11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 105702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 106702cea56SDavid Ahern int strict); 1078d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 108d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1098d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 110d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11116a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11216a16cd3SDavid Ahern unsigned int flags); 1138d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11435732d01SWei Wang struct in6_addr *daddr, 11535732d01SWei Wang struct in6_addr *saddr); 1161da177e4SLinus Torvalds 11770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1188d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev, 12295c96174SEric Dumazet unsigned int pref); 1238d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 124b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 125830218c1SDavid Ahern const struct in6_addr *gwaddr, 126830218c1SDavid Ahern struct net_device *dev); 12770ceb4f5SYOSHIFUJI Hideaki #endif 12870ceb4f5SYOSHIFUJI Hideaki 1298d0b94afSMartin KaFai Lau struct uncached_list { 1308d0b94afSMartin KaFai Lau spinlock_t lock; 1318d0b94afSMartin KaFai Lau struct list_head head; 1328d0b94afSMartin KaFai Lau }; 1338d0b94afSMartin KaFai Lau 1348d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1358d0b94afSMartin KaFai Lau 136510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1378d0b94afSMartin KaFai Lau { 1388d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1398d0b94afSMartin KaFai Lau 1408d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1438d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1448d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1458d0b94afSMartin KaFai Lau } 1468d0b94afSMartin KaFai Lau 147510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1488d0b94afSMartin KaFai Lau { 1498d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1508d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15181eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1548d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15581eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1568d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau } 1598d0b94afSMartin KaFai Lau 1608d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1618d0b94afSMartin KaFai Lau { 1628d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1638d0b94afSMartin KaFai Lau int cpu; 1648d0b94afSMartin KaFai Lau 165e332bc67SEric W. Biederman if (dev == loopback_dev) 166e332bc67SEric W. Biederman return; 167e332bc67SEric W. Biederman 1688d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1698d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1708d0b94afSMartin KaFai Lau struct rt6_info *rt; 1718d0b94afSMartin KaFai Lau 1728d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1738d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1748d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1758d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1768d0b94afSMartin KaFai Lau 177e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1788d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1798d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau 182e332bc67SEric W. Biederman if (rt_dev == dev) { 1838d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1848d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1858d0b94afSMartin KaFai Lau dev_put(rt_dev); 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau } 1888d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau } 1918d0b94afSMartin KaFai Lau 192f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 193f894cbf8SDavid S. Miller struct sk_buff *skb, 194f894cbf8SDavid S. Miller const void *daddr) 19539232973SDavid S. Miller { 196a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19739232973SDavid S. Miller return (const void *) p; 198f894cbf8SDavid S. Miller else if (skb) 199f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 20039232973SDavid S. Miller return daddr; 20139232973SDavid S. Miller } 20239232973SDavid S. Miller 203f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 204f8a1b43bSDavid Ahern struct net_device *dev, 205f894cbf8SDavid S. Miller struct sk_buff *skb, 206f894cbf8SDavid S. Miller const void *daddr) 207d3aaeb38SDavid S. Miller { 20839232973SDavid S. Miller struct neighbour *n; 20939232973SDavid S. Miller 210f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 211f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 212f83c7790SDavid S. Miller if (n) 213f83c7790SDavid S. Miller return n; 2147adf3246SStefano Brivio 2157adf3246SStefano Brivio n = neigh_create(&nd_tbl, daddr, dev); 2167adf3246SStefano Brivio return IS_ERR(n) ? NULL : n; 217f8a1b43bSDavid Ahern } 218f8a1b43bSDavid Ahern 219f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 220f8a1b43bSDavid Ahern struct sk_buff *skb, 221f8a1b43bSDavid Ahern const void *daddr) 222f8a1b43bSDavid Ahern { 223f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 224f8a1b43bSDavid Ahern 225f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 226f83c7790SDavid S. Miller } 227f83c7790SDavid S. Miller 22863fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22963fca65dSJulian Anastasov { 23063fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23163fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23263fca65dSJulian Anastasov 233f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23463fca65dSJulian Anastasov if (!daddr) 23563fca65dSJulian Anastasov return; 23663fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23763fca65dSJulian Anastasov return; 23863fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23963fca65dSJulian Anastasov return; 24063fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24163fca65dSJulian Anastasov } 24263fca65dSJulian Anastasov 2439a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2441da177e4SLinus Torvalds .family = AF_INET6, 2451da177e4SLinus Torvalds .gc = ip6_dst_gc, 2461da177e4SLinus Torvalds .gc_thresh = 1024, 2471da177e4SLinus Torvalds .check = ip6_dst_check, 2480dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 249ebb762f2SSteffen Klassert .mtu = ip6_mtu, 250d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2511da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2521da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2531da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2541da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2551da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2566e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2579f8955ccSEric W. Biederman .local_out = __ip6_local_out, 258f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25963fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2601da177e4SLinus Torvalds }; 2611da177e4SLinus Torvalds 262ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 263ec831ea7SRoland Dreier { 264618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 265618f9bc7SSteffen Klassert 266618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 267ec831ea7SRoland Dreier } 268ec831ea7SRoland Dreier 2696700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2706700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27114e50e57SDavid S. Miller { 27214e50e57SDavid S. Miller } 27314e50e57SDavid S. Miller 2746700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2756700c270SDavid S. Miller struct sk_buff *skb) 276b587ee3bSDavid S. Miller { 277b587ee3bSDavid S. Miller } 278b587ee3bSDavid S. Miller 27914e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28014e50e57SDavid S. Miller .family = AF_INET6, 28114e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28214e50e57SDavid S. Miller .check = ip6_dst_check, 283ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 284214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28514e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 286b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2870a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 288f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28914e50e57SDavid S. Miller }; 29014e50e57SDavid S. Miller 29162fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29214edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29362fa8a84SDavid S. Miller }; 29462fa8a84SDavid S. Miller 2958d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29693c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29793c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29893c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29993c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 300421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 301421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 302421842edSDavid Ahern }; 303421842edSDavid Ahern 304fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3051da177e4SLinus Torvalds .dst = { 3061da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3071da177e4SLinus Torvalds .__use = 1, 3082c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3091da177e4SLinus Torvalds .error = -ENETUNREACH, 3101da177e4SLinus Torvalds .input = ip6_pkt_discard, 3111da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3121da177e4SLinus Torvalds }, 3131da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3141da177e4SLinus Torvalds }; 3151da177e4SLinus Torvalds 316101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 317101367c2SThomas Graf 318fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 319101367c2SThomas Graf .dst = { 320101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 321101367c2SThomas Graf .__use = 1, 3222c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 323101367c2SThomas Graf .error = -EACCES, 3249ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3259ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 326101367c2SThomas Graf }, 327101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 328101367c2SThomas Graf }; 329101367c2SThomas Graf 330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 331101367c2SThomas Graf .dst = { 332101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 333101367c2SThomas Graf .__use = 1, 3342c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 335101367c2SThomas Graf .error = -EINVAL, 336352e512cSHerbert Xu .input = dst_discard, 337ede2059dSEric W. Biederman .output = dst_discard_out, 338101367c2SThomas Graf }, 339101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 340101367c2SThomas Graf }; 341101367c2SThomas Graf 342101367c2SThomas Graf #endif 343101367c2SThomas Graf 344ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 345ebfa45f0SMartin KaFai Lau { 346ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 347ebfa45f0SMartin KaFai Lau 348ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 349ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 350ebfa45f0SMartin KaFai Lau } 351ebfa45f0SMartin KaFai Lau 3521da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35393531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 354ad706862SMartin KaFai Lau int flags) 3551da177e4SLinus Torvalds { 35697bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 357b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 358cf911662SDavid S. Miller 35981eb8447SWei Wang if (rt) { 360ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36281eb8447SWei Wang } 3638104891bSSteffen Klassert 364cf911662SDavid S. Miller return rt; 3651da177e4SLinus Torvalds } 3669ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 367d52d3997SMartin KaFai Lau 3681da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3691da177e4SLinus Torvalds { 3701da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 371a68886a6SDavid Ahern struct fib6_info *from; 3728d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3731da177e4SLinus Torvalds 3741620a336SDavid Ahern ip_dst_metrics_put(dst); 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 4313b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4328d1c802bSDavid Ahern struct fib6_info *match, 43352bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 434b75cc8f9SDavid Ahern const struct sk_buff *skb, 43552bd4c0cSNicolas Dichtel int strict) 43651ebd318SNicolas Dichtel { 4378d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43851ebd318SNicolas Dichtel 439b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 440b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 441b673d6ccSJakub Sitnicki */ 442b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 443b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 444b673d6ccSJakub Sitnicki 445ad1601aeSDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.fib_nh_upper_bound)) 4463d709f69SIdo Schimmel return match; 447bbfcd776SIdo Schimmel 44893c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44993c2fb25SDavid Ahern fib6_siblings) { 450702cea56SDavid Ahern const struct fib6_nh *nh = &sibling->fib6_nh; 4515e670d84SDavid Ahern int nh_upper_bound; 4525e670d84SDavid Ahern 453702cea56SDavid Ahern nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound); 4545e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4553d709f69SIdo Schimmel continue; 456702cea56SDavid Ahern if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0) 45752bd4c0cSNicolas Dichtel break; 45851ebd318SNicolas Dichtel match = sibling; 45951ebd318SNicolas Dichtel break; 46051ebd318SNicolas Dichtel } 4613d709f69SIdo Schimmel 46251ebd318SNicolas Dichtel return match; 46351ebd318SNicolas Dichtel } 46451ebd318SNicolas Dichtel 4651da177e4SLinus Torvalds /* 46666f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4671da177e4SLinus Torvalds */ 4681da177e4SLinus Torvalds 469*0c59d006SDavid Ahern static bool __rt6_device_match(struct net *net, const struct fib6_nh *nh, 470*0c59d006SDavid Ahern const struct in6_addr *saddr, int oif, int flags) 471*0c59d006SDavid Ahern { 472*0c59d006SDavid Ahern const struct net_device *dev; 473*0c59d006SDavid Ahern 474*0c59d006SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 475*0c59d006SDavid Ahern return false; 476*0c59d006SDavid Ahern 477*0c59d006SDavid Ahern dev = nh->fib_nh_dev; 478*0c59d006SDavid Ahern if (oif) { 479*0c59d006SDavid Ahern if (dev->ifindex == oif) 480*0c59d006SDavid Ahern return true; 481*0c59d006SDavid Ahern } else { 482*0c59d006SDavid Ahern if (ipv6_chk_addr(net, saddr, dev, 483*0c59d006SDavid Ahern flags & RT6_LOOKUP_F_IFACE)) 484*0c59d006SDavid Ahern return true; 485*0c59d006SDavid Ahern } 486*0c59d006SDavid Ahern 487*0c59d006SDavid Ahern return false; 488*0c59d006SDavid Ahern } 489*0c59d006SDavid Ahern 4908d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4918d1c802bSDavid Ahern struct fib6_info *rt, 492b71d1d42SEric Dumazet const struct in6_addr *saddr, 4931da177e4SLinus Torvalds int oif, 494d420895eSYOSHIFUJI Hideaki int flags) 4951da177e4SLinus Torvalds { 496*0c59d006SDavid Ahern const struct fib6_nh *nh; 4978d1c802bSDavid Ahern struct fib6_info *sprt; 4981da177e4SLinus Torvalds 4995e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 500ad1601aeSDavid Ahern !(rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD)) 5018067bb8cSIdo Schimmel return rt; 502dd3abc4eSYOSHIFUJI Hideaki 5038fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 504*0c59d006SDavid Ahern nh = &sprt->fib6_nh; 505*0c59d006SDavid Ahern if (__rt6_device_match(net, nh, saddr, oif, flags)) 5061da177e4SLinus Torvalds return sprt; 5071da177e4SLinus Torvalds } 5081da177e4SLinus Torvalds 509eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 510421842edSDavid Ahern return net->ipv6.fib6_null_entry; 5111da177e4SLinus Torvalds 512ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5131da177e4SLinus Torvalds } 5141da177e4SLinus Torvalds 51527097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 516c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 517c2f17e82SHannes Frederic Sowa struct work_struct work; 518c2f17e82SHannes Frederic Sowa struct in6_addr target; 519c2f17e82SHannes Frederic Sowa struct net_device *dev; 520c2f17e82SHannes Frederic Sowa }; 521c2f17e82SHannes Frederic Sowa 522c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 523c2f17e82SHannes Frederic Sowa { 524c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 525c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 526c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 527c2f17e82SHannes Frederic Sowa 528c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 529adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 530c2f17e82SHannes Frederic Sowa dev_put(work->dev); 531662f5533SMichael Büsch kfree(work); 532c2f17e82SHannes Frederic Sowa } 533c2f17e82SHannes Frederic Sowa 534cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh) 53527097255SYOSHIFUJI Hideaki { 536f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5375e670d84SDavid Ahern const struct in6_addr *nh_gw; 538f2c31e32SEric Dumazet struct neighbour *neigh; 5395e670d84SDavid Ahern struct net_device *dev; 540f547fac6SSabrina Dubroca struct inet6_dev *idev; 5415e670d84SDavid Ahern 54227097255SYOSHIFUJI Hideaki /* 54327097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 54427097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 54527097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 54627097255SYOSHIFUJI Hideaki * 54727097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 54827097255SYOSHIFUJI Hideaki * to no more than one per minute. 54927097255SYOSHIFUJI Hideaki */ 550cc3a86c8SDavid Ahern if (fib6_nh->fib_nh_gw_family) 551fdd6681dSAmerigo Wang return; 5525e670d84SDavid Ahern 553cc3a86c8SDavid Ahern nh_gw = &fib6_nh->fib_nh_gw6; 554cc3a86c8SDavid Ahern dev = fib6_nh->fib_nh_dev; 5552152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 556f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5575e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5582152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5598d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5608d6c31bfSMartin KaFai Lau goto out; 5618d6c31bfSMartin KaFai Lau 5622152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 563990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 564990edb42SMartin KaFai Lau time_after(jiffies, 565dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 566c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 567990edb42SMartin KaFai Lau if (work) 5687e980569SJiri Benc __neigh_set_probe_once(neigh); 569990edb42SMartin KaFai Lau } 570c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 571cc3a86c8SDavid Ahern } else if (time_after(jiffies, fib6_nh->last_probe + 572f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 573990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 574990edb42SMartin KaFai Lau } 575c2f17e82SHannes Frederic Sowa 576c2f17e82SHannes Frederic Sowa if (work) { 577cc3a86c8SDavid Ahern fib6_nh->last_probe = jiffies; 578c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5795e670d84SDavid Ahern work->target = *nh_gw; 5805e670d84SDavid Ahern dev_hold(dev); 5815e670d84SDavid Ahern work->dev = dev; 582c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 583c2f17e82SHannes Frederic Sowa } 584990edb42SMartin KaFai Lau 5858d6c31bfSMartin KaFai Lau out: 5862152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 587f2c31e32SEric Dumazet } 58827097255SYOSHIFUJI Hideaki #else 589cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh) 59027097255SYOSHIFUJI Hideaki { 59127097255SYOSHIFUJI Hideaki } 59227097255SYOSHIFUJI Hideaki #endif 59327097255SYOSHIFUJI Hideaki 5941da177e4SLinus Torvalds /* 595554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5961da177e4SLinus Torvalds */ 5971ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh) 5981da177e4SLinus Torvalds { 599afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 6005e670d84SDavid Ahern struct neighbour *neigh; 601f2c31e32SEric Dumazet 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6031ba9a895SDavid Ahern neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev, 6041ba9a895SDavid Ahern &fib6_nh->fib_nh_gw6); 605145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 606145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 607554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 609398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 610a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 611afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6127e980569SJiri Benc else 6137e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 614398bcbebSYOSHIFUJI Hideaki #endif 615145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 616afc154e9SHannes Frederic Sowa } else { 617afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6187e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 619a5a81f0bSPaul Marks } 620145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 621145a3621SYOSHIFUJI Hideaki / 吉藤英明 622a5a81f0bSPaul Marks return ret; 6231da177e4SLinus Torvalds } 6241da177e4SLinus Torvalds 625702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 626702cea56SDavid Ahern int strict) 627554cfb7eSYOSHIFUJI Hideaki { 6286e1809a5SDavid Ahern int m = 0; 6294d0c5911SYOSHIFUJI Hideaki 6306e1809a5SDavid Ahern if (!oif || nh->fib_nh_dev->ifindex == oif) 6316e1809a5SDavid Ahern m = 2; 6326e1809a5SDavid Ahern 63377d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 634afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 635ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 636702cea56SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2; 637ebacaaa0SYOSHIFUJI Hideaki #endif 6381ba9a895SDavid Ahern if ((strict & RT6_LOOKUP_F_REACHABLE) && 639702cea56SDavid Ahern !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) { 6401ba9a895SDavid Ahern int n = rt6_check_neigh(nh); 641afc154e9SHannes Frederic Sowa if (n < 0) 642afc154e9SHannes Frederic Sowa return n; 643afc154e9SHannes Frederic Sowa } 644554cfb7eSYOSHIFUJI Hideaki return m; 645554cfb7eSYOSHIFUJI Hideaki } 646554cfb7eSYOSHIFUJI Hideaki 64728679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags, 64828679ed1SDavid Ahern int oif, int strict, int *mpri, bool *do_rr) 649554cfb7eSYOSHIFUJI Hideaki { 650afc154e9SHannes Frederic Sowa bool match_do_rr = false; 65128679ed1SDavid Ahern bool rc = false; 65228679ed1SDavid Ahern int m; 65335103d11SAndy Gospodarek 65428679ed1SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 6558067bb8cSIdo Schimmel goto out; 6568067bb8cSIdo Schimmel 65728679ed1SDavid Ahern if (ip6_ignore_linkdown(nh->fib_nh_dev) && 65828679ed1SDavid Ahern nh->fib_nh_flags & RTNH_F_LINKDOWN && 659d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 66035103d11SAndy Gospodarek goto out; 661554cfb7eSYOSHIFUJI Hideaki 66228679ed1SDavid Ahern m = rt6_score_route(nh, fib6_flags, oif, strict); 6637e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 664afc154e9SHannes Frederic Sowa match_do_rr = true; 665afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6667e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 667f11e6659SDavid S. Miller goto out; 6681da177e4SLinus Torvalds } 669f11e6659SDavid S. Miller 670afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 67128679ed1SDavid Ahern rt6_probe(nh); 672afc154e9SHannes Frederic Sowa 6737e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 674afc154e9SHannes Frederic Sowa if (m > *mpri) { 675afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 676afc154e9SHannes Frederic Sowa *mpri = m; 67728679ed1SDavid Ahern rc = true; 678afc154e9SHannes Frederic Sowa } 679f11e6659SDavid S. Miller out: 68028679ed1SDavid Ahern return rc; 6811da177e4SLinus Torvalds } 6821da177e4SLinus Torvalds 68330c15f03SDavid Ahern static void __find_rr_leaf(struct fib6_info *rt_start, 68430c15f03SDavid Ahern struct fib6_info *nomatch, u32 metric, 68530c15f03SDavid Ahern struct fib6_info **match, struct fib6_info **cont, 68630c15f03SDavid Ahern int oif, int strict, bool *do_rr, int *mpri) 68730c15f03SDavid Ahern { 68830c15f03SDavid Ahern struct fib6_info *rt; 68930c15f03SDavid Ahern 69030c15f03SDavid Ahern for (rt = rt_start; 69130c15f03SDavid Ahern rt && rt != nomatch; 69230c15f03SDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 69330c15f03SDavid Ahern struct fib6_nh *nh; 69430c15f03SDavid Ahern 69530c15f03SDavid Ahern if (cont && rt->fib6_metric != metric) { 69630c15f03SDavid Ahern *cont = rt; 69730c15f03SDavid Ahern return; 69830c15f03SDavid Ahern } 69930c15f03SDavid Ahern 70030c15f03SDavid Ahern if (fib6_check_expired(rt)) 70130c15f03SDavid Ahern continue; 70230c15f03SDavid Ahern 70330c15f03SDavid Ahern nh = &rt->fib6_nh; 70430c15f03SDavid Ahern if (find_match(nh, rt->fib6_flags, oif, strict, mpri, do_rr)) 70530c15f03SDavid Ahern *match = rt; 70630c15f03SDavid Ahern } 70730c15f03SDavid Ahern } 70830c15f03SDavid Ahern 7098d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 7108d1c802bSDavid Ahern struct fib6_info *leaf, 7118d1c802bSDavid Ahern struct fib6_info *rr_head, 712afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 713afc154e9SHannes Frederic Sowa bool *do_rr) 714f11e6659SDavid S. Miller { 71530c15f03SDavid Ahern struct fib6_info *match = NULL, *cont = NULL; 716f11e6659SDavid S. Miller int mpri = -1; 717f11e6659SDavid S. Miller 71830c15f03SDavid Ahern __find_rr_leaf(rr_head, NULL, metric, &match, &cont, 71930c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7209fbdcfafSSteffen Klassert 72130c15f03SDavid Ahern __find_rr_leaf(leaf, rr_head, metric, &match, &cont, 72230c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert if (match || !cont) 7259fbdcfafSSteffen Klassert return match; 7269fbdcfafSSteffen Klassert 72730c15f03SDavid Ahern __find_rr_leaf(cont, NULL, metric, &match, NULL, 72830c15f03SDavid Ahern oif, strict, do_rr, &mpri); 729f11e6659SDavid S. Miller 730f11e6659SDavid S. Miller return match; 731f11e6659SDavid S. Miller } 732f11e6659SDavid S. Miller 7338d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7348d1040e8SWei Wang int oif, int strict) 735f11e6659SDavid S. Miller { 7368d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7378d1c802bSDavid Ahern struct fib6_info *match, *rt0; 738afc154e9SHannes Frederic Sowa bool do_rr = false; 73917ecf590SWei Wang int key_plen; 740f11e6659SDavid S. Miller 741421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 742421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7438d1040e8SWei Wang 74466f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 745f11e6659SDavid S. Miller if (!rt0) 74666f5d6ceSWei Wang rt0 = leaf; 747f11e6659SDavid S. Miller 74817ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 74917ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75017ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75117ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75217ecf590SWei Wang */ 75393c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75417ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75593c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75693c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 75717ecf590SWei Wang #endif 75817ecf590SWei Wang if (fn->fn_bit != key_plen) 759421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76017ecf590SWei Wang 76193c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 762afc154e9SHannes Frederic Sowa &do_rr); 763f11e6659SDavid S. Miller 764afc154e9SHannes Frederic Sowa if (do_rr) { 7658fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 766f11e6659SDavid S. Miller 767554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 76893c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7698d1040e8SWei Wang next = leaf; 770f11e6659SDavid S. Miller 77166f5d6ceSWei Wang if (next != rt0) { 77293c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77366f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77493c2fb25SDavid Ahern if (next->fib6_node) 77566f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77693c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 77766f5d6ceSWei Wang } 778554cfb7eSYOSHIFUJI Hideaki } 779554cfb7eSYOSHIFUJI Hideaki 780421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7811da177e4SLinus Torvalds } 7821da177e4SLinus Torvalds 7838d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7848b9df265SMartin KaFai Lau { 785bdf00467SDavid Ahern return (rt->fib6_flags & RTF_NONEXTHOP) || rt->fib6_nh.fib_nh_gw_family; 7868b9df265SMartin KaFai Lau } 7878b9df265SMartin KaFai Lau 78870ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 78970ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 790b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79170ceb4f5SYOSHIFUJI Hideaki { 792c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79370ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79470ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79570ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7964bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7978d1c802bSDavid Ahern struct fib6_info *rt; 79870ceb4f5SYOSHIFUJI Hideaki 79970ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80170ceb4f5SYOSHIFUJI Hideaki } 80270ceb4f5SYOSHIFUJI Hideaki 80370ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 80770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80870ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 80970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } 81270ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81370ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81470ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81570ceb4f5SYOSHIFUJI Hideaki } 81670ceb4f5SYOSHIFUJI Hideaki } 81770ceb4f5SYOSHIFUJI Hideaki 81870ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 81970ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8203933fc95SJens Rosenboom return -EINVAL; 82170ceb4f5SYOSHIFUJI Hideaki 8224bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82370ceb4f5SYOSHIFUJI Hideaki 82470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82570ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82670ceb4f5SYOSHIFUJI Hideaki else { 82770ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 82870ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 82970ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83070ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83170ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83270ceb4f5SYOSHIFUJI Hideaki } 83370ceb4f5SYOSHIFUJI Hideaki 834f104a567SDuan Jiong if (rinfo->prefix_len == 0) 835afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 836f104a567SDuan Jiong else 837f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 838830218c1SDavid Ahern gwaddr, dev); 83970ceb4f5SYOSHIFUJI Hideaki 84070ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 841afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84270ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84370ceb4f5SYOSHIFUJI Hideaki } 84470ceb4f5SYOSHIFUJI Hideaki 84570ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 846830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 847830218c1SDavid Ahern dev, pref); 84870ceb4f5SYOSHIFUJI Hideaki else if (rt) 84993c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85093c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85170ceb4f5SYOSHIFUJI Hideaki 85270ceb4f5SYOSHIFUJI Hideaki if (rt) { 8531716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85414895687SDavid Ahern fib6_clean_expires(rt); 8551716a961SGao feng else 85614895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8571716a961SGao feng 85893531c67SDavid Ahern fib6_info_release(rt); 85970ceb4f5SYOSHIFUJI Hideaki } 86070ceb4f5SYOSHIFUJI Hideaki return 0; 86170ceb4f5SYOSHIFUJI Hideaki } 86270ceb4f5SYOSHIFUJI Hideaki #endif 86370ceb4f5SYOSHIFUJI Hideaki 864ae90d867SDavid Ahern /* 865ae90d867SDavid Ahern * Misc support functions 866ae90d867SDavid Ahern */ 867ae90d867SDavid Ahern 868ae90d867SDavid Ahern /* called with rcu_lock held */ 8698d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 870ae90d867SDavid Ahern { 871ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 872ae90d867SDavid Ahern 87393c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 874ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 875ae90d867SDavid Ahern * device if it is a master device, the master device if 876ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 877ae90d867SDavid Ahern */ 878ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 87993c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 880ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 881ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 882ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 883ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 884ae90d867SDavid Ahern * case we want dev returned to be dev 885ae90d867SDavid Ahern */ 886ae90d867SDavid Ahern } 887ae90d867SDavid Ahern 888ae90d867SDavid Ahern return dev; 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 8916edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8926edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8936edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8946edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8956edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8966edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8976edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8986edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8996edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9006edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9016edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9026edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9036edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9046edb3c96SDavid Ahern }; 9056edb3c96SDavid Ahern 9066edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9076edb3c96SDavid Ahern { 9086edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9096edb3c96SDavid Ahern } 9106edb3c96SDavid Ahern 9118d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9123b6761d1SDavid Ahern { 9133b6761d1SDavid Ahern unsigned short flags = 0; 9143b6761d1SDavid Ahern 9153b6761d1SDavid Ahern if (rt->dst_nocount) 9163b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9173b6761d1SDavid Ahern if (rt->dst_nopolicy) 9183b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9193b6761d1SDavid Ahern if (rt->dst_host) 9203b6761d1SDavid Ahern flags |= DST_HOST; 9213b6761d1SDavid Ahern 9223b6761d1SDavid Ahern return flags; 9233b6761d1SDavid Ahern } 9243b6761d1SDavid Ahern 9258d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9266edb3c96SDavid Ahern { 9276edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9286edb3c96SDavid Ahern 9296edb3c96SDavid Ahern switch (ort->fib6_type) { 9306edb3c96SDavid Ahern case RTN_BLACKHOLE: 9316edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9326edb3c96SDavid Ahern rt->dst.input = dst_discard; 9336edb3c96SDavid Ahern break; 9346edb3c96SDavid Ahern case RTN_PROHIBIT: 9356edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9366edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9376edb3c96SDavid Ahern break; 9386edb3c96SDavid Ahern case RTN_THROW: 9396edb3c96SDavid Ahern case RTN_UNREACHABLE: 9406edb3c96SDavid Ahern default: 9416edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9426edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9436edb3c96SDavid Ahern break; 9446edb3c96SDavid Ahern } 9456edb3c96SDavid Ahern } 9466edb3c96SDavid Ahern 9478d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9486edb3c96SDavid Ahern { 94993c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9506edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9516edb3c96SDavid Ahern return; 9526edb3c96SDavid Ahern } 9536edb3c96SDavid Ahern 9546edb3c96SDavid Ahern rt->dst.error = 0; 9556edb3c96SDavid Ahern rt->dst.output = ip6_output; 9566edb3c96SDavid Ahern 957d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9586edb3c96SDavid Ahern rt->dst.input = ip6_input; 95993c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9606edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9616edb3c96SDavid Ahern } else { 9626edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9636edb3c96SDavid Ahern } 9646edb3c96SDavid Ahern 965ad1601aeSDavid Ahern if (ort->fib6_nh.fib_nh_lws) { 966ad1601aeSDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.fib_nh_lws); 9676edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9686edb3c96SDavid Ahern } 9696edb3c96SDavid Ahern 9706edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 973e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9748d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 975ae90d867SDavid Ahern { 976ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 977a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 978e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 979ae90d867SDavid Ahern } 980ae90d867SDavid Ahern 981e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9828d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 983ae90d867SDavid Ahern { 984dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 985dcd1f572SDavid Ahern 9866edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9876edb3c96SDavid Ahern 98893c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 989dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 99093c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 991bdf00467SDavid Ahern if (ort->fib6_nh.fib_nh_gw_family) { 992ad1601aeSDavid Ahern rt->rt6i_gateway = ort->fib6_nh.fib_nh_gw6; 9932b2450caSDavid Ahern rt->rt6i_flags |= RTF_GATEWAY; 9942b2450caSDavid Ahern } 995ae90d867SDavid Ahern rt6_set_from(rt, ort); 996ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 99793c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 998ae90d867SDavid Ahern #endif 999ae90d867SDavid Ahern } 1000ae90d867SDavid Ahern 1001a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1002a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1003a3c00e46SMartin KaFai Lau { 100466f5d6ceSWei Wang struct fib6_node *pn, *sn; 1005a3c00e46SMartin KaFai Lau while (1) { 1006a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1007a3c00e46SMartin KaFai Lau return NULL; 100866f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 100966f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 101066f5d6ceSWei Wang if (sn && sn != fn) 10116454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1012a3c00e46SMartin KaFai Lau else 1013a3c00e46SMartin KaFai Lau fn = pn; 1014a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1015a3c00e46SMartin KaFai Lau return fn; 1016a3c00e46SMartin KaFai Lau } 1017a3c00e46SMartin KaFai Lau } 1018c71099acSThomas Graf 101910585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt) 1020d3843fe5SWei Wang { 1021d3843fe5SWei Wang struct rt6_info *rt = *prt; 1022d3843fe5SWei Wang 1023d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1024d3843fe5SWei Wang return true; 102510585b43SDavid Ahern if (net) { 1026d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1027d3843fe5SWei Wang dst_hold(&rt->dst); 1028d3843fe5SWei Wang } else { 1029d3843fe5SWei Wang rt = NULL; 1030d3843fe5SWei Wang } 1031d3843fe5SWei Wang *prt = rt; 1032d3843fe5SWei Wang return false; 1033d3843fe5SWei Wang } 1034d3843fe5SWei Wang 1035dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10368d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1037dec9b0e2SDavid Ahern { 10383b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1039ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 1040dec9b0e2SDavid Ahern struct rt6_info *nrt; 1041dec9b0e2SDavid Ahern 1042e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 10431c87e79aSXin Long goto fallback; 1044e873e4b9SWei Wang 104593531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 10461c87e79aSXin Long if (!nrt) { 1047e873e4b9SWei Wang fib6_info_release(rt); 10481c87e79aSXin Long goto fallback; 10491c87e79aSXin Long } 1050dec9b0e2SDavid Ahern 10511c87e79aSXin Long ip6_rt_copy_init(nrt, rt); 10521c87e79aSXin Long return nrt; 10531c87e79aSXin Long 10541c87e79aSXin Long fallback: 10551c87e79aSXin Long nrt = dev_net(dev)->ipv6.ip6_null_entry; 10561c87e79aSXin Long dst_hold(&nrt->dst); 1057dec9b0e2SDavid Ahern return nrt; 1058dec9b0e2SDavid Ahern } 1059dec9b0e2SDavid Ahern 10608ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10618ed67789SDaniel Lezcano struct fib6_table *table, 1062b75cc8f9SDavid Ahern struct flowi6 *fl6, 1063b75cc8f9SDavid Ahern const struct sk_buff *skb, 1064b75cc8f9SDavid Ahern int flags) 10651da177e4SLinus Torvalds { 10668d1c802bSDavid Ahern struct fib6_info *f6i; 10671da177e4SLinus Torvalds struct fib6_node *fn; 106823fb93a4SDavid Ahern struct rt6_info *rt; 10691da177e4SLinus Torvalds 1070b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1071b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1072b6cdbc85SDavid Ahern 107366f5d6ceSWei Wang rcu_read_lock(); 10746454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1075c71099acSThomas Graf restart: 107623fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 1077af52a52cSDavid Ahern if (!f6i) 107823fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 1079af52a52cSDavid Ahern else 108023fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 108166f5d6ceSWei Wang fl6->flowi6_oif, flags); 1082af52a52cSDavid Ahern 108323fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1084a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1085a3c00e46SMartin KaFai Lau if (fn) 1086a3c00e46SMartin KaFai Lau goto restart; 1087af52a52cSDavid Ahern 1088af52a52cSDavid Ahern rt = net->ipv6.ip6_null_entry; 1089af52a52cSDavid Ahern dst_hold(&rt->dst); 1090af52a52cSDavid Ahern goto out; 1091a3c00e46SMartin KaFai Lau } 10922b760fcfSWei Wang 1093af52a52cSDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 1094af52a52cSDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, fl6->flowi6_oif, skb, 1095af52a52cSDavid Ahern flags); 10964c9483b2SDavid S. Miller /* Search through exception table */ 109723fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 109823fb93a4SDavid Ahern if (rt) { 109910585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 1100d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 110123fb93a4SDavid Ahern } else { 110223fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 1103dec9b0e2SDavid Ahern } 1104d3843fe5SWei Wang 1105af52a52cSDavid Ahern out: 1106af52a52cSDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1107af52a52cSDavid Ahern 110866f5d6ceSWei Wang rcu_read_unlock(); 1109b811580dSDavid Ahern 11101da177e4SLinus Torvalds return rt; 1111c71099acSThomas Graf } 1112c71099acSThomas Graf 1113ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1114b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1115ea6e574eSFlorian Westphal { 1116b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1117ea6e574eSFlorian Westphal } 1118ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1119ea6e574eSFlorian Westphal 11209acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1121b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1122b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1123c71099acSThomas Graf { 11244c9483b2SDavid S. Miller struct flowi6 fl6 = { 11254c9483b2SDavid S. Miller .flowi6_oif = oif, 11264c9483b2SDavid S. Miller .daddr = *daddr, 1127c71099acSThomas Graf }; 1128c71099acSThomas Graf struct dst_entry *dst; 112977d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1130c71099acSThomas Graf 1131adaa70bbSThomas Graf if (saddr) { 11324c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1133adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1134adaa70bbSThomas Graf } 1135adaa70bbSThomas Graf 1136b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1137c71099acSThomas Graf if (dst->error == 0) 1138c71099acSThomas Graf return (struct rt6_info *) dst; 1139c71099acSThomas Graf 1140c71099acSThomas Graf dst_release(dst); 1141c71099acSThomas Graf 11421da177e4SLinus Torvalds return NULL; 11431da177e4SLinus Torvalds } 11447159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11457159039aSYOSHIFUJI Hideaki 1146c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11471cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11481cfb71eeSWei Wang * route is released. 11491cfb71eeSWei Wang * Caller must hold dst before calling it. 11501da177e4SLinus Torvalds */ 11511da177e4SLinus Torvalds 11528d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1153333c4301SDavid Ahern struct netlink_ext_ack *extack) 11541da177e4SLinus Torvalds { 11551da177e4SLinus Torvalds int err; 1156c71099acSThomas Graf struct fib6_table *table; 11571da177e4SLinus Torvalds 115893c2fb25SDavid Ahern table = rt->fib6_table; 115966f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1160d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 116166f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11621da177e4SLinus Torvalds 11631da177e4SLinus Torvalds return err; 11641da177e4SLinus Torvalds } 11651da177e4SLinus Torvalds 11668d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 116740e22e8fSThomas Graf { 1168afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1169e715b6d3SFlorian Westphal 1170d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 117140e22e8fSThomas Graf } 117240e22e8fSThomas Graf 11738d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 117421efcfa0SEric Dumazet const struct in6_addr *daddr, 1175b71d1d42SEric Dumazet const struct in6_addr *saddr) 11761da177e4SLinus Torvalds { 11774832c30dSDavid Ahern struct net_device *dev; 11781da177e4SLinus Torvalds struct rt6_info *rt; 11791da177e4SLinus Torvalds 11801da177e4SLinus Torvalds /* 11811da177e4SLinus Torvalds * Clone the route. 11821da177e4SLinus Torvalds */ 11831da177e4SLinus Torvalds 1184e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1185e873e4b9SWei Wang return NULL; 1186e873e4b9SWei Wang 11874832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 118893531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1189e873e4b9SWei Wang if (!rt) { 1190e873e4b9SWei Wang fib6_info_release(ort); 119183a09abdSMartin KaFai Lau return NULL; 1192e873e4b9SWei Wang } 119383a09abdSMartin KaFai Lau 119483a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11958b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119683a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 119783a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 119883a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11998b9df265SMartin KaFai Lau 12008b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 120193c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 120293c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 120358c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12041da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12051da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12064e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12071da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12081da177e4SLinus Torvalds } 12091da177e4SLinus Torvalds #endif 121095a9a5baSYOSHIFUJI Hideaki } 121195a9a5baSYOSHIFUJI Hideaki 1212299d9939SYOSHIFUJI Hideaki return rt; 1213299d9939SYOSHIFUJI Hideaki } 1214299d9939SYOSHIFUJI Hideaki 12158d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1216d52d3997SMartin KaFai Lau { 12173b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12184832c30dSDavid Ahern struct net_device *dev; 1219d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1220d52d3997SMartin KaFai Lau 1221e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1222e873e4b9SWei Wang return NULL; 1223e873e4b9SWei Wang 12244832c30dSDavid Ahern rcu_read_lock(); 12254832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122693531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12274832c30dSDavid Ahern rcu_read_unlock(); 1228e873e4b9SWei Wang if (!pcpu_rt) { 1229e873e4b9SWei Wang fib6_info_release(rt); 1230d52d3997SMartin KaFai Lau return NULL; 1231e873e4b9SWei Wang } 1232d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1233d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1234d52d3997SMartin KaFai Lau return pcpu_rt; 1235d52d3997SMartin KaFai Lau } 1236d52d3997SMartin KaFai Lau 123766f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12388d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1239d52d3997SMartin KaFai Lau { 1240a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1241d52d3997SMartin KaFai Lau 1242d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1243d52d3997SMartin KaFai Lau pcpu_rt = *p; 1244d52d3997SMartin KaFai Lau 1245d4ead6b3SDavid Ahern if (pcpu_rt) 124610585b43SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt); 1247d3843fe5SWei Wang 1248a73e4195SMartin KaFai Lau return pcpu_rt; 1249a73e4195SMartin KaFai Lau } 1250a73e4195SMartin KaFai Lau 1251afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12528d1c802bSDavid Ahern struct fib6_info *rt) 1253a73e4195SMartin KaFai Lau { 1254a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1255d52d3997SMartin KaFai Lau 1256d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1257d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12589c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12599c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1260d52d3997SMartin KaFai Lau } 1261d52d3997SMartin KaFai Lau 1262a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1263a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1264d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1265951f788aSEric Dumazet BUG_ON(prev); 1266a94b9367SWei Wang 1267d52d3997SMartin KaFai Lau return pcpu_rt; 1268d52d3997SMartin KaFai Lau } 1269d52d3997SMartin KaFai Lau 127035732d01SWei Wang /* exception hash table implementation 127135732d01SWei Wang */ 127235732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 127335732d01SWei Wang 127435732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127535732d01SWei Wang * Caller must hold rt6_exception_lock 127635732d01SWei Wang */ 127735732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 127835732d01SWei Wang struct rt6_exception *rt6_ex) 127935732d01SWei Wang { 1280f5b51fe8SPaolo Abeni struct fib6_info *from; 1281b2427e67SColin Ian King struct net *net; 128281eb8447SWei Wang 128335732d01SWei Wang if (!bucket || !rt6_ex) 128435732d01SWei Wang return; 1285b2427e67SColin Ian King 1286b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 1287f5b51fe8SPaolo Abeni net->ipv6.rt6_stats->fib_rt_cache--; 1288f5b51fe8SPaolo Abeni 1289f5b51fe8SPaolo Abeni /* purge completely the exception to allow releasing the held resources: 1290f5b51fe8SPaolo Abeni * some [sk] cache may keep the dst around for unlimited time 1291f5b51fe8SPaolo Abeni */ 1292f5b51fe8SPaolo Abeni from = rcu_dereference_protected(rt6_ex->rt6i->from, 1293f5b51fe8SPaolo Abeni lockdep_is_held(&rt6_exception_lock)); 1294f5b51fe8SPaolo Abeni rcu_assign_pointer(rt6_ex->rt6i->from, NULL); 1295f5b51fe8SPaolo Abeni fib6_info_release(from); 1296f5b51fe8SPaolo Abeni dst_dev_put(&rt6_ex->rt6i->dst); 1297f5b51fe8SPaolo Abeni 129835732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 129977634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 130035732d01SWei Wang kfree_rcu(rt6_ex, rcu); 130135732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 130235732d01SWei Wang bucket->depth--; 130335732d01SWei Wang } 130435732d01SWei Wang 130535732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 130635732d01SWei Wang * Caller must hold rt6_exception_lock 130735732d01SWei Wang */ 130835732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 130935732d01SWei Wang { 131035732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 131135732d01SWei Wang 131235732d01SWei Wang if (!bucket) 131335732d01SWei Wang return; 131435732d01SWei Wang 131535732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 131635732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 131735732d01SWei Wang oldest = rt6_ex; 131835732d01SWei Wang } 131935732d01SWei Wang rt6_remove_exception(bucket, oldest); 132035732d01SWei Wang } 132135732d01SWei Wang 132235732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 132335732d01SWei Wang const struct in6_addr *src) 132435732d01SWei Wang { 132535732d01SWei Wang static u32 seed __read_mostly; 132635732d01SWei Wang u32 val; 132735732d01SWei Wang 132835732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 132935732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 133035732d01SWei Wang 133135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 133235732d01SWei Wang if (src) 133335732d01SWei Wang val = jhash(src, sizeof(*src), val); 133435732d01SWei Wang #endif 133535732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 133635732d01SWei Wang } 133735732d01SWei Wang 133835732d01SWei Wang /* Helper function to find the cached rt in the hash table 133935732d01SWei Wang * and update bucket pointer to point to the bucket for this 134035732d01SWei Wang * (daddr, saddr) pair 134135732d01SWei Wang * Caller must hold rt6_exception_lock 134235732d01SWei Wang */ 134335732d01SWei Wang static struct rt6_exception * 134435732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 134535732d01SWei Wang const struct in6_addr *daddr, 134635732d01SWei Wang const struct in6_addr *saddr) 134735732d01SWei Wang { 134835732d01SWei Wang struct rt6_exception *rt6_ex; 134935732d01SWei Wang u32 hval; 135035732d01SWei Wang 135135732d01SWei Wang if (!(*bucket) || !daddr) 135235732d01SWei Wang return NULL; 135335732d01SWei Wang 135435732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 135535732d01SWei Wang *bucket += hval; 135635732d01SWei Wang 135735732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 135835732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 135935732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 136035732d01SWei Wang 136135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 136235732d01SWei Wang if (matched && saddr) 136335732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 136435732d01SWei Wang #endif 136535732d01SWei Wang if (matched) 136635732d01SWei Wang return rt6_ex; 136735732d01SWei Wang } 136835732d01SWei Wang return NULL; 136935732d01SWei Wang } 137035732d01SWei Wang 137135732d01SWei Wang /* Helper function to find the cached rt in the hash table 137235732d01SWei Wang * and update bucket pointer to point to the bucket for this 137335732d01SWei Wang * (daddr, saddr) pair 137435732d01SWei Wang * Caller must hold rcu_read_lock() 137535732d01SWei Wang */ 137635732d01SWei Wang static struct rt6_exception * 137735732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 137835732d01SWei Wang const struct in6_addr *daddr, 137935732d01SWei Wang const struct in6_addr *saddr) 138035732d01SWei Wang { 138135732d01SWei Wang struct rt6_exception *rt6_ex; 138235732d01SWei Wang u32 hval; 138335732d01SWei Wang 138435732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 138535732d01SWei Wang 138635732d01SWei Wang if (!(*bucket) || !daddr) 138735732d01SWei Wang return NULL; 138835732d01SWei Wang 138935732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 139035732d01SWei Wang *bucket += hval; 139135732d01SWei Wang 139235732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 139335732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 139435732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 139535732d01SWei Wang 139635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 139735732d01SWei Wang if (matched && saddr) 139835732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 139935732d01SWei Wang #endif 140035732d01SWei Wang if (matched) 140135732d01SWei Wang return rt6_ex; 140235732d01SWei Wang } 140335732d01SWei Wang return NULL; 140435732d01SWei Wang } 140535732d01SWei Wang 14068d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 140735732d01SWei Wang { 1408d4ead6b3SDavid Ahern unsigned int mtu; 1409d4ead6b3SDavid Ahern 1410dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1411dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1412dcd1f572SDavid Ahern } else { 1413dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1414dcd1f572SDavid Ahern struct inet6_dev *idev; 1415dcd1f572SDavid Ahern 1416dcd1f572SDavid Ahern rcu_read_lock(); 1417dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1418dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1419dcd1f572SDavid Ahern rcu_read_unlock(); 1420dcd1f572SDavid Ahern } 1421dcd1f572SDavid Ahern 1422d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1423d4ead6b3SDavid Ahern 1424ad1601aeSDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.fib_nh_lws, mtu); 1425d4ead6b3SDavid Ahern } 1426d4ead6b3SDavid Ahern 142735732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14288d1c802bSDavid Ahern struct fib6_info *ort) 142935732d01SWei Wang { 14305e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 143135732d01SWei Wang struct rt6_exception_bucket *bucket; 143235732d01SWei Wang struct in6_addr *src_key = NULL; 143335732d01SWei Wang struct rt6_exception *rt6_ex; 143435732d01SWei Wang int err = 0; 143535732d01SWei Wang 143635732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 143735732d01SWei Wang 143835732d01SWei Wang if (ort->exception_bucket_flushed) { 143935732d01SWei Wang err = -EINVAL; 144035732d01SWei Wang goto out; 144135732d01SWei Wang } 144235732d01SWei Wang 144335732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 144435732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 144535732d01SWei Wang if (!bucket) { 144635732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 144735732d01SWei Wang GFP_ATOMIC); 144835732d01SWei Wang if (!bucket) { 144935732d01SWei Wang err = -ENOMEM; 145035732d01SWei Wang goto out; 145135732d01SWei Wang } 145235732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 145335732d01SWei Wang } 145435732d01SWei Wang 145535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 145635732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 145735732d01SWei Wang * and exception table is indexed by a hash of 145835732d01SWei Wang * both rt6i_dst and rt6i_src. 145935732d01SWei Wang * Otherwise, the exception table is indexed by 146035732d01SWei Wang * a hash of only rt6i_dst. 146135732d01SWei Wang */ 146293c2fb25SDavid Ahern if (ort->fib6_src.plen) 146335732d01SWei Wang src_key = &nrt->rt6i_src.addr; 146435732d01SWei Wang #endif 1465f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1466f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1467f5bbe7eeSWei Wang * is less than ort's mtu value. 1468f5bbe7eeSWei Wang */ 1469d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1470f5bbe7eeSWei Wang err = -EINVAL; 1471f5bbe7eeSWei Wang goto out; 1472f5bbe7eeSWei Wang } 147360006a48SWei Wang 147435732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 147535732d01SWei Wang src_key); 147635732d01SWei Wang if (rt6_ex) 147735732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 147835732d01SWei Wang 147935732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 148035732d01SWei Wang if (!rt6_ex) { 148135732d01SWei Wang err = -ENOMEM; 148235732d01SWei Wang goto out; 148335732d01SWei Wang } 148435732d01SWei Wang rt6_ex->rt6i = nrt; 148535732d01SWei Wang rt6_ex->stamp = jiffies; 148635732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 148735732d01SWei Wang bucket->depth++; 148881eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 148935732d01SWei Wang 149035732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 149135732d01SWei Wang rt6_exception_remove_oldest(bucket); 149235732d01SWei Wang 149335732d01SWei Wang out: 149435732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 149535732d01SWei Wang 149635732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1497b886d5f2SPaolo Abeni if (!err) { 149893c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14997aef6859SDavid Ahern fib6_update_sernum(net, ort); 150093c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1501b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1502b886d5f2SPaolo Abeni } 150335732d01SWei Wang 150435732d01SWei Wang return err; 150535732d01SWei Wang } 150635732d01SWei Wang 15078d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 150835732d01SWei Wang { 150935732d01SWei Wang struct rt6_exception_bucket *bucket; 151035732d01SWei Wang struct rt6_exception *rt6_ex; 151135732d01SWei Wang struct hlist_node *tmp; 151235732d01SWei Wang int i; 151335732d01SWei Wang 151435732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 151535732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 151635732d01SWei Wang rt->exception_bucket_flushed = 1; 151735732d01SWei Wang 151835732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 151935732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 152035732d01SWei Wang if (!bucket) 152135732d01SWei Wang goto out; 152235732d01SWei Wang 152335732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 152435732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 152535732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 152635732d01SWei Wang WARN_ON_ONCE(bucket->depth); 152735732d01SWei Wang bucket++; 152835732d01SWei Wang } 152935732d01SWei Wang 153035732d01SWei Wang out: 153135732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 153235732d01SWei Wang } 153335732d01SWei Wang 153435732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 153535732d01SWei Wang * Caller has to hold rcu_read_lock() 153635732d01SWei Wang */ 15378d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 153835732d01SWei Wang struct in6_addr *daddr, 153935732d01SWei Wang struct in6_addr *saddr) 154035732d01SWei Wang { 154135732d01SWei Wang struct rt6_exception_bucket *bucket; 154235732d01SWei Wang struct in6_addr *src_key = NULL; 154335732d01SWei Wang struct rt6_exception *rt6_ex; 154435732d01SWei Wang struct rt6_info *res = NULL; 154535732d01SWei Wang 154635732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 154735732d01SWei Wang 154835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 154935732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 155035732d01SWei Wang * and exception table is indexed by a hash of 155135732d01SWei Wang * both rt6i_dst and rt6i_src. 155235732d01SWei Wang * Otherwise, the exception table is indexed by 155335732d01SWei Wang * a hash of only rt6i_dst. 155435732d01SWei Wang */ 155593c2fb25SDavid Ahern if (rt->fib6_src.plen) 155635732d01SWei Wang src_key = saddr; 155735732d01SWei Wang #endif 155835732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 155935732d01SWei Wang 156035732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 156135732d01SWei Wang res = rt6_ex->rt6i; 156235732d01SWei Wang 156335732d01SWei Wang return res; 156435732d01SWei Wang } 156535732d01SWei Wang 156635732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 156723fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 156835732d01SWei Wang { 156935732d01SWei Wang struct rt6_exception_bucket *bucket; 157035732d01SWei Wang struct in6_addr *src_key = NULL; 157135732d01SWei Wang struct rt6_exception *rt6_ex; 15728a14e46fSDavid Ahern struct fib6_info *from; 157335732d01SWei Wang int err; 157435732d01SWei Wang 1575091311deSEric Dumazet from = rcu_dereference(rt->from); 157635732d01SWei Wang if (!from || 1577442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 157835732d01SWei Wang return -EINVAL; 157935732d01SWei Wang 158035732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 158135732d01SWei Wang return -ENOENT; 158235732d01SWei Wang 158335732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 158435732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 158535732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 158635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 158735732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 158835732d01SWei Wang * and exception table is indexed by a hash of 158935732d01SWei Wang * both rt6i_dst and rt6i_src. 159035732d01SWei Wang * Otherwise, the exception table is indexed by 159135732d01SWei Wang * a hash of only rt6i_dst. 159235732d01SWei Wang */ 159393c2fb25SDavid Ahern if (from->fib6_src.plen) 159435732d01SWei Wang src_key = &rt->rt6i_src.addr; 159535732d01SWei Wang #endif 159635732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 159735732d01SWei Wang &rt->rt6i_dst.addr, 159835732d01SWei Wang src_key); 159935732d01SWei Wang if (rt6_ex) { 160035732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 160135732d01SWei Wang err = 0; 160235732d01SWei Wang } else { 160335732d01SWei Wang err = -ENOENT; 160435732d01SWei Wang } 160535732d01SWei Wang 160635732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 160735732d01SWei Wang return err; 160835732d01SWei Wang } 160935732d01SWei Wang 161035732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 161135732d01SWei Wang * refresh its stamp 161235732d01SWei Wang */ 161335732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 161435732d01SWei Wang { 161535732d01SWei Wang struct rt6_exception_bucket *bucket; 161635732d01SWei Wang struct in6_addr *src_key = NULL; 161735732d01SWei Wang struct rt6_exception *rt6_ex; 1618193f3685SPaolo Abeni struct fib6_info *from; 161935732d01SWei Wang 162035732d01SWei Wang rcu_read_lock(); 1621193f3685SPaolo Abeni from = rcu_dereference(rt->from); 1622193f3685SPaolo Abeni if (!from || !(rt->rt6i_flags & RTF_CACHE)) 1623193f3685SPaolo Abeni goto unlock; 1624193f3685SPaolo Abeni 162535732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 162635732d01SWei Wang 162735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 162835732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 162935732d01SWei Wang * and exception table is indexed by a hash of 163035732d01SWei Wang * both rt6i_dst and rt6i_src. 163135732d01SWei Wang * Otherwise, the exception table is indexed by 163235732d01SWei Wang * a hash of only rt6i_dst. 163335732d01SWei Wang */ 163493c2fb25SDavid Ahern if (from->fib6_src.plen) 163535732d01SWei Wang src_key = &rt->rt6i_src.addr; 163635732d01SWei Wang #endif 163735732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 163835732d01SWei Wang &rt->rt6i_dst.addr, 163935732d01SWei Wang src_key); 164035732d01SWei Wang if (rt6_ex) 164135732d01SWei Wang rt6_ex->stamp = jiffies; 164235732d01SWei Wang 1643193f3685SPaolo Abeni unlock: 164435732d01SWei Wang rcu_read_unlock(); 164535732d01SWei Wang } 164635732d01SWei Wang 1647e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1648e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1649e9fa1495SStefano Brivio { 1650e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1651e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1652e9fa1495SStefano Brivio * reflect PMTU decreases. 1653e9fa1495SStefano Brivio * 1654e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1655e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1656e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1657e9fa1495SStefano Brivio * handle this. 1658e9fa1495SStefano Brivio */ 1659e9fa1495SStefano Brivio 1660e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1661e9fa1495SStefano Brivio return true; 1662e9fa1495SStefano Brivio 1663e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1664e9fa1495SStefano Brivio return true; 1665e9fa1495SStefano Brivio 1666e9fa1495SStefano Brivio return false; 1667e9fa1495SStefano Brivio } 1668e9fa1495SStefano Brivio 1669e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16708d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1671f5bbe7eeSWei Wang { 1672f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1673f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1674f5bbe7eeSWei Wang int i; 1675f5bbe7eeSWei Wang 1676f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1677f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1678f5bbe7eeSWei Wang 1679e9fa1495SStefano Brivio if (!bucket) 1680e9fa1495SStefano Brivio return; 1681e9fa1495SStefano Brivio 1682f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1683f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1684f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1685e9fa1495SStefano Brivio 1686e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1687d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1688f5bbe7eeSWei Wang * been updated. 1689f5bbe7eeSWei Wang */ 1690d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1691e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1692d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1693f5bbe7eeSWei Wang } 1694f5bbe7eeSWei Wang bucket++; 1695f5bbe7eeSWei Wang } 1696f5bbe7eeSWei Wang } 1697f5bbe7eeSWei Wang 1698b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1699b16cb459SWei Wang 17008d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1701b16cb459SWei Wang struct in6_addr *gateway) 1702b16cb459SWei Wang { 1703b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1704b16cb459SWei Wang struct rt6_exception *rt6_ex; 1705b16cb459SWei Wang struct hlist_node *tmp; 1706b16cb459SWei Wang int i; 1707b16cb459SWei Wang 1708b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1709b16cb459SWei Wang return; 1710b16cb459SWei Wang 1711b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1712b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1713b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1714b16cb459SWei Wang 1715b16cb459SWei Wang if (bucket) { 1716b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1717b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1718b16cb459SWei Wang &bucket->chain, hlist) { 1719b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1720b16cb459SWei Wang 1721b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1722b16cb459SWei Wang RTF_CACHE_GATEWAY && 1723b16cb459SWei Wang ipv6_addr_equal(gateway, 1724b16cb459SWei Wang &entry->rt6i_gateway)) { 1725b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1726b16cb459SWei Wang } 1727b16cb459SWei Wang } 1728b16cb459SWei Wang bucket++; 1729b16cb459SWei Wang } 1730b16cb459SWei Wang } 1731b16cb459SWei Wang 1732b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1733b16cb459SWei Wang } 1734b16cb459SWei Wang 1735c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1736c757faa8SWei Wang struct rt6_exception *rt6_ex, 1737c757faa8SWei Wang struct fib6_gc_args *gc_args, 1738c757faa8SWei Wang unsigned long now) 1739c757faa8SWei Wang { 1740c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1741c757faa8SWei Wang 17421859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17431859bac0SPaolo Abeni * even if others have still references to them, so that on next 17441859bac0SPaolo Abeni * dst_check() such references can be dropped. 17451859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17461859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17471859bac0SPaolo Abeni */ 174831afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 174931afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1750c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1751c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1752c757faa8SWei Wang return; 175331afeb42SWei Wang } 175431afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 175531afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 175631afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 175731afeb42SWei Wang return; 175831afeb42SWei Wang } 175931afeb42SWei Wang 176031afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1761c757faa8SWei Wang struct neighbour *neigh; 1762c757faa8SWei Wang __u8 neigh_flags = 0; 1763c757faa8SWei Wang 17641bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17651bfa26ffSEric Dumazet if (neigh) 1766c757faa8SWei Wang neigh_flags = neigh->flags; 17671bfa26ffSEric Dumazet 1768c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1769c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1770c757faa8SWei Wang rt); 1771c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1772c757faa8SWei Wang return; 1773c757faa8SWei Wang } 1774c757faa8SWei Wang } 177531afeb42SWei Wang 1776c757faa8SWei Wang gc_args->more++; 1777c757faa8SWei Wang } 1778c757faa8SWei Wang 17798d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1780c757faa8SWei Wang struct fib6_gc_args *gc_args, 1781c757faa8SWei Wang unsigned long now) 1782c757faa8SWei Wang { 1783c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1784c757faa8SWei Wang struct rt6_exception *rt6_ex; 1785c757faa8SWei Wang struct hlist_node *tmp; 1786c757faa8SWei Wang int i; 1787c757faa8SWei Wang 1788c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1789c757faa8SWei Wang return; 1790c757faa8SWei Wang 17911bfa26ffSEric Dumazet rcu_read_lock_bh(); 17921bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1793c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1794c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1795c757faa8SWei Wang 1796c757faa8SWei Wang if (bucket) { 1797c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1798c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1799c757faa8SWei Wang &bucket->chain, hlist) { 1800c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1801c757faa8SWei Wang gc_args, now); 1802c757faa8SWei Wang } 1803c757faa8SWei Wang bucket++; 1804c757faa8SWei Wang } 1805c757faa8SWei Wang } 18061bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 18071bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1808c757faa8SWei Wang } 1809c757faa8SWei Wang 18101d053da9SDavid Ahern /* must be called with rcu lock held */ 18111d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18121d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18131da177e4SLinus Torvalds { 1814367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18158d1c802bSDavid Ahern struct fib6_info *f6i; 18161da177e4SLinus Torvalds 18176454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1818367efcb9SMartin KaFai Lau saved_fn = fn; 18191da177e4SLinus Torvalds 1820ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1821ca254490SDavid Ahern oif = 0; 1822ca254490SDavid Ahern 1823a3c00e46SMartin KaFai Lau redo_rt6_select: 182423fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 182523fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1826a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1827a3c00e46SMartin KaFai Lau if (fn) 1828a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1829367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1830367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1831367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1832367efcb9SMartin KaFai Lau fn = saved_fn; 1833367efcb9SMartin KaFai Lau goto redo_rt6_select; 1834367efcb9SMartin KaFai Lau } 1835a3c00e46SMartin KaFai Lau } 1836a3c00e46SMartin KaFai Lau 1837d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1838d52d3997SMartin KaFai Lau 18391d053da9SDavid Ahern return f6i; 18401d053da9SDavid Ahern } 18411d053da9SDavid Ahern 18421d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18431d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18441d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18451d053da9SDavid Ahern { 18461d053da9SDavid Ahern struct fib6_info *f6i; 18471d053da9SDavid Ahern struct rt6_info *rt; 18481d053da9SDavid Ahern int strict = 0; 18491d053da9SDavid Ahern 18501d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18511d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18521d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18531d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18541d053da9SDavid Ahern 18551d053da9SDavid Ahern rcu_read_lock(); 18561d053da9SDavid Ahern 18571d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 185823fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1859421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 186066f5d6ceSWei Wang rcu_read_unlock(); 1861d3843fe5SWei Wang dst_hold(&rt->dst); 1862d3843fe5SWei Wang return rt; 1863d3843fe5SWei Wang } 186423fb93a4SDavid Ahern 1865d83009d4SDavid Ahern if (f6i->fib6_nsiblings) 1866d83009d4SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 1867d83009d4SDavid Ahern 186823fb93a4SDavid Ahern /*Search through exception table */ 186923fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 187023fb93a4SDavid Ahern if (rt) { 187110585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 18721da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1873d4ead6b3SDavid Ahern 187466f5d6ceSWei Wang rcu_read_unlock(); 1875d52d3997SMartin KaFai Lau return rt; 18763da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 1877bdf00467SDavid Ahern !f6i->fib6_nh.fib_nh_gw_family)) { 18783da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18793da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18803da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18813da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18823da59bd9SMartin KaFai Lau */ 18833da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18843da59bd9SMartin KaFai Lau 188523fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1886d52d3997SMartin KaFai Lau 18874d85cd0cSDavid Ahern rcu_read_unlock(); 18883da59bd9SMartin KaFai Lau 18891cfb71eeSWei Wang if (uncached_rt) { 18901cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18911cfb71eeSWei Wang * No need for another dst_hold() 18921cfb71eeSWei Wang */ 18938d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 189481eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18951cfb71eeSWei Wang } else { 18963da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18973da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18981cfb71eeSWei Wang } 1899b811580dSDavid Ahern 19003da59bd9SMartin KaFai Lau return uncached_rt; 1901d52d3997SMartin KaFai Lau } else { 1902d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1903d52d3997SMartin KaFai Lau 1904d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1905d52d3997SMartin KaFai Lau 1906951f788aSEric Dumazet local_bh_disable(); 190723fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1908d52d3997SMartin KaFai Lau 190993531c67SDavid Ahern if (!pcpu_rt) 191023fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 191193531c67SDavid Ahern 1912951f788aSEric Dumazet local_bh_enable(); 1913951f788aSEric Dumazet rcu_read_unlock(); 1914d4bea421SDavid Ahern 1915d52d3997SMartin KaFai Lau return pcpu_rt; 1916d52d3997SMartin KaFai Lau } 1917c71099acSThomas Graf } 19189ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1919c71099acSThomas Graf 1920b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1921b75cc8f9SDavid Ahern struct fib6_table *table, 1922b75cc8f9SDavid Ahern struct flowi6 *fl6, 1923b75cc8f9SDavid Ahern const struct sk_buff *skb, 1924b75cc8f9SDavid Ahern int flags) 19254acad72dSPavel Emelyanov { 1926b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19274acad72dSPavel Emelyanov } 19284acad72dSPavel Emelyanov 1929d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 193072331bc0SShmulik Ladkani struct net_device *dev, 1931b75cc8f9SDavid Ahern struct flowi6 *fl6, 1932b75cc8f9SDavid Ahern const struct sk_buff *skb, 1933b75cc8f9SDavid Ahern int flags) 193472331bc0SShmulik Ladkani { 193572331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 193672331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 193772331bc0SShmulik Ladkani 1938b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 193972331bc0SShmulik Ladkani } 1940d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 194172331bc0SShmulik Ladkani 194223aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19435e5d6fedSRoopa Prabhu struct flow_keys *keys, 19445e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 194523aebdacSJakub Sitnicki { 194623aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 194723aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19485e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 194923aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 195023aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 195123aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1952cea67a2dSEric Dumazet struct icmp6hdr _icmph; 195323aebdacSJakub Sitnicki 195423aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 195523aebdacSJakub Sitnicki goto out; 195623aebdacSJakub Sitnicki 1957cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1958cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1959cea67a2dSEric Dumazet if (!icmph) 1960cea67a2dSEric Dumazet goto out; 1961cea67a2dSEric Dumazet 196223aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 196323aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 196423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 196523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 196623aebdacSJakub Sitnicki goto out; 196723aebdacSJakub Sitnicki 196823aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 196923aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 197023aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 197123aebdacSJakub Sitnicki if (!inner_iph) 197223aebdacSJakub Sitnicki goto out; 197323aebdacSJakub Sitnicki 197423aebdacSJakub Sitnicki key_iph = inner_iph; 19755e5d6fedSRoopa Prabhu _flkeys = NULL; 197623aebdacSJakub Sitnicki out: 19775e5d6fedSRoopa Prabhu if (_flkeys) { 19785e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19795e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19805e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19815e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19825e5d6fedSRoopa Prabhu } else { 198323aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 198423aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1985fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 198623aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 198723aebdacSJakub Sitnicki } 19885e5d6fedSRoopa Prabhu } 198923aebdacSJakub Sitnicki 199023aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1991b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1992b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 199323aebdacSJakub Sitnicki { 199423aebdacSJakub Sitnicki struct flow_keys hash_keys; 19959a2a537aSDavid Ahern u32 mhash; 199623aebdacSJakub Sitnicki 1997bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1998b4bac172SDavid Ahern case 0: 19996f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 20006f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 20019a2a537aSDavid Ahern if (skb) { 20025e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 20039a2a537aSDavid Ahern } else { 20049a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 20059a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2006fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 20079a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 200823aebdacSJakub Sitnicki } 2009b4bac172SDavid Ahern break; 2010b4bac172SDavid Ahern case 1: 2011b4bac172SDavid Ahern if (skb) { 2012b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2013b4bac172SDavid Ahern struct flow_keys keys; 2014b4bac172SDavid Ahern 2015b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2016b4bac172SDavid Ahern if (skb->l4_hash) 2017b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2018b4bac172SDavid Ahern 2019b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2020b4bac172SDavid Ahern 2021b4bac172SDavid Ahern if (!flkeys) { 2022b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2023b4bac172SDavid Ahern flkeys = &keys; 2024b4bac172SDavid Ahern } 2025b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2026b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2027b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2028b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2029b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2030b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2031b4bac172SDavid Ahern } else { 2032b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2033b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2034b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2035b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2036b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2037b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2038b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2039b4bac172SDavid Ahern } 2040b4bac172SDavid Ahern break; 2041b4bac172SDavid Ahern } 20429a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 204323aebdacSJakub Sitnicki 20449a2a537aSDavid Ahern return mhash >> 1; 204523aebdacSJakub Sitnicki } 204623aebdacSJakub Sitnicki 2047c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2048c71099acSThomas Graf { 2049b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2050c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2051adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2052904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20534c9483b2SDavid S. Miller struct flowi6 fl6 = { 2054e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20554c9483b2SDavid S. Miller .daddr = iph->daddr, 20564c9483b2SDavid S. Miller .saddr = iph->saddr, 20576502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20584c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20594c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2060c71099acSThomas Graf }; 20615e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2062adaa70bbSThomas Graf 2063904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 206446fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2065904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20665e5d6fedSRoopa Prabhu 20675e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20685e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20695e5d6fedSRoopa Prabhu 207023aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2071b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 207206e9d040SJiri Benc skb_dst_drop(skb); 2073b75cc8f9SDavid Ahern skb_dst_set(skb, 2074b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2075c71099acSThomas Graf } 2076c71099acSThomas Graf 2077b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2078b75cc8f9SDavid Ahern struct fib6_table *table, 2079b75cc8f9SDavid Ahern struct flowi6 *fl6, 2080b75cc8f9SDavid Ahern const struct sk_buff *skb, 2081b75cc8f9SDavid Ahern int flags) 2082c71099acSThomas Graf { 2083b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2084c71099acSThomas Graf } 2085c71099acSThomas Graf 20866f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20876f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2088c71099acSThomas Graf { 2089d46a9d67SDavid Ahern bool any_src; 2090c71099acSThomas Graf 20913ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20923ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20934c1feac5SDavid Ahern struct dst_entry *dst; 20944c1feac5SDavid Ahern 20954c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2096ca254490SDavid Ahern if (dst) 2097ca254490SDavid Ahern return dst; 20984c1feac5SDavid Ahern } 2099ca254490SDavid Ahern 21001fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 21014dc27d1cSDavid McCullough 2102d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2103741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2104d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 210577d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2106c71099acSThomas Graf 2107d46a9d67SDavid Ahern if (!any_src) 2108adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 21090c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21100c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2111adaa70bbSThomas Graf 2112b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21131da177e4SLinus Torvalds } 21146f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21151da177e4SLinus Torvalds 21162774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 211714e50e57SDavid S. Miller { 21185c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21191dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 212014e50e57SDavid S. Miller struct dst_entry *new = NULL; 212114e50e57SDavid S. Miller 21221dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 212362cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 212414e50e57SDavid S. Miller if (rt) { 21250a1f5962SMartin KaFai Lau rt6_info_init(rt); 212681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21270a1f5962SMartin KaFai Lau 2128d8d1f30bSChangli Gao new = &rt->dst; 212914e50e57SDavid S. Miller new->__use = 1; 2130352e512cSHerbert Xu new->input = dst_discard; 2131ede2059dSEric W. Biederman new->output = dst_discard_out; 213214e50e57SDavid S. Miller 2133defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 213414e50e57SDavid S. Miller 21351dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21364e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21370a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 213814e50e57SDavid S. Miller 213914e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 214014e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 214114e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 214214e50e57SDavid S. Miller #endif 214314e50e57SDavid S. Miller } 214414e50e57SDavid S. Miller 214569ead7afSDavid S. Miller dst_release(dst_orig); 214669ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 214714e50e57SDavid S. Miller } 214814e50e57SDavid S. Miller 21491da177e4SLinus Torvalds /* 21501da177e4SLinus Torvalds * Destination cache support functions 21511da177e4SLinus Torvalds */ 21521da177e4SLinus Torvalds 21538d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21543da59bd9SMartin KaFai Lau { 215536143645SSteffen Klassert u32 rt_cookie = 0; 2156c5cff856SWei Wang 21578ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 215893531c67SDavid Ahern return false; 215993531c67SDavid Ahern 216093531c67SDavid Ahern if (fib6_check_expired(f6i)) 216193531c67SDavid Ahern return false; 216293531c67SDavid Ahern 216393531c67SDavid Ahern return true; 216493531c67SDavid Ahern } 216593531c67SDavid Ahern 2166a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2167a68886a6SDavid Ahern struct fib6_info *from, 2168a68886a6SDavid Ahern u32 cookie) 21693da59bd9SMartin KaFai Lau { 2170c5cff856SWei Wang u32 rt_cookie = 0; 2171c5cff856SWei Wang 2172a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 217393531c67SDavid Ahern rt_cookie != cookie) 21743da59bd9SMartin KaFai Lau return NULL; 21753da59bd9SMartin KaFai Lau 21763da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21773da59bd9SMartin KaFai Lau return NULL; 21783da59bd9SMartin KaFai Lau 21793da59bd9SMartin KaFai Lau return &rt->dst; 21803da59bd9SMartin KaFai Lau } 21813da59bd9SMartin KaFai Lau 2182a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2183a68886a6SDavid Ahern struct fib6_info *from, 2184a68886a6SDavid Ahern u32 cookie) 21853da59bd9SMartin KaFai Lau { 21865973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21875973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2188a68886a6SDavid Ahern fib6_check(from, cookie)) 21893da59bd9SMartin KaFai Lau return &rt->dst; 21903da59bd9SMartin KaFai Lau else 21913da59bd9SMartin KaFai Lau return NULL; 21923da59bd9SMartin KaFai Lau } 21933da59bd9SMartin KaFai Lau 21941da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21951da177e4SLinus Torvalds { 2196a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2197a68886a6SDavid Ahern struct fib6_info *from; 21981da177e4SLinus Torvalds struct rt6_info *rt; 21991da177e4SLinus Torvalds 2200a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2201a87b7dc9SDavid Ahern 2202a87b7dc9SDavid Ahern rcu_read_lock(); 22031da177e4SLinus Torvalds 22046f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 22056f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 22066f3118b5SNicolas Dichtel * into this function always. 22076f3118b5SNicolas Dichtel */ 2208e3bc10bdSHannes Frederic Sowa 2209a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22104b32b5adSMartin KaFai Lau 2211a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2212a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2213a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22143da59bd9SMartin KaFai Lau else 2215a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2216a87b7dc9SDavid Ahern 2217a87b7dc9SDavid Ahern rcu_read_unlock(); 2218a87b7dc9SDavid Ahern 2219a87b7dc9SDavid Ahern return dst_ret; 22201da177e4SLinus Torvalds } 22211da177e4SLinus Torvalds 22221da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22231da177e4SLinus Torvalds { 22241da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22251da177e4SLinus Torvalds 22261da177e4SLinus Torvalds if (rt) { 222754c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2228c3c14da0SDavid Ahern rcu_read_lock(); 222954c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 223093531c67SDavid Ahern rt6_remove_exception_rt(rt); 223154c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22321da177e4SLinus Torvalds } 2233c3c14da0SDavid Ahern rcu_read_unlock(); 223454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 223554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 223654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 223754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 223854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 223954c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22401da177e4SLinus Torvalds } 22411da177e4SLinus Torvalds 22421da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22431da177e4SLinus Torvalds { 22441da177e4SLinus Torvalds struct rt6_info *rt; 22451da177e4SLinus Torvalds 22463ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22471da177e4SLinus Torvalds 2248adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22491da177e4SLinus Torvalds if (rt) { 22508a14e46fSDavid Ahern rcu_read_lock(); 22511eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 225293531c67SDavid Ahern rt6_remove_exception_rt(rt); 2253c5cff856SWei Wang } else { 2254a68886a6SDavid Ahern struct fib6_info *from; 2255c5cff856SWei Wang struct fib6_node *fn; 2256c5cff856SWei Wang 2257a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2258a68886a6SDavid Ahern if (from) { 2259a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2260c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2261c5cff856SWei Wang fn->fn_sernum = -1; 2262a68886a6SDavid Ahern } 22631da177e4SLinus Torvalds } 22641da177e4SLinus Torvalds rcu_read_unlock(); 22651da177e4SLinus Torvalds } 22661da177e4SLinus Torvalds } 22671da177e4SLinus Torvalds 22686a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22696a3e030fSDavid Ahern { 2270a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2271a68886a6SDavid Ahern struct fib6_info *from; 2272a68886a6SDavid Ahern 2273a68886a6SDavid Ahern rcu_read_lock(); 2274a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2275a68886a6SDavid Ahern if (from) 2276a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2277a68886a6SDavid Ahern rcu_read_unlock(); 2278a68886a6SDavid Ahern } 22796a3e030fSDavid Ahern 22806a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22816a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22826700c270SDavid S. Miller } 22831da177e4SLinus Torvalds 228445e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 228545e4fd26SMartin KaFai Lau { 228645e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 228745e4fd26SMartin KaFai Lau 2288d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 228945e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 229045e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 229145e4fd26SMartin KaFai Lau } 229245e4fd26SMartin KaFai Lau 22930d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22940d3f6d29SMartin KaFai Lau { 22950d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 22961490ed2aSPaolo Abeni (rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from)); 22970d3f6d29SMartin KaFai Lau } 22980d3f6d29SMartin KaFai Lau 229945e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 230045e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 23011da177e4SLinus Torvalds { 23020dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23031da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23041da177e4SLinus Torvalds 230519bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 230619bda36cSXin Long return; 230719bda36cSXin Long 230845e4fd26SMartin KaFai Lau if (iph) { 230945e4fd26SMartin KaFai Lau daddr = &iph->daddr; 231045e4fd26SMartin KaFai Lau saddr = &iph->saddr; 231145e4fd26SMartin KaFai Lau } else if (sk) { 231245e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 231345e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 231445e4fd26SMartin KaFai Lau } else { 23150dec879fSJulian Anastasov daddr = NULL; 23160dec879fSJulian Anastasov saddr = NULL; 23171da177e4SLinus Torvalds } 23180dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23190dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23200dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23210dec879fSJulian Anastasov return; 23220dec879fSJulian Anastasov 23230dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23240dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23252b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23262b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23272b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23280dec879fSJulian Anastasov } else if (daddr) { 2329a68886a6SDavid Ahern struct fib6_info *from; 23300dec879fSJulian Anastasov struct rt6_info *nrt6; 23310dec879fSJulian Anastasov 23324d85cd0cSDavid Ahern rcu_read_lock(); 2333a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2334a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 233545e4fd26SMartin KaFai Lau if (nrt6) { 233645e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2337a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23382b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 233945e4fd26SMartin KaFai Lau } 2340a68886a6SDavid Ahern rcu_read_unlock(); 234145e4fd26SMartin KaFai Lau } 234245e4fd26SMartin KaFai Lau } 234345e4fd26SMartin KaFai Lau 234445e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 234545e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 234645e4fd26SMartin KaFai Lau { 234745e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23481da177e4SLinus Torvalds } 23491da177e4SLinus Torvalds 235042ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2351e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 235281aded24SDavid S. Miller { 235381aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 235481aded24SDavid S. Miller struct dst_entry *dst; 2355dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2356dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2357dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2358dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2359dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2360dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2361dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2362dc92095dSMaciej Żenczykowski }; 236381aded24SDavid S. Miller 236481aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 236581aded24SDavid S. Miller if (!dst->error) 236645e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 236781aded24SDavid S. Miller dst_release(dst); 236881aded24SDavid S. Miller } 236981aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 237081aded24SDavid S. Miller 237181aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 237281aded24SDavid S. Miller { 23737ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 237433c162a9SMartin KaFai Lau struct dst_entry *dst; 237533c162a9SMartin KaFai Lau 23767ddacfa5SDavid Ahern if (!oif && skb->dev) 23777ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 23787ddacfa5SDavid Ahern 23797ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 238033c162a9SMartin KaFai Lau 238133c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 238233c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 238333c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 238433c162a9SMartin KaFai Lau return; 238533c162a9SMartin KaFai Lau 238633c162a9SMartin KaFai Lau bh_lock_sock(sk); 238733c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 238833c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 238933c162a9SMartin KaFai Lau bh_unlock_sock(sk); 239081aded24SDavid S. Miller } 239181aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 239281aded24SDavid S. Miller 23937d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23947d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23957d6850f7SAlexey Kodanev { 23967d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23977d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23987d6850f7SAlexey Kodanev #endif 23997d6850f7SAlexey Kodanev 24007d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 24017d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 24027d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 24037d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24047d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24057d6850f7SAlexey Kodanev &np->saddr : 24067d6850f7SAlexey Kodanev #endif 24077d6850f7SAlexey Kodanev NULL); 24087d6850f7SAlexey Kodanev } 24097d6850f7SAlexey Kodanev 2410b55b76b2SDuan Jiong /* Handle redirects */ 2411b55b76b2SDuan Jiong struct ip6rd_flowi { 2412b55b76b2SDuan Jiong struct flowi6 fl6; 2413b55b76b2SDuan Jiong struct in6_addr gateway; 2414b55b76b2SDuan Jiong }; 2415b55b76b2SDuan Jiong 2416b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2417b55b76b2SDuan Jiong struct fib6_table *table, 2418b55b76b2SDuan Jiong struct flowi6 *fl6, 2419b75cc8f9SDavid Ahern const struct sk_buff *skb, 2420b55b76b2SDuan Jiong int flags) 2421b55b76b2SDuan Jiong { 2422b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 242323fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24248d1c802bSDavid Ahern struct fib6_info *rt; 2425b55b76b2SDuan Jiong struct fib6_node *fn; 2426b55b76b2SDuan Jiong 2427b55b76b2SDuan Jiong /* Get the "current" route for this destination and 242867c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2429b55b76b2SDuan Jiong * 2430b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2431b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2432b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2433b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2434b55b76b2SDuan Jiong * routes. 2435b55b76b2SDuan Jiong */ 2436b55b76b2SDuan Jiong 243766f5d6ceSWei Wang rcu_read_lock(); 24386454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2439b55b76b2SDuan Jiong restart: 244066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 2441ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 24428067bb8cSIdo Schimmel continue; 244314895687SDavid Ahern if (fib6_check_expired(rt)) 2444b55b76b2SDuan Jiong continue; 244593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2446b55b76b2SDuan Jiong break; 2447bdf00467SDavid Ahern if (!rt->fib6_nh.fib_nh_gw_family) 2448b55b76b2SDuan Jiong continue; 2449ad1601aeSDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.fib_nh_dev->ifindex) 2450b55b76b2SDuan Jiong continue; 24512b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24522b760fcfSWei Wang * in the case of an ip redirect. 24532b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24542b760fcfSWei Wang * is different. 24552b760fcfSWei Wang */ 2456ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.fib_nh_gw6)) { 24572b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24582b760fcfSWei Wang &fl6->daddr, 24592b760fcfSWei Wang &fl6->saddr); 24602b760fcfSWei Wang if (rt_cache && 24612b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24622b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 246323fb93a4SDavid Ahern ret = rt_cache; 24642b760fcfSWei Wang break; 24652b760fcfSWei Wang } 2466b55b76b2SDuan Jiong continue; 24672b760fcfSWei Wang } 2468b55b76b2SDuan Jiong break; 2469b55b76b2SDuan Jiong } 2470b55b76b2SDuan Jiong 2471b55b76b2SDuan Jiong if (!rt) 2472421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 247393c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 247423fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2475b0a1ba59SMartin KaFai Lau goto out; 2476b0a1ba59SMartin KaFai Lau } 2477b0a1ba59SMartin KaFai Lau 2478421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2479a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2480a3c00e46SMartin KaFai Lau if (fn) 2481a3c00e46SMartin KaFai Lau goto restart; 2482b55b76b2SDuan Jiong } 2483a3c00e46SMartin KaFai Lau 2484b0a1ba59SMartin KaFai Lau out: 248523fb93a4SDavid Ahern if (ret) 248610585b43SDavid Ahern ip6_hold_safe(net, &ret); 248723fb93a4SDavid Ahern else 248823fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2489b55b76b2SDuan Jiong 249066f5d6ceSWei Wang rcu_read_unlock(); 2491b55b76b2SDuan Jiong 2492b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 249323fb93a4SDavid Ahern return ret; 2494b55b76b2SDuan Jiong }; 2495b55b76b2SDuan Jiong 2496b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2497b55b76b2SDuan Jiong const struct flowi6 *fl6, 2498b75cc8f9SDavid Ahern const struct sk_buff *skb, 2499b55b76b2SDuan Jiong const struct in6_addr *gateway) 2500b55b76b2SDuan Jiong { 2501b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2502b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2503b55b76b2SDuan Jiong 2504b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2505b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2506b55b76b2SDuan Jiong 2507b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2508b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2509b55b76b2SDuan Jiong } 2510b55b76b2SDuan Jiong 2511e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2512e2d118a1SLorenzo Colitti kuid_t uid) 25133a5ad2eeSDavid S. Miller { 25143a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25153a5ad2eeSDavid S. Miller struct dst_entry *dst; 25161f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25171f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25181f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25191f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25201f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25211f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25221f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25231f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25241f7f10acSMaciej Żenczykowski }; 25253a5ad2eeSDavid S. Miller 2526b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25276700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25283a5ad2eeSDavid S. Miller dst_release(dst); 25293a5ad2eeSDavid S. Miller } 25303a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25313a5ad2eeSDavid S. Miller 2532d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2533c92a59ecSDuan Jiong { 2534c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2535c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2536c92a59ecSDuan Jiong struct dst_entry *dst; 25370b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25380b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25390b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25400b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25410b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25420b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25430b26fb17SMaciej Żenczykowski }; 2544c92a59ecSDuan Jiong 2545b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2546c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2547c92a59ecSDuan Jiong dst_release(dst); 2548c92a59ecSDuan Jiong } 2549c92a59ecSDuan Jiong 25503a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25513a5ad2eeSDavid S. Miller { 2552e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2553e2d118a1SLorenzo Colitti sk->sk_uid); 25543a5ad2eeSDavid S. Miller } 25553a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25563a5ad2eeSDavid S. Miller 25570dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25581da177e4SLinus Torvalds { 25590dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25600dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25610dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25620dbaee3bSDavid S. Miller 25631da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25641da177e4SLinus Torvalds 25655578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25665578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25671da177e4SLinus Torvalds 25681da177e4SLinus Torvalds /* 25691da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25701da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25711da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25721da177e4SLinus Torvalds * rely only on pmtu discovery" 25731da177e4SLinus Torvalds */ 25741da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25751da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25761da177e4SLinus Torvalds return mtu; 25771da177e4SLinus Torvalds } 25781da177e4SLinus Torvalds 2579ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2580d33e4553SDavid S. Miller { 2581d33e4553SDavid S. Miller struct inet6_dev *idev; 2582d4ead6b3SDavid Ahern unsigned int mtu; 2583618f9bc7SSteffen Klassert 25844b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25854b32b5adSMartin KaFai Lau if (mtu) 25864b32b5adSMartin KaFai Lau goto out; 25874b32b5adSMartin KaFai Lau 2588618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2589d33e4553SDavid S. Miller 2590d33e4553SDavid S. Miller rcu_read_lock(); 2591d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2592d33e4553SDavid S. Miller if (idev) 2593d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2594d33e4553SDavid S. Miller rcu_read_unlock(); 2595d33e4553SDavid S. Miller 259630f78d8eSEric Dumazet out: 259714972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 259814972cbdSRoopa Prabhu 259914972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2600d33e4553SDavid S. Miller } 2601d33e4553SDavid S. Miller 2602901731b8SDavid Ahern /* MTU selection: 2603901731b8SDavid Ahern * 1. mtu on route is locked - use it 2604901731b8SDavid Ahern * 2. mtu from nexthop exception 2605901731b8SDavid Ahern * 3. mtu from egress device 2606901731b8SDavid Ahern * 2607901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2608901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2609901731b8SDavid Ahern */ 2610901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2611901731b8SDavid Ahern struct in6_addr *saddr) 2612901731b8SDavid Ahern { 2613901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2614901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2615901731b8SDavid Ahern struct in6_addr *src_key; 2616901731b8SDavid Ahern struct inet6_dev *idev; 2617901731b8SDavid Ahern u32 mtu = 0; 2618901731b8SDavid Ahern 2619901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2620901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2621901731b8SDavid Ahern if (mtu) 2622901731b8SDavid Ahern goto out; 2623901731b8SDavid Ahern } 2624901731b8SDavid Ahern 2625901731b8SDavid Ahern src_key = NULL; 2626901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2627901731b8SDavid Ahern if (f6i->fib6_src.plen) 2628901731b8SDavid Ahern src_key = saddr; 2629901731b8SDavid Ahern #endif 2630901731b8SDavid Ahern 2631901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2632901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2633901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2634901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2635901731b8SDavid Ahern 2636901731b8SDavid Ahern if (likely(!mtu)) { 2637901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2638901731b8SDavid Ahern 2639901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2640901731b8SDavid Ahern idev = __in6_dev_get(dev); 2641901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2642901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2643901731b8SDavid Ahern } 2644901731b8SDavid Ahern 2645901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2646901731b8SDavid Ahern out: 2647901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2648901731b8SDavid Ahern } 2649901731b8SDavid Ahern 26503b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 265187a11578SDavid S. Miller struct flowi6 *fl6) 26521da177e4SLinus Torvalds { 265387a11578SDavid S. Miller struct dst_entry *dst; 26541da177e4SLinus Torvalds struct rt6_info *rt; 26551da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2656c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26571da177e4SLinus Torvalds 265838308473SDavid S. Miller if (unlikely(!idev)) 2659122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26601da177e4SLinus Torvalds 2661ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 266238308473SDavid S. Miller if (unlikely(!rt)) { 26631da177e4SLinus Torvalds in6_dev_put(idev); 266487a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26651da177e4SLinus Torvalds goto out; 26661da177e4SLinus Torvalds } 26671da177e4SLinus Torvalds 26688e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2669588753f1SBrendan McGrath rt->dst.input = ip6_input; 26708e2ec639SYan, Zheng rt->dst.output = ip6_output; 2671550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 267287a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26738e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26748e2ec639SYan, Zheng rt->rt6i_idev = idev; 267514edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26761da177e4SLinus Torvalds 26774c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2678587fea74SWei Wang * do proper release of the net_device 2679587fea74SWei Wang */ 2680587fea74SWei Wang rt6_uncached_list_add(rt); 268181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26821da177e4SLinus Torvalds 268387a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 268487a11578SDavid S. Miller 26851da177e4SLinus Torvalds out: 268687a11578SDavid S. Miller return dst; 26871da177e4SLinus Torvalds } 26881da177e4SLinus Torvalds 2689569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26901da177e4SLinus Torvalds { 269186393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26927019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26937019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26947019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26957019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26967019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2697fc66f95cSEric Dumazet int entries; 26981da177e4SLinus Torvalds 2699fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 270049a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2701fc66f95cSEric Dumazet entries <= rt_max_size) 27021da177e4SLinus Torvalds goto out; 27031da177e4SLinus Torvalds 27046891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 270514956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2706fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2707fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27087019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27091da177e4SLinus Torvalds out: 27107019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2711fc66f95cSEric Dumazet return entries > rt_max_size; 27121da177e4SLinus Torvalds } 27131da177e4SLinus Torvalds 27148c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27158c14586fSDavid Ahern struct fib6_config *cfg, 2716f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2717f4797b33SDavid Ahern u32 tbid, int flags) 27188c14586fSDavid Ahern { 27198c14586fSDavid Ahern struct flowi6 fl6 = { 27208c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27218c14586fSDavid Ahern .daddr = *gw_addr, 27228c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27238c14586fSDavid Ahern }; 27248c14586fSDavid Ahern struct fib6_table *table; 27258c14586fSDavid Ahern struct rt6_info *rt; 27268c14586fSDavid Ahern 2727f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27288c14586fSDavid Ahern if (!table) 27298c14586fSDavid Ahern return NULL; 27308c14586fSDavid Ahern 27318c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27328c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27338c14586fSDavid Ahern 2734f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2735b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27368c14586fSDavid Ahern 27378c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27388c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27398c14586fSDavid Ahern ip6_rt_put(rt); 27408c14586fSDavid Ahern rt = NULL; 27418c14586fSDavid Ahern } 27428c14586fSDavid Ahern 27438c14586fSDavid Ahern return rt; 27448c14586fSDavid Ahern } 27458c14586fSDavid Ahern 2746fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2747fc1e64e1SDavid Ahern struct fib6_config *cfg, 27489fbb704cSDavid Ahern const struct net_device *dev, 2749fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2750fc1e64e1SDavid Ahern { 275144750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2752fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2753fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2754bf1dc8baSPaolo Abeni struct fib6_info *from; 2755fc1e64e1SDavid Ahern struct rt6_info *grt; 2756fc1e64e1SDavid Ahern int err; 2757fc1e64e1SDavid Ahern 2758fc1e64e1SDavid Ahern err = 0; 2759fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2760fc1e64e1SDavid Ahern if (grt) { 2761bf1dc8baSPaolo Abeni rcu_read_lock(); 2762bf1dc8baSPaolo Abeni from = rcu_dereference(grt->from); 276358e354c0SDavid Ahern if (!grt->dst.error && 27644ed591c8SDavid Ahern /* ignore match if it is the default route */ 2765bf1dc8baSPaolo Abeni from && !ipv6_addr_any(&from->fib6_dst.addr) && 276658e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 276744750f84SDavid Ahern NL_SET_ERR_MSG(extack, 276844750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2769fc1e64e1SDavid Ahern err = -EINVAL; 2770fc1e64e1SDavid Ahern } 2771bf1dc8baSPaolo Abeni rcu_read_unlock(); 2772fc1e64e1SDavid Ahern 2773fc1e64e1SDavid Ahern ip6_rt_put(grt); 2774fc1e64e1SDavid Ahern } 2775fc1e64e1SDavid Ahern 2776fc1e64e1SDavid Ahern return err; 2777fc1e64e1SDavid Ahern } 2778fc1e64e1SDavid Ahern 27791edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27801edce99fSDavid Ahern struct fib6_config *cfg, 27811edce99fSDavid Ahern struct net_device **_dev, 27821edce99fSDavid Ahern struct inet6_dev **idev) 27831edce99fSDavid Ahern { 27841edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27851edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27861edce99fSDavid Ahern struct rt6_info *grt = NULL; 27871edce99fSDavid Ahern int err = -EHOSTUNREACH; 27881edce99fSDavid Ahern 27891edce99fSDavid Ahern if (cfg->fc_table) { 2790f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2791f4797b33SDavid Ahern 2792f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2793f4797b33SDavid Ahern cfg->fc_table, flags); 27941edce99fSDavid Ahern if (grt) { 27951edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 27961edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 27971edce99fSDavid Ahern ip6_rt_put(grt); 27981edce99fSDavid Ahern grt = NULL; 27991edce99fSDavid Ahern } 28001edce99fSDavid Ahern } 28011edce99fSDavid Ahern } 28021edce99fSDavid Ahern 28031edce99fSDavid Ahern if (!grt) 2804b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28051edce99fSDavid Ahern 28061edce99fSDavid Ahern if (!grt) 28071edce99fSDavid Ahern goto out; 28081edce99fSDavid Ahern 28091edce99fSDavid Ahern if (dev) { 28101edce99fSDavid Ahern if (dev != grt->dst.dev) { 28111edce99fSDavid Ahern ip6_rt_put(grt); 28121edce99fSDavid Ahern goto out; 28131edce99fSDavid Ahern } 28141edce99fSDavid Ahern } else { 28151edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28161edce99fSDavid Ahern *idev = grt->rt6i_idev; 28171edce99fSDavid Ahern dev_hold(dev); 28181edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28191edce99fSDavid Ahern } 28201edce99fSDavid Ahern 28211edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28221edce99fSDavid Ahern err = 0; 28231edce99fSDavid Ahern 28241edce99fSDavid Ahern ip6_rt_put(grt); 28251edce99fSDavid Ahern 28261edce99fSDavid Ahern out: 28271edce99fSDavid Ahern return err; 28281edce99fSDavid Ahern } 28291edce99fSDavid Ahern 28309fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28319fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28329fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28339fbb704cSDavid Ahern { 28349fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28359fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2836232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28379fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2838232378e8SDavid Ahern bool need_addr_check = !dev; 28399fbb704cSDavid Ahern int err = -EINVAL; 28409fbb704cSDavid Ahern 28419fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28429fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28439fbb704cSDavid Ahern * will return already-added prefix route via interface that 28449fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28459fbb704cSDavid Ahern */ 2846232378e8SDavid Ahern if (dev && 2847232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2848232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28499fbb704cSDavid Ahern goto out; 28509fbb704cSDavid Ahern } 28519fbb704cSDavid Ahern 28529fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28539fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28549fbb704cSDavid Ahern * addresses as nexthop address. 28559fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28569fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28579fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28589fbb704cSDavid Ahern * some exceptions. --ANK 28599fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28609fbb704cSDavid Ahern * addressing 28619fbb704cSDavid Ahern */ 28629fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28639fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28649fbb704cSDavid Ahern goto out; 28659fbb704cSDavid Ahern } 28669fbb704cSDavid Ahern 28679fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28689fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28699fbb704cSDavid Ahern else 28709fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28719fbb704cSDavid Ahern 28729fbb704cSDavid Ahern if (err) 28739fbb704cSDavid Ahern goto out; 28749fbb704cSDavid Ahern } 28759fbb704cSDavid Ahern 28769fbb704cSDavid Ahern /* reload in case device was changed */ 28779fbb704cSDavid Ahern dev = *_dev; 28789fbb704cSDavid Ahern 28799fbb704cSDavid Ahern err = -EINVAL; 28809fbb704cSDavid Ahern if (!dev) { 28819fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28829fbb704cSDavid Ahern goto out; 28839fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28849fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28859fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28869fbb704cSDavid Ahern goto out; 28879fbb704cSDavid Ahern } 2888232378e8SDavid Ahern 2889232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2890232378e8SDavid Ahern * egress device has been resolved. 2891232378e8SDavid Ahern */ 2892232378e8SDavid Ahern if (need_addr_check && 2893232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2894232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2895232378e8SDavid Ahern goto out; 2896232378e8SDavid Ahern } 2897232378e8SDavid Ahern 28989fbb704cSDavid Ahern err = 0; 28999fbb704cSDavid Ahern out: 29009fbb704cSDavid Ahern return err; 29019fbb704cSDavid Ahern } 29029fbb704cSDavid Ahern 290383c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type) 290483c44251SDavid Ahern { 290583c44251SDavid Ahern if ((flags & RTF_REJECT) || 290683c44251SDavid Ahern (dev && (dev->flags & IFF_LOOPBACK) && 290783c44251SDavid Ahern !(addr_type & IPV6_ADDR_LOOPBACK) && 290883c44251SDavid Ahern !(flags & RTF_LOCAL))) 290983c44251SDavid Ahern return true; 291083c44251SDavid Ahern 291183c44251SDavid Ahern return false; 291283c44251SDavid Ahern } 291383c44251SDavid Ahern 291483c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh, 291583c44251SDavid Ahern struct fib6_config *cfg, gfp_t gfp_flags, 291683c44251SDavid Ahern struct netlink_ext_ack *extack) 291783c44251SDavid Ahern { 291883c44251SDavid Ahern struct net_device *dev = NULL; 291983c44251SDavid Ahern struct inet6_dev *idev = NULL; 292083c44251SDavid Ahern int addr_type; 292183c44251SDavid Ahern int err; 292283c44251SDavid Ahern 2923f1741730SDavid Ahern fib6_nh->fib_nh_family = AF_INET6; 2924f1741730SDavid Ahern 292583c44251SDavid Ahern err = -ENODEV; 292683c44251SDavid Ahern if (cfg->fc_ifindex) { 292783c44251SDavid Ahern dev = dev_get_by_index(net, cfg->fc_ifindex); 292883c44251SDavid Ahern if (!dev) 292983c44251SDavid Ahern goto out; 293083c44251SDavid Ahern idev = in6_dev_get(dev); 293183c44251SDavid Ahern if (!idev) 293283c44251SDavid Ahern goto out; 293383c44251SDavid Ahern } 293483c44251SDavid Ahern 293583c44251SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 293683c44251SDavid Ahern if (!dev) { 293783c44251SDavid Ahern NL_SET_ERR_MSG(extack, 293883c44251SDavid Ahern "Nexthop device required for onlink"); 293983c44251SDavid Ahern goto out; 294083c44251SDavid Ahern } 294183c44251SDavid Ahern 294283c44251SDavid Ahern if (!(dev->flags & IFF_UP)) { 294383c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 294483c44251SDavid Ahern err = -ENETDOWN; 294583c44251SDavid Ahern goto out; 294683c44251SDavid Ahern } 294783c44251SDavid Ahern 2948ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_ONLINK; 294983c44251SDavid Ahern } 295083c44251SDavid Ahern 2951ad1601aeSDavid Ahern fib6_nh->fib_nh_weight = 1; 295283c44251SDavid Ahern 295383c44251SDavid Ahern /* We cannot add true routes via loopback here, 295483c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 295583c44251SDavid Ahern */ 295683c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 295783c44251SDavid Ahern if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) { 295883c44251SDavid Ahern /* hold loopback dev/idev if we haven't done so. */ 295983c44251SDavid Ahern if (dev != net->loopback_dev) { 296083c44251SDavid Ahern if (dev) { 296183c44251SDavid Ahern dev_put(dev); 296283c44251SDavid Ahern in6_dev_put(idev); 296383c44251SDavid Ahern } 296483c44251SDavid Ahern dev = net->loopback_dev; 296583c44251SDavid Ahern dev_hold(dev); 296683c44251SDavid Ahern idev = in6_dev_get(dev); 296783c44251SDavid Ahern if (!idev) { 296883c44251SDavid Ahern err = -ENODEV; 296983c44251SDavid Ahern goto out; 297083c44251SDavid Ahern } 297183c44251SDavid Ahern } 297283c44251SDavid Ahern goto set_dev; 297383c44251SDavid Ahern } 297483c44251SDavid Ahern 297583c44251SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) { 297683c44251SDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 297783c44251SDavid Ahern if (err) 297883c44251SDavid Ahern goto out; 297983c44251SDavid Ahern 2980ad1601aeSDavid Ahern fib6_nh->fib_nh_gw6 = cfg->fc_gateway; 2981bdf00467SDavid Ahern fib6_nh->fib_nh_gw_family = AF_INET6; 298283c44251SDavid Ahern } 298383c44251SDavid Ahern 298483c44251SDavid Ahern err = -ENODEV; 298583c44251SDavid Ahern if (!dev) 298683c44251SDavid Ahern goto out; 298783c44251SDavid Ahern 298883c44251SDavid Ahern if (idev->cnf.disable_ipv6) { 298983c44251SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 299083c44251SDavid Ahern err = -EACCES; 299183c44251SDavid Ahern goto out; 299283c44251SDavid Ahern } 299383c44251SDavid Ahern 299483c44251SDavid Ahern if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) { 299583c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 299683c44251SDavid Ahern err = -ENETDOWN; 299783c44251SDavid Ahern goto out; 299883c44251SDavid Ahern } 299983c44251SDavid Ahern 300083c44251SDavid Ahern if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) && 300183c44251SDavid Ahern !netif_carrier_ok(dev)) 3002ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN; 300383c44251SDavid Ahern 3004979e276eSDavid Ahern err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap, 3005979e276eSDavid Ahern cfg->fc_encap_type, cfg, gfp_flags, extack); 3006979e276eSDavid Ahern if (err) 3007979e276eSDavid Ahern goto out; 300883c44251SDavid Ahern set_dev: 3009ad1601aeSDavid Ahern fib6_nh->fib_nh_dev = dev; 3010f1741730SDavid Ahern fib6_nh->fib_nh_oif = dev->ifindex; 301183c44251SDavid Ahern err = 0; 301283c44251SDavid Ahern out: 301383c44251SDavid Ahern if (idev) 301483c44251SDavid Ahern in6_dev_put(idev); 301583c44251SDavid Ahern 301683c44251SDavid Ahern if (err) { 3017ad1601aeSDavid Ahern lwtstate_put(fib6_nh->fib_nh_lws); 3018ad1601aeSDavid Ahern fib6_nh->fib_nh_lws = NULL; 301983c44251SDavid Ahern if (dev) 302083c44251SDavid Ahern dev_put(dev); 302183c44251SDavid Ahern } 302283c44251SDavid Ahern 302383c44251SDavid Ahern return err; 302483c44251SDavid Ahern } 302583c44251SDavid Ahern 3026dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh) 3027dac7d0f2SDavid Ahern { 3028979e276eSDavid Ahern fib_nh_common_release(&fib6_nh->nh_common); 3029dac7d0f2SDavid Ahern } 3030dac7d0f2SDavid Ahern 30318d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 3032acb54e3cSDavid Ahern gfp_t gfp_flags, 3033333c4301SDavid Ahern struct netlink_ext_ack *extack) 30341da177e4SLinus Torvalds { 30355578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 30368d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3037c71099acSThomas Graf struct fib6_table *table; 30388c5b83f0SRoopa Prabhu int err = -EINVAL; 303983c44251SDavid Ahern int addr_type; 30401da177e4SLinus Torvalds 3041557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 3042d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 3043d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 3044557c44beSDavid Ahern goto out; 3045d5d531cbSDavid Ahern } 3046557c44beSDavid Ahern 30472ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 30482ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 30492ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 30502ea2352eSWei Wang goto out; 30512ea2352eSWei Wang } 30522ea2352eSWei Wang 3053e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 3054e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 3055e8478e80SDavid Ahern goto out; 3056e8478e80SDavid Ahern } 3057e8478e80SDavid Ahern 3058d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 3059d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 30608c5b83f0SRoopa Prabhu goto out; 3061d5d531cbSDavid Ahern } 3062d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 3063d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 3064d5d531cbSDavid Ahern goto out; 3065d5d531cbSDavid Ahern } 30661da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 3067d5d531cbSDavid Ahern if (cfg->fc_src_len) { 3068d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 3069d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 30708c5b83f0SRoopa Prabhu goto out; 3071d5d531cbSDavid Ahern } 30721da177e4SLinus Torvalds #endif 3073fc1e64e1SDavid Ahern 3074c71099acSThomas Graf err = -ENOBUFS; 307538308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3076d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3077d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 307838308473SDavid S. Miller if (!table) { 3079f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3080d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3081d71314b4SMatti Vaittinen } 3082d71314b4SMatti Vaittinen } else { 3083d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3084d71314b4SMatti Vaittinen } 308538308473SDavid S. Miller 308638308473SDavid S. Miller if (!table) 3087c71099acSThomas Graf goto out; 3088c71099acSThomas Graf 30891da177e4SLinus Torvalds err = -ENOMEM; 309093531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 309193531c67SDavid Ahern if (!rt) 30921da177e4SLinus Torvalds goto out; 309393531c67SDavid Ahern 3094d7e774f3SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len, 3095d7e774f3SDavid Ahern extack); 3096767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 3097767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 3098fda21d46SEric Dumazet /* Do not leave garbage there. */ 3099fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 3100767a2217SDavid Ahern goto out; 3101767a2217SDavid Ahern } 3102767a2217SDavid Ahern 310393531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 310493531c67SDavid Ahern rt->dst_nocount = true; 31051da177e4SLinus Torvalds 31061716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 310714895687SDavid Ahern fib6_set_expires(rt, jiffies + 31081716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 31091716a961SGao feng else 311014895687SDavid Ahern fib6_clean_expires(rt); 31111da177e4SLinus Torvalds 311286872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 311386872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 311493c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 311586872cb5SThomas Graf 311683c44251SDavid Ahern rt->fib6_table = table; 311783c44251SDavid Ahern rt->fib6_metric = cfg->fc_metric; 311883c44251SDavid Ahern rt->fib6_type = cfg->fc_type; 31192b2450caSDavid Ahern rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY; 312019e42e45SRoopa Prabhu 312193c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 312293c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 312393c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 31243b6761d1SDavid Ahern rt->dst_host = true; 31251da177e4SLinus Torvalds 31261da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 312793c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 312893c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 31291da177e4SLinus Torvalds #endif 313083c44251SDavid Ahern err = fib6_nh_init(net, &rt->fib6_nh, cfg, gfp_flags, extack); 31311da177e4SLinus Torvalds if (err) 31321da177e4SLinus Torvalds goto out; 31339fbb704cSDavid Ahern 313483c44251SDavid Ahern /* We cannot add true routes via loopback here, 313583c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 313683c44251SDavid Ahern */ 313783c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 3138ad1601aeSDavid Ahern if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh.fib_nh_dev, addr_type)) 313983c44251SDavid Ahern rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP; 3140955ec4cbSDavid Ahern 3141c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 314283c44251SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 314383c44251SDavid Ahern 3144c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3145d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3146c3968a85SDaniel Walter err = -EINVAL; 3147c3968a85SDaniel Walter goto out; 3148c3968a85SDaniel Walter } 314993c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 315093c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3151c3968a85SDaniel Walter } else 315293c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3153c3968a85SDaniel Walter 31548c5b83f0SRoopa Prabhu return rt; 31551da177e4SLinus Torvalds out: 315693531c67SDavid Ahern fib6_info_release(rt); 31578c5b83f0SRoopa Prabhu return ERR_PTR(err); 31586b9ea5a6SRoopa Prabhu } 31596b9ea5a6SRoopa Prabhu 3160acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3161333c4301SDavid Ahern struct netlink_ext_ack *extack) 31626b9ea5a6SRoopa Prabhu { 31638d1c802bSDavid Ahern struct fib6_info *rt; 31646b9ea5a6SRoopa Prabhu int err; 31656b9ea5a6SRoopa Prabhu 3166acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3167d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3168d4ead6b3SDavid Ahern return PTR_ERR(rt); 31696b9ea5a6SRoopa Prabhu 3170d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 317193531c67SDavid Ahern fib6_info_release(rt); 31726b9ea5a6SRoopa Prabhu 31731da177e4SLinus Torvalds return err; 31741da177e4SLinus Torvalds } 31751da177e4SLinus Torvalds 31768d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31771da177e4SLinus Torvalds { 3178afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3179c71099acSThomas Graf struct fib6_table *table; 3180afb1d4b5SDavid Ahern int err; 31811da177e4SLinus Torvalds 3182421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31836825a26cSGao feng err = -ENOENT; 31846825a26cSGao feng goto out; 31856825a26cSGao feng } 31866c813a72SPatrick McHardy 318793c2fb25SDavid Ahern table = rt->fib6_table; 318866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 318986872cb5SThomas Graf err = fib6_del(rt, info); 319066f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31911da177e4SLinus Torvalds 31926825a26cSGao feng out: 319393531c67SDavid Ahern fib6_info_release(rt); 31941da177e4SLinus Torvalds return err; 31951da177e4SLinus Torvalds } 31961da177e4SLinus Torvalds 31978d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3198e0a1ad73SThomas Graf { 3199afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3200afb1d4b5SDavid Ahern 3201528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3202e0a1ad73SThomas Graf } 3203e0a1ad73SThomas Graf 32048d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 32050ae81335SDavid Ahern { 32060ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3207e3330039SWANG Cong struct net *net = info->nl_net; 320816a16cd3SDavid Ahern struct sk_buff *skb = NULL; 32090ae81335SDavid Ahern struct fib6_table *table; 3210e3330039SWANG Cong int err = -ENOENT; 32110ae81335SDavid Ahern 3212421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3213e3330039SWANG Cong goto out_put; 321493c2fb25SDavid Ahern table = rt->fib6_table; 321566f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32160ae81335SDavid Ahern 321793c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32188d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32190ae81335SDavid Ahern 322016a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 322116a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 322216a16cd3SDavid Ahern if (skb) { 322316a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 322416a16cd3SDavid Ahern 3225d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 322616a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 322716a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 322816a16cd3SDavid Ahern kfree_skb(skb); 322916a16cd3SDavid Ahern skb = NULL; 323016a16cd3SDavid Ahern } else 323116a16cd3SDavid Ahern info->skip_notify = 1; 323216a16cd3SDavid Ahern } 323316a16cd3SDavid Ahern 32340ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 323593c2fb25SDavid Ahern &rt->fib6_siblings, 323693c2fb25SDavid Ahern fib6_siblings) { 32370ae81335SDavid Ahern err = fib6_del(sibling, info); 32380ae81335SDavid Ahern if (err) 3239e3330039SWANG Cong goto out_unlock; 32400ae81335SDavid Ahern } 32410ae81335SDavid Ahern } 32420ae81335SDavid Ahern 32430ae81335SDavid Ahern err = fib6_del(rt, info); 3244e3330039SWANG Cong out_unlock: 324566f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3246e3330039SWANG Cong out_put: 324793531c67SDavid Ahern fib6_info_release(rt); 324816a16cd3SDavid Ahern 324916a16cd3SDavid Ahern if (skb) { 3250e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 325116a16cd3SDavid Ahern info->nlh, gfp_any()); 325216a16cd3SDavid Ahern } 32530ae81335SDavid Ahern return err; 32540ae81335SDavid Ahern } 32550ae81335SDavid Ahern 325623fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 325723fb93a4SDavid Ahern { 325823fb93a4SDavid Ahern int rc = -ESRCH; 325923fb93a4SDavid Ahern 326023fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 326123fb93a4SDavid Ahern goto out; 326223fb93a4SDavid Ahern 326323fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 326423fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 326523fb93a4SDavid Ahern goto out; 3266761f6026SXin Long 326723fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 326823fb93a4SDavid Ahern out: 326923fb93a4SDavid Ahern return rc; 327023fb93a4SDavid Ahern } 327123fb93a4SDavid Ahern 3272333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3273333c4301SDavid Ahern struct netlink_ext_ack *extack) 32741da177e4SLinus Torvalds { 32758d1c802bSDavid Ahern struct rt6_info *rt_cache; 3276c71099acSThomas Graf struct fib6_table *table; 32778d1c802bSDavid Ahern struct fib6_info *rt; 32781da177e4SLinus Torvalds struct fib6_node *fn; 32791da177e4SLinus Torvalds int err = -ESRCH; 32801da177e4SLinus Torvalds 32815578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3282d5d531cbSDavid Ahern if (!table) { 3283d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3284c71099acSThomas Graf return err; 3285d5d531cbSDavid Ahern } 32861da177e4SLinus Torvalds 328766f5d6ceSWei Wang rcu_read_lock(); 3288c71099acSThomas Graf 3289c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 329086872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 329138fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32922b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32931da177e4SLinus Torvalds 32941da177e4SLinus Torvalds if (fn) { 329566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3296ad1601aeSDavid Ahern struct fib6_nh *nh; 3297ad1601aeSDavid Ahern 32982b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 329923fb93a4SDavid Ahern int rc; 330023fb93a4SDavid Ahern 33012b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 33022b760fcfSWei Wang &cfg->fc_src); 330323fb93a4SDavid Ahern if (rt_cache) { 330423fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 33059e575010SEric Dumazet if (rc != -ESRCH) { 33069e575010SEric Dumazet rcu_read_unlock(); 330723fb93a4SDavid Ahern return rc; 330823fb93a4SDavid Ahern } 33099e575010SEric Dumazet } 33101f56a01fSMartin KaFai Lau continue; 33112b760fcfSWei Wang } 3312ad1601aeSDavid Ahern 3313ad1601aeSDavid Ahern nh = &rt->fib6_nh; 331486872cb5SThomas Graf if (cfg->fc_ifindex && 3315ad1601aeSDavid Ahern (!nh->fib_nh_dev || 3316ad1601aeSDavid Ahern nh->fib_nh_dev->ifindex != cfg->fc_ifindex)) 33171da177e4SLinus Torvalds continue; 331886872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 3319ad1601aeSDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6)) 33201da177e4SLinus Torvalds continue; 332193c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33221da177e4SLinus Torvalds continue; 332393c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3324c2ed1880SMantas M continue; 3325e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3326e873e4b9SWei Wang continue; 332766f5d6ceSWei Wang rcu_read_unlock(); 33281da177e4SLinus Torvalds 33290ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33300ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 333186872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33320ae81335SDavid Ahern 33330ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33341da177e4SLinus Torvalds } 33351da177e4SLinus Torvalds } 333666f5d6ceSWei Wang rcu_read_unlock(); 33371da177e4SLinus Torvalds 33381da177e4SLinus Torvalds return err; 33391da177e4SLinus Torvalds } 33401da177e4SLinus Torvalds 33416700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3342a6279458SYOSHIFUJI Hideaki { 3343a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3344e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3345e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3346e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3347e8599ff4SDavid S. Miller struct neighbour *neigh; 3348a68886a6SDavid Ahern struct fib6_info *from; 334971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33506e157b6aSDavid S. Miller int optlen, on_link; 33516e157b6aSDavid S. Miller u8 *lladdr; 3352e8599ff4SDavid S. Miller 335329a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 335471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3355e8599ff4SDavid S. Miller 3356e8599ff4SDavid S. Miller if (optlen < 0) { 33576e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3358e8599ff4SDavid S. Miller return; 3359e8599ff4SDavid S. Miller } 3360e8599ff4SDavid S. Miller 336171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3362e8599ff4SDavid S. Miller 336371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33646e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3365e8599ff4SDavid S. Miller return; 3366e8599ff4SDavid S. Miller } 3367e8599ff4SDavid S. Miller 33686e157b6aSDavid S. Miller on_link = 0; 336971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3370e8599ff4SDavid S. Miller on_link = 1; 337171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3372e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33736e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3374e8599ff4SDavid S. Miller return; 3375e8599ff4SDavid S. Miller } 3376e8599ff4SDavid S. Miller 3377e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3378e8599ff4SDavid S. Miller if (!in6_dev) 3379e8599ff4SDavid S. Miller return; 3380e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3381e8599ff4SDavid S. Miller return; 3382e8599ff4SDavid S. Miller 3383e8599ff4SDavid S. Miller /* RFC2461 8.1: 3384e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3385e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3386e8599ff4SDavid S. Miller */ 3387e8599ff4SDavid S. Miller 3388f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3389e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3390e8599ff4SDavid S. Miller return; 3391e8599ff4SDavid S. Miller } 33926e157b6aSDavid S. Miller 33936e157b6aSDavid S. Miller lladdr = NULL; 3394e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3395e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3396e8599ff4SDavid S. Miller skb->dev); 3397e8599ff4SDavid S. Miller if (!lladdr) { 3398e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3399e8599ff4SDavid S. Miller return; 3400e8599ff4SDavid S. Miller } 3401e8599ff4SDavid S. Miller } 3402e8599ff4SDavid S. Miller 34036e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3404ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 34056e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 34066e157b6aSDavid S. Miller return; 34076e157b6aSDavid S. Miller } 34086e157b6aSDavid S. Miller 34096e157b6aSDavid S. Miller /* Redirect received -> path was valid. 34106e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 34116e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 34126e157b6aSDavid S. Miller */ 34130dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34146e157b6aSDavid S. Miller 341571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3416e8599ff4SDavid S. Miller if (!neigh) 3417e8599ff4SDavid S. Miller return; 3418e8599ff4SDavid S. Miller 34191da177e4SLinus Torvalds /* 34201da177e4SLinus Torvalds * We have finally decided to accept it. 34211da177e4SLinus Torvalds */ 34221da177e4SLinus Torvalds 3423f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34241da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34251da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34261da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3427f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3428f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34291da177e4SLinus Torvalds 34304d85cd0cSDavid Ahern rcu_read_lock(); 3431a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3432e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3433e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3434e873e4b9SWei Wang */ 34358a14e46fSDavid Ahern fib6_info_hold(from); 34364d85cd0cSDavid Ahern rcu_read_unlock(); 34378a14e46fSDavid Ahern 34388a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 343938308473SDavid S. Miller if (!nrt) 34401da177e4SLinus Torvalds goto out; 34411da177e4SLinus Torvalds 34421da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34431da177e4SLinus Torvalds if (on_link) 34441da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34451da177e4SLinus Torvalds 34464e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34471da177e4SLinus Torvalds 34482b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34492b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34502b760fcfSWei Wang * takes care of it 34512b760fcfSWei Wang */ 34528a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34532b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34542b760fcfSWei Wang goto out; 34552b760fcfSWei Wang } 34561da177e4SLinus Torvalds 3457d8d1f30bSChangli Gao netevent.old = &rt->dst; 3458d8d1f30bSChangli Gao netevent.new = &nrt->dst; 345971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 346060592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34618d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34628d71740cSTom Tucker 34631da177e4SLinus Torvalds out: 34648a14e46fSDavid Ahern fib6_info_release(from); 3465e8599ff4SDavid S. Miller neigh_release(neigh); 34666e157b6aSDavid S. Miller } 34676e157b6aSDavid S. Miller 346870ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34698d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3470b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3471830218c1SDavid Ahern const struct in6_addr *gwaddr, 3472830218c1SDavid Ahern struct net_device *dev) 347370ceb4f5SYOSHIFUJI Hideaki { 3474830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3475830218c1SDavid Ahern int ifindex = dev->ifindex; 347670ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34778d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3478c71099acSThomas Graf struct fib6_table *table; 347970ceb4f5SYOSHIFUJI Hideaki 3480830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 348138308473SDavid S. Miller if (!table) 3482c71099acSThomas Graf return NULL; 3483c71099acSThomas Graf 348466f5d6ceSWei Wang rcu_read_lock(); 348538fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 348670ceb4f5SYOSHIFUJI Hideaki if (!fn) 348770ceb4f5SYOSHIFUJI Hideaki goto out; 348870ceb4f5SYOSHIFUJI Hideaki 348966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3490ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev->ifindex != ifindex) 349170ceb4f5SYOSHIFUJI Hideaki continue; 34922b2450caSDavid Ahern if (!(rt->fib6_flags & RTF_ROUTEINFO) || 3493bdf00467SDavid Ahern !rt->fib6_nh.fib_nh_gw_family) 349470ceb4f5SYOSHIFUJI Hideaki continue; 3495ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.fib_nh_gw6, gwaddr)) 349670ceb4f5SYOSHIFUJI Hideaki continue; 3497e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3498e873e4b9SWei Wang continue; 349970ceb4f5SYOSHIFUJI Hideaki break; 350070ceb4f5SYOSHIFUJI Hideaki } 350170ceb4f5SYOSHIFUJI Hideaki out: 350266f5d6ceSWei Wang rcu_read_unlock(); 350370ceb4f5SYOSHIFUJI Hideaki return rt; 350470ceb4f5SYOSHIFUJI Hideaki } 350570ceb4f5SYOSHIFUJI Hideaki 35068d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3507b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3508830218c1SDavid Ahern const struct in6_addr *gwaddr, 3509830218c1SDavid Ahern struct net_device *dev, 351095c96174SEric Dumazet unsigned int pref) 351170ceb4f5SYOSHIFUJI Hideaki { 351286872cb5SThomas Graf struct fib6_config cfg = { 3513238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3514830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 351586872cb5SThomas Graf .fc_dst_len = prefixlen, 351686872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 351786872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3518b91d5329SXin Long .fc_protocol = RTPROT_RA, 3519e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 352015e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3521efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3522efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 352386872cb5SThomas Graf }; 352470ceb4f5SYOSHIFUJI Hideaki 3525830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35264e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35274e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 352886872cb5SThomas Graf 3529e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3530e317da96SYOSHIFUJI Hideaki if (!prefixlen) 353186872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 353270ceb4f5SYOSHIFUJI Hideaki 3533acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 353470ceb4f5SYOSHIFUJI Hideaki 3535830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 353670ceb4f5SYOSHIFUJI Hideaki } 353770ceb4f5SYOSHIFUJI Hideaki #endif 353870ceb4f5SYOSHIFUJI Hideaki 35398d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3540afb1d4b5SDavid Ahern const struct in6_addr *addr, 3541afb1d4b5SDavid Ahern struct net_device *dev) 35421da177e4SLinus Torvalds { 3543830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35448d1c802bSDavid Ahern struct fib6_info *rt; 3545c71099acSThomas Graf struct fib6_table *table; 35461da177e4SLinus Torvalds 3547afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 354838308473SDavid S. Miller if (!table) 3549c71099acSThomas Graf return NULL; 35501da177e4SLinus Torvalds 355166f5d6ceSWei Wang rcu_read_lock(); 355266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3553ad1601aeSDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 3554ad1601aeSDavid Ahern 3555ad1601aeSDavid Ahern if (dev == nh->fib_nh_dev && 355693c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 3557ad1601aeSDavid Ahern ipv6_addr_equal(&nh->fib_nh_gw6, addr)) 35581da177e4SLinus Torvalds break; 35591da177e4SLinus Torvalds } 3560e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3561e873e4b9SWei Wang rt = NULL; 356266f5d6ceSWei Wang rcu_read_unlock(); 35631da177e4SLinus Torvalds return rt; 35641da177e4SLinus Torvalds } 35651da177e4SLinus Torvalds 35668d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3567afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3568ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3569ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35701da177e4SLinus Torvalds { 357186872cb5SThomas Graf struct fib6_config cfg = { 3572ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3573238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 357486872cb5SThomas Graf .fc_ifindex = dev->ifindex, 357586872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 357686872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3577b91d5329SXin Long .fc_protocol = RTPROT_RA, 3578e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 357915e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35805578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3581afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 358286872cb5SThomas Graf }; 35831da177e4SLinus Torvalds 35844e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35851da177e4SLinus Torvalds 3586acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3587830218c1SDavid Ahern struct fib6_table *table; 3588830218c1SDavid Ahern 3589830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3590830218c1SDavid Ahern if (table) 3591830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3592830218c1SDavid Ahern } 35931da177e4SLinus Torvalds 3594afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35951da177e4SLinus Torvalds } 35961da177e4SLinus Torvalds 3597afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3598afb1d4b5SDavid Ahern struct fib6_table *table) 35991da177e4SLinus Torvalds { 36008d1c802bSDavid Ahern struct fib6_info *rt; 36011da177e4SLinus Torvalds 36021da177e4SLinus Torvalds restart: 360366f5d6ceSWei Wang rcu_read_lock(); 360466f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3605dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3606dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3607dcd1f572SDavid Ahern 360893c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3609e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3610e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 361166f5d6ceSWei Wang rcu_read_unlock(); 3612afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36131da177e4SLinus Torvalds goto restart; 36141da177e4SLinus Torvalds } 36151da177e4SLinus Torvalds } 361666f5d6ceSWei Wang rcu_read_unlock(); 3617830218c1SDavid Ahern 3618830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3619830218c1SDavid Ahern } 3620830218c1SDavid Ahern 3621830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3622830218c1SDavid Ahern { 3623830218c1SDavid Ahern struct fib6_table *table; 3624830218c1SDavid Ahern struct hlist_head *head; 3625830218c1SDavid Ahern unsigned int h; 3626830218c1SDavid Ahern 3627830218c1SDavid Ahern rcu_read_lock(); 3628830218c1SDavid Ahern 3629830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3630830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3631830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3632830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3633afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3634830218c1SDavid Ahern } 3635830218c1SDavid Ahern } 3636830218c1SDavid Ahern 3637830218c1SDavid Ahern rcu_read_unlock(); 36381da177e4SLinus Torvalds } 36391da177e4SLinus Torvalds 36405578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36415578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 364286872cb5SThomas Graf struct fib6_config *cfg) 364386872cb5SThomas Graf { 36448823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 36458823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 36468823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 36478823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 364867f69513SDavid Ahern .fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER, 36498823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 36508823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 36518823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 36528823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 36538823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 365486872cb5SThomas Graf 36558823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 365686872cb5SThomas Graf 36578823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36588823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36598823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36608823a3acSMaciej Żenczykowski }; 366186872cb5SThomas Graf } 366286872cb5SThomas Graf 36635578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36641da177e4SLinus Torvalds { 366586872cb5SThomas Graf struct fib6_config cfg; 36661da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36671da177e4SLinus Torvalds int err; 36681da177e4SLinus Torvalds 36691da177e4SLinus Torvalds switch (cmd) { 36701da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36711da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3672af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36731da177e4SLinus Torvalds return -EPERM; 36741da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36751da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36761da177e4SLinus Torvalds if (err) 36771da177e4SLinus Torvalds return -EFAULT; 36781da177e4SLinus Torvalds 36795578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 368086872cb5SThomas Graf 36811da177e4SLinus Torvalds rtnl_lock(); 36821da177e4SLinus Torvalds switch (cmd) { 36831da177e4SLinus Torvalds case SIOCADDRT: 3684acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36851da177e4SLinus Torvalds break; 36861da177e4SLinus Torvalds case SIOCDELRT: 3687333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36881da177e4SLinus Torvalds break; 36891da177e4SLinus Torvalds default: 36901da177e4SLinus Torvalds err = -EINVAL; 36911da177e4SLinus Torvalds } 36921da177e4SLinus Torvalds rtnl_unlock(); 36931da177e4SLinus Torvalds 36941da177e4SLinus Torvalds return err; 36953ff50b79SStephen Hemminger } 36961da177e4SLinus Torvalds 36971da177e4SLinus Torvalds return -EINVAL; 36981da177e4SLinus Torvalds } 36991da177e4SLinus Torvalds 37001da177e4SLinus Torvalds /* 37011da177e4SLinus Torvalds * Drop the packet on the floor 37021da177e4SLinus Torvalds */ 37031da177e4SLinus Torvalds 3704d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 37051da177e4SLinus Torvalds { 3706612f09e8SYOSHIFUJI Hideaki int type; 3707adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3708612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3709612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 37100660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 371145bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3712bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3713bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 37143bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3715612f09e8SYOSHIFUJI Hideaki break; 3716612f09e8SYOSHIFUJI Hideaki } 3717612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3718612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37193bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37203bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3721612f09e8SYOSHIFUJI Hideaki break; 3722612f09e8SYOSHIFUJI Hideaki } 37233ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37241da177e4SLinus Torvalds kfree_skb(skb); 37251da177e4SLinus Torvalds return 0; 37261da177e4SLinus Torvalds } 37271da177e4SLinus Torvalds 37289ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37299ce8ade0SThomas Graf { 3730612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37319ce8ade0SThomas Graf } 37329ce8ade0SThomas Graf 3733ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37341da177e4SLinus Torvalds { 3735adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3736612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37371da177e4SLinus Torvalds } 37381da177e4SLinus Torvalds 37399ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37409ce8ade0SThomas Graf { 3741612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37429ce8ade0SThomas Graf } 37439ce8ade0SThomas Graf 3744ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37459ce8ade0SThomas Graf { 3746adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3747612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37489ce8ade0SThomas Graf } 37499ce8ade0SThomas Graf 37501da177e4SLinus Torvalds /* 37511da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37521da177e4SLinus Torvalds */ 37531da177e4SLinus Torvalds 3754360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3755afb1d4b5SDavid Ahern struct inet6_dev *idev, 37561da177e4SLinus Torvalds const struct in6_addr *addr, 3757acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37581da177e4SLinus Torvalds { 3759c7a1ce39SDavid Ahern struct fib6_config cfg = { 3760c7a1ce39SDavid Ahern .fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL, 3761c7a1ce39SDavid Ahern .fc_ifindex = idev->dev->ifindex, 3762c7a1ce39SDavid Ahern .fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP, 3763c7a1ce39SDavid Ahern .fc_dst = *addr, 3764c7a1ce39SDavid Ahern .fc_dst_len = 128, 3765c7a1ce39SDavid Ahern .fc_protocol = RTPROT_KERNEL, 3766c7a1ce39SDavid Ahern .fc_nlinfo.nl_net = net, 3767c7a1ce39SDavid Ahern .fc_ignore_dev_down = true, 3768c7a1ce39SDavid Ahern }; 37695f02ce24SDavid Ahern 3770e8478e80SDavid Ahern if (anycast) { 3771c7a1ce39SDavid Ahern cfg.fc_type = RTN_ANYCAST; 3772c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_ANYCAST; 3773e8478e80SDavid Ahern } else { 3774c7a1ce39SDavid Ahern cfg.fc_type = RTN_LOCAL; 3775c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_LOCAL; 3776e8478e80SDavid Ahern } 37771da177e4SLinus Torvalds 3778c7a1ce39SDavid Ahern return ip6_route_info_create(&cfg, gfp_flags, NULL); 37791da177e4SLinus Torvalds } 37801da177e4SLinus Torvalds 3781c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3782c3968a85SDaniel Walter struct arg_dev_net_ip { 3783c3968a85SDaniel Walter struct net_device *dev; 3784c3968a85SDaniel Walter struct net *net; 3785c3968a85SDaniel Walter struct in6_addr *addr; 3786c3968a85SDaniel Walter }; 3787c3968a85SDaniel Walter 37888d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3789c3968a85SDaniel Walter { 3790c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3791c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3792c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3793c3968a85SDaniel Walter 3794ad1601aeSDavid Ahern if (((void *)rt->fib6_nh.fib_nh_dev == dev || !dev) && 3795421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 379693c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 379760006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3798c3968a85SDaniel Walter /* remove prefsrc entry */ 379993c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 380060006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3801c3968a85SDaniel Walter } 3802c3968a85SDaniel Walter return 0; 3803c3968a85SDaniel Walter } 3804c3968a85SDaniel Walter 3805c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3806c3968a85SDaniel Walter { 3807c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3808c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3809c3968a85SDaniel Walter .dev = ifp->idev->dev, 3810c3968a85SDaniel Walter .net = net, 3811c3968a85SDaniel Walter .addr = &ifp->addr, 3812c3968a85SDaniel Walter }; 38130c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3814c3968a85SDaniel Walter } 3815c3968a85SDaniel Walter 38162b2450caSDavid Ahern #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT) 3817be7a010dSDuan Jiong 3818be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38198d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3820be7a010dSDuan Jiong { 3821be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3822be7a010dSDuan Jiong 382393c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3824bdf00467SDavid Ahern rt->fib6_nh.fib_nh_gw_family && 3825ad1601aeSDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.fib_nh_gw6)) { 3826be7a010dSDuan Jiong return -1; 3827be7a010dSDuan Jiong } 3828b16cb459SWei Wang 3829b16cb459SWei Wang /* Further clean up cached routes in exception table. 3830b16cb459SWei Wang * This is needed because cached route may have a different 3831b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3832b16cb459SWei Wang */ 3833b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3834b16cb459SWei Wang 3835be7a010dSDuan Jiong return 0; 3836be7a010dSDuan Jiong } 3837be7a010dSDuan Jiong 3838be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3839be7a010dSDuan Jiong { 3840be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3841be7a010dSDuan Jiong } 3842be7a010dSDuan Jiong 38432127d95aSIdo Schimmel struct arg_netdev_event { 38442127d95aSIdo Schimmel const struct net_device *dev; 38454c981e28SIdo Schimmel union { 38462127d95aSIdo Schimmel unsigned int nh_flags; 38474c981e28SIdo Schimmel unsigned long event; 38484c981e28SIdo Schimmel }; 38492127d95aSIdo Schimmel }; 38502127d95aSIdo Schimmel 38518d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3852d7dedee1SIdo Schimmel { 38538d1c802bSDavid Ahern struct fib6_info *iter; 3854d7dedee1SIdo Schimmel struct fib6_node *fn; 3855d7dedee1SIdo Schimmel 385693c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 385793c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3858d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 385993c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3860d7dedee1SIdo Schimmel while (iter) { 386193c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 386233bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3863d7dedee1SIdo Schimmel return iter; 38648fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 386593c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3866d7dedee1SIdo Schimmel } 3867d7dedee1SIdo Schimmel 3868d7dedee1SIdo Schimmel return NULL; 3869d7dedee1SIdo Schimmel } 3870d7dedee1SIdo Schimmel 38718d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3872d7dedee1SIdo Schimmel { 3873ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD || 3874ad1601aeSDavid Ahern (rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 3875ad1601aeSDavid Ahern ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev))) 3876d7dedee1SIdo Schimmel return true; 3877d7dedee1SIdo Schimmel 3878d7dedee1SIdo Schimmel return false; 3879d7dedee1SIdo Schimmel } 3880d7dedee1SIdo Schimmel 38818d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3882d7dedee1SIdo Schimmel { 38838d1c802bSDavid Ahern struct fib6_info *iter; 3884d7dedee1SIdo Schimmel int total = 0; 3885d7dedee1SIdo Schimmel 3886d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 3887ad1601aeSDavid Ahern total += rt->fib6_nh.fib_nh_weight; 3888d7dedee1SIdo Schimmel 388993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3890d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 3891ad1601aeSDavid Ahern total += iter->fib6_nh.fib_nh_weight; 3892d7dedee1SIdo Schimmel } 3893d7dedee1SIdo Schimmel 3894d7dedee1SIdo Schimmel return total; 3895d7dedee1SIdo Schimmel } 3896d7dedee1SIdo Schimmel 38978d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3898d7dedee1SIdo Schimmel { 3899d7dedee1SIdo Schimmel int upper_bound = -1; 3900d7dedee1SIdo Schimmel 3901d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 3902ad1601aeSDavid Ahern *weight += rt->fib6_nh.fib_nh_weight; 3903d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3904d7dedee1SIdo Schimmel total) - 1; 3905d7dedee1SIdo Schimmel } 3906ad1601aeSDavid Ahern atomic_set(&rt->fib6_nh.fib_nh_upper_bound, upper_bound); 3907d7dedee1SIdo Schimmel } 3908d7dedee1SIdo Schimmel 39098d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3910d7dedee1SIdo Schimmel { 39118d1c802bSDavid Ahern struct fib6_info *iter; 3912d7dedee1SIdo Schimmel int weight = 0; 3913d7dedee1SIdo Schimmel 3914d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3915d7dedee1SIdo Schimmel 391693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3917d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3918d7dedee1SIdo Schimmel } 3919d7dedee1SIdo Schimmel 39208d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3921d7dedee1SIdo Schimmel { 39228d1c802bSDavid Ahern struct fib6_info *first; 3923d7dedee1SIdo Schimmel int total; 3924d7dedee1SIdo Schimmel 3925d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3926d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3927d7dedee1SIdo Schimmel * sibling route. 3928d7dedee1SIdo Schimmel */ 392993c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3930d7dedee1SIdo Schimmel return; 3931d7dedee1SIdo Schimmel 3932d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3933d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3934d7dedee1SIdo Schimmel * onwards. 3935d7dedee1SIdo Schimmel */ 3936d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3937d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3938d7dedee1SIdo Schimmel return; 3939d7dedee1SIdo Schimmel 3940d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3941d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3942d7dedee1SIdo Schimmel } 3943d7dedee1SIdo Schimmel 39448d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39452127d95aSIdo Schimmel { 39462127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39477aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39482127d95aSIdo Schimmel 3949ad1601aeSDavid Ahern if (rt != net->ipv6.fib6_null_entry && 3950ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_dev == arg->dev) { 3951ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags &= ~arg->nh_flags; 39527aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3953d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39541de178edSIdo Schimmel } 39552127d95aSIdo Schimmel 39562127d95aSIdo Schimmel return 0; 39572127d95aSIdo Schimmel } 39582127d95aSIdo Schimmel 39592127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39602127d95aSIdo Schimmel { 39612127d95aSIdo Schimmel struct arg_netdev_event arg = { 39622127d95aSIdo Schimmel .dev = dev, 39636802f3adSIdo Schimmel { 39642127d95aSIdo Schimmel .nh_flags = nh_flags, 39656802f3adSIdo Schimmel }, 39662127d95aSIdo Schimmel }; 39672127d95aSIdo Schimmel 39682127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39692127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39702127d95aSIdo Schimmel 39712127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39722127d95aSIdo Schimmel } 39732127d95aSIdo Schimmel 39748d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39751de178edSIdo Schimmel const struct net_device *dev) 39761de178edSIdo Schimmel { 39778d1c802bSDavid Ahern struct fib6_info *iter; 39781de178edSIdo Schimmel 3979ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 39801de178edSIdo Schimmel return true; 398193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3982ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 39831de178edSIdo Schimmel return true; 39841de178edSIdo Schimmel 39851de178edSIdo Schimmel return false; 39861de178edSIdo Schimmel } 39871de178edSIdo Schimmel 39888d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39891de178edSIdo Schimmel { 39908d1c802bSDavid Ahern struct fib6_info *iter; 39911de178edSIdo Schimmel 39921de178edSIdo Schimmel rt->should_flush = 1; 399393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39941de178edSIdo Schimmel iter->should_flush = 1; 39951de178edSIdo Schimmel } 39961de178edSIdo Schimmel 39978d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39981de178edSIdo Schimmel const struct net_device *down_dev) 39991de178edSIdo Schimmel { 40008d1c802bSDavid Ahern struct fib6_info *iter; 40011de178edSIdo Schimmel unsigned int dead = 0; 40021de178edSIdo Schimmel 4003ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == down_dev || 4004ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40051de178edSIdo Schimmel dead++; 400693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4007ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == down_dev || 4008ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40091de178edSIdo Schimmel dead++; 40101de178edSIdo Schimmel 40111de178edSIdo Schimmel return dead; 40121de178edSIdo Schimmel } 40131de178edSIdo Schimmel 40148d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40151de178edSIdo Schimmel const struct net_device *dev, 40161de178edSIdo Schimmel unsigned int nh_flags) 40171de178edSIdo Schimmel { 40188d1c802bSDavid Ahern struct fib6_info *iter; 40191de178edSIdo Schimmel 4020ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 4021ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= nh_flags; 402293c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4023ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 4024ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags |= nh_flags; 40251de178edSIdo Schimmel } 40261de178edSIdo Schimmel 4027a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40288d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40291da177e4SLinus Torvalds { 40304c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40314c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40327aef6859SDavid Ahern struct net *net = dev_net(dev); 40338ed67789SDaniel Lezcano 4034421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 403527c6fa73SIdo Schimmel return 0; 403627c6fa73SIdo Schimmel 403727c6fa73SIdo Schimmel switch (arg->event) { 403827c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 4039ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 404027c6fa73SIdo Schimmel case NETDEV_DOWN: 40411de178edSIdo Schimmel if (rt->should_flush) 404227c6fa73SIdo Schimmel return -1; 404393c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 4044ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 40451de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40461de178edSIdo Schimmel unsigned int count; 40471de178edSIdo Schimmel 40481de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 404993c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40501de178edSIdo Schimmel rt6_multipath_flush(rt); 40511de178edSIdo Schimmel return -1; 40521de178edSIdo Schimmel } 40531de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40541de178edSIdo Schimmel RTNH_F_LINKDOWN); 40557aef6859SDavid Ahern fib6_update_sernum(net, rt); 4056d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40571de178edSIdo Schimmel } 40581de178edSIdo Schimmel return -2; 405927c6fa73SIdo Schimmel case NETDEV_CHANGE: 4060ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev != dev || 406193c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 406227c6fa73SIdo Schimmel break; 4063ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= RTNH_F_LINKDOWN; 4064d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 406527c6fa73SIdo Schimmel break; 40662b241361SIdo Schimmel } 4067c159d30cSDavid S. Miller 40681da177e4SLinus Torvalds return 0; 40691da177e4SLinus Torvalds } 40701da177e4SLinus Torvalds 407127c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40721da177e4SLinus Torvalds { 40734c981e28SIdo Schimmel struct arg_netdev_event arg = { 40748ed67789SDaniel Lezcano .dev = dev, 40756802f3adSIdo Schimmel { 40764c981e28SIdo Schimmel .event = event, 40776802f3adSIdo Schimmel }, 40788ed67789SDaniel Lezcano }; 40797c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 40808ed67789SDaniel Lezcano 40817c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 40827c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 40837c6bb7d2SDavid Ahern else 40847c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 40854c981e28SIdo Schimmel } 40864c981e28SIdo Schimmel 40874c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40884c981e28SIdo Schimmel { 40894c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40904c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40914c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40921da177e4SLinus Torvalds } 40931da177e4SLinus Torvalds 409495c96174SEric Dumazet struct rt6_mtu_change_arg { 40951da177e4SLinus Torvalds struct net_device *dev; 409695c96174SEric Dumazet unsigned int mtu; 40971da177e4SLinus Torvalds }; 40981da177e4SLinus Torvalds 40998d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 41001da177e4SLinus Torvalds { 41011da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 41021da177e4SLinus Torvalds struct inet6_dev *idev; 41031da177e4SLinus Torvalds 41041da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 41051da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 41061da177e4SLinus Torvalds We still use this lock to block changes 41071da177e4SLinus Torvalds caused by addrconf/ndisc. 41081da177e4SLinus Torvalds */ 41091da177e4SLinus Torvalds 41101da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 411138308473SDavid S. Miller if (!idev) 41121da177e4SLinus Torvalds return 0; 41131da177e4SLinus Torvalds 41141da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41151da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41161da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41171da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41181da177e4SLinus Torvalds */ 4119ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == arg->dev && 4120d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4121d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4122d4ead6b3SDavid Ahern 4123d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4124d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4125d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4126d4ead6b3SDavid Ahern 4127f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4128e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4129f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41304b32b5adSMartin KaFai Lau } 41311da177e4SLinus Torvalds return 0; 41321da177e4SLinus Torvalds } 41331da177e4SLinus Torvalds 413495c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41351da177e4SLinus Torvalds { 4136c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4137c71099acSThomas Graf .dev = dev, 4138c71099acSThomas Graf .mtu = mtu, 4139c71099acSThomas Graf }; 41401da177e4SLinus Torvalds 41410c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41421da177e4SLinus Torvalds } 41431da177e4SLinus Torvalds 4144ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41455176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4146aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 414786872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4148ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 414986872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 415086872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 415151ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4152c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 415319e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 415419e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 415532bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4156622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41573b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4158aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4159eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4160eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4161eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 416286872cb5SThomas Graf }; 416386872cb5SThomas Graf 416486872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4165333c4301SDavid Ahern struct fib6_config *cfg, 4166333c4301SDavid Ahern struct netlink_ext_ack *extack) 41671da177e4SLinus Torvalds { 416886872cb5SThomas Graf struct rtmsg *rtm; 416986872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4170c78ba6d6SLubomir Rintel unsigned int pref; 417186872cb5SThomas Graf int err; 41721da177e4SLinus Torvalds 4173fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4174dac9c979SDavid Ahern extack); 417586872cb5SThomas Graf if (err < 0) 417686872cb5SThomas Graf goto errout; 41771da177e4SLinus Torvalds 417886872cb5SThomas Graf err = -EINVAL; 417986872cb5SThomas Graf rtm = nlmsg_data(nlh); 418086872cb5SThomas Graf 418184db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 418284db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 418384db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 418484db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 418584db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 418684db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 418784db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 418884db8407SMaciej Żenczykowski 418984db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 419084db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 419184db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 419284db8407SMaciej Żenczykowski }; 419386872cb5SThomas Graf 4194ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4195ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4196b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4197b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 419886872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 419986872cb5SThomas Graf 4200ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4201ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4202ab79ad14SMaciej Żenczykowski 42031f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 42041f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 42051f56a01fSMartin KaFai Lau 4206fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4207fc1e64e1SDavid Ahern 420886872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 420967b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 421086872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 42111da177e4SLinus Torvalds } 4212e3818541SDavid Ahern if (tb[RTA_VIA]) { 4213e3818541SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute"); 4214e3818541SDavid Ahern goto errout; 4215e3818541SDavid Ahern } 421686872cb5SThomas Graf 421786872cb5SThomas Graf if (tb[RTA_DST]) { 421886872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 421986872cb5SThomas Graf 422086872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 422186872cb5SThomas Graf goto errout; 422286872cb5SThomas Graf 422386872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42241da177e4SLinus Torvalds } 422586872cb5SThomas Graf 422686872cb5SThomas Graf if (tb[RTA_SRC]) { 422786872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 422886872cb5SThomas Graf 422986872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 423086872cb5SThomas Graf goto errout; 423186872cb5SThomas Graf 423286872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42331da177e4SLinus Torvalds } 423486872cb5SThomas Graf 4235c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 423667b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4237c3968a85SDaniel Walter 423886872cb5SThomas Graf if (tb[RTA_OIF]) 423986872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 424086872cb5SThomas Graf 424186872cb5SThomas Graf if (tb[RTA_PRIORITY]) 424286872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 424386872cb5SThomas Graf 424486872cb5SThomas Graf if (tb[RTA_METRICS]) { 424586872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 424686872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42471da177e4SLinus Torvalds } 424886872cb5SThomas Graf 424986872cb5SThomas Graf if (tb[RTA_TABLE]) 425086872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 425186872cb5SThomas Graf 425251ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 425351ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 425451ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42559ed59592SDavid Ahern 42569ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4257c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42589ed59592SDavid Ahern if (err < 0) 42599ed59592SDavid Ahern goto errout; 426051ebd318SNicolas Dichtel } 426151ebd318SNicolas Dichtel 4262c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4263c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4264c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4265c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4266c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4267c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4268c78ba6d6SLubomir Rintel } 4269c78ba6d6SLubomir Rintel 427019e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 427119e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 427219e42e45SRoopa Prabhu 42739ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 427419e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 427519e42e45SRoopa Prabhu 4276c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42779ed59592SDavid Ahern if (err < 0) 42789ed59592SDavid Ahern goto errout; 42799ed59592SDavid Ahern } 42809ed59592SDavid Ahern 428132bc201eSXin Long if (tb[RTA_EXPIRES]) { 428232bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 428332bc201eSXin Long 428432bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 428532bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 428632bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 428732bc201eSXin Long } 428832bc201eSXin Long } 428932bc201eSXin Long 429086872cb5SThomas Graf err = 0; 429186872cb5SThomas Graf errout: 429286872cb5SThomas Graf return err; 42931da177e4SLinus Torvalds } 42941da177e4SLinus Torvalds 42956b9ea5a6SRoopa Prabhu struct rt6_nh { 42968d1c802bSDavid Ahern struct fib6_info *fib6_info; 42976b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42986b9ea5a6SRoopa Prabhu struct list_head next; 42996b9ea5a6SRoopa Prabhu }; 43006b9ea5a6SRoopa Prabhu 4301d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4302d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 43038d1c802bSDavid Ahern struct fib6_info *rt, 43048d1c802bSDavid Ahern struct fib6_config *r_cfg) 43056b9ea5a6SRoopa Prabhu { 43066b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 43076b9ea5a6SRoopa Prabhu int err = -EEXIST; 43086b9ea5a6SRoopa Prabhu 43096b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43108d1c802bSDavid Ahern /* check if fib6_info already exists */ 43118d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 43126b9ea5a6SRoopa Prabhu return err; 43136b9ea5a6SRoopa Prabhu } 43146b9ea5a6SRoopa Prabhu 43156b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43166b9ea5a6SRoopa Prabhu if (!nh) 43176b9ea5a6SRoopa Prabhu return -ENOMEM; 43188d1c802bSDavid Ahern nh->fib6_info = rt; 43196b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43206b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43216b9ea5a6SRoopa Prabhu 43226b9ea5a6SRoopa Prabhu return 0; 43236b9ea5a6SRoopa Prabhu } 43246b9ea5a6SRoopa Prabhu 43258d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43268d1c802bSDavid Ahern struct fib6_info *rt_last, 43273b1137feSDavid Ahern struct nl_info *info, 43283b1137feSDavid Ahern __u16 nlflags) 43293b1137feSDavid Ahern { 43303b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43313b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43323b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43333b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43343b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43353b1137feSDavid Ahern */ 433693c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 433793c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43388d1c802bSDavid Ahern struct fib6_info, 433993c2fb25SDavid Ahern fib6_siblings); 43403b1137feSDavid Ahern } 43413b1137feSDavid Ahern 43423b1137feSDavid Ahern if (rt) 43433b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43443b1137feSDavid Ahern } 43453b1137feSDavid Ahern 4346333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4347333c4301SDavid Ahern struct netlink_ext_ack *extack) 434851ebd318SNicolas Dichtel { 43498d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43503b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 435151ebd318SNicolas Dichtel struct fib6_config r_cfg; 435251ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43538d1c802bSDavid Ahern struct fib6_info *rt; 43546b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43556b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43563b1137feSDavid Ahern __u16 nlflags; 435751ebd318SNicolas Dichtel int remaining; 435851ebd318SNicolas Dichtel int attrlen; 43596b9ea5a6SRoopa Prabhu int err = 1; 43606b9ea5a6SRoopa Prabhu int nhn = 0; 43616b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43626b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43636b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 436451ebd318SNicolas Dichtel 43653b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43663b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43673b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43683b1137feSDavid Ahern 436935f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 437051ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 437151ebd318SNicolas Dichtel 43726b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43738d1c802bSDavid Ahern * fib6_info structs per nexthop 43746b9ea5a6SRoopa Prabhu */ 437551ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 437651ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 437751ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 437851ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 437951ebd318SNicolas Dichtel 438051ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 438151ebd318SNicolas Dichtel if (attrlen > 0) { 438251ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 438351ebd318SNicolas Dichtel 438451ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 438551ebd318SNicolas Dichtel if (nla) { 438667b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 438751ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 438851ebd318SNicolas Dichtel } 438919e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 439019e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 439119e42e45SRoopa Prabhu if (nla) 439219e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 439351ebd318SNicolas Dichtel } 43946b9ea5a6SRoopa Prabhu 439568e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4396acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43978c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43988c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43998c5b83f0SRoopa Prabhu rt = NULL; 44006b9ea5a6SRoopa Prabhu goto cleanup; 44018c5b83f0SRoopa Prabhu } 4402b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4403b5d2d75eSDavid Ahern err = -EINVAL; 4404b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4405b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4406b5d2d75eSDavid Ahern fib6_info_release(rt); 4407b5d2d75eSDavid Ahern goto cleanup; 4408b5d2d75eSDavid Ahern } 44096b9ea5a6SRoopa Prabhu 4410ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_weight = rtnh->rtnh_hops + 1; 4411398958aeSIdo Schimmel 4412d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4413d4ead6b3SDavid Ahern rt, &r_cfg); 441451ebd318SNicolas Dichtel if (err) { 441593531c67SDavid Ahern fib6_info_release(rt); 44166b9ea5a6SRoopa Prabhu goto cleanup; 441751ebd318SNicolas Dichtel } 44186b9ea5a6SRoopa Prabhu 44196b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 442051ebd318SNicolas Dichtel } 44216b9ea5a6SRoopa Prabhu 44223b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44233b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44243b1137feSDavid Ahern * the full route when done 44253b1137feSDavid Ahern */ 44263b1137feSDavid Ahern info->skip_notify = 1; 44273b1137feSDavid Ahern 44286b9ea5a6SRoopa Prabhu err_nh = NULL; 44296b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44308d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44318d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44323b1137feSDavid Ahern 4433f7225172SDavid Ahern if (!err) { 4434f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4435f7225172SDavid Ahern rt_last = nh->fib6_info; 4436f7225172SDavid Ahern 44376b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4438f7225172SDavid Ahern if (!rt_notif) 44398d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4440f7225172SDavid Ahern } 44416b9ea5a6SRoopa Prabhu 44428d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44438d1c802bSDavid Ahern nh->fib6_info = NULL; 44446b9ea5a6SRoopa Prabhu if (err) { 44456b9ea5a6SRoopa Prabhu if (replace && nhn) 4446a5a82d84SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 4447a5a82d84SJakub Kicinski "multipath route replace failed (check consistency of installed routes)"); 44486b9ea5a6SRoopa Prabhu err_nh = nh; 44496b9ea5a6SRoopa Prabhu goto add_errout; 44506b9ea5a6SRoopa Prabhu } 44516b9ea5a6SRoopa Prabhu 44521a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 445327596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 445427596472SMichal Kubeček * we have already failed to add the first nexthop: 445527596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 445627596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 445727596472SMichal Kubeček * be added to it. 44581a72418bSNicolas Dichtel */ 445927596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 446027596472SMichal Kubeček NLM_F_REPLACE); 44616b9ea5a6SRoopa Prabhu nhn++; 44626b9ea5a6SRoopa Prabhu } 44636b9ea5a6SRoopa Prabhu 44643b1137feSDavid Ahern /* success ... tell user about new route */ 44653b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44666b9ea5a6SRoopa Prabhu goto cleanup; 44676b9ea5a6SRoopa Prabhu 44686b9ea5a6SRoopa Prabhu add_errout: 44693b1137feSDavid Ahern /* send notification for routes that were added so that 44703b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44713b1137feSDavid Ahern * coherent 44723b1137feSDavid Ahern */ 44733b1137feSDavid Ahern if (rt_notif) 44743b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44753b1137feSDavid Ahern 44766b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44776b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44786b9ea5a6SRoopa Prabhu if (err_nh == nh) 44796b9ea5a6SRoopa Prabhu break; 4480333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44816b9ea5a6SRoopa Prabhu } 44826b9ea5a6SRoopa Prabhu 44836b9ea5a6SRoopa Prabhu cleanup: 44846b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44858d1c802bSDavid Ahern if (nh->fib6_info) 44868d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44876b9ea5a6SRoopa Prabhu list_del(&nh->next); 44886b9ea5a6SRoopa Prabhu kfree(nh); 44896b9ea5a6SRoopa Prabhu } 44906b9ea5a6SRoopa Prabhu 44916b9ea5a6SRoopa Prabhu return err; 44926b9ea5a6SRoopa Prabhu } 44936b9ea5a6SRoopa Prabhu 4494333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4495333c4301SDavid Ahern struct netlink_ext_ack *extack) 44966b9ea5a6SRoopa Prabhu { 44976b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44986b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44996b9ea5a6SRoopa Prabhu int remaining; 45006b9ea5a6SRoopa Prabhu int attrlen; 45016b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 45026b9ea5a6SRoopa Prabhu 45036b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 45046b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 45056b9ea5a6SRoopa Prabhu 45066b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 45076b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 45086b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 45096b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 45106b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 45116b9ea5a6SRoopa Prabhu 45126b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45136b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45146b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45156b9ea5a6SRoopa Prabhu 45166b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45176b9ea5a6SRoopa Prabhu if (nla) { 45186b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45196b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45206b9ea5a6SRoopa Prabhu } 45216b9ea5a6SRoopa Prabhu } 4522333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45236b9ea5a6SRoopa Prabhu if (err) 45246b9ea5a6SRoopa Prabhu last_err = err; 45256b9ea5a6SRoopa Prabhu 452651ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 452751ebd318SNicolas Dichtel } 452851ebd318SNicolas Dichtel 452951ebd318SNicolas Dichtel return last_err; 453051ebd318SNicolas Dichtel } 453151ebd318SNicolas Dichtel 4532c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4533c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45341da177e4SLinus Torvalds { 453586872cb5SThomas Graf struct fib6_config cfg; 453686872cb5SThomas Graf int err; 45371da177e4SLinus Torvalds 4538333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 453986872cb5SThomas Graf if (err < 0) 454086872cb5SThomas Graf return err; 454186872cb5SThomas Graf 454251ebd318SNicolas Dichtel if (cfg.fc_mp) 4543333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45440ae81335SDavid Ahern else { 45450ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4546333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45471da177e4SLinus Torvalds } 45480ae81335SDavid Ahern } 45491da177e4SLinus Torvalds 4550c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4551c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45521da177e4SLinus Torvalds { 455386872cb5SThomas Graf struct fib6_config cfg; 455486872cb5SThomas Graf int err; 45551da177e4SLinus Torvalds 4556333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 455786872cb5SThomas Graf if (err < 0) 455886872cb5SThomas Graf return err; 455986872cb5SThomas Graf 456067f69513SDavid Ahern if (cfg.fc_metric == 0) 456167f69513SDavid Ahern cfg.fc_metric = IP6_RT_PRIO_USER; 456267f69513SDavid Ahern 456351ebd318SNicolas Dichtel if (cfg.fc_mp) 4564333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 456551ebd318SNicolas Dichtel else 4566acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45671da177e4SLinus Torvalds } 45681da177e4SLinus Torvalds 45698d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4570339bf98fSThomas Graf { 4571beb1afacSDavid Ahern int nexthop_len = 0; 4572beb1afacSDavid Ahern 457393c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4574beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4575beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4576beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4577ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws); 4578beb1afacSDavid Ahern 457993c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4580beb1afacSDavid Ahern } 4581beb1afacSDavid Ahern 4582339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4583339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4584339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4585339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4586339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4587339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4588339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4589339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4590339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45916a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4592ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4593c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 459419e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4595ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws) 4596beb1afacSDavid Ahern + nexthop_len; 4597beb1afacSDavid Ahern } 4598beb1afacSDavid Ahern 4599d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46008d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4601d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 460215e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4603f8cfe2ceSDavid Ahern unsigned int flags) 46041da177e4SLinus Torvalds { 460522d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 460622d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 460722d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46081da177e4SLinus Torvalds struct nlmsghdr *nlh; 460922d0bd82SXin Long struct rtmsg *rtm; 4610d4ead6b3SDavid Ahern long expires = 0; 46111da177e4SLinus Torvalds 461215e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 461338308473SDavid S. Miller if (!nlh) 461426932566SPatrick McHardy return -EMSGSIZE; 46152d7202bfSThomas Graf 461622d0bd82SXin Long if (rt6) { 461722d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 461822d0bd82SXin Long rt6_src = &rt6->rt6i_src; 461922d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 462022d0bd82SXin Long } else { 462122d0bd82SXin Long rt6_dst = &rt->fib6_dst; 462222d0bd82SXin Long rt6_src = &rt->fib6_src; 462322d0bd82SXin Long rt6_flags = rt->fib6_flags; 462422d0bd82SXin Long } 462522d0bd82SXin Long 46262d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46271da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 462822d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 462922d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46301da177e4SLinus Torvalds rtm->rtm_tos = 0; 463193c2fb25SDavid Ahern if (rt->fib6_table) 463293c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4633c71099acSThomas Graf else 46349e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 463597f0082aSKalash Nainwal rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT; 4636c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4637c78679e8SDavid S. Miller goto nla_put_failure; 4638e8478e80SDavid Ahern 4639e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46401da177e4SLinus Torvalds rtm->rtm_flags = 0; 46411da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 464293c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46431da177e4SLinus Torvalds 464422d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46451da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46461da177e4SLinus Torvalds 4647d4ead6b3SDavid Ahern if (dest) { 4648d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4649c78679e8SDavid S. Miller goto nla_put_failure; 46501da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46511da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 465222d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4653c78679e8SDavid S. Miller goto nla_put_failure; 46541da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46551da177e4SLinus Torvalds if (src) { 4656930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4657c78679e8SDavid S. Miller goto nla_put_failure; 46581da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4659c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 466022d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4661c78679e8SDavid S. Miller goto nla_put_failure; 46621da177e4SLinus Torvalds #endif 46637bc570c8SYOSHIFUJI Hideaki if (iif) { 46647bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 466522d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4666fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 46672cf75070SNikolay Aleksandrov 46687bc570c8SYOSHIFUJI Hideaki if (err == 0) 46697bc570c8SYOSHIFUJI Hideaki return 0; 4670fd61c6baSDavid Ahern if (err < 0) 46717bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 46727bc570c8SYOSHIFUJI Hideaki } else 46737bc570c8SYOSHIFUJI Hideaki #endif 4674c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4675c78679e8SDavid S. Miller goto nla_put_failure; 4676d4ead6b3SDavid Ahern } else if (dest) { 46771da177e4SLinus Torvalds struct in6_addr saddr_buf; 4678d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4679930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4680c78679e8SDavid S. Miller goto nla_put_failure; 4681c3968a85SDaniel Walter } 4682c3968a85SDaniel Walter 468393c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4684c3968a85SDaniel Walter struct in6_addr saddr_buf; 468593c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4686930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4687c78679e8SDavid S. Miller goto nla_put_failure; 46881da177e4SLinus Torvalds } 46892d7202bfSThomas Graf 4690d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4691d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 46922d7202bfSThomas Graf goto nla_put_failure; 46932d7202bfSThomas Graf 469493c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4695beb1afacSDavid Ahern goto nla_put_failure; 4696beb1afacSDavid Ahern 4697beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4698beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4699beb1afacSDavid Ahern */ 470022d0bd82SXin Long if (rt6) { 470122d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 470222d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 470322d0bd82SXin Long goto nla_put_failure; 470422d0bd82SXin Long 470522d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 470622d0bd82SXin Long goto nla_put_failure; 470722d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47088d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4709beb1afacSDavid Ahern struct nlattr *mp; 4710beb1afacSDavid Ahern 4711beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4712beb1afacSDavid Ahern if (!mp) 4713beb1afacSDavid Ahern goto nla_put_failure; 4714beb1afacSDavid Ahern 4715c0a72077SDavid Ahern if (fib_add_nexthop(skb, &rt->fib6_nh.nh_common, 4716c0a72077SDavid Ahern rt->fib6_nh.fib_nh_weight) < 0) 4717beb1afacSDavid Ahern goto nla_put_failure; 4718beb1afacSDavid Ahern 4719beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 472093c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4721c0a72077SDavid Ahern if (fib_add_nexthop(skb, &sibling->fib6_nh.nh_common, 4722c0a72077SDavid Ahern sibling->fib6_nh.fib_nh_weight) < 0) 472394f826b8SEric Dumazet goto nla_put_failure; 472494f826b8SEric Dumazet } 47252d7202bfSThomas Graf 4726beb1afacSDavid Ahern nla_nest_end(skb, mp); 4727beb1afacSDavid Ahern } else { 4728c0a72077SDavid Ahern if (fib_nexthop_info(skb, &rt->fib6_nh.nh_common, 4729c0a72077SDavid Ahern &rtm->rtm_flags, false) < 0) 4730c78679e8SDavid S. Miller goto nla_put_failure; 4731beb1afacSDavid Ahern } 47328253947eSLi Wei 473322d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 473414895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 473514895687SDavid Ahern expires -= jiffies; 473614895687SDavid Ahern } 473769cdf8f9SYOSHIFUJI Hideaki 4738d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4739e3703b3dSThomas Graf goto nla_put_failure; 47401da177e4SLinus Torvalds 474122d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4742c78ba6d6SLubomir Rintel goto nla_put_failure; 4743c78ba6d6SLubomir Rintel 474419e42e45SRoopa Prabhu 4745053c095aSJohannes Berg nlmsg_end(skb, nlh); 4746053c095aSJohannes Berg return 0; 47472d7202bfSThomas Graf 47482d7202bfSThomas Graf nla_put_failure: 474926932566SPatrick McHardy nlmsg_cancel(skb, nlh); 475026932566SPatrick McHardy return -EMSGSIZE; 47511da177e4SLinus Torvalds } 47521da177e4SLinus Torvalds 475313e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 475413e38901SDavid Ahern const struct net_device *dev) 475513e38901SDavid Ahern { 4756ad1601aeSDavid Ahern if (f6i->fib6_nh.fib_nh_dev == dev) 475713e38901SDavid Ahern return true; 475813e38901SDavid Ahern 475913e38901SDavid Ahern if (f6i->fib6_nsiblings) { 476013e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 476113e38901SDavid Ahern 476213e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 476313e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 4764ad1601aeSDavid Ahern if (sibling->fib6_nh.fib_nh_dev == dev) 476513e38901SDavid Ahern return true; 476613e38901SDavid Ahern } 476713e38901SDavid Ahern } 476813e38901SDavid Ahern 476913e38901SDavid Ahern return false; 477013e38901SDavid Ahern } 477113e38901SDavid Ahern 47728d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47731da177e4SLinus Torvalds { 47741da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 477513e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 477613e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 47771f17e2f2SDavid Ahern struct net *net = arg->net; 47781f17e2f2SDavid Ahern 4779421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 47801f17e2f2SDavid Ahern return 0; 47811da177e4SLinus Torvalds 478213e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 478393c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4784f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4785f8cfe2ceSDavid Ahern return 1; 4786f8cfe2ceSDavid Ahern } 478713e38901SDavid Ahern if (filter->filter_set) { 478813e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 478913e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 479013e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 479113e38901SDavid Ahern return 1; 479213e38901SDavid Ahern } 479313e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4794f8cfe2ceSDavid Ahern } 47951da177e4SLinus Torvalds 4796d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4797d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 479813e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 47991da177e4SLinus Torvalds } 48001da177e4SLinus Torvalds 48010eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb, 48020eff0a27SJakub Kicinski const struct nlmsghdr *nlh, 48030eff0a27SJakub Kicinski struct nlattr **tb, 48040eff0a27SJakub Kicinski struct netlink_ext_ack *extack) 48050eff0a27SJakub Kicinski { 48060eff0a27SJakub Kicinski struct rtmsg *rtm; 48070eff0a27SJakub Kicinski int i, err; 48080eff0a27SJakub Kicinski 48090eff0a27SJakub Kicinski if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) { 48100eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48110eff0a27SJakub Kicinski "Invalid header for get route request"); 48120eff0a27SJakub Kicinski return -EINVAL; 48130eff0a27SJakub Kicinski } 48140eff0a27SJakub Kicinski 48150eff0a27SJakub Kicinski if (!netlink_strict_get_check(skb)) 48160eff0a27SJakub Kicinski return nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, 48170eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48180eff0a27SJakub Kicinski 48190eff0a27SJakub Kicinski rtm = nlmsg_data(nlh); 48200eff0a27SJakub Kicinski if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) || 48210eff0a27SJakub Kicinski (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) || 48220eff0a27SJakub Kicinski rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope || 48230eff0a27SJakub Kicinski rtm->rtm_type) { 48240eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request"); 48250eff0a27SJakub Kicinski return -EINVAL; 48260eff0a27SJakub Kicinski } 48270eff0a27SJakub Kicinski if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) { 48280eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48290eff0a27SJakub Kicinski "Invalid flags for get route request"); 48300eff0a27SJakub Kicinski return -EINVAL; 48310eff0a27SJakub Kicinski } 48320eff0a27SJakub Kicinski 48330eff0a27SJakub Kicinski err = nlmsg_parse_strict(nlh, sizeof(*rtm), tb, RTA_MAX, 48340eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48350eff0a27SJakub Kicinski if (err) 48360eff0a27SJakub Kicinski return err; 48370eff0a27SJakub Kicinski 48380eff0a27SJakub Kicinski if ((tb[RTA_SRC] && !rtm->rtm_src_len) || 48390eff0a27SJakub Kicinski (tb[RTA_DST] && !rtm->rtm_dst_len)) { 48400eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6"); 48410eff0a27SJakub Kicinski return -EINVAL; 48420eff0a27SJakub Kicinski } 48430eff0a27SJakub Kicinski 48440eff0a27SJakub Kicinski for (i = 0; i <= RTA_MAX; i++) { 48450eff0a27SJakub Kicinski if (!tb[i]) 48460eff0a27SJakub Kicinski continue; 48470eff0a27SJakub Kicinski 48480eff0a27SJakub Kicinski switch (i) { 48490eff0a27SJakub Kicinski case RTA_SRC: 48500eff0a27SJakub Kicinski case RTA_DST: 48510eff0a27SJakub Kicinski case RTA_IIF: 48520eff0a27SJakub Kicinski case RTA_OIF: 48530eff0a27SJakub Kicinski case RTA_MARK: 48540eff0a27SJakub Kicinski case RTA_UID: 48550eff0a27SJakub Kicinski case RTA_SPORT: 48560eff0a27SJakub Kicinski case RTA_DPORT: 48570eff0a27SJakub Kicinski case RTA_IP_PROTO: 48580eff0a27SJakub Kicinski break; 48590eff0a27SJakub Kicinski default: 48600eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request"); 48610eff0a27SJakub Kicinski return -EINVAL; 48620eff0a27SJakub Kicinski } 48630eff0a27SJakub Kicinski } 48640eff0a27SJakub Kicinski 48650eff0a27SJakub Kicinski return 0; 48660eff0a27SJakub Kicinski } 48670eff0a27SJakub Kicinski 4868c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4869c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48701da177e4SLinus Torvalds { 48713b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4872ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 487318c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4874a68886a6SDavid Ahern struct fib6_info *from; 487518c3a61cSRoopa Prabhu struct dst_entry *dst; 48761da177e4SLinus Torvalds struct rt6_info *rt; 4877ab364a6fSThomas Graf struct sk_buff *skb; 4878ab364a6fSThomas Graf struct rtmsg *rtm; 4879744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 488018c3a61cSRoopa Prabhu bool fibmatch; 4881ab364a6fSThomas Graf 48820eff0a27SJakub Kicinski err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack); 4883ab364a6fSThomas Graf if (err < 0) 4884ab364a6fSThomas Graf goto errout; 4885ab364a6fSThomas Graf 4886ab364a6fSThomas Graf err = -EINVAL; 488738b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 488838b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 488918c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4890ab364a6fSThomas Graf 4891ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4892ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4893ab364a6fSThomas Graf goto errout; 4894ab364a6fSThomas Graf 48954e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4896ab364a6fSThomas Graf } 4897ab364a6fSThomas Graf 4898ab364a6fSThomas Graf if (tb[RTA_DST]) { 4899ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4900ab364a6fSThomas Graf goto errout; 4901ab364a6fSThomas Graf 49024e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4903ab364a6fSThomas Graf } 4904ab364a6fSThomas Graf 4905ab364a6fSThomas Graf if (tb[RTA_IIF]) 4906ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4907ab364a6fSThomas Graf 4908ab364a6fSThomas Graf if (tb[RTA_OIF]) 490972331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4910ab364a6fSThomas Graf 49112e47b291SLorenzo Colitti if (tb[RTA_MARK]) 49122e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 49132e47b291SLorenzo Colitti 4914622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4915622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4916622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4917622ec2c9SLorenzo Colitti else 4918622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4919622ec2c9SLorenzo Colitti 4920eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4921eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4922eacb9384SRoopa Prabhu 4923eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4924eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4925eacb9384SRoopa Prabhu 4926eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4927eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 49285e1a99eaSHangbin Liu &fl6.flowi6_proto, AF_INET6, 49295e1a99eaSHangbin Liu extack); 4930eacb9384SRoopa Prabhu if (err) 4931eacb9384SRoopa Prabhu goto errout; 4932eacb9384SRoopa Prabhu } 4933eacb9384SRoopa Prabhu 4934ab364a6fSThomas Graf if (iif) { 4935ab364a6fSThomas Graf struct net_device *dev; 493672331bc0SShmulik Ladkani int flags = 0; 493772331bc0SShmulik Ladkani 4938121622dbSFlorian Westphal rcu_read_lock(); 4939121622dbSFlorian Westphal 4940121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4941ab364a6fSThomas Graf if (!dev) { 4942121622dbSFlorian Westphal rcu_read_unlock(); 4943ab364a6fSThomas Graf err = -ENODEV; 4944ab364a6fSThomas Graf goto errout; 4945ab364a6fSThomas Graf } 494672331bc0SShmulik Ladkani 494772331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 494872331bc0SShmulik Ladkani 494972331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 495072331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 495172331bc0SShmulik Ladkani 4952b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4953121622dbSFlorian Westphal 4954121622dbSFlorian Westphal rcu_read_unlock(); 495572331bc0SShmulik Ladkani } else { 495672331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 495772331bc0SShmulik Ladkani 495818c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 495918c3a61cSRoopa Prabhu } 496018c3a61cSRoopa Prabhu 496118c3a61cSRoopa Prabhu 496218c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 496318c3a61cSRoopa Prabhu if (rt->dst.error) { 496418c3a61cSRoopa Prabhu err = rt->dst.error; 496518c3a61cSRoopa Prabhu ip6_rt_put(rt); 496618c3a61cSRoopa Prabhu goto errout; 4967ab364a6fSThomas Graf } 49681da177e4SLinus Torvalds 49699d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49709d6acb3bSWANG Cong err = rt->dst.error; 49719d6acb3bSWANG Cong ip6_rt_put(rt); 49729d6acb3bSWANG Cong goto errout; 49739d6acb3bSWANG Cong } 49749d6acb3bSWANG Cong 49751da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 497638308473SDavid S. Miller if (!skb) { 497794e187c0SAmerigo Wang ip6_rt_put(rt); 4978ab364a6fSThomas Graf err = -ENOBUFS; 4979ab364a6fSThomas Graf goto errout; 4980ab364a6fSThomas Graf } 49811da177e4SLinus Torvalds 4982d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4983a68886a6SDavid Ahern 4984a68886a6SDavid Ahern rcu_read_lock(); 4985a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4986a68886a6SDavid Ahern 498718c3a61cSRoopa Prabhu if (fibmatch) 4988a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 498918c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 499018c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 499118c3a61cSRoopa Prabhu else 4992a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4993a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4994d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4995d4ead6b3SDavid Ahern 0); 4996a68886a6SDavid Ahern rcu_read_unlock(); 4997a68886a6SDavid Ahern 49981da177e4SLinus Torvalds if (err < 0) { 4999ab364a6fSThomas Graf kfree_skb(skb); 5000ab364a6fSThomas Graf goto errout; 50011da177e4SLinus Torvalds } 50021da177e4SLinus Torvalds 500315e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 5004ab364a6fSThomas Graf errout: 50051da177e4SLinus Torvalds return err; 50061da177e4SLinus Torvalds } 50071da177e4SLinus Torvalds 50088d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 500937a1d361SRoopa Prabhu unsigned int nlm_flags) 50101da177e4SLinus Torvalds { 50111da177e4SLinus Torvalds struct sk_buff *skb; 50125578689aSDaniel Lezcano struct net *net = info->nl_net; 5013528c4cebSDenis V. Lunev u32 seq; 5014528c4cebSDenis V. Lunev int err; 50150d51aa80SJamal Hadi Salim 5016528c4cebSDenis V. Lunev err = -ENOBUFS; 501738308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 501886872cb5SThomas Graf 501919e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 502038308473SDavid S. Miller if (!skb) 502121713ebcSThomas Graf goto errout; 50221da177e4SLinus Torvalds 5023d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5024f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 502526932566SPatrick McHardy if (err < 0) { 502626932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 502726932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 502826932566SPatrick McHardy kfree_skb(skb); 502926932566SPatrick McHardy goto errout; 503026932566SPatrick McHardy } 503115e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 50325578689aSDaniel Lezcano info->nlh, gfp_any()); 50331ce85fe4SPablo Neira Ayuso return; 503421713ebcSThomas Graf errout: 503521713ebcSThomas Graf if (err < 0) 50365578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 50371da177e4SLinus Torvalds } 50381da177e4SLinus Torvalds 50398ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5040351638e7SJiri Pirko unsigned long event, void *ptr) 50418ed67789SDaniel Lezcano { 5042351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5043c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50448ed67789SDaniel Lezcano 5045242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5046242d3a49SWANG Cong return NOTIFY_OK; 5047242d3a49SWANG Cong 5048242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5049ad1601aeSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = dev; 5050d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50518ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50528ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5053d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50548ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5055d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50568ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50578ed67789SDaniel Lezcano #endif 505876da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 505976da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 506076da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 506176da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 506276da0704SWANG Cong */ 506312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5064242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 506512d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 506612d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5067242d3a49SWANG Cong #endif 50688ed67789SDaniel Lezcano } 50698ed67789SDaniel Lezcano 50708ed67789SDaniel Lezcano return NOTIFY_OK; 50718ed67789SDaniel Lezcano } 50728ed67789SDaniel Lezcano 50731da177e4SLinus Torvalds /* 50741da177e4SLinus Torvalds * /proc 50751da177e4SLinus Torvalds */ 50761da177e4SLinus Torvalds 50771da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50781da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50791da177e4SLinus Torvalds { 508069ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50811da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 508269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 508369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 508481eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 508569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 508669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5087fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 508869ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50891da177e4SLinus Torvalds 50901da177e4SLinus Torvalds return 0; 50911da177e4SLinus Torvalds } 50921da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50931da177e4SLinus Torvalds 50941da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50951da177e4SLinus Torvalds 50961da177e4SLinus Torvalds static 5097fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50981da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50991da177e4SLinus Torvalds { 5100c486da34SLucian Adrian Grijincu struct net *net; 5101c486da34SLucian Adrian Grijincu int delay; 5102f0fb9b28SAditya Pakki int ret; 5103c486da34SLucian Adrian Grijincu if (!write) 5104c486da34SLucian Adrian Grijincu return -EINVAL; 5105c486da34SLucian Adrian Grijincu 5106c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5107c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 5108f0fb9b28SAditya Pakki ret = proc_dointvec(ctl, write, buffer, lenp, ppos); 5109f0fb9b28SAditya Pakki if (ret) 5110f0fb9b28SAditya Pakki return ret; 5111f0fb9b28SAditya Pakki 51122ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 51131da177e4SLinus Torvalds return 0; 51141da177e4SLinus Torvalds } 51151da177e4SLinus Torvalds 51167c6bb7d2SDavid Ahern static int zero; 51177c6bb7d2SDavid Ahern static int one = 1; 51187c6bb7d2SDavid Ahern 5119ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 51201da177e4SLinus Torvalds { 51211da177e4SLinus Torvalds .procname = "flush", 51224990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 51231da177e4SLinus Torvalds .maxlen = sizeof(int), 512489c8b3a1SDave Jones .mode = 0200, 51256d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 51261da177e4SLinus Torvalds }, 51271da177e4SLinus Torvalds { 51281da177e4SLinus Torvalds .procname = "gc_thresh", 51299a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 51301da177e4SLinus Torvalds .maxlen = sizeof(int), 51311da177e4SLinus Torvalds .mode = 0644, 51326d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51331da177e4SLinus Torvalds }, 51341da177e4SLinus Torvalds { 51351da177e4SLinus Torvalds .procname = "max_size", 51364990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 51371da177e4SLinus Torvalds .maxlen = sizeof(int), 51381da177e4SLinus Torvalds .mode = 0644, 51396d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51401da177e4SLinus Torvalds }, 51411da177e4SLinus Torvalds { 51421da177e4SLinus Torvalds .procname = "gc_min_interval", 51434990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51441da177e4SLinus Torvalds .maxlen = sizeof(int), 51451da177e4SLinus Torvalds .mode = 0644, 51466d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51471da177e4SLinus Torvalds }, 51481da177e4SLinus Torvalds { 51491da177e4SLinus Torvalds .procname = "gc_timeout", 51504990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51511da177e4SLinus Torvalds .maxlen = sizeof(int), 51521da177e4SLinus Torvalds .mode = 0644, 51536d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51541da177e4SLinus Torvalds }, 51551da177e4SLinus Torvalds { 51561da177e4SLinus Torvalds .procname = "gc_interval", 51574990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51581da177e4SLinus Torvalds .maxlen = sizeof(int), 51591da177e4SLinus Torvalds .mode = 0644, 51606d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51611da177e4SLinus Torvalds }, 51621da177e4SLinus Torvalds { 51631da177e4SLinus Torvalds .procname = "gc_elasticity", 51644990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51651da177e4SLinus Torvalds .maxlen = sizeof(int), 51661da177e4SLinus Torvalds .mode = 0644, 5167f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51681da177e4SLinus Torvalds }, 51691da177e4SLinus Torvalds { 51701da177e4SLinus Torvalds .procname = "mtu_expires", 51714990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51721da177e4SLinus Torvalds .maxlen = sizeof(int), 51731da177e4SLinus Torvalds .mode = 0644, 51746d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51751da177e4SLinus Torvalds }, 51761da177e4SLinus Torvalds { 51771da177e4SLinus Torvalds .procname = "min_adv_mss", 51784990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51791da177e4SLinus Torvalds .maxlen = sizeof(int), 51801da177e4SLinus Torvalds .mode = 0644, 5181f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51821da177e4SLinus Torvalds }, 51831da177e4SLinus Torvalds { 51841da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51854990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51861da177e4SLinus Torvalds .maxlen = sizeof(int), 51871da177e4SLinus Torvalds .mode = 0644, 51886d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51891da177e4SLinus Torvalds }, 51907c6bb7d2SDavid Ahern { 51917c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 51927c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 51937c6bb7d2SDavid Ahern .maxlen = sizeof(int), 51947c6bb7d2SDavid Ahern .mode = 0644, 51957c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 51967c6bb7d2SDavid Ahern .extra1 = &zero, 51977c6bb7d2SDavid Ahern .extra2 = &one, 51987c6bb7d2SDavid Ahern }, 5199f8572d8fSEric W. Biederman { } 52001da177e4SLinus Torvalds }; 52011da177e4SLinus Torvalds 52022c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5203760f2d01SDaniel Lezcano { 5204760f2d01SDaniel Lezcano struct ctl_table *table; 5205760f2d01SDaniel Lezcano 5206760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5207760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5208760f2d01SDaniel Lezcano GFP_KERNEL); 52095ee09105SYOSHIFUJI Hideaki 52105ee09105SYOSHIFUJI Hideaki if (table) { 52115ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5212c486da34SLucian Adrian Grijincu table[0].extra1 = net; 521386393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 52145ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 52155ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52165ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 52175ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 52185ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 52195ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 52205ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 52219c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52227c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5223464dc801SEric W. Biederman 5224464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5225464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5226464dc801SEric W. Biederman table[0].procname = NULL; 52275ee09105SYOSHIFUJI Hideaki } 52285ee09105SYOSHIFUJI Hideaki 5229760f2d01SDaniel Lezcano return table; 5230760f2d01SDaniel Lezcano } 52311da177e4SLinus Torvalds #endif 52321da177e4SLinus Torvalds 52332c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5234cdb18761SDaniel Lezcano { 5235633d424bSPavel Emelyanov int ret = -ENOMEM; 52368ed67789SDaniel Lezcano 523786393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 523886393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5239f2fc6a54SBenjamin Thery 5240fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5241fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5242fc66f95cSEric Dumazet 5243421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5244421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5245421842edSDavid Ahern GFP_KERNEL); 5246421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5247421842edSDavid Ahern goto out_ip6_dst_entries; 5248421842edSDavid Ahern 52498ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52508ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52518ed67789SDaniel Lezcano GFP_KERNEL); 52528ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5253421842edSDavid Ahern goto out_fib6_null_entry; 5254d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 525562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 525662fa8a84SDavid S. Miller ip6_template_metrics, true); 52578ed67789SDaniel Lezcano 52588ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5259feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52608ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52618ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52628ed67789SDaniel Lezcano GFP_KERNEL); 526368fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 526468fffc67SPeter Zijlstra goto out_ip6_null_entry; 5265d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 526662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 526762fa8a84SDavid S. Miller ip6_template_metrics, true); 52688ed67789SDaniel Lezcano 52698ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52708ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52718ed67789SDaniel Lezcano GFP_KERNEL); 527268fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 527368fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5274d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 527562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 527662fa8a84SDavid S. Miller ip6_template_metrics, true); 52778ed67789SDaniel Lezcano #endif 52788ed67789SDaniel Lezcano 5279b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5280b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5281b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5282b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5283b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5284b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5285b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5286b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 52877c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5288b339a47cSPeter Zijlstra 52896891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52906891a346SBenjamin Thery 52918ed67789SDaniel Lezcano ret = 0; 52928ed67789SDaniel Lezcano out: 52938ed67789SDaniel Lezcano return ret; 5294f2fc6a54SBenjamin Thery 529568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 529668fffc67SPeter Zijlstra out_ip6_prohibit_entry: 529768fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 529868fffc67SPeter Zijlstra out_ip6_null_entry: 529968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 530068fffc67SPeter Zijlstra #endif 5301421842edSDavid Ahern out_fib6_null_entry: 5302421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5303fc66f95cSEric Dumazet out_ip6_dst_entries: 5304fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5305f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5306f2fc6a54SBenjamin Thery goto out; 5307cdb18761SDaniel Lezcano } 5308cdb18761SDaniel Lezcano 53092c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5310cdb18761SDaniel Lezcano { 5311421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 53128ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 53138ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53148ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 53158ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 53168ed67789SDaniel Lezcano #endif 531741bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5318cdb18761SDaniel Lezcano } 5319cdb18761SDaniel Lezcano 5320d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5321d189634eSThomas Graf { 5322d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5323c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5324c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 53253617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 53263617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5327d189634eSThomas Graf #endif 5328d189634eSThomas Graf return 0; 5329d189634eSThomas Graf } 5330d189634eSThomas Graf 5331d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5332d189634eSThomas Graf { 5333d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5334ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5335ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5336d189634eSThomas Graf #endif 5337d189634eSThomas Graf } 5338d189634eSThomas Graf 5339cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5340cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5341cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5342cdb18761SDaniel Lezcano }; 5343cdb18761SDaniel Lezcano 5344c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5345c3426b47SDavid S. Miller { 5346c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5347c3426b47SDavid S. Miller 5348c3426b47SDavid S. Miller if (!bp) 5349c3426b47SDavid S. Miller return -ENOMEM; 5350c3426b47SDavid S. Miller inet_peer_base_init(bp); 5351c3426b47SDavid S. Miller net->ipv6.peers = bp; 5352c3426b47SDavid S. Miller return 0; 5353c3426b47SDavid S. Miller } 5354c3426b47SDavid S. Miller 5355c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5356c3426b47SDavid S. Miller { 5357c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5358c3426b47SDavid S. Miller 5359c3426b47SDavid S. Miller net->ipv6.peers = NULL; 536056a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5361c3426b47SDavid S. Miller kfree(bp); 5362c3426b47SDavid S. Miller } 5363c3426b47SDavid S. Miller 53642b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5365c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5366c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5367c3426b47SDavid S. Miller }; 5368c3426b47SDavid S. Miller 5369d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5370d189634eSThomas Graf .init = ip6_route_net_init_late, 5371d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5372d189634eSThomas Graf }; 5373d189634eSThomas Graf 53748ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53758ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5376242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53778ed67789SDaniel Lezcano }; 53788ed67789SDaniel Lezcano 53792f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53802f460933SWANG Cong { 53812f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53822f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53832f460933SWANG Cong * manually for init_net */ 5384ad1601aeSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = init_net.loopback_dev; 53852f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53862f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53872f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53882f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53892f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53902f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53912f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53922f460933SWANG Cong #endif 53932f460933SWANG Cong } 53942f460933SWANG Cong 5395433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53961da177e4SLinus Torvalds { 5397433d49c3SDaniel Lezcano int ret; 53988d0b94afSMartin KaFai Lau int cpu; 5399433d49c3SDaniel Lezcano 54009a7ec3a9SDaniel Lezcano ret = -ENOMEM; 54019a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 54029a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 54039a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 54049a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5405c19a28e1SFernando Carrijo goto out; 540614e50e57SDavid S. Miller 5407fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 54088ed67789SDaniel Lezcano if (ret) 5409bdb3289fSDaniel Lezcano goto out_kmem_cache; 5410bdb3289fSDaniel Lezcano 5411c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5412c3426b47SDavid S. Miller if (ret) 5413e8803b6cSDavid S. Miller goto out_dst_entries; 54142a0c451aSThomas Graf 54157e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 54167e52b33bSDavid S. Miller if (ret) 54177e52b33bSDavid S. Miller goto out_register_inetpeer; 5418c3426b47SDavid S. Miller 54195dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 54205dc121e9SArnaud Ebalard 5421e8803b6cSDavid S. Miller ret = fib6_init(); 5422433d49c3SDaniel Lezcano if (ret) 54238ed67789SDaniel Lezcano goto out_register_subsys; 5424433d49c3SDaniel Lezcano 5425433d49c3SDaniel Lezcano ret = xfrm6_init(); 5426433d49c3SDaniel Lezcano if (ret) 5427e8803b6cSDavid S. Miller goto out_fib6_init; 5428c35b7e72SDaniel Lezcano 5429433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5430433d49c3SDaniel Lezcano if (ret) 5431433d49c3SDaniel Lezcano goto xfrm6_init; 54327e5449c2SDaniel Lezcano 5433d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5434d189634eSThomas Graf if (ret) 5435d189634eSThomas Graf goto fib6_rules_init; 5436d189634eSThomas Graf 543716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 543816feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 543916feebcfSFlorian Westphal if (ret < 0) 544016feebcfSFlorian Westphal goto out_register_late_subsys; 544116feebcfSFlorian Westphal 544216feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 544316feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 544416feebcfSFlorian Westphal if (ret < 0) 544516feebcfSFlorian Westphal goto out_register_late_subsys; 544616feebcfSFlorian Westphal 544716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 544816feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 544916feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 545016feebcfSFlorian Westphal if (ret < 0) 5451d189634eSThomas Graf goto out_register_late_subsys; 5452433d49c3SDaniel Lezcano 54538ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5454cdb18761SDaniel Lezcano if (ret) 5455d189634eSThomas Graf goto out_register_late_subsys; 54568ed67789SDaniel Lezcano 54578d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54588d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54598d0b94afSMartin KaFai Lau 54608d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54618d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54628d0b94afSMartin KaFai Lau } 54638d0b94afSMartin KaFai Lau 5464433d49c3SDaniel Lezcano out: 5465433d49c3SDaniel Lezcano return ret; 5466433d49c3SDaniel Lezcano 5467d189634eSThomas Graf out_register_late_subsys: 546816feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5469d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5470433d49c3SDaniel Lezcano fib6_rules_init: 5471433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5472433d49c3SDaniel Lezcano xfrm6_init: 5473433d49c3SDaniel Lezcano xfrm6_fini(); 54742a0c451aSThomas Graf out_fib6_init: 54752a0c451aSThomas Graf fib6_gc_cleanup(); 54768ed67789SDaniel Lezcano out_register_subsys: 54778ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54787e52b33bSDavid S. Miller out_register_inetpeer: 54797e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5480fc66f95cSEric Dumazet out_dst_entries: 5481fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5482433d49c3SDaniel Lezcano out_kmem_cache: 5483f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5484433d49c3SDaniel Lezcano goto out; 54851da177e4SLinus Torvalds } 54861da177e4SLinus Torvalds 54871da177e4SLinus Torvalds void ip6_route_cleanup(void) 54881da177e4SLinus Torvalds { 54898ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5490d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5491101367c2SThomas Graf fib6_rules_cleanup(); 54921da177e4SLinus Torvalds xfrm6_fini(); 54931da177e4SLinus Torvalds fib6_gc_cleanup(); 5494c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54958ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 549641bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5497f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54981da177e4SLinus Torvalds } 5499