xref: /openbmc/linux/net/ipv6/route.c (revision 1bfa26ff8c4b7512f4e4efa6df211239223033d4)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds  *	Linux INET6 implementation
31da177e4SLinus Torvalds  *	FIB front-end.
41da177e4SLinus Torvalds  *
51da177e4SLinus Torvalds  *	Authors:
61da177e4SLinus Torvalds  *	Pedro Roque		<roque@di.fc.ul.pt>
71da177e4SLinus Torvalds  *
81da177e4SLinus Torvalds  *	This program is free software; you can redistribute it and/or
91da177e4SLinus Torvalds  *      modify it under the terms of the GNU General Public License
101da177e4SLinus Torvalds  *      as published by the Free Software Foundation; either version
111da177e4SLinus Torvalds  *      2 of the License, or (at your option) any later version.
121da177e4SLinus Torvalds  */
131da177e4SLinus Torvalds 
141da177e4SLinus Torvalds /*	Changes:
151da177e4SLinus Torvalds  *
161da177e4SLinus Torvalds  *	YOSHIFUJI Hideaki @USAGI
171da177e4SLinus Torvalds  *		reworked default router selection.
181da177e4SLinus Torvalds  *		- respect outgoing interface
191da177e4SLinus Torvalds  *		- select from (probably) reachable routers (i.e.
201da177e4SLinus Torvalds  *		routers in REACHABLE, STALE, DELAY or PROBE states).
211da177e4SLinus Torvalds  *		- always select the same router if it is (probably)
221da177e4SLinus Torvalds  *		reachable.  otherwise, round-robin the list.
23c0bece9fSYOSHIFUJI Hideaki  *	Ville Nuorvala
24c0bece9fSYOSHIFUJI Hideaki  *		Fixed routing subtrees.
251da177e4SLinus Torvalds  */
261da177e4SLinus Torvalds 
27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt
28f3213831SJoe Perches 
294fc268d2SRandy Dunlap #include <linux/capability.h>
301da177e4SLinus Torvalds #include <linux/errno.h>
31bc3b2d7fSPaul Gortmaker #include <linux/export.h>
321da177e4SLinus Torvalds #include <linux/types.h>
331da177e4SLinus Torvalds #include <linux/times.h>
341da177e4SLinus Torvalds #include <linux/socket.h>
351da177e4SLinus Torvalds #include <linux/sockios.h>
361da177e4SLinus Torvalds #include <linux/net.h>
371da177e4SLinus Torvalds #include <linux/route.h>
381da177e4SLinus Torvalds #include <linux/netdevice.h>
391da177e4SLinus Torvalds #include <linux/in6.h>
407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h>
411da177e4SLinus Torvalds #include <linux/init.h>
421da177e4SLinus Torvalds #include <linux/if_arp.h>
431da177e4SLinus Torvalds #include <linux/proc_fs.h>
441da177e4SLinus Torvalds #include <linux/seq_file.h>
455b7c931dSDaniel Lezcano #include <linux/nsproxy.h>
465a0e3ad6STejun Heo #include <linux/slab.h>
4735732d01SWei Wang #include <linux/jhash.h>
48457c4cbcSEric W. Biederman #include <net/net_namespace.h>
491da177e4SLinus Torvalds #include <net/snmp.h>
501da177e4SLinus Torvalds #include <net/ipv6.h>
511da177e4SLinus Torvalds #include <net/ip6_fib.h>
521da177e4SLinus Torvalds #include <net/ip6_route.h>
531da177e4SLinus Torvalds #include <net/ndisc.h>
541da177e4SLinus Torvalds #include <net/addrconf.h>
551da177e4SLinus Torvalds #include <net/tcp.h>
561da177e4SLinus Torvalds #include <linux/rtnetlink.h>
571da177e4SLinus Torvalds #include <net/dst.h>
58904af04dSJiri Benc #include <net/dst_metadata.h>
591da177e4SLinus Torvalds #include <net/xfrm.h>
608d71740cSTom Tucker #include <net/netevent.h>
6121713ebcSThomas Graf #include <net/netlink.h>
6251ebd318SNicolas Dichtel #include <net/nexthop.h>
6319e42e45SRoopa Prabhu #include <net/lwtunnel.h>
64904af04dSJiri Benc #include <net/ip_tunnels.h>
65ca254490SDavid Ahern #include <net/l3mdev.h>
66b811580dSDavid Ahern #include <trace/events/fib6.h>
671da177e4SLinus Torvalds 
687c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
691da177e4SLinus Torvalds 
701da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
711da177e4SLinus Torvalds #include <linux/sysctl.h>
721da177e4SLinus Torvalds #endif
731da177e4SLinus Torvalds 
74afc154e9SHannes Frederic Sowa enum rt6_nud_state {
757e980569SJiri Benc 	RT6_NUD_FAIL_HARD = -3,
767e980569SJiri Benc 	RT6_NUD_FAIL_PROBE = -2,
777e980569SJiri Benc 	RT6_NUD_FAIL_DO_RR = -1,
78afc154e9SHannes Frederic Sowa 	RT6_NUD_SUCCEED = 1
79afc154e9SHannes Frederic Sowa };
80afc154e9SHannes Frederic Sowa 
8183a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort);
821da177e4SLinus Torvalds static struct dst_entry	*ip6_dst_check(struct dst_entry *dst, u32 cookie);
830dbaee3bSDavid S. Miller static unsigned int	 ip6_default_advmss(const struct dst_entry *dst);
84ebb762f2SSteffen Klassert static unsigned int	 ip6_mtu(const struct dst_entry *dst);
851da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *);
861da177e4SLinus Torvalds static void		ip6_dst_destroy(struct dst_entry *);
871da177e4SLinus Torvalds static void		ip6_dst_ifdown(struct dst_entry *,
881da177e4SLinus Torvalds 				       struct net_device *dev, int how);
89569d3645SDaniel Lezcano static int		 ip6_dst_gc(struct dst_ops *ops);
901da177e4SLinus Torvalds 
911da177e4SLinus Torvalds static int		ip6_pkt_discard(struct sk_buff *skb);
92ede2059dSEric W. Biederman static int		ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
937150aedeSKamala R static int		ip6_pkt_prohibit(struct sk_buff *skb);
94ede2059dSEric W. Biederman static int		ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
951da177e4SLinus Torvalds static void		ip6_link_failure(struct sk_buff *skb);
966700c270SDavid S. Miller static void		ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
976700c270SDavid S. Miller 					   struct sk_buff *skb, u32 mtu);
986700c270SDavid S. Miller static void		rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
996700c270SDavid S. Miller 					struct sk_buff *skb);
1004b32b5adSMartin KaFai Lau static void		rt6_dst_from_metrics_check(struct rt6_info *rt);
10152bd4c0cSNicolas Dichtel static int rt6_score_route(struct rt6_info *rt, int oif, int strict);
10216a16cd3SDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt);
10316a16cd3SDavid Ahern static int rt6_fill_node(struct net *net,
10416a16cd3SDavid Ahern 			 struct sk_buff *skb, struct rt6_info *rt,
10516a16cd3SDavid Ahern 			 struct in6_addr *dst, struct in6_addr *src,
10616a16cd3SDavid Ahern 			 int iif, int type, u32 portid, u32 seq,
10716a16cd3SDavid Ahern 			 unsigned int flags);
10835732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt,
10935732d01SWei Wang 					   struct in6_addr *daddr,
11035732d01SWei Wang 					   struct in6_addr *saddr);
1111da177e4SLinus Torvalds 
11270ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
113efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net,
114b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
115830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
116830218c1SDavid Ahern 					   struct net_device *dev,
11795c96174SEric Dumazet 					   unsigned int pref);
118efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net,
119b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
120830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
121830218c1SDavid Ahern 					   struct net_device *dev);
12270ceb4f5SYOSHIFUJI Hideaki #endif
12370ceb4f5SYOSHIFUJI Hideaki 
1248d0b94afSMartin KaFai Lau struct uncached_list {
1258d0b94afSMartin KaFai Lau 	spinlock_t		lock;
1268d0b94afSMartin KaFai Lau 	struct list_head	head;
1278d0b94afSMartin KaFai Lau };
1288d0b94afSMartin KaFai Lau 
1298d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
1308d0b94afSMartin KaFai Lau 
131510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt)
1328d0b94afSMartin KaFai Lau {
1338d0b94afSMartin KaFai Lau 	struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
1348d0b94afSMartin KaFai Lau 
1358d0b94afSMartin KaFai Lau 	rt->rt6i_uncached_list = ul;
1368d0b94afSMartin KaFai Lau 
1378d0b94afSMartin KaFai Lau 	spin_lock_bh(&ul->lock);
1388d0b94afSMartin KaFai Lau 	list_add_tail(&rt->rt6i_uncached, &ul->head);
1398d0b94afSMartin KaFai Lau 	spin_unlock_bh(&ul->lock);
1408d0b94afSMartin KaFai Lau }
1418d0b94afSMartin KaFai Lau 
142510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt)
1438d0b94afSMartin KaFai Lau {
1448d0b94afSMartin KaFai Lau 	if (!list_empty(&rt->rt6i_uncached)) {
1458d0b94afSMartin KaFai Lau 		struct uncached_list *ul = rt->rt6i_uncached_list;
14681eb8447SWei Wang 		struct net *net = dev_net(rt->dst.dev);
1478d0b94afSMartin KaFai Lau 
1488d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1498d0b94afSMartin KaFai Lau 		list_del(&rt->rt6i_uncached);
15081eb8447SWei Wang 		atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
1518d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1528d0b94afSMartin KaFai Lau 	}
1538d0b94afSMartin KaFai Lau }
1548d0b94afSMartin KaFai Lau 
1558d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
1568d0b94afSMartin KaFai Lau {
1578d0b94afSMartin KaFai Lau 	struct net_device *loopback_dev = net->loopback_dev;
1588d0b94afSMartin KaFai Lau 	int cpu;
1598d0b94afSMartin KaFai Lau 
160e332bc67SEric W. Biederman 	if (dev == loopback_dev)
161e332bc67SEric W. Biederman 		return;
162e332bc67SEric W. Biederman 
1638d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
1648d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
1658d0b94afSMartin KaFai Lau 		struct rt6_info *rt;
1668d0b94afSMartin KaFai Lau 
1678d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1688d0b94afSMartin KaFai Lau 		list_for_each_entry(rt, &ul->head, rt6i_uncached) {
1698d0b94afSMartin KaFai Lau 			struct inet6_dev *rt_idev = rt->rt6i_idev;
1708d0b94afSMartin KaFai Lau 			struct net_device *rt_dev = rt->dst.dev;
1718d0b94afSMartin KaFai Lau 
172e332bc67SEric W. Biederman 			if (rt_idev->dev == dev) {
1738d0b94afSMartin KaFai Lau 				rt->rt6i_idev = in6_dev_get(loopback_dev);
1748d0b94afSMartin KaFai Lau 				in6_dev_put(rt_idev);
1758d0b94afSMartin KaFai Lau 			}
1768d0b94afSMartin KaFai Lau 
177e332bc67SEric W. Biederman 			if (rt_dev == dev) {
1788d0b94afSMartin KaFai Lau 				rt->dst.dev = loopback_dev;
1798d0b94afSMartin KaFai Lau 				dev_hold(rt->dst.dev);
1808d0b94afSMartin KaFai Lau 				dev_put(rt_dev);
1818d0b94afSMartin KaFai Lau 			}
1828d0b94afSMartin KaFai Lau 		}
1838d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1848d0b94afSMartin KaFai Lau 	}
1858d0b94afSMartin KaFai Lau }
1868d0b94afSMartin KaFai Lau 
187d52d3997SMartin KaFai Lau static u32 *rt6_pcpu_cow_metrics(struct rt6_info *rt)
188d52d3997SMartin KaFai Lau {
1893a2232e9SDavid Miller 	return dst_metrics_write_ptr(&rt->from->dst);
190d52d3997SMartin KaFai Lau }
191d52d3997SMartin KaFai Lau 
19206582540SDavid S. Miller static u32 *ipv6_cow_metrics(struct dst_entry *dst, unsigned long old)
19306582540SDavid S. Miller {
19406582540SDavid S. Miller 	struct rt6_info *rt = (struct rt6_info *)dst;
19506582540SDavid S. Miller 
196d52d3997SMartin KaFai Lau 	if (rt->rt6i_flags & RTF_PCPU)
197d52d3997SMartin KaFai Lau 		return rt6_pcpu_cow_metrics(rt);
198d52d3997SMartin KaFai Lau 	else if (rt->rt6i_flags & RTF_CACHE)
1994b32b5adSMartin KaFai Lau 		return NULL;
2004b32b5adSMartin KaFai Lau 	else
2013b471175SMartin KaFai Lau 		return dst_cow_metrics_generic(dst, old);
20206582540SDavid S. Miller }
20306582540SDavid S. Miller 
204f894cbf8SDavid S. Miller static inline const void *choose_neigh_daddr(struct rt6_info *rt,
205f894cbf8SDavid S. Miller 					     struct sk_buff *skb,
206f894cbf8SDavid S. Miller 					     const void *daddr)
20739232973SDavid S. Miller {
20839232973SDavid S. Miller 	struct in6_addr *p = &rt->rt6i_gateway;
20939232973SDavid S. Miller 
210a7563f34SDavid S. Miller 	if (!ipv6_addr_any(p))
21139232973SDavid S. Miller 		return (const void *) p;
212f894cbf8SDavid S. Miller 	else if (skb)
213f894cbf8SDavid S. Miller 		return &ipv6_hdr(skb)->daddr;
21439232973SDavid S. Miller 	return daddr;
21539232973SDavid S. Miller }
21639232973SDavid S. Miller 
217f894cbf8SDavid S. Miller static struct neighbour *ip6_neigh_lookup(const struct dst_entry *dst,
218f894cbf8SDavid S. Miller 					  struct sk_buff *skb,
219f894cbf8SDavid S. Miller 					  const void *daddr)
220d3aaeb38SDavid S. Miller {
22139232973SDavid S. Miller 	struct rt6_info *rt = (struct rt6_info *) dst;
22239232973SDavid S. Miller 	struct neighbour *n;
22339232973SDavid S. Miller 
224f894cbf8SDavid S. Miller 	daddr = choose_neigh_daddr(rt, skb, daddr);
2258e022ee6SYOSHIFUJI Hideaki / 吉藤英明 	n = __ipv6_neigh_lookup(dst->dev, daddr);
226f83c7790SDavid S. Miller 	if (n)
227f83c7790SDavid S. Miller 		return n;
228f83c7790SDavid S. Miller 	return neigh_create(&nd_tbl, daddr, dst->dev);
229f83c7790SDavid S. Miller }
230f83c7790SDavid S. Miller 
23163fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
23263fca65dSJulian Anastasov {
23363fca65dSJulian Anastasov 	struct net_device *dev = dst->dev;
23463fca65dSJulian Anastasov 	struct rt6_info *rt = (struct rt6_info *)dst;
23563fca65dSJulian Anastasov 
23663fca65dSJulian Anastasov 	daddr = choose_neigh_daddr(rt, NULL, daddr);
23763fca65dSJulian Anastasov 	if (!daddr)
23863fca65dSJulian Anastasov 		return;
23963fca65dSJulian Anastasov 	if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
24063fca65dSJulian Anastasov 		return;
24163fca65dSJulian Anastasov 	if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
24263fca65dSJulian Anastasov 		return;
24363fca65dSJulian Anastasov 	__ipv6_confirm_neigh(dev, daddr);
24463fca65dSJulian Anastasov }
24563fca65dSJulian Anastasov 
2469a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = {
2471da177e4SLinus Torvalds 	.family			=	AF_INET6,
2481da177e4SLinus Torvalds 	.gc			=	ip6_dst_gc,
2491da177e4SLinus Torvalds 	.gc_thresh		=	1024,
2501da177e4SLinus Torvalds 	.check			=	ip6_dst_check,
2510dbaee3bSDavid S. Miller 	.default_advmss		=	ip6_default_advmss,
252ebb762f2SSteffen Klassert 	.mtu			=	ip6_mtu,
25306582540SDavid S. Miller 	.cow_metrics		=	ipv6_cow_metrics,
2541da177e4SLinus Torvalds 	.destroy		=	ip6_dst_destroy,
2551da177e4SLinus Torvalds 	.ifdown			=	ip6_dst_ifdown,
2561da177e4SLinus Torvalds 	.negative_advice	=	ip6_negative_advice,
2571da177e4SLinus Torvalds 	.link_failure		=	ip6_link_failure,
2581da177e4SLinus Torvalds 	.update_pmtu		=	ip6_rt_update_pmtu,
2596e157b6aSDavid S. Miller 	.redirect		=	rt6_do_redirect,
2609f8955ccSEric W. Biederman 	.local_out		=	__ip6_local_out,
261d3aaeb38SDavid S. Miller 	.neigh_lookup		=	ip6_neigh_lookup,
26263fca65dSJulian Anastasov 	.confirm_neigh		=	ip6_confirm_neigh,
2631da177e4SLinus Torvalds };
2641da177e4SLinus Torvalds 
265ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
266ec831ea7SRoland Dreier {
267618f9bc7SSteffen Klassert 	unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
268618f9bc7SSteffen Klassert 
269618f9bc7SSteffen Klassert 	return mtu ? : dst->dev->mtu;
270ec831ea7SRoland Dreier }
271ec831ea7SRoland Dreier 
2726700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
2736700c270SDavid S. Miller 					 struct sk_buff *skb, u32 mtu)
27414e50e57SDavid S. Miller {
27514e50e57SDavid S. Miller }
27614e50e57SDavid S. Miller 
2776700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
2786700c270SDavid S. Miller 				      struct sk_buff *skb)
279b587ee3bSDavid S. Miller {
280b587ee3bSDavid S. Miller }
281b587ee3bSDavid S. Miller 
28214e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = {
28314e50e57SDavid S. Miller 	.family			=	AF_INET6,
28414e50e57SDavid S. Miller 	.destroy		=	ip6_dst_destroy,
28514e50e57SDavid S. Miller 	.check			=	ip6_dst_check,
286ebb762f2SSteffen Klassert 	.mtu			=	ip6_blackhole_mtu,
287214f45c9SEric Dumazet 	.default_advmss		=	ip6_default_advmss,
28814e50e57SDavid S. Miller 	.update_pmtu		=	ip6_rt_blackhole_update_pmtu,
289b587ee3bSDavid S. Miller 	.redirect		=	ip6_rt_blackhole_redirect,
2900a1f5962SMartin KaFai Lau 	.cow_metrics		=	dst_cow_metrics_generic,
291d3aaeb38SDavid S. Miller 	.neigh_lookup		=	ip6_neigh_lookup,
29214e50e57SDavid S. Miller };
29314e50e57SDavid S. Miller 
29462fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = {
29514edd87dSLi RongQing 	[RTAX_HOPLIMIT - 1] = 0,
29662fa8a84SDavid S. Miller };
29762fa8a84SDavid S. Miller 
298fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = {
2991da177e4SLinus Torvalds 	.dst = {
3001da177e4SLinus Torvalds 		.__refcnt	= ATOMIC_INIT(1),
3011da177e4SLinus Torvalds 		.__use		= 1,
3022c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
3031da177e4SLinus Torvalds 		.error		= -ENETUNREACH,
3041da177e4SLinus Torvalds 		.input		= ip6_pkt_discard,
3051da177e4SLinus Torvalds 		.output		= ip6_pkt_discard_out,
3061da177e4SLinus Torvalds 	},
3071da177e4SLinus Torvalds 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
3084f724279SJean-Mickael Guerin 	.rt6i_protocol  = RTPROT_KERNEL,
3091da177e4SLinus Torvalds 	.rt6i_metric	= ~(u32) 0,
3101da177e4SLinus Torvalds 	.rt6i_ref	= ATOMIC_INIT(1),
3111da177e4SLinus Torvalds };
3121da177e4SLinus Torvalds 
313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES
314101367c2SThomas Graf 
315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = {
316101367c2SThomas Graf 	.dst = {
317101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
318101367c2SThomas Graf 		.__use		= 1,
3192c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
320101367c2SThomas Graf 		.error		= -EACCES,
3219ce8ade0SThomas Graf 		.input		= ip6_pkt_prohibit,
3229ce8ade0SThomas Graf 		.output		= ip6_pkt_prohibit_out,
323101367c2SThomas Graf 	},
324101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
3254f724279SJean-Mickael Guerin 	.rt6i_protocol  = RTPROT_KERNEL,
326101367c2SThomas Graf 	.rt6i_metric	= ~(u32) 0,
327101367c2SThomas Graf 	.rt6i_ref	= ATOMIC_INIT(1),
328101367c2SThomas Graf };
329101367c2SThomas Graf 
330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = {
331101367c2SThomas Graf 	.dst = {
332101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
333101367c2SThomas Graf 		.__use		= 1,
3342c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
335101367c2SThomas Graf 		.error		= -EINVAL,
336352e512cSHerbert Xu 		.input		= dst_discard,
337ede2059dSEric W. Biederman 		.output		= dst_discard_out,
338101367c2SThomas Graf 	},
339101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
3404f724279SJean-Mickael Guerin 	.rt6i_protocol  = RTPROT_KERNEL,
341101367c2SThomas Graf 	.rt6i_metric	= ~(u32) 0,
342101367c2SThomas Graf 	.rt6i_ref	= ATOMIC_INIT(1),
343101367c2SThomas Graf };
344101367c2SThomas Graf 
345101367c2SThomas Graf #endif
346101367c2SThomas Graf 
347ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt)
348ebfa45f0SMartin KaFai Lau {
349ebfa45f0SMartin KaFai Lau 	struct dst_entry *dst = &rt->dst;
350ebfa45f0SMartin KaFai Lau 
351ebfa45f0SMartin KaFai Lau 	memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
352ebfa45f0SMartin KaFai Lau 	INIT_LIST_HEAD(&rt->rt6i_siblings);
353ebfa45f0SMartin KaFai Lau 	INIT_LIST_HEAD(&rt->rt6i_uncached);
354ebfa45f0SMartin KaFai Lau }
355ebfa45f0SMartin KaFai Lau 
3561da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */
357d52d3997SMartin KaFai Lau static struct rt6_info *__ip6_dst_alloc(struct net *net,
358957c665fSDavid S. Miller 					struct net_device *dev,
359ad706862SMartin KaFai Lau 					int flags)
3601da177e4SLinus Torvalds {
36197bab73fSDavid S. Miller 	struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
362b2a9c0edSWei Wang 					1, DST_OBSOLETE_FORCE_CHK, flags);
363cf911662SDavid S. Miller 
36481eb8447SWei Wang 	if (rt) {
365ebfa45f0SMartin KaFai Lau 		rt6_info_init(rt);
36681eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
36781eb8447SWei Wang 	}
3688104891bSSteffen Klassert 
369cf911662SDavid S. Miller 	return rt;
3701da177e4SLinus Torvalds }
3711da177e4SLinus Torvalds 
3729ab179d8SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net,
373d52d3997SMartin KaFai Lau 			       struct net_device *dev,
374ad706862SMartin KaFai Lau 			       int flags)
375d52d3997SMartin KaFai Lau {
376ad706862SMartin KaFai Lau 	struct rt6_info *rt = __ip6_dst_alloc(net, dev, flags);
377d52d3997SMartin KaFai Lau 
378d52d3997SMartin KaFai Lau 	if (rt) {
379d52d3997SMartin KaFai Lau 		rt->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, GFP_ATOMIC);
380bfd8e5a4SEric Dumazet 		if (!rt->rt6i_pcpu) {
381587fea74SWei Wang 			dst_release_immediate(&rt->dst);
382d52d3997SMartin KaFai Lau 			return NULL;
383d52d3997SMartin KaFai Lau 		}
384d52d3997SMartin KaFai Lau 	}
385d52d3997SMartin KaFai Lau 
386d52d3997SMartin KaFai Lau 	return rt;
387d52d3997SMartin KaFai Lau }
3889ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc);
389d52d3997SMartin KaFai Lau 
3901da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst)
3911da177e4SLinus Torvalds {
3921da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
39335732d01SWei Wang 	struct rt6_exception_bucket *bucket;
3943a2232e9SDavid Miller 	struct rt6_info *from = rt->from;
3958d0b94afSMartin KaFai Lau 	struct inet6_dev *idev;
3961da177e4SLinus Torvalds 
3978e2ec639SYan, Zheng 	dst_destroy_metrics_generic(dst);
398d52d3997SMartin KaFai Lau 	free_percpu(rt->rt6i_pcpu);
3998d0b94afSMartin KaFai Lau 	rt6_uncached_list_del(rt);
4008d0b94afSMartin KaFai Lau 
4018d0b94afSMartin KaFai Lau 	idev = rt->rt6i_idev;
40238308473SDavid S. Miller 	if (idev) {
4031da177e4SLinus Torvalds 		rt->rt6i_idev = NULL;
4041da177e4SLinus Torvalds 		in6_dev_put(idev);
4051da177e4SLinus Torvalds 	}
40635732d01SWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1);
40735732d01SWei Wang 	if (bucket) {
40835732d01SWei Wang 		rt->rt6i_exception_bucket = NULL;
40935732d01SWei Wang 		kfree(bucket);
41035732d01SWei Wang 	}
4111716a961SGao feng 
4123a2232e9SDavid Miller 	rt->from = NULL;
4133a2232e9SDavid Miller 	dst_release(&from->dst);
414b3419363SDavid S. Miller }
415b3419363SDavid S. Miller 
4161da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
4171da177e4SLinus Torvalds 			   int how)
4181da177e4SLinus Torvalds {
4191da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
4201da177e4SLinus Torvalds 	struct inet6_dev *idev = rt->rt6i_idev;
4215a3e55d6SDenis V. Lunev 	struct net_device *loopback_dev =
422c346dca1SYOSHIFUJI Hideaki 		dev_net(dev)->loopback_dev;
4231da177e4SLinus Torvalds 
424e5645f51SWei Wang 	if (idev && idev->dev != loopback_dev) {
425e5645f51SWei Wang 		struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
42638308473SDavid S. Miller 		if (loopback_idev) {
4271da177e4SLinus Torvalds 			rt->rt6i_idev = loopback_idev;
4281da177e4SLinus Torvalds 			in6_dev_put(idev);
4291da177e4SLinus Torvalds 		}
4301da177e4SLinus Torvalds 	}
43197cac082SDavid S. Miller }
4321da177e4SLinus Torvalds 
4335973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt)
4345973fb1eSMartin KaFai Lau {
4355973fb1eSMartin KaFai Lau 	if (rt->rt6i_flags & RTF_EXPIRES)
4365973fb1eSMartin KaFai Lau 		return time_after(jiffies, rt->dst.expires);
4375973fb1eSMartin KaFai Lau 	else
4385973fb1eSMartin KaFai Lau 		return false;
4395973fb1eSMartin KaFai Lau }
4405973fb1eSMartin KaFai Lau 
441a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt)
4421da177e4SLinus Torvalds {
4431716a961SGao feng 	if (rt->rt6i_flags & RTF_EXPIRES) {
4441716a961SGao feng 		if (time_after(jiffies, rt->dst.expires))
445a50feda5SEric Dumazet 			return true;
4463a2232e9SDavid Miller 	} else if (rt->from) {
4471e2ea8adSXin Long 		return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
4483a2232e9SDavid Miller 			rt6_check_expired(rt->from);
4491716a961SGao feng 	}
450a50feda5SEric Dumazet 	return false;
4511da177e4SLinus Torvalds }
4521da177e4SLinus Torvalds 
45351ebd318SNicolas Dichtel static struct rt6_info *rt6_multipath_select(struct rt6_info *match,
45452bd4c0cSNicolas Dichtel 					     struct flowi6 *fl6, int oif,
45552bd4c0cSNicolas Dichtel 					     int strict)
45651ebd318SNicolas Dichtel {
45751ebd318SNicolas Dichtel 	struct rt6_info *sibling, *next_sibling;
45851ebd318SNicolas Dichtel 
459b673d6ccSJakub Sitnicki 	/* We might have already computed the hash for ICMPv6 errors. In such
460b673d6ccSJakub Sitnicki 	 * case it will always be non-zero. Otherwise now is the time to do it.
461b673d6ccSJakub Sitnicki 	 */
462b673d6ccSJakub Sitnicki 	if (!fl6->mp_hash)
463b673d6ccSJakub Sitnicki 		fl6->mp_hash = rt6_multipath_hash(fl6, NULL);
464b673d6ccSJakub Sitnicki 
4653d709f69SIdo Schimmel 	if (fl6->mp_hash <= atomic_read(&match->rt6i_nh_upper_bound))
4663d709f69SIdo Schimmel 		return match;
467bbfcd776SIdo Schimmel 
4683d709f69SIdo Schimmel 	list_for_each_entry_safe(sibling, next_sibling, &match->rt6i_siblings,
4693d709f69SIdo Schimmel 				 rt6i_siblings) {
4703d709f69SIdo Schimmel 		if (fl6->mp_hash > atomic_read(&sibling->rt6i_nh_upper_bound))
4713d709f69SIdo Schimmel 			continue;
47252bd4c0cSNicolas Dichtel 		if (rt6_score_route(sibling, oif, strict) < 0)
47352bd4c0cSNicolas Dichtel 			break;
47451ebd318SNicolas Dichtel 		match = sibling;
47551ebd318SNicolas Dichtel 		break;
47651ebd318SNicolas Dichtel 	}
4773d709f69SIdo Schimmel 
47851ebd318SNicolas Dichtel 	return match;
47951ebd318SNicolas Dichtel }
48051ebd318SNicolas Dichtel 
4811da177e4SLinus Torvalds /*
48266f5d6ceSWei Wang  *	Route lookup. rcu_read_lock() should be held.
4831da177e4SLinus Torvalds  */
4841da177e4SLinus Torvalds 
4858ed67789SDaniel Lezcano static inline struct rt6_info *rt6_device_match(struct net *net,
4868ed67789SDaniel Lezcano 						    struct rt6_info *rt,
487b71d1d42SEric Dumazet 						    const struct in6_addr *saddr,
4881da177e4SLinus Torvalds 						    int oif,
489d420895eSYOSHIFUJI Hideaki 						    int flags)
4901da177e4SLinus Torvalds {
4911da177e4SLinus Torvalds 	struct rt6_info *local = NULL;
4921da177e4SLinus Torvalds 	struct rt6_info *sprt;
4931da177e4SLinus Torvalds 
4948067bb8cSIdo Schimmel 	if (!oif && ipv6_addr_any(saddr) && !(rt->rt6i_nh_flags & RTNH_F_DEAD))
4958067bb8cSIdo Schimmel 		return rt;
496dd3abc4eSYOSHIFUJI Hideaki 
497071fb37eSDavid Miller 	for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) {
498d1918542SDavid S. Miller 		struct net_device *dev = sprt->dst.dev;
499dd3abc4eSYOSHIFUJI Hideaki 
5008067bb8cSIdo Schimmel 		if (sprt->rt6i_nh_flags & RTNH_F_DEAD)
5018067bb8cSIdo Schimmel 			continue;
5028067bb8cSIdo Schimmel 
503dd3abc4eSYOSHIFUJI Hideaki 		if (oif) {
5041da177e4SLinus Torvalds 			if (dev->ifindex == oif)
5051da177e4SLinus Torvalds 				return sprt;
5061da177e4SLinus Torvalds 			if (dev->flags & IFF_LOOPBACK) {
50738308473SDavid S. Miller 				if (!sprt->rt6i_idev ||
5081da177e4SLinus Torvalds 				    sprt->rt6i_idev->dev->ifindex != oif) {
50917fb0b2bSDavid Ahern 					if (flags & RT6_LOOKUP_F_IFACE)
5101da177e4SLinus Torvalds 						continue;
51117fb0b2bSDavid Ahern 					if (local &&
51217fb0b2bSDavid Ahern 					    local->rt6i_idev->dev->ifindex == oif)
5131da177e4SLinus Torvalds 						continue;
5141da177e4SLinus Torvalds 				}
5151da177e4SLinus Torvalds 				local = sprt;
5161da177e4SLinus Torvalds 			}
517dd3abc4eSYOSHIFUJI Hideaki 		} else {
518dd3abc4eSYOSHIFUJI Hideaki 			if (ipv6_chk_addr(net, saddr, dev,
519dd3abc4eSYOSHIFUJI Hideaki 					  flags & RT6_LOOKUP_F_IFACE))
520dd3abc4eSYOSHIFUJI Hideaki 				return sprt;
521dd3abc4eSYOSHIFUJI Hideaki 		}
5221da177e4SLinus Torvalds 	}
5231da177e4SLinus Torvalds 
524dd3abc4eSYOSHIFUJI Hideaki 	if (oif) {
5251da177e4SLinus Torvalds 		if (local)
5261da177e4SLinus Torvalds 			return local;
5271da177e4SLinus Torvalds 
528d420895eSYOSHIFUJI Hideaki 		if (flags & RT6_LOOKUP_F_IFACE)
5298ed67789SDaniel Lezcano 			return net->ipv6.ip6_null_entry;
5301da177e4SLinus Torvalds 	}
5318067bb8cSIdo Schimmel 
5328067bb8cSIdo Schimmel 	return rt->rt6i_nh_flags & RTNH_F_DEAD ? net->ipv6.ip6_null_entry : rt;
5331da177e4SLinus Torvalds }
5341da177e4SLinus Torvalds 
53527097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
536c2f17e82SHannes Frederic Sowa struct __rt6_probe_work {
537c2f17e82SHannes Frederic Sowa 	struct work_struct work;
538c2f17e82SHannes Frederic Sowa 	struct in6_addr target;
539c2f17e82SHannes Frederic Sowa 	struct net_device *dev;
540c2f17e82SHannes Frederic Sowa };
541c2f17e82SHannes Frederic Sowa 
542c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w)
543c2f17e82SHannes Frederic Sowa {
544c2f17e82SHannes Frederic Sowa 	struct in6_addr mcaddr;
545c2f17e82SHannes Frederic Sowa 	struct __rt6_probe_work *work =
546c2f17e82SHannes Frederic Sowa 		container_of(w, struct __rt6_probe_work, work);
547c2f17e82SHannes Frederic Sowa 
548c2f17e82SHannes Frederic Sowa 	addrconf_addr_solict_mult(&work->target, &mcaddr);
549adc176c5SErik Nordmark 	ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
550c2f17e82SHannes Frederic Sowa 	dev_put(work->dev);
551662f5533SMichael Büsch 	kfree(work);
552c2f17e82SHannes Frederic Sowa }
553c2f17e82SHannes Frederic Sowa 
55427097255SYOSHIFUJI Hideaki static void rt6_probe(struct rt6_info *rt)
55527097255SYOSHIFUJI Hideaki {
556990edb42SMartin KaFai Lau 	struct __rt6_probe_work *work;
557f2c31e32SEric Dumazet 	struct neighbour *neigh;
55827097255SYOSHIFUJI Hideaki 	/*
55927097255SYOSHIFUJI Hideaki 	 * Okay, this does not seem to be appropriate
56027097255SYOSHIFUJI Hideaki 	 * for now, however, we need to check if it
56127097255SYOSHIFUJI Hideaki 	 * is really so; aka Router Reachability Probing.
56227097255SYOSHIFUJI Hideaki 	 *
56327097255SYOSHIFUJI Hideaki 	 * Router Reachability Probe MUST be rate-limited
56427097255SYOSHIFUJI Hideaki 	 * to no more than one per minute.
56527097255SYOSHIFUJI Hideaki 	 */
5662152caeaSYOSHIFUJI Hideaki / 吉藤英明 	if (!rt || !(rt->rt6i_flags & RTF_GATEWAY))
567fdd6681dSAmerigo Wang 		return;
5682152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
5692152caeaSYOSHIFUJI Hideaki / 吉藤英明 	neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
5702152caeaSYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
5718d6c31bfSMartin KaFai Lau 		if (neigh->nud_state & NUD_VALID)
5728d6c31bfSMartin KaFai Lau 			goto out;
5738d6c31bfSMartin KaFai Lau 
574990edb42SMartin KaFai Lau 		work = NULL;
5752152caeaSYOSHIFUJI Hideaki / 吉藤英明 		write_lock(&neigh->lock);
576990edb42SMartin KaFai Lau 		if (!(neigh->nud_state & NUD_VALID) &&
577990edb42SMartin KaFai Lau 		    time_after(jiffies,
578990edb42SMartin KaFai Lau 			       neigh->updated +
579990edb42SMartin KaFai Lau 			       rt->rt6i_idev->cnf.rtr_probe_interval)) {
580c2f17e82SHannes Frederic Sowa 			work = kmalloc(sizeof(*work), GFP_ATOMIC);
581990edb42SMartin KaFai Lau 			if (work)
5827e980569SJiri Benc 				__neigh_set_probe_once(neigh);
583990edb42SMartin KaFai Lau 		}
584c2f17e82SHannes Frederic Sowa 		write_unlock(&neigh->lock);
585990edb42SMartin KaFai Lau 	} else {
586990edb42SMartin KaFai Lau 		work = kmalloc(sizeof(*work), GFP_ATOMIC);
587990edb42SMartin KaFai Lau 	}
588c2f17e82SHannes Frederic Sowa 
589c2f17e82SHannes Frederic Sowa 	if (work) {
590c2f17e82SHannes Frederic Sowa 		INIT_WORK(&work->work, rt6_probe_deferred);
591c2f17e82SHannes Frederic Sowa 		work->target = rt->rt6i_gateway;
592c2f17e82SHannes Frederic Sowa 		dev_hold(rt->dst.dev);
593c2f17e82SHannes Frederic Sowa 		work->dev = rt->dst.dev;
594c2f17e82SHannes Frederic Sowa 		schedule_work(&work->work);
595c2f17e82SHannes Frederic Sowa 	}
596990edb42SMartin KaFai Lau 
5978d6c31bfSMartin KaFai Lau out:
5982152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
599f2c31e32SEric Dumazet }
60027097255SYOSHIFUJI Hideaki #else
60127097255SYOSHIFUJI Hideaki static inline void rt6_probe(struct rt6_info *rt)
60227097255SYOSHIFUJI Hideaki {
60327097255SYOSHIFUJI Hideaki }
60427097255SYOSHIFUJI Hideaki #endif
60527097255SYOSHIFUJI Hideaki 
6061da177e4SLinus Torvalds /*
607554cfb7eSYOSHIFUJI Hideaki  * Default Router Selection (RFC 2461 6.3.6)
6081da177e4SLinus Torvalds  */
609b6f99a21SDave Jones static inline int rt6_check_dev(struct rt6_info *rt, int oif)
6101da177e4SLinus Torvalds {
611d1918542SDavid S. Miller 	struct net_device *dev = rt->dst.dev;
612161980f4SDavid S. Miller 	if (!oif || dev->ifindex == oif)
613554cfb7eSYOSHIFUJI Hideaki 		return 2;
614161980f4SDavid S. Miller 	if ((dev->flags & IFF_LOOPBACK) &&
615161980f4SDavid S. Miller 	    rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif)
616161980f4SDavid S. Miller 		return 1;
617554cfb7eSYOSHIFUJI Hideaki 	return 0;
6181da177e4SLinus Torvalds }
6191da177e4SLinus Torvalds 
620afc154e9SHannes Frederic Sowa static inline enum rt6_nud_state rt6_check_neigh(struct rt6_info *rt)
6211da177e4SLinus Torvalds {
622f2c31e32SEric Dumazet 	struct neighbour *neigh;
623afc154e9SHannes Frederic Sowa 	enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
624f2c31e32SEric Dumazet 
6254d0c5911SYOSHIFUJI Hideaki 	if (rt->rt6i_flags & RTF_NONEXTHOP ||
6264d0c5911SYOSHIFUJI Hideaki 	    !(rt->rt6i_flags & RTF_GATEWAY))
627afc154e9SHannes Frederic Sowa 		return RT6_NUD_SUCCEED;
628145a3621SYOSHIFUJI Hideaki / 吉藤英明 
629145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
630145a3621SYOSHIFUJI Hideaki / 吉藤英明 	neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
631145a3621SYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
632145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_lock(&neigh->lock);
633554cfb7eSYOSHIFUJI Hideaki 		if (neigh->nud_state & NUD_VALID)
634afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
635398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
636a5a81f0bSPaul Marks 		else if (!(neigh->nud_state & NUD_FAILED))
637afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
6387e980569SJiri Benc 		else
6397e980569SJiri Benc 			ret = RT6_NUD_FAIL_PROBE;
640398bcbebSYOSHIFUJI Hideaki #endif
641145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_unlock(&neigh->lock);
642afc154e9SHannes Frederic Sowa 	} else {
643afc154e9SHannes Frederic Sowa 		ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
6447e980569SJiri Benc 		      RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
645a5a81f0bSPaul Marks 	}
646145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
647145a3621SYOSHIFUJI Hideaki / 吉藤英明 
648a5a81f0bSPaul Marks 	return ret;
6491da177e4SLinus Torvalds }
6501da177e4SLinus Torvalds 
651554cfb7eSYOSHIFUJI Hideaki static int rt6_score_route(struct rt6_info *rt, int oif,
652554cfb7eSYOSHIFUJI Hideaki 			   int strict)
653554cfb7eSYOSHIFUJI Hideaki {
654a5a81f0bSPaul Marks 	int m;
6554d0c5911SYOSHIFUJI Hideaki 
6564d0c5911SYOSHIFUJI Hideaki 	m = rt6_check_dev(rt, oif);
65777d16f45SYOSHIFUJI Hideaki 	if (!m && (strict & RT6_LOOKUP_F_IFACE))
658afc154e9SHannes Frederic Sowa 		return RT6_NUD_FAIL_HARD;
659ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
660ebacaaa0SYOSHIFUJI Hideaki 	m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2;
661ebacaaa0SYOSHIFUJI Hideaki #endif
662afc154e9SHannes Frederic Sowa 	if (strict & RT6_LOOKUP_F_REACHABLE) {
663afc154e9SHannes Frederic Sowa 		int n = rt6_check_neigh(rt);
664afc154e9SHannes Frederic Sowa 		if (n < 0)
665afc154e9SHannes Frederic Sowa 			return n;
666afc154e9SHannes Frederic Sowa 	}
667554cfb7eSYOSHIFUJI Hideaki 	return m;
668554cfb7eSYOSHIFUJI Hideaki }
669554cfb7eSYOSHIFUJI Hideaki 
670f11e6659SDavid S. Miller static struct rt6_info *find_match(struct rt6_info *rt, int oif, int strict,
671afc154e9SHannes Frederic Sowa 				   int *mpri, struct rt6_info *match,
672afc154e9SHannes Frederic Sowa 				   bool *do_rr)
673554cfb7eSYOSHIFUJI Hideaki {
674554cfb7eSYOSHIFUJI Hideaki 	int m;
675afc154e9SHannes Frederic Sowa 	bool match_do_rr = false;
67635103d11SAndy Gospodarek 	struct inet6_dev *idev = rt->rt6i_idev;
67735103d11SAndy Gospodarek 
6788067bb8cSIdo Schimmel 	if (rt->rt6i_nh_flags & RTNH_F_DEAD)
6798067bb8cSIdo Schimmel 		goto out;
6808067bb8cSIdo Schimmel 
68114c5206cSIdo Schimmel 	if (idev->cnf.ignore_routes_with_linkdown &&
68214c5206cSIdo Schimmel 	    rt->rt6i_nh_flags & RTNH_F_LINKDOWN &&
683d5d32e4bSDavid Ahern 	    !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
68435103d11SAndy Gospodarek 		goto out;
685554cfb7eSYOSHIFUJI Hideaki 
686554cfb7eSYOSHIFUJI Hideaki 	if (rt6_check_expired(rt))
687f11e6659SDavid S. Miller 		goto out;
688554cfb7eSYOSHIFUJI Hideaki 
689554cfb7eSYOSHIFUJI Hideaki 	m = rt6_score_route(rt, oif, strict);
6907e980569SJiri Benc 	if (m == RT6_NUD_FAIL_DO_RR) {
691afc154e9SHannes Frederic Sowa 		match_do_rr = true;
692afc154e9SHannes Frederic Sowa 		m = 0; /* lowest valid score */
6937e980569SJiri Benc 	} else if (m == RT6_NUD_FAIL_HARD) {
694f11e6659SDavid S. Miller 		goto out;
6951da177e4SLinus Torvalds 	}
696f11e6659SDavid S. Miller 
697afc154e9SHannes Frederic Sowa 	if (strict & RT6_LOOKUP_F_REACHABLE)
698afc154e9SHannes Frederic Sowa 		rt6_probe(rt);
699afc154e9SHannes Frederic Sowa 
7007e980569SJiri Benc 	/* note that m can be RT6_NUD_FAIL_PROBE at this point */
701afc154e9SHannes Frederic Sowa 	if (m > *mpri) {
702afc154e9SHannes Frederic Sowa 		*do_rr = match_do_rr;
703afc154e9SHannes Frederic Sowa 		*mpri = m;
704afc154e9SHannes Frederic Sowa 		match = rt;
705afc154e9SHannes Frederic Sowa 	}
706f11e6659SDavid S. Miller out:
707f11e6659SDavid S. Miller 	return match;
7081da177e4SLinus Torvalds }
7091da177e4SLinus Torvalds 
710f11e6659SDavid S. Miller static struct rt6_info *find_rr_leaf(struct fib6_node *fn,
7118d1040e8SWei Wang 				     struct rt6_info *leaf,
712f11e6659SDavid S. Miller 				     struct rt6_info *rr_head,
713afc154e9SHannes Frederic Sowa 				     u32 metric, int oif, int strict,
714afc154e9SHannes Frederic Sowa 				     bool *do_rr)
715f11e6659SDavid S. Miller {
7169fbdcfafSSteffen Klassert 	struct rt6_info *rt, *match, *cont;
717f11e6659SDavid S. Miller 	int mpri = -1;
718f11e6659SDavid S. Miller 
719f11e6659SDavid S. Miller 	match = NULL;
7209fbdcfafSSteffen Klassert 	cont = NULL;
721071fb37eSDavid Miller 	for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) {
7229fbdcfafSSteffen Klassert 		if (rt->rt6i_metric != metric) {
7239fbdcfafSSteffen Klassert 			cont = rt;
7249fbdcfafSSteffen Klassert 			break;
7259fbdcfafSSteffen Klassert 		}
7269fbdcfafSSteffen Klassert 
727afc154e9SHannes Frederic Sowa 		match = find_match(rt, oif, strict, &mpri, match, do_rr);
7289fbdcfafSSteffen Klassert 	}
7299fbdcfafSSteffen Klassert 
73066f5d6ceSWei Wang 	for (rt = leaf; rt && rt != rr_head;
731071fb37eSDavid Miller 	     rt = rcu_dereference(rt->rt6_next)) {
7329fbdcfafSSteffen Klassert 		if (rt->rt6i_metric != metric) {
7339fbdcfafSSteffen Klassert 			cont = rt;
7349fbdcfafSSteffen Klassert 			break;
7359fbdcfafSSteffen Klassert 		}
7369fbdcfafSSteffen Klassert 
7379fbdcfafSSteffen Klassert 		match = find_match(rt, oif, strict, &mpri, match, do_rr);
7389fbdcfafSSteffen Klassert 	}
7399fbdcfafSSteffen Klassert 
7409fbdcfafSSteffen Klassert 	if (match || !cont)
7419fbdcfafSSteffen Klassert 		return match;
7429fbdcfafSSteffen Klassert 
743071fb37eSDavid Miller 	for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next))
744afc154e9SHannes Frederic Sowa 		match = find_match(rt, oif, strict, &mpri, match, do_rr);
745f11e6659SDavid S. Miller 
746f11e6659SDavid S. Miller 	return match;
747f11e6659SDavid S. Miller }
748f11e6659SDavid S. Miller 
7498d1040e8SWei Wang static struct rt6_info *rt6_select(struct net *net, struct fib6_node *fn,
7508d1040e8SWei Wang 				   int oif, int strict)
751f11e6659SDavid S. Miller {
75266f5d6ceSWei Wang 	struct rt6_info *leaf = rcu_dereference(fn->leaf);
753f11e6659SDavid S. Miller 	struct rt6_info *match, *rt0;
754afc154e9SHannes Frederic Sowa 	bool do_rr = false;
75517ecf590SWei Wang 	int key_plen;
756f11e6659SDavid S. Miller 
75787b1af8dSWei Wang 	if (!leaf || leaf == net->ipv6.ip6_null_entry)
7588d1040e8SWei Wang 		return net->ipv6.ip6_null_entry;
7598d1040e8SWei Wang 
76066f5d6ceSWei Wang 	rt0 = rcu_dereference(fn->rr_ptr);
761f11e6659SDavid S. Miller 	if (!rt0)
76266f5d6ceSWei Wang 		rt0 = leaf;
763f11e6659SDavid S. Miller 
76417ecf590SWei Wang 	/* Double check to make sure fn is not an intermediate node
76517ecf590SWei Wang 	 * and fn->leaf does not points to its child's leaf
76617ecf590SWei Wang 	 * (This might happen if all routes under fn are deleted from
76717ecf590SWei Wang 	 * the tree and fib6_repair_tree() is called on the node.)
76817ecf590SWei Wang 	 */
76917ecf590SWei Wang 	key_plen = rt0->rt6i_dst.plen;
77017ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES
77117ecf590SWei Wang 	if (rt0->rt6i_src.plen)
77217ecf590SWei Wang 		key_plen = rt0->rt6i_src.plen;
77317ecf590SWei Wang #endif
77417ecf590SWei Wang 	if (fn->fn_bit != key_plen)
77517ecf590SWei Wang 		return net->ipv6.ip6_null_entry;
77617ecf590SWei Wang 
7778d1040e8SWei Wang 	match = find_rr_leaf(fn, leaf, rt0, rt0->rt6i_metric, oif, strict,
778afc154e9SHannes Frederic Sowa 			     &do_rr);
779f11e6659SDavid S. Miller 
780afc154e9SHannes Frederic Sowa 	if (do_rr) {
781071fb37eSDavid Miller 		struct rt6_info *next = rcu_dereference(rt0->rt6_next);
782f11e6659SDavid S. Miller 
783554cfb7eSYOSHIFUJI Hideaki 		/* no entries matched; do round-robin */
784f11e6659SDavid S. Miller 		if (!next || next->rt6i_metric != rt0->rt6i_metric)
7858d1040e8SWei Wang 			next = leaf;
786f11e6659SDavid S. Miller 
78766f5d6ceSWei Wang 		if (next != rt0) {
78866f5d6ceSWei Wang 			spin_lock_bh(&leaf->rt6i_table->tb6_lock);
78966f5d6ceSWei Wang 			/* make sure next is not being deleted from the tree */
79066f5d6ceSWei Wang 			if (next->rt6i_node)
79166f5d6ceSWei Wang 				rcu_assign_pointer(fn->rr_ptr, next);
79266f5d6ceSWei Wang 			spin_unlock_bh(&leaf->rt6i_table->tb6_lock);
79366f5d6ceSWei Wang 		}
794554cfb7eSYOSHIFUJI Hideaki 	}
795554cfb7eSYOSHIFUJI Hideaki 
796a02cec21SEric Dumazet 	return match ? match : net->ipv6.ip6_null_entry;
7971da177e4SLinus Torvalds }
7981da177e4SLinus Torvalds 
7998b9df265SMartin KaFai Lau static bool rt6_is_gw_or_nonexthop(const struct rt6_info *rt)
8008b9df265SMartin KaFai Lau {
8018b9df265SMartin KaFai Lau 	return (rt->rt6i_flags & (RTF_NONEXTHOP | RTF_GATEWAY));
8028b9df265SMartin KaFai Lau }
8038b9df265SMartin KaFai Lau 
80470ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
80570ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
806b71d1d42SEric Dumazet 		  const struct in6_addr *gwaddr)
80770ceb4f5SYOSHIFUJI Hideaki {
808c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
80970ceb4f5SYOSHIFUJI Hideaki 	struct route_info *rinfo = (struct route_info *) opt;
81070ceb4f5SYOSHIFUJI Hideaki 	struct in6_addr prefix_buf, *prefix;
81170ceb4f5SYOSHIFUJI Hideaki 	unsigned int pref;
8124bed72e4SYOSHIFUJI Hideaki 	unsigned long lifetime;
81370ceb4f5SYOSHIFUJI Hideaki 	struct rt6_info *rt;
81470ceb4f5SYOSHIFUJI Hideaki 
81570ceb4f5SYOSHIFUJI Hideaki 	if (len < sizeof(struct route_info)) {
81670ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
81770ceb4f5SYOSHIFUJI Hideaki 	}
81870ceb4f5SYOSHIFUJI Hideaki 
81970ceb4f5SYOSHIFUJI Hideaki 	/* Sanity check for prefix_len and length */
82070ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length > 3) {
82170ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
82270ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 128) {
82370ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
82470ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 64) {
82570ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 2) {
82670ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
82770ceb4f5SYOSHIFUJI Hideaki 		}
82870ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 0) {
82970ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 1) {
83070ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
83170ceb4f5SYOSHIFUJI Hideaki 		}
83270ceb4f5SYOSHIFUJI Hideaki 	}
83370ceb4f5SYOSHIFUJI Hideaki 
83470ceb4f5SYOSHIFUJI Hideaki 	pref = rinfo->route_pref;
83570ceb4f5SYOSHIFUJI Hideaki 	if (pref == ICMPV6_ROUTER_PREF_INVALID)
8363933fc95SJens Rosenboom 		return -EINVAL;
83770ceb4f5SYOSHIFUJI Hideaki 
8384bed72e4SYOSHIFUJI Hideaki 	lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
83970ceb4f5SYOSHIFUJI Hideaki 
84070ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length == 3)
84170ceb4f5SYOSHIFUJI Hideaki 		prefix = (struct in6_addr *)rinfo->prefix;
84270ceb4f5SYOSHIFUJI Hideaki 	else {
84370ceb4f5SYOSHIFUJI Hideaki 		/* this function is safe */
84470ceb4f5SYOSHIFUJI Hideaki 		ipv6_addr_prefix(&prefix_buf,
84570ceb4f5SYOSHIFUJI Hideaki 				 (struct in6_addr *)rinfo->prefix,
84670ceb4f5SYOSHIFUJI Hideaki 				 rinfo->prefix_len);
84770ceb4f5SYOSHIFUJI Hideaki 		prefix = &prefix_buf;
84870ceb4f5SYOSHIFUJI Hideaki 	}
84970ceb4f5SYOSHIFUJI Hideaki 
850f104a567SDuan Jiong 	if (rinfo->prefix_len == 0)
851f104a567SDuan Jiong 		rt = rt6_get_dflt_router(gwaddr, dev);
852f104a567SDuan Jiong 	else
853f104a567SDuan Jiong 		rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
854830218c1SDavid Ahern 					gwaddr, dev);
85570ceb4f5SYOSHIFUJI Hideaki 
85670ceb4f5SYOSHIFUJI Hideaki 	if (rt && !lifetime) {
857e0a1ad73SThomas Graf 		ip6_del_rt(rt);
85870ceb4f5SYOSHIFUJI Hideaki 		rt = NULL;
85970ceb4f5SYOSHIFUJI Hideaki 	}
86070ceb4f5SYOSHIFUJI Hideaki 
86170ceb4f5SYOSHIFUJI Hideaki 	if (!rt && lifetime)
862830218c1SDavid Ahern 		rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
863830218c1SDavid Ahern 					dev, pref);
86470ceb4f5SYOSHIFUJI Hideaki 	else if (rt)
86570ceb4f5SYOSHIFUJI Hideaki 		rt->rt6i_flags = RTF_ROUTEINFO |
86670ceb4f5SYOSHIFUJI Hideaki 				 (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
86770ceb4f5SYOSHIFUJI Hideaki 
86870ceb4f5SYOSHIFUJI Hideaki 	if (rt) {
8691716a961SGao feng 		if (!addrconf_finite_timeout(lifetime))
8701716a961SGao feng 			rt6_clean_expires(rt);
8711716a961SGao feng 		else
8721716a961SGao feng 			rt6_set_expires(rt, jiffies + HZ * lifetime);
8731716a961SGao feng 
87494e187c0SAmerigo Wang 		ip6_rt_put(rt);
87570ceb4f5SYOSHIFUJI Hideaki 	}
87670ceb4f5SYOSHIFUJI Hideaki 	return 0;
87770ceb4f5SYOSHIFUJI Hideaki }
87870ceb4f5SYOSHIFUJI Hideaki #endif
87970ceb4f5SYOSHIFUJI Hideaki 
880a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
881a3c00e46SMartin KaFai Lau 					struct in6_addr *saddr)
882a3c00e46SMartin KaFai Lau {
88366f5d6ceSWei Wang 	struct fib6_node *pn, *sn;
884a3c00e46SMartin KaFai Lau 	while (1) {
885a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_TL_ROOT)
886a3c00e46SMartin KaFai Lau 			return NULL;
88766f5d6ceSWei Wang 		pn = rcu_dereference(fn->parent);
88866f5d6ceSWei Wang 		sn = FIB6_SUBTREE(pn);
88966f5d6ceSWei Wang 		if (sn && sn != fn)
89066f5d6ceSWei Wang 			fn = fib6_lookup(sn, NULL, saddr);
891a3c00e46SMartin KaFai Lau 		else
892a3c00e46SMartin KaFai Lau 			fn = pn;
893a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_RTINFO)
894a3c00e46SMartin KaFai Lau 			return fn;
895a3c00e46SMartin KaFai Lau 	}
896a3c00e46SMartin KaFai Lau }
897c71099acSThomas Graf 
898d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt,
899d3843fe5SWei Wang 			  bool null_fallback)
900d3843fe5SWei Wang {
901d3843fe5SWei Wang 	struct rt6_info *rt = *prt;
902d3843fe5SWei Wang 
903d3843fe5SWei Wang 	if (dst_hold_safe(&rt->dst))
904d3843fe5SWei Wang 		return true;
905d3843fe5SWei Wang 	if (null_fallback) {
906d3843fe5SWei Wang 		rt = net->ipv6.ip6_null_entry;
907d3843fe5SWei Wang 		dst_hold(&rt->dst);
908d3843fe5SWei Wang 	} else {
909d3843fe5SWei Wang 		rt = NULL;
910d3843fe5SWei Wang 	}
911d3843fe5SWei Wang 	*prt = rt;
912d3843fe5SWei Wang 	return false;
913d3843fe5SWei Wang }
914d3843fe5SWei Wang 
9158ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net,
9168ed67789SDaniel Lezcano 					     struct fib6_table *table,
9174c9483b2SDavid S. Miller 					     struct flowi6 *fl6, int flags)
9181da177e4SLinus Torvalds {
9192b760fcfSWei Wang 	struct rt6_info *rt, *rt_cache;
9201da177e4SLinus Torvalds 	struct fib6_node *fn;
9211da177e4SLinus Torvalds 
92266f5d6ceSWei Wang 	rcu_read_lock();
9234c9483b2SDavid S. Miller 	fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
924c71099acSThomas Graf restart:
92566f5d6ceSWei Wang 	rt = rcu_dereference(fn->leaf);
92666f5d6ceSWei Wang 	if (!rt) {
92766f5d6ceSWei Wang 		rt = net->ipv6.ip6_null_entry;
92866f5d6ceSWei Wang 	} else {
92966f5d6ceSWei Wang 		rt = rt6_device_match(net, rt, &fl6->saddr,
93066f5d6ceSWei Wang 				      fl6->flowi6_oif, flags);
93151ebd318SNicolas Dichtel 		if (rt->rt6i_nsiblings && fl6->flowi6_oif == 0)
93266f5d6ceSWei Wang 			rt = rt6_multipath_select(rt, fl6,
93366f5d6ceSWei Wang 						  fl6->flowi6_oif, flags);
93466f5d6ceSWei Wang 	}
935a3c00e46SMartin KaFai Lau 	if (rt == net->ipv6.ip6_null_entry) {
936a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
937a3c00e46SMartin KaFai Lau 		if (fn)
938a3c00e46SMartin KaFai Lau 			goto restart;
939a3c00e46SMartin KaFai Lau 	}
9402b760fcfSWei Wang 	/* Search through exception table */
9412b760fcfSWei Wang 	rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr);
9422b760fcfSWei Wang 	if (rt_cache)
9432b760fcfSWei Wang 		rt = rt_cache;
9442b760fcfSWei Wang 
945d3843fe5SWei Wang 	if (ip6_hold_safe(net, &rt, true))
946d3843fe5SWei Wang 		dst_use_noref(&rt->dst, jiffies);
947d3843fe5SWei Wang 
94866f5d6ceSWei Wang 	rcu_read_unlock();
949b811580dSDavid Ahern 
950b65f164dSPaolo Abeni 	trace_fib6_table_lookup(net, rt, table, fl6);
951b811580dSDavid Ahern 
9521da177e4SLinus Torvalds 	return rt;
953c71099acSThomas Graf 
954c71099acSThomas Graf }
955c71099acSThomas Graf 
956ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
957ea6e574eSFlorian Westphal 				    int flags)
958ea6e574eSFlorian Westphal {
959ea6e574eSFlorian Westphal 	return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_lookup);
960ea6e574eSFlorian Westphal }
961ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup);
962ea6e574eSFlorian Westphal 
9639acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
9649acd9f3aSYOSHIFUJI Hideaki 			    const struct in6_addr *saddr, int oif, int strict)
965c71099acSThomas Graf {
9664c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
9674c9483b2SDavid S. Miller 		.flowi6_oif = oif,
9684c9483b2SDavid S. Miller 		.daddr = *daddr,
969c71099acSThomas Graf 	};
970c71099acSThomas Graf 	struct dst_entry *dst;
97177d16f45SYOSHIFUJI Hideaki 	int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
972c71099acSThomas Graf 
973adaa70bbSThomas Graf 	if (saddr) {
9744c9483b2SDavid S. Miller 		memcpy(&fl6.saddr, saddr, sizeof(*saddr));
975adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
976adaa70bbSThomas Graf 	}
977adaa70bbSThomas Graf 
9784c9483b2SDavid S. Miller 	dst = fib6_rule_lookup(net, &fl6, flags, ip6_pol_route_lookup);
979c71099acSThomas Graf 	if (dst->error == 0)
980c71099acSThomas Graf 		return (struct rt6_info *) dst;
981c71099acSThomas Graf 
982c71099acSThomas Graf 	dst_release(dst);
983c71099acSThomas Graf 
9841da177e4SLinus Torvalds 	return NULL;
9851da177e4SLinus Torvalds }
9867159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup);
9877159039aSYOSHIFUJI Hideaki 
988c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock.
9891cfb71eeSWei Wang  * It takes new route entry, the addition fails by any reason the
9901cfb71eeSWei Wang  * route is released.
9911cfb71eeSWei Wang  * Caller must hold dst before calling it.
9921da177e4SLinus Torvalds  */
9931da177e4SLinus Torvalds 
994e5fd387aSMichal Kubeček static int __ip6_ins_rt(struct rt6_info *rt, struct nl_info *info,
995333c4301SDavid Ahern 			struct mx6_config *mxc,
996333c4301SDavid Ahern 			struct netlink_ext_ack *extack)
9971da177e4SLinus Torvalds {
9981da177e4SLinus Torvalds 	int err;
999c71099acSThomas Graf 	struct fib6_table *table;
10001da177e4SLinus Torvalds 
1001c71099acSThomas Graf 	table = rt->rt6i_table;
100266f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
1003333c4301SDavid Ahern 	err = fib6_add(&table->tb6_root, rt, info, mxc, extack);
100466f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
10051da177e4SLinus Torvalds 
10061da177e4SLinus Torvalds 	return err;
10071da177e4SLinus Torvalds }
10081da177e4SLinus Torvalds 
100940e22e8fSThomas Graf int ip6_ins_rt(struct rt6_info *rt)
101040e22e8fSThomas Graf {
1011e715b6d3SFlorian Westphal 	struct nl_info info = {	.nl_net = dev_net(rt->dst.dev), };
1012e715b6d3SFlorian Westphal 	struct mx6_config mxc = { .mx = NULL, };
1013e715b6d3SFlorian Westphal 
10141cfb71eeSWei Wang 	/* Hold dst to account for the reference from the fib6 tree */
10151cfb71eeSWei Wang 	dst_hold(&rt->dst);
1016333c4301SDavid Ahern 	return __ip6_ins_rt(rt, &info, &mxc, NULL);
101740e22e8fSThomas Graf }
101840e22e8fSThomas Graf 
10194832c30dSDavid Ahern /* called with rcu_lock held */
10204832c30dSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct rt6_info *rt)
10214832c30dSDavid Ahern {
10224832c30dSDavid Ahern 	struct net_device *dev = rt->dst.dev;
10234832c30dSDavid Ahern 
102498d11291SDavid Ahern 	if (rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) {
10254832c30dSDavid Ahern 		/* for copies of local routes, dst->dev needs to be the
10264832c30dSDavid Ahern 		 * device if it is a master device, the master device if
10274832c30dSDavid Ahern 		 * device is enslaved, and the loopback as the default
10284832c30dSDavid Ahern 		 */
10294832c30dSDavid Ahern 		if (netif_is_l3_slave(dev) &&
10304832c30dSDavid Ahern 		    !rt6_need_strict(&rt->rt6i_dst.addr))
10314832c30dSDavid Ahern 			dev = l3mdev_master_dev_rcu(dev);
10324832c30dSDavid Ahern 		else if (!netif_is_l3_master(dev))
10334832c30dSDavid Ahern 			dev = dev_net(dev)->loopback_dev;
10344832c30dSDavid Ahern 		/* last case is netif_is_l3_master(dev) is true in which
10354832c30dSDavid Ahern 		 * case we want dev returned to be dev
10364832c30dSDavid Ahern 		 */
10374832c30dSDavid Ahern 	}
10384832c30dSDavid Ahern 
10394832c30dSDavid Ahern 	return dev;
10404832c30dSDavid Ahern }
10414832c30dSDavid Ahern 
10428b9df265SMartin KaFai Lau static struct rt6_info *ip6_rt_cache_alloc(struct rt6_info *ort,
104321efcfa0SEric Dumazet 					   const struct in6_addr *daddr,
1044b71d1d42SEric Dumazet 					   const struct in6_addr *saddr)
10451da177e4SLinus Torvalds {
10464832c30dSDavid Ahern 	struct net_device *dev;
10471da177e4SLinus Torvalds 	struct rt6_info *rt;
10481da177e4SLinus Torvalds 
10491da177e4SLinus Torvalds 	/*
10501da177e4SLinus Torvalds 	 *	Clone the route.
10511da177e4SLinus Torvalds 	 */
10521da177e4SLinus Torvalds 
1053d52d3997SMartin KaFai Lau 	if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU))
10543a2232e9SDavid Miller 		ort = ort->from;
10551da177e4SLinus Torvalds 
10564832c30dSDavid Ahern 	rcu_read_lock();
10574832c30dSDavid Ahern 	dev = ip6_rt_get_dev_rcu(ort);
10584832c30dSDavid Ahern 	rt = __ip6_dst_alloc(dev_net(dev), dev, 0);
10594832c30dSDavid Ahern 	rcu_read_unlock();
106083a09abdSMartin KaFai Lau 	if (!rt)
106183a09abdSMartin KaFai Lau 		return NULL;
106283a09abdSMartin KaFai Lau 
106383a09abdSMartin KaFai Lau 	ip6_rt_copy_init(rt, ort);
10648b9df265SMartin KaFai Lau 	rt->rt6i_flags |= RTF_CACHE;
106583a09abdSMartin KaFai Lau 	rt->rt6i_metric = 0;
106683a09abdSMartin KaFai Lau 	rt->dst.flags |= DST_HOST;
106783a09abdSMartin KaFai Lau 	rt->rt6i_dst.addr = *daddr;
106883a09abdSMartin KaFai Lau 	rt->rt6i_dst.plen = 128;
10698b9df265SMartin KaFai Lau 
10708b9df265SMartin KaFai Lau 	if (!rt6_is_gw_or_nonexthop(ort)) {
1071bb3c3686SDavid S. Miller 		if (ort->rt6i_dst.plen != 128 &&
107221efcfa0SEric Dumazet 		    ipv6_addr_equal(&ort->rt6i_dst.addr, daddr))
107358c4fb86SYOSHIFUJI Hideaki 			rt->rt6i_flags |= RTF_ANYCAST;
10741da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
10751da177e4SLinus Torvalds 		if (rt->rt6i_src.plen && saddr) {
10764e3fd7a0SAlexey Dobriyan 			rt->rt6i_src.addr = *saddr;
10771da177e4SLinus Torvalds 			rt->rt6i_src.plen = 128;
10781da177e4SLinus Torvalds 		}
10791da177e4SLinus Torvalds #endif
108095a9a5baSYOSHIFUJI Hideaki 	}
108195a9a5baSYOSHIFUJI Hideaki 
1082299d9939SYOSHIFUJI Hideaki 	return rt;
1083299d9939SYOSHIFUJI Hideaki }
1084299d9939SYOSHIFUJI Hideaki 
1085d52d3997SMartin KaFai Lau static struct rt6_info *ip6_rt_pcpu_alloc(struct rt6_info *rt)
1086d52d3997SMartin KaFai Lau {
10874832c30dSDavid Ahern 	struct net_device *dev;
1088d52d3997SMartin KaFai Lau 	struct rt6_info *pcpu_rt;
1089d52d3997SMartin KaFai Lau 
10904832c30dSDavid Ahern 	rcu_read_lock();
10914832c30dSDavid Ahern 	dev = ip6_rt_get_dev_rcu(rt);
10924832c30dSDavid Ahern 	pcpu_rt = __ip6_dst_alloc(dev_net(dev), dev, rt->dst.flags);
10934832c30dSDavid Ahern 	rcu_read_unlock();
1094d52d3997SMartin KaFai Lau 	if (!pcpu_rt)
1095d52d3997SMartin KaFai Lau 		return NULL;
1096d52d3997SMartin KaFai Lau 	ip6_rt_copy_init(pcpu_rt, rt);
1097d52d3997SMartin KaFai Lau 	pcpu_rt->rt6i_protocol = rt->rt6i_protocol;
1098d52d3997SMartin KaFai Lau 	pcpu_rt->rt6i_flags |= RTF_PCPU;
1099d52d3997SMartin KaFai Lau 	return pcpu_rt;
1100d52d3997SMartin KaFai Lau }
1101d52d3997SMartin KaFai Lau 
110266f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */
1103d52d3997SMartin KaFai Lau static struct rt6_info *rt6_get_pcpu_route(struct rt6_info *rt)
1104d52d3997SMartin KaFai Lau {
1105a73e4195SMartin KaFai Lau 	struct rt6_info *pcpu_rt, **p;
1106d52d3997SMartin KaFai Lau 
1107d52d3997SMartin KaFai Lau 	p = this_cpu_ptr(rt->rt6i_pcpu);
1108d52d3997SMartin KaFai Lau 	pcpu_rt = *p;
1109d52d3997SMartin KaFai Lau 
1110d3843fe5SWei Wang 	if (pcpu_rt && ip6_hold_safe(NULL, &pcpu_rt, false))
1111a73e4195SMartin KaFai Lau 		rt6_dst_from_metrics_check(pcpu_rt);
1112d3843fe5SWei Wang 
1113a73e4195SMartin KaFai Lau 	return pcpu_rt;
1114a73e4195SMartin KaFai Lau }
1115a73e4195SMartin KaFai Lau 
1116a73e4195SMartin KaFai Lau static struct rt6_info *rt6_make_pcpu_route(struct rt6_info *rt)
1117a73e4195SMartin KaFai Lau {
1118a73e4195SMartin KaFai Lau 	struct rt6_info *pcpu_rt, *prev, **p;
1119d52d3997SMartin KaFai Lau 
1120d52d3997SMartin KaFai Lau 	pcpu_rt = ip6_rt_pcpu_alloc(rt);
1121d52d3997SMartin KaFai Lau 	if (!pcpu_rt) {
1122d52d3997SMartin KaFai Lau 		struct net *net = dev_net(rt->dst.dev);
1123d52d3997SMartin KaFai Lau 
11249c7370a1SMartin KaFai Lau 		dst_hold(&net->ipv6.ip6_null_entry->dst);
11259c7370a1SMartin KaFai Lau 		return net->ipv6.ip6_null_entry;
1126d52d3997SMartin KaFai Lau 	}
1127d52d3997SMartin KaFai Lau 
1128a94b9367SWei Wang 	dst_hold(&pcpu_rt->dst);
1129a73e4195SMartin KaFai Lau 	p = this_cpu_ptr(rt->rt6i_pcpu);
1130d52d3997SMartin KaFai Lau 	prev = cmpxchg(p, NULL, pcpu_rt);
1131951f788aSEric Dumazet 	BUG_ON(prev);
1132a94b9367SWei Wang 
1133d52d3997SMartin KaFai Lau 	rt6_dst_from_metrics_check(pcpu_rt);
1134d52d3997SMartin KaFai Lau 	return pcpu_rt;
1135d52d3997SMartin KaFai Lau }
1136d52d3997SMartin KaFai Lau 
113735732d01SWei Wang /* exception hash table implementation
113835732d01SWei Wang  */
113935732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock);
114035732d01SWei Wang 
114135732d01SWei Wang /* Remove rt6_ex from hash table and free the memory
114235732d01SWei Wang  * Caller must hold rt6_exception_lock
114335732d01SWei Wang  */
114435732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
114535732d01SWei Wang 				 struct rt6_exception *rt6_ex)
114635732d01SWei Wang {
1147b2427e67SColin Ian King 	struct net *net;
114881eb8447SWei Wang 
114935732d01SWei Wang 	if (!bucket || !rt6_ex)
115035732d01SWei Wang 		return;
1151b2427e67SColin Ian King 
1152b2427e67SColin Ian King 	net = dev_net(rt6_ex->rt6i->dst.dev);
115335732d01SWei Wang 	rt6_ex->rt6i->rt6i_node = NULL;
115435732d01SWei Wang 	hlist_del_rcu(&rt6_ex->hlist);
115535732d01SWei Wang 	rt6_release(rt6_ex->rt6i);
115635732d01SWei Wang 	kfree_rcu(rt6_ex, rcu);
115735732d01SWei Wang 	WARN_ON_ONCE(!bucket->depth);
115835732d01SWei Wang 	bucket->depth--;
115981eb8447SWei Wang 	net->ipv6.rt6_stats->fib_rt_cache--;
116035732d01SWei Wang }
116135732d01SWei Wang 
116235732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory
116335732d01SWei Wang  * Caller must hold rt6_exception_lock
116435732d01SWei Wang  */
116535732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
116635732d01SWei Wang {
116735732d01SWei Wang 	struct rt6_exception *rt6_ex, *oldest = NULL;
116835732d01SWei Wang 
116935732d01SWei Wang 	if (!bucket)
117035732d01SWei Wang 		return;
117135732d01SWei Wang 
117235732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
117335732d01SWei Wang 		if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
117435732d01SWei Wang 			oldest = rt6_ex;
117535732d01SWei Wang 	}
117635732d01SWei Wang 	rt6_remove_exception(bucket, oldest);
117735732d01SWei Wang }
117835732d01SWei Wang 
117935732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst,
118035732d01SWei Wang 			      const struct in6_addr *src)
118135732d01SWei Wang {
118235732d01SWei Wang 	static u32 seed __read_mostly;
118335732d01SWei Wang 	u32 val;
118435732d01SWei Wang 
118535732d01SWei Wang 	net_get_random_once(&seed, sizeof(seed));
118635732d01SWei Wang 	val = jhash(dst, sizeof(*dst), seed);
118735732d01SWei Wang 
118835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
118935732d01SWei Wang 	if (src)
119035732d01SWei Wang 		val = jhash(src, sizeof(*src), val);
119135732d01SWei Wang #endif
119235732d01SWei Wang 	return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
119335732d01SWei Wang }
119435732d01SWei Wang 
119535732d01SWei Wang /* Helper function to find the cached rt in the hash table
119635732d01SWei Wang  * and update bucket pointer to point to the bucket for this
119735732d01SWei Wang  * (daddr, saddr) pair
119835732d01SWei Wang  * Caller must hold rt6_exception_lock
119935732d01SWei Wang  */
120035732d01SWei Wang static struct rt6_exception *
120135732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
120235732d01SWei Wang 			      const struct in6_addr *daddr,
120335732d01SWei Wang 			      const struct in6_addr *saddr)
120435732d01SWei Wang {
120535732d01SWei Wang 	struct rt6_exception *rt6_ex;
120635732d01SWei Wang 	u32 hval;
120735732d01SWei Wang 
120835732d01SWei Wang 	if (!(*bucket) || !daddr)
120935732d01SWei Wang 		return NULL;
121035732d01SWei Wang 
121135732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
121235732d01SWei Wang 	*bucket += hval;
121335732d01SWei Wang 
121435732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
121535732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
121635732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
121735732d01SWei Wang 
121835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
121935732d01SWei Wang 		if (matched && saddr)
122035732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
122135732d01SWei Wang #endif
122235732d01SWei Wang 		if (matched)
122335732d01SWei Wang 			return rt6_ex;
122435732d01SWei Wang 	}
122535732d01SWei Wang 	return NULL;
122635732d01SWei Wang }
122735732d01SWei Wang 
122835732d01SWei Wang /* Helper function to find the cached rt in the hash table
122935732d01SWei Wang  * and update bucket pointer to point to the bucket for this
123035732d01SWei Wang  * (daddr, saddr) pair
123135732d01SWei Wang  * Caller must hold rcu_read_lock()
123235732d01SWei Wang  */
123335732d01SWei Wang static struct rt6_exception *
123435732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
123535732d01SWei Wang 			 const struct in6_addr *daddr,
123635732d01SWei Wang 			 const struct in6_addr *saddr)
123735732d01SWei Wang {
123835732d01SWei Wang 	struct rt6_exception *rt6_ex;
123935732d01SWei Wang 	u32 hval;
124035732d01SWei Wang 
124135732d01SWei Wang 	WARN_ON_ONCE(!rcu_read_lock_held());
124235732d01SWei Wang 
124335732d01SWei Wang 	if (!(*bucket) || !daddr)
124435732d01SWei Wang 		return NULL;
124535732d01SWei Wang 
124635732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
124735732d01SWei Wang 	*bucket += hval;
124835732d01SWei Wang 
124935732d01SWei Wang 	hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
125035732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
125135732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
125235732d01SWei Wang 
125335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
125435732d01SWei Wang 		if (matched && saddr)
125535732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
125635732d01SWei Wang #endif
125735732d01SWei Wang 		if (matched)
125835732d01SWei Wang 			return rt6_ex;
125935732d01SWei Wang 	}
126035732d01SWei Wang 	return NULL;
126135732d01SWei Wang }
126235732d01SWei Wang 
126335732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt,
126435732d01SWei Wang 				struct rt6_info *ort)
126535732d01SWei Wang {
126681eb8447SWei Wang 	struct net *net = dev_net(ort->dst.dev);
126735732d01SWei Wang 	struct rt6_exception_bucket *bucket;
126835732d01SWei Wang 	struct in6_addr *src_key = NULL;
126935732d01SWei Wang 	struct rt6_exception *rt6_ex;
127035732d01SWei Wang 	int err = 0;
127135732d01SWei Wang 
127235732d01SWei Wang 	/* ort can't be a cache or pcpu route */
127335732d01SWei Wang 	if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU))
12743a2232e9SDavid Miller 		ort = ort->from;
127535732d01SWei Wang 	WARN_ON_ONCE(ort->rt6i_flags & (RTF_CACHE | RTF_PCPU));
127635732d01SWei Wang 
127735732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
127835732d01SWei Wang 
127935732d01SWei Wang 	if (ort->exception_bucket_flushed) {
128035732d01SWei Wang 		err = -EINVAL;
128135732d01SWei Wang 		goto out;
128235732d01SWei Wang 	}
128335732d01SWei Wang 
128435732d01SWei Wang 	bucket = rcu_dereference_protected(ort->rt6i_exception_bucket,
128535732d01SWei Wang 					lockdep_is_held(&rt6_exception_lock));
128635732d01SWei Wang 	if (!bucket) {
128735732d01SWei Wang 		bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
128835732d01SWei Wang 				 GFP_ATOMIC);
128935732d01SWei Wang 		if (!bucket) {
129035732d01SWei Wang 			err = -ENOMEM;
129135732d01SWei Wang 			goto out;
129235732d01SWei Wang 		}
129335732d01SWei Wang 		rcu_assign_pointer(ort->rt6i_exception_bucket, bucket);
129435732d01SWei Wang 	}
129535732d01SWei Wang 
129635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
129735732d01SWei Wang 	/* rt6i_src.plen != 0 indicates ort is in subtree
129835732d01SWei Wang 	 * and exception table is indexed by a hash of
129935732d01SWei Wang 	 * both rt6i_dst and rt6i_src.
130035732d01SWei Wang 	 * Otherwise, the exception table is indexed by
130135732d01SWei Wang 	 * a hash of only rt6i_dst.
130235732d01SWei Wang 	 */
130335732d01SWei Wang 	if (ort->rt6i_src.plen)
130435732d01SWei Wang 		src_key = &nrt->rt6i_src.addr;
130535732d01SWei Wang #endif
130660006a48SWei Wang 
130760006a48SWei Wang 	/* Update rt6i_prefsrc as it could be changed
130860006a48SWei Wang 	 * in rt6_remove_prefsrc()
130960006a48SWei Wang 	 */
131060006a48SWei Wang 	nrt->rt6i_prefsrc = ort->rt6i_prefsrc;
1311f5bbe7eeSWei Wang 	/* rt6_mtu_change() might lower mtu on ort.
1312f5bbe7eeSWei Wang 	 * Only insert this exception route if its mtu
1313f5bbe7eeSWei Wang 	 * is less than ort's mtu value.
1314f5bbe7eeSWei Wang 	 */
1315f5bbe7eeSWei Wang 	if (nrt->rt6i_pmtu >= dst_mtu(&ort->dst)) {
1316f5bbe7eeSWei Wang 		err = -EINVAL;
1317f5bbe7eeSWei Wang 		goto out;
1318f5bbe7eeSWei Wang 	}
131960006a48SWei Wang 
132035732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
132135732d01SWei Wang 					       src_key);
132235732d01SWei Wang 	if (rt6_ex)
132335732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
132435732d01SWei Wang 
132535732d01SWei Wang 	rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
132635732d01SWei Wang 	if (!rt6_ex) {
132735732d01SWei Wang 		err = -ENOMEM;
132835732d01SWei Wang 		goto out;
132935732d01SWei Wang 	}
133035732d01SWei Wang 	rt6_ex->rt6i = nrt;
133135732d01SWei Wang 	rt6_ex->stamp = jiffies;
133235732d01SWei Wang 	atomic_inc(&nrt->rt6i_ref);
133335732d01SWei Wang 	nrt->rt6i_node = ort->rt6i_node;
133435732d01SWei Wang 	hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
133535732d01SWei Wang 	bucket->depth++;
133681eb8447SWei Wang 	net->ipv6.rt6_stats->fib_rt_cache++;
133735732d01SWei Wang 
133835732d01SWei Wang 	if (bucket->depth > FIB6_MAX_DEPTH)
133935732d01SWei Wang 		rt6_exception_remove_oldest(bucket);
134035732d01SWei Wang 
134135732d01SWei Wang out:
134235732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
134335732d01SWei Wang 
134435732d01SWei Wang 	/* Update fn->fn_sernum to invalidate all cached dst */
1345b886d5f2SPaolo Abeni 	if (!err) {
1346922c2ac8SIdo Schimmel 		spin_lock_bh(&ort->rt6i_table->tb6_lock);
134735732d01SWei Wang 		fib6_update_sernum(ort);
1348922c2ac8SIdo Schimmel 		spin_unlock_bh(&ort->rt6i_table->tb6_lock);
1349b886d5f2SPaolo Abeni 		fib6_force_start_gc(net);
1350b886d5f2SPaolo Abeni 	}
135135732d01SWei Wang 
135235732d01SWei Wang 	return err;
135335732d01SWei Wang }
135435732d01SWei Wang 
135535732d01SWei Wang void rt6_flush_exceptions(struct rt6_info *rt)
135635732d01SWei Wang {
135735732d01SWei Wang 	struct rt6_exception_bucket *bucket;
135835732d01SWei Wang 	struct rt6_exception *rt6_ex;
135935732d01SWei Wang 	struct hlist_node *tmp;
136035732d01SWei Wang 	int i;
136135732d01SWei Wang 
136235732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
136335732d01SWei Wang 	/* Prevent rt6_insert_exception() to recreate the bucket list */
136435732d01SWei Wang 	rt->exception_bucket_flushed = 1;
136535732d01SWei Wang 
136635732d01SWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
136735732d01SWei Wang 				    lockdep_is_held(&rt6_exception_lock));
136835732d01SWei Wang 	if (!bucket)
136935732d01SWei Wang 		goto out;
137035732d01SWei Wang 
137135732d01SWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
137235732d01SWei Wang 		hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist)
137335732d01SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
137435732d01SWei Wang 		WARN_ON_ONCE(bucket->depth);
137535732d01SWei Wang 		bucket++;
137635732d01SWei Wang 	}
137735732d01SWei Wang 
137835732d01SWei Wang out:
137935732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
138035732d01SWei Wang }
138135732d01SWei Wang 
138235732d01SWei Wang /* Find cached rt in the hash table inside passed in rt
138335732d01SWei Wang  * Caller has to hold rcu_read_lock()
138435732d01SWei Wang  */
138535732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt,
138635732d01SWei Wang 					   struct in6_addr *daddr,
138735732d01SWei Wang 					   struct in6_addr *saddr)
138835732d01SWei Wang {
138935732d01SWei Wang 	struct rt6_exception_bucket *bucket;
139035732d01SWei Wang 	struct in6_addr *src_key = NULL;
139135732d01SWei Wang 	struct rt6_exception *rt6_ex;
139235732d01SWei Wang 	struct rt6_info *res = NULL;
139335732d01SWei Wang 
139435732d01SWei Wang 	bucket = rcu_dereference(rt->rt6i_exception_bucket);
139535732d01SWei Wang 
139635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
139735732d01SWei Wang 	/* rt6i_src.plen != 0 indicates rt is in subtree
139835732d01SWei Wang 	 * and exception table is indexed by a hash of
139935732d01SWei Wang 	 * both rt6i_dst and rt6i_src.
140035732d01SWei Wang 	 * Otherwise, the exception table is indexed by
140135732d01SWei Wang 	 * a hash of only rt6i_dst.
140235732d01SWei Wang 	 */
140335732d01SWei Wang 	if (rt->rt6i_src.plen)
140435732d01SWei Wang 		src_key = saddr;
140535732d01SWei Wang #endif
140635732d01SWei Wang 	rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
140735732d01SWei Wang 
140835732d01SWei Wang 	if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
140935732d01SWei Wang 		res = rt6_ex->rt6i;
141035732d01SWei Wang 
141135732d01SWei Wang 	return res;
141235732d01SWei Wang }
141335732d01SWei Wang 
141435732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */
141535732d01SWei Wang int rt6_remove_exception_rt(struct rt6_info *rt)
141635732d01SWei Wang {
141735732d01SWei Wang 	struct rt6_exception_bucket *bucket;
14183a2232e9SDavid Miller 	struct rt6_info *from = rt->from;
141935732d01SWei Wang 	struct in6_addr *src_key = NULL;
142035732d01SWei Wang 	struct rt6_exception *rt6_ex;
142135732d01SWei Wang 	int err;
142235732d01SWei Wang 
142335732d01SWei Wang 	if (!from ||
1424442d713bSColin Ian King 	    !(rt->rt6i_flags & RTF_CACHE))
142535732d01SWei Wang 		return -EINVAL;
142635732d01SWei Wang 
142735732d01SWei Wang 	if (!rcu_access_pointer(from->rt6i_exception_bucket))
142835732d01SWei Wang 		return -ENOENT;
142935732d01SWei Wang 
143035732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
143135732d01SWei Wang 	bucket = rcu_dereference_protected(from->rt6i_exception_bucket,
143235732d01SWei Wang 				    lockdep_is_held(&rt6_exception_lock));
143335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
143435732d01SWei Wang 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
143535732d01SWei Wang 	 * and exception table is indexed by a hash of
143635732d01SWei Wang 	 * both rt6i_dst and rt6i_src.
143735732d01SWei Wang 	 * Otherwise, the exception table is indexed by
143835732d01SWei Wang 	 * a hash of only rt6i_dst.
143935732d01SWei Wang 	 */
144035732d01SWei Wang 	if (from->rt6i_src.plen)
144135732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
144235732d01SWei Wang #endif
144335732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket,
144435732d01SWei Wang 					       &rt->rt6i_dst.addr,
144535732d01SWei Wang 					       src_key);
144635732d01SWei Wang 	if (rt6_ex) {
144735732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
144835732d01SWei Wang 		err = 0;
144935732d01SWei Wang 	} else {
145035732d01SWei Wang 		err = -ENOENT;
145135732d01SWei Wang 	}
145235732d01SWei Wang 
145335732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
145435732d01SWei Wang 	return err;
145535732d01SWei Wang }
145635732d01SWei Wang 
145735732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and
145835732d01SWei Wang  * refresh its stamp
145935732d01SWei Wang  */
146035732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
146135732d01SWei Wang {
146235732d01SWei Wang 	struct rt6_exception_bucket *bucket;
14633a2232e9SDavid Miller 	struct rt6_info *from = rt->from;
146435732d01SWei Wang 	struct in6_addr *src_key = NULL;
146535732d01SWei Wang 	struct rt6_exception *rt6_ex;
146635732d01SWei Wang 
146735732d01SWei Wang 	if (!from ||
1468442d713bSColin Ian King 	    !(rt->rt6i_flags & RTF_CACHE))
146935732d01SWei Wang 		return;
147035732d01SWei Wang 
147135732d01SWei Wang 	rcu_read_lock();
147235732d01SWei Wang 	bucket = rcu_dereference(from->rt6i_exception_bucket);
147335732d01SWei Wang 
147435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
147535732d01SWei Wang 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
147635732d01SWei Wang 	 * and exception table is indexed by a hash of
147735732d01SWei Wang 	 * both rt6i_dst and rt6i_src.
147835732d01SWei Wang 	 * Otherwise, the exception table is indexed by
147935732d01SWei Wang 	 * a hash of only rt6i_dst.
148035732d01SWei Wang 	 */
148135732d01SWei Wang 	if (from->rt6i_src.plen)
148235732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
148335732d01SWei Wang #endif
148435732d01SWei Wang 	rt6_ex = __rt6_find_exception_rcu(&bucket,
148535732d01SWei Wang 					  &rt->rt6i_dst.addr,
148635732d01SWei Wang 					  src_key);
148735732d01SWei Wang 	if (rt6_ex)
148835732d01SWei Wang 		rt6_ex->stamp = jiffies;
148935732d01SWei Wang 
149035732d01SWei Wang 	rcu_read_unlock();
149135732d01SWei Wang }
149235732d01SWei Wang 
149360006a48SWei Wang static void rt6_exceptions_remove_prefsrc(struct rt6_info *rt)
149460006a48SWei Wang {
149560006a48SWei Wang 	struct rt6_exception_bucket *bucket;
149660006a48SWei Wang 	struct rt6_exception *rt6_ex;
149760006a48SWei Wang 	int i;
149860006a48SWei Wang 
149960006a48SWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
150060006a48SWei Wang 					lockdep_is_held(&rt6_exception_lock));
150160006a48SWei Wang 
150260006a48SWei Wang 	if (bucket) {
150360006a48SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
150460006a48SWei Wang 			hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
150560006a48SWei Wang 				rt6_ex->rt6i->rt6i_prefsrc.plen = 0;
150660006a48SWei Wang 			}
150760006a48SWei Wang 			bucket++;
150860006a48SWei Wang 		}
150960006a48SWei Wang 	}
151060006a48SWei Wang }
151160006a48SWei Wang 
1512e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1513e9fa1495SStefano Brivio 					 struct rt6_info *rt, int mtu)
1514e9fa1495SStefano Brivio {
1515e9fa1495SStefano Brivio 	/* If the new MTU is lower than the route PMTU, this new MTU will be the
1516e9fa1495SStefano Brivio 	 * lowest MTU in the path: always allow updating the route PMTU to
1517e9fa1495SStefano Brivio 	 * reflect PMTU decreases.
1518e9fa1495SStefano Brivio 	 *
1519e9fa1495SStefano Brivio 	 * If the new MTU is higher, and the route PMTU is equal to the local
1520e9fa1495SStefano Brivio 	 * MTU, this means the old MTU is the lowest in the path, so allow
1521e9fa1495SStefano Brivio 	 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1522e9fa1495SStefano Brivio 	 * handle this.
1523e9fa1495SStefano Brivio 	 */
1524e9fa1495SStefano Brivio 
1525e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) >= mtu)
1526e9fa1495SStefano Brivio 		return true;
1527e9fa1495SStefano Brivio 
1528e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1529e9fa1495SStefano Brivio 		return true;
1530e9fa1495SStefano Brivio 
1531e9fa1495SStefano Brivio 	return false;
1532e9fa1495SStefano Brivio }
1533e9fa1495SStefano Brivio 
1534e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
1535e9fa1495SStefano Brivio 				       struct rt6_info *rt, int mtu)
1536f5bbe7eeSWei Wang {
1537f5bbe7eeSWei Wang 	struct rt6_exception_bucket *bucket;
1538f5bbe7eeSWei Wang 	struct rt6_exception *rt6_ex;
1539f5bbe7eeSWei Wang 	int i;
1540f5bbe7eeSWei Wang 
1541f5bbe7eeSWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1542f5bbe7eeSWei Wang 					lockdep_is_held(&rt6_exception_lock));
1543f5bbe7eeSWei Wang 
1544e9fa1495SStefano Brivio 	if (!bucket)
1545e9fa1495SStefano Brivio 		return;
1546e9fa1495SStefano Brivio 
1547f5bbe7eeSWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1548f5bbe7eeSWei Wang 		hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1549f5bbe7eeSWei Wang 			struct rt6_info *entry = rt6_ex->rt6i;
1550e9fa1495SStefano Brivio 
1551e9fa1495SStefano Brivio 			/* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
1552e9fa1495SStefano Brivio 			 * route), the metrics of its rt->dst.from have already
1553f5bbe7eeSWei Wang 			 * been updated.
1554f5bbe7eeSWei Wang 			 */
1555e9fa1495SStefano Brivio 			if (entry->rt6i_pmtu &&
1556e9fa1495SStefano Brivio 			    rt6_mtu_change_route_allowed(idev, entry, mtu))
1557f5bbe7eeSWei Wang 				entry->rt6i_pmtu = mtu;
1558f5bbe7eeSWei Wang 		}
1559f5bbe7eeSWei Wang 		bucket++;
1560f5bbe7eeSWei Wang 	}
1561f5bbe7eeSWei Wang }
1562f5bbe7eeSWei Wang 
1563b16cb459SWei Wang #define RTF_CACHE_GATEWAY	(RTF_GATEWAY | RTF_CACHE)
1564b16cb459SWei Wang 
1565b16cb459SWei Wang static void rt6_exceptions_clean_tohost(struct rt6_info *rt,
1566b16cb459SWei Wang 					struct in6_addr *gateway)
1567b16cb459SWei Wang {
1568b16cb459SWei Wang 	struct rt6_exception_bucket *bucket;
1569b16cb459SWei Wang 	struct rt6_exception *rt6_ex;
1570b16cb459SWei Wang 	struct hlist_node *tmp;
1571b16cb459SWei Wang 	int i;
1572b16cb459SWei Wang 
1573b16cb459SWei Wang 	if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1574b16cb459SWei Wang 		return;
1575b16cb459SWei Wang 
1576b16cb459SWei Wang 	spin_lock_bh(&rt6_exception_lock);
1577b16cb459SWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1578b16cb459SWei Wang 				     lockdep_is_held(&rt6_exception_lock));
1579b16cb459SWei Wang 
1580b16cb459SWei Wang 	if (bucket) {
1581b16cb459SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1582b16cb459SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
1583b16cb459SWei Wang 						  &bucket->chain, hlist) {
1584b16cb459SWei Wang 				struct rt6_info *entry = rt6_ex->rt6i;
1585b16cb459SWei Wang 
1586b16cb459SWei Wang 				if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
1587b16cb459SWei Wang 				    RTF_CACHE_GATEWAY &&
1588b16cb459SWei Wang 				    ipv6_addr_equal(gateway,
1589b16cb459SWei Wang 						    &entry->rt6i_gateway)) {
1590b16cb459SWei Wang 					rt6_remove_exception(bucket, rt6_ex);
1591b16cb459SWei Wang 				}
1592b16cb459SWei Wang 			}
1593b16cb459SWei Wang 			bucket++;
1594b16cb459SWei Wang 		}
1595b16cb459SWei Wang 	}
1596b16cb459SWei Wang 
1597b16cb459SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
1598b16cb459SWei Wang }
1599b16cb459SWei Wang 
1600c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
1601c757faa8SWei Wang 				      struct rt6_exception *rt6_ex,
1602c757faa8SWei Wang 				      struct fib6_gc_args *gc_args,
1603c757faa8SWei Wang 				      unsigned long now)
1604c757faa8SWei Wang {
1605c757faa8SWei Wang 	struct rt6_info *rt = rt6_ex->rt6i;
1606c757faa8SWei Wang 
16071859bac0SPaolo Abeni 	/* we are pruning and obsoleting aged-out and non gateway exceptions
16081859bac0SPaolo Abeni 	 * even if others have still references to them, so that on next
16091859bac0SPaolo Abeni 	 * dst_check() such references can be dropped.
16101859bac0SPaolo Abeni 	 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
16111859bac0SPaolo Abeni 	 * expired, independently from their aging, as per RFC 8201 section 4
16121859bac0SPaolo Abeni 	 */
161331afeb42SWei Wang 	if (!(rt->rt6i_flags & RTF_EXPIRES)) {
161431afeb42SWei Wang 		if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
1615c757faa8SWei Wang 			RT6_TRACE("aging clone %p\n", rt);
1616c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
1617c757faa8SWei Wang 			return;
161831afeb42SWei Wang 		}
161931afeb42SWei Wang 	} else if (time_after(jiffies, rt->dst.expires)) {
162031afeb42SWei Wang 		RT6_TRACE("purging expired route %p\n", rt);
162131afeb42SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
162231afeb42SWei Wang 		return;
162331afeb42SWei Wang 	}
162431afeb42SWei Wang 
162531afeb42SWei Wang 	if (rt->rt6i_flags & RTF_GATEWAY) {
1626c757faa8SWei Wang 		struct neighbour *neigh;
1627c757faa8SWei Wang 		__u8 neigh_flags = 0;
1628c757faa8SWei Wang 
1629*1bfa26ffSEric Dumazet 		neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
1630*1bfa26ffSEric Dumazet 		if (neigh)
1631c757faa8SWei Wang 			neigh_flags = neigh->flags;
1632*1bfa26ffSEric Dumazet 
1633c757faa8SWei Wang 		if (!(neigh_flags & NTF_ROUTER)) {
1634c757faa8SWei Wang 			RT6_TRACE("purging route %p via non-router but gateway\n",
1635c757faa8SWei Wang 				  rt);
1636c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
1637c757faa8SWei Wang 			return;
1638c757faa8SWei Wang 		}
1639c757faa8SWei Wang 	}
164031afeb42SWei Wang 
1641c757faa8SWei Wang 	gc_args->more++;
1642c757faa8SWei Wang }
1643c757faa8SWei Wang 
1644c757faa8SWei Wang void rt6_age_exceptions(struct rt6_info *rt,
1645c757faa8SWei Wang 			struct fib6_gc_args *gc_args,
1646c757faa8SWei Wang 			unsigned long now)
1647c757faa8SWei Wang {
1648c757faa8SWei Wang 	struct rt6_exception_bucket *bucket;
1649c757faa8SWei Wang 	struct rt6_exception *rt6_ex;
1650c757faa8SWei Wang 	struct hlist_node *tmp;
1651c757faa8SWei Wang 	int i;
1652c757faa8SWei Wang 
1653c757faa8SWei Wang 	if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1654c757faa8SWei Wang 		return;
1655c757faa8SWei Wang 
1656*1bfa26ffSEric Dumazet 	rcu_read_lock_bh();
1657*1bfa26ffSEric Dumazet 	spin_lock(&rt6_exception_lock);
1658c757faa8SWei Wang 	bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1659c757faa8SWei Wang 				    lockdep_is_held(&rt6_exception_lock));
1660c757faa8SWei Wang 
1661c757faa8SWei Wang 	if (bucket) {
1662c757faa8SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1663c757faa8SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
1664c757faa8SWei Wang 						  &bucket->chain, hlist) {
1665c757faa8SWei Wang 				rt6_age_examine_exception(bucket, rt6_ex,
1666c757faa8SWei Wang 							  gc_args, now);
1667c757faa8SWei Wang 			}
1668c757faa8SWei Wang 			bucket++;
1669c757faa8SWei Wang 		}
1670c757faa8SWei Wang 	}
1671*1bfa26ffSEric Dumazet 	spin_unlock(&rt6_exception_lock);
1672*1bfa26ffSEric Dumazet 	rcu_read_unlock_bh();
1673c757faa8SWei Wang }
1674c757faa8SWei Wang 
16759ff74384SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
16769ff74384SDavid Ahern 			       int oif, struct flowi6 *fl6, int flags)
16771da177e4SLinus Torvalds {
1678367efcb9SMartin KaFai Lau 	struct fib6_node *fn, *saved_fn;
16792b760fcfSWei Wang 	struct rt6_info *rt, *rt_cache;
1680c71099acSThomas Graf 	int strict = 0;
16811da177e4SLinus Torvalds 
168277d16f45SYOSHIFUJI Hideaki 	strict |= flags & RT6_LOOKUP_F_IFACE;
1683d5d32e4bSDavid Ahern 	strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
1684367efcb9SMartin KaFai Lau 	if (net->ipv6.devconf_all->forwarding == 0)
1685367efcb9SMartin KaFai Lau 		strict |= RT6_LOOKUP_F_REACHABLE;
16861da177e4SLinus Torvalds 
168766f5d6ceSWei Wang 	rcu_read_lock();
16881da177e4SLinus Torvalds 
16894c9483b2SDavid S. Miller 	fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
1690367efcb9SMartin KaFai Lau 	saved_fn = fn;
16911da177e4SLinus Torvalds 
1692ca254490SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1693ca254490SDavid Ahern 		oif = 0;
1694ca254490SDavid Ahern 
1695a3c00e46SMartin KaFai Lau redo_rt6_select:
16968d1040e8SWei Wang 	rt = rt6_select(net, fn, oif, strict);
169752bd4c0cSNicolas Dichtel 	if (rt->rt6i_nsiblings)
1698367efcb9SMartin KaFai Lau 		rt = rt6_multipath_select(rt, fl6, oif, strict);
1699a3c00e46SMartin KaFai Lau 	if (rt == net->ipv6.ip6_null_entry) {
1700a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
1701a3c00e46SMartin KaFai Lau 		if (fn)
1702a3c00e46SMartin KaFai Lau 			goto redo_rt6_select;
1703367efcb9SMartin KaFai Lau 		else if (strict & RT6_LOOKUP_F_REACHABLE) {
1704367efcb9SMartin KaFai Lau 			/* also consider unreachable route */
1705367efcb9SMartin KaFai Lau 			strict &= ~RT6_LOOKUP_F_REACHABLE;
1706367efcb9SMartin KaFai Lau 			fn = saved_fn;
1707367efcb9SMartin KaFai Lau 			goto redo_rt6_select;
1708367efcb9SMartin KaFai Lau 		}
1709a3c00e46SMartin KaFai Lau 	}
1710a3c00e46SMartin KaFai Lau 
17112b760fcfSWei Wang 	/*Search through exception table */
17122b760fcfSWei Wang 	rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr);
17132b760fcfSWei Wang 	if (rt_cache)
17142b760fcfSWei Wang 		rt = rt_cache;
1715d52d3997SMartin KaFai Lau 
1716d3843fe5SWei Wang 	if (rt == net->ipv6.ip6_null_entry) {
171766f5d6ceSWei Wang 		rcu_read_unlock();
1718d3843fe5SWei Wang 		dst_hold(&rt->dst);
1719b65f164dSPaolo Abeni 		trace_fib6_table_lookup(net, rt, table, fl6);
1720d3843fe5SWei Wang 		return rt;
1721d3843fe5SWei Wang 	} else if (rt->rt6i_flags & RTF_CACHE) {
1722d3843fe5SWei Wang 		if (ip6_hold_safe(net, &rt, true)) {
1723d3843fe5SWei Wang 			dst_use_noref(&rt->dst, jiffies);
1724d52d3997SMartin KaFai Lau 			rt6_dst_from_metrics_check(rt);
1725d3843fe5SWei Wang 		}
172666f5d6ceSWei Wang 		rcu_read_unlock();
1727b65f164dSPaolo Abeni 		trace_fib6_table_lookup(net, rt, table, fl6);
1728d52d3997SMartin KaFai Lau 		return rt;
17293da59bd9SMartin KaFai Lau 	} else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
17303da59bd9SMartin KaFai Lau 			    !(rt->rt6i_flags & RTF_GATEWAY))) {
17313da59bd9SMartin KaFai Lau 		/* Create a RTF_CACHE clone which will not be
17323da59bd9SMartin KaFai Lau 		 * owned by the fib6 tree.  It is for the special case where
17333da59bd9SMartin KaFai Lau 		 * the daddr in the skb during the neighbor look-up is different
17343da59bd9SMartin KaFai Lau 		 * from the fl6->daddr used to look-up route here.
17353da59bd9SMartin KaFai Lau 		 */
1736c71099acSThomas Graf 
17373da59bd9SMartin KaFai Lau 		struct rt6_info *uncached_rt;
17383da59bd9SMartin KaFai Lau 
1739d3843fe5SWei Wang 		if (ip6_hold_safe(net, &rt, true)) {
1740d3843fe5SWei Wang 			dst_use_noref(&rt->dst, jiffies);
1741d3843fe5SWei Wang 		} else {
174266f5d6ceSWei Wang 			rcu_read_unlock();
1743d3843fe5SWei Wang 			uncached_rt = rt;
1744d3843fe5SWei Wang 			goto uncached_rt_out;
1745d3843fe5SWei Wang 		}
174666f5d6ceSWei Wang 		rcu_read_unlock();
1747d52d3997SMartin KaFai Lau 
17483da59bd9SMartin KaFai Lau 		uncached_rt = ip6_rt_cache_alloc(rt, &fl6->daddr, NULL);
17493da59bd9SMartin KaFai Lau 		dst_release(&rt->dst);
17503da59bd9SMartin KaFai Lau 
17511cfb71eeSWei Wang 		if (uncached_rt) {
17521cfb71eeSWei Wang 			/* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc()
17531cfb71eeSWei Wang 			 * No need for another dst_hold()
17541cfb71eeSWei Wang 			 */
17558d0b94afSMartin KaFai Lau 			rt6_uncached_list_add(uncached_rt);
175681eb8447SWei Wang 			atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
17571cfb71eeSWei Wang 		} else {
17583da59bd9SMartin KaFai Lau 			uncached_rt = net->ipv6.ip6_null_entry;
17593da59bd9SMartin KaFai Lau 			dst_hold(&uncached_rt->dst);
17601cfb71eeSWei Wang 		}
1761b811580dSDavid Ahern 
1762d3843fe5SWei Wang uncached_rt_out:
1763b65f164dSPaolo Abeni 		trace_fib6_table_lookup(net, uncached_rt, table, fl6);
17643da59bd9SMartin KaFai Lau 		return uncached_rt;
17653da59bd9SMartin KaFai Lau 
1766d52d3997SMartin KaFai Lau 	} else {
1767d52d3997SMartin KaFai Lau 		/* Get a percpu copy */
1768d52d3997SMartin KaFai Lau 
1769d52d3997SMartin KaFai Lau 		struct rt6_info *pcpu_rt;
1770d52d3997SMartin KaFai Lau 
1771d3843fe5SWei Wang 		dst_use_noref(&rt->dst, jiffies);
1772951f788aSEric Dumazet 		local_bh_disable();
1773d52d3997SMartin KaFai Lau 		pcpu_rt = rt6_get_pcpu_route(rt);
1774d52d3997SMartin KaFai Lau 
1775951f788aSEric Dumazet 		if (!pcpu_rt) {
1776a94b9367SWei Wang 			/* atomic_inc_not_zero() is needed when using rcu */
1777a94b9367SWei Wang 			if (atomic_inc_not_zero(&rt->rt6i_ref)) {
1778951f788aSEric Dumazet 				/* No dst_hold() on rt is needed because grabbing
1779a94b9367SWei Wang 				 * rt->rt6i_ref makes sure rt can't be released.
17809c7370a1SMartin KaFai Lau 				 */
17819c7370a1SMartin KaFai Lau 				pcpu_rt = rt6_make_pcpu_route(rt);
1782a94b9367SWei Wang 				rt6_release(rt);
1783a94b9367SWei Wang 			} else {
1784a94b9367SWei Wang 				/* rt is already removed from tree */
1785a94b9367SWei Wang 				pcpu_rt = net->ipv6.ip6_null_entry;
1786a94b9367SWei Wang 				dst_hold(&pcpu_rt->dst);
1787a94b9367SWei Wang 			}
17889c7370a1SMartin KaFai Lau 		}
1789951f788aSEric Dumazet 		local_bh_enable();
1790951f788aSEric Dumazet 		rcu_read_unlock();
1791b65f164dSPaolo Abeni 		trace_fib6_table_lookup(net, pcpu_rt, table, fl6);
1792d52d3997SMartin KaFai Lau 		return pcpu_rt;
1793d52d3997SMartin KaFai Lau 	}
1794c71099acSThomas Graf }
17959ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route);
1796c71099acSThomas Graf 
17978ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_input(struct net *net, struct fib6_table *table,
17984c9483b2SDavid S. Miller 					    struct flowi6 *fl6, int flags)
17994acad72dSPavel Emelyanov {
18004c9483b2SDavid S. Miller 	return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, flags);
18014acad72dSPavel Emelyanov }
18024acad72dSPavel Emelyanov 
1803d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net,
180472331bc0SShmulik Ladkani 					 struct net_device *dev,
180572331bc0SShmulik Ladkani 					 struct flowi6 *fl6, int flags)
180672331bc0SShmulik Ladkani {
180772331bc0SShmulik Ladkani 	if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
180872331bc0SShmulik Ladkani 		flags |= RT6_LOOKUP_F_IFACE;
180972331bc0SShmulik Ladkani 
181072331bc0SShmulik Ladkani 	return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_input);
181172331bc0SShmulik Ladkani }
1812d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
181372331bc0SShmulik Ladkani 
181423aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb,
181523aebdacSJakub Sitnicki 				  struct flow_keys *keys)
181623aebdacSJakub Sitnicki {
181723aebdacSJakub Sitnicki 	const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
181823aebdacSJakub Sitnicki 	const struct ipv6hdr *key_iph = outer_iph;
181923aebdacSJakub Sitnicki 	const struct ipv6hdr *inner_iph;
182023aebdacSJakub Sitnicki 	const struct icmp6hdr *icmph;
182123aebdacSJakub Sitnicki 	struct ipv6hdr _inner_iph;
182223aebdacSJakub Sitnicki 
182323aebdacSJakub Sitnicki 	if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
182423aebdacSJakub Sitnicki 		goto out;
182523aebdacSJakub Sitnicki 
182623aebdacSJakub Sitnicki 	icmph = icmp6_hdr(skb);
182723aebdacSJakub Sitnicki 	if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
182823aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
182923aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
183023aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PARAMPROB)
183123aebdacSJakub Sitnicki 		goto out;
183223aebdacSJakub Sitnicki 
183323aebdacSJakub Sitnicki 	inner_iph = skb_header_pointer(skb,
183423aebdacSJakub Sitnicki 				       skb_transport_offset(skb) + sizeof(*icmph),
183523aebdacSJakub Sitnicki 				       sizeof(_inner_iph), &_inner_iph);
183623aebdacSJakub Sitnicki 	if (!inner_iph)
183723aebdacSJakub Sitnicki 		goto out;
183823aebdacSJakub Sitnicki 
183923aebdacSJakub Sitnicki 	key_iph = inner_iph;
184023aebdacSJakub Sitnicki out:
184123aebdacSJakub Sitnicki 	memset(keys, 0, sizeof(*keys));
184223aebdacSJakub Sitnicki 	keys->control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
184323aebdacSJakub Sitnicki 	keys->addrs.v6addrs.src = key_iph->saddr;
184423aebdacSJakub Sitnicki 	keys->addrs.v6addrs.dst = key_iph->daddr;
184523aebdacSJakub Sitnicki 	keys->tags.flow_label = ip6_flowinfo(key_iph);
184623aebdacSJakub Sitnicki 	keys->basic.ip_proto = key_iph->nexthdr;
184723aebdacSJakub Sitnicki }
184823aebdacSJakub Sitnicki 
184923aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */
185023aebdacSJakub Sitnicki u32 rt6_multipath_hash(const struct flowi6 *fl6, const struct sk_buff *skb)
185123aebdacSJakub Sitnicki {
185223aebdacSJakub Sitnicki 	struct flow_keys hash_keys;
185323aebdacSJakub Sitnicki 
185423aebdacSJakub Sitnicki 	if (skb) {
185523aebdacSJakub Sitnicki 		ip6_multipath_l3_keys(skb, &hash_keys);
18567696c06aSIdo Schimmel 		return flow_hash_from_keys(&hash_keys) >> 1;
185723aebdacSJakub Sitnicki 	}
185823aebdacSJakub Sitnicki 
18597696c06aSIdo Schimmel 	return get_hash_from_flowi6(fl6) >> 1;
186023aebdacSJakub Sitnicki }
186123aebdacSJakub Sitnicki 
1862c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb)
1863c71099acSThomas Graf {
1864b71d1d42SEric Dumazet 	const struct ipv6hdr *iph = ipv6_hdr(skb);
1865c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(skb->dev);
1866adaa70bbSThomas Graf 	int flags = RT6_LOOKUP_F_HAS_SADDR;
1867904af04dSJiri Benc 	struct ip_tunnel_info *tun_info;
18684c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
1869e0d56fddSDavid Ahern 		.flowi6_iif = skb->dev->ifindex,
18704c9483b2SDavid S. Miller 		.daddr = iph->daddr,
18714c9483b2SDavid S. Miller 		.saddr = iph->saddr,
18726502ca52SYOSHIFUJI Hideaki / 吉藤英明 		.flowlabel = ip6_flowinfo(iph),
18734c9483b2SDavid S. Miller 		.flowi6_mark = skb->mark,
18744c9483b2SDavid S. Miller 		.flowi6_proto = iph->nexthdr,
1875c71099acSThomas Graf 	};
1876adaa70bbSThomas Graf 
1877904af04dSJiri Benc 	tun_info = skb_tunnel_info(skb);
187846fa062aSJiri Benc 	if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
1879904af04dSJiri Benc 		fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
188023aebdacSJakub Sitnicki 	if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
188123aebdacSJakub Sitnicki 		fl6.mp_hash = rt6_multipath_hash(&fl6, skb);
188206e9d040SJiri Benc 	skb_dst_drop(skb);
188372331bc0SShmulik Ladkani 	skb_dst_set(skb, ip6_route_input_lookup(net, skb->dev, &fl6, flags));
1884c71099acSThomas Graf }
1885c71099acSThomas Graf 
18868ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_output(struct net *net, struct fib6_table *table,
18874c9483b2SDavid S. Miller 					     struct flowi6 *fl6, int flags)
1888c71099acSThomas Graf {
18894c9483b2SDavid S. Miller 	return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, flags);
1890c71099acSThomas Graf }
1891c71099acSThomas Graf 
18926f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk,
18936f21c96aSPaolo Abeni 					 struct flowi6 *fl6, int flags)
1894c71099acSThomas Graf {
1895d46a9d67SDavid Ahern 	bool any_src;
1896c71099acSThomas Graf 
18974c1feac5SDavid Ahern 	if (rt6_need_strict(&fl6->daddr)) {
18984c1feac5SDavid Ahern 		struct dst_entry *dst;
18994c1feac5SDavid Ahern 
19004c1feac5SDavid Ahern 		dst = l3mdev_link_scope_lookup(net, fl6);
1901ca254490SDavid Ahern 		if (dst)
1902ca254490SDavid Ahern 			return dst;
19034c1feac5SDavid Ahern 	}
1904ca254490SDavid Ahern 
19051fb9489bSPavel Emelyanov 	fl6->flowi6_iif = LOOPBACK_IFINDEX;
19064dc27d1cSDavid McCullough 
1907d46a9d67SDavid Ahern 	any_src = ipv6_addr_any(&fl6->saddr);
1908741a11d9SDavid Ahern 	if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
1909d46a9d67SDavid Ahern 	    (fl6->flowi6_oif && any_src))
191077d16f45SYOSHIFUJI Hideaki 		flags |= RT6_LOOKUP_F_IFACE;
1911c71099acSThomas Graf 
1912d46a9d67SDavid Ahern 	if (!any_src)
1913adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
19140c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 	else if (sk)
19150c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 		flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
1916adaa70bbSThomas Graf 
19174c9483b2SDavid S. Miller 	return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_output);
19181da177e4SLinus Torvalds }
19196f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags);
19201da177e4SLinus Torvalds 
19212774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
192214e50e57SDavid S. Miller {
19235c1e6aa3SDavid S. Miller 	struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
19241dbe3252SWei Wang 	struct net_device *loopback_dev = net->loopback_dev;
192514e50e57SDavid S. Miller 	struct dst_entry *new = NULL;
192614e50e57SDavid S. Miller 
19271dbe3252SWei Wang 	rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
192862cf27e5SSteffen Klassert 		       DST_OBSOLETE_DEAD, 0);
192914e50e57SDavid S. Miller 	if (rt) {
19300a1f5962SMartin KaFai Lau 		rt6_info_init(rt);
193181eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
19320a1f5962SMartin KaFai Lau 
1933d8d1f30bSChangli Gao 		new = &rt->dst;
193414e50e57SDavid S. Miller 		new->__use = 1;
1935352e512cSHerbert Xu 		new->input = dst_discard;
1936ede2059dSEric W. Biederman 		new->output = dst_discard_out;
193714e50e57SDavid S. Miller 
1938defb3519SDavid S. Miller 		dst_copy_metrics(new, &ort->dst);
193914e50e57SDavid S. Miller 
19401dbe3252SWei Wang 		rt->rt6i_idev = in6_dev_get(loopback_dev);
19414e3fd7a0SAlexey Dobriyan 		rt->rt6i_gateway = ort->rt6i_gateway;
19420a1f5962SMartin KaFai Lau 		rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
194314e50e57SDavid S. Miller 		rt->rt6i_metric = 0;
194414e50e57SDavid S. Miller 
194514e50e57SDavid S. Miller 		memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
194614e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES
194714e50e57SDavid S. Miller 		memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
194814e50e57SDavid S. Miller #endif
194914e50e57SDavid S. Miller 	}
195014e50e57SDavid S. Miller 
195169ead7afSDavid S. Miller 	dst_release(dst_orig);
195269ead7afSDavid S. Miller 	return new ? new : ERR_PTR(-ENOMEM);
195314e50e57SDavid S. Miller }
195414e50e57SDavid S. Miller 
19551da177e4SLinus Torvalds /*
19561da177e4SLinus Torvalds  *	Destination cache support functions
19571da177e4SLinus Torvalds  */
19581da177e4SLinus Torvalds 
19594b32b5adSMartin KaFai Lau static void rt6_dst_from_metrics_check(struct rt6_info *rt)
19604b32b5adSMartin KaFai Lau {
19613a2232e9SDavid Miller 	if (rt->from &&
19623a2232e9SDavid Miller 	    dst_metrics_ptr(&rt->dst) != dst_metrics_ptr(&rt->from->dst))
19633a2232e9SDavid Miller 		dst_init_metrics(&rt->dst, dst_metrics_ptr(&rt->from->dst), true);
19644b32b5adSMartin KaFai Lau }
19654b32b5adSMartin KaFai Lau 
19663da59bd9SMartin KaFai Lau static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie)
19673da59bd9SMartin KaFai Lau {
196836143645SSteffen Klassert 	u32 rt_cookie = 0;
1969c5cff856SWei Wang 
1970c5cff856SWei Wang 	if (!rt6_get_cookie_safe(rt, &rt_cookie) || rt_cookie != cookie)
19713da59bd9SMartin KaFai Lau 		return NULL;
19723da59bd9SMartin KaFai Lau 
19733da59bd9SMartin KaFai Lau 	if (rt6_check_expired(rt))
19743da59bd9SMartin KaFai Lau 		return NULL;
19753da59bd9SMartin KaFai Lau 
19763da59bd9SMartin KaFai Lau 	return &rt->dst;
19773da59bd9SMartin KaFai Lau }
19783da59bd9SMartin KaFai Lau 
19793da59bd9SMartin KaFai Lau static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie)
19803da59bd9SMartin KaFai Lau {
19815973fb1eSMartin KaFai Lau 	if (!__rt6_check_expired(rt) &&
19825973fb1eSMartin KaFai Lau 	    rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
19833a2232e9SDavid Miller 	    rt6_check(rt->from, cookie))
19843da59bd9SMartin KaFai Lau 		return &rt->dst;
19853da59bd9SMartin KaFai Lau 	else
19863da59bd9SMartin KaFai Lau 		return NULL;
19873da59bd9SMartin KaFai Lau }
19883da59bd9SMartin KaFai Lau 
19891da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
19901da177e4SLinus Torvalds {
19911da177e4SLinus Torvalds 	struct rt6_info *rt;
19921da177e4SLinus Torvalds 
19931da177e4SLinus Torvalds 	rt = (struct rt6_info *) dst;
19941da177e4SLinus Torvalds 
19956f3118b5SNicolas Dichtel 	/* All IPV6 dsts are created with ->obsolete set to the value
19966f3118b5SNicolas Dichtel 	 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
19976f3118b5SNicolas Dichtel 	 * into this function always.
19986f3118b5SNicolas Dichtel 	 */
1999e3bc10bdSHannes Frederic Sowa 
20004b32b5adSMartin KaFai Lau 	rt6_dst_from_metrics_check(rt);
20014b32b5adSMartin KaFai Lau 
200202bcf4e0SMartin KaFai Lau 	if (rt->rt6i_flags & RTF_PCPU ||
20033a2232e9SDavid Miller 	    (unlikely(!list_empty(&rt->rt6i_uncached)) && rt->from))
20043da59bd9SMartin KaFai Lau 		return rt6_dst_from_check(rt, cookie);
20053da59bd9SMartin KaFai Lau 	else
20063da59bd9SMartin KaFai Lau 		return rt6_check(rt, cookie);
20071da177e4SLinus Torvalds }
20081da177e4SLinus Torvalds 
20091da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
20101da177e4SLinus Torvalds {
20111da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *) dst;
20121da177e4SLinus Torvalds 
20131da177e4SLinus Torvalds 	if (rt) {
201454c1a859SYOSHIFUJI Hideaki / 吉藤英明 		if (rt->rt6i_flags & RTF_CACHE) {
201554c1a859SYOSHIFUJI Hideaki / 吉藤英明 			if (rt6_check_expired(rt)) {
2016e0a1ad73SThomas Graf 				ip6_del_rt(rt);
201754c1a859SYOSHIFUJI Hideaki / 吉藤英明 				dst = NULL;
20181da177e4SLinus Torvalds 			}
201954c1a859SYOSHIFUJI Hideaki / 吉藤英明 		} else {
202054c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst_release(dst);
202154c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst = NULL;
202254c1a859SYOSHIFUJI Hideaki / 吉藤英明 		}
202354c1a859SYOSHIFUJI Hideaki / 吉藤英明 	}
202454c1a859SYOSHIFUJI Hideaki / 吉藤英明 	return dst;
20251da177e4SLinus Torvalds }
20261da177e4SLinus Torvalds 
20271da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb)
20281da177e4SLinus Torvalds {
20291da177e4SLinus Torvalds 	struct rt6_info *rt;
20301da177e4SLinus Torvalds 
20313ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
20321da177e4SLinus Torvalds 
2033adf30907SEric Dumazet 	rt = (struct rt6_info *) skb_dst(skb);
20341da177e4SLinus Torvalds 	if (rt) {
20351eb4f758SHannes Frederic Sowa 		if (rt->rt6i_flags & RTF_CACHE) {
2036ad65a2f0SWei Wang 			if (dst_hold_safe(&rt->dst))
20378e3d5be7SMartin KaFai Lau 				ip6_del_rt(rt);
2038c5cff856SWei Wang 		} else {
2039c5cff856SWei Wang 			struct fib6_node *fn;
2040c5cff856SWei Wang 
2041c5cff856SWei Wang 			rcu_read_lock();
2042c5cff856SWei Wang 			fn = rcu_dereference(rt->rt6i_node);
2043c5cff856SWei Wang 			if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2044c5cff856SWei Wang 				fn->fn_sernum = -1;
2045c5cff856SWei Wang 			rcu_read_unlock();
20461da177e4SLinus Torvalds 		}
20471da177e4SLinus Torvalds 	}
20481eb4f758SHannes Frederic Sowa }
20491da177e4SLinus Torvalds 
205045e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
205145e4fd26SMartin KaFai Lau {
205245e4fd26SMartin KaFai Lau 	struct net *net = dev_net(rt->dst.dev);
205345e4fd26SMartin KaFai Lau 
205445e4fd26SMartin KaFai Lau 	rt->rt6i_flags |= RTF_MODIFIED;
205545e4fd26SMartin KaFai Lau 	rt->rt6i_pmtu = mtu;
205645e4fd26SMartin KaFai Lau 	rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
205745e4fd26SMartin KaFai Lau }
205845e4fd26SMartin KaFai Lau 
20590d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
20600d3f6d29SMartin KaFai Lau {
20610d3f6d29SMartin KaFai Lau 	return !(rt->rt6i_flags & RTF_CACHE) &&
20624e587ea7SWei Wang 		(rt->rt6i_flags & RTF_PCPU ||
20634e587ea7SWei Wang 		 rcu_access_pointer(rt->rt6i_node));
20640d3f6d29SMartin KaFai Lau }
20650d3f6d29SMartin KaFai Lau 
206645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
206745e4fd26SMartin KaFai Lau 				 const struct ipv6hdr *iph, u32 mtu)
20681da177e4SLinus Torvalds {
20690dec879fSJulian Anastasov 	const struct in6_addr *daddr, *saddr;
20701da177e4SLinus Torvalds 	struct rt6_info *rt6 = (struct rt6_info *)dst;
20711da177e4SLinus Torvalds 
207245e4fd26SMartin KaFai Lau 	if (rt6->rt6i_flags & RTF_LOCAL)
207345e4fd26SMartin KaFai Lau 		return;
207445e4fd26SMartin KaFai Lau 
207519bda36cSXin Long 	if (dst_metric_locked(dst, RTAX_MTU))
207619bda36cSXin Long 		return;
207719bda36cSXin Long 
207845e4fd26SMartin KaFai Lau 	if (iph) {
207945e4fd26SMartin KaFai Lau 		daddr = &iph->daddr;
208045e4fd26SMartin KaFai Lau 		saddr = &iph->saddr;
208145e4fd26SMartin KaFai Lau 	} else if (sk) {
208245e4fd26SMartin KaFai Lau 		daddr = &sk->sk_v6_daddr;
208345e4fd26SMartin KaFai Lau 		saddr = &inet6_sk(sk)->saddr;
208445e4fd26SMartin KaFai Lau 	} else {
20850dec879fSJulian Anastasov 		daddr = NULL;
20860dec879fSJulian Anastasov 		saddr = NULL;
20871da177e4SLinus Torvalds 	}
20880dec879fSJulian Anastasov 	dst_confirm_neigh(dst, daddr);
20890dec879fSJulian Anastasov 	mtu = max_t(u32, mtu, IPV6_MIN_MTU);
20900dec879fSJulian Anastasov 	if (mtu >= dst_mtu(dst))
20910dec879fSJulian Anastasov 		return;
20920dec879fSJulian Anastasov 
20930dec879fSJulian Anastasov 	if (!rt6_cache_allowed_for_pmtu(rt6)) {
20940dec879fSJulian Anastasov 		rt6_do_update_pmtu(rt6, mtu);
20952b760fcfSWei Wang 		/* update rt6_ex->stamp for cache */
20962b760fcfSWei Wang 		if (rt6->rt6i_flags & RTF_CACHE)
20972b760fcfSWei Wang 			rt6_update_exception_stamp_rt(rt6);
20980dec879fSJulian Anastasov 	} else if (daddr) {
20990dec879fSJulian Anastasov 		struct rt6_info *nrt6;
21000dec879fSJulian Anastasov 
210145e4fd26SMartin KaFai Lau 		nrt6 = ip6_rt_cache_alloc(rt6, daddr, saddr);
210245e4fd26SMartin KaFai Lau 		if (nrt6) {
210345e4fd26SMartin KaFai Lau 			rt6_do_update_pmtu(nrt6, mtu);
21042b760fcfSWei Wang 			if (rt6_insert_exception(nrt6, rt6))
21052b760fcfSWei Wang 				dst_release_immediate(&nrt6->dst);
210645e4fd26SMartin KaFai Lau 		}
210745e4fd26SMartin KaFai Lau 	}
210845e4fd26SMartin KaFai Lau }
210945e4fd26SMartin KaFai Lau 
211045e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
211145e4fd26SMartin KaFai Lau 			       struct sk_buff *skb, u32 mtu)
211245e4fd26SMartin KaFai Lau {
211345e4fd26SMartin KaFai Lau 	__ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
21141da177e4SLinus Torvalds }
21151da177e4SLinus Torvalds 
211642ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
2117e2d118a1SLorenzo Colitti 		     int oif, u32 mark, kuid_t uid)
211881aded24SDavid S. Miller {
211981aded24SDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
212081aded24SDavid S. Miller 	struct dst_entry *dst;
212181aded24SDavid S. Miller 	struct flowi6 fl6;
212281aded24SDavid S. Miller 
212381aded24SDavid S. Miller 	memset(&fl6, 0, sizeof(fl6));
212481aded24SDavid S. Miller 	fl6.flowi6_oif = oif;
21251b3c61dcSLorenzo Colitti 	fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark);
212681aded24SDavid S. Miller 	fl6.daddr = iph->daddr;
212781aded24SDavid S. Miller 	fl6.saddr = iph->saddr;
21286502ca52SYOSHIFUJI Hideaki / 吉藤英明 	fl6.flowlabel = ip6_flowinfo(iph);
2129e2d118a1SLorenzo Colitti 	fl6.flowi6_uid = uid;
213081aded24SDavid S. Miller 
213181aded24SDavid S. Miller 	dst = ip6_route_output(net, NULL, &fl6);
213281aded24SDavid S. Miller 	if (!dst->error)
213345e4fd26SMartin KaFai Lau 		__ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
213481aded24SDavid S. Miller 	dst_release(dst);
213581aded24SDavid S. Miller }
213681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu);
213781aded24SDavid S. Miller 
213881aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
213981aded24SDavid S. Miller {
214033c162a9SMartin KaFai Lau 	struct dst_entry *dst;
214133c162a9SMartin KaFai Lau 
214281aded24SDavid S. Miller 	ip6_update_pmtu(skb, sock_net(sk), mtu,
2143e2d118a1SLorenzo Colitti 			sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid);
214433c162a9SMartin KaFai Lau 
214533c162a9SMartin KaFai Lau 	dst = __sk_dst_get(sk);
214633c162a9SMartin KaFai Lau 	if (!dst || !dst->obsolete ||
214733c162a9SMartin KaFai Lau 	    dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
214833c162a9SMartin KaFai Lau 		return;
214933c162a9SMartin KaFai Lau 
215033c162a9SMartin KaFai Lau 	bh_lock_sock(sk);
215133c162a9SMartin KaFai Lau 	if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
215233c162a9SMartin KaFai Lau 		ip6_datagram_dst_update(sk, false);
215333c162a9SMartin KaFai Lau 	bh_unlock_sock(sk);
215481aded24SDavid S. Miller }
215581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
215681aded24SDavid S. Miller 
2157b55b76b2SDuan Jiong /* Handle redirects */
2158b55b76b2SDuan Jiong struct ip6rd_flowi {
2159b55b76b2SDuan Jiong 	struct flowi6 fl6;
2160b55b76b2SDuan Jiong 	struct in6_addr gateway;
2161b55b76b2SDuan Jiong };
2162b55b76b2SDuan Jiong 
2163b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net,
2164b55b76b2SDuan Jiong 					     struct fib6_table *table,
2165b55b76b2SDuan Jiong 					     struct flowi6 *fl6,
2166b55b76b2SDuan Jiong 					     int flags)
2167b55b76b2SDuan Jiong {
2168b55b76b2SDuan Jiong 	struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
21692b760fcfSWei Wang 	struct rt6_info *rt, *rt_cache;
2170b55b76b2SDuan Jiong 	struct fib6_node *fn;
2171b55b76b2SDuan Jiong 
2172b55b76b2SDuan Jiong 	/* Get the "current" route for this destination and
217367c408cfSAlexander Alemayhu 	 * check if the redirect has come from appropriate router.
2174b55b76b2SDuan Jiong 	 *
2175b55b76b2SDuan Jiong 	 * RFC 4861 specifies that redirects should only be
2176b55b76b2SDuan Jiong 	 * accepted if they come from the nexthop to the target.
2177b55b76b2SDuan Jiong 	 * Due to the way the routes are chosen, this notion
2178b55b76b2SDuan Jiong 	 * is a bit fuzzy and one might need to check all possible
2179b55b76b2SDuan Jiong 	 * routes.
2180b55b76b2SDuan Jiong 	 */
2181b55b76b2SDuan Jiong 
218266f5d6ceSWei Wang 	rcu_read_lock();
2183b55b76b2SDuan Jiong 	fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2184b55b76b2SDuan Jiong restart:
218566f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
21868067bb8cSIdo Schimmel 		if (rt->rt6i_nh_flags & RTNH_F_DEAD)
21878067bb8cSIdo Schimmel 			continue;
2188b55b76b2SDuan Jiong 		if (rt6_check_expired(rt))
2189b55b76b2SDuan Jiong 			continue;
2190b55b76b2SDuan Jiong 		if (rt->dst.error)
2191b55b76b2SDuan Jiong 			break;
2192b55b76b2SDuan Jiong 		if (!(rt->rt6i_flags & RTF_GATEWAY))
2193b55b76b2SDuan Jiong 			continue;
2194b55b76b2SDuan Jiong 		if (fl6->flowi6_oif != rt->dst.dev->ifindex)
2195b55b76b2SDuan Jiong 			continue;
21962b760fcfSWei Wang 		/* rt_cache's gateway might be different from its 'parent'
21972b760fcfSWei Wang 		 * in the case of an ip redirect.
21982b760fcfSWei Wang 		 * So we keep searching in the exception table if the gateway
21992b760fcfSWei Wang 		 * is different.
22002b760fcfSWei Wang 		 */
22012b760fcfSWei Wang 		if (!ipv6_addr_equal(&rdfl->gateway, &rt->rt6i_gateway)) {
22022b760fcfSWei Wang 			rt_cache = rt6_find_cached_rt(rt,
22032b760fcfSWei Wang 						      &fl6->daddr,
22042b760fcfSWei Wang 						      &fl6->saddr);
22052b760fcfSWei Wang 			if (rt_cache &&
22062b760fcfSWei Wang 			    ipv6_addr_equal(&rdfl->gateway,
22072b760fcfSWei Wang 					    &rt_cache->rt6i_gateway)) {
22082b760fcfSWei Wang 				rt = rt_cache;
22092b760fcfSWei Wang 				break;
22102b760fcfSWei Wang 			}
2211b55b76b2SDuan Jiong 			continue;
22122b760fcfSWei Wang 		}
2213b55b76b2SDuan Jiong 		break;
2214b55b76b2SDuan Jiong 	}
2215b55b76b2SDuan Jiong 
2216b55b76b2SDuan Jiong 	if (!rt)
2217b55b76b2SDuan Jiong 		rt = net->ipv6.ip6_null_entry;
2218b55b76b2SDuan Jiong 	else if (rt->dst.error) {
2219b55b76b2SDuan Jiong 		rt = net->ipv6.ip6_null_entry;
2220b0a1ba59SMartin KaFai Lau 		goto out;
2221b0a1ba59SMartin KaFai Lau 	}
2222b0a1ba59SMartin KaFai Lau 
2223b0a1ba59SMartin KaFai Lau 	if (rt == net->ipv6.ip6_null_entry) {
2224a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
2225a3c00e46SMartin KaFai Lau 		if (fn)
2226a3c00e46SMartin KaFai Lau 			goto restart;
2227b55b76b2SDuan Jiong 	}
2228a3c00e46SMartin KaFai Lau 
2229b0a1ba59SMartin KaFai Lau out:
2230d3843fe5SWei Wang 	ip6_hold_safe(net, &rt, true);
2231b55b76b2SDuan Jiong 
223266f5d6ceSWei Wang 	rcu_read_unlock();
2233b55b76b2SDuan Jiong 
2234b65f164dSPaolo Abeni 	trace_fib6_table_lookup(net, rt, table, fl6);
2235b55b76b2SDuan Jiong 	return rt;
2236b55b76b2SDuan Jiong };
2237b55b76b2SDuan Jiong 
2238b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net,
2239b55b76b2SDuan Jiong 					const struct flowi6 *fl6,
2240b55b76b2SDuan Jiong 					const struct in6_addr *gateway)
2241b55b76b2SDuan Jiong {
2242b55b76b2SDuan Jiong 	int flags = RT6_LOOKUP_F_HAS_SADDR;
2243b55b76b2SDuan Jiong 	struct ip6rd_flowi rdfl;
2244b55b76b2SDuan Jiong 
2245b55b76b2SDuan Jiong 	rdfl.fl6 = *fl6;
2246b55b76b2SDuan Jiong 	rdfl.gateway = *gateway;
2247b55b76b2SDuan Jiong 
2248b55b76b2SDuan Jiong 	return fib6_rule_lookup(net, &rdfl.fl6,
2249b55b76b2SDuan Jiong 				flags, __ip6_route_redirect);
2250b55b76b2SDuan Jiong }
2251b55b76b2SDuan Jiong 
2252e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2253e2d118a1SLorenzo Colitti 		  kuid_t uid)
22543a5ad2eeSDavid S. Miller {
22553a5ad2eeSDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
22563a5ad2eeSDavid S. Miller 	struct dst_entry *dst;
22573a5ad2eeSDavid S. Miller 	struct flowi6 fl6;
22583a5ad2eeSDavid S. Miller 
22593a5ad2eeSDavid S. Miller 	memset(&fl6, 0, sizeof(fl6));
2260e374c618SJulian Anastasov 	fl6.flowi6_iif = LOOPBACK_IFINDEX;
22613a5ad2eeSDavid S. Miller 	fl6.flowi6_oif = oif;
22623a5ad2eeSDavid S. Miller 	fl6.flowi6_mark = mark;
22633a5ad2eeSDavid S. Miller 	fl6.daddr = iph->daddr;
22643a5ad2eeSDavid S. Miller 	fl6.saddr = iph->saddr;
22656502ca52SYOSHIFUJI Hideaki / 吉藤英明 	fl6.flowlabel = ip6_flowinfo(iph);
2266e2d118a1SLorenzo Colitti 	fl6.flowi6_uid = uid;
22673a5ad2eeSDavid S. Miller 
2268b55b76b2SDuan Jiong 	dst = ip6_route_redirect(net, &fl6, &ipv6_hdr(skb)->saddr);
22696700c270SDavid S. Miller 	rt6_do_redirect(dst, NULL, skb);
22703a5ad2eeSDavid S. Miller 	dst_release(dst);
22713a5ad2eeSDavid S. Miller }
22723a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect);
22733a5ad2eeSDavid S. Miller 
2274c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif,
2275c92a59ecSDuan Jiong 			    u32 mark)
2276c92a59ecSDuan Jiong {
2277c92a59ecSDuan Jiong 	const struct ipv6hdr *iph = ipv6_hdr(skb);
2278c92a59ecSDuan Jiong 	const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2279c92a59ecSDuan Jiong 	struct dst_entry *dst;
2280c92a59ecSDuan Jiong 	struct flowi6 fl6;
2281c92a59ecSDuan Jiong 
2282c92a59ecSDuan Jiong 	memset(&fl6, 0, sizeof(fl6));
2283e374c618SJulian Anastasov 	fl6.flowi6_iif = LOOPBACK_IFINDEX;
2284c92a59ecSDuan Jiong 	fl6.flowi6_oif = oif;
2285c92a59ecSDuan Jiong 	fl6.flowi6_mark = mark;
2286c92a59ecSDuan Jiong 	fl6.daddr = msg->dest;
2287c92a59ecSDuan Jiong 	fl6.saddr = iph->daddr;
2288e2d118a1SLorenzo Colitti 	fl6.flowi6_uid = sock_net_uid(net, NULL);
2289c92a59ecSDuan Jiong 
2290b55b76b2SDuan Jiong 	dst = ip6_route_redirect(net, &fl6, &iph->saddr);
2291c92a59ecSDuan Jiong 	rt6_do_redirect(dst, NULL, skb);
2292c92a59ecSDuan Jiong 	dst_release(dst);
2293c92a59ecSDuan Jiong }
2294c92a59ecSDuan Jiong 
22953a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
22963a5ad2eeSDavid S. Miller {
2297e2d118a1SLorenzo Colitti 	ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2298e2d118a1SLorenzo Colitti 		     sk->sk_uid);
22993a5ad2eeSDavid S. Miller }
23003a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect);
23013a5ad2eeSDavid S. Miller 
23020dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst)
23031da177e4SLinus Torvalds {
23040dbaee3bSDavid S. Miller 	struct net_device *dev = dst->dev;
23050dbaee3bSDavid S. Miller 	unsigned int mtu = dst_mtu(dst);
23060dbaee3bSDavid S. Miller 	struct net *net = dev_net(dev);
23070dbaee3bSDavid S. Miller 
23081da177e4SLinus Torvalds 	mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
23091da177e4SLinus Torvalds 
23105578689aSDaniel Lezcano 	if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
23115578689aSDaniel Lezcano 		mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
23121da177e4SLinus Torvalds 
23131da177e4SLinus Torvalds 	/*
23141da177e4SLinus Torvalds 	 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
23151da177e4SLinus Torvalds 	 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
23161da177e4SLinus Torvalds 	 * IPV6_MAXPLEN is also valid and means: "any MSS,
23171da177e4SLinus Torvalds 	 * rely only on pmtu discovery"
23181da177e4SLinus Torvalds 	 */
23191da177e4SLinus Torvalds 	if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
23201da177e4SLinus Torvalds 		mtu = IPV6_MAXPLEN;
23211da177e4SLinus Torvalds 	return mtu;
23221da177e4SLinus Torvalds }
23231da177e4SLinus Torvalds 
2324ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst)
2325d33e4553SDavid S. Miller {
23264b32b5adSMartin KaFai Lau 	const struct rt6_info *rt = (const struct rt6_info *)dst;
23274b32b5adSMartin KaFai Lau 	unsigned int mtu = rt->rt6i_pmtu;
2328d33e4553SDavid S. Miller 	struct inet6_dev *idev;
2329618f9bc7SSteffen Klassert 
2330618f9bc7SSteffen Klassert 	if (mtu)
233130f78d8eSEric Dumazet 		goto out;
2332618f9bc7SSteffen Klassert 
23334b32b5adSMartin KaFai Lau 	mtu = dst_metric_raw(dst, RTAX_MTU);
23344b32b5adSMartin KaFai Lau 	if (mtu)
23354b32b5adSMartin KaFai Lau 		goto out;
23364b32b5adSMartin KaFai Lau 
2337618f9bc7SSteffen Klassert 	mtu = IPV6_MIN_MTU;
2338d33e4553SDavid S. Miller 
2339d33e4553SDavid S. Miller 	rcu_read_lock();
2340d33e4553SDavid S. Miller 	idev = __in6_dev_get(dst->dev);
2341d33e4553SDavid S. Miller 	if (idev)
2342d33e4553SDavid S. Miller 		mtu = idev->cnf.mtu6;
2343d33e4553SDavid S. Miller 	rcu_read_unlock();
2344d33e4553SDavid S. Miller 
234530f78d8eSEric Dumazet out:
234614972cbdSRoopa Prabhu 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
234714972cbdSRoopa Prabhu 
234814972cbdSRoopa Prabhu 	return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
2349d33e4553SDavid S. Miller }
2350d33e4553SDavid S. Miller 
23513b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
235287a11578SDavid S. Miller 				  struct flowi6 *fl6)
23531da177e4SLinus Torvalds {
235487a11578SDavid S. Miller 	struct dst_entry *dst;
23551da177e4SLinus Torvalds 	struct rt6_info *rt;
23561da177e4SLinus Torvalds 	struct inet6_dev *idev = in6_dev_get(dev);
2357c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
23581da177e4SLinus Torvalds 
235938308473SDavid S. Miller 	if (unlikely(!idev))
2360122bdf67SEric Dumazet 		return ERR_PTR(-ENODEV);
23611da177e4SLinus Torvalds 
2362ad706862SMartin KaFai Lau 	rt = ip6_dst_alloc(net, dev, 0);
236338308473SDavid S. Miller 	if (unlikely(!rt)) {
23641da177e4SLinus Torvalds 		in6_dev_put(idev);
236587a11578SDavid S. Miller 		dst = ERR_PTR(-ENOMEM);
23661da177e4SLinus Torvalds 		goto out;
23671da177e4SLinus Torvalds 	}
23681da177e4SLinus Torvalds 
23698e2ec639SYan, Zheng 	rt->dst.flags |= DST_HOST;
2370588753f1SBrendan McGrath 	rt->dst.input = ip6_input;
23718e2ec639SYan, Zheng 	rt->dst.output  = ip6_output;
2372550bab42SJulian Anastasov 	rt->rt6i_gateway  = fl6->daddr;
237387a11578SDavid S. Miller 	rt->rt6i_dst.addr = fl6->daddr;
23748e2ec639SYan, Zheng 	rt->rt6i_dst.plen = 128;
23758e2ec639SYan, Zheng 	rt->rt6i_idev     = idev;
237614edd87dSLi RongQing 	dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
23771da177e4SLinus Torvalds 
23784c981e28SIdo Schimmel 	/* Add this dst into uncached_list so that rt6_disable_ip() can
2379587fea74SWei Wang 	 * do proper release of the net_device
2380587fea74SWei Wang 	 */
2381587fea74SWei Wang 	rt6_uncached_list_add(rt);
238281eb8447SWei Wang 	atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
23831da177e4SLinus Torvalds 
238487a11578SDavid S. Miller 	dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
238587a11578SDavid S. Miller 
23861da177e4SLinus Torvalds out:
238787a11578SDavid S. Miller 	return dst;
23881da177e4SLinus Torvalds }
23891da177e4SLinus Torvalds 
2390569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops)
23911da177e4SLinus Torvalds {
239286393e52SAlexey Dobriyan 	struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
23937019b78eSDaniel Lezcano 	int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
23947019b78eSDaniel Lezcano 	int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
23957019b78eSDaniel Lezcano 	int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
23967019b78eSDaniel Lezcano 	int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
23977019b78eSDaniel Lezcano 	unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
2398fc66f95cSEric Dumazet 	int entries;
23991da177e4SLinus Torvalds 
2400fc66f95cSEric Dumazet 	entries = dst_entries_get_fast(ops);
240149a18d86SMichal Kubeček 	if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
2402fc66f95cSEric Dumazet 	    entries <= rt_max_size)
24031da177e4SLinus Torvalds 		goto out;
24041da177e4SLinus Torvalds 
24056891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire++;
240614956643SLi RongQing 	fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
2407fc66f95cSEric Dumazet 	entries = dst_entries_get_slow(ops);
2408fc66f95cSEric Dumazet 	if (entries < ops->gc_thresh)
24097019b78eSDaniel Lezcano 		net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
24101da177e4SLinus Torvalds out:
24117019b78eSDaniel Lezcano 	net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
2412fc66f95cSEric Dumazet 	return entries > rt_max_size;
24131da177e4SLinus Torvalds }
24141da177e4SLinus Torvalds 
2415e715b6d3SFlorian Westphal static int ip6_convert_metrics(struct mx6_config *mxc,
2416e715b6d3SFlorian Westphal 			       const struct fib6_config *cfg)
2417e715b6d3SFlorian Westphal {
24186670e152SStephen Hemminger 	struct net *net = cfg->fc_nlinfo.nl_net;
2419c3a8d947SDaniel Borkmann 	bool ecn_ca = false;
2420e715b6d3SFlorian Westphal 	struct nlattr *nla;
2421e715b6d3SFlorian Westphal 	int remaining;
2422e715b6d3SFlorian Westphal 	u32 *mp;
2423e715b6d3SFlorian Westphal 
242463159f29SIan Morris 	if (!cfg->fc_mx)
2425e715b6d3SFlorian Westphal 		return 0;
2426e715b6d3SFlorian Westphal 
2427e715b6d3SFlorian Westphal 	mp = kzalloc(sizeof(u32) * RTAX_MAX, GFP_KERNEL);
2428e715b6d3SFlorian Westphal 	if (unlikely(!mp))
2429e715b6d3SFlorian Westphal 		return -ENOMEM;
2430e715b6d3SFlorian Westphal 
2431e715b6d3SFlorian Westphal 	nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) {
2432e715b6d3SFlorian Westphal 		int type = nla_type(nla);
2433ea697639SDaniel Borkmann 		u32 val;
2434ea697639SDaniel Borkmann 
24351bb14807SDaniel Borkmann 		if (!type)
24361bb14807SDaniel Borkmann 			continue;
2437e715b6d3SFlorian Westphal 		if (unlikely(type > RTAX_MAX))
2438e715b6d3SFlorian Westphal 			goto err;
24391bb14807SDaniel Borkmann 
2440ea697639SDaniel Borkmann 		if (type == RTAX_CC_ALGO) {
2441ea697639SDaniel Borkmann 			char tmp[TCP_CA_NAME_MAX];
2442e715b6d3SFlorian Westphal 
2443ea697639SDaniel Borkmann 			nla_strlcpy(tmp, nla, sizeof(tmp));
24446670e152SStephen Hemminger 			val = tcp_ca_get_key_by_name(net, tmp, &ecn_ca);
2445ea697639SDaniel Borkmann 			if (val == TCP_CA_UNSPEC)
2446ea697639SDaniel Borkmann 				goto err;
2447ea697639SDaniel Borkmann 		} else {
2448ea697639SDaniel Borkmann 			val = nla_get_u32(nla);
2449ea697639SDaniel Borkmann 		}
2450626abd59SPaolo Abeni 		if (type == RTAX_HOPLIMIT && val > 255)
2451626abd59SPaolo Abeni 			val = 255;
2452b8d3e416SDaniel Borkmann 		if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK))
2453b8d3e416SDaniel Borkmann 			goto err;
2454ea697639SDaniel Borkmann 
2455ea697639SDaniel Borkmann 		mp[type - 1] = val;
2456e715b6d3SFlorian Westphal 		__set_bit(type - 1, mxc->mx_valid);
2457e715b6d3SFlorian Westphal 	}
2458e715b6d3SFlorian Westphal 
2459c3a8d947SDaniel Borkmann 	if (ecn_ca) {
2460c3a8d947SDaniel Borkmann 		__set_bit(RTAX_FEATURES - 1, mxc->mx_valid);
2461c3a8d947SDaniel Borkmann 		mp[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA;
2462c3a8d947SDaniel Borkmann 	}
2463e715b6d3SFlorian Westphal 
2464c3a8d947SDaniel Borkmann 	mxc->mx = mp;
2465e715b6d3SFlorian Westphal 	return 0;
2466e715b6d3SFlorian Westphal  err:
2467e715b6d3SFlorian Westphal 	kfree(mp);
2468e715b6d3SFlorian Westphal 	return -EINVAL;
2469e715b6d3SFlorian Westphal }
24701da177e4SLinus Torvalds 
24718c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net,
24728c14586fSDavid Ahern 					    struct fib6_config *cfg,
2473f4797b33SDavid Ahern 					    const struct in6_addr *gw_addr,
2474f4797b33SDavid Ahern 					    u32 tbid, int flags)
24758c14586fSDavid Ahern {
24768c14586fSDavid Ahern 	struct flowi6 fl6 = {
24778c14586fSDavid Ahern 		.flowi6_oif = cfg->fc_ifindex,
24788c14586fSDavid Ahern 		.daddr = *gw_addr,
24798c14586fSDavid Ahern 		.saddr = cfg->fc_prefsrc,
24808c14586fSDavid Ahern 	};
24818c14586fSDavid Ahern 	struct fib6_table *table;
24828c14586fSDavid Ahern 	struct rt6_info *rt;
24838c14586fSDavid Ahern 
2484f4797b33SDavid Ahern 	table = fib6_get_table(net, tbid);
24858c14586fSDavid Ahern 	if (!table)
24868c14586fSDavid Ahern 		return NULL;
24878c14586fSDavid Ahern 
24888c14586fSDavid Ahern 	if (!ipv6_addr_any(&cfg->fc_prefsrc))
24898c14586fSDavid Ahern 		flags |= RT6_LOOKUP_F_HAS_SADDR;
24908c14586fSDavid Ahern 
2491f4797b33SDavid Ahern 	flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
24928c14586fSDavid Ahern 	rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, flags);
24938c14586fSDavid Ahern 
24948c14586fSDavid Ahern 	/* if table lookup failed, fall back to full lookup */
24958c14586fSDavid Ahern 	if (rt == net->ipv6.ip6_null_entry) {
24968c14586fSDavid Ahern 		ip6_rt_put(rt);
24978c14586fSDavid Ahern 		rt = NULL;
24988c14586fSDavid Ahern 	}
24998c14586fSDavid Ahern 
25008c14586fSDavid Ahern 	return rt;
25018c14586fSDavid Ahern }
25028c14586fSDavid Ahern 
2503fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net,
2504fc1e64e1SDavid Ahern 				     struct fib6_config *cfg,
2505fc1e64e1SDavid Ahern 				     struct net_device *dev,
2506fc1e64e1SDavid Ahern 				     struct netlink_ext_ack *extack)
2507fc1e64e1SDavid Ahern {
250844750f84SDavid Ahern 	u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
2509fc1e64e1SDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
2510fc1e64e1SDavid Ahern 	u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
2511fc1e64e1SDavid Ahern 	struct rt6_info *grt;
2512fc1e64e1SDavid Ahern 	int err;
2513fc1e64e1SDavid Ahern 
2514fc1e64e1SDavid Ahern 	err = 0;
2515fc1e64e1SDavid Ahern 	grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
2516fc1e64e1SDavid Ahern 	if (grt) {
251758e354c0SDavid Ahern 		if (!grt->dst.error &&
251858e354c0SDavid Ahern 		    (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
251944750f84SDavid Ahern 			NL_SET_ERR_MSG(extack,
252044750f84SDavid Ahern 				       "Nexthop has invalid gateway or device mismatch");
2521fc1e64e1SDavid Ahern 			err = -EINVAL;
2522fc1e64e1SDavid Ahern 		}
2523fc1e64e1SDavid Ahern 
2524fc1e64e1SDavid Ahern 		ip6_rt_put(grt);
2525fc1e64e1SDavid Ahern 	}
2526fc1e64e1SDavid Ahern 
2527fc1e64e1SDavid Ahern 	return err;
2528fc1e64e1SDavid Ahern }
2529fc1e64e1SDavid Ahern 
25301edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net,
25311edce99fSDavid Ahern 			      struct fib6_config *cfg,
25321edce99fSDavid Ahern 			      struct net_device **_dev,
25331edce99fSDavid Ahern 			      struct inet6_dev **idev)
25341edce99fSDavid Ahern {
25351edce99fSDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
25361edce99fSDavid Ahern 	struct net_device *dev = _dev ? *_dev : NULL;
25371edce99fSDavid Ahern 	struct rt6_info *grt = NULL;
25381edce99fSDavid Ahern 	int err = -EHOSTUNREACH;
25391edce99fSDavid Ahern 
25401edce99fSDavid Ahern 	if (cfg->fc_table) {
2541f4797b33SDavid Ahern 		int flags = RT6_LOOKUP_F_IFACE;
2542f4797b33SDavid Ahern 
2543f4797b33SDavid Ahern 		grt = ip6_nh_lookup_table(net, cfg, gw_addr,
2544f4797b33SDavid Ahern 					  cfg->fc_table, flags);
25451edce99fSDavid Ahern 		if (grt) {
25461edce99fSDavid Ahern 			if (grt->rt6i_flags & RTF_GATEWAY ||
25471edce99fSDavid Ahern 			    (dev && dev != grt->dst.dev)) {
25481edce99fSDavid Ahern 				ip6_rt_put(grt);
25491edce99fSDavid Ahern 				grt = NULL;
25501edce99fSDavid Ahern 			}
25511edce99fSDavid Ahern 		}
25521edce99fSDavid Ahern 	}
25531edce99fSDavid Ahern 
25541edce99fSDavid Ahern 	if (!grt)
25551edce99fSDavid Ahern 		grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, 1);
25561edce99fSDavid Ahern 
25571edce99fSDavid Ahern 	if (!grt)
25581edce99fSDavid Ahern 		goto out;
25591edce99fSDavid Ahern 
25601edce99fSDavid Ahern 	if (dev) {
25611edce99fSDavid Ahern 		if (dev != grt->dst.dev) {
25621edce99fSDavid Ahern 			ip6_rt_put(grt);
25631edce99fSDavid Ahern 			goto out;
25641edce99fSDavid Ahern 		}
25651edce99fSDavid Ahern 	} else {
25661edce99fSDavid Ahern 		*_dev = dev = grt->dst.dev;
25671edce99fSDavid Ahern 		*idev = grt->rt6i_idev;
25681edce99fSDavid Ahern 		dev_hold(dev);
25691edce99fSDavid Ahern 		in6_dev_hold(grt->rt6i_idev);
25701edce99fSDavid Ahern 	}
25711edce99fSDavid Ahern 
25721edce99fSDavid Ahern 	if (!(grt->rt6i_flags & RTF_GATEWAY))
25731edce99fSDavid Ahern 		err = 0;
25741edce99fSDavid Ahern 
25751edce99fSDavid Ahern 	ip6_rt_put(grt);
25761edce99fSDavid Ahern 
25771edce99fSDavid Ahern out:
25781edce99fSDavid Ahern 	return err;
25791edce99fSDavid Ahern }
25801edce99fSDavid Ahern 
2581333c4301SDavid Ahern static struct rt6_info *ip6_route_info_create(struct fib6_config *cfg,
2582333c4301SDavid Ahern 					      struct netlink_ext_ack *extack)
25831da177e4SLinus Torvalds {
25845578689aSDaniel Lezcano 	struct net *net = cfg->fc_nlinfo.nl_net;
25851da177e4SLinus Torvalds 	struct rt6_info *rt = NULL;
25861da177e4SLinus Torvalds 	struct net_device *dev = NULL;
25871da177e4SLinus Torvalds 	struct inet6_dev *idev = NULL;
2588c71099acSThomas Graf 	struct fib6_table *table;
25891da177e4SLinus Torvalds 	int addr_type;
25908c5b83f0SRoopa Prabhu 	int err = -EINVAL;
25911da177e4SLinus Torvalds 
2592557c44beSDavid Ahern 	/* RTF_PCPU is an internal flag; can not be set by userspace */
2593d5d531cbSDavid Ahern 	if (cfg->fc_flags & RTF_PCPU) {
2594d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
2595557c44beSDavid Ahern 		goto out;
2596d5d531cbSDavid Ahern 	}
2597557c44beSDavid Ahern 
25982ea2352eSWei Wang 	/* RTF_CACHE is an internal flag; can not be set by userspace */
25992ea2352eSWei Wang 	if (cfg->fc_flags & RTF_CACHE) {
26002ea2352eSWei Wang 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
26012ea2352eSWei Wang 		goto out;
26022ea2352eSWei Wang 	}
26032ea2352eSWei Wang 
2604d5d531cbSDavid Ahern 	if (cfg->fc_dst_len > 128) {
2605d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid prefix length");
26068c5b83f0SRoopa Prabhu 		goto out;
2607d5d531cbSDavid Ahern 	}
2608d5d531cbSDavid Ahern 	if (cfg->fc_src_len > 128) {
2609d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid source address length");
2610d5d531cbSDavid Ahern 		goto out;
2611d5d531cbSDavid Ahern 	}
26121da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES
2613d5d531cbSDavid Ahern 	if (cfg->fc_src_len) {
2614d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack,
2615d5d531cbSDavid Ahern 			       "Specifying source address requires IPV6_SUBTREES to be enabled");
26168c5b83f0SRoopa Prabhu 		goto out;
2617d5d531cbSDavid Ahern 	}
26181da177e4SLinus Torvalds #endif
261986872cb5SThomas Graf 	if (cfg->fc_ifindex) {
26201da177e4SLinus Torvalds 		err = -ENODEV;
26215578689aSDaniel Lezcano 		dev = dev_get_by_index(net, cfg->fc_ifindex);
26221da177e4SLinus Torvalds 		if (!dev)
26231da177e4SLinus Torvalds 			goto out;
26241da177e4SLinus Torvalds 		idev = in6_dev_get(dev);
26251da177e4SLinus Torvalds 		if (!idev)
26261da177e4SLinus Torvalds 			goto out;
26271da177e4SLinus Torvalds 	}
26281da177e4SLinus Torvalds 
262986872cb5SThomas Graf 	if (cfg->fc_metric == 0)
263086872cb5SThomas Graf 		cfg->fc_metric = IP6_RT_PRIO_USER;
26311da177e4SLinus Torvalds 
2632fc1e64e1SDavid Ahern 	if (cfg->fc_flags & RTNH_F_ONLINK) {
2633fc1e64e1SDavid Ahern 		if (!dev) {
2634fc1e64e1SDavid Ahern 			NL_SET_ERR_MSG(extack,
2635fc1e64e1SDavid Ahern 				       "Nexthop device required for onlink");
2636fc1e64e1SDavid Ahern 			err = -ENODEV;
2637fc1e64e1SDavid Ahern 			goto out;
2638fc1e64e1SDavid Ahern 		}
2639fc1e64e1SDavid Ahern 
2640fc1e64e1SDavid Ahern 		if (!(dev->flags & IFF_UP)) {
2641fc1e64e1SDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2642fc1e64e1SDavid Ahern 			err = -ENETDOWN;
2643fc1e64e1SDavid Ahern 			goto out;
2644fc1e64e1SDavid Ahern 		}
2645fc1e64e1SDavid Ahern 	}
2646fc1e64e1SDavid Ahern 
2647c71099acSThomas Graf 	err = -ENOBUFS;
264838308473SDavid S. Miller 	if (cfg->fc_nlinfo.nlh &&
2649d71314b4SMatti Vaittinen 	    !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
2650d71314b4SMatti Vaittinen 		table = fib6_get_table(net, cfg->fc_table);
265138308473SDavid S. Miller 		if (!table) {
2652f3213831SJoe Perches 			pr_warn("NLM_F_CREATE should be specified when creating new route\n");
2653d71314b4SMatti Vaittinen 			table = fib6_new_table(net, cfg->fc_table);
2654d71314b4SMatti Vaittinen 		}
2655d71314b4SMatti Vaittinen 	} else {
2656d71314b4SMatti Vaittinen 		table = fib6_new_table(net, cfg->fc_table);
2657d71314b4SMatti Vaittinen 	}
265838308473SDavid S. Miller 
265938308473SDavid S. Miller 	if (!table)
2660c71099acSThomas Graf 		goto out;
2661c71099acSThomas Graf 
2662ad706862SMartin KaFai Lau 	rt = ip6_dst_alloc(net, NULL,
2663ad706862SMartin KaFai Lau 			   (cfg->fc_flags & RTF_ADDRCONF) ? 0 : DST_NOCOUNT);
26641da177e4SLinus Torvalds 
266538308473SDavid S. Miller 	if (!rt) {
26661da177e4SLinus Torvalds 		err = -ENOMEM;
26671da177e4SLinus Torvalds 		goto out;
26681da177e4SLinus Torvalds 	}
26691da177e4SLinus Torvalds 
26701716a961SGao feng 	if (cfg->fc_flags & RTF_EXPIRES)
26711716a961SGao feng 		rt6_set_expires(rt, jiffies +
26721716a961SGao feng 				clock_t_to_jiffies(cfg->fc_expires));
26731716a961SGao feng 	else
26741716a961SGao feng 		rt6_clean_expires(rt);
26751da177e4SLinus Torvalds 
267686872cb5SThomas Graf 	if (cfg->fc_protocol == RTPROT_UNSPEC)
267786872cb5SThomas Graf 		cfg->fc_protocol = RTPROT_BOOT;
267886872cb5SThomas Graf 	rt->rt6i_protocol = cfg->fc_protocol;
267986872cb5SThomas Graf 
268086872cb5SThomas Graf 	addr_type = ipv6_addr_type(&cfg->fc_dst);
26811da177e4SLinus Torvalds 
26821da177e4SLinus Torvalds 	if (addr_type & IPV6_ADDR_MULTICAST)
2683d8d1f30bSChangli Gao 		rt->dst.input = ip6_mc_input;
2684ab79ad14SMaciej Żenczykowski 	else if (cfg->fc_flags & RTF_LOCAL)
2685ab79ad14SMaciej Żenczykowski 		rt->dst.input = ip6_input;
26861da177e4SLinus Torvalds 	else
2687d8d1f30bSChangli Gao 		rt->dst.input = ip6_forward;
26881da177e4SLinus Torvalds 
2689d8d1f30bSChangli Gao 	rt->dst.output = ip6_output;
26901da177e4SLinus Torvalds 
269119e42e45SRoopa Prabhu 	if (cfg->fc_encap) {
269219e42e45SRoopa Prabhu 		struct lwtunnel_state *lwtstate;
269319e42e45SRoopa Prabhu 
269430357d7dSDavid Ahern 		err = lwtunnel_build_state(cfg->fc_encap_type,
2695127eb7cdSTom Herbert 					   cfg->fc_encap, AF_INET6, cfg,
26969ae28727SDavid Ahern 					   &lwtstate, extack);
269719e42e45SRoopa Prabhu 		if (err)
269819e42e45SRoopa Prabhu 			goto out;
269961adedf3SJiri Benc 		rt->dst.lwtstate = lwtstate_get(lwtstate);
270061adedf3SJiri Benc 		if (lwtunnel_output_redirect(rt->dst.lwtstate)) {
270161adedf3SJiri Benc 			rt->dst.lwtstate->orig_output = rt->dst.output;
270261adedf3SJiri Benc 			rt->dst.output = lwtunnel_output;
270319e42e45SRoopa Prabhu 		}
270461adedf3SJiri Benc 		if (lwtunnel_input_redirect(rt->dst.lwtstate)) {
270561adedf3SJiri Benc 			rt->dst.lwtstate->orig_input = rt->dst.input;
270661adedf3SJiri Benc 			rt->dst.input = lwtunnel_input;
270725368623STom Herbert 		}
270825368623STom Herbert 	}
270919e42e45SRoopa Prabhu 
271086872cb5SThomas Graf 	ipv6_addr_prefix(&rt->rt6i_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
271186872cb5SThomas Graf 	rt->rt6i_dst.plen = cfg->fc_dst_len;
2712afc4eef8SMartin KaFai Lau 	if (rt->rt6i_dst.plen == 128)
271311d53b49SDavid S. Miller 		rt->dst.flags |= DST_HOST;
27141da177e4SLinus Torvalds 
27151da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
271686872cb5SThomas Graf 	ipv6_addr_prefix(&rt->rt6i_src.addr, &cfg->fc_src, cfg->fc_src_len);
271786872cb5SThomas Graf 	rt->rt6i_src.plen = cfg->fc_src_len;
27181da177e4SLinus Torvalds #endif
27191da177e4SLinus Torvalds 
272086872cb5SThomas Graf 	rt->rt6i_metric = cfg->fc_metric;
2721398958aeSIdo Schimmel 	rt->rt6i_nh_weight = 1;
27221da177e4SLinus Torvalds 
27231da177e4SLinus Torvalds 	/* We cannot add true routes via loopback here,
27241da177e4SLinus Torvalds 	   they would result in kernel looping; promote them to reject routes
27251da177e4SLinus Torvalds 	 */
272686872cb5SThomas Graf 	if ((cfg->fc_flags & RTF_REJECT) ||
272738308473SDavid S. Miller 	    (dev && (dev->flags & IFF_LOOPBACK) &&
272838308473SDavid S. Miller 	     !(addr_type & IPV6_ADDR_LOOPBACK) &&
272938308473SDavid S. Miller 	     !(cfg->fc_flags & RTF_LOCAL))) {
27301da177e4SLinus Torvalds 		/* hold loopback dev/idev if we haven't done so. */
27315578689aSDaniel Lezcano 		if (dev != net->loopback_dev) {
27321da177e4SLinus Torvalds 			if (dev) {
27331da177e4SLinus Torvalds 				dev_put(dev);
27341da177e4SLinus Torvalds 				in6_dev_put(idev);
27351da177e4SLinus Torvalds 			}
27365578689aSDaniel Lezcano 			dev = net->loopback_dev;
27371da177e4SLinus Torvalds 			dev_hold(dev);
27381da177e4SLinus Torvalds 			idev = in6_dev_get(dev);
27391da177e4SLinus Torvalds 			if (!idev) {
27401da177e4SLinus Torvalds 				err = -ENODEV;
27411da177e4SLinus Torvalds 				goto out;
27421da177e4SLinus Torvalds 			}
27431da177e4SLinus Torvalds 		}
27441da177e4SLinus Torvalds 		rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP;
2745ef2c7d7bSNicolas Dichtel 		switch (cfg->fc_type) {
2746ef2c7d7bSNicolas Dichtel 		case RTN_BLACKHOLE:
2747ef2c7d7bSNicolas Dichtel 			rt->dst.error = -EINVAL;
2748ede2059dSEric W. Biederman 			rt->dst.output = dst_discard_out;
27497150aedeSKamala R 			rt->dst.input = dst_discard;
2750ef2c7d7bSNicolas Dichtel 			break;
2751ef2c7d7bSNicolas Dichtel 		case RTN_PROHIBIT:
2752ef2c7d7bSNicolas Dichtel 			rt->dst.error = -EACCES;
27537150aedeSKamala R 			rt->dst.output = ip6_pkt_prohibit_out;
27547150aedeSKamala R 			rt->dst.input = ip6_pkt_prohibit;
2755ef2c7d7bSNicolas Dichtel 			break;
2756b4949ab2SNicolas Dichtel 		case RTN_THROW:
27570315e382SNikola Forró 		case RTN_UNREACHABLE:
2758ef2c7d7bSNicolas Dichtel 		default:
27597150aedeSKamala R 			rt->dst.error = (cfg->fc_type == RTN_THROW) ? -EAGAIN
27600315e382SNikola Forró 					: (cfg->fc_type == RTN_UNREACHABLE)
27610315e382SNikola Forró 					? -EHOSTUNREACH : -ENETUNREACH;
27627150aedeSKamala R 			rt->dst.output = ip6_pkt_discard_out;
27637150aedeSKamala R 			rt->dst.input = ip6_pkt_discard;
2764ef2c7d7bSNicolas Dichtel 			break;
2765ef2c7d7bSNicolas Dichtel 		}
27661da177e4SLinus Torvalds 		goto install_route;
27671da177e4SLinus Torvalds 	}
27681da177e4SLinus Torvalds 
276986872cb5SThomas Graf 	if (cfg->fc_flags & RTF_GATEWAY) {
2770b71d1d42SEric Dumazet 		const struct in6_addr *gw_addr;
27711da177e4SLinus Torvalds 		int gwa_type;
27721da177e4SLinus Torvalds 
277386872cb5SThomas Graf 		gw_addr = &cfg->fc_gateway;
2774330567b7SFlorian Westphal 		gwa_type = ipv6_addr_type(gw_addr);
277548ed7b26SFlorian Westphal 
277648ed7b26SFlorian Westphal 		/* if gw_addr is local we will fail to detect this in case
277748ed7b26SFlorian Westphal 		 * address is still TENTATIVE (DAD in progress). rt6_lookup()
277848ed7b26SFlorian Westphal 		 * will return already-added prefix route via interface that
277948ed7b26SFlorian Westphal 		 * prefix route was assigned to, which might be non-loopback.
278048ed7b26SFlorian Westphal 		 */
278148ed7b26SFlorian Westphal 		err = -EINVAL;
2782330567b7SFlorian Westphal 		if (ipv6_chk_addr_and_flags(net, gw_addr,
2783330567b7SFlorian Westphal 					    gwa_type & IPV6_ADDR_LINKLOCAL ?
2784d5d531cbSDavid Ahern 					    dev : NULL, 0, 0)) {
2785d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid gateway address");
278648ed7b26SFlorian Westphal 			goto out;
2787d5d531cbSDavid Ahern 		}
27884e3fd7a0SAlexey Dobriyan 		rt->rt6i_gateway = *gw_addr;
27891da177e4SLinus Torvalds 
27901da177e4SLinus Torvalds 		if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) {
27911da177e4SLinus Torvalds 			/* IPv6 strictly inhibits using not link-local
27921da177e4SLinus Torvalds 			   addresses as nexthop address.
27931da177e4SLinus Torvalds 			   Otherwise, router will not able to send redirects.
27941da177e4SLinus Torvalds 			   It is very good, but in some (rare!) circumstances
27951da177e4SLinus Torvalds 			   (SIT, PtP, NBMA NOARP links) it is handy to allow
27961da177e4SLinus Torvalds 			   some exceptions. --ANK
279796d5822cSErik Nordmark 			   We allow IPv4-mapped nexthops to support RFC4798-type
279896d5822cSErik Nordmark 			   addressing
27991da177e4SLinus Torvalds 			 */
280096d5822cSErik Nordmark 			if (!(gwa_type & (IPV6_ADDR_UNICAST |
2801d5d531cbSDavid Ahern 					  IPV6_ADDR_MAPPED))) {
2802d5d531cbSDavid Ahern 				NL_SET_ERR_MSG(extack,
2803d5d531cbSDavid Ahern 					       "Invalid gateway address");
28041da177e4SLinus Torvalds 				goto out;
2805d5d531cbSDavid Ahern 			}
28061da177e4SLinus Torvalds 
2807fc1e64e1SDavid Ahern 			if (cfg->fc_flags & RTNH_F_ONLINK) {
2808fc1e64e1SDavid Ahern 				err = ip6_route_check_nh_onlink(net, cfg, dev,
2809fc1e64e1SDavid Ahern 								extack);
2810fc1e64e1SDavid Ahern 			} else {
28111edce99fSDavid Ahern 				err = ip6_route_check_nh(net, cfg, &dev, &idev);
2812fc1e64e1SDavid Ahern 			}
28131da177e4SLinus Torvalds 			if (err)
28141da177e4SLinus Torvalds 				goto out;
28151da177e4SLinus Torvalds 		}
28161da177e4SLinus Torvalds 		err = -EINVAL;
2817d5d531cbSDavid Ahern 		if (!dev) {
2818d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack, "Egress device not specified");
28191da177e4SLinus Torvalds 			goto out;
2820d5d531cbSDavid Ahern 		} else if (dev->flags & IFF_LOOPBACK) {
2821d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack,
2822d5d531cbSDavid Ahern 				       "Egress device can not be loopback device for this route");
2823d5d531cbSDavid Ahern 			goto out;
2824d5d531cbSDavid Ahern 		}
28251da177e4SLinus Torvalds 	}
28261da177e4SLinus Torvalds 
28271da177e4SLinus Torvalds 	err = -ENODEV;
282838308473SDavid S. Miller 	if (!dev)
28291da177e4SLinus Torvalds 		goto out;
28301da177e4SLinus Torvalds 
2831955ec4cbSDavid Ahern 	if (!(dev->flags & IFF_UP)) {
2832955ec4cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2833955ec4cbSDavid Ahern 		err = -ENETDOWN;
2834955ec4cbSDavid Ahern 		goto out;
2835955ec4cbSDavid Ahern 	}
2836955ec4cbSDavid Ahern 
2837c3968a85SDaniel Walter 	if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
2838c3968a85SDaniel Walter 		if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
2839d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid source address");
2840c3968a85SDaniel Walter 			err = -EINVAL;
2841c3968a85SDaniel Walter 			goto out;
2842c3968a85SDaniel Walter 		}
28434e3fd7a0SAlexey Dobriyan 		rt->rt6i_prefsrc.addr = cfg->fc_prefsrc;
2844c3968a85SDaniel Walter 		rt->rt6i_prefsrc.plen = 128;
2845c3968a85SDaniel Walter 	} else
2846c3968a85SDaniel Walter 		rt->rt6i_prefsrc.plen = 0;
2847c3968a85SDaniel Walter 
284886872cb5SThomas Graf 	rt->rt6i_flags = cfg->fc_flags;
28491da177e4SLinus Torvalds 
28501da177e4SLinus Torvalds install_route:
28515609b80aSIdo Schimmel 	if (!(rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
28525609b80aSIdo Schimmel 	    !netif_carrier_ok(dev))
28535609b80aSIdo Schimmel 		rt->rt6i_nh_flags |= RTNH_F_LINKDOWN;
2854fc1e64e1SDavid Ahern 	rt->rt6i_nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK);
2855d8d1f30bSChangli Gao 	rt->dst.dev = dev;
28561da177e4SLinus Torvalds 	rt->rt6i_idev = idev;
2857c71099acSThomas Graf 	rt->rt6i_table = table;
285863152fc0SDaniel Lezcano 
2859c346dca1SYOSHIFUJI Hideaki 	cfg->fc_nlinfo.nl_net = dev_net(dev);
286063152fc0SDaniel Lezcano 
28618c5b83f0SRoopa Prabhu 	return rt;
28621da177e4SLinus Torvalds out:
28631da177e4SLinus Torvalds 	if (dev)
28641da177e4SLinus Torvalds 		dev_put(dev);
28651da177e4SLinus Torvalds 	if (idev)
28661da177e4SLinus Torvalds 		in6_dev_put(idev);
2867587fea74SWei Wang 	if (rt)
2868587fea74SWei Wang 		dst_release_immediate(&rt->dst);
28696b9ea5a6SRoopa Prabhu 
28708c5b83f0SRoopa Prabhu 	return ERR_PTR(err);
28716b9ea5a6SRoopa Prabhu }
28726b9ea5a6SRoopa Prabhu 
2873333c4301SDavid Ahern int ip6_route_add(struct fib6_config *cfg,
2874333c4301SDavid Ahern 		  struct netlink_ext_ack *extack)
28756b9ea5a6SRoopa Prabhu {
28766b9ea5a6SRoopa Prabhu 	struct mx6_config mxc = { .mx = NULL, };
28778c5b83f0SRoopa Prabhu 	struct rt6_info *rt;
28786b9ea5a6SRoopa Prabhu 	int err;
28796b9ea5a6SRoopa Prabhu 
2880333c4301SDavid Ahern 	rt = ip6_route_info_create(cfg, extack);
28818c5b83f0SRoopa Prabhu 	if (IS_ERR(rt)) {
28828c5b83f0SRoopa Prabhu 		err = PTR_ERR(rt);
28838c5b83f0SRoopa Prabhu 		rt = NULL;
28846b9ea5a6SRoopa Prabhu 		goto out;
28858c5b83f0SRoopa Prabhu 	}
28866b9ea5a6SRoopa Prabhu 
28876b9ea5a6SRoopa Prabhu 	err = ip6_convert_metrics(&mxc, cfg);
28886b9ea5a6SRoopa Prabhu 	if (err)
28896b9ea5a6SRoopa Prabhu 		goto out;
28906b9ea5a6SRoopa Prabhu 
2891333c4301SDavid Ahern 	err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, &mxc, extack);
28926b9ea5a6SRoopa Prabhu 
28936b9ea5a6SRoopa Prabhu 	kfree(mxc.mx);
28946b9ea5a6SRoopa Prabhu 
28956b9ea5a6SRoopa Prabhu 	return err;
28966b9ea5a6SRoopa Prabhu out:
2897587fea74SWei Wang 	if (rt)
2898587fea74SWei Wang 		dst_release_immediate(&rt->dst);
28996b9ea5a6SRoopa Prabhu 
29001da177e4SLinus Torvalds 	return err;
29011da177e4SLinus Torvalds }
29021da177e4SLinus Torvalds 
290386872cb5SThomas Graf static int __ip6_del_rt(struct rt6_info *rt, struct nl_info *info)
29041da177e4SLinus Torvalds {
29051da177e4SLinus Torvalds 	int err;
2906c71099acSThomas Graf 	struct fib6_table *table;
2907d1918542SDavid S. Miller 	struct net *net = dev_net(rt->dst.dev);
29081da177e4SLinus Torvalds 
2909a4c2fd7fSWei Wang 	if (rt == net->ipv6.ip6_null_entry) {
29106825a26cSGao feng 		err = -ENOENT;
29116825a26cSGao feng 		goto out;
29126825a26cSGao feng 	}
29136c813a72SPatrick McHardy 
2914c71099acSThomas Graf 	table = rt->rt6i_table;
291566f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
291686872cb5SThomas Graf 	err = fib6_del(rt, info);
291766f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
29181da177e4SLinus Torvalds 
29196825a26cSGao feng out:
292094e187c0SAmerigo Wang 	ip6_rt_put(rt);
29211da177e4SLinus Torvalds 	return err;
29221da177e4SLinus Torvalds }
29231da177e4SLinus Torvalds 
2924e0a1ad73SThomas Graf int ip6_del_rt(struct rt6_info *rt)
2925e0a1ad73SThomas Graf {
29264d1169c1SDenis V. Lunev 	struct nl_info info = {
2927d1918542SDavid S. Miller 		.nl_net = dev_net(rt->dst.dev),
29284d1169c1SDenis V. Lunev 	};
2929528c4cebSDenis V. Lunev 	return __ip6_del_rt(rt, &info);
2930e0a1ad73SThomas Graf }
2931e0a1ad73SThomas Graf 
29320ae81335SDavid Ahern static int __ip6_del_rt_siblings(struct rt6_info *rt, struct fib6_config *cfg)
29330ae81335SDavid Ahern {
29340ae81335SDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
2935e3330039SWANG Cong 	struct net *net = info->nl_net;
293616a16cd3SDavid Ahern 	struct sk_buff *skb = NULL;
29370ae81335SDavid Ahern 	struct fib6_table *table;
2938e3330039SWANG Cong 	int err = -ENOENT;
29390ae81335SDavid Ahern 
2940e3330039SWANG Cong 	if (rt == net->ipv6.ip6_null_entry)
2941e3330039SWANG Cong 		goto out_put;
29420ae81335SDavid Ahern 	table = rt->rt6i_table;
294366f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
29440ae81335SDavid Ahern 
29450ae81335SDavid Ahern 	if (rt->rt6i_nsiblings && cfg->fc_delete_all_nh) {
29460ae81335SDavid Ahern 		struct rt6_info *sibling, *next_sibling;
29470ae81335SDavid Ahern 
294816a16cd3SDavid Ahern 		/* prefer to send a single notification with all hops */
294916a16cd3SDavid Ahern 		skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
295016a16cd3SDavid Ahern 		if (skb) {
295116a16cd3SDavid Ahern 			u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
295216a16cd3SDavid Ahern 
2953e3330039SWANG Cong 			if (rt6_fill_node(net, skb, rt,
295416a16cd3SDavid Ahern 					  NULL, NULL, 0, RTM_DELROUTE,
295516a16cd3SDavid Ahern 					  info->portid, seq, 0) < 0) {
295616a16cd3SDavid Ahern 				kfree_skb(skb);
295716a16cd3SDavid Ahern 				skb = NULL;
295816a16cd3SDavid Ahern 			} else
295916a16cd3SDavid Ahern 				info->skip_notify = 1;
296016a16cd3SDavid Ahern 		}
296116a16cd3SDavid Ahern 
29620ae81335SDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
29630ae81335SDavid Ahern 					 &rt->rt6i_siblings,
29640ae81335SDavid Ahern 					 rt6i_siblings) {
29650ae81335SDavid Ahern 			err = fib6_del(sibling, info);
29660ae81335SDavid Ahern 			if (err)
2967e3330039SWANG Cong 				goto out_unlock;
29680ae81335SDavid Ahern 		}
29690ae81335SDavid Ahern 	}
29700ae81335SDavid Ahern 
29710ae81335SDavid Ahern 	err = fib6_del(rt, info);
2972e3330039SWANG Cong out_unlock:
297366f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
2974e3330039SWANG Cong out_put:
29750ae81335SDavid Ahern 	ip6_rt_put(rt);
297616a16cd3SDavid Ahern 
297716a16cd3SDavid Ahern 	if (skb) {
2978e3330039SWANG Cong 		rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
297916a16cd3SDavid Ahern 			    info->nlh, gfp_any());
298016a16cd3SDavid Ahern 	}
29810ae81335SDavid Ahern 	return err;
29820ae81335SDavid Ahern }
29830ae81335SDavid Ahern 
2984333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg,
2985333c4301SDavid Ahern 			 struct netlink_ext_ack *extack)
29861da177e4SLinus Torvalds {
29872b760fcfSWei Wang 	struct rt6_info *rt, *rt_cache;
2988c71099acSThomas Graf 	struct fib6_table *table;
29891da177e4SLinus Torvalds 	struct fib6_node *fn;
29901da177e4SLinus Torvalds 	int err = -ESRCH;
29911da177e4SLinus Torvalds 
29925578689aSDaniel Lezcano 	table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
2993d5d531cbSDavid Ahern 	if (!table) {
2994d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "FIB table does not exist");
2995c71099acSThomas Graf 		return err;
2996d5d531cbSDavid Ahern 	}
29971da177e4SLinus Torvalds 
299866f5d6ceSWei Wang 	rcu_read_lock();
2999c71099acSThomas Graf 
3000c71099acSThomas Graf 	fn = fib6_locate(&table->tb6_root,
300186872cb5SThomas Graf 			 &cfg->fc_dst, cfg->fc_dst_len,
300238fbeeeeSWei Wang 			 &cfg->fc_src, cfg->fc_src_len,
30032b760fcfSWei Wang 			 !(cfg->fc_flags & RTF_CACHE));
30041da177e4SLinus Torvalds 
30051da177e4SLinus Torvalds 	if (fn) {
300666f5d6ceSWei Wang 		for_each_fib6_node_rt_rcu(fn) {
30072b760fcfSWei Wang 			if (cfg->fc_flags & RTF_CACHE) {
30082b760fcfSWei Wang 				rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst,
30092b760fcfSWei Wang 							      &cfg->fc_src);
30102b760fcfSWei Wang 				if (!rt_cache)
30111f56a01fSMartin KaFai Lau 					continue;
30122b760fcfSWei Wang 				rt = rt_cache;
30132b760fcfSWei Wang 			}
301486872cb5SThomas Graf 			if (cfg->fc_ifindex &&
3015d1918542SDavid S. Miller 			    (!rt->dst.dev ||
3016d1918542SDavid S. Miller 			     rt->dst.dev->ifindex != cfg->fc_ifindex))
30171da177e4SLinus Torvalds 				continue;
301886872cb5SThomas Graf 			if (cfg->fc_flags & RTF_GATEWAY &&
301986872cb5SThomas Graf 			    !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
30201da177e4SLinus Torvalds 				continue;
302186872cb5SThomas Graf 			if (cfg->fc_metric && cfg->fc_metric != rt->rt6i_metric)
30221da177e4SLinus Torvalds 				continue;
3023c2ed1880SMantas M 			if (cfg->fc_protocol && cfg->fc_protocol != rt->rt6i_protocol)
3024c2ed1880SMantas M 				continue;
3025d3843fe5SWei Wang 			if (!dst_hold_safe(&rt->dst))
3026d3843fe5SWei Wang 				break;
302766f5d6ceSWei Wang 			rcu_read_unlock();
30281da177e4SLinus Torvalds 
30290ae81335SDavid Ahern 			/* if gateway was specified only delete the one hop */
30300ae81335SDavid Ahern 			if (cfg->fc_flags & RTF_GATEWAY)
303186872cb5SThomas Graf 				return __ip6_del_rt(rt, &cfg->fc_nlinfo);
30320ae81335SDavid Ahern 
30330ae81335SDavid Ahern 			return __ip6_del_rt_siblings(rt, cfg);
30341da177e4SLinus Torvalds 		}
30351da177e4SLinus Torvalds 	}
303666f5d6ceSWei Wang 	rcu_read_unlock();
30371da177e4SLinus Torvalds 
30381da177e4SLinus Torvalds 	return err;
30391da177e4SLinus Torvalds }
30401da177e4SLinus Torvalds 
30416700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
3042a6279458SYOSHIFUJI Hideaki {
3043a6279458SYOSHIFUJI Hideaki 	struct netevent_redirect netevent;
3044e8599ff4SDavid S. Miller 	struct rt6_info *rt, *nrt = NULL;
3045e8599ff4SDavid S. Miller 	struct ndisc_options ndopts;
3046e8599ff4SDavid S. Miller 	struct inet6_dev *in6_dev;
3047e8599ff4SDavid S. Miller 	struct neighbour *neigh;
304871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	struct rd_msg *msg;
30496e157b6aSDavid S. Miller 	int optlen, on_link;
30506e157b6aSDavid S. Miller 	u8 *lladdr;
3051e8599ff4SDavid S. Miller 
305229a3cad5SSimon Horman 	optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
305371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	optlen -= sizeof(*msg);
3054e8599ff4SDavid S. Miller 
3055e8599ff4SDavid S. Miller 	if (optlen < 0) {
30566e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
3057e8599ff4SDavid S. Miller 		return;
3058e8599ff4SDavid S. Miller 	}
3059e8599ff4SDavid S. Miller 
306071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	msg = (struct rd_msg *)icmp6_hdr(skb);
3061e8599ff4SDavid S. Miller 
306271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_is_multicast(&msg->dest)) {
30636e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
3064e8599ff4SDavid S. Miller 		return;
3065e8599ff4SDavid S. Miller 	}
3066e8599ff4SDavid S. Miller 
30676e157b6aSDavid S. Miller 	on_link = 0;
306871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_equal(&msg->dest, &msg->target)) {
3069e8599ff4SDavid S. Miller 		on_link = 1;
307071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	} else if (ipv6_addr_type(&msg->target) !=
3071e8599ff4SDavid S. Miller 		   (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
30726e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
3073e8599ff4SDavid S. Miller 		return;
3074e8599ff4SDavid S. Miller 	}
3075e8599ff4SDavid S. Miller 
3076e8599ff4SDavid S. Miller 	in6_dev = __in6_dev_get(skb->dev);
3077e8599ff4SDavid S. Miller 	if (!in6_dev)
3078e8599ff4SDavid S. Miller 		return;
3079e8599ff4SDavid S. Miller 	if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3080e8599ff4SDavid S. Miller 		return;
3081e8599ff4SDavid S. Miller 
3082e8599ff4SDavid S. Miller 	/* RFC2461 8.1:
3083e8599ff4SDavid S. Miller 	 *	The IP source address of the Redirect MUST be the same as the current
3084e8599ff4SDavid S. Miller 	 *	first-hop router for the specified ICMP Destination Address.
3085e8599ff4SDavid S. Miller 	 */
3086e8599ff4SDavid S. Miller 
3087f997c55cSAlexander Aring 	if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
3088e8599ff4SDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3089e8599ff4SDavid S. Miller 		return;
3090e8599ff4SDavid S. Miller 	}
30916e157b6aSDavid S. Miller 
30926e157b6aSDavid S. Miller 	lladdr = NULL;
3093e8599ff4SDavid S. Miller 	if (ndopts.nd_opts_tgt_lladdr) {
3094e8599ff4SDavid S. Miller 		lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3095e8599ff4SDavid S. Miller 					     skb->dev);
3096e8599ff4SDavid S. Miller 		if (!lladdr) {
3097e8599ff4SDavid S. Miller 			net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3098e8599ff4SDavid S. Miller 			return;
3099e8599ff4SDavid S. Miller 		}
3100e8599ff4SDavid S. Miller 	}
3101e8599ff4SDavid S. Miller 
31026e157b6aSDavid S. Miller 	rt = (struct rt6_info *) dst;
3103ec13ad1dSMatthias Schiffer 	if (rt->rt6i_flags & RTF_REJECT) {
31046e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
31056e157b6aSDavid S. Miller 		return;
31066e157b6aSDavid S. Miller 	}
31076e157b6aSDavid S. Miller 
31086e157b6aSDavid S. Miller 	/* Redirect received -> path was valid.
31096e157b6aSDavid S. Miller 	 * Look, redirects are sent only in response to data packets,
31106e157b6aSDavid S. Miller 	 * so that this nexthop apparently is reachable. --ANK
31116e157b6aSDavid S. Miller 	 */
31120dec879fSJulian Anastasov 	dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
31136e157b6aSDavid S. Miller 
311471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
3115e8599ff4SDavid S. Miller 	if (!neigh)
3116e8599ff4SDavid S. Miller 		return;
3117e8599ff4SDavid S. Miller 
31181da177e4SLinus Torvalds 	/*
31191da177e4SLinus Torvalds 	 *	We have finally decided to accept it.
31201da177e4SLinus Torvalds 	 */
31211da177e4SLinus Torvalds 
3122f997c55cSAlexander Aring 	ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
31231da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_WEAK_OVERRIDE|
31241da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_OVERRIDE|
31251da177e4SLinus Torvalds 		     (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
3126f997c55cSAlexander Aring 				     NEIGH_UPDATE_F_ISROUTER)),
3127f997c55cSAlexander Aring 		     NDISC_REDIRECT, &ndopts);
31281da177e4SLinus Torvalds 
312983a09abdSMartin KaFai Lau 	nrt = ip6_rt_cache_alloc(rt, &msg->dest, NULL);
313038308473SDavid S. Miller 	if (!nrt)
31311da177e4SLinus Torvalds 		goto out;
31321da177e4SLinus Torvalds 
31331da177e4SLinus Torvalds 	nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
31341da177e4SLinus Torvalds 	if (on_link)
31351da177e4SLinus Torvalds 		nrt->rt6i_flags &= ~RTF_GATEWAY;
31361da177e4SLinus Torvalds 
3137b91d5329SXin Long 	nrt->rt6i_protocol = RTPROT_REDIRECT;
31384e3fd7a0SAlexey Dobriyan 	nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
31391da177e4SLinus Torvalds 
31402b760fcfSWei Wang 	/* No need to remove rt from the exception table if rt is
31412b760fcfSWei Wang 	 * a cached route because rt6_insert_exception() will
31422b760fcfSWei Wang 	 * takes care of it
31432b760fcfSWei Wang 	 */
31442b760fcfSWei Wang 	if (rt6_insert_exception(nrt, rt)) {
31452b760fcfSWei Wang 		dst_release_immediate(&nrt->dst);
31462b760fcfSWei Wang 		goto out;
31472b760fcfSWei Wang 	}
31481da177e4SLinus Torvalds 
3149d8d1f30bSChangli Gao 	netevent.old = &rt->dst;
3150d8d1f30bSChangli Gao 	netevent.new = &nrt->dst;
315171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	netevent.daddr = &msg->dest;
315260592833SYOSHIFUJI Hideaki / 吉藤英明 	netevent.neigh = neigh;
31538d71740cSTom Tucker 	call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
31548d71740cSTom Tucker 
31551da177e4SLinus Torvalds out:
3156e8599ff4SDavid S. Miller 	neigh_release(neigh);
31576e157b6aSDavid S. Miller }
31586e157b6aSDavid S. Miller 
31591da177e4SLinus Torvalds /*
31601da177e4SLinus Torvalds  *	Misc support functions
31611da177e4SLinus Torvalds  */
31621da177e4SLinus Torvalds 
31634b32b5adSMartin KaFai Lau static void rt6_set_from(struct rt6_info *rt, struct rt6_info *from)
31644b32b5adSMartin KaFai Lau {
31653a2232e9SDavid Miller 	BUG_ON(from->from);
31664b32b5adSMartin KaFai Lau 
31674b32b5adSMartin KaFai Lau 	rt->rt6i_flags &= ~RTF_EXPIRES;
31684b32b5adSMartin KaFai Lau 	dst_hold(&from->dst);
31693a2232e9SDavid Miller 	rt->from = from;
31704b32b5adSMartin KaFai Lau 	dst_init_metrics(&rt->dst, dst_metrics_ptr(&from->dst), true);
31714b32b5adSMartin KaFai Lau }
31724b32b5adSMartin KaFai Lau 
317383a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort)
31741da177e4SLinus Torvalds {
3175d8d1f30bSChangli Gao 	rt->dst.input = ort->dst.input;
3176d8d1f30bSChangli Gao 	rt->dst.output = ort->dst.output;
317783a09abdSMartin KaFai Lau 	rt->rt6i_dst = ort->rt6i_dst;
3178d8d1f30bSChangli Gao 	rt->dst.error = ort->dst.error;
31791da177e4SLinus Torvalds 	rt->rt6i_idev = ort->rt6i_idev;
31801da177e4SLinus Torvalds 	if (rt->rt6i_idev)
31811da177e4SLinus Torvalds 		in6_dev_hold(rt->rt6i_idev);
3182d8d1f30bSChangli Gao 	rt->dst.lastuse = jiffies;
31834e3fd7a0SAlexey Dobriyan 	rt->rt6i_gateway = ort->rt6i_gateway;
31841716a961SGao feng 	rt->rt6i_flags = ort->rt6i_flags;
31851716a961SGao feng 	rt6_set_from(rt, ort);
318683a09abdSMartin KaFai Lau 	rt->rt6i_metric = ort->rt6i_metric;
31871da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
318883a09abdSMartin KaFai Lau 	rt->rt6i_src = ort->rt6i_src;
31891da177e4SLinus Torvalds #endif
319083a09abdSMartin KaFai Lau 	rt->rt6i_prefsrc = ort->rt6i_prefsrc;
3191c71099acSThomas Graf 	rt->rt6i_table = ort->rt6i_table;
319261adedf3SJiri Benc 	rt->dst.lwtstate = lwtstate_get(ort->dst.lwtstate);
31931da177e4SLinus Torvalds }
31941da177e4SLinus Torvalds 
319570ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
3196efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net,
3197b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
3198830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
3199830218c1SDavid Ahern 					   struct net_device *dev)
320070ceb4f5SYOSHIFUJI Hideaki {
3201830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
3202830218c1SDavid Ahern 	int ifindex = dev->ifindex;
320370ceb4f5SYOSHIFUJI Hideaki 	struct fib6_node *fn;
320470ceb4f5SYOSHIFUJI Hideaki 	struct rt6_info *rt = NULL;
3205c71099acSThomas Graf 	struct fib6_table *table;
320670ceb4f5SYOSHIFUJI Hideaki 
3207830218c1SDavid Ahern 	table = fib6_get_table(net, tb_id);
320838308473SDavid S. Miller 	if (!table)
3209c71099acSThomas Graf 		return NULL;
3210c71099acSThomas Graf 
321166f5d6ceSWei Wang 	rcu_read_lock();
321238fbeeeeSWei Wang 	fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
321370ceb4f5SYOSHIFUJI Hideaki 	if (!fn)
321470ceb4f5SYOSHIFUJI Hideaki 		goto out;
321570ceb4f5SYOSHIFUJI Hideaki 
321666f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
3217d1918542SDavid S. Miller 		if (rt->dst.dev->ifindex != ifindex)
321870ceb4f5SYOSHIFUJI Hideaki 			continue;
321970ceb4f5SYOSHIFUJI Hideaki 		if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
322070ceb4f5SYOSHIFUJI Hideaki 			continue;
322170ceb4f5SYOSHIFUJI Hideaki 		if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr))
322270ceb4f5SYOSHIFUJI Hideaki 			continue;
3223d3843fe5SWei Wang 		ip6_hold_safe(NULL, &rt, false);
322470ceb4f5SYOSHIFUJI Hideaki 		break;
322570ceb4f5SYOSHIFUJI Hideaki 	}
322670ceb4f5SYOSHIFUJI Hideaki out:
322766f5d6ceSWei Wang 	rcu_read_unlock();
322870ceb4f5SYOSHIFUJI Hideaki 	return rt;
322970ceb4f5SYOSHIFUJI Hideaki }
323070ceb4f5SYOSHIFUJI Hideaki 
3231efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net,
3232b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
3233830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
3234830218c1SDavid Ahern 					   struct net_device *dev,
323595c96174SEric Dumazet 					   unsigned int pref)
323670ceb4f5SYOSHIFUJI Hideaki {
323786872cb5SThomas Graf 	struct fib6_config cfg = {
3238238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
3239830218c1SDavid Ahern 		.fc_ifindex	= dev->ifindex,
324086872cb5SThomas Graf 		.fc_dst_len	= prefixlen,
324186872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
324286872cb5SThomas Graf 				  RTF_UP | RTF_PREF(pref),
3243b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
324415e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
3245efa2cea0SDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
3246efa2cea0SDaniel Lezcano 		.fc_nlinfo.nl_net = net,
324786872cb5SThomas Graf 	};
324870ceb4f5SYOSHIFUJI Hideaki 
3249830218c1SDavid Ahern 	cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
32504e3fd7a0SAlexey Dobriyan 	cfg.fc_dst = *prefix;
32514e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
325286872cb5SThomas Graf 
3253e317da96SYOSHIFUJI Hideaki 	/* We should treat it as a default route if prefix length is 0. */
3254e317da96SYOSHIFUJI Hideaki 	if (!prefixlen)
325586872cb5SThomas Graf 		cfg.fc_flags |= RTF_DEFAULT;
325670ceb4f5SYOSHIFUJI Hideaki 
3257333c4301SDavid Ahern 	ip6_route_add(&cfg, NULL);
325870ceb4f5SYOSHIFUJI Hideaki 
3259830218c1SDavid Ahern 	return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
326070ceb4f5SYOSHIFUJI Hideaki }
326170ceb4f5SYOSHIFUJI Hideaki #endif
326270ceb4f5SYOSHIFUJI Hideaki 
3263b71d1d42SEric Dumazet struct rt6_info *rt6_get_dflt_router(const struct in6_addr *addr, struct net_device *dev)
32641da177e4SLinus Torvalds {
3265830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
32661da177e4SLinus Torvalds 	struct rt6_info *rt;
3267c71099acSThomas Graf 	struct fib6_table *table;
32681da177e4SLinus Torvalds 
3269830218c1SDavid Ahern 	table = fib6_get_table(dev_net(dev), tb_id);
327038308473SDavid S. Miller 	if (!table)
3271c71099acSThomas Graf 		return NULL;
32721da177e4SLinus Torvalds 
327366f5d6ceSWei Wang 	rcu_read_lock();
327466f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
3275d1918542SDavid S. Miller 		if (dev == rt->dst.dev &&
3276045927ffSYOSHIFUJI Hideaki 		    ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
32771da177e4SLinus Torvalds 		    ipv6_addr_equal(&rt->rt6i_gateway, addr))
32781da177e4SLinus Torvalds 			break;
32791da177e4SLinus Torvalds 	}
32801da177e4SLinus Torvalds 	if (rt)
3281d3843fe5SWei Wang 		ip6_hold_safe(NULL, &rt, false);
328266f5d6ceSWei Wang 	rcu_read_unlock();
32831da177e4SLinus Torvalds 	return rt;
32841da177e4SLinus Torvalds }
32851da177e4SLinus Torvalds 
3286b71d1d42SEric Dumazet struct rt6_info *rt6_add_dflt_router(const struct in6_addr *gwaddr,
3287ebacaaa0SYOSHIFUJI Hideaki 				     struct net_device *dev,
3288ebacaaa0SYOSHIFUJI Hideaki 				     unsigned int pref)
32891da177e4SLinus Torvalds {
329086872cb5SThomas Graf 	struct fib6_config cfg = {
3291ca254490SDavid Ahern 		.fc_table	= l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
3292238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
329386872cb5SThomas Graf 		.fc_ifindex	= dev->ifindex,
329486872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
329586872cb5SThomas Graf 				  RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
3296b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
329715e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
32985578689aSDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
3299c346dca1SYOSHIFUJI Hideaki 		.fc_nlinfo.nl_net = dev_net(dev),
330086872cb5SThomas Graf 	};
33011da177e4SLinus Torvalds 
33024e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
33031da177e4SLinus Torvalds 
3304333c4301SDavid Ahern 	if (!ip6_route_add(&cfg, NULL)) {
3305830218c1SDavid Ahern 		struct fib6_table *table;
3306830218c1SDavid Ahern 
3307830218c1SDavid Ahern 		table = fib6_get_table(dev_net(dev), cfg.fc_table);
3308830218c1SDavid Ahern 		if (table)
3309830218c1SDavid Ahern 			table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
3310830218c1SDavid Ahern 	}
33111da177e4SLinus Torvalds 
33121da177e4SLinus Torvalds 	return rt6_get_dflt_router(gwaddr, dev);
33131da177e4SLinus Torvalds }
33141da177e4SLinus Torvalds 
3315830218c1SDavid Ahern static void __rt6_purge_dflt_routers(struct fib6_table *table)
33161da177e4SLinus Torvalds {
33171da177e4SLinus Torvalds 	struct rt6_info *rt;
33181da177e4SLinus Torvalds 
33191da177e4SLinus Torvalds restart:
332066f5d6ceSWei Wang 	rcu_read_lock();
332166f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
33223e8b0ac3SLorenzo Colitti 		if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
33233e8b0ac3SLorenzo Colitti 		    (!rt->rt6i_idev || rt->rt6i_idev->cnf.accept_ra != 2)) {
3324d3843fe5SWei Wang 			if (dst_hold_safe(&rt->dst)) {
332566f5d6ceSWei Wang 				rcu_read_unlock();
3326e0a1ad73SThomas Graf 				ip6_del_rt(rt);
3327d3843fe5SWei Wang 			} else {
332866f5d6ceSWei Wang 				rcu_read_unlock();
3329d3843fe5SWei Wang 			}
33301da177e4SLinus Torvalds 			goto restart;
33311da177e4SLinus Torvalds 		}
33321da177e4SLinus Torvalds 	}
333366f5d6ceSWei Wang 	rcu_read_unlock();
3334830218c1SDavid Ahern 
3335830218c1SDavid Ahern 	table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
3336830218c1SDavid Ahern }
3337830218c1SDavid Ahern 
3338830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net)
3339830218c1SDavid Ahern {
3340830218c1SDavid Ahern 	struct fib6_table *table;
3341830218c1SDavid Ahern 	struct hlist_head *head;
3342830218c1SDavid Ahern 	unsigned int h;
3343830218c1SDavid Ahern 
3344830218c1SDavid Ahern 	rcu_read_lock();
3345830218c1SDavid Ahern 
3346830218c1SDavid Ahern 	for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
3347830218c1SDavid Ahern 		head = &net->ipv6.fib_table_hash[h];
3348830218c1SDavid Ahern 		hlist_for_each_entry_rcu(table, head, tb6_hlist) {
3349830218c1SDavid Ahern 			if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
3350830218c1SDavid Ahern 				__rt6_purge_dflt_routers(table);
3351830218c1SDavid Ahern 		}
3352830218c1SDavid Ahern 	}
3353830218c1SDavid Ahern 
3354830218c1SDavid Ahern 	rcu_read_unlock();
33551da177e4SLinus Torvalds }
33561da177e4SLinus Torvalds 
33575578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net,
33585578689aSDaniel Lezcano 				 struct in6_rtmsg *rtmsg,
335986872cb5SThomas Graf 				 struct fib6_config *cfg)
336086872cb5SThomas Graf {
336186872cb5SThomas Graf 	memset(cfg, 0, sizeof(*cfg));
336286872cb5SThomas Graf 
3363ca254490SDavid Ahern 	cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
3364ca254490SDavid Ahern 			 : RT6_TABLE_MAIN;
336586872cb5SThomas Graf 	cfg->fc_ifindex = rtmsg->rtmsg_ifindex;
336686872cb5SThomas Graf 	cfg->fc_metric = rtmsg->rtmsg_metric;
336786872cb5SThomas Graf 	cfg->fc_expires = rtmsg->rtmsg_info;
336886872cb5SThomas Graf 	cfg->fc_dst_len = rtmsg->rtmsg_dst_len;
336986872cb5SThomas Graf 	cfg->fc_src_len = rtmsg->rtmsg_src_len;
337086872cb5SThomas Graf 	cfg->fc_flags = rtmsg->rtmsg_flags;
337186872cb5SThomas Graf 
33725578689aSDaniel Lezcano 	cfg->fc_nlinfo.nl_net = net;
3373f1243c2dSBenjamin Thery 
33744e3fd7a0SAlexey Dobriyan 	cfg->fc_dst = rtmsg->rtmsg_dst;
33754e3fd7a0SAlexey Dobriyan 	cfg->fc_src = rtmsg->rtmsg_src;
33764e3fd7a0SAlexey Dobriyan 	cfg->fc_gateway = rtmsg->rtmsg_gateway;
337786872cb5SThomas Graf }
337886872cb5SThomas Graf 
33795578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
33801da177e4SLinus Torvalds {
338186872cb5SThomas Graf 	struct fib6_config cfg;
33821da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
33831da177e4SLinus Torvalds 	int err;
33841da177e4SLinus Torvalds 
33851da177e4SLinus Torvalds 	switch (cmd) {
33861da177e4SLinus Torvalds 	case SIOCADDRT:		/* Add a route */
33871da177e4SLinus Torvalds 	case SIOCDELRT:		/* Delete a route */
3388af31f412SEric W. Biederman 		if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
33891da177e4SLinus Torvalds 			return -EPERM;
33901da177e4SLinus Torvalds 		err = copy_from_user(&rtmsg, arg,
33911da177e4SLinus Torvalds 				     sizeof(struct in6_rtmsg));
33921da177e4SLinus Torvalds 		if (err)
33931da177e4SLinus Torvalds 			return -EFAULT;
33941da177e4SLinus Torvalds 
33955578689aSDaniel Lezcano 		rtmsg_to_fib6_config(net, &rtmsg, &cfg);
339686872cb5SThomas Graf 
33971da177e4SLinus Torvalds 		rtnl_lock();
33981da177e4SLinus Torvalds 		switch (cmd) {
33991da177e4SLinus Torvalds 		case SIOCADDRT:
3400333c4301SDavid Ahern 			err = ip6_route_add(&cfg, NULL);
34011da177e4SLinus Torvalds 			break;
34021da177e4SLinus Torvalds 		case SIOCDELRT:
3403333c4301SDavid Ahern 			err = ip6_route_del(&cfg, NULL);
34041da177e4SLinus Torvalds 			break;
34051da177e4SLinus Torvalds 		default:
34061da177e4SLinus Torvalds 			err = -EINVAL;
34071da177e4SLinus Torvalds 		}
34081da177e4SLinus Torvalds 		rtnl_unlock();
34091da177e4SLinus Torvalds 
34101da177e4SLinus Torvalds 		return err;
34113ff50b79SStephen Hemminger 	}
34121da177e4SLinus Torvalds 
34131da177e4SLinus Torvalds 	return -EINVAL;
34141da177e4SLinus Torvalds }
34151da177e4SLinus Torvalds 
34161da177e4SLinus Torvalds /*
34171da177e4SLinus Torvalds  *	Drop the packet on the floor
34181da177e4SLinus Torvalds  */
34191da177e4SLinus Torvalds 
3420d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
34211da177e4SLinus Torvalds {
3422612f09e8SYOSHIFUJI Hideaki 	int type;
3423adf30907SEric Dumazet 	struct dst_entry *dst = skb_dst(skb);
3424612f09e8SYOSHIFUJI Hideaki 	switch (ipstats_mib_noroutes) {
3425612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_INNOROUTES:
34260660e03fSArnaldo Carvalho de Melo 		type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
342745bb0060SUlrich Weber 		if (type == IPV6_ADDR_ANY) {
34283bd653c8SDenis V. Lunev 			IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
34293bd653c8SDenis V. Lunev 				      IPSTATS_MIB_INADDRERRORS);
3430612f09e8SYOSHIFUJI Hideaki 			break;
3431612f09e8SYOSHIFUJI Hideaki 		}
3432612f09e8SYOSHIFUJI Hideaki 		/* FALLTHROUGH */
3433612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_OUTNOROUTES:
34343bd653c8SDenis V. Lunev 		IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
34353bd653c8SDenis V. Lunev 			      ipstats_mib_noroutes);
3436612f09e8SYOSHIFUJI Hideaki 		break;
3437612f09e8SYOSHIFUJI Hideaki 	}
34383ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
34391da177e4SLinus Torvalds 	kfree_skb(skb);
34401da177e4SLinus Torvalds 	return 0;
34411da177e4SLinus Torvalds }
34421da177e4SLinus Torvalds 
34439ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb)
34449ce8ade0SThomas Graf {
3445612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
34469ce8ade0SThomas Graf }
34479ce8ade0SThomas Graf 
3448ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
34491da177e4SLinus Torvalds {
3450adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
3451612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
34521da177e4SLinus Torvalds }
34531da177e4SLinus Torvalds 
34549ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb)
34559ce8ade0SThomas Graf {
3456612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
34579ce8ade0SThomas Graf }
34589ce8ade0SThomas Graf 
3459ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
34609ce8ade0SThomas Graf {
3461adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
3462612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
34639ce8ade0SThomas Graf }
34649ce8ade0SThomas Graf 
34651da177e4SLinus Torvalds /*
34661da177e4SLinus Torvalds  *	Allocate a dst for local (unicast / anycast) address.
34671da177e4SLinus Torvalds  */
34681da177e4SLinus Torvalds 
34691da177e4SLinus Torvalds struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev,
34701da177e4SLinus Torvalds 				    const struct in6_addr *addr,
34718f031519SDavid S. Miller 				    bool anycast)
34721da177e4SLinus Torvalds {
3473ca254490SDavid Ahern 	u32 tb_id;
3474c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(idev->dev);
34754832c30dSDavid Ahern 	struct net_device *dev = idev->dev;
34765f02ce24SDavid Ahern 	struct rt6_info *rt;
34775f02ce24SDavid Ahern 
34785f02ce24SDavid Ahern 	rt = ip6_dst_alloc(net, dev, DST_NOCOUNT);
3479a3300ef4SHannes Frederic Sowa 	if (!rt)
34801da177e4SLinus Torvalds 		return ERR_PTR(-ENOMEM);
34811da177e4SLinus Torvalds 
34821da177e4SLinus Torvalds 	in6_dev_hold(idev);
34831da177e4SLinus Torvalds 
348411d53b49SDavid S. Miller 	rt->dst.flags |= DST_HOST;
3485d8d1f30bSChangli Gao 	rt->dst.input = ip6_input;
3486d8d1f30bSChangli Gao 	rt->dst.output = ip6_output;
34871da177e4SLinus Torvalds 	rt->rt6i_idev = idev;
34881da177e4SLinus Torvalds 
348994b5e0f9SDavid Ahern 	rt->rt6i_protocol = RTPROT_KERNEL;
34901da177e4SLinus Torvalds 	rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP;
349158c4fb86SYOSHIFUJI Hideaki 	if (anycast)
349258c4fb86SYOSHIFUJI Hideaki 		rt->rt6i_flags |= RTF_ANYCAST;
349358c4fb86SYOSHIFUJI Hideaki 	else
34941da177e4SLinus Torvalds 		rt->rt6i_flags |= RTF_LOCAL;
34951da177e4SLinus Torvalds 
3496550bab42SJulian Anastasov 	rt->rt6i_gateway  = *addr;
34974e3fd7a0SAlexey Dobriyan 	rt->rt6i_dst.addr = *addr;
34981da177e4SLinus Torvalds 	rt->rt6i_dst.plen = 128;
3499ca254490SDavid Ahern 	tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL;
3500ca254490SDavid Ahern 	rt->rt6i_table = fib6_get_table(net, tb_id);
35011da177e4SLinus Torvalds 
35021da177e4SLinus Torvalds 	return rt;
35031da177e4SLinus Torvalds }
35041da177e4SLinus Torvalds 
3505c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */
3506c3968a85SDaniel Walter struct arg_dev_net_ip {
3507c3968a85SDaniel Walter 	struct net_device *dev;
3508c3968a85SDaniel Walter 	struct net *net;
3509c3968a85SDaniel Walter 	struct in6_addr *addr;
3510c3968a85SDaniel Walter };
3511c3968a85SDaniel Walter 
3512c3968a85SDaniel Walter static int fib6_remove_prefsrc(struct rt6_info *rt, void *arg)
3513c3968a85SDaniel Walter {
3514c3968a85SDaniel Walter 	struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
3515c3968a85SDaniel Walter 	struct net *net = ((struct arg_dev_net_ip *)arg)->net;
3516c3968a85SDaniel Walter 	struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
3517c3968a85SDaniel Walter 
3518d1918542SDavid S. Miller 	if (((void *)rt->dst.dev == dev || !dev) &&
3519c3968a85SDaniel Walter 	    rt != net->ipv6.ip6_null_entry &&
3520c3968a85SDaniel Walter 	    ipv6_addr_equal(addr, &rt->rt6i_prefsrc.addr)) {
352160006a48SWei Wang 		spin_lock_bh(&rt6_exception_lock);
3522c3968a85SDaniel Walter 		/* remove prefsrc entry */
3523c3968a85SDaniel Walter 		rt->rt6i_prefsrc.plen = 0;
352460006a48SWei Wang 		/* need to update cache as well */
352560006a48SWei Wang 		rt6_exceptions_remove_prefsrc(rt);
352660006a48SWei Wang 		spin_unlock_bh(&rt6_exception_lock);
3527c3968a85SDaniel Walter 	}
3528c3968a85SDaniel Walter 	return 0;
3529c3968a85SDaniel Walter }
3530c3968a85SDaniel Walter 
3531c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
3532c3968a85SDaniel Walter {
3533c3968a85SDaniel Walter 	struct net *net = dev_net(ifp->idev->dev);
3534c3968a85SDaniel Walter 	struct arg_dev_net_ip adni = {
3535c3968a85SDaniel Walter 		.dev = ifp->idev->dev,
3536c3968a85SDaniel Walter 		.net = net,
3537c3968a85SDaniel Walter 		.addr = &ifp->addr,
3538c3968a85SDaniel Walter 	};
35390c3584d5SLi RongQing 	fib6_clean_all(net, fib6_remove_prefsrc, &adni);
3540c3968a85SDaniel Walter }
3541c3968a85SDaniel Walter 
3542be7a010dSDuan Jiong #define RTF_RA_ROUTER		(RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY)
3543be7a010dSDuan Jiong 
3544be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */
3545be7a010dSDuan Jiong static int fib6_clean_tohost(struct rt6_info *rt, void *arg)
3546be7a010dSDuan Jiong {
3547be7a010dSDuan Jiong 	struct in6_addr *gateway = (struct in6_addr *)arg;
3548be7a010dSDuan Jiong 
35492b760fcfSWei Wang 	if (((rt->rt6i_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
3550be7a010dSDuan Jiong 	    ipv6_addr_equal(gateway, &rt->rt6i_gateway)) {
3551be7a010dSDuan Jiong 		return -1;
3552be7a010dSDuan Jiong 	}
3553b16cb459SWei Wang 
3554b16cb459SWei Wang 	/* Further clean up cached routes in exception table.
3555b16cb459SWei Wang 	 * This is needed because cached route may have a different
3556b16cb459SWei Wang 	 * gateway than its 'parent' in the case of an ip redirect.
3557b16cb459SWei Wang 	 */
3558b16cb459SWei Wang 	rt6_exceptions_clean_tohost(rt, gateway);
3559b16cb459SWei Wang 
3560be7a010dSDuan Jiong 	return 0;
3561be7a010dSDuan Jiong }
3562be7a010dSDuan Jiong 
3563be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
3564be7a010dSDuan Jiong {
3565be7a010dSDuan Jiong 	fib6_clean_all(net, fib6_clean_tohost, gateway);
3566be7a010dSDuan Jiong }
3567be7a010dSDuan Jiong 
35682127d95aSIdo Schimmel struct arg_netdev_event {
35692127d95aSIdo Schimmel 	const struct net_device *dev;
35704c981e28SIdo Schimmel 	union {
35712127d95aSIdo Schimmel 		unsigned int nh_flags;
35724c981e28SIdo Schimmel 		unsigned long event;
35734c981e28SIdo Schimmel 	};
35742127d95aSIdo Schimmel };
35752127d95aSIdo Schimmel 
3576d7dedee1SIdo Schimmel static struct rt6_info *rt6_multipath_first_sibling(const struct rt6_info *rt)
3577d7dedee1SIdo Schimmel {
3578d7dedee1SIdo Schimmel 	struct rt6_info *iter;
3579d7dedee1SIdo Schimmel 	struct fib6_node *fn;
3580d7dedee1SIdo Schimmel 
3581d7dedee1SIdo Schimmel 	fn = rcu_dereference_protected(rt->rt6i_node,
3582d7dedee1SIdo Schimmel 			lockdep_is_held(&rt->rt6i_table->tb6_lock));
3583d7dedee1SIdo Schimmel 	iter = rcu_dereference_protected(fn->leaf,
3584d7dedee1SIdo Schimmel 			lockdep_is_held(&rt->rt6i_table->tb6_lock));
3585d7dedee1SIdo Schimmel 	while (iter) {
3586d7dedee1SIdo Schimmel 		if (iter->rt6i_metric == rt->rt6i_metric &&
3587d7dedee1SIdo Schimmel 		    rt6_qualify_for_ecmp(iter))
3588d7dedee1SIdo Schimmel 			return iter;
3589d7dedee1SIdo Schimmel 		iter = rcu_dereference_protected(iter->rt6_next,
3590d7dedee1SIdo Schimmel 				lockdep_is_held(&rt->rt6i_table->tb6_lock));
3591d7dedee1SIdo Schimmel 	}
3592d7dedee1SIdo Schimmel 
3593d7dedee1SIdo Schimmel 	return NULL;
3594d7dedee1SIdo Schimmel }
3595d7dedee1SIdo Schimmel 
3596d7dedee1SIdo Schimmel static bool rt6_is_dead(const struct rt6_info *rt)
3597d7dedee1SIdo Schimmel {
3598d7dedee1SIdo Schimmel 	if (rt->rt6i_nh_flags & RTNH_F_DEAD ||
3599d7dedee1SIdo Schimmel 	    (rt->rt6i_nh_flags & RTNH_F_LINKDOWN &&
3600d7dedee1SIdo Schimmel 	     rt->rt6i_idev->cnf.ignore_routes_with_linkdown))
3601d7dedee1SIdo Schimmel 		return true;
3602d7dedee1SIdo Schimmel 
3603d7dedee1SIdo Schimmel 	return false;
3604d7dedee1SIdo Schimmel }
3605d7dedee1SIdo Schimmel 
3606d7dedee1SIdo Schimmel static int rt6_multipath_total_weight(const struct rt6_info *rt)
3607d7dedee1SIdo Schimmel {
3608d7dedee1SIdo Schimmel 	struct rt6_info *iter;
3609d7dedee1SIdo Schimmel 	int total = 0;
3610d7dedee1SIdo Schimmel 
3611d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt))
3612398958aeSIdo Schimmel 		total += rt->rt6i_nh_weight;
3613d7dedee1SIdo Schimmel 
3614d7dedee1SIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings) {
3615d7dedee1SIdo Schimmel 		if (!rt6_is_dead(iter))
3616398958aeSIdo Schimmel 			total += iter->rt6i_nh_weight;
3617d7dedee1SIdo Schimmel 	}
3618d7dedee1SIdo Schimmel 
3619d7dedee1SIdo Schimmel 	return total;
3620d7dedee1SIdo Schimmel }
3621d7dedee1SIdo Schimmel 
3622d7dedee1SIdo Schimmel static void rt6_upper_bound_set(struct rt6_info *rt, int *weight, int total)
3623d7dedee1SIdo Schimmel {
3624d7dedee1SIdo Schimmel 	int upper_bound = -1;
3625d7dedee1SIdo Schimmel 
3626d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt)) {
3627398958aeSIdo Schimmel 		*weight += rt->rt6i_nh_weight;
3628d7dedee1SIdo Schimmel 		upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
3629d7dedee1SIdo Schimmel 						    total) - 1;
3630d7dedee1SIdo Schimmel 	}
3631d7dedee1SIdo Schimmel 	atomic_set(&rt->rt6i_nh_upper_bound, upper_bound);
3632d7dedee1SIdo Schimmel }
3633d7dedee1SIdo Schimmel 
3634d7dedee1SIdo Schimmel static void rt6_multipath_upper_bound_set(struct rt6_info *rt, int total)
3635d7dedee1SIdo Schimmel {
3636d7dedee1SIdo Schimmel 	struct rt6_info *iter;
3637d7dedee1SIdo Schimmel 	int weight = 0;
3638d7dedee1SIdo Schimmel 
3639d7dedee1SIdo Schimmel 	rt6_upper_bound_set(rt, &weight, total);
3640d7dedee1SIdo Schimmel 
3641d7dedee1SIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3642d7dedee1SIdo Schimmel 		rt6_upper_bound_set(iter, &weight, total);
3643d7dedee1SIdo Schimmel }
3644d7dedee1SIdo Schimmel 
3645d7dedee1SIdo Schimmel void rt6_multipath_rebalance(struct rt6_info *rt)
3646d7dedee1SIdo Schimmel {
3647d7dedee1SIdo Schimmel 	struct rt6_info *first;
3648d7dedee1SIdo Schimmel 	int total;
3649d7dedee1SIdo Schimmel 
3650d7dedee1SIdo Schimmel 	/* In case the entire multipath route was marked for flushing,
3651d7dedee1SIdo Schimmel 	 * then there is no need to rebalance upon the removal of every
3652d7dedee1SIdo Schimmel 	 * sibling route.
3653d7dedee1SIdo Schimmel 	 */
3654d7dedee1SIdo Schimmel 	if (!rt->rt6i_nsiblings || rt->should_flush)
3655d7dedee1SIdo Schimmel 		return;
3656d7dedee1SIdo Schimmel 
3657d7dedee1SIdo Schimmel 	/* During lookup routes are evaluated in order, so we need to
3658d7dedee1SIdo Schimmel 	 * make sure upper bounds are assigned from the first sibling
3659d7dedee1SIdo Schimmel 	 * onwards.
3660d7dedee1SIdo Schimmel 	 */
3661d7dedee1SIdo Schimmel 	first = rt6_multipath_first_sibling(rt);
3662d7dedee1SIdo Schimmel 	if (WARN_ON_ONCE(!first))
3663d7dedee1SIdo Schimmel 		return;
3664d7dedee1SIdo Schimmel 
3665d7dedee1SIdo Schimmel 	total = rt6_multipath_total_weight(first);
3666d7dedee1SIdo Schimmel 	rt6_multipath_upper_bound_set(first, total);
3667d7dedee1SIdo Schimmel }
3668d7dedee1SIdo Schimmel 
36692127d95aSIdo Schimmel static int fib6_ifup(struct rt6_info *rt, void *p_arg)
36702127d95aSIdo Schimmel {
36712127d95aSIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
36722127d95aSIdo Schimmel 	const struct net *net = dev_net(arg->dev);
36732127d95aSIdo Schimmel 
36741de178edSIdo Schimmel 	if (rt != net->ipv6.ip6_null_entry && rt->dst.dev == arg->dev) {
36752127d95aSIdo Schimmel 		rt->rt6i_nh_flags &= ~arg->nh_flags;
36761de178edSIdo Schimmel 		fib6_update_sernum_upto_root(dev_net(rt->dst.dev), rt);
3677d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
36781de178edSIdo Schimmel 	}
36792127d95aSIdo Schimmel 
36802127d95aSIdo Schimmel 	return 0;
36812127d95aSIdo Schimmel }
36822127d95aSIdo Schimmel 
36832127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags)
36842127d95aSIdo Schimmel {
36852127d95aSIdo Schimmel 	struct arg_netdev_event arg = {
36862127d95aSIdo Schimmel 		.dev = dev,
36876802f3adSIdo Schimmel 		{
36882127d95aSIdo Schimmel 			.nh_flags = nh_flags,
36896802f3adSIdo Schimmel 		},
36902127d95aSIdo Schimmel 	};
36912127d95aSIdo Schimmel 
36922127d95aSIdo Schimmel 	if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
36932127d95aSIdo Schimmel 		arg.nh_flags |= RTNH_F_LINKDOWN;
36942127d95aSIdo Schimmel 
36952127d95aSIdo Schimmel 	fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
36962127d95aSIdo Schimmel }
36972127d95aSIdo Schimmel 
36981de178edSIdo Schimmel static bool rt6_multipath_uses_dev(const struct rt6_info *rt,
36991de178edSIdo Schimmel 				   const struct net_device *dev)
37001de178edSIdo Schimmel {
37011de178edSIdo Schimmel 	struct rt6_info *iter;
37021de178edSIdo Schimmel 
37031de178edSIdo Schimmel 	if (rt->dst.dev == dev)
37041de178edSIdo Schimmel 		return true;
37051de178edSIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
37061de178edSIdo Schimmel 		if (iter->dst.dev == dev)
37071de178edSIdo Schimmel 			return true;
37081de178edSIdo Schimmel 
37091de178edSIdo Schimmel 	return false;
37101de178edSIdo Schimmel }
37111de178edSIdo Schimmel 
37121de178edSIdo Schimmel static void rt6_multipath_flush(struct rt6_info *rt)
37131de178edSIdo Schimmel {
37141de178edSIdo Schimmel 	struct rt6_info *iter;
37151de178edSIdo Schimmel 
37161de178edSIdo Schimmel 	rt->should_flush = 1;
37171de178edSIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
37181de178edSIdo Schimmel 		iter->should_flush = 1;
37191de178edSIdo Schimmel }
37201de178edSIdo Schimmel 
37211de178edSIdo Schimmel static unsigned int rt6_multipath_dead_count(const struct rt6_info *rt,
37221de178edSIdo Schimmel 					     const struct net_device *down_dev)
37231de178edSIdo Schimmel {
37241de178edSIdo Schimmel 	struct rt6_info *iter;
37251de178edSIdo Schimmel 	unsigned int dead = 0;
37261de178edSIdo Schimmel 
37271de178edSIdo Schimmel 	if (rt->dst.dev == down_dev || rt->rt6i_nh_flags & RTNH_F_DEAD)
37281de178edSIdo Schimmel 		dead++;
37291de178edSIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
37301de178edSIdo Schimmel 		if (iter->dst.dev == down_dev ||
37311de178edSIdo Schimmel 		    iter->rt6i_nh_flags & RTNH_F_DEAD)
37321de178edSIdo Schimmel 			dead++;
37331de178edSIdo Schimmel 
37341de178edSIdo Schimmel 	return dead;
37351de178edSIdo Schimmel }
37361de178edSIdo Schimmel 
37371de178edSIdo Schimmel static void rt6_multipath_nh_flags_set(struct rt6_info *rt,
37381de178edSIdo Schimmel 				       const struct net_device *dev,
37391de178edSIdo Schimmel 				       unsigned int nh_flags)
37401de178edSIdo Schimmel {
37411de178edSIdo Schimmel 	struct rt6_info *iter;
37421de178edSIdo Schimmel 
37431de178edSIdo Schimmel 	if (rt->dst.dev == dev)
37441de178edSIdo Schimmel 		rt->rt6i_nh_flags |= nh_flags;
37451de178edSIdo Schimmel 	list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
37461de178edSIdo Schimmel 		if (iter->dst.dev == dev)
37471de178edSIdo Schimmel 			iter->rt6i_nh_flags |= nh_flags;
37481de178edSIdo Schimmel }
37491de178edSIdo Schimmel 
3750a1a22c12SDavid Ahern /* called with write lock held for table with rt */
37514c981e28SIdo Schimmel static int fib6_ifdown(struct rt6_info *rt, void *p_arg)
37521da177e4SLinus Torvalds {
37534c981e28SIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
37544c981e28SIdo Schimmel 	const struct net_device *dev = arg->dev;
37554c981e28SIdo Schimmel 	const struct net *net = dev_net(dev);
37568ed67789SDaniel Lezcano 
37571de178edSIdo Schimmel 	if (rt == net->ipv6.ip6_null_entry)
375827c6fa73SIdo Schimmel 		return 0;
375927c6fa73SIdo Schimmel 
376027c6fa73SIdo Schimmel 	switch (arg->event) {
376127c6fa73SIdo Schimmel 	case NETDEV_UNREGISTER:
37621de178edSIdo Schimmel 		return rt->dst.dev == dev ? -1 : 0;
376327c6fa73SIdo Schimmel 	case NETDEV_DOWN:
37641de178edSIdo Schimmel 		if (rt->should_flush)
376527c6fa73SIdo Schimmel 			return -1;
37661de178edSIdo Schimmel 		if (!rt->rt6i_nsiblings)
37671de178edSIdo Schimmel 			return rt->dst.dev == dev ? -1 : 0;
37681de178edSIdo Schimmel 		if (rt6_multipath_uses_dev(rt, dev)) {
37691de178edSIdo Schimmel 			unsigned int count;
37701de178edSIdo Schimmel 
37711de178edSIdo Schimmel 			count = rt6_multipath_dead_count(rt, dev);
37721de178edSIdo Schimmel 			if (rt->rt6i_nsiblings + 1 == count) {
37731de178edSIdo Schimmel 				rt6_multipath_flush(rt);
37741de178edSIdo Schimmel 				return -1;
37751de178edSIdo Schimmel 			}
37761de178edSIdo Schimmel 			rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
37771de178edSIdo Schimmel 						   RTNH_F_LINKDOWN);
37781de178edSIdo Schimmel 			fib6_update_sernum(rt);
3779d7dedee1SIdo Schimmel 			rt6_multipath_rebalance(rt);
37801de178edSIdo Schimmel 		}
37811de178edSIdo Schimmel 		return -2;
378227c6fa73SIdo Schimmel 	case NETDEV_CHANGE:
37831de178edSIdo Schimmel 		if (rt->dst.dev != dev ||
37841de178edSIdo Schimmel 		    rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST))
378527c6fa73SIdo Schimmel 			break;
378627c6fa73SIdo Schimmel 		rt->rt6i_nh_flags |= RTNH_F_LINKDOWN;
3787d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
378827c6fa73SIdo Schimmel 		break;
37892b241361SIdo Schimmel 	}
3790c159d30cSDavid S. Miller 
37911da177e4SLinus Torvalds 	return 0;
37921da177e4SLinus Torvalds }
37931da177e4SLinus Torvalds 
379427c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
37951da177e4SLinus Torvalds {
37964c981e28SIdo Schimmel 	struct arg_netdev_event arg = {
37978ed67789SDaniel Lezcano 		.dev = dev,
37986802f3adSIdo Schimmel 		{
37994c981e28SIdo Schimmel 			.event = event,
38006802f3adSIdo Schimmel 		},
38018ed67789SDaniel Lezcano 	};
38028ed67789SDaniel Lezcano 
38034c981e28SIdo Schimmel 	fib6_clean_all(dev_net(dev), fib6_ifdown, &arg);
38044c981e28SIdo Schimmel }
38054c981e28SIdo Schimmel 
38064c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event)
38074c981e28SIdo Schimmel {
38084c981e28SIdo Schimmel 	rt6_sync_down_dev(dev, event);
38094c981e28SIdo Schimmel 	rt6_uncached_list_flush_dev(dev_net(dev), dev);
38104c981e28SIdo Schimmel 	neigh_ifdown(&nd_tbl, dev);
38111da177e4SLinus Torvalds }
38121da177e4SLinus Torvalds 
381395c96174SEric Dumazet struct rt6_mtu_change_arg {
38141da177e4SLinus Torvalds 	struct net_device *dev;
381595c96174SEric Dumazet 	unsigned int mtu;
38161da177e4SLinus Torvalds };
38171da177e4SLinus Torvalds 
38181da177e4SLinus Torvalds static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg)
38191da177e4SLinus Torvalds {
38201da177e4SLinus Torvalds 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
38211da177e4SLinus Torvalds 	struct inet6_dev *idev;
38221da177e4SLinus Torvalds 
38231da177e4SLinus Torvalds 	/* In IPv6 pmtu discovery is not optional,
38241da177e4SLinus Torvalds 	   so that RTAX_MTU lock cannot disable it.
38251da177e4SLinus Torvalds 	   We still use this lock to block changes
38261da177e4SLinus Torvalds 	   caused by addrconf/ndisc.
38271da177e4SLinus Torvalds 	*/
38281da177e4SLinus Torvalds 
38291da177e4SLinus Torvalds 	idev = __in6_dev_get(arg->dev);
383038308473SDavid S. Miller 	if (!idev)
38311da177e4SLinus Torvalds 		return 0;
38321da177e4SLinus Torvalds 
38331da177e4SLinus Torvalds 	/* For administrative MTU increase, there is no way to discover
38341da177e4SLinus Torvalds 	   IPv6 PMTU increase, so PMTU increase should be updated here.
38351da177e4SLinus Torvalds 	   Since RFC 1981 doesn't include administrative MTU increase
38361da177e4SLinus Torvalds 	   update PMTU increase is a MUST. (i.e. jumbo frame)
38371da177e4SLinus Torvalds 	 */
3838d1918542SDavid S. Miller 	if (rt->dst.dev == arg->dev &&
38394b32b5adSMartin KaFai Lau 	    !dst_metric_locked(&rt->dst, RTAX_MTU)) {
3840f5bbe7eeSWei Wang 		spin_lock_bh(&rt6_exception_lock);
3841e9fa1495SStefano Brivio 		if (dst_metric_raw(&rt->dst, RTAX_MTU) &&
3842e9fa1495SStefano Brivio 		    rt6_mtu_change_route_allowed(idev, rt, arg->mtu))
3843defb3519SDavid S. Miller 			dst_metric_set(&rt->dst, RTAX_MTU, arg->mtu);
3844e9fa1495SStefano Brivio 		rt6_exceptions_update_pmtu(idev, rt, arg->mtu);
3845f5bbe7eeSWei Wang 		spin_unlock_bh(&rt6_exception_lock);
38464b32b5adSMartin KaFai Lau 	}
38471da177e4SLinus Torvalds 	return 0;
38481da177e4SLinus Torvalds }
38491da177e4SLinus Torvalds 
385095c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
38511da177e4SLinus Torvalds {
3852c71099acSThomas Graf 	struct rt6_mtu_change_arg arg = {
3853c71099acSThomas Graf 		.dev = dev,
3854c71099acSThomas Graf 		.mtu = mtu,
3855c71099acSThomas Graf 	};
38561da177e4SLinus Torvalds 
38570c3584d5SLi RongQing 	fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
38581da177e4SLinus Torvalds }
38591da177e4SLinus Torvalds 
3860ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
38615176f91eSThomas Graf 	[RTA_GATEWAY]           = { .len = sizeof(struct in6_addr) },
386286872cb5SThomas Graf 	[RTA_OIF]               = { .type = NLA_U32 },
3863ab364a6fSThomas Graf 	[RTA_IIF]		= { .type = NLA_U32 },
386486872cb5SThomas Graf 	[RTA_PRIORITY]          = { .type = NLA_U32 },
386586872cb5SThomas Graf 	[RTA_METRICS]           = { .type = NLA_NESTED },
386651ebd318SNicolas Dichtel 	[RTA_MULTIPATH]		= { .len = sizeof(struct rtnexthop) },
3867c78ba6d6SLubomir Rintel 	[RTA_PREF]              = { .type = NLA_U8 },
386819e42e45SRoopa Prabhu 	[RTA_ENCAP_TYPE]	= { .type = NLA_U16 },
386919e42e45SRoopa Prabhu 	[RTA_ENCAP]		= { .type = NLA_NESTED },
387032bc201eSXin Long 	[RTA_EXPIRES]		= { .type = NLA_U32 },
3871622ec2c9SLorenzo Colitti 	[RTA_UID]		= { .type = NLA_U32 },
38723b45a410SLiping Zhang 	[RTA_MARK]		= { .type = NLA_U32 },
387386872cb5SThomas Graf };
387486872cb5SThomas Graf 
387586872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
3876333c4301SDavid Ahern 			      struct fib6_config *cfg,
3877333c4301SDavid Ahern 			      struct netlink_ext_ack *extack)
38781da177e4SLinus Torvalds {
387986872cb5SThomas Graf 	struct rtmsg *rtm;
388086872cb5SThomas Graf 	struct nlattr *tb[RTA_MAX+1];
3881c78ba6d6SLubomir Rintel 	unsigned int pref;
388286872cb5SThomas Graf 	int err;
38831da177e4SLinus Torvalds 
3884fceb6435SJohannes Berg 	err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
3885fceb6435SJohannes Berg 			  NULL);
388686872cb5SThomas Graf 	if (err < 0)
388786872cb5SThomas Graf 		goto errout;
38881da177e4SLinus Torvalds 
388986872cb5SThomas Graf 	err = -EINVAL;
389086872cb5SThomas Graf 	rtm = nlmsg_data(nlh);
389186872cb5SThomas Graf 	memset(cfg, 0, sizeof(*cfg));
389286872cb5SThomas Graf 
389386872cb5SThomas Graf 	cfg->fc_table = rtm->rtm_table;
389486872cb5SThomas Graf 	cfg->fc_dst_len = rtm->rtm_dst_len;
389586872cb5SThomas Graf 	cfg->fc_src_len = rtm->rtm_src_len;
389686872cb5SThomas Graf 	cfg->fc_flags = RTF_UP;
389786872cb5SThomas Graf 	cfg->fc_protocol = rtm->rtm_protocol;
3898ef2c7d7bSNicolas Dichtel 	cfg->fc_type = rtm->rtm_type;
389986872cb5SThomas Graf 
3900ef2c7d7bSNicolas Dichtel 	if (rtm->rtm_type == RTN_UNREACHABLE ||
3901ef2c7d7bSNicolas Dichtel 	    rtm->rtm_type == RTN_BLACKHOLE ||
3902b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_PROHIBIT ||
3903b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_THROW)
390486872cb5SThomas Graf 		cfg->fc_flags |= RTF_REJECT;
390586872cb5SThomas Graf 
3906ab79ad14SMaciej Żenczykowski 	if (rtm->rtm_type == RTN_LOCAL)
3907ab79ad14SMaciej Żenczykowski 		cfg->fc_flags |= RTF_LOCAL;
3908ab79ad14SMaciej Żenczykowski 
39091f56a01fSMartin KaFai Lau 	if (rtm->rtm_flags & RTM_F_CLONED)
39101f56a01fSMartin KaFai Lau 		cfg->fc_flags |= RTF_CACHE;
39111f56a01fSMartin KaFai Lau 
3912fc1e64e1SDavid Ahern 	cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
3913fc1e64e1SDavid Ahern 
391415e47304SEric W. Biederman 	cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid;
391586872cb5SThomas Graf 	cfg->fc_nlinfo.nlh = nlh;
39163b1e0a65SYOSHIFUJI Hideaki 	cfg->fc_nlinfo.nl_net = sock_net(skb->sk);
391786872cb5SThomas Graf 
391886872cb5SThomas Graf 	if (tb[RTA_GATEWAY]) {
391967b61f6cSJiri Benc 		cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
392086872cb5SThomas Graf 		cfg->fc_flags |= RTF_GATEWAY;
39211da177e4SLinus Torvalds 	}
392286872cb5SThomas Graf 
392386872cb5SThomas Graf 	if (tb[RTA_DST]) {
392486872cb5SThomas Graf 		int plen = (rtm->rtm_dst_len + 7) >> 3;
392586872cb5SThomas Graf 
392686872cb5SThomas Graf 		if (nla_len(tb[RTA_DST]) < plen)
392786872cb5SThomas Graf 			goto errout;
392886872cb5SThomas Graf 
392986872cb5SThomas Graf 		nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
39301da177e4SLinus Torvalds 	}
393186872cb5SThomas Graf 
393286872cb5SThomas Graf 	if (tb[RTA_SRC]) {
393386872cb5SThomas Graf 		int plen = (rtm->rtm_src_len + 7) >> 3;
393486872cb5SThomas Graf 
393586872cb5SThomas Graf 		if (nla_len(tb[RTA_SRC]) < plen)
393686872cb5SThomas Graf 			goto errout;
393786872cb5SThomas Graf 
393886872cb5SThomas Graf 		nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
39391da177e4SLinus Torvalds 	}
394086872cb5SThomas Graf 
3941c3968a85SDaniel Walter 	if (tb[RTA_PREFSRC])
394267b61f6cSJiri Benc 		cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
3943c3968a85SDaniel Walter 
394486872cb5SThomas Graf 	if (tb[RTA_OIF])
394586872cb5SThomas Graf 		cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
394686872cb5SThomas Graf 
394786872cb5SThomas Graf 	if (tb[RTA_PRIORITY])
394886872cb5SThomas Graf 		cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
394986872cb5SThomas Graf 
395086872cb5SThomas Graf 	if (tb[RTA_METRICS]) {
395186872cb5SThomas Graf 		cfg->fc_mx = nla_data(tb[RTA_METRICS]);
395286872cb5SThomas Graf 		cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
39531da177e4SLinus Torvalds 	}
395486872cb5SThomas Graf 
395586872cb5SThomas Graf 	if (tb[RTA_TABLE])
395686872cb5SThomas Graf 		cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
395786872cb5SThomas Graf 
395851ebd318SNicolas Dichtel 	if (tb[RTA_MULTIPATH]) {
395951ebd318SNicolas Dichtel 		cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
396051ebd318SNicolas Dichtel 		cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
39619ed59592SDavid Ahern 
39629ed59592SDavid Ahern 		err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
3963c255bd68SDavid Ahern 						     cfg->fc_mp_len, extack);
39649ed59592SDavid Ahern 		if (err < 0)
39659ed59592SDavid Ahern 			goto errout;
396651ebd318SNicolas Dichtel 	}
396751ebd318SNicolas Dichtel 
3968c78ba6d6SLubomir Rintel 	if (tb[RTA_PREF]) {
3969c78ba6d6SLubomir Rintel 		pref = nla_get_u8(tb[RTA_PREF]);
3970c78ba6d6SLubomir Rintel 		if (pref != ICMPV6_ROUTER_PREF_LOW &&
3971c78ba6d6SLubomir Rintel 		    pref != ICMPV6_ROUTER_PREF_HIGH)
3972c78ba6d6SLubomir Rintel 			pref = ICMPV6_ROUTER_PREF_MEDIUM;
3973c78ba6d6SLubomir Rintel 		cfg->fc_flags |= RTF_PREF(pref);
3974c78ba6d6SLubomir Rintel 	}
3975c78ba6d6SLubomir Rintel 
397619e42e45SRoopa Prabhu 	if (tb[RTA_ENCAP])
397719e42e45SRoopa Prabhu 		cfg->fc_encap = tb[RTA_ENCAP];
397819e42e45SRoopa Prabhu 
39799ed59592SDavid Ahern 	if (tb[RTA_ENCAP_TYPE]) {
398019e42e45SRoopa Prabhu 		cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
398119e42e45SRoopa Prabhu 
3982c255bd68SDavid Ahern 		err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
39839ed59592SDavid Ahern 		if (err < 0)
39849ed59592SDavid Ahern 			goto errout;
39859ed59592SDavid Ahern 	}
39869ed59592SDavid Ahern 
398732bc201eSXin Long 	if (tb[RTA_EXPIRES]) {
398832bc201eSXin Long 		unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
398932bc201eSXin Long 
399032bc201eSXin Long 		if (addrconf_finite_timeout(timeout)) {
399132bc201eSXin Long 			cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
399232bc201eSXin Long 			cfg->fc_flags |= RTF_EXPIRES;
399332bc201eSXin Long 		}
399432bc201eSXin Long 	}
399532bc201eSXin Long 
399686872cb5SThomas Graf 	err = 0;
399786872cb5SThomas Graf errout:
399886872cb5SThomas Graf 	return err;
39991da177e4SLinus Torvalds }
40001da177e4SLinus Torvalds 
40016b9ea5a6SRoopa Prabhu struct rt6_nh {
40026b9ea5a6SRoopa Prabhu 	struct rt6_info *rt6_info;
40036b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
40046b9ea5a6SRoopa Prabhu 	struct mx6_config mxc;
40056b9ea5a6SRoopa Prabhu 	struct list_head next;
40066b9ea5a6SRoopa Prabhu };
40076b9ea5a6SRoopa Prabhu 
40086b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list)
40096b9ea5a6SRoopa Prabhu {
40106b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh;
40116b9ea5a6SRoopa Prabhu 
40126b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, rt6_nh_list, next) {
40137d4d5065SDavid Ahern 		pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n",
40146b9ea5a6SRoopa Prabhu 		        &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway,
40156b9ea5a6SRoopa Prabhu 		        nh->r_cfg.fc_ifindex);
40166b9ea5a6SRoopa Prabhu 	}
40176b9ea5a6SRoopa Prabhu }
40186b9ea5a6SRoopa Prabhu 
40196b9ea5a6SRoopa Prabhu static int ip6_route_info_append(struct list_head *rt6_nh_list,
40206b9ea5a6SRoopa Prabhu 				 struct rt6_info *rt, struct fib6_config *r_cfg)
40216b9ea5a6SRoopa Prabhu {
40226b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh;
40236b9ea5a6SRoopa Prabhu 	int err = -EEXIST;
40246b9ea5a6SRoopa Prabhu 
40256b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, rt6_nh_list, next) {
40266b9ea5a6SRoopa Prabhu 		/* check if rt6_info already exists */
4027f06b7549SDavid Ahern 		if (rt6_duplicate_nexthop(nh->rt6_info, rt))
40286b9ea5a6SRoopa Prabhu 			return err;
40296b9ea5a6SRoopa Prabhu 	}
40306b9ea5a6SRoopa Prabhu 
40316b9ea5a6SRoopa Prabhu 	nh = kzalloc(sizeof(*nh), GFP_KERNEL);
40326b9ea5a6SRoopa Prabhu 	if (!nh)
40336b9ea5a6SRoopa Prabhu 		return -ENOMEM;
40346b9ea5a6SRoopa Prabhu 	nh->rt6_info = rt;
40356b9ea5a6SRoopa Prabhu 	err = ip6_convert_metrics(&nh->mxc, r_cfg);
40366b9ea5a6SRoopa Prabhu 	if (err) {
40376b9ea5a6SRoopa Prabhu 		kfree(nh);
40386b9ea5a6SRoopa Prabhu 		return err;
40396b9ea5a6SRoopa Prabhu 	}
40406b9ea5a6SRoopa Prabhu 	memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
40416b9ea5a6SRoopa Prabhu 	list_add_tail(&nh->next, rt6_nh_list);
40426b9ea5a6SRoopa Prabhu 
40436b9ea5a6SRoopa Prabhu 	return 0;
40446b9ea5a6SRoopa Prabhu }
40456b9ea5a6SRoopa Prabhu 
40463b1137feSDavid Ahern static void ip6_route_mpath_notify(struct rt6_info *rt,
40473b1137feSDavid Ahern 				   struct rt6_info *rt_last,
40483b1137feSDavid Ahern 				   struct nl_info *info,
40493b1137feSDavid Ahern 				   __u16 nlflags)
40503b1137feSDavid Ahern {
40513b1137feSDavid Ahern 	/* if this is an APPEND route, then rt points to the first route
40523b1137feSDavid Ahern 	 * inserted and rt_last points to last route inserted. Userspace
40533b1137feSDavid Ahern 	 * wants a consistent dump of the route which starts at the first
40543b1137feSDavid Ahern 	 * nexthop. Since sibling routes are always added at the end of
40553b1137feSDavid Ahern 	 * the list, find the first sibling of the last route appended
40563b1137feSDavid Ahern 	 */
40573b1137feSDavid Ahern 	if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->rt6i_nsiblings) {
40583b1137feSDavid Ahern 		rt = list_first_entry(&rt_last->rt6i_siblings,
40593b1137feSDavid Ahern 				      struct rt6_info,
40603b1137feSDavid Ahern 				      rt6i_siblings);
40613b1137feSDavid Ahern 	}
40623b1137feSDavid Ahern 
40633b1137feSDavid Ahern 	if (rt)
40643b1137feSDavid Ahern 		inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
40653b1137feSDavid Ahern }
40663b1137feSDavid Ahern 
4067333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg,
4068333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
406951ebd318SNicolas Dichtel {
40703b1137feSDavid Ahern 	struct rt6_info *rt_notif = NULL, *rt_last = NULL;
40713b1137feSDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
407251ebd318SNicolas Dichtel 	struct fib6_config r_cfg;
407351ebd318SNicolas Dichtel 	struct rtnexthop *rtnh;
40746b9ea5a6SRoopa Prabhu 	struct rt6_info *rt;
40756b9ea5a6SRoopa Prabhu 	struct rt6_nh *err_nh;
40766b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh, *nh_safe;
40773b1137feSDavid Ahern 	__u16 nlflags;
407851ebd318SNicolas Dichtel 	int remaining;
407951ebd318SNicolas Dichtel 	int attrlen;
40806b9ea5a6SRoopa Prabhu 	int err = 1;
40816b9ea5a6SRoopa Prabhu 	int nhn = 0;
40826b9ea5a6SRoopa Prabhu 	int replace = (cfg->fc_nlinfo.nlh &&
40836b9ea5a6SRoopa Prabhu 		       (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
40846b9ea5a6SRoopa Prabhu 	LIST_HEAD(rt6_nh_list);
408551ebd318SNicolas Dichtel 
40863b1137feSDavid Ahern 	nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
40873b1137feSDavid Ahern 	if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
40883b1137feSDavid Ahern 		nlflags |= NLM_F_APPEND;
40893b1137feSDavid Ahern 
409035f1b4e9SMichal Kubeček 	remaining = cfg->fc_mp_len;
409151ebd318SNicolas Dichtel 	rtnh = (struct rtnexthop *)cfg->fc_mp;
409251ebd318SNicolas Dichtel 
40936b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry and build a list (rt6_nh_list) of
40946b9ea5a6SRoopa Prabhu 	 * rt6_info structs per nexthop
40956b9ea5a6SRoopa Prabhu 	 */
409651ebd318SNicolas Dichtel 	while (rtnh_ok(rtnh, remaining)) {
409751ebd318SNicolas Dichtel 		memcpy(&r_cfg, cfg, sizeof(*cfg));
409851ebd318SNicolas Dichtel 		if (rtnh->rtnh_ifindex)
409951ebd318SNicolas Dichtel 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
410051ebd318SNicolas Dichtel 
410151ebd318SNicolas Dichtel 		attrlen = rtnh_attrlen(rtnh);
410251ebd318SNicolas Dichtel 		if (attrlen > 0) {
410351ebd318SNicolas Dichtel 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
410451ebd318SNicolas Dichtel 
410551ebd318SNicolas Dichtel 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
410651ebd318SNicolas Dichtel 			if (nla) {
410767b61f6cSJiri Benc 				r_cfg.fc_gateway = nla_get_in6_addr(nla);
410851ebd318SNicolas Dichtel 				r_cfg.fc_flags |= RTF_GATEWAY;
410951ebd318SNicolas Dichtel 			}
411019e42e45SRoopa Prabhu 			r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
411119e42e45SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
411219e42e45SRoopa Prabhu 			if (nla)
411319e42e45SRoopa Prabhu 				r_cfg.fc_encap_type = nla_get_u16(nla);
411451ebd318SNicolas Dichtel 		}
41156b9ea5a6SRoopa Prabhu 
411668e2ffdeSDavid Ahern 		r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
4117333c4301SDavid Ahern 		rt = ip6_route_info_create(&r_cfg, extack);
41188c5b83f0SRoopa Prabhu 		if (IS_ERR(rt)) {
41198c5b83f0SRoopa Prabhu 			err = PTR_ERR(rt);
41208c5b83f0SRoopa Prabhu 			rt = NULL;
41216b9ea5a6SRoopa Prabhu 			goto cleanup;
41228c5b83f0SRoopa Prabhu 		}
41236b9ea5a6SRoopa Prabhu 
4124398958aeSIdo Schimmel 		rt->rt6i_nh_weight = rtnh->rtnh_hops + 1;
4125398958aeSIdo Schimmel 
41266b9ea5a6SRoopa Prabhu 		err = ip6_route_info_append(&rt6_nh_list, rt, &r_cfg);
412751ebd318SNicolas Dichtel 		if (err) {
4128587fea74SWei Wang 			dst_release_immediate(&rt->dst);
41296b9ea5a6SRoopa Prabhu 			goto cleanup;
413051ebd318SNicolas Dichtel 		}
41316b9ea5a6SRoopa Prabhu 
41326b9ea5a6SRoopa Prabhu 		rtnh = rtnh_next(rtnh, &remaining);
413351ebd318SNicolas Dichtel 	}
41346b9ea5a6SRoopa Prabhu 
41353b1137feSDavid Ahern 	/* for add and replace send one notification with all nexthops.
41363b1137feSDavid Ahern 	 * Skip the notification in fib6_add_rt2node and send one with
41373b1137feSDavid Ahern 	 * the full route when done
41383b1137feSDavid Ahern 	 */
41393b1137feSDavid Ahern 	info->skip_notify = 1;
41403b1137feSDavid Ahern 
41416b9ea5a6SRoopa Prabhu 	err_nh = NULL;
41426b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
41433b1137feSDavid Ahern 		rt_last = nh->rt6_info;
4144333c4301SDavid Ahern 		err = __ip6_ins_rt(nh->rt6_info, info, &nh->mxc, extack);
41453b1137feSDavid Ahern 		/* save reference to first route for notification */
41463b1137feSDavid Ahern 		if (!rt_notif && !err)
41473b1137feSDavid Ahern 			rt_notif = nh->rt6_info;
41483b1137feSDavid Ahern 
41496b9ea5a6SRoopa Prabhu 		/* nh->rt6_info is used or freed at this point, reset to NULL*/
41506b9ea5a6SRoopa Prabhu 		nh->rt6_info = NULL;
41516b9ea5a6SRoopa Prabhu 		if (err) {
41526b9ea5a6SRoopa Prabhu 			if (replace && nhn)
41536b9ea5a6SRoopa Prabhu 				ip6_print_replace_route_err(&rt6_nh_list);
41546b9ea5a6SRoopa Prabhu 			err_nh = nh;
41556b9ea5a6SRoopa Prabhu 			goto add_errout;
41566b9ea5a6SRoopa Prabhu 		}
41576b9ea5a6SRoopa Prabhu 
41581a72418bSNicolas Dichtel 		/* Because each route is added like a single route we remove
415927596472SMichal Kubeček 		 * these flags after the first nexthop: if there is a collision,
416027596472SMichal Kubeček 		 * we have already failed to add the first nexthop:
416127596472SMichal Kubeček 		 * fib6_add_rt2node() has rejected it; when replacing, old
416227596472SMichal Kubeček 		 * nexthops have been replaced by first new, the rest should
416327596472SMichal Kubeček 		 * be added to it.
41641a72418bSNicolas Dichtel 		 */
416527596472SMichal Kubeček 		cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
416627596472SMichal Kubeček 						     NLM_F_REPLACE);
41676b9ea5a6SRoopa Prabhu 		nhn++;
41686b9ea5a6SRoopa Prabhu 	}
41696b9ea5a6SRoopa Prabhu 
41703b1137feSDavid Ahern 	/* success ... tell user about new route */
41713b1137feSDavid Ahern 	ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
41726b9ea5a6SRoopa Prabhu 	goto cleanup;
41736b9ea5a6SRoopa Prabhu 
41746b9ea5a6SRoopa Prabhu add_errout:
41753b1137feSDavid Ahern 	/* send notification for routes that were added so that
41763b1137feSDavid Ahern 	 * the delete notifications sent by ip6_route_del are
41773b1137feSDavid Ahern 	 * coherent
41783b1137feSDavid Ahern 	 */
41793b1137feSDavid Ahern 	if (rt_notif)
41803b1137feSDavid Ahern 		ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
41813b1137feSDavid Ahern 
41826b9ea5a6SRoopa Prabhu 	/* Delete routes that were already added */
41836b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
41846b9ea5a6SRoopa Prabhu 		if (err_nh == nh)
41856b9ea5a6SRoopa Prabhu 			break;
4186333c4301SDavid Ahern 		ip6_route_del(&nh->r_cfg, extack);
41876b9ea5a6SRoopa Prabhu 	}
41886b9ea5a6SRoopa Prabhu 
41896b9ea5a6SRoopa Prabhu cleanup:
41906b9ea5a6SRoopa Prabhu 	list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
4191587fea74SWei Wang 		if (nh->rt6_info)
4192587fea74SWei Wang 			dst_release_immediate(&nh->rt6_info->dst);
41936b9ea5a6SRoopa Prabhu 		kfree(nh->mxc.mx);
41946b9ea5a6SRoopa Prabhu 		list_del(&nh->next);
41956b9ea5a6SRoopa Prabhu 		kfree(nh);
41966b9ea5a6SRoopa Prabhu 	}
41976b9ea5a6SRoopa Prabhu 
41986b9ea5a6SRoopa Prabhu 	return err;
41996b9ea5a6SRoopa Prabhu }
42006b9ea5a6SRoopa Prabhu 
4201333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg,
4202333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
42036b9ea5a6SRoopa Prabhu {
42046b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
42056b9ea5a6SRoopa Prabhu 	struct rtnexthop *rtnh;
42066b9ea5a6SRoopa Prabhu 	int remaining;
42076b9ea5a6SRoopa Prabhu 	int attrlen;
42086b9ea5a6SRoopa Prabhu 	int err = 1, last_err = 0;
42096b9ea5a6SRoopa Prabhu 
42106b9ea5a6SRoopa Prabhu 	remaining = cfg->fc_mp_len;
42116b9ea5a6SRoopa Prabhu 	rtnh = (struct rtnexthop *)cfg->fc_mp;
42126b9ea5a6SRoopa Prabhu 
42136b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry */
42146b9ea5a6SRoopa Prabhu 	while (rtnh_ok(rtnh, remaining)) {
42156b9ea5a6SRoopa Prabhu 		memcpy(&r_cfg, cfg, sizeof(*cfg));
42166b9ea5a6SRoopa Prabhu 		if (rtnh->rtnh_ifindex)
42176b9ea5a6SRoopa Prabhu 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
42186b9ea5a6SRoopa Prabhu 
42196b9ea5a6SRoopa Prabhu 		attrlen = rtnh_attrlen(rtnh);
42206b9ea5a6SRoopa Prabhu 		if (attrlen > 0) {
42216b9ea5a6SRoopa Prabhu 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
42226b9ea5a6SRoopa Prabhu 
42236b9ea5a6SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
42246b9ea5a6SRoopa Prabhu 			if (nla) {
42256b9ea5a6SRoopa Prabhu 				nla_memcpy(&r_cfg.fc_gateway, nla, 16);
42266b9ea5a6SRoopa Prabhu 				r_cfg.fc_flags |= RTF_GATEWAY;
42276b9ea5a6SRoopa Prabhu 			}
42286b9ea5a6SRoopa Prabhu 		}
4229333c4301SDavid Ahern 		err = ip6_route_del(&r_cfg, extack);
42306b9ea5a6SRoopa Prabhu 		if (err)
42316b9ea5a6SRoopa Prabhu 			last_err = err;
42326b9ea5a6SRoopa Prabhu 
423351ebd318SNicolas Dichtel 		rtnh = rtnh_next(rtnh, &remaining);
423451ebd318SNicolas Dichtel 	}
423551ebd318SNicolas Dichtel 
423651ebd318SNicolas Dichtel 	return last_err;
423751ebd318SNicolas Dichtel }
423851ebd318SNicolas Dichtel 
4239c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4240c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
42411da177e4SLinus Torvalds {
424286872cb5SThomas Graf 	struct fib6_config cfg;
424386872cb5SThomas Graf 	int err;
42441da177e4SLinus Torvalds 
4245333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
424686872cb5SThomas Graf 	if (err < 0)
424786872cb5SThomas Graf 		return err;
424886872cb5SThomas Graf 
424951ebd318SNicolas Dichtel 	if (cfg.fc_mp)
4250333c4301SDavid Ahern 		return ip6_route_multipath_del(&cfg, extack);
42510ae81335SDavid Ahern 	else {
42520ae81335SDavid Ahern 		cfg.fc_delete_all_nh = 1;
4253333c4301SDavid Ahern 		return ip6_route_del(&cfg, extack);
42541da177e4SLinus Torvalds 	}
42550ae81335SDavid Ahern }
42561da177e4SLinus Torvalds 
4257c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4258c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
42591da177e4SLinus Torvalds {
426086872cb5SThomas Graf 	struct fib6_config cfg;
426186872cb5SThomas Graf 	int err;
42621da177e4SLinus Torvalds 
4263333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
426486872cb5SThomas Graf 	if (err < 0)
426586872cb5SThomas Graf 		return err;
426686872cb5SThomas Graf 
426751ebd318SNicolas Dichtel 	if (cfg.fc_mp)
4268333c4301SDavid Ahern 		return ip6_route_multipath_add(&cfg, extack);
426951ebd318SNicolas Dichtel 	else
4270333c4301SDavid Ahern 		return ip6_route_add(&cfg, extack);
42711da177e4SLinus Torvalds }
42721da177e4SLinus Torvalds 
4273beb1afacSDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt)
4274339bf98fSThomas Graf {
4275beb1afacSDavid Ahern 	int nexthop_len = 0;
4276beb1afacSDavid Ahern 
4277beb1afacSDavid Ahern 	if (rt->rt6i_nsiblings) {
4278beb1afacSDavid Ahern 		nexthop_len = nla_total_size(0)	 /* RTA_MULTIPATH */
4279beb1afacSDavid Ahern 			    + NLA_ALIGN(sizeof(struct rtnexthop))
4280beb1afacSDavid Ahern 			    + nla_total_size(16) /* RTA_GATEWAY */
4281beb1afacSDavid Ahern 			    + lwtunnel_get_encap_size(rt->dst.lwtstate);
4282beb1afacSDavid Ahern 
4283beb1afacSDavid Ahern 		nexthop_len *= rt->rt6i_nsiblings;
4284beb1afacSDavid Ahern 	}
4285beb1afacSDavid Ahern 
4286339bf98fSThomas Graf 	return NLMSG_ALIGN(sizeof(struct rtmsg))
4287339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_SRC */
4288339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_DST */
4289339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_GATEWAY */
4290339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_PREFSRC */
4291339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_TABLE */
4292339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_IIF */
4293339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_OIF */
4294339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_PRIORITY */
42956a2b9ce0SNoriaki TAKAMIYA 	       + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
4296ea697639SDaniel Borkmann 	       + nla_total_size(sizeof(struct rta_cacheinfo))
4297c78ba6d6SLubomir Rintel 	       + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
429819e42e45SRoopa Prabhu 	       + nla_total_size(1) /* RTA_PREF */
4299beb1afacSDavid Ahern 	       + lwtunnel_get_encap_size(rt->dst.lwtstate)
4300beb1afacSDavid Ahern 	       + nexthop_len;
4301beb1afacSDavid Ahern }
4302beb1afacSDavid Ahern 
4303beb1afacSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct rt6_info *rt,
43045be083ceSDavid Ahern 			    unsigned int *flags, bool skip_oif)
4305beb1afacSDavid Ahern {
4306f9d882eaSIdo Schimmel 	if (rt->rt6i_nh_flags & RTNH_F_DEAD)
4307f9d882eaSIdo Schimmel 		*flags |= RTNH_F_DEAD;
4308f9d882eaSIdo Schimmel 
430944c9f2f2SIdo Schimmel 	if (rt->rt6i_nh_flags & RTNH_F_LINKDOWN) {
4310beb1afacSDavid Ahern 		*flags |= RTNH_F_LINKDOWN;
4311beb1afacSDavid Ahern 		if (rt->rt6i_idev->cnf.ignore_routes_with_linkdown)
4312beb1afacSDavid Ahern 			*flags |= RTNH_F_DEAD;
4313beb1afacSDavid Ahern 	}
4314beb1afacSDavid Ahern 
4315beb1afacSDavid Ahern 	if (rt->rt6i_flags & RTF_GATEWAY) {
4316beb1afacSDavid Ahern 		if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->rt6i_gateway) < 0)
4317beb1afacSDavid Ahern 			goto nla_put_failure;
4318beb1afacSDavid Ahern 	}
4319beb1afacSDavid Ahern 
4320fc1e64e1SDavid Ahern 	*flags |= (rt->rt6i_nh_flags & RTNH_F_ONLINK);
4321fe400799SIdo Schimmel 	if (rt->rt6i_nh_flags & RTNH_F_OFFLOAD)
432261e4d01eSIdo Schimmel 		*flags |= RTNH_F_OFFLOAD;
432361e4d01eSIdo Schimmel 
43245be083ceSDavid Ahern 	/* not needed for multipath encoding b/c it has a rtnexthop struct */
43255be083ceSDavid Ahern 	if (!skip_oif && rt->dst.dev &&
4326beb1afacSDavid Ahern 	    nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
4327beb1afacSDavid Ahern 		goto nla_put_failure;
4328beb1afacSDavid Ahern 
4329beb1afacSDavid Ahern 	if (rt->dst.lwtstate &&
4330beb1afacSDavid Ahern 	    lwtunnel_fill_encap(skb, rt->dst.lwtstate) < 0)
4331beb1afacSDavid Ahern 		goto nla_put_failure;
4332beb1afacSDavid Ahern 
4333beb1afacSDavid Ahern 	return 0;
4334beb1afacSDavid Ahern 
4335beb1afacSDavid Ahern nla_put_failure:
4336beb1afacSDavid Ahern 	return -EMSGSIZE;
4337beb1afacSDavid Ahern }
4338beb1afacSDavid Ahern 
43395be083ceSDavid Ahern /* add multipath next hop */
4340beb1afacSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct rt6_info *rt)
4341beb1afacSDavid Ahern {
4342beb1afacSDavid Ahern 	struct rtnexthop *rtnh;
4343beb1afacSDavid Ahern 	unsigned int flags = 0;
4344beb1afacSDavid Ahern 
4345beb1afacSDavid Ahern 	rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
4346beb1afacSDavid Ahern 	if (!rtnh)
4347beb1afacSDavid Ahern 		goto nla_put_failure;
4348beb1afacSDavid Ahern 
4349398958aeSIdo Schimmel 	rtnh->rtnh_hops = rt->rt6i_nh_weight - 1;
4350beb1afacSDavid Ahern 	rtnh->rtnh_ifindex = rt->dst.dev ? rt->dst.dev->ifindex : 0;
4351beb1afacSDavid Ahern 
43525be083ceSDavid Ahern 	if (rt6_nexthop_info(skb, rt, &flags, true) < 0)
4353beb1afacSDavid Ahern 		goto nla_put_failure;
4354beb1afacSDavid Ahern 
4355beb1afacSDavid Ahern 	rtnh->rtnh_flags = flags;
4356beb1afacSDavid Ahern 
4357beb1afacSDavid Ahern 	/* length of rtnetlink header + attributes */
4358beb1afacSDavid Ahern 	rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh;
4359beb1afacSDavid Ahern 
4360beb1afacSDavid Ahern 	return 0;
4361beb1afacSDavid Ahern 
4362beb1afacSDavid Ahern nla_put_failure:
4363beb1afacSDavid Ahern 	return -EMSGSIZE;
4364339bf98fSThomas Graf }
4365339bf98fSThomas Graf 
4366191cd582SBrian Haley static int rt6_fill_node(struct net *net,
4367191cd582SBrian Haley 			 struct sk_buff *skb, struct rt6_info *rt,
43680d51aa80SJamal Hadi Salim 			 struct in6_addr *dst, struct in6_addr *src,
436915e47304SEric W. Biederman 			 int iif, int type, u32 portid, u32 seq,
4370f8cfe2ceSDavid Ahern 			 unsigned int flags)
43711da177e4SLinus Torvalds {
43724b32b5adSMartin KaFai Lau 	u32 metrics[RTAX_MAX];
43731da177e4SLinus Torvalds 	struct rtmsg *rtm;
43741da177e4SLinus Torvalds 	struct nlmsghdr *nlh;
4375e3703b3dSThomas Graf 	long expires;
43769e762a4aSPatrick McHardy 	u32 table;
43771da177e4SLinus Torvalds 
437815e47304SEric W. Biederman 	nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
437938308473SDavid S. Miller 	if (!nlh)
438026932566SPatrick McHardy 		return -EMSGSIZE;
43812d7202bfSThomas Graf 
43822d7202bfSThomas Graf 	rtm = nlmsg_data(nlh);
43831da177e4SLinus Torvalds 	rtm->rtm_family = AF_INET6;
43841da177e4SLinus Torvalds 	rtm->rtm_dst_len = rt->rt6i_dst.plen;
43851da177e4SLinus Torvalds 	rtm->rtm_src_len = rt->rt6i_src.plen;
43861da177e4SLinus Torvalds 	rtm->rtm_tos = 0;
4387c71099acSThomas Graf 	if (rt->rt6i_table)
43889e762a4aSPatrick McHardy 		table = rt->rt6i_table->tb6_id;
4389c71099acSThomas Graf 	else
43909e762a4aSPatrick McHardy 		table = RT6_TABLE_UNSPEC;
43919e762a4aSPatrick McHardy 	rtm->rtm_table = table;
4392c78679e8SDavid S. Miller 	if (nla_put_u32(skb, RTA_TABLE, table))
4393c78679e8SDavid S. Miller 		goto nla_put_failure;
4394ef2c7d7bSNicolas Dichtel 	if (rt->rt6i_flags & RTF_REJECT) {
4395ef2c7d7bSNicolas Dichtel 		switch (rt->dst.error) {
4396ef2c7d7bSNicolas Dichtel 		case -EINVAL:
4397ef2c7d7bSNicolas Dichtel 			rtm->rtm_type = RTN_BLACKHOLE;
4398ef2c7d7bSNicolas Dichtel 			break;
4399ef2c7d7bSNicolas Dichtel 		case -EACCES:
4400ef2c7d7bSNicolas Dichtel 			rtm->rtm_type = RTN_PROHIBIT;
4401ef2c7d7bSNicolas Dichtel 			break;
4402b4949ab2SNicolas Dichtel 		case -EAGAIN:
4403b4949ab2SNicolas Dichtel 			rtm->rtm_type = RTN_THROW;
4404b4949ab2SNicolas Dichtel 			break;
4405ef2c7d7bSNicolas Dichtel 		default:
44061da177e4SLinus Torvalds 			rtm->rtm_type = RTN_UNREACHABLE;
4407ef2c7d7bSNicolas Dichtel 			break;
4408ef2c7d7bSNicolas Dichtel 		}
4409ef2c7d7bSNicolas Dichtel 	}
4410ab79ad14SMaciej Żenczykowski 	else if (rt->rt6i_flags & RTF_LOCAL)
4411ab79ad14SMaciej Żenczykowski 		rtm->rtm_type = RTN_LOCAL;
44124ee39733SDavid Ahern 	else if (rt->rt6i_flags & RTF_ANYCAST)
44134ee39733SDavid Ahern 		rtm->rtm_type = RTN_ANYCAST;
4414d1918542SDavid S. Miller 	else if (rt->dst.dev && (rt->dst.dev->flags & IFF_LOOPBACK))
44151da177e4SLinus Torvalds 		rtm->rtm_type = RTN_LOCAL;
44161da177e4SLinus Torvalds 	else
44171da177e4SLinus Torvalds 		rtm->rtm_type = RTN_UNICAST;
44181da177e4SLinus Torvalds 	rtm->rtm_flags = 0;
44191da177e4SLinus Torvalds 	rtm->rtm_scope = RT_SCOPE_UNIVERSE;
44201da177e4SLinus Torvalds 	rtm->rtm_protocol = rt->rt6i_protocol;
44211da177e4SLinus Torvalds 
44221da177e4SLinus Torvalds 	if (rt->rt6i_flags & RTF_CACHE)
44231da177e4SLinus Torvalds 		rtm->rtm_flags |= RTM_F_CLONED;
44241da177e4SLinus Torvalds 
44251da177e4SLinus Torvalds 	if (dst) {
4426930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_DST, dst))
4427c78679e8SDavid S. Miller 			goto nla_put_failure;
44281da177e4SLinus Torvalds 		rtm->rtm_dst_len = 128;
44291da177e4SLinus Torvalds 	} else if (rtm->rtm_dst_len)
4430930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_DST, &rt->rt6i_dst.addr))
4431c78679e8SDavid S. Miller 			goto nla_put_failure;
44321da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
44331da177e4SLinus Torvalds 	if (src) {
4434930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_SRC, src))
4435c78679e8SDavid S. Miller 			goto nla_put_failure;
44361da177e4SLinus Torvalds 		rtm->rtm_src_len = 128;
4437c78679e8SDavid S. Miller 	} else if (rtm->rtm_src_len &&
4438930345eaSJiri Benc 		   nla_put_in6_addr(skb, RTA_SRC, &rt->rt6i_src.addr))
4439c78679e8SDavid S. Miller 		goto nla_put_failure;
44401da177e4SLinus Torvalds #endif
44417bc570c8SYOSHIFUJI Hideaki 	if (iif) {
44427bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE
44437bc570c8SYOSHIFUJI Hideaki 		if (ipv6_addr_is_multicast(&rt->rt6i_dst.addr)) {
4444fd61c6baSDavid Ahern 			int err = ip6mr_get_route(net, skb, rtm, portid);
44452cf75070SNikolay Aleksandrov 
44467bc570c8SYOSHIFUJI Hideaki 			if (err == 0)
44477bc570c8SYOSHIFUJI Hideaki 				return 0;
4448fd61c6baSDavid Ahern 			if (err < 0)
44497bc570c8SYOSHIFUJI Hideaki 				goto nla_put_failure;
44507bc570c8SYOSHIFUJI Hideaki 		} else
44517bc570c8SYOSHIFUJI Hideaki #endif
4452c78679e8SDavid S. Miller 			if (nla_put_u32(skb, RTA_IIF, iif))
4453c78679e8SDavid S. Miller 				goto nla_put_failure;
44547bc570c8SYOSHIFUJI Hideaki 	} else if (dst) {
44551da177e4SLinus Torvalds 		struct in6_addr saddr_buf;
4456c78679e8SDavid S. Miller 		if (ip6_route_get_saddr(net, rt, dst, 0, &saddr_buf) == 0 &&
4457930345eaSJiri Benc 		    nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
4458c78679e8SDavid S. Miller 			goto nla_put_failure;
4459c3968a85SDaniel Walter 	}
4460c3968a85SDaniel Walter 
4461c3968a85SDaniel Walter 	if (rt->rt6i_prefsrc.plen) {
4462c3968a85SDaniel Walter 		struct in6_addr saddr_buf;
44634e3fd7a0SAlexey Dobriyan 		saddr_buf = rt->rt6i_prefsrc.addr;
4464930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
4465c78679e8SDavid S. Miller 			goto nla_put_failure;
44661da177e4SLinus Torvalds 	}
44672d7202bfSThomas Graf 
44684b32b5adSMartin KaFai Lau 	memcpy(metrics, dst_metrics_ptr(&rt->dst), sizeof(metrics));
44694b32b5adSMartin KaFai Lau 	if (rt->rt6i_pmtu)
44704b32b5adSMartin KaFai Lau 		metrics[RTAX_MTU - 1] = rt->rt6i_pmtu;
44714b32b5adSMartin KaFai Lau 	if (rtnetlink_put_metrics(skb, metrics) < 0)
44722d7202bfSThomas Graf 		goto nla_put_failure;
44732d7202bfSThomas Graf 
4474beb1afacSDavid Ahern 	if (nla_put_u32(skb, RTA_PRIORITY, rt->rt6i_metric))
4475beb1afacSDavid Ahern 		goto nla_put_failure;
4476beb1afacSDavid Ahern 
4477beb1afacSDavid Ahern 	/* For multipath routes, walk the siblings list and add
4478beb1afacSDavid Ahern 	 * each as a nexthop within RTA_MULTIPATH.
4479beb1afacSDavid Ahern 	 */
4480beb1afacSDavid Ahern 	if (rt->rt6i_nsiblings) {
4481beb1afacSDavid Ahern 		struct rt6_info *sibling, *next_sibling;
4482beb1afacSDavid Ahern 		struct nlattr *mp;
4483beb1afacSDavid Ahern 
4484beb1afacSDavid Ahern 		mp = nla_nest_start(skb, RTA_MULTIPATH);
4485beb1afacSDavid Ahern 		if (!mp)
4486beb1afacSDavid Ahern 			goto nla_put_failure;
4487beb1afacSDavid Ahern 
4488beb1afacSDavid Ahern 		if (rt6_add_nexthop(skb, rt) < 0)
4489beb1afacSDavid Ahern 			goto nla_put_failure;
4490beb1afacSDavid Ahern 
4491beb1afacSDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
4492beb1afacSDavid Ahern 					 &rt->rt6i_siblings, rt6i_siblings) {
4493beb1afacSDavid Ahern 			if (rt6_add_nexthop(skb, sibling) < 0)
449494f826b8SEric Dumazet 				goto nla_put_failure;
449594f826b8SEric Dumazet 		}
44962d7202bfSThomas Graf 
4497beb1afacSDavid Ahern 		nla_nest_end(skb, mp);
4498beb1afacSDavid Ahern 	} else {
44995be083ceSDavid Ahern 		if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0)
4500c78679e8SDavid S. Miller 			goto nla_put_failure;
4501beb1afacSDavid Ahern 	}
45028253947eSLi Wei 
45038253947eSLi Wei 	expires = (rt->rt6i_flags & RTF_EXPIRES) ? rt->dst.expires - jiffies : 0;
450469cdf8f9SYOSHIFUJI Hideaki 
450587a50699SDavid S. Miller 	if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, rt->dst.error) < 0)
4506e3703b3dSThomas Graf 		goto nla_put_failure;
45071da177e4SLinus Torvalds 
4508c78ba6d6SLubomir Rintel 	if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->rt6i_flags)))
4509c78ba6d6SLubomir Rintel 		goto nla_put_failure;
4510c78ba6d6SLubomir Rintel 
451119e42e45SRoopa Prabhu 
4512053c095aSJohannes Berg 	nlmsg_end(skb, nlh);
4513053c095aSJohannes Berg 	return 0;
45142d7202bfSThomas Graf 
45152d7202bfSThomas Graf nla_put_failure:
451626932566SPatrick McHardy 	nlmsg_cancel(skb, nlh);
451726932566SPatrick McHardy 	return -EMSGSIZE;
45181da177e4SLinus Torvalds }
45191da177e4SLinus Torvalds 
45201b43af54SPatrick McHardy int rt6_dump_route(struct rt6_info *rt, void *p_arg)
45211da177e4SLinus Torvalds {
45221da177e4SLinus Torvalds 	struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
45231f17e2f2SDavid Ahern 	struct net *net = arg->net;
45241f17e2f2SDavid Ahern 
45251f17e2f2SDavid Ahern 	if (rt == net->ipv6.ip6_null_entry)
45261f17e2f2SDavid Ahern 		return 0;
45271da177e4SLinus Torvalds 
45282d7202bfSThomas Graf 	if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) {
45292d7202bfSThomas Graf 		struct rtmsg *rtm = nlmsg_data(arg->cb->nlh);
4530f8cfe2ceSDavid Ahern 
4531f8cfe2ceSDavid Ahern 		/* user wants prefix routes only */
4532f8cfe2ceSDavid Ahern 		if (rtm->rtm_flags & RTM_F_PREFIX &&
4533f8cfe2ceSDavid Ahern 		    !(rt->rt6i_flags & RTF_PREFIX_RT)) {
4534f8cfe2ceSDavid Ahern 			/* success since this is not a prefix route */
4535f8cfe2ceSDavid Ahern 			return 1;
4536f8cfe2ceSDavid Ahern 		}
4537f8cfe2ceSDavid Ahern 	}
45381da177e4SLinus Torvalds 
45391f17e2f2SDavid Ahern 	return rt6_fill_node(net,
4540191cd582SBrian Haley 		     arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE,
454115e47304SEric W. Biederman 		     NETLINK_CB(arg->cb->skb).portid, arg->cb->nlh->nlmsg_seq,
4542f8cfe2ceSDavid Ahern 		     NLM_F_MULTI);
45431da177e4SLinus Torvalds }
45441da177e4SLinus Torvalds 
4545c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
4546c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
45471da177e4SLinus Torvalds {
45483b1e0a65SYOSHIFUJI Hideaki 	struct net *net = sock_net(in_skb->sk);
4549ab364a6fSThomas Graf 	struct nlattr *tb[RTA_MAX+1];
455018c3a61cSRoopa Prabhu 	int err, iif = 0, oif = 0;
455118c3a61cSRoopa Prabhu 	struct dst_entry *dst;
45521da177e4SLinus Torvalds 	struct rt6_info *rt;
4553ab364a6fSThomas Graf 	struct sk_buff *skb;
4554ab364a6fSThomas Graf 	struct rtmsg *rtm;
45554c9483b2SDavid S. Miller 	struct flowi6 fl6;
455618c3a61cSRoopa Prabhu 	bool fibmatch;
4557ab364a6fSThomas Graf 
4558fceb6435SJohannes Berg 	err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
4559c21ef3e3SDavid Ahern 			  extack);
4560ab364a6fSThomas Graf 	if (err < 0)
4561ab364a6fSThomas Graf 		goto errout;
4562ab364a6fSThomas Graf 
4563ab364a6fSThomas Graf 	err = -EINVAL;
45644c9483b2SDavid S. Miller 	memset(&fl6, 0, sizeof(fl6));
456538b7097bSHannes Frederic Sowa 	rtm = nlmsg_data(nlh);
456638b7097bSHannes Frederic Sowa 	fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
456718c3a61cSRoopa Prabhu 	fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
4568ab364a6fSThomas Graf 
4569ab364a6fSThomas Graf 	if (tb[RTA_SRC]) {
4570ab364a6fSThomas Graf 		if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
4571ab364a6fSThomas Graf 			goto errout;
4572ab364a6fSThomas Graf 
45734e3fd7a0SAlexey Dobriyan 		fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
4574ab364a6fSThomas Graf 	}
4575ab364a6fSThomas Graf 
4576ab364a6fSThomas Graf 	if (tb[RTA_DST]) {
4577ab364a6fSThomas Graf 		if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
4578ab364a6fSThomas Graf 			goto errout;
4579ab364a6fSThomas Graf 
45804e3fd7a0SAlexey Dobriyan 		fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
4581ab364a6fSThomas Graf 	}
4582ab364a6fSThomas Graf 
4583ab364a6fSThomas Graf 	if (tb[RTA_IIF])
4584ab364a6fSThomas Graf 		iif = nla_get_u32(tb[RTA_IIF]);
4585ab364a6fSThomas Graf 
4586ab364a6fSThomas Graf 	if (tb[RTA_OIF])
458772331bc0SShmulik Ladkani 		oif = nla_get_u32(tb[RTA_OIF]);
4588ab364a6fSThomas Graf 
45892e47b291SLorenzo Colitti 	if (tb[RTA_MARK])
45902e47b291SLorenzo Colitti 		fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
45912e47b291SLorenzo Colitti 
4592622ec2c9SLorenzo Colitti 	if (tb[RTA_UID])
4593622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = make_kuid(current_user_ns(),
4594622ec2c9SLorenzo Colitti 					   nla_get_u32(tb[RTA_UID]));
4595622ec2c9SLorenzo Colitti 	else
4596622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
4597622ec2c9SLorenzo Colitti 
4598ab364a6fSThomas Graf 	if (iif) {
4599ab364a6fSThomas Graf 		struct net_device *dev;
460072331bc0SShmulik Ladkani 		int flags = 0;
460172331bc0SShmulik Ladkani 
4602121622dbSFlorian Westphal 		rcu_read_lock();
4603121622dbSFlorian Westphal 
4604121622dbSFlorian Westphal 		dev = dev_get_by_index_rcu(net, iif);
4605ab364a6fSThomas Graf 		if (!dev) {
4606121622dbSFlorian Westphal 			rcu_read_unlock();
4607ab364a6fSThomas Graf 			err = -ENODEV;
4608ab364a6fSThomas Graf 			goto errout;
4609ab364a6fSThomas Graf 		}
461072331bc0SShmulik Ladkani 
461172331bc0SShmulik Ladkani 		fl6.flowi6_iif = iif;
461272331bc0SShmulik Ladkani 
461372331bc0SShmulik Ladkani 		if (!ipv6_addr_any(&fl6.saddr))
461472331bc0SShmulik Ladkani 			flags |= RT6_LOOKUP_F_HAS_SADDR;
461572331bc0SShmulik Ladkani 
461618c3a61cSRoopa Prabhu 		dst = ip6_route_input_lookup(net, dev, &fl6, flags);
4617121622dbSFlorian Westphal 
4618121622dbSFlorian Westphal 		rcu_read_unlock();
461972331bc0SShmulik Ladkani 	} else {
462072331bc0SShmulik Ladkani 		fl6.flowi6_oif = oif;
462172331bc0SShmulik Ladkani 
462218c3a61cSRoopa Prabhu 		dst = ip6_route_output(net, NULL, &fl6);
462318c3a61cSRoopa Prabhu 	}
462418c3a61cSRoopa Prabhu 
462518c3a61cSRoopa Prabhu 
462618c3a61cSRoopa Prabhu 	rt = container_of(dst, struct rt6_info, dst);
462718c3a61cSRoopa Prabhu 	if (rt->dst.error) {
462818c3a61cSRoopa Prabhu 		err = rt->dst.error;
462918c3a61cSRoopa Prabhu 		ip6_rt_put(rt);
463018c3a61cSRoopa Prabhu 		goto errout;
4631ab364a6fSThomas Graf 	}
46321da177e4SLinus Torvalds 
46339d6acb3bSWANG Cong 	if (rt == net->ipv6.ip6_null_entry) {
46349d6acb3bSWANG Cong 		err = rt->dst.error;
46359d6acb3bSWANG Cong 		ip6_rt_put(rt);
46369d6acb3bSWANG Cong 		goto errout;
46379d6acb3bSWANG Cong 	}
46389d6acb3bSWANG Cong 
4639fba961abSDavid S. Miller 	if (fibmatch && rt->from) {
4640fba961abSDavid S. Miller 		struct rt6_info *ort = rt->from;
464158acfd71SIdo Schimmel 
464258acfd71SIdo Schimmel 		dst_hold(&ort->dst);
464358acfd71SIdo Schimmel 		ip6_rt_put(rt);
464458acfd71SIdo Schimmel 		rt = ort;
464558acfd71SIdo Schimmel 	}
464658acfd71SIdo Schimmel 
46471da177e4SLinus Torvalds 	skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
464838308473SDavid S. Miller 	if (!skb) {
464994e187c0SAmerigo Wang 		ip6_rt_put(rt);
4650ab364a6fSThomas Graf 		err = -ENOBUFS;
4651ab364a6fSThomas Graf 		goto errout;
4652ab364a6fSThomas Graf 	}
46531da177e4SLinus Torvalds 
4654d8d1f30bSChangli Gao 	skb_dst_set(skb, &rt->dst);
465518c3a61cSRoopa Prabhu 	if (fibmatch)
465618c3a61cSRoopa Prabhu 		err = rt6_fill_node(net, skb, rt, NULL, NULL, iif,
465718c3a61cSRoopa Prabhu 				    RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
465818c3a61cSRoopa Prabhu 				    nlh->nlmsg_seq, 0);
465918c3a61cSRoopa Prabhu 	else
46604c9483b2SDavid S. Miller 		err = rt6_fill_node(net, skb, rt, &fl6.daddr, &fl6.saddr, iif,
466115e47304SEric W. Biederman 				    RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
4662f8cfe2ceSDavid Ahern 				    nlh->nlmsg_seq, 0);
46631da177e4SLinus Torvalds 	if (err < 0) {
4664ab364a6fSThomas Graf 		kfree_skb(skb);
4665ab364a6fSThomas Graf 		goto errout;
46661da177e4SLinus Torvalds 	}
46671da177e4SLinus Torvalds 
466815e47304SEric W. Biederman 	err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
4669ab364a6fSThomas Graf errout:
46701da177e4SLinus Torvalds 	return err;
46711da177e4SLinus Torvalds }
46721da177e4SLinus Torvalds 
467337a1d361SRoopa Prabhu void inet6_rt_notify(int event, struct rt6_info *rt, struct nl_info *info,
467437a1d361SRoopa Prabhu 		     unsigned int nlm_flags)
46751da177e4SLinus Torvalds {
46761da177e4SLinus Torvalds 	struct sk_buff *skb;
46775578689aSDaniel Lezcano 	struct net *net = info->nl_net;
4678528c4cebSDenis V. Lunev 	u32 seq;
4679528c4cebSDenis V. Lunev 	int err;
46800d51aa80SJamal Hadi Salim 
4681528c4cebSDenis V. Lunev 	err = -ENOBUFS;
468238308473SDavid S. Miller 	seq = info->nlh ? info->nlh->nlmsg_seq : 0;
468386872cb5SThomas Graf 
468419e42e45SRoopa Prabhu 	skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
468538308473SDavid S. Miller 	if (!skb)
468621713ebcSThomas Graf 		goto errout;
46871da177e4SLinus Torvalds 
4688191cd582SBrian Haley 	err = rt6_fill_node(net, skb, rt, NULL, NULL, 0,
4689f8cfe2ceSDavid Ahern 				event, info->portid, seq, nlm_flags);
469026932566SPatrick McHardy 	if (err < 0) {
469126932566SPatrick McHardy 		/* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
469226932566SPatrick McHardy 		WARN_ON(err == -EMSGSIZE);
469326932566SPatrick McHardy 		kfree_skb(skb);
469426932566SPatrick McHardy 		goto errout;
469526932566SPatrick McHardy 	}
469615e47304SEric W. Biederman 	rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
46975578689aSDaniel Lezcano 		    info->nlh, gfp_any());
46981ce85fe4SPablo Neira Ayuso 	return;
469921713ebcSThomas Graf errout:
470021713ebcSThomas Graf 	if (err < 0)
47015578689aSDaniel Lezcano 		rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
47021da177e4SLinus Torvalds }
47031da177e4SLinus Torvalds 
47048ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this,
4705351638e7SJiri Pirko 				unsigned long event, void *ptr)
47068ed67789SDaniel Lezcano {
4707351638e7SJiri Pirko 	struct net_device *dev = netdev_notifier_info_to_dev(ptr);
4708c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
47098ed67789SDaniel Lezcano 
4710242d3a49SWANG Cong 	if (!(dev->flags & IFF_LOOPBACK))
4711242d3a49SWANG Cong 		return NOTIFY_OK;
4712242d3a49SWANG Cong 
4713242d3a49SWANG Cong 	if (event == NETDEV_REGISTER) {
4714d8d1f30bSChangli Gao 		net->ipv6.ip6_null_entry->dst.dev = dev;
47158ed67789SDaniel Lezcano 		net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
47168ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
4717d8d1f30bSChangli Gao 		net->ipv6.ip6_prohibit_entry->dst.dev = dev;
47188ed67789SDaniel Lezcano 		net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
4719d8d1f30bSChangli Gao 		net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
47208ed67789SDaniel Lezcano 		net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
47218ed67789SDaniel Lezcano #endif
472276da0704SWANG Cong 	 } else if (event == NETDEV_UNREGISTER &&
472376da0704SWANG Cong 		    dev->reg_state != NETREG_UNREGISTERED) {
472476da0704SWANG Cong 		/* NETDEV_UNREGISTER could be fired for multiple times by
472576da0704SWANG Cong 		 * netdev_wait_allrefs(). Make sure we only call this once.
472676da0704SWANG Cong 		 */
472712d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
4728242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES
472912d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
473012d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
4731242d3a49SWANG Cong #endif
47328ed67789SDaniel Lezcano 	}
47338ed67789SDaniel Lezcano 
47348ed67789SDaniel Lezcano 	return NOTIFY_OK;
47358ed67789SDaniel Lezcano }
47368ed67789SDaniel Lezcano 
47371da177e4SLinus Torvalds /*
47381da177e4SLinus Torvalds  *	/proc
47391da177e4SLinus Torvalds  */
47401da177e4SLinus Torvalds 
47411da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS
47421da177e4SLinus Torvalds 
474333120b30SAlexey Dobriyan static const struct file_operations ipv6_route_proc_fops = {
474433120b30SAlexey Dobriyan 	.open		= ipv6_route_open,
474533120b30SAlexey Dobriyan 	.read		= seq_read,
474633120b30SAlexey Dobriyan 	.llseek		= seq_lseek,
47478d2ca1d7SHannes Frederic Sowa 	.release	= seq_release_net,
474833120b30SAlexey Dobriyan };
474933120b30SAlexey Dobriyan 
47501da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v)
47511da177e4SLinus Torvalds {
475269ddb805SDaniel Lezcano 	struct net *net = (struct net *)seq->private;
47531da177e4SLinus Torvalds 	seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
475469ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_nodes,
475569ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_route_nodes,
475681eb8447SWei Wang 		   atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
475769ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_entries,
475869ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_cache,
4759fc66f95cSEric Dumazet 		   dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
476069ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_discarded_routes);
47611da177e4SLinus Torvalds 
47621da177e4SLinus Torvalds 	return 0;
47631da177e4SLinus Torvalds }
47641da177e4SLinus Torvalds 
47651da177e4SLinus Torvalds static int rt6_stats_seq_open(struct inode *inode, struct file *file)
47661da177e4SLinus Torvalds {
4767de05c557SPavel Emelyanov 	return single_open_net(inode, file, rt6_stats_seq_show);
476869ddb805SDaniel Lezcano }
476969ddb805SDaniel Lezcano 
47709a32144eSArjan van de Ven static const struct file_operations rt6_stats_seq_fops = {
47711da177e4SLinus Torvalds 	.open	 = rt6_stats_seq_open,
47721da177e4SLinus Torvalds 	.read	 = seq_read,
47731da177e4SLinus Torvalds 	.llseek	 = seq_lseek,
4774b6fcbdb4SPavel Emelyanov 	.release = single_release_net,
47751da177e4SLinus Torvalds };
47761da177e4SLinus Torvalds #endif	/* CONFIG_PROC_FS */
47771da177e4SLinus Torvalds 
47781da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
47791da177e4SLinus Torvalds 
47801da177e4SLinus Torvalds static
4781fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
47821da177e4SLinus Torvalds 			      void __user *buffer, size_t *lenp, loff_t *ppos)
47831da177e4SLinus Torvalds {
4784c486da34SLucian Adrian Grijincu 	struct net *net;
4785c486da34SLucian Adrian Grijincu 	int delay;
4786c486da34SLucian Adrian Grijincu 	if (!write)
4787c486da34SLucian Adrian Grijincu 		return -EINVAL;
4788c486da34SLucian Adrian Grijincu 
4789c486da34SLucian Adrian Grijincu 	net = (struct net *)ctl->extra1;
4790c486da34SLucian Adrian Grijincu 	delay = net->ipv6.sysctl.flush_delay;
47918d65af78SAlexey Dobriyan 	proc_dointvec(ctl, write, buffer, lenp, ppos);
47922ac3ac8fSMichal Kubeček 	fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
47931da177e4SLinus Torvalds 	return 0;
47941da177e4SLinus Torvalds }
47951da177e4SLinus Torvalds 
4796fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = {
47971da177e4SLinus Torvalds 	{
47981da177e4SLinus Torvalds 		.procname	=	"flush",
47994990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.flush_delay,
48001da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
480189c8b3a1SDave Jones 		.mode		=	0200,
48026d9f239aSAlexey Dobriyan 		.proc_handler	=	ipv6_sysctl_rtcache_flush
48031da177e4SLinus Torvalds 	},
48041da177e4SLinus Torvalds 	{
48051da177e4SLinus Torvalds 		.procname	=	"gc_thresh",
48069a7ec3a9SDaniel Lezcano 		.data		=	&ip6_dst_ops_template.gc_thresh,
48071da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48081da177e4SLinus Torvalds 		.mode		=	0644,
48096d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
48101da177e4SLinus Torvalds 	},
48111da177e4SLinus Torvalds 	{
48121da177e4SLinus Torvalds 		.procname	=	"max_size",
48134990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_max_size,
48141da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48151da177e4SLinus Torvalds 		.mode		=	0644,
48166d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
48171da177e4SLinus Torvalds 	},
48181da177e4SLinus Torvalds 	{
48191da177e4SLinus Torvalds 		.procname	=	"gc_min_interval",
48204990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
48211da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48221da177e4SLinus Torvalds 		.mode		=	0644,
48236d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
48241da177e4SLinus Torvalds 	},
48251da177e4SLinus Torvalds 	{
48261da177e4SLinus Torvalds 		.procname	=	"gc_timeout",
48274990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_timeout,
48281da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48291da177e4SLinus Torvalds 		.mode		=	0644,
48306d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
48311da177e4SLinus Torvalds 	},
48321da177e4SLinus Torvalds 	{
48331da177e4SLinus Torvalds 		.procname	=	"gc_interval",
48344990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_interval,
48351da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48361da177e4SLinus Torvalds 		.mode		=	0644,
48376d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
48381da177e4SLinus Torvalds 	},
48391da177e4SLinus Torvalds 	{
48401da177e4SLinus Torvalds 		.procname	=	"gc_elasticity",
48414990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
48421da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48431da177e4SLinus Torvalds 		.mode		=	0644,
4844f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
48451da177e4SLinus Torvalds 	},
48461da177e4SLinus Torvalds 	{
48471da177e4SLinus Torvalds 		.procname	=	"mtu_expires",
48484990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_mtu_expires,
48491da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48501da177e4SLinus Torvalds 		.mode		=	0644,
48516d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
48521da177e4SLinus Torvalds 	},
48531da177e4SLinus Torvalds 	{
48541da177e4SLinus Torvalds 		.procname	=	"min_adv_mss",
48554990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_min_advmss,
48561da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48571da177e4SLinus Torvalds 		.mode		=	0644,
4858f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
48591da177e4SLinus Torvalds 	},
48601da177e4SLinus Torvalds 	{
48611da177e4SLinus Torvalds 		.procname	=	"gc_min_interval_ms",
48624990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
48631da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
48641da177e4SLinus Torvalds 		.mode		=	0644,
48656d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_ms_jiffies,
48661da177e4SLinus Torvalds 	},
4867f8572d8fSEric W. Biederman 	{ }
48681da177e4SLinus Torvalds };
48691da177e4SLinus Torvalds 
48702c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
4871760f2d01SDaniel Lezcano {
4872760f2d01SDaniel Lezcano 	struct ctl_table *table;
4873760f2d01SDaniel Lezcano 
4874760f2d01SDaniel Lezcano 	table = kmemdup(ipv6_route_table_template,
4875760f2d01SDaniel Lezcano 			sizeof(ipv6_route_table_template),
4876760f2d01SDaniel Lezcano 			GFP_KERNEL);
48775ee09105SYOSHIFUJI Hideaki 
48785ee09105SYOSHIFUJI Hideaki 	if (table) {
48795ee09105SYOSHIFUJI Hideaki 		table[0].data = &net->ipv6.sysctl.flush_delay;
4880c486da34SLucian Adrian Grijincu 		table[0].extra1 = net;
488186393e52SAlexey Dobriyan 		table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
48825ee09105SYOSHIFUJI Hideaki 		table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
48835ee09105SYOSHIFUJI Hideaki 		table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
48845ee09105SYOSHIFUJI Hideaki 		table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
48855ee09105SYOSHIFUJI Hideaki 		table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
48865ee09105SYOSHIFUJI Hideaki 		table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
48875ee09105SYOSHIFUJI Hideaki 		table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
48885ee09105SYOSHIFUJI Hideaki 		table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
48899c69fabeSAlexey Dobriyan 		table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
4890464dc801SEric W. Biederman 
4891464dc801SEric W. Biederman 		/* Don't export sysctls to unprivileged users */
4892464dc801SEric W. Biederman 		if (net->user_ns != &init_user_ns)
4893464dc801SEric W. Biederman 			table[0].procname = NULL;
48945ee09105SYOSHIFUJI Hideaki 	}
48955ee09105SYOSHIFUJI Hideaki 
4896760f2d01SDaniel Lezcano 	return table;
4897760f2d01SDaniel Lezcano }
48981da177e4SLinus Torvalds #endif
48991da177e4SLinus Torvalds 
49002c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net)
4901cdb18761SDaniel Lezcano {
4902633d424bSPavel Emelyanov 	int ret = -ENOMEM;
49038ed67789SDaniel Lezcano 
490486393e52SAlexey Dobriyan 	memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
490586393e52SAlexey Dobriyan 	       sizeof(net->ipv6.ip6_dst_ops));
4906f2fc6a54SBenjamin Thery 
4907fc66f95cSEric Dumazet 	if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
4908fc66f95cSEric Dumazet 		goto out_ip6_dst_ops;
4909fc66f95cSEric Dumazet 
49108ed67789SDaniel Lezcano 	net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
49118ed67789SDaniel Lezcano 					   sizeof(*net->ipv6.ip6_null_entry),
49128ed67789SDaniel Lezcano 					   GFP_KERNEL);
49138ed67789SDaniel Lezcano 	if (!net->ipv6.ip6_null_entry)
4914fc66f95cSEric Dumazet 		goto out_ip6_dst_entries;
4915d8d1f30bSChangli Gao 	net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
491662fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
491762fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
49188ed67789SDaniel Lezcano 
49198ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
4920feca7d8cSVincent Bernat 	net->ipv6.fib6_has_custom_rules = false;
49218ed67789SDaniel Lezcano 	net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
49228ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_prohibit_entry),
49238ed67789SDaniel Lezcano 					       GFP_KERNEL);
492468fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_prohibit_entry)
492568fffc67SPeter Zijlstra 		goto out_ip6_null_entry;
4926d8d1f30bSChangli Gao 	net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
492762fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
492862fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
49298ed67789SDaniel Lezcano 
49308ed67789SDaniel Lezcano 	net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
49318ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_blk_hole_entry),
49328ed67789SDaniel Lezcano 					       GFP_KERNEL);
493368fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_blk_hole_entry)
493468fffc67SPeter Zijlstra 		goto out_ip6_prohibit_entry;
4935d8d1f30bSChangli Gao 	net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
493662fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
493762fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
49388ed67789SDaniel Lezcano #endif
49398ed67789SDaniel Lezcano 
4940b339a47cSPeter Zijlstra 	net->ipv6.sysctl.flush_delay = 0;
4941b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_max_size = 4096;
4942b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
4943b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
4944b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
4945b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
4946b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
4947b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
4948b339a47cSPeter Zijlstra 
49496891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire = 30*HZ;
49506891a346SBenjamin Thery 
49518ed67789SDaniel Lezcano 	ret = 0;
49528ed67789SDaniel Lezcano out:
49538ed67789SDaniel Lezcano 	return ret;
4954f2fc6a54SBenjamin Thery 
495568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES
495668fffc67SPeter Zijlstra out_ip6_prohibit_entry:
495768fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_prohibit_entry);
495868fffc67SPeter Zijlstra out_ip6_null_entry:
495968fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_null_entry);
496068fffc67SPeter Zijlstra #endif
4961fc66f95cSEric Dumazet out_ip6_dst_entries:
4962fc66f95cSEric Dumazet 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
4963f2fc6a54SBenjamin Thery out_ip6_dst_ops:
4964f2fc6a54SBenjamin Thery 	goto out;
4965cdb18761SDaniel Lezcano }
4966cdb18761SDaniel Lezcano 
49672c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net)
4968cdb18761SDaniel Lezcano {
49698ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_null_entry);
49708ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
49718ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_prohibit_entry);
49728ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_blk_hole_entry);
49738ed67789SDaniel Lezcano #endif
497441bb78b4SXiaotian Feng 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
4975cdb18761SDaniel Lezcano }
4976cdb18761SDaniel Lezcano 
4977d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net)
4978d189634eSThomas Graf {
4979d189634eSThomas Graf #ifdef CONFIG_PROC_FS
4980d4beaa66SGao feng 	proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops);
4981d4beaa66SGao feng 	proc_create("rt6_stats", S_IRUGO, net->proc_net, &rt6_stats_seq_fops);
4982d189634eSThomas Graf #endif
4983d189634eSThomas Graf 	return 0;
4984d189634eSThomas Graf }
4985d189634eSThomas Graf 
4986d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net)
4987d189634eSThomas Graf {
4988d189634eSThomas Graf #ifdef CONFIG_PROC_FS
4989ece31ffdSGao feng 	remove_proc_entry("ipv6_route", net->proc_net);
4990ece31ffdSGao feng 	remove_proc_entry("rt6_stats", net->proc_net);
4991d189634eSThomas Graf #endif
4992d189634eSThomas Graf }
4993d189634eSThomas Graf 
4994cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = {
4995cdb18761SDaniel Lezcano 	.init = ip6_route_net_init,
4996cdb18761SDaniel Lezcano 	.exit = ip6_route_net_exit,
4997cdb18761SDaniel Lezcano };
4998cdb18761SDaniel Lezcano 
4999c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net)
5000c3426b47SDavid S. Miller {
5001c3426b47SDavid S. Miller 	struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
5002c3426b47SDavid S. Miller 
5003c3426b47SDavid S. Miller 	if (!bp)
5004c3426b47SDavid S. Miller 		return -ENOMEM;
5005c3426b47SDavid S. Miller 	inet_peer_base_init(bp);
5006c3426b47SDavid S. Miller 	net->ipv6.peers = bp;
5007c3426b47SDavid S. Miller 	return 0;
5008c3426b47SDavid S. Miller }
5009c3426b47SDavid S. Miller 
5010c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net)
5011c3426b47SDavid S. Miller {
5012c3426b47SDavid S. Miller 	struct inet_peer_base *bp = net->ipv6.peers;
5013c3426b47SDavid S. Miller 
5014c3426b47SDavid S. Miller 	net->ipv6.peers = NULL;
501556a6b248SDavid S. Miller 	inetpeer_invalidate_tree(bp);
5016c3426b47SDavid S. Miller 	kfree(bp);
5017c3426b47SDavid S. Miller }
5018c3426b47SDavid S. Miller 
50192b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = {
5020c3426b47SDavid S. Miller 	.init	=	ipv6_inetpeer_init,
5021c3426b47SDavid S. Miller 	.exit	=	ipv6_inetpeer_exit,
5022c3426b47SDavid S. Miller };
5023c3426b47SDavid S. Miller 
5024d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = {
5025d189634eSThomas Graf 	.init = ip6_route_net_init_late,
5026d189634eSThomas Graf 	.exit = ip6_route_net_exit_late,
5027d189634eSThomas Graf };
5028d189634eSThomas Graf 
50298ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = {
50308ed67789SDaniel Lezcano 	.notifier_call = ip6_route_dev_notify,
5031242d3a49SWANG Cong 	.priority = ADDRCONF_NOTIFY_PRIORITY - 10,
50328ed67789SDaniel Lezcano };
50338ed67789SDaniel Lezcano 
50342f460933SWANG Cong void __init ip6_route_init_special_entries(void)
50352f460933SWANG Cong {
50362f460933SWANG Cong 	/* Registering of the loopback is done before this portion of code,
50372f460933SWANG Cong 	 * the loopback reference in rt6_info will not be taken, do it
50382f460933SWANG Cong 	 * manually for init_net */
50392f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
50402f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
50412f460933SWANG Cong   #ifdef CONFIG_IPV6_MULTIPLE_TABLES
50422f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
50432f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
50442f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
50452f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
50462f460933SWANG Cong   #endif
50472f460933SWANG Cong }
50482f460933SWANG Cong 
5049433d49c3SDaniel Lezcano int __init ip6_route_init(void)
50501da177e4SLinus Torvalds {
5051433d49c3SDaniel Lezcano 	int ret;
50528d0b94afSMartin KaFai Lau 	int cpu;
5053433d49c3SDaniel Lezcano 
50549a7ec3a9SDaniel Lezcano 	ret = -ENOMEM;
50559a7ec3a9SDaniel Lezcano 	ip6_dst_ops_template.kmem_cachep =
50569a7ec3a9SDaniel Lezcano 		kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
50579a7ec3a9SDaniel Lezcano 				  SLAB_HWCACHE_ALIGN, NULL);
50589a7ec3a9SDaniel Lezcano 	if (!ip6_dst_ops_template.kmem_cachep)
5059c19a28e1SFernando Carrijo 		goto out;
506014e50e57SDavid S. Miller 
5061fc66f95cSEric Dumazet 	ret = dst_entries_init(&ip6_dst_blackhole_ops);
50628ed67789SDaniel Lezcano 	if (ret)
5063bdb3289fSDaniel Lezcano 		goto out_kmem_cache;
5064bdb3289fSDaniel Lezcano 
5065c3426b47SDavid S. Miller 	ret = register_pernet_subsys(&ipv6_inetpeer_ops);
5066c3426b47SDavid S. Miller 	if (ret)
5067e8803b6cSDavid S. Miller 		goto out_dst_entries;
50682a0c451aSThomas Graf 
50697e52b33bSDavid S. Miller 	ret = register_pernet_subsys(&ip6_route_net_ops);
50707e52b33bSDavid S. Miller 	if (ret)
50717e52b33bSDavid S. Miller 		goto out_register_inetpeer;
5072c3426b47SDavid S. Miller 
50735dc121e9SArnaud Ebalard 	ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
50745dc121e9SArnaud Ebalard 
5075e8803b6cSDavid S. Miller 	ret = fib6_init();
5076433d49c3SDaniel Lezcano 	if (ret)
50778ed67789SDaniel Lezcano 		goto out_register_subsys;
5078433d49c3SDaniel Lezcano 
5079433d49c3SDaniel Lezcano 	ret = xfrm6_init();
5080433d49c3SDaniel Lezcano 	if (ret)
5081e8803b6cSDavid S. Miller 		goto out_fib6_init;
5082c35b7e72SDaniel Lezcano 
5083433d49c3SDaniel Lezcano 	ret = fib6_rules_init();
5084433d49c3SDaniel Lezcano 	if (ret)
5085433d49c3SDaniel Lezcano 		goto xfrm6_init;
50867e5449c2SDaniel Lezcano 
5087d189634eSThomas Graf 	ret = register_pernet_subsys(&ip6_route_net_late_ops);
5088d189634eSThomas Graf 	if (ret)
5089d189634eSThomas Graf 		goto fib6_rules_init;
5090d189634eSThomas Graf 
509116feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
509216feebcfSFlorian Westphal 				   inet6_rtm_newroute, NULL, 0);
509316feebcfSFlorian Westphal 	if (ret < 0)
509416feebcfSFlorian Westphal 		goto out_register_late_subsys;
509516feebcfSFlorian Westphal 
509616feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
509716feebcfSFlorian Westphal 				   inet6_rtm_delroute, NULL, 0);
509816feebcfSFlorian Westphal 	if (ret < 0)
509916feebcfSFlorian Westphal 		goto out_register_late_subsys;
510016feebcfSFlorian Westphal 
510116feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
510216feebcfSFlorian Westphal 				   inet6_rtm_getroute, NULL,
510316feebcfSFlorian Westphal 				   RTNL_FLAG_DOIT_UNLOCKED);
510416feebcfSFlorian Westphal 	if (ret < 0)
5105d189634eSThomas Graf 		goto out_register_late_subsys;
5106433d49c3SDaniel Lezcano 
51078ed67789SDaniel Lezcano 	ret = register_netdevice_notifier(&ip6_route_dev_notifier);
5108cdb18761SDaniel Lezcano 	if (ret)
5109d189634eSThomas Graf 		goto out_register_late_subsys;
51108ed67789SDaniel Lezcano 
51118d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
51128d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
51138d0b94afSMartin KaFai Lau 
51148d0b94afSMartin KaFai Lau 		INIT_LIST_HEAD(&ul->head);
51158d0b94afSMartin KaFai Lau 		spin_lock_init(&ul->lock);
51168d0b94afSMartin KaFai Lau 	}
51178d0b94afSMartin KaFai Lau 
5118433d49c3SDaniel Lezcano out:
5119433d49c3SDaniel Lezcano 	return ret;
5120433d49c3SDaniel Lezcano 
5121d189634eSThomas Graf out_register_late_subsys:
512216feebcfSFlorian Westphal 	rtnl_unregister_all(PF_INET6);
5123d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
5124433d49c3SDaniel Lezcano fib6_rules_init:
5125433d49c3SDaniel Lezcano 	fib6_rules_cleanup();
5126433d49c3SDaniel Lezcano xfrm6_init:
5127433d49c3SDaniel Lezcano 	xfrm6_fini();
51282a0c451aSThomas Graf out_fib6_init:
51292a0c451aSThomas Graf 	fib6_gc_cleanup();
51308ed67789SDaniel Lezcano out_register_subsys:
51318ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
51327e52b33bSDavid S. Miller out_register_inetpeer:
51337e52b33bSDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
5134fc66f95cSEric Dumazet out_dst_entries:
5135fc66f95cSEric Dumazet 	dst_entries_destroy(&ip6_dst_blackhole_ops);
5136433d49c3SDaniel Lezcano out_kmem_cache:
5137f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
5138433d49c3SDaniel Lezcano 	goto out;
51391da177e4SLinus Torvalds }
51401da177e4SLinus Torvalds 
51411da177e4SLinus Torvalds void ip6_route_cleanup(void)
51421da177e4SLinus Torvalds {
51438ed67789SDaniel Lezcano 	unregister_netdevice_notifier(&ip6_route_dev_notifier);
5144d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
5145101367c2SThomas Graf 	fib6_rules_cleanup();
51461da177e4SLinus Torvalds 	xfrm6_fini();
51471da177e4SLinus Torvalds 	fib6_gc_cleanup();
5148c3426b47SDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
51498ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
515041bb78b4SXiaotian Feng 	dst_entries_destroy(&ip6_dst_blackhole_ops);
5151f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
51521da177e4SLinus Torvalds }
5153