11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 2137adf3246SStefano Brivio 2147adf3246SStefano Brivio n = neigh_create(&nd_tbl, daddr, dev); 2157adf3246SStefano Brivio return IS_ERR(n) ? NULL : n; 216f8a1b43bSDavid Ahern } 217f8a1b43bSDavid Ahern 218f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 219f8a1b43bSDavid Ahern struct sk_buff *skb, 220f8a1b43bSDavid Ahern const void *daddr) 221f8a1b43bSDavid Ahern { 222f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 223f8a1b43bSDavid Ahern 224f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 225f83c7790SDavid S. Miller } 226f83c7790SDavid S. Miller 22763fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22863fca65dSJulian Anastasov { 22963fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23063fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23163fca65dSJulian Anastasov 232f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23363fca65dSJulian Anastasov if (!daddr) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23863fca65dSJulian Anastasov return; 23963fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24063fca65dSJulian Anastasov } 24163fca65dSJulian Anastasov 2429a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2431da177e4SLinus Torvalds .family = AF_INET6, 2441da177e4SLinus Torvalds .gc = ip6_dst_gc, 2451da177e4SLinus Torvalds .gc_thresh = 1024, 2461da177e4SLinus Torvalds .check = ip6_dst_check, 2470dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 248ebb762f2SSteffen Klassert .mtu = ip6_mtu, 249d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2501da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2511da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2521da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2531da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2541da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2556e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2569f8955ccSEric W. Biederman .local_out = __ip6_local_out, 257f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25863fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2591da177e4SLinus Torvalds }; 2601da177e4SLinus Torvalds 261ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 262ec831ea7SRoland Dreier { 263618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 264618f9bc7SSteffen Klassert 265618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 266ec831ea7SRoland Dreier } 267ec831ea7SRoland Dreier 2686700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2696700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27014e50e57SDavid S. Miller { 27114e50e57SDavid S. Miller } 27214e50e57SDavid S. Miller 2736700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2746700c270SDavid S. Miller struct sk_buff *skb) 275b587ee3bSDavid S. Miller { 276b587ee3bSDavid S. Miller } 277b587ee3bSDavid S. Miller 27814e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27914e50e57SDavid S. Miller .family = AF_INET6, 28014e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28114e50e57SDavid S. Miller .check = ip6_dst_check, 282ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 283214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28414e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 285b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2860a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 287f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28814e50e57SDavid S. Miller }; 28914e50e57SDavid S. Miller 29062fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29114edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29262fa8a84SDavid S. Miller }; 29362fa8a84SDavid S. Miller 2948d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29593c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29693c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29793c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29893c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 299421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 300421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 301421842edSDavid Ahern }; 302421842edSDavid Ahern 303fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3041da177e4SLinus Torvalds .dst = { 3051da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3061da177e4SLinus Torvalds .__use = 1, 3072c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3081da177e4SLinus Torvalds .error = -ENETUNREACH, 3091da177e4SLinus Torvalds .input = ip6_pkt_discard, 3101da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3111da177e4SLinus Torvalds }, 3121da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3131da177e4SLinus Torvalds }; 3141da177e4SLinus Torvalds 315101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 316101367c2SThomas Graf 317fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 318101367c2SThomas Graf .dst = { 319101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 320101367c2SThomas Graf .__use = 1, 3212c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 322101367c2SThomas Graf .error = -EACCES, 3239ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3249ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 325101367c2SThomas Graf }, 326101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 327101367c2SThomas Graf }; 328101367c2SThomas Graf 329fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 330101367c2SThomas Graf .dst = { 331101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 332101367c2SThomas Graf .__use = 1, 3332c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 334101367c2SThomas Graf .error = -EINVAL, 335352e512cSHerbert Xu .input = dst_discard, 336ede2059dSEric W. Biederman .output = dst_discard_out, 337101367c2SThomas Graf }, 338101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 339101367c2SThomas Graf }; 340101367c2SThomas Graf 341101367c2SThomas Graf #endif 342101367c2SThomas Graf 343ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 344ebfa45f0SMartin KaFai Lau { 345ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 346ebfa45f0SMartin KaFai Lau 347ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 348ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 349ebfa45f0SMartin KaFai Lau } 350ebfa45f0SMartin KaFai Lau 3511da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35293531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 353ad706862SMartin KaFai Lau int flags) 3541da177e4SLinus Torvalds { 35597bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 356b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 357cf911662SDavid S. Miller 35881eb8447SWei Wang if (rt) { 359ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36181eb8447SWei Wang } 3628104891bSSteffen Klassert 363cf911662SDavid S. Miller return rt; 3641da177e4SLinus Torvalds } 3659ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 366d52d3997SMartin KaFai Lau 3671da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3681da177e4SLinus Torvalds { 3691da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 370a68886a6SDavid Ahern struct fib6_info *from; 3718d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3721da177e4SLinus Torvalds 3731620a336SDavid Ahern ip_dst_metrics_put(dst); 3748d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3758d0b94afSMartin KaFai Lau 3768d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37738308473SDavid S. Miller if (idev) { 3781da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3791da177e4SLinus Torvalds in6_dev_put(idev); 3801da177e4SLinus Torvalds } 3811716a961SGao feng 382a68886a6SDavid Ahern rcu_read_lock(); 383a68886a6SDavid Ahern from = rcu_dereference(rt->from); 384a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38593531c67SDavid Ahern fib6_info_release(from); 386a68886a6SDavid Ahern rcu_read_unlock(); 387b3419363SDavid S. Miller } 388b3419363SDavid S. Miller 3891da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3901da177e4SLinus Torvalds int how) 3911da177e4SLinus Torvalds { 3921da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3931da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3945a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 395c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3961da177e4SLinus Torvalds 397e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 398e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 39938308473SDavid S. Miller if (loopback_idev) { 4001da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4011da177e4SLinus Torvalds in6_dev_put(idev); 4021da177e4SLinus Torvalds } 4031da177e4SLinus Torvalds } 40497cac082SDavid S. Miller } 4051da177e4SLinus Torvalds 4065973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4075973fb1eSMartin KaFai Lau { 4085973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4095973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4105973fb1eSMartin KaFai Lau else 4115973fb1eSMartin KaFai Lau return false; 4125973fb1eSMartin KaFai Lau } 4135973fb1eSMartin KaFai Lau 414a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4151da177e4SLinus Torvalds { 416a68886a6SDavid Ahern struct fib6_info *from; 417a68886a6SDavid Ahern 418a68886a6SDavid Ahern from = rcu_dereference(rt->from); 419a68886a6SDavid Ahern 4201716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4211716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 422a50feda5SEric Dumazet return true; 423a68886a6SDavid Ahern } else if (from) { 4241e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 425a68886a6SDavid Ahern fib6_check_expired(from); 4261716a961SGao feng } 427a50feda5SEric Dumazet return false; 4281da177e4SLinus Torvalds } 4291da177e4SLinus Torvalds 4303b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4318d1c802bSDavid Ahern struct fib6_info *match, 43252bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 433b75cc8f9SDavid Ahern const struct sk_buff *skb, 43452bd4c0cSNicolas Dichtel int strict) 43551ebd318SNicolas Dichtel { 4368d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43751ebd318SNicolas Dichtel 438b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 439b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 440b673d6ccSJakub Sitnicki */ 441b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 442b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 443b673d6ccSJakub Sitnicki 444ad1601aeSDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.fib_nh_upper_bound)) 4453d709f69SIdo Schimmel return match; 446bbfcd776SIdo Schimmel 44793c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44893c2fb25SDavid Ahern fib6_siblings) { 4495e670d84SDavid Ahern int nh_upper_bound; 4505e670d84SDavid Ahern 451ad1601aeSDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.fib_nh_upper_bound); 4525e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4533d709f69SIdo Schimmel continue; 45452bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45552bd4c0cSNicolas Dichtel break; 45651ebd318SNicolas Dichtel match = sibling; 45751ebd318SNicolas Dichtel break; 45851ebd318SNicolas Dichtel } 4593d709f69SIdo Schimmel 46051ebd318SNicolas Dichtel return match; 46151ebd318SNicolas Dichtel } 46251ebd318SNicolas Dichtel 4631da177e4SLinus Torvalds /* 46466f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4651da177e4SLinus Torvalds */ 4661da177e4SLinus Torvalds 4678d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4688d1c802bSDavid Ahern struct fib6_info *rt, 469b71d1d42SEric Dumazet const struct in6_addr *saddr, 4701da177e4SLinus Torvalds int oif, 471d420895eSYOSHIFUJI Hideaki int flags) 4721da177e4SLinus Torvalds { 4738d1c802bSDavid Ahern struct fib6_info *sprt; 4741da177e4SLinus Torvalds 4755e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 476ad1601aeSDavid Ahern !(rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD)) 4778067bb8cSIdo Schimmel return rt; 478dd3abc4eSYOSHIFUJI Hideaki 4798fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 480ad1601aeSDavid Ahern const struct net_device *dev = sprt->fib6_nh.fib_nh_dev; 481dd3abc4eSYOSHIFUJI Hideaki 482ad1601aeSDavid Ahern if (sprt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 4838067bb8cSIdo Schimmel continue; 4848067bb8cSIdo Schimmel 485dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4861da177e4SLinus Torvalds if (dev->ifindex == oif) 4871da177e4SLinus Torvalds return sprt; 488dd3abc4eSYOSHIFUJI Hideaki } else { 489dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 490dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 491dd3abc4eSYOSHIFUJI Hideaki return sprt; 492dd3abc4eSYOSHIFUJI Hideaki } 4931da177e4SLinus Torvalds } 4941da177e4SLinus Torvalds 495eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 496421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4971da177e4SLinus Torvalds 498ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 4991da177e4SLinus Torvalds } 5001da177e4SLinus Torvalds 50127097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 502c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 503c2f17e82SHannes Frederic Sowa struct work_struct work; 504c2f17e82SHannes Frederic Sowa struct in6_addr target; 505c2f17e82SHannes Frederic Sowa struct net_device *dev; 506c2f17e82SHannes Frederic Sowa }; 507c2f17e82SHannes Frederic Sowa 508c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 509c2f17e82SHannes Frederic Sowa { 510c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 511c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 512c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 513c2f17e82SHannes Frederic Sowa 514c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 515adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 516c2f17e82SHannes Frederic Sowa dev_put(work->dev); 517662f5533SMichael Büsch kfree(work); 518c2f17e82SHannes Frederic Sowa } 519c2f17e82SHannes Frederic Sowa 5208d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 52127097255SYOSHIFUJI Hideaki { 522f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5235e670d84SDavid Ahern const struct in6_addr *nh_gw; 524f2c31e32SEric Dumazet struct neighbour *neigh; 5255e670d84SDavid Ahern struct net_device *dev; 526f547fac6SSabrina Dubroca struct inet6_dev *idev; 5275e670d84SDavid Ahern 52827097255SYOSHIFUJI Hideaki /* 52927097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 53027097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 53127097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53227097255SYOSHIFUJI Hideaki * 53327097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53427097255SYOSHIFUJI Hideaki * to no more than one per minute. 53527097255SYOSHIFUJI Hideaki */ 536bdf00467SDavid Ahern if (!rt || !rt->fib6_nh.fib_nh_gw_family) 537fdd6681dSAmerigo Wang return; 5385e670d84SDavid Ahern 539ad1601aeSDavid Ahern nh_gw = &rt->fib6_nh.fib_nh_gw6; 540ad1601aeSDavid Ahern dev = rt->fib6_nh.fib_nh_dev; 5412152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 542f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5435e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5442152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5458d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5468d6c31bfSMartin KaFai Lau goto out; 5478d6c31bfSMartin KaFai Lau 5482152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 549990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 550990edb42SMartin KaFai Lau time_after(jiffies, 551dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 552c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 553990edb42SMartin KaFai Lau if (work) 5547e980569SJiri Benc __neigh_set_probe_once(neigh); 555990edb42SMartin KaFai Lau } 556c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 557f547fac6SSabrina Dubroca } else if (time_after(jiffies, rt->last_probe + 558f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 559990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 560990edb42SMartin KaFai Lau } 561c2f17e82SHannes Frederic Sowa 562c2f17e82SHannes Frederic Sowa if (work) { 563f547fac6SSabrina Dubroca rt->last_probe = jiffies; 564c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5655e670d84SDavid Ahern work->target = *nh_gw; 5665e670d84SDavid Ahern dev_hold(dev); 5675e670d84SDavid Ahern work->dev = dev; 568c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 569c2f17e82SHannes Frederic Sowa } 570990edb42SMartin KaFai Lau 5718d6c31bfSMartin KaFai Lau out: 5722152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 573f2c31e32SEric Dumazet } 57427097255SYOSHIFUJI Hideaki #else 5758d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57627097255SYOSHIFUJI Hideaki { 57727097255SYOSHIFUJI Hideaki } 57827097255SYOSHIFUJI Hideaki #endif 57927097255SYOSHIFUJI Hideaki 5801da177e4SLinus Torvalds /* 581554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5821da177e4SLinus Torvalds */ 5838d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5841da177e4SLinus Torvalds { 585ad1601aeSDavid Ahern const struct net_device *dev = rt->fib6_nh.fib_nh_dev; 5865e670d84SDavid Ahern 587161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 588554cfb7eSYOSHIFUJI Hideaki return 2; 589554cfb7eSYOSHIFUJI Hideaki return 0; 5901da177e4SLinus Torvalds } 5911da177e4SLinus Torvalds 592*1ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh) 5931da177e4SLinus Torvalds { 594afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5955e670d84SDavid Ahern struct neighbour *neigh; 596f2c31e32SEric Dumazet 597145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 598*1ba9a895SDavid Ahern neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev, 599*1ba9a895SDavid Ahern &fib6_nh->fib_nh_gw6); 600145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 601145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 602554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 603afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 604398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 605a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 606afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6077e980569SJiri Benc else 6087e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 609398bcbebSYOSHIFUJI Hideaki #endif 610145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 611afc154e9SHannes Frederic Sowa } else { 612afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6137e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 614a5a81f0bSPaul Marks } 615145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 616145a3621SYOSHIFUJI Hideaki / 吉藤英明 617a5a81f0bSPaul Marks return ret; 6181da177e4SLinus Torvalds } 6191da177e4SLinus Torvalds 6208d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 621554cfb7eSYOSHIFUJI Hideaki { 622*1ba9a895SDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 623a5a81f0bSPaul Marks int m; 6244d0c5911SYOSHIFUJI Hideaki 6254d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 62677d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 627afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 628ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 62993c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 630ebacaaa0SYOSHIFUJI Hideaki #endif 631*1ba9a895SDavid Ahern if ((strict & RT6_LOOKUP_F_REACHABLE) && 632*1ba9a895SDavid Ahern !(rt->fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) { 633*1ba9a895SDavid Ahern int n = rt6_check_neigh(nh); 634afc154e9SHannes Frederic Sowa if (n < 0) 635afc154e9SHannes Frederic Sowa return n; 636afc154e9SHannes Frederic Sowa } 637554cfb7eSYOSHIFUJI Hideaki return m; 638554cfb7eSYOSHIFUJI Hideaki } 639554cfb7eSYOSHIFUJI Hideaki 6408d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6418d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 642afc154e9SHannes Frederic Sowa bool *do_rr) 643554cfb7eSYOSHIFUJI Hideaki { 644554cfb7eSYOSHIFUJI Hideaki int m; 645afc154e9SHannes Frederic Sowa bool match_do_rr = false; 64635103d11SAndy Gospodarek 647ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 6488067bb8cSIdo Schimmel goto out; 6498067bb8cSIdo Schimmel 650ad1601aeSDavid Ahern if (ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev) && 651ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 652d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 65335103d11SAndy Gospodarek goto out; 654554cfb7eSYOSHIFUJI Hideaki 65514895687SDavid Ahern if (fib6_check_expired(rt)) 656f11e6659SDavid S. Miller goto out; 657554cfb7eSYOSHIFUJI Hideaki 658554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6597e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 660afc154e9SHannes Frederic Sowa match_do_rr = true; 661afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6627e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 663f11e6659SDavid S. Miller goto out; 6641da177e4SLinus Torvalds } 665f11e6659SDavid S. Miller 666afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 667afc154e9SHannes Frederic Sowa rt6_probe(rt); 668afc154e9SHannes Frederic Sowa 6697e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 670afc154e9SHannes Frederic Sowa if (m > *mpri) { 671afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 672afc154e9SHannes Frederic Sowa *mpri = m; 673afc154e9SHannes Frederic Sowa match = rt; 674afc154e9SHannes Frederic Sowa } 675f11e6659SDavid S. Miller out: 676f11e6659SDavid S. Miller return match; 6771da177e4SLinus Torvalds } 6781da177e4SLinus Torvalds 6798d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6808d1c802bSDavid Ahern struct fib6_info *leaf, 6818d1c802bSDavid Ahern struct fib6_info *rr_head, 682afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 683afc154e9SHannes Frederic Sowa bool *do_rr) 684f11e6659SDavid S. Miller { 6858d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 686f11e6659SDavid S. Miller int mpri = -1; 687f11e6659SDavid S. Miller 688f11e6659SDavid S. Miller match = NULL; 6899fbdcfafSSteffen Klassert cont = NULL; 6908fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 69193c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 6929fbdcfafSSteffen Klassert cont = rt; 6939fbdcfafSSteffen Klassert break; 6949fbdcfafSSteffen Klassert } 6959fbdcfafSSteffen Klassert 696afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 6979fbdcfafSSteffen Klassert } 6989fbdcfafSSteffen Klassert 69966f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7008fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 70193c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7029fbdcfafSSteffen Klassert cont = rt; 7039fbdcfafSSteffen Klassert break; 7049fbdcfafSSteffen Klassert } 7059fbdcfafSSteffen Klassert 7069fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7079fbdcfafSSteffen Klassert } 7089fbdcfafSSteffen Klassert 7099fbdcfafSSteffen Klassert if (match || !cont) 7109fbdcfafSSteffen Klassert return match; 7119fbdcfafSSteffen Klassert 7128fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 713afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 714f11e6659SDavid S. Miller 715f11e6659SDavid S. Miller return match; 716f11e6659SDavid S. Miller } 717f11e6659SDavid S. Miller 7188d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7198d1040e8SWei Wang int oif, int strict) 720f11e6659SDavid S. Miller { 7218d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7228d1c802bSDavid Ahern struct fib6_info *match, *rt0; 723afc154e9SHannes Frederic Sowa bool do_rr = false; 72417ecf590SWei Wang int key_plen; 725f11e6659SDavid S. Miller 726421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 727421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7288d1040e8SWei Wang 72966f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 730f11e6659SDavid S. Miller if (!rt0) 73166f5d6ceSWei Wang rt0 = leaf; 732f11e6659SDavid S. Miller 73317ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 73417ecf590SWei Wang * and fn->leaf does not points to its child's leaf 73517ecf590SWei Wang * (This might happen if all routes under fn are deleted from 73617ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 73717ecf590SWei Wang */ 73893c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 73917ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 74093c2fb25SDavid Ahern if (rt0->fib6_src.plen) 74193c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 74217ecf590SWei Wang #endif 74317ecf590SWei Wang if (fn->fn_bit != key_plen) 744421842edSDavid Ahern return net->ipv6.fib6_null_entry; 74517ecf590SWei Wang 74693c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 747afc154e9SHannes Frederic Sowa &do_rr); 748f11e6659SDavid S. Miller 749afc154e9SHannes Frederic Sowa if (do_rr) { 7508fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 751f11e6659SDavid S. Miller 752554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 75393c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7548d1040e8SWei Wang next = leaf; 755f11e6659SDavid S. Miller 75666f5d6ceSWei Wang if (next != rt0) { 75793c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 75866f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 75993c2fb25SDavid Ahern if (next->fib6_node) 76066f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 76193c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 76266f5d6ceSWei Wang } 763554cfb7eSYOSHIFUJI Hideaki } 764554cfb7eSYOSHIFUJI Hideaki 765421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7661da177e4SLinus Torvalds } 7671da177e4SLinus Torvalds 7688d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7698b9df265SMartin KaFai Lau { 770bdf00467SDavid Ahern return (rt->fib6_flags & RTF_NONEXTHOP) || rt->fib6_nh.fib_nh_gw_family; 7718b9df265SMartin KaFai Lau } 7728b9df265SMartin KaFai Lau 77370ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 77470ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 775b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 77670ceb4f5SYOSHIFUJI Hideaki { 777c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 77870ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 77970ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 78070ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7814bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7828d1c802bSDavid Ahern struct fib6_info *rt; 78370ceb4f5SYOSHIFUJI Hideaki 78470ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 78570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 78670ceb4f5SYOSHIFUJI Hideaki } 78770ceb4f5SYOSHIFUJI Hideaki 78870ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 78970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 79070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 79270ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79370ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 79470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 79570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79670ceb4f5SYOSHIFUJI Hideaki } 79770ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 79870ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 79970ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80070ceb4f5SYOSHIFUJI Hideaki } 80170ceb4f5SYOSHIFUJI Hideaki } 80270ceb4f5SYOSHIFUJI Hideaki 80370ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 80470ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8053933fc95SJens Rosenboom return -EINVAL; 80670ceb4f5SYOSHIFUJI Hideaki 8074bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 80870ceb4f5SYOSHIFUJI Hideaki 80970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 81070ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 81170ceb4f5SYOSHIFUJI Hideaki else { 81270ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 81370ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 81470ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 81570ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 81670ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 81770ceb4f5SYOSHIFUJI Hideaki } 81870ceb4f5SYOSHIFUJI Hideaki 819f104a567SDuan Jiong if (rinfo->prefix_len == 0) 820afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 821f104a567SDuan Jiong else 822f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 823830218c1SDavid Ahern gwaddr, dev); 82470ceb4f5SYOSHIFUJI Hideaki 82570ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 826afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 82770ceb4f5SYOSHIFUJI Hideaki rt = NULL; 82870ceb4f5SYOSHIFUJI Hideaki } 82970ceb4f5SYOSHIFUJI Hideaki 83070ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 831830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 832830218c1SDavid Ahern dev, pref); 83370ceb4f5SYOSHIFUJI Hideaki else if (rt) 83493c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 83593c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 83670ceb4f5SYOSHIFUJI Hideaki 83770ceb4f5SYOSHIFUJI Hideaki if (rt) { 8381716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 83914895687SDavid Ahern fib6_clean_expires(rt); 8401716a961SGao feng else 84114895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8421716a961SGao feng 84393531c67SDavid Ahern fib6_info_release(rt); 84470ceb4f5SYOSHIFUJI Hideaki } 84570ceb4f5SYOSHIFUJI Hideaki return 0; 84670ceb4f5SYOSHIFUJI Hideaki } 84770ceb4f5SYOSHIFUJI Hideaki #endif 84870ceb4f5SYOSHIFUJI Hideaki 849ae90d867SDavid Ahern /* 850ae90d867SDavid Ahern * Misc support functions 851ae90d867SDavid Ahern */ 852ae90d867SDavid Ahern 853ae90d867SDavid Ahern /* called with rcu_lock held */ 8548d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 855ae90d867SDavid Ahern { 856ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 857ae90d867SDavid Ahern 85893c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 859ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 860ae90d867SDavid Ahern * device if it is a master device, the master device if 861ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 862ae90d867SDavid Ahern */ 863ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 86493c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 865ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 866ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 867ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 868ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 869ae90d867SDavid Ahern * case we want dev returned to be dev 870ae90d867SDavid Ahern */ 871ae90d867SDavid Ahern } 872ae90d867SDavid Ahern 873ae90d867SDavid Ahern return dev; 874ae90d867SDavid Ahern } 875ae90d867SDavid Ahern 8766edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8776edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8786edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8796edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8806edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8816edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8826edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8836edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8846edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 8856edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 8866edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 8876edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 8886edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 8896edb3c96SDavid Ahern }; 8906edb3c96SDavid Ahern 8916edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 8926edb3c96SDavid Ahern { 8936edb3c96SDavid Ahern return fib6_prop[fib6_type]; 8946edb3c96SDavid Ahern } 8956edb3c96SDavid Ahern 8968d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 8973b6761d1SDavid Ahern { 8983b6761d1SDavid Ahern unsigned short flags = 0; 8993b6761d1SDavid Ahern 9003b6761d1SDavid Ahern if (rt->dst_nocount) 9013b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9023b6761d1SDavid Ahern if (rt->dst_nopolicy) 9033b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9043b6761d1SDavid Ahern if (rt->dst_host) 9053b6761d1SDavid Ahern flags |= DST_HOST; 9063b6761d1SDavid Ahern 9073b6761d1SDavid Ahern return flags; 9083b6761d1SDavid Ahern } 9093b6761d1SDavid Ahern 9108d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9116edb3c96SDavid Ahern { 9126edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9136edb3c96SDavid Ahern 9146edb3c96SDavid Ahern switch (ort->fib6_type) { 9156edb3c96SDavid Ahern case RTN_BLACKHOLE: 9166edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9176edb3c96SDavid Ahern rt->dst.input = dst_discard; 9186edb3c96SDavid Ahern break; 9196edb3c96SDavid Ahern case RTN_PROHIBIT: 9206edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9216edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9226edb3c96SDavid Ahern break; 9236edb3c96SDavid Ahern case RTN_THROW: 9246edb3c96SDavid Ahern case RTN_UNREACHABLE: 9256edb3c96SDavid Ahern default: 9266edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9276edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9286edb3c96SDavid Ahern break; 9296edb3c96SDavid Ahern } 9306edb3c96SDavid Ahern } 9316edb3c96SDavid Ahern 9328d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9336edb3c96SDavid Ahern { 93493c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9356edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9366edb3c96SDavid Ahern return; 9376edb3c96SDavid Ahern } 9386edb3c96SDavid Ahern 9396edb3c96SDavid Ahern rt->dst.error = 0; 9406edb3c96SDavid Ahern rt->dst.output = ip6_output; 9416edb3c96SDavid Ahern 942d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9436edb3c96SDavid Ahern rt->dst.input = ip6_input; 94493c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9456edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9466edb3c96SDavid Ahern } else { 9476edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9486edb3c96SDavid Ahern } 9496edb3c96SDavid Ahern 950ad1601aeSDavid Ahern if (ort->fib6_nh.fib_nh_lws) { 951ad1601aeSDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.fib_nh_lws); 9526edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9536edb3c96SDavid Ahern } 9546edb3c96SDavid Ahern 9556edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9566edb3c96SDavid Ahern } 9576edb3c96SDavid Ahern 958e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9598d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 960ae90d867SDavid Ahern { 961ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 962a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 963e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 964ae90d867SDavid Ahern } 965ae90d867SDavid Ahern 966e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9678d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 968ae90d867SDavid Ahern { 969dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 970dcd1f572SDavid Ahern 9716edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9726edb3c96SDavid Ahern 97393c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 974dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 97593c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 976bdf00467SDavid Ahern if (ort->fib6_nh.fib_nh_gw_family) { 977ad1601aeSDavid Ahern rt->rt6i_gateway = ort->fib6_nh.fib_nh_gw6; 9782b2450caSDavid Ahern rt->rt6i_flags |= RTF_GATEWAY; 9792b2450caSDavid Ahern } 980ae90d867SDavid Ahern rt6_set_from(rt, ort); 981ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 98293c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 983ae90d867SDavid Ahern #endif 984ae90d867SDavid Ahern } 985ae90d867SDavid Ahern 986a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 987a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 988a3c00e46SMartin KaFai Lau { 98966f5d6ceSWei Wang struct fib6_node *pn, *sn; 990a3c00e46SMartin KaFai Lau while (1) { 991a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 992a3c00e46SMartin KaFai Lau return NULL; 99366f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 99466f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 99566f5d6ceSWei Wang if (sn && sn != fn) 9966454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 997a3c00e46SMartin KaFai Lau else 998a3c00e46SMartin KaFai Lau fn = pn; 999a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1000a3c00e46SMartin KaFai Lau return fn; 1001a3c00e46SMartin KaFai Lau } 1002a3c00e46SMartin KaFai Lau } 1003c71099acSThomas Graf 100410585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt) 1005d3843fe5SWei Wang { 1006d3843fe5SWei Wang struct rt6_info *rt = *prt; 1007d3843fe5SWei Wang 1008d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1009d3843fe5SWei Wang return true; 101010585b43SDavid Ahern if (net) { 1011d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1012d3843fe5SWei Wang dst_hold(&rt->dst); 1013d3843fe5SWei Wang } else { 1014d3843fe5SWei Wang rt = NULL; 1015d3843fe5SWei Wang } 1016d3843fe5SWei Wang *prt = rt; 1017d3843fe5SWei Wang return false; 1018d3843fe5SWei Wang } 1019d3843fe5SWei Wang 1020dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10218d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1022dec9b0e2SDavid Ahern { 10233b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1024ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 1025dec9b0e2SDavid Ahern struct rt6_info *nrt; 1026dec9b0e2SDavid Ahern 1027e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 10281c87e79aSXin Long goto fallback; 1029e873e4b9SWei Wang 103093531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 10311c87e79aSXin Long if (!nrt) { 1032e873e4b9SWei Wang fib6_info_release(rt); 10331c87e79aSXin Long goto fallback; 10341c87e79aSXin Long } 1035dec9b0e2SDavid Ahern 10361c87e79aSXin Long ip6_rt_copy_init(nrt, rt); 10371c87e79aSXin Long return nrt; 10381c87e79aSXin Long 10391c87e79aSXin Long fallback: 10401c87e79aSXin Long nrt = dev_net(dev)->ipv6.ip6_null_entry; 10411c87e79aSXin Long dst_hold(&nrt->dst); 1042dec9b0e2SDavid Ahern return nrt; 1043dec9b0e2SDavid Ahern } 1044dec9b0e2SDavid Ahern 10458ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10468ed67789SDaniel Lezcano struct fib6_table *table, 1047b75cc8f9SDavid Ahern struct flowi6 *fl6, 1048b75cc8f9SDavid Ahern const struct sk_buff *skb, 1049b75cc8f9SDavid Ahern int flags) 10501da177e4SLinus Torvalds { 10518d1c802bSDavid Ahern struct fib6_info *f6i; 10521da177e4SLinus Torvalds struct fib6_node *fn; 105323fb93a4SDavid Ahern struct rt6_info *rt; 10541da177e4SLinus Torvalds 1055b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1056b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1057b6cdbc85SDavid Ahern 105866f5d6ceSWei Wang rcu_read_lock(); 10596454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1060c71099acSThomas Graf restart: 106123fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 106223fb93a4SDavid Ahern if (!f6i) { 106323fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 106466f5d6ceSWei Wang } else { 106523fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 106666f5d6ceSWei Wang fl6->flowi6_oif, flags); 106793c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10683b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10693b290a31SDavid Ahern fl6->flowi6_oif, skb, 10703b290a31SDavid Ahern flags); 107166f5d6ceSWei Wang } 107223fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1073a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1074a3c00e46SMartin KaFai Lau if (fn) 1075a3c00e46SMartin KaFai Lau goto restart; 1076a3c00e46SMartin KaFai Lau } 10772b760fcfSWei Wang 1078d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1079d4bea421SDavid Ahern 10804c9483b2SDavid S. Miller /* Search through exception table */ 108123fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 108223fb93a4SDavid Ahern if (rt) { 108310585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 1084d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 108523fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1086dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1087dec9b0e2SDavid Ahern dst_hold(&rt->dst); 108823fb93a4SDavid Ahern } else { 108923fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 1090dec9b0e2SDavid Ahern } 1091d3843fe5SWei Wang 109266f5d6ceSWei Wang rcu_read_unlock(); 1093b811580dSDavid Ahern 10941da177e4SLinus Torvalds return rt; 1095c71099acSThomas Graf } 1096c71099acSThomas Graf 1097ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1098b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1099ea6e574eSFlorian Westphal { 1100b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1101ea6e574eSFlorian Westphal } 1102ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1103ea6e574eSFlorian Westphal 11049acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1105b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1106b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1107c71099acSThomas Graf { 11084c9483b2SDavid S. Miller struct flowi6 fl6 = { 11094c9483b2SDavid S. Miller .flowi6_oif = oif, 11104c9483b2SDavid S. Miller .daddr = *daddr, 1111c71099acSThomas Graf }; 1112c71099acSThomas Graf struct dst_entry *dst; 111377d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1114c71099acSThomas Graf 1115adaa70bbSThomas Graf if (saddr) { 11164c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1117adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1118adaa70bbSThomas Graf } 1119adaa70bbSThomas Graf 1120b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1121c71099acSThomas Graf if (dst->error == 0) 1122c71099acSThomas Graf return (struct rt6_info *) dst; 1123c71099acSThomas Graf 1124c71099acSThomas Graf dst_release(dst); 1125c71099acSThomas Graf 11261da177e4SLinus Torvalds return NULL; 11271da177e4SLinus Torvalds } 11287159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11297159039aSYOSHIFUJI Hideaki 1130c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11311cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11321cfb71eeSWei Wang * route is released. 11331cfb71eeSWei Wang * Caller must hold dst before calling it. 11341da177e4SLinus Torvalds */ 11351da177e4SLinus Torvalds 11368d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1137333c4301SDavid Ahern struct netlink_ext_ack *extack) 11381da177e4SLinus Torvalds { 11391da177e4SLinus Torvalds int err; 1140c71099acSThomas Graf struct fib6_table *table; 11411da177e4SLinus Torvalds 114293c2fb25SDavid Ahern table = rt->fib6_table; 114366f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1144d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 114566f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11461da177e4SLinus Torvalds 11471da177e4SLinus Torvalds return err; 11481da177e4SLinus Torvalds } 11491da177e4SLinus Torvalds 11508d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 115140e22e8fSThomas Graf { 1152afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1153e715b6d3SFlorian Westphal 1154d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 115540e22e8fSThomas Graf } 115640e22e8fSThomas Graf 11578d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 115821efcfa0SEric Dumazet const struct in6_addr *daddr, 1159b71d1d42SEric Dumazet const struct in6_addr *saddr) 11601da177e4SLinus Torvalds { 11614832c30dSDavid Ahern struct net_device *dev; 11621da177e4SLinus Torvalds struct rt6_info *rt; 11631da177e4SLinus Torvalds 11641da177e4SLinus Torvalds /* 11651da177e4SLinus Torvalds * Clone the route. 11661da177e4SLinus Torvalds */ 11671da177e4SLinus Torvalds 1168e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1169e873e4b9SWei Wang return NULL; 1170e873e4b9SWei Wang 11714832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 117293531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1173e873e4b9SWei Wang if (!rt) { 1174e873e4b9SWei Wang fib6_info_release(ort); 117583a09abdSMartin KaFai Lau return NULL; 1176e873e4b9SWei Wang } 117783a09abdSMartin KaFai Lau 117883a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11798b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 118083a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 118183a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 118283a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11838b9df265SMartin KaFai Lau 11848b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 118593c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 118693c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 118758c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 11881da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 11891da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 11904e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 11911da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 11921da177e4SLinus Torvalds } 11931da177e4SLinus Torvalds #endif 119495a9a5baSYOSHIFUJI Hideaki } 119595a9a5baSYOSHIFUJI Hideaki 1196299d9939SYOSHIFUJI Hideaki return rt; 1197299d9939SYOSHIFUJI Hideaki } 1198299d9939SYOSHIFUJI Hideaki 11998d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1200d52d3997SMartin KaFai Lau { 12013b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12024832c30dSDavid Ahern struct net_device *dev; 1203d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1204d52d3997SMartin KaFai Lau 1205e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1206e873e4b9SWei Wang return NULL; 1207e873e4b9SWei Wang 12084832c30dSDavid Ahern rcu_read_lock(); 12094832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 121093531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12114832c30dSDavid Ahern rcu_read_unlock(); 1212e873e4b9SWei Wang if (!pcpu_rt) { 1213e873e4b9SWei Wang fib6_info_release(rt); 1214d52d3997SMartin KaFai Lau return NULL; 1215e873e4b9SWei Wang } 1216d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1217d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1218d52d3997SMartin KaFai Lau return pcpu_rt; 1219d52d3997SMartin KaFai Lau } 1220d52d3997SMartin KaFai Lau 122166f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12228d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1223d52d3997SMartin KaFai Lau { 1224a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1225d52d3997SMartin KaFai Lau 1226d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1227d52d3997SMartin KaFai Lau pcpu_rt = *p; 1228d52d3997SMartin KaFai Lau 1229d4ead6b3SDavid Ahern if (pcpu_rt) 123010585b43SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt); 1231d3843fe5SWei Wang 1232a73e4195SMartin KaFai Lau return pcpu_rt; 1233a73e4195SMartin KaFai Lau } 1234a73e4195SMartin KaFai Lau 1235afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12368d1c802bSDavid Ahern struct fib6_info *rt) 1237a73e4195SMartin KaFai Lau { 1238a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1239d52d3997SMartin KaFai Lau 1240d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1241d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12429c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12439c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1244d52d3997SMartin KaFai Lau } 1245d52d3997SMartin KaFai Lau 1246a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1247a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1248d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1249951f788aSEric Dumazet BUG_ON(prev); 1250a94b9367SWei Wang 1251d52d3997SMartin KaFai Lau return pcpu_rt; 1252d52d3997SMartin KaFai Lau } 1253d52d3997SMartin KaFai Lau 125435732d01SWei Wang /* exception hash table implementation 125535732d01SWei Wang */ 125635732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 125735732d01SWei Wang 125835732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 125935732d01SWei Wang * Caller must hold rt6_exception_lock 126035732d01SWei Wang */ 126135732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 126235732d01SWei Wang struct rt6_exception *rt6_ex) 126335732d01SWei Wang { 1264f5b51fe8SPaolo Abeni struct fib6_info *from; 1265b2427e67SColin Ian King struct net *net; 126681eb8447SWei Wang 126735732d01SWei Wang if (!bucket || !rt6_ex) 126835732d01SWei Wang return; 1269b2427e67SColin Ian King 1270b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 1271f5b51fe8SPaolo Abeni net->ipv6.rt6_stats->fib_rt_cache--; 1272f5b51fe8SPaolo Abeni 1273f5b51fe8SPaolo Abeni /* purge completely the exception to allow releasing the held resources: 1274f5b51fe8SPaolo Abeni * some [sk] cache may keep the dst around for unlimited time 1275f5b51fe8SPaolo Abeni */ 1276f5b51fe8SPaolo Abeni from = rcu_dereference_protected(rt6_ex->rt6i->from, 1277f5b51fe8SPaolo Abeni lockdep_is_held(&rt6_exception_lock)); 1278f5b51fe8SPaolo Abeni rcu_assign_pointer(rt6_ex->rt6i->from, NULL); 1279f5b51fe8SPaolo Abeni fib6_info_release(from); 1280f5b51fe8SPaolo Abeni dst_dev_put(&rt6_ex->rt6i->dst); 1281f5b51fe8SPaolo Abeni 128235732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128377634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 128435732d01SWei Wang kfree_rcu(rt6_ex, rcu); 128535732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 128635732d01SWei Wang bucket->depth--; 128735732d01SWei Wang } 128835732d01SWei Wang 128935732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129035732d01SWei Wang * Caller must hold rt6_exception_lock 129135732d01SWei Wang */ 129235732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 129335732d01SWei Wang { 129435732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 129535732d01SWei Wang 129635732d01SWei Wang if (!bucket) 129735732d01SWei Wang return; 129835732d01SWei Wang 129935732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130035732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130135732d01SWei Wang oldest = rt6_ex; 130235732d01SWei Wang } 130335732d01SWei Wang rt6_remove_exception(bucket, oldest); 130435732d01SWei Wang } 130535732d01SWei Wang 130635732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 130735732d01SWei Wang const struct in6_addr *src) 130835732d01SWei Wang { 130935732d01SWei Wang static u32 seed __read_mostly; 131035732d01SWei Wang u32 val; 131135732d01SWei Wang 131235732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 131335732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 131435732d01SWei Wang 131535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 131635732d01SWei Wang if (src) 131735732d01SWei Wang val = jhash(src, sizeof(*src), val); 131835732d01SWei Wang #endif 131935732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132035732d01SWei Wang } 132135732d01SWei Wang 132235732d01SWei Wang /* Helper function to find the cached rt in the hash table 132335732d01SWei Wang * and update bucket pointer to point to the bucket for this 132435732d01SWei Wang * (daddr, saddr) pair 132535732d01SWei Wang * Caller must hold rt6_exception_lock 132635732d01SWei Wang */ 132735732d01SWei Wang static struct rt6_exception * 132835732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 132935732d01SWei Wang const struct in6_addr *daddr, 133035732d01SWei Wang const struct in6_addr *saddr) 133135732d01SWei Wang { 133235732d01SWei Wang struct rt6_exception *rt6_ex; 133335732d01SWei Wang u32 hval; 133435732d01SWei Wang 133535732d01SWei Wang if (!(*bucket) || !daddr) 133635732d01SWei Wang return NULL; 133735732d01SWei Wang 133835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 133935732d01SWei Wang *bucket += hval; 134035732d01SWei Wang 134135732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 134335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 134435732d01SWei Wang 134535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 134635732d01SWei Wang if (matched && saddr) 134735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 134835732d01SWei Wang #endif 134935732d01SWei Wang if (matched) 135035732d01SWei Wang return rt6_ex; 135135732d01SWei Wang } 135235732d01SWei Wang return NULL; 135335732d01SWei Wang } 135435732d01SWei Wang 135535732d01SWei Wang /* Helper function to find the cached rt in the hash table 135635732d01SWei Wang * and update bucket pointer to point to the bucket for this 135735732d01SWei Wang * (daddr, saddr) pair 135835732d01SWei Wang * Caller must hold rcu_read_lock() 135935732d01SWei Wang */ 136035732d01SWei Wang static struct rt6_exception * 136135732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136235732d01SWei Wang const struct in6_addr *daddr, 136335732d01SWei Wang const struct in6_addr *saddr) 136435732d01SWei Wang { 136535732d01SWei Wang struct rt6_exception *rt6_ex; 136635732d01SWei Wang u32 hval; 136735732d01SWei Wang 136835732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 136935732d01SWei Wang 137035732d01SWei Wang if (!(*bucket) || !daddr) 137135732d01SWei Wang return NULL; 137235732d01SWei Wang 137335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 137435732d01SWei Wang *bucket += hval; 137535732d01SWei Wang 137635732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 137735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 137835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 137935732d01SWei Wang 138035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138135732d01SWei Wang if (matched && saddr) 138235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 138335732d01SWei Wang #endif 138435732d01SWei Wang if (matched) 138535732d01SWei Wang return rt6_ex; 138635732d01SWei Wang } 138735732d01SWei Wang return NULL; 138835732d01SWei Wang } 138935732d01SWei Wang 13908d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139135732d01SWei Wang { 1392d4ead6b3SDavid Ahern unsigned int mtu; 1393d4ead6b3SDavid Ahern 1394dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1395dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1396dcd1f572SDavid Ahern } else { 1397dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1398dcd1f572SDavid Ahern struct inet6_dev *idev; 1399dcd1f572SDavid Ahern 1400dcd1f572SDavid Ahern rcu_read_lock(); 1401dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1402dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1403dcd1f572SDavid Ahern rcu_read_unlock(); 1404dcd1f572SDavid Ahern } 1405dcd1f572SDavid Ahern 1406d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1407d4ead6b3SDavid Ahern 1408ad1601aeSDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.fib_nh_lws, mtu); 1409d4ead6b3SDavid Ahern } 1410d4ead6b3SDavid Ahern 141135732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14128d1c802bSDavid Ahern struct fib6_info *ort) 141335732d01SWei Wang { 14145e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 141535732d01SWei Wang struct rt6_exception_bucket *bucket; 141635732d01SWei Wang struct in6_addr *src_key = NULL; 141735732d01SWei Wang struct rt6_exception *rt6_ex; 141835732d01SWei Wang int err = 0; 141935732d01SWei Wang 142035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142135732d01SWei Wang 142235732d01SWei Wang if (ort->exception_bucket_flushed) { 142335732d01SWei Wang err = -EINVAL; 142435732d01SWei Wang goto out; 142535732d01SWei Wang } 142635732d01SWei Wang 142735732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 142835732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 142935732d01SWei Wang if (!bucket) { 143035732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143135732d01SWei Wang GFP_ATOMIC); 143235732d01SWei Wang if (!bucket) { 143335732d01SWei Wang err = -ENOMEM; 143435732d01SWei Wang goto out; 143535732d01SWei Wang } 143635732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 143735732d01SWei Wang } 143835732d01SWei Wang 143935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144035732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144135732d01SWei Wang * and exception table is indexed by a hash of 144235732d01SWei Wang * both rt6i_dst and rt6i_src. 144335732d01SWei Wang * Otherwise, the exception table is indexed by 144435732d01SWei Wang * a hash of only rt6i_dst. 144535732d01SWei Wang */ 144693c2fb25SDavid Ahern if (ort->fib6_src.plen) 144735732d01SWei Wang src_key = &nrt->rt6i_src.addr; 144835732d01SWei Wang #endif 1449f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1450f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1451f5bbe7eeSWei Wang * is less than ort's mtu value. 1452f5bbe7eeSWei Wang */ 1453d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1454f5bbe7eeSWei Wang err = -EINVAL; 1455f5bbe7eeSWei Wang goto out; 1456f5bbe7eeSWei Wang } 145760006a48SWei Wang 145835732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 145935732d01SWei Wang src_key); 146035732d01SWei Wang if (rt6_ex) 146135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 146235732d01SWei Wang 146335732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 146435732d01SWei Wang if (!rt6_ex) { 146535732d01SWei Wang err = -ENOMEM; 146635732d01SWei Wang goto out; 146735732d01SWei Wang } 146835732d01SWei Wang rt6_ex->rt6i = nrt; 146935732d01SWei Wang rt6_ex->stamp = jiffies; 147035732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 147135732d01SWei Wang bucket->depth++; 147281eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 147335732d01SWei Wang 147435732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 147535732d01SWei Wang rt6_exception_remove_oldest(bucket); 147635732d01SWei Wang 147735732d01SWei Wang out: 147835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 147935732d01SWei Wang 148035732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1481b886d5f2SPaolo Abeni if (!err) { 148293c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14837aef6859SDavid Ahern fib6_update_sernum(net, ort); 148493c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1485b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1486b886d5f2SPaolo Abeni } 148735732d01SWei Wang 148835732d01SWei Wang return err; 148935732d01SWei Wang } 149035732d01SWei Wang 14918d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 149235732d01SWei Wang { 149335732d01SWei Wang struct rt6_exception_bucket *bucket; 149435732d01SWei Wang struct rt6_exception *rt6_ex; 149535732d01SWei Wang struct hlist_node *tmp; 149635732d01SWei Wang int i; 149735732d01SWei Wang 149835732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 149935732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150035732d01SWei Wang rt->exception_bucket_flushed = 1; 150135732d01SWei Wang 150235732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 150335732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 150435732d01SWei Wang if (!bucket) 150535732d01SWei Wang goto out; 150635732d01SWei Wang 150735732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 150835732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 150935732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151035732d01SWei Wang WARN_ON_ONCE(bucket->depth); 151135732d01SWei Wang bucket++; 151235732d01SWei Wang } 151335732d01SWei Wang 151435732d01SWei Wang out: 151535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 151635732d01SWei Wang } 151735732d01SWei Wang 151835732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 151935732d01SWei Wang * Caller has to hold rcu_read_lock() 152035732d01SWei Wang */ 15218d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 152235732d01SWei Wang struct in6_addr *daddr, 152335732d01SWei Wang struct in6_addr *saddr) 152435732d01SWei Wang { 152535732d01SWei Wang struct rt6_exception_bucket *bucket; 152635732d01SWei Wang struct in6_addr *src_key = NULL; 152735732d01SWei Wang struct rt6_exception *rt6_ex; 152835732d01SWei Wang struct rt6_info *res = NULL; 152935732d01SWei Wang 153035732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 153135732d01SWei Wang 153235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 153335732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 153435732d01SWei Wang * and exception table is indexed by a hash of 153535732d01SWei Wang * both rt6i_dst and rt6i_src. 153635732d01SWei Wang * Otherwise, the exception table is indexed by 153735732d01SWei Wang * a hash of only rt6i_dst. 153835732d01SWei Wang */ 153993c2fb25SDavid Ahern if (rt->fib6_src.plen) 154035732d01SWei Wang src_key = saddr; 154135732d01SWei Wang #endif 154235732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 154335732d01SWei Wang 154435732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 154535732d01SWei Wang res = rt6_ex->rt6i; 154635732d01SWei Wang 154735732d01SWei Wang return res; 154835732d01SWei Wang } 154935732d01SWei Wang 155035732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 155123fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 155235732d01SWei Wang { 155335732d01SWei Wang struct rt6_exception_bucket *bucket; 155435732d01SWei Wang struct in6_addr *src_key = NULL; 155535732d01SWei Wang struct rt6_exception *rt6_ex; 15568a14e46fSDavid Ahern struct fib6_info *from; 155735732d01SWei Wang int err; 155835732d01SWei Wang 1559091311deSEric Dumazet from = rcu_dereference(rt->from); 156035732d01SWei Wang if (!from || 1561442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 156235732d01SWei Wang return -EINVAL; 156335732d01SWei Wang 156435732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 156535732d01SWei Wang return -ENOENT; 156635732d01SWei Wang 156735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 156835732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 156935732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 157135732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 157235732d01SWei Wang * and exception table is indexed by a hash of 157335732d01SWei Wang * both rt6i_dst and rt6i_src. 157435732d01SWei Wang * Otherwise, the exception table is indexed by 157535732d01SWei Wang * a hash of only rt6i_dst. 157635732d01SWei Wang */ 157793c2fb25SDavid Ahern if (from->fib6_src.plen) 157835732d01SWei Wang src_key = &rt->rt6i_src.addr; 157935732d01SWei Wang #endif 158035732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 158135732d01SWei Wang &rt->rt6i_dst.addr, 158235732d01SWei Wang src_key); 158335732d01SWei Wang if (rt6_ex) { 158435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 158535732d01SWei Wang err = 0; 158635732d01SWei Wang } else { 158735732d01SWei Wang err = -ENOENT; 158835732d01SWei Wang } 158935732d01SWei Wang 159035732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 159135732d01SWei Wang return err; 159235732d01SWei Wang } 159335732d01SWei Wang 159435732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 159535732d01SWei Wang * refresh its stamp 159635732d01SWei Wang */ 159735732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 159835732d01SWei Wang { 159935732d01SWei Wang struct rt6_exception_bucket *bucket; 160035732d01SWei Wang struct in6_addr *src_key = NULL; 160135732d01SWei Wang struct rt6_exception *rt6_ex; 1602193f3685SPaolo Abeni struct fib6_info *from; 160335732d01SWei Wang 160435732d01SWei Wang rcu_read_lock(); 1605193f3685SPaolo Abeni from = rcu_dereference(rt->from); 1606193f3685SPaolo Abeni if (!from || !(rt->rt6i_flags & RTF_CACHE)) 1607193f3685SPaolo Abeni goto unlock; 1608193f3685SPaolo Abeni 160935732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161035732d01SWei Wang 161135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161235732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 161335732d01SWei Wang * and exception table is indexed by a hash of 161435732d01SWei Wang * both rt6i_dst and rt6i_src. 161535732d01SWei Wang * Otherwise, the exception table is indexed by 161635732d01SWei Wang * a hash of only rt6i_dst. 161735732d01SWei Wang */ 161893c2fb25SDavid Ahern if (from->fib6_src.plen) 161935732d01SWei Wang src_key = &rt->rt6i_src.addr; 162035732d01SWei Wang #endif 162135732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 162235732d01SWei Wang &rt->rt6i_dst.addr, 162335732d01SWei Wang src_key); 162435732d01SWei Wang if (rt6_ex) 162535732d01SWei Wang rt6_ex->stamp = jiffies; 162635732d01SWei Wang 1627193f3685SPaolo Abeni unlock: 162835732d01SWei Wang rcu_read_unlock(); 162935732d01SWei Wang } 163035732d01SWei Wang 1631e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1632e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1633e9fa1495SStefano Brivio { 1634e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1635e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1636e9fa1495SStefano Brivio * reflect PMTU decreases. 1637e9fa1495SStefano Brivio * 1638e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1639e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1640e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1641e9fa1495SStefano Brivio * handle this. 1642e9fa1495SStefano Brivio */ 1643e9fa1495SStefano Brivio 1644e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1645e9fa1495SStefano Brivio return true; 1646e9fa1495SStefano Brivio 1647e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1648e9fa1495SStefano Brivio return true; 1649e9fa1495SStefano Brivio 1650e9fa1495SStefano Brivio return false; 1651e9fa1495SStefano Brivio } 1652e9fa1495SStefano Brivio 1653e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16548d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1655f5bbe7eeSWei Wang { 1656f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1657f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1658f5bbe7eeSWei Wang int i; 1659f5bbe7eeSWei Wang 1660f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1661f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1662f5bbe7eeSWei Wang 1663e9fa1495SStefano Brivio if (!bucket) 1664e9fa1495SStefano Brivio return; 1665e9fa1495SStefano Brivio 1666f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1667f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1668f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1669e9fa1495SStefano Brivio 1670e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1671d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1672f5bbe7eeSWei Wang * been updated. 1673f5bbe7eeSWei Wang */ 1674d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1675e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1676d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1677f5bbe7eeSWei Wang } 1678f5bbe7eeSWei Wang bucket++; 1679f5bbe7eeSWei Wang } 1680f5bbe7eeSWei Wang } 1681f5bbe7eeSWei Wang 1682b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1683b16cb459SWei Wang 16848d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1685b16cb459SWei Wang struct in6_addr *gateway) 1686b16cb459SWei Wang { 1687b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1688b16cb459SWei Wang struct rt6_exception *rt6_ex; 1689b16cb459SWei Wang struct hlist_node *tmp; 1690b16cb459SWei Wang int i; 1691b16cb459SWei Wang 1692b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1693b16cb459SWei Wang return; 1694b16cb459SWei Wang 1695b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1696b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1697b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1698b16cb459SWei Wang 1699b16cb459SWei Wang if (bucket) { 1700b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1701b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1702b16cb459SWei Wang &bucket->chain, hlist) { 1703b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1704b16cb459SWei Wang 1705b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1706b16cb459SWei Wang RTF_CACHE_GATEWAY && 1707b16cb459SWei Wang ipv6_addr_equal(gateway, 1708b16cb459SWei Wang &entry->rt6i_gateway)) { 1709b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1710b16cb459SWei Wang } 1711b16cb459SWei Wang } 1712b16cb459SWei Wang bucket++; 1713b16cb459SWei Wang } 1714b16cb459SWei Wang } 1715b16cb459SWei Wang 1716b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1717b16cb459SWei Wang } 1718b16cb459SWei Wang 1719c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1720c757faa8SWei Wang struct rt6_exception *rt6_ex, 1721c757faa8SWei Wang struct fib6_gc_args *gc_args, 1722c757faa8SWei Wang unsigned long now) 1723c757faa8SWei Wang { 1724c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1725c757faa8SWei Wang 17261859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17271859bac0SPaolo Abeni * even if others have still references to them, so that on next 17281859bac0SPaolo Abeni * dst_check() such references can be dropped. 17291859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17301859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17311859bac0SPaolo Abeni */ 173231afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173331afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1734c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1735c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1736c757faa8SWei Wang return; 173731afeb42SWei Wang } 173831afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 173931afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 174031afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174131afeb42SWei Wang return; 174231afeb42SWei Wang } 174331afeb42SWei Wang 174431afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1745c757faa8SWei Wang struct neighbour *neigh; 1746c757faa8SWei Wang __u8 neigh_flags = 0; 1747c757faa8SWei Wang 17481bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17491bfa26ffSEric Dumazet if (neigh) 1750c757faa8SWei Wang neigh_flags = neigh->flags; 17511bfa26ffSEric Dumazet 1752c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1753c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1754c757faa8SWei Wang rt); 1755c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1756c757faa8SWei Wang return; 1757c757faa8SWei Wang } 1758c757faa8SWei Wang } 175931afeb42SWei Wang 1760c757faa8SWei Wang gc_args->more++; 1761c757faa8SWei Wang } 1762c757faa8SWei Wang 17638d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1764c757faa8SWei Wang struct fib6_gc_args *gc_args, 1765c757faa8SWei Wang unsigned long now) 1766c757faa8SWei Wang { 1767c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1768c757faa8SWei Wang struct rt6_exception *rt6_ex; 1769c757faa8SWei Wang struct hlist_node *tmp; 1770c757faa8SWei Wang int i; 1771c757faa8SWei Wang 1772c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1773c757faa8SWei Wang return; 1774c757faa8SWei Wang 17751bfa26ffSEric Dumazet rcu_read_lock_bh(); 17761bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1777c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1778c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1779c757faa8SWei Wang 1780c757faa8SWei Wang if (bucket) { 1781c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1782c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1783c757faa8SWei Wang &bucket->chain, hlist) { 1784c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1785c757faa8SWei Wang gc_args, now); 1786c757faa8SWei Wang } 1787c757faa8SWei Wang bucket++; 1788c757faa8SWei Wang } 1789c757faa8SWei Wang } 17901bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17911bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1792c757faa8SWei Wang } 1793c757faa8SWei Wang 17941d053da9SDavid Ahern /* must be called with rcu lock held */ 17951d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 17961d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 17971da177e4SLinus Torvalds { 1798367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 17998d1c802bSDavid Ahern struct fib6_info *f6i; 18001da177e4SLinus Torvalds 18016454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1802367efcb9SMartin KaFai Lau saved_fn = fn; 18031da177e4SLinus Torvalds 1804ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1805ca254490SDavid Ahern oif = 0; 1806ca254490SDavid Ahern 1807a3c00e46SMartin KaFai Lau redo_rt6_select: 180823fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 180923fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1810a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1811a3c00e46SMartin KaFai Lau if (fn) 1812a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1813367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1814367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1815367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1816367efcb9SMartin KaFai Lau fn = saved_fn; 1817367efcb9SMartin KaFai Lau goto redo_rt6_select; 1818367efcb9SMartin KaFai Lau } 1819a3c00e46SMartin KaFai Lau } 1820a3c00e46SMartin KaFai Lau 1821d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1822d52d3997SMartin KaFai Lau 18231d053da9SDavid Ahern return f6i; 18241d053da9SDavid Ahern } 18251d053da9SDavid Ahern 18261d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18271d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18281d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18291d053da9SDavid Ahern { 18301d053da9SDavid Ahern struct fib6_info *f6i; 18311d053da9SDavid Ahern struct rt6_info *rt; 18321d053da9SDavid Ahern int strict = 0; 18331d053da9SDavid Ahern 18341d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18351d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18361d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18371d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18381d053da9SDavid Ahern 18391d053da9SDavid Ahern rcu_read_lock(); 18401d053da9SDavid Ahern 18411d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18421d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18431d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18441d053da9SDavid Ahern 184523fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1846421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 184766f5d6ceSWei Wang rcu_read_unlock(); 1848d3843fe5SWei Wang dst_hold(&rt->dst); 1849d3843fe5SWei Wang return rt; 1850d3843fe5SWei Wang } 185123fb93a4SDavid Ahern 185223fb93a4SDavid Ahern /*Search through exception table */ 185323fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 185423fb93a4SDavid Ahern if (rt) { 185510585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 18561da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1857d4ead6b3SDavid Ahern 185866f5d6ceSWei Wang rcu_read_unlock(); 1859d52d3997SMartin KaFai Lau return rt; 18603da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 1861bdf00467SDavid Ahern !f6i->fib6_nh.fib_nh_gw_family)) { 18623da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18633da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18643da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18653da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18663da59bd9SMartin KaFai Lau */ 18673da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18683da59bd9SMartin KaFai Lau 186923fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1870d52d3997SMartin KaFai Lau 18714d85cd0cSDavid Ahern rcu_read_unlock(); 18723da59bd9SMartin KaFai Lau 18731cfb71eeSWei Wang if (uncached_rt) { 18741cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18751cfb71eeSWei Wang * No need for another dst_hold() 18761cfb71eeSWei Wang */ 18778d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 187881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18791cfb71eeSWei Wang } else { 18803da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18813da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18821cfb71eeSWei Wang } 1883b811580dSDavid Ahern 18843da59bd9SMartin KaFai Lau return uncached_rt; 1885d52d3997SMartin KaFai Lau } else { 1886d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1887d52d3997SMartin KaFai Lau 1888d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1889d52d3997SMartin KaFai Lau 1890951f788aSEric Dumazet local_bh_disable(); 189123fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1892d52d3997SMartin KaFai Lau 189393531c67SDavid Ahern if (!pcpu_rt) 189423fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 189593531c67SDavid Ahern 1896951f788aSEric Dumazet local_bh_enable(); 1897951f788aSEric Dumazet rcu_read_unlock(); 1898d4bea421SDavid Ahern 1899d52d3997SMartin KaFai Lau return pcpu_rt; 1900d52d3997SMartin KaFai Lau } 1901c71099acSThomas Graf } 19029ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1903c71099acSThomas Graf 1904b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1905b75cc8f9SDavid Ahern struct fib6_table *table, 1906b75cc8f9SDavid Ahern struct flowi6 *fl6, 1907b75cc8f9SDavid Ahern const struct sk_buff *skb, 1908b75cc8f9SDavid Ahern int flags) 19094acad72dSPavel Emelyanov { 1910b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19114acad72dSPavel Emelyanov } 19124acad72dSPavel Emelyanov 1913d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 191472331bc0SShmulik Ladkani struct net_device *dev, 1915b75cc8f9SDavid Ahern struct flowi6 *fl6, 1916b75cc8f9SDavid Ahern const struct sk_buff *skb, 1917b75cc8f9SDavid Ahern int flags) 191872331bc0SShmulik Ladkani { 191972331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 192072331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 192172331bc0SShmulik Ladkani 1922b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 192372331bc0SShmulik Ladkani } 1924d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 192572331bc0SShmulik Ladkani 192623aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19275e5d6fedSRoopa Prabhu struct flow_keys *keys, 19285e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 192923aebdacSJakub Sitnicki { 193023aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 193123aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19325e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 193323aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 193423aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 193523aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1936cea67a2dSEric Dumazet struct icmp6hdr _icmph; 193723aebdacSJakub Sitnicki 193823aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 193923aebdacSJakub Sitnicki goto out; 194023aebdacSJakub Sitnicki 1941cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1942cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1943cea67a2dSEric Dumazet if (!icmph) 1944cea67a2dSEric Dumazet goto out; 1945cea67a2dSEric Dumazet 194623aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 194723aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 194823aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 194923aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 195023aebdacSJakub Sitnicki goto out; 195123aebdacSJakub Sitnicki 195223aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 195323aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 195423aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 195523aebdacSJakub Sitnicki if (!inner_iph) 195623aebdacSJakub Sitnicki goto out; 195723aebdacSJakub Sitnicki 195823aebdacSJakub Sitnicki key_iph = inner_iph; 19595e5d6fedSRoopa Prabhu _flkeys = NULL; 196023aebdacSJakub Sitnicki out: 19615e5d6fedSRoopa Prabhu if (_flkeys) { 19625e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19635e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19645e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19655e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19665e5d6fedSRoopa Prabhu } else { 196723aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 196823aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1969fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 197023aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 197123aebdacSJakub Sitnicki } 19725e5d6fedSRoopa Prabhu } 197323aebdacSJakub Sitnicki 197423aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1975b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1976b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 197723aebdacSJakub Sitnicki { 197823aebdacSJakub Sitnicki struct flow_keys hash_keys; 19799a2a537aSDavid Ahern u32 mhash; 198023aebdacSJakub Sitnicki 1981bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1982b4bac172SDavid Ahern case 0: 19836f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19846f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19859a2a537aSDavid Ahern if (skb) { 19865e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19879a2a537aSDavid Ahern } else { 19889a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19899a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 1990fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 19919a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 199223aebdacSJakub Sitnicki } 1993b4bac172SDavid Ahern break; 1994b4bac172SDavid Ahern case 1: 1995b4bac172SDavid Ahern if (skb) { 1996b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 1997b4bac172SDavid Ahern struct flow_keys keys; 1998b4bac172SDavid Ahern 1999b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2000b4bac172SDavid Ahern if (skb->l4_hash) 2001b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2002b4bac172SDavid Ahern 2003b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2004b4bac172SDavid Ahern 2005b4bac172SDavid Ahern if (!flkeys) { 2006b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2007b4bac172SDavid Ahern flkeys = &keys; 2008b4bac172SDavid Ahern } 2009b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2010b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2011b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2012b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2013b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2014b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2015b4bac172SDavid Ahern } else { 2016b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2017b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2018b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2019b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2020b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2021b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2022b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2023b4bac172SDavid Ahern } 2024b4bac172SDavid Ahern break; 2025b4bac172SDavid Ahern } 20269a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 202723aebdacSJakub Sitnicki 20289a2a537aSDavid Ahern return mhash >> 1; 202923aebdacSJakub Sitnicki } 203023aebdacSJakub Sitnicki 2031c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2032c71099acSThomas Graf { 2033b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2034c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2035adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2036904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20374c9483b2SDavid S. Miller struct flowi6 fl6 = { 2038e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20394c9483b2SDavid S. Miller .daddr = iph->daddr, 20404c9483b2SDavid S. Miller .saddr = iph->saddr, 20416502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20424c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20434c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2044c71099acSThomas Graf }; 20455e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2046adaa70bbSThomas Graf 2047904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 204846fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2049904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20505e5d6fedSRoopa Prabhu 20515e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20525e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20535e5d6fedSRoopa Prabhu 205423aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2055b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 205606e9d040SJiri Benc skb_dst_drop(skb); 2057b75cc8f9SDavid Ahern skb_dst_set(skb, 2058b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2059c71099acSThomas Graf } 2060c71099acSThomas Graf 2061b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2062b75cc8f9SDavid Ahern struct fib6_table *table, 2063b75cc8f9SDavid Ahern struct flowi6 *fl6, 2064b75cc8f9SDavid Ahern const struct sk_buff *skb, 2065b75cc8f9SDavid Ahern int flags) 2066c71099acSThomas Graf { 2067b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2068c71099acSThomas Graf } 2069c71099acSThomas Graf 20706f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20716f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2072c71099acSThomas Graf { 2073d46a9d67SDavid Ahern bool any_src; 2074c71099acSThomas Graf 20753ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20763ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20774c1feac5SDavid Ahern struct dst_entry *dst; 20784c1feac5SDavid Ahern 20794c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2080ca254490SDavid Ahern if (dst) 2081ca254490SDavid Ahern return dst; 20824c1feac5SDavid Ahern } 2083ca254490SDavid Ahern 20841fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20854dc27d1cSDavid McCullough 2086d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2087741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2088d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 208977d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2090c71099acSThomas Graf 2091d46a9d67SDavid Ahern if (!any_src) 2092adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20930c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 20940c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2095adaa70bbSThomas Graf 2096b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 20971da177e4SLinus Torvalds } 20986f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 20991da177e4SLinus Torvalds 21002774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 210114e50e57SDavid S. Miller { 21025c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21031dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 210414e50e57SDavid S. Miller struct dst_entry *new = NULL; 210514e50e57SDavid S. Miller 21061dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 210762cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 210814e50e57SDavid S. Miller if (rt) { 21090a1f5962SMartin KaFai Lau rt6_info_init(rt); 211081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21110a1f5962SMartin KaFai Lau 2112d8d1f30bSChangli Gao new = &rt->dst; 211314e50e57SDavid S. Miller new->__use = 1; 2114352e512cSHerbert Xu new->input = dst_discard; 2115ede2059dSEric W. Biederman new->output = dst_discard_out; 211614e50e57SDavid S. Miller 2117defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 211814e50e57SDavid S. Miller 21191dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21204e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21210a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 212214e50e57SDavid S. Miller 212314e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 212414e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 212514e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 212614e50e57SDavid S. Miller #endif 212714e50e57SDavid S. Miller } 212814e50e57SDavid S. Miller 212969ead7afSDavid S. Miller dst_release(dst_orig); 213069ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 213114e50e57SDavid S. Miller } 213214e50e57SDavid S. Miller 21331da177e4SLinus Torvalds /* 21341da177e4SLinus Torvalds * Destination cache support functions 21351da177e4SLinus Torvalds */ 21361da177e4SLinus Torvalds 21378d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21383da59bd9SMartin KaFai Lau { 213936143645SSteffen Klassert u32 rt_cookie = 0; 2140c5cff856SWei Wang 21418ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 214293531c67SDavid Ahern return false; 214393531c67SDavid Ahern 214493531c67SDavid Ahern if (fib6_check_expired(f6i)) 214593531c67SDavid Ahern return false; 214693531c67SDavid Ahern 214793531c67SDavid Ahern return true; 214893531c67SDavid Ahern } 214993531c67SDavid Ahern 2150a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2151a68886a6SDavid Ahern struct fib6_info *from, 2152a68886a6SDavid Ahern u32 cookie) 21533da59bd9SMartin KaFai Lau { 2154c5cff856SWei Wang u32 rt_cookie = 0; 2155c5cff856SWei Wang 2156a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 215793531c67SDavid Ahern rt_cookie != cookie) 21583da59bd9SMartin KaFai Lau return NULL; 21593da59bd9SMartin KaFai Lau 21603da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21613da59bd9SMartin KaFai Lau return NULL; 21623da59bd9SMartin KaFai Lau 21633da59bd9SMartin KaFai Lau return &rt->dst; 21643da59bd9SMartin KaFai Lau } 21653da59bd9SMartin KaFai Lau 2166a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2167a68886a6SDavid Ahern struct fib6_info *from, 2168a68886a6SDavid Ahern u32 cookie) 21693da59bd9SMartin KaFai Lau { 21705973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21715973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2172a68886a6SDavid Ahern fib6_check(from, cookie)) 21733da59bd9SMartin KaFai Lau return &rt->dst; 21743da59bd9SMartin KaFai Lau else 21753da59bd9SMartin KaFai Lau return NULL; 21763da59bd9SMartin KaFai Lau } 21773da59bd9SMartin KaFai Lau 21781da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21791da177e4SLinus Torvalds { 2180a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2181a68886a6SDavid Ahern struct fib6_info *from; 21821da177e4SLinus Torvalds struct rt6_info *rt; 21831da177e4SLinus Torvalds 2184a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2185a87b7dc9SDavid Ahern 2186a87b7dc9SDavid Ahern rcu_read_lock(); 21871da177e4SLinus Torvalds 21886f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21896f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21906f3118b5SNicolas Dichtel * into this function always. 21916f3118b5SNicolas Dichtel */ 2192e3bc10bdSHannes Frederic Sowa 2193a68886a6SDavid Ahern from = rcu_dereference(rt->from); 21944b32b5adSMartin KaFai Lau 2195a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2196a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2197a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 21983da59bd9SMartin KaFai Lau else 2199a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2200a87b7dc9SDavid Ahern 2201a87b7dc9SDavid Ahern rcu_read_unlock(); 2202a87b7dc9SDavid Ahern 2203a87b7dc9SDavid Ahern return dst_ret; 22041da177e4SLinus Torvalds } 22051da177e4SLinus Torvalds 22061da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22071da177e4SLinus Torvalds { 22081da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22091da177e4SLinus Torvalds 22101da177e4SLinus Torvalds if (rt) { 221154c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2212c3c14da0SDavid Ahern rcu_read_lock(); 221354c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 221493531c67SDavid Ahern rt6_remove_exception_rt(rt); 221554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22161da177e4SLinus Torvalds } 2217c3c14da0SDavid Ahern rcu_read_unlock(); 221854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 221954c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 222054c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 222154c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222254c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222354c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22241da177e4SLinus Torvalds } 22251da177e4SLinus Torvalds 22261da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22271da177e4SLinus Torvalds { 22281da177e4SLinus Torvalds struct rt6_info *rt; 22291da177e4SLinus Torvalds 22303ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22311da177e4SLinus Torvalds 2232adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22331da177e4SLinus Torvalds if (rt) { 22348a14e46fSDavid Ahern rcu_read_lock(); 22351eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 223693531c67SDavid Ahern rt6_remove_exception_rt(rt); 2237c5cff856SWei Wang } else { 2238a68886a6SDavid Ahern struct fib6_info *from; 2239c5cff856SWei Wang struct fib6_node *fn; 2240c5cff856SWei Wang 2241a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2242a68886a6SDavid Ahern if (from) { 2243a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2244c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2245c5cff856SWei Wang fn->fn_sernum = -1; 2246a68886a6SDavid Ahern } 22471da177e4SLinus Torvalds } 22481da177e4SLinus Torvalds rcu_read_unlock(); 22491da177e4SLinus Torvalds } 22501da177e4SLinus Torvalds } 22511da177e4SLinus Torvalds 22526a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22536a3e030fSDavid Ahern { 2254a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2255a68886a6SDavid Ahern struct fib6_info *from; 2256a68886a6SDavid Ahern 2257a68886a6SDavid Ahern rcu_read_lock(); 2258a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2259a68886a6SDavid Ahern if (from) 2260a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2261a68886a6SDavid Ahern rcu_read_unlock(); 2262a68886a6SDavid Ahern } 22636a3e030fSDavid Ahern 22646a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22656a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22666700c270SDavid S. Miller } 22671da177e4SLinus Torvalds 226845e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 226945e4fd26SMartin KaFai Lau { 227045e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 227145e4fd26SMartin KaFai Lau 2272d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 227345e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 227445e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 227545e4fd26SMartin KaFai Lau } 227645e4fd26SMartin KaFai Lau 22770d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22780d3f6d29SMartin KaFai Lau { 22790d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 22801490ed2aSPaolo Abeni (rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from)); 22810d3f6d29SMartin KaFai Lau } 22820d3f6d29SMartin KaFai Lau 228345e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 228445e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22851da177e4SLinus Torvalds { 22860dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 22871da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 22881da177e4SLinus Torvalds 228919bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 229019bda36cSXin Long return; 229119bda36cSXin Long 229245e4fd26SMartin KaFai Lau if (iph) { 229345e4fd26SMartin KaFai Lau daddr = &iph->daddr; 229445e4fd26SMartin KaFai Lau saddr = &iph->saddr; 229545e4fd26SMartin KaFai Lau } else if (sk) { 229645e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 229745e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 229845e4fd26SMartin KaFai Lau } else { 22990dec879fSJulian Anastasov daddr = NULL; 23000dec879fSJulian Anastasov saddr = NULL; 23011da177e4SLinus Torvalds } 23020dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23030dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23040dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23050dec879fSJulian Anastasov return; 23060dec879fSJulian Anastasov 23070dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23080dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23092b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23102b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23112b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23120dec879fSJulian Anastasov } else if (daddr) { 2313a68886a6SDavid Ahern struct fib6_info *from; 23140dec879fSJulian Anastasov struct rt6_info *nrt6; 23150dec879fSJulian Anastasov 23164d85cd0cSDavid Ahern rcu_read_lock(); 2317a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2318a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 231945e4fd26SMartin KaFai Lau if (nrt6) { 232045e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2321a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23222b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 232345e4fd26SMartin KaFai Lau } 2324a68886a6SDavid Ahern rcu_read_unlock(); 232545e4fd26SMartin KaFai Lau } 232645e4fd26SMartin KaFai Lau } 232745e4fd26SMartin KaFai Lau 232845e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 232945e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 233045e4fd26SMartin KaFai Lau { 233145e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23321da177e4SLinus Torvalds } 23331da177e4SLinus Torvalds 233442ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2335e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 233681aded24SDavid S. Miller { 233781aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 233881aded24SDavid S. Miller struct dst_entry *dst; 2339dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2340dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2341dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2342dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2343dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2344dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2345dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2346dc92095dSMaciej Żenczykowski }; 234781aded24SDavid S. Miller 234881aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 234981aded24SDavid S. Miller if (!dst->error) 235045e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 235181aded24SDavid S. Miller dst_release(dst); 235281aded24SDavid S. Miller } 235381aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 235481aded24SDavid S. Miller 235581aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 235681aded24SDavid S. Miller { 23577ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 235833c162a9SMartin KaFai Lau struct dst_entry *dst; 235933c162a9SMartin KaFai Lau 23607ddacfa5SDavid Ahern if (!oif && skb->dev) 23617ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 23627ddacfa5SDavid Ahern 23637ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 236433c162a9SMartin KaFai Lau 236533c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 236633c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 236733c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 236833c162a9SMartin KaFai Lau return; 236933c162a9SMartin KaFai Lau 237033c162a9SMartin KaFai Lau bh_lock_sock(sk); 237133c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 237233c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 237333c162a9SMartin KaFai Lau bh_unlock_sock(sk); 237481aded24SDavid S. Miller } 237581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 237681aded24SDavid S. Miller 23777d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23787d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23797d6850f7SAlexey Kodanev { 23807d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23817d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23827d6850f7SAlexey Kodanev #endif 23837d6850f7SAlexey Kodanev 23847d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23857d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23867d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23877d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23887d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 23897d6850f7SAlexey Kodanev &np->saddr : 23907d6850f7SAlexey Kodanev #endif 23917d6850f7SAlexey Kodanev NULL); 23927d6850f7SAlexey Kodanev } 23937d6850f7SAlexey Kodanev 2394b55b76b2SDuan Jiong /* Handle redirects */ 2395b55b76b2SDuan Jiong struct ip6rd_flowi { 2396b55b76b2SDuan Jiong struct flowi6 fl6; 2397b55b76b2SDuan Jiong struct in6_addr gateway; 2398b55b76b2SDuan Jiong }; 2399b55b76b2SDuan Jiong 2400b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2401b55b76b2SDuan Jiong struct fib6_table *table, 2402b55b76b2SDuan Jiong struct flowi6 *fl6, 2403b75cc8f9SDavid Ahern const struct sk_buff *skb, 2404b55b76b2SDuan Jiong int flags) 2405b55b76b2SDuan Jiong { 2406b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 240723fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24088d1c802bSDavid Ahern struct fib6_info *rt; 2409b55b76b2SDuan Jiong struct fib6_node *fn; 2410b55b76b2SDuan Jiong 2411b55b76b2SDuan Jiong /* Get the "current" route for this destination and 241267c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2413b55b76b2SDuan Jiong * 2414b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2415b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2416b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2417b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2418b55b76b2SDuan Jiong * routes. 2419b55b76b2SDuan Jiong */ 2420b55b76b2SDuan Jiong 242166f5d6ceSWei Wang rcu_read_lock(); 24226454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2423b55b76b2SDuan Jiong restart: 242466f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 2425ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 24268067bb8cSIdo Schimmel continue; 242714895687SDavid Ahern if (fib6_check_expired(rt)) 2428b55b76b2SDuan Jiong continue; 242993c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2430b55b76b2SDuan Jiong break; 2431bdf00467SDavid Ahern if (!rt->fib6_nh.fib_nh_gw_family) 2432b55b76b2SDuan Jiong continue; 2433ad1601aeSDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.fib_nh_dev->ifindex) 2434b55b76b2SDuan Jiong continue; 24352b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24362b760fcfSWei Wang * in the case of an ip redirect. 24372b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24382b760fcfSWei Wang * is different. 24392b760fcfSWei Wang */ 2440ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.fib_nh_gw6)) { 24412b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24422b760fcfSWei Wang &fl6->daddr, 24432b760fcfSWei Wang &fl6->saddr); 24442b760fcfSWei Wang if (rt_cache && 24452b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24462b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 244723fb93a4SDavid Ahern ret = rt_cache; 24482b760fcfSWei Wang break; 24492b760fcfSWei Wang } 2450b55b76b2SDuan Jiong continue; 24512b760fcfSWei Wang } 2452b55b76b2SDuan Jiong break; 2453b55b76b2SDuan Jiong } 2454b55b76b2SDuan Jiong 2455b55b76b2SDuan Jiong if (!rt) 2456421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 245793c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 245823fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2459b0a1ba59SMartin KaFai Lau goto out; 2460b0a1ba59SMartin KaFai Lau } 2461b0a1ba59SMartin KaFai Lau 2462421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2463a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2464a3c00e46SMartin KaFai Lau if (fn) 2465a3c00e46SMartin KaFai Lau goto restart; 2466b55b76b2SDuan Jiong } 2467a3c00e46SMartin KaFai Lau 2468b0a1ba59SMartin KaFai Lau out: 246923fb93a4SDavid Ahern if (ret) 247010585b43SDavid Ahern ip6_hold_safe(net, &ret); 247123fb93a4SDavid Ahern else 247223fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2473b55b76b2SDuan Jiong 247466f5d6ceSWei Wang rcu_read_unlock(); 2475b55b76b2SDuan Jiong 2476b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 247723fb93a4SDavid Ahern return ret; 2478b55b76b2SDuan Jiong }; 2479b55b76b2SDuan Jiong 2480b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2481b55b76b2SDuan Jiong const struct flowi6 *fl6, 2482b75cc8f9SDavid Ahern const struct sk_buff *skb, 2483b55b76b2SDuan Jiong const struct in6_addr *gateway) 2484b55b76b2SDuan Jiong { 2485b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2486b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2487b55b76b2SDuan Jiong 2488b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2489b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2490b55b76b2SDuan Jiong 2491b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2492b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2493b55b76b2SDuan Jiong } 2494b55b76b2SDuan Jiong 2495e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2496e2d118a1SLorenzo Colitti kuid_t uid) 24973a5ad2eeSDavid S. Miller { 24983a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 24993a5ad2eeSDavid S. Miller struct dst_entry *dst; 25001f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25011f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25021f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25031f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25041f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25051f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25061f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25071f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25081f7f10acSMaciej Żenczykowski }; 25093a5ad2eeSDavid S. Miller 2510b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25116700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25123a5ad2eeSDavid S. Miller dst_release(dst); 25133a5ad2eeSDavid S. Miller } 25143a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25153a5ad2eeSDavid S. Miller 2516d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2517c92a59ecSDuan Jiong { 2518c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2519c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2520c92a59ecSDuan Jiong struct dst_entry *dst; 25210b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25220b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25230b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25240b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25250b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25260b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25270b26fb17SMaciej Żenczykowski }; 2528c92a59ecSDuan Jiong 2529b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2530c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2531c92a59ecSDuan Jiong dst_release(dst); 2532c92a59ecSDuan Jiong } 2533c92a59ecSDuan Jiong 25343a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25353a5ad2eeSDavid S. Miller { 2536e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2537e2d118a1SLorenzo Colitti sk->sk_uid); 25383a5ad2eeSDavid S. Miller } 25393a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25403a5ad2eeSDavid S. Miller 25410dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25421da177e4SLinus Torvalds { 25430dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25440dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25450dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25460dbaee3bSDavid S. Miller 25471da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25481da177e4SLinus Torvalds 25495578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25505578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25511da177e4SLinus Torvalds 25521da177e4SLinus Torvalds /* 25531da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25541da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25551da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25561da177e4SLinus Torvalds * rely only on pmtu discovery" 25571da177e4SLinus Torvalds */ 25581da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25591da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25601da177e4SLinus Torvalds return mtu; 25611da177e4SLinus Torvalds } 25621da177e4SLinus Torvalds 2563ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2564d33e4553SDavid S. Miller { 2565d33e4553SDavid S. Miller struct inet6_dev *idev; 2566d4ead6b3SDavid Ahern unsigned int mtu; 2567618f9bc7SSteffen Klassert 25684b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25694b32b5adSMartin KaFai Lau if (mtu) 25704b32b5adSMartin KaFai Lau goto out; 25714b32b5adSMartin KaFai Lau 2572618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2573d33e4553SDavid S. Miller 2574d33e4553SDavid S. Miller rcu_read_lock(); 2575d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2576d33e4553SDavid S. Miller if (idev) 2577d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2578d33e4553SDavid S. Miller rcu_read_unlock(); 2579d33e4553SDavid S. Miller 258030f78d8eSEric Dumazet out: 258114972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 258214972cbdSRoopa Prabhu 258314972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2584d33e4553SDavid S. Miller } 2585d33e4553SDavid S. Miller 2586901731b8SDavid Ahern /* MTU selection: 2587901731b8SDavid Ahern * 1. mtu on route is locked - use it 2588901731b8SDavid Ahern * 2. mtu from nexthop exception 2589901731b8SDavid Ahern * 3. mtu from egress device 2590901731b8SDavid Ahern * 2591901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2592901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2593901731b8SDavid Ahern */ 2594901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2595901731b8SDavid Ahern struct in6_addr *saddr) 2596901731b8SDavid Ahern { 2597901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2598901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2599901731b8SDavid Ahern struct in6_addr *src_key; 2600901731b8SDavid Ahern struct inet6_dev *idev; 2601901731b8SDavid Ahern u32 mtu = 0; 2602901731b8SDavid Ahern 2603901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2604901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2605901731b8SDavid Ahern if (mtu) 2606901731b8SDavid Ahern goto out; 2607901731b8SDavid Ahern } 2608901731b8SDavid Ahern 2609901731b8SDavid Ahern src_key = NULL; 2610901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2611901731b8SDavid Ahern if (f6i->fib6_src.plen) 2612901731b8SDavid Ahern src_key = saddr; 2613901731b8SDavid Ahern #endif 2614901731b8SDavid Ahern 2615901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2616901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2617901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2618901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2619901731b8SDavid Ahern 2620901731b8SDavid Ahern if (likely(!mtu)) { 2621901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2622901731b8SDavid Ahern 2623901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2624901731b8SDavid Ahern idev = __in6_dev_get(dev); 2625901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2626901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2627901731b8SDavid Ahern } 2628901731b8SDavid Ahern 2629901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2630901731b8SDavid Ahern out: 2631901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2632901731b8SDavid Ahern } 2633901731b8SDavid Ahern 26343b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 263587a11578SDavid S. Miller struct flowi6 *fl6) 26361da177e4SLinus Torvalds { 263787a11578SDavid S. Miller struct dst_entry *dst; 26381da177e4SLinus Torvalds struct rt6_info *rt; 26391da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2640c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26411da177e4SLinus Torvalds 264238308473SDavid S. Miller if (unlikely(!idev)) 2643122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26441da177e4SLinus Torvalds 2645ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 264638308473SDavid S. Miller if (unlikely(!rt)) { 26471da177e4SLinus Torvalds in6_dev_put(idev); 264887a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26491da177e4SLinus Torvalds goto out; 26501da177e4SLinus Torvalds } 26511da177e4SLinus Torvalds 26528e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2653588753f1SBrendan McGrath rt->dst.input = ip6_input; 26548e2ec639SYan, Zheng rt->dst.output = ip6_output; 2655550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 265687a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26578e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26588e2ec639SYan, Zheng rt->rt6i_idev = idev; 265914edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26601da177e4SLinus Torvalds 26614c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2662587fea74SWei Wang * do proper release of the net_device 2663587fea74SWei Wang */ 2664587fea74SWei Wang rt6_uncached_list_add(rt); 266581eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26661da177e4SLinus Torvalds 266787a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 266887a11578SDavid S. Miller 26691da177e4SLinus Torvalds out: 267087a11578SDavid S. Miller return dst; 26711da177e4SLinus Torvalds } 26721da177e4SLinus Torvalds 2673569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26741da177e4SLinus Torvalds { 267586393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26767019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26777019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26787019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26797019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26807019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2681fc66f95cSEric Dumazet int entries; 26821da177e4SLinus Torvalds 2683fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 268449a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2685fc66f95cSEric Dumazet entries <= rt_max_size) 26861da177e4SLinus Torvalds goto out; 26871da177e4SLinus Torvalds 26886891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 268914956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2690fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2691fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 26927019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 26931da177e4SLinus Torvalds out: 26947019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2695fc66f95cSEric Dumazet return entries > rt_max_size; 26961da177e4SLinus Torvalds } 26971da177e4SLinus Torvalds 26988c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 26998c14586fSDavid Ahern struct fib6_config *cfg, 2700f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2701f4797b33SDavid Ahern u32 tbid, int flags) 27028c14586fSDavid Ahern { 27038c14586fSDavid Ahern struct flowi6 fl6 = { 27048c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27058c14586fSDavid Ahern .daddr = *gw_addr, 27068c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27078c14586fSDavid Ahern }; 27088c14586fSDavid Ahern struct fib6_table *table; 27098c14586fSDavid Ahern struct rt6_info *rt; 27108c14586fSDavid Ahern 2711f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27128c14586fSDavid Ahern if (!table) 27138c14586fSDavid Ahern return NULL; 27148c14586fSDavid Ahern 27158c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27168c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27178c14586fSDavid Ahern 2718f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2719b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27208c14586fSDavid Ahern 27218c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27228c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27238c14586fSDavid Ahern ip6_rt_put(rt); 27248c14586fSDavid Ahern rt = NULL; 27258c14586fSDavid Ahern } 27268c14586fSDavid Ahern 27278c14586fSDavid Ahern return rt; 27288c14586fSDavid Ahern } 27298c14586fSDavid Ahern 2730fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2731fc1e64e1SDavid Ahern struct fib6_config *cfg, 27329fbb704cSDavid Ahern const struct net_device *dev, 2733fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2734fc1e64e1SDavid Ahern { 273544750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2736fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2737fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2738bf1dc8baSPaolo Abeni struct fib6_info *from; 2739fc1e64e1SDavid Ahern struct rt6_info *grt; 2740fc1e64e1SDavid Ahern int err; 2741fc1e64e1SDavid Ahern 2742fc1e64e1SDavid Ahern err = 0; 2743fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2744fc1e64e1SDavid Ahern if (grt) { 2745bf1dc8baSPaolo Abeni rcu_read_lock(); 2746bf1dc8baSPaolo Abeni from = rcu_dereference(grt->from); 274758e354c0SDavid Ahern if (!grt->dst.error && 27484ed591c8SDavid Ahern /* ignore match if it is the default route */ 2749bf1dc8baSPaolo Abeni from && !ipv6_addr_any(&from->fib6_dst.addr) && 275058e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 275144750f84SDavid Ahern NL_SET_ERR_MSG(extack, 275244750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2753fc1e64e1SDavid Ahern err = -EINVAL; 2754fc1e64e1SDavid Ahern } 2755bf1dc8baSPaolo Abeni rcu_read_unlock(); 2756fc1e64e1SDavid Ahern 2757fc1e64e1SDavid Ahern ip6_rt_put(grt); 2758fc1e64e1SDavid Ahern } 2759fc1e64e1SDavid Ahern 2760fc1e64e1SDavid Ahern return err; 2761fc1e64e1SDavid Ahern } 2762fc1e64e1SDavid Ahern 27631edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27641edce99fSDavid Ahern struct fib6_config *cfg, 27651edce99fSDavid Ahern struct net_device **_dev, 27661edce99fSDavid Ahern struct inet6_dev **idev) 27671edce99fSDavid Ahern { 27681edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27691edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27701edce99fSDavid Ahern struct rt6_info *grt = NULL; 27711edce99fSDavid Ahern int err = -EHOSTUNREACH; 27721edce99fSDavid Ahern 27731edce99fSDavid Ahern if (cfg->fc_table) { 2774f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2775f4797b33SDavid Ahern 2776f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2777f4797b33SDavid Ahern cfg->fc_table, flags); 27781edce99fSDavid Ahern if (grt) { 27791edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 27801edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 27811edce99fSDavid Ahern ip6_rt_put(grt); 27821edce99fSDavid Ahern grt = NULL; 27831edce99fSDavid Ahern } 27841edce99fSDavid Ahern } 27851edce99fSDavid Ahern } 27861edce99fSDavid Ahern 27871edce99fSDavid Ahern if (!grt) 2788b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 27891edce99fSDavid Ahern 27901edce99fSDavid Ahern if (!grt) 27911edce99fSDavid Ahern goto out; 27921edce99fSDavid Ahern 27931edce99fSDavid Ahern if (dev) { 27941edce99fSDavid Ahern if (dev != grt->dst.dev) { 27951edce99fSDavid Ahern ip6_rt_put(grt); 27961edce99fSDavid Ahern goto out; 27971edce99fSDavid Ahern } 27981edce99fSDavid Ahern } else { 27991edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28001edce99fSDavid Ahern *idev = grt->rt6i_idev; 28011edce99fSDavid Ahern dev_hold(dev); 28021edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28031edce99fSDavid Ahern } 28041edce99fSDavid Ahern 28051edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28061edce99fSDavid Ahern err = 0; 28071edce99fSDavid Ahern 28081edce99fSDavid Ahern ip6_rt_put(grt); 28091edce99fSDavid Ahern 28101edce99fSDavid Ahern out: 28111edce99fSDavid Ahern return err; 28121edce99fSDavid Ahern } 28131edce99fSDavid Ahern 28149fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28159fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28169fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28179fbb704cSDavid Ahern { 28189fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28199fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2820232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28219fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2822232378e8SDavid Ahern bool need_addr_check = !dev; 28239fbb704cSDavid Ahern int err = -EINVAL; 28249fbb704cSDavid Ahern 28259fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28269fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28279fbb704cSDavid Ahern * will return already-added prefix route via interface that 28289fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28299fbb704cSDavid Ahern */ 2830232378e8SDavid Ahern if (dev && 2831232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2832232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28339fbb704cSDavid Ahern goto out; 28349fbb704cSDavid Ahern } 28359fbb704cSDavid Ahern 28369fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28379fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28389fbb704cSDavid Ahern * addresses as nexthop address. 28399fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28409fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28419fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28429fbb704cSDavid Ahern * some exceptions. --ANK 28439fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28449fbb704cSDavid Ahern * addressing 28459fbb704cSDavid Ahern */ 28469fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28479fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28489fbb704cSDavid Ahern goto out; 28499fbb704cSDavid Ahern } 28509fbb704cSDavid Ahern 28519fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28529fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28539fbb704cSDavid Ahern else 28549fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28559fbb704cSDavid Ahern 28569fbb704cSDavid Ahern if (err) 28579fbb704cSDavid Ahern goto out; 28589fbb704cSDavid Ahern } 28599fbb704cSDavid Ahern 28609fbb704cSDavid Ahern /* reload in case device was changed */ 28619fbb704cSDavid Ahern dev = *_dev; 28629fbb704cSDavid Ahern 28639fbb704cSDavid Ahern err = -EINVAL; 28649fbb704cSDavid Ahern if (!dev) { 28659fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28669fbb704cSDavid Ahern goto out; 28679fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28689fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28699fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28709fbb704cSDavid Ahern goto out; 28719fbb704cSDavid Ahern } 2872232378e8SDavid Ahern 2873232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2874232378e8SDavid Ahern * egress device has been resolved. 2875232378e8SDavid Ahern */ 2876232378e8SDavid Ahern if (need_addr_check && 2877232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2878232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2879232378e8SDavid Ahern goto out; 2880232378e8SDavid Ahern } 2881232378e8SDavid Ahern 28829fbb704cSDavid Ahern err = 0; 28839fbb704cSDavid Ahern out: 28849fbb704cSDavid Ahern return err; 28859fbb704cSDavid Ahern } 28869fbb704cSDavid Ahern 288783c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type) 288883c44251SDavid Ahern { 288983c44251SDavid Ahern if ((flags & RTF_REJECT) || 289083c44251SDavid Ahern (dev && (dev->flags & IFF_LOOPBACK) && 289183c44251SDavid Ahern !(addr_type & IPV6_ADDR_LOOPBACK) && 289283c44251SDavid Ahern !(flags & RTF_LOCAL))) 289383c44251SDavid Ahern return true; 289483c44251SDavid Ahern 289583c44251SDavid Ahern return false; 289683c44251SDavid Ahern } 289783c44251SDavid Ahern 289883c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh, 289983c44251SDavid Ahern struct fib6_config *cfg, gfp_t gfp_flags, 290083c44251SDavid Ahern struct netlink_ext_ack *extack) 290183c44251SDavid Ahern { 290283c44251SDavid Ahern struct net_device *dev = NULL; 290383c44251SDavid Ahern struct inet6_dev *idev = NULL; 290483c44251SDavid Ahern int addr_type; 290583c44251SDavid Ahern int err; 290683c44251SDavid Ahern 2907f1741730SDavid Ahern fib6_nh->fib_nh_family = AF_INET6; 2908f1741730SDavid Ahern 290983c44251SDavid Ahern err = -ENODEV; 291083c44251SDavid Ahern if (cfg->fc_ifindex) { 291183c44251SDavid Ahern dev = dev_get_by_index(net, cfg->fc_ifindex); 291283c44251SDavid Ahern if (!dev) 291383c44251SDavid Ahern goto out; 291483c44251SDavid Ahern idev = in6_dev_get(dev); 291583c44251SDavid Ahern if (!idev) 291683c44251SDavid Ahern goto out; 291783c44251SDavid Ahern } 291883c44251SDavid Ahern 291983c44251SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 292083c44251SDavid Ahern if (!dev) { 292183c44251SDavid Ahern NL_SET_ERR_MSG(extack, 292283c44251SDavid Ahern "Nexthop device required for onlink"); 292383c44251SDavid Ahern goto out; 292483c44251SDavid Ahern } 292583c44251SDavid Ahern 292683c44251SDavid Ahern if (!(dev->flags & IFF_UP)) { 292783c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 292883c44251SDavid Ahern err = -ENETDOWN; 292983c44251SDavid Ahern goto out; 293083c44251SDavid Ahern } 293183c44251SDavid Ahern 2932ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_ONLINK; 293383c44251SDavid Ahern } 293483c44251SDavid Ahern 2935ad1601aeSDavid Ahern fib6_nh->fib_nh_weight = 1; 293683c44251SDavid Ahern 293783c44251SDavid Ahern /* We cannot add true routes via loopback here, 293883c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 293983c44251SDavid Ahern */ 294083c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 294183c44251SDavid Ahern if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) { 294283c44251SDavid Ahern /* hold loopback dev/idev if we haven't done so. */ 294383c44251SDavid Ahern if (dev != net->loopback_dev) { 294483c44251SDavid Ahern if (dev) { 294583c44251SDavid Ahern dev_put(dev); 294683c44251SDavid Ahern in6_dev_put(idev); 294783c44251SDavid Ahern } 294883c44251SDavid Ahern dev = net->loopback_dev; 294983c44251SDavid Ahern dev_hold(dev); 295083c44251SDavid Ahern idev = in6_dev_get(dev); 295183c44251SDavid Ahern if (!idev) { 295283c44251SDavid Ahern err = -ENODEV; 295383c44251SDavid Ahern goto out; 295483c44251SDavid Ahern } 295583c44251SDavid Ahern } 295683c44251SDavid Ahern goto set_dev; 295783c44251SDavid Ahern } 295883c44251SDavid Ahern 295983c44251SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) { 296083c44251SDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 296183c44251SDavid Ahern if (err) 296283c44251SDavid Ahern goto out; 296383c44251SDavid Ahern 2964ad1601aeSDavid Ahern fib6_nh->fib_nh_gw6 = cfg->fc_gateway; 2965bdf00467SDavid Ahern fib6_nh->fib_nh_gw_family = AF_INET6; 296683c44251SDavid Ahern } 296783c44251SDavid Ahern 296883c44251SDavid Ahern err = -ENODEV; 296983c44251SDavid Ahern if (!dev) 297083c44251SDavid Ahern goto out; 297183c44251SDavid Ahern 297283c44251SDavid Ahern if (idev->cnf.disable_ipv6) { 297383c44251SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 297483c44251SDavid Ahern err = -EACCES; 297583c44251SDavid Ahern goto out; 297683c44251SDavid Ahern } 297783c44251SDavid Ahern 297883c44251SDavid Ahern if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) { 297983c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 298083c44251SDavid Ahern err = -ENETDOWN; 298183c44251SDavid Ahern goto out; 298283c44251SDavid Ahern } 298383c44251SDavid Ahern 298483c44251SDavid Ahern if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) && 298583c44251SDavid Ahern !netif_carrier_ok(dev)) 2986ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN; 298783c44251SDavid Ahern 2988979e276eSDavid Ahern err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap, 2989979e276eSDavid Ahern cfg->fc_encap_type, cfg, gfp_flags, extack); 2990979e276eSDavid Ahern if (err) 2991979e276eSDavid Ahern goto out; 299283c44251SDavid Ahern set_dev: 2993ad1601aeSDavid Ahern fib6_nh->fib_nh_dev = dev; 2994f1741730SDavid Ahern fib6_nh->fib_nh_oif = dev->ifindex; 299583c44251SDavid Ahern err = 0; 299683c44251SDavid Ahern out: 299783c44251SDavid Ahern if (idev) 299883c44251SDavid Ahern in6_dev_put(idev); 299983c44251SDavid Ahern 300083c44251SDavid Ahern if (err) { 3001ad1601aeSDavid Ahern lwtstate_put(fib6_nh->fib_nh_lws); 3002ad1601aeSDavid Ahern fib6_nh->fib_nh_lws = NULL; 300383c44251SDavid Ahern if (dev) 300483c44251SDavid Ahern dev_put(dev); 300583c44251SDavid Ahern } 300683c44251SDavid Ahern 300783c44251SDavid Ahern return err; 300883c44251SDavid Ahern } 300983c44251SDavid Ahern 3010dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh) 3011dac7d0f2SDavid Ahern { 3012979e276eSDavid Ahern fib_nh_common_release(&fib6_nh->nh_common); 3013dac7d0f2SDavid Ahern } 3014dac7d0f2SDavid Ahern 30158d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 3016acb54e3cSDavid Ahern gfp_t gfp_flags, 3017333c4301SDavid Ahern struct netlink_ext_ack *extack) 30181da177e4SLinus Torvalds { 30195578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 30208d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3021c71099acSThomas Graf struct fib6_table *table; 30228c5b83f0SRoopa Prabhu int err = -EINVAL; 302383c44251SDavid Ahern int addr_type; 30241da177e4SLinus Torvalds 3025557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 3026d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 3027d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 3028557c44beSDavid Ahern goto out; 3029d5d531cbSDavid Ahern } 3030557c44beSDavid Ahern 30312ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 30322ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 30332ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 30342ea2352eSWei Wang goto out; 30352ea2352eSWei Wang } 30362ea2352eSWei Wang 3037e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 3038e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 3039e8478e80SDavid Ahern goto out; 3040e8478e80SDavid Ahern } 3041e8478e80SDavid Ahern 3042d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 3043d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 30448c5b83f0SRoopa Prabhu goto out; 3045d5d531cbSDavid Ahern } 3046d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 3047d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 3048d5d531cbSDavid Ahern goto out; 3049d5d531cbSDavid Ahern } 30501da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 3051d5d531cbSDavid Ahern if (cfg->fc_src_len) { 3052d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 3053d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 30548c5b83f0SRoopa Prabhu goto out; 3055d5d531cbSDavid Ahern } 30561da177e4SLinus Torvalds #endif 3057fc1e64e1SDavid Ahern 3058c71099acSThomas Graf err = -ENOBUFS; 305938308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3060d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3061d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 306238308473SDavid S. Miller if (!table) { 3063f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3064d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3065d71314b4SMatti Vaittinen } 3066d71314b4SMatti Vaittinen } else { 3067d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3068d71314b4SMatti Vaittinen } 306938308473SDavid S. Miller 307038308473SDavid S. Miller if (!table) 3071c71099acSThomas Graf goto out; 3072c71099acSThomas Graf 30731da177e4SLinus Torvalds err = -ENOMEM; 307493531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 307593531c67SDavid Ahern if (!rt) 30761da177e4SLinus Torvalds goto out; 307793531c67SDavid Ahern 3078d7e774f3SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len, 3079d7e774f3SDavid Ahern extack); 3080767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 3081767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 3082fda21d46SEric Dumazet /* Do not leave garbage there. */ 3083fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 3084767a2217SDavid Ahern goto out; 3085767a2217SDavid Ahern } 3086767a2217SDavid Ahern 308793531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 308893531c67SDavid Ahern rt->dst_nocount = true; 30891da177e4SLinus Torvalds 30901716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 309114895687SDavid Ahern fib6_set_expires(rt, jiffies + 30921716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30931716a961SGao feng else 309414895687SDavid Ahern fib6_clean_expires(rt); 30951da177e4SLinus Torvalds 309686872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 309786872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 309893c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 309986872cb5SThomas Graf 310083c44251SDavid Ahern rt->fib6_table = table; 310183c44251SDavid Ahern rt->fib6_metric = cfg->fc_metric; 310283c44251SDavid Ahern rt->fib6_type = cfg->fc_type; 31032b2450caSDavid Ahern rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY; 310419e42e45SRoopa Prabhu 310593c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 310693c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 310793c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 31083b6761d1SDavid Ahern rt->dst_host = true; 31091da177e4SLinus Torvalds 31101da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 311193c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 311293c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 31131da177e4SLinus Torvalds #endif 311483c44251SDavid Ahern err = fib6_nh_init(net, &rt->fib6_nh, cfg, gfp_flags, extack); 31151da177e4SLinus Torvalds if (err) 31161da177e4SLinus Torvalds goto out; 31179fbb704cSDavid Ahern 311883c44251SDavid Ahern /* We cannot add true routes via loopback here, 311983c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 312083c44251SDavid Ahern */ 312183c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 3122ad1601aeSDavid Ahern if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh.fib_nh_dev, addr_type)) 312383c44251SDavid Ahern rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP; 3124955ec4cbSDavid Ahern 3125c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 312683c44251SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 312783c44251SDavid Ahern 3128c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3129d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3130c3968a85SDaniel Walter err = -EINVAL; 3131c3968a85SDaniel Walter goto out; 3132c3968a85SDaniel Walter } 313393c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 313493c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3135c3968a85SDaniel Walter } else 313693c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3137c3968a85SDaniel Walter 31388c5b83f0SRoopa Prabhu return rt; 31391da177e4SLinus Torvalds out: 314093531c67SDavid Ahern fib6_info_release(rt); 31418c5b83f0SRoopa Prabhu return ERR_PTR(err); 31426b9ea5a6SRoopa Prabhu } 31436b9ea5a6SRoopa Prabhu 3144acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3145333c4301SDavid Ahern struct netlink_ext_ack *extack) 31466b9ea5a6SRoopa Prabhu { 31478d1c802bSDavid Ahern struct fib6_info *rt; 31486b9ea5a6SRoopa Prabhu int err; 31496b9ea5a6SRoopa Prabhu 3150acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3151d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3152d4ead6b3SDavid Ahern return PTR_ERR(rt); 31536b9ea5a6SRoopa Prabhu 3154d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 315593531c67SDavid Ahern fib6_info_release(rt); 31566b9ea5a6SRoopa Prabhu 31571da177e4SLinus Torvalds return err; 31581da177e4SLinus Torvalds } 31591da177e4SLinus Torvalds 31608d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31611da177e4SLinus Torvalds { 3162afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3163c71099acSThomas Graf struct fib6_table *table; 3164afb1d4b5SDavid Ahern int err; 31651da177e4SLinus Torvalds 3166421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31676825a26cSGao feng err = -ENOENT; 31686825a26cSGao feng goto out; 31696825a26cSGao feng } 31706c813a72SPatrick McHardy 317193c2fb25SDavid Ahern table = rt->fib6_table; 317266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 317386872cb5SThomas Graf err = fib6_del(rt, info); 317466f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31751da177e4SLinus Torvalds 31766825a26cSGao feng out: 317793531c67SDavid Ahern fib6_info_release(rt); 31781da177e4SLinus Torvalds return err; 31791da177e4SLinus Torvalds } 31801da177e4SLinus Torvalds 31818d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3182e0a1ad73SThomas Graf { 3183afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3184afb1d4b5SDavid Ahern 3185528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3186e0a1ad73SThomas Graf } 3187e0a1ad73SThomas Graf 31888d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 31890ae81335SDavid Ahern { 31900ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3191e3330039SWANG Cong struct net *net = info->nl_net; 319216a16cd3SDavid Ahern struct sk_buff *skb = NULL; 31930ae81335SDavid Ahern struct fib6_table *table; 3194e3330039SWANG Cong int err = -ENOENT; 31950ae81335SDavid Ahern 3196421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3197e3330039SWANG Cong goto out_put; 319893c2fb25SDavid Ahern table = rt->fib6_table; 319966f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32000ae81335SDavid Ahern 320193c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32028d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32030ae81335SDavid Ahern 320416a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 320516a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 320616a16cd3SDavid Ahern if (skb) { 320716a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 320816a16cd3SDavid Ahern 3209d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 321016a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 321116a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 321216a16cd3SDavid Ahern kfree_skb(skb); 321316a16cd3SDavid Ahern skb = NULL; 321416a16cd3SDavid Ahern } else 321516a16cd3SDavid Ahern info->skip_notify = 1; 321616a16cd3SDavid Ahern } 321716a16cd3SDavid Ahern 32180ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 321993c2fb25SDavid Ahern &rt->fib6_siblings, 322093c2fb25SDavid Ahern fib6_siblings) { 32210ae81335SDavid Ahern err = fib6_del(sibling, info); 32220ae81335SDavid Ahern if (err) 3223e3330039SWANG Cong goto out_unlock; 32240ae81335SDavid Ahern } 32250ae81335SDavid Ahern } 32260ae81335SDavid Ahern 32270ae81335SDavid Ahern err = fib6_del(rt, info); 3228e3330039SWANG Cong out_unlock: 322966f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3230e3330039SWANG Cong out_put: 323193531c67SDavid Ahern fib6_info_release(rt); 323216a16cd3SDavid Ahern 323316a16cd3SDavid Ahern if (skb) { 3234e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 323516a16cd3SDavid Ahern info->nlh, gfp_any()); 323616a16cd3SDavid Ahern } 32370ae81335SDavid Ahern return err; 32380ae81335SDavid Ahern } 32390ae81335SDavid Ahern 324023fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 324123fb93a4SDavid Ahern { 324223fb93a4SDavid Ahern int rc = -ESRCH; 324323fb93a4SDavid Ahern 324423fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 324523fb93a4SDavid Ahern goto out; 324623fb93a4SDavid Ahern 324723fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 324823fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 324923fb93a4SDavid Ahern goto out; 3250761f6026SXin Long 325123fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 325223fb93a4SDavid Ahern out: 325323fb93a4SDavid Ahern return rc; 325423fb93a4SDavid Ahern } 325523fb93a4SDavid Ahern 3256333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3257333c4301SDavid Ahern struct netlink_ext_ack *extack) 32581da177e4SLinus Torvalds { 32598d1c802bSDavid Ahern struct rt6_info *rt_cache; 3260c71099acSThomas Graf struct fib6_table *table; 32618d1c802bSDavid Ahern struct fib6_info *rt; 32621da177e4SLinus Torvalds struct fib6_node *fn; 32631da177e4SLinus Torvalds int err = -ESRCH; 32641da177e4SLinus Torvalds 32655578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3266d5d531cbSDavid Ahern if (!table) { 3267d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3268c71099acSThomas Graf return err; 3269d5d531cbSDavid Ahern } 32701da177e4SLinus Torvalds 327166f5d6ceSWei Wang rcu_read_lock(); 3272c71099acSThomas Graf 3273c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 327486872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 327538fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32762b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32771da177e4SLinus Torvalds 32781da177e4SLinus Torvalds if (fn) { 327966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3280ad1601aeSDavid Ahern struct fib6_nh *nh; 3281ad1601aeSDavid Ahern 32822b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 328323fb93a4SDavid Ahern int rc; 328423fb93a4SDavid Ahern 32852b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32862b760fcfSWei Wang &cfg->fc_src); 328723fb93a4SDavid Ahern if (rt_cache) { 328823fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 32899e575010SEric Dumazet if (rc != -ESRCH) { 32909e575010SEric Dumazet rcu_read_unlock(); 329123fb93a4SDavid Ahern return rc; 329223fb93a4SDavid Ahern } 32939e575010SEric Dumazet } 32941f56a01fSMartin KaFai Lau continue; 32952b760fcfSWei Wang } 3296ad1601aeSDavid Ahern 3297ad1601aeSDavid Ahern nh = &rt->fib6_nh; 329886872cb5SThomas Graf if (cfg->fc_ifindex && 3299ad1601aeSDavid Ahern (!nh->fib_nh_dev || 3300ad1601aeSDavid Ahern nh->fib_nh_dev->ifindex != cfg->fc_ifindex)) 33011da177e4SLinus Torvalds continue; 330286872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 3303ad1601aeSDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6)) 33041da177e4SLinus Torvalds continue; 330593c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33061da177e4SLinus Torvalds continue; 330793c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3308c2ed1880SMantas M continue; 3309e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3310e873e4b9SWei Wang continue; 331166f5d6ceSWei Wang rcu_read_unlock(); 33121da177e4SLinus Torvalds 33130ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33140ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 331586872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33160ae81335SDavid Ahern 33170ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33181da177e4SLinus Torvalds } 33191da177e4SLinus Torvalds } 332066f5d6ceSWei Wang rcu_read_unlock(); 33211da177e4SLinus Torvalds 33221da177e4SLinus Torvalds return err; 33231da177e4SLinus Torvalds } 33241da177e4SLinus Torvalds 33256700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3326a6279458SYOSHIFUJI Hideaki { 3327a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3328e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3329e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3330e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3331e8599ff4SDavid S. Miller struct neighbour *neigh; 3332a68886a6SDavid Ahern struct fib6_info *from; 333371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33346e157b6aSDavid S. Miller int optlen, on_link; 33356e157b6aSDavid S. Miller u8 *lladdr; 3336e8599ff4SDavid S. Miller 333729a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 333871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3339e8599ff4SDavid S. Miller 3340e8599ff4SDavid S. Miller if (optlen < 0) { 33416e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3342e8599ff4SDavid S. Miller return; 3343e8599ff4SDavid S. Miller } 3344e8599ff4SDavid S. Miller 334571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3346e8599ff4SDavid S. Miller 334771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33486e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3349e8599ff4SDavid S. Miller return; 3350e8599ff4SDavid S. Miller } 3351e8599ff4SDavid S. Miller 33526e157b6aSDavid S. Miller on_link = 0; 335371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3354e8599ff4SDavid S. Miller on_link = 1; 335571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3356e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33576e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3358e8599ff4SDavid S. Miller return; 3359e8599ff4SDavid S. Miller } 3360e8599ff4SDavid S. Miller 3361e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3362e8599ff4SDavid S. Miller if (!in6_dev) 3363e8599ff4SDavid S. Miller return; 3364e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3365e8599ff4SDavid S. Miller return; 3366e8599ff4SDavid S. Miller 3367e8599ff4SDavid S. Miller /* RFC2461 8.1: 3368e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3369e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3370e8599ff4SDavid S. Miller */ 3371e8599ff4SDavid S. Miller 3372f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3373e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3374e8599ff4SDavid S. Miller return; 3375e8599ff4SDavid S. Miller } 33766e157b6aSDavid S. Miller 33776e157b6aSDavid S. Miller lladdr = NULL; 3378e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3379e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3380e8599ff4SDavid S. Miller skb->dev); 3381e8599ff4SDavid S. Miller if (!lladdr) { 3382e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3383e8599ff4SDavid S. Miller return; 3384e8599ff4SDavid S. Miller } 3385e8599ff4SDavid S. Miller } 3386e8599ff4SDavid S. Miller 33876e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3388ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33896e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33906e157b6aSDavid S. Miller return; 33916e157b6aSDavid S. Miller } 33926e157b6aSDavid S. Miller 33936e157b6aSDavid S. Miller /* Redirect received -> path was valid. 33946e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 33956e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 33966e157b6aSDavid S. Miller */ 33970dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 33986e157b6aSDavid S. Miller 339971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3400e8599ff4SDavid S. Miller if (!neigh) 3401e8599ff4SDavid S. Miller return; 3402e8599ff4SDavid S. Miller 34031da177e4SLinus Torvalds /* 34041da177e4SLinus Torvalds * We have finally decided to accept it. 34051da177e4SLinus Torvalds */ 34061da177e4SLinus Torvalds 3407f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34081da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34091da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34101da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3411f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3412f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34131da177e4SLinus Torvalds 34144d85cd0cSDavid Ahern rcu_read_lock(); 3415a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3416e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3417e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3418e873e4b9SWei Wang */ 34198a14e46fSDavid Ahern fib6_info_hold(from); 34204d85cd0cSDavid Ahern rcu_read_unlock(); 34218a14e46fSDavid Ahern 34228a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 342338308473SDavid S. Miller if (!nrt) 34241da177e4SLinus Torvalds goto out; 34251da177e4SLinus Torvalds 34261da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34271da177e4SLinus Torvalds if (on_link) 34281da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34291da177e4SLinus Torvalds 34304e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34311da177e4SLinus Torvalds 34322b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34332b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34342b760fcfSWei Wang * takes care of it 34352b760fcfSWei Wang */ 34368a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34372b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34382b760fcfSWei Wang goto out; 34392b760fcfSWei Wang } 34401da177e4SLinus Torvalds 3441d8d1f30bSChangli Gao netevent.old = &rt->dst; 3442d8d1f30bSChangli Gao netevent.new = &nrt->dst; 344371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 344460592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34458d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34468d71740cSTom Tucker 34471da177e4SLinus Torvalds out: 34488a14e46fSDavid Ahern fib6_info_release(from); 3449e8599ff4SDavid S. Miller neigh_release(neigh); 34506e157b6aSDavid S. Miller } 34516e157b6aSDavid S. Miller 345270ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34538d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3454b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3455830218c1SDavid Ahern const struct in6_addr *gwaddr, 3456830218c1SDavid Ahern struct net_device *dev) 345770ceb4f5SYOSHIFUJI Hideaki { 3458830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3459830218c1SDavid Ahern int ifindex = dev->ifindex; 346070ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34618d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3462c71099acSThomas Graf struct fib6_table *table; 346370ceb4f5SYOSHIFUJI Hideaki 3464830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 346538308473SDavid S. Miller if (!table) 3466c71099acSThomas Graf return NULL; 3467c71099acSThomas Graf 346866f5d6ceSWei Wang rcu_read_lock(); 346938fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 347070ceb4f5SYOSHIFUJI Hideaki if (!fn) 347170ceb4f5SYOSHIFUJI Hideaki goto out; 347270ceb4f5SYOSHIFUJI Hideaki 347366f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3474ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev->ifindex != ifindex) 347570ceb4f5SYOSHIFUJI Hideaki continue; 34762b2450caSDavid Ahern if (!(rt->fib6_flags & RTF_ROUTEINFO) || 3477bdf00467SDavid Ahern !rt->fib6_nh.fib_nh_gw_family) 347870ceb4f5SYOSHIFUJI Hideaki continue; 3479ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.fib_nh_gw6, gwaddr)) 348070ceb4f5SYOSHIFUJI Hideaki continue; 3481e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3482e873e4b9SWei Wang continue; 348370ceb4f5SYOSHIFUJI Hideaki break; 348470ceb4f5SYOSHIFUJI Hideaki } 348570ceb4f5SYOSHIFUJI Hideaki out: 348666f5d6ceSWei Wang rcu_read_unlock(); 348770ceb4f5SYOSHIFUJI Hideaki return rt; 348870ceb4f5SYOSHIFUJI Hideaki } 348970ceb4f5SYOSHIFUJI Hideaki 34908d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3491b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3492830218c1SDavid Ahern const struct in6_addr *gwaddr, 3493830218c1SDavid Ahern struct net_device *dev, 349495c96174SEric Dumazet unsigned int pref) 349570ceb4f5SYOSHIFUJI Hideaki { 349686872cb5SThomas Graf struct fib6_config cfg = { 3497238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3498830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 349986872cb5SThomas Graf .fc_dst_len = prefixlen, 350086872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 350186872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3502b91d5329SXin Long .fc_protocol = RTPROT_RA, 3503e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 350415e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3505efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3506efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 350786872cb5SThomas Graf }; 350870ceb4f5SYOSHIFUJI Hideaki 3509830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35104e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35114e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 351286872cb5SThomas Graf 3513e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3514e317da96SYOSHIFUJI Hideaki if (!prefixlen) 351586872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 351670ceb4f5SYOSHIFUJI Hideaki 3517acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 351870ceb4f5SYOSHIFUJI Hideaki 3519830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 352070ceb4f5SYOSHIFUJI Hideaki } 352170ceb4f5SYOSHIFUJI Hideaki #endif 352270ceb4f5SYOSHIFUJI Hideaki 35238d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3524afb1d4b5SDavid Ahern const struct in6_addr *addr, 3525afb1d4b5SDavid Ahern struct net_device *dev) 35261da177e4SLinus Torvalds { 3527830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35288d1c802bSDavid Ahern struct fib6_info *rt; 3529c71099acSThomas Graf struct fib6_table *table; 35301da177e4SLinus Torvalds 3531afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 353238308473SDavid S. Miller if (!table) 3533c71099acSThomas Graf return NULL; 35341da177e4SLinus Torvalds 353566f5d6ceSWei Wang rcu_read_lock(); 353666f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3537ad1601aeSDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 3538ad1601aeSDavid Ahern 3539ad1601aeSDavid Ahern if (dev == nh->fib_nh_dev && 354093c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 3541ad1601aeSDavid Ahern ipv6_addr_equal(&nh->fib_nh_gw6, addr)) 35421da177e4SLinus Torvalds break; 35431da177e4SLinus Torvalds } 3544e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3545e873e4b9SWei Wang rt = NULL; 354666f5d6ceSWei Wang rcu_read_unlock(); 35471da177e4SLinus Torvalds return rt; 35481da177e4SLinus Torvalds } 35491da177e4SLinus Torvalds 35508d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3551afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3552ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3553ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35541da177e4SLinus Torvalds { 355586872cb5SThomas Graf struct fib6_config cfg = { 3556ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3557238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 355886872cb5SThomas Graf .fc_ifindex = dev->ifindex, 355986872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 356086872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3561b91d5329SXin Long .fc_protocol = RTPROT_RA, 3562e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 356315e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35645578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3565afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 356686872cb5SThomas Graf }; 35671da177e4SLinus Torvalds 35684e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35691da177e4SLinus Torvalds 3570acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3571830218c1SDavid Ahern struct fib6_table *table; 3572830218c1SDavid Ahern 3573830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3574830218c1SDavid Ahern if (table) 3575830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3576830218c1SDavid Ahern } 35771da177e4SLinus Torvalds 3578afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35791da177e4SLinus Torvalds } 35801da177e4SLinus Torvalds 3581afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3582afb1d4b5SDavid Ahern struct fib6_table *table) 35831da177e4SLinus Torvalds { 35848d1c802bSDavid Ahern struct fib6_info *rt; 35851da177e4SLinus Torvalds 35861da177e4SLinus Torvalds restart: 358766f5d6ceSWei Wang rcu_read_lock(); 358866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3589dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3590dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3591dcd1f572SDavid Ahern 359293c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3593e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3594e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 359566f5d6ceSWei Wang rcu_read_unlock(); 3596afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 35971da177e4SLinus Torvalds goto restart; 35981da177e4SLinus Torvalds } 35991da177e4SLinus Torvalds } 360066f5d6ceSWei Wang rcu_read_unlock(); 3601830218c1SDavid Ahern 3602830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3603830218c1SDavid Ahern } 3604830218c1SDavid Ahern 3605830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3606830218c1SDavid Ahern { 3607830218c1SDavid Ahern struct fib6_table *table; 3608830218c1SDavid Ahern struct hlist_head *head; 3609830218c1SDavid Ahern unsigned int h; 3610830218c1SDavid Ahern 3611830218c1SDavid Ahern rcu_read_lock(); 3612830218c1SDavid Ahern 3613830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3614830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3615830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3616830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3617afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3618830218c1SDavid Ahern } 3619830218c1SDavid Ahern } 3620830218c1SDavid Ahern 3621830218c1SDavid Ahern rcu_read_unlock(); 36221da177e4SLinus Torvalds } 36231da177e4SLinus Torvalds 36245578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36255578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 362686872cb5SThomas Graf struct fib6_config *cfg) 362786872cb5SThomas Graf { 36288823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 36298823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 36308823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 36318823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 363267f69513SDavid Ahern .fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER, 36338823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 36348823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 36358823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 36368823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 36378823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 363886872cb5SThomas Graf 36398823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 364086872cb5SThomas Graf 36418823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36428823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36438823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36448823a3acSMaciej Żenczykowski }; 364586872cb5SThomas Graf } 364686872cb5SThomas Graf 36475578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36481da177e4SLinus Torvalds { 364986872cb5SThomas Graf struct fib6_config cfg; 36501da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36511da177e4SLinus Torvalds int err; 36521da177e4SLinus Torvalds 36531da177e4SLinus Torvalds switch (cmd) { 36541da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36551da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3656af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36571da177e4SLinus Torvalds return -EPERM; 36581da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36591da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36601da177e4SLinus Torvalds if (err) 36611da177e4SLinus Torvalds return -EFAULT; 36621da177e4SLinus Torvalds 36635578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 366486872cb5SThomas Graf 36651da177e4SLinus Torvalds rtnl_lock(); 36661da177e4SLinus Torvalds switch (cmd) { 36671da177e4SLinus Torvalds case SIOCADDRT: 3668acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36691da177e4SLinus Torvalds break; 36701da177e4SLinus Torvalds case SIOCDELRT: 3671333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36721da177e4SLinus Torvalds break; 36731da177e4SLinus Torvalds default: 36741da177e4SLinus Torvalds err = -EINVAL; 36751da177e4SLinus Torvalds } 36761da177e4SLinus Torvalds rtnl_unlock(); 36771da177e4SLinus Torvalds 36781da177e4SLinus Torvalds return err; 36793ff50b79SStephen Hemminger } 36801da177e4SLinus Torvalds 36811da177e4SLinus Torvalds return -EINVAL; 36821da177e4SLinus Torvalds } 36831da177e4SLinus Torvalds 36841da177e4SLinus Torvalds /* 36851da177e4SLinus Torvalds * Drop the packet on the floor 36861da177e4SLinus Torvalds */ 36871da177e4SLinus Torvalds 3688d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36891da177e4SLinus Torvalds { 3690612f09e8SYOSHIFUJI Hideaki int type; 3691adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3692612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3693612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 36940660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 369545bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3696bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3697bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 36983bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3699612f09e8SYOSHIFUJI Hideaki break; 3700612f09e8SYOSHIFUJI Hideaki } 3701612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3702612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37033bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37043bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3705612f09e8SYOSHIFUJI Hideaki break; 3706612f09e8SYOSHIFUJI Hideaki } 37073ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37081da177e4SLinus Torvalds kfree_skb(skb); 37091da177e4SLinus Torvalds return 0; 37101da177e4SLinus Torvalds } 37111da177e4SLinus Torvalds 37129ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37139ce8ade0SThomas Graf { 3714612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37159ce8ade0SThomas Graf } 37169ce8ade0SThomas Graf 3717ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37181da177e4SLinus Torvalds { 3719adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3720612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37211da177e4SLinus Torvalds } 37221da177e4SLinus Torvalds 37239ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37249ce8ade0SThomas Graf { 3725612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37269ce8ade0SThomas Graf } 37279ce8ade0SThomas Graf 3728ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37299ce8ade0SThomas Graf { 3730adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3731612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37329ce8ade0SThomas Graf } 37339ce8ade0SThomas Graf 37341da177e4SLinus Torvalds /* 37351da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37361da177e4SLinus Torvalds */ 37371da177e4SLinus Torvalds 3738360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3739afb1d4b5SDavid Ahern struct inet6_dev *idev, 37401da177e4SLinus Torvalds const struct in6_addr *addr, 3741acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37421da177e4SLinus Torvalds { 3743c7a1ce39SDavid Ahern struct fib6_config cfg = { 3744c7a1ce39SDavid Ahern .fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL, 3745c7a1ce39SDavid Ahern .fc_ifindex = idev->dev->ifindex, 3746c7a1ce39SDavid Ahern .fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP, 3747c7a1ce39SDavid Ahern .fc_dst = *addr, 3748c7a1ce39SDavid Ahern .fc_dst_len = 128, 3749c7a1ce39SDavid Ahern .fc_protocol = RTPROT_KERNEL, 3750c7a1ce39SDavid Ahern .fc_nlinfo.nl_net = net, 3751c7a1ce39SDavid Ahern .fc_ignore_dev_down = true, 3752c7a1ce39SDavid Ahern }; 37535f02ce24SDavid Ahern 3754e8478e80SDavid Ahern if (anycast) { 3755c7a1ce39SDavid Ahern cfg.fc_type = RTN_ANYCAST; 3756c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_ANYCAST; 3757e8478e80SDavid Ahern } else { 3758c7a1ce39SDavid Ahern cfg.fc_type = RTN_LOCAL; 3759c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_LOCAL; 3760e8478e80SDavid Ahern } 37611da177e4SLinus Torvalds 3762c7a1ce39SDavid Ahern return ip6_route_info_create(&cfg, gfp_flags, NULL); 37631da177e4SLinus Torvalds } 37641da177e4SLinus Torvalds 3765c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3766c3968a85SDaniel Walter struct arg_dev_net_ip { 3767c3968a85SDaniel Walter struct net_device *dev; 3768c3968a85SDaniel Walter struct net *net; 3769c3968a85SDaniel Walter struct in6_addr *addr; 3770c3968a85SDaniel Walter }; 3771c3968a85SDaniel Walter 37728d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3773c3968a85SDaniel Walter { 3774c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3775c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3776c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3777c3968a85SDaniel Walter 3778ad1601aeSDavid Ahern if (((void *)rt->fib6_nh.fib_nh_dev == dev || !dev) && 3779421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 378093c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 378160006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3782c3968a85SDaniel Walter /* remove prefsrc entry */ 378393c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 378460006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3785c3968a85SDaniel Walter } 3786c3968a85SDaniel Walter return 0; 3787c3968a85SDaniel Walter } 3788c3968a85SDaniel Walter 3789c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3790c3968a85SDaniel Walter { 3791c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3792c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3793c3968a85SDaniel Walter .dev = ifp->idev->dev, 3794c3968a85SDaniel Walter .net = net, 3795c3968a85SDaniel Walter .addr = &ifp->addr, 3796c3968a85SDaniel Walter }; 37970c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3798c3968a85SDaniel Walter } 3799c3968a85SDaniel Walter 38002b2450caSDavid Ahern #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT) 3801be7a010dSDuan Jiong 3802be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38038d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3804be7a010dSDuan Jiong { 3805be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3806be7a010dSDuan Jiong 380793c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3808bdf00467SDavid Ahern rt->fib6_nh.fib_nh_gw_family && 3809ad1601aeSDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.fib_nh_gw6)) { 3810be7a010dSDuan Jiong return -1; 3811be7a010dSDuan Jiong } 3812b16cb459SWei Wang 3813b16cb459SWei Wang /* Further clean up cached routes in exception table. 3814b16cb459SWei Wang * This is needed because cached route may have a different 3815b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3816b16cb459SWei Wang */ 3817b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3818b16cb459SWei Wang 3819be7a010dSDuan Jiong return 0; 3820be7a010dSDuan Jiong } 3821be7a010dSDuan Jiong 3822be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3823be7a010dSDuan Jiong { 3824be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3825be7a010dSDuan Jiong } 3826be7a010dSDuan Jiong 38272127d95aSIdo Schimmel struct arg_netdev_event { 38282127d95aSIdo Schimmel const struct net_device *dev; 38294c981e28SIdo Schimmel union { 38302127d95aSIdo Schimmel unsigned int nh_flags; 38314c981e28SIdo Schimmel unsigned long event; 38324c981e28SIdo Schimmel }; 38332127d95aSIdo Schimmel }; 38342127d95aSIdo Schimmel 38358d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3836d7dedee1SIdo Schimmel { 38378d1c802bSDavid Ahern struct fib6_info *iter; 3838d7dedee1SIdo Schimmel struct fib6_node *fn; 3839d7dedee1SIdo Schimmel 384093c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 384193c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3842d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 384393c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3844d7dedee1SIdo Schimmel while (iter) { 384593c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 384633bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3847d7dedee1SIdo Schimmel return iter; 38488fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 384993c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3850d7dedee1SIdo Schimmel } 3851d7dedee1SIdo Schimmel 3852d7dedee1SIdo Schimmel return NULL; 3853d7dedee1SIdo Schimmel } 3854d7dedee1SIdo Schimmel 38558d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3856d7dedee1SIdo Schimmel { 3857ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD || 3858ad1601aeSDavid Ahern (rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 3859ad1601aeSDavid Ahern ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev))) 3860d7dedee1SIdo Schimmel return true; 3861d7dedee1SIdo Schimmel 3862d7dedee1SIdo Schimmel return false; 3863d7dedee1SIdo Schimmel } 3864d7dedee1SIdo Schimmel 38658d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3866d7dedee1SIdo Schimmel { 38678d1c802bSDavid Ahern struct fib6_info *iter; 3868d7dedee1SIdo Schimmel int total = 0; 3869d7dedee1SIdo Schimmel 3870d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 3871ad1601aeSDavid Ahern total += rt->fib6_nh.fib_nh_weight; 3872d7dedee1SIdo Schimmel 387393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3874d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 3875ad1601aeSDavid Ahern total += iter->fib6_nh.fib_nh_weight; 3876d7dedee1SIdo Schimmel } 3877d7dedee1SIdo Schimmel 3878d7dedee1SIdo Schimmel return total; 3879d7dedee1SIdo Schimmel } 3880d7dedee1SIdo Schimmel 38818d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3882d7dedee1SIdo Schimmel { 3883d7dedee1SIdo Schimmel int upper_bound = -1; 3884d7dedee1SIdo Schimmel 3885d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 3886ad1601aeSDavid Ahern *weight += rt->fib6_nh.fib_nh_weight; 3887d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3888d7dedee1SIdo Schimmel total) - 1; 3889d7dedee1SIdo Schimmel } 3890ad1601aeSDavid Ahern atomic_set(&rt->fib6_nh.fib_nh_upper_bound, upper_bound); 3891d7dedee1SIdo Schimmel } 3892d7dedee1SIdo Schimmel 38938d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3894d7dedee1SIdo Schimmel { 38958d1c802bSDavid Ahern struct fib6_info *iter; 3896d7dedee1SIdo Schimmel int weight = 0; 3897d7dedee1SIdo Schimmel 3898d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3899d7dedee1SIdo Schimmel 390093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3901d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3902d7dedee1SIdo Schimmel } 3903d7dedee1SIdo Schimmel 39048d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3905d7dedee1SIdo Schimmel { 39068d1c802bSDavid Ahern struct fib6_info *first; 3907d7dedee1SIdo Schimmel int total; 3908d7dedee1SIdo Schimmel 3909d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3910d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3911d7dedee1SIdo Schimmel * sibling route. 3912d7dedee1SIdo Schimmel */ 391393c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3914d7dedee1SIdo Schimmel return; 3915d7dedee1SIdo Schimmel 3916d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3917d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3918d7dedee1SIdo Schimmel * onwards. 3919d7dedee1SIdo Schimmel */ 3920d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3921d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3922d7dedee1SIdo Schimmel return; 3923d7dedee1SIdo Schimmel 3924d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3925d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3926d7dedee1SIdo Schimmel } 3927d7dedee1SIdo Schimmel 39288d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39292127d95aSIdo Schimmel { 39302127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39317aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39322127d95aSIdo Schimmel 3933ad1601aeSDavid Ahern if (rt != net->ipv6.fib6_null_entry && 3934ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_dev == arg->dev) { 3935ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags &= ~arg->nh_flags; 39367aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3937d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39381de178edSIdo Schimmel } 39392127d95aSIdo Schimmel 39402127d95aSIdo Schimmel return 0; 39412127d95aSIdo Schimmel } 39422127d95aSIdo Schimmel 39432127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39442127d95aSIdo Schimmel { 39452127d95aSIdo Schimmel struct arg_netdev_event arg = { 39462127d95aSIdo Schimmel .dev = dev, 39476802f3adSIdo Schimmel { 39482127d95aSIdo Schimmel .nh_flags = nh_flags, 39496802f3adSIdo Schimmel }, 39502127d95aSIdo Schimmel }; 39512127d95aSIdo Schimmel 39522127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39532127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39542127d95aSIdo Schimmel 39552127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39562127d95aSIdo Schimmel } 39572127d95aSIdo Schimmel 39588d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39591de178edSIdo Schimmel const struct net_device *dev) 39601de178edSIdo Schimmel { 39618d1c802bSDavid Ahern struct fib6_info *iter; 39621de178edSIdo Schimmel 3963ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 39641de178edSIdo Schimmel return true; 396593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3966ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 39671de178edSIdo Schimmel return true; 39681de178edSIdo Schimmel 39691de178edSIdo Schimmel return false; 39701de178edSIdo Schimmel } 39711de178edSIdo Schimmel 39728d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39731de178edSIdo Schimmel { 39748d1c802bSDavid Ahern struct fib6_info *iter; 39751de178edSIdo Schimmel 39761de178edSIdo Schimmel rt->should_flush = 1; 397793c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39781de178edSIdo Schimmel iter->should_flush = 1; 39791de178edSIdo Schimmel } 39801de178edSIdo Schimmel 39818d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39821de178edSIdo Schimmel const struct net_device *down_dev) 39831de178edSIdo Schimmel { 39848d1c802bSDavid Ahern struct fib6_info *iter; 39851de178edSIdo Schimmel unsigned int dead = 0; 39861de178edSIdo Schimmel 3987ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == down_dev || 3988ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 39891de178edSIdo Schimmel dead++; 399093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3991ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == down_dev || 3992ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 39931de178edSIdo Schimmel dead++; 39941de178edSIdo Schimmel 39951de178edSIdo Schimmel return dead; 39961de178edSIdo Schimmel } 39971de178edSIdo Schimmel 39988d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 39991de178edSIdo Schimmel const struct net_device *dev, 40001de178edSIdo Schimmel unsigned int nh_flags) 40011de178edSIdo Schimmel { 40028d1c802bSDavid Ahern struct fib6_info *iter; 40031de178edSIdo Schimmel 4004ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 4005ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= nh_flags; 400693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4007ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 4008ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags |= nh_flags; 40091de178edSIdo Schimmel } 40101de178edSIdo Schimmel 4011a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40128d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40131da177e4SLinus Torvalds { 40144c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40154c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40167aef6859SDavid Ahern struct net *net = dev_net(dev); 40178ed67789SDaniel Lezcano 4018421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 401927c6fa73SIdo Schimmel return 0; 402027c6fa73SIdo Schimmel 402127c6fa73SIdo Schimmel switch (arg->event) { 402227c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 4023ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 402427c6fa73SIdo Schimmel case NETDEV_DOWN: 40251de178edSIdo Schimmel if (rt->should_flush) 402627c6fa73SIdo Schimmel return -1; 402793c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 4028ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 40291de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40301de178edSIdo Schimmel unsigned int count; 40311de178edSIdo Schimmel 40321de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 403393c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40341de178edSIdo Schimmel rt6_multipath_flush(rt); 40351de178edSIdo Schimmel return -1; 40361de178edSIdo Schimmel } 40371de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40381de178edSIdo Schimmel RTNH_F_LINKDOWN); 40397aef6859SDavid Ahern fib6_update_sernum(net, rt); 4040d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40411de178edSIdo Schimmel } 40421de178edSIdo Schimmel return -2; 404327c6fa73SIdo Schimmel case NETDEV_CHANGE: 4044ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev != dev || 404593c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 404627c6fa73SIdo Schimmel break; 4047ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= RTNH_F_LINKDOWN; 4048d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 404927c6fa73SIdo Schimmel break; 40502b241361SIdo Schimmel } 4051c159d30cSDavid S. Miller 40521da177e4SLinus Torvalds return 0; 40531da177e4SLinus Torvalds } 40541da177e4SLinus Torvalds 405527c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40561da177e4SLinus Torvalds { 40574c981e28SIdo Schimmel struct arg_netdev_event arg = { 40588ed67789SDaniel Lezcano .dev = dev, 40596802f3adSIdo Schimmel { 40604c981e28SIdo Schimmel .event = event, 40616802f3adSIdo Schimmel }, 40628ed67789SDaniel Lezcano }; 40637c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 40648ed67789SDaniel Lezcano 40657c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 40667c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 40677c6bb7d2SDavid Ahern else 40687c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 40694c981e28SIdo Schimmel } 40704c981e28SIdo Schimmel 40714c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40724c981e28SIdo Schimmel { 40734c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40744c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40754c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40761da177e4SLinus Torvalds } 40771da177e4SLinus Torvalds 407895c96174SEric Dumazet struct rt6_mtu_change_arg { 40791da177e4SLinus Torvalds struct net_device *dev; 408095c96174SEric Dumazet unsigned int mtu; 40811da177e4SLinus Torvalds }; 40821da177e4SLinus Torvalds 40838d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40841da177e4SLinus Torvalds { 40851da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40861da177e4SLinus Torvalds struct inet6_dev *idev; 40871da177e4SLinus Torvalds 40881da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 40891da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 40901da177e4SLinus Torvalds We still use this lock to block changes 40911da177e4SLinus Torvalds caused by addrconf/ndisc. 40921da177e4SLinus Torvalds */ 40931da177e4SLinus Torvalds 40941da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 409538308473SDavid S. Miller if (!idev) 40961da177e4SLinus Torvalds return 0; 40971da177e4SLinus Torvalds 40981da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 40991da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41001da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41011da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41021da177e4SLinus Torvalds */ 4103ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == arg->dev && 4104d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4105d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4106d4ead6b3SDavid Ahern 4107d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4108d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4109d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4110d4ead6b3SDavid Ahern 4111f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4112e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4113f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41144b32b5adSMartin KaFai Lau } 41151da177e4SLinus Torvalds return 0; 41161da177e4SLinus Torvalds } 41171da177e4SLinus Torvalds 411895c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41191da177e4SLinus Torvalds { 4120c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4121c71099acSThomas Graf .dev = dev, 4122c71099acSThomas Graf .mtu = mtu, 4123c71099acSThomas Graf }; 41241da177e4SLinus Torvalds 41250c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41261da177e4SLinus Torvalds } 41271da177e4SLinus Torvalds 4128ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41295176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4130aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 413186872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4132ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 413386872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 413486872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 413551ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4136c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 413719e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 413819e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 413932bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4140622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41413b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4142aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4143eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4144eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4145eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 414686872cb5SThomas Graf }; 414786872cb5SThomas Graf 414886872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4149333c4301SDavid Ahern struct fib6_config *cfg, 4150333c4301SDavid Ahern struct netlink_ext_ack *extack) 41511da177e4SLinus Torvalds { 415286872cb5SThomas Graf struct rtmsg *rtm; 415386872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4154c78ba6d6SLubomir Rintel unsigned int pref; 415586872cb5SThomas Graf int err; 41561da177e4SLinus Torvalds 4157fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4158dac9c979SDavid Ahern extack); 415986872cb5SThomas Graf if (err < 0) 416086872cb5SThomas Graf goto errout; 41611da177e4SLinus Torvalds 416286872cb5SThomas Graf err = -EINVAL; 416386872cb5SThomas Graf rtm = nlmsg_data(nlh); 416486872cb5SThomas Graf 416584db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 416684db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 416784db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 416884db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 416984db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 417084db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 417184db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 417284db8407SMaciej Żenczykowski 417384db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 417484db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 417584db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 417684db8407SMaciej Żenczykowski }; 417786872cb5SThomas Graf 4178ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4179ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4180b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4181b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 418286872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 418386872cb5SThomas Graf 4184ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4185ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4186ab79ad14SMaciej Żenczykowski 41871f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41881f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41891f56a01fSMartin KaFai Lau 4190fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4191fc1e64e1SDavid Ahern 419286872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 419367b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 419486872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 41951da177e4SLinus Torvalds } 4196e3818541SDavid Ahern if (tb[RTA_VIA]) { 4197e3818541SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute"); 4198e3818541SDavid Ahern goto errout; 4199e3818541SDavid Ahern } 420086872cb5SThomas Graf 420186872cb5SThomas Graf if (tb[RTA_DST]) { 420286872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 420386872cb5SThomas Graf 420486872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 420586872cb5SThomas Graf goto errout; 420686872cb5SThomas Graf 420786872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42081da177e4SLinus Torvalds } 420986872cb5SThomas Graf 421086872cb5SThomas Graf if (tb[RTA_SRC]) { 421186872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 421286872cb5SThomas Graf 421386872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 421486872cb5SThomas Graf goto errout; 421586872cb5SThomas Graf 421686872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42171da177e4SLinus Torvalds } 421886872cb5SThomas Graf 4219c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 422067b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4221c3968a85SDaniel Walter 422286872cb5SThomas Graf if (tb[RTA_OIF]) 422386872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 422486872cb5SThomas Graf 422586872cb5SThomas Graf if (tb[RTA_PRIORITY]) 422686872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 422786872cb5SThomas Graf 422886872cb5SThomas Graf if (tb[RTA_METRICS]) { 422986872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 423086872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42311da177e4SLinus Torvalds } 423286872cb5SThomas Graf 423386872cb5SThomas Graf if (tb[RTA_TABLE]) 423486872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 423586872cb5SThomas Graf 423651ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 423751ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 423851ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42399ed59592SDavid Ahern 42409ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4241c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42429ed59592SDavid Ahern if (err < 0) 42439ed59592SDavid Ahern goto errout; 424451ebd318SNicolas Dichtel } 424551ebd318SNicolas Dichtel 4246c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4247c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4248c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4249c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4250c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4251c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4252c78ba6d6SLubomir Rintel } 4253c78ba6d6SLubomir Rintel 425419e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 425519e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 425619e42e45SRoopa Prabhu 42579ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 425819e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 425919e42e45SRoopa Prabhu 4260c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42619ed59592SDavid Ahern if (err < 0) 42629ed59592SDavid Ahern goto errout; 42639ed59592SDavid Ahern } 42649ed59592SDavid Ahern 426532bc201eSXin Long if (tb[RTA_EXPIRES]) { 426632bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 426732bc201eSXin Long 426832bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 426932bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 427032bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 427132bc201eSXin Long } 427232bc201eSXin Long } 427332bc201eSXin Long 427486872cb5SThomas Graf err = 0; 427586872cb5SThomas Graf errout: 427686872cb5SThomas Graf return err; 42771da177e4SLinus Torvalds } 42781da177e4SLinus Torvalds 42796b9ea5a6SRoopa Prabhu struct rt6_nh { 42808d1c802bSDavid Ahern struct fib6_info *fib6_info; 42816b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42826b9ea5a6SRoopa Prabhu struct list_head next; 42836b9ea5a6SRoopa Prabhu }; 42846b9ea5a6SRoopa Prabhu 4285d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4286d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 42878d1c802bSDavid Ahern struct fib6_info *rt, 42888d1c802bSDavid Ahern struct fib6_config *r_cfg) 42896b9ea5a6SRoopa Prabhu { 42906b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42916b9ea5a6SRoopa Prabhu int err = -EEXIST; 42926b9ea5a6SRoopa Prabhu 42936b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42948d1c802bSDavid Ahern /* check if fib6_info already exists */ 42958d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 42966b9ea5a6SRoopa Prabhu return err; 42976b9ea5a6SRoopa Prabhu } 42986b9ea5a6SRoopa Prabhu 42996b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43006b9ea5a6SRoopa Prabhu if (!nh) 43016b9ea5a6SRoopa Prabhu return -ENOMEM; 43028d1c802bSDavid Ahern nh->fib6_info = rt; 43036b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43046b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43056b9ea5a6SRoopa Prabhu 43066b9ea5a6SRoopa Prabhu return 0; 43076b9ea5a6SRoopa Prabhu } 43086b9ea5a6SRoopa Prabhu 43098d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43108d1c802bSDavid Ahern struct fib6_info *rt_last, 43113b1137feSDavid Ahern struct nl_info *info, 43123b1137feSDavid Ahern __u16 nlflags) 43133b1137feSDavid Ahern { 43143b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43153b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43163b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43173b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43183b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43193b1137feSDavid Ahern */ 432093c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 432193c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43228d1c802bSDavid Ahern struct fib6_info, 432393c2fb25SDavid Ahern fib6_siblings); 43243b1137feSDavid Ahern } 43253b1137feSDavid Ahern 43263b1137feSDavid Ahern if (rt) 43273b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43283b1137feSDavid Ahern } 43293b1137feSDavid Ahern 4330333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4331333c4301SDavid Ahern struct netlink_ext_ack *extack) 433251ebd318SNicolas Dichtel { 43338d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43343b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 433551ebd318SNicolas Dichtel struct fib6_config r_cfg; 433651ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43378d1c802bSDavid Ahern struct fib6_info *rt; 43386b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43396b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43403b1137feSDavid Ahern __u16 nlflags; 434151ebd318SNicolas Dichtel int remaining; 434251ebd318SNicolas Dichtel int attrlen; 43436b9ea5a6SRoopa Prabhu int err = 1; 43446b9ea5a6SRoopa Prabhu int nhn = 0; 43456b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43466b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43476b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 434851ebd318SNicolas Dichtel 43493b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43503b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43513b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43523b1137feSDavid Ahern 435335f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 435451ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 435551ebd318SNicolas Dichtel 43566b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43578d1c802bSDavid Ahern * fib6_info structs per nexthop 43586b9ea5a6SRoopa Prabhu */ 435951ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 436051ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 436151ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 436251ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 436351ebd318SNicolas Dichtel 436451ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 436551ebd318SNicolas Dichtel if (attrlen > 0) { 436651ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 436751ebd318SNicolas Dichtel 436851ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 436951ebd318SNicolas Dichtel if (nla) { 437067b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 437151ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 437251ebd318SNicolas Dichtel } 437319e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 437419e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 437519e42e45SRoopa Prabhu if (nla) 437619e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 437751ebd318SNicolas Dichtel } 43786b9ea5a6SRoopa Prabhu 437968e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4380acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43818c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43828c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43838c5b83f0SRoopa Prabhu rt = NULL; 43846b9ea5a6SRoopa Prabhu goto cleanup; 43858c5b83f0SRoopa Prabhu } 4386b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4387b5d2d75eSDavid Ahern err = -EINVAL; 4388b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4389b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4390b5d2d75eSDavid Ahern fib6_info_release(rt); 4391b5d2d75eSDavid Ahern goto cleanup; 4392b5d2d75eSDavid Ahern } 43936b9ea5a6SRoopa Prabhu 4394ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_weight = rtnh->rtnh_hops + 1; 4395398958aeSIdo Schimmel 4396d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4397d4ead6b3SDavid Ahern rt, &r_cfg); 439851ebd318SNicolas Dichtel if (err) { 439993531c67SDavid Ahern fib6_info_release(rt); 44006b9ea5a6SRoopa Prabhu goto cleanup; 440151ebd318SNicolas Dichtel } 44026b9ea5a6SRoopa Prabhu 44036b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 440451ebd318SNicolas Dichtel } 44056b9ea5a6SRoopa Prabhu 44063b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44073b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44083b1137feSDavid Ahern * the full route when done 44093b1137feSDavid Ahern */ 44103b1137feSDavid Ahern info->skip_notify = 1; 44113b1137feSDavid Ahern 44126b9ea5a6SRoopa Prabhu err_nh = NULL; 44136b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44148d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44158d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44163b1137feSDavid Ahern 4417f7225172SDavid Ahern if (!err) { 4418f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4419f7225172SDavid Ahern rt_last = nh->fib6_info; 4420f7225172SDavid Ahern 44216b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4422f7225172SDavid Ahern if (!rt_notif) 44238d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4424f7225172SDavid Ahern } 44256b9ea5a6SRoopa Prabhu 44268d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44278d1c802bSDavid Ahern nh->fib6_info = NULL; 44286b9ea5a6SRoopa Prabhu if (err) { 44296b9ea5a6SRoopa Prabhu if (replace && nhn) 4430a5a82d84SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 4431a5a82d84SJakub Kicinski "multipath route replace failed (check consistency of installed routes)"); 44326b9ea5a6SRoopa Prabhu err_nh = nh; 44336b9ea5a6SRoopa Prabhu goto add_errout; 44346b9ea5a6SRoopa Prabhu } 44356b9ea5a6SRoopa Prabhu 44361a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 443727596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 443827596472SMichal Kubeček * we have already failed to add the first nexthop: 443927596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 444027596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 444127596472SMichal Kubeček * be added to it. 44421a72418bSNicolas Dichtel */ 444327596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 444427596472SMichal Kubeček NLM_F_REPLACE); 44456b9ea5a6SRoopa Prabhu nhn++; 44466b9ea5a6SRoopa Prabhu } 44476b9ea5a6SRoopa Prabhu 44483b1137feSDavid Ahern /* success ... tell user about new route */ 44493b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44506b9ea5a6SRoopa Prabhu goto cleanup; 44516b9ea5a6SRoopa Prabhu 44526b9ea5a6SRoopa Prabhu add_errout: 44533b1137feSDavid Ahern /* send notification for routes that were added so that 44543b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44553b1137feSDavid Ahern * coherent 44563b1137feSDavid Ahern */ 44573b1137feSDavid Ahern if (rt_notif) 44583b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44593b1137feSDavid Ahern 44606b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44616b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44626b9ea5a6SRoopa Prabhu if (err_nh == nh) 44636b9ea5a6SRoopa Prabhu break; 4464333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44656b9ea5a6SRoopa Prabhu } 44666b9ea5a6SRoopa Prabhu 44676b9ea5a6SRoopa Prabhu cleanup: 44686b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44698d1c802bSDavid Ahern if (nh->fib6_info) 44708d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44716b9ea5a6SRoopa Prabhu list_del(&nh->next); 44726b9ea5a6SRoopa Prabhu kfree(nh); 44736b9ea5a6SRoopa Prabhu } 44746b9ea5a6SRoopa Prabhu 44756b9ea5a6SRoopa Prabhu return err; 44766b9ea5a6SRoopa Prabhu } 44776b9ea5a6SRoopa Prabhu 4478333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4479333c4301SDavid Ahern struct netlink_ext_ack *extack) 44806b9ea5a6SRoopa Prabhu { 44816b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44826b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44836b9ea5a6SRoopa Prabhu int remaining; 44846b9ea5a6SRoopa Prabhu int attrlen; 44856b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 44866b9ea5a6SRoopa Prabhu 44876b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 44886b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 44896b9ea5a6SRoopa Prabhu 44906b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 44916b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 44926b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 44936b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 44946b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 44956b9ea5a6SRoopa Prabhu 44966b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 44976b9ea5a6SRoopa Prabhu if (attrlen > 0) { 44986b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 44996b9ea5a6SRoopa Prabhu 45006b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45016b9ea5a6SRoopa Prabhu if (nla) { 45026b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45036b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45046b9ea5a6SRoopa Prabhu } 45056b9ea5a6SRoopa Prabhu } 4506333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45076b9ea5a6SRoopa Prabhu if (err) 45086b9ea5a6SRoopa Prabhu last_err = err; 45096b9ea5a6SRoopa Prabhu 451051ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 451151ebd318SNicolas Dichtel } 451251ebd318SNicolas Dichtel 451351ebd318SNicolas Dichtel return last_err; 451451ebd318SNicolas Dichtel } 451551ebd318SNicolas Dichtel 4516c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4517c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45181da177e4SLinus Torvalds { 451986872cb5SThomas Graf struct fib6_config cfg; 452086872cb5SThomas Graf int err; 45211da177e4SLinus Torvalds 4522333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 452386872cb5SThomas Graf if (err < 0) 452486872cb5SThomas Graf return err; 452586872cb5SThomas Graf 452651ebd318SNicolas Dichtel if (cfg.fc_mp) 4527333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45280ae81335SDavid Ahern else { 45290ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4530333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45311da177e4SLinus Torvalds } 45320ae81335SDavid Ahern } 45331da177e4SLinus Torvalds 4534c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4535c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45361da177e4SLinus Torvalds { 453786872cb5SThomas Graf struct fib6_config cfg; 453886872cb5SThomas Graf int err; 45391da177e4SLinus Torvalds 4540333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 454186872cb5SThomas Graf if (err < 0) 454286872cb5SThomas Graf return err; 454386872cb5SThomas Graf 454467f69513SDavid Ahern if (cfg.fc_metric == 0) 454567f69513SDavid Ahern cfg.fc_metric = IP6_RT_PRIO_USER; 454667f69513SDavid Ahern 454751ebd318SNicolas Dichtel if (cfg.fc_mp) 4548333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 454951ebd318SNicolas Dichtel else 4550acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45511da177e4SLinus Torvalds } 45521da177e4SLinus Torvalds 45538d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4554339bf98fSThomas Graf { 4555beb1afacSDavid Ahern int nexthop_len = 0; 4556beb1afacSDavid Ahern 455793c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4558beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4559beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4560beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4561ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws); 4562beb1afacSDavid Ahern 456393c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4564beb1afacSDavid Ahern } 4565beb1afacSDavid Ahern 4566339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4567339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4568339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4569339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4570339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4571339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4572339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4573339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4574339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45756a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4576ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4577c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 457819e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4579ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws) 4580beb1afacSDavid Ahern + nexthop_len; 4581beb1afacSDavid Ahern } 4582beb1afacSDavid Ahern 4583d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 45848d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4585d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 458615e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4587f8cfe2ceSDavid Ahern unsigned int flags) 45881da177e4SLinus Torvalds { 458922d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 459022d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 459122d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 45921da177e4SLinus Torvalds struct nlmsghdr *nlh; 459322d0bd82SXin Long struct rtmsg *rtm; 4594d4ead6b3SDavid Ahern long expires = 0; 45951da177e4SLinus Torvalds 459615e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 459738308473SDavid S. Miller if (!nlh) 459826932566SPatrick McHardy return -EMSGSIZE; 45992d7202bfSThomas Graf 460022d0bd82SXin Long if (rt6) { 460122d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 460222d0bd82SXin Long rt6_src = &rt6->rt6i_src; 460322d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 460422d0bd82SXin Long } else { 460522d0bd82SXin Long rt6_dst = &rt->fib6_dst; 460622d0bd82SXin Long rt6_src = &rt->fib6_src; 460722d0bd82SXin Long rt6_flags = rt->fib6_flags; 460822d0bd82SXin Long } 460922d0bd82SXin Long 46102d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46111da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 461222d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 461322d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46141da177e4SLinus Torvalds rtm->rtm_tos = 0; 461593c2fb25SDavid Ahern if (rt->fib6_table) 461693c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4617c71099acSThomas Graf else 46189e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 461997f0082aSKalash Nainwal rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT; 4620c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4621c78679e8SDavid S. Miller goto nla_put_failure; 4622e8478e80SDavid Ahern 4623e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46241da177e4SLinus Torvalds rtm->rtm_flags = 0; 46251da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 462693c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46271da177e4SLinus Torvalds 462822d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46291da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46301da177e4SLinus Torvalds 4631d4ead6b3SDavid Ahern if (dest) { 4632d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4633c78679e8SDavid S. Miller goto nla_put_failure; 46341da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46351da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 463622d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4637c78679e8SDavid S. Miller goto nla_put_failure; 46381da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46391da177e4SLinus Torvalds if (src) { 4640930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4641c78679e8SDavid S. Miller goto nla_put_failure; 46421da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4643c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 464422d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4645c78679e8SDavid S. Miller goto nla_put_failure; 46461da177e4SLinus Torvalds #endif 46477bc570c8SYOSHIFUJI Hideaki if (iif) { 46487bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 464922d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4650fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 46512cf75070SNikolay Aleksandrov 46527bc570c8SYOSHIFUJI Hideaki if (err == 0) 46537bc570c8SYOSHIFUJI Hideaki return 0; 4654fd61c6baSDavid Ahern if (err < 0) 46557bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 46567bc570c8SYOSHIFUJI Hideaki } else 46577bc570c8SYOSHIFUJI Hideaki #endif 4658c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4659c78679e8SDavid S. Miller goto nla_put_failure; 4660d4ead6b3SDavid Ahern } else if (dest) { 46611da177e4SLinus Torvalds struct in6_addr saddr_buf; 4662d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4663930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4664c78679e8SDavid S. Miller goto nla_put_failure; 4665c3968a85SDaniel Walter } 4666c3968a85SDaniel Walter 466793c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4668c3968a85SDaniel Walter struct in6_addr saddr_buf; 466993c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4670930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4671c78679e8SDavid S. Miller goto nla_put_failure; 46721da177e4SLinus Torvalds } 46732d7202bfSThomas Graf 4674d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4675d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 46762d7202bfSThomas Graf goto nla_put_failure; 46772d7202bfSThomas Graf 467893c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4679beb1afacSDavid Ahern goto nla_put_failure; 4680beb1afacSDavid Ahern 4681beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4682beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4683beb1afacSDavid Ahern */ 468422d0bd82SXin Long if (rt6) { 468522d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 468622d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 468722d0bd82SXin Long goto nla_put_failure; 468822d0bd82SXin Long 468922d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 469022d0bd82SXin Long goto nla_put_failure; 469122d0bd82SXin Long } else if (rt->fib6_nsiblings) { 46928d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4693beb1afacSDavid Ahern struct nlattr *mp; 4694beb1afacSDavid Ahern 4695beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4696beb1afacSDavid Ahern if (!mp) 4697beb1afacSDavid Ahern goto nla_put_failure; 4698beb1afacSDavid Ahern 4699c0a72077SDavid Ahern if (fib_add_nexthop(skb, &rt->fib6_nh.nh_common, 4700c0a72077SDavid Ahern rt->fib6_nh.fib_nh_weight) < 0) 4701beb1afacSDavid Ahern goto nla_put_failure; 4702beb1afacSDavid Ahern 4703beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 470493c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4705c0a72077SDavid Ahern if (fib_add_nexthop(skb, &sibling->fib6_nh.nh_common, 4706c0a72077SDavid Ahern sibling->fib6_nh.fib_nh_weight) < 0) 470794f826b8SEric Dumazet goto nla_put_failure; 470894f826b8SEric Dumazet } 47092d7202bfSThomas Graf 4710beb1afacSDavid Ahern nla_nest_end(skb, mp); 4711beb1afacSDavid Ahern } else { 4712c0a72077SDavid Ahern if (fib_nexthop_info(skb, &rt->fib6_nh.nh_common, 4713c0a72077SDavid Ahern &rtm->rtm_flags, false) < 0) 4714c78679e8SDavid S. Miller goto nla_put_failure; 4715beb1afacSDavid Ahern } 47168253947eSLi Wei 471722d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 471814895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 471914895687SDavid Ahern expires -= jiffies; 472014895687SDavid Ahern } 472169cdf8f9SYOSHIFUJI Hideaki 4722d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4723e3703b3dSThomas Graf goto nla_put_failure; 47241da177e4SLinus Torvalds 472522d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4726c78ba6d6SLubomir Rintel goto nla_put_failure; 4727c78ba6d6SLubomir Rintel 472819e42e45SRoopa Prabhu 4729053c095aSJohannes Berg nlmsg_end(skb, nlh); 4730053c095aSJohannes Berg return 0; 47312d7202bfSThomas Graf 47322d7202bfSThomas Graf nla_put_failure: 473326932566SPatrick McHardy nlmsg_cancel(skb, nlh); 473426932566SPatrick McHardy return -EMSGSIZE; 47351da177e4SLinus Torvalds } 47361da177e4SLinus Torvalds 473713e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 473813e38901SDavid Ahern const struct net_device *dev) 473913e38901SDavid Ahern { 4740ad1601aeSDavid Ahern if (f6i->fib6_nh.fib_nh_dev == dev) 474113e38901SDavid Ahern return true; 474213e38901SDavid Ahern 474313e38901SDavid Ahern if (f6i->fib6_nsiblings) { 474413e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 474513e38901SDavid Ahern 474613e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 474713e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 4748ad1601aeSDavid Ahern if (sibling->fib6_nh.fib_nh_dev == dev) 474913e38901SDavid Ahern return true; 475013e38901SDavid Ahern } 475113e38901SDavid Ahern } 475213e38901SDavid Ahern 475313e38901SDavid Ahern return false; 475413e38901SDavid Ahern } 475513e38901SDavid Ahern 47568d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47571da177e4SLinus Torvalds { 47581da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 475913e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 476013e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 47611f17e2f2SDavid Ahern struct net *net = arg->net; 47621f17e2f2SDavid Ahern 4763421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 47641f17e2f2SDavid Ahern return 0; 47651da177e4SLinus Torvalds 476613e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 476793c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4768f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4769f8cfe2ceSDavid Ahern return 1; 4770f8cfe2ceSDavid Ahern } 477113e38901SDavid Ahern if (filter->filter_set) { 477213e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 477313e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 477413e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 477513e38901SDavid Ahern return 1; 477613e38901SDavid Ahern } 477713e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4778f8cfe2ceSDavid Ahern } 47791da177e4SLinus Torvalds 4780d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4781d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 478213e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 47831da177e4SLinus Torvalds } 47841da177e4SLinus Torvalds 47850eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb, 47860eff0a27SJakub Kicinski const struct nlmsghdr *nlh, 47870eff0a27SJakub Kicinski struct nlattr **tb, 47880eff0a27SJakub Kicinski struct netlink_ext_ack *extack) 47890eff0a27SJakub Kicinski { 47900eff0a27SJakub Kicinski struct rtmsg *rtm; 47910eff0a27SJakub Kicinski int i, err; 47920eff0a27SJakub Kicinski 47930eff0a27SJakub Kicinski if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) { 47940eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 47950eff0a27SJakub Kicinski "Invalid header for get route request"); 47960eff0a27SJakub Kicinski return -EINVAL; 47970eff0a27SJakub Kicinski } 47980eff0a27SJakub Kicinski 47990eff0a27SJakub Kicinski if (!netlink_strict_get_check(skb)) 48000eff0a27SJakub Kicinski return nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, 48010eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48020eff0a27SJakub Kicinski 48030eff0a27SJakub Kicinski rtm = nlmsg_data(nlh); 48040eff0a27SJakub Kicinski if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) || 48050eff0a27SJakub Kicinski (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) || 48060eff0a27SJakub Kicinski rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope || 48070eff0a27SJakub Kicinski rtm->rtm_type) { 48080eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request"); 48090eff0a27SJakub Kicinski return -EINVAL; 48100eff0a27SJakub Kicinski } 48110eff0a27SJakub Kicinski if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) { 48120eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48130eff0a27SJakub Kicinski "Invalid flags for get route request"); 48140eff0a27SJakub Kicinski return -EINVAL; 48150eff0a27SJakub Kicinski } 48160eff0a27SJakub Kicinski 48170eff0a27SJakub Kicinski err = nlmsg_parse_strict(nlh, sizeof(*rtm), tb, RTA_MAX, 48180eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48190eff0a27SJakub Kicinski if (err) 48200eff0a27SJakub Kicinski return err; 48210eff0a27SJakub Kicinski 48220eff0a27SJakub Kicinski if ((tb[RTA_SRC] && !rtm->rtm_src_len) || 48230eff0a27SJakub Kicinski (tb[RTA_DST] && !rtm->rtm_dst_len)) { 48240eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6"); 48250eff0a27SJakub Kicinski return -EINVAL; 48260eff0a27SJakub Kicinski } 48270eff0a27SJakub Kicinski 48280eff0a27SJakub Kicinski for (i = 0; i <= RTA_MAX; i++) { 48290eff0a27SJakub Kicinski if (!tb[i]) 48300eff0a27SJakub Kicinski continue; 48310eff0a27SJakub Kicinski 48320eff0a27SJakub Kicinski switch (i) { 48330eff0a27SJakub Kicinski case RTA_SRC: 48340eff0a27SJakub Kicinski case RTA_DST: 48350eff0a27SJakub Kicinski case RTA_IIF: 48360eff0a27SJakub Kicinski case RTA_OIF: 48370eff0a27SJakub Kicinski case RTA_MARK: 48380eff0a27SJakub Kicinski case RTA_UID: 48390eff0a27SJakub Kicinski case RTA_SPORT: 48400eff0a27SJakub Kicinski case RTA_DPORT: 48410eff0a27SJakub Kicinski case RTA_IP_PROTO: 48420eff0a27SJakub Kicinski break; 48430eff0a27SJakub Kicinski default: 48440eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request"); 48450eff0a27SJakub Kicinski return -EINVAL; 48460eff0a27SJakub Kicinski } 48470eff0a27SJakub Kicinski } 48480eff0a27SJakub Kicinski 48490eff0a27SJakub Kicinski return 0; 48500eff0a27SJakub Kicinski } 48510eff0a27SJakub Kicinski 4852c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4853c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48541da177e4SLinus Torvalds { 48553b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4856ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 485718c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4858a68886a6SDavid Ahern struct fib6_info *from; 485918c3a61cSRoopa Prabhu struct dst_entry *dst; 48601da177e4SLinus Torvalds struct rt6_info *rt; 4861ab364a6fSThomas Graf struct sk_buff *skb; 4862ab364a6fSThomas Graf struct rtmsg *rtm; 4863744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 486418c3a61cSRoopa Prabhu bool fibmatch; 4865ab364a6fSThomas Graf 48660eff0a27SJakub Kicinski err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack); 4867ab364a6fSThomas Graf if (err < 0) 4868ab364a6fSThomas Graf goto errout; 4869ab364a6fSThomas Graf 4870ab364a6fSThomas Graf err = -EINVAL; 487138b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 487238b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 487318c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4874ab364a6fSThomas Graf 4875ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4876ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4877ab364a6fSThomas Graf goto errout; 4878ab364a6fSThomas Graf 48794e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4880ab364a6fSThomas Graf } 4881ab364a6fSThomas Graf 4882ab364a6fSThomas Graf if (tb[RTA_DST]) { 4883ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4884ab364a6fSThomas Graf goto errout; 4885ab364a6fSThomas Graf 48864e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4887ab364a6fSThomas Graf } 4888ab364a6fSThomas Graf 4889ab364a6fSThomas Graf if (tb[RTA_IIF]) 4890ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4891ab364a6fSThomas Graf 4892ab364a6fSThomas Graf if (tb[RTA_OIF]) 489372331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4894ab364a6fSThomas Graf 48952e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48962e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48972e47b291SLorenzo Colitti 4898622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4899622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4900622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4901622ec2c9SLorenzo Colitti else 4902622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4903622ec2c9SLorenzo Colitti 4904eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4905eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4906eacb9384SRoopa Prabhu 4907eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4908eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4909eacb9384SRoopa Prabhu 4910eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4911eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 49125e1a99eaSHangbin Liu &fl6.flowi6_proto, AF_INET6, 49135e1a99eaSHangbin Liu extack); 4914eacb9384SRoopa Prabhu if (err) 4915eacb9384SRoopa Prabhu goto errout; 4916eacb9384SRoopa Prabhu } 4917eacb9384SRoopa Prabhu 4918ab364a6fSThomas Graf if (iif) { 4919ab364a6fSThomas Graf struct net_device *dev; 492072331bc0SShmulik Ladkani int flags = 0; 492172331bc0SShmulik Ladkani 4922121622dbSFlorian Westphal rcu_read_lock(); 4923121622dbSFlorian Westphal 4924121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4925ab364a6fSThomas Graf if (!dev) { 4926121622dbSFlorian Westphal rcu_read_unlock(); 4927ab364a6fSThomas Graf err = -ENODEV; 4928ab364a6fSThomas Graf goto errout; 4929ab364a6fSThomas Graf } 493072331bc0SShmulik Ladkani 493172331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 493272331bc0SShmulik Ladkani 493372331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 493472331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 493572331bc0SShmulik Ladkani 4936b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4937121622dbSFlorian Westphal 4938121622dbSFlorian Westphal rcu_read_unlock(); 493972331bc0SShmulik Ladkani } else { 494072331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 494172331bc0SShmulik Ladkani 494218c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 494318c3a61cSRoopa Prabhu } 494418c3a61cSRoopa Prabhu 494518c3a61cSRoopa Prabhu 494618c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 494718c3a61cSRoopa Prabhu if (rt->dst.error) { 494818c3a61cSRoopa Prabhu err = rt->dst.error; 494918c3a61cSRoopa Prabhu ip6_rt_put(rt); 495018c3a61cSRoopa Prabhu goto errout; 4951ab364a6fSThomas Graf } 49521da177e4SLinus Torvalds 49539d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49549d6acb3bSWANG Cong err = rt->dst.error; 49559d6acb3bSWANG Cong ip6_rt_put(rt); 49569d6acb3bSWANG Cong goto errout; 49579d6acb3bSWANG Cong } 49589d6acb3bSWANG Cong 49591da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 496038308473SDavid S. Miller if (!skb) { 496194e187c0SAmerigo Wang ip6_rt_put(rt); 4962ab364a6fSThomas Graf err = -ENOBUFS; 4963ab364a6fSThomas Graf goto errout; 4964ab364a6fSThomas Graf } 49651da177e4SLinus Torvalds 4966d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4967a68886a6SDavid Ahern 4968a68886a6SDavid Ahern rcu_read_lock(); 4969a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4970a68886a6SDavid Ahern 497118c3a61cSRoopa Prabhu if (fibmatch) 4972a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 497318c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 497418c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 497518c3a61cSRoopa Prabhu else 4976a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4977a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4978d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4979d4ead6b3SDavid Ahern 0); 4980a68886a6SDavid Ahern rcu_read_unlock(); 4981a68886a6SDavid Ahern 49821da177e4SLinus Torvalds if (err < 0) { 4983ab364a6fSThomas Graf kfree_skb(skb); 4984ab364a6fSThomas Graf goto errout; 49851da177e4SLinus Torvalds } 49861da177e4SLinus Torvalds 498715e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4988ab364a6fSThomas Graf errout: 49891da177e4SLinus Torvalds return err; 49901da177e4SLinus Torvalds } 49911da177e4SLinus Torvalds 49928d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 499337a1d361SRoopa Prabhu unsigned int nlm_flags) 49941da177e4SLinus Torvalds { 49951da177e4SLinus Torvalds struct sk_buff *skb; 49965578689aSDaniel Lezcano struct net *net = info->nl_net; 4997528c4cebSDenis V. Lunev u32 seq; 4998528c4cebSDenis V. Lunev int err; 49990d51aa80SJamal Hadi Salim 5000528c4cebSDenis V. Lunev err = -ENOBUFS; 500138308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 500286872cb5SThomas Graf 500319e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 500438308473SDavid S. Miller if (!skb) 500521713ebcSThomas Graf goto errout; 50061da177e4SLinus Torvalds 5007d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5008f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 500926932566SPatrick McHardy if (err < 0) { 501026932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 501126932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 501226932566SPatrick McHardy kfree_skb(skb); 501326932566SPatrick McHardy goto errout; 501426932566SPatrick McHardy } 501515e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 50165578689aSDaniel Lezcano info->nlh, gfp_any()); 50171ce85fe4SPablo Neira Ayuso return; 501821713ebcSThomas Graf errout: 501921713ebcSThomas Graf if (err < 0) 50205578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 50211da177e4SLinus Torvalds } 50221da177e4SLinus Torvalds 50238ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5024351638e7SJiri Pirko unsigned long event, void *ptr) 50258ed67789SDaniel Lezcano { 5026351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5027c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50288ed67789SDaniel Lezcano 5029242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5030242d3a49SWANG Cong return NOTIFY_OK; 5031242d3a49SWANG Cong 5032242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5033ad1601aeSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = dev; 5034d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50358ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50368ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5037d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50388ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5039d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50408ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50418ed67789SDaniel Lezcano #endif 504276da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 504376da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 504476da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 504576da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 504676da0704SWANG Cong */ 504712d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5048242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 504912d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 505012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5051242d3a49SWANG Cong #endif 50528ed67789SDaniel Lezcano } 50538ed67789SDaniel Lezcano 50548ed67789SDaniel Lezcano return NOTIFY_OK; 50558ed67789SDaniel Lezcano } 50568ed67789SDaniel Lezcano 50571da177e4SLinus Torvalds /* 50581da177e4SLinus Torvalds * /proc 50591da177e4SLinus Torvalds */ 50601da177e4SLinus Torvalds 50611da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50621da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50631da177e4SLinus Torvalds { 506469ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50651da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 506669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 506769ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 506881eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 506969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 507069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5071fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 507269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50731da177e4SLinus Torvalds 50741da177e4SLinus Torvalds return 0; 50751da177e4SLinus Torvalds } 50761da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50771da177e4SLinus Torvalds 50781da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50791da177e4SLinus Torvalds 50801da177e4SLinus Torvalds static 5081fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50821da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50831da177e4SLinus Torvalds { 5084c486da34SLucian Adrian Grijincu struct net *net; 5085c486da34SLucian Adrian Grijincu int delay; 5086f0fb9b28SAditya Pakki int ret; 5087c486da34SLucian Adrian Grijincu if (!write) 5088c486da34SLucian Adrian Grijincu return -EINVAL; 5089c486da34SLucian Adrian Grijincu 5090c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5091c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 5092f0fb9b28SAditya Pakki ret = proc_dointvec(ctl, write, buffer, lenp, ppos); 5093f0fb9b28SAditya Pakki if (ret) 5094f0fb9b28SAditya Pakki return ret; 5095f0fb9b28SAditya Pakki 50962ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50971da177e4SLinus Torvalds return 0; 50981da177e4SLinus Torvalds } 50991da177e4SLinus Torvalds 51007c6bb7d2SDavid Ahern static int zero; 51017c6bb7d2SDavid Ahern static int one = 1; 51027c6bb7d2SDavid Ahern 5103ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 51041da177e4SLinus Torvalds { 51051da177e4SLinus Torvalds .procname = "flush", 51064990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 51071da177e4SLinus Torvalds .maxlen = sizeof(int), 510889c8b3a1SDave Jones .mode = 0200, 51096d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 51101da177e4SLinus Torvalds }, 51111da177e4SLinus Torvalds { 51121da177e4SLinus Torvalds .procname = "gc_thresh", 51139a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 51141da177e4SLinus Torvalds .maxlen = sizeof(int), 51151da177e4SLinus Torvalds .mode = 0644, 51166d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51171da177e4SLinus Torvalds }, 51181da177e4SLinus Torvalds { 51191da177e4SLinus Torvalds .procname = "max_size", 51204990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 51211da177e4SLinus Torvalds .maxlen = sizeof(int), 51221da177e4SLinus Torvalds .mode = 0644, 51236d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51241da177e4SLinus Torvalds }, 51251da177e4SLinus Torvalds { 51261da177e4SLinus Torvalds .procname = "gc_min_interval", 51274990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51281da177e4SLinus Torvalds .maxlen = sizeof(int), 51291da177e4SLinus Torvalds .mode = 0644, 51306d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51311da177e4SLinus Torvalds }, 51321da177e4SLinus Torvalds { 51331da177e4SLinus Torvalds .procname = "gc_timeout", 51344990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51351da177e4SLinus Torvalds .maxlen = sizeof(int), 51361da177e4SLinus Torvalds .mode = 0644, 51376d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51381da177e4SLinus Torvalds }, 51391da177e4SLinus Torvalds { 51401da177e4SLinus Torvalds .procname = "gc_interval", 51414990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51421da177e4SLinus Torvalds .maxlen = sizeof(int), 51431da177e4SLinus Torvalds .mode = 0644, 51446d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51451da177e4SLinus Torvalds }, 51461da177e4SLinus Torvalds { 51471da177e4SLinus Torvalds .procname = "gc_elasticity", 51484990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51491da177e4SLinus Torvalds .maxlen = sizeof(int), 51501da177e4SLinus Torvalds .mode = 0644, 5151f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51521da177e4SLinus Torvalds }, 51531da177e4SLinus Torvalds { 51541da177e4SLinus Torvalds .procname = "mtu_expires", 51554990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51561da177e4SLinus Torvalds .maxlen = sizeof(int), 51571da177e4SLinus Torvalds .mode = 0644, 51586d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51591da177e4SLinus Torvalds }, 51601da177e4SLinus Torvalds { 51611da177e4SLinus Torvalds .procname = "min_adv_mss", 51624990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51631da177e4SLinus Torvalds .maxlen = sizeof(int), 51641da177e4SLinus Torvalds .mode = 0644, 5165f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51661da177e4SLinus Torvalds }, 51671da177e4SLinus Torvalds { 51681da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51694990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51701da177e4SLinus Torvalds .maxlen = sizeof(int), 51711da177e4SLinus Torvalds .mode = 0644, 51726d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51731da177e4SLinus Torvalds }, 51747c6bb7d2SDavid Ahern { 51757c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 51767c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 51777c6bb7d2SDavid Ahern .maxlen = sizeof(int), 51787c6bb7d2SDavid Ahern .mode = 0644, 51797c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 51807c6bb7d2SDavid Ahern .extra1 = &zero, 51817c6bb7d2SDavid Ahern .extra2 = &one, 51827c6bb7d2SDavid Ahern }, 5183f8572d8fSEric W. Biederman { } 51841da177e4SLinus Torvalds }; 51851da177e4SLinus Torvalds 51862c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5187760f2d01SDaniel Lezcano { 5188760f2d01SDaniel Lezcano struct ctl_table *table; 5189760f2d01SDaniel Lezcano 5190760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5191760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5192760f2d01SDaniel Lezcano GFP_KERNEL); 51935ee09105SYOSHIFUJI Hideaki 51945ee09105SYOSHIFUJI Hideaki if (table) { 51955ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5196c486da34SLucian Adrian Grijincu table[0].extra1 = net; 519786393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51985ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51995ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52005ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 52015ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 52025ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 52035ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 52045ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 52059c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52067c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5207464dc801SEric W. Biederman 5208464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5209464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5210464dc801SEric W. Biederman table[0].procname = NULL; 52115ee09105SYOSHIFUJI Hideaki } 52125ee09105SYOSHIFUJI Hideaki 5213760f2d01SDaniel Lezcano return table; 5214760f2d01SDaniel Lezcano } 52151da177e4SLinus Torvalds #endif 52161da177e4SLinus Torvalds 52172c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5218cdb18761SDaniel Lezcano { 5219633d424bSPavel Emelyanov int ret = -ENOMEM; 52208ed67789SDaniel Lezcano 522186393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 522286393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5223f2fc6a54SBenjamin Thery 5224fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5225fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5226fc66f95cSEric Dumazet 5227421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5228421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5229421842edSDavid Ahern GFP_KERNEL); 5230421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5231421842edSDavid Ahern goto out_ip6_dst_entries; 5232421842edSDavid Ahern 52338ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52348ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52358ed67789SDaniel Lezcano GFP_KERNEL); 52368ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5237421842edSDavid Ahern goto out_fib6_null_entry; 5238d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 523962fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 524062fa8a84SDavid S. Miller ip6_template_metrics, true); 52418ed67789SDaniel Lezcano 52428ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5243feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52448ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52458ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52468ed67789SDaniel Lezcano GFP_KERNEL); 524768fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 524868fffc67SPeter Zijlstra goto out_ip6_null_entry; 5249d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 525062fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 525162fa8a84SDavid S. Miller ip6_template_metrics, true); 52528ed67789SDaniel Lezcano 52538ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52548ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52558ed67789SDaniel Lezcano GFP_KERNEL); 525668fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 525768fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5258d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 525962fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 526062fa8a84SDavid S. Miller ip6_template_metrics, true); 52618ed67789SDaniel Lezcano #endif 52628ed67789SDaniel Lezcano 5263b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5264b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5265b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5266b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5267b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5268b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5269b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5270b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 52717c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5272b339a47cSPeter Zijlstra 52736891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52746891a346SBenjamin Thery 52758ed67789SDaniel Lezcano ret = 0; 52768ed67789SDaniel Lezcano out: 52778ed67789SDaniel Lezcano return ret; 5278f2fc6a54SBenjamin Thery 527968fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 528068fffc67SPeter Zijlstra out_ip6_prohibit_entry: 528168fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 528268fffc67SPeter Zijlstra out_ip6_null_entry: 528368fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 528468fffc67SPeter Zijlstra #endif 5285421842edSDavid Ahern out_fib6_null_entry: 5286421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5287fc66f95cSEric Dumazet out_ip6_dst_entries: 5288fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5289f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5290f2fc6a54SBenjamin Thery goto out; 5291cdb18761SDaniel Lezcano } 5292cdb18761SDaniel Lezcano 52932c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5294cdb18761SDaniel Lezcano { 5295421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52968ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52978ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52988ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52998ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 53008ed67789SDaniel Lezcano #endif 530141bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5302cdb18761SDaniel Lezcano } 5303cdb18761SDaniel Lezcano 5304d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5305d189634eSThomas Graf { 5306d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5307c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5308c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 53093617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 53103617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5311d189634eSThomas Graf #endif 5312d189634eSThomas Graf return 0; 5313d189634eSThomas Graf } 5314d189634eSThomas Graf 5315d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5316d189634eSThomas Graf { 5317d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5318ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5319ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5320d189634eSThomas Graf #endif 5321d189634eSThomas Graf } 5322d189634eSThomas Graf 5323cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5324cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5325cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5326cdb18761SDaniel Lezcano }; 5327cdb18761SDaniel Lezcano 5328c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5329c3426b47SDavid S. Miller { 5330c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5331c3426b47SDavid S. Miller 5332c3426b47SDavid S. Miller if (!bp) 5333c3426b47SDavid S. Miller return -ENOMEM; 5334c3426b47SDavid S. Miller inet_peer_base_init(bp); 5335c3426b47SDavid S. Miller net->ipv6.peers = bp; 5336c3426b47SDavid S. Miller return 0; 5337c3426b47SDavid S. Miller } 5338c3426b47SDavid S. Miller 5339c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5340c3426b47SDavid S. Miller { 5341c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5342c3426b47SDavid S. Miller 5343c3426b47SDavid S. Miller net->ipv6.peers = NULL; 534456a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5345c3426b47SDavid S. Miller kfree(bp); 5346c3426b47SDavid S. Miller } 5347c3426b47SDavid S. Miller 53482b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5349c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5350c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5351c3426b47SDavid S. Miller }; 5352c3426b47SDavid S. Miller 5353d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5354d189634eSThomas Graf .init = ip6_route_net_init_late, 5355d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5356d189634eSThomas Graf }; 5357d189634eSThomas Graf 53588ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53598ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5360242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53618ed67789SDaniel Lezcano }; 53628ed67789SDaniel Lezcano 53632f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53642f460933SWANG Cong { 53652f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53662f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53672f460933SWANG Cong * manually for init_net */ 5368ad1601aeSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = init_net.loopback_dev; 53692f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53702f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53712f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53722f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53732f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53742f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53752f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53762f460933SWANG Cong #endif 53772f460933SWANG Cong } 53782f460933SWANG Cong 5379433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53801da177e4SLinus Torvalds { 5381433d49c3SDaniel Lezcano int ret; 53828d0b94afSMartin KaFai Lau int cpu; 5383433d49c3SDaniel Lezcano 53849a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53859a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53869a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53879a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53889a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5389c19a28e1SFernando Carrijo goto out; 539014e50e57SDavid S. Miller 5391fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53928ed67789SDaniel Lezcano if (ret) 5393bdb3289fSDaniel Lezcano goto out_kmem_cache; 5394bdb3289fSDaniel Lezcano 5395c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5396c3426b47SDavid S. Miller if (ret) 5397e8803b6cSDavid S. Miller goto out_dst_entries; 53982a0c451aSThomas Graf 53997e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 54007e52b33bSDavid S. Miller if (ret) 54017e52b33bSDavid S. Miller goto out_register_inetpeer; 5402c3426b47SDavid S. Miller 54035dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 54045dc121e9SArnaud Ebalard 5405e8803b6cSDavid S. Miller ret = fib6_init(); 5406433d49c3SDaniel Lezcano if (ret) 54078ed67789SDaniel Lezcano goto out_register_subsys; 5408433d49c3SDaniel Lezcano 5409433d49c3SDaniel Lezcano ret = xfrm6_init(); 5410433d49c3SDaniel Lezcano if (ret) 5411e8803b6cSDavid S. Miller goto out_fib6_init; 5412c35b7e72SDaniel Lezcano 5413433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5414433d49c3SDaniel Lezcano if (ret) 5415433d49c3SDaniel Lezcano goto xfrm6_init; 54167e5449c2SDaniel Lezcano 5417d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5418d189634eSThomas Graf if (ret) 5419d189634eSThomas Graf goto fib6_rules_init; 5420d189634eSThomas Graf 542116feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 542216feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 542316feebcfSFlorian Westphal if (ret < 0) 542416feebcfSFlorian Westphal goto out_register_late_subsys; 542516feebcfSFlorian Westphal 542616feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 542716feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 542816feebcfSFlorian Westphal if (ret < 0) 542916feebcfSFlorian Westphal goto out_register_late_subsys; 543016feebcfSFlorian Westphal 543116feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 543216feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 543316feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 543416feebcfSFlorian Westphal if (ret < 0) 5435d189634eSThomas Graf goto out_register_late_subsys; 5436433d49c3SDaniel Lezcano 54378ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5438cdb18761SDaniel Lezcano if (ret) 5439d189634eSThomas Graf goto out_register_late_subsys; 54408ed67789SDaniel Lezcano 54418d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54428d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54438d0b94afSMartin KaFai Lau 54448d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54458d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54468d0b94afSMartin KaFai Lau } 54478d0b94afSMartin KaFai Lau 5448433d49c3SDaniel Lezcano out: 5449433d49c3SDaniel Lezcano return ret; 5450433d49c3SDaniel Lezcano 5451d189634eSThomas Graf out_register_late_subsys: 545216feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5453d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5454433d49c3SDaniel Lezcano fib6_rules_init: 5455433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5456433d49c3SDaniel Lezcano xfrm6_init: 5457433d49c3SDaniel Lezcano xfrm6_fini(); 54582a0c451aSThomas Graf out_fib6_init: 54592a0c451aSThomas Graf fib6_gc_cleanup(); 54608ed67789SDaniel Lezcano out_register_subsys: 54618ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54627e52b33bSDavid S. Miller out_register_inetpeer: 54637e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5464fc66f95cSEric Dumazet out_dst_entries: 5465fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5466433d49c3SDaniel Lezcano out_kmem_cache: 5467f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5468433d49c3SDaniel Lezcano goto out; 54691da177e4SLinus Torvalds } 54701da177e4SLinus Torvalds 54711da177e4SLinus Torvalds void ip6_route_cleanup(void) 54721da177e4SLinus Torvalds { 54738ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5474d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5475101367c2SThomas Graf fib6_rules_cleanup(); 54761da177e4SLinus Torvalds xfrm6_fini(); 54771da177e4SLinus Torvalds fib6_gc_cleanup(); 5478c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54798ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 548041bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5481f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54821da177e4SLinus Torvalds } 5483