/* * Copyright (c) 2018 Cisco and/or its affiliates. * Licensed under the Apache License, Version 2.0 (the "License"); * you may not use this file except in compliance with the License. * You may obtain a copy of the License at: * * http://www.apache.org/licenses/LICENSE-2.0 * * Unless required by applicable law or agreed to in writing, software * distributed under the License is distributed on an "AS IS" BASIS, * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. * See the License for the specific language governing permissions and * limitations under the License. */ /** * Group Base Policy (GBP) defines: * - endpoints: typically a VM or container that is connected to the * virtual switch/router (i.e. to VPP) * - endpoint-group: (EPG) a collection of endpoints * - policy: rules determining which traffic can pass between EPGs a.k.a * a 'contract' * * Here, policy is implemented via an ACL. * EPG classification for transit packets is determined by: * - source EPG: from the packet's input interface * - destination EPG: from the packet's destination IP address. * */ #ifndef __GBP_H__ #define __GBP_H__ #include <plugins/acl/exports.h> #include <plugins/gbp/gbp_types.h> #include <plugins/gbp/gbp_endpoint.h> #include <plugins/gbp/gbp_endpoint_group.h> #include <plugins/gbp/gbp_contract.h> #include <plugins/gbp/gbp_subnet.h> #include <plugins/gbp/gbp_recirc.h> typedef struct { u32 gbp_acl_user_id; acl_plugin_methods_t acl_plugin; } gbp_main_t; extern gbp_main_t gbp_main; typedef enum gbp_policy_type_t_ { GBP_POLICY_PORT, GBP_POLICY_MAC, GBP_POLICY_LPM, GBP_N_POLICY #define GBP_N_POLICY GBP_N_POLICY } gbp_policy_type_t; /** * Grouping of global data for the GBP source EPG classification feature */ typedef struct gbp_policy_main_t_ { /** * Next nodes for L2 output features */ u32 l2_output_feat_next[GBP_N_POLICY][32]; } gbp_policy_main_t; extern gbp_policy_main_t gbp_policy_main; #endif /* * fd.io coding-style-patch-verification: ON * * Local Variables: * eval: (c-set-style "gnu") * End: */