1 /* Copyright (c) 2013-2015 PLUMgrid, http://plumgrid.com
3 * This program is free software; you can redistribute it and/or
4 * modify it under the terms of version 2 of the GNU General Public
5 * License as published by the Free Software Foundation.
7 #include <linux/skbuff.h>
8 #include <linux/netdevice.h>
9 #include <uapi/linux/bpf.h>
10 #include <linux/version.h>
11 #include <bpf/bpf_helpers.h>
12 #include <bpf/bpf_tracing.h>
14 #define _(P) ({typeof(P) val = 0; bpf_probe_read(&val, sizeof(val), &P); val;})
16 /* kprobe is NOT a stable ABI
17 * kernel functions can be removed, renamed or completely change semantics.
18 * Number of arguments and their positions can change, etc.
19 * In such case this bpf+kprobe example will no longer be meaningful
21 SEC("kprobe/__netif_receive_skb_core")
22 int bpf_prog1(struct pt_regs
*ctx
)
24 /* attaches to kprobe netif_receive_skb,
25 * looks for packets on loobpack device and prints them
27 char devname
[IFNAMSIZ
];
28 struct net_device
*dev
;
32 /* non-portable! works for the given kernel only */
33 skb
= (struct sk_buff
*) PT_REGS_PARM1(ctx
);
37 bpf_probe_read(devname
, sizeof(devname
), dev
->name
);
39 if (devname
[0] == 'l' && devname
[1] == 'o') {
40 char fmt
[] = "skb %p len %d\n";
41 /* using bpf_trace_printk() for DEBUG ONLY */
42 bpf_trace_printk(fmt
, sizeof(fmt
), skb
, len
);
48 char _license
[] SEC("license") = "GPL";
49 u32 _version
SEC("version") = LINUX_VERSION_CODE
;