11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 213f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 214f8a1b43bSDavid Ahern } 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 217f8a1b43bSDavid Ahern struct sk_buff *skb, 218f8a1b43bSDavid Ahern const void *daddr) 219f8a1b43bSDavid Ahern { 220f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 221f8a1b43bSDavid Ahern 222f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 223f83c7790SDavid S. Miller } 224f83c7790SDavid S. Miller 22563fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22663fca65dSJulian Anastasov { 22763fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22863fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22963fca65dSJulian Anastasov 230f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23163fca65dSJulian Anastasov if (!daddr) 23263fca65dSJulian Anastasov return; 23363fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23863fca65dSJulian Anastasov } 23963fca65dSJulian Anastasov 2409a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2411da177e4SLinus Torvalds .family = AF_INET6, 2421da177e4SLinus Torvalds .gc = ip6_dst_gc, 2431da177e4SLinus Torvalds .gc_thresh = 1024, 2441da177e4SLinus Torvalds .check = ip6_dst_check, 2450dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 246ebb762f2SSteffen Klassert .mtu = ip6_mtu, 247d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2481da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2491da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2501da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2511da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2521da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2536e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2549f8955ccSEric W. Biederman .local_out = __ip6_local_out, 255f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25663fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2571da177e4SLinus Torvalds }; 2581da177e4SLinus Torvalds 259ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 260ec831ea7SRoland Dreier { 261618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 262618f9bc7SSteffen Klassert 263618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 264ec831ea7SRoland Dreier } 265ec831ea7SRoland Dreier 2666700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2676700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26814e50e57SDavid S. Miller { 26914e50e57SDavid S. Miller } 27014e50e57SDavid S. Miller 2716700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2726700c270SDavid S. Miller struct sk_buff *skb) 273b587ee3bSDavid S. Miller { 274b587ee3bSDavid S. Miller } 275b587ee3bSDavid S. Miller 27614e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27714e50e57SDavid S. Miller .family = AF_INET6, 27814e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27914e50e57SDavid S. Miller .check = ip6_dst_check, 280ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 281214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28214e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 283b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2840a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 285f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28614e50e57SDavid S. Miller }; 28714e50e57SDavid S. Miller 28862fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28914edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29062fa8a84SDavid S. Miller }; 29162fa8a84SDavid S. Miller 2928d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29393c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29493c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29593c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29693c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 297421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 298421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 299421842edSDavid Ahern }; 300421842edSDavid Ahern 301fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3021da177e4SLinus Torvalds .dst = { 3031da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3041da177e4SLinus Torvalds .__use = 1, 3052c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3061da177e4SLinus Torvalds .error = -ENETUNREACH, 3071da177e4SLinus Torvalds .input = ip6_pkt_discard, 3081da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3091da177e4SLinus Torvalds }, 3101da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 325101367c2SThomas Graf }; 326101367c2SThomas Graf 327fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 328101367c2SThomas Graf .dst = { 329101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 330101367c2SThomas Graf .__use = 1, 3312c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 332101367c2SThomas Graf .error = -EINVAL, 333352e512cSHerbert Xu .input = dst_discard, 334ede2059dSEric W. Biederman .output = dst_discard_out, 335101367c2SThomas Graf }, 336101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 337101367c2SThomas Graf }; 338101367c2SThomas Graf 339101367c2SThomas Graf #endif 340101367c2SThomas Graf 341ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 342ebfa45f0SMartin KaFai Lau { 343ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 344ebfa45f0SMartin KaFai Lau 345ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 346ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 347ebfa45f0SMartin KaFai Lau } 348ebfa45f0SMartin KaFai Lau 3491da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35093531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 351ad706862SMartin KaFai Lau int flags) 3521da177e4SLinus Torvalds { 35397bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 354b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 355cf911662SDavid S. Miller 35681eb8447SWei Wang if (rt) { 357ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35981eb8447SWei Wang } 3608104891bSSteffen Klassert 361cf911662SDavid S. Miller return rt; 3621da177e4SLinus Torvalds } 3639ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 364d52d3997SMartin KaFai Lau 3651da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3661da177e4SLinus Torvalds { 367ce7ea4afSWei Wang struct dst_metrics *p = (struct dst_metrics *)DST_METRICS_PTR(dst); 3681da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 369a68886a6SDavid Ahern struct fib6_info *from; 3708d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3711da177e4SLinus Torvalds 372ce7ea4afSWei Wang if (p != &dst_default_metrics && refcount_dec_and_test(&p->refcnt)) 373ce7ea4afSWei Wang kfree(p); 374ce7ea4afSWei Wang 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 4313b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4328d1c802bSDavid Ahern struct fib6_info *match, 43352bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 434b75cc8f9SDavid Ahern const struct sk_buff *skb, 43552bd4c0cSNicolas Dichtel int strict) 43651ebd318SNicolas Dichtel { 4378d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43851ebd318SNicolas Dichtel 439b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 440b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 441b673d6ccSJakub Sitnicki */ 442b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 443b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 444b673d6ccSJakub Sitnicki 4455e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4463d709f69SIdo Schimmel return match; 447bbfcd776SIdo Schimmel 44893c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44993c2fb25SDavid Ahern fib6_siblings) { 4505e670d84SDavid Ahern int nh_upper_bound; 4515e670d84SDavid Ahern 4525e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4535e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4543d709f69SIdo Schimmel continue; 45552bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45652bd4c0cSNicolas Dichtel break; 45751ebd318SNicolas Dichtel match = sibling; 45851ebd318SNicolas Dichtel break; 45951ebd318SNicolas Dichtel } 4603d709f69SIdo Schimmel 46151ebd318SNicolas Dichtel return match; 46251ebd318SNicolas Dichtel } 46351ebd318SNicolas Dichtel 4641da177e4SLinus Torvalds /* 46566f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4661da177e4SLinus Torvalds */ 4671da177e4SLinus Torvalds 4688d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4698d1c802bSDavid Ahern struct fib6_info *rt, 470b71d1d42SEric Dumazet const struct in6_addr *saddr, 4711da177e4SLinus Torvalds int oif, 472d420895eSYOSHIFUJI Hideaki int flags) 4731da177e4SLinus Torvalds { 4748d1c802bSDavid Ahern struct fib6_info *sprt; 4751da177e4SLinus Torvalds 4765e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4775e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4788067bb8cSIdo Schimmel return rt; 479dd3abc4eSYOSHIFUJI Hideaki 4808fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 4815e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 482dd3abc4eSYOSHIFUJI Hideaki 4835e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4848067bb8cSIdo Schimmel continue; 4858067bb8cSIdo Schimmel 486dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4871da177e4SLinus Torvalds if (dev->ifindex == oif) 4881da177e4SLinus Torvalds return sprt; 489dd3abc4eSYOSHIFUJI Hideaki } else { 490dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 491dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 492dd3abc4eSYOSHIFUJI Hideaki return sprt; 493dd3abc4eSYOSHIFUJI Hideaki } 4941da177e4SLinus Torvalds } 4951da177e4SLinus Torvalds 496eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 497421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4981da177e4SLinus Torvalds 499421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5001da177e4SLinus Torvalds } 5011da177e4SLinus Torvalds 50227097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 503c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 504c2f17e82SHannes Frederic Sowa struct work_struct work; 505c2f17e82SHannes Frederic Sowa struct in6_addr target; 506c2f17e82SHannes Frederic Sowa struct net_device *dev; 507c2f17e82SHannes Frederic Sowa }; 508c2f17e82SHannes Frederic Sowa 509c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 510c2f17e82SHannes Frederic Sowa { 511c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 512c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 513c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 514c2f17e82SHannes Frederic Sowa 515c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 516adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 517c2f17e82SHannes Frederic Sowa dev_put(work->dev); 518662f5533SMichael Büsch kfree(work); 519c2f17e82SHannes Frederic Sowa } 520c2f17e82SHannes Frederic Sowa 5218d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 52227097255SYOSHIFUJI Hideaki { 523990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 5245e670d84SDavid Ahern const struct in6_addr *nh_gw; 525f2c31e32SEric Dumazet struct neighbour *neigh; 5265e670d84SDavid Ahern struct net_device *dev; 5275e670d84SDavid Ahern 52827097255SYOSHIFUJI Hideaki /* 52927097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 53027097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 53127097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53227097255SYOSHIFUJI Hideaki * 53327097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53427097255SYOSHIFUJI Hideaki * to no more than one per minute. 53527097255SYOSHIFUJI Hideaki */ 53693c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 537fdd6681dSAmerigo Wang return; 5385e670d84SDavid Ahern 5395e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5405e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5412152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5425e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5432152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 544dcd1f572SDavid Ahern struct inet6_dev *idev; 545dcd1f572SDavid Ahern 5468d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5478d6c31bfSMartin KaFai Lau goto out; 5488d6c31bfSMartin KaFai Lau 549dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 550990edb42SMartin KaFai Lau work = NULL; 5512152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 552990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 553990edb42SMartin KaFai Lau time_after(jiffies, 554dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 555c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 556990edb42SMartin KaFai Lau if (work) 5577e980569SJiri Benc __neigh_set_probe_once(neigh); 558990edb42SMartin KaFai Lau } 559c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 560990edb42SMartin KaFai Lau } else { 561990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 562990edb42SMartin KaFai Lau } 563c2f17e82SHannes Frederic Sowa 564c2f17e82SHannes Frederic Sowa if (work) { 565c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5665e670d84SDavid Ahern work->target = *nh_gw; 5675e670d84SDavid Ahern dev_hold(dev); 5685e670d84SDavid Ahern work->dev = dev; 569c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 570c2f17e82SHannes Frederic Sowa } 571990edb42SMartin KaFai Lau 5728d6c31bfSMartin KaFai Lau out: 5732152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 574f2c31e32SEric Dumazet } 57527097255SYOSHIFUJI Hideaki #else 5768d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57727097255SYOSHIFUJI Hideaki { 57827097255SYOSHIFUJI Hideaki } 57927097255SYOSHIFUJI Hideaki #endif 58027097255SYOSHIFUJI Hideaki 5811da177e4SLinus Torvalds /* 582554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5831da177e4SLinus Torvalds */ 5848d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5851da177e4SLinus Torvalds { 5865e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5875e670d84SDavid Ahern 588161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 589554cfb7eSYOSHIFUJI Hideaki return 2; 590554cfb7eSYOSHIFUJI Hideaki return 0; 5911da177e4SLinus Torvalds } 5921da177e4SLinus Torvalds 5938d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5941da177e4SLinus Torvalds { 595afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5965e670d84SDavid Ahern struct neighbour *neigh; 597f2c31e32SEric Dumazet 59893c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 59993c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 600afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 601145a3621SYOSHIFUJI Hideaki / 吉藤英明 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6035e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 6045e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 605145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 606145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 607554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 609398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 610a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 611afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6127e980569SJiri Benc else 6137e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 614398bcbebSYOSHIFUJI Hideaki #endif 615145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 616afc154e9SHannes Frederic Sowa } else { 617afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6187e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 619a5a81f0bSPaul Marks } 620145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 621145a3621SYOSHIFUJI Hideaki / 吉藤英明 622a5a81f0bSPaul Marks return ret; 6231da177e4SLinus Torvalds } 6241da177e4SLinus Torvalds 6258d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 626554cfb7eSYOSHIFUJI Hideaki { 627a5a81f0bSPaul Marks int m; 6284d0c5911SYOSHIFUJI Hideaki 6294d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 63077d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 631afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 632ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 63393c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 634ebacaaa0SYOSHIFUJI Hideaki #endif 635afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 636afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 637afc154e9SHannes Frederic Sowa if (n < 0) 638afc154e9SHannes Frederic Sowa return n; 639afc154e9SHannes Frederic Sowa } 640554cfb7eSYOSHIFUJI Hideaki return m; 641554cfb7eSYOSHIFUJI Hideaki } 642554cfb7eSYOSHIFUJI Hideaki 643dcd1f572SDavid Ahern /* called with rc_read_lock held */ 644dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 645dcd1f572SDavid Ahern { 646dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 647dcd1f572SDavid Ahern bool rc = false; 648dcd1f572SDavid Ahern 649dcd1f572SDavid Ahern if (dev) { 650dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 651dcd1f572SDavid Ahern 652dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 653dcd1f572SDavid Ahern } 654dcd1f572SDavid Ahern 655dcd1f572SDavid Ahern return rc; 656dcd1f572SDavid Ahern } 657dcd1f572SDavid Ahern 6588d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6598d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 660afc154e9SHannes Frederic Sowa bool *do_rr) 661554cfb7eSYOSHIFUJI Hideaki { 662554cfb7eSYOSHIFUJI Hideaki int m; 663afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66435103d11SAndy Gospodarek 6655e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6668067bb8cSIdo Schimmel goto out; 6678067bb8cSIdo Schimmel 668dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6695e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 670d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 67135103d11SAndy Gospodarek goto out; 672554cfb7eSYOSHIFUJI Hideaki 67314895687SDavid Ahern if (fib6_check_expired(rt)) 674f11e6659SDavid S. Miller goto out; 675554cfb7eSYOSHIFUJI Hideaki 676554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6777e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 678afc154e9SHannes Frederic Sowa match_do_rr = true; 679afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6807e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 681f11e6659SDavid S. Miller goto out; 6821da177e4SLinus Torvalds } 683f11e6659SDavid S. Miller 684afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 685afc154e9SHannes Frederic Sowa rt6_probe(rt); 686afc154e9SHannes Frederic Sowa 6877e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 688afc154e9SHannes Frederic Sowa if (m > *mpri) { 689afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 690afc154e9SHannes Frederic Sowa *mpri = m; 691afc154e9SHannes Frederic Sowa match = rt; 692afc154e9SHannes Frederic Sowa } 693f11e6659SDavid S. Miller out: 694f11e6659SDavid S. Miller return match; 6951da177e4SLinus Torvalds } 6961da177e4SLinus Torvalds 6978d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6988d1c802bSDavid Ahern struct fib6_info *leaf, 6998d1c802bSDavid Ahern struct fib6_info *rr_head, 700afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 701afc154e9SHannes Frederic Sowa bool *do_rr) 702f11e6659SDavid S. Miller { 7038d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 704f11e6659SDavid S. Miller int mpri = -1; 705f11e6659SDavid S. Miller 706f11e6659SDavid S. Miller match = NULL; 7079fbdcfafSSteffen Klassert cont = NULL; 7088fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 70993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7109fbdcfafSSteffen Klassert cont = rt; 7119fbdcfafSSteffen Klassert break; 7129fbdcfafSSteffen Klassert } 7139fbdcfafSSteffen Klassert 714afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7159fbdcfafSSteffen Klassert } 7169fbdcfafSSteffen Klassert 71766f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7188fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 71993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7209fbdcfafSSteffen Klassert cont = rt; 7219fbdcfafSSteffen Klassert break; 7229fbdcfafSSteffen Klassert } 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7259fbdcfafSSteffen Klassert } 7269fbdcfafSSteffen Klassert 7279fbdcfafSSteffen Klassert if (match || !cont) 7289fbdcfafSSteffen Klassert return match; 7299fbdcfafSSteffen Klassert 7308fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 731afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 732f11e6659SDavid S. Miller 733f11e6659SDavid S. Miller return match; 734f11e6659SDavid S. Miller } 735f11e6659SDavid S. Miller 7368d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7378d1040e8SWei Wang int oif, int strict) 738f11e6659SDavid S. Miller { 7398d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7408d1c802bSDavid Ahern struct fib6_info *match, *rt0; 741afc154e9SHannes Frederic Sowa bool do_rr = false; 74217ecf590SWei Wang int key_plen; 743f11e6659SDavid S. Miller 744421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 745421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7468d1040e8SWei Wang 74766f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 748f11e6659SDavid S. Miller if (!rt0) 74966f5d6ceSWei Wang rt0 = leaf; 750f11e6659SDavid S. Miller 75117ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 75217ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75317ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75417ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75517ecf590SWei Wang */ 75693c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75717ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75893c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75993c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 76017ecf590SWei Wang #endif 76117ecf590SWei Wang if (fn->fn_bit != key_plen) 762421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76317ecf590SWei Wang 76493c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 765afc154e9SHannes Frederic Sowa &do_rr); 766f11e6659SDavid S. Miller 767afc154e9SHannes Frederic Sowa if (do_rr) { 7688fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 769f11e6659SDavid S. Miller 770554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 77193c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7728d1040e8SWei Wang next = leaf; 773f11e6659SDavid S. Miller 77466f5d6ceSWei Wang if (next != rt0) { 77593c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77666f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77793c2fb25SDavid Ahern if (next->fib6_node) 77866f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77993c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 78066f5d6ceSWei Wang } 781554cfb7eSYOSHIFUJI Hideaki } 782554cfb7eSYOSHIFUJI Hideaki 783421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7841da177e4SLinus Torvalds } 7851da177e4SLinus Torvalds 7868d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7878b9df265SMartin KaFai Lau { 78893c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7898b9df265SMartin KaFai Lau } 7908b9df265SMartin KaFai Lau 79170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 79270ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 793b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79470ceb4f5SYOSHIFUJI Hideaki { 795c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79670ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79770ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79870ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7994bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 8008d1c802bSDavid Ahern struct fib6_info *rt; 80170ceb4f5SYOSHIFUJI Hideaki 80270ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80470ceb4f5SYOSHIFUJI Hideaki } 80570ceb4f5SYOSHIFUJI Hideaki 80670ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80970ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 81270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81470ceb4f5SYOSHIFUJI Hideaki } 81570ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81670ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81870ceb4f5SYOSHIFUJI Hideaki } 81970ceb4f5SYOSHIFUJI Hideaki } 82070ceb4f5SYOSHIFUJI Hideaki 82170ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 82270ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8233933fc95SJens Rosenboom return -EINVAL; 82470ceb4f5SYOSHIFUJI Hideaki 8254bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82670ceb4f5SYOSHIFUJI Hideaki 82770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82870ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82970ceb4f5SYOSHIFUJI Hideaki else { 83070ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 83170ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 83270ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83370ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83470ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83570ceb4f5SYOSHIFUJI Hideaki } 83670ceb4f5SYOSHIFUJI Hideaki 837f104a567SDuan Jiong if (rinfo->prefix_len == 0) 838afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 839f104a567SDuan Jiong else 840f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 841830218c1SDavid Ahern gwaddr, dev); 84270ceb4f5SYOSHIFUJI Hideaki 84370ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 844afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84570ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84670ceb4f5SYOSHIFUJI Hideaki } 84770ceb4f5SYOSHIFUJI Hideaki 84870ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 849830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 850830218c1SDavid Ahern dev, pref); 85170ceb4f5SYOSHIFUJI Hideaki else if (rt) 85293c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85393c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85470ceb4f5SYOSHIFUJI Hideaki 85570ceb4f5SYOSHIFUJI Hideaki if (rt) { 8561716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85714895687SDavid Ahern fib6_clean_expires(rt); 8581716a961SGao feng else 85914895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8601716a961SGao feng 86193531c67SDavid Ahern fib6_info_release(rt); 86270ceb4f5SYOSHIFUJI Hideaki } 86370ceb4f5SYOSHIFUJI Hideaki return 0; 86470ceb4f5SYOSHIFUJI Hideaki } 86570ceb4f5SYOSHIFUJI Hideaki #endif 86670ceb4f5SYOSHIFUJI Hideaki 867ae90d867SDavid Ahern /* 868ae90d867SDavid Ahern * Misc support functions 869ae90d867SDavid Ahern */ 870ae90d867SDavid Ahern 871ae90d867SDavid Ahern /* called with rcu_lock held */ 8728d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 873ae90d867SDavid Ahern { 8745e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 875ae90d867SDavid Ahern 87693c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 877ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 878ae90d867SDavid Ahern * device if it is a master device, the master device if 879ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 880ae90d867SDavid Ahern */ 881ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 88293c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 883ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 884ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 885ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 886ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 887ae90d867SDavid Ahern * case we want dev returned to be dev 888ae90d867SDavid Ahern */ 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 891ae90d867SDavid Ahern return dev; 892ae90d867SDavid Ahern } 893ae90d867SDavid Ahern 8946edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8956edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8966edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8976edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8986edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8996edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 9006edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 9016edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 9026edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9036edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9046edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9056edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9066edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9076edb3c96SDavid Ahern }; 9086edb3c96SDavid Ahern 9096edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9106edb3c96SDavid Ahern { 9116edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9126edb3c96SDavid Ahern } 9136edb3c96SDavid Ahern 9148d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9153b6761d1SDavid Ahern { 9163b6761d1SDavid Ahern unsigned short flags = 0; 9173b6761d1SDavid Ahern 9183b6761d1SDavid Ahern if (rt->dst_nocount) 9193b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9203b6761d1SDavid Ahern if (rt->dst_nopolicy) 9213b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9223b6761d1SDavid Ahern if (rt->dst_host) 9233b6761d1SDavid Ahern flags |= DST_HOST; 9243b6761d1SDavid Ahern 9253b6761d1SDavid Ahern return flags; 9263b6761d1SDavid Ahern } 9273b6761d1SDavid Ahern 9288d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9296edb3c96SDavid Ahern { 9306edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9316edb3c96SDavid Ahern 9326edb3c96SDavid Ahern switch (ort->fib6_type) { 9336edb3c96SDavid Ahern case RTN_BLACKHOLE: 9346edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9356edb3c96SDavid Ahern rt->dst.input = dst_discard; 9366edb3c96SDavid Ahern break; 9376edb3c96SDavid Ahern case RTN_PROHIBIT: 9386edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9396edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9406edb3c96SDavid Ahern break; 9416edb3c96SDavid Ahern case RTN_THROW: 9426edb3c96SDavid Ahern case RTN_UNREACHABLE: 9436edb3c96SDavid Ahern default: 9446edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9456edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9466edb3c96SDavid Ahern break; 9476edb3c96SDavid Ahern } 9486edb3c96SDavid Ahern } 9496edb3c96SDavid Ahern 9508d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9516edb3c96SDavid Ahern { 95293c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9536edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9546edb3c96SDavid Ahern return; 9556edb3c96SDavid Ahern } 9566edb3c96SDavid Ahern 9576edb3c96SDavid Ahern rt->dst.error = 0; 9586edb3c96SDavid Ahern rt->dst.output = ip6_output; 9596edb3c96SDavid Ahern 960d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9616edb3c96SDavid Ahern rt->dst.input = ip6_input; 96293c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9636edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9646edb3c96SDavid Ahern } else { 9656edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9666edb3c96SDavid Ahern } 9676edb3c96SDavid Ahern 9686edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9696edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9706edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 9736edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9746edb3c96SDavid Ahern } 9756edb3c96SDavid Ahern 976e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9778d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 978ae90d867SDavid Ahern { 979ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 980a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 981d4ead6b3SDavid Ahern dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true); 98286758605SWei Wang if (from->fib6_metrics != &dst_default_metrics) { 98386758605SWei Wang rt->dst._metrics |= DST_METRICS_REFCOUNTED; 98486758605SWei Wang refcount_inc(&from->fib6_metrics->refcnt); 98586758605SWei Wang } 986ae90d867SDavid Ahern } 987ae90d867SDavid Ahern 988e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9898d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 990ae90d867SDavid Ahern { 991dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 992dcd1f572SDavid Ahern 9936edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9946edb3c96SDavid Ahern 99593c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 996dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9975e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 99893c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 999ae90d867SDavid Ahern rt6_set_from(rt, ort); 1000ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 100193c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 1002ae90d867SDavid Ahern #endif 1003ae90d867SDavid Ahern } 1004ae90d867SDavid Ahern 1005a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1006a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1007a3c00e46SMartin KaFai Lau { 100866f5d6ceSWei Wang struct fib6_node *pn, *sn; 1009a3c00e46SMartin KaFai Lau while (1) { 1010a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1011a3c00e46SMartin KaFai Lau return NULL; 101266f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 101366f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 101466f5d6ceSWei Wang if (sn && sn != fn) 10156454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1016a3c00e46SMartin KaFai Lau else 1017a3c00e46SMartin KaFai Lau fn = pn; 1018a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1019a3c00e46SMartin KaFai Lau return fn; 1020a3c00e46SMartin KaFai Lau } 1021a3c00e46SMartin KaFai Lau } 1022c71099acSThomas Graf 1023d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1024d3843fe5SWei Wang bool null_fallback) 1025d3843fe5SWei Wang { 1026d3843fe5SWei Wang struct rt6_info *rt = *prt; 1027d3843fe5SWei Wang 1028d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1029d3843fe5SWei Wang return true; 1030d3843fe5SWei Wang if (null_fallback) { 1031d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1032d3843fe5SWei Wang dst_hold(&rt->dst); 1033d3843fe5SWei Wang } else { 1034d3843fe5SWei Wang rt = NULL; 1035d3843fe5SWei Wang } 1036d3843fe5SWei Wang *prt = rt; 1037d3843fe5SWei Wang return false; 1038d3843fe5SWei Wang } 1039d3843fe5SWei Wang 1040dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10418d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1042dec9b0e2SDavid Ahern { 10433b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1044dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1045dec9b0e2SDavid Ahern struct rt6_info *nrt; 1046dec9b0e2SDavid Ahern 1047e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1048e873e4b9SWei Wang return NULL; 1049e873e4b9SWei Wang 105093531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1051dec9b0e2SDavid Ahern if (nrt) 1052dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1053e873e4b9SWei Wang else 1054e873e4b9SWei Wang fib6_info_release(rt); 1055dec9b0e2SDavid Ahern 1056dec9b0e2SDavid Ahern return nrt; 1057dec9b0e2SDavid Ahern } 1058dec9b0e2SDavid Ahern 10598ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10608ed67789SDaniel Lezcano struct fib6_table *table, 1061b75cc8f9SDavid Ahern struct flowi6 *fl6, 1062b75cc8f9SDavid Ahern const struct sk_buff *skb, 1063b75cc8f9SDavid Ahern int flags) 10641da177e4SLinus Torvalds { 10658d1c802bSDavid Ahern struct fib6_info *f6i; 10661da177e4SLinus Torvalds struct fib6_node *fn; 106723fb93a4SDavid Ahern struct rt6_info *rt; 10681da177e4SLinus Torvalds 1069b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1070b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1071b6cdbc85SDavid Ahern 107266f5d6ceSWei Wang rcu_read_lock(); 10736454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1074c71099acSThomas Graf restart: 107523fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 107623fb93a4SDavid Ahern if (!f6i) { 107723fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 107866f5d6ceSWei Wang } else { 107923fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 108066f5d6ceSWei Wang fl6->flowi6_oif, flags); 108193c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10823b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10833b290a31SDavid Ahern fl6->flowi6_oif, skb, 10843b290a31SDavid Ahern flags); 108566f5d6ceSWei Wang } 108623fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1087a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1088a3c00e46SMartin KaFai Lau if (fn) 1089a3c00e46SMartin KaFai Lau goto restart; 1090a3c00e46SMartin KaFai Lau } 10912b760fcfSWei Wang 1092d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1093d4bea421SDavid Ahern 10944c9483b2SDavid S. Miller /* Search through exception table */ 109523fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 109623fb93a4SDavid Ahern if (rt) { 1097d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1098d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 109923fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1100dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1101dec9b0e2SDavid Ahern dst_hold(&rt->dst); 110223fb93a4SDavid Ahern } else { 110323fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 110423fb93a4SDavid Ahern if (!rt) { 110523fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 110623fb93a4SDavid Ahern dst_hold(&rt->dst); 110723fb93a4SDavid Ahern } 1108dec9b0e2SDavid Ahern } 1109d3843fe5SWei Wang 111066f5d6ceSWei Wang rcu_read_unlock(); 1111b811580dSDavid Ahern 11121da177e4SLinus Torvalds return rt; 1113c71099acSThomas Graf } 1114c71099acSThomas Graf 1115ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1116b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1117ea6e574eSFlorian Westphal { 1118b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1119ea6e574eSFlorian Westphal } 1120ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1121ea6e574eSFlorian Westphal 11229acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1123b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1124b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1125c71099acSThomas Graf { 11264c9483b2SDavid S. Miller struct flowi6 fl6 = { 11274c9483b2SDavid S. Miller .flowi6_oif = oif, 11284c9483b2SDavid S. Miller .daddr = *daddr, 1129c71099acSThomas Graf }; 1130c71099acSThomas Graf struct dst_entry *dst; 113177d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1132c71099acSThomas Graf 1133adaa70bbSThomas Graf if (saddr) { 11344c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1135adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1136adaa70bbSThomas Graf } 1137adaa70bbSThomas Graf 1138b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1139c71099acSThomas Graf if (dst->error == 0) 1140c71099acSThomas Graf return (struct rt6_info *) dst; 1141c71099acSThomas Graf 1142c71099acSThomas Graf dst_release(dst); 1143c71099acSThomas Graf 11441da177e4SLinus Torvalds return NULL; 11451da177e4SLinus Torvalds } 11467159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11477159039aSYOSHIFUJI Hideaki 1148c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11491cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11501cfb71eeSWei Wang * route is released. 11511cfb71eeSWei Wang * Caller must hold dst before calling it. 11521da177e4SLinus Torvalds */ 11531da177e4SLinus Torvalds 11548d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1155333c4301SDavid Ahern struct netlink_ext_ack *extack) 11561da177e4SLinus Torvalds { 11571da177e4SLinus Torvalds int err; 1158c71099acSThomas Graf struct fib6_table *table; 11591da177e4SLinus Torvalds 116093c2fb25SDavid Ahern table = rt->fib6_table; 116166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1162d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 116366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11641da177e4SLinus Torvalds 11651da177e4SLinus Torvalds return err; 11661da177e4SLinus Torvalds } 11671da177e4SLinus Torvalds 11688d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 116940e22e8fSThomas Graf { 1170afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1171e715b6d3SFlorian Westphal 1172d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 117340e22e8fSThomas Graf } 117440e22e8fSThomas Graf 11758d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 117621efcfa0SEric Dumazet const struct in6_addr *daddr, 1177b71d1d42SEric Dumazet const struct in6_addr *saddr) 11781da177e4SLinus Torvalds { 11794832c30dSDavid Ahern struct net_device *dev; 11801da177e4SLinus Torvalds struct rt6_info *rt; 11811da177e4SLinus Torvalds 11821da177e4SLinus Torvalds /* 11831da177e4SLinus Torvalds * Clone the route. 11841da177e4SLinus Torvalds */ 11851da177e4SLinus Torvalds 1186e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1187e873e4b9SWei Wang return NULL; 1188e873e4b9SWei Wang 11894832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 119093531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1191e873e4b9SWei Wang if (!rt) { 1192e873e4b9SWei Wang fib6_info_release(ort); 119383a09abdSMartin KaFai Lau return NULL; 1194e873e4b9SWei Wang } 119583a09abdSMartin KaFai Lau 119683a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11978b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119883a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 119983a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 120083a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 12018b9df265SMartin KaFai Lau 12028b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 120393c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 120493c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 120558c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12061da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12071da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12084e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12091da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12101da177e4SLinus Torvalds } 12111da177e4SLinus Torvalds #endif 121295a9a5baSYOSHIFUJI Hideaki } 121395a9a5baSYOSHIFUJI Hideaki 1214299d9939SYOSHIFUJI Hideaki return rt; 1215299d9939SYOSHIFUJI Hideaki } 1216299d9939SYOSHIFUJI Hideaki 12178d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1218d52d3997SMartin KaFai Lau { 12193b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12204832c30dSDavid Ahern struct net_device *dev; 1221d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1222d52d3997SMartin KaFai Lau 1223e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1224e873e4b9SWei Wang return NULL; 1225e873e4b9SWei Wang 12264832c30dSDavid Ahern rcu_read_lock(); 12274832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122893531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12294832c30dSDavid Ahern rcu_read_unlock(); 1230e873e4b9SWei Wang if (!pcpu_rt) { 1231e873e4b9SWei Wang fib6_info_release(rt); 1232d52d3997SMartin KaFai Lau return NULL; 1233e873e4b9SWei Wang } 1234d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1235d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1236d52d3997SMartin KaFai Lau return pcpu_rt; 1237d52d3997SMartin KaFai Lau } 1238d52d3997SMartin KaFai Lau 123966f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12408d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1241d52d3997SMartin KaFai Lau { 1242a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1243d52d3997SMartin KaFai Lau 1244d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1245d52d3997SMartin KaFai Lau pcpu_rt = *p; 1246d52d3997SMartin KaFai Lau 1247d4ead6b3SDavid Ahern if (pcpu_rt) 1248d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1249d3843fe5SWei Wang 1250a73e4195SMartin KaFai Lau return pcpu_rt; 1251a73e4195SMartin KaFai Lau } 1252a73e4195SMartin KaFai Lau 1253afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12548d1c802bSDavid Ahern struct fib6_info *rt) 1255a73e4195SMartin KaFai Lau { 1256a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1257d52d3997SMartin KaFai Lau 1258d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1259d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12609c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12619c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1262d52d3997SMartin KaFai Lau } 1263d52d3997SMartin KaFai Lau 1264a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1265a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1266d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1267951f788aSEric Dumazet BUG_ON(prev); 1268a94b9367SWei Wang 1269d52d3997SMartin KaFai Lau return pcpu_rt; 1270d52d3997SMartin KaFai Lau } 1271d52d3997SMartin KaFai Lau 127235732d01SWei Wang /* exception hash table implementation 127335732d01SWei Wang */ 127435732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 127535732d01SWei Wang 127635732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127735732d01SWei Wang * Caller must hold rt6_exception_lock 127835732d01SWei Wang */ 127935732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 128035732d01SWei Wang struct rt6_exception *rt6_ex) 128135732d01SWei Wang { 1282b2427e67SColin Ian King struct net *net; 128381eb8447SWei Wang 128435732d01SWei Wang if (!bucket || !rt6_ex) 128535732d01SWei Wang return; 1286b2427e67SColin Ian King 1287b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 128835732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128977634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 129035732d01SWei Wang kfree_rcu(rt6_ex, rcu); 129135732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 129235732d01SWei Wang bucket->depth--; 129381eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 129435732d01SWei Wang } 129535732d01SWei Wang 129635732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129735732d01SWei Wang * Caller must hold rt6_exception_lock 129835732d01SWei Wang */ 129935732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 130035732d01SWei Wang { 130135732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 130235732d01SWei Wang 130335732d01SWei Wang if (!bucket) 130435732d01SWei Wang return; 130535732d01SWei Wang 130635732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130735732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130835732d01SWei Wang oldest = rt6_ex; 130935732d01SWei Wang } 131035732d01SWei Wang rt6_remove_exception(bucket, oldest); 131135732d01SWei Wang } 131235732d01SWei Wang 131335732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 131435732d01SWei Wang const struct in6_addr *src) 131535732d01SWei Wang { 131635732d01SWei Wang static u32 seed __read_mostly; 131735732d01SWei Wang u32 val; 131835732d01SWei Wang 131935732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 132035732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 132135732d01SWei Wang 132235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 132335732d01SWei Wang if (src) 132435732d01SWei Wang val = jhash(src, sizeof(*src), val); 132535732d01SWei Wang #endif 132635732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132735732d01SWei Wang } 132835732d01SWei Wang 132935732d01SWei Wang /* Helper function to find the cached rt in the hash table 133035732d01SWei Wang * and update bucket pointer to point to the bucket for this 133135732d01SWei Wang * (daddr, saddr) pair 133235732d01SWei Wang * Caller must hold rt6_exception_lock 133335732d01SWei Wang */ 133435732d01SWei Wang static struct rt6_exception * 133535732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 133635732d01SWei Wang const struct in6_addr *daddr, 133735732d01SWei Wang const struct in6_addr *saddr) 133835732d01SWei Wang { 133935732d01SWei Wang struct rt6_exception *rt6_ex; 134035732d01SWei Wang u32 hval; 134135732d01SWei Wang 134235732d01SWei Wang if (!(*bucket) || !daddr) 134335732d01SWei Wang return NULL; 134435732d01SWei Wang 134535732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 134635732d01SWei Wang *bucket += hval; 134735732d01SWei Wang 134835732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134935732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 135035732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 135135732d01SWei Wang 135235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 135335732d01SWei Wang if (matched && saddr) 135435732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 135535732d01SWei Wang #endif 135635732d01SWei Wang if (matched) 135735732d01SWei Wang return rt6_ex; 135835732d01SWei Wang } 135935732d01SWei Wang return NULL; 136035732d01SWei Wang } 136135732d01SWei Wang 136235732d01SWei Wang /* Helper function to find the cached rt in the hash table 136335732d01SWei Wang * and update bucket pointer to point to the bucket for this 136435732d01SWei Wang * (daddr, saddr) pair 136535732d01SWei Wang * Caller must hold rcu_read_lock() 136635732d01SWei Wang */ 136735732d01SWei Wang static struct rt6_exception * 136835732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136935732d01SWei Wang const struct in6_addr *daddr, 137035732d01SWei Wang const struct in6_addr *saddr) 137135732d01SWei Wang { 137235732d01SWei Wang struct rt6_exception *rt6_ex; 137335732d01SWei Wang u32 hval; 137435732d01SWei Wang 137535732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 137635732d01SWei Wang 137735732d01SWei Wang if (!(*bucket) || !daddr) 137835732d01SWei Wang return NULL; 137935732d01SWei Wang 138035732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 138135732d01SWei Wang *bucket += hval; 138235732d01SWei Wang 138335732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 138435732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138535732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138635732d01SWei Wang 138735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138835732d01SWei Wang if (matched && saddr) 138935732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 139035732d01SWei Wang #endif 139135732d01SWei Wang if (matched) 139235732d01SWei Wang return rt6_ex; 139335732d01SWei Wang } 139435732d01SWei Wang return NULL; 139535732d01SWei Wang } 139635732d01SWei Wang 13978d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139835732d01SWei Wang { 1399d4ead6b3SDavid Ahern unsigned int mtu; 1400d4ead6b3SDavid Ahern 1401dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1402dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1403dcd1f572SDavid Ahern } else { 1404dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1405dcd1f572SDavid Ahern struct inet6_dev *idev; 1406dcd1f572SDavid Ahern 1407dcd1f572SDavid Ahern rcu_read_lock(); 1408dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1409dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1410dcd1f572SDavid Ahern rcu_read_unlock(); 1411dcd1f572SDavid Ahern } 1412dcd1f572SDavid Ahern 1413d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1414d4ead6b3SDavid Ahern 1415d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1416d4ead6b3SDavid Ahern } 1417d4ead6b3SDavid Ahern 141835732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14198d1c802bSDavid Ahern struct fib6_info *ort) 142035732d01SWei Wang { 14215e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 142235732d01SWei Wang struct rt6_exception_bucket *bucket; 142335732d01SWei Wang struct in6_addr *src_key = NULL; 142435732d01SWei Wang struct rt6_exception *rt6_ex; 142535732d01SWei Wang int err = 0; 142635732d01SWei Wang 142735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142835732d01SWei Wang 142935732d01SWei Wang if (ort->exception_bucket_flushed) { 143035732d01SWei Wang err = -EINVAL; 143135732d01SWei Wang goto out; 143235732d01SWei Wang } 143335732d01SWei Wang 143435732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 143535732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143635732d01SWei Wang if (!bucket) { 143735732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143835732d01SWei Wang GFP_ATOMIC); 143935732d01SWei Wang if (!bucket) { 144035732d01SWei Wang err = -ENOMEM; 144135732d01SWei Wang goto out; 144235732d01SWei Wang } 144335732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 144435732d01SWei Wang } 144535732d01SWei Wang 144635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144735732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144835732d01SWei Wang * and exception table is indexed by a hash of 144935732d01SWei Wang * both rt6i_dst and rt6i_src. 145035732d01SWei Wang * Otherwise, the exception table is indexed by 145135732d01SWei Wang * a hash of only rt6i_dst. 145235732d01SWei Wang */ 145393c2fb25SDavid Ahern if (ort->fib6_src.plen) 145435732d01SWei Wang src_key = &nrt->rt6i_src.addr; 145535732d01SWei Wang #endif 1456f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1457f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1458f5bbe7eeSWei Wang * is less than ort's mtu value. 1459f5bbe7eeSWei Wang */ 1460d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1461f5bbe7eeSWei Wang err = -EINVAL; 1462f5bbe7eeSWei Wang goto out; 1463f5bbe7eeSWei Wang } 146460006a48SWei Wang 146535732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 146635732d01SWei Wang src_key); 146735732d01SWei Wang if (rt6_ex) 146835732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 146935732d01SWei Wang 147035732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 147135732d01SWei Wang if (!rt6_ex) { 147235732d01SWei Wang err = -ENOMEM; 147335732d01SWei Wang goto out; 147435732d01SWei Wang } 147535732d01SWei Wang rt6_ex->rt6i = nrt; 147635732d01SWei Wang rt6_ex->stamp = jiffies; 147735732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 147835732d01SWei Wang bucket->depth++; 147981eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 148035732d01SWei Wang 148135732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 148235732d01SWei Wang rt6_exception_remove_oldest(bucket); 148335732d01SWei Wang 148435732d01SWei Wang out: 148535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 148635732d01SWei Wang 148735732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1488b886d5f2SPaolo Abeni if (!err) { 148993c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14907aef6859SDavid Ahern fib6_update_sernum(net, ort); 149193c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1492b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1493b886d5f2SPaolo Abeni } 149435732d01SWei Wang 149535732d01SWei Wang return err; 149635732d01SWei Wang } 149735732d01SWei Wang 14988d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 149935732d01SWei Wang { 150035732d01SWei Wang struct rt6_exception_bucket *bucket; 150135732d01SWei Wang struct rt6_exception *rt6_ex; 150235732d01SWei Wang struct hlist_node *tmp; 150335732d01SWei Wang int i; 150435732d01SWei Wang 150535732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 150635732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150735732d01SWei Wang rt->exception_bucket_flushed = 1; 150835732d01SWei Wang 150935732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 151035732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 151135732d01SWei Wang if (!bucket) 151235732d01SWei Wang goto out; 151335732d01SWei Wang 151435732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 151535732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 151635732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151735732d01SWei Wang WARN_ON_ONCE(bucket->depth); 151835732d01SWei Wang bucket++; 151935732d01SWei Wang } 152035732d01SWei Wang 152135732d01SWei Wang out: 152235732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 152335732d01SWei Wang } 152435732d01SWei Wang 152535732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 152635732d01SWei Wang * Caller has to hold rcu_read_lock() 152735732d01SWei Wang */ 15288d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 152935732d01SWei Wang struct in6_addr *daddr, 153035732d01SWei Wang struct in6_addr *saddr) 153135732d01SWei Wang { 153235732d01SWei Wang struct rt6_exception_bucket *bucket; 153335732d01SWei Wang struct in6_addr *src_key = NULL; 153435732d01SWei Wang struct rt6_exception *rt6_ex; 153535732d01SWei Wang struct rt6_info *res = NULL; 153635732d01SWei Wang 153735732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 153835732d01SWei Wang 153935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 154035732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 154135732d01SWei Wang * and exception table is indexed by a hash of 154235732d01SWei Wang * both rt6i_dst and rt6i_src. 154335732d01SWei Wang * Otherwise, the exception table is indexed by 154435732d01SWei Wang * a hash of only rt6i_dst. 154535732d01SWei Wang */ 154693c2fb25SDavid Ahern if (rt->fib6_src.plen) 154735732d01SWei Wang src_key = saddr; 154835732d01SWei Wang #endif 154935732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 155035732d01SWei Wang 155135732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 155235732d01SWei Wang res = rt6_ex->rt6i; 155335732d01SWei Wang 155435732d01SWei Wang return res; 155535732d01SWei Wang } 155635732d01SWei Wang 155735732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 155823fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 155935732d01SWei Wang { 156035732d01SWei Wang struct rt6_exception_bucket *bucket; 156135732d01SWei Wang struct in6_addr *src_key = NULL; 156235732d01SWei Wang struct rt6_exception *rt6_ex; 15638a14e46fSDavid Ahern struct fib6_info *from; 156435732d01SWei Wang int err; 156535732d01SWei Wang 1566091311deSEric Dumazet from = rcu_dereference(rt->from); 156735732d01SWei Wang if (!from || 1568442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 156935732d01SWei Wang return -EINVAL; 157035732d01SWei Wang 157135732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 157235732d01SWei Wang return -ENOENT; 157335732d01SWei Wang 157435732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 157535732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 157635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 157835732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 157935732d01SWei Wang * and exception table is indexed by a hash of 158035732d01SWei Wang * both rt6i_dst and rt6i_src. 158135732d01SWei Wang * Otherwise, the exception table is indexed by 158235732d01SWei Wang * a hash of only rt6i_dst. 158335732d01SWei Wang */ 158493c2fb25SDavid Ahern if (from->fib6_src.plen) 158535732d01SWei Wang src_key = &rt->rt6i_src.addr; 158635732d01SWei Wang #endif 158735732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 158835732d01SWei Wang &rt->rt6i_dst.addr, 158935732d01SWei Wang src_key); 159035732d01SWei Wang if (rt6_ex) { 159135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 159235732d01SWei Wang err = 0; 159335732d01SWei Wang } else { 159435732d01SWei Wang err = -ENOENT; 159535732d01SWei Wang } 159635732d01SWei Wang 159735732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 159835732d01SWei Wang return err; 159935732d01SWei Wang } 160035732d01SWei Wang 160135732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 160235732d01SWei Wang * refresh its stamp 160335732d01SWei Wang */ 160435732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 160535732d01SWei Wang { 160635732d01SWei Wang struct rt6_exception_bucket *bucket; 16078d1c802bSDavid Ahern struct fib6_info *from = rt->from; 160835732d01SWei Wang struct in6_addr *src_key = NULL; 160935732d01SWei Wang struct rt6_exception *rt6_ex; 161035732d01SWei Wang 161135732d01SWei Wang if (!from || 1612442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 161335732d01SWei Wang return; 161435732d01SWei Wang 161535732d01SWei Wang rcu_read_lock(); 161635732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161735732d01SWei Wang 161835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161935732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 162035732d01SWei Wang * and exception table is indexed by a hash of 162135732d01SWei Wang * both rt6i_dst and rt6i_src. 162235732d01SWei Wang * Otherwise, the exception table is indexed by 162335732d01SWei Wang * a hash of only rt6i_dst. 162435732d01SWei Wang */ 162593c2fb25SDavid Ahern if (from->fib6_src.plen) 162635732d01SWei Wang src_key = &rt->rt6i_src.addr; 162735732d01SWei Wang #endif 162835732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 162935732d01SWei Wang &rt->rt6i_dst.addr, 163035732d01SWei Wang src_key); 163135732d01SWei Wang if (rt6_ex) 163235732d01SWei Wang rt6_ex->stamp = jiffies; 163335732d01SWei Wang 163435732d01SWei Wang rcu_read_unlock(); 163535732d01SWei Wang } 163635732d01SWei Wang 1637e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1638e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1639e9fa1495SStefano Brivio { 1640e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1641e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1642e9fa1495SStefano Brivio * reflect PMTU decreases. 1643e9fa1495SStefano Brivio * 1644e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1645e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1646e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1647e9fa1495SStefano Brivio * handle this. 1648e9fa1495SStefano Brivio */ 1649e9fa1495SStefano Brivio 1650e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1651e9fa1495SStefano Brivio return true; 1652e9fa1495SStefano Brivio 1653e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1654e9fa1495SStefano Brivio return true; 1655e9fa1495SStefano Brivio 1656e9fa1495SStefano Brivio return false; 1657e9fa1495SStefano Brivio } 1658e9fa1495SStefano Brivio 1659e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16608d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1661f5bbe7eeSWei Wang { 1662f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1663f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1664f5bbe7eeSWei Wang int i; 1665f5bbe7eeSWei Wang 1666f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1667f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1668f5bbe7eeSWei Wang 1669e9fa1495SStefano Brivio if (!bucket) 1670e9fa1495SStefano Brivio return; 1671e9fa1495SStefano Brivio 1672f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1673f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1674f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1675e9fa1495SStefano Brivio 1676e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1677d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1678f5bbe7eeSWei Wang * been updated. 1679f5bbe7eeSWei Wang */ 1680d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1681e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1682d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1683f5bbe7eeSWei Wang } 1684f5bbe7eeSWei Wang bucket++; 1685f5bbe7eeSWei Wang } 1686f5bbe7eeSWei Wang } 1687f5bbe7eeSWei Wang 1688b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1689b16cb459SWei Wang 16908d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1691b16cb459SWei Wang struct in6_addr *gateway) 1692b16cb459SWei Wang { 1693b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1694b16cb459SWei Wang struct rt6_exception *rt6_ex; 1695b16cb459SWei Wang struct hlist_node *tmp; 1696b16cb459SWei Wang int i; 1697b16cb459SWei Wang 1698b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1699b16cb459SWei Wang return; 1700b16cb459SWei Wang 1701b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1702b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1703b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1704b16cb459SWei Wang 1705b16cb459SWei Wang if (bucket) { 1706b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1707b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1708b16cb459SWei Wang &bucket->chain, hlist) { 1709b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1710b16cb459SWei Wang 1711b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1712b16cb459SWei Wang RTF_CACHE_GATEWAY && 1713b16cb459SWei Wang ipv6_addr_equal(gateway, 1714b16cb459SWei Wang &entry->rt6i_gateway)) { 1715b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1716b16cb459SWei Wang } 1717b16cb459SWei Wang } 1718b16cb459SWei Wang bucket++; 1719b16cb459SWei Wang } 1720b16cb459SWei Wang } 1721b16cb459SWei Wang 1722b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1723b16cb459SWei Wang } 1724b16cb459SWei Wang 1725c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1726c757faa8SWei Wang struct rt6_exception *rt6_ex, 1727c757faa8SWei Wang struct fib6_gc_args *gc_args, 1728c757faa8SWei Wang unsigned long now) 1729c757faa8SWei Wang { 1730c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1731c757faa8SWei Wang 17321859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17331859bac0SPaolo Abeni * even if others have still references to them, so that on next 17341859bac0SPaolo Abeni * dst_check() such references can be dropped. 17351859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17361859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17371859bac0SPaolo Abeni */ 173831afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173931afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1740c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1741c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1742c757faa8SWei Wang return; 174331afeb42SWei Wang } 174431afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 174531afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 174631afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174731afeb42SWei Wang return; 174831afeb42SWei Wang } 174931afeb42SWei Wang 175031afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1751c757faa8SWei Wang struct neighbour *neigh; 1752c757faa8SWei Wang __u8 neigh_flags = 0; 1753c757faa8SWei Wang 17541bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17551bfa26ffSEric Dumazet if (neigh) 1756c757faa8SWei Wang neigh_flags = neigh->flags; 17571bfa26ffSEric Dumazet 1758c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1759c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1760c757faa8SWei Wang rt); 1761c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1762c757faa8SWei Wang return; 1763c757faa8SWei Wang } 1764c757faa8SWei Wang } 176531afeb42SWei Wang 1766c757faa8SWei Wang gc_args->more++; 1767c757faa8SWei Wang } 1768c757faa8SWei Wang 17698d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1770c757faa8SWei Wang struct fib6_gc_args *gc_args, 1771c757faa8SWei Wang unsigned long now) 1772c757faa8SWei Wang { 1773c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1774c757faa8SWei Wang struct rt6_exception *rt6_ex; 1775c757faa8SWei Wang struct hlist_node *tmp; 1776c757faa8SWei Wang int i; 1777c757faa8SWei Wang 1778c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1779c757faa8SWei Wang return; 1780c757faa8SWei Wang 17811bfa26ffSEric Dumazet rcu_read_lock_bh(); 17821bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1783c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1784c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1785c757faa8SWei Wang 1786c757faa8SWei Wang if (bucket) { 1787c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1788c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1789c757faa8SWei Wang &bucket->chain, hlist) { 1790c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1791c757faa8SWei Wang gc_args, now); 1792c757faa8SWei Wang } 1793c757faa8SWei Wang bucket++; 1794c757faa8SWei Wang } 1795c757faa8SWei Wang } 17961bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17971bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1798c757faa8SWei Wang } 1799c757faa8SWei Wang 18001d053da9SDavid Ahern /* must be called with rcu lock held */ 18011d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18021d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18031da177e4SLinus Torvalds { 1804367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18058d1c802bSDavid Ahern struct fib6_info *f6i; 18061da177e4SLinus Torvalds 18076454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1808367efcb9SMartin KaFai Lau saved_fn = fn; 18091da177e4SLinus Torvalds 1810ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1811ca254490SDavid Ahern oif = 0; 1812ca254490SDavid Ahern 1813a3c00e46SMartin KaFai Lau redo_rt6_select: 181423fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 181523fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1816a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1817a3c00e46SMartin KaFai Lau if (fn) 1818a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1819367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1820367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1821367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1822367efcb9SMartin KaFai Lau fn = saved_fn; 1823367efcb9SMartin KaFai Lau goto redo_rt6_select; 1824367efcb9SMartin KaFai Lau } 1825a3c00e46SMartin KaFai Lau } 1826a3c00e46SMartin KaFai Lau 1827d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1828d52d3997SMartin KaFai Lau 18291d053da9SDavid Ahern return f6i; 18301d053da9SDavid Ahern } 18311d053da9SDavid Ahern 18321d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18331d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18341d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18351d053da9SDavid Ahern { 18361d053da9SDavid Ahern struct fib6_info *f6i; 18371d053da9SDavid Ahern struct rt6_info *rt; 18381d053da9SDavid Ahern int strict = 0; 18391d053da9SDavid Ahern 18401d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18411d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18421d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18431d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18441d053da9SDavid Ahern 18451d053da9SDavid Ahern rcu_read_lock(); 18461d053da9SDavid Ahern 18471d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18481d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18491d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18501d053da9SDavid Ahern 185123fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1852421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 185366f5d6ceSWei Wang rcu_read_unlock(); 1854d3843fe5SWei Wang dst_hold(&rt->dst); 1855d3843fe5SWei Wang return rt; 1856d3843fe5SWei Wang } 185723fb93a4SDavid Ahern 185823fb93a4SDavid Ahern /*Search through exception table */ 185923fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 186023fb93a4SDavid Ahern if (rt) { 1861d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 18621da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1863d4ead6b3SDavid Ahern 186466f5d6ceSWei Wang rcu_read_unlock(); 1865d52d3997SMartin KaFai Lau return rt; 18663da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 186793c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18683da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18693da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18703da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18713da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18723da59bd9SMartin KaFai Lau */ 18733da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18743da59bd9SMartin KaFai Lau 187523fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1876d52d3997SMartin KaFai Lau 18774d85cd0cSDavid Ahern rcu_read_unlock(); 18783da59bd9SMartin KaFai Lau 18791cfb71eeSWei Wang if (uncached_rt) { 18801cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18811cfb71eeSWei Wang * No need for another dst_hold() 18821cfb71eeSWei Wang */ 18838d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 188481eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18851cfb71eeSWei Wang } else { 18863da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18873da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18881cfb71eeSWei Wang } 1889b811580dSDavid Ahern 18903da59bd9SMartin KaFai Lau return uncached_rt; 1891d52d3997SMartin KaFai Lau } else { 1892d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1893d52d3997SMartin KaFai Lau 1894d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1895d52d3997SMartin KaFai Lau 1896951f788aSEric Dumazet local_bh_disable(); 189723fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1898d52d3997SMartin KaFai Lau 189993531c67SDavid Ahern if (!pcpu_rt) 190023fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 190193531c67SDavid Ahern 1902951f788aSEric Dumazet local_bh_enable(); 1903951f788aSEric Dumazet rcu_read_unlock(); 1904d4bea421SDavid Ahern 1905d52d3997SMartin KaFai Lau return pcpu_rt; 1906d52d3997SMartin KaFai Lau } 1907c71099acSThomas Graf } 19089ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1909c71099acSThomas Graf 1910b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1911b75cc8f9SDavid Ahern struct fib6_table *table, 1912b75cc8f9SDavid Ahern struct flowi6 *fl6, 1913b75cc8f9SDavid Ahern const struct sk_buff *skb, 1914b75cc8f9SDavid Ahern int flags) 19154acad72dSPavel Emelyanov { 1916b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19174acad72dSPavel Emelyanov } 19184acad72dSPavel Emelyanov 1919d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 192072331bc0SShmulik Ladkani struct net_device *dev, 1921b75cc8f9SDavid Ahern struct flowi6 *fl6, 1922b75cc8f9SDavid Ahern const struct sk_buff *skb, 1923b75cc8f9SDavid Ahern int flags) 192472331bc0SShmulik Ladkani { 192572331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 192672331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 192772331bc0SShmulik Ladkani 1928b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 192972331bc0SShmulik Ladkani } 1930d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 193172331bc0SShmulik Ladkani 193223aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19335e5d6fedSRoopa Prabhu struct flow_keys *keys, 19345e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 193523aebdacSJakub Sitnicki { 193623aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 193723aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19385e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 193923aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 194023aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 194123aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1942cea67a2dSEric Dumazet struct icmp6hdr _icmph; 194323aebdacSJakub Sitnicki 194423aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 194523aebdacSJakub Sitnicki goto out; 194623aebdacSJakub Sitnicki 1947cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1948cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1949cea67a2dSEric Dumazet if (!icmph) 1950cea67a2dSEric Dumazet goto out; 1951cea67a2dSEric Dumazet 195223aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 195323aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 195423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 195523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 195623aebdacSJakub Sitnicki goto out; 195723aebdacSJakub Sitnicki 195823aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 195923aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 196023aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 196123aebdacSJakub Sitnicki if (!inner_iph) 196223aebdacSJakub Sitnicki goto out; 196323aebdacSJakub Sitnicki 196423aebdacSJakub Sitnicki key_iph = inner_iph; 19655e5d6fedSRoopa Prabhu _flkeys = NULL; 196623aebdacSJakub Sitnicki out: 19675e5d6fedSRoopa Prabhu if (_flkeys) { 19685e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19695e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19705e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19715e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19725e5d6fedSRoopa Prabhu } else { 197323aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 197423aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1975fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 197623aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 197723aebdacSJakub Sitnicki } 19785e5d6fedSRoopa Prabhu } 197923aebdacSJakub Sitnicki 198023aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1981b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1982b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 198323aebdacSJakub Sitnicki { 198423aebdacSJakub Sitnicki struct flow_keys hash_keys; 19859a2a537aSDavid Ahern u32 mhash; 198623aebdacSJakub Sitnicki 1987bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1988b4bac172SDavid Ahern case 0: 19896f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19906f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19919a2a537aSDavid Ahern if (skb) { 19925e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19939a2a537aSDavid Ahern } else { 19949a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19959a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 1996fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 19979a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 199823aebdacSJakub Sitnicki } 1999b4bac172SDavid Ahern break; 2000b4bac172SDavid Ahern case 1: 2001b4bac172SDavid Ahern if (skb) { 2002b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2003b4bac172SDavid Ahern struct flow_keys keys; 2004b4bac172SDavid Ahern 2005b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2006b4bac172SDavid Ahern if (skb->l4_hash) 2007b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2008b4bac172SDavid Ahern 2009b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2010b4bac172SDavid Ahern 2011b4bac172SDavid Ahern if (!flkeys) { 2012b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2013b4bac172SDavid Ahern flkeys = &keys; 2014b4bac172SDavid Ahern } 2015b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2016b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2017b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2018b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2019b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2020b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2021b4bac172SDavid Ahern } else { 2022b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2023b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2024b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2025b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2026b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2027b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2028b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2029b4bac172SDavid Ahern } 2030b4bac172SDavid Ahern break; 2031b4bac172SDavid Ahern } 20329a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 203323aebdacSJakub Sitnicki 20349a2a537aSDavid Ahern return mhash >> 1; 203523aebdacSJakub Sitnicki } 203623aebdacSJakub Sitnicki 2037c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2038c71099acSThomas Graf { 2039b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2040c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2041adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2042904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20434c9483b2SDavid S. Miller struct flowi6 fl6 = { 2044e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20454c9483b2SDavid S. Miller .daddr = iph->daddr, 20464c9483b2SDavid S. Miller .saddr = iph->saddr, 20476502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20484c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20494c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2050c71099acSThomas Graf }; 20515e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2052adaa70bbSThomas Graf 2053904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 205446fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2055904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20565e5d6fedSRoopa Prabhu 20575e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20585e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20595e5d6fedSRoopa Prabhu 206023aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2061b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 206206e9d040SJiri Benc skb_dst_drop(skb); 2063b75cc8f9SDavid Ahern skb_dst_set(skb, 2064b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2065c71099acSThomas Graf } 2066c71099acSThomas Graf 2067b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2068b75cc8f9SDavid Ahern struct fib6_table *table, 2069b75cc8f9SDavid Ahern struct flowi6 *fl6, 2070b75cc8f9SDavid Ahern const struct sk_buff *skb, 2071b75cc8f9SDavid Ahern int flags) 2072c71099acSThomas Graf { 2073b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2074c71099acSThomas Graf } 2075c71099acSThomas Graf 20766f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20776f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2078c71099acSThomas Graf { 2079d46a9d67SDavid Ahern bool any_src; 2080c71099acSThomas Graf 20813ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20823ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20834c1feac5SDavid Ahern struct dst_entry *dst; 20844c1feac5SDavid Ahern 20854c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2086ca254490SDavid Ahern if (dst) 2087ca254490SDavid Ahern return dst; 20884c1feac5SDavid Ahern } 2089ca254490SDavid Ahern 20901fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20914dc27d1cSDavid McCullough 2092d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2093741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2094d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 209577d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2096c71099acSThomas Graf 2097d46a9d67SDavid Ahern if (!any_src) 2098adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20990c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21000c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2101adaa70bbSThomas Graf 2102b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21031da177e4SLinus Torvalds } 21046f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21051da177e4SLinus Torvalds 21062774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 210714e50e57SDavid S. Miller { 21085c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21091dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 211014e50e57SDavid S. Miller struct dst_entry *new = NULL; 211114e50e57SDavid S. Miller 21121dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 211362cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 211414e50e57SDavid S. Miller if (rt) { 21150a1f5962SMartin KaFai Lau rt6_info_init(rt); 211681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21170a1f5962SMartin KaFai Lau 2118d8d1f30bSChangli Gao new = &rt->dst; 211914e50e57SDavid S. Miller new->__use = 1; 2120352e512cSHerbert Xu new->input = dst_discard; 2121ede2059dSEric W. Biederman new->output = dst_discard_out; 212214e50e57SDavid S. Miller 2123defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 212414e50e57SDavid S. Miller 21251dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21264e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21270a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 212814e50e57SDavid S. Miller 212914e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 213014e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 213114e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 213214e50e57SDavid S. Miller #endif 213314e50e57SDavid S. Miller } 213414e50e57SDavid S. Miller 213569ead7afSDavid S. Miller dst_release(dst_orig); 213669ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 213714e50e57SDavid S. Miller } 213814e50e57SDavid S. Miller 21391da177e4SLinus Torvalds /* 21401da177e4SLinus Torvalds * Destination cache support functions 21411da177e4SLinus Torvalds */ 21421da177e4SLinus Torvalds 21438d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21443da59bd9SMartin KaFai Lau { 214536143645SSteffen Klassert u32 rt_cookie = 0; 2146c5cff856SWei Wang 21478ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 214893531c67SDavid Ahern return false; 214993531c67SDavid Ahern 215093531c67SDavid Ahern if (fib6_check_expired(f6i)) 215193531c67SDavid Ahern return false; 215293531c67SDavid Ahern 215393531c67SDavid Ahern return true; 215493531c67SDavid Ahern } 215593531c67SDavid Ahern 2156a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2157a68886a6SDavid Ahern struct fib6_info *from, 2158a68886a6SDavid Ahern u32 cookie) 21593da59bd9SMartin KaFai Lau { 2160c5cff856SWei Wang u32 rt_cookie = 0; 2161c5cff856SWei Wang 2162a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 216393531c67SDavid Ahern rt_cookie != cookie) 21643da59bd9SMartin KaFai Lau return NULL; 21653da59bd9SMartin KaFai Lau 21663da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21673da59bd9SMartin KaFai Lau return NULL; 21683da59bd9SMartin KaFai Lau 21693da59bd9SMartin KaFai Lau return &rt->dst; 21703da59bd9SMartin KaFai Lau } 21713da59bd9SMartin KaFai Lau 2172a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2173a68886a6SDavid Ahern struct fib6_info *from, 2174a68886a6SDavid Ahern u32 cookie) 21753da59bd9SMartin KaFai Lau { 21765973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21775973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2178a68886a6SDavid Ahern fib6_check(from, cookie)) 21793da59bd9SMartin KaFai Lau return &rt->dst; 21803da59bd9SMartin KaFai Lau else 21813da59bd9SMartin KaFai Lau return NULL; 21823da59bd9SMartin KaFai Lau } 21833da59bd9SMartin KaFai Lau 21841da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21851da177e4SLinus Torvalds { 2186a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2187a68886a6SDavid Ahern struct fib6_info *from; 21881da177e4SLinus Torvalds struct rt6_info *rt; 21891da177e4SLinus Torvalds 2190a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2191a87b7dc9SDavid Ahern 2192a87b7dc9SDavid Ahern rcu_read_lock(); 21931da177e4SLinus Torvalds 21946f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21956f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21966f3118b5SNicolas Dichtel * into this function always. 21976f3118b5SNicolas Dichtel */ 2198e3bc10bdSHannes Frederic Sowa 2199a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22004b32b5adSMartin KaFai Lau 2201a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2202a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2203a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22043da59bd9SMartin KaFai Lau else 2205a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2206a87b7dc9SDavid Ahern 2207a87b7dc9SDavid Ahern rcu_read_unlock(); 2208a87b7dc9SDavid Ahern 2209a87b7dc9SDavid Ahern return dst_ret; 22101da177e4SLinus Torvalds } 22111da177e4SLinus Torvalds 22121da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22131da177e4SLinus Torvalds { 22141da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22151da177e4SLinus Torvalds 22161da177e4SLinus Torvalds if (rt) { 221754c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2218c3c14da0SDavid Ahern rcu_read_lock(); 221954c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 222093531c67SDavid Ahern rt6_remove_exception_rt(rt); 222154c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22221da177e4SLinus Torvalds } 2223c3c14da0SDavid Ahern rcu_read_unlock(); 222454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 222554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 222654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 222754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222954c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22301da177e4SLinus Torvalds } 22311da177e4SLinus Torvalds 22321da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22331da177e4SLinus Torvalds { 22341da177e4SLinus Torvalds struct rt6_info *rt; 22351da177e4SLinus Torvalds 22363ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22371da177e4SLinus Torvalds 2238adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22391da177e4SLinus Torvalds if (rt) { 22408a14e46fSDavid Ahern rcu_read_lock(); 22411eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2242ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 224393531c67SDavid Ahern rt6_remove_exception_rt(rt); 2244c5cff856SWei Wang } else { 2245a68886a6SDavid Ahern struct fib6_info *from; 2246c5cff856SWei Wang struct fib6_node *fn; 2247c5cff856SWei Wang 2248a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2249a68886a6SDavid Ahern if (from) { 2250a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2251c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2252c5cff856SWei Wang fn->fn_sernum = -1; 2253a68886a6SDavid Ahern } 22541da177e4SLinus Torvalds } 22551da177e4SLinus Torvalds rcu_read_unlock(); 22561da177e4SLinus Torvalds } 22571da177e4SLinus Torvalds } 22581da177e4SLinus Torvalds 22596a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22606a3e030fSDavid Ahern { 2261a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2262a68886a6SDavid Ahern struct fib6_info *from; 2263a68886a6SDavid Ahern 2264a68886a6SDavid Ahern rcu_read_lock(); 2265a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2266a68886a6SDavid Ahern if (from) 2267a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2268a68886a6SDavid Ahern rcu_read_unlock(); 2269a68886a6SDavid Ahern } 22706a3e030fSDavid Ahern 22716a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22726a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22736700c270SDavid S. Miller } 22741da177e4SLinus Torvalds 227545e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 227645e4fd26SMartin KaFai Lau { 227745e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 227845e4fd26SMartin KaFai Lau 2279d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 228045e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 228145e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 228245e4fd26SMartin KaFai Lau } 228345e4fd26SMartin KaFai Lau 22840d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22850d3f6d29SMartin KaFai Lau { 2286a68886a6SDavid Ahern bool from_set; 2287a68886a6SDavid Ahern 2288a68886a6SDavid Ahern rcu_read_lock(); 2289a68886a6SDavid Ahern from_set = !!rcu_dereference(rt->from); 2290a68886a6SDavid Ahern rcu_read_unlock(); 2291a68886a6SDavid Ahern 22920d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 2293a68886a6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || from_set); 22940d3f6d29SMartin KaFai Lau } 22950d3f6d29SMartin KaFai Lau 229645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 229745e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22981da177e4SLinus Torvalds { 22990dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23001da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23011da177e4SLinus Torvalds 230219bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 230319bda36cSXin Long return; 230419bda36cSXin Long 230545e4fd26SMartin KaFai Lau if (iph) { 230645e4fd26SMartin KaFai Lau daddr = &iph->daddr; 230745e4fd26SMartin KaFai Lau saddr = &iph->saddr; 230845e4fd26SMartin KaFai Lau } else if (sk) { 230945e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 231045e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 231145e4fd26SMartin KaFai Lau } else { 23120dec879fSJulian Anastasov daddr = NULL; 23130dec879fSJulian Anastasov saddr = NULL; 23141da177e4SLinus Torvalds } 23150dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23160dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23170dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23180dec879fSJulian Anastasov return; 23190dec879fSJulian Anastasov 23200dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23210dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23222b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23232b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23242b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23250dec879fSJulian Anastasov } else if (daddr) { 2326a68886a6SDavid Ahern struct fib6_info *from; 23270dec879fSJulian Anastasov struct rt6_info *nrt6; 23280dec879fSJulian Anastasov 23294d85cd0cSDavid Ahern rcu_read_lock(); 2330a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2331a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 233245e4fd26SMartin KaFai Lau if (nrt6) { 233345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2334a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23352b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 233645e4fd26SMartin KaFai Lau } 2337a68886a6SDavid Ahern rcu_read_unlock(); 233845e4fd26SMartin KaFai Lau } 233945e4fd26SMartin KaFai Lau } 234045e4fd26SMartin KaFai Lau 234145e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 234245e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 234345e4fd26SMartin KaFai Lau { 234445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23451da177e4SLinus Torvalds } 23461da177e4SLinus Torvalds 234742ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2348e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 234981aded24SDavid S. Miller { 235081aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 235181aded24SDavid S. Miller struct dst_entry *dst; 235281aded24SDavid S. Miller struct flowi6 fl6; 235381aded24SDavid S. Miller 235481aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 235581aded24SDavid S. Miller fl6.flowi6_oif = oif; 23561b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 235781aded24SDavid S. Miller fl6.daddr = iph->daddr; 235881aded24SDavid S. Miller fl6.saddr = iph->saddr; 23596502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2360e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 236181aded24SDavid S. Miller 236281aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 236381aded24SDavid S. Miller if (!dst->error) 236445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 236581aded24SDavid S. Miller dst_release(dst); 236681aded24SDavid S. Miller } 236781aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 236881aded24SDavid S. Miller 236981aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 237081aded24SDavid S. Miller { 237133c162a9SMartin KaFai Lau struct dst_entry *dst; 237233c162a9SMartin KaFai Lau 237381aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2374e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 237533c162a9SMartin KaFai Lau 237633c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 237733c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 237833c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 237933c162a9SMartin KaFai Lau return; 238033c162a9SMartin KaFai Lau 238133c162a9SMartin KaFai Lau bh_lock_sock(sk); 238233c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 238333c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 238433c162a9SMartin KaFai Lau bh_unlock_sock(sk); 238581aded24SDavid S. Miller } 238681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 238781aded24SDavid S. Miller 23887d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23897d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23907d6850f7SAlexey Kodanev { 23917d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23927d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23937d6850f7SAlexey Kodanev #endif 23947d6850f7SAlexey Kodanev 23957d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23967d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23977d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23987d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23997d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24007d6850f7SAlexey Kodanev &np->saddr : 24017d6850f7SAlexey Kodanev #endif 24027d6850f7SAlexey Kodanev NULL); 24037d6850f7SAlexey Kodanev } 24047d6850f7SAlexey Kodanev 2405b55b76b2SDuan Jiong /* Handle redirects */ 2406b55b76b2SDuan Jiong struct ip6rd_flowi { 2407b55b76b2SDuan Jiong struct flowi6 fl6; 2408b55b76b2SDuan Jiong struct in6_addr gateway; 2409b55b76b2SDuan Jiong }; 2410b55b76b2SDuan Jiong 2411b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2412b55b76b2SDuan Jiong struct fib6_table *table, 2413b55b76b2SDuan Jiong struct flowi6 *fl6, 2414b75cc8f9SDavid Ahern const struct sk_buff *skb, 2415b55b76b2SDuan Jiong int flags) 2416b55b76b2SDuan Jiong { 2417b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 241823fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24198d1c802bSDavid Ahern struct fib6_info *rt; 2420b55b76b2SDuan Jiong struct fib6_node *fn; 2421b55b76b2SDuan Jiong 2422b55b76b2SDuan Jiong /* Get the "current" route for this destination and 242367c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2424b55b76b2SDuan Jiong * 2425b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2426b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2427b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2428b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2429b55b76b2SDuan Jiong * routes. 2430b55b76b2SDuan Jiong */ 2431b55b76b2SDuan Jiong 243266f5d6ceSWei Wang rcu_read_lock(); 24336454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2434b55b76b2SDuan Jiong restart: 243566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24365e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 24378067bb8cSIdo Schimmel continue; 243814895687SDavid Ahern if (fib6_check_expired(rt)) 2439b55b76b2SDuan Jiong continue; 244093c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2441b55b76b2SDuan Jiong break; 244293c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2443b55b76b2SDuan Jiong continue; 24445e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2445b55b76b2SDuan Jiong continue; 24462b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24472b760fcfSWei Wang * in the case of an ip redirect. 24482b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24492b760fcfSWei Wang * is different. 24502b760fcfSWei Wang */ 24515e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24522b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24532b760fcfSWei Wang &fl6->daddr, 24542b760fcfSWei Wang &fl6->saddr); 24552b760fcfSWei Wang if (rt_cache && 24562b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24572b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 245823fb93a4SDavid Ahern ret = rt_cache; 24592b760fcfSWei Wang break; 24602b760fcfSWei Wang } 2461b55b76b2SDuan Jiong continue; 24622b760fcfSWei Wang } 2463b55b76b2SDuan Jiong break; 2464b55b76b2SDuan Jiong } 2465b55b76b2SDuan Jiong 2466b55b76b2SDuan Jiong if (!rt) 2467421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 246893c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 246923fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2470b0a1ba59SMartin KaFai Lau goto out; 2471b0a1ba59SMartin KaFai Lau } 2472b0a1ba59SMartin KaFai Lau 2473421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2474a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2475a3c00e46SMartin KaFai Lau if (fn) 2476a3c00e46SMartin KaFai Lau goto restart; 2477b55b76b2SDuan Jiong } 2478a3c00e46SMartin KaFai Lau 2479b0a1ba59SMartin KaFai Lau out: 248023fb93a4SDavid Ahern if (ret) 2481e873e4b9SWei Wang ip6_hold_safe(net, &ret, true); 248223fb93a4SDavid Ahern else 248323fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2484b55b76b2SDuan Jiong 248566f5d6ceSWei Wang rcu_read_unlock(); 2486b55b76b2SDuan Jiong 2487b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 248823fb93a4SDavid Ahern return ret; 2489b55b76b2SDuan Jiong }; 2490b55b76b2SDuan Jiong 2491b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2492b55b76b2SDuan Jiong const struct flowi6 *fl6, 2493b75cc8f9SDavid Ahern const struct sk_buff *skb, 2494b55b76b2SDuan Jiong const struct in6_addr *gateway) 2495b55b76b2SDuan Jiong { 2496b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2497b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2498b55b76b2SDuan Jiong 2499b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2500b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2501b55b76b2SDuan Jiong 2502b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2503b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2504b55b76b2SDuan Jiong } 2505b55b76b2SDuan Jiong 2506e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2507e2d118a1SLorenzo Colitti kuid_t uid) 25083a5ad2eeSDavid S. Miller { 25093a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25103a5ad2eeSDavid S. Miller struct dst_entry *dst; 25111f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25121f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25131f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25141f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25151f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25161f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25171f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25181f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25191f7f10acSMaciej Żenczykowski }; 25203a5ad2eeSDavid S. Miller 2521b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25226700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25233a5ad2eeSDavid S. Miller dst_release(dst); 25243a5ad2eeSDavid S. Miller } 25253a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25263a5ad2eeSDavid S. Miller 2527c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2528c92a59ecSDuan Jiong u32 mark) 2529c92a59ecSDuan Jiong { 2530c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2531c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2532c92a59ecSDuan Jiong struct dst_entry *dst; 2533*0b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 2534*0b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 2535*0b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 2536*0b26fb17SMaciej Żenczykowski .flowi6_mark = mark, 2537*0b26fb17SMaciej Żenczykowski .daddr = msg->dest, 2538*0b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 2539*0b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 2540*0b26fb17SMaciej Żenczykowski }; 2541c92a59ecSDuan Jiong 2542b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2543c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2544c92a59ecSDuan Jiong dst_release(dst); 2545c92a59ecSDuan Jiong } 2546c92a59ecSDuan Jiong 25473a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25483a5ad2eeSDavid S. Miller { 2549e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2550e2d118a1SLorenzo Colitti sk->sk_uid); 25513a5ad2eeSDavid S. Miller } 25523a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25533a5ad2eeSDavid S. Miller 25540dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25551da177e4SLinus Torvalds { 25560dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25570dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25580dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25590dbaee3bSDavid S. Miller 25601da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25611da177e4SLinus Torvalds 25625578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25635578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25641da177e4SLinus Torvalds 25651da177e4SLinus Torvalds /* 25661da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25671da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25681da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25691da177e4SLinus Torvalds * rely only on pmtu discovery" 25701da177e4SLinus Torvalds */ 25711da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25721da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25731da177e4SLinus Torvalds return mtu; 25741da177e4SLinus Torvalds } 25751da177e4SLinus Torvalds 2576ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2577d33e4553SDavid S. Miller { 2578d33e4553SDavid S. Miller struct inet6_dev *idev; 2579d4ead6b3SDavid Ahern unsigned int mtu; 2580618f9bc7SSteffen Klassert 25814b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25824b32b5adSMartin KaFai Lau if (mtu) 25834b32b5adSMartin KaFai Lau goto out; 25844b32b5adSMartin KaFai Lau 2585618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2586d33e4553SDavid S. Miller 2587d33e4553SDavid S. Miller rcu_read_lock(); 2588d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2589d33e4553SDavid S. Miller if (idev) 2590d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2591d33e4553SDavid S. Miller rcu_read_unlock(); 2592d33e4553SDavid S. Miller 259330f78d8eSEric Dumazet out: 259414972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 259514972cbdSRoopa Prabhu 259614972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2597d33e4553SDavid S. Miller } 2598d33e4553SDavid S. Miller 2599901731b8SDavid Ahern /* MTU selection: 2600901731b8SDavid Ahern * 1. mtu on route is locked - use it 2601901731b8SDavid Ahern * 2. mtu from nexthop exception 2602901731b8SDavid Ahern * 3. mtu from egress device 2603901731b8SDavid Ahern * 2604901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2605901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2606901731b8SDavid Ahern */ 2607901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2608901731b8SDavid Ahern struct in6_addr *saddr) 2609901731b8SDavid Ahern { 2610901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2611901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2612901731b8SDavid Ahern struct in6_addr *src_key; 2613901731b8SDavid Ahern struct inet6_dev *idev; 2614901731b8SDavid Ahern u32 mtu = 0; 2615901731b8SDavid Ahern 2616901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2617901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2618901731b8SDavid Ahern if (mtu) 2619901731b8SDavid Ahern goto out; 2620901731b8SDavid Ahern } 2621901731b8SDavid Ahern 2622901731b8SDavid Ahern src_key = NULL; 2623901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2624901731b8SDavid Ahern if (f6i->fib6_src.plen) 2625901731b8SDavid Ahern src_key = saddr; 2626901731b8SDavid Ahern #endif 2627901731b8SDavid Ahern 2628901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2629901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2630901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2631901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2632901731b8SDavid Ahern 2633901731b8SDavid Ahern if (likely(!mtu)) { 2634901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2635901731b8SDavid Ahern 2636901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2637901731b8SDavid Ahern idev = __in6_dev_get(dev); 2638901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2639901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2640901731b8SDavid Ahern } 2641901731b8SDavid Ahern 2642901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2643901731b8SDavid Ahern out: 2644901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2645901731b8SDavid Ahern } 2646901731b8SDavid Ahern 26473b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 264887a11578SDavid S. Miller struct flowi6 *fl6) 26491da177e4SLinus Torvalds { 265087a11578SDavid S. Miller struct dst_entry *dst; 26511da177e4SLinus Torvalds struct rt6_info *rt; 26521da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2653c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26541da177e4SLinus Torvalds 265538308473SDavid S. Miller if (unlikely(!idev)) 2656122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26571da177e4SLinus Torvalds 2658ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 265938308473SDavid S. Miller if (unlikely(!rt)) { 26601da177e4SLinus Torvalds in6_dev_put(idev); 266187a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26621da177e4SLinus Torvalds goto out; 26631da177e4SLinus Torvalds } 26641da177e4SLinus Torvalds 26658e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2666588753f1SBrendan McGrath rt->dst.input = ip6_input; 26678e2ec639SYan, Zheng rt->dst.output = ip6_output; 2668550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 266987a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26708e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26718e2ec639SYan, Zheng rt->rt6i_idev = idev; 267214edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26731da177e4SLinus Torvalds 26744c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2675587fea74SWei Wang * do proper release of the net_device 2676587fea74SWei Wang */ 2677587fea74SWei Wang rt6_uncached_list_add(rt); 267881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26791da177e4SLinus Torvalds 268087a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 268187a11578SDavid S. Miller 26821da177e4SLinus Torvalds out: 268387a11578SDavid S. Miller return dst; 26841da177e4SLinus Torvalds } 26851da177e4SLinus Torvalds 2686569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26871da177e4SLinus Torvalds { 268886393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26897019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26907019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26917019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26927019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26937019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2694fc66f95cSEric Dumazet int entries; 26951da177e4SLinus Torvalds 2696fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 269749a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2698fc66f95cSEric Dumazet entries <= rt_max_size) 26991da177e4SLinus Torvalds goto out; 27001da177e4SLinus Torvalds 27016891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 270214956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2703fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2704fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27057019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27061da177e4SLinus Torvalds out: 27077019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2708fc66f95cSEric Dumazet return entries > rt_max_size; 27091da177e4SLinus Torvalds } 27101da177e4SLinus Torvalds 27118d1c802bSDavid Ahern static int ip6_convert_metrics(struct net *net, struct fib6_info *rt, 2712d4ead6b3SDavid Ahern struct fib6_config *cfg) 2713e715b6d3SFlorian Westphal { 2714263243d6SEric Dumazet struct dst_metrics *p; 2715e715b6d3SFlorian Westphal 271663159f29SIan Morris if (!cfg->fc_mx) 2717e715b6d3SFlorian Westphal return 0; 2718e715b6d3SFlorian Westphal 2719263243d6SEric Dumazet p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL); 2720263243d6SEric Dumazet if (unlikely(!p)) 2721e715b6d3SFlorian Westphal return -ENOMEM; 2722e715b6d3SFlorian Westphal 2723263243d6SEric Dumazet refcount_set(&p->refcnt, 1); 2724263243d6SEric Dumazet rt->fib6_metrics = p; 2725ea697639SDaniel Borkmann 2726263243d6SEric Dumazet return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics); 2727e715b6d3SFlorian Westphal } 27281da177e4SLinus Torvalds 27298c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27308c14586fSDavid Ahern struct fib6_config *cfg, 2731f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2732f4797b33SDavid Ahern u32 tbid, int flags) 27338c14586fSDavid Ahern { 27348c14586fSDavid Ahern struct flowi6 fl6 = { 27358c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27368c14586fSDavid Ahern .daddr = *gw_addr, 27378c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27388c14586fSDavid Ahern }; 27398c14586fSDavid Ahern struct fib6_table *table; 27408c14586fSDavid Ahern struct rt6_info *rt; 27418c14586fSDavid Ahern 2742f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27438c14586fSDavid Ahern if (!table) 27448c14586fSDavid Ahern return NULL; 27458c14586fSDavid Ahern 27468c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27478c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27488c14586fSDavid Ahern 2749f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2750b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27518c14586fSDavid Ahern 27528c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27538c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27548c14586fSDavid Ahern ip6_rt_put(rt); 27558c14586fSDavid Ahern rt = NULL; 27568c14586fSDavid Ahern } 27578c14586fSDavid Ahern 27588c14586fSDavid Ahern return rt; 27598c14586fSDavid Ahern } 27608c14586fSDavid Ahern 2761fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2762fc1e64e1SDavid Ahern struct fib6_config *cfg, 27639fbb704cSDavid Ahern const struct net_device *dev, 2764fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2765fc1e64e1SDavid Ahern { 276644750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2767fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2768fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2769fc1e64e1SDavid Ahern struct rt6_info *grt; 2770fc1e64e1SDavid Ahern int err; 2771fc1e64e1SDavid Ahern 2772fc1e64e1SDavid Ahern err = 0; 2773fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2774fc1e64e1SDavid Ahern if (grt) { 277558e354c0SDavid Ahern if (!grt->dst.error && 277658e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 277744750f84SDavid Ahern NL_SET_ERR_MSG(extack, 277844750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2779fc1e64e1SDavid Ahern err = -EINVAL; 2780fc1e64e1SDavid Ahern } 2781fc1e64e1SDavid Ahern 2782fc1e64e1SDavid Ahern ip6_rt_put(grt); 2783fc1e64e1SDavid Ahern } 2784fc1e64e1SDavid Ahern 2785fc1e64e1SDavid Ahern return err; 2786fc1e64e1SDavid Ahern } 2787fc1e64e1SDavid Ahern 27881edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27891edce99fSDavid Ahern struct fib6_config *cfg, 27901edce99fSDavid Ahern struct net_device **_dev, 27911edce99fSDavid Ahern struct inet6_dev **idev) 27921edce99fSDavid Ahern { 27931edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27941edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27951edce99fSDavid Ahern struct rt6_info *grt = NULL; 27961edce99fSDavid Ahern int err = -EHOSTUNREACH; 27971edce99fSDavid Ahern 27981edce99fSDavid Ahern if (cfg->fc_table) { 2799f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2800f4797b33SDavid Ahern 2801f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2802f4797b33SDavid Ahern cfg->fc_table, flags); 28031edce99fSDavid Ahern if (grt) { 28041edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28051edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28061edce99fSDavid Ahern ip6_rt_put(grt); 28071edce99fSDavid Ahern grt = NULL; 28081edce99fSDavid Ahern } 28091edce99fSDavid Ahern } 28101edce99fSDavid Ahern } 28111edce99fSDavid Ahern 28121edce99fSDavid Ahern if (!grt) 2813b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28141edce99fSDavid Ahern 28151edce99fSDavid Ahern if (!grt) 28161edce99fSDavid Ahern goto out; 28171edce99fSDavid Ahern 28181edce99fSDavid Ahern if (dev) { 28191edce99fSDavid Ahern if (dev != grt->dst.dev) { 28201edce99fSDavid Ahern ip6_rt_put(grt); 28211edce99fSDavid Ahern goto out; 28221edce99fSDavid Ahern } 28231edce99fSDavid Ahern } else { 28241edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28251edce99fSDavid Ahern *idev = grt->rt6i_idev; 28261edce99fSDavid Ahern dev_hold(dev); 28271edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28281edce99fSDavid Ahern } 28291edce99fSDavid Ahern 28301edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28311edce99fSDavid Ahern err = 0; 28321edce99fSDavid Ahern 28331edce99fSDavid Ahern ip6_rt_put(grt); 28341edce99fSDavid Ahern 28351edce99fSDavid Ahern out: 28361edce99fSDavid Ahern return err; 28371edce99fSDavid Ahern } 28381edce99fSDavid Ahern 28399fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28409fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28419fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28429fbb704cSDavid Ahern { 28439fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28449fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2845232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28469fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2847232378e8SDavid Ahern bool need_addr_check = !dev; 28489fbb704cSDavid Ahern int err = -EINVAL; 28499fbb704cSDavid Ahern 28509fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28519fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28529fbb704cSDavid Ahern * will return already-added prefix route via interface that 28539fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28549fbb704cSDavid Ahern */ 2855232378e8SDavid Ahern if (dev && 2856232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2857232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28589fbb704cSDavid Ahern goto out; 28599fbb704cSDavid Ahern } 28609fbb704cSDavid Ahern 28619fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28629fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28639fbb704cSDavid Ahern * addresses as nexthop address. 28649fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28659fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28669fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28679fbb704cSDavid Ahern * some exceptions. --ANK 28689fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28699fbb704cSDavid Ahern * addressing 28709fbb704cSDavid Ahern */ 28719fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28729fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28739fbb704cSDavid Ahern goto out; 28749fbb704cSDavid Ahern } 28759fbb704cSDavid Ahern 28769fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28779fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28789fbb704cSDavid Ahern else 28799fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28809fbb704cSDavid Ahern 28819fbb704cSDavid Ahern if (err) 28829fbb704cSDavid Ahern goto out; 28839fbb704cSDavid Ahern } 28849fbb704cSDavid Ahern 28859fbb704cSDavid Ahern /* reload in case device was changed */ 28869fbb704cSDavid Ahern dev = *_dev; 28879fbb704cSDavid Ahern 28889fbb704cSDavid Ahern err = -EINVAL; 28899fbb704cSDavid Ahern if (!dev) { 28909fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28919fbb704cSDavid Ahern goto out; 28929fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28939fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28949fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28959fbb704cSDavid Ahern goto out; 28969fbb704cSDavid Ahern } 2897232378e8SDavid Ahern 2898232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2899232378e8SDavid Ahern * egress device has been resolved. 2900232378e8SDavid Ahern */ 2901232378e8SDavid Ahern if (need_addr_check && 2902232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2903232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2904232378e8SDavid Ahern goto out; 2905232378e8SDavid Ahern } 2906232378e8SDavid Ahern 29079fbb704cSDavid Ahern err = 0; 29089fbb704cSDavid Ahern out: 29099fbb704cSDavid Ahern return err; 29109fbb704cSDavid Ahern } 29119fbb704cSDavid Ahern 29128d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2913acb54e3cSDavid Ahern gfp_t gfp_flags, 2914333c4301SDavid Ahern struct netlink_ext_ack *extack) 29151da177e4SLinus Torvalds { 29165578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 29178d1c802bSDavid Ahern struct fib6_info *rt = NULL; 29181da177e4SLinus Torvalds struct net_device *dev = NULL; 29191da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2920c71099acSThomas Graf struct fib6_table *table; 29211da177e4SLinus Torvalds int addr_type; 29228c5b83f0SRoopa Prabhu int err = -EINVAL; 29231da177e4SLinus Torvalds 2924557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2925d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2926d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2927557c44beSDavid Ahern goto out; 2928d5d531cbSDavid Ahern } 2929557c44beSDavid Ahern 29302ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 29312ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29322ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 29332ea2352eSWei Wang goto out; 29342ea2352eSWei Wang } 29352ea2352eSWei Wang 2936e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2937e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2938e8478e80SDavid Ahern goto out; 2939e8478e80SDavid Ahern } 2940e8478e80SDavid Ahern 2941d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2942d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 29438c5b83f0SRoopa Prabhu goto out; 2944d5d531cbSDavid Ahern } 2945d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2946d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2947d5d531cbSDavid Ahern goto out; 2948d5d531cbSDavid Ahern } 29491da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2950d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2951d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2952d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 29538c5b83f0SRoopa Prabhu goto out; 2954d5d531cbSDavid Ahern } 29551da177e4SLinus Torvalds #endif 295686872cb5SThomas Graf if (cfg->fc_ifindex) { 29571da177e4SLinus Torvalds err = -ENODEV; 29585578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 29591da177e4SLinus Torvalds if (!dev) 29601da177e4SLinus Torvalds goto out; 29611da177e4SLinus Torvalds idev = in6_dev_get(dev); 29621da177e4SLinus Torvalds if (!idev) 29631da177e4SLinus Torvalds goto out; 29641da177e4SLinus Torvalds } 29651da177e4SLinus Torvalds 296686872cb5SThomas Graf if (cfg->fc_metric == 0) 296786872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 29681da177e4SLinus Torvalds 2969fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2970fc1e64e1SDavid Ahern if (!dev) { 2971fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2972fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2973fc1e64e1SDavid Ahern err = -ENODEV; 2974fc1e64e1SDavid Ahern goto out; 2975fc1e64e1SDavid Ahern } 2976fc1e64e1SDavid Ahern 2977fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 2978fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 2979fc1e64e1SDavid Ahern err = -ENETDOWN; 2980fc1e64e1SDavid Ahern goto out; 2981fc1e64e1SDavid Ahern } 2982fc1e64e1SDavid Ahern } 2983fc1e64e1SDavid Ahern 2984c71099acSThomas Graf err = -ENOBUFS; 298538308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2986d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2987d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 298838308473SDavid S. Miller if (!table) { 2989f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2990d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2991d71314b4SMatti Vaittinen } 2992d71314b4SMatti Vaittinen } else { 2993d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2994d71314b4SMatti Vaittinen } 299538308473SDavid S. Miller 299638308473SDavid S. Miller if (!table) 2997c71099acSThomas Graf goto out; 2998c71099acSThomas Graf 29991da177e4SLinus Torvalds err = -ENOMEM; 300093531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 300193531c67SDavid Ahern if (!rt) 30021da177e4SLinus Torvalds goto out; 300393531c67SDavid Ahern 300493531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 300593531c67SDavid Ahern rt->dst_nocount = true; 30061da177e4SLinus Torvalds 3007d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, cfg); 3008d4ead6b3SDavid Ahern if (err < 0) 3009d4ead6b3SDavid Ahern goto out; 30101da177e4SLinus Torvalds 30111716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 301214895687SDavid Ahern fib6_set_expires(rt, jiffies + 30131716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30141716a961SGao feng else 301514895687SDavid Ahern fib6_clean_expires(rt); 30161da177e4SLinus Torvalds 301786872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 301886872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 301993c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 302086872cb5SThomas Graf 302186872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 30221da177e4SLinus Torvalds 302319e42e45SRoopa Prabhu if (cfg->fc_encap) { 302419e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 302519e42e45SRoopa Prabhu 302630357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 3027127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 30289ae28727SDavid Ahern &lwtstate, extack); 302919e42e45SRoopa Prabhu if (err) 303019e42e45SRoopa Prabhu goto out; 30315e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 303225368623STom Herbert } 303319e42e45SRoopa Prabhu 303493c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 303593c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 303693c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 30373b6761d1SDavid Ahern rt->dst_host = true; 30381da177e4SLinus Torvalds 30391da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 304093c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 304193c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 30421da177e4SLinus Torvalds #endif 30431da177e4SLinus Torvalds 304493c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 30455e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 30461da177e4SLinus Torvalds 3047e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 30481da177e4SLinus Torvalds 30491da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 30501da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 30511da177e4SLinus Torvalds */ 305286872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 305338308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 305438308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 305538308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 30561da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 30575578689aSDaniel Lezcano if (dev != net->loopback_dev) { 30581da177e4SLinus Torvalds if (dev) { 30591da177e4SLinus Torvalds dev_put(dev); 30601da177e4SLinus Torvalds in6_dev_put(idev); 30611da177e4SLinus Torvalds } 30625578689aSDaniel Lezcano dev = net->loopback_dev; 30631da177e4SLinus Torvalds dev_hold(dev); 30641da177e4SLinus Torvalds idev = in6_dev_get(dev); 30651da177e4SLinus Torvalds if (!idev) { 30661da177e4SLinus Torvalds err = -ENODEV; 30671da177e4SLinus Torvalds goto out; 30681da177e4SLinus Torvalds } 30691da177e4SLinus Torvalds } 307093c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 30711da177e4SLinus Torvalds goto install_route; 30721da177e4SLinus Torvalds } 30731da177e4SLinus Torvalds 307486872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 30759fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 30761da177e4SLinus Torvalds if (err) 30771da177e4SLinus Torvalds goto out; 30789fbb704cSDavid Ahern 307993531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 30801da177e4SLinus Torvalds } 30811da177e4SLinus Torvalds 30821da177e4SLinus Torvalds err = -ENODEV; 308338308473SDavid S. Miller if (!dev) 30841da177e4SLinus Torvalds goto out; 30851da177e4SLinus Torvalds 3086428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 3087428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 3088428604fbSLorenzo Bianconi err = -EACCES; 3089428604fbSLorenzo Bianconi goto out; 3090428604fbSLorenzo Bianconi } 3091428604fbSLorenzo Bianconi 3092955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3093955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3094955ec4cbSDavid Ahern err = -ENETDOWN; 3095955ec4cbSDavid Ahern goto out; 3096955ec4cbSDavid Ahern } 3097955ec4cbSDavid Ahern 3098c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3099c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3100d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3101c3968a85SDaniel Walter err = -EINVAL; 3102c3968a85SDaniel Walter goto out; 3103c3968a85SDaniel Walter } 310493c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 310593c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3106c3968a85SDaniel Walter } else 310793c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3108c3968a85SDaniel Walter 310993c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 31101da177e4SLinus Torvalds 31111da177e4SLinus Torvalds install_route: 311293c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 31135609b80aSIdo Schimmel !netif_carrier_ok(dev)) 31145e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 31155e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 311693531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 311793c2fb25SDavid Ahern rt->fib6_table = table; 311863152fc0SDaniel Lezcano 3119dcd1f572SDavid Ahern if (idev) 3120dcd1f572SDavid Ahern in6_dev_put(idev); 3121dcd1f572SDavid Ahern 31228c5b83f0SRoopa Prabhu return rt; 31231da177e4SLinus Torvalds out: 31241da177e4SLinus Torvalds if (dev) 31251da177e4SLinus Torvalds dev_put(dev); 31261da177e4SLinus Torvalds if (idev) 31271da177e4SLinus Torvalds in6_dev_put(idev); 31286b9ea5a6SRoopa Prabhu 312993531c67SDavid Ahern fib6_info_release(rt); 31308c5b83f0SRoopa Prabhu return ERR_PTR(err); 31316b9ea5a6SRoopa Prabhu } 31326b9ea5a6SRoopa Prabhu 3133acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3134333c4301SDavid Ahern struct netlink_ext_ack *extack) 31356b9ea5a6SRoopa Prabhu { 31368d1c802bSDavid Ahern struct fib6_info *rt; 31376b9ea5a6SRoopa Prabhu int err; 31386b9ea5a6SRoopa Prabhu 3139acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3140d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3141d4ead6b3SDavid Ahern return PTR_ERR(rt); 31426b9ea5a6SRoopa Prabhu 3143d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 314493531c67SDavid Ahern fib6_info_release(rt); 31456b9ea5a6SRoopa Prabhu 31461da177e4SLinus Torvalds return err; 31471da177e4SLinus Torvalds } 31481da177e4SLinus Torvalds 31498d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31501da177e4SLinus Torvalds { 3151afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3152c71099acSThomas Graf struct fib6_table *table; 3153afb1d4b5SDavid Ahern int err; 31541da177e4SLinus Torvalds 3155421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31566825a26cSGao feng err = -ENOENT; 31576825a26cSGao feng goto out; 31586825a26cSGao feng } 31596c813a72SPatrick McHardy 316093c2fb25SDavid Ahern table = rt->fib6_table; 316166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 316286872cb5SThomas Graf err = fib6_del(rt, info); 316366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31641da177e4SLinus Torvalds 31656825a26cSGao feng out: 316693531c67SDavid Ahern fib6_info_release(rt); 31671da177e4SLinus Torvalds return err; 31681da177e4SLinus Torvalds } 31691da177e4SLinus Torvalds 31708d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3171e0a1ad73SThomas Graf { 3172afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3173afb1d4b5SDavid Ahern 3174528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3175e0a1ad73SThomas Graf } 3176e0a1ad73SThomas Graf 31778d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 31780ae81335SDavid Ahern { 31790ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3180e3330039SWANG Cong struct net *net = info->nl_net; 318116a16cd3SDavid Ahern struct sk_buff *skb = NULL; 31820ae81335SDavid Ahern struct fib6_table *table; 3183e3330039SWANG Cong int err = -ENOENT; 31840ae81335SDavid Ahern 3185421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3186e3330039SWANG Cong goto out_put; 318793c2fb25SDavid Ahern table = rt->fib6_table; 318866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 31890ae81335SDavid Ahern 319093c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 31918d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 31920ae81335SDavid Ahern 319316a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 319416a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 319516a16cd3SDavid Ahern if (skb) { 319616a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 319716a16cd3SDavid Ahern 3198d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 319916a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 320016a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 320116a16cd3SDavid Ahern kfree_skb(skb); 320216a16cd3SDavid Ahern skb = NULL; 320316a16cd3SDavid Ahern } else 320416a16cd3SDavid Ahern info->skip_notify = 1; 320516a16cd3SDavid Ahern } 320616a16cd3SDavid Ahern 32070ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 320893c2fb25SDavid Ahern &rt->fib6_siblings, 320993c2fb25SDavid Ahern fib6_siblings) { 32100ae81335SDavid Ahern err = fib6_del(sibling, info); 32110ae81335SDavid Ahern if (err) 3212e3330039SWANG Cong goto out_unlock; 32130ae81335SDavid Ahern } 32140ae81335SDavid Ahern } 32150ae81335SDavid Ahern 32160ae81335SDavid Ahern err = fib6_del(rt, info); 3217e3330039SWANG Cong out_unlock: 321866f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3219e3330039SWANG Cong out_put: 322093531c67SDavid Ahern fib6_info_release(rt); 322116a16cd3SDavid Ahern 322216a16cd3SDavid Ahern if (skb) { 3223e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 322416a16cd3SDavid Ahern info->nlh, gfp_any()); 322516a16cd3SDavid Ahern } 32260ae81335SDavid Ahern return err; 32270ae81335SDavid Ahern } 32280ae81335SDavid Ahern 322923fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 323023fb93a4SDavid Ahern { 323123fb93a4SDavid Ahern int rc = -ESRCH; 323223fb93a4SDavid Ahern 323323fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 323423fb93a4SDavid Ahern goto out; 323523fb93a4SDavid Ahern 323623fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 323723fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 323823fb93a4SDavid Ahern goto out; 323923fb93a4SDavid Ahern if (dst_hold_safe(&rt->dst)) 324023fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 324123fb93a4SDavid Ahern out: 324223fb93a4SDavid Ahern return rc; 324323fb93a4SDavid Ahern } 324423fb93a4SDavid Ahern 3245333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3246333c4301SDavid Ahern struct netlink_ext_ack *extack) 32471da177e4SLinus Torvalds { 32488d1c802bSDavid Ahern struct rt6_info *rt_cache; 3249c71099acSThomas Graf struct fib6_table *table; 32508d1c802bSDavid Ahern struct fib6_info *rt; 32511da177e4SLinus Torvalds struct fib6_node *fn; 32521da177e4SLinus Torvalds int err = -ESRCH; 32531da177e4SLinus Torvalds 32545578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3255d5d531cbSDavid Ahern if (!table) { 3256d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3257c71099acSThomas Graf return err; 3258d5d531cbSDavid Ahern } 32591da177e4SLinus Torvalds 326066f5d6ceSWei Wang rcu_read_lock(); 3261c71099acSThomas Graf 3262c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 326386872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 326438fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32652b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32661da177e4SLinus Torvalds 32671da177e4SLinus Torvalds if (fn) { 326866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 32692b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 327023fb93a4SDavid Ahern int rc; 327123fb93a4SDavid Ahern 32722b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32732b760fcfSWei Wang &cfg->fc_src); 327423fb93a4SDavid Ahern if (rt_cache) { 327523fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 32769e575010SEric Dumazet if (rc != -ESRCH) { 32779e575010SEric Dumazet rcu_read_unlock(); 327823fb93a4SDavid Ahern return rc; 327923fb93a4SDavid Ahern } 32809e575010SEric Dumazet } 32811f56a01fSMartin KaFai Lau continue; 32822b760fcfSWei Wang } 328386872cb5SThomas Graf if (cfg->fc_ifindex && 32845e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 32855e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 32861da177e4SLinus Torvalds continue; 328786872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 32885e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 32891da177e4SLinus Torvalds continue; 329093c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 32911da177e4SLinus Torvalds continue; 329293c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3293c2ed1880SMantas M continue; 3294e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3295e873e4b9SWei Wang continue; 329666f5d6ceSWei Wang rcu_read_unlock(); 32971da177e4SLinus Torvalds 32980ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 32990ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 330086872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33010ae81335SDavid Ahern 33020ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33031da177e4SLinus Torvalds } 33041da177e4SLinus Torvalds } 330566f5d6ceSWei Wang rcu_read_unlock(); 33061da177e4SLinus Torvalds 33071da177e4SLinus Torvalds return err; 33081da177e4SLinus Torvalds } 33091da177e4SLinus Torvalds 33106700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3311a6279458SYOSHIFUJI Hideaki { 3312a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3313e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3314e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3315e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3316e8599ff4SDavid S. Miller struct neighbour *neigh; 3317a68886a6SDavid Ahern struct fib6_info *from; 331871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33196e157b6aSDavid S. Miller int optlen, on_link; 33206e157b6aSDavid S. Miller u8 *lladdr; 3321e8599ff4SDavid S. Miller 332229a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 332371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3324e8599ff4SDavid S. Miller 3325e8599ff4SDavid S. Miller if (optlen < 0) { 33266e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3327e8599ff4SDavid S. Miller return; 3328e8599ff4SDavid S. Miller } 3329e8599ff4SDavid S. Miller 333071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3331e8599ff4SDavid S. Miller 333271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33336e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3334e8599ff4SDavid S. Miller return; 3335e8599ff4SDavid S. Miller } 3336e8599ff4SDavid S. Miller 33376e157b6aSDavid S. Miller on_link = 0; 333871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3339e8599ff4SDavid S. Miller on_link = 1; 334071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3341e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33426e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3343e8599ff4SDavid S. Miller return; 3344e8599ff4SDavid S. Miller } 3345e8599ff4SDavid S. Miller 3346e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3347e8599ff4SDavid S. Miller if (!in6_dev) 3348e8599ff4SDavid S. Miller return; 3349e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3350e8599ff4SDavid S. Miller return; 3351e8599ff4SDavid S. Miller 3352e8599ff4SDavid S. Miller /* RFC2461 8.1: 3353e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3354e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3355e8599ff4SDavid S. Miller */ 3356e8599ff4SDavid S. Miller 3357f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3358e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3359e8599ff4SDavid S. Miller return; 3360e8599ff4SDavid S. Miller } 33616e157b6aSDavid S. Miller 33626e157b6aSDavid S. Miller lladdr = NULL; 3363e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3364e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3365e8599ff4SDavid S. Miller skb->dev); 3366e8599ff4SDavid S. Miller if (!lladdr) { 3367e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3368e8599ff4SDavid S. Miller return; 3369e8599ff4SDavid S. Miller } 3370e8599ff4SDavid S. Miller } 3371e8599ff4SDavid S. Miller 33726e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3373ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33746e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33756e157b6aSDavid S. Miller return; 33766e157b6aSDavid S. Miller } 33776e157b6aSDavid S. Miller 33786e157b6aSDavid S. Miller /* Redirect received -> path was valid. 33796e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 33806e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 33816e157b6aSDavid S. Miller */ 33820dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 33836e157b6aSDavid S. Miller 338471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3385e8599ff4SDavid S. Miller if (!neigh) 3386e8599ff4SDavid S. Miller return; 3387e8599ff4SDavid S. Miller 33881da177e4SLinus Torvalds /* 33891da177e4SLinus Torvalds * We have finally decided to accept it. 33901da177e4SLinus Torvalds */ 33911da177e4SLinus Torvalds 3392f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 33931da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 33941da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 33951da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3396f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3397f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 33981da177e4SLinus Torvalds 33994d85cd0cSDavid Ahern rcu_read_lock(); 3400a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3401e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3402e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3403e873e4b9SWei Wang */ 34048a14e46fSDavid Ahern fib6_info_hold(from); 34054d85cd0cSDavid Ahern rcu_read_unlock(); 34068a14e46fSDavid Ahern 34078a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 340838308473SDavid S. Miller if (!nrt) 34091da177e4SLinus Torvalds goto out; 34101da177e4SLinus Torvalds 34111da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34121da177e4SLinus Torvalds if (on_link) 34131da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34141da177e4SLinus Torvalds 34154e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34161da177e4SLinus Torvalds 34172b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34182b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34192b760fcfSWei Wang * takes care of it 34202b760fcfSWei Wang */ 34218a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34222b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34232b760fcfSWei Wang goto out; 34242b760fcfSWei Wang } 34251da177e4SLinus Torvalds 3426d8d1f30bSChangli Gao netevent.old = &rt->dst; 3427d8d1f30bSChangli Gao netevent.new = &nrt->dst; 342871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 342960592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34308d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34318d71740cSTom Tucker 34321da177e4SLinus Torvalds out: 34338a14e46fSDavid Ahern fib6_info_release(from); 3434e8599ff4SDavid S. Miller neigh_release(neigh); 34356e157b6aSDavid S. Miller } 34366e157b6aSDavid S. Miller 343770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34388d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3439b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3440830218c1SDavid Ahern const struct in6_addr *gwaddr, 3441830218c1SDavid Ahern struct net_device *dev) 344270ceb4f5SYOSHIFUJI Hideaki { 3443830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3444830218c1SDavid Ahern int ifindex = dev->ifindex; 344570ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34468d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3447c71099acSThomas Graf struct fib6_table *table; 344870ceb4f5SYOSHIFUJI Hideaki 3449830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 345038308473SDavid S. Miller if (!table) 3451c71099acSThomas Graf return NULL; 3452c71099acSThomas Graf 345366f5d6ceSWei Wang rcu_read_lock(); 345438fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 345570ceb4f5SYOSHIFUJI Hideaki if (!fn) 345670ceb4f5SYOSHIFUJI Hideaki goto out; 345770ceb4f5SYOSHIFUJI Hideaki 345866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 34595e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 346070ceb4f5SYOSHIFUJI Hideaki continue; 346193c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 346270ceb4f5SYOSHIFUJI Hideaki continue; 34635e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 346470ceb4f5SYOSHIFUJI Hideaki continue; 3465e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3466e873e4b9SWei Wang continue; 346770ceb4f5SYOSHIFUJI Hideaki break; 346870ceb4f5SYOSHIFUJI Hideaki } 346970ceb4f5SYOSHIFUJI Hideaki out: 347066f5d6ceSWei Wang rcu_read_unlock(); 347170ceb4f5SYOSHIFUJI Hideaki return rt; 347270ceb4f5SYOSHIFUJI Hideaki } 347370ceb4f5SYOSHIFUJI Hideaki 34748d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3475b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3476830218c1SDavid Ahern const struct in6_addr *gwaddr, 3477830218c1SDavid Ahern struct net_device *dev, 347895c96174SEric Dumazet unsigned int pref) 347970ceb4f5SYOSHIFUJI Hideaki { 348086872cb5SThomas Graf struct fib6_config cfg = { 3481238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3482830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 348386872cb5SThomas Graf .fc_dst_len = prefixlen, 348486872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 348586872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3486b91d5329SXin Long .fc_protocol = RTPROT_RA, 3487e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 348815e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3489efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3490efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 349186872cb5SThomas Graf }; 349270ceb4f5SYOSHIFUJI Hideaki 3493830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 34944e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 34954e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 349686872cb5SThomas Graf 3497e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3498e317da96SYOSHIFUJI Hideaki if (!prefixlen) 349986872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 350070ceb4f5SYOSHIFUJI Hideaki 3501acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 350270ceb4f5SYOSHIFUJI Hideaki 3503830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 350470ceb4f5SYOSHIFUJI Hideaki } 350570ceb4f5SYOSHIFUJI Hideaki #endif 350670ceb4f5SYOSHIFUJI Hideaki 35078d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3508afb1d4b5SDavid Ahern const struct in6_addr *addr, 3509afb1d4b5SDavid Ahern struct net_device *dev) 35101da177e4SLinus Torvalds { 3511830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35128d1c802bSDavid Ahern struct fib6_info *rt; 3513c71099acSThomas Graf struct fib6_table *table; 35141da177e4SLinus Torvalds 3515afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 351638308473SDavid S. Miller if (!table) 3517c71099acSThomas Graf return NULL; 35181da177e4SLinus Torvalds 351966f5d6ceSWei Wang rcu_read_lock(); 352066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 35215e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 352293c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 35235e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 35241da177e4SLinus Torvalds break; 35251da177e4SLinus Torvalds } 3526e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3527e873e4b9SWei Wang rt = NULL; 352866f5d6ceSWei Wang rcu_read_unlock(); 35291da177e4SLinus Torvalds return rt; 35301da177e4SLinus Torvalds } 35311da177e4SLinus Torvalds 35328d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3533afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3534ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3535ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35361da177e4SLinus Torvalds { 353786872cb5SThomas Graf struct fib6_config cfg = { 3538ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3539238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 354086872cb5SThomas Graf .fc_ifindex = dev->ifindex, 354186872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 354286872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3543b91d5329SXin Long .fc_protocol = RTPROT_RA, 3544e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 354515e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35465578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3547afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 354886872cb5SThomas Graf }; 35491da177e4SLinus Torvalds 35504e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35511da177e4SLinus Torvalds 3552acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3553830218c1SDavid Ahern struct fib6_table *table; 3554830218c1SDavid Ahern 3555830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3556830218c1SDavid Ahern if (table) 3557830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3558830218c1SDavid Ahern } 35591da177e4SLinus Torvalds 3560afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35611da177e4SLinus Torvalds } 35621da177e4SLinus Torvalds 3563afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3564afb1d4b5SDavid Ahern struct fib6_table *table) 35651da177e4SLinus Torvalds { 35668d1c802bSDavid Ahern struct fib6_info *rt; 35671da177e4SLinus Torvalds 35681da177e4SLinus Torvalds restart: 356966f5d6ceSWei Wang rcu_read_lock(); 357066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3571dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3572dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3573dcd1f572SDavid Ahern 357493c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3575e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3576e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 357766f5d6ceSWei Wang rcu_read_unlock(); 3578afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 35791da177e4SLinus Torvalds goto restart; 35801da177e4SLinus Torvalds } 35811da177e4SLinus Torvalds } 358266f5d6ceSWei Wang rcu_read_unlock(); 3583830218c1SDavid Ahern 3584830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3585830218c1SDavid Ahern } 3586830218c1SDavid Ahern 3587830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3588830218c1SDavid Ahern { 3589830218c1SDavid Ahern struct fib6_table *table; 3590830218c1SDavid Ahern struct hlist_head *head; 3591830218c1SDavid Ahern unsigned int h; 3592830218c1SDavid Ahern 3593830218c1SDavid Ahern rcu_read_lock(); 3594830218c1SDavid Ahern 3595830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3596830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3597830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3598830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3599afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3600830218c1SDavid Ahern } 3601830218c1SDavid Ahern } 3602830218c1SDavid Ahern 3603830218c1SDavid Ahern rcu_read_unlock(); 36041da177e4SLinus Torvalds } 36051da177e4SLinus Torvalds 36065578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36075578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 360886872cb5SThomas Graf struct fib6_config *cfg) 360986872cb5SThomas Graf { 361086872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 361186872cb5SThomas Graf 3612ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3613ca254490SDavid Ahern : RT6_TABLE_MAIN; 361486872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 361586872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 361686872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 361786872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 361886872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 361986872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 3620e8478e80SDavid Ahern cfg->fc_type = rtmsg->rtmsg_type; 362186872cb5SThomas Graf 36225578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3623f1243c2dSBenjamin Thery 36244e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 36254e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 36264e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 362786872cb5SThomas Graf } 362886872cb5SThomas Graf 36295578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36301da177e4SLinus Torvalds { 363186872cb5SThomas Graf struct fib6_config cfg; 36321da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36331da177e4SLinus Torvalds int err; 36341da177e4SLinus Torvalds 36351da177e4SLinus Torvalds switch (cmd) { 36361da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36371da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3638af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36391da177e4SLinus Torvalds return -EPERM; 36401da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36411da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36421da177e4SLinus Torvalds if (err) 36431da177e4SLinus Torvalds return -EFAULT; 36441da177e4SLinus Torvalds 36455578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 364686872cb5SThomas Graf 36471da177e4SLinus Torvalds rtnl_lock(); 36481da177e4SLinus Torvalds switch (cmd) { 36491da177e4SLinus Torvalds case SIOCADDRT: 3650acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36511da177e4SLinus Torvalds break; 36521da177e4SLinus Torvalds case SIOCDELRT: 3653333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36541da177e4SLinus Torvalds break; 36551da177e4SLinus Torvalds default: 36561da177e4SLinus Torvalds err = -EINVAL; 36571da177e4SLinus Torvalds } 36581da177e4SLinus Torvalds rtnl_unlock(); 36591da177e4SLinus Torvalds 36601da177e4SLinus Torvalds return err; 36613ff50b79SStephen Hemminger } 36621da177e4SLinus Torvalds 36631da177e4SLinus Torvalds return -EINVAL; 36641da177e4SLinus Torvalds } 36651da177e4SLinus Torvalds 36661da177e4SLinus Torvalds /* 36671da177e4SLinus Torvalds * Drop the packet on the floor 36681da177e4SLinus Torvalds */ 36691da177e4SLinus Torvalds 3670d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36711da177e4SLinus Torvalds { 3672612f09e8SYOSHIFUJI Hideaki int type; 3673adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3674612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3675612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 36760660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 367745bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3678bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3679bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 36803bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3681612f09e8SYOSHIFUJI Hideaki break; 3682612f09e8SYOSHIFUJI Hideaki } 3683612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3684612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 36853bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 36863bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3687612f09e8SYOSHIFUJI Hideaki break; 3688612f09e8SYOSHIFUJI Hideaki } 36893ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 36901da177e4SLinus Torvalds kfree_skb(skb); 36911da177e4SLinus Torvalds return 0; 36921da177e4SLinus Torvalds } 36931da177e4SLinus Torvalds 36949ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 36959ce8ade0SThomas Graf { 3696612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 36979ce8ade0SThomas Graf } 36989ce8ade0SThomas Graf 3699ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37001da177e4SLinus Torvalds { 3701adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3702612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37031da177e4SLinus Torvalds } 37041da177e4SLinus Torvalds 37059ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37069ce8ade0SThomas Graf { 3707612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37089ce8ade0SThomas Graf } 37099ce8ade0SThomas Graf 3710ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37119ce8ade0SThomas Graf { 3712adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3713612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37149ce8ade0SThomas Graf } 37159ce8ade0SThomas Graf 37161da177e4SLinus Torvalds /* 37171da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37181da177e4SLinus Torvalds */ 37191da177e4SLinus Torvalds 3720360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3721afb1d4b5SDavid Ahern struct inet6_dev *idev, 37221da177e4SLinus Torvalds const struct in6_addr *addr, 3723acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37241da177e4SLinus Torvalds { 3725ca254490SDavid Ahern u32 tb_id; 37264832c30dSDavid Ahern struct net_device *dev = idev->dev; 3727360a9887SDavid Ahern struct fib6_info *f6i; 37285f02ce24SDavid Ahern 3729360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3730360a9887SDavid Ahern if (!f6i) 37311da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 37321da177e4SLinus Torvalds 3733360a9887SDavid Ahern f6i->dst_nocount = true; 3734360a9887SDavid Ahern f6i->dst_host = true; 3735360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3736360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3737e8478e80SDavid Ahern if (anycast) { 3738360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3739360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3740e8478e80SDavid Ahern } else { 3741360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3742360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3743e8478e80SDavid Ahern } 37441da177e4SLinus Torvalds 3745360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 374693531c67SDavid Ahern dev_hold(dev); 3747360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3748360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3749360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3750ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3751360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 37521da177e4SLinus Torvalds 3753360a9887SDavid Ahern return f6i; 37541da177e4SLinus Torvalds } 37551da177e4SLinus Torvalds 3756c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3757c3968a85SDaniel Walter struct arg_dev_net_ip { 3758c3968a85SDaniel Walter struct net_device *dev; 3759c3968a85SDaniel Walter struct net *net; 3760c3968a85SDaniel Walter struct in6_addr *addr; 3761c3968a85SDaniel Walter }; 3762c3968a85SDaniel Walter 37638d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3764c3968a85SDaniel Walter { 3765c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3766c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3767c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3768c3968a85SDaniel Walter 37695e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3770421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 377193c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 377260006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3773c3968a85SDaniel Walter /* remove prefsrc entry */ 377493c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 377560006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3776c3968a85SDaniel Walter } 3777c3968a85SDaniel Walter return 0; 3778c3968a85SDaniel Walter } 3779c3968a85SDaniel Walter 3780c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3781c3968a85SDaniel Walter { 3782c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3783c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3784c3968a85SDaniel Walter .dev = ifp->idev->dev, 3785c3968a85SDaniel Walter .net = net, 3786c3968a85SDaniel Walter .addr = &ifp->addr, 3787c3968a85SDaniel Walter }; 37880c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3789c3968a85SDaniel Walter } 3790c3968a85SDaniel Walter 3791be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3792be7a010dSDuan Jiong 3793be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 37948d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3795be7a010dSDuan Jiong { 3796be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3797be7a010dSDuan Jiong 379893c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 37995e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3800be7a010dSDuan Jiong return -1; 3801be7a010dSDuan Jiong } 3802b16cb459SWei Wang 3803b16cb459SWei Wang /* Further clean up cached routes in exception table. 3804b16cb459SWei Wang * This is needed because cached route may have a different 3805b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3806b16cb459SWei Wang */ 3807b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3808b16cb459SWei Wang 3809be7a010dSDuan Jiong return 0; 3810be7a010dSDuan Jiong } 3811be7a010dSDuan Jiong 3812be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3813be7a010dSDuan Jiong { 3814be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3815be7a010dSDuan Jiong } 3816be7a010dSDuan Jiong 38172127d95aSIdo Schimmel struct arg_netdev_event { 38182127d95aSIdo Schimmel const struct net_device *dev; 38194c981e28SIdo Schimmel union { 38202127d95aSIdo Schimmel unsigned int nh_flags; 38214c981e28SIdo Schimmel unsigned long event; 38224c981e28SIdo Schimmel }; 38232127d95aSIdo Schimmel }; 38242127d95aSIdo Schimmel 38258d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3826d7dedee1SIdo Schimmel { 38278d1c802bSDavid Ahern struct fib6_info *iter; 3828d7dedee1SIdo Schimmel struct fib6_node *fn; 3829d7dedee1SIdo Schimmel 383093c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 383193c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3832d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 383393c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3834d7dedee1SIdo Schimmel while (iter) { 383593c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 383633bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3837d7dedee1SIdo Schimmel return iter; 38388fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 383993c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3840d7dedee1SIdo Schimmel } 3841d7dedee1SIdo Schimmel 3842d7dedee1SIdo Schimmel return NULL; 3843d7dedee1SIdo Schimmel } 3844d7dedee1SIdo Schimmel 38458d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3846d7dedee1SIdo Schimmel { 38475e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 38485e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3849dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3850d7dedee1SIdo Schimmel return true; 3851d7dedee1SIdo Schimmel 3852d7dedee1SIdo Schimmel return false; 3853d7dedee1SIdo Schimmel } 3854d7dedee1SIdo Schimmel 38558d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3856d7dedee1SIdo Schimmel { 38578d1c802bSDavid Ahern struct fib6_info *iter; 3858d7dedee1SIdo Schimmel int total = 0; 3859d7dedee1SIdo Schimmel 3860d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 38615e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3862d7dedee1SIdo Schimmel 386393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3864d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 38655e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3866d7dedee1SIdo Schimmel } 3867d7dedee1SIdo Schimmel 3868d7dedee1SIdo Schimmel return total; 3869d7dedee1SIdo Schimmel } 3870d7dedee1SIdo Schimmel 38718d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3872d7dedee1SIdo Schimmel { 3873d7dedee1SIdo Schimmel int upper_bound = -1; 3874d7dedee1SIdo Schimmel 3875d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 38765e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3877d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3878d7dedee1SIdo Schimmel total) - 1; 3879d7dedee1SIdo Schimmel } 38805e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3881d7dedee1SIdo Schimmel } 3882d7dedee1SIdo Schimmel 38838d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3884d7dedee1SIdo Schimmel { 38858d1c802bSDavid Ahern struct fib6_info *iter; 3886d7dedee1SIdo Schimmel int weight = 0; 3887d7dedee1SIdo Schimmel 3888d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3889d7dedee1SIdo Schimmel 389093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3891d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3892d7dedee1SIdo Schimmel } 3893d7dedee1SIdo Schimmel 38948d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3895d7dedee1SIdo Schimmel { 38968d1c802bSDavid Ahern struct fib6_info *first; 3897d7dedee1SIdo Schimmel int total; 3898d7dedee1SIdo Schimmel 3899d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3900d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3901d7dedee1SIdo Schimmel * sibling route. 3902d7dedee1SIdo Schimmel */ 390393c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3904d7dedee1SIdo Schimmel return; 3905d7dedee1SIdo Schimmel 3906d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3907d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3908d7dedee1SIdo Schimmel * onwards. 3909d7dedee1SIdo Schimmel */ 3910d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3911d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3912d7dedee1SIdo Schimmel return; 3913d7dedee1SIdo Schimmel 3914d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3915d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3916d7dedee1SIdo Schimmel } 3917d7dedee1SIdo Schimmel 39188d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39192127d95aSIdo Schimmel { 39202127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39217aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39222127d95aSIdo Schimmel 3923421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 39245e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 39257aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3926d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39271de178edSIdo Schimmel } 39282127d95aSIdo Schimmel 39292127d95aSIdo Schimmel return 0; 39302127d95aSIdo Schimmel } 39312127d95aSIdo Schimmel 39322127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39332127d95aSIdo Schimmel { 39342127d95aSIdo Schimmel struct arg_netdev_event arg = { 39352127d95aSIdo Schimmel .dev = dev, 39366802f3adSIdo Schimmel { 39372127d95aSIdo Schimmel .nh_flags = nh_flags, 39386802f3adSIdo Schimmel }, 39392127d95aSIdo Schimmel }; 39402127d95aSIdo Schimmel 39412127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39422127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39432127d95aSIdo Schimmel 39442127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39452127d95aSIdo Schimmel } 39462127d95aSIdo Schimmel 39478d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39481de178edSIdo Schimmel const struct net_device *dev) 39491de178edSIdo Schimmel { 39508d1c802bSDavid Ahern struct fib6_info *iter; 39511de178edSIdo Schimmel 39525e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39531de178edSIdo Schimmel return true; 395493c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39555e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39561de178edSIdo Schimmel return true; 39571de178edSIdo Schimmel 39581de178edSIdo Schimmel return false; 39591de178edSIdo Schimmel } 39601de178edSIdo Schimmel 39618d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39621de178edSIdo Schimmel { 39638d1c802bSDavid Ahern struct fib6_info *iter; 39641de178edSIdo Schimmel 39651de178edSIdo Schimmel rt->should_flush = 1; 396693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39671de178edSIdo Schimmel iter->should_flush = 1; 39681de178edSIdo Schimmel } 39691de178edSIdo Schimmel 39708d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39711de178edSIdo Schimmel const struct net_device *down_dev) 39721de178edSIdo Schimmel { 39738d1c802bSDavid Ahern struct fib6_info *iter; 39741de178edSIdo Schimmel unsigned int dead = 0; 39751de178edSIdo Schimmel 39765e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 39775e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 39781de178edSIdo Schimmel dead++; 397993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39805e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 39815e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 39821de178edSIdo Schimmel dead++; 39831de178edSIdo Schimmel 39841de178edSIdo Schimmel return dead; 39851de178edSIdo Schimmel } 39861de178edSIdo Schimmel 39878d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 39881de178edSIdo Schimmel const struct net_device *dev, 39891de178edSIdo Schimmel unsigned int nh_flags) 39901de178edSIdo Schimmel { 39918d1c802bSDavid Ahern struct fib6_info *iter; 39921de178edSIdo Schimmel 39935e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39945e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 399593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39965e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39975e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 39981de178edSIdo Schimmel } 39991de178edSIdo Schimmel 4000a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40018d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40021da177e4SLinus Torvalds { 40034c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40044c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40057aef6859SDavid Ahern struct net *net = dev_net(dev); 40068ed67789SDaniel Lezcano 4007421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 400827c6fa73SIdo Schimmel return 0; 400927c6fa73SIdo Schimmel 401027c6fa73SIdo Schimmel switch (arg->event) { 401127c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 40125e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 401327c6fa73SIdo Schimmel case NETDEV_DOWN: 40141de178edSIdo Schimmel if (rt->should_flush) 401527c6fa73SIdo Schimmel return -1; 401693c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 40175e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 40181de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40191de178edSIdo Schimmel unsigned int count; 40201de178edSIdo Schimmel 40211de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 402293c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40231de178edSIdo Schimmel rt6_multipath_flush(rt); 40241de178edSIdo Schimmel return -1; 40251de178edSIdo Schimmel } 40261de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40271de178edSIdo Schimmel RTNH_F_LINKDOWN); 40287aef6859SDavid Ahern fib6_update_sernum(net, rt); 4029d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40301de178edSIdo Schimmel } 40311de178edSIdo Schimmel return -2; 403227c6fa73SIdo Schimmel case NETDEV_CHANGE: 40335e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 403493c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 403527c6fa73SIdo Schimmel break; 40365e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 4037d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 403827c6fa73SIdo Schimmel break; 40392b241361SIdo Schimmel } 4040c159d30cSDavid S. Miller 40411da177e4SLinus Torvalds return 0; 40421da177e4SLinus Torvalds } 40431da177e4SLinus Torvalds 404427c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40451da177e4SLinus Torvalds { 40464c981e28SIdo Schimmel struct arg_netdev_event arg = { 40478ed67789SDaniel Lezcano .dev = dev, 40486802f3adSIdo Schimmel { 40494c981e28SIdo Schimmel .event = event, 40506802f3adSIdo Schimmel }, 40518ed67789SDaniel Lezcano }; 40528ed67789SDaniel Lezcano 40534c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 40544c981e28SIdo Schimmel } 40554c981e28SIdo Schimmel 40564c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40574c981e28SIdo Schimmel { 40584c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40594c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40604c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40611da177e4SLinus Torvalds } 40621da177e4SLinus Torvalds 406395c96174SEric Dumazet struct rt6_mtu_change_arg { 40641da177e4SLinus Torvalds struct net_device *dev; 406595c96174SEric Dumazet unsigned int mtu; 40661da177e4SLinus Torvalds }; 40671da177e4SLinus Torvalds 40688d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40691da177e4SLinus Torvalds { 40701da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40711da177e4SLinus Torvalds struct inet6_dev *idev; 40721da177e4SLinus Torvalds 40731da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 40741da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 40751da177e4SLinus Torvalds We still use this lock to block changes 40761da177e4SLinus Torvalds caused by addrconf/ndisc. 40771da177e4SLinus Torvalds */ 40781da177e4SLinus Torvalds 40791da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 408038308473SDavid S. Miller if (!idev) 40811da177e4SLinus Torvalds return 0; 40821da177e4SLinus Torvalds 40831da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 40841da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 40851da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 40861da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 40871da177e4SLinus Torvalds */ 40885e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 4089d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4090d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4091d4ead6b3SDavid Ahern 4092d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4093d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4094d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4095d4ead6b3SDavid Ahern 4096f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4097e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4098f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 40994b32b5adSMartin KaFai Lau } 41001da177e4SLinus Torvalds return 0; 41011da177e4SLinus Torvalds } 41021da177e4SLinus Torvalds 410395c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41041da177e4SLinus Torvalds { 4105c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4106c71099acSThomas Graf .dev = dev, 4107c71099acSThomas Graf .mtu = mtu, 4108c71099acSThomas Graf }; 41091da177e4SLinus Torvalds 41100c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41111da177e4SLinus Torvalds } 41121da177e4SLinus Torvalds 4113ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41145176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4115aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 411686872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4117ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 411886872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 411986872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 412051ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4121c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 412219e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 412319e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 412432bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4125622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41263b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4127aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4128eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4129eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4130eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 413186872cb5SThomas Graf }; 413286872cb5SThomas Graf 413386872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4134333c4301SDavid Ahern struct fib6_config *cfg, 4135333c4301SDavid Ahern struct netlink_ext_ack *extack) 41361da177e4SLinus Torvalds { 413786872cb5SThomas Graf struct rtmsg *rtm; 413886872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4139c78ba6d6SLubomir Rintel unsigned int pref; 414086872cb5SThomas Graf int err; 41411da177e4SLinus Torvalds 4142fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4143fceb6435SJohannes Berg NULL); 414486872cb5SThomas Graf if (err < 0) 414586872cb5SThomas Graf goto errout; 41461da177e4SLinus Torvalds 414786872cb5SThomas Graf err = -EINVAL; 414886872cb5SThomas Graf rtm = nlmsg_data(nlh); 414986872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 415086872cb5SThomas Graf 415186872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 415286872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 415386872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 415486872cb5SThomas Graf cfg->fc_flags = RTF_UP; 415586872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 4156ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 415786872cb5SThomas Graf 4158ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4159ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4160b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4161b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 416286872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 416386872cb5SThomas Graf 4164ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4165ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4166ab79ad14SMaciej Żenczykowski 41671f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41681f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41691f56a01fSMartin KaFai Lau 4170fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4171fc1e64e1SDavid Ahern 417215e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 417386872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 41743b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 417586872cb5SThomas Graf 417686872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 417767b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 417886872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 41791da177e4SLinus Torvalds } 418086872cb5SThomas Graf 418186872cb5SThomas Graf if (tb[RTA_DST]) { 418286872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 418386872cb5SThomas Graf 418486872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 418586872cb5SThomas Graf goto errout; 418686872cb5SThomas Graf 418786872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 41881da177e4SLinus Torvalds } 418986872cb5SThomas Graf 419086872cb5SThomas Graf if (tb[RTA_SRC]) { 419186872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 419286872cb5SThomas Graf 419386872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 419486872cb5SThomas Graf goto errout; 419586872cb5SThomas Graf 419686872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 41971da177e4SLinus Torvalds } 419886872cb5SThomas Graf 4199c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 420067b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4201c3968a85SDaniel Walter 420286872cb5SThomas Graf if (tb[RTA_OIF]) 420386872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 420486872cb5SThomas Graf 420586872cb5SThomas Graf if (tb[RTA_PRIORITY]) 420686872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 420786872cb5SThomas Graf 420886872cb5SThomas Graf if (tb[RTA_METRICS]) { 420986872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 421086872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42111da177e4SLinus Torvalds } 421286872cb5SThomas Graf 421386872cb5SThomas Graf if (tb[RTA_TABLE]) 421486872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 421586872cb5SThomas Graf 421651ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 421751ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 421851ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42199ed59592SDavid Ahern 42209ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4221c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42229ed59592SDavid Ahern if (err < 0) 42239ed59592SDavid Ahern goto errout; 422451ebd318SNicolas Dichtel } 422551ebd318SNicolas Dichtel 4226c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4227c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4228c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4229c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4230c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4231c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4232c78ba6d6SLubomir Rintel } 4233c78ba6d6SLubomir Rintel 423419e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 423519e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 423619e42e45SRoopa Prabhu 42379ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 423819e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 423919e42e45SRoopa Prabhu 4240c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42419ed59592SDavid Ahern if (err < 0) 42429ed59592SDavid Ahern goto errout; 42439ed59592SDavid Ahern } 42449ed59592SDavid Ahern 424532bc201eSXin Long if (tb[RTA_EXPIRES]) { 424632bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 424732bc201eSXin Long 424832bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 424932bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 425032bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 425132bc201eSXin Long } 425232bc201eSXin Long } 425332bc201eSXin Long 425486872cb5SThomas Graf err = 0; 425586872cb5SThomas Graf errout: 425686872cb5SThomas Graf return err; 42571da177e4SLinus Torvalds } 42581da177e4SLinus Torvalds 42596b9ea5a6SRoopa Prabhu struct rt6_nh { 42608d1c802bSDavid Ahern struct fib6_info *fib6_info; 42616b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42626b9ea5a6SRoopa Prabhu struct list_head next; 42636b9ea5a6SRoopa Prabhu }; 42646b9ea5a6SRoopa Prabhu 42656b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 42666b9ea5a6SRoopa Prabhu { 42676b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42686b9ea5a6SRoopa Prabhu 42696b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42707d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 42716b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 42726b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 42736b9ea5a6SRoopa Prabhu } 42746b9ea5a6SRoopa Prabhu } 42756b9ea5a6SRoopa Prabhu 4276d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4277d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 42788d1c802bSDavid Ahern struct fib6_info *rt, 42798d1c802bSDavid Ahern struct fib6_config *r_cfg) 42806b9ea5a6SRoopa Prabhu { 42816b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42826b9ea5a6SRoopa Prabhu int err = -EEXIST; 42836b9ea5a6SRoopa Prabhu 42846b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42858d1c802bSDavid Ahern /* check if fib6_info already exists */ 42868d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 42876b9ea5a6SRoopa Prabhu return err; 42886b9ea5a6SRoopa Prabhu } 42896b9ea5a6SRoopa Prabhu 42906b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 42916b9ea5a6SRoopa Prabhu if (!nh) 42926b9ea5a6SRoopa Prabhu return -ENOMEM; 42938d1c802bSDavid Ahern nh->fib6_info = rt; 4294d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, r_cfg); 42956b9ea5a6SRoopa Prabhu if (err) { 42966b9ea5a6SRoopa Prabhu kfree(nh); 42976b9ea5a6SRoopa Prabhu return err; 42986b9ea5a6SRoopa Prabhu } 42996b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43006b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43016b9ea5a6SRoopa Prabhu 43026b9ea5a6SRoopa Prabhu return 0; 43036b9ea5a6SRoopa Prabhu } 43046b9ea5a6SRoopa Prabhu 43058d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43068d1c802bSDavid Ahern struct fib6_info *rt_last, 43073b1137feSDavid Ahern struct nl_info *info, 43083b1137feSDavid Ahern __u16 nlflags) 43093b1137feSDavid Ahern { 43103b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43113b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43123b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43133b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43143b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43153b1137feSDavid Ahern */ 431693c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 431793c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43188d1c802bSDavid Ahern struct fib6_info, 431993c2fb25SDavid Ahern fib6_siblings); 43203b1137feSDavid Ahern } 43213b1137feSDavid Ahern 43223b1137feSDavid Ahern if (rt) 43233b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43243b1137feSDavid Ahern } 43253b1137feSDavid Ahern 4326333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4327333c4301SDavid Ahern struct netlink_ext_ack *extack) 432851ebd318SNicolas Dichtel { 43298d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43303b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 433151ebd318SNicolas Dichtel struct fib6_config r_cfg; 433251ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43338d1c802bSDavid Ahern struct fib6_info *rt; 43346b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43356b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43363b1137feSDavid Ahern __u16 nlflags; 433751ebd318SNicolas Dichtel int remaining; 433851ebd318SNicolas Dichtel int attrlen; 43396b9ea5a6SRoopa Prabhu int err = 1; 43406b9ea5a6SRoopa Prabhu int nhn = 0; 43416b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43426b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43436b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 434451ebd318SNicolas Dichtel 43453b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43463b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43473b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43483b1137feSDavid Ahern 434935f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 435051ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 435151ebd318SNicolas Dichtel 43526b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43538d1c802bSDavid Ahern * fib6_info structs per nexthop 43546b9ea5a6SRoopa Prabhu */ 435551ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 435651ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 435751ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 435851ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 435951ebd318SNicolas Dichtel 436051ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 436151ebd318SNicolas Dichtel if (attrlen > 0) { 436251ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 436351ebd318SNicolas Dichtel 436451ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 436551ebd318SNicolas Dichtel if (nla) { 436667b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 436751ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 436851ebd318SNicolas Dichtel } 436919e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 437019e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 437119e42e45SRoopa Prabhu if (nla) 437219e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 437351ebd318SNicolas Dichtel } 43746b9ea5a6SRoopa Prabhu 437568e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4376acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43778c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43788c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43798c5b83f0SRoopa Prabhu rt = NULL; 43806b9ea5a6SRoopa Prabhu goto cleanup; 43818c5b83f0SRoopa Prabhu } 4382b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4383b5d2d75eSDavid Ahern err = -EINVAL; 4384b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4385b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4386b5d2d75eSDavid Ahern fib6_info_release(rt); 4387b5d2d75eSDavid Ahern goto cleanup; 4388b5d2d75eSDavid Ahern } 43896b9ea5a6SRoopa Prabhu 43905e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4391398958aeSIdo Schimmel 4392d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4393d4ead6b3SDavid Ahern rt, &r_cfg); 439451ebd318SNicolas Dichtel if (err) { 439593531c67SDavid Ahern fib6_info_release(rt); 43966b9ea5a6SRoopa Prabhu goto cleanup; 439751ebd318SNicolas Dichtel } 43986b9ea5a6SRoopa Prabhu 43996b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 440051ebd318SNicolas Dichtel } 44016b9ea5a6SRoopa Prabhu 44023b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44033b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44043b1137feSDavid Ahern * the full route when done 44053b1137feSDavid Ahern */ 44063b1137feSDavid Ahern info->skip_notify = 1; 44073b1137feSDavid Ahern 44086b9ea5a6SRoopa Prabhu err_nh = NULL; 44096b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44108d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44118d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44123b1137feSDavid Ahern 4413f7225172SDavid Ahern if (!err) { 4414f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4415f7225172SDavid Ahern rt_last = nh->fib6_info; 4416f7225172SDavid Ahern 44176b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4418f7225172SDavid Ahern if (!rt_notif) 44198d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4420f7225172SDavid Ahern } 44216b9ea5a6SRoopa Prabhu 44228d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44238d1c802bSDavid Ahern nh->fib6_info = NULL; 44246b9ea5a6SRoopa Prabhu if (err) { 44256b9ea5a6SRoopa Prabhu if (replace && nhn) 44266b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 44276b9ea5a6SRoopa Prabhu err_nh = nh; 44286b9ea5a6SRoopa Prabhu goto add_errout; 44296b9ea5a6SRoopa Prabhu } 44306b9ea5a6SRoopa Prabhu 44311a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 443227596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 443327596472SMichal Kubeček * we have already failed to add the first nexthop: 443427596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 443527596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 443627596472SMichal Kubeček * be added to it. 44371a72418bSNicolas Dichtel */ 443827596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 443927596472SMichal Kubeček NLM_F_REPLACE); 44406b9ea5a6SRoopa Prabhu nhn++; 44416b9ea5a6SRoopa Prabhu } 44426b9ea5a6SRoopa Prabhu 44433b1137feSDavid Ahern /* success ... tell user about new route */ 44443b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44456b9ea5a6SRoopa Prabhu goto cleanup; 44466b9ea5a6SRoopa Prabhu 44476b9ea5a6SRoopa Prabhu add_errout: 44483b1137feSDavid Ahern /* send notification for routes that were added so that 44493b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44503b1137feSDavid Ahern * coherent 44513b1137feSDavid Ahern */ 44523b1137feSDavid Ahern if (rt_notif) 44533b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44543b1137feSDavid Ahern 44556b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44566b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44576b9ea5a6SRoopa Prabhu if (err_nh == nh) 44586b9ea5a6SRoopa Prabhu break; 4459333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44606b9ea5a6SRoopa Prabhu } 44616b9ea5a6SRoopa Prabhu 44626b9ea5a6SRoopa Prabhu cleanup: 44636b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44648d1c802bSDavid Ahern if (nh->fib6_info) 44658d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44666b9ea5a6SRoopa Prabhu list_del(&nh->next); 44676b9ea5a6SRoopa Prabhu kfree(nh); 44686b9ea5a6SRoopa Prabhu } 44696b9ea5a6SRoopa Prabhu 44706b9ea5a6SRoopa Prabhu return err; 44716b9ea5a6SRoopa Prabhu } 44726b9ea5a6SRoopa Prabhu 4473333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4474333c4301SDavid Ahern struct netlink_ext_ack *extack) 44756b9ea5a6SRoopa Prabhu { 44766b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44776b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44786b9ea5a6SRoopa Prabhu int remaining; 44796b9ea5a6SRoopa Prabhu int attrlen; 44806b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 44816b9ea5a6SRoopa Prabhu 44826b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 44836b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 44846b9ea5a6SRoopa Prabhu 44856b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 44866b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 44876b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 44886b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 44896b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 44906b9ea5a6SRoopa Prabhu 44916b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 44926b9ea5a6SRoopa Prabhu if (attrlen > 0) { 44936b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 44946b9ea5a6SRoopa Prabhu 44956b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 44966b9ea5a6SRoopa Prabhu if (nla) { 44976b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 44986b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 44996b9ea5a6SRoopa Prabhu } 45006b9ea5a6SRoopa Prabhu } 4501333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45026b9ea5a6SRoopa Prabhu if (err) 45036b9ea5a6SRoopa Prabhu last_err = err; 45046b9ea5a6SRoopa Prabhu 450551ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 450651ebd318SNicolas Dichtel } 450751ebd318SNicolas Dichtel 450851ebd318SNicolas Dichtel return last_err; 450951ebd318SNicolas Dichtel } 451051ebd318SNicolas Dichtel 4511c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4512c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45131da177e4SLinus Torvalds { 451486872cb5SThomas Graf struct fib6_config cfg; 451586872cb5SThomas Graf int err; 45161da177e4SLinus Torvalds 4517333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 451886872cb5SThomas Graf if (err < 0) 451986872cb5SThomas Graf return err; 452086872cb5SThomas Graf 452151ebd318SNicolas Dichtel if (cfg.fc_mp) 4522333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45230ae81335SDavid Ahern else { 45240ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4525333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45261da177e4SLinus Torvalds } 45270ae81335SDavid Ahern } 45281da177e4SLinus Torvalds 4529c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4530c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45311da177e4SLinus Torvalds { 453286872cb5SThomas Graf struct fib6_config cfg; 453386872cb5SThomas Graf int err; 45341da177e4SLinus Torvalds 4535333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 453686872cb5SThomas Graf if (err < 0) 453786872cb5SThomas Graf return err; 453886872cb5SThomas Graf 453951ebd318SNicolas Dichtel if (cfg.fc_mp) 4540333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 454151ebd318SNicolas Dichtel else 4542acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45431da177e4SLinus Torvalds } 45441da177e4SLinus Torvalds 45458d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4546339bf98fSThomas Graf { 4547beb1afacSDavid Ahern int nexthop_len = 0; 4548beb1afacSDavid Ahern 454993c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4550beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4551beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4552beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 45535e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4554beb1afacSDavid Ahern 455593c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4556beb1afacSDavid Ahern } 4557beb1afacSDavid Ahern 4558339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4559339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4560339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4561339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4562339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4563339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4564339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4565339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4566339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45676a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4568ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4569c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 457019e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 45715e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4572beb1afacSDavid Ahern + nexthop_len; 4573beb1afacSDavid Ahern } 4574beb1afacSDavid Ahern 45758d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 45765be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4577beb1afacSDavid Ahern { 45785e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4579f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4580f9d882eaSIdo Schimmel 45815e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4582beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4583dcd1f572SDavid Ahern 4584dcd1f572SDavid Ahern rcu_read_lock(); 4585dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4586beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4587dcd1f572SDavid Ahern rcu_read_unlock(); 4588beb1afacSDavid Ahern } 4589beb1afacSDavid Ahern 459093c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 45915e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4592beb1afacSDavid Ahern goto nla_put_failure; 4593beb1afacSDavid Ahern } 4594beb1afacSDavid Ahern 45955e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 45965e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 459761e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 459861e4d01eSIdo Schimmel 45995be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 46005e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 46015e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4602beb1afacSDavid Ahern goto nla_put_failure; 4603beb1afacSDavid Ahern 46045e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 46055e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4606beb1afacSDavid Ahern goto nla_put_failure; 4607beb1afacSDavid Ahern 4608beb1afacSDavid Ahern return 0; 4609beb1afacSDavid Ahern 4610beb1afacSDavid Ahern nla_put_failure: 4611beb1afacSDavid Ahern return -EMSGSIZE; 4612beb1afacSDavid Ahern } 4613beb1afacSDavid Ahern 46145be083ceSDavid Ahern /* add multipath next hop */ 46158d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4616beb1afacSDavid Ahern { 46175e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4618beb1afacSDavid Ahern struct rtnexthop *rtnh; 4619beb1afacSDavid Ahern unsigned int flags = 0; 4620beb1afacSDavid Ahern 4621beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4622beb1afacSDavid Ahern if (!rtnh) 4623beb1afacSDavid Ahern goto nla_put_failure; 4624beb1afacSDavid Ahern 46255e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 46265e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4627beb1afacSDavid Ahern 46285be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4629beb1afacSDavid Ahern goto nla_put_failure; 4630beb1afacSDavid Ahern 4631beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4632beb1afacSDavid Ahern 4633beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4634beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4635beb1afacSDavid Ahern 4636beb1afacSDavid Ahern return 0; 4637beb1afacSDavid Ahern 4638beb1afacSDavid Ahern nla_put_failure: 4639beb1afacSDavid Ahern return -EMSGSIZE; 4640339bf98fSThomas Graf } 4641339bf98fSThomas Graf 4642d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46438d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4644d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 464515e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4646f8cfe2ceSDavid Ahern unsigned int flags) 46471da177e4SLinus Torvalds { 464822d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 464922d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 465022d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46511da177e4SLinus Torvalds struct nlmsghdr *nlh; 465222d0bd82SXin Long struct rtmsg *rtm; 4653d4ead6b3SDavid Ahern long expires = 0; 46541da177e4SLinus Torvalds 465515e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 465638308473SDavid S. Miller if (!nlh) 465726932566SPatrick McHardy return -EMSGSIZE; 46582d7202bfSThomas Graf 465922d0bd82SXin Long if (rt6) { 466022d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 466122d0bd82SXin Long rt6_src = &rt6->rt6i_src; 466222d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 466322d0bd82SXin Long } else { 466422d0bd82SXin Long rt6_dst = &rt->fib6_dst; 466522d0bd82SXin Long rt6_src = &rt->fib6_src; 466622d0bd82SXin Long rt6_flags = rt->fib6_flags; 466722d0bd82SXin Long } 466822d0bd82SXin Long 46692d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46701da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 467122d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 467222d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46731da177e4SLinus Torvalds rtm->rtm_tos = 0; 467493c2fb25SDavid Ahern if (rt->fib6_table) 467593c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4676c71099acSThomas Graf else 46779e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 46789e762a4aSPatrick McHardy rtm->rtm_table = table; 4679c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4680c78679e8SDavid S. Miller goto nla_put_failure; 4681e8478e80SDavid Ahern 4682e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46831da177e4SLinus Torvalds rtm->rtm_flags = 0; 46841da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 468593c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46861da177e4SLinus Torvalds 468722d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46881da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46891da177e4SLinus Torvalds 4690d4ead6b3SDavid Ahern if (dest) { 4691d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4692c78679e8SDavid S. Miller goto nla_put_failure; 46931da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46941da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 469522d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4696c78679e8SDavid S. Miller goto nla_put_failure; 46971da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46981da177e4SLinus Torvalds if (src) { 4699930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4700c78679e8SDavid S. Miller goto nla_put_failure; 47011da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4702c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 470322d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4704c78679e8SDavid S. Miller goto nla_put_failure; 47051da177e4SLinus Torvalds #endif 47067bc570c8SYOSHIFUJI Hideaki if (iif) { 47077bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 470822d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4709fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47102cf75070SNikolay Aleksandrov 47117bc570c8SYOSHIFUJI Hideaki if (err == 0) 47127bc570c8SYOSHIFUJI Hideaki return 0; 4713fd61c6baSDavid Ahern if (err < 0) 47147bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47157bc570c8SYOSHIFUJI Hideaki } else 47167bc570c8SYOSHIFUJI Hideaki #endif 4717c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4718c78679e8SDavid S. Miller goto nla_put_failure; 4719d4ead6b3SDavid Ahern } else if (dest) { 47201da177e4SLinus Torvalds struct in6_addr saddr_buf; 4721d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4722930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4723c78679e8SDavid S. Miller goto nla_put_failure; 4724c3968a85SDaniel Walter } 4725c3968a85SDaniel Walter 472693c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4727c3968a85SDaniel Walter struct in6_addr saddr_buf; 472893c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4729930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4730c78679e8SDavid S. Miller goto nla_put_failure; 47311da177e4SLinus Torvalds } 47322d7202bfSThomas Graf 4733d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4734d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47352d7202bfSThomas Graf goto nla_put_failure; 47362d7202bfSThomas Graf 473793c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4738beb1afacSDavid Ahern goto nla_put_failure; 4739beb1afacSDavid Ahern 4740beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4741beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4742beb1afacSDavid Ahern */ 474322d0bd82SXin Long if (rt6) { 474422d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 474522d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 474622d0bd82SXin Long goto nla_put_failure; 474722d0bd82SXin Long 474822d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 474922d0bd82SXin Long goto nla_put_failure; 475022d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47518d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4752beb1afacSDavid Ahern struct nlattr *mp; 4753beb1afacSDavid Ahern 4754beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4755beb1afacSDavid Ahern if (!mp) 4756beb1afacSDavid Ahern goto nla_put_failure; 4757beb1afacSDavid Ahern 4758beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4759beb1afacSDavid Ahern goto nla_put_failure; 4760beb1afacSDavid Ahern 4761beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 476293c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4763beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 476494f826b8SEric Dumazet goto nla_put_failure; 476594f826b8SEric Dumazet } 47662d7202bfSThomas Graf 4767beb1afacSDavid Ahern nla_nest_end(skb, mp); 4768beb1afacSDavid Ahern } else { 47695be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4770c78679e8SDavid S. Miller goto nla_put_failure; 4771beb1afacSDavid Ahern } 47728253947eSLi Wei 477322d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 477414895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 477514895687SDavid Ahern expires -= jiffies; 477614895687SDavid Ahern } 477769cdf8f9SYOSHIFUJI Hideaki 4778d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4779e3703b3dSThomas Graf goto nla_put_failure; 47801da177e4SLinus Torvalds 478122d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4782c78ba6d6SLubomir Rintel goto nla_put_failure; 4783c78ba6d6SLubomir Rintel 478419e42e45SRoopa Prabhu 4785053c095aSJohannes Berg nlmsg_end(skb, nlh); 4786053c095aSJohannes Berg return 0; 47872d7202bfSThomas Graf 47882d7202bfSThomas Graf nla_put_failure: 478926932566SPatrick McHardy nlmsg_cancel(skb, nlh); 479026932566SPatrick McHardy return -EMSGSIZE; 47911da177e4SLinus Torvalds } 47921da177e4SLinus Torvalds 47938d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47941da177e4SLinus Torvalds { 47951da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 47961f17e2f2SDavid Ahern struct net *net = arg->net; 47971f17e2f2SDavid Ahern 4798421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 47991f17e2f2SDavid Ahern return 0; 48001da177e4SLinus Torvalds 48012d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 48022d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4803f8cfe2ceSDavid Ahern 4804f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4805f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 480693c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4807f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4808f8cfe2ceSDavid Ahern return 1; 4809f8cfe2ceSDavid Ahern } 4810f8cfe2ceSDavid Ahern } 48111da177e4SLinus Torvalds 4812d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4813d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 4814d4ead6b3SDavid Ahern arg->cb->nlh->nlmsg_seq, NLM_F_MULTI); 48151da177e4SLinus Torvalds } 48161da177e4SLinus Torvalds 4817c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4818c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48191da177e4SLinus Torvalds { 48203b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4821ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 482218c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4823a68886a6SDavid Ahern struct fib6_info *from; 482418c3a61cSRoopa Prabhu struct dst_entry *dst; 48251da177e4SLinus Torvalds struct rt6_info *rt; 4826ab364a6fSThomas Graf struct sk_buff *skb; 4827ab364a6fSThomas Graf struct rtmsg *rtm; 48284c9483b2SDavid S. Miller struct flowi6 fl6; 482918c3a61cSRoopa Prabhu bool fibmatch; 4830ab364a6fSThomas Graf 4831fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4832c21ef3e3SDavid Ahern extack); 4833ab364a6fSThomas Graf if (err < 0) 4834ab364a6fSThomas Graf goto errout; 4835ab364a6fSThomas Graf 4836ab364a6fSThomas Graf err = -EINVAL; 48374c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 483838b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 483938b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 484018c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4841ab364a6fSThomas Graf 4842ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4843ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4844ab364a6fSThomas Graf goto errout; 4845ab364a6fSThomas Graf 48464e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4847ab364a6fSThomas Graf } 4848ab364a6fSThomas Graf 4849ab364a6fSThomas Graf if (tb[RTA_DST]) { 4850ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4851ab364a6fSThomas Graf goto errout; 4852ab364a6fSThomas Graf 48534e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4854ab364a6fSThomas Graf } 4855ab364a6fSThomas Graf 4856ab364a6fSThomas Graf if (tb[RTA_IIF]) 4857ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4858ab364a6fSThomas Graf 4859ab364a6fSThomas Graf if (tb[RTA_OIF]) 486072331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4861ab364a6fSThomas Graf 48622e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48632e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48642e47b291SLorenzo Colitti 4865622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4866622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4867622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4868622ec2c9SLorenzo Colitti else 4869622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4870622ec2c9SLorenzo Colitti 4871eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4872eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4873eacb9384SRoopa Prabhu 4874eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4875eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4876eacb9384SRoopa Prabhu 4877eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4878eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 4879eacb9384SRoopa Prabhu &fl6.flowi6_proto, extack); 4880eacb9384SRoopa Prabhu if (err) 4881eacb9384SRoopa Prabhu goto errout; 4882eacb9384SRoopa Prabhu } 4883eacb9384SRoopa Prabhu 4884ab364a6fSThomas Graf if (iif) { 4885ab364a6fSThomas Graf struct net_device *dev; 488672331bc0SShmulik Ladkani int flags = 0; 488772331bc0SShmulik Ladkani 4888121622dbSFlorian Westphal rcu_read_lock(); 4889121622dbSFlorian Westphal 4890121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4891ab364a6fSThomas Graf if (!dev) { 4892121622dbSFlorian Westphal rcu_read_unlock(); 4893ab364a6fSThomas Graf err = -ENODEV; 4894ab364a6fSThomas Graf goto errout; 4895ab364a6fSThomas Graf } 489672331bc0SShmulik Ladkani 489772331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 489872331bc0SShmulik Ladkani 489972331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 490072331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 490172331bc0SShmulik Ladkani 4902b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4903121622dbSFlorian Westphal 4904121622dbSFlorian Westphal rcu_read_unlock(); 490572331bc0SShmulik Ladkani } else { 490672331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 490772331bc0SShmulik Ladkani 490818c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 490918c3a61cSRoopa Prabhu } 491018c3a61cSRoopa Prabhu 491118c3a61cSRoopa Prabhu 491218c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 491318c3a61cSRoopa Prabhu if (rt->dst.error) { 491418c3a61cSRoopa Prabhu err = rt->dst.error; 491518c3a61cSRoopa Prabhu ip6_rt_put(rt); 491618c3a61cSRoopa Prabhu goto errout; 4917ab364a6fSThomas Graf } 49181da177e4SLinus Torvalds 49199d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49209d6acb3bSWANG Cong err = rt->dst.error; 49219d6acb3bSWANG Cong ip6_rt_put(rt); 49229d6acb3bSWANG Cong goto errout; 49239d6acb3bSWANG Cong } 49249d6acb3bSWANG Cong 49251da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 492638308473SDavid S. Miller if (!skb) { 492794e187c0SAmerigo Wang ip6_rt_put(rt); 4928ab364a6fSThomas Graf err = -ENOBUFS; 4929ab364a6fSThomas Graf goto errout; 4930ab364a6fSThomas Graf } 49311da177e4SLinus Torvalds 4932d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4933a68886a6SDavid Ahern 4934a68886a6SDavid Ahern rcu_read_lock(); 4935a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4936a68886a6SDavid Ahern 493718c3a61cSRoopa Prabhu if (fibmatch) 4938a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 493918c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 494018c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 494118c3a61cSRoopa Prabhu else 4942a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4943a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4944d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4945d4ead6b3SDavid Ahern 0); 4946a68886a6SDavid Ahern rcu_read_unlock(); 4947a68886a6SDavid Ahern 49481da177e4SLinus Torvalds if (err < 0) { 4949ab364a6fSThomas Graf kfree_skb(skb); 4950ab364a6fSThomas Graf goto errout; 49511da177e4SLinus Torvalds } 49521da177e4SLinus Torvalds 495315e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4954ab364a6fSThomas Graf errout: 49551da177e4SLinus Torvalds return err; 49561da177e4SLinus Torvalds } 49571da177e4SLinus Torvalds 49588d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 495937a1d361SRoopa Prabhu unsigned int nlm_flags) 49601da177e4SLinus Torvalds { 49611da177e4SLinus Torvalds struct sk_buff *skb; 49625578689aSDaniel Lezcano struct net *net = info->nl_net; 4963528c4cebSDenis V. Lunev u32 seq; 4964528c4cebSDenis V. Lunev int err; 49650d51aa80SJamal Hadi Salim 4966528c4cebSDenis V. Lunev err = -ENOBUFS; 496738308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 496886872cb5SThomas Graf 496919e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 497038308473SDavid S. Miller if (!skb) 497121713ebcSThomas Graf goto errout; 49721da177e4SLinus Torvalds 4973d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 4974f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 497526932566SPatrick McHardy if (err < 0) { 497626932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 497726932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 497826932566SPatrick McHardy kfree_skb(skb); 497926932566SPatrick McHardy goto errout; 498026932566SPatrick McHardy } 498115e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 49825578689aSDaniel Lezcano info->nlh, gfp_any()); 49831ce85fe4SPablo Neira Ayuso return; 498421713ebcSThomas Graf errout: 498521713ebcSThomas Graf if (err < 0) 49865578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 49871da177e4SLinus Torvalds } 49881da177e4SLinus Torvalds 49898ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4990351638e7SJiri Pirko unsigned long event, void *ptr) 49918ed67789SDaniel Lezcano { 4992351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4993c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 49948ed67789SDaniel Lezcano 4995242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 4996242d3a49SWANG Cong return NOTIFY_OK; 4997242d3a49SWANG Cong 4998242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 4999421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 5000d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50018ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50028ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5003d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50048ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5005d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50068ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50078ed67789SDaniel Lezcano #endif 500876da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 500976da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 501076da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 501176da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 501276da0704SWANG Cong */ 501312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5014242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 501512d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 501612d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5017242d3a49SWANG Cong #endif 50188ed67789SDaniel Lezcano } 50198ed67789SDaniel Lezcano 50208ed67789SDaniel Lezcano return NOTIFY_OK; 50218ed67789SDaniel Lezcano } 50228ed67789SDaniel Lezcano 50231da177e4SLinus Torvalds /* 50241da177e4SLinus Torvalds * /proc 50251da177e4SLinus Torvalds */ 50261da177e4SLinus Torvalds 50271da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50281da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50291da177e4SLinus Torvalds { 503069ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50311da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 503269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 503369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 503481eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 503569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 503669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5037fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 503869ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50391da177e4SLinus Torvalds 50401da177e4SLinus Torvalds return 0; 50411da177e4SLinus Torvalds } 50421da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50431da177e4SLinus Torvalds 50441da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50451da177e4SLinus Torvalds 50461da177e4SLinus Torvalds static 5047fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50481da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50491da177e4SLinus Torvalds { 5050c486da34SLucian Adrian Grijincu struct net *net; 5051c486da34SLucian Adrian Grijincu int delay; 5052c486da34SLucian Adrian Grijincu if (!write) 5053c486da34SLucian Adrian Grijincu return -EINVAL; 5054c486da34SLucian Adrian Grijincu 5055c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5056c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 50578d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 50582ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50591da177e4SLinus Torvalds return 0; 50601da177e4SLinus Torvalds } 50611da177e4SLinus Torvalds 5062fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 50631da177e4SLinus Torvalds { 50641da177e4SLinus Torvalds .procname = "flush", 50654990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 50661da177e4SLinus Torvalds .maxlen = sizeof(int), 506789c8b3a1SDave Jones .mode = 0200, 50686d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 50691da177e4SLinus Torvalds }, 50701da177e4SLinus Torvalds { 50711da177e4SLinus Torvalds .procname = "gc_thresh", 50729a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 50731da177e4SLinus Torvalds .maxlen = sizeof(int), 50741da177e4SLinus Torvalds .mode = 0644, 50756d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50761da177e4SLinus Torvalds }, 50771da177e4SLinus Torvalds { 50781da177e4SLinus Torvalds .procname = "max_size", 50794990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 50801da177e4SLinus Torvalds .maxlen = sizeof(int), 50811da177e4SLinus Torvalds .mode = 0644, 50826d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50831da177e4SLinus Torvalds }, 50841da177e4SLinus Torvalds { 50851da177e4SLinus Torvalds .procname = "gc_min_interval", 50864990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 50871da177e4SLinus Torvalds .maxlen = sizeof(int), 50881da177e4SLinus Torvalds .mode = 0644, 50896d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50901da177e4SLinus Torvalds }, 50911da177e4SLinus Torvalds { 50921da177e4SLinus Torvalds .procname = "gc_timeout", 50934990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 50941da177e4SLinus Torvalds .maxlen = sizeof(int), 50951da177e4SLinus Torvalds .mode = 0644, 50966d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50971da177e4SLinus Torvalds }, 50981da177e4SLinus Torvalds { 50991da177e4SLinus Torvalds .procname = "gc_interval", 51004990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51011da177e4SLinus Torvalds .maxlen = sizeof(int), 51021da177e4SLinus Torvalds .mode = 0644, 51036d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51041da177e4SLinus Torvalds }, 51051da177e4SLinus Torvalds { 51061da177e4SLinus Torvalds .procname = "gc_elasticity", 51074990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51081da177e4SLinus Torvalds .maxlen = sizeof(int), 51091da177e4SLinus Torvalds .mode = 0644, 5110f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51111da177e4SLinus Torvalds }, 51121da177e4SLinus Torvalds { 51131da177e4SLinus Torvalds .procname = "mtu_expires", 51144990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51151da177e4SLinus Torvalds .maxlen = sizeof(int), 51161da177e4SLinus Torvalds .mode = 0644, 51176d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51181da177e4SLinus Torvalds }, 51191da177e4SLinus Torvalds { 51201da177e4SLinus Torvalds .procname = "min_adv_mss", 51214990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51221da177e4SLinus Torvalds .maxlen = sizeof(int), 51231da177e4SLinus Torvalds .mode = 0644, 5124f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51251da177e4SLinus Torvalds }, 51261da177e4SLinus Torvalds { 51271da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51284990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51291da177e4SLinus Torvalds .maxlen = sizeof(int), 51301da177e4SLinus Torvalds .mode = 0644, 51316d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51321da177e4SLinus Torvalds }, 5133f8572d8fSEric W. Biederman { } 51341da177e4SLinus Torvalds }; 51351da177e4SLinus Torvalds 51362c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5137760f2d01SDaniel Lezcano { 5138760f2d01SDaniel Lezcano struct ctl_table *table; 5139760f2d01SDaniel Lezcano 5140760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5141760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5142760f2d01SDaniel Lezcano GFP_KERNEL); 51435ee09105SYOSHIFUJI Hideaki 51445ee09105SYOSHIFUJI Hideaki if (table) { 51455ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5146c486da34SLucian Adrian Grijincu table[0].extra1 = net; 514786393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51485ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51495ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51505ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 51515ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 51525ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 51535ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 51545ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 51559c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 5156464dc801SEric W. Biederman 5157464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5158464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5159464dc801SEric W. Biederman table[0].procname = NULL; 51605ee09105SYOSHIFUJI Hideaki } 51615ee09105SYOSHIFUJI Hideaki 5162760f2d01SDaniel Lezcano return table; 5163760f2d01SDaniel Lezcano } 51641da177e4SLinus Torvalds #endif 51651da177e4SLinus Torvalds 51662c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5167cdb18761SDaniel Lezcano { 5168633d424bSPavel Emelyanov int ret = -ENOMEM; 51698ed67789SDaniel Lezcano 517086393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 517186393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5172f2fc6a54SBenjamin Thery 5173fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5174fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5175fc66f95cSEric Dumazet 5176421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5177421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5178421842edSDavid Ahern GFP_KERNEL); 5179421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5180421842edSDavid Ahern goto out_ip6_dst_entries; 5181421842edSDavid Ahern 51828ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 51838ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 51848ed67789SDaniel Lezcano GFP_KERNEL); 51858ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5186421842edSDavid Ahern goto out_fib6_null_entry; 5187d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 518862fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 518962fa8a84SDavid S. Miller ip6_template_metrics, true); 51908ed67789SDaniel Lezcano 51918ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5192feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 51938ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 51948ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 51958ed67789SDaniel Lezcano GFP_KERNEL); 519668fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 519768fffc67SPeter Zijlstra goto out_ip6_null_entry; 5198d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 519962fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 520062fa8a84SDavid S. Miller ip6_template_metrics, true); 52018ed67789SDaniel Lezcano 52028ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52038ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52048ed67789SDaniel Lezcano GFP_KERNEL); 520568fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 520668fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5207d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 520862fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 520962fa8a84SDavid S. Miller ip6_template_metrics, true); 52108ed67789SDaniel Lezcano #endif 52118ed67789SDaniel Lezcano 5212b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5213b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5214b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5215b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5216b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5217b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5218b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5219b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 5220b339a47cSPeter Zijlstra 52216891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52226891a346SBenjamin Thery 52238ed67789SDaniel Lezcano ret = 0; 52248ed67789SDaniel Lezcano out: 52258ed67789SDaniel Lezcano return ret; 5226f2fc6a54SBenjamin Thery 522768fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 522868fffc67SPeter Zijlstra out_ip6_prohibit_entry: 522968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 523068fffc67SPeter Zijlstra out_ip6_null_entry: 523168fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 523268fffc67SPeter Zijlstra #endif 5233421842edSDavid Ahern out_fib6_null_entry: 5234421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5235fc66f95cSEric Dumazet out_ip6_dst_entries: 5236fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5237f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5238f2fc6a54SBenjamin Thery goto out; 5239cdb18761SDaniel Lezcano } 5240cdb18761SDaniel Lezcano 52412c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5242cdb18761SDaniel Lezcano { 5243421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52448ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52458ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52468ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52478ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 52488ed67789SDaniel Lezcano #endif 524941bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5250cdb18761SDaniel Lezcano } 5251cdb18761SDaniel Lezcano 5252d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5253d189634eSThomas Graf { 5254d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5255c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5256c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 52573617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 52583617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5259d189634eSThomas Graf #endif 5260d189634eSThomas Graf return 0; 5261d189634eSThomas Graf } 5262d189634eSThomas Graf 5263d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5264d189634eSThomas Graf { 5265d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5266ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5267ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5268d189634eSThomas Graf #endif 5269d189634eSThomas Graf } 5270d189634eSThomas Graf 5271cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5272cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5273cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5274cdb18761SDaniel Lezcano }; 5275cdb18761SDaniel Lezcano 5276c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5277c3426b47SDavid S. Miller { 5278c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5279c3426b47SDavid S. Miller 5280c3426b47SDavid S. Miller if (!bp) 5281c3426b47SDavid S. Miller return -ENOMEM; 5282c3426b47SDavid S. Miller inet_peer_base_init(bp); 5283c3426b47SDavid S. Miller net->ipv6.peers = bp; 5284c3426b47SDavid S. Miller return 0; 5285c3426b47SDavid S. Miller } 5286c3426b47SDavid S. Miller 5287c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5288c3426b47SDavid S. Miller { 5289c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5290c3426b47SDavid S. Miller 5291c3426b47SDavid S. Miller net->ipv6.peers = NULL; 529256a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5293c3426b47SDavid S. Miller kfree(bp); 5294c3426b47SDavid S. Miller } 5295c3426b47SDavid S. Miller 52962b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5297c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5298c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5299c3426b47SDavid S. Miller }; 5300c3426b47SDavid S. Miller 5301d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5302d189634eSThomas Graf .init = ip6_route_net_init_late, 5303d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5304d189634eSThomas Graf }; 5305d189634eSThomas Graf 53068ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53078ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5308242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53098ed67789SDaniel Lezcano }; 53108ed67789SDaniel Lezcano 53112f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53122f460933SWANG Cong { 53132f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53142f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53152f460933SWANG Cong * manually for init_net */ 5316421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 53172f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53182f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53192f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53202f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53212f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53222f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53232f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53242f460933SWANG Cong #endif 53252f460933SWANG Cong } 53262f460933SWANG Cong 5327433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53281da177e4SLinus Torvalds { 5329433d49c3SDaniel Lezcano int ret; 53308d0b94afSMartin KaFai Lau int cpu; 5331433d49c3SDaniel Lezcano 53329a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53339a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53349a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53359a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53369a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5337c19a28e1SFernando Carrijo goto out; 533814e50e57SDavid S. Miller 5339fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53408ed67789SDaniel Lezcano if (ret) 5341bdb3289fSDaniel Lezcano goto out_kmem_cache; 5342bdb3289fSDaniel Lezcano 5343c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5344c3426b47SDavid S. Miller if (ret) 5345e8803b6cSDavid S. Miller goto out_dst_entries; 53462a0c451aSThomas Graf 53477e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 53487e52b33bSDavid S. Miller if (ret) 53497e52b33bSDavid S. Miller goto out_register_inetpeer; 5350c3426b47SDavid S. Miller 53515dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 53525dc121e9SArnaud Ebalard 5353e8803b6cSDavid S. Miller ret = fib6_init(); 5354433d49c3SDaniel Lezcano if (ret) 53558ed67789SDaniel Lezcano goto out_register_subsys; 5356433d49c3SDaniel Lezcano 5357433d49c3SDaniel Lezcano ret = xfrm6_init(); 5358433d49c3SDaniel Lezcano if (ret) 5359e8803b6cSDavid S. Miller goto out_fib6_init; 5360c35b7e72SDaniel Lezcano 5361433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5362433d49c3SDaniel Lezcano if (ret) 5363433d49c3SDaniel Lezcano goto xfrm6_init; 53647e5449c2SDaniel Lezcano 5365d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5366d189634eSThomas Graf if (ret) 5367d189634eSThomas Graf goto fib6_rules_init; 5368d189634eSThomas Graf 536916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 537016feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 537116feebcfSFlorian Westphal if (ret < 0) 537216feebcfSFlorian Westphal goto out_register_late_subsys; 537316feebcfSFlorian Westphal 537416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 537516feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 537616feebcfSFlorian Westphal if (ret < 0) 537716feebcfSFlorian Westphal goto out_register_late_subsys; 537816feebcfSFlorian Westphal 537916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 538016feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 538116feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 538216feebcfSFlorian Westphal if (ret < 0) 5383d189634eSThomas Graf goto out_register_late_subsys; 5384433d49c3SDaniel Lezcano 53858ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5386cdb18761SDaniel Lezcano if (ret) 5387d189634eSThomas Graf goto out_register_late_subsys; 53888ed67789SDaniel Lezcano 53898d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 53908d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 53918d0b94afSMartin KaFai Lau 53928d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 53938d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 53948d0b94afSMartin KaFai Lau } 53958d0b94afSMartin KaFai Lau 5396433d49c3SDaniel Lezcano out: 5397433d49c3SDaniel Lezcano return ret; 5398433d49c3SDaniel Lezcano 5399d189634eSThomas Graf out_register_late_subsys: 540016feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5401d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5402433d49c3SDaniel Lezcano fib6_rules_init: 5403433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5404433d49c3SDaniel Lezcano xfrm6_init: 5405433d49c3SDaniel Lezcano xfrm6_fini(); 54062a0c451aSThomas Graf out_fib6_init: 54072a0c451aSThomas Graf fib6_gc_cleanup(); 54088ed67789SDaniel Lezcano out_register_subsys: 54098ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54107e52b33bSDavid S. Miller out_register_inetpeer: 54117e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5412fc66f95cSEric Dumazet out_dst_entries: 5413fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5414433d49c3SDaniel Lezcano out_kmem_cache: 5415f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5416433d49c3SDaniel Lezcano goto out; 54171da177e4SLinus Torvalds } 54181da177e4SLinus Torvalds 54191da177e4SLinus Torvalds void ip6_route_cleanup(void) 54201da177e4SLinus Torvalds { 54218ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5422d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5423101367c2SThomas Graf fib6_rules_cleanup(); 54241da177e4SLinus Torvalds xfrm6_fini(); 54251da177e4SLinus Torvalds fib6_gc_cleanup(); 5426c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54278ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 542841bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5429f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54301da177e4SLinus Torvalds } 5431