11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 105702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 106702cea56SDavid Ahern int strict); 1078d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 108d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1098d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 110d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11116a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11216a16cd3SDavid Ahern unsigned int flags); 1137e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res, 11435732d01SWei Wang struct in6_addr *daddr, 11535732d01SWei Wang struct in6_addr *saddr); 1161da177e4SLinus Torvalds 11770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1188d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev, 12295c96174SEric Dumazet unsigned int pref); 1238d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 124b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 125830218c1SDavid Ahern const struct in6_addr *gwaddr, 126830218c1SDavid Ahern struct net_device *dev); 12770ceb4f5SYOSHIFUJI Hideaki #endif 12870ceb4f5SYOSHIFUJI Hideaki 1298d0b94afSMartin KaFai Lau struct uncached_list { 1308d0b94afSMartin KaFai Lau spinlock_t lock; 1318d0b94afSMartin KaFai Lau struct list_head head; 1328d0b94afSMartin KaFai Lau }; 1338d0b94afSMartin KaFai Lau 1348d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1358d0b94afSMartin KaFai Lau 136510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1378d0b94afSMartin KaFai Lau { 1388d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1398d0b94afSMartin KaFai Lau 1408d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1438d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1448d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1458d0b94afSMartin KaFai Lau } 1468d0b94afSMartin KaFai Lau 147510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1488d0b94afSMartin KaFai Lau { 1498d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1508d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15181eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1548d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15581eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1568d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau } 1598d0b94afSMartin KaFai Lau 1608d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1618d0b94afSMartin KaFai Lau { 1628d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1638d0b94afSMartin KaFai Lau int cpu; 1648d0b94afSMartin KaFai Lau 165e332bc67SEric W. Biederman if (dev == loopback_dev) 166e332bc67SEric W. Biederman return; 167e332bc67SEric W. Biederman 1688d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1698d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1708d0b94afSMartin KaFai Lau struct rt6_info *rt; 1718d0b94afSMartin KaFai Lau 1728d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1738d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1748d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1758d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1768d0b94afSMartin KaFai Lau 177e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1788d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1798d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau 182e332bc67SEric W. Biederman if (rt_dev == dev) { 1838d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1848d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1858d0b94afSMartin KaFai Lau dev_put(rt_dev); 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau } 1888d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau } 1918d0b94afSMartin KaFai Lau 192f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 193f894cbf8SDavid S. Miller struct sk_buff *skb, 194f894cbf8SDavid S. Miller const void *daddr) 19539232973SDavid S. Miller { 196a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19739232973SDavid S. Miller return (const void *) p; 198f894cbf8SDavid S. Miller else if (skb) 199f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 20039232973SDavid S. Miller return daddr; 20139232973SDavid S. Miller } 20239232973SDavid S. Miller 203f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 204f8a1b43bSDavid Ahern struct net_device *dev, 205f894cbf8SDavid S. Miller struct sk_buff *skb, 206f894cbf8SDavid S. Miller const void *daddr) 207d3aaeb38SDavid S. Miller { 20839232973SDavid S. Miller struct neighbour *n; 20939232973SDavid S. Miller 210f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 211f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 212f83c7790SDavid S. Miller if (n) 213f83c7790SDavid S. Miller return n; 2147adf3246SStefano Brivio 2157adf3246SStefano Brivio n = neigh_create(&nd_tbl, daddr, dev); 2167adf3246SStefano Brivio return IS_ERR(n) ? NULL : n; 217f8a1b43bSDavid Ahern } 218f8a1b43bSDavid Ahern 219f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 220f8a1b43bSDavid Ahern struct sk_buff *skb, 221f8a1b43bSDavid Ahern const void *daddr) 222f8a1b43bSDavid Ahern { 223f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 224f8a1b43bSDavid Ahern 225f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 226f83c7790SDavid S. Miller } 227f83c7790SDavid S. Miller 22863fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22963fca65dSJulian Anastasov { 23063fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23163fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23263fca65dSJulian Anastasov 233f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23463fca65dSJulian Anastasov if (!daddr) 23563fca65dSJulian Anastasov return; 23663fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23763fca65dSJulian Anastasov return; 23863fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23963fca65dSJulian Anastasov return; 24063fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24163fca65dSJulian Anastasov } 24263fca65dSJulian Anastasov 2439a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2441da177e4SLinus Torvalds .family = AF_INET6, 2451da177e4SLinus Torvalds .gc = ip6_dst_gc, 2461da177e4SLinus Torvalds .gc_thresh = 1024, 2471da177e4SLinus Torvalds .check = ip6_dst_check, 2480dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 249ebb762f2SSteffen Klassert .mtu = ip6_mtu, 250d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2511da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2521da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2531da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2541da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2551da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2566e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2579f8955ccSEric W. Biederman .local_out = __ip6_local_out, 258f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25963fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2601da177e4SLinus Torvalds }; 2611da177e4SLinus Torvalds 262ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 263ec831ea7SRoland Dreier { 264618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 265618f9bc7SSteffen Klassert 266618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 267ec831ea7SRoland Dreier } 268ec831ea7SRoland Dreier 2696700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2706700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27114e50e57SDavid S. Miller { 27214e50e57SDavid S. Miller } 27314e50e57SDavid S. Miller 2746700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2756700c270SDavid S. Miller struct sk_buff *skb) 276b587ee3bSDavid S. Miller { 277b587ee3bSDavid S. Miller } 278b587ee3bSDavid S. Miller 27914e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28014e50e57SDavid S. Miller .family = AF_INET6, 28114e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28214e50e57SDavid S. Miller .check = ip6_dst_check, 283ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 284214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28514e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 286b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2870a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 288f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28914e50e57SDavid S. Miller }; 29014e50e57SDavid S. Miller 29162fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29214edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29362fa8a84SDavid S. Miller }; 29462fa8a84SDavid S. Miller 2958d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29693c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29793c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29893c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29993c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 300421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 301421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 302421842edSDavid Ahern }; 303421842edSDavid Ahern 304fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3051da177e4SLinus Torvalds .dst = { 3061da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3071da177e4SLinus Torvalds .__use = 1, 3082c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3091da177e4SLinus Torvalds .error = -ENETUNREACH, 3101da177e4SLinus Torvalds .input = ip6_pkt_discard, 3111da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3121da177e4SLinus Torvalds }, 3131da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3141da177e4SLinus Torvalds }; 3151da177e4SLinus Torvalds 316101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 317101367c2SThomas Graf 318fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 319101367c2SThomas Graf .dst = { 320101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 321101367c2SThomas Graf .__use = 1, 3222c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 323101367c2SThomas Graf .error = -EACCES, 3249ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3259ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 326101367c2SThomas Graf }, 327101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 328101367c2SThomas Graf }; 329101367c2SThomas Graf 330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 331101367c2SThomas Graf .dst = { 332101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 333101367c2SThomas Graf .__use = 1, 3342c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 335101367c2SThomas Graf .error = -EINVAL, 336352e512cSHerbert Xu .input = dst_discard, 337ede2059dSEric W. Biederman .output = dst_discard_out, 338101367c2SThomas Graf }, 339101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 340101367c2SThomas Graf }; 341101367c2SThomas Graf 342101367c2SThomas Graf #endif 343101367c2SThomas Graf 344ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 345ebfa45f0SMartin KaFai Lau { 346ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 347ebfa45f0SMartin KaFai Lau 348ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 349ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 350ebfa45f0SMartin KaFai Lau } 351ebfa45f0SMartin KaFai Lau 3521da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35393531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 354ad706862SMartin KaFai Lau int flags) 3551da177e4SLinus Torvalds { 35697bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 357b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 358cf911662SDavid S. Miller 35981eb8447SWei Wang if (rt) { 360ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36281eb8447SWei Wang } 3638104891bSSteffen Klassert 364cf911662SDavid S. Miller return rt; 3651da177e4SLinus Torvalds } 3669ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 367d52d3997SMartin KaFai Lau 3681da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3691da177e4SLinus Torvalds { 3701da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 371a68886a6SDavid Ahern struct fib6_info *from; 3728d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3731da177e4SLinus Torvalds 3741620a336SDavid Ahern ip_dst_metrics_put(dst); 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 431b1d40991SDavid Ahern void fib6_select_path(const struct net *net, struct fib6_result *res, 432b1d40991SDavid Ahern struct flowi6 *fl6, int oif, bool have_oif_match, 433b1d40991SDavid Ahern const struct sk_buff *skb, int strict) 43451ebd318SNicolas Dichtel { 4358d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 436b1d40991SDavid Ahern struct fib6_info *match = res->f6i; 437b1d40991SDavid Ahern 438b1d40991SDavid Ahern if (!match->fib6_nsiblings || have_oif_match) 439b1d40991SDavid Ahern goto out; 44051ebd318SNicolas Dichtel 441b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 442b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 443b673d6ccSJakub Sitnicki */ 444b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 445b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 446b673d6ccSJakub Sitnicki 447ad1601aeSDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.fib_nh_upper_bound)) 448b1d40991SDavid Ahern goto out; 449bbfcd776SIdo Schimmel 45093c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 45193c2fb25SDavid Ahern fib6_siblings) { 452702cea56SDavid Ahern const struct fib6_nh *nh = &sibling->fib6_nh; 4535e670d84SDavid Ahern int nh_upper_bound; 4545e670d84SDavid Ahern 455702cea56SDavid Ahern nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound); 4565e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4573d709f69SIdo Schimmel continue; 458702cea56SDavid Ahern if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0) 45952bd4c0cSNicolas Dichtel break; 46051ebd318SNicolas Dichtel match = sibling; 46151ebd318SNicolas Dichtel break; 46251ebd318SNicolas Dichtel } 4633d709f69SIdo Schimmel 464b1d40991SDavid Ahern out: 465b1d40991SDavid Ahern res->f6i = match; 466b1d40991SDavid Ahern res->nh = &match->fib6_nh; 46751ebd318SNicolas Dichtel } 46851ebd318SNicolas Dichtel 4691da177e4SLinus Torvalds /* 47066f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4711da177e4SLinus Torvalds */ 4721da177e4SLinus Torvalds 4730c59d006SDavid Ahern static bool __rt6_device_match(struct net *net, const struct fib6_nh *nh, 4740c59d006SDavid Ahern const struct in6_addr *saddr, int oif, int flags) 4750c59d006SDavid Ahern { 4760c59d006SDavid Ahern const struct net_device *dev; 4770c59d006SDavid Ahern 4780c59d006SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 4790c59d006SDavid Ahern return false; 4800c59d006SDavid Ahern 4810c59d006SDavid Ahern dev = nh->fib_nh_dev; 4820c59d006SDavid Ahern if (oif) { 4830c59d006SDavid Ahern if (dev->ifindex == oif) 4840c59d006SDavid Ahern return true; 4850c59d006SDavid Ahern } else { 4860c59d006SDavid Ahern if (ipv6_chk_addr(net, saddr, dev, 4870c59d006SDavid Ahern flags & RT6_LOOKUP_F_IFACE)) 4880c59d006SDavid Ahern return true; 4890c59d006SDavid Ahern } 4900c59d006SDavid Ahern 4910c59d006SDavid Ahern return false; 4920c59d006SDavid Ahern } 4930c59d006SDavid Ahern 4948d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4958d1c802bSDavid Ahern struct fib6_info *rt, 496b71d1d42SEric Dumazet const struct in6_addr *saddr, 4971da177e4SLinus Torvalds int oif, 498d420895eSYOSHIFUJI Hideaki int flags) 4991da177e4SLinus Torvalds { 5000c59d006SDavid Ahern const struct fib6_nh *nh; 5018d1c802bSDavid Ahern struct fib6_info *sprt; 5021da177e4SLinus Torvalds 5035e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 504ad1601aeSDavid Ahern !(rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD)) 5058067bb8cSIdo Schimmel return rt; 506dd3abc4eSYOSHIFUJI Hideaki 5078fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 5080c59d006SDavid Ahern nh = &sprt->fib6_nh; 5090c59d006SDavid Ahern if (__rt6_device_match(net, nh, saddr, oif, flags)) 5101da177e4SLinus Torvalds return sprt; 5111da177e4SLinus Torvalds } 5121da177e4SLinus Torvalds 513eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 514421842edSDavid Ahern return net->ipv6.fib6_null_entry; 5151da177e4SLinus Torvalds 516ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5171da177e4SLinus Torvalds } 5181da177e4SLinus Torvalds 51927097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 520c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 521c2f17e82SHannes Frederic Sowa struct work_struct work; 522c2f17e82SHannes Frederic Sowa struct in6_addr target; 523c2f17e82SHannes Frederic Sowa struct net_device *dev; 524c2f17e82SHannes Frederic Sowa }; 525c2f17e82SHannes Frederic Sowa 526c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 527c2f17e82SHannes Frederic Sowa { 528c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 529c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 530c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 531c2f17e82SHannes Frederic Sowa 532c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 533adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 534c2f17e82SHannes Frederic Sowa dev_put(work->dev); 535662f5533SMichael Büsch kfree(work); 536c2f17e82SHannes Frederic Sowa } 537c2f17e82SHannes Frederic Sowa 538cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh) 53927097255SYOSHIFUJI Hideaki { 540f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5415e670d84SDavid Ahern const struct in6_addr *nh_gw; 542f2c31e32SEric Dumazet struct neighbour *neigh; 5435e670d84SDavid Ahern struct net_device *dev; 544f547fac6SSabrina Dubroca struct inet6_dev *idev; 5455e670d84SDavid Ahern 54627097255SYOSHIFUJI Hideaki /* 54727097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 54827097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 54927097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 55027097255SYOSHIFUJI Hideaki * 55127097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 55227097255SYOSHIFUJI Hideaki * to no more than one per minute. 55327097255SYOSHIFUJI Hideaki */ 554cc3a86c8SDavid Ahern if (fib6_nh->fib_nh_gw_family) 555fdd6681dSAmerigo Wang return; 5565e670d84SDavid Ahern 557cc3a86c8SDavid Ahern nh_gw = &fib6_nh->fib_nh_gw6; 558cc3a86c8SDavid Ahern dev = fib6_nh->fib_nh_dev; 5592152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 560f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5615e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5622152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5638d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5648d6c31bfSMartin KaFai Lau goto out; 5658d6c31bfSMartin KaFai Lau 5662152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 567990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 568990edb42SMartin KaFai Lau time_after(jiffies, 569dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 570c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 571990edb42SMartin KaFai Lau if (work) 5727e980569SJiri Benc __neigh_set_probe_once(neigh); 573990edb42SMartin KaFai Lau } 574c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 575cc3a86c8SDavid Ahern } else if (time_after(jiffies, fib6_nh->last_probe + 576f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 577990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 578990edb42SMartin KaFai Lau } 579c2f17e82SHannes Frederic Sowa 580c2f17e82SHannes Frederic Sowa if (work) { 581cc3a86c8SDavid Ahern fib6_nh->last_probe = jiffies; 582c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5835e670d84SDavid Ahern work->target = *nh_gw; 5845e670d84SDavid Ahern dev_hold(dev); 5855e670d84SDavid Ahern work->dev = dev; 586c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 587c2f17e82SHannes Frederic Sowa } 588990edb42SMartin KaFai Lau 5898d6c31bfSMartin KaFai Lau out: 5902152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 591f2c31e32SEric Dumazet } 59227097255SYOSHIFUJI Hideaki #else 593cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh) 59427097255SYOSHIFUJI Hideaki { 59527097255SYOSHIFUJI Hideaki } 59627097255SYOSHIFUJI Hideaki #endif 59727097255SYOSHIFUJI Hideaki 5981da177e4SLinus Torvalds /* 599554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 6001da177e4SLinus Torvalds */ 6011ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh) 6021da177e4SLinus Torvalds { 603afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 6045e670d84SDavid Ahern struct neighbour *neigh; 605f2c31e32SEric Dumazet 606145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6071ba9a895SDavid Ahern neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev, 6081ba9a895SDavid Ahern &fib6_nh->fib_nh_gw6); 609145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 610145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 611554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 612afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 613398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 614a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 615afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6167e980569SJiri Benc else 6177e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 618398bcbebSYOSHIFUJI Hideaki #endif 619145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 620afc154e9SHannes Frederic Sowa } else { 621afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6227e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 623a5a81f0bSPaul Marks } 624145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 625145a3621SYOSHIFUJI Hideaki / 吉藤英明 626a5a81f0bSPaul Marks return ret; 6271da177e4SLinus Torvalds } 6281da177e4SLinus Torvalds 629702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 630702cea56SDavid Ahern int strict) 631554cfb7eSYOSHIFUJI Hideaki { 6326e1809a5SDavid Ahern int m = 0; 6334d0c5911SYOSHIFUJI Hideaki 6346e1809a5SDavid Ahern if (!oif || nh->fib_nh_dev->ifindex == oif) 6356e1809a5SDavid Ahern m = 2; 6366e1809a5SDavid Ahern 63777d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 638afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 639ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 640702cea56SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2; 641ebacaaa0SYOSHIFUJI Hideaki #endif 6421ba9a895SDavid Ahern if ((strict & RT6_LOOKUP_F_REACHABLE) && 643702cea56SDavid Ahern !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) { 6441ba9a895SDavid Ahern int n = rt6_check_neigh(nh); 645afc154e9SHannes Frederic Sowa if (n < 0) 646afc154e9SHannes Frederic Sowa return n; 647afc154e9SHannes Frederic Sowa } 648554cfb7eSYOSHIFUJI Hideaki return m; 649554cfb7eSYOSHIFUJI Hideaki } 650554cfb7eSYOSHIFUJI Hideaki 65128679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags, 65228679ed1SDavid Ahern int oif, int strict, int *mpri, bool *do_rr) 653554cfb7eSYOSHIFUJI Hideaki { 654afc154e9SHannes Frederic Sowa bool match_do_rr = false; 65528679ed1SDavid Ahern bool rc = false; 65628679ed1SDavid Ahern int m; 65735103d11SAndy Gospodarek 65828679ed1SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 6598067bb8cSIdo Schimmel goto out; 6608067bb8cSIdo Schimmel 66128679ed1SDavid Ahern if (ip6_ignore_linkdown(nh->fib_nh_dev) && 66228679ed1SDavid Ahern nh->fib_nh_flags & RTNH_F_LINKDOWN && 663d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 66435103d11SAndy Gospodarek goto out; 665554cfb7eSYOSHIFUJI Hideaki 66628679ed1SDavid Ahern m = rt6_score_route(nh, fib6_flags, oif, strict); 6677e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 668afc154e9SHannes Frederic Sowa match_do_rr = true; 669afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6707e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 671f11e6659SDavid S. Miller goto out; 6721da177e4SLinus Torvalds } 673f11e6659SDavid S. Miller 674afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 67528679ed1SDavid Ahern rt6_probe(nh); 676afc154e9SHannes Frederic Sowa 6777e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 678afc154e9SHannes Frederic Sowa if (m > *mpri) { 679afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 680afc154e9SHannes Frederic Sowa *mpri = m; 68128679ed1SDavid Ahern rc = true; 682afc154e9SHannes Frederic Sowa } 683f11e6659SDavid S. Miller out: 68428679ed1SDavid Ahern return rc; 6851da177e4SLinus Torvalds } 6861da177e4SLinus Torvalds 68730c15f03SDavid Ahern static void __find_rr_leaf(struct fib6_info *rt_start, 68830c15f03SDavid Ahern struct fib6_info *nomatch, u32 metric, 68930c15f03SDavid Ahern struct fib6_info **match, struct fib6_info **cont, 69030c15f03SDavid Ahern int oif, int strict, bool *do_rr, int *mpri) 69130c15f03SDavid Ahern { 69230c15f03SDavid Ahern struct fib6_info *rt; 69330c15f03SDavid Ahern 69430c15f03SDavid Ahern for (rt = rt_start; 69530c15f03SDavid Ahern rt && rt != nomatch; 69630c15f03SDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 69730c15f03SDavid Ahern struct fib6_nh *nh; 69830c15f03SDavid Ahern 69930c15f03SDavid Ahern if (cont && rt->fib6_metric != metric) { 70030c15f03SDavid Ahern *cont = rt; 70130c15f03SDavid Ahern return; 70230c15f03SDavid Ahern } 70330c15f03SDavid Ahern 70430c15f03SDavid Ahern if (fib6_check_expired(rt)) 70530c15f03SDavid Ahern continue; 70630c15f03SDavid Ahern 70730c15f03SDavid Ahern nh = &rt->fib6_nh; 70830c15f03SDavid Ahern if (find_match(nh, rt->fib6_flags, oif, strict, mpri, do_rr)) 70930c15f03SDavid Ahern *match = rt; 71030c15f03SDavid Ahern } 71130c15f03SDavid Ahern } 71230c15f03SDavid Ahern 7138d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 7148d1c802bSDavid Ahern struct fib6_info *leaf, 7158d1c802bSDavid Ahern struct fib6_info *rr_head, 716afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 717afc154e9SHannes Frederic Sowa bool *do_rr) 718f11e6659SDavid S. Miller { 71930c15f03SDavid Ahern struct fib6_info *match = NULL, *cont = NULL; 720f11e6659SDavid S. Miller int mpri = -1; 721f11e6659SDavid S. Miller 72230c15f03SDavid Ahern __find_rr_leaf(rr_head, NULL, metric, &match, &cont, 72330c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7249fbdcfafSSteffen Klassert 72530c15f03SDavid Ahern __find_rr_leaf(leaf, rr_head, metric, &match, &cont, 72630c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7279fbdcfafSSteffen Klassert 7289fbdcfafSSteffen Klassert if (match || !cont) 7299fbdcfafSSteffen Klassert return match; 7309fbdcfafSSteffen Klassert 73130c15f03SDavid Ahern __find_rr_leaf(cont, NULL, metric, &match, NULL, 73230c15f03SDavid Ahern oif, strict, do_rr, &mpri); 733f11e6659SDavid S. Miller 734f11e6659SDavid S. Miller return match; 735f11e6659SDavid S. Miller } 736f11e6659SDavid S. Miller 7378d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7388d1040e8SWei Wang int oif, int strict) 739f11e6659SDavid S. Miller { 7408d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7418d1c802bSDavid Ahern struct fib6_info *match, *rt0; 742afc154e9SHannes Frederic Sowa bool do_rr = false; 74317ecf590SWei Wang int key_plen; 744f11e6659SDavid S. Miller 745421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 746421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7478d1040e8SWei Wang 74866f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 749f11e6659SDavid S. Miller if (!rt0) 75066f5d6ceSWei Wang rt0 = leaf; 751f11e6659SDavid S. Miller 75217ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 75317ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75417ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75517ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75617ecf590SWei Wang */ 75793c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75817ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75993c2fb25SDavid Ahern if (rt0->fib6_src.plen) 76093c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 76117ecf590SWei Wang #endif 76217ecf590SWei Wang if (fn->fn_bit != key_plen) 763421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76417ecf590SWei Wang 76593c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 766afc154e9SHannes Frederic Sowa &do_rr); 767f11e6659SDavid S. Miller 768afc154e9SHannes Frederic Sowa if (do_rr) { 7698fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 770f11e6659SDavid S. Miller 771554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 77293c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7738d1040e8SWei Wang next = leaf; 774f11e6659SDavid S. Miller 77566f5d6ceSWei Wang if (next != rt0) { 77693c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77766f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77893c2fb25SDavid Ahern if (next->fib6_node) 77966f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 78093c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 78166f5d6ceSWei Wang } 782554cfb7eSYOSHIFUJI Hideaki } 783554cfb7eSYOSHIFUJI Hideaki 784421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7851da177e4SLinus Torvalds } 7861da177e4SLinus Torvalds 78785bd05deSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_result *res) 7888b9df265SMartin KaFai Lau { 78985bd05deSDavid Ahern return (res->f6i->fib6_flags & RTF_NONEXTHOP) || 79085bd05deSDavid Ahern res->nh->fib_nh_gw_family; 7918b9df265SMartin KaFai Lau } 7928b9df265SMartin KaFai Lau 79370ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 79470ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 795b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79670ceb4f5SYOSHIFUJI Hideaki { 797c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79870ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79970ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 80070ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 8014bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 8028d1c802bSDavid Ahern struct fib6_info *rt; 80370ceb4f5SYOSHIFUJI Hideaki 80470ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80670ceb4f5SYOSHIFUJI Hideaki } 80770ceb4f5SYOSHIFUJI Hideaki 80870ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 81270ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81370ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 81470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81670ceb4f5SYOSHIFUJI Hideaki } 81770ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81870ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81970ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82070ceb4f5SYOSHIFUJI Hideaki } 82170ceb4f5SYOSHIFUJI Hideaki } 82270ceb4f5SYOSHIFUJI Hideaki 82370ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 82470ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8253933fc95SJens Rosenboom return -EINVAL; 82670ceb4f5SYOSHIFUJI Hideaki 8274bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82870ceb4f5SYOSHIFUJI Hideaki 82970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 83070ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 83170ceb4f5SYOSHIFUJI Hideaki else { 83270ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 83370ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 83470ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83570ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83670ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83770ceb4f5SYOSHIFUJI Hideaki } 83870ceb4f5SYOSHIFUJI Hideaki 839f104a567SDuan Jiong if (rinfo->prefix_len == 0) 840afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 841f104a567SDuan Jiong else 842f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 843830218c1SDavid Ahern gwaddr, dev); 84470ceb4f5SYOSHIFUJI Hideaki 84570ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 846afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84770ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84870ceb4f5SYOSHIFUJI Hideaki } 84970ceb4f5SYOSHIFUJI Hideaki 85070ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 851830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 852830218c1SDavid Ahern dev, pref); 85370ceb4f5SYOSHIFUJI Hideaki else if (rt) 85493c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85593c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85670ceb4f5SYOSHIFUJI Hideaki 85770ceb4f5SYOSHIFUJI Hideaki if (rt) { 8581716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85914895687SDavid Ahern fib6_clean_expires(rt); 8601716a961SGao feng else 86114895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8621716a961SGao feng 86393531c67SDavid Ahern fib6_info_release(rt); 86470ceb4f5SYOSHIFUJI Hideaki } 86570ceb4f5SYOSHIFUJI Hideaki return 0; 86670ceb4f5SYOSHIFUJI Hideaki } 86770ceb4f5SYOSHIFUJI Hideaki #endif 86870ceb4f5SYOSHIFUJI Hideaki 869ae90d867SDavid Ahern /* 870ae90d867SDavid Ahern * Misc support functions 871ae90d867SDavid Ahern */ 872ae90d867SDavid Ahern 873ae90d867SDavid Ahern /* called with rcu_lock held */ 874*0d161581SDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(const struct fib6_result *res) 875ae90d867SDavid Ahern { 876*0d161581SDavid Ahern struct net_device *dev = res->nh->fib_nh_dev; 877*0d161581SDavid Ahern const struct fib6_info *f6i = res->f6i; 878ae90d867SDavid Ahern 879*0d161581SDavid Ahern if (f6i->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 880ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 881ae90d867SDavid Ahern * device if it is a master device, the master device if 882ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 883ae90d867SDavid Ahern */ 884ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 885*0d161581SDavid Ahern !rt6_need_strict(&f6i->fib6_dst.addr)) 886ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 887ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 888ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 889ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 890ae90d867SDavid Ahern * case we want dev returned to be dev 891ae90d867SDavid Ahern */ 892ae90d867SDavid Ahern } 893ae90d867SDavid Ahern 894ae90d867SDavid Ahern return dev; 895ae90d867SDavid Ahern } 896ae90d867SDavid Ahern 8976edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8986edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8996edb3c96SDavid Ahern [RTN_UNICAST] = 0, 9006edb3c96SDavid Ahern [RTN_LOCAL] = 0, 9016edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 9026edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 9036edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 9046edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 9056edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9066edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9076edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9086edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9096edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9106edb3c96SDavid Ahern }; 9116edb3c96SDavid Ahern 9126edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9136edb3c96SDavid Ahern { 9146edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9156edb3c96SDavid Ahern } 9166edb3c96SDavid Ahern 9178d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9183b6761d1SDavid Ahern { 9193b6761d1SDavid Ahern unsigned short flags = 0; 9203b6761d1SDavid Ahern 9213b6761d1SDavid Ahern if (rt->dst_nocount) 9223b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9233b6761d1SDavid Ahern if (rt->dst_nopolicy) 9243b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9253b6761d1SDavid Ahern if (rt->dst_host) 9263b6761d1SDavid Ahern flags |= DST_HOST; 9273b6761d1SDavid Ahern 9283b6761d1SDavid Ahern return flags; 9293b6761d1SDavid Ahern } 9303b6761d1SDavid Ahern 9318d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9326edb3c96SDavid Ahern { 9336edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9346edb3c96SDavid Ahern 9356edb3c96SDavid Ahern switch (ort->fib6_type) { 9366edb3c96SDavid Ahern case RTN_BLACKHOLE: 9376edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9386edb3c96SDavid Ahern rt->dst.input = dst_discard; 9396edb3c96SDavid Ahern break; 9406edb3c96SDavid Ahern case RTN_PROHIBIT: 9416edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9426edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9436edb3c96SDavid Ahern break; 9446edb3c96SDavid Ahern case RTN_THROW: 9456edb3c96SDavid Ahern case RTN_UNREACHABLE: 9466edb3c96SDavid Ahern default: 9476edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9486edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9496edb3c96SDavid Ahern break; 9506edb3c96SDavid Ahern } 9516edb3c96SDavid Ahern } 9526edb3c96SDavid Ahern 953*0d161581SDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, const struct fib6_result *res) 9546edb3c96SDavid Ahern { 955*0d161581SDavid Ahern struct fib6_info *ort = res->f6i; 956*0d161581SDavid Ahern 95793c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9586edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9596edb3c96SDavid Ahern return; 9606edb3c96SDavid Ahern } 9616edb3c96SDavid Ahern 9626edb3c96SDavid Ahern rt->dst.error = 0; 9636edb3c96SDavid Ahern rt->dst.output = ip6_output; 9646edb3c96SDavid Ahern 965d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9666edb3c96SDavid Ahern rt->dst.input = ip6_input; 96793c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9686edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9696edb3c96SDavid Ahern } else { 9706edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 973*0d161581SDavid Ahern if (res->nh->fib_nh_lws) { 974*0d161581SDavid Ahern rt->dst.lwtstate = lwtstate_get(res->nh->fib_nh_lws); 9756edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9766edb3c96SDavid Ahern } 9776edb3c96SDavid Ahern 9786edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9796edb3c96SDavid Ahern } 9806edb3c96SDavid Ahern 981e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9828d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 983ae90d867SDavid Ahern { 984ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 985a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 986e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 987ae90d867SDavid Ahern } 988ae90d867SDavid Ahern 989*0d161581SDavid Ahern /* Caller must already hold reference to f6i in result */ 990*0d161581SDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, const struct fib6_result *res) 991ae90d867SDavid Ahern { 992*0d161581SDavid Ahern const struct fib6_nh *nh = res->nh; 993*0d161581SDavid Ahern const struct net_device *dev = nh->fib_nh_dev; 994*0d161581SDavid Ahern struct fib6_info *f6i = res->f6i; 995dcd1f572SDavid Ahern 996*0d161581SDavid Ahern ip6_rt_init_dst(rt, res); 9976edb3c96SDavid Ahern 998*0d161581SDavid Ahern rt->rt6i_dst = f6i->fib6_dst; 999dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 1000*0d161581SDavid Ahern rt->rt6i_flags = f6i->fib6_flags; 1001*0d161581SDavid Ahern if (nh->fib_nh_gw_family) { 1002*0d161581SDavid Ahern rt->rt6i_gateway = nh->fib_nh_gw6; 10032b2450caSDavid Ahern rt->rt6i_flags |= RTF_GATEWAY; 10042b2450caSDavid Ahern } 1005*0d161581SDavid Ahern rt6_set_from(rt, f6i); 1006ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 1007*0d161581SDavid Ahern rt->rt6i_src = f6i->fib6_src; 1008ae90d867SDavid Ahern #endif 1009ae90d867SDavid Ahern } 1010ae90d867SDavid Ahern 1011a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1012a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1013a3c00e46SMartin KaFai Lau { 101466f5d6ceSWei Wang struct fib6_node *pn, *sn; 1015a3c00e46SMartin KaFai Lau while (1) { 1016a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1017a3c00e46SMartin KaFai Lau return NULL; 101866f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 101966f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 102066f5d6ceSWei Wang if (sn && sn != fn) 10216454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1022a3c00e46SMartin KaFai Lau else 1023a3c00e46SMartin KaFai Lau fn = pn; 1024a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1025a3c00e46SMartin KaFai Lau return fn; 1026a3c00e46SMartin KaFai Lau } 1027a3c00e46SMartin KaFai Lau } 1028c71099acSThomas Graf 102910585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt) 1030d3843fe5SWei Wang { 1031d3843fe5SWei Wang struct rt6_info *rt = *prt; 1032d3843fe5SWei Wang 1033d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1034d3843fe5SWei Wang return true; 103510585b43SDavid Ahern if (net) { 1036d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1037d3843fe5SWei Wang dst_hold(&rt->dst); 1038d3843fe5SWei Wang } else { 1039d3843fe5SWei Wang rt = NULL; 1040d3843fe5SWei Wang } 1041d3843fe5SWei Wang *prt = rt; 1042d3843fe5SWei Wang return false; 1043d3843fe5SWei Wang } 1044d3843fe5SWei Wang 1045dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10469b6b35abSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(const struct fib6_result *res) 1047dec9b0e2SDavid Ahern { 10489b6b35abSDavid Ahern struct net_device *dev = res->nh->fib_nh_dev; 10499b6b35abSDavid Ahern struct fib6_info *f6i = res->f6i; 10509b6b35abSDavid Ahern unsigned short flags; 1051dec9b0e2SDavid Ahern struct rt6_info *nrt; 1052dec9b0e2SDavid Ahern 10539b6b35abSDavid Ahern if (!fib6_info_hold_safe(f6i)) 10541c87e79aSXin Long goto fallback; 1055e873e4b9SWei Wang 10569b6b35abSDavid Ahern flags = fib6_info_dst_flags(f6i); 105793531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 10581c87e79aSXin Long if (!nrt) { 10599b6b35abSDavid Ahern fib6_info_release(f6i); 10601c87e79aSXin Long goto fallback; 10611c87e79aSXin Long } 1062dec9b0e2SDavid Ahern 1063*0d161581SDavid Ahern ip6_rt_copy_init(nrt, res); 10641c87e79aSXin Long return nrt; 10651c87e79aSXin Long 10661c87e79aSXin Long fallback: 10671c87e79aSXin Long nrt = dev_net(dev)->ipv6.ip6_null_entry; 10681c87e79aSXin Long dst_hold(&nrt->dst); 1069dec9b0e2SDavid Ahern return nrt; 1070dec9b0e2SDavid Ahern } 1071dec9b0e2SDavid Ahern 10728ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10738ed67789SDaniel Lezcano struct fib6_table *table, 1074b75cc8f9SDavid Ahern struct flowi6 *fl6, 1075b75cc8f9SDavid Ahern const struct sk_buff *skb, 1076b75cc8f9SDavid Ahern int flags) 10771da177e4SLinus Torvalds { 1078b1d40991SDavid Ahern struct fib6_result res = {}; 10791da177e4SLinus Torvalds struct fib6_node *fn; 108023fb93a4SDavid Ahern struct rt6_info *rt; 10811da177e4SLinus Torvalds 1082b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1083b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1084b6cdbc85SDavid Ahern 108566f5d6ceSWei Wang rcu_read_lock(); 10866454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1087c71099acSThomas Graf restart: 1088b1d40991SDavid Ahern res.f6i = rcu_dereference(fn->leaf); 1089b1d40991SDavid Ahern if (!res.f6i) 1090b1d40991SDavid Ahern res.f6i = net->ipv6.fib6_null_entry; 1091af52a52cSDavid Ahern else 1092b1d40991SDavid Ahern res.f6i = rt6_device_match(net, res.f6i, &fl6->saddr, 109366f5d6ceSWei Wang fl6->flowi6_oif, flags); 1094af52a52cSDavid Ahern 1095b1d40991SDavid Ahern if (res.f6i == net->ipv6.fib6_null_entry) { 1096a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1097a3c00e46SMartin KaFai Lau if (fn) 1098a3c00e46SMartin KaFai Lau goto restart; 1099af52a52cSDavid Ahern 1100af52a52cSDavid Ahern rt = net->ipv6.ip6_null_entry; 1101af52a52cSDavid Ahern dst_hold(&rt->dst); 1102af52a52cSDavid Ahern goto out; 1103a3c00e46SMartin KaFai Lau } 11042b760fcfSWei Wang 1105b1d40991SDavid Ahern fib6_select_path(net, &res, fl6, fl6->flowi6_oif, 1106b1d40991SDavid Ahern fl6->flowi6_oif != 0, skb, flags); 1107b1d40991SDavid Ahern 11084c9483b2SDavid S. Miller /* Search through exception table */ 11097e4b5128SDavid Ahern rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr); 111023fb93a4SDavid Ahern if (rt) { 111110585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 1112d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 111323fb93a4SDavid Ahern } else { 11149b6b35abSDavid Ahern rt = ip6_create_rt_rcu(&res); 1115dec9b0e2SDavid Ahern } 1116d3843fe5SWei Wang 1117af52a52cSDavid Ahern out: 1118b1d40991SDavid Ahern trace_fib6_table_lookup(net, res.f6i, table, fl6); 1119af52a52cSDavid Ahern 112066f5d6ceSWei Wang rcu_read_unlock(); 1121b811580dSDavid Ahern 11221da177e4SLinus Torvalds return rt; 1123c71099acSThomas Graf } 1124c71099acSThomas Graf 1125ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1126b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1127ea6e574eSFlorian Westphal { 1128b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1129ea6e574eSFlorian Westphal } 1130ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1131ea6e574eSFlorian Westphal 11329acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1133b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1134b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1135c71099acSThomas Graf { 11364c9483b2SDavid S. Miller struct flowi6 fl6 = { 11374c9483b2SDavid S. Miller .flowi6_oif = oif, 11384c9483b2SDavid S. Miller .daddr = *daddr, 1139c71099acSThomas Graf }; 1140c71099acSThomas Graf struct dst_entry *dst; 114177d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1142c71099acSThomas Graf 1143adaa70bbSThomas Graf if (saddr) { 11444c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1145adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1146adaa70bbSThomas Graf } 1147adaa70bbSThomas Graf 1148b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1149c71099acSThomas Graf if (dst->error == 0) 1150c71099acSThomas Graf return (struct rt6_info *) dst; 1151c71099acSThomas Graf 1152c71099acSThomas Graf dst_release(dst); 1153c71099acSThomas Graf 11541da177e4SLinus Torvalds return NULL; 11551da177e4SLinus Torvalds } 11567159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11577159039aSYOSHIFUJI Hideaki 1158c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11591cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11601cfb71eeSWei Wang * route is released. 11611cfb71eeSWei Wang * Caller must hold dst before calling it. 11621da177e4SLinus Torvalds */ 11631da177e4SLinus Torvalds 11648d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1165333c4301SDavid Ahern struct netlink_ext_ack *extack) 11661da177e4SLinus Torvalds { 11671da177e4SLinus Torvalds int err; 1168c71099acSThomas Graf struct fib6_table *table; 11691da177e4SLinus Torvalds 117093c2fb25SDavid Ahern table = rt->fib6_table; 117166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1172d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 117366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11741da177e4SLinus Torvalds 11751da177e4SLinus Torvalds return err; 11761da177e4SLinus Torvalds } 11771da177e4SLinus Torvalds 11788d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 117940e22e8fSThomas Graf { 1180afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1181e715b6d3SFlorian Westphal 1182d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 118340e22e8fSThomas Graf } 118440e22e8fSThomas Graf 118585bd05deSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(const struct fib6_result *res, 118621efcfa0SEric Dumazet const struct in6_addr *daddr, 1187b71d1d42SEric Dumazet const struct in6_addr *saddr) 11881da177e4SLinus Torvalds { 118985bd05deSDavid Ahern struct fib6_info *f6i = res->f6i; 11904832c30dSDavid Ahern struct net_device *dev; 11911da177e4SLinus Torvalds struct rt6_info *rt; 11921da177e4SLinus Torvalds 11931da177e4SLinus Torvalds /* 11941da177e4SLinus Torvalds * Clone the route. 11951da177e4SLinus Torvalds */ 11961da177e4SLinus Torvalds 119785bd05deSDavid Ahern if (!fib6_info_hold_safe(f6i)) 1198e873e4b9SWei Wang return NULL; 1199e873e4b9SWei Wang 1200*0d161581SDavid Ahern dev = ip6_rt_get_dev_rcu(res); 120193531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1202e873e4b9SWei Wang if (!rt) { 120385bd05deSDavid Ahern fib6_info_release(f6i); 120483a09abdSMartin KaFai Lau return NULL; 1205e873e4b9SWei Wang } 120683a09abdSMartin KaFai Lau 1207*0d161581SDavid Ahern ip6_rt_copy_init(rt, res); 12088b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 120983a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 121083a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 121183a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 12128b9df265SMartin KaFai Lau 121385bd05deSDavid Ahern if (!rt6_is_gw_or_nonexthop(res)) { 121485bd05deSDavid Ahern if (f6i->fib6_dst.plen != 128 && 121585bd05deSDavid Ahern ipv6_addr_equal(&f6i->fib6_dst.addr, daddr)) 121658c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12171da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12181da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12194e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12201da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12211da177e4SLinus Torvalds } 12221da177e4SLinus Torvalds #endif 122395a9a5baSYOSHIFUJI Hideaki } 122495a9a5baSYOSHIFUJI Hideaki 1225299d9939SYOSHIFUJI Hideaki return rt; 1226299d9939SYOSHIFUJI Hideaki } 1227299d9939SYOSHIFUJI Hideaki 1228db3fedeeSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(const struct fib6_result *res) 1229d52d3997SMartin KaFai Lau { 1230db3fedeeSDavid Ahern struct fib6_info *f6i = res->f6i; 1231db3fedeeSDavid Ahern unsigned short flags = fib6_info_dst_flags(f6i); 12324832c30dSDavid Ahern struct net_device *dev; 1233d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1234d52d3997SMartin KaFai Lau 1235db3fedeeSDavid Ahern if (!fib6_info_hold_safe(f6i)) 1236e873e4b9SWei Wang return NULL; 1237e873e4b9SWei Wang 12384832c30dSDavid Ahern rcu_read_lock(); 1239*0d161581SDavid Ahern dev = ip6_rt_get_dev_rcu(res); 124093531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12414832c30dSDavid Ahern rcu_read_unlock(); 1242e873e4b9SWei Wang if (!pcpu_rt) { 1243db3fedeeSDavid Ahern fib6_info_release(f6i); 1244d52d3997SMartin KaFai Lau return NULL; 1245e873e4b9SWei Wang } 1246*0d161581SDavid Ahern ip6_rt_copy_init(pcpu_rt, res); 1247d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1248d52d3997SMartin KaFai Lau return pcpu_rt; 1249d52d3997SMartin KaFai Lau } 1250d52d3997SMartin KaFai Lau 125166f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 1252db3fedeeSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(const struct fib6_result *res) 1253d52d3997SMartin KaFai Lau { 1254a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1255d52d3997SMartin KaFai Lau 1256db3fedeeSDavid Ahern p = this_cpu_ptr(res->f6i->rt6i_pcpu); 1257d52d3997SMartin KaFai Lau pcpu_rt = *p; 1258d52d3997SMartin KaFai Lau 1259d4ead6b3SDavid Ahern if (pcpu_rt) 126010585b43SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt); 1261d3843fe5SWei Wang 1262a73e4195SMartin KaFai Lau return pcpu_rt; 1263a73e4195SMartin KaFai Lau } 1264a73e4195SMartin KaFai Lau 1265afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 1266db3fedeeSDavid Ahern const struct fib6_result *res) 1267a73e4195SMartin KaFai Lau { 1268a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1269d52d3997SMartin KaFai Lau 1270db3fedeeSDavid Ahern pcpu_rt = ip6_rt_pcpu_alloc(res); 1271d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12729c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12739c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1274d52d3997SMartin KaFai Lau } 1275d52d3997SMartin KaFai Lau 1276a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1277db3fedeeSDavid Ahern p = this_cpu_ptr(res->f6i->rt6i_pcpu); 1278d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1279951f788aSEric Dumazet BUG_ON(prev); 1280a94b9367SWei Wang 1281d52d3997SMartin KaFai Lau return pcpu_rt; 1282d52d3997SMartin KaFai Lau } 1283d52d3997SMartin KaFai Lau 128435732d01SWei Wang /* exception hash table implementation 128535732d01SWei Wang */ 128635732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 128735732d01SWei Wang 128835732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 128935732d01SWei Wang * Caller must hold rt6_exception_lock 129035732d01SWei Wang */ 129135732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 129235732d01SWei Wang struct rt6_exception *rt6_ex) 129335732d01SWei Wang { 1294f5b51fe8SPaolo Abeni struct fib6_info *from; 1295b2427e67SColin Ian King struct net *net; 129681eb8447SWei Wang 129735732d01SWei Wang if (!bucket || !rt6_ex) 129835732d01SWei Wang return; 1299b2427e67SColin Ian King 1300b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 1301f5b51fe8SPaolo Abeni net->ipv6.rt6_stats->fib_rt_cache--; 1302f5b51fe8SPaolo Abeni 1303f5b51fe8SPaolo Abeni /* purge completely the exception to allow releasing the held resources: 1304f5b51fe8SPaolo Abeni * some [sk] cache may keep the dst around for unlimited time 1305f5b51fe8SPaolo Abeni */ 1306f5b51fe8SPaolo Abeni from = rcu_dereference_protected(rt6_ex->rt6i->from, 1307f5b51fe8SPaolo Abeni lockdep_is_held(&rt6_exception_lock)); 1308f5b51fe8SPaolo Abeni rcu_assign_pointer(rt6_ex->rt6i->from, NULL); 1309f5b51fe8SPaolo Abeni fib6_info_release(from); 1310f5b51fe8SPaolo Abeni dst_dev_put(&rt6_ex->rt6i->dst); 1311f5b51fe8SPaolo Abeni 131235732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 131377634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 131435732d01SWei Wang kfree_rcu(rt6_ex, rcu); 131535732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 131635732d01SWei Wang bucket->depth--; 131735732d01SWei Wang } 131835732d01SWei Wang 131935732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 132035732d01SWei Wang * Caller must hold rt6_exception_lock 132135732d01SWei Wang */ 132235732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 132335732d01SWei Wang { 132435732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 132535732d01SWei Wang 132635732d01SWei Wang if (!bucket) 132735732d01SWei Wang return; 132835732d01SWei Wang 132935732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 133035732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 133135732d01SWei Wang oldest = rt6_ex; 133235732d01SWei Wang } 133335732d01SWei Wang rt6_remove_exception(bucket, oldest); 133435732d01SWei Wang } 133535732d01SWei Wang 133635732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 133735732d01SWei Wang const struct in6_addr *src) 133835732d01SWei Wang { 133935732d01SWei Wang static u32 seed __read_mostly; 134035732d01SWei Wang u32 val; 134135732d01SWei Wang 134235732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 134335732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 134435732d01SWei Wang 134535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 134635732d01SWei Wang if (src) 134735732d01SWei Wang val = jhash(src, sizeof(*src), val); 134835732d01SWei Wang #endif 134935732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 135035732d01SWei Wang } 135135732d01SWei Wang 135235732d01SWei Wang /* Helper function to find the cached rt in the hash table 135335732d01SWei Wang * and update bucket pointer to point to the bucket for this 135435732d01SWei Wang * (daddr, saddr) pair 135535732d01SWei Wang * Caller must hold rt6_exception_lock 135635732d01SWei Wang */ 135735732d01SWei Wang static struct rt6_exception * 135835732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 135935732d01SWei Wang const struct in6_addr *daddr, 136035732d01SWei Wang const struct in6_addr *saddr) 136135732d01SWei Wang { 136235732d01SWei Wang struct rt6_exception *rt6_ex; 136335732d01SWei Wang u32 hval; 136435732d01SWei Wang 136535732d01SWei Wang if (!(*bucket) || !daddr) 136635732d01SWei Wang return NULL; 136735732d01SWei Wang 136835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 136935732d01SWei Wang *bucket += hval; 137035732d01SWei Wang 137135732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 137235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 137335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 137435732d01SWei Wang 137535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 137635732d01SWei Wang if (matched && saddr) 137735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 137835732d01SWei Wang #endif 137935732d01SWei Wang if (matched) 138035732d01SWei Wang return rt6_ex; 138135732d01SWei Wang } 138235732d01SWei Wang return NULL; 138335732d01SWei Wang } 138435732d01SWei Wang 138535732d01SWei Wang /* Helper function to find the cached rt in the hash table 138635732d01SWei Wang * and update bucket pointer to point to the bucket for this 138735732d01SWei Wang * (daddr, saddr) pair 138835732d01SWei Wang * Caller must hold rcu_read_lock() 138935732d01SWei Wang */ 139035732d01SWei Wang static struct rt6_exception * 139135732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 139235732d01SWei Wang const struct in6_addr *daddr, 139335732d01SWei Wang const struct in6_addr *saddr) 139435732d01SWei Wang { 139535732d01SWei Wang struct rt6_exception *rt6_ex; 139635732d01SWei Wang u32 hval; 139735732d01SWei Wang 139835732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 139935732d01SWei Wang 140035732d01SWei Wang if (!(*bucket) || !daddr) 140135732d01SWei Wang return NULL; 140235732d01SWei Wang 140335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 140435732d01SWei Wang *bucket += hval; 140535732d01SWei Wang 140635732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 140735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 140835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 140935732d01SWei Wang 141035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 141135732d01SWei Wang if (matched && saddr) 141235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 141335732d01SWei Wang #endif 141435732d01SWei Wang if (matched) 141535732d01SWei Wang return rt6_ex; 141635732d01SWei Wang } 141735732d01SWei Wang return NULL; 141835732d01SWei Wang } 141935732d01SWei Wang 14208d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 142135732d01SWei Wang { 1422d4ead6b3SDavid Ahern unsigned int mtu; 1423d4ead6b3SDavid Ahern 1424dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1425dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1426dcd1f572SDavid Ahern } else { 1427dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1428dcd1f572SDavid Ahern struct inet6_dev *idev; 1429dcd1f572SDavid Ahern 1430dcd1f572SDavid Ahern rcu_read_lock(); 1431dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1432dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1433dcd1f572SDavid Ahern rcu_read_unlock(); 1434dcd1f572SDavid Ahern } 1435dcd1f572SDavid Ahern 1436d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1437d4ead6b3SDavid Ahern 1438ad1601aeSDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.fib_nh_lws, mtu); 1439d4ead6b3SDavid Ahern } 1440d4ead6b3SDavid Ahern 144135732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14428d1c802bSDavid Ahern struct fib6_info *ort) 144335732d01SWei Wang { 14445e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 144535732d01SWei Wang struct rt6_exception_bucket *bucket; 144635732d01SWei Wang struct in6_addr *src_key = NULL; 144735732d01SWei Wang struct rt6_exception *rt6_ex; 144835732d01SWei Wang int err = 0; 144935732d01SWei Wang 145035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 145135732d01SWei Wang 145235732d01SWei Wang if (ort->exception_bucket_flushed) { 145335732d01SWei Wang err = -EINVAL; 145435732d01SWei Wang goto out; 145535732d01SWei Wang } 145635732d01SWei Wang 145735732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 145835732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 145935732d01SWei Wang if (!bucket) { 146035732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 146135732d01SWei Wang GFP_ATOMIC); 146235732d01SWei Wang if (!bucket) { 146335732d01SWei Wang err = -ENOMEM; 146435732d01SWei Wang goto out; 146535732d01SWei Wang } 146635732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 146735732d01SWei Wang } 146835732d01SWei Wang 146935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 147035732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 147135732d01SWei Wang * and exception table is indexed by a hash of 147235732d01SWei Wang * both rt6i_dst and rt6i_src. 147335732d01SWei Wang * Otherwise, the exception table is indexed by 147435732d01SWei Wang * a hash of only rt6i_dst. 147535732d01SWei Wang */ 147693c2fb25SDavid Ahern if (ort->fib6_src.plen) 147735732d01SWei Wang src_key = &nrt->rt6i_src.addr; 147835732d01SWei Wang #endif 1479f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1480f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1481f5bbe7eeSWei Wang * is less than ort's mtu value. 1482f5bbe7eeSWei Wang */ 1483d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1484f5bbe7eeSWei Wang err = -EINVAL; 1485f5bbe7eeSWei Wang goto out; 1486f5bbe7eeSWei Wang } 148760006a48SWei Wang 148835732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 148935732d01SWei Wang src_key); 149035732d01SWei Wang if (rt6_ex) 149135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 149235732d01SWei Wang 149335732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 149435732d01SWei Wang if (!rt6_ex) { 149535732d01SWei Wang err = -ENOMEM; 149635732d01SWei Wang goto out; 149735732d01SWei Wang } 149835732d01SWei Wang rt6_ex->rt6i = nrt; 149935732d01SWei Wang rt6_ex->stamp = jiffies; 150035732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 150135732d01SWei Wang bucket->depth++; 150281eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 150335732d01SWei Wang 150435732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 150535732d01SWei Wang rt6_exception_remove_oldest(bucket); 150635732d01SWei Wang 150735732d01SWei Wang out: 150835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 150935732d01SWei Wang 151035732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1511b886d5f2SPaolo Abeni if (!err) { 151293c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 15137aef6859SDavid Ahern fib6_update_sernum(net, ort); 151493c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1515b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1516b886d5f2SPaolo Abeni } 151735732d01SWei Wang 151835732d01SWei Wang return err; 151935732d01SWei Wang } 152035732d01SWei Wang 15218d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 152235732d01SWei Wang { 152335732d01SWei Wang struct rt6_exception_bucket *bucket; 152435732d01SWei Wang struct rt6_exception *rt6_ex; 152535732d01SWei Wang struct hlist_node *tmp; 152635732d01SWei Wang int i; 152735732d01SWei Wang 152835732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 152935732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 153035732d01SWei Wang rt->exception_bucket_flushed = 1; 153135732d01SWei Wang 153235732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 153335732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 153435732d01SWei Wang if (!bucket) 153535732d01SWei Wang goto out; 153635732d01SWei Wang 153735732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 153835732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 153935732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 154035732d01SWei Wang WARN_ON_ONCE(bucket->depth); 154135732d01SWei Wang bucket++; 154235732d01SWei Wang } 154335732d01SWei Wang 154435732d01SWei Wang out: 154535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 154635732d01SWei Wang } 154735732d01SWei Wang 154835732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 154935732d01SWei Wang * Caller has to hold rcu_read_lock() 155035732d01SWei Wang */ 15517e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res, 155235732d01SWei Wang struct in6_addr *daddr, 155335732d01SWei Wang struct in6_addr *saddr) 155435732d01SWei Wang { 155535732d01SWei Wang struct rt6_exception_bucket *bucket; 155635732d01SWei Wang struct in6_addr *src_key = NULL; 155735732d01SWei Wang struct rt6_exception *rt6_ex; 15587e4b5128SDavid Ahern struct rt6_info *ret = NULL; 155935732d01SWei Wang 15607e4b5128SDavid Ahern bucket = rcu_dereference(res->f6i->rt6i_exception_bucket); 156135732d01SWei Wang 156235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 15637e4b5128SDavid Ahern /* fib6i_src.plen != 0 indicates f6i is in subtree 156435732d01SWei Wang * and exception table is indexed by a hash of 15657e4b5128SDavid Ahern * both fib6_dst and fib6_src. 156635732d01SWei Wang * Otherwise, the exception table is indexed by 15677e4b5128SDavid Ahern * a hash of only fib6_dst. 156835732d01SWei Wang */ 15697e4b5128SDavid Ahern if (res->f6i->fib6_src.plen) 157035732d01SWei Wang src_key = saddr; 157135732d01SWei Wang #endif 157235732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 157335732d01SWei Wang 157435732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 15757e4b5128SDavid Ahern ret = rt6_ex->rt6i; 157635732d01SWei Wang 15777e4b5128SDavid Ahern return ret; 157835732d01SWei Wang } 157935732d01SWei Wang 158035732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 158123fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 158235732d01SWei Wang { 158335732d01SWei Wang struct rt6_exception_bucket *bucket; 158435732d01SWei Wang struct in6_addr *src_key = NULL; 158535732d01SWei Wang struct rt6_exception *rt6_ex; 15868a14e46fSDavid Ahern struct fib6_info *from; 158735732d01SWei Wang int err; 158835732d01SWei Wang 1589091311deSEric Dumazet from = rcu_dereference(rt->from); 159035732d01SWei Wang if (!from || 1591442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 159235732d01SWei Wang return -EINVAL; 159335732d01SWei Wang 159435732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 159535732d01SWei Wang return -ENOENT; 159635732d01SWei Wang 159735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 159835732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 159935732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 160035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 160135732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 160235732d01SWei Wang * and exception table is indexed by a hash of 160335732d01SWei Wang * both rt6i_dst and rt6i_src. 160435732d01SWei Wang * Otherwise, the exception table is indexed by 160535732d01SWei Wang * a hash of only rt6i_dst. 160635732d01SWei Wang */ 160793c2fb25SDavid Ahern if (from->fib6_src.plen) 160835732d01SWei Wang src_key = &rt->rt6i_src.addr; 160935732d01SWei Wang #endif 161035732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 161135732d01SWei Wang &rt->rt6i_dst.addr, 161235732d01SWei Wang src_key); 161335732d01SWei Wang if (rt6_ex) { 161435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 161535732d01SWei Wang err = 0; 161635732d01SWei Wang } else { 161735732d01SWei Wang err = -ENOENT; 161835732d01SWei Wang } 161935732d01SWei Wang 162035732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 162135732d01SWei Wang return err; 162235732d01SWei Wang } 162335732d01SWei Wang 162435732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 162535732d01SWei Wang * refresh its stamp 162635732d01SWei Wang */ 162735732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 162835732d01SWei Wang { 162935732d01SWei Wang struct rt6_exception_bucket *bucket; 163035732d01SWei Wang struct in6_addr *src_key = NULL; 163135732d01SWei Wang struct rt6_exception *rt6_ex; 1632193f3685SPaolo Abeni struct fib6_info *from; 163335732d01SWei Wang 163435732d01SWei Wang rcu_read_lock(); 1635193f3685SPaolo Abeni from = rcu_dereference(rt->from); 1636193f3685SPaolo Abeni if (!from || !(rt->rt6i_flags & RTF_CACHE)) 1637193f3685SPaolo Abeni goto unlock; 1638193f3685SPaolo Abeni 163935732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 164035732d01SWei Wang 164135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 164235732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 164335732d01SWei Wang * and exception table is indexed by a hash of 164435732d01SWei Wang * both rt6i_dst and rt6i_src. 164535732d01SWei Wang * Otherwise, the exception table is indexed by 164635732d01SWei Wang * a hash of only rt6i_dst. 164735732d01SWei Wang */ 164893c2fb25SDavid Ahern if (from->fib6_src.plen) 164935732d01SWei Wang src_key = &rt->rt6i_src.addr; 165035732d01SWei Wang #endif 165135732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 165235732d01SWei Wang &rt->rt6i_dst.addr, 165335732d01SWei Wang src_key); 165435732d01SWei Wang if (rt6_ex) 165535732d01SWei Wang rt6_ex->stamp = jiffies; 165635732d01SWei Wang 1657193f3685SPaolo Abeni unlock: 165835732d01SWei Wang rcu_read_unlock(); 165935732d01SWei Wang } 166035732d01SWei Wang 1661e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1662e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1663e9fa1495SStefano Brivio { 1664e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1665e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1666e9fa1495SStefano Brivio * reflect PMTU decreases. 1667e9fa1495SStefano Brivio * 1668e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1669e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1670e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1671e9fa1495SStefano Brivio * handle this. 1672e9fa1495SStefano Brivio */ 1673e9fa1495SStefano Brivio 1674e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1675e9fa1495SStefano Brivio return true; 1676e9fa1495SStefano Brivio 1677e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1678e9fa1495SStefano Brivio return true; 1679e9fa1495SStefano Brivio 1680e9fa1495SStefano Brivio return false; 1681e9fa1495SStefano Brivio } 1682e9fa1495SStefano Brivio 1683e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16848d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1685f5bbe7eeSWei Wang { 1686f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1687f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1688f5bbe7eeSWei Wang int i; 1689f5bbe7eeSWei Wang 1690f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1691f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1692f5bbe7eeSWei Wang 1693e9fa1495SStefano Brivio if (!bucket) 1694e9fa1495SStefano Brivio return; 1695e9fa1495SStefano Brivio 1696f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1697f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1698f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1699e9fa1495SStefano Brivio 1700e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1701d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1702f5bbe7eeSWei Wang * been updated. 1703f5bbe7eeSWei Wang */ 1704d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1705e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1706d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1707f5bbe7eeSWei Wang } 1708f5bbe7eeSWei Wang bucket++; 1709f5bbe7eeSWei Wang } 1710f5bbe7eeSWei Wang } 1711f5bbe7eeSWei Wang 1712b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1713b16cb459SWei Wang 17148d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1715b16cb459SWei Wang struct in6_addr *gateway) 1716b16cb459SWei Wang { 1717b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1718b16cb459SWei Wang struct rt6_exception *rt6_ex; 1719b16cb459SWei Wang struct hlist_node *tmp; 1720b16cb459SWei Wang int i; 1721b16cb459SWei Wang 1722b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1723b16cb459SWei Wang return; 1724b16cb459SWei Wang 1725b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1726b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1727b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1728b16cb459SWei Wang 1729b16cb459SWei Wang if (bucket) { 1730b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1731b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1732b16cb459SWei Wang &bucket->chain, hlist) { 1733b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1734b16cb459SWei Wang 1735b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1736b16cb459SWei Wang RTF_CACHE_GATEWAY && 1737b16cb459SWei Wang ipv6_addr_equal(gateway, 1738b16cb459SWei Wang &entry->rt6i_gateway)) { 1739b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1740b16cb459SWei Wang } 1741b16cb459SWei Wang } 1742b16cb459SWei Wang bucket++; 1743b16cb459SWei Wang } 1744b16cb459SWei Wang } 1745b16cb459SWei Wang 1746b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1747b16cb459SWei Wang } 1748b16cb459SWei Wang 1749c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1750c757faa8SWei Wang struct rt6_exception *rt6_ex, 1751c757faa8SWei Wang struct fib6_gc_args *gc_args, 1752c757faa8SWei Wang unsigned long now) 1753c757faa8SWei Wang { 1754c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1755c757faa8SWei Wang 17561859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17571859bac0SPaolo Abeni * even if others have still references to them, so that on next 17581859bac0SPaolo Abeni * dst_check() such references can be dropped. 17591859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17601859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17611859bac0SPaolo Abeni */ 176231afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 176331afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1764c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1765c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1766c757faa8SWei Wang return; 176731afeb42SWei Wang } 176831afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 176931afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 177031afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 177131afeb42SWei Wang return; 177231afeb42SWei Wang } 177331afeb42SWei Wang 177431afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1775c757faa8SWei Wang struct neighbour *neigh; 1776c757faa8SWei Wang __u8 neigh_flags = 0; 1777c757faa8SWei Wang 17781bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17791bfa26ffSEric Dumazet if (neigh) 1780c757faa8SWei Wang neigh_flags = neigh->flags; 17811bfa26ffSEric Dumazet 1782c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1783c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1784c757faa8SWei Wang rt); 1785c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1786c757faa8SWei Wang return; 1787c757faa8SWei Wang } 1788c757faa8SWei Wang } 178931afeb42SWei Wang 1790c757faa8SWei Wang gc_args->more++; 1791c757faa8SWei Wang } 1792c757faa8SWei Wang 17938d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1794c757faa8SWei Wang struct fib6_gc_args *gc_args, 1795c757faa8SWei Wang unsigned long now) 1796c757faa8SWei Wang { 1797c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1798c757faa8SWei Wang struct rt6_exception *rt6_ex; 1799c757faa8SWei Wang struct hlist_node *tmp; 1800c757faa8SWei Wang int i; 1801c757faa8SWei Wang 1802c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1803c757faa8SWei Wang return; 1804c757faa8SWei Wang 18051bfa26ffSEric Dumazet rcu_read_lock_bh(); 18061bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1807c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1808c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1809c757faa8SWei Wang 1810c757faa8SWei Wang if (bucket) { 1811c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1812c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1813c757faa8SWei Wang &bucket->chain, hlist) { 1814c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1815c757faa8SWei Wang gc_args, now); 1816c757faa8SWei Wang } 1817c757faa8SWei Wang bucket++; 1818c757faa8SWei Wang } 1819c757faa8SWei Wang } 18201bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 18211bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1822c757faa8SWei Wang } 1823c757faa8SWei Wang 18241d053da9SDavid Ahern /* must be called with rcu lock held */ 18251d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18261d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18271da177e4SLinus Torvalds { 1828367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18298d1c802bSDavid Ahern struct fib6_info *f6i; 18301da177e4SLinus Torvalds 18316454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1832367efcb9SMartin KaFai Lau saved_fn = fn; 18331da177e4SLinus Torvalds 1834ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1835ca254490SDavid Ahern oif = 0; 1836ca254490SDavid Ahern 1837a3c00e46SMartin KaFai Lau redo_rt6_select: 183823fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 183923fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1840a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1841a3c00e46SMartin KaFai Lau if (fn) 1842a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1843367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1844367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1845367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1846367efcb9SMartin KaFai Lau fn = saved_fn; 1847367efcb9SMartin KaFai Lau goto redo_rt6_select; 1848367efcb9SMartin KaFai Lau } 1849a3c00e46SMartin KaFai Lau } 1850a3c00e46SMartin KaFai Lau 1851d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1852d52d3997SMartin KaFai Lau 18531d053da9SDavid Ahern return f6i; 18541d053da9SDavid Ahern } 18551d053da9SDavid Ahern 18561d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18571d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18581d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18591d053da9SDavid Ahern { 1860b1d40991SDavid Ahern struct fib6_result res = {}; 18611d053da9SDavid Ahern struct rt6_info *rt; 18621d053da9SDavid Ahern int strict = 0; 18631d053da9SDavid Ahern 18641d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18651d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18661d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18671d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18681d053da9SDavid Ahern 18691d053da9SDavid Ahern rcu_read_lock(); 18701d053da9SDavid Ahern 1871b1d40991SDavid Ahern res.f6i = fib6_table_lookup(net, table, oif, fl6, strict); 1872b1d40991SDavid Ahern if (res.f6i == net->ipv6.fib6_null_entry) { 1873421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 187466f5d6ceSWei Wang rcu_read_unlock(); 1875d3843fe5SWei Wang dst_hold(&rt->dst); 1876d3843fe5SWei Wang return rt; 1877d3843fe5SWei Wang } 187823fb93a4SDavid Ahern 1879b1d40991SDavid Ahern fib6_select_path(net, &res, fl6, oif, false, skb, strict); 1880d83009d4SDavid Ahern 188123fb93a4SDavid Ahern /*Search through exception table */ 18827e4b5128SDavid Ahern rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr); 188323fb93a4SDavid Ahern if (rt) { 188410585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 18851da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1886d4ead6b3SDavid Ahern 188766f5d6ceSWei Wang rcu_read_unlock(); 1888d52d3997SMartin KaFai Lau return rt; 18893da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 1890b1d40991SDavid Ahern !res.nh->fib_nh_gw_family)) { 18913da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18923da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18933da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18943da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18953da59bd9SMartin KaFai Lau */ 18963da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18973da59bd9SMartin KaFai Lau 189885bd05deSDavid Ahern uncached_rt = ip6_rt_cache_alloc(&res, &fl6->daddr, NULL); 1899d52d3997SMartin KaFai Lau 19004d85cd0cSDavid Ahern rcu_read_unlock(); 19013da59bd9SMartin KaFai Lau 19021cfb71eeSWei Wang if (uncached_rt) { 19031cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 19041cfb71eeSWei Wang * No need for another dst_hold() 19051cfb71eeSWei Wang */ 19068d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 190781eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 19081cfb71eeSWei Wang } else { 19093da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 19103da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 19111cfb71eeSWei Wang } 1912b811580dSDavid Ahern 19133da59bd9SMartin KaFai Lau return uncached_rt; 1914d52d3997SMartin KaFai Lau } else { 1915d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1916d52d3997SMartin KaFai Lau 1917d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1918d52d3997SMartin KaFai Lau 1919951f788aSEric Dumazet local_bh_disable(); 1920db3fedeeSDavid Ahern pcpu_rt = rt6_get_pcpu_route(&res); 1921d52d3997SMartin KaFai Lau 192293531c67SDavid Ahern if (!pcpu_rt) 1923db3fedeeSDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, &res); 192493531c67SDavid Ahern 1925951f788aSEric Dumazet local_bh_enable(); 1926951f788aSEric Dumazet rcu_read_unlock(); 1927d4bea421SDavid Ahern 1928d52d3997SMartin KaFai Lau return pcpu_rt; 1929d52d3997SMartin KaFai Lau } 1930c71099acSThomas Graf } 19319ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1932c71099acSThomas Graf 1933b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1934b75cc8f9SDavid Ahern struct fib6_table *table, 1935b75cc8f9SDavid Ahern struct flowi6 *fl6, 1936b75cc8f9SDavid Ahern const struct sk_buff *skb, 1937b75cc8f9SDavid Ahern int flags) 19384acad72dSPavel Emelyanov { 1939b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19404acad72dSPavel Emelyanov } 19414acad72dSPavel Emelyanov 1942d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 194372331bc0SShmulik Ladkani struct net_device *dev, 1944b75cc8f9SDavid Ahern struct flowi6 *fl6, 1945b75cc8f9SDavid Ahern const struct sk_buff *skb, 1946b75cc8f9SDavid Ahern int flags) 194772331bc0SShmulik Ladkani { 194872331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 194972331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 195072331bc0SShmulik Ladkani 1951b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 195272331bc0SShmulik Ladkani } 1953d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 195472331bc0SShmulik Ladkani 195523aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19565e5d6fedSRoopa Prabhu struct flow_keys *keys, 19575e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 195823aebdacSJakub Sitnicki { 195923aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 196023aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19615e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 196223aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 196323aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 196423aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1965cea67a2dSEric Dumazet struct icmp6hdr _icmph; 196623aebdacSJakub Sitnicki 196723aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 196823aebdacSJakub Sitnicki goto out; 196923aebdacSJakub Sitnicki 1970cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1971cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1972cea67a2dSEric Dumazet if (!icmph) 1973cea67a2dSEric Dumazet goto out; 1974cea67a2dSEric Dumazet 197523aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 197623aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 197723aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 197823aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 197923aebdacSJakub Sitnicki goto out; 198023aebdacSJakub Sitnicki 198123aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 198223aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 198323aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 198423aebdacSJakub Sitnicki if (!inner_iph) 198523aebdacSJakub Sitnicki goto out; 198623aebdacSJakub Sitnicki 198723aebdacSJakub Sitnicki key_iph = inner_iph; 19885e5d6fedSRoopa Prabhu _flkeys = NULL; 198923aebdacSJakub Sitnicki out: 19905e5d6fedSRoopa Prabhu if (_flkeys) { 19915e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19925e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19935e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19945e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19955e5d6fedSRoopa Prabhu } else { 199623aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 199723aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1998fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 199923aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 200023aebdacSJakub Sitnicki } 20015e5d6fedSRoopa Prabhu } 200223aebdacSJakub Sitnicki 200323aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 2004b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 2005b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 200623aebdacSJakub Sitnicki { 200723aebdacSJakub Sitnicki struct flow_keys hash_keys; 20089a2a537aSDavid Ahern u32 mhash; 200923aebdacSJakub Sitnicki 2010bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 2011b4bac172SDavid Ahern case 0: 20126f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 20136f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 20149a2a537aSDavid Ahern if (skb) { 20155e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 20169a2a537aSDavid Ahern } else { 20179a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 20189a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2019fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 20209a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 202123aebdacSJakub Sitnicki } 2022b4bac172SDavid Ahern break; 2023b4bac172SDavid Ahern case 1: 2024b4bac172SDavid Ahern if (skb) { 2025b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2026b4bac172SDavid Ahern struct flow_keys keys; 2027b4bac172SDavid Ahern 2028b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2029b4bac172SDavid Ahern if (skb->l4_hash) 2030b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2031b4bac172SDavid Ahern 2032b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2033b4bac172SDavid Ahern 2034b4bac172SDavid Ahern if (!flkeys) { 2035b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2036b4bac172SDavid Ahern flkeys = &keys; 2037b4bac172SDavid Ahern } 2038b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2039b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2040b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2041b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2042b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2043b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2044b4bac172SDavid Ahern } else { 2045b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2046b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2047b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2048b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2049b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2050b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2051b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2052b4bac172SDavid Ahern } 2053b4bac172SDavid Ahern break; 2054b4bac172SDavid Ahern } 20559a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 205623aebdacSJakub Sitnicki 20579a2a537aSDavid Ahern return mhash >> 1; 205823aebdacSJakub Sitnicki } 205923aebdacSJakub Sitnicki 2060c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2061c71099acSThomas Graf { 2062b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2063c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2064adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2065904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20664c9483b2SDavid S. Miller struct flowi6 fl6 = { 2067e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20684c9483b2SDavid S. Miller .daddr = iph->daddr, 20694c9483b2SDavid S. Miller .saddr = iph->saddr, 20706502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20714c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20724c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2073c71099acSThomas Graf }; 20745e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2075adaa70bbSThomas Graf 2076904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 207746fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2078904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20795e5d6fedSRoopa Prabhu 20805e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20815e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20825e5d6fedSRoopa Prabhu 208323aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2084b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 208506e9d040SJiri Benc skb_dst_drop(skb); 2086b75cc8f9SDavid Ahern skb_dst_set(skb, 2087b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2088c71099acSThomas Graf } 2089c71099acSThomas Graf 2090b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2091b75cc8f9SDavid Ahern struct fib6_table *table, 2092b75cc8f9SDavid Ahern struct flowi6 *fl6, 2093b75cc8f9SDavid Ahern const struct sk_buff *skb, 2094b75cc8f9SDavid Ahern int flags) 2095c71099acSThomas Graf { 2096b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2097c71099acSThomas Graf } 2098c71099acSThomas Graf 20996f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 21006f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2101c71099acSThomas Graf { 2102d46a9d67SDavid Ahern bool any_src; 2103c71099acSThomas Graf 21043ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 21053ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 21064c1feac5SDavid Ahern struct dst_entry *dst; 21074c1feac5SDavid Ahern 21084c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2109ca254490SDavid Ahern if (dst) 2110ca254490SDavid Ahern return dst; 21114c1feac5SDavid Ahern } 2112ca254490SDavid Ahern 21131fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 21144dc27d1cSDavid McCullough 2115d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2116741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2117d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 211877d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2119c71099acSThomas Graf 2120d46a9d67SDavid Ahern if (!any_src) 2121adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 21220c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21230c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2124adaa70bbSThomas Graf 2125b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21261da177e4SLinus Torvalds } 21276f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21281da177e4SLinus Torvalds 21292774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 213014e50e57SDavid S. Miller { 21315c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21321dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 213314e50e57SDavid S. Miller struct dst_entry *new = NULL; 213414e50e57SDavid S. Miller 21351dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 213662cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 213714e50e57SDavid S. Miller if (rt) { 21380a1f5962SMartin KaFai Lau rt6_info_init(rt); 213981eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21400a1f5962SMartin KaFai Lau 2141d8d1f30bSChangli Gao new = &rt->dst; 214214e50e57SDavid S. Miller new->__use = 1; 2143352e512cSHerbert Xu new->input = dst_discard; 2144ede2059dSEric W. Biederman new->output = dst_discard_out; 214514e50e57SDavid S. Miller 2146defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 214714e50e57SDavid S. Miller 21481dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21494e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21500a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 215114e50e57SDavid S. Miller 215214e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 215314e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 215414e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 215514e50e57SDavid S. Miller #endif 215614e50e57SDavid S. Miller } 215714e50e57SDavid S. Miller 215869ead7afSDavid S. Miller dst_release(dst_orig); 215969ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 216014e50e57SDavid S. Miller } 216114e50e57SDavid S. Miller 21621da177e4SLinus Torvalds /* 21631da177e4SLinus Torvalds * Destination cache support functions 21641da177e4SLinus Torvalds */ 21651da177e4SLinus Torvalds 21668d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21673da59bd9SMartin KaFai Lau { 216836143645SSteffen Klassert u32 rt_cookie = 0; 2169c5cff856SWei Wang 21708ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 217193531c67SDavid Ahern return false; 217293531c67SDavid Ahern 217393531c67SDavid Ahern if (fib6_check_expired(f6i)) 217493531c67SDavid Ahern return false; 217593531c67SDavid Ahern 217693531c67SDavid Ahern return true; 217793531c67SDavid Ahern } 217893531c67SDavid Ahern 2179a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2180a68886a6SDavid Ahern struct fib6_info *from, 2181a68886a6SDavid Ahern u32 cookie) 21823da59bd9SMartin KaFai Lau { 2183c5cff856SWei Wang u32 rt_cookie = 0; 2184c5cff856SWei Wang 2185a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 218693531c67SDavid Ahern rt_cookie != cookie) 21873da59bd9SMartin KaFai Lau return NULL; 21883da59bd9SMartin KaFai Lau 21893da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21903da59bd9SMartin KaFai Lau return NULL; 21913da59bd9SMartin KaFai Lau 21923da59bd9SMartin KaFai Lau return &rt->dst; 21933da59bd9SMartin KaFai Lau } 21943da59bd9SMartin KaFai Lau 2195a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2196a68886a6SDavid Ahern struct fib6_info *from, 2197a68886a6SDavid Ahern u32 cookie) 21983da59bd9SMartin KaFai Lau { 21995973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 22005973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2201a68886a6SDavid Ahern fib6_check(from, cookie)) 22023da59bd9SMartin KaFai Lau return &rt->dst; 22033da59bd9SMartin KaFai Lau else 22043da59bd9SMartin KaFai Lau return NULL; 22053da59bd9SMartin KaFai Lau } 22063da59bd9SMartin KaFai Lau 22071da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 22081da177e4SLinus Torvalds { 2209a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2210a68886a6SDavid Ahern struct fib6_info *from; 22111da177e4SLinus Torvalds struct rt6_info *rt; 22121da177e4SLinus Torvalds 2213a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2214a87b7dc9SDavid Ahern 2215a87b7dc9SDavid Ahern rcu_read_lock(); 22161da177e4SLinus Torvalds 22176f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 22186f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 22196f3118b5SNicolas Dichtel * into this function always. 22206f3118b5SNicolas Dichtel */ 2221e3bc10bdSHannes Frederic Sowa 2222a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22234b32b5adSMartin KaFai Lau 2224a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2225a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2226a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22273da59bd9SMartin KaFai Lau else 2228a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2229a87b7dc9SDavid Ahern 2230a87b7dc9SDavid Ahern rcu_read_unlock(); 2231a87b7dc9SDavid Ahern 2232a87b7dc9SDavid Ahern return dst_ret; 22331da177e4SLinus Torvalds } 22341da177e4SLinus Torvalds 22351da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22361da177e4SLinus Torvalds { 22371da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22381da177e4SLinus Torvalds 22391da177e4SLinus Torvalds if (rt) { 224054c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2241c3c14da0SDavid Ahern rcu_read_lock(); 224254c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 224393531c67SDavid Ahern rt6_remove_exception_rt(rt); 224454c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22451da177e4SLinus Torvalds } 2246c3c14da0SDavid Ahern rcu_read_unlock(); 224754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 224854c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 224954c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 225054c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 225154c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 225254c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22531da177e4SLinus Torvalds } 22541da177e4SLinus Torvalds 22551da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22561da177e4SLinus Torvalds { 22571da177e4SLinus Torvalds struct rt6_info *rt; 22581da177e4SLinus Torvalds 22593ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22601da177e4SLinus Torvalds 2261adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22621da177e4SLinus Torvalds if (rt) { 22638a14e46fSDavid Ahern rcu_read_lock(); 22641eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 226593531c67SDavid Ahern rt6_remove_exception_rt(rt); 2266c5cff856SWei Wang } else { 2267a68886a6SDavid Ahern struct fib6_info *from; 2268c5cff856SWei Wang struct fib6_node *fn; 2269c5cff856SWei Wang 2270a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2271a68886a6SDavid Ahern if (from) { 2272a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2273c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2274c5cff856SWei Wang fn->fn_sernum = -1; 2275a68886a6SDavid Ahern } 22761da177e4SLinus Torvalds } 22771da177e4SLinus Torvalds rcu_read_unlock(); 22781da177e4SLinus Torvalds } 22791da177e4SLinus Torvalds } 22801da177e4SLinus Torvalds 22816a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22826a3e030fSDavid Ahern { 2283a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2284a68886a6SDavid Ahern struct fib6_info *from; 2285a68886a6SDavid Ahern 2286a68886a6SDavid Ahern rcu_read_lock(); 2287a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2288a68886a6SDavid Ahern if (from) 2289a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2290a68886a6SDavid Ahern rcu_read_unlock(); 2291a68886a6SDavid Ahern } 22926a3e030fSDavid Ahern 22936a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22946a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22956700c270SDavid S. Miller } 22961da177e4SLinus Torvalds 229745e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 229845e4fd26SMartin KaFai Lau { 229945e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 230045e4fd26SMartin KaFai Lau 2301d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 230245e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 230345e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 230445e4fd26SMartin KaFai Lau } 230545e4fd26SMartin KaFai Lau 23060d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 23070d3f6d29SMartin KaFai Lau { 23080d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 23091490ed2aSPaolo Abeni (rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from)); 23100d3f6d29SMartin KaFai Lau } 23110d3f6d29SMartin KaFai Lau 231245e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 231345e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 23141da177e4SLinus Torvalds { 23150dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23161da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23171da177e4SLinus Torvalds 231819bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 231919bda36cSXin Long return; 232019bda36cSXin Long 232145e4fd26SMartin KaFai Lau if (iph) { 232245e4fd26SMartin KaFai Lau daddr = &iph->daddr; 232345e4fd26SMartin KaFai Lau saddr = &iph->saddr; 232445e4fd26SMartin KaFai Lau } else if (sk) { 232545e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 232645e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 232745e4fd26SMartin KaFai Lau } else { 23280dec879fSJulian Anastasov daddr = NULL; 23290dec879fSJulian Anastasov saddr = NULL; 23301da177e4SLinus Torvalds } 23310dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23320dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23330dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23340dec879fSJulian Anastasov return; 23350dec879fSJulian Anastasov 23360dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23370dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23382b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23392b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23402b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23410dec879fSJulian Anastasov } else if (daddr) { 234285bd05deSDavid Ahern struct fib6_result res = {}; 23430dec879fSJulian Anastasov struct rt6_info *nrt6; 23440dec879fSJulian Anastasov 23454d85cd0cSDavid Ahern rcu_read_lock(); 234685bd05deSDavid Ahern res.f6i = rcu_dereference(rt6->from); 234785bd05deSDavid Ahern if (!res.f6i) { 23489c69a132SJonathan Lemon rcu_read_unlock(); 23499c69a132SJonathan Lemon return; 23509c69a132SJonathan Lemon } 235185bd05deSDavid Ahern res.nh = &res.f6i->fib6_nh; 235285bd05deSDavid Ahern nrt6 = ip6_rt_cache_alloc(&res, daddr, saddr); 235345e4fd26SMartin KaFai Lau if (nrt6) { 235445e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 235585bd05deSDavid Ahern if (rt6_insert_exception(nrt6, res.f6i)) 23562b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 235745e4fd26SMartin KaFai Lau } 2358a68886a6SDavid Ahern rcu_read_unlock(); 235945e4fd26SMartin KaFai Lau } 236045e4fd26SMartin KaFai Lau } 236145e4fd26SMartin KaFai Lau 236245e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 236345e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 236445e4fd26SMartin KaFai Lau { 236545e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23661da177e4SLinus Torvalds } 23671da177e4SLinus Torvalds 236842ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2369e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 237081aded24SDavid S. Miller { 237181aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 237281aded24SDavid S. Miller struct dst_entry *dst; 2373dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2374dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2375dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2376dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2377dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2378dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2379dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2380dc92095dSMaciej Żenczykowski }; 238181aded24SDavid S. Miller 238281aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 238381aded24SDavid S. Miller if (!dst->error) 238445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 238581aded24SDavid S. Miller dst_release(dst); 238681aded24SDavid S. Miller } 238781aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 238881aded24SDavid S. Miller 238981aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 239081aded24SDavid S. Miller { 23917ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 239233c162a9SMartin KaFai Lau struct dst_entry *dst; 239333c162a9SMartin KaFai Lau 23947ddacfa5SDavid Ahern if (!oif && skb->dev) 23957ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 23967ddacfa5SDavid Ahern 23977ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 239833c162a9SMartin KaFai Lau 239933c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 240033c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 240133c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 240233c162a9SMartin KaFai Lau return; 240333c162a9SMartin KaFai Lau 240433c162a9SMartin KaFai Lau bh_lock_sock(sk); 240533c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 240633c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 240733c162a9SMartin KaFai Lau bh_unlock_sock(sk); 240881aded24SDavid S. Miller } 240981aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 241081aded24SDavid S. Miller 24117d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 24127d6850f7SAlexey Kodanev const struct flowi6 *fl6) 24137d6850f7SAlexey Kodanev { 24147d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24157d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 24167d6850f7SAlexey Kodanev #endif 24177d6850f7SAlexey Kodanev 24187d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 24197d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 24207d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 24217d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24227d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24237d6850f7SAlexey Kodanev &np->saddr : 24247d6850f7SAlexey Kodanev #endif 24257d6850f7SAlexey Kodanev NULL); 24267d6850f7SAlexey Kodanev } 24277d6850f7SAlexey Kodanev 24289b6b35abSDavid Ahern static bool ip6_redirect_nh_match(const struct fib6_result *res, 24290b34eb00SDavid Ahern struct flowi6 *fl6, 24300b34eb00SDavid Ahern const struct in6_addr *gw, 24310b34eb00SDavid Ahern struct rt6_info **ret) 24320b34eb00SDavid Ahern { 24339b6b35abSDavid Ahern const struct fib6_nh *nh = res->nh; 24349b6b35abSDavid Ahern 24350b34eb00SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD || !nh->fib_nh_gw_family || 24360b34eb00SDavid Ahern fl6->flowi6_oif != nh->fib_nh_dev->ifindex) 24370b34eb00SDavid Ahern return false; 24380b34eb00SDavid Ahern 24390b34eb00SDavid Ahern /* rt_cache's gateway might be different from its 'parent' 24400b34eb00SDavid Ahern * in the case of an ip redirect. 24410b34eb00SDavid Ahern * So we keep searching in the exception table if the gateway 24420b34eb00SDavid Ahern * is different. 24430b34eb00SDavid Ahern */ 24440b34eb00SDavid Ahern if (!ipv6_addr_equal(gw, &nh->fib_nh_gw6)) { 24450b34eb00SDavid Ahern struct rt6_info *rt_cache; 24460b34eb00SDavid Ahern 24479b6b35abSDavid Ahern rt_cache = rt6_find_cached_rt(res, &fl6->daddr, &fl6->saddr); 24480b34eb00SDavid Ahern if (rt_cache && 24490b34eb00SDavid Ahern ipv6_addr_equal(gw, &rt_cache->rt6i_gateway)) { 24500b34eb00SDavid Ahern *ret = rt_cache; 24510b34eb00SDavid Ahern return true; 24520b34eb00SDavid Ahern } 24530b34eb00SDavid Ahern return false; 24540b34eb00SDavid Ahern } 24550b34eb00SDavid Ahern return true; 24560b34eb00SDavid Ahern } 24570b34eb00SDavid Ahern 2458b55b76b2SDuan Jiong /* Handle redirects */ 2459b55b76b2SDuan Jiong struct ip6rd_flowi { 2460b55b76b2SDuan Jiong struct flowi6 fl6; 2461b55b76b2SDuan Jiong struct in6_addr gateway; 2462b55b76b2SDuan Jiong }; 2463b55b76b2SDuan Jiong 2464b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2465b55b76b2SDuan Jiong struct fib6_table *table, 2466b55b76b2SDuan Jiong struct flowi6 *fl6, 2467b75cc8f9SDavid Ahern const struct sk_buff *skb, 2468b55b76b2SDuan Jiong int flags) 2469b55b76b2SDuan Jiong { 2470b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 24710b34eb00SDavid Ahern struct rt6_info *ret = NULL; 24729b6b35abSDavid Ahern struct fib6_result res = {}; 24738d1c802bSDavid Ahern struct fib6_info *rt; 2474b55b76b2SDuan Jiong struct fib6_node *fn; 2475b55b76b2SDuan Jiong 2476b55b76b2SDuan Jiong /* Get the "current" route for this destination and 247767c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2478b55b76b2SDuan Jiong * 2479b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2480b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2481b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2482b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2483b55b76b2SDuan Jiong * routes. 2484b55b76b2SDuan Jiong */ 2485b55b76b2SDuan Jiong 248666f5d6ceSWei Wang rcu_read_lock(); 24876454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2488b55b76b2SDuan Jiong restart: 248966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24909b6b35abSDavid Ahern res.f6i = rt; 24919b6b35abSDavid Ahern res.nh = &rt->fib6_nh; 24929b6b35abSDavid Ahern 249314895687SDavid Ahern if (fib6_check_expired(rt)) 2494b55b76b2SDuan Jiong continue; 249593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2496b55b76b2SDuan Jiong break; 24979b6b35abSDavid Ahern if (ip6_redirect_nh_match(&res, fl6, &rdfl->gateway, &ret)) 24980b34eb00SDavid Ahern goto out; 2499b55b76b2SDuan Jiong } 2500b55b76b2SDuan Jiong 2501b55b76b2SDuan Jiong if (!rt) 2502421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 250393c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 250423fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2505b0a1ba59SMartin KaFai Lau goto out; 2506b0a1ba59SMartin KaFai Lau } 2507b0a1ba59SMartin KaFai Lau 2508421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2509a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2510a3c00e46SMartin KaFai Lau if (fn) 2511a3c00e46SMartin KaFai Lau goto restart; 2512b55b76b2SDuan Jiong } 2513a3c00e46SMartin KaFai Lau 25149b6b35abSDavid Ahern res.f6i = rt; 25159b6b35abSDavid Ahern res.nh = &rt->fib6_nh; 2516b0a1ba59SMartin KaFai Lau out: 251723fb93a4SDavid Ahern if (ret) 251810585b43SDavid Ahern ip6_hold_safe(net, &ret); 251923fb93a4SDavid Ahern else 25209b6b35abSDavid Ahern ret = ip6_create_rt_rcu(&res); 2521b55b76b2SDuan Jiong 252266f5d6ceSWei Wang rcu_read_unlock(); 2523b55b76b2SDuan Jiong 2524b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 252523fb93a4SDavid Ahern return ret; 2526b55b76b2SDuan Jiong }; 2527b55b76b2SDuan Jiong 2528b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2529b55b76b2SDuan Jiong const struct flowi6 *fl6, 2530b75cc8f9SDavid Ahern const struct sk_buff *skb, 2531b55b76b2SDuan Jiong const struct in6_addr *gateway) 2532b55b76b2SDuan Jiong { 2533b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2534b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2535b55b76b2SDuan Jiong 2536b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2537b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2538b55b76b2SDuan Jiong 2539b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2540b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2541b55b76b2SDuan Jiong } 2542b55b76b2SDuan Jiong 2543e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2544e2d118a1SLorenzo Colitti kuid_t uid) 25453a5ad2eeSDavid S. Miller { 25463a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25473a5ad2eeSDavid S. Miller struct dst_entry *dst; 25481f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25491f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25501f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25511f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25521f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25531f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25541f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25551f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25561f7f10acSMaciej Żenczykowski }; 25573a5ad2eeSDavid S. Miller 2558b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25596700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25603a5ad2eeSDavid S. Miller dst_release(dst); 25613a5ad2eeSDavid S. Miller } 25623a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25633a5ad2eeSDavid S. Miller 2564d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2565c92a59ecSDuan Jiong { 2566c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2567c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2568c92a59ecSDuan Jiong struct dst_entry *dst; 25690b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25700b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25710b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25720b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25730b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25740b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25750b26fb17SMaciej Żenczykowski }; 2576c92a59ecSDuan Jiong 2577b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2578c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2579c92a59ecSDuan Jiong dst_release(dst); 2580c92a59ecSDuan Jiong } 2581c92a59ecSDuan Jiong 25823a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25833a5ad2eeSDavid S. Miller { 2584e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2585e2d118a1SLorenzo Colitti sk->sk_uid); 25863a5ad2eeSDavid S. Miller } 25873a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25883a5ad2eeSDavid S. Miller 25890dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25901da177e4SLinus Torvalds { 25910dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25920dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25930dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25940dbaee3bSDavid S. Miller 25951da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25961da177e4SLinus Torvalds 25975578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25985578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25991da177e4SLinus Torvalds 26001da177e4SLinus Torvalds /* 26011da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 26021da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 26031da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 26041da177e4SLinus Torvalds * rely only on pmtu discovery" 26051da177e4SLinus Torvalds */ 26061da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 26071da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 26081da177e4SLinus Torvalds return mtu; 26091da177e4SLinus Torvalds } 26101da177e4SLinus Torvalds 2611ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2612d33e4553SDavid S. Miller { 2613d33e4553SDavid S. Miller struct inet6_dev *idev; 2614d4ead6b3SDavid Ahern unsigned int mtu; 2615618f9bc7SSteffen Klassert 26164b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 26174b32b5adSMartin KaFai Lau if (mtu) 26184b32b5adSMartin KaFai Lau goto out; 26194b32b5adSMartin KaFai Lau 2620618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2621d33e4553SDavid S. Miller 2622d33e4553SDavid S. Miller rcu_read_lock(); 2623d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2624d33e4553SDavid S. Miller if (idev) 2625d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2626d33e4553SDavid S. Miller rcu_read_unlock(); 2627d33e4553SDavid S. Miller 262830f78d8eSEric Dumazet out: 262914972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 263014972cbdSRoopa Prabhu 263114972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2632d33e4553SDavid S. Miller } 2633d33e4553SDavid S. Miller 2634901731b8SDavid Ahern /* MTU selection: 2635901731b8SDavid Ahern * 1. mtu on route is locked - use it 2636901731b8SDavid Ahern * 2. mtu from nexthop exception 2637901731b8SDavid Ahern * 3. mtu from egress device 2638901731b8SDavid Ahern * 2639901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2640901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2641901731b8SDavid Ahern */ 2642901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2643901731b8SDavid Ahern struct in6_addr *saddr) 2644901731b8SDavid Ahern { 2645901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2646901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2647901731b8SDavid Ahern struct in6_addr *src_key; 2648901731b8SDavid Ahern struct inet6_dev *idev; 2649901731b8SDavid Ahern u32 mtu = 0; 2650901731b8SDavid Ahern 2651901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2652901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2653901731b8SDavid Ahern if (mtu) 2654901731b8SDavid Ahern goto out; 2655901731b8SDavid Ahern } 2656901731b8SDavid Ahern 2657901731b8SDavid Ahern src_key = NULL; 2658901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2659901731b8SDavid Ahern if (f6i->fib6_src.plen) 2660901731b8SDavid Ahern src_key = saddr; 2661901731b8SDavid Ahern #endif 2662901731b8SDavid Ahern 2663901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2664901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2665901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2666901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2667901731b8SDavid Ahern 2668901731b8SDavid Ahern if (likely(!mtu)) { 2669901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2670901731b8SDavid Ahern 2671901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2672901731b8SDavid Ahern idev = __in6_dev_get(dev); 2673901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2674901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2675901731b8SDavid Ahern } 2676901731b8SDavid Ahern 2677901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2678901731b8SDavid Ahern out: 2679901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2680901731b8SDavid Ahern } 2681901731b8SDavid Ahern 26823b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 268387a11578SDavid S. Miller struct flowi6 *fl6) 26841da177e4SLinus Torvalds { 268587a11578SDavid S. Miller struct dst_entry *dst; 26861da177e4SLinus Torvalds struct rt6_info *rt; 26871da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2688c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26891da177e4SLinus Torvalds 269038308473SDavid S. Miller if (unlikely(!idev)) 2691122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26921da177e4SLinus Torvalds 2693ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 269438308473SDavid S. Miller if (unlikely(!rt)) { 26951da177e4SLinus Torvalds in6_dev_put(idev); 269687a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26971da177e4SLinus Torvalds goto out; 26981da177e4SLinus Torvalds } 26991da177e4SLinus Torvalds 27008e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2701588753f1SBrendan McGrath rt->dst.input = ip6_input; 27028e2ec639SYan, Zheng rt->dst.output = ip6_output; 2703550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 270487a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 27058e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 27068e2ec639SYan, Zheng rt->rt6i_idev = idev; 270714edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 27081da177e4SLinus Torvalds 27094c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2710587fea74SWei Wang * do proper release of the net_device 2711587fea74SWei Wang */ 2712587fea74SWei Wang rt6_uncached_list_add(rt); 271381eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 27141da177e4SLinus Torvalds 271587a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 271687a11578SDavid S. Miller 27171da177e4SLinus Torvalds out: 271887a11578SDavid S. Miller return dst; 27191da177e4SLinus Torvalds } 27201da177e4SLinus Torvalds 2721569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 27221da177e4SLinus Torvalds { 272386393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 27247019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 27257019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 27267019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 27277019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 27287019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2729fc66f95cSEric Dumazet int entries; 27301da177e4SLinus Torvalds 2731fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 273249a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2733fc66f95cSEric Dumazet entries <= rt_max_size) 27341da177e4SLinus Torvalds goto out; 27351da177e4SLinus Torvalds 27366891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 273714956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2738fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2739fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27407019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27411da177e4SLinus Torvalds out: 27427019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2743fc66f95cSEric Dumazet return entries > rt_max_size; 27441da177e4SLinus Torvalds } 27451da177e4SLinus Torvalds 27468c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27478c14586fSDavid Ahern struct fib6_config *cfg, 2748f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2749f4797b33SDavid Ahern u32 tbid, int flags) 27508c14586fSDavid Ahern { 27518c14586fSDavid Ahern struct flowi6 fl6 = { 27528c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27538c14586fSDavid Ahern .daddr = *gw_addr, 27548c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27558c14586fSDavid Ahern }; 27568c14586fSDavid Ahern struct fib6_table *table; 27578c14586fSDavid Ahern struct rt6_info *rt; 27588c14586fSDavid Ahern 2759f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27608c14586fSDavid Ahern if (!table) 27618c14586fSDavid Ahern return NULL; 27628c14586fSDavid Ahern 27638c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27648c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27658c14586fSDavid Ahern 2766f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2767b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27688c14586fSDavid Ahern 27698c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27708c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27718c14586fSDavid Ahern ip6_rt_put(rt); 27728c14586fSDavid Ahern rt = NULL; 27738c14586fSDavid Ahern } 27748c14586fSDavid Ahern 27758c14586fSDavid Ahern return rt; 27768c14586fSDavid Ahern } 27778c14586fSDavid Ahern 2778fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2779fc1e64e1SDavid Ahern struct fib6_config *cfg, 27809fbb704cSDavid Ahern const struct net_device *dev, 2781fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2782fc1e64e1SDavid Ahern { 278344750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2784fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2785fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2786bf1dc8baSPaolo Abeni struct fib6_info *from; 2787fc1e64e1SDavid Ahern struct rt6_info *grt; 2788fc1e64e1SDavid Ahern int err; 2789fc1e64e1SDavid Ahern 2790fc1e64e1SDavid Ahern err = 0; 2791fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2792fc1e64e1SDavid Ahern if (grt) { 2793bf1dc8baSPaolo Abeni rcu_read_lock(); 2794bf1dc8baSPaolo Abeni from = rcu_dereference(grt->from); 279558e354c0SDavid Ahern if (!grt->dst.error && 27964ed591c8SDavid Ahern /* ignore match if it is the default route */ 2797bf1dc8baSPaolo Abeni from && !ipv6_addr_any(&from->fib6_dst.addr) && 279858e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 279944750f84SDavid Ahern NL_SET_ERR_MSG(extack, 280044750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2801fc1e64e1SDavid Ahern err = -EINVAL; 2802fc1e64e1SDavid Ahern } 2803bf1dc8baSPaolo Abeni rcu_read_unlock(); 2804fc1e64e1SDavid Ahern 2805fc1e64e1SDavid Ahern ip6_rt_put(grt); 2806fc1e64e1SDavid Ahern } 2807fc1e64e1SDavid Ahern 2808fc1e64e1SDavid Ahern return err; 2809fc1e64e1SDavid Ahern } 2810fc1e64e1SDavid Ahern 28111edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 28121edce99fSDavid Ahern struct fib6_config *cfg, 28131edce99fSDavid Ahern struct net_device **_dev, 28141edce99fSDavid Ahern struct inet6_dev **idev) 28151edce99fSDavid Ahern { 28161edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28171edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 28181edce99fSDavid Ahern struct rt6_info *grt = NULL; 28191edce99fSDavid Ahern int err = -EHOSTUNREACH; 28201edce99fSDavid Ahern 28211edce99fSDavid Ahern if (cfg->fc_table) { 2822f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2823f4797b33SDavid Ahern 2824f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2825f4797b33SDavid Ahern cfg->fc_table, flags); 28261edce99fSDavid Ahern if (grt) { 28271edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28281edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28291edce99fSDavid Ahern ip6_rt_put(grt); 28301edce99fSDavid Ahern grt = NULL; 28311edce99fSDavid Ahern } 28321edce99fSDavid Ahern } 28331edce99fSDavid Ahern } 28341edce99fSDavid Ahern 28351edce99fSDavid Ahern if (!grt) 2836b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28371edce99fSDavid Ahern 28381edce99fSDavid Ahern if (!grt) 28391edce99fSDavid Ahern goto out; 28401edce99fSDavid Ahern 28411edce99fSDavid Ahern if (dev) { 28421edce99fSDavid Ahern if (dev != grt->dst.dev) { 28431edce99fSDavid Ahern ip6_rt_put(grt); 28441edce99fSDavid Ahern goto out; 28451edce99fSDavid Ahern } 28461edce99fSDavid Ahern } else { 28471edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28481edce99fSDavid Ahern *idev = grt->rt6i_idev; 28491edce99fSDavid Ahern dev_hold(dev); 28501edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28511edce99fSDavid Ahern } 28521edce99fSDavid Ahern 28531edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28541edce99fSDavid Ahern err = 0; 28551edce99fSDavid Ahern 28561edce99fSDavid Ahern ip6_rt_put(grt); 28571edce99fSDavid Ahern 28581edce99fSDavid Ahern out: 28591edce99fSDavid Ahern return err; 28601edce99fSDavid Ahern } 28611edce99fSDavid Ahern 28629fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28639fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28649fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28659fbb704cSDavid Ahern { 28669fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28679fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2868232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28699fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2870232378e8SDavid Ahern bool need_addr_check = !dev; 28719fbb704cSDavid Ahern int err = -EINVAL; 28729fbb704cSDavid Ahern 28739fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28749fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28759fbb704cSDavid Ahern * will return already-added prefix route via interface that 28769fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28779fbb704cSDavid Ahern */ 2878232378e8SDavid Ahern if (dev && 2879232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2880232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28819fbb704cSDavid Ahern goto out; 28829fbb704cSDavid Ahern } 28839fbb704cSDavid Ahern 28849fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28859fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28869fbb704cSDavid Ahern * addresses as nexthop address. 28879fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28889fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28899fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28909fbb704cSDavid Ahern * some exceptions. --ANK 28919fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28929fbb704cSDavid Ahern * addressing 28939fbb704cSDavid Ahern */ 28949fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28959fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28969fbb704cSDavid Ahern goto out; 28979fbb704cSDavid Ahern } 28989fbb704cSDavid Ahern 28999fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 29009fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 29019fbb704cSDavid Ahern else 29029fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 29039fbb704cSDavid Ahern 29049fbb704cSDavid Ahern if (err) 29059fbb704cSDavid Ahern goto out; 29069fbb704cSDavid Ahern } 29079fbb704cSDavid Ahern 29089fbb704cSDavid Ahern /* reload in case device was changed */ 29099fbb704cSDavid Ahern dev = *_dev; 29109fbb704cSDavid Ahern 29119fbb704cSDavid Ahern err = -EINVAL; 29129fbb704cSDavid Ahern if (!dev) { 29139fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 29149fbb704cSDavid Ahern goto out; 29159fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 29169fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 29179fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 29189fbb704cSDavid Ahern goto out; 29199fbb704cSDavid Ahern } 2920232378e8SDavid Ahern 2921232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2922232378e8SDavid Ahern * egress device has been resolved. 2923232378e8SDavid Ahern */ 2924232378e8SDavid Ahern if (need_addr_check && 2925232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2926232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2927232378e8SDavid Ahern goto out; 2928232378e8SDavid Ahern } 2929232378e8SDavid Ahern 29309fbb704cSDavid Ahern err = 0; 29319fbb704cSDavid Ahern out: 29329fbb704cSDavid Ahern return err; 29339fbb704cSDavid Ahern } 29349fbb704cSDavid Ahern 293583c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type) 293683c44251SDavid Ahern { 293783c44251SDavid Ahern if ((flags & RTF_REJECT) || 293883c44251SDavid Ahern (dev && (dev->flags & IFF_LOOPBACK) && 293983c44251SDavid Ahern !(addr_type & IPV6_ADDR_LOOPBACK) && 294083c44251SDavid Ahern !(flags & RTF_LOCAL))) 294183c44251SDavid Ahern return true; 294283c44251SDavid Ahern 294383c44251SDavid Ahern return false; 294483c44251SDavid Ahern } 294583c44251SDavid Ahern 294683c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh, 294783c44251SDavid Ahern struct fib6_config *cfg, gfp_t gfp_flags, 294883c44251SDavid Ahern struct netlink_ext_ack *extack) 294983c44251SDavid Ahern { 295083c44251SDavid Ahern struct net_device *dev = NULL; 295183c44251SDavid Ahern struct inet6_dev *idev = NULL; 295283c44251SDavid Ahern int addr_type; 295383c44251SDavid Ahern int err; 295483c44251SDavid Ahern 2955f1741730SDavid Ahern fib6_nh->fib_nh_family = AF_INET6; 2956f1741730SDavid Ahern 295783c44251SDavid Ahern err = -ENODEV; 295883c44251SDavid Ahern if (cfg->fc_ifindex) { 295983c44251SDavid Ahern dev = dev_get_by_index(net, cfg->fc_ifindex); 296083c44251SDavid Ahern if (!dev) 296183c44251SDavid Ahern goto out; 296283c44251SDavid Ahern idev = in6_dev_get(dev); 296383c44251SDavid Ahern if (!idev) 296483c44251SDavid Ahern goto out; 296583c44251SDavid Ahern } 296683c44251SDavid Ahern 296783c44251SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 296883c44251SDavid Ahern if (!dev) { 296983c44251SDavid Ahern NL_SET_ERR_MSG(extack, 297083c44251SDavid Ahern "Nexthop device required for onlink"); 297183c44251SDavid Ahern goto out; 297283c44251SDavid Ahern } 297383c44251SDavid Ahern 297483c44251SDavid Ahern if (!(dev->flags & IFF_UP)) { 297583c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 297683c44251SDavid Ahern err = -ENETDOWN; 297783c44251SDavid Ahern goto out; 297883c44251SDavid Ahern } 297983c44251SDavid Ahern 2980ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_ONLINK; 298183c44251SDavid Ahern } 298283c44251SDavid Ahern 2983ad1601aeSDavid Ahern fib6_nh->fib_nh_weight = 1; 298483c44251SDavid Ahern 298583c44251SDavid Ahern /* We cannot add true routes via loopback here, 298683c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 298783c44251SDavid Ahern */ 298883c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 298983c44251SDavid Ahern if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) { 299083c44251SDavid Ahern /* hold loopback dev/idev if we haven't done so. */ 299183c44251SDavid Ahern if (dev != net->loopback_dev) { 299283c44251SDavid Ahern if (dev) { 299383c44251SDavid Ahern dev_put(dev); 299483c44251SDavid Ahern in6_dev_put(idev); 299583c44251SDavid Ahern } 299683c44251SDavid Ahern dev = net->loopback_dev; 299783c44251SDavid Ahern dev_hold(dev); 299883c44251SDavid Ahern idev = in6_dev_get(dev); 299983c44251SDavid Ahern if (!idev) { 300083c44251SDavid Ahern err = -ENODEV; 300183c44251SDavid Ahern goto out; 300283c44251SDavid Ahern } 300383c44251SDavid Ahern } 300483c44251SDavid Ahern goto set_dev; 300583c44251SDavid Ahern } 300683c44251SDavid Ahern 300783c44251SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) { 300883c44251SDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 300983c44251SDavid Ahern if (err) 301083c44251SDavid Ahern goto out; 301183c44251SDavid Ahern 3012ad1601aeSDavid Ahern fib6_nh->fib_nh_gw6 = cfg->fc_gateway; 3013bdf00467SDavid Ahern fib6_nh->fib_nh_gw_family = AF_INET6; 301483c44251SDavid Ahern } 301583c44251SDavid Ahern 301683c44251SDavid Ahern err = -ENODEV; 301783c44251SDavid Ahern if (!dev) 301883c44251SDavid Ahern goto out; 301983c44251SDavid Ahern 302083c44251SDavid Ahern if (idev->cnf.disable_ipv6) { 302183c44251SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 302283c44251SDavid Ahern err = -EACCES; 302383c44251SDavid Ahern goto out; 302483c44251SDavid Ahern } 302583c44251SDavid Ahern 302683c44251SDavid Ahern if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) { 302783c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 302883c44251SDavid Ahern err = -ENETDOWN; 302983c44251SDavid Ahern goto out; 303083c44251SDavid Ahern } 303183c44251SDavid Ahern 303283c44251SDavid Ahern if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) && 303383c44251SDavid Ahern !netif_carrier_ok(dev)) 3034ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN; 303583c44251SDavid Ahern 3036979e276eSDavid Ahern err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap, 3037979e276eSDavid Ahern cfg->fc_encap_type, cfg, gfp_flags, extack); 3038979e276eSDavid Ahern if (err) 3039979e276eSDavid Ahern goto out; 304083c44251SDavid Ahern set_dev: 3041ad1601aeSDavid Ahern fib6_nh->fib_nh_dev = dev; 3042f1741730SDavid Ahern fib6_nh->fib_nh_oif = dev->ifindex; 304383c44251SDavid Ahern err = 0; 304483c44251SDavid Ahern out: 304583c44251SDavid Ahern if (idev) 304683c44251SDavid Ahern in6_dev_put(idev); 304783c44251SDavid Ahern 304883c44251SDavid Ahern if (err) { 3049ad1601aeSDavid Ahern lwtstate_put(fib6_nh->fib_nh_lws); 3050ad1601aeSDavid Ahern fib6_nh->fib_nh_lws = NULL; 305183c44251SDavid Ahern if (dev) 305283c44251SDavid Ahern dev_put(dev); 305383c44251SDavid Ahern } 305483c44251SDavid Ahern 305583c44251SDavid Ahern return err; 305683c44251SDavid Ahern } 305783c44251SDavid Ahern 3058dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh) 3059dac7d0f2SDavid Ahern { 3060979e276eSDavid Ahern fib_nh_common_release(&fib6_nh->nh_common); 3061dac7d0f2SDavid Ahern } 3062dac7d0f2SDavid Ahern 30638d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 3064acb54e3cSDavid Ahern gfp_t gfp_flags, 3065333c4301SDavid Ahern struct netlink_ext_ack *extack) 30661da177e4SLinus Torvalds { 30675578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 30688d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3069c71099acSThomas Graf struct fib6_table *table; 30708c5b83f0SRoopa Prabhu int err = -EINVAL; 307183c44251SDavid Ahern int addr_type; 30721da177e4SLinus Torvalds 3073557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 3074d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 3075d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 3076557c44beSDavid Ahern goto out; 3077d5d531cbSDavid Ahern } 3078557c44beSDavid Ahern 30792ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 30802ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 30812ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 30822ea2352eSWei Wang goto out; 30832ea2352eSWei Wang } 30842ea2352eSWei Wang 3085e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 3086e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 3087e8478e80SDavid Ahern goto out; 3088e8478e80SDavid Ahern } 3089e8478e80SDavid Ahern 3090d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 3091d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 30928c5b83f0SRoopa Prabhu goto out; 3093d5d531cbSDavid Ahern } 3094d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 3095d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 3096d5d531cbSDavid Ahern goto out; 3097d5d531cbSDavid Ahern } 30981da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 3099d5d531cbSDavid Ahern if (cfg->fc_src_len) { 3100d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 3101d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 31028c5b83f0SRoopa Prabhu goto out; 3103d5d531cbSDavid Ahern } 31041da177e4SLinus Torvalds #endif 3105fc1e64e1SDavid Ahern 3106c71099acSThomas Graf err = -ENOBUFS; 310738308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3108d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3109d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 311038308473SDavid S. Miller if (!table) { 3111f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3112d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3113d71314b4SMatti Vaittinen } 3114d71314b4SMatti Vaittinen } else { 3115d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3116d71314b4SMatti Vaittinen } 311738308473SDavid S. Miller 311838308473SDavid S. Miller if (!table) 3119c71099acSThomas Graf goto out; 3120c71099acSThomas Graf 31211da177e4SLinus Torvalds err = -ENOMEM; 312293531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 312393531c67SDavid Ahern if (!rt) 31241da177e4SLinus Torvalds goto out; 312593531c67SDavid Ahern 3126d7e774f3SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len, 3127d7e774f3SDavid Ahern extack); 3128767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 3129767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 3130fda21d46SEric Dumazet /* Do not leave garbage there. */ 3131fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 3132767a2217SDavid Ahern goto out; 3133767a2217SDavid Ahern } 3134767a2217SDavid Ahern 313593531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 313693531c67SDavid Ahern rt->dst_nocount = true; 31371da177e4SLinus Torvalds 31381716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 313914895687SDavid Ahern fib6_set_expires(rt, jiffies + 31401716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 31411716a961SGao feng else 314214895687SDavid Ahern fib6_clean_expires(rt); 31431da177e4SLinus Torvalds 314486872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 314586872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 314693c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 314786872cb5SThomas Graf 314883c44251SDavid Ahern rt->fib6_table = table; 314983c44251SDavid Ahern rt->fib6_metric = cfg->fc_metric; 315083c44251SDavid Ahern rt->fib6_type = cfg->fc_type; 31512b2450caSDavid Ahern rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY; 315219e42e45SRoopa Prabhu 315393c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 315493c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 315593c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 31563b6761d1SDavid Ahern rt->dst_host = true; 31571da177e4SLinus Torvalds 31581da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 315993c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 316093c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 31611da177e4SLinus Torvalds #endif 316283c44251SDavid Ahern err = fib6_nh_init(net, &rt->fib6_nh, cfg, gfp_flags, extack); 31631da177e4SLinus Torvalds if (err) 31641da177e4SLinus Torvalds goto out; 31659fbb704cSDavid Ahern 316683c44251SDavid Ahern /* We cannot add true routes via loopback here, 316783c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 316883c44251SDavid Ahern */ 316983c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 3170ad1601aeSDavid Ahern if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh.fib_nh_dev, addr_type)) 317183c44251SDavid Ahern rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP; 3172955ec4cbSDavid Ahern 3173c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 317483c44251SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 317583c44251SDavid Ahern 3176c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3177d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3178c3968a85SDaniel Walter err = -EINVAL; 3179c3968a85SDaniel Walter goto out; 3180c3968a85SDaniel Walter } 318193c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 318293c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3183c3968a85SDaniel Walter } else 318493c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3185c3968a85SDaniel Walter 31868c5b83f0SRoopa Prabhu return rt; 31871da177e4SLinus Torvalds out: 318893531c67SDavid Ahern fib6_info_release(rt); 31898c5b83f0SRoopa Prabhu return ERR_PTR(err); 31906b9ea5a6SRoopa Prabhu } 31916b9ea5a6SRoopa Prabhu 3192acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3193333c4301SDavid Ahern struct netlink_ext_ack *extack) 31946b9ea5a6SRoopa Prabhu { 31958d1c802bSDavid Ahern struct fib6_info *rt; 31966b9ea5a6SRoopa Prabhu int err; 31976b9ea5a6SRoopa Prabhu 3198acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3199d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3200d4ead6b3SDavid Ahern return PTR_ERR(rt); 32016b9ea5a6SRoopa Prabhu 3202d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 320393531c67SDavid Ahern fib6_info_release(rt); 32046b9ea5a6SRoopa Prabhu 32051da177e4SLinus Torvalds return err; 32061da177e4SLinus Torvalds } 32071da177e4SLinus Torvalds 32088d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 32091da177e4SLinus Torvalds { 3210afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3211c71099acSThomas Graf struct fib6_table *table; 3212afb1d4b5SDavid Ahern int err; 32131da177e4SLinus Torvalds 3214421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 32156825a26cSGao feng err = -ENOENT; 32166825a26cSGao feng goto out; 32176825a26cSGao feng } 32186c813a72SPatrick McHardy 321993c2fb25SDavid Ahern table = rt->fib6_table; 322066f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 322186872cb5SThomas Graf err = fib6_del(rt, info); 322266f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 32231da177e4SLinus Torvalds 32246825a26cSGao feng out: 322593531c67SDavid Ahern fib6_info_release(rt); 32261da177e4SLinus Torvalds return err; 32271da177e4SLinus Torvalds } 32281da177e4SLinus Torvalds 32298d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3230e0a1ad73SThomas Graf { 3231afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3232afb1d4b5SDavid Ahern 3233528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3234e0a1ad73SThomas Graf } 3235e0a1ad73SThomas Graf 32368d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 32370ae81335SDavid Ahern { 32380ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3239e3330039SWANG Cong struct net *net = info->nl_net; 324016a16cd3SDavid Ahern struct sk_buff *skb = NULL; 32410ae81335SDavid Ahern struct fib6_table *table; 3242e3330039SWANG Cong int err = -ENOENT; 32430ae81335SDavid Ahern 3244421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3245e3330039SWANG Cong goto out_put; 324693c2fb25SDavid Ahern table = rt->fib6_table; 324766f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32480ae81335SDavid Ahern 324993c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32508d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32510ae81335SDavid Ahern 325216a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 325316a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 325416a16cd3SDavid Ahern if (skb) { 325516a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 325616a16cd3SDavid Ahern 3257d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 325816a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 325916a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 326016a16cd3SDavid Ahern kfree_skb(skb); 326116a16cd3SDavid Ahern skb = NULL; 326216a16cd3SDavid Ahern } else 326316a16cd3SDavid Ahern info->skip_notify = 1; 326416a16cd3SDavid Ahern } 326516a16cd3SDavid Ahern 32660ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 326793c2fb25SDavid Ahern &rt->fib6_siblings, 326893c2fb25SDavid Ahern fib6_siblings) { 32690ae81335SDavid Ahern err = fib6_del(sibling, info); 32700ae81335SDavid Ahern if (err) 3271e3330039SWANG Cong goto out_unlock; 32720ae81335SDavid Ahern } 32730ae81335SDavid Ahern } 32740ae81335SDavid Ahern 32750ae81335SDavid Ahern err = fib6_del(rt, info); 3276e3330039SWANG Cong out_unlock: 327766f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3278e3330039SWANG Cong out_put: 327993531c67SDavid Ahern fib6_info_release(rt); 328016a16cd3SDavid Ahern 328116a16cd3SDavid Ahern if (skb) { 3282e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 328316a16cd3SDavid Ahern info->nlh, gfp_any()); 328416a16cd3SDavid Ahern } 32850ae81335SDavid Ahern return err; 32860ae81335SDavid Ahern } 32870ae81335SDavid Ahern 328823fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 328923fb93a4SDavid Ahern { 329023fb93a4SDavid Ahern int rc = -ESRCH; 329123fb93a4SDavid Ahern 329223fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 329323fb93a4SDavid Ahern goto out; 329423fb93a4SDavid Ahern 329523fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 329623fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 329723fb93a4SDavid Ahern goto out; 3298761f6026SXin Long 329923fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 330023fb93a4SDavid Ahern out: 330123fb93a4SDavid Ahern return rc; 330223fb93a4SDavid Ahern } 330323fb93a4SDavid Ahern 3304333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3305333c4301SDavid Ahern struct netlink_ext_ack *extack) 33061da177e4SLinus Torvalds { 33078d1c802bSDavid Ahern struct rt6_info *rt_cache; 3308c71099acSThomas Graf struct fib6_table *table; 33098d1c802bSDavid Ahern struct fib6_info *rt; 33101da177e4SLinus Torvalds struct fib6_node *fn; 33111da177e4SLinus Torvalds int err = -ESRCH; 33121da177e4SLinus Torvalds 33135578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3314d5d531cbSDavid Ahern if (!table) { 3315d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3316c71099acSThomas Graf return err; 3317d5d531cbSDavid Ahern } 33181da177e4SLinus Torvalds 331966f5d6ceSWei Wang rcu_read_lock(); 3320c71099acSThomas Graf 3321c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 332286872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 332338fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 33242b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 33251da177e4SLinus Torvalds 33261da177e4SLinus Torvalds if (fn) { 332766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3328ad1601aeSDavid Ahern struct fib6_nh *nh; 3329ad1601aeSDavid Ahern 33302b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 33317e4b5128SDavid Ahern struct fib6_result res = { 33327e4b5128SDavid Ahern .f6i = rt, 33337e4b5128SDavid Ahern }; 333423fb93a4SDavid Ahern int rc; 333523fb93a4SDavid Ahern 33367e4b5128SDavid Ahern rt_cache = rt6_find_cached_rt(&res, 33377e4b5128SDavid Ahern &cfg->fc_dst, 33382b760fcfSWei Wang &cfg->fc_src); 333923fb93a4SDavid Ahern if (rt_cache) { 334023fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 33419e575010SEric Dumazet if (rc != -ESRCH) { 33429e575010SEric Dumazet rcu_read_unlock(); 334323fb93a4SDavid Ahern return rc; 334423fb93a4SDavid Ahern } 33459e575010SEric Dumazet } 33461f56a01fSMartin KaFai Lau continue; 33472b760fcfSWei Wang } 3348ad1601aeSDavid Ahern 3349ad1601aeSDavid Ahern nh = &rt->fib6_nh; 335086872cb5SThomas Graf if (cfg->fc_ifindex && 3351ad1601aeSDavid Ahern (!nh->fib_nh_dev || 3352ad1601aeSDavid Ahern nh->fib_nh_dev->ifindex != cfg->fc_ifindex)) 33531da177e4SLinus Torvalds continue; 335486872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 3355ad1601aeSDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6)) 33561da177e4SLinus Torvalds continue; 335793c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33581da177e4SLinus Torvalds continue; 335993c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3360c2ed1880SMantas M continue; 3361e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3362e873e4b9SWei Wang continue; 336366f5d6ceSWei Wang rcu_read_unlock(); 33641da177e4SLinus Torvalds 33650ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33660ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 336786872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33680ae81335SDavid Ahern 33690ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33701da177e4SLinus Torvalds } 33711da177e4SLinus Torvalds } 337266f5d6ceSWei Wang rcu_read_unlock(); 33731da177e4SLinus Torvalds 33741da177e4SLinus Torvalds return err; 33751da177e4SLinus Torvalds } 33761da177e4SLinus Torvalds 33776700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3378a6279458SYOSHIFUJI Hideaki { 3379a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3380e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 338185bd05deSDavid Ahern struct fib6_result res = {}; 3382e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3383e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3384e8599ff4SDavid S. Miller struct neighbour *neigh; 338571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33866e157b6aSDavid S. Miller int optlen, on_link; 33876e157b6aSDavid S. Miller u8 *lladdr; 3388e8599ff4SDavid S. Miller 338929a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 339071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3391e8599ff4SDavid S. Miller 3392e8599ff4SDavid S. Miller if (optlen < 0) { 33936e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3394e8599ff4SDavid S. Miller return; 3395e8599ff4SDavid S. Miller } 3396e8599ff4SDavid S. Miller 339771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3398e8599ff4SDavid S. Miller 339971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 34006e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3401e8599ff4SDavid S. Miller return; 3402e8599ff4SDavid S. Miller } 3403e8599ff4SDavid S. Miller 34046e157b6aSDavid S. Miller on_link = 0; 340571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3406e8599ff4SDavid S. Miller on_link = 1; 340771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3408e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 34096e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3410e8599ff4SDavid S. Miller return; 3411e8599ff4SDavid S. Miller } 3412e8599ff4SDavid S. Miller 3413e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3414e8599ff4SDavid S. Miller if (!in6_dev) 3415e8599ff4SDavid S. Miller return; 3416e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3417e8599ff4SDavid S. Miller return; 3418e8599ff4SDavid S. Miller 3419e8599ff4SDavid S. Miller /* RFC2461 8.1: 3420e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3421e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3422e8599ff4SDavid S. Miller */ 3423e8599ff4SDavid S. Miller 3424f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3425e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3426e8599ff4SDavid S. Miller return; 3427e8599ff4SDavid S. Miller } 34286e157b6aSDavid S. Miller 34296e157b6aSDavid S. Miller lladdr = NULL; 3430e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3431e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3432e8599ff4SDavid S. Miller skb->dev); 3433e8599ff4SDavid S. Miller if (!lladdr) { 3434e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3435e8599ff4SDavid S. Miller return; 3436e8599ff4SDavid S. Miller } 3437e8599ff4SDavid S. Miller } 3438e8599ff4SDavid S. Miller 34396e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3440ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 34416e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 34426e157b6aSDavid S. Miller return; 34436e157b6aSDavid S. Miller } 34446e157b6aSDavid S. Miller 34456e157b6aSDavid S. Miller /* Redirect received -> path was valid. 34466e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 34476e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 34486e157b6aSDavid S. Miller */ 34490dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34506e157b6aSDavid S. Miller 345171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3452e8599ff4SDavid S. Miller if (!neigh) 3453e8599ff4SDavid S. Miller return; 3454e8599ff4SDavid S. Miller 34551da177e4SLinus Torvalds /* 34561da177e4SLinus Torvalds * We have finally decided to accept it. 34571da177e4SLinus Torvalds */ 34581da177e4SLinus Torvalds 3459f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34601da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34611da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34621da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3463f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3464f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34651da177e4SLinus Torvalds 34664d85cd0cSDavid Ahern rcu_read_lock(); 346785bd05deSDavid Ahern res.f6i = rcu_dereference(rt->from); 3468e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3469e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3470e873e4b9SWei Wang */ 347185bd05deSDavid Ahern fib6_info_hold(res.f6i); 34724d85cd0cSDavid Ahern rcu_read_unlock(); 34738a14e46fSDavid Ahern 347485bd05deSDavid Ahern res.nh = &res.f6i->fib6_nh; 347585bd05deSDavid Ahern nrt = ip6_rt_cache_alloc(&res, &msg->dest, NULL); 347638308473SDavid S. Miller if (!nrt) 34771da177e4SLinus Torvalds goto out; 34781da177e4SLinus Torvalds 34791da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34801da177e4SLinus Torvalds if (on_link) 34811da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34821da177e4SLinus Torvalds 34834e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34841da177e4SLinus Torvalds 34852b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34862b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34872b760fcfSWei Wang * takes care of it 34882b760fcfSWei Wang */ 348985bd05deSDavid Ahern if (rt6_insert_exception(nrt, res.f6i)) { 34902b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34912b760fcfSWei Wang goto out; 34922b760fcfSWei Wang } 34931da177e4SLinus Torvalds 3494d8d1f30bSChangli Gao netevent.old = &rt->dst; 3495d8d1f30bSChangli Gao netevent.new = &nrt->dst; 349671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 349760592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34988d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34998d71740cSTom Tucker 35001da177e4SLinus Torvalds out: 350185bd05deSDavid Ahern fib6_info_release(res.f6i); 3502e8599ff4SDavid S. Miller neigh_release(neigh); 35036e157b6aSDavid S. Miller } 35046e157b6aSDavid S. Miller 350570ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 35068d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3507b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3508830218c1SDavid Ahern const struct in6_addr *gwaddr, 3509830218c1SDavid Ahern struct net_device *dev) 351070ceb4f5SYOSHIFUJI Hideaki { 3511830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3512830218c1SDavid Ahern int ifindex = dev->ifindex; 351370ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 35148d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3515c71099acSThomas Graf struct fib6_table *table; 351670ceb4f5SYOSHIFUJI Hideaki 3517830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 351838308473SDavid S. Miller if (!table) 3519c71099acSThomas Graf return NULL; 3520c71099acSThomas Graf 352166f5d6ceSWei Wang rcu_read_lock(); 352238fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 352370ceb4f5SYOSHIFUJI Hideaki if (!fn) 352470ceb4f5SYOSHIFUJI Hideaki goto out; 352570ceb4f5SYOSHIFUJI Hideaki 352666f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3527ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev->ifindex != ifindex) 352870ceb4f5SYOSHIFUJI Hideaki continue; 35292b2450caSDavid Ahern if (!(rt->fib6_flags & RTF_ROUTEINFO) || 3530bdf00467SDavid Ahern !rt->fib6_nh.fib_nh_gw_family) 353170ceb4f5SYOSHIFUJI Hideaki continue; 3532ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.fib_nh_gw6, gwaddr)) 353370ceb4f5SYOSHIFUJI Hideaki continue; 3534e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3535e873e4b9SWei Wang continue; 353670ceb4f5SYOSHIFUJI Hideaki break; 353770ceb4f5SYOSHIFUJI Hideaki } 353870ceb4f5SYOSHIFUJI Hideaki out: 353966f5d6ceSWei Wang rcu_read_unlock(); 354070ceb4f5SYOSHIFUJI Hideaki return rt; 354170ceb4f5SYOSHIFUJI Hideaki } 354270ceb4f5SYOSHIFUJI Hideaki 35438d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3544b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3545830218c1SDavid Ahern const struct in6_addr *gwaddr, 3546830218c1SDavid Ahern struct net_device *dev, 354795c96174SEric Dumazet unsigned int pref) 354870ceb4f5SYOSHIFUJI Hideaki { 354986872cb5SThomas Graf struct fib6_config cfg = { 3550238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3551830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 355286872cb5SThomas Graf .fc_dst_len = prefixlen, 355386872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 355486872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3555b91d5329SXin Long .fc_protocol = RTPROT_RA, 3556e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 355715e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3558efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3559efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 356086872cb5SThomas Graf }; 356170ceb4f5SYOSHIFUJI Hideaki 3562830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35634e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35644e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 356586872cb5SThomas Graf 3566e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3567e317da96SYOSHIFUJI Hideaki if (!prefixlen) 356886872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 356970ceb4f5SYOSHIFUJI Hideaki 3570acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 357170ceb4f5SYOSHIFUJI Hideaki 3572830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 357370ceb4f5SYOSHIFUJI Hideaki } 357470ceb4f5SYOSHIFUJI Hideaki #endif 357570ceb4f5SYOSHIFUJI Hideaki 35768d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3577afb1d4b5SDavid Ahern const struct in6_addr *addr, 3578afb1d4b5SDavid Ahern struct net_device *dev) 35791da177e4SLinus Torvalds { 3580830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35818d1c802bSDavid Ahern struct fib6_info *rt; 3582c71099acSThomas Graf struct fib6_table *table; 35831da177e4SLinus Torvalds 3584afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 358538308473SDavid S. Miller if (!table) 3586c71099acSThomas Graf return NULL; 35871da177e4SLinus Torvalds 358866f5d6ceSWei Wang rcu_read_lock(); 358966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3590ad1601aeSDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 3591ad1601aeSDavid Ahern 3592ad1601aeSDavid Ahern if (dev == nh->fib_nh_dev && 359393c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 3594ad1601aeSDavid Ahern ipv6_addr_equal(&nh->fib_nh_gw6, addr)) 35951da177e4SLinus Torvalds break; 35961da177e4SLinus Torvalds } 3597e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3598e873e4b9SWei Wang rt = NULL; 359966f5d6ceSWei Wang rcu_read_unlock(); 36001da177e4SLinus Torvalds return rt; 36011da177e4SLinus Torvalds } 36021da177e4SLinus Torvalds 36038d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3604afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3605ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3606ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 36071da177e4SLinus Torvalds { 360886872cb5SThomas Graf struct fib6_config cfg = { 3609ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3610238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 361186872cb5SThomas Graf .fc_ifindex = dev->ifindex, 361286872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 361386872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3614b91d5329SXin Long .fc_protocol = RTPROT_RA, 3615e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 361615e47304SEric W. Biederman .fc_nlinfo.portid = 0, 36175578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3618afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 361986872cb5SThomas Graf }; 36201da177e4SLinus Torvalds 36214e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 36221da177e4SLinus Torvalds 3623acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3624830218c1SDavid Ahern struct fib6_table *table; 3625830218c1SDavid Ahern 3626830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3627830218c1SDavid Ahern if (table) 3628830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3629830218c1SDavid Ahern } 36301da177e4SLinus Torvalds 3631afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 36321da177e4SLinus Torvalds } 36331da177e4SLinus Torvalds 3634afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3635afb1d4b5SDavid Ahern struct fib6_table *table) 36361da177e4SLinus Torvalds { 36378d1c802bSDavid Ahern struct fib6_info *rt; 36381da177e4SLinus Torvalds 36391da177e4SLinus Torvalds restart: 364066f5d6ceSWei Wang rcu_read_lock(); 364166f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3642dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3643dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3644dcd1f572SDavid Ahern 364593c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3646e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3647e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 364866f5d6ceSWei Wang rcu_read_unlock(); 3649afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36501da177e4SLinus Torvalds goto restart; 36511da177e4SLinus Torvalds } 36521da177e4SLinus Torvalds } 365366f5d6ceSWei Wang rcu_read_unlock(); 3654830218c1SDavid Ahern 3655830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3656830218c1SDavid Ahern } 3657830218c1SDavid Ahern 3658830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3659830218c1SDavid Ahern { 3660830218c1SDavid Ahern struct fib6_table *table; 3661830218c1SDavid Ahern struct hlist_head *head; 3662830218c1SDavid Ahern unsigned int h; 3663830218c1SDavid Ahern 3664830218c1SDavid Ahern rcu_read_lock(); 3665830218c1SDavid Ahern 3666830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3667830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3668830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3669830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3670afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3671830218c1SDavid Ahern } 3672830218c1SDavid Ahern } 3673830218c1SDavid Ahern 3674830218c1SDavid Ahern rcu_read_unlock(); 36751da177e4SLinus Torvalds } 36761da177e4SLinus Torvalds 36775578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36785578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 367986872cb5SThomas Graf struct fib6_config *cfg) 368086872cb5SThomas Graf { 36818823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 36828823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 36838823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 36848823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 368567f69513SDavid Ahern .fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER, 36868823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 36878823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 36888823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 36898823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 36908823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 369186872cb5SThomas Graf 36928823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 369386872cb5SThomas Graf 36948823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36958823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36968823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36978823a3acSMaciej Żenczykowski }; 369886872cb5SThomas Graf } 369986872cb5SThomas Graf 37005578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 37011da177e4SLinus Torvalds { 370286872cb5SThomas Graf struct fib6_config cfg; 37031da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 37041da177e4SLinus Torvalds int err; 37051da177e4SLinus Torvalds 37061da177e4SLinus Torvalds switch (cmd) { 37071da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 37081da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3709af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 37101da177e4SLinus Torvalds return -EPERM; 37111da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 37121da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 37131da177e4SLinus Torvalds if (err) 37141da177e4SLinus Torvalds return -EFAULT; 37151da177e4SLinus Torvalds 37165578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 371786872cb5SThomas Graf 37181da177e4SLinus Torvalds rtnl_lock(); 37191da177e4SLinus Torvalds switch (cmd) { 37201da177e4SLinus Torvalds case SIOCADDRT: 3721acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 37221da177e4SLinus Torvalds break; 37231da177e4SLinus Torvalds case SIOCDELRT: 3724333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 37251da177e4SLinus Torvalds break; 37261da177e4SLinus Torvalds default: 37271da177e4SLinus Torvalds err = -EINVAL; 37281da177e4SLinus Torvalds } 37291da177e4SLinus Torvalds rtnl_unlock(); 37301da177e4SLinus Torvalds 37311da177e4SLinus Torvalds return err; 37323ff50b79SStephen Hemminger } 37331da177e4SLinus Torvalds 37341da177e4SLinus Torvalds return -EINVAL; 37351da177e4SLinus Torvalds } 37361da177e4SLinus Torvalds 37371da177e4SLinus Torvalds /* 37381da177e4SLinus Torvalds * Drop the packet on the floor 37391da177e4SLinus Torvalds */ 37401da177e4SLinus Torvalds 3741d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 37421da177e4SLinus Torvalds { 3743612f09e8SYOSHIFUJI Hideaki int type; 3744adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3745612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3746612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 37470660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 374845bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3749bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3750bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 37513bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3752612f09e8SYOSHIFUJI Hideaki break; 3753612f09e8SYOSHIFUJI Hideaki } 3754612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3755612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37563bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37573bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3758612f09e8SYOSHIFUJI Hideaki break; 3759612f09e8SYOSHIFUJI Hideaki } 37603ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37611da177e4SLinus Torvalds kfree_skb(skb); 37621da177e4SLinus Torvalds return 0; 37631da177e4SLinus Torvalds } 37641da177e4SLinus Torvalds 37659ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37669ce8ade0SThomas Graf { 3767612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37689ce8ade0SThomas Graf } 37699ce8ade0SThomas Graf 3770ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37711da177e4SLinus Torvalds { 3772adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3773612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37741da177e4SLinus Torvalds } 37751da177e4SLinus Torvalds 37769ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37779ce8ade0SThomas Graf { 3778612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37799ce8ade0SThomas Graf } 37809ce8ade0SThomas Graf 3781ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37829ce8ade0SThomas Graf { 3783adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3784612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37859ce8ade0SThomas Graf } 37869ce8ade0SThomas Graf 37871da177e4SLinus Torvalds /* 37881da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37891da177e4SLinus Torvalds */ 37901da177e4SLinus Torvalds 3791360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3792afb1d4b5SDavid Ahern struct inet6_dev *idev, 37931da177e4SLinus Torvalds const struct in6_addr *addr, 3794acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37951da177e4SLinus Torvalds { 3796c7a1ce39SDavid Ahern struct fib6_config cfg = { 3797c7a1ce39SDavid Ahern .fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL, 3798c7a1ce39SDavid Ahern .fc_ifindex = idev->dev->ifindex, 3799c7a1ce39SDavid Ahern .fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP, 3800c7a1ce39SDavid Ahern .fc_dst = *addr, 3801c7a1ce39SDavid Ahern .fc_dst_len = 128, 3802c7a1ce39SDavid Ahern .fc_protocol = RTPROT_KERNEL, 3803c7a1ce39SDavid Ahern .fc_nlinfo.nl_net = net, 3804c7a1ce39SDavid Ahern .fc_ignore_dev_down = true, 3805c7a1ce39SDavid Ahern }; 38065f02ce24SDavid Ahern 3807e8478e80SDavid Ahern if (anycast) { 3808c7a1ce39SDavid Ahern cfg.fc_type = RTN_ANYCAST; 3809c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_ANYCAST; 3810e8478e80SDavid Ahern } else { 3811c7a1ce39SDavid Ahern cfg.fc_type = RTN_LOCAL; 3812c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_LOCAL; 3813e8478e80SDavid Ahern } 38141da177e4SLinus Torvalds 3815c7a1ce39SDavid Ahern return ip6_route_info_create(&cfg, gfp_flags, NULL); 38161da177e4SLinus Torvalds } 38171da177e4SLinus Torvalds 3818c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3819c3968a85SDaniel Walter struct arg_dev_net_ip { 3820c3968a85SDaniel Walter struct net_device *dev; 3821c3968a85SDaniel Walter struct net *net; 3822c3968a85SDaniel Walter struct in6_addr *addr; 3823c3968a85SDaniel Walter }; 3824c3968a85SDaniel Walter 38258d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3826c3968a85SDaniel Walter { 3827c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3828c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3829c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3830c3968a85SDaniel Walter 3831ad1601aeSDavid Ahern if (((void *)rt->fib6_nh.fib_nh_dev == dev || !dev) && 3832421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 383393c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 383460006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3835c3968a85SDaniel Walter /* remove prefsrc entry */ 383693c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 383760006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3838c3968a85SDaniel Walter } 3839c3968a85SDaniel Walter return 0; 3840c3968a85SDaniel Walter } 3841c3968a85SDaniel Walter 3842c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3843c3968a85SDaniel Walter { 3844c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3845c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3846c3968a85SDaniel Walter .dev = ifp->idev->dev, 3847c3968a85SDaniel Walter .net = net, 3848c3968a85SDaniel Walter .addr = &ifp->addr, 3849c3968a85SDaniel Walter }; 38500c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3851c3968a85SDaniel Walter } 3852c3968a85SDaniel Walter 38532b2450caSDavid Ahern #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT) 3854be7a010dSDuan Jiong 3855be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38568d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3857be7a010dSDuan Jiong { 3858be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3859be7a010dSDuan Jiong 386093c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3861bdf00467SDavid Ahern rt->fib6_nh.fib_nh_gw_family && 3862ad1601aeSDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.fib_nh_gw6)) { 3863be7a010dSDuan Jiong return -1; 3864be7a010dSDuan Jiong } 3865b16cb459SWei Wang 3866b16cb459SWei Wang /* Further clean up cached routes in exception table. 3867b16cb459SWei Wang * This is needed because cached route may have a different 3868b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3869b16cb459SWei Wang */ 3870b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3871b16cb459SWei Wang 3872be7a010dSDuan Jiong return 0; 3873be7a010dSDuan Jiong } 3874be7a010dSDuan Jiong 3875be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3876be7a010dSDuan Jiong { 3877be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3878be7a010dSDuan Jiong } 3879be7a010dSDuan Jiong 38802127d95aSIdo Schimmel struct arg_netdev_event { 38812127d95aSIdo Schimmel const struct net_device *dev; 38824c981e28SIdo Schimmel union { 38832127d95aSIdo Schimmel unsigned int nh_flags; 38844c981e28SIdo Schimmel unsigned long event; 38854c981e28SIdo Schimmel }; 38862127d95aSIdo Schimmel }; 38872127d95aSIdo Schimmel 38888d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3889d7dedee1SIdo Schimmel { 38908d1c802bSDavid Ahern struct fib6_info *iter; 3891d7dedee1SIdo Schimmel struct fib6_node *fn; 3892d7dedee1SIdo Schimmel 389393c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 389493c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3895d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 389693c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3897d7dedee1SIdo Schimmel while (iter) { 389893c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 389933bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3900d7dedee1SIdo Schimmel return iter; 39018fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 390293c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3903d7dedee1SIdo Schimmel } 3904d7dedee1SIdo Schimmel 3905d7dedee1SIdo Schimmel return NULL; 3906d7dedee1SIdo Schimmel } 3907d7dedee1SIdo Schimmel 39088d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3909d7dedee1SIdo Schimmel { 3910ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD || 3911ad1601aeSDavid Ahern (rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 3912ad1601aeSDavid Ahern ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev))) 3913d7dedee1SIdo Schimmel return true; 3914d7dedee1SIdo Schimmel 3915d7dedee1SIdo Schimmel return false; 3916d7dedee1SIdo Schimmel } 3917d7dedee1SIdo Schimmel 39188d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3919d7dedee1SIdo Schimmel { 39208d1c802bSDavid Ahern struct fib6_info *iter; 3921d7dedee1SIdo Schimmel int total = 0; 3922d7dedee1SIdo Schimmel 3923d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 3924ad1601aeSDavid Ahern total += rt->fib6_nh.fib_nh_weight; 3925d7dedee1SIdo Schimmel 392693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3927d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 3928ad1601aeSDavid Ahern total += iter->fib6_nh.fib_nh_weight; 3929d7dedee1SIdo Schimmel } 3930d7dedee1SIdo Schimmel 3931d7dedee1SIdo Schimmel return total; 3932d7dedee1SIdo Schimmel } 3933d7dedee1SIdo Schimmel 39348d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3935d7dedee1SIdo Schimmel { 3936d7dedee1SIdo Schimmel int upper_bound = -1; 3937d7dedee1SIdo Schimmel 3938d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 3939ad1601aeSDavid Ahern *weight += rt->fib6_nh.fib_nh_weight; 3940d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3941d7dedee1SIdo Schimmel total) - 1; 3942d7dedee1SIdo Schimmel } 3943ad1601aeSDavid Ahern atomic_set(&rt->fib6_nh.fib_nh_upper_bound, upper_bound); 3944d7dedee1SIdo Schimmel } 3945d7dedee1SIdo Schimmel 39468d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3947d7dedee1SIdo Schimmel { 39488d1c802bSDavid Ahern struct fib6_info *iter; 3949d7dedee1SIdo Schimmel int weight = 0; 3950d7dedee1SIdo Schimmel 3951d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3952d7dedee1SIdo Schimmel 395393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3954d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3955d7dedee1SIdo Schimmel } 3956d7dedee1SIdo Schimmel 39578d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3958d7dedee1SIdo Schimmel { 39598d1c802bSDavid Ahern struct fib6_info *first; 3960d7dedee1SIdo Schimmel int total; 3961d7dedee1SIdo Schimmel 3962d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3963d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3964d7dedee1SIdo Schimmel * sibling route. 3965d7dedee1SIdo Schimmel */ 396693c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3967d7dedee1SIdo Schimmel return; 3968d7dedee1SIdo Schimmel 3969d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3970d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3971d7dedee1SIdo Schimmel * onwards. 3972d7dedee1SIdo Schimmel */ 3973d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3974d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3975d7dedee1SIdo Schimmel return; 3976d7dedee1SIdo Schimmel 3977d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3978d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3979d7dedee1SIdo Schimmel } 3980d7dedee1SIdo Schimmel 39818d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39822127d95aSIdo Schimmel { 39832127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39847aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39852127d95aSIdo Schimmel 3986ad1601aeSDavid Ahern if (rt != net->ipv6.fib6_null_entry && 3987ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_dev == arg->dev) { 3988ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags &= ~arg->nh_flags; 39897aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3990d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39911de178edSIdo Schimmel } 39922127d95aSIdo Schimmel 39932127d95aSIdo Schimmel return 0; 39942127d95aSIdo Schimmel } 39952127d95aSIdo Schimmel 39962127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39972127d95aSIdo Schimmel { 39982127d95aSIdo Schimmel struct arg_netdev_event arg = { 39992127d95aSIdo Schimmel .dev = dev, 40006802f3adSIdo Schimmel { 40012127d95aSIdo Schimmel .nh_flags = nh_flags, 40026802f3adSIdo Schimmel }, 40032127d95aSIdo Schimmel }; 40042127d95aSIdo Schimmel 40052127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 40062127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 40072127d95aSIdo Schimmel 40082127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 40092127d95aSIdo Schimmel } 40102127d95aSIdo Schimmel 40118d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 40121de178edSIdo Schimmel const struct net_device *dev) 40131de178edSIdo Schimmel { 40148d1c802bSDavid Ahern struct fib6_info *iter; 40151de178edSIdo Schimmel 4016ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 40171de178edSIdo Schimmel return true; 401893c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4019ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 40201de178edSIdo Schimmel return true; 40211de178edSIdo Schimmel 40221de178edSIdo Schimmel return false; 40231de178edSIdo Schimmel } 40241de178edSIdo Schimmel 40258d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 40261de178edSIdo Schimmel { 40278d1c802bSDavid Ahern struct fib6_info *iter; 40281de178edSIdo Schimmel 40291de178edSIdo Schimmel rt->should_flush = 1; 403093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40311de178edSIdo Schimmel iter->should_flush = 1; 40321de178edSIdo Schimmel } 40331de178edSIdo Schimmel 40348d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 40351de178edSIdo Schimmel const struct net_device *down_dev) 40361de178edSIdo Schimmel { 40378d1c802bSDavid Ahern struct fib6_info *iter; 40381de178edSIdo Schimmel unsigned int dead = 0; 40391de178edSIdo Schimmel 4040ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == down_dev || 4041ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40421de178edSIdo Schimmel dead++; 404393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4044ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == down_dev || 4045ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40461de178edSIdo Schimmel dead++; 40471de178edSIdo Schimmel 40481de178edSIdo Schimmel return dead; 40491de178edSIdo Schimmel } 40501de178edSIdo Schimmel 40518d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40521de178edSIdo Schimmel const struct net_device *dev, 40531de178edSIdo Schimmel unsigned int nh_flags) 40541de178edSIdo Schimmel { 40558d1c802bSDavid Ahern struct fib6_info *iter; 40561de178edSIdo Schimmel 4057ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 4058ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= nh_flags; 405993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4060ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 4061ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags |= nh_flags; 40621de178edSIdo Schimmel } 40631de178edSIdo Schimmel 4064a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40658d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40661da177e4SLinus Torvalds { 40674c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40684c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40697aef6859SDavid Ahern struct net *net = dev_net(dev); 40708ed67789SDaniel Lezcano 4071421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 407227c6fa73SIdo Schimmel return 0; 407327c6fa73SIdo Schimmel 407427c6fa73SIdo Schimmel switch (arg->event) { 407527c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 4076ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 407727c6fa73SIdo Schimmel case NETDEV_DOWN: 40781de178edSIdo Schimmel if (rt->should_flush) 407927c6fa73SIdo Schimmel return -1; 408093c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 4081ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 40821de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40831de178edSIdo Schimmel unsigned int count; 40841de178edSIdo Schimmel 40851de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 408693c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40871de178edSIdo Schimmel rt6_multipath_flush(rt); 40881de178edSIdo Schimmel return -1; 40891de178edSIdo Schimmel } 40901de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40911de178edSIdo Schimmel RTNH_F_LINKDOWN); 40927aef6859SDavid Ahern fib6_update_sernum(net, rt); 4093d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40941de178edSIdo Schimmel } 40951de178edSIdo Schimmel return -2; 409627c6fa73SIdo Schimmel case NETDEV_CHANGE: 4097ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev != dev || 409893c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 409927c6fa73SIdo Schimmel break; 4100ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= RTNH_F_LINKDOWN; 4101d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 410227c6fa73SIdo Schimmel break; 41032b241361SIdo Schimmel } 4104c159d30cSDavid S. Miller 41051da177e4SLinus Torvalds return 0; 41061da177e4SLinus Torvalds } 41071da177e4SLinus Torvalds 410827c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 41091da177e4SLinus Torvalds { 41104c981e28SIdo Schimmel struct arg_netdev_event arg = { 41118ed67789SDaniel Lezcano .dev = dev, 41126802f3adSIdo Schimmel { 41134c981e28SIdo Schimmel .event = event, 41146802f3adSIdo Schimmel }, 41158ed67789SDaniel Lezcano }; 41167c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 41178ed67789SDaniel Lezcano 41187c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 41197c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 41207c6bb7d2SDavid Ahern else 41217c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 41224c981e28SIdo Schimmel } 41234c981e28SIdo Schimmel 41244c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 41254c981e28SIdo Schimmel { 41264c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 41274c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 41284c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 41291da177e4SLinus Torvalds } 41301da177e4SLinus Torvalds 413195c96174SEric Dumazet struct rt6_mtu_change_arg { 41321da177e4SLinus Torvalds struct net_device *dev; 413395c96174SEric Dumazet unsigned int mtu; 41341da177e4SLinus Torvalds }; 41351da177e4SLinus Torvalds 41368d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 41371da177e4SLinus Torvalds { 41381da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 41391da177e4SLinus Torvalds struct inet6_dev *idev; 41401da177e4SLinus Torvalds 41411da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 41421da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 41431da177e4SLinus Torvalds We still use this lock to block changes 41441da177e4SLinus Torvalds caused by addrconf/ndisc. 41451da177e4SLinus Torvalds */ 41461da177e4SLinus Torvalds 41471da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 414838308473SDavid S. Miller if (!idev) 41491da177e4SLinus Torvalds return 0; 41501da177e4SLinus Torvalds 41511da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41521da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41531da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41541da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41551da177e4SLinus Torvalds */ 4156ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == arg->dev && 4157d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4158d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4159d4ead6b3SDavid Ahern 4160d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4161d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4162d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4163d4ead6b3SDavid Ahern 4164f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4165e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4166f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41674b32b5adSMartin KaFai Lau } 41681da177e4SLinus Torvalds return 0; 41691da177e4SLinus Torvalds } 41701da177e4SLinus Torvalds 417195c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41721da177e4SLinus Torvalds { 4173c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4174c71099acSThomas Graf .dev = dev, 4175c71099acSThomas Graf .mtu = mtu, 4176c71099acSThomas Graf }; 41771da177e4SLinus Torvalds 41780c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41791da177e4SLinus Torvalds } 41801da177e4SLinus Torvalds 4181ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41825176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4183aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 418486872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4185ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 418686872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 418786872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 418851ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4189c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 419019e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 419119e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 419232bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4193622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41943b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4195aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4196eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4197eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4198eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 419986872cb5SThomas Graf }; 420086872cb5SThomas Graf 420186872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4202333c4301SDavid Ahern struct fib6_config *cfg, 4203333c4301SDavid Ahern struct netlink_ext_ack *extack) 42041da177e4SLinus Torvalds { 420586872cb5SThomas Graf struct rtmsg *rtm; 420686872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4207c78ba6d6SLubomir Rintel unsigned int pref; 420886872cb5SThomas Graf int err; 42091da177e4SLinus Torvalds 4210fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4211dac9c979SDavid Ahern extack); 421286872cb5SThomas Graf if (err < 0) 421386872cb5SThomas Graf goto errout; 42141da177e4SLinus Torvalds 421586872cb5SThomas Graf err = -EINVAL; 421686872cb5SThomas Graf rtm = nlmsg_data(nlh); 421786872cb5SThomas Graf 421884db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 421984db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 422084db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 422184db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 422284db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 422384db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 422484db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 422584db8407SMaciej Żenczykowski 422684db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 422784db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 422884db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 422984db8407SMaciej Żenczykowski }; 423086872cb5SThomas Graf 4231ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4232ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4233b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4234b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 423586872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 423686872cb5SThomas Graf 4237ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4238ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4239ab79ad14SMaciej Żenczykowski 42401f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 42411f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 42421f56a01fSMartin KaFai Lau 4243fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4244fc1e64e1SDavid Ahern 424586872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 424667b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 424786872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 42481da177e4SLinus Torvalds } 4249e3818541SDavid Ahern if (tb[RTA_VIA]) { 4250e3818541SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute"); 4251e3818541SDavid Ahern goto errout; 4252e3818541SDavid Ahern } 425386872cb5SThomas Graf 425486872cb5SThomas Graf if (tb[RTA_DST]) { 425586872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 425686872cb5SThomas Graf 425786872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 425886872cb5SThomas Graf goto errout; 425986872cb5SThomas Graf 426086872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42611da177e4SLinus Torvalds } 426286872cb5SThomas Graf 426386872cb5SThomas Graf if (tb[RTA_SRC]) { 426486872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 426586872cb5SThomas Graf 426686872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 426786872cb5SThomas Graf goto errout; 426886872cb5SThomas Graf 426986872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42701da177e4SLinus Torvalds } 427186872cb5SThomas Graf 4272c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 427367b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4274c3968a85SDaniel Walter 427586872cb5SThomas Graf if (tb[RTA_OIF]) 427686872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 427786872cb5SThomas Graf 427886872cb5SThomas Graf if (tb[RTA_PRIORITY]) 427986872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 428086872cb5SThomas Graf 428186872cb5SThomas Graf if (tb[RTA_METRICS]) { 428286872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 428386872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42841da177e4SLinus Torvalds } 428586872cb5SThomas Graf 428686872cb5SThomas Graf if (tb[RTA_TABLE]) 428786872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 428886872cb5SThomas Graf 428951ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 429051ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 429151ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42929ed59592SDavid Ahern 42939ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4294c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42959ed59592SDavid Ahern if (err < 0) 42969ed59592SDavid Ahern goto errout; 429751ebd318SNicolas Dichtel } 429851ebd318SNicolas Dichtel 4299c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4300c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4301c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4302c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4303c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4304c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4305c78ba6d6SLubomir Rintel } 4306c78ba6d6SLubomir Rintel 430719e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 430819e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 430919e42e45SRoopa Prabhu 43109ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 431119e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 431219e42e45SRoopa Prabhu 4313c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 43149ed59592SDavid Ahern if (err < 0) 43159ed59592SDavid Ahern goto errout; 43169ed59592SDavid Ahern } 43179ed59592SDavid Ahern 431832bc201eSXin Long if (tb[RTA_EXPIRES]) { 431932bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 432032bc201eSXin Long 432132bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 432232bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 432332bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 432432bc201eSXin Long } 432532bc201eSXin Long } 432632bc201eSXin Long 432786872cb5SThomas Graf err = 0; 432886872cb5SThomas Graf errout: 432986872cb5SThomas Graf return err; 43301da177e4SLinus Torvalds } 43311da177e4SLinus Torvalds 43326b9ea5a6SRoopa Prabhu struct rt6_nh { 43338d1c802bSDavid Ahern struct fib6_info *fib6_info; 43346b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 43356b9ea5a6SRoopa Prabhu struct list_head next; 43366b9ea5a6SRoopa Prabhu }; 43376b9ea5a6SRoopa Prabhu 4338d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4339d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 43408d1c802bSDavid Ahern struct fib6_info *rt, 43418d1c802bSDavid Ahern struct fib6_config *r_cfg) 43426b9ea5a6SRoopa Prabhu { 43436b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 43446b9ea5a6SRoopa Prabhu int err = -EEXIST; 43456b9ea5a6SRoopa Prabhu 43466b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43478d1c802bSDavid Ahern /* check if fib6_info already exists */ 43488d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 43496b9ea5a6SRoopa Prabhu return err; 43506b9ea5a6SRoopa Prabhu } 43516b9ea5a6SRoopa Prabhu 43526b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43536b9ea5a6SRoopa Prabhu if (!nh) 43546b9ea5a6SRoopa Prabhu return -ENOMEM; 43558d1c802bSDavid Ahern nh->fib6_info = rt; 43566b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43576b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43586b9ea5a6SRoopa Prabhu 43596b9ea5a6SRoopa Prabhu return 0; 43606b9ea5a6SRoopa Prabhu } 43616b9ea5a6SRoopa Prabhu 43628d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43638d1c802bSDavid Ahern struct fib6_info *rt_last, 43643b1137feSDavid Ahern struct nl_info *info, 43653b1137feSDavid Ahern __u16 nlflags) 43663b1137feSDavid Ahern { 43673b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43683b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43693b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43703b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43713b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43723b1137feSDavid Ahern */ 437393c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 437493c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43758d1c802bSDavid Ahern struct fib6_info, 437693c2fb25SDavid Ahern fib6_siblings); 43773b1137feSDavid Ahern } 43783b1137feSDavid Ahern 43793b1137feSDavid Ahern if (rt) 43803b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43813b1137feSDavid Ahern } 43823b1137feSDavid Ahern 4383333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4384333c4301SDavid Ahern struct netlink_ext_ack *extack) 438551ebd318SNicolas Dichtel { 43868d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43873b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 438851ebd318SNicolas Dichtel struct fib6_config r_cfg; 438951ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43908d1c802bSDavid Ahern struct fib6_info *rt; 43916b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43926b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43933b1137feSDavid Ahern __u16 nlflags; 439451ebd318SNicolas Dichtel int remaining; 439551ebd318SNicolas Dichtel int attrlen; 43966b9ea5a6SRoopa Prabhu int err = 1; 43976b9ea5a6SRoopa Prabhu int nhn = 0; 43986b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43996b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 44006b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 440151ebd318SNicolas Dichtel 44023b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 44033b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 44043b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 44053b1137feSDavid Ahern 440635f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 440751ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 440851ebd318SNicolas Dichtel 44096b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 44108d1c802bSDavid Ahern * fib6_info structs per nexthop 44116b9ea5a6SRoopa Prabhu */ 441251ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 441351ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 441451ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 441551ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 441651ebd318SNicolas Dichtel 441751ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 441851ebd318SNicolas Dichtel if (attrlen > 0) { 441951ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 442051ebd318SNicolas Dichtel 442151ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 442251ebd318SNicolas Dichtel if (nla) { 442367b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 442451ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 442551ebd318SNicolas Dichtel } 442619e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 442719e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 442819e42e45SRoopa Prabhu if (nla) 442919e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 443051ebd318SNicolas Dichtel } 44316b9ea5a6SRoopa Prabhu 443268e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4433acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 44348c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 44358c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 44368c5b83f0SRoopa Prabhu rt = NULL; 44376b9ea5a6SRoopa Prabhu goto cleanup; 44388c5b83f0SRoopa Prabhu } 4439b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4440b5d2d75eSDavid Ahern err = -EINVAL; 4441b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4442b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4443b5d2d75eSDavid Ahern fib6_info_release(rt); 4444b5d2d75eSDavid Ahern goto cleanup; 4445b5d2d75eSDavid Ahern } 44466b9ea5a6SRoopa Prabhu 4447ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_weight = rtnh->rtnh_hops + 1; 4448398958aeSIdo Schimmel 4449d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4450d4ead6b3SDavid Ahern rt, &r_cfg); 445151ebd318SNicolas Dichtel if (err) { 445293531c67SDavid Ahern fib6_info_release(rt); 44536b9ea5a6SRoopa Prabhu goto cleanup; 445451ebd318SNicolas Dichtel } 44556b9ea5a6SRoopa Prabhu 44566b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 445751ebd318SNicolas Dichtel } 44586b9ea5a6SRoopa Prabhu 44593b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44603b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44613b1137feSDavid Ahern * the full route when done 44623b1137feSDavid Ahern */ 44633b1137feSDavid Ahern info->skip_notify = 1; 44643b1137feSDavid Ahern 44656b9ea5a6SRoopa Prabhu err_nh = NULL; 44666b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44678d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44688d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44693b1137feSDavid Ahern 4470f7225172SDavid Ahern if (!err) { 4471f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4472f7225172SDavid Ahern rt_last = nh->fib6_info; 4473f7225172SDavid Ahern 44746b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4475f7225172SDavid Ahern if (!rt_notif) 44768d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4477f7225172SDavid Ahern } 44786b9ea5a6SRoopa Prabhu 44798d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44808d1c802bSDavid Ahern nh->fib6_info = NULL; 44816b9ea5a6SRoopa Prabhu if (err) { 44826b9ea5a6SRoopa Prabhu if (replace && nhn) 4483a5a82d84SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 4484a5a82d84SJakub Kicinski "multipath route replace failed (check consistency of installed routes)"); 44856b9ea5a6SRoopa Prabhu err_nh = nh; 44866b9ea5a6SRoopa Prabhu goto add_errout; 44876b9ea5a6SRoopa Prabhu } 44886b9ea5a6SRoopa Prabhu 44891a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 449027596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 449127596472SMichal Kubeček * we have already failed to add the first nexthop: 449227596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 449327596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 449427596472SMichal Kubeček * be added to it. 44951a72418bSNicolas Dichtel */ 449627596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 449727596472SMichal Kubeček NLM_F_REPLACE); 44986b9ea5a6SRoopa Prabhu nhn++; 44996b9ea5a6SRoopa Prabhu } 45006b9ea5a6SRoopa Prabhu 45013b1137feSDavid Ahern /* success ... tell user about new route */ 45023b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 45036b9ea5a6SRoopa Prabhu goto cleanup; 45046b9ea5a6SRoopa Prabhu 45056b9ea5a6SRoopa Prabhu add_errout: 45063b1137feSDavid Ahern /* send notification for routes that were added so that 45073b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 45083b1137feSDavid Ahern * coherent 45093b1137feSDavid Ahern */ 45103b1137feSDavid Ahern if (rt_notif) 45113b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 45123b1137feSDavid Ahern 45136b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 45146b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 45156b9ea5a6SRoopa Prabhu if (err_nh == nh) 45166b9ea5a6SRoopa Prabhu break; 4517333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 45186b9ea5a6SRoopa Prabhu } 45196b9ea5a6SRoopa Prabhu 45206b9ea5a6SRoopa Prabhu cleanup: 45216b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 45228d1c802bSDavid Ahern if (nh->fib6_info) 45238d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 45246b9ea5a6SRoopa Prabhu list_del(&nh->next); 45256b9ea5a6SRoopa Prabhu kfree(nh); 45266b9ea5a6SRoopa Prabhu } 45276b9ea5a6SRoopa Prabhu 45286b9ea5a6SRoopa Prabhu return err; 45296b9ea5a6SRoopa Prabhu } 45306b9ea5a6SRoopa Prabhu 4531333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4532333c4301SDavid Ahern struct netlink_ext_ack *extack) 45336b9ea5a6SRoopa Prabhu { 45346b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 45356b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 45366b9ea5a6SRoopa Prabhu int remaining; 45376b9ea5a6SRoopa Prabhu int attrlen; 45386b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 45396b9ea5a6SRoopa Prabhu 45406b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 45416b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 45426b9ea5a6SRoopa Prabhu 45436b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 45446b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 45456b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 45466b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 45476b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 45486b9ea5a6SRoopa Prabhu 45496b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45506b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45516b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45526b9ea5a6SRoopa Prabhu 45536b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45546b9ea5a6SRoopa Prabhu if (nla) { 45556b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45566b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45576b9ea5a6SRoopa Prabhu } 45586b9ea5a6SRoopa Prabhu } 4559333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45606b9ea5a6SRoopa Prabhu if (err) 45616b9ea5a6SRoopa Prabhu last_err = err; 45626b9ea5a6SRoopa Prabhu 456351ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 456451ebd318SNicolas Dichtel } 456551ebd318SNicolas Dichtel 456651ebd318SNicolas Dichtel return last_err; 456751ebd318SNicolas Dichtel } 456851ebd318SNicolas Dichtel 4569c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4570c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45711da177e4SLinus Torvalds { 457286872cb5SThomas Graf struct fib6_config cfg; 457386872cb5SThomas Graf int err; 45741da177e4SLinus Torvalds 4575333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 457686872cb5SThomas Graf if (err < 0) 457786872cb5SThomas Graf return err; 457886872cb5SThomas Graf 457951ebd318SNicolas Dichtel if (cfg.fc_mp) 4580333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45810ae81335SDavid Ahern else { 45820ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4583333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45841da177e4SLinus Torvalds } 45850ae81335SDavid Ahern } 45861da177e4SLinus Torvalds 4587c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4588c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45891da177e4SLinus Torvalds { 459086872cb5SThomas Graf struct fib6_config cfg; 459186872cb5SThomas Graf int err; 45921da177e4SLinus Torvalds 4593333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 459486872cb5SThomas Graf if (err < 0) 459586872cb5SThomas Graf return err; 459686872cb5SThomas Graf 459767f69513SDavid Ahern if (cfg.fc_metric == 0) 459867f69513SDavid Ahern cfg.fc_metric = IP6_RT_PRIO_USER; 459967f69513SDavid Ahern 460051ebd318SNicolas Dichtel if (cfg.fc_mp) 4601333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 460251ebd318SNicolas Dichtel else 4603acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 46041da177e4SLinus Torvalds } 46051da177e4SLinus Torvalds 46068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4607339bf98fSThomas Graf { 4608beb1afacSDavid Ahern int nexthop_len = 0; 4609beb1afacSDavid Ahern 461093c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4611beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4612beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4613beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4614ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws); 4615beb1afacSDavid Ahern 461693c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4617beb1afacSDavid Ahern } 4618beb1afacSDavid Ahern 4619339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4620339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4621339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4622339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4623339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4624339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4625339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4626339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4627339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 46286a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4629ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4630c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 463119e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4632ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws) 4633beb1afacSDavid Ahern + nexthop_len; 4634beb1afacSDavid Ahern } 4635beb1afacSDavid Ahern 4636d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46378d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4638d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 463915e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4640f8cfe2ceSDavid Ahern unsigned int flags) 46411da177e4SLinus Torvalds { 464222d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 464322d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 464422d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46451da177e4SLinus Torvalds struct nlmsghdr *nlh; 464622d0bd82SXin Long struct rtmsg *rtm; 4647d4ead6b3SDavid Ahern long expires = 0; 46481da177e4SLinus Torvalds 464915e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 465038308473SDavid S. Miller if (!nlh) 465126932566SPatrick McHardy return -EMSGSIZE; 46522d7202bfSThomas Graf 465322d0bd82SXin Long if (rt6) { 465422d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 465522d0bd82SXin Long rt6_src = &rt6->rt6i_src; 465622d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 465722d0bd82SXin Long } else { 465822d0bd82SXin Long rt6_dst = &rt->fib6_dst; 465922d0bd82SXin Long rt6_src = &rt->fib6_src; 466022d0bd82SXin Long rt6_flags = rt->fib6_flags; 466122d0bd82SXin Long } 466222d0bd82SXin Long 46632d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46641da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 466522d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 466622d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46671da177e4SLinus Torvalds rtm->rtm_tos = 0; 466893c2fb25SDavid Ahern if (rt->fib6_table) 466993c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4670c71099acSThomas Graf else 46719e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 467297f0082aSKalash Nainwal rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT; 4673c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4674c78679e8SDavid S. Miller goto nla_put_failure; 4675e8478e80SDavid Ahern 4676e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46771da177e4SLinus Torvalds rtm->rtm_flags = 0; 46781da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 467993c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46801da177e4SLinus Torvalds 468122d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46821da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46831da177e4SLinus Torvalds 4684d4ead6b3SDavid Ahern if (dest) { 4685d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4686c78679e8SDavid S. Miller goto nla_put_failure; 46871da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46881da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 468922d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4690c78679e8SDavid S. Miller goto nla_put_failure; 46911da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46921da177e4SLinus Torvalds if (src) { 4693930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4694c78679e8SDavid S. Miller goto nla_put_failure; 46951da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4696c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 469722d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4698c78679e8SDavid S. Miller goto nla_put_failure; 46991da177e4SLinus Torvalds #endif 47007bc570c8SYOSHIFUJI Hideaki if (iif) { 47017bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 470222d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4703fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47042cf75070SNikolay Aleksandrov 47057bc570c8SYOSHIFUJI Hideaki if (err == 0) 47067bc570c8SYOSHIFUJI Hideaki return 0; 4707fd61c6baSDavid Ahern if (err < 0) 47087bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47097bc570c8SYOSHIFUJI Hideaki } else 47107bc570c8SYOSHIFUJI Hideaki #endif 4711c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4712c78679e8SDavid S. Miller goto nla_put_failure; 4713d4ead6b3SDavid Ahern } else if (dest) { 47141da177e4SLinus Torvalds struct in6_addr saddr_buf; 4715d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4716930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4717c78679e8SDavid S. Miller goto nla_put_failure; 4718c3968a85SDaniel Walter } 4719c3968a85SDaniel Walter 472093c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4721c3968a85SDaniel Walter struct in6_addr saddr_buf; 472293c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4723930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4724c78679e8SDavid S. Miller goto nla_put_failure; 47251da177e4SLinus Torvalds } 47262d7202bfSThomas Graf 4727d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4728d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47292d7202bfSThomas Graf goto nla_put_failure; 47302d7202bfSThomas Graf 473193c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4732beb1afacSDavid Ahern goto nla_put_failure; 4733beb1afacSDavid Ahern 4734beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4735beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4736beb1afacSDavid Ahern */ 473722d0bd82SXin Long if (rt6) { 473822d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 473922d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 474022d0bd82SXin Long goto nla_put_failure; 474122d0bd82SXin Long 474222d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 474322d0bd82SXin Long goto nla_put_failure; 474422d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47458d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4746beb1afacSDavid Ahern struct nlattr *mp; 4747beb1afacSDavid Ahern 4748beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4749beb1afacSDavid Ahern if (!mp) 4750beb1afacSDavid Ahern goto nla_put_failure; 4751beb1afacSDavid Ahern 4752c0a72077SDavid Ahern if (fib_add_nexthop(skb, &rt->fib6_nh.nh_common, 4753c0a72077SDavid Ahern rt->fib6_nh.fib_nh_weight) < 0) 4754beb1afacSDavid Ahern goto nla_put_failure; 4755beb1afacSDavid Ahern 4756beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 475793c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4758c0a72077SDavid Ahern if (fib_add_nexthop(skb, &sibling->fib6_nh.nh_common, 4759c0a72077SDavid Ahern sibling->fib6_nh.fib_nh_weight) < 0) 476094f826b8SEric Dumazet goto nla_put_failure; 476194f826b8SEric Dumazet } 47622d7202bfSThomas Graf 4763beb1afacSDavid Ahern nla_nest_end(skb, mp); 4764beb1afacSDavid Ahern } else { 4765c0a72077SDavid Ahern if (fib_nexthop_info(skb, &rt->fib6_nh.nh_common, 4766c0a72077SDavid Ahern &rtm->rtm_flags, false) < 0) 4767c78679e8SDavid S. Miller goto nla_put_failure; 4768beb1afacSDavid Ahern } 47698253947eSLi Wei 477022d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 477114895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 477214895687SDavid Ahern expires -= jiffies; 477314895687SDavid Ahern } 477469cdf8f9SYOSHIFUJI Hideaki 4775d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4776e3703b3dSThomas Graf goto nla_put_failure; 47771da177e4SLinus Torvalds 477822d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4779c78ba6d6SLubomir Rintel goto nla_put_failure; 4780c78ba6d6SLubomir Rintel 478119e42e45SRoopa Prabhu 4782053c095aSJohannes Berg nlmsg_end(skb, nlh); 4783053c095aSJohannes Berg return 0; 47842d7202bfSThomas Graf 47852d7202bfSThomas Graf nla_put_failure: 478626932566SPatrick McHardy nlmsg_cancel(skb, nlh); 478726932566SPatrick McHardy return -EMSGSIZE; 47881da177e4SLinus Torvalds } 47891da177e4SLinus Torvalds 479013e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 479113e38901SDavid Ahern const struct net_device *dev) 479213e38901SDavid Ahern { 4793ad1601aeSDavid Ahern if (f6i->fib6_nh.fib_nh_dev == dev) 479413e38901SDavid Ahern return true; 479513e38901SDavid Ahern 479613e38901SDavid Ahern if (f6i->fib6_nsiblings) { 479713e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 479813e38901SDavid Ahern 479913e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 480013e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 4801ad1601aeSDavid Ahern if (sibling->fib6_nh.fib_nh_dev == dev) 480213e38901SDavid Ahern return true; 480313e38901SDavid Ahern } 480413e38901SDavid Ahern } 480513e38901SDavid Ahern 480613e38901SDavid Ahern return false; 480713e38901SDavid Ahern } 480813e38901SDavid Ahern 48098d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 48101da177e4SLinus Torvalds { 48111da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 481213e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 481313e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 48141f17e2f2SDavid Ahern struct net *net = arg->net; 48151f17e2f2SDavid Ahern 4816421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 48171f17e2f2SDavid Ahern return 0; 48181da177e4SLinus Torvalds 481913e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 482093c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4821f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4822f8cfe2ceSDavid Ahern return 1; 4823f8cfe2ceSDavid Ahern } 482413e38901SDavid Ahern if (filter->filter_set) { 482513e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 482613e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 482713e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 482813e38901SDavid Ahern return 1; 482913e38901SDavid Ahern } 483013e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4831f8cfe2ceSDavid Ahern } 48321da177e4SLinus Torvalds 4833d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4834d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 483513e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 48361da177e4SLinus Torvalds } 48371da177e4SLinus Torvalds 48380eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb, 48390eff0a27SJakub Kicinski const struct nlmsghdr *nlh, 48400eff0a27SJakub Kicinski struct nlattr **tb, 48410eff0a27SJakub Kicinski struct netlink_ext_ack *extack) 48420eff0a27SJakub Kicinski { 48430eff0a27SJakub Kicinski struct rtmsg *rtm; 48440eff0a27SJakub Kicinski int i, err; 48450eff0a27SJakub Kicinski 48460eff0a27SJakub Kicinski if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) { 48470eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48480eff0a27SJakub Kicinski "Invalid header for get route request"); 48490eff0a27SJakub Kicinski return -EINVAL; 48500eff0a27SJakub Kicinski } 48510eff0a27SJakub Kicinski 48520eff0a27SJakub Kicinski if (!netlink_strict_get_check(skb)) 48530eff0a27SJakub Kicinski return nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, 48540eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48550eff0a27SJakub Kicinski 48560eff0a27SJakub Kicinski rtm = nlmsg_data(nlh); 48570eff0a27SJakub Kicinski if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) || 48580eff0a27SJakub Kicinski (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) || 48590eff0a27SJakub Kicinski rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope || 48600eff0a27SJakub Kicinski rtm->rtm_type) { 48610eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request"); 48620eff0a27SJakub Kicinski return -EINVAL; 48630eff0a27SJakub Kicinski } 48640eff0a27SJakub Kicinski if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) { 48650eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48660eff0a27SJakub Kicinski "Invalid flags for get route request"); 48670eff0a27SJakub Kicinski return -EINVAL; 48680eff0a27SJakub Kicinski } 48690eff0a27SJakub Kicinski 48700eff0a27SJakub Kicinski err = nlmsg_parse_strict(nlh, sizeof(*rtm), tb, RTA_MAX, 48710eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48720eff0a27SJakub Kicinski if (err) 48730eff0a27SJakub Kicinski return err; 48740eff0a27SJakub Kicinski 48750eff0a27SJakub Kicinski if ((tb[RTA_SRC] && !rtm->rtm_src_len) || 48760eff0a27SJakub Kicinski (tb[RTA_DST] && !rtm->rtm_dst_len)) { 48770eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6"); 48780eff0a27SJakub Kicinski return -EINVAL; 48790eff0a27SJakub Kicinski } 48800eff0a27SJakub Kicinski 48810eff0a27SJakub Kicinski for (i = 0; i <= RTA_MAX; i++) { 48820eff0a27SJakub Kicinski if (!tb[i]) 48830eff0a27SJakub Kicinski continue; 48840eff0a27SJakub Kicinski 48850eff0a27SJakub Kicinski switch (i) { 48860eff0a27SJakub Kicinski case RTA_SRC: 48870eff0a27SJakub Kicinski case RTA_DST: 48880eff0a27SJakub Kicinski case RTA_IIF: 48890eff0a27SJakub Kicinski case RTA_OIF: 48900eff0a27SJakub Kicinski case RTA_MARK: 48910eff0a27SJakub Kicinski case RTA_UID: 48920eff0a27SJakub Kicinski case RTA_SPORT: 48930eff0a27SJakub Kicinski case RTA_DPORT: 48940eff0a27SJakub Kicinski case RTA_IP_PROTO: 48950eff0a27SJakub Kicinski break; 48960eff0a27SJakub Kicinski default: 48970eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request"); 48980eff0a27SJakub Kicinski return -EINVAL; 48990eff0a27SJakub Kicinski } 49000eff0a27SJakub Kicinski } 49010eff0a27SJakub Kicinski 49020eff0a27SJakub Kicinski return 0; 49030eff0a27SJakub Kicinski } 49040eff0a27SJakub Kicinski 4905c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4906c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 49071da177e4SLinus Torvalds { 49083b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4909ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 491018c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4911a68886a6SDavid Ahern struct fib6_info *from; 491218c3a61cSRoopa Prabhu struct dst_entry *dst; 49131da177e4SLinus Torvalds struct rt6_info *rt; 4914ab364a6fSThomas Graf struct sk_buff *skb; 4915ab364a6fSThomas Graf struct rtmsg *rtm; 4916744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 491718c3a61cSRoopa Prabhu bool fibmatch; 4918ab364a6fSThomas Graf 49190eff0a27SJakub Kicinski err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack); 4920ab364a6fSThomas Graf if (err < 0) 4921ab364a6fSThomas Graf goto errout; 4922ab364a6fSThomas Graf 4923ab364a6fSThomas Graf err = -EINVAL; 492438b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 492538b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 492618c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4927ab364a6fSThomas Graf 4928ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4929ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4930ab364a6fSThomas Graf goto errout; 4931ab364a6fSThomas Graf 49324e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4933ab364a6fSThomas Graf } 4934ab364a6fSThomas Graf 4935ab364a6fSThomas Graf if (tb[RTA_DST]) { 4936ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4937ab364a6fSThomas Graf goto errout; 4938ab364a6fSThomas Graf 49394e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4940ab364a6fSThomas Graf } 4941ab364a6fSThomas Graf 4942ab364a6fSThomas Graf if (tb[RTA_IIF]) 4943ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4944ab364a6fSThomas Graf 4945ab364a6fSThomas Graf if (tb[RTA_OIF]) 494672331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4947ab364a6fSThomas Graf 49482e47b291SLorenzo Colitti if (tb[RTA_MARK]) 49492e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 49502e47b291SLorenzo Colitti 4951622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4952622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4953622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4954622ec2c9SLorenzo Colitti else 4955622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4956622ec2c9SLorenzo Colitti 4957eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4958eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4959eacb9384SRoopa Prabhu 4960eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4961eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4962eacb9384SRoopa Prabhu 4963eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4964eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 49655e1a99eaSHangbin Liu &fl6.flowi6_proto, AF_INET6, 49665e1a99eaSHangbin Liu extack); 4967eacb9384SRoopa Prabhu if (err) 4968eacb9384SRoopa Prabhu goto errout; 4969eacb9384SRoopa Prabhu } 4970eacb9384SRoopa Prabhu 4971ab364a6fSThomas Graf if (iif) { 4972ab364a6fSThomas Graf struct net_device *dev; 497372331bc0SShmulik Ladkani int flags = 0; 497472331bc0SShmulik Ladkani 4975121622dbSFlorian Westphal rcu_read_lock(); 4976121622dbSFlorian Westphal 4977121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4978ab364a6fSThomas Graf if (!dev) { 4979121622dbSFlorian Westphal rcu_read_unlock(); 4980ab364a6fSThomas Graf err = -ENODEV; 4981ab364a6fSThomas Graf goto errout; 4982ab364a6fSThomas Graf } 498372331bc0SShmulik Ladkani 498472331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 498572331bc0SShmulik Ladkani 498672331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 498772331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 498872331bc0SShmulik Ladkani 4989b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4990121622dbSFlorian Westphal 4991121622dbSFlorian Westphal rcu_read_unlock(); 499272331bc0SShmulik Ladkani } else { 499372331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 499472331bc0SShmulik Ladkani 499518c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 499618c3a61cSRoopa Prabhu } 499718c3a61cSRoopa Prabhu 499818c3a61cSRoopa Prabhu 499918c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 500018c3a61cSRoopa Prabhu if (rt->dst.error) { 500118c3a61cSRoopa Prabhu err = rt->dst.error; 500218c3a61cSRoopa Prabhu ip6_rt_put(rt); 500318c3a61cSRoopa Prabhu goto errout; 5004ab364a6fSThomas Graf } 50051da177e4SLinus Torvalds 50069d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 50079d6acb3bSWANG Cong err = rt->dst.error; 50089d6acb3bSWANG Cong ip6_rt_put(rt); 50099d6acb3bSWANG Cong goto errout; 50109d6acb3bSWANG Cong } 50119d6acb3bSWANG Cong 50121da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 501338308473SDavid S. Miller if (!skb) { 501494e187c0SAmerigo Wang ip6_rt_put(rt); 5015ab364a6fSThomas Graf err = -ENOBUFS; 5016ab364a6fSThomas Graf goto errout; 5017ab364a6fSThomas Graf } 50181da177e4SLinus Torvalds 5019d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 5020a68886a6SDavid Ahern 5021a68886a6SDavid Ahern rcu_read_lock(); 5022a68886a6SDavid Ahern from = rcu_dereference(rt->from); 5023a68886a6SDavid Ahern 502418c3a61cSRoopa Prabhu if (fibmatch) 5025a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 502618c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 502718c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 502818c3a61cSRoopa Prabhu else 5029a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 5030a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 5031d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 5032d4ead6b3SDavid Ahern 0); 5033a68886a6SDavid Ahern rcu_read_unlock(); 5034a68886a6SDavid Ahern 50351da177e4SLinus Torvalds if (err < 0) { 5036ab364a6fSThomas Graf kfree_skb(skb); 5037ab364a6fSThomas Graf goto errout; 50381da177e4SLinus Torvalds } 50391da177e4SLinus Torvalds 504015e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 5041ab364a6fSThomas Graf errout: 50421da177e4SLinus Torvalds return err; 50431da177e4SLinus Torvalds } 50441da177e4SLinus Torvalds 50458d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 504637a1d361SRoopa Prabhu unsigned int nlm_flags) 50471da177e4SLinus Torvalds { 50481da177e4SLinus Torvalds struct sk_buff *skb; 50495578689aSDaniel Lezcano struct net *net = info->nl_net; 5050528c4cebSDenis V. Lunev u32 seq; 5051528c4cebSDenis V. Lunev int err; 50520d51aa80SJamal Hadi Salim 5053528c4cebSDenis V. Lunev err = -ENOBUFS; 505438308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 505586872cb5SThomas Graf 505619e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 505738308473SDavid S. Miller if (!skb) 505821713ebcSThomas Graf goto errout; 50591da177e4SLinus Torvalds 5060d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5061f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 506226932566SPatrick McHardy if (err < 0) { 506326932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 506426932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 506526932566SPatrick McHardy kfree_skb(skb); 506626932566SPatrick McHardy goto errout; 506726932566SPatrick McHardy } 506815e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 50695578689aSDaniel Lezcano info->nlh, gfp_any()); 50701ce85fe4SPablo Neira Ayuso return; 507121713ebcSThomas Graf errout: 507221713ebcSThomas Graf if (err < 0) 50735578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 50741da177e4SLinus Torvalds } 50751da177e4SLinus Torvalds 50768ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5077351638e7SJiri Pirko unsigned long event, void *ptr) 50788ed67789SDaniel Lezcano { 5079351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5080c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50818ed67789SDaniel Lezcano 5082242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5083242d3a49SWANG Cong return NOTIFY_OK; 5084242d3a49SWANG Cong 5085242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5086ad1601aeSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = dev; 5087d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50888ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50898ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5090d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50918ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5092d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50938ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50948ed67789SDaniel Lezcano #endif 509576da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 509676da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 509776da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 509876da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 509976da0704SWANG Cong */ 510012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5101242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 510212d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 510312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5104242d3a49SWANG Cong #endif 51058ed67789SDaniel Lezcano } 51068ed67789SDaniel Lezcano 51078ed67789SDaniel Lezcano return NOTIFY_OK; 51088ed67789SDaniel Lezcano } 51098ed67789SDaniel Lezcano 51101da177e4SLinus Torvalds /* 51111da177e4SLinus Torvalds * /proc 51121da177e4SLinus Torvalds */ 51131da177e4SLinus Torvalds 51141da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 51151da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 51161da177e4SLinus Torvalds { 511769ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 51181da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 511969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 512069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 512181eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 512269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 512369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5124fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 512569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 51261da177e4SLinus Torvalds 51271da177e4SLinus Torvalds return 0; 51281da177e4SLinus Torvalds } 51291da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 51301da177e4SLinus Torvalds 51311da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 51321da177e4SLinus Torvalds 51331da177e4SLinus Torvalds static 5134fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 51351da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 51361da177e4SLinus Torvalds { 5137c486da34SLucian Adrian Grijincu struct net *net; 5138c486da34SLucian Adrian Grijincu int delay; 5139f0fb9b28SAditya Pakki int ret; 5140c486da34SLucian Adrian Grijincu if (!write) 5141c486da34SLucian Adrian Grijincu return -EINVAL; 5142c486da34SLucian Adrian Grijincu 5143c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5144c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 5145f0fb9b28SAditya Pakki ret = proc_dointvec(ctl, write, buffer, lenp, ppos); 5146f0fb9b28SAditya Pakki if (ret) 5147f0fb9b28SAditya Pakki return ret; 5148f0fb9b28SAditya Pakki 51492ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 51501da177e4SLinus Torvalds return 0; 51511da177e4SLinus Torvalds } 51521da177e4SLinus Torvalds 51537c6bb7d2SDavid Ahern static int zero; 51547c6bb7d2SDavid Ahern static int one = 1; 51557c6bb7d2SDavid Ahern 5156ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 51571da177e4SLinus Torvalds { 51581da177e4SLinus Torvalds .procname = "flush", 51594990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 51601da177e4SLinus Torvalds .maxlen = sizeof(int), 516189c8b3a1SDave Jones .mode = 0200, 51626d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 51631da177e4SLinus Torvalds }, 51641da177e4SLinus Torvalds { 51651da177e4SLinus Torvalds .procname = "gc_thresh", 51669a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 51671da177e4SLinus Torvalds .maxlen = sizeof(int), 51681da177e4SLinus Torvalds .mode = 0644, 51696d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51701da177e4SLinus Torvalds }, 51711da177e4SLinus Torvalds { 51721da177e4SLinus Torvalds .procname = "max_size", 51734990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 51741da177e4SLinus Torvalds .maxlen = sizeof(int), 51751da177e4SLinus Torvalds .mode = 0644, 51766d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51771da177e4SLinus Torvalds }, 51781da177e4SLinus Torvalds { 51791da177e4SLinus Torvalds .procname = "gc_min_interval", 51804990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51811da177e4SLinus Torvalds .maxlen = sizeof(int), 51821da177e4SLinus Torvalds .mode = 0644, 51836d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51841da177e4SLinus Torvalds }, 51851da177e4SLinus Torvalds { 51861da177e4SLinus Torvalds .procname = "gc_timeout", 51874990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51881da177e4SLinus Torvalds .maxlen = sizeof(int), 51891da177e4SLinus Torvalds .mode = 0644, 51906d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51911da177e4SLinus Torvalds }, 51921da177e4SLinus Torvalds { 51931da177e4SLinus Torvalds .procname = "gc_interval", 51944990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51951da177e4SLinus Torvalds .maxlen = sizeof(int), 51961da177e4SLinus Torvalds .mode = 0644, 51976d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51981da177e4SLinus Torvalds }, 51991da177e4SLinus Torvalds { 52001da177e4SLinus Torvalds .procname = "gc_elasticity", 52014990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 52021da177e4SLinus Torvalds .maxlen = sizeof(int), 52031da177e4SLinus Torvalds .mode = 0644, 5204f3d3f616SMin Zhang .proc_handler = proc_dointvec, 52051da177e4SLinus Torvalds }, 52061da177e4SLinus Torvalds { 52071da177e4SLinus Torvalds .procname = "mtu_expires", 52084990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 52091da177e4SLinus Torvalds .maxlen = sizeof(int), 52101da177e4SLinus Torvalds .mode = 0644, 52116d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 52121da177e4SLinus Torvalds }, 52131da177e4SLinus Torvalds { 52141da177e4SLinus Torvalds .procname = "min_adv_mss", 52154990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 52161da177e4SLinus Torvalds .maxlen = sizeof(int), 52171da177e4SLinus Torvalds .mode = 0644, 5218f3d3f616SMin Zhang .proc_handler = proc_dointvec, 52191da177e4SLinus Torvalds }, 52201da177e4SLinus Torvalds { 52211da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 52224990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 52231da177e4SLinus Torvalds .maxlen = sizeof(int), 52241da177e4SLinus Torvalds .mode = 0644, 52256d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 52261da177e4SLinus Torvalds }, 52277c6bb7d2SDavid Ahern { 52287c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 52297c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 52307c6bb7d2SDavid Ahern .maxlen = sizeof(int), 52317c6bb7d2SDavid Ahern .mode = 0644, 52327c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 52337c6bb7d2SDavid Ahern .extra1 = &zero, 52347c6bb7d2SDavid Ahern .extra2 = &one, 52357c6bb7d2SDavid Ahern }, 5236f8572d8fSEric W. Biederman { } 52371da177e4SLinus Torvalds }; 52381da177e4SLinus Torvalds 52392c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5240760f2d01SDaniel Lezcano { 5241760f2d01SDaniel Lezcano struct ctl_table *table; 5242760f2d01SDaniel Lezcano 5243760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5244760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5245760f2d01SDaniel Lezcano GFP_KERNEL); 52465ee09105SYOSHIFUJI Hideaki 52475ee09105SYOSHIFUJI Hideaki if (table) { 52485ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5249c486da34SLucian Adrian Grijincu table[0].extra1 = net; 525086393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 52515ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 52525ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52535ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 52545ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 52555ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 52565ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 52575ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 52589c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52597c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5260464dc801SEric W. Biederman 5261464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5262464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5263464dc801SEric W. Biederman table[0].procname = NULL; 52645ee09105SYOSHIFUJI Hideaki } 52655ee09105SYOSHIFUJI Hideaki 5266760f2d01SDaniel Lezcano return table; 5267760f2d01SDaniel Lezcano } 52681da177e4SLinus Torvalds #endif 52691da177e4SLinus Torvalds 52702c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5271cdb18761SDaniel Lezcano { 5272633d424bSPavel Emelyanov int ret = -ENOMEM; 52738ed67789SDaniel Lezcano 527486393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 527586393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5276f2fc6a54SBenjamin Thery 5277fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5278fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5279fc66f95cSEric Dumazet 5280421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5281421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5282421842edSDavid Ahern GFP_KERNEL); 5283421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5284421842edSDavid Ahern goto out_ip6_dst_entries; 5285421842edSDavid Ahern 52868ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52878ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52888ed67789SDaniel Lezcano GFP_KERNEL); 52898ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5290421842edSDavid Ahern goto out_fib6_null_entry; 5291d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 529262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 529362fa8a84SDavid S. Miller ip6_template_metrics, true); 52948ed67789SDaniel Lezcano 52958ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5296feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52978ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52988ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52998ed67789SDaniel Lezcano GFP_KERNEL); 530068fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 530168fffc67SPeter Zijlstra goto out_ip6_null_entry; 5302d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 530362fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 530462fa8a84SDavid S. Miller ip6_template_metrics, true); 53058ed67789SDaniel Lezcano 53068ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 53078ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 53088ed67789SDaniel Lezcano GFP_KERNEL); 530968fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 531068fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5311d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 531262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 531362fa8a84SDavid S. Miller ip6_template_metrics, true); 53148ed67789SDaniel Lezcano #endif 53158ed67789SDaniel Lezcano 5316b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5317b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5318b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5319b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5320b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5321b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5322b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5323b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 53247c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5325b339a47cSPeter Zijlstra 53266891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 53276891a346SBenjamin Thery 53288ed67789SDaniel Lezcano ret = 0; 53298ed67789SDaniel Lezcano out: 53308ed67789SDaniel Lezcano return ret; 5331f2fc6a54SBenjamin Thery 533268fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 533368fffc67SPeter Zijlstra out_ip6_prohibit_entry: 533468fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 533568fffc67SPeter Zijlstra out_ip6_null_entry: 533668fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 533768fffc67SPeter Zijlstra #endif 5338421842edSDavid Ahern out_fib6_null_entry: 5339421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5340fc66f95cSEric Dumazet out_ip6_dst_entries: 5341fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5342f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5343f2fc6a54SBenjamin Thery goto out; 5344cdb18761SDaniel Lezcano } 5345cdb18761SDaniel Lezcano 53462c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5347cdb18761SDaniel Lezcano { 5348421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 53498ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 53508ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53518ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 53528ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 53538ed67789SDaniel Lezcano #endif 535441bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5355cdb18761SDaniel Lezcano } 5356cdb18761SDaniel Lezcano 5357d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5358d189634eSThomas Graf { 5359d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5360c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5361c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 53623617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 53633617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5364d189634eSThomas Graf #endif 5365d189634eSThomas Graf return 0; 5366d189634eSThomas Graf } 5367d189634eSThomas Graf 5368d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5369d189634eSThomas Graf { 5370d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5371ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5372ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5373d189634eSThomas Graf #endif 5374d189634eSThomas Graf } 5375d189634eSThomas Graf 5376cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5377cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5378cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5379cdb18761SDaniel Lezcano }; 5380cdb18761SDaniel Lezcano 5381c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5382c3426b47SDavid S. Miller { 5383c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5384c3426b47SDavid S. Miller 5385c3426b47SDavid S. Miller if (!bp) 5386c3426b47SDavid S. Miller return -ENOMEM; 5387c3426b47SDavid S. Miller inet_peer_base_init(bp); 5388c3426b47SDavid S. Miller net->ipv6.peers = bp; 5389c3426b47SDavid S. Miller return 0; 5390c3426b47SDavid S. Miller } 5391c3426b47SDavid S. Miller 5392c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5393c3426b47SDavid S. Miller { 5394c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5395c3426b47SDavid S. Miller 5396c3426b47SDavid S. Miller net->ipv6.peers = NULL; 539756a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5398c3426b47SDavid S. Miller kfree(bp); 5399c3426b47SDavid S. Miller } 5400c3426b47SDavid S. Miller 54012b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5402c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5403c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5404c3426b47SDavid S. Miller }; 5405c3426b47SDavid S. Miller 5406d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5407d189634eSThomas Graf .init = ip6_route_net_init_late, 5408d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5409d189634eSThomas Graf }; 5410d189634eSThomas Graf 54118ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 54128ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5413242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 54148ed67789SDaniel Lezcano }; 54158ed67789SDaniel Lezcano 54162f460933SWANG Cong void __init ip6_route_init_special_entries(void) 54172f460933SWANG Cong { 54182f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 54192f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 54202f460933SWANG Cong * manually for init_net */ 5421ad1601aeSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = init_net.loopback_dev; 54222f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 54232f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54242f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 54252f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 54262f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54272f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 54282f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54292f460933SWANG Cong #endif 54302f460933SWANG Cong } 54312f460933SWANG Cong 5432433d49c3SDaniel Lezcano int __init ip6_route_init(void) 54331da177e4SLinus Torvalds { 5434433d49c3SDaniel Lezcano int ret; 54358d0b94afSMartin KaFai Lau int cpu; 5436433d49c3SDaniel Lezcano 54379a7ec3a9SDaniel Lezcano ret = -ENOMEM; 54389a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 54399a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 54409a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 54419a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5442c19a28e1SFernando Carrijo goto out; 544314e50e57SDavid S. Miller 5444fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 54458ed67789SDaniel Lezcano if (ret) 5446bdb3289fSDaniel Lezcano goto out_kmem_cache; 5447bdb3289fSDaniel Lezcano 5448c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5449c3426b47SDavid S. Miller if (ret) 5450e8803b6cSDavid S. Miller goto out_dst_entries; 54512a0c451aSThomas Graf 54527e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 54537e52b33bSDavid S. Miller if (ret) 54547e52b33bSDavid S. Miller goto out_register_inetpeer; 5455c3426b47SDavid S. Miller 54565dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 54575dc121e9SArnaud Ebalard 5458e8803b6cSDavid S. Miller ret = fib6_init(); 5459433d49c3SDaniel Lezcano if (ret) 54608ed67789SDaniel Lezcano goto out_register_subsys; 5461433d49c3SDaniel Lezcano 5462433d49c3SDaniel Lezcano ret = xfrm6_init(); 5463433d49c3SDaniel Lezcano if (ret) 5464e8803b6cSDavid S. Miller goto out_fib6_init; 5465c35b7e72SDaniel Lezcano 5466433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5467433d49c3SDaniel Lezcano if (ret) 5468433d49c3SDaniel Lezcano goto xfrm6_init; 54697e5449c2SDaniel Lezcano 5470d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5471d189634eSThomas Graf if (ret) 5472d189634eSThomas Graf goto fib6_rules_init; 5473d189634eSThomas Graf 547416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 547516feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 547616feebcfSFlorian Westphal if (ret < 0) 547716feebcfSFlorian Westphal goto out_register_late_subsys; 547816feebcfSFlorian Westphal 547916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 548016feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 548116feebcfSFlorian Westphal if (ret < 0) 548216feebcfSFlorian Westphal goto out_register_late_subsys; 548316feebcfSFlorian Westphal 548416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 548516feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 548616feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 548716feebcfSFlorian Westphal if (ret < 0) 5488d189634eSThomas Graf goto out_register_late_subsys; 5489433d49c3SDaniel Lezcano 54908ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5491cdb18761SDaniel Lezcano if (ret) 5492d189634eSThomas Graf goto out_register_late_subsys; 54938ed67789SDaniel Lezcano 54948d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54958d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54968d0b94afSMartin KaFai Lau 54978d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54988d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54998d0b94afSMartin KaFai Lau } 55008d0b94afSMartin KaFai Lau 5501433d49c3SDaniel Lezcano out: 5502433d49c3SDaniel Lezcano return ret; 5503433d49c3SDaniel Lezcano 5504d189634eSThomas Graf out_register_late_subsys: 550516feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5506d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5507433d49c3SDaniel Lezcano fib6_rules_init: 5508433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5509433d49c3SDaniel Lezcano xfrm6_init: 5510433d49c3SDaniel Lezcano xfrm6_fini(); 55112a0c451aSThomas Graf out_fib6_init: 55122a0c451aSThomas Graf fib6_gc_cleanup(); 55138ed67789SDaniel Lezcano out_register_subsys: 55148ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 55157e52b33bSDavid S. Miller out_register_inetpeer: 55167e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5517fc66f95cSEric Dumazet out_dst_entries: 5518fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5519433d49c3SDaniel Lezcano out_kmem_cache: 5520f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5521433d49c3SDaniel Lezcano goto out; 55221da177e4SLinus Torvalds } 55231da177e4SLinus Torvalds 55241da177e4SLinus Torvalds void ip6_route_cleanup(void) 55251da177e4SLinus Torvalds { 55268ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5527d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5528101367c2SThomas Graf fib6_rules_cleanup(); 55291da177e4SLinus Torvalds xfrm6_fini(); 55301da177e4SLinus Torvalds fib6_gc_cleanup(); 5531c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 55328ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 553341bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5534f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 55351da177e4SLinus Torvalds } 5536