11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66b811580dSDavid Ahern #include <trace/events/fib6.h> 671da177e4SLinus Torvalds 687c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 691da177e4SLinus Torvalds 701da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 711da177e4SLinus Torvalds #include <linux/sysctl.h> 721da177e4SLinus Torvalds #endif 731da177e4SLinus Torvalds 74afc154e9SHannes Frederic Sowa enum rt6_nud_state { 757e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 767e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 777e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 78afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 79afc154e9SHannes Frederic Sowa }; 80afc154e9SHannes Frederic Sowa 811da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 820dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 83ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 841da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 851da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 861da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 871da177e4SLinus Torvalds struct net_device *dev, int how); 88569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 891da177e4SLinus Torvalds 901da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 91ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 927150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 93ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 941da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 956700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 966700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 976700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 986700c270SDavid S. Miller struct sk_buff *skb); 998d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1008d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 101d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1028d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 103d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 10416a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 10516a16cd3SDavid Ahern unsigned int flags); 1068d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 10735732d01SWei Wang struct in6_addr *daddr, 10835732d01SWei Wang struct in6_addr *saddr); 1091da177e4SLinus Torvalds 11070ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1118d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 112b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 113830218c1SDavid Ahern const struct in6_addr *gwaddr, 114830218c1SDavid Ahern struct net_device *dev, 11595c96174SEric Dumazet unsigned int pref); 1168d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 117b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 118830218c1SDavid Ahern const struct in6_addr *gwaddr, 119830218c1SDavid Ahern struct net_device *dev); 12070ceb4f5SYOSHIFUJI Hideaki #endif 12170ceb4f5SYOSHIFUJI Hideaki 1228d0b94afSMartin KaFai Lau struct uncached_list { 1238d0b94afSMartin KaFai Lau spinlock_t lock; 1248d0b94afSMartin KaFai Lau struct list_head head; 1258d0b94afSMartin KaFai Lau }; 1268d0b94afSMartin KaFai Lau 1278d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1288d0b94afSMartin KaFai Lau 129510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1308d0b94afSMartin KaFai Lau { 1318d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1348d0b94afSMartin KaFai Lau 1358d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1368d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1378d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1388d0b94afSMartin KaFai Lau } 1398d0b94afSMartin KaFai Lau 140510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1418d0b94afSMartin KaFai Lau { 1428d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1438d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 14481eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1458d0b94afSMartin KaFai Lau 1468d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1478d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 14881eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1498d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1508d0b94afSMartin KaFai Lau } 1518d0b94afSMartin KaFai Lau } 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1548d0b94afSMartin KaFai Lau { 1558d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1568d0b94afSMartin KaFai Lau int cpu; 1578d0b94afSMartin KaFai Lau 158e332bc67SEric W. Biederman if (dev == loopback_dev) 159e332bc67SEric W. Biederman return; 160e332bc67SEric W. Biederman 1618d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1628d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1638d0b94afSMartin KaFai Lau struct rt6_info *rt; 1648d0b94afSMartin KaFai Lau 1658d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1668d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1678d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1688d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1698d0b94afSMartin KaFai Lau 170e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1718d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1728d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1738d0b94afSMartin KaFai Lau } 1748d0b94afSMartin KaFai Lau 175e332bc67SEric W. Biederman if (rt_dev == dev) { 1768d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1778d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1788d0b94afSMartin KaFai Lau dev_put(rt_dev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1828d0b94afSMartin KaFai Lau } 1838d0b94afSMartin KaFai Lau } 1848d0b94afSMartin KaFai Lau 185f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 186f894cbf8SDavid S. Miller struct sk_buff *skb, 187f894cbf8SDavid S. Miller const void *daddr) 18839232973SDavid S. Miller { 189a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19039232973SDavid S. Miller return (const void *) p; 191f894cbf8SDavid S. Miller else if (skb) 192f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19339232973SDavid S. Miller return daddr; 19439232973SDavid S. Miller } 19539232973SDavid S. Miller 196f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 197f8a1b43bSDavid Ahern struct net_device *dev, 198f894cbf8SDavid S. Miller struct sk_buff *skb, 199f894cbf8SDavid S. Miller const void *daddr) 200d3aaeb38SDavid S. Miller { 20139232973SDavid S. Miller struct neighbour *n; 20239232973SDavid S. Miller 203f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 204f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 205f83c7790SDavid S. Miller if (n) 206f83c7790SDavid S. Miller return n; 207f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 208f8a1b43bSDavid Ahern } 209f8a1b43bSDavid Ahern 210f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 211f8a1b43bSDavid Ahern struct sk_buff *skb, 212f8a1b43bSDavid Ahern const void *daddr) 213f8a1b43bSDavid Ahern { 214f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 217f83c7790SDavid S. Miller } 218f83c7790SDavid S. Miller 21963fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22063fca65dSJulian Anastasov { 22163fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22263fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22363fca65dSJulian Anastasov 224f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 22563fca65dSJulian Anastasov if (!daddr) 22663fca65dSJulian Anastasov return; 22763fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 22863fca65dSJulian Anastasov return; 22963fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23063fca65dSJulian Anastasov return; 23163fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23263fca65dSJulian Anastasov } 23363fca65dSJulian Anastasov 2349a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2351da177e4SLinus Torvalds .family = AF_INET6, 2361da177e4SLinus Torvalds .gc = ip6_dst_gc, 2371da177e4SLinus Torvalds .gc_thresh = 1024, 2381da177e4SLinus Torvalds .check = ip6_dst_check, 2390dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 240ebb762f2SSteffen Klassert .mtu = ip6_mtu, 241d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2421da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2431da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2441da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2451da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2461da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2476e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2489f8955ccSEric W. Biederman .local_out = __ip6_local_out, 249f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25063fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2511da177e4SLinus Torvalds }; 2521da177e4SLinus Torvalds 253ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 254ec831ea7SRoland Dreier { 255618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 256618f9bc7SSteffen Klassert 257618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 258ec831ea7SRoland Dreier } 259ec831ea7SRoland Dreier 2606700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2616700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26214e50e57SDavid S. Miller { 26314e50e57SDavid S. Miller } 26414e50e57SDavid S. Miller 2656700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2666700c270SDavid S. Miller struct sk_buff *skb) 267b587ee3bSDavid S. Miller { 268b587ee3bSDavid S. Miller } 269b587ee3bSDavid S. Miller 27014e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27114e50e57SDavid S. Miller .family = AF_INET6, 27214e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27314e50e57SDavid S. Miller .check = ip6_dst_check, 274ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 275214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 27614e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 277b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2780a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 279f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28014e50e57SDavid S. Miller }; 28114e50e57SDavid S. Miller 28262fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28314edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 28462fa8a84SDavid S. Miller }; 28562fa8a84SDavid S. Miller 2868d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 28793c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 28893c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 28993c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29093c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 291421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 292421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 293421842edSDavid Ahern }; 294421842edSDavid Ahern 295fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 2961da177e4SLinus Torvalds .dst = { 2971da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 2981da177e4SLinus Torvalds .__use = 1, 2992c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3001da177e4SLinus Torvalds .error = -ENETUNREACH, 3011da177e4SLinus Torvalds .input = ip6_pkt_discard, 3021da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3031da177e4SLinus Torvalds }, 3041da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3051da177e4SLinus Torvalds }; 3061da177e4SLinus Torvalds 307101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 308101367c2SThomas Graf 309fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 310101367c2SThomas Graf .dst = { 311101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 312101367c2SThomas Graf .__use = 1, 3132c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 314101367c2SThomas Graf .error = -EACCES, 3159ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3169ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 317101367c2SThomas Graf }, 318101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 319101367c2SThomas Graf }; 320101367c2SThomas Graf 321fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 322101367c2SThomas Graf .dst = { 323101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 324101367c2SThomas Graf .__use = 1, 3252c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 326101367c2SThomas Graf .error = -EINVAL, 327352e512cSHerbert Xu .input = dst_discard, 328ede2059dSEric W. Biederman .output = dst_discard_out, 329101367c2SThomas Graf }, 330101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 331101367c2SThomas Graf }; 332101367c2SThomas Graf 333101367c2SThomas Graf #endif 334101367c2SThomas Graf 335ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 336ebfa45f0SMartin KaFai Lau { 337ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 338ebfa45f0SMartin KaFai Lau 339ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 340ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 341ebfa45f0SMartin KaFai Lau } 342ebfa45f0SMartin KaFai Lau 3431da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 34493531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 345ad706862SMartin KaFai Lau int flags) 3461da177e4SLinus Torvalds { 34797bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 348b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 349cf911662SDavid S. Miller 35081eb8447SWei Wang if (rt) { 351ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35281eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35381eb8447SWei Wang } 3548104891bSSteffen Klassert 355cf911662SDavid S. Miller return rt; 3561da177e4SLinus Torvalds } 3579ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 358d52d3997SMartin KaFai Lau 3591da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3601da177e4SLinus Torvalds { 3611da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3628d1c802bSDavid Ahern struct fib6_info *from = rt->from; 3638d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3641da177e4SLinus Torvalds 3658e2ec639SYan, Zheng dst_destroy_metrics_generic(dst); 3668d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3678d0b94afSMartin KaFai Lau 3688d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 36938308473SDavid S. Miller if (idev) { 3701da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3711da177e4SLinus Torvalds in6_dev_put(idev); 3721da177e4SLinus Torvalds } 373d4ead6b3SDavid Ahern 3743a2232e9SDavid Miller rt->from = NULL; 37593531c67SDavid Ahern fib6_info_release(from); 376b3419363SDavid S. Miller } 377b3419363SDavid S. Miller 3781da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3791da177e4SLinus Torvalds int how) 3801da177e4SLinus Torvalds { 3811da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3821da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3835a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 384c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3851da177e4SLinus Torvalds 386e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 387e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 38838308473SDavid S. Miller if (loopback_idev) { 3891da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 3901da177e4SLinus Torvalds in6_dev_put(idev); 3911da177e4SLinus Torvalds } 3921da177e4SLinus Torvalds } 39397cac082SDavid S. Miller } 3941da177e4SLinus Torvalds 3955973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 3965973fb1eSMartin KaFai Lau { 3975973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 3985973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 3995973fb1eSMartin KaFai Lau else 4005973fb1eSMartin KaFai Lau return false; 4015973fb1eSMartin KaFai Lau } 4025973fb1eSMartin KaFai Lau 403a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4041da177e4SLinus Torvalds { 4051716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4061716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 407a50feda5SEric Dumazet return true; 4083a2232e9SDavid Miller } else if (rt->from) { 4091e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 41014895687SDavid Ahern fib6_check_expired(rt->from); 4111716a961SGao feng } 412a50feda5SEric Dumazet return false; 4131da177e4SLinus Torvalds } 4141da177e4SLinus Torvalds 4158d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_select(const struct net *net, 4168d1c802bSDavid Ahern struct fib6_info *match, 41752bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 418b75cc8f9SDavid Ahern const struct sk_buff *skb, 41952bd4c0cSNicolas Dichtel int strict) 42051ebd318SNicolas Dichtel { 4218d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 42251ebd318SNicolas Dichtel 423b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 424b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 425b673d6ccSJakub Sitnicki */ 426b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 427b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 428b673d6ccSJakub Sitnicki 4295e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4303d709f69SIdo Schimmel return match; 431bbfcd776SIdo Schimmel 43293c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 43393c2fb25SDavid Ahern fib6_siblings) { 4345e670d84SDavid Ahern int nh_upper_bound; 4355e670d84SDavid Ahern 4365e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4375e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4383d709f69SIdo Schimmel continue; 43952bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 44052bd4c0cSNicolas Dichtel break; 44151ebd318SNicolas Dichtel match = sibling; 44251ebd318SNicolas Dichtel break; 44351ebd318SNicolas Dichtel } 4443d709f69SIdo Schimmel 44551ebd318SNicolas Dichtel return match; 44651ebd318SNicolas Dichtel } 44751ebd318SNicolas Dichtel 4481da177e4SLinus Torvalds /* 44966f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4501da177e4SLinus Torvalds */ 4511da177e4SLinus Torvalds 4528d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4538d1c802bSDavid Ahern struct fib6_info *rt, 454b71d1d42SEric Dumazet const struct in6_addr *saddr, 4551da177e4SLinus Torvalds int oif, 456d420895eSYOSHIFUJI Hideaki int flags) 4571da177e4SLinus Torvalds { 4588d1c802bSDavid Ahern struct fib6_info *sprt; 4591da177e4SLinus Torvalds 4605e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4615e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4628067bb8cSIdo Schimmel return rt; 463dd3abc4eSYOSHIFUJI Hideaki 464071fb37eSDavid Miller for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) { 4655e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 466dd3abc4eSYOSHIFUJI Hideaki 4675e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4688067bb8cSIdo Schimmel continue; 4698067bb8cSIdo Schimmel 470dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4711da177e4SLinus Torvalds if (dev->ifindex == oif) 4721da177e4SLinus Torvalds return sprt; 473dd3abc4eSYOSHIFUJI Hideaki } else { 474dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 475dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 476dd3abc4eSYOSHIFUJI Hideaki return sprt; 477dd3abc4eSYOSHIFUJI Hideaki } 4781da177e4SLinus Torvalds } 4791da177e4SLinus Torvalds 480eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 481421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4828067bb8cSIdo Schimmel 483421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 4841da177e4SLinus Torvalds } 4851da177e4SLinus Torvalds 48627097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 487c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 488c2f17e82SHannes Frederic Sowa struct work_struct work; 489c2f17e82SHannes Frederic Sowa struct in6_addr target; 490c2f17e82SHannes Frederic Sowa struct net_device *dev; 491c2f17e82SHannes Frederic Sowa }; 492c2f17e82SHannes Frederic Sowa 493c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 494c2f17e82SHannes Frederic Sowa { 495c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 496c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 497c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 498c2f17e82SHannes Frederic Sowa 499c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 500adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 501c2f17e82SHannes Frederic Sowa dev_put(work->dev); 502662f5533SMichael Büsch kfree(work); 503c2f17e82SHannes Frederic Sowa } 504c2f17e82SHannes Frederic Sowa 5058d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 50627097255SYOSHIFUJI Hideaki { 507990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 5085e670d84SDavid Ahern const struct in6_addr *nh_gw; 509f2c31e32SEric Dumazet struct neighbour *neigh; 5105e670d84SDavid Ahern struct net_device *dev; 5115e670d84SDavid Ahern 51227097255SYOSHIFUJI Hideaki /* 51327097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 51427097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 51527097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 51627097255SYOSHIFUJI Hideaki * 51727097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 51827097255SYOSHIFUJI Hideaki * to no more than one per minute. 51927097255SYOSHIFUJI Hideaki */ 52093c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 521fdd6681dSAmerigo Wang return; 5225e670d84SDavid Ahern 5235e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5245e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5252152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5265e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5272152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 528dcd1f572SDavid Ahern struct inet6_dev *idev; 529dcd1f572SDavid Ahern 5308d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5318d6c31bfSMartin KaFai Lau goto out; 5328d6c31bfSMartin KaFai Lau 533dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 534990edb42SMartin KaFai Lau work = NULL; 5352152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 536990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 537990edb42SMartin KaFai Lau time_after(jiffies, 538dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 539c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 540990edb42SMartin KaFai Lau if (work) 5417e980569SJiri Benc __neigh_set_probe_once(neigh); 542990edb42SMartin KaFai Lau } 543c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 544990edb42SMartin KaFai Lau } else { 545990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 546990edb42SMartin KaFai Lau } 547c2f17e82SHannes Frederic Sowa 548c2f17e82SHannes Frederic Sowa if (work) { 549c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5505e670d84SDavid Ahern work->target = *nh_gw; 5515e670d84SDavid Ahern dev_hold(dev); 5525e670d84SDavid Ahern work->dev = dev; 553c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 554c2f17e82SHannes Frederic Sowa } 555990edb42SMartin KaFai Lau 5568d6c31bfSMartin KaFai Lau out: 5572152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 558f2c31e32SEric Dumazet } 55927097255SYOSHIFUJI Hideaki #else 5608d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 56127097255SYOSHIFUJI Hideaki { 56227097255SYOSHIFUJI Hideaki } 56327097255SYOSHIFUJI Hideaki #endif 56427097255SYOSHIFUJI Hideaki 5651da177e4SLinus Torvalds /* 566554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5671da177e4SLinus Torvalds */ 5688d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5691da177e4SLinus Torvalds { 5705e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5715e670d84SDavid Ahern 572161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 573554cfb7eSYOSHIFUJI Hideaki return 2; 574554cfb7eSYOSHIFUJI Hideaki return 0; 5751da177e4SLinus Torvalds } 5761da177e4SLinus Torvalds 5778d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5781da177e4SLinus Torvalds { 579afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5805e670d84SDavid Ahern struct neighbour *neigh; 581f2c31e32SEric Dumazet 58293c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 58393c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 584afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 585145a3621SYOSHIFUJI Hideaki / 吉藤英明 586145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5875e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 5885e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 589145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 590145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 591554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 592afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 593398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 594a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 595afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 5967e980569SJiri Benc else 5977e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 598398bcbebSYOSHIFUJI Hideaki #endif 599145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 600afc154e9SHannes Frederic Sowa } else { 601afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6027e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 603a5a81f0bSPaul Marks } 604145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 605145a3621SYOSHIFUJI Hideaki / 吉藤英明 606a5a81f0bSPaul Marks return ret; 6071da177e4SLinus Torvalds } 6081da177e4SLinus Torvalds 6098d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 610554cfb7eSYOSHIFUJI Hideaki { 611a5a81f0bSPaul Marks int m; 6124d0c5911SYOSHIFUJI Hideaki 6134d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 61477d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 615afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 616ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 61793c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 618ebacaaa0SYOSHIFUJI Hideaki #endif 619afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 620afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 621afc154e9SHannes Frederic Sowa if (n < 0) 622afc154e9SHannes Frederic Sowa return n; 623afc154e9SHannes Frederic Sowa } 624554cfb7eSYOSHIFUJI Hideaki return m; 625554cfb7eSYOSHIFUJI Hideaki } 626554cfb7eSYOSHIFUJI Hideaki 627dcd1f572SDavid Ahern /* called with rc_read_lock held */ 628dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 629dcd1f572SDavid Ahern { 630dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 631dcd1f572SDavid Ahern bool rc = false; 632dcd1f572SDavid Ahern 633dcd1f572SDavid Ahern if (dev) { 634dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 635dcd1f572SDavid Ahern 636dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 637dcd1f572SDavid Ahern } 638dcd1f572SDavid Ahern 639dcd1f572SDavid Ahern return rc; 640dcd1f572SDavid Ahern } 641dcd1f572SDavid Ahern 6428d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6438d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 644afc154e9SHannes Frederic Sowa bool *do_rr) 645554cfb7eSYOSHIFUJI Hideaki { 646554cfb7eSYOSHIFUJI Hideaki int m; 647afc154e9SHannes Frederic Sowa bool match_do_rr = false; 64835103d11SAndy Gospodarek 6495e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6508067bb8cSIdo Schimmel goto out; 6518067bb8cSIdo Schimmel 652dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6535e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 654d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 65535103d11SAndy Gospodarek goto out; 656554cfb7eSYOSHIFUJI Hideaki 65714895687SDavid Ahern if (fib6_check_expired(rt)) 658f11e6659SDavid S. Miller goto out; 659554cfb7eSYOSHIFUJI Hideaki 660554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6617e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 662afc154e9SHannes Frederic Sowa match_do_rr = true; 663afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6647e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 665f11e6659SDavid S. Miller goto out; 6661da177e4SLinus Torvalds } 667f11e6659SDavid S. Miller 668afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 669afc154e9SHannes Frederic Sowa rt6_probe(rt); 670afc154e9SHannes Frederic Sowa 6717e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 672afc154e9SHannes Frederic Sowa if (m > *mpri) { 673afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 674afc154e9SHannes Frederic Sowa *mpri = m; 675afc154e9SHannes Frederic Sowa match = rt; 676afc154e9SHannes Frederic Sowa } 677f11e6659SDavid S. Miller out: 678f11e6659SDavid S. Miller return match; 6791da177e4SLinus Torvalds } 6801da177e4SLinus Torvalds 6818d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6828d1c802bSDavid Ahern struct fib6_info *leaf, 6838d1c802bSDavid Ahern struct fib6_info *rr_head, 684afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 685afc154e9SHannes Frederic Sowa bool *do_rr) 686f11e6659SDavid S. Miller { 6878d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 688f11e6659SDavid S. Miller int mpri = -1; 689f11e6659SDavid S. Miller 690f11e6659SDavid S. Miller match = NULL; 6919fbdcfafSSteffen Klassert cont = NULL; 692071fb37eSDavid Miller for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) { 69393c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 6949fbdcfafSSteffen Klassert cont = rt; 6959fbdcfafSSteffen Klassert break; 6969fbdcfafSSteffen Klassert } 6979fbdcfafSSteffen Klassert 698afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 6999fbdcfafSSteffen Klassert } 7009fbdcfafSSteffen Klassert 70166f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 702071fb37eSDavid Miller rt = rcu_dereference(rt->rt6_next)) { 70393c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7049fbdcfafSSteffen Klassert cont = rt; 7059fbdcfafSSteffen Klassert break; 7069fbdcfafSSteffen Klassert } 7079fbdcfafSSteffen Klassert 7089fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7099fbdcfafSSteffen Klassert } 7109fbdcfafSSteffen Klassert 7119fbdcfafSSteffen Klassert if (match || !cont) 7129fbdcfafSSteffen Klassert return match; 7139fbdcfafSSteffen Klassert 714071fb37eSDavid Miller for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next)) 715afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 716f11e6659SDavid S. Miller 717f11e6659SDavid S. Miller return match; 718f11e6659SDavid S. Miller } 719f11e6659SDavid S. Miller 7208d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7218d1040e8SWei Wang int oif, int strict) 722f11e6659SDavid S. Miller { 7238d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7248d1c802bSDavid Ahern struct fib6_info *match, *rt0; 725afc154e9SHannes Frederic Sowa bool do_rr = false; 72617ecf590SWei Wang int key_plen; 727f11e6659SDavid S. Miller 728421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 729421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7308d1040e8SWei Wang 73166f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 732f11e6659SDavid S. Miller if (!rt0) 73366f5d6ceSWei Wang rt0 = leaf; 734f11e6659SDavid S. Miller 73517ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 73617ecf590SWei Wang * and fn->leaf does not points to its child's leaf 73717ecf590SWei Wang * (This might happen if all routes under fn are deleted from 73817ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 73917ecf590SWei Wang */ 74093c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 74117ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 74293c2fb25SDavid Ahern if (rt0->fib6_src.plen) 74393c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 74417ecf590SWei Wang #endif 74517ecf590SWei Wang if (fn->fn_bit != key_plen) 746421842edSDavid Ahern return net->ipv6.fib6_null_entry; 74717ecf590SWei Wang 74893c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 749afc154e9SHannes Frederic Sowa &do_rr); 750f11e6659SDavid S. Miller 751afc154e9SHannes Frederic Sowa if (do_rr) { 7528d1c802bSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->rt6_next); 753f11e6659SDavid S. Miller 754554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 75593c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7568d1040e8SWei Wang next = leaf; 757f11e6659SDavid S. Miller 75866f5d6ceSWei Wang if (next != rt0) { 75993c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 76066f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 76193c2fb25SDavid Ahern if (next->fib6_node) 76266f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 76393c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 76466f5d6ceSWei Wang } 765554cfb7eSYOSHIFUJI Hideaki } 766554cfb7eSYOSHIFUJI Hideaki 767421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7681da177e4SLinus Torvalds } 7691da177e4SLinus Torvalds 7708d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7718b9df265SMartin KaFai Lau { 77293c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7738b9df265SMartin KaFai Lau } 7748b9df265SMartin KaFai Lau 77570ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 77670ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 777b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 77870ceb4f5SYOSHIFUJI Hideaki { 779c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 78070ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 78170ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 78270ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7834bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7848d1c802bSDavid Ahern struct fib6_info *rt; 78570ceb4f5SYOSHIFUJI Hideaki 78670ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 78770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 78870ceb4f5SYOSHIFUJI Hideaki } 78970ceb4f5SYOSHIFUJI Hideaki 79070ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 79170ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 79270ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79370ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 79470ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79570ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 79670ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 79770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 79870ceb4f5SYOSHIFUJI Hideaki } 79970ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 80070ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 80170ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80270ceb4f5SYOSHIFUJI Hideaki } 80370ceb4f5SYOSHIFUJI Hideaki } 80470ceb4f5SYOSHIFUJI Hideaki 80570ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 80670ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8073933fc95SJens Rosenboom return -EINVAL; 80870ceb4f5SYOSHIFUJI Hideaki 8094bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 81070ceb4f5SYOSHIFUJI Hideaki 81170ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 81270ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 81370ceb4f5SYOSHIFUJI Hideaki else { 81470ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 81570ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 81670ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 81770ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 81870ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 81970ceb4f5SYOSHIFUJI Hideaki } 82070ceb4f5SYOSHIFUJI Hideaki 821f104a567SDuan Jiong if (rinfo->prefix_len == 0) 822afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 823f104a567SDuan Jiong else 824f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 825830218c1SDavid Ahern gwaddr, dev); 82670ceb4f5SYOSHIFUJI Hideaki 82770ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 828afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 82970ceb4f5SYOSHIFUJI Hideaki rt = NULL; 83070ceb4f5SYOSHIFUJI Hideaki } 83170ceb4f5SYOSHIFUJI Hideaki 83270ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 833830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 834830218c1SDavid Ahern dev, pref); 83570ceb4f5SYOSHIFUJI Hideaki else if (rt) 83693c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 83793c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 83870ceb4f5SYOSHIFUJI Hideaki 83970ceb4f5SYOSHIFUJI Hideaki if (rt) { 8401716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 84114895687SDavid Ahern fib6_clean_expires(rt); 8421716a961SGao feng else 84314895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8441716a961SGao feng 84593531c67SDavid Ahern fib6_info_release(rt); 84670ceb4f5SYOSHIFUJI Hideaki } 84770ceb4f5SYOSHIFUJI Hideaki return 0; 84870ceb4f5SYOSHIFUJI Hideaki } 84970ceb4f5SYOSHIFUJI Hideaki #endif 85070ceb4f5SYOSHIFUJI Hideaki 851ae90d867SDavid Ahern /* 852ae90d867SDavid Ahern * Misc support functions 853ae90d867SDavid Ahern */ 854ae90d867SDavid Ahern 855ae90d867SDavid Ahern /* called with rcu_lock held */ 8568d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 857ae90d867SDavid Ahern { 8585e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 859ae90d867SDavid Ahern 86093c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 861ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 862ae90d867SDavid Ahern * device if it is a master device, the master device if 863ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 864ae90d867SDavid Ahern */ 865ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 86693c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 867ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 868ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 869ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 870ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 871ae90d867SDavid Ahern * case we want dev returned to be dev 872ae90d867SDavid Ahern */ 873ae90d867SDavid Ahern } 874ae90d867SDavid Ahern 875ae90d867SDavid Ahern return dev; 876ae90d867SDavid Ahern } 877ae90d867SDavid Ahern 8786edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8796edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8806edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8816edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8826edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8836edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8846edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8856edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8866edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 8876edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 8886edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 8896edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 8906edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 8916edb3c96SDavid Ahern }; 8926edb3c96SDavid Ahern 8936edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 8946edb3c96SDavid Ahern { 8956edb3c96SDavid Ahern return fib6_prop[fib6_type]; 8966edb3c96SDavid Ahern } 8976edb3c96SDavid Ahern 8988d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 8993b6761d1SDavid Ahern { 9003b6761d1SDavid Ahern unsigned short flags = 0; 9013b6761d1SDavid Ahern 9023b6761d1SDavid Ahern if (rt->dst_nocount) 9033b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9043b6761d1SDavid Ahern if (rt->dst_nopolicy) 9053b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9063b6761d1SDavid Ahern if (rt->dst_host) 9073b6761d1SDavid Ahern flags |= DST_HOST; 9083b6761d1SDavid Ahern 9093b6761d1SDavid Ahern return flags; 9103b6761d1SDavid Ahern } 9113b6761d1SDavid Ahern 9128d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9136edb3c96SDavid Ahern { 9146edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9156edb3c96SDavid Ahern 9166edb3c96SDavid Ahern switch (ort->fib6_type) { 9176edb3c96SDavid Ahern case RTN_BLACKHOLE: 9186edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9196edb3c96SDavid Ahern rt->dst.input = dst_discard; 9206edb3c96SDavid Ahern break; 9216edb3c96SDavid Ahern case RTN_PROHIBIT: 9226edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9236edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9246edb3c96SDavid Ahern break; 9256edb3c96SDavid Ahern case RTN_THROW: 9266edb3c96SDavid Ahern case RTN_UNREACHABLE: 9276edb3c96SDavid Ahern default: 9286edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9296edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9306edb3c96SDavid Ahern break; 9316edb3c96SDavid Ahern } 9326edb3c96SDavid Ahern } 9336edb3c96SDavid Ahern 9348d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9356edb3c96SDavid Ahern { 9363b6761d1SDavid Ahern rt->dst.flags |= fib6_info_dst_flags(ort); 9373b6761d1SDavid Ahern 93893c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9396edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9406edb3c96SDavid Ahern return; 9416edb3c96SDavid Ahern } 9426edb3c96SDavid Ahern 9436edb3c96SDavid Ahern rt->dst.error = 0; 9446edb3c96SDavid Ahern rt->dst.output = ip6_output; 9456edb3c96SDavid Ahern 9466edb3c96SDavid Ahern if (ort->fib6_type == RTN_LOCAL) { 9476edb3c96SDavid Ahern rt->dst.input = ip6_input; 94893c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9496edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9506edb3c96SDavid Ahern } else { 9516edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9526edb3c96SDavid Ahern } 9536edb3c96SDavid Ahern 9546edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9556edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9566edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9576edb3c96SDavid Ahern } 9586edb3c96SDavid Ahern 9596edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9606edb3c96SDavid Ahern } 9616edb3c96SDavid Ahern 9628d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 963ae90d867SDavid Ahern { 964ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 96593531c67SDavid Ahern fib6_info_hold(from); 966ae90d867SDavid Ahern rt->from = from; 967d4ead6b3SDavid Ahern dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true); 968d4ead6b3SDavid Ahern if (from->fib6_metrics != &dst_default_metrics) { 969d4ead6b3SDavid Ahern rt->dst._metrics |= DST_METRICS_REFCOUNTED; 970d4ead6b3SDavid Ahern refcount_inc(&from->fib6_metrics->refcnt); 971d4ead6b3SDavid Ahern } 972ae90d867SDavid Ahern } 973ae90d867SDavid Ahern 9748d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 975ae90d867SDavid Ahern { 976dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 977dcd1f572SDavid Ahern 9786edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9796edb3c96SDavid Ahern 98093c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 981dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9825e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 98393c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 984ae90d867SDavid Ahern rt6_set_from(rt, ort); 985ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 98693c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 987ae90d867SDavid Ahern #endif 98893c2fb25SDavid Ahern rt->rt6i_prefsrc = ort->fib6_prefsrc; 9895e670d84SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 990ae90d867SDavid Ahern } 991ae90d867SDavid Ahern 992a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 993a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 994a3c00e46SMartin KaFai Lau { 99566f5d6ceSWei Wang struct fib6_node *pn, *sn; 996a3c00e46SMartin KaFai Lau while (1) { 997a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 998a3c00e46SMartin KaFai Lau return NULL; 99966f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 100066f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 100166f5d6ceSWei Wang if (sn && sn != fn) 100266f5d6ceSWei Wang fn = fib6_lookup(sn, NULL, saddr); 1003a3c00e46SMartin KaFai Lau else 1004a3c00e46SMartin KaFai Lau fn = pn; 1005a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1006a3c00e46SMartin KaFai Lau return fn; 1007a3c00e46SMartin KaFai Lau } 1008a3c00e46SMartin KaFai Lau } 1009c71099acSThomas Graf 1010d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1011d3843fe5SWei Wang bool null_fallback) 1012d3843fe5SWei Wang { 1013d3843fe5SWei Wang struct rt6_info *rt = *prt; 1014d3843fe5SWei Wang 1015d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1016d3843fe5SWei Wang return true; 1017d3843fe5SWei Wang if (null_fallback) { 1018d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1019d3843fe5SWei Wang dst_hold(&rt->dst); 1020d3843fe5SWei Wang } else { 1021d3843fe5SWei Wang rt = NULL; 1022d3843fe5SWei Wang } 1023d3843fe5SWei Wang *prt = rt; 1024d3843fe5SWei Wang return false; 1025d3843fe5SWei Wang } 1026d3843fe5SWei Wang 1027dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10288d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1029dec9b0e2SDavid Ahern { 10303b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1031dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1032dec9b0e2SDavid Ahern struct rt6_info *nrt; 1033dec9b0e2SDavid Ahern 103493531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1035dec9b0e2SDavid Ahern if (nrt) 1036dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1037dec9b0e2SDavid Ahern 1038dec9b0e2SDavid Ahern return nrt; 1039dec9b0e2SDavid Ahern } 1040dec9b0e2SDavid Ahern 10418ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10428ed67789SDaniel Lezcano struct fib6_table *table, 1043b75cc8f9SDavid Ahern struct flowi6 *fl6, 1044b75cc8f9SDavid Ahern const struct sk_buff *skb, 1045b75cc8f9SDavid Ahern int flags) 10461da177e4SLinus Torvalds { 10478d1c802bSDavid Ahern struct fib6_info *f6i; 10481da177e4SLinus Torvalds struct fib6_node *fn; 104923fb93a4SDavid Ahern struct rt6_info *rt; 10501da177e4SLinus Torvalds 1051b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1052b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1053b6cdbc85SDavid Ahern 105466f5d6ceSWei Wang rcu_read_lock(); 10554c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1056c71099acSThomas Graf restart: 105723fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 105823fb93a4SDavid Ahern if (!f6i) { 105923fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 106066f5d6ceSWei Wang } else { 106123fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 106266f5d6ceSWei Wang fl6->flowi6_oif, flags); 106393c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 106423fb93a4SDavid Ahern f6i = rt6_multipath_select(net, f6i, fl6, 106523fb93a4SDavid Ahern fl6->flowi6_oif, skb, flags); 106666f5d6ceSWei Wang } 106723fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1068a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1069a3c00e46SMartin KaFai Lau if (fn) 1070a3c00e46SMartin KaFai Lau goto restart; 1071a3c00e46SMartin KaFai Lau } 107223fb93a4SDavid Ahern 10732b760fcfSWei Wang /* Search through exception table */ 107423fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 107523fb93a4SDavid Ahern if (rt) { 1076d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1077d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 107823fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1079dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1080dec9b0e2SDavid Ahern dst_hold(&rt->dst); 108123fb93a4SDavid Ahern } else { 108223fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 108323fb93a4SDavid Ahern if (!rt) { 108423fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 108523fb93a4SDavid Ahern dst_hold(&rt->dst); 108623fb93a4SDavid Ahern } 1087dec9b0e2SDavid Ahern } 1088d3843fe5SWei Wang 108966f5d6ceSWei Wang rcu_read_unlock(); 1090b811580dSDavid Ahern 1091b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 1092b811580dSDavid Ahern 10931da177e4SLinus Torvalds return rt; 1094c71099acSThomas Graf } 1095c71099acSThomas Graf 1096ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1097b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1098ea6e574eSFlorian Westphal { 1099b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1100ea6e574eSFlorian Westphal } 1101ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1102ea6e574eSFlorian Westphal 11039acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1104b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1105b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1106c71099acSThomas Graf { 11074c9483b2SDavid S. Miller struct flowi6 fl6 = { 11084c9483b2SDavid S. Miller .flowi6_oif = oif, 11094c9483b2SDavid S. Miller .daddr = *daddr, 1110c71099acSThomas Graf }; 1111c71099acSThomas Graf struct dst_entry *dst; 111277d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1113c71099acSThomas Graf 1114adaa70bbSThomas Graf if (saddr) { 11154c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1116adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1117adaa70bbSThomas Graf } 1118adaa70bbSThomas Graf 1119b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1120c71099acSThomas Graf if (dst->error == 0) 1121c71099acSThomas Graf return (struct rt6_info *) dst; 1122c71099acSThomas Graf 1123c71099acSThomas Graf dst_release(dst); 1124c71099acSThomas Graf 11251da177e4SLinus Torvalds return NULL; 11261da177e4SLinus Torvalds } 11277159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11287159039aSYOSHIFUJI Hideaki 1129c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11301cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11311cfb71eeSWei Wang * route is released. 11321cfb71eeSWei Wang * Caller must hold dst before calling it. 11331da177e4SLinus Torvalds */ 11341da177e4SLinus Torvalds 11358d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1136333c4301SDavid Ahern struct netlink_ext_ack *extack) 11371da177e4SLinus Torvalds { 11381da177e4SLinus Torvalds int err; 1139c71099acSThomas Graf struct fib6_table *table; 11401da177e4SLinus Torvalds 114193c2fb25SDavid Ahern table = rt->fib6_table; 114266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1143d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 114466f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11451da177e4SLinus Torvalds 11461da177e4SLinus Torvalds return err; 11471da177e4SLinus Torvalds } 11481da177e4SLinus Torvalds 11498d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 115040e22e8fSThomas Graf { 1151afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1152e715b6d3SFlorian Westphal 1153d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 115440e22e8fSThomas Graf } 115540e22e8fSThomas Graf 11568d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 115721efcfa0SEric Dumazet const struct in6_addr *daddr, 1158b71d1d42SEric Dumazet const struct in6_addr *saddr) 11591da177e4SLinus Torvalds { 11604832c30dSDavid Ahern struct net_device *dev; 11611da177e4SLinus Torvalds struct rt6_info *rt; 11621da177e4SLinus Torvalds 11631da177e4SLinus Torvalds /* 11641da177e4SLinus Torvalds * Clone the route. 11651da177e4SLinus Torvalds */ 11661da177e4SLinus Torvalds 11674832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 116893531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 116983a09abdSMartin KaFai Lau if (!rt) 117083a09abdSMartin KaFai Lau return NULL; 117183a09abdSMartin KaFai Lau 117283a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11738b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 117483a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 117583a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 117683a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11778b9df265SMartin KaFai Lau 11788b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 117993c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 118093c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 118158c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 11821da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 11831da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 11844e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 11851da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 11861da177e4SLinus Torvalds } 11871da177e4SLinus Torvalds #endif 118895a9a5baSYOSHIFUJI Hideaki } 118995a9a5baSYOSHIFUJI Hideaki 1190299d9939SYOSHIFUJI Hideaki return rt; 1191299d9939SYOSHIFUJI Hideaki } 1192299d9939SYOSHIFUJI Hideaki 11938d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1194d52d3997SMartin KaFai Lau { 11953b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 11964832c30dSDavid Ahern struct net_device *dev; 1197d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1198d52d3997SMartin KaFai Lau 11994832c30dSDavid Ahern rcu_read_lock(); 12004832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 120193531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12024832c30dSDavid Ahern rcu_read_unlock(); 1203d52d3997SMartin KaFai Lau if (!pcpu_rt) 1204d52d3997SMartin KaFai Lau return NULL; 1205d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1206d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1207d52d3997SMartin KaFai Lau return pcpu_rt; 1208d52d3997SMartin KaFai Lau } 1209d52d3997SMartin KaFai Lau 121066f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12118d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1212d52d3997SMartin KaFai Lau { 1213a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1214d52d3997SMartin KaFai Lau 1215d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1216d52d3997SMartin KaFai Lau pcpu_rt = *p; 1217d52d3997SMartin KaFai Lau 1218d4ead6b3SDavid Ahern if (pcpu_rt) 1219d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1220d3843fe5SWei Wang 1221a73e4195SMartin KaFai Lau return pcpu_rt; 1222a73e4195SMartin KaFai Lau } 1223a73e4195SMartin KaFai Lau 1224afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12258d1c802bSDavid Ahern struct fib6_info *rt) 1226a73e4195SMartin KaFai Lau { 1227a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1228d52d3997SMartin KaFai Lau 1229d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1230d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12319c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12329c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1233d52d3997SMartin KaFai Lau } 1234d52d3997SMartin KaFai Lau 1235a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1236a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1237d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1238951f788aSEric Dumazet BUG_ON(prev); 1239a94b9367SWei Wang 1240d52d3997SMartin KaFai Lau return pcpu_rt; 1241d52d3997SMartin KaFai Lau } 1242d52d3997SMartin KaFai Lau 124335732d01SWei Wang /* exception hash table implementation 124435732d01SWei Wang */ 124535732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 124635732d01SWei Wang 124735732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 124835732d01SWei Wang * Caller must hold rt6_exception_lock 124935732d01SWei Wang */ 125035732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 125135732d01SWei Wang struct rt6_exception *rt6_ex) 125235732d01SWei Wang { 1253b2427e67SColin Ian King struct net *net; 125481eb8447SWei Wang 125535732d01SWei Wang if (!bucket || !rt6_ex) 125635732d01SWei Wang return; 1257b2427e67SColin Ian King 1258b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 125935732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 126077634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 126135732d01SWei Wang kfree_rcu(rt6_ex, rcu); 126235732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 126335732d01SWei Wang bucket->depth--; 126481eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 126535732d01SWei Wang } 126635732d01SWei Wang 126735732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 126835732d01SWei Wang * Caller must hold rt6_exception_lock 126935732d01SWei Wang */ 127035732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 127135732d01SWei Wang { 127235732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 127335732d01SWei Wang 127435732d01SWei Wang if (!bucket) 127535732d01SWei Wang return; 127635732d01SWei Wang 127735732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 127835732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 127935732d01SWei Wang oldest = rt6_ex; 128035732d01SWei Wang } 128135732d01SWei Wang rt6_remove_exception(bucket, oldest); 128235732d01SWei Wang } 128335732d01SWei Wang 128435732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 128535732d01SWei Wang const struct in6_addr *src) 128635732d01SWei Wang { 128735732d01SWei Wang static u32 seed __read_mostly; 128835732d01SWei Wang u32 val; 128935732d01SWei Wang 129035732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 129135732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 129235732d01SWei Wang 129335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 129435732d01SWei Wang if (src) 129535732d01SWei Wang val = jhash(src, sizeof(*src), val); 129635732d01SWei Wang #endif 129735732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 129835732d01SWei Wang } 129935732d01SWei Wang 130035732d01SWei Wang /* Helper function to find the cached rt in the hash table 130135732d01SWei Wang * and update bucket pointer to point to the bucket for this 130235732d01SWei Wang * (daddr, saddr) pair 130335732d01SWei Wang * Caller must hold rt6_exception_lock 130435732d01SWei Wang */ 130535732d01SWei Wang static struct rt6_exception * 130635732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 130735732d01SWei Wang const struct in6_addr *daddr, 130835732d01SWei Wang const struct in6_addr *saddr) 130935732d01SWei Wang { 131035732d01SWei Wang struct rt6_exception *rt6_ex; 131135732d01SWei Wang u32 hval; 131235732d01SWei Wang 131335732d01SWei Wang if (!(*bucket) || !daddr) 131435732d01SWei Wang return NULL; 131535732d01SWei Wang 131635732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 131735732d01SWei Wang *bucket += hval; 131835732d01SWei Wang 131935732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 132035732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 132135732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 132235732d01SWei Wang 132335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 132435732d01SWei Wang if (matched && saddr) 132535732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 132635732d01SWei Wang #endif 132735732d01SWei Wang if (matched) 132835732d01SWei Wang return rt6_ex; 132935732d01SWei Wang } 133035732d01SWei Wang return NULL; 133135732d01SWei Wang } 133235732d01SWei Wang 133335732d01SWei Wang /* Helper function to find the cached rt in the hash table 133435732d01SWei Wang * and update bucket pointer to point to the bucket for this 133535732d01SWei Wang * (daddr, saddr) pair 133635732d01SWei Wang * Caller must hold rcu_read_lock() 133735732d01SWei Wang */ 133835732d01SWei Wang static struct rt6_exception * 133935732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 134035732d01SWei Wang const struct in6_addr *daddr, 134135732d01SWei Wang const struct in6_addr *saddr) 134235732d01SWei Wang { 134335732d01SWei Wang struct rt6_exception *rt6_ex; 134435732d01SWei Wang u32 hval; 134535732d01SWei Wang 134635732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 134735732d01SWei Wang 134835732d01SWei Wang if (!(*bucket) || !daddr) 134935732d01SWei Wang return NULL; 135035732d01SWei Wang 135135732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 135235732d01SWei Wang *bucket += hval; 135335732d01SWei Wang 135435732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 135535732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 135635732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 135735732d01SWei Wang 135835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 135935732d01SWei Wang if (matched && saddr) 136035732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 136135732d01SWei Wang #endif 136235732d01SWei Wang if (matched) 136335732d01SWei Wang return rt6_ex; 136435732d01SWei Wang } 136535732d01SWei Wang return NULL; 136635732d01SWei Wang } 136735732d01SWei Wang 13688d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 1369d4ead6b3SDavid Ahern { 1370d4ead6b3SDavid Ahern unsigned int mtu; 1371d4ead6b3SDavid Ahern 1372dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1373dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1374dcd1f572SDavid Ahern } else { 1375dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1376dcd1f572SDavid Ahern struct inet6_dev *idev; 1377dcd1f572SDavid Ahern 1378dcd1f572SDavid Ahern rcu_read_lock(); 1379dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1380dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1381dcd1f572SDavid Ahern rcu_read_unlock(); 1382dcd1f572SDavid Ahern } 1383dcd1f572SDavid Ahern 1384d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1385d4ead6b3SDavid Ahern 1386d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1387d4ead6b3SDavid Ahern } 1388d4ead6b3SDavid Ahern 138935732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 13908d1c802bSDavid Ahern struct fib6_info *ort) 139135732d01SWei Wang { 13925e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 139335732d01SWei Wang struct rt6_exception_bucket *bucket; 139435732d01SWei Wang struct in6_addr *src_key = NULL; 139535732d01SWei Wang struct rt6_exception *rt6_ex; 139635732d01SWei Wang int err = 0; 139735732d01SWei Wang 139835732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 139935732d01SWei Wang 140035732d01SWei Wang if (ort->exception_bucket_flushed) { 140135732d01SWei Wang err = -EINVAL; 140235732d01SWei Wang goto out; 140335732d01SWei Wang } 140435732d01SWei Wang 140535732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 140635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 140735732d01SWei Wang if (!bucket) { 140835732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 140935732d01SWei Wang GFP_ATOMIC); 141035732d01SWei Wang if (!bucket) { 141135732d01SWei Wang err = -ENOMEM; 141235732d01SWei Wang goto out; 141335732d01SWei Wang } 141435732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 141535732d01SWei Wang } 141635732d01SWei Wang 141735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 141835732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 141935732d01SWei Wang * and exception table is indexed by a hash of 142035732d01SWei Wang * both rt6i_dst and rt6i_src. 142135732d01SWei Wang * Otherwise, the exception table is indexed by 142235732d01SWei Wang * a hash of only rt6i_dst. 142335732d01SWei Wang */ 142493c2fb25SDavid Ahern if (ort->fib6_src.plen) 142535732d01SWei Wang src_key = &nrt->rt6i_src.addr; 142635732d01SWei Wang #endif 142760006a48SWei Wang 142860006a48SWei Wang /* Update rt6i_prefsrc as it could be changed 142960006a48SWei Wang * in rt6_remove_prefsrc() 143060006a48SWei Wang */ 143193c2fb25SDavid Ahern nrt->rt6i_prefsrc = ort->fib6_prefsrc; 1432f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1433f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1434f5bbe7eeSWei Wang * is less than ort's mtu value. 1435f5bbe7eeSWei Wang */ 1436d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1437f5bbe7eeSWei Wang err = -EINVAL; 1438f5bbe7eeSWei Wang goto out; 1439f5bbe7eeSWei Wang } 144060006a48SWei Wang 144135732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 144235732d01SWei Wang src_key); 144335732d01SWei Wang if (rt6_ex) 144435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 144535732d01SWei Wang 144635732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 144735732d01SWei Wang if (!rt6_ex) { 144835732d01SWei Wang err = -ENOMEM; 144935732d01SWei Wang goto out; 145035732d01SWei Wang } 145135732d01SWei Wang rt6_ex->rt6i = nrt; 145235732d01SWei Wang rt6_ex->stamp = jiffies; 145335732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 145435732d01SWei Wang bucket->depth++; 145581eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 145635732d01SWei Wang 145735732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 145835732d01SWei Wang rt6_exception_remove_oldest(bucket); 145935732d01SWei Wang 146035732d01SWei Wang out: 146135732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 146235732d01SWei Wang 146335732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1464b886d5f2SPaolo Abeni if (!err) { 146593c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14667aef6859SDavid Ahern fib6_update_sernum(net, ort); 146793c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1468b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1469b886d5f2SPaolo Abeni } 147035732d01SWei Wang 147135732d01SWei Wang return err; 147235732d01SWei Wang } 147335732d01SWei Wang 14748d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 147535732d01SWei Wang { 147635732d01SWei Wang struct rt6_exception_bucket *bucket; 147735732d01SWei Wang struct rt6_exception *rt6_ex; 147835732d01SWei Wang struct hlist_node *tmp; 147935732d01SWei Wang int i; 148035732d01SWei Wang 148135732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 148235732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 148335732d01SWei Wang rt->exception_bucket_flushed = 1; 148435732d01SWei Wang 148535732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 148635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 148735732d01SWei Wang if (!bucket) 148835732d01SWei Wang goto out; 148935732d01SWei Wang 149035732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 149135732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 149235732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 149335732d01SWei Wang WARN_ON_ONCE(bucket->depth); 149435732d01SWei Wang bucket++; 149535732d01SWei Wang } 149635732d01SWei Wang 149735732d01SWei Wang out: 149835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 149935732d01SWei Wang } 150035732d01SWei Wang 150135732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 150235732d01SWei Wang * Caller has to hold rcu_read_lock() 150335732d01SWei Wang */ 15048d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 150535732d01SWei Wang struct in6_addr *daddr, 150635732d01SWei Wang struct in6_addr *saddr) 150735732d01SWei Wang { 150835732d01SWei Wang struct rt6_exception_bucket *bucket; 150935732d01SWei Wang struct in6_addr *src_key = NULL; 151035732d01SWei Wang struct rt6_exception *rt6_ex; 151135732d01SWei Wang struct rt6_info *res = NULL; 151235732d01SWei Wang 151335732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 151435732d01SWei Wang 151535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 151635732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 151735732d01SWei Wang * and exception table is indexed by a hash of 151835732d01SWei Wang * both rt6i_dst and rt6i_src. 151935732d01SWei Wang * Otherwise, the exception table is indexed by 152035732d01SWei Wang * a hash of only rt6i_dst. 152135732d01SWei Wang */ 152293c2fb25SDavid Ahern if (rt->fib6_src.plen) 152335732d01SWei Wang src_key = saddr; 152435732d01SWei Wang #endif 152535732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 152635732d01SWei Wang 152735732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 152835732d01SWei Wang res = rt6_ex->rt6i; 152935732d01SWei Wang 153035732d01SWei Wang return res; 153135732d01SWei Wang } 153235732d01SWei Wang 153335732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 153423fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 153535732d01SWei Wang { 153635732d01SWei Wang struct rt6_exception_bucket *bucket; 15378d1c802bSDavid Ahern struct fib6_info *from = rt->from; 153835732d01SWei Wang struct in6_addr *src_key = NULL; 153935732d01SWei Wang struct rt6_exception *rt6_ex; 154035732d01SWei Wang int err; 154135732d01SWei Wang 154235732d01SWei Wang if (!from || 1543442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 154435732d01SWei Wang return -EINVAL; 154535732d01SWei Wang 154635732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 154735732d01SWei Wang return -ENOENT; 154835732d01SWei Wang 154935732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 155035732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 155135732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 155235732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 155335732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 155435732d01SWei Wang * and exception table is indexed by a hash of 155535732d01SWei Wang * both rt6i_dst and rt6i_src. 155635732d01SWei Wang * Otherwise, the exception table is indexed by 155735732d01SWei Wang * a hash of only rt6i_dst. 155835732d01SWei Wang */ 155993c2fb25SDavid Ahern if (from->fib6_src.plen) 156035732d01SWei Wang src_key = &rt->rt6i_src.addr; 156135732d01SWei Wang #endif 156235732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 156335732d01SWei Wang &rt->rt6i_dst.addr, 156435732d01SWei Wang src_key); 156535732d01SWei Wang if (rt6_ex) { 156635732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 156735732d01SWei Wang err = 0; 156835732d01SWei Wang } else { 156935732d01SWei Wang err = -ENOENT; 157035732d01SWei Wang } 157135732d01SWei Wang 157235732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 157335732d01SWei Wang return err; 157435732d01SWei Wang } 157535732d01SWei Wang 157635732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 157735732d01SWei Wang * refresh its stamp 157835732d01SWei Wang */ 157935732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 158035732d01SWei Wang { 158135732d01SWei Wang struct rt6_exception_bucket *bucket; 15828d1c802bSDavid Ahern struct fib6_info *from = rt->from; 158335732d01SWei Wang struct in6_addr *src_key = NULL; 158435732d01SWei Wang struct rt6_exception *rt6_ex; 158535732d01SWei Wang 158635732d01SWei Wang if (!from || 1587442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 158835732d01SWei Wang return; 158935732d01SWei Wang 159035732d01SWei Wang rcu_read_lock(); 159135732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 159235732d01SWei Wang 159335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 159435732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 159535732d01SWei Wang * and exception table is indexed by a hash of 159635732d01SWei Wang * both rt6i_dst and rt6i_src. 159735732d01SWei Wang * Otherwise, the exception table is indexed by 159835732d01SWei Wang * a hash of only rt6i_dst. 159935732d01SWei Wang */ 160093c2fb25SDavid Ahern if (from->fib6_src.plen) 160135732d01SWei Wang src_key = &rt->rt6i_src.addr; 160235732d01SWei Wang #endif 160335732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 160435732d01SWei Wang &rt->rt6i_dst.addr, 160535732d01SWei Wang src_key); 160635732d01SWei Wang if (rt6_ex) 160735732d01SWei Wang rt6_ex->stamp = jiffies; 160835732d01SWei Wang 160935732d01SWei Wang rcu_read_unlock(); 161035732d01SWei Wang } 161135732d01SWei Wang 16128d1c802bSDavid Ahern static void rt6_exceptions_remove_prefsrc(struct fib6_info *rt) 161360006a48SWei Wang { 161460006a48SWei Wang struct rt6_exception_bucket *bucket; 161560006a48SWei Wang struct rt6_exception *rt6_ex; 161660006a48SWei Wang int i; 161760006a48SWei Wang 161860006a48SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 161960006a48SWei Wang lockdep_is_held(&rt6_exception_lock)); 162060006a48SWei Wang 162160006a48SWei Wang if (bucket) { 162260006a48SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 162360006a48SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 162460006a48SWei Wang rt6_ex->rt6i->rt6i_prefsrc.plen = 0; 162560006a48SWei Wang } 162660006a48SWei Wang bucket++; 162760006a48SWei Wang } 162860006a48SWei Wang } 162960006a48SWei Wang } 163060006a48SWei Wang 1631e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1632e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1633e9fa1495SStefano Brivio { 1634e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1635e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1636e9fa1495SStefano Brivio * reflect PMTU decreases. 1637e9fa1495SStefano Brivio * 1638e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1639e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1640e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1641e9fa1495SStefano Brivio * handle this. 1642e9fa1495SStefano Brivio */ 1643e9fa1495SStefano Brivio 1644e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1645e9fa1495SStefano Brivio return true; 1646e9fa1495SStefano Brivio 1647e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1648e9fa1495SStefano Brivio return true; 1649e9fa1495SStefano Brivio 1650e9fa1495SStefano Brivio return false; 1651e9fa1495SStefano Brivio } 1652e9fa1495SStefano Brivio 1653e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16548d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1655f5bbe7eeSWei Wang { 1656f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1657f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1658f5bbe7eeSWei Wang int i; 1659f5bbe7eeSWei Wang 1660f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1661f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1662f5bbe7eeSWei Wang 1663e9fa1495SStefano Brivio if (!bucket) 1664e9fa1495SStefano Brivio return; 1665e9fa1495SStefano Brivio 1666f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1667f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1668f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1669e9fa1495SStefano Brivio 1670e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1671d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1672f5bbe7eeSWei Wang * been updated. 1673f5bbe7eeSWei Wang */ 1674d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1675e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1676d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1677f5bbe7eeSWei Wang } 1678f5bbe7eeSWei Wang bucket++; 1679f5bbe7eeSWei Wang } 1680f5bbe7eeSWei Wang } 1681f5bbe7eeSWei Wang 1682b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1683b16cb459SWei Wang 16848d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1685b16cb459SWei Wang struct in6_addr *gateway) 1686b16cb459SWei Wang { 1687b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1688b16cb459SWei Wang struct rt6_exception *rt6_ex; 1689b16cb459SWei Wang struct hlist_node *tmp; 1690b16cb459SWei Wang int i; 1691b16cb459SWei Wang 1692b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1693b16cb459SWei Wang return; 1694b16cb459SWei Wang 1695b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1696b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1697b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1698b16cb459SWei Wang 1699b16cb459SWei Wang if (bucket) { 1700b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1701b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1702b16cb459SWei Wang &bucket->chain, hlist) { 1703b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1704b16cb459SWei Wang 1705b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1706b16cb459SWei Wang RTF_CACHE_GATEWAY && 1707b16cb459SWei Wang ipv6_addr_equal(gateway, 1708b16cb459SWei Wang &entry->rt6i_gateway)) { 1709b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1710b16cb459SWei Wang } 1711b16cb459SWei Wang } 1712b16cb459SWei Wang bucket++; 1713b16cb459SWei Wang } 1714b16cb459SWei Wang } 1715b16cb459SWei Wang 1716b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1717b16cb459SWei Wang } 1718b16cb459SWei Wang 1719c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1720c757faa8SWei Wang struct rt6_exception *rt6_ex, 1721c757faa8SWei Wang struct fib6_gc_args *gc_args, 1722c757faa8SWei Wang unsigned long now) 1723c757faa8SWei Wang { 1724c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1725c757faa8SWei Wang 17261859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17271859bac0SPaolo Abeni * even if others have still references to them, so that on next 17281859bac0SPaolo Abeni * dst_check() such references can be dropped. 17291859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17301859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17311859bac0SPaolo Abeni */ 173231afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 173331afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1734c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1735c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1736c757faa8SWei Wang return; 173731afeb42SWei Wang } 173831afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 173931afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 174031afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 174131afeb42SWei Wang return; 174231afeb42SWei Wang } 174331afeb42SWei Wang 174431afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1745c757faa8SWei Wang struct neighbour *neigh; 1746c757faa8SWei Wang __u8 neigh_flags = 0; 1747c757faa8SWei Wang 17481bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17491bfa26ffSEric Dumazet if (neigh) 1750c757faa8SWei Wang neigh_flags = neigh->flags; 17511bfa26ffSEric Dumazet 1752c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1753c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1754c757faa8SWei Wang rt); 1755c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1756c757faa8SWei Wang return; 1757c757faa8SWei Wang } 1758c757faa8SWei Wang } 175931afeb42SWei Wang 1760c757faa8SWei Wang gc_args->more++; 1761c757faa8SWei Wang } 1762c757faa8SWei Wang 17638d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1764c757faa8SWei Wang struct fib6_gc_args *gc_args, 1765c757faa8SWei Wang unsigned long now) 1766c757faa8SWei Wang { 1767c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1768c757faa8SWei Wang struct rt6_exception *rt6_ex; 1769c757faa8SWei Wang struct hlist_node *tmp; 1770c757faa8SWei Wang int i; 1771c757faa8SWei Wang 1772c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1773c757faa8SWei Wang return; 1774c757faa8SWei Wang 17751bfa26ffSEric Dumazet rcu_read_lock_bh(); 17761bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1777c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1778c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1779c757faa8SWei Wang 1780c757faa8SWei Wang if (bucket) { 1781c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1782c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1783c757faa8SWei Wang &bucket->chain, hlist) { 1784c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1785c757faa8SWei Wang gc_args, now); 1786c757faa8SWei Wang } 1787c757faa8SWei Wang bucket++; 1788c757faa8SWei Wang } 1789c757faa8SWei Wang } 17901bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 17911bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1792c757faa8SWei Wang } 1793c757faa8SWei Wang 17949ff74384SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 1795b75cc8f9SDavid Ahern int oif, struct flowi6 *fl6, 1796b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 17971da177e4SLinus Torvalds { 1798367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 17998d1c802bSDavid Ahern struct fib6_info *f6i; 180023fb93a4SDavid Ahern struct rt6_info *rt; 1801c71099acSThomas Graf int strict = 0; 18021da177e4SLinus Torvalds 180377d16f45SYOSHIFUJI Hideaki strict |= flags & RT6_LOOKUP_F_IFACE; 1804d5d32e4bSDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 1805367efcb9SMartin KaFai Lau if (net->ipv6.devconf_all->forwarding == 0) 1806367efcb9SMartin KaFai Lau strict |= RT6_LOOKUP_F_REACHABLE; 18071da177e4SLinus Torvalds 180866f5d6ceSWei Wang rcu_read_lock(); 18091da177e4SLinus Torvalds 18104c9483b2SDavid S. Miller fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1811367efcb9SMartin KaFai Lau saved_fn = fn; 18121da177e4SLinus Torvalds 1813ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1814ca254490SDavid Ahern oif = 0; 1815ca254490SDavid Ahern 1816a3c00e46SMartin KaFai Lau redo_rt6_select: 181723fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 181893c2fb25SDavid Ahern if (f6i->fib6_nsiblings) 181923fb93a4SDavid Ahern f6i = rt6_multipath_select(net, f6i, fl6, oif, skb, strict); 182023fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1821a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1822a3c00e46SMartin KaFai Lau if (fn) 1823a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1824367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1825367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1826367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1827367efcb9SMartin KaFai Lau fn = saved_fn; 1828367efcb9SMartin KaFai Lau goto redo_rt6_select; 1829367efcb9SMartin KaFai Lau } 1830a3c00e46SMartin KaFai Lau } 1831a3c00e46SMartin KaFai Lau 183223fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1833421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 183466f5d6ceSWei Wang rcu_read_unlock(); 1835d3843fe5SWei Wang dst_hold(&rt->dst); 1836b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 1837d3843fe5SWei Wang return rt; 183823fb93a4SDavid Ahern } 183923fb93a4SDavid Ahern 184023fb93a4SDavid Ahern /*Search through exception table */ 184123fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 184223fb93a4SDavid Ahern if (rt) { 1843d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 1844d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 1845d4ead6b3SDavid Ahern 184666f5d6ceSWei Wang rcu_read_unlock(); 1847b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 1848d52d3997SMartin KaFai Lau return rt; 18493da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 185093c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18513da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18523da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18533da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18543da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18553da59bd9SMartin KaFai Lau */ 18563da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18573da59bd9SMartin KaFai Lau 185823fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 18594d85cd0cSDavid Ahern 18604d85cd0cSDavid Ahern rcu_read_unlock(); 18613da59bd9SMartin KaFai Lau 18621cfb71eeSWei Wang if (uncached_rt) { 18631cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 18641cfb71eeSWei Wang * No need for another dst_hold() 18651cfb71eeSWei Wang */ 18668d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 186781eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 18681cfb71eeSWei Wang } else { 18693da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 18703da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 18711cfb71eeSWei Wang } 1872b811580dSDavid Ahern 1873b65f164dSPaolo Abeni trace_fib6_table_lookup(net, uncached_rt, table, fl6); 18743da59bd9SMartin KaFai Lau return uncached_rt; 18753da59bd9SMartin KaFai Lau 1876d52d3997SMartin KaFai Lau } else { 1877d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1878d52d3997SMartin KaFai Lau 1879d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1880d52d3997SMartin KaFai Lau 1881951f788aSEric Dumazet local_bh_disable(); 188223fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1883d52d3997SMartin KaFai Lau 188493531c67SDavid Ahern if (!pcpu_rt) 188523fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 188693531c67SDavid Ahern 1887951f788aSEric Dumazet local_bh_enable(); 1888951f788aSEric Dumazet rcu_read_unlock(); 1889b65f164dSPaolo Abeni trace_fib6_table_lookup(net, pcpu_rt, table, fl6); 1890d52d3997SMartin KaFai Lau return pcpu_rt; 1891d52d3997SMartin KaFai Lau } 1892c71099acSThomas Graf } 18939ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1894c71099acSThomas Graf 1895b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1896b75cc8f9SDavid Ahern struct fib6_table *table, 1897b75cc8f9SDavid Ahern struct flowi6 *fl6, 1898b75cc8f9SDavid Ahern const struct sk_buff *skb, 1899b75cc8f9SDavid Ahern int flags) 19004acad72dSPavel Emelyanov { 1901b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19024acad72dSPavel Emelyanov } 19034acad72dSPavel Emelyanov 1904d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 190572331bc0SShmulik Ladkani struct net_device *dev, 1906b75cc8f9SDavid Ahern struct flowi6 *fl6, 1907b75cc8f9SDavid Ahern const struct sk_buff *skb, 1908b75cc8f9SDavid Ahern int flags) 190972331bc0SShmulik Ladkani { 191072331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 191172331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 191272331bc0SShmulik Ladkani 1913b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 191472331bc0SShmulik Ladkani } 1915d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 191672331bc0SShmulik Ladkani 191723aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19185e5d6fedSRoopa Prabhu struct flow_keys *keys, 19195e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 192023aebdacSJakub Sitnicki { 192123aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 192223aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19235e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 192423aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 192523aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 192623aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 192723aebdacSJakub Sitnicki 192823aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 192923aebdacSJakub Sitnicki goto out; 193023aebdacSJakub Sitnicki 193123aebdacSJakub Sitnicki icmph = icmp6_hdr(skb); 193223aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 193323aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 193423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 193523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 193623aebdacSJakub Sitnicki goto out; 193723aebdacSJakub Sitnicki 193823aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 193923aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 194023aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 194123aebdacSJakub Sitnicki if (!inner_iph) 194223aebdacSJakub Sitnicki goto out; 194323aebdacSJakub Sitnicki 194423aebdacSJakub Sitnicki key_iph = inner_iph; 19455e5d6fedSRoopa Prabhu _flkeys = NULL; 194623aebdacSJakub Sitnicki out: 19475e5d6fedSRoopa Prabhu if (_flkeys) { 19485e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19495e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19505e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19515e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19525e5d6fedSRoopa Prabhu } else { 195323aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 195423aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 195523aebdacSJakub Sitnicki keys->tags.flow_label = ip6_flowinfo(key_iph); 195623aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 195723aebdacSJakub Sitnicki } 19585e5d6fedSRoopa Prabhu } 195923aebdacSJakub Sitnicki 196023aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 1961b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 1962b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 196323aebdacSJakub Sitnicki { 196423aebdacSJakub Sitnicki struct flow_keys hash_keys; 19659a2a537aSDavid Ahern u32 mhash; 196623aebdacSJakub Sitnicki 1967bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 1968b4bac172SDavid Ahern case 0: 19696f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 19706f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 19719a2a537aSDavid Ahern if (skb) { 19725e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 19739a2a537aSDavid Ahern } else { 19749a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 19759a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 19769a2a537aSDavid Ahern hash_keys.tags.flow_label = (__force u32)fl6->flowlabel; 19779a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 197823aebdacSJakub Sitnicki } 1979b4bac172SDavid Ahern break; 1980b4bac172SDavid Ahern case 1: 1981b4bac172SDavid Ahern if (skb) { 1982b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 1983b4bac172SDavid Ahern struct flow_keys keys; 1984b4bac172SDavid Ahern 1985b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 1986b4bac172SDavid Ahern if (skb->l4_hash) 1987b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 1988b4bac172SDavid Ahern 1989b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 1990b4bac172SDavid Ahern 1991b4bac172SDavid Ahern if (!flkeys) { 1992b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 1993b4bac172SDavid Ahern flkeys = &keys; 1994b4bac172SDavid Ahern } 1995b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 1996b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 1997b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 1998b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 1999b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2000b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2001b4bac172SDavid Ahern } else { 2002b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2003b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2004b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2005b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2006b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2007b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2008b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2009b4bac172SDavid Ahern } 2010b4bac172SDavid Ahern break; 2011b4bac172SDavid Ahern } 20129a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 201323aebdacSJakub Sitnicki 20149a2a537aSDavid Ahern return mhash >> 1; 201523aebdacSJakub Sitnicki } 201623aebdacSJakub Sitnicki 2017c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2018c71099acSThomas Graf { 2019b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2020c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2021adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2022904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20234c9483b2SDavid S. Miller struct flowi6 fl6 = { 2024e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20254c9483b2SDavid S. Miller .daddr = iph->daddr, 20264c9483b2SDavid S. Miller .saddr = iph->saddr, 20276502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20284c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20294c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2030c71099acSThomas Graf }; 20315e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2032adaa70bbSThomas Graf 2033904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 203446fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2035904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20365e5d6fedSRoopa Prabhu 20375e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20385e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20395e5d6fedSRoopa Prabhu 204023aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2041b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 204206e9d040SJiri Benc skb_dst_drop(skb); 2043b75cc8f9SDavid Ahern skb_dst_set(skb, 2044b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2045c71099acSThomas Graf } 2046c71099acSThomas Graf 2047b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2048b75cc8f9SDavid Ahern struct fib6_table *table, 2049b75cc8f9SDavid Ahern struct flowi6 *fl6, 2050b75cc8f9SDavid Ahern const struct sk_buff *skb, 2051b75cc8f9SDavid Ahern int flags) 2052c71099acSThomas Graf { 2053b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2054c71099acSThomas Graf } 2055c71099acSThomas Graf 20566f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20576f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2058c71099acSThomas Graf { 2059d46a9d67SDavid Ahern bool any_src; 2060c71099acSThomas Graf 20614c1feac5SDavid Ahern if (rt6_need_strict(&fl6->daddr)) { 20624c1feac5SDavid Ahern struct dst_entry *dst; 20634c1feac5SDavid Ahern 20644c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2065ca254490SDavid Ahern if (dst) 2066ca254490SDavid Ahern return dst; 20674c1feac5SDavid Ahern } 2068ca254490SDavid Ahern 20691fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 20704dc27d1cSDavid McCullough 2071d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2072741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2073d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 207477d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2075c71099acSThomas Graf 2076d46a9d67SDavid Ahern if (!any_src) 2077adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 20780c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 20790c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2080adaa70bbSThomas Graf 2081b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 20821da177e4SLinus Torvalds } 20836f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 20841da177e4SLinus Torvalds 20852774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 208614e50e57SDavid S. Miller { 20875c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 20881dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 208914e50e57SDavid S. Miller struct dst_entry *new = NULL; 209014e50e57SDavid S. Miller 20911dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 209262cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 209314e50e57SDavid S. Miller if (rt) { 20940a1f5962SMartin KaFai Lau rt6_info_init(rt); 209581eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 20960a1f5962SMartin KaFai Lau 2097d8d1f30bSChangli Gao new = &rt->dst; 209814e50e57SDavid S. Miller new->__use = 1; 2099352e512cSHerbert Xu new->input = dst_discard; 2100ede2059dSEric W. Biederman new->output = dst_discard_out; 210114e50e57SDavid S. Miller 2102defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 210314e50e57SDavid S. Miller 21041dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21054e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21060a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 210714e50e57SDavid S. Miller 210814e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 210914e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 211014e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 211114e50e57SDavid S. Miller #endif 211214e50e57SDavid S. Miller } 211314e50e57SDavid S. Miller 211469ead7afSDavid S. Miller dst_release(dst_orig); 211569ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 211614e50e57SDavid S. Miller } 211714e50e57SDavid S. Miller 21181da177e4SLinus Torvalds /* 21191da177e4SLinus Torvalds * Destination cache support functions 21201da177e4SLinus Torvalds */ 21211da177e4SLinus Torvalds 21228d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 212393531c67SDavid Ahern { 212493531c67SDavid Ahern u32 rt_cookie = 0; 212593531c67SDavid Ahern 2126a269f1a7SDavid Ahern if ((f6i && !fib6_get_cookie_safe(f6i, &rt_cookie)) || 212793531c67SDavid Ahern rt_cookie != cookie) 212893531c67SDavid Ahern return false; 212993531c67SDavid Ahern 213093531c67SDavid Ahern if (fib6_check_expired(f6i)) 213193531c67SDavid Ahern return false; 213293531c67SDavid Ahern 213393531c67SDavid Ahern return true; 213493531c67SDavid Ahern } 213593531c67SDavid Ahern 21363da59bd9SMartin KaFai Lau static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie) 21373da59bd9SMartin KaFai Lau { 213836143645SSteffen Klassert u32 rt_cookie = 0; 2139c5cff856SWei Wang 2140a269f1a7SDavid Ahern if ((rt->from && !fib6_get_cookie_safe(rt->from, &rt_cookie)) || 214193531c67SDavid Ahern rt_cookie != cookie) 21423da59bd9SMartin KaFai Lau return NULL; 21433da59bd9SMartin KaFai Lau 21443da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21453da59bd9SMartin KaFai Lau return NULL; 21463da59bd9SMartin KaFai Lau 21473da59bd9SMartin KaFai Lau return &rt->dst; 21483da59bd9SMartin KaFai Lau } 21493da59bd9SMartin KaFai Lau 21503da59bd9SMartin KaFai Lau static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie) 21513da59bd9SMartin KaFai Lau { 21525973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21535973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 215493531c67SDavid Ahern fib6_check(rt->from, cookie)) 21553da59bd9SMartin KaFai Lau return &rt->dst; 21563da59bd9SMartin KaFai Lau else 21573da59bd9SMartin KaFai Lau return NULL; 21583da59bd9SMartin KaFai Lau } 21593da59bd9SMartin KaFai Lau 21601da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 21611da177e4SLinus Torvalds { 2162*a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 21631da177e4SLinus Torvalds struct rt6_info *rt; 21641da177e4SLinus Torvalds 2165*a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2166*a87b7dc9SDavid Ahern 2167*a87b7dc9SDavid Ahern rcu_read_lock(); 21681da177e4SLinus Torvalds 21696f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 21706f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 21716f3118b5SNicolas Dichtel * into this function always. 21726f3118b5SNicolas Dichtel */ 2173e3bc10bdSHannes Frederic Sowa 217402bcf4e0SMartin KaFai Lau if (rt->rt6i_flags & RTF_PCPU || 21753a2232e9SDavid Miller (unlikely(!list_empty(&rt->rt6i_uncached)) && rt->from)) 2176*a87b7dc9SDavid Ahern dst_ret = rt6_dst_from_check(rt, cookie); 21773da59bd9SMartin KaFai Lau else 2178*a87b7dc9SDavid Ahern dst_ret = rt6_check(rt, cookie); 2179*a87b7dc9SDavid Ahern 2180*a87b7dc9SDavid Ahern rcu_read_unlock(); 2181*a87b7dc9SDavid Ahern 2182*a87b7dc9SDavid Ahern return dst_ret; 21831da177e4SLinus Torvalds } 21841da177e4SLinus Torvalds 21851da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 21861da177e4SLinus Torvalds { 21871da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 21881da177e4SLinus Torvalds 21891da177e4SLinus Torvalds if (rt) { 219054c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 219154c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 219293531c67SDavid Ahern rt6_remove_exception_rt(rt); 219354c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 21941da177e4SLinus Torvalds } 219554c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 219654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 219754c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 219854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 219954c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 220054c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22011da177e4SLinus Torvalds } 22021da177e4SLinus Torvalds 22031da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22041da177e4SLinus Torvalds { 22051da177e4SLinus Torvalds struct rt6_info *rt; 22061da177e4SLinus Torvalds 22073ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22081da177e4SLinus Torvalds 2209adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22101da177e4SLinus Torvalds if (rt) { 22111eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2212ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 221393531c67SDavid Ahern rt6_remove_exception_rt(rt); 221493531c67SDavid Ahern } else if (rt->from) { 2215c5cff856SWei Wang struct fib6_node *fn; 2216c5cff856SWei Wang 2217c5cff856SWei Wang rcu_read_lock(); 221893c2fb25SDavid Ahern fn = rcu_dereference(rt->from->fib6_node); 2219c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2220c5cff856SWei Wang fn->fn_sernum = -1; 2221c5cff856SWei Wang rcu_read_unlock(); 22221da177e4SLinus Torvalds } 22231da177e4SLinus Torvalds } 22241eb4f758SHannes Frederic Sowa } 22251da177e4SLinus Torvalds 22266a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22276a3e030fSDavid Ahern { 22286a3e030fSDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES) && rt0->from) 22296a3e030fSDavid Ahern rt0->dst.expires = rt0->from->expires; 22306a3e030fSDavid Ahern 22316a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22326a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22336a3e030fSDavid Ahern } 22346a3e030fSDavid Ahern 223545e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 223645e4fd26SMartin KaFai Lau { 223745e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 223845e4fd26SMartin KaFai Lau 2239d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 224045e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 224145e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 224245e4fd26SMartin KaFai Lau } 224345e4fd26SMartin KaFai Lau 22440d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 22450d3f6d29SMartin KaFai Lau { 22460d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 224777634cc6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || rt->from); 22480d3f6d29SMartin KaFai Lau } 22490d3f6d29SMartin KaFai Lau 225045e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 225145e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 22521da177e4SLinus Torvalds { 22530dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 22541da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 22551da177e4SLinus Torvalds 225645e4fd26SMartin KaFai Lau if (rt6->rt6i_flags & RTF_LOCAL) 225745e4fd26SMartin KaFai Lau return; 225845e4fd26SMartin KaFai Lau 225919bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 226019bda36cSXin Long return; 226119bda36cSXin Long 226245e4fd26SMartin KaFai Lau if (iph) { 226345e4fd26SMartin KaFai Lau daddr = &iph->daddr; 226445e4fd26SMartin KaFai Lau saddr = &iph->saddr; 226545e4fd26SMartin KaFai Lau } else if (sk) { 226645e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 226745e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 226845e4fd26SMartin KaFai Lau } else { 22690dec879fSJulian Anastasov daddr = NULL; 22700dec879fSJulian Anastasov saddr = NULL; 22711da177e4SLinus Torvalds } 22720dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 22730dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 22740dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 22750dec879fSJulian Anastasov return; 22760dec879fSJulian Anastasov 22770dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 22780dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 22792b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 22802b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 22812b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 22820dec879fSJulian Anastasov } else if (daddr) { 22830dec879fSJulian Anastasov struct rt6_info *nrt6; 22840dec879fSJulian Anastasov 22854d85cd0cSDavid Ahern rcu_read_lock(); 2286d4ead6b3SDavid Ahern nrt6 = ip6_rt_cache_alloc(rt6->from, daddr, saddr); 22874d85cd0cSDavid Ahern rcu_read_unlock(); 228845e4fd26SMartin KaFai Lau if (nrt6) { 228945e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2290d4ead6b3SDavid Ahern if (rt6_insert_exception(nrt6, rt6->from)) 22912b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 229245e4fd26SMartin KaFai Lau } 229345e4fd26SMartin KaFai Lau } 229445e4fd26SMartin KaFai Lau } 229545e4fd26SMartin KaFai Lau 229645e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 229745e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 229845e4fd26SMartin KaFai Lau { 229945e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23001da177e4SLinus Torvalds } 23011da177e4SLinus Torvalds 230242ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2303e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 230481aded24SDavid S. Miller { 230581aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 230681aded24SDavid S. Miller struct dst_entry *dst; 230781aded24SDavid S. Miller struct flowi6 fl6; 230881aded24SDavid S. Miller 230981aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 231081aded24SDavid S. Miller fl6.flowi6_oif = oif; 23111b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 231281aded24SDavid S. Miller fl6.daddr = iph->daddr; 231381aded24SDavid S. Miller fl6.saddr = iph->saddr; 23146502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2315e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 231681aded24SDavid S. Miller 231781aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 231881aded24SDavid S. Miller if (!dst->error) 231945e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 232081aded24SDavid S. Miller dst_release(dst); 232181aded24SDavid S. Miller } 232281aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 232381aded24SDavid S. Miller 232481aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 232581aded24SDavid S. Miller { 232633c162a9SMartin KaFai Lau struct dst_entry *dst; 232733c162a9SMartin KaFai Lau 232881aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2329e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 233033c162a9SMartin KaFai Lau 233133c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 233233c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 233333c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 233433c162a9SMartin KaFai Lau return; 233533c162a9SMartin KaFai Lau 233633c162a9SMartin KaFai Lau bh_lock_sock(sk); 233733c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 233833c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 233933c162a9SMartin KaFai Lau bh_unlock_sock(sk); 234081aded24SDavid S. Miller } 234181aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 234281aded24SDavid S. Miller 23437d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 23447d6850f7SAlexey Kodanev const struct flowi6 *fl6) 23457d6850f7SAlexey Kodanev { 23467d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23477d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 23487d6850f7SAlexey Kodanev #endif 23497d6850f7SAlexey Kodanev 23507d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 23517d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 23527d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 23537d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 23547d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 23557d6850f7SAlexey Kodanev &np->saddr : 23567d6850f7SAlexey Kodanev #endif 23577d6850f7SAlexey Kodanev NULL); 23587d6850f7SAlexey Kodanev } 23597d6850f7SAlexey Kodanev 2360b55b76b2SDuan Jiong /* Handle redirects */ 2361b55b76b2SDuan Jiong struct ip6rd_flowi { 2362b55b76b2SDuan Jiong struct flowi6 fl6; 2363b55b76b2SDuan Jiong struct in6_addr gateway; 2364b55b76b2SDuan Jiong }; 2365b55b76b2SDuan Jiong 2366b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2367b55b76b2SDuan Jiong struct fib6_table *table, 2368b55b76b2SDuan Jiong struct flowi6 *fl6, 2369b75cc8f9SDavid Ahern const struct sk_buff *skb, 2370b55b76b2SDuan Jiong int flags) 2371b55b76b2SDuan Jiong { 2372b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 237323fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 23748d1c802bSDavid Ahern struct fib6_info *rt; 2375b55b76b2SDuan Jiong struct fib6_node *fn; 2376b55b76b2SDuan Jiong 2377b55b76b2SDuan Jiong /* Get the "current" route for this destination and 237867c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2379b55b76b2SDuan Jiong * 2380b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2381b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2382b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2383b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2384b55b76b2SDuan Jiong * routes. 2385b55b76b2SDuan Jiong */ 2386b55b76b2SDuan Jiong 238766f5d6ceSWei Wang rcu_read_lock(); 2388b55b76b2SDuan Jiong fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2389b55b76b2SDuan Jiong restart: 239066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 23915e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 23928067bb8cSIdo Schimmel continue; 239314895687SDavid Ahern if (fib6_check_expired(rt)) 2394b55b76b2SDuan Jiong continue; 239593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2396b55b76b2SDuan Jiong break; 239793c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2398b55b76b2SDuan Jiong continue; 23995e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2400b55b76b2SDuan Jiong continue; 24012b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24022b760fcfSWei Wang * in the case of an ip redirect. 24032b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24042b760fcfSWei Wang * is different. 24052b760fcfSWei Wang */ 24065e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24072b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24082b760fcfSWei Wang &fl6->daddr, 24092b760fcfSWei Wang &fl6->saddr); 24102b760fcfSWei Wang if (rt_cache && 24112b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24122b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 241323fb93a4SDavid Ahern ret = rt_cache; 24142b760fcfSWei Wang break; 24152b760fcfSWei Wang } 2416b55b76b2SDuan Jiong continue; 24172b760fcfSWei Wang } 2418b55b76b2SDuan Jiong break; 2419b55b76b2SDuan Jiong } 2420b55b76b2SDuan Jiong 2421b55b76b2SDuan Jiong if (!rt) 2422421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 242393c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 242423fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2425b0a1ba59SMartin KaFai Lau goto out; 2426b0a1ba59SMartin KaFai Lau } 2427b0a1ba59SMartin KaFai Lau 2428421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2429a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2430a3c00e46SMartin KaFai Lau if (fn) 2431a3c00e46SMartin KaFai Lau goto restart; 2432b55b76b2SDuan Jiong } 2433a3c00e46SMartin KaFai Lau 2434b0a1ba59SMartin KaFai Lau out: 243523fb93a4SDavid Ahern if (ret) 243623fb93a4SDavid Ahern dst_hold(&ret->dst); 243723fb93a4SDavid Ahern else 243823fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2439b55b76b2SDuan Jiong 244066f5d6ceSWei Wang rcu_read_unlock(); 2441b55b76b2SDuan Jiong 244223fb93a4SDavid Ahern trace_fib6_table_lookup(net, ret, table, fl6); 244323fb93a4SDavid Ahern return ret; 2444b55b76b2SDuan Jiong }; 2445b55b76b2SDuan Jiong 2446b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2447b55b76b2SDuan Jiong const struct flowi6 *fl6, 2448b75cc8f9SDavid Ahern const struct sk_buff *skb, 2449b55b76b2SDuan Jiong const struct in6_addr *gateway) 2450b55b76b2SDuan Jiong { 2451b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2452b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2453b55b76b2SDuan Jiong 2454b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2455b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2456b55b76b2SDuan Jiong 2457b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2458b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2459b55b76b2SDuan Jiong } 2460b55b76b2SDuan Jiong 2461e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2462e2d118a1SLorenzo Colitti kuid_t uid) 24633a5ad2eeSDavid S. Miller { 24643a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 24653a5ad2eeSDavid S. Miller struct dst_entry *dst; 24663a5ad2eeSDavid S. Miller struct flowi6 fl6; 24673a5ad2eeSDavid S. Miller 24683a5ad2eeSDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 2469e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 24703a5ad2eeSDavid S. Miller fl6.flowi6_oif = oif; 24713a5ad2eeSDavid S. Miller fl6.flowi6_mark = mark; 24723a5ad2eeSDavid S. Miller fl6.daddr = iph->daddr; 24733a5ad2eeSDavid S. Miller fl6.saddr = iph->saddr; 24746502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2475e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 24763a5ad2eeSDavid S. Miller 2477b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 24786700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 24793a5ad2eeSDavid S. Miller dst_release(dst); 24803a5ad2eeSDavid S. Miller } 24813a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 24823a5ad2eeSDavid S. Miller 2483c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2484c92a59ecSDuan Jiong u32 mark) 2485c92a59ecSDuan Jiong { 2486c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2487c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2488c92a59ecSDuan Jiong struct dst_entry *dst; 2489c92a59ecSDuan Jiong struct flowi6 fl6; 2490c92a59ecSDuan Jiong 2491c92a59ecSDuan Jiong memset(&fl6, 0, sizeof(fl6)); 2492e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 2493c92a59ecSDuan Jiong fl6.flowi6_oif = oif; 2494c92a59ecSDuan Jiong fl6.flowi6_mark = mark; 2495c92a59ecSDuan Jiong fl6.daddr = msg->dest; 2496c92a59ecSDuan Jiong fl6.saddr = iph->daddr; 2497e2d118a1SLorenzo Colitti fl6.flowi6_uid = sock_net_uid(net, NULL); 2498c92a59ecSDuan Jiong 2499b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2500c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2501c92a59ecSDuan Jiong dst_release(dst); 2502c92a59ecSDuan Jiong } 2503c92a59ecSDuan Jiong 25043a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25053a5ad2eeSDavid S. Miller { 2506e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2507e2d118a1SLorenzo Colitti sk->sk_uid); 25083a5ad2eeSDavid S. Miller } 25093a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25103a5ad2eeSDavid S. Miller 25110dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25121da177e4SLinus Torvalds { 25130dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25140dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25150dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25160dbaee3bSDavid S. Miller 25171da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25181da177e4SLinus Torvalds 25195578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25205578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25211da177e4SLinus Torvalds 25221da177e4SLinus Torvalds /* 25231da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25241da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25251da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25261da177e4SLinus Torvalds * rely only on pmtu discovery" 25271da177e4SLinus Torvalds */ 25281da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25291da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25301da177e4SLinus Torvalds return mtu; 25311da177e4SLinus Torvalds } 25321da177e4SLinus Torvalds 2533ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2534d33e4553SDavid S. Miller { 2535d33e4553SDavid S. Miller struct inet6_dev *idev; 2536d4ead6b3SDavid Ahern unsigned int mtu; 2537618f9bc7SSteffen Klassert 25384b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 25394b32b5adSMartin KaFai Lau if (mtu) 25404b32b5adSMartin KaFai Lau goto out; 25414b32b5adSMartin KaFai Lau 2542618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2543d33e4553SDavid S. Miller 2544d33e4553SDavid S. Miller rcu_read_lock(); 2545d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2546d33e4553SDavid S. Miller if (idev) 2547d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2548d33e4553SDavid S. Miller rcu_read_unlock(); 2549d33e4553SDavid S. Miller 255030f78d8eSEric Dumazet out: 255114972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 255214972cbdSRoopa Prabhu 255314972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2554d33e4553SDavid S. Miller } 2555d33e4553SDavid S. Miller 25563b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 255787a11578SDavid S. Miller struct flowi6 *fl6) 25581da177e4SLinus Torvalds { 255987a11578SDavid S. Miller struct dst_entry *dst; 25601da177e4SLinus Torvalds struct rt6_info *rt; 25611da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2562c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 25631da177e4SLinus Torvalds 256438308473SDavid S. Miller if (unlikely(!idev)) 2565122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 25661da177e4SLinus Torvalds 2567ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 256838308473SDavid S. Miller if (unlikely(!rt)) { 25691da177e4SLinus Torvalds in6_dev_put(idev); 257087a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 25711da177e4SLinus Torvalds goto out; 25721da177e4SLinus Torvalds } 25731da177e4SLinus Torvalds 25748e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2575588753f1SBrendan McGrath rt->dst.input = ip6_input; 25768e2ec639SYan, Zheng rt->dst.output = ip6_output; 2577550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 257887a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 25798e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 25808e2ec639SYan, Zheng rt->rt6i_idev = idev; 258114edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 25821da177e4SLinus Torvalds 25834c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2584587fea74SWei Wang * do proper release of the net_device 2585587fea74SWei Wang */ 2586587fea74SWei Wang rt6_uncached_list_add(rt); 258781eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 25881da177e4SLinus Torvalds 258987a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 259087a11578SDavid S. Miller 25911da177e4SLinus Torvalds out: 259287a11578SDavid S. Miller return dst; 25931da177e4SLinus Torvalds } 25941da177e4SLinus Torvalds 2595569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 25961da177e4SLinus Torvalds { 259786393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 25987019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 25997019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 26007019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 26017019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 26027019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2603fc66f95cSEric Dumazet int entries; 26041da177e4SLinus Torvalds 2605fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 260649a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2607fc66f95cSEric Dumazet entries <= rt_max_size) 26081da177e4SLinus Torvalds goto out; 26091da177e4SLinus Torvalds 26106891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 261114956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2612fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2613fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 26147019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 26151da177e4SLinus Torvalds out: 26167019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2617fc66f95cSEric Dumazet return entries > rt_max_size; 26181da177e4SLinus Torvalds } 26191da177e4SLinus Torvalds 26208d1c802bSDavid Ahern static int ip6_convert_metrics(struct net *net, struct fib6_info *rt, 2621d4ead6b3SDavid Ahern struct fib6_config *cfg) 2622e715b6d3SFlorian Westphal { 2623263243d6SEric Dumazet struct dst_metrics *p; 2624e715b6d3SFlorian Westphal 2625263243d6SEric Dumazet if (!cfg->fc_mx) 2626263243d6SEric Dumazet return 0; 2627263243d6SEric Dumazet 2628263243d6SEric Dumazet p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL); 2629263243d6SEric Dumazet if (unlikely(!p)) 2630e715b6d3SFlorian Westphal return -ENOMEM; 2631e715b6d3SFlorian Westphal 2632263243d6SEric Dumazet refcount_set(&p->refcnt, 1); 2633263243d6SEric Dumazet rt->fib6_metrics = p; 2634ea697639SDaniel Borkmann 2635263243d6SEric Dumazet return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics); 2636e715b6d3SFlorian Westphal } 26371da177e4SLinus Torvalds 26388c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 26398c14586fSDavid Ahern struct fib6_config *cfg, 2640f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2641f4797b33SDavid Ahern u32 tbid, int flags) 26428c14586fSDavid Ahern { 26438c14586fSDavid Ahern struct flowi6 fl6 = { 26448c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 26458c14586fSDavid Ahern .daddr = *gw_addr, 26468c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 26478c14586fSDavid Ahern }; 26488c14586fSDavid Ahern struct fib6_table *table; 26498c14586fSDavid Ahern struct rt6_info *rt; 26508c14586fSDavid Ahern 2651f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 26528c14586fSDavid Ahern if (!table) 26538c14586fSDavid Ahern return NULL; 26548c14586fSDavid Ahern 26558c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 26568c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 26578c14586fSDavid Ahern 2658f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2659b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 26608c14586fSDavid Ahern 26618c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 26628c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 26638c14586fSDavid Ahern ip6_rt_put(rt); 26648c14586fSDavid Ahern rt = NULL; 26658c14586fSDavid Ahern } 26668c14586fSDavid Ahern 26678c14586fSDavid Ahern return rt; 26688c14586fSDavid Ahern } 26698c14586fSDavid Ahern 2670fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2671fc1e64e1SDavid Ahern struct fib6_config *cfg, 26729fbb704cSDavid Ahern const struct net_device *dev, 2673fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2674fc1e64e1SDavid Ahern { 267544750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2676fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2677fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2678fc1e64e1SDavid Ahern struct rt6_info *grt; 2679fc1e64e1SDavid Ahern int err; 2680fc1e64e1SDavid Ahern 2681fc1e64e1SDavid Ahern err = 0; 2682fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2683fc1e64e1SDavid Ahern if (grt) { 268458e354c0SDavid Ahern if (!grt->dst.error && 268558e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 268644750f84SDavid Ahern NL_SET_ERR_MSG(extack, 268744750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2688fc1e64e1SDavid Ahern err = -EINVAL; 2689fc1e64e1SDavid Ahern } 2690fc1e64e1SDavid Ahern 2691fc1e64e1SDavid Ahern ip6_rt_put(grt); 2692fc1e64e1SDavid Ahern } 2693fc1e64e1SDavid Ahern 2694fc1e64e1SDavid Ahern return err; 2695fc1e64e1SDavid Ahern } 2696fc1e64e1SDavid Ahern 26971edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 26981edce99fSDavid Ahern struct fib6_config *cfg, 26991edce99fSDavid Ahern struct net_device **_dev, 27001edce99fSDavid Ahern struct inet6_dev **idev) 27011edce99fSDavid Ahern { 27021edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27031edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 27041edce99fSDavid Ahern struct rt6_info *grt = NULL; 27051edce99fSDavid Ahern int err = -EHOSTUNREACH; 27061edce99fSDavid Ahern 27071edce99fSDavid Ahern if (cfg->fc_table) { 2708f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2709f4797b33SDavid Ahern 2710f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2711f4797b33SDavid Ahern cfg->fc_table, flags); 27121edce99fSDavid Ahern if (grt) { 27131edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 27141edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 27151edce99fSDavid Ahern ip6_rt_put(grt); 27161edce99fSDavid Ahern grt = NULL; 27171edce99fSDavid Ahern } 27181edce99fSDavid Ahern } 27191edce99fSDavid Ahern } 27201edce99fSDavid Ahern 27211edce99fSDavid Ahern if (!grt) 2722b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 27231edce99fSDavid Ahern 27241edce99fSDavid Ahern if (!grt) 27251edce99fSDavid Ahern goto out; 27261edce99fSDavid Ahern 27271edce99fSDavid Ahern if (dev) { 27281edce99fSDavid Ahern if (dev != grt->dst.dev) { 27291edce99fSDavid Ahern ip6_rt_put(grt); 27301edce99fSDavid Ahern goto out; 27311edce99fSDavid Ahern } 27321edce99fSDavid Ahern } else { 27331edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 27341edce99fSDavid Ahern *idev = grt->rt6i_idev; 27351edce99fSDavid Ahern dev_hold(dev); 27361edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 27371edce99fSDavid Ahern } 27381edce99fSDavid Ahern 27391edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 27401edce99fSDavid Ahern err = 0; 27411edce99fSDavid Ahern 27421edce99fSDavid Ahern ip6_rt_put(grt); 27431edce99fSDavid Ahern 27441edce99fSDavid Ahern out: 27451edce99fSDavid Ahern return err; 27461edce99fSDavid Ahern } 27471edce99fSDavid Ahern 27489fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 27499fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 27509fbb704cSDavid Ahern struct netlink_ext_ack *extack) 27519fbb704cSDavid Ahern { 27529fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 27539fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2754232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 27559fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2756232378e8SDavid Ahern bool need_addr_check = !dev; 27579fbb704cSDavid Ahern int err = -EINVAL; 27589fbb704cSDavid Ahern 27599fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 27609fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 27619fbb704cSDavid Ahern * will return already-added prefix route via interface that 27629fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 27639fbb704cSDavid Ahern */ 2764232378e8SDavid Ahern if (dev && 2765232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2766232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 27679fbb704cSDavid Ahern goto out; 27689fbb704cSDavid Ahern } 27699fbb704cSDavid Ahern 27709fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 27719fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 27729fbb704cSDavid Ahern * addresses as nexthop address. 27739fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 27749fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 27759fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 27769fbb704cSDavid Ahern * some exceptions. --ANK 27779fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 27789fbb704cSDavid Ahern * addressing 27799fbb704cSDavid Ahern */ 27809fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 27819fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 27829fbb704cSDavid Ahern goto out; 27839fbb704cSDavid Ahern } 27849fbb704cSDavid Ahern 27859fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 27869fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 27879fbb704cSDavid Ahern else 27889fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 27899fbb704cSDavid Ahern 27909fbb704cSDavid Ahern if (err) 27919fbb704cSDavid Ahern goto out; 27929fbb704cSDavid Ahern } 27939fbb704cSDavid Ahern 27949fbb704cSDavid Ahern /* reload in case device was changed */ 27959fbb704cSDavid Ahern dev = *_dev; 27969fbb704cSDavid Ahern 27979fbb704cSDavid Ahern err = -EINVAL; 27989fbb704cSDavid Ahern if (!dev) { 27999fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 28009fbb704cSDavid Ahern goto out; 28019fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 28029fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 28039fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 28049fbb704cSDavid Ahern goto out; 28059fbb704cSDavid Ahern } 2806232378e8SDavid Ahern 2807232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2808232378e8SDavid Ahern * egress device has been resolved. 2809232378e8SDavid Ahern */ 2810232378e8SDavid Ahern if (need_addr_check && 2811232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2812232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2813232378e8SDavid Ahern goto out; 2814232378e8SDavid Ahern } 2815232378e8SDavid Ahern 28169fbb704cSDavid Ahern err = 0; 28179fbb704cSDavid Ahern out: 28189fbb704cSDavid Ahern return err; 28199fbb704cSDavid Ahern } 28209fbb704cSDavid Ahern 28218d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2822acb54e3cSDavid Ahern gfp_t gfp_flags, 2823333c4301SDavid Ahern struct netlink_ext_ack *extack) 28241da177e4SLinus Torvalds { 28255578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 28268d1c802bSDavid Ahern struct fib6_info *rt = NULL; 28271da177e4SLinus Torvalds struct net_device *dev = NULL; 28281da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2829c71099acSThomas Graf struct fib6_table *table; 28301da177e4SLinus Torvalds int addr_type; 28318c5b83f0SRoopa Prabhu int err = -EINVAL; 28321da177e4SLinus Torvalds 2833557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2834d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2835d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2836557c44beSDavid Ahern goto out; 2837d5d531cbSDavid Ahern } 2838557c44beSDavid Ahern 28392ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 28402ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 28412ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 28422ea2352eSWei Wang goto out; 28432ea2352eSWei Wang } 28442ea2352eSWei Wang 2845e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2846e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2847e8478e80SDavid Ahern goto out; 2848e8478e80SDavid Ahern } 2849e8478e80SDavid Ahern 2850d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2851d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 28528c5b83f0SRoopa Prabhu goto out; 2853d5d531cbSDavid Ahern } 2854d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2855d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2856d5d531cbSDavid Ahern goto out; 2857d5d531cbSDavid Ahern } 28581da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2859d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2860d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2861d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 28628c5b83f0SRoopa Prabhu goto out; 2863d5d531cbSDavid Ahern } 28641da177e4SLinus Torvalds #endif 286586872cb5SThomas Graf if (cfg->fc_ifindex) { 28661da177e4SLinus Torvalds err = -ENODEV; 28675578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 28681da177e4SLinus Torvalds if (!dev) 28691da177e4SLinus Torvalds goto out; 28701da177e4SLinus Torvalds idev = in6_dev_get(dev); 28711da177e4SLinus Torvalds if (!idev) 28721da177e4SLinus Torvalds goto out; 28731da177e4SLinus Torvalds } 28741da177e4SLinus Torvalds 287586872cb5SThomas Graf if (cfg->fc_metric == 0) 287686872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 28771da177e4SLinus Torvalds 2878fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2879fc1e64e1SDavid Ahern if (!dev) { 2880fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2881fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2882fc1e64e1SDavid Ahern err = -ENODEV; 2883fc1e64e1SDavid Ahern goto out; 2884fc1e64e1SDavid Ahern } 2885fc1e64e1SDavid Ahern 2886fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 2887fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 2888fc1e64e1SDavid Ahern err = -ENETDOWN; 2889fc1e64e1SDavid Ahern goto out; 2890fc1e64e1SDavid Ahern } 2891fc1e64e1SDavid Ahern } 2892fc1e64e1SDavid Ahern 2893c71099acSThomas Graf err = -ENOBUFS; 289438308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 2895d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 2896d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 289738308473SDavid S. Miller if (!table) { 2898f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 2899d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2900d71314b4SMatti Vaittinen } 2901d71314b4SMatti Vaittinen } else { 2902d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 2903d71314b4SMatti Vaittinen } 290438308473SDavid S. Miller 290538308473SDavid S. Miller if (!table) 2906c71099acSThomas Graf goto out; 2907c71099acSThomas Graf 29081da177e4SLinus Torvalds err = -ENOMEM; 290993531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 291093531c67SDavid Ahern if (!rt) 29111da177e4SLinus Torvalds goto out; 291293531c67SDavid Ahern 291393531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 291493531c67SDavid Ahern rt->dst_nocount = true; 29151da177e4SLinus Torvalds 2916d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, cfg); 2917d4ead6b3SDavid Ahern if (err < 0) 2918d4ead6b3SDavid Ahern goto out; 2919d4ead6b3SDavid Ahern 29201716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 292114895687SDavid Ahern fib6_set_expires(rt, jiffies + 29221716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 29231716a961SGao feng else 292414895687SDavid Ahern fib6_clean_expires(rt); 29251da177e4SLinus Torvalds 292686872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 292786872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 292893c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 292986872cb5SThomas Graf 293086872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 29311da177e4SLinus Torvalds 293219e42e45SRoopa Prabhu if (cfg->fc_encap) { 293319e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 293419e42e45SRoopa Prabhu 293530357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 2936127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 29379ae28727SDavid Ahern &lwtstate, extack); 293819e42e45SRoopa Prabhu if (err) 293919e42e45SRoopa Prabhu goto out; 29405e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 294125368623STom Herbert } 294219e42e45SRoopa Prabhu 294393c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 294493c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 294593c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 29463b6761d1SDavid Ahern rt->dst_host = true; 29471da177e4SLinus Torvalds 29481da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 294993c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 295093c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 29511da177e4SLinus Torvalds #endif 29521da177e4SLinus Torvalds 295393c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 29545e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 29551da177e4SLinus Torvalds 2956e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 2957e8478e80SDavid Ahern 29581da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 29591da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 29601da177e4SLinus Torvalds */ 296186872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 296238308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 296338308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 296438308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 29651da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 29665578689aSDaniel Lezcano if (dev != net->loopback_dev) { 29671da177e4SLinus Torvalds if (dev) { 29681da177e4SLinus Torvalds dev_put(dev); 29691da177e4SLinus Torvalds in6_dev_put(idev); 29701da177e4SLinus Torvalds } 29715578689aSDaniel Lezcano dev = net->loopback_dev; 29721da177e4SLinus Torvalds dev_hold(dev); 29731da177e4SLinus Torvalds idev = in6_dev_get(dev); 29741da177e4SLinus Torvalds if (!idev) { 29751da177e4SLinus Torvalds err = -ENODEV; 29761da177e4SLinus Torvalds goto out; 29771da177e4SLinus Torvalds } 29781da177e4SLinus Torvalds } 297993c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 29801da177e4SLinus Torvalds goto install_route; 29811da177e4SLinus Torvalds } 29821da177e4SLinus Torvalds 298386872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 29849fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 29851da177e4SLinus Torvalds if (err) 29861da177e4SLinus Torvalds goto out; 29879fbb704cSDavid Ahern 298893531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 29891da177e4SLinus Torvalds } 29901da177e4SLinus Torvalds 29911da177e4SLinus Torvalds err = -ENODEV; 299238308473SDavid S. Miller if (!dev) 29931da177e4SLinus Torvalds goto out; 29941da177e4SLinus Torvalds 2995428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 2996428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 2997428604fbSLorenzo Bianconi err = -EACCES; 2998428604fbSLorenzo Bianconi goto out; 2999428604fbSLorenzo Bianconi } 3000428604fbSLorenzo Bianconi 3001955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3002955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3003955ec4cbSDavid Ahern err = -ENETDOWN; 3004955ec4cbSDavid Ahern goto out; 3005955ec4cbSDavid Ahern } 3006955ec4cbSDavid Ahern 3007c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3008c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3009d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3010c3968a85SDaniel Walter err = -EINVAL; 3011c3968a85SDaniel Walter goto out; 3012c3968a85SDaniel Walter } 301393c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 301493c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3015c3968a85SDaniel Walter } else 301693c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3017c3968a85SDaniel Walter 301893c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 30191da177e4SLinus Torvalds 30201da177e4SLinus Torvalds install_route: 302193c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 30225609b80aSIdo Schimmel !netif_carrier_ok(dev)) 30235e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 30245e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 302593531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 302693c2fb25SDavid Ahern rt->fib6_table = table; 302763152fc0SDaniel Lezcano 3028c346dca1SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = dev_net(dev); 302963152fc0SDaniel Lezcano 3030dcd1f572SDavid Ahern if (idev) 3031dcd1f572SDavid Ahern in6_dev_put(idev); 3032dcd1f572SDavid Ahern 30338c5b83f0SRoopa Prabhu return rt; 30341da177e4SLinus Torvalds out: 30351da177e4SLinus Torvalds if (dev) 30361da177e4SLinus Torvalds dev_put(dev); 30371da177e4SLinus Torvalds if (idev) 30381da177e4SLinus Torvalds in6_dev_put(idev); 30396b9ea5a6SRoopa Prabhu 304093531c67SDavid Ahern fib6_info_release(rt); 30418c5b83f0SRoopa Prabhu return ERR_PTR(err); 30426b9ea5a6SRoopa Prabhu } 30436b9ea5a6SRoopa Prabhu 3044acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3045acb54e3cSDavid Ahern struct netlink_ext_ack *extack) 30466b9ea5a6SRoopa Prabhu { 30478d1c802bSDavid Ahern struct fib6_info *rt; 30486b9ea5a6SRoopa Prabhu int err; 30496b9ea5a6SRoopa Prabhu 3050acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3051d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3052d4ead6b3SDavid Ahern return PTR_ERR(rt); 30536b9ea5a6SRoopa Prabhu 3054d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 305593531c67SDavid Ahern fib6_info_release(rt); 30566b9ea5a6SRoopa Prabhu 30571da177e4SLinus Torvalds return err; 30581da177e4SLinus Torvalds } 30591da177e4SLinus Torvalds 30608d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 30611da177e4SLinus Torvalds { 3062afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3063c71099acSThomas Graf struct fib6_table *table; 3064afb1d4b5SDavid Ahern int err; 30651da177e4SLinus Torvalds 3066421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 30676825a26cSGao feng err = -ENOENT; 30686825a26cSGao feng goto out; 30696825a26cSGao feng } 30706c813a72SPatrick McHardy 307193c2fb25SDavid Ahern table = rt->fib6_table; 307266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 307386872cb5SThomas Graf err = fib6_del(rt, info); 307466f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 30751da177e4SLinus Torvalds 30766825a26cSGao feng out: 307793531c67SDavid Ahern fib6_info_release(rt); 30781da177e4SLinus Torvalds return err; 30791da177e4SLinus Torvalds } 30801da177e4SLinus Torvalds 30818d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3082e0a1ad73SThomas Graf { 3083afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3084afb1d4b5SDavid Ahern 3085528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3086e0a1ad73SThomas Graf } 3087e0a1ad73SThomas Graf 30888d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 30890ae81335SDavid Ahern { 30900ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3091e3330039SWANG Cong struct net *net = info->nl_net; 309216a16cd3SDavid Ahern struct sk_buff *skb = NULL; 30930ae81335SDavid Ahern struct fib6_table *table; 3094e3330039SWANG Cong int err = -ENOENT; 30950ae81335SDavid Ahern 3096421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3097e3330039SWANG Cong goto out_put; 309893c2fb25SDavid Ahern table = rt->fib6_table; 309966f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 31000ae81335SDavid Ahern 310193c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 31028d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 31030ae81335SDavid Ahern 310416a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 310516a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 310616a16cd3SDavid Ahern if (skb) { 310716a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 310816a16cd3SDavid Ahern 3109d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 311016a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 311116a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 311216a16cd3SDavid Ahern kfree_skb(skb); 311316a16cd3SDavid Ahern skb = NULL; 311416a16cd3SDavid Ahern } else 311516a16cd3SDavid Ahern info->skip_notify = 1; 311616a16cd3SDavid Ahern } 311716a16cd3SDavid Ahern 31180ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 311993c2fb25SDavid Ahern &rt->fib6_siblings, 312093c2fb25SDavid Ahern fib6_siblings) { 31210ae81335SDavid Ahern err = fib6_del(sibling, info); 31220ae81335SDavid Ahern if (err) 3123e3330039SWANG Cong goto out_unlock; 31240ae81335SDavid Ahern } 31250ae81335SDavid Ahern } 31260ae81335SDavid Ahern 31270ae81335SDavid Ahern err = fib6_del(rt, info); 3128e3330039SWANG Cong out_unlock: 312966f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3130e3330039SWANG Cong out_put: 313193531c67SDavid Ahern fib6_info_release(rt); 313216a16cd3SDavid Ahern 313316a16cd3SDavid Ahern if (skb) { 3134e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 313516a16cd3SDavid Ahern info->nlh, gfp_any()); 313616a16cd3SDavid Ahern } 31370ae81335SDavid Ahern return err; 31380ae81335SDavid Ahern } 31390ae81335SDavid Ahern 314023fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 314123fb93a4SDavid Ahern { 314223fb93a4SDavid Ahern int rc = -ESRCH; 314323fb93a4SDavid Ahern 314423fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 314523fb93a4SDavid Ahern goto out; 314623fb93a4SDavid Ahern 314723fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 314823fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 314923fb93a4SDavid Ahern goto out; 315023fb93a4SDavid Ahern if (dst_hold_safe(&rt->dst)) 315123fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 315223fb93a4SDavid Ahern out: 315323fb93a4SDavid Ahern return rc; 315423fb93a4SDavid Ahern } 315523fb93a4SDavid Ahern 3156333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3157333c4301SDavid Ahern struct netlink_ext_ack *extack) 31581da177e4SLinus Torvalds { 31598d1c802bSDavid Ahern struct rt6_info *rt_cache; 3160c71099acSThomas Graf struct fib6_table *table; 31618d1c802bSDavid Ahern struct fib6_info *rt; 31621da177e4SLinus Torvalds struct fib6_node *fn; 31631da177e4SLinus Torvalds int err = -ESRCH; 31641da177e4SLinus Torvalds 31655578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3166d5d531cbSDavid Ahern if (!table) { 3167d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3168c71099acSThomas Graf return err; 3169d5d531cbSDavid Ahern } 31701da177e4SLinus Torvalds 317166f5d6ceSWei Wang rcu_read_lock(); 3172c71099acSThomas Graf 3173c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 317486872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 317538fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 31762b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 31771da177e4SLinus Torvalds 31781da177e4SLinus Torvalds if (fn) { 317966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 31802b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 318123fb93a4SDavid Ahern int rc; 318223fb93a4SDavid Ahern 31832b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 31842b760fcfSWei Wang &cfg->fc_src); 318523fb93a4SDavid Ahern if (rt_cache) { 318623fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 318723fb93a4SDavid Ahern if (rc != -ESRCH) 318823fb93a4SDavid Ahern return rc; 318923fb93a4SDavid Ahern } 31901f56a01fSMartin KaFai Lau continue; 31912b760fcfSWei Wang } 319286872cb5SThomas Graf if (cfg->fc_ifindex && 31935e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 31945e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 31951da177e4SLinus Torvalds continue; 319686872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 31975e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 31981da177e4SLinus Torvalds continue; 319993c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 32001da177e4SLinus Torvalds continue; 320193c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3202c2ed1880SMantas M continue; 320393531c67SDavid Ahern fib6_info_hold(rt); 320466f5d6ceSWei Wang rcu_read_unlock(); 32051da177e4SLinus Torvalds 32060ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 32070ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 320886872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 32090ae81335SDavid Ahern 32100ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 32111da177e4SLinus Torvalds } 32121da177e4SLinus Torvalds } 321366f5d6ceSWei Wang rcu_read_unlock(); 32141da177e4SLinus Torvalds 32151da177e4SLinus Torvalds return err; 32161da177e4SLinus Torvalds } 32171da177e4SLinus Torvalds 32186700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3219a6279458SYOSHIFUJI Hideaki { 3220a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3221e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3222e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3223e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3224e8599ff4SDavid S. Miller struct neighbour *neigh; 322571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 32266e157b6aSDavid S. Miller int optlen, on_link; 32276e157b6aSDavid S. Miller u8 *lladdr; 3228e8599ff4SDavid S. Miller 322929a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 323071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3231e8599ff4SDavid S. Miller 3232e8599ff4SDavid S. Miller if (optlen < 0) { 32336e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3234e8599ff4SDavid S. Miller return; 3235e8599ff4SDavid S. Miller } 3236e8599ff4SDavid S. Miller 323771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3238e8599ff4SDavid S. Miller 323971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 32406e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3241e8599ff4SDavid S. Miller return; 3242e8599ff4SDavid S. Miller } 3243e8599ff4SDavid S. Miller 32446e157b6aSDavid S. Miller on_link = 0; 324571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3246e8599ff4SDavid S. Miller on_link = 1; 324771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3248e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 32496e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3250e8599ff4SDavid S. Miller return; 3251e8599ff4SDavid S. Miller } 3252e8599ff4SDavid S. Miller 3253e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3254e8599ff4SDavid S. Miller if (!in6_dev) 3255e8599ff4SDavid S. Miller return; 3256e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3257e8599ff4SDavid S. Miller return; 3258e8599ff4SDavid S. Miller 3259e8599ff4SDavid S. Miller /* RFC2461 8.1: 3260e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3261e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3262e8599ff4SDavid S. Miller */ 3263e8599ff4SDavid S. Miller 3264f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3265e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3266e8599ff4SDavid S. Miller return; 3267e8599ff4SDavid S. Miller } 32686e157b6aSDavid S. Miller 32696e157b6aSDavid S. Miller lladdr = NULL; 3270e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3271e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3272e8599ff4SDavid S. Miller skb->dev); 3273e8599ff4SDavid S. Miller if (!lladdr) { 3274e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3275e8599ff4SDavid S. Miller return; 3276e8599ff4SDavid S. Miller } 3277e8599ff4SDavid S. Miller } 3278e8599ff4SDavid S. Miller 32796e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3280ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 32816e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 32826e157b6aSDavid S. Miller return; 32836e157b6aSDavid S. Miller } 32846e157b6aSDavid S. Miller 32856e157b6aSDavid S. Miller /* Redirect received -> path was valid. 32866e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 32876e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 32886e157b6aSDavid S. Miller */ 32890dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 32906e157b6aSDavid S. Miller 329171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3292e8599ff4SDavid S. Miller if (!neigh) 3293e8599ff4SDavid S. Miller return; 3294e8599ff4SDavid S. Miller 32951da177e4SLinus Torvalds /* 32961da177e4SLinus Torvalds * We have finally decided to accept it. 32971da177e4SLinus Torvalds */ 32981da177e4SLinus Torvalds 3299f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 33001da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 33011da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 33021da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3303f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3304f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 33051da177e4SLinus Torvalds 33064d85cd0cSDavid Ahern rcu_read_lock(); 330723fb93a4SDavid Ahern nrt = ip6_rt_cache_alloc(rt->from, &msg->dest, NULL); 33084d85cd0cSDavid Ahern rcu_read_unlock(); 330938308473SDavid S. Miller if (!nrt) 33101da177e4SLinus Torvalds goto out; 33111da177e4SLinus Torvalds 33121da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 33131da177e4SLinus Torvalds if (on_link) 33141da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 33151da177e4SLinus Torvalds 33164e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 33171da177e4SLinus Torvalds 33182b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 33192b760fcfSWei Wang * a cached route because rt6_insert_exception() will 33202b760fcfSWei Wang * takes care of it 33212b760fcfSWei Wang */ 3322d4ead6b3SDavid Ahern if (rt6_insert_exception(nrt, rt->from)) { 33232b760fcfSWei Wang dst_release_immediate(&nrt->dst); 33242b760fcfSWei Wang goto out; 33252b760fcfSWei Wang } 33261da177e4SLinus Torvalds 3327d8d1f30bSChangli Gao netevent.old = &rt->dst; 3328d8d1f30bSChangli Gao netevent.new = &nrt->dst; 332971bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 333060592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 33318d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 33328d71740cSTom Tucker 33331da177e4SLinus Torvalds out: 3334e8599ff4SDavid S. Miller neigh_release(neigh); 33356e157b6aSDavid S. Miller } 33366e157b6aSDavid S. Miller 333770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 33388d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3339b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3340830218c1SDavid Ahern const struct in6_addr *gwaddr, 3341830218c1SDavid Ahern struct net_device *dev) 334270ceb4f5SYOSHIFUJI Hideaki { 3343830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3344830218c1SDavid Ahern int ifindex = dev->ifindex; 334570ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 33468d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3347c71099acSThomas Graf struct fib6_table *table; 334870ceb4f5SYOSHIFUJI Hideaki 3349830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 335038308473SDavid S. Miller if (!table) 3351c71099acSThomas Graf return NULL; 3352c71099acSThomas Graf 335366f5d6ceSWei Wang rcu_read_lock(); 335438fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 335570ceb4f5SYOSHIFUJI Hideaki if (!fn) 335670ceb4f5SYOSHIFUJI Hideaki goto out; 335770ceb4f5SYOSHIFUJI Hideaki 335866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 33595e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 336070ceb4f5SYOSHIFUJI Hideaki continue; 336193c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 336270ceb4f5SYOSHIFUJI Hideaki continue; 33635e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 336470ceb4f5SYOSHIFUJI Hideaki continue; 33658d1c802bSDavid Ahern fib6_info_hold(rt); 336670ceb4f5SYOSHIFUJI Hideaki break; 336770ceb4f5SYOSHIFUJI Hideaki } 336870ceb4f5SYOSHIFUJI Hideaki out: 336966f5d6ceSWei Wang rcu_read_unlock(); 337070ceb4f5SYOSHIFUJI Hideaki return rt; 337170ceb4f5SYOSHIFUJI Hideaki } 337270ceb4f5SYOSHIFUJI Hideaki 33738d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3374b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3375830218c1SDavid Ahern const struct in6_addr *gwaddr, 3376830218c1SDavid Ahern struct net_device *dev, 337795c96174SEric Dumazet unsigned int pref) 337870ceb4f5SYOSHIFUJI Hideaki { 337986872cb5SThomas Graf struct fib6_config cfg = { 3380238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3381830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 338286872cb5SThomas Graf .fc_dst_len = prefixlen, 338386872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 338486872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3385b91d5329SXin Long .fc_protocol = RTPROT_RA, 3386e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 338715e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3388efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3389efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 339086872cb5SThomas Graf }; 339170ceb4f5SYOSHIFUJI Hideaki 3392830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 33934e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 33944e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 339586872cb5SThomas Graf 3396e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3397e317da96SYOSHIFUJI Hideaki if (!prefixlen) 339886872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 339970ceb4f5SYOSHIFUJI Hideaki 3400acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 340170ceb4f5SYOSHIFUJI Hideaki 3402830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 340370ceb4f5SYOSHIFUJI Hideaki } 340470ceb4f5SYOSHIFUJI Hideaki #endif 340570ceb4f5SYOSHIFUJI Hideaki 34068d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3407afb1d4b5SDavid Ahern const struct in6_addr *addr, 3408afb1d4b5SDavid Ahern struct net_device *dev) 34091da177e4SLinus Torvalds { 3410830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 34118d1c802bSDavid Ahern struct fib6_info *rt; 3412c71099acSThomas Graf struct fib6_table *table; 34131da177e4SLinus Torvalds 3414afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 341538308473SDavid S. Miller if (!table) 3416c71099acSThomas Graf return NULL; 34171da177e4SLinus Torvalds 341866f5d6ceSWei Wang rcu_read_lock(); 341966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 34205e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 342193c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 34225e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 34231da177e4SLinus Torvalds break; 34241da177e4SLinus Torvalds } 34251da177e4SLinus Torvalds if (rt) 34268d1c802bSDavid Ahern fib6_info_hold(rt); 342766f5d6ceSWei Wang rcu_read_unlock(); 34281da177e4SLinus Torvalds return rt; 34291da177e4SLinus Torvalds } 34301da177e4SLinus Torvalds 34318d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3432afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3433ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3434ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 34351da177e4SLinus Torvalds { 343686872cb5SThomas Graf struct fib6_config cfg = { 3437ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3438238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 343986872cb5SThomas Graf .fc_ifindex = dev->ifindex, 344086872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 344186872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3442b91d5329SXin Long .fc_protocol = RTPROT_RA, 3443e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 344415e47304SEric W. Biederman .fc_nlinfo.portid = 0, 34455578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3446afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 344786872cb5SThomas Graf }; 34481da177e4SLinus Torvalds 34494e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 34501da177e4SLinus Torvalds 3451acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3452830218c1SDavid Ahern struct fib6_table *table; 3453830218c1SDavid Ahern 3454830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3455830218c1SDavid Ahern if (table) 3456830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3457830218c1SDavid Ahern } 34581da177e4SLinus Torvalds 3459afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 34601da177e4SLinus Torvalds } 34611da177e4SLinus Torvalds 3462afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3463afb1d4b5SDavid Ahern struct fib6_table *table) 34641da177e4SLinus Torvalds { 34658d1c802bSDavid Ahern struct fib6_info *rt; 34661da177e4SLinus Torvalds 34671da177e4SLinus Torvalds restart: 346866f5d6ceSWei Wang rcu_read_lock(); 346966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3470dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3471dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3472dcd1f572SDavid Ahern 347393c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3474dcd1f572SDavid Ahern (!idev || idev->cnf.accept_ra != 2)) { 347593531c67SDavid Ahern fib6_info_hold(rt); 347666f5d6ceSWei Wang rcu_read_unlock(); 3477afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 34781da177e4SLinus Torvalds goto restart; 34791da177e4SLinus Torvalds } 34801da177e4SLinus Torvalds } 348166f5d6ceSWei Wang rcu_read_unlock(); 3482830218c1SDavid Ahern 3483830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3484830218c1SDavid Ahern } 3485830218c1SDavid Ahern 3486830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3487830218c1SDavid Ahern { 3488830218c1SDavid Ahern struct fib6_table *table; 3489830218c1SDavid Ahern struct hlist_head *head; 3490830218c1SDavid Ahern unsigned int h; 3491830218c1SDavid Ahern 3492830218c1SDavid Ahern rcu_read_lock(); 3493830218c1SDavid Ahern 3494830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3495830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3496830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3497830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3498afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3499830218c1SDavid Ahern } 3500830218c1SDavid Ahern } 3501830218c1SDavid Ahern 3502830218c1SDavid Ahern rcu_read_unlock(); 35031da177e4SLinus Torvalds } 35041da177e4SLinus Torvalds 35055578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 35065578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 350786872cb5SThomas Graf struct fib6_config *cfg) 350886872cb5SThomas Graf { 350986872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 351086872cb5SThomas Graf 3511ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3512ca254490SDavid Ahern : RT6_TABLE_MAIN; 351386872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 351486872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 351586872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 351686872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 351786872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 351886872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 3519e8478e80SDavid Ahern cfg->fc_type = rtmsg->rtmsg_type; 352086872cb5SThomas Graf 35215578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3522f1243c2dSBenjamin Thery 35234e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 35244e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 35254e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 352686872cb5SThomas Graf } 352786872cb5SThomas Graf 35285578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 35291da177e4SLinus Torvalds { 353086872cb5SThomas Graf struct fib6_config cfg; 35311da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 35321da177e4SLinus Torvalds int err; 35331da177e4SLinus Torvalds 35341da177e4SLinus Torvalds switch (cmd) { 35351da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 35361da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3537af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 35381da177e4SLinus Torvalds return -EPERM; 35391da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 35401da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 35411da177e4SLinus Torvalds if (err) 35421da177e4SLinus Torvalds return -EFAULT; 35431da177e4SLinus Torvalds 35445578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 354586872cb5SThomas Graf 35461da177e4SLinus Torvalds rtnl_lock(); 35471da177e4SLinus Torvalds switch (cmd) { 35481da177e4SLinus Torvalds case SIOCADDRT: 3549acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 35501da177e4SLinus Torvalds break; 35511da177e4SLinus Torvalds case SIOCDELRT: 3552333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 35531da177e4SLinus Torvalds break; 35541da177e4SLinus Torvalds default: 35551da177e4SLinus Torvalds err = -EINVAL; 35561da177e4SLinus Torvalds } 35571da177e4SLinus Torvalds rtnl_unlock(); 35581da177e4SLinus Torvalds 35591da177e4SLinus Torvalds return err; 35603ff50b79SStephen Hemminger } 35611da177e4SLinus Torvalds 35621da177e4SLinus Torvalds return -EINVAL; 35631da177e4SLinus Torvalds } 35641da177e4SLinus Torvalds 35651da177e4SLinus Torvalds /* 35661da177e4SLinus Torvalds * Drop the packet on the floor 35671da177e4SLinus Torvalds */ 35681da177e4SLinus Torvalds 3569d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 35701da177e4SLinus Torvalds { 3571612f09e8SYOSHIFUJI Hideaki int type; 3572adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3573612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3574612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 35750660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 357645bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3577bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3578bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 35793bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3580612f09e8SYOSHIFUJI Hideaki break; 3581612f09e8SYOSHIFUJI Hideaki } 3582612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3583612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 35843bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 35853bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3586612f09e8SYOSHIFUJI Hideaki break; 3587612f09e8SYOSHIFUJI Hideaki } 35883ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 35891da177e4SLinus Torvalds kfree_skb(skb); 35901da177e4SLinus Torvalds return 0; 35911da177e4SLinus Torvalds } 35921da177e4SLinus Torvalds 35939ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 35949ce8ade0SThomas Graf { 3595612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 35969ce8ade0SThomas Graf } 35979ce8ade0SThomas Graf 3598ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 35991da177e4SLinus Torvalds { 3600adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3601612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 36021da177e4SLinus Torvalds } 36031da177e4SLinus Torvalds 36049ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 36059ce8ade0SThomas Graf { 3606612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 36079ce8ade0SThomas Graf } 36089ce8ade0SThomas Graf 3609ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 36109ce8ade0SThomas Graf { 3611adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3612612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 36139ce8ade0SThomas Graf } 36149ce8ade0SThomas Graf 36151da177e4SLinus Torvalds /* 36161da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 36171da177e4SLinus Torvalds */ 36181da177e4SLinus Torvalds 3619360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3620afb1d4b5SDavid Ahern struct inet6_dev *idev, 36211da177e4SLinus Torvalds const struct in6_addr *addr, 3622acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 36231da177e4SLinus Torvalds { 3624ca254490SDavid Ahern u32 tb_id; 36254832c30dSDavid Ahern struct net_device *dev = idev->dev; 3626360a9887SDavid Ahern struct fib6_info *f6i; 36275f02ce24SDavid Ahern 3628360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3629360a9887SDavid Ahern if (!f6i) 36301da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 36311da177e4SLinus Torvalds 3632360a9887SDavid Ahern f6i->dst_nocount = true; 3633360a9887SDavid Ahern f6i->dst_host = true; 3634360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3635360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3636e8478e80SDavid Ahern if (anycast) { 3637360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3638360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3639e8478e80SDavid Ahern } else { 3640360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3641360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3642e8478e80SDavid Ahern } 36431da177e4SLinus Torvalds 3644360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 364593531c67SDavid Ahern dev_hold(dev); 3646360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3647360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3648360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3649ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3650360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 36511da177e4SLinus Torvalds 3652360a9887SDavid Ahern return f6i; 36531da177e4SLinus Torvalds } 36541da177e4SLinus Torvalds 3655c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3656c3968a85SDaniel Walter struct arg_dev_net_ip { 3657c3968a85SDaniel Walter struct net_device *dev; 3658c3968a85SDaniel Walter struct net *net; 3659c3968a85SDaniel Walter struct in6_addr *addr; 3660c3968a85SDaniel Walter }; 3661c3968a85SDaniel Walter 36628d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3663c3968a85SDaniel Walter { 3664c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3665c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3666c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3667c3968a85SDaniel Walter 36685e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3669421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 367093c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 367160006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3672c3968a85SDaniel Walter /* remove prefsrc entry */ 367393c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 367460006a48SWei Wang /* need to update cache as well */ 367560006a48SWei Wang rt6_exceptions_remove_prefsrc(rt); 367660006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3677c3968a85SDaniel Walter } 3678c3968a85SDaniel Walter return 0; 3679c3968a85SDaniel Walter } 3680c3968a85SDaniel Walter 3681c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3682c3968a85SDaniel Walter { 3683c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3684c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3685c3968a85SDaniel Walter .dev = ifp->idev->dev, 3686c3968a85SDaniel Walter .net = net, 3687c3968a85SDaniel Walter .addr = &ifp->addr, 3688c3968a85SDaniel Walter }; 36890c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3690c3968a85SDaniel Walter } 3691c3968a85SDaniel Walter 3692be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3693be7a010dSDuan Jiong 3694be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 36958d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3696be7a010dSDuan Jiong { 3697be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3698be7a010dSDuan Jiong 369993c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 37005e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3701be7a010dSDuan Jiong return -1; 3702be7a010dSDuan Jiong } 3703b16cb459SWei Wang 3704b16cb459SWei Wang /* Further clean up cached routes in exception table. 3705b16cb459SWei Wang * This is needed because cached route may have a different 3706b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3707b16cb459SWei Wang */ 3708b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3709b16cb459SWei Wang 3710be7a010dSDuan Jiong return 0; 3711be7a010dSDuan Jiong } 3712be7a010dSDuan Jiong 3713be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3714be7a010dSDuan Jiong { 3715be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3716be7a010dSDuan Jiong } 3717be7a010dSDuan Jiong 37182127d95aSIdo Schimmel struct arg_netdev_event { 37192127d95aSIdo Schimmel const struct net_device *dev; 37204c981e28SIdo Schimmel union { 37212127d95aSIdo Schimmel unsigned int nh_flags; 37224c981e28SIdo Schimmel unsigned long event; 37234c981e28SIdo Schimmel }; 37242127d95aSIdo Schimmel }; 37252127d95aSIdo Schimmel 37268d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3727d7dedee1SIdo Schimmel { 37288d1c802bSDavid Ahern struct fib6_info *iter; 3729d7dedee1SIdo Schimmel struct fib6_node *fn; 3730d7dedee1SIdo Schimmel 373193c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 373293c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3733d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 373493c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3735d7dedee1SIdo Schimmel while (iter) { 373693c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 3737d7dedee1SIdo Schimmel rt6_qualify_for_ecmp(iter)) 3738d7dedee1SIdo Schimmel return iter; 3739d7dedee1SIdo Schimmel iter = rcu_dereference_protected(iter->rt6_next, 374093c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3741d7dedee1SIdo Schimmel } 3742d7dedee1SIdo Schimmel 3743d7dedee1SIdo Schimmel return NULL; 3744d7dedee1SIdo Schimmel } 3745d7dedee1SIdo Schimmel 37468d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3747d7dedee1SIdo Schimmel { 37485e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 37495e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3750dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3751d7dedee1SIdo Schimmel return true; 3752d7dedee1SIdo Schimmel 3753d7dedee1SIdo Schimmel return false; 3754d7dedee1SIdo Schimmel } 3755d7dedee1SIdo Schimmel 37568d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3757d7dedee1SIdo Schimmel { 37588d1c802bSDavid Ahern struct fib6_info *iter; 3759d7dedee1SIdo Schimmel int total = 0; 3760d7dedee1SIdo Schimmel 3761d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 37625e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3763d7dedee1SIdo Schimmel 376493c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3765d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 37665e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3767d7dedee1SIdo Schimmel } 3768d7dedee1SIdo Schimmel 3769d7dedee1SIdo Schimmel return total; 3770d7dedee1SIdo Schimmel } 3771d7dedee1SIdo Schimmel 37728d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3773d7dedee1SIdo Schimmel { 3774d7dedee1SIdo Schimmel int upper_bound = -1; 3775d7dedee1SIdo Schimmel 3776d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 37775e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3778d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3779d7dedee1SIdo Schimmel total) - 1; 3780d7dedee1SIdo Schimmel } 37815e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3782d7dedee1SIdo Schimmel } 3783d7dedee1SIdo Schimmel 37848d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3785d7dedee1SIdo Schimmel { 37868d1c802bSDavid Ahern struct fib6_info *iter; 3787d7dedee1SIdo Schimmel int weight = 0; 3788d7dedee1SIdo Schimmel 3789d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3790d7dedee1SIdo Schimmel 379193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3792d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3793d7dedee1SIdo Schimmel } 3794d7dedee1SIdo Schimmel 37958d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3796d7dedee1SIdo Schimmel { 37978d1c802bSDavid Ahern struct fib6_info *first; 3798d7dedee1SIdo Schimmel int total; 3799d7dedee1SIdo Schimmel 3800d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3801d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3802d7dedee1SIdo Schimmel * sibling route. 3803d7dedee1SIdo Schimmel */ 380493c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3805d7dedee1SIdo Schimmel return; 3806d7dedee1SIdo Schimmel 3807d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3808d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3809d7dedee1SIdo Schimmel * onwards. 3810d7dedee1SIdo Schimmel */ 3811d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3812d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3813d7dedee1SIdo Schimmel return; 3814d7dedee1SIdo Schimmel 3815d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3816d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3817d7dedee1SIdo Schimmel } 3818d7dedee1SIdo Schimmel 38198d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 38202127d95aSIdo Schimmel { 38212127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 38227aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 38232127d95aSIdo Schimmel 3824421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 38255e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 38267aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3827d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 38281de178edSIdo Schimmel } 38292127d95aSIdo Schimmel 38302127d95aSIdo Schimmel return 0; 38312127d95aSIdo Schimmel } 38322127d95aSIdo Schimmel 38332127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 38342127d95aSIdo Schimmel { 38352127d95aSIdo Schimmel struct arg_netdev_event arg = { 38362127d95aSIdo Schimmel .dev = dev, 38376802f3adSIdo Schimmel { 38382127d95aSIdo Schimmel .nh_flags = nh_flags, 38396802f3adSIdo Schimmel }, 38402127d95aSIdo Schimmel }; 38412127d95aSIdo Schimmel 38422127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 38432127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 38442127d95aSIdo Schimmel 38452127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 38462127d95aSIdo Schimmel } 38472127d95aSIdo Schimmel 38488d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 38491de178edSIdo Schimmel const struct net_device *dev) 38501de178edSIdo Schimmel { 38518d1c802bSDavid Ahern struct fib6_info *iter; 38521de178edSIdo Schimmel 38535e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 38541de178edSIdo Schimmel return true; 385593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 38565e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 38571de178edSIdo Schimmel return true; 38581de178edSIdo Schimmel 38591de178edSIdo Schimmel return false; 38601de178edSIdo Schimmel } 38611de178edSIdo Schimmel 38628d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 38631de178edSIdo Schimmel { 38648d1c802bSDavid Ahern struct fib6_info *iter; 38651de178edSIdo Schimmel 38661de178edSIdo Schimmel rt->should_flush = 1; 386793c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 38681de178edSIdo Schimmel iter->should_flush = 1; 38691de178edSIdo Schimmel } 38701de178edSIdo Schimmel 38718d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 38721de178edSIdo Schimmel const struct net_device *down_dev) 38731de178edSIdo Schimmel { 38748d1c802bSDavid Ahern struct fib6_info *iter; 38751de178edSIdo Schimmel unsigned int dead = 0; 38761de178edSIdo Schimmel 38775e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 38785e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 38791de178edSIdo Schimmel dead++; 388093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 38815e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 38825e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 38831de178edSIdo Schimmel dead++; 38841de178edSIdo Schimmel 38851de178edSIdo Schimmel return dead; 38861de178edSIdo Schimmel } 38871de178edSIdo Schimmel 38888d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 38891de178edSIdo Schimmel const struct net_device *dev, 38901de178edSIdo Schimmel unsigned int nh_flags) 38911de178edSIdo Schimmel { 38928d1c802bSDavid Ahern struct fib6_info *iter; 38931de178edSIdo Schimmel 38945e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 38955e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 389693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 38975e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 38985e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 38991de178edSIdo Schimmel } 39001de178edSIdo Schimmel 3901a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 39028d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 39031da177e4SLinus Torvalds { 39044c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39054c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 39067aef6859SDavid Ahern struct net *net = dev_net(dev); 39078ed67789SDaniel Lezcano 3908421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 390927c6fa73SIdo Schimmel return 0; 391027c6fa73SIdo Schimmel 391127c6fa73SIdo Schimmel switch (arg->event) { 391227c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 39135e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 391427c6fa73SIdo Schimmel case NETDEV_DOWN: 39151de178edSIdo Schimmel if (rt->should_flush) 391627c6fa73SIdo Schimmel return -1; 391793c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 39185e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 39191de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 39201de178edSIdo Schimmel unsigned int count; 39211de178edSIdo Schimmel 39221de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 392393c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 39241de178edSIdo Schimmel rt6_multipath_flush(rt); 39251de178edSIdo Schimmel return -1; 39261de178edSIdo Schimmel } 39271de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 39281de178edSIdo Schimmel RTNH_F_LINKDOWN); 39297aef6859SDavid Ahern fib6_update_sernum(net, rt); 3930d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39311de178edSIdo Schimmel } 39321de178edSIdo Schimmel return -2; 393327c6fa73SIdo Schimmel case NETDEV_CHANGE: 39345e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 393593c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 393627c6fa73SIdo Schimmel break; 39375e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 3938d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 393927c6fa73SIdo Schimmel break; 39402b241361SIdo Schimmel } 3941c159d30cSDavid S. Miller 39421da177e4SLinus Torvalds return 0; 39431da177e4SLinus Torvalds } 39441da177e4SLinus Torvalds 394527c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 39461da177e4SLinus Torvalds { 39474c981e28SIdo Schimmel struct arg_netdev_event arg = { 39488ed67789SDaniel Lezcano .dev = dev, 39496802f3adSIdo Schimmel { 39504c981e28SIdo Schimmel .event = event, 39516802f3adSIdo Schimmel }, 39528ed67789SDaniel Lezcano }; 39538ed67789SDaniel Lezcano 39544c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 39554c981e28SIdo Schimmel } 39564c981e28SIdo Schimmel 39574c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 39584c981e28SIdo Schimmel { 39594c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 39604c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 39614c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 39621da177e4SLinus Torvalds } 39631da177e4SLinus Torvalds 396495c96174SEric Dumazet struct rt6_mtu_change_arg { 39651da177e4SLinus Torvalds struct net_device *dev; 396695c96174SEric Dumazet unsigned int mtu; 39671da177e4SLinus Torvalds }; 39681da177e4SLinus Torvalds 39698d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 39701da177e4SLinus Torvalds { 39711da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 39721da177e4SLinus Torvalds struct inet6_dev *idev; 39731da177e4SLinus Torvalds 39741da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 39751da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 39761da177e4SLinus Torvalds We still use this lock to block changes 39771da177e4SLinus Torvalds caused by addrconf/ndisc. 39781da177e4SLinus Torvalds */ 39791da177e4SLinus Torvalds 39801da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 398138308473SDavid S. Miller if (!idev) 39821da177e4SLinus Torvalds return 0; 39831da177e4SLinus Torvalds 39841da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 39851da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 39861da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 39871da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 39881da177e4SLinus Torvalds */ 39895e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 3990d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 3991d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 3992d4ead6b3SDavid Ahern 3993d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 3994d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 3995d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 3996d4ead6b3SDavid Ahern 3997f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 3998e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 3999f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 40004b32b5adSMartin KaFai Lau } 40011da177e4SLinus Torvalds return 0; 40021da177e4SLinus Torvalds } 40031da177e4SLinus Torvalds 400495c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 40051da177e4SLinus Torvalds { 4006c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4007c71099acSThomas Graf .dev = dev, 4008c71099acSThomas Graf .mtu = mtu, 4009c71099acSThomas Graf }; 40101da177e4SLinus Torvalds 40110c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 40121da177e4SLinus Torvalds } 40131da177e4SLinus Torvalds 4014ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 40155176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 401686872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4017ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 401886872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 401986872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 402051ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4021c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 402219e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 402319e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 402432bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4025622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 40263b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 402786872cb5SThomas Graf }; 402886872cb5SThomas Graf 402986872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4030333c4301SDavid Ahern struct fib6_config *cfg, 4031333c4301SDavid Ahern struct netlink_ext_ack *extack) 40321da177e4SLinus Torvalds { 403386872cb5SThomas Graf struct rtmsg *rtm; 403486872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4035c78ba6d6SLubomir Rintel unsigned int pref; 403686872cb5SThomas Graf int err; 40371da177e4SLinus Torvalds 4038fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4039fceb6435SJohannes Berg NULL); 404086872cb5SThomas Graf if (err < 0) 404186872cb5SThomas Graf goto errout; 40421da177e4SLinus Torvalds 404386872cb5SThomas Graf err = -EINVAL; 404486872cb5SThomas Graf rtm = nlmsg_data(nlh); 404586872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 404686872cb5SThomas Graf 404786872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 404886872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 404986872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 405086872cb5SThomas Graf cfg->fc_flags = RTF_UP; 405186872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 4052ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 405386872cb5SThomas Graf 4054ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4055ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4056b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4057b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 405886872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 405986872cb5SThomas Graf 4060ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4061ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4062ab79ad14SMaciej Żenczykowski 40631f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 40641f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 40651f56a01fSMartin KaFai Lau 4066fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4067fc1e64e1SDavid Ahern 406815e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 406986872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 40703b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 407186872cb5SThomas Graf 407286872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 407367b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 407486872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 40751da177e4SLinus Torvalds } 407686872cb5SThomas Graf 407786872cb5SThomas Graf if (tb[RTA_DST]) { 407886872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 407986872cb5SThomas Graf 408086872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 408186872cb5SThomas Graf goto errout; 408286872cb5SThomas Graf 408386872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 40841da177e4SLinus Torvalds } 408586872cb5SThomas Graf 408686872cb5SThomas Graf if (tb[RTA_SRC]) { 408786872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 408886872cb5SThomas Graf 408986872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 409086872cb5SThomas Graf goto errout; 409186872cb5SThomas Graf 409286872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 40931da177e4SLinus Torvalds } 409486872cb5SThomas Graf 4095c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 409667b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4097c3968a85SDaniel Walter 409886872cb5SThomas Graf if (tb[RTA_OIF]) 409986872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 410086872cb5SThomas Graf 410186872cb5SThomas Graf if (tb[RTA_PRIORITY]) 410286872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 410386872cb5SThomas Graf 410486872cb5SThomas Graf if (tb[RTA_METRICS]) { 410586872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 410686872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 41071da177e4SLinus Torvalds } 410886872cb5SThomas Graf 410986872cb5SThomas Graf if (tb[RTA_TABLE]) 411086872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 411186872cb5SThomas Graf 411251ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 411351ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 411451ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 41159ed59592SDavid Ahern 41169ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4117c255bd68SDavid Ahern cfg->fc_mp_len, extack); 41189ed59592SDavid Ahern if (err < 0) 41199ed59592SDavid Ahern goto errout; 412051ebd318SNicolas Dichtel } 412151ebd318SNicolas Dichtel 4122c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4123c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4124c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4125c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4126c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4127c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4128c78ba6d6SLubomir Rintel } 4129c78ba6d6SLubomir Rintel 413019e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 413119e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 413219e42e45SRoopa Prabhu 41339ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 413419e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 413519e42e45SRoopa Prabhu 4136c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 41379ed59592SDavid Ahern if (err < 0) 41389ed59592SDavid Ahern goto errout; 41399ed59592SDavid Ahern } 41409ed59592SDavid Ahern 414132bc201eSXin Long if (tb[RTA_EXPIRES]) { 414232bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 414332bc201eSXin Long 414432bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 414532bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 414632bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 414732bc201eSXin Long } 414832bc201eSXin Long } 414932bc201eSXin Long 415086872cb5SThomas Graf err = 0; 415186872cb5SThomas Graf errout: 415286872cb5SThomas Graf return err; 41531da177e4SLinus Torvalds } 41541da177e4SLinus Torvalds 41556b9ea5a6SRoopa Prabhu struct rt6_nh { 41568d1c802bSDavid Ahern struct fib6_info *fib6_info; 41576b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 41586b9ea5a6SRoopa Prabhu struct list_head next; 41596b9ea5a6SRoopa Prabhu }; 41606b9ea5a6SRoopa Prabhu 41616b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 41626b9ea5a6SRoopa Prabhu { 41636b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 41646b9ea5a6SRoopa Prabhu 41656b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 41667d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 41676b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 41686b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 41696b9ea5a6SRoopa Prabhu } 41706b9ea5a6SRoopa Prabhu } 41716b9ea5a6SRoopa Prabhu 4172d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4173d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 41748d1c802bSDavid Ahern struct fib6_info *rt, 41758d1c802bSDavid Ahern struct fib6_config *r_cfg) 41766b9ea5a6SRoopa Prabhu { 41776b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 41786b9ea5a6SRoopa Prabhu int err = -EEXIST; 41796b9ea5a6SRoopa Prabhu 41806b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 41818d1c802bSDavid Ahern /* check if fib6_info already exists */ 41828d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 41836b9ea5a6SRoopa Prabhu return err; 41846b9ea5a6SRoopa Prabhu } 41856b9ea5a6SRoopa Prabhu 41866b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 41876b9ea5a6SRoopa Prabhu if (!nh) 41886b9ea5a6SRoopa Prabhu return -ENOMEM; 41898d1c802bSDavid Ahern nh->fib6_info = rt; 4190d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, r_cfg); 41916b9ea5a6SRoopa Prabhu if (err) { 41926b9ea5a6SRoopa Prabhu kfree(nh); 41936b9ea5a6SRoopa Prabhu return err; 41946b9ea5a6SRoopa Prabhu } 41956b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 41966b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 41976b9ea5a6SRoopa Prabhu 41986b9ea5a6SRoopa Prabhu return 0; 41996b9ea5a6SRoopa Prabhu } 42006b9ea5a6SRoopa Prabhu 42018d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 42028d1c802bSDavid Ahern struct fib6_info *rt_last, 42033b1137feSDavid Ahern struct nl_info *info, 42043b1137feSDavid Ahern __u16 nlflags) 42053b1137feSDavid Ahern { 42063b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 42073b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 42083b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 42093b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 42103b1137feSDavid Ahern * the list, find the first sibling of the last route appended 42113b1137feSDavid Ahern */ 421293c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 421393c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 42148d1c802bSDavid Ahern struct fib6_info, 421593c2fb25SDavid Ahern fib6_siblings); 42163b1137feSDavid Ahern } 42173b1137feSDavid Ahern 42183b1137feSDavid Ahern if (rt) 42193b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 42203b1137feSDavid Ahern } 42213b1137feSDavid Ahern 4222333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4223333c4301SDavid Ahern struct netlink_ext_ack *extack) 422451ebd318SNicolas Dichtel { 42258d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 42263b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 422751ebd318SNicolas Dichtel struct fib6_config r_cfg; 422851ebd318SNicolas Dichtel struct rtnexthop *rtnh; 42298d1c802bSDavid Ahern struct fib6_info *rt; 42306b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 42316b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 42323b1137feSDavid Ahern __u16 nlflags; 423351ebd318SNicolas Dichtel int remaining; 423451ebd318SNicolas Dichtel int attrlen; 42356b9ea5a6SRoopa Prabhu int err = 1; 42366b9ea5a6SRoopa Prabhu int nhn = 0; 42376b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 42386b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 42396b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 424051ebd318SNicolas Dichtel 42413b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 42423b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 42433b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 42443b1137feSDavid Ahern 424535f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 424651ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 424751ebd318SNicolas Dichtel 42486b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 42498d1c802bSDavid Ahern * fib6_info structs per nexthop 42506b9ea5a6SRoopa Prabhu */ 425151ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 425251ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 425351ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 425451ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 425551ebd318SNicolas Dichtel 425651ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 425751ebd318SNicolas Dichtel if (attrlen > 0) { 425851ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 425951ebd318SNicolas Dichtel 426051ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 426151ebd318SNicolas Dichtel if (nla) { 426267b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 426351ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 426451ebd318SNicolas Dichtel } 426519e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 426619e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 426719e42e45SRoopa Prabhu if (nla) 426819e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 426951ebd318SNicolas Dichtel } 42706b9ea5a6SRoopa Prabhu 427168e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4272acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 42738c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 42748c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 42758c5b83f0SRoopa Prabhu rt = NULL; 42766b9ea5a6SRoopa Prabhu goto cleanup; 42778c5b83f0SRoopa Prabhu } 42786b9ea5a6SRoopa Prabhu 42795e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4280398958aeSIdo Schimmel 4281d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4282d4ead6b3SDavid Ahern rt, &r_cfg); 428351ebd318SNicolas Dichtel if (err) { 428493531c67SDavid Ahern fib6_info_release(rt); 42856b9ea5a6SRoopa Prabhu goto cleanup; 428651ebd318SNicolas Dichtel } 42876b9ea5a6SRoopa Prabhu 42886b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 428951ebd318SNicolas Dichtel } 42906b9ea5a6SRoopa Prabhu 42913b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 42923b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 42933b1137feSDavid Ahern * the full route when done 42943b1137feSDavid Ahern */ 42953b1137feSDavid Ahern info->skip_notify = 1; 42963b1137feSDavid Ahern 42976b9ea5a6SRoopa Prabhu err_nh = NULL; 42986b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 42998d1c802bSDavid Ahern rt_last = nh->fib6_info; 43008d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 43018d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 430293531c67SDavid Ahern 43033b1137feSDavid Ahern /* save reference to first route for notification */ 43043b1137feSDavid Ahern if (!rt_notif && !err) 43058d1c802bSDavid Ahern rt_notif = nh->fib6_info; 43063b1137feSDavid Ahern 43078d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 43088d1c802bSDavid Ahern nh->fib6_info = NULL; 43096b9ea5a6SRoopa Prabhu if (err) { 43106b9ea5a6SRoopa Prabhu if (replace && nhn) 43116b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 43126b9ea5a6SRoopa Prabhu err_nh = nh; 43136b9ea5a6SRoopa Prabhu goto add_errout; 43146b9ea5a6SRoopa Prabhu } 43156b9ea5a6SRoopa Prabhu 43161a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 431727596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 431827596472SMichal Kubeček * we have already failed to add the first nexthop: 431927596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 432027596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 432127596472SMichal Kubeček * be added to it. 43221a72418bSNicolas Dichtel */ 432327596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 432427596472SMichal Kubeček NLM_F_REPLACE); 43256b9ea5a6SRoopa Prabhu nhn++; 43266b9ea5a6SRoopa Prabhu } 43276b9ea5a6SRoopa Prabhu 43283b1137feSDavid Ahern /* success ... tell user about new route */ 43293b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 43306b9ea5a6SRoopa Prabhu goto cleanup; 43316b9ea5a6SRoopa Prabhu 43326b9ea5a6SRoopa Prabhu add_errout: 43333b1137feSDavid Ahern /* send notification for routes that were added so that 43343b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 43353b1137feSDavid Ahern * coherent 43363b1137feSDavid Ahern */ 43373b1137feSDavid Ahern if (rt_notif) 43383b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 43393b1137feSDavid Ahern 43406b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 43416b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 43426b9ea5a6SRoopa Prabhu if (err_nh == nh) 43436b9ea5a6SRoopa Prabhu break; 4344333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 43456b9ea5a6SRoopa Prabhu } 43466b9ea5a6SRoopa Prabhu 43476b9ea5a6SRoopa Prabhu cleanup: 43486b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 43498d1c802bSDavid Ahern if (nh->fib6_info) 43508d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 43516b9ea5a6SRoopa Prabhu list_del(&nh->next); 43526b9ea5a6SRoopa Prabhu kfree(nh); 43536b9ea5a6SRoopa Prabhu } 43546b9ea5a6SRoopa Prabhu 43556b9ea5a6SRoopa Prabhu return err; 43566b9ea5a6SRoopa Prabhu } 43576b9ea5a6SRoopa Prabhu 4358333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4359333c4301SDavid Ahern struct netlink_ext_ack *extack) 43606b9ea5a6SRoopa Prabhu { 43616b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 43626b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 43636b9ea5a6SRoopa Prabhu int remaining; 43646b9ea5a6SRoopa Prabhu int attrlen; 43656b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 43666b9ea5a6SRoopa Prabhu 43676b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 43686b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 43696b9ea5a6SRoopa Prabhu 43706b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 43716b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 43726b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 43736b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 43746b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 43756b9ea5a6SRoopa Prabhu 43766b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 43776b9ea5a6SRoopa Prabhu if (attrlen > 0) { 43786b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 43796b9ea5a6SRoopa Prabhu 43806b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 43816b9ea5a6SRoopa Prabhu if (nla) { 43826b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 43836b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 43846b9ea5a6SRoopa Prabhu } 43856b9ea5a6SRoopa Prabhu } 4386333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 43876b9ea5a6SRoopa Prabhu if (err) 43886b9ea5a6SRoopa Prabhu last_err = err; 43896b9ea5a6SRoopa Prabhu 439051ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 439151ebd318SNicolas Dichtel } 439251ebd318SNicolas Dichtel 439351ebd318SNicolas Dichtel return last_err; 439451ebd318SNicolas Dichtel } 439551ebd318SNicolas Dichtel 4396c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4397c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 43981da177e4SLinus Torvalds { 439986872cb5SThomas Graf struct fib6_config cfg; 440086872cb5SThomas Graf int err; 44011da177e4SLinus Torvalds 4402333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 440386872cb5SThomas Graf if (err < 0) 440486872cb5SThomas Graf return err; 440586872cb5SThomas Graf 440651ebd318SNicolas Dichtel if (cfg.fc_mp) 4407333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 44080ae81335SDavid Ahern else { 44090ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4410333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 44111da177e4SLinus Torvalds } 44120ae81335SDavid Ahern } 44131da177e4SLinus Torvalds 4414c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4415c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 44161da177e4SLinus Torvalds { 441786872cb5SThomas Graf struct fib6_config cfg; 441886872cb5SThomas Graf int err; 44191da177e4SLinus Torvalds 4420333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 442186872cb5SThomas Graf if (err < 0) 442286872cb5SThomas Graf return err; 442386872cb5SThomas Graf 442451ebd318SNicolas Dichtel if (cfg.fc_mp) 4425333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 442651ebd318SNicolas Dichtel else 4427acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 44281da177e4SLinus Torvalds } 44291da177e4SLinus Torvalds 44308d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4431339bf98fSThomas Graf { 4432beb1afacSDavid Ahern int nexthop_len = 0; 4433beb1afacSDavid Ahern 443493c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4435beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4436beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4437beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 44385e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4439beb1afacSDavid Ahern 444093c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4441beb1afacSDavid Ahern } 4442beb1afacSDavid Ahern 4443339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4444339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4445339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4446339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4447339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4448339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4449339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4450339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4451339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 44526a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4453ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4454c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 445519e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 44565e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4457beb1afacSDavid Ahern + nexthop_len; 4458beb1afacSDavid Ahern } 4459beb1afacSDavid Ahern 44608d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 44615be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4462beb1afacSDavid Ahern { 44635e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4464f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4465f9d882eaSIdo Schimmel 44665e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4467beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4468dcd1f572SDavid Ahern 4469dcd1f572SDavid Ahern rcu_read_lock(); 4470dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4471beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4472dcd1f572SDavid Ahern rcu_read_unlock(); 4473beb1afacSDavid Ahern } 4474beb1afacSDavid Ahern 447593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 44765e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4477beb1afacSDavid Ahern goto nla_put_failure; 4478beb1afacSDavid Ahern } 4479beb1afacSDavid Ahern 44805e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 44815e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 448261e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 448361e4d01eSIdo Schimmel 44845be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 44855e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 44865e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4487beb1afacSDavid Ahern goto nla_put_failure; 4488beb1afacSDavid Ahern 44895e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 44905e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4491beb1afacSDavid Ahern goto nla_put_failure; 4492beb1afacSDavid Ahern 4493beb1afacSDavid Ahern return 0; 4494beb1afacSDavid Ahern 4495beb1afacSDavid Ahern nla_put_failure: 4496beb1afacSDavid Ahern return -EMSGSIZE; 4497beb1afacSDavid Ahern } 4498beb1afacSDavid Ahern 44995be083ceSDavid Ahern /* add multipath next hop */ 45008d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4501beb1afacSDavid Ahern { 45025e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4503beb1afacSDavid Ahern struct rtnexthop *rtnh; 4504beb1afacSDavid Ahern unsigned int flags = 0; 4505beb1afacSDavid Ahern 4506beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4507beb1afacSDavid Ahern if (!rtnh) 4508beb1afacSDavid Ahern goto nla_put_failure; 4509beb1afacSDavid Ahern 45105e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 45115e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4512beb1afacSDavid Ahern 45135be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4514beb1afacSDavid Ahern goto nla_put_failure; 4515beb1afacSDavid Ahern 4516beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4517beb1afacSDavid Ahern 4518beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4519beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4520beb1afacSDavid Ahern 4521beb1afacSDavid Ahern return 0; 4522beb1afacSDavid Ahern 4523beb1afacSDavid Ahern nla_put_failure: 4524beb1afacSDavid Ahern return -EMSGSIZE; 4525339bf98fSThomas Graf } 4526339bf98fSThomas Graf 4527d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 45288d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4529d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 453015e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4531f8cfe2ceSDavid Ahern unsigned int flags) 45321da177e4SLinus Torvalds { 45331da177e4SLinus Torvalds struct rtmsg *rtm; 45341da177e4SLinus Torvalds struct nlmsghdr *nlh; 4535d4ead6b3SDavid Ahern long expires = 0; 4536d4ead6b3SDavid Ahern u32 *pmetrics; 45379e762a4aSPatrick McHardy u32 table; 45381da177e4SLinus Torvalds 453915e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 454038308473SDavid S. Miller if (!nlh) 454126932566SPatrick McHardy return -EMSGSIZE; 45422d7202bfSThomas Graf 45432d7202bfSThomas Graf rtm = nlmsg_data(nlh); 45441da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 454593c2fb25SDavid Ahern rtm->rtm_dst_len = rt->fib6_dst.plen; 454693c2fb25SDavid Ahern rtm->rtm_src_len = rt->fib6_src.plen; 45471da177e4SLinus Torvalds rtm->rtm_tos = 0; 454893c2fb25SDavid Ahern if (rt->fib6_table) 454993c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4550c71099acSThomas Graf else 45519e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 45529e762a4aSPatrick McHardy rtm->rtm_table = table; 4553c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4554c78679e8SDavid S. Miller goto nla_put_failure; 4555e8478e80SDavid Ahern 4556e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 45571da177e4SLinus Torvalds rtm->rtm_flags = 0; 45581da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 455993c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 45601da177e4SLinus Torvalds 456193c2fb25SDavid Ahern if (rt->fib6_flags & RTF_CACHE) 45621da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 45631da177e4SLinus Torvalds 4564d4ead6b3SDavid Ahern if (dest) { 4565d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4566c78679e8SDavid S. Miller goto nla_put_failure; 45671da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 45681da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 456993c2fb25SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, &rt->fib6_dst.addr)) 4570c78679e8SDavid S. Miller goto nla_put_failure; 45711da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 45721da177e4SLinus Torvalds if (src) { 4573930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4574c78679e8SDavid S. Miller goto nla_put_failure; 45751da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4576c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 457793c2fb25SDavid Ahern nla_put_in6_addr(skb, RTA_SRC, &rt->fib6_src.addr)) 4578c78679e8SDavid S. Miller goto nla_put_failure; 45791da177e4SLinus Torvalds #endif 45807bc570c8SYOSHIFUJI Hideaki if (iif) { 45817bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 458293c2fb25SDavid Ahern if (ipv6_addr_is_multicast(&rt->fib6_dst.addr)) { 4583fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 45842cf75070SNikolay Aleksandrov 45857bc570c8SYOSHIFUJI Hideaki if (err == 0) 45867bc570c8SYOSHIFUJI Hideaki return 0; 4587fd61c6baSDavid Ahern if (err < 0) 45887bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 45897bc570c8SYOSHIFUJI Hideaki } else 45907bc570c8SYOSHIFUJI Hideaki #endif 4591c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4592c78679e8SDavid S. Miller goto nla_put_failure; 4593d4ead6b3SDavid Ahern } else if (dest) { 45941da177e4SLinus Torvalds struct in6_addr saddr_buf; 4595d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4596930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4597c78679e8SDavid S. Miller goto nla_put_failure; 4598c3968a85SDaniel Walter } 4599c3968a85SDaniel Walter 460093c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4601c3968a85SDaniel Walter struct in6_addr saddr_buf; 460293c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4603930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4604c78679e8SDavid S. Miller goto nla_put_failure; 46051da177e4SLinus Torvalds } 46062d7202bfSThomas Graf 4607d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4608d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 46092d7202bfSThomas Graf goto nla_put_failure; 46102d7202bfSThomas Graf 461193c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4612beb1afacSDavid Ahern goto nla_put_failure; 4613beb1afacSDavid Ahern 4614beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4615beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4616beb1afacSDavid Ahern */ 461793c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 46188d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4619beb1afacSDavid Ahern struct nlattr *mp; 4620beb1afacSDavid Ahern 4621beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4622beb1afacSDavid Ahern if (!mp) 4623beb1afacSDavid Ahern goto nla_put_failure; 4624beb1afacSDavid Ahern 4625beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4626beb1afacSDavid Ahern goto nla_put_failure; 4627beb1afacSDavid Ahern 4628beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 462993c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4630beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 463194f826b8SEric Dumazet goto nla_put_failure; 463294f826b8SEric Dumazet } 46332d7202bfSThomas Graf 4634beb1afacSDavid Ahern nla_nest_end(skb, mp); 4635beb1afacSDavid Ahern } else { 46365be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4637c78679e8SDavid S. Miller goto nla_put_failure; 4638beb1afacSDavid Ahern } 46398253947eSLi Wei 464093c2fb25SDavid Ahern if (rt->fib6_flags & RTF_EXPIRES) { 464114895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 464214895687SDavid Ahern expires -= jiffies; 464314895687SDavid Ahern } 464469cdf8f9SYOSHIFUJI Hideaki 4645d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4646e3703b3dSThomas Graf goto nla_put_failure; 46471da177e4SLinus Torvalds 464893c2fb25SDavid Ahern if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->fib6_flags))) 4649c78ba6d6SLubomir Rintel goto nla_put_failure; 4650c78ba6d6SLubomir Rintel 465119e42e45SRoopa Prabhu 4652053c095aSJohannes Berg nlmsg_end(skb, nlh); 4653053c095aSJohannes Berg return 0; 46542d7202bfSThomas Graf 46552d7202bfSThomas Graf nla_put_failure: 465626932566SPatrick McHardy nlmsg_cancel(skb, nlh); 465726932566SPatrick McHardy return -EMSGSIZE; 46581da177e4SLinus Torvalds } 46591da177e4SLinus Torvalds 46608d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 46611da177e4SLinus Torvalds { 46621da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 46631f17e2f2SDavid Ahern struct net *net = arg->net; 46641f17e2f2SDavid Ahern 4665421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 46661f17e2f2SDavid Ahern return 0; 46671da177e4SLinus Torvalds 46682d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 46692d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4670f8cfe2ceSDavid Ahern 4671f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4672f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 467393c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4674f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4675f8cfe2ceSDavid Ahern return 1; 4676f8cfe2ceSDavid Ahern } 4677f8cfe2ceSDavid Ahern } 46781da177e4SLinus Torvalds 4679d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4680d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 4681d4ead6b3SDavid Ahern arg->cb->nlh->nlmsg_seq, NLM_F_MULTI); 46821da177e4SLinus Torvalds } 46831da177e4SLinus Torvalds 4684c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4685c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 46861da177e4SLinus Torvalds { 46873b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4688ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 468918c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 469018c3a61cSRoopa Prabhu struct dst_entry *dst; 46911da177e4SLinus Torvalds struct rt6_info *rt; 4692ab364a6fSThomas Graf struct sk_buff *skb; 4693ab364a6fSThomas Graf struct rtmsg *rtm; 46944c9483b2SDavid S. Miller struct flowi6 fl6; 469518c3a61cSRoopa Prabhu bool fibmatch; 4696ab364a6fSThomas Graf 4697fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4698c21ef3e3SDavid Ahern extack); 4699ab364a6fSThomas Graf if (err < 0) 4700ab364a6fSThomas Graf goto errout; 4701ab364a6fSThomas Graf 4702ab364a6fSThomas Graf err = -EINVAL; 47034c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 470438b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 470538b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 470618c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4707ab364a6fSThomas Graf 4708ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4709ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4710ab364a6fSThomas Graf goto errout; 4711ab364a6fSThomas Graf 47124e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4713ab364a6fSThomas Graf } 4714ab364a6fSThomas Graf 4715ab364a6fSThomas Graf if (tb[RTA_DST]) { 4716ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4717ab364a6fSThomas Graf goto errout; 4718ab364a6fSThomas Graf 47194e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4720ab364a6fSThomas Graf } 4721ab364a6fSThomas Graf 4722ab364a6fSThomas Graf if (tb[RTA_IIF]) 4723ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4724ab364a6fSThomas Graf 4725ab364a6fSThomas Graf if (tb[RTA_OIF]) 472672331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4727ab364a6fSThomas Graf 47282e47b291SLorenzo Colitti if (tb[RTA_MARK]) 47292e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 47302e47b291SLorenzo Colitti 4731622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4732622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4733622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4734622ec2c9SLorenzo Colitti else 4735622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4736622ec2c9SLorenzo Colitti 4737ab364a6fSThomas Graf if (iif) { 4738ab364a6fSThomas Graf struct net_device *dev; 473972331bc0SShmulik Ladkani int flags = 0; 474072331bc0SShmulik Ladkani 4741121622dbSFlorian Westphal rcu_read_lock(); 4742121622dbSFlorian Westphal 4743121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4744ab364a6fSThomas Graf if (!dev) { 4745121622dbSFlorian Westphal rcu_read_unlock(); 4746ab364a6fSThomas Graf err = -ENODEV; 4747ab364a6fSThomas Graf goto errout; 4748ab364a6fSThomas Graf } 474972331bc0SShmulik Ladkani 475072331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 475172331bc0SShmulik Ladkani 475272331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 475372331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 475472331bc0SShmulik Ladkani 4755b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4756121622dbSFlorian Westphal 4757121622dbSFlorian Westphal rcu_read_unlock(); 475872331bc0SShmulik Ladkani } else { 475972331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 476072331bc0SShmulik Ladkani 476118c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 476218c3a61cSRoopa Prabhu } 476318c3a61cSRoopa Prabhu 476418c3a61cSRoopa Prabhu 476518c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 476618c3a61cSRoopa Prabhu if (rt->dst.error) { 476718c3a61cSRoopa Prabhu err = rt->dst.error; 476818c3a61cSRoopa Prabhu ip6_rt_put(rt); 476918c3a61cSRoopa Prabhu goto errout; 4770ab364a6fSThomas Graf } 47711da177e4SLinus Torvalds 47729d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 47739d6acb3bSWANG Cong err = rt->dst.error; 47749d6acb3bSWANG Cong ip6_rt_put(rt); 47759d6acb3bSWANG Cong goto errout; 47769d6acb3bSWANG Cong } 47779d6acb3bSWANG Cong 47781da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 477938308473SDavid S. Miller if (!skb) { 478094e187c0SAmerigo Wang ip6_rt_put(rt); 4781ab364a6fSThomas Graf err = -ENOBUFS; 4782ab364a6fSThomas Graf goto errout; 4783ab364a6fSThomas Graf } 47841da177e4SLinus Torvalds 4785d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 478618c3a61cSRoopa Prabhu if (fibmatch) 478793531c67SDavid Ahern err = rt6_fill_node(net, skb, rt->from, NULL, NULL, NULL, iif, 478818c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 478918c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 479018c3a61cSRoopa Prabhu else 479193531c67SDavid Ahern err = rt6_fill_node(net, skb, rt->from, dst, 479293531c67SDavid Ahern &fl6.daddr, &fl6.saddr, iif, RTM_NEWROUTE, 4793d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4794d4ead6b3SDavid Ahern 0); 47951da177e4SLinus Torvalds if (err < 0) { 4796ab364a6fSThomas Graf kfree_skb(skb); 4797ab364a6fSThomas Graf goto errout; 47981da177e4SLinus Torvalds } 47991da177e4SLinus Torvalds 480015e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4801ab364a6fSThomas Graf errout: 48021da177e4SLinus Torvalds return err; 48031da177e4SLinus Torvalds } 48041da177e4SLinus Torvalds 48058d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 480637a1d361SRoopa Prabhu unsigned int nlm_flags) 48071da177e4SLinus Torvalds { 48081da177e4SLinus Torvalds struct sk_buff *skb; 48095578689aSDaniel Lezcano struct net *net = info->nl_net; 4810528c4cebSDenis V. Lunev u32 seq; 4811528c4cebSDenis V. Lunev int err; 48120d51aa80SJamal Hadi Salim 4813528c4cebSDenis V. Lunev err = -ENOBUFS; 481438308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 481586872cb5SThomas Graf 481619e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 481738308473SDavid S. Miller if (!skb) 481821713ebcSThomas Graf goto errout; 48191da177e4SLinus Torvalds 4820d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 4821f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 482226932566SPatrick McHardy if (err < 0) { 482326932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 482426932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 482526932566SPatrick McHardy kfree_skb(skb); 482626932566SPatrick McHardy goto errout; 482726932566SPatrick McHardy } 482815e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 48295578689aSDaniel Lezcano info->nlh, gfp_any()); 48301ce85fe4SPablo Neira Ayuso return; 483121713ebcSThomas Graf errout: 483221713ebcSThomas Graf if (err < 0) 48335578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 48341da177e4SLinus Torvalds } 48351da177e4SLinus Torvalds 48368ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4837351638e7SJiri Pirko unsigned long event, void *ptr) 48388ed67789SDaniel Lezcano { 4839351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 4840c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 48418ed67789SDaniel Lezcano 4842242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 4843242d3a49SWANG Cong return NOTIFY_OK; 4844242d3a49SWANG Cong 4845242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 4846421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 4847d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 48488ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 48498ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 4850d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 48518ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 4852d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 48538ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 48548ed67789SDaniel Lezcano #endif 485576da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 485676da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 485776da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 485876da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 485976da0704SWANG Cong */ 486012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 4861242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 486212d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 486312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 4864242d3a49SWANG Cong #endif 48658ed67789SDaniel Lezcano } 48668ed67789SDaniel Lezcano 48678ed67789SDaniel Lezcano return NOTIFY_OK; 48688ed67789SDaniel Lezcano } 48698ed67789SDaniel Lezcano 48701da177e4SLinus Torvalds /* 48711da177e4SLinus Torvalds * /proc 48721da177e4SLinus Torvalds */ 48731da177e4SLinus Torvalds 48741da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 48751da177e4SLinus Torvalds 487633120b30SAlexey Dobriyan static const struct file_operations ipv6_route_proc_fops = { 487733120b30SAlexey Dobriyan .open = ipv6_route_open, 487833120b30SAlexey Dobriyan .read = seq_read, 487933120b30SAlexey Dobriyan .llseek = seq_lseek, 48808d2ca1d7SHannes Frederic Sowa .release = seq_release_net, 488133120b30SAlexey Dobriyan }; 488233120b30SAlexey Dobriyan 48831da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 48841da177e4SLinus Torvalds { 488569ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 48861da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 488769ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 488869ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 488981eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 489069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 489169ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 4892fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 489369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 48941da177e4SLinus Torvalds 48951da177e4SLinus Torvalds return 0; 48961da177e4SLinus Torvalds } 48971da177e4SLinus Torvalds 48981da177e4SLinus Torvalds static int rt6_stats_seq_open(struct inode *inode, struct file *file) 48991da177e4SLinus Torvalds { 4900de05c557SPavel Emelyanov return single_open_net(inode, file, rt6_stats_seq_show); 490169ddb805SDaniel Lezcano } 490269ddb805SDaniel Lezcano 49039a32144eSArjan van de Ven static const struct file_operations rt6_stats_seq_fops = { 49041da177e4SLinus Torvalds .open = rt6_stats_seq_open, 49051da177e4SLinus Torvalds .read = seq_read, 49061da177e4SLinus Torvalds .llseek = seq_lseek, 4907b6fcbdb4SPavel Emelyanov .release = single_release_net, 49081da177e4SLinus Torvalds }; 49091da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 49101da177e4SLinus Torvalds 49111da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 49121da177e4SLinus Torvalds 49131da177e4SLinus Torvalds static 4914fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 49151da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 49161da177e4SLinus Torvalds { 4917c486da34SLucian Adrian Grijincu struct net *net; 4918c486da34SLucian Adrian Grijincu int delay; 4919c486da34SLucian Adrian Grijincu if (!write) 4920c486da34SLucian Adrian Grijincu return -EINVAL; 4921c486da34SLucian Adrian Grijincu 4922c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 4923c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 49248d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 49252ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 49261da177e4SLinus Torvalds return 0; 49271da177e4SLinus Torvalds } 49281da177e4SLinus Torvalds 4929fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 49301da177e4SLinus Torvalds { 49311da177e4SLinus Torvalds .procname = "flush", 49324990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 49331da177e4SLinus Torvalds .maxlen = sizeof(int), 493489c8b3a1SDave Jones .mode = 0200, 49356d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 49361da177e4SLinus Torvalds }, 49371da177e4SLinus Torvalds { 49381da177e4SLinus Torvalds .procname = "gc_thresh", 49399a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 49401da177e4SLinus Torvalds .maxlen = sizeof(int), 49411da177e4SLinus Torvalds .mode = 0644, 49426d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 49431da177e4SLinus Torvalds }, 49441da177e4SLinus Torvalds { 49451da177e4SLinus Torvalds .procname = "max_size", 49464990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 49471da177e4SLinus Torvalds .maxlen = sizeof(int), 49481da177e4SLinus Torvalds .mode = 0644, 49496d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 49501da177e4SLinus Torvalds }, 49511da177e4SLinus Torvalds { 49521da177e4SLinus Torvalds .procname = "gc_min_interval", 49534990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 49541da177e4SLinus Torvalds .maxlen = sizeof(int), 49551da177e4SLinus Torvalds .mode = 0644, 49566d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 49571da177e4SLinus Torvalds }, 49581da177e4SLinus Torvalds { 49591da177e4SLinus Torvalds .procname = "gc_timeout", 49604990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 49611da177e4SLinus Torvalds .maxlen = sizeof(int), 49621da177e4SLinus Torvalds .mode = 0644, 49636d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 49641da177e4SLinus Torvalds }, 49651da177e4SLinus Torvalds { 49661da177e4SLinus Torvalds .procname = "gc_interval", 49674990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 49681da177e4SLinus Torvalds .maxlen = sizeof(int), 49691da177e4SLinus Torvalds .mode = 0644, 49706d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 49711da177e4SLinus Torvalds }, 49721da177e4SLinus Torvalds { 49731da177e4SLinus Torvalds .procname = "gc_elasticity", 49744990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 49751da177e4SLinus Torvalds .maxlen = sizeof(int), 49761da177e4SLinus Torvalds .mode = 0644, 4977f3d3f616SMin Zhang .proc_handler = proc_dointvec, 49781da177e4SLinus Torvalds }, 49791da177e4SLinus Torvalds { 49801da177e4SLinus Torvalds .procname = "mtu_expires", 49814990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 49821da177e4SLinus Torvalds .maxlen = sizeof(int), 49831da177e4SLinus Torvalds .mode = 0644, 49846d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 49851da177e4SLinus Torvalds }, 49861da177e4SLinus Torvalds { 49871da177e4SLinus Torvalds .procname = "min_adv_mss", 49884990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 49891da177e4SLinus Torvalds .maxlen = sizeof(int), 49901da177e4SLinus Torvalds .mode = 0644, 4991f3d3f616SMin Zhang .proc_handler = proc_dointvec, 49921da177e4SLinus Torvalds }, 49931da177e4SLinus Torvalds { 49941da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 49954990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 49961da177e4SLinus Torvalds .maxlen = sizeof(int), 49971da177e4SLinus Torvalds .mode = 0644, 49986d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 49991da177e4SLinus Torvalds }, 5000f8572d8fSEric W. Biederman { } 50011da177e4SLinus Torvalds }; 50021da177e4SLinus Torvalds 50032c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5004760f2d01SDaniel Lezcano { 5005760f2d01SDaniel Lezcano struct ctl_table *table; 5006760f2d01SDaniel Lezcano 5007760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5008760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5009760f2d01SDaniel Lezcano GFP_KERNEL); 50105ee09105SYOSHIFUJI Hideaki 50115ee09105SYOSHIFUJI Hideaki if (table) { 50125ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5013c486da34SLucian Adrian Grijincu table[0].extra1 = net; 501486393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 50155ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 50165ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 50175ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 50185ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 50195ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 50205ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 50215ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 50229c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 5023464dc801SEric W. Biederman 5024464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5025464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5026464dc801SEric W. Biederman table[0].procname = NULL; 50275ee09105SYOSHIFUJI Hideaki } 50285ee09105SYOSHIFUJI Hideaki 5029760f2d01SDaniel Lezcano return table; 5030760f2d01SDaniel Lezcano } 50311da177e4SLinus Torvalds #endif 50321da177e4SLinus Torvalds 50332c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5034cdb18761SDaniel Lezcano { 5035633d424bSPavel Emelyanov int ret = -ENOMEM; 50368ed67789SDaniel Lezcano 503786393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 503886393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5039f2fc6a54SBenjamin Thery 5040fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5041fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5042fc66f95cSEric Dumazet 5043421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5044421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5045421842edSDavid Ahern GFP_KERNEL); 5046421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5047421842edSDavid Ahern goto out_ip6_dst_entries; 5048421842edSDavid Ahern 50498ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 50508ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 50518ed67789SDaniel Lezcano GFP_KERNEL); 50528ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5053421842edSDavid Ahern goto out_fib6_null_entry; 5054d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 505562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 505662fa8a84SDavid S. Miller ip6_template_metrics, true); 50578ed67789SDaniel Lezcano 50588ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5059feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 50608ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 50618ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 50628ed67789SDaniel Lezcano GFP_KERNEL); 506368fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 506468fffc67SPeter Zijlstra goto out_ip6_null_entry; 5065d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 506662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 506762fa8a84SDavid S. Miller ip6_template_metrics, true); 50688ed67789SDaniel Lezcano 50698ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 50708ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 50718ed67789SDaniel Lezcano GFP_KERNEL); 507268fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 507368fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5074d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 507562fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 507662fa8a84SDavid S. Miller ip6_template_metrics, true); 50778ed67789SDaniel Lezcano #endif 50788ed67789SDaniel Lezcano 5079b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5080b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5081b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5082b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5083b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5084b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5085b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5086b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 5087b339a47cSPeter Zijlstra 50886891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 50896891a346SBenjamin Thery 50908ed67789SDaniel Lezcano ret = 0; 50918ed67789SDaniel Lezcano out: 50928ed67789SDaniel Lezcano return ret; 5093f2fc6a54SBenjamin Thery 509468fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 509568fffc67SPeter Zijlstra out_ip6_prohibit_entry: 509668fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 509768fffc67SPeter Zijlstra out_ip6_null_entry: 509868fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 509968fffc67SPeter Zijlstra #endif 5100421842edSDavid Ahern out_fib6_null_entry: 5101421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5102fc66f95cSEric Dumazet out_ip6_dst_entries: 5103fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5104f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5105f2fc6a54SBenjamin Thery goto out; 5106cdb18761SDaniel Lezcano } 5107cdb18761SDaniel Lezcano 51082c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5109cdb18761SDaniel Lezcano { 5110421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 51118ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 51128ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 51138ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 51148ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 51158ed67789SDaniel Lezcano #endif 511641bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5117cdb18761SDaniel Lezcano } 5118cdb18761SDaniel Lezcano 5119d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5120d189634eSThomas Graf { 5121d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5122d4beaa66SGao feng proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops); 5123d6444062SJoe Perches proc_create("rt6_stats", 0444, net->proc_net, &rt6_stats_seq_fops); 5124d189634eSThomas Graf #endif 5125d189634eSThomas Graf return 0; 5126d189634eSThomas Graf } 5127d189634eSThomas Graf 5128d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5129d189634eSThomas Graf { 5130d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5131ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5132ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5133d189634eSThomas Graf #endif 5134d189634eSThomas Graf } 5135d189634eSThomas Graf 5136cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5137cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5138cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5139cdb18761SDaniel Lezcano }; 5140cdb18761SDaniel Lezcano 5141c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5142c3426b47SDavid S. Miller { 5143c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5144c3426b47SDavid S. Miller 5145c3426b47SDavid S. Miller if (!bp) 5146c3426b47SDavid S. Miller return -ENOMEM; 5147c3426b47SDavid S. Miller inet_peer_base_init(bp); 5148c3426b47SDavid S. Miller net->ipv6.peers = bp; 5149c3426b47SDavid S. Miller return 0; 5150c3426b47SDavid S. Miller } 5151c3426b47SDavid S. Miller 5152c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5153c3426b47SDavid S. Miller { 5154c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5155c3426b47SDavid S. Miller 5156c3426b47SDavid S. Miller net->ipv6.peers = NULL; 515756a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5158c3426b47SDavid S. Miller kfree(bp); 5159c3426b47SDavid S. Miller } 5160c3426b47SDavid S. Miller 51612b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5162c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5163c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5164c3426b47SDavid S. Miller }; 5165c3426b47SDavid S. Miller 5166d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5167d189634eSThomas Graf .init = ip6_route_net_init_late, 5168d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5169d189634eSThomas Graf }; 5170d189634eSThomas Graf 51718ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 51728ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5173242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 51748ed67789SDaniel Lezcano }; 51758ed67789SDaniel Lezcano 51762f460933SWANG Cong void __init ip6_route_init_special_entries(void) 51772f460933SWANG Cong { 51782f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 51792f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 51802f460933SWANG Cong * manually for init_net */ 5181421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 51822f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 51832f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 51842f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 51852f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 51862f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 51872f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 51882f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 51892f460933SWANG Cong #endif 51902f460933SWANG Cong } 51912f460933SWANG Cong 5192433d49c3SDaniel Lezcano int __init ip6_route_init(void) 51931da177e4SLinus Torvalds { 5194433d49c3SDaniel Lezcano int ret; 51958d0b94afSMartin KaFai Lau int cpu; 5196433d49c3SDaniel Lezcano 51979a7ec3a9SDaniel Lezcano ret = -ENOMEM; 51989a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 51999a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 52009a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 52019a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5202c19a28e1SFernando Carrijo goto out; 520314e50e57SDavid S. Miller 5204fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 52058ed67789SDaniel Lezcano if (ret) 5206bdb3289fSDaniel Lezcano goto out_kmem_cache; 5207bdb3289fSDaniel Lezcano 5208c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5209c3426b47SDavid S. Miller if (ret) 5210e8803b6cSDavid S. Miller goto out_dst_entries; 52112a0c451aSThomas Graf 52127e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 52137e52b33bSDavid S. Miller if (ret) 52147e52b33bSDavid S. Miller goto out_register_inetpeer; 5215c3426b47SDavid S. Miller 52165dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 52175dc121e9SArnaud Ebalard 5218e8803b6cSDavid S. Miller ret = fib6_init(); 5219433d49c3SDaniel Lezcano if (ret) 52208ed67789SDaniel Lezcano goto out_register_subsys; 5221433d49c3SDaniel Lezcano 5222433d49c3SDaniel Lezcano ret = xfrm6_init(); 5223433d49c3SDaniel Lezcano if (ret) 5224e8803b6cSDavid S. Miller goto out_fib6_init; 5225c35b7e72SDaniel Lezcano 5226433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5227433d49c3SDaniel Lezcano if (ret) 5228433d49c3SDaniel Lezcano goto xfrm6_init; 52297e5449c2SDaniel Lezcano 5230d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5231d189634eSThomas Graf if (ret) 5232d189634eSThomas Graf goto fib6_rules_init; 5233d189634eSThomas Graf 523416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 523516feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 523616feebcfSFlorian Westphal if (ret < 0) 523716feebcfSFlorian Westphal goto out_register_late_subsys; 523816feebcfSFlorian Westphal 523916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 524016feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 524116feebcfSFlorian Westphal if (ret < 0) 524216feebcfSFlorian Westphal goto out_register_late_subsys; 524316feebcfSFlorian Westphal 524416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 524516feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 524616feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 524716feebcfSFlorian Westphal if (ret < 0) 5248d189634eSThomas Graf goto out_register_late_subsys; 5249433d49c3SDaniel Lezcano 52508ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5251cdb18761SDaniel Lezcano if (ret) 5252d189634eSThomas Graf goto out_register_late_subsys; 52538ed67789SDaniel Lezcano 52548d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 52558d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 52568d0b94afSMartin KaFai Lau 52578d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 52588d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 52598d0b94afSMartin KaFai Lau } 52608d0b94afSMartin KaFai Lau 5261433d49c3SDaniel Lezcano out: 5262433d49c3SDaniel Lezcano return ret; 5263433d49c3SDaniel Lezcano 5264d189634eSThomas Graf out_register_late_subsys: 526516feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5266d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5267433d49c3SDaniel Lezcano fib6_rules_init: 5268433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5269433d49c3SDaniel Lezcano xfrm6_init: 5270433d49c3SDaniel Lezcano xfrm6_fini(); 52712a0c451aSThomas Graf out_fib6_init: 52722a0c451aSThomas Graf fib6_gc_cleanup(); 52738ed67789SDaniel Lezcano out_register_subsys: 52748ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 52757e52b33bSDavid S. Miller out_register_inetpeer: 52767e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5277fc66f95cSEric Dumazet out_dst_entries: 5278fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5279433d49c3SDaniel Lezcano out_kmem_cache: 5280f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5281433d49c3SDaniel Lezcano goto out; 52821da177e4SLinus Torvalds } 52831da177e4SLinus Torvalds 52841da177e4SLinus Torvalds void ip6_route_cleanup(void) 52851da177e4SLinus Torvalds { 52868ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5287d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5288101367c2SThomas Graf fib6_rules_cleanup(); 52891da177e4SLinus Torvalds xfrm6_fini(); 52901da177e4SLinus Torvalds fib6_gc_cleanup(); 5291c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 52928ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 529341bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5294f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 52951da177e4SLinus Torvalds } 5296