11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 213f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 214f8a1b43bSDavid Ahern } 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 217f8a1b43bSDavid Ahern struct sk_buff *skb, 218f8a1b43bSDavid Ahern const void *daddr) 219f8a1b43bSDavid Ahern { 220f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 221f8a1b43bSDavid Ahern 222f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 223f83c7790SDavid S. Miller } 224f83c7790SDavid S. Miller 22563fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22663fca65dSJulian Anastasov { 22763fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22863fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22963fca65dSJulian Anastasov 230f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23163fca65dSJulian Anastasov if (!daddr) 23263fca65dSJulian Anastasov return; 23363fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23863fca65dSJulian Anastasov } 23963fca65dSJulian Anastasov 2409a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2411da177e4SLinus Torvalds .family = AF_INET6, 2421da177e4SLinus Torvalds .gc = ip6_dst_gc, 2431da177e4SLinus Torvalds .gc_thresh = 1024, 2441da177e4SLinus Torvalds .check = ip6_dst_check, 2450dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 246ebb762f2SSteffen Klassert .mtu = ip6_mtu, 247d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2481da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2491da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2501da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2511da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2521da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2536e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2549f8955ccSEric W. Biederman .local_out = __ip6_local_out, 255f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25663fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2571da177e4SLinus Torvalds }; 2581da177e4SLinus Torvalds 259ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 260ec831ea7SRoland Dreier { 261618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 262618f9bc7SSteffen Klassert 263618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 264ec831ea7SRoland Dreier } 265ec831ea7SRoland Dreier 2666700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2676700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26814e50e57SDavid S. Miller { 26914e50e57SDavid S. Miller } 27014e50e57SDavid S. Miller 2716700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2726700c270SDavid S. Miller struct sk_buff *skb) 273b587ee3bSDavid S. Miller { 274b587ee3bSDavid S. Miller } 275b587ee3bSDavid S. Miller 27614e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27714e50e57SDavid S. Miller .family = AF_INET6, 27814e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27914e50e57SDavid S. Miller .check = ip6_dst_check, 280ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 281214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28214e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 283b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2840a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 285f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28614e50e57SDavid S. Miller }; 28714e50e57SDavid S. Miller 28862fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28914edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29062fa8a84SDavid S. Miller }; 29162fa8a84SDavid S. Miller 2928d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29393c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29493c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29593c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29693c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 297421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 298421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 299421842edSDavid Ahern }; 300421842edSDavid Ahern 301fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3021da177e4SLinus Torvalds .dst = { 3031da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3041da177e4SLinus Torvalds .__use = 1, 3052c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3061da177e4SLinus Torvalds .error = -ENETUNREACH, 3071da177e4SLinus Torvalds .input = ip6_pkt_discard, 3081da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3091da177e4SLinus Torvalds }, 3101da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 325101367c2SThomas Graf }; 326101367c2SThomas Graf 327fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 328101367c2SThomas Graf .dst = { 329101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 330101367c2SThomas Graf .__use = 1, 3312c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 332101367c2SThomas Graf .error = -EINVAL, 333352e512cSHerbert Xu .input = dst_discard, 334ede2059dSEric W. Biederman .output = dst_discard_out, 335101367c2SThomas Graf }, 336101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 337101367c2SThomas Graf }; 338101367c2SThomas Graf 339101367c2SThomas Graf #endif 340101367c2SThomas Graf 341ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 342ebfa45f0SMartin KaFai Lau { 343ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 344ebfa45f0SMartin KaFai Lau 345ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 346ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 347ebfa45f0SMartin KaFai Lau } 348ebfa45f0SMartin KaFai Lau 3491da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35093531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 351ad706862SMartin KaFai Lau int flags) 3521da177e4SLinus Torvalds { 35397bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 354b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 355cf911662SDavid S. Miller 35681eb8447SWei Wang if (rt) { 357ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35981eb8447SWei Wang } 3608104891bSSteffen Klassert 361cf911662SDavid S. Miller return rt; 3621da177e4SLinus Torvalds } 3639ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 364d52d3997SMartin KaFai Lau 3651da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3661da177e4SLinus Torvalds { 3671da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 368a68886a6SDavid Ahern struct fib6_info *from; 3698d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3701da177e4SLinus Torvalds 3711620a336SDavid Ahern ip_dst_metrics_put(dst); 3728d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3738d0b94afSMartin KaFai Lau 3748d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37538308473SDavid S. Miller if (idev) { 3761da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3771da177e4SLinus Torvalds in6_dev_put(idev); 3781da177e4SLinus Torvalds } 3791716a961SGao feng 380a68886a6SDavid Ahern rcu_read_lock(); 381a68886a6SDavid Ahern from = rcu_dereference(rt->from); 382a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38393531c67SDavid Ahern fib6_info_release(from); 384a68886a6SDavid Ahern rcu_read_unlock(); 385b3419363SDavid S. Miller } 386b3419363SDavid S. Miller 3871da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3881da177e4SLinus Torvalds int how) 3891da177e4SLinus Torvalds { 3901da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3911da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3925a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 393c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3941da177e4SLinus Torvalds 395e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 396e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 39738308473SDavid S. Miller if (loopback_idev) { 3981da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 3991da177e4SLinus Torvalds in6_dev_put(idev); 4001da177e4SLinus Torvalds } 4011da177e4SLinus Torvalds } 40297cac082SDavid S. Miller } 4031da177e4SLinus Torvalds 4045973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4055973fb1eSMartin KaFai Lau { 4065973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4075973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4085973fb1eSMartin KaFai Lau else 4095973fb1eSMartin KaFai Lau return false; 4105973fb1eSMartin KaFai Lau } 4115973fb1eSMartin KaFai Lau 412a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4131da177e4SLinus Torvalds { 414a68886a6SDavid Ahern struct fib6_info *from; 415a68886a6SDavid Ahern 416a68886a6SDavid Ahern from = rcu_dereference(rt->from); 417a68886a6SDavid Ahern 4181716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4191716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 420a50feda5SEric Dumazet return true; 421a68886a6SDavid Ahern } else if (from) { 4221e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 423a68886a6SDavid Ahern fib6_check_expired(from); 4241716a961SGao feng } 425a50feda5SEric Dumazet return false; 4261da177e4SLinus Torvalds } 4271da177e4SLinus Torvalds 4283b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4298d1c802bSDavid Ahern struct fib6_info *match, 43052bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 431b75cc8f9SDavid Ahern const struct sk_buff *skb, 43252bd4c0cSNicolas Dichtel int strict) 43351ebd318SNicolas Dichtel { 4348d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43551ebd318SNicolas Dichtel 436b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 437b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 438b673d6ccSJakub Sitnicki */ 439b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 440b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 441b673d6ccSJakub Sitnicki 4425e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4433d709f69SIdo Schimmel return match; 444bbfcd776SIdo Schimmel 44593c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44693c2fb25SDavid Ahern fib6_siblings) { 4475e670d84SDavid Ahern int nh_upper_bound; 4485e670d84SDavid Ahern 4495e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4505e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4513d709f69SIdo Schimmel continue; 45252bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45352bd4c0cSNicolas Dichtel break; 45451ebd318SNicolas Dichtel match = sibling; 45551ebd318SNicolas Dichtel break; 45651ebd318SNicolas Dichtel } 4573d709f69SIdo Schimmel 45851ebd318SNicolas Dichtel return match; 45951ebd318SNicolas Dichtel } 46051ebd318SNicolas Dichtel 4611da177e4SLinus Torvalds /* 46266f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4631da177e4SLinus Torvalds */ 4641da177e4SLinus Torvalds 4658d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4668d1c802bSDavid Ahern struct fib6_info *rt, 467b71d1d42SEric Dumazet const struct in6_addr *saddr, 4681da177e4SLinus Torvalds int oif, 469d420895eSYOSHIFUJI Hideaki int flags) 4701da177e4SLinus Torvalds { 4718d1c802bSDavid Ahern struct fib6_info *sprt; 4721da177e4SLinus Torvalds 4735e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4745e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4758067bb8cSIdo Schimmel return rt; 476dd3abc4eSYOSHIFUJI Hideaki 4778fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 4785e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 479dd3abc4eSYOSHIFUJI Hideaki 4805e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4818067bb8cSIdo Schimmel continue; 4828067bb8cSIdo Schimmel 483dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4841da177e4SLinus Torvalds if (dev->ifindex == oif) 4851da177e4SLinus Torvalds return sprt; 486dd3abc4eSYOSHIFUJI Hideaki } else { 487dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 488dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 489dd3abc4eSYOSHIFUJI Hideaki return sprt; 490dd3abc4eSYOSHIFUJI Hideaki } 4911da177e4SLinus Torvalds } 4921da177e4SLinus Torvalds 493eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 494421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4951da177e4SLinus Torvalds 496421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 4971da177e4SLinus Torvalds } 4981da177e4SLinus Torvalds 49927097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 500c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 501c2f17e82SHannes Frederic Sowa struct work_struct work; 502c2f17e82SHannes Frederic Sowa struct in6_addr target; 503c2f17e82SHannes Frederic Sowa struct net_device *dev; 504c2f17e82SHannes Frederic Sowa }; 505c2f17e82SHannes Frederic Sowa 506c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 507c2f17e82SHannes Frederic Sowa { 508c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 509c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 510c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 511c2f17e82SHannes Frederic Sowa 512c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 513adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 514c2f17e82SHannes Frederic Sowa dev_put(work->dev); 515662f5533SMichael Büsch kfree(work); 516c2f17e82SHannes Frederic Sowa } 517c2f17e82SHannes Frederic Sowa 5188d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 51927097255SYOSHIFUJI Hideaki { 520f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5215e670d84SDavid Ahern const struct in6_addr *nh_gw; 522f2c31e32SEric Dumazet struct neighbour *neigh; 5235e670d84SDavid Ahern struct net_device *dev; 524f547fac6SSabrina Dubroca struct inet6_dev *idev; 5255e670d84SDavid Ahern 52627097255SYOSHIFUJI Hideaki /* 52727097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 52827097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 52927097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53027097255SYOSHIFUJI Hideaki * 53127097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53227097255SYOSHIFUJI Hideaki * to no more than one per minute. 53327097255SYOSHIFUJI Hideaki */ 53493c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 535fdd6681dSAmerigo Wang return; 5365e670d84SDavid Ahern 5375e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5385e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5392152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 540f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5415e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5422152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5438d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5448d6c31bfSMartin KaFai Lau goto out; 5458d6c31bfSMartin KaFai Lau 5462152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 547990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 548990edb42SMartin KaFai Lau time_after(jiffies, 549dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 550c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 551990edb42SMartin KaFai Lau if (work) 5527e980569SJiri Benc __neigh_set_probe_once(neigh); 553990edb42SMartin KaFai Lau } 554c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 555f547fac6SSabrina Dubroca } else if (time_after(jiffies, rt->last_probe + 556f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 557990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 558990edb42SMartin KaFai Lau } 559c2f17e82SHannes Frederic Sowa 560c2f17e82SHannes Frederic Sowa if (work) { 561f547fac6SSabrina Dubroca rt->last_probe = jiffies; 562c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5635e670d84SDavid Ahern work->target = *nh_gw; 5645e670d84SDavid Ahern dev_hold(dev); 5655e670d84SDavid Ahern work->dev = dev; 566c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 567c2f17e82SHannes Frederic Sowa } 568990edb42SMartin KaFai Lau 5698d6c31bfSMartin KaFai Lau out: 5702152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 571f2c31e32SEric Dumazet } 57227097255SYOSHIFUJI Hideaki #else 5738d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57427097255SYOSHIFUJI Hideaki { 57527097255SYOSHIFUJI Hideaki } 57627097255SYOSHIFUJI Hideaki #endif 57727097255SYOSHIFUJI Hideaki 5781da177e4SLinus Torvalds /* 579554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5801da177e4SLinus Torvalds */ 5818d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5821da177e4SLinus Torvalds { 5835e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5845e670d84SDavid Ahern 585161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 586554cfb7eSYOSHIFUJI Hideaki return 2; 587554cfb7eSYOSHIFUJI Hideaki return 0; 5881da177e4SLinus Torvalds } 5891da177e4SLinus Torvalds 5908d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5911da177e4SLinus Torvalds { 592afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5935e670d84SDavid Ahern struct neighbour *neigh; 594f2c31e32SEric Dumazet 59593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 59693c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 597afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 598145a3621SYOSHIFUJI Hideaki / 吉藤英明 599145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6005e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 6015e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 603145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 604554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 605afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 606398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 607a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6097e980569SJiri Benc else 6107e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 611398bcbebSYOSHIFUJI Hideaki #endif 612145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 613afc154e9SHannes Frederic Sowa } else { 614afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6157e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 616a5a81f0bSPaul Marks } 617145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 618145a3621SYOSHIFUJI Hideaki / 吉藤英明 619a5a81f0bSPaul Marks return ret; 6201da177e4SLinus Torvalds } 6211da177e4SLinus Torvalds 6228d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 623554cfb7eSYOSHIFUJI Hideaki { 624a5a81f0bSPaul Marks int m; 6254d0c5911SYOSHIFUJI Hideaki 6264d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 62777d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 628afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 629ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 63093c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 631ebacaaa0SYOSHIFUJI Hideaki #endif 632afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 633afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 634afc154e9SHannes Frederic Sowa if (n < 0) 635afc154e9SHannes Frederic Sowa return n; 636afc154e9SHannes Frederic Sowa } 637554cfb7eSYOSHIFUJI Hideaki return m; 638554cfb7eSYOSHIFUJI Hideaki } 639554cfb7eSYOSHIFUJI Hideaki 640dcd1f572SDavid Ahern /* called with rc_read_lock held */ 641dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 642dcd1f572SDavid Ahern { 643dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 644dcd1f572SDavid Ahern bool rc = false; 645dcd1f572SDavid Ahern 646dcd1f572SDavid Ahern if (dev) { 647dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 648dcd1f572SDavid Ahern 649dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 650dcd1f572SDavid Ahern } 651dcd1f572SDavid Ahern 652dcd1f572SDavid Ahern return rc; 653dcd1f572SDavid Ahern } 654dcd1f572SDavid Ahern 6558d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6568d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 657afc154e9SHannes Frederic Sowa bool *do_rr) 658554cfb7eSYOSHIFUJI Hideaki { 659554cfb7eSYOSHIFUJI Hideaki int m; 660afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66135103d11SAndy Gospodarek 6625e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6638067bb8cSIdo Schimmel goto out; 6648067bb8cSIdo Schimmel 665dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6665e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 667d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 66835103d11SAndy Gospodarek goto out; 669554cfb7eSYOSHIFUJI Hideaki 67014895687SDavid Ahern if (fib6_check_expired(rt)) 671f11e6659SDavid S. Miller goto out; 672554cfb7eSYOSHIFUJI Hideaki 673554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6747e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 675afc154e9SHannes Frederic Sowa match_do_rr = true; 676afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6777e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 678f11e6659SDavid S. Miller goto out; 6791da177e4SLinus Torvalds } 680f11e6659SDavid S. Miller 681afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 682afc154e9SHannes Frederic Sowa rt6_probe(rt); 683afc154e9SHannes Frederic Sowa 6847e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 685afc154e9SHannes Frederic Sowa if (m > *mpri) { 686afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 687afc154e9SHannes Frederic Sowa *mpri = m; 688afc154e9SHannes Frederic Sowa match = rt; 689afc154e9SHannes Frederic Sowa } 690f11e6659SDavid S. Miller out: 691f11e6659SDavid S. Miller return match; 6921da177e4SLinus Torvalds } 6931da177e4SLinus Torvalds 6948d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6958d1c802bSDavid Ahern struct fib6_info *leaf, 6968d1c802bSDavid Ahern struct fib6_info *rr_head, 697afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 698afc154e9SHannes Frederic Sowa bool *do_rr) 699f11e6659SDavid S. Miller { 7008d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 701f11e6659SDavid S. Miller int mpri = -1; 702f11e6659SDavid S. Miller 703f11e6659SDavid S. Miller match = NULL; 7049fbdcfafSSteffen Klassert cont = NULL; 7058fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 70693c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7079fbdcfafSSteffen Klassert cont = rt; 7089fbdcfafSSteffen Klassert break; 7099fbdcfafSSteffen Klassert } 7109fbdcfafSSteffen Klassert 711afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7129fbdcfafSSteffen Klassert } 7139fbdcfafSSteffen Klassert 71466f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7158fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 71693c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7179fbdcfafSSteffen Klassert cont = rt; 7189fbdcfafSSteffen Klassert break; 7199fbdcfafSSteffen Klassert } 7209fbdcfafSSteffen Klassert 7219fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7229fbdcfafSSteffen Klassert } 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert if (match || !cont) 7259fbdcfafSSteffen Klassert return match; 7269fbdcfafSSteffen Klassert 7278fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 728afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 729f11e6659SDavid S. Miller 730f11e6659SDavid S. Miller return match; 731f11e6659SDavid S. Miller } 732f11e6659SDavid S. Miller 7338d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7348d1040e8SWei Wang int oif, int strict) 735f11e6659SDavid S. Miller { 7368d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7378d1c802bSDavid Ahern struct fib6_info *match, *rt0; 738afc154e9SHannes Frederic Sowa bool do_rr = false; 73917ecf590SWei Wang int key_plen; 740f11e6659SDavid S. Miller 741421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 742421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7438d1040e8SWei Wang 74466f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 745f11e6659SDavid S. Miller if (!rt0) 74666f5d6ceSWei Wang rt0 = leaf; 747f11e6659SDavid S. Miller 74817ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 74917ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75017ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75117ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75217ecf590SWei Wang */ 75393c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75417ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75593c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75693c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 75717ecf590SWei Wang #endif 75817ecf590SWei Wang if (fn->fn_bit != key_plen) 759421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76017ecf590SWei Wang 76193c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 762afc154e9SHannes Frederic Sowa &do_rr); 763f11e6659SDavid S. Miller 764afc154e9SHannes Frederic Sowa if (do_rr) { 7658fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 766f11e6659SDavid S. Miller 767554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 76893c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7698d1040e8SWei Wang next = leaf; 770f11e6659SDavid S. Miller 77166f5d6ceSWei Wang if (next != rt0) { 77293c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77366f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77493c2fb25SDavid Ahern if (next->fib6_node) 77566f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77693c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 77766f5d6ceSWei Wang } 778554cfb7eSYOSHIFUJI Hideaki } 779554cfb7eSYOSHIFUJI Hideaki 780421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7811da177e4SLinus Torvalds } 7821da177e4SLinus Torvalds 7838d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7848b9df265SMartin KaFai Lau { 78593c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7868b9df265SMartin KaFai Lau } 7878b9df265SMartin KaFai Lau 78870ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 78970ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 790b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79170ceb4f5SYOSHIFUJI Hideaki { 792c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79370ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79470ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79570ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7964bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7978d1c802bSDavid Ahern struct fib6_info *rt; 79870ceb4f5SYOSHIFUJI Hideaki 79970ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80170ceb4f5SYOSHIFUJI Hideaki } 80270ceb4f5SYOSHIFUJI Hideaki 80370ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 80770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80870ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 80970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } 81270ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81370ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81470ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81570ceb4f5SYOSHIFUJI Hideaki } 81670ceb4f5SYOSHIFUJI Hideaki } 81770ceb4f5SYOSHIFUJI Hideaki 81870ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 81970ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8203933fc95SJens Rosenboom return -EINVAL; 82170ceb4f5SYOSHIFUJI Hideaki 8224bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82370ceb4f5SYOSHIFUJI Hideaki 82470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82570ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82670ceb4f5SYOSHIFUJI Hideaki else { 82770ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 82870ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 82970ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83070ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83170ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83270ceb4f5SYOSHIFUJI Hideaki } 83370ceb4f5SYOSHIFUJI Hideaki 834f104a567SDuan Jiong if (rinfo->prefix_len == 0) 835afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 836f104a567SDuan Jiong else 837f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 838830218c1SDavid Ahern gwaddr, dev); 83970ceb4f5SYOSHIFUJI Hideaki 84070ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 841afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84270ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84370ceb4f5SYOSHIFUJI Hideaki } 84470ceb4f5SYOSHIFUJI Hideaki 84570ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 846830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 847830218c1SDavid Ahern dev, pref); 84870ceb4f5SYOSHIFUJI Hideaki else if (rt) 84993c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85093c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85170ceb4f5SYOSHIFUJI Hideaki 85270ceb4f5SYOSHIFUJI Hideaki if (rt) { 8531716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85414895687SDavid Ahern fib6_clean_expires(rt); 8551716a961SGao feng else 85614895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8571716a961SGao feng 85893531c67SDavid Ahern fib6_info_release(rt); 85970ceb4f5SYOSHIFUJI Hideaki } 86070ceb4f5SYOSHIFUJI Hideaki return 0; 86170ceb4f5SYOSHIFUJI Hideaki } 86270ceb4f5SYOSHIFUJI Hideaki #endif 86370ceb4f5SYOSHIFUJI Hideaki 864ae90d867SDavid Ahern /* 865ae90d867SDavid Ahern * Misc support functions 866ae90d867SDavid Ahern */ 867ae90d867SDavid Ahern 868ae90d867SDavid Ahern /* called with rcu_lock held */ 8698d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 870ae90d867SDavid Ahern { 8715e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 872ae90d867SDavid Ahern 87393c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 874ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 875ae90d867SDavid Ahern * device if it is a master device, the master device if 876ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 877ae90d867SDavid Ahern */ 878ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 87993c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 880ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 881ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 882ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 883ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 884ae90d867SDavid Ahern * case we want dev returned to be dev 885ae90d867SDavid Ahern */ 886ae90d867SDavid Ahern } 887ae90d867SDavid Ahern 888ae90d867SDavid Ahern return dev; 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 8916edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8926edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8936edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8946edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8956edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8966edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8976edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8986edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8996edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9006edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9016edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9026edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9036edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9046edb3c96SDavid Ahern }; 9056edb3c96SDavid Ahern 9066edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9076edb3c96SDavid Ahern { 9086edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9096edb3c96SDavid Ahern } 9106edb3c96SDavid Ahern 9118d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9123b6761d1SDavid Ahern { 9133b6761d1SDavid Ahern unsigned short flags = 0; 9143b6761d1SDavid Ahern 9153b6761d1SDavid Ahern if (rt->dst_nocount) 9163b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9173b6761d1SDavid Ahern if (rt->dst_nopolicy) 9183b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9193b6761d1SDavid Ahern if (rt->dst_host) 9203b6761d1SDavid Ahern flags |= DST_HOST; 9213b6761d1SDavid Ahern 9223b6761d1SDavid Ahern return flags; 9233b6761d1SDavid Ahern } 9243b6761d1SDavid Ahern 9258d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9266edb3c96SDavid Ahern { 9276edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9286edb3c96SDavid Ahern 9296edb3c96SDavid Ahern switch (ort->fib6_type) { 9306edb3c96SDavid Ahern case RTN_BLACKHOLE: 9316edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9326edb3c96SDavid Ahern rt->dst.input = dst_discard; 9336edb3c96SDavid Ahern break; 9346edb3c96SDavid Ahern case RTN_PROHIBIT: 9356edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9366edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9376edb3c96SDavid Ahern break; 9386edb3c96SDavid Ahern case RTN_THROW: 9396edb3c96SDavid Ahern case RTN_UNREACHABLE: 9406edb3c96SDavid Ahern default: 9416edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9426edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9436edb3c96SDavid Ahern break; 9446edb3c96SDavid Ahern } 9456edb3c96SDavid Ahern } 9466edb3c96SDavid Ahern 9478d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9486edb3c96SDavid Ahern { 94993c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9506edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9516edb3c96SDavid Ahern return; 9526edb3c96SDavid Ahern } 9536edb3c96SDavid Ahern 9546edb3c96SDavid Ahern rt->dst.error = 0; 9556edb3c96SDavid Ahern rt->dst.output = ip6_output; 9566edb3c96SDavid Ahern 957d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9586edb3c96SDavid Ahern rt->dst.input = ip6_input; 95993c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9606edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9616edb3c96SDavid Ahern } else { 9626edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9636edb3c96SDavid Ahern } 9646edb3c96SDavid Ahern 9656edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9666edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9676edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9686edb3c96SDavid Ahern } 9696edb3c96SDavid Ahern 9706edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 973e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9748d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 975ae90d867SDavid Ahern { 976ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 977a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 978e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 979ae90d867SDavid Ahern } 980ae90d867SDavid Ahern 981e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9828d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 983ae90d867SDavid Ahern { 984dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 985dcd1f572SDavid Ahern 9866edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9876edb3c96SDavid Ahern 98893c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 989dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9905e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 99193c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 992ae90d867SDavid Ahern rt6_set_from(rt, ort); 993ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 99493c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 995ae90d867SDavid Ahern #endif 996ae90d867SDavid Ahern } 997ae90d867SDavid Ahern 998a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 999a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1000a3c00e46SMartin KaFai Lau { 100166f5d6ceSWei Wang struct fib6_node *pn, *sn; 1002a3c00e46SMartin KaFai Lau while (1) { 1003a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1004a3c00e46SMartin KaFai Lau return NULL; 100566f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 100666f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 100766f5d6ceSWei Wang if (sn && sn != fn) 10086454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1009a3c00e46SMartin KaFai Lau else 1010a3c00e46SMartin KaFai Lau fn = pn; 1011a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1012a3c00e46SMartin KaFai Lau return fn; 1013a3c00e46SMartin KaFai Lau } 1014a3c00e46SMartin KaFai Lau } 1015c71099acSThomas Graf 1016d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1017d3843fe5SWei Wang bool null_fallback) 1018d3843fe5SWei Wang { 1019d3843fe5SWei Wang struct rt6_info *rt = *prt; 1020d3843fe5SWei Wang 1021d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1022d3843fe5SWei Wang return true; 1023d3843fe5SWei Wang if (null_fallback) { 1024d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1025d3843fe5SWei Wang dst_hold(&rt->dst); 1026d3843fe5SWei Wang } else { 1027d3843fe5SWei Wang rt = NULL; 1028d3843fe5SWei Wang } 1029d3843fe5SWei Wang *prt = rt; 1030d3843fe5SWei Wang return false; 1031d3843fe5SWei Wang } 1032d3843fe5SWei Wang 1033dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10348d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1035dec9b0e2SDavid Ahern { 10363b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1037dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1038dec9b0e2SDavid Ahern struct rt6_info *nrt; 1039dec9b0e2SDavid Ahern 1040e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1041e873e4b9SWei Wang return NULL; 1042e873e4b9SWei Wang 104393531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1044dec9b0e2SDavid Ahern if (nrt) 1045dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1046e873e4b9SWei Wang else 1047e873e4b9SWei Wang fib6_info_release(rt); 1048dec9b0e2SDavid Ahern 1049dec9b0e2SDavid Ahern return nrt; 1050dec9b0e2SDavid Ahern } 1051dec9b0e2SDavid Ahern 10528ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10538ed67789SDaniel Lezcano struct fib6_table *table, 1054b75cc8f9SDavid Ahern struct flowi6 *fl6, 1055b75cc8f9SDavid Ahern const struct sk_buff *skb, 1056b75cc8f9SDavid Ahern int flags) 10571da177e4SLinus Torvalds { 10588d1c802bSDavid Ahern struct fib6_info *f6i; 10591da177e4SLinus Torvalds struct fib6_node *fn; 106023fb93a4SDavid Ahern struct rt6_info *rt; 10611da177e4SLinus Torvalds 1062b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1063b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1064b6cdbc85SDavid Ahern 106566f5d6ceSWei Wang rcu_read_lock(); 10666454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1067c71099acSThomas Graf restart: 106823fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 106923fb93a4SDavid Ahern if (!f6i) { 107023fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 107166f5d6ceSWei Wang } else { 107223fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 107366f5d6ceSWei Wang fl6->flowi6_oif, flags); 107493c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10753b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10763b290a31SDavid Ahern fl6->flowi6_oif, skb, 10773b290a31SDavid Ahern flags); 107866f5d6ceSWei Wang } 107923fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1080a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1081a3c00e46SMartin KaFai Lau if (fn) 1082a3c00e46SMartin KaFai Lau goto restart; 1083a3c00e46SMartin KaFai Lau } 10842b760fcfSWei Wang 1085d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1086d4bea421SDavid Ahern 10874c9483b2SDavid S. Miller /* Search through exception table */ 108823fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 108923fb93a4SDavid Ahern if (rt) { 1090d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1091d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 109223fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1093dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1094dec9b0e2SDavid Ahern dst_hold(&rt->dst); 109523fb93a4SDavid Ahern } else { 109623fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 109723fb93a4SDavid Ahern if (!rt) { 109823fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 109923fb93a4SDavid Ahern dst_hold(&rt->dst); 110023fb93a4SDavid Ahern } 1101dec9b0e2SDavid Ahern } 1102d3843fe5SWei Wang 110366f5d6ceSWei Wang rcu_read_unlock(); 1104b811580dSDavid Ahern 11051da177e4SLinus Torvalds return rt; 1106c71099acSThomas Graf } 1107c71099acSThomas Graf 1108ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1109b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1110ea6e574eSFlorian Westphal { 1111b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1112ea6e574eSFlorian Westphal } 1113ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1114ea6e574eSFlorian Westphal 11159acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1116b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1117b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1118c71099acSThomas Graf { 11194c9483b2SDavid S. Miller struct flowi6 fl6 = { 11204c9483b2SDavid S. Miller .flowi6_oif = oif, 11214c9483b2SDavid S. Miller .daddr = *daddr, 1122c71099acSThomas Graf }; 1123c71099acSThomas Graf struct dst_entry *dst; 112477d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1125c71099acSThomas Graf 1126adaa70bbSThomas Graf if (saddr) { 11274c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1128adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1129adaa70bbSThomas Graf } 1130adaa70bbSThomas Graf 1131b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1132c71099acSThomas Graf if (dst->error == 0) 1133c71099acSThomas Graf return (struct rt6_info *) dst; 1134c71099acSThomas Graf 1135c71099acSThomas Graf dst_release(dst); 1136c71099acSThomas Graf 11371da177e4SLinus Torvalds return NULL; 11381da177e4SLinus Torvalds } 11397159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11407159039aSYOSHIFUJI Hideaki 1141c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11421cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11431cfb71eeSWei Wang * route is released. 11441cfb71eeSWei Wang * Caller must hold dst before calling it. 11451da177e4SLinus Torvalds */ 11461da177e4SLinus Torvalds 11478d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1148333c4301SDavid Ahern struct netlink_ext_ack *extack) 11491da177e4SLinus Torvalds { 11501da177e4SLinus Torvalds int err; 1151c71099acSThomas Graf struct fib6_table *table; 11521da177e4SLinus Torvalds 115393c2fb25SDavid Ahern table = rt->fib6_table; 115466f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1155d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 115666f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11571da177e4SLinus Torvalds 11581da177e4SLinus Torvalds return err; 11591da177e4SLinus Torvalds } 11601da177e4SLinus Torvalds 11618d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 116240e22e8fSThomas Graf { 1163afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1164e715b6d3SFlorian Westphal 1165d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 116640e22e8fSThomas Graf } 116740e22e8fSThomas Graf 11688d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 116921efcfa0SEric Dumazet const struct in6_addr *daddr, 1170b71d1d42SEric Dumazet const struct in6_addr *saddr) 11711da177e4SLinus Torvalds { 11724832c30dSDavid Ahern struct net_device *dev; 11731da177e4SLinus Torvalds struct rt6_info *rt; 11741da177e4SLinus Torvalds 11751da177e4SLinus Torvalds /* 11761da177e4SLinus Torvalds * Clone the route. 11771da177e4SLinus Torvalds */ 11781da177e4SLinus Torvalds 1179e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1180e873e4b9SWei Wang return NULL; 1181e873e4b9SWei Wang 11824832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 118393531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1184e873e4b9SWei Wang if (!rt) { 1185e873e4b9SWei Wang fib6_info_release(ort); 118683a09abdSMartin KaFai Lau return NULL; 1187e873e4b9SWei Wang } 118883a09abdSMartin KaFai Lau 118983a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11908b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119183a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 119283a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 119383a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11948b9df265SMartin KaFai Lau 11958b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 119693c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 119793c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 119858c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 11991da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12001da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12014e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12021da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12031da177e4SLinus Torvalds } 12041da177e4SLinus Torvalds #endif 120595a9a5baSYOSHIFUJI Hideaki } 120695a9a5baSYOSHIFUJI Hideaki 1207299d9939SYOSHIFUJI Hideaki return rt; 1208299d9939SYOSHIFUJI Hideaki } 1209299d9939SYOSHIFUJI Hideaki 12108d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1211d52d3997SMartin KaFai Lau { 12123b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12134832c30dSDavid Ahern struct net_device *dev; 1214d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1215d52d3997SMartin KaFai Lau 1216e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1217e873e4b9SWei Wang return NULL; 1218e873e4b9SWei Wang 12194832c30dSDavid Ahern rcu_read_lock(); 12204832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122193531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12224832c30dSDavid Ahern rcu_read_unlock(); 1223e873e4b9SWei Wang if (!pcpu_rt) { 1224e873e4b9SWei Wang fib6_info_release(rt); 1225d52d3997SMartin KaFai Lau return NULL; 1226e873e4b9SWei Wang } 1227d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1228d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1229d52d3997SMartin KaFai Lau return pcpu_rt; 1230d52d3997SMartin KaFai Lau } 1231d52d3997SMartin KaFai Lau 123266f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12338d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1234d52d3997SMartin KaFai Lau { 1235a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1236d52d3997SMartin KaFai Lau 1237d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1238d52d3997SMartin KaFai Lau pcpu_rt = *p; 1239d52d3997SMartin KaFai Lau 1240d4ead6b3SDavid Ahern if (pcpu_rt) 1241d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1242d3843fe5SWei Wang 1243a73e4195SMartin KaFai Lau return pcpu_rt; 1244a73e4195SMartin KaFai Lau } 1245a73e4195SMartin KaFai Lau 1246afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12478d1c802bSDavid Ahern struct fib6_info *rt) 1248a73e4195SMartin KaFai Lau { 1249a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1250d52d3997SMartin KaFai Lau 1251d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1252d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12539c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12549c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1255d52d3997SMartin KaFai Lau } 1256d52d3997SMartin KaFai Lau 1257a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1258a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1259d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1260951f788aSEric Dumazet BUG_ON(prev); 1261a94b9367SWei Wang 1262d52d3997SMartin KaFai Lau return pcpu_rt; 1263d52d3997SMartin KaFai Lau } 1264d52d3997SMartin KaFai Lau 126535732d01SWei Wang /* exception hash table implementation 126635732d01SWei Wang */ 126735732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 126835732d01SWei Wang 126935732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127035732d01SWei Wang * Caller must hold rt6_exception_lock 127135732d01SWei Wang */ 127235732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 127335732d01SWei Wang struct rt6_exception *rt6_ex) 127435732d01SWei Wang { 1275b2427e67SColin Ian King struct net *net; 127681eb8447SWei Wang 127735732d01SWei Wang if (!bucket || !rt6_ex) 127835732d01SWei Wang return; 1279b2427e67SColin Ian King 1280b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 128135732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128277634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 128335732d01SWei Wang kfree_rcu(rt6_ex, rcu); 128435732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 128535732d01SWei Wang bucket->depth--; 128681eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 128735732d01SWei Wang } 128835732d01SWei Wang 128935732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129035732d01SWei Wang * Caller must hold rt6_exception_lock 129135732d01SWei Wang */ 129235732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 129335732d01SWei Wang { 129435732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 129535732d01SWei Wang 129635732d01SWei Wang if (!bucket) 129735732d01SWei Wang return; 129835732d01SWei Wang 129935732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130035732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130135732d01SWei Wang oldest = rt6_ex; 130235732d01SWei Wang } 130335732d01SWei Wang rt6_remove_exception(bucket, oldest); 130435732d01SWei Wang } 130535732d01SWei Wang 130635732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 130735732d01SWei Wang const struct in6_addr *src) 130835732d01SWei Wang { 130935732d01SWei Wang static u32 seed __read_mostly; 131035732d01SWei Wang u32 val; 131135732d01SWei Wang 131235732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 131335732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 131435732d01SWei Wang 131535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 131635732d01SWei Wang if (src) 131735732d01SWei Wang val = jhash(src, sizeof(*src), val); 131835732d01SWei Wang #endif 131935732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132035732d01SWei Wang } 132135732d01SWei Wang 132235732d01SWei Wang /* Helper function to find the cached rt in the hash table 132335732d01SWei Wang * and update bucket pointer to point to the bucket for this 132435732d01SWei Wang * (daddr, saddr) pair 132535732d01SWei Wang * Caller must hold rt6_exception_lock 132635732d01SWei Wang */ 132735732d01SWei Wang static struct rt6_exception * 132835732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 132935732d01SWei Wang const struct in6_addr *daddr, 133035732d01SWei Wang const struct in6_addr *saddr) 133135732d01SWei Wang { 133235732d01SWei Wang struct rt6_exception *rt6_ex; 133335732d01SWei Wang u32 hval; 133435732d01SWei Wang 133535732d01SWei Wang if (!(*bucket) || !daddr) 133635732d01SWei Wang return NULL; 133735732d01SWei Wang 133835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 133935732d01SWei Wang *bucket += hval; 134035732d01SWei Wang 134135732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 134335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 134435732d01SWei Wang 134535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 134635732d01SWei Wang if (matched && saddr) 134735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 134835732d01SWei Wang #endif 134935732d01SWei Wang if (matched) 135035732d01SWei Wang return rt6_ex; 135135732d01SWei Wang } 135235732d01SWei Wang return NULL; 135335732d01SWei Wang } 135435732d01SWei Wang 135535732d01SWei Wang /* Helper function to find the cached rt in the hash table 135635732d01SWei Wang * and update bucket pointer to point to the bucket for this 135735732d01SWei Wang * (daddr, saddr) pair 135835732d01SWei Wang * Caller must hold rcu_read_lock() 135935732d01SWei Wang */ 136035732d01SWei Wang static struct rt6_exception * 136135732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136235732d01SWei Wang const struct in6_addr *daddr, 136335732d01SWei Wang const struct in6_addr *saddr) 136435732d01SWei Wang { 136535732d01SWei Wang struct rt6_exception *rt6_ex; 136635732d01SWei Wang u32 hval; 136735732d01SWei Wang 136835732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 136935732d01SWei Wang 137035732d01SWei Wang if (!(*bucket) || !daddr) 137135732d01SWei Wang return NULL; 137235732d01SWei Wang 137335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 137435732d01SWei Wang *bucket += hval; 137535732d01SWei Wang 137635732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 137735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 137835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 137935732d01SWei Wang 138035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138135732d01SWei Wang if (matched && saddr) 138235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 138335732d01SWei Wang #endif 138435732d01SWei Wang if (matched) 138535732d01SWei Wang return rt6_ex; 138635732d01SWei Wang } 138735732d01SWei Wang return NULL; 138835732d01SWei Wang } 138935732d01SWei Wang 13908d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139135732d01SWei Wang { 1392d4ead6b3SDavid Ahern unsigned int mtu; 1393d4ead6b3SDavid Ahern 1394dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1395dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1396dcd1f572SDavid Ahern } else { 1397dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1398dcd1f572SDavid Ahern struct inet6_dev *idev; 1399dcd1f572SDavid Ahern 1400dcd1f572SDavid Ahern rcu_read_lock(); 1401dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1402dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1403dcd1f572SDavid Ahern rcu_read_unlock(); 1404dcd1f572SDavid Ahern } 1405dcd1f572SDavid Ahern 1406d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1407d4ead6b3SDavid Ahern 1408d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1409d4ead6b3SDavid Ahern } 1410d4ead6b3SDavid Ahern 141135732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14128d1c802bSDavid Ahern struct fib6_info *ort) 141335732d01SWei Wang { 14145e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 141535732d01SWei Wang struct rt6_exception_bucket *bucket; 141635732d01SWei Wang struct in6_addr *src_key = NULL; 141735732d01SWei Wang struct rt6_exception *rt6_ex; 141835732d01SWei Wang int err = 0; 141935732d01SWei Wang 142035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142135732d01SWei Wang 142235732d01SWei Wang if (ort->exception_bucket_flushed) { 142335732d01SWei Wang err = -EINVAL; 142435732d01SWei Wang goto out; 142535732d01SWei Wang } 142635732d01SWei Wang 142735732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 142835732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 142935732d01SWei Wang if (!bucket) { 143035732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143135732d01SWei Wang GFP_ATOMIC); 143235732d01SWei Wang if (!bucket) { 143335732d01SWei Wang err = -ENOMEM; 143435732d01SWei Wang goto out; 143535732d01SWei Wang } 143635732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 143735732d01SWei Wang } 143835732d01SWei Wang 143935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144035732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144135732d01SWei Wang * and exception table is indexed by a hash of 144235732d01SWei Wang * both rt6i_dst and rt6i_src. 144335732d01SWei Wang * Otherwise, the exception table is indexed by 144435732d01SWei Wang * a hash of only rt6i_dst. 144535732d01SWei Wang */ 144693c2fb25SDavid Ahern if (ort->fib6_src.plen) 144735732d01SWei Wang src_key = &nrt->rt6i_src.addr; 144835732d01SWei Wang #endif 1449f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1450f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1451f5bbe7eeSWei Wang * is less than ort's mtu value. 1452f5bbe7eeSWei Wang */ 1453d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1454f5bbe7eeSWei Wang err = -EINVAL; 1455f5bbe7eeSWei Wang goto out; 1456f5bbe7eeSWei Wang } 145760006a48SWei Wang 145835732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 145935732d01SWei Wang src_key); 146035732d01SWei Wang if (rt6_ex) 146135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 146235732d01SWei Wang 146335732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 146435732d01SWei Wang if (!rt6_ex) { 146535732d01SWei Wang err = -ENOMEM; 146635732d01SWei Wang goto out; 146735732d01SWei Wang } 146835732d01SWei Wang rt6_ex->rt6i = nrt; 146935732d01SWei Wang rt6_ex->stamp = jiffies; 147035732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 147135732d01SWei Wang bucket->depth++; 147281eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 147335732d01SWei Wang 147435732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 147535732d01SWei Wang rt6_exception_remove_oldest(bucket); 147635732d01SWei Wang 147735732d01SWei Wang out: 147835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 147935732d01SWei Wang 148035732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1481b886d5f2SPaolo Abeni if (!err) { 148293c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14837aef6859SDavid Ahern fib6_update_sernum(net, ort); 148493c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1485b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1486b886d5f2SPaolo Abeni } 148735732d01SWei Wang 148835732d01SWei Wang return err; 148935732d01SWei Wang } 149035732d01SWei Wang 14918d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 149235732d01SWei Wang { 149335732d01SWei Wang struct rt6_exception_bucket *bucket; 149435732d01SWei Wang struct rt6_exception *rt6_ex; 149535732d01SWei Wang struct hlist_node *tmp; 149635732d01SWei Wang int i; 149735732d01SWei Wang 149835732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 149935732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150035732d01SWei Wang rt->exception_bucket_flushed = 1; 150135732d01SWei Wang 150235732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 150335732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 150435732d01SWei Wang if (!bucket) 150535732d01SWei Wang goto out; 150635732d01SWei Wang 150735732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 150835732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 150935732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151035732d01SWei Wang WARN_ON_ONCE(bucket->depth); 151135732d01SWei Wang bucket++; 151235732d01SWei Wang } 151335732d01SWei Wang 151435732d01SWei Wang out: 151535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 151635732d01SWei Wang } 151735732d01SWei Wang 151835732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 151935732d01SWei Wang * Caller has to hold rcu_read_lock() 152035732d01SWei Wang */ 15218d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 152235732d01SWei Wang struct in6_addr *daddr, 152335732d01SWei Wang struct in6_addr *saddr) 152435732d01SWei Wang { 152535732d01SWei Wang struct rt6_exception_bucket *bucket; 152635732d01SWei Wang struct in6_addr *src_key = NULL; 152735732d01SWei Wang struct rt6_exception *rt6_ex; 152835732d01SWei Wang struct rt6_info *res = NULL; 152935732d01SWei Wang 153035732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 153135732d01SWei Wang 153235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 153335732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 153435732d01SWei Wang * and exception table is indexed by a hash of 153535732d01SWei Wang * both rt6i_dst and rt6i_src. 153635732d01SWei Wang * Otherwise, the exception table is indexed by 153735732d01SWei Wang * a hash of only rt6i_dst. 153835732d01SWei Wang */ 153993c2fb25SDavid Ahern if (rt->fib6_src.plen) 154035732d01SWei Wang src_key = saddr; 154135732d01SWei Wang #endif 154235732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 154335732d01SWei Wang 154435732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 154535732d01SWei Wang res = rt6_ex->rt6i; 154635732d01SWei Wang 154735732d01SWei Wang return res; 154835732d01SWei Wang } 154935732d01SWei Wang 155035732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 155123fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 155235732d01SWei Wang { 155335732d01SWei Wang struct rt6_exception_bucket *bucket; 155435732d01SWei Wang struct in6_addr *src_key = NULL; 155535732d01SWei Wang struct rt6_exception *rt6_ex; 15568a14e46fSDavid Ahern struct fib6_info *from; 155735732d01SWei Wang int err; 155835732d01SWei Wang 1559091311deSEric Dumazet from = rcu_dereference(rt->from); 156035732d01SWei Wang if (!from || 1561442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 156235732d01SWei Wang return -EINVAL; 156335732d01SWei Wang 156435732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 156535732d01SWei Wang return -ENOENT; 156635732d01SWei Wang 156735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 156835732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 156935732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 157135732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 157235732d01SWei Wang * and exception table is indexed by a hash of 157335732d01SWei Wang * both rt6i_dst and rt6i_src. 157435732d01SWei Wang * Otherwise, the exception table is indexed by 157535732d01SWei Wang * a hash of only rt6i_dst. 157635732d01SWei Wang */ 157793c2fb25SDavid Ahern if (from->fib6_src.plen) 157835732d01SWei Wang src_key = &rt->rt6i_src.addr; 157935732d01SWei Wang #endif 158035732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 158135732d01SWei Wang &rt->rt6i_dst.addr, 158235732d01SWei Wang src_key); 158335732d01SWei Wang if (rt6_ex) { 158435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 158535732d01SWei Wang err = 0; 158635732d01SWei Wang } else { 158735732d01SWei Wang err = -ENOENT; 158835732d01SWei Wang } 158935732d01SWei Wang 159035732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 159135732d01SWei Wang return err; 159235732d01SWei Wang } 159335732d01SWei Wang 159435732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 159535732d01SWei Wang * refresh its stamp 159635732d01SWei Wang */ 159735732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 159835732d01SWei Wang { 159935732d01SWei Wang struct rt6_exception_bucket *bucket; 16008d1c802bSDavid Ahern struct fib6_info *from = rt->from; 160135732d01SWei Wang struct in6_addr *src_key = NULL; 160235732d01SWei Wang struct rt6_exception *rt6_ex; 160335732d01SWei Wang 160435732d01SWei Wang if (!from || 1605442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 160635732d01SWei Wang return; 160735732d01SWei Wang 160835732d01SWei Wang rcu_read_lock(); 160935732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161035732d01SWei Wang 161135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161235732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 161335732d01SWei Wang * and exception table is indexed by a hash of 161435732d01SWei Wang * both rt6i_dst and rt6i_src. 161535732d01SWei Wang * Otherwise, the exception table is indexed by 161635732d01SWei Wang * a hash of only rt6i_dst. 161735732d01SWei Wang */ 161893c2fb25SDavid Ahern if (from->fib6_src.plen) 161935732d01SWei Wang src_key = &rt->rt6i_src.addr; 162035732d01SWei Wang #endif 162135732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 162235732d01SWei Wang &rt->rt6i_dst.addr, 162335732d01SWei Wang src_key); 162435732d01SWei Wang if (rt6_ex) 162535732d01SWei Wang rt6_ex->stamp = jiffies; 162635732d01SWei Wang 162735732d01SWei Wang rcu_read_unlock(); 162835732d01SWei Wang } 162935732d01SWei Wang 1630e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1631e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1632e9fa1495SStefano Brivio { 1633e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1634e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1635e9fa1495SStefano Brivio * reflect PMTU decreases. 1636e9fa1495SStefano Brivio * 1637e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1638e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1639e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1640e9fa1495SStefano Brivio * handle this. 1641e9fa1495SStefano Brivio */ 1642e9fa1495SStefano Brivio 1643e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1644e9fa1495SStefano Brivio return true; 1645e9fa1495SStefano Brivio 1646e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1647e9fa1495SStefano Brivio return true; 1648e9fa1495SStefano Brivio 1649e9fa1495SStefano Brivio return false; 1650e9fa1495SStefano Brivio } 1651e9fa1495SStefano Brivio 1652e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16538d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1654f5bbe7eeSWei Wang { 1655f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1656f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1657f5bbe7eeSWei Wang int i; 1658f5bbe7eeSWei Wang 1659f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1660f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1661f5bbe7eeSWei Wang 1662e9fa1495SStefano Brivio if (!bucket) 1663e9fa1495SStefano Brivio return; 1664e9fa1495SStefano Brivio 1665f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1666f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1667f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1668e9fa1495SStefano Brivio 1669e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1670d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1671f5bbe7eeSWei Wang * been updated. 1672f5bbe7eeSWei Wang */ 1673d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1674e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1675d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1676f5bbe7eeSWei Wang } 1677f5bbe7eeSWei Wang bucket++; 1678f5bbe7eeSWei Wang } 1679f5bbe7eeSWei Wang } 1680f5bbe7eeSWei Wang 1681b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1682b16cb459SWei Wang 16838d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1684b16cb459SWei Wang struct in6_addr *gateway) 1685b16cb459SWei Wang { 1686b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1687b16cb459SWei Wang struct rt6_exception *rt6_ex; 1688b16cb459SWei Wang struct hlist_node *tmp; 1689b16cb459SWei Wang int i; 1690b16cb459SWei Wang 1691b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1692b16cb459SWei Wang return; 1693b16cb459SWei Wang 1694b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1695b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1696b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1697b16cb459SWei Wang 1698b16cb459SWei Wang if (bucket) { 1699b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1700b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1701b16cb459SWei Wang &bucket->chain, hlist) { 1702b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1703b16cb459SWei Wang 1704b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1705b16cb459SWei Wang RTF_CACHE_GATEWAY && 1706b16cb459SWei Wang ipv6_addr_equal(gateway, 1707b16cb459SWei Wang &entry->rt6i_gateway)) { 1708b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1709b16cb459SWei Wang } 1710b16cb459SWei Wang } 1711b16cb459SWei Wang bucket++; 1712b16cb459SWei Wang } 1713b16cb459SWei Wang } 1714b16cb459SWei Wang 1715b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1716b16cb459SWei Wang } 1717b16cb459SWei Wang 1718c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1719c757faa8SWei Wang struct rt6_exception *rt6_ex, 1720c757faa8SWei Wang struct fib6_gc_args *gc_args, 1721c757faa8SWei Wang unsigned long now) 1722c757faa8SWei Wang { 1723c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1724c757faa8SWei Wang 17251859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17261859bac0SPaolo Abeni * even if others have still references to them, so that on next 17271859bac0SPaolo Abeni * dst_check() such references can be dropped. 17281859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17291859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17301859bac0SPaolo Abeni */ 173131afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173231afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1733c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1734c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1735c757faa8SWei Wang return; 173631afeb42SWei Wang } 173731afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 173831afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 173931afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174031afeb42SWei Wang return; 174131afeb42SWei Wang } 174231afeb42SWei Wang 174331afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1744c757faa8SWei Wang struct neighbour *neigh; 1745c757faa8SWei Wang __u8 neigh_flags = 0; 1746c757faa8SWei Wang 17471bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17481bfa26ffSEric Dumazet if (neigh) 1749c757faa8SWei Wang neigh_flags = neigh->flags; 17501bfa26ffSEric Dumazet 1751c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1752c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1753c757faa8SWei Wang rt); 1754c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1755c757faa8SWei Wang return; 1756c757faa8SWei Wang } 1757c757faa8SWei Wang } 175831afeb42SWei Wang 1759c757faa8SWei Wang gc_args->more++; 1760c757faa8SWei Wang } 1761c757faa8SWei Wang 17628d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1763c757faa8SWei Wang struct fib6_gc_args *gc_args, 1764c757faa8SWei Wang unsigned long now) 1765c757faa8SWei Wang { 1766c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1767c757faa8SWei Wang struct rt6_exception *rt6_ex; 1768c757faa8SWei Wang struct hlist_node *tmp; 1769c757faa8SWei Wang int i; 1770c757faa8SWei Wang 1771c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1772c757faa8SWei Wang return; 1773c757faa8SWei Wang 17741bfa26ffSEric Dumazet rcu_read_lock_bh(); 17751bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1776c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1777c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1778c757faa8SWei Wang 1779c757faa8SWei Wang if (bucket) { 1780c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1781c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1782c757faa8SWei Wang &bucket->chain, hlist) { 1783c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1784c757faa8SWei Wang gc_args, now); 1785c757faa8SWei Wang } 1786c757faa8SWei Wang bucket++; 1787c757faa8SWei Wang } 1788c757faa8SWei Wang } 17891bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17901bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1791c757faa8SWei Wang } 1792c757faa8SWei Wang 17931d053da9SDavid Ahern /* must be called with rcu lock held */ 17941d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 17951d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 17961da177e4SLinus Torvalds { 1797367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 17988d1c802bSDavid Ahern struct fib6_info *f6i; 17991da177e4SLinus Torvalds 18006454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1801367efcb9SMartin KaFai Lau saved_fn = fn; 18021da177e4SLinus Torvalds 1803ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1804ca254490SDavid Ahern oif = 0; 1805ca254490SDavid Ahern 1806a3c00e46SMartin KaFai Lau redo_rt6_select: 180723fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 180823fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1809a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1810a3c00e46SMartin KaFai Lau if (fn) 1811a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1812367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1813367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1814367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1815367efcb9SMartin KaFai Lau fn = saved_fn; 1816367efcb9SMartin KaFai Lau goto redo_rt6_select; 1817367efcb9SMartin KaFai Lau } 1818a3c00e46SMartin KaFai Lau } 1819a3c00e46SMartin KaFai Lau 1820d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1821d52d3997SMartin KaFai Lau 18221d053da9SDavid Ahern return f6i; 18231d053da9SDavid Ahern } 18241d053da9SDavid Ahern 18251d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18261d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18271d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18281d053da9SDavid Ahern { 18291d053da9SDavid Ahern struct fib6_info *f6i; 18301d053da9SDavid Ahern struct rt6_info *rt; 18311d053da9SDavid Ahern int strict = 0; 18321d053da9SDavid Ahern 18331d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18341d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18351d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18361d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18371d053da9SDavid Ahern 18381d053da9SDavid Ahern rcu_read_lock(); 18391d053da9SDavid Ahern 18401d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18411d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18421d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18431d053da9SDavid Ahern 184423fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1845421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 184666f5d6ceSWei Wang rcu_read_unlock(); 1847d3843fe5SWei Wang dst_hold(&rt->dst); 1848d3843fe5SWei Wang return rt; 1849d3843fe5SWei Wang } 185023fb93a4SDavid Ahern 185123fb93a4SDavid Ahern /*Search through exception table */ 185223fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 185323fb93a4SDavid Ahern if (rt) { 1854d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 18551da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1856d4ead6b3SDavid Ahern 185766f5d6ceSWei Wang rcu_read_unlock(); 1858d52d3997SMartin KaFai Lau return rt; 18593da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 186093c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18613da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18623da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18633da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18643da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18653da59bd9SMartin KaFai Lau */ 18663da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18673da59bd9SMartin KaFai Lau 186823fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1869d52d3997SMartin KaFai Lau 18704d85cd0cSDavid Ahern rcu_read_unlock(); 18713da59bd9SMartin KaFai Lau 18721cfb71eeSWei Wang if (uncached_rt) { 18731cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18741cfb71eeSWei Wang * No need for another dst_hold() 18751cfb71eeSWei Wang */ 18768d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 187781eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18781cfb71eeSWei Wang } else { 18793da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18803da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18811cfb71eeSWei Wang } 1882b811580dSDavid Ahern 18833da59bd9SMartin KaFai Lau return uncached_rt; 1884d52d3997SMartin KaFai Lau } else { 1885d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1886d52d3997SMartin KaFai Lau 1887d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1888d52d3997SMartin KaFai Lau 1889951f788aSEric Dumazet local_bh_disable(); 189023fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1891d52d3997SMartin KaFai Lau 189293531c67SDavid Ahern if (!pcpu_rt) 189323fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 189493531c67SDavid Ahern 1895951f788aSEric Dumazet local_bh_enable(); 1896951f788aSEric Dumazet rcu_read_unlock(); 1897d4bea421SDavid Ahern 1898d52d3997SMartin KaFai Lau return pcpu_rt; 1899d52d3997SMartin KaFai Lau } 1900c71099acSThomas Graf } 19019ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1902c71099acSThomas Graf 1903b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1904b75cc8f9SDavid Ahern struct fib6_table *table, 1905b75cc8f9SDavid Ahern struct flowi6 *fl6, 1906b75cc8f9SDavid Ahern const struct sk_buff *skb, 1907b75cc8f9SDavid Ahern int flags) 19084acad72dSPavel Emelyanov { 1909b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19104acad72dSPavel Emelyanov } 19114acad72dSPavel Emelyanov 1912d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 191372331bc0SShmulik Ladkani struct net_device *dev, 1914b75cc8f9SDavid Ahern struct flowi6 *fl6, 1915b75cc8f9SDavid Ahern const struct sk_buff *skb, 1916b75cc8f9SDavid Ahern int flags) 191772331bc0SShmulik Ladkani { 191872331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 191972331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 192072331bc0SShmulik Ladkani 1921b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 192272331bc0SShmulik Ladkani } 1923d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 192472331bc0SShmulik Ladkani 192523aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19265e5d6fedSRoopa Prabhu struct flow_keys *keys, 19275e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 192823aebdacSJakub Sitnicki { 192923aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 193023aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19315e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 193223aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 193323aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 193423aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1935cea67a2dSEric Dumazet struct icmp6hdr _icmph; 193623aebdacSJakub Sitnicki 193723aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 193823aebdacSJakub Sitnicki goto out; 193923aebdacSJakub Sitnicki 1940cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1941cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1942cea67a2dSEric Dumazet if (!icmph) 1943cea67a2dSEric Dumazet goto out; 1944cea67a2dSEric Dumazet 194523aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 194623aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 194723aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 194823aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 194923aebdacSJakub Sitnicki goto out; 195023aebdacSJakub Sitnicki 195123aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 195223aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 195323aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 195423aebdacSJakub Sitnicki if (!inner_iph) 195523aebdacSJakub Sitnicki goto out; 195623aebdacSJakub Sitnicki 195723aebdacSJakub Sitnicki key_iph = inner_iph; 19585e5d6fedSRoopa Prabhu _flkeys = NULL; 195923aebdacSJakub Sitnicki out: 19605e5d6fedSRoopa Prabhu if (_flkeys) { 19615e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19625e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19635e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19645e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19655e5d6fedSRoopa Prabhu } else { 196623aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 196723aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1968fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 196923aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 197023aebdacSJakub Sitnicki } 19715e5d6fedSRoopa Prabhu } 197223aebdacSJakub Sitnicki 197323aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1974b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1975b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 197623aebdacSJakub Sitnicki { 197723aebdacSJakub Sitnicki struct flow_keys hash_keys; 19789a2a537aSDavid Ahern u32 mhash; 197923aebdacSJakub Sitnicki 1980bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1981b4bac172SDavid Ahern case 0: 19826f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19836f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19849a2a537aSDavid Ahern if (skb) { 19855e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19869a2a537aSDavid Ahern } else { 19879a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19889a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 1989fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 19909a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 199123aebdacSJakub Sitnicki } 1992b4bac172SDavid Ahern break; 1993b4bac172SDavid Ahern case 1: 1994b4bac172SDavid Ahern if (skb) { 1995b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 1996b4bac172SDavid Ahern struct flow_keys keys; 1997b4bac172SDavid Ahern 1998b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 1999b4bac172SDavid Ahern if (skb->l4_hash) 2000b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2001b4bac172SDavid Ahern 2002b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2003b4bac172SDavid Ahern 2004b4bac172SDavid Ahern if (!flkeys) { 2005b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2006b4bac172SDavid Ahern flkeys = &keys; 2007b4bac172SDavid Ahern } 2008b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2009b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2010b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2011b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2012b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2013b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2014b4bac172SDavid Ahern } else { 2015b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2016b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2017b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2018b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2019b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2020b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2021b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2022b4bac172SDavid Ahern } 2023b4bac172SDavid Ahern break; 2024b4bac172SDavid Ahern } 20259a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 202623aebdacSJakub Sitnicki 20279a2a537aSDavid Ahern return mhash >> 1; 202823aebdacSJakub Sitnicki } 202923aebdacSJakub Sitnicki 2030c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2031c71099acSThomas Graf { 2032b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2033c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2034adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2035904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20364c9483b2SDavid S. Miller struct flowi6 fl6 = { 2037e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20384c9483b2SDavid S. Miller .daddr = iph->daddr, 20394c9483b2SDavid S. Miller .saddr = iph->saddr, 20406502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20414c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20424c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2043c71099acSThomas Graf }; 20445e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2045adaa70bbSThomas Graf 2046904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 204746fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2048904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20495e5d6fedSRoopa Prabhu 20505e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20515e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20525e5d6fedSRoopa Prabhu 205323aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2054b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 205506e9d040SJiri Benc skb_dst_drop(skb); 2056b75cc8f9SDavid Ahern skb_dst_set(skb, 2057b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2058c71099acSThomas Graf } 2059c71099acSThomas Graf 2060b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2061b75cc8f9SDavid Ahern struct fib6_table *table, 2062b75cc8f9SDavid Ahern struct flowi6 *fl6, 2063b75cc8f9SDavid Ahern const struct sk_buff *skb, 2064b75cc8f9SDavid Ahern int flags) 2065c71099acSThomas Graf { 2066b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2067c71099acSThomas Graf } 2068c71099acSThomas Graf 20696f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20706f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2071c71099acSThomas Graf { 2072d46a9d67SDavid Ahern bool any_src; 2073c71099acSThomas Graf 20743ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20753ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20764c1feac5SDavid Ahern struct dst_entry *dst; 20774c1feac5SDavid Ahern 20784c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2079ca254490SDavid Ahern if (dst) 2080ca254490SDavid Ahern return dst; 20814c1feac5SDavid Ahern } 2082ca254490SDavid Ahern 20831fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20844dc27d1cSDavid McCullough 2085d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2086741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2087d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 208877d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2089c71099acSThomas Graf 2090d46a9d67SDavid Ahern if (!any_src) 2091adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20920c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 20930c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2094adaa70bbSThomas Graf 2095b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 20961da177e4SLinus Torvalds } 20976f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 20981da177e4SLinus Torvalds 20992774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 210014e50e57SDavid S. Miller { 21015c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21021dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 210314e50e57SDavid S. Miller struct dst_entry *new = NULL; 210414e50e57SDavid S. Miller 21051dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 210662cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 210714e50e57SDavid S. Miller if (rt) { 21080a1f5962SMartin KaFai Lau rt6_info_init(rt); 210981eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21100a1f5962SMartin KaFai Lau 2111d8d1f30bSChangli Gao new = &rt->dst; 211214e50e57SDavid S. Miller new->__use = 1; 2113352e512cSHerbert Xu new->input = dst_discard; 2114ede2059dSEric W. Biederman new->output = dst_discard_out; 211514e50e57SDavid S. Miller 2116defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 211714e50e57SDavid S. Miller 21181dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21194e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21200a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 212114e50e57SDavid S. Miller 212214e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 212314e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 212414e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 212514e50e57SDavid S. Miller #endif 212614e50e57SDavid S. Miller } 212714e50e57SDavid S. Miller 212869ead7afSDavid S. Miller dst_release(dst_orig); 212969ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 213014e50e57SDavid S. Miller } 213114e50e57SDavid S. Miller 21321da177e4SLinus Torvalds /* 21331da177e4SLinus Torvalds * Destination cache support functions 21341da177e4SLinus Torvalds */ 21351da177e4SLinus Torvalds 21368d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21373da59bd9SMartin KaFai Lau { 213836143645SSteffen Klassert u32 rt_cookie = 0; 2139c5cff856SWei Wang 21408ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 214193531c67SDavid Ahern return false; 214293531c67SDavid Ahern 214393531c67SDavid Ahern if (fib6_check_expired(f6i)) 214493531c67SDavid Ahern return false; 214593531c67SDavid Ahern 214693531c67SDavid Ahern return true; 214793531c67SDavid Ahern } 214893531c67SDavid Ahern 2149a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2150a68886a6SDavid Ahern struct fib6_info *from, 2151a68886a6SDavid Ahern u32 cookie) 21523da59bd9SMartin KaFai Lau { 2153c5cff856SWei Wang u32 rt_cookie = 0; 2154c5cff856SWei Wang 2155a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 215693531c67SDavid Ahern rt_cookie != cookie) 21573da59bd9SMartin KaFai Lau return NULL; 21583da59bd9SMartin KaFai Lau 21593da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21603da59bd9SMartin KaFai Lau return NULL; 21613da59bd9SMartin KaFai Lau 21623da59bd9SMartin KaFai Lau return &rt->dst; 21633da59bd9SMartin KaFai Lau } 21643da59bd9SMartin KaFai Lau 2165a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2166a68886a6SDavid Ahern struct fib6_info *from, 2167a68886a6SDavid Ahern u32 cookie) 21683da59bd9SMartin KaFai Lau { 21695973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21705973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2171a68886a6SDavid Ahern fib6_check(from, cookie)) 21723da59bd9SMartin KaFai Lau return &rt->dst; 21733da59bd9SMartin KaFai Lau else 21743da59bd9SMartin KaFai Lau return NULL; 21753da59bd9SMartin KaFai Lau } 21763da59bd9SMartin KaFai Lau 21771da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21781da177e4SLinus Torvalds { 2179a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2180a68886a6SDavid Ahern struct fib6_info *from; 21811da177e4SLinus Torvalds struct rt6_info *rt; 21821da177e4SLinus Torvalds 2183a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2184a87b7dc9SDavid Ahern 2185a87b7dc9SDavid Ahern rcu_read_lock(); 21861da177e4SLinus Torvalds 21876f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21886f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21896f3118b5SNicolas Dichtel * into this function always. 21906f3118b5SNicolas Dichtel */ 2191e3bc10bdSHannes Frederic Sowa 2192a68886a6SDavid Ahern from = rcu_dereference(rt->from); 21934b32b5adSMartin KaFai Lau 2194a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2195a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2196a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 21973da59bd9SMartin KaFai Lau else 2198a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2199a87b7dc9SDavid Ahern 2200a87b7dc9SDavid Ahern rcu_read_unlock(); 2201a87b7dc9SDavid Ahern 2202a87b7dc9SDavid Ahern return dst_ret; 22031da177e4SLinus Torvalds } 22041da177e4SLinus Torvalds 22051da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22061da177e4SLinus Torvalds { 22071da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22081da177e4SLinus Torvalds 22091da177e4SLinus Torvalds if (rt) { 221054c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2211c3c14da0SDavid Ahern rcu_read_lock(); 221254c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 221393531c67SDavid Ahern rt6_remove_exception_rt(rt); 221454c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22151da177e4SLinus Torvalds } 2216c3c14da0SDavid Ahern rcu_read_unlock(); 221754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 221854c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 221954c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 222054c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222154c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222254c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22231da177e4SLinus Torvalds } 22241da177e4SLinus Torvalds 22251da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22261da177e4SLinus Torvalds { 22271da177e4SLinus Torvalds struct rt6_info *rt; 22281da177e4SLinus Torvalds 22293ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22301da177e4SLinus Torvalds 2231adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22321da177e4SLinus Torvalds if (rt) { 22338a14e46fSDavid Ahern rcu_read_lock(); 22341eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 223593531c67SDavid Ahern rt6_remove_exception_rt(rt); 2236c5cff856SWei Wang } else { 2237a68886a6SDavid Ahern struct fib6_info *from; 2238c5cff856SWei Wang struct fib6_node *fn; 2239c5cff856SWei Wang 2240a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2241a68886a6SDavid Ahern if (from) { 2242a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2243c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2244c5cff856SWei Wang fn->fn_sernum = -1; 2245a68886a6SDavid Ahern } 22461da177e4SLinus Torvalds } 22471da177e4SLinus Torvalds rcu_read_unlock(); 22481da177e4SLinus Torvalds } 22491da177e4SLinus Torvalds } 22501da177e4SLinus Torvalds 22516a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22526a3e030fSDavid Ahern { 2253a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2254a68886a6SDavid Ahern struct fib6_info *from; 2255a68886a6SDavid Ahern 2256a68886a6SDavid Ahern rcu_read_lock(); 2257a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2258a68886a6SDavid Ahern if (from) 2259a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2260a68886a6SDavid Ahern rcu_read_unlock(); 2261a68886a6SDavid Ahern } 22626a3e030fSDavid Ahern 22636a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22646a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22656700c270SDavid S. Miller } 22661da177e4SLinus Torvalds 226745e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 226845e4fd26SMartin KaFai Lau { 226945e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 227045e4fd26SMartin KaFai Lau 2271d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 227245e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 227345e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 227445e4fd26SMartin KaFai Lau } 227545e4fd26SMartin KaFai Lau 22760d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22770d3f6d29SMartin KaFai Lau { 2278a68886a6SDavid Ahern bool from_set; 2279a68886a6SDavid Ahern 2280a68886a6SDavid Ahern rcu_read_lock(); 2281a68886a6SDavid Ahern from_set = !!rcu_dereference(rt->from); 2282a68886a6SDavid Ahern rcu_read_unlock(); 2283a68886a6SDavid Ahern 22840d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 2285a68886a6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || from_set); 22860d3f6d29SMartin KaFai Lau } 22870d3f6d29SMartin KaFai Lau 228845e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 228945e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22901da177e4SLinus Torvalds { 22910dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 22921da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 22931da177e4SLinus Torvalds 229419bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 229519bda36cSXin Long return; 229619bda36cSXin Long 229745e4fd26SMartin KaFai Lau if (iph) { 229845e4fd26SMartin KaFai Lau daddr = &iph->daddr; 229945e4fd26SMartin KaFai Lau saddr = &iph->saddr; 230045e4fd26SMartin KaFai Lau } else if (sk) { 230145e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 230245e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 230345e4fd26SMartin KaFai Lau } else { 23040dec879fSJulian Anastasov daddr = NULL; 23050dec879fSJulian Anastasov saddr = NULL; 23061da177e4SLinus Torvalds } 23070dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23080dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23090dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23100dec879fSJulian Anastasov return; 23110dec879fSJulian Anastasov 23120dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23130dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23142b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23152b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23162b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23170dec879fSJulian Anastasov } else if (daddr) { 2318a68886a6SDavid Ahern struct fib6_info *from; 23190dec879fSJulian Anastasov struct rt6_info *nrt6; 23200dec879fSJulian Anastasov 23214d85cd0cSDavid Ahern rcu_read_lock(); 2322a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2323a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 232445e4fd26SMartin KaFai Lau if (nrt6) { 232545e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2326a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23272b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 232845e4fd26SMartin KaFai Lau } 2329a68886a6SDavid Ahern rcu_read_unlock(); 233045e4fd26SMartin KaFai Lau } 233145e4fd26SMartin KaFai Lau } 233245e4fd26SMartin KaFai Lau 233345e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 233445e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 233545e4fd26SMartin KaFai Lau { 233645e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23371da177e4SLinus Torvalds } 23381da177e4SLinus Torvalds 233942ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2340e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 234181aded24SDavid S. Miller { 234281aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 234381aded24SDavid S. Miller struct dst_entry *dst; 2344dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2345dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2346dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2347dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2348dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2349dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2350dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2351dc92095dSMaciej Żenczykowski }; 235281aded24SDavid S. Miller 235381aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 235481aded24SDavid S. Miller if (!dst->error) 235545e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 235681aded24SDavid S. Miller dst_release(dst); 235781aded24SDavid S. Miller } 235881aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 235981aded24SDavid S. Miller 236081aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 236181aded24SDavid S. Miller { 2362*7ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 236333c162a9SMartin KaFai Lau struct dst_entry *dst; 236433c162a9SMartin KaFai Lau 2365*7ddacfa5SDavid Ahern if (!oif && skb->dev) 2366*7ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 2367*7ddacfa5SDavid Ahern 2368*7ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 236933c162a9SMartin KaFai Lau 237033c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 237133c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 237233c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 237333c162a9SMartin KaFai Lau return; 237433c162a9SMartin KaFai Lau 237533c162a9SMartin KaFai Lau bh_lock_sock(sk); 237633c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 237733c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 237833c162a9SMartin KaFai Lau bh_unlock_sock(sk); 237981aded24SDavid S. Miller } 238081aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 238181aded24SDavid S. Miller 23827d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23837d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23847d6850f7SAlexey Kodanev { 23857d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23867d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23877d6850f7SAlexey Kodanev #endif 23887d6850f7SAlexey Kodanev 23897d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23907d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23917d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23927d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23937d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 23947d6850f7SAlexey Kodanev &np->saddr : 23957d6850f7SAlexey Kodanev #endif 23967d6850f7SAlexey Kodanev NULL); 23977d6850f7SAlexey Kodanev } 23987d6850f7SAlexey Kodanev 2399b55b76b2SDuan Jiong /* Handle redirects */ 2400b55b76b2SDuan Jiong struct ip6rd_flowi { 2401b55b76b2SDuan Jiong struct flowi6 fl6; 2402b55b76b2SDuan Jiong struct in6_addr gateway; 2403b55b76b2SDuan Jiong }; 2404b55b76b2SDuan Jiong 2405b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2406b55b76b2SDuan Jiong struct fib6_table *table, 2407b55b76b2SDuan Jiong struct flowi6 *fl6, 2408b75cc8f9SDavid Ahern const struct sk_buff *skb, 2409b55b76b2SDuan Jiong int flags) 2410b55b76b2SDuan Jiong { 2411b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 241223fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24138d1c802bSDavid Ahern struct fib6_info *rt; 2414b55b76b2SDuan Jiong struct fib6_node *fn; 2415b55b76b2SDuan Jiong 2416b55b76b2SDuan Jiong /* Get the "current" route for this destination and 241767c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2418b55b76b2SDuan Jiong * 2419b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2420b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2421b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2422b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2423b55b76b2SDuan Jiong * routes. 2424b55b76b2SDuan Jiong */ 2425b55b76b2SDuan Jiong 242666f5d6ceSWei Wang rcu_read_lock(); 24276454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2428b55b76b2SDuan Jiong restart: 242966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24305e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 24318067bb8cSIdo Schimmel continue; 243214895687SDavid Ahern if (fib6_check_expired(rt)) 2433b55b76b2SDuan Jiong continue; 243493c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2435b55b76b2SDuan Jiong break; 243693c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2437b55b76b2SDuan Jiong continue; 24385e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2439b55b76b2SDuan Jiong continue; 24402b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24412b760fcfSWei Wang * in the case of an ip redirect. 24422b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24432b760fcfSWei Wang * is different. 24442b760fcfSWei Wang */ 24455e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24462b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24472b760fcfSWei Wang &fl6->daddr, 24482b760fcfSWei Wang &fl6->saddr); 24492b760fcfSWei Wang if (rt_cache && 24502b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24512b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 245223fb93a4SDavid Ahern ret = rt_cache; 24532b760fcfSWei Wang break; 24542b760fcfSWei Wang } 2455b55b76b2SDuan Jiong continue; 24562b760fcfSWei Wang } 2457b55b76b2SDuan Jiong break; 2458b55b76b2SDuan Jiong } 2459b55b76b2SDuan Jiong 2460b55b76b2SDuan Jiong if (!rt) 2461421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 246293c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 246323fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2464b0a1ba59SMartin KaFai Lau goto out; 2465b0a1ba59SMartin KaFai Lau } 2466b0a1ba59SMartin KaFai Lau 2467421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2468a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2469a3c00e46SMartin KaFai Lau if (fn) 2470a3c00e46SMartin KaFai Lau goto restart; 2471b55b76b2SDuan Jiong } 2472a3c00e46SMartin KaFai Lau 2473b0a1ba59SMartin KaFai Lau out: 247423fb93a4SDavid Ahern if (ret) 2475e873e4b9SWei Wang ip6_hold_safe(net, &ret, true); 247623fb93a4SDavid Ahern else 247723fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2478b55b76b2SDuan Jiong 247966f5d6ceSWei Wang rcu_read_unlock(); 2480b55b76b2SDuan Jiong 2481b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 248223fb93a4SDavid Ahern return ret; 2483b55b76b2SDuan Jiong }; 2484b55b76b2SDuan Jiong 2485b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2486b55b76b2SDuan Jiong const struct flowi6 *fl6, 2487b75cc8f9SDavid Ahern const struct sk_buff *skb, 2488b55b76b2SDuan Jiong const struct in6_addr *gateway) 2489b55b76b2SDuan Jiong { 2490b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2491b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2492b55b76b2SDuan Jiong 2493b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2494b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2495b55b76b2SDuan Jiong 2496b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2497b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2498b55b76b2SDuan Jiong } 2499b55b76b2SDuan Jiong 2500e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2501e2d118a1SLorenzo Colitti kuid_t uid) 25023a5ad2eeSDavid S. Miller { 25033a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25043a5ad2eeSDavid S. Miller struct dst_entry *dst; 25051f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25061f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25071f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25081f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25091f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25101f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25111f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25121f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25131f7f10acSMaciej Żenczykowski }; 25143a5ad2eeSDavid S. Miller 2515b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25166700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25173a5ad2eeSDavid S. Miller dst_release(dst); 25183a5ad2eeSDavid S. Miller } 25193a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25203a5ad2eeSDavid S. Miller 2521d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2522c92a59ecSDuan Jiong { 2523c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2524c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2525c92a59ecSDuan Jiong struct dst_entry *dst; 25260b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25270b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25280b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25290b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25300b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25310b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25320b26fb17SMaciej Żenczykowski }; 2533c92a59ecSDuan Jiong 2534b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2535c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2536c92a59ecSDuan Jiong dst_release(dst); 2537c92a59ecSDuan Jiong } 2538c92a59ecSDuan Jiong 25393a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25403a5ad2eeSDavid S. Miller { 2541e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2542e2d118a1SLorenzo Colitti sk->sk_uid); 25433a5ad2eeSDavid S. Miller } 25443a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25453a5ad2eeSDavid S. Miller 25460dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25471da177e4SLinus Torvalds { 25480dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25490dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25500dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25510dbaee3bSDavid S. Miller 25521da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25531da177e4SLinus Torvalds 25545578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25555578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25561da177e4SLinus Torvalds 25571da177e4SLinus Torvalds /* 25581da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25591da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25601da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25611da177e4SLinus Torvalds * rely only on pmtu discovery" 25621da177e4SLinus Torvalds */ 25631da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25641da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25651da177e4SLinus Torvalds return mtu; 25661da177e4SLinus Torvalds } 25671da177e4SLinus Torvalds 2568ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2569d33e4553SDavid S. Miller { 2570d33e4553SDavid S. Miller struct inet6_dev *idev; 2571d4ead6b3SDavid Ahern unsigned int mtu; 2572618f9bc7SSteffen Klassert 25734b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25744b32b5adSMartin KaFai Lau if (mtu) 25754b32b5adSMartin KaFai Lau goto out; 25764b32b5adSMartin KaFai Lau 2577618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2578d33e4553SDavid S. Miller 2579d33e4553SDavid S. Miller rcu_read_lock(); 2580d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2581d33e4553SDavid S. Miller if (idev) 2582d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2583d33e4553SDavid S. Miller rcu_read_unlock(); 2584d33e4553SDavid S. Miller 258530f78d8eSEric Dumazet out: 258614972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 258714972cbdSRoopa Prabhu 258814972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2589d33e4553SDavid S. Miller } 2590d33e4553SDavid S. Miller 2591901731b8SDavid Ahern /* MTU selection: 2592901731b8SDavid Ahern * 1. mtu on route is locked - use it 2593901731b8SDavid Ahern * 2. mtu from nexthop exception 2594901731b8SDavid Ahern * 3. mtu from egress device 2595901731b8SDavid Ahern * 2596901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2597901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2598901731b8SDavid Ahern */ 2599901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2600901731b8SDavid Ahern struct in6_addr *saddr) 2601901731b8SDavid Ahern { 2602901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2603901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2604901731b8SDavid Ahern struct in6_addr *src_key; 2605901731b8SDavid Ahern struct inet6_dev *idev; 2606901731b8SDavid Ahern u32 mtu = 0; 2607901731b8SDavid Ahern 2608901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2609901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2610901731b8SDavid Ahern if (mtu) 2611901731b8SDavid Ahern goto out; 2612901731b8SDavid Ahern } 2613901731b8SDavid Ahern 2614901731b8SDavid Ahern src_key = NULL; 2615901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2616901731b8SDavid Ahern if (f6i->fib6_src.plen) 2617901731b8SDavid Ahern src_key = saddr; 2618901731b8SDavid Ahern #endif 2619901731b8SDavid Ahern 2620901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2621901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2622901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2623901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2624901731b8SDavid Ahern 2625901731b8SDavid Ahern if (likely(!mtu)) { 2626901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2627901731b8SDavid Ahern 2628901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2629901731b8SDavid Ahern idev = __in6_dev_get(dev); 2630901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2631901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2632901731b8SDavid Ahern } 2633901731b8SDavid Ahern 2634901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2635901731b8SDavid Ahern out: 2636901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2637901731b8SDavid Ahern } 2638901731b8SDavid Ahern 26393b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 264087a11578SDavid S. Miller struct flowi6 *fl6) 26411da177e4SLinus Torvalds { 264287a11578SDavid S. Miller struct dst_entry *dst; 26431da177e4SLinus Torvalds struct rt6_info *rt; 26441da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2645c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26461da177e4SLinus Torvalds 264738308473SDavid S. Miller if (unlikely(!idev)) 2648122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26491da177e4SLinus Torvalds 2650ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 265138308473SDavid S. Miller if (unlikely(!rt)) { 26521da177e4SLinus Torvalds in6_dev_put(idev); 265387a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26541da177e4SLinus Torvalds goto out; 26551da177e4SLinus Torvalds } 26561da177e4SLinus Torvalds 26578e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2658588753f1SBrendan McGrath rt->dst.input = ip6_input; 26598e2ec639SYan, Zheng rt->dst.output = ip6_output; 2660550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 266187a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26628e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26638e2ec639SYan, Zheng rt->rt6i_idev = idev; 266414edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26651da177e4SLinus Torvalds 26664c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2667587fea74SWei Wang * do proper release of the net_device 2668587fea74SWei Wang */ 2669587fea74SWei Wang rt6_uncached_list_add(rt); 267081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26711da177e4SLinus Torvalds 267287a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 267387a11578SDavid S. Miller 26741da177e4SLinus Torvalds out: 267587a11578SDavid S. Miller return dst; 26761da177e4SLinus Torvalds } 26771da177e4SLinus Torvalds 2678569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26791da177e4SLinus Torvalds { 268086393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26817019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26827019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26837019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26847019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26857019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2686fc66f95cSEric Dumazet int entries; 26871da177e4SLinus Torvalds 2688fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 268949a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2690fc66f95cSEric Dumazet entries <= rt_max_size) 26911da177e4SLinus Torvalds goto out; 26921da177e4SLinus Torvalds 26936891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 269414956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2695fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2696fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 26977019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 26981da177e4SLinus Torvalds out: 26997019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2700fc66f95cSEric Dumazet return entries > rt_max_size; 27011da177e4SLinus Torvalds } 27021da177e4SLinus Torvalds 27038c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27048c14586fSDavid Ahern struct fib6_config *cfg, 2705f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2706f4797b33SDavid Ahern u32 tbid, int flags) 27078c14586fSDavid Ahern { 27088c14586fSDavid Ahern struct flowi6 fl6 = { 27098c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27108c14586fSDavid Ahern .daddr = *gw_addr, 27118c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27128c14586fSDavid Ahern }; 27138c14586fSDavid Ahern struct fib6_table *table; 27148c14586fSDavid Ahern struct rt6_info *rt; 27158c14586fSDavid Ahern 2716f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27178c14586fSDavid Ahern if (!table) 27188c14586fSDavid Ahern return NULL; 27198c14586fSDavid Ahern 27208c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27218c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27228c14586fSDavid Ahern 2723f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2724b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27258c14586fSDavid Ahern 27268c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27278c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27288c14586fSDavid Ahern ip6_rt_put(rt); 27298c14586fSDavid Ahern rt = NULL; 27308c14586fSDavid Ahern } 27318c14586fSDavid Ahern 27328c14586fSDavid Ahern return rt; 27338c14586fSDavid Ahern } 27348c14586fSDavid Ahern 2735fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2736fc1e64e1SDavid Ahern struct fib6_config *cfg, 27379fbb704cSDavid Ahern const struct net_device *dev, 2738fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2739fc1e64e1SDavid Ahern { 274044750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2741fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2742fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2743fc1e64e1SDavid Ahern struct rt6_info *grt; 2744fc1e64e1SDavid Ahern int err; 2745fc1e64e1SDavid Ahern 2746fc1e64e1SDavid Ahern err = 0; 2747fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2748fc1e64e1SDavid Ahern if (grt) { 274958e354c0SDavid Ahern if (!grt->dst.error && 27504ed591c8SDavid Ahern /* ignore match if it is the default route */ 27514ed591c8SDavid Ahern grt->from && !ipv6_addr_any(&grt->from->fib6_dst.addr) && 275258e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 275344750f84SDavid Ahern NL_SET_ERR_MSG(extack, 275444750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2755fc1e64e1SDavid Ahern err = -EINVAL; 2756fc1e64e1SDavid Ahern } 2757fc1e64e1SDavid Ahern 2758fc1e64e1SDavid Ahern ip6_rt_put(grt); 2759fc1e64e1SDavid Ahern } 2760fc1e64e1SDavid Ahern 2761fc1e64e1SDavid Ahern return err; 2762fc1e64e1SDavid Ahern } 2763fc1e64e1SDavid Ahern 27641edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27651edce99fSDavid Ahern struct fib6_config *cfg, 27661edce99fSDavid Ahern struct net_device **_dev, 27671edce99fSDavid Ahern struct inet6_dev **idev) 27681edce99fSDavid Ahern { 27691edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27701edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27711edce99fSDavid Ahern struct rt6_info *grt = NULL; 27721edce99fSDavid Ahern int err = -EHOSTUNREACH; 27731edce99fSDavid Ahern 27741edce99fSDavid Ahern if (cfg->fc_table) { 2775f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2776f4797b33SDavid Ahern 2777f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2778f4797b33SDavid Ahern cfg->fc_table, flags); 27791edce99fSDavid Ahern if (grt) { 27801edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 27811edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 27821edce99fSDavid Ahern ip6_rt_put(grt); 27831edce99fSDavid Ahern grt = NULL; 27841edce99fSDavid Ahern } 27851edce99fSDavid Ahern } 27861edce99fSDavid Ahern } 27871edce99fSDavid Ahern 27881edce99fSDavid Ahern if (!grt) 2789b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 27901edce99fSDavid Ahern 27911edce99fSDavid Ahern if (!grt) 27921edce99fSDavid Ahern goto out; 27931edce99fSDavid Ahern 27941edce99fSDavid Ahern if (dev) { 27951edce99fSDavid Ahern if (dev != grt->dst.dev) { 27961edce99fSDavid Ahern ip6_rt_put(grt); 27971edce99fSDavid Ahern goto out; 27981edce99fSDavid Ahern } 27991edce99fSDavid Ahern } else { 28001edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28011edce99fSDavid Ahern *idev = grt->rt6i_idev; 28021edce99fSDavid Ahern dev_hold(dev); 28031edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28041edce99fSDavid Ahern } 28051edce99fSDavid Ahern 28061edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28071edce99fSDavid Ahern err = 0; 28081edce99fSDavid Ahern 28091edce99fSDavid Ahern ip6_rt_put(grt); 28101edce99fSDavid Ahern 28111edce99fSDavid Ahern out: 28121edce99fSDavid Ahern return err; 28131edce99fSDavid Ahern } 28141edce99fSDavid Ahern 28159fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28169fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28179fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28189fbb704cSDavid Ahern { 28199fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28209fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2821232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28229fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2823232378e8SDavid Ahern bool need_addr_check = !dev; 28249fbb704cSDavid Ahern int err = -EINVAL; 28259fbb704cSDavid Ahern 28269fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28279fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28289fbb704cSDavid Ahern * will return already-added prefix route via interface that 28299fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28309fbb704cSDavid Ahern */ 2831232378e8SDavid Ahern if (dev && 2832232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2833232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28349fbb704cSDavid Ahern goto out; 28359fbb704cSDavid Ahern } 28369fbb704cSDavid Ahern 28379fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28389fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28399fbb704cSDavid Ahern * addresses as nexthop address. 28409fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28419fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28429fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28439fbb704cSDavid Ahern * some exceptions. --ANK 28449fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28459fbb704cSDavid Ahern * addressing 28469fbb704cSDavid Ahern */ 28479fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28489fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28499fbb704cSDavid Ahern goto out; 28509fbb704cSDavid Ahern } 28519fbb704cSDavid Ahern 28529fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28539fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28549fbb704cSDavid Ahern else 28559fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28569fbb704cSDavid Ahern 28579fbb704cSDavid Ahern if (err) 28589fbb704cSDavid Ahern goto out; 28599fbb704cSDavid Ahern } 28609fbb704cSDavid Ahern 28619fbb704cSDavid Ahern /* reload in case device was changed */ 28629fbb704cSDavid Ahern dev = *_dev; 28639fbb704cSDavid Ahern 28649fbb704cSDavid Ahern err = -EINVAL; 28659fbb704cSDavid Ahern if (!dev) { 28669fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28679fbb704cSDavid Ahern goto out; 28689fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28699fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28709fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28719fbb704cSDavid Ahern goto out; 28729fbb704cSDavid Ahern } 2873232378e8SDavid Ahern 2874232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2875232378e8SDavid Ahern * egress device has been resolved. 2876232378e8SDavid Ahern */ 2877232378e8SDavid Ahern if (need_addr_check && 2878232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2879232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2880232378e8SDavid Ahern goto out; 2881232378e8SDavid Ahern } 2882232378e8SDavid Ahern 28839fbb704cSDavid Ahern err = 0; 28849fbb704cSDavid Ahern out: 28859fbb704cSDavid Ahern return err; 28869fbb704cSDavid Ahern } 28879fbb704cSDavid Ahern 28888d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2889acb54e3cSDavid Ahern gfp_t gfp_flags, 2890333c4301SDavid Ahern struct netlink_ext_ack *extack) 28911da177e4SLinus Torvalds { 28925578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 28938d1c802bSDavid Ahern struct fib6_info *rt = NULL; 28941da177e4SLinus Torvalds struct net_device *dev = NULL; 28951da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2896c71099acSThomas Graf struct fib6_table *table; 28971da177e4SLinus Torvalds int addr_type; 28988c5b83f0SRoopa Prabhu int err = -EINVAL; 28991da177e4SLinus Torvalds 2900557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2901d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2902d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2903557c44beSDavid Ahern goto out; 2904d5d531cbSDavid Ahern } 2905557c44beSDavid Ahern 29062ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 29072ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29082ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 29092ea2352eSWei Wang goto out; 29102ea2352eSWei Wang } 29112ea2352eSWei Wang 2912e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2913e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2914e8478e80SDavid Ahern goto out; 2915e8478e80SDavid Ahern } 2916e8478e80SDavid Ahern 2917d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2918d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 29198c5b83f0SRoopa Prabhu goto out; 2920d5d531cbSDavid Ahern } 2921d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2922d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2923d5d531cbSDavid Ahern goto out; 2924d5d531cbSDavid Ahern } 29251da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2926d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2927d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2928d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 29298c5b83f0SRoopa Prabhu goto out; 2930d5d531cbSDavid Ahern } 29311da177e4SLinus Torvalds #endif 293286872cb5SThomas Graf if (cfg->fc_ifindex) { 29331da177e4SLinus Torvalds err = -ENODEV; 29345578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 29351da177e4SLinus Torvalds if (!dev) 29361da177e4SLinus Torvalds goto out; 29371da177e4SLinus Torvalds idev = in6_dev_get(dev); 29381da177e4SLinus Torvalds if (!idev) 29391da177e4SLinus Torvalds goto out; 29401da177e4SLinus Torvalds } 29411da177e4SLinus Torvalds 294286872cb5SThomas Graf if (cfg->fc_metric == 0) 294386872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 29441da177e4SLinus Torvalds 2945fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2946fc1e64e1SDavid Ahern if (!dev) { 2947fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2948fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2949fc1e64e1SDavid Ahern err = -ENODEV; 2950fc1e64e1SDavid Ahern goto out; 2951fc1e64e1SDavid Ahern } 2952fc1e64e1SDavid Ahern 2953fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 2954fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 2955fc1e64e1SDavid Ahern err = -ENETDOWN; 2956fc1e64e1SDavid Ahern goto out; 2957fc1e64e1SDavid Ahern } 2958fc1e64e1SDavid Ahern } 2959fc1e64e1SDavid Ahern 2960c71099acSThomas Graf err = -ENOBUFS; 296138308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2962d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2963d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 296438308473SDavid S. Miller if (!table) { 2965f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2966d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2967d71314b4SMatti Vaittinen } 2968d71314b4SMatti Vaittinen } else { 2969d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2970d71314b4SMatti Vaittinen } 297138308473SDavid S. Miller 297238308473SDavid S. Miller if (!table) 2973c71099acSThomas Graf goto out; 2974c71099acSThomas Graf 29751da177e4SLinus Torvalds err = -ENOMEM; 297693531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 297793531c67SDavid Ahern if (!rt) 29781da177e4SLinus Torvalds goto out; 297993531c67SDavid Ahern 2980767a2217SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len); 2981767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 2982767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 2983fda21d46SEric Dumazet /* Do not leave garbage there. */ 2984fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 2985767a2217SDavid Ahern goto out; 2986767a2217SDavid Ahern } 2987767a2217SDavid Ahern 298893531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 298993531c67SDavid Ahern rt->dst_nocount = true; 29901da177e4SLinus Torvalds 29911716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 299214895687SDavid Ahern fib6_set_expires(rt, jiffies + 29931716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 29941716a961SGao feng else 299514895687SDavid Ahern fib6_clean_expires(rt); 29961da177e4SLinus Torvalds 299786872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 299886872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 299993c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 300086872cb5SThomas Graf 300186872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 30021da177e4SLinus Torvalds 300319e42e45SRoopa Prabhu if (cfg->fc_encap) { 300419e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 300519e42e45SRoopa Prabhu 300630357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 3007127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 30089ae28727SDavid Ahern &lwtstate, extack); 300919e42e45SRoopa Prabhu if (err) 301019e42e45SRoopa Prabhu goto out; 30115e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 301225368623STom Herbert } 301319e42e45SRoopa Prabhu 301493c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 301593c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 301693c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 30173b6761d1SDavid Ahern rt->dst_host = true; 30181da177e4SLinus Torvalds 30191da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 302093c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 302193c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 30221da177e4SLinus Torvalds #endif 30231da177e4SLinus Torvalds 302493c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 30255e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 30261da177e4SLinus Torvalds 3027e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 30281da177e4SLinus Torvalds 30291da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 30301da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 30311da177e4SLinus Torvalds */ 303286872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 303338308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 303438308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 303538308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 30361da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 30375578689aSDaniel Lezcano if (dev != net->loopback_dev) { 30381da177e4SLinus Torvalds if (dev) { 30391da177e4SLinus Torvalds dev_put(dev); 30401da177e4SLinus Torvalds in6_dev_put(idev); 30411da177e4SLinus Torvalds } 30425578689aSDaniel Lezcano dev = net->loopback_dev; 30431da177e4SLinus Torvalds dev_hold(dev); 30441da177e4SLinus Torvalds idev = in6_dev_get(dev); 30451da177e4SLinus Torvalds if (!idev) { 30461da177e4SLinus Torvalds err = -ENODEV; 30471da177e4SLinus Torvalds goto out; 30481da177e4SLinus Torvalds } 30491da177e4SLinus Torvalds } 305093c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 30511da177e4SLinus Torvalds goto install_route; 30521da177e4SLinus Torvalds } 30531da177e4SLinus Torvalds 305486872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 30559fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 30561da177e4SLinus Torvalds if (err) 30571da177e4SLinus Torvalds goto out; 30589fbb704cSDavid Ahern 305993531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 30601da177e4SLinus Torvalds } 30611da177e4SLinus Torvalds 30621da177e4SLinus Torvalds err = -ENODEV; 306338308473SDavid S. Miller if (!dev) 30641da177e4SLinus Torvalds goto out; 30651da177e4SLinus Torvalds 3066428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 3067428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 3068428604fbSLorenzo Bianconi err = -EACCES; 3069428604fbSLorenzo Bianconi goto out; 3070428604fbSLorenzo Bianconi } 3071428604fbSLorenzo Bianconi 3072955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3073955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3074955ec4cbSDavid Ahern err = -ENETDOWN; 3075955ec4cbSDavid Ahern goto out; 3076955ec4cbSDavid Ahern } 3077955ec4cbSDavid Ahern 3078c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3079c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3080d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3081c3968a85SDaniel Walter err = -EINVAL; 3082c3968a85SDaniel Walter goto out; 3083c3968a85SDaniel Walter } 308493c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 308593c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3086c3968a85SDaniel Walter } else 308793c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3088c3968a85SDaniel Walter 308993c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 30901da177e4SLinus Torvalds 30911da177e4SLinus Torvalds install_route: 309293c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 30935609b80aSIdo Schimmel !netif_carrier_ok(dev)) 30945e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 30955e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 309693531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 309793c2fb25SDavid Ahern rt->fib6_table = table; 309863152fc0SDaniel Lezcano 3099dcd1f572SDavid Ahern if (idev) 3100dcd1f572SDavid Ahern in6_dev_put(idev); 3101dcd1f572SDavid Ahern 31028c5b83f0SRoopa Prabhu return rt; 31031da177e4SLinus Torvalds out: 31041da177e4SLinus Torvalds if (dev) 31051da177e4SLinus Torvalds dev_put(dev); 31061da177e4SLinus Torvalds if (idev) 31071da177e4SLinus Torvalds in6_dev_put(idev); 31086b9ea5a6SRoopa Prabhu 310993531c67SDavid Ahern fib6_info_release(rt); 31108c5b83f0SRoopa Prabhu return ERR_PTR(err); 31116b9ea5a6SRoopa Prabhu } 31126b9ea5a6SRoopa Prabhu 3113acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3114333c4301SDavid Ahern struct netlink_ext_ack *extack) 31156b9ea5a6SRoopa Prabhu { 31168d1c802bSDavid Ahern struct fib6_info *rt; 31176b9ea5a6SRoopa Prabhu int err; 31186b9ea5a6SRoopa Prabhu 3119acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3120d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3121d4ead6b3SDavid Ahern return PTR_ERR(rt); 31226b9ea5a6SRoopa Prabhu 3123d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 312493531c67SDavid Ahern fib6_info_release(rt); 31256b9ea5a6SRoopa Prabhu 31261da177e4SLinus Torvalds return err; 31271da177e4SLinus Torvalds } 31281da177e4SLinus Torvalds 31298d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31301da177e4SLinus Torvalds { 3131afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3132c71099acSThomas Graf struct fib6_table *table; 3133afb1d4b5SDavid Ahern int err; 31341da177e4SLinus Torvalds 3135421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31366825a26cSGao feng err = -ENOENT; 31376825a26cSGao feng goto out; 31386825a26cSGao feng } 31396c813a72SPatrick McHardy 314093c2fb25SDavid Ahern table = rt->fib6_table; 314166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 314286872cb5SThomas Graf err = fib6_del(rt, info); 314366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31441da177e4SLinus Torvalds 31456825a26cSGao feng out: 314693531c67SDavid Ahern fib6_info_release(rt); 31471da177e4SLinus Torvalds return err; 31481da177e4SLinus Torvalds } 31491da177e4SLinus Torvalds 31508d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3151e0a1ad73SThomas Graf { 3152afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3153afb1d4b5SDavid Ahern 3154528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3155e0a1ad73SThomas Graf } 3156e0a1ad73SThomas Graf 31578d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 31580ae81335SDavid Ahern { 31590ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3160e3330039SWANG Cong struct net *net = info->nl_net; 316116a16cd3SDavid Ahern struct sk_buff *skb = NULL; 31620ae81335SDavid Ahern struct fib6_table *table; 3163e3330039SWANG Cong int err = -ENOENT; 31640ae81335SDavid Ahern 3165421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3166e3330039SWANG Cong goto out_put; 316793c2fb25SDavid Ahern table = rt->fib6_table; 316866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 31690ae81335SDavid Ahern 317093c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 31718d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 31720ae81335SDavid Ahern 317316a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 317416a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 317516a16cd3SDavid Ahern if (skb) { 317616a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 317716a16cd3SDavid Ahern 3178d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 317916a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 318016a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 318116a16cd3SDavid Ahern kfree_skb(skb); 318216a16cd3SDavid Ahern skb = NULL; 318316a16cd3SDavid Ahern } else 318416a16cd3SDavid Ahern info->skip_notify = 1; 318516a16cd3SDavid Ahern } 318616a16cd3SDavid Ahern 31870ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 318893c2fb25SDavid Ahern &rt->fib6_siblings, 318993c2fb25SDavid Ahern fib6_siblings) { 31900ae81335SDavid Ahern err = fib6_del(sibling, info); 31910ae81335SDavid Ahern if (err) 3192e3330039SWANG Cong goto out_unlock; 31930ae81335SDavid Ahern } 31940ae81335SDavid Ahern } 31950ae81335SDavid Ahern 31960ae81335SDavid Ahern err = fib6_del(rt, info); 3197e3330039SWANG Cong out_unlock: 319866f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3199e3330039SWANG Cong out_put: 320093531c67SDavid Ahern fib6_info_release(rt); 320116a16cd3SDavid Ahern 320216a16cd3SDavid Ahern if (skb) { 3203e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 320416a16cd3SDavid Ahern info->nlh, gfp_any()); 320516a16cd3SDavid Ahern } 32060ae81335SDavid Ahern return err; 32070ae81335SDavid Ahern } 32080ae81335SDavid Ahern 320923fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 321023fb93a4SDavid Ahern { 321123fb93a4SDavid Ahern int rc = -ESRCH; 321223fb93a4SDavid Ahern 321323fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 321423fb93a4SDavid Ahern goto out; 321523fb93a4SDavid Ahern 321623fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 321723fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 321823fb93a4SDavid Ahern goto out; 3219761f6026SXin Long 322023fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 322123fb93a4SDavid Ahern out: 322223fb93a4SDavid Ahern return rc; 322323fb93a4SDavid Ahern } 322423fb93a4SDavid Ahern 3225333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3226333c4301SDavid Ahern struct netlink_ext_ack *extack) 32271da177e4SLinus Torvalds { 32288d1c802bSDavid Ahern struct rt6_info *rt_cache; 3229c71099acSThomas Graf struct fib6_table *table; 32308d1c802bSDavid Ahern struct fib6_info *rt; 32311da177e4SLinus Torvalds struct fib6_node *fn; 32321da177e4SLinus Torvalds int err = -ESRCH; 32331da177e4SLinus Torvalds 32345578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3235d5d531cbSDavid Ahern if (!table) { 3236d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3237c71099acSThomas Graf return err; 3238d5d531cbSDavid Ahern } 32391da177e4SLinus Torvalds 324066f5d6ceSWei Wang rcu_read_lock(); 3241c71099acSThomas Graf 3242c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 324386872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 324438fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32452b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32461da177e4SLinus Torvalds 32471da177e4SLinus Torvalds if (fn) { 324866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 32492b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 325023fb93a4SDavid Ahern int rc; 325123fb93a4SDavid Ahern 32522b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32532b760fcfSWei Wang &cfg->fc_src); 325423fb93a4SDavid Ahern if (rt_cache) { 325523fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 32569e575010SEric Dumazet if (rc != -ESRCH) { 32579e575010SEric Dumazet rcu_read_unlock(); 325823fb93a4SDavid Ahern return rc; 325923fb93a4SDavid Ahern } 32609e575010SEric Dumazet } 32611f56a01fSMartin KaFai Lau continue; 32622b760fcfSWei Wang } 326386872cb5SThomas Graf if (cfg->fc_ifindex && 32645e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 32655e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 32661da177e4SLinus Torvalds continue; 326786872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 32685e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 32691da177e4SLinus Torvalds continue; 327093c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 32711da177e4SLinus Torvalds continue; 327293c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3273c2ed1880SMantas M continue; 3274e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3275e873e4b9SWei Wang continue; 327666f5d6ceSWei Wang rcu_read_unlock(); 32771da177e4SLinus Torvalds 32780ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 32790ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 328086872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 32810ae81335SDavid Ahern 32820ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 32831da177e4SLinus Torvalds } 32841da177e4SLinus Torvalds } 328566f5d6ceSWei Wang rcu_read_unlock(); 32861da177e4SLinus Torvalds 32871da177e4SLinus Torvalds return err; 32881da177e4SLinus Torvalds } 32891da177e4SLinus Torvalds 32906700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3291a6279458SYOSHIFUJI Hideaki { 3292a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3293e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3294e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3295e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3296e8599ff4SDavid S. Miller struct neighbour *neigh; 3297a68886a6SDavid Ahern struct fib6_info *from; 329871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 32996e157b6aSDavid S. Miller int optlen, on_link; 33006e157b6aSDavid S. Miller u8 *lladdr; 3301e8599ff4SDavid S. Miller 330229a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 330371bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3304e8599ff4SDavid S. Miller 3305e8599ff4SDavid S. Miller if (optlen < 0) { 33066e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3307e8599ff4SDavid S. Miller return; 3308e8599ff4SDavid S. Miller } 3309e8599ff4SDavid S. Miller 331071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3311e8599ff4SDavid S. Miller 331271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33136e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3314e8599ff4SDavid S. Miller return; 3315e8599ff4SDavid S. Miller } 3316e8599ff4SDavid S. Miller 33176e157b6aSDavid S. Miller on_link = 0; 331871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3319e8599ff4SDavid S. Miller on_link = 1; 332071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3321e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33226e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3323e8599ff4SDavid S. Miller return; 3324e8599ff4SDavid S. Miller } 3325e8599ff4SDavid S. Miller 3326e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3327e8599ff4SDavid S. Miller if (!in6_dev) 3328e8599ff4SDavid S. Miller return; 3329e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3330e8599ff4SDavid S. Miller return; 3331e8599ff4SDavid S. Miller 3332e8599ff4SDavid S. Miller /* RFC2461 8.1: 3333e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3334e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3335e8599ff4SDavid S. Miller */ 3336e8599ff4SDavid S. Miller 3337f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3338e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3339e8599ff4SDavid S. Miller return; 3340e8599ff4SDavid S. Miller } 33416e157b6aSDavid S. Miller 33426e157b6aSDavid S. Miller lladdr = NULL; 3343e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3344e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3345e8599ff4SDavid S. Miller skb->dev); 3346e8599ff4SDavid S. Miller if (!lladdr) { 3347e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3348e8599ff4SDavid S. Miller return; 3349e8599ff4SDavid S. Miller } 3350e8599ff4SDavid S. Miller } 3351e8599ff4SDavid S. Miller 33526e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3353ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33546e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33556e157b6aSDavid S. Miller return; 33566e157b6aSDavid S. Miller } 33576e157b6aSDavid S. Miller 33586e157b6aSDavid S. Miller /* Redirect received -> path was valid. 33596e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 33606e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 33616e157b6aSDavid S. Miller */ 33620dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 33636e157b6aSDavid S. Miller 336471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3365e8599ff4SDavid S. Miller if (!neigh) 3366e8599ff4SDavid S. Miller return; 3367e8599ff4SDavid S. Miller 33681da177e4SLinus Torvalds /* 33691da177e4SLinus Torvalds * We have finally decided to accept it. 33701da177e4SLinus Torvalds */ 33711da177e4SLinus Torvalds 3372f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 33731da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 33741da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 33751da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3376f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3377f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 33781da177e4SLinus Torvalds 33794d85cd0cSDavid Ahern rcu_read_lock(); 3380a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3381e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3382e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3383e873e4b9SWei Wang */ 33848a14e46fSDavid Ahern fib6_info_hold(from); 33854d85cd0cSDavid Ahern rcu_read_unlock(); 33868a14e46fSDavid Ahern 33878a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 338838308473SDavid S. Miller if (!nrt) 33891da177e4SLinus Torvalds goto out; 33901da177e4SLinus Torvalds 33911da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 33921da177e4SLinus Torvalds if (on_link) 33931da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 33941da177e4SLinus Torvalds 33954e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 33961da177e4SLinus Torvalds 33972b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 33982b760fcfSWei Wang * a cached route because rt6_insert_exception() will 33992b760fcfSWei Wang * takes care of it 34002b760fcfSWei Wang */ 34018a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34022b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34032b760fcfSWei Wang goto out; 34042b760fcfSWei Wang } 34051da177e4SLinus Torvalds 3406d8d1f30bSChangli Gao netevent.old = &rt->dst; 3407d8d1f30bSChangli Gao netevent.new = &nrt->dst; 340871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 340960592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34108d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34118d71740cSTom Tucker 34121da177e4SLinus Torvalds out: 34138a14e46fSDavid Ahern fib6_info_release(from); 3414e8599ff4SDavid S. Miller neigh_release(neigh); 34156e157b6aSDavid S. Miller } 34166e157b6aSDavid S. Miller 341770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34188d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3419b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3420830218c1SDavid Ahern const struct in6_addr *gwaddr, 3421830218c1SDavid Ahern struct net_device *dev) 342270ceb4f5SYOSHIFUJI Hideaki { 3423830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3424830218c1SDavid Ahern int ifindex = dev->ifindex; 342570ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34268d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3427c71099acSThomas Graf struct fib6_table *table; 342870ceb4f5SYOSHIFUJI Hideaki 3429830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 343038308473SDavid S. Miller if (!table) 3431c71099acSThomas Graf return NULL; 3432c71099acSThomas Graf 343366f5d6ceSWei Wang rcu_read_lock(); 343438fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 343570ceb4f5SYOSHIFUJI Hideaki if (!fn) 343670ceb4f5SYOSHIFUJI Hideaki goto out; 343770ceb4f5SYOSHIFUJI Hideaki 343866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 34395e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 344070ceb4f5SYOSHIFUJI Hideaki continue; 344193c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 344270ceb4f5SYOSHIFUJI Hideaki continue; 34435e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 344470ceb4f5SYOSHIFUJI Hideaki continue; 3445e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3446e873e4b9SWei Wang continue; 344770ceb4f5SYOSHIFUJI Hideaki break; 344870ceb4f5SYOSHIFUJI Hideaki } 344970ceb4f5SYOSHIFUJI Hideaki out: 345066f5d6ceSWei Wang rcu_read_unlock(); 345170ceb4f5SYOSHIFUJI Hideaki return rt; 345270ceb4f5SYOSHIFUJI Hideaki } 345370ceb4f5SYOSHIFUJI Hideaki 34548d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3455b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3456830218c1SDavid Ahern const struct in6_addr *gwaddr, 3457830218c1SDavid Ahern struct net_device *dev, 345895c96174SEric Dumazet unsigned int pref) 345970ceb4f5SYOSHIFUJI Hideaki { 346086872cb5SThomas Graf struct fib6_config cfg = { 3461238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3462830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 346386872cb5SThomas Graf .fc_dst_len = prefixlen, 346486872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 346586872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3466b91d5329SXin Long .fc_protocol = RTPROT_RA, 3467e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 346815e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3469efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3470efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 347186872cb5SThomas Graf }; 347270ceb4f5SYOSHIFUJI Hideaki 3473830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 34744e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 34754e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 347686872cb5SThomas Graf 3477e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3478e317da96SYOSHIFUJI Hideaki if (!prefixlen) 347986872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 348070ceb4f5SYOSHIFUJI Hideaki 3481acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 348270ceb4f5SYOSHIFUJI Hideaki 3483830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 348470ceb4f5SYOSHIFUJI Hideaki } 348570ceb4f5SYOSHIFUJI Hideaki #endif 348670ceb4f5SYOSHIFUJI Hideaki 34878d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3488afb1d4b5SDavid Ahern const struct in6_addr *addr, 3489afb1d4b5SDavid Ahern struct net_device *dev) 34901da177e4SLinus Torvalds { 3491830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 34928d1c802bSDavid Ahern struct fib6_info *rt; 3493c71099acSThomas Graf struct fib6_table *table; 34941da177e4SLinus Torvalds 3495afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 349638308473SDavid S. Miller if (!table) 3497c71099acSThomas Graf return NULL; 34981da177e4SLinus Torvalds 349966f5d6ceSWei Wang rcu_read_lock(); 350066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 35015e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 350293c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 35035e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 35041da177e4SLinus Torvalds break; 35051da177e4SLinus Torvalds } 3506e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3507e873e4b9SWei Wang rt = NULL; 350866f5d6ceSWei Wang rcu_read_unlock(); 35091da177e4SLinus Torvalds return rt; 35101da177e4SLinus Torvalds } 35111da177e4SLinus Torvalds 35128d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3513afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3514ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3515ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35161da177e4SLinus Torvalds { 351786872cb5SThomas Graf struct fib6_config cfg = { 3518ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3519238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 352086872cb5SThomas Graf .fc_ifindex = dev->ifindex, 352186872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 352286872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3523b91d5329SXin Long .fc_protocol = RTPROT_RA, 3524e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 352515e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35265578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3527afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 352886872cb5SThomas Graf }; 35291da177e4SLinus Torvalds 35304e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35311da177e4SLinus Torvalds 3532acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3533830218c1SDavid Ahern struct fib6_table *table; 3534830218c1SDavid Ahern 3535830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3536830218c1SDavid Ahern if (table) 3537830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3538830218c1SDavid Ahern } 35391da177e4SLinus Torvalds 3540afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35411da177e4SLinus Torvalds } 35421da177e4SLinus Torvalds 3543afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3544afb1d4b5SDavid Ahern struct fib6_table *table) 35451da177e4SLinus Torvalds { 35468d1c802bSDavid Ahern struct fib6_info *rt; 35471da177e4SLinus Torvalds 35481da177e4SLinus Torvalds restart: 354966f5d6ceSWei Wang rcu_read_lock(); 355066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3551dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3552dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3553dcd1f572SDavid Ahern 355493c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3555e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3556e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 355766f5d6ceSWei Wang rcu_read_unlock(); 3558afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 35591da177e4SLinus Torvalds goto restart; 35601da177e4SLinus Torvalds } 35611da177e4SLinus Torvalds } 356266f5d6ceSWei Wang rcu_read_unlock(); 3563830218c1SDavid Ahern 3564830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3565830218c1SDavid Ahern } 3566830218c1SDavid Ahern 3567830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3568830218c1SDavid Ahern { 3569830218c1SDavid Ahern struct fib6_table *table; 3570830218c1SDavid Ahern struct hlist_head *head; 3571830218c1SDavid Ahern unsigned int h; 3572830218c1SDavid Ahern 3573830218c1SDavid Ahern rcu_read_lock(); 3574830218c1SDavid Ahern 3575830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3576830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3577830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3578830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3579afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3580830218c1SDavid Ahern } 3581830218c1SDavid Ahern } 3582830218c1SDavid Ahern 3583830218c1SDavid Ahern rcu_read_unlock(); 35841da177e4SLinus Torvalds } 35851da177e4SLinus Torvalds 35865578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 35875578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 358886872cb5SThomas Graf struct fib6_config *cfg) 358986872cb5SThomas Graf { 35908823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 35918823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 35928823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 35938823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 35948823a3acSMaciej Żenczykowski .fc_metric = rtmsg->rtmsg_metric, 35958823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 35968823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 35978823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 35988823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 35998823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 360086872cb5SThomas Graf 36018823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 360286872cb5SThomas Graf 36038823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36048823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36058823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36068823a3acSMaciej Żenczykowski }; 360786872cb5SThomas Graf } 360886872cb5SThomas Graf 36095578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36101da177e4SLinus Torvalds { 361186872cb5SThomas Graf struct fib6_config cfg; 36121da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36131da177e4SLinus Torvalds int err; 36141da177e4SLinus Torvalds 36151da177e4SLinus Torvalds switch (cmd) { 36161da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36171da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3618af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36191da177e4SLinus Torvalds return -EPERM; 36201da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36211da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36221da177e4SLinus Torvalds if (err) 36231da177e4SLinus Torvalds return -EFAULT; 36241da177e4SLinus Torvalds 36255578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 362686872cb5SThomas Graf 36271da177e4SLinus Torvalds rtnl_lock(); 36281da177e4SLinus Torvalds switch (cmd) { 36291da177e4SLinus Torvalds case SIOCADDRT: 3630acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36311da177e4SLinus Torvalds break; 36321da177e4SLinus Torvalds case SIOCDELRT: 3633333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36341da177e4SLinus Torvalds break; 36351da177e4SLinus Torvalds default: 36361da177e4SLinus Torvalds err = -EINVAL; 36371da177e4SLinus Torvalds } 36381da177e4SLinus Torvalds rtnl_unlock(); 36391da177e4SLinus Torvalds 36401da177e4SLinus Torvalds return err; 36413ff50b79SStephen Hemminger } 36421da177e4SLinus Torvalds 36431da177e4SLinus Torvalds return -EINVAL; 36441da177e4SLinus Torvalds } 36451da177e4SLinus Torvalds 36461da177e4SLinus Torvalds /* 36471da177e4SLinus Torvalds * Drop the packet on the floor 36481da177e4SLinus Torvalds */ 36491da177e4SLinus Torvalds 3650d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36511da177e4SLinus Torvalds { 3652612f09e8SYOSHIFUJI Hideaki int type; 3653adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3654612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3655612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 36560660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 365745bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3658bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3659bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 36603bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3661612f09e8SYOSHIFUJI Hideaki break; 3662612f09e8SYOSHIFUJI Hideaki } 3663612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3664612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 36653bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 36663bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3667612f09e8SYOSHIFUJI Hideaki break; 3668612f09e8SYOSHIFUJI Hideaki } 36693ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 36701da177e4SLinus Torvalds kfree_skb(skb); 36711da177e4SLinus Torvalds return 0; 36721da177e4SLinus Torvalds } 36731da177e4SLinus Torvalds 36749ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 36759ce8ade0SThomas Graf { 3676612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 36779ce8ade0SThomas Graf } 36789ce8ade0SThomas Graf 3679ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 36801da177e4SLinus Torvalds { 3681adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3682612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 36831da177e4SLinus Torvalds } 36841da177e4SLinus Torvalds 36859ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 36869ce8ade0SThomas Graf { 3687612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 36889ce8ade0SThomas Graf } 36899ce8ade0SThomas Graf 3690ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 36919ce8ade0SThomas Graf { 3692adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3693612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 36949ce8ade0SThomas Graf } 36959ce8ade0SThomas Graf 36961da177e4SLinus Torvalds /* 36971da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 36981da177e4SLinus Torvalds */ 36991da177e4SLinus Torvalds 3700360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3701afb1d4b5SDavid Ahern struct inet6_dev *idev, 37021da177e4SLinus Torvalds const struct in6_addr *addr, 3703acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37041da177e4SLinus Torvalds { 3705ca254490SDavid Ahern u32 tb_id; 37064832c30dSDavid Ahern struct net_device *dev = idev->dev; 3707360a9887SDavid Ahern struct fib6_info *f6i; 37085f02ce24SDavid Ahern 3709360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3710360a9887SDavid Ahern if (!f6i) 37111da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 37121da177e4SLinus Torvalds 3713767a2217SDavid Ahern f6i->fib6_metrics = ip_fib_metrics_init(net, NULL, 0); 3714360a9887SDavid Ahern f6i->dst_nocount = true; 3715360a9887SDavid Ahern f6i->dst_host = true; 3716360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3717360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3718e8478e80SDavid Ahern if (anycast) { 3719360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3720360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3721e8478e80SDavid Ahern } else { 3722360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3723360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3724e8478e80SDavid Ahern } 37251da177e4SLinus Torvalds 3726360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 372793531c67SDavid Ahern dev_hold(dev); 3728360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3729360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3730360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3731ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3732360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 37331da177e4SLinus Torvalds 3734360a9887SDavid Ahern return f6i; 37351da177e4SLinus Torvalds } 37361da177e4SLinus Torvalds 3737c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3738c3968a85SDaniel Walter struct arg_dev_net_ip { 3739c3968a85SDaniel Walter struct net_device *dev; 3740c3968a85SDaniel Walter struct net *net; 3741c3968a85SDaniel Walter struct in6_addr *addr; 3742c3968a85SDaniel Walter }; 3743c3968a85SDaniel Walter 37448d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3745c3968a85SDaniel Walter { 3746c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3747c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3748c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3749c3968a85SDaniel Walter 37505e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3751421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 375293c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 375360006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3754c3968a85SDaniel Walter /* remove prefsrc entry */ 375593c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 375660006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3757c3968a85SDaniel Walter } 3758c3968a85SDaniel Walter return 0; 3759c3968a85SDaniel Walter } 3760c3968a85SDaniel Walter 3761c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3762c3968a85SDaniel Walter { 3763c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3764c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3765c3968a85SDaniel Walter .dev = ifp->idev->dev, 3766c3968a85SDaniel Walter .net = net, 3767c3968a85SDaniel Walter .addr = &ifp->addr, 3768c3968a85SDaniel Walter }; 37690c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3770c3968a85SDaniel Walter } 3771c3968a85SDaniel Walter 3772be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3773be7a010dSDuan Jiong 3774be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 37758d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3776be7a010dSDuan Jiong { 3777be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3778be7a010dSDuan Jiong 377993c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 37805e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3781be7a010dSDuan Jiong return -1; 3782be7a010dSDuan Jiong } 3783b16cb459SWei Wang 3784b16cb459SWei Wang /* Further clean up cached routes in exception table. 3785b16cb459SWei Wang * This is needed because cached route may have a different 3786b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3787b16cb459SWei Wang */ 3788b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3789b16cb459SWei Wang 3790be7a010dSDuan Jiong return 0; 3791be7a010dSDuan Jiong } 3792be7a010dSDuan Jiong 3793be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3794be7a010dSDuan Jiong { 3795be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3796be7a010dSDuan Jiong } 3797be7a010dSDuan Jiong 37982127d95aSIdo Schimmel struct arg_netdev_event { 37992127d95aSIdo Schimmel const struct net_device *dev; 38004c981e28SIdo Schimmel union { 38012127d95aSIdo Schimmel unsigned int nh_flags; 38024c981e28SIdo Schimmel unsigned long event; 38034c981e28SIdo Schimmel }; 38042127d95aSIdo Schimmel }; 38052127d95aSIdo Schimmel 38068d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3807d7dedee1SIdo Schimmel { 38088d1c802bSDavid Ahern struct fib6_info *iter; 3809d7dedee1SIdo Schimmel struct fib6_node *fn; 3810d7dedee1SIdo Schimmel 381193c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 381293c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3813d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 381493c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3815d7dedee1SIdo Schimmel while (iter) { 381693c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 381733bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3818d7dedee1SIdo Schimmel return iter; 38198fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 382093c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3821d7dedee1SIdo Schimmel } 3822d7dedee1SIdo Schimmel 3823d7dedee1SIdo Schimmel return NULL; 3824d7dedee1SIdo Schimmel } 3825d7dedee1SIdo Schimmel 38268d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3827d7dedee1SIdo Schimmel { 38285e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 38295e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3830dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3831d7dedee1SIdo Schimmel return true; 3832d7dedee1SIdo Schimmel 3833d7dedee1SIdo Schimmel return false; 3834d7dedee1SIdo Schimmel } 3835d7dedee1SIdo Schimmel 38368d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3837d7dedee1SIdo Schimmel { 38388d1c802bSDavid Ahern struct fib6_info *iter; 3839d7dedee1SIdo Schimmel int total = 0; 3840d7dedee1SIdo Schimmel 3841d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 38425e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3843d7dedee1SIdo Schimmel 384493c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3845d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 38465e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3847d7dedee1SIdo Schimmel } 3848d7dedee1SIdo Schimmel 3849d7dedee1SIdo Schimmel return total; 3850d7dedee1SIdo Schimmel } 3851d7dedee1SIdo Schimmel 38528d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3853d7dedee1SIdo Schimmel { 3854d7dedee1SIdo Schimmel int upper_bound = -1; 3855d7dedee1SIdo Schimmel 3856d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 38575e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3858d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3859d7dedee1SIdo Schimmel total) - 1; 3860d7dedee1SIdo Schimmel } 38615e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3862d7dedee1SIdo Schimmel } 3863d7dedee1SIdo Schimmel 38648d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3865d7dedee1SIdo Schimmel { 38668d1c802bSDavid Ahern struct fib6_info *iter; 3867d7dedee1SIdo Schimmel int weight = 0; 3868d7dedee1SIdo Schimmel 3869d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3870d7dedee1SIdo Schimmel 387193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3872d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3873d7dedee1SIdo Schimmel } 3874d7dedee1SIdo Schimmel 38758d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3876d7dedee1SIdo Schimmel { 38778d1c802bSDavid Ahern struct fib6_info *first; 3878d7dedee1SIdo Schimmel int total; 3879d7dedee1SIdo Schimmel 3880d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3881d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3882d7dedee1SIdo Schimmel * sibling route. 3883d7dedee1SIdo Schimmel */ 388493c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3885d7dedee1SIdo Schimmel return; 3886d7dedee1SIdo Schimmel 3887d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3888d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3889d7dedee1SIdo Schimmel * onwards. 3890d7dedee1SIdo Schimmel */ 3891d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3892d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3893d7dedee1SIdo Schimmel return; 3894d7dedee1SIdo Schimmel 3895d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3896d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3897d7dedee1SIdo Schimmel } 3898d7dedee1SIdo Schimmel 38998d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39002127d95aSIdo Schimmel { 39012127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39027aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39032127d95aSIdo Schimmel 3904421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 39055e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 39067aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3907d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39081de178edSIdo Schimmel } 39092127d95aSIdo Schimmel 39102127d95aSIdo Schimmel return 0; 39112127d95aSIdo Schimmel } 39122127d95aSIdo Schimmel 39132127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39142127d95aSIdo Schimmel { 39152127d95aSIdo Schimmel struct arg_netdev_event arg = { 39162127d95aSIdo Schimmel .dev = dev, 39176802f3adSIdo Schimmel { 39182127d95aSIdo Schimmel .nh_flags = nh_flags, 39196802f3adSIdo Schimmel }, 39202127d95aSIdo Schimmel }; 39212127d95aSIdo Schimmel 39222127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39232127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39242127d95aSIdo Schimmel 39252127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39262127d95aSIdo Schimmel } 39272127d95aSIdo Schimmel 39288d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39291de178edSIdo Schimmel const struct net_device *dev) 39301de178edSIdo Schimmel { 39318d1c802bSDavid Ahern struct fib6_info *iter; 39321de178edSIdo Schimmel 39335e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39341de178edSIdo Schimmel return true; 393593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39365e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39371de178edSIdo Schimmel return true; 39381de178edSIdo Schimmel 39391de178edSIdo Schimmel return false; 39401de178edSIdo Schimmel } 39411de178edSIdo Schimmel 39428d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39431de178edSIdo Schimmel { 39448d1c802bSDavid Ahern struct fib6_info *iter; 39451de178edSIdo Schimmel 39461de178edSIdo Schimmel rt->should_flush = 1; 394793c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39481de178edSIdo Schimmel iter->should_flush = 1; 39491de178edSIdo Schimmel } 39501de178edSIdo Schimmel 39518d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39521de178edSIdo Schimmel const struct net_device *down_dev) 39531de178edSIdo Schimmel { 39548d1c802bSDavid Ahern struct fib6_info *iter; 39551de178edSIdo Schimmel unsigned int dead = 0; 39561de178edSIdo Schimmel 39575e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 39585e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 39591de178edSIdo Schimmel dead++; 396093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39615e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 39625e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 39631de178edSIdo Schimmel dead++; 39641de178edSIdo Schimmel 39651de178edSIdo Schimmel return dead; 39661de178edSIdo Schimmel } 39671de178edSIdo Schimmel 39688d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 39691de178edSIdo Schimmel const struct net_device *dev, 39701de178edSIdo Schimmel unsigned int nh_flags) 39711de178edSIdo Schimmel { 39728d1c802bSDavid Ahern struct fib6_info *iter; 39731de178edSIdo Schimmel 39745e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39755e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 397693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39775e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39785e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 39791de178edSIdo Schimmel } 39801de178edSIdo Schimmel 3981a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 39828d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 39831da177e4SLinus Torvalds { 39844c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39854c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 39867aef6859SDavid Ahern struct net *net = dev_net(dev); 39878ed67789SDaniel Lezcano 3988421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 398927c6fa73SIdo Schimmel return 0; 399027c6fa73SIdo Schimmel 399127c6fa73SIdo Schimmel switch (arg->event) { 399227c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 39935e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 399427c6fa73SIdo Schimmel case NETDEV_DOWN: 39951de178edSIdo Schimmel if (rt->should_flush) 399627c6fa73SIdo Schimmel return -1; 399793c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 39985e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 39991de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40001de178edSIdo Schimmel unsigned int count; 40011de178edSIdo Schimmel 40021de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 400393c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40041de178edSIdo Schimmel rt6_multipath_flush(rt); 40051de178edSIdo Schimmel return -1; 40061de178edSIdo Schimmel } 40071de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40081de178edSIdo Schimmel RTNH_F_LINKDOWN); 40097aef6859SDavid Ahern fib6_update_sernum(net, rt); 4010d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40111de178edSIdo Schimmel } 40121de178edSIdo Schimmel return -2; 401327c6fa73SIdo Schimmel case NETDEV_CHANGE: 40145e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 401593c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 401627c6fa73SIdo Schimmel break; 40175e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 4018d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 401927c6fa73SIdo Schimmel break; 40202b241361SIdo Schimmel } 4021c159d30cSDavid S. Miller 40221da177e4SLinus Torvalds return 0; 40231da177e4SLinus Torvalds } 40241da177e4SLinus Torvalds 402527c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40261da177e4SLinus Torvalds { 40274c981e28SIdo Schimmel struct arg_netdev_event arg = { 40288ed67789SDaniel Lezcano .dev = dev, 40296802f3adSIdo Schimmel { 40304c981e28SIdo Schimmel .event = event, 40316802f3adSIdo Schimmel }, 40328ed67789SDaniel Lezcano }; 40337c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 40348ed67789SDaniel Lezcano 40357c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 40367c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 40377c6bb7d2SDavid Ahern else 40387c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 40394c981e28SIdo Schimmel } 40404c981e28SIdo Schimmel 40414c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40424c981e28SIdo Schimmel { 40434c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40444c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40454c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40461da177e4SLinus Torvalds } 40471da177e4SLinus Torvalds 404895c96174SEric Dumazet struct rt6_mtu_change_arg { 40491da177e4SLinus Torvalds struct net_device *dev; 405095c96174SEric Dumazet unsigned int mtu; 40511da177e4SLinus Torvalds }; 40521da177e4SLinus Torvalds 40538d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40541da177e4SLinus Torvalds { 40551da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40561da177e4SLinus Torvalds struct inet6_dev *idev; 40571da177e4SLinus Torvalds 40581da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 40591da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 40601da177e4SLinus Torvalds We still use this lock to block changes 40611da177e4SLinus Torvalds caused by addrconf/ndisc. 40621da177e4SLinus Torvalds */ 40631da177e4SLinus Torvalds 40641da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 406538308473SDavid S. Miller if (!idev) 40661da177e4SLinus Torvalds return 0; 40671da177e4SLinus Torvalds 40681da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 40691da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 40701da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 40711da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 40721da177e4SLinus Torvalds */ 40735e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 4074d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4075d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4076d4ead6b3SDavid Ahern 4077d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4078d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4079d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4080d4ead6b3SDavid Ahern 4081f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4082e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4083f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 40844b32b5adSMartin KaFai Lau } 40851da177e4SLinus Torvalds return 0; 40861da177e4SLinus Torvalds } 40871da177e4SLinus Torvalds 408895c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 40891da177e4SLinus Torvalds { 4090c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4091c71099acSThomas Graf .dev = dev, 4092c71099acSThomas Graf .mtu = mtu, 4093c71099acSThomas Graf }; 40941da177e4SLinus Torvalds 40950c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 40961da177e4SLinus Torvalds } 40971da177e4SLinus Torvalds 4098ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 40995176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4100aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 410186872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4102ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 410386872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 410486872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 410551ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4106c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 410719e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 410819e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 410932bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4110622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41113b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4112aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4113eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4114eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4115eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 411686872cb5SThomas Graf }; 411786872cb5SThomas Graf 411886872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4119333c4301SDavid Ahern struct fib6_config *cfg, 4120333c4301SDavid Ahern struct netlink_ext_ack *extack) 41211da177e4SLinus Torvalds { 412286872cb5SThomas Graf struct rtmsg *rtm; 412386872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4124c78ba6d6SLubomir Rintel unsigned int pref; 412586872cb5SThomas Graf int err; 41261da177e4SLinus Torvalds 4127fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4128dac9c979SDavid Ahern extack); 412986872cb5SThomas Graf if (err < 0) 413086872cb5SThomas Graf goto errout; 41311da177e4SLinus Torvalds 413286872cb5SThomas Graf err = -EINVAL; 413386872cb5SThomas Graf rtm = nlmsg_data(nlh); 413486872cb5SThomas Graf 413584db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 413684db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 413784db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 413884db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 413984db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 414084db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 414184db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 414284db8407SMaciej Żenczykowski 414384db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 414484db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 414584db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 414684db8407SMaciej Żenczykowski }; 414786872cb5SThomas Graf 4148ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4149ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4150b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4151b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 415286872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 415386872cb5SThomas Graf 4154ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4155ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4156ab79ad14SMaciej Żenczykowski 41571f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41581f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41591f56a01fSMartin KaFai Lau 4160fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4161fc1e64e1SDavid Ahern 416286872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 416367b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 416486872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 41651da177e4SLinus Torvalds } 416686872cb5SThomas Graf 416786872cb5SThomas Graf if (tb[RTA_DST]) { 416886872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 416986872cb5SThomas Graf 417086872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 417186872cb5SThomas Graf goto errout; 417286872cb5SThomas Graf 417386872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 41741da177e4SLinus Torvalds } 417586872cb5SThomas Graf 417686872cb5SThomas Graf if (tb[RTA_SRC]) { 417786872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 417886872cb5SThomas Graf 417986872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 418086872cb5SThomas Graf goto errout; 418186872cb5SThomas Graf 418286872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 41831da177e4SLinus Torvalds } 418486872cb5SThomas Graf 4185c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 418667b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4187c3968a85SDaniel Walter 418886872cb5SThomas Graf if (tb[RTA_OIF]) 418986872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 419086872cb5SThomas Graf 419186872cb5SThomas Graf if (tb[RTA_PRIORITY]) 419286872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 419386872cb5SThomas Graf 419486872cb5SThomas Graf if (tb[RTA_METRICS]) { 419586872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 419686872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 41971da177e4SLinus Torvalds } 419886872cb5SThomas Graf 419986872cb5SThomas Graf if (tb[RTA_TABLE]) 420086872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 420186872cb5SThomas Graf 420251ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 420351ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 420451ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42059ed59592SDavid Ahern 42069ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4207c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42089ed59592SDavid Ahern if (err < 0) 42099ed59592SDavid Ahern goto errout; 421051ebd318SNicolas Dichtel } 421151ebd318SNicolas Dichtel 4212c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4213c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4214c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4215c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4216c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4217c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4218c78ba6d6SLubomir Rintel } 4219c78ba6d6SLubomir Rintel 422019e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 422119e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 422219e42e45SRoopa Prabhu 42239ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 422419e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 422519e42e45SRoopa Prabhu 4226c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42279ed59592SDavid Ahern if (err < 0) 42289ed59592SDavid Ahern goto errout; 42299ed59592SDavid Ahern } 42309ed59592SDavid Ahern 423132bc201eSXin Long if (tb[RTA_EXPIRES]) { 423232bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 423332bc201eSXin Long 423432bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 423532bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 423632bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 423732bc201eSXin Long } 423832bc201eSXin Long } 423932bc201eSXin Long 424086872cb5SThomas Graf err = 0; 424186872cb5SThomas Graf errout: 424286872cb5SThomas Graf return err; 42431da177e4SLinus Torvalds } 42441da177e4SLinus Torvalds 42456b9ea5a6SRoopa Prabhu struct rt6_nh { 42468d1c802bSDavid Ahern struct fib6_info *fib6_info; 42476b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42486b9ea5a6SRoopa Prabhu struct list_head next; 42496b9ea5a6SRoopa Prabhu }; 42506b9ea5a6SRoopa Prabhu 42516b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 42526b9ea5a6SRoopa Prabhu { 42536b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42546b9ea5a6SRoopa Prabhu 42556b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42567d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 42576b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 42586b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 42596b9ea5a6SRoopa Prabhu } 42606b9ea5a6SRoopa Prabhu } 42616b9ea5a6SRoopa Prabhu 4262d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4263d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 42648d1c802bSDavid Ahern struct fib6_info *rt, 42658d1c802bSDavid Ahern struct fib6_config *r_cfg) 42666b9ea5a6SRoopa Prabhu { 42676b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42686b9ea5a6SRoopa Prabhu int err = -EEXIST; 42696b9ea5a6SRoopa Prabhu 42706b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42718d1c802bSDavid Ahern /* check if fib6_info already exists */ 42728d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 42736b9ea5a6SRoopa Prabhu return err; 42746b9ea5a6SRoopa Prabhu } 42756b9ea5a6SRoopa Prabhu 42766b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 42776b9ea5a6SRoopa Prabhu if (!nh) 42786b9ea5a6SRoopa Prabhu return -ENOMEM; 42798d1c802bSDavid Ahern nh->fib6_info = rt; 42806b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 42816b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 42826b9ea5a6SRoopa Prabhu 42836b9ea5a6SRoopa Prabhu return 0; 42846b9ea5a6SRoopa Prabhu } 42856b9ea5a6SRoopa Prabhu 42868d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 42878d1c802bSDavid Ahern struct fib6_info *rt_last, 42883b1137feSDavid Ahern struct nl_info *info, 42893b1137feSDavid Ahern __u16 nlflags) 42903b1137feSDavid Ahern { 42913b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 42923b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 42933b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 42943b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 42953b1137feSDavid Ahern * the list, find the first sibling of the last route appended 42963b1137feSDavid Ahern */ 429793c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 429893c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 42998d1c802bSDavid Ahern struct fib6_info, 430093c2fb25SDavid Ahern fib6_siblings); 43013b1137feSDavid Ahern } 43023b1137feSDavid Ahern 43033b1137feSDavid Ahern if (rt) 43043b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43053b1137feSDavid Ahern } 43063b1137feSDavid Ahern 4307333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4308333c4301SDavid Ahern struct netlink_ext_ack *extack) 430951ebd318SNicolas Dichtel { 43108d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43113b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 431251ebd318SNicolas Dichtel struct fib6_config r_cfg; 431351ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43148d1c802bSDavid Ahern struct fib6_info *rt; 43156b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43166b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43173b1137feSDavid Ahern __u16 nlflags; 431851ebd318SNicolas Dichtel int remaining; 431951ebd318SNicolas Dichtel int attrlen; 43206b9ea5a6SRoopa Prabhu int err = 1; 43216b9ea5a6SRoopa Prabhu int nhn = 0; 43226b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43236b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43246b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 432551ebd318SNicolas Dichtel 43263b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43273b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43283b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43293b1137feSDavid Ahern 433035f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 433151ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 433251ebd318SNicolas Dichtel 43336b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43348d1c802bSDavid Ahern * fib6_info structs per nexthop 43356b9ea5a6SRoopa Prabhu */ 433651ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 433751ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 433851ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 433951ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 434051ebd318SNicolas Dichtel 434151ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 434251ebd318SNicolas Dichtel if (attrlen > 0) { 434351ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 434451ebd318SNicolas Dichtel 434551ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 434651ebd318SNicolas Dichtel if (nla) { 434767b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 434851ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 434951ebd318SNicolas Dichtel } 435019e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 435119e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 435219e42e45SRoopa Prabhu if (nla) 435319e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 435451ebd318SNicolas Dichtel } 43556b9ea5a6SRoopa Prabhu 435668e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4357acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43588c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43598c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43608c5b83f0SRoopa Prabhu rt = NULL; 43616b9ea5a6SRoopa Prabhu goto cleanup; 43628c5b83f0SRoopa Prabhu } 4363b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4364b5d2d75eSDavid Ahern err = -EINVAL; 4365b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4366b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4367b5d2d75eSDavid Ahern fib6_info_release(rt); 4368b5d2d75eSDavid Ahern goto cleanup; 4369b5d2d75eSDavid Ahern } 43706b9ea5a6SRoopa Prabhu 43715e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4372398958aeSIdo Schimmel 4373d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4374d4ead6b3SDavid Ahern rt, &r_cfg); 437551ebd318SNicolas Dichtel if (err) { 437693531c67SDavid Ahern fib6_info_release(rt); 43776b9ea5a6SRoopa Prabhu goto cleanup; 437851ebd318SNicolas Dichtel } 43796b9ea5a6SRoopa Prabhu 43806b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 438151ebd318SNicolas Dichtel } 43826b9ea5a6SRoopa Prabhu 43833b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 43843b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 43853b1137feSDavid Ahern * the full route when done 43863b1137feSDavid Ahern */ 43873b1137feSDavid Ahern info->skip_notify = 1; 43883b1137feSDavid Ahern 43896b9ea5a6SRoopa Prabhu err_nh = NULL; 43906b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 43918d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 43928d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 43933b1137feSDavid Ahern 4394f7225172SDavid Ahern if (!err) { 4395f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4396f7225172SDavid Ahern rt_last = nh->fib6_info; 4397f7225172SDavid Ahern 43986b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4399f7225172SDavid Ahern if (!rt_notif) 44008d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4401f7225172SDavid Ahern } 44026b9ea5a6SRoopa Prabhu 44038d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44048d1c802bSDavid Ahern nh->fib6_info = NULL; 44056b9ea5a6SRoopa Prabhu if (err) { 44066b9ea5a6SRoopa Prabhu if (replace && nhn) 44076b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 44086b9ea5a6SRoopa Prabhu err_nh = nh; 44096b9ea5a6SRoopa Prabhu goto add_errout; 44106b9ea5a6SRoopa Prabhu } 44116b9ea5a6SRoopa Prabhu 44121a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 441327596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 441427596472SMichal Kubeček * we have already failed to add the first nexthop: 441527596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 441627596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 441727596472SMichal Kubeček * be added to it. 44181a72418bSNicolas Dichtel */ 441927596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 442027596472SMichal Kubeček NLM_F_REPLACE); 44216b9ea5a6SRoopa Prabhu nhn++; 44226b9ea5a6SRoopa Prabhu } 44236b9ea5a6SRoopa Prabhu 44243b1137feSDavid Ahern /* success ... tell user about new route */ 44253b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44266b9ea5a6SRoopa Prabhu goto cleanup; 44276b9ea5a6SRoopa Prabhu 44286b9ea5a6SRoopa Prabhu add_errout: 44293b1137feSDavid Ahern /* send notification for routes that were added so that 44303b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44313b1137feSDavid Ahern * coherent 44323b1137feSDavid Ahern */ 44333b1137feSDavid Ahern if (rt_notif) 44343b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44353b1137feSDavid Ahern 44366b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44376b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44386b9ea5a6SRoopa Prabhu if (err_nh == nh) 44396b9ea5a6SRoopa Prabhu break; 4440333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44416b9ea5a6SRoopa Prabhu } 44426b9ea5a6SRoopa Prabhu 44436b9ea5a6SRoopa Prabhu cleanup: 44446b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44458d1c802bSDavid Ahern if (nh->fib6_info) 44468d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44476b9ea5a6SRoopa Prabhu list_del(&nh->next); 44486b9ea5a6SRoopa Prabhu kfree(nh); 44496b9ea5a6SRoopa Prabhu } 44506b9ea5a6SRoopa Prabhu 44516b9ea5a6SRoopa Prabhu return err; 44526b9ea5a6SRoopa Prabhu } 44536b9ea5a6SRoopa Prabhu 4454333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4455333c4301SDavid Ahern struct netlink_ext_ack *extack) 44566b9ea5a6SRoopa Prabhu { 44576b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44586b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44596b9ea5a6SRoopa Prabhu int remaining; 44606b9ea5a6SRoopa Prabhu int attrlen; 44616b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 44626b9ea5a6SRoopa Prabhu 44636b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 44646b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 44656b9ea5a6SRoopa Prabhu 44666b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 44676b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 44686b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 44696b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 44706b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 44716b9ea5a6SRoopa Prabhu 44726b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 44736b9ea5a6SRoopa Prabhu if (attrlen > 0) { 44746b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 44756b9ea5a6SRoopa Prabhu 44766b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 44776b9ea5a6SRoopa Prabhu if (nla) { 44786b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 44796b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 44806b9ea5a6SRoopa Prabhu } 44816b9ea5a6SRoopa Prabhu } 4482333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 44836b9ea5a6SRoopa Prabhu if (err) 44846b9ea5a6SRoopa Prabhu last_err = err; 44856b9ea5a6SRoopa Prabhu 448651ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 448751ebd318SNicolas Dichtel } 448851ebd318SNicolas Dichtel 448951ebd318SNicolas Dichtel return last_err; 449051ebd318SNicolas Dichtel } 449151ebd318SNicolas Dichtel 4492c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4493c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 44941da177e4SLinus Torvalds { 449586872cb5SThomas Graf struct fib6_config cfg; 449686872cb5SThomas Graf int err; 44971da177e4SLinus Torvalds 4498333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 449986872cb5SThomas Graf if (err < 0) 450086872cb5SThomas Graf return err; 450186872cb5SThomas Graf 450251ebd318SNicolas Dichtel if (cfg.fc_mp) 4503333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45040ae81335SDavid Ahern else { 45050ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4506333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45071da177e4SLinus Torvalds } 45080ae81335SDavid Ahern } 45091da177e4SLinus Torvalds 4510c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4511c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45121da177e4SLinus Torvalds { 451386872cb5SThomas Graf struct fib6_config cfg; 451486872cb5SThomas Graf int err; 45151da177e4SLinus Torvalds 4516333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 451786872cb5SThomas Graf if (err < 0) 451886872cb5SThomas Graf return err; 451986872cb5SThomas Graf 452051ebd318SNicolas Dichtel if (cfg.fc_mp) 4521333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 452251ebd318SNicolas Dichtel else 4523acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45241da177e4SLinus Torvalds } 45251da177e4SLinus Torvalds 45268d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4527339bf98fSThomas Graf { 4528beb1afacSDavid Ahern int nexthop_len = 0; 4529beb1afacSDavid Ahern 453093c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4531beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4532beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4533beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 45345e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4535beb1afacSDavid Ahern 453693c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4537beb1afacSDavid Ahern } 4538beb1afacSDavid Ahern 4539339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4540339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4541339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4542339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4543339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4544339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4545339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4546339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4547339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45486a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4549ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4550c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 455119e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 45525e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4553beb1afacSDavid Ahern + nexthop_len; 4554beb1afacSDavid Ahern } 4555beb1afacSDavid Ahern 45568d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 45575be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4558beb1afacSDavid Ahern { 45595e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4560f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4561f9d882eaSIdo Schimmel 45625e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4563beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4564dcd1f572SDavid Ahern 4565dcd1f572SDavid Ahern rcu_read_lock(); 4566dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4567beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4568dcd1f572SDavid Ahern rcu_read_unlock(); 4569beb1afacSDavid Ahern } 4570beb1afacSDavid Ahern 457193c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 45725e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4573beb1afacSDavid Ahern goto nla_put_failure; 4574beb1afacSDavid Ahern } 4575beb1afacSDavid Ahern 45765e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 45775e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 457861e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 457961e4d01eSIdo Schimmel 45805be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 45815e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 45825e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4583beb1afacSDavid Ahern goto nla_put_failure; 4584beb1afacSDavid Ahern 45855e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 45865e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4587beb1afacSDavid Ahern goto nla_put_failure; 4588beb1afacSDavid Ahern 4589beb1afacSDavid Ahern return 0; 4590beb1afacSDavid Ahern 4591beb1afacSDavid Ahern nla_put_failure: 4592beb1afacSDavid Ahern return -EMSGSIZE; 4593beb1afacSDavid Ahern } 4594beb1afacSDavid Ahern 45955be083ceSDavid Ahern /* add multipath next hop */ 45968d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4597beb1afacSDavid Ahern { 45985e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4599beb1afacSDavid Ahern struct rtnexthop *rtnh; 4600beb1afacSDavid Ahern unsigned int flags = 0; 4601beb1afacSDavid Ahern 4602beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4603beb1afacSDavid Ahern if (!rtnh) 4604beb1afacSDavid Ahern goto nla_put_failure; 4605beb1afacSDavid Ahern 46065e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 46075e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4608beb1afacSDavid Ahern 46095be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4610beb1afacSDavid Ahern goto nla_put_failure; 4611beb1afacSDavid Ahern 4612beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4613beb1afacSDavid Ahern 4614beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4615beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4616beb1afacSDavid Ahern 4617beb1afacSDavid Ahern return 0; 4618beb1afacSDavid Ahern 4619beb1afacSDavid Ahern nla_put_failure: 4620beb1afacSDavid Ahern return -EMSGSIZE; 4621339bf98fSThomas Graf } 4622339bf98fSThomas Graf 4623d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46248d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4625d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 462615e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4627f8cfe2ceSDavid Ahern unsigned int flags) 46281da177e4SLinus Torvalds { 462922d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 463022d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 463122d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46321da177e4SLinus Torvalds struct nlmsghdr *nlh; 463322d0bd82SXin Long struct rtmsg *rtm; 4634d4ead6b3SDavid Ahern long expires = 0; 46351da177e4SLinus Torvalds 463615e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 463738308473SDavid S. Miller if (!nlh) 463826932566SPatrick McHardy return -EMSGSIZE; 46392d7202bfSThomas Graf 464022d0bd82SXin Long if (rt6) { 464122d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 464222d0bd82SXin Long rt6_src = &rt6->rt6i_src; 464322d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 464422d0bd82SXin Long } else { 464522d0bd82SXin Long rt6_dst = &rt->fib6_dst; 464622d0bd82SXin Long rt6_src = &rt->fib6_src; 464722d0bd82SXin Long rt6_flags = rt->fib6_flags; 464822d0bd82SXin Long } 464922d0bd82SXin Long 46502d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46511da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 465222d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 465322d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46541da177e4SLinus Torvalds rtm->rtm_tos = 0; 465593c2fb25SDavid Ahern if (rt->fib6_table) 465693c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4657c71099acSThomas Graf else 46589e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 46599e762a4aSPatrick McHardy rtm->rtm_table = table; 4660c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4661c78679e8SDavid S. Miller goto nla_put_failure; 4662e8478e80SDavid Ahern 4663e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46641da177e4SLinus Torvalds rtm->rtm_flags = 0; 46651da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 466693c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46671da177e4SLinus Torvalds 466822d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46691da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46701da177e4SLinus Torvalds 4671d4ead6b3SDavid Ahern if (dest) { 4672d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4673c78679e8SDavid S. Miller goto nla_put_failure; 46741da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46751da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 467622d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4677c78679e8SDavid S. Miller goto nla_put_failure; 46781da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46791da177e4SLinus Torvalds if (src) { 4680930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4681c78679e8SDavid S. Miller goto nla_put_failure; 46821da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4683c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 468422d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4685c78679e8SDavid S. Miller goto nla_put_failure; 46861da177e4SLinus Torvalds #endif 46877bc570c8SYOSHIFUJI Hideaki if (iif) { 46887bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 468922d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4690fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 46912cf75070SNikolay Aleksandrov 46927bc570c8SYOSHIFUJI Hideaki if (err == 0) 46937bc570c8SYOSHIFUJI Hideaki return 0; 4694fd61c6baSDavid Ahern if (err < 0) 46957bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 46967bc570c8SYOSHIFUJI Hideaki } else 46977bc570c8SYOSHIFUJI Hideaki #endif 4698c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4699c78679e8SDavid S. Miller goto nla_put_failure; 4700d4ead6b3SDavid Ahern } else if (dest) { 47011da177e4SLinus Torvalds struct in6_addr saddr_buf; 4702d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4703930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4704c78679e8SDavid S. Miller goto nla_put_failure; 4705c3968a85SDaniel Walter } 4706c3968a85SDaniel Walter 470793c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4708c3968a85SDaniel Walter struct in6_addr saddr_buf; 470993c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4710930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4711c78679e8SDavid S. Miller goto nla_put_failure; 47121da177e4SLinus Torvalds } 47132d7202bfSThomas Graf 4714d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4715d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47162d7202bfSThomas Graf goto nla_put_failure; 47172d7202bfSThomas Graf 471893c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4719beb1afacSDavid Ahern goto nla_put_failure; 4720beb1afacSDavid Ahern 4721beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4722beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4723beb1afacSDavid Ahern */ 472422d0bd82SXin Long if (rt6) { 472522d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 472622d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 472722d0bd82SXin Long goto nla_put_failure; 472822d0bd82SXin Long 472922d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 473022d0bd82SXin Long goto nla_put_failure; 473122d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47328d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4733beb1afacSDavid Ahern struct nlattr *mp; 4734beb1afacSDavid Ahern 4735beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4736beb1afacSDavid Ahern if (!mp) 4737beb1afacSDavid Ahern goto nla_put_failure; 4738beb1afacSDavid Ahern 4739beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4740beb1afacSDavid Ahern goto nla_put_failure; 4741beb1afacSDavid Ahern 4742beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 474393c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4744beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 474594f826b8SEric Dumazet goto nla_put_failure; 474694f826b8SEric Dumazet } 47472d7202bfSThomas Graf 4748beb1afacSDavid Ahern nla_nest_end(skb, mp); 4749beb1afacSDavid Ahern } else { 47505be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4751c78679e8SDavid S. Miller goto nla_put_failure; 4752beb1afacSDavid Ahern } 47538253947eSLi Wei 475422d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 475514895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 475614895687SDavid Ahern expires -= jiffies; 475714895687SDavid Ahern } 475869cdf8f9SYOSHIFUJI Hideaki 4759d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4760e3703b3dSThomas Graf goto nla_put_failure; 47611da177e4SLinus Torvalds 476222d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4763c78ba6d6SLubomir Rintel goto nla_put_failure; 4764c78ba6d6SLubomir Rintel 476519e42e45SRoopa Prabhu 4766053c095aSJohannes Berg nlmsg_end(skb, nlh); 4767053c095aSJohannes Berg return 0; 47682d7202bfSThomas Graf 47692d7202bfSThomas Graf nla_put_failure: 477026932566SPatrick McHardy nlmsg_cancel(skb, nlh); 477126932566SPatrick McHardy return -EMSGSIZE; 47721da177e4SLinus Torvalds } 47731da177e4SLinus Torvalds 477413e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 477513e38901SDavid Ahern const struct net_device *dev) 477613e38901SDavid Ahern { 477713e38901SDavid Ahern if (f6i->fib6_nh.nh_dev == dev) 477813e38901SDavid Ahern return true; 477913e38901SDavid Ahern 478013e38901SDavid Ahern if (f6i->fib6_nsiblings) { 478113e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 478213e38901SDavid Ahern 478313e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 478413e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 478513e38901SDavid Ahern if (sibling->fib6_nh.nh_dev == dev) 478613e38901SDavid Ahern return true; 478713e38901SDavid Ahern } 478813e38901SDavid Ahern } 478913e38901SDavid Ahern 479013e38901SDavid Ahern return false; 479113e38901SDavid Ahern } 479213e38901SDavid Ahern 47938d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47941da177e4SLinus Torvalds { 47951da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 479613e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 479713e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 47981f17e2f2SDavid Ahern struct net *net = arg->net; 47991f17e2f2SDavid Ahern 4800421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 48011f17e2f2SDavid Ahern return 0; 48021da177e4SLinus Torvalds 480313e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 480493c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4805f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4806f8cfe2ceSDavid Ahern return 1; 4807f8cfe2ceSDavid Ahern } 480813e38901SDavid Ahern if (filter->filter_set) { 480913e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 481013e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 481113e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 481213e38901SDavid Ahern return 1; 481313e38901SDavid Ahern } 481413e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4815f8cfe2ceSDavid Ahern } 48161da177e4SLinus Torvalds 4817d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4818d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 481913e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 48201da177e4SLinus Torvalds } 48211da177e4SLinus Torvalds 4822c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4823c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48241da177e4SLinus Torvalds { 48253b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4826ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 482718c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4828a68886a6SDavid Ahern struct fib6_info *from; 482918c3a61cSRoopa Prabhu struct dst_entry *dst; 48301da177e4SLinus Torvalds struct rt6_info *rt; 4831ab364a6fSThomas Graf struct sk_buff *skb; 4832ab364a6fSThomas Graf struct rtmsg *rtm; 4833744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 483418c3a61cSRoopa Prabhu bool fibmatch; 4835ab364a6fSThomas Graf 4836fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4837c21ef3e3SDavid Ahern extack); 4838ab364a6fSThomas Graf if (err < 0) 4839ab364a6fSThomas Graf goto errout; 4840ab364a6fSThomas Graf 4841ab364a6fSThomas Graf err = -EINVAL; 484238b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 484338b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 484418c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4845ab364a6fSThomas Graf 4846ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4847ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4848ab364a6fSThomas Graf goto errout; 4849ab364a6fSThomas Graf 48504e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4851ab364a6fSThomas Graf } 4852ab364a6fSThomas Graf 4853ab364a6fSThomas Graf if (tb[RTA_DST]) { 4854ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4855ab364a6fSThomas Graf goto errout; 4856ab364a6fSThomas Graf 48574e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4858ab364a6fSThomas Graf } 4859ab364a6fSThomas Graf 4860ab364a6fSThomas Graf if (tb[RTA_IIF]) 4861ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4862ab364a6fSThomas Graf 4863ab364a6fSThomas Graf if (tb[RTA_OIF]) 486472331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4865ab364a6fSThomas Graf 48662e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48672e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48682e47b291SLorenzo Colitti 4869622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4870622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4871622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4872622ec2c9SLorenzo Colitti else 4873622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4874622ec2c9SLorenzo Colitti 4875eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4876eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4877eacb9384SRoopa Prabhu 4878eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4879eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4880eacb9384SRoopa Prabhu 4881eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4882eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 4883eacb9384SRoopa Prabhu &fl6.flowi6_proto, extack); 4884eacb9384SRoopa Prabhu if (err) 4885eacb9384SRoopa Prabhu goto errout; 4886eacb9384SRoopa Prabhu } 4887eacb9384SRoopa Prabhu 4888ab364a6fSThomas Graf if (iif) { 4889ab364a6fSThomas Graf struct net_device *dev; 489072331bc0SShmulik Ladkani int flags = 0; 489172331bc0SShmulik Ladkani 4892121622dbSFlorian Westphal rcu_read_lock(); 4893121622dbSFlorian Westphal 4894121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4895ab364a6fSThomas Graf if (!dev) { 4896121622dbSFlorian Westphal rcu_read_unlock(); 4897ab364a6fSThomas Graf err = -ENODEV; 4898ab364a6fSThomas Graf goto errout; 4899ab364a6fSThomas Graf } 490072331bc0SShmulik Ladkani 490172331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 490272331bc0SShmulik Ladkani 490372331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 490472331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 490572331bc0SShmulik Ladkani 4906b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4907121622dbSFlorian Westphal 4908121622dbSFlorian Westphal rcu_read_unlock(); 490972331bc0SShmulik Ladkani } else { 491072331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 491172331bc0SShmulik Ladkani 491218c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 491318c3a61cSRoopa Prabhu } 491418c3a61cSRoopa Prabhu 491518c3a61cSRoopa Prabhu 491618c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 491718c3a61cSRoopa Prabhu if (rt->dst.error) { 491818c3a61cSRoopa Prabhu err = rt->dst.error; 491918c3a61cSRoopa Prabhu ip6_rt_put(rt); 492018c3a61cSRoopa Prabhu goto errout; 4921ab364a6fSThomas Graf } 49221da177e4SLinus Torvalds 49239d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49249d6acb3bSWANG Cong err = rt->dst.error; 49259d6acb3bSWANG Cong ip6_rt_put(rt); 49269d6acb3bSWANG Cong goto errout; 49279d6acb3bSWANG Cong } 49289d6acb3bSWANG Cong 49291da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 493038308473SDavid S. Miller if (!skb) { 493194e187c0SAmerigo Wang ip6_rt_put(rt); 4932ab364a6fSThomas Graf err = -ENOBUFS; 4933ab364a6fSThomas Graf goto errout; 4934ab364a6fSThomas Graf } 49351da177e4SLinus Torvalds 4936d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4937a68886a6SDavid Ahern 4938a68886a6SDavid Ahern rcu_read_lock(); 4939a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4940a68886a6SDavid Ahern 494118c3a61cSRoopa Prabhu if (fibmatch) 4942a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 494318c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 494418c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 494518c3a61cSRoopa Prabhu else 4946a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4947a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4948d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4949d4ead6b3SDavid Ahern 0); 4950a68886a6SDavid Ahern rcu_read_unlock(); 4951a68886a6SDavid Ahern 49521da177e4SLinus Torvalds if (err < 0) { 4953ab364a6fSThomas Graf kfree_skb(skb); 4954ab364a6fSThomas Graf goto errout; 49551da177e4SLinus Torvalds } 49561da177e4SLinus Torvalds 495715e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4958ab364a6fSThomas Graf errout: 49591da177e4SLinus Torvalds return err; 49601da177e4SLinus Torvalds } 49611da177e4SLinus Torvalds 49628d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 496337a1d361SRoopa Prabhu unsigned int nlm_flags) 49641da177e4SLinus Torvalds { 49651da177e4SLinus Torvalds struct sk_buff *skb; 49665578689aSDaniel Lezcano struct net *net = info->nl_net; 4967528c4cebSDenis V. Lunev u32 seq; 4968528c4cebSDenis V. Lunev int err; 49690d51aa80SJamal Hadi Salim 4970528c4cebSDenis V. Lunev err = -ENOBUFS; 497138308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 497286872cb5SThomas Graf 497319e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 497438308473SDavid S. Miller if (!skb) 497521713ebcSThomas Graf goto errout; 49761da177e4SLinus Torvalds 4977d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 4978f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 497926932566SPatrick McHardy if (err < 0) { 498026932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 498126932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 498226932566SPatrick McHardy kfree_skb(skb); 498326932566SPatrick McHardy goto errout; 498426932566SPatrick McHardy } 498515e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 49865578689aSDaniel Lezcano info->nlh, gfp_any()); 49871ce85fe4SPablo Neira Ayuso return; 498821713ebcSThomas Graf errout: 498921713ebcSThomas Graf if (err < 0) 49905578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 49911da177e4SLinus Torvalds } 49921da177e4SLinus Torvalds 49938ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4994351638e7SJiri Pirko unsigned long event, void *ptr) 49958ed67789SDaniel Lezcano { 4996351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4997c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 49988ed67789SDaniel Lezcano 4999242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5000242d3a49SWANG Cong return NOTIFY_OK; 5001242d3a49SWANG Cong 5002242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5003421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 5004d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50058ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50068ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5007d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50088ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5009d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50108ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50118ed67789SDaniel Lezcano #endif 501276da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 501376da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 501476da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 501576da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 501676da0704SWANG Cong */ 501712d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5018242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 501912d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 502012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5021242d3a49SWANG Cong #endif 50228ed67789SDaniel Lezcano } 50238ed67789SDaniel Lezcano 50248ed67789SDaniel Lezcano return NOTIFY_OK; 50258ed67789SDaniel Lezcano } 50268ed67789SDaniel Lezcano 50271da177e4SLinus Torvalds /* 50281da177e4SLinus Torvalds * /proc 50291da177e4SLinus Torvalds */ 50301da177e4SLinus Torvalds 50311da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50321da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50331da177e4SLinus Torvalds { 503469ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50351da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 503669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 503769ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 503881eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 503969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 504069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5041fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 504269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50431da177e4SLinus Torvalds 50441da177e4SLinus Torvalds return 0; 50451da177e4SLinus Torvalds } 50461da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50471da177e4SLinus Torvalds 50481da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50491da177e4SLinus Torvalds 50501da177e4SLinus Torvalds static 5051fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50521da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50531da177e4SLinus Torvalds { 5054c486da34SLucian Adrian Grijincu struct net *net; 5055c486da34SLucian Adrian Grijincu int delay; 5056c486da34SLucian Adrian Grijincu if (!write) 5057c486da34SLucian Adrian Grijincu return -EINVAL; 5058c486da34SLucian Adrian Grijincu 5059c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5060c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 50618d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 50622ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50631da177e4SLinus Torvalds return 0; 50641da177e4SLinus Torvalds } 50651da177e4SLinus Torvalds 50667c6bb7d2SDavid Ahern static int zero; 50677c6bb7d2SDavid Ahern static int one = 1; 50687c6bb7d2SDavid Ahern 5069ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 50701da177e4SLinus Torvalds { 50711da177e4SLinus Torvalds .procname = "flush", 50724990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 50731da177e4SLinus Torvalds .maxlen = sizeof(int), 507489c8b3a1SDave Jones .mode = 0200, 50756d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 50761da177e4SLinus Torvalds }, 50771da177e4SLinus Torvalds { 50781da177e4SLinus Torvalds .procname = "gc_thresh", 50799a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 50801da177e4SLinus Torvalds .maxlen = sizeof(int), 50811da177e4SLinus Torvalds .mode = 0644, 50826d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50831da177e4SLinus Torvalds }, 50841da177e4SLinus Torvalds { 50851da177e4SLinus Torvalds .procname = "max_size", 50864990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 50871da177e4SLinus Torvalds .maxlen = sizeof(int), 50881da177e4SLinus Torvalds .mode = 0644, 50896d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50901da177e4SLinus Torvalds }, 50911da177e4SLinus Torvalds { 50921da177e4SLinus Torvalds .procname = "gc_min_interval", 50934990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 50941da177e4SLinus Torvalds .maxlen = sizeof(int), 50951da177e4SLinus Torvalds .mode = 0644, 50966d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50971da177e4SLinus Torvalds }, 50981da177e4SLinus Torvalds { 50991da177e4SLinus Torvalds .procname = "gc_timeout", 51004990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51011da177e4SLinus Torvalds .maxlen = sizeof(int), 51021da177e4SLinus Torvalds .mode = 0644, 51036d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51041da177e4SLinus Torvalds }, 51051da177e4SLinus Torvalds { 51061da177e4SLinus Torvalds .procname = "gc_interval", 51074990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51081da177e4SLinus Torvalds .maxlen = sizeof(int), 51091da177e4SLinus Torvalds .mode = 0644, 51106d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51111da177e4SLinus Torvalds }, 51121da177e4SLinus Torvalds { 51131da177e4SLinus Torvalds .procname = "gc_elasticity", 51144990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51151da177e4SLinus Torvalds .maxlen = sizeof(int), 51161da177e4SLinus Torvalds .mode = 0644, 5117f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51181da177e4SLinus Torvalds }, 51191da177e4SLinus Torvalds { 51201da177e4SLinus Torvalds .procname = "mtu_expires", 51214990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51221da177e4SLinus Torvalds .maxlen = sizeof(int), 51231da177e4SLinus Torvalds .mode = 0644, 51246d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51251da177e4SLinus Torvalds }, 51261da177e4SLinus Torvalds { 51271da177e4SLinus Torvalds .procname = "min_adv_mss", 51284990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51291da177e4SLinus Torvalds .maxlen = sizeof(int), 51301da177e4SLinus Torvalds .mode = 0644, 5131f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51321da177e4SLinus Torvalds }, 51331da177e4SLinus Torvalds { 51341da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51354990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51361da177e4SLinus Torvalds .maxlen = sizeof(int), 51371da177e4SLinus Torvalds .mode = 0644, 51386d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51391da177e4SLinus Torvalds }, 51407c6bb7d2SDavid Ahern { 51417c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 51427c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 51437c6bb7d2SDavid Ahern .maxlen = sizeof(int), 51447c6bb7d2SDavid Ahern .mode = 0644, 51457c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 51467c6bb7d2SDavid Ahern .extra1 = &zero, 51477c6bb7d2SDavid Ahern .extra2 = &one, 51487c6bb7d2SDavid Ahern }, 5149f8572d8fSEric W. Biederman { } 51501da177e4SLinus Torvalds }; 51511da177e4SLinus Torvalds 51522c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5153760f2d01SDaniel Lezcano { 5154760f2d01SDaniel Lezcano struct ctl_table *table; 5155760f2d01SDaniel Lezcano 5156760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5157760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5158760f2d01SDaniel Lezcano GFP_KERNEL); 51595ee09105SYOSHIFUJI Hideaki 51605ee09105SYOSHIFUJI Hideaki if (table) { 51615ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5162c486da34SLucian Adrian Grijincu table[0].extra1 = net; 516386393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51645ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51655ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51665ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 51675ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 51685ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 51695ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 51705ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 51719c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51727c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5173464dc801SEric W. Biederman 5174464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5175464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5176464dc801SEric W. Biederman table[0].procname = NULL; 51775ee09105SYOSHIFUJI Hideaki } 51785ee09105SYOSHIFUJI Hideaki 5179760f2d01SDaniel Lezcano return table; 5180760f2d01SDaniel Lezcano } 51811da177e4SLinus Torvalds #endif 51821da177e4SLinus Torvalds 51832c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5184cdb18761SDaniel Lezcano { 5185633d424bSPavel Emelyanov int ret = -ENOMEM; 51868ed67789SDaniel Lezcano 518786393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 518886393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5189f2fc6a54SBenjamin Thery 5190fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5191fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5192fc66f95cSEric Dumazet 5193421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5194421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5195421842edSDavid Ahern GFP_KERNEL); 5196421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5197421842edSDavid Ahern goto out_ip6_dst_entries; 5198421842edSDavid Ahern 51998ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52008ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52018ed67789SDaniel Lezcano GFP_KERNEL); 52028ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5203421842edSDavid Ahern goto out_fib6_null_entry; 5204d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 520562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 520662fa8a84SDavid S. Miller ip6_template_metrics, true); 52078ed67789SDaniel Lezcano 52088ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5209feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52108ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52118ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52128ed67789SDaniel Lezcano GFP_KERNEL); 521368fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 521468fffc67SPeter Zijlstra goto out_ip6_null_entry; 5215d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 521662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 521762fa8a84SDavid S. Miller ip6_template_metrics, true); 52188ed67789SDaniel Lezcano 52198ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52208ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52218ed67789SDaniel Lezcano GFP_KERNEL); 522268fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 522368fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5224d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 522562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 522662fa8a84SDavid S. Miller ip6_template_metrics, true); 52278ed67789SDaniel Lezcano #endif 52288ed67789SDaniel Lezcano 5229b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5230b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5231b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5232b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5233b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5234b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5235b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5236b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 52377c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5238b339a47cSPeter Zijlstra 52396891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52406891a346SBenjamin Thery 52418ed67789SDaniel Lezcano ret = 0; 52428ed67789SDaniel Lezcano out: 52438ed67789SDaniel Lezcano return ret; 5244f2fc6a54SBenjamin Thery 524568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 524668fffc67SPeter Zijlstra out_ip6_prohibit_entry: 524768fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 524868fffc67SPeter Zijlstra out_ip6_null_entry: 524968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 525068fffc67SPeter Zijlstra #endif 5251421842edSDavid Ahern out_fib6_null_entry: 5252421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5253fc66f95cSEric Dumazet out_ip6_dst_entries: 5254fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5255f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5256f2fc6a54SBenjamin Thery goto out; 5257cdb18761SDaniel Lezcano } 5258cdb18761SDaniel Lezcano 52592c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5260cdb18761SDaniel Lezcano { 5261421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52628ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52638ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52648ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52658ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 52668ed67789SDaniel Lezcano #endif 526741bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5268cdb18761SDaniel Lezcano } 5269cdb18761SDaniel Lezcano 5270d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5271d189634eSThomas Graf { 5272d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5273c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5274c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 52753617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 52763617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5277d189634eSThomas Graf #endif 5278d189634eSThomas Graf return 0; 5279d189634eSThomas Graf } 5280d189634eSThomas Graf 5281d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5282d189634eSThomas Graf { 5283d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5284ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5285ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5286d189634eSThomas Graf #endif 5287d189634eSThomas Graf } 5288d189634eSThomas Graf 5289cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5290cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5291cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5292cdb18761SDaniel Lezcano }; 5293cdb18761SDaniel Lezcano 5294c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5295c3426b47SDavid S. Miller { 5296c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5297c3426b47SDavid S. Miller 5298c3426b47SDavid S. Miller if (!bp) 5299c3426b47SDavid S. Miller return -ENOMEM; 5300c3426b47SDavid S. Miller inet_peer_base_init(bp); 5301c3426b47SDavid S. Miller net->ipv6.peers = bp; 5302c3426b47SDavid S. Miller return 0; 5303c3426b47SDavid S. Miller } 5304c3426b47SDavid S. Miller 5305c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5306c3426b47SDavid S. Miller { 5307c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5308c3426b47SDavid S. Miller 5309c3426b47SDavid S. Miller net->ipv6.peers = NULL; 531056a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5311c3426b47SDavid S. Miller kfree(bp); 5312c3426b47SDavid S. Miller } 5313c3426b47SDavid S. Miller 53142b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5315c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5316c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5317c3426b47SDavid S. Miller }; 5318c3426b47SDavid S. Miller 5319d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5320d189634eSThomas Graf .init = ip6_route_net_init_late, 5321d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5322d189634eSThomas Graf }; 5323d189634eSThomas Graf 53248ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53258ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5326242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53278ed67789SDaniel Lezcano }; 53288ed67789SDaniel Lezcano 53292f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53302f460933SWANG Cong { 53312f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53322f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53332f460933SWANG Cong * manually for init_net */ 5334421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 53352f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53362f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53372f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53382f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53392f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53402f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53412f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53422f460933SWANG Cong #endif 53432f460933SWANG Cong } 53442f460933SWANG Cong 5345433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53461da177e4SLinus Torvalds { 5347433d49c3SDaniel Lezcano int ret; 53488d0b94afSMartin KaFai Lau int cpu; 5349433d49c3SDaniel Lezcano 53509a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53519a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53529a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53539a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53549a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5355c19a28e1SFernando Carrijo goto out; 535614e50e57SDavid S. Miller 5357fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53588ed67789SDaniel Lezcano if (ret) 5359bdb3289fSDaniel Lezcano goto out_kmem_cache; 5360bdb3289fSDaniel Lezcano 5361c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5362c3426b47SDavid S. Miller if (ret) 5363e8803b6cSDavid S. Miller goto out_dst_entries; 53642a0c451aSThomas Graf 53657e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 53667e52b33bSDavid S. Miller if (ret) 53677e52b33bSDavid S. Miller goto out_register_inetpeer; 5368c3426b47SDavid S. Miller 53695dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 53705dc121e9SArnaud Ebalard 5371e8803b6cSDavid S. Miller ret = fib6_init(); 5372433d49c3SDaniel Lezcano if (ret) 53738ed67789SDaniel Lezcano goto out_register_subsys; 5374433d49c3SDaniel Lezcano 5375433d49c3SDaniel Lezcano ret = xfrm6_init(); 5376433d49c3SDaniel Lezcano if (ret) 5377e8803b6cSDavid S. Miller goto out_fib6_init; 5378c35b7e72SDaniel Lezcano 5379433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5380433d49c3SDaniel Lezcano if (ret) 5381433d49c3SDaniel Lezcano goto xfrm6_init; 53827e5449c2SDaniel Lezcano 5383d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5384d189634eSThomas Graf if (ret) 5385d189634eSThomas Graf goto fib6_rules_init; 5386d189634eSThomas Graf 538716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 538816feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 538916feebcfSFlorian Westphal if (ret < 0) 539016feebcfSFlorian Westphal goto out_register_late_subsys; 539116feebcfSFlorian Westphal 539216feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 539316feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 539416feebcfSFlorian Westphal if (ret < 0) 539516feebcfSFlorian Westphal goto out_register_late_subsys; 539616feebcfSFlorian Westphal 539716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 539816feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 539916feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 540016feebcfSFlorian Westphal if (ret < 0) 5401d189634eSThomas Graf goto out_register_late_subsys; 5402433d49c3SDaniel Lezcano 54038ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5404cdb18761SDaniel Lezcano if (ret) 5405d189634eSThomas Graf goto out_register_late_subsys; 54068ed67789SDaniel Lezcano 54078d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54088d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54098d0b94afSMartin KaFai Lau 54108d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54118d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54128d0b94afSMartin KaFai Lau } 54138d0b94afSMartin KaFai Lau 5414433d49c3SDaniel Lezcano out: 5415433d49c3SDaniel Lezcano return ret; 5416433d49c3SDaniel Lezcano 5417d189634eSThomas Graf out_register_late_subsys: 541816feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5419d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5420433d49c3SDaniel Lezcano fib6_rules_init: 5421433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5422433d49c3SDaniel Lezcano xfrm6_init: 5423433d49c3SDaniel Lezcano xfrm6_fini(); 54242a0c451aSThomas Graf out_fib6_init: 54252a0c451aSThomas Graf fib6_gc_cleanup(); 54268ed67789SDaniel Lezcano out_register_subsys: 54278ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54287e52b33bSDavid S. Miller out_register_inetpeer: 54297e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5430fc66f95cSEric Dumazet out_dst_entries: 5431fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5432433d49c3SDaniel Lezcano out_kmem_cache: 5433f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5434433d49c3SDaniel Lezcano goto out; 54351da177e4SLinus Torvalds } 54361da177e4SLinus Torvalds 54371da177e4SLinus Torvalds void ip6_route_cleanup(void) 54381da177e4SLinus Torvalds { 54398ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5440d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5441101367c2SThomas Graf fib6_rules_cleanup(); 54421da177e4SLinus Torvalds xfrm6_fini(); 54431da177e4SLinus Torvalds fib6_gc_cleanup(); 5444c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54458ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 544641bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5447f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54481da177e4SLinus Torvalds } 5449