11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66b811580dSDavid Ahern #include <trace/events/fib6.h> 671da177e4SLinus Torvalds 687c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 691da177e4SLinus Torvalds 701da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 711da177e4SLinus Torvalds #include <linux/sysctl.h> 721da177e4SLinus Torvalds #endif 731da177e4SLinus Torvalds 74afc154e9SHannes Frederic Sowa enum rt6_nud_state { 757e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 767e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 777e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 78afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 79afc154e9SHannes Frederic Sowa }; 80afc154e9SHannes Frederic Sowa 8183a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort); 821da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 830dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 84ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 851da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 861da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 871da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 881da177e4SLinus Torvalds struct net_device *dev, int how); 89569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 901da177e4SLinus Torvalds 911da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 92ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 937150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 94ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 951da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 966700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 976700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 986700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 996700c270SDavid S. Miller struct sk_buff *skb); 1004b32b5adSMartin KaFai Lau static void rt6_dst_from_metrics_check(struct rt6_info *rt); 10152bd4c0cSNicolas Dichtel static int rt6_score_route(struct rt6_info *rt, int oif, int strict); 10216a16cd3SDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt); 10316a16cd3SDavid Ahern static int rt6_fill_node(struct net *net, 10416a16cd3SDavid Ahern struct sk_buff *skb, struct rt6_info *rt, 10516a16cd3SDavid Ahern struct in6_addr *dst, struct in6_addr *src, 10616a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 10716a16cd3SDavid Ahern unsigned int flags); 10835732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt, 10935732d01SWei Wang struct in6_addr *daddr, 11035732d01SWei Wang struct in6_addr *saddr); 1111da177e4SLinus Torvalds 11270ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 113efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net, 114b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 115830218c1SDavid Ahern const struct in6_addr *gwaddr, 116830218c1SDavid Ahern struct net_device *dev, 11795c96174SEric Dumazet unsigned int pref); 118efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev); 12270ceb4f5SYOSHIFUJI Hideaki #endif 12370ceb4f5SYOSHIFUJI Hideaki 1248d0b94afSMartin KaFai Lau struct uncached_list { 1258d0b94afSMartin KaFai Lau spinlock_t lock; 1268d0b94afSMartin KaFai Lau struct list_head head; 1278d0b94afSMartin KaFai Lau }; 1288d0b94afSMartin KaFai Lau 1298d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1308d0b94afSMartin KaFai Lau 1318d0b94afSMartin KaFai Lau static void rt6_uncached_list_add(struct rt6_info *rt) 1328d0b94afSMartin KaFai Lau { 1338d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 1358d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1368d0b94afSMartin KaFai Lau 1378d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1388d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1398d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1408d0b94afSMartin KaFai Lau } 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau static void rt6_uncached_list_del(struct rt6_info *rt) 1438d0b94afSMartin KaFai Lau { 1448d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1458d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 1468d0b94afSMartin KaFai Lau 1478d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1488d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 1498d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1508d0b94afSMartin KaFai Lau } 1518d0b94afSMartin KaFai Lau } 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1548d0b94afSMartin KaFai Lau { 1558d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1568d0b94afSMartin KaFai Lau int cpu; 1578d0b94afSMartin KaFai Lau 158e332bc67SEric W. Biederman if (dev == loopback_dev) 159e332bc67SEric W. Biederman return; 160e332bc67SEric W. Biederman 1618d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1628d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1638d0b94afSMartin KaFai Lau struct rt6_info *rt; 1648d0b94afSMartin KaFai Lau 1658d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1668d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1678d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1688d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1698d0b94afSMartin KaFai Lau 170e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1718d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1728d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1738d0b94afSMartin KaFai Lau } 1748d0b94afSMartin KaFai Lau 175e332bc67SEric W. Biederman if (rt_dev == dev) { 1768d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1778d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1788d0b94afSMartin KaFai Lau dev_put(rt_dev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1828d0b94afSMartin KaFai Lau } 1838d0b94afSMartin KaFai Lau } 1848d0b94afSMartin KaFai Lau 185d52d3997SMartin KaFai Lau static u32 *rt6_pcpu_cow_metrics(struct rt6_info *rt) 186d52d3997SMartin KaFai Lau { 187d52d3997SMartin KaFai Lau return dst_metrics_write_ptr(rt->dst.from); 188d52d3997SMartin KaFai Lau } 189d52d3997SMartin KaFai Lau 19006582540SDavid S. Miller static u32 *ipv6_cow_metrics(struct dst_entry *dst, unsigned long old) 19106582540SDavid S. Miller { 19206582540SDavid S. Miller struct rt6_info *rt = (struct rt6_info *)dst; 19306582540SDavid S. Miller 194d52d3997SMartin KaFai Lau if (rt->rt6i_flags & RTF_PCPU) 195d52d3997SMartin KaFai Lau return rt6_pcpu_cow_metrics(rt); 196d52d3997SMartin KaFai Lau else if (rt->rt6i_flags & RTF_CACHE) 1974b32b5adSMartin KaFai Lau return NULL; 1984b32b5adSMartin KaFai Lau else 1993b471175SMartin KaFai Lau return dst_cow_metrics_generic(dst, old); 20006582540SDavid S. Miller } 20106582540SDavid S. Miller 202f894cbf8SDavid S. Miller static inline const void *choose_neigh_daddr(struct rt6_info *rt, 203f894cbf8SDavid S. Miller struct sk_buff *skb, 204f894cbf8SDavid S. Miller const void *daddr) 20539232973SDavid S. Miller { 20639232973SDavid S. Miller struct in6_addr *p = &rt->rt6i_gateway; 20739232973SDavid S. Miller 208a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 20939232973SDavid S. Miller return (const void *) p; 210f894cbf8SDavid S. Miller else if (skb) 211f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 21239232973SDavid S. Miller return daddr; 21339232973SDavid S. Miller } 21439232973SDavid S. Miller 215f894cbf8SDavid S. Miller static struct neighbour *ip6_neigh_lookup(const struct dst_entry *dst, 216f894cbf8SDavid S. Miller struct sk_buff *skb, 217f894cbf8SDavid S. Miller const void *daddr) 218d3aaeb38SDavid S. Miller { 21939232973SDavid S. Miller struct rt6_info *rt = (struct rt6_info *) dst; 22039232973SDavid S. Miller struct neighbour *n; 22139232973SDavid S. Miller 222f894cbf8SDavid S. Miller daddr = choose_neigh_daddr(rt, skb, daddr); 2238e022ee6SYOSHIFUJI Hideaki / 吉藤英明 n = __ipv6_neigh_lookup(dst->dev, daddr); 224f83c7790SDavid S. Miller if (n) 225f83c7790SDavid S. Miller return n; 226f83c7790SDavid S. Miller return neigh_create(&nd_tbl, daddr, dst->dev); 227f83c7790SDavid S. Miller } 228f83c7790SDavid S. Miller 22963fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 23063fca65dSJulian Anastasov { 23163fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23263fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23363fca65dSJulian Anastasov 23463fca65dSJulian Anastasov daddr = choose_neigh_daddr(rt, NULL, daddr); 23563fca65dSJulian Anastasov if (!daddr) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23863fca65dSJulian Anastasov return; 23963fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 24063fca65dSJulian Anastasov return; 24163fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24263fca65dSJulian Anastasov } 24363fca65dSJulian Anastasov 2449a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2451da177e4SLinus Torvalds .family = AF_INET6, 2461da177e4SLinus Torvalds .gc = ip6_dst_gc, 2471da177e4SLinus Torvalds .gc_thresh = 1024, 2481da177e4SLinus Torvalds .check = ip6_dst_check, 2490dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 250ebb762f2SSteffen Klassert .mtu = ip6_mtu, 25106582540SDavid S. Miller .cow_metrics = ipv6_cow_metrics, 2521da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2531da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2541da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2551da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2561da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2576e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2589f8955ccSEric W. Biederman .local_out = __ip6_local_out, 259d3aaeb38SDavid S. Miller .neigh_lookup = ip6_neigh_lookup, 26063fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2611da177e4SLinus Torvalds }; 2621da177e4SLinus Torvalds 263ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 264ec831ea7SRoland Dreier { 265618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 266618f9bc7SSteffen Klassert 267618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 268ec831ea7SRoland Dreier } 269ec831ea7SRoland Dreier 2706700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2716700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27214e50e57SDavid S. Miller { 27314e50e57SDavid S. Miller } 27414e50e57SDavid S. Miller 2756700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2766700c270SDavid S. Miller struct sk_buff *skb) 277b587ee3bSDavid S. Miller { 278b587ee3bSDavid S. Miller } 279b587ee3bSDavid S. Miller 28014e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28114e50e57SDavid S. Miller .family = AF_INET6, 28214e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28314e50e57SDavid S. Miller .check = ip6_dst_check, 284ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 285214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28614e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 287b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2880a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 289d3aaeb38SDavid S. Miller .neigh_lookup = ip6_neigh_lookup, 29014e50e57SDavid S. Miller }; 29114e50e57SDavid S. Miller 29262fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29314edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29462fa8a84SDavid S. Miller }; 29562fa8a84SDavid S. Miller 296fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 2971da177e4SLinus Torvalds .dst = { 2981da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 2991da177e4SLinus Torvalds .__use = 1, 3002c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3011da177e4SLinus Torvalds .error = -ENETUNREACH, 3021da177e4SLinus Torvalds .input = ip6_pkt_discard, 3031da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3041da177e4SLinus Torvalds }, 3051da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3064f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 3071da177e4SLinus Torvalds .rt6i_metric = ~(u32) 0, 3081da177e4SLinus Torvalds .rt6i_ref = ATOMIC_INIT(1), 3091da177e4SLinus Torvalds }; 3101da177e4SLinus Torvalds 311101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 312101367c2SThomas Graf 313fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 314101367c2SThomas Graf .dst = { 315101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 316101367c2SThomas Graf .__use = 1, 3172c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 318101367c2SThomas Graf .error = -EACCES, 3199ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3209ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 321101367c2SThomas Graf }, 322101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3234f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 324101367c2SThomas Graf .rt6i_metric = ~(u32) 0, 325101367c2SThomas Graf .rt6i_ref = ATOMIC_INIT(1), 326101367c2SThomas Graf }; 327101367c2SThomas Graf 328fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 329101367c2SThomas Graf .dst = { 330101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 331101367c2SThomas Graf .__use = 1, 3322c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 333101367c2SThomas Graf .error = -EINVAL, 334352e512cSHerbert Xu .input = dst_discard, 335ede2059dSEric W. Biederman .output = dst_discard_out, 336101367c2SThomas Graf }, 337101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3384f724279SJean-Mickael Guerin .rt6i_protocol = RTPROT_KERNEL, 339101367c2SThomas Graf .rt6i_metric = ~(u32) 0, 340101367c2SThomas Graf .rt6i_ref = ATOMIC_INIT(1), 341101367c2SThomas Graf }; 342101367c2SThomas Graf 343101367c2SThomas Graf #endif 344101367c2SThomas Graf 345ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 346ebfa45f0SMartin KaFai Lau { 347ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 348ebfa45f0SMartin KaFai Lau 349ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 350ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_siblings); 351ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 352ebfa45f0SMartin KaFai Lau } 353ebfa45f0SMartin KaFai Lau 3541da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 355d52d3997SMartin KaFai Lau static struct rt6_info *__ip6_dst_alloc(struct net *net, 356957c665fSDavid S. Miller struct net_device *dev, 357ad706862SMartin KaFai Lau int flags) 3581da177e4SLinus Torvalds { 35997bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 360b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 361cf911662SDavid S. Miller 362ebfa45f0SMartin KaFai Lau if (rt) 363ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 3648104891bSSteffen Klassert 365cf911662SDavid S. Miller return rt; 3661da177e4SLinus Torvalds } 3671da177e4SLinus Torvalds 3689ab179d8SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, 369d52d3997SMartin KaFai Lau struct net_device *dev, 370ad706862SMartin KaFai Lau int flags) 371d52d3997SMartin KaFai Lau { 372ad706862SMartin KaFai Lau struct rt6_info *rt = __ip6_dst_alloc(net, dev, flags); 373d52d3997SMartin KaFai Lau 374d52d3997SMartin KaFai Lau if (rt) { 375d52d3997SMartin KaFai Lau rt->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, GFP_ATOMIC); 376d52d3997SMartin KaFai Lau if (rt->rt6i_pcpu) { 377d52d3997SMartin KaFai Lau int cpu; 378d52d3997SMartin KaFai Lau 379d52d3997SMartin KaFai Lau for_each_possible_cpu(cpu) { 380d52d3997SMartin KaFai Lau struct rt6_info **p; 381d52d3997SMartin KaFai Lau 382d52d3997SMartin KaFai Lau p = per_cpu_ptr(rt->rt6i_pcpu, cpu); 383d52d3997SMartin KaFai Lau /* no one shares rt */ 384d52d3997SMartin KaFai Lau *p = NULL; 385d52d3997SMartin KaFai Lau } 386d52d3997SMartin KaFai Lau } else { 387587fea74SWei Wang dst_release_immediate(&rt->dst); 388d52d3997SMartin KaFai Lau return NULL; 389d52d3997SMartin KaFai Lau } 390d52d3997SMartin KaFai Lau } 391d52d3997SMartin KaFai Lau 392d52d3997SMartin KaFai Lau return rt; 393d52d3997SMartin KaFai Lau } 3949ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 395d52d3997SMartin KaFai Lau 3961da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3971da177e4SLinus Torvalds { 3981da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 39935732d01SWei Wang struct rt6_exception_bucket *bucket; 400ecd98837SYOSHIFUJI Hideaki / 吉藤英明 struct dst_entry *from = dst->from; 4018d0b94afSMartin KaFai Lau struct inet6_dev *idev; 4021da177e4SLinus Torvalds 4038e2ec639SYan, Zheng dst_destroy_metrics_generic(dst); 404d52d3997SMartin KaFai Lau free_percpu(rt->rt6i_pcpu); 4058d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 4068d0b94afSMartin KaFai Lau 4078d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 40838308473SDavid S. Miller if (idev) { 4091da177e4SLinus Torvalds rt->rt6i_idev = NULL; 4101da177e4SLinus Torvalds in6_dev_put(idev); 4111da177e4SLinus Torvalds } 41235732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1); 41335732d01SWei Wang if (bucket) { 41435732d01SWei Wang rt->rt6i_exception_bucket = NULL; 41535732d01SWei Wang kfree(bucket); 41635732d01SWei Wang } 4171716a961SGao feng 418ecd98837SYOSHIFUJI Hideaki / 吉藤英明 dst->from = NULL; 419ecd98837SYOSHIFUJI Hideaki / 吉藤英明 dst_release(from); 420b3419363SDavid S. Miller } 421b3419363SDavid S. Miller 4221da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 4231da177e4SLinus Torvalds int how) 4241da177e4SLinus Torvalds { 4251da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 4261da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 4275a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 428c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 4291da177e4SLinus Torvalds 430e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 431e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 43238308473SDavid S. Miller if (loopback_idev) { 4331da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4341da177e4SLinus Torvalds in6_dev_put(idev); 4351da177e4SLinus Torvalds } 4361da177e4SLinus Torvalds } 43797cac082SDavid S. Miller } 4381da177e4SLinus Torvalds 4395973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4405973fb1eSMartin KaFai Lau { 4415973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4425973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4435973fb1eSMartin KaFai Lau else 4445973fb1eSMartin KaFai Lau return false; 4455973fb1eSMartin KaFai Lau } 4465973fb1eSMartin KaFai Lau 447a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4481da177e4SLinus Torvalds { 4491716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4501716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 451a50feda5SEric Dumazet return true; 4521716a961SGao feng } else if (rt->dst.from) { 4531e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 4541e2ea8adSXin Long rt6_check_expired((struct rt6_info *)rt->dst.from); 4551716a961SGao feng } 456a50feda5SEric Dumazet return false; 4571da177e4SLinus Torvalds } 4581da177e4SLinus Torvalds 45951ebd318SNicolas Dichtel static struct rt6_info *rt6_multipath_select(struct rt6_info *match, 46052bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 46152bd4c0cSNicolas Dichtel int strict) 46251ebd318SNicolas Dichtel { 46351ebd318SNicolas Dichtel struct rt6_info *sibling, *next_sibling; 46451ebd318SNicolas Dichtel int route_choosen; 46551ebd318SNicolas Dichtel 466b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 467b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 468b673d6ccSJakub Sitnicki */ 469b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 470b673d6ccSJakub Sitnicki fl6->mp_hash = rt6_multipath_hash(fl6, NULL); 471b673d6ccSJakub Sitnicki 472b673d6ccSJakub Sitnicki route_choosen = fl6->mp_hash % (match->rt6i_nsiblings + 1); 47351ebd318SNicolas Dichtel /* Don't change the route, if route_choosen == 0 47451ebd318SNicolas Dichtel * (siblings does not include ourself) 47551ebd318SNicolas Dichtel */ 47651ebd318SNicolas Dichtel if (route_choosen) 47751ebd318SNicolas Dichtel list_for_each_entry_safe(sibling, next_sibling, 47851ebd318SNicolas Dichtel &match->rt6i_siblings, rt6i_siblings) { 47951ebd318SNicolas Dichtel route_choosen--; 48051ebd318SNicolas Dichtel if (route_choosen == 0) { 48152bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 48252bd4c0cSNicolas Dichtel break; 48351ebd318SNicolas Dichtel match = sibling; 48451ebd318SNicolas Dichtel break; 48551ebd318SNicolas Dichtel } 48651ebd318SNicolas Dichtel } 48751ebd318SNicolas Dichtel return match; 48851ebd318SNicolas Dichtel } 48951ebd318SNicolas Dichtel 4901da177e4SLinus Torvalds /* 491*66f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4921da177e4SLinus Torvalds */ 4931da177e4SLinus Torvalds 4948ed67789SDaniel Lezcano static inline struct rt6_info *rt6_device_match(struct net *net, 4958ed67789SDaniel Lezcano struct rt6_info *rt, 496b71d1d42SEric Dumazet const struct in6_addr *saddr, 4971da177e4SLinus Torvalds int oif, 498d420895eSYOSHIFUJI Hideaki int flags) 4991da177e4SLinus Torvalds { 5001da177e4SLinus Torvalds struct rt6_info *local = NULL; 5011da177e4SLinus Torvalds struct rt6_info *sprt; 5021da177e4SLinus Torvalds 503dd3abc4eSYOSHIFUJI Hideaki if (!oif && ipv6_addr_any(saddr)) 504dd3abc4eSYOSHIFUJI Hideaki goto out; 505dd3abc4eSYOSHIFUJI Hideaki 506*66f5d6ceSWei Wang for (sprt = rt; sprt; sprt = rcu_dereference(sprt->dst.rt6_next)) { 507d1918542SDavid S. Miller struct net_device *dev = sprt->dst.dev; 508dd3abc4eSYOSHIFUJI Hideaki 509dd3abc4eSYOSHIFUJI Hideaki if (oif) { 5101da177e4SLinus Torvalds if (dev->ifindex == oif) 5111da177e4SLinus Torvalds return sprt; 5121da177e4SLinus Torvalds if (dev->flags & IFF_LOOPBACK) { 51338308473SDavid S. Miller if (!sprt->rt6i_idev || 5141da177e4SLinus Torvalds sprt->rt6i_idev->dev->ifindex != oif) { 51517fb0b2bSDavid Ahern if (flags & RT6_LOOKUP_F_IFACE) 5161da177e4SLinus Torvalds continue; 51717fb0b2bSDavid Ahern if (local && 51817fb0b2bSDavid Ahern local->rt6i_idev->dev->ifindex == oif) 5191da177e4SLinus Torvalds continue; 5201da177e4SLinus Torvalds } 5211da177e4SLinus Torvalds local = sprt; 5221da177e4SLinus Torvalds } 523dd3abc4eSYOSHIFUJI Hideaki } else { 524dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 525dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 526dd3abc4eSYOSHIFUJI Hideaki return sprt; 527dd3abc4eSYOSHIFUJI Hideaki } 5281da177e4SLinus Torvalds } 5291da177e4SLinus Torvalds 530dd3abc4eSYOSHIFUJI Hideaki if (oif) { 5311da177e4SLinus Torvalds if (local) 5321da177e4SLinus Torvalds return local; 5331da177e4SLinus Torvalds 534d420895eSYOSHIFUJI Hideaki if (flags & RT6_LOOKUP_F_IFACE) 5358ed67789SDaniel Lezcano return net->ipv6.ip6_null_entry; 5361da177e4SLinus Torvalds } 537dd3abc4eSYOSHIFUJI Hideaki out: 5381da177e4SLinus Torvalds return rt; 5391da177e4SLinus Torvalds } 5401da177e4SLinus Torvalds 54127097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 542c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 543c2f17e82SHannes Frederic Sowa struct work_struct work; 544c2f17e82SHannes Frederic Sowa struct in6_addr target; 545c2f17e82SHannes Frederic Sowa struct net_device *dev; 546c2f17e82SHannes Frederic Sowa }; 547c2f17e82SHannes Frederic Sowa 548c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 549c2f17e82SHannes Frederic Sowa { 550c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 551c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 552c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 553c2f17e82SHannes Frederic Sowa 554c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 555adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 556c2f17e82SHannes Frederic Sowa dev_put(work->dev); 557662f5533SMichael Büsch kfree(work); 558c2f17e82SHannes Frederic Sowa } 559c2f17e82SHannes Frederic Sowa 56027097255SYOSHIFUJI Hideaki static void rt6_probe(struct rt6_info *rt) 56127097255SYOSHIFUJI Hideaki { 562990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 563f2c31e32SEric Dumazet struct neighbour *neigh; 56427097255SYOSHIFUJI Hideaki /* 56527097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 56627097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 56727097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 56827097255SYOSHIFUJI Hideaki * 56927097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 57027097255SYOSHIFUJI Hideaki * to no more than one per minute. 57127097255SYOSHIFUJI Hideaki */ 5722152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (!rt || !(rt->rt6i_flags & RTF_GATEWAY)) 573fdd6681dSAmerigo Wang return; 5742152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5752152caeaSYOSHIFUJI Hideaki / 吉藤英明 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 5762152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5778d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5788d6c31bfSMartin KaFai Lau goto out; 5798d6c31bfSMartin KaFai Lau 580990edb42SMartin KaFai Lau work = NULL; 5812152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 582990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 583990edb42SMartin KaFai Lau time_after(jiffies, 584990edb42SMartin KaFai Lau neigh->updated + 585990edb42SMartin KaFai Lau rt->rt6i_idev->cnf.rtr_probe_interval)) { 586c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 587990edb42SMartin KaFai Lau if (work) 5887e980569SJiri Benc __neigh_set_probe_once(neigh); 589990edb42SMartin KaFai Lau } 590c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 591990edb42SMartin KaFai Lau } else { 592990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 593990edb42SMartin KaFai Lau } 594c2f17e82SHannes Frederic Sowa 595c2f17e82SHannes Frederic Sowa if (work) { 596c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 597c2f17e82SHannes Frederic Sowa work->target = rt->rt6i_gateway; 598c2f17e82SHannes Frederic Sowa dev_hold(rt->dst.dev); 599c2f17e82SHannes Frederic Sowa work->dev = rt->dst.dev; 600c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 601c2f17e82SHannes Frederic Sowa } 602990edb42SMartin KaFai Lau 6038d6c31bfSMartin KaFai Lau out: 6042152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 605f2c31e32SEric Dumazet } 60627097255SYOSHIFUJI Hideaki #else 60727097255SYOSHIFUJI Hideaki static inline void rt6_probe(struct rt6_info *rt) 60827097255SYOSHIFUJI Hideaki { 60927097255SYOSHIFUJI Hideaki } 61027097255SYOSHIFUJI Hideaki #endif 61127097255SYOSHIFUJI Hideaki 6121da177e4SLinus Torvalds /* 613554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 6141da177e4SLinus Torvalds */ 615b6f99a21SDave Jones static inline int rt6_check_dev(struct rt6_info *rt, int oif) 6161da177e4SLinus Torvalds { 617d1918542SDavid S. Miller struct net_device *dev = rt->dst.dev; 618161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 619554cfb7eSYOSHIFUJI Hideaki return 2; 620161980f4SDavid S. Miller if ((dev->flags & IFF_LOOPBACK) && 621161980f4SDavid S. Miller rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif) 622161980f4SDavid S. Miller return 1; 623554cfb7eSYOSHIFUJI Hideaki return 0; 6241da177e4SLinus Torvalds } 6251da177e4SLinus Torvalds 626afc154e9SHannes Frederic Sowa static inline enum rt6_nud_state rt6_check_neigh(struct rt6_info *rt) 6271da177e4SLinus Torvalds { 628f2c31e32SEric Dumazet struct neighbour *neigh; 629afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 630f2c31e32SEric Dumazet 6314d0c5911SYOSHIFUJI Hideaki if (rt->rt6i_flags & RTF_NONEXTHOP || 6324d0c5911SYOSHIFUJI Hideaki !(rt->rt6i_flags & RTF_GATEWAY)) 633afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 634145a3621SYOSHIFUJI Hideaki / 吉藤英明 635145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 636145a3621SYOSHIFUJI Hideaki / 吉藤英明 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 637145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 638145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 639554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 640afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 641398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 642a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 643afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6447e980569SJiri Benc else 6457e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 646398bcbebSYOSHIFUJI Hideaki #endif 647145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 648afc154e9SHannes Frederic Sowa } else { 649afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6507e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 651a5a81f0bSPaul Marks } 652145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 653145a3621SYOSHIFUJI Hideaki / 吉藤英明 654a5a81f0bSPaul Marks return ret; 6551da177e4SLinus Torvalds } 6561da177e4SLinus Torvalds 657554cfb7eSYOSHIFUJI Hideaki static int rt6_score_route(struct rt6_info *rt, int oif, 658554cfb7eSYOSHIFUJI Hideaki int strict) 659554cfb7eSYOSHIFUJI Hideaki { 660a5a81f0bSPaul Marks int m; 6614d0c5911SYOSHIFUJI Hideaki 6624d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 66377d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 664afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 665ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 666ebacaaa0SYOSHIFUJI Hideaki m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2; 667ebacaaa0SYOSHIFUJI Hideaki #endif 668afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 669afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 670afc154e9SHannes Frederic Sowa if (n < 0) 671afc154e9SHannes Frederic Sowa return n; 672afc154e9SHannes Frederic Sowa } 673554cfb7eSYOSHIFUJI Hideaki return m; 674554cfb7eSYOSHIFUJI Hideaki } 675554cfb7eSYOSHIFUJI Hideaki 676f11e6659SDavid S. Miller static struct rt6_info *find_match(struct rt6_info *rt, int oif, int strict, 677afc154e9SHannes Frederic Sowa int *mpri, struct rt6_info *match, 678afc154e9SHannes Frederic Sowa bool *do_rr) 679554cfb7eSYOSHIFUJI Hideaki { 680554cfb7eSYOSHIFUJI Hideaki int m; 681afc154e9SHannes Frederic Sowa bool match_do_rr = false; 68235103d11SAndy Gospodarek struct inet6_dev *idev = rt->rt6i_idev; 68335103d11SAndy Gospodarek struct net_device *dev = rt->dst.dev; 68435103d11SAndy Gospodarek 68535103d11SAndy Gospodarek if (dev && !netif_carrier_ok(dev) && 686d5d32e4bSDavid Ahern idev->cnf.ignore_routes_with_linkdown && 687d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 68835103d11SAndy Gospodarek goto out; 689554cfb7eSYOSHIFUJI Hideaki 690554cfb7eSYOSHIFUJI Hideaki if (rt6_check_expired(rt)) 691f11e6659SDavid S. Miller goto out; 692554cfb7eSYOSHIFUJI Hideaki 693554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6947e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 695afc154e9SHannes Frederic Sowa match_do_rr = true; 696afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6977e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 698f11e6659SDavid S. Miller goto out; 6991da177e4SLinus Torvalds } 700f11e6659SDavid S. Miller 701afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 702afc154e9SHannes Frederic Sowa rt6_probe(rt); 703afc154e9SHannes Frederic Sowa 7047e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 705afc154e9SHannes Frederic Sowa if (m > *mpri) { 706afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 707afc154e9SHannes Frederic Sowa *mpri = m; 708afc154e9SHannes Frederic Sowa match = rt; 709afc154e9SHannes Frederic Sowa } 710f11e6659SDavid S. Miller out: 711f11e6659SDavid S. Miller return match; 7121da177e4SLinus Torvalds } 7131da177e4SLinus Torvalds 714f11e6659SDavid S. Miller static struct rt6_info *find_rr_leaf(struct fib6_node *fn, 7158d1040e8SWei Wang struct rt6_info *leaf, 716f11e6659SDavid S. Miller struct rt6_info *rr_head, 717afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 718afc154e9SHannes Frederic Sowa bool *do_rr) 719f11e6659SDavid S. Miller { 7209fbdcfafSSteffen Klassert struct rt6_info *rt, *match, *cont; 721f11e6659SDavid S. Miller int mpri = -1; 722f11e6659SDavid S. Miller 723f11e6659SDavid S. Miller match = NULL; 7249fbdcfafSSteffen Klassert cont = NULL; 725*66f5d6ceSWei Wang for (rt = rr_head; rt; rt = rcu_dereference(rt->dst.rt6_next)) { 7269fbdcfafSSteffen Klassert if (rt->rt6i_metric != metric) { 7279fbdcfafSSteffen Klassert cont = rt; 7289fbdcfafSSteffen Klassert break; 7299fbdcfafSSteffen Klassert } 7309fbdcfafSSteffen Klassert 731afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7329fbdcfafSSteffen Klassert } 7339fbdcfafSSteffen Klassert 734*66f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 735*66f5d6ceSWei Wang rt = rcu_dereference(rt->dst.rt6_next)) { 7369fbdcfafSSteffen Klassert if (rt->rt6i_metric != metric) { 7379fbdcfafSSteffen Klassert cont = rt; 7389fbdcfafSSteffen Klassert break; 7399fbdcfafSSteffen Klassert } 7409fbdcfafSSteffen Klassert 7419fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7429fbdcfafSSteffen Klassert } 7439fbdcfafSSteffen Klassert 7449fbdcfafSSteffen Klassert if (match || !cont) 7459fbdcfafSSteffen Klassert return match; 7469fbdcfafSSteffen Klassert 747*66f5d6ceSWei Wang for (rt = cont; rt; rt = rcu_dereference(rt->dst.rt6_next)) 748afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 749f11e6659SDavid S. Miller 750f11e6659SDavid S. Miller return match; 751f11e6659SDavid S. Miller } 752f11e6659SDavid S. Miller 7538d1040e8SWei Wang static struct rt6_info *rt6_select(struct net *net, struct fib6_node *fn, 7548d1040e8SWei Wang int oif, int strict) 755f11e6659SDavid S. Miller { 756*66f5d6ceSWei Wang struct rt6_info *leaf = rcu_dereference(fn->leaf); 757f11e6659SDavid S. Miller struct rt6_info *match, *rt0; 758afc154e9SHannes Frederic Sowa bool do_rr = false; 75917ecf590SWei Wang int key_plen; 760f11e6659SDavid S. Miller 7618d1040e8SWei Wang if (!leaf) 7628d1040e8SWei Wang return net->ipv6.ip6_null_entry; 7638d1040e8SWei Wang 764*66f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 765f11e6659SDavid S. Miller if (!rt0) 766*66f5d6ceSWei Wang rt0 = leaf; 767f11e6659SDavid S. Miller 76817ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 76917ecf590SWei Wang * and fn->leaf does not points to its child's leaf 77017ecf590SWei Wang * (This might happen if all routes under fn are deleted from 77117ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 77217ecf590SWei Wang */ 77317ecf590SWei Wang key_plen = rt0->rt6i_dst.plen; 77417ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 77517ecf590SWei Wang if (rt0->rt6i_src.plen) 77617ecf590SWei Wang key_plen = rt0->rt6i_src.plen; 77717ecf590SWei Wang #endif 77817ecf590SWei Wang if (fn->fn_bit != key_plen) 77917ecf590SWei Wang return net->ipv6.ip6_null_entry; 78017ecf590SWei Wang 7818d1040e8SWei Wang match = find_rr_leaf(fn, leaf, rt0, rt0->rt6i_metric, oif, strict, 782afc154e9SHannes Frederic Sowa &do_rr); 783f11e6659SDavid S. Miller 784afc154e9SHannes Frederic Sowa if (do_rr) { 785*66f5d6ceSWei Wang struct rt6_info *next = rcu_dereference(rt0->dst.rt6_next); 786f11e6659SDavid S. Miller 787554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 788f11e6659SDavid S. Miller if (!next || next->rt6i_metric != rt0->rt6i_metric) 7898d1040e8SWei Wang next = leaf; 790f11e6659SDavid S. Miller 791*66f5d6ceSWei Wang if (next != rt0) { 792*66f5d6ceSWei Wang spin_lock_bh(&leaf->rt6i_table->tb6_lock); 793*66f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 794*66f5d6ceSWei Wang if (next->rt6i_node) 795*66f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 796*66f5d6ceSWei Wang spin_unlock_bh(&leaf->rt6i_table->tb6_lock); 797*66f5d6ceSWei Wang } 798554cfb7eSYOSHIFUJI Hideaki } 799554cfb7eSYOSHIFUJI Hideaki 800a02cec21SEric Dumazet return match ? match : net->ipv6.ip6_null_entry; 8011da177e4SLinus Torvalds } 8021da177e4SLinus Torvalds 8038b9df265SMartin KaFai Lau static bool rt6_is_gw_or_nonexthop(const struct rt6_info *rt) 8048b9df265SMartin KaFai Lau { 8058b9df265SMartin KaFai Lau return (rt->rt6i_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 8068b9df265SMartin KaFai Lau } 8078b9df265SMartin KaFai Lau 80870ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 80970ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 810b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 81170ceb4f5SYOSHIFUJI Hideaki { 812c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 81370ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 81470ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 81570ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 8164bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 81770ceb4f5SYOSHIFUJI Hideaki struct rt6_info *rt; 81870ceb4f5SYOSHIFUJI Hideaki 81970ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 82070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82170ceb4f5SYOSHIFUJI Hideaki } 82270ceb4f5SYOSHIFUJI Hideaki 82370ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 82470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 82570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 82770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82870ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 82970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 83070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83170ceb4f5SYOSHIFUJI Hideaki } 83270ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 83370ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 83470ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83570ceb4f5SYOSHIFUJI Hideaki } 83670ceb4f5SYOSHIFUJI Hideaki } 83770ceb4f5SYOSHIFUJI Hideaki 83870ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 83970ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8403933fc95SJens Rosenboom return -EINVAL; 84170ceb4f5SYOSHIFUJI Hideaki 8424bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 84370ceb4f5SYOSHIFUJI Hideaki 84470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 84570ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 84670ceb4f5SYOSHIFUJI Hideaki else { 84770ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 84870ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 84970ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 85070ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 85170ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 85270ceb4f5SYOSHIFUJI Hideaki } 85370ceb4f5SYOSHIFUJI Hideaki 854f104a567SDuan Jiong if (rinfo->prefix_len == 0) 855f104a567SDuan Jiong rt = rt6_get_dflt_router(gwaddr, dev); 856f104a567SDuan Jiong else 857f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 858830218c1SDavid Ahern gwaddr, dev); 85970ceb4f5SYOSHIFUJI Hideaki 86070ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 861e0a1ad73SThomas Graf ip6_del_rt(rt); 86270ceb4f5SYOSHIFUJI Hideaki rt = NULL; 86370ceb4f5SYOSHIFUJI Hideaki } 86470ceb4f5SYOSHIFUJI Hideaki 86570ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 866830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 867830218c1SDavid Ahern dev, pref); 86870ceb4f5SYOSHIFUJI Hideaki else if (rt) 86970ceb4f5SYOSHIFUJI Hideaki rt->rt6i_flags = RTF_ROUTEINFO | 87070ceb4f5SYOSHIFUJI Hideaki (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 87170ceb4f5SYOSHIFUJI Hideaki 87270ceb4f5SYOSHIFUJI Hideaki if (rt) { 8731716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 8741716a961SGao feng rt6_clean_expires(rt); 8751716a961SGao feng else 8761716a961SGao feng rt6_set_expires(rt, jiffies + HZ * lifetime); 8771716a961SGao feng 87894e187c0SAmerigo Wang ip6_rt_put(rt); 87970ceb4f5SYOSHIFUJI Hideaki } 88070ceb4f5SYOSHIFUJI Hideaki return 0; 88170ceb4f5SYOSHIFUJI Hideaki } 88270ceb4f5SYOSHIFUJI Hideaki #endif 88370ceb4f5SYOSHIFUJI Hideaki 884a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 885a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 886a3c00e46SMartin KaFai Lau { 887*66f5d6ceSWei Wang struct fib6_node *pn, *sn; 888a3c00e46SMartin KaFai Lau while (1) { 889a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 890a3c00e46SMartin KaFai Lau return NULL; 891*66f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 892*66f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 893*66f5d6ceSWei Wang if (sn && sn != fn) 894*66f5d6ceSWei Wang fn = fib6_lookup(sn, NULL, saddr); 895a3c00e46SMartin KaFai Lau else 896a3c00e46SMartin KaFai Lau fn = pn; 897a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 898a3c00e46SMartin KaFai Lau return fn; 899a3c00e46SMartin KaFai Lau } 900a3c00e46SMartin KaFai Lau } 901c71099acSThomas Graf 902d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 903d3843fe5SWei Wang bool null_fallback) 904d3843fe5SWei Wang { 905d3843fe5SWei Wang struct rt6_info *rt = *prt; 906d3843fe5SWei Wang 907d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 908d3843fe5SWei Wang return true; 909d3843fe5SWei Wang if (null_fallback) { 910d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 911d3843fe5SWei Wang dst_hold(&rt->dst); 912d3843fe5SWei Wang } else { 913d3843fe5SWei Wang rt = NULL; 914d3843fe5SWei Wang } 915d3843fe5SWei Wang *prt = rt; 916d3843fe5SWei Wang return false; 917d3843fe5SWei Wang } 918d3843fe5SWei Wang 9198ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 9208ed67789SDaniel Lezcano struct fib6_table *table, 9214c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 9221da177e4SLinus Torvalds { 9232b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 9241da177e4SLinus Torvalds struct fib6_node *fn; 9251da177e4SLinus Torvalds 926*66f5d6ceSWei Wang rcu_read_lock(); 9274c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 928c71099acSThomas Graf restart: 929*66f5d6ceSWei Wang rt = rcu_dereference(fn->leaf); 930*66f5d6ceSWei Wang if (!rt) { 931*66f5d6ceSWei Wang rt = net->ipv6.ip6_null_entry; 932*66f5d6ceSWei Wang } else { 933*66f5d6ceSWei Wang rt = rt6_device_match(net, rt, &fl6->saddr, 934*66f5d6ceSWei Wang fl6->flowi6_oif, flags); 93551ebd318SNicolas Dichtel if (rt->rt6i_nsiblings && fl6->flowi6_oif == 0) 936*66f5d6ceSWei Wang rt = rt6_multipath_select(rt, fl6, 937*66f5d6ceSWei Wang fl6->flowi6_oif, flags); 938*66f5d6ceSWei Wang } 939a3c00e46SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 940a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 941a3c00e46SMartin KaFai Lau if (fn) 942a3c00e46SMartin KaFai Lau goto restart; 943a3c00e46SMartin KaFai Lau } 9442b760fcfSWei Wang /* Search through exception table */ 9452b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr); 9462b760fcfSWei Wang if (rt_cache) 9472b760fcfSWei Wang rt = rt_cache; 9482b760fcfSWei Wang 949d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 950d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 951d3843fe5SWei Wang 952*66f5d6ceSWei Wang rcu_read_unlock(); 953b811580dSDavid Ahern 954b811580dSDavid Ahern trace_fib6_table_lookup(net, rt, table->tb6_id, fl6); 955b811580dSDavid Ahern 9561da177e4SLinus Torvalds return rt; 957c71099acSThomas Graf 958c71099acSThomas Graf } 959c71099acSThomas Graf 960ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 961ea6e574eSFlorian Westphal int flags) 962ea6e574eSFlorian Westphal { 963ea6e574eSFlorian Westphal return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_lookup); 964ea6e574eSFlorian Westphal } 965ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 966ea6e574eSFlorian Westphal 9679acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 9689acd9f3aSYOSHIFUJI Hideaki const struct in6_addr *saddr, int oif, int strict) 969c71099acSThomas Graf { 9704c9483b2SDavid S. Miller struct flowi6 fl6 = { 9714c9483b2SDavid S. Miller .flowi6_oif = oif, 9724c9483b2SDavid S. Miller .daddr = *daddr, 973c71099acSThomas Graf }; 974c71099acSThomas Graf struct dst_entry *dst; 97577d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 976c71099acSThomas Graf 977adaa70bbSThomas Graf if (saddr) { 9784c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 979adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 980adaa70bbSThomas Graf } 981adaa70bbSThomas Graf 9824c9483b2SDavid S. Miller dst = fib6_rule_lookup(net, &fl6, flags, ip6_pol_route_lookup); 983c71099acSThomas Graf if (dst->error == 0) 984c71099acSThomas Graf return (struct rt6_info *) dst; 985c71099acSThomas Graf 986c71099acSThomas Graf dst_release(dst); 987c71099acSThomas Graf 9881da177e4SLinus Torvalds return NULL; 9891da177e4SLinus Torvalds } 9907159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 9917159039aSYOSHIFUJI Hideaki 992c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 9931cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 9941cfb71eeSWei Wang * route is released. 9951cfb71eeSWei Wang * Caller must hold dst before calling it. 9961da177e4SLinus Torvalds */ 9971da177e4SLinus Torvalds 998e5fd387aSMichal Kubeček static int __ip6_ins_rt(struct rt6_info *rt, struct nl_info *info, 999333c4301SDavid Ahern struct mx6_config *mxc, 1000333c4301SDavid Ahern struct netlink_ext_ack *extack) 10011da177e4SLinus Torvalds { 10021da177e4SLinus Torvalds int err; 1003c71099acSThomas Graf struct fib6_table *table; 10041da177e4SLinus Torvalds 1005c71099acSThomas Graf table = rt->rt6i_table; 1006*66f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1007333c4301SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, mxc, extack); 1008*66f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 10091da177e4SLinus Torvalds 10101da177e4SLinus Torvalds return err; 10111da177e4SLinus Torvalds } 10121da177e4SLinus Torvalds 101340e22e8fSThomas Graf int ip6_ins_rt(struct rt6_info *rt) 101440e22e8fSThomas Graf { 1015e715b6d3SFlorian Westphal struct nl_info info = { .nl_net = dev_net(rt->dst.dev), }; 1016e715b6d3SFlorian Westphal struct mx6_config mxc = { .mx = NULL, }; 1017e715b6d3SFlorian Westphal 10181cfb71eeSWei Wang /* Hold dst to account for the reference from the fib6 tree */ 10191cfb71eeSWei Wang dst_hold(&rt->dst); 1020333c4301SDavid Ahern return __ip6_ins_rt(rt, &info, &mxc, NULL); 102140e22e8fSThomas Graf } 102240e22e8fSThomas Graf 10234832c30dSDavid Ahern /* called with rcu_lock held */ 10244832c30dSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct rt6_info *rt) 10254832c30dSDavid Ahern { 10264832c30dSDavid Ahern struct net_device *dev = rt->dst.dev; 10274832c30dSDavid Ahern 10284832c30dSDavid Ahern if (rt->rt6i_flags & RTF_LOCAL) { 10294832c30dSDavid Ahern /* for copies of local routes, dst->dev needs to be the 10304832c30dSDavid Ahern * device if it is a master device, the master device if 10314832c30dSDavid Ahern * device is enslaved, and the loopback as the default 10324832c30dSDavid Ahern */ 10334832c30dSDavid Ahern if (netif_is_l3_slave(dev) && 10344832c30dSDavid Ahern !rt6_need_strict(&rt->rt6i_dst.addr)) 10354832c30dSDavid Ahern dev = l3mdev_master_dev_rcu(dev); 10364832c30dSDavid Ahern else if (!netif_is_l3_master(dev)) 10374832c30dSDavid Ahern dev = dev_net(dev)->loopback_dev; 10384832c30dSDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 10394832c30dSDavid Ahern * case we want dev returned to be dev 10404832c30dSDavid Ahern */ 10414832c30dSDavid Ahern } 10424832c30dSDavid Ahern 10434832c30dSDavid Ahern return dev; 10444832c30dSDavid Ahern } 10454832c30dSDavid Ahern 10468b9df265SMartin KaFai Lau static struct rt6_info *ip6_rt_cache_alloc(struct rt6_info *ort, 104721efcfa0SEric Dumazet const struct in6_addr *daddr, 1048b71d1d42SEric Dumazet const struct in6_addr *saddr) 10491da177e4SLinus Torvalds { 10504832c30dSDavid Ahern struct net_device *dev; 10511da177e4SLinus Torvalds struct rt6_info *rt; 10521da177e4SLinus Torvalds 10531da177e4SLinus Torvalds /* 10541da177e4SLinus Torvalds * Clone the route. 10551da177e4SLinus Torvalds */ 10561da177e4SLinus Torvalds 1057d52d3997SMartin KaFai Lau if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)) 105883a09abdSMartin KaFai Lau ort = (struct rt6_info *)ort->dst.from; 10591da177e4SLinus Torvalds 10604832c30dSDavid Ahern rcu_read_lock(); 10614832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 10624832c30dSDavid Ahern rt = __ip6_dst_alloc(dev_net(dev), dev, 0); 10634832c30dSDavid Ahern rcu_read_unlock(); 106483a09abdSMartin KaFai Lau if (!rt) 106583a09abdSMartin KaFai Lau return NULL; 106683a09abdSMartin KaFai Lau 106783a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 10688b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 106983a09abdSMartin KaFai Lau rt->rt6i_metric = 0; 107083a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 107183a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 107283a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 10738b9df265SMartin KaFai Lau 10748b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 1075bb3c3686SDavid S. Miller if (ort->rt6i_dst.plen != 128 && 107621efcfa0SEric Dumazet ipv6_addr_equal(&ort->rt6i_dst.addr, daddr)) 107758c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 10781da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 10791da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 10804e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 10811da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 10821da177e4SLinus Torvalds } 10831da177e4SLinus Torvalds #endif 108495a9a5baSYOSHIFUJI Hideaki } 108595a9a5baSYOSHIFUJI Hideaki 1086299d9939SYOSHIFUJI Hideaki return rt; 1087299d9939SYOSHIFUJI Hideaki } 1088299d9939SYOSHIFUJI Hideaki 1089d52d3997SMartin KaFai Lau static struct rt6_info *ip6_rt_pcpu_alloc(struct rt6_info *rt) 1090d52d3997SMartin KaFai Lau { 10914832c30dSDavid Ahern struct net_device *dev; 1092d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1093d52d3997SMartin KaFai Lau 10944832c30dSDavid Ahern rcu_read_lock(); 10954832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 10964832c30dSDavid Ahern pcpu_rt = __ip6_dst_alloc(dev_net(dev), dev, rt->dst.flags); 10974832c30dSDavid Ahern rcu_read_unlock(); 1098d52d3997SMartin KaFai Lau if (!pcpu_rt) 1099d52d3997SMartin KaFai Lau return NULL; 1100d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1101d52d3997SMartin KaFai Lau pcpu_rt->rt6i_protocol = rt->rt6i_protocol; 1102d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1103d52d3997SMartin KaFai Lau return pcpu_rt; 1104d52d3997SMartin KaFai Lau } 1105d52d3997SMartin KaFai Lau 1106*66f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 1107d52d3997SMartin KaFai Lau static struct rt6_info *rt6_get_pcpu_route(struct rt6_info *rt) 1108d52d3997SMartin KaFai Lau { 1109a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1110d52d3997SMartin KaFai Lau 1111d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1112d52d3997SMartin KaFai Lau pcpu_rt = *p; 1113d52d3997SMartin KaFai Lau 1114d3843fe5SWei Wang if (pcpu_rt && ip6_hold_safe(NULL, &pcpu_rt, false)) 1115a73e4195SMartin KaFai Lau rt6_dst_from_metrics_check(pcpu_rt); 1116d3843fe5SWei Wang 1117a73e4195SMartin KaFai Lau return pcpu_rt; 1118a73e4195SMartin KaFai Lau } 1119a73e4195SMartin KaFai Lau 1120a73e4195SMartin KaFai Lau static struct rt6_info *rt6_make_pcpu_route(struct rt6_info *rt) 1121a73e4195SMartin KaFai Lau { 1122a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1123d52d3997SMartin KaFai Lau 1124d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1125d52d3997SMartin KaFai Lau if (!pcpu_rt) { 1126d52d3997SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 1127d52d3997SMartin KaFai Lau 11289c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 11299c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1130d52d3997SMartin KaFai Lau } 1131d52d3997SMartin KaFai Lau 1132a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1133a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1134d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1135d52d3997SMartin KaFai Lau if (prev) { 1136d52d3997SMartin KaFai Lau /* If someone did it before us, return prev instead */ 1137a94b9367SWei Wang /* release refcnt taken by ip6_rt_pcpu_alloc() */ 1138587fea74SWei Wang dst_release_immediate(&pcpu_rt->dst); 1139a94b9367SWei Wang /* release refcnt taken by above dst_hold() */ 1140a94b9367SWei Wang dst_release_immediate(&pcpu_rt->dst); 1141a94b9367SWei Wang dst_hold(&prev->dst); 1142d52d3997SMartin KaFai Lau pcpu_rt = prev; 1143d52d3997SMartin KaFai Lau } 1144a94b9367SWei Wang 1145d52d3997SMartin KaFai Lau rt6_dst_from_metrics_check(pcpu_rt); 1146d52d3997SMartin KaFai Lau return pcpu_rt; 1147d52d3997SMartin KaFai Lau } 1148d52d3997SMartin KaFai Lau 114935732d01SWei Wang /* exception hash table implementation 115035732d01SWei Wang */ 115135732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 115235732d01SWei Wang 115335732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 115435732d01SWei Wang * Caller must hold rt6_exception_lock 115535732d01SWei Wang */ 115635732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 115735732d01SWei Wang struct rt6_exception *rt6_ex) 115835732d01SWei Wang { 115935732d01SWei Wang if (!bucket || !rt6_ex) 116035732d01SWei Wang return; 116135732d01SWei Wang rt6_ex->rt6i->rt6i_node = NULL; 116235732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 116335732d01SWei Wang rt6_release(rt6_ex->rt6i); 116435732d01SWei Wang kfree_rcu(rt6_ex, rcu); 116535732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 116635732d01SWei Wang bucket->depth--; 116735732d01SWei Wang } 116835732d01SWei Wang 116935732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 117035732d01SWei Wang * Caller must hold rt6_exception_lock 117135732d01SWei Wang */ 117235732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 117335732d01SWei Wang { 117435732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 117535732d01SWei Wang 117635732d01SWei Wang if (!bucket) 117735732d01SWei Wang return; 117835732d01SWei Wang 117935732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 118035732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 118135732d01SWei Wang oldest = rt6_ex; 118235732d01SWei Wang } 118335732d01SWei Wang rt6_remove_exception(bucket, oldest); 118435732d01SWei Wang } 118535732d01SWei Wang 118635732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 118735732d01SWei Wang const struct in6_addr *src) 118835732d01SWei Wang { 118935732d01SWei Wang static u32 seed __read_mostly; 119035732d01SWei Wang u32 val; 119135732d01SWei Wang 119235732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 119335732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 119435732d01SWei Wang 119535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 119635732d01SWei Wang if (src) 119735732d01SWei Wang val = jhash(src, sizeof(*src), val); 119835732d01SWei Wang #endif 119935732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 120035732d01SWei Wang } 120135732d01SWei Wang 120235732d01SWei Wang /* Helper function to find the cached rt in the hash table 120335732d01SWei Wang * and update bucket pointer to point to the bucket for this 120435732d01SWei Wang * (daddr, saddr) pair 120535732d01SWei Wang * Caller must hold rt6_exception_lock 120635732d01SWei Wang */ 120735732d01SWei Wang static struct rt6_exception * 120835732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 120935732d01SWei Wang const struct in6_addr *daddr, 121035732d01SWei Wang const struct in6_addr *saddr) 121135732d01SWei Wang { 121235732d01SWei Wang struct rt6_exception *rt6_ex; 121335732d01SWei Wang u32 hval; 121435732d01SWei Wang 121535732d01SWei Wang if (!(*bucket) || !daddr) 121635732d01SWei Wang return NULL; 121735732d01SWei Wang 121835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 121935732d01SWei Wang *bucket += hval; 122035732d01SWei Wang 122135732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 122235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 122335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 122435732d01SWei Wang 122535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 122635732d01SWei Wang if (matched && saddr) 122735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 122835732d01SWei Wang #endif 122935732d01SWei Wang if (matched) 123035732d01SWei Wang return rt6_ex; 123135732d01SWei Wang } 123235732d01SWei Wang return NULL; 123335732d01SWei Wang } 123435732d01SWei Wang 123535732d01SWei Wang /* Helper function to find the cached rt in the hash table 123635732d01SWei Wang * and update bucket pointer to point to the bucket for this 123735732d01SWei Wang * (daddr, saddr) pair 123835732d01SWei Wang * Caller must hold rcu_read_lock() 123935732d01SWei Wang */ 124035732d01SWei Wang static struct rt6_exception * 124135732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 124235732d01SWei Wang const struct in6_addr *daddr, 124335732d01SWei Wang const struct in6_addr *saddr) 124435732d01SWei Wang { 124535732d01SWei Wang struct rt6_exception *rt6_ex; 124635732d01SWei Wang u32 hval; 124735732d01SWei Wang 124835732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 124935732d01SWei Wang 125035732d01SWei Wang if (!(*bucket) || !daddr) 125135732d01SWei Wang return NULL; 125235732d01SWei Wang 125335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 125435732d01SWei Wang *bucket += hval; 125535732d01SWei Wang 125635732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 125735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 125835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 125935732d01SWei Wang 126035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 126135732d01SWei Wang if (matched && saddr) 126235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 126335732d01SWei Wang #endif 126435732d01SWei Wang if (matched) 126535732d01SWei Wang return rt6_ex; 126635732d01SWei Wang } 126735732d01SWei Wang return NULL; 126835732d01SWei Wang } 126935732d01SWei Wang 127035732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 127135732d01SWei Wang struct rt6_info *ort) 127235732d01SWei Wang { 127335732d01SWei Wang struct rt6_exception_bucket *bucket; 127435732d01SWei Wang struct in6_addr *src_key = NULL; 127535732d01SWei Wang struct rt6_exception *rt6_ex; 127635732d01SWei Wang int err = 0; 127735732d01SWei Wang 127835732d01SWei Wang /* ort can't be a cache or pcpu route */ 127935732d01SWei Wang if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)) 128035732d01SWei Wang ort = (struct rt6_info *)ort->dst.from; 128135732d01SWei Wang WARN_ON_ONCE(ort->rt6i_flags & (RTF_CACHE | RTF_PCPU)); 128235732d01SWei Wang 128335732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 128435732d01SWei Wang 128535732d01SWei Wang if (ort->exception_bucket_flushed) { 128635732d01SWei Wang err = -EINVAL; 128735732d01SWei Wang goto out; 128835732d01SWei Wang } 128935732d01SWei Wang 129035732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 129135732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 129235732d01SWei Wang if (!bucket) { 129335732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 129435732d01SWei Wang GFP_ATOMIC); 129535732d01SWei Wang if (!bucket) { 129635732d01SWei Wang err = -ENOMEM; 129735732d01SWei Wang goto out; 129835732d01SWei Wang } 129935732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 130035732d01SWei Wang } 130135732d01SWei Wang 130235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 130335732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 130435732d01SWei Wang * and exception table is indexed by a hash of 130535732d01SWei Wang * both rt6i_dst and rt6i_src. 130635732d01SWei Wang * Otherwise, the exception table is indexed by 130735732d01SWei Wang * a hash of only rt6i_dst. 130835732d01SWei Wang */ 130935732d01SWei Wang if (ort->rt6i_src.plen) 131035732d01SWei Wang src_key = &nrt->rt6i_src.addr; 131135732d01SWei Wang #endif 131260006a48SWei Wang 131360006a48SWei Wang /* Update rt6i_prefsrc as it could be changed 131460006a48SWei Wang * in rt6_remove_prefsrc() 131560006a48SWei Wang */ 131660006a48SWei Wang nrt->rt6i_prefsrc = ort->rt6i_prefsrc; 1317f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1318f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1319f5bbe7eeSWei Wang * is less than ort's mtu value. 1320f5bbe7eeSWei Wang */ 1321f5bbe7eeSWei Wang if (nrt->rt6i_pmtu >= dst_mtu(&ort->dst)) { 1322f5bbe7eeSWei Wang err = -EINVAL; 1323f5bbe7eeSWei Wang goto out; 1324f5bbe7eeSWei Wang } 132560006a48SWei Wang 132635732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 132735732d01SWei Wang src_key); 132835732d01SWei Wang if (rt6_ex) 132935732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 133035732d01SWei Wang 133135732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 133235732d01SWei Wang if (!rt6_ex) { 133335732d01SWei Wang err = -ENOMEM; 133435732d01SWei Wang goto out; 133535732d01SWei Wang } 133635732d01SWei Wang rt6_ex->rt6i = nrt; 133735732d01SWei Wang rt6_ex->stamp = jiffies; 133835732d01SWei Wang atomic_inc(&nrt->rt6i_ref); 133935732d01SWei Wang nrt->rt6i_node = ort->rt6i_node; 134035732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 134135732d01SWei Wang bucket->depth++; 134235732d01SWei Wang 134335732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 134435732d01SWei Wang rt6_exception_remove_oldest(bucket); 134535732d01SWei Wang 134635732d01SWei Wang out: 134735732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 134835732d01SWei Wang 134935732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 135035732d01SWei Wang if (!err) 135135732d01SWei Wang fib6_update_sernum(ort); 135235732d01SWei Wang 135335732d01SWei Wang return err; 135435732d01SWei Wang } 135535732d01SWei Wang 135635732d01SWei Wang void rt6_flush_exceptions(struct rt6_info *rt) 135735732d01SWei Wang { 135835732d01SWei Wang struct rt6_exception_bucket *bucket; 135935732d01SWei Wang struct rt6_exception *rt6_ex; 136035732d01SWei Wang struct hlist_node *tmp; 136135732d01SWei Wang int i; 136235732d01SWei Wang 136335732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 136435732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 136535732d01SWei Wang rt->exception_bucket_flushed = 1; 136635732d01SWei Wang 136735732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 136835732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 136935732d01SWei Wang if (!bucket) 137035732d01SWei Wang goto out; 137135732d01SWei Wang 137235732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 137335732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 137435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 137535732d01SWei Wang WARN_ON_ONCE(bucket->depth); 137635732d01SWei Wang bucket++; 137735732d01SWei Wang } 137835732d01SWei Wang 137935732d01SWei Wang out: 138035732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 138135732d01SWei Wang } 138235732d01SWei Wang 138335732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 138435732d01SWei Wang * Caller has to hold rcu_read_lock() 138535732d01SWei Wang */ 138635732d01SWei Wang static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt, 138735732d01SWei Wang struct in6_addr *daddr, 138835732d01SWei Wang struct in6_addr *saddr) 138935732d01SWei Wang { 139035732d01SWei Wang struct rt6_exception_bucket *bucket; 139135732d01SWei Wang struct in6_addr *src_key = NULL; 139235732d01SWei Wang struct rt6_exception *rt6_ex; 139335732d01SWei Wang struct rt6_info *res = NULL; 139435732d01SWei Wang 139535732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 139635732d01SWei Wang 139735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 139835732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 139935732d01SWei Wang * and exception table is indexed by a hash of 140035732d01SWei Wang * both rt6i_dst and rt6i_src. 140135732d01SWei Wang * Otherwise, the exception table is indexed by 140235732d01SWei Wang * a hash of only rt6i_dst. 140335732d01SWei Wang */ 140435732d01SWei Wang if (rt->rt6i_src.plen) 140535732d01SWei Wang src_key = saddr; 140635732d01SWei Wang #endif 140735732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 140835732d01SWei Wang 140935732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 141035732d01SWei Wang res = rt6_ex->rt6i; 141135732d01SWei Wang 141235732d01SWei Wang return res; 141335732d01SWei Wang } 141435732d01SWei Wang 141535732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 141635732d01SWei Wang int rt6_remove_exception_rt(struct rt6_info *rt) 141735732d01SWei Wang { 141835732d01SWei Wang struct rt6_info *from = (struct rt6_info *)rt->dst.from; 141935732d01SWei Wang struct rt6_exception_bucket *bucket; 142035732d01SWei Wang struct in6_addr *src_key = NULL; 142135732d01SWei Wang struct rt6_exception *rt6_ex; 142235732d01SWei Wang int err; 142335732d01SWei Wang 142435732d01SWei Wang if (!from || 142535732d01SWei Wang !(rt->rt6i_flags | RTF_CACHE)) 142635732d01SWei Wang return -EINVAL; 142735732d01SWei Wang 142835732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 142935732d01SWei Wang return -ENOENT; 143035732d01SWei Wang 143135732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 143235732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 143335732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 143535732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 143635732d01SWei Wang * and exception table is indexed by a hash of 143735732d01SWei Wang * both rt6i_dst and rt6i_src. 143835732d01SWei Wang * Otherwise, the exception table is indexed by 143935732d01SWei Wang * a hash of only rt6i_dst. 144035732d01SWei Wang */ 144135732d01SWei Wang if (from->rt6i_src.plen) 144235732d01SWei Wang src_key = &rt->rt6i_src.addr; 144335732d01SWei Wang #endif 144435732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 144535732d01SWei Wang &rt->rt6i_dst.addr, 144635732d01SWei Wang src_key); 144735732d01SWei Wang if (rt6_ex) { 144835732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 144935732d01SWei Wang err = 0; 145035732d01SWei Wang } else { 145135732d01SWei Wang err = -ENOENT; 145235732d01SWei Wang } 145335732d01SWei Wang 145435732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 145535732d01SWei Wang return err; 145635732d01SWei Wang } 145735732d01SWei Wang 145835732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 145935732d01SWei Wang * refresh its stamp 146035732d01SWei Wang */ 146135732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 146235732d01SWei Wang { 146335732d01SWei Wang struct rt6_info *from = (struct rt6_info *)rt->dst.from; 146435732d01SWei Wang struct rt6_exception_bucket *bucket; 146535732d01SWei Wang struct in6_addr *src_key = NULL; 146635732d01SWei Wang struct rt6_exception *rt6_ex; 146735732d01SWei Wang 146835732d01SWei Wang if (!from || 146935732d01SWei Wang !(rt->rt6i_flags | RTF_CACHE)) 147035732d01SWei Wang return; 147135732d01SWei Wang 147235732d01SWei Wang rcu_read_lock(); 147335732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 147435732d01SWei Wang 147535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 147635732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 147735732d01SWei Wang * and exception table is indexed by a hash of 147835732d01SWei Wang * both rt6i_dst and rt6i_src. 147935732d01SWei Wang * Otherwise, the exception table is indexed by 148035732d01SWei Wang * a hash of only rt6i_dst. 148135732d01SWei Wang */ 148235732d01SWei Wang if (from->rt6i_src.plen) 148335732d01SWei Wang src_key = &rt->rt6i_src.addr; 148435732d01SWei Wang #endif 148535732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 148635732d01SWei Wang &rt->rt6i_dst.addr, 148735732d01SWei Wang src_key); 148835732d01SWei Wang if (rt6_ex) 148935732d01SWei Wang rt6_ex->stamp = jiffies; 149035732d01SWei Wang 149135732d01SWei Wang rcu_read_unlock(); 149235732d01SWei Wang } 149335732d01SWei Wang 149460006a48SWei Wang static void rt6_exceptions_remove_prefsrc(struct rt6_info *rt) 149560006a48SWei Wang { 149660006a48SWei Wang struct rt6_exception_bucket *bucket; 149760006a48SWei Wang struct rt6_exception *rt6_ex; 149860006a48SWei Wang int i; 149960006a48SWei Wang 150060006a48SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 150160006a48SWei Wang lockdep_is_held(&rt6_exception_lock)); 150260006a48SWei Wang 150360006a48SWei Wang if (bucket) { 150460006a48SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 150560006a48SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 150660006a48SWei Wang rt6_ex->rt6i->rt6i_prefsrc.plen = 0; 150760006a48SWei Wang } 150860006a48SWei Wang bucket++; 150960006a48SWei Wang } 151060006a48SWei Wang } 151160006a48SWei Wang } 151260006a48SWei Wang 1513f5bbe7eeSWei Wang static void rt6_exceptions_update_pmtu(struct rt6_info *rt, int mtu) 1514f5bbe7eeSWei Wang { 1515f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1516f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1517f5bbe7eeSWei Wang int i; 1518f5bbe7eeSWei Wang 1519f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1520f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1521f5bbe7eeSWei Wang 1522f5bbe7eeSWei Wang if (bucket) { 1523f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1524f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1525f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1526f5bbe7eeSWei Wang /* For RTF_CACHE with rt6i_pmtu == 0 1527f5bbe7eeSWei Wang * (i.e. a redirected route), 1528f5bbe7eeSWei Wang * the metrics of its rt->dst.from has already 1529f5bbe7eeSWei Wang * been updated. 1530f5bbe7eeSWei Wang */ 1531f5bbe7eeSWei Wang if (entry->rt6i_pmtu && entry->rt6i_pmtu > mtu) 1532f5bbe7eeSWei Wang entry->rt6i_pmtu = mtu; 1533f5bbe7eeSWei Wang } 1534f5bbe7eeSWei Wang bucket++; 1535f5bbe7eeSWei Wang } 1536f5bbe7eeSWei Wang } 1537f5bbe7eeSWei Wang } 1538f5bbe7eeSWei Wang 1539b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1540b16cb459SWei Wang 1541b16cb459SWei Wang static void rt6_exceptions_clean_tohost(struct rt6_info *rt, 1542b16cb459SWei Wang struct in6_addr *gateway) 1543b16cb459SWei Wang { 1544b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1545b16cb459SWei Wang struct rt6_exception *rt6_ex; 1546b16cb459SWei Wang struct hlist_node *tmp; 1547b16cb459SWei Wang int i; 1548b16cb459SWei Wang 1549b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1550b16cb459SWei Wang return; 1551b16cb459SWei Wang 1552b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1553b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1554b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1555b16cb459SWei Wang 1556b16cb459SWei Wang if (bucket) { 1557b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1558b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1559b16cb459SWei Wang &bucket->chain, hlist) { 1560b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1561b16cb459SWei Wang 1562b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1563b16cb459SWei Wang RTF_CACHE_GATEWAY && 1564b16cb459SWei Wang ipv6_addr_equal(gateway, 1565b16cb459SWei Wang &entry->rt6i_gateway)) { 1566b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1567b16cb459SWei Wang } 1568b16cb459SWei Wang } 1569b16cb459SWei Wang bucket++; 1570b16cb459SWei Wang } 1571b16cb459SWei Wang } 1572b16cb459SWei Wang 1573b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1574b16cb459SWei Wang } 1575b16cb459SWei Wang 1576c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1577c757faa8SWei Wang struct rt6_exception *rt6_ex, 1578c757faa8SWei Wang struct fib6_gc_args *gc_args, 1579c757faa8SWei Wang unsigned long now) 1580c757faa8SWei Wang { 1581c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1582c757faa8SWei Wang 1583c757faa8SWei Wang if (atomic_read(&rt->dst.__refcnt) == 1 && 1584c757faa8SWei Wang time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1585c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1586c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1587c757faa8SWei Wang return; 1588c757faa8SWei Wang } else if (rt->rt6i_flags & RTF_GATEWAY) { 1589c757faa8SWei Wang struct neighbour *neigh; 1590c757faa8SWei Wang __u8 neigh_flags = 0; 1591c757faa8SWei Wang 1592c757faa8SWei Wang neigh = dst_neigh_lookup(&rt->dst, &rt->rt6i_gateway); 1593c757faa8SWei Wang if (neigh) { 1594c757faa8SWei Wang neigh_flags = neigh->flags; 1595c757faa8SWei Wang neigh_release(neigh); 1596c757faa8SWei Wang } 1597c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1598c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1599c757faa8SWei Wang rt); 1600c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1601c757faa8SWei Wang return; 1602c757faa8SWei Wang } 1603c757faa8SWei Wang } 1604c757faa8SWei Wang gc_args->more++; 1605c757faa8SWei Wang } 1606c757faa8SWei Wang 1607c757faa8SWei Wang void rt6_age_exceptions(struct rt6_info *rt, 1608c757faa8SWei Wang struct fib6_gc_args *gc_args, 1609c757faa8SWei Wang unsigned long now) 1610c757faa8SWei Wang { 1611c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1612c757faa8SWei Wang struct rt6_exception *rt6_ex; 1613c757faa8SWei Wang struct hlist_node *tmp; 1614c757faa8SWei Wang int i; 1615c757faa8SWei Wang 1616c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1617c757faa8SWei Wang return; 1618c757faa8SWei Wang 1619c757faa8SWei Wang spin_lock_bh(&rt6_exception_lock); 1620c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1621c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1622c757faa8SWei Wang 1623c757faa8SWei Wang if (bucket) { 1624c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1625c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1626c757faa8SWei Wang &bucket->chain, hlist) { 1627c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1628c757faa8SWei Wang gc_args, now); 1629c757faa8SWei Wang } 1630c757faa8SWei Wang bucket++; 1631c757faa8SWei Wang } 1632c757faa8SWei Wang } 1633c757faa8SWei Wang spin_unlock_bh(&rt6_exception_lock); 1634c757faa8SWei Wang } 1635c757faa8SWei Wang 16369ff74384SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 16379ff74384SDavid Ahern int oif, struct flowi6 *fl6, int flags) 16381da177e4SLinus Torvalds { 1639367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 16402b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 1641c71099acSThomas Graf int strict = 0; 16421da177e4SLinus Torvalds 164377d16f45SYOSHIFUJI Hideaki strict |= flags & RT6_LOOKUP_F_IFACE; 1644d5d32e4bSDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 1645367efcb9SMartin KaFai Lau if (net->ipv6.devconf_all->forwarding == 0) 1646367efcb9SMartin KaFai Lau strict |= RT6_LOOKUP_F_REACHABLE; 16471da177e4SLinus Torvalds 1648*66f5d6ceSWei Wang rcu_read_lock(); 16491da177e4SLinus Torvalds 16504c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1651367efcb9SMartin KaFai Lau saved_fn = fn; 16521da177e4SLinus Torvalds 1653ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1654ca254490SDavid Ahern oif = 0; 1655ca254490SDavid Ahern 1656a3c00e46SMartin KaFai Lau redo_rt6_select: 16578d1040e8SWei Wang rt = rt6_select(net, fn, oif, strict); 165852bd4c0cSNicolas Dichtel if (rt->rt6i_nsiblings) 1659367efcb9SMartin KaFai Lau rt = rt6_multipath_select(rt, fl6, oif, strict); 1660a3c00e46SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 1661a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1662a3c00e46SMartin KaFai Lau if (fn) 1663a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1664367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1665367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1666367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1667367efcb9SMartin KaFai Lau fn = saved_fn; 1668367efcb9SMartin KaFai Lau goto redo_rt6_select; 1669367efcb9SMartin KaFai Lau } 1670a3c00e46SMartin KaFai Lau } 1671a3c00e46SMartin KaFai Lau 16722b760fcfSWei Wang /*Search through exception table */ 16732b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr); 16742b760fcfSWei Wang if (rt_cache) 16752b760fcfSWei Wang rt = rt_cache; 1676d52d3997SMartin KaFai Lau 1677d3843fe5SWei Wang if (rt == net->ipv6.ip6_null_entry) { 1678*66f5d6ceSWei Wang rcu_read_unlock(); 1679d3843fe5SWei Wang dst_hold(&rt->dst); 1680d3843fe5SWei Wang trace_fib6_table_lookup(net, rt, table->tb6_id, fl6); 1681d3843fe5SWei Wang return rt; 1682d3843fe5SWei Wang } else if (rt->rt6i_flags & RTF_CACHE) { 1683d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) { 1684d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1685d52d3997SMartin KaFai Lau rt6_dst_from_metrics_check(rt); 1686d3843fe5SWei Wang } 1687*66f5d6ceSWei Wang rcu_read_unlock(); 1688b811580dSDavid Ahern trace_fib6_table_lookup(net, rt, table->tb6_id, fl6); 1689d52d3997SMartin KaFai Lau return rt; 16903da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 16913da59bd9SMartin KaFai Lau !(rt->rt6i_flags & RTF_GATEWAY))) { 16923da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 16933da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 16943da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 16953da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 16963da59bd9SMartin KaFai Lau */ 1697c71099acSThomas Graf 16983da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 16993da59bd9SMartin KaFai Lau 1700d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) { 1701d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1702d3843fe5SWei Wang } else { 1703*66f5d6ceSWei Wang rcu_read_unlock(); 1704d3843fe5SWei Wang uncached_rt = rt; 1705d3843fe5SWei Wang goto uncached_rt_out; 1706d3843fe5SWei Wang } 1707*66f5d6ceSWei Wang rcu_read_unlock(); 1708d52d3997SMartin KaFai Lau 17093da59bd9SMartin KaFai Lau uncached_rt = ip6_rt_cache_alloc(rt, &fl6->daddr, NULL); 17103da59bd9SMartin KaFai Lau dst_release(&rt->dst); 17113da59bd9SMartin KaFai Lau 17121cfb71eeSWei Wang if (uncached_rt) { 17131cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 17141cfb71eeSWei Wang * No need for another dst_hold() 17151cfb71eeSWei Wang */ 17168d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 17171cfb71eeSWei Wang } else { 17183da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 17193da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 17201cfb71eeSWei Wang } 1721b811580dSDavid Ahern 1722d3843fe5SWei Wang uncached_rt_out: 1723b811580dSDavid Ahern trace_fib6_table_lookup(net, uncached_rt, table->tb6_id, fl6); 17243da59bd9SMartin KaFai Lau return uncached_rt; 17253da59bd9SMartin KaFai Lau 1726d52d3997SMartin KaFai Lau } else { 1727d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1728d52d3997SMartin KaFai Lau 1729d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1730d52d3997SMartin KaFai Lau 1731d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1732d52d3997SMartin KaFai Lau pcpu_rt = rt6_get_pcpu_route(rt); 1733d52d3997SMartin KaFai Lau 17349c7370a1SMartin KaFai Lau if (pcpu_rt) { 1735*66f5d6ceSWei Wang rcu_read_unlock(); 17369c7370a1SMartin KaFai Lau } else { 1737a94b9367SWei Wang /* atomic_inc_not_zero() is needed when using rcu */ 1738a94b9367SWei Wang if (atomic_inc_not_zero(&rt->rt6i_ref)) { 17399c7370a1SMartin KaFai Lau /* We have to do the read_unlock first 17409c7370a1SMartin KaFai Lau * because rt6_make_pcpu_route() may trigger 17419c7370a1SMartin KaFai Lau * ip6_dst_gc() which will take the write_lock. 1742a94b9367SWei Wang * 1743a94b9367SWei Wang * No dst_hold() on rt is needed because grabbing 1744a94b9367SWei Wang * rt->rt6i_ref makes sure rt can't be released. 17459c7370a1SMartin KaFai Lau */ 1746*66f5d6ceSWei Wang rcu_read_unlock(); 17479c7370a1SMartin KaFai Lau pcpu_rt = rt6_make_pcpu_route(rt); 1748a94b9367SWei Wang rt6_release(rt); 1749a94b9367SWei Wang } else { 1750a94b9367SWei Wang /* rt is already removed from tree */ 1751*66f5d6ceSWei Wang rcu_read_unlock(); 1752a94b9367SWei Wang pcpu_rt = net->ipv6.ip6_null_entry; 1753a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1754a94b9367SWei Wang } 17559c7370a1SMartin KaFai Lau } 1756d52d3997SMartin KaFai Lau 1757b811580dSDavid Ahern trace_fib6_table_lookup(net, pcpu_rt, table->tb6_id, fl6); 1758d52d3997SMartin KaFai Lau return pcpu_rt; 1759d52d3997SMartin KaFai Lau } 1760c71099acSThomas Graf } 17619ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1762c71099acSThomas Graf 17638ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_input(struct net *net, struct fib6_table *table, 17644c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 17654acad72dSPavel Emelyanov { 17664c9483b2SDavid S. Miller return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, flags); 17674acad72dSPavel Emelyanov } 17684acad72dSPavel Emelyanov 1769d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 177072331bc0SShmulik Ladkani struct net_device *dev, 177172331bc0SShmulik Ladkani struct flowi6 *fl6, int flags) 177272331bc0SShmulik Ladkani { 177372331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 177472331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 177572331bc0SShmulik Ladkani 177672331bc0SShmulik Ladkani return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_input); 177772331bc0SShmulik Ladkani } 1778d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 177972331bc0SShmulik Ladkani 178023aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 178123aebdacSJakub Sitnicki struct flow_keys *keys) 178223aebdacSJakub Sitnicki { 178323aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 178423aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 178523aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 178623aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 178723aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 178823aebdacSJakub Sitnicki 178923aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 179023aebdacSJakub Sitnicki goto out; 179123aebdacSJakub Sitnicki 179223aebdacSJakub Sitnicki icmph = icmp6_hdr(skb); 179323aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 179423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 179523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 179623aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 179723aebdacSJakub Sitnicki goto out; 179823aebdacSJakub Sitnicki 179923aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 180023aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 180123aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 180223aebdacSJakub Sitnicki if (!inner_iph) 180323aebdacSJakub Sitnicki goto out; 180423aebdacSJakub Sitnicki 180523aebdacSJakub Sitnicki key_iph = inner_iph; 180623aebdacSJakub Sitnicki out: 180723aebdacSJakub Sitnicki memset(keys, 0, sizeof(*keys)); 180823aebdacSJakub Sitnicki keys->control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 180923aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 181023aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 181123aebdacSJakub Sitnicki keys->tags.flow_label = ip6_flowinfo(key_iph); 181223aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 181323aebdacSJakub Sitnicki } 181423aebdacSJakub Sitnicki 181523aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 181623aebdacSJakub Sitnicki u32 rt6_multipath_hash(const struct flowi6 *fl6, const struct sk_buff *skb) 181723aebdacSJakub Sitnicki { 181823aebdacSJakub Sitnicki struct flow_keys hash_keys; 181923aebdacSJakub Sitnicki 182023aebdacSJakub Sitnicki if (skb) { 182123aebdacSJakub Sitnicki ip6_multipath_l3_keys(skb, &hash_keys); 182223aebdacSJakub Sitnicki return flow_hash_from_keys(&hash_keys); 182323aebdacSJakub Sitnicki } 182423aebdacSJakub Sitnicki 182523aebdacSJakub Sitnicki return get_hash_from_flowi6(fl6); 182623aebdacSJakub Sitnicki } 182723aebdacSJakub Sitnicki 1828c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 1829c71099acSThomas Graf { 1830b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 1831c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 1832adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 1833904af04dSJiri Benc struct ip_tunnel_info *tun_info; 18344c9483b2SDavid S. Miller struct flowi6 fl6 = { 1835e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 18364c9483b2SDavid S. Miller .daddr = iph->daddr, 18374c9483b2SDavid S. Miller .saddr = iph->saddr, 18386502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 18394c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 18404c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 1841c71099acSThomas Graf }; 1842adaa70bbSThomas Graf 1843904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 184446fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 1845904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 184623aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 184723aebdacSJakub Sitnicki fl6.mp_hash = rt6_multipath_hash(&fl6, skb); 184806e9d040SJiri Benc skb_dst_drop(skb); 184972331bc0SShmulik Ladkani skb_dst_set(skb, ip6_route_input_lookup(net, skb->dev, &fl6, flags)); 1850c71099acSThomas Graf } 1851c71099acSThomas Graf 18528ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_output(struct net *net, struct fib6_table *table, 18534c9483b2SDavid S. Miller struct flowi6 *fl6, int flags) 1854c71099acSThomas Graf { 18554c9483b2SDavid S. Miller return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, flags); 1856c71099acSThomas Graf } 1857c71099acSThomas Graf 18586f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 18596f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 1860c71099acSThomas Graf { 1861d46a9d67SDavid Ahern bool any_src; 1862c71099acSThomas Graf 18634c1feac5SDavid Ahern if (rt6_need_strict(&fl6->daddr)) { 18644c1feac5SDavid Ahern struct dst_entry *dst; 18654c1feac5SDavid Ahern 18664c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 1867ca254490SDavid Ahern if (dst) 1868ca254490SDavid Ahern return dst; 18694c1feac5SDavid Ahern } 1870ca254490SDavid Ahern 18711fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 18724dc27d1cSDavid McCullough 1873d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 1874741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 1875d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 187677d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 1877c71099acSThomas Graf 1878d46a9d67SDavid Ahern if (!any_src) 1879adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 18800c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 18810c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 1882adaa70bbSThomas Graf 18834c9483b2SDavid S. Miller return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_output); 18841da177e4SLinus Torvalds } 18856f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 18861da177e4SLinus Torvalds 18872774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 188814e50e57SDavid S. Miller { 18895c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 18901dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 189114e50e57SDavid S. Miller struct dst_entry *new = NULL; 189214e50e57SDavid S. Miller 18931dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 1894b2a9c0edSWei Wang DST_OBSOLETE_NONE, 0); 189514e50e57SDavid S. Miller if (rt) { 18960a1f5962SMartin KaFai Lau rt6_info_init(rt); 18970a1f5962SMartin KaFai Lau 1898d8d1f30bSChangli Gao new = &rt->dst; 189914e50e57SDavid S. Miller new->__use = 1; 1900352e512cSHerbert Xu new->input = dst_discard; 1901ede2059dSEric W. Biederman new->output = dst_discard_out; 190214e50e57SDavid S. Miller 1903defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 190414e50e57SDavid S. Miller 19051dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 19064e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 19070a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 190814e50e57SDavid S. Miller rt->rt6i_metric = 0; 190914e50e57SDavid S. Miller 191014e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 191114e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 191214e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 191314e50e57SDavid S. Miller #endif 191414e50e57SDavid S. Miller } 191514e50e57SDavid S. Miller 191669ead7afSDavid S. Miller dst_release(dst_orig); 191769ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 191814e50e57SDavid S. Miller } 191914e50e57SDavid S. Miller 19201da177e4SLinus Torvalds /* 19211da177e4SLinus Torvalds * Destination cache support functions 19221da177e4SLinus Torvalds */ 19231da177e4SLinus Torvalds 19244b32b5adSMartin KaFai Lau static void rt6_dst_from_metrics_check(struct rt6_info *rt) 19254b32b5adSMartin KaFai Lau { 19264b32b5adSMartin KaFai Lau if (rt->dst.from && 19274b32b5adSMartin KaFai Lau dst_metrics_ptr(&rt->dst) != dst_metrics_ptr(rt->dst.from)) 19284b32b5adSMartin KaFai Lau dst_init_metrics(&rt->dst, dst_metrics_ptr(rt->dst.from), true); 19294b32b5adSMartin KaFai Lau } 19304b32b5adSMartin KaFai Lau 19313da59bd9SMartin KaFai Lau static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie) 19323da59bd9SMartin KaFai Lau { 193336143645SSteffen Klassert u32 rt_cookie = 0; 1934c5cff856SWei Wang 1935c5cff856SWei Wang if (!rt6_get_cookie_safe(rt, &rt_cookie) || rt_cookie != cookie) 19363da59bd9SMartin KaFai Lau return NULL; 19373da59bd9SMartin KaFai Lau 19383da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 19393da59bd9SMartin KaFai Lau return NULL; 19403da59bd9SMartin KaFai Lau 19413da59bd9SMartin KaFai Lau return &rt->dst; 19423da59bd9SMartin KaFai Lau } 19433da59bd9SMartin KaFai Lau 19443da59bd9SMartin KaFai Lau static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie) 19453da59bd9SMartin KaFai Lau { 19465973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 19475973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 19483da59bd9SMartin KaFai Lau rt6_check((struct rt6_info *)(rt->dst.from), cookie)) 19493da59bd9SMartin KaFai Lau return &rt->dst; 19503da59bd9SMartin KaFai Lau else 19513da59bd9SMartin KaFai Lau return NULL; 19523da59bd9SMartin KaFai Lau } 19533da59bd9SMartin KaFai Lau 19541da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 19551da177e4SLinus Torvalds { 19561da177e4SLinus Torvalds struct rt6_info *rt; 19571da177e4SLinus Torvalds 19581da177e4SLinus Torvalds rt = (struct rt6_info *) dst; 19591da177e4SLinus Torvalds 19606f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 19616f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 19626f3118b5SNicolas Dichtel * into this function always. 19636f3118b5SNicolas Dichtel */ 1964e3bc10bdSHannes Frederic Sowa 19654b32b5adSMartin KaFai Lau rt6_dst_from_metrics_check(rt); 19664b32b5adSMartin KaFai Lau 196702bcf4e0SMartin KaFai Lau if (rt->rt6i_flags & RTF_PCPU || 1968a4c2fd7fSWei Wang (unlikely(!list_empty(&rt->rt6i_uncached)) && rt->dst.from)) 19693da59bd9SMartin KaFai Lau return rt6_dst_from_check(rt, cookie); 19703da59bd9SMartin KaFai Lau else 19713da59bd9SMartin KaFai Lau return rt6_check(rt, cookie); 19721da177e4SLinus Torvalds } 19731da177e4SLinus Torvalds 19741da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 19751da177e4SLinus Torvalds { 19761da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 19771da177e4SLinus Torvalds 19781da177e4SLinus Torvalds if (rt) { 197954c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 198054c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 1981e0a1ad73SThomas Graf ip6_del_rt(rt); 198254c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 19831da177e4SLinus Torvalds } 198454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 198554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 198654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 198754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 198854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 198954c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 19901da177e4SLinus Torvalds } 19911da177e4SLinus Torvalds 19921da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 19931da177e4SLinus Torvalds { 19941da177e4SLinus Torvalds struct rt6_info *rt; 19951da177e4SLinus Torvalds 19963ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 19971da177e4SLinus Torvalds 1998adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 19991da177e4SLinus Torvalds if (rt) { 20001eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2001ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 20028e3d5be7SMartin KaFai Lau ip6_del_rt(rt); 2003c5cff856SWei Wang } else { 2004c5cff856SWei Wang struct fib6_node *fn; 2005c5cff856SWei Wang 2006c5cff856SWei Wang rcu_read_lock(); 2007c5cff856SWei Wang fn = rcu_dereference(rt->rt6i_node); 2008c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2009c5cff856SWei Wang fn->fn_sernum = -1; 2010c5cff856SWei Wang rcu_read_unlock(); 20111da177e4SLinus Torvalds } 20121da177e4SLinus Torvalds } 20131eb4f758SHannes Frederic Sowa } 20141da177e4SLinus Torvalds 201545e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 201645e4fd26SMartin KaFai Lau { 201745e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 201845e4fd26SMartin KaFai Lau 201945e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 202045e4fd26SMartin KaFai Lau rt->rt6i_pmtu = mtu; 202145e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 202245e4fd26SMartin KaFai Lau } 202345e4fd26SMartin KaFai Lau 20240d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 20250d3f6d29SMartin KaFai Lau { 20260d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 20274e587ea7SWei Wang (rt->rt6i_flags & RTF_PCPU || 20284e587ea7SWei Wang rcu_access_pointer(rt->rt6i_node)); 20290d3f6d29SMartin KaFai Lau } 20300d3f6d29SMartin KaFai Lau 203145e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 203245e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 20331da177e4SLinus Torvalds { 20340dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 20351da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 20361da177e4SLinus Torvalds 203745e4fd26SMartin KaFai Lau if (rt6->rt6i_flags & RTF_LOCAL) 203845e4fd26SMartin KaFai Lau return; 203945e4fd26SMartin KaFai Lau 204019bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 204119bda36cSXin Long return; 204219bda36cSXin Long 204345e4fd26SMartin KaFai Lau if (iph) { 204445e4fd26SMartin KaFai Lau daddr = &iph->daddr; 204545e4fd26SMartin KaFai Lau saddr = &iph->saddr; 204645e4fd26SMartin KaFai Lau } else if (sk) { 204745e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 204845e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 204945e4fd26SMartin KaFai Lau } else { 20500dec879fSJulian Anastasov daddr = NULL; 20510dec879fSJulian Anastasov saddr = NULL; 20521da177e4SLinus Torvalds } 20530dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 20540dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 20550dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 20560dec879fSJulian Anastasov return; 20570dec879fSJulian Anastasov 20580dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 20590dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 20602b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 20612b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 20622b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 20630dec879fSJulian Anastasov } else if (daddr) { 20640dec879fSJulian Anastasov struct rt6_info *nrt6; 20650dec879fSJulian Anastasov 206645e4fd26SMartin KaFai Lau nrt6 = ip6_rt_cache_alloc(rt6, daddr, saddr); 206745e4fd26SMartin KaFai Lau if (nrt6) { 206845e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 20692b760fcfSWei Wang if (rt6_insert_exception(nrt6, rt6)) 20702b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 207145e4fd26SMartin KaFai Lau } 207245e4fd26SMartin KaFai Lau } 207345e4fd26SMartin KaFai Lau } 207445e4fd26SMartin KaFai Lau 207545e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 207645e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 207745e4fd26SMartin KaFai Lau { 207845e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 20791da177e4SLinus Torvalds } 20801da177e4SLinus Torvalds 208142ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2082e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 208381aded24SDavid S. Miller { 208481aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 208581aded24SDavid S. Miller struct dst_entry *dst; 208681aded24SDavid S. Miller struct flowi6 fl6; 208781aded24SDavid S. Miller 208881aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 208981aded24SDavid S. Miller fl6.flowi6_oif = oif; 20901b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 209181aded24SDavid S. Miller fl6.daddr = iph->daddr; 209281aded24SDavid S. Miller fl6.saddr = iph->saddr; 20936502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2094e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 209581aded24SDavid S. Miller 209681aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 209781aded24SDavid S. Miller if (!dst->error) 209845e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 209981aded24SDavid S. Miller dst_release(dst); 210081aded24SDavid S. Miller } 210181aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 210281aded24SDavid S. Miller 210381aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 210481aded24SDavid S. Miller { 210533c162a9SMartin KaFai Lau struct dst_entry *dst; 210633c162a9SMartin KaFai Lau 210781aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2108e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 210933c162a9SMartin KaFai Lau 211033c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 211133c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 211233c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 211333c162a9SMartin KaFai Lau return; 211433c162a9SMartin KaFai Lau 211533c162a9SMartin KaFai Lau bh_lock_sock(sk); 211633c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 211733c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 211833c162a9SMartin KaFai Lau bh_unlock_sock(sk); 211981aded24SDavid S. Miller } 212081aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 212181aded24SDavid S. Miller 2122b55b76b2SDuan Jiong /* Handle redirects */ 2123b55b76b2SDuan Jiong struct ip6rd_flowi { 2124b55b76b2SDuan Jiong struct flowi6 fl6; 2125b55b76b2SDuan Jiong struct in6_addr gateway; 2126b55b76b2SDuan Jiong }; 2127b55b76b2SDuan Jiong 2128b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2129b55b76b2SDuan Jiong struct fib6_table *table, 2130b55b76b2SDuan Jiong struct flowi6 *fl6, 2131b55b76b2SDuan Jiong int flags) 2132b55b76b2SDuan Jiong { 2133b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 21342b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 2135b55b76b2SDuan Jiong struct fib6_node *fn; 2136b55b76b2SDuan Jiong 2137b55b76b2SDuan Jiong /* Get the "current" route for this destination and 213867c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2139b55b76b2SDuan Jiong * 2140b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2141b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2142b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2143b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2144b55b76b2SDuan Jiong * routes. 2145b55b76b2SDuan Jiong */ 2146b55b76b2SDuan Jiong 2147*66f5d6ceSWei Wang rcu_read_lock(); 2148b55b76b2SDuan Jiong fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2149b55b76b2SDuan Jiong restart: 2150*66f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 2151b55b76b2SDuan Jiong if (rt6_check_expired(rt)) 2152b55b76b2SDuan Jiong continue; 2153b55b76b2SDuan Jiong if (rt->dst.error) 2154b55b76b2SDuan Jiong break; 2155b55b76b2SDuan Jiong if (!(rt->rt6i_flags & RTF_GATEWAY)) 2156b55b76b2SDuan Jiong continue; 2157b55b76b2SDuan Jiong if (fl6->flowi6_oif != rt->dst.dev->ifindex) 2158b55b76b2SDuan Jiong continue; 21592b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 21602b760fcfSWei Wang * in the case of an ip redirect. 21612b760fcfSWei Wang * So we keep searching in the exception table if the gateway 21622b760fcfSWei Wang * is different. 21632b760fcfSWei Wang */ 21642b760fcfSWei Wang if (!ipv6_addr_equal(&rdfl->gateway, &rt->rt6i_gateway)) { 21652b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 21662b760fcfSWei Wang &fl6->daddr, 21672b760fcfSWei Wang &fl6->saddr); 21682b760fcfSWei Wang if (rt_cache && 21692b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 21702b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 21712b760fcfSWei Wang rt = rt_cache; 21722b760fcfSWei Wang break; 21732b760fcfSWei Wang } 2174b55b76b2SDuan Jiong continue; 21752b760fcfSWei Wang } 2176b55b76b2SDuan Jiong break; 2177b55b76b2SDuan Jiong } 2178b55b76b2SDuan Jiong 2179b55b76b2SDuan Jiong if (!rt) 2180b55b76b2SDuan Jiong rt = net->ipv6.ip6_null_entry; 2181b55b76b2SDuan Jiong else if (rt->dst.error) { 2182b55b76b2SDuan Jiong rt = net->ipv6.ip6_null_entry; 2183b0a1ba59SMartin KaFai Lau goto out; 2184b0a1ba59SMartin KaFai Lau } 2185b0a1ba59SMartin KaFai Lau 2186b0a1ba59SMartin KaFai Lau if (rt == net->ipv6.ip6_null_entry) { 2187a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2188a3c00e46SMartin KaFai Lau if (fn) 2189a3c00e46SMartin KaFai Lau goto restart; 2190b55b76b2SDuan Jiong } 2191a3c00e46SMartin KaFai Lau 2192b0a1ba59SMartin KaFai Lau out: 2193d3843fe5SWei Wang ip6_hold_safe(net, &rt, true); 2194b55b76b2SDuan Jiong 2195*66f5d6ceSWei Wang rcu_read_unlock(); 2196b55b76b2SDuan Jiong 2197b811580dSDavid Ahern trace_fib6_table_lookup(net, rt, table->tb6_id, fl6); 2198b55b76b2SDuan Jiong return rt; 2199b55b76b2SDuan Jiong }; 2200b55b76b2SDuan Jiong 2201b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2202b55b76b2SDuan Jiong const struct flowi6 *fl6, 2203b55b76b2SDuan Jiong const struct in6_addr *gateway) 2204b55b76b2SDuan Jiong { 2205b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2206b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2207b55b76b2SDuan Jiong 2208b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2209b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2210b55b76b2SDuan Jiong 2211b55b76b2SDuan Jiong return fib6_rule_lookup(net, &rdfl.fl6, 2212b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2213b55b76b2SDuan Jiong } 2214b55b76b2SDuan Jiong 2215e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2216e2d118a1SLorenzo Colitti kuid_t uid) 22173a5ad2eeSDavid S. Miller { 22183a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 22193a5ad2eeSDavid S. Miller struct dst_entry *dst; 22203a5ad2eeSDavid S. Miller struct flowi6 fl6; 22213a5ad2eeSDavid S. Miller 22223a5ad2eeSDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 2223e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 22243a5ad2eeSDavid S. Miller fl6.flowi6_oif = oif; 22253a5ad2eeSDavid S. Miller fl6.flowi6_mark = mark; 22263a5ad2eeSDavid S. Miller fl6.daddr = iph->daddr; 22273a5ad2eeSDavid S. Miller fl6.saddr = iph->saddr; 22286502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2229e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 22303a5ad2eeSDavid S. Miller 2231b55b76b2SDuan Jiong dst = ip6_route_redirect(net, &fl6, &ipv6_hdr(skb)->saddr); 22326700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 22333a5ad2eeSDavid S. Miller dst_release(dst); 22343a5ad2eeSDavid S. Miller } 22353a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 22363a5ad2eeSDavid S. Miller 2237c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2238c92a59ecSDuan Jiong u32 mark) 2239c92a59ecSDuan Jiong { 2240c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2241c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2242c92a59ecSDuan Jiong struct dst_entry *dst; 2243c92a59ecSDuan Jiong struct flowi6 fl6; 2244c92a59ecSDuan Jiong 2245c92a59ecSDuan Jiong memset(&fl6, 0, sizeof(fl6)); 2246e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 2247c92a59ecSDuan Jiong fl6.flowi6_oif = oif; 2248c92a59ecSDuan Jiong fl6.flowi6_mark = mark; 2249c92a59ecSDuan Jiong fl6.daddr = msg->dest; 2250c92a59ecSDuan Jiong fl6.saddr = iph->daddr; 2251e2d118a1SLorenzo Colitti fl6.flowi6_uid = sock_net_uid(net, NULL); 2252c92a59ecSDuan Jiong 2253b55b76b2SDuan Jiong dst = ip6_route_redirect(net, &fl6, &iph->saddr); 2254c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2255c92a59ecSDuan Jiong dst_release(dst); 2256c92a59ecSDuan Jiong } 2257c92a59ecSDuan Jiong 22583a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 22593a5ad2eeSDavid S. Miller { 2260e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2261e2d118a1SLorenzo Colitti sk->sk_uid); 22623a5ad2eeSDavid S. Miller } 22633a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 22643a5ad2eeSDavid S. Miller 22650dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 22661da177e4SLinus Torvalds { 22670dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 22680dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 22690dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 22700dbaee3bSDavid S. Miller 22711da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 22721da177e4SLinus Torvalds 22735578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 22745578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 22751da177e4SLinus Torvalds 22761da177e4SLinus Torvalds /* 22771da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 22781da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 22791da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 22801da177e4SLinus Torvalds * rely only on pmtu discovery" 22811da177e4SLinus Torvalds */ 22821da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 22831da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 22841da177e4SLinus Torvalds return mtu; 22851da177e4SLinus Torvalds } 22861da177e4SLinus Torvalds 2287ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2288d33e4553SDavid S. Miller { 22894b32b5adSMartin KaFai Lau const struct rt6_info *rt = (const struct rt6_info *)dst; 22904b32b5adSMartin KaFai Lau unsigned int mtu = rt->rt6i_pmtu; 2291d33e4553SDavid S. Miller struct inet6_dev *idev; 2292618f9bc7SSteffen Klassert 2293618f9bc7SSteffen Klassert if (mtu) 229430f78d8eSEric Dumazet goto out; 2295618f9bc7SSteffen Klassert 22964b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 22974b32b5adSMartin KaFai Lau if (mtu) 22984b32b5adSMartin KaFai Lau goto out; 22994b32b5adSMartin KaFai Lau 2300618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2301d33e4553SDavid S. Miller 2302d33e4553SDavid S. Miller rcu_read_lock(); 2303d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2304d33e4553SDavid S. Miller if (idev) 2305d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2306d33e4553SDavid S. Miller rcu_read_unlock(); 2307d33e4553SDavid S. Miller 230830f78d8eSEric Dumazet out: 230914972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 231014972cbdSRoopa Prabhu 231114972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2312d33e4553SDavid S. Miller } 2313d33e4553SDavid S. Miller 23143b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 231587a11578SDavid S. Miller struct flowi6 *fl6) 23161da177e4SLinus Torvalds { 231787a11578SDavid S. Miller struct dst_entry *dst; 23181da177e4SLinus Torvalds struct rt6_info *rt; 23191da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2320c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 23211da177e4SLinus Torvalds 232238308473SDavid S. Miller if (unlikely(!idev)) 2323122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 23241da177e4SLinus Torvalds 2325ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 232638308473SDavid S. Miller if (unlikely(!rt)) { 23271da177e4SLinus Torvalds in6_dev_put(idev); 232887a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 23291da177e4SLinus Torvalds goto out; 23301da177e4SLinus Torvalds } 23311da177e4SLinus Torvalds 23328e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 23338e2ec639SYan, Zheng rt->dst.output = ip6_output; 2334550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 233587a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 23368e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 23378e2ec639SYan, Zheng rt->rt6i_idev = idev; 233814edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 23391da177e4SLinus Torvalds 2340587fea74SWei Wang /* Add this dst into uncached_list so that rt6_ifdown() can 2341587fea74SWei Wang * do proper release of the net_device 2342587fea74SWei Wang */ 2343587fea74SWei Wang rt6_uncached_list_add(rt); 23441da177e4SLinus Torvalds 234587a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 234687a11578SDavid S. Miller 23471da177e4SLinus Torvalds out: 234887a11578SDavid S. Miller return dst; 23491da177e4SLinus Torvalds } 23501da177e4SLinus Torvalds 2351569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 23521da177e4SLinus Torvalds { 235386393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 23547019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 23557019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 23567019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 23577019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 23587019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2359fc66f95cSEric Dumazet int entries; 23601da177e4SLinus Torvalds 2361fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 236249a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2363fc66f95cSEric Dumazet entries <= rt_max_size) 23641da177e4SLinus Torvalds goto out; 23651da177e4SLinus Torvalds 23666891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 236714956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2368fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2369fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 23707019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 23711da177e4SLinus Torvalds out: 23727019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2373fc66f95cSEric Dumazet return entries > rt_max_size; 23741da177e4SLinus Torvalds } 23751da177e4SLinus Torvalds 2376e715b6d3SFlorian Westphal static int ip6_convert_metrics(struct mx6_config *mxc, 2377e715b6d3SFlorian Westphal const struct fib6_config *cfg) 2378e715b6d3SFlorian Westphal { 2379c3a8d947SDaniel Borkmann bool ecn_ca = false; 2380e715b6d3SFlorian Westphal struct nlattr *nla; 2381e715b6d3SFlorian Westphal int remaining; 2382e715b6d3SFlorian Westphal u32 *mp; 2383e715b6d3SFlorian Westphal 238463159f29SIan Morris if (!cfg->fc_mx) 2385e715b6d3SFlorian Westphal return 0; 2386e715b6d3SFlorian Westphal 2387e715b6d3SFlorian Westphal mp = kzalloc(sizeof(u32) * RTAX_MAX, GFP_KERNEL); 2388e715b6d3SFlorian Westphal if (unlikely(!mp)) 2389e715b6d3SFlorian Westphal return -ENOMEM; 2390e715b6d3SFlorian Westphal 2391e715b6d3SFlorian Westphal nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) { 2392e715b6d3SFlorian Westphal int type = nla_type(nla); 2393ea697639SDaniel Borkmann u32 val; 2394ea697639SDaniel Borkmann 23951bb14807SDaniel Borkmann if (!type) 23961bb14807SDaniel Borkmann continue; 2397e715b6d3SFlorian Westphal if (unlikely(type > RTAX_MAX)) 2398e715b6d3SFlorian Westphal goto err; 23991bb14807SDaniel Borkmann 2400ea697639SDaniel Borkmann if (type == RTAX_CC_ALGO) { 2401ea697639SDaniel Borkmann char tmp[TCP_CA_NAME_MAX]; 2402e715b6d3SFlorian Westphal 2403ea697639SDaniel Borkmann nla_strlcpy(tmp, nla, sizeof(tmp)); 2404c3a8d947SDaniel Borkmann val = tcp_ca_get_key_by_name(tmp, &ecn_ca); 2405ea697639SDaniel Borkmann if (val == TCP_CA_UNSPEC) 2406ea697639SDaniel Borkmann goto err; 2407ea697639SDaniel Borkmann } else { 2408ea697639SDaniel Borkmann val = nla_get_u32(nla); 2409ea697639SDaniel Borkmann } 2410626abd59SPaolo Abeni if (type == RTAX_HOPLIMIT && val > 255) 2411626abd59SPaolo Abeni val = 255; 2412b8d3e416SDaniel Borkmann if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK)) 2413b8d3e416SDaniel Borkmann goto err; 2414ea697639SDaniel Borkmann 2415ea697639SDaniel Borkmann mp[type - 1] = val; 2416e715b6d3SFlorian Westphal __set_bit(type - 1, mxc->mx_valid); 2417e715b6d3SFlorian Westphal } 2418e715b6d3SFlorian Westphal 2419c3a8d947SDaniel Borkmann if (ecn_ca) { 2420c3a8d947SDaniel Borkmann __set_bit(RTAX_FEATURES - 1, mxc->mx_valid); 2421c3a8d947SDaniel Borkmann mp[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA; 2422c3a8d947SDaniel Borkmann } 2423e715b6d3SFlorian Westphal 2424c3a8d947SDaniel Borkmann mxc->mx = mp; 2425e715b6d3SFlorian Westphal return 0; 2426e715b6d3SFlorian Westphal err: 2427e715b6d3SFlorian Westphal kfree(mp); 2428e715b6d3SFlorian Westphal return -EINVAL; 2429e715b6d3SFlorian Westphal } 24301da177e4SLinus Torvalds 24318c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 24328c14586fSDavid Ahern struct fib6_config *cfg, 24338c14586fSDavid Ahern const struct in6_addr *gw_addr) 24348c14586fSDavid Ahern { 24358c14586fSDavid Ahern struct flowi6 fl6 = { 24368c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 24378c14586fSDavid Ahern .daddr = *gw_addr, 24388c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 24398c14586fSDavid Ahern }; 24408c14586fSDavid Ahern struct fib6_table *table; 24418c14586fSDavid Ahern struct rt6_info *rt; 2442d5d32e4bSDavid Ahern int flags = RT6_LOOKUP_F_IFACE | RT6_LOOKUP_F_IGNORE_LINKSTATE; 24438c14586fSDavid Ahern 24448c14586fSDavid Ahern table = fib6_get_table(net, cfg->fc_table); 24458c14586fSDavid Ahern if (!table) 24468c14586fSDavid Ahern return NULL; 24478c14586fSDavid Ahern 24488c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 24498c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 24508c14586fSDavid Ahern 24518c14586fSDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, flags); 24528c14586fSDavid Ahern 24538c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 24548c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 24558c14586fSDavid Ahern ip6_rt_put(rt); 24568c14586fSDavid Ahern rt = NULL; 24578c14586fSDavid Ahern } 24588c14586fSDavid Ahern 24598c14586fSDavid Ahern return rt; 24608c14586fSDavid Ahern } 24618c14586fSDavid Ahern 2462333c4301SDavid Ahern static struct rt6_info *ip6_route_info_create(struct fib6_config *cfg, 2463333c4301SDavid Ahern struct netlink_ext_ack *extack) 24641da177e4SLinus Torvalds { 24655578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 24661da177e4SLinus Torvalds struct rt6_info *rt = NULL; 24671da177e4SLinus Torvalds struct net_device *dev = NULL; 24681da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2469c71099acSThomas Graf struct fib6_table *table; 24701da177e4SLinus Torvalds int addr_type; 24718c5b83f0SRoopa Prabhu int err = -EINVAL; 24721da177e4SLinus Torvalds 2473557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2474d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2475d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2476557c44beSDavid Ahern goto out; 2477d5d531cbSDavid Ahern } 2478557c44beSDavid Ahern 2479d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2480d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 24818c5b83f0SRoopa Prabhu goto out; 2482d5d531cbSDavid Ahern } 2483d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2484d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2485d5d531cbSDavid Ahern goto out; 2486d5d531cbSDavid Ahern } 24871da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2488d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2489d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2490d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 24918c5b83f0SRoopa Prabhu goto out; 2492d5d531cbSDavid Ahern } 24931da177e4SLinus Torvalds #endif 249486872cb5SThomas Graf if (cfg->fc_ifindex) { 24951da177e4SLinus Torvalds err = -ENODEV; 24965578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 24971da177e4SLinus Torvalds if (!dev) 24981da177e4SLinus Torvalds goto out; 24991da177e4SLinus Torvalds idev = in6_dev_get(dev); 25001da177e4SLinus Torvalds if (!idev) 25011da177e4SLinus Torvalds goto out; 25021da177e4SLinus Torvalds } 25031da177e4SLinus Torvalds 250486872cb5SThomas Graf if (cfg->fc_metric == 0) 250586872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 25061da177e4SLinus Torvalds 2507c71099acSThomas Graf err = -ENOBUFS; 250838308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2509d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2510d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 251138308473SDavid S. Miller if (!table) { 2512f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2513d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2514d71314b4SMatti Vaittinen } 2515d71314b4SMatti Vaittinen } else { 2516d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2517d71314b4SMatti Vaittinen } 251838308473SDavid S. Miller 251938308473SDavid S. Miller if (!table) 2520c71099acSThomas Graf goto out; 2521c71099acSThomas Graf 2522ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, NULL, 2523ad706862SMartin KaFai Lau (cfg->fc_flags & RTF_ADDRCONF) ? 0 : DST_NOCOUNT); 25241da177e4SLinus Torvalds 252538308473SDavid S. Miller if (!rt) { 25261da177e4SLinus Torvalds err = -ENOMEM; 25271da177e4SLinus Torvalds goto out; 25281da177e4SLinus Torvalds } 25291da177e4SLinus Torvalds 25301716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 25311716a961SGao feng rt6_set_expires(rt, jiffies + 25321716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 25331716a961SGao feng else 25341716a961SGao feng rt6_clean_expires(rt); 25351da177e4SLinus Torvalds 253686872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 253786872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 253886872cb5SThomas Graf rt->rt6i_protocol = cfg->fc_protocol; 253986872cb5SThomas Graf 254086872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 25411da177e4SLinus Torvalds 25421da177e4SLinus Torvalds if (addr_type & IPV6_ADDR_MULTICAST) 2543d8d1f30bSChangli Gao rt->dst.input = ip6_mc_input; 2544ab79ad14SMaciej Żenczykowski else if (cfg->fc_flags & RTF_LOCAL) 2545ab79ad14SMaciej Żenczykowski rt->dst.input = ip6_input; 25461da177e4SLinus Torvalds else 2547d8d1f30bSChangli Gao rt->dst.input = ip6_forward; 25481da177e4SLinus Torvalds 2549d8d1f30bSChangli Gao rt->dst.output = ip6_output; 25501da177e4SLinus Torvalds 255119e42e45SRoopa Prabhu if (cfg->fc_encap) { 255219e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 255319e42e45SRoopa Prabhu 255430357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 2555127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 25569ae28727SDavid Ahern &lwtstate, extack); 255719e42e45SRoopa Prabhu if (err) 255819e42e45SRoopa Prabhu goto out; 255961adedf3SJiri Benc rt->dst.lwtstate = lwtstate_get(lwtstate); 256061adedf3SJiri Benc if (lwtunnel_output_redirect(rt->dst.lwtstate)) { 256161adedf3SJiri Benc rt->dst.lwtstate->orig_output = rt->dst.output; 256261adedf3SJiri Benc rt->dst.output = lwtunnel_output; 256319e42e45SRoopa Prabhu } 256461adedf3SJiri Benc if (lwtunnel_input_redirect(rt->dst.lwtstate)) { 256561adedf3SJiri Benc rt->dst.lwtstate->orig_input = rt->dst.input; 256661adedf3SJiri Benc rt->dst.input = lwtunnel_input; 256725368623STom Herbert } 256825368623STom Herbert } 256919e42e45SRoopa Prabhu 257086872cb5SThomas Graf ipv6_addr_prefix(&rt->rt6i_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 257186872cb5SThomas Graf rt->rt6i_dst.plen = cfg->fc_dst_len; 2572afc4eef8SMartin KaFai Lau if (rt->rt6i_dst.plen == 128) 257311d53b49SDavid S. Miller rt->dst.flags |= DST_HOST; 25741da177e4SLinus Torvalds 25751da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 257686872cb5SThomas Graf ipv6_addr_prefix(&rt->rt6i_src.addr, &cfg->fc_src, cfg->fc_src_len); 257786872cb5SThomas Graf rt->rt6i_src.plen = cfg->fc_src_len; 25781da177e4SLinus Torvalds #endif 25791da177e4SLinus Torvalds 258086872cb5SThomas Graf rt->rt6i_metric = cfg->fc_metric; 25811da177e4SLinus Torvalds 25821da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 25831da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 25841da177e4SLinus Torvalds */ 258586872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 258638308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 258738308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 258838308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 25891da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 25905578689aSDaniel Lezcano if (dev != net->loopback_dev) { 25911da177e4SLinus Torvalds if (dev) { 25921da177e4SLinus Torvalds dev_put(dev); 25931da177e4SLinus Torvalds in6_dev_put(idev); 25941da177e4SLinus Torvalds } 25955578689aSDaniel Lezcano dev = net->loopback_dev; 25961da177e4SLinus Torvalds dev_hold(dev); 25971da177e4SLinus Torvalds idev = in6_dev_get(dev); 25981da177e4SLinus Torvalds if (!idev) { 25991da177e4SLinus Torvalds err = -ENODEV; 26001da177e4SLinus Torvalds goto out; 26011da177e4SLinus Torvalds } 26021da177e4SLinus Torvalds } 26031da177e4SLinus Torvalds rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP; 2604ef2c7d7bSNicolas Dichtel switch (cfg->fc_type) { 2605ef2c7d7bSNicolas Dichtel case RTN_BLACKHOLE: 2606ef2c7d7bSNicolas Dichtel rt->dst.error = -EINVAL; 2607ede2059dSEric W. Biederman rt->dst.output = dst_discard_out; 26087150aedeSKamala R rt->dst.input = dst_discard; 2609ef2c7d7bSNicolas Dichtel break; 2610ef2c7d7bSNicolas Dichtel case RTN_PROHIBIT: 2611ef2c7d7bSNicolas Dichtel rt->dst.error = -EACCES; 26127150aedeSKamala R rt->dst.output = ip6_pkt_prohibit_out; 26137150aedeSKamala R rt->dst.input = ip6_pkt_prohibit; 2614ef2c7d7bSNicolas Dichtel break; 2615b4949ab2SNicolas Dichtel case RTN_THROW: 26160315e382SNikola Forró case RTN_UNREACHABLE: 2617ef2c7d7bSNicolas Dichtel default: 26187150aedeSKamala R rt->dst.error = (cfg->fc_type == RTN_THROW) ? -EAGAIN 26190315e382SNikola Forró : (cfg->fc_type == RTN_UNREACHABLE) 26200315e382SNikola Forró ? -EHOSTUNREACH : -ENETUNREACH; 26217150aedeSKamala R rt->dst.output = ip6_pkt_discard_out; 26227150aedeSKamala R rt->dst.input = ip6_pkt_discard; 2623ef2c7d7bSNicolas Dichtel break; 2624ef2c7d7bSNicolas Dichtel } 26251da177e4SLinus Torvalds goto install_route; 26261da177e4SLinus Torvalds } 26271da177e4SLinus Torvalds 262886872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 2629b71d1d42SEric Dumazet const struct in6_addr *gw_addr; 26301da177e4SLinus Torvalds int gwa_type; 26311da177e4SLinus Torvalds 263286872cb5SThomas Graf gw_addr = &cfg->fc_gateway; 2633330567b7SFlorian Westphal gwa_type = ipv6_addr_type(gw_addr); 263448ed7b26SFlorian Westphal 263548ed7b26SFlorian Westphal /* if gw_addr is local we will fail to detect this in case 263648ed7b26SFlorian Westphal * address is still TENTATIVE (DAD in progress). rt6_lookup() 263748ed7b26SFlorian Westphal * will return already-added prefix route via interface that 263848ed7b26SFlorian Westphal * prefix route was assigned to, which might be non-loopback. 263948ed7b26SFlorian Westphal */ 264048ed7b26SFlorian Westphal err = -EINVAL; 2641330567b7SFlorian Westphal if (ipv6_chk_addr_and_flags(net, gw_addr, 2642330567b7SFlorian Westphal gwa_type & IPV6_ADDR_LINKLOCAL ? 2643d5d531cbSDavid Ahern dev : NULL, 0, 0)) { 2644d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 264548ed7b26SFlorian Westphal goto out; 2646d5d531cbSDavid Ahern } 26474e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = *gw_addr; 26481da177e4SLinus Torvalds 26491da177e4SLinus Torvalds if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) { 26508c14586fSDavid Ahern struct rt6_info *grt = NULL; 26511da177e4SLinus Torvalds 26521da177e4SLinus Torvalds /* IPv6 strictly inhibits using not link-local 26531da177e4SLinus Torvalds addresses as nexthop address. 26541da177e4SLinus Torvalds Otherwise, router will not able to send redirects. 26551da177e4SLinus Torvalds It is very good, but in some (rare!) circumstances 26561da177e4SLinus Torvalds (SIT, PtP, NBMA NOARP links) it is handy to allow 26571da177e4SLinus Torvalds some exceptions. --ANK 265896d5822cSErik Nordmark We allow IPv4-mapped nexthops to support RFC4798-type 265996d5822cSErik Nordmark addressing 26601da177e4SLinus Torvalds */ 266196d5822cSErik Nordmark if (!(gwa_type & (IPV6_ADDR_UNICAST | 2662d5d531cbSDavid Ahern IPV6_ADDR_MAPPED))) { 2663d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2664d5d531cbSDavid Ahern "Invalid gateway address"); 26651da177e4SLinus Torvalds goto out; 2666d5d531cbSDavid Ahern } 26671da177e4SLinus Torvalds 2668a435a07fSVincent Bernat if (cfg->fc_table) { 26698c14586fSDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr); 26708c14586fSDavid Ahern 2671a435a07fSVincent Bernat if (grt) { 2672a435a07fSVincent Bernat if (grt->rt6i_flags & RTF_GATEWAY || 2673a435a07fSVincent Bernat (dev && dev != grt->dst.dev)) { 2674a435a07fSVincent Bernat ip6_rt_put(grt); 2675a435a07fSVincent Bernat grt = NULL; 2676a435a07fSVincent Bernat } 2677a435a07fSVincent Bernat } 2678a435a07fSVincent Bernat } 2679a435a07fSVincent Bernat 26808c14586fSDavid Ahern if (!grt) 26818c14586fSDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, 26828c14586fSDavid Ahern cfg->fc_ifindex, 1); 26831da177e4SLinus Torvalds 26841da177e4SLinus Torvalds err = -EHOSTUNREACH; 268538308473SDavid S. Miller if (!grt) 26861da177e4SLinus Torvalds goto out; 26871da177e4SLinus Torvalds if (dev) { 2688d1918542SDavid S. Miller if (dev != grt->dst.dev) { 268994e187c0SAmerigo Wang ip6_rt_put(grt); 26901da177e4SLinus Torvalds goto out; 26911da177e4SLinus Torvalds } 26921da177e4SLinus Torvalds } else { 2693d1918542SDavid S. Miller dev = grt->dst.dev; 26941da177e4SLinus Torvalds idev = grt->rt6i_idev; 26951da177e4SLinus Torvalds dev_hold(dev); 26961da177e4SLinus Torvalds in6_dev_hold(grt->rt6i_idev); 26971da177e4SLinus Torvalds } 26981da177e4SLinus Torvalds if (!(grt->rt6i_flags & RTF_GATEWAY)) 26991da177e4SLinus Torvalds err = 0; 270094e187c0SAmerigo Wang ip6_rt_put(grt); 27011da177e4SLinus Torvalds 27021da177e4SLinus Torvalds if (err) 27031da177e4SLinus Torvalds goto out; 27041da177e4SLinus Torvalds } 27051da177e4SLinus Torvalds err = -EINVAL; 2706d5d531cbSDavid Ahern if (!dev) { 2707d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 27081da177e4SLinus Torvalds goto out; 2709d5d531cbSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 2710d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2711d5d531cbSDavid Ahern "Egress device can not be loopback device for this route"); 2712d5d531cbSDavid Ahern goto out; 2713d5d531cbSDavid Ahern } 27141da177e4SLinus Torvalds } 27151da177e4SLinus Torvalds 27161da177e4SLinus Torvalds err = -ENODEV; 271738308473SDavid S. Miller if (!dev) 27181da177e4SLinus Torvalds goto out; 27191da177e4SLinus Torvalds 2720c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 2721c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 2722d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 2723c3968a85SDaniel Walter err = -EINVAL; 2724c3968a85SDaniel Walter goto out; 2725c3968a85SDaniel Walter } 27264e3fd7a0SAlexey Dobriyan rt->rt6i_prefsrc.addr = cfg->fc_prefsrc; 2727c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 128; 2728c3968a85SDaniel Walter } else 2729c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 0; 2730c3968a85SDaniel Walter 273186872cb5SThomas Graf rt->rt6i_flags = cfg->fc_flags; 27321da177e4SLinus Torvalds 27331da177e4SLinus Torvalds install_route: 2734d8d1f30bSChangli Gao rt->dst.dev = dev; 27351da177e4SLinus Torvalds rt->rt6i_idev = idev; 2736c71099acSThomas Graf rt->rt6i_table = table; 273763152fc0SDaniel Lezcano 2738c346dca1SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = dev_net(dev); 273963152fc0SDaniel Lezcano 27408c5b83f0SRoopa Prabhu return rt; 27411da177e4SLinus Torvalds out: 27421da177e4SLinus Torvalds if (dev) 27431da177e4SLinus Torvalds dev_put(dev); 27441da177e4SLinus Torvalds if (idev) 27451da177e4SLinus Torvalds in6_dev_put(idev); 2746587fea74SWei Wang if (rt) 2747587fea74SWei Wang dst_release_immediate(&rt->dst); 27486b9ea5a6SRoopa Prabhu 27498c5b83f0SRoopa Prabhu return ERR_PTR(err); 27506b9ea5a6SRoopa Prabhu } 27516b9ea5a6SRoopa Prabhu 2752333c4301SDavid Ahern int ip6_route_add(struct fib6_config *cfg, 2753333c4301SDavid Ahern struct netlink_ext_ack *extack) 27546b9ea5a6SRoopa Prabhu { 27556b9ea5a6SRoopa Prabhu struct mx6_config mxc = { .mx = NULL, }; 27568c5b83f0SRoopa Prabhu struct rt6_info *rt; 27576b9ea5a6SRoopa Prabhu int err; 27586b9ea5a6SRoopa Prabhu 2759333c4301SDavid Ahern rt = ip6_route_info_create(cfg, extack); 27608c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 27618c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 27628c5b83f0SRoopa Prabhu rt = NULL; 27636b9ea5a6SRoopa Prabhu goto out; 27648c5b83f0SRoopa Prabhu } 27656b9ea5a6SRoopa Prabhu 27666b9ea5a6SRoopa Prabhu err = ip6_convert_metrics(&mxc, cfg); 27676b9ea5a6SRoopa Prabhu if (err) 27686b9ea5a6SRoopa Prabhu goto out; 27696b9ea5a6SRoopa Prabhu 2770333c4301SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, &mxc, extack); 27716b9ea5a6SRoopa Prabhu 27726b9ea5a6SRoopa Prabhu kfree(mxc.mx); 27736b9ea5a6SRoopa Prabhu 27746b9ea5a6SRoopa Prabhu return err; 27756b9ea5a6SRoopa Prabhu out: 2776587fea74SWei Wang if (rt) 2777587fea74SWei Wang dst_release_immediate(&rt->dst); 27786b9ea5a6SRoopa Prabhu 27791da177e4SLinus Torvalds return err; 27801da177e4SLinus Torvalds } 27811da177e4SLinus Torvalds 278286872cb5SThomas Graf static int __ip6_del_rt(struct rt6_info *rt, struct nl_info *info) 27831da177e4SLinus Torvalds { 27841da177e4SLinus Torvalds int err; 2785c71099acSThomas Graf struct fib6_table *table; 2786d1918542SDavid S. Miller struct net *net = dev_net(rt->dst.dev); 27871da177e4SLinus Torvalds 2788a4c2fd7fSWei Wang if (rt == net->ipv6.ip6_null_entry) { 27896825a26cSGao feng err = -ENOENT; 27906825a26cSGao feng goto out; 27916825a26cSGao feng } 27926c813a72SPatrick McHardy 2793c71099acSThomas Graf table = rt->rt6i_table; 2794*66f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 279586872cb5SThomas Graf err = fib6_del(rt, info); 2796*66f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 27971da177e4SLinus Torvalds 27986825a26cSGao feng out: 279994e187c0SAmerigo Wang ip6_rt_put(rt); 28001da177e4SLinus Torvalds return err; 28011da177e4SLinus Torvalds } 28021da177e4SLinus Torvalds 2803e0a1ad73SThomas Graf int ip6_del_rt(struct rt6_info *rt) 2804e0a1ad73SThomas Graf { 28054d1169c1SDenis V. Lunev struct nl_info info = { 2806d1918542SDavid S. Miller .nl_net = dev_net(rt->dst.dev), 28074d1169c1SDenis V. Lunev }; 2808528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 2809e0a1ad73SThomas Graf } 2810e0a1ad73SThomas Graf 28110ae81335SDavid Ahern static int __ip6_del_rt_siblings(struct rt6_info *rt, struct fib6_config *cfg) 28120ae81335SDavid Ahern { 28130ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 2814e3330039SWANG Cong struct net *net = info->nl_net; 281516a16cd3SDavid Ahern struct sk_buff *skb = NULL; 28160ae81335SDavid Ahern struct fib6_table *table; 2817e3330039SWANG Cong int err = -ENOENT; 28180ae81335SDavid Ahern 2819e3330039SWANG Cong if (rt == net->ipv6.ip6_null_entry) 2820e3330039SWANG Cong goto out_put; 28210ae81335SDavid Ahern table = rt->rt6i_table; 2822*66f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 28230ae81335SDavid Ahern 28240ae81335SDavid Ahern if (rt->rt6i_nsiblings && cfg->fc_delete_all_nh) { 28250ae81335SDavid Ahern struct rt6_info *sibling, *next_sibling; 28260ae81335SDavid Ahern 282716a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 282816a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 282916a16cd3SDavid Ahern if (skb) { 283016a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 283116a16cd3SDavid Ahern 2832e3330039SWANG Cong if (rt6_fill_node(net, skb, rt, 283316a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 283416a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 283516a16cd3SDavid Ahern kfree_skb(skb); 283616a16cd3SDavid Ahern skb = NULL; 283716a16cd3SDavid Ahern } else 283816a16cd3SDavid Ahern info->skip_notify = 1; 283916a16cd3SDavid Ahern } 284016a16cd3SDavid Ahern 28410ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 28420ae81335SDavid Ahern &rt->rt6i_siblings, 28430ae81335SDavid Ahern rt6i_siblings) { 28440ae81335SDavid Ahern err = fib6_del(sibling, info); 28450ae81335SDavid Ahern if (err) 2846e3330039SWANG Cong goto out_unlock; 28470ae81335SDavid Ahern } 28480ae81335SDavid Ahern } 28490ae81335SDavid Ahern 28500ae81335SDavid Ahern err = fib6_del(rt, info); 2851e3330039SWANG Cong out_unlock: 2852*66f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 2853e3330039SWANG Cong out_put: 28540ae81335SDavid Ahern ip6_rt_put(rt); 285516a16cd3SDavid Ahern 285616a16cd3SDavid Ahern if (skb) { 2857e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 285816a16cd3SDavid Ahern info->nlh, gfp_any()); 285916a16cd3SDavid Ahern } 28600ae81335SDavid Ahern return err; 28610ae81335SDavid Ahern } 28620ae81335SDavid Ahern 2863333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 2864333c4301SDavid Ahern struct netlink_ext_ack *extack) 28651da177e4SLinus Torvalds { 28662b760fcfSWei Wang struct rt6_info *rt, *rt_cache; 2867c71099acSThomas Graf struct fib6_table *table; 28681da177e4SLinus Torvalds struct fib6_node *fn; 28691da177e4SLinus Torvalds int err = -ESRCH; 28701da177e4SLinus Torvalds 28715578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 2872d5d531cbSDavid Ahern if (!table) { 2873d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 2874c71099acSThomas Graf return err; 2875d5d531cbSDavid Ahern } 28761da177e4SLinus Torvalds 2877*66f5d6ceSWei Wang rcu_read_lock(); 2878c71099acSThomas Graf 2879c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 288086872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 288138fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 28822b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 28831da177e4SLinus Torvalds 28841da177e4SLinus Torvalds if (fn) { 2885*66f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 28862b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 28872b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 28882b760fcfSWei Wang &cfg->fc_src); 28892b760fcfSWei Wang if (!rt_cache) 28901f56a01fSMartin KaFai Lau continue; 28912b760fcfSWei Wang rt = rt_cache; 28922b760fcfSWei Wang } 289386872cb5SThomas Graf if (cfg->fc_ifindex && 2894d1918542SDavid S. Miller (!rt->dst.dev || 2895d1918542SDavid S. Miller rt->dst.dev->ifindex != cfg->fc_ifindex)) 28961da177e4SLinus Torvalds continue; 289786872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 289886872cb5SThomas Graf !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 28991da177e4SLinus Torvalds continue; 290086872cb5SThomas Graf if (cfg->fc_metric && cfg->fc_metric != rt->rt6i_metric) 29011da177e4SLinus Torvalds continue; 2902c2ed1880SMantas M if (cfg->fc_protocol && cfg->fc_protocol != rt->rt6i_protocol) 2903c2ed1880SMantas M continue; 2904d3843fe5SWei Wang if (!dst_hold_safe(&rt->dst)) 2905d3843fe5SWei Wang break; 2906*66f5d6ceSWei Wang rcu_read_unlock(); 29071da177e4SLinus Torvalds 29080ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 29090ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 291086872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 29110ae81335SDavid Ahern 29120ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 29131da177e4SLinus Torvalds } 29141da177e4SLinus Torvalds } 2915*66f5d6ceSWei Wang rcu_read_unlock(); 29161da177e4SLinus Torvalds 29171da177e4SLinus Torvalds return err; 29181da177e4SLinus Torvalds } 29191da177e4SLinus Torvalds 29206700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 2921a6279458SYOSHIFUJI Hideaki { 2922a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 2923e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 2924e8599ff4SDavid S. Miller struct ndisc_options ndopts; 2925e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 2926e8599ff4SDavid S. Miller struct neighbour *neigh; 292771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 29286e157b6aSDavid S. Miller int optlen, on_link; 29296e157b6aSDavid S. Miller u8 *lladdr; 2930e8599ff4SDavid S. Miller 293129a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 293271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 2933e8599ff4SDavid S. Miller 2934e8599ff4SDavid S. Miller if (optlen < 0) { 29356e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 2936e8599ff4SDavid S. Miller return; 2937e8599ff4SDavid S. Miller } 2938e8599ff4SDavid S. Miller 293971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 2940e8599ff4SDavid S. Miller 294171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 29426e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 2943e8599ff4SDavid S. Miller return; 2944e8599ff4SDavid S. Miller } 2945e8599ff4SDavid S. Miller 29466e157b6aSDavid S. Miller on_link = 0; 294771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 2948e8599ff4SDavid S. Miller on_link = 1; 294971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 2950e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 29516e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 2952e8599ff4SDavid S. Miller return; 2953e8599ff4SDavid S. Miller } 2954e8599ff4SDavid S. Miller 2955e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 2956e8599ff4SDavid S. Miller if (!in6_dev) 2957e8599ff4SDavid S. Miller return; 2958e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 2959e8599ff4SDavid S. Miller return; 2960e8599ff4SDavid S. Miller 2961e8599ff4SDavid S. Miller /* RFC2461 8.1: 2962e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 2963e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 2964e8599ff4SDavid S. Miller */ 2965e8599ff4SDavid S. Miller 2966f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 2967e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 2968e8599ff4SDavid S. Miller return; 2969e8599ff4SDavid S. Miller } 29706e157b6aSDavid S. Miller 29716e157b6aSDavid S. Miller lladdr = NULL; 2972e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 2973e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 2974e8599ff4SDavid S. Miller skb->dev); 2975e8599ff4SDavid S. Miller if (!lladdr) { 2976e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 2977e8599ff4SDavid S. Miller return; 2978e8599ff4SDavid S. Miller } 2979e8599ff4SDavid S. Miller } 2980e8599ff4SDavid S. Miller 29816e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 2982ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 29836e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 29846e157b6aSDavid S. Miller return; 29856e157b6aSDavid S. Miller } 29866e157b6aSDavid S. Miller 29876e157b6aSDavid S. Miller /* Redirect received -> path was valid. 29886e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 29896e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 29906e157b6aSDavid S. Miller */ 29910dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 29926e157b6aSDavid S. Miller 299371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 2994e8599ff4SDavid S. Miller if (!neigh) 2995e8599ff4SDavid S. Miller return; 2996e8599ff4SDavid S. Miller 29971da177e4SLinus Torvalds /* 29981da177e4SLinus Torvalds * We have finally decided to accept it. 29991da177e4SLinus Torvalds */ 30001da177e4SLinus Torvalds 3001f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 30021da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 30031da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 30041da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3005f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3006f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 30071da177e4SLinus Torvalds 300883a09abdSMartin KaFai Lau nrt = ip6_rt_cache_alloc(rt, &msg->dest, NULL); 300938308473SDavid S. Miller if (!nrt) 30101da177e4SLinus Torvalds goto out; 30111da177e4SLinus Torvalds 30121da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 30131da177e4SLinus Torvalds if (on_link) 30141da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 30151da177e4SLinus Torvalds 3016b91d5329SXin Long nrt->rt6i_protocol = RTPROT_REDIRECT; 30174e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 30181da177e4SLinus Torvalds 30192b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 30202b760fcfSWei Wang * a cached route because rt6_insert_exception() will 30212b760fcfSWei Wang * takes care of it 30222b760fcfSWei Wang */ 30232b760fcfSWei Wang if (rt6_insert_exception(nrt, rt)) { 30242b760fcfSWei Wang dst_release_immediate(&nrt->dst); 30252b760fcfSWei Wang goto out; 30262b760fcfSWei Wang } 30271da177e4SLinus Torvalds 3028d8d1f30bSChangli Gao netevent.old = &rt->dst; 3029d8d1f30bSChangli Gao netevent.new = &nrt->dst; 303071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 303160592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 30328d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 30338d71740cSTom Tucker 30341da177e4SLinus Torvalds out: 3035e8599ff4SDavid S. Miller neigh_release(neigh); 30366e157b6aSDavid S. Miller } 30376e157b6aSDavid S. Miller 30381da177e4SLinus Torvalds /* 30391da177e4SLinus Torvalds * Misc support functions 30401da177e4SLinus Torvalds */ 30411da177e4SLinus Torvalds 30424b32b5adSMartin KaFai Lau static void rt6_set_from(struct rt6_info *rt, struct rt6_info *from) 30434b32b5adSMartin KaFai Lau { 30444b32b5adSMartin KaFai Lau BUG_ON(from->dst.from); 30454b32b5adSMartin KaFai Lau 30464b32b5adSMartin KaFai Lau rt->rt6i_flags &= ~RTF_EXPIRES; 30474b32b5adSMartin KaFai Lau dst_hold(&from->dst); 30484b32b5adSMartin KaFai Lau rt->dst.from = &from->dst; 30494b32b5adSMartin KaFai Lau dst_init_metrics(&rt->dst, dst_metrics_ptr(&from->dst), true); 30504b32b5adSMartin KaFai Lau } 30514b32b5adSMartin KaFai Lau 305283a09abdSMartin KaFai Lau static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort) 30531da177e4SLinus Torvalds { 3054d8d1f30bSChangli Gao rt->dst.input = ort->dst.input; 3055d8d1f30bSChangli Gao rt->dst.output = ort->dst.output; 305683a09abdSMartin KaFai Lau rt->rt6i_dst = ort->rt6i_dst; 3057d8d1f30bSChangli Gao rt->dst.error = ort->dst.error; 30581da177e4SLinus Torvalds rt->rt6i_idev = ort->rt6i_idev; 30591da177e4SLinus Torvalds if (rt->rt6i_idev) 30601da177e4SLinus Torvalds in6_dev_hold(rt->rt6i_idev); 3061d8d1f30bSChangli Gao rt->dst.lastuse = jiffies; 30624e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 30631716a961SGao feng rt->rt6i_flags = ort->rt6i_flags; 30641716a961SGao feng rt6_set_from(rt, ort); 306583a09abdSMartin KaFai Lau rt->rt6i_metric = ort->rt6i_metric; 30661da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 306783a09abdSMartin KaFai Lau rt->rt6i_src = ort->rt6i_src; 30681da177e4SLinus Torvalds #endif 306983a09abdSMartin KaFai Lau rt->rt6i_prefsrc = ort->rt6i_prefsrc; 3070c71099acSThomas Graf rt->rt6i_table = ort->rt6i_table; 307161adedf3SJiri Benc rt->dst.lwtstate = lwtstate_get(ort->dst.lwtstate); 30721da177e4SLinus Torvalds } 30731da177e4SLinus Torvalds 307470ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 3075efa2cea0SDaniel Lezcano static struct rt6_info *rt6_get_route_info(struct net *net, 3076b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3077830218c1SDavid Ahern const struct in6_addr *gwaddr, 3078830218c1SDavid Ahern struct net_device *dev) 307970ceb4f5SYOSHIFUJI Hideaki { 3080830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3081830218c1SDavid Ahern int ifindex = dev->ifindex; 308270ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 308370ceb4f5SYOSHIFUJI Hideaki struct rt6_info *rt = NULL; 3084c71099acSThomas Graf struct fib6_table *table; 308570ceb4f5SYOSHIFUJI Hideaki 3086830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 308738308473SDavid S. Miller if (!table) 3088c71099acSThomas Graf return NULL; 3089c71099acSThomas Graf 3090*66f5d6ceSWei Wang rcu_read_lock(); 309138fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 309270ceb4f5SYOSHIFUJI Hideaki if (!fn) 309370ceb4f5SYOSHIFUJI Hideaki goto out; 309470ceb4f5SYOSHIFUJI Hideaki 3095*66f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3096d1918542SDavid S. Miller if (rt->dst.dev->ifindex != ifindex) 309770ceb4f5SYOSHIFUJI Hideaki continue; 309870ceb4f5SYOSHIFUJI Hideaki if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 309970ceb4f5SYOSHIFUJI Hideaki continue; 310070ceb4f5SYOSHIFUJI Hideaki if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr)) 310170ceb4f5SYOSHIFUJI Hideaki continue; 3102d3843fe5SWei Wang ip6_hold_safe(NULL, &rt, false); 310370ceb4f5SYOSHIFUJI Hideaki break; 310470ceb4f5SYOSHIFUJI Hideaki } 310570ceb4f5SYOSHIFUJI Hideaki out: 3106*66f5d6ceSWei Wang rcu_read_unlock(); 310770ceb4f5SYOSHIFUJI Hideaki return rt; 310870ceb4f5SYOSHIFUJI Hideaki } 310970ceb4f5SYOSHIFUJI Hideaki 3110efa2cea0SDaniel Lezcano static struct rt6_info *rt6_add_route_info(struct net *net, 3111b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3112830218c1SDavid Ahern const struct in6_addr *gwaddr, 3113830218c1SDavid Ahern struct net_device *dev, 311495c96174SEric Dumazet unsigned int pref) 311570ceb4f5SYOSHIFUJI Hideaki { 311686872cb5SThomas Graf struct fib6_config cfg = { 3117238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3118830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 311986872cb5SThomas Graf .fc_dst_len = prefixlen, 312086872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 312186872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3122b91d5329SXin Long .fc_protocol = RTPROT_RA, 312315e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3124efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3125efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 312686872cb5SThomas Graf }; 312770ceb4f5SYOSHIFUJI Hideaki 3128830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 31294e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 31304e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 313186872cb5SThomas Graf 3132e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3133e317da96SYOSHIFUJI Hideaki if (!prefixlen) 313486872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 313570ceb4f5SYOSHIFUJI Hideaki 3136333c4301SDavid Ahern ip6_route_add(&cfg, NULL); 313770ceb4f5SYOSHIFUJI Hideaki 3138830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 313970ceb4f5SYOSHIFUJI Hideaki } 314070ceb4f5SYOSHIFUJI Hideaki #endif 314170ceb4f5SYOSHIFUJI Hideaki 3142b71d1d42SEric Dumazet struct rt6_info *rt6_get_dflt_router(const struct in6_addr *addr, struct net_device *dev) 31431da177e4SLinus Torvalds { 3144830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 31451da177e4SLinus Torvalds struct rt6_info *rt; 3146c71099acSThomas Graf struct fib6_table *table; 31471da177e4SLinus Torvalds 3148830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), tb_id); 314938308473SDavid S. Miller if (!table) 3150c71099acSThomas Graf return NULL; 31511da177e4SLinus Torvalds 3152*66f5d6ceSWei Wang rcu_read_lock(); 3153*66f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3154d1918542SDavid S. Miller if (dev == rt->dst.dev && 3155045927ffSYOSHIFUJI Hideaki ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 31561da177e4SLinus Torvalds ipv6_addr_equal(&rt->rt6i_gateway, addr)) 31571da177e4SLinus Torvalds break; 31581da177e4SLinus Torvalds } 31591da177e4SLinus Torvalds if (rt) 3160d3843fe5SWei Wang ip6_hold_safe(NULL, &rt, false); 3161*66f5d6ceSWei Wang rcu_read_unlock(); 31621da177e4SLinus Torvalds return rt; 31631da177e4SLinus Torvalds } 31641da177e4SLinus Torvalds 3165b71d1d42SEric Dumazet struct rt6_info *rt6_add_dflt_router(const struct in6_addr *gwaddr, 3166ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3167ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 31681da177e4SLinus Torvalds { 316986872cb5SThomas Graf struct fib6_config cfg = { 3170ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3171238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 317286872cb5SThomas Graf .fc_ifindex = dev->ifindex, 317386872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 317486872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3175b91d5329SXin Long .fc_protocol = RTPROT_RA, 317615e47304SEric W. Biederman .fc_nlinfo.portid = 0, 31775578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3178c346dca1SYOSHIFUJI Hideaki .fc_nlinfo.nl_net = dev_net(dev), 317986872cb5SThomas Graf }; 31801da177e4SLinus Torvalds 31814e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 31821da177e4SLinus Torvalds 3183333c4301SDavid Ahern if (!ip6_route_add(&cfg, NULL)) { 3184830218c1SDavid Ahern struct fib6_table *table; 3185830218c1SDavid Ahern 3186830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3187830218c1SDavid Ahern if (table) 3188830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3189830218c1SDavid Ahern } 31901da177e4SLinus Torvalds 31911da177e4SLinus Torvalds return rt6_get_dflt_router(gwaddr, dev); 31921da177e4SLinus Torvalds } 31931da177e4SLinus Torvalds 3194830218c1SDavid Ahern static void __rt6_purge_dflt_routers(struct fib6_table *table) 31951da177e4SLinus Torvalds { 31961da177e4SLinus Torvalds struct rt6_info *rt; 31971da177e4SLinus Torvalds 31981da177e4SLinus Torvalds restart: 3199*66f5d6ceSWei Wang rcu_read_lock(); 3200*66f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 32013e8b0ac3SLorenzo Colitti if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 32023e8b0ac3SLorenzo Colitti (!rt->rt6i_idev || rt->rt6i_idev->cnf.accept_ra != 2)) { 3203d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) { 3204*66f5d6ceSWei Wang rcu_read_unlock(); 3205e0a1ad73SThomas Graf ip6_del_rt(rt); 3206d3843fe5SWei Wang } else { 3207*66f5d6ceSWei Wang rcu_read_unlock(); 3208d3843fe5SWei Wang } 32091da177e4SLinus Torvalds goto restart; 32101da177e4SLinus Torvalds } 32111da177e4SLinus Torvalds } 3212*66f5d6ceSWei Wang rcu_read_unlock(); 3213830218c1SDavid Ahern 3214830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3215830218c1SDavid Ahern } 3216830218c1SDavid Ahern 3217830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3218830218c1SDavid Ahern { 3219830218c1SDavid Ahern struct fib6_table *table; 3220830218c1SDavid Ahern struct hlist_head *head; 3221830218c1SDavid Ahern unsigned int h; 3222830218c1SDavid Ahern 3223830218c1SDavid Ahern rcu_read_lock(); 3224830218c1SDavid Ahern 3225830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3226830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3227830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3228830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3229830218c1SDavid Ahern __rt6_purge_dflt_routers(table); 3230830218c1SDavid Ahern } 3231830218c1SDavid Ahern } 3232830218c1SDavid Ahern 3233830218c1SDavid Ahern rcu_read_unlock(); 32341da177e4SLinus Torvalds } 32351da177e4SLinus Torvalds 32365578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 32375578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 323886872cb5SThomas Graf struct fib6_config *cfg) 323986872cb5SThomas Graf { 324086872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 324186872cb5SThomas Graf 3242ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3243ca254490SDavid Ahern : RT6_TABLE_MAIN; 324486872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 324586872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 324686872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 324786872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 324886872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 324986872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 325086872cb5SThomas Graf 32515578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3252f1243c2dSBenjamin Thery 32534e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 32544e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 32554e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 325686872cb5SThomas Graf } 325786872cb5SThomas Graf 32585578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 32591da177e4SLinus Torvalds { 326086872cb5SThomas Graf struct fib6_config cfg; 32611da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 32621da177e4SLinus Torvalds int err; 32631da177e4SLinus Torvalds 32641da177e4SLinus Torvalds switch (cmd) { 32651da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 32661da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3267af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 32681da177e4SLinus Torvalds return -EPERM; 32691da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 32701da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 32711da177e4SLinus Torvalds if (err) 32721da177e4SLinus Torvalds return -EFAULT; 32731da177e4SLinus Torvalds 32745578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 327586872cb5SThomas Graf 32761da177e4SLinus Torvalds rtnl_lock(); 32771da177e4SLinus Torvalds switch (cmd) { 32781da177e4SLinus Torvalds case SIOCADDRT: 3279333c4301SDavid Ahern err = ip6_route_add(&cfg, NULL); 32801da177e4SLinus Torvalds break; 32811da177e4SLinus Torvalds case SIOCDELRT: 3282333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 32831da177e4SLinus Torvalds break; 32841da177e4SLinus Torvalds default: 32851da177e4SLinus Torvalds err = -EINVAL; 32861da177e4SLinus Torvalds } 32871da177e4SLinus Torvalds rtnl_unlock(); 32881da177e4SLinus Torvalds 32891da177e4SLinus Torvalds return err; 32903ff50b79SStephen Hemminger } 32911da177e4SLinus Torvalds 32921da177e4SLinus Torvalds return -EINVAL; 32931da177e4SLinus Torvalds } 32941da177e4SLinus Torvalds 32951da177e4SLinus Torvalds /* 32961da177e4SLinus Torvalds * Drop the packet on the floor 32971da177e4SLinus Torvalds */ 32981da177e4SLinus Torvalds 3299d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 33001da177e4SLinus Torvalds { 3301612f09e8SYOSHIFUJI Hideaki int type; 3302adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3303612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3304612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 33050660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 330645bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 33073bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 33083bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3309612f09e8SYOSHIFUJI Hideaki break; 3310612f09e8SYOSHIFUJI Hideaki } 3311612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3312612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 33133bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 33143bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3315612f09e8SYOSHIFUJI Hideaki break; 3316612f09e8SYOSHIFUJI Hideaki } 33173ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 33181da177e4SLinus Torvalds kfree_skb(skb); 33191da177e4SLinus Torvalds return 0; 33201da177e4SLinus Torvalds } 33211da177e4SLinus Torvalds 33229ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 33239ce8ade0SThomas Graf { 3324612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 33259ce8ade0SThomas Graf } 33269ce8ade0SThomas Graf 3327ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 33281da177e4SLinus Torvalds { 3329adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3330612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 33311da177e4SLinus Torvalds } 33321da177e4SLinus Torvalds 33339ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 33349ce8ade0SThomas Graf { 3335612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 33369ce8ade0SThomas Graf } 33379ce8ade0SThomas Graf 3338ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 33399ce8ade0SThomas Graf { 3340adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3341612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 33429ce8ade0SThomas Graf } 33439ce8ade0SThomas Graf 33441da177e4SLinus Torvalds /* 33451da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 33461da177e4SLinus Torvalds */ 33471da177e4SLinus Torvalds 33481da177e4SLinus Torvalds struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev, 33491da177e4SLinus Torvalds const struct in6_addr *addr, 33508f031519SDavid S. Miller bool anycast) 33511da177e4SLinus Torvalds { 3352ca254490SDavid Ahern u32 tb_id; 3353c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(idev->dev); 33544832c30dSDavid Ahern struct net_device *dev = idev->dev; 33555f02ce24SDavid Ahern struct rt6_info *rt; 33565f02ce24SDavid Ahern 33575f02ce24SDavid Ahern rt = ip6_dst_alloc(net, dev, DST_NOCOUNT); 3358a3300ef4SHannes Frederic Sowa if (!rt) 33591da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 33601da177e4SLinus Torvalds 33611da177e4SLinus Torvalds in6_dev_hold(idev); 33621da177e4SLinus Torvalds 336311d53b49SDavid S. Miller rt->dst.flags |= DST_HOST; 3364d8d1f30bSChangli Gao rt->dst.input = ip6_input; 3365d8d1f30bSChangli Gao rt->dst.output = ip6_output; 33661da177e4SLinus Torvalds rt->rt6i_idev = idev; 33671da177e4SLinus Torvalds 336894b5e0f9SDavid Ahern rt->rt6i_protocol = RTPROT_KERNEL; 33691da177e4SLinus Torvalds rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP; 337058c4fb86SYOSHIFUJI Hideaki if (anycast) 337158c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 337258c4fb86SYOSHIFUJI Hideaki else 33731da177e4SLinus Torvalds rt->rt6i_flags |= RTF_LOCAL; 33741da177e4SLinus Torvalds 3375550bab42SJulian Anastasov rt->rt6i_gateway = *addr; 33764e3fd7a0SAlexey Dobriyan rt->rt6i_dst.addr = *addr; 33771da177e4SLinus Torvalds rt->rt6i_dst.plen = 128; 3378ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3379ca254490SDavid Ahern rt->rt6i_table = fib6_get_table(net, tb_id); 33801da177e4SLinus Torvalds 33811da177e4SLinus Torvalds return rt; 33821da177e4SLinus Torvalds } 33831da177e4SLinus Torvalds 3384c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3385c3968a85SDaniel Walter struct arg_dev_net_ip { 3386c3968a85SDaniel Walter struct net_device *dev; 3387c3968a85SDaniel Walter struct net *net; 3388c3968a85SDaniel Walter struct in6_addr *addr; 3389c3968a85SDaniel Walter }; 3390c3968a85SDaniel Walter 3391c3968a85SDaniel Walter static int fib6_remove_prefsrc(struct rt6_info *rt, void *arg) 3392c3968a85SDaniel Walter { 3393c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3394c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3395c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3396c3968a85SDaniel Walter 3397d1918542SDavid S. Miller if (((void *)rt->dst.dev == dev || !dev) && 3398c3968a85SDaniel Walter rt != net->ipv6.ip6_null_entry && 3399c3968a85SDaniel Walter ipv6_addr_equal(addr, &rt->rt6i_prefsrc.addr)) { 340060006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3401c3968a85SDaniel Walter /* remove prefsrc entry */ 3402c3968a85SDaniel Walter rt->rt6i_prefsrc.plen = 0; 340360006a48SWei Wang /* need to update cache as well */ 340460006a48SWei Wang rt6_exceptions_remove_prefsrc(rt); 340560006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3406c3968a85SDaniel Walter } 3407c3968a85SDaniel Walter return 0; 3408c3968a85SDaniel Walter } 3409c3968a85SDaniel Walter 3410c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3411c3968a85SDaniel Walter { 3412c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3413c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3414c3968a85SDaniel Walter .dev = ifp->idev->dev, 3415c3968a85SDaniel Walter .net = net, 3416c3968a85SDaniel Walter .addr = &ifp->addr, 3417c3968a85SDaniel Walter }; 34180c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3419c3968a85SDaniel Walter } 3420c3968a85SDaniel Walter 3421be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3422be7a010dSDuan Jiong 3423be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 3424be7a010dSDuan Jiong static int fib6_clean_tohost(struct rt6_info *rt, void *arg) 3425be7a010dSDuan Jiong { 3426be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3427be7a010dSDuan Jiong 34282b760fcfSWei Wang if (((rt->rt6i_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3429be7a010dSDuan Jiong ipv6_addr_equal(gateway, &rt->rt6i_gateway)) { 3430be7a010dSDuan Jiong return -1; 3431be7a010dSDuan Jiong } 3432b16cb459SWei Wang 3433b16cb459SWei Wang /* Further clean up cached routes in exception table. 3434b16cb459SWei Wang * This is needed because cached route may have a different 3435b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3436b16cb459SWei Wang */ 3437b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3438b16cb459SWei Wang 3439be7a010dSDuan Jiong return 0; 3440be7a010dSDuan Jiong } 3441be7a010dSDuan Jiong 3442be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3443be7a010dSDuan Jiong { 3444be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3445be7a010dSDuan Jiong } 3446be7a010dSDuan Jiong 34478ed67789SDaniel Lezcano struct arg_dev_net { 34488ed67789SDaniel Lezcano struct net_device *dev; 34498ed67789SDaniel Lezcano struct net *net; 34508ed67789SDaniel Lezcano }; 34518ed67789SDaniel Lezcano 3452a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 34531da177e4SLinus Torvalds static int fib6_ifdown(struct rt6_info *rt, void *arg) 34541da177e4SLinus Torvalds { 3455bc3ef660Sstephen hemminger const struct arg_dev_net *adn = arg; 3456bc3ef660Sstephen hemminger const struct net_device *dev = adn->dev; 34578ed67789SDaniel Lezcano 3458d1918542SDavid S. Miller if ((rt->dst.dev == dev || !dev) && 3459a1a22c12SDavid Ahern rt != adn->net->ipv6.ip6_null_entry && 3460a1a22c12SDavid Ahern (rt->rt6i_nsiblings == 0 || 34618397ed36SDavid Ahern (dev && netdev_unregistering(dev)) || 3462a1a22c12SDavid Ahern !rt->rt6i_idev->cnf.ignore_routes_with_linkdown)) 34631da177e4SLinus Torvalds return -1; 3464c159d30cSDavid S. Miller 34651da177e4SLinus Torvalds return 0; 34661da177e4SLinus Torvalds } 34671da177e4SLinus Torvalds 3468f3db4851SDaniel Lezcano void rt6_ifdown(struct net *net, struct net_device *dev) 34691da177e4SLinus Torvalds { 34708ed67789SDaniel Lezcano struct arg_dev_net adn = { 34718ed67789SDaniel Lezcano .dev = dev, 34728ed67789SDaniel Lezcano .net = net, 34738ed67789SDaniel Lezcano }; 34748ed67789SDaniel Lezcano 34750c3584d5SLi RongQing fib6_clean_all(net, fib6_ifdown, &adn); 3476e332bc67SEric W. Biederman if (dev) 34778d0b94afSMartin KaFai Lau rt6_uncached_list_flush_dev(net, dev); 34781da177e4SLinus Torvalds } 34791da177e4SLinus Torvalds 348095c96174SEric Dumazet struct rt6_mtu_change_arg { 34811da177e4SLinus Torvalds struct net_device *dev; 348295c96174SEric Dumazet unsigned int mtu; 34831da177e4SLinus Torvalds }; 34841da177e4SLinus Torvalds 34851da177e4SLinus Torvalds static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg) 34861da177e4SLinus Torvalds { 34871da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 34881da177e4SLinus Torvalds struct inet6_dev *idev; 34891da177e4SLinus Torvalds 34901da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 34911da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 34921da177e4SLinus Torvalds We still use this lock to block changes 34931da177e4SLinus Torvalds caused by addrconf/ndisc. 34941da177e4SLinus Torvalds */ 34951da177e4SLinus Torvalds 34961da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 349738308473SDavid S. Miller if (!idev) 34981da177e4SLinus Torvalds return 0; 34991da177e4SLinus Torvalds 35001da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 35011da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 35021da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 35031da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 35041da177e4SLinus Torvalds */ 35051da177e4SLinus Torvalds /* 35061da177e4SLinus Torvalds If new MTU is less than route PMTU, this new MTU will be the 35071da177e4SLinus Torvalds lowest MTU in the path, update the route PMTU to reflect PMTU 35081da177e4SLinus Torvalds decreases; if new MTU is greater than route PMTU, and the 35091da177e4SLinus Torvalds old MTU is the lowest MTU in the path, update the route PMTU 35101da177e4SLinus Torvalds to reflect the increase. In this case if the other nodes' MTU 35111da177e4SLinus Torvalds also have the lowest MTU, TOO BIG MESSAGE will be lead to 351267c408cfSAlexander Alemayhu PMTU discovery. 35131da177e4SLinus Torvalds */ 3514d1918542SDavid S. Miller if (rt->dst.dev == arg->dev && 3515fb56be83SMaciej Żenczykowski dst_metric_raw(&rt->dst, RTAX_MTU) && 35164b32b5adSMartin KaFai Lau !dst_metric_locked(&rt->dst, RTAX_MTU)) { 3517f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 35182b760fcfSWei Wang if (dst_mtu(&rt->dst) >= arg->mtu || 3519d8d1f30bSChangli Gao (dst_mtu(&rt->dst) < arg->mtu && 35204b32b5adSMartin KaFai Lau dst_mtu(&rt->dst) == idev->cnf.mtu6)) { 3521defb3519SDavid S. Miller dst_metric_set(&rt->dst, RTAX_MTU, arg->mtu); 3522566cfd8fSSimon Arlott } 3523f5bbe7eeSWei Wang rt6_exceptions_update_pmtu(rt, arg->mtu); 3524f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 35254b32b5adSMartin KaFai Lau } 35261da177e4SLinus Torvalds return 0; 35271da177e4SLinus Torvalds } 35281da177e4SLinus Torvalds 352995c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 35301da177e4SLinus Torvalds { 3531c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 3532c71099acSThomas Graf .dev = dev, 3533c71099acSThomas Graf .mtu = mtu, 3534c71099acSThomas Graf }; 35351da177e4SLinus Torvalds 35360c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 35371da177e4SLinus Torvalds } 35381da177e4SLinus Torvalds 3539ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 35405176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 354186872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 3542ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 354386872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 354486872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 354551ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 3546c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 354719e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 354819e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 354932bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 3550622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 35513b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 355286872cb5SThomas Graf }; 355386872cb5SThomas Graf 355486872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 3555333c4301SDavid Ahern struct fib6_config *cfg, 3556333c4301SDavid Ahern struct netlink_ext_ack *extack) 35571da177e4SLinus Torvalds { 355886872cb5SThomas Graf struct rtmsg *rtm; 355986872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 3560c78ba6d6SLubomir Rintel unsigned int pref; 356186872cb5SThomas Graf int err; 35621da177e4SLinus Torvalds 3563fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 3564fceb6435SJohannes Berg NULL); 356586872cb5SThomas Graf if (err < 0) 356686872cb5SThomas Graf goto errout; 35671da177e4SLinus Torvalds 356886872cb5SThomas Graf err = -EINVAL; 356986872cb5SThomas Graf rtm = nlmsg_data(nlh); 357086872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 357186872cb5SThomas Graf 357286872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 357386872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 357486872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 357586872cb5SThomas Graf cfg->fc_flags = RTF_UP; 357686872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 3577ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 357886872cb5SThomas Graf 3579ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 3580ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 3581b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 3582b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 358386872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 358486872cb5SThomas Graf 3585ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 3586ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 3587ab79ad14SMaciej Żenczykowski 35881f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 35891f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 35901f56a01fSMartin KaFai Lau 359115e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 359286872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 35933b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 359486872cb5SThomas Graf 359586872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 359667b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 359786872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 35981da177e4SLinus Torvalds } 359986872cb5SThomas Graf 360086872cb5SThomas Graf if (tb[RTA_DST]) { 360186872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 360286872cb5SThomas Graf 360386872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 360486872cb5SThomas Graf goto errout; 360586872cb5SThomas Graf 360686872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 36071da177e4SLinus Torvalds } 360886872cb5SThomas Graf 360986872cb5SThomas Graf if (tb[RTA_SRC]) { 361086872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 361186872cb5SThomas Graf 361286872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 361386872cb5SThomas Graf goto errout; 361486872cb5SThomas Graf 361586872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 36161da177e4SLinus Torvalds } 361786872cb5SThomas Graf 3618c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 361967b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 3620c3968a85SDaniel Walter 362186872cb5SThomas Graf if (tb[RTA_OIF]) 362286872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 362386872cb5SThomas Graf 362486872cb5SThomas Graf if (tb[RTA_PRIORITY]) 362586872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 362686872cb5SThomas Graf 362786872cb5SThomas Graf if (tb[RTA_METRICS]) { 362886872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 362986872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 36301da177e4SLinus Torvalds } 363186872cb5SThomas Graf 363286872cb5SThomas Graf if (tb[RTA_TABLE]) 363386872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 363486872cb5SThomas Graf 363551ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 363651ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 363751ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 36389ed59592SDavid Ahern 36399ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 3640c255bd68SDavid Ahern cfg->fc_mp_len, extack); 36419ed59592SDavid Ahern if (err < 0) 36429ed59592SDavid Ahern goto errout; 364351ebd318SNicolas Dichtel } 364451ebd318SNicolas Dichtel 3645c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 3646c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 3647c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 3648c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 3649c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 3650c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 3651c78ba6d6SLubomir Rintel } 3652c78ba6d6SLubomir Rintel 365319e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 365419e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 365519e42e45SRoopa Prabhu 36569ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 365719e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 365819e42e45SRoopa Prabhu 3659c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 36609ed59592SDavid Ahern if (err < 0) 36619ed59592SDavid Ahern goto errout; 36629ed59592SDavid Ahern } 36639ed59592SDavid Ahern 366432bc201eSXin Long if (tb[RTA_EXPIRES]) { 366532bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 366632bc201eSXin Long 366732bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 366832bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 366932bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 367032bc201eSXin Long } 367132bc201eSXin Long } 367232bc201eSXin Long 367386872cb5SThomas Graf err = 0; 367486872cb5SThomas Graf errout: 367586872cb5SThomas Graf return err; 36761da177e4SLinus Torvalds } 36771da177e4SLinus Torvalds 36786b9ea5a6SRoopa Prabhu struct rt6_nh { 36796b9ea5a6SRoopa Prabhu struct rt6_info *rt6_info; 36806b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 36816b9ea5a6SRoopa Prabhu struct mx6_config mxc; 36826b9ea5a6SRoopa Prabhu struct list_head next; 36836b9ea5a6SRoopa Prabhu }; 36846b9ea5a6SRoopa Prabhu 36856b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 36866b9ea5a6SRoopa Prabhu { 36876b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 36886b9ea5a6SRoopa Prabhu 36896b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 36907d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 36916b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 36926b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 36936b9ea5a6SRoopa Prabhu } 36946b9ea5a6SRoopa Prabhu } 36956b9ea5a6SRoopa Prabhu 36966b9ea5a6SRoopa Prabhu static int ip6_route_info_append(struct list_head *rt6_nh_list, 36976b9ea5a6SRoopa Prabhu struct rt6_info *rt, struct fib6_config *r_cfg) 36986b9ea5a6SRoopa Prabhu { 36996b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 37006b9ea5a6SRoopa Prabhu int err = -EEXIST; 37016b9ea5a6SRoopa Prabhu 37026b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 37036b9ea5a6SRoopa Prabhu /* check if rt6_info already exists */ 3704f06b7549SDavid Ahern if (rt6_duplicate_nexthop(nh->rt6_info, rt)) 37056b9ea5a6SRoopa Prabhu return err; 37066b9ea5a6SRoopa Prabhu } 37076b9ea5a6SRoopa Prabhu 37086b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 37096b9ea5a6SRoopa Prabhu if (!nh) 37106b9ea5a6SRoopa Prabhu return -ENOMEM; 37116b9ea5a6SRoopa Prabhu nh->rt6_info = rt; 37126b9ea5a6SRoopa Prabhu err = ip6_convert_metrics(&nh->mxc, r_cfg); 37136b9ea5a6SRoopa Prabhu if (err) { 37146b9ea5a6SRoopa Prabhu kfree(nh); 37156b9ea5a6SRoopa Prabhu return err; 37166b9ea5a6SRoopa Prabhu } 37176b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 37186b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 37196b9ea5a6SRoopa Prabhu 37206b9ea5a6SRoopa Prabhu return 0; 37216b9ea5a6SRoopa Prabhu } 37226b9ea5a6SRoopa Prabhu 37233b1137feSDavid Ahern static void ip6_route_mpath_notify(struct rt6_info *rt, 37243b1137feSDavid Ahern struct rt6_info *rt_last, 37253b1137feSDavid Ahern struct nl_info *info, 37263b1137feSDavid Ahern __u16 nlflags) 37273b1137feSDavid Ahern { 37283b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 37293b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 37303b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 37313b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 37323b1137feSDavid Ahern * the list, find the first sibling of the last route appended 37333b1137feSDavid Ahern */ 37343b1137feSDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->rt6i_nsiblings) { 37353b1137feSDavid Ahern rt = list_first_entry(&rt_last->rt6i_siblings, 37363b1137feSDavid Ahern struct rt6_info, 37373b1137feSDavid Ahern rt6i_siblings); 37383b1137feSDavid Ahern } 37393b1137feSDavid Ahern 37403b1137feSDavid Ahern if (rt) 37413b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 37423b1137feSDavid Ahern } 37433b1137feSDavid Ahern 3744333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 3745333c4301SDavid Ahern struct netlink_ext_ack *extack) 374651ebd318SNicolas Dichtel { 37473b1137feSDavid Ahern struct rt6_info *rt_notif = NULL, *rt_last = NULL; 37483b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 374951ebd318SNicolas Dichtel struct fib6_config r_cfg; 375051ebd318SNicolas Dichtel struct rtnexthop *rtnh; 37516b9ea5a6SRoopa Prabhu struct rt6_info *rt; 37526b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 37536b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 37543b1137feSDavid Ahern __u16 nlflags; 375551ebd318SNicolas Dichtel int remaining; 375651ebd318SNicolas Dichtel int attrlen; 37576b9ea5a6SRoopa Prabhu int err = 1; 37586b9ea5a6SRoopa Prabhu int nhn = 0; 37596b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 37606b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 37616b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 376251ebd318SNicolas Dichtel 37633b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 37643b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 37653b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 37663b1137feSDavid Ahern 376735f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 376851ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 376951ebd318SNicolas Dichtel 37706b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 37716b9ea5a6SRoopa Prabhu * rt6_info structs per nexthop 37726b9ea5a6SRoopa Prabhu */ 377351ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 377451ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 377551ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 377651ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 377751ebd318SNicolas Dichtel 377851ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 377951ebd318SNicolas Dichtel if (attrlen > 0) { 378051ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 378151ebd318SNicolas Dichtel 378251ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 378351ebd318SNicolas Dichtel if (nla) { 378467b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 378551ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 378651ebd318SNicolas Dichtel } 378719e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 378819e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 378919e42e45SRoopa Prabhu if (nla) 379019e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 379151ebd318SNicolas Dichtel } 37926b9ea5a6SRoopa Prabhu 3793333c4301SDavid Ahern rt = ip6_route_info_create(&r_cfg, extack); 37948c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 37958c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 37968c5b83f0SRoopa Prabhu rt = NULL; 37976b9ea5a6SRoopa Prabhu goto cleanup; 37988c5b83f0SRoopa Prabhu } 37996b9ea5a6SRoopa Prabhu 38006b9ea5a6SRoopa Prabhu err = ip6_route_info_append(&rt6_nh_list, rt, &r_cfg); 380151ebd318SNicolas Dichtel if (err) { 3802587fea74SWei Wang dst_release_immediate(&rt->dst); 38036b9ea5a6SRoopa Prabhu goto cleanup; 380451ebd318SNicolas Dichtel } 38056b9ea5a6SRoopa Prabhu 38066b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 380751ebd318SNicolas Dichtel } 38086b9ea5a6SRoopa Prabhu 38093b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 38103b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 38113b1137feSDavid Ahern * the full route when done 38123b1137feSDavid Ahern */ 38133b1137feSDavid Ahern info->skip_notify = 1; 38143b1137feSDavid Ahern 38156b9ea5a6SRoopa Prabhu err_nh = NULL; 38166b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 38173b1137feSDavid Ahern rt_last = nh->rt6_info; 3818333c4301SDavid Ahern err = __ip6_ins_rt(nh->rt6_info, info, &nh->mxc, extack); 38193b1137feSDavid Ahern /* save reference to first route for notification */ 38203b1137feSDavid Ahern if (!rt_notif && !err) 38213b1137feSDavid Ahern rt_notif = nh->rt6_info; 38223b1137feSDavid Ahern 38236b9ea5a6SRoopa Prabhu /* nh->rt6_info is used or freed at this point, reset to NULL*/ 38246b9ea5a6SRoopa Prabhu nh->rt6_info = NULL; 38256b9ea5a6SRoopa Prabhu if (err) { 38266b9ea5a6SRoopa Prabhu if (replace && nhn) 38276b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 38286b9ea5a6SRoopa Prabhu err_nh = nh; 38296b9ea5a6SRoopa Prabhu goto add_errout; 38306b9ea5a6SRoopa Prabhu } 38316b9ea5a6SRoopa Prabhu 38321a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 383327596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 383427596472SMichal Kubeček * we have already failed to add the first nexthop: 383527596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 383627596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 383727596472SMichal Kubeček * be added to it. 38381a72418bSNicolas Dichtel */ 383927596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 384027596472SMichal Kubeček NLM_F_REPLACE); 38416b9ea5a6SRoopa Prabhu nhn++; 38426b9ea5a6SRoopa Prabhu } 38436b9ea5a6SRoopa Prabhu 38443b1137feSDavid Ahern /* success ... tell user about new route */ 38453b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 38466b9ea5a6SRoopa Prabhu goto cleanup; 38476b9ea5a6SRoopa Prabhu 38486b9ea5a6SRoopa Prabhu add_errout: 38493b1137feSDavid Ahern /* send notification for routes that were added so that 38503b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 38513b1137feSDavid Ahern * coherent 38523b1137feSDavid Ahern */ 38533b1137feSDavid Ahern if (rt_notif) 38543b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 38553b1137feSDavid Ahern 38566b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 38576b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 38586b9ea5a6SRoopa Prabhu if (err_nh == nh) 38596b9ea5a6SRoopa Prabhu break; 3860333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 38616b9ea5a6SRoopa Prabhu } 38626b9ea5a6SRoopa Prabhu 38636b9ea5a6SRoopa Prabhu cleanup: 38646b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 3865587fea74SWei Wang if (nh->rt6_info) 3866587fea74SWei Wang dst_release_immediate(&nh->rt6_info->dst); 38676b9ea5a6SRoopa Prabhu kfree(nh->mxc.mx); 38686b9ea5a6SRoopa Prabhu list_del(&nh->next); 38696b9ea5a6SRoopa Prabhu kfree(nh); 38706b9ea5a6SRoopa Prabhu } 38716b9ea5a6SRoopa Prabhu 38726b9ea5a6SRoopa Prabhu return err; 38736b9ea5a6SRoopa Prabhu } 38746b9ea5a6SRoopa Prabhu 3875333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 3876333c4301SDavid Ahern struct netlink_ext_ack *extack) 38776b9ea5a6SRoopa Prabhu { 38786b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 38796b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 38806b9ea5a6SRoopa Prabhu int remaining; 38816b9ea5a6SRoopa Prabhu int attrlen; 38826b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 38836b9ea5a6SRoopa Prabhu 38846b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 38856b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 38866b9ea5a6SRoopa Prabhu 38876b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 38886b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 38896b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 38906b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 38916b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 38926b9ea5a6SRoopa Prabhu 38936b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 38946b9ea5a6SRoopa Prabhu if (attrlen > 0) { 38956b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 38966b9ea5a6SRoopa Prabhu 38976b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 38986b9ea5a6SRoopa Prabhu if (nla) { 38996b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 39006b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 39016b9ea5a6SRoopa Prabhu } 39026b9ea5a6SRoopa Prabhu } 3903333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 39046b9ea5a6SRoopa Prabhu if (err) 39056b9ea5a6SRoopa Prabhu last_err = err; 39066b9ea5a6SRoopa Prabhu 390751ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 390851ebd318SNicolas Dichtel } 390951ebd318SNicolas Dichtel 391051ebd318SNicolas Dichtel return last_err; 391151ebd318SNicolas Dichtel } 391251ebd318SNicolas Dichtel 3913c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 3914c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 39151da177e4SLinus Torvalds { 391686872cb5SThomas Graf struct fib6_config cfg; 391786872cb5SThomas Graf int err; 39181da177e4SLinus Torvalds 3919333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 392086872cb5SThomas Graf if (err < 0) 392186872cb5SThomas Graf return err; 392286872cb5SThomas Graf 392351ebd318SNicolas Dichtel if (cfg.fc_mp) 3924333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 39250ae81335SDavid Ahern else { 39260ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 3927333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 39281da177e4SLinus Torvalds } 39290ae81335SDavid Ahern } 39301da177e4SLinus Torvalds 3931c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 3932c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 39331da177e4SLinus Torvalds { 393486872cb5SThomas Graf struct fib6_config cfg; 393586872cb5SThomas Graf int err; 39361da177e4SLinus Torvalds 3937333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 393886872cb5SThomas Graf if (err < 0) 393986872cb5SThomas Graf return err; 394086872cb5SThomas Graf 394151ebd318SNicolas Dichtel if (cfg.fc_mp) 3942333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 394351ebd318SNicolas Dichtel else 3944333c4301SDavid Ahern return ip6_route_add(&cfg, extack); 39451da177e4SLinus Torvalds } 39461da177e4SLinus Torvalds 3947beb1afacSDavid Ahern static size_t rt6_nlmsg_size(struct rt6_info *rt) 3948339bf98fSThomas Graf { 3949beb1afacSDavid Ahern int nexthop_len = 0; 3950beb1afacSDavid Ahern 3951beb1afacSDavid Ahern if (rt->rt6i_nsiblings) { 3952beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 3953beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 3954beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 3955beb1afacSDavid Ahern + lwtunnel_get_encap_size(rt->dst.lwtstate); 3956beb1afacSDavid Ahern 3957beb1afacSDavid Ahern nexthop_len *= rt->rt6i_nsiblings; 3958beb1afacSDavid Ahern } 3959beb1afacSDavid Ahern 3960339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 3961339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 3962339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 3963339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 3964339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 3965339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 3966339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 3967339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 3968339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 39696a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 3970ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 3971c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 397219e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 3973beb1afacSDavid Ahern + lwtunnel_get_encap_size(rt->dst.lwtstate) 3974beb1afacSDavid Ahern + nexthop_len; 3975beb1afacSDavid Ahern } 3976beb1afacSDavid Ahern 3977beb1afacSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct rt6_info *rt, 39785be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 3979beb1afacSDavid Ahern { 3980beb1afacSDavid Ahern if (!netif_running(rt->dst.dev) || !netif_carrier_ok(rt->dst.dev)) { 3981beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 3982beb1afacSDavid Ahern if (rt->rt6i_idev->cnf.ignore_routes_with_linkdown) 3983beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 3984beb1afacSDavid Ahern } 3985beb1afacSDavid Ahern 3986beb1afacSDavid Ahern if (rt->rt6i_flags & RTF_GATEWAY) { 3987beb1afacSDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->rt6i_gateway) < 0) 3988beb1afacSDavid Ahern goto nla_put_failure; 3989beb1afacSDavid Ahern } 3990beb1afacSDavid Ahern 3991fe400799SIdo Schimmel if (rt->rt6i_nh_flags & RTNH_F_OFFLOAD) 399261e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 399361e4d01eSIdo Schimmel 39945be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 39955be083ceSDavid Ahern if (!skip_oif && rt->dst.dev && 3996beb1afacSDavid Ahern nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex)) 3997beb1afacSDavid Ahern goto nla_put_failure; 3998beb1afacSDavid Ahern 3999beb1afacSDavid Ahern if (rt->dst.lwtstate && 4000beb1afacSDavid Ahern lwtunnel_fill_encap(skb, rt->dst.lwtstate) < 0) 4001beb1afacSDavid Ahern goto nla_put_failure; 4002beb1afacSDavid Ahern 4003beb1afacSDavid Ahern return 0; 4004beb1afacSDavid Ahern 4005beb1afacSDavid Ahern nla_put_failure: 4006beb1afacSDavid Ahern return -EMSGSIZE; 4007beb1afacSDavid Ahern } 4008beb1afacSDavid Ahern 40095be083ceSDavid Ahern /* add multipath next hop */ 4010beb1afacSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct rt6_info *rt) 4011beb1afacSDavid Ahern { 4012beb1afacSDavid Ahern struct rtnexthop *rtnh; 4013beb1afacSDavid Ahern unsigned int flags = 0; 4014beb1afacSDavid Ahern 4015beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4016beb1afacSDavid Ahern if (!rtnh) 4017beb1afacSDavid Ahern goto nla_put_failure; 4018beb1afacSDavid Ahern 4019beb1afacSDavid Ahern rtnh->rtnh_hops = 0; 4020beb1afacSDavid Ahern rtnh->rtnh_ifindex = rt->dst.dev ? rt->dst.dev->ifindex : 0; 4021beb1afacSDavid Ahern 40225be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4023beb1afacSDavid Ahern goto nla_put_failure; 4024beb1afacSDavid Ahern 4025beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4026beb1afacSDavid Ahern 4027beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4028beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4029beb1afacSDavid Ahern 4030beb1afacSDavid Ahern return 0; 4031beb1afacSDavid Ahern 4032beb1afacSDavid Ahern nla_put_failure: 4033beb1afacSDavid Ahern return -EMSGSIZE; 4034339bf98fSThomas Graf } 4035339bf98fSThomas Graf 4036191cd582SBrian Haley static int rt6_fill_node(struct net *net, 4037191cd582SBrian Haley struct sk_buff *skb, struct rt6_info *rt, 40380d51aa80SJamal Hadi Salim struct in6_addr *dst, struct in6_addr *src, 403915e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4040f8cfe2ceSDavid Ahern unsigned int flags) 40411da177e4SLinus Torvalds { 40424b32b5adSMartin KaFai Lau u32 metrics[RTAX_MAX]; 40431da177e4SLinus Torvalds struct rtmsg *rtm; 40441da177e4SLinus Torvalds struct nlmsghdr *nlh; 4045e3703b3dSThomas Graf long expires; 40469e762a4aSPatrick McHardy u32 table; 40471da177e4SLinus Torvalds 404815e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 404938308473SDavid S. Miller if (!nlh) 405026932566SPatrick McHardy return -EMSGSIZE; 40512d7202bfSThomas Graf 40522d7202bfSThomas Graf rtm = nlmsg_data(nlh); 40531da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 40541da177e4SLinus Torvalds rtm->rtm_dst_len = rt->rt6i_dst.plen; 40551da177e4SLinus Torvalds rtm->rtm_src_len = rt->rt6i_src.plen; 40561da177e4SLinus Torvalds rtm->rtm_tos = 0; 4057c71099acSThomas Graf if (rt->rt6i_table) 40589e762a4aSPatrick McHardy table = rt->rt6i_table->tb6_id; 4059c71099acSThomas Graf else 40609e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 40619e762a4aSPatrick McHardy rtm->rtm_table = table; 4062c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4063c78679e8SDavid S. Miller goto nla_put_failure; 4064ef2c7d7bSNicolas Dichtel if (rt->rt6i_flags & RTF_REJECT) { 4065ef2c7d7bSNicolas Dichtel switch (rt->dst.error) { 4066ef2c7d7bSNicolas Dichtel case -EINVAL: 4067ef2c7d7bSNicolas Dichtel rtm->rtm_type = RTN_BLACKHOLE; 4068ef2c7d7bSNicolas Dichtel break; 4069ef2c7d7bSNicolas Dichtel case -EACCES: 4070ef2c7d7bSNicolas Dichtel rtm->rtm_type = RTN_PROHIBIT; 4071ef2c7d7bSNicolas Dichtel break; 4072b4949ab2SNicolas Dichtel case -EAGAIN: 4073b4949ab2SNicolas Dichtel rtm->rtm_type = RTN_THROW; 4074b4949ab2SNicolas Dichtel break; 4075ef2c7d7bSNicolas Dichtel default: 40761da177e4SLinus Torvalds rtm->rtm_type = RTN_UNREACHABLE; 4077ef2c7d7bSNicolas Dichtel break; 4078ef2c7d7bSNicolas Dichtel } 4079ef2c7d7bSNicolas Dichtel } 4080ab79ad14SMaciej Żenczykowski else if (rt->rt6i_flags & RTF_LOCAL) 4081ab79ad14SMaciej Żenczykowski rtm->rtm_type = RTN_LOCAL; 40824ee39733SDavid Ahern else if (rt->rt6i_flags & RTF_ANYCAST) 40834ee39733SDavid Ahern rtm->rtm_type = RTN_ANYCAST; 4084d1918542SDavid S. Miller else if (rt->dst.dev && (rt->dst.dev->flags & IFF_LOOPBACK)) 40851da177e4SLinus Torvalds rtm->rtm_type = RTN_LOCAL; 40861da177e4SLinus Torvalds else 40871da177e4SLinus Torvalds rtm->rtm_type = RTN_UNICAST; 40881da177e4SLinus Torvalds rtm->rtm_flags = 0; 40891da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 40901da177e4SLinus Torvalds rtm->rtm_protocol = rt->rt6i_protocol; 40911da177e4SLinus Torvalds 40921da177e4SLinus Torvalds if (rt->rt6i_flags & RTF_CACHE) 40931da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 40941da177e4SLinus Torvalds 40951da177e4SLinus Torvalds if (dst) { 4096930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_DST, dst)) 4097c78679e8SDavid S. Miller goto nla_put_failure; 40981da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 40991da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 4100930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_DST, &rt->rt6i_dst.addr)) 4101c78679e8SDavid S. Miller goto nla_put_failure; 41021da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 41031da177e4SLinus Torvalds if (src) { 4104930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4105c78679e8SDavid S. Miller goto nla_put_failure; 41061da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4107c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 4108930345eaSJiri Benc nla_put_in6_addr(skb, RTA_SRC, &rt->rt6i_src.addr)) 4109c78679e8SDavid S. Miller goto nla_put_failure; 41101da177e4SLinus Torvalds #endif 41117bc570c8SYOSHIFUJI Hideaki if (iif) { 41127bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 41137bc570c8SYOSHIFUJI Hideaki if (ipv6_addr_is_multicast(&rt->rt6i_dst.addr)) { 4114fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 41152cf75070SNikolay Aleksandrov 41167bc570c8SYOSHIFUJI Hideaki if (err == 0) 41177bc570c8SYOSHIFUJI Hideaki return 0; 4118fd61c6baSDavid Ahern if (err < 0) 41197bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 41207bc570c8SYOSHIFUJI Hideaki } else 41217bc570c8SYOSHIFUJI Hideaki #endif 4122c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4123c78679e8SDavid S. Miller goto nla_put_failure; 41247bc570c8SYOSHIFUJI Hideaki } else if (dst) { 41251da177e4SLinus Torvalds struct in6_addr saddr_buf; 4126c78679e8SDavid S. Miller if (ip6_route_get_saddr(net, rt, dst, 0, &saddr_buf) == 0 && 4127930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4128c78679e8SDavid S. Miller goto nla_put_failure; 4129c3968a85SDaniel Walter } 4130c3968a85SDaniel Walter 4131c3968a85SDaniel Walter if (rt->rt6i_prefsrc.plen) { 4132c3968a85SDaniel Walter struct in6_addr saddr_buf; 41334e3fd7a0SAlexey Dobriyan saddr_buf = rt->rt6i_prefsrc.addr; 4134930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4135c78679e8SDavid S. Miller goto nla_put_failure; 41361da177e4SLinus Torvalds } 41372d7202bfSThomas Graf 41384b32b5adSMartin KaFai Lau memcpy(metrics, dst_metrics_ptr(&rt->dst), sizeof(metrics)); 41394b32b5adSMartin KaFai Lau if (rt->rt6i_pmtu) 41404b32b5adSMartin KaFai Lau metrics[RTAX_MTU - 1] = rt->rt6i_pmtu; 41414b32b5adSMartin KaFai Lau if (rtnetlink_put_metrics(skb, metrics) < 0) 41422d7202bfSThomas Graf goto nla_put_failure; 41432d7202bfSThomas Graf 4144beb1afacSDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->rt6i_metric)) 4145beb1afacSDavid Ahern goto nla_put_failure; 4146beb1afacSDavid Ahern 4147beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4148beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4149beb1afacSDavid Ahern */ 4150beb1afacSDavid Ahern if (rt->rt6i_nsiblings) { 4151beb1afacSDavid Ahern struct rt6_info *sibling, *next_sibling; 4152beb1afacSDavid Ahern struct nlattr *mp; 4153beb1afacSDavid Ahern 4154beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4155beb1afacSDavid Ahern if (!mp) 4156beb1afacSDavid Ahern goto nla_put_failure; 4157beb1afacSDavid Ahern 4158beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4159beb1afacSDavid Ahern goto nla_put_failure; 4160beb1afacSDavid Ahern 4161beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 4162beb1afacSDavid Ahern &rt->rt6i_siblings, rt6i_siblings) { 4163beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 416494f826b8SEric Dumazet goto nla_put_failure; 416594f826b8SEric Dumazet } 41662d7202bfSThomas Graf 4167beb1afacSDavid Ahern nla_nest_end(skb, mp); 4168beb1afacSDavid Ahern } else { 41695be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4170c78679e8SDavid S. Miller goto nla_put_failure; 4171beb1afacSDavid Ahern } 41728253947eSLi Wei 41738253947eSLi Wei expires = (rt->rt6i_flags & RTF_EXPIRES) ? rt->dst.expires - jiffies : 0; 417469cdf8f9SYOSHIFUJI Hideaki 417587a50699SDavid S. Miller if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, rt->dst.error) < 0) 4176e3703b3dSThomas Graf goto nla_put_failure; 41771da177e4SLinus Torvalds 4178c78ba6d6SLubomir Rintel if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->rt6i_flags))) 4179c78ba6d6SLubomir Rintel goto nla_put_failure; 4180c78ba6d6SLubomir Rintel 418119e42e45SRoopa Prabhu 4182053c095aSJohannes Berg nlmsg_end(skb, nlh); 4183053c095aSJohannes Berg return 0; 41842d7202bfSThomas Graf 41852d7202bfSThomas Graf nla_put_failure: 418626932566SPatrick McHardy nlmsg_cancel(skb, nlh); 418726932566SPatrick McHardy return -EMSGSIZE; 41881da177e4SLinus Torvalds } 41891da177e4SLinus Torvalds 41901b43af54SPatrick McHardy int rt6_dump_route(struct rt6_info *rt, void *p_arg) 41911da177e4SLinus Torvalds { 41921da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 41931f17e2f2SDavid Ahern struct net *net = arg->net; 41941f17e2f2SDavid Ahern 41951f17e2f2SDavid Ahern if (rt == net->ipv6.ip6_null_entry) 41961f17e2f2SDavid Ahern return 0; 41971da177e4SLinus Torvalds 41982d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 41992d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4200f8cfe2ceSDavid Ahern 4201f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4202f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 4203f8cfe2ceSDavid Ahern !(rt->rt6i_flags & RTF_PREFIX_RT)) { 4204f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4205f8cfe2ceSDavid Ahern return 1; 4206f8cfe2ceSDavid Ahern } 4207f8cfe2ceSDavid Ahern } 42081da177e4SLinus Torvalds 42091f17e2f2SDavid Ahern return rt6_fill_node(net, 4210191cd582SBrian Haley arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE, 421115e47304SEric W. Biederman NETLINK_CB(arg->cb->skb).portid, arg->cb->nlh->nlmsg_seq, 4212f8cfe2ceSDavid Ahern NLM_F_MULTI); 42131da177e4SLinus Torvalds } 42141da177e4SLinus Torvalds 4215c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4216c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 42171da177e4SLinus Torvalds { 42183b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4219ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 422018c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 422118c3a61cSRoopa Prabhu struct dst_entry *dst; 42221da177e4SLinus Torvalds struct rt6_info *rt; 4223ab364a6fSThomas Graf struct sk_buff *skb; 4224ab364a6fSThomas Graf struct rtmsg *rtm; 42254c9483b2SDavid S. Miller struct flowi6 fl6; 422618c3a61cSRoopa Prabhu bool fibmatch; 4227ab364a6fSThomas Graf 4228fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4229c21ef3e3SDavid Ahern extack); 4230ab364a6fSThomas Graf if (err < 0) 4231ab364a6fSThomas Graf goto errout; 4232ab364a6fSThomas Graf 4233ab364a6fSThomas Graf err = -EINVAL; 42344c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 423538b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 423638b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 423718c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4238ab364a6fSThomas Graf 4239ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4240ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4241ab364a6fSThomas Graf goto errout; 4242ab364a6fSThomas Graf 42434e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4244ab364a6fSThomas Graf } 4245ab364a6fSThomas Graf 4246ab364a6fSThomas Graf if (tb[RTA_DST]) { 4247ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4248ab364a6fSThomas Graf goto errout; 4249ab364a6fSThomas Graf 42504e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4251ab364a6fSThomas Graf } 4252ab364a6fSThomas Graf 4253ab364a6fSThomas Graf if (tb[RTA_IIF]) 4254ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4255ab364a6fSThomas Graf 4256ab364a6fSThomas Graf if (tb[RTA_OIF]) 425772331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4258ab364a6fSThomas Graf 42592e47b291SLorenzo Colitti if (tb[RTA_MARK]) 42602e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 42612e47b291SLorenzo Colitti 4262622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4263622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4264622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4265622ec2c9SLorenzo Colitti else 4266622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4267622ec2c9SLorenzo Colitti 4268ab364a6fSThomas Graf if (iif) { 4269ab364a6fSThomas Graf struct net_device *dev; 427072331bc0SShmulik Ladkani int flags = 0; 427172331bc0SShmulik Ladkani 4272121622dbSFlorian Westphal rcu_read_lock(); 4273121622dbSFlorian Westphal 4274121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4275ab364a6fSThomas Graf if (!dev) { 4276121622dbSFlorian Westphal rcu_read_unlock(); 4277ab364a6fSThomas Graf err = -ENODEV; 4278ab364a6fSThomas Graf goto errout; 4279ab364a6fSThomas Graf } 428072331bc0SShmulik Ladkani 428172331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 428272331bc0SShmulik Ladkani 428372331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 428472331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 428572331bc0SShmulik Ladkani 428618c3a61cSRoopa Prabhu if (!fibmatch) 428718c3a61cSRoopa Prabhu dst = ip6_route_input_lookup(net, dev, &fl6, flags); 4288401481e0SArnd Bergmann else 4289401481e0SArnd Bergmann dst = ip6_route_lookup(net, &fl6, 0); 4290121622dbSFlorian Westphal 4291121622dbSFlorian Westphal rcu_read_unlock(); 429272331bc0SShmulik Ladkani } else { 429372331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 429472331bc0SShmulik Ladkani 429518c3a61cSRoopa Prabhu if (!fibmatch) 429618c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 4297401481e0SArnd Bergmann else 4298401481e0SArnd Bergmann dst = ip6_route_lookup(net, &fl6, 0); 429918c3a61cSRoopa Prabhu } 430018c3a61cSRoopa Prabhu 430118c3a61cSRoopa Prabhu 430218c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 430318c3a61cSRoopa Prabhu if (rt->dst.error) { 430418c3a61cSRoopa Prabhu err = rt->dst.error; 430518c3a61cSRoopa Prabhu ip6_rt_put(rt); 430618c3a61cSRoopa Prabhu goto errout; 4307ab364a6fSThomas Graf } 43081da177e4SLinus Torvalds 43099d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 43109d6acb3bSWANG Cong err = rt->dst.error; 43119d6acb3bSWANG Cong ip6_rt_put(rt); 43129d6acb3bSWANG Cong goto errout; 43139d6acb3bSWANG Cong } 43149d6acb3bSWANG Cong 43151da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 431638308473SDavid S. Miller if (!skb) { 431794e187c0SAmerigo Wang ip6_rt_put(rt); 4318ab364a6fSThomas Graf err = -ENOBUFS; 4319ab364a6fSThomas Graf goto errout; 4320ab364a6fSThomas Graf } 43211da177e4SLinus Torvalds 4322d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 432318c3a61cSRoopa Prabhu if (fibmatch) 432418c3a61cSRoopa Prabhu err = rt6_fill_node(net, skb, rt, NULL, NULL, iif, 432518c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 432618c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 432718c3a61cSRoopa Prabhu else 43284c9483b2SDavid S. Miller err = rt6_fill_node(net, skb, rt, &fl6.daddr, &fl6.saddr, iif, 432915e47304SEric W. Biederman RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 4330f8cfe2ceSDavid Ahern nlh->nlmsg_seq, 0); 43311da177e4SLinus Torvalds if (err < 0) { 4332ab364a6fSThomas Graf kfree_skb(skb); 4333ab364a6fSThomas Graf goto errout; 43341da177e4SLinus Torvalds } 43351da177e4SLinus Torvalds 433615e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4337ab364a6fSThomas Graf errout: 43381da177e4SLinus Torvalds return err; 43391da177e4SLinus Torvalds } 43401da177e4SLinus Torvalds 434137a1d361SRoopa Prabhu void inet6_rt_notify(int event, struct rt6_info *rt, struct nl_info *info, 434237a1d361SRoopa Prabhu unsigned int nlm_flags) 43431da177e4SLinus Torvalds { 43441da177e4SLinus Torvalds struct sk_buff *skb; 43455578689aSDaniel Lezcano struct net *net = info->nl_net; 4346528c4cebSDenis V. Lunev u32 seq; 4347528c4cebSDenis V. Lunev int err; 43480d51aa80SJamal Hadi Salim 4349528c4cebSDenis V. Lunev err = -ENOBUFS; 435038308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 435186872cb5SThomas Graf 435219e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 435338308473SDavid S. Miller if (!skb) 435421713ebcSThomas Graf goto errout; 43551da177e4SLinus Torvalds 4356191cd582SBrian Haley err = rt6_fill_node(net, skb, rt, NULL, NULL, 0, 4357f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 435826932566SPatrick McHardy if (err < 0) { 435926932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 436026932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 436126932566SPatrick McHardy kfree_skb(skb); 436226932566SPatrick McHardy goto errout; 436326932566SPatrick McHardy } 436415e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 43655578689aSDaniel Lezcano info->nlh, gfp_any()); 43661ce85fe4SPablo Neira Ayuso return; 436721713ebcSThomas Graf errout: 436821713ebcSThomas Graf if (err < 0) 43695578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 43701da177e4SLinus Torvalds } 43711da177e4SLinus Torvalds 43728ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4373351638e7SJiri Pirko unsigned long event, void *ptr) 43748ed67789SDaniel Lezcano { 4375351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4376c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 43778ed67789SDaniel Lezcano 4378242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 4379242d3a49SWANG Cong return NOTIFY_OK; 4380242d3a49SWANG Cong 4381242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 4382d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 43838ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 43848ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 4385d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 43868ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 4387d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 43888ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 43898ed67789SDaniel Lezcano #endif 439076da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 439176da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 439276da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 439376da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 439476da0704SWANG Cong */ 439512d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 4396242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 439712d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 439812d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 4399242d3a49SWANG Cong #endif 44008ed67789SDaniel Lezcano } 44018ed67789SDaniel Lezcano 44028ed67789SDaniel Lezcano return NOTIFY_OK; 44038ed67789SDaniel Lezcano } 44048ed67789SDaniel Lezcano 44051da177e4SLinus Torvalds /* 44061da177e4SLinus Torvalds * /proc 44071da177e4SLinus Torvalds */ 44081da177e4SLinus Torvalds 44091da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 44101da177e4SLinus Torvalds 441133120b30SAlexey Dobriyan static const struct file_operations ipv6_route_proc_fops = { 441233120b30SAlexey Dobriyan .owner = THIS_MODULE, 441333120b30SAlexey Dobriyan .open = ipv6_route_open, 441433120b30SAlexey Dobriyan .read = seq_read, 441533120b30SAlexey Dobriyan .llseek = seq_lseek, 44168d2ca1d7SHannes Frederic Sowa .release = seq_release_net, 441733120b30SAlexey Dobriyan }; 441833120b30SAlexey Dobriyan 44191da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 44201da177e4SLinus Torvalds { 442169ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 44221da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 442369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 442469ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 442569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_alloc, 442669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 442769ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 4428fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 442969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 44301da177e4SLinus Torvalds 44311da177e4SLinus Torvalds return 0; 44321da177e4SLinus Torvalds } 44331da177e4SLinus Torvalds 44341da177e4SLinus Torvalds static int rt6_stats_seq_open(struct inode *inode, struct file *file) 44351da177e4SLinus Torvalds { 4436de05c557SPavel Emelyanov return single_open_net(inode, file, rt6_stats_seq_show); 443769ddb805SDaniel Lezcano } 443869ddb805SDaniel Lezcano 44399a32144eSArjan van de Ven static const struct file_operations rt6_stats_seq_fops = { 44401da177e4SLinus Torvalds .owner = THIS_MODULE, 44411da177e4SLinus Torvalds .open = rt6_stats_seq_open, 44421da177e4SLinus Torvalds .read = seq_read, 44431da177e4SLinus Torvalds .llseek = seq_lseek, 4444b6fcbdb4SPavel Emelyanov .release = single_release_net, 44451da177e4SLinus Torvalds }; 44461da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 44471da177e4SLinus Torvalds 44481da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 44491da177e4SLinus Torvalds 44501da177e4SLinus Torvalds static 4451fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 44521da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 44531da177e4SLinus Torvalds { 4454c486da34SLucian Adrian Grijincu struct net *net; 4455c486da34SLucian Adrian Grijincu int delay; 4456c486da34SLucian Adrian Grijincu if (!write) 4457c486da34SLucian Adrian Grijincu return -EINVAL; 4458c486da34SLucian Adrian Grijincu 4459c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 4460c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 44618d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 44622ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 44631da177e4SLinus Torvalds return 0; 44641da177e4SLinus Torvalds } 44651da177e4SLinus Torvalds 4466fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 44671da177e4SLinus Torvalds { 44681da177e4SLinus Torvalds .procname = "flush", 44694990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 44701da177e4SLinus Torvalds .maxlen = sizeof(int), 447189c8b3a1SDave Jones .mode = 0200, 44726d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 44731da177e4SLinus Torvalds }, 44741da177e4SLinus Torvalds { 44751da177e4SLinus Torvalds .procname = "gc_thresh", 44769a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 44771da177e4SLinus Torvalds .maxlen = sizeof(int), 44781da177e4SLinus Torvalds .mode = 0644, 44796d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 44801da177e4SLinus Torvalds }, 44811da177e4SLinus Torvalds { 44821da177e4SLinus Torvalds .procname = "max_size", 44834990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 44841da177e4SLinus Torvalds .maxlen = sizeof(int), 44851da177e4SLinus Torvalds .mode = 0644, 44866d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 44871da177e4SLinus Torvalds }, 44881da177e4SLinus Torvalds { 44891da177e4SLinus Torvalds .procname = "gc_min_interval", 44904990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 44911da177e4SLinus Torvalds .maxlen = sizeof(int), 44921da177e4SLinus Torvalds .mode = 0644, 44936d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 44941da177e4SLinus Torvalds }, 44951da177e4SLinus Torvalds { 44961da177e4SLinus Torvalds .procname = "gc_timeout", 44974990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 44981da177e4SLinus Torvalds .maxlen = sizeof(int), 44991da177e4SLinus Torvalds .mode = 0644, 45006d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45011da177e4SLinus Torvalds }, 45021da177e4SLinus Torvalds { 45031da177e4SLinus Torvalds .procname = "gc_interval", 45044990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 45051da177e4SLinus Torvalds .maxlen = sizeof(int), 45061da177e4SLinus Torvalds .mode = 0644, 45076d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45081da177e4SLinus Torvalds }, 45091da177e4SLinus Torvalds { 45101da177e4SLinus Torvalds .procname = "gc_elasticity", 45114990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 45121da177e4SLinus Torvalds .maxlen = sizeof(int), 45131da177e4SLinus Torvalds .mode = 0644, 4514f3d3f616SMin Zhang .proc_handler = proc_dointvec, 45151da177e4SLinus Torvalds }, 45161da177e4SLinus Torvalds { 45171da177e4SLinus Torvalds .procname = "mtu_expires", 45184990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 45191da177e4SLinus Torvalds .maxlen = sizeof(int), 45201da177e4SLinus Torvalds .mode = 0644, 45216d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 45221da177e4SLinus Torvalds }, 45231da177e4SLinus Torvalds { 45241da177e4SLinus Torvalds .procname = "min_adv_mss", 45254990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 45261da177e4SLinus Torvalds .maxlen = sizeof(int), 45271da177e4SLinus Torvalds .mode = 0644, 4528f3d3f616SMin Zhang .proc_handler = proc_dointvec, 45291da177e4SLinus Torvalds }, 45301da177e4SLinus Torvalds { 45311da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 45324990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 45331da177e4SLinus Torvalds .maxlen = sizeof(int), 45341da177e4SLinus Torvalds .mode = 0644, 45356d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 45361da177e4SLinus Torvalds }, 4537f8572d8fSEric W. Biederman { } 45381da177e4SLinus Torvalds }; 45391da177e4SLinus Torvalds 45402c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 4541760f2d01SDaniel Lezcano { 4542760f2d01SDaniel Lezcano struct ctl_table *table; 4543760f2d01SDaniel Lezcano 4544760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 4545760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 4546760f2d01SDaniel Lezcano GFP_KERNEL); 45475ee09105SYOSHIFUJI Hideaki 45485ee09105SYOSHIFUJI Hideaki if (table) { 45495ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 4550c486da34SLucian Adrian Grijincu table[0].extra1 = net; 455186393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 45525ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 45535ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 45545ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 45555ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 45565ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 45575ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 45585ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 45599c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 4560464dc801SEric W. Biederman 4561464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 4562464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 4563464dc801SEric W. Biederman table[0].procname = NULL; 45645ee09105SYOSHIFUJI Hideaki } 45655ee09105SYOSHIFUJI Hideaki 4566760f2d01SDaniel Lezcano return table; 4567760f2d01SDaniel Lezcano } 45681da177e4SLinus Torvalds #endif 45691da177e4SLinus Torvalds 45702c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 4571cdb18761SDaniel Lezcano { 4572633d424bSPavel Emelyanov int ret = -ENOMEM; 45738ed67789SDaniel Lezcano 457486393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 457586393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 4576f2fc6a54SBenjamin Thery 4577fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 4578fc66f95cSEric Dumazet goto out_ip6_dst_ops; 4579fc66f95cSEric Dumazet 45808ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 45818ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 45828ed67789SDaniel Lezcano GFP_KERNEL); 45838ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 4584fc66f95cSEric Dumazet goto out_ip6_dst_entries; 4585d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.path = 45868ed67789SDaniel Lezcano (struct dst_entry *)net->ipv6.ip6_null_entry; 4587d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 458862fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 458962fa8a84SDavid S. Miller ip6_template_metrics, true); 45908ed67789SDaniel Lezcano 45918ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 4592feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 45938ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 45948ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 45958ed67789SDaniel Lezcano GFP_KERNEL); 459668fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 459768fffc67SPeter Zijlstra goto out_ip6_null_entry; 4598d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.path = 45998ed67789SDaniel Lezcano (struct dst_entry *)net->ipv6.ip6_prohibit_entry; 4600d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 460162fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 460262fa8a84SDavid S. Miller ip6_template_metrics, true); 46038ed67789SDaniel Lezcano 46048ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 46058ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 46068ed67789SDaniel Lezcano GFP_KERNEL); 460768fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 460868fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 4609d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.path = 46108ed67789SDaniel Lezcano (struct dst_entry *)net->ipv6.ip6_blk_hole_entry; 4611d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 461262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 461362fa8a84SDavid S. Miller ip6_template_metrics, true); 46148ed67789SDaniel Lezcano #endif 46158ed67789SDaniel Lezcano 4616b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 4617b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 4618b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 4619b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 4620b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 4621b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 4622b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 4623b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 4624b339a47cSPeter Zijlstra 46256891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 46266891a346SBenjamin Thery 46278ed67789SDaniel Lezcano ret = 0; 46288ed67789SDaniel Lezcano out: 46298ed67789SDaniel Lezcano return ret; 4630f2fc6a54SBenjamin Thery 463168fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 463268fffc67SPeter Zijlstra out_ip6_prohibit_entry: 463368fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 463468fffc67SPeter Zijlstra out_ip6_null_entry: 463568fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 463668fffc67SPeter Zijlstra #endif 4637fc66f95cSEric Dumazet out_ip6_dst_entries: 4638fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 4639f2fc6a54SBenjamin Thery out_ip6_dst_ops: 4640f2fc6a54SBenjamin Thery goto out; 4641cdb18761SDaniel Lezcano } 4642cdb18761SDaniel Lezcano 46432c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 4644cdb18761SDaniel Lezcano { 46458ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 46468ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 46478ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 46488ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 46498ed67789SDaniel Lezcano #endif 465041bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 4651cdb18761SDaniel Lezcano } 4652cdb18761SDaniel Lezcano 4653d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 4654d189634eSThomas Graf { 4655d189634eSThomas Graf #ifdef CONFIG_PROC_FS 4656d4beaa66SGao feng proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops); 4657d4beaa66SGao feng proc_create("rt6_stats", S_IRUGO, net->proc_net, &rt6_stats_seq_fops); 4658d189634eSThomas Graf #endif 4659d189634eSThomas Graf return 0; 4660d189634eSThomas Graf } 4661d189634eSThomas Graf 4662d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 4663d189634eSThomas Graf { 4664d189634eSThomas Graf #ifdef CONFIG_PROC_FS 4665ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 4666ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 4667d189634eSThomas Graf #endif 4668d189634eSThomas Graf } 4669d189634eSThomas Graf 4670cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 4671cdb18761SDaniel Lezcano .init = ip6_route_net_init, 4672cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 4673cdb18761SDaniel Lezcano }; 4674cdb18761SDaniel Lezcano 4675c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 4676c3426b47SDavid S. Miller { 4677c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 4678c3426b47SDavid S. Miller 4679c3426b47SDavid S. Miller if (!bp) 4680c3426b47SDavid S. Miller return -ENOMEM; 4681c3426b47SDavid S. Miller inet_peer_base_init(bp); 4682c3426b47SDavid S. Miller net->ipv6.peers = bp; 4683c3426b47SDavid S. Miller return 0; 4684c3426b47SDavid S. Miller } 4685c3426b47SDavid S. Miller 4686c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 4687c3426b47SDavid S. Miller { 4688c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 4689c3426b47SDavid S. Miller 4690c3426b47SDavid S. Miller net->ipv6.peers = NULL; 469156a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 4692c3426b47SDavid S. Miller kfree(bp); 4693c3426b47SDavid S. Miller } 4694c3426b47SDavid S. Miller 46952b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 4696c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 4697c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 4698c3426b47SDavid S. Miller }; 4699c3426b47SDavid S. Miller 4700d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 4701d189634eSThomas Graf .init = ip6_route_net_init_late, 4702d189634eSThomas Graf .exit = ip6_route_net_exit_late, 4703d189634eSThomas Graf }; 4704d189634eSThomas Graf 47058ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 47068ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 4707242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 47088ed67789SDaniel Lezcano }; 47098ed67789SDaniel Lezcano 47102f460933SWANG Cong void __init ip6_route_init_special_entries(void) 47112f460933SWANG Cong { 47122f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 47132f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 47142f460933SWANG Cong * manually for init_net */ 47152f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 47162f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47172f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 47182f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 47192f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47202f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 47212f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 47222f460933SWANG Cong #endif 47232f460933SWANG Cong } 47242f460933SWANG Cong 4725433d49c3SDaniel Lezcano int __init ip6_route_init(void) 47261da177e4SLinus Torvalds { 4727433d49c3SDaniel Lezcano int ret; 47288d0b94afSMartin KaFai Lau int cpu; 4729433d49c3SDaniel Lezcano 47309a7ec3a9SDaniel Lezcano ret = -ENOMEM; 47319a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 47329a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 47339a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 47349a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 4735c19a28e1SFernando Carrijo goto out; 473614e50e57SDavid S. Miller 4737fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 47388ed67789SDaniel Lezcano if (ret) 4739bdb3289fSDaniel Lezcano goto out_kmem_cache; 4740bdb3289fSDaniel Lezcano 4741c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 4742c3426b47SDavid S. Miller if (ret) 4743e8803b6cSDavid S. Miller goto out_dst_entries; 47442a0c451aSThomas Graf 47457e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 47467e52b33bSDavid S. Miller if (ret) 47477e52b33bSDavid S. Miller goto out_register_inetpeer; 4748c3426b47SDavid S. Miller 47495dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 47505dc121e9SArnaud Ebalard 4751e8803b6cSDavid S. Miller ret = fib6_init(); 4752433d49c3SDaniel Lezcano if (ret) 47538ed67789SDaniel Lezcano goto out_register_subsys; 4754433d49c3SDaniel Lezcano 4755433d49c3SDaniel Lezcano ret = xfrm6_init(); 4756433d49c3SDaniel Lezcano if (ret) 4757e8803b6cSDavid S. Miller goto out_fib6_init; 4758c35b7e72SDaniel Lezcano 4759433d49c3SDaniel Lezcano ret = fib6_rules_init(); 4760433d49c3SDaniel Lezcano if (ret) 4761433d49c3SDaniel Lezcano goto xfrm6_init; 47627e5449c2SDaniel Lezcano 4763d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 4764d189634eSThomas Graf if (ret) 4765d189634eSThomas Graf goto fib6_rules_init; 4766d189634eSThomas Graf 4767433d49c3SDaniel Lezcano ret = -ENOBUFS; 4768b97bac64SFlorian Westphal if (__rtnl_register(PF_INET6, RTM_NEWROUTE, inet6_rtm_newroute, NULL, 0) || 4769b97bac64SFlorian Westphal __rtnl_register(PF_INET6, RTM_DELROUTE, inet6_rtm_delroute, NULL, 0) || 4770e3a22b7fSFlorian Westphal __rtnl_register(PF_INET6, RTM_GETROUTE, inet6_rtm_getroute, NULL, 4771e3a22b7fSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED)) 4772d189634eSThomas Graf goto out_register_late_subsys; 4773433d49c3SDaniel Lezcano 47748ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 4775cdb18761SDaniel Lezcano if (ret) 4776d189634eSThomas Graf goto out_register_late_subsys; 47778ed67789SDaniel Lezcano 47788d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 47798d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 47808d0b94afSMartin KaFai Lau 47818d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 47828d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 47838d0b94afSMartin KaFai Lau } 47848d0b94afSMartin KaFai Lau 4785433d49c3SDaniel Lezcano out: 4786433d49c3SDaniel Lezcano return ret; 4787433d49c3SDaniel Lezcano 4788d189634eSThomas Graf out_register_late_subsys: 4789d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 4790433d49c3SDaniel Lezcano fib6_rules_init: 4791433d49c3SDaniel Lezcano fib6_rules_cleanup(); 4792433d49c3SDaniel Lezcano xfrm6_init: 4793433d49c3SDaniel Lezcano xfrm6_fini(); 47942a0c451aSThomas Graf out_fib6_init: 47952a0c451aSThomas Graf fib6_gc_cleanup(); 47968ed67789SDaniel Lezcano out_register_subsys: 47978ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 47987e52b33bSDavid S. Miller out_register_inetpeer: 47997e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 4800fc66f95cSEric Dumazet out_dst_entries: 4801fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 4802433d49c3SDaniel Lezcano out_kmem_cache: 4803f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 4804433d49c3SDaniel Lezcano goto out; 48051da177e4SLinus Torvalds } 48061da177e4SLinus Torvalds 48071da177e4SLinus Torvalds void ip6_route_cleanup(void) 48081da177e4SLinus Torvalds { 48098ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 4810d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 4811101367c2SThomas Graf fib6_rules_cleanup(); 48121da177e4SLinus Torvalds xfrm6_fini(); 48131da177e4SLinus Torvalds fib6_gc_cleanup(); 4814c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 48158ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 481641bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 4817f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 48181da177e4SLinus Torvalds } 4819