1457c8996SThomas Gleixner // SPDX-License-Identifier: GPL-2.0-only
2a919525aSDavid Ahern #include <linux/netlink.h>
31d1d63b6SEric Dumazet #include <linux/nospec.h>
4a919525aSDavid Ahern #include <linux/rtnetlink.h>
5a919525aSDavid Ahern #include <linux/types.h>
6a919525aSDavid Ahern #include <net/ip.h>
7a919525aSDavid Ahern #include <net/net_namespace.h>
8a919525aSDavid Ahern #include <net/tcp.h>
9a919525aSDavid Ahern
ip_metrics_convert(struct nlattr * fc_mx,int fc_mx_len,u32 * metrics,struct netlink_ext_ack * extack)10*69f397e6SJason Xing static int ip_metrics_convert(struct nlattr *fc_mx,
11d7e774f3SDavid Ahern int fc_mx_len, u32 *metrics,
12d7e774f3SDavid Ahern struct netlink_ext_ack *extack)
13a919525aSDavid Ahern {
14a919525aSDavid Ahern bool ecn_ca = false;
15a919525aSDavid Ahern struct nlattr *nla;
16a919525aSDavid Ahern int remaining;
17a919525aSDavid Ahern
18a919525aSDavid Ahern nla_for_each_attr(nla, fc_mx, fc_mx_len, remaining) {
19a919525aSDavid Ahern int type = nla_type(nla);
20a919525aSDavid Ahern u32 val;
21a919525aSDavid Ahern
22a919525aSDavid Ahern if (!type)
23a919525aSDavid Ahern continue;
24d7e774f3SDavid Ahern if (type > RTAX_MAX) {
25d7e774f3SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid metric type");
26a919525aSDavid Ahern return -EINVAL;
27d7e774f3SDavid Ahern }
28a919525aSDavid Ahern
291d1d63b6SEric Dumazet type = array_index_nospec(type, RTAX_MAX + 1);
30a919525aSDavid Ahern if (type == RTAX_CC_ALGO) {
31a919525aSDavid Ahern char tmp[TCP_CA_NAME_MAX];
32a919525aSDavid Ahern
33872f6903SFrancis Laniel nla_strscpy(tmp, nla, sizeof(tmp));
34*69f397e6SJason Xing val = tcp_ca_get_key_by_name(tmp, &ecn_ca);
35d7e774f3SDavid Ahern if (val == TCP_CA_UNSPEC) {
36d7e774f3SDavid Ahern NL_SET_ERR_MSG(extack, "Unknown tcp congestion algorithm");
37a919525aSDavid Ahern return -EINVAL;
38d7e774f3SDavid Ahern }
39a919525aSDavid Ahern } else {
40d7e774f3SDavid Ahern if (nla_len(nla) != sizeof(u32)) {
41d7e774f3SDavid Ahern NL_SET_ERR_MSG_ATTR(extack, nla,
42d7e774f3SDavid Ahern "Invalid attribute in metrics");
435b5e7a0dSEric Dumazet return -EINVAL;
44d7e774f3SDavid Ahern }
45a919525aSDavid Ahern val = nla_get_u32(nla);
46a919525aSDavid Ahern }
47a919525aSDavid Ahern if (type == RTAX_ADVMSS && val > 65535 - 40)
48a919525aSDavid Ahern val = 65535 - 40;
49a919525aSDavid Ahern if (type == RTAX_MTU && val > 65535 - 15)
50a919525aSDavid Ahern val = 65535 - 15;
51a919525aSDavid Ahern if (type == RTAX_HOPLIMIT && val > 255)
52a919525aSDavid Ahern val = 255;
53d7e774f3SDavid Ahern if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK)) {
54d7e774f3SDavid Ahern NL_SET_ERR_MSG(extack, "Unknown flag set in feature mask in metrics attribute");
55a919525aSDavid Ahern return -EINVAL;
56d7e774f3SDavid Ahern }
57a919525aSDavid Ahern metrics[type - 1] = val;
58a919525aSDavid Ahern }
59a919525aSDavid Ahern
60a919525aSDavid Ahern if (ecn_ca)
61a919525aSDavid Ahern metrics[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA;
62a919525aSDavid Ahern
63a919525aSDavid Ahern return 0;
64a919525aSDavid Ahern }
65767a2217SDavid Ahern
ip_fib_metrics_init(struct nlattr * fc_mx,int fc_mx_len,struct netlink_ext_ack * extack)66*69f397e6SJason Xing struct dst_metrics *ip_fib_metrics_init(struct nlattr *fc_mx,
67d7e774f3SDavid Ahern int fc_mx_len,
68d7e774f3SDavid Ahern struct netlink_ext_ack *extack)
69767a2217SDavid Ahern {
70767a2217SDavid Ahern struct dst_metrics *fib_metrics;
71767a2217SDavid Ahern int err;
72767a2217SDavid Ahern
73767a2217SDavid Ahern if (!fc_mx)
74767a2217SDavid Ahern return (struct dst_metrics *)&dst_default_metrics;
75767a2217SDavid Ahern
76767a2217SDavid Ahern fib_metrics = kzalloc(sizeof(*fib_metrics), GFP_KERNEL);
77767a2217SDavid Ahern if (unlikely(!fib_metrics))
78767a2217SDavid Ahern return ERR_PTR(-ENOMEM);
79767a2217SDavid Ahern
80*69f397e6SJason Xing err = ip_metrics_convert(fc_mx, fc_mx_len, fib_metrics->metrics,
81d7e774f3SDavid Ahern extack);
82767a2217SDavid Ahern if (!err) {
83767a2217SDavid Ahern refcount_set(&fib_metrics->refcnt, 1);
84767a2217SDavid Ahern } else {
85767a2217SDavid Ahern kfree(fib_metrics);
86767a2217SDavid Ahern fib_metrics = ERR_PTR(err);
87767a2217SDavid Ahern }
88767a2217SDavid Ahern
89767a2217SDavid Ahern return fib_metrics;
90767a2217SDavid Ahern }
91767a2217SDavid Ahern EXPORT_SYMBOL_GPL(ip_fib_metrics_init);
92