11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66b811580dSDavid Ahern #include <trace/events/fib6.h> 671da177e4SLinus Torvalds 687c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 691da177e4SLinus Torvalds 701da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 711da177e4SLinus Torvalds #include <linux/sysctl.h> 721da177e4SLinus Torvalds #endif 731da177e4SLinus Torvalds 74afc154e9SHannes Frederic Sowa enum rt6_nud_state { 757e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 767e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 777e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 78afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 79afc154e9SHannes Frederic Sowa }; 80afc154e9SHannes Frederic Sowa 8183a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort); 821da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 830dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 84ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 851da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 861da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 871da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 881da177e4SLinus Torvalds struct net_device *dev, int how); 89569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 901da177e4SLinus Torvalds 911da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 92ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 937150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 94ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 951da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 966700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 976700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 986700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 996700c270SDavid S. Miller struct sk_buff *skb); 1004b32b5adSMartin KaFai Lau static void rt6_dst_from_metrics_check(struct rt6_info *rt); 10152bd4c0cSNicolas Dichtel static int rt6_score_route(struct rt6_info *rt, int oif, int strict); 10216a16cd3SDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt); 10316a16cd3SDavid Ahern static int rt6_fill_node(struct net *net, 10416a16cd3SDavid Ahern struct sk_buff *skb, struct rt6_info *rt, 10516a16cd3SDavid Ahern struct in6_addr *dst, struct in6_addr *src, 10616a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 10716a16cd3SDavid Ahern unsigned int flags); 10835732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt, 10935732d01SWei Wang struct in6_addr *daddr, 11035732d01SWei Wang struct in6_addr *saddr); 1111da177e4SLinus Torvalds 11270ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 113efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net, 114b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 115830218c1SDavid Ahern const struct in6_addr *gwaddr, 116830218c1SDavid Ahern struct net_device *dev, 11795c96174SEric Dumazet unsigned int pref); 118efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev); 12270ceb4f5SYOSHIFUJI Hideaki #endif 12370ceb4f5SYOSHIFUJI Hideaki 1248d0b94afSMartin KaFai Lau struct uncached_list { 1258d0b94afSMartin KaFai Lau spinlock_t lock; 1268d0b94afSMartin KaFai Lau struct list_head head; 1278d0b94afSMartin KaFai Lau }; 1288d0b94afSMartin KaFai Lau 1298d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1308d0b94afSMartin KaFai Lau 1318d0b94afSMartin KaFai Lau static void rt6_uncached_list_add(struct rt6_info *rt) 1328d0b94afSMartin KaFai Lau { 1338d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 1358d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1368d0b94afSMartin KaFai Lau 1378d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1388d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1398d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1408d0b94afSMartin KaFai Lau } 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau static void rt6_uncached_list_del(struct rt6_info *rt) 1438d0b94afSMartin KaFai Lau { 1448d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1458d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 14681eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1478d0b94afSMartin KaFai Lau 1488d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1498d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15081eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1518d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1528d0b94afSMartin KaFai Lau } 1538d0b94afSMartin KaFai Lau } 1548d0b94afSMartin KaFai Lau 1558d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1568d0b94afSMartin KaFai Lau { 1578d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1588d0b94afSMartin KaFai Lau int cpu; 1598d0b94afSMartin KaFai Lau 160e332bc67SEric W. Biederman if (dev == loopback_dev) 161e332bc67SEric W. Biederman return; 162e332bc67SEric W. Biederman 1638d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1648d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1658d0b94afSMartin KaFai Lau struct rt6_info *rt; 1668d0b94afSMartin KaFai Lau 1678d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1688d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1698d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1708d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1718d0b94afSMartin KaFai Lau 172e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1738d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1748d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1758d0b94afSMartin KaFai Lau } 1768d0b94afSMartin KaFai Lau 177e332bc67SEric W. Biederman if (rt_dev == dev) { 1788d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1798d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1808d0b94afSMartin KaFai Lau dev_put(rt_dev); 1818d0b94afSMartin KaFai Lau } 1828d0b94afSMartin KaFai Lau } 1838d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1848d0b94afSMartin KaFai Lau } 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau 187d52d3997SMartin KaFai Lau static u32 *rt6_pcpu_cow_metrics(struct rt6_info *rt) 188d52d3997SMartin KaFai Lau { 1893a2232e9SDavid Miller return dst_metrics_write_ptr(&rt->from->dst); 190d52d3997SMartin KaFai Lau } 191d52d3997SMartin KaFai Lau 19206582540SDavid S. Miller static u32 *ipv6_cow_metrics(struct dst_entry *dst, unsigned long old) 19306582540SDavid S. Miller { 19406582540SDavid S. Miller struct rt6_info *rt = (struct rt6_info *)dst; 19506582540SDavid S. Miller 196d52d3997SMartin KaFai Lau if (rt->rt6i_flags & RTF_PCPU) 197d52d3997SMartin KaFai Lau return rt6_pcpu_cow_metrics(rt); 198d52d3997SMartin KaFai Lau else if (rt->rt6i_flags & RTF_CACHE) 1994b32b5adSMartin KaFai Lau return NULL; 2004b32b5adSMartin KaFai Lau else 2013b471175SMartin KaFai Lau return dst_cow_metrics_generic(dst, old); 20206582540SDavid S. Miller } 20306582540SDavid S. Miller 204f894cbf8SDavid S. Miller static inline const void *choose_neigh_daddr(struct rt6_info *rt, 205f894cbf8SDavid S. Miller struct sk_buff *skb, 206f894cbf8SDavid S. Miller const void *daddr) 20739232973SDavid S. Miller { 20839232973SDavid S. Miller struct in6_addr *p = &rt->rt6i_gateway; 20939232973SDavid S. Miller 210a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 21139232973SDavid S. Miller return (const void *) p; 212f894cbf8SDavid S. Miller else if (skb) 213f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 21439232973SDavid S. Miller return daddr; 21539232973SDavid S. Miller } 21639232973SDavid S. Miller 217f894cbf8SDavid S. Miller static struct neighbour *ip6_neigh_lookup(const struct dst_entry *dst, 218f894cbf8SDavid S. Miller struct sk_buff *skb, 219f894cbf8SDavid S. Miller const void *daddr) 220d3aaeb38SDavid S. Miller { 22139232973SDavid S. Miller struct rt6_info *rt = (struct rt6_info *) dst; 22239232973SDavid S. Miller struct neighbour *n; 22339232973SDavid S. Miller 224f894cbf8SDavid S. Miller daddr = choose_neigh_daddr(rt, skb, daddr); 2258e022ee6SYOSHIFUJI Hideaki / 吉藤英明 n = __ipv6_neigh_lookup(dst->dev, daddr); 226f83c7790SDavid S. Miller if (n) 227f83c7790SDavid S. Miller return n; 228f83c7790SDavid S. Miller return neigh_create(&nd_tbl, daddr, dst->dev); 229f83c7790SDavid S. Miller } 230f83c7790SDavid S. Miller 23163fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 23263fca65dSJulian Anastasov { 23363fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23463fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23563fca65dSJulian Anastasov 23663fca65dSJulian Anastasov daddr = choose_neigh_daddr(rt, NULL, daddr); 23763fca65dSJulian Anastasov if (!daddr) 23863fca65dSJulian Anastasov return; 23963fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 24063fca65dSJulian Anastasov return; 24163fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 24263fca65dSJulian Anastasov return; 24363fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24463fca65dSJulian Anastasov } 24563fca65dSJulian Anastasov 2469a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2471da177e4SLinus Torvalds .family = AF_INET6, 2481da177e4SLinus Torvalds .gc = ip6_dst_gc, 2491da177e4SLinus Torvalds .gc_thresh = 1024, 2501da177e4SLinus Torvalds .check = ip6_dst_check, 2510dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 252ebb762f2SSteffen Klassert .mtu = ip6_mtu, 25306582540SDavid S. Miller .cow_metrics = ipv6_cow_metrics, 2541da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2551da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2561da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2571da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2581da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2596e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2609f8955ccSEric W. Biederman .local_out = __ip6_local_out, 261d3aaeb38SDavid S. Miller .neigh_lookup = ip6_neigh_lookup, 26263fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2631da177e4SLinus Torvalds }; 2641da177e4SLinus Torvalds 265ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 266ec831ea7SRoland Dreier { 267618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 268618f9bc7SSteffen Klassert 269618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 270ec831ea7SRoland Dreier } 271ec831ea7SRoland Dreier 2726700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2736700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27414e50e57SDavid S. Miller { 27514e50e57SDavid S. Miller } 27614e50e57SDavid S. Miller 2776700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2786700c270SDavid S. Miller struct sk_buff *skb) 279b587ee3bSDavid S. Miller { 280b587ee3bSDavid S. Miller } 281b587ee3bSDavid S. Miller 28214e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28314e50e57SDavid S. Miller .family = AF_INET6, 28414e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28514e50e57SDavid S. Miller .check = ip6_dst_check, 286ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 287214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28814e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 289b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2900a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 291d3aaeb38SDavid S. Miller .neigh_lookup = ip6_neigh_lookup, 29214e50e57SDavid S. Miller }; 29314e50e57SDavid S. Miller 29462fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29514edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29662fa8a84SDavid S. Miller }; 29762fa8a84SDavid S. Miller 298fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 2991da177e4SLinus Torvalds .dst = { 3001da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3011da177e4SLinus Torvalds .__use = 1, 3022c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3031da177e4SLinus Torvalds .error = -ENETUNREACH, 3041da177e4SLinus Torvalds .input = ip6_pkt_discard, 3051da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3061da177e4SLinus Torvalds }, 3071da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3084f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 3091da177e4SLinus Torvalds .rt6i_metric = ~(u32) 0, 3101da177e4SLinus Torvalds .rt6i_ref = ATOMIC_INIT(1), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3254f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 326101367c2SThomas Graf .rt6i_metric = ~(u32) 0, 327101367c2SThomas Graf .rt6i_ref = ATOMIC_INIT(1), 328101367c2SThomas Graf }; 329101367c2SThomas Graf 330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 331101367c2SThomas Graf .dst = { 332101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 333101367c2SThomas Graf .__use = 1, 3342c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 335101367c2SThomas Graf .error = -EINVAL, 336352e512cSHerbert Xu .input = dst_discard, 337ede2059dSEric W. Biederman .output = dst_discard_out, 338101367c2SThomas Graf }, 339101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3404f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 341101367c2SThomas Graf .rt6i_metric = ~(u32) 0, 342101367c2SThomas Graf .rt6i_ref = ATOMIC_INIT(1), 343101367c2SThomas Graf }; 344101367c2SThomas Graf 345101367c2SThomas Graf #endif 346101367c2SThomas Graf 347ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 348ebfa45f0SMartin KaFai Lau { 349ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 350ebfa45f0SMartin KaFai Lau 351ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 352ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_siblings); 353ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 354ebfa45f0SMartin KaFai Lau } 355ebfa45f0SMartin KaFai Lau 3561da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 357d52d3997SMartin KaFai Lau static struct rt6_info *__ip6_dst_alloc(struct net *net, 358957c665fSDavid S. Miller struct net_device *dev, 359ad706862SMartin KaFai Lau int flags) 3601da177e4SLinus Torvalds { 36197bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 362b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 363cf911662SDavid S. Miller 36481eb8447SWei Wang if (rt) { 365ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36781eb8447SWei Wang } 3688104891bSSteffen Klassert 369cf911662SDavid S. Miller return rt; 3701da177e4SLinus Torvalds } 3711da177e4SLinus Torvalds 3729ab179d8SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, 373d52d3997SMartin KaFai Lau struct net_device *dev, 374ad706862SMartin KaFai Lau int flags) 375d52d3997SMartin KaFai Lau { 376ad706862SMartin KaFai Lau struct rt6_info *rt = __ip6_dst_alloc(net, dev, flags); 377d52d3997SMartin KaFai Lau 378d52d3997SMartin KaFai Lau if (rt) { 379d52d3997SMartin KaFai Lau rt->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, GFP_ATOMIC); 380bfd8e5a4SEric Dumazet if (!rt->rt6i_pcpu) { 381587fea74SWei Wang dst_release_immediate(&rt->dst); 382d52d3997SMartin KaFai Lau return NULL; 383d52d3997SMartin KaFai Lau } 384d52d3997SMartin KaFai Lau } 385d52d3997SMartin KaFai Lau 386d52d3997SMartin KaFai Lau return rt; 387d52d3997SMartin KaFai Lau } 3889ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 389d52d3997SMartin KaFai Lau 3901da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3911da177e4SLinus Torvalds { 3921da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 39335732d01SWei Wang struct rt6_exception_bucket *bucket; 3943a2232e9SDavid Miller struct rt6_info *from = rt->from; 3958d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3961da177e4SLinus Torvalds 3978e2ec639SYan, Zheng dst_destroy_metrics_generic(dst); 398d52d3997SMartin KaFai Lau free_percpu(rt->rt6i_pcpu); 3998d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 4008d0b94afSMartin KaFai Lau 4018d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 40238308473SDavid S. Miller if (idev) { 4031da177e4SLinus Torvalds rt->rt6i_idev = NULL; 4041da177e4SLinus Torvalds in6_dev_put(idev); 4051da177e4SLinus Torvalds } 40635732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1); 40735732d01SWei Wang if (bucket) { 40835732d01SWei Wang rt->rt6i_exception_bucket = NULL; 40935732d01SWei Wang kfree(bucket); 41035732d01SWei Wang } 4111716a961SGao feng 4123a2232e9SDavid Miller rt->from = NULL; 4133a2232e9SDavid Miller dst_release(&from->dst); 414b3419363SDavid S. Miller } 415b3419363SDavid S. Miller 4161da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 4171da177e4SLinus Torvalds int how) 4181da177e4SLinus Torvalds { 4191da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 4201da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 4215a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 422c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 4231da177e4SLinus Torvalds 424e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 425e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 42638308473SDavid S. Miller if (loopback_idev) { 4271da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4281da177e4SLinus Torvalds in6_dev_put(idev); 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds } 43197cac082SDavid S. Miller } 4321da177e4SLinus Torvalds 4335973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4345973fb1eSMartin KaFai Lau { 4355973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4365973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4375973fb1eSMartin KaFai Lau else 4385973fb1eSMartin KaFai Lau return false; 4395973fb1eSMartin KaFai Lau } 4405973fb1eSMartin KaFai Lau 441a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4421da177e4SLinus Torvalds { 4431716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4441716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 445a50feda5SEric Dumazet return true; 4463a2232e9SDavid Miller } else if (rt->from) { 4471e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 4483a2232e9SDavid Miller rt6_check_expired(rt->from); 4491716a961SGao feng } 450a50feda5SEric Dumazet return false; 4511da177e4SLinus Torvalds } 4521da177e4SLinus Torvalds 45351ebd318SNicolas Dichtel static struct rt6_info *rt6_multipath_select(struct rt6_info *match, 45452bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 45552bd4c0cSNicolas Dichtel int strict) 45651ebd318SNicolas Dichtel { 45751ebd318SNicolas Dichtel struct rt6_info *sibling, *next_sibling; 45851ebd318SNicolas Dichtel int route_choosen; 45951ebd318SNicolas Dichtel 460b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 461b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 462b673d6ccSJakub Sitnicki */ 463b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 464b673d6ccSJakub Sitnicki fl6->mp_hash = rt6_multipath_hash(fl6, NULL); 465b673d6ccSJakub Sitnicki 466b673d6ccSJakub Sitnicki route_choosen = fl6->mp_hash % (match->rt6i_nsiblings + 1); 46751ebd318SNicolas Dichtel /* Don't change the route, if route_choosen == 0 46851ebd318SNicolas Dichtel * (siblings does not include ourself) 46951ebd318SNicolas Dichtel */ 47051ebd318SNicolas Dichtel if (route_choosen) 47151ebd318SNicolas Dichtel list_for_each_entry_safe(sibling, next_sibling, 47251ebd318SNicolas Dichtel &match->rt6i_siblings, rt6i_siblings) { 47351ebd318SNicolas Dichtel route_choosen--; 47451ebd318SNicolas Dichtel if (route_choosen == 0) { 475bbfcd776SIdo Schimmel struct inet6_dev *idev = sibling->rt6i_idev; 476bbfcd776SIdo Schimmel 47714c5206cSIdo Schimmel if (sibling->rt6i_nh_flags & RTNH_F_LINKDOWN && 478bbfcd776SIdo Schimmel idev->cnf.ignore_routes_with_linkdown) 479bbfcd776SIdo Schimmel break; 48052bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 48152bd4c0cSNicolas Dichtel break; 48251ebd318SNicolas Dichtel match = sibling; 48351ebd318SNicolas Dichtel break; 48451ebd318SNicolas Dichtel } 48551ebd318SNicolas Dichtel } 48651ebd318SNicolas Dichtel return match; 48751ebd318SNicolas Dichtel } 48851ebd318SNicolas Dichtel 4891da177e4SLinus Torvalds /* 49066f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4911da177e4SLinus Torvalds */ 4921da177e4SLinus Torvalds 4938ed67789SDaniel Lezcano static inline struct rt6_info *rt6_device_match(struct net *net, 4948ed67789SDaniel Lezcano struct rt6_info *rt, 495b71d1d42SEric Dumazet const struct in6_addr *saddr, 4961da177e4SLinus Torvalds int oif, 497d420895eSYOSHIFUJI Hideaki int flags) 4981da177e4SLinus Torvalds { 4991da177e4SLinus Torvalds struct rt6_info *local = NULL; 5001da177e4SLinus Torvalds struct rt6_info *sprt; 5011da177e4SLinus Torvalds 502dd3abc4eSYOSHIFUJI Hideaki if (!oif && ipv6_addr_any(saddr)) 503dd3abc4eSYOSHIFUJI Hideaki goto out; 504dd3abc4eSYOSHIFUJI Hideaki 505071fb37eSDavid Miller for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) { 506d1918542SDavid S. Miller struct net_device *dev = sprt->dst.dev; 507dd3abc4eSYOSHIFUJI Hideaki 508dd3abc4eSYOSHIFUJI Hideaki if (oif) { 5091da177e4SLinus Torvalds if (dev->ifindex == oif) 5101da177e4SLinus Torvalds return sprt; 5111da177e4SLinus Torvalds if (dev->flags & IFF_LOOPBACK) { 51238308473SDavid S. Miller if (!sprt->rt6i_idev || 5131da177e4SLinus Torvalds sprt->rt6i_idev->dev->ifindex != oif) { 51417fb0b2bSDavid Ahern if (flags & RT6_LOOKUP_F_IFACE) 5151da177e4SLinus Torvalds continue; 51617fb0b2bSDavid Ahern if (local && 51717fb0b2bSDavid Ahern local->rt6i_idev->dev->ifindex == oif) 5181da177e4SLinus Torvalds continue; 5191da177e4SLinus Torvalds } 5201da177e4SLinus Torvalds local = sprt; 5211da177e4SLinus Torvalds } 522dd3abc4eSYOSHIFUJI Hideaki } else { 523dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 524dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 525dd3abc4eSYOSHIFUJI Hideaki return sprt; 526dd3abc4eSYOSHIFUJI Hideaki } 5271da177e4SLinus Torvalds } 5281da177e4SLinus Torvalds 529dd3abc4eSYOSHIFUJI Hideaki if (oif) { 5301da177e4SLinus Torvalds if (local) 5311da177e4SLinus Torvalds return local; 5321da177e4SLinus Torvalds 533d420895eSYOSHIFUJI Hideaki if (flags & RT6_LOOKUP_F_IFACE) 5348ed67789SDaniel Lezcano return net->ipv6.ip6_null_entry; 5351da177e4SLinus Torvalds } 536dd3abc4eSYOSHIFUJI Hideaki out: 5371da177e4SLinus Torvalds return rt; 5381da177e4SLinus Torvalds } 5391da177e4SLinus Torvalds 54027097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 541c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 542c2f17e82SHannes Frederic Sowa struct work_struct work; 543c2f17e82SHannes Frederic Sowa struct in6_addr target; 544c2f17e82SHannes Frederic Sowa struct net_device *dev; 545c2f17e82SHannes Frederic Sowa }; 546c2f17e82SHannes Frederic Sowa 547c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 548c2f17e82SHannes Frederic Sowa { 549c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 550c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 551c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 552c2f17e82SHannes Frederic Sowa 553c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 554adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 555c2f17e82SHannes Frederic Sowa dev_put(work->dev); 556662f5533SMichael Büsch kfree(work); 557c2f17e82SHannes Frederic Sowa } 558c2f17e82SHannes Frederic Sowa 55927097255SYOSHIFUJI Hideaki static void rt6_probe(struct rt6_info *rt) 56027097255SYOSHIFUJI Hideaki { 561990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 562f2c31e32SEric Dumazet struct neighbour *neigh; 56327097255SYOSHIFUJI Hideaki /* 56427097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 56527097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 56627097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 56727097255SYOSHIFUJI Hideaki * 56827097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 56927097255SYOSHIFUJI Hideaki * to no more than one per minute. 57027097255SYOSHIFUJI Hideaki */ 5712152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (!rt || !(rt->rt6i_flags & RTF_GATEWAY)) 572fdd6681dSAmerigo Wang return; 5732152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5742152caeaSYOSHIFUJI Hideaki / 吉藤英明 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 5752152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5768d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5778d6c31bfSMartin KaFai Lau goto out; 5788d6c31bfSMartin KaFai Lau 579990edb42SMartin KaFai Lau work = NULL; 5802152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 581990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 582990edb42SMartin KaFai Lau time_after(jiffies, 583990edb42SMartin KaFai Lau neigh->updated + 584990edb42SMartin KaFai Lau rt->rt6i_idev->cnf.rtr_probe_interval)) { 585c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 586990edb42SMartin KaFai Lau if (work) 5877e980569SJiri Benc __neigh_set_probe_once(neigh); 588990edb42SMartin KaFai Lau } 589c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 590990edb42SMartin KaFai Lau } else { 591990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 592990edb42SMartin KaFai Lau } 593c2f17e82SHannes Frederic Sowa 594c2f17e82SHannes Frederic Sowa if (work) { 595c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 596c2f17e82SHannes Frederic Sowa work->target = rt->rt6i_gateway; 597c2f17e82SHannes Frederic Sowa dev_hold(rt->dst.dev); 598c2f17e82SHannes Frederic Sowa work->dev = rt->dst.dev; 599c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 600c2f17e82SHannes Frederic Sowa } 601990edb42SMartin KaFai Lau 6028d6c31bfSMartin KaFai Lau out: 6032152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 604f2c31e32SEric Dumazet } 60527097255SYOSHIFUJI Hideaki #else 60627097255SYOSHIFUJI Hideaki static inline void rt6_probe(struct rt6_info *rt) 60727097255SYOSHIFUJI Hideaki { 60827097255SYOSHIFUJI Hideaki } 60927097255SYOSHIFUJI Hideaki #endif 61027097255SYOSHIFUJI Hideaki 6111da177e4SLinus Torvalds /* 612554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 6131da177e4SLinus Torvalds */ 614b6f99a21SDave Jones static inline int rt6_check_dev(struct rt6_info *rt, int oif) 6151da177e4SLinus Torvalds { 616d1918542SDavid S. Miller struct net_device *dev = rt->dst.dev; 617161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 618554cfb7eSYOSHIFUJI Hideaki return 2; 619161980f4SDavid S. Miller if ((dev->flags & IFF_LOOPBACK) && 620161980f4SDavid S. Miller rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif) 621161980f4SDavid S. Miller return 1; 622554cfb7eSYOSHIFUJI Hideaki return 0; 6231da177e4SLinus Torvalds } 6241da177e4SLinus Torvalds 625afc154e9SHannes Frederic Sowa static inline enum rt6_nud_state rt6_check_neigh(struct rt6_info *rt) 6261da177e4SLinus Torvalds { 627f2c31e32SEric Dumazet struct neighbour *neigh; 628afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 629f2c31e32SEric Dumazet 6304d0c5911SYOSHIFUJI Hideaki if (rt->rt6i_flags & RTF_NONEXTHOP || 6314d0c5911SYOSHIFUJI Hideaki !(rt->rt6i_flags & RTF_GATEWAY)) 632afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 633145a3621SYOSHIFUJI Hideaki / 吉藤英明 634145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 635145a3621SYOSHIFUJI Hideaki / 吉藤英明 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 636145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 637145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 638554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 639afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 640398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 641a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 642afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6437e980569SJiri Benc else 6447e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 645398bcbebSYOSHIFUJI Hideaki #endif 646145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 647afc154e9SHannes Frederic Sowa } else { 648afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6497e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 650a5a81f0bSPaul Marks } 651145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 652145a3621SYOSHIFUJI Hideaki / 吉藤英明 653a5a81f0bSPaul Marks return ret; 6541da177e4SLinus Torvalds } 6551da177e4SLinus Torvalds 656554cfb7eSYOSHIFUJI Hideaki static int rt6_score_route(struct rt6_info *rt, int oif, 657554cfb7eSYOSHIFUJI Hideaki int strict) 658554cfb7eSYOSHIFUJI Hideaki { 659a5a81f0bSPaul Marks int m; 6604d0c5911SYOSHIFUJI Hideaki 6614d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 66277d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 663afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 664ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 665ebacaaa0SYOSHIFUJI Hideaki m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2; 666ebacaaa0SYOSHIFUJI Hideaki #endif 667afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 668afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 669afc154e9SHannes Frederic Sowa if (n < 0) 670afc154e9SHannes Frederic Sowa return n; 671afc154e9SHannes Frederic Sowa } 672554cfb7eSYOSHIFUJI Hideaki return m; 673554cfb7eSYOSHIFUJI Hideaki } 674554cfb7eSYOSHIFUJI Hideaki 675f11e6659SDavid S. Miller static struct rt6_info *find_match(struct rt6_info *rt, int oif, int strict, 676afc154e9SHannes Frederic Sowa int *mpri, struct rt6_info *match, 677afc154e9SHannes Frederic Sowa bool *do_rr) 678554cfb7eSYOSHIFUJI Hideaki { 679554cfb7eSYOSHIFUJI Hideaki int m; 680afc154e9SHannes Frederic Sowa bool match_do_rr = false; 68135103d11SAndy Gospodarek struct inet6_dev *idev = rt->rt6i_idev; 68235103d11SAndy Gospodarek 68314c5206cSIdo Schimmel if (idev->cnf.ignore_routes_with_linkdown && 68414c5206cSIdo Schimmel rt->rt6i_nh_flags & RTNH_F_LINKDOWN && 685d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 68635103d11SAndy Gospodarek goto out; 687554cfb7eSYOSHIFUJI Hideaki 688554cfb7eSYOSHIFUJI Hideaki if (rt6_check_expired(rt)) 689f11e6659SDavid S. Miller goto out; 690554cfb7eSYOSHIFUJI Hideaki 691554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6927e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 693afc154e9SHannes Frederic Sowa match_do_rr = true; 694afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6957e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 696f11e6659SDavid S. Miller goto out; 6971da177e4SLinus Torvalds } 698f11e6659SDavid S. Miller 699afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 700afc154e9SHannes Frederic Sowa rt6_probe(rt); 701afc154e9SHannes Frederic Sowa 7027e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 703afc154e9SHannes Frederic Sowa if (m > *mpri) { 704afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 705afc154e9SHannes Frederic Sowa *mpri = m; 706afc154e9SHannes Frederic Sowa match = rt; 707afc154e9SHannes Frederic Sowa } 708f11e6659SDavid S. Miller out: 709f11e6659SDavid S. Miller return match; 7101da177e4SLinus Torvalds } 7111da177e4SLinus Torvalds 712f11e6659SDavid S. Miller static struct rt6_info *find_rr_leaf(struct fib6_node *fn, 7138d1040e8SWei Wang struct rt6_info *leaf, 714f11e6659SDavid S. Miller struct rt6_info *rr_head, 715afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 716afc154e9SHannes Frederic Sowa bool *do_rr) 717f11e6659SDavid S. Miller { 7189fbdcfafSSteffen Klassert struct rt6_info *rt, *match, *cont; 719f11e6659SDavid S. Miller int mpri = -1; 720f11e6659SDavid S. Miller 721f11e6659SDavid S. Miller match = NULL; 7229fbdcfafSSteffen Klassert cont = NULL; 723071fb37eSDavid Miller for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) { 7249fbdcfafSSteffen Klassert if (rt->rt6i_metric != metric) { 7259fbdcfafSSteffen Klassert cont = rt; 7269fbdcfafSSteffen Klassert break; 7279fbdcfafSSteffen Klassert } 7289fbdcfafSSteffen Klassert 729afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7309fbdcfafSSteffen Klassert } 7319fbdcfafSSteffen Klassert 73266f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 733071fb37eSDavid Miller rt = rcu_dereference(rt->rt6_next)) { 7349fbdcfafSSteffen Klassert if (rt->rt6i_metric != metric) { 7359fbdcfafSSteffen Klassert cont = rt; 7369fbdcfafSSteffen Klassert break; 7379fbdcfafSSteffen Klassert } 7389fbdcfafSSteffen Klassert 7399fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7409fbdcfafSSteffen Klassert } 7419fbdcfafSSteffen Klassert 7429fbdcfafSSteffen Klassert if (match || !cont) 7439fbdcfafSSteffen Klassert return match; 7449fbdcfafSSteffen Klassert 745071fb37eSDavid Miller for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next)) 746afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 747f11e6659SDavid S. Miller 748f11e6659SDavid S. Miller return match; 749f11e6659SDavid S. Miller } 750f11e6659SDavid S. Miller 7518d1040e8SWei Wang static struct rt6_info *rt6_select(struct net *net, struct fib6_node *fn, 7528d1040e8SWei Wang int oif, int strict) 753f11e6659SDavid S. Miller { 75466f5d6ceSWei Wang struct rt6_info *leaf = rcu_dereference(fn->leaf); 755f11e6659SDavid S. Miller struct rt6_info *match, *rt0; 756afc154e9SHannes Frederic Sowa bool do_rr = false; 75717ecf590SWei Wang int key_plen; 758f11e6659SDavid S. Miller 75987b1af8dSWei Wang if (!leaf || leaf == net->ipv6.ip6_null_entry) 7608d1040e8SWei Wang return net->ipv6.ip6_null_entry; 7618d1040e8SWei Wang 76266f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 763f11e6659SDavid S. Miller if (!rt0) 76466f5d6ceSWei Wang rt0 = leaf; 765f11e6659SDavid S. Miller 76617ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 76717ecf590SWei Wang * and fn->leaf does not points to its child's leaf 76817ecf590SWei Wang * (This might happen if all routes under fn are deleted from 76917ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 77017ecf590SWei Wang */ 77117ecf590SWei Wang key_plen = rt0->rt6i_dst.plen; 77217ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 77317ecf590SWei Wang if (rt0->rt6i_src.plen) 77417ecf590SWei Wang key_plen = rt0->rt6i_src.plen; 77517ecf590SWei Wang #endif 77617ecf590SWei Wang if (fn->fn_bit != key_plen) 77717ecf590SWei Wang return net->ipv6.ip6_null_entry; 77817ecf590SWei Wang 7798d1040e8SWei Wang match = find_rr_leaf(fn, leaf, rt0, rt0->rt6i_metric, oif, strict, 780afc154e9SHannes Frederic Sowa &do_rr); 781f11e6659SDavid S. Miller 782afc154e9SHannes Frederic Sowa if (do_rr) { 783071fb37eSDavid Miller struct rt6_info *next = rcu_dereference(rt0->rt6_next); 784f11e6659SDavid S. Miller 785554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 786f11e6659SDavid S. Miller if (!next || next->rt6i_metric != rt0->rt6i_metric) 7878d1040e8SWei Wang next = leaf; 788f11e6659SDavid S. Miller 78966f5d6ceSWei Wang if (next != rt0) { 79066f5d6ceSWei Wang spin_lock_bh(&leaf->rt6i_table->tb6_lock); 79166f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 79266f5d6ceSWei Wang if (next->rt6i_node) 79366f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 79466f5d6ceSWei Wang spin_unlock_bh(&leaf->rt6i_table->tb6_lock); 79566f5d6ceSWei Wang } 796554cfb7eSYOSHIFUJI Hideaki } 797554cfb7eSYOSHIFUJI Hideaki 798a02cec21SEric Dumazet return match ? match : net->ipv6.ip6_null_entry; 7991da177e4SLinus Torvalds } 8001da177e4SLinus Torvalds 8018b9df265SMartin KaFai Lau static bool rt6_is_gw_or_nonexthop(const struct rt6_info *rt) 8028b9df265SMartin KaFai Lau { 8038b9df265SMartin KaFai Lau return (rt->rt6i_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 8048b9df265SMartin KaFai Lau } 8058b9df265SMartin KaFai Lau 80670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 80770ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 808b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 80970ceb4f5SYOSHIFUJI Hideaki { 810c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 81170ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 81270ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 81370ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 8144bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 81570ceb4f5SYOSHIFUJI Hideaki struct rt6_info *rt; 81670ceb4f5SYOSHIFUJI Hideaki 81770ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 81870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81970ceb4f5SYOSHIFUJI Hideaki } 82070ceb4f5SYOSHIFUJI Hideaki 82170ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 82270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 82370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82470ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 82570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 82770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 82870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82970ceb4f5SYOSHIFUJI Hideaki } 83070ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 83170ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 83270ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83370ceb4f5SYOSHIFUJI Hideaki } 83470ceb4f5SYOSHIFUJI Hideaki } 83570ceb4f5SYOSHIFUJI Hideaki 83670ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 83770ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8383933fc95SJens Rosenboom return -EINVAL; 83970ceb4f5SYOSHIFUJI Hideaki 8404bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 84170ceb4f5SYOSHIFUJI Hideaki 84270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 84370ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 84470ceb4f5SYOSHIFUJI Hideaki else { 84570ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 84670ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 84770ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 84870ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 84970ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 85070ceb4f5SYOSHIFUJI Hideaki } 85170ceb4f5SYOSHIFUJI Hideaki 852f104a567SDuan Jiong if (rinfo->prefix_len == 0) 853f104a567SDuan Jiong rt = rt6_get_dflt_router(gwaddr, dev); 854f104a567SDuan Jiong else 855f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 856830218c1SDavid Ahern gwaddr, dev); 85770ceb4f5SYOSHIFUJI Hideaki 85870ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 859e0a1ad73SThomas Graf ip6_del_rt(rt); 86070ceb4f5SYOSHIFUJI Hideaki rt = NULL; 86170ceb4f5SYOSHIFUJI Hideaki } 86270ceb4f5SYOSHIFUJI Hideaki 86370ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 864830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 865830218c1SDavid Ahern dev, pref); 86670ceb4f5SYOSHIFUJI Hideaki else if (rt) 86770ceb4f5SYOSHIFUJI Hideaki rt->rt6i_flags = RTF_ROUTEINFO | 86870ceb4f5SYOSHIFUJI Hideaki (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 86970ceb4f5SYOSHIFUJI Hideaki 87070ceb4f5SYOSHIFUJI Hideaki if (rt) { 8711716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 8721716a961SGao feng rt6_clean_expires(rt); 8731716a961SGao feng else 8741716a961SGao feng rt6_set_expires(rt, jiffies + HZ * lifetime); 8751716a961SGao feng 87694e187c0SAmerigo Wang ip6_rt_put(rt); 87770ceb4f5SYOSHIFUJI Hideaki } 87870ceb4f5SYOSHIFUJI Hideaki return 0; 87970ceb4f5SYOSHIFUJI Hideaki } 88070ceb4f5SYOSHIFUJI Hideaki #endif 88170ceb4f5SYOSHIFUJI Hideaki 882a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 883a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 884a3c00e46SMartin KaFai Lau { 88566f5d6ceSWei Wang struct fib6_node *pn, *sn; 886a3c00e46SMartin KaFai Lau while (1) { 887a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 888a3c00e46SMartin KaFai Lau return NULL; 88966f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 89066f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 89166f5d6ceSWei Wang if (sn && sn != fn) 89266f5d6ceSWei Wang fn = fib6_lookup(sn, NULL, saddr); 893a3c00e46SMartin KaFai Lau else 894a3c00e46SMartin KaFai Lau fn = pn; 895a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 896a3c00e46SMartin KaFai Lau return fn; 897a3c00e46SMartin KaFai Lau } 898a3c00e46SMartin KaFai Lau } 899c71099acSThomas Graf 900d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 901d3843fe5SWei Wang bool null_fallback) 902d3843fe5SWei Wang { 903d3843fe5SWei Wang struct rt6_info *rt = *prt; 904d3843fe5SWei Wang 905d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 906d3843fe5SWei Wang return true; 907d3843fe5SWei Wang if (null_fallback) { 908d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 909d3843fe5SWei Wang dst_hold(&rt->dst); 910d3843fe5SWei Wang } else { 911d3843fe5SWei Wang rt = NULL; 912d3843fe5SWei Wang } 913d3843fe5SWei Wang *prt = rt; 914d3843fe5SWei Wang return false; 915d3843fe5SWei Wang } 916d3843fe5SWei Wang 9178ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 9188ed67789SDaniel Lezcano struct fib6_table *table, 9194c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 9201da177e4SLinus Torvalds { 9212b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 9221da177e4SLinus Torvalds struct fib6_node *fn; 9231da177e4SLinus Torvalds 92466f5d6ceSWei Wang rcu_read_lock(); 9254c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 926c71099acSThomas Graf restart: 92766f5d6ceSWei Wang rt = rcu_dereference(fn->leaf); 92866f5d6ceSWei Wang if (!rt) { 92966f5d6ceSWei Wang rt = net->ipv6.ip6_null_entry; 93066f5d6ceSWei Wang } else { 93166f5d6ceSWei Wang rt = rt6_device_match(net, rt, &fl6->saddr, 93266f5d6ceSWei Wang fl6->flowi6_oif, flags); 93351ebd318SNicolas Dichtel if (rt->rt6i_nsiblings && fl6->flowi6_oif == 0) 93466f5d6ceSWei Wang rt = rt6_multipath_select(rt, fl6, 93566f5d6ceSWei Wang fl6->flowi6_oif, flags); 93666f5d6ceSWei Wang } 937a3c00e46SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 938a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 939a3c00e46SMartin KaFai Lau if (fn) 940a3c00e46SMartin KaFai Lau goto restart; 941a3c00e46SMartin KaFai Lau } 9422b760fcfSWei Wang /* Search through exception table */ 9432b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr); 9442b760fcfSWei Wang if (rt_cache) 9452b760fcfSWei Wang rt = rt_cache; 9462b760fcfSWei Wang 947d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 948d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 949d3843fe5SWei Wang 95066f5d6ceSWei Wang rcu_read_unlock(); 951b811580dSDavid Ahern 952b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 953b811580dSDavid Ahern 9541da177e4SLinus Torvalds return rt; 955c71099acSThomas Graf 956c71099acSThomas Graf } 957c71099acSThomas Graf 958ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 959ea6e574eSFlorian Westphal int flags) 960ea6e574eSFlorian Westphal { 961ea6e574eSFlorian Westphal return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_lookup); 962ea6e574eSFlorian Westphal } 963ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 964ea6e574eSFlorian Westphal 9659acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 9669acd9f3aSYOSHIFUJI Hideaki const struct in6_addr *saddr, int oif, int strict) 967c71099acSThomas Graf { 9684c9483b2SDavid S. Miller struct flowi6 fl6 = { 9694c9483b2SDavid S. Miller .flowi6_oif = oif, 9704c9483b2SDavid S. Miller .daddr = *daddr, 971c71099acSThomas Graf }; 972c71099acSThomas Graf struct dst_entry *dst; 97377d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 974c71099acSThomas Graf 975adaa70bbSThomas Graf if (saddr) { 9764c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 977adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 978adaa70bbSThomas Graf } 979adaa70bbSThomas Graf 9804c9483b2SDavid S. Miller dst = fib6_rule_lookup(net, &fl6, flags, ip6_pol_route_lookup); 981c71099acSThomas Graf if (dst->error == 0) 982c71099acSThomas Graf return (struct rt6_info *) dst; 983c71099acSThomas Graf 984c71099acSThomas Graf dst_release(dst); 985c71099acSThomas Graf 9861da177e4SLinus Torvalds return NULL; 9871da177e4SLinus Torvalds } 9887159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 9897159039aSYOSHIFUJI Hideaki 990c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 9911cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 9921cfb71eeSWei Wang * route is released. 9931cfb71eeSWei Wang * Caller must hold dst before calling it. 9941da177e4SLinus Torvalds */ 9951da177e4SLinus Torvalds 996e5fd387aSMichal Kubeček static int __ip6_ins_rt(struct rt6_info *rt, struct nl_info *info, 997333c4301SDavid Ahern struct mx6_config *mxc, 998333c4301SDavid Ahern struct netlink_ext_ack *extack) 9991da177e4SLinus Torvalds { 10001da177e4SLinus Torvalds int err; 1001c71099acSThomas Graf struct fib6_table *table; 10021da177e4SLinus Torvalds 1003c71099acSThomas Graf table = rt->rt6i_table; 100466f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1005333c4301SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, mxc, extack); 100666f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 10071da177e4SLinus Torvalds 10081da177e4SLinus Torvalds return err; 10091da177e4SLinus Torvalds } 10101da177e4SLinus Torvalds 101140e22e8fSThomas Graf int ip6_ins_rt(struct rt6_info *rt) 101240e22e8fSThomas Graf { 1013e715b6d3SFlorian Westphal struct nl_info info = { .nl_net = dev_net(rt->dst.dev), }; 1014e715b6d3SFlorian Westphal struct mx6_config mxc = { .mx = NULL, }; 1015e715b6d3SFlorian Westphal 10161cfb71eeSWei Wang /* Hold dst to account for the reference from the fib6 tree */ 10171cfb71eeSWei Wang dst_hold(&rt->dst); 1018333c4301SDavid Ahern return __ip6_ins_rt(rt, &info, &mxc, NULL); 101940e22e8fSThomas Graf } 102040e22e8fSThomas Graf 10214832c30dSDavid Ahern /* called with rcu_lock held */ 10224832c30dSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct rt6_info *rt) 10234832c30dSDavid Ahern { 10244832c30dSDavid Ahern struct net_device *dev = rt->dst.dev; 10254832c30dSDavid Ahern 102698d11291SDavid Ahern if (rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) { 10274832c30dSDavid Ahern /* for copies of local routes, dst->dev needs to be the 10284832c30dSDavid Ahern * device if it is a master device, the master device if 10294832c30dSDavid Ahern * device is enslaved, and the loopback as the default 10304832c30dSDavid Ahern */ 10314832c30dSDavid Ahern if (netif_is_l3_slave(dev) && 10324832c30dSDavid Ahern !rt6_need_strict(&rt->rt6i_dst.addr)) 10334832c30dSDavid Ahern dev = l3mdev_master_dev_rcu(dev); 10344832c30dSDavid Ahern else if (!netif_is_l3_master(dev)) 10354832c30dSDavid Ahern dev = dev_net(dev)->loopback_dev; 10364832c30dSDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 10374832c30dSDavid Ahern * case we want dev returned to be dev 10384832c30dSDavid Ahern */ 10394832c30dSDavid Ahern } 10404832c30dSDavid Ahern 10414832c30dSDavid Ahern return dev; 10424832c30dSDavid Ahern } 10434832c30dSDavid Ahern 10448b9df265SMartin KaFai Lau static struct rt6_info *ip6_rt_cache_alloc(struct rt6_info *ort, 104521efcfa0SEric Dumazet const struct in6_addr *daddr, 1046b71d1d42SEric Dumazet const struct in6_addr *saddr) 10471da177e4SLinus Torvalds { 10484832c30dSDavid Ahern struct net_device *dev; 10491da177e4SLinus Torvalds struct rt6_info *rt; 10501da177e4SLinus Torvalds 10511da177e4SLinus Torvalds /* 10521da177e4SLinus Torvalds * Clone the route. 10531da177e4SLinus Torvalds */ 10541da177e4SLinus Torvalds 1055d52d3997SMartin KaFai Lau if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)) 10563a2232e9SDavid Miller ort = ort->from; 10571da177e4SLinus Torvalds 10584832c30dSDavid Ahern rcu_read_lock(); 10594832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 10604832c30dSDavid Ahern rt = __ip6_dst_alloc(dev_net(dev), dev, 0); 10614832c30dSDavid Ahern rcu_read_unlock(); 106283a09abdSMartin KaFai Lau if (!rt) 106383a09abdSMartin KaFai Lau return NULL; 106483a09abdSMartin KaFai Lau 106583a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 10668b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 106783a09abdSMartin KaFai Lau rt->rt6i_metric = 0; 106883a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 106983a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 107083a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 10718b9df265SMartin KaFai Lau 10728b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 1073bb3c3686SDavid S. Miller if (ort->rt6i_dst.plen != 128 && 107421efcfa0SEric Dumazet ipv6_addr_equal(&ort->rt6i_dst.addr, daddr)) 107558c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 10761da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 10771da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 10784e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 10791da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 10801da177e4SLinus Torvalds } 10811da177e4SLinus Torvalds #endif 108295a9a5baSYOSHIFUJI Hideaki } 108395a9a5baSYOSHIFUJI Hideaki 1084299d9939SYOSHIFUJI Hideaki return rt; 1085299d9939SYOSHIFUJI Hideaki } 1086299d9939SYOSHIFUJI Hideaki 1087d52d3997SMartin KaFai Lau static struct rt6_info *ip6_rt_pcpu_alloc(struct rt6_info *rt) 1088d52d3997SMartin KaFai Lau { 10894832c30dSDavid Ahern struct net_device *dev; 1090d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1091d52d3997SMartin KaFai Lau 10924832c30dSDavid Ahern rcu_read_lock(); 10934832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 10944832c30dSDavid Ahern pcpu_rt = __ip6_dst_alloc(dev_net(dev), dev, rt->dst.flags); 10954832c30dSDavid Ahern rcu_read_unlock(); 1096d52d3997SMartin KaFai Lau if (!pcpu_rt) 1097d52d3997SMartin KaFai Lau return NULL; 1098d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1099d52d3997SMartin KaFai Lau pcpu_rt->rt6i_protocol = rt->rt6i_protocol; 1100d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1101d52d3997SMartin KaFai Lau return pcpu_rt; 1102d52d3997SMartin KaFai Lau } 1103d52d3997SMartin KaFai Lau 110466f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 1105d52d3997SMartin KaFai Lau static struct rt6_info *rt6_get_pcpu_route(struct rt6_info *rt) 1106d52d3997SMartin KaFai Lau { 1107a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1108d52d3997SMartin KaFai Lau 1109d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1110d52d3997SMartin KaFai Lau pcpu_rt = *p; 1111d52d3997SMartin KaFai Lau 1112d3843fe5SWei Wang if (pcpu_rt && ip6_hold_safe(NULL, &pcpu_rt, false)) 1113a73e4195SMartin KaFai Lau rt6_dst_from_metrics_check(pcpu_rt); 1114d3843fe5SWei Wang 1115a73e4195SMartin KaFai Lau return pcpu_rt; 1116a73e4195SMartin KaFai Lau } 1117a73e4195SMartin KaFai Lau 1118a73e4195SMartin KaFai Lau static struct rt6_info *rt6_make_pcpu_route(struct rt6_info *rt) 1119a73e4195SMartin KaFai Lau { 1120a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1121d52d3997SMartin KaFai Lau 1122d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1123d52d3997SMartin KaFai Lau if (!pcpu_rt) { 1124d52d3997SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 1125d52d3997SMartin KaFai Lau 11269c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 11279c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1128d52d3997SMartin KaFai Lau } 1129d52d3997SMartin KaFai Lau 1130a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1131a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1132d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1133951f788aSEric Dumazet BUG_ON(prev); 1134a94b9367SWei Wang 1135d52d3997SMartin KaFai Lau rt6_dst_from_metrics_check(pcpu_rt); 1136d52d3997SMartin KaFai Lau return pcpu_rt; 1137d52d3997SMartin KaFai Lau } 1138d52d3997SMartin KaFai Lau 113935732d01SWei Wang /* exception hash table implementation 114035732d01SWei Wang */ 114135732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 114235732d01SWei Wang 114335732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 114435732d01SWei Wang * Caller must hold rt6_exception_lock 114535732d01SWei Wang */ 114635732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 114735732d01SWei Wang struct rt6_exception *rt6_ex) 114835732d01SWei Wang { 1149b2427e67SColin Ian King struct net *net; 115081eb8447SWei Wang 115135732d01SWei Wang if (!bucket || !rt6_ex) 115235732d01SWei Wang return; 1153b2427e67SColin Ian King 1154b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 115535732d01SWei Wang rt6_ex->rt6i->rt6i_node = NULL; 115635732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 115735732d01SWei Wang rt6_release(rt6_ex->rt6i); 115835732d01SWei Wang kfree_rcu(rt6_ex, rcu); 115935732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 116035732d01SWei Wang bucket->depth--; 116181eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 116235732d01SWei Wang } 116335732d01SWei Wang 116435732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 116535732d01SWei Wang * Caller must hold rt6_exception_lock 116635732d01SWei Wang */ 116735732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 116835732d01SWei Wang { 116935732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 117035732d01SWei Wang 117135732d01SWei Wang if (!bucket) 117235732d01SWei Wang return; 117335732d01SWei Wang 117435732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 117535732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 117635732d01SWei Wang oldest = rt6_ex; 117735732d01SWei Wang } 117835732d01SWei Wang rt6_remove_exception(bucket, oldest); 117935732d01SWei Wang } 118035732d01SWei Wang 118135732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 118235732d01SWei Wang const struct in6_addr *src) 118335732d01SWei Wang { 118435732d01SWei Wang static u32 seed __read_mostly; 118535732d01SWei Wang u32 val; 118635732d01SWei Wang 118735732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 118835732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 118935732d01SWei Wang 119035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 119135732d01SWei Wang if (src) 119235732d01SWei Wang val = jhash(src, sizeof(*src), val); 119335732d01SWei Wang #endif 119435732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 119535732d01SWei Wang } 119635732d01SWei Wang 119735732d01SWei Wang /* Helper function to find the cached rt in the hash table 119835732d01SWei Wang * and update bucket pointer to point to the bucket for this 119935732d01SWei Wang * (daddr, saddr) pair 120035732d01SWei Wang * Caller must hold rt6_exception_lock 120135732d01SWei Wang */ 120235732d01SWei Wang static struct rt6_exception * 120335732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 120435732d01SWei Wang const struct in6_addr *daddr, 120535732d01SWei Wang const struct in6_addr *saddr) 120635732d01SWei Wang { 120735732d01SWei Wang struct rt6_exception *rt6_ex; 120835732d01SWei Wang u32 hval; 120935732d01SWei Wang 121035732d01SWei Wang if (!(*bucket) || !daddr) 121135732d01SWei Wang return NULL; 121235732d01SWei Wang 121335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 121435732d01SWei Wang *bucket += hval; 121535732d01SWei Wang 121635732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 121735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 121835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 121935732d01SWei Wang 122035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 122135732d01SWei Wang if (matched && saddr) 122235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 122335732d01SWei Wang #endif 122435732d01SWei Wang if (matched) 122535732d01SWei Wang return rt6_ex; 122635732d01SWei Wang } 122735732d01SWei Wang return NULL; 122835732d01SWei Wang } 122935732d01SWei Wang 123035732d01SWei Wang /* Helper function to find the cached rt in the hash table 123135732d01SWei Wang * and update bucket pointer to point to the bucket for this 123235732d01SWei Wang * (daddr, saddr) pair 123335732d01SWei Wang * Caller must hold rcu_read_lock() 123435732d01SWei Wang */ 123535732d01SWei Wang static struct rt6_exception * 123635732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 123735732d01SWei Wang const struct in6_addr *daddr, 123835732d01SWei Wang const struct in6_addr *saddr) 123935732d01SWei Wang { 124035732d01SWei Wang struct rt6_exception *rt6_ex; 124135732d01SWei Wang u32 hval; 124235732d01SWei Wang 124335732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 124435732d01SWei Wang 124535732d01SWei Wang if (!(*bucket) || !daddr) 124635732d01SWei Wang return NULL; 124735732d01SWei Wang 124835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 124935732d01SWei Wang *bucket += hval; 125035732d01SWei Wang 125135732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 125235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 125335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 125435732d01SWei Wang 125535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 125635732d01SWei Wang if (matched && saddr) 125735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 125835732d01SWei Wang #endif 125935732d01SWei Wang if (matched) 126035732d01SWei Wang return rt6_ex; 126135732d01SWei Wang } 126235732d01SWei Wang return NULL; 126335732d01SWei Wang } 126435732d01SWei Wang 126535732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 126635732d01SWei Wang struct rt6_info *ort) 126735732d01SWei Wang { 126881eb8447SWei Wang struct net *net = dev_net(ort->dst.dev); 126935732d01SWei Wang struct rt6_exception_bucket *bucket; 127035732d01SWei Wang struct in6_addr *src_key = NULL; 127135732d01SWei Wang struct rt6_exception *rt6_ex; 127235732d01SWei Wang int err = 0; 127335732d01SWei Wang 127435732d01SWei Wang /* ort can't be a cache or pcpu route */ 127535732d01SWei Wang if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)) 12763a2232e9SDavid Miller ort = ort->from; 127735732d01SWei Wang WARN_ON_ONCE(ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)); 127835732d01SWei Wang 127935732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 128035732d01SWei Wang 128135732d01SWei Wang if (ort->exception_bucket_flushed) { 128235732d01SWei Wang err = -EINVAL; 128335732d01SWei Wang goto out; 128435732d01SWei Wang } 128535732d01SWei Wang 128635732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 128735732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 128835732d01SWei Wang if (!bucket) { 128935732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 129035732d01SWei Wang GFP_ATOMIC); 129135732d01SWei Wang if (!bucket) { 129235732d01SWei Wang err = -ENOMEM; 129335732d01SWei Wang goto out; 129435732d01SWei Wang } 129535732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 129635732d01SWei Wang } 129735732d01SWei Wang 129835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 129935732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 130035732d01SWei Wang * and exception table is indexed by a hash of 130135732d01SWei Wang * both rt6i_dst and rt6i_src. 130235732d01SWei Wang * Otherwise, the exception table is indexed by 130335732d01SWei Wang * a hash of only rt6i_dst. 130435732d01SWei Wang */ 130535732d01SWei Wang if (ort->rt6i_src.plen) 130635732d01SWei Wang src_key = &nrt->rt6i_src.addr; 130735732d01SWei Wang #endif 130860006a48SWei Wang 130960006a48SWei Wang /* Update rt6i_prefsrc as it could be changed 131060006a48SWei Wang * in rt6_remove_prefsrc() 131160006a48SWei Wang */ 131260006a48SWei Wang nrt->rt6i_prefsrc = ort->rt6i_prefsrc; 1313f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1314f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1315f5bbe7eeSWei Wang * is less than ort's mtu value. 1316f5bbe7eeSWei Wang */ 1317f5bbe7eeSWei Wang if (nrt->rt6i_pmtu >= dst_mtu(&ort->dst)) { 1318f5bbe7eeSWei Wang err = -EINVAL; 1319f5bbe7eeSWei Wang goto out; 1320f5bbe7eeSWei Wang } 132160006a48SWei Wang 132235732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 132335732d01SWei Wang src_key); 132435732d01SWei Wang if (rt6_ex) 132535732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 132635732d01SWei Wang 132735732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 132835732d01SWei Wang if (!rt6_ex) { 132935732d01SWei Wang err = -ENOMEM; 133035732d01SWei Wang goto out; 133135732d01SWei Wang } 133235732d01SWei Wang rt6_ex->rt6i = nrt; 133335732d01SWei Wang rt6_ex->stamp = jiffies; 133435732d01SWei Wang atomic_inc(&nrt->rt6i_ref); 133535732d01SWei Wang nrt->rt6i_node = ort->rt6i_node; 133635732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 133735732d01SWei Wang bucket->depth++; 133881eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 133935732d01SWei Wang 134035732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 134135732d01SWei Wang rt6_exception_remove_oldest(bucket); 134235732d01SWei Wang 134335732d01SWei Wang out: 134435732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 134535732d01SWei Wang 134635732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1347b886d5f2SPaolo Abeni if (!err) { 134835732d01SWei Wang fib6_update_sernum(ort); 1349b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1350b886d5f2SPaolo Abeni } 135135732d01SWei Wang 135235732d01SWei Wang return err; 135335732d01SWei Wang } 135435732d01SWei Wang 135535732d01SWei Wang void rt6_flush_exceptions(struct rt6_info *rt) 135635732d01SWei Wang { 135735732d01SWei Wang struct rt6_exception_bucket *bucket; 135835732d01SWei Wang struct rt6_exception *rt6_ex; 135935732d01SWei Wang struct hlist_node *tmp; 136035732d01SWei Wang int i; 136135732d01SWei Wang 136235732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 136335732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 136435732d01SWei Wang rt->exception_bucket_flushed = 1; 136535732d01SWei Wang 136635732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 136735732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 136835732d01SWei Wang if (!bucket) 136935732d01SWei Wang goto out; 137035732d01SWei Wang 137135732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 137235732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 137335732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 137435732d01SWei Wang WARN_ON_ONCE(bucket->depth); 137535732d01SWei Wang bucket++; 137635732d01SWei Wang } 137735732d01SWei Wang 137835732d01SWei Wang out: 137935732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 138035732d01SWei Wang } 138135732d01SWei Wang 138235732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 138335732d01SWei Wang * Caller has to hold rcu_read_lock() 138435732d01SWei Wang */ 138535732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt, 138635732d01SWei Wang struct in6_addr *daddr, 138735732d01SWei Wang struct in6_addr *saddr) 138835732d01SWei Wang { 138935732d01SWei Wang struct rt6_exception_bucket *bucket; 139035732d01SWei Wang struct in6_addr *src_key = NULL; 139135732d01SWei Wang struct rt6_exception *rt6_ex; 139235732d01SWei Wang struct rt6_info *res = NULL; 139335732d01SWei Wang 139435732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 139535732d01SWei Wang 139635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 139735732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 139835732d01SWei Wang * and exception table is indexed by a hash of 139935732d01SWei Wang * both rt6i_dst and rt6i_src. 140035732d01SWei Wang * Otherwise, the exception table is indexed by 140135732d01SWei Wang * a hash of only rt6i_dst. 140235732d01SWei Wang */ 140335732d01SWei Wang if (rt->rt6i_src.plen) 140435732d01SWei Wang src_key = saddr; 140535732d01SWei Wang #endif 140635732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 140735732d01SWei Wang 140835732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 140935732d01SWei Wang res = rt6_ex->rt6i; 141035732d01SWei Wang 141135732d01SWei Wang return res; 141235732d01SWei Wang } 141335732d01SWei Wang 141435732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 141535732d01SWei Wang int rt6_remove_exception_rt(struct rt6_info *rt) 141635732d01SWei Wang { 141735732d01SWei Wang struct rt6_exception_bucket *bucket; 14183a2232e9SDavid Miller struct rt6_info *from = rt->from; 141935732d01SWei Wang struct in6_addr *src_key = NULL; 142035732d01SWei Wang struct rt6_exception *rt6_ex; 142135732d01SWei Wang int err; 142235732d01SWei Wang 142335732d01SWei Wang if (!from || 1424442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 142535732d01SWei Wang return -EINVAL; 142635732d01SWei Wang 142735732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 142835732d01SWei Wang return -ENOENT; 142935732d01SWei Wang 143035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 143135732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 143235732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 143435732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 143535732d01SWei Wang * and exception table is indexed by a hash of 143635732d01SWei Wang * both rt6i_dst and rt6i_src. 143735732d01SWei Wang * Otherwise, the exception table is indexed by 143835732d01SWei Wang * a hash of only rt6i_dst. 143935732d01SWei Wang */ 144035732d01SWei Wang if (from->rt6i_src.plen) 144135732d01SWei Wang src_key = &rt->rt6i_src.addr; 144235732d01SWei Wang #endif 144335732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 144435732d01SWei Wang &rt->rt6i_dst.addr, 144535732d01SWei Wang src_key); 144635732d01SWei Wang if (rt6_ex) { 144735732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 144835732d01SWei Wang err = 0; 144935732d01SWei Wang } else { 145035732d01SWei Wang err = -ENOENT; 145135732d01SWei Wang } 145235732d01SWei Wang 145335732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 145435732d01SWei Wang return err; 145535732d01SWei Wang } 145635732d01SWei Wang 145735732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 145835732d01SWei Wang * refresh its stamp 145935732d01SWei Wang */ 146035732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 146135732d01SWei Wang { 146235732d01SWei Wang struct rt6_exception_bucket *bucket; 14633a2232e9SDavid Miller struct rt6_info *from = rt->from; 146435732d01SWei Wang struct in6_addr *src_key = NULL; 146535732d01SWei Wang struct rt6_exception *rt6_ex; 146635732d01SWei Wang 146735732d01SWei Wang if (!from || 1468442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 146935732d01SWei Wang return; 147035732d01SWei Wang 147135732d01SWei Wang rcu_read_lock(); 147235732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 147335732d01SWei Wang 147435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 147535732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 147635732d01SWei Wang * and exception table is indexed by a hash of 147735732d01SWei Wang * both rt6i_dst and rt6i_src. 147835732d01SWei Wang * Otherwise, the exception table is indexed by 147935732d01SWei Wang * a hash of only rt6i_dst. 148035732d01SWei Wang */ 148135732d01SWei Wang if (from->rt6i_src.plen) 148235732d01SWei Wang src_key = &rt->rt6i_src.addr; 148335732d01SWei Wang #endif 148435732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 148535732d01SWei Wang &rt->rt6i_dst.addr, 148635732d01SWei Wang src_key); 148735732d01SWei Wang if (rt6_ex) 148835732d01SWei Wang rt6_ex->stamp = jiffies; 148935732d01SWei Wang 149035732d01SWei Wang rcu_read_unlock(); 149135732d01SWei Wang } 149235732d01SWei Wang 149360006a48SWei Wang static void rt6_exceptions_remove_prefsrc(struct rt6_info *rt) 149460006a48SWei Wang { 149560006a48SWei Wang struct rt6_exception_bucket *bucket; 149660006a48SWei Wang struct rt6_exception *rt6_ex; 149760006a48SWei Wang int i; 149860006a48SWei Wang 149960006a48SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 150060006a48SWei Wang lockdep_is_held(&rt6_exception_lock)); 150160006a48SWei Wang 150260006a48SWei Wang if (bucket) { 150360006a48SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 150460006a48SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 150560006a48SWei Wang rt6_ex->rt6i->rt6i_prefsrc.plen = 0; 150660006a48SWei Wang } 150760006a48SWei Wang bucket++; 150860006a48SWei Wang } 150960006a48SWei Wang } 151060006a48SWei Wang } 151160006a48SWei Wang 1512f5bbe7eeSWei Wang static void rt6_exceptions_update_pmtu(struct rt6_info *rt, int mtu) 1513f5bbe7eeSWei Wang { 1514f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1515f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1516f5bbe7eeSWei Wang int i; 1517f5bbe7eeSWei Wang 1518f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1519f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1520f5bbe7eeSWei Wang 1521f5bbe7eeSWei Wang if (bucket) { 1522f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1523f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1524f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1525f5bbe7eeSWei Wang /* For RTF_CACHE with rt6i_pmtu == 0 1526f5bbe7eeSWei Wang * (i.e. a redirected route), 1527f5bbe7eeSWei Wang * the metrics of its rt->dst.from has already 1528f5bbe7eeSWei Wang * been updated. 1529f5bbe7eeSWei Wang */ 1530f5bbe7eeSWei Wang if (entry->rt6i_pmtu && entry->rt6i_pmtu > mtu) 1531f5bbe7eeSWei Wang entry->rt6i_pmtu = mtu; 1532f5bbe7eeSWei Wang } 1533f5bbe7eeSWei Wang bucket++; 1534f5bbe7eeSWei Wang } 1535f5bbe7eeSWei Wang } 1536f5bbe7eeSWei Wang } 1537f5bbe7eeSWei Wang 1538b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1539b16cb459SWei Wang 1540b16cb459SWei Wang static void rt6_exceptions_clean_tohost(struct rt6_info *rt, 1541b16cb459SWei Wang struct in6_addr *gateway) 1542b16cb459SWei Wang { 1543b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1544b16cb459SWei Wang struct rt6_exception *rt6_ex; 1545b16cb459SWei Wang struct hlist_node *tmp; 1546b16cb459SWei Wang int i; 1547b16cb459SWei Wang 1548b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1549b16cb459SWei Wang return; 1550b16cb459SWei Wang 1551b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1552b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1553b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1554b16cb459SWei Wang 1555b16cb459SWei Wang if (bucket) { 1556b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1557b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1558b16cb459SWei Wang &bucket->chain, hlist) { 1559b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1560b16cb459SWei Wang 1561b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1562b16cb459SWei Wang RTF_CACHE_GATEWAY && 1563b16cb459SWei Wang ipv6_addr_equal(gateway, 1564b16cb459SWei Wang &entry->rt6i_gateway)) { 1565b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1566b16cb459SWei Wang } 1567b16cb459SWei Wang } 1568b16cb459SWei Wang bucket++; 1569b16cb459SWei Wang } 1570b16cb459SWei Wang } 1571b16cb459SWei Wang 1572b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1573b16cb459SWei Wang } 1574b16cb459SWei Wang 1575c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1576c757faa8SWei Wang struct rt6_exception *rt6_ex, 1577c757faa8SWei Wang struct fib6_gc_args *gc_args, 1578c757faa8SWei Wang unsigned long now) 1579c757faa8SWei Wang { 1580c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1581c757faa8SWei Wang 15821859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 15831859bac0SPaolo Abeni * even if others have still references to them, so that on next 15841859bac0SPaolo Abeni * dst_check() such references can be dropped. 15851859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 15861859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 15871859bac0SPaolo Abeni */ 15881859bac0SPaolo Abeni if (!(rt->rt6i_flags & RTF_EXPIRES) && 1589c757faa8SWei Wang time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1590c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1591c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1592c757faa8SWei Wang return; 1593c757faa8SWei Wang } else if (rt->rt6i_flags & RTF_GATEWAY) { 1594c757faa8SWei Wang struct neighbour *neigh; 1595c757faa8SWei Wang __u8 neigh_flags = 0; 1596c757faa8SWei Wang 1597c757faa8SWei Wang neigh = dst_neigh_lookup(&rt->dst, &rt->rt6i_gateway); 1598c757faa8SWei Wang if (neigh) { 1599c757faa8SWei Wang neigh_flags = neigh->flags; 1600c757faa8SWei Wang neigh_release(neigh); 1601c757faa8SWei Wang } 1602c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1603c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1604c757faa8SWei Wang rt); 1605c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1606c757faa8SWei Wang return; 1607c757faa8SWei Wang } 16081859bac0SPaolo Abeni } else if (__rt6_check_expired(rt)) { 16091859bac0SPaolo Abeni RT6_TRACE("purging expired route %p\n", rt); 16101859bac0SPaolo Abeni rt6_remove_exception(bucket, rt6_ex); 16111859bac0SPaolo Abeni return; 1612c757faa8SWei Wang } 1613c757faa8SWei Wang gc_args->more++; 1614c757faa8SWei Wang } 1615c757faa8SWei Wang 1616c757faa8SWei Wang void rt6_age_exceptions(struct rt6_info *rt, 1617c757faa8SWei Wang struct fib6_gc_args *gc_args, 1618c757faa8SWei Wang unsigned long now) 1619c757faa8SWei Wang { 1620c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1621c757faa8SWei Wang struct rt6_exception *rt6_ex; 1622c757faa8SWei Wang struct hlist_node *tmp; 1623c757faa8SWei Wang int i; 1624c757faa8SWei Wang 1625c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1626c757faa8SWei Wang return; 1627c757faa8SWei Wang 1628c757faa8SWei Wang spin_lock_bh(&rt6_exception_lock); 1629c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1630c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1631c757faa8SWei Wang 1632c757faa8SWei Wang if (bucket) { 1633c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1634c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1635c757faa8SWei Wang &bucket->chain, hlist) { 1636c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1637c757faa8SWei Wang gc_args, now); 1638c757faa8SWei Wang } 1639c757faa8SWei Wang bucket++; 1640c757faa8SWei Wang } 1641c757faa8SWei Wang } 1642c757faa8SWei Wang spin_unlock_bh(&rt6_exception_lock); 1643c757faa8SWei Wang } 1644c757faa8SWei Wang 16459ff74384SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 16469ff74384SDavid Ahern int oif, struct flowi6 *fl6, int flags) 16471da177e4SLinus Torvalds { 1648367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 16492b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 1650c71099acSThomas Graf int strict = 0; 16511da177e4SLinus Torvalds 165277d16f45SYOSHIFUJI Hideaki strict |= flags & RT6_LOOKUP_F_IFACE; 1653d5d32e4bSDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 1654367efcb9SMartin KaFai Lau if (net->ipv6.devconf_all->forwarding == 0) 1655367efcb9SMartin KaFai Lau strict |= RT6_LOOKUP_F_REACHABLE; 16561da177e4SLinus Torvalds 165766f5d6ceSWei Wang rcu_read_lock(); 16581da177e4SLinus Torvalds 16594c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1660367efcb9SMartin KaFai Lau saved_fn = fn; 16611da177e4SLinus Torvalds 1662ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1663ca254490SDavid Ahern oif = 0; 1664ca254490SDavid Ahern 1665a3c00e46SMartin KaFai Lau redo_rt6_select: 16668d1040e8SWei Wang rt = rt6_select(net, fn, oif, strict); 166752bd4c0cSNicolas Dichtel if (rt->rt6i_nsiblings) 1668367efcb9SMartin KaFai Lau rt = rt6_multipath_select(rt, fl6, oif, strict); 1669a3c00e46SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 1670a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1671a3c00e46SMartin KaFai Lau if (fn) 1672a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1673367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1674367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1675367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1676367efcb9SMartin KaFai Lau fn = saved_fn; 1677367efcb9SMartin KaFai Lau goto redo_rt6_select; 1678367efcb9SMartin KaFai Lau } 1679a3c00e46SMartin KaFai Lau } 1680a3c00e46SMartin KaFai Lau 16812b760fcfSWei Wang /*Search through exception table */ 16822b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr); 16832b760fcfSWei Wang if (rt_cache) 16842b760fcfSWei Wang rt = rt_cache; 1685d52d3997SMartin KaFai Lau 1686d3843fe5SWei Wang if (rt == net->ipv6.ip6_null_entry) { 168766f5d6ceSWei Wang rcu_read_unlock(); 1688d3843fe5SWei Wang dst_hold(&rt->dst); 1689b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 1690d3843fe5SWei Wang return rt; 1691d3843fe5SWei Wang } else if (rt->rt6i_flags & RTF_CACHE) { 1692d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) { 1693d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1694d52d3997SMartin KaFai Lau rt6_dst_from_metrics_check(rt); 1695d3843fe5SWei Wang } 169666f5d6ceSWei Wang rcu_read_unlock(); 1697b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 1698d52d3997SMartin KaFai Lau return rt; 16993da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 17003da59bd9SMartin KaFai Lau !(rt->rt6i_flags & RTF_GATEWAY))) { 17013da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 17023da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 17033da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 17043da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 17053da59bd9SMartin KaFai Lau */ 1706c71099acSThomas Graf 17073da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 17083da59bd9SMartin KaFai Lau 1709d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) { 1710d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1711d3843fe5SWei Wang } else { 171266f5d6ceSWei Wang rcu_read_unlock(); 1713d3843fe5SWei Wang uncached_rt = rt; 1714d3843fe5SWei Wang goto uncached_rt_out; 1715d3843fe5SWei Wang } 171666f5d6ceSWei Wang rcu_read_unlock(); 1717d52d3997SMartin KaFai Lau 17183da59bd9SMartin KaFai Lau uncached_rt = ip6_rt_cache_alloc(rt, &fl6->daddr, NULL); 17193da59bd9SMartin KaFai Lau dst_release(&rt->dst); 17203da59bd9SMartin KaFai Lau 17211cfb71eeSWei Wang if (uncached_rt) { 17221cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 17231cfb71eeSWei Wang * No need for another dst_hold() 17241cfb71eeSWei Wang */ 17258d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 172681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 17271cfb71eeSWei Wang } else { 17283da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 17293da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 17301cfb71eeSWei Wang } 1731b811580dSDavid Ahern 1732d3843fe5SWei Wang uncached_rt_out: 1733b65f164dSPaolo Abeni trace_fib6_table_lookup(net, uncached_rt, table, fl6); 17343da59bd9SMartin KaFai Lau return uncached_rt; 17353da59bd9SMartin KaFai Lau 1736d52d3997SMartin KaFai Lau } else { 1737d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1738d52d3997SMartin KaFai Lau 1739d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1740d52d3997SMartin KaFai Lau 1741d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1742951f788aSEric Dumazet local_bh_disable(); 1743d52d3997SMartin KaFai Lau pcpu_rt = rt6_get_pcpu_route(rt); 1744d52d3997SMartin KaFai Lau 1745951f788aSEric Dumazet if (!pcpu_rt) { 1746a94b9367SWei Wang /* atomic_inc_not_zero() is needed when using rcu */ 1747a94b9367SWei Wang if (atomic_inc_not_zero(&rt->rt6i_ref)) { 1748951f788aSEric Dumazet /* No dst_hold() on rt is needed because grabbing 1749a94b9367SWei Wang * rt->rt6i_ref makes sure rt can't be released. 17509c7370a1SMartin KaFai Lau */ 17519c7370a1SMartin KaFai Lau pcpu_rt = rt6_make_pcpu_route(rt); 1752a94b9367SWei Wang rt6_release(rt); 1753a94b9367SWei Wang } else { 1754a94b9367SWei Wang /* rt is already removed from tree */ 1755a94b9367SWei Wang pcpu_rt = net->ipv6.ip6_null_entry; 1756a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1757a94b9367SWei Wang } 17589c7370a1SMartin KaFai Lau } 1759951f788aSEric Dumazet local_bh_enable(); 1760951f788aSEric Dumazet rcu_read_unlock(); 1761b65f164dSPaolo Abeni trace_fib6_table_lookup(net, pcpu_rt, table, fl6); 1762d52d3997SMartin KaFai Lau return pcpu_rt; 1763d52d3997SMartin KaFai Lau } 1764c71099acSThomas Graf } 17659ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1766c71099acSThomas Graf 17678ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_input(struct net *net, struct fib6_table *table, 17684c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 17694acad72dSPavel Emelyanov { 17704c9483b2SDavid S. Miller return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, flags); 17714acad72dSPavel Emelyanov } 17724acad72dSPavel Emelyanov 1773d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 177472331bc0SShmulik Ladkani struct net_device *dev, 177572331bc0SShmulik Ladkani struct flowi6 *fl6, int flags) 177672331bc0SShmulik Ladkani { 177772331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 177872331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 177972331bc0SShmulik Ladkani 178072331bc0SShmulik Ladkani return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_input); 178172331bc0SShmulik Ladkani } 1782d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 178372331bc0SShmulik Ladkani 178423aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 178523aebdacSJakub Sitnicki struct flow_keys *keys) 178623aebdacSJakub Sitnicki { 178723aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 178823aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 178923aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 179023aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 179123aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 179223aebdacSJakub Sitnicki 179323aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 179423aebdacSJakub Sitnicki goto out; 179523aebdacSJakub Sitnicki 179623aebdacSJakub Sitnicki icmph = icmp6_hdr(skb); 179723aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 179823aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 179923aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 180023aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 180123aebdacSJakub Sitnicki goto out; 180223aebdacSJakub Sitnicki 180323aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 180423aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 180523aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 180623aebdacSJakub Sitnicki if (!inner_iph) 180723aebdacSJakub Sitnicki goto out; 180823aebdacSJakub Sitnicki 180923aebdacSJakub Sitnicki key_iph = inner_iph; 181023aebdacSJakub Sitnicki out: 181123aebdacSJakub Sitnicki memset(keys, 0, sizeof(*keys)); 181223aebdacSJakub Sitnicki keys->control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 181323aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 181423aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 181523aebdacSJakub Sitnicki keys->tags.flow_label = ip6_flowinfo(key_iph); 181623aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 181723aebdacSJakub Sitnicki } 181823aebdacSJakub Sitnicki 181923aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 182023aebdacSJakub Sitnicki u32 rt6_multipath_hash(const struct flowi6 *fl6, const struct sk_buff *skb) 182123aebdacSJakub Sitnicki { 182223aebdacSJakub Sitnicki struct flow_keys hash_keys; 182323aebdacSJakub Sitnicki 182423aebdacSJakub Sitnicki if (skb) { 182523aebdacSJakub Sitnicki ip6_multipath_l3_keys(skb, &hash_keys); 182623aebdacSJakub Sitnicki return flow_hash_from_keys(&hash_keys); 182723aebdacSJakub Sitnicki } 182823aebdacSJakub Sitnicki 182923aebdacSJakub Sitnicki return get_hash_from_flowi6(fl6); 183023aebdacSJakub Sitnicki } 183123aebdacSJakub Sitnicki 1832c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 1833c71099acSThomas Graf { 1834b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 1835c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 1836adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 1837904af04dSJiri Benc struct ip_tunnel_info *tun_info; 18384c9483b2SDavid S. Miller struct flowi6 fl6 = { 1839e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 18404c9483b2SDavid S. Miller .daddr = iph->daddr, 18414c9483b2SDavid S. Miller .saddr = iph->saddr, 18426502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 18434c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 18444c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 1845c71099acSThomas Graf }; 1846adaa70bbSThomas Graf 1847904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 184846fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 1849904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 185023aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 185123aebdacSJakub Sitnicki fl6.mp_hash = rt6_multipath_hash(&fl6, skb); 185206e9d040SJiri Benc skb_dst_drop(skb); 185372331bc0SShmulik Ladkani skb_dst_set(skb, ip6_route_input_lookup(net, skb->dev, &fl6, flags)); 1854c71099acSThomas Graf } 1855c71099acSThomas Graf 18568ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_output(struct net *net, struct fib6_table *table, 18574c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 1858c71099acSThomas Graf { 18594c9483b2SDavid S. Miller return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, flags); 1860c71099acSThomas Graf } 1861c71099acSThomas Graf 18626f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 18636f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 1864c71099acSThomas Graf { 1865d46a9d67SDavid Ahern bool any_src; 1866c71099acSThomas Graf 18674c1feac5SDavid Ahern if (rt6_need_strict(&fl6->daddr)) { 18684c1feac5SDavid Ahern struct dst_entry *dst; 18694c1feac5SDavid Ahern 18704c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 1871ca254490SDavid Ahern if (dst) 1872ca254490SDavid Ahern return dst; 18734c1feac5SDavid Ahern } 1874ca254490SDavid Ahern 18751fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 18764dc27d1cSDavid McCullough 1877d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 1878741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 1879d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 188077d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 1881c71099acSThomas Graf 1882d46a9d67SDavid Ahern if (!any_src) 1883adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 18840c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 18850c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 1886adaa70bbSThomas Graf 18874c9483b2SDavid S. Miller return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_output); 18881da177e4SLinus Torvalds } 18896f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 18901da177e4SLinus Torvalds 18912774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 189214e50e57SDavid S. Miller { 18935c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 18941dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 189514e50e57SDavid S. Miller struct dst_entry *new = NULL; 189614e50e57SDavid S. Miller 18971dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 189862cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 189914e50e57SDavid S. Miller if (rt) { 19000a1f5962SMartin KaFai Lau rt6_info_init(rt); 190181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 19020a1f5962SMartin KaFai Lau 1903d8d1f30bSChangli Gao new = &rt->dst; 190414e50e57SDavid S. Miller new->__use = 1; 1905352e512cSHerbert Xu new->input = dst_discard; 1906ede2059dSEric W. Biederman new->output = dst_discard_out; 190714e50e57SDavid S. Miller 1908defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 190914e50e57SDavid S. Miller 19101dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 19114e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 19120a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 191314e50e57SDavid S. Miller rt->rt6i_metric = 0; 191414e50e57SDavid S. Miller 191514e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 191614e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 191714e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 191814e50e57SDavid S. Miller #endif 191914e50e57SDavid S. Miller } 192014e50e57SDavid S. Miller 192169ead7afSDavid S. Miller dst_release(dst_orig); 192269ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 192314e50e57SDavid S. Miller } 192414e50e57SDavid S. Miller 19251da177e4SLinus Torvalds /* 19261da177e4SLinus Torvalds * Destination cache support functions 19271da177e4SLinus Torvalds */ 19281da177e4SLinus Torvalds 19294b32b5adSMartin KaFai Lau static void rt6_dst_from_metrics_check(struct rt6_info *rt) 19304b32b5adSMartin KaFai Lau { 19313a2232e9SDavid Miller if (rt->from && 19323a2232e9SDavid Miller dst_metrics_ptr(&rt->dst) != dst_metrics_ptr(&rt->from->dst)) 19333a2232e9SDavid Miller dst_init_metrics(&rt->dst, dst_metrics_ptr(&rt->from->dst), true); 19344b32b5adSMartin KaFai Lau } 19354b32b5adSMartin KaFai Lau 19363da59bd9SMartin KaFai Lau static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie) 19373da59bd9SMartin KaFai Lau { 193836143645SSteffen Klassert u32 rt_cookie = 0; 1939c5cff856SWei Wang 1940c5cff856SWei Wang if (!rt6_get_cookie_safe(rt, &rt_cookie) || rt_cookie != cookie) 19413da59bd9SMartin KaFai Lau return NULL; 19423da59bd9SMartin KaFai Lau 19433da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 19443da59bd9SMartin KaFai Lau return NULL; 19453da59bd9SMartin KaFai Lau 19463da59bd9SMartin KaFai Lau return &rt->dst; 19473da59bd9SMartin KaFai Lau } 19483da59bd9SMartin KaFai Lau 19493da59bd9SMartin KaFai Lau static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie) 19503da59bd9SMartin KaFai Lau { 19515973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 19525973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 19533a2232e9SDavid Miller rt6_check(rt->from, cookie)) 19543da59bd9SMartin KaFai Lau return &rt->dst; 19553da59bd9SMartin KaFai Lau else 19563da59bd9SMartin KaFai Lau return NULL; 19573da59bd9SMartin KaFai Lau } 19583da59bd9SMartin KaFai Lau 19591da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 19601da177e4SLinus Torvalds { 19611da177e4SLinus Torvalds struct rt6_info *rt; 19621da177e4SLinus Torvalds 19631da177e4SLinus Torvalds rt = (struct rt6_info *) dst; 19641da177e4SLinus Torvalds 19656f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 19666f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 19676f3118b5SNicolas Dichtel * into this function always. 19686f3118b5SNicolas Dichtel */ 1969e3bc10bdSHannes Frederic Sowa 19704b32b5adSMartin KaFai Lau rt6_dst_from_metrics_check(rt); 19714b32b5adSMartin KaFai Lau 197202bcf4e0SMartin KaFai Lau if (rt->rt6i_flags & RTF_PCPU || 19733a2232e9SDavid Miller (unlikely(!list_empty(&rt->rt6i_uncached)) && rt->from)) 19743da59bd9SMartin KaFai Lau return rt6_dst_from_check(rt, cookie); 19753da59bd9SMartin KaFai Lau else 19763da59bd9SMartin KaFai Lau return rt6_check(rt, cookie); 19771da177e4SLinus Torvalds } 19781da177e4SLinus Torvalds 19791da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 19801da177e4SLinus Torvalds { 19811da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 19821da177e4SLinus Torvalds 19831da177e4SLinus Torvalds if (rt) { 198454c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 198554c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 1986e0a1ad73SThomas Graf ip6_del_rt(rt); 198754c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 19881da177e4SLinus Torvalds } 198954c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 199054c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 199154c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 199254c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 199354c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 199454c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 19951da177e4SLinus Torvalds } 19961da177e4SLinus Torvalds 19971da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 19981da177e4SLinus Torvalds { 19991da177e4SLinus Torvalds struct rt6_info *rt; 20001da177e4SLinus Torvalds 20013ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 20021da177e4SLinus Torvalds 2003adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 20041da177e4SLinus Torvalds if (rt) { 20051eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2006ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 20078e3d5be7SMartin KaFai Lau ip6_del_rt(rt); 2008c5cff856SWei Wang } else { 2009c5cff856SWei Wang struct fib6_node *fn; 2010c5cff856SWei Wang 2011c5cff856SWei Wang rcu_read_lock(); 2012c5cff856SWei Wang fn = rcu_dereference(rt->rt6i_node); 2013c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2014c5cff856SWei Wang fn->fn_sernum = -1; 2015c5cff856SWei Wang rcu_read_unlock(); 20161da177e4SLinus Torvalds } 20171da177e4SLinus Torvalds } 20181eb4f758SHannes Frederic Sowa } 20191da177e4SLinus Torvalds 202045e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 202145e4fd26SMartin KaFai Lau { 202245e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 202345e4fd26SMartin KaFai Lau 202445e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 202545e4fd26SMartin KaFai Lau rt->rt6i_pmtu = mtu; 202645e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 202745e4fd26SMartin KaFai Lau } 202845e4fd26SMartin KaFai Lau 20290d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 20300d3f6d29SMartin KaFai Lau { 20310d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 20324e587ea7SWei Wang (rt->rt6i_flags & RTF_PCPU || 20334e587ea7SWei Wang rcu_access_pointer(rt->rt6i_node)); 20340d3f6d29SMartin KaFai Lau } 20350d3f6d29SMartin KaFai Lau 203645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 203745e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 20381da177e4SLinus Torvalds { 20390dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 20401da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 20411da177e4SLinus Torvalds 204245e4fd26SMartin KaFai Lau if (rt6->rt6i_flags & RTF_LOCAL) 204345e4fd26SMartin KaFai Lau return; 204445e4fd26SMartin KaFai Lau 204519bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 204619bda36cSXin Long return; 204719bda36cSXin Long 204845e4fd26SMartin KaFai Lau if (iph) { 204945e4fd26SMartin KaFai Lau daddr = &iph->daddr; 205045e4fd26SMartin KaFai Lau saddr = &iph->saddr; 205145e4fd26SMartin KaFai Lau } else if (sk) { 205245e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 205345e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 205445e4fd26SMartin KaFai Lau } else { 20550dec879fSJulian Anastasov daddr = NULL; 20560dec879fSJulian Anastasov saddr = NULL; 20571da177e4SLinus Torvalds } 20580dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 20590dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 20600dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 20610dec879fSJulian Anastasov return; 20620dec879fSJulian Anastasov 20630dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 20640dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 20652b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 20662b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 20672b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 20680dec879fSJulian Anastasov } else if (daddr) { 20690dec879fSJulian Anastasov struct rt6_info *nrt6; 20700dec879fSJulian Anastasov 207145e4fd26SMartin KaFai Lau nrt6 = ip6_rt_cache_alloc(rt6, daddr, saddr); 207245e4fd26SMartin KaFai Lau if (nrt6) { 207345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 20742b760fcfSWei Wang if (rt6_insert_exception(nrt6, rt6)) 20752b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 207645e4fd26SMartin KaFai Lau } 207745e4fd26SMartin KaFai Lau } 207845e4fd26SMartin KaFai Lau } 207945e4fd26SMartin KaFai Lau 208045e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 208145e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 208245e4fd26SMartin KaFai Lau { 208345e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 20841da177e4SLinus Torvalds } 20851da177e4SLinus Torvalds 208642ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2087e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 208881aded24SDavid S. Miller { 208981aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 209081aded24SDavid S. Miller struct dst_entry *dst; 209181aded24SDavid S. Miller struct flowi6 fl6; 209281aded24SDavid S. Miller 209381aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 209481aded24SDavid S. Miller fl6.flowi6_oif = oif; 20951b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 209681aded24SDavid S. Miller fl6.daddr = iph->daddr; 209781aded24SDavid S. Miller fl6.saddr = iph->saddr; 20986502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2099e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 210081aded24SDavid S. Miller 210181aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 210281aded24SDavid S. Miller if (!dst->error) 210345e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 210481aded24SDavid S. Miller dst_release(dst); 210581aded24SDavid S. Miller } 210681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 210781aded24SDavid S. Miller 210881aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 210981aded24SDavid S. Miller { 211033c162a9SMartin KaFai Lau struct dst_entry *dst; 211133c162a9SMartin KaFai Lau 211281aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2113e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 211433c162a9SMartin KaFai Lau 211533c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 211633c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 211733c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 211833c162a9SMartin KaFai Lau return; 211933c162a9SMartin KaFai Lau 212033c162a9SMartin KaFai Lau bh_lock_sock(sk); 212133c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 212233c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 212333c162a9SMartin KaFai Lau bh_unlock_sock(sk); 212481aded24SDavid S. Miller } 212581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 212681aded24SDavid S. Miller 2127b55b76b2SDuan Jiong /* Handle redirects */ 2128b55b76b2SDuan Jiong struct ip6rd_flowi { 2129b55b76b2SDuan Jiong struct flowi6 fl6; 2130b55b76b2SDuan Jiong struct in6_addr gateway; 2131b55b76b2SDuan Jiong }; 2132b55b76b2SDuan Jiong 2133b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2134b55b76b2SDuan Jiong struct fib6_table *table, 2135b55b76b2SDuan Jiong struct flowi6 *fl6, 2136b55b76b2SDuan Jiong int flags) 2137b55b76b2SDuan Jiong { 2138b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 21392b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 2140b55b76b2SDuan Jiong struct fib6_node *fn; 2141b55b76b2SDuan Jiong 2142b55b76b2SDuan Jiong /* Get the "current" route for this destination and 214367c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2144b55b76b2SDuan Jiong * 2145b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2146b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2147b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2148b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2149b55b76b2SDuan Jiong * routes. 2150b55b76b2SDuan Jiong */ 2151b55b76b2SDuan Jiong 215266f5d6ceSWei Wang rcu_read_lock(); 2153b55b76b2SDuan Jiong fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2154b55b76b2SDuan Jiong restart: 215566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 2156b55b76b2SDuan Jiong if (rt6_check_expired(rt)) 2157b55b76b2SDuan Jiong continue; 2158b55b76b2SDuan Jiong if (rt->dst.error) 2159b55b76b2SDuan Jiong break; 2160b55b76b2SDuan Jiong if (!(rt->rt6i_flags & RTF_GATEWAY)) 2161b55b76b2SDuan Jiong continue; 2162b55b76b2SDuan Jiong if (fl6->flowi6_oif != rt->dst.dev->ifindex) 2163b55b76b2SDuan Jiong continue; 21642b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 21652b760fcfSWei Wang * in the case of an ip redirect. 21662b760fcfSWei Wang * So we keep searching in the exception table if the gateway 21672b760fcfSWei Wang * is different. 21682b760fcfSWei Wang */ 21692b760fcfSWei Wang if (!ipv6_addr_equal(&rdfl->gateway, &rt->rt6i_gateway)) { 21702b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 21712b760fcfSWei Wang &fl6->daddr, 21722b760fcfSWei Wang &fl6->saddr); 21732b760fcfSWei Wang if (rt_cache && 21742b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 21752b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 21762b760fcfSWei Wang rt = rt_cache; 21772b760fcfSWei Wang break; 21782b760fcfSWei Wang } 2179b55b76b2SDuan Jiong continue; 21802b760fcfSWei Wang } 2181b55b76b2SDuan Jiong break; 2182b55b76b2SDuan Jiong } 2183b55b76b2SDuan Jiong 2184b55b76b2SDuan Jiong if (!rt) 2185b55b76b2SDuan Jiong rt = net->ipv6.ip6_null_entry; 2186b55b76b2SDuan Jiong else if (rt->dst.error) { 2187b55b76b2SDuan Jiong rt = net->ipv6.ip6_null_entry; 2188b0a1ba59SMartin KaFai Lau goto out; 2189b0a1ba59SMartin KaFai Lau } 2190b0a1ba59SMartin KaFai Lau 2191b0a1ba59SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 2192a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2193a3c00e46SMartin KaFai Lau if (fn) 2194a3c00e46SMartin KaFai Lau goto restart; 2195b55b76b2SDuan Jiong } 2196a3c00e46SMartin KaFai Lau 2197b0a1ba59SMartin KaFai Lau out: 2198d3843fe5SWei Wang ip6_hold_safe(net, &rt, true); 2199b55b76b2SDuan Jiong 220066f5d6ceSWei Wang rcu_read_unlock(); 2201b55b76b2SDuan Jiong 2202b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 2203b55b76b2SDuan Jiong return rt; 2204b55b76b2SDuan Jiong }; 2205b55b76b2SDuan Jiong 2206b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2207b55b76b2SDuan Jiong const struct flowi6 *fl6, 2208b55b76b2SDuan Jiong const struct in6_addr *gateway) 2209b55b76b2SDuan Jiong { 2210b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2211b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2212b55b76b2SDuan Jiong 2213b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2214b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2215b55b76b2SDuan Jiong 2216b55b76b2SDuan Jiong return fib6_rule_lookup(net, &rdfl.fl6, 2217b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2218b55b76b2SDuan Jiong } 2219b55b76b2SDuan Jiong 2220e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2221e2d118a1SLorenzo Colitti kuid_t uid) 22223a5ad2eeSDavid S. Miller { 22233a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 22243a5ad2eeSDavid S. Miller struct dst_entry *dst; 22253a5ad2eeSDavid S. Miller struct flowi6 fl6; 22263a5ad2eeSDavid S. Miller 22273a5ad2eeSDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 2228e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 22293a5ad2eeSDavid S. Miller fl6.flowi6_oif = oif; 22303a5ad2eeSDavid S. Miller fl6.flowi6_mark = mark; 22313a5ad2eeSDavid S. Miller fl6.daddr = iph->daddr; 22323a5ad2eeSDavid S. Miller fl6.saddr = iph->saddr; 22336502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2234e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 22353a5ad2eeSDavid S. Miller 2236b55b76b2SDuan Jiong dst = ip6_route_redirect(net, &fl6, &ipv6_hdr(skb)->saddr); 22376700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 22383a5ad2eeSDavid S. Miller dst_release(dst); 22393a5ad2eeSDavid S. Miller } 22403a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 22413a5ad2eeSDavid S. Miller 2242c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2243c92a59ecSDuan Jiong u32 mark) 2244c92a59ecSDuan Jiong { 2245c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2246c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2247c92a59ecSDuan Jiong struct dst_entry *dst; 2248c92a59ecSDuan Jiong struct flowi6 fl6; 2249c92a59ecSDuan Jiong 2250c92a59ecSDuan Jiong memset(&fl6, 0, sizeof(fl6)); 2251e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 2252c92a59ecSDuan Jiong fl6.flowi6_oif = oif; 2253c92a59ecSDuan Jiong fl6.flowi6_mark = mark; 2254c92a59ecSDuan Jiong fl6.daddr = msg->dest; 2255c92a59ecSDuan Jiong fl6.saddr = iph->daddr; 2256e2d118a1SLorenzo Colitti fl6.flowi6_uid = sock_net_uid(net, NULL); 2257c92a59ecSDuan Jiong 2258b55b76b2SDuan Jiong dst = ip6_route_redirect(net, &fl6, &iph->saddr); 2259c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2260c92a59ecSDuan Jiong dst_release(dst); 2261c92a59ecSDuan Jiong } 2262c92a59ecSDuan Jiong 22633a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 22643a5ad2eeSDavid S. Miller { 2265e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2266e2d118a1SLorenzo Colitti sk->sk_uid); 22673a5ad2eeSDavid S. Miller } 22683a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 22693a5ad2eeSDavid S. Miller 22700dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 22711da177e4SLinus Torvalds { 22720dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 22730dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 22740dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 22750dbaee3bSDavid S. Miller 22761da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 22771da177e4SLinus Torvalds 22785578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 22795578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 22801da177e4SLinus Torvalds 22811da177e4SLinus Torvalds /* 22821da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 22831da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 22841da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 22851da177e4SLinus Torvalds * rely only on pmtu discovery" 22861da177e4SLinus Torvalds */ 22871da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 22881da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 22891da177e4SLinus Torvalds return mtu; 22901da177e4SLinus Torvalds } 22911da177e4SLinus Torvalds 2292ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2293d33e4553SDavid S. Miller { 22944b32b5adSMartin KaFai Lau const struct rt6_info *rt = (const struct rt6_info *)dst; 22954b32b5adSMartin KaFai Lau unsigned int mtu = rt->rt6i_pmtu; 2296d33e4553SDavid S. Miller struct inet6_dev *idev; 2297618f9bc7SSteffen Klassert 2298618f9bc7SSteffen Klassert if (mtu) 229930f78d8eSEric Dumazet goto out; 2300618f9bc7SSteffen Klassert 23014b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 23024b32b5adSMartin KaFai Lau if (mtu) 23034b32b5adSMartin KaFai Lau goto out; 23044b32b5adSMartin KaFai Lau 2305618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2306d33e4553SDavid S. Miller 2307d33e4553SDavid S. Miller rcu_read_lock(); 2308d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2309d33e4553SDavid S. Miller if (idev) 2310d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2311d33e4553SDavid S. Miller rcu_read_unlock(); 2312d33e4553SDavid S. Miller 231330f78d8eSEric Dumazet out: 231414972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 231514972cbdSRoopa Prabhu 231614972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2317d33e4553SDavid S. Miller } 2318d33e4553SDavid S. Miller 23193b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 232087a11578SDavid S. Miller struct flowi6 *fl6) 23211da177e4SLinus Torvalds { 232287a11578SDavid S. Miller struct dst_entry *dst; 23231da177e4SLinus Torvalds struct rt6_info *rt; 23241da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2325c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 23261da177e4SLinus Torvalds 232738308473SDavid S. Miller if (unlikely(!idev)) 2328122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 23291da177e4SLinus Torvalds 2330ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 233138308473SDavid S. Miller if (unlikely(!rt)) { 23321da177e4SLinus Torvalds in6_dev_put(idev); 233387a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 23341da177e4SLinus Torvalds goto out; 23351da177e4SLinus Torvalds } 23361da177e4SLinus Torvalds 23378e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2338588753f1SBrendan McGrath rt->dst.input = ip6_input; 23398e2ec639SYan, Zheng rt->dst.output = ip6_output; 2340550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 234187a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 23428e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 23438e2ec639SYan, Zheng rt->rt6i_idev = idev; 234414edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 23451da177e4SLinus Torvalds 23464c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2347587fea74SWei Wang * do proper release of the net_device 2348587fea74SWei Wang */ 2349587fea74SWei Wang rt6_uncached_list_add(rt); 235081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 23511da177e4SLinus Torvalds 235287a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 235387a11578SDavid S. Miller 23541da177e4SLinus Torvalds out: 235587a11578SDavid S. Miller return dst; 23561da177e4SLinus Torvalds } 23571da177e4SLinus Torvalds 2358569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 23591da177e4SLinus Torvalds { 236086393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 23617019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 23627019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 23637019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 23647019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 23657019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2366fc66f95cSEric Dumazet int entries; 23671da177e4SLinus Torvalds 2368fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 236949a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2370fc66f95cSEric Dumazet entries <= rt_max_size) 23711da177e4SLinus Torvalds goto out; 23721da177e4SLinus Torvalds 23736891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 237414956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2375fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2376fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 23777019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 23781da177e4SLinus Torvalds out: 23797019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2380fc66f95cSEric Dumazet return entries > rt_max_size; 23811da177e4SLinus Torvalds } 23821da177e4SLinus Torvalds 2383e715b6d3SFlorian Westphal static int ip6_convert_metrics(struct mx6_config *mxc, 2384e715b6d3SFlorian Westphal const struct fib6_config *cfg) 2385e715b6d3SFlorian Westphal { 23866670e152SStephen Hemminger struct net *net = cfg->fc_nlinfo.nl_net; 2387c3a8d947SDaniel Borkmann bool ecn_ca = false; 2388e715b6d3SFlorian Westphal struct nlattr *nla; 2389e715b6d3SFlorian Westphal int remaining; 2390e715b6d3SFlorian Westphal u32 *mp; 2391e715b6d3SFlorian Westphal 239263159f29SIan Morris if (!cfg->fc_mx) 2393e715b6d3SFlorian Westphal return 0; 2394e715b6d3SFlorian Westphal 2395e715b6d3SFlorian Westphal mp = kzalloc(sizeof(u32) * RTAX_MAX, GFP_KERNEL); 2396e715b6d3SFlorian Westphal if (unlikely(!mp)) 2397e715b6d3SFlorian Westphal return -ENOMEM; 2398e715b6d3SFlorian Westphal 2399e715b6d3SFlorian Westphal nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) { 2400e715b6d3SFlorian Westphal int type = nla_type(nla); 2401ea697639SDaniel Borkmann u32 val; 2402ea697639SDaniel Borkmann 24031bb14807SDaniel Borkmann if (!type) 24041bb14807SDaniel Borkmann continue; 2405e715b6d3SFlorian Westphal if (unlikely(type > RTAX_MAX)) 2406e715b6d3SFlorian Westphal goto err; 24071bb14807SDaniel Borkmann 2408ea697639SDaniel Borkmann if (type == RTAX_CC_ALGO) { 2409ea697639SDaniel Borkmann char tmp[TCP_CA_NAME_MAX]; 2410e715b6d3SFlorian Westphal 2411ea697639SDaniel Borkmann nla_strlcpy(tmp, nla, sizeof(tmp)); 24126670e152SStephen Hemminger val = tcp_ca_get_key_by_name(net, tmp, &ecn_ca); 2413ea697639SDaniel Borkmann if (val == TCP_CA_UNSPEC) 2414ea697639SDaniel Borkmann goto err; 2415ea697639SDaniel Borkmann } else { 2416ea697639SDaniel Borkmann val = nla_get_u32(nla); 2417ea697639SDaniel Borkmann } 2418626abd59SPaolo Abeni if (type == RTAX_HOPLIMIT && val > 255) 2419626abd59SPaolo Abeni val = 255; 2420b8d3e416SDaniel Borkmann if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK)) 2421b8d3e416SDaniel Borkmann goto err; 2422ea697639SDaniel Borkmann 2423ea697639SDaniel Borkmann mp[type - 1] = val; 2424e715b6d3SFlorian Westphal __set_bit(type - 1, mxc->mx_valid); 2425e715b6d3SFlorian Westphal } 2426e715b6d3SFlorian Westphal 2427c3a8d947SDaniel Borkmann if (ecn_ca) { 2428c3a8d947SDaniel Borkmann __set_bit(RTAX_FEATURES - 1, mxc->mx_valid); 2429c3a8d947SDaniel Borkmann mp[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA; 2430c3a8d947SDaniel Borkmann } 2431e715b6d3SFlorian Westphal 2432c3a8d947SDaniel Borkmann mxc->mx = mp; 2433e715b6d3SFlorian Westphal return 0; 2434e715b6d3SFlorian Westphal err: 2435e715b6d3SFlorian Westphal kfree(mp); 2436e715b6d3SFlorian Westphal return -EINVAL; 2437e715b6d3SFlorian Westphal } 24381da177e4SLinus Torvalds 24398c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 24408c14586fSDavid Ahern struct fib6_config *cfg, 24418c14586fSDavid Ahern const struct in6_addr *gw_addr) 24428c14586fSDavid Ahern { 24438c14586fSDavid Ahern struct flowi6 fl6 = { 24448c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 24458c14586fSDavid Ahern .daddr = *gw_addr, 24468c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 24478c14586fSDavid Ahern }; 24488c14586fSDavid Ahern struct fib6_table *table; 24498c14586fSDavid Ahern struct rt6_info *rt; 2450d5d32e4bSDavid Ahern int flags = RT6_LOOKUP_F_IFACE | RT6_LOOKUP_F_IGNORE_LINKSTATE; 24518c14586fSDavid Ahern 24528c14586fSDavid Ahern table = fib6_get_table(net, cfg->fc_table); 24538c14586fSDavid Ahern if (!table) 24548c14586fSDavid Ahern return NULL; 24558c14586fSDavid Ahern 24568c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 24578c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 24588c14586fSDavid Ahern 24598c14586fSDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, flags); 24608c14586fSDavid Ahern 24618c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 24628c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 24638c14586fSDavid Ahern ip6_rt_put(rt); 24648c14586fSDavid Ahern rt = NULL; 24658c14586fSDavid Ahern } 24668c14586fSDavid Ahern 24678c14586fSDavid Ahern return rt; 24688c14586fSDavid Ahern } 24698c14586fSDavid Ahern 2470333c4301SDavid Ahern static struct rt6_info *ip6_route_info_create(struct fib6_config *cfg, 2471333c4301SDavid Ahern struct netlink_ext_ack *extack) 24721da177e4SLinus Torvalds { 24735578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 24741da177e4SLinus Torvalds struct rt6_info *rt = NULL; 24751da177e4SLinus Torvalds struct net_device *dev = NULL; 24761da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2477c71099acSThomas Graf struct fib6_table *table; 24781da177e4SLinus Torvalds int addr_type; 24798c5b83f0SRoopa Prabhu int err = -EINVAL; 24801da177e4SLinus Torvalds 2481557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2482d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2483d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2484557c44beSDavid Ahern goto out; 2485d5d531cbSDavid Ahern } 2486557c44beSDavid Ahern 24872ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 24882ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 24892ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 24902ea2352eSWei Wang goto out; 24912ea2352eSWei Wang } 24922ea2352eSWei Wang 2493d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2494d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 24958c5b83f0SRoopa Prabhu goto out; 2496d5d531cbSDavid Ahern } 2497d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2498d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2499d5d531cbSDavid Ahern goto out; 2500d5d531cbSDavid Ahern } 25011da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2502d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2503d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2504d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 25058c5b83f0SRoopa Prabhu goto out; 2506d5d531cbSDavid Ahern } 25071da177e4SLinus Torvalds #endif 250886872cb5SThomas Graf if (cfg->fc_ifindex) { 25091da177e4SLinus Torvalds err = -ENODEV; 25105578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 25111da177e4SLinus Torvalds if (!dev) 25121da177e4SLinus Torvalds goto out; 25131da177e4SLinus Torvalds idev = in6_dev_get(dev); 25141da177e4SLinus Torvalds if (!idev) 25151da177e4SLinus Torvalds goto out; 25161da177e4SLinus Torvalds } 25171da177e4SLinus Torvalds 251886872cb5SThomas Graf if (cfg->fc_metric == 0) 251986872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 25201da177e4SLinus Torvalds 2521c71099acSThomas Graf err = -ENOBUFS; 252238308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2523d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2524d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 252538308473SDavid S. Miller if (!table) { 2526f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2527d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2528d71314b4SMatti Vaittinen } 2529d71314b4SMatti Vaittinen } else { 2530d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2531d71314b4SMatti Vaittinen } 253238308473SDavid S. Miller 253338308473SDavid S. Miller if (!table) 2534c71099acSThomas Graf goto out; 2535c71099acSThomas Graf 2536ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, NULL, 2537ad706862SMartin KaFai Lau (cfg->fc_flags & RTF_ADDRCONF) ? 0 : DST_NOCOUNT); 25381da177e4SLinus Torvalds 253938308473SDavid S. Miller if (!rt) { 25401da177e4SLinus Torvalds err = -ENOMEM; 25411da177e4SLinus Torvalds goto out; 25421da177e4SLinus Torvalds } 25431da177e4SLinus Torvalds 25441716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 25451716a961SGao feng rt6_set_expires(rt, jiffies + 25461716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 25471716a961SGao feng else 25481716a961SGao feng rt6_clean_expires(rt); 25491da177e4SLinus Torvalds 255086872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 255186872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 255286872cb5SThomas Graf rt->rt6i_protocol = cfg->fc_protocol; 255386872cb5SThomas Graf 255486872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 25551da177e4SLinus Torvalds 25561da177e4SLinus Torvalds if (addr_type & IPV6_ADDR_MULTICAST) 2557d8d1f30bSChangli Gao rt->dst.input = ip6_mc_input; 2558ab79ad14SMaciej Żenczykowski else if (cfg->fc_flags & RTF_LOCAL) 2559ab79ad14SMaciej Żenczykowski rt->dst.input = ip6_input; 25601da177e4SLinus Torvalds else 2561d8d1f30bSChangli Gao rt->dst.input = ip6_forward; 25621da177e4SLinus Torvalds 2563d8d1f30bSChangli Gao rt->dst.output = ip6_output; 25641da177e4SLinus Torvalds 256519e42e45SRoopa Prabhu if (cfg->fc_encap) { 256619e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 256719e42e45SRoopa Prabhu 256830357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 2569127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 25709ae28727SDavid Ahern &lwtstate, extack); 257119e42e45SRoopa Prabhu if (err) 257219e42e45SRoopa Prabhu goto out; 257361adedf3SJiri Benc rt->dst.lwtstate = lwtstate_get(lwtstate); 257461adedf3SJiri Benc if (lwtunnel_output_redirect(rt->dst.lwtstate)) { 257561adedf3SJiri Benc rt->dst.lwtstate->orig_output = rt->dst.output; 257661adedf3SJiri Benc rt->dst.output = lwtunnel_output; 257719e42e45SRoopa Prabhu } 257861adedf3SJiri Benc if (lwtunnel_input_redirect(rt->dst.lwtstate)) { 257961adedf3SJiri Benc rt->dst.lwtstate->orig_input = rt->dst.input; 258061adedf3SJiri Benc rt->dst.input = lwtunnel_input; 258125368623STom Herbert } 258225368623STom Herbert } 258319e42e45SRoopa Prabhu 258486872cb5SThomas Graf ipv6_addr_prefix(&rt->rt6i_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 258586872cb5SThomas Graf rt->rt6i_dst.plen = cfg->fc_dst_len; 2586afc4eef8SMartin KaFai Lau if (rt->rt6i_dst.plen == 128) 258711d53b49SDavid S. Miller rt->dst.flags |= DST_HOST; 25881da177e4SLinus Torvalds 25891da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 259086872cb5SThomas Graf ipv6_addr_prefix(&rt->rt6i_src.addr, &cfg->fc_src, cfg->fc_src_len); 259186872cb5SThomas Graf rt->rt6i_src.plen = cfg->fc_src_len; 25921da177e4SLinus Torvalds #endif 25931da177e4SLinus Torvalds 259486872cb5SThomas Graf rt->rt6i_metric = cfg->fc_metric; 25951da177e4SLinus Torvalds 25961da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 25971da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 25981da177e4SLinus Torvalds */ 259986872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 260038308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 260138308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 260238308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 26031da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 26045578689aSDaniel Lezcano if (dev != net->loopback_dev) { 26051da177e4SLinus Torvalds if (dev) { 26061da177e4SLinus Torvalds dev_put(dev); 26071da177e4SLinus Torvalds in6_dev_put(idev); 26081da177e4SLinus Torvalds } 26095578689aSDaniel Lezcano dev = net->loopback_dev; 26101da177e4SLinus Torvalds dev_hold(dev); 26111da177e4SLinus Torvalds idev = in6_dev_get(dev); 26121da177e4SLinus Torvalds if (!idev) { 26131da177e4SLinus Torvalds err = -ENODEV; 26141da177e4SLinus Torvalds goto out; 26151da177e4SLinus Torvalds } 26161da177e4SLinus Torvalds } 26171da177e4SLinus Torvalds rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP; 2618ef2c7d7bSNicolas Dichtel switch (cfg->fc_type) { 2619ef2c7d7bSNicolas Dichtel case RTN_BLACKHOLE: 2620ef2c7d7bSNicolas Dichtel rt->dst.error = -EINVAL; 2621ede2059dSEric W. Biederman rt->dst.output = dst_discard_out; 26227150aedeSKamala R rt->dst.input = dst_discard; 2623ef2c7d7bSNicolas Dichtel break; 2624ef2c7d7bSNicolas Dichtel case RTN_PROHIBIT: 2625ef2c7d7bSNicolas Dichtel rt->dst.error = -EACCES; 26267150aedeSKamala R rt->dst.output = ip6_pkt_prohibit_out; 26277150aedeSKamala R rt->dst.input = ip6_pkt_prohibit; 2628ef2c7d7bSNicolas Dichtel break; 2629b4949ab2SNicolas Dichtel case RTN_THROW: 26300315e382SNikola Forró case RTN_UNREACHABLE: 2631ef2c7d7bSNicolas Dichtel default: 26327150aedeSKamala R rt->dst.error = (cfg->fc_type == RTN_THROW) ? -EAGAIN 26330315e382SNikola Forró : (cfg->fc_type == RTN_UNREACHABLE) 26340315e382SNikola Forró ? -EHOSTUNREACH : -ENETUNREACH; 26357150aedeSKamala R rt->dst.output = ip6_pkt_discard_out; 26367150aedeSKamala R rt->dst.input = ip6_pkt_discard; 2637ef2c7d7bSNicolas Dichtel break; 2638ef2c7d7bSNicolas Dichtel } 26391da177e4SLinus Torvalds goto install_route; 26401da177e4SLinus Torvalds } 26411da177e4SLinus Torvalds 264286872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 2643b71d1d42SEric Dumazet const struct in6_addr *gw_addr; 26441da177e4SLinus Torvalds int gwa_type; 26451da177e4SLinus Torvalds 264686872cb5SThomas Graf gw_addr = &cfg->fc_gateway; 2647330567b7SFlorian Westphal gwa_type = ipv6_addr_type(gw_addr); 264848ed7b26SFlorian Westphal 264948ed7b26SFlorian Westphal /* if gw_addr is local we will fail to detect this in case 265048ed7b26SFlorian Westphal * address is still TENTATIVE (DAD in progress). rt6_lookup() 265148ed7b26SFlorian Westphal * will return already-added prefix route via interface that 265248ed7b26SFlorian Westphal * prefix route was assigned to, which might be non-loopback. 265348ed7b26SFlorian Westphal */ 265448ed7b26SFlorian Westphal err = -EINVAL; 2655330567b7SFlorian Westphal if (ipv6_chk_addr_and_flags(net, gw_addr, 2656330567b7SFlorian Westphal gwa_type & IPV6_ADDR_LINKLOCAL ? 2657d5d531cbSDavid Ahern dev : NULL, 0, 0)) { 2658d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 265948ed7b26SFlorian Westphal goto out; 2660d5d531cbSDavid Ahern } 26614e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = *gw_addr; 26621da177e4SLinus Torvalds 26631da177e4SLinus Torvalds if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) { 26648c14586fSDavid Ahern struct rt6_info *grt = NULL; 26651da177e4SLinus Torvalds 26661da177e4SLinus Torvalds /* IPv6 strictly inhibits using not link-local 26671da177e4SLinus Torvalds addresses as nexthop address. 26681da177e4SLinus Torvalds Otherwise, router will not able to send redirects. 26691da177e4SLinus Torvalds It is very good, but in some (rare!) circumstances 26701da177e4SLinus Torvalds (SIT, PtP, NBMA NOARP links) it is handy to allow 26711da177e4SLinus Torvalds some exceptions. --ANK 267296d5822cSErik Nordmark We allow IPv4-mapped nexthops to support RFC4798-type 267396d5822cSErik Nordmark addressing 26741da177e4SLinus Torvalds */ 267596d5822cSErik Nordmark if (!(gwa_type & (IPV6_ADDR_UNICAST | 2676d5d531cbSDavid Ahern IPV6_ADDR_MAPPED))) { 2677d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2678d5d531cbSDavid Ahern "Invalid gateway address"); 26791da177e4SLinus Torvalds goto out; 2680d5d531cbSDavid Ahern } 26811da177e4SLinus Torvalds 2682a435a07fSVincent Bernat if (cfg->fc_table) { 26838c14586fSDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr); 26848c14586fSDavid Ahern 2685a435a07fSVincent Bernat if (grt) { 2686a435a07fSVincent Bernat if (grt->rt6i_flags & RTF_GATEWAY || 2687a435a07fSVincent Bernat (dev && dev != grt->dst.dev)) { 2688a435a07fSVincent Bernat ip6_rt_put(grt); 2689a435a07fSVincent Bernat grt = NULL; 2690a435a07fSVincent Bernat } 2691a435a07fSVincent Bernat } 2692a435a07fSVincent Bernat } 2693a435a07fSVincent Bernat 26948c14586fSDavid Ahern if (!grt) 26958c14586fSDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, 26968c14586fSDavid Ahern cfg->fc_ifindex, 1); 26971da177e4SLinus Torvalds 26981da177e4SLinus Torvalds err = -EHOSTUNREACH; 269938308473SDavid S. Miller if (!grt) 27001da177e4SLinus Torvalds goto out; 27011da177e4SLinus Torvalds if (dev) { 2702d1918542SDavid S. Miller if (dev != grt->dst.dev) { 270394e187c0SAmerigo Wang ip6_rt_put(grt); 27041da177e4SLinus Torvalds goto out; 27051da177e4SLinus Torvalds } 27061da177e4SLinus Torvalds } else { 2707d1918542SDavid S. Miller dev = grt->dst.dev; 27081da177e4SLinus Torvalds idev = grt->rt6i_idev; 27091da177e4SLinus Torvalds dev_hold(dev); 27101da177e4SLinus Torvalds in6_dev_hold(grt->rt6i_idev); 27111da177e4SLinus Torvalds } 27121da177e4SLinus Torvalds if (!(grt->rt6i_flags & RTF_GATEWAY)) 27131da177e4SLinus Torvalds err = 0; 271494e187c0SAmerigo Wang ip6_rt_put(grt); 27151da177e4SLinus Torvalds 27161da177e4SLinus Torvalds if (err) 27171da177e4SLinus Torvalds goto out; 27181da177e4SLinus Torvalds } 27191da177e4SLinus Torvalds err = -EINVAL; 2720d5d531cbSDavid Ahern if (!dev) { 2721d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 27221da177e4SLinus Torvalds goto out; 2723d5d531cbSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 2724d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2725d5d531cbSDavid Ahern "Egress device can not be loopback device for this route"); 2726d5d531cbSDavid Ahern goto out; 2727d5d531cbSDavid Ahern } 27281da177e4SLinus Torvalds } 27291da177e4SLinus Torvalds 27301da177e4SLinus Torvalds err = -ENODEV; 273138308473SDavid S. Miller if (!dev) 27321da177e4SLinus Torvalds goto out; 27331da177e4SLinus Torvalds 2734c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 2735c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 2736d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 2737c3968a85SDaniel Walter err = -EINVAL; 2738c3968a85SDaniel Walter goto out; 2739c3968a85SDaniel Walter } 27404e3fd7a0SAlexey Dobriyan rt->rt6i_prefsrc.addr = cfg->fc_prefsrc; 2741c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 128; 2742c3968a85SDaniel Walter } else 2743c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 0; 2744c3968a85SDaniel Walter 274586872cb5SThomas Graf rt->rt6i_flags = cfg->fc_flags; 27461da177e4SLinus Torvalds 27471da177e4SLinus Torvalds install_route: 27485609b80aSIdo Schimmel if (!(rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) && 27495609b80aSIdo Schimmel !netif_carrier_ok(dev)) 27505609b80aSIdo Schimmel rt->rt6i_nh_flags |= RTNH_F_LINKDOWN; 2751d8d1f30bSChangli Gao rt->dst.dev = dev; 27521da177e4SLinus Torvalds rt->rt6i_idev = idev; 2753c71099acSThomas Graf rt->rt6i_table = table; 275463152fc0SDaniel Lezcano 2755c346dca1SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = dev_net(dev); 275663152fc0SDaniel Lezcano 27578c5b83f0SRoopa Prabhu return rt; 27581da177e4SLinus Torvalds out: 27591da177e4SLinus Torvalds if (dev) 27601da177e4SLinus Torvalds dev_put(dev); 27611da177e4SLinus Torvalds if (idev) 27621da177e4SLinus Torvalds in6_dev_put(idev); 2763587fea74SWei Wang if (rt) 2764587fea74SWei Wang dst_release_immediate(&rt->dst); 27656b9ea5a6SRoopa Prabhu 27668c5b83f0SRoopa Prabhu return ERR_PTR(err); 27676b9ea5a6SRoopa Prabhu } 27686b9ea5a6SRoopa Prabhu 2769333c4301SDavid Ahern int ip6_route_add(struct fib6_config *cfg, 2770333c4301SDavid Ahern struct netlink_ext_ack *extack) 27716b9ea5a6SRoopa Prabhu { 27726b9ea5a6SRoopa Prabhu struct mx6_config mxc = { .mx = NULL, }; 27738c5b83f0SRoopa Prabhu struct rt6_info *rt; 27746b9ea5a6SRoopa Prabhu int err; 27756b9ea5a6SRoopa Prabhu 2776333c4301SDavid Ahern rt = ip6_route_info_create(cfg, extack); 27778c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 27788c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 27798c5b83f0SRoopa Prabhu rt = NULL; 27806b9ea5a6SRoopa Prabhu goto out; 27818c5b83f0SRoopa Prabhu } 27826b9ea5a6SRoopa Prabhu 27836b9ea5a6SRoopa Prabhu err = ip6_convert_metrics(&mxc, cfg); 27846b9ea5a6SRoopa Prabhu if (err) 27856b9ea5a6SRoopa Prabhu goto out; 27866b9ea5a6SRoopa Prabhu 2787333c4301SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, &mxc, extack); 27886b9ea5a6SRoopa Prabhu 27896b9ea5a6SRoopa Prabhu kfree(mxc.mx); 27906b9ea5a6SRoopa Prabhu 27916b9ea5a6SRoopa Prabhu return err; 27926b9ea5a6SRoopa Prabhu out: 2793587fea74SWei Wang if (rt) 2794587fea74SWei Wang dst_release_immediate(&rt->dst); 27956b9ea5a6SRoopa Prabhu 27961da177e4SLinus Torvalds return err; 27971da177e4SLinus Torvalds } 27981da177e4SLinus Torvalds 279986872cb5SThomas Graf static int __ip6_del_rt(struct rt6_info *rt, struct nl_info *info) 28001da177e4SLinus Torvalds { 28011da177e4SLinus Torvalds int err; 2802c71099acSThomas Graf struct fib6_table *table; 2803d1918542SDavid S. Miller struct net *net = dev_net(rt->dst.dev); 28041da177e4SLinus Torvalds 2805a4c2fd7fSWei Wang if (rt == net->ipv6.ip6_null_entry) { 28066825a26cSGao feng err = -ENOENT; 28076825a26cSGao feng goto out; 28086825a26cSGao feng } 28096c813a72SPatrick McHardy 2810c71099acSThomas Graf table = rt->rt6i_table; 281166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 281286872cb5SThomas Graf err = fib6_del(rt, info); 281366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 28141da177e4SLinus Torvalds 28156825a26cSGao feng out: 281694e187c0SAmerigo Wang ip6_rt_put(rt); 28171da177e4SLinus Torvalds return err; 28181da177e4SLinus Torvalds } 28191da177e4SLinus Torvalds 2820e0a1ad73SThomas Graf int ip6_del_rt(struct rt6_info *rt) 2821e0a1ad73SThomas Graf { 28224d1169c1SDenis V. Lunev struct nl_info info = { 2823d1918542SDavid S. Miller .nl_net = dev_net(rt->dst.dev), 28244d1169c1SDenis V. Lunev }; 2825528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 2826e0a1ad73SThomas Graf } 2827e0a1ad73SThomas Graf 28280ae81335SDavid Ahern static int __ip6_del_rt_siblings(struct rt6_info *rt, struct fib6_config *cfg) 28290ae81335SDavid Ahern { 28300ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 2831e3330039SWANG Cong struct net *net = info->nl_net; 283216a16cd3SDavid Ahern struct sk_buff *skb = NULL; 28330ae81335SDavid Ahern struct fib6_table *table; 2834e3330039SWANG Cong int err = -ENOENT; 28350ae81335SDavid Ahern 2836e3330039SWANG Cong if (rt == net->ipv6.ip6_null_entry) 2837e3330039SWANG Cong goto out_put; 28380ae81335SDavid Ahern table = rt->rt6i_table; 283966f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 28400ae81335SDavid Ahern 28410ae81335SDavid Ahern if (rt->rt6i_nsiblings && cfg->fc_delete_all_nh) { 28420ae81335SDavid Ahern struct rt6_info *sibling, *next_sibling; 28430ae81335SDavid Ahern 284416a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 284516a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 284616a16cd3SDavid Ahern if (skb) { 284716a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 284816a16cd3SDavid Ahern 2849e3330039SWANG Cong if (rt6_fill_node(net, skb, rt, 285016a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 285116a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 285216a16cd3SDavid Ahern kfree_skb(skb); 285316a16cd3SDavid Ahern skb = NULL; 285416a16cd3SDavid Ahern } else 285516a16cd3SDavid Ahern info->skip_notify = 1; 285616a16cd3SDavid Ahern } 285716a16cd3SDavid Ahern 28580ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 28590ae81335SDavid Ahern &rt->rt6i_siblings, 28600ae81335SDavid Ahern rt6i_siblings) { 28610ae81335SDavid Ahern err = fib6_del(sibling, info); 28620ae81335SDavid Ahern if (err) 2863e3330039SWANG Cong goto out_unlock; 28640ae81335SDavid Ahern } 28650ae81335SDavid Ahern } 28660ae81335SDavid Ahern 28670ae81335SDavid Ahern err = fib6_del(rt, info); 2868e3330039SWANG Cong out_unlock: 286966f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 2870e3330039SWANG Cong out_put: 28710ae81335SDavid Ahern ip6_rt_put(rt); 287216a16cd3SDavid Ahern 287316a16cd3SDavid Ahern if (skb) { 2874e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 287516a16cd3SDavid Ahern info->nlh, gfp_any()); 287616a16cd3SDavid Ahern } 28770ae81335SDavid Ahern return err; 28780ae81335SDavid Ahern } 28790ae81335SDavid Ahern 2880333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 2881333c4301SDavid Ahern struct netlink_ext_ack *extack) 28821da177e4SLinus Torvalds { 28832b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 2884c71099acSThomas Graf struct fib6_table *table; 28851da177e4SLinus Torvalds struct fib6_node *fn; 28861da177e4SLinus Torvalds int err = -ESRCH; 28871da177e4SLinus Torvalds 28885578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 2889d5d531cbSDavid Ahern if (!table) { 2890d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 2891c71099acSThomas Graf return err; 2892d5d531cbSDavid Ahern } 28931da177e4SLinus Torvalds 289466f5d6ceSWei Wang rcu_read_lock(); 2895c71099acSThomas Graf 2896c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 289786872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 289838fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 28992b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 29001da177e4SLinus Torvalds 29011da177e4SLinus Torvalds if (fn) { 290266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 29032b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29042b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 29052b760fcfSWei Wang &cfg->fc_src); 29062b760fcfSWei Wang if (!rt_cache) 29071f56a01fSMartin KaFai Lau continue; 29082b760fcfSWei Wang rt = rt_cache; 29092b760fcfSWei Wang } 291086872cb5SThomas Graf if (cfg->fc_ifindex && 2911d1918542SDavid S. Miller (!rt->dst.dev || 2912d1918542SDavid S. Miller rt->dst.dev->ifindex != cfg->fc_ifindex)) 29131da177e4SLinus Torvalds continue; 291486872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 291586872cb5SThomas Graf !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 29161da177e4SLinus Torvalds continue; 291786872cb5SThomas Graf if (cfg->fc_metric && cfg->fc_metric != rt->rt6i_metric) 29181da177e4SLinus Torvalds continue; 2919c2ed1880SMantas M if (cfg->fc_protocol && cfg->fc_protocol != rt->rt6i_protocol) 2920c2ed1880SMantas M continue; 2921d3843fe5SWei Wang if (!dst_hold_safe(&rt->dst)) 2922d3843fe5SWei Wang break; 292366f5d6ceSWei Wang rcu_read_unlock(); 29241da177e4SLinus Torvalds 29250ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 29260ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 292786872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 29280ae81335SDavid Ahern 29290ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 29301da177e4SLinus Torvalds } 29311da177e4SLinus Torvalds } 293266f5d6ceSWei Wang rcu_read_unlock(); 29331da177e4SLinus Torvalds 29341da177e4SLinus Torvalds return err; 29351da177e4SLinus Torvalds } 29361da177e4SLinus Torvalds 29376700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 2938a6279458SYOSHIFUJI Hideaki { 2939a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 2940e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 2941e8599ff4SDavid S. Miller struct ndisc_options ndopts; 2942e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 2943e8599ff4SDavid S. Miller struct neighbour *neigh; 294471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 29456e157b6aSDavid S. Miller int optlen, on_link; 29466e157b6aSDavid S. Miller u8 *lladdr; 2947e8599ff4SDavid S. Miller 294829a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 294971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 2950e8599ff4SDavid S. Miller 2951e8599ff4SDavid S. Miller if (optlen < 0) { 29526e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 2953e8599ff4SDavid S. Miller return; 2954e8599ff4SDavid S. Miller } 2955e8599ff4SDavid S. Miller 295671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 2957e8599ff4SDavid S. Miller 295871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 29596e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 2960e8599ff4SDavid S. Miller return; 2961e8599ff4SDavid S. Miller } 2962e8599ff4SDavid S. Miller 29636e157b6aSDavid S. Miller on_link = 0; 296471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 2965e8599ff4SDavid S. Miller on_link = 1; 296671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 2967e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 29686e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 2969e8599ff4SDavid S. Miller return; 2970e8599ff4SDavid S. Miller } 2971e8599ff4SDavid S. Miller 2972e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 2973e8599ff4SDavid S. Miller if (!in6_dev) 2974e8599ff4SDavid S. Miller return; 2975e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 2976e8599ff4SDavid S. Miller return; 2977e8599ff4SDavid S. Miller 2978e8599ff4SDavid S. Miller /* RFC2461 8.1: 2979e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 2980e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 2981e8599ff4SDavid S. Miller */ 2982e8599ff4SDavid S. Miller 2983f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 2984e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 2985e8599ff4SDavid S. Miller return; 2986e8599ff4SDavid S. Miller } 29876e157b6aSDavid S. Miller 29886e157b6aSDavid S. Miller lladdr = NULL; 2989e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 2990e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 2991e8599ff4SDavid S. Miller skb->dev); 2992e8599ff4SDavid S. Miller if (!lladdr) { 2993e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 2994e8599ff4SDavid S. Miller return; 2995e8599ff4SDavid S. Miller } 2996e8599ff4SDavid S. Miller } 2997e8599ff4SDavid S. Miller 29986e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 2999ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 30006e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 30016e157b6aSDavid S. Miller return; 30026e157b6aSDavid S. Miller } 30036e157b6aSDavid S. Miller 30046e157b6aSDavid S. Miller /* Redirect received -> path was valid. 30056e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 30066e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 30076e157b6aSDavid S. Miller */ 30080dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 30096e157b6aSDavid S. Miller 301071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3011e8599ff4SDavid S. Miller if (!neigh) 3012e8599ff4SDavid S. Miller return; 3013e8599ff4SDavid S. Miller 30141da177e4SLinus Torvalds /* 30151da177e4SLinus Torvalds * We have finally decided to accept it. 30161da177e4SLinus Torvalds */ 30171da177e4SLinus Torvalds 3018f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 30191da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 30201da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 30211da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3022f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3023f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 30241da177e4SLinus Torvalds 302583a09abdSMartin KaFai Lau nrt = ip6_rt_cache_alloc(rt, &msg->dest, NULL); 302638308473SDavid S. Miller if (!nrt) 30271da177e4SLinus Torvalds goto out; 30281da177e4SLinus Torvalds 30291da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 30301da177e4SLinus Torvalds if (on_link) 30311da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 30321da177e4SLinus Torvalds 3033b91d5329SXin Long nrt->rt6i_protocol = RTPROT_REDIRECT; 30344e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 30351da177e4SLinus Torvalds 30362b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 30372b760fcfSWei Wang * a cached route because rt6_insert_exception() will 30382b760fcfSWei Wang * takes care of it 30392b760fcfSWei Wang */ 30402b760fcfSWei Wang if (rt6_insert_exception(nrt, rt)) { 30412b760fcfSWei Wang dst_release_immediate(&nrt->dst); 30422b760fcfSWei Wang goto out; 30432b760fcfSWei Wang } 30441da177e4SLinus Torvalds 3045d8d1f30bSChangli Gao netevent.old = &rt->dst; 3046d8d1f30bSChangli Gao netevent.new = &nrt->dst; 304771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 304860592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 30498d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 30508d71740cSTom Tucker 30511da177e4SLinus Torvalds out: 3052e8599ff4SDavid S. Miller neigh_release(neigh); 30536e157b6aSDavid S. Miller } 30546e157b6aSDavid S. Miller 30551da177e4SLinus Torvalds /* 30561da177e4SLinus Torvalds * Misc support functions 30571da177e4SLinus Torvalds */ 30581da177e4SLinus Torvalds 30594b32b5adSMartin KaFai Lau static void rt6_set_from(struct rt6_info *rt, struct rt6_info *from) 30604b32b5adSMartin KaFai Lau { 30613a2232e9SDavid Miller BUG_ON(from->from); 30624b32b5adSMartin KaFai Lau 30634b32b5adSMartin KaFai Lau rt->rt6i_flags &= ~RTF_EXPIRES; 30644b32b5adSMartin KaFai Lau dst_hold(&from->dst); 30653a2232e9SDavid Miller rt->from = from; 30664b32b5adSMartin KaFai Lau dst_init_metrics(&rt->dst, dst_metrics_ptr(&from->dst), true); 30674b32b5adSMartin KaFai Lau } 30684b32b5adSMartin KaFai Lau 306983a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort) 30701da177e4SLinus Torvalds { 3071d8d1f30bSChangli Gao rt->dst.input = ort->dst.input; 3072d8d1f30bSChangli Gao rt->dst.output = ort->dst.output; 307383a09abdSMartin KaFai Lau rt->rt6i_dst = ort->rt6i_dst; 3074d8d1f30bSChangli Gao rt->dst.error = ort->dst.error; 30751da177e4SLinus Torvalds rt->rt6i_idev = ort->rt6i_idev; 30761da177e4SLinus Torvalds if (rt->rt6i_idev) 30771da177e4SLinus Torvalds in6_dev_hold(rt->rt6i_idev); 3078d8d1f30bSChangli Gao rt->dst.lastuse = jiffies; 30794e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 30801716a961SGao feng rt->rt6i_flags = ort->rt6i_flags; 30811716a961SGao feng rt6_set_from(rt, ort); 308283a09abdSMartin KaFai Lau rt->rt6i_metric = ort->rt6i_metric; 30831da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 308483a09abdSMartin KaFai Lau rt->rt6i_src = ort->rt6i_src; 30851da177e4SLinus Torvalds #endif 308683a09abdSMartin KaFai Lau rt->rt6i_prefsrc = ort->rt6i_prefsrc; 3087c71099acSThomas Graf rt->rt6i_table = ort->rt6i_table; 308861adedf3SJiri Benc rt->dst.lwtstate = lwtstate_get(ort->dst.lwtstate); 30891da177e4SLinus Torvalds } 30901da177e4SLinus Torvalds 309170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 3092efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net, 3093b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3094830218c1SDavid Ahern const struct in6_addr *gwaddr, 3095830218c1SDavid Ahern struct net_device *dev) 309670ceb4f5SYOSHIFUJI Hideaki { 3097830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3098830218c1SDavid Ahern int ifindex = dev->ifindex; 309970ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 310070ceb4f5SYOSHIFUJI Hideaki struct rt6_info *rt = NULL; 3101c71099acSThomas Graf struct fib6_table *table; 310270ceb4f5SYOSHIFUJI Hideaki 3103830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 310438308473SDavid S. Miller if (!table) 3105c71099acSThomas Graf return NULL; 3106c71099acSThomas Graf 310766f5d6ceSWei Wang rcu_read_lock(); 310838fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 310970ceb4f5SYOSHIFUJI Hideaki if (!fn) 311070ceb4f5SYOSHIFUJI Hideaki goto out; 311170ceb4f5SYOSHIFUJI Hideaki 311266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3113d1918542SDavid S. Miller if (rt->dst.dev->ifindex != ifindex) 311470ceb4f5SYOSHIFUJI Hideaki continue; 311570ceb4f5SYOSHIFUJI Hideaki if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 311670ceb4f5SYOSHIFUJI Hideaki continue; 311770ceb4f5SYOSHIFUJI Hideaki if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr)) 311870ceb4f5SYOSHIFUJI Hideaki continue; 3119d3843fe5SWei Wang ip6_hold_safe(NULL, &rt, false); 312070ceb4f5SYOSHIFUJI Hideaki break; 312170ceb4f5SYOSHIFUJI Hideaki } 312270ceb4f5SYOSHIFUJI Hideaki out: 312366f5d6ceSWei Wang rcu_read_unlock(); 312470ceb4f5SYOSHIFUJI Hideaki return rt; 312570ceb4f5SYOSHIFUJI Hideaki } 312670ceb4f5SYOSHIFUJI Hideaki 3127efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net, 3128b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3129830218c1SDavid Ahern const struct in6_addr *gwaddr, 3130830218c1SDavid Ahern struct net_device *dev, 313195c96174SEric Dumazet unsigned int pref) 313270ceb4f5SYOSHIFUJI Hideaki { 313386872cb5SThomas Graf struct fib6_config cfg = { 3134238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3135830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 313686872cb5SThomas Graf .fc_dst_len = prefixlen, 313786872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 313886872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3139b91d5329SXin Long .fc_protocol = RTPROT_RA, 314015e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3141efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3142efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 314386872cb5SThomas Graf }; 314470ceb4f5SYOSHIFUJI Hideaki 3145830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 31464e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 31474e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 314886872cb5SThomas Graf 3149e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3150e317da96SYOSHIFUJI Hideaki if (!prefixlen) 315186872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 315270ceb4f5SYOSHIFUJI Hideaki 3153333c4301SDavid Ahern ip6_route_add(&cfg, NULL); 315470ceb4f5SYOSHIFUJI Hideaki 3155830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 315670ceb4f5SYOSHIFUJI Hideaki } 315770ceb4f5SYOSHIFUJI Hideaki #endif 315870ceb4f5SYOSHIFUJI Hideaki 3159b71d1d42SEric Dumazet struct rt6_info *rt6_get_dflt_router(const struct in6_addr *addr, struct net_device *dev) 31601da177e4SLinus Torvalds { 3161830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 31621da177e4SLinus Torvalds struct rt6_info *rt; 3163c71099acSThomas Graf struct fib6_table *table; 31641da177e4SLinus Torvalds 3165830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), tb_id); 316638308473SDavid S. Miller if (!table) 3167c71099acSThomas Graf return NULL; 31681da177e4SLinus Torvalds 316966f5d6ceSWei Wang rcu_read_lock(); 317066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3171d1918542SDavid S. Miller if (dev == rt->dst.dev && 3172045927ffSYOSHIFUJI Hideaki ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 31731da177e4SLinus Torvalds ipv6_addr_equal(&rt->rt6i_gateway, addr)) 31741da177e4SLinus Torvalds break; 31751da177e4SLinus Torvalds } 31761da177e4SLinus Torvalds if (rt) 3177d3843fe5SWei Wang ip6_hold_safe(NULL, &rt, false); 317866f5d6ceSWei Wang rcu_read_unlock(); 31791da177e4SLinus Torvalds return rt; 31801da177e4SLinus Torvalds } 31811da177e4SLinus Torvalds 3182b71d1d42SEric Dumazet struct rt6_info *rt6_add_dflt_router(const struct in6_addr *gwaddr, 3183ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3184ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 31851da177e4SLinus Torvalds { 318686872cb5SThomas Graf struct fib6_config cfg = { 3187ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3188238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 318986872cb5SThomas Graf .fc_ifindex = dev->ifindex, 319086872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 319186872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3192b91d5329SXin Long .fc_protocol = RTPROT_RA, 319315e47304SEric W. Biederman .fc_nlinfo.portid = 0, 31945578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3195c346dca1SYOSHIFUJI Hideaki .fc_nlinfo.nl_net = dev_net(dev), 319686872cb5SThomas Graf }; 31971da177e4SLinus Torvalds 31984e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 31991da177e4SLinus Torvalds 3200333c4301SDavid Ahern if (!ip6_route_add(&cfg, NULL)) { 3201830218c1SDavid Ahern struct fib6_table *table; 3202830218c1SDavid Ahern 3203830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3204830218c1SDavid Ahern if (table) 3205830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3206830218c1SDavid Ahern } 32071da177e4SLinus Torvalds 32081da177e4SLinus Torvalds return rt6_get_dflt_router(gwaddr, dev); 32091da177e4SLinus Torvalds } 32101da177e4SLinus Torvalds 3211830218c1SDavid Ahern static void __rt6_purge_dflt_routers(struct fib6_table *table) 32121da177e4SLinus Torvalds { 32131da177e4SLinus Torvalds struct rt6_info *rt; 32141da177e4SLinus Torvalds 32151da177e4SLinus Torvalds restart: 321666f5d6ceSWei Wang rcu_read_lock(); 321766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 32183e8b0ac3SLorenzo Colitti if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 32193e8b0ac3SLorenzo Colitti (!rt->rt6i_idev || rt->rt6i_idev->cnf.accept_ra != 2)) { 3220d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) { 322166f5d6ceSWei Wang rcu_read_unlock(); 3222e0a1ad73SThomas Graf ip6_del_rt(rt); 3223d3843fe5SWei Wang } else { 322466f5d6ceSWei Wang rcu_read_unlock(); 3225d3843fe5SWei Wang } 32261da177e4SLinus Torvalds goto restart; 32271da177e4SLinus Torvalds } 32281da177e4SLinus Torvalds } 322966f5d6ceSWei Wang rcu_read_unlock(); 3230830218c1SDavid Ahern 3231830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3232830218c1SDavid Ahern } 3233830218c1SDavid Ahern 3234830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3235830218c1SDavid Ahern { 3236830218c1SDavid Ahern struct fib6_table *table; 3237830218c1SDavid Ahern struct hlist_head *head; 3238830218c1SDavid Ahern unsigned int h; 3239830218c1SDavid Ahern 3240830218c1SDavid Ahern rcu_read_lock(); 3241830218c1SDavid Ahern 3242830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3243830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3244830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3245830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3246830218c1SDavid Ahern __rt6_purge_dflt_routers(table); 3247830218c1SDavid Ahern } 3248830218c1SDavid Ahern } 3249830218c1SDavid Ahern 3250830218c1SDavid Ahern rcu_read_unlock(); 32511da177e4SLinus Torvalds } 32521da177e4SLinus Torvalds 32535578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 32545578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 325586872cb5SThomas Graf struct fib6_config *cfg) 325686872cb5SThomas Graf { 325786872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 325886872cb5SThomas Graf 3259ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3260ca254490SDavid Ahern : RT6_TABLE_MAIN; 326186872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 326286872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 326386872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 326486872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 326586872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 326686872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 326786872cb5SThomas Graf 32685578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3269f1243c2dSBenjamin Thery 32704e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 32714e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 32724e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 327386872cb5SThomas Graf } 327486872cb5SThomas Graf 32755578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 32761da177e4SLinus Torvalds { 327786872cb5SThomas Graf struct fib6_config cfg; 32781da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 32791da177e4SLinus Torvalds int err; 32801da177e4SLinus Torvalds 32811da177e4SLinus Torvalds switch (cmd) { 32821da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 32831da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3284af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 32851da177e4SLinus Torvalds return -EPERM; 32861da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 32871da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 32881da177e4SLinus Torvalds if (err) 32891da177e4SLinus Torvalds return -EFAULT; 32901da177e4SLinus Torvalds 32915578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 329286872cb5SThomas Graf 32931da177e4SLinus Torvalds rtnl_lock(); 32941da177e4SLinus Torvalds switch (cmd) { 32951da177e4SLinus Torvalds case SIOCADDRT: 3296333c4301SDavid Ahern err = ip6_route_add(&cfg, NULL); 32971da177e4SLinus Torvalds break; 32981da177e4SLinus Torvalds case SIOCDELRT: 3299333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 33001da177e4SLinus Torvalds break; 33011da177e4SLinus Torvalds default: 33021da177e4SLinus Torvalds err = -EINVAL; 33031da177e4SLinus Torvalds } 33041da177e4SLinus Torvalds rtnl_unlock(); 33051da177e4SLinus Torvalds 33061da177e4SLinus Torvalds return err; 33073ff50b79SStephen Hemminger } 33081da177e4SLinus Torvalds 33091da177e4SLinus Torvalds return -EINVAL; 33101da177e4SLinus Torvalds } 33111da177e4SLinus Torvalds 33121da177e4SLinus Torvalds /* 33131da177e4SLinus Torvalds * Drop the packet on the floor 33141da177e4SLinus Torvalds */ 33151da177e4SLinus Torvalds 3316d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 33171da177e4SLinus Torvalds { 3318612f09e8SYOSHIFUJI Hideaki int type; 3319adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3320612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3321612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 33220660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 332345bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 33243bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 33253bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3326612f09e8SYOSHIFUJI Hideaki break; 3327612f09e8SYOSHIFUJI Hideaki } 3328612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3329612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 33303bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 33313bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3332612f09e8SYOSHIFUJI Hideaki break; 3333612f09e8SYOSHIFUJI Hideaki } 33343ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 33351da177e4SLinus Torvalds kfree_skb(skb); 33361da177e4SLinus Torvalds return 0; 33371da177e4SLinus Torvalds } 33381da177e4SLinus Torvalds 33399ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 33409ce8ade0SThomas Graf { 3341612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 33429ce8ade0SThomas Graf } 33439ce8ade0SThomas Graf 3344ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 33451da177e4SLinus Torvalds { 3346adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3347612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 33481da177e4SLinus Torvalds } 33491da177e4SLinus Torvalds 33509ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 33519ce8ade0SThomas Graf { 3352612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 33539ce8ade0SThomas Graf } 33549ce8ade0SThomas Graf 3355ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 33569ce8ade0SThomas Graf { 3357adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3358612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 33599ce8ade0SThomas Graf } 33609ce8ade0SThomas Graf 33611da177e4SLinus Torvalds /* 33621da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 33631da177e4SLinus Torvalds */ 33641da177e4SLinus Torvalds 33651da177e4SLinus Torvalds struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev, 33661da177e4SLinus Torvalds const struct in6_addr *addr, 33678f031519SDavid S. Miller bool anycast) 33681da177e4SLinus Torvalds { 3369ca254490SDavid Ahern u32 tb_id; 3370c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(idev->dev); 33714832c30dSDavid Ahern struct net_device *dev = idev->dev; 33725f02ce24SDavid Ahern struct rt6_info *rt; 33735f02ce24SDavid Ahern 33745f02ce24SDavid Ahern rt = ip6_dst_alloc(net, dev, DST_NOCOUNT); 3375a3300ef4SHannes Frederic Sowa if (!rt) 33761da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 33771da177e4SLinus Torvalds 33781da177e4SLinus Torvalds in6_dev_hold(idev); 33791da177e4SLinus Torvalds 338011d53b49SDavid S. Miller rt->dst.flags |= DST_HOST; 3381d8d1f30bSChangli Gao rt->dst.input = ip6_input; 3382d8d1f30bSChangli Gao rt->dst.output = ip6_output; 33831da177e4SLinus Torvalds rt->rt6i_idev = idev; 33841da177e4SLinus Torvalds 338594b5e0f9SDavid Ahern rt->rt6i_protocol = RTPROT_KERNEL; 33861da177e4SLinus Torvalds rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP; 338758c4fb86SYOSHIFUJI Hideaki if (anycast) 338858c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 338958c4fb86SYOSHIFUJI Hideaki else 33901da177e4SLinus Torvalds rt->rt6i_flags |= RTF_LOCAL; 33911da177e4SLinus Torvalds 3392550bab42SJulian Anastasov rt->rt6i_gateway = *addr; 33934e3fd7a0SAlexey Dobriyan rt->rt6i_dst.addr = *addr; 33941da177e4SLinus Torvalds rt->rt6i_dst.plen = 128; 3395ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3396ca254490SDavid Ahern rt->rt6i_table = fib6_get_table(net, tb_id); 33971da177e4SLinus Torvalds 33981da177e4SLinus Torvalds return rt; 33991da177e4SLinus Torvalds } 34001da177e4SLinus Torvalds 3401c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3402c3968a85SDaniel Walter struct arg_dev_net_ip { 3403c3968a85SDaniel Walter struct net_device *dev; 3404c3968a85SDaniel Walter struct net *net; 3405c3968a85SDaniel Walter struct in6_addr *addr; 3406c3968a85SDaniel Walter }; 3407c3968a85SDaniel Walter 3408c3968a85SDaniel Walter static int fib6_remove_prefsrc(struct rt6_info *rt, void *arg) 3409c3968a85SDaniel Walter { 3410c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3411c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3412c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3413c3968a85SDaniel Walter 3414d1918542SDavid S. Miller if (((void *)rt->dst.dev == dev || !dev) && 3415c3968a85SDaniel Walter rt != net->ipv6.ip6_null_entry && 3416c3968a85SDaniel Walter ipv6_addr_equal(addr, &rt->rt6i_prefsrc.addr)) { 341760006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3418c3968a85SDaniel Walter /* remove prefsrc entry */ 3419c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 0; 342060006a48SWei Wang /* need to update cache as well */ 342160006a48SWei Wang rt6_exceptions_remove_prefsrc(rt); 342260006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3423c3968a85SDaniel Walter } 3424c3968a85SDaniel Walter return 0; 3425c3968a85SDaniel Walter } 3426c3968a85SDaniel Walter 3427c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3428c3968a85SDaniel Walter { 3429c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3430c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3431c3968a85SDaniel Walter .dev = ifp->idev->dev, 3432c3968a85SDaniel Walter .net = net, 3433c3968a85SDaniel Walter .addr = &ifp->addr, 3434c3968a85SDaniel Walter }; 34350c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3436c3968a85SDaniel Walter } 3437c3968a85SDaniel Walter 3438be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3439be7a010dSDuan Jiong 3440be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 3441be7a010dSDuan Jiong static int fib6_clean_tohost(struct rt6_info *rt, void *arg) 3442be7a010dSDuan Jiong { 3443be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3444be7a010dSDuan Jiong 34452b760fcfSWei Wang if (((rt->rt6i_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3446be7a010dSDuan Jiong ipv6_addr_equal(gateway, &rt->rt6i_gateway)) { 3447be7a010dSDuan Jiong return -1; 3448be7a010dSDuan Jiong } 3449b16cb459SWei Wang 3450b16cb459SWei Wang /* Further clean up cached routes in exception table. 3451b16cb459SWei Wang * This is needed because cached route may have a different 3452b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3453b16cb459SWei Wang */ 3454b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3455b16cb459SWei Wang 3456be7a010dSDuan Jiong return 0; 3457be7a010dSDuan Jiong } 3458be7a010dSDuan Jiong 3459be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3460be7a010dSDuan Jiong { 3461be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3462be7a010dSDuan Jiong } 3463be7a010dSDuan Jiong 34642127d95aSIdo Schimmel struct arg_netdev_event { 34652127d95aSIdo Schimmel const struct net_device *dev; 34664c981e28SIdo Schimmel union { 34672127d95aSIdo Schimmel unsigned int nh_flags; 34684c981e28SIdo Schimmel unsigned long event; 34694c981e28SIdo Schimmel }; 34702127d95aSIdo Schimmel }; 34712127d95aSIdo Schimmel 34722127d95aSIdo Schimmel static int fib6_ifup(struct rt6_info *rt, void *p_arg) 34732127d95aSIdo Schimmel { 34742127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 34752127d95aSIdo Schimmel const struct net *net = dev_net(arg->dev); 34762127d95aSIdo Schimmel 34772127d95aSIdo Schimmel if (rt != net->ipv6.ip6_null_entry && rt->dst.dev == arg->dev) 34782127d95aSIdo Schimmel rt->rt6i_nh_flags &= ~arg->nh_flags; 34792127d95aSIdo Schimmel 34802127d95aSIdo Schimmel return 0; 34812127d95aSIdo Schimmel } 34822127d95aSIdo Schimmel 34832127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 34842127d95aSIdo Schimmel { 34852127d95aSIdo Schimmel struct arg_netdev_event arg = { 34862127d95aSIdo Schimmel .dev = dev, 34872127d95aSIdo Schimmel .nh_flags = nh_flags, 34882127d95aSIdo Schimmel }; 34892127d95aSIdo Schimmel 34902127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 34912127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 34922127d95aSIdo Schimmel 34932127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 34942127d95aSIdo Schimmel } 34952127d95aSIdo Schimmel 3496a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 34974c981e28SIdo Schimmel static int fib6_ifdown(struct rt6_info *rt, void *p_arg) 34981da177e4SLinus Torvalds { 34994c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 35004c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 35014c981e28SIdo Schimmel const struct net *net = dev_net(dev); 35028ed67789SDaniel Lezcano 350327c6fa73SIdo Schimmel if (rt->dst.dev != dev || rt == net->ipv6.ip6_null_entry) 350427c6fa73SIdo Schimmel return 0; 350527c6fa73SIdo Schimmel 350627c6fa73SIdo Schimmel switch (arg->event) { 350727c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 35081da177e4SLinus Torvalds return -1; 350927c6fa73SIdo Schimmel case NETDEV_DOWN: 351027c6fa73SIdo Schimmel if (rt->rt6i_nsiblings == 0 || 351127c6fa73SIdo Schimmel !rt->rt6i_idev->cnf.ignore_routes_with_linkdown) 351227c6fa73SIdo Schimmel return -1; 351327c6fa73SIdo Schimmel rt->rt6i_nh_flags |= RTNH_F_DEAD; 351427c6fa73SIdo Schimmel /* fall through */ 351527c6fa73SIdo Schimmel case NETDEV_CHANGE: 351627c6fa73SIdo Schimmel if (rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) 351727c6fa73SIdo Schimmel break; 351827c6fa73SIdo Schimmel rt->rt6i_nh_flags |= RTNH_F_LINKDOWN; 351927c6fa73SIdo Schimmel break; 35202b241361SIdo Schimmel } 3521c159d30cSDavid S. Miller 35221da177e4SLinus Torvalds return 0; 35231da177e4SLinus Torvalds } 35241da177e4SLinus Torvalds 352527c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 35261da177e4SLinus Torvalds { 35274c981e28SIdo Schimmel struct arg_netdev_event arg = { 35288ed67789SDaniel Lezcano .dev = dev, 35294c981e28SIdo Schimmel .event = event, 35308ed67789SDaniel Lezcano }; 35318ed67789SDaniel Lezcano 35324c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 35334c981e28SIdo Schimmel } 35344c981e28SIdo Schimmel 35354c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 35364c981e28SIdo Schimmel { 35374c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 35384c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 35394c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 35401da177e4SLinus Torvalds } 35411da177e4SLinus Torvalds 354295c96174SEric Dumazet struct rt6_mtu_change_arg { 35431da177e4SLinus Torvalds struct net_device *dev; 354495c96174SEric Dumazet unsigned int mtu; 35451da177e4SLinus Torvalds }; 35461da177e4SLinus Torvalds 35471da177e4SLinus Torvalds static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg) 35481da177e4SLinus Torvalds { 35491da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 35501da177e4SLinus Torvalds struct inet6_dev *idev; 35511da177e4SLinus Torvalds 35521da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 35531da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 35541da177e4SLinus Torvalds We still use this lock to block changes 35551da177e4SLinus Torvalds caused by addrconf/ndisc. 35561da177e4SLinus Torvalds */ 35571da177e4SLinus Torvalds 35581da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 355938308473SDavid S. Miller if (!idev) 35601da177e4SLinus Torvalds return 0; 35611da177e4SLinus Torvalds 35621da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 35631da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 35641da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 35651da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 35661da177e4SLinus Torvalds */ 35671da177e4SLinus Torvalds /* 35681da177e4SLinus Torvalds If new MTU is less than route PMTU, this new MTU will be the 35691da177e4SLinus Torvalds lowest MTU in the path, update the route PMTU to reflect PMTU 35701da177e4SLinus Torvalds decreases; if new MTU is greater than route PMTU, and the 35711da177e4SLinus Torvalds old MTU is the lowest MTU in the path, update the route PMTU 35721da177e4SLinus Torvalds to reflect the increase. In this case if the other nodes' MTU 35731da177e4SLinus Torvalds also have the lowest MTU, TOO BIG MESSAGE will be lead to 357467c408cfSAlexander Alemayhu PMTU discovery. 35751da177e4SLinus Torvalds */ 3576d1918542SDavid S. Miller if (rt->dst.dev == arg->dev && 3577fb56be83SMaciej Żenczykowski dst_metric_raw(&rt->dst, RTAX_MTU) && 35784b32b5adSMartin KaFai Lau !dst_metric_locked(&rt->dst, RTAX_MTU)) { 3579f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 35802b760fcfSWei Wang if (dst_mtu(&rt->dst) >= arg->mtu || 3581d8d1f30bSChangli Gao (dst_mtu(&rt->dst) < arg->mtu && 35824b32b5adSMartin KaFai Lau dst_mtu(&rt->dst) == idev->cnf.mtu6)) { 3583defb3519SDavid S. Miller dst_metric_set(&rt->dst, RTAX_MTU, arg->mtu); 3584566cfd8fSSimon Arlott } 3585f5bbe7eeSWei Wang rt6_exceptions_update_pmtu(rt, arg->mtu); 3586f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 35874b32b5adSMartin KaFai Lau } 35881da177e4SLinus Torvalds return 0; 35891da177e4SLinus Torvalds } 35901da177e4SLinus Torvalds 359195c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 35921da177e4SLinus Torvalds { 3593c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 3594c71099acSThomas Graf .dev = dev, 3595c71099acSThomas Graf .mtu = mtu, 3596c71099acSThomas Graf }; 35971da177e4SLinus Torvalds 35980c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 35991da177e4SLinus Torvalds } 36001da177e4SLinus Torvalds 3601ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 36025176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 360386872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 3604ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 360586872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 360686872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 360751ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 3608c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 360919e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 361019e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 361132bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 3612622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 36133b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 361486872cb5SThomas Graf }; 361586872cb5SThomas Graf 361686872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 3617333c4301SDavid Ahern struct fib6_config *cfg, 3618333c4301SDavid Ahern struct netlink_ext_ack *extack) 36191da177e4SLinus Torvalds { 362086872cb5SThomas Graf struct rtmsg *rtm; 362186872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 3622c78ba6d6SLubomir Rintel unsigned int pref; 362386872cb5SThomas Graf int err; 36241da177e4SLinus Torvalds 3625fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 3626fceb6435SJohannes Berg NULL); 362786872cb5SThomas Graf if (err < 0) 362886872cb5SThomas Graf goto errout; 36291da177e4SLinus Torvalds 363086872cb5SThomas Graf err = -EINVAL; 363186872cb5SThomas Graf rtm = nlmsg_data(nlh); 363286872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 363386872cb5SThomas Graf 363486872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 363586872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 363686872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 363786872cb5SThomas Graf cfg->fc_flags = RTF_UP; 363886872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 3639ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 364086872cb5SThomas Graf 3641ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 3642ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 3643b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 3644b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 364586872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 364686872cb5SThomas Graf 3647ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 3648ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 3649ab79ad14SMaciej Żenczykowski 36501f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 36511f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 36521f56a01fSMartin KaFai Lau 365315e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 365486872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 36553b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 365686872cb5SThomas Graf 365786872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 365867b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 365986872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 36601da177e4SLinus Torvalds } 366186872cb5SThomas Graf 366286872cb5SThomas Graf if (tb[RTA_DST]) { 366386872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 366486872cb5SThomas Graf 366586872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 366686872cb5SThomas Graf goto errout; 366786872cb5SThomas Graf 366886872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 36691da177e4SLinus Torvalds } 367086872cb5SThomas Graf 367186872cb5SThomas Graf if (tb[RTA_SRC]) { 367286872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 367386872cb5SThomas Graf 367486872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 367586872cb5SThomas Graf goto errout; 367686872cb5SThomas Graf 367786872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 36781da177e4SLinus Torvalds } 367986872cb5SThomas Graf 3680c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 368167b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 3682c3968a85SDaniel Walter 368386872cb5SThomas Graf if (tb[RTA_OIF]) 368486872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 368586872cb5SThomas Graf 368686872cb5SThomas Graf if (tb[RTA_PRIORITY]) 368786872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 368886872cb5SThomas Graf 368986872cb5SThomas Graf if (tb[RTA_METRICS]) { 369086872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 369186872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 36921da177e4SLinus Torvalds } 369386872cb5SThomas Graf 369486872cb5SThomas Graf if (tb[RTA_TABLE]) 369586872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 369686872cb5SThomas Graf 369751ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 369851ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 369951ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 37009ed59592SDavid Ahern 37019ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 3702c255bd68SDavid Ahern cfg->fc_mp_len, extack); 37039ed59592SDavid Ahern if (err < 0) 37049ed59592SDavid Ahern goto errout; 370551ebd318SNicolas Dichtel } 370651ebd318SNicolas Dichtel 3707c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 3708c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 3709c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 3710c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 3711c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 3712c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 3713c78ba6d6SLubomir Rintel } 3714c78ba6d6SLubomir Rintel 371519e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 371619e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 371719e42e45SRoopa Prabhu 37189ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 371919e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 372019e42e45SRoopa Prabhu 3721c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 37229ed59592SDavid Ahern if (err < 0) 37239ed59592SDavid Ahern goto errout; 37249ed59592SDavid Ahern } 37259ed59592SDavid Ahern 372632bc201eSXin Long if (tb[RTA_EXPIRES]) { 372732bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 372832bc201eSXin Long 372932bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 373032bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 373132bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 373232bc201eSXin Long } 373332bc201eSXin Long } 373432bc201eSXin Long 373586872cb5SThomas Graf err = 0; 373686872cb5SThomas Graf errout: 373786872cb5SThomas Graf return err; 37381da177e4SLinus Torvalds } 37391da177e4SLinus Torvalds 37406b9ea5a6SRoopa Prabhu struct rt6_nh { 37416b9ea5a6SRoopa Prabhu struct rt6_info *rt6_info; 37426b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 37436b9ea5a6SRoopa Prabhu struct mx6_config mxc; 37446b9ea5a6SRoopa Prabhu struct list_head next; 37456b9ea5a6SRoopa Prabhu }; 37466b9ea5a6SRoopa Prabhu 37476b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 37486b9ea5a6SRoopa Prabhu { 37496b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 37506b9ea5a6SRoopa Prabhu 37516b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 37527d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 37536b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 37546b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 37556b9ea5a6SRoopa Prabhu } 37566b9ea5a6SRoopa Prabhu } 37576b9ea5a6SRoopa Prabhu 37586b9ea5a6SRoopa Prabhu static int ip6_route_info_append(struct list_head *rt6_nh_list, 37596b9ea5a6SRoopa Prabhu struct rt6_info *rt, struct fib6_config *r_cfg) 37606b9ea5a6SRoopa Prabhu { 37616b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 37626b9ea5a6SRoopa Prabhu int err = -EEXIST; 37636b9ea5a6SRoopa Prabhu 37646b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 37656b9ea5a6SRoopa Prabhu /* check if rt6_info already exists */ 3766f06b7549SDavid Ahern if (rt6_duplicate_nexthop(nh->rt6_info, rt)) 37676b9ea5a6SRoopa Prabhu return err; 37686b9ea5a6SRoopa Prabhu } 37696b9ea5a6SRoopa Prabhu 37706b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 37716b9ea5a6SRoopa Prabhu if (!nh) 37726b9ea5a6SRoopa Prabhu return -ENOMEM; 37736b9ea5a6SRoopa Prabhu nh->rt6_info = rt; 37746b9ea5a6SRoopa Prabhu err = ip6_convert_metrics(&nh->mxc, r_cfg); 37756b9ea5a6SRoopa Prabhu if (err) { 37766b9ea5a6SRoopa Prabhu kfree(nh); 37776b9ea5a6SRoopa Prabhu return err; 37786b9ea5a6SRoopa Prabhu } 37796b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 37806b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 37816b9ea5a6SRoopa Prabhu 37826b9ea5a6SRoopa Prabhu return 0; 37836b9ea5a6SRoopa Prabhu } 37846b9ea5a6SRoopa Prabhu 37853b1137feSDavid Ahern static void ip6_route_mpath_notify(struct rt6_info *rt, 37863b1137feSDavid Ahern struct rt6_info *rt_last, 37873b1137feSDavid Ahern struct nl_info *info, 37883b1137feSDavid Ahern __u16 nlflags) 37893b1137feSDavid Ahern { 37903b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 37913b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 37923b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 37933b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 37943b1137feSDavid Ahern * the list, find the first sibling of the last route appended 37953b1137feSDavid Ahern */ 37963b1137feSDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->rt6i_nsiblings) { 37973b1137feSDavid Ahern rt = list_first_entry(&rt_last->rt6i_siblings, 37983b1137feSDavid Ahern struct rt6_info, 37993b1137feSDavid Ahern rt6i_siblings); 38003b1137feSDavid Ahern } 38013b1137feSDavid Ahern 38023b1137feSDavid Ahern if (rt) 38033b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 38043b1137feSDavid Ahern } 38053b1137feSDavid Ahern 3806333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 3807333c4301SDavid Ahern struct netlink_ext_ack *extack) 380851ebd318SNicolas Dichtel { 38093b1137feSDavid Ahern struct rt6_info *rt_notif = NULL, *rt_last = NULL; 38103b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 381151ebd318SNicolas Dichtel struct fib6_config r_cfg; 381251ebd318SNicolas Dichtel struct rtnexthop *rtnh; 38136b9ea5a6SRoopa Prabhu struct rt6_info *rt; 38146b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 38156b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 38163b1137feSDavid Ahern __u16 nlflags; 381751ebd318SNicolas Dichtel int remaining; 381851ebd318SNicolas Dichtel int attrlen; 38196b9ea5a6SRoopa Prabhu int err = 1; 38206b9ea5a6SRoopa Prabhu int nhn = 0; 38216b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 38226b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 38236b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 382451ebd318SNicolas Dichtel 38253b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 38263b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 38273b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 38283b1137feSDavid Ahern 382935f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 383051ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 383151ebd318SNicolas Dichtel 38326b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 38336b9ea5a6SRoopa Prabhu * rt6_info structs per nexthop 38346b9ea5a6SRoopa Prabhu */ 383551ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 383651ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 383751ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 383851ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 383951ebd318SNicolas Dichtel 384051ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 384151ebd318SNicolas Dichtel if (attrlen > 0) { 384251ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 384351ebd318SNicolas Dichtel 384451ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 384551ebd318SNicolas Dichtel if (nla) { 384667b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 384751ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 384851ebd318SNicolas Dichtel } 384919e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 385019e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 385119e42e45SRoopa Prabhu if (nla) 385219e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 385351ebd318SNicolas Dichtel } 38546b9ea5a6SRoopa Prabhu 3855333c4301SDavid Ahern rt = ip6_route_info_create(&r_cfg, extack); 38568c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 38578c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 38588c5b83f0SRoopa Prabhu rt = NULL; 38596b9ea5a6SRoopa Prabhu goto cleanup; 38608c5b83f0SRoopa Prabhu } 38616b9ea5a6SRoopa Prabhu 38626b9ea5a6SRoopa Prabhu err = ip6_route_info_append(&rt6_nh_list, rt, &r_cfg); 386351ebd318SNicolas Dichtel if (err) { 3864587fea74SWei Wang dst_release_immediate(&rt->dst); 38656b9ea5a6SRoopa Prabhu goto cleanup; 386651ebd318SNicolas Dichtel } 38676b9ea5a6SRoopa Prabhu 38686b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 386951ebd318SNicolas Dichtel } 38706b9ea5a6SRoopa Prabhu 38713b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 38723b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 38733b1137feSDavid Ahern * the full route when done 38743b1137feSDavid Ahern */ 38753b1137feSDavid Ahern info->skip_notify = 1; 38763b1137feSDavid Ahern 38776b9ea5a6SRoopa Prabhu err_nh = NULL; 38786b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 38793b1137feSDavid Ahern rt_last = nh->rt6_info; 3880333c4301SDavid Ahern err = __ip6_ins_rt(nh->rt6_info, info, &nh->mxc, extack); 38813b1137feSDavid Ahern /* save reference to first route for notification */ 38823b1137feSDavid Ahern if (!rt_notif && !err) 38833b1137feSDavid Ahern rt_notif = nh->rt6_info; 38843b1137feSDavid Ahern 38856b9ea5a6SRoopa Prabhu /* nh->rt6_info is used or freed at this point, reset to NULL*/ 38866b9ea5a6SRoopa Prabhu nh->rt6_info = NULL; 38876b9ea5a6SRoopa Prabhu if (err) { 38886b9ea5a6SRoopa Prabhu if (replace && nhn) 38896b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 38906b9ea5a6SRoopa Prabhu err_nh = nh; 38916b9ea5a6SRoopa Prabhu goto add_errout; 38926b9ea5a6SRoopa Prabhu } 38936b9ea5a6SRoopa Prabhu 38941a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 389527596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 389627596472SMichal Kubeček * we have already failed to add the first nexthop: 389727596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 389827596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 389927596472SMichal Kubeček * be added to it. 39001a72418bSNicolas Dichtel */ 390127596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 390227596472SMichal Kubeček NLM_F_REPLACE); 39036b9ea5a6SRoopa Prabhu nhn++; 39046b9ea5a6SRoopa Prabhu } 39056b9ea5a6SRoopa Prabhu 39063b1137feSDavid Ahern /* success ... tell user about new route */ 39073b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 39086b9ea5a6SRoopa Prabhu goto cleanup; 39096b9ea5a6SRoopa Prabhu 39106b9ea5a6SRoopa Prabhu add_errout: 39113b1137feSDavid Ahern /* send notification for routes that were added so that 39123b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 39133b1137feSDavid Ahern * coherent 39143b1137feSDavid Ahern */ 39153b1137feSDavid Ahern if (rt_notif) 39163b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 39173b1137feSDavid Ahern 39186b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 39196b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 39206b9ea5a6SRoopa Prabhu if (err_nh == nh) 39216b9ea5a6SRoopa Prabhu break; 3922333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 39236b9ea5a6SRoopa Prabhu } 39246b9ea5a6SRoopa Prabhu 39256b9ea5a6SRoopa Prabhu cleanup: 39266b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 3927587fea74SWei Wang if (nh->rt6_info) 3928587fea74SWei Wang dst_release_immediate(&nh->rt6_info->dst); 39296b9ea5a6SRoopa Prabhu kfree(nh->mxc.mx); 39306b9ea5a6SRoopa Prabhu list_del(&nh->next); 39316b9ea5a6SRoopa Prabhu kfree(nh); 39326b9ea5a6SRoopa Prabhu } 39336b9ea5a6SRoopa Prabhu 39346b9ea5a6SRoopa Prabhu return err; 39356b9ea5a6SRoopa Prabhu } 39366b9ea5a6SRoopa Prabhu 3937333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 3938333c4301SDavid Ahern struct netlink_ext_ack *extack) 39396b9ea5a6SRoopa Prabhu { 39406b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 39416b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 39426b9ea5a6SRoopa Prabhu int remaining; 39436b9ea5a6SRoopa Prabhu int attrlen; 39446b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 39456b9ea5a6SRoopa Prabhu 39466b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 39476b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 39486b9ea5a6SRoopa Prabhu 39496b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 39506b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 39516b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 39526b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 39536b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 39546b9ea5a6SRoopa Prabhu 39556b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 39566b9ea5a6SRoopa Prabhu if (attrlen > 0) { 39576b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 39586b9ea5a6SRoopa Prabhu 39596b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 39606b9ea5a6SRoopa Prabhu if (nla) { 39616b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 39626b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 39636b9ea5a6SRoopa Prabhu } 39646b9ea5a6SRoopa Prabhu } 3965333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 39666b9ea5a6SRoopa Prabhu if (err) 39676b9ea5a6SRoopa Prabhu last_err = err; 39686b9ea5a6SRoopa Prabhu 396951ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 397051ebd318SNicolas Dichtel } 397151ebd318SNicolas Dichtel 397251ebd318SNicolas Dichtel return last_err; 397351ebd318SNicolas Dichtel } 397451ebd318SNicolas Dichtel 3975c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 3976c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 39771da177e4SLinus Torvalds { 397886872cb5SThomas Graf struct fib6_config cfg; 397986872cb5SThomas Graf int err; 39801da177e4SLinus Torvalds 3981333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 398286872cb5SThomas Graf if (err < 0) 398386872cb5SThomas Graf return err; 398486872cb5SThomas Graf 398551ebd318SNicolas Dichtel if (cfg.fc_mp) 3986333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 39870ae81335SDavid Ahern else { 39880ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 3989333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 39901da177e4SLinus Torvalds } 39910ae81335SDavid Ahern } 39921da177e4SLinus Torvalds 3993c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 3994c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 39951da177e4SLinus Torvalds { 399686872cb5SThomas Graf struct fib6_config cfg; 399786872cb5SThomas Graf int err; 39981da177e4SLinus Torvalds 3999333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 400086872cb5SThomas Graf if (err < 0) 400186872cb5SThomas Graf return err; 400286872cb5SThomas Graf 400351ebd318SNicolas Dichtel if (cfg.fc_mp) 4004333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 400551ebd318SNicolas Dichtel else 4006333c4301SDavid Ahern return ip6_route_add(&cfg, extack); 40071da177e4SLinus Torvalds } 40081da177e4SLinus Torvalds 4009beb1afacSDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt) 4010339bf98fSThomas Graf { 4011beb1afacSDavid Ahern int nexthop_len = 0; 4012beb1afacSDavid Ahern 4013beb1afacSDavid Ahern if (rt->rt6i_nsiblings) { 4014beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4015beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4016beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4017beb1afacSDavid Ahern + lwtunnel_get_encap_size(rt->dst.lwtstate); 4018beb1afacSDavid Ahern 4019beb1afacSDavid Ahern nexthop_len *= rt->rt6i_nsiblings; 4020beb1afacSDavid Ahern } 4021beb1afacSDavid Ahern 4022339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4023339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4024339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4025339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4026339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4027339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4028339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4029339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4030339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 40316a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4032ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4033c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 403419e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4035beb1afacSDavid Ahern + lwtunnel_get_encap_size(rt->dst.lwtstate) 4036beb1afacSDavid Ahern + nexthop_len; 4037beb1afacSDavid Ahern } 4038beb1afacSDavid Ahern 4039beb1afacSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct rt6_info *rt, 40405be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4041beb1afacSDavid Ahern { 4042*44c9f2f2SIdo Schimmel if (rt->rt6i_nh_flags & RTNH_F_LINKDOWN) { 4043beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4044beb1afacSDavid Ahern if (rt->rt6i_idev->cnf.ignore_routes_with_linkdown) 4045beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4046beb1afacSDavid Ahern } 4047beb1afacSDavid Ahern 4048beb1afacSDavid Ahern if (rt->rt6i_flags & RTF_GATEWAY) { 4049beb1afacSDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->rt6i_gateway) < 0) 4050beb1afacSDavid Ahern goto nla_put_failure; 4051beb1afacSDavid Ahern } 4052beb1afacSDavid Ahern 4053fe400799SIdo Schimmel if (rt->rt6i_nh_flags & RTNH_F_OFFLOAD) 405461e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 405561e4d01eSIdo Schimmel 40565be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 40575be083ceSDavid Ahern if (!skip_oif && rt->dst.dev && 4058beb1afacSDavid Ahern nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex)) 4059beb1afacSDavid Ahern goto nla_put_failure; 4060beb1afacSDavid Ahern 4061beb1afacSDavid Ahern if (rt->dst.lwtstate && 4062beb1afacSDavid Ahern lwtunnel_fill_encap(skb, rt->dst.lwtstate) < 0) 4063beb1afacSDavid Ahern goto nla_put_failure; 4064beb1afacSDavid Ahern 4065beb1afacSDavid Ahern return 0; 4066beb1afacSDavid Ahern 4067beb1afacSDavid Ahern nla_put_failure: 4068beb1afacSDavid Ahern return -EMSGSIZE; 4069beb1afacSDavid Ahern } 4070beb1afacSDavid Ahern 40715be083ceSDavid Ahern /* add multipath next hop */ 4072beb1afacSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct rt6_info *rt) 4073beb1afacSDavid Ahern { 4074beb1afacSDavid Ahern struct rtnexthop *rtnh; 4075beb1afacSDavid Ahern unsigned int flags = 0; 4076beb1afacSDavid Ahern 4077beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4078beb1afacSDavid Ahern if (!rtnh) 4079beb1afacSDavid Ahern goto nla_put_failure; 4080beb1afacSDavid Ahern 4081beb1afacSDavid Ahern rtnh->rtnh_hops = 0; 4082beb1afacSDavid Ahern rtnh->rtnh_ifindex = rt->dst.dev ? rt->dst.dev->ifindex : 0; 4083beb1afacSDavid Ahern 40845be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4085beb1afacSDavid Ahern goto nla_put_failure; 4086beb1afacSDavid Ahern 4087beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4088beb1afacSDavid Ahern 4089beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4090beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4091beb1afacSDavid Ahern 4092beb1afacSDavid Ahern return 0; 4093beb1afacSDavid Ahern 4094beb1afacSDavid Ahern nla_put_failure: 4095beb1afacSDavid Ahern return -EMSGSIZE; 4096339bf98fSThomas Graf } 4097339bf98fSThomas Graf 4098191cd582SBrian Haley static int rt6_fill_node(struct net *net, 4099191cd582SBrian Haley struct sk_buff *skb, struct rt6_info *rt, 41000d51aa80SJamal Hadi Salim struct in6_addr *dst, struct in6_addr *src, 410115e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4102f8cfe2ceSDavid Ahern unsigned int flags) 41031da177e4SLinus Torvalds { 41044b32b5adSMartin KaFai Lau u32 metrics[RTAX_MAX]; 41051da177e4SLinus Torvalds struct rtmsg *rtm; 41061da177e4SLinus Torvalds struct nlmsghdr *nlh; 4107e3703b3dSThomas Graf long expires; 41089e762a4aSPatrick McHardy u32 table; 41091da177e4SLinus Torvalds 411015e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 411138308473SDavid S. Miller if (!nlh) 411226932566SPatrick McHardy return -EMSGSIZE; 41132d7202bfSThomas Graf 41142d7202bfSThomas Graf rtm = nlmsg_data(nlh); 41151da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 41161da177e4SLinus Torvalds rtm->rtm_dst_len = rt->rt6i_dst.plen; 41171da177e4SLinus Torvalds rtm->rtm_src_len = rt->rt6i_src.plen; 41181da177e4SLinus Torvalds rtm->rtm_tos = 0; 4119c71099acSThomas Graf if (rt->rt6i_table) 41209e762a4aSPatrick McHardy table = rt->rt6i_table->tb6_id; 4121c71099acSThomas Graf else 41229e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 41239e762a4aSPatrick McHardy rtm->rtm_table = table; 4124c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4125c78679e8SDavid S. Miller goto nla_put_failure; 4126ef2c7d7bSNicolas Dichtel if (rt->rt6i_flags & RTF_REJECT) { 4127ef2c7d7bSNicolas Dichtel switch (rt->dst.error) { 4128ef2c7d7bSNicolas Dichtel case -EINVAL: 4129ef2c7d7bSNicolas Dichtel rtm->rtm_type = RTN_BLACKHOLE; 4130ef2c7d7bSNicolas Dichtel break; 4131ef2c7d7bSNicolas Dichtel case -EACCES: 4132ef2c7d7bSNicolas Dichtel rtm->rtm_type = RTN_PROHIBIT; 4133ef2c7d7bSNicolas Dichtel break; 4134b4949ab2SNicolas Dichtel case -EAGAIN: 4135b4949ab2SNicolas Dichtel rtm->rtm_type = RTN_THROW; 4136b4949ab2SNicolas Dichtel break; 4137ef2c7d7bSNicolas Dichtel default: 41381da177e4SLinus Torvalds rtm->rtm_type = RTN_UNREACHABLE; 4139ef2c7d7bSNicolas Dichtel break; 4140ef2c7d7bSNicolas Dichtel } 4141ef2c7d7bSNicolas Dichtel } 4142ab79ad14SMaciej Żenczykowski else if (rt->rt6i_flags & RTF_LOCAL) 4143ab79ad14SMaciej Żenczykowski rtm->rtm_type = RTN_LOCAL; 41444ee39733SDavid Ahern else if (rt->rt6i_flags & RTF_ANYCAST) 41454ee39733SDavid Ahern rtm->rtm_type = RTN_ANYCAST; 4146d1918542SDavid S. Miller else if (rt->dst.dev && (rt->dst.dev->flags & IFF_LOOPBACK)) 41471da177e4SLinus Torvalds rtm->rtm_type = RTN_LOCAL; 41481da177e4SLinus Torvalds else 41491da177e4SLinus Torvalds rtm->rtm_type = RTN_UNICAST; 41501da177e4SLinus Torvalds rtm->rtm_flags = 0; 41511da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 41521da177e4SLinus Torvalds rtm->rtm_protocol = rt->rt6i_protocol; 41531da177e4SLinus Torvalds 41541da177e4SLinus Torvalds if (rt->rt6i_flags & RTF_CACHE) 41551da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 41561da177e4SLinus Torvalds 41571da177e4SLinus Torvalds if (dst) { 4158930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_DST, dst)) 4159c78679e8SDavid S. Miller goto nla_put_failure; 41601da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 41611da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 4162930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_DST, &rt->rt6i_dst.addr)) 4163c78679e8SDavid S. Miller goto nla_put_failure; 41641da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 41651da177e4SLinus Torvalds if (src) { 4166930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4167c78679e8SDavid S. Miller goto nla_put_failure; 41681da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4169c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 4170930345eaSJiri Benc nla_put_in6_addr(skb, RTA_SRC, &rt->rt6i_src.addr)) 4171c78679e8SDavid S. Miller goto nla_put_failure; 41721da177e4SLinus Torvalds #endif 41737bc570c8SYOSHIFUJI Hideaki if (iif) { 41747bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 41757bc570c8SYOSHIFUJI Hideaki if (ipv6_addr_is_multicast(&rt->rt6i_dst.addr)) { 4176fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 41772cf75070SNikolay Aleksandrov 41787bc570c8SYOSHIFUJI Hideaki if (err == 0) 41797bc570c8SYOSHIFUJI Hideaki return 0; 4180fd61c6baSDavid Ahern if (err < 0) 41817bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 41827bc570c8SYOSHIFUJI Hideaki } else 41837bc570c8SYOSHIFUJI Hideaki #endif 4184c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4185c78679e8SDavid S. Miller goto nla_put_failure; 41867bc570c8SYOSHIFUJI Hideaki } else if (dst) { 41871da177e4SLinus Torvalds struct in6_addr saddr_buf; 4188c78679e8SDavid S. Miller if (ip6_route_get_saddr(net, rt, dst, 0, &saddr_buf) == 0 && 4189930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4190c78679e8SDavid S. Miller goto nla_put_failure; 4191c3968a85SDaniel Walter } 4192c3968a85SDaniel Walter 4193c3968a85SDaniel Walter if (rt->rt6i_prefsrc.plen) { 4194c3968a85SDaniel Walter struct in6_addr saddr_buf; 41954e3fd7a0SAlexey Dobriyan saddr_buf = rt->rt6i_prefsrc.addr; 4196930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4197c78679e8SDavid S. Miller goto nla_put_failure; 41981da177e4SLinus Torvalds } 41992d7202bfSThomas Graf 42004b32b5adSMartin KaFai Lau memcpy(metrics, dst_metrics_ptr(&rt->dst), sizeof(metrics)); 42014b32b5adSMartin KaFai Lau if (rt->rt6i_pmtu) 42024b32b5adSMartin KaFai Lau metrics[RTAX_MTU - 1] = rt->rt6i_pmtu; 42034b32b5adSMartin KaFai Lau if (rtnetlink_put_metrics(skb, metrics) < 0) 42042d7202bfSThomas Graf goto nla_put_failure; 42052d7202bfSThomas Graf 4206beb1afacSDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->rt6i_metric)) 4207beb1afacSDavid Ahern goto nla_put_failure; 4208beb1afacSDavid Ahern 4209beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4210beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4211beb1afacSDavid Ahern */ 4212beb1afacSDavid Ahern if (rt->rt6i_nsiblings) { 4213beb1afacSDavid Ahern struct rt6_info *sibling, *next_sibling; 4214beb1afacSDavid Ahern struct nlattr *mp; 4215beb1afacSDavid Ahern 4216beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4217beb1afacSDavid Ahern if (!mp) 4218beb1afacSDavid Ahern goto nla_put_failure; 4219beb1afacSDavid Ahern 4220beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4221beb1afacSDavid Ahern goto nla_put_failure; 4222beb1afacSDavid Ahern 4223beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 4224beb1afacSDavid Ahern &rt->rt6i_siblings, rt6i_siblings) { 4225beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 422694f826b8SEric Dumazet goto nla_put_failure; 422794f826b8SEric Dumazet } 42282d7202bfSThomas Graf 4229beb1afacSDavid Ahern nla_nest_end(skb, mp); 4230beb1afacSDavid Ahern } else { 42315be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4232c78679e8SDavid S. Miller goto nla_put_failure; 4233beb1afacSDavid Ahern } 42348253947eSLi Wei 42358253947eSLi Wei expires = (rt->rt6i_flags & RTF_EXPIRES) ? rt->dst.expires - jiffies : 0; 423669cdf8f9SYOSHIFUJI Hideaki 423787a50699SDavid S. Miller if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, rt->dst.error) < 0) 4238e3703b3dSThomas Graf goto nla_put_failure; 42391da177e4SLinus Torvalds 4240c78ba6d6SLubomir Rintel if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->rt6i_flags))) 4241c78ba6d6SLubomir Rintel goto nla_put_failure; 4242c78ba6d6SLubomir Rintel 424319e42e45SRoopa Prabhu 4244053c095aSJohannes Berg nlmsg_end(skb, nlh); 4245053c095aSJohannes Berg return 0; 42462d7202bfSThomas Graf 42472d7202bfSThomas Graf nla_put_failure: 424826932566SPatrick McHardy nlmsg_cancel(skb, nlh); 424926932566SPatrick McHardy return -EMSGSIZE; 42501da177e4SLinus Torvalds } 42511da177e4SLinus Torvalds 42521b43af54SPatrick McHardy int rt6_dump_route(struct rt6_info *rt, void *p_arg) 42531da177e4SLinus Torvalds { 42541da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 42551f17e2f2SDavid Ahern struct net *net = arg->net; 42561f17e2f2SDavid Ahern 42571f17e2f2SDavid Ahern if (rt == net->ipv6.ip6_null_entry) 42581f17e2f2SDavid Ahern return 0; 42591da177e4SLinus Torvalds 42602d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 42612d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4262f8cfe2ceSDavid Ahern 4263f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4264f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 4265f8cfe2ceSDavid Ahern !(rt->rt6i_flags & RTF_PREFIX_RT)) { 4266f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4267f8cfe2ceSDavid Ahern return 1; 4268f8cfe2ceSDavid Ahern } 4269f8cfe2ceSDavid Ahern } 42701da177e4SLinus Torvalds 42711f17e2f2SDavid Ahern return rt6_fill_node(net, 4272191cd582SBrian Haley arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE, 427315e47304SEric W. Biederman NETLINK_CB(arg->cb->skb).portid, arg->cb->nlh->nlmsg_seq, 4274f8cfe2ceSDavid Ahern NLM_F_MULTI); 42751da177e4SLinus Torvalds } 42761da177e4SLinus Torvalds 4277c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4278c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 42791da177e4SLinus Torvalds { 42803b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4281ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 428218c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 428318c3a61cSRoopa Prabhu struct dst_entry *dst; 42841da177e4SLinus Torvalds struct rt6_info *rt; 4285ab364a6fSThomas Graf struct sk_buff *skb; 4286ab364a6fSThomas Graf struct rtmsg *rtm; 42874c9483b2SDavid S. Miller struct flowi6 fl6; 428818c3a61cSRoopa Prabhu bool fibmatch; 4289ab364a6fSThomas Graf 4290fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4291c21ef3e3SDavid Ahern extack); 4292ab364a6fSThomas Graf if (err < 0) 4293ab364a6fSThomas Graf goto errout; 4294ab364a6fSThomas Graf 4295ab364a6fSThomas Graf err = -EINVAL; 42964c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 429738b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 429838b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 429918c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4300ab364a6fSThomas Graf 4301ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4302ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4303ab364a6fSThomas Graf goto errout; 4304ab364a6fSThomas Graf 43054e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4306ab364a6fSThomas Graf } 4307ab364a6fSThomas Graf 4308ab364a6fSThomas Graf if (tb[RTA_DST]) { 4309ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4310ab364a6fSThomas Graf goto errout; 4311ab364a6fSThomas Graf 43124e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4313ab364a6fSThomas Graf } 4314ab364a6fSThomas Graf 4315ab364a6fSThomas Graf if (tb[RTA_IIF]) 4316ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4317ab364a6fSThomas Graf 4318ab364a6fSThomas Graf if (tb[RTA_OIF]) 431972331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4320ab364a6fSThomas Graf 43212e47b291SLorenzo Colitti if (tb[RTA_MARK]) 43222e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 43232e47b291SLorenzo Colitti 4324622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4325622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4326622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4327622ec2c9SLorenzo Colitti else 4328622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4329622ec2c9SLorenzo Colitti 4330ab364a6fSThomas Graf if (iif) { 4331ab364a6fSThomas Graf struct net_device *dev; 433272331bc0SShmulik Ladkani int flags = 0; 433372331bc0SShmulik Ladkani 4334121622dbSFlorian Westphal rcu_read_lock(); 4335121622dbSFlorian Westphal 4336121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4337ab364a6fSThomas Graf if (!dev) { 4338121622dbSFlorian Westphal rcu_read_unlock(); 4339ab364a6fSThomas Graf err = -ENODEV; 4340ab364a6fSThomas Graf goto errout; 4341ab364a6fSThomas Graf } 434272331bc0SShmulik Ladkani 434372331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 434472331bc0SShmulik Ladkani 434572331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 434672331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 434772331bc0SShmulik Ladkani 434818c3a61cSRoopa Prabhu dst = ip6_route_input_lookup(net, dev, &fl6, flags); 4349121622dbSFlorian Westphal 4350121622dbSFlorian Westphal rcu_read_unlock(); 435172331bc0SShmulik Ladkani } else { 435272331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 435372331bc0SShmulik Ladkani 435418c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 435518c3a61cSRoopa Prabhu } 435618c3a61cSRoopa Prabhu 435718c3a61cSRoopa Prabhu 435818c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 435918c3a61cSRoopa Prabhu if (rt->dst.error) { 436018c3a61cSRoopa Prabhu err = rt->dst.error; 436118c3a61cSRoopa Prabhu ip6_rt_put(rt); 436218c3a61cSRoopa Prabhu goto errout; 4363ab364a6fSThomas Graf } 43641da177e4SLinus Torvalds 43659d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 43669d6acb3bSWANG Cong err = rt->dst.error; 43679d6acb3bSWANG Cong ip6_rt_put(rt); 43689d6acb3bSWANG Cong goto errout; 43699d6acb3bSWANG Cong } 43709d6acb3bSWANG Cong 4371fba961abSDavid S. Miller if (fibmatch && rt->from) { 4372fba961abSDavid S. Miller struct rt6_info *ort = rt->from; 437358acfd71SIdo Schimmel 437458acfd71SIdo Schimmel dst_hold(&ort->dst); 437558acfd71SIdo Schimmel ip6_rt_put(rt); 437658acfd71SIdo Schimmel rt = ort; 437758acfd71SIdo Schimmel } 437858acfd71SIdo Schimmel 43791da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 438038308473SDavid S. Miller if (!skb) { 438194e187c0SAmerigo Wang ip6_rt_put(rt); 4382ab364a6fSThomas Graf err = -ENOBUFS; 4383ab364a6fSThomas Graf goto errout; 4384ab364a6fSThomas Graf } 43851da177e4SLinus Torvalds 4386d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 438718c3a61cSRoopa Prabhu if (fibmatch) 438818c3a61cSRoopa Prabhu err = rt6_fill_node(net, skb, rt, NULL, NULL, iif, 438918c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 439018c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 439118c3a61cSRoopa Prabhu else 43924c9483b2SDavid S. Miller err = rt6_fill_node(net, skb, rt, &fl6.daddr, &fl6.saddr, iif, 439315e47304SEric W. Biederman RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 4394f8cfe2ceSDavid Ahern nlh->nlmsg_seq, 0); 43951da177e4SLinus Torvalds if (err < 0) { 4396ab364a6fSThomas Graf kfree_skb(skb); 4397ab364a6fSThomas Graf goto errout; 43981da177e4SLinus Torvalds } 43991da177e4SLinus Torvalds 440015e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4401ab364a6fSThomas Graf errout: 44021da177e4SLinus Torvalds return err; 44031da177e4SLinus Torvalds } 44041da177e4SLinus Torvalds 440537a1d361SRoopa Prabhu void inet6_rt_notify(int event, struct rt6_info *rt, struct nl_info *info, 440637a1d361SRoopa Prabhu unsigned int nlm_flags) 44071da177e4SLinus Torvalds { 44081da177e4SLinus Torvalds struct sk_buff *skb; 44095578689aSDaniel Lezcano struct net *net = info->nl_net; 4410528c4cebSDenis V. Lunev u32 seq; 4411528c4cebSDenis V. Lunev int err; 44120d51aa80SJamal Hadi Salim 4413528c4cebSDenis V. Lunev err = -ENOBUFS; 441438308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 441586872cb5SThomas Graf 441619e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 441738308473SDavid S. Miller if (!skb) 441821713ebcSThomas Graf goto errout; 44191da177e4SLinus Torvalds 4420191cd582SBrian Haley err = rt6_fill_node(net, skb, rt, NULL, NULL, 0, 4421f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 442226932566SPatrick McHardy if (err < 0) { 442326932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 442426932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 442526932566SPatrick McHardy kfree_skb(skb); 442626932566SPatrick McHardy goto errout; 442726932566SPatrick McHardy } 442815e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 44295578689aSDaniel Lezcano info->nlh, gfp_any()); 44301ce85fe4SPablo Neira Ayuso return; 443121713ebcSThomas Graf errout: 443221713ebcSThomas Graf if (err < 0) 44335578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 44341da177e4SLinus Torvalds } 44351da177e4SLinus Torvalds 44368ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4437351638e7SJiri Pirko unsigned long event, void *ptr) 44388ed67789SDaniel Lezcano { 4439351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4440c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 44418ed67789SDaniel Lezcano 4442242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 4443242d3a49SWANG Cong return NOTIFY_OK; 4444242d3a49SWANG Cong 4445242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 4446d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 44478ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 44488ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 4449d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 44508ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 4451d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 44528ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 44538ed67789SDaniel Lezcano #endif 445476da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 445576da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 445676da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 445776da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 445876da0704SWANG Cong */ 445912d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 4460242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 446112d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 446212d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 4463242d3a49SWANG Cong #endif 44648ed67789SDaniel Lezcano } 44658ed67789SDaniel Lezcano 44668ed67789SDaniel Lezcano return NOTIFY_OK; 44678ed67789SDaniel Lezcano } 44688ed67789SDaniel Lezcano 44691da177e4SLinus Torvalds /* 44701da177e4SLinus Torvalds * /proc 44711da177e4SLinus Torvalds */ 44721da177e4SLinus Torvalds 44731da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 44741da177e4SLinus Torvalds 447533120b30SAlexey Dobriyan static const struct file_operations ipv6_route_proc_fops = { 447633120b30SAlexey Dobriyan .owner = THIS_MODULE, 447733120b30SAlexey Dobriyan .open = ipv6_route_open, 447833120b30SAlexey Dobriyan .read = seq_read, 447933120b30SAlexey Dobriyan .llseek = seq_lseek, 44808d2ca1d7SHannes Frederic Sowa .release = seq_release_net, 448133120b30SAlexey Dobriyan }; 448233120b30SAlexey Dobriyan 44831da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 44841da177e4SLinus Torvalds { 448569ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 44861da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 448769ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 448869ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 448981eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 449069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 449169ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 4492fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 449369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 44941da177e4SLinus Torvalds 44951da177e4SLinus Torvalds return 0; 44961da177e4SLinus Torvalds } 44971da177e4SLinus Torvalds 44981da177e4SLinus Torvalds static int rt6_stats_seq_open(struct inode *inode, struct file *file) 44991da177e4SLinus Torvalds { 4500de05c557SPavel Emelyanov return single_open_net(inode, file, rt6_stats_seq_show); 450169ddb805SDaniel Lezcano } 450269ddb805SDaniel Lezcano 45039a32144eSArjan van de Ven static const struct file_operations rt6_stats_seq_fops = { 45041da177e4SLinus Torvalds .owner = THIS_MODULE, 45051da177e4SLinus Torvalds .open = rt6_stats_seq_open, 45061da177e4SLinus Torvalds .read = seq_read, 45071da177e4SLinus Torvalds .llseek = seq_lseek, 4508b6fcbdb4SPavel Emelyanov .release = single_release_net, 45091da177e4SLinus Torvalds }; 45101da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 45111da177e4SLinus Torvalds 45121da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 45131da177e4SLinus Torvalds 45141da177e4SLinus Torvalds static 4515fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 45161da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 45171da177e4SLinus Torvalds { 4518c486da34SLucian Adrian Grijincu struct net *net; 4519c486da34SLucian Adrian Grijincu int delay; 4520c486da34SLucian Adrian Grijincu if (!write) 4521c486da34SLucian Adrian Grijincu return -EINVAL; 4522c486da34SLucian Adrian Grijincu 4523c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 4524c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 45258d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 45262ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 45271da177e4SLinus Torvalds return 0; 45281da177e4SLinus Torvalds } 45291da177e4SLinus Torvalds 4530fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 45311da177e4SLinus Torvalds { 45321da177e4SLinus Torvalds .procname = "flush", 45334990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 45341da177e4SLinus Torvalds .maxlen = sizeof(int), 453589c8b3a1SDave Jones .mode = 0200, 45366d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 45371da177e4SLinus Torvalds }, 45381da177e4SLinus Torvalds { 45391da177e4SLinus Torvalds .procname = "gc_thresh", 45409a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 45411da177e4SLinus Torvalds .maxlen = sizeof(int), 45421da177e4SLinus Torvalds .mode = 0644, 45436d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 45441da177e4SLinus Torvalds }, 45451da177e4SLinus Torvalds { 45461da177e4SLinus Torvalds .procname = "max_size", 45474990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 45481da177e4SLinus Torvalds .maxlen = sizeof(int), 45491da177e4SLinus Torvalds .mode = 0644, 45506d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 45511da177e4SLinus Torvalds }, 45521da177e4SLinus Torvalds { 45531da177e4SLinus Torvalds .procname = "gc_min_interval", 45544990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 45551da177e4SLinus Torvalds .maxlen = sizeof(int), 45561da177e4SLinus Torvalds .mode = 0644, 45576d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45581da177e4SLinus Torvalds }, 45591da177e4SLinus Torvalds { 45601da177e4SLinus Torvalds .procname = "gc_timeout", 45614990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 45621da177e4SLinus Torvalds .maxlen = sizeof(int), 45631da177e4SLinus Torvalds .mode = 0644, 45646d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45651da177e4SLinus Torvalds }, 45661da177e4SLinus Torvalds { 45671da177e4SLinus Torvalds .procname = "gc_interval", 45684990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 45691da177e4SLinus Torvalds .maxlen = sizeof(int), 45701da177e4SLinus Torvalds .mode = 0644, 45716d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45721da177e4SLinus Torvalds }, 45731da177e4SLinus Torvalds { 45741da177e4SLinus Torvalds .procname = "gc_elasticity", 45754990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 45761da177e4SLinus Torvalds .maxlen = sizeof(int), 45771da177e4SLinus Torvalds .mode = 0644, 4578f3d3f616SMin Zhang .proc_handler = proc_dointvec, 45791da177e4SLinus Torvalds }, 45801da177e4SLinus Torvalds { 45811da177e4SLinus Torvalds .procname = "mtu_expires", 45824990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 45831da177e4SLinus Torvalds .maxlen = sizeof(int), 45841da177e4SLinus Torvalds .mode = 0644, 45856d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45861da177e4SLinus Torvalds }, 45871da177e4SLinus Torvalds { 45881da177e4SLinus Torvalds .procname = "min_adv_mss", 45894990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 45901da177e4SLinus Torvalds .maxlen = sizeof(int), 45911da177e4SLinus Torvalds .mode = 0644, 4592f3d3f616SMin Zhang .proc_handler = proc_dointvec, 45931da177e4SLinus Torvalds }, 45941da177e4SLinus Torvalds { 45951da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 45964990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 45971da177e4SLinus Torvalds .maxlen = sizeof(int), 45981da177e4SLinus Torvalds .mode = 0644, 45996d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 46001da177e4SLinus Torvalds }, 4601f8572d8fSEric W. Biederman { } 46021da177e4SLinus Torvalds }; 46031da177e4SLinus Torvalds 46042c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 4605760f2d01SDaniel Lezcano { 4606760f2d01SDaniel Lezcano struct ctl_table *table; 4607760f2d01SDaniel Lezcano 4608760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 4609760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 4610760f2d01SDaniel Lezcano GFP_KERNEL); 46115ee09105SYOSHIFUJI Hideaki 46125ee09105SYOSHIFUJI Hideaki if (table) { 46135ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 4614c486da34SLucian Adrian Grijincu table[0].extra1 = net; 461586393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 46165ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 46175ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 46185ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 46195ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 46205ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 46215ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 46225ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 46239c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 4624464dc801SEric W. Biederman 4625464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 4626464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 4627464dc801SEric W. Biederman table[0].procname = NULL; 46285ee09105SYOSHIFUJI Hideaki } 46295ee09105SYOSHIFUJI Hideaki 4630760f2d01SDaniel Lezcano return table; 4631760f2d01SDaniel Lezcano } 46321da177e4SLinus Torvalds #endif 46331da177e4SLinus Torvalds 46342c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 4635cdb18761SDaniel Lezcano { 4636633d424bSPavel Emelyanov int ret = -ENOMEM; 46378ed67789SDaniel Lezcano 463886393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 463986393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 4640f2fc6a54SBenjamin Thery 4641fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 4642fc66f95cSEric Dumazet goto out_ip6_dst_ops; 4643fc66f95cSEric Dumazet 46448ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 46458ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 46468ed67789SDaniel Lezcano GFP_KERNEL); 46478ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 4648fc66f95cSEric Dumazet goto out_ip6_dst_entries; 4649d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 465062fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 465162fa8a84SDavid S. Miller ip6_template_metrics, true); 46528ed67789SDaniel Lezcano 46538ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 4654feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 46558ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 46568ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 46578ed67789SDaniel Lezcano GFP_KERNEL); 465868fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 465968fffc67SPeter Zijlstra goto out_ip6_null_entry; 4660d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 466162fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 466262fa8a84SDavid S. Miller ip6_template_metrics, true); 46638ed67789SDaniel Lezcano 46648ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 46658ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 46668ed67789SDaniel Lezcano GFP_KERNEL); 466768fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 466868fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 4669d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 467062fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 467162fa8a84SDavid S. Miller ip6_template_metrics, true); 46728ed67789SDaniel Lezcano #endif 46738ed67789SDaniel Lezcano 4674b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 4675b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 4676b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 4677b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 4678b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 4679b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 4680b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 4681b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 4682b339a47cSPeter Zijlstra 46836891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 46846891a346SBenjamin Thery 46858ed67789SDaniel Lezcano ret = 0; 46868ed67789SDaniel Lezcano out: 46878ed67789SDaniel Lezcano return ret; 4688f2fc6a54SBenjamin Thery 468968fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 469068fffc67SPeter Zijlstra out_ip6_prohibit_entry: 469168fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 469268fffc67SPeter Zijlstra out_ip6_null_entry: 469368fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 469468fffc67SPeter Zijlstra #endif 4695fc66f95cSEric Dumazet out_ip6_dst_entries: 4696fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 4697f2fc6a54SBenjamin Thery out_ip6_dst_ops: 4698f2fc6a54SBenjamin Thery goto out; 4699cdb18761SDaniel Lezcano } 4700cdb18761SDaniel Lezcano 47012c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 4702cdb18761SDaniel Lezcano { 47038ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 47048ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 47058ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 47068ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 47078ed67789SDaniel Lezcano #endif 470841bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 4709cdb18761SDaniel Lezcano } 4710cdb18761SDaniel Lezcano 4711d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 4712d189634eSThomas Graf { 4713d189634eSThomas Graf #ifdef CONFIG_PROC_FS 4714d4beaa66SGao feng proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops); 4715d4beaa66SGao feng proc_create("rt6_stats", S_IRUGO, net->proc_net, &rt6_stats_seq_fops); 4716d189634eSThomas Graf #endif 4717d189634eSThomas Graf return 0; 4718d189634eSThomas Graf } 4719d189634eSThomas Graf 4720d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 4721d189634eSThomas Graf { 4722d189634eSThomas Graf #ifdef CONFIG_PROC_FS 4723ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 4724ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 4725d189634eSThomas Graf #endif 4726d189634eSThomas Graf } 4727d189634eSThomas Graf 4728cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 4729cdb18761SDaniel Lezcano .init = ip6_route_net_init, 4730cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 4731cdb18761SDaniel Lezcano }; 4732cdb18761SDaniel Lezcano 4733c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 4734c3426b47SDavid S. Miller { 4735c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 4736c3426b47SDavid S. Miller 4737c3426b47SDavid S. Miller if (!bp) 4738c3426b47SDavid S. Miller return -ENOMEM; 4739c3426b47SDavid S. Miller inet_peer_base_init(bp); 4740c3426b47SDavid S. Miller net->ipv6.peers = bp; 4741c3426b47SDavid S. Miller return 0; 4742c3426b47SDavid S. Miller } 4743c3426b47SDavid S. Miller 4744c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 4745c3426b47SDavid S. Miller { 4746c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 4747c3426b47SDavid S. Miller 4748c3426b47SDavid S. Miller net->ipv6.peers = NULL; 474956a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 4750c3426b47SDavid S. Miller kfree(bp); 4751c3426b47SDavid S. Miller } 4752c3426b47SDavid S. Miller 47532b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 4754c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 4755c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 4756c3426b47SDavid S. Miller }; 4757c3426b47SDavid S. Miller 4758d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 4759d189634eSThomas Graf .init = ip6_route_net_init_late, 4760d189634eSThomas Graf .exit = ip6_route_net_exit_late, 4761d189634eSThomas Graf }; 4762d189634eSThomas Graf 47638ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 47648ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 4765242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 47668ed67789SDaniel Lezcano }; 47678ed67789SDaniel Lezcano 47682f460933SWANG Cong void __init ip6_route_init_special_entries(void) 47692f460933SWANG Cong { 47702f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 47712f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 47722f460933SWANG Cong * manually for init_net */ 47732f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 47742f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47752f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 47762f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 47772f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47782f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 47792f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47802f460933SWANG Cong #endif 47812f460933SWANG Cong } 47822f460933SWANG Cong 4783433d49c3SDaniel Lezcano int __init ip6_route_init(void) 47841da177e4SLinus Torvalds { 4785433d49c3SDaniel Lezcano int ret; 47868d0b94afSMartin KaFai Lau int cpu; 4787433d49c3SDaniel Lezcano 47889a7ec3a9SDaniel Lezcano ret = -ENOMEM; 47899a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 47909a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 47919a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 47929a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 4793c19a28e1SFernando Carrijo goto out; 479414e50e57SDavid S. Miller 4795fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 47968ed67789SDaniel Lezcano if (ret) 4797bdb3289fSDaniel Lezcano goto out_kmem_cache; 4798bdb3289fSDaniel Lezcano 4799c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 4800c3426b47SDavid S. Miller if (ret) 4801e8803b6cSDavid S. Miller goto out_dst_entries; 48022a0c451aSThomas Graf 48037e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 48047e52b33bSDavid S. Miller if (ret) 48057e52b33bSDavid S. Miller goto out_register_inetpeer; 4806c3426b47SDavid S. Miller 48075dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 48085dc121e9SArnaud Ebalard 4809e8803b6cSDavid S. Miller ret = fib6_init(); 4810433d49c3SDaniel Lezcano if (ret) 48118ed67789SDaniel Lezcano goto out_register_subsys; 4812433d49c3SDaniel Lezcano 4813433d49c3SDaniel Lezcano ret = xfrm6_init(); 4814433d49c3SDaniel Lezcano if (ret) 4815e8803b6cSDavid S. Miller goto out_fib6_init; 4816c35b7e72SDaniel Lezcano 4817433d49c3SDaniel Lezcano ret = fib6_rules_init(); 4818433d49c3SDaniel Lezcano if (ret) 4819433d49c3SDaniel Lezcano goto xfrm6_init; 48207e5449c2SDaniel Lezcano 4821d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 4822d189634eSThomas Graf if (ret) 4823d189634eSThomas Graf goto fib6_rules_init; 4824d189634eSThomas Graf 482516feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 482616feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 482716feebcfSFlorian Westphal if (ret < 0) 482816feebcfSFlorian Westphal goto out_register_late_subsys; 482916feebcfSFlorian Westphal 483016feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 483116feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 483216feebcfSFlorian Westphal if (ret < 0) 483316feebcfSFlorian Westphal goto out_register_late_subsys; 483416feebcfSFlorian Westphal 483516feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 483616feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 483716feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 483816feebcfSFlorian Westphal if (ret < 0) 4839d189634eSThomas Graf goto out_register_late_subsys; 4840433d49c3SDaniel Lezcano 48418ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 4842cdb18761SDaniel Lezcano if (ret) 4843d189634eSThomas Graf goto out_register_late_subsys; 48448ed67789SDaniel Lezcano 48458d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 48468d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 48478d0b94afSMartin KaFai Lau 48488d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 48498d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 48508d0b94afSMartin KaFai Lau } 48518d0b94afSMartin KaFai Lau 4852433d49c3SDaniel Lezcano out: 4853433d49c3SDaniel Lezcano return ret; 4854433d49c3SDaniel Lezcano 4855d189634eSThomas Graf out_register_late_subsys: 485616feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 4857d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 4858433d49c3SDaniel Lezcano fib6_rules_init: 4859433d49c3SDaniel Lezcano fib6_rules_cleanup(); 4860433d49c3SDaniel Lezcano xfrm6_init: 4861433d49c3SDaniel Lezcano xfrm6_fini(); 48622a0c451aSThomas Graf out_fib6_init: 48632a0c451aSThomas Graf fib6_gc_cleanup(); 48648ed67789SDaniel Lezcano out_register_subsys: 48658ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 48667e52b33bSDavid S. Miller out_register_inetpeer: 48677e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 4868fc66f95cSEric Dumazet out_dst_entries: 4869fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 4870433d49c3SDaniel Lezcano out_kmem_cache: 4871f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 4872433d49c3SDaniel Lezcano goto out; 48731da177e4SLinus Torvalds } 48741da177e4SLinus Torvalds 48751da177e4SLinus Torvalds void ip6_route_cleanup(void) 48761da177e4SLinus Torvalds { 48778ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 4878d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 4879101367c2SThomas Graf fib6_rules_cleanup(); 48801da177e4SLinus Torvalds xfrm6_fini(); 48811da177e4SLinus Torvalds fib6_gc_cleanup(); 4882c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 48838ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 488441bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 4885f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 48861da177e4SLinus Torvalds } 4887