11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 105702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 106702cea56SDavid Ahern int strict); 1078d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 108d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1098d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 110d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11116a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11216a16cd3SDavid Ahern unsigned int flags); 1138d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11435732d01SWei Wang struct in6_addr *daddr, 11535732d01SWei Wang struct in6_addr *saddr); 1161da177e4SLinus Torvalds 11770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1188d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev, 12295c96174SEric Dumazet unsigned int pref); 1238d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 124b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 125830218c1SDavid Ahern const struct in6_addr *gwaddr, 126830218c1SDavid Ahern struct net_device *dev); 12770ceb4f5SYOSHIFUJI Hideaki #endif 12870ceb4f5SYOSHIFUJI Hideaki 1298d0b94afSMartin KaFai Lau struct uncached_list { 1308d0b94afSMartin KaFai Lau spinlock_t lock; 1318d0b94afSMartin KaFai Lau struct list_head head; 1328d0b94afSMartin KaFai Lau }; 1338d0b94afSMartin KaFai Lau 1348d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1358d0b94afSMartin KaFai Lau 136510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1378d0b94afSMartin KaFai Lau { 1388d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1398d0b94afSMartin KaFai Lau 1408d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1438d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1448d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1458d0b94afSMartin KaFai Lau } 1468d0b94afSMartin KaFai Lau 147510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1488d0b94afSMartin KaFai Lau { 1498d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1508d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15181eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1548d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15581eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1568d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau } 1598d0b94afSMartin KaFai Lau 1608d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1618d0b94afSMartin KaFai Lau { 1628d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1638d0b94afSMartin KaFai Lau int cpu; 1648d0b94afSMartin KaFai Lau 165e332bc67SEric W. Biederman if (dev == loopback_dev) 166e332bc67SEric W. Biederman return; 167e332bc67SEric W. Biederman 1688d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1698d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1708d0b94afSMartin KaFai Lau struct rt6_info *rt; 1718d0b94afSMartin KaFai Lau 1728d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1738d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1748d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1758d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1768d0b94afSMartin KaFai Lau 177e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1788d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1798d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau 182e332bc67SEric W. Biederman if (rt_dev == dev) { 1838d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1848d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1858d0b94afSMartin KaFai Lau dev_put(rt_dev); 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau } 1888d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau } 1918d0b94afSMartin KaFai Lau 192f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 193f894cbf8SDavid S. Miller struct sk_buff *skb, 194f894cbf8SDavid S. Miller const void *daddr) 19539232973SDavid S. Miller { 196a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19739232973SDavid S. Miller return (const void *) p; 198f894cbf8SDavid S. Miller else if (skb) 199f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 20039232973SDavid S. Miller return daddr; 20139232973SDavid S. Miller } 20239232973SDavid S. Miller 203f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 204f8a1b43bSDavid Ahern struct net_device *dev, 205f894cbf8SDavid S. Miller struct sk_buff *skb, 206f894cbf8SDavid S. Miller const void *daddr) 207d3aaeb38SDavid S. Miller { 20839232973SDavid S. Miller struct neighbour *n; 20939232973SDavid S. Miller 210f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 211f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 212f83c7790SDavid S. Miller if (n) 213f83c7790SDavid S. Miller return n; 2147adf3246SStefano Brivio 2157adf3246SStefano Brivio n = neigh_create(&nd_tbl, daddr, dev); 2167adf3246SStefano Brivio return IS_ERR(n) ? NULL : n; 217f8a1b43bSDavid Ahern } 218f8a1b43bSDavid Ahern 219f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 220f8a1b43bSDavid Ahern struct sk_buff *skb, 221f8a1b43bSDavid Ahern const void *daddr) 222f8a1b43bSDavid Ahern { 223f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 224f8a1b43bSDavid Ahern 225f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 226f83c7790SDavid S. Miller } 227f83c7790SDavid S. Miller 22863fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22963fca65dSJulian Anastasov { 23063fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23163fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23263fca65dSJulian Anastasov 233f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23463fca65dSJulian Anastasov if (!daddr) 23563fca65dSJulian Anastasov return; 23663fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23763fca65dSJulian Anastasov return; 23863fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23963fca65dSJulian Anastasov return; 24063fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24163fca65dSJulian Anastasov } 24263fca65dSJulian Anastasov 2439a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2441da177e4SLinus Torvalds .family = AF_INET6, 2451da177e4SLinus Torvalds .gc = ip6_dst_gc, 2461da177e4SLinus Torvalds .gc_thresh = 1024, 2471da177e4SLinus Torvalds .check = ip6_dst_check, 2480dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 249ebb762f2SSteffen Klassert .mtu = ip6_mtu, 250d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2511da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2521da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2531da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2541da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2551da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2566e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2579f8955ccSEric W. Biederman .local_out = __ip6_local_out, 258f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25963fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2601da177e4SLinus Torvalds }; 2611da177e4SLinus Torvalds 262ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 263ec831ea7SRoland Dreier { 264618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 265618f9bc7SSteffen Klassert 266618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 267ec831ea7SRoland Dreier } 268ec831ea7SRoland Dreier 2696700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2706700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27114e50e57SDavid S. Miller { 27214e50e57SDavid S. Miller } 27314e50e57SDavid S. Miller 2746700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2756700c270SDavid S. Miller struct sk_buff *skb) 276b587ee3bSDavid S. Miller { 277b587ee3bSDavid S. Miller } 278b587ee3bSDavid S. Miller 27914e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28014e50e57SDavid S. Miller .family = AF_INET6, 28114e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28214e50e57SDavid S. Miller .check = ip6_dst_check, 283ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 284214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28514e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 286b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2870a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 288f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28914e50e57SDavid S. Miller }; 29014e50e57SDavid S. Miller 29162fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29214edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29362fa8a84SDavid S. Miller }; 29462fa8a84SDavid S. Miller 2958d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29693c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29793c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29893c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29993c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 300421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 301421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 302421842edSDavid Ahern }; 303421842edSDavid Ahern 304fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3051da177e4SLinus Torvalds .dst = { 3061da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3071da177e4SLinus Torvalds .__use = 1, 3082c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3091da177e4SLinus Torvalds .error = -ENETUNREACH, 3101da177e4SLinus Torvalds .input = ip6_pkt_discard, 3111da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3121da177e4SLinus Torvalds }, 3131da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3141da177e4SLinus Torvalds }; 3151da177e4SLinus Torvalds 316101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 317101367c2SThomas Graf 318fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 319101367c2SThomas Graf .dst = { 320101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 321101367c2SThomas Graf .__use = 1, 3222c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 323101367c2SThomas Graf .error = -EACCES, 3249ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3259ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 326101367c2SThomas Graf }, 327101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 328101367c2SThomas Graf }; 329101367c2SThomas Graf 330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 331101367c2SThomas Graf .dst = { 332101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 333101367c2SThomas Graf .__use = 1, 3342c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 335101367c2SThomas Graf .error = -EINVAL, 336352e512cSHerbert Xu .input = dst_discard, 337ede2059dSEric W. Biederman .output = dst_discard_out, 338101367c2SThomas Graf }, 339101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 340101367c2SThomas Graf }; 341101367c2SThomas Graf 342101367c2SThomas Graf #endif 343101367c2SThomas Graf 344ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 345ebfa45f0SMartin KaFai Lau { 346ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 347ebfa45f0SMartin KaFai Lau 348ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 349ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 350ebfa45f0SMartin KaFai Lau } 351ebfa45f0SMartin KaFai Lau 3521da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35393531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 354ad706862SMartin KaFai Lau int flags) 3551da177e4SLinus Torvalds { 35697bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 357b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 358cf911662SDavid S. Miller 35981eb8447SWei Wang if (rt) { 360ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36281eb8447SWei Wang } 3638104891bSSteffen Klassert 364cf911662SDavid S. Miller return rt; 3651da177e4SLinus Torvalds } 3669ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 367d52d3997SMartin KaFai Lau 3681da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3691da177e4SLinus Torvalds { 3701da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 371a68886a6SDavid Ahern struct fib6_info *from; 3728d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3731da177e4SLinus Torvalds 3741620a336SDavid Ahern ip_dst_metrics_put(dst); 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 4313b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4328d1c802bSDavid Ahern struct fib6_info *match, 43352bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 434b75cc8f9SDavid Ahern const struct sk_buff *skb, 43552bd4c0cSNicolas Dichtel int strict) 43651ebd318SNicolas Dichtel { 4378d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43851ebd318SNicolas Dichtel 439b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 440b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 441b673d6ccSJakub Sitnicki */ 442b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 443b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 444b673d6ccSJakub Sitnicki 445ad1601aeSDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.fib_nh_upper_bound)) 4463d709f69SIdo Schimmel return match; 447bbfcd776SIdo Schimmel 44893c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44993c2fb25SDavid Ahern fib6_siblings) { 450702cea56SDavid Ahern const struct fib6_nh *nh = &sibling->fib6_nh; 4515e670d84SDavid Ahern int nh_upper_bound; 4525e670d84SDavid Ahern 453702cea56SDavid Ahern nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound); 4545e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4553d709f69SIdo Schimmel continue; 456702cea56SDavid Ahern if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0) 45752bd4c0cSNicolas Dichtel break; 45851ebd318SNicolas Dichtel match = sibling; 45951ebd318SNicolas Dichtel break; 46051ebd318SNicolas Dichtel } 4613d709f69SIdo Schimmel 46251ebd318SNicolas Dichtel return match; 46351ebd318SNicolas Dichtel } 46451ebd318SNicolas Dichtel 4651da177e4SLinus Torvalds /* 46666f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4671da177e4SLinus Torvalds */ 4681da177e4SLinus Torvalds 4698d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4708d1c802bSDavid Ahern struct fib6_info *rt, 471b71d1d42SEric Dumazet const struct in6_addr *saddr, 4721da177e4SLinus Torvalds int oif, 473d420895eSYOSHIFUJI Hideaki int flags) 4741da177e4SLinus Torvalds { 4758d1c802bSDavid Ahern struct fib6_info *sprt; 4761da177e4SLinus Torvalds 4775e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 478ad1601aeSDavid Ahern !(rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD)) 4798067bb8cSIdo Schimmel return rt; 480dd3abc4eSYOSHIFUJI Hideaki 4818fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 482ad1601aeSDavid Ahern const struct net_device *dev = sprt->fib6_nh.fib_nh_dev; 483dd3abc4eSYOSHIFUJI Hideaki 484ad1601aeSDavid Ahern if (sprt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 4858067bb8cSIdo Schimmel continue; 4868067bb8cSIdo Schimmel 487dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4881da177e4SLinus Torvalds if (dev->ifindex == oif) 4891da177e4SLinus Torvalds return sprt; 490dd3abc4eSYOSHIFUJI Hideaki } else { 491dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 492dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 493dd3abc4eSYOSHIFUJI Hideaki return sprt; 494dd3abc4eSYOSHIFUJI Hideaki } 4951da177e4SLinus Torvalds } 4961da177e4SLinus Torvalds 497eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 498421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4991da177e4SLinus Torvalds 500ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5011da177e4SLinus Torvalds } 5021da177e4SLinus Torvalds 50327097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 504c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 505c2f17e82SHannes Frederic Sowa struct work_struct work; 506c2f17e82SHannes Frederic Sowa struct in6_addr target; 507c2f17e82SHannes Frederic Sowa struct net_device *dev; 508c2f17e82SHannes Frederic Sowa }; 509c2f17e82SHannes Frederic Sowa 510c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 511c2f17e82SHannes Frederic Sowa { 512c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 513c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 514c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 515c2f17e82SHannes Frederic Sowa 516c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 517adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 518c2f17e82SHannes Frederic Sowa dev_put(work->dev); 519662f5533SMichael Büsch kfree(work); 520c2f17e82SHannes Frederic Sowa } 521c2f17e82SHannes Frederic Sowa 522cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh) 52327097255SYOSHIFUJI Hideaki { 524f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5255e670d84SDavid Ahern const struct in6_addr *nh_gw; 526f2c31e32SEric Dumazet struct neighbour *neigh; 5275e670d84SDavid Ahern struct net_device *dev; 528f547fac6SSabrina Dubroca struct inet6_dev *idev; 5295e670d84SDavid Ahern 53027097255SYOSHIFUJI Hideaki /* 53127097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 53227097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 53327097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53427097255SYOSHIFUJI Hideaki * 53527097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53627097255SYOSHIFUJI Hideaki * to no more than one per minute. 53727097255SYOSHIFUJI Hideaki */ 538cc3a86c8SDavid Ahern if (fib6_nh->fib_nh_gw_family) 539fdd6681dSAmerigo Wang return; 5405e670d84SDavid Ahern 541cc3a86c8SDavid Ahern nh_gw = &fib6_nh->fib_nh_gw6; 542cc3a86c8SDavid Ahern dev = fib6_nh->fib_nh_dev; 5432152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 544f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5455e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5462152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5478d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5488d6c31bfSMartin KaFai Lau goto out; 5498d6c31bfSMartin KaFai Lau 5502152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 551990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 552990edb42SMartin KaFai Lau time_after(jiffies, 553dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 554c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 555990edb42SMartin KaFai Lau if (work) 5567e980569SJiri Benc __neigh_set_probe_once(neigh); 557990edb42SMartin KaFai Lau } 558c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 559cc3a86c8SDavid Ahern } else if (time_after(jiffies, fib6_nh->last_probe + 560f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 561990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 562990edb42SMartin KaFai Lau } 563c2f17e82SHannes Frederic Sowa 564c2f17e82SHannes Frederic Sowa if (work) { 565cc3a86c8SDavid Ahern fib6_nh->last_probe = jiffies; 566c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5675e670d84SDavid Ahern work->target = *nh_gw; 5685e670d84SDavid Ahern dev_hold(dev); 5695e670d84SDavid Ahern work->dev = dev; 570c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 571c2f17e82SHannes Frederic Sowa } 572990edb42SMartin KaFai Lau 5738d6c31bfSMartin KaFai Lau out: 5742152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 575f2c31e32SEric Dumazet } 57627097255SYOSHIFUJI Hideaki #else 577cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh) 57827097255SYOSHIFUJI Hideaki { 57927097255SYOSHIFUJI Hideaki } 58027097255SYOSHIFUJI Hideaki #endif 58127097255SYOSHIFUJI Hideaki 5821da177e4SLinus Torvalds /* 583554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5841da177e4SLinus Torvalds */ 5851ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh) 5861da177e4SLinus Torvalds { 587afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5885e670d84SDavid Ahern struct neighbour *neigh; 589f2c31e32SEric Dumazet 590145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5911ba9a895SDavid Ahern neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev, 5921ba9a895SDavid Ahern &fib6_nh->fib_nh_gw6); 593145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 594145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 595554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 596afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 597398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 598a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 599afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6007e980569SJiri Benc else 6017e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 602398bcbebSYOSHIFUJI Hideaki #endif 603145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 604afc154e9SHannes Frederic Sowa } else { 605afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6067e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 607a5a81f0bSPaul Marks } 608145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 609145a3621SYOSHIFUJI Hideaki / 吉藤英明 610a5a81f0bSPaul Marks return ret; 6111da177e4SLinus Torvalds } 6121da177e4SLinus Torvalds 613702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 614702cea56SDavid Ahern int strict) 615554cfb7eSYOSHIFUJI Hideaki { 6166e1809a5SDavid Ahern int m = 0; 6174d0c5911SYOSHIFUJI Hideaki 6186e1809a5SDavid Ahern if (!oif || nh->fib_nh_dev->ifindex == oif) 6196e1809a5SDavid Ahern m = 2; 6206e1809a5SDavid Ahern 62177d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 622afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 623ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 624702cea56SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2; 625ebacaaa0SYOSHIFUJI Hideaki #endif 6261ba9a895SDavid Ahern if ((strict & RT6_LOOKUP_F_REACHABLE) && 627702cea56SDavid Ahern !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) { 6281ba9a895SDavid Ahern int n = rt6_check_neigh(nh); 629afc154e9SHannes Frederic Sowa if (n < 0) 630afc154e9SHannes Frederic Sowa return n; 631afc154e9SHannes Frederic Sowa } 632554cfb7eSYOSHIFUJI Hideaki return m; 633554cfb7eSYOSHIFUJI Hideaki } 634554cfb7eSYOSHIFUJI Hideaki 63528679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags, 63628679ed1SDavid Ahern int oif, int strict, int *mpri, bool *do_rr) 637554cfb7eSYOSHIFUJI Hideaki { 638afc154e9SHannes Frederic Sowa bool match_do_rr = false; 63928679ed1SDavid Ahern bool rc = false; 64028679ed1SDavid Ahern int m; 64135103d11SAndy Gospodarek 64228679ed1SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 6438067bb8cSIdo Schimmel goto out; 6448067bb8cSIdo Schimmel 64528679ed1SDavid Ahern if (ip6_ignore_linkdown(nh->fib_nh_dev) && 64628679ed1SDavid Ahern nh->fib_nh_flags & RTNH_F_LINKDOWN && 647d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 64835103d11SAndy Gospodarek goto out; 649554cfb7eSYOSHIFUJI Hideaki 65028679ed1SDavid Ahern m = rt6_score_route(nh, fib6_flags, oif, strict); 6517e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 652afc154e9SHannes Frederic Sowa match_do_rr = true; 653afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6547e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 655f11e6659SDavid S. Miller goto out; 6561da177e4SLinus Torvalds } 657f11e6659SDavid S. Miller 658afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 65928679ed1SDavid Ahern rt6_probe(nh); 660afc154e9SHannes Frederic Sowa 6617e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 662afc154e9SHannes Frederic Sowa if (m > *mpri) { 663afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 664afc154e9SHannes Frederic Sowa *mpri = m; 66528679ed1SDavid Ahern rc = true; 666afc154e9SHannes Frederic Sowa } 667f11e6659SDavid S. Miller out: 66828679ed1SDavid Ahern return rc; 6691da177e4SLinus Torvalds } 6701da177e4SLinus Torvalds 671*30c15f03SDavid Ahern static void __find_rr_leaf(struct fib6_info *rt_start, 672*30c15f03SDavid Ahern struct fib6_info *nomatch, u32 metric, 673*30c15f03SDavid Ahern struct fib6_info **match, struct fib6_info **cont, 674*30c15f03SDavid Ahern int oif, int strict, bool *do_rr, int *mpri) 675*30c15f03SDavid Ahern { 676*30c15f03SDavid Ahern struct fib6_info *rt; 677*30c15f03SDavid Ahern 678*30c15f03SDavid Ahern for (rt = rt_start; 679*30c15f03SDavid Ahern rt && rt != nomatch; 680*30c15f03SDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 681*30c15f03SDavid Ahern struct fib6_nh *nh; 682*30c15f03SDavid Ahern 683*30c15f03SDavid Ahern if (cont && rt->fib6_metric != metric) { 684*30c15f03SDavid Ahern *cont = rt; 685*30c15f03SDavid Ahern return; 686*30c15f03SDavid Ahern } 687*30c15f03SDavid Ahern 688*30c15f03SDavid Ahern if (fib6_check_expired(rt)) 689*30c15f03SDavid Ahern continue; 690*30c15f03SDavid Ahern 691*30c15f03SDavid Ahern nh = &rt->fib6_nh; 692*30c15f03SDavid Ahern if (find_match(nh, rt->fib6_flags, oif, strict, mpri, do_rr)) 693*30c15f03SDavid Ahern *match = rt; 694*30c15f03SDavid Ahern } 695*30c15f03SDavid Ahern } 696*30c15f03SDavid Ahern 6978d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6988d1c802bSDavid Ahern struct fib6_info *leaf, 6998d1c802bSDavid Ahern struct fib6_info *rr_head, 700afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 701afc154e9SHannes Frederic Sowa bool *do_rr) 702f11e6659SDavid S. Miller { 703*30c15f03SDavid Ahern struct fib6_info *match = NULL, *cont = NULL; 704f11e6659SDavid S. Miller int mpri = -1; 705f11e6659SDavid S. Miller 706*30c15f03SDavid Ahern __find_rr_leaf(rr_head, NULL, metric, &match, &cont, 707*30c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7089fbdcfafSSteffen Klassert 709*30c15f03SDavid Ahern __find_rr_leaf(leaf, rr_head, metric, &match, &cont, 710*30c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7119fbdcfafSSteffen Klassert 7129fbdcfafSSteffen Klassert if (match || !cont) 7139fbdcfafSSteffen Klassert return match; 7149fbdcfafSSteffen Klassert 715*30c15f03SDavid Ahern __find_rr_leaf(cont, NULL, metric, &match, NULL, 716*30c15f03SDavid Ahern oif, strict, do_rr, &mpri); 717f11e6659SDavid S. Miller 718f11e6659SDavid S. Miller return match; 719f11e6659SDavid S. Miller } 720f11e6659SDavid S. Miller 7218d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7228d1040e8SWei Wang int oif, int strict) 723f11e6659SDavid S. Miller { 7248d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7258d1c802bSDavid Ahern struct fib6_info *match, *rt0; 726afc154e9SHannes Frederic Sowa bool do_rr = false; 72717ecf590SWei Wang int key_plen; 728f11e6659SDavid S. Miller 729421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 730421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7318d1040e8SWei Wang 73266f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 733f11e6659SDavid S. Miller if (!rt0) 73466f5d6ceSWei Wang rt0 = leaf; 735f11e6659SDavid S. Miller 73617ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 73717ecf590SWei Wang * and fn->leaf does not points to its child's leaf 73817ecf590SWei Wang * (This might happen if all routes under fn are deleted from 73917ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 74017ecf590SWei Wang */ 74193c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 74217ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 74393c2fb25SDavid Ahern if (rt0->fib6_src.plen) 74493c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 74517ecf590SWei Wang #endif 74617ecf590SWei Wang if (fn->fn_bit != key_plen) 747421842edSDavid Ahern return net->ipv6.fib6_null_entry; 74817ecf590SWei Wang 74993c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 750afc154e9SHannes Frederic Sowa &do_rr); 751f11e6659SDavid S. Miller 752afc154e9SHannes Frederic Sowa if (do_rr) { 7538fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 754f11e6659SDavid S. Miller 755554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 75693c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7578d1040e8SWei Wang next = leaf; 758f11e6659SDavid S. Miller 75966f5d6ceSWei Wang if (next != rt0) { 76093c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 76166f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 76293c2fb25SDavid Ahern if (next->fib6_node) 76366f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 76493c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 76566f5d6ceSWei Wang } 766554cfb7eSYOSHIFUJI Hideaki } 767554cfb7eSYOSHIFUJI Hideaki 768421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7691da177e4SLinus Torvalds } 7701da177e4SLinus Torvalds 7718d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7728b9df265SMartin KaFai Lau { 773bdf00467SDavid Ahern return (rt->fib6_flags & RTF_NONEXTHOP) || rt->fib6_nh.fib_nh_gw_family; 7748b9df265SMartin KaFai Lau } 7758b9df265SMartin KaFai Lau 77670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 77770ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 778b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 77970ceb4f5SYOSHIFUJI Hideaki { 780c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 78170ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 78270ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 78370ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7844bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7858d1c802bSDavid Ahern struct fib6_info *rt; 78670ceb4f5SYOSHIFUJI Hideaki 78770ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 78870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 78970ceb4f5SYOSHIFUJI Hideaki } 79070ceb4f5SYOSHIFUJI Hideaki 79170ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 79270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 79370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79470ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 79570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 79770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 79870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79970ceb4f5SYOSHIFUJI Hideaki } 80070ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 80170ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 80270ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80370ceb4f5SYOSHIFUJI Hideaki } 80470ceb4f5SYOSHIFUJI Hideaki } 80570ceb4f5SYOSHIFUJI Hideaki 80670ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 80770ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8083933fc95SJens Rosenboom return -EINVAL; 80970ceb4f5SYOSHIFUJI Hideaki 8104bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 81170ceb4f5SYOSHIFUJI Hideaki 81270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 81370ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 81470ceb4f5SYOSHIFUJI Hideaki else { 81570ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 81670ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 81770ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 81870ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 81970ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 82070ceb4f5SYOSHIFUJI Hideaki } 82170ceb4f5SYOSHIFUJI Hideaki 822f104a567SDuan Jiong if (rinfo->prefix_len == 0) 823afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 824f104a567SDuan Jiong else 825f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 826830218c1SDavid Ahern gwaddr, dev); 82770ceb4f5SYOSHIFUJI Hideaki 82870ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 829afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 83070ceb4f5SYOSHIFUJI Hideaki rt = NULL; 83170ceb4f5SYOSHIFUJI Hideaki } 83270ceb4f5SYOSHIFUJI Hideaki 83370ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 834830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 835830218c1SDavid Ahern dev, pref); 83670ceb4f5SYOSHIFUJI Hideaki else if (rt) 83793c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 83893c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 83970ceb4f5SYOSHIFUJI Hideaki 84070ceb4f5SYOSHIFUJI Hideaki if (rt) { 8411716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 84214895687SDavid Ahern fib6_clean_expires(rt); 8431716a961SGao feng else 84414895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8451716a961SGao feng 84693531c67SDavid Ahern fib6_info_release(rt); 84770ceb4f5SYOSHIFUJI Hideaki } 84870ceb4f5SYOSHIFUJI Hideaki return 0; 84970ceb4f5SYOSHIFUJI Hideaki } 85070ceb4f5SYOSHIFUJI Hideaki #endif 85170ceb4f5SYOSHIFUJI Hideaki 852ae90d867SDavid Ahern /* 853ae90d867SDavid Ahern * Misc support functions 854ae90d867SDavid Ahern */ 855ae90d867SDavid Ahern 856ae90d867SDavid Ahern /* called with rcu_lock held */ 8578d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 858ae90d867SDavid Ahern { 859ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 860ae90d867SDavid Ahern 86193c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 862ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 863ae90d867SDavid Ahern * device if it is a master device, the master device if 864ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 865ae90d867SDavid Ahern */ 866ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 86793c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 868ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 869ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 870ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 871ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 872ae90d867SDavid Ahern * case we want dev returned to be dev 873ae90d867SDavid Ahern */ 874ae90d867SDavid Ahern } 875ae90d867SDavid Ahern 876ae90d867SDavid Ahern return dev; 877ae90d867SDavid Ahern } 878ae90d867SDavid Ahern 8796edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8806edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8816edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8826edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8836edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8846edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8856edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8866edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8876edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 8886edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 8896edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 8906edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 8916edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 8926edb3c96SDavid Ahern }; 8936edb3c96SDavid Ahern 8946edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 8956edb3c96SDavid Ahern { 8966edb3c96SDavid Ahern return fib6_prop[fib6_type]; 8976edb3c96SDavid Ahern } 8986edb3c96SDavid Ahern 8998d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9003b6761d1SDavid Ahern { 9013b6761d1SDavid Ahern unsigned short flags = 0; 9023b6761d1SDavid Ahern 9033b6761d1SDavid Ahern if (rt->dst_nocount) 9043b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9053b6761d1SDavid Ahern if (rt->dst_nopolicy) 9063b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9073b6761d1SDavid Ahern if (rt->dst_host) 9083b6761d1SDavid Ahern flags |= DST_HOST; 9093b6761d1SDavid Ahern 9103b6761d1SDavid Ahern return flags; 9113b6761d1SDavid Ahern } 9123b6761d1SDavid Ahern 9138d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9146edb3c96SDavid Ahern { 9156edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9166edb3c96SDavid Ahern 9176edb3c96SDavid Ahern switch (ort->fib6_type) { 9186edb3c96SDavid Ahern case RTN_BLACKHOLE: 9196edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9206edb3c96SDavid Ahern rt->dst.input = dst_discard; 9216edb3c96SDavid Ahern break; 9226edb3c96SDavid Ahern case RTN_PROHIBIT: 9236edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9246edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9256edb3c96SDavid Ahern break; 9266edb3c96SDavid Ahern case RTN_THROW: 9276edb3c96SDavid Ahern case RTN_UNREACHABLE: 9286edb3c96SDavid Ahern default: 9296edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9306edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9316edb3c96SDavid Ahern break; 9326edb3c96SDavid Ahern } 9336edb3c96SDavid Ahern } 9346edb3c96SDavid Ahern 9358d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9366edb3c96SDavid Ahern { 93793c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9386edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9396edb3c96SDavid Ahern return; 9406edb3c96SDavid Ahern } 9416edb3c96SDavid Ahern 9426edb3c96SDavid Ahern rt->dst.error = 0; 9436edb3c96SDavid Ahern rt->dst.output = ip6_output; 9446edb3c96SDavid Ahern 945d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9466edb3c96SDavid Ahern rt->dst.input = ip6_input; 94793c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9486edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9496edb3c96SDavid Ahern } else { 9506edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9516edb3c96SDavid Ahern } 9526edb3c96SDavid Ahern 953ad1601aeSDavid Ahern if (ort->fib6_nh.fib_nh_lws) { 954ad1601aeSDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.fib_nh_lws); 9556edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9566edb3c96SDavid Ahern } 9576edb3c96SDavid Ahern 9586edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9596edb3c96SDavid Ahern } 9606edb3c96SDavid Ahern 961e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9628d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 963ae90d867SDavid Ahern { 964ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 965a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 966e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 967ae90d867SDavid Ahern } 968ae90d867SDavid Ahern 969e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9708d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 971ae90d867SDavid Ahern { 972dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 973dcd1f572SDavid Ahern 9746edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9756edb3c96SDavid Ahern 97693c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 977dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 97893c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 979bdf00467SDavid Ahern if (ort->fib6_nh.fib_nh_gw_family) { 980ad1601aeSDavid Ahern rt->rt6i_gateway = ort->fib6_nh.fib_nh_gw6; 9812b2450caSDavid Ahern rt->rt6i_flags |= RTF_GATEWAY; 9822b2450caSDavid Ahern } 983ae90d867SDavid Ahern rt6_set_from(rt, ort); 984ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 98593c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 986ae90d867SDavid Ahern #endif 987ae90d867SDavid Ahern } 988ae90d867SDavid Ahern 989a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 990a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 991a3c00e46SMartin KaFai Lau { 99266f5d6ceSWei Wang struct fib6_node *pn, *sn; 993a3c00e46SMartin KaFai Lau while (1) { 994a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 995a3c00e46SMartin KaFai Lau return NULL; 99666f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 99766f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 99866f5d6ceSWei Wang if (sn && sn != fn) 9996454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1000a3c00e46SMartin KaFai Lau else 1001a3c00e46SMartin KaFai Lau fn = pn; 1002a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1003a3c00e46SMartin KaFai Lau return fn; 1004a3c00e46SMartin KaFai Lau } 1005a3c00e46SMartin KaFai Lau } 1006c71099acSThomas Graf 100710585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt) 1008d3843fe5SWei Wang { 1009d3843fe5SWei Wang struct rt6_info *rt = *prt; 1010d3843fe5SWei Wang 1011d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1012d3843fe5SWei Wang return true; 101310585b43SDavid Ahern if (net) { 1014d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1015d3843fe5SWei Wang dst_hold(&rt->dst); 1016d3843fe5SWei Wang } else { 1017d3843fe5SWei Wang rt = NULL; 1018d3843fe5SWei Wang } 1019d3843fe5SWei Wang *prt = rt; 1020d3843fe5SWei Wang return false; 1021d3843fe5SWei Wang } 1022d3843fe5SWei Wang 1023dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10248d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1025dec9b0e2SDavid Ahern { 10263b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1027ad1601aeSDavid Ahern struct net_device *dev = rt->fib6_nh.fib_nh_dev; 1028dec9b0e2SDavid Ahern struct rt6_info *nrt; 1029dec9b0e2SDavid Ahern 1030e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 10311c87e79aSXin Long goto fallback; 1032e873e4b9SWei Wang 103393531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 10341c87e79aSXin Long if (!nrt) { 1035e873e4b9SWei Wang fib6_info_release(rt); 10361c87e79aSXin Long goto fallback; 10371c87e79aSXin Long } 1038dec9b0e2SDavid Ahern 10391c87e79aSXin Long ip6_rt_copy_init(nrt, rt); 10401c87e79aSXin Long return nrt; 10411c87e79aSXin Long 10421c87e79aSXin Long fallback: 10431c87e79aSXin Long nrt = dev_net(dev)->ipv6.ip6_null_entry; 10441c87e79aSXin Long dst_hold(&nrt->dst); 1045dec9b0e2SDavid Ahern return nrt; 1046dec9b0e2SDavid Ahern } 1047dec9b0e2SDavid Ahern 10488ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10498ed67789SDaniel Lezcano struct fib6_table *table, 1050b75cc8f9SDavid Ahern struct flowi6 *fl6, 1051b75cc8f9SDavid Ahern const struct sk_buff *skb, 1052b75cc8f9SDavid Ahern int flags) 10531da177e4SLinus Torvalds { 10548d1c802bSDavid Ahern struct fib6_info *f6i; 10551da177e4SLinus Torvalds struct fib6_node *fn; 105623fb93a4SDavid Ahern struct rt6_info *rt; 10571da177e4SLinus Torvalds 1058b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1059b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1060b6cdbc85SDavid Ahern 106166f5d6ceSWei Wang rcu_read_lock(); 10626454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1063c71099acSThomas Graf restart: 106423fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 106523fb93a4SDavid Ahern if (!f6i) { 106623fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 106766f5d6ceSWei Wang } else { 106823fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 106966f5d6ceSWei Wang fl6->flowi6_oif, flags); 107093c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10713b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10723b290a31SDavid Ahern fl6->flowi6_oif, skb, 10733b290a31SDavid Ahern flags); 107466f5d6ceSWei Wang } 107523fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1076a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1077a3c00e46SMartin KaFai Lau if (fn) 1078a3c00e46SMartin KaFai Lau goto restart; 1079a3c00e46SMartin KaFai Lau } 10802b760fcfSWei Wang 1081d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1082d4bea421SDavid Ahern 10834c9483b2SDavid S. Miller /* Search through exception table */ 108423fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 108523fb93a4SDavid Ahern if (rt) { 108610585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 1087d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 108823fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1089dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1090dec9b0e2SDavid Ahern dst_hold(&rt->dst); 109123fb93a4SDavid Ahern } else { 109223fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 1093dec9b0e2SDavid Ahern } 1094d3843fe5SWei Wang 109566f5d6ceSWei Wang rcu_read_unlock(); 1096b811580dSDavid Ahern 10971da177e4SLinus Torvalds return rt; 1098c71099acSThomas Graf } 1099c71099acSThomas Graf 1100ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1101b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1102ea6e574eSFlorian Westphal { 1103b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1104ea6e574eSFlorian Westphal } 1105ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1106ea6e574eSFlorian Westphal 11079acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1108b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1109b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1110c71099acSThomas Graf { 11114c9483b2SDavid S. Miller struct flowi6 fl6 = { 11124c9483b2SDavid S. Miller .flowi6_oif = oif, 11134c9483b2SDavid S. Miller .daddr = *daddr, 1114c71099acSThomas Graf }; 1115c71099acSThomas Graf struct dst_entry *dst; 111677d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1117c71099acSThomas Graf 1118adaa70bbSThomas Graf if (saddr) { 11194c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1120adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1121adaa70bbSThomas Graf } 1122adaa70bbSThomas Graf 1123b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1124c71099acSThomas Graf if (dst->error == 0) 1125c71099acSThomas Graf return (struct rt6_info *) dst; 1126c71099acSThomas Graf 1127c71099acSThomas Graf dst_release(dst); 1128c71099acSThomas Graf 11291da177e4SLinus Torvalds return NULL; 11301da177e4SLinus Torvalds } 11317159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11327159039aSYOSHIFUJI Hideaki 1133c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11341cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11351cfb71eeSWei Wang * route is released. 11361cfb71eeSWei Wang * Caller must hold dst before calling it. 11371da177e4SLinus Torvalds */ 11381da177e4SLinus Torvalds 11398d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1140333c4301SDavid Ahern struct netlink_ext_ack *extack) 11411da177e4SLinus Torvalds { 11421da177e4SLinus Torvalds int err; 1143c71099acSThomas Graf struct fib6_table *table; 11441da177e4SLinus Torvalds 114593c2fb25SDavid Ahern table = rt->fib6_table; 114666f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1147d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 114866f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11491da177e4SLinus Torvalds 11501da177e4SLinus Torvalds return err; 11511da177e4SLinus Torvalds } 11521da177e4SLinus Torvalds 11538d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 115440e22e8fSThomas Graf { 1155afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1156e715b6d3SFlorian Westphal 1157d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 115840e22e8fSThomas Graf } 115940e22e8fSThomas Graf 11608d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 116121efcfa0SEric Dumazet const struct in6_addr *daddr, 1162b71d1d42SEric Dumazet const struct in6_addr *saddr) 11631da177e4SLinus Torvalds { 11644832c30dSDavid Ahern struct net_device *dev; 11651da177e4SLinus Torvalds struct rt6_info *rt; 11661da177e4SLinus Torvalds 11671da177e4SLinus Torvalds /* 11681da177e4SLinus Torvalds * Clone the route. 11691da177e4SLinus Torvalds */ 11701da177e4SLinus Torvalds 1171e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1172e873e4b9SWei Wang return NULL; 1173e873e4b9SWei Wang 11744832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 117593531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1176e873e4b9SWei Wang if (!rt) { 1177e873e4b9SWei Wang fib6_info_release(ort); 117883a09abdSMartin KaFai Lau return NULL; 1179e873e4b9SWei Wang } 118083a09abdSMartin KaFai Lau 118183a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11828b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 118383a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 118483a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 118583a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11868b9df265SMartin KaFai Lau 11878b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 118893c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 118993c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 119058c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 11911da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 11921da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 11934e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 11941da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 11951da177e4SLinus Torvalds } 11961da177e4SLinus Torvalds #endif 119795a9a5baSYOSHIFUJI Hideaki } 119895a9a5baSYOSHIFUJI Hideaki 1199299d9939SYOSHIFUJI Hideaki return rt; 1200299d9939SYOSHIFUJI Hideaki } 1201299d9939SYOSHIFUJI Hideaki 12028d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1203d52d3997SMartin KaFai Lau { 12043b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12054832c30dSDavid Ahern struct net_device *dev; 1206d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1207d52d3997SMartin KaFai Lau 1208e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1209e873e4b9SWei Wang return NULL; 1210e873e4b9SWei Wang 12114832c30dSDavid Ahern rcu_read_lock(); 12124832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 121393531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12144832c30dSDavid Ahern rcu_read_unlock(); 1215e873e4b9SWei Wang if (!pcpu_rt) { 1216e873e4b9SWei Wang fib6_info_release(rt); 1217d52d3997SMartin KaFai Lau return NULL; 1218e873e4b9SWei Wang } 1219d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1220d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1221d52d3997SMartin KaFai Lau return pcpu_rt; 1222d52d3997SMartin KaFai Lau } 1223d52d3997SMartin KaFai Lau 122466f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12258d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1226d52d3997SMartin KaFai Lau { 1227a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1228d52d3997SMartin KaFai Lau 1229d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1230d52d3997SMartin KaFai Lau pcpu_rt = *p; 1231d52d3997SMartin KaFai Lau 1232d4ead6b3SDavid Ahern if (pcpu_rt) 123310585b43SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt); 1234d3843fe5SWei Wang 1235a73e4195SMartin KaFai Lau return pcpu_rt; 1236a73e4195SMartin KaFai Lau } 1237a73e4195SMartin KaFai Lau 1238afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12398d1c802bSDavid Ahern struct fib6_info *rt) 1240a73e4195SMartin KaFai Lau { 1241a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1242d52d3997SMartin KaFai Lau 1243d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1244d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12459c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12469c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1247d52d3997SMartin KaFai Lau } 1248d52d3997SMartin KaFai Lau 1249a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1250a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1251d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1252951f788aSEric Dumazet BUG_ON(prev); 1253a94b9367SWei Wang 1254d52d3997SMartin KaFai Lau return pcpu_rt; 1255d52d3997SMartin KaFai Lau } 1256d52d3997SMartin KaFai Lau 125735732d01SWei Wang /* exception hash table implementation 125835732d01SWei Wang */ 125935732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 126035732d01SWei Wang 126135732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 126235732d01SWei Wang * Caller must hold rt6_exception_lock 126335732d01SWei Wang */ 126435732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 126535732d01SWei Wang struct rt6_exception *rt6_ex) 126635732d01SWei Wang { 1267f5b51fe8SPaolo Abeni struct fib6_info *from; 1268b2427e67SColin Ian King struct net *net; 126981eb8447SWei Wang 127035732d01SWei Wang if (!bucket || !rt6_ex) 127135732d01SWei Wang return; 1272b2427e67SColin Ian King 1273b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 1274f5b51fe8SPaolo Abeni net->ipv6.rt6_stats->fib_rt_cache--; 1275f5b51fe8SPaolo Abeni 1276f5b51fe8SPaolo Abeni /* purge completely the exception to allow releasing the held resources: 1277f5b51fe8SPaolo Abeni * some [sk] cache may keep the dst around for unlimited time 1278f5b51fe8SPaolo Abeni */ 1279f5b51fe8SPaolo Abeni from = rcu_dereference_protected(rt6_ex->rt6i->from, 1280f5b51fe8SPaolo Abeni lockdep_is_held(&rt6_exception_lock)); 1281f5b51fe8SPaolo Abeni rcu_assign_pointer(rt6_ex->rt6i->from, NULL); 1282f5b51fe8SPaolo Abeni fib6_info_release(from); 1283f5b51fe8SPaolo Abeni dst_dev_put(&rt6_ex->rt6i->dst); 1284f5b51fe8SPaolo Abeni 128535732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128677634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 128735732d01SWei Wang kfree_rcu(rt6_ex, rcu); 128835732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 128935732d01SWei Wang bucket->depth--; 129035732d01SWei Wang } 129135732d01SWei Wang 129235732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129335732d01SWei Wang * Caller must hold rt6_exception_lock 129435732d01SWei Wang */ 129535732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 129635732d01SWei Wang { 129735732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 129835732d01SWei Wang 129935732d01SWei Wang if (!bucket) 130035732d01SWei Wang return; 130135732d01SWei Wang 130235732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130335732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130435732d01SWei Wang oldest = rt6_ex; 130535732d01SWei Wang } 130635732d01SWei Wang rt6_remove_exception(bucket, oldest); 130735732d01SWei Wang } 130835732d01SWei Wang 130935732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 131035732d01SWei Wang const struct in6_addr *src) 131135732d01SWei Wang { 131235732d01SWei Wang static u32 seed __read_mostly; 131335732d01SWei Wang u32 val; 131435732d01SWei Wang 131535732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 131635732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 131735732d01SWei Wang 131835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 131935732d01SWei Wang if (src) 132035732d01SWei Wang val = jhash(src, sizeof(*src), val); 132135732d01SWei Wang #endif 132235732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132335732d01SWei Wang } 132435732d01SWei Wang 132535732d01SWei Wang /* Helper function to find the cached rt in the hash table 132635732d01SWei Wang * and update bucket pointer to point to the bucket for this 132735732d01SWei Wang * (daddr, saddr) pair 132835732d01SWei Wang * Caller must hold rt6_exception_lock 132935732d01SWei Wang */ 133035732d01SWei Wang static struct rt6_exception * 133135732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 133235732d01SWei Wang const struct in6_addr *daddr, 133335732d01SWei Wang const struct in6_addr *saddr) 133435732d01SWei Wang { 133535732d01SWei Wang struct rt6_exception *rt6_ex; 133635732d01SWei Wang u32 hval; 133735732d01SWei Wang 133835732d01SWei Wang if (!(*bucket) || !daddr) 133935732d01SWei Wang return NULL; 134035732d01SWei Wang 134135732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 134235732d01SWei Wang *bucket += hval; 134335732d01SWei Wang 134435732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134535732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 134635732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 134735732d01SWei Wang 134835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 134935732d01SWei Wang if (matched && saddr) 135035732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 135135732d01SWei Wang #endif 135235732d01SWei Wang if (matched) 135335732d01SWei Wang return rt6_ex; 135435732d01SWei Wang } 135535732d01SWei Wang return NULL; 135635732d01SWei Wang } 135735732d01SWei Wang 135835732d01SWei Wang /* Helper function to find the cached rt in the hash table 135935732d01SWei Wang * and update bucket pointer to point to the bucket for this 136035732d01SWei Wang * (daddr, saddr) pair 136135732d01SWei Wang * Caller must hold rcu_read_lock() 136235732d01SWei Wang */ 136335732d01SWei Wang static struct rt6_exception * 136435732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136535732d01SWei Wang const struct in6_addr *daddr, 136635732d01SWei Wang const struct in6_addr *saddr) 136735732d01SWei Wang { 136835732d01SWei Wang struct rt6_exception *rt6_ex; 136935732d01SWei Wang u32 hval; 137035732d01SWei Wang 137135732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 137235732d01SWei Wang 137335732d01SWei Wang if (!(*bucket) || !daddr) 137435732d01SWei Wang return NULL; 137535732d01SWei Wang 137635732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 137735732d01SWei Wang *bucket += hval; 137835732d01SWei Wang 137935732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 138035732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138135732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138235732d01SWei Wang 138335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138435732d01SWei Wang if (matched && saddr) 138535732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 138635732d01SWei Wang #endif 138735732d01SWei Wang if (matched) 138835732d01SWei Wang return rt6_ex; 138935732d01SWei Wang } 139035732d01SWei Wang return NULL; 139135732d01SWei Wang } 139235732d01SWei Wang 13938d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139435732d01SWei Wang { 1395d4ead6b3SDavid Ahern unsigned int mtu; 1396d4ead6b3SDavid Ahern 1397dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1398dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1399dcd1f572SDavid Ahern } else { 1400dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1401dcd1f572SDavid Ahern struct inet6_dev *idev; 1402dcd1f572SDavid Ahern 1403dcd1f572SDavid Ahern rcu_read_lock(); 1404dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1405dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1406dcd1f572SDavid Ahern rcu_read_unlock(); 1407dcd1f572SDavid Ahern } 1408dcd1f572SDavid Ahern 1409d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1410d4ead6b3SDavid Ahern 1411ad1601aeSDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.fib_nh_lws, mtu); 1412d4ead6b3SDavid Ahern } 1413d4ead6b3SDavid Ahern 141435732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14158d1c802bSDavid Ahern struct fib6_info *ort) 141635732d01SWei Wang { 14175e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 141835732d01SWei Wang struct rt6_exception_bucket *bucket; 141935732d01SWei Wang struct in6_addr *src_key = NULL; 142035732d01SWei Wang struct rt6_exception *rt6_ex; 142135732d01SWei Wang int err = 0; 142235732d01SWei Wang 142335732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142435732d01SWei Wang 142535732d01SWei Wang if (ort->exception_bucket_flushed) { 142635732d01SWei Wang err = -EINVAL; 142735732d01SWei Wang goto out; 142835732d01SWei Wang } 142935732d01SWei Wang 143035732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 143135732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143235732d01SWei Wang if (!bucket) { 143335732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143435732d01SWei Wang GFP_ATOMIC); 143535732d01SWei Wang if (!bucket) { 143635732d01SWei Wang err = -ENOMEM; 143735732d01SWei Wang goto out; 143835732d01SWei Wang } 143935732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 144035732d01SWei Wang } 144135732d01SWei Wang 144235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144335732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144435732d01SWei Wang * and exception table is indexed by a hash of 144535732d01SWei Wang * both rt6i_dst and rt6i_src. 144635732d01SWei Wang * Otherwise, the exception table is indexed by 144735732d01SWei Wang * a hash of only rt6i_dst. 144835732d01SWei Wang */ 144993c2fb25SDavid Ahern if (ort->fib6_src.plen) 145035732d01SWei Wang src_key = &nrt->rt6i_src.addr; 145135732d01SWei Wang #endif 1452f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1453f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1454f5bbe7eeSWei Wang * is less than ort's mtu value. 1455f5bbe7eeSWei Wang */ 1456d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1457f5bbe7eeSWei Wang err = -EINVAL; 1458f5bbe7eeSWei Wang goto out; 1459f5bbe7eeSWei Wang } 146060006a48SWei Wang 146135732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 146235732d01SWei Wang src_key); 146335732d01SWei Wang if (rt6_ex) 146435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 146535732d01SWei Wang 146635732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 146735732d01SWei Wang if (!rt6_ex) { 146835732d01SWei Wang err = -ENOMEM; 146935732d01SWei Wang goto out; 147035732d01SWei Wang } 147135732d01SWei Wang rt6_ex->rt6i = nrt; 147235732d01SWei Wang rt6_ex->stamp = jiffies; 147335732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 147435732d01SWei Wang bucket->depth++; 147581eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 147635732d01SWei Wang 147735732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 147835732d01SWei Wang rt6_exception_remove_oldest(bucket); 147935732d01SWei Wang 148035732d01SWei Wang out: 148135732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 148235732d01SWei Wang 148335732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1484b886d5f2SPaolo Abeni if (!err) { 148593c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14867aef6859SDavid Ahern fib6_update_sernum(net, ort); 148793c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1488b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1489b886d5f2SPaolo Abeni } 149035732d01SWei Wang 149135732d01SWei Wang return err; 149235732d01SWei Wang } 149335732d01SWei Wang 14948d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 149535732d01SWei Wang { 149635732d01SWei Wang struct rt6_exception_bucket *bucket; 149735732d01SWei Wang struct rt6_exception *rt6_ex; 149835732d01SWei Wang struct hlist_node *tmp; 149935732d01SWei Wang int i; 150035732d01SWei Wang 150135732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 150235732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150335732d01SWei Wang rt->exception_bucket_flushed = 1; 150435732d01SWei Wang 150535732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 150635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 150735732d01SWei Wang if (!bucket) 150835732d01SWei Wang goto out; 150935732d01SWei Wang 151035732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 151135732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 151235732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151335732d01SWei Wang WARN_ON_ONCE(bucket->depth); 151435732d01SWei Wang bucket++; 151535732d01SWei Wang } 151635732d01SWei Wang 151735732d01SWei Wang out: 151835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 151935732d01SWei Wang } 152035732d01SWei Wang 152135732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 152235732d01SWei Wang * Caller has to hold rcu_read_lock() 152335732d01SWei Wang */ 15248d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 152535732d01SWei Wang struct in6_addr *daddr, 152635732d01SWei Wang struct in6_addr *saddr) 152735732d01SWei Wang { 152835732d01SWei Wang struct rt6_exception_bucket *bucket; 152935732d01SWei Wang struct in6_addr *src_key = NULL; 153035732d01SWei Wang struct rt6_exception *rt6_ex; 153135732d01SWei Wang struct rt6_info *res = NULL; 153235732d01SWei Wang 153335732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 153435732d01SWei Wang 153535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 153635732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 153735732d01SWei Wang * and exception table is indexed by a hash of 153835732d01SWei Wang * both rt6i_dst and rt6i_src. 153935732d01SWei Wang * Otherwise, the exception table is indexed by 154035732d01SWei Wang * a hash of only rt6i_dst. 154135732d01SWei Wang */ 154293c2fb25SDavid Ahern if (rt->fib6_src.plen) 154335732d01SWei Wang src_key = saddr; 154435732d01SWei Wang #endif 154535732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 154635732d01SWei Wang 154735732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 154835732d01SWei Wang res = rt6_ex->rt6i; 154935732d01SWei Wang 155035732d01SWei Wang return res; 155135732d01SWei Wang } 155235732d01SWei Wang 155335732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 155423fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 155535732d01SWei Wang { 155635732d01SWei Wang struct rt6_exception_bucket *bucket; 155735732d01SWei Wang struct in6_addr *src_key = NULL; 155835732d01SWei Wang struct rt6_exception *rt6_ex; 15598a14e46fSDavid Ahern struct fib6_info *from; 156035732d01SWei Wang int err; 156135732d01SWei Wang 1562091311deSEric Dumazet from = rcu_dereference(rt->from); 156335732d01SWei Wang if (!from || 1564442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 156535732d01SWei Wang return -EINVAL; 156635732d01SWei Wang 156735732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 156835732d01SWei Wang return -ENOENT; 156935732d01SWei Wang 157035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 157135732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 157235732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 157435732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 157535732d01SWei Wang * and exception table is indexed by a hash of 157635732d01SWei Wang * both rt6i_dst and rt6i_src. 157735732d01SWei Wang * Otherwise, the exception table is indexed by 157835732d01SWei Wang * a hash of only rt6i_dst. 157935732d01SWei Wang */ 158093c2fb25SDavid Ahern if (from->fib6_src.plen) 158135732d01SWei Wang src_key = &rt->rt6i_src.addr; 158235732d01SWei Wang #endif 158335732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 158435732d01SWei Wang &rt->rt6i_dst.addr, 158535732d01SWei Wang src_key); 158635732d01SWei Wang if (rt6_ex) { 158735732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 158835732d01SWei Wang err = 0; 158935732d01SWei Wang } else { 159035732d01SWei Wang err = -ENOENT; 159135732d01SWei Wang } 159235732d01SWei Wang 159335732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 159435732d01SWei Wang return err; 159535732d01SWei Wang } 159635732d01SWei Wang 159735732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 159835732d01SWei Wang * refresh its stamp 159935732d01SWei Wang */ 160035732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 160135732d01SWei Wang { 160235732d01SWei Wang struct rt6_exception_bucket *bucket; 160335732d01SWei Wang struct in6_addr *src_key = NULL; 160435732d01SWei Wang struct rt6_exception *rt6_ex; 1605193f3685SPaolo Abeni struct fib6_info *from; 160635732d01SWei Wang 160735732d01SWei Wang rcu_read_lock(); 1608193f3685SPaolo Abeni from = rcu_dereference(rt->from); 1609193f3685SPaolo Abeni if (!from || !(rt->rt6i_flags & RTF_CACHE)) 1610193f3685SPaolo Abeni goto unlock; 1611193f3685SPaolo Abeni 161235732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161335732d01SWei Wang 161435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161535732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 161635732d01SWei Wang * and exception table is indexed by a hash of 161735732d01SWei Wang * both rt6i_dst and rt6i_src. 161835732d01SWei Wang * Otherwise, the exception table is indexed by 161935732d01SWei Wang * a hash of only rt6i_dst. 162035732d01SWei Wang */ 162193c2fb25SDavid Ahern if (from->fib6_src.plen) 162235732d01SWei Wang src_key = &rt->rt6i_src.addr; 162335732d01SWei Wang #endif 162435732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 162535732d01SWei Wang &rt->rt6i_dst.addr, 162635732d01SWei Wang src_key); 162735732d01SWei Wang if (rt6_ex) 162835732d01SWei Wang rt6_ex->stamp = jiffies; 162935732d01SWei Wang 1630193f3685SPaolo Abeni unlock: 163135732d01SWei Wang rcu_read_unlock(); 163235732d01SWei Wang } 163335732d01SWei Wang 1634e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1635e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1636e9fa1495SStefano Brivio { 1637e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1638e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1639e9fa1495SStefano Brivio * reflect PMTU decreases. 1640e9fa1495SStefano Brivio * 1641e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1642e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1643e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1644e9fa1495SStefano Brivio * handle this. 1645e9fa1495SStefano Brivio */ 1646e9fa1495SStefano Brivio 1647e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1648e9fa1495SStefano Brivio return true; 1649e9fa1495SStefano Brivio 1650e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1651e9fa1495SStefano Brivio return true; 1652e9fa1495SStefano Brivio 1653e9fa1495SStefano Brivio return false; 1654e9fa1495SStefano Brivio } 1655e9fa1495SStefano Brivio 1656e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16578d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1658f5bbe7eeSWei Wang { 1659f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1660f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1661f5bbe7eeSWei Wang int i; 1662f5bbe7eeSWei Wang 1663f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1664f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1665f5bbe7eeSWei Wang 1666e9fa1495SStefano Brivio if (!bucket) 1667e9fa1495SStefano Brivio return; 1668e9fa1495SStefano Brivio 1669f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1670f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1671f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1672e9fa1495SStefano Brivio 1673e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1674d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1675f5bbe7eeSWei Wang * been updated. 1676f5bbe7eeSWei Wang */ 1677d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1678e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1679d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1680f5bbe7eeSWei Wang } 1681f5bbe7eeSWei Wang bucket++; 1682f5bbe7eeSWei Wang } 1683f5bbe7eeSWei Wang } 1684f5bbe7eeSWei Wang 1685b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1686b16cb459SWei Wang 16878d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1688b16cb459SWei Wang struct in6_addr *gateway) 1689b16cb459SWei Wang { 1690b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1691b16cb459SWei Wang struct rt6_exception *rt6_ex; 1692b16cb459SWei Wang struct hlist_node *tmp; 1693b16cb459SWei Wang int i; 1694b16cb459SWei Wang 1695b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1696b16cb459SWei Wang return; 1697b16cb459SWei Wang 1698b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1699b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1700b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1701b16cb459SWei Wang 1702b16cb459SWei Wang if (bucket) { 1703b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1704b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1705b16cb459SWei Wang &bucket->chain, hlist) { 1706b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1707b16cb459SWei Wang 1708b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1709b16cb459SWei Wang RTF_CACHE_GATEWAY && 1710b16cb459SWei Wang ipv6_addr_equal(gateway, 1711b16cb459SWei Wang &entry->rt6i_gateway)) { 1712b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1713b16cb459SWei Wang } 1714b16cb459SWei Wang } 1715b16cb459SWei Wang bucket++; 1716b16cb459SWei Wang } 1717b16cb459SWei Wang } 1718b16cb459SWei Wang 1719b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1720b16cb459SWei Wang } 1721b16cb459SWei Wang 1722c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1723c757faa8SWei Wang struct rt6_exception *rt6_ex, 1724c757faa8SWei Wang struct fib6_gc_args *gc_args, 1725c757faa8SWei Wang unsigned long now) 1726c757faa8SWei Wang { 1727c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1728c757faa8SWei Wang 17291859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17301859bac0SPaolo Abeni * even if others have still references to them, so that on next 17311859bac0SPaolo Abeni * dst_check() such references can be dropped. 17321859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17331859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17341859bac0SPaolo Abeni */ 173531afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173631afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1737c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1738c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1739c757faa8SWei Wang return; 174031afeb42SWei Wang } 174131afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 174231afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 174331afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174431afeb42SWei Wang return; 174531afeb42SWei Wang } 174631afeb42SWei Wang 174731afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1748c757faa8SWei Wang struct neighbour *neigh; 1749c757faa8SWei Wang __u8 neigh_flags = 0; 1750c757faa8SWei Wang 17511bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17521bfa26ffSEric Dumazet if (neigh) 1753c757faa8SWei Wang neigh_flags = neigh->flags; 17541bfa26ffSEric Dumazet 1755c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1756c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1757c757faa8SWei Wang rt); 1758c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1759c757faa8SWei Wang return; 1760c757faa8SWei Wang } 1761c757faa8SWei Wang } 176231afeb42SWei Wang 1763c757faa8SWei Wang gc_args->more++; 1764c757faa8SWei Wang } 1765c757faa8SWei Wang 17668d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1767c757faa8SWei Wang struct fib6_gc_args *gc_args, 1768c757faa8SWei Wang unsigned long now) 1769c757faa8SWei Wang { 1770c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1771c757faa8SWei Wang struct rt6_exception *rt6_ex; 1772c757faa8SWei Wang struct hlist_node *tmp; 1773c757faa8SWei Wang int i; 1774c757faa8SWei Wang 1775c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1776c757faa8SWei Wang return; 1777c757faa8SWei Wang 17781bfa26ffSEric Dumazet rcu_read_lock_bh(); 17791bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1780c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1781c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1782c757faa8SWei Wang 1783c757faa8SWei Wang if (bucket) { 1784c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1785c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1786c757faa8SWei Wang &bucket->chain, hlist) { 1787c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1788c757faa8SWei Wang gc_args, now); 1789c757faa8SWei Wang } 1790c757faa8SWei Wang bucket++; 1791c757faa8SWei Wang } 1792c757faa8SWei Wang } 17931bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17941bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1795c757faa8SWei Wang } 1796c757faa8SWei Wang 17971d053da9SDavid Ahern /* must be called with rcu lock held */ 17981d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 17991d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18001da177e4SLinus Torvalds { 1801367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18028d1c802bSDavid Ahern struct fib6_info *f6i; 18031da177e4SLinus Torvalds 18046454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1805367efcb9SMartin KaFai Lau saved_fn = fn; 18061da177e4SLinus Torvalds 1807ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1808ca254490SDavid Ahern oif = 0; 1809ca254490SDavid Ahern 1810a3c00e46SMartin KaFai Lau redo_rt6_select: 181123fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 181223fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1813a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1814a3c00e46SMartin KaFai Lau if (fn) 1815a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1816367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1817367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1818367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1819367efcb9SMartin KaFai Lau fn = saved_fn; 1820367efcb9SMartin KaFai Lau goto redo_rt6_select; 1821367efcb9SMartin KaFai Lau } 1822a3c00e46SMartin KaFai Lau } 1823a3c00e46SMartin KaFai Lau 1824d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1825d52d3997SMartin KaFai Lau 18261d053da9SDavid Ahern return f6i; 18271d053da9SDavid Ahern } 18281d053da9SDavid Ahern 18291d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18301d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18311d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18321d053da9SDavid Ahern { 18331d053da9SDavid Ahern struct fib6_info *f6i; 18341d053da9SDavid Ahern struct rt6_info *rt; 18351d053da9SDavid Ahern int strict = 0; 18361d053da9SDavid Ahern 18371d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18381d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18391d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18401d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18411d053da9SDavid Ahern 18421d053da9SDavid Ahern rcu_read_lock(); 18431d053da9SDavid Ahern 18441d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18451d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18461d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18471d053da9SDavid Ahern 184823fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1849421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 185066f5d6ceSWei Wang rcu_read_unlock(); 1851d3843fe5SWei Wang dst_hold(&rt->dst); 1852d3843fe5SWei Wang return rt; 1853d3843fe5SWei Wang } 185423fb93a4SDavid Ahern 185523fb93a4SDavid Ahern /*Search through exception table */ 185623fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 185723fb93a4SDavid Ahern if (rt) { 185810585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 18591da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1860d4ead6b3SDavid Ahern 186166f5d6ceSWei Wang rcu_read_unlock(); 1862d52d3997SMartin KaFai Lau return rt; 18633da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 1864bdf00467SDavid Ahern !f6i->fib6_nh.fib_nh_gw_family)) { 18653da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18663da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18673da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18683da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18693da59bd9SMartin KaFai Lau */ 18703da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18713da59bd9SMartin KaFai Lau 187223fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1873d52d3997SMartin KaFai Lau 18744d85cd0cSDavid Ahern rcu_read_unlock(); 18753da59bd9SMartin KaFai Lau 18761cfb71eeSWei Wang if (uncached_rt) { 18771cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18781cfb71eeSWei Wang * No need for another dst_hold() 18791cfb71eeSWei Wang */ 18808d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 188181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18821cfb71eeSWei Wang } else { 18833da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18843da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18851cfb71eeSWei Wang } 1886b811580dSDavid Ahern 18873da59bd9SMartin KaFai Lau return uncached_rt; 1888d52d3997SMartin KaFai Lau } else { 1889d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1890d52d3997SMartin KaFai Lau 1891d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1892d52d3997SMartin KaFai Lau 1893951f788aSEric Dumazet local_bh_disable(); 189423fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1895d52d3997SMartin KaFai Lau 189693531c67SDavid Ahern if (!pcpu_rt) 189723fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 189893531c67SDavid Ahern 1899951f788aSEric Dumazet local_bh_enable(); 1900951f788aSEric Dumazet rcu_read_unlock(); 1901d4bea421SDavid Ahern 1902d52d3997SMartin KaFai Lau return pcpu_rt; 1903d52d3997SMartin KaFai Lau } 1904c71099acSThomas Graf } 19059ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1906c71099acSThomas Graf 1907b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1908b75cc8f9SDavid Ahern struct fib6_table *table, 1909b75cc8f9SDavid Ahern struct flowi6 *fl6, 1910b75cc8f9SDavid Ahern const struct sk_buff *skb, 1911b75cc8f9SDavid Ahern int flags) 19124acad72dSPavel Emelyanov { 1913b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19144acad72dSPavel Emelyanov } 19154acad72dSPavel Emelyanov 1916d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 191772331bc0SShmulik Ladkani struct net_device *dev, 1918b75cc8f9SDavid Ahern struct flowi6 *fl6, 1919b75cc8f9SDavid Ahern const struct sk_buff *skb, 1920b75cc8f9SDavid Ahern int flags) 192172331bc0SShmulik Ladkani { 192272331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 192372331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 192472331bc0SShmulik Ladkani 1925b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 192672331bc0SShmulik Ladkani } 1927d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 192872331bc0SShmulik Ladkani 192923aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19305e5d6fedSRoopa Prabhu struct flow_keys *keys, 19315e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 193223aebdacSJakub Sitnicki { 193323aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 193423aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19355e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 193623aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 193723aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 193823aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1939cea67a2dSEric Dumazet struct icmp6hdr _icmph; 194023aebdacSJakub Sitnicki 194123aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 194223aebdacSJakub Sitnicki goto out; 194323aebdacSJakub Sitnicki 1944cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1945cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1946cea67a2dSEric Dumazet if (!icmph) 1947cea67a2dSEric Dumazet goto out; 1948cea67a2dSEric Dumazet 194923aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 195023aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 195123aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 195223aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 195323aebdacSJakub Sitnicki goto out; 195423aebdacSJakub Sitnicki 195523aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 195623aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 195723aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 195823aebdacSJakub Sitnicki if (!inner_iph) 195923aebdacSJakub Sitnicki goto out; 196023aebdacSJakub Sitnicki 196123aebdacSJakub Sitnicki key_iph = inner_iph; 19625e5d6fedSRoopa Prabhu _flkeys = NULL; 196323aebdacSJakub Sitnicki out: 19645e5d6fedSRoopa Prabhu if (_flkeys) { 19655e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19665e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19675e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19685e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19695e5d6fedSRoopa Prabhu } else { 197023aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 197123aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1972fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 197323aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 197423aebdacSJakub Sitnicki } 19755e5d6fedSRoopa Prabhu } 197623aebdacSJakub Sitnicki 197723aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1978b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1979b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 198023aebdacSJakub Sitnicki { 198123aebdacSJakub Sitnicki struct flow_keys hash_keys; 19829a2a537aSDavid Ahern u32 mhash; 198323aebdacSJakub Sitnicki 1984bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1985b4bac172SDavid Ahern case 0: 19866f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19876f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19889a2a537aSDavid Ahern if (skb) { 19895e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19909a2a537aSDavid Ahern } else { 19919a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19929a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 1993fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 19949a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 199523aebdacSJakub Sitnicki } 1996b4bac172SDavid Ahern break; 1997b4bac172SDavid Ahern case 1: 1998b4bac172SDavid Ahern if (skb) { 1999b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2000b4bac172SDavid Ahern struct flow_keys keys; 2001b4bac172SDavid Ahern 2002b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2003b4bac172SDavid Ahern if (skb->l4_hash) 2004b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2005b4bac172SDavid Ahern 2006b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2007b4bac172SDavid Ahern 2008b4bac172SDavid Ahern if (!flkeys) { 2009b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2010b4bac172SDavid Ahern flkeys = &keys; 2011b4bac172SDavid Ahern } 2012b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2013b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2014b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2015b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2016b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2017b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2018b4bac172SDavid Ahern } else { 2019b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2020b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2021b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2022b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2023b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2024b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2025b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2026b4bac172SDavid Ahern } 2027b4bac172SDavid Ahern break; 2028b4bac172SDavid Ahern } 20299a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 203023aebdacSJakub Sitnicki 20319a2a537aSDavid Ahern return mhash >> 1; 203223aebdacSJakub Sitnicki } 203323aebdacSJakub Sitnicki 2034c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2035c71099acSThomas Graf { 2036b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2037c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2038adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2039904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20404c9483b2SDavid S. Miller struct flowi6 fl6 = { 2041e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20424c9483b2SDavid S. Miller .daddr = iph->daddr, 20434c9483b2SDavid S. Miller .saddr = iph->saddr, 20446502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20454c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20464c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2047c71099acSThomas Graf }; 20485e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2049adaa70bbSThomas Graf 2050904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 205146fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2052904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20535e5d6fedSRoopa Prabhu 20545e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20555e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20565e5d6fedSRoopa Prabhu 205723aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2058b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 205906e9d040SJiri Benc skb_dst_drop(skb); 2060b75cc8f9SDavid Ahern skb_dst_set(skb, 2061b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2062c71099acSThomas Graf } 2063c71099acSThomas Graf 2064b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2065b75cc8f9SDavid Ahern struct fib6_table *table, 2066b75cc8f9SDavid Ahern struct flowi6 *fl6, 2067b75cc8f9SDavid Ahern const struct sk_buff *skb, 2068b75cc8f9SDavid Ahern int flags) 2069c71099acSThomas Graf { 2070b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2071c71099acSThomas Graf } 2072c71099acSThomas Graf 20736f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20746f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2075c71099acSThomas Graf { 2076d46a9d67SDavid Ahern bool any_src; 2077c71099acSThomas Graf 20783ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20793ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20804c1feac5SDavid Ahern struct dst_entry *dst; 20814c1feac5SDavid Ahern 20824c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2083ca254490SDavid Ahern if (dst) 2084ca254490SDavid Ahern return dst; 20854c1feac5SDavid Ahern } 2086ca254490SDavid Ahern 20871fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20884dc27d1cSDavid McCullough 2089d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2090741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2091d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 209277d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2093c71099acSThomas Graf 2094d46a9d67SDavid Ahern if (!any_src) 2095adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20960c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 20970c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2098adaa70bbSThomas Graf 2099b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21001da177e4SLinus Torvalds } 21016f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21021da177e4SLinus Torvalds 21032774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 210414e50e57SDavid S. Miller { 21055c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21061dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 210714e50e57SDavid S. Miller struct dst_entry *new = NULL; 210814e50e57SDavid S. Miller 21091dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 211062cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 211114e50e57SDavid S. Miller if (rt) { 21120a1f5962SMartin KaFai Lau rt6_info_init(rt); 211381eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21140a1f5962SMartin KaFai Lau 2115d8d1f30bSChangli Gao new = &rt->dst; 211614e50e57SDavid S. Miller new->__use = 1; 2117352e512cSHerbert Xu new->input = dst_discard; 2118ede2059dSEric W. Biederman new->output = dst_discard_out; 211914e50e57SDavid S. Miller 2120defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 212114e50e57SDavid S. Miller 21221dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21234e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21240a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 212514e50e57SDavid S. Miller 212614e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 212714e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 212814e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 212914e50e57SDavid S. Miller #endif 213014e50e57SDavid S. Miller } 213114e50e57SDavid S. Miller 213269ead7afSDavid S. Miller dst_release(dst_orig); 213369ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 213414e50e57SDavid S. Miller } 213514e50e57SDavid S. Miller 21361da177e4SLinus Torvalds /* 21371da177e4SLinus Torvalds * Destination cache support functions 21381da177e4SLinus Torvalds */ 21391da177e4SLinus Torvalds 21408d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21413da59bd9SMartin KaFai Lau { 214236143645SSteffen Klassert u32 rt_cookie = 0; 2143c5cff856SWei Wang 21448ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 214593531c67SDavid Ahern return false; 214693531c67SDavid Ahern 214793531c67SDavid Ahern if (fib6_check_expired(f6i)) 214893531c67SDavid Ahern return false; 214993531c67SDavid Ahern 215093531c67SDavid Ahern return true; 215193531c67SDavid Ahern } 215293531c67SDavid Ahern 2153a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2154a68886a6SDavid Ahern struct fib6_info *from, 2155a68886a6SDavid Ahern u32 cookie) 21563da59bd9SMartin KaFai Lau { 2157c5cff856SWei Wang u32 rt_cookie = 0; 2158c5cff856SWei Wang 2159a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 216093531c67SDavid Ahern rt_cookie != cookie) 21613da59bd9SMartin KaFai Lau return NULL; 21623da59bd9SMartin KaFai Lau 21633da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21643da59bd9SMartin KaFai Lau return NULL; 21653da59bd9SMartin KaFai Lau 21663da59bd9SMartin KaFai Lau return &rt->dst; 21673da59bd9SMartin KaFai Lau } 21683da59bd9SMartin KaFai Lau 2169a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2170a68886a6SDavid Ahern struct fib6_info *from, 2171a68886a6SDavid Ahern u32 cookie) 21723da59bd9SMartin KaFai Lau { 21735973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21745973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2175a68886a6SDavid Ahern fib6_check(from, cookie)) 21763da59bd9SMartin KaFai Lau return &rt->dst; 21773da59bd9SMartin KaFai Lau else 21783da59bd9SMartin KaFai Lau return NULL; 21793da59bd9SMartin KaFai Lau } 21803da59bd9SMartin KaFai Lau 21811da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21821da177e4SLinus Torvalds { 2183a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2184a68886a6SDavid Ahern struct fib6_info *from; 21851da177e4SLinus Torvalds struct rt6_info *rt; 21861da177e4SLinus Torvalds 2187a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2188a87b7dc9SDavid Ahern 2189a87b7dc9SDavid Ahern rcu_read_lock(); 21901da177e4SLinus Torvalds 21916f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21926f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21936f3118b5SNicolas Dichtel * into this function always. 21946f3118b5SNicolas Dichtel */ 2195e3bc10bdSHannes Frederic Sowa 2196a68886a6SDavid Ahern from = rcu_dereference(rt->from); 21974b32b5adSMartin KaFai Lau 2198a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2199a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2200a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22013da59bd9SMartin KaFai Lau else 2202a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2203a87b7dc9SDavid Ahern 2204a87b7dc9SDavid Ahern rcu_read_unlock(); 2205a87b7dc9SDavid Ahern 2206a87b7dc9SDavid Ahern return dst_ret; 22071da177e4SLinus Torvalds } 22081da177e4SLinus Torvalds 22091da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22101da177e4SLinus Torvalds { 22111da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22121da177e4SLinus Torvalds 22131da177e4SLinus Torvalds if (rt) { 221454c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2215c3c14da0SDavid Ahern rcu_read_lock(); 221654c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 221793531c67SDavid Ahern rt6_remove_exception_rt(rt); 221854c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22191da177e4SLinus Torvalds } 2220c3c14da0SDavid Ahern rcu_read_unlock(); 222154c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 222254c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 222354c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 222454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222554c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222654c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22271da177e4SLinus Torvalds } 22281da177e4SLinus Torvalds 22291da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22301da177e4SLinus Torvalds { 22311da177e4SLinus Torvalds struct rt6_info *rt; 22321da177e4SLinus Torvalds 22333ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22341da177e4SLinus Torvalds 2235adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22361da177e4SLinus Torvalds if (rt) { 22378a14e46fSDavid Ahern rcu_read_lock(); 22381eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 223993531c67SDavid Ahern rt6_remove_exception_rt(rt); 2240c5cff856SWei Wang } else { 2241a68886a6SDavid Ahern struct fib6_info *from; 2242c5cff856SWei Wang struct fib6_node *fn; 2243c5cff856SWei Wang 2244a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2245a68886a6SDavid Ahern if (from) { 2246a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2247c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2248c5cff856SWei Wang fn->fn_sernum = -1; 2249a68886a6SDavid Ahern } 22501da177e4SLinus Torvalds } 22511da177e4SLinus Torvalds rcu_read_unlock(); 22521da177e4SLinus Torvalds } 22531da177e4SLinus Torvalds } 22541da177e4SLinus Torvalds 22556a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22566a3e030fSDavid Ahern { 2257a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2258a68886a6SDavid Ahern struct fib6_info *from; 2259a68886a6SDavid Ahern 2260a68886a6SDavid Ahern rcu_read_lock(); 2261a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2262a68886a6SDavid Ahern if (from) 2263a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2264a68886a6SDavid Ahern rcu_read_unlock(); 2265a68886a6SDavid Ahern } 22666a3e030fSDavid Ahern 22676a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22686a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22696700c270SDavid S. Miller } 22701da177e4SLinus Torvalds 227145e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 227245e4fd26SMartin KaFai Lau { 227345e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 227445e4fd26SMartin KaFai Lau 2275d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 227645e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 227745e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 227845e4fd26SMartin KaFai Lau } 227945e4fd26SMartin KaFai Lau 22800d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22810d3f6d29SMartin KaFai Lau { 22820d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 22831490ed2aSPaolo Abeni (rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from)); 22840d3f6d29SMartin KaFai Lau } 22850d3f6d29SMartin KaFai Lau 228645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 228745e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22881da177e4SLinus Torvalds { 22890dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 22901da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 22911da177e4SLinus Torvalds 229219bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 229319bda36cSXin Long return; 229419bda36cSXin Long 229545e4fd26SMartin KaFai Lau if (iph) { 229645e4fd26SMartin KaFai Lau daddr = &iph->daddr; 229745e4fd26SMartin KaFai Lau saddr = &iph->saddr; 229845e4fd26SMartin KaFai Lau } else if (sk) { 229945e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 230045e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 230145e4fd26SMartin KaFai Lau } else { 23020dec879fSJulian Anastasov daddr = NULL; 23030dec879fSJulian Anastasov saddr = NULL; 23041da177e4SLinus Torvalds } 23050dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23060dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23070dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23080dec879fSJulian Anastasov return; 23090dec879fSJulian Anastasov 23100dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23110dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23122b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23132b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23142b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23150dec879fSJulian Anastasov } else if (daddr) { 2316a68886a6SDavid Ahern struct fib6_info *from; 23170dec879fSJulian Anastasov struct rt6_info *nrt6; 23180dec879fSJulian Anastasov 23194d85cd0cSDavid Ahern rcu_read_lock(); 2320a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2321a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 232245e4fd26SMartin KaFai Lau if (nrt6) { 232345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2324a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23252b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 232645e4fd26SMartin KaFai Lau } 2327a68886a6SDavid Ahern rcu_read_unlock(); 232845e4fd26SMartin KaFai Lau } 232945e4fd26SMartin KaFai Lau } 233045e4fd26SMartin KaFai Lau 233145e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 233245e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 233345e4fd26SMartin KaFai Lau { 233445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23351da177e4SLinus Torvalds } 23361da177e4SLinus Torvalds 233742ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2338e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 233981aded24SDavid S. Miller { 234081aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 234181aded24SDavid S. Miller struct dst_entry *dst; 2342dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2343dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2344dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2345dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2346dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2347dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2348dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2349dc92095dSMaciej Żenczykowski }; 235081aded24SDavid S. Miller 235181aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 235281aded24SDavid S. Miller if (!dst->error) 235345e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 235481aded24SDavid S. Miller dst_release(dst); 235581aded24SDavid S. Miller } 235681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 235781aded24SDavid S. Miller 235881aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 235981aded24SDavid S. Miller { 23607ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 236133c162a9SMartin KaFai Lau struct dst_entry *dst; 236233c162a9SMartin KaFai Lau 23637ddacfa5SDavid Ahern if (!oif && skb->dev) 23647ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 23657ddacfa5SDavid Ahern 23667ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 236733c162a9SMartin KaFai Lau 236833c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 236933c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 237033c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 237133c162a9SMartin KaFai Lau return; 237233c162a9SMartin KaFai Lau 237333c162a9SMartin KaFai Lau bh_lock_sock(sk); 237433c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 237533c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 237633c162a9SMartin KaFai Lau bh_unlock_sock(sk); 237781aded24SDavid S. Miller } 237881aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 237981aded24SDavid S. Miller 23807d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23817d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23827d6850f7SAlexey Kodanev { 23837d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23847d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23857d6850f7SAlexey Kodanev #endif 23867d6850f7SAlexey Kodanev 23877d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23887d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23897d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23907d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23917d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 23927d6850f7SAlexey Kodanev &np->saddr : 23937d6850f7SAlexey Kodanev #endif 23947d6850f7SAlexey Kodanev NULL); 23957d6850f7SAlexey Kodanev } 23967d6850f7SAlexey Kodanev 2397b55b76b2SDuan Jiong /* Handle redirects */ 2398b55b76b2SDuan Jiong struct ip6rd_flowi { 2399b55b76b2SDuan Jiong struct flowi6 fl6; 2400b55b76b2SDuan Jiong struct in6_addr gateway; 2401b55b76b2SDuan Jiong }; 2402b55b76b2SDuan Jiong 2403b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2404b55b76b2SDuan Jiong struct fib6_table *table, 2405b55b76b2SDuan Jiong struct flowi6 *fl6, 2406b75cc8f9SDavid Ahern const struct sk_buff *skb, 2407b55b76b2SDuan Jiong int flags) 2408b55b76b2SDuan Jiong { 2409b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 241023fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24118d1c802bSDavid Ahern struct fib6_info *rt; 2412b55b76b2SDuan Jiong struct fib6_node *fn; 2413b55b76b2SDuan Jiong 2414b55b76b2SDuan Jiong /* Get the "current" route for this destination and 241567c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2416b55b76b2SDuan Jiong * 2417b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2418b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2419b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2420b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2421b55b76b2SDuan Jiong * routes. 2422b55b76b2SDuan Jiong */ 2423b55b76b2SDuan Jiong 242466f5d6ceSWei Wang rcu_read_lock(); 24256454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2426b55b76b2SDuan Jiong restart: 242766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 2428ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 24298067bb8cSIdo Schimmel continue; 243014895687SDavid Ahern if (fib6_check_expired(rt)) 2431b55b76b2SDuan Jiong continue; 243293c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2433b55b76b2SDuan Jiong break; 2434bdf00467SDavid Ahern if (!rt->fib6_nh.fib_nh_gw_family) 2435b55b76b2SDuan Jiong continue; 2436ad1601aeSDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.fib_nh_dev->ifindex) 2437b55b76b2SDuan Jiong continue; 24382b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24392b760fcfSWei Wang * in the case of an ip redirect. 24402b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24412b760fcfSWei Wang * is different. 24422b760fcfSWei Wang */ 2443ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.fib_nh_gw6)) { 24442b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24452b760fcfSWei Wang &fl6->daddr, 24462b760fcfSWei Wang &fl6->saddr); 24472b760fcfSWei Wang if (rt_cache && 24482b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24492b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 245023fb93a4SDavid Ahern ret = rt_cache; 24512b760fcfSWei Wang break; 24522b760fcfSWei Wang } 2453b55b76b2SDuan Jiong continue; 24542b760fcfSWei Wang } 2455b55b76b2SDuan Jiong break; 2456b55b76b2SDuan Jiong } 2457b55b76b2SDuan Jiong 2458b55b76b2SDuan Jiong if (!rt) 2459421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 246093c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 246123fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2462b0a1ba59SMartin KaFai Lau goto out; 2463b0a1ba59SMartin KaFai Lau } 2464b0a1ba59SMartin KaFai Lau 2465421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2466a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2467a3c00e46SMartin KaFai Lau if (fn) 2468a3c00e46SMartin KaFai Lau goto restart; 2469b55b76b2SDuan Jiong } 2470a3c00e46SMartin KaFai Lau 2471b0a1ba59SMartin KaFai Lau out: 247223fb93a4SDavid Ahern if (ret) 247310585b43SDavid Ahern ip6_hold_safe(net, &ret); 247423fb93a4SDavid Ahern else 247523fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2476b55b76b2SDuan Jiong 247766f5d6ceSWei Wang rcu_read_unlock(); 2478b55b76b2SDuan Jiong 2479b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 248023fb93a4SDavid Ahern return ret; 2481b55b76b2SDuan Jiong }; 2482b55b76b2SDuan Jiong 2483b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2484b55b76b2SDuan Jiong const struct flowi6 *fl6, 2485b75cc8f9SDavid Ahern const struct sk_buff *skb, 2486b55b76b2SDuan Jiong const struct in6_addr *gateway) 2487b55b76b2SDuan Jiong { 2488b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2489b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2490b55b76b2SDuan Jiong 2491b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2492b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2493b55b76b2SDuan Jiong 2494b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2495b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2496b55b76b2SDuan Jiong } 2497b55b76b2SDuan Jiong 2498e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2499e2d118a1SLorenzo Colitti kuid_t uid) 25003a5ad2eeSDavid S. Miller { 25013a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25023a5ad2eeSDavid S. Miller struct dst_entry *dst; 25031f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25041f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25051f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25061f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25071f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25081f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25091f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25101f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25111f7f10acSMaciej Żenczykowski }; 25123a5ad2eeSDavid S. Miller 2513b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25146700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25153a5ad2eeSDavid S. Miller dst_release(dst); 25163a5ad2eeSDavid S. Miller } 25173a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25183a5ad2eeSDavid S. Miller 2519d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2520c92a59ecSDuan Jiong { 2521c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2522c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2523c92a59ecSDuan Jiong struct dst_entry *dst; 25240b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25250b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25260b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25270b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25280b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25290b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25300b26fb17SMaciej Żenczykowski }; 2531c92a59ecSDuan Jiong 2532b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2533c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2534c92a59ecSDuan Jiong dst_release(dst); 2535c92a59ecSDuan Jiong } 2536c92a59ecSDuan Jiong 25373a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25383a5ad2eeSDavid S. Miller { 2539e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2540e2d118a1SLorenzo Colitti sk->sk_uid); 25413a5ad2eeSDavid S. Miller } 25423a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25433a5ad2eeSDavid S. Miller 25440dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25451da177e4SLinus Torvalds { 25460dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25470dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25480dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25490dbaee3bSDavid S. Miller 25501da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25511da177e4SLinus Torvalds 25525578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25535578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25541da177e4SLinus Torvalds 25551da177e4SLinus Torvalds /* 25561da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25571da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25581da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25591da177e4SLinus Torvalds * rely only on pmtu discovery" 25601da177e4SLinus Torvalds */ 25611da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25621da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25631da177e4SLinus Torvalds return mtu; 25641da177e4SLinus Torvalds } 25651da177e4SLinus Torvalds 2566ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2567d33e4553SDavid S. Miller { 2568d33e4553SDavid S. Miller struct inet6_dev *idev; 2569d4ead6b3SDavid Ahern unsigned int mtu; 2570618f9bc7SSteffen Klassert 25714b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25724b32b5adSMartin KaFai Lau if (mtu) 25734b32b5adSMartin KaFai Lau goto out; 25744b32b5adSMartin KaFai Lau 2575618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2576d33e4553SDavid S. Miller 2577d33e4553SDavid S. Miller rcu_read_lock(); 2578d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2579d33e4553SDavid S. Miller if (idev) 2580d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2581d33e4553SDavid S. Miller rcu_read_unlock(); 2582d33e4553SDavid S. Miller 258330f78d8eSEric Dumazet out: 258414972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 258514972cbdSRoopa Prabhu 258614972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2587d33e4553SDavid S. Miller } 2588d33e4553SDavid S. Miller 2589901731b8SDavid Ahern /* MTU selection: 2590901731b8SDavid Ahern * 1. mtu on route is locked - use it 2591901731b8SDavid Ahern * 2. mtu from nexthop exception 2592901731b8SDavid Ahern * 3. mtu from egress device 2593901731b8SDavid Ahern * 2594901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2595901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2596901731b8SDavid Ahern */ 2597901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2598901731b8SDavid Ahern struct in6_addr *saddr) 2599901731b8SDavid Ahern { 2600901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2601901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2602901731b8SDavid Ahern struct in6_addr *src_key; 2603901731b8SDavid Ahern struct inet6_dev *idev; 2604901731b8SDavid Ahern u32 mtu = 0; 2605901731b8SDavid Ahern 2606901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2607901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2608901731b8SDavid Ahern if (mtu) 2609901731b8SDavid Ahern goto out; 2610901731b8SDavid Ahern } 2611901731b8SDavid Ahern 2612901731b8SDavid Ahern src_key = NULL; 2613901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2614901731b8SDavid Ahern if (f6i->fib6_src.plen) 2615901731b8SDavid Ahern src_key = saddr; 2616901731b8SDavid Ahern #endif 2617901731b8SDavid Ahern 2618901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2619901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2620901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2621901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2622901731b8SDavid Ahern 2623901731b8SDavid Ahern if (likely(!mtu)) { 2624901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2625901731b8SDavid Ahern 2626901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2627901731b8SDavid Ahern idev = __in6_dev_get(dev); 2628901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2629901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2630901731b8SDavid Ahern } 2631901731b8SDavid Ahern 2632901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2633901731b8SDavid Ahern out: 2634901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2635901731b8SDavid Ahern } 2636901731b8SDavid Ahern 26373b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 263887a11578SDavid S. Miller struct flowi6 *fl6) 26391da177e4SLinus Torvalds { 264087a11578SDavid S. Miller struct dst_entry *dst; 26411da177e4SLinus Torvalds struct rt6_info *rt; 26421da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2643c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26441da177e4SLinus Torvalds 264538308473SDavid S. Miller if (unlikely(!idev)) 2646122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26471da177e4SLinus Torvalds 2648ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 264938308473SDavid S. Miller if (unlikely(!rt)) { 26501da177e4SLinus Torvalds in6_dev_put(idev); 265187a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26521da177e4SLinus Torvalds goto out; 26531da177e4SLinus Torvalds } 26541da177e4SLinus Torvalds 26558e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2656588753f1SBrendan McGrath rt->dst.input = ip6_input; 26578e2ec639SYan, Zheng rt->dst.output = ip6_output; 2658550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 265987a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26608e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26618e2ec639SYan, Zheng rt->rt6i_idev = idev; 266214edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26631da177e4SLinus Torvalds 26644c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2665587fea74SWei Wang * do proper release of the net_device 2666587fea74SWei Wang */ 2667587fea74SWei Wang rt6_uncached_list_add(rt); 266881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26691da177e4SLinus Torvalds 267087a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 267187a11578SDavid S. Miller 26721da177e4SLinus Torvalds out: 267387a11578SDavid S. Miller return dst; 26741da177e4SLinus Torvalds } 26751da177e4SLinus Torvalds 2676569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26771da177e4SLinus Torvalds { 267886393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26797019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26807019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26817019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26827019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26837019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2684fc66f95cSEric Dumazet int entries; 26851da177e4SLinus Torvalds 2686fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 268749a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2688fc66f95cSEric Dumazet entries <= rt_max_size) 26891da177e4SLinus Torvalds goto out; 26901da177e4SLinus Torvalds 26916891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 269214956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2693fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2694fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 26957019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 26961da177e4SLinus Torvalds out: 26977019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2698fc66f95cSEric Dumazet return entries > rt_max_size; 26991da177e4SLinus Torvalds } 27001da177e4SLinus Torvalds 27018c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27028c14586fSDavid Ahern struct fib6_config *cfg, 2703f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2704f4797b33SDavid Ahern u32 tbid, int flags) 27058c14586fSDavid Ahern { 27068c14586fSDavid Ahern struct flowi6 fl6 = { 27078c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27088c14586fSDavid Ahern .daddr = *gw_addr, 27098c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27108c14586fSDavid Ahern }; 27118c14586fSDavid Ahern struct fib6_table *table; 27128c14586fSDavid Ahern struct rt6_info *rt; 27138c14586fSDavid Ahern 2714f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27158c14586fSDavid Ahern if (!table) 27168c14586fSDavid Ahern return NULL; 27178c14586fSDavid Ahern 27188c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27198c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27208c14586fSDavid Ahern 2721f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2722b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27238c14586fSDavid Ahern 27248c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27258c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27268c14586fSDavid Ahern ip6_rt_put(rt); 27278c14586fSDavid Ahern rt = NULL; 27288c14586fSDavid Ahern } 27298c14586fSDavid Ahern 27308c14586fSDavid Ahern return rt; 27318c14586fSDavid Ahern } 27328c14586fSDavid Ahern 2733fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2734fc1e64e1SDavid Ahern struct fib6_config *cfg, 27359fbb704cSDavid Ahern const struct net_device *dev, 2736fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2737fc1e64e1SDavid Ahern { 273844750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2739fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2740fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2741bf1dc8baSPaolo Abeni struct fib6_info *from; 2742fc1e64e1SDavid Ahern struct rt6_info *grt; 2743fc1e64e1SDavid Ahern int err; 2744fc1e64e1SDavid Ahern 2745fc1e64e1SDavid Ahern err = 0; 2746fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2747fc1e64e1SDavid Ahern if (grt) { 2748bf1dc8baSPaolo Abeni rcu_read_lock(); 2749bf1dc8baSPaolo Abeni from = rcu_dereference(grt->from); 275058e354c0SDavid Ahern if (!grt->dst.error && 27514ed591c8SDavid Ahern /* ignore match if it is the default route */ 2752bf1dc8baSPaolo Abeni from && !ipv6_addr_any(&from->fib6_dst.addr) && 275358e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 275444750f84SDavid Ahern NL_SET_ERR_MSG(extack, 275544750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2756fc1e64e1SDavid Ahern err = -EINVAL; 2757fc1e64e1SDavid Ahern } 2758bf1dc8baSPaolo Abeni rcu_read_unlock(); 2759fc1e64e1SDavid Ahern 2760fc1e64e1SDavid Ahern ip6_rt_put(grt); 2761fc1e64e1SDavid Ahern } 2762fc1e64e1SDavid Ahern 2763fc1e64e1SDavid Ahern return err; 2764fc1e64e1SDavid Ahern } 2765fc1e64e1SDavid Ahern 27661edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27671edce99fSDavid Ahern struct fib6_config *cfg, 27681edce99fSDavid Ahern struct net_device **_dev, 27691edce99fSDavid Ahern struct inet6_dev **idev) 27701edce99fSDavid Ahern { 27711edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27721edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27731edce99fSDavid Ahern struct rt6_info *grt = NULL; 27741edce99fSDavid Ahern int err = -EHOSTUNREACH; 27751edce99fSDavid Ahern 27761edce99fSDavid Ahern if (cfg->fc_table) { 2777f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2778f4797b33SDavid Ahern 2779f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2780f4797b33SDavid Ahern cfg->fc_table, flags); 27811edce99fSDavid Ahern if (grt) { 27821edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 27831edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 27841edce99fSDavid Ahern ip6_rt_put(grt); 27851edce99fSDavid Ahern grt = NULL; 27861edce99fSDavid Ahern } 27871edce99fSDavid Ahern } 27881edce99fSDavid Ahern } 27891edce99fSDavid Ahern 27901edce99fSDavid Ahern if (!grt) 2791b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 27921edce99fSDavid Ahern 27931edce99fSDavid Ahern if (!grt) 27941edce99fSDavid Ahern goto out; 27951edce99fSDavid Ahern 27961edce99fSDavid Ahern if (dev) { 27971edce99fSDavid Ahern if (dev != grt->dst.dev) { 27981edce99fSDavid Ahern ip6_rt_put(grt); 27991edce99fSDavid Ahern goto out; 28001edce99fSDavid Ahern } 28011edce99fSDavid Ahern } else { 28021edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28031edce99fSDavid Ahern *idev = grt->rt6i_idev; 28041edce99fSDavid Ahern dev_hold(dev); 28051edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28061edce99fSDavid Ahern } 28071edce99fSDavid Ahern 28081edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28091edce99fSDavid Ahern err = 0; 28101edce99fSDavid Ahern 28111edce99fSDavid Ahern ip6_rt_put(grt); 28121edce99fSDavid Ahern 28131edce99fSDavid Ahern out: 28141edce99fSDavid Ahern return err; 28151edce99fSDavid Ahern } 28161edce99fSDavid Ahern 28179fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28189fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28199fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28209fbb704cSDavid Ahern { 28219fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28229fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2823232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28249fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2825232378e8SDavid Ahern bool need_addr_check = !dev; 28269fbb704cSDavid Ahern int err = -EINVAL; 28279fbb704cSDavid Ahern 28289fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28299fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28309fbb704cSDavid Ahern * will return already-added prefix route via interface that 28319fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28329fbb704cSDavid Ahern */ 2833232378e8SDavid Ahern if (dev && 2834232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2835232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28369fbb704cSDavid Ahern goto out; 28379fbb704cSDavid Ahern } 28389fbb704cSDavid Ahern 28399fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28409fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28419fbb704cSDavid Ahern * addresses as nexthop address. 28429fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28439fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28449fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28459fbb704cSDavid Ahern * some exceptions. --ANK 28469fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28479fbb704cSDavid Ahern * addressing 28489fbb704cSDavid Ahern */ 28499fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28509fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28519fbb704cSDavid Ahern goto out; 28529fbb704cSDavid Ahern } 28539fbb704cSDavid Ahern 28549fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28559fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28569fbb704cSDavid Ahern else 28579fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28589fbb704cSDavid Ahern 28599fbb704cSDavid Ahern if (err) 28609fbb704cSDavid Ahern goto out; 28619fbb704cSDavid Ahern } 28629fbb704cSDavid Ahern 28639fbb704cSDavid Ahern /* reload in case device was changed */ 28649fbb704cSDavid Ahern dev = *_dev; 28659fbb704cSDavid Ahern 28669fbb704cSDavid Ahern err = -EINVAL; 28679fbb704cSDavid Ahern if (!dev) { 28689fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28699fbb704cSDavid Ahern goto out; 28709fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28719fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28729fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28739fbb704cSDavid Ahern goto out; 28749fbb704cSDavid Ahern } 2875232378e8SDavid Ahern 2876232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2877232378e8SDavid Ahern * egress device has been resolved. 2878232378e8SDavid Ahern */ 2879232378e8SDavid Ahern if (need_addr_check && 2880232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2881232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2882232378e8SDavid Ahern goto out; 2883232378e8SDavid Ahern } 2884232378e8SDavid Ahern 28859fbb704cSDavid Ahern err = 0; 28869fbb704cSDavid Ahern out: 28879fbb704cSDavid Ahern return err; 28889fbb704cSDavid Ahern } 28899fbb704cSDavid Ahern 289083c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type) 289183c44251SDavid Ahern { 289283c44251SDavid Ahern if ((flags & RTF_REJECT) || 289383c44251SDavid Ahern (dev && (dev->flags & IFF_LOOPBACK) && 289483c44251SDavid Ahern !(addr_type & IPV6_ADDR_LOOPBACK) && 289583c44251SDavid Ahern !(flags & RTF_LOCAL))) 289683c44251SDavid Ahern return true; 289783c44251SDavid Ahern 289883c44251SDavid Ahern return false; 289983c44251SDavid Ahern } 290083c44251SDavid Ahern 290183c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh, 290283c44251SDavid Ahern struct fib6_config *cfg, gfp_t gfp_flags, 290383c44251SDavid Ahern struct netlink_ext_ack *extack) 290483c44251SDavid Ahern { 290583c44251SDavid Ahern struct net_device *dev = NULL; 290683c44251SDavid Ahern struct inet6_dev *idev = NULL; 290783c44251SDavid Ahern int addr_type; 290883c44251SDavid Ahern int err; 290983c44251SDavid Ahern 2910f1741730SDavid Ahern fib6_nh->fib_nh_family = AF_INET6; 2911f1741730SDavid Ahern 291283c44251SDavid Ahern err = -ENODEV; 291383c44251SDavid Ahern if (cfg->fc_ifindex) { 291483c44251SDavid Ahern dev = dev_get_by_index(net, cfg->fc_ifindex); 291583c44251SDavid Ahern if (!dev) 291683c44251SDavid Ahern goto out; 291783c44251SDavid Ahern idev = in6_dev_get(dev); 291883c44251SDavid Ahern if (!idev) 291983c44251SDavid Ahern goto out; 292083c44251SDavid Ahern } 292183c44251SDavid Ahern 292283c44251SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 292383c44251SDavid Ahern if (!dev) { 292483c44251SDavid Ahern NL_SET_ERR_MSG(extack, 292583c44251SDavid Ahern "Nexthop device required for onlink"); 292683c44251SDavid Ahern goto out; 292783c44251SDavid Ahern } 292883c44251SDavid Ahern 292983c44251SDavid Ahern if (!(dev->flags & IFF_UP)) { 293083c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 293183c44251SDavid Ahern err = -ENETDOWN; 293283c44251SDavid Ahern goto out; 293383c44251SDavid Ahern } 293483c44251SDavid Ahern 2935ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_ONLINK; 293683c44251SDavid Ahern } 293783c44251SDavid Ahern 2938ad1601aeSDavid Ahern fib6_nh->fib_nh_weight = 1; 293983c44251SDavid Ahern 294083c44251SDavid Ahern /* We cannot add true routes via loopback here, 294183c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 294283c44251SDavid Ahern */ 294383c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 294483c44251SDavid Ahern if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) { 294583c44251SDavid Ahern /* hold loopback dev/idev if we haven't done so. */ 294683c44251SDavid Ahern if (dev != net->loopback_dev) { 294783c44251SDavid Ahern if (dev) { 294883c44251SDavid Ahern dev_put(dev); 294983c44251SDavid Ahern in6_dev_put(idev); 295083c44251SDavid Ahern } 295183c44251SDavid Ahern dev = net->loopback_dev; 295283c44251SDavid Ahern dev_hold(dev); 295383c44251SDavid Ahern idev = in6_dev_get(dev); 295483c44251SDavid Ahern if (!idev) { 295583c44251SDavid Ahern err = -ENODEV; 295683c44251SDavid Ahern goto out; 295783c44251SDavid Ahern } 295883c44251SDavid Ahern } 295983c44251SDavid Ahern goto set_dev; 296083c44251SDavid Ahern } 296183c44251SDavid Ahern 296283c44251SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) { 296383c44251SDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 296483c44251SDavid Ahern if (err) 296583c44251SDavid Ahern goto out; 296683c44251SDavid Ahern 2967ad1601aeSDavid Ahern fib6_nh->fib_nh_gw6 = cfg->fc_gateway; 2968bdf00467SDavid Ahern fib6_nh->fib_nh_gw_family = AF_INET6; 296983c44251SDavid Ahern } 297083c44251SDavid Ahern 297183c44251SDavid Ahern err = -ENODEV; 297283c44251SDavid Ahern if (!dev) 297383c44251SDavid Ahern goto out; 297483c44251SDavid Ahern 297583c44251SDavid Ahern if (idev->cnf.disable_ipv6) { 297683c44251SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 297783c44251SDavid Ahern err = -EACCES; 297883c44251SDavid Ahern goto out; 297983c44251SDavid Ahern } 298083c44251SDavid Ahern 298183c44251SDavid Ahern if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) { 298283c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 298383c44251SDavid Ahern err = -ENETDOWN; 298483c44251SDavid Ahern goto out; 298583c44251SDavid Ahern } 298683c44251SDavid Ahern 298783c44251SDavid Ahern if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) && 298883c44251SDavid Ahern !netif_carrier_ok(dev)) 2989ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN; 299083c44251SDavid Ahern 2991979e276eSDavid Ahern err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap, 2992979e276eSDavid Ahern cfg->fc_encap_type, cfg, gfp_flags, extack); 2993979e276eSDavid Ahern if (err) 2994979e276eSDavid Ahern goto out; 299583c44251SDavid Ahern set_dev: 2996ad1601aeSDavid Ahern fib6_nh->fib_nh_dev = dev; 2997f1741730SDavid Ahern fib6_nh->fib_nh_oif = dev->ifindex; 299883c44251SDavid Ahern err = 0; 299983c44251SDavid Ahern out: 300083c44251SDavid Ahern if (idev) 300183c44251SDavid Ahern in6_dev_put(idev); 300283c44251SDavid Ahern 300383c44251SDavid Ahern if (err) { 3004ad1601aeSDavid Ahern lwtstate_put(fib6_nh->fib_nh_lws); 3005ad1601aeSDavid Ahern fib6_nh->fib_nh_lws = NULL; 300683c44251SDavid Ahern if (dev) 300783c44251SDavid Ahern dev_put(dev); 300883c44251SDavid Ahern } 300983c44251SDavid Ahern 301083c44251SDavid Ahern return err; 301183c44251SDavid Ahern } 301283c44251SDavid Ahern 3013dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh) 3014dac7d0f2SDavid Ahern { 3015979e276eSDavid Ahern fib_nh_common_release(&fib6_nh->nh_common); 3016dac7d0f2SDavid Ahern } 3017dac7d0f2SDavid Ahern 30188d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 3019acb54e3cSDavid Ahern gfp_t gfp_flags, 3020333c4301SDavid Ahern struct netlink_ext_ack *extack) 30211da177e4SLinus Torvalds { 30225578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 30238d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3024c71099acSThomas Graf struct fib6_table *table; 30258c5b83f0SRoopa Prabhu int err = -EINVAL; 302683c44251SDavid Ahern int addr_type; 30271da177e4SLinus Torvalds 3028557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 3029d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 3030d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 3031557c44beSDavid Ahern goto out; 3032d5d531cbSDavid Ahern } 3033557c44beSDavid Ahern 30342ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 30352ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 30362ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 30372ea2352eSWei Wang goto out; 30382ea2352eSWei Wang } 30392ea2352eSWei Wang 3040e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 3041e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 3042e8478e80SDavid Ahern goto out; 3043e8478e80SDavid Ahern } 3044e8478e80SDavid Ahern 3045d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 3046d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 30478c5b83f0SRoopa Prabhu goto out; 3048d5d531cbSDavid Ahern } 3049d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 3050d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 3051d5d531cbSDavid Ahern goto out; 3052d5d531cbSDavid Ahern } 30531da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 3054d5d531cbSDavid Ahern if (cfg->fc_src_len) { 3055d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 3056d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 30578c5b83f0SRoopa Prabhu goto out; 3058d5d531cbSDavid Ahern } 30591da177e4SLinus Torvalds #endif 3060fc1e64e1SDavid Ahern 3061c71099acSThomas Graf err = -ENOBUFS; 306238308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3063d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3064d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 306538308473SDavid S. Miller if (!table) { 3066f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3067d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3068d71314b4SMatti Vaittinen } 3069d71314b4SMatti Vaittinen } else { 3070d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3071d71314b4SMatti Vaittinen } 307238308473SDavid S. Miller 307338308473SDavid S. Miller if (!table) 3074c71099acSThomas Graf goto out; 3075c71099acSThomas Graf 30761da177e4SLinus Torvalds err = -ENOMEM; 307793531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 307893531c67SDavid Ahern if (!rt) 30791da177e4SLinus Torvalds goto out; 308093531c67SDavid Ahern 3081d7e774f3SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len, 3082d7e774f3SDavid Ahern extack); 3083767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 3084767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 3085fda21d46SEric Dumazet /* Do not leave garbage there. */ 3086fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 3087767a2217SDavid Ahern goto out; 3088767a2217SDavid Ahern } 3089767a2217SDavid Ahern 309093531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 309193531c67SDavid Ahern rt->dst_nocount = true; 30921da177e4SLinus Torvalds 30931716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 309414895687SDavid Ahern fib6_set_expires(rt, jiffies + 30951716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30961716a961SGao feng else 309714895687SDavid Ahern fib6_clean_expires(rt); 30981da177e4SLinus Torvalds 309986872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 310086872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 310193c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 310286872cb5SThomas Graf 310383c44251SDavid Ahern rt->fib6_table = table; 310483c44251SDavid Ahern rt->fib6_metric = cfg->fc_metric; 310583c44251SDavid Ahern rt->fib6_type = cfg->fc_type; 31062b2450caSDavid Ahern rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY; 310719e42e45SRoopa Prabhu 310893c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 310993c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 311093c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 31113b6761d1SDavid Ahern rt->dst_host = true; 31121da177e4SLinus Torvalds 31131da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 311493c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 311593c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 31161da177e4SLinus Torvalds #endif 311783c44251SDavid Ahern err = fib6_nh_init(net, &rt->fib6_nh, cfg, gfp_flags, extack); 31181da177e4SLinus Torvalds if (err) 31191da177e4SLinus Torvalds goto out; 31209fbb704cSDavid Ahern 312183c44251SDavid Ahern /* We cannot add true routes via loopback here, 312283c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 312383c44251SDavid Ahern */ 312483c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 3125ad1601aeSDavid Ahern if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh.fib_nh_dev, addr_type)) 312683c44251SDavid Ahern rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP; 3127955ec4cbSDavid Ahern 3128c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 312983c44251SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 313083c44251SDavid Ahern 3131c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3132d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3133c3968a85SDaniel Walter err = -EINVAL; 3134c3968a85SDaniel Walter goto out; 3135c3968a85SDaniel Walter } 313693c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 313793c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3138c3968a85SDaniel Walter } else 313993c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3140c3968a85SDaniel Walter 31418c5b83f0SRoopa Prabhu return rt; 31421da177e4SLinus Torvalds out: 314393531c67SDavid Ahern fib6_info_release(rt); 31448c5b83f0SRoopa Prabhu return ERR_PTR(err); 31456b9ea5a6SRoopa Prabhu } 31466b9ea5a6SRoopa Prabhu 3147acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3148333c4301SDavid Ahern struct netlink_ext_ack *extack) 31496b9ea5a6SRoopa Prabhu { 31508d1c802bSDavid Ahern struct fib6_info *rt; 31516b9ea5a6SRoopa Prabhu int err; 31526b9ea5a6SRoopa Prabhu 3153acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3154d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3155d4ead6b3SDavid Ahern return PTR_ERR(rt); 31566b9ea5a6SRoopa Prabhu 3157d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 315893531c67SDavid Ahern fib6_info_release(rt); 31596b9ea5a6SRoopa Prabhu 31601da177e4SLinus Torvalds return err; 31611da177e4SLinus Torvalds } 31621da177e4SLinus Torvalds 31638d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31641da177e4SLinus Torvalds { 3165afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3166c71099acSThomas Graf struct fib6_table *table; 3167afb1d4b5SDavid Ahern int err; 31681da177e4SLinus Torvalds 3169421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31706825a26cSGao feng err = -ENOENT; 31716825a26cSGao feng goto out; 31726825a26cSGao feng } 31736c813a72SPatrick McHardy 317493c2fb25SDavid Ahern table = rt->fib6_table; 317566f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 317686872cb5SThomas Graf err = fib6_del(rt, info); 317766f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31781da177e4SLinus Torvalds 31796825a26cSGao feng out: 318093531c67SDavid Ahern fib6_info_release(rt); 31811da177e4SLinus Torvalds return err; 31821da177e4SLinus Torvalds } 31831da177e4SLinus Torvalds 31848d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3185e0a1ad73SThomas Graf { 3186afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3187afb1d4b5SDavid Ahern 3188528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3189e0a1ad73SThomas Graf } 3190e0a1ad73SThomas Graf 31918d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 31920ae81335SDavid Ahern { 31930ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3194e3330039SWANG Cong struct net *net = info->nl_net; 319516a16cd3SDavid Ahern struct sk_buff *skb = NULL; 31960ae81335SDavid Ahern struct fib6_table *table; 3197e3330039SWANG Cong int err = -ENOENT; 31980ae81335SDavid Ahern 3199421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3200e3330039SWANG Cong goto out_put; 320193c2fb25SDavid Ahern table = rt->fib6_table; 320266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32030ae81335SDavid Ahern 320493c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32058d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32060ae81335SDavid Ahern 320716a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 320816a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 320916a16cd3SDavid Ahern if (skb) { 321016a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 321116a16cd3SDavid Ahern 3212d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 321316a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 321416a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 321516a16cd3SDavid Ahern kfree_skb(skb); 321616a16cd3SDavid Ahern skb = NULL; 321716a16cd3SDavid Ahern } else 321816a16cd3SDavid Ahern info->skip_notify = 1; 321916a16cd3SDavid Ahern } 322016a16cd3SDavid Ahern 32210ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 322293c2fb25SDavid Ahern &rt->fib6_siblings, 322393c2fb25SDavid Ahern fib6_siblings) { 32240ae81335SDavid Ahern err = fib6_del(sibling, info); 32250ae81335SDavid Ahern if (err) 3226e3330039SWANG Cong goto out_unlock; 32270ae81335SDavid Ahern } 32280ae81335SDavid Ahern } 32290ae81335SDavid Ahern 32300ae81335SDavid Ahern err = fib6_del(rt, info); 3231e3330039SWANG Cong out_unlock: 323266f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3233e3330039SWANG Cong out_put: 323493531c67SDavid Ahern fib6_info_release(rt); 323516a16cd3SDavid Ahern 323616a16cd3SDavid Ahern if (skb) { 3237e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 323816a16cd3SDavid Ahern info->nlh, gfp_any()); 323916a16cd3SDavid Ahern } 32400ae81335SDavid Ahern return err; 32410ae81335SDavid Ahern } 32420ae81335SDavid Ahern 324323fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 324423fb93a4SDavid Ahern { 324523fb93a4SDavid Ahern int rc = -ESRCH; 324623fb93a4SDavid Ahern 324723fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 324823fb93a4SDavid Ahern goto out; 324923fb93a4SDavid Ahern 325023fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 325123fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 325223fb93a4SDavid Ahern goto out; 3253761f6026SXin Long 325423fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 325523fb93a4SDavid Ahern out: 325623fb93a4SDavid Ahern return rc; 325723fb93a4SDavid Ahern } 325823fb93a4SDavid Ahern 3259333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3260333c4301SDavid Ahern struct netlink_ext_ack *extack) 32611da177e4SLinus Torvalds { 32628d1c802bSDavid Ahern struct rt6_info *rt_cache; 3263c71099acSThomas Graf struct fib6_table *table; 32648d1c802bSDavid Ahern struct fib6_info *rt; 32651da177e4SLinus Torvalds struct fib6_node *fn; 32661da177e4SLinus Torvalds int err = -ESRCH; 32671da177e4SLinus Torvalds 32685578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3269d5d531cbSDavid Ahern if (!table) { 3270d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3271c71099acSThomas Graf return err; 3272d5d531cbSDavid Ahern } 32731da177e4SLinus Torvalds 327466f5d6ceSWei Wang rcu_read_lock(); 3275c71099acSThomas Graf 3276c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 327786872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 327838fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32792b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32801da177e4SLinus Torvalds 32811da177e4SLinus Torvalds if (fn) { 328266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3283ad1601aeSDavid Ahern struct fib6_nh *nh; 3284ad1601aeSDavid Ahern 32852b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 328623fb93a4SDavid Ahern int rc; 328723fb93a4SDavid Ahern 32882b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32892b760fcfSWei Wang &cfg->fc_src); 329023fb93a4SDavid Ahern if (rt_cache) { 329123fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 32929e575010SEric Dumazet if (rc != -ESRCH) { 32939e575010SEric Dumazet rcu_read_unlock(); 329423fb93a4SDavid Ahern return rc; 329523fb93a4SDavid Ahern } 32969e575010SEric Dumazet } 32971f56a01fSMartin KaFai Lau continue; 32982b760fcfSWei Wang } 3299ad1601aeSDavid Ahern 3300ad1601aeSDavid Ahern nh = &rt->fib6_nh; 330186872cb5SThomas Graf if (cfg->fc_ifindex && 3302ad1601aeSDavid Ahern (!nh->fib_nh_dev || 3303ad1601aeSDavid Ahern nh->fib_nh_dev->ifindex != cfg->fc_ifindex)) 33041da177e4SLinus Torvalds continue; 330586872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 3306ad1601aeSDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6)) 33071da177e4SLinus Torvalds continue; 330893c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33091da177e4SLinus Torvalds continue; 331093c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3311c2ed1880SMantas M continue; 3312e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3313e873e4b9SWei Wang continue; 331466f5d6ceSWei Wang rcu_read_unlock(); 33151da177e4SLinus Torvalds 33160ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33170ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 331886872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33190ae81335SDavid Ahern 33200ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33211da177e4SLinus Torvalds } 33221da177e4SLinus Torvalds } 332366f5d6ceSWei Wang rcu_read_unlock(); 33241da177e4SLinus Torvalds 33251da177e4SLinus Torvalds return err; 33261da177e4SLinus Torvalds } 33271da177e4SLinus Torvalds 33286700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3329a6279458SYOSHIFUJI Hideaki { 3330a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3331e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3332e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3333e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3334e8599ff4SDavid S. Miller struct neighbour *neigh; 3335a68886a6SDavid Ahern struct fib6_info *from; 333671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33376e157b6aSDavid S. Miller int optlen, on_link; 33386e157b6aSDavid S. Miller u8 *lladdr; 3339e8599ff4SDavid S. Miller 334029a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 334171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3342e8599ff4SDavid S. Miller 3343e8599ff4SDavid S. Miller if (optlen < 0) { 33446e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3345e8599ff4SDavid S. Miller return; 3346e8599ff4SDavid S. Miller } 3347e8599ff4SDavid S. Miller 334871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3349e8599ff4SDavid S. Miller 335071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33516e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3352e8599ff4SDavid S. Miller return; 3353e8599ff4SDavid S. Miller } 3354e8599ff4SDavid S. Miller 33556e157b6aSDavid S. Miller on_link = 0; 335671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3357e8599ff4SDavid S. Miller on_link = 1; 335871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3359e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33606e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3361e8599ff4SDavid S. Miller return; 3362e8599ff4SDavid S. Miller } 3363e8599ff4SDavid S. Miller 3364e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3365e8599ff4SDavid S. Miller if (!in6_dev) 3366e8599ff4SDavid S. Miller return; 3367e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3368e8599ff4SDavid S. Miller return; 3369e8599ff4SDavid S. Miller 3370e8599ff4SDavid S. Miller /* RFC2461 8.1: 3371e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3372e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3373e8599ff4SDavid S. Miller */ 3374e8599ff4SDavid S. Miller 3375f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3376e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3377e8599ff4SDavid S. Miller return; 3378e8599ff4SDavid S. Miller } 33796e157b6aSDavid S. Miller 33806e157b6aSDavid S. Miller lladdr = NULL; 3381e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3382e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3383e8599ff4SDavid S. Miller skb->dev); 3384e8599ff4SDavid S. Miller if (!lladdr) { 3385e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3386e8599ff4SDavid S. Miller return; 3387e8599ff4SDavid S. Miller } 3388e8599ff4SDavid S. Miller } 3389e8599ff4SDavid S. Miller 33906e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3391ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33926e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33936e157b6aSDavid S. Miller return; 33946e157b6aSDavid S. Miller } 33956e157b6aSDavid S. Miller 33966e157b6aSDavid S. Miller /* Redirect received -> path was valid. 33976e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 33986e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 33996e157b6aSDavid S. Miller */ 34000dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34016e157b6aSDavid S. Miller 340271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3403e8599ff4SDavid S. Miller if (!neigh) 3404e8599ff4SDavid S. Miller return; 3405e8599ff4SDavid S. Miller 34061da177e4SLinus Torvalds /* 34071da177e4SLinus Torvalds * We have finally decided to accept it. 34081da177e4SLinus Torvalds */ 34091da177e4SLinus Torvalds 3410f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34111da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34121da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34131da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3414f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3415f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34161da177e4SLinus Torvalds 34174d85cd0cSDavid Ahern rcu_read_lock(); 3418a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3419e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3420e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3421e873e4b9SWei Wang */ 34228a14e46fSDavid Ahern fib6_info_hold(from); 34234d85cd0cSDavid Ahern rcu_read_unlock(); 34248a14e46fSDavid Ahern 34258a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 342638308473SDavid S. Miller if (!nrt) 34271da177e4SLinus Torvalds goto out; 34281da177e4SLinus Torvalds 34291da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34301da177e4SLinus Torvalds if (on_link) 34311da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34321da177e4SLinus Torvalds 34334e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34341da177e4SLinus Torvalds 34352b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34362b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34372b760fcfSWei Wang * takes care of it 34382b760fcfSWei Wang */ 34398a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34402b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34412b760fcfSWei Wang goto out; 34422b760fcfSWei Wang } 34431da177e4SLinus Torvalds 3444d8d1f30bSChangli Gao netevent.old = &rt->dst; 3445d8d1f30bSChangli Gao netevent.new = &nrt->dst; 344671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 344760592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34488d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34498d71740cSTom Tucker 34501da177e4SLinus Torvalds out: 34518a14e46fSDavid Ahern fib6_info_release(from); 3452e8599ff4SDavid S. Miller neigh_release(neigh); 34536e157b6aSDavid S. Miller } 34546e157b6aSDavid S. Miller 345570ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34568d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3457b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3458830218c1SDavid Ahern const struct in6_addr *gwaddr, 3459830218c1SDavid Ahern struct net_device *dev) 346070ceb4f5SYOSHIFUJI Hideaki { 3461830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3462830218c1SDavid Ahern int ifindex = dev->ifindex; 346370ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34648d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3465c71099acSThomas Graf struct fib6_table *table; 346670ceb4f5SYOSHIFUJI Hideaki 3467830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 346838308473SDavid S. Miller if (!table) 3469c71099acSThomas Graf return NULL; 3470c71099acSThomas Graf 347166f5d6ceSWei Wang rcu_read_lock(); 347238fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 347370ceb4f5SYOSHIFUJI Hideaki if (!fn) 347470ceb4f5SYOSHIFUJI Hideaki goto out; 347570ceb4f5SYOSHIFUJI Hideaki 347666f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3477ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev->ifindex != ifindex) 347870ceb4f5SYOSHIFUJI Hideaki continue; 34792b2450caSDavid Ahern if (!(rt->fib6_flags & RTF_ROUTEINFO) || 3480bdf00467SDavid Ahern !rt->fib6_nh.fib_nh_gw_family) 348170ceb4f5SYOSHIFUJI Hideaki continue; 3482ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.fib_nh_gw6, gwaddr)) 348370ceb4f5SYOSHIFUJI Hideaki continue; 3484e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3485e873e4b9SWei Wang continue; 348670ceb4f5SYOSHIFUJI Hideaki break; 348770ceb4f5SYOSHIFUJI Hideaki } 348870ceb4f5SYOSHIFUJI Hideaki out: 348966f5d6ceSWei Wang rcu_read_unlock(); 349070ceb4f5SYOSHIFUJI Hideaki return rt; 349170ceb4f5SYOSHIFUJI Hideaki } 349270ceb4f5SYOSHIFUJI Hideaki 34938d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3494b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3495830218c1SDavid Ahern const struct in6_addr *gwaddr, 3496830218c1SDavid Ahern struct net_device *dev, 349795c96174SEric Dumazet unsigned int pref) 349870ceb4f5SYOSHIFUJI Hideaki { 349986872cb5SThomas Graf struct fib6_config cfg = { 3500238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3501830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 350286872cb5SThomas Graf .fc_dst_len = prefixlen, 350386872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 350486872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3505b91d5329SXin Long .fc_protocol = RTPROT_RA, 3506e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 350715e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3508efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3509efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 351086872cb5SThomas Graf }; 351170ceb4f5SYOSHIFUJI Hideaki 3512830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35134e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35144e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 351586872cb5SThomas Graf 3516e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3517e317da96SYOSHIFUJI Hideaki if (!prefixlen) 351886872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 351970ceb4f5SYOSHIFUJI Hideaki 3520acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 352170ceb4f5SYOSHIFUJI Hideaki 3522830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 352370ceb4f5SYOSHIFUJI Hideaki } 352470ceb4f5SYOSHIFUJI Hideaki #endif 352570ceb4f5SYOSHIFUJI Hideaki 35268d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3527afb1d4b5SDavid Ahern const struct in6_addr *addr, 3528afb1d4b5SDavid Ahern struct net_device *dev) 35291da177e4SLinus Torvalds { 3530830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35318d1c802bSDavid Ahern struct fib6_info *rt; 3532c71099acSThomas Graf struct fib6_table *table; 35331da177e4SLinus Torvalds 3534afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 353538308473SDavid S. Miller if (!table) 3536c71099acSThomas Graf return NULL; 35371da177e4SLinus Torvalds 353866f5d6ceSWei Wang rcu_read_lock(); 353966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3540ad1601aeSDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 3541ad1601aeSDavid Ahern 3542ad1601aeSDavid Ahern if (dev == nh->fib_nh_dev && 354393c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 3544ad1601aeSDavid Ahern ipv6_addr_equal(&nh->fib_nh_gw6, addr)) 35451da177e4SLinus Torvalds break; 35461da177e4SLinus Torvalds } 3547e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3548e873e4b9SWei Wang rt = NULL; 354966f5d6ceSWei Wang rcu_read_unlock(); 35501da177e4SLinus Torvalds return rt; 35511da177e4SLinus Torvalds } 35521da177e4SLinus Torvalds 35538d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3554afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3555ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3556ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35571da177e4SLinus Torvalds { 355886872cb5SThomas Graf struct fib6_config cfg = { 3559ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3560238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 356186872cb5SThomas Graf .fc_ifindex = dev->ifindex, 356286872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 356386872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3564b91d5329SXin Long .fc_protocol = RTPROT_RA, 3565e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 356615e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35675578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3568afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 356986872cb5SThomas Graf }; 35701da177e4SLinus Torvalds 35714e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35721da177e4SLinus Torvalds 3573acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3574830218c1SDavid Ahern struct fib6_table *table; 3575830218c1SDavid Ahern 3576830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3577830218c1SDavid Ahern if (table) 3578830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3579830218c1SDavid Ahern } 35801da177e4SLinus Torvalds 3581afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35821da177e4SLinus Torvalds } 35831da177e4SLinus Torvalds 3584afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3585afb1d4b5SDavid Ahern struct fib6_table *table) 35861da177e4SLinus Torvalds { 35878d1c802bSDavid Ahern struct fib6_info *rt; 35881da177e4SLinus Torvalds 35891da177e4SLinus Torvalds restart: 359066f5d6ceSWei Wang rcu_read_lock(); 359166f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3592dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3593dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3594dcd1f572SDavid Ahern 359593c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3596e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3597e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 359866f5d6ceSWei Wang rcu_read_unlock(); 3599afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36001da177e4SLinus Torvalds goto restart; 36011da177e4SLinus Torvalds } 36021da177e4SLinus Torvalds } 360366f5d6ceSWei Wang rcu_read_unlock(); 3604830218c1SDavid Ahern 3605830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3606830218c1SDavid Ahern } 3607830218c1SDavid Ahern 3608830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3609830218c1SDavid Ahern { 3610830218c1SDavid Ahern struct fib6_table *table; 3611830218c1SDavid Ahern struct hlist_head *head; 3612830218c1SDavid Ahern unsigned int h; 3613830218c1SDavid Ahern 3614830218c1SDavid Ahern rcu_read_lock(); 3615830218c1SDavid Ahern 3616830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3617830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3618830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3619830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3620afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3621830218c1SDavid Ahern } 3622830218c1SDavid Ahern } 3623830218c1SDavid Ahern 3624830218c1SDavid Ahern rcu_read_unlock(); 36251da177e4SLinus Torvalds } 36261da177e4SLinus Torvalds 36275578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36285578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 362986872cb5SThomas Graf struct fib6_config *cfg) 363086872cb5SThomas Graf { 36318823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 36328823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 36338823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 36348823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 363567f69513SDavid Ahern .fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER, 36368823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 36378823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 36388823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 36398823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 36408823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 364186872cb5SThomas Graf 36428823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 364386872cb5SThomas Graf 36448823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36458823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36468823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36478823a3acSMaciej Żenczykowski }; 364886872cb5SThomas Graf } 364986872cb5SThomas Graf 36505578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36511da177e4SLinus Torvalds { 365286872cb5SThomas Graf struct fib6_config cfg; 36531da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36541da177e4SLinus Torvalds int err; 36551da177e4SLinus Torvalds 36561da177e4SLinus Torvalds switch (cmd) { 36571da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36581da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3659af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36601da177e4SLinus Torvalds return -EPERM; 36611da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36621da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36631da177e4SLinus Torvalds if (err) 36641da177e4SLinus Torvalds return -EFAULT; 36651da177e4SLinus Torvalds 36665578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 366786872cb5SThomas Graf 36681da177e4SLinus Torvalds rtnl_lock(); 36691da177e4SLinus Torvalds switch (cmd) { 36701da177e4SLinus Torvalds case SIOCADDRT: 3671acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36721da177e4SLinus Torvalds break; 36731da177e4SLinus Torvalds case SIOCDELRT: 3674333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36751da177e4SLinus Torvalds break; 36761da177e4SLinus Torvalds default: 36771da177e4SLinus Torvalds err = -EINVAL; 36781da177e4SLinus Torvalds } 36791da177e4SLinus Torvalds rtnl_unlock(); 36801da177e4SLinus Torvalds 36811da177e4SLinus Torvalds return err; 36823ff50b79SStephen Hemminger } 36831da177e4SLinus Torvalds 36841da177e4SLinus Torvalds return -EINVAL; 36851da177e4SLinus Torvalds } 36861da177e4SLinus Torvalds 36871da177e4SLinus Torvalds /* 36881da177e4SLinus Torvalds * Drop the packet on the floor 36891da177e4SLinus Torvalds */ 36901da177e4SLinus Torvalds 3691d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36921da177e4SLinus Torvalds { 3693612f09e8SYOSHIFUJI Hideaki int type; 3694adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3695612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3696612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 36970660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 369845bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3699bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3700bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 37013bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3702612f09e8SYOSHIFUJI Hideaki break; 3703612f09e8SYOSHIFUJI Hideaki } 3704612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3705612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37063bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37073bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3708612f09e8SYOSHIFUJI Hideaki break; 3709612f09e8SYOSHIFUJI Hideaki } 37103ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37111da177e4SLinus Torvalds kfree_skb(skb); 37121da177e4SLinus Torvalds return 0; 37131da177e4SLinus Torvalds } 37141da177e4SLinus Torvalds 37159ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37169ce8ade0SThomas Graf { 3717612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37189ce8ade0SThomas Graf } 37199ce8ade0SThomas Graf 3720ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37211da177e4SLinus Torvalds { 3722adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3723612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37241da177e4SLinus Torvalds } 37251da177e4SLinus Torvalds 37269ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37279ce8ade0SThomas Graf { 3728612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37299ce8ade0SThomas Graf } 37309ce8ade0SThomas Graf 3731ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37329ce8ade0SThomas Graf { 3733adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3734612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37359ce8ade0SThomas Graf } 37369ce8ade0SThomas Graf 37371da177e4SLinus Torvalds /* 37381da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37391da177e4SLinus Torvalds */ 37401da177e4SLinus Torvalds 3741360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3742afb1d4b5SDavid Ahern struct inet6_dev *idev, 37431da177e4SLinus Torvalds const struct in6_addr *addr, 3744acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37451da177e4SLinus Torvalds { 3746c7a1ce39SDavid Ahern struct fib6_config cfg = { 3747c7a1ce39SDavid Ahern .fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL, 3748c7a1ce39SDavid Ahern .fc_ifindex = idev->dev->ifindex, 3749c7a1ce39SDavid Ahern .fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP, 3750c7a1ce39SDavid Ahern .fc_dst = *addr, 3751c7a1ce39SDavid Ahern .fc_dst_len = 128, 3752c7a1ce39SDavid Ahern .fc_protocol = RTPROT_KERNEL, 3753c7a1ce39SDavid Ahern .fc_nlinfo.nl_net = net, 3754c7a1ce39SDavid Ahern .fc_ignore_dev_down = true, 3755c7a1ce39SDavid Ahern }; 37565f02ce24SDavid Ahern 3757e8478e80SDavid Ahern if (anycast) { 3758c7a1ce39SDavid Ahern cfg.fc_type = RTN_ANYCAST; 3759c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_ANYCAST; 3760e8478e80SDavid Ahern } else { 3761c7a1ce39SDavid Ahern cfg.fc_type = RTN_LOCAL; 3762c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_LOCAL; 3763e8478e80SDavid Ahern } 37641da177e4SLinus Torvalds 3765c7a1ce39SDavid Ahern return ip6_route_info_create(&cfg, gfp_flags, NULL); 37661da177e4SLinus Torvalds } 37671da177e4SLinus Torvalds 3768c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3769c3968a85SDaniel Walter struct arg_dev_net_ip { 3770c3968a85SDaniel Walter struct net_device *dev; 3771c3968a85SDaniel Walter struct net *net; 3772c3968a85SDaniel Walter struct in6_addr *addr; 3773c3968a85SDaniel Walter }; 3774c3968a85SDaniel Walter 37758d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3776c3968a85SDaniel Walter { 3777c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3778c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3779c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3780c3968a85SDaniel Walter 3781ad1601aeSDavid Ahern if (((void *)rt->fib6_nh.fib_nh_dev == dev || !dev) && 3782421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 378393c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 378460006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3785c3968a85SDaniel Walter /* remove prefsrc entry */ 378693c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 378760006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3788c3968a85SDaniel Walter } 3789c3968a85SDaniel Walter return 0; 3790c3968a85SDaniel Walter } 3791c3968a85SDaniel Walter 3792c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3793c3968a85SDaniel Walter { 3794c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3795c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3796c3968a85SDaniel Walter .dev = ifp->idev->dev, 3797c3968a85SDaniel Walter .net = net, 3798c3968a85SDaniel Walter .addr = &ifp->addr, 3799c3968a85SDaniel Walter }; 38000c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3801c3968a85SDaniel Walter } 3802c3968a85SDaniel Walter 38032b2450caSDavid Ahern #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT) 3804be7a010dSDuan Jiong 3805be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38068d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3807be7a010dSDuan Jiong { 3808be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3809be7a010dSDuan Jiong 381093c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3811bdf00467SDavid Ahern rt->fib6_nh.fib_nh_gw_family && 3812ad1601aeSDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.fib_nh_gw6)) { 3813be7a010dSDuan Jiong return -1; 3814be7a010dSDuan Jiong } 3815b16cb459SWei Wang 3816b16cb459SWei Wang /* Further clean up cached routes in exception table. 3817b16cb459SWei Wang * This is needed because cached route may have a different 3818b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3819b16cb459SWei Wang */ 3820b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3821b16cb459SWei Wang 3822be7a010dSDuan Jiong return 0; 3823be7a010dSDuan Jiong } 3824be7a010dSDuan Jiong 3825be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3826be7a010dSDuan Jiong { 3827be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3828be7a010dSDuan Jiong } 3829be7a010dSDuan Jiong 38302127d95aSIdo Schimmel struct arg_netdev_event { 38312127d95aSIdo Schimmel const struct net_device *dev; 38324c981e28SIdo Schimmel union { 38332127d95aSIdo Schimmel unsigned int nh_flags; 38344c981e28SIdo Schimmel unsigned long event; 38354c981e28SIdo Schimmel }; 38362127d95aSIdo Schimmel }; 38372127d95aSIdo Schimmel 38388d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3839d7dedee1SIdo Schimmel { 38408d1c802bSDavid Ahern struct fib6_info *iter; 3841d7dedee1SIdo Schimmel struct fib6_node *fn; 3842d7dedee1SIdo Schimmel 384393c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 384493c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3845d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 384693c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3847d7dedee1SIdo Schimmel while (iter) { 384893c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 384933bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3850d7dedee1SIdo Schimmel return iter; 38518fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 385293c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3853d7dedee1SIdo Schimmel } 3854d7dedee1SIdo Schimmel 3855d7dedee1SIdo Schimmel return NULL; 3856d7dedee1SIdo Schimmel } 3857d7dedee1SIdo Schimmel 38588d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3859d7dedee1SIdo Schimmel { 3860ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD || 3861ad1601aeSDavid Ahern (rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 3862ad1601aeSDavid Ahern ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev))) 3863d7dedee1SIdo Schimmel return true; 3864d7dedee1SIdo Schimmel 3865d7dedee1SIdo Schimmel return false; 3866d7dedee1SIdo Schimmel } 3867d7dedee1SIdo Schimmel 38688d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3869d7dedee1SIdo Schimmel { 38708d1c802bSDavid Ahern struct fib6_info *iter; 3871d7dedee1SIdo Schimmel int total = 0; 3872d7dedee1SIdo Schimmel 3873d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 3874ad1601aeSDavid Ahern total += rt->fib6_nh.fib_nh_weight; 3875d7dedee1SIdo Schimmel 387693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3877d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 3878ad1601aeSDavid Ahern total += iter->fib6_nh.fib_nh_weight; 3879d7dedee1SIdo Schimmel } 3880d7dedee1SIdo Schimmel 3881d7dedee1SIdo Schimmel return total; 3882d7dedee1SIdo Schimmel } 3883d7dedee1SIdo Schimmel 38848d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3885d7dedee1SIdo Schimmel { 3886d7dedee1SIdo Schimmel int upper_bound = -1; 3887d7dedee1SIdo Schimmel 3888d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 3889ad1601aeSDavid Ahern *weight += rt->fib6_nh.fib_nh_weight; 3890d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3891d7dedee1SIdo Schimmel total) - 1; 3892d7dedee1SIdo Schimmel } 3893ad1601aeSDavid Ahern atomic_set(&rt->fib6_nh.fib_nh_upper_bound, upper_bound); 3894d7dedee1SIdo Schimmel } 3895d7dedee1SIdo Schimmel 38968d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3897d7dedee1SIdo Schimmel { 38988d1c802bSDavid Ahern struct fib6_info *iter; 3899d7dedee1SIdo Schimmel int weight = 0; 3900d7dedee1SIdo Schimmel 3901d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3902d7dedee1SIdo Schimmel 390393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3904d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3905d7dedee1SIdo Schimmel } 3906d7dedee1SIdo Schimmel 39078d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3908d7dedee1SIdo Schimmel { 39098d1c802bSDavid Ahern struct fib6_info *first; 3910d7dedee1SIdo Schimmel int total; 3911d7dedee1SIdo Schimmel 3912d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3913d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3914d7dedee1SIdo Schimmel * sibling route. 3915d7dedee1SIdo Schimmel */ 391693c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3917d7dedee1SIdo Schimmel return; 3918d7dedee1SIdo Schimmel 3919d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3920d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3921d7dedee1SIdo Schimmel * onwards. 3922d7dedee1SIdo Schimmel */ 3923d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3924d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3925d7dedee1SIdo Schimmel return; 3926d7dedee1SIdo Schimmel 3927d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3928d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3929d7dedee1SIdo Schimmel } 3930d7dedee1SIdo Schimmel 39318d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39322127d95aSIdo Schimmel { 39332127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39347aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39352127d95aSIdo Schimmel 3936ad1601aeSDavid Ahern if (rt != net->ipv6.fib6_null_entry && 3937ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_dev == arg->dev) { 3938ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags &= ~arg->nh_flags; 39397aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3940d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39411de178edSIdo Schimmel } 39422127d95aSIdo Schimmel 39432127d95aSIdo Schimmel return 0; 39442127d95aSIdo Schimmel } 39452127d95aSIdo Schimmel 39462127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39472127d95aSIdo Schimmel { 39482127d95aSIdo Schimmel struct arg_netdev_event arg = { 39492127d95aSIdo Schimmel .dev = dev, 39506802f3adSIdo Schimmel { 39512127d95aSIdo Schimmel .nh_flags = nh_flags, 39526802f3adSIdo Schimmel }, 39532127d95aSIdo Schimmel }; 39542127d95aSIdo Schimmel 39552127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39562127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39572127d95aSIdo Schimmel 39582127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39592127d95aSIdo Schimmel } 39602127d95aSIdo Schimmel 39618d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39621de178edSIdo Schimmel const struct net_device *dev) 39631de178edSIdo Schimmel { 39648d1c802bSDavid Ahern struct fib6_info *iter; 39651de178edSIdo Schimmel 3966ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 39671de178edSIdo Schimmel return true; 396893c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3969ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 39701de178edSIdo Schimmel return true; 39711de178edSIdo Schimmel 39721de178edSIdo Schimmel return false; 39731de178edSIdo Schimmel } 39741de178edSIdo Schimmel 39758d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39761de178edSIdo Schimmel { 39778d1c802bSDavid Ahern struct fib6_info *iter; 39781de178edSIdo Schimmel 39791de178edSIdo Schimmel rt->should_flush = 1; 398093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39811de178edSIdo Schimmel iter->should_flush = 1; 39821de178edSIdo Schimmel } 39831de178edSIdo Schimmel 39848d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39851de178edSIdo Schimmel const struct net_device *down_dev) 39861de178edSIdo Schimmel { 39878d1c802bSDavid Ahern struct fib6_info *iter; 39881de178edSIdo Schimmel unsigned int dead = 0; 39891de178edSIdo Schimmel 3990ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == down_dev || 3991ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 39921de178edSIdo Schimmel dead++; 399393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3994ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == down_dev || 3995ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 39961de178edSIdo Schimmel dead++; 39971de178edSIdo Schimmel 39981de178edSIdo Schimmel return dead; 39991de178edSIdo Schimmel } 40001de178edSIdo Schimmel 40018d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40021de178edSIdo Schimmel const struct net_device *dev, 40031de178edSIdo Schimmel unsigned int nh_flags) 40041de178edSIdo Schimmel { 40058d1c802bSDavid Ahern struct fib6_info *iter; 40061de178edSIdo Schimmel 4007ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 4008ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= nh_flags; 400993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4010ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 4011ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags |= nh_flags; 40121de178edSIdo Schimmel } 40131de178edSIdo Schimmel 4014a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40158d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40161da177e4SLinus Torvalds { 40174c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40184c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40197aef6859SDavid Ahern struct net *net = dev_net(dev); 40208ed67789SDaniel Lezcano 4021421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 402227c6fa73SIdo Schimmel return 0; 402327c6fa73SIdo Schimmel 402427c6fa73SIdo Schimmel switch (arg->event) { 402527c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 4026ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 402727c6fa73SIdo Schimmel case NETDEV_DOWN: 40281de178edSIdo Schimmel if (rt->should_flush) 402927c6fa73SIdo Schimmel return -1; 403093c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 4031ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 40321de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40331de178edSIdo Schimmel unsigned int count; 40341de178edSIdo Schimmel 40351de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 403693c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40371de178edSIdo Schimmel rt6_multipath_flush(rt); 40381de178edSIdo Schimmel return -1; 40391de178edSIdo Schimmel } 40401de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40411de178edSIdo Schimmel RTNH_F_LINKDOWN); 40427aef6859SDavid Ahern fib6_update_sernum(net, rt); 4043d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40441de178edSIdo Schimmel } 40451de178edSIdo Schimmel return -2; 404627c6fa73SIdo Schimmel case NETDEV_CHANGE: 4047ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev != dev || 404893c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 404927c6fa73SIdo Schimmel break; 4050ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= RTNH_F_LINKDOWN; 4051d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 405227c6fa73SIdo Schimmel break; 40532b241361SIdo Schimmel } 4054c159d30cSDavid S. Miller 40551da177e4SLinus Torvalds return 0; 40561da177e4SLinus Torvalds } 40571da177e4SLinus Torvalds 405827c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40591da177e4SLinus Torvalds { 40604c981e28SIdo Schimmel struct arg_netdev_event arg = { 40618ed67789SDaniel Lezcano .dev = dev, 40626802f3adSIdo Schimmel { 40634c981e28SIdo Schimmel .event = event, 40646802f3adSIdo Schimmel }, 40658ed67789SDaniel Lezcano }; 40667c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 40678ed67789SDaniel Lezcano 40687c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 40697c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 40707c6bb7d2SDavid Ahern else 40717c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 40724c981e28SIdo Schimmel } 40734c981e28SIdo Schimmel 40744c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40754c981e28SIdo Schimmel { 40764c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40774c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40784c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40791da177e4SLinus Torvalds } 40801da177e4SLinus Torvalds 408195c96174SEric Dumazet struct rt6_mtu_change_arg { 40821da177e4SLinus Torvalds struct net_device *dev; 408395c96174SEric Dumazet unsigned int mtu; 40841da177e4SLinus Torvalds }; 40851da177e4SLinus Torvalds 40868d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40871da177e4SLinus Torvalds { 40881da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40891da177e4SLinus Torvalds struct inet6_dev *idev; 40901da177e4SLinus Torvalds 40911da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 40921da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 40931da177e4SLinus Torvalds We still use this lock to block changes 40941da177e4SLinus Torvalds caused by addrconf/ndisc. 40951da177e4SLinus Torvalds */ 40961da177e4SLinus Torvalds 40971da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 409838308473SDavid S. Miller if (!idev) 40991da177e4SLinus Torvalds return 0; 41001da177e4SLinus Torvalds 41011da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41021da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41031da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41041da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41051da177e4SLinus Torvalds */ 4106ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == arg->dev && 4107d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4108d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4109d4ead6b3SDavid Ahern 4110d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4111d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4112d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4113d4ead6b3SDavid Ahern 4114f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4115e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4116f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41174b32b5adSMartin KaFai Lau } 41181da177e4SLinus Torvalds return 0; 41191da177e4SLinus Torvalds } 41201da177e4SLinus Torvalds 412195c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41221da177e4SLinus Torvalds { 4123c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4124c71099acSThomas Graf .dev = dev, 4125c71099acSThomas Graf .mtu = mtu, 4126c71099acSThomas Graf }; 41271da177e4SLinus Torvalds 41280c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41291da177e4SLinus Torvalds } 41301da177e4SLinus Torvalds 4131ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41325176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4133aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 413486872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4135ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 413686872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 413786872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 413851ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4139c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 414019e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 414119e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 414232bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4143622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41443b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4145aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4146eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4147eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4148eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 414986872cb5SThomas Graf }; 415086872cb5SThomas Graf 415186872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4152333c4301SDavid Ahern struct fib6_config *cfg, 4153333c4301SDavid Ahern struct netlink_ext_ack *extack) 41541da177e4SLinus Torvalds { 415586872cb5SThomas Graf struct rtmsg *rtm; 415686872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4157c78ba6d6SLubomir Rintel unsigned int pref; 415886872cb5SThomas Graf int err; 41591da177e4SLinus Torvalds 4160fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4161dac9c979SDavid Ahern extack); 416286872cb5SThomas Graf if (err < 0) 416386872cb5SThomas Graf goto errout; 41641da177e4SLinus Torvalds 416586872cb5SThomas Graf err = -EINVAL; 416686872cb5SThomas Graf rtm = nlmsg_data(nlh); 416786872cb5SThomas Graf 416884db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 416984db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 417084db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 417184db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 417284db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 417384db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 417484db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 417584db8407SMaciej Żenczykowski 417684db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 417784db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 417884db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 417984db8407SMaciej Żenczykowski }; 418086872cb5SThomas Graf 4181ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4182ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4183b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4184b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 418586872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 418686872cb5SThomas Graf 4187ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4188ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4189ab79ad14SMaciej Żenczykowski 41901f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41911f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41921f56a01fSMartin KaFai Lau 4193fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4194fc1e64e1SDavid Ahern 419586872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 419667b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 419786872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 41981da177e4SLinus Torvalds } 4199e3818541SDavid Ahern if (tb[RTA_VIA]) { 4200e3818541SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute"); 4201e3818541SDavid Ahern goto errout; 4202e3818541SDavid Ahern } 420386872cb5SThomas Graf 420486872cb5SThomas Graf if (tb[RTA_DST]) { 420586872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 420686872cb5SThomas Graf 420786872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 420886872cb5SThomas Graf goto errout; 420986872cb5SThomas Graf 421086872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42111da177e4SLinus Torvalds } 421286872cb5SThomas Graf 421386872cb5SThomas Graf if (tb[RTA_SRC]) { 421486872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 421586872cb5SThomas Graf 421686872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 421786872cb5SThomas Graf goto errout; 421886872cb5SThomas Graf 421986872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42201da177e4SLinus Torvalds } 422186872cb5SThomas Graf 4222c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 422367b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4224c3968a85SDaniel Walter 422586872cb5SThomas Graf if (tb[RTA_OIF]) 422686872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 422786872cb5SThomas Graf 422886872cb5SThomas Graf if (tb[RTA_PRIORITY]) 422986872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 423086872cb5SThomas Graf 423186872cb5SThomas Graf if (tb[RTA_METRICS]) { 423286872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 423386872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42341da177e4SLinus Torvalds } 423586872cb5SThomas Graf 423686872cb5SThomas Graf if (tb[RTA_TABLE]) 423786872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 423886872cb5SThomas Graf 423951ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 424051ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 424151ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42429ed59592SDavid Ahern 42439ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4244c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42459ed59592SDavid Ahern if (err < 0) 42469ed59592SDavid Ahern goto errout; 424751ebd318SNicolas Dichtel } 424851ebd318SNicolas Dichtel 4249c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4250c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4251c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4252c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4253c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4254c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4255c78ba6d6SLubomir Rintel } 4256c78ba6d6SLubomir Rintel 425719e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 425819e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 425919e42e45SRoopa Prabhu 42609ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 426119e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 426219e42e45SRoopa Prabhu 4263c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42649ed59592SDavid Ahern if (err < 0) 42659ed59592SDavid Ahern goto errout; 42669ed59592SDavid Ahern } 42679ed59592SDavid Ahern 426832bc201eSXin Long if (tb[RTA_EXPIRES]) { 426932bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 427032bc201eSXin Long 427132bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 427232bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 427332bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 427432bc201eSXin Long } 427532bc201eSXin Long } 427632bc201eSXin Long 427786872cb5SThomas Graf err = 0; 427886872cb5SThomas Graf errout: 427986872cb5SThomas Graf return err; 42801da177e4SLinus Torvalds } 42811da177e4SLinus Torvalds 42826b9ea5a6SRoopa Prabhu struct rt6_nh { 42838d1c802bSDavid Ahern struct fib6_info *fib6_info; 42846b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42856b9ea5a6SRoopa Prabhu struct list_head next; 42866b9ea5a6SRoopa Prabhu }; 42876b9ea5a6SRoopa Prabhu 4288d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4289d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 42908d1c802bSDavid Ahern struct fib6_info *rt, 42918d1c802bSDavid Ahern struct fib6_config *r_cfg) 42926b9ea5a6SRoopa Prabhu { 42936b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42946b9ea5a6SRoopa Prabhu int err = -EEXIST; 42956b9ea5a6SRoopa Prabhu 42966b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42978d1c802bSDavid Ahern /* check if fib6_info already exists */ 42988d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 42996b9ea5a6SRoopa Prabhu return err; 43006b9ea5a6SRoopa Prabhu } 43016b9ea5a6SRoopa Prabhu 43026b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43036b9ea5a6SRoopa Prabhu if (!nh) 43046b9ea5a6SRoopa Prabhu return -ENOMEM; 43058d1c802bSDavid Ahern nh->fib6_info = rt; 43066b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43076b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43086b9ea5a6SRoopa Prabhu 43096b9ea5a6SRoopa Prabhu return 0; 43106b9ea5a6SRoopa Prabhu } 43116b9ea5a6SRoopa Prabhu 43128d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43138d1c802bSDavid Ahern struct fib6_info *rt_last, 43143b1137feSDavid Ahern struct nl_info *info, 43153b1137feSDavid Ahern __u16 nlflags) 43163b1137feSDavid Ahern { 43173b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43183b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43193b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43203b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43213b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43223b1137feSDavid Ahern */ 432393c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 432493c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43258d1c802bSDavid Ahern struct fib6_info, 432693c2fb25SDavid Ahern fib6_siblings); 43273b1137feSDavid Ahern } 43283b1137feSDavid Ahern 43293b1137feSDavid Ahern if (rt) 43303b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43313b1137feSDavid Ahern } 43323b1137feSDavid Ahern 4333333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4334333c4301SDavid Ahern struct netlink_ext_ack *extack) 433551ebd318SNicolas Dichtel { 43368d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43373b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 433851ebd318SNicolas Dichtel struct fib6_config r_cfg; 433951ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43408d1c802bSDavid Ahern struct fib6_info *rt; 43416b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43426b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43433b1137feSDavid Ahern __u16 nlflags; 434451ebd318SNicolas Dichtel int remaining; 434551ebd318SNicolas Dichtel int attrlen; 43466b9ea5a6SRoopa Prabhu int err = 1; 43476b9ea5a6SRoopa Prabhu int nhn = 0; 43486b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43496b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43506b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 435151ebd318SNicolas Dichtel 43523b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43533b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43543b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43553b1137feSDavid Ahern 435635f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 435751ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 435851ebd318SNicolas Dichtel 43596b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43608d1c802bSDavid Ahern * fib6_info structs per nexthop 43616b9ea5a6SRoopa Prabhu */ 436251ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 436351ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 436451ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 436551ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 436651ebd318SNicolas Dichtel 436751ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 436851ebd318SNicolas Dichtel if (attrlen > 0) { 436951ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 437051ebd318SNicolas Dichtel 437151ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 437251ebd318SNicolas Dichtel if (nla) { 437367b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 437451ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 437551ebd318SNicolas Dichtel } 437619e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 437719e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 437819e42e45SRoopa Prabhu if (nla) 437919e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 438051ebd318SNicolas Dichtel } 43816b9ea5a6SRoopa Prabhu 438268e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4383acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43848c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43858c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43868c5b83f0SRoopa Prabhu rt = NULL; 43876b9ea5a6SRoopa Prabhu goto cleanup; 43888c5b83f0SRoopa Prabhu } 4389b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4390b5d2d75eSDavid Ahern err = -EINVAL; 4391b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4392b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4393b5d2d75eSDavid Ahern fib6_info_release(rt); 4394b5d2d75eSDavid Ahern goto cleanup; 4395b5d2d75eSDavid Ahern } 43966b9ea5a6SRoopa Prabhu 4397ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_weight = rtnh->rtnh_hops + 1; 4398398958aeSIdo Schimmel 4399d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4400d4ead6b3SDavid Ahern rt, &r_cfg); 440151ebd318SNicolas Dichtel if (err) { 440293531c67SDavid Ahern fib6_info_release(rt); 44036b9ea5a6SRoopa Prabhu goto cleanup; 440451ebd318SNicolas Dichtel } 44056b9ea5a6SRoopa Prabhu 44066b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 440751ebd318SNicolas Dichtel } 44086b9ea5a6SRoopa Prabhu 44093b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44103b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44113b1137feSDavid Ahern * the full route when done 44123b1137feSDavid Ahern */ 44133b1137feSDavid Ahern info->skip_notify = 1; 44143b1137feSDavid Ahern 44156b9ea5a6SRoopa Prabhu err_nh = NULL; 44166b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44178d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44188d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44193b1137feSDavid Ahern 4420f7225172SDavid Ahern if (!err) { 4421f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4422f7225172SDavid Ahern rt_last = nh->fib6_info; 4423f7225172SDavid Ahern 44246b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4425f7225172SDavid Ahern if (!rt_notif) 44268d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4427f7225172SDavid Ahern } 44286b9ea5a6SRoopa Prabhu 44298d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44308d1c802bSDavid Ahern nh->fib6_info = NULL; 44316b9ea5a6SRoopa Prabhu if (err) { 44326b9ea5a6SRoopa Prabhu if (replace && nhn) 4433a5a82d84SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 4434a5a82d84SJakub Kicinski "multipath route replace failed (check consistency of installed routes)"); 44356b9ea5a6SRoopa Prabhu err_nh = nh; 44366b9ea5a6SRoopa Prabhu goto add_errout; 44376b9ea5a6SRoopa Prabhu } 44386b9ea5a6SRoopa Prabhu 44391a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 444027596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 444127596472SMichal Kubeček * we have already failed to add the first nexthop: 444227596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 444327596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 444427596472SMichal Kubeček * be added to it. 44451a72418bSNicolas Dichtel */ 444627596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 444727596472SMichal Kubeček NLM_F_REPLACE); 44486b9ea5a6SRoopa Prabhu nhn++; 44496b9ea5a6SRoopa Prabhu } 44506b9ea5a6SRoopa Prabhu 44513b1137feSDavid Ahern /* success ... tell user about new route */ 44523b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44536b9ea5a6SRoopa Prabhu goto cleanup; 44546b9ea5a6SRoopa Prabhu 44556b9ea5a6SRoopa Prabhu add_errout: 44563b1137feSDavid Ahern /* send notification for routes that were added so that 44573b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44583b1137feSDavid Ahern * coherent 44593b1137feSDavid Ahern */ 44603b1137feSDavid Ahern if (rt_notif) 44613b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44623b1137feSDavid Ahern 44636b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44646b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44656b9ea5a6SRoopa Prabhu if (err_nh == nh) 44666b9ea5a6SRoopa Prabhu break; 4467333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44686b9ea5a6SRoopa Prabhu } 44696b9ea5a6SRoopa Prabhu 44706b9ea5a6SRoopa Prabhu cleanup: 44716b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44728d1c802bSDavid Ahern if (nh->fib6_info) 44738d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44746b9ea5a6SRoopa Prabhu list_del(&nh->next); 44756b9ea5a6SRoopa Prabhu kfree(nh); 44766b9ea5a6SRoopa Prabhu } 44776b9ea5a6SRoopa Prabhu 44786b9ea5a6SRoopa Prabhu return err; 44796b9ea5a6SRoopa Prabhu } 44806b9ea5a6SRoopa Prabhu 4481333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4482333c4301SDavid Ahern struct netlink_ext_ack *extack) 44836b9ea5a6SRoopa Prabhu { 44846b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44856b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44866b9ea5a6SRoopa Prabhu int remaining; 44876b9ea5a6SRoopa Prabhu int attrlen; 44886b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 44896b9ea5a6SRoopa Prabhu 44906b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 44916b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 44926b9ea5a6SRoopa Prabhu 44936b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 44946b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 44956b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 44966b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 44976b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 44986b9ea5a6SRoopa Prabhu 44996b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45006b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45016b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45026b9ea5a6SRoopa Prabhu 45036b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45046b9ea5a6SRoopa Prabhu if (nla) { 45056b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45066b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45076b9ea5a6SRoopa Prabhu } 45086b9ea5a6SRoopa Prabhu } 4509333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45106b9ea5a6SRoopa Prabhu if (err) 45116b9ea5a6SRoopa Prabhu last_err = err; 45126b9ea5a6SRoopa Prabhu 451351ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 451451ebd318SNicolas Dichtel } 451551ebd318SNicolas Dichtel 451651ebd318SNicolas Dichtel return last_err; 451751ebd318SNicolas Dichtel } 451851ebd318SNicolas Dichtel 4519c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4520c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45211da177e4SLinus Torvalds { 452286872cb5SThomas Graf struct fib6_config cfg; 452386872cb5SThomas Graf int err; 45241da177e4SLinus Torvalds 4525333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 452686872cb5SThomas Graf if (err < 0) 452786872cb5SThomas Graf return err; 452886872cb5SThomas Graf 452951ebd318SNicolas Dichtel if (cfg.fc_mp) 4530333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45310ae81335SDavid Ahern else { 45320ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4533333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45341da177e4SLinus Torvalds } 45350ae81335SDavid Ahern } 45361da177e4SLinus Torvalds 4537c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4538c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45391da177e4SLinus Torvalds { 454086872cb5SThomas Graf struct fib6_config cfg; 454186872cb5SThomas Graf int err; 45421da177e4SLinus Torvalds 4543333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 454486872cb5SThomas Graf if (err < 0) 454586872cb5SThomas Graf return err; 454686872cb5SThomas Graf 454767f69513SDavid Ahern if (cfg.fc_metric == 0) 454867f69513SDavid Ahern cfg.fc_metric = IP6_RT_PRIO_USER; 454967f69513SDavid Ahern 455051ebd318SNicolas Dichtel if (cfg.fc_mp) 4551333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 455251ebd318SNicolas Dichtel else 4553acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45541da177e4SLinus Torvalds } 45551da177e4SLinus Torvalds 45568d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4557339bf98fSThomas Graf { 4558beb1afacSDavid Ahern int nexthop_len = 0; 4559beb1afacSDavid Ahern 456093c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4561beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4562beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4563beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4564ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws); 4565beb1afacSDavid Ahern 456693c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4567beb1afacSDavid Ahern } 4568beb1afacSDavid Ahern 4569339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4570339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4571339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4572339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4573339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4574339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4575339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4576339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4577339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45786a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4579ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4580c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 458119e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4582ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws) 4583beb1afacSDavid Ahern + nexthop_len; 4584beb1afacSDavid Ahern } 4585beb1afacSDavid Ahern 4586d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 45878d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4588d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 458915e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4590f8cfe2ceSDavid Ahern unsigned int flags) 45911da177e4SLinus Torvalds { 459222d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 459322d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 459422d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 45951da177e4SLinus Torvalds struct nlmsghdr *nlh; 459622d0bd82SXin Long struct rtmsg *rtm; 4597d4ead6b3SDavid Ahern long expires = 0; 45981da177e4SLinus Torvalds 459915e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 460038308473SDavid S. Miller if (!nlh) 460126932566SPatrick McHardy return -EMSGSIZE; 46022d7202bfSThomas Graf 460322d0bd82SXin Long if (rt6) { 460422d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 460522d0bd82SXin Long rt6_src = &rt6->rt6i_src; 460622d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 460722d0bd82SXin Long } else { 460822d0bd82SXin Long rt6_dst = &rt->fib6_dst; 460922d0bd82SXin Long rt6_src = &rt->fib6_src; 461022d0bd82SXin Long rt6_flags = rt->fib6_flags; 461122d0bd82SXin Long } 461222d0bd82SXin Long 46132d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46141da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 461522d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 461622d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46171da177e4SLinus Torvalds rtm->rtm_tos = 0; 461893c2fb25SDavid Ahern if (rt->fib6_table) 461993c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4620c71099acSThomas Graf else 46219e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 462297f0082aSKalash Nainwal rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT; 4623c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4624c78679e8SDavid S. Miller goto nla_put_failure; 4625e8478e80SDavid Ahern 4626e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46271da177e4SLinus Torvalds rtm->rtm_flags = 0; 46281da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 462993c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46301da177e4SLinus Torvalds 463122d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46321da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46331da177e4SLinus Torvalds 4634d4ead6b3SDavid Ahern if (dest) { 4635d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4636c78679e8SDavid S. Miller goto nla_put_failure; 46371da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46381da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 463922d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4640c78679e8SDavid S. Miller goto nla_put_failure; 46411da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46421da177e4SLinus Torvalds if (src) { 4643930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4644c78679e8SDavid S. Miller goto nla_put_failure; 46451da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4646c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 464722d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4648c78679e8SDavid S. Miller goto nla_put_failure; 46491da177e4SLinus Torvalds #endif 46507bc570c8SYOSHIFUJI Hideaki if (iif) { 46517bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 465222d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4653fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 46542cf75070SNikolay Aleksandrov 46557bc570c8SYOSHIFUJI Hideaki if (err == 0) 46567bc570c8SYOSHIFUJI Hideaki return 0; 4657fd61c6baSDavid Ahern if (err < 0) 46587bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 46597bc570c8SYOSHIFUJI Hideaki } else 46607bc570c8SYOSHIFUJI Hideaki #endif 4661c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4662c78679e8SDavid S. Miller goto nla_put_failure; 4663d4ead6b3SDavid Ahern } else if (dest) { 46641da177e4SLinus Torvalds struct in6_addr saddr_buf; 4665d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4666930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4667c78679e8SDavid S. Miller goto nla_put_failure; 4668c3968a85SDaniel Walter } 4669c3968a85SDaniel Walter 467093c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4671c3968a85SDaniel Walter struct in6_addr saddr_buf; 467293c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4673930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4674c78679e8SDavid S. Miller goto nla_put_failure; 46751da177e4SLinus Torvalds } 46762d7202bfSThomas Graf 4677d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4678d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 46792d7202bfSThomas Graf goto nla_put_failure; 46802d7202bfSThomas Graf 468193c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4682beb1afacSDavid Ahern goto nla_put_failure; 4683beb1afacSDavid Ahern 4684beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4685beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4686beb1afacSDavid Ahern */ 468722d0bd82SXin Long if (rt6) { 468822d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 468922d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 469022d0bd82SXin Long goto nla_put_failure; 469122d0bd82SXin Long 469222d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 469322d0bd82SXin Long goto nla_put_failure; 469422d0bd82SXin Long } else if (rt->fib6_nsiblings) { 46958d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4696beb1afacSDavid Ahern struct nlattr *mp; 4697beb1afacSDavid Ahern 4698beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4699beb1afacSDavid Ahern if (!mp) 4700beb1afacSDavid Ahern goto nla_put_failure; 4701beb1afacSDavid Ahern 4702c0a72077SDavid Ahern if (fib_add_nexthop(skb, &rt->fib6_nh.nh_common, 4703c0a72077SDavid Ahern rt->fib6_nh.fib_nh_weight) < 0) 4704beb1afacSDavid Ahern goto nla_put_failure; 4705beb1afacSDavid Ahern 4706beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 470793c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4708c0a72077SDavid Ahern if (fib_add_nexthop(skb, &sibling->fib6_nh.nh_common, 4709c0a72077SDavid Ahern sibling->fib6_nh.fib_nh_weight) < 0) 471094f826b8SEric Dumazet goto nla_put_failure; 471194f826b8SEric Dumazet } 47122d7202bfSThomas Graf 4713beb1afacSDavid Ahern nla_nest_end(skb, mp); 4714beb1afacSDavid Ahern } else { 4715c0a72077SDavid Ahern if (fib_nexthop_info(skb, &rt->fib6_nh.nh_common, 4716c0a72077SDavid Ahern &rtm->rtm_flags, false) < 0) 4717c78679e8SDavid S. Miller goto nla_put_failure; 4718beb1afacSDavid Ahern } 47198253947eSLi Wei 472022d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 472114895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 472214895687SDavid Ahern expires -= jiffies; 472314895687SDavid Ahern } 472469cdf8f9SYOSHIFUJI Hideaki 4725d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4726e3703b3dSThomas Graf goto nla_put_failure; 47271da177e4SLinus Torvalds 472822d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4729c78ba6d6SLubomir Rintel goto nla_put_failure; 4730c78ba6d6SLubomir Rintel 473119e42e45SRoopa Prabhu 4732053c095aSJohannes Berg nlmsg_end(skb, nlh); 4733053c095aSJohannes Berg return 0; 47342d7202bfSThomas Graf 47352d7202bfSThomas Graf nla_put_failure: 473626932566SPatrick McHardy nlmsg_cancel(skb, nlh); 473726932566SPatrick McHardy return -EMSGSIZE; 47381da177e4SLinus Torvalds } 47391da177e4SLinus Torvalds 474013e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 474113e38901SDavid Ahern const struct net_device *dev) 474213e38901SDavid Ahern { 4743ad1601aeSDavid Ahern if (f6i->fib6_nh.fib_nh_dev == dev) 474413e38901SDavid Ahern return true; 474513e38901SDavid Ahern 474613e38901SDavid Ahern if (f6i->fib6_nsiblings) { 474713e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 474813e38901SDavid Ahern 474913e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 475013e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 4751ad1601aeSDavid Ahern if (sibling->fib6_nh.fib_nh_dev == dev) 475213e38901SDavid Ahern return true; 475313e38901SDavid Ahern } 475413e38901SDavid Ahern } 475513e38901SDavid Ahern 475613e38901SDavid Ahern return false; 475713e38901SDavid Ahern } 475813e38901SDavid Ahern 47598d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47601da177e4SLinus Torvalds { 47611da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 476213e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 476313e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 47641f17e2f2SDavid Ahern struct net *net = arg->net; 47651f17e2f2SDavid Ahern 4766421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 47671f17e2f2SDavid Ahern return 0; 47681da177e4SLinus Torvalds 476913e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 477093c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4771f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4772f8cfe2ceSDavid Ahern return 1; 4773f8cfe2ceSDavid Ahern } 477413e38901SDavid Ahern if (filter->filter_set) { 477513e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 477613e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 477713e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 477813e38901SDavid Ahern return 1; 477913e38901SDavid Ahern } 478013e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4781f8cfe2ceSDavid Ahern } 47821da177e4SLinus Torvalds 4783d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4784d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 478513e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 47861da177e4SLinus Torvalds } 47871da177e4SLinus Torvalds 47880eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb, 47890eff0a27SJakub Kicinski const struct nlmsghdr *nlh, 47900eff0a27SJakub Kicinski struct nlattr **tb, 47910eff0a27SJakub Kicinski struct netlink_ext_ack *extack) 47920eff0a27SJakub Kicinski { 47930eff0a27SJakub Kicinski struct rtmsg *rtm; 47940eff0a27SJakub Kicinski int i, err; 47950eff0a27SJakub Kicinski 47960eff0a27SJakub Kicinski if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) { 47970eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 47980eff0a27SJakub Kicinski "Invalid header for get route request"); 47990eff0a27SJakub Kicinski return -EINVAL; 48000eff0a27SJakub Kicinski } 48010eff0a27SJakub Kicinski 48020eff0a27SJakub Kicinski if (!netlink_strict_get_check(skb)) 48030eff0a27SJakub Kicinski return nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, 48040eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48050eff0a27SJakub Kicinski 48060eff0a27SJakub Kicinski rtm = nlmsg_data(nlh); 48070eff0a27SJakub Kicinski if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) || 48080eff0a27SJakub Kicinski (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) || 48090eff0a27SJakub Kicinski rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope || 48100eff0a27SJakub Kicinski rtm->rtm_type) { 48110eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request"); 48120eff0a27SJakub Kicinski return -EINVAL; 48130eff0a27SJakub Kicinski } 48140eff0a27SJakub Kicinski if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) { 48150eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48160eff0a27SJakub Kicinski "Invalid flags for get route request"); 48170eff0a27SJakub Kicinski return -EINVAL; 48180eff0a27SJakub Kicinski } 48190eff0a27SJakub Kicinski 48200eff0a27SJakub Kicinski err = nlmsg_parse_strict(nlh, sizeof(*rtm), tb, RTA_MAX, 48210eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48220eff0a27SJakub Kicinski if (err) 48230eff0a27SJakub Kicinski return err; 48240eff0a27SJakub Kicinski 48250eff0a27SJakub Kicinski if ((tb[RTA_SRC] && !rtm->rtm_src_len) || 48260eff0a27SJakub Kicinski (tb[RTA_DST] && !rtm->rtm_dst_len)) { 48270eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6"); 48280eff0a27SJakub Kicinski return -EINVAL; 48290eff0a27SJakub Kicinski } 48300eff0a27SJakub Kicinski 48310eff0a27SJakub Kicinski for (i = 0; i <= RTA_MAX; i++) { 48320eff0a27SJakub Kicinski if (!tb[i]) 48330eff0a27SJakub Kicinski continue; 48340eff0a27SJakub Kicinski 48350eff0a27SJakub Kicinski switch (i) { 48360eff0a27SJakub Kicinski case RTA_SRC: 48370eff0a27SJakub Kicinski case RTA_DST: 48380eff0a27SJakub Kicinski case RTA_IIF: 48390eff0a27SJakub Kicinski case RTA_OIF: 48400eff0a27SJakub Kicinski case RTA_MARK: 48410eff0a27SJakub Kicinski case RTA_UID: 48420eff0a27SJakub Kicinski case RTA_SPORT: 48430eff0a27SJakub Kicinski case RTA_DPORT: 48440eff0a27SJakub Kicinski case RTA_IP_PROTO: 48450eff0a27SJakub Kicinski break; 48460eff0a27SJakub Kicinski default: 48470eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request"); 48480eff0a27SJakub Kicinski return -EINVAL; 48490eff0a27SJakub Kicinski } 48500eff0a27SJakub Kicinski } 48510eff0a27SJakub Kicinski 48520eff0a27SJakub Kicinski return 0; 48530eff0a27SJakub Kicinski } 48540eff0a27SJakub Kicinski 4855c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4856c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48571da177e4SLinus Torvalds { 48583b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4859ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 486018c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4861a68886a6SDavid Ahern struct fib6_info *from; 486218c3a61cSRoopa Prabhu struct dst_entry *dst; 48631da177e4SLinus Torvalds struct rt6_info *rt; 4864ab364a6fSThomas Graf struct sk_buff *skb; 4865ab364a6fSThomas Graf struct rtmsg *rtm; 4866744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 486718c3a61cSRoopa Prabhu bool fibmatch; 4868ab364a6fSThomas Graf 48690eff0a27SJakub Kicinski err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack); 4870ab364a6fSThomas Graf if (err < 0) 4871ab364a6fSThomas Graf goto errout; 4872ab364a6fSThomas Graf 4873ab364a6fSThomas Graf err = -EINVAL; 487438b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 487538b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 487618c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4877ab364a6fSThomas Graf 4878ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4879ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4880ab364a6fSThomas Graf goto errout; 4881ab364a6fSThomas Graf 48824e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4883ab364a6fSThomas Graf } 4884ab364a6fSThomas Graf 4885ab364a6fSThomas Graf if (tb[RTA_DST]) { 4886ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4887ab364a6fSThomas Graf goto errout; 4888ab364a6fSThomas Graf 48894e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4890ab364a6fSThomas Graf } 4891ab364a6fSThomas Graf 4892ab364a6fSThomas Graf if (tb[RTA_IIF]) 4893ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4894ab364a6fSThomas Graf 4895ab364a6fSThomas Graf if (tb[RTA_OIF]) 489672331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4897ab364a6fSThomas Graf 48982e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48992e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 49002e47b291SLorenzo Colitti 4901622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4902622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4903622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4904622ec2c9SLorenzo Colitti else 4905622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4906622ec2c9SLorenzo Colitti 4907eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4908eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4909eacb9384SRoopa Prabhu 4910eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4911eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4912eacb9384SRoopa Prabhu 4913eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4914eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 49155e1a99eaSHangbin Liu &fl6.flowi6_proto, AF_INET6, 49165e1a99eaSHangbin Liu extack); 4917eacb9384SRoopa Prabhu if (err) 4918eacb9384SRoopa Prabhu goto errout; 4919eacb9384SRoopa Prabhu } 4920eacb9384SRoopa Prabhu 4921ab364a6fSThomas Graf if (iif) { 4922ab364a6fSThomas Graf struct net_device *dev; 492372331bc0SShmulik Ladkani int flags = 0; 492472331bc0SShmulik Ladkani 4925121622dbSFlorian Westphal rcu_read_lock(); 4926121622dbSFlorian Westphal 4927121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4928ab364a6fSThomas Graf if (!dev) { 4929121622dbSFlorian Westphal rcu_read_unlock(); 4930ab364a6fSThomas Graf err = -ENODEV; 4931ab364a6fSThomas Graf goto errout; 4932ab364a6fSThomas Graf } 493372331bc0SShmulik Ladkani 493472331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 493572331bc0SShmulik Ladkani 493672331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 493772331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 493872331bc0SShmulik Ladkani 4939b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4940121622dbSFlorian Westphal 4941121622dbSFlorian Westphal rcu_read_unlock(); 494272331bc0SShmulik Ladkani } else { 494372331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 494472331bc0SShmulik Ladkani 494518c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 494618c3a61cSRoopa Prabhu } 494718c3a61cSRoopa Prabhu 494818c3a61cSRoopa Prabhu 494918c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 495018c3a61cSRoopa Prabhu if (rt->dst.error) { 495118c3a61cSRoopa Prabhu err = rt->dst.error; 495218c3a61cSRoopa Prabhu ip6_rt_put(rt); 495318c3a61cSRoopa Prabhu goto errout; 4954ab364a6fSThomas Graf } 49551da177e4SLinus Torvalds 49569d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49579d6acb3bSWANG Cong err = rt->dst.error; 49589d6acb3bSWANG Cong ip6_rt_put(rt); 49599d6acb3bSWANG Cong goto errout; 49609d6acb3bSWANG Cong } 49619d6acb3bSWANG Cong 49621da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 496338308473SDavid S. Miller if (!skb) { 496494e187c0SAmerigo Wang ip6_rt_put(rt); 4965ab364a6fSThomas Graf err = -ENOBUFS; 4966ab364a6fSThomas Graf goto errout; 4967ab364a6fSThomas Graf } 49681da177e4SLinus Torvalds 4969d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4970a68886a6SDavid Ahern 4971a68886a6SDavid Ahern rcu_read_lock(); 4972a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4973a68886a6SDavid Ahern 497418c3a61cSRoopa Prabhu if (fibmatch) 4975a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 497618c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 497718c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 497818c3a61cSRoopa Prabhu else 4979a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4980a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4981d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4982d4ead6b3SDavid Ahern 0); 4983a68886a6SDavid Ahern rcu_read_unlock(); 4984a68886a6SDavid Ahern 49851da177e4SLinus Torvalds if (err < 0) { 4986ab364a6fSThomas Graf kfree_skb(skb); 4987ab364a6fSThomas Graf goto errout; 49881da177e4SLinus Torvalds } 49891da177e4SLinus Torvalds 499015e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4991ab364a6fSThomas Graf errout: 49921da177e4SLinus Torvalds return err; 49931da177e4SLinus Torvalds } 49941da177e4SLinus Torvalds 49958d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 499637a1d361SRoopa Prabhu unsigned int nlm_flags) 49971da177e4SLinus Torvalds { 49981da177e4SLinus Torvalds struct sk_buff *skb; 49995578689aSDaniel Lezcano struct net *net = info->nl_net; 5000528c4cebSDenis V. Lunev u32 seq; 5001528c4cebSDenis V. Lunev int err; 50020d51aa80SJamal Hadi Salim 5003528c4cebSDenis V. Lunev err = -ENOBUFS; 500438308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 500586872cb5SThomas Graf 500619e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 500738308473SDavid S. Miller if (!skb) 500821713ebcSThomas Graf goto errout; 50091da177e4SLinus Torvalds 5010d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5011f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 501226932566SPatrick McHardy if (err < 0) { 501326932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 501426932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 501526932566SPatrick McHardy kfree_skb(skb); 501626932566SPatrick McHardy goto errout; 501726932566SPatrick McHardy } 501815e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 50195578689aSDaniel Lezcano info->nlh, gfp_any()); 50201ce85fe4SPablo Neira Ayuso return; 502121713ebcSThomas Graf errout: 502221713ebcSThomas Graf if (err < 0) 50235578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 50241da177e4SLinus Torvalds } 50251da177e4SLinus Torvalds 50268ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5027351638e7SJiri Pirko unsigned long event, void *ptr) 50288ed67789SDaniel Lezcano { 5029351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5030c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50318ed67789SDaniel Lezcano 5032242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5033242d3a49SWANG Cong return NOTIFY_OK; 5034242d3a49SWANG Cong 5035242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5036ad1601aeSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = dev; 5037d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50388ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50398ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5040d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50418ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5042d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50438ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50448ed67789SDaniel Lezcano #endif 504576da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 504676da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 504776da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 504876da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 504976da0704SWANG Cong */ 505012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5051242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 505212d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 505312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5054242d3a49SWANG Cong #endif 50558ed67789SDaniel Lezcano } 50568ed67789SDaniel Lezcano 50578ed67789SDaniel Lezcano return NOTIFY_OK; 50588ed67789SDaniel Lezcano } 50598ed67789SDaniel Lezcano 50601da177e4SLinus Torvalds /* 50611da177e4SLinus Torvalds * /proc 50621da177e4SLinus Torvalds */ 50631da177e4SLinus Torvalds 50641da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50651da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50661da177e4SLinus Torvalds { 506769ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50681da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 506969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 507069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 507181eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 507269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 507369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5074fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 507569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50761da177e4SLinus Torvalds 50771da177e4SLinus Torvalds return 0; 50781da177e4SLinus Torvalds } 50791da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50801da177e4SLinus Torvalds 50811da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50821da177e4SLinus Torvalds 50831da177e4SLinus Torvalds static 5084fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50851da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50861da177e4SLinus Torvalds { 5087c486da34SLucian Adrian Grijincu struct net *net; 5088c486da34SLucian Adrian Grijincu int delay; 5089f0fb9b28SAditya Pakki int ret; 5090c486da34SLucian Adrian Grijincu if (!write) 5091c486da34SLucian Adrian Grijincu return -EINVAL; 5092c486da34SLucian Adrian Grijincu 5093c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5094c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 5095f0fb9b28SAditya Pakki ret = proc_dointvec(ctl, write, buffer, lenp, ppos); 5096f0fb9b28SAditya Pakki if (ret) 5097f0fb9b28SAditya Pakki return ret; 5098f0fb9b28SAditya Pakki 50992ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 51001da177e4SLinus Torvalds return 0; 51011da177e4SLinus Torvalds } 51021da177e4SLinus Torvalds 51037c6bb7d2SDavid Ahern static int zero; 51047c6bb7d2SDavid Ahern static int one = 1; 51057c6bb7d2SDavid Ahern 5106ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 51071da177e4SLinus Torvalds { 51081da177e4SLinus Torvalds .procname = "flush", 51094990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 51101da177e4SLinus Torvalds .maxlen = sizeof(int), 511189c8b3a1SDave Jones .mode = 0200, 51126d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 51131da177e4SLinus Torvalds }, 51141da177e4SLinus Torvalds { 51151da177e4SLinus Torvalds .procname = "gc_thresh", 51169a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 51171da177e4SLinus Torvalds .maxlen = sizeof(int), 51181da177e4SLinus Torvalds .mode = 0644, 51196d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51201da177e4SLinus Torvalds }, 51211da177e4SLinus Torvalds { 51221da177e4SLinus Torvalds .procname = "max_size", 51234990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 51241da177e4SLinus Torvalds .maxlen = sizeof(int), 51251da177e4SLinus Torvalds .mode = 0644, 51266d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51271da177e4SLinus Torvalds }, 51281da177e4SLinus Torvalds { 51291da177e4SLinus Torvalds .procname = "gc_min_interval", 51304990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51311da177e4SLinus Torvalds .maxlen = sizeof(int), 51321da177e4SLinus Torvalds .mode = 0644, 51336d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51341da177e4SLinus Torvalds }, 51351da177e4SLinus Torvalds { 51361da177e4SLinus Torvalds .procname = "gc_timeout", 51374990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51381da177e4SLinus Torvalds .maxlen = sizeof(int), 51391da177e4SLinus Torvalds .mode = 0644, 51406d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51411da177e4SLinus Torvalds }, 51421da177e4SLinus Torvalds { 51431da177e4SLinus Torvalds .procname = "gc_interval", 51444990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51451da177e4SLinus Torvalds .maxlen = sizeof(int), 51461da177e4SLinus Torvalds .mode = 0644, 51476d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51481da177e4SLinus Torvalds }, 51491da177e4SLinus Torvalds { 51501da177e4SLinus Torvalds .procname = "gc_elasticity", 51514990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51521da177e4SLinus Torvalds .maxlen = sizeof(int), 51531da177e4SLinus Torvalds .mode = 0644, 5154f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51551da177e4SLinus Torvalds }, 51561da177e4SLinus Torvalds { 51571da177e4SLinus Torvalds .procname = "mtu_expires", 51584990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51591da177e4SLinus Torvalds .maxlen = sizeof(int), 51601da177e4SLinus Torvalds .mode = 0644, 51616d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51621da177e4SLinus Torvalds }, 51631da177e4SLinus Torvalds { 51641da177e4SLinus Torvalds .procname = "min_adv_mss", 51654990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51661da177e4SLinus Torvalds .maxlen = sizeof(int), 51671da177e4SLinus Torvalds .mode = 0644, 5168f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51691da177e4SLinus Torvalds }, 51701da177e4SLinus Torvalds { 51711da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51724990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51731da177e4SLinus Torvalds .maxlen = sizeof(int), 51741da177e4SLinus Torvalds .mode = 0644, 51756d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51761da177e4SLinus Torvalds }, 51777c6bb7d2SDavid Ahern { 51787c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 51797c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 51807c6bb7d2SDavid Ahern .maxlen = sizeof(int), 51817c6bb7d2SDavid Ahern .mode = 0644, 51827c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 51837c6bb7d2SDavid Ahern .extra1 = &zero, 51847c6bb7d2SDavid Ahern .extra2 = &one, 51857c6bb7d2SDavid Ahern }, 5186f8572d8fSEric W. Biederman { } 51871da177e4SLinus Torvalds }; 51881da177e4SLinus Torvalds 51892c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5190760f2d01SDaniel Lezcano { 5191760f2d01SDaniel Lezcano struct ctl_table *table; 5192760f2d01SDaniel Lezcano 5193760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5194760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5195760f2d01SDaniel Lezcano GFP_KERNEL); 51965ee09105SYOSHIFUJI Hideaki 51975ee09105SYOSHIFUJI Hideaki if (table) { 51985ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5199c486da34SLucian Adrian Grijincu table[0].extra1 = net; 520086393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 52015ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 52025ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52035ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 52045ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 52055ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 52065ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 52075ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 52089c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52097c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5210464dc801SEric W. Biederman 5211464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5212464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5213464dc801SEric W. Biederman table[0].procname = NULL; 52145ee09105SYOSHIFUJI Hideaki } 52155ee09105SYOSHIFUJI Hideaki 5216760f2d01SDaniel Lezcano return table; 5217760f2d01SDaniel Lezcano } 52181da177e4SLinus Torvalds #endif 52191da177e4SLinus Torvalds 52202c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5221cdb18761SDaniel Lezcano { 5222633d424bSPavel Emelyanov int ret = -ENOMEM; 52238ed67789SDaniel Lezcano 522486393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 522586393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5226f2fc6a54SBenjamin Thery 5227fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5228fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5229fc66f95cSEric Dumazet 5230421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5231421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5232421842edSDavid Ahern GFP_KERNEL); 5233421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5234421842edSDavid Ahern goto out_ip6_dst_entries; 5235421842edSDavid Ahern 52368ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52378ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52388ed67789SDaniel Lezcano GFP_KERNEL); 52398ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5240421842edSDavid Ahern goto out_fib6_null_entry; 5241d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 524262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 524362fa8a84SDavid S. Miller ip6_template_metrics, true); 52448ed67789SDaniel Lezcano 52458ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5246feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52478ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52488ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52498ed67789SDaniel Lezcano GFP_KERNEL); 525068fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 525168fffc67SPeter Zijlstra goto out_ip6_null_entry; 5252d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 525362fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 525462fa8a84SDavid S. Miller ip6_template_metrics, true); 52558ed67789SDaniel Lezcano 52568ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52578ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52588ed67789SDaniel Lezcano GFP_KERNEL); 525968fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 526068fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5261d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 526262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 526362fa8a84SDavid S. Miller ip6_template_metrics, true); 52648ed67789SDaniel Lezcano #endif 52658ed67789SDaniel Lezcano 5266b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5267b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5268b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5269b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5270b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5271b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5272b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5273b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 52747c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5275b339a47cSPeter Zijlstra 52766891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52776891a346SBenjamin Thery 52788ed67789SDaniel Lezcano ret = 0; 52798ed67789SDaniel Lezcano out: 52808ed67789SDaniel Lezcano return ret; 5281f2fc6a54SBenjamin Thery 528268fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 528368fffc67SPeter Zijlstra out_ip6_prohibit_entry: 528468fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 528568fffc67SPeter Zijlstra out_ip6_null_entry: 528668fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 528768fffc67SPeter Zijlstra #endif 5288421842edSDavid Ahern out_fib6_null_entry: 5289421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5290fc66f95cSEric Dumazet out_ip6_dst_entries: 5291fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5292f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5293f2fc6a54SBenjamin Thery goto out; 5294cdb18761SDaniel Lezcano } 5295cdb18761SDaniel Lezcano 52962c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5297cdb18761SDaniel Lezcano { 5298421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52998ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 53008ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53018ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 53028ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 53038ed67789SDaniel Lezcano #endif 530441bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5305cdb18761SDaniel Lezcano } 5306cdb18761SDaniel Lezcano 5307d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5308d189634eSThomas Graf { 5309d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5310c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5311c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 53123617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 53133617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5314d189634eSThomas Graf #endif 5315d189634eSThomas Graf return 0; 5316d189634eSThomas Graf } 5317d189634eSThomas Graf 5318d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5319d189634eSThomas Graf { 5320d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5321ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5322ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5323d189634eSThomas Graf #endif 5324d189634eSThomas Graf } 5325d189634eSThomas Graf 5326cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5327cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5328cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5329cdb18761SDaniel Lezcano }; 5330cdb18761SDaniel Lezcano 5331c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5332c3426b47SDavid S. Miller { 5333c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5334c3426b47SDavid S. Miller 5335c3426b47SDavid S. Miller if (!bp) 5336c3426b47SDavid S. Miller return -ENOMEM; 5337c3426b47SDavid S. Miller inet_peer_base_init(bp); 5338c3426b47SDavid S. Miller net->ipv6.peers = bp; 5339c3426b47SDavid S. Miller return 0; 5340c3426b47SDavid S. Miller } 5341c3426b47SDavid S. Miller 5342c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5343c3426b47SDavid S. Miller { 5344c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5345c3426b47SDavid S. Miller 5346c3426b47SDavid S. Miller net->ipv6.peers = NULL; 534756a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5348c3426b47SDavid S. Miller kfree(bp); 5349c3426b47SDavid S. Miller } 5350c3426b47SDavid S. Miller 53512b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5352c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5353c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5354c3426b47SDavid S. Miller }; 5355c3426b47SDavid S. Miller 5356d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5357d189634eSThomas Graf .init = ip6_route_net_init_late, 5358d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5359d189634eSThomas Graf }; 5360d189634eSThomas Graf 53618ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53628ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5363242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53648ed67789SDaniel Lezcano }; 53658ed67789SDaniel Lezcano 53662f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53672f460933SWANG Cong { 53682f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53692f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53702f460933SWANG Cong * manually for init_net */ 5371ad1601aeSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = init_net.loopback_dev; 53722f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53732f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53742f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53752f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53762f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53772f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53782f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53792f460933SWANG Cong #endif 53802f460933SWANG Cong } 53812f460933SWANG Cong 5382433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53831da177e4SLinus Torvalds { 5384433d49c3SDaniel Lezcano int ret; 53858d0b94afSMartin KaFai Lau int cpu; 5386433d49c3SDaniel Lezcano 53879a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53889a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53899a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53909a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53919a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5392c19a28e1SFernando Carrijo goto out; 539314e50e57SDavid S. Miller 5394fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53958ed67789SDaniel Lezcano if (ret) 5396bdb3289fSDaniel Lezcano goto out_kmem_cache; 5397bdb3289fSDaniel Lezcano 5398c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5399c3426b47SDavid S. Miller if (ret) 5400e8803b6cSDavid S. Miller goto out_dst_entries; 54012a0c451aSThomas Graf 54027e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 54037e52b33bSDavid S. Miller if (ret) 54047e52b33bSDavid S. Miller goto out_register_inetpeer; 5405c3426b47SDavid S. Miller 54065dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 54075dc121e9SArnaud Ebalard 5408e8803b6cSDavid S. Miller ret = fib6_init(); 5409433d49c3SDaniel Lezcano if (ret) 54108ed67789SDaniel Lezcano goto out_register_subsys; 5411433d49c3SDaniel Lezcano 5412433d49c3SDaniel Lezcano ret = xfrm6_init(); 5413433d49c3SDaniel Lezcano if (ret) 5414e8803b6cSDavid S. Miller goto out_fib6_init; 5415c35b7e72SDaniel Lezcano 5416433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5417433d49c3SDaniel Lezcano if (ret) 5418433d49c3SDaniel Lezcano goto xfrm6_init; 54197e5449c2SDaniel Lezcano 5420d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5421d189634eSThomas Graf if (ret) 5422d189634eSThomas Graf goto fib6_rules_init; 5423d189634eSThomas Graf 542416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 542516feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 542616feebcfSFlorian Westphal if (ret < 0) 542716feebcfSFlorian Westphal goto out_register_late_subsys; 542816feebcfSFlorian Westphal 542916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 543016feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 543116feebcfSFlorian Westphal if (ret < 0) 543216feebcfSFlorian Westphal goto out_register_late_subsys; 543316feebcfSFlorian Westphal 543416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 543516feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 543616feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 543716feebcfSFlorian Westphal if (ret < 0) 5438d189634eSThomas Graf goto out_register_late_subsys; 5439433d49c3SDaniel Lezcano 54408ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5441cdb18761SDaniel Lezcano if (ret) 5442d189634eSThomas Graf goto out_register_late_subsys; 54438ed67789SDaniel Lezcano 54448d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54458d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54468d0b94afSMartin KaFai Lau 54478d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54488d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54498d0b94afSMartin KaFai Lau } 54508d0b94afSMartin KaFai Lau 5451433d49c3SDaniel Lezcano out: 5452433d49c3SDaniel Lezcano return ret; 5453433d49c3SDaniel Lezcano 5454d189634eSThomas Graf out_register_late_subsys: 545516feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5456d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5457433d49c3SDaniel Lezcano fib6_rules_init: 5458433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5459433d49c3SDaniel Lezcano xfrm6_init: 5460433d49c3SDaniel Lezcano xfrm6_fini(); 54612a0c451aSThomas Graf out_fib6_init: 54622a0c451aSThomas Graf fib6_gc_cleanup(); 54638ed67789SDaniel Lezcano out_register_subsys: 54648ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54657e52b33bSDavid S. Miller out_register_inetpeer: 54667e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5467fc66f95cSEric Dumazet out_dst_entries: 5468fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5469433d49c3SDaniel Lezcano out_kmem_cache: 5470f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5471433d49c3SDaniel Lezcano goto out; 54721da177e4SLinus Torvalds } 54731da177e4SLinus Torvalds 54741da177e4SLinus Torvalds void ip6_route_cleanup(void) 54751da177e4SLinus Torvalds { 54768ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5477d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5478101367c2SThomas Graf fib6_rules_cleanup(); 54791da177e4SLinus Torvalds xfrm6_fini(); 54801da177e4SLinus Torvalds fib6_gc_cleanup(); 5481c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54828ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 548341bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5484f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54851da177e4SLinus Torvalds } 5486