xref: /openbmc/linux/net/ipv6/route.c (revision 7d9e5f422150ed00de744e02a80734d74cc9704d)
12874c5fdSThomas Gleixner // SPDX-License-Identifier: GPL-2.0-or-later
21da177e4SLinus Torvalds /*
31da177e4SLinus Torvalds  *	Linux INET6 implementation
41da177e4SLinus Torvalds  *	FIB front-end.
51da177e4SLinus Torvalds  *
61da177e4SLinus Torvalds  *	Authors:
71da177e4SLinus Torvalds  *	Pedro Roque		<roque@di.fc.ul.pt>
81da177e4SLinus Torvalds  */
91da177e4SLinus Torvalds 
101da177e4SLinus Torvalds /*	Changes:
111da177e4SLinus Torvalds  *
121da177e4SLinus Torvalds  *	YOSHIFUJI Hideaki @USAGI
131da177e4SLinus Torvalds  *		reworked default router selection.
141da177e4SLinus Torvalds  *		- respect outgoing interface
151da177e4SLinus Torvalds  *		- select from (probably) reachable routers (i.e.
161da177e4SLinus Torvalds  *		routers in REACHABLE, STALE, DELAY or PROBE states).
171da177e4SLinus Torvalds  *		- always select the same router if it is (probably)
181da177e4SLinus Torvalds  *		reachable.  otherwise, round-robin the list.
19c0bece9fSYOSHIFUJI Hideaki  *	Ville Nuorvala
20c0bece9fSYOSHIFUJI Hideaki  *		Fixed routing subtrees.
211da177e4SLinus Torvalds  */
221da177e4SLinus Torvalds 
23f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt
24f3213831SJoe Perches 
254fc268d2SRandy Dunlap #include <linux/capability.h>
261da177e4SLinus Torvalds #include <linux/errno.h>
27bc3b2d7fSPaul Gortmaker #include <linux/export.h>
281da177e4SLinus Torvalds #include <linux/types.h>
291da177e4SLinus Torvalds #include <linux/times.h>
301da177e4SLinus Torvalds #include <linux/socket.h>
311da177e4SLinus Torvalds #include <linux/sockios.h>
321da177e4SLinus Torvalds #include <linux/net.h>
331da177e4SLinus Torvalds #include <linux/route.h>
341da177e4SLinus Torvalds #include <linux/netdevice.h>
351da177e4SLinus Torvalds #include <linux/in6.h>
367bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h>
371da177e4SLinus Torvalds #include <linux/init.h>
381da177e4SLinus Torvalds #include <linux/if_arp.h>
391da177e4SLinus Torvalds #include <linux/proc_fs.h>
401da177e4SLinus Torvalds #include <linux/seq_file.h>
415b7c931dSDaniel Lezcano #include <linux/nsproxy.h>
425a0e3ad6STejun Heo #include <linux/slab.h>
4335732d01SWei Wang #include <linux/jhash.h>
44457c4cbcSEric W. Biederman #include <net/net_namespace.h>
451da177e4SLinus Torvalds #include <net/snmp.h>
461da177e4SLinus Torvalds #include <net/ipv6.h>
471da177e4SLinus Torvalds #include <net/ip6_fib.h>
481da177e4SLinus Torvalds #include <net/ip6_route.h>
491da177e4SLinus Torvalds #include <net/ndisc.h>
501da177e4SLinus Torvalds #include <net/addrconf.h>
511da177e4SLinus Torvalds #include <net/tcp.h>
521da177e4SLinus Torvalds #include <linux/rtnetlink.h>
531da177e4SLinus Torvalds #include <net/dst.h>
54904af04dSJiri Benc #include <net/dst_metadata.h>
551da177e4SLinus Torvalds #include <net/xfrm.h>
568d71740cSTom Tucker #include <net/netevent.h>
5721713ebcSThomas Graf #include <net/netlink.h>
583c618c1dSDavid Ahern #include <net/rtnh.h>
5919e42e45SRoopa Prabhu #include <net/lwtunnel.h>
60904af04dSJiri Benc #include <net/ip_tunnels.h>
61ca254490SDavid Ahern #include <net/l3mdev.h>
62eacb9384SRoopa Prabhu #include <net/ip.h>
637c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
641da177e4SLinus Torvalds 
651da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
661da177e4SLinus Torvalds #include <linux/sysctl.h>
671da177e4SLinus Torvalds #endif
681da177e4SLinus Torvalds 
6930d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type);
7030d444d3SDavid Ahern 
7130d444d3SDavid Ahern #define CREATE_TRACE_POINTS
7230d444d3SDavid Ahern #include <trace/events/fib6.h>
7330d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup);
7430d444d3SDavid Ahern #undef CREATE_TRACE_POINTS
7530d444d3SDavid Ahern 
76afc154e9SHannes Frederic Sowa enum rt6_nud_state {
777e980569SJiri Benc 	RT6_NUD_FAIL_HARD = -3,
787e980569SJiri Benc 	RT6_NUD_FAIL_PROBE = -2,
797e980569SJiri Benc 	RT6_NUD_FAIL_DO_RR = -1,
80afc154e9SHannes Frederic Sowa 	RT6_NUD_SUCCEED = 1
81afc154e9SHannes Frederic Sowa };
82afc154e9SHannes Frederic Sowa 
831da177e4SLinus Torvalds static struct dst_entry	*ip6_dst_check(struct dst_entry *dst, u32 cookie);
840dbaee3bSDavid S. Miller static unsigned int	 ip6_default_advmss(const struct dst_entry *dst);
85ebb762f2SSteffen Klassert static unsigned int	 ip6_mtu(const struct dst_entry *dst);
861da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *);
871da177e4SLinus Torvalds static void		ip6_dst_destroy(struct dst_entry *);
881da177e4SLinus Torvalds static void		ip6_dst_ifdown(struct dst_entry *,
891da177e4SLinus Torvalds 				       struct net_device *dev, int how);
90569d3645SDaniel Lezcano static int		 ip6_dst_gc(struct dst_ops *ops);
911da177e4SLinus Torvalds 
921da177e4SLinus Torvalds static int		ip6_pkt_discard(struct sk_buff *skb);
93ede2059dSEric W. Biederman static int		ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
947150aedeSKamala R static int		ip6_pkt_prohibit(struct sk_buff *skb);
95ede2059dSEric W. Biederman static int		ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
961da177e4SLinus Torvalds static void		ip6_link_failure(struct sk_buff *skb);
976700c270SDavid S. Miller static void		ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
986700c270SDavid S. Miller 					   struct sk_buff *skb, u32 mtu);
996700c270SDavid S. Miller static void		rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
1006700c270SDavid S. Miller 					struct sk_buff *skb);
101702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif,
102702cea56SDavid Ahern 			   int strict);
103a1b7a1f0SDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *f6i);
104d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb,
1058d1c802bSDavid Ahern 			 struct fib6_info *rt, struct dst_entry *dst,
106d4ead6b3SDavid Ahern 			 struct in6_addr *dest, struct in6_addr *src,
10716a16cd3SDavid Ahern 			 int iif, int type, u32 portid, u32 seq,
10816a16cd3SDavid Ahern 			 unsigned int flags);
1097e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res,
110510e2cedSWei Wang 					   const struct in6_addr *daddr,
111510e2cedSWei Wang 					   const struct in6_addr *saddr);
1121da177e4SLinus Torvalds 
11370ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
1148d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net,
115b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
116830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
117830218c1SDavid Ahern 					   struct net_device *dev,
11895c96174SEric Dumazet 					   unsigned int pref);
1198d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net,
120b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
121830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
122830218c1SDavid Ahern 					   struct net_device *dev);
12370ceb4f5SYOSHIFUJI Hideaki #endif
12470ceb4f5SYOSHIFUJI Hideaki 
1258d0b94afSMartin KaFai Lau struct uncached_list {
1268d0b94afSMartin KaFai Lau 	spinlock_t		lock;
1278d0b94afSMartin KaFai Lau 	struct list_head	head;
1288d0b94afSMartin KaFai Lau };
1298d0b94afSMartin KaFai Lau 
1308d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
1318d0b94afSMartin KaFai Lau 
132510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt)
1338d0b94afSMartin KaFai Lau {
1348d0b94afSMartin KaFai Lau 	struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
1358d0b94afSMartin KaFai Lau 
1368d0b94afSMartin KaFai Lau 	rt->rt6i_uncached_list = ul;
1378d0b94afSMartin KaFai Lau 
1388d0b94afSMartin KaFai Lau 	spin_lock_bh(&ul->lock);
1398d0b94afSMartin KaFai Lau 	list_add_tail(&rt->rt6i_uncached, &ul->head);
1408d0b94afSMartin KaFai Lau 	spin_unlock_bh(&ul->lock);
1418d0b94afSMartin KaFai Lau }
1428d0b94afSMartin KaFai Lau 
143510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt)
1448d0b94afSMartin KaFai Lau {
1458d0b94afSMartin KaFai Lau 	if (!list_empty(&rt->rt6i_uncached)) {
1468d0b94afSMartin KaFai Lau 		struct uncached_list *ul = rt->rt6i_uncached_list;
14781eb8447SWei Wang 		struct net *net = dev_net(rt->dst.dev);
1488d0b94afSMartin KaFai Lau 
1498d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1508d0b94afSMartin KaFai Lau 		list_del(&rt->rt6i_uncached);
15181eb8447SWei Wang 		atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
1528d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1538d0b94afSMartin KaFai Lau 	}
1548d0b94afSMartin KaFai Lau }
1558d0b94afSMartin KaFai Lau 
1568d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
1578d0b94afSMartin KaFai Lau {
1588d0b94afSMartin KaFai Lau 	struct net_device *loopback_dev = net->loopback_dev;
1598d0b94afSMartin KaFai Lau 	int cpu;
1608d0b94afSMartin KaFai Lau 
161e332bc67SEric W. Biederman 	if (dev == loopback_dev)
162e332bc67SEric W. Biederman 		return;
163e332bc67SEric W. Biederman 
1648d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
1658d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
1668d0b94afSMartin KaFai Lau 		struct rt6_info *rt;
1678d0b94afSMartin KaFai Lau 
1688d0b94afSMartin KaFai Lau 		spin_lock_bh(&ul->lock);
1698d0b94afSMartin KaFai Lau 		list_for_each_entry(rt, &ul->head, rt6i_uncached) {
1708d0b94afSMartin KaFai Lau 			struct inet6_dev *rt_idev = rt->rt6i_idev;
1718d0b94afSMartin KaFai Lau 			struct net_device *rt_dev = rt->dst.dev;
1728d0b94afSMartin KaFai Lau 
173e332bc67SEric W. Biederman 			if (rt_idev->dev == dev) {
1748d0b94afSMartin KaFai Lau 				rt->rt6i_idev = in6_dev_get(loopback_dev);
1758d0b94afSMartin KaFai Lau 				in6_dev_put(rt_idev);
1768d0b94afSMartin KaFai Lau 			}
1778d0b94afSMartin KaFai Lau 
178e332bc67SEric W. Biederman 			if (rt_dev == dev) {
1798d0b94afSMartin KaFai Lau 				rt->dst.dev = loopback_dev;
1808d0b94afSMartin KaFai Lau 				dev_hold(rt->dst.dev);
1818d0b94afSMartin KaFai Lau 				dev_put(rt_dev);
1828d0b94afSMartin KaFai Lau 			}
1838d0b94afSMartin KaFai Lau 		}
1848d0b94afSMartin KaFai Lau 		spin_unlock_bh(&ul->lock);
1858d0b94afSMartin KaFai Lau 	}
1868d0b94afSMartin KaFai Lau }
1878d0b94afSMartin KaFai Lau 
188f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p,
189f894cbf8SDavid S. Miller 					     struct sk_buff *skb,
190f894cbf8SDavid S. Miller 					     const void *daddr)
19139232973SDavid S. Miller {
192a7563f34SDavid S. Miller 	if (!ipv6_addr_any(p))
19339232973SDavid S. Miller 		return (const void *) p;
194f894cbf8SDavid S. Miller 	else if (skb)
195f894cbf8SDavid S. Miller 		return &ipv6_hdr(skb)->daddr;
19639232973SDavid S. Miller 	return daddr;
19739232973SDavid S. Miller }
19839232973SDavid S. Miller 
199f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw,
200f8a1b43bSDavid Ahern 				   struct net_device *dev,
201f894cbf8SDavid S. Miller 				   struct sk_buff *skb,
202f894cbf8SDavid S. Miller 				   const void *daddr)
203d3aaeb38SDavid S. Miller {
20439232973SDavid S. Miller 	struct neighbour *n;
20539232973SDavid S. Miller 
206f8a1b43bSDavid Ahern 	daddr = choose_neigh_daddr(gw, skb, daddr);
207f8a1b43bSDavid Ahern 	n = __ipv6_neigh_lookup(dev, daddr);
208f83c7790SDavid S. Miller 	if (n)
209f83c7790SDavid S. Miller 		return n;
2107adf3246SStefano Brivio 
2117adf3246SStefano Brivio 	n = neigh_create(&nd_tbl, daddr, dev);
2127adf3246SStefano Brivio 	return IS_ERR(n) ? NULL : n;
213f8a1b43bSDavid Ahern }
214f8a1b43bSDavid Ahern 
215f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst,
216f8a1b43bSDavid Ahern 					      struct sk_buff *skb,
217f8a1b43bSDavid Ahern 					      const void *daddr)
218f8a1b43bSDavid Ahern {
219f8a1b43bSDavid Ahern 	const struct rt6_info *rt = container_of(dst, struct rt6_info, dst);
220f8a1b43bSDavid Ahern 
221f8a1b43bSDavid Ahern 	return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr);
222f83c7790SDavid S. Miller }
223f83c7790SDavid S. Miller 
22463fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
22563fca65dSJulian Anastasov {
22663fca65dSJulian Anastasov 	struct net_device *dev = dst->dev;
22763fca65dSJulian Anastasov 	struct rt6_info *rt = (struct rt6_info *)dst;
22863fca65dSJulian Anastasov 
229f8a1b43bSDavid Ahern 	daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr);
23063fca65dSJulian Anastasov 	if (!daddr)
23163fca65dSJulian Anastasov 		return;
23263fca65dSJulian Anastasov 	if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
23363fca65dSJulian Anastasov 		return;
23463fca65dSJulian Anastasov 	if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
23563fca65dSJulian Anastasov 		return;
23663fca65dSJulian Anastasov 	__ipv6_confirm_neigh(dev, daddr);
23763fca65dSJulian Anastasov }
23863fca65dSJulian Anastasov 
2399a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = {
2401da177e4SLinus Torvalds 	.family			=	AF_INET6,
2411da177e4SLinus Torvalds 	.gc			=	ip6_dst_gc,
2421da177e4SLinus Torvalds 	.gc_thresh		=	1024,
2431da177e4SLinus Torvalds 	.check			=	ip6_dst_check,
2440dbaee3bSDavid S. Miller 	.default_advmss		=	ip6_default_advmss,
245ebb762f2SSteffen Klassert 	.mtu			=	ip6_mtu,
246d4ead6b3SDavid Ahern 	.cow_metrics		=	dst_cow_metrics_generic,
2471da177e4SLinus Torvalds 	.destroy		=	ip6_dst_destroy,
2481da177e4SLinus Torvalds 	.ifdown			=	ip6_dst_ifdown,
2491da177e4SLinus Torvalds 	.negative_advice	=	ip6_negative_advice,
2501da177e4SLinus Torvalds 	.link_failure		=	ip6_link_failure,
2511da177e4SLinus Torvalds 	.update_pmtu		=	ip6_rt_update_pmtu,
2526e157b6aSDavid S. Miller 	.redirect		=	rt6_do_redirect,
2539f8955ccSEric W. Biederman 	.local_out		=	__ip6_local_out,
254f8a1b43bSDavid Ahern 	.neigh_lookup		=	ip6_dst_neigh_lookup,
25563fca65dSJulian Anastasov 	.confirm_neigh		=	ip6_confirm_neigh,
2561da177e4SLinus Torvalds };
2571da177e4SLinus Torvalds 
258ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
259ec831ea7SRoland Dreier {
260618f9bc7SSteffen Klassert 	unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
261618f9bc7SSteffen Klassert 
262618f9bc7SSteffen Klassert 	return mtu ? : dst->dev->mtu;
263ec831ea7SRoland Dreier }
264ec831ea7SRoland Dreier 
2656700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
2666700c270SDavid S. Miller 					 struct sk_buff *skb, u32 mtu)
26714e50e57SDavid S. Miller {
26814e50e57SDavid S. Miller }
26914e50e57SDavid S. Miller 
2706700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
2716700c270SDavid S. Miller 				      struct sk_buff *skb)
272b587ee3bSDavid S. Miller {
273b587ee3bSDavid S. Miller }
274b587ee3bSDavid S. Miller 
27514e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = {
27614e50e57SDavid S. Miller 	.family			=	AF_INET6,
27714e50e57SDavid S. Miller 	.destroy		=	ip6_dst_destroy,
27814e50e57SDavid S. Miller 	.check			=	ip6_dst_check,
279ebb762f2SSteffen Klassert 	.mtu			=	ip6_blackhole_mtu,
280214f45c9SEric Dumazet 	.default_advmss		=	ip6_default_advmss,
28114e50e57SDavid S. Miller 	.update_pmtu		=	ip6_rt_blackhole_update_pmtu,
282b587ee3bSDavid S. Miller 	.redirect		=	ip6_rt_blackhole_redirect,
2830a1f5962SMartin KaFai Lau 	.cow_metrics		=	dst_cow_metrics_generic,
284f8a1b43bSDavid Ahern 	.neigh_lookup		=	ip6_dst_neigh_lookup,
28514e50e57SDavid S. Miller };
28614e50e57SDavid S. Miller 
28762fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = {
28814edd87dSLi RongQing 	[RTAX_HOPLIMIT - 1] = 0,
28962fa8a84SDavid S. Miller };
29062fa8a84SDavid S. Miller 
2918d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = {
29293c2fb25SDavid Ahern 	.fib6_flags	= (RTF_REJECT | RTF_NONEXTHOP),
29393c2fb25SDavid Ahern 	.fib6_protocol  = RTPROT_KERNEL,
29493c2fb25SDavid Ahern 	.fib6_metric	= ~(u32)0,
295f05713e0SEric Dumazet 	.fib6_ref	= REFCOUNT_INIT(1),
296421842edSDavid Ahern 	.fib6_type	= RTN_UNREACHABLE,
297421842edSDavid Ahern 	.fib6_metrics	= (struct dst_metrics *)&dst_default_metrics,
298421842edSDavid Ahern };
299421842edSDavid Ahern 
300fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = {
3011da177e4SLinus Torvalds 	.dst = {
3021da177e4SLinus Torvalds 		.__refcnt	= ATOMIC_INIT(1),
3031da177e4SLinus Torvalds 		.__use		= 1,
3042c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
3051da177e4SLinus Torvalds 		.error		= -ENETUNREACH,
3061da177e4SLinus Torvalds 		.input		= ip6_pkt_discard,
3071da177e4SLinus Torvalds 		.output		= ip6_pkt_discard_out,
3081da177e4SLinus Torvalds 	},
3091da177e4SLinus Torvalds 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
3101da177e4SLinus Torvalds };
3111da177e4SLinus Torvalds 
312101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES
313101367c2SThomas Graf 
314fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = {
315101367c2SThomas Graf 	.dst = {
316101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
317101367c2SThomas Graf 		.__use		= 1,
3182c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
319101367c2SThomas Graf 		.error		= -EACCES,
3209ce8ade0SThomas Graf 		.input		= ip6_pkt_prohibit,
3219ce8ade0SThomas Graf 		.output		= ip6_pkt_prohibit_out,
322101367c2SThomas Graf 	},
323101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
324101367c2SThomas Graf };
325101367c2SThomas Graf 
326fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = {
327101367c2SThomas Graf 	.dst = {
328101367c2SThomas Graf 		.__refcnt	= ATOMIC_INIT(1),
329101367c2SThomas Graf 		.__use		= 1,
3302c20cbd7SNicolas Dichtel 		.obsolete	= DST_OBSOLETE_FORCE_CHK,
331101367c2SThomas Graf 		.error		= -EINVAL,
332352e512cSHerbert Xu 		.input		= dst_discard,
333ede2059dSEric W. Biederman 		.output		= dst_discard_out,
334101367c2SThomas Graf 	},
335101367c2SThomas Graf 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
336101367c2SThomas Graf };
337101367c2SThomas Graf 
338101367c2SThomas Graf #endif
339101367c2SThomas Graf 
340ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt)
341ebfa45f0SMartin KaFai Lau {
342ebfa45f0SMartin KaFai Lau 	struct dst_entry *dst = &rt->dst;
343ebfa45f0SMartin KaFai Lau 
344ebfa45f0SMartin KaFai Lau 	memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
345ebfa45f0SMartin KaFai Lau 	INIT_LIST_HEAD(&rt->rt6i_uncached);
346ebfa45f0SMartin KaFai Lau }
347ebfa45f0SMartin KaFai Lau 
3481da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */
34993531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev,
350ad706862SMartin KaFai Lau 			       int flags)
3511da177e4SLinus Torvalds {
35297bab73fSDavid S. Miller 	struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
353b2a9c0edSWei Wang 					1, DST_OBSOLETE_FORCE_CHK, flags);
354cf911662SDavid S. Miller 
35581eb8447SWei Wang 	if (rt) {
356ebfa45f0SMartin KaFai Lau 		rt6_info_init(rt);
35781eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
35881eb8447SWei Wang 	}
3598104891bSSteffen Klassert 
360cf911662SDavid S. Miller 	return rt;
3611da177e4SLinus Torvalds }
3629ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc);
363d52d3997SMartin KaFai Lau 
3641da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst)
3651da177e4SLinus Torvalds {
3661da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
367a68886a6SDavid Ahern 	struct fib6_info *from;
3688d0b94afSMartin KaFai Lau 	struct inet6_dev *idev;
3691da177e4SLinus Torvalds 
3701620a336SDavid Ahern 	ip_dst_metrics_put(dst);
3718d0b94afSMartin KaFai Lau 	rt6_uncached_list_del(rt);
3728d0b94afSMartin KaFai Lau 
3738d0b94afSMartin KaFai Lau 	idev = rt->rt6i_idev;
37438308473SDavid S. Miller 	if (idev) {
3751da177e4SLinus Torvalds 		rt->rt6i_idev = NULL;
3761da177e4SLinus Torvalds 		in6_dev_put(idev);
3771da177e4SLinus Torvalds 	}
3781716a961SGao feng 
3790e233874SEric Dumazet 	from = xchg((__force struct fib6_info **)&rt->from, NULL);
38093531c67SDavid Ahern 	fib6_info_release(from);
381b3419363SDavid S. Miller }
382b3419363SDavid S. Miller 
3831da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
3841da177e4SLinus Torvalds 			   int how)
3851da177e4SLinus Torvalds {
3861da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
3871da177e4SLinus Torvalds 	struct inet6_dev *idev = rt->rt6i_idev;
3885a3e55d6SDenis V. Lunev 	struct net_device *loopback_dev =
389c346dca1SYOSHIFUJI Hideaki 		dev_net(dev)->loopback_dev;
3901da177e4SLinus Torvalds 
391e5645f51SWei Wang 	if (idev && idev->dev != loopback_dev) {
392e5645f51SWei Wang 		struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
39338308473SDavid S. Miller 		if (loopback_idev) {
3941da177e4SLinus Torvalds 			rt->rt6i_idev = loopback_idev;
3951da177e4SLinus Torvalds 			in6_dev_put(idev);
3961da177e4SLinus Torvalds 		}
3971da177e4SLinus Torvalds 	}
39897cac082SDavid S. Miller }
3991da177e4SLinus Torvalds 
4005973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt)
4015973fb1eSMartin KaFai Lau {
4025973fb1eSMartin KaFai Lau 	if (rt->rt6i_flags & RTF_EXPIRES)
4035973fb1eSMartin KaFai Lau 		return time_after(jiffies, rt->dst.expires);
4045973fb1eSMartin KaFai Lau 	else
4055973fb1eSMartin KaFai Lau 		return false;
4065973fb1eSMartin KaFai Lau }
4075973fb1eSMartin KaFai Lau 
408a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt)
4091da177e4SLinus Torvalds {
410a68886a6SDavid Ahern 	struct fib6_info *from;
411a68886a6SDavid Ahern 
412a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
413a68886a6SDavid Ahern 
4141716a961SGao feng 	if (rt->rt6i_flags & RTF_EXPIRES) {
4151716a961SGao feng 		if (time_after(jiffies, rt->dst.expires))
416a50feda5SEric Dumazet 			return true;
417a68886a6SDavid Ahern 	} else if (from) {
4181e2ea8adSXin Long 		return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
419a68886a6SDavid Ahern 			fib6_check_expired(from);
4201716a961SGao feng 	}
421a50feda5SEric Dumazet 	return false;
4221da177e4SLinus Torvalds }
4231da177e4SLinus Torvalds 
424b1d40991SDavid Ahern void fib6_select_path(const struct net *net, struct fib6_result *res,
425b1d40991SDavid Ahern 		      struct flowi6 *fl6, int oif, bool have_oif_match,
426b1d40991SDavid Ahern 		      const struct sk_buff *skb, int strict)
42751ebd318SNicolas Dichtel {
4288d1c802bSDavid Ahern 	struct fib6_info *sibling, *next_sibling;
429b1d40991SDavid Ahern 	struct fib6_info *match = res->f6i;
430b1d40991SDavid Ahern 
431f88d8ea6SDavid Ahern 	if ((!match->fib6_nsiblings && !match->nh) || have_oif_match)
432b1d40991SDavid Ahern 		goto out;
43351ebd318SNicolas Dichtel 
434b673d6ccSJakub Sitnicki 	/* We might have already computed the hash for ICMPv6 errors. In such
435b673d6ccSJakub Sitnicki 	 * case it will always be non-zero. Otherwise now is the time to do it.
436b673d6ccSJakub Sitnicki 	 */
437f88d8ea6SDavid Ahern 	if (!fl6->mp_hash &&
438f88d8ea6SDavid Ahern 	    (!match->nh || nexthop_is_multipath(match->nh)))
439b4bac172SDavid Ahern 		fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL);
440b673d6ccSJakub Sitnicki 
441f88d8ea6SDavid Ahern 	if (unlikely(match->nh)) {
442f88d8ea6SDavid Ahern 		nexthop_path_fib6_result(res, fl6->mp_hash);
443f88d8ea6SDavid Ahern 		return;
444f88d8ea6SDavid Ahern 	}
445f88d8ea6SDavid Ahern 
4461cf844c7SDavid Ahern 	if (fl6->mp_hash <= atomic_read(&match->fib6_nh->fib_nh_upper_bound))
447b1d40991SDavid Ahern 		goto out;
448bbfcd776SIdo Schimmel 
44993c2fb25SDavid Ahern 	list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings,
45093c2fb25SDavid Ahern 				 fib6_siblings) {
4511cf844c7SDavid Ahern 		const struct fib6_nh *nh = sibling->fib6_nh;
4525e670d84SDavid Ahern 		int nh_upper_bound;
4535e670d84SDavid Ahern 
454702cea56SDavid Ahern 		nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound);
4555e670d84SDavid Ahern 		if (fl6->mp_hash > nh_upper_bound)
4563d709f69SIdo Schimmel 			continue;
457702cea56SDavid Ahern 		if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0)
45852bd4c0cSNicolas Dichtel 			break;
45951ebd318SNicolas Dichtel 		match = sibling;
46051ebd318SNicolas Dichtel 		break;
46151ebd318SNicolas Dichtel 	}
4623d709f69SIdo Schimmel 
463b1d40991SDavid Ahern out:
464b1d40991SDavid Ahern 	res->f6i = match;
4651cf844c7SDavid Ahern 	res->nh = match->fib6_nh;
46651ebd318SNicolas Dichtel }
46751ebd318SNicolas Dichtel 
4681da177e4SLinus Torvalds /*
46966f5d6ceSWei Wang  *	Route lookup. rcu_read_lock() should be held.
4701da177e4SLinus Torvalds  */
4711da177e4SLinus Torvalds 
4720c59d006SDavid Ahern static bool __rt6_device_match(struct net *net, const struct fib6_nh *nh,
4730c59d006SDavid Ahern 			       const struct in6_addr *saddr, int oif, int flags)
4740c59d006SDavid Ahern {
4750c59d006SDavid Ahern 	const struct net_device *dev;
4760c59d006SDavid Ahern 
4770c59d006SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD)
4780c59d006SDavid Ahern 		return false;
4790c59d006SDavid Ahern 
4800c59d006SDavid Ahern 	dev = nh->fib_nh_dev;
4810c59d006SDavid Ahern 	if (oif) {
4820c59d006SDavid Ahern 		if (dev->ifindex == oif)
4830c59d006SDavid Ahern 			return true;
4840c59d006SDavid Ahern 	} else {
4850c59d006SDavid Ahern 		if (ipv6_chk_addr(net, saddr, dev,
4860c59d006SDavid Ahern 				  flags & RT6_LOOKUP_F_IFACE))
4870c59d006SDavid Ahern 			return true;
4880c59d006SDavid Ahern 	}
4890c59d006SDavid Ahern 
4900c59d006SDavid Ahern 	return false;
4910c59d006SDavid Ahern }
4920c59d006SDavid Ahern 
493962b6803SDavid Ahern struct fib6_nh_dm_arg {
494962b6803SDavid Ahern 	struct net		*net;
495962b6803SDavid Ahern 	const struct in6_addr	*saddr;
496962b6803SDavid Ahern 	int			oif;
497962b6803SDavid Ahern 	int			flags;
498962b6803SDavid Ahern 	struct fib6_nh		*nh;
499962b6803SDavid Ahern };
500962b6803SDavid Ahern 
501962b6803SDavid Ahern static int __rt6_nh_dev_match(struct fib6_nh *nh, void *_arg)
502962b6803SDavid Ahern {
503962b6803SDavid Ahern 	struct fib6_nh_dm_arg *arg = _arg;
504962b6803SDavid Ahern 
505962b6803SDavid Ahern 	arg->nh = nh;
506962b6803SDavid Ahern 	return __rt6_device_match(arg->net, nh, arg->saddr, arg->oif,
507962b6803SDavid Ahern 				  arg->flags);
508962b6803SDavid Ahern }
509962b6803SDavid Ahern 
510962b6803SDavid Ahern /* returns fib6_nh from nexthop or NULL */
511962b6803SDavid Ahern static struct fib6_nh *rt6_nh_dev_match(struct net *net, struct nexthop *nh,
512962b6803SDavid Ahern 					struct fib6_result *res,
513962b6803SDavid Ahern 					const struct in6_addr *saddr,
514962b6803SDavid Ahern 					int oif, int flags)
515962b6803SDavid Ahern {
516962b6803SDavid Ahern 	struct fib6_nh_dm_arg arg = {
517962b6803SDavid Ahern 		.net   = net,
518962b6803SDavid Ahern 		.saddr = saddr,
519962b6803SDavid Ahern 		.oif   = oif,
520962b6803SDavid Ahern 		.flags = flags,
521962b6803SDavid Ahern 	};
522962b6803SDavid Ahern 
523962b6803SDavid Ahern 	if (nexthop_is_blackhole(nh))
524962b6803SDavid Ahern 		return NULL;
525962b6803SDavid Ahern 
526962b6803SDavid Ahern 	if (nexthop_for_each_fib6_nh(nh, __rt6_nh_dev_match, &arg))
527962b6803SDavid Ahern 		return arg.nh;
528962b6803SDavid Ahern 
529962b6803SDavid Ahern 	return NULL;
530962b6803SDavid Ahern }
531962b6803SDavid Ahern 
53275ef7389SDavid Ahern static void rt6_device_match(struct net *net, struct fib6_result *res,
53375ef7389SDavid Ahern 			     const struct in6_addr *saddr, int oif, int flags)
5341da177e4SLinus Torvalds {
53575ef7389SDavid Ahern 	struct fib6_info *f6i = res->f6i;
53675ef7389SDavid Ahern 	struct fib6_info *spf6i;
53775ef7389SDavid Ahern 	struct fib6_nh *nh;
5381da177e4SLinus Torvalds 
53975ef7389SDavid Ahern 	if (!oif && ipv6_addr_any(saddr)) {
540f88d8ea6SDavid Ahern 		if (unlikely(f6i->nh)) {
541f88d8ea6SDavid Ahern 			nh = nexthop_fib6_nh(f6i->nh);
542f88d8ea6SDavid Ahern 			if (nexthop_is_blackhole(f6i->nh))
543f88d8ea6SDavid Ahern 				goto out_blackhole;
544f88d8ea6SDavid Ahern 		} else {
5451cf844c7SDavid Ahern 			nh = f6i->fib6_nh;
546f88d8ea6SDavid Ahern 		}
5477d21fec9SDavid Ahern 		if (!(nh->fib_nh_flags & RTNH_F_DEAD))
5487d21fec9SDavid Ahern 			goto out;
5491da177e4SLinus Torvalds 	}
5501da177e4SLinus Torvalds 
55175ef7389SDavid Ahern 	for (spf6i = f6i; spf6i; spf6i = rcu_dereference(spf6i->fib6_next)) {
552962b6803SDavid Ahern 		bool matched = false;
553962b6803SDavid Ahern 
554962b6803SDavid Ahern 		if (unlikely(spf6i->nh)) {
555962b6803SDavid Ahern 			nh = rt6_nh_dev_match(net, spf6i->nh, res, saddr,
556962b6803SDavid Ahern 					      oif, flags);
557962b6803SDavid Ahern 			if (nh)
558962b6803SDavid Ahern 				matched = true;
559962b6803SDavid Ahern 		} else {
5601cf844c7SDavid Ahern 			nh = spf6i->fib6_nh;
561962b6803SDavid Ahern 			if (__rt6_device_match(net, nh, saddr, oif, flags))
562962b6803SDavid Ahern 				matched = true;
563962b6803SDavid Ahern 		}
564962b6803SDavid Ahern 		if (matched) {
56575ef7389SDavid Ahern 			res->f6i = spf6i;
5667d21fec9SDavid Ahern 			goto out;
56775ef7389SDavid Ahern 		}
56875ef7389SDavid Ahern 	}
5691da177e4SLinus Torvalds 
57075ef7389SDavid Ahern 	if (oif && flags & RT6_LOOKUP_F_IFACE) {
57175ef7389SDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
5721cf844c7SDavid Ahern 		nh = res->f6i->fib6_nh;
5737d21fec9SDavid Ahern 		goto out;
57475ef7389SDavid Ahern 	}
57575ef7389SDavid Ahern 
576f88d8ea6SDavid Ahern 	if (unlikely(f6i->nh)) {
577f88d8ea6SDavid Ahern 		nh = nexthop_fib6_nh(f6i->nh);
578f88d8ea6SDavid Ahern 		if (nexthop_is_blackhole(f6i->nh))
579f88d8ea6SDavid Ahern 			goto out_blackhole;
580f88d8ea6SDavid Ahern 	} else {
5811cf844c7SDavid Ahern 		nh = f6i->fib6_nh;
582f88d8ea6SDavid Ahern 	}
583f88d8ea6SDavid Ahern 
5847d21fec9SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD) {
58575ef7389SDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
5861cf844c7SDavid Ahern 		nh = res->f6i->fib6_nh;
58775ef7389SDavid Ahern 	}
5887d21fec9SDavid Ahern out:
5897d21fec9SDavid Ahern 	res->nh = nh;
5907d21fec9SDavid Ahern 	res->fib6_type = res->f6i->fib6_type;
5917d21fec9SDavid Ahern 	res->fib6_flags = res->f6i->fib6_flags;
592f88d8ea6SDavid Ahern 	return;
593f88d8ea6SDavid Ahern 
594f88d8ea6SDavid Ahern out_blackhole:
595f88d8ea6SDavid Ahern 	res->fib6_flags |= RTF_REJECT;
596f88d8ea6SDavid Ahern 	res->fib6_type = RTN_BLACKHOLE;
597f88d8ea6SDavid Ahern 	res->nh = nh;
5981da177e4SLinus Torvalds }
5991da177e4SLinus Torvalds 
60027097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
601c2f17e82SHannes Frederic Sowa struct __rt6_probe_work {
602c2f17e82SHannes Frederic Sowa 	struct work_struct work;
603c2f17e82SHannes Frederic Sowa 	struct in6_addr target;
604c2f17e82SHannes Frederic Sowa 	struct net_device *dev;
605c2f17e82SHannes Frederic Sowa };
606c2f17e82SHannes Frederic Sowa 
607c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w)
608c2f17e82SHannes Frederic Sowa {
609c2f17e82SHannes Frederic Sowa 	struct in6_addr mcaddr;
610c2f17e82SHannes Frederic Sowa 	struct __rt6_probe_work *work =
611c2f17e82SHannes Frederic Sowa 		container_of(w, struct __rt6_probe_work, work);
612c2f17e82SHannes Frederic Sowa 
613c2f17e82SHannes Frederic Sowa 	addrconf_addr_solict_mult(&work->target, &mcaddr);
614adc176c5SErik Nordmark 	ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
615c2f17e82SHannes Frederic Sowa 	dev_put(work->dev);
616662f5533SMichael Büsch 	kfree(work);
617c2f17e82SHannes Frederic Sowa }
618c2f17e82SHannes Frederic Sowa 
619cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh)
62027097255SYOSHIFUJI Hideaki {
621f547fac6SSabrina Dubroca 	struct __rt6_probe_work *work = NULL;
6225e670d84SDavid Ahern 	const struct in6_addr *nh_gw;
623f2c31e32SEric Dumazet 	struct neighbour *neigh;
6245e670d84SDavid Ahern 	struct net_device *dev;
625f547fac6SSabrina Dubroca 	struct inet6_dev *idev;
6265e670d84SDavid Ahern 
62727097255SYOSHIFUJI Hideaki 	/*
62827097255SYOSHIFUJI Hideaki 	 * Okay, this does not seem to be appropriate
62927097255SYOSHIFUJI Hideaki 	 * for now, however, we need to check if it
63027097255SYOSHIFUJI Hideaki 	 * is really so; aka Router Reachability Probing.
63127097255SYOSHIFUJI Hideaki 	 *
63227097255SYOSHIFUJI Hideaki 	 * Router Reachability Probe MUST be rate-limited
63327097255SYOSHIFUJI Hideaki 	 * to no more than one per minute.
63427097255SYOSHIFUJI Hideaki 	 */
635cc3a86c8SDavid Ahern 	if (fib6_nh->fib_nh_gw_family)
636fdd6681dSAmerigo Wang 		return;
6375e670d84SDavid Ahern 
638cc3a86c8SDavid Ahern 	nh_gw = &fib6_nh->fib_nh_gw6;
639cc3a86c8SDavid Ahern 	dev = fib6_nh->fib_nh_dev;
6402152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
641f547fac6SSabrina Dubroca 	idev = __in6_dev_get(dev);
6425e670d84SDavid Ahern 	neigh = __ipv6_neigh_lookup_noref(dev, nh_gw);
6432152caeaSYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
6448d6c31bfSMartin KaFai Lau 		if (neigh->nud_state & NUD_VALID)
6458d6c31bfSMartin KaFai Lau 			goto out;
6468d6c31bfSMartin KaFai Lau 
6472152caeaSYOSHIFUJI Hideaki / 吉藤英明 		write_lock(&neigh->lock);
648990edb42SMartin KaFai Lau 		if (!(neigh->nud_state & NUD_VALID) &&
649990edb42SMartin KaFai Lau 		    time_after(jiffies,
650dcd1f572SDavid Ahern 			       neigh->updated + idev->cnf.rtr_probe_interval)) {
651c2f17e82SHannes Frederic Sowa 			work = kmalloc(sizeof(*work), GFP_ATOMIC);
652990edb42SMartin KaFai Lau 			if (work)
6537e980569SJiri Benc 				__neigh_set_probe_once(neigh);
654990edb42SMartin KaFai Lau 		}
655c2f17e82SHannes Frederic Sowa 		write_unlock(&neigh->lock);
656cc3a86c8SDavid Ahern 	} else if (time_after(jiffies, fib6_nh->last_probe +
657f547fac6SSabrina Dubroca 				       idev->cnf.rtr_probe_interval)) {
658990edb42SMartin KaFai Lau 		work = kmalloc(sizeof(*work), GFP_ATOMIC);
659990edb42SMartin KaFai Lau 	}
660c2f17e82SHannes Frederic Sowa 
661c2f17e82SHannes Frederic Sowa 	if (work) {
662cc3a86c8SDavid Ahern 		fib6_nh->last_probe = jiffies;
663c2f17e82SHannes Frederic Sowa 		INIT_WORK(&work->work, rt6_probe_deferred);
6645e670d84SDavid Ahern 		work->target = *nh_gw;
6655e670d84SDavid Ahern 		dev_hold(dev);
6665e670d84SDavid Ahern 		work->dev = dev;
667c2f17e82SHannes Frederic Sowa 		schedule_work(&work->work);
668c2f17e82SHannes Frederic Sowa 	}
669990edb42SMartin KaFai Lau 
6708d6c31bfSMartin KaFai Lau out:
6712152caeaSYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
672f2c31e32SEric Dumazet }
67327097255SYOSHIFUJI Hideaki #else
674cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh)
67527097255SYOSHIFUJI Hideaki {
67627097255SYOSHIFUJI Hideaki }
67727097255SYOSHIFUJI Hideaki #endif
67827097255SYOSHIFUJI Hideaki 
6791da177e4SLinus Torvalds /*
680554cfb7eSYOSHIFUJI Hideaki  * Default Router Selection (RFC 2461 6.3.6)
6811da177e4SLinus Torvalds  */
6821ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh)
6831da177e4SLinus Torvalds {
684afc154e9SHannes Frederic Sowa 	enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
6855e670d84SDavid Ahern 	struct neighbour *neigh;
686f2c31e32SEric Dumazet 
687145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_lock_bh();
6881ba9a895SDavid Ahern 	neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev,
6891ba9a895SDavid Ahern 					  &fib6_nh->fib_nh_gw6);
690145a3621SYOSHIFUJI Hideaki / 吉藤英明 	if (neigh) {
691145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_lock(&neigh->lock);
692554cfb7eSYOSHIFUJI Hideaki 		if (neigh->nud_state & NUD_VALID)
693afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
694398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
695a5a81f0bSPaul Marks 		else if (!(neigh->nud_state & NUD_FAILED))
696afc154e9SHannes Frederic Sowa 			ret = RT6_NUD_SUCCEED;
6977e980569SJiri Benc 		else
6987e980569SJiri Benc 			ret = RT6_NUD_FAIL_PROBE;
699398bcbebSYOSHIFUJI Hideaki #endif
700145a3621SYOSHIFUJI Hideaki / 吉藤英明 		read_unlock(&neigh->lock);
701afc154e9SHannes Frederic Sowa 	} else {
702afc154e9SHannes Frederic Sowa 		ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
7037e980569SJiri Benc 		      RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
704a5a81f0bSPaul Marks 	}
705145a3621SYOSHIFUJI Hideaki / 吉藤英明 	rcu_read_unlock_bh();
706145a3621SYOSHIFUJI Hideaki / 吉藤英明 
707a5a81f0bSPaul Marks 	return ret;
7081da177e4SLinus Torvalds }
7091da177e4SLinus Torvalds 
710702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif,
711702cea56SDavid Ahern 			   int strict)
712554cfb7eSYOSHIFUJI Hideaki {
7136e1809a5SDavid Ahern 	int m = 0;
7144d0c5911SYOSHIFUJI Hideaki 
7156e1809a5SDavid Ahern 	if (!oif || nh->fib_nh_dev->ifindex == oif)
7166e1809a5SDavid Ahern 		m = 2;
7176e1809a5SDavid Ahern 
71877d16f45SYOSHIFUJI Hideaki 	if (!m && (strict & RT6_LOOKUP_F_IFACE))
719afc154e9SHannes Frederic Sowa 		return RT6_NUD_FAIL_HARD;
720ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
721702cea56SDavid Ahern 	m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2;
722ebacaaa0SYOSHIFUJI Hideaki #endif
7231ba9a895SDavid Ahern 	if ((strict & RT6_LOOKUP_F_REACHABLE) &&
724702cea56SDavid Ahern 	    !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) {
7251ba9a895SDavid Ahern 		int n = rt6_check_neigh(nh);
726afc154e9SHannes Frederic Sowa 		if (n < 0)
727afc154e9SHannes Frederic Sowa 			return n;
728afc154e9SHannes Frederic Sowa 	}
729554cfb7eSYOSHIFUJI Hideaki 	return m;
730554cfb7eSYOSHIFUJI Hideaki }
731554cfb7eSYOSHIFUJI Hideaki 
73228679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags,
73328679ed1SDavid Ahern 		       int oif, int strict, int *mpri, bool *do_rr)
734554cfb7eSYOSHIFUJI Hideaki {
735afc154e9SHannes Frederic Sowa 	bool match_do_rr = false;
73628679ed1SDavid Ahern 	bool rc = false;
73728679ed1SDavid Ahern 	int m;
73835103d11SAndy Gospodarek 
73928679ed1SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD)
7408067bb8cSIdo Schimmel 		goto out;
7418067bb8cSIdo Schimmel 
74228679ed1SDavid Ahern 	if (ip6_ignore_linkdown(nh->fib_nh_dev) &&
74328679ed1SDavid Ahern 	    nh->fib_nh_flags & RTNH_F_LINKDOWN &&
744d5d32e4bSDavid Ahern 	    !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
74535103d11SAndy Gospodarek 		goto out;
746554cfb7eSYOSHIFUJI Hideaki 
74728679ed1SDavid Ahern 	m = rt6_score_route(nh, fib6_flags, oif, strict);
7487e980569SJiri Benc 	if (m == RT6_NUD_FAIL_DO_RR) {
749afc154e9SHannes Frederic Sowa 		match_do_rr = true;
750afc154e9SHannes Frederic Sowa 		m = 0; /* lowest valid score */
7517e980569SJiri Benc 	} else if (m == RT6_NUD_FAIL_HARD) {
752f11e6659SDavid S. Miller 		goto out;
7531da177e4SLinus Torvalds 	}
754f11e6659SDavid S. Miller 
755afc154e9SHannes Frederic Sowa 	if (strict & RT6_LOOKUP_F_REACHABLE)
75628679ed1SDavid Ahern 		rt6_probe(nh);
757afc154e9SHannes Frederic Sowa 
7587e980569SJiri Benc 	/* note that m can be RT6_NUD_FAIL_PROBE at this point */
759afc154e9SHannes Frederic Sowa 	if (m > *mpri) {
760afc154e9SHannes Frederic Sowa 		*do_rr = match_do_rr;
761afc154e9SHannes Frederic Sowa 		*mpri = m;
76228679ed1SDavid Ahern 		rc = true;
763afc154e9SHannes Frederic Sowa 	}
764f11e6659SDavid S. Miller out:
76528679ed1SDavid Ahern 	return rc;
7661da177e4SLinus Torvalds }
7671da177e4SLinus Torvalds 
76817a5984eSDavid Ahern struct fib6_nh_frl_arg {
76917a5984eSDavid Ahern 	u32		flags;
77017a5984eSDavid Ahern 	int		oif;
77117a5984eSDavid Ahern 	int		strict;
77217a5984eSDavid Ahern 	int		*mpri;
77317a5984eSDavid Ahern 	bool		*do_rr;
77417a5984eSDavid Ahern 	struct fib6_nh	*nh;
77517a5984eSDavid Ahern };
77617a5984eSDavid Ahern 
77717a5984eSDavid Ahern static int rt6_nh_find_match(struct fib6_nh *nh, void *_arg)
77817a5984eSDavid Ahern {
77917a5984eSDavid Ahern 	struct fib6_nh_frl_arg *arg = _arg;
78017a5984eSDavid Ahern 
78117a5984eSDavid Ahern 	arg->nh = nh;
78217a5984eSDavid Ahern 	return find_match(nh, arg->flags, arg->oif, arg->strict,
78317a5984eSDavid Ahern 			  arg->mpri, arg->do_rr);
78417a5984eSDavid Ahern }
78517a5984eSDavid Ahern 
786b7bc4b6aSDavid Ahern static void __find_rr_leaf(struct fib6_info *f6i_start,
78730c15f03SDavid Ahern 			   struct fib6_info *nomatch, u32 metric,
788b7bc4b6aSDavid Ahern 			   struct fib6_result *res, struct fib6_info **cont,
78930c15f03SDavid Ahern 			   int oif, int strict, bool *do_rr, int *mpri)
79030c15f03SDavid Ahern {
791b7bc4b6aSDavid Ahern 	struct fib6_info *f6i;
79230c15f03SDavid Ahern 
793b7bc4b6aSDavid Ahern 	for (f6i = f6i_start;
794b7bc4b6aSDavid Ahern 	     f6i && f6i != nomatch;
795b7bc4b6aSDavid Ahern 	     f6i = rcu_dereference(f6i->fib6_next)) {
79617a5984eSDavid Ahern 		bool matched = false;
79730c15f03SDavid Ahern 		struct fib6_nh *nh;
79830c15f03SDavid Ahern 
799b7bc4b6aSDavid Ahern 		if (cont && f6i->fib6_metric != metric) {
800b7bc4b6aSDavid Ahern 			*cont = f6i;
80130c15f03SDavid Ahern 			return;
80230c15f03SDavid Ahern 		}
80330c15f03SDavid Ahern 
804b7bc4b6aSDavid Ahern 		if (fib6_check_expired(f6i))
80530c15f03SDavid Ahern 			continue;
80630c15f03SDavid Ahern 
80717a5984eSDavid Ahern 		if (unlikely(f6i->nh)) {
80817a5984eSDavid Ahern 			struct fib6_nh_frl_arg arg = {
80917a5984eSDavid Ahern 				.flags  = f6i->fib6_flags,
81017a5984eSDavid Ahern 				.oif    = oif,
81117a5984eSDavid Ahern 				.strict = strict,
81217a5984eSDavid Ahern 				.mpri   = mpri,
81317a5984eSDavid Ahern 				.do_rr  = do_rr
81417a5984eSDavid Ahern 			};
81517a5984eSDavid Ahern 
81617a5984eSDavid Ahern 			if (nexthop_is_blackhole(f6i->nh)) {
81717a5984eSDavid Ahern 				res->fib6_flags = RTF_REJECT;
81817a5984eSDavid Ahern 				res->fib6_type = RTN_BLACKHOLE;
81917a5984eSDavid Ahern 				res->f6i = f6i;
82017a5984eSDavid Ahern 				res->nh = nexthop_fib6_nh(f6i->nh);
82117a5984eSDavid Ahern 				return;
82217a5984eSDavid Ahern 			}
82317a5984eSDavid Ahern 			if (nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_find_match,
82417a5984eSDavid Ahern 						     &arg)) {
82517a5984eSDavid Ahern 				matched = true;
82617a5984eSDavid Ahern 				nh = arg.nh;
82717a5984eSDavid Ahern 			}
82817a5984eSDavid Ahern 		} else {
8291cf844c7SDavid Ahern 			nh = f6i->fib6_nh;
83017a5984eSDavid Ahern 			if (find_match(nh, f6i->fib6_flags, oif, strict,
83117a5984eSDavid Ahern 				       mpri, do_rr))
83217a5984eSDavid Ahern 				matched = true;
83317a5984eSDavid Ahern 		}
83417a5984eSDavid Ahern 		if (matched) {
835b7bc4b6aSDavid Ahern 			res->f6i = f6i;
836b7bc4b6aSDavid Ahern 			res->nh = nh;
8377d21fec9SDavid Ahern 			res->fib6_flags = f6i->fib6_flags;
8387d21fec9SDavid Ahern 			res->fib6_type = f6i->fib6_type;
839b7bc4b6aSDavid Ahern 		}
84030c15f03SDavid Ahern 	}
84130c15f03SDavid Ahern }
84230c15f03SDavid Ahern 
843b7bc4b6aSDavid Ahern static void find_rr_leaf(struct fib6_node *fn, struct fib6_info *leaf,
844b7bc4b6aSDavid Ahern 			 struct fib6_info *rr_head, int oif, int strict,
845b7bc4b6aSDavid Ahern 			 bool *do_rr, struct fib6_result *res)
846f11e6659SDavid S. Miller {
847b7bc4b6aSDavid Ahern 	u32 metric = rr_head->fib6_metric;
848b7bc4b6aSDavid Ahern 	struct fib6_info *cont = NULL;
849f11e6659SDavid S. Miller 	int mpri = -1;
850f11e6659SDavid S. Miller 
851b7bc4b6aSDavid Ahern 	__find_rr_leaf(rr_head, NULL, metric, res, &cont,
85230c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
8539fbdcfafSSteffen Klassert 
854b7bc4b6aSDavid Ahern 	__find_rr_leaf(leaf, rr_head, metric, res, &cont,
85530c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
8569fbdcfafSSteffen Klassert 
857b7bc4b6aSDavid Ahern 	if (res->f6i || !cont)
858b7bc4b6aSDavid Ahern 		return;
8599fbdcfafSSteffen Klassert 
860b7bc4b6aSDavid Ahern 	__find_rr_leaf(cont, NULL, metric, res, NULL,
86130c15f03SDavid Ahern 		       oif, strict, do_rr, &mpri);
862f11e6659SDavid S. Miller }
863f11e6659SDavid S. Miller 
864b7bc4b6aSDavid Ahern static void rt6_select(struct net *net, struct fib6_node *fn, int oif,
865b7bc4b6aSDavid Ahern 		       struct fib6_result *res, int strict)
866f11e6659SDavid S. Miller {
8678d1c802bSDavid Ahern 	struct fib6_info *leaf = rcu_dereference(fn->leaf);
868b7bc4b6aSDavid Ahern 	struct fib6_info *rt0;
869afc154e9SHannes Frederic Sowa 	bool do_rr = false;
87017ecf590SWei Wang 	int key_plen;
871f11e6659SDavid S. Miller 
872b7bc4b6aSDavid Ahern 	/* make sure this function or its helpers sets f6i */
873b7bc4b6aSDavid Ahern 	res->f6i = NULL;
874b7bc4b6aSDavid Ahern 
875421842edSDavid Ahern 	if (!leaf || leaf == net->ipv6.fib6_null_entry)
876b7bc4b6aSDavid Ahern 		goto out;
8778d1040e8SWei Wang 
87866f5d6ceSWei Wang 	rt0 = rcu_dereference(fn->rr_ptr);
879f11e6659SDavid S. Miller 	if (!rt0)
88066f5d6ceSWei Wang 		rt0 = leaf;
881f11e6659SDavid S. Miller 
88217ecf590SWei Wang 	/* Double check to make sure fn is not an intermediate node
88317ecf590SWei Wang 	 * and fn->leaf does not points to its child's leaf
88417ecf590SWei Wang 	 * (This might happen if all routes under fn are deleted from
88517ecf590SWei Wang 	 * the tree and fib6_repair_tree() is called on the node.)
88617ecf590SWei Wang 	 */
88793c2fb25SDavid Ahern 	key_plen = rt0->fib6_dst.plen;
88817ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES
88993c2fb25SDavid Ahern 	if (rt0->fib6_src.plen)
89093c2fb25SDavid Ahern 		key_plen = rt0->fib6_src.plen;
89117ecf590SWei Wang #endif
89217ecf590SWei Wang 	if (fn->fn_bit != key_plen)
893b7bc4b6aSDavid Ahern 		goto out;
89417ecf590SWei Wang 
895b7bc4b6aSDavid Ahern 	find_rr_leaf(fn, leaf, rt0, oif, strict, &do_rr, res);
896afc154e9SHannes Frederic Sowa 	if (do_rr) {
8978fb11a9aSDavid Ahern 		struct fib6_info *next = rcu_dereference(rt0->fib6_next);
898f11e6659SDavid S. Miller 
899554cfb7eSYOSHIFUJI Hideaki 		/* no entries matched; do round-robin */
90093c2fb25SDavid Ahern 		if (!next || next->fib6_metric != rt0->fib6_metric)
9018d1040e8SWei Wang 			next = leaf;
902f11e6659SDavid S. Miller 
90366f5d6ceSWei Wang 		if (next != rt0) {
90493c2fb25SDavid Ahern 			spin_lock_bh(&leaf->fib6_table->tb6_lock);
90566f5d6ceSWei Wang 			/* make sure next is not being deleted from the tree */
90693c2fb25SDavid Ahern 			if (next->fib6_node)
90766f5d6ceSWei Wang 				rcu_assign_pointer(fn->rr_ptr, next);
90893c2fb25SDavid Ahern 			spin_unlock_bh(&leaf->fib6_table->tb6_lock);
90966f5d6ceSWei Wang 		}
910554cfb7eSYOSHIFUJI Hideaki 	}
911554cfb7eSYOSHIFUJI Hideaki 
912b7bc4b6aSDavid Ahern out:
913b7bc4b6aSDavid Ahern 	if (!res->f6i) {
914b7bc4b6aSDavid Ahern 		res->f6i = net->ipv6.fib6_null_entry;
9151cf844c7SDavid Ahern 		res->nh = res->f6i->fib6_nh;
9167d21fec9SDavid Ahern 		res->fib6_flags = res->f6i->fib6_flags;
9177d21fec9SDavid Ahern 		res->fib6_type = res->f6i->fib6_type;
918b7bc4b6aSDavid Ahern 	}
9191da177e4SLinus Torvalds }
9201da177e4SLinus Torvalds 
92185bd05deSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_result *res)
9228b9df265SMartin KaFai Lau {
92385bd05deSDavid Ahern 	return (res->f6i->fib6_flags & RTF_NONEXTHOP) ||
92485bd05deSDavid Ahern 	       res->nh->fib_nh_gw_family;
9258b9df265SMartin KaFai Lau }
9268b9df265SMartin KaFai Lau 
92770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
92870ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
929b71d1d42SEric Dumazet 		  const struct in6_addr *gwaddr)
93070ceb4f5SYOSHIFUJI Hideaki {
931c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
93270ceb4f5SYOSHIFUJI Hideaki 	struct route_info *rinfo = (struct route_info *) opt;
93370ceb4f5SYOSHIFUJI Hideaki 	struct in6_addr prefix_buf, *prefix;
93470ceb4f5SYOSHIFUJI Hideaki 	unsigned int pref;
9354bed72e4SYOSHIFUJI Hideaki 	unsigned long lifetime;
9368d1c802bSDavid Ahern 	struct fib6_info *rt;
93770ceb4f5SYOSHIFUJI Hideaki 
93870ceb4f5SYOSHIFUJI Hideaki 	if (len < sizeof(struct route_info)) {
93970ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94070ceb4f5SYOSHIFUJI Hideaki 	}
94170ceb4f5SYOSHIFUJI Hideaki 
94270ceb4f5SYOSHIFUJI Hideaki 	/* Sanity check for prefix_len and length */
94370ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length > 3) {
94470ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94570ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 128) {
94670ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
94770ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 64) {
94870ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 2) {
94970ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
95070ceb4f5SYOSHIFUJI Hideaki 		}
95170ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 0) {
95270ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 1) {
95370ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
95470ceb4f5SYOSHIFUJI Hideaki 		}
95570ceb4f5SYOSHIFUJI Hideaki 	}
95670ceb4f5SYOSHIFUJI Hideaki 
95770ceb4f5SYOSHIFUJI Hideaki 	pref = rinfo->route_pref;
95870ceb4f5SYOSHIFUJI Hideaki 	if (pref == ICMPV6_ROUTER_PREF_INVALID)
9593933fc95SJens Rosenboom 		return -EINVAL;
96070ceb4f5SYOSHIFUJI Hideaki 
9614bed72e4SYOSHIFUJI Hideaki 	lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
96270ceb4f5SYOSHIFUJI Hideaki 
96370ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length == 3)
96470ceb4f5SYOSHIFUJI Hideaki 		prefix = (struct in6_addr *)rinfo->prefix;
96570ceb4f5SYOSHIFUJI Hideaki 	else {
96670ceb4f5SYOSHIFUJI Hideaki 		/* this function is safe */
96770ceb4f5SYOSHIFUJI Hideaki 		ipv6_addr_prefix(&prefix_buf,
96870ceb4f5SYOSHIFUJI Hideaki 				 (struct in6_addr *)rinfo->prefix,
96970ceb4f5SYOSHIFUJI Hideaki 				 rinfo->prefix_len);
97070ceb4f5SYOSHIFUJI Hideaki 		prefix = &prefix_buf;
97170ceb4f5SYOSHIFUJI Hideaki 	}
97270ceb4f5SYOSHIFUJI Hideaki 
973f104a567SDuan Jiong 	if (rinfo->prefix_len == 0)
974afb1d4b5SDavid Ahern 		rt = rt6_get_dflt_router(net, gwaddr, dev);
975f104a567SDuan Jiong 	else
976f104a567SDuan Jiong 		rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
977830218c1SDavid Ahern 					gwaddr, dev);
97870ceb4f5SYOSHIFUJI Hideaki 
97970ceb4f5SYOSHIFUJI Hideaki 	if (rt && !lifetime) {
980afb1d4b5SDavid Ahern 		ip6_del_rt(net, rt);
98170ceb4f5SYOSHIFUJI Hideaki 		rt = NULL;
98270ceb4f5SYOSHIFUJI Hideaki 	}
98370ceb4f5SYOSHIFUJI Hideaki 
98470ceb4f5SYOSHIFUJI Hideaki 	if (!rt && lifetime)
985830218c1SDavid Ahern 		rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
986830218c1SDavid Ahern 					dev, pref);
98770ceb4f5SYOSHIFUJI Hideaki 	else if (rt)
98893c2fb25SDavid Ahern 		rt->fib6_flags = RTF_ROUTEINFO |
98993c2fb25SDavid Ahern 				 (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
99070ceb4f5SYOSHIFUJI Hideaki 
99170ceb4f5SYOSHIFUJI Hideaki 	if (rt) {
9921716a961SGao feng 		if (!addrconf_finite_timeout(lifetime))
99314895687SDavid Ahern 			fib6_clean_expires(rt);
9941716a961SGao feng 		else
99514895687SDavid Ahern 			fib6_set_expires(rt, jiffies + HZ * lifetime);
9961716a961SGao feng 
99793531c67SDavid Ahern 		fib6_info_release(rt);
99870ceb4f5SYOSHIFUJI Hideaki 	}
99970ceb4f5SYOSHIFUJI Hideaki 	return 0;
100070ceb4f5SYOSHIFUJI Hideaki }
100170ceb4f5SYOSHIFUJI Hideaki #endif
100270ceb4f5SYOSHIFUJI Hideaki 
1003ae90d867SDavid Ahern /*
1004ae90d867SDavid Ahern  *	Misc support functions
1005ae90d867SDavid Ahern  */
1006ae90d867SDavid Ahern 
1007ae90d867SDavid Ahern /* called with rcu_lock held */
10080d161581SDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(const struct fib6_result *res)
1009ae90d867SDavid Ahern {
10100d161581SDavid Ahern 	struct net_device *dev = res->nh->fib_nh_dev;
1011ae90d867SDavid Ahern 
10127d21fec9SDavid Ahern 	if (res->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) {
1013ae90d867SDavid Ahern 		/* for copies of local routes, dst->dev needs to be the
1014ae90d867SDavid Ahern 		 * device if it is a master device, the master device if
1015ae90d867SDavid Ahern 		 * device is enslaved, and the loopback as the default
1016ae90d867SDavid Ahern 		 */
1017ae90d867SDavid Ahern 		if (netif_is_l3_slave(dev) &&
10187d21fec9SDavid Ahern 		    !rt6_need_strict(&res->f6i->fib6_dst.addr))
1019ae90d867SDavid Ahern 			dev = l3mdev_master_dev_rcu(dev);
1020ae90d867SDavid Ahern 		else if (!netif_is_l3_master(dev))
1021ae90d867SDavid Ahern 			dev = dev_net(dev)->loopback_dev;
1022ae90d867SDavid Ahern 		/* last case is netif_is_l3_master(dev) is true in which
1023ae90d867SDavid Ahern 		 * case we want dev returned to be dev
1024ae90d867SDavid Ahern 		 */
1025ae90d867SDavid Ahern 	}
1026ae90d867SDavid Ahern 
1027ae90d867SDavid Ahern 	return dev;
1028ae90d867SDavid Ahern }
1029ae90d867SDavid Ahern 
10306edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = {
10316edb3c96SDavid Ahern 	[RTN_UNSPEC]	= 0,
10326edb3c96SDavid Ahern 	[RTN_UNICAST]	= 0,
10336edb3c96SDavid Ahern 	[RTN_LOCAL]	= 0,
10346edb3c96SDavid Ahern 	[RTN_BROADCAST]	= 0,
10356edb3c96SDavid Ahern 	[RTN_ANYCAST]	= 0,
10366edb3c96SDavid Ahern 	[RTN_MULTICAST]	= 0,
10376edb3c96SDavid Ahern 	[RTN_BLACKHOLE]	= -EINVAL,
10386edb3c96SDavid Ahern 	[RTN_UNREACHABLE] = -EHOSTUNREACH,
10396edb3c96SDavid Ahern 	[RTN_PROHIBIT]	= -EACCES,
10406edb3c96SDavid Ahern 	[RTN_THROW]	= -EAGAIN,
10416edb3c96SDavid Ahern 	[RTN_NAT]	= -EINVAL,
10426edb3c96SDavid Ahern 	[RTN_XRESOLVE]	= -EINVAL,
10436edb3c96SDavid Ahern };
10446edb3c96SDavid Ahern 
10456edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type)
10466edb3c96SDavid Ahern {
10476edb3c96SDavid Ahern 	return fib6_prop[fib6_type];
10486edb3c96SDavid Ahern }
10496edb3c96SDavid Ahern 
10508d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt)
10513b6761d1SDavid Ahern {
10523b6761d1SDavid Ahern 	unsigned short flags = 0;
10533b6761d1SDavid Ahern 
10543b6761d1SDavid Ahern 	if (rt->dst_nocount)
10553b6761d1SDavid Ahern 		flags |= DST_NOCOUNT;
10563b6761d1SDavid Ahern 	if (rt->dst_nopolicy)
10573b6761d1SDavid Ahern 		flags |= DST_NOPOLICY;
10583b6761d1SDavid Ahern 	if (rt->dst_host)
10593b6761d1SDavid Ahern 		flags |= DST_HOST;
10603b6761d1SDavid Ahern 
10613b6761d1SDavid Ahern 	return flags;
10623b6761d1SDavid Ahern }
10633b6761d1SDavid Ahern 
10647d21fec9SDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, u8 fib6_type)
10656edb3c96SDavid Ahern {
10667d21fec9SDavid Ahern 	rt->dst.error = ip6_rt_type_to_error(fib6_type);
10676edb3c96SDavid Ahern 
10687d21fec9SDavid Ahern 	switch (fib6_type) {
10696edb3c96SDavid Ahern 	case RTN_BLACKHOLE:
10706edb3c96SDavid Ahern 		rt->dst.output = dst_discard_out;
10716edb3c96SDavid Ahern 		rt->dst.input = dst_discard;
10726edb3c96SDavid Ahern 		break;
10736edb3c96SDavid Ahern 	case RTN_PROHIBIT:
10746edb3c96SDavid Ahern 		rt->dst.output = ip6_pkt_prohibit_out;
10756edb3c96SDavid Ahern 		rt->dst.input = ip6_pkt_prohibit;
10766edb3c96SDavid Ahern 		break;
10776edb3c96SDavid Ahern 	case RTN_THROW:
10786edb3c96SDavid Ahern 	case RTN_UNREACHABLE:
10796edb3c96SDavid Ahern 	default:
10806edb3c96SDavid Ahern 		rt->dst.output = ip6_pkt_discard_out;
10816edb3c96SDavid Ahern 		rt->dst.input = ip6_pkt_discard;
10826edb3c96SDavid Ahern 		break;
10836edb3c96SDavid Ahern 	}
10846edb3c96SDavid Ahern }
10856edb3c96SDavid Ahern 
10860d161581SDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, const struct fib6_result *res)
10876edb3c96SDavid Ahern {
10887d21fec9SDavid Ahern 	struct fib6_info *f6i = res->f6i;
10890d161581SDavid Ahern 
10907d21fec9SDavid Ahern 	if (res->fib6_flags & RTF_REJECT) {
10917d21fec9SDavid Ahern 		ip6_rt_init_dst_reject(rt, res->fib6_type);
10926edb3c96SDavid Ahern 		return;
10936edb3c96SDavid Ahern 	}
10946edb3c96SDavid Ahern 
10956edb3c96SDavid Ahern 	rt->dst.error = 0;
10966edb3c96SDavid Ahern 	rt->dst.output = ip6_output;
10976edb3c96SDavid Ahern 
10987d21fec9SDavid Ahern 	if (res->fib6_type == RTN_LOCAL || res->fib6_type == RTN_ANYCAST) {
10996edb3c96SDavid Ahern 		rt->dst.input = ip6_input;
11007d21fec9SDavid Ahern 	} else if (ipv6_addr_type(&f6i->fib6_dst.addr) & IPV6_ADDR_MULTICAST) {
11016edb3c96SDavid Ahern 		rt->dst.input = ip6_mc_input;
11026edb3c96SDavid Ahern 	} else {
11036edb3c96SDavid Ahern 		rt->dst.input = ip6_forward;
11046edb3c96SDavid Ahern 	}
11056edb3c96SDavid Ahern 
11060d161581SDavid Ahern 	if (res->nh->fib_nh_lws) {
11070d161581SDavid Ahern 		rt->dst.lwtstate = lwtstate_get(res->nh->fib_nh_lws);
11086edb3c96SDavid Ahern 		lwtunnel_set_redirect(&rt->dst);
11096edb3c96SDavid Ahern 	}
11106edb3c96SDavid Ahern 
11116edb3c96SDavid Ahern 	rt->dst.lastuse = jiffies;
11126edb3c96SDavid Ahern }
11136edb3c96SDavid Ahern 
1114e873e4b9SWei Wang /* Caller must already hold reference to @from */
11158d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from)
1116ae90d867SDavid Ahern {
1117ae90d867SDavid Ahern 	rt->rt6i_flags &= ~RTF_EXPIRES;
1118a68886a6SDavid Ahern 	rcu_assign_pointer(rt->from, from);
1119e1255ed4SDavid Ahern 	ip_dst_init_metrics(&rt->dst, from->fib6_metrics);
1120ae90d867SDavid Ahern }
1121ae90d867SDavid Ahern 
11220d161581SDavid Ahern /* Caller must already hold reference to f6i in result */
11230d161581SDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, const struct fib6_result *res)
1124ae90d867SDavid Ahern {
11250d161581SDavid Ahern 	const struct fib6_nh *nh = res->nh;
11260d161581SDavid Ahern 	const struct net_device *dev = nh->fib_nh_dev;
11270d161581SDavid Ahern 	struct fib6_info *f6i = res->f6i;
1128dcd1f572SDavid Ahern 
11290d161581SDavid Ahern 	ip6_rt_init_dst(rt, res);
11306edb3c96SDavid Ahern 
11310d161581SDavid Ahern 	rt->rt6i_dst = f6i->fib6_dst;
1132dcd1f572SDavid Ahern 	rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL;
11337d21fec9SDavid Ahern 	rt->rt6i_flags = res->fib6_flags;
11340d161581SDavid Ahern 	if (nh->fib_nh_gw_family) {
11350d161581SDavid Ahern 		rt->rt6i_gateway = nh->fib_nh_gw6;
11362b2450caSDavid Ahern 		rt->rt6i_flags |= RTF_GATEWAY;
11372b2450caSDavid Ahern 	}
11380d161581SDavid Ahern 	rt6_set_from(rt, f6i);
1139ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES
11400d161581SDavid Ahern 	rt->rt6i_src = f6i->fib6_src;
1141ae90d867SDavid Ahern #endif
1142ae90d867SDavid Ahern }
1143ae90d867SDavid Ahern 
1144a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
1145a3c00e46SMartin KaFai Lau 					struct in6_addr *saddr)
1146a3c00e46SMartin KaFai Lau {
114766f5d6ceSWei Wang 	struct fib6_node *pn, *sn;
1148a3c00e46SMartin KaFai Lau 	while (1) {
1149a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_TL_ROOT)
1150a3c00e46SMartin KaFai Lau 			return NULL;
115166f5d6ceSWei Wang 		pn = rcu_dereference(fn->parent);
115266f5d6ceSWei Wang 		sn = FIB6_SUBTREE(pn);
115366f5d6ceSWei Wang 		if (sn && sn != fn)
11546454743bSDavid Ahern 			fn = fib6_node_lookup(sn, NULL, saddr);
1155a3c00e46SMartin KaFai Lau 		else
1156a3c00e46SMartin KaFai Lau 			fn = pn;
1157a3c00e46SMartin KaFai Lau 		if (fn->fn_flags & RTN_RTINFO)
1158a3c00e46SMartin KaFai Lau 			return fn;
1159a3c00e46SMartin KaFai Lau 	}
1160a3c00e46SMartin KaFai Lau }
1161c71099acSThomas Graf 
116210585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt)
1163d3843fe5SWei Wang {
1164d3843fe5SWei Wang 	struct rt6_info *rt = *prt;
1165d3843fe5SWei Wang 
1166d3843fe5SWei Wang 	if (dst_hold_safe(&rt->dst))
1167d3843fe5SWei Wang 		return true;
116810585b43SDavid Ahern 	if (net) {
1169d3843fe5SWei Wang 		rt = net->ipv6.ip6_null_entry;
1170d3843fe5SWei Wang 		dst_hold(&rt->dst);
1171d3843fe5SWei Wang 	} else {
1172d3843fe5SWei Wang 		rt = NULL;
1173d3843fe5SWei Wang 	}
1174d3843fe5SWei Wang 	*prt = rt;
1175d3843fe5SWei Wang 	return false;
1176d3843fe5SWei Wang }
1177d3843fe5SWei Wang 
1178dec9b0e2SDavid Ahern /* called with rcu_lock held */
11799b6b35abSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(const struct fib6_result *res)
1180dec9b0e2SDavid Ahern {
11819b6b35abSDavid Ahern 	struct net_device *dev = res->nh->fib_nh_dev;
11829b6b35abSDavid Ahern 	struct fib6_info *f6i = res->f6i;
11839b6b35abSDavid Ahern 	unsigned short flags;
1184dec9b0e2SDavid Ahern 	struct rt6_info *nrt;
1185dec9b0e2SDavid Ahern 
11869b6b35abSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
11871c87e79aSXin Long 		goto fallback;
1188e873e4b9SWei Wang 
11899b6b35abSDavid Ahern 	flags = fib6_info_dst_flags(f6i);
119093531c67SDavid Ahern 	nrt = ip6_dst_alloc(dev_net(dev), dev, flags);
11911c87e79aSXin Long 	if (!nrt) {
11929b6b35abSDavid Ahern 		fib6_info_release(f6i);
11931c87e79aSXin Long 		goto fallback;
11941c87e79aSXin Long 	}
1195dec9b0e2SDavid Ahern 
11960d161581SDavid Ahern 	ip6_rt_copy_init(nrt, res);
11971c87e79aSXin Long 	return nrt;
11981c87e79aSXin Long 
11991c87e79aSXin Long fallback:
12001c87e79aSXin Long 	nrt = dev_net(dev)->ipv6.ip6_null_entry;
12011c87e79aSXin Long 	dst_hold(&nrt->dst);
1202dec9b0e2SDavid Ahern 	return nrt;
1203dec9b0e2SDavid Ahern }
1204dec9b0e2SDavid Ahern 
12058ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net,
12068ed67789SDaniel Lezcano 					     struct fib6_table *table,
1207b75cc8f9SDavid Ahern 					     struct flowi6 *fl6,
1208b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
1209b75cc8f9SDavid Ahern 					     int flags)
12101da177e4SLinus Torvalds {
1211b1d40991SDavid Ahern 	struct fib6_result res = {};
12121da177e4SLinus Torvalds 	struct fib6_node *fn;
121323fb93a4SDavid Ahern 	struct rt6_info *rt;
12141da177e4SLinus Torvalds 
1215b6cdbc85SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1216b6cdbc85SDavid Ahern 		flags &= ~RT6_LOOKUP_F_IFACE;
1217b6cdbc85SDavid Ahern 
121866f5d6ceSWei Wang 	rcu_read_lock();
12196454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
1220c71099acSThomas Graf restart:
1221b1d40991SDavid Ahern 	res.f6i = rcu_dereference(fn->leaf);
1222b1d40991SDavid Ahern 	if (!res.f6i)
1223b1d40991SDavid Ahern 		res.f6i = net->ipv6.fib6_null_entry;
1224af52a52cSDavid Ahern 	else
122575ef7389SDavid Ahern 		rt6_device_match(net, &res, &fl6->saddr, fl6->flowi6_oif,
122675ef7389SDavid Ahern 				 flags);
1227af52a52cSDavid Ahern 
1228b1d40991SDavid Ahern 	if (res.f6i == net->ipv6.fib6_null_entry) {
1229a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
1230a3c00e46SMartin KaFai Lau 		if (fn)
1231a3c00e46SMartin KaFai Lau 			goto restart;
1232af52a52cSDavid Ahern 
1233af52a52cSDavid Ahern 		rt = net->ipv6.ip6_null_entry;
1234af52a52cSDavid Ahern 		dst_hold(&rt->dst);
1235af52a52cSDavid Ahern 		goto out;
1236f88d8ea6SDavid Ahern 	} else if (res.fib6_flags & RTF_REJECT) {
1237f88d8ea6SDavid Ahern 		goto do_create;
1238a3c00e46SMartin KaFai Lau 	}
12392b760fcfSWei Wang 
1240b1d40991SDavid Ahern 	fib6_select_path(net, &res, fl6, fl6->flowi6_oif,
1241b1d40991SDavid Ahern 			 fl6->flowi6_oif != 0, skb, flags);
1242b1d40991SDavid Ahern 
12434c9483b2SDavid S. Miller 	/* Search through exception table */
12447e4b5128SDavid Ahern 	rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr);
124523fb93a4SDavid Ahern 	if (rt) {
124610585b43SDavid Ahern 		if (ip6_hold_safe(net, &rt))
1247d3843fe5SWei Wang 			dst_use_noref(&rt->dst, jiffies);
124823fb93a4SDavid Ahern 	} else {
1249f88d8ea6SDavid Ahern do_create:
12509b6b35abSDavid Ahern 		rt = ip6_create_rt_rcu(&res);
1251dec9b0e2SDavid Ahern 	}
1252d3843fe5SWei Wang 
1253af52a52cSDavid Ahern out:
12548ff2e5b2SDavid Ahern 	trace_fib6_table_lookup(net, &res, table, fl6);
1255af52a52cSDavid Ahern 
125666f5d6ceSWei Wang 	rcu_read_unlock();
1257b811580dSDavid Ahern 
12581da177e4SLinus Torvalds 	return rt;
1259c71099acSThomas Graf }
1260c71099acSThomas Graf 
1261ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
1262b75cc8f9SDavid Ahern 				   const struct sk_buff *skb, int flags)
1263ea6e574eSFlorian Westphal {
1264b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup);
1265ea6e574eSFlorian Westphal }
1266ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup);
1267ea6e574eSFlorian Westphal 
12689acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
1269b75cc8f9SDavid Ahern 			    const struct in6_addr *saddr, int oif,
1270b75cc8f9SDavid Ahern 			    const struct sk_buff *skb, int strict)
1271c71099acSThomas Graf {
12724c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
12734c9483b2SDavid S. Miller 		.flowi6_oif = oif,
12744c9483b2SDavid S. Miller 		.daddr = *daddr,
1275c71099acSThomas Graf 	};
1276c71099acSThomas Graf 	struct dst_entry *dst;
127777d16f45SYOSHIFUJI Hideaki 	int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
1278c71099acSThomas Graf 
1279adaa70bbSThomas Graf 	if (saddr) {
12804c9483b2SDavid S. Miller 		memcpy(&fl6.saddr, saddr, sizeof(*saddr));
1281adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
1282adaa70bbSThomas Graf 	}
1283adaa70bbSThomas Graf 
1284b75cc8f9SDavid Ahern 	dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup);
1285c71099acSThomas Graf 	if (dst->error == 0)
1286c71099acSThomas Graf 		return (struct rt6_info *) dst;
1287c71099acSThomas Graf 
1288c71099acSThomas Graf 	dst_release(dst);
1289c71099acSThomas Graf 
12901da177e4SLinus Torvalds 	return NULL;
12911da177e4SLinus Torvalds }
12927159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup);
12937159039aSYOSHIFUJI Hideaki 
1294c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock.
12951cfb71eeSWei Wang  * It takes new route entry, the addition fails by any reason the
12961cfb71eeSWei Wang  * route is released.
12971cfb71eeSWei Wang  * Caller must hold dst before calling it.
12981da177e4SLinus Torvalds  */
12991da177e4SLinus Torvalds 
13008d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info,
1301333c4301SDavid Ahern 			struct netlink_ext_ack *extack)
13021da177e4SLinus Torvalds {
13031da177e4SLinus Torvalds 	int err;
1304c71099acSThomas Graf 	struct fib6_table *table;
13051da177e4SLinus Torvalds 
130693c2fb25SDavid Ahern 	table = rt->fib6_table;
130766f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
1308d4ead6b3SDavid Ahern 	err = fib6_add(&table->tb6_root, rt, info, extack);
130966f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
13101da177e4SLinus Torvalds 
13111da177e4SLinus Torvalds 	return err;
13121da177e4SLinus Torvalds }
13131da177e4SLinus Torvalds 
13148d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt)
131540e22e8fSThomas Graf {
1316afb1d4b5SDavid Ahern 	struct nl_info info = {	.nl_net = net, };
1317e715b6d3SFlorian Westphal 
1318d4ead6b3SDavid Ahern 	return __ip6_ins_rt(rt, &info, NULL);
131940e22e8fSThomas Graf }
132040e22e8fSThomas Graf 
132185bd05deSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(const struct fib6_result *res,
132221efcfa0SEric Dumazet 					   const struct in6_addr *daddr,
1323b71d1d42SEric Dumazet 					   const struct in6_addr *saddr)
13241da177e4SLinus Torvalds {
132585bd05deSDavid Ahern 	struct fib6_info *f6i = res->f6i;
13264832c30dSDavid Ahern 	struct net_device *dev;
13271da177e4SLinus Torvalds 	struct rt6_info *rt;
13281da177e4SLinus Torvalds 
13291da177e4SLinus Torvalds 	/*
13301da177e4SLinus Torvalds 	 *	Clone the route.
13311da177e4SLinus Torvalds 	 */
13321da177e4SLinus Torvalds 
133385bd05deSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
1334e873e4b9SWei Wang 		return NULL;
1335e873e4b9SWei Wang 
13360d161581SDavid Ahern 	dev = ip6_rt_get_dev_rcu(res);
133793531c67SDavid Ahern 	rt = ip6_dst_alloc(dev_net(dev), dev, 0);
1338e873e4b9SWei Wang 	if (!rt) {
133985bd05deSDavid Ahern 		fib6_info_release(f6i);
134083a09abdSMartin KaFai Lau 		return NULL;
1341e873e4b9SWei Wang 	}
134283a09abdSMartin KaFai Lau 
13430d161581SDavid Ahern 	ip6_rt_copy_init(rt, res);
13448b9df265SMartin KaFai Lau 	rt->rt6i_flags |= RTF_CACHE;
134583a09abdSMartin KaFai Lau 	rt->dst.flags |= DST_HOST;
134683a09abdSMartin KaFai Lau 	rt->rt6i_dst.addr = *daddr;
134783a09abdSMartin KaFai Lau 	rt->rt6i_dst.plen = 128;
13488b9df265SMartin KaFai Lau 
134985bd05deSDavid Ahern 	if (!rt6_is_gw_or_nonexthop(res)) {
135085bd05deSDavid Ahern 		if (f6i->fib6_dst.plen != 128 &&
135185bd05deSDavid Ahern 		    ipv6_addr_equal(&f6i->fib6_dst.addr, daddr))
135258c4fb86SYOSHIFUJI Hideaki 			rt->rt6i_flags |= RTF_ANYCAST;
13531da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
13541da177e4SLinus Torvalds 		if (rt->rt6i_src.plen && saddr) {
13554e3fd7a0SAlexey Dobriyan 			rt->rt6i_src.addr = *saddr;
13561da177e4SLinus Torvalds 			rt->rt6i_src.plen = 128;
13571da177e4SLinus Torvalds 		}
13581da177e4SLinus Torvalds #endif
135995a9a5baSYOSHIFUJI Hideaki 	}
136095a9a5baSYOSHIFUJI Hideaki 
1361299d9939SYOSHIFUJI Hideaki 	return rt;
1362299d9939SYOSHIFUJI Hideaki }
1363299d9939SYOSHIFUJI Hideaki 
1364db3fedeeSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(const struct fib6_result *res)
1365d52d3997SMartin KaFai Lau {
1366db3fedeeSDavid Ahern 	struct fib6_info *f6i = res->f6i;
1367db3fedeeSDavid Ahern 	unsigned short flags = fib6_info_dst_flags(f6i);
13684832c30dSDavid Ahern 	struct net_device *dev;
1369d52d3997SMartin KaFai Lau 	struct rt6_info *pcpu_rt;
1370d52d3997SMartin KaFai Lau 
1371db3fedeeSDavid Ahern 	if (!fib6_info_hold_safe(f6i))
1372e873e4b9SWei Wang 		return NULL;
1373e873e4b9SWei Wang 
13744832c30dSDavid Ahern 	rcu_read_lock();
13750d161581SDavid Ahern 	dev = ip6_rt_get_dev_rcu(res);
137693531c67SDavid Ahern 	pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags);
13774832c30dSDavid Ahern 	rcu_read_unlock();
1378e873e4b9SWei Wang 	if (!pcpu_rt) {
1379db3fedeeSDavid Ahern 		fib6_info_release(f6i);
1380d52d3997SMartin KaFai Lau 		return NULL;
1381e873e4b9SWei Wang 	}
13820d161581SDavid Ahern 	ip6_rt_copy_init(pcpu_rt, res);
1383d52d3997SMartin KaFai Lau 	pcpu_rt->rt6i_flags |= RTF_PCPU;
1384d52d3997SMartin KaFai Lau 	return pcpu_rt;
1385d52d3997SMartin KaFai Lau }
1386d52d3997SMartin KaFai Lau 
138766f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */
1388db3fedeeSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(const struct fib6_result *res)
1389d52d3997SMartin KaFai Lau {
1390c353071aSEric Dumazet 	struct rt6_info *pcpu_rt;
1391d52d3997SMartin KaFai Lau 
1392c353071aSEric Dumazet 	pcpu_rt = this_cpu_read(*res->nh->rt6i_pcpu);
1393d52d3997SMartin KaFai Lau 
1394a73e4195SMartin KaFai Lau 	return pcpu_rt;
1395a73e4195SMartin KaFai Lau }
1396a73e4195SMartin KaFai Lau 
1397afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net,
1398db3fedeeSDavid Ahern 					    const struct fib6_result *res)
1399a73e4195SMartin KaFai Lau {
1400a73e4195SMartin KaFai Lau 	struct rt6_info *pcpu_rt, *prev, **p;
1401d52d3997SMartin KaFai Lau 
1402db3fedeeSDavid Ahern 	pcpu_rt = ip6_rt_pcpu_alloc(res);
14030e09edccSWei Wang 	if (!pcpu_rt)
14040e09edccSWei Wang 		return NULL;
1405d52d3997SMartin KaFai Lau 
1406f40b6ae2SDavid Ahern 	p = this_cpu_ptr(res->nh->rt6i_pcpu);
1407d52d3997SMartin KaFai Lau 	prev = cmpxchg(p, NULL, pcpu_rt);
1408951f788aSEric Dumazet 	BUG_ON(prev);
1409a94b9367SWei Wang 
141061fb0d01SEric Dumazet 	if (res->f6i->fib6_destroying) {
141161fb0d01SEric Dumazet 		struct fib6_info *from;
141261fb0d01SEric Dumazet 
141361fb0d01SEric Dumazet 		from = xchg((__force struct fib6_info **)&pcpu_rt->from, NULL);
141461fb0d01SEric Dumazet 		fib6_info_release(from);
141561fb0d01SEric Dumazet 	}
141661fb0d01SEric Dumazet 
1417d52d3997SMartin KaFai Lau 	return pcpu_rt;
1418d52d3997SMartin KaFai Lau }
1419d52d3997SMartin KaFai Lau 
142035732d01SWei Wang /* exception hash table implementation
142135732d01SWei Wang  */
142235732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock);
142335732d01SWei Wang 
142435732d01SWei Wang /* Remove rt6_ex from hash table and free the memory
142535732d01SWei Wang  * Caller must hold rt6_exception_lock
142635732d01SWei Wang  */
142735732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
142835732d01SWei Wang 				 struct rt6_exception *rt6_ex)
142935732d01SWei Wang {
1430f5b51fe8SPaolo Abeni 	struct fib6_info *from;
1431b2427e67SColin Ian King 	struct net *net;
143281eb8447SWei Wang 
143335732d01SWei Wang 	if (!bucket || !rt6_ex)
143435732d01SWei Wang 		return;
1435b2427e67SColin Ian King 
1436b2427e67SColin Ian King 	net = dev_net(rt6_ex->rt6i->dst.dev);
1437f5b51fe8SPaolo Abeni 	net->ipv6.rt6_stats->fib_rt_cache--;
1438f5b51fe8SPaolo Abeni 
1439f5b51fe8SPaolo Abeni 	/* purge completely the exception to allow releasing the held resources:
1440f5b51fe8SPaolo Abeni 	 * some [sk] cache may keep the dst around for unlimited time
1441f5b51fe8SPaolo Abeni 	 */
14420e233874SEric Dumazet 	from = xchg((__force struct fib6_info **)&rt6_ex->rt6i->from, NULL);
1443f5b51fe8SPaolo Abeni 	fib6_info_release(from);
1444f5b51fe8SPaolo Abeni 	dst_dev_put(&rt6_ex->rt6i->dst);
1445f5b51fe8SPaolo Abeni 
144635732d01SWei Wang 	hlist_del_rcu(&rt6_ex->hlist);
144777634cc6SDavid Ahern 	dst_release(&rt6_ex->rt6i->dst);
144835732d01SWei Wang 	kfree_rcu(rt6_ex, rcu);
144935732d01SWei Wang 	WARN_ON_ONCE(!bucket->depth);
145035732d01SWei Wang 	bucket->depth--;
145135732d01SWei Wang }
145235732d01SWei Wang 
145335732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory
145435732d01SWei Wang  * Caller must hold rt6_exception_lock
145535732d01SWei Wang  */
145635732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
145735732d01SWei Wang {
145835732d01SWei Wang 	struct rt6_exception *rt6_ex, *oldest = NULL;
145935732d01SWei Wang 
146035732d01SWei Wang 	if (!bucket)
146135732d01SWei Wang 		return;
146235732d01SWei Wang 
146335732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
146435732d01SWei Wang 		if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
146535732d01SWei Wang 			oldest = rt6_ex;
146635732d01SWei Wang 	}
146735732d01SWei Wang 	rt6_remove_exception(bucket, oldest);
146835732d01SWei Wang }
146935732d01SWei Wang 
147035732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst,
147135732d01SWei Wang 			      const struct in6_addr *src)
147235732d01SWei Wang {
147335732d01SWei Wang 	static u32 seed __read_mostly;
147435732d01SWei Wang 	u32 val;
147535732d01SWei Wang 
147635732d01SWei Wang 	net_get_random_once(&seed, sizeof(seed));
147735732d01SWei Wang 	val = jhash(dst, sizeof(*dst), seed);
147835732d01SWei Wang 
147935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
148035732d01SWei Wang 	if (src)
148135732d01SWei Wang 		val = jhash(src, sizeof(*src), val);
148235732d01SWei Wang #endif
148335732d01SWei Wang 	return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
148435732d01SWei Wang }
148535732d01SWei Wang 
148635732d01SWei Wang /* Helper function to find the cached rt in the hash table
148735732d01SWei Wang  * and update bucket pointer to point to the bucket for this
148835732d01SWei Wang  * (daddr, saddr) pair
148935732d01SWei Wang  * Caller must hold rt6_exception_lock
149035732d01SWei Wang  */
149135732d01SWei Wang static struct rt6_exception *
149235732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
149335732d01SWei Wang 			      const struct in6_addr *daddr,
149435732d01SWei Wang 			      const struct in6_addr *saddr)
149535732d01SWei Wang {
149635732d01SWei Wang 	struct rt6_exception *rt6_ex;
149735732d01SWei Wang 	u32 hval;
149835732d01SWei Wang 
149935732d01SWei Wang 	if (!(*bucket) || !daddr)
150035732d01SWei Wang 		return NULL;
150135732d01SWei Wang 
150235732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
150335732d01SWei Wang 	*bucket += hval;
150435732d01SWei Wang 
150535732d01SWei Wang 	hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
150635732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
150735732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
150835732d01SWei Wang 
150935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
151035732d01SWei Wang 		if (matched && saddr)
151135732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
151235732d01SWei Wang #endif
151335732d01SWei Wang 		if (matched)
151435732d01SWei Wang 			return rt6_ex;
151535732d01SWei Wang 	}
151635732d01SWei Wang 	return NULL;
151735732d01SWei Wang }
151835732d01SWei Wang 
151935732d01SWei Wang /* Helper function to find the cached rt in the hash table
152035732d01SWei Wang  * and update bucket pointer to point to the bucket for this
152135732d01SWei Wang  * (daddr, saddr) pair
152235732d01SWei Wang  * Caller must hold rcu_read_lock()
152335732d01SWei Wang  */
152435732d01SWei Wang static struct rt6_exception *
152535732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
152635732d01SWei Wang 			 const struct in6_addr *daddr,
152735732d01SWei Wang 			 const struct in6_addr *saddr)
152835732d01SWei Wang {
152935732d01SWei Wang 	struct rt6_exception *rt6_ex;
153035732d01SWei Wang 	u32 hval;
153135732d01SWei Wang 
153235732d01SWei Wang 	WARN_ON_ONCE(!rcu_read_lock_held());
153335732d01SWei Wang 
153435732d01SWei Wang 	if (!(*bucket) || !daddr)
153535732d01SWei Wang 		return NULL;
153635732d01SWei Wang 
153735732d01SWei Wang 	hval = rt6_exception_hash(daddr, saddr);
153835732d01SWei Wang 	*bucket += hval;
153935732d01SWei Wang 
154035732d01SWei Wang 	hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
154135732d01SWei Wang 		struct rt6_info *rt6 = rt6_ex->rt6i;
154235732d01SWei Wang 		bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
154335732d01SWei Wang 
154435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
154535732d01SWei Wang 		if (matched && saddr)
154635732d01SWei Wang 			matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
154735732d01SWei Wang #endif
154835732d01SWei Wang 		if (matched)
154935732d01SWei Wang 			return rt6_ex;
155035732d01SWei Wang 	}
155135732d01SWei Wang 	return NULL;
155235732d01SWei Wang }
155335732d01SWei Wang 
1554b748f260SDavid Ahern static unsigned int fib6_mtu(const struct fib6_result *res)
155535732d01SWei Wang {
1556b748f260SDavid Ahern 	const struct fib6_nh *nh = res->nh;
1557d4ead6b3SDavid Ahern 	unsigned int mtu;
1558d4ead6b3SDavid Ahern 
1559b748f260SDavid Ahern 	if (res->f6i->fib6_pmtu) {
1560b748f260SDavid Ahern 		mtu = res->f6i->fib6_pmtu;
1561dcd1f572SDavid Ahern 	} else {
1562b748f260SDavid Ahern 		struct net_device *dev = nh->fib_nh_dev;
1563dcd1f572SDavid Ahern 		struct inet6_dev *idev;
1564dcd1f572SDavid Ahern 
1565dcd1f572SDavid Ahern 		rcu_read_lock();
1566dcd1f572SDavid Ahern 		idev = __in6_dev_get(dev);
1567dcd1f572SDavid Ahern 		mtu = idev->cnf.mtu6;
1568dcd1f572SDavid Ahern 		rcu_read_unlock();
1569dcd1f572SDavid Ahern 	}
1570dcd1f572SDavid Ahern 
1571d4ead6b3SDavid Ahern 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
1572d4ead6b3SDavid Ahern 
1573b748f260SDavid Ahern 	return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu);
1574d4ead6b3SDavid Ahern }
1575d4ead6b3SDavid Ahern 
1576cc5c073aSDavid Ahern #define FIB6_EXCEPTION_BUCKET_FLUSHED  0x1UL
1577cc5c073aSDavid Ahern 
1578cc5c073aSDavid Ahern /* used when the flushed bit is not relevant, only access to the bucket
1579cc5c073aSDavid Ahern  * (ie., all bucket users except rt6_insert_exception);
1580cc5c073aSDavid Ahern  *
1581cc5c073aSDavid Ahern  * called under rcu lock; sometimes called with rt6_exception_lock held
1582cc5c073aSDavid Ahern  */
1583cc5c073aSDavid Ahern static
1584cc5c073aSDavid Ahern struct rt6_exception_bucket *fib6_nh_get_excptn_bucket(const struct fib6_nh *nh,
1585cc5c073aSDavid Ahern 						       spinlock_t *lock)
1586cc5c073aSDavid Ahern {
1587cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
1588cc5c073aSDavid Ahern 
1589cc5c073aSDavid Ahern 	if (lock)
1590cc5c073aSDavid Ahern 		bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
1591cc5c073aSDavid Ahern 						   lockdep_is_held(lock));
1592cc5c073aSDavid Ahern 	else
1593cc5c073aSDavid Ahern 		bucket = rcu_dereference(nh->rt6i_exception_bucket);
1594cc5c073aSDavid Ahern 
1595cc5c073aSDavid Ahern 	/* remove bucket flushed bit if set */
1596cc5c073aSDavid Ahern 	if (bucket) {
1597cc5c073aSDavid Ahern 		unsigned long p = (unsigned long)bucket;
1598cc5c073aSDavid Ahern 
1599cc5c073aSDavid Ahern 		p &= ~FIB6_EXCEPTION_BUCKET_FLUSHED;
1600cc5c073aSDavid Ahern 		bucket = (struct rt6_exception_bucket *)p;
1601cc5c073aSDavid Ahern 	}
1602cc5c073aSDavid Ahern 
1603cc5c073aSDavid Ahern 	return bucket;
1604cc5c073aSDavid Ahern }
1605cc5c073aSDavid Ahern 
1606cc5c073aSDavid Ahern static bool fib6_nh_excptn_bucket_flushed(struct rt6_exception_bucket *bucket)
1607cc5c073aSDavid Ahern {
1608cc5c073aSDavid Ahern 	unsigned long p = (unsigned long)bucket;
1609cc5c073aSDavid Ahern 
1610cc5c073aSDavid Ahern 	return !!(p & FIB6_EXCEPTION_BUCKET_FLUSHED);
1611cc5c073aSDavid Ahern }
1612cc5c073aSDavid Ahern 
1613cc5c073aSDavid Ahern /* called with rt6_exception_lock held */
1614cc5c073aSDavid Ahern static void fib6_nh_excptn_bucket_set_flushed(struct fib6_nh *nh,
1615cc5c073aSDavid Ahern 					      spinlock_t *lock)
1616cc5c073aSDavid Ahern {
1617cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
1618cc5c073aSDavid Ahern 	unsigned long p;
1619cc5c073aSDavid Ahern 
1620cc5c073aSDavid Ahern 	bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
1621cc5c073aSDavid Ahern 					   lockdep_is_held(lock));
1622cc5c073aSDavid Ahern 
1623cc5c073aSDavid Ahern 	p = (unsigned long)bucket;
1624cc5c073aSDavid Ahern 	p |= FIB6_EXCEPTION_BUCKET_FLUSHED;
1625cc5c073aSDavid Ahern 	bucket = (struct rt6_exception_bucket *)p;
1626cc5c073aSDavid Ahern 	rcu_assign_pointer(nh->rt6i_exception_bucket, bucket);
1627cc5c073aSDavid Ahern }
1628cc5c073aSDavid Ahern 
162935732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt,
16305012f0a5SDavid Ahern 				const struct fib6_result *res)
163135732d01SWei Wang {
16325e670d84SDavid Ahern 	struct net *net = dev_net(nrt->dst.dev);
163335732d01SWei Wang 	struct rt6_exception_bucket *bucket;
1634cc5c073aSDavid Ahern 	struct fib6_info *f6i = res->f6i;
163535732d01SWei Wang 	struct in6_addr *src_key = NULL;
163635732d01SWei Wang 	struct rt6_exception *rt6_ex;
1637cc5c073aSDavid Ahern 	struct fib6_nh *nh = res->nh;
163835732d01SWei Wang 	int err = 0;
163935732d01SWei Wang 
164035732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
164135732d01SWei Wang 
1642cc5c073aSDavid Ahern 	bucket = rcu_dereference_protected(nh->rt6i_exception_bucket,
164335732d01SWei Wang 					  lockdep_is_held(&rt6_exception_lock));
164435732d01SWei Wang 	if (!bucket) {
164535732d01SWei Wang 		bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
164635732d01SWei Wang 				 GFP_ATOMIC);
164735732d01SWei Wang 		if (!bucket) {
164835732d01SWei Wang 			err = -ENOMEM;
164935732d01SWei Wang 			goto out;
165035732d01SWei Wang 		}
1651cc5c073aSDavid Ahern 		rcu_assign_pointer(nh->rt6i_exception_bucket, bucket);
1652cc5c073aSDavid Ahern 	} else if (fib6_nh_excptn_bucket_flushed(bucket)) {
1653cc5c073aSDavid Ahern 		err = -EINVAL;
1654cc5c073aSDavid Ahern 		goto out;
165535732d01SWei Wang 	}
165635732d01SWei Wang 
165735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
16585012f0a5SDavid Ahern 	/* fib6_src.plen != 0 indicates f6i is in subtree
165935732d01SWei Wang 	 * and exception table is indexed by a hash of
16605012f0a5SDavid Ahern 	 * both fib6_dst and fib6_src.
166135732d01SWei Wang 	 * Otherwise, the exception table is indexed by
16625012f0a5SDavid Ahern 	 * a hash of only fib6_dst.
166335732d01SWei Wang 	 */
16645012f0a5SDavid Ahern 	if (f6i->fib6_src.plen)
166535732d01SWei Wang 		src_key = &nrt->rt6i_src.addr;
166635732d01SWei Wang #endif
16675012f0a5SDavid Ahern 	/* rt6_mtu_change() might lower mtu on f6i.
1668f5bbe7eeSWei Wang 	 * Only insert this exception route if its mtu
16695012f0a5SDavid Ahern 	 * is less than f6i's mtu value.
1670f5bbe7eeSWei Wang 	 */
1671b748f260SDavid Ahern 	if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(res)) {
1672f5bbe7eeSWei Wang 		err = -EINVAL;
1673f5bbe7eeSWei Wang 		goto out;
1674f5bbe7eeSWei Wang 	}
167560006a48SWei Wang 
167635732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
167735732d01SWei Wang 					       src_key);
167835732d01SWei Wang 	if (rt6_ex)
167935732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
168035732d01SWei Wang 
168135732d01SWei Wang 	rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
168235732d01SWei Wang 	if (!rt6_ex) {
168335732d01SWei Wang 		err = -ENOMEM;
168435732d01SWei Wang 		goto out;
168535732d01SWei Wang 	}
168635732d01SWei Wang 	rt6_ex->rt6i = nrt;
168735732d01SWei Wang 	rt6_ex->stamp = jiffies;
168835732d01SWei Wang 	hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
168935732d01SWei Wang 	bucket->depth++;
169081eb8447SWei Wang 	net->ipv6.rt6_stats->fib_rt_cache++;
169135732d01SWei Wang 
169235732d01SWei Wang 	if (bucket->depth > FIB6_MAX_DEPTH)
169335732d01SWei Wang 		rt6_exception_remove_oldest(bucket);
169435732d01SWei Wang 
169535732d01SWei Wang out:
169635732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
169735732d01SWei Wang 
169835732d01SWei Wang 	/* Update fn->fn_sernum to invalidate all cached dst */
1699b886d5f2SPaolo Abeni 	if (!err) {
17005012f0a5SDavid Ahern 		spin_lock_bh(&f6i->fib6_table->tb6_lock);
17015012f0a5SDavid Ahern 		fib6_update_sernum(net, f6i);
17025012f0a5SDavid Ahern 		spin_unlock_bh(&f6i->fib6_table->tb6_lock);
1703b886d5f2SPaolo Abeni 		fib6_force_start_gc(net);
1704b886d5f2SPaolo Abeni 	}
170535732d01SWei Wang 
170635732d01SWei Wang 	return err;
170735732d01SWei Wang }
170835732d01SWei Wang 
1709c0b220cfSDavid Ahern static void fib6_nh_flush_exceptions(struct fib6_nh *nh, struct fib6_info *from)
171035732d01SWei Wang {
171135732d01SWei Wang 	struct rt6_exception_bucket *bucket;
171235732d01SWei Wang 	struct rt6_exception *rt6_ex;
171335732d01SWei Wang 	struct hlist_node *tmp;
171435732d01SWei Wang 	int i;
171535732d01SWei Wang 
171635732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
171735732d01SWei Wang 
1718cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
171935732d01SWei Wang 	if (!bucket)
172035732d01SWei Wang 		goto out;
172135732d01SWei Wang 
1722cc5c073aSDavid Ahern 	/* Prevent rt6_insert_exception() to recreate the bucket list */
1723cc5c073aSDavid Ahern 	if (!from)
1724cc5c073aSDavid Ahern 		fib6_nh_excptn_bucket_set_flushed(nh, &rt6_exception_lock);
1725cc5c073aSDavid Ahern 
172635732d01SWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1727cc5c073aSDavid Ahern 		hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) {
1728cc5c073aSDavid Ahern 			if (!from ||
1729cc5c073aSDavid Ahern 			    rcu_access_pointer(rt6_ex->rt6i->from) == from)
173035732d01SWei Wang 				rt6_remove_exception(bucket, rt6_ex);
1731cc5c073aSDavid Ahern 		}
1732cc5c073aSDavid Ahern 		WARN_ON_ONCE(!from && bucket->depth);
173335732d01SWei Wang 		bucket++;
173435732d01SWei Wang 	}
173535732d01SWei Wang out:
173635732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
173735732d01SWei Wang }
173835732d01SWei Wang 
1739e659ba31SDavid Ahern static int rt6_nh_flush_exceptions(struct fib6_nh *nh, void *arg)
1740e659ba31SDavid Ahern {
1741e659ba31SDavid Ahern 	struct fib6_info *f6i = arg;
1742e659ba31SDavid Ahern 
1743e659ba31SDavid Ahern 	fib6_nh_flush_exceptions(nh, f6i);
1744e659ba31SDavid Ahern 
1745e659ba31SDavid Ahern 	return 0;
1746e659ba31SDavid Ahern }
1747e659ba31SDavid Ahern 
1748c0b220cfSDavid Ahern void rt6_flush_exceptions(struct fib6_info *f6i)
1749c0b220cfSDavid Ahern {
1750e659ba31SDavid Ahern 	if (f6i->nh)
1751e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_flush_exceptions,
1752e659ba31SDavid Ahern 					 f6i);
1753e659ba31SDavid Ahern 	else
17541cf844c7SDavid Ahern 		fib6_nh_flush_exceptions(f6i->fib6_nh, f6i);
1755c0b220cfSDavid Ahern }
1756c0b220cfSDavid Ahern 
175735732d01SWei Wang /* Find cached rt in the hash table inside passed in rt
175835732d01SWei Wang  * Caller has to hold rcu_read_lock()
175935732d01SWei Wang  */
17607e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res,
1761510e2cedSWei Wang 					   const struct in6_addr *daddr,
1762510e2cedSWei Wang 					   const struct in6_addr *saddr)
176335732d01SWei Wang {
1764510e2cedSWei Wang 	const struct in6_addr *src_key = NULL;
176535732d01SWei Wang 	struct rt6_exception_bucket *bucket;
176635732d01SWei Wang 	struct rt6_exception *rt6_ex;
17677e4b5128SDavid Ahern 	struct rt6_info *ret = NULL;
176835732d01SWei Wang 
176935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
17707e4b5128SDavid Ahern 	/* fib6i_src.plen != 0 indicates f6i is in subtree
177135732d01SWei Wang 	 * and exception table is indexed by a hash of
17727e4b5128SDavid Ahern 	 * both fib6_dst and fib6_src.
1773510e2cedSWei Wang 	 * However, the src addr used to create the hash
1774510e2cedSWei Wang 	 * might not be exactly the passed in saddr which
1775510e2cedSWei Wang 	 * is a /128 addr from the flow.
1776510e2cedSWei Wang 	 * So we need to use f6i->fib6_src to redo lookup
1777510e2cedSWei Wang 	 * if the passed in saddr does not find anything.
1778510e2cedSWei Wang 	 * (See the logic in ip6_rt_cache_alloc() on how
1779510e2cedSWei Wang 	 * rt->rt6i_src is updated.)
178035732d01SWei Wang 	 */
17817e4b5128SDavid Ahern 	if (res->f6i->fib6_src.plen)
178235732d01SWei Wang 		src_key = saddr;
1783510e2cedSWei Wang find_ex:
178435732d01SWei Wang #endif
1785cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(res->nh, NULL);
178635732d01SWei Wang 	rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
178735732d01SWei Wang 
178835732d01SWei Wang 	if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
17897e4b5128SDavid Ahern 		ret = rt6_ex->rt6i;
179035732d01SWei Wang 
1791510e2cedSWei Wang #ifdef CONFIG_IPV6_SUBTREES
1792510e2cedSWei Wang 	/* Use fib6_src as src_key and redo lookup */
1793510e2cedSWei Wang 	if (!ret && src_key && src_key != &res->f6i->fib6_src.addr) {
1794510e2cedSWei Wang 		src_key = &res->f6i->fib6_src.addr;
1795510e2cedSWei Wang 		goto find_ex;
1796510e2cedSWei Wang 	}
1797510e2cedSWei Wang #endif
1798510e2cedSWei Wang 
17997e4b5128SDavid Ahern 	return ret;
180035732d01SWei Wang }
180135732d01SWei Wang 
180235732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */
1803cc5c073aSDavid Ahern static int fib6_nh_remove_exception(const struct fib6_nh *nh, int plen,
1804c0b220cfSDavid Ahern 				    const struct rt6_info *rt)
180535732d01SWei Wang {
1806c0b220cfSDavid Ahern 	const struct in6_addr *src_key = NULL;
180735732d01SWei Wang 	struct rt6_exception_bucket *bucket;
180835732d01SWei Wang 	struct rt6_exception *rt6_ex;
180935732d01SWei Wang 	int err;
181035732d01SWei Wang 
1811cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
181235732d01SWei Wang 		return -ENOENT;
181335732d01SWei Wang 
181435732d01SWei Wang 	spin_lock_bh(&rt6_exception_lock);
1815cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
1816cc5c073aSDavid Ahern 
181735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
1818cc5c073aSDavid Ahern 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
1819cc5c073aSDavid Ahern 	 * and exception table is indexed by a hash of
1820cc5c073aSDavid Ahern 	 * both rt6i_dst and rt6i_src.
182135732d01SWei Wang 	 * Otherwise, the exception table is indexed by
182235732d01SWei Wang 	 * a hash of only rt6i_dst.
182335732d01SWei Wang 	 */
1824c0b220cfSDavid Ahern 	if (plen)
182535732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
182635732d01SWei Wang #endif
182735732d01SWei Wang 	rt6_ex = __rt6_find_exception_spinlock(&bucket,
182835732d01SWei Wang 					       &rt->rt6i_dst.addr,
182935732d01SWei Wang 					       src_key);
183035732d01SWei Wang 	if (rt6_ex) {
183135732d01SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
183235732d01SWei Wang 		err = 0;
183335732d01SWei Wang 	} else {
183435732d01SWei Wang 		err = -ENOENT;
183535732d01SWei Wang 	}
183635732d01SWei Wang 
183735732d01SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
183835732d01SWei Wang 	return err;
183935732d01SWei Wang }
184035732d01SWei Wang 
1841e659ba31SDavid Ahern struct fib6_nh_excptn_arg {
1842e659ba31SDavid Ahern 	struct rt6_info	*rt;
1843e659ba31SDavid Ahern 	int		plen;
1844e659ba31SDavid Ahern };
1845e659ba31SDavid Ahern 
1846e659ba31SDavid Ahern static int rt6_nh_remove_exception_rt(struct fib6_nh *nh, void *_arg)
1847e659ba31SDavid Ahern {
1848e659ba31SDavid Ahern 	struct fib6_nh_excptn_arg *arg = _arg;
1849e659ba31SDavid Ahern 	int err;
1850e659ba31SDavid Ahern 
1851e659ba31SDavid Ahern 	err = fib6_nh_remove_exception(nh, arg->plen, arg->rt);
1852e659ba31SDavid Ahern 	if (err == 0)
1853e659ba31SDavid Ahern 		return 1;
1854e659ba31SDavid Ahern 
1855e659ba31SDavid Ahern 	return 0;
1856e659ba31SDavid Ahern }
1857e659ba31SDavid Ahern 
1858c0b220cfSDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt)
1859c0b220cfSDavid Ahern {
1860c0b220cfSDavid Ahern 	struct fib6_info *from;
1861c0b220cfSDavid Ahern 
1862c0b220cfSDavid Ahern 	from = rcu_dereference(rt->from);
1863cc5c073aSDavid Ahern 	if (!from || !(rt->rt6i_flags & RTF_CACHE))
1864c0b220cfSDavid Ahern 		return -EINVAL;
1865c0b220cfSDavid Ahern 
1866e659ba31SDavid Ahern 	if (from->nh) {
1867e659ba31SDavid Ahern 		struct fib6_nh_excptn_arg arg = {
1868e659ba31SDavid Ahern 			.rt = rt,
1869e659ba31SDavid Ahern 			.plen = from->fib6_src.plen
1870e659ba31SDavid Ahern 		};
1871e659ba31SDavid Ahern 		int rc;
1872e659ba31SDavid Ahern 
1873e659ba31SDavid Ahern 		/* rc = 1 means an entry was found */
1874e659ba31SDavid Ahern 		rc = nexthop_for_each_fib6_nh(from->nh,
1875e659ba31SDavid Ahern 					      rt6_nh_remove_exception_rt,
1876e659ba31SDavid Ahern 					      &arg);
1877e659ba31SDavid Ahern 		return rc ? 0 : -ENOENT;
1878e659ba31SDavid Ahern 	}
1879e659ba31SDavid Ahern 
18801cf844c7SDavid Ahern 	return fib6_nh_remove_exception(from->fib6_nh,
1881cc5c073aSDavid Ahern 					from->fib6_src.plen, rt);
1882c0b220cfSDavid Ahern }
1883c0b220cfSDavid Ahern 
188435732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and
188535732d01SWei Wang  * refresh its stamp
188635732d01SWei Wang  */
1887cc5c073aSDavid Ahern static void fib6_nh_update_exception(const struct fib6_nh *nh, int plen,
1888c0b220cfSDavid Ahern 				     const struct rt6_info *rt)
188935732d01SWei Wang {
1890c0b220cfSDavid Ahern 	const struct in6_addr *src_key = NULL;
189135732d01SWei Wang 	struct rt6_exception_bucket *bucket;
189235732d01SWei Wang 	struct rt6_exception *rt6_ex;
1893193f3685SPaolo Abeni 
1894cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, NULL);
189535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES
1896cc5c073aSDavid Ahern 	/* rt6i_src.plen != 0 indicates 'from' is in subtree
1897cc5c073aSDavid Ahern 	 * and exception table is indexed by a hash of
1898cc5c073aSDavid Ahern 	 * both rt6i_dst and rt6i_src.
189935732d01SWei Wang 	 * Otherwise, the exception table is indexed by
190035732d01SWei Wang 	 * a hash of only rt6i_dst.
190135732d01SWei Wang 	 */
1902c0b220cfSDavid Ahern 	if (plen)
190335732d01SWei Wang 		src_key = &rt->rt6i_src.addr;
190435732d01SWei Wang #endif
1905cc5c073aSDavid Ahern 	rt6_ex = __rt6_find_exception_rcu(&bucket, &rt->rt6i_dst.addr, src_key);
190635732d01SWei Wang 	if (rt6_ex)
190735732d01SWei Wang 		rt6_ex->stamp = jiffies;
1908c0b220cfSDavid Ahern }
190935732d01SWei Wang 
1910e659ba31SDavid Ahern struct fib6_nh_match_arg {
1911e659ba31SDavid Ahern 	const struct net_device *dev;
1912e659ba31SDavid Ahern 	const struct in6_addr	*gw;
1913e659ba31SDavid Ahern 	struct fib6_nh		*match;
1914e659ba31SDavid Ahern };
1915e659ba31SDavid Ahern 
1916e659ba31SDavid Ahern /* determine if fib6_nh has given device and gateway */
1917e659ba31SDavid Ahern static int fib6_nh_find_match(struct fib6_nh *nh, void *_arg)
1918e659ba31SDavid Ahern {
1919e659ba31SDavid Ahern 	struct fib6_nh_match_arg *arg = _arg;
1920e659ba31SDavid Ahern 
1921e659ba31SDavid Ahern 	if (arg->dev != nh->fib_nh_dev ||
1922e659ba31SDavid Ahern 	    (arg->gw && !nh->fib_nh_gw_family) ||
1923e659ba31SDavid Ahern 	    (!arg->gw && nh->fib_nh_gw_family) ||
1924e659ba31SDavid Ahern 	    (arg->gw && !ipv6_addr_equal(arg->gw, &nh->fib_nh_gw6)))
1925e659ba31SDavid Ahern 		return 0;
1926e659ba31SDavid Ahern 
1927e659ba31SDavid Ahern 	arg->match = nh;
1928e659ba31SDavid Ahern 
1929e659ba31SDavid Ahern 	/* found a match, break the loop */
1930e659ba31SDavid Ahern 	return 1;
1931e659ba31SDavid Ahern }
1932e659ba31SDavid Ahern 
1933c0b220cfSDavid Ahern static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
1934c0b220cfSDavid Ahern {
1935c0b220cfSDavid Ahern 	struct fib6_info *from;
1936e659ba31SDavid Ahern 	struct fib6_nh *fib6_nh;
1937c0b220cfSDavid Ahern 
1938c0b220cfSDavid Ahern 	rcu_read_lock();
1939c0b220cfSDavid Ahern 
1940c0b220cfSDavid Ahern 	from = rcu_dereference(rt->from);
1941c0b220cfSDavid Ahern 	if (!from || !(rt->rt6i_flags & RTF_CACHE))
1942c0b220cfSDavid Ahern 		goto unlock;
1943c0b220cfSDavid Ahern 
1944e659ba31SDavid Ahern 	if (from->nh) {
1945e659ba31SDavid Ahern 		struct fib6_nh_match_arg arg = {
1946e659ba31SDavid Ahern 			.dev = rt->dst.dev,
1947e659ba31SDavid Ahern 			.gw = &rt->rt6i_gateway,
1948e659ba31SDavid Ahern 		};
1949e659ba31SDavid Ahern 
1950e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(from->nh, fib6_nh_find_match, &arg);
1951e659ba31SDavid Ahern 
1952e659ba31SDavid Ahern 		if (!arg.match)
1953e659ba31SDavid Ahern 			return;
1954e659ba31SDavid Ahern 		fib6_nh = arg.match;
1955e659ba31SDavid Ahern 	} else {
1956e659ba31SDavid Ahern 		fib6_nh = from->fib6_nh;
1957e659ba31SDavid Ahern 	}
1958e659ba31SDavid Ahern 	fib6_nh_update_exception(fib6_nh, from->fib6_src.plen, rt);
1959193f3685SPaolo Abeni unlock:
196035732d01SWei Wang 	rcu_read_unlock();
196135732d01SWei Wang }
196235732d01SWei Wang 
1963e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1964e9fa1495SStefano Brivio 					 struct rt6_info *rt, int mtu)
1965e9fa1495SStefano Brivio {
1966e9fa1495SStefano Brivio 	/* If the new MTU is lower than the route PMTU, this new MTU will be the
1967e9fa1495SStefano Brivio 	 * lowest MTU in the path: always allow updating the route PMTU to
1968e9fa1495SStefano Brivio 	 * reflect PMTU decreases.
1969e9fa1495SStefano Brivio 	 *
1970e9fa1495SStefano Brivio 	 * If the new MTU is higher, and the route PMTU is equal to the local
1971e9fa1495SStefano Brivio 	 * MTU, this means the old MTU is the lowest in the path, so allow
1972e9fa1495SStefano Brivio 	 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1973e9fa1495SStefano Brivio 	 * handle this.
1974e9fa1495SStefano Brivio 	 */
1975e9fa1495SStefano Brivio 
1976e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) >= mtu)
1977e9fa1495SStefano Brivio 		return true;
1978e9fa1495SStefano Brivio 
1979e9fa1495SStefano Brivio 	if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1980e9fa1495SStefano Brivio 		return true;
1981e9fa1495SStefano Brivio 
1982e9fa1495SStefano Brivio 	return false;
1983e9fa1495SStefano Brivio }
1984e9fa1495SStefano Brivio 
1985e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
1986cc5c073aSDavid Ahern 				       const struct fib6_nh *nh, int mtu)
1987f5bbe7eeSWei Wang {
1988f5bbe7eeSWei Wang 	struct rt6_exception_bucket *bucket;
1989f5bbe7eeSWei Wang 	struct rt6_exception *rt6_ex;
1990f5bbe7eeSWei Wang 	int i;
1991f5bbe7eeSWei Wang 
1992cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
1993e9fa1495SStefano Brivio 	if (!bucket)
1994e9fa1495SStefano Brivio 		return;
1995e9fa1495SStefano Brivio 
1996f5bbe7eeSWei Wang 	for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1997f5bbe7eeSWei Wang 		hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1998f5bbe7eeSWei Wang 			struct rt6_info *entry = rt6_ex->rt6i;
1999e9fa1495SStefano Brivio 
2000e9fa1495SStefano Brivio 			/* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
2001d4ead6b3SDavid Ahern 			 * route), the metrics of its rt->from have already
2002f5bbe7eeSWei Wang 			 * been updated.
2003f5bbe7eeSWei Wang 			 */
2004d4ead6b3SDavid Ahern 			if (dst_metric_raw(&entry->dst, RTAX_MTU) &&
2005e9fa1495SStefano Brivio 			    rt6_mtu_change_route_allowed(idev, entry, mtu))
2006d4ead6b3SDavid Ahern 				dst_metric_set(&entry->dst, RTAX_MTU, mtu);
2007f5bbe7eeSWei Wang 		}
2008f5bbe7eeSWei Wang 		bucket++;
2009f5bbe7eeSWei Wang 	}
2010f5bbe7eeSWei Wang }
2011f5bbe7eeSWei Wang 
2012b16cb459SWei Wang #define RTF_CACHE_GATEWAY	(RTF_GATEWAY | RTF_CACHE)
2013b16cb459SWei Wang 
2014cc5c073aSDavid Ahern static void fib6_nh_exceptions_clean_tohost(const struct fib6_nh *nh,
2015cc5c073aSDavid Ahern 					    const struct in6_addr *gateway)
2016b16cb459SWei Wang {
2017b16cb459SWei Wang 	struct rt6_exception_bucket *bucket;
2018b16cb459SWei Wang 	struct rt6_exception *rt6_ex;
2019b16cb459SWei Wang 	struct hlist_node *tmp;
2020b16cb459SWei Wang 	int i;
2021b16cb459SWei Wang 
2022cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
2023b16cb459SWei Wang 		return;
2024b16cb459SWei Wang 
2025b16cb459SWei Wang 	spin_lock_bh(&rt6_exception_lock);
2026cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
2027b16cb459SWei Wang 	if (bucket) {
2028b16cb459SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
2029b16cb459SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
2030b16cb459SWei Wang 						  &bucket->chain, hlist) {
2031b16cb459SWei Wang 				struct rt6_info *entry = rt6_ex->rt6i;
2032b16cb459SWei Wang 
2033b16cb459SWei Wang 				if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
2034b16cb459SWei Wang 				    RTF_CACHE_GATEWAY &&
2035b16cb459SWei Wang 				    ipv6_addr_equal(gateway,
2036b16cb459SWei Wang 						    &entry->rt6i_gateway)) {
2037b16cb459SWei Wang 					rt6_remove_exception(bucket, rt6_ex);
2038b16cb459SWei Wang 				}
2039b16cb459SWei Wang 			}
2040b16cb459SWei Wang 			bucket++;
2041b16cb459SWei Wang 		}
2042b16cb459SWei Wang 	}
2043b16cb459SWei Wang 
2044b16cb459SWei Wang 	spin_unlock_bh(&rt6_exception_lock);
2045b16cb459SWei Wang }
2046b16cb459SWei Wang 
2047c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
2048c757faa8SWei Wang 				      struct rt6_exception *rt6_ex,
2049c757faa8SWei Wang 				      struct fib6_gc_args *gc_args,
2050c757faa8SWei Wang 				      unsigned long now)
2051c757faa8SWei Wang {
2052c757faa8SWei Wang 	struct rt6_info *rt = rt6_ex->rt6i;
2053c757faa8SWei Wang 
20541859bac0SPaolo Abeni 	/* we are pruning and obsoleting aged-out and non gateway exceptions
20551859bac0SPaolo Abeni 	 * even if others have still references to them, so that on next
20561859bac0SPaolo Abeni 	 * dst_check() such references can be dropped.
20571859bac0SPaolo Abeni 	 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
20581859bac0SPaolo Abeni 	 * expired, independently from their aging, as per RFC 8201 section 4
20591859bac0SPaolo Abeni 	 */
206031afeb42SWei Wang 	if (!(rt->rt6i_flags & RTF_EXPIRES)) {
206131afeb42SWei Wang 		if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
2062c757faa8SWei Wang 			RT6_TRACE("aging clone %p\n", rt);
2063c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
2064c757faa8SWei Wang 			return;
206531afeb42SWei Wang 		}
206631afeb42SWei Wang 	} else if (time_after(jiffies, rt->dst.expires)) {
206731afeb42SWei Wang 		RT6_TRACE("purging expired route %p\n", rt);
206831afeb42SWei Wang 		rt6_remove_exception(bucket, rt6_ex);
206931afeb42SWei Wang 		return;
207031afeb42SWei Wang 	}
207131afeb42SWei Wang 
207231afeb42SWei Wang 	if (rt->rt6i_flags & RTF_GATEWAY) {
2073c757faa8SWei Wang 		struct neighbour *neigh;
2074c757faa8SWei Wang 		__u8 neigh_flags = 0;
2075c757faa8SWei Wang 
20761bfa26ffSEric Dumazet 		neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
20771bfa26ffSEric Dumazet 		if (neigh)
2078c757faa8SWei Wang 			neigh_flags = neigh->flags;
20791bfa26ffSEric Dumazet 
2080c757faa8SWei Wang 		if (!(neigh_flags & NTF_ROUTER)) {
2081c757faa8SWei Wang 			RT6_TRACE("purging route %p via non-router but gateway\n",
2082c757faa8SWei Wang 				  rt);
2083c757faa8SWei Wang 			rt6_remove_exception(bucket, rt6_ex);
2084c757faa8SWei Wang 			return;
2085c757faa8SWei Wang 		}
2086c757faa8SWei Wang 	}
208731afeb42SWei Wang 
2088c757faa8SWei Wang 	gc_args->more++;
2089c757faa8SWei Wang }
2090c757faa8SWei Wang 
2091cc5c073aSDavid Ahern static void fib6_nh_age_exceptions(const struct fib6_nh *nh,
2092c757faa8SWei Wang 				   struct fib6_gc_args *gc_args,
2093c757faa8SWei Wang 				   unsigned long now)
2094c757faa8SWei Wang {
2095c757faa8SWei Wang 	struct rt6_exception_bucket *bucket;
2096c757faa8SWei Wang 	struct rt6_exception *rt6_ex;
2097c757faa8SWei Wang 	struct hlist_node *tmp;
2098c757faa8SWei Wang 	int i;
2099c757faa8SWei Wang 
2100cc5c073aSDavid Ahern 	if (!rcu_access_pointer(nh->rt6i_exception_bucket))
2101c757faa8SWei Wang 		return;
2102c757faa8SWei Wang 
21031bfa26ffSEric Dumazet 	rcu_read_lock_bh();
21041bfa26ffSEric Dumazet 	spin_lock(&rt6_exception_lock);
2105cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(nh, &rt6_exception_lock);
2106c757faa8SWei Wang 	if (bucket) {
2107c757faa8SWei Wang 		for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
2108c757faa8SWei Wang 			hlist_for_each_entry_safe(rt6_ex, tmp,
2109c757faa8SWei Wang 						  &bucket->chain, hlist) {
2110c757faa8SWei Wang 				rt6_age_examine_exception(bucket, rt6_ex,
2111c757faa8SWei Wang 							  gc_args, now);
2112c757faa8SWei Wang 			}
2113c757faa8SWei Wang 			bucket++;
2114c757faa8SWei Wang 		}
2115c757faa8SWei Wang 	}
21161bfa26ffSEric Dumazet 	spin_unlock(&rt6_exception_lock);
21171bfa26ffSEric Dumazet 	rcu_read_unlock_bh();
2118c757faa8SWei Wang }
2119c757faa8SWei Wang 
2120e659ba31SDavid Ahern struct fib6_nh_age_excptn_arg {
2121e659ba31SDavid Ahern 	struct fib6_gc_args	*gc_args;
2122e659ba31SDavid Ahern 	unsigned long		now;
2123e659ba31SDavid Ahern };
2124e659ba31SDavid Ahern 
2125e659ba31SDavid Ahern static int rt6_nh_age_exceptions(struct fib6_nh *nh, void *_arg)
2126e659ba31SDavid Ahern {
2127e659ba31SDavid Ahern 	struct fib6_nh_age_excptn_arg *arg = _arg;
2128e659ba31SDavid Ahern 
2129e659ba31SDavid Ahern 	fib6_nh_age_exceptions(nh, arg->gc_args, arg->now);
2130e659ba31SDavid Ahern 	return 0;
2131e659ba31SDavid Ahern }
2132e659ba31SDavid Ahern 
2133cc5c073aSDavid Ahern void rt6_age_exceptions(struct fib6_info *f6i,
2134c0b220cfSDavid Ahern 			struct fib6_gc_args *gc_args,
2135c0b220cfSDavid Ahern 			unsigned long now)
2136c0b220cfSDavid Ahern {
2137e659ba31SDavid Ahern 	if (f6i->nh) {
2138e659ba31SDavid Ahern 		struct fib6_nh_age_excptn_arg arg = {
2139e659ba31SDavid Ahern 			.gc_args = gc_args,
2140e659ba31SDavid Ahern 			.now = now
2141e659ba31SDavid Ahern 		};
2142e659ba31SDavid Ahern 
2143e659ba31SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_age_exceptions,
2144e659ba31SDavid Ahern 					 &arg);
2145e659ba31SDavid Ahern 	} else {
21461cf844c7SDavid Ahern 		fib6_nh_age_exceptions(f6i->fib6_nh, gc_args, now);
2147c0b220cfSDavid Ahern 	}
2148e659ba31SDavid Ahern }
2149c0b220cfSDavid Ahern 
21501d053da9SDavid Ahern /* must be called with rcu lock held */
2151effda4ddSDavid Ahern int fib6_table_lookup(struct net *net, struct fib6_table *table, int oif,
2152effda4ddSDavid Ahern 		      struct flowi6 *fl6, struct fib6_result *res, int strict)
21531da177e4SLinus Torvalds {
2154367efcb9SMartin KaFai Lau 	struct fib6_node *fn, *saved_fn;
21551da177e4SLinus Torvalds 
21566454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2157367efcb9SMartin KaFai Lau 	saved_fn = fn;
21581da177e4SLinus Torvalds 
2159ca254490SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
2160ca254490SDavid Ahern 		oif = 0;
2161ca254490SDavid Ahern 
2162a3c00e46SMartin KaFai Lau redo_rt6_select:
2163effda4ddSDavid Ahern 	rt6_select(net, fn, oif, res, strict);
2164effda4ddSDavid Ahern 	if (res->f6i == net->ipv6.fib6_null_entry) {
2165a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
2166a3c00e46SMartin KaFai Lau 		if (fn)
2167a3c00e46SMartin KaFai Lau 			goto redo_rt6_select;
2168367efcb9SMartin KaFai Lau 		else if (strict & RT6_LOOKUP_F_REACHABLE) {
2169367efcb9SMartin KaFai Lau 			/* also consider unreachable route */
2170367efcb9SMartin KaFai Lau 			strict &= ~RT6_LOOKUP_F_REACHABLE;
2171367efcb9SMartin KaFai Lau 			fn = saved_fn;
2172367efcb9SMartin KaFai Lau 			goto redo_rt6_select;
2173367efcb9SMartin KaFai Lau 		}
2174a3c00e46SMartin KaFai Lau 	}
2175a3c00e46SMartin KaFai Lau 
2176effda4ddSDavid Ahern 	trace_fib6_table_lookup(net, res, table, fl6);
2177d52d3997SMartin KaFai Lau 
2178effda4ddSDavid Ahern 	return 0;
21791d053da9SDavid Ahern }
21801d053da9SDavid Ahern 
21811d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
21821d053da9SDavid Ahern 			       int oif, struct flowi6 *fl6,
21831d053da9SDavid Ahern 			       const struct sk_buff *skb, int flags)
21841d053da9SDavid Ahern {
2185b1d40991SDavid Ahern 	struct fib6_result res = {};
21860e09edccSWei Wang 	struct rt6_info *rt = NULL;
21871d053da9SDavid Ahern 	int strict = 0;
21881d053da9SDavid Ahern 
21890e09edccSWei Wang 	WARN_ON_ONCE((flags & RT6_LOOKUP_F_DST_NOREF) &&
21900e09edccSWei Wang 		     !rcu_read_lock_held());
21910e09edccSWei Wang 
21921d053da9SDavid Ahern 	strict |= flags & RT6_LOOKUP_F_IFACE;
21931d053da9SDavid Ahern 	strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
21941d053da9SDavid Ahern 	if (net->ipv6.devconf_all->forwarding == 0)
21951d053da9SDavid Ahern 		strict |= RT6_LOOKUP_F_REACHABLE;
21961d053da9SDavid Ahern 
21971d053da9SDavid Ahern 	rcu_read_lock();
21981d053da9SDavid Ahern 
2199effda4ddSDavid Ahern 	fib6_table_lookup(net, table, oif, fl6, &res, strict);
22000e09edccSWei Wang 	if (res.f6i == net->ipv6.fib6_null_entry)
22010e09edccSWei Wang 		goto out;
220223fb93a4SDavid Ahern 
2203b1d40991SDavid Ahern 	fib6_select_path(net, &res, fl6, oif, false, skb, strict);
2204d83009d4SDavid Ahern 
220523fb93a4SDavid Ahern 	/*Search through exception table */
22067e4b5128SDavid Ahern 	rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr);
220723fb93a4SDavid Ahern 	if (rt) {
22080e09edccSWei Wang 		goto out;
22093da59bd9SMartin KaFai Lau 	} else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
2210b1d40991SDavid Ahern 			    !res.nh->fib_nh_gw_family)) {
22113da59bd9SMartin KaFai Lau 		/* Create a RTF_CACHE clone which will not be
22123da59bd9SMartin KaFai Lau 		 * owned by the fib6 tree.  It is for the special case where
22133da59bd9SMartin KaFai Lau 		 * the daddr in the skb during the neighbor look-up is different
22143da59bd9SMartin KaFai Lau 		 * from the fl6->daddr used to look-up route here.
22153da59bd9SMartin KaFai Lau 		 */
22160e09edccSWei Wang 		rt = ip6_rt_cache_alloc(&res, &fl6->daddr, NULL);
22173da59bd9SMartin KaFai Lau 
22180e09edccSWei Wang 		if (rt) {
22190e09edccSWei Wang 			/* 1 refcnt is taken during ip6_rt_cache_alloc().
22200e09edccSWei Wang 			 * As rt6_uncached_list_add() does not consume refcnt,
22210e09edccSWei Wang 			 * this refcnt is always returned to the caller even
22220e09edccSWei Wang 			 * if caller sets RT6_LOOKUP_F_DST_NOREF flag.
22230e09edccSWei Wang 			 */
22240e09edccSWei Wang 			rt6_uncached_list_add(rt);
22250e09edccSWei Wang 			atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
22264d85cd0cSDavid Ahern 			rcu_read_unlock();
22273da59bd9SMartin KaFai Lau 
22280e09edccSWei Wang 			return rt;
22291cfb71eeSWei Wang 		}
2230d52d3997SMartin KaFai Lau 	} else {
2231d52d3997SMartin KaFai Lau 		/* Get a percpu copy */
2232951f788aSEric Dumazet 		local_bh_disable();
22330e09edccSWei Wang 		rt = rt6_get_pcpu_route(&res);
2234d52d3997SMartin KaFai Lau 
22350e09edccSWei Wang 		if (!rt)
22360e09edccSWei Wang 			rt = rt6_make_pcpu_route(net, &res);
223793531c67SDavid Ahern 
2238951f788aSEric Dumazet 		local_bh_enable();
22390e09edccSWei Wang 	}
22400e09edccSWei Wang out:
22410e09edccSWei Wang 	if (!rt)
22420e09edccSWei Wang 		rt = net->ipv6.ip6_null_entry;
22430e09edccSWei Wang 	if (!(flags & RT6_LOOKUP_F_DST_NOREF))
22440e09edccSWei Wang 		ip6_hold_safe(net, &rt);
2245951f788aSEric Dumazet 	rcu_read_unlock();
2246d4bea421SDavid Ahern 
22470e09edccSWei Wang 	return rt;
2248c71099acSThomas Graf }
22499ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route);
2250c71099acSThomas Graf 
2251b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net,
2252b75cc8f9SDavid Ahern 					    struct fib6_table *table,
2253b75cc8f9SDavid Ahern 					    struct flowi6 *fl6,
2254b75cc8f9SDavid Ahern 					    const struct sk_buff *skb,
2255b75cc8f9SDavid Ahern 					    int flags)
22564acad72dSPavel Emelyanov {
2257b75cc8f9SDavid Ahern 	return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags);
22584acad72dSPavel Emelyanov }
22594acad72dSPavel Emelyanov 
2260d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net,
226172331bc0SShmulik Ladkani 					 struct net_device *dev,
2262b75cc8f9SDavid Ahern 					 struct flowi6 *fl6,
2263b75cc8f9SDavid Ahern 					 const struct sk_buff *skb,
2264b75cc8f9SDavid Ahern 					 int flags)
226572331bc0SShmulik Ladkani {
226672331bc0SShmulik Ladkani 	if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
226772331bc0SShmulik Ladkani 		flags |= RT6_LOOKUP_F_IFACE;
226872331bc0SShmulik Ladkani 
2269b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input);
227072331bc0SShmulik Ladkani }
2271d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
227272331bc0SShmulik Ladkani 
227323aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb,
22745e5d6fedSRoopa Prabhu 				  struct flow_keys *keys,
22755e5d6fedSRoopa Prabhu 				  struct flow_keys *flkeys)
227623aebdacSJakub Sitnicki {
227723aebdacSJakub Sitnicki 	const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
227823aebdacSJakub Sitnicki 	const struct ipv6hdr *key_iph = outer_iph;
22795e5d6fedSRoopa Prabhu 	struct flow_keys *_flkeys = flkeys;
228023aebdacSJakub Sitnicki 	const struct ipv6hdr *inner_iph;
228123aebdacSJakub Sitnicki 	const struct icmp6hdr *icmph;
228223aebdacSJakub Sitnicki 	struct ipv6hdr _inner_iph;
2283cea67a2dSEric Dumazet 	struct icmp6hdr _icmph;
228423aebdacSJakub Sitnicki 
228523aebdacSJakub Sitnicki 	if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
228623aebdacSJakub Sitnicki 		goto out;
228723aebdacSJakub Sitnicki 
2288cea67a2dSEric Dumazet 	icmph = skb_header_pointer(skb, skb_transport_offset(skb),
2289cea67a2dSEric Dumazet 				   sizeof(_icmph), &_icmph);
2290cea67a2dSEric Dumazet 	if (!icmph)
2291cea67a2dSEric Dumazet 		goto out;
2292cea67a2dSEric Dumazet 
229323aebdacSJakub Sitnicki 	if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
229423aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
229523aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
229623aebdacSJakub Sitnicki 	    icmph->icmp6_type != ICMPV6_PARAMPROB)
229723aebdacSJakub Sitnicki 		goto out;
229823aebdacSJakub Sitnicki 
229923aebdacSJakub Sitnicki 	inner_iph = skb_header_pointer(skb,
230023aebdacSJakub Sitnicki 				       skb_transport_offset(skb) + sizeof(*icmph),
230123aebdacSJakub Sitnicki 				       sizeof(_inner_iph), &_inner_iph);
230223aebdacSJakub Sitnicki 	if (!inner_iph)
230323aebdacSJakub Sitnicki 		goto out;
230423aebdacSJakub Sitnicki 
230523aebdacSJakub Sitnicki 	key_iph = inner_iph;
23065e5d6fedSRoopa Prabhu 	_flkeys = NULL;
230723aebdacSJakub Sitnicki out:
23085e5d6fedSRoopa Prabhu 	if (_flkeys) {
23095e5d6fedSRoopa Prabhu 		keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src;
23105e5d6fedSRoopa Prabhu 		keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst;
23115e5d6fedSRoopa Prabhu 		keys->tags.flow_label = _flkeys->tags.flow_label;
23125e5d6fedSRoopa Prabhu 		keys->basic.ip_proto = _flkeys->basic.ip_proto;
23135e5d6fedSRoopa Prabhu 	} else {
231423aebdacSJakub Sitnicki 		keys->addrs.v6addrs.src = key_iph->saddr;
231523aebdacSJakub Sitnicki 		keys->addrs.v6addrs.dst = key_iph->daddr;
2316fa1be7e0SMichal Kubecek 		keys->tags.flow_label = ip6_flowlabel(key_iph);
231723aebdacSJakub Sitnicki 		keys->basic.ip_proto = key_iph->nexthdr;
231823aebdacSJakub Sitnicki 	}
23195e5d6fedSRoopa Prabhu }
232023aebdacSJakub Sitnicki 
232123aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */
2322b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6,
2323b4bac172SDavid Ahern 		       const struct sk_buff *skb, struct flow_keys *flkeys)
232423aebdacSJakub Sitnicki {
232523aebdacSJakub Sitnicki 	struct flow_keys hash_keys;
23269a2a537aSDavid Ahern 	u32 mhash;
232723aebdacSJakub Sitnicki 
2328bbfa047aSDavid S. Miller 	switch (ip6_multipath_hash_policy(net)) {
2329b4bac172SDavid Ahern 	case 0:
23306f74b6c2SDavid Ahern 		memset(&hash_keys, 0, sizeof(hash_keys));
23316f74b6c2SDavid Ahern 		hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
23329a2a537aSDavid Ahern 		if (skb) {
23335e5d6fedSRoopa Prabhu 			ip6_multipath_l3_keys(skb, &hash_keys, flkeys);
23349a2a537aSDavid Ahern 		} else {
23359a2a537aSDavid Ahern 			hash_keys.addrs.v6addrs.src = fl6->saddr;
23369a2a537aSDavid Ahern 			hash_keys.addrs.v6addrs.dst = fl6->daddr;
2337fa1be7e0SMichal Kubecek 			hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6);
23389a2a537aSDavid Ahern 			hash_keys.basic.ip_proto = fl6->flowi6_proto;
233923aebdacSJakub Sitnicki 		}
2340b4bac172SDavid Ahern 		break;
2341b4bac172SDavid Ahern 	case 1:
2342b4bac172SDavid Ahern 		if (skb) {
2343b4bac172SDavid Ahern 			unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;
2344b4bac172SDavid Ahern 			struct flow_keys keys;
2345b4bac172SDavid Ahern 
2346b4bac172SDavid Ahern 			/* short-circuit if we already have L4 hash present */
2347b4bac172SDavid Ahern 			if (skb->l4_hash)
2348b4bac172SDavid Ahern 				return skb_get_hash_raw(skb) >> 1;
2349b4bac172SDavid Ahern 
2350b4bac172SDavid Ahern 			memset(&hash_keys, 0, sizeof(hash_keys));
2351b4bac172SDavid Ahern 
2352b4bac172SDavid Ahern                         if (!flkeys) {
2353b4bac172SDavid Ahern 				skb_flow_dissect_flow_keys(skb, &keys, flag);
2354b4bac172SDavid Ahern 				flkeys = &keys;
2355b4bac172SDavid Ahern 			}
2356b4bac172SDavid Ahern 			hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2357b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src;
2358b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst;
2359b4bac172SDavid Ahern 			hash_keys.ports.src = flkeys->ports.src;
2360b4bac172SDavid Ahern 			hash_keys.ports.dst = flkeys->ports.dst;
2361b4bac172SDavid Ahern 			hash_keys.basic.ip_proto = flkeys->basic.ip_proto;
2362b4bac172SDavid Ahern 		} else {
2363b4bac172SDavid Ahern 			memset(&hash_keys, 0, sizeof(hash_keys));
2364b4bac172SDavid Ahern 			hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2365b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.src = fl6->saddr;
2366b4bac172SDavid Ahern 			hash_keys.addrs.v6addrs.dst = fl6->daddr;
2367b4bac172SDavid Ahern 			hash_keys.ports.src = fl6->fl6_sport;
2368b4bac172SDavid Ahern 			hash_keys.ports.dst = fl6->fl6_dport;
2369b4bac172SDavid Ahern 			hash_keys.basic.ip_proto = fl6->flowi6_proto;
2370b4bac172SDavid Ahern 		}
2371b4bac172SDavid Ahern 		break;
2372b4bac172SDavid Ahern 	}
23739a2a537aSDavid Ahern 	mhash = flow_hash_from_keys(&hash_keys);
237423aebdacSJakub Sitnicki 
23759a2a537aSDavid Ahern 	return mhash >> 1;
237623aebdacSJakub Sitnicki }
237723aebdacSJakub Sitnicki 
237867f415ddSWei Wang /* Called with rcu held */
2379c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb)
2380c71099acSThomas Graf {
2381b71d1d42SEric Dumazet 	const struct ipv6hdr *iph = ipv6_hdr(skb);
2382c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(skb->dev);
238367f415ddSWei Wang 	int flags = RT6_LOOKUP_F_HAS_SADDR | RT6_LOOKUP_F_DST_NOREF;
2384904af04dSJiri Benc 	struct ip_tunnel_info *tun_info;
23854c9483b2SDavid S. Miller 	struct flowi6 fl6 = {
2386e0d56fddSDavid Ahern 		.flowi6_iif = skb->dev->ifindex,
23874c9483b2SDavid S. Miller 		.daddr = iph->daddr,
23884c9483b2SDavid S. Miller 		.saddr = iph->saddr,
23896502ca52SYOSHIFUJI Hideaki / 吉藤英明 		.flowlabel = ip6_flowinfo(iph),
23904c9483b2SDavid S. Miller 		.flowi6_mark = skb->mark,
23914c9483b2SDavid S. Miller 		.flowi6_proto = iph->nexthdr,
2392c71099acSThomas Graf 	};
23935e5d6fedSRoopa Prabhu 	struct flow_keys *flkeys = NULL, _flkeys;
2394adaa70bbSThomas Graf 
2395904af04dSJiri Benc 	tun_info = skb_tunnel_info(skb);
239646fa062aSJiri Benc 	if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
2397904af04dSJiri Benc 		fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
23985e5d6fedSRoopa Prabhu 
23995e5d6fedSRoopa Prabhu 	if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys))
24005e5d6fedSRoopa Prabhu 		flkeys = &_flkeys;
24015e5d6fedSRoopa Prabhu 
240223aebdacSJakub Sitnicki 	if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
2403b4bac172SDavid Ahern 		fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys);
240406e9d040SJiri Benc 	skb_dst_drop(skb);
240567f415ddSWei Wang 	skb_dst_set_noref(skb, ip6_route_input_lookup(net, skb->dev,
240667f415ddSWei Wang 						      &fl6, skb, flags));
2407c71099acSThomas Graf }
2408c71099acSThomas Graf 
2409b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net,
2410b75cc8f9SDavid Ahern 					     struct fib6_table *table,
2411b75cc8f9SDavid Ahern 					     struct flowi6 *fl6,
2412b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
2413b75cc8f9SDavid Ahern 					     int flags)
2414c71099acSThomas Graf {
2415b75cc8f9SDavid Ahern 	return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags);
2416c71099acSThomas Graf }
2417c71099acSThomas Graf 
2418*7d9e5f42SWei Wang struct dst_entry *ip6_route_output_flags_noref(struct net *net,
2419*7d9e5f42SWei Wang 					       const struct sock *sk,
24206f21c96aSPaolo Abeni 					       struct flowi6 *fl6, int flags)
2421c71099acSThomas Graf {
2422d46a9d67SDavid Ahern 	bool any_src;
2423c71099acSThomas Graf 
24243ede0bbcSRobert Shearman 	if (ipv6_addr_type(&fl6->daddr) &
24253ede0bbcSRobert Shearman 	    (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) {
24264c1feac5SDavid Ahern 		struct dst_entry *dst;
24274c1feac5SDavid Ahern 
2428*7d9e5f42SWei Wang 		/* This function does not take refcnt on the dst */
24294c1feac5SDavid Ahern 		dst = l3mdev_link_scope_lookup(net, fl6);
2430ca254490SDavid Ahern 		if (dst)
2431ca254490SDavid Ahern 			return dst;
24324c1feac5SDavid Ahern 	}
2433ca254490SDavid Ahern 
24341fb9489bSPavel Emelyanov 	fl6->flowi6_iif = LOOPBACK_IFINDEX;
24354dc27d1cSDavid McCullough 
2436*7d9e5f42SWei Wang 	flags |= RT6_LOOKUP_F_DST_NOREF;
2437d46a9d67SDavid Ahern 	any_src = ipv6_addr_any(&fl6->saddr);
2438741a11d9SDavid Ahern 	if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
2439d46a9d67SDavid Ahern 	    (fl6->flowi6_oif && any_src))
244077d16f45SYOSHIFUJI Hideaki 		flags |= RT6_LOOKUP_F_IFACE;
2441c71099acSThomas Graf 
2442d46a9d67SDavid Ahern 	if (!any_src)
2443adaa70bbSThomas Graf 		flags |= RT6_LOOKUP_F_HAS_SADDR;
24440c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 	else if (sk)
24450c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 		flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
2446adaa70bbSThomas Graf 
2447b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output);
24481da177e4SLinus Torvalds }
2449*7d9e5f42SWei Wang EXPORT_SYMBOL_GPL(ip6_route_output_flags_noref);
2450*7d9e5f42SWei Wang 
2451*7d9e5f42SWei Wang struct dst_entry *ip6_route_output_flags(struct net *net,
2452*7d9e5f42SWei Wang 					 const struct sock *sk,
2453*7d9e5f42SWei Wang 					 struct flowi6 *fl6,
2454*7d9e5f42SWei Wang 					 int flags)
2455*7d9e5f42SWei Wang {
2456*7d9e5f42SWei Wang         struct dst_entry *dst;
2457*7d9e5f42SWei Wang         struct rt6_info *rt6;
2458*7d9e5f42SWei Wang 
2459*7d9e5f42SWei Wang         rcu_read_lock();
2460*7d9e5f42SWei Wang         dst = ip6_route_output_flags_noref(net, sk, fl6, flags);
2461*7d9e5f42SWei Wang         rt6 = (struct rt6_info *)dst;
2462*7d9e5f42SWei Wang         /* For dst cached in uncached_list, refcnt is already taken. */
2463*7d9e5f42SWei Wang         if (list_empty(&rt6->rt6i_uncached) && !dst_hold_safe(dst)) {
2464*7d9e5f42SWei Wang                 dst = &net->ipv6.ip6_null_entry->dst;
2465*7d9e5f42SWei Wang                 dst_hold(dst);
2466*7d9e5f42SWei Wang         }
2467*7d9e5f42SWei Wang         rcu_read_unlock();
2468*7d9e5f42SWei Wang 
2469*7d9e5f42SWei Wang         return dst;
2470*7d9e5f42SWei Wang }
24716f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags);
24721da177e4SLinus Torvalds 
24732774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
247414e50e57SDavid S. Miller {
24755c1e6aa3SDavid S. Miller 	struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
24761dbe3252SWei Wang 	struct net_device *loopback_dev = net->loopback_dev;
247714e50e57SDavid S. Miller 	struct dst_entry *new = NULL;
247814e50e57SDavid S. Miller 
24791dbe3252SWei Wang 	rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
248062cf27e5SSteffen Klassert 		       DST_OBSOLETE_DEAD, 0);
248114e50e57SDavid S. Miller 	if (rt) {
24820a1f5962SMartin KaFai Lau 		rt6_info_init(rt);
248381eb8447SWei Wang 		atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
24840a1f5962SMartin KaFai Lau 
2485d8d1f30bSChangli Gao 		new = &rt->dst;
248614e50e57SDavid S. Miller 		new->__use = 1;
2487352e512cSHerbert Xu 		new->input = dst_discard;
2488ede2059dSEric W. Biederman 		new->output = dst_discard_out;
248914e50e57SDavid S. Miller 
2490defb3519SDavid S. Miller 		dst_copy_metrics(new, &ort->dst);
249114e50e57SDavid S. Miller 
24921dbe3252SWei Wang 		rt->rt6i_idev = in6_dev_get(loopback_dev);
24934e3fd7a0SAlexey Dobriyan 		rt->rt6i_gateway = ort->rt6i_gateway;
24940a1f5962SMartin KaFai Lau 		rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
249514e50e57SDavid S. Miller 
249614e50e57SDavid S. Miller 		memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
249714e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES
249814e50e57SDavid S. Miller 		memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
249914e50e57SDavid S. Miller #endif
250014e50e57SDavid S. Miller 	}
250114e50e57SDavid S. Miller 
250269ead7afSDavid S. Miller 	dst_release(dst_orig);
250369ead7afSDavid S. Miller 	return new ? new : ERR_PTR(-ENOMEM);
250414e50e57SDavid S. Miller }
250514e50e57SDavid S. Miller 
25061da177e4SLinus Torvalds /*
25071da177e4SLinus Torvalds  *	Destination cache support functions
25081da177e4SLinus Torvalds  */
25091da177e4SLinus Torvalds 
25108d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie)
25113da59bd9SMartin KaFai Lau {
251236143645SSteffen Klassert 	u32 rt_cookie = 0;
2513c5cff856SWei Wang 
25148ae86971SDavid Ahern 	if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie)
251593531c67SDavid Ahern 		return false;
251693531c67SDavid Ahern 
251793531c67SDavid Ahern 	if (fib6_check_expired(f6i))
251893531c67SDavid Ahern 		return false;
251993531c67SDavid Ahern 
252093531c67SDavid Ahern 	return true;
252193531c67SDavid Ahern }
252293531c67SDavid Ahern 
2523a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt,
2524a68886a6SDavid Ahern 				   struct fib6_info *from,
2525a68886a6SDavid Ahern 				   u32 cookie)
25263da59bd9SMartin KaFai Lau {
2527c5cff856SWei Wang 	u32 rt_cookie = 0;
2528c5cff856SWei Wang 
2529a68886a6SDavid Ahern 	if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) ||
253093531c67SDavid Ahern 	    rt_cookie != cookie)
25313da59bd9SMartin KaFai Lau 		return NULL;
25323da59bd9SMartin KaFai Lau 
25333da59bd9SMartin KaFai Lau 	if (rt6_check_expired(rt))
25343da59bd9SMartin KaFai Lau 		return NULL;
25353da59bd9SMartin KaFai Lau 
25363da59bd9SMartin KaFai Lau 	return &rt->dst;
25373da59bd9SMartin KaFai Lau }
25383da59bd9SMartin KaFai Lau 
2539a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt,
2540a68886a6SDavid Ahern 					    struct fib6_info *from,
2541a68886a6SDavid Ahern 					    u32 cookie)
25423da59bd9SMartin KaFai Lau {
25435973fb1eSMartin KaFai Lau 	if (!__rt6_check_expired(rt) &&
25445973fb1eSMartin KaFai Lau 	    rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
2545a68886a6SDavid Ahern 	    fib6_check(from, cookie))
25463da59bd9SMartin KaFai Lau 		return &rt->dst;
25473da59bd9SMartin KaFai Lau 	else
25483da59bd9SMartin KaFai Lau 		return NULL;
25493da59bd9SMartin KaFai Lau }
25503da59bd9SMartin KaFai Lau 
25511da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
25521da177e4SLinus Torvalds {
2553a87b7dc9SDavid Ahern 	struct dst_entry *dst_ret;
2554a68886a6SDavid Ahern 	struct fib6_info *from;
25551da177e4SLinus Torvalds 	struct rt6_info *rt;
25561da177e4SLinus Torvalds 
2557a87b7dc9SDavid Ahern 	rt = container_of(dst, struct rt6_info, dst);
2558a87b7dc9SDavid Ahern 
2559a87b7dc9SDavid Ahern 	rcu_read_lock();
25601da177e4SLinus Torvalds 
25616f3118b5SNicolas Dichtel 	/* All IPV6 dsts are created with ->obsolete set to the value
25626f3118b5SNicolas Dichtel 	 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
25636f3118b5SNicolas Dichtel 	 * into this function always.
25646f3118b5SNicolas Dichtel 	 */
2565e3bc10bdSHannes Frederic Sowa 
2566a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
25674b32b5adSMartin KaFai Lau 
2568a68886a6SDavid Ahern 	if (from && (rt->rt6i_flags & RTF_PCPU ||
2569a68886a6SDavid Ahern 	    unlikely(!list_empty(&rt->rt6i_uncached))))
2570a68886a6SDavid Ahern 		dst_ret = rt6_dst_from_check(rt, from, cookie);
25713da59bd9SMartin KaFai Lau 	else
2572a68886a6SDavid Ahern 		dst_ret = rt6_check(rt, from, cookie);
2573a87b7dc9SDavid Ahern 
2574a87b7dc9SDavid Ahern 	rcu_read_unlock();
2575a87b7dc9SDavid Ahern 
2576a87b7dc9SDavid Ahern 	return dst_ret;
25771da177e4SLinus Torvalds }
25781da177e4SLinus Torvalds 
25791da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
25801da177e4SLinus Torvalds {
25811da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *) dst;
25821da177e4SLinus Torvalds 
25831da177e4SLinus Torvalds 	if (rt) {
258454c1a859SYOSHIFUJI Hideaki / 吉藤英明 		if (rt->rt6i_flags & RTF_CACHE) {
2585c3c14da0SDavid Ahern 			rcu_read_lock();
258654c1a859SYOSHIFUJI Hideaki / 吉藤英明 			if (rt6_check_expired(rt)) {
258793531c67SDavid Ahern 				rt6_remove_exception_rt(rt);
258854c1a859SYOSHIFUJI Hideaki / 吉藤英明 				dst = NULL;
25891da177e4SLinus Torvalds 			}
2590c3c14da0SDavid Ahern 			rcu_read_unlock();
259154c1a859SYOSHIFUJI Hideaki / 吉藤英明 		} else {
259254c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst_release(dst);
259354c1a859SYOSHIFUJI Hideaki / 吉藤英明 			dst = NULL;
259454c1a859SYOSHIFUJI Hideaki / 吉藤英明 		}
259554c1a859SYOSHIFUJI Hideaki / 吉藤英明 	}
259654c1a859SYOSHIFUJI Hideaki / 吉藤英明 	return dst;
25971da177e4SLinus Torvalds }
25981da177e4SLinus Torvalds 
25991da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb)
26001da177e4SLinus Torvalds {
26011da177e4SLinus Torvalds 	struct rt6_info *rt;
26021da177e4SLinus Torvalds 
26033ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
26041da177e4SLinus Torvalds 
2605adf30907SEric Dumazet 	rt = (struct rt6_info *) skb_dst(skb);
26061da177e4SLinus Torvalds 	if (rt) {
26078a14e46fSDavid Ahern 		rcu_read_lock();
26081eb4f758SHannes Frederic Sowa 		if (rt->rt6i_flags & RTF_CACHE) {
260993531c67SDavid Ahern 			rt6_remove_exception_rt(rt);
2610c5cff856SWei Wang 		} else {
2611a68886a6SDavid Ahern 			struct fib6_info *from;
2612c5cff856SWei Wang 			struct fib6_node *fn;
2613c5cff856SWei Wang 
2614a68886a6SDavid Ahern 			from = rcu_dereference(rt->from);
2615a68886a6SDavid Ahern 			if (from) {
2616a68886a6SDavid Ahern 				fn = rcu_dereference(from->fib6_node);
2617c5cff856SWei Wang 				if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2618c5cff856SWei Wang 					fn->fn_sernum = -1;
2619a68886a6SDavid Ahern 			}
26201da177e4SLinus Torvalds 		}
26211da177e4SLinus Torvalds 		rcu_read_unlock();
26221da177e4SLinus Torvalds 	}
26231da177e4SLinus Torvalds }
26241da177e4SLinus Torvalds 
26256a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout)
26266a3e030fSDavid Ahern {
2627a68886a6SDavid Ahern 	if (!(rt0->rt6i_flags & RTF_EXPIRES)) {
2628a68886a6SDavid Ahern 		struct fib6_info *from;
2629a68886a6SDavid Ahern 
2630a68886a6SDavid Ahern 		rcu_read_lock();
2631a68886a6SDavid Ahern 		from = rcu_dereference(rt0->from);
2632a68886a6SDavid Ahern 		if (from)
2633a68886a6SDavid Ahern 			rt0->dst.expires = from->expires;
2634a68886a6SDavid Ahern 		rcu_read_unlock();
2635a68886a6SDavid Ahern 	}
26366a3e030fSDavid Ahern 
26376a3e030fSDavid Ahern 	dst_set_expires(&rt0->dst, timeout);
26386a3e030fSDavid Ahern 	rt0->rt6i_flags |= RTF_EXPIRES;
26396700c270SDavid S. Miller }
26401da177e4SLinus Torvalds 
264145e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
264245e4fd26SMartin KaFai Lau {
264345e4fd26SMartin KaFai Lau 	struct net *net = dev_net(rt->dst.dev);
264445e4fd26SMartin KaFai Lau 
2645d4ead6b3SDavid Ahern 	dst_metric_set(&rt->dst, RTAX_MTU, mtu);
264645e4fd26SMartin KaFai Lau 	rt->rt6i_flags |= RTF_MODIFIED;
264745e4fd26SMartin KaFai Lau 	rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
264845e4fd26SMartin KaFai Lau }
264945e4fd26SMartin KaFai Lau 
26500d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
26510d3f6d29SMartin KaFai Lau {
26520d3f6d29SMartin KaFai Lau 	return !(rt->rt6i_flags & RTF_CACHE) &&
26531490ed2aSPaolo Abeni 		(rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from));
26540d3f6d29SMartin KaFai Lau }
26550d3f6d29SMartin KaFai Lau 
265645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
265745e4fd26SMartin KaFai Lau 				 const struct ipv6hdr *iph, u32 mtu)
26581da177e4SLinus Torvalds {
26590dec879fSJulian Anastasov 	const struct in6_addr *daddr, *saddr;
26601da177e4SLinus Torvalds 	struct rt6_info *rt6 = (struct rt6_info *)dst;
26611da177e4SLinus Torvalds 
266219bda36cSXin Long 	if (dst_metric_locked(dst, RTAX_MTU))
266319bda36cSXin Long 		return;
266419bda36cSXin Long 
266545e4fd26SMartin KaFai Lau 	if (iph) {
266645e4fd26SMartin KaFai Lau 		daddr = &iph->daddr;
266745e4fd26SMartin KaFai Lau 		saddr = &iph->saddr;
266845e4fd26SMartin KaFai Lau 	} else if (sk) {
266945e4fd26SMartin KaFai Lau 		daddr = &sk->sk_v6_daddr;
267045e4fd26SMartin KaFai Lau 		saddr = &inet6_sk(sk)->saddr;
267145e4fd26SMartin KaFai Lau 	} else {
26720dec879fSJulian Anastasov 		daddr = NULL;
26730dec879fSJulian Anastasov 		saddr = NULL;
26741da177e4SLinus Torvalds 	}
26750dec879fSJulian Anastasov 	dst_confirm_neigh(dst, daddr);
26760dec879fSJulian Anastasov 	mtu = max_t(u32, mtu, IPV6_MIN_MTU);
26770dec879fSJulian Anastasov 	if (mtu >= dst_mtu(dst))
26780dec879fSJulian Anastasov 		return;
26790dec879fSJulian Anastasov 
26800dec879fSJulian Anastasov 	if (!rt6_cache_allowed_for_pmtu(rt6)) {
26810dec879fSJulian Anastasov 		rt6_do_update_pmtu(rt6, mtu);
26822b760fcfSWei Wang 		/* update rt6_ex->stamp for cache */
26832b760fcfSWei Wang 		if (rt6->rt6i_flags & RTF_CACHE)
26842b760fcfSWei Wang 			rt6_update_exception_stamp_rt(rt6);
26850dec879fSJulian Anastasov 	} else if (daddr) {
268685bd05deSDavid Ahern 		struct fib6_result res = {};
26870dec879fSJulian Anastasov 		struct rt6_info *nrt6;
26880dec879fSJulian Anastasov 
26894d85cd0cSDavid Ahern 		rcu_read_lock();
269085bd05deSDavid Ahern 		res.f6i = rcu_dereference(rt6->from);
269185bd05deSDavid Ahern 		if (!res.f6i) {
26929c69a132SJonathan Lemon 			rcu_read_unlock();
26939c69a132SJonathan Lemon 			return;
26949c69a132SJonathan Lemon 		}
26957d21fec9SDavid Ahern 		res.fib6_flags = res.f6i->fib6_flags;
26967d21fec9SDavid Ahern 		res.fib6_type = res.f6i->fib6_type;
26977d21fec9SDavid Ahern 
26982d44234bSDavid Ahern 		if (res.f6i->nh) {
26992d44234bSDavid Ahern 			struct fib6_nh_match_arg arg = {
27002d44234bSDavid Ahern 				.dev = dst->dev,
27012d44234bSDavid Ahern 				.gw = &rt6->rt6i_gateway,
27022d44234bSDavid Ahern 			};
27032d44234bSDavid Ahern 
27042d44234bSDavid Ahern 			nexthop_for_each_fib6_nh(res.f6i->nh,
27052d44234bSDavid Ahern 						 fib6_nh_find_match, &arg);
27062d44234bSDavid Ahern 
27072d44234bSDavid Ahern 			/* fib6_info uses a nexthop that does not have fib6_nh
27082d44234bSDavid Ahern 			 * using the dst->dev + gw. Should be impossible.
27092d44234bSDavid Ahern 			 */
27102d44234bSDavid Ahern 			if (!arg.match) {
27112d44234bSDavid Ahern 				rcu_read_unlock();
27122d44234bSDavid Ahern 				return;
27132d44234bSDavid Ahern 			}
27142d44234bSDavid Ahern 
27152d44234bSDavid Ahern 			res.nh = arg.match;
27162d44234bSDavid Ahern 		} else {
27172d44234bSDavid Ahern 			res.nh = res.f6i->fib6_nh;
27182d44234bSDavid Ahern 		}
27192d44234bSDavid Ahern 
272085bd05deSDavid Ahern 		nrt6 = ip6_rt_cache_alloc(&res, daddr, saddr);
272145e4fd26SMartin KaFai Lau 		if (nrt6) {
272245e4fd26SMartin KaFai Lau 			rt6_do_update_pmtu(nrt6, mtu);
27235012f0a5SDavid Ahern 			if (rt6_insert_exception(nrt6, &res))
27242b760fcfSWei Wang 				dst_release_immediate(&nrt6->dst);
272545e4fd26SMartin KaFai Lau 		}
2726a68886a6SDavid Ahern 		rcu_read_unlock();
272745e4fd26SMartin KaFai Lau 	}
272845e4fd26SMartin KaFai Lau }
272945e4fd26SMartin KaFai Lau 
273045e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
273145e4fd26SMartin KaFai Lau 			       struct sk_buff *skb, u32 mtu)
273245e4fd26SMartin KaFai Lau {
273345e4fd26SMartin KaFai Lau 	__ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
27341da177e4SLinus Torvalds }
27351da177e4SLinus Torvalds 
273642ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
2737e2d118a1SLorenzo Colitti 		     int oif, u32 mark, kuid_t uid)
273881aded24SDavid S. Miller {
273981aded24SDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
274081aded24SDavid S. Miller 	struct dst_entry *dst;
2741dc92095dSMaciej Żenczykowski 	struct flowi6 fl6 = {
2742dc92095dSMaciej Żenczykowski 		.flowi6_oif = oif,
2743dc92095dSMaciej Żenczykowski 		.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark),
2744dc92095dSMaciej Żenczykowski 		.daddr = iph->daddr,
2745dc92095dSMaciej Żenczykowski 		.saddr = iph->saddr,
2746dc92095dSMaciej Żenczykowski 		.flowlabel = ip6_flowinfo(iph),
2747dc92095dSMaciej Żenczykowski 		.flowi6_uid = uid,
2748dc92095dSMaciej Żenczykowski 	};
274981aded24SDavid S. Miller 
275081aded24SDavid S. Miller 	dst = ip6_route_output(net, NULL, &fl6);
275181aded24SDavid S. Miller 	if (!dst->error)
275245e4fd26SMartin KaFai Lau 		__ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
275381aded24SDavid S. Miller 	dst_release(dst);
275481aded24SDavid S. Miller }
275581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu);
275681aded24SDavid S. Miller 
275781aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
275881aded24SDavid S. Miller {
27597ddacfa5SDavid Ahern 	int oif = sk->sk_bound_dev_if;
276033c162a9SMartin KaFai Lau 	struct dst_entry *dst;
276133c162a9SMartin KaFai Lau 
27627ddacfa5SDavid Ahern 	if (!oif && skb->dev)
27637ddacfa5SDavid Ahern 		oif = l3mdev_master_ifindex(skb->dev);
27647ddacfa5SDavid Ahern 
27657ddacfa5SDavid Ahern 	ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid);
276633c162a9SMartin KaFai Lau 
276733c162a9SMartin KaFai Lau 	dst = __sk_dst_get(sk);
276833c162a9SMartin KaFai Lau 	if (!dst || !dst->obsolete ||
276933c162a9SMartin KaFai Lau 	    dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
277033c162a9SMartin KaFai Lau 		return;
277133c162a9SMartin KaFai Lau 
277233c162a9SMartin KaFai Lau 	bh_lock_sock(sk);
277333c162a9SMartin KaFai Lau 	if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
277433c162a9SMartin KaFai Lau 		ip6_datagram_dst_update(sk, false);
277533c162a9SMartin KaFai Lau 	bh_unlock_sock(sk);
277681aded24SDavid S. Miller }
277781aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
277881aded24SDavid S. Miller 
27797d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst,
27807d6850f7SAlexey Kodanev 			   const struct flowi6 *fl6)
27817d6850f7SAlexey Kodanev {
27827d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES
27837d6850f7SAlexey Kodanev 	struct ipv6_pinfo *np = inet6_sk(sk);
27847d6850f7SAlexey Kodanev #endif
27857d6850f7SAlexey Kodanev 
27867d6850f7SAlexey Kodanev 	ip6_dst_store(sk, dst,
27877d6850f7SAlexey Kodanev 		      ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ?
27887d6850f7SAlexey Kodanev 		      &sk->sk_v6_daddr : NULL,
27897d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES
27907d6850f7SAlexey Kodanev 		      ipv6_addr_equal(&fl6->saddr, &np->saddr) ?
27917d6850f7SAlexey Kodanev 		      &np->saddr :
27927d6850f7SAlexey Kodanev #endif
27937d6850f7SAlexey Kodanev 		      NULL);
27947d6850f7SAlexey Kodanev }
27957d6850f7SAlexey Kodanev 
27969b6b35abSDavid Ahern static bool ip6_redirect_nh_match(const struct fib6_result *res,
27970b34eb00SDavid Ahern 				  struct flowi6 *fl6,
27980b34eb00SDavid Ahern 				  const struct in6_addr *gw,
27990b34eb00SDavid Ahern 				  struct rt6_info **ret)
28000b34eb00SDavid Ahern {
28019b6b35abSDavid Ahern 	const struct fib6_nh *nh = res->nh;
28029b6b35abSDavid Ahern 
28030b34eb00SDavid Ahern 	if (nh->fib_nh_flags & RTNH_F_DEAD || !nh->fib_nh_gw_family ||
28040b34eb00SDavid Ahern 	    fl6->flowi6_oif != nh->fib_nh_dev->ifindex)
28050b34eb00SDavid Ahern 		return false;
28060b34eb00SDavid Ahern 
28070b34eb00SDavid Ahern 	/* rt_cache's gateway might be different from its 'parent'
28080b34eb00SDavid Ahern 	 * in the case of an ip redirect.
28090b34eb00SDavid Ahern 	 * So we keep searching in the exception table if the gateway
28100b34eb00SDavid Ahern 	 * is different.
28110b34eb00SDavid Ahern 	 */
28120b34eb00SDavid Ahern 	if (!ipv6_addr_equal(gw, &nh->fib_nh_gw6)) {
28130b34eb00SDavid Ahern 		struct rt6_info *rt_cache;
28140b34eb00SDavid Ahern 
28159b6b35abSDavid Ahern 		rt_cache = rt6_find_cached_rt(res, &fl6->daddr, &fl6->saddr);
28160b34eb00SDavid Ahern 		if (rt_cache &&
28170b34eb00SDavid Ahern 		    ipv6_addr_equal(gw, &rt_cache->rt6i_gateway)) {
28180b34eb00SDavid Ahern 			*ret = rt_cache;
28190b34eb00SDavid Ahern 			return true;
28200b34eb00SDavid Ahern 		}
28210b34eb00SDavid Ahern 		return false;
28220b34eb00SDavid Ahern 	}
28230b34eb00SDavid Ahern 	return true;
28240b34eb00SDavid Ahern }
28250b34eb00SDavid Ahern 
2826c55c8988SDavid Ahern struct fib6_nh_rd_arg {
2827c55c8988SDavid Ahern 	struct fib6_result	*res;
2828c55c8988SDavid Ahern 	struct flowi6		*fl6;
2829c55c8988SDavid Ahern 	const struct in6_addr	*gw;
2830c55c8988SDavid Ahern 	struct rt6_info		**ret;
2831c55c8988SDavid Ahern };
2832c55c8988SDavid Ahern 
2833c55c8988SDavid Ahern static int fib6_nh_redirect_match(struct fib6_nh *nh, void *_arg)
2834c55c8988SDavid Ahern {
2835c55c8988SDavid Ahern 	struct fib6_nh_rd_arg *arg = _arg;
2836c55c8988SDavid Ahern 
2837c55c8988SDavid Ahern 	arg->res->nh = nh;
2838c55c8988SDavid Ahern 	return ip6_redirect_nh_match(arg->res, arg->fl6, arg->gw, arg->ret);
2839c55c8988SDavid Ahern }
2840c55c8988SDavid Ahern 
2841b55b76b2SDuan Jiong /* Handle redirects */
2842b55b76b2SDuan Jiong struct ip6rd_flowi {
2843b55b76b2SDuan Jiong 	struct flowi6 fl6;
2844b55b76b2SDuan Jiong 	struct in6_addr gateway;
2845b55b76b2SDuan Jiong };
2846b55b76b2SDuan Jiong 
2847b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net,
2848b55b76b2SDuan Jiong 					     struct fib6_table *table,
2849b55b76b2SDuan Jiong 					     struct flowi6 *fl6,
2850b75cc8f9SDavid Ahern 					     const struct sk_buff *skb,
2851b55b76b2SDuan Jiong 					     int flags)
2852b55b76b2SDuan Jiong {
2853b55b76b2SDuan Jiong 	struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
28540b34eb00SDavid Ahern 	struct rt6_info *ret = NULL;
28559b6b35abSDavid Ahern 	struct fib6_result res = {};
2856c55c8988SDavid Ahern 	struct fib6_nh_rd_arg arg = {
2857c55c8988SDavid Ahern 		.res = &res,
2858c55c8988SDavid Ahern 		.fl6 = fl6,
2859c55c8988SDavid Ahern 		.gw  = &rdfl->gateway,
2860c55c8988SDavid Ahern 		.ret = &ret
2861c55c8988SDavid Ahern 	};
28628d1c802bSDavid Ahern 	struct fib6_info *rt;
2863b55b76b2SDuan Jiong 	struct fib6_node *fn;
2864b55b76b2SDuan Jiong 
286531680ac2SDavid Ahern 	/* l3mdev_update_flow overrides oif if the device is enslaved; in
286631680ac2SDavid Ahern 	 * this case we must match on the real ingress device, so reset it
286731680ac2SDavid Ahern 	 */
286831680ac2SDavid Ahern 	if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
286931680ac2SDavid Ahern 		fl6->flowi6_oif = skb->dev->ifindex;
287031680ac2SDavid Ahern 
2871b55b76b2SDuan Jiong 	/* Get the "current" route for this destination and
287267c408cfSAlexander Alemayhu 	 * check if the redirect has come from appropriate router.
2873b55b76b2SDuan Jiong 	 *
2874b55b76b2SDuan Jiong 	 * RFC 4861 specifies that redirects should only be
2875b55b76b2SDuan Jiong 	 * accepted if they come from the nexthop to the target.
2876b55b76b2SDuan Jiong 	 * Due to the way the routes are chosen, this notion
2877b55b76b2SDuan Jiong 	 * is a bit fuzzy and one might need to check all possible
2878b55b76b2SDuan Jiong 	 * routes.
2879b55b76b2SDuan Jiong 	 */
2880b55b76b2SDuan Jiong 
288166f5d6ceSWei Wang 	rcu_read_lock();
28826454743bSDavid Ahern 	fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2883b55b76b2SDuan Jiong restart:
288466f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
28859b6b35abSDavid Ahern 		res.f6i = rt;
288614895687SDavid Ahern 		if (fib6_check_expired(rt))
2887b55b76b2SDuan Jiong 			continue;
288893c2fb25SDavid Ahern 		if (rt->fib6_flags & RTF_REJECT)
2889b55b76b2SDuan Jiong 			break;
2890c55c8988SDavid Ahern 		if (unlikely(rt->nh)) {
2891c55c8988SDavid Ahern 			if (nexthop_is_blackhole(rt->nh))
2892c55c8988SDavid Ahern 				continue;
2893c55c8988SDavid Ahern 			/* on match, res->nh is filled in and potentially ret */
2894c55c8988SDavid Ahern 			if (nexthop_for_each_fib6_nh(rt->nh,
2895c55c8988SDavid Ahern 						     fib6_nh_redirect_match,
2896c55c8988SDavid Ahern 						     &arg))
28970b34eb00SDavid Ahern 				goto out;
2898c55c8988SDavid Ahern 		} else {
2899c55c8988SDavid Ahern 			res.nh = rt->fib6_nh;
2900c55c8988SDavid Ahern 			if (ip6_redirect_nh_match(&res, fl6, &rdfl->gateway,
2901c55c8988SDavid Ahern 						  &ret))
2902c55c8988SDavid Ahern 				goto out;
2903c55c8988SDavid Ahern 		}
2904b55b76b2SDuan Jiong 	}
2905b55b76b2SDuan Jiong 
2906b55b76b2SDuan Jiong 	if (!rt)
2907421842edSDavid Ahern 		rt = net->ipv6.fib6_null_entry;
290893c2fb25SDavid Ahern 	else if (rt->fib6_flags & RTF_REJECT) {
290923fb93a4SDavid Ahern 		ret = net->ipv6.ip6_null_entry;
2910b0a1ba59SMartin KaFai Lau 		goto out;
2911b0a1ba59SMartin KaFai Lau 	}
2912b0a1ba59SMartin KaFai Lau 
2913421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry) {
2914a3c00e46SMartin KaFai Lau 		fn = fib6_backtrack(fn, &fl6->saddr);
2915a3c00e46SMartin KaFai Lau 		if (fn)
2916a3c00e46SMartin KaFai Lau 			goto restart;
2917b55b76b2SDuan Jiong 	}
2918a3c00e46SMartin KaFai Lau 
29199b6b35abSDavid Ahern 	res.f6i = rt;
29201cf844c7SDavid Ahern 	res.nh = rt->fib6_nh;
2921b0a1ba59SMartin KaFai Lau out:
29227d21fec9SDavid Ahern 	if (ret) {
292310585b43SDavid Ahern 		ip6_hold_safe(net, &ret);
29247d21fec9SDavid Ahern 	} else {
29257d21fec9SDavid Ahern 		res.fib6_flags = res.f6i->fib6_flags;
29267d21fec9SDavid Ahern 		res.fib6_type = res.f6i->fib6_type;
29279b6b35abSDavid Ahern 		ret = ip6_create_rt_rcu(&res);
29287d21fec9SDavid Ahern 	}
2929b55b76b2SDuan Jiong 
293066f5d6ceSWei Wang 	rcu_read_unlock();
2931b55b76b2SDuan Jiong 
29328ff2e5b2SDavid Ahern 	trace_fib6_table_lookup(net, &res, table, fl6);
293323fb93a4SDavid Ahern 	return ret;
2934b55b76b2SDuan Jiong };
2935b55b76b2SDuan Jiong 
2936b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net,
2937b55b76b2SDuan Jiong 					    const struct flowi6 *fl6,
2938b75cc8f9SDavid Ahern 					    const struct sk_buff *skb,
2939b55b76b2SDuan Jiong 					    const struct in6_addr *gateway)
2940b55b76b2SDuan Jiong {
2941b55b76b2SDuan Jiong 	int flags = RT6_LOOKUP_F_HAS_SADDR;
2942b55b76b2SDuan Jiong 	struct ip6rd_flowi rdfl;
2943b55b76b2SDuan Jiong 
2944b55b76b2SDuan Jiong 	rdfl.fl6 = *fl6;
2945b55b76b2SDuan Jiong 	rdfl.gateway = *gateway;
2946b55b76b2SDuan Jiong 
2947b75cc8f9SDavid Ahern 	return fib6_rule_lookup(net, &rdfl.fl6, skb,
2948b55b76b2SDuan Jiong 				flags, __ip6_route_redirect);
2949b55b76b2SDuan Jiong }
2950b55b76b2SDuan Jiong 
2951e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2952e2d118a1SLorenzo Colitti 		  kuid_t uid)
29533a5ad2eeSDavid S. Miller {
29543a5ad2eeSDavid S. Miller 	const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
29553a5ad2eeSDavid S. Miller 	struct dst_entry *dst;
29561f7f10acSMaciej Żenczykowski 	struct flowi6 fl6 = {
29571f7f10acSMaciej Żenczykowski 		.flowi6_iif = LOOPBACK_IFINDEX,
29581f7f10acSMaciej Żenczykowski 		.flowi6_oif = oif,
29591f7f10acSMaciej Żenczykowski 		.flowi6_mark = mark,
29601f7f10acSMaciej Żenczykowski 		.daddr = iph->daddr,
29611f7f10acSMaciej Żenczykowski 		.saddr = iph->saddr,
29621f7f10acSMaciej Żenczykowski 		.flowlabel = ip6_flowinfo(iph),
29631f7f10acSMaciej Żenczykowski 		.flowi6_uid = uid,
29641f7f10acSMaciej Żenczykowski 	};
29653a5ad2eeSDavid S. Miller 
2966b75cc8f9SDavid Ahern 	dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr);
29676700c270SDavid S. Miller 	rt6_do_redirect(dst, NULL, skb);
29683a5ad2eeSDavid S. Miller 	dst_release(dst);
29693a5ad2eeSDavid S. Miller }
29703a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect);
29713a5ad2eeSDavid S. Miller 
2972d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif)
2973c92a59ecSDuan Jiong {
2974c92a59ecSDuan Jiong 	const struct ipv6hdr *iph = ipv6_hdr(skb);
2975c92a59ecSDuan Jiong 	const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2976c92a59ecSDuan Jiong 	struct dst_entry *dst;
29770b26fb17SMaciej Żenczykowski 	struct flowi6 fl6 = {
29780b26fb17SMaciej Żenczykowski 		.flowi6_iif = LOOPBACK_IFINDEX,
29790b26fb17SMaciej Żenczykowski 		.flowi6_oif = oif,
29800b26fb17SMaciej Żenczykowski 		.daddr = msg->dest,
29810b26fb17SMaciej Żenczykowski 		.saddr = iph->daddr,
29820b26fb17SMaciej Żenczykowski 		.flowi6_uid = sock_net_uid(net, NULL),
29830b26fb17SMaciej Żenczykowski 	};
2984c92a59ecSDuan Jiong 
2985b75cc8f9SDavid Ahern 	dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr);
2986c92a59ecSDuan Jiong 	rt6_do_redirect(dst, NULL, skb);
2987c92a59ecSDuan Jiong 	dst_release(dst);
2988c92a59ecSDuan Jiong }
2989c92a59ecSDuan Jiong 
29903a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
29913a5ad2eeSDavid S. Miller {
2992e2d118a1SLorenzo Colitti 	ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2993e2d118a1SLorenzo Colitti 		     sk->sk_uid);
29943a5ad2eeSDavid S. Miller }
29953a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect);
29963a5ad2eeSDavid S. Miller 
29970dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst)
29981da177e4SLinus Torvalds {
29990dbaee3bSDavid S. Miller 	struct net_device *dev = dst->dev;
30000dbaee3bSDavid S. Miller 	unsigned int mtu = dst_mtu(dst);
30010dbaee3bSDavid S. Miller 	struct net *net = dev_net(dev);
30020dbaee3bSDavid S. Miller 
30031da177e4SLinus Torvalds 	mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
30041da177e4SLinus Torvalds 
30055578689aSDaniel Lezcano 	if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
30065578689aSDaniel Lezcano 		mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
30071da177e4SLinus Torvalds 
30081da177e4SLinus Torvalds 	/*
30091da177e4SLinus Torvalds 	 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
30101da177e4SLinus Torvalds 	 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
30111da177e4SLinus Torvalds 	 * IPV6_MAXPLEN is also valid and means: "any MSS,
30121da177e4SLinus Torvalds 	 * rely only on pmtu discovery"
30131da177e4SLinus Torvalds 	 */
30141da177e4SLinus Torvalds 	if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
30151da177e4SLinus Torvalds 		mtu = IPV6_MAXPLEN;
30161da177e4SLinus Torvalds 	return mtu;
30171da177e4SLinus Torvalds }
30181da177e4SLinus Torvalds 
3019ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst)
3020d33e4553SDavid S. Miller {
3021d33e4553SDavid S. Miller 	struct inet6_dev *idev;
3022d4ead6b3SDavid Ahern 	unsigned int mtu;
3023618f9bc7SSteffen Klassert 
30244b32b5adSMartin KaFai Lau 	mtu = dst_metric_raw(dst, RTAX_MTU);
30254b32b5adSMartin KaFai Lau 	if (mtu)
30264b32b5adSMartin KaFai Lau 		goto out;
30274b32b5adSMartin KaFai Lau 
3028618f9bc7SSteffen Klassert 	mtu = IPV6_MIN_MTU;
3029d33e4553SDavid S. Miller 
3030d33e4553SDavid S. Miller 	rcu_read_lock();
3031d33e4553SDavid S. Miller 	idev = __in6_dev_get(dst->dev);
3032d33e4553SDavid S. Miller 	if (idev)
3033d33e4553SDavid S. Miller 		mtu = idev->cnf.mtu6;
3034d33e4553SDavid S. Miller 	rcu_read_unlock();
3035d33e4553SDavid S. Miller 
303630f78d8eSEric Dumazet out:
303714972cbdSRoopa Prabhu 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
303814972cbdSRoopa Prabhu 
303914972cbdSRoopa Prabhu 	return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
3040d33e4553SDavid S. Miller }
3041d33e4553SDavid S. Miller 
3042901731b8SDavid Ahern /* MTU selection:
3043901731b8SDavid Ahern  * 1. mtu on route is locked - use it
3044901731b8SDavid Ahern  * 2. mtu from nexthop exception
3045901731b8SDavid Ahern  * 3. mtu from egress device
3046901731b8SDavid Ahern  *
3047901731b8SDavid Ahern  * based on ip6_dst_mtu_forward and exception logic of
3048901731b8SDavid Ahern  * rt6_find_cached_rt; called with rcu_read_lock
3049901731b8SDavid Ahern  */
3050b748f260SDavid Ahern u32 ip6_mtu_from_fib6(const struct fib6_result *res,
3051b748f260SDavid Ahern 		      const struct in6_addr *daddr,
3052b748f260SDavid Ahern 		      const struct in6_addr *saddr)
3053901731b8SDavid Ahern {
3054b748f260SDavid Ahern 	const struct fib6_nh *nh = res->nh;
3055b748f260SDavid Ahern 	struct fib6_info *f6i = res->f6i;
3056901731b8SDavid Ahern 	struct inet6_dev *idev;
3057510e2cedSWei Wang 	struct rt6_info *rt;
3058901731b8SDavid Ahern 	u32 mtu = 0;
3059901731b8SDavid Ahern 
3060901731b8SDavid Ahern 	if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) {
3061901731b8SDavid Ahern 		mtu = f6i->fib6_pmtu;
3062901731b8SDavid Ahern 		if (mtu)
3063901731b8SDavid Ahern 			goto out;
3064901731b8SDavid Ahern 	}
3065901731b8SDavid Ahern 
3066510e2cedSWei Wang 	rt = rt6_find_cached_rt(res, daddr, saddr);
3067510e2cedSWei Wang 	if (unlikely(rt)) {
3068510e2cedSWei Wang 		mtu = dst_metric_raw(&rt->dst, RTAX_MTU);
3069510e2cedSWei Wang 	} else {
3070b748f260SDavid Ahern 		struct net_device *dev = nh->fib_nh_dev;
3071901731b8SDavid Ahern 
3072901731b8SDavid Ahern 		mtu = IPV6_MIN_MTU;
3073901731b8SDavid Ahern 		idev = __in6_dev_get(dev);
3074901731b8SDavid Ahern 		if (idev && idev->cnf.mtu6 > mtu)
3075901731b8SDavid Ahern 			mtu = idev->cnf.mtu6;
3076901731b8SDavid Ahern 	}
3077901731b8SDavid Ahern 
3078901731b8SDavid Ahern 	mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
3079901731b8SDavid Ahern out:
3080b748f260SDavid Ahern 	return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu);
3081901731b8SDavid Ahern }
3082901731b8SDavid Ahern 
30833b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
308487a11578SDavid S. Miller 				  struct flowi6 *fl6)
30851da177e4SLinus Torvalds {
308687a11578SDavid S. Miller 	struct dst_entry *dst;
30871da177e4SLinus Torvalds 	struct rt6_info *rt;
30881da177e4SLinus Torvalds 	struct inet6_dev *idev = in6_dev_get(dev);
3089c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
30901da177e4SLinus Torvalds 
309138308473SDavid S. Miller 	if (unlikely(!idev))
3092122bdf67SEric Dumazet 		return ERR_PTR(-ENODEV);
30931da177e4SLinus Torvalds 
3094ad706862SMartin KaFai Lau 	rt = ip6_dst_alloc(net, dev, 0);
309538308473SDavid S. Miller 	if (unlikely(!rt)) {
30961da177e4SLinus Torvalds 		in6_dev_put(idev);
309787a11578SDavid S. Miller 		dst = ERR_PTR(-ENOMEM);
30981da177e4SLinus Torvalds 		goto out;
30991da177e4SLinus Torvalds 	}
31001da177e4SLinus Torvalds 
31018e2ec639SYan, Zheng 	rt->dst.flags |= DST_HOST;
3102588753f1SBrendan McGrath 	rt->dst.input = ip6_input;
31038e2ec639SYan, Zheng 	rt->dst.output  = ip6_output;
3104550bab42SJulian Anastasov 	rt->rt6i_gateway  = fl6->daddr;
310587a11578SDavid S. Miller 	rt->rt6i_dst.addr = fl6->daddr;
31068e2ec639SYan, Zheng 	rt->rt6i_dst.plen = 128;
31078e2ec639SYan, Zheng 	rt->rt6i_idev     = idev;
310814edd87dSLi RongQing 	dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
31091da177e4SLinus Torvalds 
31104c981e28SIdo Schimmel 	/* Add this dst into uncached_list so that rt6_disable_ip() can
3111587fea74SWei Wang 	 * do proper release of the net_device
3112587fea74SWei Wang 	 */
3113587fea74SWei Wang 	rt6_uncached_list_add(rt);
311481eb8447SWei Wang 	atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
31151da177e4SLinus Torvalds 
311687a11578SDavid S. Miller 	dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
311787a11578SDavid S. Miller 
31181da177e4SLinus Torvalds out:
311987a11578SDavid S. Miller 	return dst;
31201da177e4SLinus Torvalds }
31211da177e4SLinus Torvalds 
3122569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops)
31231da177e4SLinus Torvalds {
312486393e52SAlexey Dobriyan 	struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
31257019b78eSDaniel Lezcano 	int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
31267019b78eSDaniel Lezcano 	int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
31277019b78eSDaniel Lezcano 	int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
31287019b78eSDaniel Lezcano 	int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
31297019b78eSDaniel Lezcano 	unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
3130fc66f95cSEric Dumazet 	int entries;
31311da177e4SLinus Torvalds 
3132fc66f95cSEric Dumazet 	entries = dst_entries_get_fast(ops);
313349a18d86SMichal Kubeček 	if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
3134fc66f95cSEric Dumazet 	    entries <= rt_max_size)
31351da177e4SLinus Torvalds 		goto out;
31361da177e4SLinus Torvalds 
31376891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire++;
313814956643SLi RongQing 	fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
3139fc66f95cSEric Dumazet 	entries = dst_entries_get_slow(ops);
3140fc66f95cSEric Dumazet 	if (entries < ops->gc_thresh)
31417019b78eSDaniel Lezcano 		net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
31421da177e4SLinus Torvalds out:
31437019b78eSDaniel Lezcano 	net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
3144fc66f95cSEric Dumazet 	return entries > rt_max_size;
31451da177e4SLinus Torvalds }
31461da177e4SLinus Torvalds 
31478c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net,
31488c14586fSDavid Ahern 					    struct fib6_config *cfg,
3149f4797b33SDavid Ahern 					    const struct in6_addr *gw_addr,
3150f4797b33SDavid Ahern 					    u32 tbid, int flags)
31518c14586fSDavid Ahern {
31528c14586fSDavid Ahern 	struct flowi6 fl6 = {
31538c14586fSDavid Ahern 		.flowi6_oif = cfg->fc_ifindex,
31548c14586fSDavid Ahern 		.daddr = *gw_addr,
31558c14586fSDavid Ahern 		.saddr = cfg->fc_prefsrc,
31568c14586fSDavid Ahern 	};
31578c14586fSDavid Ahern 	struct fib6_table *table;
31588c14586fSDavid Ahern 	struct rt6_info *rt;
31598c14586fSDavid Ahern 
3160f4797b33SDavid Ahern 	table = fib6_get_table(net, tbid);
31618c14586fSDavid Ahern 	if (!table)
31628c14586fSDavid Ahern 		return NULL;
31638c14586fSDavid Ahern 
31648c14586fSDavid Ahern 	if (!ipv6_addr_any(&cfg->fc_prefsrc))
31658c14586fSDavid Ahern 		flags |= RT6_LOOKUP_F_HAS_SADDR;
31668c14586fSDavid Ahern 
3167f4797b33SDavid Ahern 	flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
3168b75cc8f9SDavid Ahern 	rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags);
31698c14586fSDavid Ahern 
31708c14586fSDavid Ahern 	/* if table lookup failed, fall back to full lookup */
31718c14586fSDavid Ahern 	if (rt == net->ipv6.ip6_null_entry) {
31728c14586fSDavid Ahern 		ip6_rt_put(rt);
31738c14586fSDavid Ahern 		rt = NULL;
31748c14586fSDavid Ahern 	}
31758c14586fSDavid Ahern 
31768c14586fSDavid Ahern 	return rt;
31778c14586fSDavid Ahern }
31788c14586fSDavid Ahern 
3179fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net,
3180fc1e64e1SDavid Ahern 				     struct fib6_config *cfg,
31819fbb704cSDavid Ahern 				     const struct net_device *dev,
3182fc1e64e1SDavid Ahern 				     struct netlink_ext_ack *extack)
3183fc1e64e1SDavid Ahern {
318444750f84SDavid Ahern 	u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
3185fc1e64e1SDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
3186fc1e64e1SDavid Ahern 	u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
3187bf1dc8baSPaolo Abeni 	struct fib6_info *from;
3188fc1e64e1SDavid Ahern 	struct rt6_info *grt;
3189fc1e64e1SDavid Ahern 	int err;
3190fc1e64e1SDavid Ahern 
3191fc1e64e1SDavid Ahern 	err = 0;
3192fc1e64e1SDavid Ahern 	grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
3193fc1e64e1SDavid Ahern 	if (grt) {
3194bf1dc8baSPaolo Abeni 		rcu_read_lock();
3195bf1dc8baSPaolo Abeni 		from = rcu_dereference(grt->from);
319658e354c0SDavid Ahern 		if (!grt->dst.error &&
31974ed591c8SDavid Ahern 		    /* ignore match if it is the default route */
3198bf1dc8baSPaolo Abeni 		    from && !ipv6_addr_any(&from->fib6_dst.addr) &&
319958e354c0SDavid Ahern 		    (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
320044750f84SDavid Ahern 			NL_SET_ERR_MSG(extack,
320144750f84SDavid Ahern 				       "Nexthop has invalid gateway or device mismatch");
3202fc1e64e1SDavid Ahern 			err = -EINVAL;
3203fc1e64e1SDavid Ahern 		}
3204bf1dc8baSPaolo Abeni 		rcu_read_unlock();
3205fc1e64e1SDavid Ahern 
3206fc1e64e1SDavid Ahern 		ip6_rt_put(grt);
3207fc1e64e1SDavid Ahern 	}
3208fc1e64e1SDavid Ahern 
3209fc1e64e1SDavid Ahern 	return err;
3210fc1e64e1SDavid Ahern }
3211fc1e64e1SDavid Ahern 
32121edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net,
32131edce99fSDavid Ahern 			      struct fib6_config *cfg,
32141edce99fSDavid Ahern 			      struct net_device **_dev,
32151edce99fSDavid Ahern 			      struct inet6_dev **idev)
32161edce99fSDavid Ahern {
32171edce99fSDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
32181edce99fSDavid Ahern 	struct net_device *dev = _dev ? *_dev : NULL;
32191edce99fSDavid Ahern 	struct rt6_info *grt = NULL;
32201edce99fSDavid Ahern 	int err = -EHOSTUNREACH;
32211edce99fSDavid Ahern 
32221edce99fSDavid Ahern 	if (cfg->fc_table) {
3223f4797b33SDavid Ahern 		int flags = RT6_LOOKUP_F_IFACE;
3224f4797b33SDavid Ahern 
3225f4797b33SDavid Ahern 		grt = ip6_nh_lookup_table(net, cfg, gw_addr,
3226f4797b33SDavid Ahern 					  cfg->fc_table, flags);
32271edce99fSDavid Ahern 		if (grt) {
32281edce99fSDavid Ahern 			if (grt->rt6i_flags & RTF_GATEWAY ||
32291edce99fSDavid Ahern 			    (dev && dev != grt->dst.dev)) {
32301edce99fSDavid Ahern 				ip6_rt_put(grt);
32311edce99fSDavid Ahern 				grt = NULL;
32321edce99fSDavid Ahern 			}
32331edce99fSDavid Ahern 		}
32341edce99fSDavid Ahern 	}
32351edce99fSDavid Ahern 
32361edce99fSDavid Ahern 	if (!grt)
3237b75cc8f9SDavid Ahern 		grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1);
32381edce99fSDavid Ahern 
32391edce99fSDavid Ahern 	if (!grt)
32401edce99fSDavid Ahern 		goto out;
32411edce99fSDavid Ahern 
32421edce99fSDavid Ahern 	if (dev) {
32431edce99fSDavid Ahern 		if (dev != grt->dst.dev) {
32441edce99fSDavid Ahern 			ip6_rt_put(grt);
32451edce99fSDavid Ahern 			goto out;
32461edce99fSDavid Ahern 		}
32471edce99fSDavid Ahern 	} else {
32481edce99fSDavid Ahern 		*_dev = dev = grt->dst.dev;
32491edce99fSDavid Ahern 		*idev = grt->rt6i_idev;
32501edce99fSDavid Ahern 		dev_hold(dev);
32511edce99fSDavid Ahern 		in6_dev_hold(grt->rt6i_idev);
32521edce99fSDavid Ahern 	}
32531edce99fSDavid Ahern 
32541edce99fSDavid Ahern 	if (!(grt->rt6i_flags & RTF_GATEWAY))
32551edce99fSDavid Ahern 		err = 0;
32561edce99fSDavid Ahern 
32571edce99fSDavid Ahern 	ip6_rt_put(grt);
32581edce99fSDavid Ahern 
32591edce99fSDavid Ahern out:
32601edce99fSDavid Ahern 	return err;
32611edce99fSDavid Ahern }
32621edce99fSDavid Ahern 
32639fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg,
32649fbb704cSDavid Ahern 			   struct net_device **_dev, struct inet6_dev **idev,
32659fbb704cSDavid Ahern 			   struct netlink_ext_ack *extack)
32669fbb704cSDavid Ahern {
32679fbb704cSDavid Ahern 	const struct in6_addr *gw_addr = &cfg->fc_gateway;
32689fbb704cSDavid Ahern 	int gwa_type = ipv6_addr_type(gw_addr);
3269232378e8SDavid Ahern 	bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true;
32709fbb704cSDavid Ahern 	const struct net_device *dev = *_dev;
3271232378e8SDavid Ahern 	bool need_addr_check = !dev;
32729fbb704cSDavid Ahern 	int err = -EINVAL;
32739fbb704cSDavid Ahern 
32749fbb704cSDavid Ahern 	/* if gw_addr is local we will fail to detect this in case
32759fbb704cSDavid Ahern 	 * address is still TENTATIVE (DAD in progress). rt6_lookup()
32769fbb704cSDavid Ahern 	 * will return already-added prefix route via interface that
32779fbb704cSDavid Ahern 	 * prefix route was assigned to, which might be non-loopback.
32789fbb704cSDavid Ahern 	 */
3279232378e8SDavid Ahern 	if (dev &&
3280232378e8SDavid Ahern 	    ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
3281232378e8SDavid Ahern 		NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
32829fbb704cSDavid Ahern 		goto out;
32839fbb704cSDavid Ahern 	}
32849fbb704cSDavid Ahern 
32859fbb704cSDavid Ahern 	if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) {
32869fbb704cSDavid Ahern 		/* IPv6 strictly inhibits using not link-local
32879fbb704cSDavid Ahern 		 * addresses as nexthop address.
32889fbb704cSDavid Ahern 		 * Otherwise, router will not able to send redirects.
32899fbb704cSDavid Ahern 		 * It is very good, but in some (rare!) circumstances
32909fbb704cSDavid Ahern 		 * (SIT, PtP, NBMA NOARP links) it is handy to allow
32919fbb704cSDavid Ahern 		 * some exceptions. --ANK
32929fbb704cSDavid Ahern 		 * We allow IPv4-mapped nexthops to support RFC4798-type
32939fbb704cSDavid Ahern 		 * addressing
32949fbb704cSDavid Ahern 		 */
32959fbb704cSDavid Ahern 		if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) {
32969fbb704cSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid gateway address");
32979fbb704cSDavid Ahern 			goto out;
32989fbb704cSDavid Ahern 		}
32999fbb704cSDavid Ahern 
33009fbb704cSDavid Ahern 		if (cfg->fc_flags & RTNH_F_ONLINK)
33019fbb704cSDavid Ahern 			err = ip6_route_check_nh_onlink(net, cfg, dev, extack);
33029fbb704cSDavid Ahern 		else
33039fbb704cSDavid Ahern 			err = ip6_route_check_nh(net, cfg, _dev, idev);
33049fbb704cSDavid Ahern 
33059fbb704cSDavid Ahern 		if (err)
33069fbb704cSDavid Ahern 			goto out;
33079fbb704cSDavid Ahern 	}
33089fbb704cSDavid Ahern 
33099fbb704cSDavid Ahern 	/* reload in case device was changed */
33109fbb704cSDavid Ahern 	dev = *_dev;
33119fbb704cSDavid Ahern 
33129fbb704cSDavid Ahern 	err = -EINVAL;
33139fbb704cSDavid Ahern 	if (!dev) {
33149fbb704cSDavid Ahern 		NL_SET_ERR_MSG(extack, "Egress device not specified");
33159fbb704cSDavid Ahern 		goto out;
33169fbb704cSDavid Ahern 	} else if (dev->flags & IFF_LOOPBACK) {
33179fbb704cSDavid Ahern 		NL_SET_ERR_MSG(extack,
33189fbb704cSDavid Ahern 			       "Egress device can not be loopback device for this route");
33199fbb704cSDavid Ahern 		goto out;
33209fbb704cSDavid Ahern 	}
3321232378e8SDavid Ahern 
3322232378e8SDavid Ahern 	/* if we did not check gw_addr above, do so now that the
3323232378e8SDavid Ahern 	 * egress device has been resolved.
3324232378e8SDavid Ahern 	 */
3325232378e8SDavid Ahern 	if (need_addr_check &&
3326232378e8SDavid Ahern 	    ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
3327232378e8SDavid Ahern 		NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
3328232378e8SDavid Ahern 		goto out;
3329232378e8SDavid Ahern 	}
3330232378e8SDavid Ahern 
33319fbb704cSDavid Ahern 	err = 0;
33329fbb704cSDavid Ahern out:
33339fbb704cSDavid Ahern 	return err;
33349fbb704cSDavid Ahern }
33359fbb704cSDavid Ahern 
333683c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type)
333783c44251SDavid Ahern {
333883c44251SDavid Ahern 	if ((flags & RTF_REJECT) ||
333983c44251SDavid Ahern 	    (dev && (dev->flags & IFF_LOOPBACK) &&
334083c44251SDavid Ahern 	     !(addr_type & IPV6_ADDR_LOOPBACK) &&
334183c44251SDavid Ahern 	     !(flags & RTF_LOCAL)))
334283c44251SDavid Ahern 		return true;
334383c44251SDavid Ahern 
334483c44251SDavid Ahern 	return false;
334583c44251SDavid Ahern }
334683c44251SDavid Ahern 
334783c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh,
334883c44251SDavid Ahern 		 struct fib6_config *cfg, gfp_t gfp_flags,
334983c44251SDavid Ahern 		 struct netlink_ext_ack *extack)
335083c44251SDavid Ahern {
335183c44251SDavid Ahern 	struct net_device *dev = NULL;
335283c44251SDavid Ahern 	struct inet6_dev *idev = NULL;
335383c44251SDavid Ahern 	int addr_type;
335483c44251SDavid Ahern 	int err;
335583c44251SDavid Ahern 
3356f1741730SDavid Ahern 	fib6_nh->fib_nh_family = AF_INET6;
3357f1741730SDavid Ahern 
335883c44251SDavid Ahern 	err = -ENODEV;
335983c44251SDavid Ahern 	if (cfg->fc_ifindex) {
336083c44251SDavid Ahern 		dev = dev_get_by_index(net, cfg->fc_ifindex);
336183c44251SDavid Ahern 		if (!dev)
336283c44251SDavid Ahern 			goto out;
336383c44251SDavid Ahern 		idev = in6_dev_get(dev);
336483c44251SDavid Ahern 		if (!idev)
336583c44251SDavid Ahern 			goto out;
336683c44251SDavid Ahern 	}
336783c44251SDavid Ahern 
336883c44251SDavid Ahern 	if (cfg->fc_flags & RTNH_F_ONLINK) {
336983c44251SDavid Ahern 		if (!dev) {
337083c44251SDavid Ahern 			NL_SET_ERR_MSG(extack,
337183c44251SDavid Ahern 				       "Nexthop device required for onlink");
337283c44251SDavid Ahern 			goto out;
337383c44251SDavid Ahern 		}
337483c44251SDavid Ahern 
337583c44251SDavid Ahern 		if (!(dev->flags & IFF_UP)) {
337683c44251SDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop device is not up");
337783c44251SDavid Ahern 			err = -ENETDOWN;
337883c44251SDavid Ahern 			goto out;
337983c44251SDavid Ahern 		}
338083c44251SDavid Ahern 
3381ad1601aeSDavid Ahern 		fib6_nh->fib_nh_flags |= RTNH_F_ONLINK;
338283c44251SDavid Ahern 	}
338383c44251SDavid Ahern 
3384ad1601aeSDavid Ahern 	fib6_nh->fib_nh_weight = 1;
338583c44251SDavid Ahern 
338683c44251SDavid Ahern 	/* We cannot add true routes via loopback here,
338783c44251SDavid Ahern 	 * they would result in kernel looping; promote them to reject routes
338883c44251SDavid Ahern 	 */
338983c44251SDavid Ahern 	addr_type = ipv6_addr_type(&cfg->fc_dst);
339083c44251SDavid Ahern 	if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) {
339183c44251SDavid Ahern 		/* hold loopback dev/idev if we haven't done so. */
339283c44251SDavid Ahern 		if (dev != net->loopback_dev) {
339383c44251SDavid Ahern 			if (dev) {
339483c44251SDavid Ahern 				dev_put(dev);
339583c44251SDavid Ahern 				in6_dev_put(idev);
339683c44251SDavid Ahern 			}
339783c44251SDavid Ahern 			dev = net->loopback_dev;
339883c44251SDavid Ahern 			dev_hold(dev);
339983c44251SDavid Ahern 			idev = in6_dev_get(dev);
340083c44251SDavid Ahern 			if (!idev) {
340183c44251SDavid Ahern 				err = -ENODEV;
340283c44251SDavid Ahern 				goto out;
340383c44251SDavid Ahern 			}
340483c44251SDavid Ahern 		}
34057dd73168SDavid Ahern 		goto pcpu_alloc;
340683c44251SDavid Ahern 	}
340783c44251SDavid Ahern 
340883c44251SDavid Ahern 	if (cfg->fc_flags & RTF_GATEWAY) {
340983c44251SDavid Ahern 		err = ip6_validate_gw(net, cfg, &dev, &idev, extack);
341083c44251SDavid Ahern 		if (err)
341183c44251SDavid Ahern 			goto out;
341283c44251SDavid Ahern 
3413ad1601aeSDavid Ahern 		fib6_nh->fib_nh_gw6 = cfg->fc_gateway;
3414bdf00467SDavid Ahern 		fib6_nh->fib_nh_gw_family = AF_INET6;
341583c44251SDavid Ahern 	}
341683c44251SDavid Ahern 
341783c44251SDavid Ahern 	err = -ENODEV;
341883c44251SDavid Ahern 	if (!dev)
341983c44251SDavid Ahern 		goto out;
342083c44251SDavid Ahern 
342183c44251SDavid Ahern 	if (idev->cnf.disable_ipv6) {
342283c44251SDavid Ahern 		NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device");
342383c44251SDavid Ahern 		err = -EACCES;
342483c44251SDavid Ahern 		goto out;
342583c44251SDavid Ahern 	}
342683c44251SDavid Ahern 
342783c44251SDavid Ahern 	if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) {
342883c44251SDavid Ahern 		NL_SET_ERR_MSG(extack, "Nexthop device is not up");
342983c44251SDavid Ahern 		err = -ENETDOWN;
343083c44251SDavid Ahern 		goto out;
343183c44251SDavid Ahern 	}
343283c44251SDavid Ahern 
343383c44251SDavid Ahern 	if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
343483c44251SDavid Ahern 	    !netif_carrier_ok(dev))
3435ad1601aeSDavid Ahern 		fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN;
343683c44251SDavid Ahern 
34377dd73168SDavid Ahern 	err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap,
34387dd73168SDavid Ahern 				 cfg->fc_encap_type, cfg, gfp_flags, extack);
34397dd73168SDavid Ahern 	if (err)
34407dd73168SDavid Ahern 		goto out;
34417dd73168SDavid Ahern 
34427dd73168SDavid Ahern pcpu_alloc:
3443f40b6ae2SDavid Ahern 	fib6_nh->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, gfp_flags);
3444f40b6ae2SDavid Ahern 	if (!fib6_nh->rt6i_pcpu) {
3445f40b6ae2SDavid Ahern 		err = -ENOMEM;
3446f40b6ae2SDavid Ahern 		goto out;
3447f40b6ae2SDavid Ahern 	}
3448f40b6ae2SDavid Ahern 
3449ad1601aeSDavid Ahern 	fib6_nh->fib_nh_dev = dev;
3450f1741730SDavid Ahern 	fib6_nh->fib_nh_oif = dev->ifindex;
345183c44251SDavid Ahern 	err = 0;
345283c44251SDavid Ahern out:
345383c44251SDavid Ahern 	if (idev)
345483c44251SDavid Ahern 		in6_dev_put(idev);
345583c44251SDavid Ahern 
345683c44251SDavid Ahern 	if (err) {
3457ad1601aeSDavid Ahern 		lwtstate_put(fib6_nh->fib_nh_lws);
3458ad1601aeSDavid Ahern 		fib6_nh->fib_nh_lws = NULL;
345983c44251SDavid Ahern 		if (dev)
346083c44251SDavid Ahern 			dev_put(dev);
346183c44251SDavid Ahern 	}
346283c44251SDavid Ahern 
346383c44251SDavid Ahern 	return err;
346483c44251SDavid Ahern }
346583c44251SDavid Ahern 
3466dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh)
3467dac7d0f2SDavid Ahern {
3468cc5c073aSDavid Ahern 	struct rt6_exception_bucket *bucket;
3469cc5c073aSDavid Ahern 
3470cc5c073aSDavid Ahern 	rcu_read_lock();
3471cc5c073aSDavid Ahern 
3472cc5c073aSDavid Ahern 	fib6_nh_flush_exceptions(fib6_nh, NULL);
3473cc5c073aSDavid Ahern 	bucket = fib6_nh_get_excptn_bucket(fib6_nh, NULL);
3474cc5c073aSDavid Ahern 	if (bucket) {
3475cc5c073aSDavid Ahern 		rcu_assign_pointer(fib6_nh->rt6i_exception_bucket, NULL);
3476cc5c073aSDavid Ahern 		kfree(bucket);
3477cc5c073aSDavid Ahern 	}
3478cc5c073aSDavid Ahern 
3479cc5c073aSDavid Ahern 	rcu_read_unlock();
3480cc5c073aSDavid Ahern 
3481f40b6ae2SDavid Ahern 	if (fib6_nh->rt6i_pcpu) {
3482f40b6ae2SDavid Ahern 		int cpu;
3483f40b6ae2SDavid Ahern 
3484f40b6ae2SDavid Ahern 		for_each_possible_cpu(cpu) {
3485f40b6ae2SDavid Ahern 			struct rt6_info **ppcpu_rt;
3486f40b6ae2SDavid Ahern 			struct rt6_info *pcpu_rt;
3487f40b6ae2SDavid Ahern 
3488f40b6ae2SDavid Ahern 			ppcpu_rt = per_cpu_ptr(fib6_nh->rt6i_pcpu, cpu);
3489f40b6ae2SDavid Ahern 			pcpu_rt = *ppcpu_rt;
3490f40b6ae2SDavid Ahern 			if (pcpu_rt) {
3491f40b6ae2SDavid Ahern 				dst_dev_put(&pcpu_rt->dst);
3492f40b6ae2SDavid Ahern 				dst_release(&pcpu_rt->dst);
3493f40b6ae2SDavid Ahern 				*ppcpu_rt = NULL;
3494f40b6ae2SDavid Ahern 			}
3495f40b6ae2SDavid Ahern 		}
3496f40b6ae2SDavid Ahern 
3497f40b6ae2SDavid Ahern 		free_percpu(fib6_nh->rt6i_pcpu);
3498f40b6ae2SDavid Ahern 	}
3499f40b6ae2SDavid Ahern 
3500979e276eSDavid Ahern 	fib_nh_common_release(&fib6_nh->nh_common);
3501dac7d0f2SDavid Ahern }
3502dac7d0f2SDavid Ahern 
35038d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg,
3504acb54e3cSDavid Ahern 					      gfp_t gfp_flags,
3505333c4301SDavid Ahern 					      struct netlink_ext_ack *extack)
35061da177e4SLinus Torvalds {
35075578689aSDaniel Lezcano 	struct net *net = cfg->fc_nlinfo.nl_net;
35088d1c802bSDavid Ahern 	struct fib6_info *rt = NULL;
3509f88d8ea6SDavid Ahern 	struct nexthop *nh = NULL;
3510c71099acSThomas Graf 	struct fib6_table *table;
3511f88d8ea6SDavid Ahern 	struct fib6_nh *fib6_nh;
35128c5b83f0SRoopa Prabhu 	int err = -EINVAL;
351383c44251SDavid Ahern 	int addr_type;
35141da177e4SLinus Torvalds 
3515557c44beSDavid Ahern 	/* RTF_PCPU is an internal flag; can not be set by userspace */
3516d5d531cbSDavid Ahern 	if (cfg->fc_flags & RTF_PCPU) {
3517d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
3518557c44beSDavid Ahern 		goto out;
3519d5d531cbSDavid Ahern 	}
3520557c44beSDavid Ahern 
35212ea2352eSWei Wang 	/* RTF_CACHE is an internal flag; can not be set by userspace */
35222ea2352eSWei Wang 	if (cfg->fc_flags & RTF_CACHE) {
35232ea2352eSWei Wang 		NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
35242ea2352eSWei Wang 		goto out;
35252ea2352eSWei Wang 	}
35262ea2352eSWei Wang 
3527e8478e80SDavid Ahern 	if (cfg->fc_type > RTN_MAX) {
3528e8478e80SDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid route type");
3529e8478e80SDavid Ahern 		goto out;
3530e8478e80SDavid Ahern 	}
3531e8478e80SDavid Ahern 
3532d5d531cbSDavid Ahern 	if (cfg->fc_dst_len > 128) {
3533d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid prefix length");
35348c5b83f0SRoopa Prabhu 		goto out;
3535d5d531cbSDavid Ahern 	}
3536d5d531cbSDavid Ahern 	if (cfg->fc_src_len > 128) {
3537d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "Invalid source address length");
3538d5d531cbSDavid Ahern 		goto out;
3539d5d531cbSDavid Ahern 	}
35401da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES
3541d5d531cbSDavid Ahern 	if (cfg->fc_src_len) {
3542d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack,
3543d5d531cbSDavid Ahern 			       "Specifying source address requires IPV6_SUBTREES to be enabled");
35448c5b83f0SRoopa Prabhu 		goto out;
3545d5d531cbSDavid Ahern 	}
35461da177e4SLinus Torvalds #endif
35475b98324eSDavid Ahern 	if (cfg->fc_nh_id) {
35485b98324eSDavid Ahern 		nh = nexthop_find_by_id(net, cfg->fc_nh_id);
35495b98324eSDavid Ahern 		if (!nh) {
35505b98324eSDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop id does not exist");
35515b98324eSDavid Ahern 			goto out;
35525b98324eSDavid Ahern 		}
35535b98324eSDavid Ahern 		err = fib6_check_nexthop(nh, cfg, extack);
35545b98324eSDavid Ahern 		if (err)
35555b98324eSDavid Ahern 			goto out;
35565b98324eSDavid Ahern 	}
3557fc1e64e1SDavid Ahern 
3558c71099acSThomas Graf 	err = -ENOBUFS;
355938308473SDavid S. Miller 	if (cfg->fc_nlinfo.nlh &&
3560d71314b4SMatti Vaittinen 	    !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
3561d71314b4SMatti Vaittinen 		table = fib6_get_table(net, cfg->fc_table);
356238308473SDavid S. Miller 		if (!table) {
3563f3213831SJoe Perches 			pr_warn("NLM_F_CREATE should be specified when creating new route\n");
3564d71314b4SMatti Vaittinen 			table = fib6_new_table(net, cfg->fc_table);
3565d71314b4SMatti Vaittinen 		}
3566d71314b4SMatti Vaittinen 	} else {
3567d71314b4SMatti Vaittinen 		table = fib6_new_table(net, cfg->fc_table);
3568d71314b4SMatti Vaittinen 	}
356938308473SDavid S. Miller 
357038308473SDavid S. Miller 	if (!table)
3571c71099acSThomas Graf 		goto out;
3572c71099acSThomas Graf 
35731da177e4SLinus Torvalds 	err = -ENOMEM;
3574f88d8ea6SDavid Ahern 	rt = fib6_info_alloc(gfp_flags, !nh);
357593531c67SDavid Ahern 	if (!rt)
35761da177e4SLinus Torvalds 		goto out;
357793531c67SDavid Ahern 
3578d7e774f3SDavid Ahern 	rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len,
3579d7e774f3SDavid Ahern 					       extack);
3580767a2217SDavid Ahern 	if (IS_ERR(rt->fib6_metrics)) {
3581767a2217SDavid Ahern 		err = PTR_ERR(rt->fib6_metrics);
3582fda21d46SEric Dumazet 		/* Do not leave garbage there. */
3583fda21d46SEric Dumazet 		rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics;
3584767a2217SDavid Ahern 		goto out;
3585767a2217SDavid Ahern 	}
3586767a2217SDavid Ahern 
358793531c67SDavid Ahern 	if (cfg->fc_flags & RTF_ADDRCONF)
358893531c67SDavid Ahern 		rt->dst_nocount = true;
35891da177e4SLinus Torvalds 
35901716a961SGao feng 	if (cfg->fc_flags & RTF_EXPIRES)
359114895687SDavid Ahern 		fib6_set_expires(rt, jiffies +
35921716a961SGao feng 				clock_t_to_jiffies(cfg->fc_expires));
35931716a961SGao feng 	else
359414895687SDavid Ahern 		fib6_clean_expires(rt);
35951da177e4SLinus Torvalds 
359686872cb5SThomas Graf 	if (cfg->fc_protocol == RTPROT_UNSPEC)
359786872cb5SThomas Graf 		cfg->fc_protocol = RTPROT_BOOT;
359893c2fb25SDavid Ahern 	rt->fib6_protocol = cfg->fc_protocol;
359986872cb5SThomas Graf 
360083c44251SDavid Ahern 	rt->fib6_table = table;
360183c44251SDavid Ahern 	rt->fib6_metric = cfg->fc_metric;
3602c7036d97SDavid Ahern 	rt->fib6_type = cfg->fc_type ? : RTN_UNICAST;
36032b2450caSDavid Ahern 	rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY;
360419e42e45SRoopa Prabhu 
360593c2fb25SDavid Ahern 	ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
360693c2fb25SDavid Ahern 	rt->fib6_dst.plen = cfg->fc_dst_len;
360793c2fb25SDavid Ahern 	if (rt->fib6_dst.plen == 128)
36083b6761d1SDavid Ahern 		rt->dst_host = true;
36091da177e4SLinus Torvalds 
36101da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
361193c2fb25SDavid Ahern 	ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len);
361293c2fb25SDavid Ahern 	rt->fib6_src.plen = cfg->fc_src_len;
36131da177e4SLinus Torvalds #endif
3614f88d8ea6SDavid Ahern 	if (nh) {
3615f88d8ea6SDavid Ahern 		if (!nexthop_get(nh)) {
3616f88d8ea6SDavid Ahern 			NL_SET_ERR_MSG(extack, "Nexthop has been deleted");
3617f88d8ea6SDavid Ahern 			goto out;
3618f88d8ea6SDavid Ahern 		}
3619f88d8ea6SDavid Ahern 		if (rt->fib6_src.plen) {
36204daa95afSColin Ian King 			NL_SET_ERR_MSG(extack, "Nexthops can not be used with source routing");
3621f88d8ea6SDavid Ahern 			goto out;
3622f88d8ea6SDavid Ahern 		}
3623f88d8ea6SDavid Ahern 		rt->nh = nh;
3624f88d8ea6SDavid Ahern 		fib6_nh = nexthop_fib6_nh(rt->nh);
3625f88d8ea6SDavid Ahern 	} else {
36261cf844c7SDavid Ahern 		err = fib6_nh_init(net, rt->fib6_nh, cfg, gfp_flags, extack);
36271da177e4SLinus Torvalds 		if (err)
36281da177e4SLinus Torvalds 			goto out;
36299fbb704cSDavid Ahern 
3630f88d8ea6SDavid Ahern 		fib6_nh = rt->fib6_nh;
3631f88d8ea6SDavid Ahern 
3632f88d8ea6SDavid Ahern 		/* We cannot add true routes via loopback here, they would
3633f88d8ea6SDavid Ahern 		 * result in kernel looping; promote them to reject routes
363483c44251SDavid Ahern 		 */
363583c44251SDavid Ahern 		addr_type = ipv6_addr_type(&cfg->fc_dst);
3636f88d8ea6SDavid Ahern 		if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh->fib_nh_dev,
3637f88d8ea6SDavid Ahern 				   addr_type))
363883c44251SDavid Ahern 			rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP;
3639f88d8ea6SDavid Ahern 	}
3640955ec4cbSDavid Ahern 
3641c3968a85SDaniel Walter 	if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
3642f88d8ea6SDavid Ahern 		struct net_device *dev = fib6_nh->fib_nh_dev;
364383c44251SDavid Ahern 
3644c3968a85SDaniel Walter 		if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
3645d5d531cbSDavid Ahern 			NL_SET_ERR_MSG(extack, "Invalid source address");
3646c3968a85SDaniel Walter 			err = -EINVAL;
3647c3968a85SDaniel Walter 			goto out;
3648c3968a85SDaniel Walter 		}
364993c2fb25SDavid Ahern 		rt->fib6_prefsrc.addr = cfg->fc_prefsrc;
365093c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 128;
3651c3968a85SDaniel Walter 	} else
365293c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 0;
3653c3968a85SDaniel Walter 
36548c5b83f0SRoopa Prabhu 	return rt;
36551da177e4SLinus Torvalds out:
365693531c67SDavid Ahern 	fib6_info_release(rt);
36578c5b83f0SRoopa Prabhu 	return ERR_PTR(err);
36586b9ea5a6SRoopa Prabhu }
36596b9ea5a6SRoopa Prabhu 
3660acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags,
3661333c4301SDavid Ahern 		  struct netlink_ext_ack *extack)
36626b9ea5a6SRoopa Prabhu {
36638d1c802bSDavid Ahern 	struct fib6_info *rt;
36646b9ea5a6SRoopa Prabhu 	int err;
36656b9ea5a6SRoopa Prabhu 
3666acb54e3cSDavid Ahern 	rt = ip6_route_info_create(cfg, gfp_flags, extack);
3667d4ead6b3SDavid Ahern 	if (IS_ERR(rt))
3668d4ead6b3SDavid Ahern 		return PTR_ERR(rt);
36696b9ea5a6SRoopa Prabhu 
3670d4ead6b3SDavid Ahern 	err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack);
367193531c67SDavid Ahern 	fib6_info_release(rt);
36726b9ea5a6SRoopa Prabhu 
36731da177e4SLinus Torvalds 	return err;
36741da177e4SLinus Torvalds }
36751da177e4SLinus Torvalds 
36768d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info)
36771da177e4SLinus Torvalds {
3678afb1d4b5SDavid Ahern 	struct net *net = info->nl_net;
3679c71099acSThomas Graf 	struct fib6_table *table;
3680afb1d4b5SDavid Ahern 	int err;
36811da177e4SLinus Torvalds 
3682421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry) {
36836825a26cSGao feng 		err = -ENOENT;
36846825a26cSGao feng 		goto out;
36856825a26cSGao feng 	}
36866c813a72SPatrick McHardy 
368793c2fb25SDavid Ahern 	table = rt->fib6_table;
368866f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
368986872cb5SThomas Graf 	err = fib6_del(rt, info);
369066f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
36911da177e4SLinus Torvalds 
36926825a26cSGao feng out:
369393531c67SDavid Ahern 	fib6_info_release(rt);
36941da177e4SLinus Torvalds 	return err;
36951da177e4SLinus Torvalds }
36961da177e4SLinus Torvalds 
36978d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt)
3698e0a1ad73SThomas Graf {
3699afb1d4b5SDavid Ahern 	struct nl_info info = { .nl_net = net };
3700afb1d4b5SDavid Ahern 
3701528c4cebSDenis V. Lunev 	return __ip6_del_rt(rt, &info);
3702e0a1ad73SThomas Graf }
3703e0a1ad73SThomas Graf 
37048d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg)
37050ae81335SDavid Ahern {
37060ae81335SDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
3707e3330039SWANG Cong 	struct net *net = info->nl_net;
370816a16cd3SDavid Ahern 	struct sk_buff *skb = NULL;
37090ae81335SDavid Ahern 	struct fib6_table *table;
3710e3330039SWANG Cong 	int err = -ENOENT;
37110ae81335SDavid Ahern 
3712421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry)
3713e3330039SWANG Cong 		goto out_put;
371493c2fb25SDavid Ahern 	table = rt->fib6_table;
371566f5d6ceSWei Wang 	spin_lock_bh(&table->tb6_lock);
37160ae81335SDavid Ahern 
371793c2fb25SDavid Ahern 	if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) {
37188d1c802bSDavid Ahern 		struct fib6_info *sibling, *next_sibling;
37190ae81335SDavid Ahern 
372016a16cd3SDavid Ahern 		/* prefer to send a single notification with all hops */
372116a16cd3SDavid Ahern 		skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
372216a16cd3SDavid Ahern 		if (skb) {
372316a16cd3SDavid Ahern 			u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
372416a16cd3SDavid Ahern 
3725d4ead6b3SDavid Ahern 			if (rt6_fill_node(net, skb, rt, NULL,
372616a16cd3SDavid Ahern 					  NULL, NULL, 0, RTM_DELROUTE,
372716a16cd3SDavid Ahern 					  info->portid, seq, 0) < 0) {
372816a16cd3SDavid Ahern 				kfree_skb(skb);
372916a16cd3SDavid Ahern 				skb = NULL;
373016a16cd3SDavid Ahern 			} else
373116a16cd3SDavid Ahern 				info->skip_notify = 1;
373216a16cd3SDavid Ahern 		}
373316a16cd3SDavid Ahern 
37342881fd61SIdo Schimmel 		info->skip_notify_kernel = 1;
37352881fd61SIdo Schimmel 		call_fib6_multipath_entry_notifiers(net,
37362881fd61SIdo Schimmel 						    FIB_EVENT_ENTRY_DEL,
37372881fd61SIdo Schimmel 						    rt,
37382881fd61SIdo Schimmel 						    rt->fib6_nsiblings,
37392881fd61SIdo Schimmel 						    NULL);
37400ae81335SDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
374193c2fb25SDavid Ahern 					 &rt->fib6_siblings,
374293c2fb25SDavid Ahern 					 fib6_siblings) {
37430ae81335SDavid Ahern 			err = fib6_del(sibling, info);
37440ae81335SDavid Ahern 			if (err)
3745e3330039SWANG Cong 				goto out_unlock;
37460ae81335SDavid Ahern 		}
37470ae81335SDavid Ahern 	}
37480ae81335SDavid Ahern 
37490ae81335SDavid Ahern 	err = fib6_del(rt, info);
3750e3330039SWANG Cong out_unlock:
375166f5d6ceSWei Wang 	spin_unlock_bh(&table->tb6_lock);
3752e3330039SWANG Cong out_put:
375393531c67SDavid Ahern 	fib6_info_release(rt);
375416a16cd3SDavid Ahern 
375516a16cd3SDavid Ahern 	if (skb) {
3756e3330039SWANG Cong 		rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
375716a16cd3SDavid Ahern 			    info->nlh, gfp_any());
375816a16cd3SDavid Ahern 	}
37590ae81335SDavid Ahern 	return err;
37600ae81335SDavid Ahern }
37610ae81335SDavid Ahern 
37620fa6efc5SDavid Ahern static int __ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg)
376323fb93a4SDavid Ahern {
376423fb93a4SDavid Ahern 	int rc = -ESRCH;
376523fb93a4SDavid Ahern 
376623fb93a4SDavid Ahern 	if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex)
376723fb93a4SDavid Ahern 		goto out;
376823fb93a4SDavid Ahern 
376923fb93a4SDavid Ahern 	if (cfg->fc_flags & RTF_GATEWAY &&
377023fb93a4SDavid Ahern 	    !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
377123fb93a4SDavid Ahern 		goto out;
3772761f6026SXin Long 
377323fb93a4SDavid Ahern 	rc = rt6_remove_exception_rt(rt);
377423fb93a4SDavid Ahern out:
377523fb93a4SDavid Ahern 	return rc;
377623fb93a4SDavid Ahern }
377723fb93a4SDavid Ahern 
37780fa6efc5SDavid Ahern static int ip6_del_cached_rt(struct fib6_config *cfg, struct fib6_info *rt,
37790fa6efc5SDavid Ahern 			     struct fib6_nh *nh)
37800fa6efc5SDavid Ahern {
37810fa6efc5SDavid Ahern 	struct fib6_result res = {
37820fa6efc5SDavid Ahern 		.f6i = rt,
37830fa6efc5SDavid Ahern 		.nh = nh,
37840fa6efc5SDavid Ahern 	};
37850fa6efc5SDavid Ahern 	struct rt6_info *rt_cache;
37860fa6efc5SDavid Ahern 
37870fa6efc5SDavid Ahern 	rt_cache = rt6_find_cached_rt(&res, &cfg->fc_dst, &cfg->fc_src);
37880fa6efc5SDavid Ahern 	if (rt_cache)
37890fa6efc5SDavid Ahern 		return __ip6_del_cached_rt(rt_cache, cfg);
37900fa6efc5SDavid Ahern 
37910fa6efc5SDavid Ahern 	return 0;
37920fa6efc5SDavid Ahern }
37930fa6efc5SDavid Ahern 
37945b98324eSDavid Ahern struct fib6_nh_del_cached_rt_arg {
37955b98324eSDavid Ahern 	struct fib6_config *cfg;
37965b98324eSDavid Ahern 	struct fib6_info *f6i;
37975b98324eSDavid Ahern };
37985b98324eSDavid Ahern 
37995b98324eSDavid Ahern static int fib6_nh_del_cached_rt(struct fib6_nh *nh, void *_arg)
38005b98324eSDavid Ahern {
38015b98324eSDavid Ahern 	struct fib6_nh_del_cached_rt_arg *arg = _arg;
38025b98324eSDavid Ahern 	int rc;
38035b98324eSDavid Ahern 
38045b98324eSDavid Ahern 	rc = ip6_del_cached_rt(arg->cfg, arg->f6i, nh);
38055b98324eSDavid Ahern 	return rc != -ESRCH ? rc : 0;
38065b98324eSDavid Ahern }
38075b98324eSDavid Ahern 
38085b98324eSDavid Ahern static int ip6_del_cached_rt_nh(struct fib6_config *cfg, struct fib6_info *f6i)
38095b98324eSDavid Ahern {
38105b98324eSDavid Ahern 	struct fib6_nh_del_cached_rt_arg arg = {
38115b98324eSDavid Ahern 		.cfg = cfg,
38125b98324eSDavid Ahern 		.f6i = f6i
38135b98324eSDavid Ahern 	};
38145b98324eSDavid Ahern 
38155b98324eSDavid Ahern 	return nexthop_for_each_fib6_nh(f6i->nh, fib6_nh_del_cached_rt, &arg);
38165b98324eSDavid Ahern }
38175b98324eSDavid Ahern 
3818333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg,
3819333c4301SDavid Ahern 			 struct netlink_ext_ack *extack)
38201da177e4SLinus Torvalds {
3821c71099acSThomas Graf 	struct fib6_table *table;
38228d1c802bSDavid Ahern 	struct fib6_info *rt;
38231da177e4SLinus Torvalds 	struct fib6_node *fn;
38241da177e4SLinus Torvalds 	int err = -ESRCH;
38251da177e4SLinus Torvalds 
38265578689aSDaniel Lezcano 	table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
3827d5d531cbSDavid Ahern 	if (!table) {
3828d5d531cbSDavid Ahern 		NL_SET_ERR_MSG(extack, "FIB table does not exist");
3829c71099acSThomas Graf 		return err;
3830d5d531cbSDavid Ahern 	}
38311da177e4SLinus Torvalds 
383266f5d6ceSWei Wang 	rcu_read_lock();
3833c71099acSThomas Graf 
3834c71099acSThomas Graf 	fn = fib6_locate(&table->tb6_root,
383586872cb5SThomas Graf 			 &cfg->fc_dst, cfg->fc_dst_len,
383638fbeeeeSWei Wang 			 &cfg->fc_src, cfg->fc_src_len,
38372b760fcfSWei Wang 			 !(cfg->fc_flags & RTF_CACHE));
38381da177e4SLinus Torvalds 
38391da177e4SLinus Torvalds 	if (fn) {
384066f5d6ceSWei Wang 		for_each_fib6_node_rt_rcu(fn) {
3841ad1601aeSDavid Ahern 			struct fib6_nh *nh;
3842ad1601aeSDavid Ahern 
38435b98324eSDavid Ahern 			if (rt->nh && rt->nh->id != cfg->fc_nh_id)
38445b98324eSDavid Ahern 				continue;
384523fb93a4SDavid Ahern 
38465b98324eSDavid Ahern 			if (cfg->fc_flags & RTF_CACHE) {
38475b98324eSDavid Ahern 				int rc = 0;
38485b98324eSDavid Ahern 
38495b98324eSDavid Ahern 				if (rt->nh) {
38505b98324eSDavid Ahern 					rc = ip6_del_cached_rt_nh(cfg, rt);
38515b98324eSDavid Ahern 				} else if (cfg->fc_nh_id) {
38525b98324eSDavid Ahern 					continue;
38535b98324eSDavid Ahern 				} else {
38545b98324eSDavid Ahern 					nh = rt->fib6_nh;
38550fa6efc5SDavid Ahern 					rc = ip6_del_cached_rt(cfg, rt, nh);
38565b98324eSDavid Ahern 				}
38579e575010SEric Dumazet 				if (rc != -ESRCH) {
38589e575010SEric Dumazet 					rcu_read_unlock();
385923fb93a4SDavid Ahern 					return rc;
386023fb93a4SDavid Ahern 				}
38611f56a01fSMartin KaFai Lau 				continue;
38622b760fcfSWei Wang 			}
3863ad1601aeSDavid Ahern 
38645b98324eSDavid Ahern 			if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric)
38655b98324eSDavid Ahern 				continue;
38665b98324eSDavid Ahern 			if (cfg->fc_protocol &&
38675b98324eSDavid Ahern 			    cfg->fc_protocol != rt->fib6_protocol)
38685b98324eSDavid Ahern 				continue;
38695b98324eSDavid Ahern 
38705b98324eSDavid Ahern 			if (rt->nh) {
38715b98324eSDavid Ahern 				if (!fib6_info_hold_safe(rt))
38725b98324eSDavid Ahern 					continue;
38735b98324eSDavid Ahern 				rcu_read_unlock();
38745b98324eSDavid Ahern 
38755b98324eSDavid Ahern 				return __ip6_del_rt(rt, &cfg->fc_nlinfo);
38765b98324eSDavid Ahern 			}
38775b98324eSDavid Ahern 			if (cfg->fc_nh_id)
38785b98324eSDavid Ahern 				continue;
38795b98324eSDavid Ahern 
38805b98324eSDavid Ahern 			nh = rt->fib6_nh;
388186872cb5SThomas Graf 			if (cfg->fc_ifindex &&
3882ad1601aeSDavid Ahern 			    (!nh->fib_nh_dev ||
3883ad1601aeSDavid Ahern 			     nh->fib_nh_dev->ifindex != cfg->fc_ifindex))
38841da177e4SLinus Torvalds 				continue;
388586872cb5SThomas Graf 			if (cfg->fc_flags & RTF_GATEWAY &&
3886ad1601aeSDavid Ahern 			    !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6))
38871da177e4SLinus Torvalds 				continue;
3888e873e4b9SWei Wang 			if (!fib6_info_hold_safe(rt))
3889e873e4b9SWei Wang 				continue;
389066f5d6ceSWei Wang 			rcu_read_unlock();
38911da177e4SLinus Torvalds 
38920ae81335SDavid Ahern 			/* if gateway was specified only delete the one hop */
38930ae81335SDavid Ahern 			if (cfg->fc_flags & RTF_GATEWAY)
389486872cb5SThomas Graf 				return __ip6_del_rt(rt, &cfg->fc_nlinfo);
38950ae81335SDavid Ahern 
38960ae81335SDavid Ahern 			return __ip6_del_rt_siblings(rt, cfg);
38971da177e4SLinus Torvalds 		}
38981da177e4SLinus Torvalds 	}
389966f5d6ceSWei Wang 	rcu_read_unlock();
39001da177e4SLinus Torvalds 
39011da177e4SLinus Torvalds 	return err;
39021da177e4SLinus Torvalds }
39031da177e4SLinus Torvalds 
39046700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
3905a6279458SYOSHIFUJI Hideaki {
3906a6279458SYOSHIFUJI Hideaki 	struct netevent_redirect netevent;
3907e8599ff4SDavid S. Miller 	struct rt6_info *rt, *nrt = NULL;
390885bd05deSDavid Ahern 	struct fib6_result res = {};
3909e8599ff4SDavid S. Miller 	struct ndisc_options ndopts;
3910e8599ff4SDavid S. Miller 	struct inet6_dev *in6_dev;
3911e8599ff4SDavid S. Miller 	struct neighbour *neigh;
391271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	struct rd_msg *msg;
39136e157b6aSDavid S. Miller 	int optlen, on_link;
39146e157b6aSDavid S. Miller 	u8 *lladdr;
3915e8599ff4SDavid S. Miller 
391629a3cad5SSimon Horman 	optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
391771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	optlen -= sizeof(*msg);
3918e8599ff4SDavid S. Miller 
3919e8599ff4SDavid S. Miller 	if (optlen < 0) {
39206e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
3921e8599ff4SDavid S. Miller 		return;
3922e8599ff4SDavid S. Miller 	}
3923e8599ff4SDavid S. Miller 
392471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	msg = (struct rd_msg *)icmp6_hdr(skb);
3925e8599ff4SDavid S. Miller 
392671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_is_multicast(&msg->dest)) {
39276e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
3928e8599ff4SDavid S. Miller 		return;
3929e8599ff4SDavid S. Miller 	}
3930e8599ff4SDavid S. Miller 
39316e157b6aSDavid S. Miller 	on_link = 0;
393271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	if (ipv6_addr_equal(&msg->dest, &msg->target)) {
3933e8599ff4SDavid S. Miller 		on_link = 1;
393471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	} else if (ipv6_addr_type(&msg->target) !=
3935e8599ff4SDavid S. Miller 		   (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
39366e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
3937e8599ff4SDavid S. Miller 		return;
3938e8599ff4SDavid S. Miller 	}
3939e8599ff4SDavid S. Miller 
3940e8599ff4SDavid S. Miller 	in6_dev = __in6_dev_get(skb->dev);
3941e8599ff4SDavid S. Miller 	if (!in6_dev)
3942e8599ff4SDavid S. Miller 		return;
3943e8599ff4SDavid S. Miller 	if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3944e8599ff4SDavid S. Miller 		return;
3945e8599ff4SDavid S. Miller 
3946e8599ff4SDavid S. Miller 	/* RFC2461 8.1:
3947e8599ff4SDavid S. Miller 	 *	The IP source address of the Redirect MUST be the same as the current
3948e8599ff4SDavid S. Miller 	 *	first-hop router for the specified ICMP Destination Address.
3949e8599ff4SDavid S. Miller 	 */
3950e8599ff4SDavid S. Miller 
3951f997c55cSAlexander Aring 	if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
3952e8599ff4SDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3953e8599ff4SDavid S. Miller 		return;
3954e8599ff4SDavid S. Miller 	}
39556e157b6aSDavid S. Miller 
39566e157b6aSDavid S. Miller 	lladdr = NULL;
3957e8599ff4SDavid S. Miller 	if (ndopts.nd_opts_tgt_lladdr) {
3958e8599ff4SDavid S. Miller 		lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3959e8599ff4SDavid S. Miller 					     skb->dev);
3960e8599ff4SDavid S. Miller 		if (!lladdr) {
3961e8599ff4SDavid S. Miller 			net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3962e8599ff4SDavid S. Miller 			return;
3963e8599ff4SDavid S. Miller 		}
3964e8599ff4SDavid S. Miller 	}
3965e8599ff4SDavid S. Miller 
39666e157b6aSDavid S. Miller 	rt = (struct rt6_info *) dst;
3967ec13ad1dSMatthias Schiffer 	if (rt->rt6i_flags & RTF_REJECT) {
39686e157b6aSDavid S. Miller 		net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
39696e157b6aSDavid S. Miller 		return;
39706e157b6aSDavid S. Miller 	}
39716e157b6aSDavid S. Miller 
39726e157b6aSDavid S. Miller 	/* Redirect received -> path was valid.
39736e157b6aSDavid S. Miller 	 * Look, redirects are sent only in response to data packets,
39746e157b6aSDavid S. Miller 	 * so that this nexthop apparently is reachable. --ANK
39756e157b6aSDavid S. Miller 	 */
39760dec879fSJulian Anastasov 	dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
39776e157b6aSDavid S. Miller 
397871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
3979e8599ff4SDavid S. Miller 	if (!neigh)
3980e8599ff4SDavid S. Miller 		return;
3981e8599ff4SDavid S. Miller 
39821da177e4SLinus Torvalds 	/*
39831da177e4SLinus Torvalds 	 *	We have finally decided to accept it.
39841da177e4SLinus Torvalds 	 */
39851da177e4SLinus Torvalds 
3986f997c55cSAlexander Aring 	ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
39871da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_WEAK_OVERRIDE|
39881da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_OVERRIDE|
39891da177e4SLinus Torvalds 		     (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
3990f997c55cSAlexander Aring 				     NEIGH_UPDATE_F_ISROUTER)),
3991f997c55cSAlexander Aring 		     NDISC_REDIRECT, &ndopts);
39921da177e4SLinus Torvalds 
39934d85cd0cSDavid Ahern 	rcu_read_lock();
399485bd05deSDavid Ahern 	res.f6i = rcu_dereference(rt->from);
3995ff24e498SDavid S. Miller 	if (!res.f6i)
3996886b7a50SMartin KaFai Lau 		goto out;
39978a14e46fSDavid Ahern 
399849d5b8efSDavid Ahern 	if (res.f6i->nh) {
399949d5b8efSDavid Ahern 		struct fib6_nh_match_arg arg = {
400049d5b8efSDavid Ahern 			.dev = dst->dev,
400149d5b8efSDavid Ahern 			.gw = &rt->rt6i_gateway,
400249d5b8efSDavid Ahern 		};
400349d5b8efSDavid Ahern 
400449d5b8efSDavid Ahern 		nexthop_for_each_fib6_nh(res.f6i->nh,
400549d5b8efSDavid Ahern 					 fib6_nh_find_match, &arg);
400649d5b8efSDavid Ahern 
400749d5b8efSDavid Ahern 		/* fib6_info uses a nexthop that does not have fib6_nh
400849d5b8efSDavid Ahern 		 * using the dst->dev. Should be impossible
400949d5b8efSDavid Ahern 		 */
401049d5b8efSDavid Ahern 		if (!arg.match)
401149d5b8efSDavid Ahern 			goto out;
401249d5b8efSDavid Ahern 		res.nh = arg.match;
401349d5b8efSDavid Ahern 	} else {
40141cf844c7SDavid Ahern 		res.nh = res.f6i->fib6_nh;
401549d5b8efSDavid Ahern 	}
401649d5b8efSDavid Ahern 
40177d21fec9SDavid Ahern 	res.fib6_flags = res.f6i->fib6_flags;
40187d21fec9SDavid Ahern 	res.fib6_type = res.f6i->fib6_type;
401985bd05deSDavid Ahern 	nrt = ip6_rt_cache_alloc(&res, &msg->dest, NULL);
402038308473SDavid S. Miller 	if (!nrt)
40211da177e4SLinus Torvalds 		goto out;
40221da177e4SLinus Torvalds 
40231da177e4SLinus Torvalds 	nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
40241da177e4SLinus Torvalds 	if (on_link)
40251da177e4SLinus Torvalds 		nrt->rt6i_flags &= ~RTF_GATEWAY;
40261da177e4SLinus Torvalds 
40274e3fd7a0SAlexey Dobriyan 	nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
40281da177e4SLinus Torvalds 
4029886b7a50SMartin KaFai Lau 	/* rt6_insert_exception() will take care of duplicated exceptions */
40305012f0a5SDavid Ahern 	if (rt6_insert_exception(nrt, &res)) {
40312b760fcfSWei Wang 		dst_release_immediate(&nrt->dst);
40322b760fcfSWei Wang 		goto out;
40332b760fcfSWei Wang 	}
40341da177e4SLinus Torvalds 
4035d8d1f30bSChangli Gao 	netevent.old = &rt->dst;
4036d8d1f30bSChangli Gao 	netevent.new = &nrt->dst;
403771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 	netevent.daddr = &msg->dest;
403860592833SYOSHIFUJI Hideaki / 吉藤英明 	netevent.neigh = neigh;
40398d71740cSTom Tucker 	call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
40408d71740cSTom Tucker 
40411da177e4SLinus Torvalds out:
4042886b7a50SMartin KaFai Lau 	rcu_read_unlock();
4043e8599ff4SDavid S. Miller 	neigh_release(neigh);
40446e157b6aSDavid S. Miller }
40456e157b6aSDavid S. Miller 
404670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
40478d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net,
4048b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
4049830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
4050830218c1SDavid Ahern 					   struct net_device *dev)
405170ceb4f5SYOSHIFUJI Hideaki {
4052830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
4053830218c1SDavid Ahern 	int ifindex = dev->ifindex;
405470ceb4f5SYOSHIFUJI Hideaki 	struct fib6_node *fn;
40558d1c802bSDavid Ahern 	struct fib6_info *rt = NULL;
4056c71099acSThomas Graf 	struct fib6_table *table;
405770ceb4f5SYOSHIFUJI Hideaki 
4058830218c1SDavid Ahern 	table = fib6_get_table(net, tb_id);
405938308473SDavid S. Miller 	if (!table)
4060c71099acSThomas Graf 		return NULL;
4061c71099acSThomas Graf 
406266f5d6ceSWei Wang 	rcu_read_lock();
406338fbeeeeSWei Wang 	fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
406470ceb4f5SYOSHIFUJI Hideaki 	if (!fn)
406570ceb4f5SYOSHIFUJI Hideaki 		goto out;
406670ceb4f5SYOSHIFUJI Hideaki 
406766f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(fn) {
4068f88d8ea6SDavid Ahern 		/* these routes do not use nexthops */
4069f88d8ea6SDavid Ahern 		if (rt->nh)
4070f88d8ea6SDavid Ahern 			continue;
40711cf844c7SDavid Ahern 		if (rt->fib6_nh->fib_nh_dev->ifindex != ifindex)
407270ceb4f5SYOSHIFUJI Hideaki 			continue;
40732b2450caSDavid Ahern 		if (!(rt->fib6_flags & RTF_ROUTEINFO) ||
40741cf844c7SDavid Ahern 		    !rt->fib6_nh->fib_nh_gw_family)
407570ceb4f5SYOSHIFUJI Hideaki 			continue;
40761cf844c7SDavid Ahern 		if (!ipv6_addr_equal(&rt->fib6_nh->fib_nh_gw6, gwaddr))
407770ceb4f5SYOSHIFUJI Hideaki 			continue;
4078e873e4b9SWei Wang 		if (!fib6_info_hold_safe(rt))
4079e873e4b9SWei Wang 			continue;
408070ceb4f5SYOSHIFUJI Hideaki 		break;
408170ceb4f5SYOSHIFUJI Hideaki 	}
408270ceb4f5SYOSHIFUJI Hideaki out:
408366f5d6ceSWei Wang 	rcu_read_unlock();
408470ceb4f5SYOSHIFUJI Hideaki 	return rt;
408570ceb4f5SYOSHIFUJI Hideaki }
408670ceb4f5SYOSHIFUJI Hideaki 
40878d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net,
4088b71d1d42SEric Dumazet 					   const struct in6_addr *prefix, int prefixlen,
4089830218c1SDavid Ahern 					   const struct in6_addr *gwaddr,
4090830218c1SDavid Ahern 					   struct net_device *dev,
409195c96174SEric Dumazet 					   unsigned int pref)
409270ceb4f5SYOSHIFUJI Hideaki {
409386872cb5SThomas Graf 	struct fib6_config cfg = {
4094238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
4095830218c1SDavid Ahern 		.fc_ifindex	= dev->ifindex,
409686872cb5SThomas Graf 		.fc_dst_len	= prefixlen,
409786872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
409886872cb5SThomas Graf 				  RTF_UP | RTF_PREF(pref),
4099b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
4100e8478e80SDavid Ahern 		.fc_type = RTN_UNICAST,
410115e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
4102efa2cea0SDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
4103efa2cea0SDaniel Lezcano 		.fc_nlinfo.nl_net = net,
410486872cb5SThomas Graf 	};
410570ceb4f5SYOSHIFUJI Hideaki 
4106830218c1SDavid Ahern 	cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
41074e3fd7a0SAlexey Dobriyan 	cfg.fc_dst = *prefix;
41084e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
410986872cb5SThomas Graf 
4110e317da96SYOSHIFUJI Hideaki 	/* We should treat it as a default route if prefix length is 0. */
4111e317da96SYOSHIFUJI Hideaki 	if (!prefixlen)
411286872cb5SThomas Graf 		cfg.fc_flags |= RTF_DEFAULT;
411370ceb4f5SYOSHIFUJI Hideaki 
4114acb54e3cSDavid Ahern 	ip6_route_add(&cfg, GFP_ATOMIC, NULL);
411570ceb4f5SYOSHIFUJI Hideaki 
4116830218c1SDavid Ahern 	return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
411770ceb4f5SYOSHIFUJI Hideaki }
411870ceb4f5SYOSHIFUJI Hideaki #endif
411970ceb4f5SYOSHIFUJI Hideaki 
41208d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net,
4121afb1d4b5SDavid Ahern 				     const struct in6_addr *addr,
4122afb1d4b5SDavid Ahern 				     struct net_device *dev)
41231da177e4SLinus Torvalds {
4124830218c1SDavid Ahern 	u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
41258d1c802bSDavid Ahern 	struct fib6_info *rt;
4126c71099acSThomas Graf 	struct fib6_table *table;
41271da177e4SLinus Torvalds 
4128afb1d4b5SDavid Ahern 	table = fib6_get_table(net, tb_id);
412938308473SDavid S. Miller 	if (!table)
4130c71099acSThomas Graf 		return NULL;
41311da177e4SLinus Torvalds 
413266f5d6ceSWei Wang 	rcu_read_lock();
413366f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
4134f88d8ea6SDavid Ahern 		struct fib6_nh *nh;
4135ad1601aeSDavid Ahern 
4136f88d8ea6SDavid Ahern 		/* RA routes do not use nexthops */
4137f88d8ea6SDavid Ahern 		if (rt->nh)
4138f88d8ea6SDavid Ahern 			continue;
4139f88d8ea6SDavid Ahern 
4140f88d8ea6SDavid Ahern 		nh = rt->fib6_nh;
4141ad1601aeSDavid Ahern 		if (dev == nh->fib_nh_dev &&
414293c2fb25SDavid Ahern 		    ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
4143ad1601aeSDavid Ahern 		    ipv6_addr_equal(&nh->fib_nh_gw6, addr))
41441da177e4SLinus Torvalds 			break;
41451da177e4SLinus Torvalds 	}
4146e873e4b9SWei Wang 	if (rt && !fib6_info_hold_safe(rt))
4147e873e4b9SWei Wang 		rt = NULL;
414866f5d6ceSWei Wang 	rcu_read_unlock();
41491da177e4SLinus Torvalds 	return rt;
41501da177e4SLinus Torvalds }
41511da177e4SLinus Torvalds 
41528d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net,
4153afb1d4b5SDavid Ahern 				     const struct in6_addr *gwaddr,
4154ebacaaa0SYOSHIFUJI Hideaki 				     struct net_device *dev,
4155ebacaaa0SYOSHIFUJI Hideaki 				     unsigned int pref)
41561da177e4SLinus Torvalds {
415786872cb5SThomas Graf 	struct fib6_config cfg = {
4158ca254490SDavid Ahern 		.fc_table	= l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
4159238fc7eaSRami Rosen 		.fc_metric	= IP6_RT_PRIO_USER,
416086872cb5SThomas Graf 		.fc_ifindex	= dev->ifindex,
416186872cb5SThomas Graf 		.fc_flags	= RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
416286872cb5SThomas Graf 				  RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
4163b91d5329SXin Long 		.fc_protocol = RTPROT_RA,
4164e8478e80SDavid Ahern 		.fc_type = RTN_UNICAST,
416515e47304SEric W. Biederman 		.fc_nlinfo.portid = 0,
41665578689aSDaniel Lezcano 		.fc_nlinfo.nlh = NULL,
4167afb1d4b5SDavid Ahern 		.fc_nlinfo.nl_net = net,
416886872cb5SThomas Graf 	};
41691da177e4SLinus Torvalds 
41704e3fd7a0SAlexey Dobriyan 	cfg.fc_gateway = *gwaddr;
41711da177e4SLinus Torvalds 
4172acb54e3cSDavid Ahern 	if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) {
4173830218c1SDavid Ahern 		struct fib6_table *table;
4174830218c1SDavid Ahern 
4175830218c1SDavid Ahern 		table = fib6_get_table(dev_net(dev), cfg.fc_table);
4176830218c1SDavid Ahern 		if (table)
4177830218c1SDavid Ahern 			table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
4178830218c1SDavid Ahern 	}
41791da177e4SLinus Torvalds 
4180afb1d4b5SDavid Ahern 	return rt6_get_dflt_router(net, gwaddr, dev);
41811da177e4SLinus Torvalds }
41821da177e4SLinus Torvalds 
4183afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net,
4184afb1d4b5SDavid Ahern 				     struct fib6_table *table)
41851da177e4SLinus Torvalds {
41868d1c802bSDavid Ahern 	struct fib6_info *rt;
41871da177e4SLinus Torvalds 
41881da177e4SLinus Torvalds restart:
418966f5d6ceSWei Wang 	rcu_read_lock();
419066f5d6ceSWei Wang 	for_each_fib6_node_rt_rcu(&table->tb6_root) {
4191dcd1f572SDavid Ahern 		struct net_device *dev = fib6_info_nh_dev(rt);
4192dcd1f572SDavid Ahern 		struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL;
4193dcd1f572SDavid Ahern 
419493c2fb25SDavid Ahern 		if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
4195e873e4b9SWei Wang 		    (!idev || idev->cnf.accept_ra != 2) &&
4196e873e4b9SWei Wang 		    fib6_info_hold_safe(rt)) {
419766f5d6ceSWei Wang 			rcu_read_unlock();
4198afb1d4b5SDavid Ahern 			ip6_del_rt(net, rt);
41991da177e4SLinus Torvalds 			goto restart;
42001da177e4SLinus Torvalds 		}
42011da177e4SLinus Torvalds 	}
420266f5d6ceSWei Wang 	rcu_read_unlock();
4203830218c1SDavid Ahern 
4204830218c1SDavid Ahern 	table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
4205830218c1SDavid Ahern }
4206830218c1SDavid Ahern 
4207830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net)
4208830218c1SDavid Ahern {
4209830218c1SDavid Ahern 	struct fib6_table *table;
4210830218c1SDavid Ahern 	struct hlist_head *head;
4211830218c1SDavid Ahern 	unsigned int h;
4212830218c1SDavid Ahern 
4213830218c1SDavid Ahern 	rcu_read_lock();
4214830218c1SDavid Ahern 
4215830218c1SDavid Ahern 	for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
4216830218c1SDavid Ahern 		head = &net->ipv6.fib_table_hash[h];
4217830218c1SDavid Ahern 		hlist_for_each_entry_rcu(table, head, tb6_hlist) {
4218830218c1SDavid Ahern 			if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
4219afb1d4b5SDavid Ahern 				__rt6_purge_dflt_routers(net, table);
4220830218c1SDavid Ahern 		}
4221830218c1SDavid Ahern 	}
4222830218c1SDavid Ahern 
4223830218c1SDavid Ahern 	rcu_read_unlock();
42241da177e4SLinus Torvalds }
42251da177e4SLinus Torvalds 
42265578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net,
42275578689aSDaniel Lezcano 				 struct in6_rtmsg *rtmsg,
422886872cb5SThomas Graf 				 struct fib6_config *cfg)
422986872cb5SThomas Graf {
42308823a3acSMaciej Żenczykowski 	*cfg = (struct fib6_config){
42318823a3acSMaciej Żenczykowski 		.fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
42328823a3acSMaciej Żenczykowski 			 : RT6_TABLE_MAIN,
42338823a3acSMaciej Żenczykowski 		.fc_ifindex = rtmsg->rtmsg_ifindex,
423467f69513SDavid Ahern 		.fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER,
42358823a3acSMaciej Żenczykowski 		.fc_expires = rtmsg->rtmsg_info,
42368823a3acSMaciej Żenczykowski 		.fc_dst_len = rtmsg->rtmsg_dst_len,
42378823a3acSMaciej Żenczykowski 		.fc_src_len = rtmsg->rtmsg_src_len,
42388823a3acSMaciej Żenczykowski 		.fc_flags = rtmsg->rtmsg_flags,
42398823a3acSMaciej Żenczykowski 		.fc_type = rtmsg->rtmsg_type,
424086872cb5SThomas Graf 
42418823a3acSMaciej Żenczykowski 		.fc_nlinfo.nl_net = net,
424286872cb5SThomas Graf 
42438823a3acSMaciej Żenczykowski 		.fc_dst = rtmsg->rtmsg_dst,
42448823a3acSMaciej Żenczykowski 		.fc_src = rtmsg->rtmsg_src,
42458823a3acSMaciej Żenczykowski 		.fc_gateway = rtmsg->rtmsg_gateway,
42468823a3acSMaciej Żenczykowski 	};
424786872cb5SThomas Graf }
424886872cb5SThomas Graf 
42495578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
42501da177e4SLinus Torvalds {
425186872cb5SThomas Graf 	struct fib6_config cfg;
42521da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
42531da177e4SLinus Torvalds 	int err;
42541da177e4SLinus Torvalds 
42551da177e4SLinus Torvalds 	switch (cmd) {
42561da177e4SLinus Torvalds 	case SIOCADDRT:		/* Add a route */
42571da177e4SLinus Torvalds 	case SIOCDELRT:		/* Delete a route */
4258af31f412SEric W. Biederman 		if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
42591da177e4SLinus Torvalds 			return -EPERM;
42601da177e4SLinus Torvalds 		err = copy_from_user(&rtmsg, arg,
42611da177e4SLinus Torvalds 				     sizeof(struct in6_rtmsg));
42621da177e4SLinus Torvalds 		if (err)
42631da177e4SLinus Torvalds 			return -EFAULT;
42641da177e4SLinus Torvalds 
42655578689aSDaniel Lezcano 		rtmsg_to_fib6_config(net, &rtmsg, &cfg);
426686872cb5SThomas Graf 
42671da177e4SLinus Torvalds 		rtnl_lock();
42681da177e4SLinus Torvalds 		switch (cmd) {
42691da177e4SLinus Torvalds 		case SIOCADDRT:
4270acb54e3cSDavid Ahern 			err = ip6_route_add(&cfg, GFP_KERNEL, NULL);
42711da177e4SLinus Torvalds 			break;
42721da177e4SLinus Torvalds 		case SIOCDELRT:
4273333c4301SDavid Ahern 			err = ip6_route_del(&cfg, NULL);
42741da177e4SLinus Torvalds 			break;
42751da177e4SLinus Torvalds 		default:
42761da177e4SLinus Torvalds 			err = -EINVAL;
42771da177e4SLinus Torvalds 		}
42781da177e4SLinus Torvalds 		rtnl_unlock();
42791da177e4SLinus Torvalds 
42801da177e4SLinus Torvalds 		return err;
42813ff50b79SStephen Hemminger 	}
42821da177e4SLinus Torvalds 
42831da177e4SLinus Torvalds 	return -EINVAL;
42841da177e4SLinus Torvalds }
42851da177e4SLinus Torvalds 
42861da177e4SLinus Torvalds /*
42871da177e4SLinus Torvalds  *	Drop the packet on the floor
42881da177e4SLinus Torvalds  */
42891da177e4SLinus Torvalds 
4290d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
42911da177e4SLinus Torvalds {
4292adf30907SEric Dumazet 	struct dst_entry *dst = skb_dst(skb);
42931d3fd8a1SStephen Suryaputra 	struct net *net = dev_net(dst->dev);
42941d3fd8a1SStephen Suryaputra 	struct inet6_dev *idev;
42951d3fd8a1SStephen Suryaputra 	int type;
42961d3fd8a1SStephen Suryaputra 
42971d3fd8a1SStephen Suryaputra 	if (netif_is_l3_master(skb->dev) &&
42981d3fd8a1SStephen Suryaputra 	    dst->dev == net->loopback_dev)
42991d3fd8a1SStephen Suryaputra 		idev = __in6_dev_get_safely(dev_get_by_index_rcu(net, IP6CB(skb)->iif));
43001d3fd8a1SStephen Suryaputra 	else
43011d3fd8a1SStephen Suryaputra 		idev = ip6_dst_idev(dst);
43021d3fd8a1SStephen Suryaputra 
4303612f09e8SYOSHIFUJI Hideaki 	switch (ipstats_mib_noroutes) {
4304612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_INNOROUTES:
43050660e03fSArnaldo Carvalho de Melo 		type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
430645bb0060SUlrich Weber 		if (type == IPV6_ADDR_ANY) {
43071d3fd8a1SStephen Suryaputra 			IP6_INC_STATS(net, idev, IPSTATS_MIB_INADDRERRORS);
4308612f09e8SYOSHIFUJI Hideaki 			break;
4309612f09e8SYOSHIFUJI Hideaki 		}
4310612f09e8SYOSHIFUJI Hideaki 		/* FALLTHROUGH */
4311612f09e8SYOSHIFUJI Hideaki 	case IPSTATS_MIB_OUTNOROUTES:
43121d3fd8a1SStephen Suryaputra 		IP6_INC_STATS(net, idev, ipstats_mib_noroutes);
4313612f09e8SYOSHIFUJI Hideaki 		break;
4314612f09e8SYOSHIFUJI Hideaki 	}
43151d3fd8a1SStephen Suryaputra 
43161d3fd8a1SStephen Suryaputra 	/* Start over by dropping the dst for l3mdev case */
43171d3fd8a1SStephen Suryaputra 	if (netif_is_l3_master(skb->dev))
43181d3fd8a1SStephen Suryaputra 		skb_dst_drop(skb);
43191d3fd8a1SStephen Suryaputra 
43203ffe533cSAlexey Dobriyan 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
43211da177e4SLinus Torvalds 	kfree_skb(skb);
43221da177e4SLinus Torvalds 	return 0;
43231da177e4SLinus Torvalds }
43241da177e4SLinus Torvalds 
43259ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb)
43269ce8ade0SThomas Graf {
4327612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
43289ce8ade0SThomas Graf }
43299ce8ade0SThomas Graf 
4330ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
43311da177e4SLinus Torvalds {
4332adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
4333612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
43341da177e4SLinus Torvalds }
43351da177e4SLinus Torvalds 
43369ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb)
43379ce8ade0SThomas Graf {
4338612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
43399ce8ade0SThomas Graf }
43409ce8ade0SThomas Graf 
4341ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
43429ce8ade0SThomas Graf {
4343adf30907SEric Dumazet 	skb->dev = skb_dst(skb)->dev;
4344612f09e8SYOSHIFUJI Hideaki 	return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
43459ce8ade0SThomas Graf }
43469ce8ade0SThomas Graf 
43471da177e4SLinus Torvalds /*
43481da177e4SLinus Torvalds  *	Allocate a dst for local (unicast / anycast) address.
43491da177e4SLinus Torvalds  */
43501da177e4SLinus Torvalds 
4351360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net,
4352afb1d4b5SDavid Ahern 				     struct inet6_dev *idev,
43531da177e4SLinus Torvalds 				     const struct in6_addr *addr,
4354acb54e3cSDavid Ahern 				     bool anycast, gfp_t gfp_flags)
43551da177e4SLinus Torvalds {
4356c7a1ce39SDavid Ahern 	struct fib6_config cfg = {
4357c7a1ce39SDavid Ahern 		.fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL,
4358c7a1ce39SDavid Ahern 		.fc_ifindex = idev->dev->ifindex,
4359c7a1ce39SDavid Ahern 		.fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP,
4360c7a1ce39SDavid Ahern 		.fc_dst = *addr,
4361c7a1ce39SDavid Ahern 		.fc_dst_len = 128,
4362c7a1ce39SDavid Ahern 		.fc_protocol = RTPROT_KERNEL,
4363c7a1ce39SDavid Ahern 		.fc_nlinfo.nl_net = net,
4364c7a1ce39SDavid Ahern 		.fc_ignore_dev_down = true,
4365c7a1ce39SDavid Ahern 	};
43665f02ce24SDavid Ahern 
4367e8478e80SDavid Ahern 	if (anycast) {
4368c7a1ce39SDavid Ahern 		cfg.fc_type = RTN_ANYCAST;
4369c7a1ce39SDavid Ahern 		cfg.fc_flags |= RTF_ANYCAST;
4370e8478e80SDavid Ahern 	} else {
4371c7a1ce39SDavid Ahern 		cfg.fc_type = RTN_LOCAL;
4372c7a1ce39SDavid Ahern 		cfg.fc_flags |= RTF_LOCAL;
4373e8478e80SDavid Ahern 	}
43741da177e4SLinus Torvalds 
4375c7a1ce39SDavid Ahern 	return ip6_route_info_create(&cfg, gfp_flags, NULL);
43761da177e4SLinus Torvalds }
43771da177e4SLinus Torvalds 
4378c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */
4379c3968a85SDaniel Walter struct arg_dev_net_ip {
4380c3968a85SDaniel Walter 	struct net_device *dev;
4381c3968a85SDaniel Walter 	struct net *net;
4382c3968a85SDaniel Walter 	struct in6_addr *addr;
4383c3968a85SDaniel Walter };
4384c3968a85SDaniel Walter 
43858d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg)
4386c3968a85SDaniel Walter {
4387c3968a85SDaniel Walter 	struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
4388c3968a85SDaniel Walter 	struct net *net = ((struct arg_dev_net_ip *)arg)->net;
4389c3968a85SDaniel Walter 	struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
4390c3968a85SDaniel Walter 
4391f88d8ea6SDavid Ahern 	if (!rt->nh &&
4392f88d8ea6SDavid Ahern 	    ((void *)rt->fib6_nh->fib_nh_dev == dev || !dev) &&
4393421842edSDavid Ahern 	    rt != net->ipv6.fib6_null_entry &&
439493c2fb25SDavid Ahern 	    ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) {
439560006a48SWei Wang 		spin_lock_bh(&rt6_exception_lock);
4396c3968a85SDaniel Walter 		/* remove prefsrc entry */
439793c2fb25SDavid Ahern 		rt->fib6_prefsrc.plen = 0;
439860006a48SWei Wang 		spin_unlock_bh(&rt6_exception_lock);
4399c3968a85SDaniel Walter 	}
4400c3968a85SDaniel Walter 	return 0;
4401c3968a85SDaniel Walter }
4402c3968a85SDaniel Walter 
4403c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
4404c3968a85SDaniel Walter {
4405c3968a85SDaniel Walter 	struct net *net = dev_net(ifp->idev->dev);
4406c3968a85SDaniel Walter 	struct arg_dev_net_ip adni = {
4407c3968a85SDaniel Walter 		.dev = ifp->idev->dev,
4408c3968a85SDaniel Walter 		.net = net,
4409c3968a85SDaniel Walter 		.addr = &ifp->addr,
4410c3968a85SDaniel Walter 	};
44110c3584d5SLi RongQing 	fib6_clean_all(net, fib6_remove_prefsrc, &adni);
4412c3968a85SDaniel Walter }
4413c3968a85SDaniel Walter 
44142b2450caSDavid Ahern #define RTF_RA_ROUTER		(RTF_ADDRCONF | RTF_DEFAULT)
4415be7a010dSDuan Jiong 
4416be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */
44178d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg)
4418be7a010dSDuan Jiong {
4419be7a010dSDuan Jiong 	struct in6_addr *gateway = (struct in6_addr *)arg;
4420f88d8ea6SDavid Ahern 	struct fib6_nh *nh;
4421be7a010dSDuan Jiong 
4422f88d8ea6SDavid Ahern 	/* RA routes do not use nexthops */
4423f88d8ea6SDavid Ahern 	if (rt->nh)
4424f88d8ea6SDavid Ahern 		return 0;
4425f88d8ea6SDavid Ahern 
4426f88d8ea6SDavid Ahern 	nh = rt->fib6_nh;
442793c2fb25SDavid Ahern 	if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
4428cc5c073aSDavid Ahern 	    nh->fib_nh_gw_family && ipv6_addr_equal(gateway, &nh->fib_nh_gw6))
4429be7a010dSDuan Jiong 		return -1;
4430b16cb459SWei Wang 
4431b16cb459SWei Wang 	/* Further clean up cached routes in exception table.
4432b16cb459SWei Wang 	 * This is needed because cached route may have a different
4433b16cb459SWei Wang 	 * gateway than its 'parent' in the case of an ip redirect.
4434b16cb459SWei Wang 	 */
4435cc5c073aSDavid Ahern 	fib6_nh_exceptions_clean_tohost(nh, gateway);
4436b16cb459SWei Wang 
4437be7a010dSDuan Jiong 	return 0;
4438be7a010dSDuan Jiong }
4439be7a010dSDuan Jiong 
4440be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
4441be7a010dSDuan Jiong {
4442be7a010dSDuan Jiong 	fib6_clean_all(net, fib6_clean_tohost, gateway);
4443be7a010dSDuan Jiong }
4444be7a010dSDuan Jiong 
44452127d95aSIdo Schimmel struct arg_netdev_event {
44462127d95aSIdo Schimmel 	const struct net_device *dev;
44474c981e28SIdo Schimmel 	union {
4448ecc5663cSDavid Ahern 		unsigned char nh_flags;
44494c981e28SIdo Schimmel 		unsigned long event;
44504c981e28SIdo Schimmel 	};
44512127d95aSIdo Schimmel };
44522127d95aSIdo Schimmel 
44538d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt)
4454d7dedee1SIdo Schimmel {
44558d1c802bSDavid Ahern 	struct fib6_info *iter;
4456d7dedee1SIdo Schimmel 	struct fib6_node *fn;
4457d7dedee1SIdo Schimmel 
445893c2fb25SDavid Ahern 	fn = rcu_dereference_protected(rt->fib6_node,
445993c2fb25SDavid Ahern 			lockdep_is_held(&rt->fib6_table->tb6_lock));
4460d7dedee1SIdo Schimmel 	iter = rcu_dereference_protected(fn->leaf,
446193c2fb25SDavid Ahern 			lockdep_is_held(&rt->fib6_table->tb6_lock));
4462d7dedee1SIdo Schimmel 	while (iter) {
446393c2fb25SDavid Ahern 		if (iter->fib6_metric == rt->fib6_metric &&
446433bd5ac5SDavid Ahern 		    rt6_qualify_for_ecmp(iter))
4465d7dedee1SIdo Schimmel 			return iter;
44668fb11a9aSDavid Ahern 		iter = rcu_dereference_protected(iter->fib6_next,
446793c2fb25SDavid Ahern 				lockdep_is_held(&rt->fib6_table->tb6_lock));
4468d7dedee1SIdo Schimmel 	}
4469d7dedee1SIdo Schimmel 
4470d7dedee1SIdo Schimmel 	return NULL;
4471d7dedee1SIdo Schimmel }
4472d7dedee1SIdo Schimmel 
4473f88d8ea6SDavid Ahern /* only called for fib entries with builtin fib6_nh */
44748d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt)
4475d7dedee1SIdo Schimmel {
44761cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_flags & RTNH_F_DEAD ||
44771cf844c7SDavid Ahern 	    (rt->fib6_nh->fib_nh_flags & RTNH_F_LINKDOWN &&
44781cf844c7SDavid Ahern 	     ip6_ignore_linkdown(rt->fib6_nh->fib_nh_dev)))
4479d7dedee1SIdo Schimmel 		return true;
4480d7dedee1SIdo Schimmel 
4481d7dedee1SIdo Schimmel 	return false;
4482d7dedee1SIdo Schimmel }
4483d7dedee1SIdo Schimmel 
44848d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt)
4485d7dedee1SIdo Schimmel {
44868d1c802bSDavid Ahern 	struct fib6_info *iter;
4487d7dedee1SIdo Schimmel 	int total = 0;
4488d7dedee1SIdo Schimmel 
4489d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt))
44901cf844c7SDavid Ahern 		total += rt->fib6_nh->fib_nh_weight;
4491d7dedee1SIdo Schimmel 
449293c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) {
4493d7dedee1SIdo Schimmel 		if (!rt6_is_dead(iter))
44941cf844c7SDavid Ahern 			total += iter->fib6_nh->fib_nh_weight;
4495d7dedee1SIdo Schimmel 	}
4496d7dedee1SIdo Schimmel 
4497d7dedee1SIdo Schimmel 	return total;
4498d7dedee1SIdo Schimmel }
4499d7dedee1SIdo Schimmel 
45008d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total)
4501d7dedee1SIdo Schimmel {
4502d7dedee1SIdo Schimmel 	int upper_bound = -1;
4503d7dedee1SIdo Schimmel 
4504d7dedee1SIdo Schimmel 	if (!rt6_is_dead(rt)) {
45051cf844c7SDavid Ahern 		*weight += rt->fib6_nh->fib_nh_weight;
4506d7dedee1SIdo Schimmel 		upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
4507d7dedee1SIdo Schimmel 						    total) - 1;
4508d7dedee1SIdo Schimmel 	}
45091cf844c7SDavid Ahern 	atomic_set(&rt->fib6_nh->fib_nh_upper_bound, upper_bound);
4510d7dedee1SIdo Schimmel }
4511d7dedee1SIdo Schimmel 
45128d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total)
4513d7dedee1SIdo Schimmel {
45148d1c802bSDavid Ahern 	struct fib6_info *iter;
4515d7dedee1SIdo Schimmel 	int weight = 0;
4516d7dedee1SIdo Schimmel 
4517d7dedee1SIdo Schimmel 	rt6_upper_bound_set(rt, &weight, total);
4518d7dedee1SIdo Schimmel 
451993c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
4520d7dedee1SIdo Schimmel 		rt6_upper_bound_set(iter, &weight, total);
4521d7dedee1SIdo Schimmel }
4522d7dedee1SIdo Schimmel 
45238d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt)
4524d7dedee1SIdo Schimmel {
45258d1c802bSDavid Ahern 	struct fib6_info *first;
4526d7dedee1SIdo Schimmel 	int total;
4527d7dedee1SIdo Schimmel 
4528d7dedee1SIdo Schimmel 	/* In case the entire multipath route was marked for flushing,
4529d7dedee1SIdo Schimmel 	 * then there is no need to rebalance upon the removal of every
4530d7dedee1SIdo Schimmel 	 * sibling route.
4531d7dedee1SIdo Schimmel 	 */
453293c2fb25SDavid Ahern 	if (!rt->fib6_nsiblings || rt->should_flush)
4533d7dedee1SIdo Schimmel 		return;
4534d7dedee1SIdo Schimmel 
4535d7dedee1SIdo Schimmel 	/* During lookup routes are evaluated in order, so we need to
4536d7dedee1SIdo Schimmel 	 * make sure upper bounds are assigned from the first sibling
4537d7dedee1SIdo Schimmel 	 * onwards.
4538d7dedee1SIdo Schimmel 	 */
4539d7dedee1SIdo Schimmel 	first = rt6_multipath_first_sibling(rt);
4540d7dedee1SIdo Schimmel 	if (WARN_ON_ONCE(!first))
4541d7dedee1SIdo Schimmel 		return;
4542d7dedee1SIdo Schimmel 
4543d7dedee1SIdo Schimmel 	total = rt6_multipath_total_weight(first);
4544d7dedee1SIdo Schimmel 	rt6_multipath_upper_bound_set(first, total);
4545d7dedee1SIdo Schimmel }
4546d7dedee1SIdo Schimmel 
45478d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg)
45482127d95aSIdo Schimmel {
45492127d95aSIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
45507aef6859SDavid Ahern 	struct net *net = dev_net(arg->dev);
45512127d95aSIdo Schimmel 
4552f88d8ea6SDavid Ahern 	if (rt != net->ipv6.fib6_null_entry && !rt->nh &&
45531cf844c7SDavid Ahern 	    rt->fib6_nh->fib_nh_dev == arg->dev) {
45541cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags &= ~arg->nh_flags;
45557aef6859SDavid Ahern 		fib6_update_sernum_upto_root(net, rt);
4556d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
45571de178edSIdo Schimmel 	}
45582127d95aSIdo Schimmel 
45592127d95aSIdo Schimmel 	return 0;
45602127d95aSIdo Schimmel }
45612127d95aSIdo Schimmel 
4562ecc5663cSDavid Ahern void rt6_sync_up(struct net_device *dev, unsigned char nh_flags)
45632127d95aSIdo Schimmel {
45642127d95aSIdo Schimmel 	struct arg_netdev_event arg = {
45652127d95aSIdo Schimmel 		.dev = dev,
45666802f3adSIdo Schimmel 		{
45672127d95aSIdo Schimmel 			.nh_flags = nh_flags,
45686802f3adSIdo Schimmel 		},
45692127d95aSIdo Schimmel 	};
45702127d95aSIdo Schimmel 
45712127d95aSIdo Schimmel 	if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
45722127d95aSIdo Schimmel 		arg.nh_flags |= RTNH_F_LINKDOWN;
45732127d95aSIdo Schimmel 
45742127d95aSIdo Schimmel 	fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
45752127d95aSIdo Schimmel }
45762127d95aSIdo Schimmel 
4577f88d8ea6SDavid Ahern /* only called for fib entries with inline fib6_nh */
45788d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt,
45791de178edSIdo Schimmel 				   const struct net_device *dev)
45801de178edSIdo Schimmel {
45818d1c802bSDavid Ahern 	struct fib6_info *iter;
45821de178edSIdo Schimmel 
45831cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == dev)
45841de178edSIdo Schimmel 		return true;
458593c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
45861cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == dev)
45871de178edSIdo Schimmel 			return true;
45881de178edSIdo Schimmel 
45891de178edSIdo Schimmel 	return false;
45901de178edSIdo Schimmel }
45911de178edSIdo Schimmel 
45928d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt)
45931de178edSIdo Schimmel {
45948d1c802bSDavid Ahern 	struct fib6_info *iter;
45951de178edSIdo Schimmel 
45961de178edSIdo Schimmel 	rt->should_flush = 1;
459793c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
45981de178edSIdo Schimmel 		iter->should_flush = 1;
45991de178edSIdo Schimmel }
46001de178edSIdo Schimmel 
46018d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt,
46021de178edSIdo Schimmel 					     const struct net_device *down_dev)
46031de178edSIdo Schimmel {
46048d1c802bSDavid Ahern 	struct fib6_info *iter;
46051de178edSIdo Schimmel 	unsigned int dead = 0;
46061de178edSIdo Schimmel 
46071cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == down_dev ||
46081cf844c7SDavid Ahern 	    rt->fib6_nh->fib_nh_flags & RTNH_F_DEAD)
46091de178edSIdo Schimmel 		dead++;
461093c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
46111cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == down_dev ||
46121cf844c7SDavid Ahern 		    iter->fib6_nh->fib_nh_flags & RTNH_F_DEAD)
46131de178edSIdo Schimmel 			dead++;
46141de178edSIdo Schimmel 
46151de178edSIdo Schimmel 	return dead;
46161de178edSIdo Schimmel }
46171de178edSIdo Schimmel 
46188d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt,
46191de178edSIdo Schimmel 				       const struct net_device *dev,
4620ecc5663cSDavid Ahern 				       unsigned char nh_flags)
46211de178edSIdo Schimmel {
46228d1c802bSDavid Ahern 	struct fib6_info *iter;
46231de178edSIdo Schimmel 
46241cf844c7SDavid Ahern 	if (rt->fib6_nh->fib_nh_dev == dev)
46251cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags |= nh_flags;
462693c2fb25SDavid Ahern 	list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
46271cf844c7SDavid Ahern 		if (iter->fib6_nh->fib_nh_dev == dev)
46281cf844c7SDavid Ahern 			iter->fib6_nh->fib_nh_flags |= nh_flags;
46291de178edSIdo Schimmel }
46301de178edSIdo Schimmel 
4631a1a22c12SDavid Ahern /* called with write lock held for table with rt */
46328d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg)
46331da177e4SLinus Torvalds {
46344c981e28SIdo Schimmel 	const struct arg_netdev_event *arg = p_arg;
46354c981e28SIdo Schimmel 	const struct net_device *dev = arg->dev;
46367aef6859SDavid Ahern 	struct net *net = dev_net(dev);
46378ed67789SDaniel Lezcano 
4638f88d8ea6SDavid Ahern 	if (rt == net->ipv6.fib6_null_entry || rt->nh)
463927c6fa73SIdo Schimmel 		return 0;
464027c6fa73SIdo Schimmel 
464127c6fa73SIdo Schimmel 	switch (arg->event) {
464227c6fa73SIdo Schimmel 	case NETDEV_UNREGISTER:
46431cf844c7SDavid Ahern 		return rt->fib6_nh->fib_nh_dev == dev ? -1 : 0;
464427c6fa73SIdo Schimmel 	case NETDEV_DOWN:
46451de178edSIdo Schimmel 		if (rt->should_flush)
464627c6fa73SIdo Schimmel 			return -1;
464793c2fb25SDavid Ahern 		if (!rt->fib6_nsiblings)
46481cf844c7SDavid Ahern 			return rt->fib6_nh->fib_nh_dev == dev ? -1 : 0;
46491de178edSIdo Schimmel 		if (rt6_multipath_uses_dev(rt, dev)) {
46501de178edSIdo Schimmel 			unsigned int count;
46511de178edSIdo Schimmel 
46521de178edSIdo Schimmel 			count = rt6_multipath_dead_count(rt, dev);
465393c2fb25SDavid Ahern 			if (rt->fib6_nsiblings + 1 == count) {
46541de178edSIdo Schimmel 				rt6_multipath_flush(rt);
46551de178edSIdo Schimmel 				return -1;
46561de178edSIdo Schimmel 			}
46571de178edSIdo Schimmel 			rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
46581de178edSIdo Schimmel 						   RTNH_F_LINKDOWN);
46597aef6859SDavid Ahern 			fib6_update_sernum(net, rt);
4660d7dedee1SIdo Schimmel 			rt6_multipath_rebalance(rt);
46611de178edSIdo Schimmel 		}
46621de178edSIdo Schimmel 		return -2;
466327c6fa73SIdo Schimmel 	case NETDEV_CHANGE:
46641cf844c7SDavid Ahern 		if (rt->fib6_nh->fib_nh_dev != dev ||
466593c2fb25SDavid Ahern 		    rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST))
466627c6fa73SIdo Schimmel 			break;
46671cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN;
4668d7dedee1SIdo Schimmel 		rt6_multipath_rebalance(rt);
466927c6fa73SIdo Schimmel 		break;
46702b241361SIdo Schimmel 	}
4671c159d30cSDavid S. Miller 
46721da177e4SLinus Torvalds 	return 0;
46731da177e4SLinus Torvalds }
46741da177e4SLinus Torvalds 
467527c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
46761da177e4SLinus Torvalds {
46774c981e28SIdo Schimmel 	struct arg_netdev_event arg = {
46788ed67789SDaniel Lezcano 		.dev = dev,
46796802f3adSIdo Schimmel 		{
46804c981e28SIdo Schimmel 			.event = event,
46816802f3adSIdo Schimmel 		},
46828ed67789SDaniel Lezcano 	};
46837c6bb7d2SDavid Ahern 	struct net *net = dev_net(dev);
46848ed67789SDaniel Lezcano 
46857c6bb7d2SDavid Ahern 	if (net->ipv6.sysctl.skip_notify_on_dev_down)
46867c6bb7d2SDavid Ahern 		fib6_clean_all_skip_notify(net, fib6_ifdown, &arg);
46877c6bb7d2SDavid Ahern 	else
46887c6bb7d2SDavid Ahern 		fib6_clean_all(net, fib6_ifdown, &arg);
46894c981e28SIdo Schimmel }
46904c981e28SIdo Schimmel 
46914c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event)
46924c981e28SIdo Schimmel {
46934c981e28SIdo Schimmel 	rt6_sync_down_dev(dev, event);
46944c981e28SIdo Schimmel 	rt6_uncached_list_flush_dev(dev_net(dev), dev);
46954c981e28SIdo Schimmel 	neigh_ifdown(&nd_tbl, dev);
46961da177e4SLinus Torvalds }
46971da177e4SLinus Torvalds 
469895c96174SEric Dumazet struct rt6_mtu_change_arg {
46991da177e4SLinus Torvalds 	struct net_device *dev;
470095c96174SEric Dumazet 	unsigned int mtu;
4701c0b220cfSDavid Ahern 	struct fib6_info *f6i;
47021da177e4SLinus Torvalds };
47031da177e4SLinus Torvalds 
4704cc5c073aSDavid Ahern static int fib6_nh_mtu_change(struct fib6_nh *nh, void *_arg)
4705c0b220cfSDavid Ahern {
4706c0b220cfSDavid Ahern 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *)_arg;
4707cc5c073aSDavid Ahern 	struct fib6_info *f6i = arg->f6i;
4708c0b220cfSDavid Ahern 
4709c0b220cfSDavid Ahern 	/* For administrative MTU increase, there is no way to discover
4710c0b220cfSDavid Ahern 	 * IPv6 PMTU increase, so PMTU increase should be updated here.
4711c0b220cfSDavid Ahern 	 * Since RFC 1981 doesn't include administrative MTU increase
4712c0b220cfSDavid Ahern 	 * update PMTU increase is a MUST. (i.e. jumbo frame)
4713c0b220cfSDavid Ahern 	 */
4714c0b220cfSDavid Ahern 	if (nh->fib_nh_dev == arg->dev) {
4715c0b220cfSDavid Ahern 		struct inet6_dev *idev = __in6_dev_get(arg->dev);
4716c0b220cfSDavid Ahern 		u32 mtu = f6i->fib6_pmtu;
4717c0b220cfSDavid Ahern 
4718c0b220cfSDavid Ahern 		if (mtu >= arg->mtu ||
4719c0b220cfSDavid Ahern 		    (mtu < arg->mtu && mtu == idev->cnf.mtu6))
4720c0b220cfSDavid Ahern 			fib6_metric_set(f6i, RTAX_MTU, arg->mtu);
4721c0b220cfSDavid Ahern 
4722c0b220cfSDavid Ahern 		spin_lock_bh(&rt6_exception_lock);
4723cc5c073aSDavid Ahern 		rt6_exceptions_update_pmtu(idev, nh, arg->mtu);
4724c0b220cfSDavid Ahern 		spin_unlock_bh(&rt6_exception_lock);
4725c0b220cfSDavid Ahern 	}
4726c0b220cfSDavid Ahern 
4727c0b220cfSDavid Ahern 	return 0;
4728c0b220cfSDavid Ahern }
4729c0b220cfSDavid Ahern 
4730c0b220cfSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *f6i, void *p_arg)
47311da177e4SLinus Torvalds {
47321da177e4SLinus Torvalds 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
47331da177e4SLinus Torvalds 	struct inet6_dev *idev;
47341da177e4SLinus Torvalds 
47351da177e4SLinus Torvalds 	/* In IPv6 pmtu discovery is not optional,
47361da177e4SLinus Torvalds 	   so that RTAX_MTU lock cannot disable it.
47371da177e4SLinus Torvalds 	   We still use this lock to block changes
47381da177e4SLinus Torvalds 	   caused by addrconf/ndisc.
47391da177e4SLinus Torvalds 	*/
47401da177e4SLinus Torvalds 
47411da177e4SLinus Torvalds 	idev = __in6_dev_get(arg->dev);
474238308473SDavid S. Miller 	if (!idev)
47431da177e4SLinus Torvalds 		return 0;
47441da177e4SLinus Torvalds 
4745c0b220cfSDavid Ahern 	if (fib6_metric_locked(f6i, RTAX_MTU))
47461da177e4SLinus Torvalds 		return 0;
4747c0b220cfSDavid Ahern 
4748c0b220cfSDavid Ahern 	arg->f6i = f6i;
47492d44234bSDavid Ahern 	if (f6i->nh) {
47502d44234bSDavid Ahern 		/* fib6_nh_mtu_change only returns 0, so this is safe */
47512d44234bSDavid Ahern 		return nexthop_for_each_fib6_nh(f6i->nh, fib6_nh_mtu_change,
47522d44234bSDavid Ahern 						arg);
47532d44234bSDavid Ahern 	}
47542d44234bSDavid Ahern 
47551cf844c7SDavid Ahern 	return fib6_nh_mtu_change(f6i->fib6_nh, arg);
47561da177e4SLinus Torvalds }
47571da177e4SLinus Torvalds 
475895c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
47591da177e4SLinus Torvalds {
4760c71099acSThomas Graf 	struct rt6_mtu_change_arg arg = {
4761c71099acSThomas Graf 		.dev = dev,
4762c71099acSThomas Graf 		.mtu = mtu,
4763c71099acSThomas Graf 	};
47641da177e4SLinus Torvalds 
47650c3584d5SLi RongQing 	fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
47661da177e4SLinus Torvalds }
47671da177e4SLinus Torvalds 
4768ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
476975425657SDavid Ahern 	[RTA_UNSPEC]		= { .strict_start_type = RTA_DPORT + 1 },
47705176f91eSThomas Graf 	[RTA_GATEWAY]           = { .len = sizeof(struct in6_addr) },
4771aa8f8778SEric Dumazet 	[RTA_PREFSRC]		= { .len = sizeof(struct in6_addr) },
477286872cb5SThomas Graf 	[RTA_OIF]               = { .type = NLA_U32 },
4773ab364a6fSThomas Graf 	[RTA_IIF]		= { .type = NLA_U32 },
477486872cb5SThomas Graf 	[RTA_PRIORITY]          = { .type = NLA_U32 },
477586872cb5SThomas Graf 	[RTA_METRICS]           = { .type = NLA_NESTED },
477651ebd318SNicolas Dichtel 	[RTA_MULTIPATH]		= { .len = sizeof(struct rtnexthop) },
4777c78ba6d6SLubomir Rintel 	[RTA_PREF]              = { .type = NLA_U8 },
477819e42e45SRoopa Prabhu 	[RTA_ENCAP_TYPE]	= { .type = NLA_U16 },
477919e42e45SRoopa Prabhu 	[RTA_ENCAP]		= { .type = NLA_NESTED },
478032bc201eSXin Long 	[RTA_EXPIRES]		= { .type = NLA_U32 },
4781622ec2c9SLorenzo Colitti 	[RTA_UID]		= { .type = NLA_U32 },
47823b45a410SLiping Zhang 	[RTA_MARK]		= { .type = NLA_U32 },
4783aa8f8778SEric Dumazet 	[RTA_TABLE]		= { .type = NLA_U32 },
4784eacb9384SRoopa Prabhu 	[RTA_IP_PROTO]		= { .type = NLA_U8 },
4785eacb9384SRoopa Prabhu 	[RTA_SPORT]		= { .type = NLA_U16 },
4786eacb9384SRoopa Prabhu 	[RTA_DPORT]		= { .type = NLA_U16 },
47875b98324eSDavid Ahern 	[RTA_NH_ID]		= { .type = NLA_U32 },
478886872cb5SThomas Graf };
478986872cb5SThomas Graf 
479086872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
4791333c4301SDavid Ahern 			      struct fib6_config *cfg,
4792333c4301SDavid Ahern 			      struct netlink_ext_ack *extack)
47931da177e4SLinus Torvalds {
479486872cb5SThomas Graf 	struct rtmsg *rtm;
479586872cb5SThomas Graf 	struct nlattr *tb[RTA_MAX+1];
4796c78ba6d6SLubomir Rintel 	unsigned int pref;
479786872cb5SThomas Graf 	int err;
47981da177e4SLinus Torvalds 
47998cb08174SJohannes Berg 	err = nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX,
48008cb08174SJohannes Berg 				     rtm_ipv6_policy, extack);
480186872cb5SThomas Graf 	if (err < 0)
480286872cb5SThomas Graf 		goto errout;
48031da177e4SLinus Torvalds 
480486872cb5SThomas Graf 	err = -EINVAL;
480586872cb5SThomas Graf 	rtm = nlmsg_data(nlh);
480686872cb5SThomas Graf 
480784db8407SMaciej Żenczykowski 	*cfg = (struct fib6_config){
480884db8407SMaciej Żenczykowski 		.fc_table = rtm->rtm_table,
480984db8407SMaciej Żenczykowski 		.fc_dst_len = rtm->rtm_dst_len,
481084db8407SMaciej Żenczykowski 		.fc_src_len = rtm->rtm_src_len,
481184db8407SMaciej Żenczykowski 		.fc_flags = RTF_UP,
481284db8407SMaciej Żenczykowski 		.fc_protocol = rtm->rtm_protocol,
481384db8407SMaciej Żenczykowski 		.fc_type = rtm->rtm_type,
481484db8407SMaciej Żenczykowski 
481584db8407SMaciej Żenczykowski 		.fc_nlinfo.portid = NETLINK_CB(skb).portid,
481684db8407SMaciej Żenczykowski 		.fc_nlinfo.nlh = nlh,
481784db8407SMaciej Żenczykowski 		.fc_nlinfo.nl_net = sock_net(skb->sk),
481884db8407SMaciej Żenczykowski 	};
481986872cb5SThomas Graf 
4820ef2c7d7bSNicolas Dichtel 	if (rtm->rtm_type == RTN_UNREACHABLE ||
4821ef2c7d7bSNicolas Dichtel 	    rtm->rtm_type == RTN_BLACKHOLE ||
4822b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_PROHIBIT ||
4823b4949ab2SNicolas Dichtel 	    rtm->rtm_type == RTN_THROW)
482486872cb5SThomas Graf 		cfg->fc_flags |= RTF_REJECT;
482586872cb5SThomas Graf 
4826ab79ad14SMaciej Żenczykowski 	if (rtm->rtm_type == RTN_LOCAL)
4827ab79ad14SMaciej Żenczykowski 		cfg->fc_flags |= RTF_LOCAL;
4828ab79ad14SMaciej Żenczykowski 
48291f56a01fSMartin KaFai Lau 	if (rtm->rtm_flags & RTM_F_CLONED)
48301f56a01fSMartin KaFai Lau 		cfg->fc_flags |= RTF_CACHE;
48311f56a01fSMartin KaFai Lau 
4832fc1e64e1SDavid Ahern 	cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
4833fc1e64e1SDavid Ahern 
48345b98324eSDavid Ahern 	if (tb[RTA_NH_ID]) {
48355b98324eSDavid Ahern 		if (tb[RTA_GATEWAY]   || tb[RTA_OIF] ||
48365b98324eSDavid Ahern 		    tb[RTA_MULTIPATH] || tb[RTA_ENCAP]) {
48375b98324eSDavid Ahern 			NL_SET_ERR_MSG(extack,
48385b98324eSDavid Ahern 				       "Nexthop specification and nexthop id are mutually exclusive");
48395b98324eSDavid Ahern 			goto errout;
48405b98324eSDavid Ahern 		}
48415b98324eSDavid Ahern 		cfg->fc_nh_id = nla_get_u32(tb[RTA_NH_ID]);
48425b98324eSDavid Ahern 	}
48435b98324eSDavid Ahern 
484486872cb5SThomas Graf 	if (tb[RTA_GATEWAY]) {
484567b61f6cSJiri Benc 		cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
484686872cb5SThomas Graf 		cfg->fc_flags |= RTF_GATEWAY;
48471da177e4SLinus Torvalds 	}
4848e3818541SDavid Ahern 	if (tb[RTA_VIA]) {
4849e3818541SDavid Ahern 		NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute");
4850e3818541SDavid Ahern 		goto errout;
4851e3818541SDavid Ahern 	}
485286872cb5SThomas Graf 
485386872cb5SThomas Graf 	if (tb[RTA_DST]) {
485486872cb5SThomas Graf 		int plen = (rtm->rtm_dst_len + 7) >> 3;
485586872cb5SThomas Graf 
485686872cb5SThomas Graf 		if (nla_len(tb[RTA_DST]) < plen)
485786872cb5SThomas Graf 			goto errout;
485886872cb5SThomas Graf 
485986872cb5SThomas Graf 		nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
48601da177e4SLinus Torvalds 	}
486186872cb5SThomas Graf 
486286872cb5SThomas Graf 	if (tb[RTA_SRC]) {
486386872cb5SThomas Graf 		int plen = (rtm->rtm_src_len + 7) >> 3;
486486872cb5SThomas Graf 
486586872cb5SThomas Graf 		if (nla_len(tb[RTA_SRC]) < plen)
486686872cb5SThomas Graf 			goto errout;
486786872cb5SThomas Graf 
486886872cb5SThomas Graf 		nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
48691da177e4SLinus Torvalds 	}
487086872cb5SThomas Graf 
4871c3968a85SDaniel Walter 	if (tb[RTA_PREFSRC])
487267b61f6cSJiri Benc 		cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
4873c3968a85SDaniel Walter 
487486872cb5SThomas Graf 	if (tb[RTA_OIF])
487586872cb5SThomas Graf 		cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
487686872cb5SThomas Graf 
487786872cb5SThomas Graf 	if (tb[RTA_PRIORITY])
487886872cb5SThomas Graf 		cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
487986872cb5SThomas Graf 
488086872cb5SThomas Graf 	if (tb[RTA_METRICS]) {
488186872cb5SThomas Graf 		cfg->fc_mx = nla_data(tb[RTA_METRICS]);
488286872cb5SThomas Graf 		cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
48831da177e4SLinus Torvalds 	}
488486872cb5SThomas Graf 
488586872cb5SThomas Graf 	if (tb[RTA_TABLE])
488686872cb5SThomas Graf 		cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
488786872cb5SThomas Graf 
488851ebd318SNicolas Dichtel 	if (tb[RTA_MULTIPATH]) {
488951ebd318SNicolas Dichtel 		cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
489051ebd318SNicolas Dichtel 		cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
48919ed59592SDavid Ahern 
48929ed59592SDavid Ahern 		err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
4893c255bd68SDavid Ahern 						     cfg->fc_mp_len, extack);
48949ed59592SDavid Ahern 		if (err < 0)
48959ed59592SDavid Ahern 			goto errout;
489651ebd318SNicolas Dichtel 	}
489751ebd318SNicolas Dichtel 
4898c78ba6d6SLubomir Rintel 	if (tb[RTA_PREF]) {
4899c78ba6d6SLubomir Rintel 		pref = nla_get_u8(tb[RTA_PREF]);
4900c78ba6d6SLubomir Rintel 		if (pref != ICMPV6_ROUTER_PREF_LOW &&
4901c78ba6d6SLubomir Rintel 		    pref != ICMPV6_ROUTER_PREF_HIGH)
4902c78ba6d6SLubomir Rintel 			pref = ICMPV6_ROUTER_PREF_MEDIUM;
4903c78ba6d6SLubomir Rintel 		cfg->fc_flags |= RTF_PREF(pref);
4904c78ba6d6SLubomir Rintel 	}
4905c78ba6d6SLubomir Rintel 
490619e42e45SRoopa Prabhu 	if (tb[RTA_ENCAP])
490719e42e45SRoopa Prabhu 		cfg->fc_encap = tb[RTA_ENCAP];
490819e42e45SRoopa Prabhu 
49099ed59592SDavid Ahern 	if (tb[RTA_ENCAP_TYPE]) {
491019e42e45SRoopa Prabhu 		cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
491119e42e45SRoopa Prabhu 
4912c255bd68SDavid Ahern 		err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
49139ed59592SDavid Ahern 		if (err < 0)
49149ed59592SDavid Ahern 			goto errout;
49159ed59592SDavid Ahern 	}
49169ed59592SDavid Ahern 
491732bc201eSXin Long 	if (tb[RTA_EXPIRES]) {
491832bc201eSXin Long 		unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
491932bc201eSXin Long 
492032bc201eSXin Long 		if (addrconf_finite_timeout(timeout)) {
492132bc201eSXin Long 			cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
492232bc201eSXin Long 			cfg->fc_flags |= RTF_EXPIRES;
492332bc201eSXin Long 		}
492432bc201eSXin Long 	}
492532bc201eSXin Long 
492686872cb5SThomas Graf 	err = 0;
492786872cb5SThomas Graf errout:
492886872cb5SThomas Graf 	return err;
49291da177e4SLinus Torvalds }
49301da177e4SLinus Torvalds 
49316b9ea5a6SRoopa Prabhu struct rt6_nh {
49328d1c802bSDavid Ahern 	struct fib6_info *fib6_info;
49336b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
49346b9ea5a6SRoopa Prabhu 	struct list_head next;
49356b9ea5a6SRoopa Prabhu };
49366b9ea5a6SRoopa Prabhu 
4937d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net,
4938d4ead6b3SDavid Ahern 				 struct list_head *rt6_nh_list,
49398d1c802bSDavid Ahern 				 struct fib6_info *rt,
49408d1c802bSDavid Ahern 				 struct fib6_config *r_cfg)
49416b9ea5a6SRoopa Prabhu {
49426b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh;
49436b9ea5a6SRoopa Prabhu 	int err = -EEXIST;
49446b9ea5a6SRoopa Prabhu 
49456b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, rt6_nh_list, next) {
49468d1c802bSDavid Ahern 		/* check if fib6_info already exists */
49478d1c802bSDavid Ahern 		if (rt6_duplicate_nexthop(nh->fib6_info, rt))
49486b9ea5a6SRoopa Prabhu 			return err;
49496b9ea5a6SRoopa Prabhu 	}
49506b9ea5a6SRoopa Prabhu 
49516b9ea5a6SRoopa Prabhu 	nh = kzalloc(sizeof(*nh), GFP_KERNEL);
49526b9ea5a6SRoopa Prabhu 	if (!nh)
49536b9ea5a6SRoopa Prabhu 		return -ENOMEM;
49548d1c802bSDavid Ahern 	nh->fib6_info = rt;
49556b9ea5a6SRoopa Prabhu 	memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
49566b9ea5a6SRoopa Prabhu 	list_add_tail(&nh->next, rt6_nh_list);
49576b9ea5a6SRoopa Prabhu 
49586b9ea5a6SRoopa Prabhu 	return 0;
49596b9ea5a6SRoopa Prabhu }
49606b9ea5a6SRoopa Prabhu 
49618d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt,
49628d1c802bSDavid Ahern 				   struct fib6_info *rt_last,
49633b1137feSDavid Ahern 				   struct nl_info *info,
49643b1137feSDavid Ahern 				   __u16 nlflags)
49653b1137feSDavid Ahern {
49663b1137feSDavid Ahern 	/* if this is an APPEND route, then rt points to the first route
49673b1137feSDavid Ahern 	 * inserted and rt_last points to last route inserted. Userspace
49683b1137feSDavid Ahern 	 * wants a consistent dump of the route which starts at the first
49693b1137feSDavid Ahern 	 * nexthop. Since sibling routes are always added at the end of
49703b1137feSDavid Ahern 	 * the list, find the first sibling of the last route appended
49713b1137feSDavid Ahern 	 */
497293c2fb25SDavid Ahern 	if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) {
497393c2fb25SDavid Ahern 		rt = list_first_entry(&rt_last->fib6_siblings,
49748d1c802bSDavid Ahern 				      struct fib6_info,
497593c2fb25SDavid Ahern 				      fib6_siblings);
49763b1137feSDavid Ahern 	}
49773b1137feSDavid Ahern 
49783b1137feSDavid Ahern 	if (rt)
49793b1137feSDavid Ahern 		inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
49803b1137feSDavid Ahern }
49813b1137feSDavid Ahern 
4982333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg,
4983333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
498451ebd318SNicolas Dichtel {
49858d1c802bSDavid Ahern 	struct fib6_info *rt_notif = NULL, *rt_last = NULL;
49863b1137feSDavid Ahern 	struct nl_info *info = &cfg->fc_nlinfo;
4987ebee3cadSIdo Schimmel 	enum fib_event_type event_type;
498851ebd318SNicolas Dichtel 	struct fib6_config r_cfg;
498951ebd318SNicolas Dichtel 	struct rtnexthop *rtnh;
49908d1c802bSDavid Ahern 	struct fib6_info *rt;
49916b9ea5a6SRoopa Prabhu 	struct rt6_nh *err_nh;
49926b9ea5a6SRoopa Prabhu 	struct rt6_nh *nh, *nh_safe;
49933b1137feSDavid Ahern 	__u16 nlflags;
499451ebd318SNicolas Dichtel 	int remaining;
499551ebd318SNicolas Dichtel 	int attrlen;
49966b9ea5a6SRoopa Prabhu 	int err = 1;
49976b9ea5a6SRoopa Prabhu 	int nhn = 0;
49986b9ea5a6SRoopa Prabhu 	int replace = (cfg->fc_nlinfo.nlh &&
49996b9ea5a6SRoopa Prabhu 		       (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
50006b9ea5a6SRoopa Prabhu 	LIST_HEAD(rt6_nh_list);
500151ebd318SNicolas Dichtel 
50023b1137feSDavid Ahern 	nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
50033b1137feSDavid Ahern 	if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
50043b1137feSDavid Ahern 		nlflags |= NLM_F_APPEND;
50053b1137feSDavid Ahern 
500635f1b4e9SMichal Kubeček 	remaining = cfg->fc_mp_len;
500751ebd318SNicolas Dichtel 	rtnh = (struct rtnexthop *)cfg->fc_mp;
500851ebd318SNicolas Dichtel 
50096b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry and build a list (rt6_nh_list) of
50108d1c802bSDavid Ahern 	 * fib6_info structs per nexthop
50116b9ea5a6SRoopa Prabhu 	 */
501251ebd318SNicolas Dichtel 	while (rtnh_ok(rtnh, remaining)) {
501351ebd318SNicolas Dichtel 		memcpy(&r_cfg, cfg, sizeof(*cfg));
501451ebd318SNicolas Dichtel 		if (rtnh->rtnh_ifindex)
501551ebd318SNicolas Dichtel 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
501651ebd318SNicolas Dichtel 
501751ebd318SNicolas Dichtel 		attrlen = rtnh_attrlen(rtnh);
501851ebd318SNicolas Dichtel 		if (attrlen > 0) {
501951ebd318SNicolas Dichtel 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
502051ebd318SNicolas Dichtel 
502151ebd318SNicolas Dichtel 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
502251ebd318SNicolas Dichtel 			if (nla) {
502367b61f6cSJiri Benc 				r_cfg.fc_gateway = nla_get_in6_addr(nla);
502451ebd318SNicolas Dichtel 				r_cfg.fc_flags |= RTF_GATEWAY;
502551ebd318SNicolas Dichtel 			}
502619e42e45SRoopa Prabhu 			r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
502719e42e45SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
502819e42e45SRoopa Prabhu 			if (nla)
502919e42e45SRoopa Prabhu 				r_cfg.fc_encap_type = nla_get_u16(nla);
503051ebd318SNicolas Dichtel 		}
50316b9ea5a6SRoopa Prabhu 
503268e2ffdeSDavid Ahern 		r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
5033acb54e3cSDavid Ahern 		rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack);
50348c5b83f0SRoopa Prabhu 		if (IS_ERR(rt)) {
50358c5b83f0SRoopa Prabhu 			err = PTR_ERR(rt);
50368c5b83f0SRoopa Prabhu 			rt = NULL;
50376b9ea5a6SRoopa Prabhu 			goto cleanup;
50388c5b83f0SRoopa Prabhu 		}
5039b5d2d75eSDavid Ahern 		if (!rt6_qualify_for_ecmp(rt)) {
5040b5d2d75eSDavid Ahern 			err = -EINVAL;
5041b5d2d75eSDavid Ahern 			NL_SET_ERR_MSG(extack,
5042b5d2d75eSDavid Ahern 				       "Device only routes can not be added for IPv6 using the multipath API.");
5043b5d2d75eSDavid Ahern 			fib6_info_release(rt);
5044b5d2d75eSDavid Ahern 			goto cleanup;
5045b5d2d75eSDavid Ahern 		}
50466b9ea5a6SRoopa Prabhu 
50471cf844c7SDavid Ahern 		rt->fib6_nh->fib_nh_weight = rtnh->rtnh_hops + 1;
5048398958aeSIdo Schimmel 
5049d4ead6b3SDavid Ahern 		err = ip6_route_info_append(info->nl_net, &rt6_nh_list,
5050d4ead6b3SDavid Ahern 					    rt, &r_cfg);
505151ebd318SNicolas Dichtel 		if (err) {
505293531c67SDavid Ahern 			fib6_info_release(rt);
50536b9ea5a6SRoopa Prabhu 			goto cleanup;
505451ebd318SNicolas Dichtel 		}
50556b9ea5a6SRoopa Prabhu 
50566b9ea5a6SRoopa Prabhu 		rtnh = rtnh_next(rtnh, &remaining);
505751ebd318SNicolas Dichtel 	}
50586b9ea5a6SRoopa Prabhu 
50599eee3b49SIdo Schimmel 	if (list_empty(&rt6_nh_list)) {
50609eee3b49SIdo Schimmel 		NL_SET_ERR_MSG(extack,
50619eee3b49SIdo Schimmel 			       "Invalid nexthop configuration - no valid nexthops");
50629eee3b49SIdo Schimmel 		return -EINVAL;
50639eee3b49SIdo Schimmel 	}
50649eee3b49SIdo Schimmel 
50653b1137feSDavid Ahern 	/* for add and replace send one notification with all nexthops.
50663b1137feSDavid Ahern 	 * Skip the notification in fib6_add_rt2node and send one with
50673b1137feSDavid Ahern 	 * the full route when done
50683b1137feSDavid Ahern 	 */
50693b1137feSDavid Ahern 	info->skip_notify = 1;
50703b1137feSDavid Ahern 
5071ebee3cadSIdo Schimmel 	/* For add and replace, send one notification with all nexthops. For
5072ebee3cadSIdo Schimmel 	 * append, send one notification with all appended nexthops.
5073ebee3cadSIdo Schimmel 	 */
5074ebee3cadSIdo Schimmel 	info->skip_notify_kernel = 1;
5075ebee3cadSIdo Schimmel 
50766b9ea5a6SRoopa Prabhu 	err_nh = NULL;
50776b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
50788d1c802bSDavid Ahern 		err = __ip6_ins_rt(nh->fib6_info, info, extack);
50798d1c802bSDavid Ahern 		fib6_info_release(nh->fib6_info);
50803b1137feSDavid Ahern 
5081f7225172SDavid Ahern 		if (!err) {
5082f7225172SDavid Ahern 			/* save reference to last route successfully inserted */
5083f7225172SDavid Ahern 			rt_last = nh->fib6_info;
5084f7225172SDavid Ahern 
50856b9ea5a6SRoopa Prabhu 			/* save reference to first route for notification */
5086f7225172SDavid Ahern 			if (!rt_notif)
50878d1c802bSDavid Ahern 				rt_notif = nh->fib6_info;
5088f7225172SDavid Ahern 		}
50896b9ea5a6SRoopa Prabhu 
50908d1c802bSDavid Ahern 		/* nh->fib6_info is used or freed at this point, reset to NULL*/
50918d1c802bSDavid Ahern 		nh->fib6_info = NULL;
50926b9ea5a6SRoopa Prabhu 		if (err) {
50936b9ea5a6SRoopa Prabhu 			if (replace && nhn)
5094a5a82d84SJakub Kicinski 				NL_SET_ERR_MSG_MOD(extack,
5095a5a82d84SJakub Kicinski 						   "multipath route replace failed (check consistency of installed routes)");
50966b9ea5a6SRoopa Prabhu 			err_nh = nh;
50976b9ea5a6SRoopa Prabhu 			goto add_errout;
50986b9ea5a6SRoopa Prabhu 		}
50996b9ea5a6SRoopa Prabhu 
51001a72418bSNicolas Dichtel 		/* Because each route is added like a single route we remove
510127596472SMichal Kubeček 		 * these flags after the first nexthop: if there is a collision,
510227596472SMichal Kubeček 		 * we have already failed to add the first nexthop:
510327596472SMichal Kubeček 		 * fib6_add_rt2node() has rejected it; when replacing, old
510427596472SMichal Kubeček 		 * nexthops have been replaced by first new, the rest should
510527596472SMichal Kubeček 		 * be added to it.
51061a72418bSNicolas Dichtel 		 */
510727596472SMichal Kubeček 		cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
510827596472SMichal Kubeček 						     NLM_F_REPLACE);
51096b9ea5a6SRoopa Prabhu 		nhn++;
51106b9ea5a6SRoopa Prabhu 	}
51116b9ea5a6SRoopa Prabhu 
5112ebee3cadSIdo Schimmel 	event_type = replace ? FIB_EVENT_ENTRY_REPLACE : FIB_EVENT_ENTRY_ADD;
5113ebee3cadSIdo Schimmel 	err = call_fib6_multipath_entry_notifiers(info->nl_net, event_type,
5114ebee3cadSIdo Schimmel 						  rt_notif, nhn - 1, extack);
5115ebee3cadSIdo Schimmel 	if (err) {
5116ebee3cadSIdo Schimmel 		/* Delete all the siblings that were just added */
5117ebee3cadSIdo Schimmel 		err_nh = NULL;
5118ebee3cadSIdo Schimmel 		goto add_errout;
5119ebee3cadSIdo Schimmel 	}
5120ebee3cadSIdo Schimmel 
51213b1137feSDavid Ahern 	/* success ... tell user about new route */
51223b1137feSDavid Ahern 	ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
51236b9ea5a6SRoopa Prabhu 	goto cleanup;
51246b9ea5a6SRoopa Prabhu 
51256b9ea5a6SRoopa Prabhu add_errout:
51263b1137feSDavid Ahern 	/* send notification for routes that were added so that
51273b1137feSDavid Ahern 	 * the delete notifications sent by ip6_route_del are
51283b1137feSDavid Ahern 	 * coherent
51293b1137feSDavid Ahern 	 */
51303b1137feSDavid Ahern 	if (rt_notif)
51313b1137feSDavid Ahern 		ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
51323b1137feSDavid Ahern 
51336b9ea5a6SRoopa Prabhu 	/* Delete routes that were already added */
51346b9ea5a6SRoopa Prabhu 	list_for_each_entry(nh, &rt6_nh_list, next) {
51356b9ea5a6SRoopa Prabhu 		if (err_nh == nh)
51366b9ea5a6SRoopa Prabhu 			break;
5137333c4301SDavid Ahern 		ip6_route_del(&nh->r_cfg, extack);
51386b9ea5a6SRoopa Prabhu 	}
51396b9ea5a6SRoopa Prabhu 
51406b9ea5a6SRoopa Prabhu cleanup:
51416b9ea5a6SRoopa Prabhu 	list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
51428d1c802bSDavid Ahern 		if (nh->fib6_info)
51438d1c802bSDavid Ahern 			fib6_info_release(nh->fib6_info);
51446b9ea5a6SRoopa Prabhu 		list_del(&nh->next);
51456b9ea5a6SRoopa Prabhu 		kfree(nh);
51466b9ea5a6SRoopa Prabhu 	}
51476b9ea5a6SRoopa Prabhu 
51486b9ea5a6SRoopa Prabhu 	return err;
51496b9ea5a6SRoopa Prabhu }
51506b9ea5a6SRoopa Prabhu 
5151333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg,
5152333c4301SDavid Ahern 				   struct netlink_ext_ack *extack)
51536b9ea5a6SRoopa Prabhu {
51546b9ea5a6SRoopa Prabhu 	struct fib6_config r_cfg;
51556b9ea5a6SRoopa Prabhu 	struct rtnexthop *rtnh;
51566b9ea5a6SRoopa Prabhu 	int remaining;
51576b9ea5a6SRoopa Prabhu 	int attrlen;
51586b9ea5a6SRoopa Prabhu 	int err = 1, last_err = 0;
51596b9ea5a6SRoopa Prabhu 
51606b9ea5a6SRoopa Prabhu 	remaining = cfg->fc_mp_len;
51616b9ea5a6SRoopa Prabhu 	rtnh = (struct rtnexthop *)cfg->fc_mp;
51626b9ea5a6SRoopa Prabhu 
51636b9ea5a6SRoopa Prabhu 	/* Parse a Multipath Entry */
51646b9ea5a6SRoopa Prabhu 	while (rtnh_ok(rtnh, remaining)) {
51656b9ea5a6SRoopa Prabhu 		memcpy(&r_cfg, cfg, sizeof(*cfg));
51666b9ea5a6SRoopa Prabhu 		if (rtnh->rtnh_ifindex)
51676b9ea5a6SRoopa Prabhu 			r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
51686b9ea5a6SRoopa Prabhu 
51696b9ea5a6SRoopa Prabhu 		attrlen = rtnh_attrlen(rtnh);
51706b9ea5a6SRoopa Prabhu 		if (attrlen > 0) {
51716b9ea5a6SRoopa Prabhu 			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
51726b9ea5a6SRoopa Prabhu 
51736b9ea5a6SRoopa Prabhu 			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
51746b9ea5a6SRoopa Prabhu 			if (nla) {
51756b9ea5a6SRoopa Prabhu 				nla_memcpy(&r_cfg.fc_gateway, nla, 16);
51766b9ea5a6SRoopa Prabhu 				r_cfg.fc_flags |= RTF_GATEWAY;
51776b9ea5a6SRoopa Prabhu 			}
51786b9ea5a6SRoopa Prabhu 		}
5179333c4301SDavid Ahern 		err = ip6_route_del(&r_cfg, extack);
51806b9ea5a6SRoopa Prabhu 		if (err)
51816b9ea5a6SRoopa Prabhu 			last_err = err;
51826b9ea5a6SRoopa Prabhu 
518351ebd318SNicolas Dichtel 		rtnh = rtnh_next(rtnh, &remaining);
518451ebd318SNicolas Dichtel 	}
518551ebd318SNicolas Dichtel 
518651ebd318SNicolas Dichtel 	return last_err;
518751ebd318SNicolas Dichtel }
518851ebd318SNicolas Dichtel 
5189c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
5190c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
51911da177e4SLinus Torvalds {
519286872cb5SThomas Graf 	struct fib6_config cfg;
519386872cb5SThomas Graf 	int err;
51941da177e4SLinus Torvalds 
5195333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
519686872cb5SThomas Graf 	if (err < 0)
519786872cb5SThomas Graf 		return err;
519886872cb5SThomas Graf 
51995b98324eSDavid Ahern 	if (cfg.fc_nh_id &&
52005b98324eSDavid Ahern 	    !nexthop_find_by_id(sock_net(skb->sk), cfg.fc_nh_id)) {
52015b98324eSDavid Ahern 		NL_SET_ERR_MSG(extack, "Nexthop id does not exist");
52025b98324eSDavid Ahern 		return -EINVAL;
52035b98324eSDavid Ahern 	}
52045b98324eSDavid Ahern 
520551ebd318SNicolas Dichtel 	if (cfg.fc_mp)
5206333c4301SDavid Ahern 		return ip6_route_multipath_del(&cfg, extack);
52070ae81335SDavid Ahern 	else {
52080ae81335SDavid Ahern 		cfg.fc_delete_all_nh = 1;
5209333c4301SDavid Ahern 		return ip6_route_del(&cfg, extack);
52101da177e4SLinus Torvalds 	}
52110ae81335SDavid Ahern }
52121da177e4SLinus Torvalds 
5213c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
5214c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
52151da177e4SLinus Torvalds {
521686872cb5SThomas Graf 	struct fib6_config cfg;
521786872cb5SThomas Graf 	int err;
52181da177e4SLinus Torvalds 
5219333c4301SDavid Ahern 	err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
522086872cb5SThomas Graf 	if (err < 0)
522186872cb5SThomas Graf 		return err;
522286872cb5SThomas Graf 
522367f69513SDavid Ahern 	if (cfg.fc_metric == 0)
522467f69513SDavid Ahern 		cfg.fc_metric = IP6_RT_PRIO_USER;
522567f69513SDavid Ahern 
522651ebd318SNicolas Dichtel 	if (cfg.fc_mp)
5227333c4301SDavid Ahern 		return ip6_route_multipath_add(&cfg, extack);
522851ebd318SNicolas Dichtel 	else
5229acb54e3cSDavid Ahern 		return ip6_route_add(&cfg, GFP_KERNEL, extack);
52301da177e4SLinus Torvalds }
52311da177e4SLinus Torvalds 
5232a1b7a1f0SDavid Ahern /* add the overhead of this fib6_nh to nexthop_len */
5233a1b7a1f0SDavid Ahern static int rt6_nh_nlmsg_size(struct fib6_nh *nh, void *arg)
5234339bf98fSThomas Graf {
5235a1b7a1f0SDavid Ahern 	int *nexthop_len = arg;
5236beb1afacSDavid Ahern 
5237a1b7a1f0SDavid Ahern 	*nexthop_len += nla_total_size(0)	 /* RTA_MULTIPATH */
5238a1b7a1f0SDavid Ahern 		     + NLA_ALIGN(sizeof(struct rtnexthop))
5239a1b7a1f0SDavid Ahern 		     + nla_total_size(16); /* RTA_GATEWAY */
5240f88d8ea6SDavid Ahern 
5241a1b7a1f0SDavid Ahern 	if (nh->fib_nh_lws) {
5242a1b7a1f0SDavid Ahern 		/* RTA_ENCAP_TYPE */
5243a1b7a1f0SDavid Ahern 		*nexthop_len += lwtunnel_get_encap_size(nh->fib_nh_lws);
5244a1b7a1f0SDavid Ahern 		/* RTA_ENCAP */
5245a1b7a1f0SDavid Ahern 		*nexthop_len += nla_total_size(2);
5246a1b7a1f0SDavid Ahern 	}
5247a1b7a1f0SDavid Ahern 
5248a1b7a1f0SDavid Ahern 	return 0;
5249a1b7a1f0SDavid Ahern }
5250a1b7a1f0SDavid Ahern 
5251a1b7a1f0SDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *f6i)
5252a1b7a1f0SDavid Ahern {
5253a1b7a1f0SDavid Ahern 	int nexthop_len;
5254a1b7a1f0SDavid Ahern 
5255a1b7a1f0SDavid Ahern 	if (f6i->nh) {
5256a1b7a1f0SDavid Ahern 		nexthop_len = nla_total_size(4); /* RTA_NH_ID */
5257a1b7a1f0SDavid Ahern 		nexthop_for_each_fib6_nh(f6i->nh, rt6_nh_nlmsg_size,
5258a1b7a1f0SDavid Ahern 					 &nexthop_len);
5259a1b7a1f0SDavid Ahern 	} else {
5260a1b7a1f0SDavid Ahern 		struct fib6_nh *nh = f6i->fib6_nh;
5261a1b7a1f0SDavid Ahern 
5262a1b7a1f0SDavid Ahern 		nexthop_len = 0;
5263a1b7a1f0SDavid Ahern 		if (f6i->fib6_nsiblings) {
5264beb1afacSDavid Ahern 			nexthop_len = nla_total_size(0)	 /* RTA_MULTIPATH */
5265beb1afacSDavid Ahern 				    + NLA_ALIGN(sizeof(struct rtnexthop))
5266beb1afacSDavid Ahern 				    + nla_total_size(16) /* RTA_GATEWAY */
5267a1b7a1f0SDavid Ahern 				    + lwtunnel_get_encap_size(nh->fib_nh_lws);
5268beb1afacSDavid Ahern 
5269a1b7a1f0SDavid Ahern 			nexthop_len *= f6i->fib6_nsiblings;
5270a1b7a1f0SDavid Ahern 		}
5271a1b7a1f0SDavid Ahern 		nexthop_len += lwtunnel_get_encap_size(nh->fib_nh_lws);
5272beb1afacSDavid Ahern 	}
5273beb1afacSDavid Ahern 
5274339bf98fSThomas Graf 	return NLMSG_ALIGN(sizeof(struct rtmsg))
5275339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_SRC */
5276339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_DST */
5277339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_GATEWAY */
5278339bf98fSThomas Graf 	       + nla_total_size(16) /* RTA_PREFSRC */
5279339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_TABLE */
5280339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_IIF */
5281339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_OIF */
5282339bf98fSThomas Graf 	       + nla_total_size(4) /* RTA_PRIORITY */
52836a2b9ce0SNoriaki TAKAMIYA 	       + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
5284ea697639SDaniel Borkmann 	       + nla_total_size(sizeof(struct rta_cacheinfo))
5285c78ba6d6SLubomir Rintel 	       + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
528619e42e45SRoopa Prabhu 	       + nla_total_size(1) /* RTA_PREF */
5287beb1afacSDavid Ahern 	       + nexthop_len;
5288beb1afacSDavid Ahern }
5289beb1afacSDavid Ahern 
5290f88d8ea6SDavid Ahern static int rt6_fill_node_nexthop(struct sk_buff *skb, struct nexthop *nh,
5291f88d8ea6SDavid Ahern 				 unsigned char *flags)
5292f88d8ea6SDavid Ahern {
5293f88d8ea6SDavid Ahern 	if (nexthop_is_multipath(nh)) {
5294f88d8ea6SDavid Ahern 		struct nlattr *mp;
5295f88d8ea6SDavid Ahern 
5296f88d8ea6SDavid Ahern 		mp = nla_nest_start(skb, RTA_MULTIPATH);
5297f88d8ea6SDavid Ahern 		if (!mp)
5298f88d8ea6SDavid Ahern 			goto nla_put_failure;
5299f88d8ea6SDavid Ahern 
5300f88d8ea6SDavid Ahern 		if (nexthop_mpath_fill_node(skb, nh))
5301f88d8ea6SDavid Ahern 			goto nla_put_failure;
5302f88d8ea6SDavid Ahern 
5303f88d8ea6SDavid Ahern 		nla_nest_end(skb, mp);
5304f88d8ea6SDavid Ahern 	} else {
5305f88d8ea6SDavid Ahern 		struct fib6_nh *fib6_nh;
5306f88d8ea6SDavid Ahern 
5307f88d8ea6SDavid Ahern 		fib6_nh = nexthop_fib6_nh(nh);
5308f88d8ea6SDavid Ahern 		if (fib_nexthop_info(skb, &fib6_nh->nh_common,
5309f88d8ea6SDavid Ahern 				     flags, false) < 0)
5310f88d8ea6SDavid Ahern 			goto nla_put_failure;
5311f88d8ea6SDavid Ahern 	}
5312f88d8ea6SDavid Ahern 
5313f88d8ea6SDavid Ahern 	return 0;
5314f88d8ea6SDavid Ahern 
5315f88d8ea6SDavid Ahern nla_put_failure:
5316f88d8ea6SDavid Ahern 	return -EMSGSIZE;
5317f88d8ea6SDavid Ahern }
5318f88d8ea6SDavid Ahern 
5319d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb,
53208d1c802bSDavid Ahern 			 struct fib6_info *rt, struct dst_entry *dst,
5321d4ead6b3SDavid Ahern 			 struct in6_addr *dest, struct in6_addr *src,
532215e47304SEric W. Biederman 			 int iif, int type, u32 portid, u32 seq,
5323f8cfe2ceSDavid Ahern 			 unsigned int flags)
53241da177e4SLinus Torvalds {
532522d0bd82SXin Long 	struct rt6_info *rt6 = (struct rt6_info *)dst;
532622d0bd82SXin Long 	struct rt6key *rt6_dst, *rt6_src;
532722d0bd82SXin Long 	u32 *pmetrics, table, rt6_flags;
5328f88d8ea6SDavid Ahern 	unsigned char nh_flags = 0;
53291da177e4SLinus Torvalds 	struct nlmsghdr *nlh;
533022d0bd82SXin Long 	struct rtmsg *rtm;
5331d4ead6b3SDavid Ahern 	long expires = 0;
53321da177e4SLinus Torvalds 
533315e47304SEric W. Biederman 	nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
533438308473SDavid S. Miller 	if (!nlh)
533526932566SPatrick McHardy 		return -EMSGSIZE;
53362d7202bfSThomas Graf 
533722d0bd82SXin Long 	if (rt6) {
533822d0bd82SXin Long 		rt6_dst = &rt6->rt6i_dst;
533922d0bd82SXin Long 		rt6_src = &rt6->rt6i_src;
534022d0bd82SXin Long 		rt6_flags = rt6->rt6i_flags;
534122d0bd82SXin Long 	} else {
534222d0bd82SXin Long 		rt6_dst = &rt->fib6_dst;
534322d0bd82SXin Long 		rt6_src = &rt->fib6_src;
534422d0bd82SXin Long 		rt6_flags = rt->fib6_flags;
534522d0bd82SXin Long 	}
534622d0bd82SXin Long 
53472d7202bfSThomas Graf 	rtm = nlmsg_data(nlh);
53481da177e4SLinus Torvalds 	rtm->rtm_family = AF_INET6;
534922d0bd82SXin Long 	rtm->rtm_dst_len = rt6_dst->plen;
535022d0bd82SXin Long 	rtm->rtm_src_len = rt6_src->plen;
53511da177e4SLinus Torvalds 	rtm->rtm_tos = 0;
535293c2fb25SDavid Ahern 	if (rt->fib6_table)
535393c2fb25SDavid Ahern 		table = rt->fib6_table->tb6_id;
5354c71099acSThomas Graf 	else
53559e762a4aSPatrick McHardy 		table = RT6_TABLE_UNSPEC;
535697f0082aSKalash Nainwal 	rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT;
5357c78679e8SDavid S. Miller 	if (nla_put_u32(skb, RTA_TABLE, table))
5358c78679e8SDavid S. Miller 		goto nla_put_failure;
5359e8478e80SDavid Ahern 
5360e8478e80SDavid Ahern 	rtm->rtm_type = rt->fib6_type;
53611da177e4SLinus Torvalds 	rtm->rtm_flags = 0;
53621da177e4SLinus Torvalds 	rtm->rtm_scope = RT_SCOPE_UNIVERSE;
536393c2fb25SDavid Ahern 	rtm->rtm_protocol = rt->fib6_protocol;
53641da177e4SLinus Torvalds 
536522d0bd82SXin Long 	if (rt6_flags & RTF_CACHE)
53661da177e4SLinus Torvalds 		rtm->rtm_flags |= RTM_F_CLONED;
53671da177e4SLinus Torvalds 
5368d4ead6b3SDavid Ahern 	if (dest) {
5369d4ead6b3SDavid Ahern 		if (nla_put_in6_addr(skb, RTA_DST, dest))
5370c78679e8SDavid S. Miller 			goto nla_put_failure;
53711da177e4SLinus Torvalds 		rtm->rtm_dst_len = 128;
53721da177e4SLinus Torvalds 	} else if (rtm->rtm_dst_len)
537322d0bd82SXin Long 		if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr))
5374c78679e8SDavid S. Miller 			goto nla_put_failure;
53751da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
53761da177e4SLinus Torvalds 	if (src) {
5377930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_SRC, src))
5378c78679e8SDavid S. Miller 			goto nla_put_failure;
53791da177e4SLinus Torvalds 		rtm->rtm_src_len = 128;
5380c78679e8SDavid S. Miller 	} else if (rtm->rtm_src_len &&
538122d0bd82SXin Long 		   nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr))
5382c78679e8SDavid S. Miller 		goto nla_put_failure;
53831da177e4SLinus Torvalds #endif
53847bc570c8SYOSHIFUJI Hideaki 	if (iif) {
53857bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE
538622d0bd82SXin Long 		if (ipv6_addr_is_multicast(&rt6_dst->addr)) {
5387fd61c6baSDavid Ahern 			int err = ip6mr_get_route(net, skb, rtm, portid);
53882cf75070SNikolay Aleksandrov 
53897bc570c8SYOSHIFUJI Hideaki 			if (err == 0)
53907bc570c8SYOSHIFUJI Hideaki 				return 0;
5391fd61c6baSDavid Ahern 			if (err < 0)
53927bc570c8SYOSHIFUJI Hideaki 				goto nla_put_failure;
53937bc570c8SYOSHIFUJI Hideaki 		} else
53947bc570c8SYOSHIFUJI Hideaki #endif
5395c78679e8SDavid S. Miller 			if (nla_put_u32(skb, RTA_IIF, iif))
5396c78679e8SDavid S. Miller 				goto nla_put_failure;
5397d4ead6b3SDavid Ahern 	} else if (dest) {
53981da177e4SLinus Torvalds 		struct in6_addr saddr_buf;
5399d4ead6b3SDavid Ahern 		if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 &&
5400930345eaSJiri Benc 		    nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
5401c78679e8SDavid S. Miller 			goto nla_put_failure;
5402c3968a85SDaniel Walter 	}
5403c3968a85SDaniel Walter 
540493c2fb25SDavid Ahern 	if (rt->fib6_prefsrc.plen) {
5405c3968a85SDaniel Walter 		struct in6_addr saddr_buf;
540693c2fb25SDavid Ahern 		saddr_buf = rt->fib6_prefsrc.addr;
5407930345eaSJiri Benc 		if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
5408c78679e8SDavid S. Miller 			goto nla_put_failure;
54091da177e4SLinus Torvalds 	}
54102d7202bfSThomas Graf 
5411d4ead6b3SDavid Ahern 	pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics;
5412d4ead6b3SDavid Ahern 	if (rtnetlink_put_metrics(skb, pmetrics) < 0)
54132d7202bfSThomas Graf 		goto nla_put_failure;
54142d7202bfSThomas Graf 
541593c2fb25SDavid Ahern 	if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric))
5416beb1afacSDavid Ahern 		goto nla_put_failure;
5417beb1afacSDavid Ahern 
5418beb1afacSDavid Ahern 	/* For multipath routes, walk the siblings list and add
5419beb1afacSDavid Ahern 	 * each as a nexthop within RTA_MULTIPATH.
5420beb1afacSDavid Ahern 	 */
542122d0bd82SXin Long 	if (rt6) {
542222d0bd82SXin Long 		if (rt6_flags & RTF_GATEWAY &&
542322d0bd82SXin Long 		    nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway))
542422d0bd82SXin Long 			goto nla_put_failure;
542522d0bd82SXin Long 
542622d0bd82SXin Long 		if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex))
542722d0bd82SXin Long 			goto nla_put_failure;
542822d0bd82SXin Long 	} else if (rt->fib6_nsiblings) {
54298d1c802bSDavid Ahern 		struct fib6_info *sibling, *next_sibling;
5430beb1afacSDavid Ahern 		struct nlattr *mp;
5431beb1afacSDavid Ahern 
5432ae0be8deSMichal Kubecek 		mp = nla_nest_start_noflag(skb, RTA_MULTIPATH);
5433beb1afacSDavid Ahern 		if (!mp)
5434beb1afacSDavid Ahern 			goto nla_put_failure;
5435beb1afacSDavid Ahern 
54361cf844c7SDavid Ahern 		if (fib_add_nexthop(skb, &rt->fib6_nh->nh_common,
54371cf844c7SDavid Ahern 				    rt->fib6_nh->fib_nh_weight) < 0)
5438beb1afacSDavid Ahern 			goto nla_put_failure;
5439beb1afacSDavid Ahern 
5440beb1afacSDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
544193c2fb25SDavid Ahern 					 &rt->fib6_siblings, fib6_siblings) {
54421cf844c7SDavid Ahern 			if (fib_add_nexthop(skb, &sibling->fib6_nh->nh_common,
54431cf844c7SDavid Ahern 					    sibling->fib6_nh->fib_nh_weight) < 0)
544494f826b8SEric Dumazet 				goto nla_put_failure;
544594f826b8SEric Dumazet 		}
54462d7202bfSThomas Graf 
5447beb1afacSDavid Ahern 		nla_nest_end(skb, mp);
5448f88d8ea6SDavid Ahern 	} else if (rt->nh) {
5449f88d8ea6SDavid Ahern 		if (nla_put_u32(skb, RTA_NH_ID, rt->nh->id))
5450f88d8ea6SDavid Ahern 			goto nla_put_failure;
5451ecc5663cSDavid Ahern 
5452f88d8ea6SDavid Ahern 		if (nexthop_is_blackhole(rt->nh))
5453f88d8ea6SDavid Ahern 			rtm->rtm_type = RTN_BLACKHOLE;
5454f88d8ea6SDavid Ahern 
5455f88d8ea6SDavid Ahern 		if (rt6_fill_node_nexthop(skb, rt->nh, &nh_flags) < 0)
5456f88d8ea6SDavid Ahern 			goto nla_put_failure;
5457f88d8ea6SDavid Ahern 
5458f88d8ea6SDavid Ahern 		rtm->rtm_flags |= nh_flags;
5459f88d8ea6SDavid Ahern 	} else {
54601cf844c7SDavid Ahern 		if (fib_nexthop_info(skb, &rt->fib6_nh->nh_common,
5461ecc5663cSDavid Ahern 				     &nh_flags, false) < 0)
5462c78679e8SDavid S. Miller 			goto nla_put_failure;
5463ecc5663cSDavid Ahern 
5464ecc5663cSDavid Ahern 		rtm->rtm_flags |= nh_flags;
5465beb1afacSDavid Ahern 	}
54668253947eSLi Wei 
546722d0bd82SXin Long 	if (rt6_flags & RTF_EXPIRES) {
546814895687SDavid Ahern 		expires = dst ? dst->expires : rt->expires;
546914895687SDavid Ahern 		expires -= jiffies;
547014895687SDavid Ahern 	}
547169cdf8f9SYOSHIFUJI Hideaki 
5472d4ead6b3SDavid Ahern 	if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0)
5473e3703b3dSThomas Graf 		goto nla_put_failure;
54741da177e4SLinus Torvalds 
547522d0bd82SXin Long 	if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags)))
5476c78ba6d6SLubomir Rintel 		goto nla_put_failure;
5477c78ba6d6SLubomir Rintel 
547819e42e45SRoopa Prabhu 
5479053c095aSJohannes Berg 	nlmsg_end(skb, nlh);
5480053c095aSJohannes Berg 	return 0;
54812d7202bfSThomas Graf 
54822d7202bfSThomas Graf nla_put_failure:
548326932566SPatrick McHardy 	nlmsg_cancel(skb, nlh);
548426932566SPatrick McHardy 	return -EMSGSIZE;
54851da177e4SLinus Torvalds }
54861da177e4SLinus Torvalds 
54872c170e07SDavid Ahern static int fib6_info_nh_uses_dev(struct fib6_nh *nh, void *arg)
54882c170e07SDavid Ahern {
54892c170e07SDavid Ahern 	const struct net_device *dev = arg;
54902c170e07SDavid Ahern 
54912c170e07SDavid Ahern 	if (nh->fib_nh_dev == dev)
54922c170e07SDavid Ahern 		return 1;
54932c170e07SDavid Ahern 
54942c170e07SDavid Ahern 	return 0;
54952c170e07SDavid Ahern }
54962c170e07SDavid Ahern 
549713e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i,
549813e38901SDavid Ahern 			       const struct net_device *dev)
549913e38901SDavid Ahern {
55002c170e07SDavid Ahern 	if (f6i->nh) {
55012c170e07SDavid Ahern 		struct net_device *_dev = (struct net_device *)dev;
55022c170e07SDavid Ahern 
55032c170e07SDavid Ahern 		return !!nexthop_for_each_fib6_nh(f6i->nh,
55042c170e07SDavid Ahern 						  fib6_info_nh_uses_dev,
55052c170e07SDavid Ahern 						  _dev);
55062c170e07SDavid Ahern 	}
55072c170e07SDavid Ahern 
55081cf844c7SDavid Ahern 	if (f6i->fib6_nh->fib_nh_dev == dev)
550913e38901SDavid Ahern 		return true;
551013e38901SDavid Ahern 
551113e38901SDavid Ahern 	if (f6i->fib6_nsiblings) {
551213e38901SDavid Ahern 		struct fib6_info *sibling, *next_sibling;
551313e38901SDavid Ahern 
551413e38901SDavid Ahern 		list_for_each_entry_safe(sibling, next_sibling,
551513e38901SDavid Ahern 					 &f6i->fib6_siblings, fib6_siblings) {
55161cf844c7SDavid Ahern 			if (sibling->fib6_nh->fib_nh_dev == dev)
551713e38901SDavid Ahern 				return true;
551813e38901SDavid Ahern 		}
551913e38901SDavid Ahern 	}
552013e38901SDavid Ahern 
552113e38901SDavid Ahern 	return false;
552213e38901SDavid Ahern }
552313e38901SDavid Ahern 
55248d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg)
55251da177e4SLinus Torvalds {
55261da177e4SLinus Torvalds 	struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
552713e38901SDavid Ahern 	struct fib_dump_filter *filter = &arg->filter;
552813e38901SDavid Ahern 	unsigned int flags = NLM_F_MULTI;
55291f17e2f2SDavid Ahern 	struct net *net = arg->net;
55301f17e2f2SDavid Ahern 
5531421842edSDavid Ahern 	if (rt == net->ipv6.fib6_null_entry)
55321f17e2f2SDavid Ahern 		return 0;
55331da177e4SLinus Torvalds 
553413e38901SDavid Ahern 	if ((filter->flags & RTM_F_PREFIX) &&
553593c2fb25SDavid Ahern 	    !(rt->fib6_flags & RTF_PREFIX_RT)) {
5536f8cfe2ceSDavid Ahern 		/* success since this is not a prefix route */
5537f8cfe2ceSDavid Ahern 		return 1;
5538f8cfe2ceSDavid Ahern 	}
553913e38901SDavid Ahern 	if (filter->filter_set) {
554013e38901SDavid Ahern 		if ((filter->rt_type && rt->fib6_type != filter->rt_type) ||
554113e38901SDavid Ahern 		    (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) ||
554213e38901SDavid Ahern 		    (filter->protocol && rt->fib6_protocol != filter->protocol)) {
554313e38901SDavid Ahern 			return 1;
554413e38901SDavid Ahern 		}
554513e38901SDavid Ahern 		flags |= NLM_F_DUMP_FILTERED;
5546f8cfe2ceSDavid Ahern 	}
55471da177e4SLinus Torvalds 
5548d4ead6b3SDavid Ahern 	return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0,
5549d4ead6b3SDavid Ahern 			     RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid,
555013e38901SDavid Ahern 			     arg->cb->nlh->nlmsg_seq, flags);
55511da177e4SLinus Torvalds }
55521da177e4SLinus Torvalds 
55530eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb,
55540eff0a27SJakub Kicinski 					const struct nlmsghdr *nlh,
55550eff0a27SJakub Kicinski 					struct nlattr **tb,
55560eff0a27SJakub Kicinski 					struct netlink_ext_ack *extack)
55570eff0a27SJakub Kicinski {
55580eff0a27SJakub Kicinski 	struct rtmsg *rtm;
55590eff0a27SJakub Kicinski 	int i, err;
55600eff0a27SJakub Kicinski 
55610eff0a27SJakub Kicinski 	if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) {
55620eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack,
55630eff0a27SJakub Kicinski 				   "Invalid header for get route request");
55640eff0a27SJakub Kicinski 		return -EINVAL;
55650eff0a27SJakub Kicinski 	}
55660eff0a27SJakub Kicinski 
55670eff0a27SJakub Kicinski 	if (!netlink_strict_get_check(skb))
55688cb08174SJohannes Berg 		return nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX,
55690eff0a27SJakub Kicinski 					      rtm_ipv6_policy, extack);
55700eff0a27SJakub Kicinski 
55710eff0a27SJakub Kicinski 	rtm = nlmsg_data(nlh);
55720eff0a27SJakub Kicinski 	if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) ||
55730eff0a27SJakub Kicinski 	    (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) ||
55740eff0a27SJakub Kicinski 	    rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope ||
55750eff0a27SJakub Kicinski 	    rtm->rtm_type) {
55760eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request");
55770eff0a27SJakub Kicinski 		return -EINVAL;
55780eff0a27SJakub Kicinski 	}
55790eff0a27SJakub Kicinski 	if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) {
55800eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack,
55810eff0a27SJakub Kicinski 				   "Invalid flags for get route request");
55820eff0a27SJakub Kicinski 		return -EINVAL;
55830eff0a27SJakub Kicinski 	}
55840eff0a27SJakub Kicinski 
55858cb08174SJohannes Berg 	err = nlmsg_parse_deprecated_strict(nlh, sizeof(*rtm), tb, RTA_MAX,
55860eff0a27SJakub Kicinski 					    rtm_ipv6_policy, extack);
55870eff0a27SJakub Kicinski 	if (err)
55880eff0a27SJakub Kicinski 		return err;
55890eff0a27SJakub Kicinski 
55900eff0a27SJakub Kicinski 	if ((tb[RTA_SRC] && !rtm->rtm_src_len) ||
55910eff0a27SJakub Kicinski 	    (tb[RTA_DST] && !rtm->rtm_dst_len)) {
55920eff0a27SJakub Kicinski 		NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6");
55930eff0a27SJakub Kicinski 		return -EINVAL;
55940eff0a27SJakub Kicinski 	}
55950eff0a27SJakub Kicinski 
55960eff0a27SJakub Kicinski 	for (i = 0; i <= RTA_MAX; i++) {
55970eff0a27SJakub Kicinski 		if (!tb[i])
55980eff0a27SJakub Kicinski 			continue;
55990eff0a27SJakub Kicinski 
56000eff0a27SJakub Kicinski 		switch (i) {
56010eff0a27SJakub Kicinski 		case RTA_SRC:
56020eff0a27SJakub Kicinski 		case RTA_DST:
56030eff0a27SJakub Kicinski 		case RTA_IIF:
56040eff0a27SJakub Kicinski 		case RTA_OIF:
56050eff0a27SJakub Kicinski 		case RTA_MARK:
56060eff0a27SJakub Kicinski 		case RTA_UID:
56070eff0a27SJakub Kicinski 		case RTA_SPORT:
56080eff0a27SJakub Kicinski 		case RTA_DPORT:
56090eff0a27SJakub Kicinski 		case RTA_IP_PROTO:
56100eff0a27SJakub Kicinski 			break;
56110eff0a27SJakub Kicinski 		default:
56120eff0a27SJakub Kicinski 			NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request");
56130eff0a27SJakub Kicinski 			return -EINVAL;
56140eff0a27SJakub Kicinski 		}
56150eff0a27SJakub Kicinski 	}
56160eff0a27SJakub Kicinski 
56170eff0a27SJakub Kicinski 	return 0;
56180eff0a27SJakub Kicinski }
56190eff0a27SJakub Kicinski 
5620c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
5621c21ef3e3SDavid Ahern 			      struct netlink_ext_ack *extack)
56221da177e4SLinus Torvalds {
56233b1e0a65SYOSHIFUJI Hideaki 	struct net *net = sock_net(in_skb->sk);
5624ab364a6fSThomas Graf 	struct nlattr *tb[RTA_MAX+1];
562518c3a61cSRoopa Prabhu 	int err, iif = 0, oif = 0;
5626a68886a6SDavid Ahern 	struct fib6_info *from;
562718c3a61cSRoopa Prabhu 	struct dst_entry *dst;
56281da177e4SLinus Torvalds 	struct rt6_info *rt;
5629ab364a6fSThomas Graf 	struct sk_buff *skb;
5630ab364a6fSThomas Graf 	struct rtmsg *rtm;
5631744486d4SMaciej Żenczykowski 	struct flowi6 fl6 = {};
563218c3a61cSRoopa Prabhu 	bool fibmatch;
5633ab364a6fSThomas Graf 
56340eff0a27SJakub Kicinski 	err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack);
5635ab364a6fSThomas Graf 	if (err < 0)
5636ab364a6fSThomas Graf 		goto errout;
5637ab364a6fSThomas Graf 
5638ab364a6fSThomas Graf 	err = -EINVAL;
563938b7097bSHannes Frederic Sowa 	rtm = nlmsg_data(nlh);
564038b7097bSHannes Frederic Sowa 	fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
564118c3a61cSRoopa Prabhu 	fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
5642ab364a6fSThomas Graf 
5643ab364a6fSThomas Graf 	if (tb[RTA_SRC]) {
5644ab364a6fSThomas Graf 		if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
5645ab364a6fSThomas Graf 			goto errout;
5646ab364a6fSThomas Graf 
56474e3fd7a0SAlexey Dobriyan 		fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
5648ab364a6fSThomas Graf 	}
5649ab364a6fSThomas Graf 
5650ab364a6fSThomas Graf 	if (tb[RTA_DST]) {
5651ab364a6fSThomas Graf 		if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
5652ab364a6fSThomas Graf 			goto errout;
5653ab364a6fSThomas Graf 
56544e3fd7a0SAlexey Dobriyan 		fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
5655ab364a6fSThomas Graf 	}
5656ab364a6fSThomas Graf 
5657ab364a6fSThomas Graf 	if (tb[RTA_IIF])
5658ab364a6fSThomas Graf 		iif = nla_get_u32(tb[RTA_IIF]);
5659ab364a6fSThomas Graf 
5660ab364a6fSThomas Graf 	if (tb[RTA_OIF])
566172331bc0SShmulik Ladkani 		oif = nla_get_u32(tb[RTA_OIF]);
5662ab364a6fSThomas Graf 
56632e47b291SLorenzo Colitti 	if (tb[RTA_MARK])
56642e47b291SLorenzo Colitti 		fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
56652e47b291SLorenzo Colitti 
5666622ec2c9SLorenzo Colitti 	if (tb[RTA_UID])
5667622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = make_kuid(current_user_ns(),
5668622ec2c9SLorenzo Colitti 					   nla_get_u32(tb[RTA_UID]));
5669622ec2c9SLorenzo Colitti 	else
5670622ec2c9SLorenzo Colitti 		fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
5671622ec2c9SLorenzo Colitti 
5672eacb9384SRoopa Prabhu 	if (tb[RTA_SPORT])
5673eacb9384SRoopa Prabhu 		fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]);
5674eacb9384SRoopa Prabhu 
5675eacb9384SRoopa Prabhu 	if (tb[RTA_DPORT])
5676eacb9384SRoopa Prabhu 		fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]);
5677eacb9384SRoopa Prabhu 
5678eacb9384SRoopa Prabhu 	if (tb[RTA_IP_PROTO]) {
5679eacb9384SRoopa Prabhu 		err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO],
56805e1a99eaSHangbin Liu 						  &fl6.flowi6_proto, AF_INET6,
56815e1a99eaSHangbin Liu 						  extack);
5682eacb9384SRoopa Prabhu 		if (err)
5683eacb9384SRoopa Prabhu 			goto errout;
5684eacb9384SRoopa Prabhu 	}
5685eacb9384SRoopa Prabhu 
5686ab364a6fSThomas Graf 	if (iif) {
5687ab364a6fSThomas Graf 		struct net_device *dev;
568872331bc0SShmulik Ladkani 		int flags = 0;
568972331bc0SShmulik Ladkani 
5690121622dbSFlorian Westphal 		rcu_read_lock();
5691121622dbSFlorian Westphal 
5692121622dbSFlorian Westphal 		dev = dev_get_by_index_rcu(net, iif);
5693ab364a6fSThomas Graf 		if (!dev) {
5694121622dbSFlorian Westphal 			rcu_read_unlock();
5695ab364a6fSThomas Graf 			err = -ENODEV;
5696ab364a6fSThomas Graf 			goto errout;
5697ab364a6fSThomas Graf 		}
569872331bc0SShmulik Ladkani 
569972331bc0SShmulik Ladkani 		fl6.flowi6_iif = iif;
570072331bc0SShmulik Ladkani 
570172331bc0SShmulik Ladkani 		if (!ipv6_addr_any(&fl6.saddr))
570272331bc0SShmulik Ladkani 			flags |= RT6_LOOKUP_F_HAS_SADDR;
570372331bc0SShmulik Ladkani 
5704b75cc8f9SDavid Ahern 		dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags);
5705121622dbSFlorian Westphal 
5706121622dbSFlorian Westphal 		rcu_read_unlock();
570772331bc0SShmulik Ladkani 	} else {
570872331bc0SShmulik Ladkani 		fl6.flowi6_oif = oif;
570972331bc0SShmulik Ladkani 
571018c3a61cSRoopa Prabhu 		dst = ip6_route_output(net, NULL, &fl6);
571118c3a61cSRoopa Prabhu 	}
571218c3a61cSRoopa Prabhu 
571318c3a61cSRoopa Prabhu 
571418c3a61cSRoopa Prabhu 	rt = container_of(dst, struct rt6_info, dst);
571518c3a61cSRoopa Prabhu 	if (rt->dst.error) {
571618c3a61cSRoopa Prabhu 		err = rt->dst.error;
571718c3a61cSRoopa Prabhu 		ip6_rt_put(rt);
571818c3a61cSRoopa Prabhu 		goto errout;
5719ab364a6fSThomas Graf 	}
57201da177e4SLinus Torvalds 
57219d6acb3bSWANG Cong 	if (rt == net->ipv6.ip6_null_entry) {
57229d6acb3bSWANG Cong 		err = rt->dst.error;
57239d6acb3bSWANG Cong 		ip6_rt_put(rt);
57249d6acb3bSWANG Cong 		goto errout;
57259d6acb3bSWANG Cong 	}
57269d6acb3bSWANG Cong 
57271da177e4SLinus Torvalds 	skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
572838308473SDavid S. Miller 	if (!skb) {
572994e187c0SAmerigo Wang 		ip6_rt_put(rt);
5730ab364a6fSThomas Graf 		err = -ENOBUFS;
5731ab364a6fSThomas Graf 		goto errout;
5732ab364a6fSThomas Graf 	}
57331da177e4SLinus Torvalds 
5734d8d1f30bSChangli Gao 	skb_dst_set(skb, &rt->dst);
5735a68886a6SDavid Ahern 
5736a68886a6SDavid Ahern 	rcu_read_lock();
5737a68886a6SDavid Ahern 	from = rcu_dereference(rt->from);
5738886b7a50SMartin KaFai Lau 	if (from) {
573918c3a61cSRoopa Prabhu 		if (fibmatch)
5740886b7a50SMartin KaFai Lau 			err = rt6_fill_node(net, skb, from, NULL, NULL, NULL,
5741886b7a50SMartin KaFai Lau 					    iif, RTM_NEWROUTE,
5742886b7a50SMartin KaFai Lau 					    NETLINK_CB(in_skb).portid,
574318c3a61cSRoopa Prabhu 					    nlh->nlmsg_seq, 0);
574418c3a61cSRoopa Prabhu 		else
5745a68886a6SDavid Ahern 			err = rt6_fill_node(net, skb, from, dst, &fl6.daddr,
5746a68886a6SDavid Ahern 					    &fl6.saddr, iif, RTM_NEWROUTE,
5747886b7a50SMartin KaFai Lau 					    NETLINK_CB(in_skb).portid,
5748886b7a50SMartin KaFai Lau 					    nlh->nlmsg_seq, 0);
5749886b7a50SMartin KaFai Lau 	} else {
5750886b7a50SMartin KaFai Lau 		err = -ENETUNREACH;
5751886b7a50SMartin KaFai Lau 	}
5752a68886a6SDavid Ahern 	rcu_read_unlock();
5753a68886a6SDavid Ahern 
57541da177e4SLinus Torvalds 	if (err < 0) {
5755ab364a6fSThomas Graf 		kfree_skb(skb);
5756ab364a6fSThomas Graf 		goto errout;
57571da177e4SLinus Torvalds 	}
57581da177e4SLinus Torvalds 
575915e47304SEric W. Biederman 	err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
5760ab364a6fSThomas Graf errout:
57611da177e4SLinus Torvalds 	return err;
57621da177e4SLinus Torvalds }
57631da177e4SLinus Torvalds 
57648d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info,
576537a1d361SRoopa Prabhu 		     unsigned int nlm_flags)
57661da177e4SLinus Torvalds {
57671da177e4SLinus Torvalds 	struct sk_buff *skb;
57685578689aSDaniel Lezcano 	struct net *net = info->nl_net;
5769528c4cebSDenis V. Lunev 	u32 seq;
5770528c4cebSDenis V. Lunev 	int err;
57710d51aa80SJamal Hadi Salim 
5772528c4cebSDenis V. Lunev 	err = -ENOBUFS;
577338308473SDavid S. Miller 	seq = info->nlh ? info->nlh->nlmsg_seq : 0;
577486872cb5SThomas Graf 
577519e42e45SRoopa Prabhu 	skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
577638308473SDavid S. Miller 	if (!skb)
577721713ebcSThomas Graf 		goto errout;
57781da177e4SLinus Torvalds 
5779d4ead6b3SDavid Ahern 	err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
5780f8cfe2ceSDavid Ahern 			    event, info->portid, seq, nlm_flags);
578126932566SPatrick McHardy 	if (err < 0) {
578226932566SPatrick McHardy 		/* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
578326932566SPatrick McHardy 		WARN_ON(err == -EMSGSIZE);
578426932566SPatrick McHardy 		kfree_skb(skb);
578526932566SPatrick McHardy 		goto errout;
578626932566SPatrick McHardy 	}
578715e47304SEric W. Biederman 	rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
57885578689aSDaniel Lezcano 		    info->nlh, gfp_any());
57891ce85fe4SPablo Neira Ayuso 	return;
579021713ebcSThomas Graf errout:
579121713ebcSThomas Graf 	if (err < 0)
57925578689aSDaniel Lezcano 		rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
57931da177e4SLinus Torvalds }
57941da177e4SLinus Torvalds 
579519a3b7eeSDavid Ahern void fib6_rt_update(struct net *net, struct fib6_info *rt,
579619a3b7eeSDavid Ahern 		    struct nl_info *info)
579719a3b7eeSDavid Ahern {
579819a3b7eeSDavid Ahern 	u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
579919a3b7eeSDavid Ahern 	struct sk_buff *skb;
580019a3b7eeSDavid Ahern 	int err = -ENOBUFS;
580119a3b7eeSDavid Ahern 
580219a3b7eeSDavid Ahern 	/* call_fib6_entry_notifiers will be removed when in-kernel notifier
580319a3b7eeSDavid Ahern 	 * is implemented and supported for nexthop objects
580419a3b7eeSDavid Ahern 	 */
580519a3b7eeSDavid Ahern 	call_fib6_entry_notifiers(net, FIB_EVENT_ENTRY_REPLACE, rt, NULL);
580619a3b7eeSDavid Ahern 
580719a3b7eeSDavid Ahern 	skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
580819a3b7eeSDavid Ahern 	if (!skb)
580919a3b7eeSDavid Ahern 		goto errout;
581019a3b7eeSDavid Ahern 
581119a3b7eeSDavid Ahern 	err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
581219a3b7eeSDavid Ahern 			    RTM_NEWROUTE, info->portid, seq, NLM_F_REPLACE);
581319a3b7eeSDavid Ahern 	if (err < 0) {
581419a3b7eeSDavid Ahern 		/* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
581519a3b7eeSDavid Ahern 		WARN_ON(err == -EMSGSIZE);
581619a3b7eeSDavid Ahern 		kfree_skb(skb);
581719a3b7eeSDavid Ahern 		goto errout;
581819a3b7eeSDavid Ahern 	}
581919a3b7eeSDavid Ahern 	rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
582019a3b7eeSDavid Ahern 		    info->nlh, gfp_any());
582119a3b7eeSDavid Ahern 	return;
582219a3b7eeSDavid Ahern errout:
582319a3b7eeSDavid Ahern 	if (err < 0)
582419a3b7eeSDavid Ahern 		rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
582519a3b7eeSDavid Ahern }
582619a3b7eeSDavid Ahern 
58278ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this,
5828351638e7SJiri Pirko 				unsigned long event, void *ptr)
58298ed67789SDaniel Lezcano {
5830351638e7SJiri Pirko 	struct net_device *dev = netdev_notifier_info_to_dev(ptr);
5831c346dca1SYOSHIFUJI Hideaki 	struct net *net = dev_net(dev);
58328ed67789SDaniel Lezcano 
5833242d3a49SWANG Cong 	if (!(dev->flags & IFF_LOOPBACK))
5834242d3a49SWANG Cong 		return NOTIFY_OK;
5835242d3a49SWANG Cong 
5836242d3a49SWANG Cong 	if (event == NETDEV_REGISTER) {
58371cf844c7SDavid Ahern 		net->ipv6.fib6_null_entry->fib6_nh->fib_nh_dev = dev;
5838d8d1f30bSChangli Gao 		net->ipv6.ip6_null_entry->dst.dev = dev;
58398ed67789SDaniel Lezcano 		net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
58408ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
5841d8d1f30bSChangli Gao 		net->ipv6.ip6_prohibit_entry->dst.dev = dev;
58428ed67789SDaniel Lezcano 		net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
5843d8d1f30bSChangli Gao 		net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
58448ed67789SDaniel Lezcano 		net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
58458ed67789SDaniel Lezcano #endif
584676da0704SWANG Cong 	 } else if (event == NETDEV_UNREGISTER &&
584776da0704SWANG Cong 		    dev->reg_state != NETREG_UNREGISTERED) {
584876da0704SWANG Cong 		/* NETDEV_UNREGISTER could be fired for multiple times by
584976da0704SWANG Cong 		 * netdev_wait_allrefs(). Make sure we only call this once.
585076da0704SWANG Cong 		 */
585112d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
5852242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES
585312d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
585412d94a80SEric Dumazet 		in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
5855242d3a49SWANG Cong #endif
58568ed67789SDaniel Lezcano 	}
58578ed67789SDaniel Lezcano 
58588ed67789SDaniel Lezcano 	return NOTIFY_OK;
58598ed67789SDaniel Lezcano }
58608ed67789SDaniel Lezcano 
58611da177e4SLinus Torvalds /*
58621da177e4SLinus Torvalds  *	/proc
58631da177e4SLinus Torvalds  */
58641da177e4SLinus Torvalds 
58651da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS
58661da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v)
58671da177e4SLinus Torvalds {
586869ddb805SDaniel Lezcano 	struct net *net = (struct net *)seq->private;
58691da177e4SLinus Torvalds 	seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
587069ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_nodes,
587169ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_route_nodes,
587281eb8447SWei Wang 		   atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
587369ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_entries,
587469ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_rt_cache,
5875fc66f95cSEric Dumazet 		   dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
587669ddb805SDaniel Lezcano 		   net->ipv6.rt6_stats->fib_discarded_routes);
58771da177e4SLinus Torvalds 
58781da177e4SLinus Torvalds 	return 0;
58791da177e4SLinus Torvalds }
58801da177e4SLinus Torvalds #endif	/* CONFIG_PROC_FS */
58811da177e4SLinus Torvalds 
58821da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
58831da177e4SLinus Torvalds 
58841da177e4SLinus Torvalds static
5885fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
58861da177e4SLinus Torvalds 			      void __user *buffer, size_t *lenp, loff_t *ppos)
58871da177e4SLinus Torvalds {
5888c486da34SLucian Adrian Grijincu 	struct net *net;
5889c486da34SLucian Adrian Grijincu 	int delay;
5890f0fb9b28SAditya Pakki 	int ret;
5891c486da34SLucian Adrian Grijincu 	if (!write)
5892c486da34SLucian Adrian Grijincu 		return -EINVAL;
5893c486da34SLucian Adrian Grijincu 
5894c486da34SLucian Adrian Grijincu 	net = (struct net *)ctl->extra1;
5895c486da34SLucian Adrian Grijincu 	delay = net->ipv6.sysctl.flush_delay;
5896f0fb9b28SAditya Pakki 	ret = proc_dointvec(ctl, write, buffer, lenp, ppos);
5897f0fb9b28SAditya Pakki 	if (ret)
5898f0fb9b28SAditya Pakki 		return ret;
5899f0fb9b28SAditya Pakki 
59002ac3ac8fSMichal Kubeček 	fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
59011da177e4SLinus Torvalds 	return 0;
59021da177e4SLinus Torvalds }
59031da177e4SLinus Torvalds 
59047c6bb7d2SDavid Ahern static int zero;
59057c6bb7d2SDavid Ahern static int one = 1;
59067c6bb7d2SDavid Ahern 
5907ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = {
59081da177e4SLinus Torvalds 	{
59091da177e4SLinus Torvalds 		.procname	=	"flush",
59104990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.flush_delay,
59111da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
591289c8b3a1SDave Jones 		.mode		=	0200,
59136d9f239aSAlexey Dobriyan 		.proc_handler	=	ipv6_sysctl_rtcache_flush
59141da177e4SLinus Torvalds 	},
59151da177e4SLinus Torvalds 	{
59161da177e4SLinus Torvalds 		.procname	=	"gc_thresh",
59179a7ec3a9SDaniel Lezcano 		.data		=	&ip6_dst_ops_template.gc_thresh,
59181da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59191da177e4SLinus Torvalds 		.mode		=	0644,
59206d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
59211da177e4SLinus Torvalds 	},
59221da177e4SLinus Torvalds 	{
59231da177e4SLinus Torvalds 		.procname	=	"max_size",
59244990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_max_size,
59251da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59261da177e4SLinus Torvalds 		.mode		=	0644,
59276d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec,
59281da177e4SLinus Torvalds 	},
59291da177e4SLinus Torvalds 	{
59301da177e4SLinus Torvalds 		.procname	=	"gc_min_interval",
59314990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
59321da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59331da177e4SLinus Torvalds 		.mode		=	0644,
59346d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
59351da177e4SLinus Torvalds 	},
59361da177e4SLinus Torvalds 	{
59371da177e4SLinus Torvalds 		.procname	=	"gc_timeout",
59384990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_timeout,
59391da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59401da177e4SLinus Torvalds 		.mode		=	0644,
59416d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
59421da177e4SLinus Torvalds 	},
59431da177e4SLinus Torvalds 	{
59441da177e4SLinus Torvalds 		.procname	=	"gc_interval",
59454990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_interval,
59461da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59471da177e4SLinus Torvalds 		.mode		=	0644,
59486d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
59491da177e4SLinus Torvalds 	},
59501da177e4SLinus Torvalds 	{
59511da177e4SLinus Torvalds 		.procname	=	"gc_elasticity",
59524990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
59531da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59541da177e4SLinus Torvalds 		.mode		=	0644,
5955f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
59561da177e4SLinus Torvalds 	},
59571da177e4SLinus Torvalds 	{
59581da177e4SLinus Torvalds 		.procname	=	"mtu_expires",
59594990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_mtu_expires,
59601da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59611da177e4SLinus Torvalds 		.mode		=	0644,
59626d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_jiffies,
59631da177e4SLinus Torvalds 	},
59641da177e4SLinus Torvalds 	{
59651da177e4SLinus Torvalds 		.procname	=	"min_adv_mss",
59664990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_min_advmss,
59671da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59681da177e4SLinus Torvalds 		.mode		=	0644,
5969f3d3f616SMin Zhang 		.proc_handler	=	proc_dointvec,
59701da177e4SLinus Torvalds 	},
59711da177e4SLinus Torvalds 	{
59721da177e4SLinus Torvalds 		.procname	=	"gc_min_interval_ms",
59734990509fSDaniel Lezcano 		.data		=	&init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
59741da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
59751da177e4SLinus Torvalds 		.mode		=	0644,
59766d9f239aSAlexey Dobriyan 		.proc_handler	=	proc_dointvec_ms_jiffies,
59771da177e4SLinus Torvalds 	},
59787c6bb7d2SDavid Ahern 	{
59797c6bb7d2SDavid Ahern 		.procname	=	"skip_notify_on_dev_down",
59807c6bb7d2SDavid Ahern 		.data		=	&init_net.ipv6.sysctl.skip_notify_on_dev_down,
59817c6bb7d2SDavid Ahern 		.maxlen		=	sizeof(int),
59827c6bb7d2SDavid Ahern 		.mode		=	0644,
59837c6bb7d2SDavid Ahern 		.proc_handler	=	proc_dointvec,
59847c6bb7d2SDavid Ahern 		.extra1		=	&zero,
59857c6bb7d2SDavid Ahern 		.extra2		=	&one,
59867c6bb7d2SDavid Ahern 	},
5987f8572d8fSEric W. Biederman 	{ }
59881da177e4SLinus Torvalds };
59891da177e4SLinus Torvalds 
59902c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
5991760f2d01SDaniel Lezcano {
5992760f2d01SDaniel Lezcano 	struct ctl_table *table;
5993760f2d01SDaniel Lezcano 
5994760f2d01SDaniel Lezcano 	table = kmemdup(ipv6_route_table_template,
5995760f2d01SDaniel Lezcano 			sizeof(ipv6_route_table_template),
5996760f2d01SDaniel Lezcano 			GFP_KERNEL);
59975ee09105SYOSHIFUJI Hideaki 
59985ee09105SYOSHIFUJI Hideaki 	if (table) {
59995ee09105SYOSHIFUJI Hideaki 		table[0].data = &net->ipv6.sysctl.flush_delay;
6000c486da34SLucian Adrian Grijincu 		table[0].extra1 = net;
600186393e52SAlexey Dobriyan 		table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
60025ee09105SYOSHIFUJI Hideaki 		table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
60035ee09105SYOSHIFUJI Hideaki 		table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
60045ee09105SYOSHIFUJI Hideaki 		table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
60055ee09105SYOSHIFUJI Hideaki 		table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
60065ee09105SYOSHIFUJI Hideaki 		table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
60075ee09105SYOSHIFUJI Hideaki 		table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
60085ee09105SYOSHIFUJI Hideaki 		table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
60099c69fabeSAlexey Dobriyan 		table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
60107c6bb7d2SDavid Ahern 		table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down;
6011464dc801SEric W. Biederman 
6012464dc801SEric W. Biederman 		/* Don't export sysctls to unprivileged users */
6013464dc801SEric W. Biederman 		if (net->user_ns != &init_user_ns)
6014464dc801SEric W. Biederman 			table[0].procname = NULL;
60155ee09105SYOSHIFUJI Hideaki 	}
60165ee09105SYOSHIFUJI Hideaki 
6017760f2d01SDaniel Lezcano 	return table;
6018760f2d01SDaniel Lezcano }
60191da177e4SLinus Torvalds #endif
60201da177e4SLinus Torvalds 
60212c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net)
6022cdb18761SDaniel Lezcano {
6023633d424bSPavel Emelyanov 	int ret = -ENOMEM;
60248ed67789SDaniel Lezcano 
602586393e52SAlexey Dobriyan 	memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
602686393e52SAlexey Dobriyan 	       sizeof(net->ipv6.ip6_dst_ops));
6027f2fc6a54SBenjamin Thery 
6028fc66f95cSEric Dumazet 	if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
6029fc66f95cSEric Dumazet 		goto out_ip6_dst_ops;
6030fc66f95cSEric Dumazet 
60311cf844c7SDavid Ahern 	net->ipv6.fib6_null_entry = fib6_info_alloc(GFP_KERNEL, true);
6032421842edSDavid Ahern 	if (!net->ipv6.fib6_null_entry)
6033421842edSDavid Ahern 		goto out_ip6_dst_entries;
60341cf844c7SDavid Ahern 	memcpy(net->ipv6.fib6_null_entry, &fib6_null_entry_template,
60351cf844c7SDavid Ahern 	       sizeof(*net->ipv6.fib6_null_entry));
6036421842edSDavid Ahern 
60378ed67789SDaniel Lezcano 	net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
60388ed67789SDaniel Lezcano 					   sizeof(*net->ipv6.ip6_null_entry),
60398ed67789SDaniel Lezcano 					   GFP_KERNEL);
60408ed67789SDaniel Lezcano 	if (!net->ipv6.ip6_null_entry)
6041421842edSDavid Ahern 		goto out_fib6_null_entry;
6042d8d1f30bSChangli Gao 	net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
604362fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
604462fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
604574109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_null_entry->rt6i_uncached);
60468ed67789SDaniel Lezcano 
60478ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
6048feca7d8cSVincent Bernat 	net->ipv6.fib6_has_custom_rules = false;
60498ed67789SDaniel Lezcano 	net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
60508ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_prohibit_entry),
60518ed67789SDaniel Lezcano 					       GFP_KERNEL);
605268fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_prohibit_entry)
605368fffc67SPeter Zijlstra 		goto out_ip6_null_entry;
6054d8d1f30bSChangli Gao 	net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
605562fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
605662fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
605774109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_prohibit_entry->rt6i_uncached);
60588ed67789SDaniel Lezcano 
60598ed67789SDaniel Lezcano 	net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
60608ed67789SDaniel Lezcano 					       sizeof(*net->ipv6.ip6_blk_hole_entry),
60618ed67789SDaniel Lezcano 					       GFP_KERNEL);
606268fffc67SPeter Zijlstra 	if (!net->ipv6.ip6_blk_hole_entry)
606368fffc67SPeter Zijlstra 		goto out_ip6_prohibit_entry;
6064d8d1f30bSChangli Gao 	net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
606562fa8a84SDavid S. Miller 	dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
606662fa8a84SDavid S. Miller 			 ip6_template_metrics, true);
606774109218SWei Wang 	INIT_LIST_HEAD(&net->ipv6.ip6_blk_hole_entry->rt6i_uncached);
60688ed67789SDaniel Lezcano #endif
60698ed67789SDaniel Lezcano 
6070b339a47cSPeter Zijlstra 	net->ipv6.sysctl.flush_delay = 0;
6071b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_max_size = 4096;
6072b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
6073b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
6074b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
6075b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
6076b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
6077b339a47cSPeter Zijlstra 	net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
60787c6bb7d2SDavid Ahern 	net->ipv6.sysctl.skip_notify_on_dev_down = 0;
6079b339a47cSPeter Zijlstra 
60806891a346SBenjamin Thery 	net->ipv6.ip6_rt_gc_expire = 30*HZ;
60816891a346SBenjamin Thery 
60828ed67789SDaniel Lezcano 	ret = 0;
60838ed67789SDaniel Lezcano out:
60848ed67789SDaniel Lezcano 	return ret;
6085f2fc6a54SBenjamin Thery 
608668fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES
608768fffc67SPeter Zijlstra out_ip6_prohibit_entry:
608868fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_prohibit_entry);
608968fffc67SPeter Zijlstra out_ip6_null_entry:
609068fffc67SPeter Zijlstra 	kfree(net->ipv6.ip6_null_entry);
609168fffc67SPeter Zijlstra #endif
6092421842edSDavid Ahern out_fib6_null_entry:
6093421842edSDavid Ahern 	kfree(net->ipv6.fib6_null_entry);
6094fc66f95cSEric Dumazet out_ip6_dst_entries:
6095fc66f95cSEric Dumazet 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
6096f2fc6a54SBenjamin Thery out_ip6_dst_ops:
6097f2fc6a54SBenjamin Thery 	goto out;
6098cdb18761SDaniel Lezcano }
6099cdb18761SDaniel Lezcano 
61002c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net)
6101cdb18761SDaniel Lezcano {
6102421842edSDavid Ahern 	kfree(net->ipv6.fib6_null_entry);
61038ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_null_entry);
61048ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES
61058ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_prohibit_entry);
61068ed67789SDaniel Lezcano 	kfree(net->ipv6.ip6_blk_hole_entry);
61078ed67789SDaniel Lezcano #endif
610841bb78b4SXiaotian Feng 	dst_entries_destroy(&net->ipv6.ip6_dst_ops);
6109cdb18761SDaniel Lezcano }
6110cdb18761SDaniel Lezcano 
6111d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net)
6112d189634eSThomas Graf {
6113d189634eSThomas Graf #ifdef CONFIG_PROC_FS
6114c3506372SChristoph Hellwig 	proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops,
6115c3506372SChristoph Hellwig 			sizeof(struct ipv6_route_iter));
61163617d949SChristoph Hellwig 	proc_create_net_single("rt6_stats", 0444, net->proc_net,
61173617d949SChristoph Hellwig 			rt6_stats_seq_show, NULL);
6118d189634eSThomas Graf #endif
6119d189634eSThomas Graf 	return 0;
6120d189634eSThomas Graf }
6121d189634eSThomas Graf 
6122d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net)
6123d189634eSThomas Graf {
6124d189634eSThomas Graf #ifdef CONFIG_PROC_FS
6125ece31ffdSGao feng 	remove_proc_entry("ipv6_route", net->proc_net);
6126ece31ffdSGao feng 	remove_proc_entry("rt6_stats", net->proc_net);
6127d189634eSThomas Graf #endif
6128d189634eSThomas Graf }
6129d189634eSThomas Graf 
6130cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = {
6131cdb18761SDaniel Lezcano 	.init = ip6_route_net_init,
6132cdb18761SDaniel Lezcano 	.exit = ip6_route_net_exit,
6133cdb18761SDaniel Lezcano };
6134cdb18761SDaniel Lezcano 
6135c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net)
6136c3426b47SDavid S. Miller {
6137c3426b47SDavid S. Miller 	struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
6138c3426b47SDavid S. Miller 
6139c3426b47SDavid S. Miller 	if (!bp)
6140c3426b47SDavid S. Miller 		return -ENOMEM;
6141c3426b47SDavid S. Miller 	inet_peer_base_init(bp);
6142c3426b47SDavid S. Miller 	net->ipv6.peers = bp;
6143c3426b47SDavid S. Miller 	return 0;
6144c3426b47SDavid S. Miller }
6145c3426b47SDavid S. Miller 
6146c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net)
6147c3426b47SDavid S. Miller {
6148c3426b47SDavid S. Miller 	struct inet_peer_base *bp = net->ipv6.peers;
6149c3426b47SDavid S. Miller 
6150c3426b47SDavid S. Miller 	net->ipv6.peers = NULL;
615156a6b248SDavid S. Miller 	inetpeer_invalidate_tree(bp);
6152c3426b47SDavid S. Miller 	kfree(bp);
6153c3426b47SDavid S. Miller }
6154c3426b47SDavid S. Miller 
61552b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = {
6156c3426b47SDavid S. Miller 	.init	=	ipv6_inetpeer_init,
6157c3426b47SDavid S. Miller 	.exit	=	ipv6_inetpeer_exit,
6158c3426b47SDavid S. Miller };
6159c3426b47SDavid S. Miller 
6160d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = {
6161d189634eSThomas Graf 	.init = ip6_route_net_init_late,
6162d189634eSThomas Graf 	.exit = ip6_route_net_exit_late,
6163d189634eSThomas Graf };
6164d189634eSThomas Graf 
61658ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = {
61668ed67789SDaniel Lezcano 	.notifier_call = ip6_route_dev_notify,
6167242d3a49SWANG Cong 	.priority = ADDRCONF_NOTIFY_PRIORITY - 10,
61688ed67789SDaniel Lezcano };
61698ed67789SDaniel Lezcano 
61702f460933SWANG Cong void __init ip6_route_init_special_entries(void)
61712f460933SWANG Cong {
61722f460933SWANG Cong 	/* Registering of the loopback is done before this portion of code,
61732f460933SWANG Cong 	 * the loopback reference in rt6_info will not be taken, do it
61742f460933SWANG Cong 	 * manually for init_net */
61751cf844c7SDavid Ahern 	init_net.ipv6.fib6_null_entry->fib6_nh->fib_nh_dev = init_net.loopback_dev;
61762f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
61772f460933SWANG Cong 	init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
61782f460933SWANG Cong   #ifdef CONFIG_IPV6_MULTIPLE_TABLES
61792f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
61802f460933SWANG Cong 	init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
61812f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
61822f460933SWANG Cong 	init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
61832f460933SWANG Cong   #endif
61842f460933SWANG Cong }
61852f460933SWANG Cong 
6186433d49c3SDaniel Lezcano int __init ip6_route_init(void)
61871da177e4SLinus Torvalds {
6188433d49c3SDaniel Lezcano 	int ret;
61898d0b94afSMartin KaFai Lau 	int cpu;
6190433d49c3SDaniel Lezcano 
61919a7ec3a9SDaniel Lezcano 	ret = -ENOMEM;
61929a7ec3a9SDaniel Lezcano 	ip6_dst_ops_template.kmem_cachep =
61939a7ec3a9SDaniel Lezcano 		kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
61949a7ec3a9SDaniel Lezcano 				  SLAB_HWCACHE_ALIGN, NULL);
61959a7ec3a9SDaniel Lezcano 	if (!ip6_dst_ops_template.kmem_cachep)
6196c19a28e1SFernando Carrijo 		goto out;
619714e50e57SDavid S. Miller 
6198fc66f95cSEric Dumazet 	ret = dst_entries_init(&ip6_dst_blackhole_ops);
61998ed67789SDaniel Lezcano 	if (ret)
6200bdb3289fSDaniel Lezcano 		goto out_kmem_cache;
6201bdb3289fSDaniel Lezcano 
6202c3426b47SDavid S. Miller 	ret = register_pernet_subsys(&ipv6_inetpeer_ops);
6203c3426b47SDavid S. Miller 	if (ret)
6204e8803b6cSDavid S. Miller 		goto out_dst_entries;
62052a0c451aSThomas Graf 
62067e52b33bSDavid S. Miller 	ret = register_pernet_subsys(&ip6_route_net_ops);
62077e52b33bSDavid S. Miller 	if (ret)
62087e52b33bSDavid S. Miller 		goto out_register_inetpeer;
6209c3426b47SDavid S. Miller 
62105dc121e9SArnaud Ebalard 	ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
62115dc121e9SArnaud Ebalard 
6212e8803b6cSDavid S. Miller 	ret = fib6_init();
6213433d49c3SDaniel Lezcano 	if (ret)
62148ed67789SDaniel Lezcano 		goto out_register_subsys;
6215433d49c3SDaniel Lezcano 
6216433d49c3SDaniel Lezcano 	ret = xfrm6_init();
6217433d49c3SDaniel Lezcano 	if (ret)
6218e8803b6cSDavid S. Miller 		goto out_fib6_init;
6219c35b7e72SDaniel Lezcano 
6220433d49c3SDaniel Lezcano 	ret = fib6_rules_init();
6221433d49c3SDaniel Lezcano 	if (ret)
6222433d49c3SDaniel Lezcano 		goto xfrm6_init;
62237e5449c2SDaniel Lezcano 
6224d189634eSThomas Graf 	ret = register_pernet_subsys(&ip6_route_net_late_ops);
6225d189634eSThomas Graf 	if (ret)
6226d189634eSThomas Graf 		goto fib6_rules_init;
6227d189634eSThomas Graf 
622816feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
622916feebcfSFlorian Westphal 				   inet6_rtm_newroute, NULL, 0);
623016feebcfSFlorian Westphal 	if (ret < 0)
623116feebcfSFlorian Westphal 		goto out_register_late_subsys;
623216feebcfSFlorian Westphal 
623316feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
623416feebcfSFlorian Westphal 				   inet6_rtm_delroute, NULL, 0);
623516feebcfSFlorian Westphal 	if (ret < 0)
623616feebcfSFlorian Westphal 		goto out_register_late_subsys;
623716feebcfSFlorian Westphal 
623816feebcfSFlorian Westphal 	ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
623916feebcfSFlorian Westphal 				   inet6_rtm_getroute, NULL,
624016feebcfSFlorian Westphal 				   RTNL_FLAG_DOIT_UNLOCKED);
624116feebcfSFlorian Westphal 	if (ret < 0)
6242d189634eSThomas Graf 		goto out_register_late_subsys;
6243433d49c3SDaniel Lezcano 
62448ed67789SDaniel Lezcano 	ret = register_netdevice_notifier(&ip6_route_dev_notifier);
6245cdb18761SDaniel Lezcano 	if (ret)
6246d189634eSThomas Graf 		goto out_register_late_subsys;
62478ed67789SDaniel Lezcano 
62488d0b94afSMartin KaFai Lau 	for_each_possible_cpu(cpu) {
62498d0b94afSMartin KaFai Lau 		struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
62508d0b94afSMartin KaFai Lau 
62518d0b94afSMartin KaFai Lau 		INIT_LIST_HEAD(&ul->head);
62528d0b94afSMartin KaFai Lau 		spin_lock_init(&ul->lock);
62538d0b94afSMartin KaFai Lau 	}
62548d0b94afSMartin KaFai Lau 
6255433d49c3SDaniel Lezcano out:
6256433d49c3SDaniel Lezcano 	return ret;
6257433d49c3SDaniel Lezcano 
6258d189634eSThomas Graf out_register_late_subsys:
625916feebcfSFlorian Westphal 	rtnl_unregister_all(PF_INET6);
6260d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
6261433d49c3SDaniel Lezcano fib6_rules_init:
6262433d49c3SDaniel Lezcano 	fib6_rules_cleanup();
6263433d49c3SDaniel Lezcano xfrm6_init:
6264433d49c3SDaniel Lezcano 	xfrm6_fini();
62652a0c451aSThomas Graf out_fib6_init:
62662a0c451aSThomas Graf 	fib6_gc_cleanup();
62678ed67789SDaniel Lezcano out_register_subsys:
62688ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
62697e52b33bSDavid S. Miller out_register_inetpeer:
62707e52b33bSDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
6271fc66f95cSEric Dumazet out_dst_entries:
6272fc66f95cSEric Dumazet 	dst_entries_destroy(&ip6_dst_blackhole_ops);
6273433d49c3SDaniel Lezcano out_kmem_cache:
6274f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
6275433d49c3SDaniel Lezcano 	goto out;
62761da177e4SLinus Torvalds }
62771da177e4SLinus Torvalds 
62781da177e4SLinus Torvalds void ip6_route_cleanup(void)
62791da177e4SLinus Torvalds {
62808ed67789SDaniel Lezcano 	unregister_netdevice_notifier(&ip6_route_dev_notifier);
6281d189634eSThomas Graf 	unregister_pernet_subsys(&ip6_route_net_late_ops);
6282101367c2SThomas Graf 	fib6_rules_cleanup();
62831da177e4SLinus Torvalds 	xfrm6_fini();
62841da177e4SLinus Torvalds 	fib6_gc_cleanup();
6285c3426b47SDavid S. Miller 	unregister_pernet_subsys(&ipv6_inetpeer_ops);
62868ed67789SDaniel Lezcano 	unregister_pernet_subsys(&ip6_route_net_ops);
628741bb78b4SXiaotian Feng 	dst_entries_destroy(&ip6_dst_blackhole_ops);
6288f2fc6a54SBenjamin Thery 	kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
62891da177e4SLinus Torvalds }
6290