11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 213f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 214f8a1b43bSDavid Ahern } 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 217f8a1b43bSDavid Ahern struct sk_buff *skb, 218f8a1b43bSDavid Ahern const void *daddr) 219f8a1b43bSDavid Ahern { 220f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 221f8a1b43bSDavid Ahern 222f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 223f83c7790SDavid S. Miller } 224f83c7790SDavid S. Miller 22563fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22663fca65dSJulian Anastasov { 22763fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22863fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22963fca65dSJulian Anastasov 230f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23163fca65dSJulian Anastasov if (!daddr) 23263fca65dSJulian Anastasov return; 23363fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23863fca65dSJulian Anastasov } 23963fca65dSJulian Anastasov 2409a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2411da177e4SLinus Torvalds .family = AF_INET6, 2421da177e4SLinus Torvalds .gc = ip6_dst_gc, 2431da177e4SLinus Torvalds .gc_thresh = 1024, 2441da177e4SLinus Torvalds .check = ip6_dst_check, 2450dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 246ebb762f2SSteffen Klassert .mtu = ip6_mtu, 247d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2481da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2491da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2501da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2511da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2521da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2536e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2549f8955ccSEric W. Biederman .local_out = __ip6_local_out, 255f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25663fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2571da177e4SLinus Torvalds }; 2581da177e4SLinus Torvalds 259ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 260ec831ea7SRoland Dreier { 261618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 262618f9bc7SSteffen Klassert 263618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 264ec831ea7SRoland Dreier } 265ec831ea7SRoland Dreier 2666700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2676700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26814e50e57SDavid S. Miller { 26914e50e57SDavid S. Miller } 27014e50e57SDavid S. Miller 2716700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2726700c270SDavid S. Miller struct sk_buff *skb) 273b587ee3bSDavid S. Miller { 274b587ee3bSDavid S. Miller } 275b587ee3bSDavid S. Miller 27614e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27714e50e57SDavid S. Miller .family = AF_INET6, 27814e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27914e50e57SDavid S. Miller .check = ip6_dst_check, 280ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 281214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28214e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 283b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2840a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 285f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28614e50e57SDavid S. Miller }; 28714e50e57SDavid S. Miller 28862fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28914edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29062fa8a84SDavid S. Miller }; 29162fa8a84SDavid S. Miller 2928d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29393c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29493c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29593c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29693c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 297421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 298421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 299421842edSDavid Ahern }; 300421842edSDavid Ahern 301fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3021da177e4SLinus Torvalds .dst = { 3031da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3041da177e4SLinus Torvalds .__use = 1, 3052c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3061da177e4SLinus Torvalds .error = -ENETUNREACH, 3071da177e4SLinus Torvalds .input = ip6_pkt_discard, 3081da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3091da177e4SLinus Torvalds }, 3101da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 325101367c2SThomas Graf }; 326101367c2SThomas Graf 327fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 328101367c2SThomas Graf .dst = { 329101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 330101367c2SThomas Graf .__use = 1, 3312c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 332101367c2SThomas Graf .error = -EINVAL, 333352e512cSHerbert Xu .input = dst_discard, 334ede2059dSEric W. Biederman .output = dst_discard_out, 335101367c2SThomas Graf }, 336101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 337101367c2SThomas Graf }; 338101367c2SThomas Graf 339101367c2SThomas Graf #endif 340101367c2SThomas Graf 341ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 342ebfa45f0SMartin KaFai Lau { 343ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 344ebfa45f0SMartin KaFai Lau 345ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 346ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 347ebfa45f0SMartin KaFai Lau } 348ebfa45f0SMartin KaFai Lau 3491da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35093531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 351ad706862SMartin KaFai Lau int flags) 3521da177e4SLinus Torvalds { 35397bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 354b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 355cf911662SDavid S. Miller 35681eb8447SWei Wang if (rt) { 357ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35981eb8447SWei Wang } 3608104891bSSteffen Klassert 361cf911662SDavid S. Miller return rt; 3621da177e4SLinus Torvalds } 3639ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 364d52d3997SMartin KaFai Lau 3651da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3661da177e4SLinus Torvalds { 367ce7ea4afSWei Wang struct dst_metrics *p = (struct dst_metrics *)DST_METRICS_PTR(dst); 3681da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 369a68886a6SDavid Ahern struct fib6_info *from; 3708d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3711da177e4SLinus Torvalds 372ce7ea4afSWei Wang if (p != &dst_default_metrics && refcount_dec_and_test(&p->refcnt)) 373ce7ea4afSWei Wang kfree(p); 374ce7ea4afSWei Wang 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 4313b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4328d1c802bSDavid Ahern struct fib6_info *match, 43352bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 434b75cc8f9SDavid Ahern const struct sk_buff *skb, 43552bd4c0cSNicolas Dichtel int strict) 43651ebd318SNicolas Dichtel { 4378d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43851ebd318SNicolas Dichtel 439b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 440b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 441b673d6ccSJakub Sitnicki */ 442b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 443b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 444b673d6ccSJakub Sitnicki 4455e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4463d709f69SIdo Schimmel return match; 447bbfcd776SIdo Schimmel 44893c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44993c2fb25SDavid Ahern fib6_siblings) { 4505e670d84SDavid Ahern int nh_upper_bound; 4515e670d84SDavid Ahern 4525e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4535e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4543d709f69SIdo Schimmel continue; 45552bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45652bd4c0cSNicolas Dichtel break; 45751ebd318SNicolas Dichtel match = sibling; 45851ebd318SNicolas Dichtel break; 45951ebd318SNicolas Dichtel } 4603d709f69SIdo Schimmel 46151ebd318SNicolas Dichtel return match; 46251ebd318SNicolas Dichtel } 46351ebd318SNicolas Dichtel 4641da177e4SLinus Torvalds /* 46566f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4661da177e4SLinus Torvalds */ 4671da177e4SLinus Torvalds 4688d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4698d1c802bSDavid Ahern struct fib6_info *rt, 470b71d1d42SEric Dumazet const struct in6_addr *saddr, 4711da177e4SLinus Torvalds int oif, 472d420895eSYOSHIFUJI Hideaki int flags) 4731da177e4SLinus Torvalds { 4748d1c802bSDavid Ahern struct fib6_info *sprt; 4751da177e4SLinus Torvalds 4765e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4775e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4788067bb8cSIdo Schimmel return rt; 479dd3abc4eSYOSHIFUJI Hideaki 4808fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 4815e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 482dd3abc4eSYOSHIFUJI Hideaki 4835e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4848067bb8cSIdo Schimmel continue; 4858067bb8cSIdo Schimmel 486dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4871da177e4SLinus Torvalds if (dev->ifindex == oif) 4881da177e4SLinus Torvalds return sprt; 489dd3abc4eSYOSHIFUJI Hideaki } else { 490dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 491dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 492dd3abc4eSYOSHIFUJI Hideaki return sprt; 493dd3abc4eSYOSHIFUJI Hideaki } 4941da177e4SLinus Torvalds } 4951da177e4SLinus Torvalds 496eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 497421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4981da177e4SLinus Torvalds 499421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5001da177e4SLinus Torvalds } 5011da177e4SLinus Torvalds 50227097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 503c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 504c2f17e82SHannes Frederic Sowa struct work_struct work; 505c2f17e82SHannes Frederic Sowa struct in6_addr target; 506c2f17e82SHannes Frederic Sowa struct net_device *dev; 507c2f17e82SHannes Frederic Sowa }; 508c2f17e82SHannes Frederic Sowa 509c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 510c2f17e82SHannes Frederic Sowa { 511c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 512c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 513c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 514c2f17e82SHannes Frederic Sowa 515c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 516adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 517c2f17e82SHannes Frederic Sowa dev_put(work->dev); 518662f5533SMichael Büsch kfree(work); 519c2f17e82SHannes Frederic Sowa } 520c2f17e82SHannes Frederic Sowa 5218d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 52227097255SYOSHIFUJI Hideaki { 523990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 5245e670d84SDavid Ahern const struct in6_addr *nh_gw; 525f2c31e32SEric Dumazet struct neighbour *neigh; 5265e670d84SDavid Ahern struct net_device *dev; 5275e670d84SDavid Ahern 52827097255SYOSHIFUJI Hideaki /* 52927097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 53027097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 53127097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53227097255SYOSHIFUJI Hideaki * 53327097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53427097255SYOSHIFUJI Hideaki * to no more than one per minute. 53527097255SYOSHIFUJI Hideaki */ 53693c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 537fdd6681dSAmerigo Wang return; 5385e670d84SDavid Ahern 5395e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5405e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5412152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5425e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5432152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 544dcd1f572SDavid Ahern struct inet6_dev *idev; 545dcd1f572SDavid Ahern 5468d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5478d6c31bfSMartin KaFai Lau goto out; 5488d6c31bfSMartin KaFai Lau 549dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 550990edb42SMartin KaFai Lau work = NULL; 5512152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 552990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 553990edb42SMartin KaFai Lau time_after(jiffies, 554dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 555c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 556990edb42SMartin KaFai Lau if (work) 5577e980569SJiri Benc __neigh_set_probe_once(neigh); 558990edb42SMartin KaFai Lau } 559c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 560990edb42SMartin KaFai Lau } else { 561990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 562990edb42SMartin KaFai Lau } 563c2f17e82SHannes Frederic Sowa 564c2f17e82SHannes Frederic Sowa if (work) { 565c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5665e670d84SDavid Ahern work->target = *nh_gw; 5675e670d84SDavid Ahern dev_hold(dev); 5685e670d84SDavid Ahern work->dev = dev; 569c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 570c2f17e82SHannes Frederic Sowa } 571990edb42SMartin KaFai Lau 5728d6c31bfSMartin KaFai Lau out: 5732152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 574f2c31e32SEric Dumazet } 57527097255SYOSHIFUJI Hideaki #else 5768d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57727097255SYOSHIFUJI Hideaki { 57827097255SYOSHIFUJI Hideaki } 57927097255SYOSHIFUJI Hideaki #endif 58027097255SYOSHIFUJI Hideaki 5811da177e4SLinus Torvalds /* 582554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5831da177e4SLinus Torvalds */ 5848d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5851da177e4SLinus Torvalds { 5865e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5875e670d84SDavid Ahern 588161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 589554cfb7eSYOSHIFUJI Hideaki return 2; 590554cfb7eSYOSHIFUJI Hideaki return 0; 5911da177e4SLinus Torvalds } 5921da177e4SLinus Torvalds 5938d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5941da177e4SLinus Torvalds { 595afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5965e670d84SDavid Ahern struct neighbour *neigh; 597f2c31e32SEric Dumazet 59893c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 59993c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 600afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 601145a3621SYOSHIFUJI Hideaki / 吉藤英明 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6035e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 6045e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 605145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 606145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 607554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 609398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 610a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 611afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6127e980569SJiri Benc else 6137e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 614398bcbebSYOSHIFUJI Hideaki #endif 615145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 616afc154e9SHannes Frederic Sowa } else { 617afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6187e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 619a5a81f0bSPaul Marks } 620145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 621145a3621SYOSHIFUJI Hideaki / 吉藤英明 622a5a81f0bSPaul Marks return ret; 6231da177e4SLinus Torvalds } 6241da177e4SLinus Torvalds 6258d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 626554cfb7eSYOSHIFUJI Hideaki { 627a5a81f0bSPaul Marks int m; 6284d0c5911SYOSHIFUJI Hideaki 6294d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 63077d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 631afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 632ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 63393c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 634ebacaaa0SYOSHIFUJI Hideaki #endif 635afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 636afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 637afc154e9SHannes Frederic Sowa if (n < 0) 638afc154e9SHannes Frederic Sowa return n; 639afc154e9SHannes Frederic Sowa } 640554cfb7eSYOSHIFUJI Hideaki return m; 641554cfb7eSYOSHIFUJI Hideaki } 642554cfb7eSYOSHIFUJI Hideaki 643dcd1f572SDavid Ahern /* called with rc_read_lock held */ 644dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 645dcd1f572SDavid Ahern { 646dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 647dcd1f572SDavid Ahern bool rc = false; 648dcd1f572SDavid Ahern 649dcd1f572SDavid Ahern if (dev) { 650dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 651dcd1f572SDavid Ahern 652dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 653dcd1f572SDavid Ahern } 654dcd1f572SDavid Ahern 655dcd1f572SDavid Ahern return rc; 656dcd1f572SDavid Ahern } 657dcd1f572SDavid Ahern 6588d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6598d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 660afc154e9SHannes Frederic Sowa bool *do_rr) 661554cfb7eSYOSHIFUJI Hideaki { 662554cfb7eSYOSHIFUJI Hideaki int m; 663afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66435103d11SAndy Gospodarek 6655e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6668067bb8cSIdo Schimmel goto out; 6678067bb8cSIdo Schimmel 668dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6695e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 670d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 67135103d11SAndy Gospodarek goto out; 672554cfb7eSYOSHIFUJI Hideaki 67314895687SDavid Ahern if (fib6_check_expired(rt)) 674f11e6659SDavid S. Miller goto out; 675554cfb7eSYOSHIFUJI Hideaki 676554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6777e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 678afc154e9SHannes Frederic Sowa match_do_rr = true; 679afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6807e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 681f11e6659SDavid S. Miller goto out; 6821da177e4SLinus Torvalds } 683f11e6659SDavid S. Miller 684afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 685afc154e9SHannes Frederic Sowa rt6_probe(rt); 686afc154e9SHannes Frederic Sowa 6877e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 688afc154e9SHannes Frederic Sowa if (m > *mpri) { 689afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 690afc154e9SHannes Frederic Sowa *mpri = m; 691afc154e9SHannes Frederic Sowa match = rt; 692afc154e9SHannes Frederic Sowa } 693f11e6659SDavid S. Miller out: 694f11e6659SDavid S. Miller return match; 6951da177e4SLinus Torvalds } 6961da177e4SLinus Torvalds 6978d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6988d1c802bSDavid Ahern struct fib6_info *leaf, 6998d1c802bSDavid Ahern struct fib6_info *rr_head, 700afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 701afc154e9SHannes Frederic Sowa bool *do_rr) 702f11e6659SDavid S. Miller { 7038d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 704f11e6659SDavid S. Miller int mpri = -1; 705f11e6659SDavid S. Miller 706f11e6659SDavid S. Miller match = NULL; 7079fbdcfafSSteffen Klassert cont = NULL; 7088fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 70993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7109fbdcfafSSteffen Klassert cont = rt; 7119fbdcfafSSteffen Klassert break; 7129fbdcfafSSteffen Klassert } 7139fbdcfafSSteffen Klassert 714afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7159fbdcfafSSteffen Klassert } 7169fbdcfafSSteffen Klassert 71766f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7188fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 71993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7209fbdcfafSSteffen Klassert cont = rt; 7219fbdcfafSSteffen Klassert break; 7229fbdcfafSSteffen Klassert } 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7259fbdcfafSSteffen Klassert } 7269fbdcfafSSteffen Klassert 7279fbdcfafSSteffen Klassert if (match || !cont) 7289fbdcfafSSteffen Klassert return match; 7299fbdcfafSSteffen Klassert 7308fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 731afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 732f11e6659SDavid S. Miller 733f11e6659SDavid S. Miller return match; 734f11e6659SDavid S. Miller } 735f11e6659SDavid S. Miller 7368d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7378d1040e8SWei Wang int oif, int strict) 738f11e6659SDavid S. Miller { 7398d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7408d1c802bSDavid Ahern struct fib6_info *match, *rt0; 741afc154e9SHannes Frederic Sowa bool do_rr = false; 74217ecf590SWei Wang int key_plen; 743f11e6659SDavid S. Miller 744421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 745421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7468d1040e8SWei Wang 74766f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 748f11e6659SDavid S. Miller if (!rt0) 74966f5d6ceSWei Wang rt0 = leaf; 750f11e6659SDavid S. Miller 75117ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 75217ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75317ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75417ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75517ecf590SWei Wang */ 75693c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75717ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75893c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75993c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 76017ecf590SWei Wang #endif 76117ecf590SWei Wang if (fn->fn_bit != key_plen) 762421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76317ecf590SWei Wang 76493c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 765afc154e9SHannes Frederic Sowa &do_rr); 766f11e6659SDavid S. Miller 767afc154e9SHannes Frederic Sowa if (do_rr) { 7688fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 769f11e6659SDavid S. Miller 770554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 77193c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7728d1040e8SWei Wang next = leaf; 773f11e6659SDavid S. Miller 77466f5d6ceSWei Wang if (next != rt0) { 77593c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77666f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77793c2fb25SDavid Ahern if (next->fib6_node) 77866f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77993c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 78066f5d6ceSWei Wang } 781554cfb7eSYOSHIFUJI Hideaki } 782554cfb7eSYOSHIFUJI Hideaki 783421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7841da177e4SLinus Torvalds } 7851da177e4SLinus Torvalds 7868d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7878b9df265SMartin KaFai Lau { 78893c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7898b9df265SMartin KaFai Lau } 7908b9df265SMartin KaFai Lau 79170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 79270ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 793b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79470ceb4f5SYOSHIFUJI Hideaki { 795c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79670ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79770ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79870ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7994bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 8008d1c802bSDavid Ahern struct fib6_info *rt; 80170ceb4f5SYOSHIFUJI Hideaki 80270ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80470ceb4f5SYOSHIFUJI Hideaki } 80570ceb4f5SYOSHIFUJI Hideaki 80670ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80970ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 81270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81470ceb4f5SYOSHIFUJI Hideaki } 81570ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81670ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81870ceb4f5SYOSHIFUJI Hideaki } 81970ceb4f5SYOSHIFUJI Hideaki } 82070ceb4f5SYOSHIFUJI Hideaki 82170ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 82270ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8233933fc95SJens Rosenboom return -EINVAL; 82470ceb4f5SYOSHIFUJI Hideaki 8254bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82670ceb4f5SYOSHIFUJI Hideaki 82770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82870ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82970ceb4f5SYOSHIFUJI Hideaki else { 83070ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 83170ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 83270ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83370ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83470ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83570ceb4f5SYOSHIFUJI Hideaki } 83670ceb4f5SYOSHIFUJI Hideaki 837f104a567SDuan Jiong if (rinfo->prefix_len == 0) 838afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 839f104a567SDuan Jiong else 840f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 841830218c1SDavid Ahern gwaddr, dev); 84270ceb4f5SYOSHIFUJI Hideaki 84370ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 844afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84570ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84670ceb4f5SYOSHIFUJI Hideaki } 84770ceb4f5SYOSHIFUJI Hideaki 84870ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 849830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 850830218c1SDavid Ahern dev, pref); 85170ceb4f5SYOSHIFUJI Hideaki else if (rt) 85293c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85393c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85470ceb4f5SYOSHIFUJI Hideaki 85570ceb4f5SYOSHIFUJI Hideaki if (rt) { 8561716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85714895687SDavid Ahern fib6_clean_expires(rt); 8581716a961SGao feng else 85914895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8601716a961SGao feng 86193531c67SDavid Ahern fib6_info_release(rt); 86270ceb4f5SYOSHIFUJI Hideaki } 86370ceb4f5SYOSHIFUJI Hideaki return 0; 86470ceb4f5SYOSHIFUJI Hideaki } 86570ceb4f5SYOSHIFUJI Hideaki #endif 86670ceb4f5SYOSHIFUJI Hideaki 867ae90d867SDavid Ahern /* 868ae90d867SDavid Ahern * Misc support functions 869ae90d867SDavid Ahern */ 870ae90d867SDavid Ahern 871ae90d867SDavid Ahern /* called with rcu_lock held */ 8728d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 873ae90d867SDavid Ahern { 8745e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 875ae90d867SDavid Ahern 87693c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 877ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 878ae90d867SDavid Ahern * device if it is a master device, the master device if 879ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 880ae90d867SDavid Ahern */ 881ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 88293c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 883ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 884ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 885ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 886ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 887ae90d867SDavid Ahern * case we want dev returned to be dev 888ae90d867SDavid Ahern */ 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 891ae90d867SDavid Ahern return dev; 892ae90d867SDavid Ahern } 893ae90d867SDavid Ahern 8946edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8956edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8966edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8976edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8986edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8996edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 9006edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 9016edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 9026edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9036edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9046edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9056edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9066edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9076edb3c96SDavid Ahern }; 9086edb3c96SDavid Ahern 9096edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9106edb3c96SDavid Ahern { 9116edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9126edb3c96SDavid Ahern } 9136edb3c96SDavid Ahern 9148d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9153b6761d1SDavid Ahern { 9163b6761d1SDavid Ahern unsigned short flags = 0; 9173b6761d1SDavid Ahern 9183b6761d1SDavid Ahern if (rt->dst_nocount) 9193b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9203b6761d1SDavid Ahern if (rt->dst_nopolicy) 9213b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9223b6761d1SDavid Ahern if (rt->dst_host) 9233b6761d1SDavid Ahern flags |= DST_HOST; 9243b6761d1SDavid Ahern 9253b6761d1SDavid Ahern return flags; 9263b6761d1SDavid Ahern } 9273b6761d1SDavid Ahern 9288d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9296edb3c96SDavid Ahern { 9306edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9316edb3c96SDavid Ahern 9326edb3c96SDavid Ahern switch (ort->fib6_type) { 9336edb3c96SDavid Ahern case RTN_BLACKHOLE: 9346edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9356edb3c96SDavid Ahern rt->dst.input = dst_discard; 9366edb3c96SDavid Ahern break; 9376edb3c96SDavid Ahern case RTN_PROHIBIT: 9386edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9396edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9406edb3c96SDavid Ahern break; 9416edb3c96SDavid Ahern case RTN_THROW: 9426edb3c96SDavid Ahern case RTN_UNREACHABLE: 9436edb3c96SDavid Ahern default: 9446edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9456edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9466edb3c96SDavid Ahern break; 9476edb3c96SDavid Ahern } 9486edb3c96SDavid Ahern } 9496edb3c96SDavid Ahern 9508d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9516edb3c96SDavid Ahern { 95293c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9536edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9546edb3c96SDavid Ahern return; 9556edb3c96SDavid Ahern } 9566edb3c96SDavid Ahern 9576edb3c96SDavid Ahern rt->dst.error = 0; 9586edb3c96SDavid Ahern rt->dst.output = ip6_output; 9596edb3c96SDavid Ahern 960d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9616edb3c96SDavid Ahern rt->dst.input = ip6_input; 96293c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9636edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9646edb3c96SDavid Ahern } else { 9656edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9666edb3c96SDavid Ahern } 9676edb3c96SDavid Ahern 9686edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9696edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9706edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 9736edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9746edb3c96SDavid Ahern } 9756edb3c96SDavid Ahern 976e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9778d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 978ae90d867SDavid Ahern { 979ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 980a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 981d4ead6b3SDavid Ahern dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true); 98286758605SWei Wang if (from->fib6_metrics != &dst_default_metrics) { 98386758605SWei Wang rt->dst._metrics |= DST_METRICS_REFCOUNTED; 98486758605SWei Wang refcount_inc(&from->fib6_metrics->refcnt); 98586758605SWei Wang } 986ae90d867SDavid Ahern } 987ae90d867SDavid Ahern 988e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9898d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 990ae90d867SDavid Ahern { 991dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 992dcd1f572SDavid Ahern 9936edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9946edb3c96SDavid Ahern 99593c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 996dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9975e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 99893c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 999ae90d867SDavid Ahern rt6_set_from(rt, ort); 1000ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 100193c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 1002ae90d867SDavid Ahern #endif 1003ae90d867SDavid Ahern } 1004ae90d867SDavid Ahern 1005a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1006a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1007a3c00e46SMartin KaFai Lau { 100866f5d6ceSWei Wang struct fib6_node *pn, *sn; 1009a3c00e46SMartin KaFai Lau while (1) { 1010a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1011a3c00e46SMartin KaFai Lau return NULL; 101266f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 101366f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 101466f5d6ceSWei Wang if (sn && sn != fn) 10156454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1016a3c00e46SMartin KaFai Lau else 1017a3c00e46SMartin KaFai Lau fn = pn; 1018a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1019a3c00e46SMartin KaFai Lau return fn; 1020a3c00e46SMartin KaFai Lau } 1021a3c00e46SMartin KaFai Lau } 1022c71099acSThomas Graf 1023d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1024d3843fe5SWei Wang bool null_fallback) 1025d3843fe5SWei Wang { 1026d3843fe5SWei Wang struct rt6_info *rt = *prt; 1027d3843fe5SWei Wang 1028d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1029d3843fe5SWei Wang return true; 1030d3843fe5SWei Wang if (null_fallback) { 1031d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1032d3843fe5SWei Wang dst_hold(&rt->dst); 1033d3843fe5SWei Wang } else { 1034d3843fe5SWei Wang rt = NULL; 1035d3843fe5SWei Wang } 1036d3843fe5SWei Wang *prt = rt; 1037d3843fe5SWei Wang return false; 1038d3843fe5SWei Wang } 1039d3843fe5SWei Wang 1040dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10418d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1042dec9b0e2SDavid Ahern { 10433b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1044dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1045dec9b0e2SDavid Ahern struct rt6_info *nrt; 1046dec9b0e2SDavid Ahern 1047e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1048e873e4b9SWei Wang return NULL; 1049e873e4b9SWei Wang 105093531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1051dec9b0e2SDavid Ahern if (nrt) 1052dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1053e873e4b9SWei Wang else 1054e873e4b9SWei Wang fib6_info_release(rt); 1055dec9b0e2SDavid Ahern 1056dec9b0e2SDavid Ahern return nrt; 1057dec9b0e2SDavid Ahern } 1058dec9b0e2SDavid Ahern 10598ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10608ed67789SDaniel Lezcano struct fib6_table *table, 1061b75cc8f9SDavid Ahern struct flowi6 *fl6, 1062b75cc8f9SDavid Ahern const struct sk_buff *skb, 1063b75cc8f9SDavid Ahern int flags) 10641da177e4SLinus Torvalds { 10658d1c802bSDavid Ahern struct fib6_info *f6i; 10661da177e4SLinus Torvalds struct fib6_node *fn; 106723fb93a4SDavid Ahern struct rt6_info *rt; 10681da177e4SLinus Torvalds 1069b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1070b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1071b6cdbc85SDavid Ahern 107266f5d6ceSWei Wang rcu_read_lock(); 10736454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1074c71099acSThomas Graf restart: 107523fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 107623fb93a4SDavid Ahern if (!f6i) { 107723fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 107866f5d6ceSWei Wang } else { 107923fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 108066f5d6ceSWei Wang fl6->flowi6_oif, flags); 108193c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10823b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10833b290a31SDavid Ahern fl6->flowi6_oif, skb, 10843b290a31SDavid Ahern flags); 108566f5d6ceSWei Wang } 108623fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1087a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1088a3c00e46SMartin KaFai Lau if (fn) 1089a3c00e46SMartin KaFai Lau goto restart; 1090a3c00e46SMartin KaFai Lau } 10912b760fcfSWei Wang 1092d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1093d4bea421SDavid Ahern 10944c9483b2SDavid S. Miller /* Search through exception table */ 109523fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 109623fb93a4SDavid Ahern if (rt) { 1097d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1098d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 109923fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1100dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1101dec9b0e2SDavid Ahern dst_hold(&rt->dst); 110223fb93a4SDavid Ahern } else { 110323fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 110423fb93a4SDavid Ahern if (!rt) { 110523fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 110623fb93a4SDavid Ahern dst_hold(&rt->dst); 110723fb93a4SDavid Ahern } 1108dec9b0e2SDavid Ahern } 1109d3843fe5SWei Wang 111066f5d6ceSWei Wang rcu_read_unlock(); 1111b811580dSDavid Ahern 11121da177e4SLinus Torvalds return rt; 1113c71099acSThomas Graf } 1114c71099acSThomas Graf 1115ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1116b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1117ea6e574eSFlorian Westphal { 1118b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1119ea6e574eSFlorian Westphal } 1120ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1121ea6e574eSFlorian Westphal 11229acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1123b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1124b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1125c71099acSThomas Graf { 11264c9483b2SDavid S. Miller struct flowi6 fl6 = { 11274c9483b2SDavid S. Miller .flowi6_oif = oif, 11284c9483b2SDavid S. Miller .daddr = *daddr, 1129c71099acSThomas Graf }; 1130c71099acSThomas Graf struct dst_entry *dst; 113177d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1132c71099acSThomas Graf 1133adaa70bbSThomas Graf if (saddr) { 11344c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1135adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1136adaa70bbSThomas Graf } 1137adaa70bbSThomas Graf 1138b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1139c71099acSThomas Graf if (dst->error == 0) 1140c71099acSThomas Graf return (struct rt6_info *) dst; 1141c71099acSThomas Graf 1142c71099acSThomas Graf dst_release(dst); 1143c71099acSThomas Graf 11441da177e4SLinus Torvalds return NULL; 11451da177e4SLinus Torvalds } 11467159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11477159039aSYOSHIFUJI Hideaki 1148c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11491cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11501cfb71eeSWei Wang * route is released. 11511cfb71eeSWei Wang * Caller must hold dst before calling it. 11521da177e4SLinus Torvalds */ 11531da177e4SLinus Torvalds 11548d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1155333c4301SDavid Ahern struct netlink_ext_ack *extack) 11561da177e4SLinus Torvalds { 11571da177e4SLinus Torvalds int err; 1158c71099acSThomas Graf struct fib6_table *table; 11591da177e4SLinus Torvalds 116093c2fb25SDavid Ahern table = rt->fib6_table; 116166f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1162d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 116366f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11641da177e4SLinus Torvalds 11651da177e4SLinus Torvalds return err; 11661da177e4SLinus Torvalds } 11671da177e4SLinus Torvalds 11688d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 116940e22e8fSThomas Graf { 1170afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1171e715b6d3SFlorian Westphal 1172d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 117340e22e8fSThomas Graf } 117440e22e8fSThomas Graf 11758d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 117621efcfa0SEric Dumazet const struct in6_addr *daddr, 1177b71d1d42SEric Dumazet const struct in6_addr *saddr) 11781da177e4SLinus Torvalds { 11794832c30dSDavid Ahern struct net_device *dev; 11801da177e4SLinus Torvalds struct rt6_info *rt; 11811da177e4SLinus Torvalds 11821da177e4SLinus Torvalds /* 11831da177e4SLinus Torvalds * Clone the route. 11841da177e4SLinus Torvalds */ 11851da177e4SLinus Torvalds 1186e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1187e873e4b9SWei Wang return NULL; 1188e873e4b9SWei Wang 11894832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 119093531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1191e873e4b9SWei Wang if (!rt) { 1192e873e4b9SWei Wang fib6_info_release(ort); 119383a09abdSMartin KaFai Lau return NULL; 1194e873e4b9SWei Wang } 119583a09abdSMartin KaFai Lau 119683a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11978b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119883a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 119983a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 120083a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 12018b9df265SMartin KaFai Lau 12028b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 120393c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 120493c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 120558c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12061da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12071da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12084e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12091da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12101da177e4SLinus Torvalds } 12111da177e4SLinus Torvalds #endif 121295a9a5baSYOSHIFUJI Hideaki } 121395a9a5baSYOSHIFUJI Hideaki 1214299d9939SYOSHIFUJI Hideaki return rt; 1215299d9939SYOSHIFUJI Hideaki } 1216299d9939SYOSHIFUJI Hideaki 12178d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1218d52d3997SMartin KaFai Lau { 12193b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12204832c30dSDavid Ahern struct net_device *dev; 1221d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1222d52d3997SMartin KaFai Lau 1223e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1224e873e4b9SWei Wang return NULL; 1225e873e4b9SWei Wang 12264832c30dSDavid Ahern rcu_read_lock(); 12274832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122893531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12294832c30dSDavid Ahern rcu_read_unlock(); 1230e873e4b9SWei Wang if (!pcpu_rt) { 1231e873e4b9SWei Wang fib6_info_release(rt); 1232d52d3997SMartin KaFai Lau return NULL; 1233e873e4b9SWei Wang } 1234d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1235d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1236d52d3997SMartin KaFai Lau return pcpu_rt; 1237d52d3997SMartin KaFai Lau } 1238d52d3997SMartin KaFai Lau 123966f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12408d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1241d52d3997SMartin KaFai Lau { 1242a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1243d52d3997SMartin KaFai Lau 1244d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1245d52d3997SMartin KaFai Lau pcpu_rt = *p; 1246d52d3997SMartin KaFai Lau 1247d4ead6b3SDavid Ahern if (pcpu_rt) 1248d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1249d3843fe5SWei Wang 1250a73e4195SMartin KaFai Lau return pcpu_rt; 1251a73e4195SMartin KaFai Lau } 1252a73e4195SMartin KaFai Lau 1253afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12548d1c802bSDavid Ahern struct fib6_info *rt) 1255a73e4195SMartin KaFai Lau { 1256a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1257d52d3997SMartin KaFai Lau 1258d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1259d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12609c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12619c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1262d52d3997SMartin KaFai Lau } 1263d52d3997SMartin KaFai Lau 1264a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1265a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1266d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1267951f788aSEric Dumazet BUG_ON(prev); 1268a94b9367SWei Wang 1269d52d3997SMartin KaFai Lau return pcpu_rt; 1270d52d3997SMartin KaFai Lau } 1271d52d3997SMartin KaFai Lau 127235732d01SWei Wang /* exception hash table implementation 127335732d01SWei Wang */ 127435732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 127535732d01SWei Wang 127635732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127735732d01SWei Wang * Caller must hold rt6_exception_lock 127835732d01SWei Wang */ 127935732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 128035732d01SWei Wang struct rt6_exception *rt6_ex) 128135732d01SWei Wang { 1282b2427e67SColin Ian King struct net *net; 128381eb8447SWei Wang 128435732d01SWei Wang if (!bucket || !rt6_ex) 128535732d01SWei Wang return; 1286b2427e67SColin Ian King 1287b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 128835732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128977634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 129035732d01SWei Wang kfree_rcu(rt6_ex, rcu); 129135732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 129235732d01SWei Wang bucket->depth--; 129381eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 129435732d01SWei Wang } 129535732d01SWei Wang 129635732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129735732d01SWei Wang * Caller must hold rt6_exception_lock 129835732d01SWei Wang */ 129935732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 130035732d01SWei Wang { 130135732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 130235732d01SWei Wang 130335732d01SWei Wang if (!bucket) 130435732d01SWei Wang return; 130535732d01SWei Wang 130635732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130735732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130835732d01SWei Wang oldest = rt6_ex; 130935732d01SWei Wang } 131035732d01SWei Wang rt6_remove_exception(bucket, oldest); 131135732d01SWei Wang } 131235732d01SWei Wang 131335732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 131435732d01SWei Wang const struct in6_addr *src) 131535732d01SWei Wang { 131635732d01SWei Wang static u32 seed __read_mostly; 131735732d01SWei Wang u32 val; 131835732d01SWei Wang 131935732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 132035732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 132135732d01SWei Wang 132235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 132335732d01SWei Wang if (src) 132435732d01SWei Wang val = jhash(src, sizeof(*src), val); 132535732d01SWei Wang #endif 132635732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132735732d01SWei Wang } 132835732d01SWei Wang 132935732d01SWei Wang /* Helper function to find the cached rt in the hash table 133035732d01SWei Wang * and update bucket pointer to point to the bucket for this 133135732d01SWei Wang * (daddr, saddr) pair 133235732d01SWei Wang * Caller must hold rt6_exception_lock 133335732d01SWei Wang */ 133435732d01SWei Wang static struct rt6_exception * 133535732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 133635732d01SWei Wang const struct in6_addr *daddr, 133735732d01SWei Wang const struct in6_addr *saddr) 133835732d01SWei Wang { 133935732d01SWei Wang struct rt6_exception *rt6_ex; 134035732d01SWei Wang u32 hval; 134135732d01SWei Wang 134235732d01SWei Wang if (!(*bucket) || !daddr) 134335732d01SWei Wang return NULL; 134435732d01SWei Wang 134535732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 134635732d01SWei Wang *bucket += hval; 134735732d01SWei Wang 134835732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134935732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 135035732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 135135732d01SWei Wang 135235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 135335732d01SWei Wang if (matched && saddr) 135435732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 135535732d01SWei Wang #endif 135635732d01SWei Wang if (matched) 135735732d01SWei Wang return rt6_ex; 135835732d01SWei Wang } 135935732d01SWei Wang return NULL; 136035732d01SWei Wang } 136135732d01SWei Wang 136235732d01SWei Wang /* Helper function to find the cached rt in the hash table 136335732d01SWei Wang * and update bucket pointer to point to the bucket for this 136435732d01SWei Wang * (daddr, saddr) pair 136535732d01SWei Wang * Caller must hold rcu_read_lock() 136635732d01SWei Wang */ 136735732d01SWei Wang static struct rt6_exception * 136835732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136935732d01SWei Wang const struct in6_addr *daddr, 137035732d01SWei Wang const struct in6_addr *saddr) 137135732d01SWei Wang { 137235732d01SWei Wang struct rt6_exception *rt6_ex; 137335732d01SWei Wang u32 hval; 137435732d01SWei Wang 137535732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 137635732d01SWei Wang 137735732d01SWei Wang if (!(*bucket) || !daddr) 137835732d01SWei Wang return NULL; 137935732d01SWei Wang 138035732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 138135732d01SWei Wang *bucket += hval; 138235732d01SWei Wang 138335732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 138435732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138535732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138635732d01SWei Wang 138735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138835732d01SWei Wang if (matched && saddr) 138935732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 139035732d01SWei Wang #endif 139135732d01SWei Wang if (matched) 139235732d01SWei Wang return rt6_ex; 139335732d01SWei Wang } 139435732d01SWei Wang return NULL; 139535732d01SWei Wang } 139635732d01SWei Wang 13978d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139835732d01SWei Wang { 1399d4ead6b3SDavid Ahern unsigned int mtu; 1400d4ead6b3SDavid Ahern 1401dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1402dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1403dcd1f572SDavid Ahern } else { 1404dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1405dcd1f572SDavid Ahern struct inet6_dev *idev; 1406dcd1f572SDavid Ahern 1407dcd1f572SDavid Ahern rcu_read_lock(); 1408dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1409dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1410dcd1f572SDavid Ahern rcu_read_unlock(); 1411dcd1f572SDavid Ahern } 1412dcd1f572SDavid Ahern 1413d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1414d4ead6b3SDavid Ahern 1415d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1416d4ead6b3SDavid Ahern } 1417d4ead6b3SDavid Ahern 141835732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14198d1c802bSDavid Ahern struct fib6_info *ort) 142035732d01SWei Wang { 14215e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 142235732d01SWei Wang struct rt6_exception_bucket *bucket; 142335732d01SWei Wang struct in6_addr *src_key = NULL; 142435732d01SWei Wang struct rt6_exception *rt6_ex; 142535732d01SWei Wang int err = 0; 142635732d01SWei Wang 142735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142835732d01SWei Wang 142935732d01SWei Wang if (ort->exception_bucket_flushed) { 143035732d01SWei Wang err = -EINVAL; 143135732d01SWei Wang goto out; 143235732d01SWei Wang } 143335732d01SWei Wang 143435732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 143535732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143635732d01SWei Wang if (!bucket) { 143735732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143835732d01SWei Wang GFP_ATOMIC); 143935732d01SWei Wang if (!bucket) { 144035732d01SWei Wang err = -ENOMEM; 144135732d01SWei Wang goto out; 144235732d01SWei Wang } 144335732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 144435732d01SWei Wang } 144535732d01SWei Wang 144635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144735732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144835732d01SWei Wang * and exception table is indexed by a hash of 144935732d01SWei Wang * both rt6i_dst and rt6i_src. 145035732d01SWei Wang * Otherwise, the exception table is indexed by 145135732d01SWei Wang * a hash of only rt6i_dst. 145235732d01SWei Wang */ 145393c2fb25SDavid Ahern if (ort->fib6_src.plen) 145435732d01SWei Wang src_key = &nrt->rt6i_src.addr; 145535732d01SWei Wang #endif 1456f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1457f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1458f5bbe7eeSWei Wang * is less than ort's mtu value. 1459f5bbe7eeSWei Wang */ 1460d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1461f5bbe7eeSWei Wang err = -EINVAL; 1462f5bbe7eeSWei Wang goto out; 1463f5bbe7eeSWei Wang } 146460006a48SWei Wang 146535732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 146635732d01SWei Wang src_key); 146735732d01SWei Wang if (rt6_ex) 146835732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 146935732d01SWei Wang 147035732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 147135732d01SWei Wang if (!rt6_ex) { 147235732d01SWei Wang err = -ENOMEM; 147335732d01SWei Wang goto out; 147435732d01SWei Wang } 147535732d01SWei Wang rt6_ex->rt6i = nrt; 147635732d01SWei Wang rt6_ex->stamp = jiffies; 147735732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 147835732d01SWei Wang bucket->depth++; 147981eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 148035732d01SWei Wang 148135732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 148235732d01SWei Wang rt6_exception_remove_oldest(bucket); 148335732d01SWei Wang 148435732d01SWei Wang out: 148535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 148635732d01SWei Wang 148735732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1488b886d5f2SPaolo Abeni if (!err) { 148993c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14907aef6859SDavid Ahern fib6_update_sernum(net, ort); 149193c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1492b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1493b886d5f2SPaolo Abeni } 149435732d01SWei Wang 149535732d01SWei Wang return err; 149635732d01SWei Wang } 149735732d01SWei Wang 14988d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 149935732d01SWei Wang { 150035732d01SWei Wang struct rt6_exception_bucket *bucket; 150135732d01SWei Wang struct rt6_exception *rt6_ex; 150235732d01SWei Wang struct hlist_node *tmp; 150335732d01SWei Wang int i; 150435732d01SWei Wang 150535732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 150635732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150735732d01SWei Wang rt->exception_bucket_flushed = 1; 150835732d01SWei Wang 150935732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 151035732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 151135732d01SWei Wang if (!bucket) 151235732d01SWei Wang goto out; 151335732d01SWei Wang 151435732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 151535732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 151635732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151735732d01SWei Wang WARN_ON_ONCE(bucket->depth); 151835732d01SWei Wang bucket++; 151935732d01SWei Wang } 152035732d01SWei Wang 152135732d01SWei Wang out: 152235732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 152335732d01SWei Wang } 152435732d01SWei Wang 152535732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 152635732d01SWei Wang * Caller has to hold rcu_read_lock() 152735732d01SWei Wang */ 15288d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 152935732d01SWei Wang struct in6_addr *daddr, 153035732d01SWei Wang struct in6_addr *saddr) 153135732d01SWei Wang { 153235732d01SWei Wang struct rt6_exception_bucket *bucket; 153335732d01SWei Wang struct in6_addr *src_key = NULL; 153435732d01SWei Wang struct rt6_exception *rt6_ex; 153535732d01SWei Wang struct rt6_info *res = NULL; 153635732d01SWei Wang 153735732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 153835732d01SWei Wang 153935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 154035732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 154135732d01SWei Wang * and exception table is indexed by a hash of 154235732d01SWei Wang * both rt6i_dst and rt6i_src. 154335732d01SWei Wang * Otherwise, the exception table is indexed by 154435732d01SWei Wang * a hash of only rt6i_dst. 154535732d01SWei Wang */ 154693c2fb25SDavid Ahern if (rt->fib6_src.plen) 154735732d01SWei Wang src_key = saddr; 154835732d01SWei Wang #endif 154935732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 155035732d01SWei Wang 155135732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 155235732d01SWei Wang res = rt6_ex->rt6i; 155335732d01SWei Wang 155435732d01SWei Wang return res; 155535732d01SWei Wang } 155635732d01SWei Wang 155735732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 155823fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 155935732d01SWei Wang { 156035732d01SWei Wang struct rt6_exception_bucket *bucket; 156135732d01SWei Wang struct in6_addr *src_key = NULL; 156235732d01SWei Wang struct rt6_exception *rt6_ex; 15638a14e46fSDavid Ahern struct fib6_info *from; 156435732d01SWei Wang int err; 156535732d01SWei Wang 1566091311deSEric Dumazet from = rcu_dereference(rt->from); 156735732d01SWei Wang if (!from || 1568442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 156935732d01SWei Wang return -EINVAL; 157035732d01SWei Wang 157135732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 157235732d01SWei Wang return -ENOENT; 157335732d01SWei Wang 157435732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 157535732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 157635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 157835732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 157935732d01SWei Wang * and exception table is indexed by a hash of 158035732d01SWei Wang * both rt6i_dst and rt6i_src. 158135732d01SWei Wang * Otherwise, the exception table is indexed by 158235732d01SWei Wang * a hash of only rt6i_dst. 158335732d01SWei Wang */ 158493c2fb25SDavid Ahern if (from->fib6_src.plen) 158535732d01SWei Wang src_key = &rt->rt6i_src.addr; 158635732d01SWei Wang #endif 158735732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 158835732d01SWei Wang &rt->rt6i_dst.addr, 158935732d01SWei Wang src_key); 159035732d01SWei Wang if (rt6_ex) { 159135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 159235732d01SWei Wang err = 0; 159335732d01SWei Wang } else { 159435732d01SWei Wang err = -ENOENT; 159535732d01SWei Wang } 159635732d01SWei Wang 159735732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 159835732d01SWei Wang return err; 159935732d01SWei Wang } 160035732d01SWei Wang 160135732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 160235732d01SWei Wang * refresh its stamp 160335732d01SWei Wang */ 160435732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 160535732d01SWei Wang { 160635732d01SWei Wang struct rt6_exception_bucket *bucket; 16078d1c802bSDavid Ahern struct fib6_info *from = rt->from; 160835732d01SWei Wang struct in6_addr *src_key = NULL; 160935732d01SWei Wang struct rt6_exception *rt6_ex; 161035732d01SWei Wang 161135732d01SWei Wang if (!from || 1612442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 161335732d01SWei Wang return; 161435732d01SWei Wang 161535732d01SWei Wang rcu_read_lock(); 161635732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161735732d01SWei Wang 161835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161935732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 162035732d01SWei Wang * and exception table is indexed by a hash of 162135732d01SWei Wang * both rt6i_dst and rt6i_src. 162235732d01SWei Wang * Otherwise, the exception table is indexed by 162335732d01SWei Wang * a hash of only rt6i_dst. 162435732d01SWei Wang */ 162593c2fb25SDavid Ahern if (from->fib6_src.plen) 162635732d01SWei Wang src_key = &rt->rt6i_src.addr; 162735732d01SWei Wang #endif 162835732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 162935732d01SWei Wang &rt->rt6i_dst.addr, 163035732d01SWei Wang src_key); 163135732d01SWei Wang if (rt6_ex) 163235732d01SWei Wang rt6_ex->stamp = jiffies; 163335732d01SWei Wang 163435732d01SWei Wang rcu_read_unlock(); 163535732d01SWei Wang } 163635732d01SWei Wang 1637e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1638e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1639e9fa1495SStefano Brivio { 1640e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1641e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1642e9fa1495SStefano Brivio * reflect PMTU decreases. 1643e9fa1495SStefano Brivio * 1644e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1645e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1646e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1647e9fa1495SStefano Brivio * handle this. 1648e9fa1495SStefano Brivio */ 1649e9fa1495SStefano Brivio 1650e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1651e9fa1495SStefano Brivio return true; 1652e9fa1495SStefano Brivio 1653e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1654e9fa1495SStefano Brivio return true; 1655e9fa1495SStefano Brivio 1656e9fa1495SStefano Brivio return false; 1657e9fa1495SStefano Brivio } 1658e9fa1495SStefano Brivio 1659e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16608d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1661f5bbe7eeSWei Wang { 1662f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1663f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1664f5bbe7eeSWei Wang int i; 1665f5bbe7eeSWei Wang 1666f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1667f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1668f5bbe7eeSWei Wang 1669e9fa1495SStefano Brivio if (!bucket) 1670e9fa1495SStefano Brivio return; 1671e9fa1495SStefano Brivio 1672f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1673f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1674f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1675e9fa1495SStefano Brivio 1676e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1677d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1678f5bbe7eeSWei Wang * been updated. 1679f5bbe7eeSWei Wang */ 1680d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1681e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1682d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1683f5bbe7eeSWei Wang } 1684f5bbe7eeSWei Wang bucket++; 1685f5bbe7eeSWei Wang } 1686f5bbe7eeSWei Wang } 1687f5bbe7eeSWei Wang 1688b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1689b16cb459SWei Wang 16908d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1691b16cb459SWei Wang struct in6_addr *gateway) 1692b16cb459SWei Wang { 1693b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1694b16cb459SWei Wang struct rt6_exception *rt6_ex; 1695b16cb459SWei Wang struct hlist_node *tmp; 1696b16cb459SWei Wang int i; 1697b16cb459SWei Wang 1698b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1699b16cb459SWei Wang return; 1700b16cb459SWei Wang 1701b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1702b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1703b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1704b16cb459SWei Wang 1705b16cb459SWei Wang if (bucket) { 1706b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1707b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1708b16cb459SWei Wang &bucket->chain, hlist) { 1709b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1710b16cb459SWei Wang 1711b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1712b16cb459SWei Wang RTF_CACHE_GATEWAY && 1713b16cb459SWei Wang ipv6_addr_equal(gateway, 1714b16cb459SWei Wang &entry->rt6i_gateway)) { 1715b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1716b16cb459SWei Wang } 1717b16cb459SWei Wang } 1718b16cb459SWei Wang bucket++; 1719b16cb459SWei Wang } 1720b16cb459SWei Wang } 1721b16cb459SWei Wang 1722b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1723b16cb459SWei Wang } 1724b16cb459SWei Wang 1725c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1726c757faa8SWei Wang struct rt6_exception *rt6_ex, 1727c757faa8SWei Wang struct fib6_gc_args *gc_args, 1728c757faa8SWei Wang unsigned long now) 1729c757faa8SWei Wang { 1730c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1731c757faa8SWei Wang 17321859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17331859bac0SPaolo Abeni * even if others have still references to them, so that on next 17341859bac0SPaolo Abeni * dst_check() such references can be dropped. 17351859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17361859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17371859bac0SPaolo Abeni */ 173831afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173931afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1740c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1741c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1742c757faa8SWei Wang return; 174331afeb42SWei Wang } 174431afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 174531afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 174631afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174731afeb42SWei Wang return; 174831afeb42SWei Wang } 174931afeb42SWei Wang 175031afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1751c757faa8SWei Wang struct neighbour *neigh; 1752c757faa8SWei Wang __u8 neigh_flags = 0; 1753c757faa8SWei Wang 17541bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17551bfa26ffSEric Dumazet if (neigh) 1756c757faa8SWei Wang neigh_flags = neigh->flags; 17571bfa26ffSEric Dumazet 1758c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1759c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1760c757faa8SWei Wang rt); 1761c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1762c757faa8SWei Wang return; 1763c757faa8SWei Wang } 1764c757faa8SWei Wang } 176531afeb42SWei Wang 1766c757faa8SWei Wang gc_args->more++; 1767c757faa8SWei Wang } 1768c757faa8SWei Wang 17698d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1770c757faa8SWei Wang struct fib6_gc_args *gc_args, 1771c757faa8SWei Wang unsigned long now) 1772c757faa8SWei Wang { 1773c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1774c757faa8SWei Wang struct rt6_exception *rt6_ex; 1775c757faa8SWei Wang struct hlist_node *tmp; 1776c757faa8SWei Wang int i; 1777c757faa8SWei Wang 1778c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1779c757faa8SWei Wang return; 1780c757faa8SWei Wang 17811bfa26ffSEric Dumazet rcu_read_lock_bh(); 17821bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1783c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1784c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1785c757faa8SWei Wang 1786c757faa8SWei Wang if (bucket) { 1787c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1788c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1789c757faa8SWei Wang &bucket->chain, hlist) { 1790c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1791c757faa8SWei Wang gc_args, now); 1792c757faa8SWei Wang } 1793c757faa8SWei Wang bucket++; 1794c757faa8SWei Wang } 1795c757faa8SWei Wang } 17961bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17971bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1798c757faa8SWei Wang } 1799c757faa8SWei Wang 18001d053da9SDavid Ahern /* must be called with rcu lock held */ 18011d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18021d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18031da177e4SLinus Torvalds { 1804367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18058d1c802bSDavid Ahern struct fib6_info *f6i; 18061da177e4SLinus Torvalds 18076454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1808367efcb9SMartin KaFai Lau saved_fn = fn; 18091da177e4SLinus Torvalds 1810ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1811ca254490SDavid Ahern oif = 0; 1812ca254490SDavid Ahern 1813a3c00e46SMartin KaFai Lau redo_rt6_select: 181423fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 181523fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1816a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1817a3c00e46SMartin KaFai Lau if (fn) 1818a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1819367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1820367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1821367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1822367efcb9SMartin KaFai Lau fn = saved_fn; 1823367efcb9SMartin KaFai Lau goto redo_rt6_select; 1824367efcb9SMartin KaFai Lau } 1825a3c00e46SMartin KaFai Lau } 1826a3c00e46SMartin KaFai Lau 1827d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1828d52d3997SMartin KaFai Lau 18291d053da9SDavid Ahern return f6i; 18301d053da9SDavid Ahern } 18311d053da9SDavid Ahern 18321d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18331d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18341d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18351d053da9SDavid Ahern { 18361d053da9SDavid Ahern struct fib6_info *f6i; 18371d053da9SDavid Ahern struct rt6_info *rt; 18381d053da9SDavid Ahern int strict = 0; 18391d053da9SDavid Ahern 18401d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18411d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18421d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18431d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18441d053da9SDavid Ahern 18451d053da9SDavid Ahern rcu_read_lock(); 18461d053da9SDavid Ahern 18471d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18481d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18491d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18501d053da9SDavid Ahern 185123fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1852421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 185366f5d6ceSWei Wang rcu_read_unlock(); 1854d3843fe5SWei Wang dst_hold(&rt->dst); 1855d3843fe5SWei Wang return rt; 1856d3843fe5SWei Wang } 185723fb93a4SDavid Ahern 185823fb93a4SDavid Ahern /*Search through exception table */ 185923fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 186023fb93a4SDavid Ahern if (rt) { 1861d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 18621da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1863d4ead6b3SDavid Ahern 186466f5d6ceSWei Wang rcu_read_unlock(); 1865d52d3997SMartin KaFai Lau return rt; 18663da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 186793c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18683da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18693da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18703da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18713da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18723da59bd9SMartin KaFai Lau */ 18733da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18743da59bd9SMartin KaFai Lau 187523fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1876d52d3997SMartin KaFai Lau 18774d85cd0cSDavid Ahern rcu_read_unlock(); 18783da59bd9SMartin KaFai Lau 18791cfb71eeSWei Wang if (uncached_rt) { 18801cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18811cfb71eeSWei Wang * No need for another dst_hold() 18821cfb71eeSWei Wang */ 18838d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 188481eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18851cfb71eeSWei Wang } else { 18863da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18873da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18881cfb71eeSWei Wang } 1889b811580dSDavid Ahern 18903da59bd9SMartin KaFai Lau return uncached_rt; 1891d52d3997SMartin KaFai Lau } else { 1892d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1893d52d3997SMartin KaFai Lau 1894d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1895d52d3997SMartin KaFai Lau 1896951f788aSEric Dumazet local_bh_disable(); 189723fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1898d52d3997SMartin KaFai Lau 189993531c67SDavid Ahern if (!pcpu_rt) 190023fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 190193531c67SDavid Ahern 1902951f788aSEric Dumazet local_bh_enable(); 1903951f788aSEric Dumazet rcu_read_unlock(); 1904d4bea421SDavid Ahern 1905d52d3997SMartin KaFai Lau return pcpu_rt; 1906d52d3997SMartin KaFai Lau } 1907c71099acSThomas Graf } 19089ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1909c71099acSThomas Graf 1910b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1911b75cc8f9SDavid Ahern struct fib6_table *table, 1912b75cc8f9SDavid Ahern struct flowi6 *fl6, 1913b75cc8f9SDavid Ahern const struct sk_buff *skb, 1914b75cc8f9SDavid Ahern int flags) 19154acad72dSPavel Emelyanov { 1916b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19174acad72dSPavel Emelyanov } 19184acad72dSPavel Emelyanov 1919d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 192072331bc0SShmulik Ladkani struct net_device *dev, 1921b75cc8f9SDavid Ahern struct flowi6 *fl6, 1922b75cc8f9SDavid Ahern const struct sk_buff *skb, 1923b75cc8f9SDavid Ahern int flags) 192472331bc0SShmulik Ladkani { 192572331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 192672331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 192772331bc0SShmulik Ladkani 1928b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 192972331bc0SShmulik Ladkani } 1930d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 193172331bc0SShmulik Ladkani 193223aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19335e5d6fedSRoopa Prabhu struct flow_keys *keys, 19345e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 193523aebdacSJakub Sitnicki { 193623aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 193723aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19385e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 193923aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 194023aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 194123aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1942cea67a2dSEric Dumazet struct icmp6hdr _icmph; 194323aebdacSJakub Sitnicki 194423aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 194523aebdacSJakub Sitnicki goto out; 194623aebdacSJakub Sitnicki 1947cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1948cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1949cea67a2dSEric Dumazet if (!icmph) 1950cea67a2dSEric Dumazet goto out; 1951cea67a2dSEric Dumazet 195223aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 195323aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 195423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 195523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 195623aebdacSJakub Sitnicki goto out; 195723aebdacSJakub Sitnicki 195823aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 195923aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 196023aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 196123aebdacSJakub Sitnicki if (!inner_iph) 196223aebdacSJakub Sitnicki goto out; 196323aebdacSJakub Sitnicki 196423aebdacSJakub Sitnicki key_iph = inner_iph; 19655e5d6fedSRoopa Prabhu _flkeys = NULL; 196623aebdacSJakub Sitnicki out: 19675e5d6fedSRoopa Prabhu if (_flkeys) { 19685e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19695e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19705e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19715e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19725e5d6fedSRoopa Prabhu } else { 197323aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 197423aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1975fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 197623aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 197723aebdacSJakub Sitnicki } 19785e5d6fedSRoopa Prabhu } 197923aebdacSJakub Sitnicki 198023aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1981b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1982b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 198323aebdacSJakub Sitnicki { 198423aebdacSJakub Sitnicki struct flow_keys hash_keys; 19859a2a537aSDavid Ahern u32 mhash; 198623aebdacSJakub Sitnicki 1987bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1988b4bac172SDavid Ahern case 0: 19896f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19906f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19919a2a537aSDavid Ahern if (skb) { 19925e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19939a2a537aSDavid Ahern } else { 19949a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19959a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 1996fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 19979a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 199823aebdacSJakub Sitnicki } 1999b4bac172SDavid Ahern break; 2000b4bac172SDavid Ahern case 1: 2001b4bac172SDavid Ahern if (skb) { 2002b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2003b4bac172SDavid Ahern struct flow_keys keys; 2004b4bac172SDavid Ahern 2005b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2006b4bac172SDavid Ahern if (skb->l4_hash) 2007b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2008b4bac172SDavid Ahern 2009b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2010b4bac172SDavid Ahern 2011b4bac172SDavid Ahern if (!flkeys) { 2012b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2013b4bac172SDavid Ahern flkeys = &keys; 2014b4bac172SDavid Ahern } 2015b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2016b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2017b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2018b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2019b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2020b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2021b4bac172SDavid Ahern } else { 2022b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2023b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2024b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2025b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2026b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2027b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2028b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2029b4bac172SDavid Ahern } 2030b4bac172SDavid Ahern break; 2031b4bac172SDavid Ahern } 20329a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 203323aebdacSJakub Sitnicki 20349a2a537aSDavid Ahern return mhash >> 1; 203523aebdacSJakub Sitnicki } 203623aebdacSJakub Sitnicki 2037c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2038c71099acSThomas Graf { 2039b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2040c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2041adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2042904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20434c9483b2SDavid S. Miller struct flowi6 fl6 = { 2044e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20454c9483b2SDavid S. Miller .daddr = iph->daddr, 20464c9483b2SDavid S. Miller .saddr = iph->saddr, 20476502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20484c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20494c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2050c71099acSThomas Graf }; 20515e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2052adaa70bbSThomas Graf 2053904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 205446fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2055904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20565e5d6fedSRoopa Prabhu 20575e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20585e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20595e5d6fedSRoopa Prabhu 206023aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2061b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 206206e9d040SJiri Benc skb_dst_drop(skb); 2063b75cc8f9SDavid Ahern skb_dst_set(skb, 2064b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2065c71099acSThomas Graf } 2066c71099acSThomas Graf 2067b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2068b75cc8f9SDavid Ahern struct fib6_table *table, 2069b75cc8f9SDavid Ahern struct flowi6 *fl6, 2070b75cc8f9SDavid Ahern const struct sk_buff *skb, 2071b75cc8f9SDavid Ahern int flags) 2072c71099acSThomas Graf { 2073b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2074c71099acSThomas Graf } 2075c71099acSThomas Graf 20766f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20776f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2078c71099acSThomas Graf { 2079d46a9d67SDavid Ahern bool any_src; 2080c71099acSThomas Graf 20813ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 20823ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 20834c1feac5SDavid Ahern struct dst_entry *dst; 20844c1feac5SDavid Ahern 20854c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2086ca254490SDavid Ahern if (dst) 2087ca254490SDavid Ahern return dst; 20884c1feac5SDavid Ahern } 2089ca254490SDavid Ahern 20901fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20914dc27d1cSDavid McCullough 2092d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2093741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2094d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 209577d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2096c71099acSThomas Graf 2097d46a9d67SDavid Ahern if (!any_src) 2098adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20990c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21000c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2101adaa70bbSThomas Graf 2102b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21031da177e4SLinus Torvalds } 21046f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21051da177e4SLinus Torvalds 21062774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 210714e50e57SDavid S. Miller { 21085c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21091dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 211014e50e57SDavid S. Miller struct dst_entry *new = NULL; 211114e50e57SDavid S. Miller 21121dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 211362cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 211414e50e57SDavid S. Miller if (rt) { 21150a1f5962SMartin KaFai Lau rt6_info_init(rt); 211681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21170a1f5962SMartin KaFai Lau 2118d8d1f30bSChangli Gao new = &rt->dst; 211914e50e57SDavid S. Miller new->__use = 1; 2120352e512cSHerbert Xu new->input = dst_discard; 2121ede2059dSEric W. Biederman new->output = dst_discard_out; 212214e50e57SDavid S. Miller 2123defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 212414e50e57SDavid S. Miller 21251dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21264e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21270a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 212814e50e57SDavid S. Miller 212914e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 213014e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 213114e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 213214e50e57SDavid S. Miller #endif 213314e50e57SDavid S. Miller } 213414e50e57SDavid S. Miller 213569ead7afSDavid S. Miller dst_release(dst_orig); 213669ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 213714e50e57SDavid S. Miller } 213814e50e57SDavid S. Miller 21391da177e4SLinus Torvalds /* 21401da177e4SLinus Torvalds * Destination cache support functions 21411da177e4SLinus Torvalds */ 21421da177e4SLinus Torvalds 21438d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21443da59bd9SMartin KaFai Lau { 214536143645SSteffen Klassert u32 rt_cookie = 0; 2146c5cff856SWei Wang 21478ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 214893531c67SDavid Ahern return false; 214993531c67SDavid Ahern 215093531c67SDavid Ahern if (fib6_check_expired(f6i)) 215193531c67SDavid Ahern return false; 215293531c67SDavid Ahern 215393531c67SDavid Ahern return true; 215493531c67SDavid Ahern } 215593531c67SDavid Ahern 2156a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2157a68886a6SDavid Ahern struct fib6_info *from, 2158a68886a6SDavid Ahern u32 cookie) 21593da59bd9SMartin KaFai Lau { 2160c5cff856SWei Wang u32 rt_cookie = 0; 2161c5cff856SWei Wang 2162a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 216393531c67SDavid Ahern rt_cookie != cookie) 21643da59bd9SMartin KaFai Lau return NULL; 21653da59bd9SMartin KaFai Lau 21663da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21673da59bd9SMartin KaFai Lau return NULL; 21683da59bd9SMartin KaFai Lau 21693da59bd9SMartin KaFai Lau return &rt->dst; 21703da59bd9SMartin KaFai Lau } 21713da59bd9SMartin KaFai Lau 2172a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2173a68886a6SDavid Ahern struct fib6_info *from, 2174a68886a6SDavid Ahern u32 cookie) 21753da59bd9SMartin KaFai Lau { 21765973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21775973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2178a68886a6SDavid Ahern fib6_check(from, cookie)) 21793da59bd9SMartin KaFai Lau return &rt->dst; 21803da59bd9SMartin KaFai Lau else 21813da59bd9SMartin KaFai Lau return NULL; 21823da59bd9SMartin KaFai Lau } 21833da59bd9SMartin KaFai Lau 21841da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21851da177e4SLinus Torvalds { 2186a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2187a68886a6SDavid Ahern struct fib6_info *from; 21881da177e4SLinus Torvalds struct rt6_info *rt; 21891da177e4SLinus Torvalds 2190a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2191a87b7dc9SDavid Ahern 2192a87b7dc9SDavid Ahern rcu_read_lock(); 21931da177e4SLinus Torvalds 21946f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21956f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21966f3118b5SNicolas Dichtel * into this function always. 21976f3118b5SNicolas Dichtel */ 2198e3bc10bdSHannes Frederic Sowa 2199a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22004b32b5adSMartin KaFai Lau 2201a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2202a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2203a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22043da59bd9SMartin KaFai Lau else 2205a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2206a87b7dc9SDavid Ahern 2207a87b7dc9SDavid Ahern rcu_read_unlock(); 2208a87b7dc9SDavid Ahern 2209a87b7dc9SDavid Ahern return dst_ret; 22101da177e4SLinus Torvalds } 22111da177e4SLinus Torvalds 22121da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22131da177e4SLinus Torvalds { 22141da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22151da177e4SLinus Torvalds 22161da177e4SLinus Torvalds if (rt) { 221754c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2218c3c14da0SDavid Ahern rcu_read_lock(); 221954c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 222093531c67SDavid Ahern rt6_remove_exception_rt(rt); 222154c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22221da177e4SLinus Torvalds } 2223c3c14da0SDavid Ahern rcu_read_unlock(); 222454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 222554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 222654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 222754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 222954c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22301da177e4SLinus Torvalds } 22311da177e4SLinus Torvalds 22321da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22331da177e4SLinus Torvalds { 22341da177e4SLinus Torvalds struct rt6_info *rt; 22351da177e4SLinus Torvalds 22363ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22371da177e4SLinus Torvalds 2238adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22391da177e4SLinus Torvalds if (rt) { 22408a14e46fSDavid Ahern rcu_read_lock(); 22411eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2242ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 224393531c67SDavid Ahern rt6_remove_exception_rt(rt); 2244c5cff856SWei Wang } else { 2245a68886a6SDavid Ahern struct fib6_info *from; 2246c5cff856SWei Wang struct fib6_node *fn; 2247c5cff856SWei Wang 2248a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2249a68886a6SDavid Ahern if (from) { 2250a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2251c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2252c5cff856SWei Wang fn->fn_sernum = -1; 2253a68886a6SDavid Ahern } 22541da177e4SLinus Torvalds } 22551da177e4SLinus Torvalds rcu_read_unlock(); 22561da177e4SLinus Torvalds } 22571da177e4SLinus Torvalds } 22581da177e4SLinus Torvalds 22596a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22606a3e030fSDavid Ahern { 2261a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2262a68886a6SDavid Ahern struct fib6_info *from; 2263a68886a6SDavid Ahern 2264a68886a6SDavid Ahern rcu_read_lock(); 2265a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2266a68886a6SDavid Ahern if (from) 2267a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2268a68886a6SDavid Ahern rcu_read_unlock(); 2269a68886a6SDavid Ahern } 22706a3e030fSDavid Ahern 22716a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22726a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22736700c270SDavid S. Miller } 22741da177e4SLinus Torvalds 227545e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 227645e4fd26SMartin KaFai Lau { 227745e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 227845e4fd26SMartin KaFai Lau 2279d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 228045e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 228145e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 228245e4fd26SMartin KaFai Lau } 228345e4fd26SMartin KaFai Lau 22840d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22850d3f6d29SMartin KaFai Lau { 2286a68886a6SDavid Ahern bool from_set; 2287a68886a6SDavid Ahern 2288a68886a6SDavid Ahern rcu_read_lock(); 2289a68886a6SDavid Ahern from_set = !!rcu_dereference(rt->from); 2290a68886a6SDavid Ahern rcu_read_unlock(); 2291a68886a6SDavid Ahern 22920d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 2293a68886a6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || from_set); 22940d3f6d29SMartin KaFai Lau } 22950d3f6d29SMartin KaFai Lau 229645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 229745e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22981da177e4SLinus Torvalds { 22990dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23001da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23011da177e4SLinus Torvalds 230219bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 230319bda36cSXin Long return; 230419bda36cSXin Long 230545e4fd26SMartin KaFai Lau if (iph) { 230645e4fd26SMartin KaFai Lau daddr = &iph->daddr; 230745e4fd26SMartin KaFai Lau saddr = &iph->saddr; 230845e4fd26SMartin KaFai Lau } else if (sk) { 230945e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 231045e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 231145e4fd26SMartin KaFai Lau } else { 23120dec879fSJulian Anastasov daddr = NULL; 23130dec879fSJulian Anastasov saddr = NULL; 23141da177e4SLinus Torvalds } 23150dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23160dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23170dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23180dec879fSJulian Anastasov return; 23190dec879fSJulian Anastasov 23200dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23210dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23222b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23232b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23242b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23250dec879fSJulian Anastasov } else if (daddr) { 2326a68886a6SDavid Ahern struct fib6_info *from; 23270dec879fSJulian Anastasov struct rt6_info *nrt6; 23280dec879fSJulian Anastasov 23294d85cd0cSDavid Ahern rcu_read_lock(); 2330a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2331a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 233245e4fd26SMartin KaFai Lau if (nrt6) { 233345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2334a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23352b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 233645e4fd26SMartin KaFai Lau } 2337a68886a6SDavid Ahern rcu_read_unlock(); 233845e4fd26SMartin KaFai Lau } 233945e4fd26SMartin KaFai Lau } 234045e4fd26SMartin KaFai Lau 234145e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 234245e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 234345e4fd26SMartin KaFai Lau { 234445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23451da177e4SLinus Torvalds } 23461da177e4SLinus Torvalds 234742ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2348e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 234981aded24SDavid S. Miller { 235081aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 235181aded24SDavid S. Miller struct dst_entry *dst; 2352dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2353dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2354dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2355dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2356dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2357dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2358dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2359dc92095dSMaciej Żenczykowski }; 236081aded24SDavid S. Miller 236181aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 236281aded24SDavid S. Miller if (!dst->error) 236345e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 236481aded24SDavid S. Miller dst_release(dst); 236581aded24SDavid S. Miller } 236681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 236781aded24SDavid S. Miller 236881aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 236981aded24SDavid S. Miller { 237033c162a9SMartin KaFai Lau struct dst_entry *dst; 237133c162a9SMartin KaFai Lau 237281aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2373e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 237433c162a9SMartin KaFai Lau 237533c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 237633c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 237733c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 237833c162a9SMartin KaFai Lau return; 237933c162a9SMartin KaFai Lau 238033c162a9SMartin KaFai Lau bh_lock_sock(sk); 238133c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 238233c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 238333c162a9SMartin KaFai Lau bh_unlock_sock(sk); 238481aded24SDavid S. Miller } 238581aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 238681aded24SDavid S. Miller 23877d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23887d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23897d6850f7SAlexey Kodanev { 23907d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23917d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23927d6850f7SAlexey Kodanev #endif 23937d6850f7SAlexey Kodanev 23947d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23957d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23967d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23977d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23987d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 23997d6850f7SAlexey Kodanev &np->saddr : 24007d6850f7SAlexey Kodanev #endif 24017d6850f7SAlexey Kodanev NULL); 24027d6850f7SAlexey Kodanev } 24037d6850f7SAlexey Kodanev 2404b55b76b2SDuan Jiong /* Handle redirects */ 2405b55b76b2SDuan Jiong struct ip6rd_flowi { 2406b55b76b2SDuan Jiong struct flowi6 fl6; 2407b55b76b2SDuan Jiong struct in6_addr gateway; 2408b55b76b2SDuan Jiong }; 2409b55b76b2SDuan Jiong 2410b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2411b55b76b2SDuan Jiong struct fib6_table *table, 2412b55b76b2SDuan Jiong struct flowi6 *fl6, 2413b75cc8f9SDavid Ahern const struct sk_buff *skb, 2414b55b76b2SDuan Jiong int flags) 2415b55b76b2SDuan Jiong { 2416b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 241723fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24188d1c802bSDavid Ahern struct fib6_info *rt; 2419b55b76b2SDuan Jiong struct fib6_node *fn; 2420b55b76b2SDuan Jiong 2421b55b76b2SDuan Jiong /* Get the "current" route for this destination and 242267c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2423b55b76b2SDuan Jiong * 2424b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2425b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2426b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2427b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2428b55b76b2SDuan Jiong * routes. 2429b55b76b2SDuan Jiong */ 2430b55b76b2SDuan Jiong 243166f5d6ceSWei Wang rcu_read_lock(); 24326454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2433b55b76b2SDuan Jiong restart: 243466f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24355e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 24368067bb8cSIdo Schimmel continue; 243714895687SDavid Ahern if (fib6_check_expired(rt)) 2438b55b76b2SDuan Jiong continue; 243993c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2440b55b76b2SDuan Jiong break; 244193c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2442b55b76b2SDuan Jiong continue; 24435e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2444b55b76b2SDuan Jiong continue; 24452b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24462b760fcfSWei Wang * in the case of an ip redirect. 24472b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24482b760fcfSWei Wang * is different. 24492b760fcfSWei Wang */ 24505e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24512b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24522b760fcfSWei Wang &fl6->daddr, 24532b760fcfSWei Wang &fl6->saddr); 24542b760fcfSWei Wang if (rt_cache && 24552b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24562b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 245723fb93a4SDavid Ahern ret = rt_cache; 24582b760fcfSWei Wang break; 24592b760fcfSWei Wang } 2460b55b76b2SDuan Jiong continue; 24612b760fcfSWei Wang } 2462b55b76b2SDuan Jiong break; 2463b55b76b2SDuan Jiong } 2464b55b76b2SDuan Jiong 2465b55b76b2SDuan Jiong if (!rt) 2466421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 246793c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 246823fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2469b0a1ba59SMartin KaFai Lau goto out; 2470b0a1ba59SMartin KaFai Lau } 2471b0a1ba59SMartin KaFai Lau 2472421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2473a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2474a3c00e46SMartin KaFai Lau if (fn) 2475a3c00e46SMartin KaFai Lau goto restart; 2476b55b76b2SDuan Jiong } 2477a3c00e46SMartin KaFai Lau 2478b0a1ba59SMartin KaFai Lau out: 247923fb93a4SDavid Ahern if (ret) 2480e873e4b9SWei Wang ip6_hold_safe(net, &ret, true); 248123fb93a4SDavid Ahern else 248223fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2483b55b76b2SDuan Jiong 248466f5d6ceSWei Wang rcu_read_unlock(); 2485b55b76b2SDuan Jiong 2486b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 248723fb93a4SDavid Ahern return ret; 2488b55b76b2SDuan Jiong }; 2489b55b76b2SDuan Jiong 2490b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2491b55b76b2SDuan Jiong const struct flowi6 *fl6, 2492b75cc8f9SDavid Ahern const struct sk_buff *skb, 2493b55b76b2SDuan Jiong const struct in6_addr *gateway) 2494b55b76b2SDuan Jiong { 2495b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2496b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2497b55b76b2SDuan Jiong 2498b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2499b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2500b55b76b2SDuan Jiong 2501b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2502b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2503b55b76b2SDuan Jiong } 2504b55b76b2SDuan Jiong 2505e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2506e2d118a1SLorenzo Colitti kuid_t uid) 25073a5ad2eeSDavid S. Miller { 25083a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25093a5ad2eeSDavid S. Miller struct dst_entry *dst; 25101f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25111f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25121f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25131f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25141f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25151f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25161f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25171f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25181f7f10acSMaciej Żenczykowski }; 25193a5ad2eeSDavid S. Miller 2520b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25216700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25223a5ad2eeSDavid S. Miller dst_release(dst); 25233a5ad2eeSDavid S. Miller } 25243a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25253a5ad2eeSDavid S. Miller 2526d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2527c92a59ecSDuan Jiong { 2528c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2529c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2530c92a59ecSDuan Jiong struct dst_entry *dst; 25310b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25320b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25330b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25340b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25350b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25360b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25370b26fb17SMaciej Żenczykowski }; 2538c92a59ecSDuan Jiong 2539b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2540c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2541c92a59ecSDuan Jiong dst_release(dst); 2542c92a59ecSDuan Jiong } 2543c92a59ecSDuan Jiong 25443a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25453a5ad2eeSDavid S. Miller { 2546e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2547e2d118a1SLorenzo Colitti sk->sk_uid); 25483a5ad2eeSDavid S. Miller } 25493a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25503a5ad2eeSDavid S. Miller 25510dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25521da177e4SLinus Torvalds { 25530dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25540dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25550dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25560dbaee3bSDavid S. Miller 25571da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25581da177e4SLinus Torvalds 25595578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25605578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25611da177e4SLinus Torvalds 25621da177e4SLinus Torvalds /* 25631da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25641da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25651da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25661da177e4SLinus Torvalds * rely only on pmtu discovery" 25671da177e4SLinus Torvalds */ 25681da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25691da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25701da177e4SLinus Torvalds return mtu; 25711da177e4SLinus Torvalds } 25721da177e4SLinus Torvalds 2573ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2574d33e4553SDavid S. Miller { 2575d33e4553SDavid S. Miller struct inet6_dev *idev; 2576d4ead6b3SDavid Ahern unsigned int mtu; 2577618f9bc7SSteffen Klassert 25784b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25794b32b5adSMartin KaFai Lau if (mtu) 25804b32b5adSMartin KaFai Lau goto out; 25814b32b5adSMartin KaFai Lau 2582618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2583d33e4553SDavid S. Miller 2584d33e4553SDavid S. Miller rcu_read_lock(); 2585d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2586d33e4553SDavid S. Miller if (idev) 2587d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2588d33e4553SDavid S. Miller rcu_read_unlock(); 2589d33e4553SDavid S. Miller 259030f78d8eSEric Dumazet out: 259114972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 259214972cbdSRoopa Prabhu 259314972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2594d33e4553SDavid S. Miller } 2595d33e4553SDavid S. Miller 2596901731b8SDavid Ahern /* MTU selection: 2597901731b8SDavid Ahern * 1. mtu on route is locked - use it 2598901731b8SDavid Ahern * 2. mtu from nexthop exception 2599901731b8SDavid Ahern * 3. mtu from egress device 2600901731b8SDavid Ahern * 2601901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2602901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2603901731b8SDavid Ahern */ 2604901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2605901731b8SDavid Ahern struct in6_addr *saddr) 2606901731b8SDavid Ahern { 2607901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2608901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2609901731b8SDavid Ahern struct in6_addr *src_key; 2610901731b8SDavid Ahern struct inet6_dev *idev; 2611901731b8SDavid Ahern u32 mtu = 0; 2612901731b8SDavid Ahern 2613901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2614901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2615901731b8SDavid Ahern if (mtu) 2616901731b8SDavid Ahern goto out; 2617901731b8SDavid Ahern } 2618901731b8SDavid Ahern 2619901731b8SDavid Ahern src_key = NULL; 2620901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2621901731b8SDavid Ahern if (f6i->fib6_src.plen) 2622901731b8SDavid Ahern src_key = saddr; 2623901731b8SDavid Ahern #endif 2624901731b8SDavid Ahern 2625901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2626901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2627901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2628901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2629901731b8SDavid Ahern 2630901731b8SDavid Ahern if (likely(!mtu)) { 2631901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2632901731b8SDavid Ahern 2633901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2634901731b8SDavid Ahern idev = __in6_dev_get(dev); 2635901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2636901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2637901731b8SDavid Ahern } 2638901731b8SDavid Ahern 2639901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2640901731b8SDavid Ahern out: 2641901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2642901731b8SDavid Ahern } 2643901731b8SDavid Ahern 26443b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 264587a11578SDavid S. Miller struct flowi6 *fl6) 26461da177e4SLinus Torvalds { 264787a11578SDavid S. Miller struct dst_entry *dst; 26481da177e4SLinus Torvalds struct rt6_info *rt; 26491da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2650c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26511da177e4SLinus Torvalds 265238308473SDavid S. Miller if (unlikely(!idev)) 2653122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26541da177e4SLinus Torvalds 2655ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 265638308473SDavid S. Miller if (unlikely(!rt)) { 26571da177e4SLinus Torvalds in6_dev_put(idev); 265887a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26591da177e4SLinus Torvalds goto out; 26601da177e4SLinus Torvalds } 26611da177e4SLinus Torvalds 26628e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2663588753f1SBrendan McGrath rt->dst.input = ip6_input; 26648e2ec639SYan, Zheng rt->dst.output = ip6_output; 2665550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 266687a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26678e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26688e2ec639SYan, Zheng rt->rt6i_idev = idev; 266914edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26701da177e4SLinus Torvalds 26714c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2672587fea74SWei Wang * do proper release of the net_device 2673587fea74SWei Wang */ 2674587fea74SWei Wang rt6_uncached_list_add(rt); 267581eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 26761da177e4SLinus Torvalds 267787a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 267887a11578SDavid S. Miller 26791da177e4SLinus Torvalds out: 268087a11578SDavid S. Miller return dst; 26811da177e4SLinus Torvalds } 26821da177e4SLinus Torvalds 2683569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 26841da177e4SLinus Torvalds { 268586393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 26867019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 26877019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26887019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26897019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26907019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2691fc66f95cSEric Dumazet int entries; 26921da177e4SLinus Torvalds 2693fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 269449a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2695fc66f95cSEric Dumazet entries <= rt_max_size) 26961da177e4SLinus Torvalds goto out; 26971da177e4SLinus Torvalds 26986891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 269914956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2700fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2701fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27027019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27031da177e4SLinus Torvalds out: 27047019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2705fc66f95cSEric Dumazet return entries > rt_max_size; 27061da177e4SLinus Torvalds } 27071da177e4SLinus Torvalds 27088d1c802bSDavid Ahern static int ip6_convert_metrics(struct net *net, struct fib6_info *rt, 2709d4ead6b3SDavid Ahern struct fib6_config *cfg) 2710e715b6d3SFlorian Westphal { 2711263243d6SEric Dumazet struct dst_metrics *p; 2712e715b6d3SFlorian Westphal 271363159f29SIan Morris if (!cfg->fc_mx) 2714e715b6d3SFlorian Westphal return 0; 2715e715b6d3SFlorian Westphal 2716263243d6SEric Dumazet p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL); 2717263243d6SEric Dumazet if (unlikely(!p)) 2718e715b6d3SFlorian Westphal return -ENOMEM; 2719e715b6d3SFlorian Westphal 2720263243d6SEric Dumazet refcount_set(&p->refcnt, 1); 2721263243d6SEric Dumazet rt->fib6_metrics = p; 2722ea697639SDaniel Borkmann 2723263243d6SEric Dumazet return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics); 2724e715b6d3SFlorian Westphal } 27251da177e4SLinus Torvalds 27268c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27278c14586fSDavid Ahern struct fib6_config *cfg, 2728f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2729f4797b33SDavid Ahern u32 tbid, int flags) 27308c14586fSDavid Ahern { 27318c14586fSDavid Ahern struct flowi6 fl6 = { 27328c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27338c14586fSDavid Ahern .daddr = *gw_addr, 27348c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27358c14586fSDavid Ahern }; 27368c14586fSDavid Ahern struct fib6_table *table; 27378c14586fSDavid Ahern struct rt6_info *rt; 27388c14586fSDavid Ahern 2739f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27408c14586fSDavid Ahern if (!table) 27418c14586fSDavid Ahern return NULL; 27428c14586fSDavid Ahern 27438c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27448c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27458c14586fSDavid Ahern 2746f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2747b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27488c14586fSDavid Ahern 27498c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27508c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27518c14586fSDavid Ahern ip6_rt_put(rt); 27528c14586fSDavid Ahern rt = NULL; 27538c14586fSDavid Ahern } 27548c14586fSDavid Ahern 27558c14586fSDavid Ahern return rt; 27568c14586fSDavid Ahern } 27578c14586fSDavid Ahern 2758fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2759fc1e64e1SDavid Ahern struct fib6_config *cfg, 27609fbb704cSDavid Ahern const struct net_device *dev, 2761fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2762fc1e64e1SDavid Ahern { 276344750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2764fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2765fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2766fc1e64e1SDavid Ahern struct rt6_info *grt; 2767fc1e64e1SDavid Ahern int err; 2768fc1e64e1SDavid Ahern 2769fc1e64e1SDavid Ahern err = 0; 2770fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2771fc1e64e1SDavid Ahern if (grt) { 277258e354c0SDavid Ahern if (!grt->dst.error && 277358e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 277444750f84SDavid Ahern NL_SET_ERR_MSG(extack, 277544750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2776fc1e64e1SDavid Ahern err = -EINVAL; 2777fc1e64e1SDavid Ahern } 2778fc1e64e1SDavid Ahern 2779fc1e64e1SDavid Ahern ip6_rt_put(grt); 2780fc1e64e1SDavid Ahern } 2781fc1e64e1SDavid Ahern 2782fc1e64e1SDavid Ahern return err; 2783fc1e64e1SDavid Ahern } 2784fc1e64e1SDavid Ahern 27851edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 27861edce99fSDavid Ahern struct fib6_config *cfg, 27871edce99fSDavid Ahern struct net_device **_dev, 27881edce99fSDavid Ahern struct inet6_dev **idev) 27891edce99fSDavid Ahern { 27901edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27911edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27921edce99fSDavid Ahern struct rt6_info *grt = NULL; 27931edce99fSDavid Ahern int err = -EHOSTUNREACH; 27941edce99fSDavid Ahern 27951edce99fSDavid Ahern if (cfg->fc_table) { 2796f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2797f4797b33SDavid Ahern 2798f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2799f4797b33SDavid Ahern cfg->fc_table, flags); 28001edce99fSDavid Ahern if (grt) { 28011edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28021edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28031edce99fSDavid Ahern ip6_rt_put(grt); 28041edce99fSDavid Ahern grt = NULL; 28051edce99fSDavid Ahern } 28061edce99fSDavid Ahern } 28071edce99fSDavid Ahern } 28081edce99fSDavid Ahern 28091edce99fSDavid Ahern if (!grt) 2810b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28111edce99fSDavid Ahern 28121edce99fSDavid Ahern if (!grt) 28131edce99fSDavid Ahern goto out; 28141edce99fSDavid Ahern 28151edce99fSDavid Ahern if (dev) { 28161edce99fSDavid Ahern if (dev != grt->dst.dev) { 28171edce99fSDavid Ahern ip6_rt_put(grt); 28181edce99fSDavid Ahern goto out; 28191edce99fSDavid Ahern } 28201edce99fSDavid Ahern } else { 28211edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28221edce99fSDavid Ahern *idev = grt->rt6i_idev; 28231edce99fSDavid Ahern dev_hold(dev); 28241edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28251edce99fSDavid Ahern } 28261edce99fSDavid Ahern 28271edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28281edce99fSDavid Ahern err = 0; 28291edce99fSDavid Ahern 28301edce99fSDavid Ahern ip6_rt_put(grt); 28311edce99fSDavid Ahern 28321edce99fSDavid Ahern out: 28331edce99fSDavid Ahern return err; 28341edce99fSDavid Ahern } 28351edce99fSDavid Ahern 28369fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28379fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28389fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28399fbb704cSDavid Ahern { 28409fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28419fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2842232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28439fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2844232378e8SDavid Ahern bool need_addr_check = !dev; 28459fbb704cSDavid Ahern int err = -EINVAL; 28469fbb704cSDavid Ahern 28479fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28489fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28499fbb704cSDavid Ahern * will return already-added prefix route via interface that 28509fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28519fbb704cSDavid Ahern */ 2852232378e8SDavid Ahern if (dev && 2853232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2854232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28559fbb704cSDavid Ahern goto out; 28569fbb704cSDavid Ahern } 28579fbb704cSDavid Ahern 28589fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28599fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28609fbb704cSDavid Ahern * addresses as nexthop address. 28619fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28629fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28639fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28649fbb704cSDavid Ahern * some exceptions. --ANK 28659fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28669fbb704cSDavid Ahern * addressing 28679fbb704cSDavid Ahern */ 28689fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28699fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28709fbb704cSDavid Ahern goto out; 28719fbb704cSDavid Ahern } 28729fbb704cSDavid Ahern 28739fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28749fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 28759fbb704cSDavid Ahern else 28769fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 28779fbb704cSDavid Ahern 28789fbb704cSDavid Ahern if (err) 28799fbb704cSDavid Ahern goto out; 28809fbb704cSDavid Ahern } 28819fbb704cSDavid Ahern 28829fbb704cSDavid Ahern /* reload in case device was changed */ 28839fbb704cSDavid Ahern dev = *_dev; 28849fbb704cSDavid Ahern 28859fbb704cSDavid Ahern err = -EINVAL; 28869fbb704cSDavid Ahern if (!dev) { 28879fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28889fbb704cSDavid Ahern goto out; 28899fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28909fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28919fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28929fbb704cSDavid Ahern goto out; 28939fbb704cSDavid Ahern } 2894232378e8SDavid Ahern 2895232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2896232378e8SDavid Ahern * egress device has been resolved. 2897232378e8SDavid Ahern */ 2898232378e8SDavid Ahern if (need_addr_check && 2899232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2900232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2901232378e8SDavid Ahern goto out; 2902232378e8SDavid Ahern } 2903232378e8SDavid Ahern 29049fbb704cSDavid Ahern err = 0; 29059fbb704cSDavid Ahern out: 29069fbb704cSDavid Ahern return err; 29079fbb704cSDavid Ahern } 29089fbb704cSDavid Ahern 29098d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2910acb54e3cSDavid Ahern gfp_t gfp_flags, 2911333c4301SDavid Ahern struct netlink_ext_ack *extack) 29121da177e4SLinus Torvalds { 29135578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 29148d1c802bSDavid Ahern struct fib6_info *rt = NULL; 29151da177e4SLinus Torvalds struct net_device *dev = NULL; 29161da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2917c71099acSThomas Graf struct fib6_table *table; 29181da177e4SLinus Torvalds int addr_type; 29198c5b83f0SRoopa Prabhu int err = -EINVAL; 29201da177e4SLinus Torvalds 2921557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2922d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2923d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2924557c44beSDavid Ahern goto out; 2925d5d531cbSDavid Ahern } 2926557c44beSDavid Ahern 29272ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 29282ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29292ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 29302ea2352eSWei Wang goto out; 29312ea2352eSWei Wang } 29322ea2352eSWei Wang 2933e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2934e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2935e8478e80SDavid Ahern goto out; 2936e8478e80SDavid Ahern } 2937e8478e80SDavid Ahern 2938d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2939d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 29408c5b83f0SRoopa Prabhu goto out; 2941d5d531cbSDavid Ahern } 2942d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2943d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2944d5d531cbSDavid Ahern goto out; 2945d5d531cbSDavid Ahern } 29461da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2947d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2948d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2949d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 29508c5b83f0SRoopa Prabhu goto out; 2951d5d531cbSDavid Ahern } 29521da177e4SLinus Torvalds #endif 295386872cb5SThomas Graf if (cfg->fc_ifindex) { 29541da177e4SLinus Torvalds err = -ENODEV; 29555578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 29561da177e4SLinus Torvalds if (!dev) 29571da177e4SLinus Torvalds goto out; 29581da177e4SLinus Torvalds idev = in6_dev_get(dev); 29591da177e4SLinus Torvalds if (!idev) 29601da177e4SLinus Torvalds goto out; 29611da177e4SLinus Torvalds } 29621da177e4SLinus Torvalds 296386872cb5SThomas Graf if (cfg->fc_metric == 0) 296486872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 29651da177e4SLinus Torvalds 2966fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2967fc1e64e1SDavid Ahern if (!dev) { 2968fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2969fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2970fc1e64e1SDavid Ahern err = -ENODEV; 2971fc1e64e1SDavid Ahern goto out; 2972fc1e64e1SDavid Ahern } 2973fc1e64e1SDavid Ahern 2974fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 2975fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 2976fc1e64e1SDavid Ahern err = -ENETDOWN; 2977fc1e64e1SDavid Ahern goto out; 2978fc1e64e1SDavid Ahern } 2979fc1e64e1SDavid Ahern } 2980fc1e64e1SDavid Ahern 2981c71099acSThomas Graf err = -ENOBUFS; 298238308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2983d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2984d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 298538308473SDavid S. Miller if (!table) { 2986f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2987d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2988d71314b4SMatti Vaittinen } 2989d71314b4SMatti Vaittinen } else { 2990d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2991d71314b4SMatti Vaittinen } 299238308473SDavid S. Miller 299338308473SDavid S. Miller if (!table) 2994c71099acSThomas Graf goto out; 2995c71099acSThomas Graf 29961da177e4SLinus Torvalds err = -ENOMEM; 299793531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 299893531c67SDavid Ahern if (!rt) 29991da177e4SLinus Torvalds goto out; 300093531c67SDavid Ahern 300193531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 300293531c67SDavid Ahern rt->dst_nocount = true; 30031da177e4SLinus Torvalds 3004d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, cfg); 3005d4ead6b3SDavid Ahern if (err < 0) 3006d4ead6b3SDavid Ahern goto out; 30071da177e4SLinus Torvalds 30081716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 300914895687SDavid Ahern fib6_set_expires(rt, jiffies + 30101716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30111716a961SGao feng else 301214895687SDavid Ahern fib6_clean_expires(rt); 30131da177e4SLinus Torvalds 301486872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 301586872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 301693c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 301786872cb5SThomas Graf 301886872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 30191da177e4SLinus Torvalds 302019e42e45SRoopa Prabhu if (cfg->fc_encap) { 302119e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 302219e42e45SRoopa Prabhu 302330357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 3024127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 30259ae28727SDavid Ahern &lwtstate, extack); 302619e42e45SRoopa Prabhu if (err) 302719e42e45SRoopa Prabhu goto out; 30285e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 302925368623STom Herbert } 303019e42e45SRoopa Prabhu 303193c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 303293c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 303393c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 30343b6761d1SDavid Ahern rt->dst_host = true; 30351da177e4SLinus Torvalds 30361da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 303793c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 303893c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 30391da177e4SLinus Torvalds #endif 30401da177e4SLinus Torvalds 304193c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 30425e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 30431da177e4SLinus Torvalds 3044e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 30451da177e4SLinus Torvalds 30461da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 30471da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 30481da177e4SLinus Torvalds */ 304986872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 305038308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 305138308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 305238308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 30531da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 30545578689aSDaniel Lezcano if (dev != net->loopback_dev) { 30551da177e4SLinus Torvalds if (dev) { 30561da177e4SLinus Torvalds dev_put(dev); 30571da177e4SLinus Torvalds in6_dev_put(idev); 30581da177e4SLinus Torvalds } 30595578689aSDaniel Lezcano dev = net->loopback_dev; 30601da177e4SLinus Torvalds dev_hold(dev); 30611da177e4SLinus Torvalds idev = in6_dev_get(dev); 30621da177e4SLinus Torvalds if (!idev) { 30631da177e4SLinus Torvalds err = -ENODEV; 30641da177e4SLinus Torvalds goto out; 30651da177e4SLinus Torvalds } 30661da177e4SLinus Torvalds } 306793c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 30681da177e4SLinus Torvalds goto install_route; 30691da177e4SLinus Torvalds } 30701da177e4SLinus Torvalds 307186872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 30729fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 30731da177e4SLinus Torvalds if (err) 30741da177e4SLinus Torvalds goto out; 30759fbb704cSDavid Ahern 307693531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 30771da177e4SLinus Torvalds } 30781da177e4SLinus Torvalds 30791da177e4SLinus Torvalds err = -ENODEV; 308038308473SDavid S. Miller if (!dev) 30811da177e4SLinus Torvalds goto out; 30821da177e4SLinus Torvalds 3083428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 3084428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 3085428604fbSLorenzo Bianconi err = -EACCES; 3086428604fbSLorenzo Bianconi goto out; 3087428604fbSLorenzo Bianconi } 3088428604fbSLorenzo Bianconi 3089955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3090955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3091955ec4cbSDavid Ahern err = -ENETDOWN; 3092955ec4cbSDavid Ahern goto out; 3093955ec4cbSDavid Ahern } 3094955ec4cbSDavid Ahern 3095c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3096c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3097d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3098c3968a85SDaniel Walter err = -EINVAL; 3099c3968a85SDaniel Walter goto out; 3100c3968a85SDaniel Walter } 310193c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 310293c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3103c3968a85SDaniel Walter } else 310493c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3105c3968a85SDaniel Walter 310693c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 31071da177e4SLinus Torvalds 31081da177e4SLinus Torvalds install_route: 310993c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 31105609b80aSIdo Schimmel !netif_carrier_ok(dev)) 31115e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 31125e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 311393531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 311493c2fb25SDavid Ahern rt->fib6_table = table; 311563152fc0SDaniel Lezcano 3116dcd1f572SDavid Ahern if (idev) 3117dcd1f572SDavid Ahern in6_dev_put(idev); 3118dcd1f572SDavid Ahern 31198c5b83f0SRoopa Prabhu return rt; 31201da177e4SLinus Torvalds out: 31211da177e4SLinus Torvalds if (dev) 31221da177e4SLinus Torvalds dev_put(dev); 31231da177e4SLinus Torvalds if (idev) 31241da177e4SLinus Torvalds in6_dev_put(idev); 31256b9ea5a6SRoopa Prabhu 312693531c67SDavid Ahern fib6_info_release(rt); 31278c5b83f0SRoopa Prabhu return ERR_PTR(err); 31286b9ea5a6SRoopa Prabhu } 31296b9ea5a6SRoopa Prabhu 3130acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3131333c4301SDavid Ahern struct netlink_ext_ack *extack) 31326b9ea5a6SRoopa Prabhu { 31338d1c802bSDavid Ahern struct fib6_info *rt; 31346b9ea5a6SRoopa Prabhu int err; 31356b9ea5a6SRoopa Prabhu 3136acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3137d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3138d4ead6b3SDavid Ahern return PTR_ERR(rt); 31396b9ea5a6SRoopa Prabhu 3140d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 314193531c67SDavid Ahern fib6_info_release(rt); 31426b9ea5a6SRoopa Prabhu 31431da177e4SLinus Torvalds return err; 31441da177e4SLinus Torvalds } 31451da177e4SLinus Torvalds 31468d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31471da177e4SLinus Torvalds { 3148afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3149c71099acSThomas Graf struct fib6_table *table; 3150afb1d4b5SDavid Ahern int err; 31511da177e4SLinus Torvalds 3152421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31536825a26cSGao feng err = -ENOENT; 31546825a26cSGao feng goto out; 31556825a26cSGao feng } 31566c813a72SPatrick McHardy 315793c2fb25SDavid Ahern table = rt->fib6_table; 315866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 315986872cb5SThomas Graf err = fib6_del(rt, info); 316066f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31611da177e4SLinus Torvalds 31626825a26cSGao feng out: 316393531c67SDavid Ahern fib6_info_release(rt); 31641da177e4SLinus Torvalds return err; 31651da177e4SLinus Torvalds } 31661da177e4SLinus Torvalds 31678d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3168e0a1ad73SThomas Graf { 3169afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3170afb1d4b5SDavid Ahern 3171528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3172e0a1ad73SThomas Graf } 3173e0a1ad73SThomas Graf 31748d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 31750ae81335SDavid Ahern { 31760ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3177e3330039SWANG Cong struct net *net = info->nl_net; 317816a16cd3SDavid Ahern struct sk_buff *skb = NULL; 31790ae81335SDavid Ahern struct fib6_table *table; 3180e3330039SWANG Cong int err = -ENOENT; 31810ae81335SDavid Ahern 3182421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3183e3330039SWANG Cong goto out_put; 318493c2fb25SDavid Ahern table = rt->fib6_table; 318566f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 31860ae81335SDavid Ahern 318793c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 31888d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 31890ae81335SDavid Ahern 319016a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 319116a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 319216a16cd3SDavid Ahern if (skb) { 319316a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 319416a16cd3SDavid Ahern 3195d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 319616a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 319716a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 319816a16cd3SDavid Ahern kfree_skb(skb); 319916a16cd3SDavid Ahern skb = NULL; 320016a16cd3SDavid Ahern } else 320116a16cd3SDavid Ahern info->skip_notify = 1; 320216a16cd3SDavid Ahern } 320316a16cd3SDavid Ahern 32040ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 320593c2fb25SDavid Ahern &rt->fib6_siblings, 320693c2fb25SDavid Ahern fib6_siblings) { 32070ae81335SDavid Ahern err = fib6_del(sibling, info); 32080ae81335SDavid Ahern if (err) 3209e3330039SWANG Cong goto out_unlock; 32100ae81335SDavid Ahern } 32110ae81335SDavid Ahern } 32120ae81335SDavid Ahern 32130ae81335SDavid Ahern err = fib6_del(rt, info); 3214e3330039SWANG Cong out_unlock: 321566f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3216e3330039SWANG Cong out_put: 321793531c67SDavid Ahern fib6_info_release(rt); 321816a16cd3SDavid Ahern 321916a16cd3SDavid Ahern if (skb) { 3220e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 322116a16cd3SDavid Ahern info->nlh, gfp_any()); 322216a16cd3SDavid Ahern } 32230ae81335SDavid Ahern return err; 32240ae81335SDavid Ahern } 32250ae81335SDavid Ahern 322623fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 322723fb93a4SDavid Ahern { 322823fb93a4SDavid Ahern int rc = -ESRCH; 322923fb93a4SDavid Ahern 323023fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 323123fb93a4SDavid Ahern goto out; 323223fb93a4SDavid Ahern 323323fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 323423fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 323523fb93a4SDavid Ahern goto out; 323623fb93a4SDavid Ahern if (dst_hold_safe(&rt->dst)) 323723fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 323823fb93a4SDavid Ahern out: 323923fb93a4SDavid Ahern return rc; 324023fb93a4SDavid Ahern } 324123fb93a4SDavid Ahern 3242333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3243333c4301SDavid Ahern struct netlink_ext_ack *extack) 32441da177e4SLinus Torvalds { 32458d1c802bSDavid Ahern struct rt6_info *rt_cache; 3246c71099acSThomas Graf struct fib6_table *table; 32478d1c802bSDavid Ahern struct fib6_info *rt; 32481da177e4SLinus Torvalds struct fib6_node *fn; 32491da177e4SLinus Torvalds int err = -ESRCH; 32501da177e4SLinus Torvalds 32515578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3252d5d531cbSDavid Ahern if (!table) { 3253d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3254c71099acSThomas Graf return err; 3255d5d531cbSDavid Ahern } 32561da177e4SLinus Torvalds 325766f5d6ceSWei Wang rcu_read_lock(); 3258c71099acSThomas Graf 3259c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 326086872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 326138fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32622b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32631da177e4SLinus Torvalds 32641da177e4SLinus Torvalds if (fn) { 326566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 32662b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 326723fb93a4SDavid Ahern int rc; 326823fb93a4SDavid Ahern 32692b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32702b760fcfSWei Wang &cfg->fc_src); 327123fb93a4SDavid Ahern if (rt_cache) { 327223fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 32739e575010SEric Dumazet if (rc != -ESRCH) { 32749e575010SEric Dumazet rcu_read_unlock(); 327523fb93a4SDavid Ahern return rc; 327623fb93a4SDavid Ahern } 32779e575010SEric Dumazet } 32781f56a01fSMartin KaFai Lau continue; 32792b760fcfSWei Wang } 328086872cb5SThomas Graf if (cfg->fc_ifindex && 32815e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 32825e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 32831da177e4SLinus Torvalds continue; 328486872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 32855e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 32861da177e4SLinus Torvalds continue; 328793c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 32881da177e4SLinus Torvalds continue; 328993c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3290c2ed1880SMantas M continue; 3291e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3292e873e4b9SWei Wang continue; 329366f5d6ceSWei Wang rcu_read_unlock(); 32941da177e4SLinus Torvalds 32950ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 32960ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 329786872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 32980ae81335SDavid Ahern 32990ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33001da177e4SLinus Torvalds } 33011da177e4SLinus Torvalds } 330266f5d6ceSWei Wang rcu_read_unlock(); 33031da177e4SLinus Torvalds 33041da177e4SLinus Torvalds return err; 33051da177e4SLinus Torvalds } 33061da177e4SLinus Torvalds 33076700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3308a6279458SYOSHIFUJI Hideaki { 3309a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3310e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3311e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3312e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3313e8599ff4SDavid S. Miller struct neighbour *neigh; 3314a68886a6SDavid Ahern struct fib6_info *from; 331571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33166e157b6aSDavid S. Miller int optlen, on_link; 33176e157b6aSDavid S. Miller u8 *lladdr; 3318e8599ff4SDavid S. Miller 331929a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 332071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3321e8599ff4SDavid S. Miller 3322e8599ff4SDavid S. Miller if (optlen < 0) { 33236e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3324e8599ff4SDavid S. Miller return; 3325e8599ff4SDavid S. Miller } 3326e8599ff4SDavid S. Miller 332771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3328e8599ff4SDavid S. Miller 332971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33306e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3331e8599ff4SDavid S. Miller return; 3332e8599ff4SDavid S. Miller } 3333e8599ff4SDavid S. Miller 33346e157b6aSDavid S. Miller on_link = 0; 333571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3336e8599ff4SDavid S. Miller on_link = 1; 333771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3338e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33396e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3340e8599ff4SDavid S. Miller return; 3341e8599ff4SDavid S. Miller } 3342e8599ff4SDavid S. Miller 3343e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3344e8599ff4SDavid S. Miller if (!in6_dev) 3345e8599ff4SDavid S. Miller return; 3346e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3347e8599ff4SDavid S. Miller return; 3348e8599ff4SDavid S. Miller 3349e8599ff4SDavid S. Miller /* RFC2461 8.1: 3350e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3351e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3352e8599ff4SDavid S. Miller */ 3353e8599ff4SDavid S. Miller 3354f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3355e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3356e8599ff4SDavid S. Miller return; 3357e8599ff4SDavid S. Miller } 33586e157b6aSDavid S. Miller 33596e157b6aSDavid S. Miller lladdr = NULL; 3360e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3361e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3362e8599ff4SDavid S. Miller skb->dev); 3363e8599ff4SDavid S. Miller if (!lladdr) { 3364e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3365e8599ff4SDavid S. Miller return; 3366e8599ff4SDavid S. Miller } 3367e8599ff4SDavid S. Miller } 3368e8599ff4SDavid S. Miller 33696e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3370ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33716e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33726e157b6aSDavid S. Miller return; 33736e157b6aSDavid S. Miller } 33746e157b6aSDavid S. Miller 33756e157b6aSDavid S. Miller /* Redirect received -> path was valid. 33766e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 33776e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 33786e157b6aSDavid S. Miller */ 33790dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 33806e157b6aSDavid S. Miller 338171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3382e8599ff4SDavid S. Miller if (!neigh) 3383e8599ff4SDavid S. Miller return; 3384e8599ff4SDavid S. Miller 33851da177e4SLinus Torvalds /* 33861da177e4SLinus Torvalds * We have finally decided to accept it. 33871da177e4SLinus Torvalds */ 33881da177e4SLinus Torvalds 3389f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 33901da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 33911da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 33921da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3393f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3394f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 33951da177e4SLinus Torvalds 33964d85cd0cSDavid Ahern rcu_read_lock(); 3397a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3398e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3399e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3400e873e4b9SWei Wang */ 34018a14e46fSDavid Ahern fib6_info_hold(from); 34024d85cd0cSDavid Ahern rcu_read_unlock(); 34038a14e46fSDavid Ahern 34048a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 340538308473SDavid S. Miller if (!nrt) 34061da177e4SLinus Torvalds goto out; 34071da177e4SLinus Torvalds 34081da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34091da177e4SLinus Torvalds if (on_link) 34101da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34111da177e4SLinus Torvalds 34124e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34131da177e4SLinus Torvalds 34142b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34152b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34162b760fcfSWei Wang * takes care of it 34172b760fcfSWei Wang */ 34188a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34192b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34202b760fcfSWei Wang goto out; 34212b760fcfSWei Wang } 34221da177e4SLinus Torvalds 3423d8d1f30bSChangli Gao netevent.old = &rt->dst; 3424d8d1f30bSChangli Gao netevent.new = &nrt->dst; 342571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 342660592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34278d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34288d71740cSTom Tucker 34291da177e4SLinus Torvalds out: 34308a14e46fSDavid Ahern fib6_info_release(from); 3431e8599ff4SDavid S. Miller neigh_release(neigh); 34326e157b6aSDavid S. Miller } 34336e157b6aSDavid S. Miller 343470ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34358d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3436b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3437830218c1SDavid Ahern const struct in6_addr *gwaddr, 3438830218c1SDavid Ahern struct net_device *dev) 343970ceb4f5SYOSHIFUJI Hideaki { 3440830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3441830218c1SDavid Ahern int ifindex = dev->ifindex; 344270ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34438d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3444c71099acSThomas Graf struct fib6_table *table; 344570ceb4f5SYOSHIFUJI Hideaki 3446830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 344738308473SDavid S. Miller if (!table) 3448c71099acSThomas Graf return NULL; 3449c71099acSThomas Graf 345066f5d6ceSWei Wang rcu_read_lock(); 345138fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 345270ceb4f5SYOSHIFUJI Hideaki if (!fn) 345370ceb4f5SYOSHIFUJI Hideaki goto out; 345470ceb4f5SYOSHIFUJI Hideaki 345566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 34565e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 345770ceb4f5SYOSHIFUJI Hideaki continue; 345893c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 345970ceb4f5SYOSHIFUJI Hideaki continue; 34605e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 346170ceb4f5SYOSHIFUJI Hideaki continue; 3462e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3463e873e4b9SWei Wang continue; 346470ceb4f5SYOSHIFUJI Hideaki break; 346570ceb4f5SYOSHIFUJI Hideaki } 346670ceb4f5SYOSHIFUJI Hideaki out: 346766f5d6ceSWei Wang rcu_read_unlock(); 346870ceb4f5SYOSHIFUJI Hideaki return rt; 346970ceb4f5SYOSHIFUJI Hideaki } 347070ceb4f5SYOSHIFUJI Hideaki 34718d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3472b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3473830218c1SDavid Ahern const struct in6_addr *gwaddr, 3474830218c1SDavid Ahern struct net_device *dev, 347595c96174SEric Dumazet unsigned int pref) 347670ceb4f5SYOSHIFUJI Hideaki { 347786872cb5SThomas Graf struct fib6_config cfg = { 3478238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3479830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 348086872cb5SThomas Graf .fc_dst_len = prefixlen, 348186872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 348286872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3483b91d5329SXin Long .fc_protocol = RTPROT_RA, 3484e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 348515e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3486efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3487efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 348886872cb5SThomas Graf }; 348970ceb4f5SYOSHIFUJI Hideaki 3490830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 34914e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 34924e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 349386872cb5SThomas Graf 3494e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3495e317da96SYOSHIFUJI Hideaki if (!prefixlen) 349686872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 349770ceb4f5SYOSHIFUJI Hideaki 3498acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 349970ceb4f5SYOSHIFUJI Hideaki 3500830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 350170ceb4f5SYOSHIFUJI Hideaki } 350270ceb4f5SYOSHIFUJI Hideaki #endif 350370ceb4f5SYOSHIFUJI Hideaki 35048d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3505afb1d4b5SDavid Ahern const struct in6_addr *addr, 3506afb1d4b5SDavid Ahern struct net_device *dev) 35071da177e4SLinus Torvalds { 3508830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35098d1c802bSDavid Ahern struct fib6_info *rt; 3510c71099acSThomas Graf struct fib6_table *table; 35111da177e4SLinus Torvalds 3512afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 351338308473SDavid S. Miller if (!table) 3514c71099acSThomas Graf return NULL; 35151da177e4SLinus Torvalds 351666f5d6ceSWei Wang rcu_read_lock(); 351766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 35185e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 351993c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 35205e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 35211da177e4SLinus Torvalds break; 35221da177e4SLinus Torvalds } 3523e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3524e873e4b9SWei Wang rt = NULL; 352566f5d6ceSWei Wang rcu_read_unlock(); 35261da177e4SLinus Torvalds return rt; 35271da177e4SLinus Torvalds } 35281da177e4SLinus Torvalds 35298d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3530afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3531ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3532ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35331da177e4SLinus Torvalds { 353486872cb5SThomas Graf struct fib6_config cfg = { 3535ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3536238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 353786872cb5SThomas Graf .fc_ifindex = dev->ifindex, 353886872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 353986872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3540b91d5329SXin Long .fc_protocol = RTPROT_RA, 3541e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 354215e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35435578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3544afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 354586872cb5SThomas Graf }; 35461da177e4SLinus Torvalds 35474e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35481da177e4SLinus Torvalds 3549acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3550830218c1SDavid Ahern struct fib6_table *table; 3551830218c1SDavid Ahern 3552830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3553830218c1SDavid Ahern if (table) 3554830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3555830218c1SDavid Ahern } 35561da177e4SLinus Torvalds 3557afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35581da177e4SLinus Torvalds } 35591da177e4SLinus Torvalds 3560afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3561afb1d4b5SDavid Ahern struct fib6_table *table) 35621da177e4SLinus Torvalds { 35638d1c802bSDavid Ahern struct fib6_info *rt; 35641da177e4SLinus Torvalds 35651da177e4SLinus Torvalds restart: 356666f5d6ceSWei Wang rcu_read_lock(); 356766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3568dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3569dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3570dcd1f572SDavid Ahern 357193c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3572e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3573e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 357466f5d6ceSWei Wang rcu_read_unlock(); 3575afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 35761da177e4SLinus Torvalds goto restart; 35771da177e4SLinus Torvalds } 35781da177e4SLinus Torvalds } 357966f5d6ceSWei Wang rcu_read_unlock(); 3580830218c1SDavid Ahern 3581830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3582830218c1SDavid Ahern } 3583830218c1SDavid Ahern 3584830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3585830218c1SDavid Ahern { 3586830218c1SDavid Ahern struct fib6_table *table; 3587830218c1SDavid Ahern struct hlist_head *head; 3588830218c1SDavid Ahern unsigned int h; 3589830218c1SDavid Ahern 3590830218c1SDavid Ahern rcu_read_lock(); 3591830218c1SDavid Ahern 3592830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3593830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3594830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3595830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3596afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3597830218c1SDavid Ahern } 3598830218c1SDavid Ahern } 3599830218c1SDavid Ahern 3600830218c1SDavid Ahern rcu_read_unlock(); 36011da177e4SLinus Torvalds } 36021da177e4SLinus Torvalds 36035578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36045578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 360586872cb5SThomas Graf struct fib6_config *cfg) 360686872cb5SThomas Graf { 36078823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 36088823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 36098823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 36108823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 36118823a3acSMaciej Żenczykowski .fc_metric = rtmsg->rtmsg_metric, 36128823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 36138823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 36148823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 36158823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 36168823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 361786872cb5SThomas Graf 36188823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 361986872cb5SThomas Graf 36208823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 36218823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 36228823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 36238823a3acSMaciej Żenczykowski }; 362486872cb5SThomas Graf } 362586872cb5SThomas Graf 36265578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36271da177e4SLinus Torvalds { 362886872cb5SThomas Graf struct fib6_config cfg; 36291da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36301da177e4SLinus Torvalds int err; 36311da177e4SLinus Torvalds 36321da177e4SLinus Torvalds switch (cmd) { 36331da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36341da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3635af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36361da177e4SLinus Torvalds return -EPERM; 36371da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36381da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36391da177e4SLinus Torvalds if (err) 36401da177e4SLinus Torvalds return -EFAULT; 36411da177e4SLinus Torvalds 36425578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 364386872cb5SThomas Graf 36441da177e4SLinus Torvalds rtnl_lock(); 36451da177e4SLinus Torvalds switch (cmd) { 36461da177e4SLinus Torvalds case SIOCADDRT: 3647acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36481da177e4SLinus Torvalds break; 36491da177e4SLinus Torvalds case SIOCDELRT: 3650333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36511da177e4SLinus Torvalds break; 36521da177e4SLinus Torvalds default: 36531da177e4SLinus Torvalds err = -EINVAL; 36541da177e4SLinus Torvalds } 36551da177e4SLinus Torvalds rtnl_unlock(); 36561da177e4SLinus Torvalds 36571da177e4SLinus Torvalds return err; 36583ff50b79SStephen Hemminger } 36591da177e4SLinus Torvalds 36601da177e4SLinus Torvalds return -EINVAL; 36611da177e4SLinus Torvalds } 36621da177e4SLinus Torvalds 36631da177e4SLinus Torvalds /* 36641da177e4SLinus Torvalds * Drop the packet on the floor 36651da177e4SLinus Torvalds */ 36661da177e4SLinus Torvalds 3667d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36681da177e4SLinus Torvalds { 3669612f09e8SYOSHIFUJI Hideaki int type; 3670adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3671612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3672612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 36730660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 367445bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3675bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3676bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 36773bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3678612f09e8SYOSHIFUJI Hideaki break; 3679612f09e8SYOSHIFUJI Hideaki } 3680612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3681612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 36823bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 36833bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3684612f09e8SYOSHIFUJI Hideaki break; 3685612f09e8SYOSHIFUJI Hideaki } 36863ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 36871da177e4SLinus Torvalds kfree_skb(skb); 36881da177e4SLinus Torvalds return 0; 36891da177e4SLinus Torvalds } 36901da177e4SLinus Torvalds 36919ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 36929ce8ade0SThomas Graf { 3693612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 36949ce8ade0SThomas Graf } 36959ce8ade0SThomas Graf 3696ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 36971da177e4SLinus Torvalds { 3698adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3699612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37001da177e4SLinus Torvalds } 37011da177e4SLinus Torvalds 37029ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37039ce8ade0SThomas Graf { 3704612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37059ce8ade0SThomas Graf } 37069ce8ade0SThomas Graf 3707ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37089ce8ade0SThomas Graf { 3709adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3710612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37119ce8ade0SThomas Graf } 37129ce8ade0SThomas Graf 37131da177e4SLinus Torvalds /* 37141da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37151da177e4SLinus Torvalds */ 37161da177e4SLinus Torvalds 3717360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3718afb1d4b5SDavid Ahern struct inet6_dev *idev, 37191da177e4SLinus Torvalds const struct in6_addr *addr, 3720acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37211da177e4SLinus Torvalds { 3722ca254490SDavid Ahern u32 tb_id; 37234832c30dSDavid Ahern struct net_device *dev = idev->dev; 3724360a9887SDavid Ahern struct fib6_info *f6i; 37255f02ce24SDavid Ahern 3726360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3727360a9887SDavid Ahern if (!f6i) 37281da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 37291da177e4SLinus Torvalds 3730360a9887SDavid Ahern f6i->dst_nocount = true; 3731360a9887SDavid Ahern f6i->dst_host = true; 3732360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3733360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3734e8478e80SDavid Ahern if (anycast) { 3735360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3736360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3737e8478e80SDavid Ahern } else { 3738360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3739360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3740e8478e80SDavid Ahern } 37411da177e4SLinus Torvalds 3742360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 374393531c67SDavid Ahern dev_hold(dev); 3744360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3745360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3746360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3747ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3748360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 37491da177e4SLinus Torvalds 3750360a9887SDavid Ahern return f6i; 37511da177e4SLinus Torvalds } 37521da177e4SLinus Torvalds 3753c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3754c3968a85SDaniel Walter struct arg_dev_net_ip { 3755c3968a85SDaniel Walter struct net_device *dev; 3756c3968a85SDaniel Walter struct net *net; 3757c3968a85SDaniel Walter struct in6_addr *addr; 3758c3968a85SDaniel Walter }; 3759c3968a85SDaniel Walter 37608d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3761c3968a85SDaniel Walter { 3762c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3763c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3764c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3765c3968a85SDaniel Walter 37665e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3767421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 376893c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 376960006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3770c3968a85SDaniel Walter /* remove prefsrc entry */ 377193c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 377260006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3773c3968a85SDaniel Walter } 3774c3968a85SDaniel Walter return 0; 3775c3968a85SDaniel Walter } 3776c3968a85SDaniel Walter 3777c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3778c3968a85SDaniel Walter { 3779c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3780c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3781c3968a85SDaniel Walter .dev = ifp->idev->dev, 3782c3968a85SDaniel Walter .net = net, 3783c3968a85SDaniel Walter .addr = &ifp->addr, 3784c3968a85SDaniel Walter }; 37850c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3786c3968a85SDaniel Walter } 3787c3968a85SDaniel Walter 3788be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3789be7a010dSDuan Jiong 3790be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 37918d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3792be7a010dSDuan Jiong { 3793be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3794be7a010dSDuan Jiong 379593c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 37965e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3797be7a010dSDuan Jiong return -1; 3798be7a010dSDuan Jiong } 3799b16cb459SWei Wang 3800b16cb459SWei Wang /* Further clean up cached routes in exception table. 3801b16cb459SWei Wang * This is needed because cached route may have a different 3802b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3803b16cb459SWei Wang */ 3804b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3805b16cb459SWei Wang 3806be7a010dSDuan Jiong return 0; 3807be7a010dSDuan Jiong } 3808be7a010dSDuan Jiong 3809be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3810be7a010dSDuan Jiong { 3811be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3812be7a010dSDuan Jiong } 3813be7a010dSDuan Jiong 38142127d95aSIdo Schimmel struct arg_netdev_event { 38152127d95aSIdo Schimmel const struct net_device *dev; 38164c981e28SIdo Schimmel union { 38172127d95aSIdo Schimmel unsigned int nh_flags; 38184c981e28SIdo Schimmel unsigned long event; 38194c981e28SIdo Schimmel }; 38202127d95aSIdo Schimmel }; 38212127d95aSIdo Schimmel 38228d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3823d7dedee1SIdo Schimmel { 38248d1c802bSDavid Ahern struct fib6_info *iter; 3825d7dedee1SIdo Schimmel struct fib6_node *fn; 3826d7dedee1SIdo Schimmel 382793c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 382893c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3829d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 383093c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3831d7dedee1SIdo Schimmel while (iter) { 383293c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 383333bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3834d7dedee1SIdo Schimmel return iter; 38358fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 383693c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3837d7dedee1SIdo Schimmel } 3838d7dedee1SIdo Schimmel 3839d7dedee1SIdo Schimmel return NULL; 3840d7dedee1SIdo Schimmel } 3841d7dedee1SIdo Schimmel 38428d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3843d7dedee1SIdo Schimmel { 38445e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 38455e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3846dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3847d7dedee1SIdo Schimmel return true; 3848d7dedee1SIdo Schimmel 3849d7dedee1SIdo Schimmel return false; 3850d7dedee1SIdo Schimmel } 3851d7dedee1SIdo Schimmel 38528d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3853d7dedee1SIdo Schimmel { 38548d1c802bSDavid Ahern struct fib6_info *iter; 3855d7dedee1SIdo Schimmel int total = 0; 3856d7dedee1SIdo Schimmel 3857d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 38585e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3859d7dedee1SIdo Schimmel 386093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3861d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 38625e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3863d7dedee1SIdo Schimmel } 3864d7dedee1SIdo Schimmel 3865d7dedee1SIdo Schimmel return total; 3866d7dedee1SIdo Schimmel } 3867d7dedee1SIdo Schimmel 38688d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3869d7dedee1SIdo Schimmel { 3870d7dedee1SIdo Schimmel int upper_bound = -1; 3871d7dedee1SIdo Schimmel 3872d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 38735e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3874d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3875d7dedee1SIdo Schimmel total) - 1; 3876d7dedee1SIdo Schimmel } 38775e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3878d7dedee1SIdo Schimmel } 3879d7dedee1SIdo Schimmel 38808d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3881d7dedee1SIdo Schimmel { 38828d1c802bSDavid Ahern struct fib6_info *iter; 3883d7dedee1SIdo Schimmel int weight = 0; 3884d7dedee1SIdo Schimmel 3885d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3886d7dedee1SIdo Schimmel 388793c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3888d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3889d7dedee1SIdo Schimmel } 3890d7dedee1SIdo Schimmel 38918d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3892d7dedee1SIdo Schimmel { 38938d1c802bSDavid Ahern struct fib6_info *first; 3894d7dedee1SIdo Schimmel int total; 3895d7dedee1SIdo Schimmel 3896d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3897d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3898d7dedee1SIdo Schimmel * sibling route. 3899d7dedee1SIdo Schimmel */ 390093c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3901d7dedee1SIdo Schimmel return; 3902d7dedee1SIdo Schimmel 3903d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3904d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3905d7dedee1SIdo Schimmel * onwards. 3906d7dedee1SIdo Schimmel */ 3907d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3908d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3909d7dedee1SIdo Schimmel return; 3910d7dedee1SIdo Schimmel 3911d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3912d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3913d7dedee1SIdo Schimmel } 3914d7dedee1SIdo Schimmel 39158d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39162127d95aSIdo Schimmel { 39172127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39187aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39192127d95aSIdo Schimmel 3920421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 39215e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 39227aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3923d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39241de178edSIdo Schimmel } 39252127d95aSIdo Schimmel 39262127d95aSIdo Schimmel return 0; 39272127d95aSIdo Schimmel } 39282127d95aSIdo Schimmel 39292127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39302127d95aSIdo Schimmel { 39312127d95aSIdo Schimmel struct arg_netdev_event arg = { 39322127d95aSIdo Schimmel .dev = dev, 39336802f3adSIdo Schimmel { 39342127d95aSIdo Schimmel .nh_flags = nh_flags, 39356802f3adSIdo Schimmel }, 39362127d95aSIdo Schimmel }; 39372127d95aSIdo Schimmel 39382127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39392127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39402127d95aSIdo Schimmel 39412127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39422127d95aSIdo Schimmel } 39432127d95aSIdo Schimmel 39448d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39451de178edSIdo Schimmel const struct net_device *dev) 39461de178edSIdo Schimmel { 39478d1c802bSDavid Ahern struct fib6_info *iter; 39481de178edSIdo Schimmel 39495e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39501de178edSIdo Schimmel return true; 395193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39525e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39531de178edSIdo Schimmel return true; 39541de178edSIdo Schimmel 39551de178edSIdo Schimmel return false; 39561de178edSIdo Schimmel } 39571de178edSIdo Schimmel 39588d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39591de178edSIdo Schimmel { 39608d1c802bSDavid Ahern struct fib6_info *iter; 39611de178edSIdo Schimmel 39621de178edSIdo Schimmel rt->should_flush = 1; 396393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39641de178edSIdo Schimmel iter->should_flush = 1; 39651de178edSIdo Schimmel } 39661de178edSIdo Schimmel 39678d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39681de178edSIdo Schimmel const struct net_device *down_dev) 39691de178edSIdo Schimmel { 39708d1c802bSDavid Ahern struct fib6_info *iter; 39711de178edSIdo Schimmel unsigned int dead = 0; 39721de178edSIdo Schimmel 39735e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 39745e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 39751de178edSIdo Schimmel dead++; 397693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39775e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 39785e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 39791de178edSIdo Schimmel dead++; 39801de178edSIdo Schimmel 39811de178edSIdo Schimmel return dead; 39821de178edSIdo Schimmel } 39831de178edSIdo Schimmel 39848d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 39851de178edSIdo Schimmel const struct net_device *dev, 39861de178edSIdo Schimmel unsigned int nh_flags) 39871de178edSIdo Schimmel { 39888d1c802bSDavid Ahern struct fib6_info *iter; 39891de178edSIdo Schimmel 39905e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39915e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 399293c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39935e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39945e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 39951de178edSIdo Schimmel } 39961de178edSIdo Schimmel 3997a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 39988d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 39991da177e4SLinus Torvalds { 40004c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40014c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40027aef6859SDavid Ahern struct net *net = dev_net(dev); 40038ed67789SDaniel Lezcano 4004421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 400527c6fa73SIdo Schimmel return 0; 400627c6fa73SIdo Schimmel 400727c6fa73SIdo Schimmel switch (arg->event) { 400827c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 40095e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 401027c6fa73SIdo Schimmel case NETDEV_DOWN: 40111de178edSIdo Schimmel if (rt->should_flush) 401227c6fa73SIdo Schimmel return -1; 401393c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 40145e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 40151de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40161de178edSIdo Schimmel unsigned int count; 40171de178edSIdo Schimmel 40181de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 401993c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40201de178edSIdo Schimmel rt6_multipath_flush(rt); 40211de178edSIdo Schimmel return -1; 40221de178edSIdo Schimmel } 40231de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40241de178edSIdo Schimmel RTNH_F_LINKDOWN); 40257aef6859SDavid Ahern fib6_update_sernum(net, rt); 4026d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40271de178edSIdo Schimmel } 40281de178edSIdo Schimmel return -2; 402927c6fa73SIdo Schimmel case NETDEV_CHANGE: 40305e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 403193c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 403227c6fa73SIdo Schimmel break; 40335e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 4034d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 403527c6fa73SIdo Schimmel break; 40362b241361SIdo Schimmel } 4037c159d30cSDavid S. Miller 40381da177e4SLinus Torvalds return 0; 40391da177e4SLinus Torvalds } 40401da177e4SLinus Torvalds 404127c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40421da177e4SLinus Torvalds { 40434c981e28SIdo Schimmel struct arg_netdev_event arg = { 40448ed67789SDaniel Lezcano .dev = dev, 40456802f3adSIdo Schimmel { 40464c981e28SIdo Schimmel .event = event, 40476802f3adSIdo Schimmel }, 40488ed67789SDaniel Lezcano }; 40498ed67789SDaniel Lezcano 40504c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 40514c981e28SIdo Schimmel } 40524c981e28SIdo Schimmel 40534c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40544c981e28SIdo Schimmel { 40554c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40564c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40574c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40581da177e4SLinus Torvalds } 40591da177e4SLinus Torvalds 406095c96174SEric Dumazet struct rt6_mtu_change_arg { 40611da177e4SLinus Torvalds struct net_device *dev; 406295c96174SEric Dumazet unsigned int mtu; 40631da177e4SLinus Torvalds }; 40641da177e4SLinus Torvalds 40658d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40661da177e4SLinus Torvalds { 40671da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40681da177e4SLinus Torvalds struct inet6_dev *idev; 40691da177e4SLinus Torvalds 40701da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 40711da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 40721da177e4SLinus Torvalds We still use this lock to block changes 40731da177e4SLinus Torvalds caused by addrconf/ndisc. 40741da177e4SLinus Torvalds */ 40751da177e4SLinus Torvalds 40761da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 407738308473SDavid S. Miller if (!idev) 40781da177e4SLinus Torvalds return 0; 40791da177e4SLinus Torvalds 40801da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 40811da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 40821da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 40831da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 40841da177e4SLinus Torvalds */ 40855e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 4086d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4087d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4088d4ead6b3SDavid Ahern 4089d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4090d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4091d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4092d4ead6b3SDavid Ahern 4093f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4094e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4095f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 40964b32b5adSMartin KaFai Lau } 40971da177e4SLinus Torvalds return 0; 40981da177e4SLinus Torvalds } 40991da177e4SLinus Torvalds 410095c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41011da177e4SLinus Torvalds { 4102c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4103c71099acSThomas Graf .dev = dev, 4104c71099acSThomas Graf .mtu = mtu, 4105c71099acSThomas Graf }; 41061da177e4SLinus Torvalds 41070c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41081da177e4SLinus Torvalds } 41091da177e4SLinus Torvalds 4110ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41115176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4112aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 411386872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4114ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 411586872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 411686872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 411751ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4118c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 411919e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 412019e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 412132bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4122622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41233b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4124aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4125eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4126eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4127eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 412886872cb5SThomas Graf }; 412986872cb5SThomas Graf 413086872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4131333c4301SDavid Ahern struct fib6_config *cfg, 4132333c4301SDavid Ahern struct netlink_ext_ack *extack) 41331da177e4SLinus Torvalds { 413486872cb5SThomas Graf struct rtmsg *rtm; 413586872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4136c78ba6d6SLubomir Rintel unsigned int pref; 413786872cb5SThomas Graf int err; 41381da177e4SLinus Torvalds 4139fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4140fceb6435SJohannes Berg NULL); 414186872cb5SThomas Graf if (err < 0) 414286872cb5SThomas Graf goto errout; 41431da177e4SLinus Torvalds 414486872cb5SThomas Graf err = -EINVAL; 414586872cb5SThomas Graf rtm = nlmsg_data(nlh); 414686872cb5SThomas Graf 4147*84db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 4148*84db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 4149*84db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 4150*84db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 4151*84db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 4152*84db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 4153*84db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 4154*84db8407SMaciej Żenczykowski 4155*84db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 4156*84db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 4157*84db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 4158*84db8407SMaciej Żenczykowski }; 415986872cb5SThomas Graf 4160ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4161ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4162b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4163b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 416486872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 416586872cb5SThomas Graf 4166ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4167ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4168ab79ad14SMaciej Żenczykowski 41691f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41701f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41711f56a01fSMartin KaFai Lau 4172fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4173fc1e64e1SDavid Ahern 417486872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 417567b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 417686872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 41771da177e4SLinus Torvalds } 417886872cb5SThomas Graf 417986872cb5SThomas Graf if (tb[RTA_DST]) { 418086872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 418186872cb5SThomas Graf 418286872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 418386872cb5SThomas Graf goto errout; 418486872cb5SThomas Graf 418586872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 41861da177e4SLinus Torvalds } 418786872cb5SThomas Graf 418886872cb5SThomas Graf if (tb[RTA_SRC]) { 418986872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 419086872cb5SThomas Graf 419186872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 419286872cb5SThomas Graf goto errout; 419386872cb5SThomas Graf 419486872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 41951da177e4SLinus Torvalds } 419686872cb5SThomas Graf 4197c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 419867b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4199c3968a85SDaniel Walter 420086872cb5SThomas Graf if (tb[RTA_OIF]) 420186872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 420286872cb5SThomas Graf 420386872cb5SThomas Graf if (tb[RTA_PRIORITY]) 420486872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 420586872cb5SThomas Graf 420686872cb5SThomas Graf if (tb[RTA_METRICS]) { 420786872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 420886872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42091da177e4SLinus Torvalds } 421086872cb5SThomas Graf 421186872cb5SThomas Graf if (tb[RTA_TABLE]) 421286872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 421386872cb5SThomas Graf 421451ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 421551ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 421651ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42179ed59592SDavid Ahern 42189ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4219c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42209ed59592SDavid Ahern if (err < 0) 42219ed59592SDavid Ahern goto errout; 422251ebd318SNicolas Dichtel } 422351ebd318SNicolas Dichtel 4224c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4225c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4226c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4227c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4228c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4229c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4230c78ba6d6SLubomir Rintel } 4231c78ba6d6SLubomir Rintel 423219e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 423319e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 423419e42e45SRoopa Prabhu 42359ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 423619e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 423719e42e45SRoopa Prabhu 4238c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42399ed59592SDavid Ahern if (err < 0) 42409ed59592SDavid Ahern goto errout; 42419ed59592SDavid Ahern } 42429ed59592SDavid Ahern 424332bc201eSXin Long if (tb[RTA_EXPIRES]) { 424432bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 424532bc201eSXin Long 424632bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 424732bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 424832bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 424932bc201eSXin Long } 425032bc201eSXin Long } 425132bc201eSXin Long 425286872cb5SThomas Graf err = 0; 425386872cb5SThomas Graf errout: 425486872cb5SThomas Graf return err; 42551da177e4SLinus Torvalds } 42561da177e4SLinus Torvalds 42576b9ea5a6SRoopa Prabhu struct rt6_nh { 42588d1c802bSDavid Ahern struct fib6_info *fib6_info; 42596b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42606b9ea5a6SRoopa Prabhu struct list_head next; 42616b9ea5a6SRoopa Prabhu }; 42626b9ea5a6SRoopa Prabhu 42636b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 42646b9ea5a6SRoopa Prabhu { 42656b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42666b9ea5a6SRoopa Prabhu 42676b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42687d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 42696b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 42706b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 42716b9ea5a6SRoopa Prabhu } 42726b9ea5a6SRoopa Prabhu } 42736b9ea5a6SRoopa Prabhu 4274d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4275d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 42768d1c802bSDavid Ahern struct fib6_info *rt, 42778d1c802bSDavid Ahern struct fib6_config *r_cfg) 42786b9ea5a6SRoopa Prabhu { 42796b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42806b9ea5a6SRoopa Prabhu int err = -EEXIST; 42816b9ea5a6SRoopa Prabhu 42826b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42838d1c802bSDavid Ahern /* check if fib6_info already exists */ 42848d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 42856b9ea5a6SRoopa Prabhu return err; 42866b9ea5a6SRoopa Prabhu } 42876b9ea5a6SRoopa Prabhu 42886b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 42896b9ea5a6SRoopa Prabhu if (!nh) 42906b9ea5a6SRoopa Prabhu return -ENOMEM; 42918d1c802bSDavid Ahern nh->fib6_info = rt; 4292d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, r_cfg); 42936b9ea5a6SRoopa Prabhu if (err) { 42946b9ea5a6SRoopa Prabhu kfree(nh); 42956b9ea5a6SRoopa Prabhu return err; 42966b9ea5a6SRoopa Prabhu } 42976b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 42986b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 42996b9ea5a6SRoopa Prabhu 43006b9ea5a6SRoopa Prabhu return 0; 43016b9ea5a6SRoopa Prabhu } 43026b9ea5a6SRoopa Prabhu 43038d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43048d1c802bSDavid Ahern struct fib6_info *rt_last, 43053b1137feSDavid Ahern struct nl_info *info, 43063b1137feSDavid Ahern __u16 nlflags) 43073b1137feSDavid Ahern { 43083b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43093b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43103b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43113b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43123b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43133b1137feSDavid Ahern */ 431493c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 431593c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43168d1c802bSDavid Ahern struct fib6_info, 431793c2fb25SDavid Ahern fib6_siblings); 43183b1137feSDavid Ahern } 43193b1137feSDavid Ahern 43203b1137feSDavid Ahern if (rt) 43213b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43223b1137feSDavid Ahern } 43233b1137feSDavid Ahern 4324333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4325333c4301SDavid Ahern struct netlink_ext_ack *extack) 432651ebd318SNicolas Dichtel { 43278d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43283b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 432951ebd318SNicolas Dichtel struct fib6_config r_cfg; 433051ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43318d1c802bSDavid Ahern struct fib6_info *rt; 43326b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43336b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43343b1137feSDavid Ahern __u16 nlflags; 433551ebd318SNicolas Dichtel int remaining; 433651ebd318SNicolas Dichtel int attrlen; 43376b9ea5a6SRoopa Prabhu int err = 1; 43386b9ea5a6SRoopa Prabhu int nhn = 0; 43396b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43406b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43416b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 434251ebd318SNicolas Dichtel 43433b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43443b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43453b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43463b1137feSDavid Ahern 434735f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 434851ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 434951ebd318SNicolas Dichtel 43506b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43518d1c802bSDavid Ahern * fib6_info structs per nexthop 43526b9ea5a6SRoopa Prabhu */ 435351ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 435451ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 435551ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 435651ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 435751ebd318SNicolas Dichtel 435851ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 435951ebd318SNicolas Dichtel if (attrlen > 0) { 436051ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 436151ebd318SNicolas Dichtel 436251ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 436351ebd318SNicolas Dichtel if (nla) { 436467b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 436551ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 436651ebd318SNicolas Dichtel } 436719e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 436819e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 436919e42e45SRoopa Prabhu if (nla) 437019e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 437151ebd318SNicolas Dichtel } 43726b9ea5a6SRoopa Prabhu 437368e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4374acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 43758c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 43768c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 43778c5b83f0SRoopa Prabhu rt = NULL; 43786b9ea5a6SRoopa Prabhu goto cleanup; 43798c5b83f0SRoopa Prabhu } 4380b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4381b5d2d75eSDavid Ahern err = -EINVAL; 4382b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4383b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4384b5d2d75eSDavid Ahern fib6_info_release(rt); 4385b5d2d75eSDavid Ahern goto cleanup; 4386b5d2d75eSDavid Ahern } 43876b9ea5a6SRoopa Prabhu 43885e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4389398958aeSIdo Schimmel 4390d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4391d4ead6b3SDavid Ahern rt, &r_cfg); 439251ebd318SNicolas Dichtel if (err) { 439393531c67SDavid Ahern fib6_info_release(rt); 43946b9ea5a6SRoopa Prabhu goto cleanup; 439551ebd318SNicolas Dichtel } 43966b9ea5a6SRoopa Prabhu 43976b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 439851ebd318SNicolas Dichtel } 43996b9ea5a6SRoopa Prabhu 44003b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44013b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44023b1137feSDavid Ahern * the full route when done 44033b1137feSDavid Ahern */ 44043b1137feSDavid Ahern info->skip_notify = 1; 44053b1137feSDavid Ahern 44066b9ea5a6SRoopa Prabhu err_nh = NULL; 44076b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44088d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44098d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44103b1137feSDavid Ahern 4411f7225172SDavid Ahern if (!err) { 4412f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4413f7225172SDavid Ahern rt_last = nh->fib6_info; 4414f7225172SDavid Ahern 44156b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4416f7225172SDavid Ahern if (!rt_notif) 44178d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4418f7225172SDavid Ahern } 44196b9ea5a6SRoopa Prabhu 44208d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44218d1c802bSDavid Ahern nh->fib6_info = NULL; 44226b9ea5a6SRoopa Prabhu if (err) { 44236b9ea5a6SRoopa Prabhu if (replace && nhn) 44246b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 44256b9ea5a6SRoopa Prabhu err_nh = nh; 44266b9ea5a6SRoopa Prabhu goto add_errout; 44276b9ea5a6SRoopa Prabhu } 44286b9ea5a6SRoopa Prabhu 44291a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 443027596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 443127596472SMichal Kubeček * we have already failed to add the first nexthop: 443227596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 443327596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 443427596472SMichal Kubeček * be added to it. 44351a72418bSNicolas Dichtel */ 443627596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 443727596472SMichal Kubeček NLM_F_REPLACE); 44386b9ea5a6SRoopa Prabhu nhn++; 44396b9ea5a6SRoopa Prabhu } 44406b9ea5a6SRoopa Prabhu 44413b1137feSDavid Ahern /* success ... tell user about new route */ 44423b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44436b9ea5a6SRoopa Prabhu goto cleanup; 44446b9ea5a6SRoopa Prabhu 44456b9ea5a6SRoopa Prabhu add_errout: 44463b1137feSDavid Ahern /* send notification for routes that were added so that 44473b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44483b1137feSDavid Ahern * coherent 44493b1137feSDavid Ahern */ 44503b1137feSDavid Ahern if (rt_notif) 44513b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44523b1137feSDavid Ahern 44536b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44546b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44556b9ea5a6SRoopa Prabhu if (err_nh == nh) 44566b9ea5a6SRoopa Prabhu break; 4457333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44586b9ea5a6SRoopa Prabhu } 44596b9ea5a6SRoopa Prabhu 44606b9ea5a6SRoopa Prabhu cleanup: 44616b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44628d1c802bSDavid Ahern if (nh->fib6_info) 44638d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44646b9ea5a6SRoopa Prabhu list_del(&nh->next); 44656b9ea5a6SRoopa Prabhu kfree(nh); 44666b9ea5a6SRoopa Prabhu } 44676b9ea5a6SRoopa Prabhu 44686b9ea5a6SRoopa Prabhu return err; 44696b9ea5a6SRoopa Prabhu } 44706b9ea5a6SRoopa Prabhu 4471333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4472333c4301SDavid Ahern struct netlink_ext_ack *extack) 44736b9ea5a6SRoopa Prabhu { 44746b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 44756b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 44766b9ea5a6SRoopa Prabhu int remaining; 44776b9ea5a6SRoopa Prabhu int attrlen; 44786b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 44796b9ea5a6SRoopa Prabhu 44806b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 44816b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 44826b9ea5a6SRoopa Prabhu 44836b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 44846b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 44856b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 44866b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 44876b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 44886b9ea5a6SRoopa Prabhu 44896b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 44906b9ea5a6SRoopa Prabhu if (attrlen > 0) { 44916b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 44926b9ea5a6SRoopa Prabhu 44936b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 44946b9ea5a6SRoopa Prabhu if (nla) { 44956b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 44966b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 44976b9ea5a6SRoopa Prabhu } 44986b9ea5a6SRoopa Prabhu } 4499333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45006b9ea5a6SRoopa Prabhu if (err) 45016b9ea5a6SRoopa Prabhu last_err = err; 45026b9ea5a6SRoopa Prabhu 450351ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 450451ebd318SNicolas Dichtel } 450551ebd318SNicolas Dichtel 450651ebd318SNicolas Dichtel return last_err; 450751ebd318SNicolas Dichtel } 450851ebd318SNicolas Dichtel 4509c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4510c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45111da177e4SLinus Torvalds { 451286872cb5SThomas Graf struct fib6_config cfg; 451386872cb5SThomas Graf int err; 45141da177e4SLinus Torvalds 4515333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 451686872cb5SThomas Graf if (err < 0) 451786872cb5SThomas Graf return err; 451886872cb5SThomas Graf 451951ebd318SNicolas Dichtel if (cfg.fc_mp) 4520333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45210ae81335SDavid Ahern else { 45220ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4523333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45241da177e4SLinus Torvalds } 45250ae81335SDavid Ahern } 45261da177e4SLinus Torvalds 4527c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4528c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45291da177e4SLinus Torvalds { 453086872cb5SThomas Graf struct fib6_config cfg; 453186872cb5SThomas Graf int err; 45321da177e4SLinus Torvalds 4533333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 453486872cb5SThomas Graf if (err < 0) 453586872cb5SThomas Graf return err; 453686872cb5SThomas Graf 453751ebd318SNicolas Dichtel if (cfg.fc_mp) 4538333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 453951ebd318SNicolas Dichtel else 4540acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45411da177e4SLinus Torvalds } 45421da177e4SLinus Torvalds 45438d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4544339bf98fSThomas Graf { 4545beb1afacSDavid Ahern int nexthop_len = 0; 4546beb1afacSDavid Ahern 454793c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4548beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4549beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4550beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 45515e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4552beb1afacSDavid Ahern 455393c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4554beb1afacSDavid Ahern } 4555beb1afacSDavid Ahern 4556339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4557339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4558339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4559339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4560339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4561339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4562339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4563339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4564339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45656a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4566ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4567c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 456819e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 45695e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4570beb1afacSDavid Ahern + nexthop_len; 4571beb1afacSDavid Ahern } 4572beb1afacSDavid Ahern 45738d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 45745be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4575beb1afacSDavid Ahern { 45765e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4577f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4578f9d882eaSIdo Schimmel 45795e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4580beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4581dcd1f572SDavid Ahern 4582dcd1f572SDavid Ahern rcu_read_lock(); 4583dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4584beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4585dcd1f572SDavid Ahern rcu_read_unlock(); 4586beb1afacSDavid Ahern } 4587beb1afacSDavid Ahern 458893c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 45895e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4590beb1afacSDavid Ahern goto nla_put_failure; 4591beb1afacSDavid Ahern } 4592beb1afacSDavid Ahern 45935e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 45945e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 459561e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 459661e4d01eSIdo Schimmel 45975be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 45985e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 45995e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4600beb1afacSDavid Ahern goto nla_put_failure; 4601beb1afacSDavid Ahern 46025e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 46035e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4604beb1afacSDavid Ahern goto nla_put_failure; 4605beb1afacSDavid Ahern 4606beb1afacSDavid Ahern return 0; 4607beb1afacSDavid Ahern 4608beb1afacSDavid Ahern nla_put_failure: 4609beb1afacSDavid Ahern return -EMSGSIZE; 4610beb1afacSDavid Ahern } 4611beb1afacSDavid Ahern 46125be083ceSDavid Ahern /* add multipath next hop */ 46138d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4614beb1afacSDavid Ahern { 46155e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4616beb1afacSDavid Ahern struct rtnexthop *rtnh; 4617beb1afacSDavid Ahern unsigned int flags = 0; 4618beb1afacSDavid Ahern 4619beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4620beb1afacSDavid Ahern if (!rtnh) 4621beb1afacSDavid Ahern goto nla_put_failure; 4622beb1afacSDavid Ahern 46235e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 46245e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4625beb1afacSDavid Ahern 46265be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4627beb1afacSDavid Ahern goto nla_put_failure; 4628beb1afacSDavid Ahern 4629beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4630beb1afacSDavid Ahern 4631beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4632beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4633beb1afacSDavid Ahern 4634beb1afacSDavid Ahern return 0; 4635beb1afacSDavid Ahern 4636beb1afacSDavid Ahern nla_put_failure: 4637beb1afacSDavid Ahern return -EMSGSIZE; 4638339bf98fSThomas Graf } 4639339bf98fSThomas Graf 4640d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46418d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4642d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 464315e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4644f8cfe2ceSDavid Ahern unsigned int flags) 46451da177e4SLinus Torvalds { 464622d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 464722d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 464822d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46491da177e4SLinus Torvalds struct nlmsghdr *nlh; 465022d0bd82SXin Long struct rtmsg *rtm; 4651d4ead6b3SDavid Ahern long expires = 0; 46521da177e4SLinus Torvalds 465315e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 465438308473SDavid S. Miller if (!nlh) 465526932566SPatrick McHardy return -EMSGSIZE; 46562d7202bfSThomas Graf 465722d0bd82SXin Long if (rt6) { 465822d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 465922d0bd82SXin Long rt6_src = &rt6->rt6i_src; 466022d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 466122d0bd82SXin Long } else { 466222d0bd82SXin Long rt6_dst = &rt->fib6_dst; 466322d0bd82SXin Long rt6_src = &rt->fib6_src; 466422d0bd82SXin Long rt6_flags = rt->fib6_flags; 466522d0bd82SXin Long } 466622d0bd82SXin Long 46672d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46681da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 466922d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 467022d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46711da177e4SLinus Torvalds rtm->rtm_tos = 0; 467293c2fb25SDavid Ahern if (rt->fib6_table) 467393c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4674c71099acSThomas Graf else 46759e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 46769e762a4aSPatrick McHardy rtm->rtm_table = table; 4677c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4678c78679e8SDavid S. Miller goto nla_put_failure; 4679e8478e80SDavid Ahern 4680e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46811da177e4SLinus Torvalds rtm->rtm_flags = 0; 46821da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 468393c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 46841da177e4SLinus Torvalds 468522d0bd82SXin Long if (rt6_flags & RTF_CACHE) 46861da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 46871da177e4SLinus Torvalds 4688d4ead6b3SDavid Ahern if (dest) { 4689d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4690c78679e8SDavid S. Miller goto nla_put_failure; 46911da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 46921da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 469322d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4694c78679e8SDavid S. Miller goto nla_put_failure; 46951da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 46961da177e4SLinus Torvalds if (src) { 4697930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4698c78679e8SDavid S. Miller goto nla_put_failure; 46991da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4700c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 470122d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4702c78679e8SDavid S. Miller goto nla_put_failure; 47031da177e4SLinus Torvalds #endif 47047bc570c8SYOSHIFUJI Hideaki if (iif) { 47057bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 470622d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4707fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47082cf75070SNikolay Aleksandrov 47097bc570c8SYOSHIFUJI Hideaki if (err == 0) 47107bc570c8SYOSHIFUJI Hideaki return 0; 4711fd61c6baSDavid Ahern if (err < 0) 47127bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47137bc570c8SYOSHIFUJI Hideaki } else 47147bc570c8SYOSHIFUJI Hideaki #endif 4715c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4716c78679e8SDavid S. Miller goto nla_put_failure; 4717d4ead6b3SDavid Ahern } else if (dest) { 47181da177e4SLinus Torvalds struct in6_addr saddr_buf; 4719d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4720930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4721c78679e8SDavid S. Miller goto nla_put_failure; 4722c3968a85SDaniel Walter } 4723c3968a85SDaniel Walter 472493c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4725c3968a85SDaniel Walter struct in6_addr saddr_buf; 472693c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4727930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4728c78679e8SDavid S. Miller goto nla_put_failure; 47291da177e4SLinus Torvalds } 47302d7202bfSThomas Graf 4731d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4732d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47332d7202bfSThomas Graf goto nla_put_failure; 47342d7202bfSThomas Graf 473593c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4736beb1afacSDavid Ahern goto nla_put_failure; 4737beb1afacSDavid Ahern 4738beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4739beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4740beb1afacSDavid Ahern */ 474122d0bd82SXin Long if (rt6) { 474222d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 474322d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 474422d0bd82SXin Long goto nla_put_failure; 474522d0bd82SXin Long 474622d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 474722d0bd82SXin Long goto nla_put_failure; 474822d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47498d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4750beb1afacSDavid Ahern struct nlattr *mp; 4751beb1afacSDavid Ahern 4752beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4753beb1afacSDavid Ahern if (!mp) 4754beb1afacSDavid Ahern goto nla_put_failure; 4755beb1afacSDavid Ahern 4756beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4757beb1afacSDavid Ahern goto nla_put_failure; 4758beb1afacSDavid Ahern 4759beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 476093c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4761beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 476294f826b8SEric Dumazet goto nla_put_failure; 476394f826b8SEric Dumazet } 47642d7202bfSThomas Graf 4765beb1afacSDavid Ahern nla_nest_end(skb, mp); 4766beb1afacSDavid Ahern } else { 47675be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4768c78679e8SDavid S. Miller goto nla_put_failure; 4769beb1afacSDavid Ahern } 47708253947eSLi Wei 477122d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 477214895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 477314895687SDavid Ahern expires -= jiffies; 477414895687SDavid Ahern } 477569cdf8f9SYOSHIFUJI Hideaki 4776d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4777e3703b3dSThomas Graf goto nla_put_failure; 47781da177e4SLinus Torvalds 477922d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4780c78ba6d6SLubomir Rintel goto nla_put_failure; 4781c78ba6d6SLubomir Rintel 478219e42e45SRoopa Prabhu 4783053c095aSJohannes Berg nlmsg_end(skb, nlh); 4784053c095aSJohannes Berg return 0; 47852d7202bfSThomas Graf 47862d7202bfSThomas Graf nla_put_failure: 478726932566SPatrick McHardy nlmsg_cancel(skb, nlh); 478826932566SPatrick McHardy return -EMSGSIZE; 47891da177e4SLinus Torvalds } 47901da177e4SLinus Torvalds 47918d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 47921da177e4SLinus Torvalds { 47931da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 47941f17e2f2SDavid Ahern struct net *net = arg->net; 47951f17e2f2SDavid Ahern 4796421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 47971f17e2f2SDavid Ahern return 0; 47981da177e4SLinus Torvalds 47992d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 48002d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4801f8cfe2ceSDavid Ahern 4802f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4803f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 480493c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4805f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4806f8cfe2ceSDavid Ahern return 1; 4807f8cfe2ceSDavid Ahern } 4808f8cfe2ceSDavid Ahern } 48091da177e4SLinus Torvalds 4810d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4811d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 4812d4ead6b3SDavid Ahern arg->cb->nlh->nlmsg_seq, NLM_F_MULTI); 48131da177e4SLinus Torvalds } 48141da177e4SLinus Torvalds 4815c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4816c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48171da177e4SLinus Torvalds { 48183b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4819ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 482018c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4821a68886a6SDavid Ahern struct fib6_info *from; 482218c3a61cSRoopa Prabhu struct dst_entry *dst; 48231da177e4SLinus Torvalds struct rt6_info *rt; 4824ab364a6fSThomas Graf struct sk_buff *skb; 4825ab364a6fSThomas Graf struct rtmsg *rtm; 48264c9483b2SDavid S. Miller struct flowi6 fl6; 482718c3a61cSRoopa Prabhu bool fibmatch; 4828ab364a6fSThomas Graf 4829fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4830c21ef3e3SDavid Ahern extack); 4831ab364a6fSThomas Graf if (err < 0) 4832ab364a6fSThomas Graf goto errout; 4833ab364a6fSThomas Graf 4834ab364a6fSThomas Graf err = -EINVAL; 48354c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 483638b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 483738b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 483818c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4839ab364a6fSThomas Graf 4840ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4841ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4842ab364a6fSThomas Graf goto errout; 4843ab364a6fSThomas Graf 48444e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4845ab364a6fSThomas Graf } 4846ab364a6fSThomas Graf 4847ab364a6fSThomas Graf if (tb[RTA_DST]) { 4848ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4849ab364a6fSThomas Graf goto errout; 4850ab364a6fSThomas Graf 48514e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4852ab364a6fSThomas Graf } 4853ab364a6fSThomas Graf 4854ab364a6fSThomas Graf if (tb[RTA_IIF]) 4855ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4856ab364a6fSThomas Graf 4857ab364a6fSThomas Graf if (tb[RTA_OIF]) 485872331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4859ab364a6fSThomas Graf 48602e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48612e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48622e47b291SLorenzo Colitti 4863622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4864622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4865622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4866622ec2c9SLorenzo Colitti else 4867622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4868622ec2c9SLorenzo Colitti 4869eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4870eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4871eacb9384SRoopa Prabhu 4872eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4873eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4874eacb9384SRoopa Prabhu 4875eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4876eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 4877eacb9384SRoopa Prabhu &fl6.flowi6_proto, extack); 4878eacb9384SRoopa Prabhu if (err) 4879eacb9384SRoopa Prabhu goto errout; 4880eacb9384SRoopa Prabhu } 4881eacb9384SRoopa Prabhu 4882ab364a6fSThomas Graf if (iif) { 4883ab364a6fSThomas Graf struct net_device *dev; 488472331bc0SShmulik Ladkani int flags = 0; 488572331bc0SShmulik Ladkani 4886121622dbSFlorian Westphal rcu_read_lock(); 4887121622dbSFlorian Westphal 4888121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4889ab364a6fSThomas Graf if (!dev) { 4890121622dbSFlorian Westphal rcu_read_unlock(); 4891ab364a6fSThomas Graf err = -ENODEV; 4892ab364a6fSThomas Graf goto errout; 4893ab364a6fSThomas Graf } 489472331bc0SShmulik Ladkani 489572331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 489672331bc0SShmulik Ladkani 489772331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 489872331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 489972331bc0SShmulik Ladkani 4900b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4901121622dbSFlorian Westphal 4902121622dbSFlorian Westphal rcu_read_unlock(); 490372331bc0SShmulik Ladkani } else { 490472331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 490572331bc0SShmulik Ladkani 490618c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 490718c3a61cSRoopa Prabhu } 490818c3a61cSRoopa Prabhu 490918c3a61cSRoopa Prabhu 491018c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 491118c3a61cSRoopa Prabhu if (rt->dst.error) { 491218c3a61cSRoopa Prabhu err = rt->dst.error; 491318c3a61cSRoopa Prabhu ip6_rt_put(rt); 491418c3a61cSRoopa Prabhu goto errout; 4915ab364a6fSThomas Graf } 49161da177e4SLinus Torvalds 49179d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49189d6acb3bSWANG Cong err = rt->dst.error; 49199d6acb3bSWANG Cong ip6_rt_put(rt); 49209d6acb3bSWANG Cong goto errout; 49219d6acb3bSWANG Cong } 49229d6acb3bSWANG Cong 49231da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 492438308473SDavid S. Miller if (!skb) { 492594e187c0SAmerigo Wang ip6_rt_put(rt); 4926ab364a6fSThomas Graf err = -ENOBUFS; 4927ab364a6fSThomas Graf goto errout; 4928ab364a6fSThomas Graf } 49291da177e4SLinus Torvalds 4930d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4931a68886a6SDavid Ahern 4932a68886a6SDavid Ahern rcu_read_lock(); 4933a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4934a68886a6SDavid Ahern 493518c3a61cSRoopa Prabhu if (fibmatch) 4936a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 493718c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 493818c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 493918c3a61cSRoopa Prabhu else 4940a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4941a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4942d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4943d4ead6b3SDavid Ahern 0); 4944a68886a6SDavid Ahern rcu_read_unlock(); 4945a68886a6SDavid Ahern 49461da177e4SLinus Torvalds if (err < 0) { 4947ab364a6fSThomas Graf kfree_skb(skb); 4948ab364a6fSThomas Graf goto errout; 49491da177e4SLinus Torvalds } 49501da177e4SLinus Torvalds 495115e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4952ab364a6fSThomas Graf errout: 49531da177e4SLinus Torvalds return err; 49541da177e4SLinus Torvalds } 49551da177e4SLinus Torvalds 49568d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 495737a1d361SRoopa Prabhu unsigned int nlm_flags) 49581da177e4SLinus Torvalds { 49591da177e4SLinus Torvalds struct sk_buff *skb; 49605578689aSDaniel Lezcano struct net *net = info->nl_net; 4961528c4cebSDenis V. Lunev u32 seq; 4962528c4cebSDenis V. Lunev int err; 49630d51aa80SJamal Hadi Salim 4964528c4cebSDenis V. Lunev err = -ENOBUFS; 496538308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 496686872cb5SThomas Graf 496719e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 496838308473SDavid S. Miller if (!skb) 496921713ebcSThomas Graf goto errout; 49701da177e4SLinus Torvalds 4971d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 4972f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 497326932566SPatrick McHardy if (err < 0) { 497426932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 497526932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 497626932566SPatrick McHardy kfree_skb(skb); 497726932566SPatrick McHardy goto errout; 497826932566SPatrick McHardy } 497915e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 49805578689aSDaniel Lezcano info->nlh, gfp_any()); 49811ce85fe4SPablo Neira Ayuso return; 498221713ebcSThomas Graf errout: 498321713ebcSThomas Graf if (err < 0) 49845578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 49851da177e4SLinus Torvalds } 49861da177e4SLinus Torvalds 49878ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4988351638e7SJiri Pirko unsigned long event, void *ptr) 49898ed67789SDaniel Lezcano { 4990351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4991c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 49928ed67789SDaniel Lezcano 4993242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 4994242d3a49SWANG Cong return NOTIFY_OK; 4995242d3a49SWANG Cong 4996242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 4997421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 4998d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 49998ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50008ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5001d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50028ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5003d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50048ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50058ed67789SDaniel Lezcano #endif 500676da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 500776da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 500876da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 500976da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 501076da0704SWANG Cong */ 501112d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5012242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 501312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 501412d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5015242d3a49SWANG Cong #endif 50168ed67789SDaniel Lezcano } 50178ed67789SDaniel Lezcano 50188ed67789SDaniel Lezcano return NOTIFY_OK; 50198ed67789SDaniel Lezcano } 50208ed67789SDaniel Lezcano 50211da177e4SLinus Torvalds /* 50221da177e4SLinus Torvalds * /proc 50231da177e4SLinus Torvalds */ 50241da177e4SLinus Torvalds 50251da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50261da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50271da177e4SLinus Torvalds { 502869ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50291da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 503069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 503169ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 503281eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 503369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 503469ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5035fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 503669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50371da177e4SLinus Torvalds 50381da177e4SLinus Torvalds return 0; 50391da177e4SLinus Torvalds } 50401da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50411da177e4SLinus Torvalds 50421da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50431da177e4SLinus Torvalds 50441da177e4SLinus Torvalds static 5045fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50461da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50471da177e4SLinus Torvalds { 5048c486da34SLucian Adrian Grijincu struct net *net; 5049c486da34SLucian Adrian Grijincu int delay; 5050c486da34SLucian Adrian Grijincu if (!write) 5051c486da34SLucian Adrian Grijincu return -EINVAL; 5052c486da34SLucian Adrian Grijincu 5053c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5054c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 50558d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 50562ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50571da177e4SLinus Torvalds return 0; 50581da177e4SLinus Torvalds } 50591da177e4SLinus Torvalds 5060fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 50611da177e4SLinus Torvalds { 50621da177e4SLinus Torvalds .procname = "flush", 50634990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 50641da177e4SLinus Torvalds .maxlen = sizeof(int), 506589c8b3a1SDave Jones .mode = 0200, 50666d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 50671da177e4SLinus Torvalds }, 50681da177e4SLinus Torvalds { 50691da177e4SLinus Torvalds .procname = "gc_thresh", 50709a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 50711da177e4SLinus Torvalds .maxlen = sizeof(int), 50721da177e4SLinus Torvalds .mode = 0644, 50736d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50741da177e4SLinus Torvalds }, 50751da177e4SLinus Torvalds { 50761da177e4SLinus Torvalds .procname = "max_size", 50774990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 50781da177e4SLinus Torvalds .maxlen = sizeof(int), 50791da177e4SLinus Torvalds .mode = 0644, 50806d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50811da177e4SLinus Torvalds }, 50821da177e4SLinus Torvalds { 50831da177e4SLinus Torvalds .procname = "gc_min_interval", 50844990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 50851da177e4SLinus Torvalds .maxlen = sizeof(int), 50861da177e4SLinus Torvalds .mode = 0644, 50876d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50881da177e4SLinus Torvalds }, 50891da177e4SLinus Torvalds { 50901da177e4SLinus Torvalds .procname = "gc_timeout", 50914990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 50921da177e4SLinus Torvalds .maxlen = sizeof(int), 50931da177e4SLinus Torvalds .mode = 0644, 50946d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50951da177e4SLinus Torvalds }, 50961da177e4SLinus Torvalds { 50971da177e4SLinus Torvalds .procname = "gc_interval", 50984990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 50991da177e4SLinus Torvalds .maxlen = sizeof(int), 51001da177e4SLinus Torvalds .mode = 0644, 51016d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51021da177e4SLinus Torvalds }, 51031da177e4SLinus Torvalds { 51041da177e4SLinus Torvalds .procname = "gc_elasticity", 51054990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51061da177e4SLinus Torvalds .maxlen = sizeof(int), 51071da177e4SLinus Torvalds .mode = 0644, 5108f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51091da177e4SLinus Torvalds }, 51101da177e4SLinus Torvalds { 51111da177e4SLinus Torvalds .procname = "mtu_expires", 51124990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51131da177e4SLinus Torvalds .maxlen = sizeof(int), 51141da177e4SLinus Torvalds .mode = 0644, 51156d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51161da177e4SLinus Torvalds }, 51171da177e4SLinus Torvalds { 51181da177e4SLinus Torvalds .procname = "min_adv_mss", 51194990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51201da177e4SLinus Torvalds .maxlen = sizeof(int), 51211da177e4SLinus Torvalds .mode = 0644, 5122f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51231da177e4SLinus Torvalds }, 51241da177e4SLinus Torvalds { 51251da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51264990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51271da177e4SLinus Torvalds .maxlen = sizeof(int), 51281da177e4SLinus Torvalds .mode = 0644, 51296d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51301da177e4SLinus Torvalds }, 5131f8572d8fSEric W. Biederman { } 51321da177e4SLinus Torvalds }; 51331da177e4SLinus Torvalds 51342c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5135760f2d01SDaniel Lezcano { 5136760f2d01SDaniel Lezcano struct ctl_table *table; 5137760f2d01SDaniel Lezcano 5138760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5139760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5140760f2d01SDaniel Lezcano GFP_KERNEL); 51415ee09105SYOSHIFUJI Hideaki 51425ee09105SYOSHIFUJI Hideaki if (table) { 51435ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5144c486da34SLucian Adrian Grijincu table[0].extra1 = net; 514586393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51465ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51475ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51485ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 51495ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 51505ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 51515ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 51525ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 51539c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 5154464dc801SEric W. Biederman 5155464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5156464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5157464dc801SEric W. Biederman table[0].procname = NULL; 51585ee09105SYOSHIFUJI Hideaki } 51595ee09105SYOSHIFUJI Hideaki 5160760f2d01SDaniel Lezcano return table; 5161760f2d01SDaniel Lezcano } 51621da177e4SLinus Torvalds #endif 51631da177e4SLinus Torvalds 51642c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5165cdb18761SDaniel Lezcano { 5166633d424bSPavel Emelyanov int ret = -ENOMEM; 51678ed67789SDaniel Lezcano 516886393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 516986393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5170f2fc6a54SBenjamin Thery 5171fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5172fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5173fc66f95cSEric Dumazet 5174421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5175421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5176421842edSDavid Ahern GFP_KERNEL); 5177421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5178421842edSDavid Ahern goto out_ip6_dst_entries; 5179421842edSDavid Ahern 51808ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 51818ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 51828ed67789SDaniel Lezcano GFP_KERNEL); 51838ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5184421842edSDavid Ahern goto out_fib6_null_entry; 5185d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 518662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 518762fa8a84SDavid S. Miller ip6_template_metrics, true); 51888ed67789SDaniel Lezcano 51898ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5190feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 51918ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 51928ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 51938ed67789SDaniel Lezcano GFP_KERNEL); 519468fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 519568fffc67SPeter Zijlstra goto out_ip6_null_entry; 5196d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 519762fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 519862fa8a84SDavid S. Miller ip6_template_metrics, true); 51998ed67789SDaniel Lezcano 52008ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52018ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52028ed67789SDaniel Lezcano GFP_KERNEL); 520368fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 520468fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5205d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 520662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 520762fa8a84SDavid S. Miller ip6_template_metrics, true); 52088ed67789SDaniel Lezcano #endif 52098ed67789SDaniel Lezcano 5210b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5211b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5212b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5213b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5214b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5215b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5216b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5217b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 5218b339a47cSPeter Zijlstra 52196891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52206891a346SBenjamin Thery 52218ed67789SDaniel Lezcano ret = 0; 52228ed67789SDaniel Lezcano out: 52238ed67789SDaniel Lezcano return ret; 5224f2fc6a54SBenjamin Thery 522568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 522668fffc67SPeter Zijlstra out_ip6_prohibit_entry: 522768fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 522868fffc67SPeter Zijlstra out_ip6_null_entry: 522968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 523068fffc67SPeter Zijlstra #endif 5231421842edSDavid Ahern out_fib6_null_entry: 5232421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5233fc66f95cSEric Dumazet out_ip6_dst_entries: 5234fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5235f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5236f2fc6a54SBenjamin Thery goto out; 5237cdb18761SDaniel Lezcano } 5238cdb18761SDaniel Lezcano 52392c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5240cdb18761SDaniel Lezcano { 5241421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52428ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52438ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52448ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52458ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 52468ed67789SDaniel Lezcano #endif 524741bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5248cdb18761SDaniel Lezcano } 5249cdb18761SDaniel Lezcano 5250d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5251d189634eSThomas Graf { 5252d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5253c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5254c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 52553617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 52563617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5257d189634eSThomas Graf #endif 5258d189634eSThomas Graf return 0; 5259d189634eSThomas Graf } 5260d189634eSThomas Graf 5261d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5262d189634eSThomas Graf { 5263d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5264ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5265ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5266d189634eSThomas Graf #endif 5267d189634eSThomas Graf } 5268d189634eSThomas Graf 5269cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5270cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5271cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5272cdb18761SDaniel Lezcano }; 5273cdb18761SDaniel Lezcano 5274c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5275c3426b47SDavid S. Miller { 5276c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5277c3426b47SDavid S. Miller 5278c3426b47SDavid S. Miller if (!bp) 5279c3426b47SDavid S. Miller return -ENOMEM; 5280c3426b47SDavid S. Miller inet_peer_base_init(bp); 5281c3426b47SDavid S. Miller net->ipv6.peers = bp; 5282c3426b47SDavid S. Miller return 0; 5283c3426b47SDavid S. Miller } 5284c3426b47SDavid S. Miller 5285c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5286c3426b47SDavid S. Miller { 5287c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5288c3426b47SDavid S. Miller 5289c3426b47SDavid S. Miller net->ipv6.peers = NULL; 529056a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5291c3426b47SDavid S. Miller kfree(bp); 5292c3426b47SDavid S. Miller } 5293c3426b47SDavid S. Miller 52942b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5295c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5296c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5297c3426b47SDavid S. Miller }; 5298c3426b47SDavid S. Miller 5299d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5300d189634eSThomas Graf .init = ip6_route_net_init_late, 5301d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5302d189634eSThomas Graf }; 5303d189634eSThomas Graf 53048ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53058ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5306242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53078ed67789SDaniel Lezcano }; 53088ed67789SDaniel Lezcano 53092f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53102f460933SWANG Cong { 53112f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53122f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53132f460933SWANG Cong * manually for init_net */ 5314421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 53152f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53162f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53172f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53182f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53192f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53202f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53212f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53222f460933SWANG Cong #endif 53232f460933SWANG Cong } 53242f460933SWANG Cong 5325433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53261da177e4SLinus Torvalds { 5327433d49c3SDaniel Lezcano int ret; 53288d0b94afSMartin KaFai Lau int cpu; 5329433d49c3SDaniel Lezcano 53309a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53319a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53329a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53339a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53349a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5335c19a28e1SFernando Carrijo goto out; 533614e50e57SDavid S. Miller 5337fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53388ed67789SDaniel Lezcano if (ret) 5339bdb3289fSDaniel Lezcano goto out_kmem_cache; 5340bdb3289fSDaniel Lezcano 5341c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5342c3426b47SDavid S. Miller if (ret) 5343e8803b6cSDavid S. Miller goto out_dst_entries; 53442a0c451aSThomas Graf 53457e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 53467e52b33bSDavid S. Miller if (ret) 53477e52b33bSDavid S. Miller goto out_register_inetpeer; 5348c3426b47SDavid S. Miller 53495dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 53505dc121e9SArnaud Ebalard 5351e8803b6cSDavid S. Miller ret = fib6_init(); 5352433d49c3SDaniel Lezcano if (ret) 53538ed67789SDaniel Lezcano goto out_register_subsys; 5354433d49c3SDaniel Lezcano 5355433d49c3SDaniel Lezcano ret = xfrm6_init(); 5356433d49c3SDaniel Lezcano if (ret) 5357e8803b6cSDavid S. Miller goto out_fib6_init; 5358c35b7e72SDaniel Lezcano 5359433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5360433d49c3SDaniel Lezcano if (ret) 5361433d49c3SDaniel Lezcano goto xfrm6_init; 53627e5449c2SDaniel Lezcano 5363d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5364d189634eSThomas Graf if (ret) 5365d189634eSThomas Graf goto fib6_rules_init; 5366d189634eSThomas Graf 536716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 536816feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 536916feebcfSFlorian Westphal if (ret < 0) 537016feebcfSFlorian Westphal goto out_register_late_subsys; 537116feebcfSFlorian Westphal 537216feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 537316feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 537416feebcfSFlorian Westphal if (ret < 0) 537516feebcfSFlorian Westphal goto out_register_late_subsys; 537616feebcfSFlorian Westphal 537716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 537816feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 537916feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 538016feebcfSFlorian Westphal if (ret < 0) 5381d189634eSThomas Graf goto out_register_late_subsys; 5382433d49c3SDaniel Lezcano 53838ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5384cdb18761SDaniel Lezcano if (ret) 5385d189634eSThomas Graf goto out_register_late_subsys; 53868ed67789SDaniel Lezcano 53878d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 53888d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 53898d0b94afSMartin KaFai Lau 53908d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 53918d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 53928d0b94afSMartin KaFai Lau } 53938d0b94afSMartin KaFai Lau 5394433d49c3SDaniel Lezcano out: 5395433d49c3SDaniel Lezcano return ret; 5396433d49c3SDaniel Lezcano 5397d189634eSThomas Graf out_register_late_subsys: 539816feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5399d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5400433d49c3SDaniel Lezcano fib6_rules_init: 5401433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5402433d49c3SDaniel Lezcano xfrm6_init: 5403433d49c3SDaniel Lezcano xfrm6_fini(); 54042a0c451aSThomas Graf out_fib6_init: 54052a0c451aSThomas Graf fib6_gc_cleanup(); 54068ed67789SDaniel Lezcano out_register_subsys: 54078ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54087e52b33bSDavid S. Miller out_register_inetpeer: 54097e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5410fc66f95cSEric Dumazet out_dst_entries: 5411fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5412433d49c3SDaniel Lezcano out_kmem_cache: 5413f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5414433d49c3SDaniel Lezcano goto out; 54151da177e4SLinus Torvalds } 54161da177e4SLinus Torvalds 54171da177e4SLinus Torvalds void ip6_route_cleanup(void) 54181da177e4SLinus Torvalds { 54198ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5420d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5421101367c2SThomas Graf fib6_rules_cleanup(); 54221da177e4SLinus Torvalds xfrm6_fini(); 54231da177e4SLinus Torvalds fib6_gc_cleanup(); 5424c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54258ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 542641bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5427f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54281da177e4SLinus Torvalds } 5429