11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 213f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 214f8a1b43bSDavid Ahern } 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 217f8a1b43bSDavid Ahern struct sk_buff *skb, 218f8a1b43bSDavid Ahern const void *daddr) 219f8a1b43bSDavid Ahern { 220f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 221f8a1b43bSDavid Ahern 222f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 223f83c7790SDavid S. Miller } 224f83c7790SDavid S. Miller 22563fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22663fca65dSJulian Anastasov { 22763fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22863fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22963fca65dSJulian Anastasov 230f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23163fca65dSJulian Anastasov if (!daddr) 23263fca65dSJulian Anastasov return; 23363fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23863fca65dSJulian Anastasov } 23963fca65dSJulian Anastasov 2409a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2411da177e4SLinus Torvalds .family = AF_INET6, 2421da177e4SLinus Torvalds .gc = ip6_dst_gc, 2431da177e4SLinus Torvalds .gc_thresh = 1024, 2441da177e4SLinus Torvalds .check = ip6_dst_check, 2450dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 246ebb762f2SSteffen Klassert .mtu = ip6_mtu, 247d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2481da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2491da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2501da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2511da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2521da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2536e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2549f8955ccSEric W. Biederman .local_out = __ip6_local_out, 255f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25663fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2571da177e4SLinus Torvalds }; 2581da177e4SLinus Torvalds 259ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 260ec831ea7SRoland Dreier { 261618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 262618f9bc7SSteffen Klassert 263618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 264ec831ea7SRoland Dreier } 265ec831ea7SRoland Dreier 2666700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2676700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26814e50e57SDavid S. Miller { 26914e50e57SDavid S. Miller } 27014e50e57SDavid S. Miller 2716700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2726700c270SDavid S. Miller struct sk_buff *skb) 273b587ee3bSDavid S. Miller { 274b587ee3bSDavid S. Miller } 275b587ee3bSDavid S. Miller 27614e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27714e50e57SDavid S. Miller .family = AF_INET6, 27814e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27914e50e57SDavid S. Miller .check = ip6_dst_check, 280ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 281214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28214e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 283b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2840a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 285f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28614e50e57SDavid S. Miller }; 28714e50e57SDavid S. Miller 28862fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28914edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29062fa8a84SDavid S. Miller }; 29162fa8a84SDavid S. Miller 2928d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29393c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29493c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29593c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29693c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 297421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 298421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 299421842edSDavid Ahern }; 300421842edSDavid Ahern 301fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3021da177e4SLinus Torvalds .dst = { 3031da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3041da177e4SLinus Torvalds .__use = 1, 3052c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3061da177e4SLinus Torvalds .error = -ENETUNREACH, 3071da177e4SLinus Torvalds .input = ip6_pkt_discard, 3081da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3091da177e4SLinus Torvalds }, 3101da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 325101367c2SThomas Graf }; 326101367c2SThomas Graf 327fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 328101367c2SThomas Graf .dst = { 329101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 330101367c2SThomas Graf .__use = 1, 3312c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 332101367c2SThomas Graf .error = -EINVAL, 333352e512cSHerbert Xu .input = dst_discard, 334ede2059dSEric W. Biederman .output = dst_discard_out, 335101367c2SThomas Graf }, 336101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 337101367c2SThomas Graf }; 338101367c2SThomas Graf 339101367c2SThomas Graf #endif 340101367c2SThomas Graf 341ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 342ebfa45f0SMartin KaFai Lau { 343ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 344ebfa45f0SMartin KaFai Lau 345ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 346ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 347ebfa45f0SMartin KaFai Lau } 348ebfa45f0SMartin KaFai Lau 3491da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35093531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 351ad706862SMartin KaFai Lau int flags) 3521da177e4SLinus Torvalds { 35397bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 354b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 355cf911662SDavid S. Miller 35681eb8447SWei Wang if (rt) { 357ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35981eb8447SWei Wang } 3608104891bSSteffen Klassert 361cf911662SDavid S. Miller return rt; 3621da177e4SLinus Torvalds } 3639ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 364d52d3997SMartin KaFai Lau 3651da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3661da177e4SLinus Torvalds { 367*ce7ea4afSWei Wang struct dst_metrics *p = (struct dst_metrics *)DST_METRICS_PTR(dst); 3681da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 369a68886a6SDavid Ahern struct fib6_info *from; 3708d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3711da177e4SLinus Torvalds 372*ce7ea4afSWei Wang if (p != &dst_default_metrics && refcount_dec_and_test(&p->refcnt)) 373*ce7ea4afSWei Wang kfree(p); 374*ce7ea4afSWei Wang 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 383a68886a6SDavid Ahern rcu_read_lock(); 384a68886a6SDavid Ahern from = rcu_dereference(rt->from); 385a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38693531c67SDavid Ahern fib6_info_release(from); 387a68886a6SDavid Ahern rcu_read_unlock(); 388b3419363SDavid S. Miller } 389b3419363SDavid S. Miller 3901da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3911da177e4SLinus Torvalds int how) 3921da177e4SLinus Torvalds { 3931da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3941da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3955a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 396c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3971da177e4SLinus Torvalds 398e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 399e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 40038308473SDavid S. Miller if (loopback_idev) { 4011da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 4021da177e4SLinus Torvalds in6_dev_put(idev); 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds } 40597cac082SDavid S. Miller } 4061da177e4SLinus Torvalds 4075973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4085973fb1eSMartin KaFai Lau { 4095973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4105973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4115973fb1eSMartin KaFai Lau else 4125973fb1eSMartin KaFai Lau return false; 4135973fb1eSMartin KaFai Lau } 4145973fb1eSMartin KaFai Lau 415a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4161da177e4SLinus Torvalds { 417a68886a6SDavid Ahern struct fib6_info *from; 418a68886a6SDavid Ahern 419a68886a6SDavid Ahern from = rcu_dereference(rt->from); 420a68886a6SDavid Ahern 4211716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4221716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 423a50feda5SEric Dumazet return true; 424a68886a6SDavid Ahern } else if (from) { 4251e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 426a68886a6SDavid Ahern fib6_check_expired(from); 4271716a961SGao feng } 428a50feda5SEric Dumazet return false; 4291da177e4SLinus Torvalds } 4301da177e4SLinus Torvalds 4313b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4328d1c802bSDavid Ahern struct fib6_info *match, 43352bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 434b75cc8f9SDavid Ahern const struct sk_buff *skb, 43552bd4c0cSNicolas Dichtel int strict) 43651ebd318SNicolas Dichtel { 4378d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43851ebd318SNicolas Dichtel 439b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 440b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 441b673d6ccSJakub Sitnicki */ 442b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 443b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 444b673d6ccSJakub Sitnicki 4455e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4463d709f69SIdo Schimmel return match; 447bbfcd776SIdo Schimmel 44893c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44993c2fb25SDavid Ahern fib6_siblings) { 4505e670d84SDavid Ahern int nh_upper_bound; 4515e670d84SDavid Ahern 4525e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4535e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4543d709f69SIdo Schimmel continue; 45552bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45652bd4c0cSNicolas Dichtel break; 45751ebd318SNicolas Dichtel match = sibling; 45851ebd318SNicolas Dichtel break; 45951ebd318SNicolas Dichtel } 4603d709f69SIdo Schimmel 46151ebd318SNicolas Dichtel return match; 46251ebd318SNicolas Dichtel } 46351ebd318SNicolas Dichtel 4641da177e4SLinus Torvalds /* 46566f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4661da177e4SLinus Torvalds */ 4671da177e4SLinus Torvalds 4688d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4698d1c802bSDavid Ahern struct fib6_info *rt, 470b71d1d42SEric Dumazet const struct in6_addr *saddr, 4711da177e4SLinus Torvalds int oif, 472d420895eSYOSHIFUJI Hideaki int flags) 4731da177e4SLinus Torvalds { 4748d1c802bSDavid Ahern struct fib6_info *sprt; 4751da177e4SLinus Torvalds 4765e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4775e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4788067bb8cSIdo Schimmel return rt; 479dd3abc4eSYOSHIFUJI Hideaki 4808fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 4815e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 482dd3abc4eSYOSHIFUJI Hideaki 4835e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4848067bb8cSIdo Schimmel continue; 4858067bb8cSIdo Schimmel 486dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4871da177e4SLinus Torvalds if (dev->ifindex == oif) 4881da177e4SLinus Torvalds return sprt; 489dd3abc4eSYOSHIFUJI Hideaki } else { 490dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 491dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 492dd3abc4eSYOSHIFUJI Hideaki return sprt; 493dd3abc4eSYOSHIFUJI Hideaki } 4941da177e4SLinus Torvalds } 4951da177e4SLinus Torvalds 496eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 497421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4981da177e4SLinus Torvalds 499421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 5001da177e4SLinus Torvalds } 5011da177e4SLinus Torvalds 50227097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 503c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 504c2f17e82SHannes Frederic Sowa struct work_struct work; 505c2f17e82SHannes Frederic Sowa struct in6_addr target; 506c2f17e82SHannes Frederic Sowa struct net_device *dev; 507c2f17e82SHannes Frederic Sowa }; 508c2f17e82SHannes Frederic Sowa 509c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 510c2f17e82SHannes Frederic Sowa { 511c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 512c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 513c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 514c2f17e82SHannes Frederic Sowa 515c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 516adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 517c2f17e82SHannes Frederic Sowa dev_put(work->dev); 518662f5533SMichael Büsch kfree(work); 519c2f17e82SHannes Frederic Sowa } 520c2f17e82SHannes Frederic Sowa 5218d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 52227097255SYOSHIFUJI Hideaki { 523990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 5245e670d84SDavid Ahern const struct in6_addr *nh_gw; 525f2c31e32SEric Dumazet struct neighbour *neigh; 5265e670d84SDavid Ahern struct net_device *dev; 5275e670d84SDavid Ahern 52827097255SYOSHIFUJI Hideaki /* 52927097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 53027097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 53127097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 53227097255SYOSHIFUJI Hideaki * 53327097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53427097255SYOSHIFUJI Hideaki * to no more than one per minute. 53527097255SYOSHIFUJI Hideaki */ 53693c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 537fdd6681dSAmerigo Wang return; 5385e670d84SDavid Ahern 5395e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5405e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5412152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5425e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5432152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 544dcd1f572SDavid Ahern struct inet6_dev *idev; 545dcd1f572SDavid Ahern 5468d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5478d6c31bfSMartin KaFai Lau goto out; 5488d6c31bfSMartin KaFai Lau 549dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 550990edb42SMartin KaFai Lau work = NULL; 5512152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 552990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 553990edb42SMartin KaFai Lau time_after(jiffies, 554dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 555c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 556990edb42SMartin KaFai Lau if (work) 5577e980569SJiri Benc __neigh_set_probe_once(neigh); 558990edb42SMartin KaFai Lau } 559c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 560990edb42SMartin KaFai Lau } else { 561990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 562990edb42SMartin KaFai Lau } 563c2f17e82SHannes Frederic Sowa 564c2f17e82SHannes Frederic Sowa if (work) { 565c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5665e670d84SDavid Ahern work->target = *nh_gw; 5675e670d84SDavid Ahern dev_hold(dev); 5685e670d84SDavid Ahern work->dev = dev; 569c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 570c2f17e82SHannes Frederic Sowa } 571990edb42SMartin KaFai Lau 5728d6c31bfSMartin KaFai Lau out: 5732152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 574f2c31e32SEric Dumazet } 57527097255SYOSHIFUJI Hideaki #else 5768d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57727097255SYOSHIFUJI Hideaki { 57827097255SYOSHIFUJI Hideaki } 57927097255SYOSHIFUJI Hideaki #endif 58027097255SYOSHIFUJI Hideaki 5811da177e4SLinus Torvalds /* 582554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5831da177e4SLinus Torvalds */ 5848d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5851da177e4SLinus Torvalds { 5865e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5875e670d84SDavid Ahern 588161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 589554cfb7eSYOSHIFUJI Hideaki return 2; 590554cfb7eSYOSHIFUJI Hideaki return 0; 5911da177e4SLinus Torvalds } 5921da177e4SLinus Torvalds 5938d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5941da177e4SLinus Torvalds { 595afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5965e670d84SDavid Ahern struct neighbour *neigh; 597f2c31e32SEric Dumazet 59893c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 59993c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 600afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 601145a3621SYOSHIFUJI Hideaki / 吉藤英明 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6035e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 6045e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 605145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 606145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 607554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 609398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 610a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 611afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6127e980569SJiri Benc else 6137e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 614398bcbebSYOSHIFUJI Hideaki #endif 615145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 616afc154e9SHannes Frederic Sowa } else { 617afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6187e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 619a5a81f0bSPaul Marks } 620145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 621145a3621SYOSHIFUJI Hideaki / 吉藤英明 622a5a81f0bSPaul Marks return ret; 6231da177e4SLinus Torvalds } 6241da177e4SLinus Torvalds 6258d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 626554cfb7eSYOSHIFUJI Hideaki { 627a5a81f0bSPaul Marks int m; 6284d0c5911SYOSHIFUJI Hideaki 6294d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 63077d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 631afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 632ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 63393c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 634ebacaaa0SYOSHIFUJI Hideaki #endif 635afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 636afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 637afc154e9SHannes Frederic Sowa if (n < 0) 638afc154e9SHannes Frederic Sowa return n; 639afc154e9SHannes Frederic Sowa } 640554cfb7eSYOSHIFUJI Hideaki return m; 641554cfb7eSYOSHIFUJI Hideaki } 642554cfb7eSYOSHIFUJI Hideaki 643dcd1f572SDavid Ahern /* called with rc_read_lock held */ 644dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 645dcd1f572SDavid Ahern { 646dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 647dcd1f572SDavid Ahern bool rc = false; 648dcd1f572SDavid Ahern 649dcd1f572SDavid Ahern if (dev) { 650dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 651dcd1f572SDavid Ahern 652dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 653dcd1f572SDavid Ahern } 654dcd1f572SDavid Ahern 655dcd1f572SDavid Ahern return rc; 656dcd1f572SDavid Ahern } 657dcd1f572SDavid Ahern 6588d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6598d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 660afc154e9SHannes Frederic Sowa bool *do_rr) 661554cfb7eSYOSHIFUJI Hideaki { 662554cfb7eSYOSHIFUJI Hideaki int m; 663afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66435103d11SAndy Gospodarek 6655e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6668067bb8cSIdo Schimmel goto out; 6678067bb8cSIdo Schimmel 668dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6695e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 670d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 67135103d11SAndy Gospodarek goto out; 672554cfb7eSYOSHIFUJI Hideaki 67314895687SDavid Ahern if (fib6_check_expired(rt)) 674f11e6659SDavid S. Miller goto out; 675554cfb7eSYOSHIFUJI Hideaki 676554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6777e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 678afc154e9SHannes Frederic Sowa match_do_rr = true; 679afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6807e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 681f11e6659SDavid S. Miller goto out; 6821da177e4SLinus Torvalds } 683f11e6659SDavid S. Miller 684afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 685afc154e9SHannes Frederic Sowa rt6_probe(rt); 686afc154e9SHannes Frederic Sowa 6877e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 688afc154e9SHannes Frederic Sowa if (m > *mpri) { 689afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 690afc154e9SHannes Frederic Sowa *mpri = m; 691afc154e9SHannes Frederic Sowa match = rt; 692afc154e9SHannes Frederic Sowa } 693f11e6659SDavid S. Miller out: 694f11e6659SDavid S. Miller return match; 6951da177e4SLinus Torvalds } 6961da177e4SLinus Torvalds 6978d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6988d1c802bSDavid Ahern struct fib6_info *leaf, 6998d1c802bSDavid Ahern struct fib6_info *rr_head, 700afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 701afc154e9SHannes Frederic Sowa bool *do_rr) 702f11e6659SDavid S. Miller { 7038d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 704f11e6659SDavid S. Miller int mpri = -1; 705f11e6659SDavid S. Miller 706f11e6659SDavid S. Miller match = NULL; 7079fbdcfafSSteffen Klassert cont = NULL; 7088fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 70993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7109fbdcfafSSteffen Klassert cont = rt; 7119fbdcfafSSteffen Klassert break; 7129fbdcfafSSteffen Klassert } 7139fbdcfafSSteffen Klassert 714afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7159fbdcfafSSteffen Klassert } 7169fbdcfafSSteffen Klassert 71766f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7188fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 71993c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7209fbdcfafSSteffen Klassert cont = rt; 7219fbdcfafSSteffen Klassert break; 7229fbdcfafSSteffen Klassert } 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7259fbdcfafSSteffen Klassert } 7269fbdcfafSSteffen Klassert 7279fbdcfafSSteffen Klassert if (match || !cont) 7289fbdcfafSSteffen Klassert return match; 7299fbdcfafSSteffen Klassert 7308fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 731afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 732f11e6659SDavid S. Miller 733f11e6659SDavid S. Miller return match; 734f11e6659SDavid S. Miller } 735f11e6659SDavid S. Miller 7368d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7378d1040e8SWei Wang int oif, int strict) 738f11e6659SDavid S. Miller { 7398d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7408d1c802bSDavid Ahern struct fib6_info *match, *rt0; 741afc154e9SHannes Frederic Sowa bool do_rr = false; 74217ecf590SWei Wang int key_plen; 743f11e6659SDavid S. Miller 744421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 745421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7468d1040e8SWei Wang 74766f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 748f11e6659SDavid S. Miller if (!rt0) 74966f5d6ceSWei Wang rt0 = leaf; 750f11e6659SDavid S. Miller 75117ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 75217ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75317ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75417ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75517ecf590SWei Wang */ 75693c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75717ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75893c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75993c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 76017ecf590SWei Wang #endif 76117ecf590SWei Wang if (fn->fn_bit != key_plen) 762421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76317ecf590SWei Wang 76493c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 765afc154e9SHannes Frederic Sowa &do_rr); 766f11e6659SDavid S. Miller 767afc154e9SHannes Frederic Sowa if (do_rr) { 7688fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 769f11e6659SDavid S. Miller 770554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 77193c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7728d1040e8SWei Wang next = leaf; 773f11e6659SDavid S. Miller 77466f5d6ceSWei Wang if (next != rt0) { 77593c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77666f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77793c2fb25SDavid Ahern if (next->fib6_node) 77866f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77993c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 78066f5d6ceSWei Wang } 781554cfb7eSYOSHIFUJI Hideaki } 782554cfb7eSYOSHIFUJI Hideaki 783421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7841da177e4SLinus Torvalds } 7851da177e4SLinus Torvalds 7868d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7878b9df265SMartin KaFai Lau { 78893c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7898b9df265SMartin KaFai Lau } 7908b9df265SMartin KaFai Lau 79170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 79270ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 793b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79470ceb4f5SYOSHIFUJI Hideaki { 795c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79670ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79770ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79870ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7994bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 8008d1c802bSDavid Ahern struct fib6_info *rt; 80170ceb4f5SYOSHIFUJI Hideaki 80270ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80470ceb4f5SYOSHIFUJI Hideaki } 80570ceb4f5SYOSHIFUJI Hideaki 80670ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80970ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 81270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81470ceb4f5SYOSHIFUJI Hideaki } 81570ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81670ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81870ceb4f5SYOSHIFUJI Hideaki } 81970ceb4f5SYOSHIFUJI Hideaki } 82070ceb4f5SYOSHIFUJI Hideaki 82170ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 82270ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8233933fc95SJens Rosenboom return -EINVAL; 82470ceb4f5SYOSHIFUJI Hideaki 8254bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82670ceb4f5SYOSHIFUJI Hideaki 82770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82870ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82970ceb4f5SYOSHIFUJI Hideaki else { 83070ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 83170ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 83270ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83370ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83470ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83570ceb4f5SYOSHIFUJI Hideaki } 83670ceb4f5SYOSHIFUJI Hideaki 837f104a567SDuan Jiong if (rinfo->prefix_len == 0) 838afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 839f104a567SDuan Jiong else 840f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 841830218c1SDavid Ahern gwaddr, dev); 84270ceb4f5SYOSHIFUJI Hideaki 84370ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 844afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84570ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84670ceb4f5SYOSHIFUJI Hideaki } 84770ceb4f5SYOSHIFUJI Hideaki 84870ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 849830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 850830218c1SDavid Ahern dev, pref); 85170ceb4f5SYOSHIFUJI Hideaki else if (rt) 85293c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85393c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85470ceb4f5SYOSHIFUJI Hideaki 85570ceb4f5SYOSHIFUJI Hideaki if (rt) { 8561716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85714895687SDavid Ahern fib6_clean_expires(rt); 8581716a961SGao feng else 85914895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8601716a961SGao feng 86193531c67SDavid Ahern fib6_info_release(rt); 86270ceb4f5SYOSHIFUJI Hideaki } 86370ceb4f5SYOSHIFUJI Hideaki return 0; 86470ceb4f5SYOSHIFUJI Hideaki } 86570ceb4f5SYOSHIFUJI Hideaki #endif 86670ceb4f5SYOSHIFUJI Hideaki 867ae90d867SDavid Ahern /* 868ae90d867SDavid Ahern * Misc support functions 869ae90d867SDavid Ahern */ 870ae90d867SDavid Ahern 871ae90d867SDavid Ahern /* called with rcu_lock held */ 8728d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 873ae90d867SDavid Ahern { 8745e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 875ae90d867SDavid Ahern 87693c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 877ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 878ae90d867SDavid Ahern * device if it is a master device, the master device if 879ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 880ae90d867SDavid Ahern */ 881ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 88293c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 883ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 884ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 885ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 886ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 887ae90d867SDavid Ahern * case we want dev returned to be dev 888ae90d867SDavid Ahern */ 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 891ae90d867SDavid Ahern return dev; 892ae90d867SDavid Ahern } 893ae90d867SDavid Ahern 8946edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8956edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8966edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8976edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8986edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8996edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 9006edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 9016edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 9026edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9036edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9046edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9056edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9066edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9076edb3c96SDavid Ahern }; 9086edb3c96SDavid Ahern 9096edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9106edb3c96SDavid Ahern { 9116edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9126edb3c96SDavid Ahern } 9136edb3c96SDavid Ahern 9148d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9153b6761d1SDavid Ahern { 9163b6761d1SDavid Ahern unsigned short flags = 0; 9173b6761d1SDavid Ahern 9183b6761d1SDavid Ahern if (rt->dst_nocount) 9193b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9203b6761d1SDavid Ahern if (rt->dst_nopolicy) 9213b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9223b6761d1SDavid Ahern if (rt->dst_host) 9233b6761d1SDavid Ahern flags |= DST_HOST; 9243b6761d1SDavid Ahern 9253b6761d1SDavid Ahern return flags; 9263b6761d1SDavid Ahern } 9273b6761d1SDavid Ahern 9288d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9296edb3c96SDavid Ahern { 9306edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9316edb3c96SDavid Ahern 9326edb3c96SDavid Ahern switch (ort->fib6_type) { 9336edb3c96SDavid Ahern case RTN_BLACKHOLE: 9346edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9356edb3c96SDavid Ahern rt->dst.input = dst_discard; 9366edb3c96SDavid Ahern break; 9376edb3c96SDavid Ahern case RTN_PROHIBIT: 9386edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9396edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9406edb3c96SDavid Ahern break; 9416edb3c96SDavid Ahern case RTN_THROW: 9426edb3c96SDavid Ahern case RTN_UNREACHABLE: 9436edb3c96SDavid Ahern default: 9446edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9456edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9466edb3c96SDavid Ahern break; 9476edb3c96SDavid Ahern } 9486edb3c96SDavid Ahern } 9496edb3c96SDavid Ahern 9508d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9516edb3c96SDavid Ahern { 95293c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9536edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9546edb3c96SDavid Ahern return; 9556edb3c96SDavid Ahern } 9566edb3c96SDavid Ahern 9576edb3c96SDavid Ahern rt->dst.error = 0; 9586edb3c96SDavid Ahern rt->dst.output = ip6_output; 9596edb3c96SDavid Ahern 960d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9616edb3c96SDavid Ahern rt->dst.input = ip6_input; 96293c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9636edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9646edb3c96SDavid Ahern } else { 9656edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9666edb3c96SDavid Ahern } 9676edb3c96SDavid Ahern 9686edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9696edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9706edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9716edb3c96SDavid Ahern } 9726edb3c96SDavid Ahern 9736edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9746edb3c96SDavid Ahern } 9756edb3c96SDavid Ahern 976e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9778d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 978ae90d867SDavid Ahern { 979ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 980a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 981d4ead6b3SDavid Ahern dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true); 98286758605SWei Wang if (from->fib6_metrics != &dst_default_metrics) { 98386758605SWei Wang rt->dst._metrics |= DST_METRICS_REFCOUNTED; 98486758605SWei Wang refcount_inc(&from->fib6_metrics->refcnt); 98586758605SWei Wang } 986ae90d867SDavid Ahern } 987ae90d867SDavid Ahern 988e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9898d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 990ae90d867SDavid Ahern { 991dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 992dcd1f572SDavid Ahern 9936edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9946edb3c96SDavid Ahern 99593c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 996dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9975e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 99893c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 999ae90d867SDavid Ahern rt6_set_from(rt, ort); 1000ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 100193c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 1002ae90d867SDavid Ahern #endif 100393c2fb25SDavid Ahern rt->rt6i_prefsrc = ort->fib6_prefsrc; 1004ae90d867SDavid Ahern } 1005ae90d867SDavid Ahern 1006a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1007a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1008a3c00e46SMartin KaFai Lau { 100966f5d6ceSWei Wang struct fib6_node *pn, *sn; 1010a3c00e46SMartin KaFai Lau while (1) { 1011a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1012a3c00e46SMartin KaFai Lau return NULL; 101366f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 101466f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 101566f5d6ceSWei Wang if (sn && sn != fn) 10166454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1017a3c00e46SMartin KaFai Lau else 1018a3c00e46SMartin KaFai Lau fn = pn; 1019a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1020a3c00e46SMartin KaFai Lau return fn; 1021a3c00e46SMartin KaFai Lau } 1022a3c00e46SMartin KaFai Lau } 1023c71099acSThomas Graf 1024d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1025d3843fe5SWei Wang bool null_fallback) 1026d3843fe5SWei Wang { 1027d3843fe5SWei Wang struct rt6_info *rt = *prt; 1028d3843fe5SWei Wang 1029d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1030d3843fe5SWei Wang return true; 1031d3843fe5SWei Wang if (null_fallback) { 1032d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1033d3843fe5SWei Wang dst_hold(&rt->dst); 1034d3843fe5SWei Wang } else { 1035d3843fe5SWei Wang rt = NULL; 1036d3843fe5SWei Wang } 1037d3843fe5SWei Wang *prt = rt; 1038d3843fe5SWei Wang return false; 1039d3843fe5SWei Wang } 1040d3843fe5SWei Wang 1041dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10428d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1043dec9b0e2SDavid Ahern { 10443b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1045dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1046dec9b0e2SDavid Ahern struct rt6_info *nrt; 1047dec9b0e2SDavid Ahern 1048e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1049e873e4b9SWei Wang return NULL; 1050e873e4b9SWei Wang 105193531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1052dec9b0e2SDavid Ahern if (nrt) 1053dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1054e873e4b9SWei Wang else 1055e873e4b9SWei Wang fib6_info_release(rt); 1056dec9b0e2SDavid Ahern 1057dec9b0e2SDavid Ahern return nrt; 1058dec9b0e2SDavid Ahern } 1059dec9b0e2SDavid Ahern 10608ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10618ed67789SDaniel Lezcano struct fib6_table *table, 1062b75cc8f9SDavid Ahern struct flowi6 *fl6, 1063b75cc8f9SDavid Ahern const struct sk_buff *skb, 1064b75cc8f9SDavid Ahern int flags) 10651da177e4SLinus Torvalds { 10668d1c802bSDavid Ahern struct fib6_info *f6i; 10671da177e4SLinus Torvalds struct fib6_node *fn; 106823fb93a4SDavid Ahern struct rt6_info *rt; 10691da177e4SLinus Torvalds 1070b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1071b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1072b6cdbc85SDavid Ahern 107366f5d6ceSWei Wang rcu_read_lock(); 10746454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1075c71099acSThomas Graf restart: 107623fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 107723fb93a4SDavid Ahern if (!f6i) { 107823fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 107966f5d6ceSWei Wang } else { 108023fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 108166f5d6ceSWei Wang fl6->flowi6_oif, flags); 108293c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10833b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10843b290a31SDavid Ahern fl6->flowi6_oif, skb, 10853b290a31SDavid Ahern flags); 108666f5d6ceSWei Wang } 108723fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1088a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1089a3c00e46SMartin KaFai Lau if (fn) 1090a3c00e46SMartin KaFai Lau goto restart; 1091a3c00e46SMartin KaFai Lau } 10922b760fcfSWei Wang 1093d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1094d4bea421SDavid Ahern 10954c9483b2SDavid S. Miller /* Search through exception table */ 109623fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 109723fb93a4SDavid Ahern if (rt) { 1098d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1099d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 110023fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1101dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1102dec9b0e2SDavid Ahern dst_hold(&rt->dst); 110323fb93a4SDavid Ahern } else { 110423fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 110523fb93a4SDavid Ahern if (!rt) { 110623fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 110723fb93a4SDavid Ahern dst_hold(&rt->dst); 110823fb93a4SDavid Ahern } 1109dec9b0e2SDavid Ahern } 1110d3843fe5SWei Wang 111166f5d6ceSWei Wang rcu_read_unlock(); 1112b811580dSDavid Ahern 11131da177e4SLinus Torvalds return rt; 1114c71099acSThomas Graf } 1115c71099acSThomas Graf 1116ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1117b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1118ea6e574eSFlorian Westphal { 1119b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1120ea6e574eSFlorian Westphal } 1121ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1122ea6e574eSFlorian Westphal 11239acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1124b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1125b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1126c71099acSThomas Graf { 11274c9483b2SDavid S. Miller struct flowi6 fl6 = { 11284c9483b2SDavid S. Miller .flowi6_oif = oif, 11294c9483b2SDavid S. Miller .daddr = *daddr, 1130c71099acSThomas Graf }; 1131c71099acSThomas Graf struct dst_entry *dst; 113277d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1133c71099acSThomas Graf 1134adaa70bbSThomas Graf if (saddr) { 11354c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1136adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1137adaa70bbSThomas Graf } 1138adaa70bbSThomas Graf 1139b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1140c71099acSThomas Graf if (dst->error == 0) 1141c71099acSThomas Graf return (struct rt6_info *) dst; 1142c71099acSThomas Graf 1143c71099acSThomas Graf dst_release(dst); 1144c71099acSThomas Graf 11451da177e4SLinus Torvalds return NULL; 11461da177e4SLinus Torvalds } 11477159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11487159039aSYOSHIFUJI Hideaki 1149c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11501cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11511cfb71eeSWei Wang * route is released. 11521cfb71eeSWei Wang * Caller must hold dst before calling it. 11531da177e4SLinus Torvalds */ 11541da177e4SLinus Torvalds 11558d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1156333c4301SDavid Ahern struct netlink_ext_ack *extack) 11571da177e4SLinus Torvalds { 11581da177e4SLinus Torvalds int err; 1159c71099acSThomas Graf struct fib6_table *table; 11601da177e4SLinus Torvalds 116193c2fb25SDavid Ahern table = rt->fib6_table; 116266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1163d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 116466f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11651da177e4SLinus Torvalds 11661da177e4SLinus Torvalds return err; 11671da177e4SLinus Torvalds } 11681da177e4SLinus Torvalds 11698d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 117040e22e8fSThomas Graf { 1171afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1172e715b6d3SFlorian Westphal 1173d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 117440e22e8fSThomas Graf } 117540e22e8fSThomas Graf 11768d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 117721efcfa0SEric Dumazet const struct in6_addr *daddr, 1178b71d1d42SEric Dumazet const struct in6_addr *saddr) 11791da177e4SLinus Torvalds { 11804832c30dSDavid Ahern struct net_device *dev; 11811da177e4SLinus Torvalds struct rt6_info *rt; 11821da177e4SLinus Torvalds 11831da177e4SLinus Torvalds /* 11841da177e4SLinus Torvalds * Clone the route. 11851da177e4SLinus Torvalds */ 11861da177e4SLinus Torvalds 1187e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1188e873e4b9SWei Wang return NULL; 1189e873e4b9SWei Wang 11904832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 119193531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1192e873e4b9SWei Wang if (!rt) { 1193e873e4b9SWei Wang fib6_info_release(ort); 119483a09abdSMartin KaFai Lau return NULL; 1195e873e4b9SWei Wang } 119683a09abdSMartin KaFai Lau 119783a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11988b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119983a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 120083a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 120183a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 12028b9df265SMartin KaFai Lau 12038b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 120493c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 120593c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 120658c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12071da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12081da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12094e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12101da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12111da177e4SLinus Torvalds } 12121da177e4SLinus Torvalds #endif 121395a9a5baSYOSHIFUJI Hideaki } 121495a9a5baSYOSHIFUJI Hideaki 1215299d9939SYOSHIFUJI Hideaki return rt; 1216299d9939SYOSHIFUJI Hideaki } 1217299d9939SYOSHIFUJI Hideaki 12188d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1219d52d3997SMartin KaFai Lau { 12203b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12214832c30dSDavid Ahern struct net_device *dev; 1222d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1223d52d3997SMartin KaFai Lau 1224e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1225e873e4b9SWei Wang return NULL; 1226e873e4b9SWei Wang 12274832c30dSDavid Ahern rcu_read_lock(); 12284832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122993531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12304832c30dSDavid Ahern rcu_read_unlock(); 1231e873e4b9SWei Wang if (!pcpu_rt) { 1232e873e4b9SWei Wang fib6_info_release(rt); 1233d52d3997SMartin KaFai Lau return NULL; 1234e873e4b9SWei Wang } 1235d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1236d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1237d52d3997SMartin KaFai Lau return pcpu_rt; 1238d52d3997SMartin KaFai Lau } 1239d52d3997SMartin KaFai Lau 124066f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12418d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1242d52d3997SMartin KaFai Lau { 1243a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1244d52d3997SMartin KaFai Lau 1245d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1246d52d3997SMartin KaFai Lau pcpu_rt = *p; 1247d52d3997SMartin KaFai Lau 1248d4ead6b3SDavid Ahern if (pcpu_rt) 1249d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1250d3843fe5SWei Wang 1251a73e4195SMartin KaFai Lau return pcpu_rt; 1252a73e4195SMartin KaFai Lau } 1253a73e4195SMartin KaFai Lau 1254afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12558d1c802bSDavid Ahern struct fib6_info *rt) 1256a73e4195SMartin KaFai Lau { 1257a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1258d52d3997SMartin KaFai Lau 1259d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1260d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12619c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12629c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1263d52d3997SMartin KaFai Lau } 1264d52d3997SMartin KaFai Lau 1265a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1266a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1267d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1268951f788aSEric Dumazet BUG_ON(prev); 1269a94b9367SWei Wang 1270d52d3997SMartin KaFai Lau return pcpu_rt; 1271d52d3997SMartin KaFai Lau } 1272d52d3997SMartin KaFai Lau 127335732d01SWei Wang /* exception hash table implementation 127435732d01SWei Wang */ 127535732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 127635732d01SWei Wang 127735732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127835732d01SWei Wang * Caller must hold rt6_exception_lock 127935732d01SWei Wang */ 128035732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 128135732d01SWei Wang struct rt6_exception *rt6_ex) 128235732d01SWei Wang { 1283b2427e67SColin Ian King struct net *net; 128481eb8447SWei Wang 128535732d01SWei Wang if (!bucket || !rt6_ex) 128635732d01SWei Wang return; 1287b2427e67SColin Ian King 1288b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 128935732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 129077634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 129135732d01SWei Wang kfree_rcu(rt6_ex, rcu); 129235732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 129335732d01SWei Wang bucket->depth--; 129481eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 129535732d01SWei Wang } 129635732d01SWei Wang 129735732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129835732d01SWei Wang * Caller must hold rt6_exception_lock 129935732d01SWei Wang */ 130035732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 130135732d01SWei Wang { 130235732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 130335732d01SWei Wang 130435732d01SWei Wang if (!bucket) 130535732d01SWei Wang return; 130635732d01SWei Wang 130735732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130835732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130935732d01SWei Wang oldest = rt6_ex; 131035732d01SWei Wang } 131135732d01SWei Wang rt6_remove_exception(bucket, oldest); 131235732d01SWei Wang } 131335732d01SWei Wang 131435732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 131535732d01SWei Wang const struct in6_addr *src) 131635732d01SWei Wang { 131735732d01SWei Wang static u32 seed __read_mostly; 131835732d01SWei Wang u32 val; 131935732d01SWei Wang 132035732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 132135732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 132235732d01SWei Wang 132335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 132435732d01SWei Wang if (src) 132535732d01SWei Wang val = jhash(src, sizeof(*src), val); 132635732d01SWei Wang #endif 132735732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132835732d01SWei Wang } 132935732d01SWei Wang 133035732d01SWei Wang /* Helper function to find the cached rt in the hash table 133135732d01SWei Wang * and update bucket pointer to point to the bucket for this 133235732d01SWei Wang * (daddr, saddr) pair 133335732d01SWei Wang * Caller must hold rt6_exception_lock 133435732d01SWei Wang */ 133535732d01SWei Wang static struct rt6_exception * 133635732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 133735732d01SWei Wang const struct in6_addr *daddr, 133835732d01SWei Wang const struct in6_addr *saddr) 133935732d01SWei Wang { 134035732d01SWei Wang struct rt6_exception *rt6_ex; 134135732d01SWei Wang u32 hval; 134235732d01SWei Wang 134335732d01SWei Wang if (!(*bucket) || !daddr) 134435732d01SWei Wang return NULL; 134535732d01SWei Wang 134635732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 134735732d01SWei Wang *bucket += hval; 134835732d01SWei Wang 134935732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 135035732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 135135732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 135235732d01SWei Wang 135335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 135435732d01SWei Wang if (matched && saddr) 135535732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 135635732d01SWei Wang #endif 135735732d01SWei Wang if (matched) 135835732d01SWei Wang return rt6_ex; 135935732d01SWei Wang } 136035732d01SWei Wang return NULL; 136135732d01SWei Wang } 136235732d01SWei Wang 136335732d01SWei Wang /* Helper function to find the cached rt in the hash table 136435732d01SWei Wang * and update bucket pointer to point to the bucket for this 136535732d01SWei Wang * (daddr, saddr) pair 136635732d01SWei Wang * Caller must hold rcu_read_lock() 136735732d01SWei Wang */ 136835732d01SWei Wang static struct rt6_exception * 136935732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 137035732d01SWei Wang const struct in6_addr *daddr, 137135732d01SWei Wang const struct in6_addr *saddr) 137235732d01SWei Wang { 137335732d01SWei Wang struct rt6_exception *rt6_ex; 137435732d01SWei Wang u32 hval; 137535732d01SWei Wang 137635732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 137735732d01SWei Wang 137835732d01SWei Wang if (!(*bucket) || !daddr) 137935732d01SWei Wang return NULL; 138035732d01SWei Wang 138135732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 138235732d01SWei Wang *bucket += hval; 138335732d01SWei Wang 138435732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 138535732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138635732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138735732d01SWei Wang 138835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138935732d01SWei Wang if (matched && saddr) 139035732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 139135732d01SWei Wang #endif 139235732d01SWei Wang if (matched) 139335732d01SWei Wang return rt6_ex; 139435732d01SWei Wang } 139535732d01SWei Wang return NULL; 139635732d01SWei Wang } 139735732d01SWei Wang 13988d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139935732d01SWei Wang { 1400d4ead6b3SDavid Ahern unsigned int mtu; 1401d4ead6b3SDavid Ahern 1402dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1403dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1404dcd1f572SDavid Ahern } else { 1405dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1406dcd1f572SDavid Ahern struct inet6_dev *idev; 1407dcd1f572SDavid Ahern 1408dcd1f572SDavid Ahern rcu_read_lock(); 1409dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1410dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1411dcd1f572SDavid Ahern rcu_read_unlock(); 1412dcd1f572SDavid Ahern } 1413dcd1f572SDavid Ahern 1414d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1415d4ead6b3SDavid Ahern 1416d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1417d4ead6b3SDavid Ahern } 1418d4ead6b3SDavid Ahern 141935732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14208d1c802bSDavid Ahern struct fib6_info *ort) 142135732d01SWei Wang { 14225e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 142335732d01SWei Wang struct rt6_exception_bucket *bucket; 142435732d01SWei Wang struct in6_addr *src_key = NULL; 142535732d01SWei Wang struct rt6_exception *rt6_ex; 142635732d01SWei Wang int err = 0; 142735732d01SWei Wang 142835732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142935732d01SWei Wang 143035732d01SWei Wang if (ort->exception_bucket_flushed) { 143135732d01SWei Wang err = -EINVAL; 143235732d01SWei Wang goto out; 143335732d01SWei Wang } 143435732d01SWei Wang 143535732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 143635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143735732d01SWei Wang if (!bucket) { 143835732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143935732d01SWei Wang GFP_ATOMIC); 144035732d01SWei Wang if (!bucket) { 144135732d01SWei Wang err = -ENOMEM; 144235732d01SWei Wang goto out; 144335732d01SWei Wang } 144435732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 144535732d01SWei Wang } 144635732d01SWei Wang 144735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144835732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144935732d01SWei Wang * and exception table is indexed by a hash of 145035732d01SWei Wang * both rt6i_dst and rt6i_src. 145135732d01SWei Wang * Otherwise, the exception table is indexed by 145235732d01SWei Wang * a hash of only rt6i_dst. 145335732d01SWei Wang */ 145493c2fb25SDavid Ahern if (ort->fib6_src.plen) 145535732d01SWei Wang src_key = &nrt->rt6i_src.addr; 145635732d01SWei Wang #endif 145760006a48SWei Wang 145860006a48SWei Wang /* Update rt6i_prefsrc as it could be changed 145960006a48SWei Wang * in rt6_remove_prefsrc() 146060006a48SWei Wang */ 146193c2fb25SDavid Ahern nrt->rt6i_prefsrc = ort->fib6_prefsrc; 1462f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1463f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1464f5bbe7eeSWei Wang * is less than ort's mtu value. 1465f5bbe7eeSWei Wang */ 1466d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1467f5bbe7eeSWei Wang err = -EINVAL; 1468f5bbe7eeSWei Wang goto out; 1469f5bbe7eeSWei Wang } 147060006a48SWei Wang 147135732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 147235732d01SWei Wang src_key); 147335732d01SWei Wang if (rt6_ex) 147435732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 147535732d01SWei Wang 147635732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 147735732d01SWei Wang if (!rt6_ex) { 147835732d01SWei Wang err = -ENOMEM; 147935732d01SWei Wang goto out; 148035732d01SWei Wang } 148135732d01SWei Wang rt6_ex->rt6i = nrt; 148235732d01SWei Wang rt6_ex->stamp = jiffies; 148335732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 148435732d01SWei Wang bucket->depth++; 148581eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 148635732d01SWei Wang 148735732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 148835732d01SWei Wang rt6_exception_remove_oldest(bucket); 148935732d01SWei Wang 149035732d01SWei Wang out: 149135732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 149235732d01SWei Wang 149335732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1494b886d5f2SPaolo Abeni if (!err) { 149593c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14967aef6859SDavid Ahern fib6_update_sernum(net, ort); 149793c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1498b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1499b886d5f2SPaolo Abeni } 150035732d01SWei Wang 150135732d01SWei Wang return err; 150235732d01SWei Wang } 150335732d01SWei Wang 15048d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 150535732d01SWei Wang { 150635732d01SWei Wang struct rt6_exception_bucket *bucket; 150735732d01SWei Wang struct rt6_exception *rt6_ex; 150835732d01SWei Wang struct hlist_node *tmp; 150935732d01SWei Wang int i; 151035732d01SWei Wang 151135732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 151235732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 151335732d01SWei Wang rt->exception_bucket_flushed = 1; 151435732d01SWei Wang 151535732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 151635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 151735732d01SWei Wang if (!bucket) 151835732d01SWei Wang goto out; 151935732d01SWei Wang 152035732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 152135732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 152235732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 152335732d01SWei Wang WARN_ON_ONCE(bucket->depth); 152435732d01SWei Wang bucket++; 152535732d01SWei Wang } 152635732d01SWei Wang 152735732d01SWei Wang out: 152835732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 152935732d01SWei Wang } 153035732d01SWei Wang 153135732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 153235732d01SWei Wang * Caller has to hold rcu_read_lock() 153335732d01SWei Wang */ 15348d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 153535732d01SWei Wang struct in6_addr *daddr, 153635732d01SWei Wang struct in6_addr *saddr) 153735732d01SWei Wang { 153835732d01SWei Wang struct rt6_exception_bucket *bucket; 153935732d01SWei Wang struct in6_addr *src_key = NULL; 154035732d01SWei Wang struct rt6_exception *rt6_ex; 154135732d01SWei Wang struct rt6_info *res = NULL; 154235732d01SWei Wang 154335732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 154435732d01SWei Wang 154535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 154635732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 154735732d01SWei Wang * and exception table is indexed by a hash of 154835732d01SWei Wang * both rt6i_dst and rt6i_src. 154935732d01SWei Wang * Otherwise, the exception table is indexed by 155035732d01SWei Wang * a hash of only rt6i_dst. 155135732d01SWei Wang */ 155293c2fb25SDavid Ahern if (rt->fib6_src.plen) 155335732d01SWei Wang src_key = saddr; 155435732d01SWei Wang #endif 155535732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 155635732d01SWei Wang 155735732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 155835732d01SWei Wang res = rt6_ex->rt6i; 155935732d01SWei Wang 156035732d01SWei Wang return res; 156135732d01SWei Wang } 156235732d01SWei Wang 156335732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 156423fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 156535732d01SWei Wang { 156635732d01SWei Wang struct rt6_exception_bucket *bucket; 156735732d01SWei Wang struct in6_addr *src_key = NULL; 156835732d01SWei Wang struct rt6_exception *rt6_ex; 15698a14e46fSDavid Ahern struct fib6_info *from; 157035732d01SWei Wang int err; 157135732d01SWei Wang 1572091311deSEric Dumazet from = rcu_dereference(rt->from); 157335732d01SWei Wang if (!from || 1574442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 157535732d01SWei Wang return -EINVAL; 157635732d01SWei Wang 157735732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 157835732d01SWei Wang return -ENOENT; 157935732d01SWei Wang 158035732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 158135732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 158235732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 158335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 158435732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 158535732d01SWei Wang * and exception table is indexed by a hash of 158635732d01SWei Wang * both rt6i_dst and rt6i_src. 158735732d01SWei Wang * Otherwise, the exception table is indexed by 158835732d01SWei Wang * a hash of only rt6i_dst. 158935732d01SWei Wang */ 159093c2fb25SDavid Ahern if (from->fib6_src.plen) 159135732d01SWei Wang src_key = &rt->rt6i_src.addr; 159235732d01SWei Wang #endif 159335732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 159435732d01SWei Wang &rt->rt6i_dst.addr, 159535732d01SWei Wang src_key); 159635732d01SWei Wang if (rt6_ex) { 159735732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 159835732d01SWei Wang err = 0; 159935732d01SWei Wang } else { 160035732d01SWei Wang err = -ENOENT; 160135732d01SWei Wang } 160235732d01SWei Wang 160335732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 160435732d01SWei Wang return err; 160535732d01SWei Wang } 160635732d01SWei Wang 160735732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 160835732d01SWei Wang * refresh its stamp 160935732d01SWei Wang */ 161035732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 161135732d01SWei Wang { 161235732d01SWei Wang struct rt6_exception_bucket *bucket; 16138d1c802bSDavid Ahern struct fib6_info *from = rt->from; 161435732d01SWei Wang struct in6_addr *src_key = NULL; 161535732d01SWei Wang struct rt6_exception *rt6_ex; 161635732d01SWei Wang 161735732d01SWei Wang if (!from || 1618442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 161935732d01SWei Wang return; 162035732d01SWei Wang 162135732d01SWei Wang rcu_read_lock(); 162235732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 162335732d01SWei Wang 162435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 162535732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 162635732d01SWei Wang * and exception table is indexed by a hash of 162735732d01SWei Wang * both rt6i_dst and rt6i_src. 162835732d01SWei Wang * Otherwise, the exception table is indexed by 162935732d01SWei Wang * a hash of only rt6i_dst. 163035732d01SWei Wang */ 163193c2fb25SDavid Ahern if (from->fib6_src.plen) 163235732d01SWei Wang src_key = &rt->rt6i_src.addr; 163335732d01SWei Wang #endif 163435732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 163535732d01SWei Wang &rt->rt6i_dst.addr, 163635732d01SWei Wang src_key); 163735732d01SWei Wang if (rt6_ex) 163835732d01SWei Wang rt6_ex->stamp = jiffies; 163935732d01SWei Wang 164035732d01SWei Wang rcu_read_unlock(); 164135732d01SWei Wang } 164235732d01SWei Wang 16438d1c802bSDavid Ahern static void rt6_exceptions_remove_prefsrc(struct fib6_info *rt) 164460006a48SWei Wang { 164560006a48SWei Wang struct rt6_exception_bucket *bucket; 164660006a48SWei Wang struct rt6_exception *rt6_ex; 164760006a48SWei Wang int i; 164860006a48SWei Wang 164960006a48SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 165060006a48SWei Wang lockdep_is_held(&rt6_exception_lock)); 165160006a48SWei Wang 165260006a48SWei Wang if (bucket) { 165360006a48SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 165460006a48SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 165560006a48SWei Wang rt6_ex->rt6i->rt6i_prefsrc.plen = 0; 165660006a48SWei Wang } 165760006a48SWei Wang bucket++; 165860006a48SWei Wang } 165960006a48SWei Wang } 166060006a48SWei Wang } 166160006a48SWei Wang 1662e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1663e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1664e9fa1495SStefano Brivio { 1665e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1666e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1667e9fa1495SStefano Brivio * reflect PMTU decreases. 1668e9fa1495SStefano Brivio * 1669e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1670e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1671e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1672e9fa1495SStefano Brivio * handle this. 1673e9fa1495SStefano Brivio */ 1674e9fa1495SStefano Brivio 1675e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1676e9fa1495SStefano Brivio return true; 1677e9fa1495SStefano Brivio 1678e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1679e9fa1495SStefano Brivio return true; 1680e9fa1495SStefano Brivio 1681e9fa1495SStefano Brivio return false; 1682e9fa1495SStefano Brivio } 1683e9fa1495SStefano Brivio 1684e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16858d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1686f5bbe7eeSWei Wang { 1687f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1688f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1689f5bbe7eeSWei Wang int i; 1690f5bbe7eeSWei Wang 1691f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1692f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1693f5bbe7eeSWei Wang 1694e9fa1495SStefano Brivio if (!bucket) 1695e9fa1495SStefano Brivio return; 1696e9fa1495SStefano Brivio 1697f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1698f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1699f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1700e9fa1495SStefano Brivio 1701e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1702d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1703f5bbe7eeSWei Wang * been updated. 1704f5bbe7eeSWei Wang */ 1705d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1706e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1707d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1708f5bbe7eeSWei Wang } 1709f5bbe7eeSWei Wang bucket++; 1710f5bbe7eeSWei Wang } 1711f5bbe7eeSWei Wang } 1712f5bbe7eeSWei Wang 1713b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1714b16cb459SWei Wang 17158d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1716b16cb459SWei Wang struct in6_addr *gateway) 1717b16cb459SWei Wang { 1718b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1719b16cb459SWei Wang struct rt6_exception *rt6_ex; 1720b16cb459SWei Wang struct hlist_node *tmp; 1721b16cb459SWei Wang int i; 1722b16cb459SWei Wang 1723b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1724b16cb459SWei Wang return; 1725b16cb459SWei Wang 1726b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1727b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1728b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1729b16cb459SWei Wang 1730b16cb459SWei Wang if (bucket) { 1731b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1732b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1733b16cb459SWei Wang &bucket->chain, hlist) { 1734b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1735b16cb459SWei Wang 1736b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1737b16cb459SWei Wang RTF_CACHE_GATEWAY && 1738b16cb459SWei Wang ipv6_addr_equal(gateway, 1739b16cb459SWei Wang &entry->rt6i_gateway)) { 1740b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1741b16cb459SWei Wang } 1742b16cb459SWei Wang } 1743b16cb459SWei Wang bucket++; 1744b16cb459SWei Wang } 1745b16cb459SWei Wang } 1746b16cb459SWei Wang 1747b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1748b16cb459SWei Wang } 1749b16cb459SWei Wang 1750c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1751c757faa8SWei Wang struct rt6_exception *rt6_ex, 1752c757faa8SWei Wang struct fib6_gc_args *gc_args, 1753c757faa8SWei Wang unsigned long now) 1754c757faa8SWei Wang { 1755c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1756c757faa8SWei Wang 17571859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17581859bac0SPaolo Abeni * even if others have still references to them, so that on next 17591859bac0SPaolo Abeni * dst_check() such references can be dropped. 17601859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17611859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17621859bac0SPaolo Abeni */ 176331afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 176431afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1765c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1766c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1767c757faa8SWei Wang return; 176831afeb42SWei Wang } 176931afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 177031afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 177131afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 177231afeb42SWei Wang return; 177331afeb42SWei Wang } 177431afeb42SWei Wang 177531afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1776c757faa8SWei Wang struct neighbour *neigh; 1777c757faa8SWei Wang __u8 neigh_flags = 0; 1778c757faa8SWei Wang 17791bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17801bfa26ffSEric Dumazet if (neigh) 1781c757faa8SWei Wang neigh_flags = neigh->flags; 17821bfa26ffSEric Dumazet 1783c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1784c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1785c757faa8SWei Wang rt); 1786c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1787c757faa8SWei Wang return; 1788c757faa8SWei Wang } 1789c757faa8SWei Wang } 179031afeb42SWei Wang 1791c757faa8SWei Wang gc_args->more++; 1792c757faa8SWei Wang } 1793c757faa8SWei Wang 17948d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1795c757faa8SWei Wang struct fib6_gc_args *gc_args, 1796c757faa8SWei Wang unsigned long now) 1797c757faa8SWei Wang { 1798c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1799c757faa8SWei Wang struct rt6_exception *rt6_ex; 1800c757faa8SWei Wang struct hlist_node *tmp; 1801c757faa8SWei Wang int i; 1802c757faa8SWei Wang 1803c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1804c757faa8SWei Wang return; 1805c757faa8SWei Wang 18061bfa26ffSEric Dumazet rcu_read_lock_bh(); 18071bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1808c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1809c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1810c757faa8SWei Wang 1811c757faa8SWei Wang if (bucket) { 1812c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1813c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1814c757faa8SWei Wang &bucket->chain, hlist) { 1815c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1816c757faa8SWei Wang gc_args, now); 1817c757faa8SWei Wang } 1818c757faa8SWei Wang bucket++; 1819c757faa8SWei Wang } 1820c757faa8SWei Wang } 18211bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 18221bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1823c757faa8SWei Wang } 1824c757faa8SWei Wang 18251d053da9SDavid Ahern /* must be called with rcu lock held */ 18261d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18271d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18281da177e4SLinus Torvalds { 1829367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18308d1c802bSDavid Ahern struct fib6_info *f6i; 18311da177e4SLinus Torvalds 18326454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1833367efcb9SMartin KaFai Lau saved_fn = fn; 18341da177e4SLinus Torvalds 1835ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1836ca254490SDavid Ahern oif = 0; 1837ca254490SDavid Ahern 1838a3c00e46SMartin KaFai Lau redo_rt6_select: 183923fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 184023fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1841a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1842a3c00e46SMartin KaFai Lau if (fn) 1843a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1844367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1845367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1846367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1847367efcb9SMartin KaFai Lau fn = saved_fn; 1848367efcb9SMartin KaFai Lau goto redo_rt6_select; 1849367efcb9SMartin KaFai Lau } 1850a3c00e46SMartin KaFai Lau } 1851a3c00e46SMartin KaFai Lau 1852d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1853d52d3997SMartin KaFai Lau 18541d053da9SDavid Ahern return f6i; 18551d053da9SDavid Ahern } 18561d053da9SDavid Ahern 18571d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18581d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18591d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18601d053da9SDavid Ahern { 18611d053da9SDavid Ahern struct fib6_info *f6i; 18621d053da9SDavid Ahern struct rt6_info *rt; 18631d053da9SDavid Ahern int strict = 0; 18641d053da9SDavid Ahern 18651d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18661d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18671d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18681d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18691d053da9SDavid Ahern 18701d053da9SDavid Ahern rcu_read_lock(); 18711d053da9SDavid Ahern 18721d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18731d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18741d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18751d053da9SDavid Ahern 187623fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1877421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 187866f5d6ceSWei Wang rcu_read_unlock(); 1879d3843fe5SWei Wang dst_hold(&rt->dst); 1880d3843fe5SWei Wang return rt; 1881d3843fe5SWei Wang } 188223fb93a4SDavid Ahern 188323fb93a4SDavid Ahern /*Search through exception table */ 188423fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 188523fb93a4SDavid Ahern if (rt) { 1886d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 18871da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1888d4ead6b3SDavid Ahern 188966f5d6ceSWei Wang rcu_read_unlock(); 1890d52d3997SMartin KaFai Lau return rt; 18913da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 189293c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18933da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18943da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18953da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18963da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18973da59bd9SMartin KaFai Lau */ 18983da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18993da59bd9SMartin KaFai Lau 190023fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1901d52d3997SMartin KaFai Lau 19024d85cd0cSDavid Ahern rcu_read_unlock(); 19033da59bd9SMartin KaFai Lau 19041cfb71eeSWei Wang if (uncached_rt) { 19051cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 19061cfb71eeSWei Wang * No need for another dst_hold() 19071cfb71eeSWei Wang */ 19088d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 190981eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 19101cfb71eeSWei Wang } else { 19113da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 19123da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 19131cfb71eeSWei Wang } 1914b811580dSDavid Ahern 19153da59bd9SMartin KaFai Lau return uncached_rt; 1916d52d3997SMartin KaFai Lau } else { 1917d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1918d52d3997SMartin KaFai Lau 1919d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1920d52d3997SMartin KaFai Lau 1921951f788aSEric Dumazet local_bh_disable(); 192223fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1923d52d3997SMartin KaFai Lau 192493531c67SDavid Ahern if (!pcpu_rt) 192523fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 192693531c67SDavid Ahern 1927951f788aSEric Dumazet local_bh_enable(); 1928951f788aSEric Dumazet rcu_read_unlock(); 1929d4bea421SDavid Ahern 1930d52d3997SMartin KaFai Lau return pcpu_rt; 1931d52d3997SMartin KaFai Lau } 1932c71099acSThomas Graf } 19339ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1934c71099acSThomas Graf 1935b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1936b75cc8f9SDavid Ahern struct fib6_table *table, 1937b75cc8f9SDavid Ahern struct flowi6 *fl6, 1938b75cc8f9SDavid Ahern const struct sk_buff *skb, 1939b75cc8f9SDavid Ahern int flags) 19404acad72dSPavel Emelyanov { 1941b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19424acad72dSPavel Emelyanov } 19434acad72dSPavel Emelyanov 1944d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 194572331bc0SShmulik Ladkani struct net_device *dev, 1946b75cc8f9SDavid Ahern struct flowi6 *fl6, 1947b75cc8f9SDavid Ahern const struct sk_buff *skb, 1948b75cc8f9SDavid Ahern int flags) 194972331bc0SShmulik Ladkani { 195072331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 195172331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 195272331bc0SShmulik Ladkani 1953b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 195472331bc0SShmulik Ladkani } 1955d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 195672331bc0SShmulik Ladkani 195723aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19585e5d6fedSRoopa Prabhu struct flow_keys *keys, 19595e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 196023aebdacSJakub Sitnicki { 196123aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 196223aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19635e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 196423aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 196523aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 196623aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1967cea67a2dSEric Dumazet struct icmp6hdr _icmph; 196823aebdacSJakub Sitnicki 196923aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 197023aebdacSJakub Sitnicki goto out; 197123aebdacSJakub Sitnicki 1972cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1973cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1974cea67a2dSEric Dumazet if (!icmph) 1975cea67a2dSEric Dumazet goto out; 1976cea67a2dSEric Dumazet 197723aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 197823aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 197923aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 198023aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 198123aebdacSJakub Sitnicki goto out; 198223aebdacSJakub Sitnicki 198323aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 198423aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 198523aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 198623aebdacSJakub Sitnicki if (!inner_iph) 198723aebdacSJakub Sitnicki goto out; 198823aebdacSJakub Sitnicki 198923aebdacSJakub Sitnicki key_iph = inner_iph; 19905e5d6fedSRoopa Prabhu _flkeys = NULL; 199123aebdacSJakub Sitnicki out: 19925e5d6fedSRoopa Prabhu if (_flkeys) { 19935e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19945e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19955e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19965e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19975e5d6fedSRoopa Prabhu } else { 199823aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 199923aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 2000fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 200123aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 200223aebdacSJakub Sitnicki } 20035e5d6fedSRoopa Prabhu } 200423aebdacSJakub Sitnicki 200523aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 2006b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 2007b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 200823aebdacSJakub Sitnicki { 200923aebdacSJakub Sitnicki struct flow_keys hash_keys; 20109a2a537aSDavid Ahern u32 mhash; 201123aebdacSJakub Sitnicki 2012bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 2013b4bac172SDavid Ahern case 0: 20146f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 20156f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 20169a2a537aSDavid Ahern if (skb) { 20175e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 20189a2a537aSDavid Ahern } else { 20199a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 20209a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2021fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 20229a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 202323aebdacSJakub Sitnicki } 2024b4bac172SDavid Ahern break; 2025b4bac172SDavid Ahern case 1: 2026b4bac172SDavid Ahern if (skb) { 2027b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2028b4bac172SDavid Ahern struct flow_keys keys; 2029b4bac172SDavid Ahern 2030b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2031b4bac172SDavid Ahern if (skb->l4_hash) 2032b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2033b4bac172SDavid Ahern 2034b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2035b4bac172SDavid Ahern 2036b4bac172SDavid Ahern if (!flkeys) { 2037b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2038b4bac172SDavid Ahern flkeys = &keys; 2039b4bac172SDavid Ahern } 2040b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2041b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2042b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2043b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2044b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2045b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2046b4bac172SDavid Ahern } else { 2047b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2048b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2049b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2050b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2051b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2052b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2053b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2054b4bac172SDavid Ahern } 2055b4bac172SDavid Ahern break; 2056b4bac172SDavid Ahern } 20579a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 205823aebdacSJakub Sitnicki 20599a2a537aSDavid Ahern return mhash >> 1; 206023aebdacSJakub Sitnicki } 206123aebdacSJakub Sitnicki 2062c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2063c71099acSThomas Graf { 2064b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2065c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2066adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2067904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20684c9483b2SDavid S. Miller struct flowi6 fl6 = { 2069e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20704c9483b2SDavid S. Miller .daddr = iph->daddr, 20714c9483b2SDavid S. Miller .saddr = iph->saddr, 20726502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20734c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20744c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2075c71099acSThomas Graf }; 20765e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2077adaa70bbSThomas Graf 2078904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 207946fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2080904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20815e5d6fedSRoopa Prabhu 20825e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20835e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20845e5d6fedSRoopa Prabhu 208523aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2086b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 208706e9d040SJiri Benc skb_dst_drop(skb); 2088b75cc8f9SDavid Ahern skb_dst_set(skb, 2089b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2090c71099acSThomas Graf } 2091c71099acSThomas Graf 2092b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2093b75cc8f9SDavid Ahern struct fib6_table *table, 2094b75cc8f9SDavid Ahern struct flowi6 *fl6, 2095b75cc8f9SDavid Ahern const struct sk_buff *skb, 2096b75cc8f9SDavid Ahern int flags) 2097c71099acSThomas Graf { 2098b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2099c71099acSThomas Graf } 2100c71099acSThomas Graf 21016f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 21026f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2103c71099acSThomas Graf { 2104d46a9d67SDavid Ahern bool any_src; 2105c71099acSThomas Graf 21064c1feac5SDavid Ahern if (rt6_need_strict(&fl6->daddr)) { 21074c1feac5SDavid Ahern struct dst_entry *dst; 21084c1feac5SDavid Ahern 21094c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2110ca254490SDavid Ahern if (dst) 2111ca254490SDavid Ahern return dst; 21124c1feac5SDavid Ahern } 2113ca254490SDavid Ahern 21141fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 21154dc27d1cSDavid McCullough 2116d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2117741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2118d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 211977d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2120c71099acSThomas Graf 2121d46a9d67SDavid Ahern if (!any_src) 2122adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 21230c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21240c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2125adaa70bbSThomas Graf 2126b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21271da177e4SLinus Torvalds } 21286f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21291da177e4SLinus Torvalds 21302774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 213114e50e57SDavid S. Miller { 21325c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21331dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 213414e50e57SDavid S. Miller struct dst_entry *new = NULL; 213514e50e57SDavid S. Miller 21361dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 213762cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 213814e50e57SDavid S. Miller if (rt) { 21390a1f5962SMartin KaFai Lau rt6_info_init(rt); 214081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21410a1f5962SMartin KaFai Lau 2142d8d1f30bSChangli Gao new = &rt->dst; 214314e50e57SDavid S. Miller new->__use = 1; 2144352e512cSHerbert Xu new->input = dst_discard; 2145ede2059dSEric W. Biederman new->output = dst_discard_out; 214614e50e57SDavid S. Miller 2147defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 214814e50e57SDavid S. Miller 21491dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21504e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21510a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 215214e50e57SDavid S. Miller 215314e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 215414e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 215514e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 215614e50e57SDavid S. Miller #endif 215714e50e57SDavid S. Miller } 215814e50e57SDavid S. Miller 215969ead7afSDavid S. Miller dst_release(dst_orig); 216069ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 216114e50e57SDavid S. Miller } 216214e50e57SDavid S. Miller 21631da177e4SLinus Torvalds /* 21641da177e4SLinus Torvalds * Destination cache support functions 21651da177e4SLinus Torvalds */ 21661da177e4SLinus Torvalds 21678d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21683da59bd9SMartin KaFai Lau { 216936143645SSteffen Klassert u32 rt_cookie = 0; 2170c5cff856SWei Wang 21718ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 217293531c67SDavid Ahern return false; 217393531c67SDavid Ahern 217493531c67SDavid Ahern if (fib6_check_expired(f6i)) 217593531c67SDavid Ahern return false; 217693531c67SDavid Ahern 217793531c67SDavid Ahern return true; 217893531c67SDavid Ahern } 217993531c67SDavid Ahern 2180a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2181a68886a6SDavid Ahern struct fib6_info *from, 2182a68886a6SDavid Ahern u32 cookie) 21833da59bd9SMartin KaFai Lau { 2184c5cff856SWei Wang u32 rt_cookie = 0; 2185c5cff856SWei Wang 2186a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 218793531c67SDavid Ahern rt_cookie != cookie) 21883da59bd9SMartin KaFai Lau return NULL; 21893da59bd9SMartin KaFai Lau 21903da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21913da59bd9SMartin KaFai Lau return NULL; 21923da59bd9SMartin KaFai Lau 21933da59bd9SMartin KaFai Lau return &rt->dst; 21943da59bd9SMartin KaFai Lau } 21953da59bd9SMartin KaFai Lau 2196a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2197a68886a6SDavid Ahern struct fib6_info *from, 2198a68886a6SDavid Ahern u32 cookie) 21993da59bd9SMartin KaFai Lau { 22005973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 22015973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2202a68886a6SDavid Ahern fib6_check(from, cookie)) 22033da59bd9SMartin KaFai Lau return &rt->dst; 22043da59bd9SMartin KaFai Lau else 22053da59bd9SMartin KaFai Lau return NULL; 22063da59bd9SMartin KaFai Lau } 22073da59bd9SMartin KaFai Lau 22081da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 22091da177e4SLinus Torvalds { 2210a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2211a68886a6SDavid Ahern struct fib6_info *from; 22121da177e4SLinus Torvalds struct rt6_info *rt; 22131da177e4SLinus Torvalds 2214a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2215a87b7dc9SDavid Ahern 2216a87b7dc9SDavid Ahern rcu_read_lock(); 22171da177e4SLinus Torvalds 22186f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 22196f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 22206f3118b5SNicolas Dichtel * into this function always. 22216f3118b5SNicolas Dichtel */ 2222e3bc10bdSHannes Frederic Sowa 2223a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22244b32b5adSMartin KaFai Lau 2225a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2226a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2227a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22283da59bd9SMartin KaFai Lau else 2229a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2230a87b7dc9SDavid Ahern 2231a87b7dc9SDavid Ahern rcu_read_unlock(); 2232a87b7dc9SDavid Ahern 2233a87b7dc9SDavid Ahern return dst_ret; 22341da177e4SLinus Torvalds } 22351da177e4SLinus Torvalds 22361da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22371da177e4SLinus Torvalds { 22381da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22391da177e4SLinus Torvalds 22401da177e4SLinus Torvalds if (rt) { 224154c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2242c3c14da0SDavid Ahern rcu_read_lock(); 224354c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 224493531c67SDavid Ahern rt6_remove_exception_rt(rt); 224554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22461da177e4SLinus Torvalds } 2247c3c14da0SDavid Ahern rcu_read_unlock(); 224854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 224954c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 225054c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 225154c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 225254c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 225354c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22541da177e4SLinus Torvalds } 22551da177e4SLinus Torvalds 22561da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22571da177e4SLinus Torvalds { 22581da177e4SLinus Torvalds struct rt6_info *rt; 22591da177e4SLinus Torvalds 22603ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22611da177e4SLinus Torvalds 2262adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22631da177e4SLinus Torvalds if (rt) { 22648a14e46fSDavid Ahern rcu_read_lock(); 22651eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2266ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 226793531c67SDavid Ahern rt6_remove_exception_rt(rt); 2268c5cff856SWei Wang } else { 2269a68886a6SDavid Ahern struct fib6_info *from; 2270c5cff856SWei Wang struct fib6_node *fn; 2271c5cff856SWei Wang 2272a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2273a68886a6SDavid Ahern if (from) { 2274a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2275c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2276c5cff856SWei Wang fn->fn_sernum = -1; 2277a68886a6SDavid Ahern } 22781da177e4SLinus Torvalds } 22791da177e4SLinus Torvalds rcu_read_unlock(); 22801da177e4SLinus Torvalds } 22811da177e4SLinus Torvalds } 22821da177e4SLinus Torvalds 22836a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22846a3e030fSDavid Ahern { 2285a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2286a68886a6SDavid Ahern struct fib6_info *from; 2287a68886a6SDavid Ahern 2288a68886a6SDavid Ahern rcu_read_lock(); 2289a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2290a68886a6SDavid Ahern if (from) 2291a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2292a68886a6SDavid Ahern rcu_read_unlock(); 2293a68886a6SDavid Ahern } 22946a3e030fSDavid Ahern 22956a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22966a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22976700c270SDavid S. Miller } 22981da177e4SLinus Torvalds 229945e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 230045e4fd26SMartin KaFai Lau { 230145e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 230245e4fd26SMartin KaFai Lau 2303d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 230445e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 230545e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 230645e4fd26SMartin KaFai Lau } 230745e4fd26SMartin KaFai Lau 23080d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 23090d3f6d29SMartin KaFai Lau { 2310a68886a6SDavid Ahern bool from_set; 2311a68886a6SDavid Ahern 2312a68886a6SDavid Ahern rcu_read_lock(); 2313a68886a6SDavid Ahern from_set = !!rcu_dereference(rt->from); 2314a68886a6SDavid Ahern rcu_read_unlock(); 2315a68886a6SDavid Ahern 23160d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 2317a68886a6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || from_set); 23180d3f6d29SMartin KaFai Lau } 23190d3f6d29SMartin KaFai Lau 232045e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 232145e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 23221da177e4SLinus Torvalds { 23230dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23241da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23251da177e4SLinus Torvalds 232619bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 232719bda36cSXin Long return; 232819bda36cSXin Long 232945e4fd26SMartin KaFai Lau if (iph) { 233045e4fd26SMartin KaFai Lau daddr = &iph->daddr; 233145e4fd26SMartin KaFai Lau saddr = &iph->saddr; 233245e4fd26SMartin KaFai Lau } else if (sk) { 233345e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 233445e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 233545e4fd26SMartin KaFai Lau } else { 23360dec879fSJulian Anastasov daddr = NULL; 23370dec879fSJulian Anastasov saddr = NULL; 23381da177e4SLinus Torvalds } 23390dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23400dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23410dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23420dec879fSJulian Anastasov return; 23430dec879fSJulian Anastasov 23440dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23450dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23462b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23472b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23482b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23490dec879fSJulian Anastasov } else if (daddr) { 2350a68886a6SDavid Ahern struct fib6_info *from; 23510dec879fSJulian Anastasov struct rt6_info *nrt6; 23520dec879fSJulian Anastasov 23534d85cd0cSDavid Ahern rcu_read_lock(); 2354a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2355a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 235645e4fd26SMartin KaFai Lau if (nrt6) { 235745e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2358a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23592b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 236045e4fd26SMartin KaFai Lau } 2361a68886a6SDavid Ahern rcu_read_unlock(); 236245e4fd26SMartin KaFai Lau } 236345e4fd26SMartin KaFai Lau } 236445e4fd26SMartin KaFai Lau 236545e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 236645e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 236745e4fd26SMartin KaFai Lau { 236845e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23691da177e4SLinus Torvalds } 23701da177e4SLinus Torvalds 237142ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2372e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 237381aded24SDavid S. Miller { 237481aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 237581aded24SDavid S. Miller struct dst_entry *dst; 237681aded24SDavid S. Miller struct flowi6 fl6; 237781aded24SDavid S. Miller 237881aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 237981aded24SDavid S. Miller fl6.flowi6_oif = oif; 23801b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 238181aded24SDavid S. Miller fl6.daddr = iph->daddr; 238281aded24SDavid S. Miller fl6.saddr = iph->saddr; 23836502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2384e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 238581aded24SDavid S. Miller 238681aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 238781aded24SDavid S. Miller if (!dst->error) 238845e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 238981aded24SDavid S. Miller dst_release(dst); 239081aded24SDavid S. Miller } 239181aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 239281aded24SDavid S. Miller 239381aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 239481aded24SDavid S. Miller { 239533c162a9SMartin KaFai Lau struct dst_entry *dst; 239633c162a9SMartin KaFai Lau 239781aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2398e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 239933c162a9SMartin KaFai Lau 240033c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 240133c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 240233c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 240333c162a9SMartin KaFai Lau return; 240433c162a9SMartin KaFai Lau 240533c162a9SMartin KaFai Lau bh_lock_sock(sk); 240633c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 240733c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 240833c162a9SMartin KaFai Lau bh_unlock_sock(sk); 240981aded24SDavid S. Miller } 241081aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 241181aded24SDavid S. Miller 24127d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 24137d6850f7SAlexey Kodanev const struct flowi6 *fl6) 24147d6850f7SAlexey Kodanev { 24157d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24167d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 24177d6850f7SAlexey Kodanev #endif 24187d6850f7SAlexey Kodanev 24197d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 24207d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 24217d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 24227d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24237d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24247d6850f7SAlexey Kodanev &np->saddr : 24257d6850f7SAlexey Kodanev #endif 24267d6850f7SAlexey Kodanev NULL); 24277d6850f7SAlexey Kodanev } 24287d6850f7SAlexey Kodanev 2429b55b76b2SDuan Jiong /* Handle redirects */ 2430b55b76b2SDuan Jiong struct ip6rd_flowi { 2431b55b76b2SDuan Jiong struct flowi6 fl6; 2432b55b76b2SDuan Jiong struct in6_addr gateway; 2433b55b76b2SDuan Jiong }; 2434b55b76b2SDuan Jiong 2435b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2436b55b76b2SDuan Jiong struct fib6_table *table, 2437b55b76b2SDuan Jiong struct flowi6 *fl6, 2438b75cc8f9SDavid Ahern const struct sk_buff *skb, 2439b55b76b2SDuan Jiong int flags) 2440b55b76b2SDuan Jiong { 2441b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 244223fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24438d1c802bSDavid Ahern struct fib6_info *rt; 2444b55b76b2SDuan Jiong struct fib6_node *fn; 2445b55b76b2SDuan Jiong 2446b55b76b2SDuan Jiong /* Get the "current" route for this destination and 244767c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2448b55b76b2SDuan Jiong * 2449b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2450b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2451b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2452b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2453b55b76b2SDuan Jiong * routes. 2454b55b76b2SDuan Jiong */ 2455b55b76b2SDuan Jiong 245666f5d6ceSWei Wang rcu_read_lock(); 24576454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2458b55b76b2SDuan Jiong restart: 245966f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24605e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 24618067bb8cSIdo Schimmel continue; 246214895687SDavid Ahern if (fib6_check_expired(rt)) 2463b55b76b2SDuan Jiong continue; 246493c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2465b55b76b2SDuan Jiong break; 246693c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2467b55b76b2SDuan Jiong continue; 24685e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2469b55b76b2SDuan Jiong continue; 24702b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24712b760fcfSWei Wang * in the case of an ip redirect. 24722b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24732b760fcfSWei Wang * is different. 24742b760fcfSWei Wang */ 24755e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24762b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24772b760fcfSWei Wang &fl6->daddr, 24782b760fcfSWei Wang &fl6->saddr); 24792b760fcfSWei Wang if (rt_cache && 24802b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24812b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 248223fb93a4SDavid Ahern ret = rt_cache; 24832b760fcfSWei Wang break; 24842b760fcfSWei Wang } 2485b55b76b2SDuan Jiong continue; 24862b760fcfSWei Wang } 2487b55b76b2SDuan Jiong break; 2488b55b76b2SDuan Jiong } 2489b55b76b2SDuan Jiong 2490b55b76b2SDuan Jiong if (!rt) 2491421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 249293c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 249323fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2494b0a1ba59SMartin KaFai Lau goto out; 2495b0a1ba59SMartin KaFai Lau } 2496b0a1ba59SMartin KaFai Lau 2497421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2498a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2499a3c00e46SMartin KaFai Lau if (fn) 2500a3c00e46SMartin KaFai Lau goto restart; 2501b55b76b2SDuan Jiong } 2502a3c00e46SMartin KaFai Lau 2503b0a1ba59SMartin KaFai Lau out: 250423fb93a4SDavid Ahern if (ret) 2505e873e4b9SWei Wang ip6_hold_safe(net, &ret, true); 250623fb93a4SDavid Ahern else 250723fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2508b55b76b2SDuan Jiong 250966f5d6ceSWei Wang rcu_read_unlock(); 2510b55b76b2SDuan Jiong 2511b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 251223fb93a4SDavid Ahern return ret; 2513b55b76b2SDuan Jiong }; 2514b55b76b2SDuan Jiong 2515b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2516b55b76b2SDuan Jiong const struct flowi6 *fl6, 2517b75cc8f9SDavid Ahern const struct sk_buff *skb, 2518b55b76b2SDuan Jiong const struct in6_addr *gateway) 2519b55b76b2SDuan Jiong { 2520b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2521b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2522b55b76b2SDuan Jiong 2523b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2524b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2525b55b76b2SDuan Jiong 2526b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2527b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2528b55b76b2SDuan Jiong } 2529b55b76b2SDuan Jiong 2530e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2531e2d118a1SLorenzo Colitti kuid_t uid) 25323a5ad2eeSDavid S. Miller { 25333a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25343a5ad2eeSDavid S. Miller struct dst_entry *dst; 25353a5ad2eeSDavid S. Miller struct flowi6 fl6; 25363a5ad2eeSDavid S. Miller 25373a5ad2eeSDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 2538e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 25393a5ad2eeSDavid S. Miller fl6.flowi6_oif = oif; 25403a5ad2eeSDavid S. Miller fl6.flowi6_mark = mark; 25413a5ad2eeSDavid S. Miller fl6.daddr = iph->daddr; 25423a5ad2eeSDavid S. Miller fl6.saddr = iph->saddr; 25436502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2544e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 25453a5ad2eeSDavid S. Miller 2546b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25476700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25483a5ad2eeSDavid S. Miller dst_release(dst); 25493a5ad2eeSDavid S. Miller } 25503a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25513a5ad2eeSDavid S. Miller 2552c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2553c92a59ecSDuan Jiong u32 mark) 2554c92a59ecSDuan Jiong { 2555c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2556c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2557c92a59ecSDuan Jiong struct dst_entry *dst; 2558c92a59ecSDuan Jiong struct flowi6 fl6; 2559c92a59ecSDuan Jiong 2560c92a59ecSDuan Jiong memset(&fl6, 0, sizeof(fl6)); 2561e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 2562c92a59ecSDuan Jiong fl6.flowi6_oif = oif; 2563c92a59ecSDuan Jiong fl6.flowi6_mark = mark; 2564c92a59ecSDuan Jiong fl6.daddr = msg->dest; 2565c92a59ecSDuan Jiong fl6.saddr = iph->daddr; 2566e2d118a1SLorenzo Colitti fl6.flowi6_uid = sock_net_uid(net, NULL); 2567c92a59ecSDuan Jiong 2568b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2569c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2570c92a59ecSDuan Jiong dst_release(dst); 2571c92a59ecSDuan Jiong } 2572c92a59ecSDuan Jiong 25733a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25743a5ad2eeSDavid S. Miller { 2575e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2576e2d118a1SLorenzo Colitti sk->sk_uid); 25773a5ad2eeSDavid S. Miller } 25783a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25793a5ad2eeSDavid S. Miller 25800dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25811da177e4SLinus Torvalds { 25820dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25830dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25840dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25850dbaee3bSDavid S. Miller 25861da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25871da177e4SLinus Torvalds 25885578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25895578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25901da177e4SLinus Torvalds 25911da177e4SLinus Torvalds /* 25921da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25931da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25941da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25951da177e4SLinus Torvalds * rely only on pmtu discovery" 25961da177e4SLinus Torvalds */ 25971da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25981da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25991da177e4SLinus Torvalds return mtu; 26001da177e4SLinus Torvalds } 26011da177e4SLinus Torvalds 2602ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2603d33e4553SDavid S. Miller { 2604d33e4553SDavid S. Miller struct inet6_dev *idev; 2605d4ead6b3SDavid Ahern unsigned int mtu; 2606618f9bc7SSteffen Klassert 26074b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 26084b32b5adSMartin KaFai Lau if (mtu) 26094b32b5adSMartin KaFai Lau goto out; 26104b32b5adSMartin KaFai Lau 2611618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2612d33e4553SDavid S. Miller 2613d33e4553SDavid S. Miller rcu_read_lock(); 2614d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2615d33e4553SDavid S. Miller if (idev) 2616d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2617d33e4553SDavid S. Miller rcu_read_unlock(); 2618d33e4553SDavid S. Miller 261930f78d8eSEric Dumazet out: 262014972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 262114972cbdSRoopa Prabhu 262214972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2623d33e4553SDavid S. Miller } 2624d33e4553SDavid S. Miller 2625901731b8SDavid Ahern /* MTU selection: 2626901731b8SDavid Ahern * 1. mtu on route is locked - use it 2627901731b8SDavid Ahern * 2. mtu from nexthop exception 2628901731b8SDavid Ahern * 3. mtu from egress device 2629901731b8SDavid Ahern * 2630901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2631901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2632901731b8SDavid Ahern */ 2633901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2634901731b8SDavid Ahern struct in6_addr *saddr) 2635901731b8SDavid Ahern { 2636901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2637901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2638901731b8SDavid Ahern struct in6_addr *src_key; 2639901731b8SDavid Ahern struct inet6_dev *idev; 2640901731b8SDavid Ahern u32 mtu = 0; 2641901731b8SDavid Ahern 2642901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2643901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2644901731b8SDavid Ahern if (mtu) 2645901731b8SDavid Ahern goto out; 2646901731b8SDavid Ahern } 2647901731b8SDavid Ahern 2648901731b8SDavid Ahern src_key = NULL; 2649901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2650901731b8SDavid Ahern if (f6i->fib6_src.plen) 2651901731b8SDavid Ahern src_key = saddr; 2652901731b8SDavid Ahern #endif 2653901731b8SDavid Ahern 2654901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2655901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2656901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2657901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2658901731b8SDavid Ahern 2659901731b8SDavid Ahern if (likely(!mtu)) { 2660901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2661901731b8SDavid Ahern 2662901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2663901731b8SDavid Ahern idev = __in6_dev_get(dev); 2664901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2665901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2666901731b8SDavid Ahern } 2667901731b8SDavid Ahern 2668901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2669901731b8SDavid Ahern out: 2670901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2671901731b8SDavid Ahern } 2672901731b8SDavid Ahern 26733b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 267487a11578SDavid S. Miller struct flowi6 *fl6) 26751da177e4SLinus Torvalds { 267687a11578SDavid S. Miller struct dst_entry *dst; 26771da177e4SLinus Torvalds struct rt6_info *rt; 26781da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2679c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26801da177e4SLinus Torvalds 268138308473SDavid S. Miller if (unlikely(!idev)) 2682122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26831da177e4SLinus Torvalds 2684ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 268538308473SDavid S. Miller if (unlikely(!rt)) { 26861da177e4SLinus Torvalds in6_dev_put(idev); 268787a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26881da177e4SLinus Torvalds goto out; 26891da177e4SLinus Torvalds } 26901da177e4SLinus Torvalds 26918e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2692588753f1SBrendan McGrath rt->dst.input = ip6_input; 26938e2ec639SYan, Zheng rt->dst.output = ip6_output; 2694550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 269587a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26968e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26978e2ec639SYan, Zheng rt->rt6i_idev = idev; 269814edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26991da177e4SLinus Torvalds 27004c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2701587fea74SWei Wang * do proper release of the net_device 2702587fea74SWei Wang */ 2703587fea74SWei Wang rt6_uncached_list_add(rt); 270481eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 27051da177e4SLinus Torvalds 270687a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 270787a11578SDavid S. Miller 27081da177e4SLinus Torvalds out: 270987a11578SDavid S. Miller return dst; 27101da177e4SLinus Torvalds } 27111da177e4SLinus Torvalds 2712569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 27131da177e4SLinus Torvalds { 271486393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 27157019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 27167019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 27177019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 27187019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 27197019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2720fc66f95cSEric Dumazet int entries; 27211da177e4SLinus Torvalds 2722fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 272349a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2724fc66f95cSEric Dumazet entries <= rt_max_size) 27251da177e4SLinus Torvalds goto out; 27261da177e4SLinus Torvalds 27276891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 272814956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2729fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2730fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27317019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27321da177e4SLinus Torvalds out: 27337019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2734fc66f95cSEric Dumazet return entries > rt_max_size; 27351da177e4SLinus Torvalds } 27361da177e4SLinus Torvalds 27378d1c802bSDavid Ahern static int ip6_convert_metrics(struct net *net, struct fib6_info *rt, 2738d4ead6b3SDavid Ahern struct fib6_config *cfg) 2739e715b6d3SFlorian Westphal { 2740263243d6SEric Dumazet struct dst_metrics *p; 2741e715b6d3SFlorian Westphal 274263159f29SIan Morris if (!cfg->fc_mx) 2743e715b6d3SFlorian Westphal return 0; 2744e715b6d3SFlorian Westphal 2745263243d6SEric Dumazet p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL); 2746263243d6SEric Dumazet if (unlikely(!p)) 2747e715b6d3SFlorian Westphal return -ENOMEM; 2748e715b6d3SFlorian Westphal 2749263243d6SEric Dumazet refcount_set(&p->refcnt, 1); 2750263243d6SEric Dumazet rt->fib6_metrics = p; 2751ea697639SDaniel Borkmann 2752263243d6SEric Dumazet return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics); 2753e715b6d3SFlorian Westphal } 27541da177e4SLinus Torvalds 27558c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27568c14586fSDavid Ahern struct fib6_config *cfg, 2757f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2758f4797b33SDavid Ahern u32 tbid, int flags) 27598c14586fSDavid Ahern { 27608c14586fSDavid Ahern struct flowi6 fl6 = { 27618c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27628c14586fSDavid Ahern .daddr = *gw_addr, 27638c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27648c14586fSDavid Ahern }; 27658c14586fSDavid Ahern struct fib6_table *table; 27668c14586fSDavid Ahern struct rt6_info *rt; 27678c14586fSDavid Ahern 2768f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27698c14586fSDavid Ahern if (!table) 27708c14586fSDavid Ahern return NULL; 27718c14586fSDavid Ahern 27728c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27738c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27748c14586fSDavid Ahern 2775f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2776b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27778c14586fSDavid Ahern 27788c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27798c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27808c14586fSDavid Ahern ip6_rt_put(rt); 27818c14586fSDavid Ahern rt = NULL; 27828c14586fSDavid Ahern } 27838c14586fSDavid Ahern 27848c14586fSDavid Ahern return rt; 27858c14586fSDavid Ahern } 27868c14586fSDavid Ahern 2787fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2788fc1e64e1SDavid Ahern struct fib6_config *cfg, 27899fbb704cSDavid Ahern const struct net_device *dev, 2790fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2791fc1e64e1SDavid Ahern { 279244750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2793fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2794fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2795fc1e64e1SDavid Ahern struct rt6_info *grt; 2796fc1e64e1SDavid Ahern int err; 2797fc1e64e1SDavid Ahern 2798fc1e64e1SDavid Ahern err = 0; 2799fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2800fc1e64e1SDavid Ahern if (grt) { 280158e354c0SDavid Ahern if (!grt->dst.error && 280258e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 280344750f84SDavid Ahern NL_SET_ERR_MSG(extack, 280444750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2805fc1e64e1SDavid Ahern err = -EINVAL; 2806fc1e64e1SDavid Ahern } 2807fc1e64e1SDavid Ahern 2808fc1e64e1SDavid Ahern ip6_rt_put(grt); 2809fc1e64e1SDavid Ahern } 2810fc1e64e1SDavid Ahern 2811fc1e64e1SDavid Ahern return err; 2812fc1e64e1SDavid Ahern } 2813fc1e64e1SDavid Ahern 28141edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 28151edce99fSDavid Ahern struct fib6_config *cfg, 28161edce99fSDavid Ahern struct net_device **_dev, 28171edce99fSDavid Ahern struct inet6_dev **idev) 28181edce99fSDavid Ahern { 28191edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28201edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 28211edce99fSDavid Ahern struct rt6_info *grt = NULL; 28221edce99fSDavid Ahern int err = -EHOSTUNREACH; 28231edce99fSDavid Ahern 28241edce99fSDavid Ahern if (cfg->fc_table) { 2825f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2826f4797b33SDavid Ahern 2827f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2828f4797b33SDavid Ahern cfg->fc_table, flags); 28291edce99fSDavid Ahern if (grt) { 28301edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28311edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28321edce99fSDavid Ahern ip6_rt_put(grt); 28331edce99fSDavid Ahern grt = NULL; 28341edce99fSDavid Ahern } 28351edce99fSDavid Ahern } 28361edce99fSDavid Ahern } 28371edce99fSDavid Ahern 28381edce99fSDavid Ahern if (!grt) 2839b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28401edce99fSDavid Ahern 28411edce99fSDavid Ahern if (!grt) 28421edce99fSDavid Ahern goto out; 28431edce99fSDavid Ahern 28441edce99fSDavid Ahern if (dev) { 28451edce99fSDavid Ahern if (dev != grt->dst.dev) { 28461edce99fSDavid Ahern ip6_rt_put(grt); 28471edce99fSDavid Ahern goto out; 28481edce99fSDavid Ahern } 28491edce99fSDavid Ahern } else { 28501edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28511edce99fSDavid Ahern *idev = grt->rt6i_idev; 28521edce99fSDavid Ahern dev_hold(dev); 28531edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28541edce99fSDavid Ahern } 28551edce99fSDavid Ahern 28561edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28571edce99fSDavid Ahern err = 0; 28581edce99fSDavid Ahern 28591edce99fSDavid Ahern ip6_rt_put(grt); 28601edce99fSDavid Ahern 28611edce99fSDavid Ahern out: 28621edce99fSDavid Ahern return err; 28631edce99fSDavid Ahern } 28641edce99fSDavid Ahern 28659fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28669fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28679fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28689fbb704cSDavid Ahern { 28699fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28709fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2871232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28729fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2873232378e8SDavid Ahern bool need_addr_check = !dev; 28749fbb704cSDavid Ahern int err = -EINVAL; 28759fbb704cSDavid Ahern 28769fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28779fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28789fbb704cSDavid Ahern * will return already-added prefix route via interface that 28799fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28809fbb704cSDavid Ahern */ 2881232378e8SDavid Ahern if (dev && 2882232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2883232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28849fbb704cSDavid Ahern goto out; 28859fbb704cSDavid Ahern } 28869fbb704cSDavid Ahern 28879fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28889fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28899fbb704cSDavid Ahern * addresses as nexthop address. 28909fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28919fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28929fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28939fbb704cSDavid Ahern * some exceptions. --ANK 28949fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28959fbb704cSDavid Ahern * addressing 28969fbb704cSDavid Ahern */ 28979fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28989fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28999fbb704cSDavid Ahern goto out; 29009fbb704cSDavid Ahern } 29019fbb704cSDavid Ahern 29029fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 29039fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 29049fbb704cSDavid Ahern else 29059fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 29069fbb704cSDavid Ahern 29079fbb704cSDavid Ahern if (err) 29089fbb704cSDavid Ahern goto out; 29099fbb704cSDavid Ahern } 29109fbb704cSDavid Ahern 29119fbb704cSDavid Ahern /* reload in case device was changed */ 29129fbb704cSDavid Ahern dev = *_dev; 29139fbb704cSDavid Ahern 29149fbb704cSDavid Ahern err = -EINVAL; 29159fbb704cSDavid Ahern if (!dev) { 29169fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 29179fbb704cSDavid Ahern goto out; 29189fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 29199fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 29209fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 29219fbb704cSDavid Ahern goto out; 29229fbb704cSDavid Ahern } 2923232378e8SDavid Ahern 2924232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2925232378e8SDavid Ahern * egress device has been resolved. 2926232378e8SDavid Ahern */ 2927232378e8SDavid Ahern if (need_addr_check && 2928232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2929232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2930232378e8SDavid Ahern goto out; 2931232378e8SDavid Ahern } 2932232378e8SDavid Ahern 29339fbb704cSDavid Ahern err = 0; 29349fbb704cSDavid Ahern out: 29359fbb704cSDavid Ahern return err; 29369fbb704cSDavid Ahern } 29379fbb704cSDavid Ahern 29388d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2939acb54e3cSDavid Ahern gfp_t gfp_flags, 2940333c4301SDavid Ahern struct netlink_ext_ack *extack) 29411da177e4SLinus Torvalds { 29425578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 29438d1c802bSDavid Ahern struct fib6_info *rt = NULL; 29441da177e4SLinus Torvalds struct net_device *dev = NULL; 29451da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2946c71099acSThomas Graf struct fib6_table *table; 29471da177e4SLinus Torvalds int addr_type; 29488c5b83f0SRoopa Prabhu int err = -EINVAL; 29491da177e4SLinus Torvalds 2950557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2951d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2952d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2953557c44beSDavid Ahern goto out; 2954d5d531cbSDavid Ahern } 2955557c44beSDavid Ahern 29562ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 29572ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29582ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 29592ea2352eSWei Wang goto out; 29602ea2352eSWei Wang } 29612ea2352eSWei Wang 2962e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2963e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2964e8478e80SDavid Ahern goto out; 2965e8478e80SDavid Ahern } 2966e8478e80SDavid Ahern 2967d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2968d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 29698c5b83f0SRoopa Prabhu goto out; 2970d5d531cbSDavid Ahern } 2971d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2972d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2973d5d531cbSDavid Ahern goto out; 2974d5d531cbSDavid Ahern } 29751da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2976d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2977d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2978d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 29798c5b83f0SRoopa Prabhu goto out; 2980d5d531cbSDavid Ahern } 29811da177e4SLinus Torvalds #endif 298286872cb5SThomas Graf if (cfg->fc_ifindex) { 29831da177e4SLinus Torvalds err = -ENODEV; 29845578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 29851da177e4SLinus Torvalds if (!dev) 29861da177e4SLinus Torvalds goto out; 29871da177e4SLinus Torvalds idev = in6_dev_get(dev); 29881da177e4SLinus Torvalds if (!idev) 29891da177e4SLinus Torvalds goto out; 29901da177e4SLinus Torvalds } 29911da177e4SLinus Torvalds 299286872cb5SThomas Graf if (cfg->fc_metric == 0) 299386872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 29941da177e4SLinus Torvalds 2995fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2996fc1e64e1SDavid Ahern if (!dev) { 2997fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2998fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2999fc1e64e1SDavid Ahern err = -ENODEV; 3000fc1e64e1SDavid Ahern goto out; 3001fc1e64e1SDavid Ahern } 3002fc1e64e1SDavid Ahern 3003fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 3004fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3005fc1e64e1SDavid Ahern err = -ENETDOWN; 3006fc1e64e1SDavid Ahern goto out; 3007fc1e64e1SDavid Ahern } 3008fc1e64e1SDavid Ahern } 3009fc1e64e1SDavid Ahern 3010c71099acSThomas Graf err = -ENOBUFS; 301138308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3012d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3013d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 301438308473SDavid S. Miller if (!table) { 3015f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3016d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3017d71314b4SMatti Vaittinen } 3018d71314b4SMatti Vaittinen } else { 3019d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3020d71314b4SMatti Vaittinen } 302138308473SDavid S. Miller 302238308473SDavid S. Miller if (!table) 3023c71099acSThomas Graf goto out; 3024c71099acSThomas Graf 30251da177e4SLinus Torvalds err = -ENOMEM; 302693531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 302793531c67SDavid Ahern if (!rt) 30281da177e4SLinus Torvalds goto out; 302993531c67SDavid Ahern 303093531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 303193531c67SDavid Ahern rt->dst_nocount = true; 30321da177e4SLinus Torvalds 3033d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, cfg); 3034d4ead6b3SDavid Ahern if (err < 0) 3035d4ead6b3SDavid Ahern goto out; 30361da177e4SLinus Torvalds 30371716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 303814895687SDavid Ahern fib6_set_expires(rt, jiffies + 30391716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30401716a961SGao feng else 304114895687SDavid Ahern fib6_clean_expires(rt); 30421da177e4SLinus Torvalds 304386872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 304486872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 304593c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 304686872cb5SThomas Graf 304786872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 30481da177e4SLinus Torvalds 304919e42e45SRoopa Prabhu if (cfg->fc_encap) { 305019e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 305119e42e45SRoopa Prabhu 305230357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 3053127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 30549ae28727SDavid Ahern &lwtstate, extack); 305519e42e45SRoopa Prabhu if (err) 305619e42e45SRoopa Prabhu goto out; 30575e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 305825368623STom Herbert } 305919e42e45SRoopa Prabhu 306093c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 306193c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 306293c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 30633b6761d1SDavid Ahern rt->dst_host = true; 30641da177e4SLinus Torvalds 30651da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 306693c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 306793c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 30681da177e4SLinus Torvalds #endif 30691da177e4SLinus Torvalds 307093c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 30715e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 30721da177e4SLinus Torvalds 3073e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 30741da177e4SLinus Torvalds 30751da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 30761da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 30771da177e4SLinus Torvalds */ 307886872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 307938308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 308038308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 308138308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 30821da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 30835578689aSDaniel Lezcano if (dev != net->loopback_dev) { 30841da177e4SLinus Torvalds if (dev) { 30851da177e4SLinus Torvalds dev_put(dev); 30861da177e4SLinus Torvalds in6_dev_put(idev); 30871da177e4SLinus Torvalds } 30885578689aSDaniel Lezcano dev = net->loopback_dev; 30891da177e4SLinus Torvalds dev_hold(dev); 30901da177e4SLinus Torvalds idev = in6_dev_get(dev); 30911da177e4SLinus Torvalds if (!idev) { 30921da177e4SLinus Torvalds err = -ENODEV; 30931da177e4SLinus Torvalds goto out; 30941da177e4SLinus Torvalds } 30951da177e4SLinus Torvalds } 309693c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 30971da177e4SLinus Torvalds goto install_route; 30981da177e4SLinus Torvalds } 30991da177e4SLinus Torvalds 310086872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 31019fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 31021da177e4SLinus Torvalds if (err) 31031da177e4SLinus Torvalds goto out; 31049fbb704cSDavid Ahern 310593531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 31061da177e4SLinus Torvalds } 31071da177e4SLinus Torvalds 31081da177e4SLinus Torvalds err = -ENODEV; 310938308473SDavid S. Miller if (!dev) 31101da177e4SLinus Torvalds goto out; 31111da177e4SLinus Torvalds 3112428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 3113428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 3114428604fbSLorenzo Bianconi err = -EACCES; 3115428604fbSLorenzo Bianconi goto out; 3116428604fbSLorenzo Bianconi } 3117428604fbSLorenzo Bianconi 3118955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3119955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3120955ec4cbSDavid Ahern err = -ENETDOWN; 3121955ec4cbSDavid Ahern goto out; 3122955ec4cbSDavid Ahern } 3123955ec4cbSDavid Ahern 3124c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3125c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3126d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3127c3968a85SDaniel Walter err = -EINVAL; 3128c3968a85SDaniel Walter goto out; 3129c3968a85SDaniel Walter } 313093c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 313193c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3132c3968a85SDaniel Walter } else 313393c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3134c3968a85SDaniel Walter 313593c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 31361da177e4SLinus Torvalds 31371da177e4SLinus Torvalds install_route: 313893c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 31395609b80aSIdo Schimmel !netif_carrier_ok(dev)) 31405e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 31415e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 314293531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 314393c2fb25SDavid Ahern rt->fib6_table = table; 314463152fc0SDaniel Lezcano 3145c346dca1SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = dev_net(dev); 314663152fc0SDaniel Lezcano 3147dcd1f572SDavid Ahern if (idev) 3148dcd1f572SDavid Ahern in6_dev_put(idev); 3149dcd1f572SDavid Ahern 31508c5b83f0SRoopa Prabhu return rt; 31511da177e4SLinus Torvalds out: 31521da177e4SLinus Torvalds if (dev) 31531da177e4SLinus Torvalds dev_put(dev); 31541da177e4SLinus Torvalds if (idev) 31551da177e4SLinus Torvalds in6_dev_put(idev); 31566b9ea5a6SRoopa Prabhu 315793531c67SDavid Ahern fib6_info_release(rt); 31588c5b83f0SRoopa Prabhu return ERR_PTR(err); 31596b9ea5a6SRoopa Prabhu } 31606b9ea5a6SRoopa Prabhu 3161acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3162333c4301SDavid Ahern struct netlink_ext_ack *extack) 31636b9ea5a6SRoopa Prabhu { 31648d1c802bSDavid Ahern struct fib6_info *rt; 31656b9ea5a6SRoopa Prabhu int err; 31666b9ea5a6SRoopa Prabhu 3167acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3168d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3169d4ead6b3SDavid Ahern return PTR_ERR(rt); 31706b9ea5a6SRoopa Prabhu 3171d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 317293531c67SDavid Ahern fib6_info_release(rt); 31736b9ea5a6SRoopa Prabhu 31741da177e4SLinus Torvalds return err; 31751da177e4SLinus Torvalds } 31761da177e4SLinus Torvalds 31778d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31781da177e4SLinus Torvalds { 3179afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3180c71099acSThomas Graf struct fib6_table *table; 3181afb1d4b5SDavid Ahern int err; 31821da177e4SLinus Torvalds 3183421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31846825a26cSGao feng err = -ENOENT; 31856825a26cSGao feng goto out; 31866825a26cSGao feng } 31876c813a72SPatrick McHardy 318893c2fb25SDavid Ahern table = rt->fib6_table; 318966f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 319086872cb5SThomas Graf err = fib6_del(rt, info); 319166f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31921da177e4SLinus Torvalds 31936825a26cSGao feng out: 319493531c67SDavid Ahern fib6_info_release(rt); 31951da177e4SLinus Torvalds return err; 31961da177e4SLinus Torvalds } 31971da177e4SLinus Torvalds 31988d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3199e0a1ad73SThomas Graf { 3200afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3201afb1d4b5SDavid Ahern 3202528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3203e0a1ad73SThomas Graf } 3204e0a1ad73SThomas Graf 32058d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 32060ae81335SDavid Ahern { 32070ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3208e3330039SWANG Cong struct net *net = info->nl_net; 320916a16cd3SDavid Ahern struct sk_buff *skb = NULL; 32100ae81335SDavid Ahern struct fib6_table *table; 3211e3330039SWANG Cong int err = -ENOENT; 32120ae81335SDavid Ahern 3213421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3214e3330039SWANG Cong goto out_put; 321593c2fb25SDavid Ahern table = rt->fib6_table; 321666f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32170ae81335SDavid Ahern 321893c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32198d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32200ae81335SDavid Ahern 322116a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 322216a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 322316a16cd3SDavid Ahern if (skb) { 322416a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 322516a16cd3SDavid Ahern 3226d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 322716a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 322816a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 322916a16cd3SDavid Ahern kfree_skb(skb); 323016a16cd3SDavid Ahern skb = NULL; 323116a16cd3SDavid Ahern } else 323216a16cd3SDavid Ahern info->skip_notify = 1; 323316a16cd3SDavid Ahern } 323416a16cd3SDavid Ahern 32350ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 323693c2fb25SDavid Ahern &rt->fib6_siblings, 323793c2fb25SDavid Ahern fib6_siblings) { 32380ae81335SDavid Ahern err = fib6_del(sibling, info); 32390ae81335SDavid Ahern if (err) 3240e3330039SWANG Cong goto out_unlock; 32410ae81335SDavid Ahern } 32420ae81335SDavid Ahern } 32430ae81335SDavid Ahern 32440ae81335SDavid Ahern err = fib6_del(rt, info); 3245e3330039SWANG Cong out_unlock: 324666f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3247e3330039SWANG Cong out_put: 324893531c67SDavid Ahern fib6_info_release(rt); 324916a16cd3SDavid Ahern 325016a16cd3SDavid Ahern if (skb) { 3251e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 325216a16cd3SDavid Ahern info->nlh, gfp_any()); 325316a16cd3SDavid Ahern } 32540ae81335SDavid Ahern return err; 32550ae81335SDavid Ahern } 32560ae81335SDavid Ahern 325723fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 325823fb93a4SDavid Ahern { 325923fb93a4SDavid Ahern int rc = -ESRCH; 326023fb93a4SDavid Ahern 326123fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 326223fb93a4SDavid Ahern goto out; 326323fb93a4SDavid Ahern 326423fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 326523fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 326623fb93a4SDavid Ahern goto out; 326723fb93a4SDavid Ahern if (dst_hold_safe(&rt->dst)) 326823fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 326923fb93a4SDavid Ahern out: 327023fb93a4SDavid Ahern return rc; 327123fb93a4SDavid Ahern } 327223fb93a4SDavid Ahern 3273333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3274333c4301SDavid Ahern struct netlink_ext_ack *extack) 32751da177e4SLinus Torvalds { 32768d1c802bSDavid Ahern struct rt6_info *rt_cache; 3277c71099acSThomas Graf struct fib6_table *table; 32788d1c802bSDavid Ahern struct fib6_info *rt; 32791da177e4SLinus Torvalds struct fib6_node *fn; 32801da177e4SLinus Torvalds int err = -ESRCH; 32811da177e4SLinus Torvalds 32825578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3283d5d531cbSDavid Ahern if (!table) { 3284d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3285c71099acSThomas Graf return err; 3286d5d531cbSDavid Ahern } 32871da177e4SLinus Torvalds 328866f5d6ceSWei Wang rcu_read_lock(); 3289c71099acSThomas Graf 3290c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 329186872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 329238fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32932b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32941da177e4SLinus Torvalds 32951da177e4SLinus Torvalds if (fn) { 329666f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 32972b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 329823fb93a4SDavid Ahern int rc; 329923fb93a4SDavid Ahern 33002b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 33012b760fcfSWei Wang &cfg->fc_src); 330223fb93a4SDavid Ahern if (rt_cache) { 330323fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 33049e575010SEric Dumazet if (rc != -ESRCH) { 33059e575010SEric Dumazet rcu_read_unlock(); 330623fb93a4SDavid Ahern return rc; 330723fb93a4SDavid Ahern } 33089e575010SEric Dumazet } 33091f56a01fSMartin KaFai Lau continue; 33102b760fcfSWei Wang } 331186872cb5SThomas Graf if (cfg->fc_ifindex && 33125e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 33135e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 33141da177e4SLinus Torvalds continue; 331586872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 33165e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 33171da177e4SLinus Torvalds continue; 331893c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33191da177e4SLinus Torvalds continue; 332093c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3321c2ed1880SMantas M continue; 3322e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3323e873e4b9SWei Wang continue; 332466f5d6ceSWei Wang rcu_read_unlock(); 33251da177e4SLinus Torvalds 33260ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33270ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 332886872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33290ae81335SDavid Ahern 33300ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33311da177e4SLinus Torvalds } 33321da177e4SLinus Torvalds } 333366f5d6ceSWei Wang rcu_read_unlock(); 33341da177e4SLinus Torvalds 33351da177e4SLinus Torvalds return err; 33361da177e4SLinus Torvalds } 33371da177e4SLinus Torvalds 33386700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3339a6279458SYOSHIFUJI Hideaki { 3340a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3341e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3342e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3343e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3344e8599ff4SDavid S. Miller struct neighbour *neigh; 3345a68886a6SDavid Ahern struct fib6_info *from; 334671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33476e157b6aSDavid S. Miller int optlen, on_link; 33486e157b6aSDavid S. Miller u8 *lladdr; 3349e8599ff4SDavid S. Miller 335029a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 335171bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3352e8599ff4SDavid S. Miller 3353e8599ff4SDavid S. Miller if (optlen < 0) { 33546e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3355e8599ff4SDavid S. Miller return; 3356e8599ff4SDavid S. Miller } 3357e8599ff4SDavid S. Miller 335871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3359e8599ff4SDavid S. Miller 336071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33616e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3362e8599ff4SDavid S. Miller return; 3363e8599ff4SDavid S. Miller } 3364e8599ff4SDavid S. Miller 33656e157b6aSDavid S. Miller on_link = 0; 336671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3367e8599ff4SDavid S. Miller on_link = 1; 336871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3369e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33706e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3371e8599ff4SDavid S. Miller return; 3372e8599ff4SDavid S. Miller } 3373e8599ff4SDavid S. Miller 3374e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3375e8599ff4SDavid S. Miller if (!in6_dev) 3376e8599ff4SDavid S. Miller return; 3377e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3378e8599ff4SDavid S. Miller return; 3379e8599ff4SDavid S. Miller 3380e8599ff4SDavid S. Miller /* RFC2461 8.1: 3381e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3382e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3383e8599ff4SDavid S. Miller */ 3384e8599ff4SDavid S. Miller 3385f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3386e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3387e8599ff4SDavid S. Miller return; 3388e8599ff4SDavid S. Miller } 33896e157b6aSDavid S. Miller 33906e157b6aSDavid S. Miller lladdr = NULL; 3391e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3392e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3393e8599ff4SDavid S. Miller skb->dev); 3394e8599ff4SDavid S. Miller if (!lladdr) { 3395e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3396e8599ff4SDavid S. Miller return; 3397e8599ff4SDavid S. Miller } 3398e8599ff4SDavid S. Miller } 3399e8599ff4SDavid S. Miller 34006e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3401ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 34026e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 34036e157b6aSDavid S. Miller return; 34046e157b6aSDavid S. Miller } 34056e157b6aSDavid S. Miller 34066e157b6aSDavid S. Miller /* Redirect received -> path was valid. 34076e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 34086e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 34096e157b6aSDavid S. Miller */ 34100dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34116e157b6aSDavid S. Miller 341271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3413e8599ff4SDavid S. Miller if (!neigh) 3414e8599ff4SDavid S. Miller return; 3415e8599ff4SDavid S. Miller 34161da177e4SLinus Torvalds /* 34171da177e4SLinus Torvalds * We have finally decided to accept it. 34181da177e4SLinus Torvalds */ 34191da177e4SLinus Torvalds 3420f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34211da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34221da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34231da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3424f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3425f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34261da177e4SLinus Torvalds 34274d85cd0cSDavid Ahern rcu_read_lock(); 3428a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3429e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3430e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3431e873e4b9SWei Wang */ 34328a14e46fSDavid Ahern fib6_info_hold(from); 34334d85cd0cSDavid Ahern rcu_read_unlock(); 34348a14e46fSDavid Ahern 34358a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 343638308473SDavid S. Miller if (!nrt) 34371da177e4SLinus Torvalds goto out; 34381da177e4SLinus Torvalds 34391da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34401da177e4SLinus Torvalds if (on_link) 34411da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34421da177e4SLinus Torvalds 34434e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34441da177e4SLinus Torvalds 34452b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34462b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34472b760fcfSWei Wang * takes care of it 34482b760fcfSWei Wang */ 34498a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34502b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34512b760fcfSWei Wang goto out; 34522b760fcfSWei Wang } 34531da177e4SLinus Torvalds 3454d8d1f30bSChangli Gao netevent.old = &rt->dst; 3455d8d1f30bSChangli Gao netevent.new = &nrt->dst; 345671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 345760592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34588d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34598d71740cSTom Tucker 34601da177e4SLinus Torvalds out: 34618a14e46fSDavid Ahern fib6_info_release(from); 3462e8599ff4SDavid S. Miller neigh_release(neigh); 34636e157b6aSDavid S. Miller } 34646e157b6aSDavid S. Miller 346570ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34668d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3467b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3468830218c1SDavid Ahern const struct in6_addr *gwaddr, 3469830218c1SDavid Ahern struct net_device *dev) 347070ceb4f5SYOSHIFUJI Hideaki { 3471830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3472830218c1SDavid Ahern int ifindex = dev->ifindex; 347370ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34748d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3475c71099acSThomas Graf struct fib6_table *table; 347670ceb4f5SYOSHIFUJI Hideaki 3477830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 347838308473SDavid S. Miller if (!table) 3479c71099acSThomas Graf return NULL; 3480c71099acSThomas Graf 348166f5d6ceSWei Wang rcu_read_lock(); 348238fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 348370ceb4f5SYOSHIFUJI Hideaki if (!fn) 348470ceb4f5SYOSHIFUJI Hideaki goto out; 348570ceb4f5SYOSHIFUJI Hideaki 348666f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 34875e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 348870ceb4f5SYOSHIFUJI Hideaki continue; 348993c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 349070ceb4f5SYOSHIFUJI Hideaki continue; 34915e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 349270ceb4f5SYOSHIFUJI Hideaki continue; 3493e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3494e873e4b9SWei Wang continue; 349570ceb4f5SYOSHIFUJI Hideaki break; 349670ceb4f5SYOSHIFUJI Hideaki } 349770ceb4f5SYOSHIFUJI Hideaki out: 349866f5d6ceSWei Wang rcu_read_unlock(); 349970ceb4f5SYOSHIFUJI Hideaki return rt; 350070ceb4f5SYOSHIFUJI Hideaki } 350170ceb4f5SYOSHIFUJI Hideaki 35028d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3503b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3504830218c1SDavid Ahern const struct in6_addr *gwaddr, 3505830218c1SDavid Ahern struct net_device *dev, 350695c96174SEric Dumazet unsigned int pref) 350770ceb4f5SYOSHIFUJI Hideaki { 350886872cb5SThomas Graf struct fib6_config cfg = { 3509238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3510830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 351186872cb5SThomas Graf .fc_dst_len = prefixlen, 351286872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 351386872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3514b91d5329SXin Long .fc_protocol = RTPROT_RA, 3515e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 351615e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3517efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3518efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 351986872cb5SThomas Graf }; 352070ceb4f5SYOSHIFUJI Hideaki 3521830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35224e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35234e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 352486872cb5SThomas Graf 3525e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3526e317da96SYOSHIFUJI Hideaki if (!prefixlen) 352786872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 352870ceb4f5SYOSHIFUJI Hideaki 3529acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 353070ceb4f5SYOSHIFUJI Hideaki 3531830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 353270ceb4f5SYOSHIFUJI Hideaki } 353370ceb4f5SYOSHIFUJI Hideaki #endif 353470ceb4f5SYOSHIFUJI Hideaki 35358d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3536afb1d4b5SDavid Ahern const struct in6_addr *addr, 3537afb1d4b5SDavid Ahern struct net_device *dev) 35381da177e4SLinus Torvalds { 3539830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35408d1c802bSDavid Ahern struct fib6_info *rt; 3541c71099acSThomas Graf struct fib6_table *table; 35421da177e4SLinus Torvalds 3543afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 354438308473SDavid S. Miller if (!table) 3545c71099acSThomas Graf return NULL; 35461da177e4SLinus Torvalds 354766f5d6ceSWei Wang rcu_read_lock(); 354866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 35495e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 355093c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 35515e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 35521da177e4SLinus Torvalds break; 35531da177e4SLinus Torvalds } 3554e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3555e873e4b9SWei Wang rt = NULL; 355666f5d6ceSWei Wang rcu_read_unlock(); 35571da177e4SLinus Torvalds return rt; 35581da177e4SLinus Torvalds } 35591da177e4SLinus Torvalds 35608d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3561afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3562ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3563ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35641da177e4SLinus Torvalds { 356586872cb5SThomas Graf struct fib6_config cfg = { 3566ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3567238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 356886872cb5SThomas Graf .fc_ifindex = dev->ifindex, 356986872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 357086872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3571b91d5329SXin Long .fc_protocol = RTPROT_RA, 3572e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 357315e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35745578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3575afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 357686872cb5SThomas Graf }; 35771da177e4SLinus Torvalds 35784e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35791da177e4SLinus Torvalds 3580acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3581830218c1SDavid Ahern struct fib6_table *table; 3582830218c1SDavid Ahern 3583830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3584830218c1SDavid Ahern if (table) 3585830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3586830218c1SDavid Ahern } 35871da177e4SLinus Torvalds 3588afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35891da177e4SLinus Torvalds } 35901da177e4SLinus Torvalds 3591afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3592afb1d4b5SDavid Ahern struct fib6_table *table) 35931da177e4SLinus Torvalds { 35948d1c802bSDavid Ahern struct fib6_info *rt; 35951da177e4SLinus Torvalds 35961da177e4SLinus Torvalds restart: 359766f5d6ceSWei Wang rcu_read_lock(); 359866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3599dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3600dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3601dcd1f572SDavid Ahern 360293c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3603e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3604e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 360566f5d6ceSWei Wang rcu_read_unlock(); 3606afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36071da177e4SLinus Torvalds goto restart; 36081da177e4SLinus Torvalds } 36091da177e4SLinus Torvalds } 361066f5d6ceSWei Wang rcu_read_unlock(); 3611830218c1SDavid Ahern 3612830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3613830218c1SDavid Ahern } 3614830218c1SDavid Ahern 3615830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3616830218c1SDavid Ahern { 3617830218c1SDavid Ahern struct fib6_table *table; 3618830218c1SDavid Ahern struct hlist_head *head; 3619830218c1SDavid Ahern unsigned int h; 3620830218c1SDavid Ahern 3621830218c1SDavid Ahern rcu_read_lock(); 3622830218c1SDavid Ahern 3623830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3624830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3625830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3626830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3627afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3628830218c1SDavid Ahern } 3629830218c1SDavid Ahern } 3630830218c1SDavid Ahern 3631830218c1SDavid Ahern rcu_read_unlock(); 36321da177e4SLinus Torvalds } 36331da177e4SLinus Torvalds 36345578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36355578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 363686872cb5SThomas Graf struct fib6_config *cfg) 363786872cb5SThomas Graf { 363886872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 363986872cb5SThomas Graf 3640ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3641ca254490SDavid Ahern : RT6_TABLE_MAIN; 364286872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 364386872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 364486872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 364586872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 364686872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 364786872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 3648e8478e80SDavid Ahern cfg->fc_type = rtmsg->rtmsg_type; 364986872cb5SThomas Graf 36505578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3651f1243c2dSBenjamin Thery 36524e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 36534e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 36544e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 365586872cb5SThomas Graf } 365686872cb5SThomas Graf 36575578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36581da177e4SLinus Torvalds { 365986872cb5SThomas Graf struct fib6_config cfg; 36601da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36611da177e4SLinus Torvalds int err; 36621da177e4SLinus Torvalds 36631da177e4SLinus Torvalds switch (cmd) { 36641da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36651da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3666af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36671da177e4SLinus Torvalds return -EPERM; 36681da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36691da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36701da177e4SLinus Torvalds if (err) 36711da177e4SLinus Torvalds return -EFAULT; 36721da177e4SLinus Torvalds 36735578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 367486872cb5SThomas Graf 36751da177e4SLinus Torvalds rtnl_lock(); 36761da177e4SLinus Torvalds switch (cmd) { 36771da177e4SLinus Torvalds case SIOCADDRT: 3678acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36791da177e4SLinus Torvalds break; 36801da177e4SLinus Torvalds case SIOCDELRT: 3681333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36821da177e4SLinus Torvalds break; 36831da177e4SLinus Torvalds default: 36841da177e4SLinus Torvalds err = -EINVAL; 36851da177e4SLinus Torvalds } 36861da177e4SLinus Torvalds rtnl_unlock(); 36871da177e4SLinus Torvalds 36881da177e4SLinus Torvalds return err; 36893ff50b79SStephen Hemminger } 36901da177e4SLinus Torvalds 36911da177e4SLinus Torvalds return -EINVAL; 36921da177e4SLinus Torvalds } 36931da177e4SLinus Torvalds 36941da177e4SLinus Torvalds /* 36951da177e4SLinus Torvalds * Drop the packet on the floor 36961da177e4SLinus Torvalds */ 36971da177e4SLinus Torvalds 3698d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36991da177e4SLinus Torvalds { 3700612f09e8SYOSHIFUJI Hideaki int type; 3701adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3702612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3703612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 37040660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 370545bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3706bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3707bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 37083bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3709612f09e8SYOSHIFUJI Hideaki break; 3710612f09e8SYOSHIFUJI Hideaki } 3711612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3712612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37133bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37143bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3715612f09e8SYOSHIFUJI Hideaki break; 3716612f09e8SYOSHIFUJI Hideaki } 37173ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37181da177e4SLinus Torvalds kfree_skb(skb); 37191da177e4SLinus Torvalds return 0; 37201da177e4SLinus Torvalds } 37211da177e4SLinus Torvalds 37229ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37239ce8ade0SThomas Graf { 3724612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37259ce8ade0SThomas Graf } 37269ce8ade0SThomas Graf 3727ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37281da177e4SLinus Torvalds { 3729adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3730612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37311da177e4SLinus Torvalds } 37321da177e4SLinus Torvalds 37339ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37349ce8ade0SThomas Graf { 3735612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37369ce8ade0SThomas Graf } 37379ce8ade0SThomas Graf 3738ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37399ce8ade0SThomas Graf { 3740adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3741612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37429ce8ade0SThomas Graf } 37439ce8ade0SThomas Graf 37441da177e4SLinus Torvalds /* 37451da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37461da177e4SLinus Torvalds */ 37471da177e4SLinus Torvalds 3748360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3749afb1d4b5SDavid Ahern struct inet6_dev *idev, 37501da177e4SLinus Torvalds const struct in6_addr *addr, 3751acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37521da177e4SLinus Torvalds { 3753ca254490SDavid Ahern u32 tb_id; 37544832c30dSDavid Ahern struct net_device *dev = idev->dev; 3755360a9887SDavid Ahern struct fib6_info *f6i; 37565f02ce24SDavid Ahern 3757360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3758360a9887SDavid Ahern if (!f6i) 37591da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 37601da177e4SLinus Torvalds 3761360a9887SDavid Ahern f6i->dst_nocount = true; 3762360a9887SDavid Ahern f6i->dst_host = true; 3763360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3764360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3765e8478e80SDavid Ahern if (anycast) { 3766360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3767360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3768e8478e80SDavid Ahern } else { 3769360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3770360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3771e8478e80SDavid Ahern } 37721da177e4SLinus Torvalds 3773360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 377493531c67SDavid Ahern dev_hold(dev); 3775360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3776360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3777360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3778ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3779360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 37801da177e4SLinus Torvalds 3781360a9887SDavid Ahern return f6i; 37821da177e4SLinus Torvalds } 37831da177e4SLinus Torvalds 3784c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3785c3968a85SDaniel Walter struct arg_dev_net_ip { 3786c3968a85SDaniel Walter struct net_device *dev; 3787c3968a85SDaniel Walter struct net *net; 3788c3968a85SDaniel Walter struct in6_addr *addr; 3789c3968a85SDaniel Walter }; 3790c3968a85SDaniel Walter 37918d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3792c3968a85SDaniel Walter { 3793c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3794c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3795c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3796c3968a85SDaniel Walter 37975e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3798421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 379993c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 380060006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3801c3968a85SDaniel Walter /* remove prefsrc entry */ 380293c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 380360006a48SWei Wang /* need to update cache as well */ 380460006a48SWei Wang rt6_exceptions_remove_prefsrc(rt); 380560006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3806c3968a85SDaniel Walter } 3807c3968a85SDaniel Walter return 0; 3808c3968a85SDaniel Walter } 3809c3968a85SDaniel Walter 3810c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3811c3968a85SDaniel Walter { 3812c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3813c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3814c3968a85SDaniel Walter .dev = ifp->idev->dev, 3815c3968a85SDaniel Walter .net = net, 3816c3968a85SDaniel Walter .addr = &ifp->addr, 3817c3968a85SDaniel Walter }; 38180c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3819c3968a85SDaniel Walter } 3820c3968a85SDaniel Walter 3821be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3822be7a010dSDuan Jiong 3823be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38248d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3825be7a010dSDuan Jiong { 3826be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3827be7a010dSDuan Jiong 382893c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 38295e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3830be7a010dSDuan Jiong return -1; 3831be7a010dSDuan Jiong } 3832b16cb459SWei Wang 3833b16cb459SWei Wang /* Further clean up cached routes in exception table. 3834b16cb459SWei Wang * This is needed because cached route may have a different 3835b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3836b16cb459SWei Wang */ 3837b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3838b16cb459SWei Wang 3839be7a010dSDuan Jiong return 0; 3840be7a010dSDuan Jiong } 3841be7a010dSDuan Jiong 3842be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3843be7a010dSDuan Jiong { 3844be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3845be7a010dSDuan Jiong } 3846be7a010dSDuan Jiong 38472127d95aSIdo Schimmel struct arg_netdev_event { 38482127d95aSIdo Schimmel const struct net_device *dev; 38494c981e28SIdo Schimmel union { 38502127d95aSIdo Schimmel unsigned int nh_flags; 38514c981e28SIdo Schimmel unsigned long event; 38524c981e28SIdo Schimmel }; 38532127d95aSIdo Schimmel }; 38542127d95aSIdo Schimmel 38558d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3856d7dedee1SIdo Schimmel { 38578d1c802bSDavid Ahern struct fib6_info *iter; 3858d7dedee1SIdo Schimmel struct fib6_node *fn; 3859d7dedee1SIdo Schimmel 386093c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 386193c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3862d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 386393c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3864d7dedee1SIdo Schimmel while (iter) { 386593c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 386633bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3867d7dedee1SIdo Schimmel return iter; 38688fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 386993c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3870d7dedee1SIdo Schimmel } 3871d7dedee1SIdo Schimmel 3872d7dedee1SIdo Schimmel return NULL; 3873d7dedee1SIdo Schimmel } 3874d7dedee1SIdo Schimmel 38758d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3876d7dedee1SIdo Schimmel { 38775e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 38785e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3879dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3880d7dedee1SIdo Schimmel return true; 3881d7dedee1SIdo Schimmel 3882d7dedee1SIdo Schimmel return false; 3883d7dedee1SIdo Schimmel } 3884d7dedee1SIdo Schimmel 38858d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3886d7dedee1SIdo Schimmel { 38878d1c802bSDavid Ahern struct fib6_info *iter; 3888d7dedee1SIdo Schimmel int total = 0; 3889d7dedee1SIdo Schimmel 3890d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 38915e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3892d7dedee1SIdo Schimmel 389393c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3894d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 38955e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3896d7dedee1SIdo Schimmel } 3897d7dedee1SIdo Schimmel 3898d7dedee1SIdo Schimmel return total; 3899d7dedee1SIdo Schimmel } 3900d7dedee1SIdo Schimmel 39018d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3902d7dedee1SIdo Schimmel { 3903d7dedee1SIdo Schimmel int upper_bound = -1; 3904d7dedee1SIdo Schimmel 3905d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 39065e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3907d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3908d7dedee1SIdo Schimmel total) - 1; 3909d7dedee1SIdo Schimmel } 39105e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3911d7dedee1SIdo Schimmel } 3912d7dedee1SIdo Schimmel 39138d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3914d7dedee1SIdo Schimmel { 39158d1c802bSDavid Ahern struct fib6_info *iter; 3916d7dedee1SIdo Schimmel int weight = 0; 3917d7dedee1SIdo Schimmel 3918d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3919d7dedee1SIdo Schimmel 392093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3921d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3922d7dedee1SIdo Schimmel } 3923d7dedee1SIdo Schimmel 39248d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3925d7dedee1SIdo Schimmel { 39268d1c802bSDavid Ahern struct fib6_info *first; 3927d7dedee1SIdo Schimmel int total; 3928d7dedee1SIdo Schimmel 3929d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3930d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3931d7dedee1SIdo Schimmel * sibling route. 3932d7dedee1SIdo Schimmel */ 393393c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3934d7dedee1SIdo Schimmel return; 3935d7dedee1SIdo Schimmel 3936d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3937d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3938d7dedee1SIdo Schimmel * onwards. 3939d7dedee1SIdo Schimmel */ 3940d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3941d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3942d7dedee1SIdo Schimmel return; 3943d7dedee1SIdo Schimmel 3944d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3945d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3946d7dedee1SIdo Schimmel } 3947d7dedee1SIdo Schimmel 39488d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39492127d95aSIdo Schimmel { 39502127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39517aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39522127d95aSIdo Schimmel 3953421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 39545e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 39557aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3956d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39571de178edSIdo Schimmel } 39582127d95aSIdo Schimmel 39592127d95aSIdo Schimmel return 0; 39602127d95aSIdo Schimmel } 39612127d95aSIdo Schimmel 39622127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39632127d95aSIdo Schimmel { 39642127d95aSIdo Schimmel struct arg_netdev_event arg = { 39652127d95aSIdo Schimmel .dev = dev, 39666802f3adSIdo Schimmel { 39672127d95aSIdo Schimmel .nh_flags = nh_flags, 39686802f3adSIdo Schimmel }, 39692127d95aSIdo Schimmel }; 39702127d95aSIdo Schimmel 39712127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39722127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39732127d95aSIdo Schimmel 39742127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39752127d95aSIdo Schimmel } 39762127d95aSIdo Schimmel 39778d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39781de178edSIdo Schimmel const struct net_device *dev) 39791de178edSIdo Schimmel { 39808d1c802bSDavid Ahern struct fib6_info *iter; 39811de178edSIdo Schimmel 39825e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39831de178edSIdo Schimmel return true; 398493c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39855e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39861de178edSIdo Schimmel return true; 39871de178edSIdo Schimmel 39881de178edSIdo Schimmel return false; 39891de178edSIdo Schimmel } 39901de178edSIdo Schimmel 39918d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39921de178edSIdo Schimmel { 39938d1c802bSDavid Ahern struct fib6_info *iter; 39941de178edSIdo Schimmel 39951de178edSIdo Schimmel rt->should_flush = 1; 399693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39971de178edSIdo Schimmel iter->should_flush = 1; 39981de178edSIdo Schimmel } 39991de178edSIdo Schimmel 40008d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 40011de178edSIdo Schimmel const struct net_device *down_dev) 40021de178edSIdo Schimmel { 40038d1c802bSDavid Ahern struct fib6_info *iter; 40041de178edSIdo Schimmel unsigned int dead = 0; 40051de178edSIdo Schimmel 40065e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 40075e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 40081de178edSIdo Schimmel dead++; 400993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40105e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 40115e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 40121de178edSIdo Schimmel dead++; 40131de178edSIdo Schimmel 40141de178edSIdo Schimmel return dead; 40151de178edSIdo Schimmel } 40161de178edSIdo Schimmel 40178d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40181de178edSIdo Schimmel const struct net_device *dev, 40191de178edSIdo Schimmel unsigned int nh_flags) 40201de178edSIdo Schimmel { 40218d1c802bSDavid Ahern struct fib6_info *iter; 40221de178edSIdo Schimmel 40235e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 40245e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 402593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40265e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 40275e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 40281de178edSIdo Schimmel } 40291de178edSIdo Schimmel 4030a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40318d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40321da177e4SLinus Torvalds { 40334c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40344c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40357aef6859SDavid Ahern struct net *net = dev_net(dev); 40368ed67789SDaniel Lezcano 4037421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 403827c6fa73SIdo Schimmel return 0; 403927c6fa73SIdo Schimmel 404027c6fa73SIdo Schimmel switch (arg->event) { 404127c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 40425e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 404327c6fa73SIdo Schimmel case NETDEV_DOWN: 40441de178edSIdo Schimmel if (rt->should_flush) 404527c6fa73SIdo Schimmel return -1; 404693c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 40475e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 40481de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40491de178edSIdo Schimmel unsigned int count; 40501de178edSIdo Schimmel 40511de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 405293c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40531de178edSIdo Schimmel rt6_multipath_flush(rt); 40541de178edSIdo Schimmel return -1; 40551de178edSIdo Schimmel } 40561de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40571de178edSIdo Schimmel RTNH_F_LINKDOWN); 40587aef6859SDavid Ahern fib6_update_sernum(net, rt); 4059d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40601de178edSIdo Schimmel } 40611de178edSIdo Schimmel return -2; 406227c6fa73SIdo Schimmel case NETDEV_CHANGE: 40635e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 406493c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 406527c6fa73SIdo Schimmel break; 40665e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 4067d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 406827c6fa73SIdo Schimmel break; 40692b241361SIdo Schimmel } 4070c159d30cSDavid S. Miller 40711da177e4SLinus Torvalds return 0; 40721da177e4SLinus Torvalds } 40731da177e4SLinus Torvalds 407427c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40751da177e4SLinus Torvalds { 40764c981e28SIdo Schimmel struct arg_netdev_event arg = { 40778ed67789SDaniel Lezcano .dev = dev, 40786802f3adSIdo Schimmel { 40794c981e28SIdo Schimmel .event = event, 40806802f3adSIdo Schimmel }, 40818ed67789SDaniel Lezcano }; 40828ed67789SDaniel Lezcano 40834c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 40844c981e28SIdo Schimmel } 40854c981e28SIdo Schimmel 40864c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40874c981e28SIdo Schimmel { 40884c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40894c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40904c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40911da177e4SLinus Torvalds } 40921da177e4SLinus Torvalds 409395c96174SEric Dumazet struct rt6_mtu_change_arg { 40941da177e4SLinus Torvalds struct net_device *dev; 409595c96174SEric Dumazet unsigned int mtu; 40961da177e4SLinus Torvalds }; 40971da177e4SLinus Torvalds 40988d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40991da177e4SLinus Torvalds { 41001da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 41011da177e4SLinus Torvalds struct inet6_dev *idev; 41021da177e4SLinus Torvalds 41031da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 41041da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 41051da177e4SLinus Torvalds We still use this lock to block changes 41061da177e4SLinus Torvalds caused by addrconf/ndisc. 41071da177e4SLinus Torvalds */ 41081da177e4SLinus Torvalds 41091da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 411038308473SDavid S. Miller if (!idev) 41111da177e4SLinus Torvalds return 0; 41121da177e4SLinus Torvalds 41131da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41141da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41151da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41161da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41171da177e4SLinus Torvalds */ 41185e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 4119d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4120d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4121d4ead6b3SDavid Ahern 4122d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4123d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4124d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4125d4ead6b3SDavid Ahern 4126f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4127e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4128f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41294b32b5adSMartin KaFai Lau } 41301da177e4SLinus Torvalds return 0; 41311da177e4SLinus Torvalds } 41321da177e4SLinus Torvalds 413395c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41341da177e4SLinus Torvalds { 4135c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4136c71099acSThomas Graf .dev = dev, 4137c71099acSThomas Graf .mtu = mtu, 4138c71099acSThomas Graf }; 41391da177e4SLinus Torvalds 41400c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41411da177e4SLinus Torvalds } 41421da177e4SLinus Torvalds 4143ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41445176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4145aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 414686872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4147ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 414886872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 414986872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 415051ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4151c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 415219e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 415319e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 415432bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4155622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41563b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4157aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4158eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4159eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4160eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 416186872cb5SThomas Graf }; 416286872cb5SThomas Graf 416386872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4164333c4301SDavid Ahern struct fib6_config *cfg, 4165333c4301SDavid Ahern struct netlink_ext_ack *extack) 41661da177e4SLinus Torvalds { 416786872cb5SThomas Graf struct rtmsg *rtm; 416886872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4169c78ba6d6SLubomir Rintel unsigned int pref; 417086872cb5SThomas Graf int err; 41711da177e4SLinus Torvalds 4172fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4173fceb6435SJohannes Berg NULL); 417486872cb5SThomas Graf if (err < 0) 417586872cb5SThomas Graf goto errout; 41761da177e4SLinus Torvalds 417786872cb5SThomas Graf err = -EINVAL; 417886872cb5SThomas Graf rtm = nlmsg_data(nlh); 417986872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 418086872cb5SThomas Graf 418186872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 418286872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 418386872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 418486872cb5SThomas Graf cfg->fc_flags = RTF_UP; 418586872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 4186ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 418786872cb5SThomas Graf 4188ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4189ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4190b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4191b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 419286872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 419386872cb5SThomas Graf 4194ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4195ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4196ab79ad14SMaciej Żenczykowski 41971f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41981f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41991f56a01fSMartin KaFai Lau 4200fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4201fc1e64e1SDavid Ahern 420215e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 420386872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 42043b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 420586872cb5SThomas Graf 420686872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 420767b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 420886872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 42091da177e4SLinus Torvalds } 421086872cb5SThomas Graf 421186872cb5SThomas Graf if (tb[RTA_DST]) { 421286872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 421386872cb5SThomas Graf 421486872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 421586872cb5SThomas Graf goto errout; 421686872cb5SThomas Graf 421786872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42181da177e4SLinus Torvalds } 421986872cb5SThomas Graf 422086872cb5SThomas Graf if (tb[RTA_SRC]) { 422186872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 422286872cb5SThomas Graf 422386872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 422486872cb5SThomas Graf goto errout; 422586872cb5SThomas Graf 422686872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42271da177e4SLinus Torvalds } 422886872cb5SThomas Graf 4229c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 423067b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4231c3968a85SDaniel Walter 423286872cb5SThomas Graf if (tb[RTA_OIF]) 423386872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 423486872cb5SThomas Graf 423586872cb5SThomas Graf if (tb[RTA_PRIORITY]) 423686872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 423786872cb5SThomas Graf 423886872cb5SThomas Graf if (tb[RTA_METRICS]) { 423986872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 424086872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42411da177e4SLinus Torvalds } 424286872cb5SThomas Graf 424386872cb5SThomas Graf if (tb[RTA_TABLE]) 424486872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 424586872cb5SThomas Graf 424651ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 424751ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 424851ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42499ed59592SDavid Ahern 42509ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4251c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42529ed59592SDavid Ahern if (err < 0) 42539ed59592SDavid Ahern goto errout; 425451ebd318SNicolas Dichtel } 425551ebd318SNicolas Dichtel 4256c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4257c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4258c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4259c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4260c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4261c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4262c78ba6d6SLubomir Rintel } 4263c78ba6d6SLubomir Rintel 426419e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 426519e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 426619e42e45SRoopa Prabhu 42679ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 426819e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 426919e42e45SRoopa Prabhu 4270c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42719ed59592SDavid Ahern if (err < 0) 42729ed59592SDavid Ahern goto errout; 42739ed59592SDavid Ahern } 42749ed59592SDavid Ahern 427532bc201eSXin Long if (tb[RTA_EXPIRES]) { 427632bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 427732bc201eSXin Long 427832bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 427932bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 428032bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 428132bc201eSXin Long } 428232bc201eSXin Long } 428332bc201eSXin Long 428486872cb5SThomas Graf err = 0; 428586872cb5SThomas Graf errout: 428686872cb5SThomas Graf return err; 42871da177e4SLinus Torvalds } 42881da177e4SLinus Torvalds 42896b9ea5a6SRoopa Prabhu struct rt6_nh { 42908d1c802bSDavid Ahern struct fib6_info *fib6_info; 42916b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42926b9ea5a6SRoopa Prabhu struct list_head next; 42936b9ea5a6SRoopa Prabhu }; 42946b9ea5a6SRoopa Prabhu 42956b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 42966b9ea5a6SRoopa Prabhu { 42976b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42986b9ea5a6SRoopa Prabhu 42996b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43007d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 43016b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 43026b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 43036b9ea5a6SRoopa Prabhu } 43046b9ea5a6SRoopa Prabhu } 43056b9ea5a6SRoopa Prabhu 4306d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4307d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 43088d1c802bSDavid Ahern struct fib6_info *rt, 43098d1c802bSDavid Ahern struct fib6_config *r_cfg) 43106b9ea5a6SRoopa Prabhu { 43116b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 43126b9ea5a6SRoopa Prabhu int err = -EEXIST; 43136b9ea5a6SRoopa Prabhu 43146b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43158d1c802bSDavid Ahern /* check if fib6_info already exists */ 43168d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 43176b9ea5a6SRoopa Prabhu return err; 43186b9ea5a6SRoopa Prabhu } 43196b9ea5a6SRoopa Prabhu 43206b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43216b9ea5a6SRoopa Prabhu if (!nh) 43226b9ea5a6SRoopa Prabhu return -ENOMEM; 43238d1c802bSDavid Ahern nh->fib6_info = rt; 4324d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, r_cfg); 43256b9ea5a6SRoopa Prabhu if (err) { 43266b9ea5a6SRoopa Prabhu kfree(nh); 43276b9ea5a6SRoopa Prabhu return err; 43286b9ea5a6SRoopa Prabhu } 43296b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43306b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43316b9ea5a6SRoopa Prabhu 43326b9ea5a6SRoopa Prabhu return 0; 43336b9ea5a6SRoopa Prabhu } 43346b9ea5a6SRoopa Prabhu 43358d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43368d1c802bSDavid Ahern struct fib6_info *rt_last, 43373b1137feSDavid Ahern struct nl_info *info, 43383b1137feSDavid Ahern __u16 nlflags) 43393b1137feSDavid Ahern { 43403b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43413b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43423b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43433b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43443b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43453b1137feSDavid Ahern */ 434693c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 434793c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43488d1c802bSDavid Ahern struct fib6_info, 434993c2fb25SDavid Ahern fib6_siblings); 43503b1137feSDavid Ahern } 43513b1137feSDavid Ahern 43523b1137feSDavid Ahern if (rt) 43533b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43543b1137feSDavid Ahern } 43553b1137feSDavid Ahern 4356333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4357333c4301SDavid Ahern struct netlink_ext_ack *extack) 435851ebd318SNicolas Dichtel { 43598d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43603b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 436151ebd318SNicolas Dichtel struct fib6_config r_cfg; 436251ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43638d1c802bSDavid Ahern struct fib6_info *rt; 43646b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43656b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43663b1137feSDavid Ahern __u16 nlflags; 436751ebd318SNicolas Dichtel int remaining; 436851ebd318SNicolas Dichtel int attrlen; 43696b9ea5a6SRoopa Prabhu int err = 1; 43706b9ea5a6SRoopa Prabhu int nhn = 0; 43716b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43726b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43736b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 437451ebd318SNicolas Dichtel 43753b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43763b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43773b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43783b1137feSDavid Ahern 437935f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 438051ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 438151ebd318SNicolas Dichtel 43826b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43838d1c802bSDavid Ahern * fib6_info structs per nexthop 43846b9ea5a6SRoopa Prabhu */ 438551ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 438651ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 438751ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 438851ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 438951ebd318SNicolas Dichtel 439051ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 439151ebd318SNicolas Dichtel if (attrlen > 0) { 439251ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 439351ebd318SNicolas Dichtel 439451ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 439551ebd318SNicolas Dichtel if (nla) { 439667b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 439751ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 439851ebd318SNicolas Dichtel } 439919e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 440019e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 440119e42e45SRoopa Prabhu if (nla) 440219e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 440351ebd318SNicolas Dichtel } 44046b9ea5a6SRoopa Prabhu 440568e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4406acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 44078c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 44088c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 44098c5b83f0SRoopa Prabhu rt = NULL; 44106b9ea5a6SRoopa Prabhu goto cleanup; 44118c5b83f0SRoopa Prabhu } 4412b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4413b5d2d75eSDavid Ahern err = -EINVAL; 4414b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4415b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4416b5d2d75eSDavid Ahern fib6_info_release(rt); 4417b5d2d75eSDavid Ahern goto cleanup; 4418b5d2d75eSDavid Ahern } 44196b9ea5a6SRoopa Prabhu 44205e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4421398958aeSIdo Schimmel 4422d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4423d4ead6b3SDavid Ahern rt, &r_cfg); 442451ebd318SNicolas Dichtel if (err) { 442593531c67SDavid Ahern fib6_info_release(rt); 44266b9ea5a6SRoopa Prabhu goto cleanup; 442751ebd318SNicolas Dichtel } 44286b9ea5a6SRoopa Prabhu 44296b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 443051ebd318SNicolas Dichtel } 44316b9ea5a6SRoopa Prabhu 44323b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44333b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44343b1137feSDavid Ahern * the full route when done 44353b1137feSDavid Ahern */ 44363b1137feSDavid Ahern info->skip_notify = 1; 44373b1137feSDavid Ahern 44386b9ea5a6SRoopa Prabhu err_nh = NULL; 44396b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44408d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44418d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44423b1137feSDavid Ahern 4443f7225172SDavid Ahern if (!err) { 4444f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4445f7225172SDavid Ahern rt_last = nh->fib6_info; 4446f7225172SDavid Ahern 44476b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4448f7225172SDavid Ahern if (!rt_notif) 44498d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4450f7225172SDavid Ahern } 44516b9ea5a6SRoopa Prabhu 44528d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44538d1c802bSDavid Ahern nh->fib6_info = NULL; 44546b9ea5a6SRoopa Prabhu if (err) { 44556b9ea5a6SRoopa Prabhu if (replace && nhn) 44566b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 44576b9ea5a6SRoopa Prabhu err_nh = nh; 44586b9ea5a6SRoopa Prabhu goto add_errout; 44596b9ea5a6SRoopa Prabhu } 44606b9ea5a6SRoopa Prabhu 44611a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 446227596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 446327596472SMichal Kubeček * we have already failed to add the first nexthop: 446427596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 446527596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 446627596472SMichal Kubeček * be added to it. 44671a72418bSNicolas Dichtel */ 446827596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 446927596472SMichal Kubeček NLM_F_REPLACE); 44706b9ea5a6SRoopa Prabhu nhn++; 44716b9ea5a6SRoopa Prabhu } 44726b9ea5a6SRoopa Prabhu 44733b1137feSDavid Ahern /* success ... tell user about new route */ 44743b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44756b9ea5a6SRoopa Prabhu goto cleanup; 44766b9ea5a6SRoopa Prabhu 44776b9ea5a6SRoopa Prabhu add_errout: 44783b1137feSDavid Ahern /* send notification for routes that were added so that 44793b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44803b1137feSDavid Ahern * coherent 44813b1137feSDavid Ahern */ 44823b1137feSDavid Ahern if (rt_notif) 44833b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44843b1137feSDavid Ahern 44856b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44866b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44876b9ea5a6SRoopa Prabhu if (err_nh == nh) 44886b9ea5a6SRoopa Prabhu break; 4489333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44906b9ea5a6SRoopa Prabhu } 44916b9ea5a6SRoopa Prabhu 44926b9ea5a6SRoopa Prabhu cleanup: 44936b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44948d1c802bSDavid Ahern if (nh->fib6_info) 44958d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44966b9ea5a6SRoopa Prabhu list_del(&nh->next); 44976b9ea5a6SRoopa Prabhu kfree(nh); 44986b9ea5a6SRoopa Prabhu } 44996b9ea5a6SRoopa Prabhu 45006b9ea5a6SRoopa Prabhu return err; 45016b9ea5a6SRoopa Prabhu } 45026b9ea5a6SRoopa Prabhu 4503333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4504333c4301SDavid Ahern struct netlink_ext_ack *extack) 45056b9ea5a6SRoopa Prabhu { 45066b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 45076b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 45086b9ea5a6SRoopa Prabhu int remaining; 45096b9ea5a6SRoopa Prabhu int attrlen; 45106b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 45116b9ea5a6SRoopa Prabhu 45126b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 45136b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 45146b9ea5a6SRoopa Prabhu 45156b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 45166b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 45176b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 45186b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 45196b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 45206b9ea5a6SRoopa Prabhu 45216b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45226b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45236b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45246b9ea5a6SRoopa Prabhu 45256b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45266b9ea5a6SRoopa Prabhu if (nla) { 45276b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45286b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45296b9ea5a6SRoopa Prabhu } 45306b9ea5a6SRoopa Prabhu } 4531333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45326b9ea5a6SRoopa Prabhu if (err) 45336b9ea5a6SRoopa Prabhu last_err = err; 45346b9ea5a6SRoopa Prabhu 453551ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 453651ebd318SNicolas Dichtel } 453751ebd318SNicolas Dichtel 453851ebd318SNicolas Dichtel return last_err; 453951ebd318SNicolas Dichtel } 454051ebd318SNicolas Dichtel 4541c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4542c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45431da177e4SLinus Torvalds { 454486872cb5SThomas Graf struct fib6_config cfg; 454586872cb5SThomas Graf int err; 45461da177e4SLinus Torvalds 4547333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 454886872cb5SThomas Graf if (err < 0) 454986872cb5SThomas Graf return err; 455086872cb5SThomas Graf 455151ebd318SNicolas Dichtel if (cfg.fc_mp) 4552333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45530ae81335SDavid Ahern else { 45540ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4555333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45561da177e4SLinus Torvalds } 45570ae81335SDavid Ahern } 45581da177e4SLinus Torvalds 4559c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4560c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45611da177e4SLinus Torvalds { 456286872cb5SThomas Graf struct fib6_config cfg; 456386872cb5SThomas Graf int err; 45641da177e4SLinus Torvalds 4565333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 456686872cb5SThomas Graf if (err < 0) 456786872cb5SThomas Graf return err; 456886872cb5SThomas Graf 456951ebd318SNicolas Dichtel if (cfg.fc_mp) 4570333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 457151ebd318SNicolas Dichtel else 4572acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45731da177e4SLinus Torvalds } 45741da177e4SLinus Torvalds 45758d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4576339bf98fSThomas Graf { 4577beb1afacSDavid Ahern int nexthop_len = 0; 4578beb1afacSDavid Ahern 457993c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4580beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4581beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4582beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 45835e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4584beb1afacSDavid Ahern 458593c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4586beb1afacSDavid Ahern } 4587beb1afacSDavid Ahern 4588339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4589339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4590339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4591339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4592339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4593339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4594339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4595339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4596339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45976a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4598ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4599c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 460019e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 46015e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4602beb1afacSDavid Ahern + nexthop_len; 4603beb1afacSDavid Ahern } 4604beb1afacSDavid Ahern 46058d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 46065be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4607beb1afacSDavid Ahern { 46085e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4609f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4610f9d882eaSIdo Schimmel 46115e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4612beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4613dcd1f572SDavid Ahern 4614dcd1f572SDavid Ahern rcu_read_lock(); 4615dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4616beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4617dcd1f572SDavid Ahern rcu_read_unlock(); 4618beb1afacSDavid Ahern } 4619beb1afacSDavid Ahern 462093c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 46215e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4622beb1afacSDavid Ahern goto nla_put_failure; 4623beb1afacSDavid Ahern } 4624beb1afacSDavid Ahern 46255e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 46265e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 462761e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 462861e4d01eSIdo Schimmel 46295be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 46305e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 46315e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4632beb1afacSDavid Ahern goto nla_put_failure; 4633beb1afacSDavid Ahern 46345e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 46355e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4636beb1afacSDavid Ahern goto nla_put_failure; 4637beb1afacSDavid Ahern 4638beb1afacSDavid Ahern return 0; 4639beb1afacSDavid Ahern 4640beb1afacSDavid Ahern nla_put_failure: 4641beb1afacSDavid Ahern return -EMSGSIZE; 4642beb1afacSDavid Ahern } 4643beb1afacSDavid Ahern 46445be083ceSDavid Ahern /* add multipath next hop */ 46458d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4646beb1afacSDavid Ahern { 46475e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4648beb1afacSDavid Ahern struct rtnexthop *rtnh; 4649beb1afacSDavid Ahern unsigned int flags = 0; 4650beb1afacSDavid Ahern 4651beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4652beb1afacSDavid Ahern if (!rtnh) 4653beb1afacSDavid Ahern goto nla_put_failure; 4654beb1afacSDavid Ahern 46555e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 46565e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4657beb1afacSDavid Ahern 46585be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4659beb1afacSDavid Ahern goto nla_put_failure; 4660beb1afacSDavid Ahern 4661beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4662beb1afacSDavid Ahern 4663beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4664beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4665beb1afacSDavid Ahern 4666beb1afacSDavid Ahern return 0; 4667beb1afacSDavid Ahern 4668beb1afacSDavid Ahern nla_put_failure: 4669beb1afacSDavid Ahern return -EMSGSIZE; 4670339bf98fSThomas Graf } 4671339bf98fSThomas Graf 4672d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46738d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4674d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 467515e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4676f8cfe2ceSDavid Ahern unsigned int flags) 46771da177e4SLinus Torvalds { 467822d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 467922d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 468022d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46811da177e4SLinus Torvalds struct nlmsghdr *nlh; 468222d0bd82SXin Long struct rtmsg *rtm; 4683d4ead6b3SDavid Ahern long expires = 0; 46841da177e4SLinus Torvalds 468515e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 468638308473SDavid S. Miller if (!nlh) 468726932566SPatrick McHardy return -EMSGSIZE; 46882d7202bfSThomas Graf 468922d0bd82SXin Long if (rt6) { 469022d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 469122d0bd82SXin Long rt6_src = &rt6->rt6i_src; 469222d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 469322d0bd82SXin Long } else { 469422d0bd82SXin Long rt6_dst = &rt->fib6_dst; 469522d0bd82SXin Long rt6_src = &rt->fib6_src; 469622d0bd82SXin Long rt6_flags = rt->fib6_flags; 469722d0bd82SXin Long } 469822d0bd82SXin Long 46992d7202bfSThomas Graf rtm = nlmsg_data(nlh); 47001da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 470122d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 470222d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 47031da177e4SLinus Torvalds rtm->rtm_tos = 0; 470493c2fb25SDavid Ahern if (rt->fib6_table) 470593c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4706c71099acSThomas Graf else 47079e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 47089e762a4aSPatrick McHardy rtm->rtm_table = table; 4709c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4710c78679e8SDavid S. Miller goto nla_put_failure; 4711e8478e80SDavid Ahern 4712e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 47131da177e4SLinus Torvalds rtm->rtm_flags = 0; 47141da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 471593c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 47161da177e4SLinus Torvalds 471722d0bd82SXin Long if (rt6_flags & RTF_CACHE) 47181da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 47191da177e4SLinus Torvalds 4720d4ead6b3SDavid Ahern if (dest) { 4721d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4722c78679e8SDavid S. Miller goto nla_put_failure; 47231da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 47241da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 472522d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4726c78679e8SDavid S. Miller goto nla_put_failure; 47271da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 47281da177e4SLinus Torvalds if (src) { 4729930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4730c78679e8SDavid S. Miller goto nla_put_failure; 47311da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4732c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 473322d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4734c78679e8SDavid S. Miller goto nla_put_failure; 47351da177e4SLinus Torvalds #endif 47367bc570c8SYOSHIFUJI Hideaki if (iif) { 47377bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 473822d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4739fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47402cf75070SNikolay Aleksandrov 47417bc570c8SYOSHIFUJI Hideaki if (err == 0) 47427bc570c8SYOSHIFUJI Hideaki return 0; 4743fd61c6baSDavid Ahern if (err < 0) 47447bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47457bc570c8SYOSHIFUJI Hideaki } else 47467bc570c8SYOSHIFUJI Hideaki #endif 4747c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4748c78679e8SDavid S. Miller goto nla_put_failure; 4749d4ead6b3SDavid Ahern } else if (dest) { 47501da177e4SLinus Torvalds struct in6_addr saddr_buf; 4751d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4752930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4753c78679e8SDavid S. Miller goto nla_put_failure; 4754c3968a85SDaniel Walter } 4755c3968a85SDaniel Walter 475693c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4757c3968a85SDaniel Walter struct in6_addr saddr_buf; 475893c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4759930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4760c78679e8SDavid S. Miller goto nla_put_failure; 47611da177e4SLinus Torvalds } 47622d7202bfSThomas Graf 4763d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4764d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47652d7202bfSThomas Graf goto nla_put_failure; 47662d7202bfSThomas Graf 476793c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4768beb1afacSDavid Ahern goto nla_put_failure; 4769beb1afacSDavid Ahern 4770beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4771beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4772beb1afacSDavid Ahern */ 477322d0bd82SXin Long if (rt6) { 477422d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 477522d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 477622d0bd82SXin Long goto nla_put_failure; 477722d0bd82SXin Long 477822d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 477922d0bd82SXin Long goto nla_put_failure; 478022d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47818d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4782beb1afacSDavid Ahern struct nlattr *mp; 4783beb1afacSDavid Ahern 4784beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4785beb1afacSDavid Ahern if (!mp) 4786beb1afacSDavid Ahern goto nla_put_failure; 4787beb1afacSDavid Ahern 4788beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4789beb1afacSDavid Ahern goto nla_put_failure; 4790beb1afacSDavid Ahern 4791beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 479293c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4793beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 479494f826b8SEric Dumazet goto nla_put_failure; 479594f826b8SEric Dumazet } 47962d7202bfSThomas Graf 4797beb1afacSDavid Ahern nla_nest_end(skb, mp); 4798beb1afacSDavid Ahern } else { 47995be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4800c78679e8SDavid S. Miller goto nla_put_failure; 4801beb1afacSDavid Ahern } 48028253947eSLi Wei 480322d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 480414895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 480514895687SDavid Ahern expires -= jiffies; 480614895687SDavid Ahern } 480769cdf8f9SYOSHIFUJI Hideaki 4808d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4809e3703b3dSThomas Graf goto nla_put_failure; 48101da177e4SLinus Torvalds 481122d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4812c78ba6d6SLubomir Rintel goto nla_put_failure; 4813c78ba6d6SLubomir Rintel 481419e42e45SRoopa Prabhu 4815053c095aSJohannes Berg nlmsg_end(skb, nlh); 4816053c095aSJohannes Berg return 0; 48172d7202bfSThomas Graf 48182d7202bfSThomas Graf nla_put_failure: 481926932566SPatrick McHardy nlmsg_cancel(skb, nlh); 482026932566SPatrick McHardy return -EMSGSIZE; 48211da177e4SLinus Torvalds } 48221da177e4SLinus Torvalds 48238d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 48241da177e4SLinus Torvalds { 48251da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 48261f17e2f2SDavid Ahern struct net *net = arg->net; 48271f17e2f2SDavid Ahern 4828421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 48291f17e2f2SDavid Ahern return 0; 48301da177e4SLinus Torvalds 48312d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 48322d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4833f8cfe2ceSDavid Ahern 4834f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4835f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 483693c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4837f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4838f8cfe2ceSDavid Ahern return 1; 4839f8cfe2ceSDavid Ahern } 4840f8cfe2ceSDavid Ahern } 48411da177e4SLinus Torvalds 4842d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4843d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 4844d4ead6b3SDavid Ahern arg->cb->nlh->nlmsg_seq, NLM_F_MULTI); 48451da177e4SLinus Torvalds } 48461da177e4SLinus Torvalds 4847c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4848c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48491da177e4SLinus Torvalds { 48503b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4851ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 485218c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4853a68886a6SDavid Ahern struct fib6_info *from; 485418c3a61cSRoopa Prabhu struct dst_entry *dst; 48551da177e4SLinus Torvalds struct rt6_info *rt; 4856ab364a6fSThomas Graf struct sk_buff *skb; 4857ab364a6fSThomas Graf struct rtmsg *rtm; 48584c9483b2SDavid S. Miller struct flowi6 fl6; 485918c3a61cSRoopa Prabhu bool fibmatch; 4860ab364a6fSThomas Graf 4861fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4862c21ef3e3SDavid Ahern extack); 4863ab364a6fSThomas Graf if (err < 0) 4864ab364a6fSThomas Graf goto errout; 4865ab364a6fSThomas Graf 4866ab364a6fSThomas Graf err = -EINVAL; 48674c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 486838b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 486938b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 487018c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4871ab364a6fSThomas Graf 4872ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4873ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4874ab364a6fSThomas Graf goto errout; 4875ab364a6fSThomas Graf 48764e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4877ab364a6fSThomas Graf } 4878ab364a6fSThomas Graf 4879ab364a6fSThomas Graf if (tb[RTA_DST]) { 4880ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4881ab364a6fSThomas Graf goto errout; 4882ab364a6fSThomas Graf 48834e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4884ab364a6fSThomas Graf } 4885ab364a6fSThomas Graf 4886ab364a6fSThomas Graf if (tb[RTA_IIF]) 4887ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4888ab364a6fSThomas Graf 4889ab364a6fSThomas Graf if (tb[RTA_OIF]) 489072331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4891ab364a6fSThomas Graf 48922e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48932e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48942e47b291SLorenzo Colitti 4895622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4896622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4897622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4898622ec2c9SLorenzo Colitti else 4899622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4900622ec2c9SLorenzo Colitti 4901eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4902eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4903eacb9384SRoopa Prabhu 4904eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4905eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4906eacb9384SRoopa Prabhu 4907eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4908eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 4909eacb9384SRoopa Prabhu &fl6.flowi6_proto, extack); 4910eacb9384SRoopa Prabhu if (err) 4911eacb9384SRoopa Prabhu goto errout; 4912eacb9384SRoopa Prabhu } 4913eacb9384SRoopa Prabhu 4914ab364a6fSThomas Graf if (iif) { 4915ab364a6fSThomas Graf struct net_device *dev; 491672331bc0SShmulik Ladkani int flags = 0; 491772331bc0SShmulik Ladkani 4918121622dbSFlorian Westphal rcu_read_lock(); 4919121622dbSFlorian Westphal 4920121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4921ab364a6fSThomas Graf if (!dev) { 4922121622dbSFlorian Westphal rcu_read_unlock(); 4923ab364a6fSThomas Graf err = -ENODEV; 4924ab364a6fSThomas Graf goto errout; 4925ab364a6fSThomas Graf } 492672331bc0SShmulik Ladkani 492772331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 492872331bc0SShmulik Ladkani 492972331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 493072331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 493172331bc0SShmulik Ladkani 4932b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4933121622dbSFlorian Westphal 4934121622dbSFlorian Westphal rcu_read_unlock(); 493572331bc0SShmulik Ladkani } else { 493672331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 493772331bc0SShmulik Ladkani 493818c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 493918c3a61cSRoopa Prabhu } 494018c3a61cSRoopa Prabhu 494118c3a61cSRoopa Prabhu 494218c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 494318c3a61cSRoopa Prabhu if (rt->dst.error) { 494418c3a61cSRoopa Prabhu err = rt->dst.error; 494518c3a61cSRoopa Prabhu ip6_rt_put(rt); 494618c3a61cSRoopa Prabhu goto errout; 4947ab364a6fSThomas Graf } 49481da177e4SLinus Torvalds 49499d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49509d6acb3bSWANG Cong err = rt->dst.error; 49519d6acb3bSWANG Cong ip6_rt_put(rt); 49529d6acb3bSWANG Cong goto errout; 49539d6acb3bSWANG Cong } 49549d6acb3bSWANG Cong 49551da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 495638308473SDavid S. Miller if (!skb) { 495794e187c0SAmerigo Wang ip6_rt_put(rt); 4958ab364a6fSThomas Graf err = -ENOBUFS; 4959ab364a6fSThomas Graf goto errout; 4960ab364a6fSThomas Graf } 49611da177e4SLinus Torvalds 4962d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4963a68886a6SDavid Ahern 4964a68886a6SDavid Ahern rcu_read_lock(); 4965a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4966a68886a6SDavid Ahern 496718c3a61cSRoopa Prabhu if (fibmatch) 4968a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 496918c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 497018c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 497118c3a61cSRoopa Prabhu else 4972a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4973a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4974d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4975d4ead6b3SDavid Ahern 0); 4976a68886a6SDavid Ahern rcu_read_unlock(); 4977a68886a6SDavid Ahern 49781da177e4SLinus Torvalds if (err < 0) { 4979ab364a6fSThomas Graf kfree_skb(skb); 4980ab364a6fSThomas Graf goto errout; 49811da177e4SLinus Torvalds } 49821da177e4SLinus Torvalds 498315e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4984ab364a6fSThomas Graf errout: 49851da177e4SLinus Torvalds return err; 49861da177e4SLinus Torvalds } 49871da177e4SLinus Torvalds 49888d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 498937a1d361SRoopa Prabhu unsigned int nlm_flags) 49901da177e4SLinus Torvalds { 49911da177e4SLinus Torvalds struct sk_buff *skb; 49925578689aSDaniel Lezcano struct net *net = info->nl_net; 4993528c4cebSDenis V. Lunev u32 seq; 4994528c4cebSDenis V. Lunev int err; 49950d51aa80SJamal Hadi Salim 4996528c4cebSDenis V. Lunev err = -ENOBUFS; 499738308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 499886872cb5SThomas Graf 499919e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 500038308473SDavid S. Miller if (!skb) 500121713ebcSThomas Graf goto errout; 50021da177e4SLinus Torvalds 5003d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5004f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 500526932566SPatrick McHardy if (err < 0) { 500626932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 500726932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 500826932566SPatrick McHardy kfree_skb(skb); 500926932566SPatrick McHardy goto errout; 501026932566SPatrick McHardy } 501115e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 50125578689aSDaniel Lezcano info->nlh, gfp_any()); 50131ce85fe4SPablo Neira Ayuso return; 501421713ebcSThomas Graf errout: 501521713ebcSThomas Graf if (err < 0) 50165578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 50171da177e4SLinus Torvalds } 50181da177e4SLinus Torvalds 50198ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5020351638e7SJiri Pirko unsigned long event, void *ptr) 50218ed67789SDaniel Lezcano { 5022351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5023c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50248ed67789SDaniel Lezcano 5025242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5026242d3a49SWANG Cong return NOTIFY_OK; 5027242d3a49SWANG Cong 5028242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5029421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 5030d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50318ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50328ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5033d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50348ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5035d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50368ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50378ed67789SDaniel Lezcano #endif 503876da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 503976da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 504076da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 504176da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 504276da0704SWANG Cong */ 504312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5044242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 504512d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 504612d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5047242d3a49SWANG Cong #endif 50488ed67789SDaniel Lezcano } 50498ed67789SDaniel Lezcano 50508ed67789SDaniel Lezcano return NOTIFY_OK; 50518ed67789SDaniel Lezcano } 50528ed67789SDaniel Lezcano 50531da177e4SLinus Torvalds /* 50541da177e4SLinus Torvalds * /proc 50551da177e4SLinus Torvalds */ 50561da177e4SLinus Torvalds 50571da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50581da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50591da177e4SLinus Torvalds { 506069ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50611da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 506269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 506369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 506481eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 506569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 506669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5067fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 506869ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50691da177e4SLinus Torvalds 50701da177e4SLinus Torvalds return 0; 50711da177e4SLinus Torvalds } 50721da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50731da177e4SLinus Torvalds 50741da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50751da177e4SLinus Torvalds 50761da177e4SLinus Torvalds static 5077fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50781da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50791da177e4SLinus Torvalds { 5080c486da34SLucian Adrian Grijincu struct net *net; 5081c486da34SLucian Adrian Grijincu int delay; 5082c486da34SLucian Adrian Grijincu if (!write) 5083c486da34SLucian Adrian Grijincu return -EINVAL; 5084c486da34SLucian Adrian Grijincu 5085c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5086c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 50878d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 50882ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50891da177e4SLinus Torvalds return 0; 50901da177e4SLinus Torvalds } 50911da177e4SLinus Torvalds 5092fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 50931da177e4SLinus Torvalds { 50941da177e4SLinus Torvalds .procname = "flush", 50954990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 50961da177e4SLinus Torvalds .maxlen = sizeof(int), 509789c8b3a1SDave Jones .mode = 0200, 50986d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 50991da177e4SLinus Torvalds }, 51001da177e4SLinus Torvalds { 51011da177e4SLinus Torvalds .procname = "gc_thresh", 51029a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 51031da177e4SLinus Torvalds .maxlen = sizeof(int), 51041da177e4SLinus Torvalds .mode = 0644, 51056d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51061da177e4SLinus Torvalds }, 51071da177e4SLinus Torvalds { 51081da177e4SLinus Torvalds .procname = "max_size", 51094990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 51101da177e4SLinus Torvalds .maxlen = sizeof(int), 51111da177e4SLinus Torvalds .mode = 0644, 51126d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 51131da177e4SLinus Torvalds }, 51141da177e4SLinus Torvalds { 51151da177e4SLinus Torvalds .procname = "gc_min_interval", 51164990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51171da177e4SLinus Torvalds .maxlen = sizeof(int), 51181da177e4SLinus Torvalds .mode = 0644, 51196d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51201da177e4SLinus Torvalds }, 51211da177e4SLinus Torvalds { 51221da177e4SLinus Torvalds .procname = "gc_timeout", 51234990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51241da177e4SLinus Torvalds .maxlen = sizeof(int), 51251da177e4SLinus Torvalds .mode = 0644, 51266d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51271da177e4SLinus Torvalds }, 51281da177e4SLinus Torvalds { 51291da177e4SLinus Torvalds .procname = "gc_interval", 51304990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51311da177e4SLinus Torvalds .maxlen = sizeof(int), 51321da177e4SLinus Torvalds .mode = 0644, 51336d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51341da177e4SLinus Torvalds }, 51351da177e4SLinus Torvalds { 51361da177e4SLinus Torvalds .procname = "gc_elasticity", 51374990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51381da177e4SLinus Torvalds .maxlen = sizeof(int), 51391da177e4SLinus Torvalds .mode = 0644, 5140f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51411da177e4SLinus Torvalds }, 51421da177e4SLinus Torvalds { 51431da177e4SLinus Torvalds .procname = "mtu_expires", 51444990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51451da177e4SLinus Torvalds .maxlen = sizeof(int), 51461da177e4SLinus Torvalds .mode = 0644, 51476d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51481da177e4SLinus Torvalds }, 51491da177e4SLinus Torvalds { 51501da177e4SLinus Torvalds .procname = "min_adv_mss", 51514990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51521da177e4SLinus Torvalds .maxlen = sizeof(int), 51531da177e4SLinus Torvalds .mode = 0644, 5154f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51551da177e4SLinus Torvalds }, 51561da177e4SLinus Torvalds { 51571da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51584990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51591da177e4SLinus Torvalds .maxlen = sizeof(int), 51601da177e4SLinus Torvalds .mode = 0644, 51616d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51621da177e4SLinus Torvalds }, 5163f8572d8fSEric W. Biederman { } 51641da177e4SLinus Torvalds }; 51651da177e4SLinus Torvalds 51662c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5167760f2d01SDaniel Lezcano { 5168760f2d01SDaniel Lezcano struct ctl_table *table; 5169760f2d01SDaniel Lezcano 5170760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5171760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5172760f2d01SDaniel Lezcano GFP_KERNEL); 51735ee09105SYOSHIFUJI Hideaki 51745ee09105SYOSHIFUJI Hideaki if (table) { 51755ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5176c486da34SLucian Adrian Grijincu table[0].extra1 = net; 517786393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51785ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51795ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51805ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 51815ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 51825ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 51835ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 51845ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 51859c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 5186464dc801SEric W. Biederman 5187464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5188464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5189464dc801SEric W. Biederman table[0].procname = NULL; 51905ee09105SYOSHIFUJI Hideaki } 51915ee09105SYOSHIFUJI Hideaki 5192760f2d01SDaniel Lezcano return table; 5193760f2d01SDaniel Lezcano } 51941da177e4SLinus Torvalds #endif 51951da177e4SLinus Torvalds 51962c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5197cdb18761SDaniel Lezcano { 5198633d424bSPavel Emelyanov int ret = -ENOMEM; 51998ed67789SDaniel Lezcano 520086393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 520186393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5202f2fc6a54SBenjamin Thery 5203fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5204fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5205fc66f95cSEric Dumazet 5206421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5207421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5208421842edSDavid Ahern GFP_KERNEL); 5209421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5210421842edSDavid Ahern goto out_ip6_dst_entries; 5211421842edSDavid Ahern 52128ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 52138ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 52148ed67789SDaniel Lezcano GFP_KERNEL); 52158ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5216421842edSDavid Ahern goto out_fib6_null_entry; 5217d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 521862fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 521962fa8a84SDavid S. Miller ip6_template_metrics, true); 52208ed67789SDaniel Lezcano 52218ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5222feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52238ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52248ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52258ed67789SDaniel Lezcano GFP_KERNEL); 522668fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 522768fffc67SPeter Zijlstra goto out_ip6_null_entry; 5228d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 522962fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 523062fa8a84SDavid S. Miller ip6_template_metrics, true); 52318ed67789SDaniel Lezcano 52328ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52338ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52348ed67789SDaniel Lezcano GFP_KERNEL); 523568fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 523668fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5237d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 523862fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 523962fa8a84SDavid S. Miller ip6_template_metrics, true); 52408ed67789SDaniel Lezcano #endif 52418ed67789SDaniel Lezcano 5242b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5243b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5244b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5245b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5246b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5247b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5248b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5249b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 5250b339a47cSPeter Zijlstra 52516891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52526891a346SBenjamin Thery 52538ed67789SDaniel Lezcano ret = 0; 52548ed67789SDaniel Lezcano out: 52558ed67789SDaniel Lezcano return ret; 5256f2fc6a54SBenjamin Thery 525768fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 525868fffc67SPeter Zijlstra out_ip6_prohibit_entry: 525968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 526068fffc67SPeter Zijlstra out_ip6_null_entry: 526168fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 526268fffc67SPeter Zijlstra #endif 5263421842edSDavid Ahern out_fib6_null_entry: 5264421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5265fc66f95cSEric Dumazet out_ip6_dst_entries: 5266fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5267f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5268f2fc6a54SBenjamin Thery goto out; 5269cdb18761SDaniel Lezcano } 5270cdb18761SDaniel Lezcano 52712c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5272cdb18761SDaniel Lezcano { 5273421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52748ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52758ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52768ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52778ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 52788ed67789SDaniel Lezcano #endif 527941bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5280cdb18761SDaniel Lezcano } 5281cdb18761SDaniel Lezcano 5282d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5283d189634eSThomas Graf { 5284d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5285c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5286c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 52873617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 52883617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5289d189634eSThomas Graf #endif 5290d189634eSThomas Graf return 0; 5291d189634eSThomas Graf } 5292d189634eSThomas Graf 5293d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5294d189634eSThomas Graf { 5295d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5296ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5297ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5298d189634eSThomas Graf #endif 5299d189634eSThomas Graf } 5300d189634eSThomas Graf 5301cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5302cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5303cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5304cdb18761SDaniel Lezcano }; 5305cdb18761SDaniel Lezcano 5306c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5307c3426b47SDavid S. Miller { 5308c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5309c3426b47SDavid S. Miller 5310c3426b47SDavid S. Miller if (!bp) 5311c3426b47SDavid S. Miller return -ENOMEM; 5312c3426b47SDavid S. Miller inet_peer_base_init(bp); 5313c3426b47SDavid S. Miller net->ipv6.peers = bp; 5314c3426b47SDavid S. Miller return 0; 5315c3426b47SDavid S. Miller } 5316c3426b47SDavid S. Miller 5317c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5318c3426b47SDavid S. Miller { 5319c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5320c3426b47SDavid S. Miller 5321c3426b47SDavid S. Miller net->ipv6.peers = NULL; 532256a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5323c3426b47SDavid S. Miller kfree(bp); 5324c3426b47SDavid S. Miller } 5325c3426b47SDavid S. Miller 53262b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5327c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5328c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5329c3426b47SDavid S. Miller }; 5330c3426b47SDavid S. Miller 5331d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5332d189634eSThomas Graf .init = ip6_route_net_init_late, 5333d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5334d189634eSThomas Graf }; 5335d189634eSThomas Graf 53368ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53378ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5338242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53398ed67789SDaniel Lezcano }; 53408ed67789SDaniel Lezcano 53412f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53422f460933SWANG Cong { 53432f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53442f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53452f460933SWANG Cong * manually for init_net */ 5346421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 53472f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53482f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53492f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53502f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53512f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53522f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53532f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53542f460933SWANG Cong #endif 53552f460933SWANG Cong } 53562f460933SWANG Cong 5357433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53581da177e4SLinus Torvalds { 5359433d49c3SDaniel Lezcano int ret; 53608d0b94afSMartin KaFai Lau int cpu; 5361433d49c3SDaniel Lezcano 53629a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53639a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53649a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53659a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53669a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5367c19a28e1SFernando Carrijo goto out; 536814e50e57SDavid S. Miller 5369fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53708ed67789SDaniel Lezcano if (ret) 5371bdb3289fSDaniel Lezcano goto out_kmem_cache; 5372bdb3289fSDaniel Lezcano 5373c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5374c3426b47SDavid S. Miller if (ret) 5375e8803b6cSDavid S. Miller goto out_dst_entries; 53762a0c451aSThomas Graf 53777e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 53787e52b33bSDavid S. Miller if (ret) 53797e52b33bSDavid S. Miller goto out_register_inetpeer; 5380c3426b47SDavid S. Miller 53815dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 53825dc121e9SArnaud Ebalard 5383e8803b6cSDavid S. Miller ret = fib6_init(); 5384433d49c3SDaniel Lezcano if (ret) 53858ed67789SDaniel Lezcano goto out_register_subsys; 5386433d49c3SDaniel Lezcano 5387433d49c3SDaniel Lezcano ret = xfrm6_init(); 5388433d49c3SDaniel Lezcano if (ret) 5389e8803b6cSDavid S. Miller goto out_fib6_init; 5390c35b7e72SDaniel Lezcano 5391433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5392433d49c3SDaniel Lezcano if (ret) 5393433d49c3SDaniel Lezcano goto xfrm6_init; 53947e5449c2SDaniel Lezcano 5395d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5396d189634eSThomas Graf if (ret) 5397d189634eSThomas Graf goto fib6_rules_init; 5398d189634eSThomas Graf 539916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 540016feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 540116feebcfSFlorian Westphal if (ret < 0) 540216feebcfSFlorian Westphal goto out_register_late_subsys; 540316feebcfSFlorian Westphal 540416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 540516feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 540616feebcfSFlorian Westphal if (ret < 0) 540716feebcfSFlorian Westphal goto out_register_late_subsys; 540816feebcfSFlorian Westphal 540916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 541016feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 541116feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 541216feebcfSFlorian Westphal if (ret < 0) 5413d189634eSThomas Graf goto out_register_late_subsys; 5414433d49c3SDaniel Lezcano 54158ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5416cdb18761SDaniel Lezcano if (ret) 5417d189634eSThomas Graf goto out_register_late_subsys; 54188ed67789SDaniel Lezcano 54198d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 54208d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 54218d0b94afSMartin KaFai Lau 54228d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54238d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54248d0b94afSMartin KaFai Lau } 54258d0b94afSMartin KaFai Lau 5426433d49c3SDaniel Lezcano out: 5427433d49c3SDaniel Lezcano return ret; 5428433d49c3SDaniel Lezcano 5429d189634eSThomas Graf out_register_late_subsys: 543016feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5431d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5432433d49c3SDaniel Lezcano fib6_rules_init: 5433433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5434433d49c3SDaniel Lezcano xfrm6_init: 5435433d49c3SDaniel Lezcano xfrm6_fini(); 54362a0c451aSThomas Graf out_fib6_init: 54372a0c451aSThomas Graf fib6_gc_cleanup(); 54388ed67789SDaniel Lezcano out_register_subsys: 54398ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54407e52b33bSDavid S. Miller out_register_inetpeer: 54417e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5442fc66f95cSEric Dumazet out_dst_entries: 5443fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5444433d49c3SDaniel Lezcano out_kmem_cache: 5445f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5446433d49c3SDaniel Lezcano goto out; 54471da177e4SLinus Torvalds } 54481da177e4SLinus Torvalds 54491da177e4SLinus Torvalds void ip6_route_cleanup(void) 54501da177e4SLinus Torvalds { 54518ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5452d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5453101367c2SThomas Graf fib6_rules_cleanup(); 54541da177e4SLinus Torvalds xfrm6_fini(); 54551da177e4SLinus Torvalds fib6_gc_cleanup(); 5456c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54578ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 545841bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5459f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54601da177e4SLinus Torvalds } 5461