3 * $Id: radcom.c,v 1.33 2002/03/04 00:25:35 guy Exp $
6 * Copyright (c) 1998 by Gilbert Ramirez <gram@alumni.rice.edu>
8 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version 2
11 * of the License, or (at your option) any later version.
13 * This program is distributed in the hope that it will be useful,
14 * but WITHOUT ANY WARRANTY; without even the implied warranty of
15 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
16 * GNU General Public License for more details.
18 * You should have received a copy of the GNU General Public License
19 * along with this program; if not, write to the Free Software
20 * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
31 #include "file_wrappers.h"
39 guint32 sec; /* seconds since midnight */
43 struct unaligned_frame_date {
47 char sec[4]; /* seconds since midnight */
51 static guint8 radcom_magic[8] = {
52 0x42, 0xD2, 0x00, 0x34, 0x12, 0x66, 0x22, 0x88
55 /* RADCOM record header - followed by frame data (perhaps including FCS).
56 The first two bytes of "xxz" appear to equal "length", as do the
57 second two bytes; if a RADCOM box can be told not to save all of
58 the captured packet, might one or the other of those be the
59 captured length of the packet? */
60 struct radcomrec_hdr {
61 char xxx[4]; /* unknown */
62 char length[2]; /* packet length */
63 char xxy[5]; /* unknown */
64 struct unaligned_frame_date date; /* date/time stamp of packet */
65 char xxz[6]; /* unknown */
66 char dce; /* DCE/DTE flag (and other flags?) */
67 char xxw[9]; /* unknown */
70 static gboolean radcom_read(wtap *wth, int *err, long *data_offset);
71 static int radcom_seek_read(wtap *wth, long seek_off,
72 union wtap_pseudo_header *pseudo_header, u_char *pd, int length);
73 static int radcom_read_rec_header(FILE_T fh, struct radcomrec_hdr *hdr,
75 static int radcom_read_rec_data(FILE_T fh, u_char *pd, int length, int *err);
77 int radcom_open(wtap *wth, int *err)
81 struct frame_date start_date;
85 char encap_magic[4] = {0x00, 0x42, 0x43, 0x09};
88 /* Read in the string that should be at the start of a RADCOM file */
89 errno = WTAP_ERR_CANT_READ;
90 bytes_read = file_read(magic, 1, 8, wth->fh);
91 if (bytes_read != 8) {
92 *err = file_error(wth->fh);
98 if (memcmp(magic, radcom_magic, 8) != 0) {
102 if (file_seek(wth->fh, 0x8B, SEEK_SET) == -1) {
103 *err = file_error(wth->fh);
106 wth->data_offset = 0x8B;
107 errno = WTAP_ERR_CANT_READ;
108 bytes_read = file_read(&byte, 1, 1, wth->fh);
109 if (bytes_read != 1) {
110 *err = file_error(wth->fh);
115 wth->data_offset += 1;
117 errno = WTAP_ERR_CANT_READ;
118 bytes_read = file_read(&byte, 1, 1, wth->fh);
119 if (bytes_read != 1) {
120 *err = file_error(wth->fh);
125 wth->data_offset += 1;
128 /* Get capture start time */
129 errno = WTAP_ERR_CANT_READ;
130 bytes_read = file_read(&start_date, 1, sizeof(struct frame_date), wth->fh);
131 if (bytes_read != sizeof(struct frame_date)) {
132 *err = file_error(wth->fh);
137 wth->data_offset += sizeof(struct frame_date);
139 /* This is a radcom file */
140 wth->file_type = WTAP_FILE_RADCOM;
141 wth->subtype_read = radcom_read;
142 wth->subtype_seek_read = radcom_seek_read;
143 wth->snapshot_length = 0; /* not available in header, only in frame */
145 tm.tm_year = pletohs(&start_date.year)-1900;
146 tm.tm_mon = start_date.month-1;
147 tm.tm_mday = start_date.day;
148 sec = pletohl(&start_date.sec);
149 tm.tm_hour = sec/3600;
150 tm.tm_min = (sec%3600)/60;
154 if (file_seek(wth->fh, sizeof(struct frame_date), SEEK_CUR) == -1) {
155 *err = file_error(wth->fh);
158 wth->data_offset += sizeof(struct frame_date);
160 errno = WTAP_ERR_CANT_READ;
161 bytes_read = file_read(search_encap, 1, 4, wth->fh);
162 if (bytes_read != 4) {
165 wth->data_offset += 4;
166 while (memcmp(encap_magic, search_encap, 4)) {
167 if (file_seek(wth->fh, -3, SEEK_CUR) == -1) {
168 *err = file_error(wth->fh);
171 wth->data_offset -= 3;
172 errno = WTAP_ERR_CANT_READ;
173 bytes_read = file_read(search_encap, 1, 4, wth->fh);
174 if (bytes_read != 4) {
177 wth->data_offset += 4;
179 if (file_seek(wth->fh, 12, SEEK_CUR) == -1) {
180 *err = file_error(wth->fh);
183 wth->data_offset += 12;
184 errno = WTAP_ERR_CANT_READ;
185 bytes_read = file_read(search_encap, 1, 4, wth->fh);
186 if (bytes_read != 4) {
189 wth->data_offset += 4;
190 if (!memcmp(search_encap, "LAPB", 4))
191 wth->file_encap = WTAP_ENCAP_LAPB;
192 else if (!memcmp(search_encap, "Ethe", 4))
193 wth->file_encap = WTAP_ENCAP_ETHERNET;
195 g_message("pcap: network type \"%.4s\" unknown", search_encap);
196 *err = WTAP_ERR_UNSUPPORTED_ENCAP;
200 /*bytes_read = file_read(&next_date, 1, sizeof(struct frame_date), wth->fh);
201 errno = WTAP_ERR_CANT_READ;
202 if (bytes_read != sizeof(struct frame_date)) {
206 while (memcmp(&start_date, &next_date, 4)) {
207 if (file_seek(wth->fh, 1-sizeof(struct frame_date), SEEK_CUR) == -1) {
208 *err = file_error(wth->fh);
211 errno = WTAP_ERR_CANT_READ;
212 bytes_read = file_read(&next_date, 1, sizeof(struct frame_date),
214 if (bytes_read != sizeof(struct frame_date)) {
219 if (wth->file_encap == WTAP_ENCAP_ETHERNET) {
220 if (file_seek(wth->fh, 294, SEEK_CUR) == -1) {
221 *err = file_error(wth->fh);
224 wth->data_offset += 294;
225 } else if (wth->file_encap == WTAP_ENCAP_LAPB) {
226 if (file_seek(wth->fh, 297, SEEK_CUR) == -1) {
227 *err = file_error(wth->fh);
230 wth->data_offset += 297;
236 *err = file_error(wth->fh);
242 /* Read the next packet */
243 static gboolean radcom_read(wtap *wth, int *err, long *data_offset)
246 struct radcomrec_hdr hdr;
253 /* Read record header. */
254 *data_offset = wth->data_offset;
255 ret = radcom_read_rec_header(wth->fh, &hdr, err);
257 /* Read error or EOF */
260 wth->data_offset += sizeof hdr;
261 length = pletohs(&hdr.length);
262 if (length == 0) return FALSE;
264 if (wth->file_encap == WTAP_ENCAP_LAPB)
265 length -= 2; /* FCS */
267 wth->phdr.len = length;
268 wth->phdr.caplen = length;
270 tm.tm_year = pletohs(&hdr.date.year)-1900;
271 tm.tm_mon = hdr.date.month-1;
272 tm.tm_mday = hdr.date.day;
273 sec = pletohl(&hdr.date.sec);
274 tm.tm_hour = sec/3600;
275 tm.tm_min = (sec%3600)/60;
278 wth->phdr.ts.tv_sec = mktime(&tm);
279 wth->phdr.ts.tv_usec = pletohl(&hdr.date.usec);
280 wth->pseudo_header.x25.flags = (hdr.dce & 0x1) ? 0x00 : 0x80;
283 * Read the packet data.
285 buffer_assure_space(wth->frame_buffer, length);
286 if (radcom_read_rec_data(wth->fh,
287 buffer_start_ptr(wth->frame_buffer), length, err) < 0)
288 return FALSE; /* Read error */
289 wth->data_offset += length;
291 wth->phdr.pkt_encap = wth->file_encap;
293 if (wth->file_encap == WTAP_ENCAP_LAPB) {
295 XXX - should we put it in the pseudo-header? */
296 errno = WTAP_ERR_CANT_READ;
297 bytes_read = file_read(&fcs, 1, sizeof fcs, wth->fh);
298 if (bytes_read != sizeof fcs) {
299 *err = file_error(wth->fh);
301 *err = WTAP_ERR_SHORT_READ;
304 wth->data_offset += sizeof fcs;
311 radcom_seek_read(wtap *wth, long seek_off,
312 union wtap_pseudo_header *pseudo_header, u_char *pd, int length)
315 int err; /* XXX - return this */
316 struct radcomrec_hdr hdr;
318 file_seek(wth->random_fh, seek_off, SEEK_SET);
320 /* Read record header. */
321 ret = radcom_read_rec_header(wth->random_fh, &hdr, &err);
323 /* Read error or EOF */
327 pseudo_header->x25.flags = (hdr.dce & 0x1) ? 0x00 : 0x80;
330 * Read the packet data.
332 return radcom_read_rec_data(wth->random_fh, pd, length, &err);
336 radcom_read_rec_header(FILE_T fh, struct radcomrec_hdr *hdr, int *err)
340 errno = WTAP_ERR_CANT_READ;
341 bytes_read = file_read(hdr, 1, sizeof *hdr, fh);
342 if (bytes_read != sizeof *hdr) {
343 *err = file_error(fh);
346 if (bytes_read != 0) {
347 *err = WTAP_ERR_SHORT_READ;
356 radcom_read_rec_data(FILE_T fh, u_char *pd, int length, int *err)
360 errno = WTAP_ERR_CANT_READ;
361 bytes_read = file_read(pd, 1, length, fh);
363 if (bytes_read != length) {
364 *err = file_error(fh);
366 *err = WTAP_ERR_SHORT_READ;