)]
sflow: Improve user-visible string.

Suggested by Justin Pettit.

14 years agosflow: Improve comments.
Ben Pfaff [Mon, 11 Jan 2010 19:09:43 +0000 (11:09 -0800)]
sflow: Improve comments.

Pointed out by Justin Pettit.

14 years agosflow: Avoid division by zero if sampling rate is 0.
Ben Pfaff [Mon, 11 Jan 2010 19:09:14 +0000 (11:09 -0800)]
sflow: Avoid division by zero if sampling rate is 0.

Reported by Justin Pettit.

14 years agosflow: Fix ifDirection setting if duplex unknown.
Ben Pfaff [Mon, 11 Jan 2010 19:08:29 +0000 (11:08 -0800)]
sflow: Fix ifDirection setting if duplex unknown.

Reported by Justin Pettit.

14 years agosflow: Fix handling of struct ofproto_sflow_options members.
Ben Pfaff [Mon, 11 Jan 2010 19:07:59 +0000 (11:07 -0800)]
sflow: Fix handling of struct ofproto_sflow_options members.

Reported by Justin Pettit.

14 years agodatapath: Improve comments.
Ben Pfaff [Mon, 11 Jan 2010 19:06:56 +0000 (11:06 -0800)]
datapath: Improve comments.

14 years agodpif: Remove stray new-line.
Ben Pfaff [Mon, 11 Jan 2010 19:06:36 +0000 (11:06 -0800)]
dpif: Remove stray new-line.

Suggested by Justin Pettit.

14 years agoxenserver: Fix init script with multiple --remote options to ovsdb-server.
Ben Pfaff [Mon, 11 Jan 2010 18:04:13 +0000 (10:04 -0800)]
xenserver: Fix init script with multiple --remote options to ovsdb-server.

Reported-by: Peter Balland <peter@nicira.com>
14 years agodatapath: Renumber ioctls to avoid gaps.
Ben Pfaff [Sat, 9 Jan 2010 00:46:03 +0000 (16:46 -0800)]
datapath: Renumber ioctls to avoid gaps.

Suggested by Justin Pettit.

14 years agoImprove comments on interpretation of sFlow sampling probabilities.
Ben Pfaff [Sat, 9 Jan 2010 00:44:43 +0000 (16:44 -0800)]
Improve comments on interpretation of sFlow sampling probabilities.

Suggested by Justin Pettit.

14 years agodatapath: Improve comments on struct dp_stats_percpu.
Ben Pfaff [Sat, 9 Jan 2010 00:45:14 +0000 (16:45 -0800)]
datapath: Improve comments on struct dp_stats_percpu.

Suggested by Justin Pettit.

14 years agosflow: Write "sFlow" as "sFlow(R)" in documentation.
Ben Pfaff [Sat, 9 Jan 2010 00:45:02 +0000 (16:45 -0800)]
sflow: Write "sFlow" as "sFlow(R)" in documentation.

The sFlow license requires sFlow to be written as sFlow(R) for the first
reference in user documentation, so this commit implements that.

Suggested by Justin Pettit.

14 years agosflow: Set proper output port number for dropped packets.
Ben Pfaff [Sat, 9 Jan 2010 00:10:01 +0000 (16:10 -0800)]
sflow: Set proper output port number for dropped packets.

Based on advice from Neil McKee.

14 years agosflow: Report port ifIndexes instead of datapath port numbers.
Ben Pfaff [Wed, 6 Jan 2010 18:24:52 +0000 (10:24 -0800)]
sflow: Report port ifIndexes instead of datapath port numbers.

Reported-by: Neil McKee <neil.mckee@inmon.com>
14 years agojsonrpc: Properly implement connection timeout.
Ben Pfaff [Fri, 8 Jan 2010 23:36:06 +0000 (15:36 -0800)]
jsonrpc: Properly implement connection timeout.

jsonrpc_session_connect() indirectly called reconnect_disconnected(), which
told the reconnect object that the connection had failed, before it told it
that the connection attempt had started.  When the connection didn't
complete immediately, this caused the connection to time out immediately,
without any backoff.

Reported by Jeremy Stribling.

14 years agodatapath: Add a find the kernel source directory for Debian 2.6.32+.
Ben Pfaff [Fri, 8 Jan 2010 21:09:10 +0000 (13:09 -0800)]
datapath: Add a find the kernel source directory for Debian 2.6.32+.

Debian's kernel-headers packages starting from 2.6.32 (or thereabouts) put
links to the kernel build and source directories at the same level, named
"build" and "source" respectively.  Add support for this structure.

14 years agoxenserver: Fix fallout from removing remote command execution.
Ben Pfaff [Fri, 8 Jan 2010 18:41:48 +0000 (10:41 -0800)]
xenserver: Fix fallout from removing remote command execution.

Commit 2280e7223 "ofproto: Drop remote command execution feature." removed
the remote command execution feature from the vswitch.  This commit removes
one bit that was overlooked.

14 years agoconfigure: Fix indentation.
Ben Pfaff [Fri, 8 Jan 2010 18:02:49 +0000 (10:02 -0800)]
configure: Fix indentation.

14 years agotests: Make test-vconn build and pass tests without OpenSSL.
Ben Pfaff [Fri, 8 Jan 2010 18:01:27 +0000 (10:01 -0800)]
tests: Make test-vconn build and pass tests without OpenSSL.

14 years agotests: Improve vconn tests.
Ben Pfaff [Fri, 8 Jan 2010 17:41:29 +0000 (09:41 -0800)]
tests: Improve vconn tests.

14 years agostream-ssl: Fix bug that crept in during rebasing.
Ben Pfaff [Fri, 8 Jan 2010 17:40:45 +0000 (09:40 -0800)]
stream-ssl: Fix bug that crept in during rebasing.

14 years agoDistribute some forgotten files that are needed by "make check".
Ben Pfaff [Fri, 8 Jan 2010 00:11:28 +0000 (16:11 -0800)]
Distribute some forgotten files that are needed by "make check".

14 years agovconn: Test SSL vconns too.
Ben Pfaff [Thu, 7 Jan 2010 22:00:58 +0000 (14:00 -0800)]
vconn: Test SSL vconns too.

This test should help avoid simple bugs in the SSL vconn and SSL stream
implementations in the future.  It would have found the bugs fixed by
recent commits.

14 years agostream: Really enable SSL streams.
Ben Pfaff [Thu, 7 Jan 2010 21:59:44 +0000 (13:59 -0800)]
stream: Really enable SSL streams.

SSL streams were supposed to work, but they didn't.  Oops.

14 years agostream-ssl: Fix ssl_recv() and ssl_send() return value semantics.
Ben Pfaff [Thu, 7 Jan 2010 21:58:49 +0000 (13:58 -0800)]
stream-ssl: Fix ssl_recv() and ssl_send() return value semantics.

These functions' return value semantics did not match those documented
in stream-provider.h.

14 years agostream-ssl: Try to shut SSL connections down gracefully.
Ben Pfaff [Thu, 7 Jan 2010 21:57:53 +0000 (13:57 -0800)]
stream-ssl: Try to shut SSL connections down gracefully.

It's nice to shut down SSL connections gracefully when we can.

14 years agostream: Make passive SSL and TCP streams report bound addresses as names.
Ben Pfaff [Thu, 7 Jan 2010 21:55:35 +0000 (13:55 -0800)]
stream: Make passive SSL and TCP streams report bound addresses as names.

The names of passive SSL and TCP streams were being poorly reported: TCP
always simply reported "ptcp", and SSL reported whatever was passed in.
This commit makes them report the addresses that were actually bound by
the TCP/IP stack, which is more useful for testing, debugging, and logging.

14 years agosocket-util: Make inet_open_passive() pass back the bound address.
Ben Pfaff [Thu, 7 Jan 2010 23:00:47 +0000 (15:00 -0800)]
socket-util: Make inet_open_passive() pass back the bound address.

This feature is useful in an upcoming commit.

14 years agosocket-util: Allow binding without a port number in inet_open_passive().
Ben Pfaff [Thu, 7 Jan 2010 19:12:36 +0000 (11:12 -0800)]
socket-util: Allow binding without a port number in inet_open_passive().

The test-vconn program binds a socket to a nonspecific port number.  To
add SSL support to this program, it needs to be able to use SSL, and the
stream library is the easiest way to do that.  But the stream library
can't bind to a nonspecific port.  This commit adds that feature, by adding
it to the function that the stream SSL library uses as a building block.

14 years agoRemove "fault" module.
Ben Pfaff [Tue, 22 Dec 2009 00:38:58 +0000 (16:38 -0800)]
Remove "fault" module.

This module, which catches segmentation faults and prints a backtrace
before exiting, was useful for a while, but I believe that it has now
outlived its purpose.  It is altogether better to have a core dump from
which one can extract much more information than a usually-poor backtrace,
and core dumps are much better integrated into a typical Unix system.
In addition, the "fault" module was of course not all that portable.

14 years agoovs-vswitchd: Add ability to bootstrap SSL.
Ben Pfaff [Mon, 21 Dec 2009 21:06:47 +0000 (13:06 -0800)]
ovs-vswitchd: Add ability to bootstrap SSL.

14 years agovconn: Reimplement in terms of the "stream" abstraction.
Ben Pfaff [Wed, 6 Jan 2010 22:35:20 +0000 (14:35 -0800)]
vconn: Reimplement in terms of the "stream" abstraction.

This reduces the amount of redundancy in the source tree, by making all of
the current implementations of a vconn simply delegate to the "stream"
abstraction.

14 years agostream: Remove spurious #includes from header file.
Ben Pfaff [Mon, 21 Dec 2009 18:38:26 +0000 (10:38 -0800)]
stream: Remove spurious #includes from header file.

14 years agoAdd SSL support to "stream" library and OVSDB.
Ben Pfaff [Mon, 21 Dec 2009 21:13:48 +0000 (13:13 -0800)]
Add SSL support to "stream" library and OVSDB.

14 years agopoll-loop: Drop unused poll_fd_callback() feature.
Ben Pfaff [Sat, 19 Dec 2009 00:15:01 +0000 (16:15 -0800)]
poll-loop: Drop unused poll_fd_callback() feature.

The last user of this feature has been removed, so delete the feature too,
simplifying poll-loop.c significantly.

poll_cancel() is no longer used, either, but deleting it is much less
beneficial.

14 years agovconn: Convert vconn code to modern OVS structure.
Ben Pfaff [Wed, 6 Jan 2010 22:27:46 +0000 (14:27 -0800)]
vconn: Convert vconn code to modern OVS structure.

The vconn code is a relative fossil as OVS code goes.  It was written
before we had really figured how code should fit together.  Part of that
history is that it used poll_fd_callback() to register callbacks without
the assistance of other code.  That isn't how the rest of OVS works now;
this code is the only remaining user of that function.

To make it more like the rest of the system, this code gets rid of the use
of poll_fd_callback().  It also adds vconn_run() and vconn_run_wait()
functions and calls to them from the places where they are now required.

14 years agostream: Add stream_run(), stream_run_wait() functions.
Ben Pfaff [Wed, 6 Jan 2010 22:26:48 +0000 (14:26 -0800)]
stream: Add stream_run(), stream_run_wait() functions.

SSL, which will be added in an upcoming commit, requires some background
processing, which is best done in a "run" function in our architecture.
This commit adds stream_run() and stream_run_wait() and calls to them from
the places where they will be required.

14 years agoCheck invariants earlier in vconn and stream code.
Ben Pfaff [Wed, 6 Jan 2010 22:20:19 +0000 (14:20 -0800)]
Check invariants earlier in vconn and stream code.

These invariants are checked by vconn_open() and stream_open(), but there
is no reason not to check them earlier also.  vconn and stream creation
don't have to go through vconn_open() and stream_open(), so this ensures
that the invariants get checked either way.

14 years agoFactor vconn and SSL documentation into manpage include files.
Ben Pfaff [Mon, 21 Dec 2009 21:10:55 +0000 (13:10 -0800)]
Factor vconn and SSL documentation into manpage include files.

14 years agoAdd runtime test that strtok_r() bug fix works.
Ben Pfaff [Wed, 6 Jan 2010 18:00:56 +0000 (10:00 -0800)]
Add runtime test that strtok_r() bug fix works.

Our bug fix for glibc's strtok_r() bug was not effective in distribution
tarballs.  This new test should catch that problem earlier in case it
recurs.

14 years agoInclude lib/string.h in "make dist"-generated tarballs.
Ben Pfaff [Wed, 6 Jan 2010 17:53:32 +0000 (09:53 -0800)]
Include lib/string.h in "make dist"-generated tarballs.

This file was missing from distributions.  Its lack prevented the
strtok_r() fix from working on systems that need it.

Reported-by: Tetsuo NAKAGAWA <nakagawa@mxc.nes.nec.co.jp>
14 years agofatal-signal: Run signal hooks outside of actual signal handlers.
Jesse Gross [Tue, 8 Dec 2009 22:11:22 +0000 (14:11 -0800)]
fatal-signal: Run signal hooks outside of actual signal handlers.

Rather than running signal hooks directly from the actual signal
handler, simply record the fact that the signal occured and run
the hook next time around the poll loop.  This allows significantly
more freedom as to what can actually be done in the signal hooks.

14 years agoovs-vsctl: Add support for extended vlog options
Justin Pettit [Tue, 5 Jan 2010 03:15:22 +0000 (19:15 -0800)]
ovs-vsctl: Add support for extended vlog options

The man page states that ovs-vsctl supports extended vlog options (e.g.,
--log-file), but the executable did not.  This commit adds it.

14 years agovconn: Add comment describing usage of VCONN_SSL_LONG_OPTIONS
Justin Pettit [Tue, 5 Jan 2010 08:08:34 +0000 (00:08 -0800)]
vconn: Add comment describing usage of VCONN_SSL_LONG_OPTIONS

14 years agoAdd extended vlog options to utilities
Justin Pettit [Tue, 5 Jan 2010 02:55:00 +0000 (18:55 -0800)]
Add extended vlog options to utilities

The ovs-discover, ovs-dpctl, and ovs-ofctl man pages indicated that they
supported extended vlog options (e.g., --log-file), but they actually
did not.  This commit adds them.

Reported by Tetsuo NAKAGAWA <nakagawa@mxc.nes.nec.co.jp>

14 years agoofproto: Fix segfault when changing command execution settings
Tetsuo NAKAGAWA [Tue, 5 Jan 2010 02:19:47 +0000 (18:19 -0800)]
ofproto: Fix segfault when changing command execution settings

If the remote command execution settings are changed and a NULL argument
is given for the directory, a crash would occur.  With this change, the
default directory is used.

14 years agoxenserver: Fix small typo in vswitch-xapi-update
Justin Pettit [Tue, 5 Jan 2010 00:33:49 +0000 (16:33 -0800)]
xenserver: Fix small typo in vswitch-xapi-update

14 years agoFix documented name of key used to disable MAC learning on a VLAN.
Ben Pfaff [Mon, 4 Jan 2010 23:01:41 +0000 (15:01 -0800)]
Fix documented name of key used to disable MAC learning on a VLAN.

The code uses "disable-learning" but the documentation claimed that it
was "learning-disable".

14 years agodatapath: Add missing definitions for building GRE on older kernels
Justin Pettit [Tue, 15 Dec 2009 19:20:58 +0000 (11:20 -0800)]
datapath: Add missing definitions for building GRE on older kernels

14 years agoofproto: Get rid of unused parameter to ofconn_destroy().
Ben Pfaff [Mon, 4 Jan 2010 21:21:32 +0000 (13:21 -0800)]
ofproto: Get rid of unused parameter to ofconn_destroy().

14 years agoovs-openflowd: Don't pass extra argument to printf().
Ben Pfaff [Mon, 4 Jan 2010 21:21:13 +0000 (13:21 -0800)]
ovs-openflowd: Don't pass extra argument to printf().

14 years agoovsdb-server: Fix minor memory leak.
Ben Pfaff [Mon, 4 Jan 2010 21:13:12 +0000 (13:13 -0800)]
ovsdb-server: Fix minor memory leak.

Noticed by Justin Pettit.