Skip to content

Commit e319b9d

Browse files
committed
std::net: adding acceptfilter feature for netbsd/freebsd.
similar to linux's ext deferaccept, to filter incoming connections before accept.
1 parent e612d07 commit e319b9d

File tree

2 files changed

+38
-0
lines changed

2 files changed

+38
-0
lines changed

library/std/src/os/unix/net/stream.rs

+16
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,7 @@
11
#[cfg(any(doc, target_os = "android", target_os = "linux"))]
22
use super::{recv_vectored_with_ancillary_from, send_vectored_with_ancillary_to, SocketAncillary};
33
use super::{sockaddr_un, SocketAddr};
4+
use crate::ffi::CStr;
45
use crate::fmt;
56
use crate::io::{self, IoSlice, IoSliceMut};
67
use crate::net::Shutdown;
@@ -457,6 +458,21 @@ impl UnixStream {
457458
self.0.passcred()
458459
}
459460

461+
/// Set a filter name on the socket to filter incoming connections to defer it before accept(2)
462+
///
463+
#[cfg(any(doc, target_os = "netbsd", target_os = "freebsd"))]
464+
#[unstable(feature = "acceptfilter", issue = "none")]
465+
pub fn set_acceptfilter(&self, name: &CStr) -> io::Result<()> {
466+
self.0.set_acceptfilter(name)
467+
}
468+
469+
/// Get a filter name if one had been set previously on the socket.
470+
///
471+
#[cfg(any(doc, target_os = "netbsd", target_os = "freebsd"))]
472+
#[unstable(feature = "acceptfilter", issue = "none")]
473+
pub fn acceptfilter(&self) -> io::Result<&CStr> {
474+
self.0.acceptfilter()
475+
}
460476
/// Set the id of the socket for network filtering purpose
461477
///
462478
#[cfg_attr(

library/std/src/sys/pal/unix/net.rs

+22
Original file line numberDiff line numberDiff line change
@@ -453,6 +453,28 @@ impl Socket {
453453
Ok(raw as u32)
454454
}
455455

456+
#[cfg(any(target_os = "freebsd", target_os = "netbsd"))]
457+
pub fn set_acceptfilter(&self, name: &CStr) -> io::Result<()> {
458+
const AF_NAME_MAX: usize = 16;
459+
let mut buf = [0; AF_NAME_MAX];
460+
for (src, dst) in name.to_bytes().iter().zip(&mut buf[..AF_NAME_MAX - 1]) {
461+
*dst = *src as i8;
462+
}
463+
let mut arg: libc::accept_filter_arg = unsafe { mem::zeroed() };
464+
arg.af_name = buf;
465+
setsockopt(self, libc::SOL_SOCKET, libc::SO_ACCEPTFILTER, &mut arg)
466+
}
467+
468+
#[cfg(any(target_os = "freebsd", target_os = "netbsd"))]
469+
pub fn acceptfilter(&self) -> io::Result<&CStr> {
470+
let arg: libc::accept_filter_arg =
471+
getsockopt(self, libc::SOL_SOCKET, libc::SO_ACCEPTFILTER)?;
472+
let s: &[u8] =
473+
unsafe { core::slice::from_raw_parts(arg.af_name.as_ptr() as *const u8, 16) };
474+
let name = CStr::from_bytes_with_nul(s).unwrap();
475+
Ok(name)
476+
}
477+
456478
#[cfg(any(target_os = "android", target_os = "linux",))]
457479
pub fn set_passcred(&self, passcred: bool) -> io::Result<()> {
458480
setsockopt(self, libc::SOL_SOCKET, libc::SO_PASSCRED, passcred as libc::c_int)

0 commit comments

Comments
 (0)