xref: /openbmc/linux/net/dccp/input.c (revision 4b4193256c8d3bc3a5397b5cd9494c2ad386317d)
12874c5fdSThomas Gleixner // SPDX-License-Identifier: GPL-2.0-or-later
27c657876SArnaldo Carvalho de Melo /*
37c657876SArnaldo Carvalho de Melo  *  net/dccp/input.c
47c657876SArnaldo Carvalho de Melo  *
57c657876SArnaldo Carvalho de Melo  *  An implementation of the DCCP protocol
67c657876SArnaldo Carvalho de Melo  *  Arnaldo Carvalho de Melo <acme@conectiva.com.br>
77c657876SArnaldo Carvalho de Melo  */
87c657876SArnaldo Carvalho de Melo 
97c657876SArnaldo Carvalho de Melo #include <linux/dccp.h>
107c657876SArnaldo Carvalho de Melo #include <linux/skbuff.h>
115a0e3ad6STejun Heo #include <linux/slab.h>
127c657876SArnaldo Carvalho de Melo 
137c657876SArnaldo Carvalho de Melo #include <net/sock.h>
147c657876SArnaldo Carvalho de Melo 
15ae31c339SArnaldo Carvalho de Melo #include "ackvec.h"
167c657876SArnaldo Carvalho de Melo #include "ccid.h"
177c657876SArnaldo Carvalho de Melo #include "dccp.h"
187c657876SArnaldo Carvalho de Melo 
19bd5435e7SIngo Molnar /* rate-limit for syncs in reply to sequence-invalid packets; RFC 4340, 7.5.4 */
20bd5435e7SIngo Molnar int sysctl_dccp_sync_ratelimit	__read_mostly = HZ / 8;
21bd5435e7SIngo Molnar 
dccp_enqueue_skb(struct sock * sk,struct sk_buff * skb)2269567d0bSGerrit Renker static void dccp_enqueue_skb(struct sock *sk, struct sk_buff *skb)
237c657876SArnaldo Carvalho de Melo {
247c657876SArnaldo Carvalho de Melo 	__skb_pull(skb, dccp_hdr(skb)->dccph_doff * 4);
257c657876SArnaldo Carvalho de Melo 	__skb_queue_tail(&sk->sk_receive_queue, skb);
267c657876SArnaldo Carvalho de Melo 	skb_set_owner_r(skb, sk);
27676d2369SDavid S. Miller 	sk->sk_data_ready(sk);
287c657876SArnaldo Carvalho de Melo }
297c657876SArnaldo Carvalho de Melo 
dccp_fin(struct sock * sk,struct sk_buff * skb)3069567d0bSGerrit Renker static void dccp_fin(struct sock *sk, struct sk_buff *skb)
3169567d0bSGerrit Renker {
3269567d0bSGerrit Renker 	/*
3369567d0bSGerrit Renker 	 * On receiving Close/CloseReq, both RD/WR shutdown are performed.
3469567d0bSGerrit Renker 	 * RFC 4340, 8.3 says that we MAY send further Data/DataAcks after
3569567d0bSGerrit Renker 	 * receiving the closing segment, but there is no guarantee that such
3669567d0bSGerrit Renker 	 * data will be processed at all.
3769567d0bSGerrit Renker 	 */
3869567d0bSGerrit Renker 	sk->sk_shutdown = SHUTDOWN_MASK;
3969567d0bSGerrit Renker 	sock_set_flag(sk, SOCK_DONE);
4069567d0bSGerrit Renker 	dccp_enqueue_skb(sk, skb);
4169567d0bSGerrit Renker }
4269567d0bSGerrit Renker 
dccp_rcv_close(struct sock * sk,struct sk_buff * skb)430c869620SGerrit Renker static int dccp_rcv_close(struct sock *sk, struct sk_buff *skb)
447c657876SArnaldo Carvalho de Melo {
450c869620SGerrit Renker 	int queued = 0;
460c869620SGerrit Renker 
470c869620SGerrit Renker 	switch (sk->sk_state) {
480c869620SGerrit Renker 	/*
490c869620SGerrit Renker 	 * We ignore Close when received in one of the following states:
500c869620SGerrit Renker 	 *  - CLOSED		(may be a late or duplicate packet)
510c869620SGerrit Renker 	 *  - PASSIVE_CLOSEREQ	(the peer has sent a CloseReq earlier)
520c869620SGerrit Renker 	 *  - RESPOND		(already handled by dccp_check_req)
530c869620SGerrit Renker 	 */
540c869620SGerrit Renker 	case DCCP_CLOSING:
550c869620SGerrit Renker 		/*
560c869620SGerrit Renker 		 * Simultaneous-close: receiving a Close after sending one. This
570c869620SGerrit Renker 		 * can happen if both client and server perform active-close and
580c869620SGerrit Renker 		 * will result in an endless ping-pong of crossing and retrans-
590c869620SGerrit Renker 		 * mitted Close packets, which only terminates when one of the
600c869620SGerrit Renker 		 * nodes times out (min. 64 seconds). Quicker convergence can be
610c869620SGerrit Renker 		 * achieved when one of the nodes acts as tie-breaker.
620c869620SGerrit Renker 		 * This is ok as both ends are done with data transfer and each
630c869620SGerrit Renker 		 * end is just waiting for the other to acknowledge termination.
640c869620SGerrit Renker 		 */
650c869620SGerrit Renker 		if (dccp_sk(sk)->dccps_role != DCCP_ROLE_CLIENT)
660c869620SGerrit Renker 			break;
67*df561f66SGustavo A. R. Silva 		fallthrough;
680c869620SGerrit Renker 	case DCCP_REQUESTING:
690c869620SGerrit Renker 	case DCCP_ACTIVE_CLOSEREQ:
70017487d7SArnaldo Carvalho de Melo 		dccp_send_reset(sk, DCCP_RESET_CODE_CLOSED);
710c869620SGerrit Renker 		dccp_done(sk);
720c869620SGerrit Renker 		break;
730c869620SGerrit Renker 	case DCCP_OPEN:
740c869620SGerrit Renker 	case DCCP_PARTOPEN:
750c869620SGerrit Renker 		/* Give waiting application a chance to read pending data */
760c869620SGerrit Renker 		queued = 1;
777c657876SArnaldo Carvalho de Melo 		dccp_fin(sk, skb);
780c869620SGerrit Renker 		dccp_set_state(sk, DCCP_PASSIVE_CLOSE);
79*df561f66SGustavo A. R. Silva 		fallthrough;
800c869620SGerrit Renker 	case DCCP_PASSIVE_CLOSE:
810c869620SGerrit Renker 		/*
820c869620SGerrit Renker 		 * Retransmitted Close: we have already enqueued the first one.
830c869620SGerrit Renker 		 */
848d8ad9d7SPavel Emelyanov 		sk_wake_async(sk, SOCK_WAKE_WAITD, POLL_HUP);
857c657876SArnaldo Carvalho de Melo 	}
860c869620SGerrit Renker 	return queued;
870c869620SGerrit Renker }
887c657876SArnaldo Carvalho de Melo 
dccp_rcv_closereq(struct sock * sk,struct sk_buff * skb)890c869620SGerrit Renker static int dccp_rcv_closereq(struct sock *sk, struct sk_buff *skb)
907c657876SArnaldo Carvalho de Melo {
910c869620SGerrit Renker 	int queued = 0;
920c869620SGerrit Renker 
937c657876SArnaldo Carvalho de Melo 	/*
947c657876SArnaldo Carvalho de Melo 	 *   Step 7: Check for unexpected packet types
957c657876SArnaldo Carvalho de Melo 	 *      If (S.is_server and P.type == CloseReq)
967c657876SArnaldo Carvalho de Melo 	 *	  Send Sync packet acknowledging P.seqno
977c657876SArnaldo Carvalho de Melo 	 *	  Drop packet and return
987c657876SArnaldo Carvalho de Melo 	 */
997c657876SArnaldo Carvalho de Melo 	if (dccp_sk(sk)->dccps_role != DCCP_ROLE_CLIENT) {
100e92ae93aSArnaldo Carvalho de Melo 		dccp_send_sync(sk, DCCP_SKB_CB(skb)->dccpd_seq, DCCP_PKT_SYNC);
1010c869620SGerrit Renker 		return queued;
1027c657876SArnaldo Carvalho de Melo 	}
1037c657876SArnaldo Carvalho de Melo 
1040c869620SGerrit Renker 	/* Step 13: process relevant Client states < CLOSEREQ */
1050c869620SGerrit Renker 	switch (sk->sk_state) {
1060c869620SGerrit Renker 	case DCCP_REQUESTING:
1077ad07e7cSArnaldo Carvalho de Melo 		dccp_send_close(sk, 0);
1080c869620SGerrit Renker 		dccp_set_state(sk, DCCP_CLOSING);
1090c869620SGerrit Renker 		break;
1100c869620SGerrit Renker 	case DCCP_OPEN:
1110c869620SGerrit Renker 	case DCCP_PARTOPEN:
1120c869620SGerrit Renker 		/* Give waiting application a chance to read pending data */
1130c869620SGerrit Renker 		queued = 1;
1140c869620SGerrit Renker 		dccp_fin(sk, skb);
1150c869620SGerrit Renker 		dccp_set_state(sk, DCCP_PASSIVE_CLOSEREQ);
116*df561f66SGustavo A. R. Silva 		fallthrough;
1170c869620SGerrit Renker 	case DCCP_PASSIVE_CLOSEREQ:
1180c869620SGerrit Renker 		sk_wake_async(sk, SOCK_WAKE_WAITD, POLL_HUP);
1190c869620SGerrit Renker 	}
1200c869620SGerrit Renker 	return queued;
1217c657876SArnaldo Carvalho de Melo }
1227c657876SArnaldo Carvalho de Melo 
dccp_reset_code_convert(const u8 code)123d9b52dc6SYoichi Yuasa static u16 dccp_reset_code_convert(const u8 code)
124d8ef2c29SGerrit Renker {
1255e349fc0SColin Ian King 	static const u16 error_code[] = {
126d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_CLOSED]	     = 0,	/* normal termination */
127d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_UNSPECIFIED]	     = 0,	/* nothing known */
128d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_ABORTED]	     = ECONNRESET,
129d8ef2c29SGerrit Renker 
130d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_NO_CONNECTION]	     = ECONNREFUSED,
131d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_CONNECTION_REFUSED] = ECONNREFUSED,
132d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_TOO_BUSY]	     = EUSERS,
133d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_AGGRESSION_PENALTY] = EDQUOT,
134d8ef2c29SGerrit Renker 
135d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_PACKET_ERROR]	     = ENOMSG,
136d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_BAD_INIT_COOKIE]    = EBADR,
137d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_BAD_SERVICE_CODE]   = EBADRQC,
138d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_OPTION_ERROR]	     = EILSEQ,
139d8ef2c29SGerrit Renker 	[DCCP_RESET_CODE_MANDATORY_ERROR]    = EOPNOTSUPP,
140d8ef2c29SGerrit Renker 	};
141d8ef2c29SGerrit Renker 
142d8ef2c29SGerrit Renker 	return code >= DCCP_MAX_RESET_CODES ? 0 : error_code[code];
143d8ef2c29SGerrit Renker }
144d8ef2c29SGerrit Renker 
dccp_rcv_reset(struct sock * sk,struct sk_buff * skb)145d8ef2c29SGerrit Renker static void dccp_rcv_reset(struct sock *sk, struct sk_buff *skb)
146d8ef2c29SGerrit Renker {
147d9b52dc6SYoichi Yuasa 	u16 err = dccp_reset_code_convert(dccp_hdr_reset(skb)->dccph_reset_code);
148d8ef2c29SGerrit Renker 
149d8ef2c29SGerrit Renker 	sk->sk_err = err;
150d8ef2c29SGerrit Renker 
151d8ef2c29SGerrit Renker 	/* Queue the equivalent of TCP fin so that dccp_recvmsg exits the loop */
152d8ef2c29SGerrit Renker 	dccp_fin(sk, skb);
153d8ef2c29SGerrit Renker 
154d8ef2c29SGerrit Renker 	if (err && !sock_flag(sk, SOCK_DEAD))
1558d8ad9d7SPavel Emelyanov 		sk_wake_async(sk, SOCK_WAKE_IO, POLL_ERR);
156d8ef2c29SGerrit Renker 	dccp_time_wait(sk, DCCP_TIME_WAIT, 0);
157d8ef2c29SGerrit Renker }
158d8ef2c29SGerrit Renker 
dccp_handle_ackvec_processing(struct sock * sk,struct sk_buff * skb)15918219463SGerrit Renker static void dccp_handle_ackvec_processing(struct sock *sk, struct sk_buff *skb)
1607c657876SArnaldo Carvalho de Melo {
16118219463SGerrit Renker 	struct dccp_ackvec *av = dccp_sk(sk)->dccps_hc_rx_ackvec;
1627c657876SArnaldo Carvalho de Melo 
16318219463SGerrit Renker 	if (av == NULL)
16418219463SGerrit Renker 		return;
16518219463SGerrit Renker 	if (DCCP_SKB_CB(skb)->dccpd_ack_seq != DCCP_PKT_WITHOUT_ACK_SEQ)
16618219463SGerrit Renker 		dccp_ackvec_clear_state(av, DCCP_SKB_CB(skb)->dccpd_ack_seq);
16718219463SGerrit Renker 	dccp_ackvec_input(av, skb);
1687c657876SArnaldo Carvalho de Melo }
1697c657876SArnaldo Carvalho de Melo 
dccp_deliver_input_to_ccids(struct sock * sk,struct sk_buff * skb)1708e8c71f1SGerrit Renker static void dccp_deliver_input_to_ccids(struct sock *sk, struct sk_buff *skb)
1718e8c71f1SGerrit Renker {
1728e8c71f1SGerrit Renker 	const struct dccp_sock *dp = dccp_sk(sk);
1738e8c71f1SGerrit Renker 
1748e8c71f1SGerrit Renker 	/* Don't deliver to RX CCID when node has shut down read end. */
1758e8c71f1SGerrit Renker 	if (!(sk->sk_shutdown & RCV_SHUTDOWN))
1768e8c71f1SGerrit Renker 		ccid_hc_rx_packet_recv(dp->dccps_hc_rx_ccid, sk, skb);
1778e8c71f1SGerrit Renker 	/*
1788e8c71f1SGerrit Renker 	 * Until the TX queue has been drained, we can not honour SHUT_WR, since
1798e8c71f1SGerrit Renker 	 * we need received feedback as input to adjust congestion control.
1808e8c71f1SGerrit Renker 	 */
1818e8c71f1SGerrit Renker 	if (sk->sk_write_queue.qlen > 0 || !(sk->sk_shutdown & SEND_SHUTDOWN))
1828e8c71f1SGerrit Renker 		ccid_hc_tx_packet_recv(dp->dccps_hc_tx_ccid, sk, skb);
1838e8c71f1SGerrit Renker }
1848e8c71f1SGerrit Renker 
dccp_check_seqno(struct sock * sk,struct sk_buff * skb)1857c657876SArnaldo Carvalho de Melo static int dccp_check_seqno(struct sock *sk, struct sk_buff *skb)
1867c657876SArnaldo Carvalho de Melo {
1877c657876SArnaldo Carvalho de Melo 	const struct dccp_hdr *dh = dccp_hdr(skb);
1887c657876SArnaldo Carvalho de Melo 	struct dccp_sock *dp = dccp_sk(sk);
189cbe1f5f8SGerrit Renker 	u64 lswl, lawl, seqno = DCCP_SKB_CB(skb)->dccpd_seq,
190cbe1f5f8SGerrit Renker 			ackno = DCCP_SKB_CB(skb)->dccpd_ack_seq;
1917c657876SArnaldo Carvalho de Melo 
1927c657876SArnaldo Carvalho de Melo 	/*
1937c657876SArnaldo Carvalho de Melo 	 *   Step 5: Prepare sequence numbers for Sync
1947c657876SArnaldo Carvalho de Melo 	 *     If P.type == Sync or P.type == SyncAck,
1957c657876SArnaldo Carvalho de Melo 	 *	  If S.AWL <= P.ackno <= S.AWH and P.seqno >= S.SWL,
1967c657876SArnaldo Carvalho de Melo 	 *	     / * P is valid, so update sequence number variables
1977c657876SArnaldo Carvalho de Melo 	 *		 accordingly.  After this update, P will pass the tests
1987c657876SArnaldo Carvalho de Melo 	 *		 in Step 6.  A SyncAck is generated if necessary in
1997c657876SArnaldo Carvalho de Melo 	 *		 Step 15 * /
2007c657876SArnaldo Carvalho de Melo 	 *	     Update S.GSR, S.SWL, S.SWH
2017c657876SArnaldo Carvalho de Melo 	 *	  Otherwise,
2027c657876SArnaldo Carvalho de Melo 	 *	     Drop packet and return
2037c657876SArnaldo Carvalho de Melo 	 */
2047c657876SArnaldo Carvalho de Melo 	if (dh->dccph_type == DCCP_PKT_SYNC ||
2057c657876SArnaldo Carvalho de Melo 	    dh->dccph_type == DCCP_PKT_SYNCACK) {
206cbe1f5f8SGerrit Renker 		if (between48(ackno, dp->dccps_awl, dp->dccps_awh) &&
207cbe1f5f8SGerrit Renker 		    dccp_delta_seqno(dp->dccps_swl, seqno) >= 0)
208cbe1f5f8SGerrit Renker 			dccp_update_gsr(sk, seqno);
2097c657876SArnaldo Carvalho de Melo 		else
2107c657876SArnaldo Carvalho de Melo 			return -1;
211e92ae93aSArnaldo Carvalho de Melo 	}
212e92ae93aSArnaldo Carvalho de Melo 
2137c657876SArnaldo Carvalho de Melo 	/*
2147c657876SArnaldo Carvalho de Melo 	 *   Step 6: Check sequence numbers
2157c657876SArnaldo Carvalho de Melo 	 *      Let LSWL = S.SWL and LAWL = S.AWL
2167c657876SArnaldo Carvalho de Melo 	 *      If P.type == CloseReq or P.type == Close or P.type == Reset,
2177c657876SArnaldo Carvalho de Melo 	 *	  LSWL := S.GSR + 1, LAWL := S.GAR
2187c657876SArnaldo Carvalho de Melo 	 *      If LSWL <= P.seqno <= S.SWH
2197c657876SArnaldo Carvalho de Melo 	 *	     and (P.ackno does not exist or LAWL <= P.ackno <= S.AWH),
2207c657876SArnaldo Carvalho de Melo 	 *	  Update S.GSR, S.SWL, S.SWH
2217c657876SArnaldo Carvalho de Melo 	 *	  If P.type != Sync,
2227c657876SArnaldo Carvalho de Melo 	 *	     Update S.GAR
2237c657876SArnaldo Carvalho de Melo 	 */
224e92ae93aSArnaldo Carvalho de Melo 	lswl = dp->dccps_swl;
225e92ae93aSArnaldo Carvalho de Melo 	lawl = dp->dccps_awl;
226e92ae93aSArnaldo Carvalho de Melo 
227e92ae93aSArnaldo Carvalho de Melo 	if (dh->dccph_type == DCCP_PKT_CLOSEREQ ||
2287c657876SArnaldo Carvalho de Melo 	    dh->dccph_type == DCCP_PKT_CLOSE ||
2297c657876SArnaldo Carvalho de Melo 	    dh->dccph_type == DCCP_PKT_RESET) {
230cbe1f5f8SGerrit Renker 		lswl = ADD48(dp->dccps_gsr, 1);
2317c657876SArnaldo Carvalho de Melo 		lawl = dp->dccps_gar;
2327c657876SArnaldo Carvalho de Melo 	}
2337c657876SArnaldo Carvalho de Melo 
234cbe1f5f8SGerrit Renker 	if (between48(seqno, lswl, dp->dccps_swh) &&
235cbe1f5f8SGerrit Renker 	    (ackno == DCCP_PKT_WITHOUT_ACK_SEQ ||
236cbe1f5f8SGerrit Renker 	     between48(ackno, lawl, dp->dccps_awh))) {
237cbe1f5f8SGerrit Renker 		dccp_update_gsr(sk, seqno);
2387c657876SArnaldo Carvalho de Melo 
2397c657876SArnaldo Carvalho de Melo 		if (dh->dccph_type != DCCP_PKT_SYNC &&
2400ac78870SGerrit Renker 		    ackno != DCCP_PKT_WITHOUT_ACK_SEQ &&
2410ac78870SGerrit Renker 		    after48(ackno, dp->dccps_gar))
242cbe1f5f8SGerrit Renker 			dp->dccps_gar = ackno;
2437c657876SArnaldo Carvalho de Melo 	} else {
244a94f0f97SGerrit Renker 		unsigned long now = jiffies;
245a94f0f97SGerrit Renker 		/*
246a94f0f97SGerrit Renker 		 *   Step 6: Check sequence numbers
247a94f0f97SGerrit Renker 		 *      Otherwise,
248a94f0f97SGerrit Renker 		 *         If P.type == Reset,
249a94f0f97SGerrit Renker 		 *            Send Sync packet acknowledging S.GSR
250a94f0f97SGerrit Renker 		 *         Otherwise,
251a94f0f97SGerrit Renker 		 *            Send Sync packet acknowledging P.seqno
252a94f0f97SGerrit Renker 		 *      Drop packet and return
253a94f0f97SGerrit Renker 		 *
254a94f0f97SGerrit Renker 		 *   These Syncs are rate-limited as per RFC 4340, 7.5.4:
255a94f0f97SGerrit Renker 		 *   at most 1 / (dccp_sync_rate_limit * HZ) Syncs per second.
256a94f0f97SGerrit Renker 		 */
257a94f0f97SGerrit Renker 		if (time_before(now, (dp->dccps_rate_last +
258a94f0f97SGerrit Renker 				      sysctl_dccp_sync_ratelimit)))
2592cf5be93SSamuel Jero 			return -1;
260a94f0f97SGerrit Renker 
2612f34b329SGerrit Renker 		DCCP_WARN("Step 6 failed for %s packet, "
262a3054d48SArnaldo Carvalho de Melo 			  "(LSWL(%llu) <= P.seqno(%llu) <= S.SWH(%llu)) and "
263a3054d48SArnaldo Carvalho de Melo 			  "(P.ackno %s or LAWL(%llu) <= P.ackno(%llu) <= S.AWH(%llu), "
26459348b19SGerrit Renker 			  "sending SYNC...\n",  dccp_packet_name(dh->dccph_type),
265cbe1f5f8SGerrit Renker 			  (unsigned long long) lswl, (unsigned long long) seqno,
26658e45131SDavid S. Miller 			  (unsigned long long) dp->dccps_swh,
267cbe1f5f8SGerrit Renker 			  (ackno == DCCP_PKT_WITHOUT_ACK_SEQ) ? "doesn't exist"
268cbe1f5f8SGerrit Renker 							      : "exists",
269cbe1f5f8SGerrit Renker 			  (unsigned long long) lawl, (unsigned long long) ackno,
27058e45131SDavid S. Miller 			  (unsigned long long) dp->dccps_awh);
271a94f0f97SGerrit Renker 
272a94f0f97SGerrit Renker 		dp->dccps_rate_last = now;
273a94f0f97SGerrit Renker 
274e155d769SGerrit Renker 		if (dh->dccph_type == DCCP_PKT_RESET)
275e155d769SGerrit Renker 			seqno = dp->dccps_gsr;
276cbe1f5f8SGerrit Renker 		dccp_send_sync(sk, seqno, DCCP_PKT_SYNC);
2777c657876SArnaldo Carvalho de Melo 		return -1;
2787c657876SArnaldo Carvalho de Melo 	}
2797c657876SArnaldo Carvalho de Melo 
2807c657876SArnaldo Carvalho de Melo 	return 0;
2817c657876SArnaldo Carvalho de Melo }
2827c657876SArnaldo Carvalho de Melo 
__dccp_rcv_established(struct sock * sk,struct sk_buff * skb,const struct dccp_hdr * dh,const unsigned int len)283c25a18baSArnaldo Carvalho de Melo static int __dccp_rcv_established(struct sock *sk, struct sk_buff *skb,
28495c96174SEric Dumazet 				  const struct dccp_hdr *dh, const unsigned int len)
2857c657876SArnaldo Carvalho de Melo {
2867c657876SArnaldo Carvalho de Melo 	struct dccp_sock *dp = dccp_sk(sk);
2877c657876SArnaldo Carvalho de Melo 
2887c657876SArnaldo Carvalho de Melo 	switch (dccp_hdr(skb)->dccph_type) {
2897c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_DATAACK:
2907c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_DATA:
2917c657876SArnaldo Carvalho de Melo 		/*
2928e8c71f1SGerrit Renker 		 * FIXME: schedule DATA_DROPPED (RFC 4340, 11.7.2) if and when
2938e8c71f1SGerrit Renker 		 * - sk_shutdown == RCV_SHUTDOWN, use Code 1, "Not Listening"
2948e8c71f1SGerrit Renker 		 * - sk_receive_queue is full, use Code 2, "Receive Buffer"
2957c657876SArnaldo Carvalho de Melo 		 */
29669567d0bSGerrit Renker 		dccp_enqueue_skb(sk, skb);
2977c657876SArnaldo Carvalho de Melo 		return 0;
2987c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_ACK:
2997c657876SArnaldo Carvalho de Melo 		goto discard;
3007c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_RESET:
3017c657876SArnaldo Carvalho de Melo 		/*
3027c657876SArnaldo Carvalho de Melo 		 *  Step 9: Process Reset
3037c657876SArnaldo Carvalho de Melo 		 *	If P.type == Reset,
3047c657876SArnaldo Carvalho de Melo 		 *		Tear down connection
3057c657876SArnaldo Carvalho de Melo 		 *		S.state := TIMEWAIT
3067c657876SArnaldo Carvalho de Melo 		 *		Set TIMEWAIT timer
3077c657876SArnaldo Carvalho de Melo 		 *		Drop packet and return
3087c657876SArnaldo Carvalho de Melo 		 */
309d8ef2c29SGerrit Renker 		dccp_rcv_reset(sk, skb);
3107c657876SArnaldo Carvalho de Melo 		return 0;
3117c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_CLOSEREQ:
3120c869620SGerrit Renker 		if (dccp_rcv_closereq(sk, skb))
3130c869620SGerrit Renker 			return 0;
3147c657876SArnaldo Carvalho de Melo 		goto discard;
3157c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_CLOSE:
3160c869620SGerrit Renker 		if (dccp_rcv_close(sk, skb))
3177c657876SArnaldo Carvalho de Melo 			return 0;
3180c869620SGerrit Renker 		goto discard;
3197c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_REQUEST:
3207c657876SArnaldo Carvalho de Melo 		/* Step 7
3217c657876SArnaldo Carvalho de Melo 		 *   or (S.is_server and P.type == Response)
3227c657876SArnaldo Carvalho de Melo 		 *   or (S.is_client and P.type == Request)
3237c657876SArnaldo Carvalho de Melo 		 *   or (S.state >= OPEN and P.type == Request
3247c657876SArnaldo Carvalho de Melo 		 *	and P.seqno >= S.OSR)
3257c657876SArnaldo Carvalho de Melo 		 *    or (S.state >= OPEN and P.type == Response
3267c657876SArnaldo Carvalho de Melo 		 *	and P.seqno >= S.OSR)
3277c657876SArnaldo Carvalho de Melo 		 *    or (S.state == RESPOND and P.type == Data),
3287c657876SArnaldo Carvalho de Melo 		 *  Send Sync packet acknowledging P.seqno
3297c657876SArnaldo Carvalho de Melo 		 *  Drop packet and return
3307c657876SArnaldo Carvalho de Melo 		 */
3317c657876SArnaldo Carvalho de Melo 		if (dp->dccps_role != DCCP_ROLE_LISTEN)
3327c657876SArnaldo Carvalho de Melo 			goto send_sync;
3337c657876SArnaldo Carvalho de Melo 		goto check_seq;
3347c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_RESPONSE:
3357c657876SArnaldo Carvalho de Melo 		if (dp->dccps_role != DCCP_ROLE_CLIENT)
3367c657876SArnaldo Carvalho de Melo 			goto send_sync;
3377c657876SArnaldo Carvalho de Melo check_seq:
3388d13bf9aSGerrit Renker 		if (dccp_delta_seqno(dp->dccps_osr,
3398d13bf9aSGerrit Renker 				     DCCP_SKB_CB(skb)->dccpd_seq) >= 0) {
3407c657876SArnaldo Carvalho de Melo send_sync:
341e92ae93aSArnaldo Carvalho de Melo 			dccp_send_sync(sk, DCCP_SKB_CB(skb)->dccpd_seq,
342e92ae93aSArnaldo Carvalho de Melo 				       DCCP_PKT_SYNC);
3437c657876SArnaldo Carvalho de Melo 		}
3447c657876SArnaldo Carvalho de Melo 		break;
345e92ae93aSArnaldo Carvalho de Melo 	case DCCP_PKT_SYNC:
346e92ae93aSArnaldo Carvalho de Melo 		dccp_send_sync(sk, DCCP_SKB_CB(skb)->dccpd_seq,
347e92ae93aSArnaldo Carvalho de Melo 			       DCCP_PKT_SYNCACK);
348e92ae93aSArnaldo Carvalho de Melo 		/*
3490e64e94eSGerrit Renker 		 * From RFC 4340, sec. 5.7
350e92ae93aSArnaldo Carvalho de Melo 		 *
351e92ae93aSArnaldo Carvalho de Melo 		 * As with DCCP-Ack packets, DCCP-Sync and DCCP-SyncAck packets
352e92ae93aSArnaldo Carvalho de Melo 		 * MAY have non-zero-length application data areas, whose
3530e64e94eSGerrit Renker 		 * contents receivers MUST ignore.
354e92ae93aSArnaldo Carvalho de Melo 		 */
355e92ae93aSArnaldo Carvalho de Melo 		goto discard;
3567c657876SArnaldo Carvalho de Melo 	}
3577c657876SArnaldo Carvalho de Melo 
3587309f882SEric Dumazet 	DCCP_INC_STATS(DCCP_MIB_INERRS);
3597c657876SArnaldo Carvalho de Melo discard:
3607c657876SArnaldo Carvalho de Melo 	__kfree_skb(skb);
3617c657876SArnaldo Carvalho de Melo 	return 0;
3627c657876SArnaldo Carvalho de Melo }
3637c657876SArnaldo Carvalho de Melo 
dccp_rcv_established(struct sock * sk,struct sk_buff * skb,const struct dccp_hdr * dh,const unsigned int len)364709dd3aaSAndrea Bittau int dccp_rcv_established(struct sock *sk, struct sk_buff *skb,
36595c96174SEric Dumazet 			 const struct dccp_hdr *dh, const unsigned int len)
366709dd3aaSAndrea Bittau {
367709dd3aaSAndrea Bittau 	if (dccp_check_seqno(sk, skb))
368709dd3aaSAndrea Bittau 		goto discard;
369709dd3aaSAndrea Bittau 
3708b819412SGerrit Renker 	if (dccp_parse_options(sk, NULL, skb))
371ba1a6c7bSWei Yongjun 		return 1;
372709dd3aaSAndrea Bittau 
37318219463SGerrit Renker 	dccp_handle_ackvec_processing(sk, skb);
3748e8c71f1SGerrit Renker 	dccp_deliver_input_to_ccids(sk, skb);
375709dd3aaSAndrea Bittau 
376709dd3aaSAndrea Bittau 	return __dccp_rcv_established(sk, skb, dh, len);
377709dd3aaSAndrea Bittau discard:
378709dd3aaSAndrea Bittau 	__kfree_skb(skb);
379709dd3aaSAndrea Bittau 	return 0;
380709dd3aaSAndrea Bittau }
381709dd3aaSAndrea Bittau 
382f21e68caSArnaldo Carvalho de Melo EXPORT_SYMBOL_GPL(dccp_rcv_established);
383f21e68caSArnaldo Carvalho de Melo 
dccp_rcv_request_sent_state_process(struct sock * sk,struct sk_buff * skb,const struct dccp_hdr * dh,const unsigned int len)3847c657876SArnaldo Carvalho de Melo static int dccp_rcv_request_sent_state_process(struct sock *sk,
3857c657876SArnaldo Carvalho de Melo 					       struct sk_buff *skb,
3867c657876SArnaldo Carvalho de Melo 					       const struct dccp_hdr *dh,
38795c96174SEric Dumazet 					       const unsigned int len)
3887c657876SArnaldo Carvalho de Melo {
3897c657876SArnaldo Carvalho de Melo 	/*
3907c657876SArnaldo Carvalho de Melo 	 *  Step 4: Prepare sequence numbers in REQUEST
3917c657876SArnaldo Carvalho de Melo 	 *     If S.state == REQUEST,
3927c657876SArnaldo Carvalho de Melo 	 *	  If (P.type == Response or P.type == Reset)
3937c657876SArnaldo Carvalho de Melo 	 *		and S.AWL <= P.ackno <= S.AWH,
3947c657876SArnaldo Carvalho de Melo 	 *	     / * Set sequence number variables corresponding to the
3957c657876SArnaldo Carvalho de Melo 	 *		other endpoint, so P will pass the tests in Step 6 * /
3967c657876SArnaldo Carvalho de Melo 	 *	     Set S.GSR, S.ISR, S.SWL, S.SWH
3977c657876SArnaldo Carvalho de Melo 	 *	     / * Response processing continues in Step 10; Reset
3987c657876SArnaldo Carvalho de Melo 	 *		processing continues in Step 9 * /
3997c657876SArnaldo Carvalho de Melo 	*/
4007c657876SArnaldo Carvalho de Melo 	if (dh->dccph_type == DCCP_PKT_RESPONSE) {
4017c657876SArnaldo Carvalho de Melo 		const struct inet_connection_sock *icsk = inet_csk(sk);
4027c657876SArnaldo Carvalho de Melo 		struct dccp_sock *dp = dccp_sk(sk);
4033393da82SGerrit Renker 		long tstamp = dccp_timestamp();
4047c657876SArnaldo Carvalho de Melo 
4057690af3fSArnaldo Carvalho de Melo 		if (!between48(DCCP_SKB_CB(skb)->dccpd_ack_seq,
4067690af3fSArnaldo Carvalho de Melo 			       dp->dccps_awl, dp->dccps_awh)) {
4077690af3fSArnaldo Carvalho de Melo 			dccp_pr_debug("invalid ackno: S.AWL=%llu, "
4087690af3fSArnaldo Carvalho de Melo 				      "P.ackno=%llu, S.AWH=%llu\n",
409f6ccf554SDavid S. Miller 				      (unsigned long long)dp->dccps_awl,
410f6ccf554SDavid S. Miller 			   (unsigned long long)DCCP_SKB_CB(skb)->dccpd_ack_seq,
411f6ccf554SDavid S. Miller 				      (unsigned long long)dp->dccps_awh);
4127c657876SArnaldo Carvalho de Melo 			goto out_invalid_packet;
4137c657876SArnaldo Carvalho de Melo 		}
4147c657876SArnaldo Carvalho de Melo 
415991d927cSGerrit Renker 		/*
416991d927cSGerrit Renker 		 * If option processing (Step 8) failed, return 1 here so that
417991d927cSGerrit Renker 		 * dccp_v4_do_rcv() sends a Reset. The Reset code depends on
418991d927cSGerrit Renker 		 * the option type and is set in dccp_parse_options().
419991d927cSGerrit Renker 		 */
4208b819412SGerrit Renker 		if (dccp_parse_options(sk, NULL, skb))
421991d927cSGerrit Renker 			return 1;
422afe00251SAndrea Bittau 
42359b80802SGerrit Renker 		/* Obtain usec RTT sample from SYN exchange (used by TFRC). */
4243393da82SGerrit Renker 		if (likely(dp->dccps_options_received.dccpor_timestamp_echo))
4253393da82SGerrit Renker 			dp->dccps_syn_rtt = dccp_sample_rtt(sk, 10 * (tstamp -
4263393da82SGerrit Renker 			    dp->dccps_options_received.dccpor_timestamp_echo));
42789560b53SGerrit Renker 
428d28934adSGerrit Renker 		/* Stop the REQUEST timer */
429d28934adSGerrit Renker 		inet_csk_clear_xmit_timer(sk, ICSK_TIME_RETRANS);
430d28934adSGerrit Renker 		WARN_ON(sk->sk_send_head == NULL);
431d28934adSGerrit Renker 		kfree_skb(sk->sk_send_head);
432d28934adSGerrit Renker 		sk->sk_send_head = NULL;
433d28934adSGerrit Renker 
43403ace394SArnaldo Carvalho de Melo 		/*
4350b53d460SGerrit Renker 		 * Set ISR, GSR from packet. ISS was set in dccp_v{4,6}_connect
4360b53d460SGerrit Renker 		 * and GSS in dccp_transmit_skb(). Setting AWL/AWH and SWL/SWH
4370b53d460SGerrit Renker 		 * is done as part of activating the feature values below, since
4380b53d460SGerrit Renker 		 * these settings depend on the local/remote Sequence Window
4390b53d460SGerrit Renker 		 * features, which were undefined or not confirmed until now.
44003ace394SArnaldo Carvalho de Melo 		 */
4410b53d460SGerrit Renker 		dp->dccps_gsr = dp->dccps_isr = DCCP_SKB_CB(skb)->dccpd_seq;
4427c657876SArnaldo Carvalho de Melo 
443d83d8461SArnaldo Carvalho de Melo 		dccp_sync_mss(sk, icsk->icsk_pmtu_cookie);
4447c657876SArnaldo Carvalho de Melo 
4457c657876SArnaldo Carvalho de Melo 		/*
4467c657876SArnaldo Carvalho de Melo 		 *    Step 10: Process REQUEST state (second part)
4477c657876SArnaldo Carvalho de Melo 		 *       If S.state == REQUEST,
4487690af3fSArnaldo Carvalho de Melo 		 *	  / * If we get here, P is a valid Response from the
4497690af3fSArnaldo Carvalho de Melo 		 *	      server (see Step 4), and we should move to
4507690af3fSArnaldo Carvalho de Melo 		 *	      PARTOPEN state. PARTOPEN means send an Ack,
4517690af3fSArnaldo Carvalho de Melo 		 *	      don't send Data packets, retransmit Acks
4527690af3fSArnaldo Carvalho de Melo 		 *	      periodically, and always include any Init Cookie
4537690af3fSArnaldo Carvalho de Melo 		 *	      from the Response * /
4547c657876SArnaldo Carvalho de Melo 		 *	  S.state := PARTOPEN
4557c657876SArnaldo Carvalho de Melo 		 *	  Set PARTOPEN timer
4567c657876SArnaldo Carvalho de Melo 		 *	  Continue with S.state == PARTOPEN
4577690af3fSArnaldo Carvalho de Melo 		 *	  / * Step 12 will send the Ack completing the
4587690af3fSArnaldo Carvalho de Melo 		 *	      three-way handshake * /
4597c657876SArnaldo Carvalho de Melo 		 */
4607c657876SArnaldo Carvalho de Melo 		dccp_set_state(sk, DCCP_PARTOPEN);
4617c657876SArnaldo Carvalho de Melo 
462991d927cSGerrit Renker 		/*
463991d927cSGerrit Renker 		 * If feature negotiation was successful, activate features now;
464991d927cSGerrit Renker 		 * an activation failure means that this host could not activate
465991d927cSGerrit Renker 		 * one ore more features (e.g. insufficient memory), which would
466991d927cSGerrit Renker 		 * leave at least one feature in an undefined state.
467991d927cSGerrit Renker 		 */
468991d927cSGerrit Renker 		if (dccp_feat_activate_values(sk, &dp->dccps_featneg))
469991d927cSGerrit Renker 			goto unable_to_proceed;
470991d927cSGerrit Renker 
4717c657876SArnaldo Carvalho de Melo 		/* Make sure socket is routed, for correct metrics. */
47257cca05aSArnaldo Carvalho de Melo 		icsk->icsk_af_ops->rebuild_header(sk);
4737c657876SArnaldo Carvalho de Melo 
4747c657876SArnaldo Carvalho de Melo 		if (!sock_flag(sk, SOCK_DEAD)) {
4757c657876SArnaldo Carvalho de Melo 			sk->sk_state_change(sk);
4768d8ad9d7SPavel Emelyanov 			sk_wake_async(sk, SOCK_WAKE_IO, POLL_OUT);
4777c657876SArnaldo Carvalho de Melo 		}
4787c657876SArnaldo Carvalho de Melo 
47931954cd8SWei Wang 		if (sk->sk_write_pending || inet_csk_in_pingpong_mode(sk) ||
4807c657876SArnaldo Carvalho de Melo 		    icsk->icsk_accept_queue.rskq_defer_accept) {
4817c657876SArnaldo Carvalho de Melo 			/* Save one ACK. Data will be ready after
4827c657876SArnaldo Carvalho de Melo 			 * several ticks, if write_pending is set.
4837c657876SArnaldo Carvalho de Melo 			 *
4847c657876SArnaldo Carvalho de Melo 			 * It may be deleted, but with this feature tcpdumps
4857c657876SArnaldo Carvalho de Melo 			 * look so _wonderfully_ clever, that I was not able
4867c657876SArnaldo Carvalho de Melo 			 * to stand against the temptation 8)     --ANK
4877c657876SArnaldo Carvalho de Melo 			 */
4887c657876SArnaldo Carvalho de Melo 			/*
4897c657876SArnaldo Carvalho de Melo 			 * OK, in DCCP we can as well do a similar trick, its
4907c657876SArnaldo Carvalho de Melo 			 * even in the draft, but there is no need for us to
4917c657876SArnaldo Carvalho de Melo 			 * schedule an ack here, as dccp_sendmsg does this for
4927c657876SArnaldo Carvalho de Melo 			 * us, also stated in the draft. -acme
4937c657876SArnaldo Carvalho de Melo 			 */
4947c657876SArnaldo Carvalho de Melo 			__kfree_skb(skb);
4957c657876SArnaldo Carvalho de Melo 			return 0;
4967c657876SArnaldo Carvalho de Melo 		}
4977c657876SArnaldo Carvalho de Melo 		dccp_send_ack(sk);
4987c657876SArnaldo Carvalho de Melo 		return -1;
4997c657876SArnaldo Carvalho de Melo 	}
5007c657876SArnaldo Carvalho de Melo 
5017c657876SArnaldo Carvalho de Melo out_invalid_packet:
5020c10c5d9SArnaldo Carvalho de Melo 	/* dccp_v4_do_rcv will send a reset */
5030c10c5d9SArnaldo Carvalho de Melo 	DCCP_SKB_CB(skb)->dccpd_reset_code = DCCP_RESET_CODE_PACKET_ERROR;
5040c10c5d9SArnaldo Carvalho de Melo 	return 1;
505991d927cSGerrit Renker 
506991d927cSGerrit Renker unable_to_proceed:
507991d927cSGerrit Renker 	DCCP_SKB_CB(skb)->dccpd_reset_code = DCCP_RESET_CODE_ABORTED;
508991d927cSGerrit Renker 	/*
509991d927cSGerrit Renker 	 * We mark this socket as no longer usable, so that the loop in
510991d927cSGerrit Renker 	 * dccp_sendmsg() terminates and the application gets notified.
511991d927cSGerrit Renker 	 */
512991d927cSGerrit Renker 	dccp_set_state(sk, DCCP_CLOSED);
513991d927cSGerrit Renker 	sk->sk_err = ECOMM;
514991d927cSGerrit Renker 	return 1;
5157c657876SArnaldo Carvalho de Melo }
5167c657876SArnaldo Carvalho de Melo 
dccp_rcv_respond_partopen_state_process(struct sock * sk,struct sk_buff * skb,const struct dccp_hdr * dh,const unsigned int len)5177c657876SArnaldo Carvalho de Melo static int dccp_rcv_respond_partopen_state_process(struct sock *sk,
5187c657876SArnaldo Carvalho de Melo 						   struct sk_buff *skb,
5197c657876SArnaldo Carvalho de Melo 						   const struct dccp_hdr *dh,
52095c96174SEric Dumazet 						   const unsigned int len)
5217c657876SArnaldo Carvalho de Melo {
52259b80802SGerrit Renker 	struct dccp_sock *dp = dccp_sk(sk);
52359b80802SGerrit Renker 	u32 sample = dp->dccps_options_received.dccpor_timestamp_echo;
5247c657876SArnaldo Carvalho de Melo 	int queued = 0;
5257c657876SArnaldo Carvalho de Melo 
5267c657876SArnaldo Carvalho de Melo 	switch (dh->dccph_type) {
5277c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_RESET:
5287c657876SArnaldo Carvalho de Melo 		inet_csk_clear_xmit_timer(sk, ICSK_TIME_DACK);
5297c657876SArnaldo Carvalho de Melo 		break;
5302a9bc9bbSArnaldo Carvalho de Melo 	case DCCP_PKT_DATA:
5312a9bc9bbSArnaldo Carvalho de Melo 		if (sk->sk_state == DCCP_RESPOND)
5322a9bc9bbSArnaldo Carvalho de Melo 			break;
533*df561f66SGustavo A. R. Silva 		fallthrough;
5347c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_DATAACK:
5357c657876SArnaldo Carvalho de Melo 	case DCCP_PKT_ACK:
5367c657876SArnaldo Carvalho de Melo 		/*
537a77b6343SFabian Frederick 		 * FIXME: we should be resetting the PARTOPEN (DELACK) timer
5387690af3fSArnaldo Carvalho de Melo 		 * here but only if we haven't used the DELACK timer for
5397690af3fSArnaldo Carvalho de Melo 		 * something else, like sending a delayed ack for a TIMESTAMP
5407690af3fSArnaldo Carvalho de Melo 		 * echo, etc, for now were not clearing it, sending an extra
5417690af3fSArnaldo Carvalho de Melo 		 * ACK when there is nothing else to do in DELACK is not a big
5427690af3fSArnaldo Carvalho de Melo 		 * deal after all.
5437c657876SArnaldo Carvalho de Melo 		 */
5447c657876SArnaldo Carvalho de Melo 
5457c657876SArnaldo Carvalho de Melo 		/* Stop the PARTOPEN timer */
5467c657876SArnaldo Carvalho de Melo 		if (sk->sk_state == DCCP_PARTOPEN)
5477c657876SArnaldo Carvalho de Melo 			inet_csk_clear_xmit_timer(sk, ICSK_TIME_DACK);
5487c657876SArnaldo Carvalho de Melo 
54959b80802SGerrit Renker 		/* Obtain usec RTT sample from SYN exchange (used by TFRC). */
55059b80802SGerrit Renker 		if (likely(sample)) {
55159b80802SGerrit Renker 			long delta = dccp_timestamp() - sample;
55259b80802SGerrit Renker 
55359b80802SGerrit Renker 			dp->dccps_syn_rtt = dccp_sample_rtt(sk, 10 * delta);
55459b80802SGerrit Renker 		}
55559b80802SGerrit Renker 
55659b80802SGerrit Renker 		dp->dccps_osr = DCCP_SKB_CB(skb)->dccpd_seq;
5577c657876SArnaldo Carvalho de Melo 		dccp_set_state(sk, DCCP_OPEN);
5587c657876SArnaldo Carvalho de Melo 
5592a9bc9bbSArnaldo Carvalho de Melo 		if (dh->dccph_type == DCCP_PKT_DATAACK ||
5602a9bc9bbSArnaldo Carvalho de Melo 		    dh->dccph_type == DCCP_PKT_DATA) {
561709dd3aaSAndrea Bittau 			__dccp_rcv_established(sk, skb, dh, len);
5627690af3fSArnaldo Carvalho de Melo 			queued = 1; /* packet was queued
563709dd3aaSAndrea Bittau 				       (by __dccp_rcv_established) */
5647c657876SArnaldo Carvalho de Melo 		}
5657c657876SArnaldo Carvalho de Melo 		break;
5667c657876SArnaldo Carvalho de Melo 	}
5677c657876SArnaldo Carvalho de Melo 
5687c657876SArnaldo Carvalho de Melo 	return queued;
5697c657876SArnaldo Carvalho de Melo }
5707c657876SArnaldo Carvalho de Melo 
dccp_rcv_state_process(struct sock * sk,struct sk_buff * skb,struct dccp_hdr * dh,unsigned int len)5717c657876SArnaldo Carvalho de Melo int dccp_rcv_state_process(struct sock *sk, struct sk_buff *skb,
57295c96174SEric Dumazet 			   struct dccp_hdr *dh, unsigned int len)
5737c657876SArnaldo Carvalho de Melo {
5747c657876SArnaldo Carvalho de Melo 	struct dccp_sock *dp = dccp_sk(sk);
5750c10c5d9SArnaldo Carvalho de Melo 	struct dccp_skb_cb *dcb = DCCP_SKB_CB(skb);
5767c657876SArnaldo Carvalho de Melo 	const int old_state = sk->sk_state;
577449809a6SEric Dumazet 	bool acceptable;
5787c657876SArnaldo Carvalho de Melo 	int queued = 0;
5797c657876SArnaldo Carvalho de Melo 
5808649b0d4SArnaldo Carvalho de Melo 	/*
5818649b0d4SArnaldo Carvalho de Melo 	 *  Step 3: Process LISTEN state
5828649b0d4SArnaldo Carvalho de Melo 	 *
5838649b0d4SArnaldo Carvalho de Melo 	 *     If S.state == LISTEN,
584d83ca5acSGerrit Renker 	 *	 If P.type == Request or P contains a valid Init Cookie option,
585d83ca5acSGerrit Renker 	 *	      (* Must scan the packet's options to check for Init
586d83ca5acSGerrit Renker 	 *		 Cookies.  Only Init Cookies are processed here,
5878649b0d4SArnaldo Carvalho de Melo 	 *		 however; other options are processed in Step 8.  This
5888649b0d4SArnaldo Carvalho de Melo 	 *		 scan need only be performed if the endpoint uses Init
589d83ca5acSGerrit Renker 	 *		 Cookies *)
590d83ca5acSGerrit Renker 	 *	      (* Generate a new socket and switch to that socket *)
5918649b0d4SArnaldo Carvalho de Melo 	 *	      Set S := new socket for this port pair
5928649b0d4SArnaldo Carvalho de Melo 	 *	      S.state = RESPOND
593d83ca5acSGerrit Renker 	 *	      Choose S.ISS (initial seqno) or set from Init Cookies
594d83ca5acSGerrit Renker 	 *	      Initialize S.GAR := S.ISS
595d83ca5acSGerrit Renker 	 *	      Set S.ISR, S.GSR, S.SWL, S.SWH from packet or Init
596d83ca5acSGerrit Renker 	 *	      Cookies Continue with S.state == RESPOND
597d83ca5acSGerrit Renker 	 *	      (* A Response packet will be generated in Step 11 *)
5988649b0d4SArnaldo Carvalho de Melo 	 *	 Otherwise,
5998649b0d4SArnaldo Carvalho de Melo 	 *	      Generate Reset(No Connection) unless P.type == Reset
6008649b0d4SArnaldo Carvalho de Melo 	 *	      Drop packet and return
6018649b0d4SArnaldo Carvalho de Melo 	 */
6028649b0d4SArnaldo Carvalho de Melo 	if (sk->sk_state == DCCP_LISTEN) {
6038649b0d4SArnaldo Carvalho de Melo 		if (dh->dccph_type == DCCP_PKT_REQUEST) {
604449809a6SEric Dumazet 			/* It is possible that we process SYN packets from backlog,
6051ad98e9dSEric Dumazet 			 * so we need to make sure to disable BH and RCU right there.
606449809a6SEric Dumazet 			 */
6071ad98e9dSEric Dumazet 			rcu_read_lock();
608449809a6SEric Dumazet 			local_bh_disable();
609449809a6SEric Dumazet 			acceptable = inet_csk(sk)->icsk_af_ops->conn_request(sk, skb) >= 0;
610449809a6SEric Dumazet 			local_bh_enable();
6111ad98e9dSEric Dumazet 			rcu_read_unlock();
612449809a6SEric Dumazet 			if (!acceptable)
6138649b0d4SArnaldo Carvalho de Melo 				return 1;
6145edabca9SAndrey Konovalov 			consume_skb(skb);
6155edabca9SAndrey Konovalov 			return 0;
6168649b0d4SArnaldo Carvalho de Melo 		}
6178649b0d4SArnaldo Carvalho de Melo 		if (dh->dccph_type == DCCP_PKT_RESET)
6188649b0d4SArnaldo Carvalho de Melo 			goto discard;
6198649b0d4SArnaldo Carvalho de Melo 
6200c10c5d9SArnaldo Carvalho de Melo 		/* Caller (dccp_v4_do_rcv) will send Reset */
6210c10c5d9SArnaldo Carvalho de Melo 		dcb->dccpd_reset_code = DCCP_RESET_CODE_NO_CONNECTION;
6228649b0d4SArnaldo Carvalho de Melo 		return 1;
623720dc34bSGerrit Renker 	} else if (sk->sk_state == DCCP_CLOSED) {
624720dc34bSGerrit Renker 		dcb->dccpd_reset_code = DCCP_RESET_CODE_NO_CONNECTION;
625720dc34bSGerrit Renker 		return 1;
6268649b0d4SArnaldo Carvalho de Melo 	}
6278649b0d4SArnaldo Carvalho de Melo 
628c0c20150SGerrit Renker 	/* Step 6: Check sequence numbers (omitted in LISTEN/REQUEST state) */
629c0c20150SGerrit Renker 	if (sk->sk_state != DCCP_REQUESTING && dccp_check_seqno(sk, skb))
6307c657876SArnaldo Carvalho de Melo 		goto discard;
6317c657876SArnaldo Carvalho de Melo 
6327c657876SArnaldo Carvalho de Melo 	/*
633c0c20150SGerrit Renker 	 *   Step 7: Check for unexpected packet types
634c0c20150SGerrit Renker 	 *      If (S.is_server and P.type == Response)
635c0c20150SGerrit Renker 	 *	    or (S.is_client and P.type == Request)
636c0c20150SGerrit Renker 	 *	    or (S.state == RESPOND and P.type == Data),
637c0c20150SGerrit Renker 	 *	  Send Sync packet acknowledging P.seqno
638c0c20150SGerrit Renker 	 *	  Drop packet and return
6397c657876SArnaldo Carvalho de Melo 	 */
640c0c20150SGerrit Renker 	if ((dp->dccps_role != DCCP_ROLE_CLIENT &&
641c0c20150SGerrit Renker 	     dh->dccph_type == DCCP_PKT_RESPONSE) ||
642c0c20150SGerrit Renker 	    (dp->dccps_role == DCCP_ROLE_CLIENT &&
643c0c20150SGerrit Renker 	     dh->dccph_type == DCCP_PKT_REQUEST) ||
644c0c20150SGerrit Renker 	    (sk->sk_state == DCCP_RESPOND && dh->dccph_type == DCCP_PKT_DATA)) {
645c0c20150SGerrit Renker 		dccp_send_sync(sk, dcb->dccpd_seq, DCCP_PKT_SYNC);
646c0c20150SGerrit Renker 		goto discard;
647c0c20150SGerrit Renker 	}
648c0c20150SGerrit Renker 
649c0c20150SGerrit Renker 	/*  Step 8: Process options */
6508b819412SGerrit Renker 	if (dccp_parse_options(sk, NULL, skb))
651ba1a6c7bSWei Yongjun 		return 1;
6527c657876SArnaldo Carvalho de Melo 
6537c657876SArnaldo Carvalho de Melo 	/*
6547c657876SArnaldo Carvalho de Melo 	 *  Step 9: Process Reset
6557c657876SArnaldo Carvalho de Melo 	 *	If P.type == Reset,
6567c657876SArnaldo Carvalho de Melo 	 *		Tear down connection
6577c657876SArnaldo Carvalho de Melo 	 *		S.state := TIMEWAIT
6587c657876SArnaldo Carvalho de Melo 	 *		Set TIMEWAIT timer
6597c657876SArnaldo Carvalho de Melo 	 *		Drop packet and return
6607c657876SArnaldo Carvalho de Melo 	 */
6617c657876SArnaldo Carvalho de Melo 	if (dh->dccph_type == DCCP_PKT_RESET) {
662d8ef2c29SGerrit Renker 		dccp_rcv_reset(sk, skb);
6637c657876SArnaldo Carvalho de Melo 		return 0;
664c0c20150SGerrit Renker 	} else if (dh->dccph_type == DCCP_PKT_CLOSEREQ) {	/* Step 13 */
6650c869620SGerrit Renker 		if (dccp_rcv_closereq(sk, skb))
6660c869620SGerrit Renker 			return 0;
6677ad07e7cSArnaldo Carvalho de Melo 		goto discard;
668c0c20150SGerrit Renker 	} else if (dh->dccph_type == DCCP_PKT_CLOSE) {		/* Step 14 */
6690c869620SGerrit Renker 		if (dccp_rcv_close(sk, skb))
6707ad07e7cSArnaldo Carvalho de Melo 			return 0;
6710c869620SGerrit Renker 		goto discard;
6727c657876SArnaldo Carvalho de Melo 	}
6737c657876SArnaldo Carvalho de Melo 
6747c657876SArnaldo Carvalho de Melo 	switch (sk->sk_state) {
6757c657876SArnaldo Carvalho de Melo 	case DCCP_REQUESTING:
6767c657876SArnaldo Carvalho de Melo 		queued = dccp_rcv_request_sent_state_process(sk, skb, dh, len);
6777c657876SArnaldo Carvalho de Melo 		if (queued >= 0)
6787c657876SArnaldo Carvalho de Melo 			return queued;
6797c657876SArnaldo Carvalho de Melo 
6807c657876SArnaldo Carvalho de Melo 		__kfree_skb(skb);
6817c657876SArnaldo Carvalho de Melo 		return 0;
6827c657876SArnaldo Carvalho de Melo 
683410e27a4SGerrit Renker 	case DCCP_PARTOPEN:
684c0c20150SGerrit Renker 		/* Step 8: if using Ack Vectors, mark packet acknowledgeable */
685c0c20150SGerrit Renker 		dccp_handle_ackvec_processing(sk, skb);
686c0c20150SGerrit Renker 		dccp_deliver_input_to_ccids(sk, skb);
687*df561f66SGustavo A. R. Silva 		fallthrough;
688c0c20150SGerrit Renker 	case DCCP_RESPOND:
6897690af3fSArnaldo Carvalho de Melo 		queued = dccp_rcv_respond_partopen_state_process(sk, skb,
6907690af3fSArnaldo Carvalho de Melo 								 dh, len);
6917c657876SArnaldo Carvalho de Melo 		break;
6927c657876SArnaldo Carvalho de Melo 	}
6937c657876SArnaldo Carvalho de Melo 
6947690af3fSArnaldo Carvalho de Melo 	if (dh->dccph_type == DCCP_PKT_ACK ||
6957690af3fSArnaldo Carvalho de Melo 	    dh->dccph_type == DCCP_PKT_DATAACK) {
6967c657876SArnaldo Carvalho de Melo 		switch (old_state) {
6977c657876SArnaldo Carvalho de Melo 		case DCCP_PARTOPEN:
6987c657876SArnaldo Carvalho de Melo 			sk->sk_state_change(sk);
6998d8ad9d7SPavel Emelyanov 			sk_wake_async(sk, SOCK_WAKE_IO, POLL_OUT);
7007c657876SArnaldo Carvalho de Melo 			break;
7017c657876SArnaldo Carvalho de Melo 		}
70208831700SGerrit Renker 	} else if (unlikely(dh->dccph_type == DCCP_PKT_SYNC)) {
70308831700SGerrit Renker 		dccp_send_sync(sk, dcb->dccpd_seq, DCCP_PKT_SYNCACK);
70408831700SGerrit Renker 		goto discard;
7057c657876SArnaldo Carvalho de Melo 	}
7067c657876SArnaldo Carvalho de Melo 
7077c657876SArnaldo Carvalho de Melo 	if (!queued) {
7087c657876SArnaldo Carvalho de Melo discard:
7097c657876SArnaldo Carvalho de Melo 		__kfree_skb(skb);
7107c657876SArnaldo Carvalho de Melo 	}
7117c657876SArnaldo Carvalho de Melo 	return 0;
7127c657876SArnaldo Carvalho de Melo }
713f21e68caSArnaldo Carvalho de Melo 
714f21e68caSArnaldo Carvalho de Melo EXPORT_SYMBOL_GPL(dccp_rcv_state_process);
7154712a792SGerrit Renker 
7164712a792SGerrit Renker /**
7173393da82SGerrit Renker  *  dccp_sample_rtt  -  Validate and finalise computation of RTT sample
718d0b1101bSAndrew Lunn  *  @sk:	socket structure
7193393da82SGerrit Renker  *  @delta:	number of microseconds between packet and acknowledgment
7202c53040fSBen Hutchings  *
7213393da82SGerrit Renker  *  The routine is kept generic to work in different contexts. It should be
7223393da82SGerrit Renker  *  called immediately when the ACK used for the RTT sample arrives.
7234712a792SGerrit Renker  */
dccp_sample_rtt(struct sock * sk,long delta)7243393da82SGerrit Renker u32 dccp_sample_rtt(struct sock *sk, long delta)
7254712a792SGerrit Renker {
7263393da82SGerrit Renker 	/* dccpor_elapsed_time is either zeroed out or set and > 0 */
7273393da82SGerrit Renker 	delta -= dccp_sk(sk)->dccps_options_received.dccpor_elapsed_time * 10;
7284712a792SGerrit Renker 
729410e27a4SGerrit Renker 	if (unlikely(delta <= 0)) {
730410e27a4SGerrit Renker 		DCCP_WARN("unusable RTT sample %ld, using min\n", delta);
731410e27a4SGerrit Renker 		return DCCP_SANE_RTT_MIN;
732410e27a4SGerrit Renker 	}
733410e27a4SGerrit Renker 	if (unlikely(delta > DCCP_SANE_RTT_MAX)) {
734410e27a4SGerrit Renker 		DCCP_WARN("RTT sample %ld too large, using max\n", delta);
735410e27a4SGerrit Renker 		return DCCP_SANE_RTT_MAX;
736410e27a4SGerrit Renker 	}
737410e27a4SGerrit Renker 
738410e27a4SGerrit Renker 	return delta;
7394712a792SGerrit Renker }
740