xref: /openbmc/linux/net/ipv6/route.c (revision 3b525691529b01cbea03ce07e5df487da5e44a31)
12874c5fdSThomas Gleixner // SPDX-License-Identifier: GPL-2.0-or-later
21da177e4SLinus Torvalds /*
31da177e4SLinus Torvalds  *	Linux INET6 implementation
41da177e4SLinus Torvalds  *	FIB front-end.
51da177e4SLinus Torvalds  *
61da177e4SLinus Torvalds  *	Authors:
71da177e4SLinus Torvalds  *	Pedro Roque		<roque@di.fc.ul.pt>
81da177e4SLinus Torvalds  */
91da177e4SLinus Torvalds 
101da177e4SLinus Torvalds /*	Changes:
111da177e4SLinus Torvalds  *
121da177e4SLinus Torvalds  *	YOSHIFUJI Hideaki @USAGI
131da177e4SLinus Torvalds  *		reworked default router selection.
141da177e4SLinus Torvalds  *		- respect outgoing interface
151da177e4SLinus Torvalds  *		- select from (probably) reachable routers (i.e.
161da177e4SLinus Torvalds  *		routers in REACHABLE, STALE, DELAY or PROBE states).
171da177e4SLinus Torvalds  *		- always select the same router if it is (probably)
181da177e4SLinus Torvalds  *		reachable.  otherwise, round-robin the list.
19c0bece9fSYOSHIFUJI Hideaki  *	Ville Nuorvala
20c0bece9fSYOSHIFUJI Hideaki  *		Fixed routing subtrees.
211da177e4SLinus Torvalds  */
221da177e4SLinus Torvalds 
23f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt
24f3213831SJoe Perches 
254fc268d2SRandy Dunlap #include <linux/capability.h>
261da177e4SLinus Torvalds #include <linux/errno.h>
27bc3b2d7fSPaul Gortmaker #include <linux/export.h>
281da177e4SLinus Torvalds #include <linux/types.h>
291da177e4SLinus Torvalds #include <linux/times.h>
301da177e4SLinus Torvalds #include <linux/socket.h>
311da177e4SLinus Torvalds #include <linux/sockios.h>
321da177e4SLinus Torvalds #include <linux/net.h>
331da177e4SLinus Torvalds #include <linux/route.h>
341da177e4SLinus Torvalds #include <linux/netdevice.h>
351da177e4SLinus Torvalds #include <linux/in6.h>
367bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h>
371da177e4SLinus Torvalds #include <linux/init.h>
381da177e4SLinus Torvalds #include <linux/if_arp.h>
391da177e4SLinus Torvalds #include <linux/proc_fs.h>
401da177e4SLinus Torvalds #include <linux/seq_file.h>
415b7c931dSDaniel Lezcano #include <linux/nsproxy.h>
425a0e3ad6STejun Heo #include <linux/slab.h>
4335732d01SWei Wang #include <linux/jhash.h>
44457c4cbcSEric W. Biederman #include <net/net_namespace.h>
451da177e4SLinus Torvalds #include <net/snmp.h>
461da177e4SLinus Torvalds #include <net/ipv6.h>
471da177e4SLinus Torvalds #include <net/ip6_fib.h>
481da177e4SLinus Torvalds #include <net/ip6_route.h>
491da177e4SLinus Torvalds #include <net/ndisc.h>
501da177e4SLinus Torvalds #include <net/addrconf.h>
511da177e4SLinus Torvalds #include <net/tcp.h>
521da177e4SLinus Torvalds #include <linux/rtnetlink.h>
531da177e4SLinus Torvalds #include <net/dst.h>
54904af04dSJiri Benc #include <net/dst_metadata.h>
551da177e4SLinus Torvalds #include <net/xfrm.h>
568d71740cSTom Tucker #include <net/netevent.h>
5721713ebcSThomas Graf #include <net/netlink.h>
583c618c1dSDavid Ahern #include <net/rtnh.h>
5919e42e45SRoopa Prabhu #include <net/lwtunnel.h>
60904af04dSJiri Benc #include <net/ip_tunnels.h>
61ca254490SDavid Ahern #include <net/l3mdev.h>
62eacb9384SRoopa Prabhu #include <net/ip.h>
637c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
641da177e4SLinus Torvalds 
651da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
661da177e4SLinus Torvalds #include <linux/sysctl.h>
671da177e4SLinus Torvalds #endif
681da177e4SLinus Torvalds 
6930d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type);
7030d444d3SDavid Ahern 
7130d444d3SDavid Ahern #define CREATE_TRACE_POINTS
7230d444d3SDavid Ahern #include <trace/events/fib6.h>
7330d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup);
7430d444d3SDavid Ahern #undef CREATE_TRACE_POINTS
7530d444d3SDavid Ahern 
76afc154e9SHannes Frederic Sowa enum rt6_nud_state {
777e980569SJiri Benc 	RT6_NUD_FAIL_HARD = -3,
787e980569SJiri Benc 	RT6_NUD_FAIL_PROBE = -2,
797e980569SJiri Benc 	RT6_NUD_FAIL_DO_RR = -1,
80afc154e9SHannes Frederic Sowa 	RT6_NUD_SUCCEED = 1
81afc154e9SHannes Frederic Sowa };
82afc154e9SHannes Frederic Sowa 
831da177e4SLinus Torvalds static struct dst_entry	*ip6_dst_check(struct dst_entry *dst, u32 cookie);
840dbaee3bSDavid S. Miller static unsigned int	 ip6_default_advmss(const struct dst_entry *dst);
85ebb762f2SSteffen Klassert static unsigned int	 ip6_mtu(const struct dst_entry *dst);
861da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *);
871da177e4SLinus Torvalds static void		ip6_dst_destroy(struct dst_entry *);
881da177e4SLinus Torvalds static void		ip6_dst_ifdown(struct dst_entry *,
891da177e4SLinus Torvalds 				       struct net_device *dev, int how);
90569d3645SDaniel Lezcano static int		 ip6_dst_gc(struct dst_ops *ops);
911da177e4SLinus Torvalds 
921da177e4SLinus Torvalds static int		ip6_pkt_discard(struct sk_buff *skb);
93ede2059dSEric W. Biederman static int		ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
947150aedeSKamala R static int		ip6_pkt_prohibit(struct sk_buff *skb);
95ede2059dSEric W. Biederman static int		ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
961da177e4SLinus Torvalds static void		ip6_link_failure(struct sk_buff *skb);
976700c270SDavid S. Miller static void		ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
986700c270SDavid S. Miller 					   struct sk_buff *skb, u32 mtu);
996700c270SDavid S. Miller static void		rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
1006700c270SDavid S. Miller 					struct sk_buff *skb);
101702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif,
102702cea56SDavid Ahern 			   int strict);
103a1b7a1f0SDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *f6i);
104d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb,
1058d1c802bSDavid Ahern 			 struct fib6_info *rt, struct dst_entry *dst,
106d4ead6b3SDavid Ahern 			 struct in6_addr *dest, struct in6_addr *src,
10716a16cd3SDavid Ahern 			 int iif, int type, u32 portid, u32 seq,
10816a16cd3SDavid Ahern 			 unsigned int flags);
1097e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res,
110510e2cedSWei Wang 					   const struct in6_addr *daddr,
111510e2cedSWei Wang 					   const struct in6_addr *saddr);
1121da177e4SLinus Torvalds 
11370ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
1148d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net,
115b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
116830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
117830218c1SDavid Ahern 					   struct net_device *dev,
11895c96174SEric Dumazet 					   unsigned int pref);
1198d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net,
120b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
121830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
122830218c1SDavid Ahern 					   struct net_device *dev);
12370ceb4f5SYOSHIFUJI Hideaki #endif
12470ceb4f5SYOSHIFUJI Hideaki 
1258d0b94afSMartin KaFai Lau struct uncached_list {
1268d0b94afSMartin KaFai Lau 	spinlock_t		lock;
1278d0b94afSMartin KaFai Lau 	struct list_head	head;
1288d0b94afSMartin KaFai Lau };
1298d0b94afSMartin KaFai Lau 
1308d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
1318d0b94afSMartin KaFai Lau 
132510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt)
1338d0b94afSMartin KaFai Lau {
1348d0b94afSMartin KaFai Lau 	struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
1358d0b94afSMartin KaFai Lau 
1368d0b94afSMartin KaFai Lau 	rt->rt6i_uncached_list = ul;
1378d0b94afSMartin KaFai Lau 
1388d0b94afSMartin KaFai Lau 	spin_lock_bh(&ul->lock);
1398d0b94afSMartin KaFai Lau 	list_add_tail(&rt->rt6i_uncached, &ul->head);
1408d0b94afSMartin KaFai Lau 	spin_unlock_bh(&ul->lock);
1418d0b94afSMartin KaFai Lau }
1428d0b94afSMartin KaFai Lau 
143510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt)
1448d0b94afSMartin KaFai Lau {
1458d0b94afSMartin KaFai Lau 	if (!list_empty(&rt->rt6i_uncached)) {
1468d0b94afSMartin KaFai Lau 		struct uncached_list *ul = rt->rt6i_uncached_list;
14781eb8447SWei Wang 		struct net *net = dev_net(rt->dst.dev);
1488d0b94afSMartin KaFai Lau 
1498d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1508d0b94afSMartin KaFai Lau 		list_del(&rt->rt6i_uncached);
15181eb8447SWei Wang 		atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
1528d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1538d0b94afSMartin KaFai Lau 	}
1548d0b94afSMartin KaFai Lau }
1558d0b94afSMartin KaFai Lau 
1568d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
1578d0b94afSMartin KaFai Lau {
1588d0b94afSMartin KaFai Lau 	struct net_device *loopback_dev = net->loopback_dev;
1598d0b94afSMartin KaFai Lau 	int cpu;
1608d0b94afSMartin KaFai Lau 
161e332bc67SEric W. Biederman 	if (dev == loopback_dev)
162e332bc67SEric W. Biederman 		return;
163e332bc67SEric W. Biederman 
1648d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
1658d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
1668d0b94afSMartin KaFai Lau 		struct rt6_info *rt;
1678d0b94afSMartin KaFai Lau 
1688d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1698d0b94afSMartin KaFai Lau 		list_for_each_entry(rt, &ul->head, rt6i_uncached) {
1708d0b94afSMartin KaFai Lau 			struct inet6_dev *rt_idev = rt->rt6i_idev;
1718d0b94afSMartin KaFai Lau 			struct net_device *rt_dev = rt->dst.dev;
1728d0b94afSMartin KaFai Lau 
173e332bc67SEric W. Biederman 			if (rt_idev->dev == dev) {
1748d0b94afSMartin KaFai Lau 				rt->rt6i_idev = in6_dev_get(loopback_dev);
1758d0b94afSMartin KaFai Lau 				in6_dev_put(rt_idev);
1768d0b94afSMartin KaFai Lau 			}
1778d0b94afSMartin KaFai Lau 
178e332bc67SEric W. Biederman 			if (rt_dev == dev) {
1798d0b94afSMartin KaFai Lau 				rt->dst.dev = loopback_dev;
1808d0b94afSMartin KaFai Lau 				dev_hold(rt->dst.dev);
1818d0b94afSMartin KaFai Lau 				dev_put(rt_dev);
1828d0b94afSMartin KaFai Lau 			}
1838d0b94afSMartin KaFai Lau 		}
1848d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1858d0b94afSMartin KaFai Lau 	}
1868d0b94afSMartin KaFai Lau }
1878d0b94afSMartin KaFai Lau 
188f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p,
189f894cbf8SDavid S. Miller 					     struct sk_buff *skb,
190f894cbf8SDavid S. Miller 					     const void *daddr)
19139232973SDavid S. Miller {
192a7563f34SDavid S. Miller 	if (!ipv6_addr_any(p))
19339232973SDavid S. Miller 		return (const void *) p;
194f894cbf8SDavid S. Miller 	else if (skb)
195f894cbf8SDavid S. Miller 		return &ipv6_hdr(skb)->daddr;
19639232973SDavid S. Miller 	return daddr;
19739232973SDavid S. Miller }
19839232973SDavid S. Miller 
199f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw,
200f8a1b43bSDavid Ahern 				   struct net_device *dev,
201f894cbf8SDavid S. Miller 				   struct sk_buff *skb,
202f894cbf8SDavid S. Miller 				   const void *daddr)
203d3aaeb38SDavid S. Miller {
20439232973SDavid S. Miller 	struct neighbour *n;
20539232973SDavid S. Miller 
206f8a1b43bSDavid Ahern 	daddr = choose_neigh_daddr(gw, skb, daddr);
207f8a1b43bSDavid Ahern 	n = __ipv6_neigh_lookup(dev, daddr);
208f83c7790SDavid S. Miller 	if (n)
209f83c7790SDavid S. Miller 		return n;
2107adf3246SStefano Brivio 
2117adf3246SStefano Brivio 	n = neigh_create(&nd_tbl, daddr, dev);
2127adf3246SStefano Brivio 	return IS_ERR(n) ? NULL : n;
213f8a1b43bSDavid Ahern }
214f8a1b43bSDavid Ahern 
215f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst,
216f8a1b43bSDavid Ahern 					      struct sk_buff *skb,
217f8a1b43bSDavid Ahern 					      const void *daddr)
218f8a1b43bSDavid Ahern {
219f8a1b43bSDavid Ahern 	const struct rt6_info *rt = container_of(dst, struct rt6_info, dst);
220f8a1b43bSDavid Ahern 
221f8a1b43bSDavid Ahern 	return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr);
222f83c7790SDavid S. Miller }
223f83c7790SDavid S. Miller 
22463fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
22563fca65dSJulian Anastasov {
22663fca65dSJulian Anastasov 	struct net_device *dev = dst->dev;
22763fca65dSJulian Anastasov 	struct rt6_info *rt = (struct rt6_info *)dst;
22863fca65dSJulian Anastasov 
229f8a1b43bSDavid Ahern 	daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr);
23063fca65dSJulian Anastasov 	if (!daddr)
23163fca65dSJulian Anastasov 		return;
23263fca65dSJulian Anastasov 	if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
23363fca65dSJulian Anastasov 		return;
23463fca65dSJulian Anastasov 	if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
23563fca65dSJulian Anastasov 		return;
23663fca65dSJulian Anastasov 	__ipv6_confirm_neigh(dev, daddr);
23763fca65dSJulian Anastasov }
23863fca65dSJulian Anastasov 
2399a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = {
2401da177e4SLinus Torvalds 	.family			=	AF_INET6,
2411da177e4SLinus Torvalds 	.gc			=	ip6_dst_gc,
2421da177e4SLinus Torvalds 	.gc_thresh		=	1024,
2431da177e4SLinus Torvalds 	.check			=	ip6_dst_check,
2440dbaee3bSDavid S. Miller 	.default_advmss		=	ip6_default_advmss,
245ebb762f2SSteffen Klassert 	.mtu			=	ip6_mtu,
246d4ead6b3SDavid Ahern 	.cow_metrics		=	dst_cow_metrics_generic,
2471da177e4SLinus Torvalds 	.destroy		=	ip6_dst_destroy,
2481da177e4SLinus Torvalds 	.ifdown			=	ip6_dst_ifdown,
2491da177e4SLinus Torvalds 	.negative_advice	=	ip6_negative_advice,
2501da177e4SLinus Torvalds 	.link_failure		=	ip6_link_failure,
2511da177e4SLinus Torvalds 	.update_pmtu		=	ip6_rt_update_pmtu,
2526e157b6aSDavid S. Miller 	.redirect		=	rt6_do_redirect,
2539f8955ccSEric W. Biederman 	.local_out		=	__ip6_local_out,
254f8a1b43bSDavid Ahern 	.neigh_lookup		=	ip6_dst_neigh_lookup,
25563fca65dSJulian Anastasov 	.confirm_neigh		=	ip6_confirm_neigh,
2561da177e4SLinus Torvalds };
2571da177e4SLinus Torvalds 
258ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
259ec831ea7SRoland Dreier {
260618f9bc7SSteffen Klassert 	unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
261618f9bc7SSteffen Klassert 
262618f9bc7SSteffen Klassert 	return mtu ? : dst->dev->mtu;
263ec831ea7SRoland Dreier }
264ec831ea7SRoland Dreier 
2656700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
2666700c270SDavid S. Miller 					 struct sk_buff *skb, u32 mtu)
26714e50e57SDavid S. Miller {
26814e50e57SDavid S. Miller }
26914e50e57SDavid S. Miller 
2706700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
2716700c270SDavid S. Miller 				      struct sk_buff *skb)
272b587ee3bSDavid S. Miller {
273b587ee3bSDavid S. Miller }
274b587ee3bSDavid S. Miller 
27514e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = {
27614e50e57SDavid S. Miller 	.family			=	AF_INET6,
27714e50e57SDavid S. Miller 	.destroy		=	ip6_dst_destroy,
27814e50e57SDavid S. Miller 	.check			=	ip6_dst_check,
279ebb762f2SSteffen Klassert 	.mtu			=	ip6_blackhole_mtu,
280214f45c9SEric Dumazet 	.default_advmss		=	ip6_default_advmss,
28114e50e57SDavid S. Miller 	.update_pmtu		=	ip6_rt_blackhole_update_pmtu,
282b587ee3bSDavid S. Miller 	.redirect		=	ip6_rt_blackhole_redirect,
2830a1f5962SMartin KaFai Lau 	.cow_metrics		=	dst_cow_metrics_generic,
284f8a1b43bSDavid Ahern 	.neigh_lookup		=	ip6_dst_neigh_lookup,
28514e50e57SDavid S. Miller };
28614e50e57SDavid S. Miller 
28762fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = {
28814edd87dSLi RongQing 	[RTAX_HOPLIMIT - 1] = 0,
28962fa8a84SDavid S. Miller };
29062fa8a84SDavid S. Miller 
2918d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = {
29293c2fb25SDavid Ahern 	.fib6_flags	= (RTF_REJECT | RTF_NONEXTHOP),
29393c2fb25SDavid Ahern 	.fib6_protocol  = RTPROT_KERNEL,
29493c2fb25SDavid Ahern 	.fib6_metric	= ~(u32)0,
295f05713e0SEric Dumazet 	.fib6_ref	= REFCOUNT_INIT(1),
296421842edSDavid Ahern 	.fib6_type	= RTN_UNREACHABLE,
297421842edSDavid Ahern 	.fib6_metrics	= (struct dst_metrics *)&dst_default_metrics,
298421842edSDavid Ahern };
299421842edSDavid Ahern 
300fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = {
3011da177e4SLinus Torvalds 	.dst = {
3021da177e4SLinus Torvalds 		.__refcnt	= ATOMIC_INIT(1),
3031da177e4SLinus Torvalds 		.__use		= 1,
3042c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
3051da177e4SLinus Torvalds 		.error		= -ENETUNREACH,
3061da177e4SLinus Torvalds 		.input		= ip6_pkt_discard,
3071da177e4SLinus Torvalds 		.output		= ip6_pkt_discard_out,
3081da177e4SLinus Torvalds 	},
3091da177e4SLinus Torvalds 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
3101da177e4SLinus Torvalds };
3111da177e4SLinus Torvalds 
312101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES
313101367c2SThomas Graf 
314fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = {
315101367c2SThomas Graf 	.dst = {
316101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
317101367c2SThomas Graf 		.__use		= 1,
3182c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
319101367c2SThomas Graf 		.error		= -EACCES,
3209ce8ade0SThomas Graf 		.input		= ip6_pkt_prohibit,
3219ce8ade0SThomas Graf 		.output		= ip6_pkt_prohibit_out,
322101367c2SThomas Graf 	},
323101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
324101367c2SThomas Graf };
325101367c2SThomas Graf 
326fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = {
327101367c2SThomas Graf 	.dst = {
328101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
329101367c2SThomas Graf 		.__use		= 1,
3302c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
331101367c2SThomas Graf 		.error		= -EINVAL,
332352e512cSHerbert Xu 		.input		= dst_discard,
333ede2059dSEric W. Biederman 		.output		= dst_discard_out,
334101367c2SThomas Graf 	},
335101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
336101367c2SThomas Graf };
337101367c2SThomas Graf 
338101367c2SThomas Graf #endif
339101367c2SThomas Graf 
340ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt)
341ebfa45f0SMartin KaFai Lau {
342ebfa45f0SMartin KaFai Lau 	struct dst_entry *dst = &rt->dst;
343ebfa45f0SMartin KaFai Lau 
344ebfa45f0SMartin KaFai Lau 	memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
345ebfa45f0SMartin KaFai Lau 	INIT_LIST_HEAD(&rt->rt6i_uncached);
346ebfa45f0SMartin KaFai Lau }
347ebfa45f0SMartin KaFai Lau 
3481da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */
34993531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev,
350ad706862SMartin KaFai Lau 			       int flags)
3511da177e4SLinus Torvalds {
35297bab73fSDavid S. Miller 	struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
353b2a9c0edSWei Wang 					1, DST_OBSOLETE_FORCE_CHK, flags);
354cf911662SDavid S. Miller 
35581eb8447SWei Wang 	if (rt) {
356ebfa45f0SMartin KaFai Lau 		rt6_info_init(rt);
35781eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
35881eb8447SWei Wang 	}
3598104891bSSteffen Klassert 
360cf911662SDavid S. Miller 	return rt;
3611da177e4SLinus Torvalds }
3629ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc);
363d52d3997SMartin KaFai Lau 
3641da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst)
3651da177e4SLinus Torvalds {
3661da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
367a68886a6SDavid Ahern 	struct fib6_info *from;
3688d0b94afSMartin KaFai Lau 	struct inet6_dev *idev;
3691da177e4SLinus Torvalds 
3701620a336SDavid Ahern 	ip_dst_metrics_put(dst);
3718d0b94afSMartin KaFai Lau 	rt6_uncached_list_del(rt);
3728d0b94afSMartin KaFai Lau 
3738d0b94afSMartin KaFai Lau 	idev = rt->rt6i_idev;
37438308473SDavid S. Miller 	if (idev) {
3751da177e4SLinus Torvalds 		rt->rt6i_idev = NULL;
3761da177e4SLinus Torvalds 		in6_dev_put(idev);
3771da177e4SLinus Torvalds 	}
3781716a961SGao feng 
3790e233874SEric Dumazet 	from = xchg((__force struct fib6_info **)&rt->from, NULL);
38093531c67SDavid Ahern 	fib6_info_release(from);
381b3419363SDavid S. Miller }
382b3419363SDavid S. Miller 
3831da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
3841da177e4SLinus Torvalds 			   int how)
3851da177e4SLinus Torvalds {
3861da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
3871da177e4SLinus Torvalds 	struct inet6_dev *idev = rt->rt6i_idev;
3885a3e55d6SDenis V. Lunev 	struct net_device *loopback_dev =
389c346dca1SYOSHIFUJI Hideaki 		dev_net(dev)->loopback_dev;
3901da177e4SLinus Torvalds 
391e5645f51SWei Wang 	if (idev && idev->dev != loopback_dev) {
392e5645f51SWei Wang 		struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
39338308473SDavid S. Miller 		if (loopback_idev) {
3941da177e4SLinus Torvalds 			rt->rt6i_idev = loopback_idev;
3951da177e4SLinus Torvalds 			in6_dev_put(idev);
3961da177e4SLinus Torvalds 		}
3971da177e4SLinus Torvalds 	}
39897cac082SDavid S. Miller }
3991da177e4SLinus Torvalds 
4005973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt)
4015973fb1eSMartin KaFai Lau {
4025973fb1eSMartin KaFai Lau 	if (rt->rt6i_flags & RTF_EXPIRES)
4035973fb1eSMartin KaFai Lau 		return time_after(jiffies, rt->dst.expires);
4045973fb1eSMartin KaFai Lau 	else
4055973fb1eSMartin KaFai Lau 		return false;
4065973fb1eSMartin KaFai Lau }
4075973fb1eSMartin KaFai Lau 
408a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt)
4091da177e4SLinus Torvalds {
410a68886a6SDavid Ahern 	struct fib6_info *from;
411a68886a6SDavid Ahern 
412a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
413a68886a6SDavid Ahern 
4141716a961SGao feng 	if (rt->rt6i_flags & RTF_EXPIRES) {
4151716a961SGao feng 		if (time_after(jiffies, rt->dst.expires))
416a50feda5SEric Dumazet 			return true;
417a68886a6SDavid Ahern 	} else if (from) {
4181e2ea8adSXin Long 		return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
419a68886a6SDavid Ahern 			fib6_check_expired(from);
4201716a961SGao feng 	}
421a50feda5SEric Dumazet 	return false;
4221da177e4SLinus Torvalds }
4231da177e4SLinus Torvalds 
424b1d40991SDavid Ahern void fib6_select_path(const struct net *net, struct fib6_result *res,
425b1d40991SDavid Ahern 		      struct flowi6 *fl6, int oif, bool have_oif_match,
426b1d40991SDavid Ahern 		      const struct sk_buff *skb, int strict)
42751ebd318SNicolas Dichtel {
4288d1c802bSDavid Ahern 	struct fib6_info *sibling, *next_sibling;
429b1d40991SDavid Ahern 	struct fib6_info *match = res->f6i;
430b1d40991SDavid Ahern 
431f88d8ea6SDavid Ahern 	if ((!match->fib6_nsiblings && !match->nh) || have_oif_match)
432b1d40991SDavid Ahern 		goto out;
43351ebd318SNicolas Dichtel 
434b673d6ccSJakub Sitnicki 	/* We might have already computed the hash for ICMPv6 errors. In such
435b673d6ccSJakub Sitnicki 	 * case it will always be non-zero. Otherwise now is the time to do it.
436b673d6ccSJakub Sitnicki 	 */
437f88d8ea6SDavid Ahern 	if (!fl6->mp_hash &&
438f88d8ea6SDavid Ahern 	    (!match->nh || nexthop_is_multipath(match->nh)))
439b4bac172SDavid Ahern 		fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL);
440b673d6ccSJakub Sitnicki 
441f88d8ea6SDavid Ahern 	if (unlikely(match->nh)) {
442f88d8ea6SDavid Ahern 		nexthop_path_fib6_result(res, fl6->mp_hash);
443f88d8ea6SDavid Ahern 		return;
444f88d8ea6SDavid Ahern 	}
445f88d8ea6SDavid Ahern 
4461cf844c7SDavid Ahern 	if (fl6->mp_hash <= atomic_read(&match->fib6_nh->fib_nh_upper_bound))
447b1d40991SDavid Ahern 		goto out;
448bbfcd776SIdo Schimmel 
44993c2fb25SDavid Ahern 	list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings,
45093c2fb25SDavid Ahern 				 fib6_siblings) {
4511cf844c7SDavid Ahern 		const struct fib6_nh *nh = sibling->fib6_nh;
4525e670d84SDavid Ahern 		int nh_upper_bound;
4535e670d84SDavid Ahern 
454702cea56SDavid Ahern 		nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound);
4555e670d84SDavid Ahern 		if (fl6->mp_hash > nh_upper_bound)
4563d709f69SIdo Schimmel 			continue;
457702cea56SDavid Ahern 		if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0)
45852bd4c0cSNicolas Dichtel 			break;
45951ebd318SNicolas Dichtel 		match = sibling;
46051ebd318SNicolas Dichtel 		break;
46151ebd318SNicolas Dichtel 	}
4623d709f69SIdo Schimmel 
463b1d40991SDavid Ahern out:
464b1d40991SDavid Ahern 	res->f6i = match;
4651cf844c7SDavid Ahern 	res->nh = match->fib6_nh;
46651ebd318SNicolas Dichtel }
46751ebd318SNicolas Dichtel 
4681da177e4SLinus Torvalds /*
46966f5d6ceSWei Wang  *	Route lookup. rcu_read_lock() should be held.
4701da177e4SLinus Torvalds  */
4711da177e4SLinus Torvalds 
4720c59d006SDavid Ahern static bool __rt6_device_match(struct net *net, const struct fib6_nh *nh,
4730c59d006SDavid Ahern 			       const struct in6_addr *saddr, int oif, int flags)
4740c59d006SDavid Ahern {
4750c59d006SDavid Ahern 	const struct net_device *dev;
4760c59d006SDavid Ahern 
4770c59d006SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD)
4780c59d006SDavid Ahern 		return false;
4790c59d006SDavid Ahern 
4800c59d006SDavid Ahern 	dev = nh->fib_nh_dev;
4810c59d006SDavid Ahern 	if (oif) {
4820c59d006SDavid Ahern 		if (dev->ifindex == oif)
4830c59d006SDavid Ahern 			return true;
4840c59d006SDavid Ahern 	} else {
4850c59d006SDavid Ahern 		if (ipv6_chk_addr(net, saddr, dev,
4860c59d006SDavid Ahern 				  flags & RT6_LOOKUP_F_IFACE))
4870c59d006SDavid Ahern 			return true;
4880c59d006SDavid Ahern 	}
4890c59d006SDavid Ahern 
4900c59d006SDavid Ahern 	return false;
4910c59d006SDavid Ahern }
4920c59d006SDavid Ahern 
493962b6803SDavid Ahern struct fib6_nh_dm_arg {
494962b6803SDavid Ahern 	struct net		*net;
495962b6803SDavid Ahern 	const struct in6_addr	*saddr;
496962b6803SDavid Ahern 	int			oif;
497962b6803SDavid Ahern 	int			flags;
498962b6803SDavid Ahern 	struct fib6_nh		*nh;
499962b6803SDavid Ahern };
500962b6803SDavid Ahern 
501962b6803SDavid Ahern static int __rt6_nh_dev_match(struct fib6_nh *nh, void *_arg)
502962b6803SDavid Ahern {
503962b6803SDavid Ahern 	struct fib6_nh_dm_arg *arg = _arg;
504962b6803SDavid Ahern 
505962b6803SDavid Ahern 	arg->nh = nh;
506962b6803SDavid Ahern 	return __rt6_device_match(arg->net, nh, arg->saddr, arg->oif,
507962b6803SDavid Ahern 				  arg->flags);
508962b6803SDavid Ahern }
509962b6803SDavid Ahern 
510962b6803SDavid Ahern /* returns fib6_nh from nexthop or NULL */
511962b6803SDavid Ahern static struct fib6_nh *rt6_nh_dev_match(struct net *net, struct nexthop *nh,
512962b6803SDavid Ahern 					struct fib6_result *res,
513962b6803SDavid Ahern 					const struct in6_addr *saddr,
514962b6803SDavid Ahern 					int oif, int flags)
515962b6803SDavid Ahern {
516962b6803SDavid Ahern 	struct fib6_nh_dm_arg arg = {
517962b6803SDavid Ahern 		.net   = net,
518962b6803SDavid Ahern 		.saddr = saddr,
519962b6803SDavid Ahern 		.oif   = oif,
520962b6803SDavid Ahern 		.flags = flags,
521962b6803SDavid Ahern 	};
522962b6803SDavid Ahern 
523962b6803SDavid Ahern 	if (nexthop_is_blackhole(nh))
524962b6803SDavid Ahern 		return NULL;
525962b6803SDavid Ahern 
526962b6803SDavid Ahern 	if (nexthop_for_each_fib6_nh(nh, __rt6_nh_dev_match, &arg))
527962b6803SDavid Ahern 		return arg.nh;
528962b6803SDavid Ahern 
529962b6803SDavid Ahern 	return NULL;
530962b6803SDavid Ahern }
531962b6803SDavid Ahern 
53275ef7389SDavid Ahern static void rt6_device_match(struct net *net, struct fib6_result *res,
53375ef7389SDavid Ahern 			     const struct in6_addr *saddr, int oif, int flags)
5341da177e4SLinus Torvalds {
53575ef7389SDavid Ahern 	struct fib6_info *f6i = res->f6i;
53675ef7389SDavid Ahern 	struct fib6_info *spf6i;
53775ef7389SDavid Ahern 	struct fib6_nh *nh;
5381da177e4SLinus Torvalds 
53975ef7389SDavid Ahern 	if (!oif && ipv6_addr_any(saddr)) {
540f88d8ea6SDavid Ahern 		if (unlikely(f6i->nh)) {
541f88d8ea6SDavid Ahern 			nh = nexthop_fib6_nh(f6i->nh);
542f88d8ea6SDavid Ahern 			if (nexthop_is_blackhole(f6i->nh))
543f88d8ea6SDavid Ahern 				goto out_blackhole;
544f88d8ea6SDavid Ahern 		} else {
5451cf844c7SDavid Ahern 			nh = f6i->fib6_nh;
546f88d8ea6SDavid Ahern 		}
5477d21fec9SDavid Ahern 		if (!(nh->fib_nh_flags & RTNH_F_DEAD))
5487d21fec9SDavid Ahern 			goto out;
5491da177e4SLinus Torvalds 	}
5501da177e4SLinus Torvalds 
55175ef7389SDavid Ahern 	for (spf6i = f6i; spf6i; spf6i = rcu_dereference(spf6i->fib6_next)) {
552962b6803SDavid Ahern 		bool matched = false;
553962b6803SDavid Ahern 
554962b6803SDavid Ahern 		if (unlikely(spf6i->nh)) {
555962b6803SDavid Ahern 			nh = rt6_nh_dev_match(net, spf6i->nh, res, saddr,
556962b6803SDavid Ahern 					      oif, flags);
557962b6803SDavid Ahern 			if (nh)
558962b6803SDavid Ahern 				matched = true;
559962b6803SDavid Ahern 		} else {
5601cf844c7SDavid Ahern 			nh = spf6i->fib6_nh;
561962b6803SDavid Ahern 			if (__rt6_device_match(net, nh, saddr, oif, flags))
562962b6803SDavid Ahern 				matched = true;
563962b6803SDavid Ahern 		}
564962b6803SDavid Ahern 		if (matched) {
56575ef7389SDavid Ahern 			res->f6i = spf6i;
5667d21fec9SDavid Ahern 			goto out;
56775ef7389SDavid Ahern 		}
56875ef7389SDavid Ahern 	}
5691da177e4SLinus Torvalds 
57075ef7389SDavid Ahern 	if (oif && flags & RT6_LOOKUP_F_IFACE) {
57175ef7389SDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
5721cf844c7SDavid Ahern 		nh = res->f6i->fib6_nh;
5737d21fec9SDavid Ahern 		goto out;
57475ef7389SDavid Ahern 	}
57575ef7389SDavid Ahern 
576f88d8ea6SDavid Ahern 	if (unlikely(f6i->nh)) {
577f88d8ea6SDavid Ahern 		nh = nexthop_fib6_nh(f6i->nh);
578f88d8ea6SDavid Ahern 		if (nexthop_is_blackhole(f6i->nh))
579f88d8ea6SDavid Ahern 			goto out_blackhole;
580f88d8ea6SDavid Ahern 	} else {
5811cf844c7SDavid Ahern 		nh = f6i->fib6_nh;
582f88d8ea6SDavid Ahern 	}
583f88d8ea6SDavid Ahern 
5847d21fec9SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD) {
58575ef7389SDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
5861cf844c7SDavid Ahern 		nh = res->f6i->fib6_nh;
58775ef7389SDavid Ahern 	}
5887d21fec9SDavid Ahern out:
5897d21fec9SDavid Ahern 	res->nh = nh;
5907d21fec9SDavid Ahern 	res->fib6_type = res->f6i->fib6_type;
5917d21fec9SDavid Ahern 	res->fib6_flags = res->f6i->fib6_flags;
592f88d8ea6SDavid Ahern 	return;
593f88d8ea6SDavid Ahern 
594f88d8ea6SDavid Ahern out_blackhole:
595f88d8ea6SDavid Ahern 	res->fib6_flags |= RTF_REJECT;
596f88d8ea6SDavid Ahern 	res->fib6_type = RTN_BLACKHOLE;
597f88d8ea6SDavid Ahern 	res->nh = nh;
5981da177e4SLinus Torvalds }
5991da177e4SLinus Torvalds 
60027097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
601c2f17e82SHannes Frederic Sowa struct __rt6_probe_work {
602c2f17e82SHannes Frederic Sowa 	struct work_struct work;
603c2f17e82SHannes Frederic Sowa 	struct in6_addr target;
604c2f17e82SHannes Frederic Sowa 	struct net_device *dev;
605c2f17e82SHannes Frederic Sowa };
606c2f17e82SHannes Frederic Sowa 
607c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w)
608c2f17e82SHannes Frederic Sowa {
609c2f17e82SHannes Frederic Sowa 	struct in6_addr mcaddr;
610c2f17e82SHannes Frederic Sowa 	struct __rt6_probe_work *work =
611c2f17e82SHannes Frederic Sowa 		container_of(w, struct __rt6_probe_work, work);
612c2f17e82SHannes Frederic Sowa 
613c2f17e82SHannes Frederic Sowa 	addrconf_addr_solict_mult(&work->target, &mcaddr);
614adc176c5SErik Nordmark 	ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
615c2f17e82SHannes Frederic Sowa 	dev_put(work->dev);
616662f5533SMichael Büsch 	kfree(work);
617c2f17e82SHannes Frederic Sowa }
618c2f17e82SHannes Frederic Sowa 
619cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh)
62027097255SYOSHIFUJI Hideaki {
621f547fac6SSabrina Dubroca 	struct __rt6_probe_work *work = NULL;
6225e670d84SDavid Ahern 	const struct in6_addr *nh_gw;
623f2c31e32SEric Dumazet 	struct neighbour *neigh;
6245e670d84SDavid Ahern 	struct net_device *dev;
625f547fac6SSabrina Dubroca 	struct inet6_dev *idev;
6265e670d84SDavid Ahern 
62727097255SYOSHIFUJI Hideaki 	/*
62827097255SYOSHIFUJI Hideaki 	 * Okay, this does not seem to be appropriate
62927097255SYOSHIFUJI Hideaki 	 * for now, however, we need to check if it
63027097255SYOSHIFUJI Hideaki 	 * is really so; aka Router Reachability Probing.
63127097255SYOSHIFUJI Hideaki 	 *
63227097255SYOSHIFUJI Hideaki 	 * Router Reachability Probe MUST be rate-limited
63327097255SYOSHIFUJI Hideaki 	 * to no more than one per minute.
63427097255SYOSHIFUJI Hideaki 	 */
635cc3a86c8SDavid Ahern 	if (fib6_nh->fib_nh_gw_family)
636fdd6681dSAmerigo Wang 		return;
6375e670d84SDavid Ahern 
638cc3a86c8SDavid Ahern 	nh_gw = &fib6_nh->fib_nh_gw6;
639cc3a86c8SDavid Ahern 	dev = fib6_nh->fib_nh_dev;
6402152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
641f547fac6SSabrina Dubroca 	idev = __in6_dev_get(dev);
6425e670d84SDavid Ahern 	neigh = __ipv6_neigh_lookup_noref(dev, nh_gw);
6432152caeaSYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
6448d6c31bfSMartin KaFai Lau 		if (neigh->nud_state & NUD_VALID)
6458d6c31bfSMartin KaFai Lau 			goto out;
6468d6c31bfSMartin KaFai Lau 
6472152caeaSYOSHIFUJI Hideaki / 吉藤英明 		write_lock(&neigh->lock);
648990edb42SMartin KaFai Lau 		if (!(neigh->nud_state & NUD_VALID) &&
649990edb42SMartin KaFai Lau 		    time_after(jiffies,
650dcd1f572SDavid Ahern 			       neigh->updated + idev->cnf.rtr_probe_interval)) {
651c2f17e82SHannes Frederic Sowa 			work = kmalloc(sizeof(*work), GFP_ATOMIC);
652990edb42SMartin KaFai Lau 			if (work)
6537e980569SJiri Benc 				__neigh_set_probe_once(neigh);
654990edb42SMartin KaFai Lau 		}
655c2f17e82SHannes Frederic Sowa 		write_unlock(&neigh->lock);
656cc3a86c8SDavid Ahern 	} else if (time_after(jiffies, fib6_nh->last_probe +
657f547fac6SSabrina Dubroca 				       idev->cnf.rtr_probe_interval)) {
658990edb42SMartin KaFai Lau 		work = kmalloc(sizeof(*work), GFP_ATOMIC);
659990edb42SMartin KaFai Lau 	}
660c2f17e82SHannes Frederic Sowa 
661c2f17e82SHannes Frederic Sowa 	if (work) {
662cc3a86c8SDavid Ahern 		fib6_nh->last_probe = jiffies;
663c2f17e82SHannes Frederic Sowa 		INIT_WORK(&work->work, rt6_probe_deferred);
6645e670d84SDavid Ahern 		work->target = *nh_gw;
6655e670d84SDavid Ahern 		dev_hold(dev);
6665e670d84SDavid Ahern 		work->dev = dev;
667c2f17e82SHannes Frederic Sowa 		schedule_work(&work->work);
668c2f17e82SHannes Frederic Sowa 	}
669990edb42SMartin KaFai Lau 
6708d6c31bfSMartin KaFai Lau out:
6712152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
672f2c31e32SEric Dumazet }
67327097255SYOSHIFUJI Hideaki #else
674cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh)
67527097255SYOSHIFUJI Hideaki {
67627097255SYOSHIFUJI Hideaki }
67727097255SYOSHIFUJI Hideaki #endif
67827097255SYOSHIFUJI Hideaki 
6791da177e4SLinus Torvalds /*
680554cfb7eSYOSHIFUJI Hideaki  * Default Router Selection (RFC 2461 6.3.6)
6811da177e4SLinus Torvalds  */
6821ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh)
6831da177e4SLinus Torvalds {
684afc154e9SHannes Frederic Sowa 	enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
6855e670d84SDavid Ahern 	struct neighbour *neigh;
686f2c31e32SEric Dumazet 
687145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
6881ba9a895SDavid Ahern 	neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev,
6891ba9a895SDavid Ahern 					  &fib6_nh->fib_nh_gw6);
690145a3621SYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
691145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_lock(&neigh->lock);
692554cfb7eSYOSHIFUJI Hideaki 		if (neigh->nud_state & NUD_VALID)
693afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
694398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
695a5a81f0bSPaul Marks 		else if (!(neigh->nud_state & NUD_FAILED))
696afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
6977e980569SJiri Benc 		else
6987e980569SJiri Benc 			ret = RT6_NUD_FAIL_PROBE;
699398bcbebSYOSHIFUJI Hideaki #endif
700145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_unlock(&neigh->lock);
701afc154e9SHannes Frederic Sowa 	} else {
702afc154e9SHannes Frederic Sowa 		ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
7037e980569SJiri Benc 		      RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
704a5a81f0bSPaul Marks 	}
705145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
706145a3621SYOSHIFUJI Hideaki / 吉藤英明 
707a5a81f0bSPaul Marks 	return ret;
7081da177e4SLinus Torvalds }
7091da177e4SLinus Torvalds 
710702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif,
711702cea56SDavid Ahern 			   int strict)
712554cfb7eSYOSHIFUJI Hideaki {
7136e1809a5SDavid Ahern 	int m = 0;
7144d0c5911SYOSHIFUJI Hideaki 
7156e1809a5SDavid Ahern 	if (!oif || nh->fib_nh_dev->ifindex == oif)
7166e1809a5SDavid Ahern 		m = 2;
7176e1809a5SDavid Ahern 
71877d16f45SYOSHIFUJI Hideaki 	if (!m && (strict & RT6_LOOKUP_F_IFACE))
719afc154e9SHannes Frederic Sowa 		return RT6_NUD_FAIL_HARD;
720ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
721702cea56SDavid Ahern 	m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2;
722ebacaaa0SYOSHIFUJI Hideaki #endif
7231ba9a895SDavid Ahern 	if ((strict & RT6_LOOKUP_F_REACHABLE) &&
724702cea56SDavid Ahern 	    !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) {
7251ba9a895SDavid Ahern 		int n = rt6_check_neigh(nh);
726afc154e9SHannes Frederic Sowa 		if (n < 0)
727afc154e9SHannes Frederic Sowa 			return n;
728afc154e9SHannes Frederic Sowa 	}
729554cfb7eSYOSHIFUJI Hideaki 	return m;
730554cfb7eSYOSHIFUJI Hideaki }
731554cfb7eSYOSHIFUJI Hideaki 
73228679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags,
73328679ed1SDavid Ahern 		       int oif, int strict, int *mpri, bool *do_rr)
734554cfb7eSYOSHIFUJI Hideaki {
735afc154e9SHannes Frederic Sowa 	bool match_do_rr = false;
73628679ed1SDavid Ahern 	bool rc = false;
73728679ed1SDavid Ahern 	int m;
73835103d11SAndy Gospodarek 
73928679ed1SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD)
7408067bb8cSIdo Schimmel 		goto out;
7418067bb8cSIdo Schimmel 
74228679ed1SDavid Ahern 	if (ip6_ignore_linkdown(nh->fib_nh_dev) &&
74328679ed1SDavid Ahern 	    nh->fib_nh_flags & RTNH_F_LINKDOWN &&
744d5d32e4bSDavid Ahern 	    !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
74535103d11SAndy Gospodarek 		goto out;
746554cfb7eSYOSHIFUJI Hideaki 
74728679ed1SDavid Ahern 	m = rt6_score_route(nh, fib6_flags, oif, strict);
7487e980569SJiri Benc 	if (m == RT6_NUD_FAIL_DO_RR) {
749afc154e9SHannes Frederic Sowa 		match_do_rr = true;
750afc154e9SHannes Frederic Sowa 		m = 0; /* lowest valid score */
7517e980569SJiri Benc 	} else if (m == RT6_NUD_FAIL_HARD) {
752f11e6659SDavid S. Miller 		goto out;
7531da177e4SLinus Torvalds 	}
754f11e6659SDavid S. Miller 
755afc154e9SHannes Frederic Sowa 	if (strict & RT6_LOOKUP_F_REACHABLE)
75628679ed1SDavid Ahern 		rt6_probe(nh);
757afc154e9SHannes Frederic Sowa 
7587e980569SJiri Benc 	/* note that m can be RT6_NUD_FAIL_PROBE at this point */
759afc154e9SHannes Frederic Sowa 	if (m > *mpri) {
760afc154e9SHannes Frederic Sowa 		*do_rr = match_do_rr;
761afc154e9SHannes Frederic Sowa 		*mpri = m;
76228679ed1SDavid Ahern 		rc = true;
763afc154e9SHannes Frederic Sowa 	}
764f11e6659SDavid S. Miller out:
76528679ed1SDavid Ahern 	return rc;
7661da177e4SLinus Torvalds }
7671da177e4SLinus Torvalds 
76817a5984eSDavid Ahern struct fib6_nh_frl_arg {
76917a5984eSDavid Ahern 	u32		flags;
77017a5984eSDavid Ahern 	int		oif;
77117a5984eSDavid Ahern 	int		strict;
77217a5984eSDavid Ahern 	int		*mpri;
77317a5984eSDavid Ahern 	bool		*do_rr;
77417a5984eSDavid Ahern 	struct fib6_nh	*nh;
77517a5984eSDavid Ahern };
77617a5984eSDavid Ahern 
77717a5984eSDavid Ahern static int rt6_nh_find_match(struct fib6_nh *nh, void *_arg)
77817a5984eSDavid Ahern {
77917a5984eSDavid Ahern 	struct fib6_nh_frl_arg *arg = _arg;
78017a5984eSDavid Ahern 
78117a5984eSDavid Ahern 	arg->nh = nh;
78217a5984eSDavid Ahern 	return find_match(nh, arg->flags, arg->oif, arg->strict,
78317a5984eSDavid Ahern 			  arg->mpri, arg->do_rr);
78417a5984eSDavid Ahern }
78517a5984eSDavid Ahern 
786b7bc4b6aSDavid Ahern static void __find_rr_leaf(struct fib6_info *f6i_start,
78730c15f03SDavid Ahern 			   struct fib6_info *nomatch, u32 metric,
788b7bc4b6aSDavid Ahern 			   struct fib6_result *res, struct fib6_info **cont,
78930c15f03SDavid Ahern 			   int oif, int strict, bool *do_rr, int *mpri)
79030c15f03SDavid Ahern {
791b7bc4b6aSDavid Ahern 	struct fib6_info *f6i;
79230c15f03SDavid Ahern 
793b7bc4b6aSDavid Ahern 	for (f6i = f6i_start;
794b7bc4b6aSDavid Ahern 	     f6i && f6i != nomatch;
795b7bc4b6aSDavid Ahern 	     f6i = rcu_dereference(f6i->fib6_next)) {
79617a5984eSDavid Ahern 		bool matched = false;
79730c15f03SDavid Ahern 		struct fib6_nh *nh;
79830c15f03SDavid Ahern 
799b7bc4b6aSDavid Ahern 		if (cont && f6i->fib6_metric != metric) {
800b7bc4b6aSDavid Ahern 			*cont = f6i;
80130c15f03SDavid Ahern 			return;
80230c15f03SDavid Ahern 		}
80330c15f03SDavid Ahern 
804b7bc4b6aSDavid Ahern 		if (fib6_check_expired(f6i))
80530c15f03SDavid Ahern 			continue;
80630c15f03SDavid Ahern 
80717a5984eSDavid Ahern 		if (unlikely(f6i->nh)) {
80817a5984eSDavid Ahern 			struct fib6_nh_frl_arg arg = {
80917a5984eSDavid Ahern 				.flags  = f6i->fib6_flags,
81017a5984eSDavid Ahern 				.oif    = oif,
81117a5984eSDavid Ahern 				.strict = strict,
81217a5984eSDavid Ahern 				.mpri   = mpri,
81317a5984eSDavid Ahern 				.do_rr  = do_rr
81417a5984eSDavid Ahern 			};
81517a5984eSDavid Ahern 
81617a5984eSDavid Ahern 			if (nexthop_is_blackhole(f6i->nh)) {
81717a5984eSDavid Ahern 				res->fib6_flags = RTF_REJECT;
81817a5984eSDavid Ahern 				res->fib6_type = RTN_BLACKHOLE;
81917a5984eSDavid Ahern 				res->f6i = f6i;
82017a5984eSDavid Ahern 				res->nh = nexthop_fib6_nh(f6i->nh);
82117a5984eSDavid Ahern 				return;
82217a5984eSDavid Ahern 			}
82317a5984eSDavid Ahern 			if (nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_find_match,
82417a5984eSDavid Ahern 						     &arg)) {
82517a5984eSDavid Ahern 				matched = true;
82617a5984eSDavid Ahern 				nh = arg.nh;
82717a5984eSDavid Ahern 			}
82817a5984eSDavid Ahern 		} else {
8291cf844c7SDavid Ahern 			nh = f6i->fib6_nh;
83017a5984eSDavid Ahern 			if (find_match(nh, f6i->fib6_flags, oif, strict,
83117a5984eSDavid Ahern 				       mpri, do_rr))
83217a5984eSDavid Ahern 				matched = true;
83317a5984eSDavid Ahern 		}
83417a5984eSDavid Ahern 		if (matched) {
835b7bc4b6aSDavid Ahern 			res->f6i = f6i;
836b7bc4b6aSDavid Ahern 			res->nh = nh;
8377d21fec9SDavid Ahern 			res->fib6_flags = f6i->fib6_flags;
8387d21fec9SDavid Ahern 			res->fib6_type = f6i->fib6_type;
839b7bc4b6aSDavid Ahern 		}
84030c15f03SDavid Ahern 	}
84130c15f03SDavid Ahern }
84230c15f03SDavid Ahern 
843b7bc4b6aSDavid Ahern static void find_rr_leaf(struct fib6_node *fn, struct fib6_info *leaf,
844b7bc4b6aSDavid Ahern 			 struct fib6_info *rr_head, int oif, int strict,
845b7bc4b6aSDavid Ahern 			 bool *do_rr, struct fib6_result *res)
846f11e6659SDavid S. Miller {
847b7bc4b6aSDavid Ahern 	u32 metric = rr_head->fib6_metric;
848b7bc4b6aSDavid Ahern 	struct fib6_info *cont = NULL;
849f11e6659SDavid S. Miller 	int mpri = -1;
850f11e6659SDavid S. Miller 
851b7bc4b6aSDavid Ahern 	__find_rr_leaf(rr_head, NULL, metric, res, &cont,
85230c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
8539fbdcfafSSteffen Klassert 
854b7bc4b6aSDavid Ahern 	__find_rr_leaf(leaf, rr_head, metric, res, &cont,
85530c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
8569fbdcfafSSteffen Klassert 
857b7bc4b6aSDavid Ahern 	if (res->f6i || !cont)
858b7bc4b6aSDavid Ahern 		return;
8599fbdcfafSSteffen Klassert 
860b7bc4b6aSDavid Ahern 	__find_rr_leaf(cont, NULL, metric, res, NULL,
86130c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
862f11e6659SDavid S. Miller }
863f11e6659SDavid S. Miller 
864b7bc4b6aSDavid Ahern static void rt6_select(struct net *net, struct fib6_node *fn, int oif,
865b7bc4b6aSDavid Ahern 		       struct fib6_result *res, int strict)
866f11e6659SDavid S. Miller {
8678d1c802bSDavid Ahern 	struct fib6_info *leaf = rcu_dereference(fn->leaf);
868b7bc4b6aSDavid Ahern 	struct fib6_info *rt0;
869afc154e9SHannes Frederic Sowa 	bool do_rr = false;
87017ecf590SWei Wang 	int key_plen;
871f11e6659SDavid S. Miller 
872b7bc4b6aSDavid Ahern 	/* make sure this function or its helpers sets f6i */
873b7bc4b6aSDavid Ahern 	res->f6i = NULL;
874b7bc4b6aSDavid Ahern 
875421842edSDavid Ahern 	if (!leaf || leaf == net->ipv6.fib6_null_entry)
876b7bc4b6aSDavid Ahern 		goto out;
8778d1040e8SWei Wang 
87866f5d6ceSWei Wang 	rt0 = rcu_dereference(fn->rr_ptr);
879f11e6659SDavid S. Miller 	if (!rt0)
88066f5d6ceSWei Wang 		rt0 = leaf;
881f11e6659SDavid S. Miller 
88217ecf590SWei Wang 	/* Double check to make sure fn is not an intermediate node
88317ecf590SWei Wang 	 * and fn->leaf does not points to its child's leaf
88417ecf590SWei Wang 	 * (This might happen if all routes under fn are deleted from
88517ecf590SWei Wang 	 * the tree and fib6_repair_tree() is called on the node.)
88617ecf590SWei Wang 	 */
88793c2fb25SDavid Ahern 	key_plen = rt0->fib6_dst.plen;
88817ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES
88993c2fb25SDavid Ahern 	if (rt0->fib6_src.plen)
89093c2fb25SDavid Ahern 		key_plen = rt0->fib6_src.plen;
89117ecf590SWei Wang #endif
89217ecf590SWei Wang 	if (fn->fn_bit != key_plen)
893b7bc4b6aSDavid Ahern 		goto out;
89417ecf590SWei Wang 
895b7bc4b6aSDavid Ahern 	find_rr_leaf(fn, leaf, rt0, oif, strict, &do_rr, res);
896afc154e9SHannes Frederic Sowa 	if (do_rr) {
8978fb11a9aSDavid Ahern 		struct fib6_info *next = rcu_dereference(rt0->fib6_next);
898f11e6659SDavid S. Miller 
899554cfb7eSYOSHIFUJI Hideaki 		/* no entries matched; do round-robin */
90093c2fb25SDavid Ahern 		if (!next || next->fib6_metric != rt0->fib6_metric)
9018d1040e8SWei Wang 			next = leaf;
902f11e6659SDavid S. Miller 
90366f5d6ceSWei Wang 		if (next != rt0) {
90493c2fb25SDavid Ahern 			spin_lock_bh(&leaf->fib6_table->tb6_lock);
90566f5d6ceSWei Wang 			/* make sure next is not being deleted from the tree */
90693c2fb25SDavid Ahern 			if (next->fib6_node)
90766f5d6ceSWei Wang 				rcu_assign_pointer(fn->rr_ptr, next);
90893c2fb25SDavid Ahern 			spin_unlock_bh(&leaf->fib6_table->tb6_lock);
90966f5d6ceSWei Wang 		}
910554cfb7eSYOSHIFUJI Hideaki 	}
911554cfb7eSYOSHIFUJI Hideaki 
912b7bc4b6aSDavid Ahern out:
913b7bc4b6aSDavid Ahern 	if (!res->f6i) {
914b7bc4b6aSDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
9151cf844c7SDavid Ahern 		res->nh = res->f6i->fib6_nh;
9167d21fec9SDavid Ahern 		res->fib6_flags = res->f6i->fib6_flags;
9177d21fec9SDavid Ahern 		res->fib6_type = res->f6i->fib6_type;
918b7bc4b6aSDavid Ahern 	}
9191da177e4SLinus Torvalds }
9201da177e4SLinus Torvalds 
92185bd05deSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_result *res)
9228b9df265SMartin KaFai Lau {
92385bd05deSDavid Ahern 	return (res->f6i->fib6_flags & RTF_NONEXTHOP) ||
92485bd05deSDavid Ahern 	       res->nh->fib_nh_gw_family;
9258b9df265SMartin KaFai Lau }
9268b9df265SMartin KaFai Lau 
92770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
92870ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
929b71d1d42SEric Dumazet 		  const struct in6_addr *gwaddr)
93070ceb4f5SYOSHIFUJI Hideaki {
931c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
93270ceb4f5SYOSHIFUJI Hideaki 	struct route_info *rinfo = (struct route_info *) opt;
93370ceb4f5SYOSHIFUJI Hideaki 	struct in6_addr prefix_buf, *prefix;
93470ceb4f5SYOSHIFUJI Hideaki 	unsigned int pref;
9354bed72e4SYOSHIFUJI Hideaki 	unsigned long lifetime;
9368d1c802bSDavid Ahern 	struct fib6_info *rt;
93770ceb4f5SYOSHIFUJI Hideaki 
93870ceb4f5SYOSHIFUJI Hideaki 	if (len < sizeof(struct route_info)) {
93970ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94070ceb4f5SYOSHIFUJI Hideaki 	}
94170ceb4f5SYOSHIFUJI Hideaki 
94270ceb4f5SYOSHIFUJI Hideaki 	/* Sanity check for prefix_len and length */
94370ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length > 3) {
94470ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94570ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 128) {
94670ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94770ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 64) {
94870ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 2) {
94970ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
95070ceb4f5SYOSHIFUJI Hideaki 		}
95170ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 0) {
95270ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 1) {
95370ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
95470ceb4f5SYOSHIFUJI Hideaki 		}
95570ceb4f5SYOSHIFUJI Hideaki 	}
95670ceb4f5SYOSHIFUJI Hideaki 
95770ceb4f5SYOSHIFUJI Hideaki 	pref = rinfo->route_pref;
95870ceb4f5SYOSHIFUJI Hideaki 	if (pref == ICMPV6_ROUTER_PREF_INVALID)
9593933fc95SJens Rosenboom 		return -EINVAL;
96070ceb4f5SYOSHIFUJI Hideaki 
9614bed72e4SYOSHIFUJI Hideaki 	lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
96270ceb4f5SYOSHIFUJI Hideaki 
96370ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length == 3)
96470ceb4f5SYOSHIFUJI Hideaki 		prefix = (struct in6_addr *)rinfo->prefix;
96570ceb4f5SYOSHIFUJI Hideaki 	else {
96670ceb4f5SYOSHIFUJI Hideaki 		/* this function is safe */
96770ceb4f5SYOSHIFUJI Hideaki 		ipv6_addr_prefix(&prefix_buf,
96870ceb4f5SYOSHIFUJI Hideaki 				 (struct in6_addr *)rinfo->prefix,
96970ceb4f5SYOSHIFUJI Hideaki 				 rinfo->prefix_len);
97070ceb4f5SYOSHIFUJI Hideaki 		prefix = &prefix_buf;
97170ceb4f5SYOSHIFUJI Hideaki 	}
97270ceb4f5SYOSHIFUJI Hideaki 
973f104a567SDuan Jiong 	if (rinfo->prefix_len == 0)
974afb1d4b5SDavid Ahern 		rt = rt6_get_dflt_router(net, gwaddr, dev);
975f104a567SDuan Jiong 	else
976f104a567SDuan Jiong 		rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
977830218c1SDavid Ahern 					gwaddr, dev);
97870ceb4f5SYOSHIFUJI Hideaki 
97970ceb4f5SYOSHIFUJI Hideaki 	if (rt && !lifetime) {
980afb1d4b5SDavid Ahern 		ip6_del_rt(net, rt);
98170ceb4f5SYOSHIFUJI Hideaki 		rt = NULL;
98270ceb4f5SYOSHIFUJI Hideaki 	}
98370ceb4f5SYOSHIFUJI Hideaki 
98470ceb4f5SYOSHIFUJI Hideaki 	if (!rt && lifetime)
985830218c1SDavid Ahern 		rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
986830218c1SDavid Ahern 					dev, pref);
98770ceb4f5SYOSHIFUJI Hideaki 	else if (rt)
98893c2fb25SDavid Ahern 		rt->fib6_flags = RTF_ROUTEINFO |
98993c2fb25SDavid Ahern 				 (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
99070ceb4f5SYOSHIFUJI Hideaki 
99170ceb4f5SYOSHIFUJI Hideaki 	if (rt) {
9921716a961SGao feng 		if (!addrconf_finite_timeout(lifetime))
99314895687SDavid Ahern 			fib6_clean_expires(rt);
9941716a961SGao feng 		else
99514895687SDavid Ahern 			fib6_set_expires(rt, jiffies + HZ * lifetime);
9961716a961SGao feng 
99793531c67SDavid Ahern 		fib6_info_release(rt);
99870ceb4f5SYOSHIFUJI Hideaki 	}
99970ceb4f5SYOSHIFUJI Hideaki 	return 0;
100070ceb4f5SYOSHIFUJI Hideaki }
100170ceb4f5SYOSHIFUJI Hideaki #endif
100270ceb4f5SYOSHIFUJI Hideaki 
1003ae90d867SDavid Ahern /*
1004ae90d867SDavid Ahern  *	Misc support functions
1005ae90d867SDavid Ahern  */
1006ae90d867SDavid Ahern 
1007ae90d867SDavid Ahern /* called with rcu_lock held */
10080d161581SDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(const struct fib6_result *res)
1009ae90d867SDavid Ahern {
10100d161581SDavid Ahern 	struct net_device *dev = res->nh->fib_nh_dev;
1011ae90d867SDavid Ahern 
10127d21fec9SDavid Ahern 	if (res->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) {
1013ae90d867SDavid Ahern 		/* for copies of local routes, dst->dev needs to be the
1014ae90d867SDavid Ahern 		 * device if it is a master device, the master device if
1015ae90d867SDavid Ahern 		 * device is enslaved, and the loopback as the default
1016ae90d867SDavid Ahern 		 */
1017ae90d867SDavid Ahern 		if (netif_is_l3_slave(dev) &&
10187d21fec9SDavid Ahern 		    !rt6_need_strict(&res->f6i->fib6_dst.addr))
1019ae90d867SDavid Ahern 			dev = l3mdev_master_dev_rcu(dev);
1020ae90d867SDavid Ahern 		else if (!netif_is_l3_master(dev))
1021ae90d867SDavid Ahern 			dev = dev_net(dev)->loopback_dev;
1022ae90d867SDavid Ahern 		/* last case is netif_is_l3_master(dev) is true in which
1023ae90d867SDavid Ahern 		 * case we want dev returned to be dev
1024ae90d867SDavid Ahern 		 */
1025ae90d867SDavid Ahern 	}
1026ae90d867SDavid Ahern 
1027ae90d867SDavid Ahern 	return dev;
1028ae90d867SDavid Ahern }
1029ae90d867SDavid Ahern 
10306edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = {
10316edb3c96SDavid Ahern 	[RTN_UNSPEC]	= 0,
10326edb3c96SDavid Ahern 	[RTN_UNICAST]	= 0,
10336edb3c96SDavid Ahern 	[RTN_LOCAL]	= 0,
10346edb3c96SDavid Ahern 	[RTN_BROADCAST]	= 0,
10356edb3c96SDavid Ahern 	[RTN_ANYCAST]	= 0,
10366edb3c96SDavid Ahern 	[RTN_MULTICAST]	= 0,
10376edb3c96SDavid Ahern 	[RTN_BLACKHOLE]	= -EINVAL,
10386edb3c96SDavid Ahern 	[RTN_UNREACHABLE] = -EHOSTUNREACH,
10396edb3c96SDavid Ahern 	[RTN_PROHIBIT]	= -EACCES,
10406edb3c96SDavid Ahern 	[RTN_THROW]	= -EAGAIN,
10416edb3c96SDavid Ahern 	[RTN_NAT]	= -EINVAL,
10426edb3c96SDavid Ahern 	[RTN_XRESOLVE]	= -EINVAL,
10436edb3c96SDavid Ahern };
10446edb3c96SDavid Ahern 
10456edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type)
10466edb3c96SDavid Ahern {
10476edb3c96SDavid Ahern 	return fib6_prop[fib6_type];
10486edb3c96SDavid Ahern }
10496edb3c96SDavid Ahern 
10508d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt)
10513b6761d1SDavid Ahern {
10523b6761d1SDavid Ahern 	unsigned short flags = 0;
10533b6761d1SDavid Ahern 
10543b6761d1SDavid Ahern 	if (rt->dst_nocount)
10553b6761d1SDavid Ahern 		flags |= DST_NOCOUNT;
10563b6761d1SDavid Ahern 	if (rt->dst_nopolicy)
10573b6761d1SDavid Ahern 		flags |= DST_NOPOLICY;
10583b6761d1SDavid Ahern 	if (rt->dst_host)
10593b6761d1SDavid Ahern 		flags |= DST_HOST;
10603b6761d1SDavid Ahern 
10613b6761d1SDavid Ahern 	return flags;
10623b6761d1SDavid Ahern }
10633b6761d1SDavid Ahern 
10647d21fec9SDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, u8 fib6_type)
10656edb3c96SDavid Ahern {
10667d21fec9SDavid Ahern 	rt->dst.error = ip6_rt_type_to_error(fib6_type);
10676edb3c96SDavid Ahern 
10687d21fec9SDavid Ahern 	switch (fib6_type) {
10696edb3c96SDavid Ahern 	case RTN_BLACKHOLE:
10706edb3c96SDavid Ahern 		rt->dst.output = dst_discard_out;
10716edb3c96SDavid Ahern 		rt->dst.input = dst_discard;
10726edb3c96SDavid Ahern 		break;
10736edb3c96SDavid Ahern 	case RTN_PROHIBIT:
10746edb3c96SDavid Ahern 		rt->dst.output = ip6_pkt_prohibit_out;
10756edb3c96SDavid Ahern 		rt->dst.input = ip6_pkt_prohibit;
10766edb3c96SDavid Ahern 		break;
10776edb3c96SDavid Ahern 	case RTN_THROW:
10786edb3c96SDavid Ahern 	case RTN_UNREACHABLE:
10796edb3c96SDavid Ahern 	default:
10806edb3c96SDavid Ahern 		rt->dst.output = ip6_pkt_discard_out;
10816edb3c96SDavid Ahern 		rt->dst.input = ip6_pkt_discard;
10826edb3c96SDavid Ahern 		break;
10836edb3c96SDavid Ahern 	}
10846edb3c96SDavid Ahern }
10856edb3c96SDavid Ahern 
10860d161581SDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, const struct fib6_result *res)
10876edb3c96SDavid Ahern {
10887d21fec9SDavid Ahern 	struct fib6_info *f6i = res->f6i;
10890d161581SDavid Ahern 
10907d21fec9SDavid Ahern 	if (res->fib6_flags & RTF_REJECT) {
10917d21fec9SDavid Ahern 		ip6_rt_init_dst_reject(rt, res->fib6_type);
10926edb3c96SDavid Ahern 		return;
10936edb3c96SDavid Ahern 	}
10946edb3c96SDavid Ahern 
10956edb3c96SDavid Ahern 	rt->dst.error = 0;
10966edb3c96SDavid Ahern 	rt->dst.output = ip6_output;
10976edb3c96SDavid Ahern 
10987d21fec9SDavid Ahern 	if (res->fib6_type == RTN_LOCAL || res->fib6_type == RTN_ANYCAST) {
10996edb3c96SDavid Ahern 		rt->dst.input = ip6_input;
11007d21fec9SDavid Ahern 	} else if (ipv6_addr_type(&f6i->fib6_dst.addr) & IPV6_ADDR_MULTICAST) {
11016edb3c96SDavid Ahern 		rt->dst.input = ip6_mc_input;
11026edb3c96SDavid Ahern 	} else {
11036edb3c96SDavid Ahern 		rt->dst.input = ip6_forward;
11046edb3c96SDavid Ahern 	}
11056edb3c96SDavid Ahern 
11060d161581SDavid Ahern 	if (res->nh->fib_nh_lws) {
11070d161581SDavid Ahern 		rt->dst.lwtstate = lwtstate_get(res->nh->fib_nh_lws);
11086edb3c96SDavid Ahern 		lwtunnel_set_redirect(&rt->dst);
11096edb3c96SDavid Ahern 	}
11106edb3c96SDavid Ahern 
11116edb3c96SDavid Ahern 	rt->dst.lastuse = jiffies;
11126edb3c96SDavid Ahern }
11136edb3c96SDavid Ahern 
1114e873e4b9SWei Wang /* Caller must already hold reference to @from */
11158d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from)
1116ae90d867SDavid Ahern {
1117ae90d867SDavid Ahern 	rt->rt6i_flags &= ~RTF_EXPIRES;
1118a68886a6SDavid Ahern 	rcu_assign_pointer(rt->from, from);
1119e1255ed4SDavid Ahern 	ip_dst_init_metrics(&rt->dst, from->fib6_metrics);
1120ae90d867SDavid Ahern }
1121ae90d867SDavid Ahern 
11220d161581SDavid Ahern /* Caller must already hold reference to f6i in result */
11230d161581SDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, const struct fib6_result *res)
1124ae90d867SDavid Ahern {
11250d161581SDavid Ahern 	const struct fib6_nh *nh = res->nh;
11260d161581SDavid Ahern 	const struct net_device *dev = nh->fib_nh_dev;
11270d161581SDavid Ahern 	struct fib6_info *f6i = res->f6i;
1128dcd1f572SDavid Ahern 
11290d161581SDavid Ahern 	ip6_rt_init_dst(rt, res);
11306edb3c96SDavid Ahern 
11310d161581SDavid Ahern 	rt->rt6i_dst = f6i->fib6_dst;
1132dcd1f572SDavid Ahern 	rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL;
11337d21fec9SDavid Ahern 	rt->rt6i_flags = res->fib6_flags;
11340d161581SDavid Ahern 	if (nh->fib_nh_gw_family) {
11350d161581SDavid Ahern 		rt->rt6i_gateway = nh->fib_nh_gw6;
11362b2450caSDavid Ahern 		rt->rt6i_flags |= RTF_GATEWAY;
11372b2450caSDavid Ahern 	}
11380d161581SDavid Ahern 	rt6_set_from(rt, f6i);
1139ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES
11400d161581SDavid Ahern 	rt->rt6i_src = f6i->fib6_src;
1141ae90d867SDavid Ahern #endif
1142ae90d867SDavid Ahern }
1143ae90d867SDavid Ahern 
1144a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
1145a3c00e46SMartin KaFai Lau 					struct in6_addr *saddr)
1146a3c00e46SMartin KaFai Lau {
114766f5d6ceSWei Wang 	struct fib6_node *pn, *sn;
1148a3c00e46SMartin KaFai Lau 	while (1) {
1149a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_TL_ROOT)
1150a3c00e46SMartin KaFai Lau 			return NULL;
115166f5d6ceSWei Wang 		pn = rcu_dereference(fn->parent);
115266f5d6ceSWei Wang 		sn = FIB6_SUBTREE(pn);
115366f5d6ceSWei Wang 		if (sn && sn != fn)
11546454743bSDavid Ahern 			fn = fib6_node_lookup(sn, NULL, saddr);
1155a3c00e46SMartin KaFai Lau 		else
1156a3c00e46SMartin KaFai Lau 			fn = pn;
1157a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_RTINFO)
1158a3c00e46SMartin KaFai Lau 			return fn;
1159a3c00e46SMartin KaFai Lau 	}
1160a3c00e46SMartin KaFai Lau }
1161c71099acSThomas Graf 
116210585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt)
1163d3843fe5SWei Wang {
1164d3843fe5SWei Wang 	struct rt6_info *rt = *prt;
1165d3843fe5SWei Wang 
1166d3843fe5SWei Wang 	if (dst_hold_safe(&rt->dst))
1167d3843fe5SWei Wang 		return true;
116810585b43SDavid Ahern 	if (net) {
1169d3843fe5SWei Wang 		rt = net->ipv6.ip6_null_entry;
1170d3843fe5SWei Wang 		dst_hold(&rt->dst);
1171d3843fe5SWei Wang 	} else {
1172d3843fe5SWei Wang 		rt = NULL;
1173d3843fe5SWei Wang 	}
1174d3843fe5SWei Wang 	*prt = rt;
1175d3843fe5SWei Wang 	return false;
1176d3843fe5SWei Wang }
1177d3843fe5SWei Wang 
1178dec9b0e2SDavid Ahern /* called with rcu_lock held */
11799b6b35abSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(const struct fib6_result *res)
1180dec9b0e2SDavid Ahern {
11819b6b35abSDavid Ahern 	struct net_device *dev = res->nh->fib_nh_dev;
11829b6b35abSDavid Ahern 	struct fib6_info *f6i = res->f6i;
11839b6b35abSDavid Ahern 	unsigned short flags;
1184dec9b0e2SDavid Ahern 	struct rt6_info *nrt;
1185dec9b0e2SDavid Ahern 
11869b6b35abSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
11871c87e79aSXin Long 		goto fallback;
1188e873e4b9SWei Wang 
11899b6b35abSDavid Ahern 	flags = fib6_info_dst_flags(f6i);
119093531c67SDavid Ahern 	nrt = ip6_dst_alloc(dev_net(dev), dev, flags);
11911c87e79aSXin Long 	if (!nrt) {
11929b6b35abSDavid Ahern 		fib6_info_release(f6i);
11931c87e79aSXin Long 		goto fallback;
11941c87e79aSXin Long 	}
1195dec9b0e2SDavid Ahern 
11960d161581SDavid Ahern 	ip6_rt_copy_init(nrt, res);
11971c87e79aSXin Long 	return nrt;
11981c87e79aSXin Long 
11991c87e79aSXin Long fallback:
12001c87e79aSXin Long 	nrt = dev_net(dev)->ipv6.ip6_null_entry;
12011c87e79aSXin Long 	dst_hold(&nrt->dst);
1202dec9b0e2SDavid Ahern 	return nrt;
1203dec9b0e2SDavid Ahern }
1204dec9b0e2SDavid Ahern 
12058ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net,
12068ed67789SDaniel Lezcano 					     struct fib6_table *table,
1207b75cc8f9SDavid Ahern 					     struct flowi6 *fl6,
1208b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
1209b75cc8f9SDavid Ahern 					     int flags)
12101da177e4SLinus Torvalds {
1211b1d40991SDavid Ahern 	struct fib6_result res = {};
12121da177e4SLinus Torvalds 	struct fib6_node *fn;
121323fb93a4SDavid Ahern 	struct rt6_info *rt;
12141da177e4SLinus Torvalds 
1215b6cdbc85SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1216b6cdbc85SDavid Ahern 		flags &= ~RT6_LOOKUP_F_IFACE;
1217b6cdbc85SDavid Ahern 
121866f5d6ceSWei Wang 	rcu_read_lock();
12196454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
1220c71099acSThomas Graf restart:
1221b1d40991SDavid Ahern 	res.f6i = rcu_dereference(fn->leaf);
1222b1d40991SDavid Ahern 	if (!res.f6i)
1223b1d40991SDavid Ahern 		res.f6i = net->ipv6.fib6_null_entry;
1224af52a52cSDavid Ahern 	else
122575ef7389SDavid Ahern 		rt6_device_match(net, &res, &fl6->saddr, fl6->flowi6_oif,
122675ef7389SDavid Ahern 				 flags);
1227af52a52cSDavid Ahern 
1228b1d40991SDavid Ahern 	if (res.f6i == net->ipv6.fib6_null_entry) {
1229a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
1230a3c00e46SMartin KaFai Lau 		if (fn)
1231a3c00e46SMartin KaFai Lau 			goto restart;
1232af52a52cSDavid Ahern 
1233af52a52cSDavid Ahern 		rt = net->ipv6.ip6_null_entry;
1234af52a52cSDavid Ahern 		dst_hold(&rt->dst);
1235af52a52cSDavid Ahern 		goto out;
1236f88d8ea6SDavid Ahern 	} else if (res.fib6_flags & RTF_REJECT) {
1237f88d8ea6SDavid Ahern 		goto do_create;
1238a3c00e46SMartin KaFai Lau 	}
12392b760fcfSWei Wang 
1240b1d40991SDavid Ahern 	fib6_select_path(net, &res, fl6, fl6->flowi6_oif,
1241b1d40991SDavid Ahern 			 fl6->flowi6_oif != 0, skb, flags);
1242b1d40991SDavid Ahern 
12434c9483b2SDavid S. Miller 	/* Search through exception table */
12447e4b5128SDavid Ahern 	rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr);
124523fb93a4SDavid Ahern 	if (rt) {
124610585b43SDavid Ahern 		if (ip6_hold_safe(net, &rt))
1247d3843fe5SWei Wang 			dst_use_noref(&rt->dst, jiffies);
124823fb93a4SDavid Ahern 	} else {
1249f88d8ea6SDavid Ahern do_create:
12509b6b35abSDavid Ahern 		rt = ip6_create_rt_rcu(&res);
1251dec9b0e2SDavid Ahern 	}
1252d3843fe5SWei Wang 
1253af52a52cSDavid Ahern out:
12548ff2e5b2SDavid Ahern 	trace_fib6_table_lookup(net, &res, table, fl6);
1255af52a52cSDavid Ahern 
125666f5d6ceSWei Wang 	rcu_read_unlock();
1257b811580dSDavid Ahern 
12581da177e4SLinus Torvalds 	return rt;
1259c71099acSThomas Graf }
1260c71099acSThomas Graf 
1261ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
1262b75cc8f9SDavid Ahern 				   const struct sk_buff *skb, int flags)
1263ea6e574eSFlorian Westphal {
1264b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup);
1265ea6e574eSFlorian Westphal }
1266ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup);
1267ea6e574eSFlorian Westphal 
12689acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
1269b75cc8f9SDavid Ahern 			    const struct in6_addr *saddr, int oif,
1270b75cc8f9SDavid Ahern 			    const struct sk_buff *skb, int strict)
1271c71099acSThomas Graf {
12724c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
12734c9483b2SDavid S. Miller 		.flowi6_oif = oif,
12744c9483b2SDavid S. Miller 		.daddr = *daddr,
1275c71099acSThomas Graf 	};
1276c71099acSThomas Graf 	struct dst_entry *dst;
127777d16f45SYOSHIFUJI Hideaki 	int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
1278c71099acSThomas Graf 
1279adaa70bbSThomas Graf 	if (saddr) {
12804c9483b2SDavid S. Miller 		memcpy(&fl6.saddr, saddr, sizeof(*saddr));
1281adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
1282adaa70bbSThomas Graf 	}
1283adaa70bbSThomas Graf 
1284b75cc8f9SDavid Ahern 	dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup);
1285c71099acSThomas Graf 	if (dst->error == 0)
1286c71099acSThomas Graf 		return (struct rt6_info *) dst;
1287c71099acSThomas Graf 
1288c71099acSThomas Graf 	dst_release(dst);
1289c71099acSThomas Graf 
12901da177e4SLinus Torvalds 	return NULL;
12911da177e4SLinus Torvalds }
12927159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup);
12937159039aSYOSHIFUJI Hideaki 
1294c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock.
12951cfb71eeSWei Wang  * It takes new route entry, the addition fails by any reason the
12961cfb71eeSWei Wang  * route is released.
12971cfb71eeSWei Wang  * Caller must hold dst before calling it.
12981da177e4SLinus Torvalds  */
12991da177e4SLinus Torvalds 
13008d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info,
1301333c4301SDavid Ahern 			struct netlink_ext_ack *extack)
13021da177e4SLinus Torvalds {
13031da177e4SLinus Torvalds 	int err;
1304c71099acSThomas Graf 	struct fib6_table *table;
13051da177e4SLinus Torvalds 
130693c2fb25SDavid Ahern 	table = rt->fib6_table;
130766f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
1308d4ead6b3SDavid Ahern 	err = fib6_add(&table->tb6_root, rt, info, extack);
130966f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
13101da177e4SLinus Torvalds 
13111da177e4SLinus Torvalds 	return err;
13121da177e4SLinus Torvalds }
13131da177e4SLinus Torvalds 
13148d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt)
131540e22e8fSThomas Graf {
1316afb1d4b5SDavid Ahern 	struct nl_info info = {	.nl_net = net, };
1317e715b6d3SFlorian Westphal 
1318d4ead6b3SDavid Ahern 	return __ip6_ins_rt(rt, &info, NULL);
131940e22e8fSThomas Graf }
132040e22e8fSThomas Graf 
132185bd05deSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(const struct fib6_result *res,
132221efcfa0SEric Dumazet 					   const struct in6_addr *daddr,
1323b71d1d42SEric Dumazet 					   const struct in6_addr *saddr)
13241da177e4SLinus Torvalds {
132585bd05deSDavid Ahern 	struct fib6_info *f6i = res->f6i;
13264832c30dSDavid Ahern 	struct net_device *dev;
13271da177e4SLinus Torvalds 	struct rt6_info *rt;
13281da177e4SLinus Torvalds 
13291da177e4SLinus Torvalds 	/*
13301da177e4SLinus Torvalds 	 *	Clone the route.
13311da177e4SLinus Torvalds 	 */
13321da177e4SLinus Torvalds 
133385bd05deSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
1334e873e4b9SWei Wang 		return NULL;
1335e873e4b9SWei Wang 
13360d161581SDavid Ahern 	dev = ip6_rt_get_dev_rcu(res);
133793531c67SDavid Ahern 	rt = ip6_dst_alloc(dev_net(dev), dev, 0);
1338e873e4b9SWei Wang 	if (!rt) {
133985bd05deSDavid Ahern 		fib6_info_release(f6i);
134083a09abdSMartin KaFai Lau 		return NULL;
1341e873e4b9SWei Wang 	}
134283a09abdSMartin KaFai Lau 
13430d161581SDavid Ahern 	ip6_rt_copy_init(rt, res);
13448b9df265SMartin KaFai Lau 	rt->rt6i_flags |= RTF_CACHE;
134583a09abdSMartin KaFai Lau 	rt->dst.flags |= DST_HOST;
134683a09abdSMartin KaFai Lau 	rt->rt6i_dst.addr = *daddr;
134783a09abdSMartin KaFai Lau 	rt->rt6i_dst.plen = 128;
13488b9df265SMartin KaFai Lau 
134985bd05deSDavid Ahern 	if (!rt6_is_gw_or_nonexthop(res)) {
135085bd05deSDavid Ahern 		if (f6i->fib6_dst.plen != 128 &&
135185bd05deSDavid Ahern 		    ipv6_addr_equal(&f6i->fib6_dst.addr, daddr))
135258c4fb86SYOSHIFUJI Hideaki 			rt->rt6i_flags |= RTF_ANYCAST;
13531da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
13541da177e4SLinus Torvalds 		if (rt->rt6i_src.plen && saddr) {
13554e3fd7a0SAlexey Dobriyan 			rt->rt6i_src.addr = *saddr;
13561da177e4SLinus Torvalds 			rt->rt6i_src.plen = 128;
13571da177e4SLinus Torvalds 		}
13581da177e4SLinus Torvalds #endif
135995a9a5baSYOSHIFUJI Hideaki 	}
136095a9a5baSYOSHIFUJI Hideaki 
1361299d9939SYOSHIFUJI Hideaki 	return rt;
1362299d9939SYOSHIFUJI Hideaki }
1363299d9939SYOSHIFUJI Hideaki 
1364db3fedeeSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(const struct fib6_result *res)
1365d52d3997SMartin KaFai Lau {
1366db3fedeeSDavid Ahern 	struct fib6_info *f6i = res->f6i;
1367db3fedeeSDavid Ahern 	unsigned short flags = fib6_info_dst_flags(f6i);
13684832c30dSDavid Ahern 	struct net_device *dev;
1369d52d3997SMartin KaFai Lau 	struct rt6_info *pcpu_rt;
1370d52d3997SMartin KaFai Lau 
1371db3fedeeSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
1372e873e4b9SWei Wang 		return NULL;
1373e873e4b9SWei Wang 
13744832c30dSDavid Ahern 	rcu_read_lock();
13750d161581SDavid Ahern 	dev = ip6_rt_get_dev_rcu(res);
137693531c67SDavid Ahern 	pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags);
13774832c30dSDavid Ahern 	rcu_read_unlock();
1378e873e4b9SWei Wang 	if (!pcpu_rt) {
1379db3fedeeSDavid Ahern 		fib6_info_release(f6i);
1380d52d3997SMartin KaFai Lau 		return NULL;
1381e873e4b9SWei Wang 	}
13820d161581SDavid Ahern 	ip6_rt_copy_init(pcpu_rt, res);
1383d52d3997SMartin KaFai Lau 	pcpu_rt->rt6i_flags |= RTF_PCPU;
1384d52d3997SMartin KaFai Lau 	return pcpu_rt;
1385d52d3997SMartin KaFai Lau }
1386d52d3997SMartin KaFai Lau 
138766f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */
1388db3fedeeSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(const struct fib6_result *res)
1389d52d3997SMartin KaFai Lau {
1390c353071aSEric Dumazet 	struct rt6_info *pcpu_rt;
1391d52d3997SMartin KaFai Lau 
1392c353071aSEric Dumazet 	pcpu_rt = this_cpu_read(*res->nh->rt6i_pcpu);
1393d52d3997SMartin KaFai Lau 
1394a73e4195SMartin KaFai Lau 	return pcpu_rt;
1395a73e4195SMartin KaFai Lau }
1396a73e4195SMartin KaFai Lau 
1397afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net,
1398db3fedeeSDavid Ahern 					    const struct fib6_result *res)
1399a73e4195SMartin KaFai Lau {
1400a73e4195SMartin KaFai Lau 	struct rt6_info *pcpu_rt, *prev, **p;
1401d52d3997SMartin KaFai Lau 
1402db3fedeeSDavid Ahern 	pcpu_rt = ip6_rt_pcpu_alloc(res);
14030e09edccSWei Wang 	if (!pcpu_rt)
14040e09edccSWei Wang 		return NULL;
1405d52d3997SMartin KaFai Lau 
1406f40b6ae2SDavid Ahern 	p = this_cpu_ptr(res->nh->rt6i_pcpu);
1407d52d3997SMartin KaFai Lau 	prev = cmpxchg(p, NULL, pcpu_rt);
1408951f788aSEric Dumazet 	BUG_ON(prev);
1409a94b9367SWei Wang 
141061fb0d01SEric Dumazet 	if (res->f6i->fib6_destroying) {
141161fb0d01SEric Dumazet 		struct fib6_info *from;
141261fb0d01SEric Dumazet 
141361fb0d01SEric Dumazet 		from = xchg((__force struct fib6_info **)&pcpu_rt->from, NULL);
141461fb0d01SEric Dumazet 		fib6_info_release(from);
141561fb0d01SEric Dumazet 	}
141661fb0d01SEric Dumazet 
1417d52d3997SMartin KaFai Lau 	return pcpu_rt;
1418d52d3997SMartin KaFai Lau }
1419d52d3997SMartin KaFai Lau 
142035732d01SWei Wang /* exception hash table implementation
142135732d01SWei Wang  */
142235732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock);
142335732d01SWei Wang 
142435732d01SWei Wang /* Remove rt6_ex from hash table and free the memory
142535732d01SWei Wang  * Caller must hold rt6_exception_lock
142635732d01SWei Wang  */
142735732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
142835732d01SWei Wang 				 struct rt6_exception *rt6_ex)
142935732d01SWei Wang {
1430f5b51fe8SPaolo Abeni 	struct fib6_info *from;
1431b2427e67SColin Ian King 	struct net *net;
143281eb8447SWei Wang 
143335732d01SWei Wang 	if (!bucket || !rt6_ex)
143435732d01SWei Wang 		return;
1435b2427e67SColin Ian King 
1436b2427e67SColin Ian King 	net = dev_net(rt6_ex->rt6i->dst.dev);
1437f5b51fe8SPaolo Abeni 	net->ipv6.rt6_stats->fib_rt_cache--;
1438f5b51fe8SPaolo Abeni 
1439f5b51fe8SPaolo Abeni 	/* purge completely the exception to allow releasing the held resources:
1440f5b51fe8SPaolo Abeni 	 * some [sk] cache may keep the dst around for unlimited time
1441f5b51fe8SPaolo Abeni 	 */
14420e233874SEric Dumazet 	from = xchg((__force struct fib6_info **)&rt6_ex->rt6i->from, NULL);
1443f5b51fe8SPaolo Abeni 	fib6_info_release(from);
1444f5b51fe8SPaolo Abeni 	dst_dev_put(&rt6_ex->rt6i->dst);
1445f5b51fe8SPaolo Abeni 
144635732d01SWei Wang 	hlist_del_rcu(&rt6_ex->hlist);
144777634cc6SDavid Ahern 	dst_release(&rt6_ex->rt6i->dst);
144835732d01SWei Wang 	kfree_rcu(rt6_ex, rcu);
144935732d01SWei Wang 	WARN_ON_ONCE(!bucket->depth);
145035732d01SWei Wang 	bucket->depth--;
145135732d01SWei Wang }
145235732d01SWei Wang 
145335732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory
145435732d01SWei Wang  * Caller must hold rt6_exception_lock
145535732d01SWei Wang  */
145635732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
145735732d01SWei Wang {
145835732d01SWei Wang 	struct rt6_exception *rt6_ex, *oldest = NULL;
145935732d01SWei Wang 
146035732d01SWei Wang 	if (!bucket)
146135732d01SWei Wang 		return;
146235732d01SWei Wang 
146335732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
146435732d01SWei Wang 		if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
146535732d01SWei Wang 			oldest = rt6_ex;
146635732d01SWei Wang 	}
146735732d01SWei Wang 	rt6_remove_exception(bucket, oldest);
146835732d01SWei Wang }
146935732d01SWei Wang 
147035732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst,
147135732d01SWei Wang 			      const struct in6_addr *src)
147235732d01SWei Wang {
147335732d01SWei Wang 	static u32 seed __read_mostly;
147435732d01SWei Wang 	u32 val;
147535732d01SWei Wang 
147635732d01SWei Wang 	net_get_random_once(&seed, sizeof(seed));
147735732d01SWei Wang 	val = jhash(dst, sizeof(*dst), seed);
147835732d01SWei Wang 
147935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
148035732d01SWei Wang 	if (src)
148135732d01SWei Wang 		val = jhash(src, sizeof(*src), val);
148235732d01SWei Wang #endif
148335732d01SWei Wang 	return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
148435732d01SWei Wang }
148535732d01SWei Wang 
148635732d01SWei Wang /* Helper function to find the cached rt in the hash table
148735732d01SWei Wang  * and update bucket pointer to point to the bucket for this
148835732d01SWei Wang  * (daddr, saddr) pair
148935732d01SWei Wang  * Caller must hold rt6_exception_lock
149035732d01SWei Wang  */
149135732d01SWei Wang static struct rt6_exception *
149235732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
149335732d01SWei Wang 			      const struct in6_addr *daddr,
149435732d01SWei Wang 			      const struct in6_addr *saddr)
149535732d01SWei Wang {
149635732d01SWei Wang 	struct rt6_exception *rt6_ex;
149735732d01SWei Wang 	u32 hval;
149835732d01SWei Wang 
149935732d01SWei Wang 	if (!(*bucket) || !daddr)
150035732d01SWei Wang 		return NULL;
150135732d01SWei Wang 
150235732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
150335732d01SWei Wang 	*bucket += hval;
150435732d01SWei Wang 
150535732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
150635732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
150735732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
150835732d01SWei Wang 
150935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
151035732d01SWei Wang 		if (matched && saddr)
151135732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
151235732d01SWei Wang #endif
151335732d01SWei Wang 		if (matched)
151435732d01SWei Wang 			return rt6_ex;
151535732d01SWei Wang 	}
151635732d01SWei Wang 	return NULL;
151735732d01SWei Wang }
151835732d01SWei Wang 
151935732d01SWei Wang /* Helper function to find the cached rt in the hash table
152035732d01SWei Wang  * and update bucket pointer to point to the bucket for this
152135732d01SWei Wang  * (daddr, saddr) pair
152235732d01SWei Wang  * Caller must hold rcu_read_lock()
152335732d01SWei Wang  */
152435732d01SWei Wang static struct rt6_exception *
152535732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
152635732d01SWei Wang 			 const struct in6_addr *daddr,
152735732d01SWei Wang 			 const struct in6_addr *saddr)
152835732d01SWei Wang {
152935732d01SWei Wang 	struct rt6_exception *rt6_ex;
153035732d01SWei Wang 	u32 hval;
153135732d01SWei Wang 
153235732d01SWei Wang 	WARN_ON_ONCE(!rcu_read_lock_held());
153335732d01SWei Wang 
153435732d01SWei Wang 	if (!(*bucket) || !daddr)
153535732d01SWei Wang 		return NULL;
153635732d01SWei Wang 
153735732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
153835732d01SWei Wang 	*bucket += hval;
153935732d01SWei Wang 
154035732d01SWei Wang 	hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
154135732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
154235732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
154335732d01SWei Wang 
154435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
154535732d01SWei Wang 		if (matched && saddr)
154635732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
154735732d01SWei Wang #endif
154835732d01SWei Wang 		if (matched)
154935732d01SWei Wang 			return rt6_ex;
155035732d01SWei Wang 	}
155135732d01SWei Wang 	return NULL;
155235732d01SWei Wang }
155335732d01SWei Wang 
1554b748f260SDavid Ahern static unsigned int fib6_mtu(const struct fib6_result *res)
155535732d01SWei Wang {
1556b748f260SDavid Ahern 	const struct fib6_nh *nh = res->nh;
1557d4ead6b3SDavid Ahern 	unsigned int mtu;
1558d4ead6b3SDavid Ahern 
1559b748f260SDavid Ahern 	if (res->f6i->fib6_pmtu) {
1560b748f260SDavid Ahern 		mtu = res->f6i->fib6_pmtu;
1561dcd1f572SDavid Ahern 	} else {
1562b748f260SDavid Ahern 		struct net_device *dev = nh->fib_nh_dev;
1563dcd1f572SDavid Ahern 		struct inet6_dev *idev;
1564dcd1f572SDavid Ahern 
1565dcd1f572SDavid Ahern 		rcu_read_lock();
1566dcd1f572SDavid Ahern 		idev = __in6_dev_get(dev);
1567dcd1f572SDavid Ahern 		mtu = idev->cnf.mtu6;
1568dcd1f572SDavid Ahern 		rcu_read_unlock();
1569dcd1f572SDavid Ahern 	}
1570dcd1f572SDavid Ahern 
1571d4ead6b3SDavid Ahern 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
1572d4ead6b3SDavid Ahern 
1573b748f260SDavid Ahern 	return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu);
1574d4ead6b3SDavid Ahern }
1575d4ead6b3SDavid Ahern 
1576cc5c073aSDavid Ahern #define FIB6_EXCEPTION_BUCKET_FLUSHED  0x1UL
1577cc5c073aSDavid Ahern 
1578cc5c073aSDavid Ahern /* used when the flushed bit is not relevant, only access to the bucket
1579cc5c073aSDavid Ahern  * (ie., all bucket users except rt6_insert_exception);
1580cc5c073aSDavid Ahern  *
1581cc5c073aSDavid Ahern  * called under rcu lock; sometimes called with rt6_exception_lock held
1582cc5c073aSDavid Ahern  */
1583cc5c073aSDavid Ahern static
1584cc5c073aSDavid Ahern struct rt6_exception_bucket *fib6_nh_get_excptn_bucket(const struct fib6_nh *nh,
1585cc5c073aSDavid Ahern 						       spinlock_t *lock)
1586cc5c073aSDavid Ahern {
1587cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
1588cc5c073aSDavid Ahern 
1589cc5c073aSDavid Ahern 	if (lock)
1590cc5c073aSDavid Ahern 		bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
1591cc5c073aSDavid Ahern 						   lockdep_is_held(lock));
1592cc5c073aSDavid Ahern 	else
1593cc5c073aSDavid Ahern 		bucket = rcu_dereference(nh->rt6i_exception_bucket);
1594cc5c073aSDavid Ahern 
1595cc5c073aSDavid Ahern 	/* remove bucket flushed bit if set */
1596cc5c073aSDavid Ahern 	if (bucket) {
1597cc5c073aSDavid Ahern 		unsigned long p = (unsigned long)bucket;
1598cc5c073aSDavid Ahern 
1599cc5c073aSDavid Ahern 		p &= ~FIB6_EXCEPTION_BUCKET_FLUSHED;
1600cc5c073aSDavid Ahern 		bucket = (struct rt6_exception_bucket *)p;
1601cc5c073aSDavid Ahern 	}
1602cc5c073aSDavid Ahern 
1603cc5c073aSDavid Ahern 	return bucket;
1604cc5c073aSDavid Ahern }
1605cc5c073aSDavid Ahern 
1606cc5c073aSDavid Ahern static bool fib6_nh_excptn_bucket_flushed(struct rt6_exception_bucket *bucket)
1607cc5c073aSDavid Ahern {
1608cc5c073aSDavid Ahern 	unsigned long p = (unsigned long)bucket;
1609cc5c073aSDavid Ahern 
1610cc5c073aSDavid Ahern 	return !!(p & FIB6_EXCEPTION_BUCKET_FLUSHED);
1611cc5c073aSDavid Ahern }
1612cc5c073aSDavid Ahern 
1613cc5c073aSDavid Ahern /* called with rt6_exception_lock held */
1614cc5c073aSDavid Ahern static void fib6_nh_excptn_bucket_set_flushed(struct fib6_nh *nh,
1615cc5c073aSDavid Ahern 					      spinlock_t *lock)
1616cc5c073aSDavid Ahern {
1617cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
1618cc5c073aSDavid Ahern 	unsigned long p;
1619cc5c073aSDavid Ahern 
1620cc5c073aSDavid Ahern 	bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
1621cc5c073aSDavid Ahern 					   lockdep_is_held(lock));
1622cc5c073aSDavid Ahern 
1623cc5c073aSDavid Ahern 	p = (unsigned long)bucket;
1624cc5c073aSDavid Ahern 	p |= FIB6_EXCEPTION_BUCKET_FLUSHED;
1625cc5c073aSDavid Ahern 	bucket = (struct rt6_exception_bucket *)p;
1626cc5c073aSDavid Ahern 	rcu_assign_pointer(nh->rt6i_exception_bucket, bucket);
1627cc5c073aSDavid Ahern }
1628cc5c073aSDavid Ahern 
162935732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt,
16305012f0a5SDavid Ahern 				const struct fib6_result *res)
163135732d01SWei Wang {
16325e670d84SDavid Ahern 	struct net *net = dev_net(nrt->dst.dev);
163335732d01SWei Wang 	struct rt6_exception_bucket *bucket;
1634cc5c073aSDavid Ahern 	struct fib6_info *f6i = res->f6i;
163535732d01SWei Wang 	struct in6_addr *src_key = NULL;
163635732d01SWei Wang 	struct rt6_exception *rt6_ex;
1637cc5c073aSDavid Ahern 	struct fib6_nh *nh = res->nh;
163835732d01SWei Wang 	int err = 0;
163935732d01SWei Wang 
164035732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
164135732d01SWei Wang 
1642cc5c073aSDavid Ahern 	bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
164335732d01SWei Wang 					  lockdep_is_held(&rt6_exception_lock));
164435732d01SWei Wang 	if (!bucket) {
164535732d01SWei Wang 		bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
164635732d01SWei Wang 				 GFP_ATOMIC);
164735732d01SWei Wang 		if (!bucket) {
164835732d01SWei Wang 			err = -ENOMEM;
164935732d01SWei Wang 			goto out;
165035732d01SWei Wang 		}
1651cc5c073aSDavid Ahern 		rcu_assign_pointer(nh->rt6i_exception_bucket, bucket);
1652cc5c073aSDavid Ahern 	} else if (fib6_nh_excptn_bucket_flushed(bucket)) {
1653cc5c073aSDavid Ahern 		err = -EINVAL;
1654cc5c073aSDavid Ahern 		goto out;
165535732d01SWei Wang 	}
165635732d01SWei Wang 
165735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
16585012f0a5SDavid Ahern 	/* fib6_src.plen != 0 indicates f6i is in subtree
165935732d01SWei Wang 	 * and exception table is indexed by a hash of
16605012f0a5SDavid Ahern 	 * both fib6_dst and fib6_src.
166135732d01SWei Wang 	 * Otherwise, the exception table is indexed by
16625012f0a5SDavid Ahern 	 * a hash of only fib6_dst.
166335732d01SWei Wang 	 */
16645012f0a5SDavid Ahern 	if (f6i->fib6_src.plen)
166535732d01SWei Wang 		src_key = &nrt->rt6i_src.addr;
166635732d01SWei Wang #endif
16675012f0a5SDavid Ahern 	/* rt6_mtu_change() might lower mtu on f6i.
1668f5bbe7eeSWei Wang 	 * Only insert this exception route if its mtu
16695012f0a5SDavid Ahern 	 * is less than f6i's mtu value.
1670f5bbe7eeSWei Wang 	 */
1671b748f260SDavid Ahern 	if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(res)) {
1672f5bbe7eeSWei Wang 		err = -EINVAL;
1673f5bbe7eeSWei Wang 		goto out;
1674f5bbe7eeSWei Wang 	}
167560006a48SWei Wang 
167635732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
167735732d01SWei Wang 					       src_key);
167835732d01SWei Wang 	if (rt6_ex)
167935732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
168035732d01SWei Wang 
168135732d01SWei Wang 	rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
168235732d01SWei Wang 	if (!rt6_ex) {
168335732d01SWei Wang 		err = -ENOMEM;
168435732d01SWei Wang 		goto out;
168535732d01SWei Wang 	}
168635732d01SWei Wang 	rt6_ex->rt6i = nrt;
168735732d01SWei Wang 	rt6_ex->stamp = jiffies;
168835732d01SWei Wang 	hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
168935732d01SWei Wang 	bucket->depth++;
169081eb8447SWei Wang 	net->ipv6.rt6_stats->fib_rt_cache++;
169135732d01SWei Wang 
169235732d01SWei Wang 	if (bucket->depth > FIB6_MAX_DEPTH)
169335732d01SWei Wang 		rt6_exception_remove_oldest(bucket);
169435732d01SWei Wang 
169535732d01SWei Wang out:
169635732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
169735732d01SWei Wang 
169835732d01SWei Wang 	/* Update fn->fn_sernum to invalidate all cached dst */
1699b886d5f2SPaolo Abeni 	if (!err) {
17005012f0a5SDavid Ahern 		spin_lock_bh(&f6i->fib6_table->tb6_lock);
17015012f0a5SDavid Ahern 		fib6_update_sernum(net, f6i);
17025012f0a5SDavid Ahern 		spin_unlock_bh(&f6i->fib6_table->tb6_lock);
1703b886d5f2SPaolo Abeni 		fib6_force_start_gc(net);
1704b886d5f2SPaolo Abeni 	}
170535732d01SWei Wang 
170635732d01SWei Wang 	return err;
170735732d01SWei Wang }
170835732d01SWei Wang 
1709c0b220cfSDavid Ahern static void fib6_nh_flush_exceptions(struct fib6_nh *nh, struct fib6_info *from)
171035732d01SWei Wang {
171135732d01SWei Wang 	struct rt6_exception_bucket *bucket;
171235732d01SWei Wang 	struct rt6_exception *rt6_ex;
171335732d01SWei Wang 	struct hlist_node *tmp;
171435732d01SWei Wang 	int i;
171535732d01SWei Wang 
171635732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
171735732d01SWei Wang 
1718cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
171935732d01SWei Wang 	if (!bucket)
172035732d01SWei Wang 		goto out;
172135732d01SWei Wang 
1722cc5c073aSDavid Ahern 	/* Prevent rt6_insert_exception() to recreate the bucket list */
1723cc5c073aSDavid Ahern 	if (!from)
1724cc5c073aSDavid Ahern 		fib6_nh_excptn_bucket_set_flushed(nh, &rt6_exception_lock);
1725cc5c073aSDavid Ahern 
172635732d01SWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1727cc5c073aSDavid Ahern 		hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) {
1728cc5c073aSDavid Ahern 			if (!from ||
1729cc5c073aSDavid Ahern 			    rcu_access_pointer(rt6_ex->rt6i->from) == from)
173035732d01SWei Wang 				rt6_remove_exception(bucket, rt6_ex);
1731cc5c073aSDavid Ahern 		}
1732cc5c073aSDavid Ahern 		WARN_ON_ONCE(!from && bucket->depth);
173335732d01SWei Wang 		bucket++;
173435732d01SWei Wang 	}
173535732d01SWei Wang out:
173635732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
173735732d01SWei Wang }
173835732d01SWei Wang 
1739e659ba31SDavid Ahern static int rt6_nh_flush_exceptions(struct fib6_nh *nh, void *arg)
1740e659ba31SDavid Ahern {
1741e659ba31SDavid Ahern 	struct fib6_info *f6i = arg;
1742e659ba31SDavid Ahern 
1743e659ba31SDavid Ahern 	fib6_nh_flush_exceptions(nh, f6i);
1744e659ba31SDavid Ahern 
1745e659ba31SDavid Ahern 	return 0;
1746e659ba31SDavid Ahern }
1747e659ba31SDavid Ahern 
1748c0b220cfSDavid Ahern void rt6_flush_exceptions(struct fib6_info *f6i)
1749c0b220cfSDavid Ahern {
1750e659ba31SDavid Ahern 	if (f6i->nh)
1751e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_flush_exceptions,
1752e659ba31SDavid Ahern 					 f6i);
1753e659ba31SDavid Ahern 	else
17541cf844c7SDavid Ahern 		fib6_nh_flush_exceptions(f6i->fib6_nh, f6i);
1755c0b220cfSDavid Ahern }
1756c0b220cfSDavid Ahern 
175735732d01SWei Wang /* Find cached rt in the hash table inside passed in rt
175835732d01SWei Wang  * Caller has to hold rcu_read_lock()
175935732d01SWei Wang  */
17607e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res,
1761510e2cedSWei Wang 					   const struct in6_addr *daddr,
1762510e2cedSWei Wang 					   const struct in6_addr *saddr)
176335732d01SWei Wang {
1764510e2cedSWei Wang 	const struct in6_addr *src_key = NULL;
176535732d01SWei Wang 	struct rt6_exception_bucket *bucket;
176635732d01SWei Wang 	struct rt6_exception *rt6_ex;
17677e4b5128SDavid Ahern 	struct rt6_info *ret = NULL;
176835732d01SWei Wang 
176935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
17707e4b5128SDavid Ahern 	/* fib6i_src.plen != 0 indicates f6i is in subtree
177135732d01SWei Wang 	 * and exception table is indexed by a hash of
17727e4b5128SDavid Ahern 	 * both fib6_dst and fib6_src.
1773510e2cedSWei Wang 	 * However, the src addr used to create the hash
1774510e2cedSWei Wang 	 * might not be exactly the passed in saddr which
1775510e2cedSWei Wang 	 * is a /128 addr from the flow.
1776510e2cedSWei Wang 	 * So we need to use f6i->fib6_src to redo lookup
1777510e2cedSWei Wang 	 * if the passed in saddr does not find anything.
1778510e2cedSWei Wang 	 * (See the logic in ip6_rt_cache_alloc() on how
1779510e2cedSWei Wang 	 * rt->rt6i_src is updated.)
178035732d01SWei Wang 	 */
17817e4b5128SDavid Ahern 	if (res->f6i->fib6_src.plen)
178235732d01SWei Wang 		src_key = saddr;
1783510e2cedSWei Wang find_ex:
178435732d01SWei Wang #endif
1785cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(res->nh, NULL);
178635732d01SWei Wang 	rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
178735732d01SWei Wang 
178835732d01SWei Wang 	if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
17897e4b5128SDavid Ahern 		ret = rt6_ex->rt6i;
179035732d01SWei Wang 
1791510e2cedSWei Wang #ifdef CONFIG_IPV6_SUBTREES
1792510e2cedSWei Wang 	/* Use fib6_src as src_key and redo lookup */
1793510e2cedSWei Wang 	if (!ret && src_key && src_key != &res->f6i->fib6_src.addr) {
1794510e2cedSWei Wang 		src_key = &res->f6i->fib6_src.addr;
1795510e2cedSWei Wang 		goto find_ex;
1796510e2cedSWei Wang 	}
1797510e2cedSWei Wang #endif
1798510e2cedSWei Wang 
17997e4b5128SDavid Ahern 	return ret;
180035732d01SWei Wang }
180135732d01SWei Wang 
180235732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */
1803cc5c073aSDavid Ahern static int fib6_nh_remove_exception(const struct fib6_nh *nh, int plen,
1804c0b220cfSDavid Ahern 				    const struct rt6_info *rt)
180535732d01SWei Wang {
1806c0b220cfSDavid Ahern 	const struct in6_addr *src_key = NULL;
180735732d01SWei Wang 	struct rt6_exception_bucket *bucket;
180835732d01SWei Wang 	struct rt6_exception *rt6_ex;
180935732d01SWei Wang 	int err;
181035732d01SWei Wang 
1811cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
181235732d01SWei Wang 		return -ENOENT;
181335732d01SWei Wang 
181435732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
1815cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
1816cc5c073aSDavid Ahern 
181735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
1818cc5c073aSDavid Ahern 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
1819cc5c073aSDavid Ahern 	 * and exception table is indexed by a hash of
1820cc5c073aSDavid Ahern 	 * both rt6i_dst and rt6i_src.
182135732d01SWei Wang 	 * Otherwise, the exception table is indexed by
182235732d01SWei Wang 	 * a hash of only rt6i_dst.
182335732d01SWei Wang 	 */
1824c0b220cfSDavid Ahern 	if (plen)
182535732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
182635732d01SWei Wang #endif
182735732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket,
182835732d01SWei Wang 					       &rt->rt6i_dst.addr,
182935732d01SWei Wang 					       src_key);
183035732d01SWei Wang 	if (rt6_ex) {
183135732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
183235732d01SWei Wang 		err = 0;
183335732d01SWei Wang 	} else {
183435732d01SWei Wang 		err = -ENOENT;
183535732d01SWei Wang 	}
183635732d01SWei Wang 
183735732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
183835732d01SWei Wang 	return err;
183935732d01SWei Wang }
184035732d01SWei Wang 
1841e659ba31SDavid Ahern struct fib6_nh_excptn_arg {
1842e659ba31SDavid Ahern 	struct rt6_info	*rt;
1843e659ba31SDavid Ahern 	int		plen;
1844e659ba31SDavid Ahern };
1845e659ba31SDavid Ahern 
1846e659ba31SDavid Ahern static int rt6_nh_remove_exception_rt(struct fib6_nh *nh, void *_arg)
1847e659ba31SDavid Ahern {
1848e659ba31SDavid Ahern 	struct fib6_nh_excptn_arg *arg = _arg;
1849e659ba31SDavid Ahern 	int err;
1850e659ba31SDavid Ahern 
1851e659ba31SDavid Ahern 	err = fib6_nh_remove_exception(nh, arg->plen, arg->rt);
1852e659ba31SDavid Ahern 	if (err == 0)
1853e659ba31SDavid Ahern 		return 1;
1854e659ba31SDavid Ahern 
1855e659ba31SDavid Ahern 	return 0;
1856e659ba31SDavid Ahern }
1857e659ba31SDavid Ahern 
1858c0b220cfSDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt)
1859c0b220cfSDavid Ahern {
1860c0b220cfSDavid Ahern 	struct fib6_info *from;
1861c0b220cfSDavid Ahern 
1862c0b220cfSDavid Ahern 	from = rcu_dereference(rt->from);
1863cc5c073aSDavid Ahern 	if (!from || !(rt->rt6i_flags & RTF_CACHE))
1864c0b220cfSDavid Ahern 		return -EINVAL;
1865c0b220cfSDavid Ahern 
1866e659ba31SDavid Ahern 	if (from->nh) {
1867e659ba31SDavid Ahern 		struct fib6_nh_excptn_arg arg = {
1868e659ba31SDavid Ahern 			.rt = rt,
1869e659ba31SDavid Ahern 			.plen = from->fib6_src.plen
1870e659ba31SDavid Ahern 		};
1871e659ba31SDavid Ahern 		int rc;
1872e659ba31SDavid Ahern 
1873e659ba31SDavid Ahern 		/* rc = 1 means an entry was found */
1874e659ba31SDavid Ahern 		rc = nexthop_for_each_fib6_nh(from->nh,
1875e659ba31SDavid Ahern 					      rt6_nh_remove_exception_rt,
1876e659ba31SDavid Ahern 					      &arg);
1877e659ba31SDavid Ahern 		return rc ? 0 : -ENOENT;
1878e659ba31SDavid Ahern 	}
1879e659ba31SDavid Ahern 
18801cf844c7SDavid Ahern 	return fib6_nh_remove_exception(from->fib6_nh,
1881cc5c073aSDavid Ahern 					from->fib6_src.plen, rt);
1882c0b220cfSDavid Ahern }
1883c0b220cfSDavid Ahern 
188435732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and
188535732d01SWei Wang  * refresh its stamp
188635732d01SWei Wang  */
1887cc5c073aSDavid Ahern static void fib6_nh_update_exception(const struct fib6_nh *nh, int plen,
1888c0b220cfSDavid Ahern 				     const struct rt6_info *rt)
188935732d01SWei Wang {
1890c0b220cfSDavid Ahern 	const struct in6_addr *src_key = NULL;
189135732d01SWei Wang 	struct rt6_exception_bucket *bucket;
189235732d01SWei Wang 	struct rt6_exception *rt6_ex;
1893193f3685SPaolo Abeni 
1894cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, NULL);
189535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
1896cc5c073aSDavid Ahern 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
1897cc5c073aSDavid Ahern 	 * and exception table is indexed by a hash of
1898cc5c073aSDavid Ahern 	 * both rt6i_dst and rt6i_src.
189935732d01SWei Wang 	 * Otherwise, the exception table is indexed by
190035732d01SWei Wang 	 * a hash of only rt6i_dst.
190135732d01SWei Wang 	 */
1902c0b220cfSDavid Ahern 	if (plen)
190335732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
190435732d01SWei Wang #endif
1905cc5c073aSDavid Ahern 	rt6_ex = __rt6_find_exception_rcu(&bucket, &rt->rt6i_dst.addr, src_key);
190635732d01SWei Wang 	if (rt6_ex)
190735732d01SWei Wang 		rt6_ex->stamp = jiffies;
1908c0b220cfSDavid Ahern }
190935732d01SWei Wang 
1910e659ba31SDavid Ahern struct fib6_nh_match_arg {
1911e659ba31SDavid Ahern 	const struct net_device *dev;
1912e659ba31SDavid Ahern 	const struct in6_addr	*gw;
1913e659ba31SDavid Ahern 	struct fib6_nh		*match;
1914e659ba31SDavid Ahern };
1915e659ba31SDavid Ahern 
1916e659ba31SDavid Ahern /* determine if fib6_nh has given device and gateway */
1917e659ba31SDavid Ahern static int fib6_nh_find_match(struct fib6_nh *nh, void *_arg)
1918e659ba31SDavid Ahern {
1919e659ba31SDavid Ahern 	struct fib6_nh_match_arg *arg = _arg;
1920e659ba31SDavid Ahern 
1921e659ba31SDavid Ahern 	if (arg->dev != nh->fib_nh_dev ||
1922e659ba31SDavid Ahern 	    (arg->gw && !nh->fib_nh_gw_family) ||
1923e659ba31SDavid Ahern 	    (!arg->gw && nh->fib_nh_gw_family) ||
1924e659ba31SDavid Ahern 	    (arg->gw && !ipv6_addr_equal(arg->gw, &nh->fib_nh_gw6)))
1925e659ba31SDavid Ahern 		return 0;
1926e659ba31SDavid Ahern 
1927e659ba31SDavid Ahern 	arg->match = nh;
1928e659ba31SDavid Ahern 
1929e659ba31SDavid Ahern 	/* found a match, break the loop */
1930e659ba31SDavid Ahern 	return 1;
1931e659ba31SDavid Ahern }
1932e659ba31SDavid Ahern 
1933c0b220cfSDavid Ahern static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
1934c0b220cfSDavid Ahern {
1935c0b220cfSDavid Ahern 	struct fib6_info *from;
1936e659ba31SDavid Ahern 	struct fib6_nh *fib6_nh;
1937c0b220cfSDavid Ahern 
1938c0b220cfSDavid Ahern 	rcu_read_lock();
1939c0b220cfSDavid Ahern 
1940c0b220cfSDavid Ahern 	from = rcu_dereference(rt->from);
1941c0b220cfSDavid Ahern 	if (!from || !(rt->rt6i_flags & RTF_CACHE))
1942c0b220cfSDavid Ahern 		goto unlock;
1943c0b220cfSDavid Ahern 
1944e659ba31SDavid Ahern 	if (from->nh) {
1945e659ba31SDavid Ahern 		struct fib6_nh_match_arg arg = {
1946e659ba31SDavid Ahern 			.dev = rt->dst.dev,
1947e659ba31SDavid Ahern 			.gw = &rt->rt6i_gateway,
1948e659ba31SDavid Ahern 		};
1949e659ba31SDavid Ahern 
1950e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(from->nh, fib6_nh_find_match, &arg);
1951e659ba31SDavid Ahern 
1952e659ba31SDavid Ahern 		if (!arg.match)
1953e659ba31SDavid Ahern 			return;
1954e659ba31SDavid Ahern 		fib6_nh = arg.match;
1955e659ba31SDavid Ahern 	} else {
1956e659ba31SDavid Ahern 		fib6_nh = from->fib6_nh;
1957e659ba31SDavid Ahern 	}
1958e659ba31SDavid Ahern 	fib6_nh_update_exception(fib6_nh, from->fib6_src.plen, rt);
1959193f3685SPaolo Abeni unlock:
196035732d01SWei Wang 	rcu_read_unlock();
196135732d01SWei Wang }
196235732d01SWei Wang 
1963e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1964e9fa1495SStefano Brivio 					 struct rt6_info *rt, int mtu)
1965e9fa1495SStefano Brivio {
1966e9fa1495SStefano Brivio 	/* If the new MTU is lower than the route PMTU, this new MTU will be the
1967e9fa1495SStefano Brivio 	 * lowest MTU in the path: always allow updating the route PMTU to
1968e9fa1495SStefano Brivio 	 * reflect PMTU decreases.
1969e9fa1495SStefano Brivio 	 *
1970e9fa1495SStefano Brivio 	 * If the new MTU is higher, and the route PMTU is equal to the local
1971e9fa1495SStefano Brivio 	 * MTU, this means the old MTU is the lowest in the path, so allow
1972e9fa1495SStefano Brivio 	 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1973e9fa1495SStefano Brivio 	 * handle this.
1974e9fa1495SStefano Brivio 	 */
1975e9fa1495SStefano Brivio 
1976e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) >= mtu)
1977e9fa1495SStefano Brivio 		return true;
1978e9fa1495SStefano Brivio 
1979e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1980e9fa1495SStefano Brivio 		return true;
1981e9fa1495SStefano Brivio 
1982e9fa1495SStefano Brivio 	return false;
1983e9fa1495SStefano Brivio }
1984e9fa1495SStefano Brivio 
1985e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
1986cc5c073aSDavid Ahern 				       const struct fib6_nh *nh, int mtu)
1987f5bbe7eeSWei Wang {
1988f5bbe7eeSWei Wang 	struct rt6_exception_bucket *bucket;
1989f5bbe7eeSWei Wang 	struct rt6_exception *rt6_ex;
1990f5bbe7eeSWei Wang 	int i;
1991f5bbe7eeSWei Wang 
1992cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
1993e9fa1495SStefano Brivio 	if (!bucket)
1994e9fa1495SStefano Brivio 		return;
1995e9fa1495SStefano Brivio 
1996f5bbe7eeSWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1997f5bbe7eeSWei Wang 		hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1998f5bbe7eeSWei Wang 			struct rt6_info *entry = rt6_ex->rt6i;
1999e9fa1495SStefano Brivio 
2000e9fa1495SStefano Brivio 			/* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
2001d4ead6b3SDavid Ahern 			 * route), the metrics of its rt->from have already
2002f5bbe7eeSWei Wang 			 * been updated.
2003f5bbe7eeSWei Wang 			 */
2004d4ead6b3SDavid Ahern 			if (dst_metric_raw(&entry->dst, RTAX_MTU) &&
2005e9fa1495SStefano Brivio 			    rt6_mtu_change_route_allowed(idev, entry, mtu))
2006d4ead6b3SDavid Ahern 				dst_metric_set(&entry->dst, RTAX_MTU, mtu);
2007f5bbe7eeSWei Wang 		}
2008f5bbe7eeSWei Wang 		bucket++;
2009f5bbe7eeSWei Wang 	}
2010f5bbe7eeSWei Wang }
2011f5bbe7eeSWei Wang 
2012b16cb459SWei Wang #define RTF_CACHE_GATEWAY	(RTF_GATEWAY | RTF_CACHE)
2013b16cb459SWei Wang 
2014cc5c073aSDavid Ahern static void fib6_nh_exceptions_clean_tohost(const struct fib6_nh *nh,
2015cc5c073aSDavid Ahern 					    const struct in6_addr *gateway)
2016b16cb459SWei Wang {
2017b16cb459SWei Wang 	struct rt6_exception_bucket *bucket;
2018b16cb459SWei Wang 	struct rt6_exception *rt6_ex;
2019b16cb459SWei Wang 	struct hlist_node *tmp;
2020b16cb459SWei Wang 	int i;
2021b16cb459SWei Wang 
2022cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
2023b16cb459SWei Wang 		return;
2024b16cb459SWei Wang 
2025b16cb459SWei Wang 	spin_lock_bh(&rt6_exception_lock);
2026cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
2027b16cb459SWei Wang 	if (bucket) {
2028b16cb459SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
2029b16cb459SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
2030b16cb459SWei Wang 						  &bucket->chain, hlist) {
2031b16cb459SWei Wang 				struct rt6_info *entry = rt6_ex->rt6i;
2032b16cb459SWei Wang 
2033b16cb459SWei Wang 				if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
2034b16cb459SWei Wang 				    RTF_CACHE_GATEWAY &&
2035b16cb459SWei Wang 				    ipv6_addr_equal(gateway,
2036b16cb459SWei Wang 						    &entry->rt6i_gateway)) {
2037b16cb459SWei Wang 					rt6_remove_exception(bucket, rt6_ex);
2038b16cb459SWei Wang 				}
2039b16cb459SWei Wang 			}
2040b16cb459SWei Wang 			bucket++;
2041b16cb459SWei Wang 		}
2042b16cb459SWei Wang 	}
2043b16cb459SWei Wang 
2044b16cb459SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
2045b16cb459SWei Wang }
2046b16cb459SWei Wang 
2047c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
2048c757faa8SWei Wang 				      struct rt6_exception *rt6_ex,
2049c757faa8SWei Wang 				      struct fib6_gc_args *gc_args,
2050c757faa8SWei Wang 				      unsigned long now)
2051c757faa8SWei Wang {
2052c757faa8SWei Wang 	struct rt6_info *rt = rt6_ex->rt6i;
2053c757faa8SWei Wang 
20541859bac0SPaolo Abeni 	/* we are pruning and obsoleting aged-out and non gateway exceptions
20551859bac0SPaolo Abeni 	 * even if others have still references to them, so that on next
20561859bac0SPaolo Abeni 	 * dst_check() such references can be dropped.
20571859bac0SPaolo Abeni 	 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
20581859bac0SPaolo Abeni 	 * expired, independently from their aging, as per RFC 8201 section 4
20591859bac0SPaolo Abeni 	 */
206031afeb42SWei Wang 	if (!(rt->rt6i_flags & RTF_EXPIRES)) {
206131afeb42SWei Wang 		if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
2062c757faa8SWei Wang 			RT6_TRACE("aging clone %p\n", rt);
2063c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
2064c757faa8SWei Wang 			return;
206531afeb42SWei Wang 		}
206631afeb42SWei Wang 	} else if (time_after(jiffies, rt->dst.expires)) {
206731afeb42SWei Wang 		RT6_TRACE("purging expired route %p\n", rt);
206831afeb42SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
206931afeb42SWei Wang 		return;
207031afeb42SWei Wang 	}
207131afeb42SWei Wang 
207231afeb42SWei Wang 	if (rt->rt6i_flags & RTF_GATEWAY) {
2073c757faa8SWei Wang 		struct neighbour *neigh;
2074c757faa8SWei Wang 		__u8 neigh_flags = 0;
2075c757faa8SWei Wang 
20761bfa26ffSEric Dumazet 		neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
20771bfa26ffSEric Dumazet 		if (neigh)
2078c757faa8SWei Wang 			neigh_flags = neigh->flags;
20791bfa26ffSEric Dumazet 
2080c757faa8SWei Wang 		if (!(neigh_flags & NTF_ROUTER)) {
2081c757faa8SWei Wang 			RT6_TRACE("purging route %p via non-router but gateway\n",
2082c757faa8SWei Wang 				  rt);
2083c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
2084c757faa8SWei Wang 			return;
2085c757faa8SWei Wang 		}
2086c757faa8SWei Wang 	}
208731afeb42SWei Wang 
2088c757faa8SWei Wang 	gc_args->more++;
2089c757faa8SWei Wang }
2090c757faa8SWei Wang 
2091cc5c073aSDavid Ahern static void fib6_nh_age_exceptions(const struct fib6_nh *nh,
2092c757faa8SWei Wang 				   struct fib6_gc_args *gc_args,
2093c757faa8SWei Wang 				   unsigned long now)
2094c757faa8SWei Wang {
2095c757faa8SWei Wang 	struct rt6_exception_bucket *bucket;
2096c757faa8SWei Wang 	struct rt6_exception *rt6_ex;
2097c757faa8SWei Wang 	struct hlist_node *tmp;
2098c757faa8SWei Wang 	int i;
2099c757faa8SWei Wang 
2100cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
2101c757faa8SWei Wang 		return;
2102c757faa8SWei Wang 
21031bfa26ffSEric Dumazet 	rcu_read_lock_bh();
21041bfa26ffSEric Dumazet 	spin_lock(&rt6_exception_lock);
2105cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
2106c757faa8SWei Wang 	if (bucket) {
2107c757faa8SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
2108c757faa8SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
2109c757faa8SWei Wang 						  &bucket->chain, hlist) {
2110c757faa8SWei Wang 				rt6_age_examine_exception(bucket, rt6_ex,
2111c757faa8SWei Wang 							  gc_args, now);
2112c757faa8SWei Wang 			}
2113c757faa8SWei Wang 			bucket++;
2114c757faa8SWei Wang 		}
2115c757faa8SWei Wang 	}
21161bfa26ffSEric Dumazet 	spin_unlock(&rt6_exception_lock);
21171bfa26ffSEric Dumazet 	rcu_read_unlock_bh();
2118c757faa8SWei Wang }
2119c757faa8SWei Wang 
2120e659ba31SDavid Ahern struct fib6_nh_age_excptn_arg {
2121e659ba31SDavid Ahern 	struct fib6_gc_args	*gc_args;
2122e659ba31SDavid Ahern 	unsigned long		now;
2123e659ba31SDavid Ahern };
2124e659ba31SDavid Ahern 
2125e659ba31SDavid Ahern static int rt6_nh_age_exceptions(struct fib6_nh *nh, void *_arg)
2126e659ba31SDavid Ahern {
2127e659ba31SDavid Ahern 	struct fib6_nh_age_excptn_arg *arg = _arg;
2128e659ba31SDavid Ahern 
2129e659ba31SDavid Ahern 	fib6_nh_age_exceptions(nh, arg->gc_args, arg->now);
2130e659ba31SDavid Ahern 	return 0;
2131e659ba31SDavid Ahern }
2132e659ba31SDavid Ahern 
2133cc5c073aSDavid Ahern void rt6_age_exceptions(struct fib6_info *f6i,
2134c0b220cfSDavid Ahern 			struct fib6_gc_args *gc_args,
2135c0b220cfSDavid Ahern 			unsigned long now)
2136c0b220cfSDavid Ahern {
2137e659ba31SDavid Ahern 	if (f6i->nh) {
2138e659ba31SDavid Ahern 		struct fib6_nh_age_excptn_arg arg = {
2139e659ba31SDavid Ahern 			.gc_args = gc_args,
2140e659ba31SDavid Ahern 			.now = now
2141e659ba31SDavid Ahern 		};
2142e659ba31SDavid Ahern 
2143e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_age_exceptions,
2144e659ba31SDavid Ahern 					 &arg);
2145e659ba31SDavid Ahern 	} else {
21461cf844c7SDavid Ahern 		fib6_nh_age_exceptions(f6i->fib6_nh, gc_args, now);
2147c0b220cfSDavid Ahern 	}
2148e659ba31SDavid Ahern }
2149c0b220cfSDavid Ahern 
21501d053da9SDavid Ahern /* must be called with rcu lock held */
2151effda4ddSDavid Ahern int fib6_table_lookup(struct net *net, struct fib6_table *table, int oif,
2152effda4ddSDavid Ahern 		      struct flowi6 *fl6, struct fib6_result *res, int strict)
21531da177e4SLinus Torvalds {
2154367efcb9SMartin KaFai Lau 	struct fib6_node *fn, *saved_fn;
21551da177e4SLinus Torvalds 
21566454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2157367efcb9SMartin KaFai Lau 	saved_fn = fn;
21581da177e4SLinus Torvalds 
2159ca254490SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
2160ca254490SDavid Ahern 		oif = 0;
2161ca254490SDavid Ahern 
2162a3c00e46SMartin KaFai Lau redo_rt6_select:
2163effda4ddSDavid Ahern 	rt6_select(net, fn, oif, res, strict);
2164effda4ddSDavid Ahern 	if (res->f6i == net->ipv6.fib6_null_entry) {
2165a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
2166a3c00e46SMartin KaFai Lau 		if (fn)
2167a3c00e46SMartin KaFai Lau 			goto redo_rt6_select;
2168367efcb9SMartin KaFai Lau 		else if (strict & RT6_LOOKUP_F_REACHABLE) {
2169367efcb9SMartin KaFai Lau 			/* also consider unreachable route */
2170367efcb9SMartin KaFai Lau 			strict &= ~RT6_LOOKUP_F_REACHABLE;
2171367efcb9SMartin KaFai Lau 			fn = saved_fn;
2172367efcb9SMartin KaFai Lau 			goto redo_rt6_select;
2173367efcb9SMartin KaFai Lau 		}
2174a3c00e46SMartin KaFai Lau 	}
2175a3c00e46SMartin KaFai Lau 
2176effda4ddSDavid Ahern 	trace_fib6_table_lookup(net, res, table, fl6);
2177d52d3997SMartin KaFai Lau 
2178effda4ddSDavid Ahern 	return 0;
21791d053da9SDavid Ahern }
21801d053da9SDavid Ahern 
21811d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
21821d053da9SDavid Ahern 			       int oif, struct flowi6 *fl6,
21831d053da9SDavid Ahern 			       const struct sk_buff *skb, int flags)
21841d053da9SDavid Ahern {
2185b1d40991SDavid Ahern 	struct fib6_result res = {};
21860e09edccSWei Wang 	struct rt6_info *rt = NULL;
21871d053da9SDavid Ahern 	int strict = 0;
21881d053da9SDavid Ahern 
21890e09edccSWei Wang 	WARN_ON_ONCE((flags & RT6_LOOKUP_F_DST_NOREF) &&
21900e09edccSWei Wang 		     !rcu_read_lock_held());
21910e09edccSWei Wang 
21921d053da9SDavid Ahern 	strict |= flags & RT6_LOOKUP_F_IFACE;
21931d053da9SDavid Ahern 	strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
21941d053da9SDavid Ahern 	if (net->ipv6.devconf_all->forwarding == 0)
21951d053da9SDavid Ahern 		strict |= RT6_LOOKUP_F_REACHABLE;
21961d053da9SDavid Ahern 
21971d053da9SDavid Ahern 	rcu_read_lock();
21981d053da9SDavid Ahern 
2199effda4ddSDavid Ahern 	fib6_table_lookup(net, table, oif, fl6, &res, strict);
22000e09edccSWei Wang 	if (res.f6i == net->ipv6.fib6_null_entry)
22010e09edccSWei Wang 		goto out;
220223fb93a4SDavid Ahern 
2203b1d40991SDavid Ahern 	fib6_select_path(net, &res, fl6, oif, false, skb, strict);
2204d83009d4SDavid Ahern 
220523fb93a4SDavid Ahern 	/*Search through exception table */
22067e4b5128SDavid Ahern 	rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr);
220723fb93a4SDavid Ahern 	if (rt) {
22080e09edccSWei Wang 		goto out;
22093da59bd9SMartin KaFai Lau 	} else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
2210b1d40991SDavid Ahern 			    !res.nh->fib_nh_gw_family)) {
22113da59bd9SMartin KaFai Lau 		/* Create a RTF_CACHE clone which will not be
22123da59bd9SMartin KaFai Lau 		 * owned by the fib6 tree.  It is for the special case where
22133da59bd9SMartin KaFai Lau 		 * the daddr in the skb during the neighbor look-up is different
22143da59bd9SMartin KaFai Lau 		 * from the fl6->daddr used to look-up route here.
22153da59bd9SMartin KaFai Lau 		 */
22160e09edccSWei Wang 		rt = ip6_rt_cache_alloc(&res, &fl6->daddr, NULL);
22173da59bd9SMartin KaFai Lau 
22180e09edccSWei Wang 		if (rt) {
22190e09edccSWei Wang 			/* 1 refcnt is taken during ip6_rt_cache_alloc().
22200e09edccSWei Wang 			 * As rt6_uncached_list_add() does not consume refcnt,
22210e09edccSWei Wang 			 * this refcnt is always returned to the caller even
22220e09edccSWei Wang 			 * if caller sets RT6_LOOKUP_F_DST_NOREF flag.
22230e09edccSWei Wang 			 */
22240e09edccSWei Wang 			rt6_uncached_list_add(rt);
22250e09edccSWei Wang 			atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
22264d85cd0cSDavid Ahern 			rcu_read_unlock();
22273da59bd9SMartin KaFai Lau 
22280e09edccSWei Wang 			return rt;
22291cfb71eeSWei Wang 		}
2230d52d3997SMartin KaFai Lau 	} else {
2231d52d3997SMartin KaFai Lau 		/* Get a percpu copy */
2232951f788aSEric Dumazet 		local_bh_disable();
22330e09edccSWei Wang 		rt = rt6_get_pcpu_route(&res);
2234d52d3997SMartin KaFai Lau 
22350e09edccSWei Wang 		if (!rt)
22360e09edccSWei Wang 			rt = rt6_make_pcpu_route(net, &res);
223793531c67SDavid Ahern 
2238951f788aSEric Dumazet 		local_bh_enable();
22390e09edccSWei Wang 	}
22400e09edccSWei Wang out:
22410e09edccSWei Wang 	if (!rt)
22420e09edccSWei Wang 		rt = net->ipv6.ip6_null_entry;
22430e09edccSWei Wang 	if (!(flags & RT6_LOOKUP_F_DST_NOREF))
22440e09edccSWei Wang 		ip6_hold_safe(net, &rt);
2245951f788aSEric Dumazet 	rcu_read_unlock();
2246d4bea421SDavid Ahern 
22470e09edccSWei Wang 	return rt;
2248c71099acSThomas Graf }
22499ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route);
2250c71099acSThomas Graf 
2251b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net,
2252b75cc8f9SDavid Ahern 					    struct fib6_table *table,
2253b75cc8f9SDavid Ahern 					    struct flowi6 *fl6,
2254b75cc8f9SDavid Ahern 					    const struct sk_buff *skb,
2255b75cc8f9SDavid Ahern 					    int flags)
22564acad72dSPavel Emelyanov {
2257b75cc8f9SDavid Ahern 	return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags);
22584acad72dSPavel Emelyanov }
22594acad72dSPavel Emelyanov 
2260d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net,
226172331bc0SShmulik Ladkani 					 struct net_device *dev,
2262b75cc8f9SDavid Ahern 					 struct flowi6 *fl6,
2263b75cc8f9SDavid Ahern 					 const struct sk_buff *skb,
2264b75cc8f9SDavid Ahern 					 int flags)
226572331bc0SShmulik Ladkani {
226672331bc0SShmulik Ladkani 	if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
226772331bc0SShmulik Ladkani 		flags |= RT6_LOOKUP_F_IFACE;
226872331bc0SShmulik Ladkani 
2269b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input);
227072331bc0SShmulik Ladkani }
2271d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
227272331bc0SShmulik Ladkani 
227323aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb,
22745e5d6fedSRoopa Prabhu 				  struct flow_keys *keys,
22755e5d6fedSRoopa Prabhu 				  struct flow_keys *flkeys)
227623aebdacSJakub Sitnicki {
227723aebdacSJakub Sitnicki 	const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
227823aebdacSJakub Sitnicki 	const struct ipv6hdr *key_iph = outer_iph;
22795e5d6fedSRoopa Prabhu 	struct flow_keys *_flkeys = flkeys;
228023aebdacSJakub Sitnicki 	const struct ipv6hdr *inner_iph;
228123aebdacSJakub Sitnicki 	const struct icmp6hdr *icmph;
228223aebdacSJakub Sitnicki 	struct ipv6hdr _inner_iph;
2283cea67a2dSEric Dumazet 	struct icmp6hdr _icmph;
228423aebdacSJakub Sitnicki 
228523aebdacSJakub Sitnicki 	if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
228623aebdacSJakub Sitnicki 		goto out;
228723aebdacSJakub Sitnicki 
2288cea67a2dSEric Dumazet 	icmph = skb_header_pointer(skb, skb_transport_offset(skb),
2289cea67a2dSEric Dumazet 				   sizeof(_icmph), &_icmph);
2290cea67a2dSEric Dumazet 	if (!icmph)
2291cea67a2dSEric Dumazet 		goto out;
2292cea67a2dSEric Dumazet 
229323aebdacSJakub Sitnicki 	if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
229423aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
229523aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
229623aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PARAMPROB)
229723aebdacSJakub Sitnicki 		goto out;
229823aebdacSJakub Sitnicki 
229923aebdacSJakub Sitnicki 	inner_iph = skb_header_pointer(skb,
230023aebdacSJakub Sitnicki 				       skb_transport_offset(skb) + sizeof(*icmph),
230123aebdacSJakub Sitnicki 				       sizeof(_inner_iph), &_inner_iph);
230223aebdacSJakub Sitnicki 	if (!inner_iph)
230323aebdacSJakub Sitnicki 		goto out;
230423aebdacSJakub Sitnicki 
230523aebdacSJakub Sitnicki 	key_iph = inner_iph;
23065e5d6fedSRoopa Prabhu 	_flkeys = NULL;
230723aebdacSJakub Sitnicki out:
23085e5d6fedSRoopa Prabhu 	if (_flkeys) {
23095e5d6fedSRoopa Prabhu 		keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src;
23105e5d6fedSRoopa Prabhu 		keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst;
23115e5d6fedSRoopa Prabhu 		keys->tags.flow_label = _flkeys->tags.flow_label;
23125e5d6fedSRoopa Prabhu 		keys->basic.ip_proto = _flkeys->basic.ip_proto;
23135e5d6fedSRoopa Prabhu 	} else {
231423aebdacSJakub Sitnicki 		keys->addrs.v6addrs.src = key_iph->saddr;
231523aebdacSJakub Sitnicki 		keys->addrs.v6addrs.dst = key_iph->daddr;
2316fa1be7e0SMichal Kubecek 		keys->tags.flow_label = ip6_flowlabel(key_iph);
231723aebdacSJakub Sitnicki 		keys->basic.ip_proto = key_iph->nexthdr;
231823aebdacSJakub Sitnicki 	}
23195e5d6fedSRoopa Prabhu }
232023aebdacSJakub Sitnicki 
232123aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */
2322b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6,
2323b4bac172SDavid Ahern 		       const struct sk_buff *skb, struct flow_keys *flkeys)
232423aebdacSJakub Sitnicki {
232523aebdacSJakub Sitnicki 	struct flow_keys hash_keys;
23269a2a537aSDavid Ahern 	u32 mhash;
232723aebdacSJakub Sitnicki 
2328bbfa047aSDavid S. Miller 	switch (ip6_multipath_hash_policy(net)) {
2329b4bac172SDavid Ahern 	case 0:
23306f74b6c2SDavid Ahern 		memset(&hash_keys, 0, sizeof(hash_keys));
23316f74b6c2SDavid Ahern 		hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
23329a2a537aSDavid Ahern 		if (skb) {
23335e5d6fedSRoopa Prabhu 			ip6_multipath_l3_keys(skb, &hash_keys, flkeys);
23349a2a537aSDavid Ahern 		} else {
23359a2a537aSDavid Ahern 			hash_keys.addrs.v6addrs.src = fl6->saddr;
23369a2a537aSDavid Ahern 			hash_keys.addrs.v6addrs.dst = fl6->daddr;
2337fa1be7e0SMichal Kubecek 			hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6);
23389a2a537aSDavid Ahern 			hash_keys.basic.ip_proto = fl6->flowi6_proto;
233923aebdacSJakub Sitnicki 		}
2340b4bac172SDavid Ahern 		break;
2341b4bac172SDavid Ahern 	case 1:
2342b4bac172SDavid Ahern 		if (skb) {
2343b4bac172SDavid Ahern 			unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;
2344b4bac172SDavid Ahern 			struct flow_keys keys;
2345b4bac172SDavid Ahern 
2346b4bac172SDavid Ahern 			/* short-circuit if we already have L4 hash present */
2347b4bac172SDavid Ahern 			if (skb->l4_hash)
2348b4bac172SDavid Ahern 				return skb_get_hash_raw(skb) >> 1;
2349b4bac172SDavid Ahern 
2350b4bac172SDavid Ahern 			memset(&hash_keys, 0, sizeof(hash_keys));
2351b4bac172SDavid Ahern 
2352b4bac172SDavid Ahern                         if (!flkeys) {
2353b4bac172SDavid Ahern 				skb_flow_dissect_flow_keys(skb, &keys, flag);
2354b4bac172SDavid Ahern 				flkeys = &keys;
2355b4bac172SDavid Ahern 			}
2356b4bac172SDavid Ahern 			hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2357b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src;
2358b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst;
2359b4bac172SDavid Ahern 			hash_keys.ports.src = flkeys->ports.src;
2360b4bac172SDavid Ahern 			hash_keys.ports.dst = flkeys->ports.dst;
2361b4bac172SDavid Ahern 			hash_keys.basic.ip_proto = flkeys->basic.ip_proto;
2362b4bac172SDavid Ahern 		} else {
2363b4bac172SDavid Ahern 			memset(&hash_keys, 0, sizeof(hash_keys));
2364b4bac172SDavid Ahern 			hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2365b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.src = fl6->saddr;
2366b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.dst = fl6->daddr;
2367b4bac172SDavid Ahern 			hash_keys.ports.src = fl6->fl6_sport;
2368b4bac172SDavid Ahern 			hash_keys.ports.dst = fl6->fl6_dport;
2369b4bac172SDavid Ahern 			hash_keys.basic.ip_proto = fl6->flowi6_proto;
2370b4bac172SDavid Ahern 		}
2371b4bac172SDavid Ahern 		break;
2372b4bac172SDavid Ahern 	}
23739a2a537aSDavid Ahern 	mhash = flow_hash_from_keys(&hash_keys);
237423aebdacSJakub Sitnicki 
23759a2a537aSDavid Ahern 	return mhash >> 1;
237623aebdacSJakub Sitnicki }
237723aebdacSJakub Sitnicki 
237867f415ddSWei Wang /* Called with rcu held */
2379c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb)
2380c71099acSThomas Graf {
2381b71d1d42SEric Dumazet 	const struct ipv6hdr *iph = ipv6_hdr(skb);
2382c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(skb->dev);
238367f415ddSWei Wang 	int flags = RT6_LOOKUP_F_HAS_SADDR | RT6_LOOKUP_F_DST_NOREF;
2384904af04dSJiri Benc 	struct ip_tunnel_info *tun_info;
23854c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
2386e0d56fddSDavid Ahern 		.flowi6_iif = skb->dev->ifindex,
23874c9483b2SDavid S. Miller 		.daddr = iph->daddr,
23884c9483b2SDavid S. Miller 		.saddr = iph->saddr,
23896502ca52SYOSHIFUJI Hideaki / 吉藤英明 		.flowlabel = ip6_flowinfo(iph),
23904c9483b2SDavid S. Miller 		.flowi6_mark = skb->mark,
23914c9483b2SDavid S. Miller 		.flowi6_proto = iph->nexthdr,
2392c71099acSThomas Graf 	};
23935e5d6fedSRoopa Prabhu 	struct flow_keys *flkeys = NULL, _flkeys;
2394adaa70bbSThomas Graf 
2395904af04dSJiri Benc 	tun_info = skb_tunnel_info(skb);
239646fa062aSJiri Benc 	if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
2397904af04dSJiri Benc 		fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
23985e5d6fedSRoopa Prabhu 
23995e5d6fedSRoopa Prabhu 	if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys))
24005e5d6fedSRoopa Prabhu 		flkeys = &_flkeys;
24015e5d6fedSRoopa Prabhu 
240223aebdacSJakub Sitnicki 	if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
2403b4bac172SDavid Ahern 		fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys);
240406e9d040SJiri Benc 	skb_dst_drop(skb);
240567f415ddSWei Wang 	skb_dst_set_noref(skb, ip6_route_input_lookup(net, skb->dev,
240667f415ddSWei Wang 						      &fl6, skb, flags));
2407c71099acSThomas Graf }
2408c71099acSThomas Graf 
2409b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net,
2410b75cc8f9SDavid Ahern 					     struct fib6_table *table,
2411b75cc8f9SDavid Ahern 					     struct flowi6 *fl6,
2412b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
2413b75cc8f9SDavid Ahern 					     int flags)
2414c71099acSThomas Graf {
2415b75cc8f9SDavid Ahern 	return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags);
2416c71099acSThomas Graf }
2417c71099acSThomas Graf 
24187d9e5f42SWei Wang struct dst_entry *ip6_route_output_flags_noref(struct net *net,
24197d9e5f42SWei Wang 					       const struct sock *sk,
24206f21c96aSPaolo Abeni 					       struct flowi6 *fl6, int flags)
2421c71099acSThomas Graf {
2422d46a9d67SDavid Ahern 	bool any_src;
2423c71099acSThomas Graf 
24243ede0bbcSRobert Shearman 	if (ipv6_addr_type(&fl6->daddr) &
24253ede0bbcSRobert Shearman 	    (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) {
24264c1feac5SDavid Ahern 		struct dst_entry *dst;
24274c1feac5SDavid Ahern 
24287d9e5f42SWei Wang 		/* This function does not take refcnt on the dst */
24294c1feac5SDavid Ahern 		dst = l3mdev_link_scope_lookup(net, fl6);
2430ca254490SDavid Ahern 		if (dst)
2431ca254490SDavid Ahern 			return dst;
24324c1feac5SDavid Ahern 	}
2433ca254490SDavid Ahern 
24341fb9489bSPavel Emelyanov 	fl6->flowi6_iif = LOOPBACK_IFINDEX;
24354dc27d1cSDavid McCullough 
24367d9e5f42SWei Wang 	flags |= RT6_LOOKUP_F_DST_NOREF;
2437d46a9d67SDavid Ahern 	any_src = ipv6_addr_any(&fl6->saddr);
2438741a11d9SDavid Ahern 	if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
2439d46a9d67SDavid Ahern 	    (fl6->flowi6_oif && any_src))
244077d16f45SYOSHIFUJI Hideaki 		flags |= RT6_LOOKUP_F_IFACE;
2441c71099acSThomas Graf 
2442d46a9d67SDavid Ahern 	if (!any_src)
2443adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
24440c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 	else if (sk)
24450c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 		flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
2446adaa70bbSThomas Graf 
2447b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output);
24481da177e4SLinus Torvalds }
24497d9e5f42SWei Wang EXPORT_SYMBOL_GPL(ip6_route_output_flags_noref);
24507d9e5f42SWei Wang 
24517d9e5f42SWei Wang struct dst_entry *ip6_route_output_flags(struct net *net,
24527d9e5f42SWei Wang 					 const struct sock *sk,
24537d9e5f42SWei Wang 					 struct flowi6 *fl6,
24547d9e5f42SWei Wang 					 int flags)
24557d9e5f42SWei Wang {
24567d9e5f42SWei Wang         struct dst_entry *dst;
24577d9e5f42SWei Wang         struct rt6_info *rt6;
24587d9e5f42SWei Wang 
24597d9e5f42SWei Wang         rcu_read_lock();
24607d9e5f42SWei Wang         dst = ip6_route_output_flags_noref(net, sk, fl6, flags);
24617d9e5f42SWei Wang         rt6 = (struct rt6_info *)dst;
24627d9e5f42SWei Wang         /* For dst cached in uncached_list, refcnt is already taken. */
24637d9e5f42SWei Wang         if (list_empty(&rt6->rt6i_uncached) && !dst_hold_safe(dst)) {
24647d9e5f42SWei Wang                 dst = &net->ipv6.ip6_null_entry->dst;
24657d9e5f42SWei Wang                 dst_hold(dst);
24667d9e5f42SWei Wang         }
24677d9e5f42SWei Wang         rcu_read_unlock();
24687d9e5f42SWei Wang 
24697d9e5f42SWei Wang         return dst;
24707d9e5f42SWei Wang }
24716f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags);
24721da177e4SLinus Torvalds 
24732774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
247414e50e57SDavid S. Miller {
24755c1e6aa3SDavid S. Miller 	struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
24761dbe3252SWei Wang 	struct net_device *loopback_dev = net->loopback_dev;
247714e50e57SDavid S. Miller 	struct dst_entry *new = NULL;
247814e50e57SDavid S. Miller 
24791dbe3252SWei Wang 	rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
248062cf27e5SSteffen Klassert 		       DST_OBSOLETE_DEAD, 0);
248114e50e57SDavid S. Miller 	if (rt) {
24820a1f5962SMartin KaFai Lau 		rt6_info_init(rt);
248381eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
24840a1f5962SMartin KaFai Lau 
2485d8d1f30bSChangli Gao 		new = &rt->dst;
248614e50e57SDavid S. Miller 		new->__use = 1;
2487352e512cSHerbert Xu 		new->input = dst_discard;
2488ede2059dSEric W. Biederman 		new->output = dst_discard_out;
248914e50e57SDavid S. Miller 
2490defb3519SDavid S. Miller 		dst_copy_metrics(new, &ort->dst);
249114e50e57SDavid S. Miller 
24921dbe3252SWei Wang 		rt->rt6i_idev = in6_dev_get(loopback_dev);
24934e3fd7a0SAlexey Dobriyan 		rt->rt6i_gateway = ort->rt6i_gateway;
24940a1f5962SMartin KaFai Lau 		rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
249514e50e57SDavid S. Miller 
249614e50e57SDavid S. Miller 		memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
249714e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES
249814e50e57SDavid S. Miller 		memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
249914e50e57SDavid S. Miller #endif
250014e50e57SDavid S. Miller 	}
250114e50e57SDavid S. Miller 
250269ead7afSDavid S. Miller 	dst_release(dst_orig);
250369ead7afSDavid S. Miller 	return new ? new : ERR_PTR(-ENOMEM);
250414e50e57SDavid S. Miller }
250514e50e57SDavid S. Miller 
25061da177e4SLinus Torvalds /*
25071da177e4SLinus Torvalds  *	Destination cache support functions
25081da177e4SLinus Torvalds  */
25091da177e4SLinus Torvalds 
25108d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie)
25113da59bd9SMartin KaFai Lau {
251236143645SSteffen Klassert 	u32 rt_cookie = 0;
2513c5cff856SWei Wang 
25148ae86971SDavid Ahern 	if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie)
251593531c67SDavid Ahern 		return false;
251693531c67SDavid Ahern 
251793531c67SDavid Ahern 	if (fib6_check_expired(f6i))
251893531c67SDavid Ahern 		return false;
251993531c67SDavid Ahern 
252093531c67SDavid Ahern 	return true;
252193531c67SDavid Ahern }
252293531c67SDavid Ahern 
2523a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt,
2524a68886a6SDavid Ahern 				   struct fib6_info *from,
2525a68886a6SDavid Ahern 				   u32 cookie)
25263da59bd9SMartin KaFai Lau {
2527c5cff856SWei Wang 	u32 rt_cookie = 0;
2528c5cff856SWei Wang 
2529a68886a6SDavid Ahern 	if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) ||
253093531c67SDavid Ahern 	    rt_cookie != cookie)
25313da59bd9SMartin KaFai Lau 		return NULL;
25323da59bd9SMartin KaFai Lau 
25333da59bd9SMartin KaFai Lau 	if (rt6_check_expired(rt))
25343da59bd9SMartin KaFai Lau 		return NULL;
25353da59bd9SMartin KaFai Lau 
25363da59bd9SMartin KaFai Lau 	return &rt->dst;
25373da59bd9SMartin KaFai Lau }
25383da59bd9SMartin KaFai Lau 
2539a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt,
2540a68886a6SDavid Ahern 					    struct fib6_info *from,
2541a68886a6SDavid Ahern 					    u32 cookie)
25423da59bd9SMartin KaFai Lau {
25435973fb1eSMartin KaFai Lau 	if (!__rt6_check_expired(rt) &&
25445973fb1eSMartin KaFai Lau 	    rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
2545a68886a6SDavid Ahern 	    fib6_check(from, cookie))
25463da59bd9SMartin KaFai Lau 		return &rt->dst;
25473da59bd9SMartin KaFai Lau 	else
25483da59bd9SMartin KaFai Lau 		return NULL;
25493da59bd9SMartin KaFai Lau }
25503da59bd9SMartin KaFai Lau 
25511da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
25521da177e4SLinus Torvalds {
2553a87b7dc9SDavid Ahern 	struct dst_entry *dst_ret;
2554a68886a6SDavid Ahern 	struct fib6_info *from;
25551da177e4SLinus Torvalds 	struct rt6_info *rt;
25561da177e4SLinus Torvalds 
2557a87b7dc9SDavid Ahern 	rt = container_of(dst, struct rt6_info, dst);
2558a87b7dc9SDavid Ahern 
2559a87b7dc9SDavid Ahern 	rcu_read_lock();
25601da177e4SLinus Torvalds 
25616f3118b5SNicolas Dichtel 	/* All IPV6 dsts are created with ->obsolete set to the value
25626f3118b5SNicolas Dichtel 	 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
25636f3118b5SNicolas Dichtel 	 * into this function always.
25646f3118b5SNicolas Dichtel 	 */
2565e3bc10bdSHannes Frederic Sowa 
2566a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
25674b32b5adSMartin KaFai Lau 
2568a68886a6SDavid Ahern 	if (from && (rt->rt6i_flags & RTF_PCPU ||
2569a68886a6SDavid Ahern 	    unlikely(!list_empty(&rt->rt6i_uncached))))
2570a68886a6SDavid Ahern 		dst_ret = rt6_dst_from_check(rt, from, cookie);
25713da59bd9SMartin KaFai Lau 	else
2572a68886a6SDavid Ahern 		dst_ret = rt6_check(rt, from, cookie);
2573a87b7dc9SDavid Ahern 
2574a87b7dc9SDavid Ahern 	rcu_read_unlock();
2575a87b7dc9SDavid Ahern 
2576a87b7dc9SDavid Ahern 	return dst_ret;
25771da177e4SLinus Torvalds }
25781da177e4SLinus Torvalds 
25791da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
25801da177e4SLinus Torvalds {
25811da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *) dst;
25821da177e4SLinus Torvalds 
25831da177e4SLinus Torvalds 	if (rt) {
258454c1a859SYOSHIFUJI Hideaki / 吉藤英明 		if (rt->rt6i_flags & RTF_CACHE) {
2585c3c14da0SDavid Ahern 			rcu_read_lock();
258654c1a859SYOSHIFUJI Hideaki / 吉藤英明 			if (rt6_check_expired(rt)) {
258793531c67SDavid Ahern 				rt6_remove_exception_rt(rt);
258854c1a859SYOSHIFUJI Hideaki / 吉藤英明 				dst = NULL;
25891da177e4SLinus Torvalds 			}
2590c3c14da0SDavid Ahern 			rcu_read_unlock();
259154c1a859SYOSHIFUJI Hideaki / 吉藤英明 		} else {
259254c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst_release(dst);
259354c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst = NULL;
259454c1a859SYOSHIFUJI Hideaki / 吉藤英明 		}
259554c1a859SYOSHIFUJI Hideaki / 吉藤英明 	}
259654c1a859SYOSHIFUJI Hideaki / 吉藤英明 	return dst;
25971da177e4SLinus Torvalds }
25981da177e4SLinus Torvalds 
25991da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb)
26001da177e4SLinus Torvalds {
26011da177e4SLinus Torvalds 	struct rt6_info *rt;
26021da177e4SLinus Torvalds 
26033ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
26041da177e4SLinus Torvalds 
2605adf30907SEric Dumazet 	rt = (struct rt6_info *) skb_dst(skb);
26061da177e4SLinus Torvalds 	if (rt) {
26078a14e46fSDavid Ahern 		rcu_read_lock();
26081eb4f758SHannes Frederic Sowa 		if (rt->rt6i_flags & RTF_CACHE) {
260993531c67SDavid Ahern 			rt6_remove_exception_rt(rt);
2610c5cff856SWei Wang 		} else {
2611a68886a6SDavid Ahern 			struct fib6_info *from;
2612c5cff856SWei Wang 			struct fib6_node *fn;
2613c5cff856SWei Wang 
2614a68886a6SDavid Ahern 			from = rcu_dereference(rt->from);
2615a68886a6SDavid Ahern 			if (from) {
2616a68886a6SDavid Ahern 				fn = rcu_dereference(from->fib6_node);
2617c5cff856SWei Wang 				if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2618c5cff856SWei Wang 					fn->fn_sernum = -1;
2619a68886a6SDavid Ahern 			}
26201da177e4SLinus Torvalds 		}
26211da177e4SLinus Torvalds 		rcu_read_unlock();
26221da177e4SLinus Torvalds 	}
26231da177e4SLinus Torvalds }
26241da177e4SLinus Torvalds 
26256a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout)
26266a3e030fSDavid Ahern {
2627a68886a6SDavid Ahern 	if (!(rt0->rt6i_flags & RTF_EXPIRES)) {
2628a68886a6SDavid Ahern 		struct fib6_info *from;
2629a68886a6SDavid Ahern 
2630a68886a6SDavid Ahern 		rcu_read_lock();
2631a68886a6SDavid Ahern 		from = rcu_dereference(rt0->from);
2632a68886a6SDavid Ahern 		if (from)
2633a68886a6SDavid Ahern 			rt0->dst.expires = from->expires;
2634a68886a6SDavid Ahern 		rcu_read_unlock();
2635a68886a6SDavid Ahern 	}
26366a3e030fSDavid Ahern 
26376a3e030fSDavid Ahern 	dst_set_expires(&rt0->dst, timeout);
26386a3e030fSDavid Ahern 	rt0->rt6i_flags |= RTF_EXPIRES;
26396700c270SDavid S. Miller }
26401da177e4SLinus Torvalds 
264145e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
264245e4fd26SMartin KaFai Lau {
264345e4fd26SMartin KaFai Lau 	struct net *net = dev_net(rt->dst.dev);
264445e4fd26SMartin KaFai Lau 
2645d4ead6b3SDavid Ahern 	dst_metric_set(&rt->dst, RTAX_MTU, mtu);
264645e4fd26SMartin KaFai Lau 	rt->rt6i_flags |= RTF_MODIFIED;
264745e4fd26SMartin KaFai Lau 	rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
264845e4fd26SMartin KaFai Lau }
264945e4fd26SMartin KaFai Lau 
26500d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
26510d3f6d29SMartin KaFai Lau {
26520d3f6d29SMartin KaFai Lau 	return !(rt->rt6i_flags & RTF_CACHE) &&
26531490ed2aSPaolo Abeni 		(rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from));
26540d3f6d29SMartin KaFai Lau }
26550d3f6d29SMartin KaFai Lau 
265645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
265745e4fd26SMartin KaFai Lau 				 const struct ipv6hdr *iph, u32 mtu)
26581da177e4SLinus Torvalds {
26590dec879fSJulian Anastasov 	const struct in6_addr *daddr, *saddr;
26601da177e4SLinus Torvalds 	struct rt6_info *rt6 = (struct rt6_info *)dst;
26611da177e4SLinus Torvalds 
266219bda36cSXin Long 	if (dst_metric_locked(dst, RTAX_MTU))
266319bda36cSXin Long 		return;
266419bda36cSXin Long 
266545e4fd26SMartin KaFai Lau 	if (iph) {
266645e4fd26SMartin KaFai Lau 		daddr = &iph->daddr;
266745e4fd26SMartin KaFai Lau 		saddr = &iph->saddr;
266845e4fd26SMartin KaFai Lau 	} else if (sk) {
266945e4fd26SMartin KaFai Lau 		daddr = &sk->sk_v6_daddr;
267045e4fd26SMartin KaFai Lau 		saddr = &inet6_sk(sk)->saddr;
267145e4fd26SMartin KaFai Lau 	} else {
26720dec879fSJulian Anastasov 		daddr = NULL;
26730dec879fSJulian Anastasov 		saddr = NULL;
26741da177e4SLinus Torvalds 	}
26750dec879fSJulian Anastasov 	dst_confirm_neigh(dst, daddr);
26760dec879fSJulian Anastasov 	mtu = max_t(u32, mtu, IPV6_MIN_MTU);
26770dec879fSJulian Anastasov 	if (mtu >= dst_mtu(dst))
26780dec879fSJulian Anastasov 		return;
26790dec879fSJulian Anastasov 
26800dec879fSJulian Anastasov 	if (!rt6_cache_allowed_for_pmtu(rt6)) {
26810dec879fSJulian Anastasov 		rt6_do_update_pmtu(rt6, mtu);
26822b760fcfSWei Wang 		/* update rt6_ex->stamp for cache */
26832b760fcfSWei Wang 		if (rt6->rt6i_flags & RTF_CACHE)
26842b760fcfSWei Wang 			rt6_update_exception_stamp_rt(rt6);
26850dec879fSJulian Anastasov 	} else if (daddr) {
268685bd05deSDavid Ahern 		struct fib6_result res = {};
26870dec879fSJulian Anastasov 		struct rt6_info *nrt6;
26880dec879fSJulian Anastasov 
26894d85cd0cSDavid Ahern 		rcu_read_lock();
269085bd05deSDavid Ahern 		res.f6i = rcu_dereference(rt6->from);
269185bd05deSDavid Ahern 		if (!res.f6i) {
26929c69a132SJonathan Lemon 			rcu_read_unlock();
26939c69a132SJonathan Lemon 			return;
26949c69a132SJonathan Lemon 		}
26957d21fec9SDavid Ahern 		res.fib6_flags = res.f6i->fib6_flags;
26967d21fec9SDavid Ahern 		res.fib6_type = res.f6i->fib6_type;
26977d21fec9SDavid Ahern 
26982d44234bSDavid Ahern 		if (res.f6i->nh) {
26992d44234bSDavid Ahern 			struct fib6_nh_match_arg arg = {
27002d44234bSDavid Ahern 				.dev = dst->dev,
27012d44234bSDavid Ahern 				.gw = &rt6->rt6i_gateway,
27022d44234bSDavid Ahern 			};
27032d44234bSDavid Ahern 
27042d44234bSDavid Ahern 			nexthop_for_each_fib6_nh(res.f6i->nh,
27052d44234bSDavid Ahern 						 fib6_nh_find_match, &arg);
27062d44234bSDavid Ahern 
27072d44234bSDavid Ahern 			/* fib6_info uses a nexthop that does not have fib6_nh
27082d44234bSDavid Ahern 			 * using the dst->dev + gw. Should be impossible.
27092d44234bSDavid Ahern 			 */
27102d44234bSDavid Ahern 			if (!arg.match) {
27112d44234bSDavid Ahern 				rcu_read_unlock();
27122d44234bSDavid Ahern 				return;
27132d44234bSDavid Ahern 			}
27142d44234bSDavid Ahern 
27152d44234bSDavid Ahern 			res.nh = arg.match;
27162d44234bSDavid Ahern 		} else {
27172d44234bSDavid Ahern 			res.nh = res.f6i->fib6_nh;
27182d44234bSDavid Ahern 		}
27192d44234bSDavid Ahern 
272085bd05deSDavid Ahern 		nrt6 = ip6_rt_cache_alloc(&res, daddr, saddr);
272145e4fd26SMartin KaFai Lau 		if (nrt6) {
272245e4fd26SMartin KaFai Lau 			rt6_do_update_pmtu(nrt6, mtu);
27235012f0a5SDavid Ahern 			if (rt6_insert_exception(nrt6, &res))
27242b760fcfSWei Wang 				dst_release_immediate(&nrt6->dst);
272545e4fd26SMartin KaFai Lau 		}
2726a68886a6SDavid Ahern 		rcu_read_unlock();
272745e4fd26SMartin KaFai Lau 	}
272845e4fd26SMartin KaFai Lau }
272945e4fd26SMartin KaFai Lau 
273045e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
273145e4fd26SMartin KaFai Lau 			       struct sk_buff *skb, u32 mtu)
273245e4fd26SMartin KaFai Lau {
273345e4fd26SMartin KaFai Lau 	__ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
27341da177e4SLinus Torvalds }
27351da177e4SLinus Torvalds 
273642ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
2737e2d118a1SLorenzo Colitti 		     int oif, u32 mark, kuid_t uid)
273881aded24SDavid S. Miller {
273981aded24SDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
274081aded24SDavid S. Miller 	struct dst_entry *dst;
2741dc92095dSMaciej Żenczykowski 	struct flowi6 fl6 = {
2742dc92095dSMaciej Żenczykowski 		.flowi6_oif = oif,
2743dc92095dSMaciej Żenczykowski 		.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark),
2744dc92095dSMaciej Żenczykowski 		.daddr = iph->daddr,
2745dc92095dSMaciej Żenczykowski 		.saddr = iph->saddr,
2746dc92095dSMaciej Żenczykowski 		.flowlabel = ip6_flowinfo(iph),
2747dc92095dSMaciej Żenczykowski 		.flowi6_uid = uid,
2748dc92095dSMaciej Żenczykowski 	};
274981aded24SDavid S. Miller 
275081aded24SDavid S. Miller 	dst = ip6_route_output(net, NULL, &fl6);
275181aded24SDavid S. Miller 	if (!dst->error)
275245e4fd26SMartin KaFai Lau 		__ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
275381aded24SDavid S. Miller 	dst_release(dst);
275481aded24SDavid S. Miller }
275581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu);
275681aded24SDavid S. Miller 
275781aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
275881aded24SDavid S. Miller {
27597ddacfa5SDavid Ahern 	int oif = sk->sk_bound_dev_if;
276033c162a9SMartin KaFai Lau 	struct dst_entry *dst;
276133c162a9SMartin KaFai Lau 
27627ddacfa5SDavid Ahern 	if (!oif && skb->dev)
27637ddacfa5SDavid Ahern 		oif = l3mdev_master_ifindex(skb->dev);
27647ddacfa5SDavid Ahern 
27657ddacfa5SDavid Ahern 	ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid);
276633c162a9SMartin KaFai Lau 
276733c162a9SMartin KaFai Lau 	dst = __sk_dst_get(sk);
276833c162a9SMartin KaFai Lau 	if (!dst || !dst->obsolete ||
276933c162a9SMartin KaFai Lau 	    dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
277033c162a9SMartin KaFai Lau 		return;
277133c162a9SMartin KaFai Lau 
277233c162a9SMartin KaFai Lau 	bh_lock_sock(sk);
277333c162a9SMartin KaFai Lau 	if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
277433c162a9SMartin KaFai Lau 		ip6_datagram_dst_update(sk, false);
277533c162a9SMartin KaFai Lau 	bh_unlock_sock(sk);
277681aded24SDavid S. Miller }
277781aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
277881aded24SDavid S. Miller 
27797d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst,
27807d6850f7SAlexey Kodanev 			   const struct flowi6 *fl6)
27817d6850f7SAlexey Kodanev {
27827d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES
27837d6850f7SAlexey Kodanev 	struct ipv6_pinfo *np = inet6_sk(sk);
27847d6850f7SAlexey Kodanev #endif
27857d6850f7SAlexey Kodanev 
27867d6850f7SAlexey Kodanev 	ip6_dst_store(sk, dst,
27877d6850f7SAlexey Kodanev 		      ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ?
27887d6850f7SAlexey Kodanev 		      &sk->sk_v6_daddr : NULL,
27897d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES
27907d6850f7SAlexey Kodanev 		      ipv6_addr_equal(&fl6->saddr, &np->saddr) ?
27917d6850f7SAlexey Kodanev 		      &np->saddr :
27927d6850f7SAlexey Kodanev #endif
27937d6850f7SAlexey Kodanev 		      NULL);
27947d6850f7SAlexey Kodanev }
27957d6850f7SAlexey Kodanev 
27969b6b35abSDavid Ahern static bool ip6_redirect_nh_match(const struct fib6_result *res,
27970b34eb00SDavid Ahern 				  struct flowi6 *fl6,
27980b34eb00SDavid Ahern 				  const struct in6_addr *gw,
27990b34eb00SDavid Ahern 				  struct rt6_info **ret)
28000b34eb00SDavid Ahern {
28019b6b35abSDavid Ahern 	const struct fib6_nh *nh = res->nh;
28029b6b35abSDavid Ahern 
28030b34eb00SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD || !nh->fib_nh_gw_family ||
28040b34eb00SDavid Ahern 	    fl6->flowi6_oif != nh->fib_nh_dev->ifindex)
28050b34eb00SDavid Ahern 		return false;
28060b34eb00SDavid Ahern 
28070b34eb00SDavid Ahern 	/* rt_cache's gateway might be different from its 'parent'
28080b34eb00SDavid Ahern 	 * in the case of an ip redirect.
28090b34eb00SDavid Ahern 	 * So we keep searching in the exception table if the gateway
28100b34eb00SDavid Ahern 	 * is different.
28110b34eb00SDavid Ahern 	 */
28120b34eb00SDavid Ahern 	if (!ipv6_addr_equal(gw, &nh->fib_nh_gw6)) {
28130b34eb00SDavid Ahern 		struct rt6_info *rt_cache;
28140b34eb00SDavid Ahern 
28159b6b35abSDavid Ahern 		rt_cache = rt6_find_cached_rt(res, &fl6->daddr, &fl6->saddr);
28160b34eb00SDavid Ahern 		if (rt_cache &&
28170b34eb00SDavid Ahern 		    ipv6_addr_equal(gw, &rt_cache->rt6i_gateway)) {
28180b34eb00SDavid Ahern 			*ret = rt_cache;
28190b34eb00SDavid Ahern 			return true;
28200b34eb00SDavid Ahern 		}
28210b34eb00SDavid Ahern 		return false;
28220b34eb00SDavid Ahern 	}
28230b34eb00SDavid Ahern 	return true;
28240b34eb00SDavid Ahern }
28250b34eb00SDavid Ahern 
2826c55c8988SDavid Ahern struct fib6_nh_rd_arg {
2827c55c8988SDavid Ahern 	struct fib6_result	*res;
2828c55c8988SDavid Ahern 	struct flowi6		*fl6;
2829c55c8988SDavid Ahern 	const struct in6_addr	*gw;
2830c55c8988SDavid Ahern 	struct rt6_info		**ret;
2831c55c8988SDavid Ahern };
2832c55c8988SDavid Ahern 
2833c55c8988SDavid Ahern static int fib6_nh_redirect_match(struct fib6_nh *nh, void *_arg)
2834c55c8988SDavid Ahern {
2835c55c8988SDavid Ahern 	struct fib6_nh_rd_arg *arg = _arg;
2836c55c8988SDavid Ahern 
2837c55c8988SDavid Ahern 	arg->res->nh = nh;
2838c55c8988SDavid Ahern 	return ip6_redirect_nh_match(arg->res, arg->fl6, arg->gw, arg->ret);
2839c55c8988SDavid Ahern }
2840c55c8988SDavid Ahern 
2841b55b76b2SDuan Jiong /* Handle redirects */
2842b55b76b2SDuan Jiong struct ip6rd_flowi {
2843b55b76b2SDuan Jiong 	struct flowi6 fl6;
2844b55b76b2SDuan Jiong 	struct in6_addr gateway;
2845b55b76b2SDuan Jiong };
2846b55b76b2SDuan Jiong 
2847b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net,
2848b55b76b2SDuan Jiong 					     struct fib6_table *table,
2849b55b76b2SDuan Jiong 					     struct flowi6 *fl6,
2850b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
2851b55b76b2SDuan Jiong 					     int flags)
2852b55b76b2SDuan Jiong {
2853b55b76b2SDuan Jiong 	struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
28540b34eb00SDavid Ahern 	struct rt6_info *ret = NULL;
28559b6b35abSDavid Ahern 	struct fib6_result res = {};
2856c55c8988SDavid Ahern 	struct fib6_nh_rd_arg arg = {
2857c55c8988SDavid Ahern 		.res = &res,
2858c55c8988SDavid Ahern 		.fl6 = fl6,
2859c55c8988SDavid Ahern 		.gw  = &rdfl->gateway,
2860c55c8988SDavid Ahern 		.ret = &ret
2861c55c8988SDavid Ahern 	};
28628d1c802bSDavid Ahern 	struct fib6_info *rt;
2863b55b76b2SDuan Jiong 	struct fib6_node *fn;
2864b55b76b2SDuan Jiong 
286531680ac2SDavid Ahern 	/* l3mdev_update_flow overrides oif if the device is enslaved; in
286631680ac2SDavid Ahern 	 * this case we must match on the real ingress device, so reset it
286731680ac2SDavid Ahern 	 */
286831680ac2SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
286931680ac2SDavid Ahern 		fl6->flowi6_oif = skb->dev->ifindex;
287031680ac2SDavid Ahern 
2871b55b76b2SDuan Jiong 	/* Get the "current" route for this destination and
287267c408cfSAlexander Alemayhu 	 * check if the redirect has come from appropriate router.
2873b55b76b2SDuan Jiong 	 *
2874b55b76b2SDuan Jiong 	 * RFC 4861 specifies that redirects should only be
2875b55b76b2SDuan Jiong 	 * accepted if they come from the nexthop to the target.
2876b55b76b2SDuan Jiong 	 * Due to the way the routes are chosen, this notion
2877b55b76b2SDuan Jiong 	 * is a bit fuzzy and one might need to check all possible
2878b55b76b2SDuan Jiong 	 * routes.
2879b55b76b2SDuan Jiong 	 */
2880b55b76b2SDuan Jiong 
288166f5d6ceSWei Wang 	rcu_read_lock();
28826454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2883b55b76b2SDuan Jiong restart:
288466f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
28859b6b35abSDavid Ahern 		res.f6i = rt;
288614895687SDavid Ahern 		if (fib6_check_expired(rt))
2887b55b76b2SDuan Jiong 			continue;
288893c2fb25SDavid Ahern 		if (rt->fib6_flags & RTF_REJECT)
2889b55b76b2SDuan Jiong 			break;
2890c55c8988SDavid Ahern 		if (unlikely(rt->nh)) {
2891c55c8988SDavid Ahern 			if (nexthop_is_blackhole(rt->nh))
2892c55c8988SDavid Ahern 				continue;
2893c55c8988SDavid Ahern 			/* on match, res->nh is filled in and potentially ret */
2894c55c8988SDavid Ahern 			if (nexthop_for_each_fib6_nh(rt->nh,
2895c55c8988SDavid Ahern 						     fib6_nh_redirect_match,
2896c55c8988SDavid Ahern 						     &arg))
28970b34eb00SDavid Ahern 				goto out;
2898c55c8988SDavid Ahern 		} else {
2899c55c8988SDavid Ahern 			res.nh = rt->fib6_nh;
2900c55c8988SDavid Ahern 			if (ip6_redirect_nh_match(&res, fl6, &rdfl->gateway,
2901c55c8988SDavid Ahern 						  &ret))
2902c55c8988SDavid Ahern 				goto out;
2903c55c8988SDavid Ahern 		}
2904b55b76b2SDuan Jiong 	}
2905b55b76b2SDuan Jiong 
2906b55b76b2SDuan Jiong 	if (!rt)
2907421842edSDavid Ahern 		rt = net->ipv6.fib6_null_entry;
290893c2fb25SDavid Ahern 	else if (rt->fib6_flags & RTF_REJECT) {
290923fb93a4SDavid Ahern 		ret = net->ipv6.ip6_null_entry;
2910b0a1ba59SMartin KaFai Lau 		goto out;
2911b0a1ba59SMartin KaFai Lau 	}
2912b0a1ba59SMartin KaFai Lau 
2913421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry) {
2914a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
2915a3c00e46SMartin KaFai Lau 		if (fn)
2916a3c00e46SMartin KaFai Lau 			goto restart;
2917b55b76b2SDuan Jiong 	}
2918a3c00e46SMartin KaFai Lau 
29199b6b35abSDavid Ahern 	res.f6i = rt;
29201cf844c7SDavid Ahern 	res.nh = rt->fib6_nh;
2921b0a1ba59SMartin KaFai Lau out:
29227d21fec9SDavid Ahern 	if (ret) {
292310585b43SDavid Ahern 		ip6_hold_safe(net, &ret);
29247d21fec9SDavid Ahern 	} else {
29257d21fec9SDavid Ahern 		res.fib6_flags = res.f6i->fib6_flags;
29267d21fec9SDavid Ahern 		res.fib6_type = res.f6i->fib6_type;
29279b6b35abSDavid Ahern 		ret = ip6_create_rt_rcu(&res);
29287d21fec9SDavid Ahern 	}
2929b55b76b2SDuan Jiong 
293066f5d6ceSWei Wang 	rcu_read_unlock();
2931b55b76b2SDuan Jiong 
29328ff2e5b2SDavid Ahern 	trace_fib6_table_lookup(net, &res, table, fl6);
293323fb93a4SDavid Ahern 	return ret;
2934b55b76b2SDuan Jiong };
2935b55b76b2SDuan Jiong 
2936b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net,
2937b55b76b2SDuan Jiong 					    const struct flowi6 *fl6,
2938b75cc8f9SDavid Ahern 					    const struct sk_buff *skb,
2939b55b76b2SDuan Jiong 					    const struct in6_addr *gateway)
2940b55b76b2SDuan Jiong {
2941b55b76b2SDuan Jiong 	int flags = RT6_LOOKUP_F_HAS_SADDR;
2942b55b76b2SDuan Jiong 	struct ip6rd_flowi rdfl;
2943b55b76b2SDuan Jiong 
2944b55b76b2SDuan Jiong 	rdfl.fl6 = *fl6;
2945b55b76b2SDuan Jiong 	rdfl.gateway = *gateway;
2946b55b76b2SDuan Jiong 
2947b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, &rdfl.fl6, skb,
2948b55b76b2SDuan Jiong 				flags, __ip6_route_redirect);
2949b55b76b2SDuan Jiong }
2950b55b76b2SDuan Jiong 
2951e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2952e2d118a1SLorenzo Colitti 		  kuid_t uid)
29533a5ad2eeSDavid S. Miller {
29543a5ad2eeSDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
29553a5ad2eeSDavid S. Miller 	struct dst_entry *dst;
29561f7f10acSMaciej Żenczykowski 	struct flowi6 fl6 = {
29571f7f10acSMaciej Żenczykowski 		.flowi6_iif = LOOPBACK_IFINDEX,
29581f7f10acSMaciej Żenczykowski 		.flowi6_oif = oif,
29591f7f10acSMaciej Żenczykowski 		.flowi6_mark = mark,
29601f7f10acSMaciej Żenczykowski 		.daddr = iph->daddr,
29611f7f10acSMaciej Żenczykowski 		.saddr = iph->saddr,
29621f7f10acSMaciej Żenczykowski 		.flowlabel = ip6_flowinfo(iph),
29631f7f10acSMaciej Żenczykowski 		.flowi6_uid = uid,
29641f7f10acSMaciej Żenczykowski 	};
29653a5ad2eeSDavid S. Miller 
2966b75cc8f9SDavid Ahern 	dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr);
29676700c270SDavid S. Miller 	rt6_do_redirect(dst, NULL, skb);
29683a5ad2eeSDavid S. Miller 	dst_release(dst);
29693a5ad2eeSDavid S. Miller }
29703a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect);
29713a5ad2eeSDavid S. Miller 
2972d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif)
2973c92a59ecSDuan Jiong {
2974c92a59ecSDuan Jiong 	const struct ipv6hdr *iph = ipv6_hdr(skb);
2975c92a59ecSDuan Jiong 	const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2976c92a59ecSDuan Jiong 	struct dst_entry *dst;
29770b26fb17SMaciej Żenczykowski 	struct flowi6 fl6 = {
29780b26fb17SMaciej Żenczykowski 		.flowi6_iif = LOOPBACK_IFINDEX,
29790b26fb17SMaciej Żenczykowski 		.flowi6_oif = oif,
29800b26fb17SMaciej Żenczykowski 		.daddr = msg->dest,
29810b26fb17SMaciej Żenczykowski 		.saddr = iph->daddr,
29820b26fb17SMaciej Żenczykowski 		.flowi6_uid = sock_net_uid(net, NULL),
29830b26fb17SMaciej Żenczykowski 	};
2984c92a59ecSDuan Jiong 
2985b75cc8f9SDavid Ahern 	dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr);
2986c92a59ecSDuan Jiong 	rt6_do_redirect(dst, NULL, skb);
2987c92a59ecSDuan Jiong 	dst_release(dst);
2988c92a59ecSDuan Jiong }
2989c92a59ecSDuan Jiong 
29903a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
29913a5ad2eeSDavid S. Miller {
2992e2d118a1SLorenzo Colitti 	ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2993e2d118a1SLorenzo Colitti 		     sk->sk_uid);
29943a5ad2eeSDavid S. Miller }
29953a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect);
29963a5ad2eeSDavid S. Miller 
29970dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst)
29981da177e4SLinus Torvalds {
29990dbaee3bSDavid S. Miller 	struct net_device *dev = dst->dev;
30000dbaee3bSDavid S. Miller 	unsigned int mtu = dst_mtu(dst);
30010dbaee3bSDavid S. Miller 	struct net *net = dev_net(dev);
30020dbaee3bSDavid S. Miller 
30031da177e4SLinus Torvalds 	mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
30041da177e4SLinus Torvalds 
30055578689aSDaniel Lezcano 	if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
30065578689aSDaniel Lezcano 		mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
30071da177e4SLinus Torvalds 
30081da177e4SLinus Torvalds 	/*
30091da177e4SLinus Torvalds 	 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
30101da177e4SLinus Torvalds 	 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
30111da177e4SLinus Torvalds 	 * IPV6_MAXPLEN is also valid and means: "any MSS,
30121da177e4SLinus Torvalds 	 * rely only on pmtu discovery"
30131da177e4SLinus Torvalds 	 */
30141da177e4SLinus Torvalds 	if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
30151da177e4SLinus Torvalds 		mtu = IPV6_MAXPLEN;
30161da177e4SLinus Torvalds 	return mtu;
30171da177e4SLinus Torvalds }
30181da177e4SLinus Torvalds 
3019ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst)
3020d33e4553SDavid S. Miller {
3021d33e4553SDavid S. Miller 	struct inet6_dev *idev;
3022d4ead6b3SDavid Ahern 	unsigned int mtu;
3023618f9bc7SSteffen Klassert 
30244b32b5adSMartin KaFai Lau 	mtu = dst_metric_raw(dst, RTAX_MTU);
30254b32b5adSMartin KaFai Lau 	if (mtu)
30264b32b5adSMartin KaFai Lau 		goto out;
30274b32b5adSMartin KaFai Lau 
3028618f9bc7SSteffen Klassert 	mtu = IPV6_MIN_MTU;
3029d33e4553SDavid S. Miller 
3030d33e4553SDavid S. Miller 	rcu_read_lock();
3031d33e4553SDavid S. Miller 	idev = __in6_dev_get(dst->dev);
3032d33e4553SDavid S. Miller 	if (idev)
3033d33e4553SDavid S. Miller 		mtu = idev->cnf.mtu6;
3034d33e4553SDavid S. Miller 	rcu_read_unlock();
3035d33e4553SDavid S. Miller 
303630f78d8eSEric Dumazet out:
303714972cbdSRoopa Prabhu 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
303814972cbdSRoopa Prabhu 
303914972cbdSRoopa Prabhu 	return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
3040d33e4553SDavid S. Miller }
3041d33e4553SDavid S. Miller 
3042901731b8SDavid Ahern /* MTU selection:
3043901731b8SDavid Ahern  * 1. mtu on route is locked - use it
3044901731b8SDavid Ahern  * 2. mtu from nexthop exception
3045901731b8SDavid Ahern  * 3. mtu from egress device
3046901731b8SDavid Ahern  *
3047901731b8SDavid Ahern  * based on ip6_dst_mtu_forward and exception logic of
3048901731b8SDavid Ahern  * rt6_find_cached_rt; called with rcu_read_lock
3049901731b8SDavid Ahern  */
3050b748f260SDavid Ahern u32 ip6_mtu_from_fib6(const struct fib6_result *res,
3051b748f260SDavid Ahern 		      const struct in6_addr *daddr,
3052b748f260SDavid Ahern 		      const struct in6_addr *saddr)
3053901731b8SDavid Ahern {
3054b748f260SDavid Ahern 	const struct fib6_nh *nh = res->nh;
3055b748f260SDavid Ahern 	struct fib6_info *f6i = res->f6i;
3056901731b8SDavid Ahern 	struct inet6_dev *idev;
3057510e2cedSWei Wang 	struct rt6_info *rt;
3058901731b8SDavid Ahern 	u32 mtu = 0;
3059901731b8SDavid Ahern 
3060901731b8SDavid Ahern 	if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) {
3061901731b8SDavid Ahern 		mtu = f6i->fib6_pmtu;
3062901731b8SDavid Ahern 		if (mtu)
3063901731b8SDavid Ahern 			goto out;
3064901731b8SDavid Ahern 	}
3065901731b8SDavid Ahern 
3066510e2cedSWei Wang 	rt = rt6_find_cached_rt(res, daddr, saddr);
3067510e2cedSWei Wang 	if (unlikely(rt)) {
3068510e2cedSWei Wang 		mtu = dst_metric_raw(&rt->dst, RTAX_MTU);
3069510e2cedSWei Wang 	} else {
3070b748f260SDavid Ahern 		struct net_device *dev = nh->fib_nh_dev;
3071901731b8SDavid Ahern 
3072901731b8SDavid Ahern 		mtu = IPV6_MIN_MTU;
3073901731b8SDavid Ahern 		idev = __in6_dev_get(dev);
3074901731b8SDavid Ahern 		if (idev && idev->cnf.mtu6 > mtu)
3075901731b8SDavid Ahern 			mtu = idev->cnf.mtu6;
3076901731b8SDavid Ahern 	}
3077901731b8SDavid Ahern 
3078901731b8SDavid Ahern 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
3079901731b8SDavid Ahern out:
3080b748f260SDavid Ahern 	return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu);
3081901731b8SDavid Ahern }
3082901731b8SDavid Ahern 
30833b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
308487a11578SDavid S. Miller 				  struct flowi6 *fl6)
30851da177e4SLinus Torvalds {
308687a11578SDavid S. Miller 	struct dst_entry *dst;
30871da177e4SLinus Torvalds 	struct rt6_info *rt;
30881da177e4SLinus Torvalds 	struct inet6_dev *idev = in6_dev_get(dev);
3089c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
30901da177e4SLinus Torvalds 
309138308473SDavid S. Miller 	if (unlikely(!idev))
3092122bdf67SEric Dumazet 		return ERR_PTR(-ENODEV);
30931da177e4SLinus Torvalds 
3094ad706862SMartin KaFai Lau 	rt = ip6_dst_alloc(net, dev, 0);
309538308473SDavid S. Miller 	if (unlikely(!rt)) {
30961da177e4SLinus Torvalds 		in6_dev_put(idev);
309787a11578SDavid S. Miller 		dst = ERR_PTR(-ENOMEM);
30981da177e4SLinus Torvalds 		goto out;
30991da177e4SLinus Torvalds 	}
31001da177e4SLinus Torvalds 
31018e2ec639SYan, Zheng 	rt->dst.flags |= DST_HOST;
3102588753f1SBrendan McGrath 	rt->dst.input = ip6_input;
31038e2ec639SYan, Zheng 	rt->dst.output  = ip6_output;
3104550bab42SJulian Anastasov 	rt->rt6i_gateway  = fl6->daddr;
310587a11578SDavid S. Miller 	rt->rt6i_dst.addr = fl6->daddr;
31068e2ec639SYan, Zheng 	rt->rt6i_dst.plen = 128;
31078e2ec639SYan, Zheng 	rt->rt6i_idev     = idev;
310814edd87dSLi RongQing 	dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
31091da177e4SLinus Torvalds 
31104c981e28SIdo Schimmel 	/* Add this dst into uncached_list so that rt6_disable_ip() can
3111587fea74SWei Wang 	 * do proper release of the net_device
3112587fea74SWei Wang 	 */
3113587fea74SWei Wang 	rt6_uncached_list_add(rt);
311481eb8447SWei Wang 	atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
31151da177e4SLinus Torvalds 
311687a11578SDavid S. Miller 	dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
311787a11578SDavid S. Miller 
31181da177e4SLinus Torvalds out:
311987a11578SDavid S. Miller 	return dst;
31201da177e4SLinus Torvalds }
31211da177e4SLinus Torvalds 
3122569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops)
31231da177e4SLinus Torvalds {
312486393e52SAlexey Dobriyan 	struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
31257019b78eSDaniel Lezcano 	int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
31267019b78eSDaniel Lezcano 	int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
31277019b78eSDaniel Lezcano 	int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
31287019b78eSDaniel Lezcano 	int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
31297019b78eSDaniel Lezcano 	unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
3130fc66f95cSEric Dumazet 	int entries;
31311da177e4SLinus Torvalds 
3132fc66f95cSEric Dumazet 	entries = dst_entries_get_fast(ops);
313349a18d86SMichal Kubeček 	if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
3134fc66f95cSEric Dumazet 	    entries <= rt_max_size)
31351da177e4SLinus Torvalds 		goto out;
31361da177e4SLinus Torvalds 
31376891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire++;
313814956643SLi RongQing 	fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
3139fc66f95cSEric Dumazet 	entries = dst_entries_get_slow(ops);
3140fc66f95cSEric Dumazet 	if (entries < ops->gc_thresh)
31417019b78eSDaniel Lezcano 		net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
31421da177e4SLinus Torvalds out:
31437019b78eSDaniel Lezcano 	net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
3144fc66f95cSEric Dumazet 	return entries > rt_max_size;
31451da177e4SLinus Torvalds }
31461da177e4SLinus Torvalds 
31478c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net,
31488c14586fSDavid Ahern 					    struct fib6_config *cfg,
3149f4797b33SDavid Ahern 					    const struct in6_addr *gw_addr,
3150f4797b33SDavid Ahern 					    u32 tbid, int flags)
31518c14586fSDavid Ahern {
31528c14586fSDavid Ahern 	struct flowi6 fl6 = {
31538c14586fSDavid Ahern 		.flowi6_oif = cfg->fc_ifindex,
31548c14586fSDavid Ahern 		.daddr = *gw_addr,
31558c14586fSDavid Ahern 		.saddr = cfg->fc_prefsrc,
31568c14586fSDavid Ahern 	};
31578c14586fSDavid Ahern 	struct fib6_table *table;
31588c14586fSDavid Ahern 	struct rt6_info *rt;
31598c14586fSDavid Ahern 
3160f4797b33SDavid Ahern 	table = fib6_get_table(net, tbid);
31618c14586fSDavid Ahern 	if (!table)
31628c14586fSDavid Ahern 		return NULL;
31638c14586fSDavid Ahern 
31648c14586fSDavid Ahern 	if (!ipv6_addr_any(&cfg->fc_prefsrc))
31658c14586fSDavid Ahern 		flags |= RT6_LOOKUP_F_HAS_SADDR;
31668c14586fSDavid Ahern 
3167f4797b33SDavid Ahern 	flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
3168b75cc8f9SDavid Ahern 	rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags);
31698c14586fSDavid Ahern 
31708c14586fSDavid Ahern 	/* if table lookup failed, fall back to full lookup */
31718c14586fSDavid Ahern 	if (rt == net->ipv6.ip6_null_entry) {
31728c14586fSDavid Ahern 		ip6_rt_put(rt);
31738c14586fSDavid Ahern 		rt = NULL;
31748c14586fSDavid Ahern 	}
31758c14586fSDavid Ahern 
31768c14586fSDavid Ahern 	return rt;
31778c14586fSDavid Ahern }
31788c14586fSDavid Ahern 
3179fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net,
3180fc1e64e1SDavid Ahern 				     struct fib6_config *cfg,
31819fbb704cSDavid Ahern 				     const struct net_device *dev,
3182fc1e64e1SDavid Ahern 				     struct netlink_ext_ack *extack)
3183fc1e64e1SDavid Ahern {
318444750f84SDavid Ahern 	u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
3185fc1e64e1SDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
3186fc1e64e1SDavid Ahern 	u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
3187bf1dc8baSPaolo Abeni 	struct fib6_info *from;
3188fc1e64e1SDavid Ahern 	struct rt6_info *grt;
3189fc1e64e1SDavid Ahern 	int err;
3190fc1e64e1SDavid Ahern 
3191fc1e64e1SDavid Ahern 	err = 0;
3192fc1e64e1SDavid Ahern 	grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
3193fc1e64e1SDavid Ahern 	if (grt) {
3194bf1dc8baSPaolo Abeni 		rcu_read_lock();
3195bf1dc8baSPaolo Abeni 		from = rcu_dereference(grt->from);
319658e354c0SDavid Ahern 		if (!grt->dst.error &&
31974ed591c8SDavid Ahern 		    /* ignore match if it is the default route */
3198bf1dc8baSPaolo Abeni 		    from && !ipv6_addr_any(&from->fib6_dst.addr) &&
319958e354c0SDavid Ahern 		    (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
320044750f84SDavid Ahern 			NL_SET_ERR_MSG(extack,
320144750f84SDavid Ahern 				       "Nexthop has invalid gateway or device mismatch");
3202fc1e64e1SDavid Ahern 			err = -EINVAL;
3203fc1e64e1SDavid Ahern 		}
3204bf1dc8baSPaolo Abeni 		rcu_read_unlock();
3205fc1e64e1SDavid Ahern 
3206fc1e64e1SDavid Ahern 		ip6_rt_put(grt);
3207fc1e64e1SDavid Ahern 	}
3208fc1e64e1SDavid Ahern 
3209fc1e64e1SDavid Ahern 	return err;
3210fc1e64e1SDavid Ahern }
3211fc1e64e1SDavid Ahern 
32121edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net,
32131edce99fSDavid Ahern 			      struct fib6_config *cfg,
32141edce99fSDavid Ahern 			      struct net_device **_dev,
32151edce99fSDavid Ahern 			      struct inet6_dev **idev)
32161edce99fSDavid Ahern {
32171edce99fSDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
32181edce99fSDavid Ahern 	struct net_device *dev = _dev ? *_dev : NULL;
32191edce99fSDavid Ahern 	struct rt6_info *grt = NULL;
32201edce99fSDavid Ahern 	int err = -EHOSTUNREACH;
32211edce99fSDavid Ahern 
32221edce99fSDavid Ahern 	if (cfg->fc_table) {
3223f4797b33SDavid Ahern 		int flags = RT6_LOOKUP_F_IFACE;
3224f4797b33SDavid Ahern 
3225f4797b33SDavid Ahern 		grt = ip6_nh_lookup_table(net, cfg, gw_addr,
3226f4797b33SDavid Ahern 					  cfg->fc_table, flags);
32271edce99fSDavid Ahern 		if (grt) {
32281edce99fSDavid Ahern 			if (grt->rt6i_flags & RTF_GATEWAY ||
32291edce99fSDavid Ahern 			    (dev && dev != grt->dst.dev)) {
32301edce99fSDavid Ahern 				ip6_rt_put(grt);
32311edce99fSDavid Ahern 				grt = NULL;
32321edce99fSDavid Ahern 			}
32331edce99fSDavid Ahern 		}
32341edce99fSDavid Ahern 	}
32351edce99fSDavid Ahern 
32361edce99fSDavid Ahern 	if (!grt)
3237b75cc8f9SDavid Ahern 		grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1);
32381edce99fSDavid Ahern 
32391edce99fSDavid Ahern 	if (!grt)
32401edce99fSDavid Ahern 		goto out;
32411edce99fSDavid Ahern 
32421edce99fSDavid Ahern 	if (dev) {
32431edce99fSDavid Ahern 		if (dev != grt->dst.dev) {
32441edce99fSDavid Ahern 			ip6_rt_put(grt);
32451edce99fSDavid Ahern 			goto out;
32461edce99fSDavid Ahern 		}
32471edce99fSDavid Ahern 	} else {
32481edce99fSDavid Ahern 		*_dev = dev = grt->dst.dev;
32491edce99fSDavid Ahern 		*idev = grt->rt6i_idev;
32501edce99fSDavid Ahern 		dev_hold(dev);
32511edce99fSDavid Ahern 		in6_dev_hold(grt->rt6i_idev);
32521edce99fSDavid Ahern 	}
32531edce99fSDavid Ahern 
32541edce99fSDavid Ahern 	if (!(grt->rt6i_flags & RTF_GATEWAY))
32551edce99fSDavid Ahern 		err = 0;
32561edce99fSDavid Ahern 
32571edce99fSDavid Ahern 	ip6_rt_put(grt);
32581edce99fSDavid Ahern 
32591edce99fSDavid Ahern out:
32601edce99fSDavid Ahern 	return err;
32611edce99fSDavid Ahern }
32621edce99fSDavid Ahern 
32639fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg,
32649fbb704cSDavid Ahern 			   struct net_device **_dev, struct inet6_dev **idev,
32659fbb704cSDavid Ahern 			   struct netlink_ext_ack *extack)
32669fbb704cSDavid Ahern {
32679fbb704cSDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
32689fbb704cSDavid Ahern 	int gwa_type = ipv6_addr_type(gw_addr);
3269232378e8SDavid Ahern 	bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true;
32709fbb704cSDavid Ahern 	const struct net_device *dev = *_dev;
3271232378e8SDavid Ahern 	bool need_addr_check = !dev;
32729fbb704cSDavid Ahern 	int err = -EINVAL;
32739fbb704cSDavid Ahern 
32749fbb704cSDavid Ahern 	/* if gw_addr is local we will fail to detect this in case
32759fbb704cSDavid Ahern 	 * address is still TENTATIVE (DAD in progress). rt6_lookup()
32769fbb704cSDavid Ahern 	 * will return already-added prefix route via interface that
32779fbb704cSDavid Ahern 	 * prefix route was assigned to, which might be non-loopback.
32789fbb704cSDavid Ahern 	 */
3279232378e8SDavid Ahern 	if (dev &&
3280232378e8SDavid Ahern 	    ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
3281232378e8SDavid Ahern 		NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
32829fbb704cSDavid Ahern 		goto out;
32839fbb704cSDavid Ahern 	}
32849fbb704cSDavid Ahern 
32859fbb704cSDavid Ahern 	if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) {
32869fbb704cSDavid Ahern 		/* IPv6 strictly inhibits using not link-local
32879fbb704cSDavid Ahern 		 * addresses as nexthop address.
32889fbb704cSDavid Ahern 		 * Otherwise, router will not able to send redirects.
32899fbb704cSDavid Ahern 		 * It is very good, but in some (rare!) circumstances
32909fbb704cSDavid Ahern 		 * (SIT, PtP, NBMA NOARP links) it is handy to allow
32919fbb704cSDavid Ahern 		 * some exceptions. --ANK
32929fbb704cSDavid Ahern 		 * We allow IPv4-mapped nexthops to support RFC4798-type
32939fbb704cSDavid Ahern 		 * addressing
32949fbb704cSDavid Ahern 		 */
32959fbb704cSDavid Ahern 		if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) {
32969fbb704cSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid gateway address");
32979fbb704cSDavid Ahern 			goto out;
32989fbb704cSDavid Ahern 		}
32999fbb704cSDavid Ahern 
33009fbb704cSDavid Ahern 		if (cfg->fc_flags & RTNH_F_ONLINK)
33019fbb704cSDavid Ahern 			err = ip6_route_check_nh_onlink(net, cfg, dev, extack);
33029fbb704cSDavid Ahern 		else
33039fbb704cSDavid Ahern 			err = ip6_route_check_nh(net, cfg, _dev, idev);
33049fbb704cSDavid Ahern 
33059fbb704cSDavid Ahern 		if (err)
33069fbb704cSDavid Ahern 			goto out;
33079fbb704cSDavid Ahern 	}
33089fbb704cSDavid Ahern 
33099fbb704cSDavid Ahern 	/* reload in case device was changed */
33109fbb704cSDavid Ahern 	dev = *_dev;
33119fbb704cSDavid Ahern 
33129fbb704cSDavid Ahern 	err = -EINVAL;
33139fbb704cSDavid Ahern 	if (!dev) {
33149fbb704cSDavid Ahern 		NL_SET_ERR_MSG(extack, "Egress device not specified");
33159fbb704cSDavid Ahern 		goto out;
33169fbb704cSDavid Ahern 	} else if (dev->flags & IFF_LOOPBACK) {
33179fbb704cSDavid Ahern 		NL_SET_ERR_MSG(extack,
33189fbb704cSDavid Ahern 			       "Egress device can not be loopback device for this route");
33199fbb704cSDavid Ahern 		goto out;
33209fbb704cSDavid Ahern 	}
3321232378e8SDavid Ahern 
3322232378e8SDavid Ahern 	/* if we did not check gw_addr above, do so now that the
3323232378e8SDavid Ahern 	 * egress device has been resolved.
3324232378e8SDavid Ahern 	 */
3325232378e8SDavid Ahern 	if (need_addr_check &&
3326232378e8SDavid Ahern 	    ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
3327232378e8SDavid Ahern 		NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
3328232378e8SDavid Ahern 		goto out;
3329232378e8SDavid Ahern 	}
3330232378e8SDavid Ahern 
33319fbb704cSDavid Ahern 	err = 0;
33329fbb704cSDavid Ahern out:
33339fbb704cSDavid Ahern 	return err;
33349fbb704cSDavid Ahern }
33359fbb704cSDavid Ahern 
333683c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type)
333783c44251SDavid Ahern {
333883c44251SDavid Ahern 	if ((flags & RTF_REJECT) ||
333983c44251SDavid Ahern 	    (dev && (dev->flags & IFF_LOOPBACK) &&
334083c44251SDavid Ahern 	     !(addr_type & IPV6_ADDR_LOOPBACK) &&
334183c44251SDavid Ahern 	     !(flags & RTF_LOCAL)))
334283c44251SDavid Ahern 		return true;
334383c44251SDavid Ahern 
334483c44251SDavid Ahern 	return false;
334583c44251SDavid Ahern }
334683c44251SDavid Ahern 
334783c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh,
334883c44251SDavid Ahern 		 struct fib6_config *cfg, gfp_t gfp_flags,
334983c44251SDavid Ahern 		 struct netlink_ext_ack *extack)
335083c44251SDavid Ahern {
335183c44251SDavid Ahern 	struct net_device *dev = NULL;
335283c44251SDavid Ahern 	struct inet6_dev *idev = NULL;
335383c44251SDavid Ahern 	int addr_type;
335483c44251SDavid Ahern 	int err;
335583c44251SDavid Ahern 
3356f1741730SDavid Ahern 	fib6_nh->fib_nh_family = AF_INET6;
3357f1741730SDavid Ahern 
335883c44251SDavid Ahern 	err = -ENODEV;
335983c44251SDavid Ahern 	if (cfg->fc_ifindex) {
336083c44251SDavid Ahern 		dev = dev_get_by_index(net, cfg->fc_ifindex);
336183c44251SDavid Ahern 		if (!dev)
336283c44251SDavid Ahern 			goto out;
336383c44251SDavid Ahern 		idev = in6_dev_get(dev);
336483c44251SDavid Ahern 		if (!idev)
336583c44251SDavid Ahern 			goto out;
336683c44251SDavid Ahern 	}
336783c44251SDavid Ahern 
336883c44251SDavid Ahern 	if (cfg->fc_flags & RTNH_F_ONLINK) {
336983c44251SDavid Ahern 		if (!dev) {
337083c44251SDavid Ahern 			NL_SET_ERR_MSG(extack,
337183c44251SDavid Ahern 				       "Nexthop device required for onlink");
337283c44251SDavid Ahern 			goto out;
337383c44251SDavid Ahern 		}
337483c44251SDavid Ahern 
337583c44251SDavid Ahern 		if (!(dev->flags & IFF_UP)) {
337683c44251SDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop device is not up");
337783c44251SDavid Ahern 			err = -ENETDOWN;
337883c44251SDavid Ahern 			goto out;
337983c44251SDavid Ahern 		}
338083c44251SDavid Ahern 
3381ad1601aeSDavid Ahern 		fib6_nh->fib_nh_flags |= RTNH_F_ONLINK;
338283c44251SDavid Ahern 	}
338383c44251SDavid Ahern 
3384ad1601aeSDavid Ahern 	fib6_nh->fib_nh_weight = 1;
338583c44251SDavid Ahern 
338683c44251SDavid Ahern 	/* We cannot add true routes via loopback here,
338783c44251SDavid Ahern 	 * they would result in kernel looping; promote them to reject routes
338883c44251SDavid Ahern 	 */
338983c44251SDavid Ahern 	addr_type = ipv6_addr_type(&cfg->fc_dst);
339083c44251SDavid Ahern 	if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) {
339183c44251SDavid Ahern 		/* hold loopback dev/idev if we haven't done so. */
339283c44251SDavid Ahern 		if (dev != net->loopback_dev) {
339383c44251SDavid Ahern 			if (dev) {
339483c44251SDavid Ahern 				dev_put(dev);
339583c44251SDavid Ahern 				in6_dev_put(idev);
339683c44251SDavid Ahern 			}
339783c44251SDavid Ahern 			dev = net->loopback_dev;
339883c44251SDavid Ahern 			dev_hold(dev);
339983c44251SDavid Ahern 			idev = in6_dev_get(dev);
340083c44251SDavid Ahern 			if (!idev) {
340183c44251SDavid Ahern 				err = -ENODEV;
340283c44251SDavid Ahern 				goto out;
340383c44251SDavid Ahern 			}
340483c44251SDavid Ahern 		}
34057dd73168SDavid Ahern 		goto pcpu_alloc;
340683c44251SDavid Ahern 	}
340783c44251SDavid Ahern 
340883c44251SDavid Ahern 	if (cfg->fc_flags & RTF_GATEWAY) {
340983c44251SDavid Ahern 		err = ip6_validate_gw(net, cfg, &dev, &idev, extack);
341083c44251SDavid Ahern 		if (err)
341183c44251SDavid Ahern 			goto out;
341283c44251SDavid Ahern 
3413ad1601aeSDavid Ahern 		fib6_nh->fib_nh_gw6 = cfg->fc_gateway;
3414bdf00467SDavid Ahern 		fib6_nh->fib_nh_gw_family = AF_INET6;
341583c44251SDavid Ahern 	}
341683c44251SDavid Ahern 
341783c44251SDavid Ahern 	err = -ENODEV;
341883c44251SDavid Ahern 	if (!dev)
341983c44251SDavid Ahern 		goto out;
342083c44251SDavid Ahern 
342183c44251SDavid Ahern 	if (idev->cnf.disable_ipv6) {
342283c44251SDavid Ahern 		NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device");
342383c44251SDavid Ahern 		err = -EACCES;
342483c44251SDavid Ahern 		goto out;
342583c44251SDavid Ahern 	}
342683c44251SDavid Ahern 
342783c44251SDavid Ahern 	if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) {
342883c44251SDavid Ahern 		NL_SET_ERR_MSG(extack, "Nexthop device is not up");
342983c44251SDavid Ahern 		err = -ENETDOWN;
343083c44251SDavid Ahern 		goto out;
343183c44251SDavid Ahern 	}
343283c44251SDavid Ahern 
343383c44251SDavid Ahern 	if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
343483c44251SDavid Ahern 	    !netif_carrier_ok(dev))
3435ad1601aeSDavid Ahern 		fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN;
343683c44251SDavid Ahern 
34377dd73168SDavid Ahern 	err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap,
34387dd73168SDavid Ahern 				 cfg->fc_encap_type, cfg, gfp_flags, extack);
34397dd73168SDavid Ahern 	if (err)
34407dd73168SDavid Ahern 		goto out;
34417dd73168SDavid Ahern 
34427dd73168SDavid Ahern pcpu_alloc:
3443f40b6ae2SDavid Ahern 	fib6_nh->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, gfp_flags);
3444f40b6ae2SDavid Ahern 	if (!fib6_nh->rt6i_pcpu) {
3445f40b6ae2SDavid Ahern 		err = -ENOMEM;
3446f40b6ae2SDavid Ahern 		goto out;
3447f40b6ae2SDavid Ahern 	}
3448f40b6ae2SDavid Ahern 
3449ad1601aeSDavid Ahern 	fib6_nh->fib_nh_dev = dev;
3450f1741730SDavid Ahern 	fib6_nh->fib_nh_oif = dev->ifindex;
345183c44251SDavid Ahern 	err = 0;
345283c44251SDavid Ahern out:
345383c44251SDavid Ahern 	if (idev)
345483c44251SDavid Ahern 		in6_dev_put(idev);
345583c44251SDavid Ahern 
345683c44251SDavid Ahern 	if (err) {
3457ad1601aeSDavid Ahern 		lwtstate_put(fib6_nh->fib_nh_lws);
3458ad1601aeSDavid Ahern 		fib6_nh->fib_nh_lws = NULL;
345983c44251SDavid Ahern 		if (dev)
346083c44251SDavid Ahern 			dev_put(dev);
346183c44251SDavid Ahern 	}
346283c44251SDavid Ahern 
346383c44251SDavid Ahern 	return err;
346483c44251SDavid Ahern }
346583c44251SDavid Ahern 
3466dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh)
3467dac7d0f2SDavid Ahern {
3468cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
3469cc5c073aSDavid Ahern 
3470cc5c073aSDavid Ahern 	rcu_read_lock();
3471cc5c073aSDavid Ahern 
3472cc5c073aSDavid Ahern 	fib6_nh_flush_exceptions(fib6_nh, NULL);
3473cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(fib6_nh, NULL);
3474cc5c073aSDavid Ahern 	if (bucket) {
3475cc5c073aSDavid Ahern 		rcu_assign_pointer(fib6_nh->rt6i_exception_bucket, NULL);
3476cc5c073aSDavid Ahern 		kfree(bucket);
3477cc5c073aSDavid Ahern 	}
3478cc5c073aSDavid Ahern 
3479cc5c073aSDavid Ahern 	rcu_read_unlock();
3480cc5c073aSDavid Ahern 
3481f40b6ae2SDavid Ahern 	if (fib6_nh->rt6i_pcpu) {
3482f40b6ae2SDavid Ahern 		int cpu;
3483f40b6ae2SDavid Ahern 
3484f40b6ae2SDavid Ahern 		for_each_possible_cpu(cpu) {
3485f40b6ae2SDavid Ahern 			struct rt6_info **ppcpu_rt;
3486f40b6ae2SDavid Ahern 			struct rt6_info *pcpu_rt;
3487f40b6ae2SDavid Ahern 
3488f40b6ae2SDavid Ahern 			ppcpu_rt = per_cpu_ptr(fib6_nh->rt6i_pcpu, cpu);
3489f40b6ae2SDavid Ahern 			pcpu_rt = *ppcpu_rt;
3490f40b6ae2SDavid Ahern 			if (pcpu_rt) {
3491f40b6ae2SDavid Ahern 				dst_dev_put(&pcpu_rt->dst);
3492f40b6ae2SDavid Ahern 				dst_release(&pcpu_rt->dst);
3493f40b6ae2SDavid Ahern 				*ppcpu_rt = NULL;
3494f40b6ae2SDavid Ahern 			}
3495f40b6ae2SDavid Ahern 		}
3496f40b6ae2SDavid Ahern 
3497f40b6ae2SDavid Ahern 		free_percpu(fib6_nh->rt6i_pcpu);
3498f40b6ae2SDavid Ahern 	}
3499f40b6ae2SDavid Ahern 
3500979e276eSDavid Ahern 	fib_nh_common_release(&fib6_nh->nh_common);
3501dac7d0f2SDavid Ahern }
3502dac7d0f2SDavid Ahern 
35038d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg,
3504acb54e3cSDavid Ahern 					      gfp_t gfp_flags,
3505333c4301SDavid Ahern 					      struct netlink_ext_ack *extack)
35061da177e4SLinus Torvalds {
35075578689aSDaniel Lezcano 	struct net *net = cfg->fc_nlinfo.nl_net;
35088d1c802bSDavid Ahern 	struct fib6_info *rt = NULL;
3509f88d8ea6SDavid Ahern 	struct nexthop *nh = NULL;
3510c71099acSThomas Graf 	struct fib6_table *table;
3511f88d8ea6SDavid Ahern 	struct fib6_nh *fib6_nh;
35128c5b83f0SRoopa Prabhu 	int err = -EINVAL;
351383c44251SDavid Ahern 	int addr_type;
35141da177e4SLinus Torvalds 
3515557c44beSDavid Ahern 	/* RTF_PCPU is an internal flag; can not be set by userspace */
3516d5d531cbSDavid Ahern 	if (cfg->fc_flags & RTF_PCPU) {
3517d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
3518557c44beSDavid Ahern 		goto out;
3519d5d531cbSDavid Ahern 	}
3520557c44beSDavid Ahern 
35212ea2352eSWei Wang 	/* RTF_CACHE is an internal flag; can not be set by userspace */
35222ea2352eSWei Wang 	if (cfg->fc_flags & RTF_CACHE) {
35232ea2352eSWei Wang 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
35242ea2352eSWei Wang 		goto out;
35252ea2352eSWei Wang 	}
35262ea2352eSWei Wang 
3527e8478e80SDavid Ahern 	if (cfg->fc_type > RTN_MAX) {
3528e8478e80SDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid route type");
3529e8478e80SDavid Ahern 		goto out;
3530e8478e80SDavid Ahern 	}
3531e8478e80SDavid Ahern 
3532d5d531cbSDavid Ahern 	if (cfg->fc_dst_len > 128) {
3533d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid prefix length");
35348c5b83f0SRoopa Prabhu 		goto out;
3535d5d531cbSDavid Ahern 	}
3536d5d531cbSDavid Ahern 	if (cfg->fc_src_len > 128) {
3537d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid source address length");
3538d5d531cbSDavid Ahern 		goto out;
3539d5d531cbSDavid Ahern 	}
35401da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES
3541d5d531cbSDavid Ahern 	if (cfg->fc_src_len) {
3542d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack,
3543d5d531cbSDavid Ahern 			       "Specifying source address requires IPV6_SUBTREES to be enabled");
35448c5b83f0SRoopa Prabhu 		goto out;
3545d5d531cbSDavid Ahern 	}
35461da177e4SLinus Torvalds #endif
35475b98324eSDavid Ahern 	if (cfg->fc_nh_id) {
35485b98324eSDavid Ahern 		nh = nexthop_find_by_id(net, cfg->fc_nh_id);
35495b98324eSDavid Ahern 		if (!nh) {
35505b98324eSDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop id does not exist");
35515b98324eSDavid Ahern 			goto out;
35525b98324eSDavid Ahern 		}
35535b98324eSDavid Ahern 		err = fib6_check_nexthop(nh, cfg, extack);
35545b98324eSDavid Ahern 		if (err)
35555b98324eSDavid Ahern 			goto out;
35565b98324eSDavid Ahern 	}
3557fc1e64e1SDavid Ahern 
3558c71099acSThomas Graf 	err = -ENOBUFS;
355938308473SDavid S. Miller 	if (cfg->fc_nlinfo.nlh &&
3560d71314b4SMatti Vaittinen 	    !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
3561d71314b4SMatti Vaittinen 		table = fib6_get_table(net, cfg->fc_table);
356238308473SDavid S. Miller 		if (!table) {
3563f3213831SJoe Perches 			pr_warn("NLM_F_CREATE should be specified when creating new route\n");
3564d71314b4SMatti Vaittinen 			table = fib6_new_table(net, cfg->fc_table);
3565d71314b4SMatti Vaittinen 		}
3566d71314b4SMatti Vaittinen 	} else {
3567d71314b4SMatti Vaittinen 		table = fib6_new_table(net, cfg->fc_table);
3568d71314b4SMatti Vaittinen 	}
356938308473SDavid S. Miller 
357038308473SDavid S. Miller 	if (!table)
3571c71099acSThomas Graf 		goto out;
3572c71099acSThomas Graf 
35731da177e4SLinus Torvalds 	err = -ENOMEM;
3574f88d8ea6SDavid Ahern 	rt = fib6_info_alloc(gfp_flags, !nh);
357593531c67SDavid Ahern 	if (!rt)
35761da177e4SLinus Torvalds 		goto out;
357793531c67SDavid Ahern 
3578d7e774f3SDavid Ahern 	rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len,
3579d7e774f3SDavid Ahern 					       extack);
3580767a2217SDavid Ahern 	if (IS_ERR(rt->fib6_metrics)) {
3581767a2217SDavid Ahern 		err = PTR_ERR(rt->fib6_metrics);
3582fda21d46SEric Dumazet 		/* Do not leave garbage there. */
3583fda21d46SEric Dumazet 		rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics;
3584767a2217SDavid Ahern 		goto out;
3585767a2217SDavid Ahern 	}
3586767a2217SDavid Ahern 
358793531c67SDavid Ahern 	if (cfg->fc_flags & RTF_ADDRCONF)
358893531c67SDavid Ahern 		rt->dst_nocount = true;
35891da177e4SLinus Torvalds 
35901716a961SGao feng 	if (cfg->fc_flags & RTF_EXPIRES)
359114895687SDavid Ahern 		fib6_set_expires(rt, jiffies +
35921716a961SGao feng 				clock_t_to_jiffies(cfg->fc_expires));
35931716a961SGao feng 	else
359414895687SDavid Ahern 		fib6_clean_expires(rt);
35951da177e4SLinus Torvalds 
359686872cb5SThomas Graf 	if (cfg->fc_protocol == RTPROT_UNSPEC)
359786872cb5SThomas Graf 		cfg->fc_protocol = RTPROT_BOOT;
359893c2fb25SDavid Ahern 	rt->fib6_protocol = cfg->fc_protocol;
359986872cb5SThomas Graf 
360083c44251SDavid Ahern 	rt->fib6_table = table;
360183c44251SDavid Ahern 	rt->fib6_metric = cfg->fc_metric;
3602c7036d97SDavid Ahern 	rt->fib6_type = cfg->fc_type ? : RTN_UNICAST;
36032b2450caSDavid Ahern 	rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY;
360419e42e45SRoopa Prabhu 
360593c2fb25SDavid Ahern 	ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
360693c2fb25SDavid Ahern 	rt->fib6_dst.plen = cfg->fc_dst_len;
360793c2fb25SDavid Ahern 	if (rt->fib6_dst.plen == 128)
36083b6761d1SDavid Ahern 		rt->dst_host = true;
36091da177e4SLinus Torvalds 
36101da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
361193c2fb25SDavid Ahern 	ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len);
361293c2fb25SDavid Ahern 	rt->fib6_src.plen = cfg->fc_src_len;
36131da177e4SLinus Torvalds #endif
3614f88d8ea6SDavid Ahern 	if (nh) {
3615f88d8ea6SDavid Ahern 		if (!nexthop_get(nh)) {
3616f88d8ea6SDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop has been deleted");
3617f88d8ea6SDavid Ahern 			goto out;
3618f88d8ea6SDavid Ahern 		}
3619f88d8ea6SDavid Ahern 		if (rt->fib6_src.plen) {
36204daa95afSColin Ian King 			NL_SET_ERR_MSG(extack, "Nexthops can not be used with source routing");
3621f88d8ea6SDavid Ahern 			goto out;
3622f88d8ea6SDavid Ahern 		}
3623f88d8ea6SDavid Ahern 		rt->nh = nh;
3624f88d8ea6SDavid Ahern 		fib6_nh = nexthop_fib6_nh(rt->nh);
3625f88d8ea6SDavid Ahern 	} else {
36261cf844c7SDavid Ahern 		err = fib6_nh_init(net, rt->fib6_nh, cfg, gfp_flags, extack);
36271da177e4SLinus Torvalds 		if (err)
36281da177e4SLinus Torvalds 			goto out;
36299fbb704cSDavid Ahern 
3630f88d8ea6SDavid Ahern 		fib6_nh = rt->fib6_nh;
3631f88d8ea6SDavid Ahern 
3632f88d8ea6SDavid Ahern 		/* We cannot add true routes via loopback here, they would
3633f88d8ea6SDavid Ahern 		 * result in kernel looping; promote them to reject routes
363483c44251SDavid Ahern 		 */
363583c44251SDavid Ahern 		addr_type = ipv6_addr_type(&cfg->fc_dst);
3636f88d8ea6SDavid Ahern 		if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh->fib_nh_dev,
3637f88d8ea6SDavid Ahern 				   addr_type))
363883c44251SDavid Ahern 			rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP;
3639f88d8ea6SDavid Ahern 	}
3640955ec4cbSDavid Ahern 
3641c3968a85SDaniel Walter 	if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
3642f88d8ea6SDavid Ahern 		struct net_device *dev = fib6_nh->fib_nh_dev;
364383c44251SDavid Ahern 
3644c3968a85SDaniel Walter 		if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
3645d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid source address");
3646c3968a85SDaniel Walter 			err = -EINVAL;
3647c3968a85SDaniel Walter 			goto out;
3648c3968a85SDaniel Walter 		}
364993c2fb25SDavid Ahern 		rt->fib6_prefsrc.addr = cfg->fc_prefsrc;
365093c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 128;
3651c3968a85SDaniel Walter 	} else
365293c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 0;
3653c3968a85SDaniel Walter 
36548c5b83f0SRoopa Prabhu 	return rt;
36551da177e4SLinus Torvalds out:
365693531c67SDavid Ahern 	fib6_info_release(rt);
36578c5b83f0SRoopa Prabhu 	return ERR_PTR(err);
36586b9ea5a6SRoopa Prabhu }
36596b9ea5a6SRoopa Prabhu 
3660acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags,
3661333c4301SDavid Ahern 		  struct netlink_ext_ack *extack)
36626b9ea5a6SRoopa Prabhu {
36638d1c802bSDavid Ahern 	struct fib6_info *rt;
36646b9ea5a6SRoopa Prabhu 	int err;
36656b9ea5a6SRoopa Prabhu 
3666acb54e3cSDavid Ahern 	rt = ip6_route_info_create(cfg, gfp_flags, extack);
3667d4ead6b3SDavid Ahern 	if (IS_ERR(rt))
3668d4ead6b3SDavid Ahern 		return PTR_ERR(rt);
36696b9ea5a6SRoopa Prabhu 
3670d4ead6b3SDavid Ahern 	err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack);
367193531c67SDavid Ahern 	fib6_info_release(rt);
36726b9ea5a6SRoopa Prabhu 
36731da177e4SLinus Torvalds 	return err;
36741da177e4SLinus Torvalds }
36751da177e4SLinus Torvalds 
36768d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info)
36771da177e4SLinus Torvalds {
3678afb1d4b5SDavid Ahern 	struct net *net = info->nl_net;
3679c71099acSThomas Graf 	struct fib6_table *table;
3680afb1d4b5SDavid Ahern 	int err;
36811da177e4SLinus Torvalds 
3682421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry) {
36836825a26cSGao feng 		err = -ENOENT;
36846825a26cSGao feng 		goto out;
36856825a26cSGao feng 	}
36866c813a72SPatrick McHardy 
368793c2fb25SDavid Ahern 	table = rt->fib6_table;
368866f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
368986872cb5SThomas Graf 	err = fib6_del(rt, info);
369066f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
36911da177e4SLinus Torvalds 
36926825a26cSGao feng out:
369393531c67SDavid Ahern 	fib6_info_release(rt);
36941da177e4SLinus Torvalds 	return err;
36951da177e4SLinus Torvalds }
36961da177e4SLinus Torvalds 
36978d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt)
3698e0a1ad73SThomas Graf {
3699afb1d4b5SDavid Ahern 	struct nl_info info = { .nl_net = net };
3700afb1d4b5SDavid Ahern 
3701528c4cebSDenis V. Lunev 	return __ip6_del_rt(rt, &info);
3702e0a1ad73SThomas Graf }
3703e0a1ad73SThomas Graf 
37048d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg)
37050ae81335SDavid Ahern {
37060ae81335SDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
3707e3330039SWANG Cong 	struct net *net = info->nl_net;
370816a16cd3SDavid Ahern 	struct sk_buff *skb = NULL;
37090ae81335SDavid Ahern 	struct fib6_table *table;
3710e3330039SWANG Cong 	int err = -ENOENT;
37110ae81335SDavid Ahern 
3712421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry)
3713e3330039SWANG Cong 		goto out_put;
371493c2fb25SDavid Ahern 	table = rt->fib6_table;
371566f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
37160ae81335SDavid Ahern 
371793c2fb25SDavid Ahern 	if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) {
37188d1c802bSDavid Ahern 		struct fib6_info *sibling, *next_sibling;
37190ae81335SDavid Ahern 
372016a16cd3SDavid Ahern 		/* prefer to send a single notification with all hops */
372116a16cd3SDavid Ahern 		skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
372216a16cd3SDavid Ahern 		if (skb) {
372316a16cd3SDavid Ahern 			u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
372416a16cd3SDavid Ahern 
3725d4ead6b3SDavid Ahern 			if (rt6_fill_node(net, skb, rt, NULL,
372616a16cd3SDavid Ahern 					  NULL, NULL, 0, RTM_DELROUTE,
372716a16cd3SDavid Ahern 					  info->portid, seq, 0) < 0) {
372816a16cd3SDavid Ahern 				kfree_skb(skb);
372916a16cd3SDavid Ahern 				skb = NULL;
373016a16cd3SDavid Ahern 			} else
373116a16cd3SDavid Ahern 				info->skip_notify = 1;
373216a16cd3SDavid Ahern 		}
373316a16cd3SDavid Ahern 
37342881fd61SIdo Schimmel 		info->skip_notify_kernel = 1;
37352881fd61SIdo Schimmel 		call_fib6_multipath_entry_notifiers(net,
37362881fd61SIdo Schimmel 						    FIB_EVENT_ENTRY_DEL,
37372881fd61SIdo Schimmel 						    rt,
37382881fd61SIdo Schimmel 						    rt->fib6_nsiblings,
37392881fd61SIdo Schimmel 						    NULL);
37400ae81335SDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
374193c2fb25SDavid Ahern 					 &rt->fib6_siblings,
374293c2fb25SDavid Ahern 					 fib6_siblings) {
37430ae81335SDavid Ahern 			err = fib6_del(sibling, info);
37440ae81335SDavid Ahern 			if (err)
3745e3330039SWANG Cong 				goto out_unlock;
37460ae81335SDavid Ahern 		}
37470ae81335SDavid Ahern 	}
37480ae81335SDavid Ahern 
37490ae81335SDavid Ahern 	err = fib6_del(rt, info);
3750e3330039SWANG Cong out_unlock:
375166f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
3752e3330039SWANG Cong out_put:
375393531c67SDavid Ahern 	fib6_info_release(rt);
375416a16cd3SDavid Ahern 
375516a16cd3SDavid Ahern 	if (skb) {
3756e3330039SWANG Cong 		rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
375716a16cd3SDavid Ahern 			    info->nlh, gfp_any());
375816a16cd3SDavid Ahern 	}
37590ae81335SDavid Ahern 	return err;
37600ae81335SDavid Ahern }
37610ae81335SDavid Ahern 
37620fa6efc5SDavid Ahern static int __ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg)
376323fb93a4SDavid Ahern {
376423fb93a4SDavid Ahern 	int rc = -ESRCH;
376523fb93a4SDavid Ahern 
376623fb93a4SDavid Ahern 	if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex)
376723fb93a4SDavid Ahern 		goto out;
376823fb93a4SDavid Ahern 
376923fb93a4SDavid Ahern 	if (cfg->fc_flags & RTF_GATEWAY &&
377023fb93a4SDavid Ahern 	    !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
377123fb93a4SDavid Ahern 		goto out;
3772761f6026SXin Long 
377323fb93a4SDavid Ahern 	rc = rt6_remove_exception_rt(rt);
377423fb93a4SDavid Ahern out:
377523fb93a4SDavid Ahern 	return rc;
377623fb93a4SDavid Ahern }
377723fb93a4SDavid Ahern 
37780fa6efc5SDavid Ahern static int ip6_del_cached_rt(struct fib6_config *cfg, struct fib6_info *rt,
37790fa6efc5SDavid Ahern 			     struct fib6_nh *nh)
37800fa6efc5SDavid Ahern {
37810fa6efc5SDavid Ahern 	struct fib6_result res = {
37820fa6efc5SDavid Ahern 		.f6i = rt,
37830fa6efc5SDavid Ahern 		.nh = nh,
37840fa6efc5SDavid Ahern 	};
37850fa6efc5SDavid Ahern 	struct rt6_info *rt_cache;
37860fa6efc5SDavid Ahern 
37870fa6efc5SDavid Ahern 	rt_cache = rt6_find_cached_rt(&res, &cfg->fc_dst, &cfg->fc_src);
37880fa6efc5SDavid Ahern 	if (rt_cache)
37890fa6efc5SDavid Ahern 		return __ip6_del_cached_rt(rt_cache, cfg);
37900fa6efc5SDavid Ahern 
37910fa6efc5SDavid Ahern 	return 0;
37920fa6efc5SDavid Ahern }
37930fa6efc5SDavid Ahern 
37945b98324eSDavid Ahern struct fib6_nh_del_cached_rt_arg {
37955b98324eSDavid Ahern 	struct fib6_config *cfg;
37965b98324eSDavid Ahern 	struct fib6_info *f6i;
37975b98324eSDavid Ahern };
37985b98324eSDavid Ahern 
37995b98324eSDavid Ahern static int fib6_nh_del_cached_rt(struct fib6_nh *nh, void *_arg)
38005b98324eSDavid Ahern {
38015b98324eSDavid Ahern 	struct fib6_nh_del_cached_rt_arg *arg = _arg;
38025b98324eSDavid Ahern 	int rc;
38035b98324eSDavid Ahern 
38045b98324eSDavid Ahern 	rc = ip6_del_cached_rt(arg->cfg, arg->f6i, nh);
38055b98324eSDavid Ahern 	return rc != -ESRCH ? rc : 0;
38065b98324eSDavid Ahern }
38075b98324eSDavid Ahern 
38085b98324eSDavid Ahern static int ip6_del_cached_rt_nh(struct fib6_config *cfg, struct fib6_info *f6i)
38095b98324eSDavid Ahern {
38105b98324eSDavid Ahern 	struct fib6_nh_del_cached_rt_arg arg = {
38115b98324eSDavid Ahern 		.cfg = cfg,
38125b98324eSDavid Ahern 		.f6i = f6i
38135b98324eSDavid Ahern 	};
38145b98324eSDavid Ahern 
38155b98324eSDavid Ahern 	return nexthop_for_each_fib6_nh(f6i->nh, fib6_nh_del_cached_rt, &arg);
38165b98324eSDavid Ahern }
38175b98324eSDavid Ahern 
3818333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg,
3819333c4301SDavid Ahern 			 struct netlink_ext_ack *extack)
38201da177e4SLinus Torvalds {
3821c71099acSThomas Graf 	struct fib6_table *table;
38228d1c802bSDavid Ahern 	struct fib6_info *rt;
38231da177e4SLinus Torvalds 	struct fib6_node *fn;
38241da177e4SLinus Torvalds 	int err = -ESRCH;
38251da177e4SLinus Torvalds 
38265578689aSDaniel Lezcano 	table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
3827d5d531cbSDavid Ahern 	if (!table) {
3828d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "FIB table does not exist");
3829c71099acSThomas Graf 		return err;
3830d5d531cbSDavid Ahern 	}
38311da177e4SLinus Torvalds 
383266f5d6ceSWei Wang 	rcu_read_lock();
3833c71099acSThomas Graf 
3834c71099acSThomas Graf 	fn = fib6_locate(&table->tb6_root,
383586872cb5SThomas Graf 			 &cfg->fc_dst, cfg->fc_dst_len,
383638fbeeeeSWei Wang 			 &cfg->fc_src, cfg->fc_src_len,
38372b760fcfSWei Wang 			 !(cfg->fc_flags & RTF_CACHE));
38381da177e4SLinus Torvalds 
38391da177e4SLinus Torvalds 	if (fn) {
384066f5d6ceSWei Wang 		for_each_fib6_node_rt_rcu(fn) {
3841ad1601aeSDavid Ahern 			struct fib6_nh *nh;
3842ad1601aeSDavid Ahern 
38433401bfb1SStefano Brivio 			if (rt->nh && cfg->fc_nh_id &&
38443401bfb1SStefano Brivio 			    rt->nh->id != cfg->fc_nh_id)
38455b98324eSDavid Ahern 				continue;
384623fb93a4SDavid Ahern 
38475b98324eSDavid Ahern 			if (cfg->fc_flags & RTF_CACHE) {
38485b98324eSDavid Ahern 				int rc = 0;
38495b98324eSDavid Ahern 
38505b98324eSDavid Ahern 				if (rt->nh) {
38515b98324eSDavid Ahern 					rc = ip6_del_cached_rt_nh(cfg, rt);
38525b98324eSDavid Ahern 				} else if (cfg->fc_nh_id) {
38535b98324eSDavid Ahern 					continue;
38545b98324eSDavid Ahern 				} else {
38555b98324eSDavid Ahern 					nh = rt->fib6_nh;
38560fa6efc5SDavid Ahern 					rc = ip6_del_cached_rt(cfg, rt, nh);
38575b98324eSDavid Ahern 				}
38589e575010SEric Dumazet 				if (rc != -ESRCH) {
38599e575010SEric Dumazet 					rcu_read_unlock();
386023fb93a4SDavid Ahern 					return rc;
386123fb93a4SDavid Ahern 				}
38621f56a01fSMartin KaFai Lau 				continue;
38632b760fcfSWei Wang 			}
3864ad1601aeSDavid Ahern 
38655b98324eSDavid Ahern 			if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric)
38665b98324eSDavid Ahern 				continue;
38675b98324eSDavid Ahern 			if (cfg->fc_protocol &&
38685b98324eSDavid Ahern 			    cfg->fc_protocol != rt->fib6_protocol)
38695b98324eSDavid Ahern 				continue;
38705b98324eSDavid Ahern 
38715b98324eSDavid Ahern 			if (rt->nh) {
38725b98324eSDavid Ahern 				if (!fib6_info_hold_safe(rt))
38735b98324eSDavid Ahern 					continue;
38745b98324eSDavid Ahern 				rcu_read_unlock();
38755b98324eSDavid Ahern 
38765b98324eSDavid Ahern 				return __ip6_del_rt(rt, &cfg->fc_nlinfo);
38775b98324eSDavid Ahern 			}
38785b98324eSDavid Ahern 			if (cfg->fc_nh_id)
38795b98324eSDavid Ahern 				continue;
38805b98324eSDavid Ahern 
38815b98324eSDavid Ahern 			nh = rt->fib6_nh;
388286872cb5SThomas Graf 			if (cfg->fc_ifindex &&
3883ad1601aeSDavid Ahern 			    (!nh->fib_nh_dev ||
3884ad1601aeSDavid Ahern 			     nh->fib_nh_dev->ifindex != cfg->fc_ifindex))
38851da177e4SLinus Torvalds 				continue;
388686872cb5SThomas Graf 			if (cfg->fc_flags & RTF_GATEWAY &&
3887ad1601aeSDavid Ahern 			    !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6))
38881da177e4SLinus Torvalds 				continue;
3889e873e4b9SWei Wang 			if (!fib6_info_hold_safe(rt))
3890e873e4b9SWei Wang 				continue;
389166f5d6ceSWei Wang 			rcu_read_unlock();
38921da177e4SLinus Torvalds 
38930ae81335SDavid Ahern 			/* if gateway was specified only delete the one hop */
38940ae81335SDavid Ahern 			if (cfg->fc_flags & RTF_GATEWAY)
389586872cb5SThomas Graf 				return __ip6_del_rt(rt, &cfg->fc_nlinfo);
38960ae81335SDavid Ahern 
38970ae81335SDavid Ahern 			return __ip6_del_rt_siblings(rt, cfg);
38981da177e4SLinus Torvalds 		}
38991da177e4SLinus Torvalds 	}
390066f5d6ceSWei Wang 	rcu_read_unlock();
39011da177e4SLinus Torvalds 
39021da177e4SLinus Torvalds 	return err;
39031da177e4SLinus Torvalds }
39041da177e4SLinus Torvalds 
39056700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
3906a6279458SYOSHIFUJI Hideaki {
3907a6279458SYOSHIFUJI Hideaki 	struct netevent_redirect netevent;
3908e8599ff4SDavid S. Miller 	struct rt6_info *rt, *nrt = NULL;
390985bd05deSDavid Ahern 	struct fib6_result res = {};
3910e8599ff4SDavid S. Miller 	struct ndisc_options ndopts;
3911e8599ff4SDavid S. Miller 	struct inet6_dev *in6_dev;
3912e8599ff4SDavid S. Miller 	struct neighbour *neigh;
391371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	struct rd_msg *msg;
39146e157b6aSDavid S. Miller 	int optlen, on_link;
39156e157b6aSDavid S. Miller 	u8 *lladdr;
3916e8599ff4SDavid S. Miller 
391729a3cad5SSimon Horman 	optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
391871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	optlen -= sizeof(*msg);
3919e8599ff4SDavid S. Miller 
3920e8599ff4SDavid S. Miller 	if (optlen < 0) {
39216e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
3922e8599ff4SDavid S. Miller 		return;
3923e8599ff4SDavid S. Miller 	}
3924e8599ff4SDavid S. Miller 
392571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	msg = (struct rd_msg *)icmp6_hdr(skb);
3926e8599ff4SDavid S. Miller 
392771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_is_multicast(&msg->dest)) {
39286e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
3929e8599ff4SDavid S. Miller 		return;
3930e8599ff4SDavid S. Miller 	}
3931e8599ff4SDavid S. Miller 
39326e157b6aSDavid S. Miller 	on_link = 0;
393371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_equal(&msg->dest, &msg->target)) {
3934e8599ff4SDavid S. Miller 		on_link = 1;
393571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	} else if (ipv6_addr_type(&msg->target) !=
3936e8599ff4SDavid S. Miller 		   (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
39376e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
3938e8599ff4SDavid S. Miller 		return;
3939e8599ff4SDavid S. Miller 	}
3940e8599ff4SDavid S. Miller 
3941e8599ff4SDavid S. Miller 	in6_dev = __in6_dev_get(skb->dev);
3942e8599ff4SDavid S. Miller 	if (!in6_dev)
3943e8599ff4SDavid S. Miller 		return;
3944e8599ff4SDavid S. Miller 	if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3945e8599ff4SDavid S. Miller 		return;
3946e8599ff4SDavid S. Miller 
3947e8599ff4SDavid S. Miller 	/* RFC2461 8.1:
3948e8599ff4SDavid S. Miller 	 *	The IP source address of the Redirect MUST be the same as the current
3949e8599ff4SDavid S. Miller 	 *	first-hop router for the specified ICMP Destination Address.
3950e8599ff4SDavid S. Miller 	 */
3951e8599ff4SDavid S. Miller 
3952f997c55cSAlexander Aring 	if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
3953e8599ff4SDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3954e8599ff4SDavid S. Miller 		return;
3955e8599ff4SDavid S. Miller 	}
39566e157b6aSDavid S. Miller 
39576e157b6aSDavid S. Miller 	lladdr = NULL;
3958e8599ff4SDavid S. Miller 	if (ndopts.nd_opts_tgt_lladdr) {
3959e8599ff4SDavid S. Miller 		lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3960e8599ff4SDavid S. Miller 					     skb->dev);
3961e8599ff4SDavid S. Miller 		if (!lladdr) {
3962e8599ff4SDavid S. Miller 			net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3963e8599ff4SDavid S. Miller 			return;
3964e8599ff4SDavid S. Miller 		}
3965e8599ff4SDavid S. Miller 	}
3966e8599ff4SDavid S. Miller 
39676e157b6aSDavid S. Miller 	rt = (struct rt6_info *) dst;
3968ec13ad1dSMatthias Schiffer 	if (rt->rt6i_flags & RTF_REJECT) {
39696e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
39706e157b6aSDavid S. Miller 		return;
39716e157b6aSDavid S. Miller 	}
39726e157b6aSDavid S. Miller 
39736e157b6aSDavid S. Miller 	/* Redirect received -> path was valid.
39746e157b6aSDavid S. Miller 	 * Look, redirects are sent only in response to data packets,
39756e157b6aSDavid S. Miller 	 * so that this nexthop apparently is reachable. --ANK
39766e157b6aSDavid S. Miller 	 */
39770dec879fSJulian Anastasov 	dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
39786e157b6aSDavid S. Miller 
397971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
3980e8599ff4SDavid S. Miller 	if (!neigh)
3981e8599ff4SDavid S. Miller 		return;
3982e8599ff4SDavid S. Miller 
39831da177e4SLinus Torvalds 	/*
39841da177e4SLinus Torvalds 	 *	We have finally decided to accept it.
39851da177e4SLinus Torvalds 	 */
39861da177e4SLinus Torvalds 
3987f997c55cSAlexander Aring 	ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
39881da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_WEAK_OVERRIDE|
39891da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_OVERRIDE|
39901da177e4SLinus Torvalds 		     (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
3991f997c55cSAlexander Aring 				     NEIGH_UPDATE_F_ISROUTER)),
3992f997c55cSAlexander Aring 		     NDISC_REDIRECT, &ndopts);
39931da177e4SLinus Torvalds 
39944d85cd0cSDavid Ahern 	rcu_read_lock();
399585bd05deSDavid Ahern 	res.f6i = rcu_dereference(rt->from);
3996ff24e498SDavid S. Miller 	if (!res.f6i)
3997886b7a50SMartin KaFai Lau 		goto out;
39988a14e46fSDavid Ahern 
399949d5b8efSDavid Ahern 	if (res.f6i->nh) {
400049d5b8efSDavid Ahern 		struct fib6_nh_match_arg arg = {
400149d5b8efSDavid Ahern 			.dev = dst->dev,
400249d5b8efSDavid Ahern 			.gw = &rt->rt6i_gateway,
400349d5b8efSDavid Ahern 		};
400449d5b8efSDavid Ahern 
400549d5b8efSDavid Ahern 		nexthop_for_each_fib6_nh(res.f6i->nh,
400649d5b8efSDavid Ahern 					 fib6_nh_find_match, &arg);
400749d5b8efSDavid Ahern 
400849d5b8efSDavid Ahern 		/* fib6_info uses a nexthop that does not have fib6_nh
400949d5b8efSDavid Ahern 		 * using the dst->dev. Should be impossible
401049d5b8efSDavid Ahern 		 */
401149d5b8efSDavid Ahern 		if (!arg.match)
401249d5b8efSDavid Ahern 			goto out;
401349d5b8efSDavid Ahern 		res.nh = arg.match;
401449d5b8efSDavid Ahern 	} else {
40151cf844c7SDavid Ahern 		res.nh = res.f6i->fib6_nh;
401649d5b8efSDavid Ahern 	}
401749d5b8efSDavid Ahern 
40187d21fec9SDavid Ahern 	res.fib6_flags = res.f6i->fib6_flags;
40197d21fec9SDavid Ahern 	res.fib6_type = res.f6i->fib6_type;
402085bd05deSDavid Ahern 	nrt = ip6_rt_cache_alloc(&res, &msg->dest, NULL);
402138308473SDavid S. Miller 	if (!nrt)
40221da177e4SLinus Torvalds 		goto out;
40231da177e4SLinus Torvalds 
40241da177e4SLinus Torvalds 	nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
40251da177e4SLinus Torvalds 	if (on_link)
40261da177e4SLinus Torvalds 		nrt->rt6i_flags &= ~RTF_GATEWAY;
40271da177e4SLinus Torvalds 
40284e3fd7a0SAlexey Dobriyan 	nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
40291da177e4SLinus Torvalds 
4030886b7a50SMartin KaFai Lau 	/* rt6_insert_exception() will take care of duplicated exceptions */
40315012f0a5SDavid Ahern 	if (rt6_insert_exception(nrt, &res)) {
40322b760fcfSWei Wang 		dst_release_immediate(&nrt->dst);
40332b760fcfSWei Wang 		goto out;
40342b760fcfSWei Wang 	}
40351da177e4SLinus Torvalds 
4036d8d1f30bSChangli Gao 	netevent.old = &rt->dst;
4037d8d1f30bSChangli Gao 	netevent.new = &nrt->dst;
403871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	netevent.daddr = &msg->dest;
403960592833SYOSHIFUJI Hideaki / 吉藤英明 	netevent.neigh = neigh;
40408d71740cSTom Tucker 	call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
40418d71740cSTom Tucker 
40421da177e4SLinus Torvalds out:
4043886b7a50SMartin KaFai Lau 	rcu_read_unlock();
4044e8599ff4SDavid S. Miller 	neigh_release(neigh);
40456e157b6aSDavid S. Miller }
40466e157b6aSDavid S. Miller 
404770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
40488d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net,
4049b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
4050830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
4051830218c1SDavid Ahern 					   struct net_device *dev)
405270ceb4f5SYOSHIFUJI Hideaki {
4053830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
4054830218c1SDavid Ahern 	int ifindex = dev->ifindex;
405570ceb4f5SYOSHIFUJI Hideaki 	struct fib6_node *fn;
40568d1c802bSDavid Ahern 	struct fib6_info *rt = NULL;
4057c71099acSThomas Graf 	struct fib6_table *table;
405870ceb4f5SYOSHIFUJI Hideaki 
4059830218c1SDavid Ahern 	table = fib6_get_table(net, tb_id);
406038308473SDavid S. Miller 	if (!table)
4061c71099acSThomas Graf 		return NULL;
4062c71099acSThomas Graf 
406366f5d6ceSWei Wang 	rcu_read_lock();
406438fbeeeeSWei Wang 	fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
406570ceb4f5SYOSHIFUJI Hideaki 	if (!fn)
406670ceb4f5SYOSHIFUJI Hideaki 		goto out;
406770ceb4f5SYOSHIFUJI Hideaki 
406866f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
4069f88d8ea6SDavid Ahern 		/* these routes do not use nexthops */
4070f88d8ea6SDavid Ahern 		if (rt->nh)
4071f88d8ea6SDavid Ahern 			continue;
40721cf844c7SDavid Ahern 		if (rt->fib6_nh->fib_nh_dev->ifindex != ifindex)
407370ceb4f5SYOSHIFUJI Hideaki 			continue;
40742b2450caSDavid Ahern 		if (!(rt->fib6_flags & RTF_ROUTEINFO) ||
40751cf844c7SDavid Ahern 		    !rt->fib6_nh->fib_nh_gw_family)
407670ceb4f5SYOSHIFUJI Hideaki 			continue;
40771cf844c7SDavid Ahern 		if (!ipv6_addr_equal(&rt->fib6_nh->fib_nh_gw6, gwaddr))
407870ceb4f5SYOSHIFUJI Hideaki 			continue;
4079e873e4b9SWei Wang 		if (!fib6_info_hold_safe(rt))
4080e873e4b9SWei Wang 			continue;
408170ceb4f5SYOSHIFUJI Hideaki 		break;
408270ceb4f5SYOSHIFUJI Hideaki 	}
408370ceb4f5SYOSHIFUJI Hideaki out:
408466f5d6ceSWei Wang 	rcu_read_unlock();
408570ceb4f5SYOSHIFUJI Hideaki 	return rt;
408670ceb4f5SYOSHIFUJI Hideaki }
408770ceb4f5SYOSHIFUJI Hideaki 
40888d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net,
4089b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
4090830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
4091830218c1SDavid Ahern 					   struct net_device *dev,
409295c96174SEric Dumazet 					   unsigned int pref)
409370ceb4f5SYOSHIFUJI Hideaki {
409486872cb5SThomas Graf 	struct fib6_config cfg = {
4095238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
4096830218c1SDavid Ahern 		.fc_ifindex	= dev->ifindex,
409786872cb5SThomas Graf 		.fc_dst_len	= prefixlen,
409886872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
409986872cb5SThomas Graf 				  RTF_UP | RTF_PREF(pref),
4100b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
4101e8478e80SDavid Ahern 		.fc_type = RTN_UNICAST,
410215e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
4103efa2cea0SDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
4104efa2cea0SDaniel Lezcano 		.fc_nlinfo.nl_net = net,
410586872cb5SThomas Graf 	};
410670ceb4f5SYOSHIFUJI Hideaki 
4107830218c1SDavid Ahern 	cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
41084e3fd7a0SAlexey Dobriyan 	cfg.fc_dst = *prefix;
41094e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
411086872cb5SThomas Graf 
4111e317da96SYOSHIFUJI Hideaki 	/* We should treat it as a default route if prefix length is 0. */
4112e317da96SYOSHIFUJI Hideaki 	if (!prefixlen)
411386872cb5SThomas Graf 		cfg.fc_flags |= RTF_DEFAULT;
411470ceb4f5SYOSHIFUJI Hideaki 
4115acb54e3cSDavid Ahern 	ip6_route_add(&cfg, GFP_ATOMIC, NULL);
411670ceb4f5SYOSHIFUJI Hideaki 
4117830218c1SDavid Ahern 	return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
411870ceb4f5SYOSHIFUJI Hideaki }
411970ceb4f5SYOSHIFUJI Hideaki #endif
412070ceb4f5SYOSHIFUJI Hideaki 
41218d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net,
4122afb1d4b5SDavid Ahern 				     const struct in6_addr *addr,
4123afb1d4b5SDavid Ahern 				     struct net_device *dev)
41241da177e4SLinus Torvalds {
4125830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
41268d1c802bSDavid Ahern 	struct fib6_info *rt;
4127c71099acSThomas Graf 	struct fib6_table *table;
41281da177e4SLinus Torvalds 
4129afb1d4b5SDavid Ahern 	table = fib6_get_table(net, tb_id);
413038308473SDavid S. Miller 	if (!table)
4131c71099acSThomas Graf 		return NULL;
41321da177e4SLinus Torvalds 
413366f5d6ceSWei Wang 	rcu_read_lock();
413466f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
4135f88d8ea6SDavid Ahern 		struct fib6_nh *nh;
4136ad1601aeSDavid Ahern 
4137f88d8ea6SDavid Ahern 		/* RA routes do not use nexthops */
4138f88d8ea6SDavid Ahern 		if (rt->nh)
4139f88d8ea6SDavid Ahern 			continue;
4140f88d8ea6SDavid Ahern 
4141f88d8ea6SDavid Ahern 		nh = rt->fib6_nh;
4142ad1601aeSDavid Ahern 		if (dev == nh->fib_nh_dev &&
414393c2fb25SDavid Ahern 		    ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
4144ad1601aeSDavid Ahern 		    ipv6_addr_equal(&nh->fib_nh_gw6, addr))
41451da177e4SLinus Torvalds 			break;
41461da177e4SLinus Torvalds 	}
4147e873e4b9SWei Wang 	if (rt && !fib6_info_hold_safe(rt))
4148e873e4b9SWei Wang 		rt = NULL;
414966f5d6ceSWei Wang 	rcu_read_unlock();
41501da177e4SLinus Torvalds 	return rt;
41511da177e4SLinus Torvalds }
41521da177e4SLinus Torvalds 
41538d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net,
4154afb1d4b5SDavid Ahern 				     const struct in6_addr *gwaddr,
4155ebacaaa0SYOSHIFUJI Hideaki 				     struct net_device *dev,
4156ebacaaa0SYOSHIFUJI Hideaki 				     unsigned int pref)
41571da177e4SLinus Torvalds {
415886872cb5SThomas Graf 	struct fib6_config cfg = {
4159ca254490SDavid Ahern 		.fc_table	= l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
4160238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
416186872cb5SThomas Graf 		.fc_ifindex	= dev->ifindex,
416286872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
416386872cb5SThomas Graf 				  RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
4164b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
4165e8478e80SDavid Ahern 		.fc_type = RTN_UNICAST,
416615e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
41675578689aSDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
4168afb1d4b5SDavid Ahern 		.fc_nlinfo.nl_net = net,
416986872cb5SThomas Graf 	};
41701da177e4SLinus Torvalds 
41714e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
41721da177e4SLinus Torvalds 
4173acb54e3cSDavid Ahern 	if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) {
4174830218c1SDavid Ahern 		struct fib6_table *table;
4175830218c1SDavid Ahern 
4176830218c1SDavid Ahern 		table = fib6_get_table(dev_net(dev), cfg.fc_table);
4177830218c1SDavid Ahern 		if (table)
4178830218c1SDavid Ahern 			table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
4179830218c1SDavid Ahern 	}
41801da177e4SLinus Torvalds 
4181afb1d4b5SDavid Ahern 	return rt6_get_dflt_router(net, gwaddr, dev);
41821da177e4SLinus Torvalds }
41831da177e4SLinus Torvalds 
4184afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net,
4185afb1d4b5SDavid Ahern 				     struct fib6_table *table)
41861da177e4SLinus Torvalds {
41878d1c802bSDavid Ahern 	struct fib6_info *rt;
41881da177e4SLinus Torvalds 
41891da177e4SLinus Torvalds restart:
419066f5d6ceSWei Wang 	rcu_read_lock();
419166f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
4192dcd1f572SDavid Ahern 		struct net_device *dev = fib6_info_nh_dev(rt);
4193dcd1f572SDavid Ahern 		struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL;
4194dcd1f572SDavid Ahern 
419593c2fb25SDavid Ahern 		if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
4196e873e4b9SWei Wang 		    (!idev || idev->cnf.accept_ra != 2) &&
4197e873e4b9SWei Wang 		    fib6_info_hold_safe(rt)) {
419866f5d6ceSWei Wang 			rcu_read_unlock();
4199afb1d4b5SDavid Ahern 			ip6_del_rt(net, rt);
42001da177e4SLinus Torvalds 			goto restart;
42011da177e4SLinus Torvalds 		}
42021da177e4SLinus Torvalds 	}
420366f5d6ceSWei Wang 	rcu_read_unlock();
4204830218c1SDavid Ahern 
4205830218c1SDavid Ahern 	table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
4206830218c1SDavid Ahern }
4207830218c1SDavid Ahern 
4208830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net)
4209830218c1SDavid Ahern {
4210830218c1SDavid Ahern 	struct fib6_table *table;
4211830218c1SDavid Ahern 	struct hlist_head *head;
4212830218c1SDavid Ahern 	unsigned int h;
4213830218c1SDavid Ahern 
4214830218c1SDavid Ahern 	rcu_read_lock();
4215830218c1SDavid Ahern 
4216830218c1SDavid Ahern 	for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
4217830218c1SDavid Ahern 		head = &net->ipv6.fib_table_hash[h];
4218830218c1SDavid Ahern 		hlist_for_each_entry_rcu(table, head, tb6_hlist) {
4219830218c1SDavid Ahern 			if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
4220afb1d4b5SDavid Ahern 				__rt6_purge_dflt_routers(net, table);
4221830218c1SDavid Ahern 		}
4222830218c1SDavid Ahern 	}
4223830218c1SDavid Ahern 
4224830218c1SDavid Ahern 	rcu_read_unlock();
42251da177e4SLinus Torvalds }
42261da177e4SLinus Torvalds 
42275578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net,
42285578689aSDaniel Lezcano 				 struct in6_rtmsg *rtmsg,
422986872cb5SThomas Graf 				 struct fib6_config *cfg)
423086872cb5SThomas Graf {
42318823a3acSMaciej Żenczykowski 	*cfg = (struct fib6_config){
42328823a3acSMaciej Żenczykowski 		.fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
42338823a3acSMaciej Żenczykowski 			 : RT6_TABLE_MAIN,
42348823a3acSMaciej Żenczykowski 		.fc_ifindex = rtmsg->rtmsg_ifindex,
423567f69513SDavid Ahern 		.fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER,
42368823a3acSMaciej Żenczykowski 		.fc_expires = rtmsg->rtmsg_info,
42378823a3acSMaciej Żenczykowski 		.fc_dst_len = rtmsg->rtmsg_dst_len,
42388823a3acSMaciej Żenczykowski 		.fc_src_len = rtmsg->rtmsg_src_len,
42398823a3acSMaciej Żenczykowski 		.fc_flags = rtmsg->rtmsg_flags,
42408823a3acSMaciej Żenczykowski 		.fc_type = rtmsg->rtmsg_type,
424186872cb5SThomas Graf 
42428823a3acSMaciej Żenczykowski 		.fc_nlinfo.nl_net = net,
424386872cb5SThomas Graf 
42448823a3acSMaciej Żenczykowski 		.fc_dst = rtmsg->rtmsg_dst,
42458823a3acSMaciej Żenczykowski 		.fc_src = rtmsg->rtmsg_src,
42468823a3acSMaciej Żenczykowski 		.fc_gateway = rtmsg->rtmsg_gateway,
42478823a3acSMaciej Żenczykowski 	};
424886872cb5SThomas Graf }
424986872cb5SThomas Graf 
42505578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
42511da177e4SLinus Torvalds {
425286872cb5SThomas Graf 	struct fib6_config cfg;
42531da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
42541da177e4SLinus Torvalds 	int err;
42551da177e4SLinus Torvalds 
42561da177e4SLinus Torvalds 	switch (cmd) {
42571da177e4SLinus Torvalds 	case SIOCADDRT:		/* Add a route */
42581da177e4SLinus Torvalds 	case SIOCDELRT:		/* Delete a route */
4259af31f412SEric W. Biederman 		if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
42601da177e4SLinus Torvalds 			return -EPERM;
42611da177e4SLinus Torvalds 		err = copy_from_user(&rtmsg, arg,
42621da177e4SLinus Torvalds 				     sizeof(struct in6_rtmsg));
42631da177e4SLinus Torvalds 		if (err)
42641da177e4SLinus Torvalds 			return -EFAULT;
42651da177e4SLinus Torvalds 
42665578689aSDaniel Lezcano 		rtmsg_to_fib6_config(net, &rtmsg, &cfg);
426786872cb5SThomas Graf 
42681da177e4SLinus Torvalds 		rtnl_lock();
42691da177e4SLinus Torvalds 		switch (cmd) {
42701da177e4SLinus Torvalds 		case SIOCADDRT:
4271acb54e3cSDavid Ahern 			err = ip6_route_add(&cfg, GFP_KERNEL, NULL);
42721da177e4SLinus Torvalds 			break;
42731da177e4SLinus Torvalds 		case SIOCDELRT:
4274333c4301SDavid Ahern 			err = ip6_route_del(&cfg, NULL);
42751da177e4SLinus Torvalds 			break;
42761da177e4SLinus Torvalds 		default:
42771da177e4SLinus Torvalds 			err = -EINVAL;
42781da177e4SLinus Torvalds 		}
42791da177e4SLinus Torvalds 		rtnl_unlock();
42801da177e4SLinus Torvalds 
42811da177e4SLinus Torvalds 		return err;
42823ff50b79SStephen Hemminger 	}
42831da177e4SLinus Torvalds 
42841da177e4SLinus Torvalds 	return -EINVAL;
42851da177e4SLinus Torvalds }
42861da177e4SLinus Torvalds 
42871da177e4SLinus Torvalds /*
42881da177e4SLinus Torvalds  *	Drop the packet on the floor
42891da177e4SLinus Torvalds  */
42901da177e4SLinus Torvalds 
4291d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
42921da177e4SLinus Torvalds {
4293adf30907SEric Dumazet 	struct dst_entry *dst = skb_dst(skb);
42941d3fd8a1SStephen Suryaputra 	struct net *net = dev_net(dst->dev);
42951d3fd8a1SStephen Suryaputra 	struct inet6_dev *idev;
42961d3fd8a1SStephen Suryaputra 	int type;
42971d3fd8a1SStephen Suryaputra 
42981d3fd8a1SStephen Suryaputra 	if (netif_is_l3_master(skb->dev) &&
42991d3fd8a1SStephen Suryaputra 	    dst->dev == net->loopback_dev)
43001d3fd8a1SStephen Suryaputra 		idev = __in6_dev_get_safely(dev_get_by_index_rcu(net, IP6CB(skb)->iif));
43011d3fd8a1SStephen Suryaputra 	else
43021d3fd8a1SStephen Suryaputra 		idev = ip6_dst_idev(dst);
43031d3fd8a1SStephen Suryaputra 
4304612f09e8SYOSHIFUJI Hideaki 	switch (ipstats_mib_noroutes) {
4305612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_INNOROUTES:
43060660e03fSArnaldo Carvalho de Melo 		type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
430745bb0060SUlrich Weber 		if (type == IPV6_ADDR_ANY) {
43081d3fd8a1SStephen Suryaputra 			IP6_INC_STATS(net, idev, IPSTATS_MIB_INADDRERRORS);
4309612f09e8SYOSHIFUJI Hideaki 			break;
4310612f09e8SYOSHIFUJI Hideaki 		}
4311612f09e8SYOSHIFUJI Hideaki 		/* FALLTHROUGH */
4312612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_OUTNOROUTES:
43131d3fd8a1SStephen Suryaputra 		IP6_INC_STATS(net, idev, ipstats_mib_noroutes);
4314612f09e8SYOSHIFUJI Hideaki 		break;
4315612f09e8SYOSHIFUJI Hideaki 	}
43161d3fd8a1SStephen Suryaputra 
43171d3fd8a1SStephen Suryaputra 	/* Start over by dropping the dst for l3mdev case */
43181d3fd8a1SStephen Suryaputra 	if (netif_is_l3_master(skb->dev))
43191d3fd8a1SStephen Suryaputra 		skb_dst_drop(skb);
43201d3fd8a1SStephen Suryaputra 
43213ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
43221da177e4SLinus Torvalds 	kfree_skb(skb);
43231da177e4SLinus Torvalds 	return 0;
43241da177e4SLinus Torvalds }
43251da177e4SLinus Torvalds 
43269ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb)
43279ce8ade0SThomas Graf {
4328612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
43299ce8ade0SThomas Graf }
43309ce8ade0SThomas Graf 
4331ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
43321da177e4SLinus Torvalds {
4333adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
4334612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
43351da177e4SLinus Torvalds }
43361da177e4SLinus Torvalds 
43379ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb)
43389ce8ade0SThomas Graf {
4339612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
43409ce8ade0SThomas Graf }
43419ce8ade0SThomas Graf 
4342ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
43439ce8ade0SThomas Graf {
4344adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
4345612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
43469ce8ade0SThomas Graf }
43479ce8ade0SThomas Graf 
43481da177e4SLinus Torvalds /*
43491da177e4SLinus Torvalds  *	Allocate a dst for local (unicast / anycast) address.
43501da177e4SLinus Torvalds  */
43511da177e4SLinus Torvalds 
4352360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net,
4353afb1d4b5SDavid Ahern 				     struct inet6_dev *idev,
43541da177e4SLinus Torvalds 				     const struct in6_addr *addr,
4355acb54e3cSDavid Ahern 				     bool anycast, gfp_t gfp_flags)
43561da177e4SLinus Torvalds {
4357c7a1ce39SDavid Ahern 	struct fib6_config cfg = {
4358c7a1ce39SDavid Ahern 		.fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL,
4359c7a1ce39SDavid Ahern 		.fc_ifindex = idev->dev->ifindex,
4360c7a1ce39SDavid Ahern 		.fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP,
4361c7a1ce39SDavid Ahern 		.fc_dst = *addr,
4362c7a1ce39SDavid Ahern 		.fc_dst_len = 128,
4363c7a1ce39SDavid Ahern 		.fc_protocol = RTPROT_KERNEL,
4364c7a1ce39SDavid Ahern 		.fc_nlinfo.nl_net = net,
4365c7a1ce39SDavid Ahern 		.fc_ignore_dev_down = true,
4366c7a1ce39SDavid Ahern 	};
43675f02ce24SDavid Ahern 
4368e8478e80SDavid Ahern 	if (anycast) {
4369c7a1ce39SDavid Ahern 		cfg.fc_type = RTN_ANYCAST;
4370c7a1ce39SDavid Ahern 		cfg.fc_flags |= RTF_ANYCAST;
4371e8478e80SDavid Ahern 	} else {
4372c7a1ce39SDavid Ahern 		cfg.fc_type = RTN_LOCAL;
4373c7a1ce39SDavid Ahern 		cfg.fc_flags |= RTF_LOCAL;
4374e8478e80SDavid Ahern 	}
43751da177e4SLinus Torvalds 
4376c7a1ce39SDavid Ahern 	return ip6_route_info_create(&cfg, gfp_flags, NULL);
43771da177e4SLinus Torvalds }
43781da177e4SLinus Torvalds 
4379c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */
4380c3968a85SDaniel Walter struct arg_dev_net_ip {
4381c3968a85SDaniel Walter 	struct net_device *dev;
4382c3968a85SDaniel Walter 	struct net *net;
4383c3968a85SDaniel Walter 	struct in6_addr *addr;
4384c3968a85SDaniel Walter };
4385c3968a85SDaniel Walter 
43868d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg)
4387c3968a85SDaniel Walter {
4388c3968a85SDaniel Walter 	struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
4389c3968a85SDaniel Walter 	struct net *net = ((struct arg_dev_net_ip *)arg)->net;
4390c3968a85SDaniel Walter 	struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
4391c3968a85SDaniel Walter 
4392f88d8ea6SDavid Ahern 	if (!rt->nh &&
4393f88d8ea6SDavid Ahern 	    ((void *)rt->fib6_nh->fib_nh_dev == dev || !dev) &&
4394421842edSDavid Ahern 	    rt != net->ipv6.fib6_null_entry &&
439593c2fb25SDavid Ahern 	    ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) {
439660006a48SWei Wang 		spin_lock_bh(&rt6_exception_lock);
4397c3968a85SDaniel Walter 		/* remove prefsrc entry */
439893c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 0;
439960006a48SWei Wang 		spin_unlock_bh(&rt6_exception_lock);
4400c3968a85SDaniel Walter 	}
4401c3968a85SDaniel Walter 	return 0;
4402c3968a85SDaniel Walter }
4403c3968a85SDaniel Walter 
4404c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
4405c3968a85SDaniel Walter {
4406c3968a85SDaniel Walter 	struct net *net = dev_net(ifp->idev->dev);
4407c3968a85SDaniel Walter 	struct arg_dev_net_ip adni = {
4408c3968a85SDaniel Walter 		.dev = ifp->idev->dev,
4409c3968a85SDaniel Walter 		.net = net,
4410c3968a85SDaniel Walter 		.addr = &ifp->addr,
4411c3968a85SDaniel Walter 	};
44120c3584d5SLi RongQing 	fib6_clean_all(net, fib6_remove_prefsrc, &adni);
4413c3968a85SDaniel Walter }
4414c3968a85SDaniel Walter 
44152b2450caSDavid Ahern #define RTF_RA_ROUTER		(RTF_ADDRCONF | RTF_DEFAULT)
4416be7a010dSDuan Jiong 
4417be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */
44188d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg)
4419be7a010dSDuan Jiong {
4420be7a010dSDuan Jiong 	struct in6_addr *gateway = (struct in6_addr *)arg;
4421f88d8ea6SDavid Ahern 	struct fib6_nh *nh;
4422be7a010dSDuan Jiong 
4423f88d8ea6SDavid Ahern 	/* RA routes do not use nexthops */
4424f88d8ea6SDavid Ahern 	if (rt->nh)
4425f88d8ea6SDavid Ahern 		return 0;
4426f88d8ea6SDavid Ahern 
4427f88d8ea6SDavid Ahern 	nh = rt->fib6_nh;
442893c2fb25SDavid Ahern 	if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
4429cc5c073aSDavid Ahern 	    nh->fib_nh_gw_family && ipv6_addr_equal(gateway, &nh->fib_nh_gw6))
4430be7a010dSDuan Jiong 		return -1;
4431b16cb459SWei Wang 
4432b16cb459SWei Wang 	/* Further clean up cached routes in exception table.
4433b16cb459SWei Wang 	 * This is needed because cached route may have a different
4434b16cb459SWei Wang 	 * gateway than its 'parent' in the case of an ip redirect.
4435b16cb459SWei Wang 	 */
4436cc5c073aSDavid Ahern 	fib6_nh_exceptions_clean_tohost(nh, gateway);
4437b16cb459SWei Wang 
4438be7a010dSDuan Jiong 	return 0;
4439be7a010dSDuan Jiong }
4440be7a010dSDuan Jiong 
4441be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
4442be7a010dSDuan Jiong {
4443be7a010dSDuan Jiong 	fib6_clean_all(net, fib6_clean_tohost, gateway);
4444be7a010dSDuan Jiong }
4445be7a010dSDuan Jiong 
44462127d95aSIdo Schimmel struct arg_netdev_event {
44472127d95aSIdo Schimmel 	const struct net_device *dev;
44484c981e28SIdo Schimmel 	union {
4449ecc5663cSDavid Ahern 		unsigned char nh_flags;
44504c981e28SIdo Schimmel 		unsigned long event;
44514c981e28SIdo Schimmel 	};
44522127d95aSIdo Schimmel };
44532127d95aSIdo Schimmel 
44548d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt)
4455d7dedee1SIdo Schimmel {
44568d1c802bSDavid Ahern 	struct fib6_info *iter;
4457d7dedee1SIdo Schimmel 	struct fib6_node *fn;
4458d7dedee1SIdo Schimmel 
445993c2fb25SDavid Ahern 	fn = rcu_dereference_protected(rt->fib6_node,
446093c2fb25SDavid Ahern 			lockdep_is_held(&rt->fib6_table->tb6_lock));
4461d7dedee1SIdo Schimmel 	iter = rcu_dereference_protected(fn->leaf,
446293c2fb25SDavid Ahern 			lockdep_is_held(&rt->fib6_table->tb6_lock));
4463d7dedee1SIdo Schimmel 	while (iter) {
446493c2fb25SDavid Ahern 		if (iter->fib6_metric == rt->fib6_metric &&
446533bd5ac5SDavid Ahern 		    rt6_qualify_for_ecmp(iter))
4466d7dedee1SIdo Schimmel 			return iter;
44678fb11a9aSDavid Ahern 		iter = rcu_dereference_protected(iter->fib6_next,
446893c2fb25SDavid Ahern 				lockdep_is_held(&rt->fib6_table->tb6_lock));
4469d7dedee1SIdo Schimmel 	}
4470d7dedee1SIdo Schimmel 
4471d7dedee1SIdo Schimmel 	return NULL;
4472d7dedee1SIdo Schimmel }
4473d7dedee1SIdo Schimmel 
4474f88d8ea6SDavid Ahern /* only called for fib entries with builtin fib6_nh */
44758d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt)
4476d7dedee1SIdo Schimmel {
44771cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_flags & RTNH_F_DEAD ||
44781cf844c7SDavid Ahern 	    (rt->fib6_nh->fib_nh_flags & RTNH_F_LINKDOWN &&
44791cf844c7SDavid Ahern 	     ip6_ignore_linkdown(rt->fib6_nh->fib_nh_dev)))
4480d7dedee1SIdo Schimmel 		return true;
4481d7dedee1SIdo Schimmel 
4482d7dedee1SIdo Schimmel 	return false;
4483d7dedee1SIdo Schimmel }
4484d7dedee1SIdo Schimmel 
44858d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt)
4486d7dedee1SIdo Schimmel {
44878d1c802bSDavid Ahern 	struct fib6_info *iter;
4488d7dedee1SIdo Schimmel 	int total = 0;
4489d7dedee1SIdo Schimmel 
4490d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt))
44911cf844c7SDavid Ahern 		total += rt->fib6_nh->fib_nh_weight;
4492d7dedee1SIdo Schimmel 
449393c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) {
4494d7dedee1SIdo Schimmel 		if (!rt6_is_dead(iter))
44951cf844c7SDavid Ahern 			total += iter->fib6_nh->fib_nh_weight;
4496d7dedee1SIdo Schimmel 	}
4497d7dedee1SIdo Schimmel 
4498d7dedee1SIdo Schimmel 	return total;
4499d7dedee1SIdo Schimmel }
4500d7dedee1SIdo Schimmel 
45018d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total)
4502d7dedee1SIdo Schimmel {
4503d7dedee1SIdo Schimmel 	int upper_bound = -1;
4504d7dedee1SIdo Schimmel 
4505d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt)) {
45061cf844c7SDavid Ahern 		*weight += rt->fib6_nh->fib_nh_weight;
4507d7dedee1SIdo Schimmel 		upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
4508d7dedee1SIdo Schimmel 						    total) - 1;
4509d7dedee1SIdo Schimmel 	}
45101cf844c7SDavid Ahern 	atomic_set(&rt->fib6_nh->fib_nh_upper_bound, upper_bound);
4511d7dedee1SIdo Schimmel }
4512d7dedee1SIdo Schimmel 
45138d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total)
4514d7dedee1SIdo Schimmel {
45158d1c802bSDavid Ahern 	struct fib6_info *iter;
4516d7dedee1SIdo Schimmel 	int weight = 0;
4517d7dedee1SIdo Schimmel 
4518d7dedee1SIdo Schimmel 	rt6_upper_bound_set(rt, &weight, total);
4519d7dedee1SIdo Schimmel 
452093c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
4521d7dedee1SIdo Schimmel 		rt6_upper_bound_set(iter, &weight, total);
4522d7dedee1SIdo Schimmel }
4523d7dedee1SIdo Schimmel 
45248d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt)
4525d7dedee1SIdo Schimmel {
45268d1c802bSDavid Ahern 	struct fib6_info *first;
4527d7dedee1SIdo Schimmel 	int total;
4528d7dedee1SIdo Schimmel 
4529d7dedee1SIdo Schimmel 	/* In case the entire multipath route was marked for flushing,
4530d7dedee1SIdo Schimmel 	 * then there is no need to rebalance upon the removal of every
4531d7dedee1SIdo Schimmel 	 * sibling route.
4532d7dedee1SIdo Schimmel 	 */
453393c2fb25SDavid Ahern 	if (!rt->fib6_nsiblings || rt->should_flush)
4534d7dedee1SIdo Schimmel 		return;
4535d7dedee1SIdo Schimmel 
4536d7dedee1SIdo Schimmel 	/* During lookup routes are evaluated in order, so we need to
4537d7dedee1SIdo Schimmel 	 * make sure upper bounds are assigned from the first sibling
4538d7dedee1SIdo Schimmel 	 * onwards.
4539d7dedee1SIdo Schimmel 	 */
4540d7dedee1SIdo Schimmel 	first = rt6_multipath_first_sibling(rt);
4541d7dedee1SIdo Schimmel 	if (WARN_ON_ONCE(!first))
4542d7dedee1SIdo Schimmel 		return;
4543d7dedee1SIdo Schimmel 
4544d7dedee1SIdo Schimmel 	total = rt6_multipath_total_weight(first);
4545d7dedee1SIdo Schimmel 	rt6_multipath_upper_bound_set(first, total);
4546d7dedee1SIdo Schimmel }
4547d7dedee1SIdo Schimmel 
45488d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg)
45492127d95aSIdo Schimmel {
45502127d95aSIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
45517aef6859SDavid Ahern 	struct net *net = dev_net(arg->dev);
45522127d95aSIdo Schimmel 
4553f88d8ea6SDavid Ahern 	if (rt != net->ipv6.fib6_null_entry && !rt->nh &&
45541cf844c7SDavid Ahern 	    rt->fib6_nh->fib_nh_dev == arg->dev) {
45551cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags &= ~arg->nh_flags;
45567aef6859SDavid Ahern 		fib6_update_sernum_upto_root(net, rt);
4557d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
45581de178edSIdo Schimmel 	}
45592127d95aSIdo Schimmel 
45602127d95aSIdo Schimmel 	return 0;
45612127d95aSIdo Schimmel }
45622127d95aSIdo Schimmel 
4563ecc5663cSDavid Ahern void rt6_sync_up(struct net_device *dev, unsigned char nh_flags)
45642127d95aSIdo Schimmel {
45652127d95aSIdo Schimmel 	struct arg_netdev_event arg = {
45662127d95aSIdo Schimmel 		.dev = dev,
45676802f3adSIdo Schimmel 		{
45682127d95aSIdo Schimmel 			.nh_flags = nh_flags,
45696802f3adSIdo Schimmel 		},
45702127d95aSIdo Schimmel 	};
45712127d95aSIdo Schimmel 
45722127d95aSIdo Schimmel 	if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
45732127d95aSIdo Schimmel 		arg.nh_flags |= RTNH_F_LINKDOWN;
45742127d95aSIdo Schimmel 
45752127d95aSIdo Schimmel 	fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
45762127d95aSIdo Schimmel }
45772127d95aSIdo Schimmel 
4578f88d8ea6SDavid Ahern /* only called for fib entries with inline fib6_nh */
45798d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt,
45801de178edSIdo Schimmel 				   const struct net_device *dev)
45811de178edSIdo Schimmel {
45828d1c802bSDavid Ahern 	struct fib6_info *iter;
45831de178edSIdo Schimmel 
45841cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == dev)
45851de178edSIdo Schimmel 		return true;
458693c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
45871cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == dev)
45881de178edSIdo Schimmel 			return true;
45891de178edSIdo Schimmel 
45901de178edSIdo Schimmel 	return false;
45911de178edSIdo Schimmel }
45921de178edSIdo Schimmel 
45938d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt)
45941de178edSIdo Schimmel {
45958d1c802bSDavid Ahern 	struct fib6_info *iter;
45961de178edSIdo Schimmel 
45971de178edSIdo Schimmel 	rt->should_flush = 1;
459893c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
45991de178edSIdo Schimmel 		iter->should_flush = 1;
46001de178edSIdo Schimmel }
46011de178edSIdo Schimmel 
46028d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt,
46031de178edSIdo Schimmel 					     const struct net_device *down_dev)
46041de178edSIdo Schimmel {
46058d1c802bSDavid Ahern 	struct fib6_info *iter;
46061de178edSIdo Schimmel 	unsigned int dead = 0;
46071de178edSIdo Schimmel 
46081cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == down_dev ||
46091cf844c7SDavid Ahern 	    rt->fib6_nh->fib_nh_flags & RTNH_F_DEAD)
46101de178edSIdo Schimmel 		dead++;
461193c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
46121cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == down_dev ||
46131cf844c7SDavid Ahern 		    iter->fib6_nh->fib_nh_flags & RTNH_F_DEAD)
46141de178edSIdo Schimmel 			dead++;
46151de178edSIdo Schimmel 
46161de178edSIdo Schimmel 	return dead;
46171de178edSIdo Schimmel }
46181de178edSIdo Schimmel 
46198d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt,
46201de178edSIdo Schimmel 				       const struct net_device *dev,
4621ecc5663cSDavid Ahern 				       unsigned char nh_flags)
46221de178edSIdo Schimmel {
46238d1c802bSDavid Ahern 	struct fib6_info *iter;
46241de178edSIdo Schimmel 
46251cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == dev)
46261cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags |= nh_flags;
462793c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
46281cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == dev)
46291cf844c7SDavid Ahern 			iter->fib6_nh->fib_nh_flags |= nh_flags;
46301de178edSIdo Schimmel }
46311de178edSIdo Schimmel 
4632a1a22c12SDavid Ahern /* called with write lock held for table with rt */
46338d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg)
46341da177e4SLinus Torvalds {
46354c981e28SIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
46364c981e28SIdo Schimmel 	const struct net_device *dev = arg->dev;
46377aef6859SDavid Ahern 	struct net *net = dev_net(dev);
46388ed67789SDaniel Lezcano 
4639f88d8ea6SDavid Ahern 	if (rt == net->ipv6.fib6_null_entry || rt->nh)
464027c6fa73SIdo Schimmel 		return 0;
464127c6fa73SIdo Schimmel 
464227c6fa73SIdo Schimmel 	switch (arg->event) {
464327c6fa73SIdo Schimmel 	case NETDEV_UNREGISTER:
46441cf844c7SDavid Ahern 		return rt->fib6_nh->fib_nh_dev == dev ? -1 : 0;
464527c6fa73SIdo Schimmel 	case NETDEV_DOWN:
46461de178edSIdo Schimmel 		if (rt->should_flush)
464727c6fa73SIdo Schimmel 			return -1;
464893c2fb25SDavid Ahern 		if (!rt->fib6_nsiblings)
46491cf844c7SDavid Ahern 			return rt->fib6_nh->fib_nh_dev == dev ? -1 : 0;
46501de178edSIdo Schimmel 		if (rt6_multipath_uses_dev(rt, dev)) {
46511de178edSIdo Schimmel 			unsigned int count;
46521de178edSIdo Schimmel 
46531de178edSIdo Schimmel 			count = rt6_multipath_dead_count(rt, dev);
465493c2fb25SDavid Ahern 			if (rt->fib6_nsiblings + 1 == count) {
46551de178edSIdo Schimmel 				rt6_multipath_flush(rt);
46561de178edSIdo Schimmel 				return -1;
46571de178edSIdo Schimmel 			}
46581de178edSIdo Schimmel 			rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
46591de178edSIdo Schimmel 						   RTNH_F_LINKDOWN);
46607aef6859SDavid Ahern 			fib6_update_sernum(net, rt);
4661d7dedee1SIdo Schimmel 			rt6_multipath_rebalance(rt);
46621de178edSIdo Schimmel 		}
46631de178edSIdo Schimmel 		return -2;
466427c6fa73SIdo Schimmel 	case NETDEV_CHANGE:
46651cf844c7SDavid Ahern 		if (rt->fib6_nh->fib_nh_dev != dev ||
466693c2fb25SDavid Ahern 		    rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST))
466727c6fa73SIdo Schimmel 			break;
46681cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN;
4669d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
467027c6fa73SIdo Schimmel 		break;
46712b241361SIdo Schimmel 	}
4672c159d30cSDavid S. Miller 
46731da177e4SLinus Torvalds 	return 0;
46741da177e4SLinus Torvalds }
46751da177e4SLinus Torvalds 
467627c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
46771da177e4SLinus Torvalds {
46784c981e28SIdo Schimmel 	struct arg_netdev_event arg = {
46798ed67789SDaniel Lezcano 		.dev = dev,
46806802f3adSIdo Schimmel 		{
46814c981e28SIdo Schimmel 			.event = event,
46826802f3adSIdo Schimmel 		},
46838ed67789SDaniel Lezcano 	};
46847c6bb7d2SDavid Ahern 	struct net *net = dev_net(dev);
46858ed67789SDaniel Lezcano 
46867c6bb7d2SDavid Ahern 	if (net->ipv6.sysctl.skip_notify_on_dev_down)
46877c6bb7d2SDavid Ahern 		fib6_clean_all_skip_notify(net, fib6_ifdown, &arg);
46887c6bb7d2SDavid Ahern 	else
46897c6bb7d2SDavid Ahern 		fib6_clean_all(net, fib6_ifdown, &arg);
46904c981e28SIdo Schimmel }
46914c981e28SIdo Schimmel 
46924c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event)
46934c981e28SIdo Schimmel {
46944c981e28SIdo Schimmel 	rt6_sync_down_dev(dev, event);
46954c981e28SIdo Schimmel 	rt6_uncached_list_flush_dev(dev_net(dev), dev);
46964c981e28SIdo Schimmel 	neigh_ifdown(&nd_tbl, dev);
46971da177e4SLinus Torvalds }
46981da177e4SLinus Torvalds 
469995c96174SEric Dumazet struct rt6_mtu_change_arg {
47001da177e4SLinus Torvalds 	struct net_device *dev;
470195c96174SEric Dumazet 	unsigned int mtu;
4702c0b220cfSDavid Ahern 	struct fib6_info *f6i;
47031da177e4SLinus Torvalds };
47041da177e4SLinus Torvalds 
4705cc5c073aSDavid Ahern static int fib6_nh_mtu_change(struct fib6_nh *nh, void *_arg)
4706c0b220cfSDavid Ahern {
4707c0b220cfSDavid Ahern 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *)_arg;
4708cc5c073aSDavid Ahern 	struct fib6_info *f6i = arg->f6i;
4709c0b220cfSDavid Ahern 
4710c0b220cfSDavid Ahern 	/* For administrative MTU increase, there is no way to discover
4711c0b220cfSDavid Ahern 	 * IPv6 PMTU increase, so PMTU increase should be updated here.
4712c0b220cfSDavid Ahern 	 * Since RFC 1981 doesn't include administrative MTU increase
4713c0b220cfSDavid Ahern 	 * update PMTU increase is a MUST. (i.e. jumbo frame)
4714c0b220cfSDavid Ahern 	 */
4715c0b220cfSDavid Ahern 	if (nh->fib_nh_dev == arg->dev) {
4716c0b220cfSDavid Ahern 		struct inet6_dev *idev = __in6_dev_get(arg->dev);
4717c0b220cfSDavid Ahern 		u32 mtu = f6i->fib6_pmtu;
4718c0b220cfSDavid Ahern 
4719c0b220cfSDavid Ahern 		if (mtu >= arg->mtu ||
4720c0b220cfSDavid Ahern 		    (mtu < arg->mtu && mtu == idev->cnf.mtu6))
4721c0b220cfSDavid Ahern 			fib6_metric_set(f6i, RTAX_MTU, arg->mtu);
4722c0b220cfSDavid Ahern 
4723c0b220cfSDavid Ahern 		spin_lock_bh(&rt6_exception_lock);
4724cc5c073aSDavid Ahern 		rt6_exceptions_update_pmtu(idev, nh, arg->mtu);
4725c0b220cfSDavid Ahern 		spin_unlock_bh(&rt6_exception_lock);
4726c0b220cfSDavid Ahern 	}
4727c0b220cfSDavid Ahern 
4728c0b220cfSDavid Ahern 	return 0;
4729c0b220cfSDavid Ahern }
4730c0b220cfSDavid Ahern 
4731c0b220cfSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *f6i, void *p_arg)
47321da177e4SLinus Torvalds {
47331da177e4SLinus Torvalds 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
47341da177e4SLinus Torvalds 	struct inet6_dev *idev;
47351da177e4SLinus Torvalds 
47361da177e4SLinus Torvalds 	/* In IPv6 pmtu discovery is not optional,
47371da177e4SLinus Torvalds 	   so that RTAX_MTU lock cannot disable it.
47381da177e4SLinus Torvalds 	   We still use this lock to block changes
47391da177e4SLinus Torvalds 	   caused by addrconf/ndisc.
47401da177e4SLinus Torvalds 	*/
47411da177e4SLinus Torvalds 
47421da177e4SLinus Torvalds 	idev = __in6_dev_get(arg->dev);
474338308473SDavid S. Miller 	if (!idev)
47441da177e4SLinus Torvalds 		return 0;
47451da177e4SLinus Torvalds 
4746c0b220cfSDavid Ahern 	if (fib6_metric_locked(f6i, RTAX_MTU))
47471da177e4SLinus Torvalds 		return 0;
4748c0b220cfSDavid Ahern 
4749c0b220cfSDavid Ahern 	arg->f6i = f6i;
47502d44234bSDavid Ahern 	if (f6i->nh) {
47512d44234bSDavid Ahern 		/* fib6_nh_mtu_change only returns 0, so this is safe */
47522d44234bSDavid Ahern 		return nexthop_for_each_fib6_nh(f6i->nh, fib6_nh_mtu_change,
47532d44234bSDavid Ahern 						arg);
47542d44234bSDavid Ahern 	}
47552d44234bSDavid Ahern 
47561cf844c7SDavid Ahern 	return fib6_nh_mtu_change(f6i->fib6_nh, arg);
47571da177e4SLinus Torvalds }
47581da177e4SLinus Torvalds 
475995c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
47601da177e4SLinus Torvalds {
4761c71099acSThomas Graf 	struct rt6_mtu_change_arg arg = {
4762c71099acSThomas Graf 		.dev = dev,
4763c71099acSThomas Graf 		.mtu = mtu,
4764c71099acSThomas Graf 	};
47651da177e4SLinus Torvalds 
47660c3584d5SLi RongQing 	fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
47671da177e4SLinus Torvalds }
47681da177e4SLinus Torvalds 
4769ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
477075425657SDavid Ahern 	[RTA_UNSPEC]		= { .strict_start_type = RTA_DPORT + 1 },
47715176f91eSThomas Graf 	[RTA_GATEWAY]           = { .len = sizeof(struct in6_addr) },
4772aa8f8778SEric Dumazet 	[RTA_PREFSRC]		= { .len = sizeof(struct in6_addr) },
477386872cb5SThomas Graf 	[RTA_OIF]               = { .type = NLA_U32 },
4774ab364a6fSThomas Graf 	[RTA_IIF]		= { .type = NLA_U32 },
477586872cb5SThomas Graf 	[RTA_PRIORITY]          = { .type = NLA_U32 },
477686872cb5SThomas Graf 	[RTA_METRICS]           = { .type = NLA_NESTED },
477751ebd318SNicolas Dichtel 	[RTA_MULTIPATH]		= { .len = sizeof(struct rtnexthop) },
4778c78ba6d6SLubomir Rintel 	[RTA_PREF]              = { .type = NLA_U8 },
477919e42e45SRoopa Prabhu 	[RTA_ENCAP_TYPE]	= { .type = NLA_U16 },
478019e42e45SRoopa Prabhu 	[RTA_ENCAP]		= { .type = NLA_NESTED },
478132bc201eSXin Long 	[RTA_EXPIRES]		= { .type = NLA_U32 },
4782622ec2c9SLorenzo Colitti 	[RTA_UID]		= { .type = NLA_U32 },
47833b45a410SLiping Zhang 	[RTA_MARK]		= { .type = NLA_U32 },
4784aa8f8778SEric Dumazet 	[RTA_TABLE]		= { .type = NLA_U32 },
4785eacb9384SRoopa Prabhu 	[RTA_IP_PROTO]		= { .type = NLA_U8 },
4786eacb9384SRoopa Prabhu 	[RTA_SPORT]		= { .type = NLA_U16 },
4787eacb9384SRoopa Prabhu 	[RTA_DPORT]		= { .type = NLA_U16 },
47885b98324eSDavid Ahern 	[RTA_NH_ID]		= { .type = NLA_U32 },
478986872cb5SThomas Graf };
479086872cb5SThomas Graf 
479186872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
4792333c4301SDavid Ahern 			      struct fib6_config *cfg,
4793333c4301SDavid Ahern 			      struct netlink_ext_ack *extack)
47941da177e4SLinus Torvalds {
479586872cb5SThomas Graf 	struct rtmsg *rtm;
479686872cb5SThomas Graf 	struct nlattr *tb[RTA_MAX+1];
4797c78ba6d6SLubomir Rintel 	unsigned int pref;
479886872cb5SThomas Graf 	int err;
47991da177e4SLinus Torvalds 
48008cb08174SJohannes Berg 	err = nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX,
48018cb08174SJohannes Berg 				     rtm_ipv6_policy, extack);
480286872cb5SThomas Graf 	if (err < 0)
480386872cb5SThomas Graf 		goto errout;
48041da177e4SLinus Torvalds 
480586872cb5SThomas Graf 	err = -EINVAL;
480686872cb5SThomas Graf 	rtm = nlmsg_data(nlh);
480786872cb5SThomas Graf 
480884db8407SMaciej Żenczykowski 	*cfg = (struct fib6_config){
480984db8407SMaciej Żenczykowski 		.fc_table = rtm->rtm_table,
481084db8407SMaciej Żenczykowski 		.fc_dst_len = rtm->rtm_dst_len,
481184db8407SMaciej Żenczykowski 		.fc_src_len = rtm->rtm_src_len,
481284db8407SMaciej Żenczykowski 		.fc_flags = RTF_UP,
481384db8407SMaciej Żenczykowski 		.fc_protocol = rtm->rtm_protocol,
481484db8407SMaciej Żenczykowski 		.fc_type = rtm->rtm_type,
481584db8407SMaciej Żenczykowski 
481684db8407SMaciej Żenczykowski 		.fc_nlinfo.portid = NETLINK_CB(skb).portid,
481784db8407SMaciej Żenczykowski 		.fc_nlinfo.nlh = nlh,
481884db8407SMaciej Żenczykowski 		.fc_nlinfo.nl_net = sock_net(skb->sk),
481984db8407SMaciej Żenczykowski 	};
482086872cb5SThomas Graf 
4821ef2c7d7bSNicolas Dichtel 	if (rtm->rtm_type == RTN_UNREACHABLE ||
4822ef2c7d7bSNicolas Dichtel 	    rtm->rtm_type == RTN_BLACKHOLE ||
4823b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_PROHIBIT ||
4824b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_THROW)
482586872cb5SThomas Graf 		cfg->fc_flags |= RTF_REJECT;
482686872cb5SThomas Graf 
4827ab79ad14SMaciej Żenczykowski 	if (rtm->rtm_type == RTN_LOCAL)
4828ab79ad14SMaciej Żenczykowski 		cfg->fc_flags |= RTF_LOCAL;
4829ab79ad14SMaciej Żenczykowski 
48301f56a01fSMartin KaFai Lau 	if (rtm->rtm_flags & RTM_F_CLONED)
48311f56a01fSMartin KaFai Lau 		cfg->fc_flags |= RTF_CACHE;
48321f56a01fSMartin KaFai Lau 
4833fc1e64e1SDavid Ahern 	cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
4834fc1e64e1SDavid Ahern 
48355b98324eSDavid Ahern 	if (tb[RTA_NH_ID]) {
48365b98324eSDavid Ahern 		if (tb[RTA_GATEWAY]   || tb[RTA_OIF] ||
48375b98324eSDavid Ahern 		    tb[RTA_MULTIPATH] || tb[RTA_ENCAP]) {
48385b98324eSDavid Ahern 			NL_SET_ERR_MSG(extack,
48395b98324eSDavid Ahern 				       "Nexthop specification and nexthop id are mutually exclusive");
48405b98324eSDavid Ahern 			goto errout;
48415b98324eSDavid Ahern 		}
48425b98324eSDavid Ahern 		cfg->fc_nh_id = nla_get_u32(tb[RTA_NH_ID]);
48435b98324eSDavid Ahern 	}
48445b98324eSDavid Ahern 
484586872cb5SThomas Graf 	if (tb[RTA_GATEWAY]) {
484667b61f6cSJiri Benc 		cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
484786872cb5SThomas Graf 		cfg->fc_flags |= RTF_GATEWAY;
48481da177e4SLinus Torvalds 	}
4849e3818541SDavid Ahern 	if (tb[RTA_VIA]) {
4850e3818541SDavid Ahern 		NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute");
4851e3818541SDavid Ahern 		goto errout;
4852e3818541SDavid Ahern 	}
485386872cb5SThomas Graf 
485486872cb5SThomas Graf 	if (tb[RTA_DST]) {
485586872cb5SThomas Graf 		int plen = (rtm->rtm_dst_len + 7) >> 3;
485686872cb5SThomas Graf 
485786872cb5SThomas Graf 		if (nla_len(tb[RTA_DST]) < plen)
485886872cb5SThomas Graf 			goto errout;
485986872cb5SThomas Graf 
486086872cb5SThomas Graf 		nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
48611da177e4SLinus Torvalds 	}
486286872cb5SThomas Graf 
486386872cb5SThomas Graf 	if (tb[RTA_SRC]) {
486486872cb5SThomas Graf 		int plen = (rtm->rtm_src_len + 7) >> 3;
486586872cb5SThomas Graf 
486686872cb5SThomas Graf 		if (nla_len(tb[RTA_SRC]) < plen)
486786872cb5SThomas Graf 			goto errout;
486886872cb5SThomas Graf 
486986872cb5SThomas Graf 		nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
48701da177e4SLinus Torvalds 	}
487186872cb5SThomas Graf 
4872c3968a85SDaniel Walter 	if (tb[RTA_PREFSRC])
487367b61f6cSJiri Benc 		cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
4874c3968a85SDaniel Walter 
487586872cb5SThomas Graf 	if (tb[RTA_OIF])
487686872cb5SThomas Graf 		cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
487786872cb5SThomas Graf 
487886872cb5SThomas Graf 	if (tb[RTA_PRIORITY])
487986872cb5SThomas Graf 		cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
488086872cb5SThomas Graf 
488186872cb5SThomas Graf 	if (tb[RTA_METRICS]) {
488286872cb5SThomas Graf 		cfg->fc_mx = nla_data(tb[RTA_METRICS]);
488386872cb5SThomas Graf 		cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
48841da177e4SLinus Torvalds 	}
488586872cb5SThomas Graf 
488686872cb5SThomas Graf 	if (tb[RTA_TABLE])
488786872cb5SThomas Graf 		cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
488886872cb5SThomas Graf 
488951ebd318SNicolas Dichtel 	if (tb[RTA_MULTIPATH]) {
489051ebd318SNicolas Dichtel 		cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
489151ebd318SNicolas Dichtel 		cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
48929ed59592SDavid Ahern 
48939ed59592SDavid Ahern 		err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
4894c255bd68SDavid Ahern 						     cfg->fc_mp_len, extack);
48959ed59592SDavid Ahern 		if (err < 0)
48969ed59592SDavid Ahern 			goto errout;
489751ebd318SNicolas Dichtel 	}
489851ebd318SNicolas Dichtel 
4899c78ba6d6SLubomir Rintel 	if (tb[RTA_PREF]) {
4900c78ba6d6SLubomir Rintel 		pref = nla_get_u8(tb[RTA_PREF]);
4901c78ba6d6SLubomir Rintel 		if (pref != ICMPV6_ROUTER_PREF_LOW &&
4902c78ba6d6SLubomir Rintel 		    pref != ICMPV6_ROUTER_PREF_HIGH)
4903c78ba6d6SLubomir Rintel 			pref = ICMPV6_ROUTER_PREF_MEDIUM;
4904c78ba6d6SLubomir Rintel 		cfg->fc_flags |= RTF_PREF(pref);
4905c78ba6d6SLubomir Rintel 	}
4906c78ba6d6SLubomir Rintel 
490719e42e45SRoopa Prabhu 	if (tb[RTA_ENCAP])
490819e42e45SRoopa Prabhu 		cfg->fc_encap = tb[RTA_ENCAP];
490919e42e45SRoopa Prabhu 
49109ed59592SDavid Ahern 	if (tb[RTA_ENCAP_TYPE]) {
491119e42e45SRoopa Prabhu 		cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
491219e42e45SRoopa Prabhu 
4913c255bd68SDavid Ahern 		err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
49149ed59592SDavid Ahern 		if (err < 0)
49159ed59592SDavid Ahern 			goto errout;
49169ed59592SDavid Ahern 	}
49179ed59592SDavid Ahern 
491832bc201eSXin Long 	if (tb[RTA_EXPIRES]) {
491932bc201eSXin Long 		unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
492032bc201eSXin Long 
492132bc201eSXin Long 		if (addrconf_finite_timeout(timeout)) {
492232bc201eSXin Long 			cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
492332bc201eSXin Long 			cfg->fc_flags |= RTF_EXPIRES;
492432bc201eSXin Long 		}
492532bc201eSXin Long 	}
492632bc201eSXin Long 
492786872cb5SThomas Graf 	err = 0;
492886872cb5SThomas Graf errout:
492986872cb5SThomas Graf 	return err;
49301da177e4SLinus Torvalds }
49311da177e4SLinus Torvalds 
49326b9ea5a6SRoopa Prabhu struct rt6_nh {
49338d1c802bSDavid Ahern 	struct fib6_info *fib6_info;
49346b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
49356b9ea5a6SRoopa Prabhu 	struct list_head next;
49366b9ea5a6SRoopa Prabhu };
49376b9ea5a6SRoopa Prabhu 
4938d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net,
4939d4ead6b3SDavid Ahern 				 struct list_head *rt6_nh_list,
49408d1c802bSDavid Ahern 				 struct fib6_info *rt,
49418d1c802bSDavid Ahern 				 struct fib6_config *r_cfg)
49426b9ea5a6SRoopa Prabhu {
49436b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh;
49446b9ea5a6SRoopa Prabhu 	int err = -EEXIST;
49456b9ea5a6SRoopa Prabhu 
49466b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, rt6_nh_list, next) {
49478d1c802bSDavid Ahern 		/* check if fib6_info already exists */
49488d1c802bSDavid Ahern 		if (rt6_duplicate_nexthop(nh->fib6_info, rt))
49496b9ea5a6SRoopa Prabhu 			return err;
49506b9ea5a6SRoopa Prabhu 	}
49516b9ea5a6SRoopa Prabhu 
49526b9ea5a6SRoopa Prabhu 	nh = kzalloc(sizeof(*nh), GFP_KERNEL);
49536b9ea5a6SRoopa Prabhu 	if (!nh)
49546b9ea5a6SRoopa Prabhu 		return -ENOMEM;
49558d1c802bSDavid Ahern 	nh->fib6_info = rt;
49566b9ea5a6SRoopa Prabhu 	memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
49576b9ea5a6SRoopa Prabhu 	list_add_tail(&nh->next, rt6_nh_list);
49586b9ea5a6SRoopa Prabhu 
49596b9ea5a6SRoopa Prabhu 	return 0;
49606b9ea5a6SRoopa Prabhu }
49616b9ea5a6SRoopa Prabhu 
49628d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt,
49638d1c802bSDavid Ahern 				   struct fib6_info *rt_last,
49643b1137feSDavid Ahern 				   struct nl_info *info,
49653b1137feSDavid Ahern 				   __u16 nlflags)
49663b1137feSDavid Ahern {
49673b1137feSDavid Ahern 	/* if this is an APPEND route, then rt points to the first route
49683b1137feSDavid Ahern 	 * inserted and rt_last points to last route inserted. Userspace
49693b1137feSDavid Ahern 	 * wants a consistent dump of the route which starts at the first
49703b1137feSDavid Ahern 	 * nexthop. Since sibling routes are always added at the end of
49713b1137feSDavid Ahern 	 * the list, find the first sibling of the last route appended
49723b1137feSDavid Ahern 	 */
497393c2fb25SDavid Ahern 	if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) {
497493c2fb25SDavid Ahern 		rt = list_first_entry(&rt_last->fib6_siblings,
49758d1c802bSDavid Ahern 				      struct fib6_info,
497693c2fb25SDavid Ahern 				      fib6_siblings);
49773b1137feSDavid Ahern 	}
49783b1137feSDavid Ahern 
49793b1137feSDavid Ahern 	if (rt)
49803b1137feSDavid Ahern 		inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
49813b1137feSDavid Ahern }
49823b1137feSDavid Ahern 
4983333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg,
4984333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
498551ebd318SNicolas Dichtel {
49868d1c802bSDavid Ahern 	struct fib6_info *rt_notif = NULL, *rt_last = NULL;
49873b1137feSDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
4988ebee3cadSIdo Schimmel 	enum fib_event_type event_type;
498951ebd318SNicolas Dichtel 	struct fib6_config r_cfg;
499051ebd318SNicolas Dichtel 	struct rtnexthop *rtnh;
49918d1c802bSDavid Ahern 	struct fib6_info *rt;
49926b9ea5a6SRoopa Prabhu 	struct rt6_nh *err_nh;
49936b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh, *nh_safe;
49943b1137feSDavid Ahern 	__u16 nlflags;
499551ebd318SNicolas Dichtel 	int remaining;
499651ebd318SNicolas Dichtel 	int attrlen;
49976b9ea5a6SRoopa Prabhu 	int err = 1;
49986b9ea5a6SRoopa Prabhu 	int nhn = 0;
49996b9ea5a6SRoopa Prabhu 	int replace = (cfg->fc_nlinfo.nlh &&
50006b9ea5a6SRoopa Prabhu 		       (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
50016b9ea5a6SRoopa Prabhu 	LIST_HEAD(rt6_nh_list);
500251ebd318SNicolas Dichtel 
50033b1137feSDavid Ahern 	nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
50043b1137feSDavid Ahern 	if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
50053b1137feSDavid Ahern 		nlflags |= NLM_F_APPEND;
50063b1137feSDavid Ahern 
500735f1b4e9SMichal Kubeček 	remaining = cfg->fc_mp_len;
500851ebd318SNicolas Dichtel 	rtnh = (struct rtnexthop *)cfg->fc_mp;
500951ebd318SNicolas Dichtel 
50106b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry and build a list (rt6_nh_list) of
50118d1c802bSDavid Ahern 	 * fib6_info structs per nexthop
50126b9ea5a6SRoopa Prabhu 	 */
501351ebd318SNicolas Dichtel 	while (rtnh_ok(rtnh, remaining)) {
501451ebd318SNicolas Dichtel 		memcpy(&r_cfg, cfg, sizeof(*cfg));
501551ebd318SNicolas Dichtel 		if (rtnh->rtnh_ifindex)
501651ebd318SNicolas Dichtel 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
501751ebd318SNicolas Dichtel 
501851ebd318SNicolas Dichtel 		attrlen = rtnh_attrlen(rtnh);
501951ebd318SNicolas Dichtel 		if (attrlen > 0) {
502051ebd318SNicolas Dichtel 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
502151ebd318SNicolas Dichtel 
502251ebd318SNicolas Dichtel 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
502351ebd318SNicolas Dichtel 			if (nla) {
502467b61f6cSJiri Benc 				r_cfg.fc_gateway = nla_get_in6_addr(nla);
502551ebd318SNicolas Dichtel 				r_cfg.fc_flags |= RTF_GATEWAY;
502651ebd318SNicolas Dichtel 			}
502719e42e45SRoopa Prabhu 			r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
502819e42e45SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
502919e42e45SRoopa Prabhu 			if (nla)
503019e42e45SRoopa Prabhu 				r_cfg.fc_encap_type = nla_get_u16(nla);
503151ebd318SNicolas Dichtel 		}
50326b9ea5a6SRoopa Prabhu 
503368e2ffdeSDavid Ahern 		r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
5034acb54e3cSDavid Ahern 		rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack);
50358c5b83f0SRoopa Prabhu 		if (IS_ERR(rt)) {
50368c5b83f0SRoopa Prabhu 			err = PTR_ERR(rt);
50378c5b83f0SRoopa Prabhu 			rt = NULL;
50386b9ea5a6SRoopa Prabhu 			goto cleanup;
50398c5b83f0SRoopa Prabhu 		}
5040b5d2d75eSDavid Ahern 		if (!rt6_qualify_for_ecmp(rt)) {
5041b5d2d75eSDavid Ahern 			err = -EINVAL;
5042b5d2d75eSDavid Ahern 			NL_SET_ERR_MSG(extack,
5043b5d2d75eSDavid Ahern 				       "Device only routes can not be added for IPv6 using the multipath API.");
5044b5d2d75eSDavid Ahern 			fib6_info_release(rt);
5045b5d2d75eSDavid Ahern 			goto cleanup;
5046b5d2d75eSDavid Ahern 		}
50476b9ea5a6SRoopa Prabhu 
50481cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_weight = rtnh->rtnh_hops + 1;
5049398958aeSIdo Schimmel 
5050d4ead6b3SDavid Ahern 		err = ip6_route_info_append(info->nl_net, &rt6_nh_list,
5051d4ead6b3SDavid Ahern 					    rt, &r_cfg);
505251ebd318SNicolas Dichtel 		if (err) {
505393531c67SDavid Ahern 			fib6_info_release(rt);
50546b9ea5a6SRoopa Prabhu 			goto cleanup;
505551ebd318SNicolas Dichtel 		}
50566b9ea5a6SRoopa Prabhu 
50576b9ea5a6SRoopa Prabhu 		rtnh = rtnh_next(rtnh, &remaining);
505851ebd318SNicolas Dichtel 	}
50596b9ea5a6SRoopa Prabhu 
50609eee3b49SIdo Schimmel 	if (list_empty(&rt6_nh_list)) {
50619eee3b49SIdo Schimmel 		NL_SET_ERR_MSG(extack,
50629eee3b49SIdo Schimmel 			       "Invalid nexthop configuration - no valid nexthops");
50639eee3b49SIdo Schimmel 		return -EINVAL;
50649eee3b49SIdo Schimmel 	}
50659eee3b49SIdo Schimmel 
50663b1137feSDavid Ahern 	/* for add and replace send one notification with all nexthops.
50673b1137feSDavid Ahern 	 * Skip the notification in fib6_add_rt2node and send one with
50683b1137feSDavid Ahern 	 * the full route when done
50693b1137feSDavid Ahern 	 */
50703b1137feSDavid Ahern 	info->skip_notify = 1;
50713b1137feSDavid Ahern 
5072ebee3cadSIdo Schimmel 	/* For add and replace, send one notification with all nexthops. For
5073ebee3cadSIdo Schimmel 	 * append, send one notification with all appended nexthops.
5074ebee3cadSIdo Schimmel 	 */
5075ebee3cadSIdo Schimmel 	info->skip_notify_kernel = 1;
5076ebee3cadSIdo Schimmel 
50776b9ea5a6SRoopa Prabhu 	err_nh = NULL;
50786b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
50798d1c802bSDavid Ahern 		err = __ip6_ins_rt(nh->fib6_info, info, extack);
50808d1c802bSDavid Ahern 		fib6_info_release(nh->fib6_info);
50813b1137feSDavid Ahern 
5082f7225172SDavid Ahern 		if (!err) {
5083f7225172SDavid Ahern 			/* save reference to last route successfully inserted */
5084f7225172SDavid Ahern 			rt_last = nh->fib6_info;
5085f7225172SDavid Ahern 
50866b9ea5a6SRoopa Prabhu 			/* save reference to first route for notification */
5087f7225172SDavid Ahern 			if (!rt_notif)
50888d1c802bSDavid Ahern 				rt_notif = nh->fib6_info;
5089f7225172SDavid Ahern 		}
50906b9ea5a6SRoopa Prabhu 
50918d1c802bSDavid Ahern 		/* nh->fib6_info is used or freed at this point, reset to NULL*/
50928d1c802bSDavid Ahern 		nh->fib6_info = NULL;
50936b9ea5a6SRoopa Prabhu 		if (err) {
50946b9ea5a6SRoopa Prabhu 			if (replace && nhn)
5095a5a82d84SJakub Kicinski 				NL_SET_ERR_MSG_MOD(extack,
5096a5a82d84SJakub Kicinski 						   "multipath route replace failed (check consistency of installed routes)");
50976b9ea5a6SRoopa Prabhu 			err_nh = nh;
50986b9ea5a6SRoopa Prabhu 			goto add_errout;
50996b9ea5a6SRoopa Prabhu 		}
51006b9ea5a6SRoopa Prabhu 
51011a72418bSNicolas Dichtel 		/* Because each route is added like a single route we remove
510227596472SMichal Kubeček 		 * these flags after the first nexthop: if there is a collision,
510327596472SMichal Kubeček 		 * we have already failed to add the first nexthop:
510427596472SMichal Kubeček 		 * fib6_add_rt2node() has rejected it; when replacing, old
510527596472SMichal Kubeček 		 * nexthops have been replaced by first new, the rest should
510627596472SMichal Kubeček 		 * be added to it.
51071a72418bSNicolas Dichtel 		 */
510827596472SMichal Kubeček 		cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
510927596472SMichal Kubeček 						     NLM_F_REPLACE);
51106b9ea5a6SRoopa Prabhu 		nhn++;
51116b9ea5a6SRoopa Prabhu 	}
51126b9ea5a6SRoopa Prabhu 
5113ebee3cadSIdo Schimmel 	event_type = replace ? FIB_EVENT_ENTRY_REPLACE : FIB_EVENT_ENTRY_ADD;
5114ebee3cadSIdo Schimmel 	err = call_fib6_multipath_entry_notifiers(info->nl_net, event_type,
5115ebee3cadSIdo Schimmel 						  rt_notif, nhn - 1, extack);
5116ebee3cadSIdo Schimmel 	if (err) {
5117ebee3cadSIdo Schimmel 		/* Delete all the siblings that were just added */
5118ebee3cadSIdo Schimmel 		err_nh = NULL;
5119ebee3cadSIdo Schimmel 		goto add_errout;
5120ebee3cadSIdo Schimmel 	}
5121ebee3cadSIdo Schimmel 
51223b1137feSDavid Ahern 	/* success ... tell user about new route */
51233b1137feSDavid Ahern 	ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
51246b9ea5a6SRoopa Prabhu 	goto cleanup;
51256b9ea5a6SRoopa Prabhu 
51266b9ea5a6SRoopa Prabhu add_errout:
51273b1137feSDavid Ahern 	/* send notification for routes that were added so that
51283b1137feSDavid Ahern 	 * the delete notifications sent by ip6_route_del are
51293b1137feSDavid Ahern 	 * coherent
51303b1137feSDavid Ahern 	 */
51313b1137feSDavid Ahern 	if (rt_notif)
51323b1137feSDavid Ahern 		ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
51333b1137feSDavid Ahern 
51346b9ea5a6SRoopa Prabhu 	/* Delete routes that were already added */
51356b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
51366b9ea5a6SRoopa Prabhu 		if (err_nh == nh)
51376b9ea5a6SRoopa Prabhu 			break;
5138333c4301SDavid Ahern 		ip6_route_del(&nh->r_cfg, extack);
51396b9ea5a6SRoopa Prabhu 	}
51406b9ea5a6SRoopa Prabhu 
51416b9ea5a6SRoopa Prabhu cleanup:
51426b9ea5a6SRoopa Prabhu 	list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
51438d1c802bSDavid Ahern 		if (nh->fib6_info)
51448d1c802bSDavid Ahern 			fib6_info_release(nh->fib6_info);
51456b9ea5a6SRoopa Prabhu 		list_del(&nh->next);
51466b9ea5a6SRoopa Prabhu 		kfree(nh);
51476b9ea5a6SRoopa Prabhu 	}
51486b9ea5a6SRoopa Prabhu 
51496b9ea5a6SRoopa Prabhu 	return err;
51506b9ea5a6SRoopa Prabhu }
51516b9ea5a6SRoopa Prabhu 
5152333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg,
5153333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
51546b9ea5a6SRoopa Prabhu {
51556b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
51566b9ea5a6SRoopa Prabhu 	struct rtnexthop *rtnh;
51576b9ea5a6SRoopa Prabhu 	int remaining;
51586b9ea5a6SRoopa Prabhu 	int attrlen;
51596b9ea5a6SRoopa Prabhu 	int err = 1, last_err = 0;
51606b9ea5a6SRoopa Prabhu 
51616b9ea5a6SRoopa Prabhu 	remaining = cfg->fc_mp_len;
51626b9ea5a6SRoopa Prabhu 	rtnh = (struct rtnexthop *)cfg->fc_mp;
51636b9ea5a6SRoopa Prabhu 
51646b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry */
51656b9ea5a6SRoopa Prabhu 	while (rtnh_ok(rtnh, remaining)) {
51666b9ea5a6SRoopa Prabhu 		memcpy(&r_cfg, cfg, sizeof(*cfg));
51676b9ea5a6SRoopa Prabhu 		if (rtnh->rtnh_ifindex)
51686b9ea5a6SRoopa Prabhu 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
51696b9ea5a6SRoopa Prabhu 
51706b9ea5a6SRoopa Prabhu 		attrlen = rtnh_attrlen(rtnh);
51716b9ea5a6SRoopa Prabhu 		if (attrlen > 0) {
51726b9ea5a6SRoopa Prabhu 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
51736b9ea5a6SRoopa Prabhu 
51746b9ea5a6SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
51756b9ea5a6SRoopa Prabhu 			if (nla) {
51766b9ea5a6SRoopa Prabhu 				nla_memcpy(&r_cfg.fc_gateway, nla, 16);
51776b9ea5a6SRoopa Prabhu 				r_cfg.fc_flags |= RTF_GATEWAY;
51786b9ea5a6SRoopa Prabhu 			}
51796b9ea5a6SRoopa Prabhu 		}
5180333c4301SDavid Ahern 		err = ip6_route_del(&r_cfg, extack);
51816b9ea5a6SRoopa Prabhu 		if (err)
51826b9ea5a6SRoopa Prabhu 			last_err = err;
51836b9ea5a6SRoopa Prabhu 
518451ebd318SNicolas Dichtel 		rtnh = rtnh_next(rtnh, &remaining);
518551ebd318SNicolas Dichtel 	}
518651ebd318SNicolas Dichtel 
518751ebd318SNicolas Dichtel 	return last_err;
518851ebd318SNicolas Dichtel }
518951ebd318SNicolas Dichtel 
5190c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
5191c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
51921da177e4SLinus Torvalds {
519386872cb5SThomas Graf 	struct fib6_config cfg;
519486872cb5SThomas Graf 	int err;
51951da177e4SLinus Torvalds 
5196333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
519786872cb5SThomas Graf 	if (err < 0)
519886872cb5SThomas Graf 		return err;
519986872cb5SThomas Graf 
52005b98324eSDavid Ahern 	if (cfg.fc_nh_id &&
52015b98324eSDavid Ahern 	    !nexthop_find_by_id(sock_net(skb->sk), cfg.fc_nh_id)) {
52025b98324eSDavid Ahern 		NL_SET_ERR_MSG(extack, "Nexthop id does not exist");
52035b98324eSDavid Ahern 		return -EINVAL;
52045b98324eSDavid Ahern 	}
52055b98324eSDavid Ahern 
520651ebd318SNicolas Dichtel 	if (cfg.fc_mp)
5207333c4301SDavid Ahern 		return ip6_route_multipath_del(&cfg, extack);
52080ae81335SDavid Ahern 	else {
52090ae81335SDavid Ahern 		cfg.fc_delete_all_nh = 1;
5210333c4301SDavid Ahern 		return ip6_route_del(&cfg, extack);
52111da177e4SLinus Torvalds 	}
52120ae81335SDavid Ahern }
52131da177e4SLinus Torvalds 
5214c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
5215c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
52161da177e4SLinus Torvalds {
521786872cb5SThomas Graf 	struct fib6_config cfg;
521886872cb5SThomas Graf 	int err;
52191da177e4SLinus Torvalds 
5220333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
522186872cb5SThomas Graf 	if (err < 0)
522286872cb5SThomas Graf 		return err;
522386872cb5SThomas Graf 
522467f69513SDavid Ahern 	if (cfg.fc_metric == 0)
522567f69513SDavid Ahern 		cfg.fc_metric = IP6_RT_PRIO_USER;
522667f69513SDavid Ahern 
522751ebd318SNicolas Dichtel 	if (cfg.fc_mp)
5228333c4301SDavid Ahern 		return ip6_route_multipath_add(&cfg, extack);
522951ebd318SNicolas Dichtel 	else
5230acb54e3cSDavid Ahern 		return ip6_route_add(&cfg, GFP_KERNEL, extack);
52311da177e4SLinus Torvalds }
52321da177e4SLinus Torvalds 
5233a1b7a1f0SDavid Ahern /* add the overhead of this fib6_nh to nexthop_len */
5234a1b7a1f0SDavid Ahern static int rt6_nh_nlmsg_size(struct fib6_nh *nh, void *arg)
5235339bf98fSThomas Graf {
5236a1b7a1f0SDavid Ahern 	int *nexthop_len = arg;
5237beb1afacSDavid Ahern 
5238a1b7a1f0SDavid Ahern 	*nexthop_len += nla_total_size(0)	 /* RTA_MULTIPATH */
5239a1b7a1f0SDavid Ahern 		     + NLA_ALIGN(sizeof(struct rtnexthop))
5240a1b7a1f0SDavid Ahern 		     + nla_total_size(16); /* RTA_GATEWAY */
5241f88d8ea6SDavid Ahern 
5242a1b7a1f0SDavid Ahern 	if (nh->fib_nh_lws) {
5243a1b7a1f0SDavid Ahern 		/* RTA_ENCAP_TYPE */
5244a1b7a1f0SDavid Ahern 		*nexthop_len += lwtunnel_get_encap_size(nh->fib_nh_lws);
5245a1b7a1f0SDavid Ahern 		/* RTA_ENCAP */
5246a1b7a1f0SDavid Ahern 		*nexthop_len += nla_total_size(2);
5247a1b7a1f0SDavid Ahern 	}
5248a1b7a1f0SDavid Ahern 
5249a1b7a1f0SDavid Ahern 	return 0;
5250a1b7a1f0SDavid Ahern }
5251a1b7a1f0SDavid Ahern 
5252a1b7a1f0SDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *f6i)
5253a1b7a1f0SDavid Ahern {
5254a1b7a1f0SDavid Ahern 	int nexthop_len;
5255a1b7a1f0SDavid Ahern 
5256a1b7a1f0SDavid Ahern 	if (f6i->nh) {
5257a1b7a1f0SDavid Ahern 		nexthop_len = nla_total_size(4); /* RTA_NH_ID */
5258a1b7a1f0SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_nlmsg_size,
5259a1b7a1f0SDavid Ahern 					 &nexthop_len);
5260a1b7a1f0SDavid Ahern 	} else {
5261a1b7a1f0SDavid Ahern 		struct fib6_nh *nh = f6i->fib6_nh;
5262a1b7a1f0SDavid Ahern 
5263a1b7a1f0SDavid Ahern 		nexthop_len = 0;
5264a1b7a1f0SDavid Ahern 		if (f6i->fib6_nsiblings) {
5265beb1afacSDavid Ahern 			nexthop_len = nla_total_size(0)	 /* RTA_MULTIPATH */
5266beb1afacSDavid Ahern 				    + NLA_ALIGN(sizeof(struct rtnexthop))
5267beb1afacSDavid Ahern 				    + nla_total_size(16) /* RTA_GATEWAY */
5268a1b7a1f0SDavid Ahern 				    + lwtunnel_get_encap_size(nh->fib_nh_lws);
5269beb1afacSDavid Ahern 
5270a1b7a1f0SDavid Ahern 			nexthop_len *= f6i->fib6_nsiblings;
5271a1b7a1f0SDavid Ahern 		}
5272a1b7a1f0SDavid Ahern 		nexthop_len += lwtunnel_get_encap_size(nh->fib_nh_lws);
5273beb1afacSDavid Ahern 	}
5274beb1afacSDavid Ahern 
5275339bf98fSThomas Graf 	return NLMSG_ALIGN(sizeof(struct rtmsg))
5276339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_SRC */
5277339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_DST */
5278339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_GATEWAY */
5279339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_PREFSRC */
5280339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_TABLE */
5281339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_IIF */
5282339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_OIF */
5283339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_PRIORITY */
52846a2b9ce0SNoriaki TAKAMIYA 	       + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
5285ea697639SDaniel Borkmann 	       + nla_total_size(sizeof(struct rta_cacheinfo))
5286c78ba6d6SLubomir Rintel 	       + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
528719e42e45SRoopa Prabhu 	       + nla_total_size(1) /* RTA_PREF */
5288beb1afacSDavid Ahern 	       + nexthop_len;
5289beb1afacSDavid Ahern }
5290beb1afacSDavid Ahern 
5291f88d8ea6SDavid Ahern static int rt6_fill_node_nexthop(struct sk_buff *skb, struct nexthop *nh,
5292f88d8ea6SDavid Ahern 				 unsigned char *flags)
5293f88d8ea6SDavid Ahern {
5294f88d8ea6SDavid Ahern 	if (nexthop_is_multipath(nh)) {
5295f88d8ea6SDavid Ahern 		struct nlattr *mp;
5296f88d8ea6SDavid Ahern 
5297f88d8ea6SDavid Ahern 		mp = nla_nest_start(skb, RTA_MULTIPATH);
5298f88d8ea6SDavid Ahern 		if (!mp)
5299f88d8ea6SDavid Ahern 			goto nla_put_failure;
5300f88d8ea6SDavid Ahern 
5301f88d8ea6SDavid Ahern 		if (nexthop_mpath_fill_node(skb, nh))
5302f88d8ea6SDavid Ahern 			goto nla_put_failure;
5303f88d8ea6SDavid Ahern 
5304f88d8ea6SDavid Ahern 		nla_nest_end(skb, mp);
5305f88d8ea6SDavid Ahern 	} else {
5306f88d8ea6SDavid Ahern 		struct fib6_nh *fib6_nh;
5307f88d8ea6SDavid Ahern 
5308f88d8ea6SDavid Ahern 		fib6_nh = nexthop_fib6_nh(nh);
5309f88d8ea6SDavid Ahern 		if (fib_nexthop_info(skb, &fib6_nh->nh_common,
5310f88d8ea6SDavid Ahern 				     flags, false) < 0)
5311f88d8ea6SDavid Ahern 			goto nla_put_failure;
5312f88d8ea6SDavid Ahern 	}
5313f88d8ea6SDavid Ahern 
5314f88d8ea6SDavid Ahern 	return 0;
5315f88d8ea6SDavid Ahern 
5316f88d8ea6SDavid Ahern nla_put_failure:
5317f88d8ea6SDavid Ahern 	return -EMSGSIZE;
5318f88d8ea6SDavid Ahern }
5319f88d8ea6SDavid Ahern 
5320d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb,
53218d1c802bSDavid Ahern 			 struct fib6_info *rt, struct dst_entry *dst,
5322d4ead6b3SDavid Ahern 			 struct in6_addr *dest, struct in6_addr *src,
532315e47304SEric W. Biederman 			 int iif, int type, u32 portid, u32 seq,
5324f8cfe2ceSDavid Ahern 			 unsigned int flags)
53251da177e4SLinus Torvalds {
532622d0bd82SXin Long 	struct rt6_info *rt6 = (struct rt6_info *)dst;
532722d0bd82SXin Long 	struct rt6key *rt6_dst, *rt6_src;
532822d0bd82SXin Long 	u32 *pmetrics, table, rt6_flags;
5329f88d8ea6SDavid Ahern 	unsigned char nh_flags = 0;
53301da177e4SLinus Torvalds 	struct nlmsghdr *nlh;
533122d0bd82SXin Long 	struct rtmsg *rtm;
5332d4ead6b3SDavid Ahern 	long expires = 0;
53331da177e4SLinus Torvalds 
533415e47304SEric W. Biederman 	nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
533538308473SDavid S. Miller 	if (!nlh)
533626932566SPatrick McHardy 		return -EMSGSIZE;
53372d7202bfSThomas Graf 
533822d0bd82SXin Long 	if (rt6) {
533922d0bd82SXin Long 		rt6_dst = &rt6->rt6i_dst;
534022d0bd82SXin Long 		rt6_src = &rt6->rt6i_src;
534122d0bd82SXin Long 		rt6_flags = rt6->rt6i_flags;
534222d0bd82SXin Long 	} else {
534322d0bd82SXin Long 		rt6_dst = &rt->fib6_dst;
534422d0bd82SXin Long 		rt6_src = &rt->fib6_src;
534522d0bd82SXin Long 		rt6_flags = rt->fib6_flags;
534622d0bd82SXin Long 	}
534722d0bd82SXin Long 
53482d7202bfSThomas Graf 	rtm = nlmsg_data(nlh);
53491da177e4SLinus Torvalds 	rtm->rtm_family = AF_INET6;
535022d0bd82SXin Long 	rtm->rtm_dst_len = rt6_dst->plen;
535122d0bd82SXin Long 	rtm->rtm_src_len = rt6_src->plen;
53521da177e4SLinus Torvalds 	rtm->rtm_tos = 0;
535393c2fb25SDavid Ahern 	if (rt->fib6_table)
535493c2fb25SDavid Ahern 		table = rt->fib6_table->tb6_id;
5355c71099acSThomas Graf 	else
53569e762a4aSPatrick McHardy 		table = RT6_TABLE_UNSPEC;
535797f0082aSKalash Nainwal 	rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT;
5358c78679e8SDavid S. Miller 	if (nla_put_u32(skb, RTA_TABLE, table))
5359c78679e8SDavid S. Miller 		goto nla_put_failure;
5360e8478e80SDavid Ahern 
5361e8478e80SDavid Ahern 	rtm->rtm_type = rt->fib6_type;
53621da177e4SLinus Torvalds 	rtm->rtm_flags = 0;
53631da177e4SLinus Torvalds 	rtm->rtm_scope = RT_SCOPE_UNIVERSE;
536493c2fb25SDavid Ahern 	rtm->rtm_protocol = rt->fib6_protocol;
53651da177e4SLinus Torvalds 
536622d0bd82SXin Long 	if (rt6_flags & RTF_CACHE)
53671da177e4SLinus Torvalds 		rtm->rtm_flags |= RTM_F_CLONED;
53681da177e4SLinus Torvalds 
5369d4ead6b3SDavid Ahern 	if (dest) {
5370d4ead6b3SDavid Ahern 		if (nla_put_in6_addr(skb, RTA_DST, dest))
5371c78679e8SDavid S. Miller 			goto nla_put_failure;
53721da177e4SLinus Torvalds 		rtm->rtm_dst_len = 128;
53731da177e4SLinus Torvalds 	} else if (rtm->rtm_dst_len)
537422d0bd82SXin Long 		if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr))
5375c78679e8SDavid S. Miller 			goto nla_put_failure;
53761da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
53771da177e4SLinus Torvalds 	if (src) {
5378930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_SRC, src))
5379c78679e8SDavid S. Miller 			goto nla_put_failure;
53801da177e4SLinus Torvalds 		rtm->rtm_src_len = 128;
5381c78679e8SDavid S. Miller 	} else if (rtm->rtm_src_len &&
538222d0bd82SXin Long 		   nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr))
5383c78679e8SDavid S. Miller 		goto nla_put_failure;
53841da177e4SLinus Torvalds #endif
53857bc570c8SYOSHIFUJI Hideaki 	if (iif) {
53867bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE
538722d0bd82SXin Long 		if (ipv6_addr_is_multicast(&rt6_dst->addr)) {
5388fd61c6baSDavid Ahern 			int err = ip6mr_get_route(net, skb, rtm, portid);
53892cf75070SNikolay Aleksandrov 
53907bc570c8SYOSHIFUJI Hideaki 			if (err == 0)
53917bc570c8SYOSHIFUJI Hideaki 				return 0;
5392fd61c6baSDavid Ahern 			if (err < 0)
53937bc570c8SYOSHIFUJI Hideaki 				goto nla_put_failure;
53947bc570c8SYOSHIFUJI Hideaki 		} else
53957bc570c8SYOSHIFUJI Hideaki #endif
5396c78679e8SDavid S. Miller 			if (nla_put_u32(skb, RTA_IIF, iif))
5397c78679e8SDavid S. Miller 				goto nla_put_failure;
5398d4ead6b3SDavid Ahern 	} else if (dest) {
53991da177e4SLinus Torvalds 		struct in6_addr saddr_buf;
5400d4ead6b3SDavid Ahern 		if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 &&
5401930345eaSJiri Benc 		    nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
5402c78679e8SDavid S. Miller 			goto nla_put_failure;
5403c3968a85SDaniel Walter 	}
5404c3968a85SDaniel Walter 
540593c2fb25SDavid Ahern 	if (rt->fib6_prefsrc.plen) {
5406c3968a85SDaniel Walter 		struct in6_addr saddr_buf;
540793c2fb25SDavid Ahern 		saddr_buf = rt->fib6_prefsrc.addr;
5408930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
5409c78679e8SDavid S. Miller 			goto nla_put_failure;
54101da177e4SLinus Torvalds 	}
54112d7202bfSThomas Graf 
5412d4ead6b3SDavid Ahern 	pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics;
5413d4ead6b3SDavid Ahern 	if (rtnetlink_put_metrics(skb, pmetrics) < 0)
54142d7202bfSThomas Graf 		goto nla_put_failure;
54152d7202bfSThomas Graf 
541693c2fb25SDavid Ahern 	if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric))
5417beb1afacSDavid Ahern 		goto nla_put_failure;
5418beb1afacSDavid Ahern 
5419beb1afacSDavid Ahern 	/* For multipath routes, walk the siblings list and add
5420beb1afacSDavid Ahern 	 * each as a nexthop within RTA_MULTIPATH.
5421beb1afacSDavid Ahern 	 */
542222d0bd82SXin Long 	if (rt6) {
542322d0bd82SXin Long 		if (rt6_flags & RTF_GATEWAY &&
542422d0bd82SXin Long 		    nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway))
542522d0bd82SXin Long 			goto nla_put_failure;
542622d0bd82SXin Long 
542722d0bd82SXin Long 		if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex))
542822d0bd82SXin Long 			goto nla_put_failure;
542922d0bd82SXin Long 	} else if (rt->fib6_nsiblings) {
54308d1c802bSDavid Ahern 		struct fib6_info *sibling, *next_sibling;
5431beb1afacSDavid Ahern 		struct nlattr *mp;
5432beb1afacSDavid Ahern 
5433ae0be8deSMichal Kubecek 		mp = nla_nest_start_noflag(skb, RTA_MULTIPATH);
5434beb1afacSDavid Ahern 		if (!mp)
5435beb1afacSDavid Ahern 			goto nla_put_failure;
5436beb1afacSDavid Ahern 
54371cf844c7SDavid Ahern 		if (fib_add_nexthop(skb, &rt->fib6_nh->nh_common,
54381cf844c7SDavid Ahern 				    rt->fib6_nh->fib_nh_weight) < 0)
5439beb1afacSDavid Ahern 			goto nla_put_failure;
5440beb1afacSDavid Ahern 
5441beb1afacSDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
544293c2fb25SDavid Ahern 					 &rt->fib6_siblings, fib6_siblings) {
54431cf844c7SDavid Ahern 			if (fib_add_nexthop(skb, &sibling->fib6_nh->nh_common,
54441cf844c7SDavid Ahern 					    sibling->fib6_nh->fib_nh_weight) < 0)
544594f826b8SEric Dumazet 				goto nla_put_failure;
544694f826b8SEric Dumazet 		}
54472d7202bfSThomas Graf 
5448beb1afacSDavid Ahern 		nla_nest_end(skb, mp);
5449f88d8ea6SDavid Ahern 	} else if (rt->nh) {
5450f88d8ea6SDavid Ahern 		if (nla_put_u32(skb, RTA_NH_ID, rt->nh->id))
5451f88d8ea6SDavid Ahern 			goto nla_put_failure;
5452ecc5663cSDavid Ahern 
5453f88d8ea6SDavid Ahern 		if (nexthop_is_blackhole(rt->nh))
5454f88d8ea6SDavid Ahern 			rtm->rtm_type = RTN_BLACKHOLE;
5455f88d8ea6SDavid Ahern 
5456f88d8ea6SDavid Ahern 		if (rt6_fill_node_nexthop(skb, rt->nh, &nh_flags) < 0)
5457f88d8ea6SDavid Ahern 			goto nla_put_failure;
5458f88d8ea6SDavid Ahern 
5459f88d8ea6SDavid Ahern 		rtm->rtm_flags |= nh_flags;
5460f88d8ea6SDavid Ahern 	} else {
54611cf844c7SDavid Ahern 		if (fib_nexthop_info(skb, &rt->fib6_nh->nh_common,
5462ecc5663cSDavid Ahern 				     &nh_flags, false) < 0)
5463c78679e8SDavid S. Miller 			goto nla_put_failure;
5464ecc5663cSDavid Ahern 
5465ecc5663cSDavid Ahern 		rtm->rtm_flags |= nh_flags;
5466beb1afacSDavid Ahern 	}
54678253947eSLi Wei 
546822d0bd82SXin Long 	if (rt6_flags & RTF_EXPIRES) {
546914895687SDavid Ahern 		expires = dst ? dst->expires : rt->expires;
547014895687SDavid Ahern 		expires -= jiffies;
547114895687SDavid Ahern 	}
547269cdf8f9SYOSHIFUJI Hideaki 
5473d4ead6b3SDavid Ahern 	if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0)
5474e3703b3dSThomas Graf 		goto nla_put_failure;
54751da177e4SLinus Torvalds 
547622d0bd82SXin Long 	if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags)))
5477c78ba6d6SLubomir Rintel 		goto nla_put_failure;
5478c78ba6d6SLubomir Rintel 
547919e42e45SRoopa Prabhu 
5480053c095aSJohannes Berg 	nlmsg_end(skb, nlh);
5481053c095aSJohannes Berg 	return 0;
54822d7202bfSThomas Graf 
54832d7202bfSThomas Graf nla_put_failure:
548426932566SPatrick McHardy 	nlmsg_cancel(skb, nlh);
548526932566SPatrick McHardy 	return -EMSGSIZE;
54861da177e4SLinus Torvalds }
54871da177e4SLinus Torvalds 
54882c170e07SDavid Ahern static int fib6_info_nh_uses_dev(struct fib6_nh *nh, void *arg)
54892c170e07SDavid Ahern {
54902c170e07SDavid Ahern 	const struct net_device *dev = arg;
54912c170e07SDavid Ahern 
54922c170e07SDavid Ahern 	if (nh->fib_nh_dev == dev)
54932c170e07SDavid Ahern 		return 1;
54942c170e07SDavid Ahern 
54952c170e07SDavid Ahern 	return 0;
54962c170e07SDavid Ahern }
54972c170e07SDavid Ahern 
549813e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i,
549913e38901SDavid Ahern 			       const struct net_device *dev)
550013e38901SDavid Ahern {
55012c170e07SDavid Ahern 	if (f6i->nh) {
55022c170e07SDavid Ahern 		struct net_device *_dev = (struct net_device *)dev;
55032c170e07SDavid Ahern 
55042c170e07SDavid Ahern 		return !!nexthop_for_each_fib6_nh(f6i->nh,
55052c170e07SDavid Ahern 						  fib6_info_nh_uses_dev,
55062c170e07SDavid Ahern 						  _dev);
55072c170e07SDavid Ahern 	}
55082c170e07SDavid Ahern 
55091cf844c7SDavid Ahern 	if (f6i->fib6_nh->fib_nh_dev == dev)
551013e38901SDavid Ahern 		return true;
551113e38901SDavid Ahern 
551213e38901SDavid Ahern 	if (f6i->fib6_nsiblings) {
551313e38901SDavid Ahern 		struct fib6_info *sibling, *next_sibling;
551413e38901SDavid Ahern 
551513e38901SDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
551613e38901SDavid Ahern 					 &f6i->fib6_siblings, fib6_siblings) {
55171cf844c7SDavid Ahern 			if (sibling->fib6_nh->fib_nh_dev == dev)
551813e38901SDavid Ahern 				return true;
551913e38901SDavid Ahern 		}
552013e38901SDavid Ahern 	}
552113e38901SDavid Ahern 
552213e38901SDavid Ahern 	return false;
552313e38901SDavid Ahern }
552413e38901SDavid Ahern 
55251e47b483SStefano Brivio struct fib6_nh_exception_dump_walker {
55261e47b483SStefano Brivio 	struct rt6_rtnl_dump_arg *dump;
55271e47b483SStefano Brivio 	struct fib6_info *rt;
55281e47b483SStefano Brivio 	unsigned int flags;
55291e47b483SStefano Brivio 	unsigned int skip;
55301e47b483SStefano Brivio 	unsigned int count;
55311e47b483SStefano Brivio };
55321e47b483SStefano Brivio 
55331e47b483SStefano Brivio static int rt6_nh_dump_exceptions(struct fib6_nh *nh, void *arg)
55341e47b483SStefano Brivio {
55351e47b483SStefano Brivio 	struct fib6_nh_exception_dump_walker *w = arg;
55361e47b483SStefano Brivio 	struct rt6_rtnl_dump_arg *dump = w->dump;
55371e47b483SStefano Brivio 	struct rt6_exception_bucket *bucket;
55381e47b483SStefano Brivio 	struct rt6_exception *rt6_ex;
55391e47b483SStefano Brivio 	int i, err;
55401e47b483SStefano Brivio 
55411e47b483SStefano Brivio 	bucket = fib6_nh_get_excptn_bucket(nh, NULL);
55421e47b483SStefano Brivio 	if (!bucket)
55431e47b483SStefano Brivio 		return 0;
55441e47b483SStefano Brivio 
55451e47b483SStefano Brivio 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
55461e47b483SStefano Brivio 		hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
55471e47b483SStefano Brivio 			if (w->skip) {
55481e47b483SStefano Brivio 				w->skip--;
55491e47b483SStefano Brivio 				continue;
55501e47b483SStefano Brivio 			}
55511e47b483SStefano Brivio 
55521e47b483SStefano Brivio 			/* Expiration of entries doesn't bump sernum, insertion
55531e47b483SStefano Brivio 			 * does. Removal is triggered by insertion, so we can
55541e47b483SStefano Brivio 			 * rely on the fact that if entries change between two
55551e47b483SStefano Brivio 			 * partial dumps, this node is scanned again completely,
55561e47b483SStefano Brivio 			 * see rt6_insert_exception() and fib6_dump_table().
55571e47b483SStefano Brivio 			 *
55581e47b483SStefano Brivio 			 * Count expired entries we go through as handled
55591e47b483SStefano Brivio 			 * entries that we'll skip next time, in case of partial
55601e47b483SStefano Brivio 			 * node dump. Otherwise, if entries expire meanwhile,
55611e47b483SStefano Brivio 			 * we'll skip the wrong amount.
55621e47b483SStefano Brivio 			 */
55631e47b483SStefano Brivio 			if (rt6_check_expired(rt6_ex->rt6i)) {
55641e47b483SStefano Brivio 				w->count++;
55651e47b483SStefano Brivio 				continue;
55661e47b483SStefano Brivio 			}
55671e47b483SStefano Brivio 
55681e47b483SStefano Brivio 			err = rt6_fill_node(dump->net, dump->skb, w->rt,
55691e47b483SStefano Brivio 					    &rt6_ex->rt6i->dst, NULL, NULL, 0,
55701e47b483SStefano Brivio 					    RTM_NEWROUTE,
55711e47b483SStefano Brivio 					    NETLINK_CB(dump->cb->skb).portid,
55721e47b483SStefano Brivio 					    dump->cb->nlh->nlmsg_seq, w->flags);
55731e47b483SStefano Brivio 			if (err)
55741e47b483SStefano Brivio 				return err;
55751e47b483SStefano Brivio 
55761e47b483SStefano Brivio 			w->count++;
55771e47b483SStefano Brivio 		}
55781e47b483SStefano Brivio 		bucket++;
55791e47b483SStefano Brivio 	}
55801e47b483SStefano Brivio 
55811e47b483SStefano Brivio 	return 0;
55821e47b483SStefano Brivio }
55831e47b483SStefano Brivio 
5584bf9a8a06SStefano Brivio /* Return -1 if done with node, number of handled routes on partial dump */
55851e47b483SStefano Brivio int rt6_dump_route(struct fib6_info *rt, void *p_arg, unsigned int skip)
55861da177e4SLinus Torvalds {
55871da177e4SLinus Torvalds 	struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
558813e38901SDavid Ahern 	struct fib_dump_filter *filter = &arg->filter;
558913e38901SDavid Ahern 	unsigned int flags = NLM_F_MULTI;
55901f17e2f2SDavid Ahern 	struct net *net = arg->net;
55911e47b483SStefano Brivio 	int count = 0;
55921f17e2f2SDavid Ahern 
5593421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry)
5594bf9a8a06SStefano Brivio 		return -1;
55951da177e4SLinus Torvalds 
559613e38901SDavid Ahern 	if ((filter->flags & RTM_F_PREFIX) &&
559793c2fb25SDavid Ahern 	    !(rt->fib6_flags & RTF_PREFIX_RT)) {
5598f8cfe2ceSDavid Ahern 		/* success since this is not a prefix route */
5599bf9a8a06SStefano Brivio 		return -1;
5600f8cfe2ceSDavid Ahern 	}
56011e47b483SStefano Brivio 	if (filter->filter_set &&
56021e47b483SStefano Brivio 	    ((filter->rt_type  && rt->fib6_type != filter->rt_type) ||
560313e38901SDavid Ahern 	     (filter->dev      && !fib6_info_uses_dev(rt, filter->dev)) ||
56041e47b483SStefano Brivio 	     (filter->protocol && rt->fib6_protocol != filter->protocol))) {
5605bf9a8a06SStefano Brivio 		return -1;
560613e38901SDavid Ahern 	}
56071e47b483SStefano Brivio 
56081e47b483SStefano Brivio 	if (filter->filter_set ||
56091e47b483SStefano Brivio 	    !filter->dump_routes || !filter->dump_exceptions) {
561013e38901SDavid Ahern 		flags |= NLM_F_DUMP_FILTERED;
5611f8cfe2ceSDavid Ahern 	}
56121da177e4SLinus Torvalds 
56131e47b483SStefano Brivio 	if (filter->dump_routes) {
56141e47b483SStefano Brivio 		if (skip) {
56151e47b483SStefano Brivio 			skip--;
56161e47b483SStefano Brivio 		} else {
56171e47b483SStefano Brivio 			if (rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL,
56181e47b483SStefano Brivio 					  0, RTM_NEWROUTE,
5619bf9a8a06SStefano Brivio 					  NETLINK_CB(arg->cb->skb).portid,
56201e47b483SStefano Brivio 					  arg->cb->nlh->nlmsg_seq, flags)) {
5621bf9a8a06SStefano Brivio 				return 0;
56221e47b483SStefano Brivio 			}
56231e47b483SStefano Brivio 			count++;
56241e47b483SStefano Brivio 		}
56251e47b483SStefano Brivio 	}
56261e47b483SStefano Brivio 
56271e47b483SStefano Brivio 	if (filter->dump_exceptions) {
56281e47b483SStefano Brivio 		struct fib6_nh_exception_dump_walker w = { .dump = arg,
56291e47b483SStefano Brivio 							   .rt = rt,
56301e47b483SStefano Brivio 							   .flags = flags,
56311e47b483SStefano Brivio 							   .skip = skip,
56321e47b483SStefano Brivio 							   .count = 0 };
56331e47b483SStefano Brivio 		int err;
56341e47b483SStefano Brivio 
5635*3b525691SEric Dumazet 		rcu_read_lock();
56361e47b483SStefano Brivio 		if (rt->nh) {
56371e47b483SStefano Brivio 			err = nexthop_for_each_fib6_nh(rt->nh,
56381e47b483SStefano Brivio 						       rt6_nh_dump_exceptions,
56391e47b483SStefano Brivio 						       &w);
56401e47b483SStefano Brivio 		} else {
56411e47b483SStefano Brivio 			err = rt6_nh_dump_exceptions(rt->fib6_nh, &w);
56421e47b483SStefano Brivio 		}
5643*3b525691SEric Dumazet 		rcu_read_unlock();
56441e47b483SStefano Brivio 
56451e47b483SStefano Brivio 		if (err)
56461e47b483SStefano Brivio 			return count += w.count;
56471e47b483SStefano Brivio 	}
5648bf9a8a06SStefano Brivio 
5649bf9a8a06SStefano Brivio 	return -1;
56501da177e4SLinus Torvalds }
56511da177e4SLinus Torvalds 
56520eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb,
56530eff0a27SJakub Kicinski 					const struct nlmsghdr *nlh,
56540eff0a27SJakub Kicinski 					struct nlattr **tb,
56550eff0a27SJakub Kicinski 					struct netlink_ext_ack *extack)
56560eff0a27SJakub Kicinski {
56570eff0a27SJakub Kicinski 	struct rtmsg *rtm;
56580eff0a27SJakub Kicinski 	int i, err;
56590eff0a27SJakub Kicinski 
56600eff0a27SJakub Kicinski 	if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) {
56610eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack,
56620eff0a27SJakub Kicinski 				   "Invalid header for get route request");
56630eff0a27SJakub Kicinski 		return -EINVAL;
56640eff0a27SJakub Kicinski 	}
56650eff0a27SJakub Kicinski 
56660eff0a27SJakub Kicinski 	if (!netlink_strict_get_check(skb))
56678cb08174SJohannes Berg 		return nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX,
56680eff0a27SJakub Kicinski 					      rtm_ipv6_policy, extack);
56690eff0a27SJakub Kicinski 
56700eff0a27SJakub Kicinski 	rtm = nlmsg_data(nlh);
56710eff0a27SJakub Kicinski 	if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) ||
56720eff0a27SJakub Kicinski 	    (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) ||
56730eff0a27SJakub Kicinski 	    rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope ||
56740eff0a27SJakub Kicinski 	    rtm->rtm_type) {
56750eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request");
56760eff0a27SJakub Kicinski 		return -EINVAL;
56770eff0a27SJakub Kicinski 	}
56780eff0a27SJakub Kicinski 	if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) {
56790eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack,
56800eff0a27SJakub Kicinski 				   "Invalid flags for get route request");
56810eff0a27SJakub Kicinski 		return -EINVAL;
56820eff0a27SJakub Kicinski 	}
56830eff0a27SJakub Kicinski 
56848cb08174SJohannes Berg 	err = nlmsg_parse_deprecated_strict(nlh, sizeof(*rtm), tb, RTA_MAX,
56850eff0a27SJakub Kicinski 					    rtm_ipv6_policy, extack);
56860eff0a27SJakub Kicinski 	if (err)
56870eff0a27SJakub Kicinski 		return err;
56880eff0a27SJakub Kicinski 
56890eff0a27SJakub Kicinski 	if ((tb[RTA_SRC] && !rtm->rtm_src_len) ||
56900eff0a27SJakub Kicinski 	    (tb[RTA_DST] && !rtm->rtm_dst_len)) {
56910eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6");
56920eff0a27SJakub Kicinski 		return -EINVAL;
56930eff0a27SJakub Kicinski 	}
56940eff0a27SJakub Kicinski 
56950eff0a27SJakub Kicinski 	for (i = 0; i <= RTA_MAX; i++) {
56960eff0a27SJakub Kicinski 		if (!tb[i])
56970eff0a27SJakub Kicinski 			continue;
56980eff0a27SJakub Kicinski 
56990eff0a27SJakub Kicinski 		switch (i) {
57000eff0a27SJakub Kicinski 		case RTA_SRC:
57010eff0a27SJakub Kicinski 		case RTA_DST:
57020eff0a27SJakub Kicinski 		case RTA_IIF:
57030eff0a27SJakub Kicinski 		case RTA_OIF:
57040eff0a27SJakub Kicinski 		case RTA_MARK:
57050eff0a27SJakub Kicinski 		case RTA_UID:
57060eff0a27SJakub Kicinski 		case RTA_SPORT:
57070eff0a27SJakub Kicinski 		case RTA_DPORT:
57080eff0a27SJakub Kicinski 		case RTA_IP_PROTO:
57090eff0a27SJakub Kicinski 			break;
57100eff0a27SJakub Kicinski 		default:
57110eff0a27SJakub Kicinski 			NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request");
57120eff0a27SJakub Kicinski 			return -EINVAL;
57130eff0a27SJakub Kicinski 		}
57140eff0a27SJakub Kicinski 	}
57150eff0a27SJakub Kicinski 
57160eff0a27SJakub Kicinski 	return 0;
57170eff0a27SJakub Kicinski }
57180eff0a27SJakub Kicinski 
5719c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
5720c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
57211da177e4SLinus Torvalds {
57223b1e0a65SYOSHIFUJI Hideaki 	struct net *net = sock_net(in_skb->sk);
5723ab364a6fSThomas Graf 	struct nlattr *tb[RTA_MAX+1];
572418c3a61cSRoopa Prabhu 	int err, iif = 0, oif = 0;
5725a68886a6SDavid Ahern 	struct fib6_info *from;
572618c3a61cSRoopa Prabhu 	struct dst_entry *dst;
57271da177e4SLinus Torvalds 	struct rt6_info *rt;
5728ab364a6fSThomas Graf 	struct sk_buff *skb;
5729ab364a6fSThomas Graf 	struct rtmsg *rtm;
5730744486d4SMaciej Żenczykowski 	struct flowi6 fl6 = {};
573118c3a61cSRoopa Prabhu 	bool fibmatch;
5732ab364a6fSThomas Graf 
57330eff0a27SJakub Kicinski 	err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack);
5734ab364a6fSThomas Graf 	if (err < 0)
5735ab364a6fSThomas Graf 		goto errout;
5736ab364a6fSThomas Graf 
5737ab364a6fSThomas Graf 	err = -EINVAL;
573838b7097bSHannes Frederic Sowa 	rtm = nlmsg_data(nlh);
573938b7097bSHannes Frederic Sowa 	fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
574018c3a61cSRoopa Prabhu 	fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
5741ab364a6fSThomas Graf 
5742ab364a6fSThomas Graf 	if (tb[RTA_SRC]) {
5743ab364a6fSThomas Graf 		if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
5744ab364a6fSThomas Graf 			goto errout;
5745ab364a6fSThomas Graf 
57464e3fd7a0SAlexey Dobriyan 		fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
5747ab364a6fSThomas Graf 	}
5748ab364a6fSThomas Graf 
5749ab364a6fSThomas Graf 	if (tb[RTA_DST]) {
5750ab364a6fSThomas Graf 		if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
5751ab364a6fSThomas Graf 			goto errout;
5752ab364a6fSThomas Graf 
57534e3fd7a0SAlexey Dobriyan 		fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
5754ab364a6fSThomas Graf 	}
5755ab364a6fSThomas Graf 
5756ab364a6fSThomas Graf 	if (tb[RTA_IIF])
5757ab364a6fSThomas Graf 		iif = nla_get_u32(tb[RTA_IIF]);
5758ab364a6fSThomas Graf 
5759ab364a6fSThomas Graf 	if (tb[RTA_OIF])
576072331bc0SShmulik Ladkani 		oif = nla_get_u32(tb[RTA_OIF]);
5761ab364a6fSThomas Graf 
57622e47b291SLorenzo Colitti 	if (tb[RTA_MARK])
57632e47b291SLorenzo Colitti 		fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
57642e47b291SLorenzo Colitti 
5765622ec2c9SLorenzo Colitti 	if (tb[RTA_UID])
5766622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = make_kuid(current_user_ns(),
5767622ec2c9SLorenzo Colitti 					   nla_get_u32(tb[RTA_UID]));
5768622ec2c9SLorenzo Colitti 	else
5769622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
5770622ec2c9SLorenzo Colitti 
5771eacb9384SRoopa Prabhu 	if (tb[RTA_SPORT])
5772eacb9384SRoopa Prabhu 		fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]);
5773eacb9384SRoopa Prabhu 
5774eacb9384SRoopa Prabhu 	if (tb[RTA_DPORT])
5775eacb9384SRoopa Prabhu 		fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]);
5776eacb9384SRoopa Prabhu 
5777eacb9384SRoopa Prabhu 	if (tb[RTA_IP_PROTO]) {
5778eacb9384SRoopa Prabhu 		err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO],
57795e1a99eaSHangbin Liu 						  &fl6.flowi6_proto, AF_INET6,
57805e1a99eaSHangbin Liu 						  extack);
5781eacb9384SRoopa Prabhu 		if (err)
5782eacb9384SRoopa Prabhu 			goto errout;
5783eacb9384SRoopa Prabhu 	}
5784eacb9384SRoopa Prabhu 
5785ab364a6fSThomas Graf 	if (iif) {
5786ab364a6fSThomas Graf 		struct net_device *dev;
578772331bc0SShmulik Ladkani 		int flags = 0;
578872331bc0SShmulik Ladkani 
5789121622dbSFlorian Westphal 		rcu_read_lock();
5790121622dbSFlorian Westphal 
5791121622dbSFlorian Westphal 		dev = dev_get_by_index_rcu(net, iif);
5792ab364a6fSThomas Graf 		if (!dev) {
5793121622dbSFlorian Westphal 			rcu_read_unlock();
5794ab364a6fSThomas Graf 			err = -ENODEV;
5795ab364a6fSThomas Graf 			goto errout;
5796ab364a6fSThomas Graf 		}
579772331bc0SShmulik Ladkani 
579872331bc0SShmulik Ladkani 		fl6.flowi6_iif = iif;
579972331bc0SShmulik Ladkani 
580072331bc0SShmulik Ladkani 		if (!ipv6_addr_any(&fl6.saddr))
580172331bc0SShmulik Ladkani 			flags |= RT6_LOOKUP_F_HAS_SADDR;
580272331bc0SShmulik Ladkani 
5803b75cc8f9SDavid Ahern 		dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags);
5804121622dbSFlorian Westphal 
5805121622dbSFlorian Westphal 		rcu_read_unlock();
580672331bc0SShmulik Ladkani 	} else {
580772331bc0SShmulik Ladkani 		fl6.flowi6_oif = oif;
580872331bc0SShmulik Ladkani 
580918c3a61cSRoopa Prabhu 		dst = ip6_route_output(net, NULL, &fl6);
581018c3a61cSRoopa Prabhu 	}
581118c3a61cSRoopa Prabhu 
581218c3a61cSRoopa Prabhu 
581318c3a61cSRoopa Prabhu 	rt = container_of(dst, struct rt6_info, dst);
581418c3a61cSRoopa Prabhu 	if (rt->dst.error) {
581518c3a61cSRoopa Prabhu 		err = rt->dst.error;
581618c3a61cSRoopa Prabhu 		ip6_rt_put(rt);
581718c3a61cSRoopa Prabhu 		goto errout;
5818ab364a6fSThomas Graf 	}
58191da177e4SLinus Torvalds 
58209d6acb3bSWANG Cong 	if (rt == net->ipv6.ip6_null_entry) {
58219d6acb3bSWANG Cong 		err = rt->dst.error;
58229d6acb3bSWANG Cong 		ip6_rt_put(rt);
58239d6acb3bSWANG Cong 		goto errout;
58249d6acb3bSWANG Cong 	}
58259d6acb3bSWANG Cong 
58261da177e4SLinus Torvalds 	skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
582738308473SDavid S. Miller 	if (!skb) {
582894e187c0SAmerigo Wang 		ip6_rt_put(rt);
5829ab364a6fSThomas Graf 		err = -ENOBUFS;
5830ab364a6fSThomas Graf 		goto errout;
5831ab364a6fSThomas Graf 	}
58321da177e4SLinus Torvalds 
5833d8d1f30bSChangli Gao 	skb_dst_set(skb, &rt->dst);
5834a68886a6SDavid Ahern 
5835a68886a6SDavid Ahern 	rcu_read_lock();
5836a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
5837886b7a50SMartin KaFai Lau 	if (from) {
583818c3a61cSRoopa Prabhu 		if (fibmatch)
5839886b7a50SMartin KaFai Lau 			err = rt6_fill_node(net, skb, from, NULL, NULL, NULL,
5840886b7a50SMartin KaFai Lau 					    iif, RTM_NEWROUTE,
5841886b7a50SMartin KaFai Lau 					    NETLINK_CB(in_skb).portid,
584218c3a61cSRoopa Prabhu 					    nlh->nlmsg_seq, 0);
584318c3a61cSRoopa Prabhu 		else
5844a68886a6SDavid Ahern 			err = rt6_fill_node(net, skb, from, dst, &fl6.daddr,
5845a68886a6SDavid Ahern 					    &fl6.saddr, iif, RTM_NEWROUTE,
5846886b7a50SMartin KaFai Lau 					    NETLINK_CB(in_skb).portid,
5847886b7a50SMartin KaFai Lau 					    nlh->nlmsg_seq, 0);
5848886b7a50SMartin KaFai Lau 	} else {
5849886b7a50SMartin KaFai Lau 		err = -ENETUNREACH;
5850886b7a50SMartin KaFai Lau 	}
5851a68886a6SDavid Ahern 	rcu_read_unlock();
5852a68886a6SDavid Ahern 
58531da177e4SLinus Torvalds 	if (err < 0) {
5854ab364a6fSThomas Graf 		kfree_skb(skb);
5855ab364a6fSThomas Graf 		goto errout;
58561da177e4SLinus Torvalds 	}
58571da177e4SLinus Torvalds 
585815e47304SEric W. Biederman 	err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
5859ab364a6fSThomas Graf errout:
58601da177e4SLinus Torvalds 	return err;
58611da177e4SLinus Torvalds }
58621da177e4SLinus Torvalds 
58638d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info,
586437a1d361SRoopa Prabhu 		     unsigned int nlm_flags)
58651da177e4SLinus Torvalds {
58661da177e4SLinus Torvalds 	struct sk_buff *skb;
58675578689aSDaniel Lezcano 	struct net *net = info->nl_net;
5868528c4cebSDenis V. Lunev 	u32 seq;
5869528c4cebSDenis V. Lunev 	int err;
58700d51aa80SJamal Hadi Salim 
5871528c4cebSDenis V. Lunev 	err = -ENOBUFS;
587238308473SDavid S. Miller 	seq = info->nlh ? info->nlh->nlmsg_seq : 0;
587386872cb5SThomas Graf 
587419e42e45SRoopa Prabhu 	skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
587538308473SDavid S. Miller 	if (!skb)
587621713ebcSThomas Graf 		goto errout;
58771da177e4SLinus Torvalds 
5878d4ead6b3SDavid Ahern 	err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
5879f8cfe2ceSDavid Ahern 			    event, info->portid, seq, nlm_flags);
588026932566SPatrick McHardy 	if (err < 0) {
588126932566SPatrick McHardy 		/* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
588226932566SPatrick McHardy 		WARN_ON(err == -EMSGSIZE);
588326932566SPatrick McHardy 		kfree_skb(skb);
588426932566SPatrick McHardy 		goto errout;
588526932566SPatrick McHardy 	}
588615e47304SEric W. Biederman 	rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
58875578689aSDaniel Lezcano 		    info->nlh, gfp_any());
58881ce85fe4SPablo Neira Ayuso 	return;
588921713ebcSThomas Graf errout:
589021713ebcSThomas Graf 	if (err < 0)
58915578689aSDaniel Lezcano 		rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
58921da177e4SLinus Torvalds }
58931da177e4SLinus Torvalds 
589419a3b7eeSDavid Ahern void fib6_rt_update(struct net *net, struct fib6_info *rt,
589519a3b7eeSDavid Ahern 		    struct nl_info *info)
589619a3b7eeSDavid Ahern {
589719a3b7eeSDavid Ahern 	u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
589819a3b7eeSDavid Ahern 	struct sk_buff *skb;
589919a3b7eeSDavid Ahern 	int err = -ENOBUFS;
590019a3b7eeSDavid Ahern 
590119a3b7eeSDavid Ahern 	/* call_fib6_entry_notifiers will be removed when in-kernel notifier
590219a3b7eeSDavid Ahern 	 * is implemented and supported for nexthop objects
590319a3b7eeSDavid Ahern 	 */
590419a3b7eeSDavid Ahern 	call_fib6_entry_notifiers(net, FIB_EVENT_ENTRY_REPLACE, rt, NULL);
590519a3b7eeSDavid Ahern 
590619a3b7eeSDavid Ahern 	skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
590719a3b7eeSDavid Ahern 	if (!skb)
590819a3b7eeSDavid Ahern 		goto errout;
590919a3b7eeSDavid Ahern 
591019a3b7eeSDavid Ahern 	err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
591119a3b7eeSDavid Ahern 			    RTM_NEWROUTE, info->portid, seq, NLM_F_REPLACE);
591219a3b7eeSDavid Ahern 	if (err < 0) {
591319a3b7eeSDavid Ahern 		/* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
591419a3b7eeSDavid Ahern 		WARN_ON(err == -EMSGSIZE);
591519a3b7eeSDavid Ahern 		kfree_skb(skb);
591619a3b7eeSDavid Ahern 		goto errout;
591719a3b7eeSDavid Ahern 	}
591819a3b7eeSDavid Ahern 	rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
591919a3b7eeSDavid Ahern 		    info->nlh, gfp_any());
592019a3b7eeSDavid Ahern 	return;
592119a3b7eeSDavid Ahern errout:
592219a3b7eeSDavid Ahern 	if (err < 0)
592319a3b7eeSDavid Ahern 		rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
592419a3b7eeSDavid Ahern }
592519a3b7eeSDavid Ahern 
59268ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this,
5927351638e7SJiri Pirko 				unsigned long event, void *ptr)
59288ed67789SDaniel Lezcano {
5929351638e7SJiri Pirko 	struct net_device *dev = netdev_notifier_info_to_dev(ptr);
5930c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
59318ed67789SDaniel Lezcano 
5932242d3a49SWANG Cong 	if (!(dev->flags & IFF_LOOPBACK))
5933242d3a49SWANG Cong 		return NOTIFY_OK;
5934242d3a49SWANG Cong 
5935242d3a49SWANG Cong 	if (event == NETDEV_REGISTER) {
59361cf844c7SDavid Ahern 		net->ipv6.fib6_null_entry->fib6_nh->fib_nh_dev = dev;
5937d8d1f30bSChangli Gao 		net->ipv6.ip6_null_entry->dst.dev = dev;
59388ed67789SDaniel Lezcano 		net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
59398ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
5940d8d1f30bSChangli Gao 		net->ipv6.ip6_prohibit_entry->dst.dev = dev;
59418ed67789SDaniel Lezcano 		net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
5942d8d1f30bSChangli Gao 		net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
59438ed67789SDaniel Lezcano 		net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
59448ed67789SDaniel Lezcano #endif
594576da0704SWANG Cong 	 } else if (event == NETDEV_UNREGISTER &&
594676da0704SWANG Cong 		    dev->reg_state != NETREG_UNREGISTERED) {
594776da0704SWANG Cong 		/* NETDEV_UNREGISTER could be fired for multiple times by
594876da0704SWANG Cong 		 * netdev_wait_allrefs(). Make sure we only call this once.
594976da0704SWANG Cong 		 */
595012d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
5951242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES
595212d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
595312d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
5954242d3a49SWANG Cong #endif
59558ed67789SDaniel Lezcano 	}
59568ed67789SDaniel Lezcano 
59578ed67789SDaniel Lezcano 	return NOTIFY_OK;
59588ed67789SDaniel Lezcano }
59598ed67789SDaniel Lezcano 
59601da177e4SLinus Torvalds /*
59611da177e4SLinus Torvalds  *	/proc
59621da177e4SLinus Torvalds  */
59631da177e4SLinus Torvalds 
59641da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS
59651da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v)
59661da177e4SLinus Torvalds {
596769ddb805SDaniel Lezcano 	struct net *net = (struct net *)seq->private;
59681da177e4SLinus Torvalds 	seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
596969ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_nodes,
597069ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_route_nodes,
597181eb8447SWei Wang 		   atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
597269ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_entries,
597369ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_cache,
5974fc66f95cSEric Dumazet 		   dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
597569ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_discarded_routes);
59761da177e4SLinus Torvalds 
59771da177e4SLinus Torvalds 	return 0;
59781da177e4SLinus Torvalds }
59791da177e4SLinus Torvalds #endif	/* CONFIG_PROC_FS */
59801da177e4SLinus Torvalds 
59811da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
59821da177e4SLinus Torvalds 
59831da177e4SLinus Torvalds static
5984fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
59851da177e4SLinus Torvalds 			      void __user *buffer, size_t *lenp, loff_t *ppos)
59861da177e4SLinus Torvalds {
5987c486da34SLucian Adrian Grijincu 	struct net *net;
5988c486da34SLucian Adrian Grijincu 	int delay;
5989f0fb9b28SAditya Pakki 	int ret;
5990c486da34SLucian Adrian Grijincu 	if (!write)
5991c486da34SLucian Adrian Grijincu 		return -EINVAL;
5992c486da34SLucian Adrian Grijincu 
5993c486da34SLucian Adrian Grijincu 	net = (struct net *)ctl->extra1;
5994c486da34SLucian Adrian Grijincu 	delay = net->ipv6.sysctl.flush_delay;
5995f0fb9b28SAditya Pakki 	ret = proc_dointvec(ctl, write, buffer, lenp, ppos);
5996f0fb9b28SAditya Pakki 	if (ret)
5997f0fb9b28SAditya Pakki 		return ret;
5998f0fb9b28SAditya Pakki 
59992ac3ac8fSMichal Kubeček 	fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
60001da177e4SLinus Torvalds 	return 0;
60011da177e4SLinus Torvalds }
60021da177e4SLinus Torvalds 
60037c6bb7d2SDavid Ahern static int zero;
60047c6bb7d2SDavid Ahern static int one = 1;
60057c6bb7d2SDavid Ahern 
6006ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = {
60071da177e4SLinus Torvalds 	{
60081da177e4SLinus Torvalds 		.procname	=	"flush",
60094990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.flush_delay,
60101da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
601189c8b3a1SDave Jones 		.mode		=	0200,
60126d9f239aSAlexey Dobriyan 		.proc_handler	=	ipv6_sysctl_rtcache_flush
60131da177e4SLinus Torvalds 	},
60141da177e4SLinus Torvalds 	{
60151da177e4SLinus Torvalds 		.procname	=	"gc_thresh",
60169a7ec3a9SDaniel Lezcano 		.data		=	&ip6_dst_ops_template.gc_thresh,
60171da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60181da177e4SLinus Torvalds 		.mode		=	0644,
60196d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
60201da177e4SLinus Torvalds 	},
60211da177e4SLinus Torvalds 	{
60221da177e4SLinus Torvalds 		.procname	=	"max_size",
60234990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_max_size,
60241da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60251da177e4SLinus Torvalds 		.mode		=	0644,
60266d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
60271da177e4SLinus Torvalds 	},
60281da177e4SLinus Torvalds 	{
60291da177e4SLinus Torvalds 		.procname	=	"gc_min_interval",
60304990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
60311da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60321da177e4SLinus Torvalds 		.mode		=	0644,
60336d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
60341da177e4SLinus Torvalds 	},
60351da177e4SLinus Torvalds 	{
60361da177e4SLinus Torvalds 		.procname	=	"gc_timeout",
60374990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_timeout,
60381da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60391da177e4SLinus Torvalds 		.mode		=	0644,
60406d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
60411da177e4SLinus Torvalds 	},
60421da177e4SLinus Torvalds 	{
60431da177e4SLinus Torvalds 		.procname	=	"gc_interval",
60444990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_interval,
60451da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60461da177e4SLinus Torvalds 		.mode		=	0644,
60476d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
60481da177e4SLinus Torvalds 	},
60491da177e4SLinus Torvalds 	{
60501da177e4SLinus Torvalds 		.procname	=	"gc_elasticity",
60514990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
60521da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60531da177e4SLinus Torvalds 		.mode		=	0644,
6054f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
60551da177e4SLinus Torvalds 	},
60561da177e4SLinus Torvalds 	{
60571da177e4SLinus Torvalds 		.procname	=	"mtu_expires",
60584990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_mtu_expires,
60591da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60601da177e4SLinus Torvalds 		.mode		=	0644,
60616d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
60621da177e4SLinus Torvalds 	},
60631da177e4SLinus Torvalds 	{
60641da177e4SLinus Torvalds 		.procname	=	"min_adv_mss",
60654990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_min_advmss,
60661da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60671da177e4SLinus Torvalds 		.mode		=	0644,
6068f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
60691da177e4SLinus Torvalds 	},
60701da177e4SLinus Torvalds 	{
60711da177e4SLinus Torvalds 		.procname	=	"gc_min_interval_ms",
60724990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
60731da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
60741da177e4SLinus Torvalds 		.mode		=	0644,
60756d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_ms_jiffies,
60761da177e4SLinus Torvalds 	},
60777c6bb7d2SDavid Ahern 	{
60787c6bb7d2SDavid Ahern 		.procname	=	"skip_notify_on_dev_down",
60797c6bb7d2SDavid Ahern 		.data		=	&init_net.ipv6.sysctl.skip_notify_on_dev_down,
60807c6bb7d2SDavid Ahern 		.maxlen		=	sizeof(int),
60817c6bb7d2SDavid Ahern 		.mode		=	0644,
60827c6bb7d2SDavid Ahern 		.proc_handler	=	proc_dointvec,
60837c6bb7d2SDavid Ahern 		.extra1		=	&zero,
60847c6bb7d2SDavid Ahern 		.extra2		=	&one,
60857c6bb7d2SDavid Ahern 	},
6086f8572d8fSEric W. Biederman 	{ }
60871da177e4SLinus Torvalds };
60881da177e4SLinus Torvalds 
60892c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
6090760f2d01SDaniel Lezcano {
6091760f2d01SDaniel Lezcano 	struct ctl_table *table;
6092760f2d01SDaniel Lezcano 
6093760f2d01SDaniel Lezcano 	table = kmemdup(ipv6_route_table_template,
6094760f2d01SDaniel Lezcano 			sizeof(ipv6_route_table_template),
6095760f2d01SDaniel Lezcano 			GFP_KERNEL);
60965ee09105SYOSHIFUJI Hideaki 
60975ee09105SYOSHIFUJI Hideaki 	if (table) {
60985ee09105SYOSHIFUJI Hideaki 		table[0].data = &net->ipv6.sysctl.flush_delay;
6099c486da34SLucian Adrian Grijincu 		table[0].extra1 = net;
610086393e52SAlexey Dobriyan 		table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
61015ee09105SYOSHIFUJI Hideaki 		table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
61025ee09105SYOSHIFUJI Hideaki 		table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
61035ee09105SYOSHIFUJI Hideaki 		table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
61045ee09105SYOSHIFUJI Hideaki 		table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
61055ee09105SYOSHIFUJI Hideaki 		table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
61065ee09105SYOSHIFUJI Hideaki 		table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
61075ee09105SYOSHIFUJI Hideaki 		table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
61089c69fabeSAlexey Dobriyan 		table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
61097c6bb7d2SDavid Ahern 		table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down;
6110464dc801SEric W. Biederman 
6111464dc801SEric W. Biederman 		/* Don't export sysctls to unprivileged users */
6112464dc801SEric W. Biederman 		if (net->user_ns != &init_user_ns)
6113464dc801SEric W. Biederman 			table[0].procname = NULL;
61145ee09105SYOSHIFUJI Hideaki 	}
61155ee09105SYOSHIFUJI Hideaki 
6116760f2d01SDaniel Lezcano 	return table;
6117760f2d01SDaniel Lezcano }
61181da177e4SLinus Torvalds #endif
61191da177e4SLinus Torvalds 
61202c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net)
6121cdb18761SDaniel Lezcano {
6122633d424bSPavel Emelyanov 	int ret = -ENOMEM;
61238ed67789SDaniel Lezcano 
612486393e52SAlexey Dobriyan 	memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
612586393e52SAlexey Dobriyan 	       sizeof(net->ipv6.ip6_dst_ops));
6126f2fc6a54SBenjamin Thery 
6127fc66f95cSEric Dumazet 	if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
6128fc66f95cSEric Dumazet 		goto out_ip6_dst_ops;
6129fc66f95cSEric Dumazet 
61301cf844c7SDavid Ahern 	net->ipv6.fib6_null_entry = fib6_info_alloc(GFP_KERNEL, true);
6131421842edSDavid Ahern 	if (!net->ipv6.fib6_null_entry)
6132421842edSDavid Ahern 		goto out_ip6_dst_entries;
61331cf844c7SDavid Ahern 	memcpy(net->ipv6.fib6_null_entry, &fib6_null_entry_template,
61341cf844c7SDavid Ahern 	       sizeof(*net->ipv6.fib6_null_entry));
6135421842edSDavid Ahern 
61368ed67789SDaniel Lezcano 	net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
61378ed67789SDaniel Lezcano 					   sizeof(*net->ipv6.ip6_null_entry),
61388ed67789SDaniel Lezcano 					   GFP_KERNEL);
61398ed67789SDaniel Lezcano 	if (!net->ipv6.ip6_null_entry)
6140421842edSDavid Ahern 		goto out_fib6_null_entry;
6141d8d1f30bSChangli Gao 	net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
614262fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
614362fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
614474109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_null_entry->rt6i_uncached);
61458ed67789SDaniel Lezcano 
61468ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
6147feca7d8cSVincent Bernat 	net->ipv6.fib6_has_custom_rules = false;
61488ed67789SDaniel Lezcano 	net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
61498ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_prohibit_entry),
61508ed67789SDaniel Lezcano 					       GFP_KERNEL);
615168fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_prohibit_entry)
615268fffc67SPeter Zijlstra 		goto out_ip6_null_entry;
6153d8d1f30bSChangli Gao 	net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
615462fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
615562fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
615674109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_prohibit_entry->rt6i_uncached);
61578ed67789SDaniel Lezcano 
61588ed67789SDaniel Lezcano 	net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
61598ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_blk_hole_entry),
61608ed67789SDaniel Lezcano 					       GFP_KERNEL);
616168fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_blk_hole_entry)
616268fffc67SPeter Zijlstra 		goto out_ip6_prohibit_entry;
6163d8d1f30bSChangli Gao 	net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
616462fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
616562fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
616674109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_blk_hole_entry->rt6i_uncached);
61678ed67789SDaniel Lezcano #endif
61688ed67789SDaniel Lezcano 
6169b339a47cSPeter Zijlstra 	net->ipv6.sysctl.flush_delay = 0;
6170b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_max_size = 4096;
6171b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
6172b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
6173b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
6174b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
6175b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
6176b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
61777c6bb7d2SDavid Ahern 	net->ipv6.sysctl.skip_notify_on_dev_down = 0;
6178b339a47cSPeter Zijlstra 
61796891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire = 30*HZ;
61806891a346SBenjamin Thery 
61818ed67789SDaniel Lezcano 	ret = 0;
61828ed67789SDaniel Lezcano out:
61838ed67789SDaniel Lezcano 	return ret;
6184f2fc6a54SBenjamin Thery 
618568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES
618668fffc67SPeter Zijlstra out_ip6_prohibit_entry:
618768fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_prohibit_entry);
618868fffc67SPeter Zijlstra out_ip6_null_entry:
618968fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_null_entry);
619068fffc67SPeter Zijlstra #endif
6191421842edSDavid Ahern out_fib6_null_entry:
6192421842edSDavid Ahern 	kfree(net->ipv6.fib6_null_entry);
6193fc66f95cSEric Dumazet out_ip6_dst_entries:
6194fc66f95cSEric Dumazet 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
6195f2fc6a54SBenjamin Thery out_ip6_dst_ops:
6196f2fc6a54SBenjamin Thery 	goto out;
6197cdb18761SDaniel Lezcano }
6198cdb18761SDaniel Lezcano 
61992c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net)
6200cdb18761SDaniel Lezcano {
6201421842edSDavid Ahern 	kfree(net->ipv6.fib6_null_entry);
62028ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_null_entry);
62038ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
62048ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_prohibit_entry);
62058ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_blk_hole_entry);
62068ed67789SDaniel Lezcano #endif
620741bb78b4SXiaotian Feng 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
6208cdb18761SDaniel Lezcano }
6209cdb18761SDaniel Lezcano 
6210d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net)
6211d189634eSThomas Graf {
6212d189634eSThomas Graf #ifdef CONFIG_PROC_FS
6213c3506372SChristoph Hellwig 	proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops,
6214c3506372SChristoph Hellwig 			sizeof(struct ipv6_route_iter));
62153617d949SChristoph Hellwig 	proc_create_net_single("rt6_stats", 0444, net->proc_net,
62163617d949SChristoph Hellwig 			rt6_stats_seq_show, NULL);
6217d189634eSThomas Graf #endif
6218d189634eSThomas Graf 	return 0;
6219d189634eSThomas Graf }
6220d189634eSThomas Graf 
6221d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net)
6222d189634eSThomas Graf {
6223d189634eSThomas Graf #ifdef CONFIG_PROC_FS
6224ece31ffdSGao feng 	remove_proc_entry("ipv6_route", net->proc_net);
6225ece31ffdSGao feng 	remove_proc_entry("rt6_stats", net->proc_net);
6226d189634eSThomas Graf #endif
6227d189634eSThomas Graf }
6228d189634eSThomas Graf 
6229cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = {
6230cdb18761SDaniel Lezcano 	.init = ip6_route_net_init,
6231cdb18761SDaniel Lezcano 	.exit = ip6_route_net_exit,
6232cdb18761SDaniel Lezcano };
6233cdb18761SDaniel Lezcano 
6234c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net)
6235c3426b47SDavid S. Miller {
6236c3426b47SDavid S. Miller 	struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
6237c3426b47SDavid S. Miller 
6238c3426b47SDavid S. Miller 	if (!bp)
6239c3426b47SDavid S. Miller 		return -ENOMEM;
6240c3426b47SDavid S. Miller 	inet_peer_base_init(bp);
6241c3426b47SDavid S. Miller 	net->ipv6.peers = bp;
6242c3426b47SDavid S. Miller 	return 0;
6243c3426b47SDavid S. Miller }
6244c3426b47SDavid S. Miller 
6245c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net)
6246c3426b47SDavid S. Miller {
6247c3426b47SDavid S. Miller 	struct inet_peer_base *bp = net->ipv6.peers;
6248c3426b47SDavid S. Miller 
6249c3426b47SDavid S. Miller 	net->ipv6.peers = NULL;
625056a6b248SDavid S. Miller 	inetpeer_invalidate_tree(bp);
6251c3426b47SDavid S. Miller 	kfree(bp);
6252c3426b47SDavid S. Miller }
6253c3426b47SDavid S. Miller 
62542b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = {
6255c3426b47SDavid S. Miller 	.init	=	ipv6_inetpeer_init,
6256c3426b47SDavid S. Miller 	.exit	=	ipv6_inetpeer_exit,
6257c3426b47SDavid S. Miller };
6258c3426b47SDavid S. Miller 
6259d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = {
6260d189634eSThomas Graf 	.init = ip6_route_net_init_late,
6261d189634eSThomas Graf 	.exit = ip6_route_net_exit_late,
6262d189634eSThomas Graf };
6263d189634eSThomas Graf 
62648ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = {
62658ed67789SDaniel Lezcano 	.notifier_call = ip6_route_dev_notify,
6266242d3a49SWANG Cong 	.priority = ADDRCONF_NOTIFY_PRIORITY - 10,
62678ed67789SDaniel Lezcano };
62688ed67789SDaniel Lezcano 
62692f460933SWANG Cong void __init ip6_route_init_special_entries(void)
62702f460933SWANG Cong {
62712f460933SWANG Cong 	/* Registering of the loopback is done before this portion of code,
62722f460933SWANG Cong 	 * the loopback reference in rt6_info will not be taken, do it
62732f460933SWANG Cong 	 * manually for init_net */
62741cf844c7SDavid Ahern 	init_net.ipv6.fib6_null_entry->fib6_nh->fib_nh_dev = init_net.loopback_dev;
62752f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
62762f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
62772f460933SWANG Cong   #ifdef CONFIG_IPV6_MULTIPLE_TABLES
62782f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
62792f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
62802f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
62812f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
62822f460933SWANG Cong   #endif
62832f460933SWANG Cong }
62842f460933SWANG Cong 
6285433d49c3SDaniel Lezcano int __init ip6_route_init(void)
62861da177e4SLinus Torvalds {
6287433d49c3SDaniel Lezcano 	int ret;
62888d0b94afSMartin KaFai Lau 	int cpu;
6289433d49c3SDaniel Lezcano 
62909a7ec3a9SDaniel Lezcano 	ret = -ENOMEM;
62919a7ec3a9SDaniel Lezcano 	ip6_dst_ops_template.kmem_cachep =
62929a7ec3a9SDaniel Lezcano 		kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
62939a7ec3a9SDaniel Lezcano 				  SLAB_HWCACHE_ALIGN, NULL);
62949a7ec3a9SDaniel Lezcano 	if (!ip6_dst_ops_template.kmem_cachep)
6295c19a28e1SFernando Carrijo 		goto out;
629614e50e57SDavid S. Miller 
6297fc66f95cSEric Dumazet 	ret = dst_entries_init(&ip6_dst_blackhole_ops);
62988ed67789SDaniel Lezcano 	if (ret)
6299bdb3289fSDaniel Lezcano 		goto out_kmem_cache;
6300bdb3289fSDaniel Lezcano 
6301c3426b47SDavid S. Miller 	ret = register_pernet_subsys(&ipv6_inetpeer_ops);
6302c3426b47SDavid S. Miller 	if (ret)
6303e8803b6cSDavid S. Miller 		goto out_dst_entries;
63042a0c451aSThomas Graf 
63057e52b33bSDavid S. Miller 	ret = register_pernet_subsys(&ip6_route_net_ops);
63067e52b33bSDavid S. Miller 	if (ret)
63077e52b33bSDavid S. Miller 		goto out_register_inetpeer;
6308c3426b47SDavid S. Miller 
63095dc121e9SArnaud Ebalard 	ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
63105dc121e9SArnaud Ebalard 
6311e8803b6cSDavid S. Miller 	ret = fib6_init();
6312433d49c3SDaniel Lezcano 	if (ret)
63138ed67789SDaniel Lezcano 		goto out_register_subsys;
6314433d49c3SDaniel Lezcano 
6315433d49c3SDaniel Lezcano 	ret = xfrm6_init();
6316433d49c3SDaniel Lezcano 	if (ret)
6317e8803b6cSDavid S. Miller 		goto out_fib6_init;
6318c35b7e72SDaniel Lezcano 
6319433d49c3SDaniel Lezcano 	ret = fib6_rules_init();
6320433d49c3SDaniel Lezcano 	if (ret)
6321433d49c3SDaniel Lezcano 		goto xfrm6_init;
63227e5449c2SDaniel Lezcano 
6323d189634eSThomas Graf 	ret = register_pernet_subsys(&ip6_route_net_late_ops);
6324d189634eSThomas Graf 	if (ret)
6325d189634eSThomas Graf 		goto fib6_rules_init;
6326d189634eSThomas Graf 
632716feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
632816feebcfSFlorian Westphal 				   inet6_rtm_newroute, NULL, 0);
632916feebcfSFlorian Westphal 	if (ret < 0)
633016feebcfSFlorian Westphal 		goto out_register_late_subsys;
633116feebcfSFlorian Westphal 
633216feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
633316feebcfSFlorian Westphal 				   inet6_rtm_delroute, NULL, 0);
633416feebcfSFlorian Westphal 	if (ret < 0)
633516feebcfSFlorian Westphal 		goto out_register_late_subsys;
633616feebcfSFlorian Westphal 
633716feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
633816feebcfSFlorian Westphal 				   inet6_rtm_getroute, NULL,
633916feebcfSFlorian Westphal 				   RTNL_FLAG_DOIT_UNLOCKED);
634016feebcfSFlorian Westphal 	if (ret < 0)
6341d189634eSThomas Graf 		goto out_register_late_subsys;
6342433d49c3SDaniel Lezcano 
63438ed67789SDaniel Lezcano 	ret = register_netdevice_notifier(&ip6_route_dev_notifier);
6344cdb18761SDaniel Lezcano 	if (ret)
6345d189634eSThomas Graf 		goto out_register_late_subsys;
63468ed67789SDaniel Lezcano 
63478d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
63488d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
63498d0b94afSMartin KaFai Lau 
63508d0b94afSMartin KaFai Lau 		INIT_LIST_HEAD(&ul->head);
63518d0b94afSMartin KaFai Lau 		spin_lock_init(&ul->lock);
63528d0b94afSMartin KaFai Lau 	}
63538d0b94afSMartin KaFai Lau 
6354433d49c3SDaniel Lezcano out:
6355433d49c3SDaniel Lezcano 	return ret;
6356433d49c3SDaniel Lezcano 
6357d189634eSThomas Graf out_register_late_subsys:
635816feebcfSFlorian Westphal 	rtnl_unregister_all(PF_INET6);
6359d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
6360433d49c3SDaniel Lezcano fib6_rules_init:
6361433d49c3SDaniel Lezcano 	fib6_rules_cleanup();
6362433d49c3SDaniel Lezcano xfrm6_init:
6363433d49c3SDaniel Lezcano 	xfrm6_fini();
63642a0c451aSThomas Graf out_fib6_init:
63652a0c451aSThomas Graf 	fib6_gc_cleanup();
63668ed67789SDaniel Lezcano out_register_subsys:
63678ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
63687e52b33bSDavid S. Miller out_register_inetpeer:
63697e52b33bSDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
6370fc66f95cSEric Dumazet out_dst_entries:
6371fc66f95cSEric Dumazet 	dst_entries_destroy(&ip6_dst_blackhole_ops);
6372433d49c3SDaniel Lezcano out_kmem_cache:
6373f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
6374433d49c3SDaniel Lezcano 	goto out;
63751da177e4SLinus Torvalds }
63761da177e4SLinus Torvalds 
63771da177e4SLinus Torvalds void ip6_route_cleanup(void)
63781da177e4SLinus Torvalds {
63798ed67789SDaniel Lezcano 	unregister_netdevice_notifier(&ip6_route_dev_notifier);
6380d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
6381101367c2SThomas Graf 	fib6_rules_cleanup();
63821da177e4SLinus Torvalds 	xfrm6_fini();
63831da177e4SLinus Torvalds 	fib6_gc_cleanup();
6384c3426b47SDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
63858ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
638641bb78b4SXiaotian Feng 	dst_entries_destroy(&ip6_dst_blackhole_ops);
6387f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
63881da177e4SLinus Torvalds }
6389