ranges and negations12 Mar 2007 I've been playing with ugly algorithms the last couple days. I already had an infrastructure to add separate subnets to the tree and query for them. But I had no solution for negations ( ! 10.0.36.0/24) or ranges (1023-65535). That last item already reveals my plan. The tree I'm building is meant for 32-bit IP addresses, but it can be used for 16-bit port-numbers as well. While IP-ranges are not addressed in netfilter as far as I know, port ranges are. That's why I need such a thing.
I now have the capability to specify ranges and negations in my tree. Well actually, a range just spawns a lot of other subnets (for 32-bit, the theoretical maximum would be 64 subnets) that are added to the tree. The negations are similar. Combined, they can lead to a lot of extra nodes...
But anyway. In order to implement these, I introduced the Subnet and SubnetList structures in ALL of my code. In 1 go. Without testing. You probably know where this is leading... After I had replaced all unsigned long int code (for IP-addresses) with Subnet structures, the code broke. It took me a while to track down the bug, but I squashed it now. Things like this make me appreciate my coding-style, where I code and test incrementally.
As a testcase, I negate a subnetlist with 1 subnet in it, and then negate that too. The last result should be the same as the first subnet.
(deepstar/tachyon) ~/projects/hppc$ ./a.out 188.8.131.52 24
Negated subnetlist: 0.0.0.0/8 184.108.40.206/15 220.127.116.11/23 18.104.22.168/24
22.214.171.124/22 126.96.36.199/21 188.8.131.52/20 184.108.40.206/19 220.127.116.11/18
18.104.22.168/17 22.214.171.124/16 126.96.36.199/14 188.8.131.52/13 184.108.40.206/12
220.127.116.11/11 18.104.22.168/10 22.214.171.124/9 126.96.36.199/7 188.8.131.52/6
184.108.40.206/5 220.127.116.11/4 18.104.22.168/3 22.214.171.124/2 126.96.36.199/1
Negated negated subnetlist: 188.8.131.52/24
It works! :)