ranges and negations12 Mar 2007 I've been playing with ugly algorithms the last couple days. I already had an infrastructure to add separate subnets to the tree and query for them. But I had no solution for negations ( ! 10.0.36.0/24) or ranges (1023-65535). That last item already reveals my plan. The tree I'm building is meant for 32-bit IP addresses, but it can be used for 16-bit port-numbers as well. While IP-ranges are not addressed in netfilter as far as I know, port ranges are. That's why I need such a thing.
I now have the capability to specify ranges and negations in my tree. Well actually, a range just spawns a lot of other subnets (for 32-bit, the theoretical maximum would be 64 subnets) that are added to the tree. The negations are similar. Combined, they can lead to a lot of extra nodes...
But anyway. In order to implement these, I introduced the Subnet and SubnetList structures in ALL of my code. In 1 go. Without testing. You probably know where this is leading... After I had replaced all unsigned long int code (for IP-addresses) with Subnet structures, the code broke. It took me a while to track down the bug, but I squashed it now. Things like this make me appreciate my coding-style, where I code and test incrementally.
As a testcase, I negate a subnetlist with 1 subnet in it, and then negate that too. The last result should be the same as the first subnet.
(deepstar/tachyon) ~/projects/hppc$ ./a.out 22.214.171.124 24
Negated subnetlist: 0.0.0.0/8 126.96.36.199/15 188.8.131.52/23 184.108.40.206/24
220.127.116.11/22 18.104.22.168/21 22.214.171.124/20 126.96.36.199/19 188.8.131.52/18
184.108.40.206/17 220.127.116.11/16 18.104.22.168/14 22.214.171.124/13 126.96.36.199/12
188.8.131.52/11 184.108.40.206/10 220.127.116.11/9 18.104.22.168/7 22.214.171.124/6
126.96.36.199/5 188.8.131.52/4 184.108.40.206/3 220.127.116.11/2 18.104.22.168/1
Negated negated subnetlist: 22.214.171.124/24
It works! :)