11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 6251ebd318SNicolas Dichtel #include <net/nexthop.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 1058d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict); 1068d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 107d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1088d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 109d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11016a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11116a16cd3SDavid Ahern unsigned int flags); 1128d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 11335732d01SWei Wang struct in6_addr *daddr, 11435732d01SWei Wang struct in6_addr *saddr); 1151da177e4SLinus Torvalds 11670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1178d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 118b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 119830218c1SDavid Ahern const struct in6_addr *gwaddr, 120830218c1SDavid Ahern struct net_device *dev, 12195c96174SEric Dumazet unsigned int pref); 1228d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 123b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 124830218c1SDavid Ahern const struct in6_addr *gwaddr, 125830218c1SDavid Ahern struct net_device *dev); 12670ceb4f5SYOSHIFUJI Hideaki #endif 12770ceb4f5SYOSHIFUJI Hideaki 1288d0b94afSMartin KaFai Lau struct uncached_list { 1298d0b94afSMartin KaFai Lau spinlock_t lock; 1308d0b94afSMartin KaFai Lau struct list_head head; 1318d0b94afSMartin KaFai Lau }; 1328d0b94afSMartin KaFai Lau 1338d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1348d0b94afSMartin KaFai Lau 135510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1368d0b94afSMartin KaFai Lau { 1378d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1388d0b94afSMartin KaFai Lau 1398d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1408d0b94afSMartin KaFai Lau 1418d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1428d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1438d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1448d0b94afSMartin KaFai Lau } 1458d0b94afSMartin KaFai Lau 146510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1478d0b94afSMartin KaFai Lau { 1488d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1498d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15081eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1518d0b94afSMartin KaFai Lau 1528d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1538d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15481eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1558d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1568d0b94afSMartin KaFai Lau } 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau 1598d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1608d0b94afSMartin KaFai Lau { 1618d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1628d0b94afSMartin KaFai Lau int cpu; 1638d0b94afSMartin KaFai Lau 164e332bc67SEric W. Biederman if (dev == loopback_dev) 165e332bc67SEric W. Biederman return; 166e332bc67SEric W. Biederman 1678d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1688d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1698d0b94afSMartin KaFai Lau struct rt6_info *rt; 1708d0b94afSMartin KaFai Lau 1718d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1728d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1738d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1748d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1758d0b94afSMartin KaFai Lau 176e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1778d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1788d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1798d0b94afSMartin KaFai Lau } 1808d0b94afSMartin KaFai Lau 181e332bc67SEric W. Biederman if (rt_dev == dev) { 1828d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1838d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1848d0b94afSMartin KaFai Lau dev_put(rt_dev); 1858d0b94afSMartin KaFai Lau } 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1888d0b94afSMartin KaFai Lau } 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau 191f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 192f894cbf8SDavid S. Miller struct sk_buff *skb, 193f894cbf8SDavid S. Miller const void *daddr) 19439232973SDavid S. Miller { 195a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19639232973SDavid S. Miller return (const void *) p; 197f894cbf8SDavid S. Miller else if (skb) 198f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 19939232973SDavid S. Miller return daddr; 20039232973SDavid S. Miller } 20139232973SDavid S. Miller 202f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 203f8a1b43bSDavid Ahern struct net_device *dev, 204f894cbf8SDavid S. Miller struct sk_buff *skb, 205f894cbf8SDavid S. Miller const void *daddr) 206d3aaeb38SDavid S. Miller { 20739232973SDavid S. Miller struct neighbour *n; 20839232973SDavid S. Miller 209f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 210f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 211f83c7790SDavid S. Miller if (n) 212f83c7790SDavid S. Miller return n; 213f8a1b43bSDavid Ahern return neigh_create(&nd_tbl, daddr, dev); 214f8a1b43bSDavid Ahern } 215f8a1b43bSDavid Ahern 216f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 217f8a1b43bSDavid Ahern struct sk_buff *skb, 218f8a1b43bSDavid Ahern const void *daddr) 219f8a1b43bSDavid Ahern { 220f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 221f8a1b43bSDavid Ahern 222f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 223f83c7790SDavid S. Miller } 224f83c7790SDavid S. Miller 22563fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22663fca65dSJulian Anastasov { 22763fca65dSJulian Anastasov struct net_device *dev = dst->dev; 22863fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 22963fca65dSJulian Anastasov 230f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23163fca65dSJulian Anastasov if (!daddr) 23263fca65dSJulian Anastasov return; 23363fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23463fca65dSJulian Anastasov return; 23563fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23663fca65dSJulian Anastasov return; 23763fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 23863fca65dSJulian Anastasov } 23963fca65dSJulian Anastasov 2409a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2411da177e4SLinus Torvalds .family = AF_INET6, 2421da177e4SLinus Torvalds .gc = ip6_dst_gc, 2431da177e4SLinus Torvalds .gc_thresh = 1024, 2441da177e4SLinus Torvalds .check = ip6_dst_check, 2450dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 246ebb762f2SSteffen Klassert .mtu = ip6_mtu, 247d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2481da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2491da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2501da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2511da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2521da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2536e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2549f8955ccSEric W. Biederman .local_out = __ip6_local_out, 255f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25663fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2571da177e4SLinus Torvalds }; 2581da177e4SLinus Torvalds 259ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 260ec831ea7SRoland Dreier { 261618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 262618f9bc7SSteffen Klassert 263618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 264ec831ea7SRoland Dreier } 265ec831ea7SRoland Dreier 2666700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2676700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 26814e50e57SDavid S. Miller { 26914e50e57SDavid S. Miller } 27014e50e57SDavid S. Miller 2716700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2726700c270SDavid S. Miller struct sk_buff *skb) 273b587ee3bSDavid S. Miller { 274b587ee3bSDavid S. Miller } 275b587ee3bSDavid S. Miller 27614e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 27714e50e57SDavid S. Miller .family = AF_INET6, 27814e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 27914e50e57SDavid S. Miller .check = ip6_dst_check, 280ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 281214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28214e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 283b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2840a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 285f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28614e50e57SDavid S. Miller }; 28714e50e57SDavid S. Miller 28862fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 28914edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29062fa8a84SDavid S. Miller }; 29162fa8a84SDavid S. Miller 2928d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29393c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29493c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29593c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 29693c2fb25SDavid Ahern .fib6_ref = ATOMIC_INIT(1), 297421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 298421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 299421842edSDavid Ahern }; 300421842edSDavid Ahern 301fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3021da177e4SLinus Torvalds .dst = { 3031da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3041da177e4SLinus Torvalds .__use = 1, 3052c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3061da177e4SLinus Torvalds .error = -ENETUNREACH, 3071da177e4SLinus Torvalds .input = ip6_pkt_discard, 3081da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3091da177e4SLinus Torvalds }, 3101da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3111da177e4SLinus Torvalds }; 3121da177e4SLinus Torvalds 313101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 314101367c2SThomas Graf 315fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 316101367c2SThomas Graf .dst = { 317101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 318101367c2SThomas Graf .__use = 1, 3192c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 320101367c2SThomas Graf .error = -EACCES, 3219ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3229ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 323101367c2SThomas Graf }, 324101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 325101367c2SThomas Graf }; 326101367c2SThomas Graf 327fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 328101367c2SThomas Graf .dst = { 329101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 330101367c2SThomas Graf .__use = 1, 3312c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 332101367c2SThomas Graf .error = -EINVAL, 333352e512cSHerbert Xu .input = dst_discard, 334ede2059dSEric W. Biederman .output = dst_discard_out, 335101367c2SThomas Graf }, 336101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 337101367c2SThomas Graf }; 338101367c2SThomas Graf 339101367c2SThomas Graf #endif 340101367c2SThomas Graf 341ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 342ebfa45f0SMartin KaFai Lau { 343ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 344ebfa45f0SMartin KaFai Lau 345ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 346ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 347ebfa45f0SMartin KaFai Lau } 348ebfa45f0SMartin KaFai Lau 3491da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35093531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 351ad706862SMartin KaFai Lau int flags) 3521da177e4SLinus Torvalds { 35397bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 354b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 355cf911662SDavid S. Miller 35681eb8447SWei Wang if (rt) { 357ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 35881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 35981eb8447SWei Wang } 3608104891bSSteffen Klassert 361cf911662SDavid S. Miller return rt; 3621da177e4SLinus Torvalds } 3639ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 364d52d3997SMartin KaFai Lau 3651da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3661da177e4SLinus Torvalds { 3671da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 368a68886a6SDavid Ahern struct fib6_info *from; 3698d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3701da177e4SLinus Torvalds 3718e2ec639SYan, Zheng dst_destroy_metrics_generic(dst); 3728d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3738d0b94afSMartin KaFai Lau 3748d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37538308473SDavid S. Miller if (idev) { 3761da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3771da177e4SLinus Torvalds in6_dev_put(idev); 3781da177e4SLinus Torvalds } 3791716a961SGao feng 380a68886a6SDavid Ahern rcu_read_lock(); 381a68886a6SDavid Ahern from = rcu_dereference(rt->from); 382a68886a6SDavid Ahern rcu_assign_pointer(rt->from, NULL); 38393531c67SDavid Ahern fib6_info_release(from); 384a68886a6SDavid Ahern rcu_read_unlock(); 385b3419363SDavid S. Miller } 386b3419363SDavid S. Miller 3871da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3881da177e4SLinus Torvalds int how) 3891da177e4SLinus Torvalds { 3901da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3911da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3925a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 393c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3941da177e4SLinus Torvalds 395e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 396e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 39738308473SDavid S. Miller if (loopback_idev) { 3981da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 3991da177e4SLinus Torvalds in6_dev_put(idev); 4001da177e4SLinus Torvalds } 4011da177e4SLinus Torvalds } 40297cac082SDavid S. Miller } 4031da177e4SLinus Torvalds 4045973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4055973fb1eSMartin KaFai Lau { 4065973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4075973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4085973fb1eSMartin KaFai Lau else 4095973fb1eSMartin KaFai Lau return false; 4105973fb1eSMartin KaFai Lau } 4115973fb1eSMartin KaFai Lau 412a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4131da177e4SLinus Torvalds { 414a68886a6SDavid Ahern struct fib6_info *from; 415a68886a6SDavid Ahern 416a68886a6SDavid Ahern from = rcu_dereference(rt->from); 417a68886a6SDavid Ahern 4181716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4191716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 420a50feda5SEric Dumazet return true; 421a68886a6SDavid Ahern } else if (from) { 4221e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 423a68886a6SDavid Ahern fib6_check_expired(from); 4241716a961SGao feng } 425a50feda5SEric Dumazet return false; 4261da177e4SLinus Torvalds } 4271da177e4SLinus Torvalds 4283b290a31SDavid Ahern struct fib6_info *fib6_multipath_select(const struct net *net, 4298d1c802bSDavid Ahern struct fib6_info *match, 43052bd4c0cSNicolas Dichtel struct flowi6 *fl6, int oif, 431b75cc8f9SDavid Ahern const struct sk_buff *skb, 43252bd4c0cSNicolas Dichtel int strict) 43351ebd318SNicolas Dichtel { 4348d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 43551ebd318SNicolas Dichtel 436b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 437b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 438b673d6ccSJakub Sitnicki */ 439b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 440b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 441b673d6ccSJakub Sitnicki 4425e670d84SDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound)) 4433d709f69SIdo Schimmel return match; 444bbfcd776SIdo Schimmel 44593c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44693c2fb25SDavid Ahern fib6_siblings) { 4475e670d84SDavid Ahern int nh_upper_bound; 4485e670d84SDavid Ahern 4495e670d84SDavid Ahern nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound); 4505e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4513d709f69SIdo Schimmel continue; 45252bd4c0cSNicolas Dichtel if (rt6_score_route(sibling, oif, strict) < 0) 45352bd4c0cSNicolas Dichtel break; 45451ebd318SNicolas Dichtel match = sibling; 45551ebd318SNicolas Dichtel break; 45651ebd318SNicolas Dichtel } 4573d709f69SIdo Schimmel 45851ebd318SNicolas Dichtel return match; 45951ebd318SNicolas Dichtel } 46051ebd318SNicolas Dichtel 4611da177e4SLinus Torvalds /* 46266f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4631da177e4SLinus Torvalds */ 4641da177e4SLinus Torvalds 4658d1c802bSDavid Ahern static inline struct fib6_info *rt6_device_match(struct net *net, 4668d1c802bSDavid Ahern struct fib6_info *rt, 467b71d1d42SEric Dumazet const struct in6_addr *saddr, 4681da177e4SLinus Torvalds int oif, 469d420895eSYOSHIFUJI Hideaki int flags) 4701da177e4SLinus Torvalds { 4718d1c802bSDavid Ahern struct fib6_info *sprt; 4721da177e4SLinus Torvalds 4735e670d84SDavid Ahern if (!oif && ipv6_addr_any(saddr) && 4745e670d84SDavid Ahern !(rt->fib6_nh.nh_flags & RTNH_F_DEAD)) 4758067bb8cSIdo Schimmel return rt; 476dd3abc4eSYOSHIFUJI Hideaki 4778fb11a9aSDavid Ahern for (sprt = rt; sprt; sprt = rcu_dereference(sprt->fib6_next)) { 4785e670d84SDavid Ahern const struct net_device *dev = sprt->fib6_nh.nh_dev; 479dd3abc4eSYOSHIFUJI Hideaki 4805e670d84SDavid Ahern if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD) 4818067bb8cSIdo Schimmel continue; 4828067bb8cSIdo Schimmel 483dd3abc4eSYOSHIFUJI Hideaki if (oif) { 4841da177e4SLinus Torvalds if (dev->ifindex == oif) 4851da177e4SLinus Torvalds return sprt; 486dd3abc4eSYOSHIFUJI Hideaki } else { 487dd3abc4eSYOSHIFUJI Hideaki if (ipv6_chk_addr(net, saddr, dev, 488dd3abc4eSYOSHIFUJI Hideaki flags & RT6_LOOKUP_F_IFACE)) 489dd3abc4eSYOSHIFUJI Hideaki return sprt; 490dd3abc4eSYOSHIFUJI Hideaki } 4911da177e4SLinus Torvalds } 4921da177e4SLinus Torvalds 493eea68cd3SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) 494421842edSDavid Ahern return net->ipv6.fib6_null_entry; 4951da177e4SLinus Torvalds 496421842edSDavid Ahern return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt; 4971da177e4SLinus Torvalds } 4981da177e4SLinus Torvalds 49927097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 500c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 501c2f17e82SHannes Frederic Sowa struct work_struct work; 502c2f17e82SHannes Frederic Sowa struct in6_addr target; 503c2f17e82SHannes Frederic Sowa struct net_device *dev; 504c2f17e82SHannes Frederic Sowa }; 505c2f17e82SHannes Frederic Sowa 506c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 507c2f17e82SHannes Frederic Sowa { 508c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 509c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 510c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 511c2f17e82SHannes Frederic Sowa 512c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 513adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 514c2f17e82SHannes Frederic Sowa dev_put(work->dev); 515662f5533SMichael Büsch kfree(work); 516c2f17e82SHannes Frederic Sowa } 517c2f17e82SHannes Frederic Sowa 5188d1c802bSDavid Ahern static void rt6_probe(struct fib6_info *rt) 51927097255SYOSHIFUJI Hideaki { 520990edb42SMartin KaFai Lau struct __rt6_probe_work *work; 5215e670d84SDavid Ahern const struct in6_addr *nh_gw; 522f2c31e32SEric Dumazet struct neighbour *neigh; 5235e670d84SDavid Ahern struct net_device *dev; 5245e670d84SDavid Ahern 52527097255SYOSHIFUJI Hideaki /* 52627097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 52727097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 52827097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 52927097255SYOSHIFUJI Hideaki * 53027097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 53127097255SYOSHIFUJI Hideaki * to no more than one per minute. 53227097255SYOSHIFUJI Hideaki */ 53393c2fb25SDavid Ahern if (!rt || !(rt->fib6_flags & RTF_GATEWAY)) 534fdd6681dSAmerigo Wang return; 5355e670d84SDavid Ahern 5365e670d84SDavid Ahern nh_gw = &rt->fib6_nh.nh_gw; 5375e670d84SDavid Ahern dev = rt->fib6_nh.nh_dev; 5382152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 5395e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5402152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 541dcd1f572SDavid Ahern struct inet6_dev *idev; 542dcd1f572SDavid Ahern 5438d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5448d6c31bfSMartin KaFai Lau goto out; 5458d6c31bfSMartin KaFai Lau 546dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 547990edb42SMartin KaFai Lau work = NULL; 5482152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 549990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 550990edb42SMartin KaFai Lau time_after(jiffies, 551dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 552c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 553990edb42SMartin KaFai Lau if (work) 5547e980569SJiri Benc __neigh_set_probe_once(neigh); 555990edb42SMartin KaFai Lau } 556c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 557990edb42SMartin KaFai Lau } else { 558990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 559990edb42SMartin KaFai Lau } 560c2f17e82SHannes Frederic Sowa 561c2f17e82SHannes Frederic Sowa if (work) { 562c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5635e670d84SDavid Ahern work->target = *nh_gw; 5645e670d84SDavid Ahern dev_hold(dev); 5655e670d84SDavid Ahern work->dev = dev; 566c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 567c2f17e82SHannes Frederic Sowa } 568990edb42SMartin KaFai Lau 5698d6c31bfSMartin KaFai Lau out: 5702152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 571f2c31e32SEric Dumazet } 57227097255SYOSHIFUJI Hideaki #else 5738d1c802bSDavid Ahern static inline void rt6_probe(struct fib6_info *rt) 57427097255SYOSHIFUJI Hideaki { 57527097255SYOSHIFUJI Hideaki } 57627097255SYOSHIFUJI Hideaki #endif 57727097255SYOSHIFUJI Hideaki 5781da177e4SLinus Torvalds /* 579554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 5801da177e4SLinus Torvalds */ 5818d1c802bSDavid Ahern static inline int rt6_check_dev(struct fib6_info *rt, int oif) 5821da177e4SLinus Torvalds { 5835e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 5845e670d84SDavid Ahern 585161980f4SDavid S. Miller if (!oif || dev->ifindex == oif) 586554cfb7eSYOSHIFUJI Hideaki return 2; 587554cfb7eSYOSHIFUJI Hideaki return 0; 5881da177e4SLinus Torvalds } 5891da177e4SLinus Torvalds 5908d1c802bSDavid Ahern static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt) 5911da177e4SLinus Torvalds { 592afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 5935e670d84SDavid Ahern struct neighbour *neigh; 594f2c31e32SEric Dumazet 59593c2fb25SDavid Ahern if (rt->fib6_flags & RTF_NONEXTHOP || 59693c2fb25SDavid Ahern !(rt->fib6_flags & RTF_GATEWAY)) 597afc154e9SHannes Frederic Sowa return RT6_NUD_SUCCEED; 598145a3621SYOSHIFUJI Hideaki / 吉藤英明 599145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6005e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev, 6015e670d84SDavid Ahern &rt->fib6_nh.nh_gw); 602145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 603145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 604554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 605afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 606398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 607a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 608afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6097e980569SJiri Benc else 6107e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 611398bcbebSYOSHIFUJI Hideaki #endif 612145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 613afc154e9SHannes Frederic Sowa } else { 614afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6157e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 616a5a81f0bSPaul Marks } 617145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 618145a3621SYOSHIFUJI Hideaki / 吉藤英明 619a5a81f0bSPaul Marks return ret; 6201da177e4SLinus Torvalds } 6211da177e4SLinus Torvalds 6228d1c802bSDavid Ahern static int rt6_score_route(struct fib6_info *rt, int oif, int strict) 623554cfb7eSYOSHIFUJI Hideaki { 624a5a81f0bSPaul Marks int m; 6254d0c5911SYOSHIFUJI Hideaki 6264d0c5911SYOSHIFUJI Hideaki m = rt6_check_dev(rt, oif); 62777d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 628afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 629ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 63093c2fb25SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2; 631ebacaaa0SYOSHIFUJI Hideaki #endif 632afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) { 633afc154e9SHannes Frederic Sowa int n = rt6_check_neigh(rt); 634afc154e9SHannes Frederic Sowa if (n < 0) 635afc154e9SHannes Frederic Sowa return n; 636afc154e9SHannes Frederic Sowa } 637554cfb7eSYOSHIFUJI Hideaki return m; 638554cfb7eSYOSHIFUJI Hideaki } 639554cfb7eSYOSHIFUJI Hideaki 640dcd1f572SDavid Ahern /* called with rc_read_lock held */ 641dcd1f572SDavid Ahern static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i) 642dcd1f572SDavid Ahern { 643dcd1f572SDavid Ahern const struct net_device *dev = fib6_info_nh_dev(f6i); 644dcd1f572SDavid Ahern bool rc = false; 645dcd1f572SDavid Ahern 646dcd1f572SDavid Ahern if (dev) { 647dcd1f572SDavid Ahern const struct inet6_dev *idev = __in6_dev_get(dev); 648dcd1f572SDavid Ahern 649dcd1f572SDavid Ahern rc = !!idev->cnf.ignore_routes_with_linkdown; 650dcd1f572SDavid Ahern } 651dcd1f572SDavid Ahern 652dcd1f572SDavid Ahern return rc; 653dcd1f572SDavid Ahern } 654dcd1f572SDavid Ahern 6558d1c802bSDavid Ahern static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict, 6568d1c802bSDavid Ahern int *mpri, struct fib6_info *match, 657afc154e9SHannes Frederic Sowa bool *do_rr) 658554cfb7eSYOSHIFUJI Hideaki { 659554cfb7eSYOSHIFUJI Hideaki int m; 660afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66135103d11SAndy Gospodarek 6625e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 6638067bb8cSIdo Schimmel goto out; 6648067bb8cSIdo Schimmel 665dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt) && 6665e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 667d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 66835103d11SAndy Gospodarek goto out; 669554cfb7eSYOSHIFUJI Hideaki 67014895687SDavid Ahern if (fib6_check_expired(rt)) 671f11e6659SDavid S. Miller goto out; 672554cfb7eSYOSHIFUJI Hideaki 673554cfb7eSYOSHIFUJI Hideaki m = rt6_score_route(rt, oif, strict); 6747e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 675afc154e9SHannes Frederic Sowa match_do_rr = true; 676afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6777e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 678f11e6659SDavid S. Miller goto out; 6791da177e4SLinus Torvalds } 680f11e6659SDavid S. Miller 681afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 682afc154e9SHannes Frederic Sowa rt6_probe(rt); 683afc154e9SHannes Frederic Sowa 6847e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 685afc154e9SHannes Frederic Sowa if (m > *mpri) { 686afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 687afc154e9SHannes Frederic Sowa *mpri = m; 688afc154e9SHannes Frederic Sowa match = rt; 689afc154e9SHannes Frederic Sowa } 690f11e6659SDavid S. Miller out: 691f11e6659SDavid S. Miller return match; 6921da177e4SLinus Torvalds } 6931da177e4SLinus Torvalds 6948d1c802bSDavid Ahern static struct fib6_info *find_rr_leaf(struct fib6_node *fn, 6958d1c802bSDavid Ahern struct fib6_info *leaf, 6968d1c802bSDavid Ahern struct fib6_info *rr_head, 697afc154e9SHannes Frederic Sowa u32 metric, int oif, int strict, 698afc154e9SHannes Frederic Sowa bool *do_rr) 699f11e6659SDavid S. Miller { 7008d1c802bSDavid Ahern struct fib6_info *rt, *match, *cont; 701f11e6659SDavid S. Miller int mpri = -1; 702f11e6659SDavid S. Miller 703f11e6659SDavid S. Miller match = NULL; 7049fbdcfafSSteffen Klassert cont = NULL; 7058fb11a9aSDavid Ahern for (rt = rr_head; rt; rt = rcu_dereference(rt->fib6_next)) { 70693c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7079fbdcfafSSteffen Klassert cont = rt; 7089fbdcfafSSteffen Klassert break; 7099fbdcfafSSteffen Klassert } 7109fbdcfafSSteffen Klassert 711afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 7129fbdcfafSSteffen Klassert } 7139fbdcfafSSteffen Klassert 71466f5d6ceSWei Wang for (rt = leaf; rt && rt != rr_head; 7158fb11a9aSDavid Ahern rt = rcu_dereference(rt->fib6_next)) { 71693c2fb25SDavid Ahern if (rt->fib6_metric != metric) { 7179fbdcfafSSteffen Klassert cont = rt; 7189fbdcfafSSteffen Klassert break; 7199fbdcfafSSteffen Klassert } 7209fbdcfafSSteffen Klassert 7219fbdcfafSSteffen Klassert match = find_match(rt, oif, strict, &mpri, match, do_rr); 7229fbdcfafSSteffen Klassert } 7239fbdcfafSSteffen Klassert 7249fbdcfafSSteffen Klassert if (match || !cont) 7259fbdcfafSSteffen Klassert return match; 7269fbdcfafSSteffen Klassert 7278fb11a9aSDavid Ahern for (rt = cont; rt; rt = rcu_dereference(rt->fib6_next)) 728afc154e9SHannes Frederic Sowa match = find_match(rt, oif, strict, &mpri, match, do_rr); 729f11e6659SDavid S. Miller 730f11e6659SDavid S. Miller return match; 731f11e6659SDavid S. Miller } 732f11e6659SDavid S. Miller 7338d1c802bSDavid Ahern static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn, 7348d1040e8SWei Wang int oif, int strict) 735f11e6659SDavid S. Miller { 7368d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 7378d1c802bSDavid Ahern struct fib6_info *match, *rt0; 738afc154e9SHannes Frederic Sowa bool do_rr = false; 73917ecf590SWei Wang int key_plen; 740f11e6659SDavid S. Miller 741421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 742421842edSDavid Ahern return net->ipv6.fib6_null_entry; 7438d1040e8SWei Wang 74466f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 745f11e6659SDavid S. Miller if (!rt0) 74666f5d6ceSWei Wang rt0 = leaf; 747f11e6659SDavid S. Miller 74817ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 74917ecf590SWei Wang * and fn->leaf does not points to its child's leaf 75017ecf590SWei Wang * (This might happen if all routes under fn are deleted from 75117ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 75217ecf590SWei Wang */ 75393c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 75417ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 75593c2fb25SDavid Ahern if (rt0->fib6_src.plen) 75693c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 75717ecf590SWei Wang #endif 75817ecf590SWei Wang if (fn->fn_bit != key_plen) 759421842edSDavid Ahern return net->ipv6.fib6_null_entry; 76017ecf590SWei Wang 76193c2fb25SDavid Ahern match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict, 762afc154e9SHannes Frederic Sowa &do_rr); 763f11e6659SDavid S. Miller 764afc154e9SHannes Frederic Sowa if (do_rr) { 7658fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 766f11e6659SDavid S. Miller 767554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 76893c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7698d1040e8SWei Wang next = leaf; 770f11e6659SDavid S. Miller 77166f5d6ceSWei Wang if (next != rt0) { 77293c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 77366f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 77493c2fb25SDavid Ahern if (next->fib6_node) 77566f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 77693c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 77766f5d6ceSWei Wang } 778554cfb7eSYOSHIFUJI Hideaki } 779554cfb7eSYOSHIFUJI Hideaki 780421842edSDavid Ahern return match ? match : net->ipv6.fib6_null_entry; 7811da177e4SLinus Torvalds } 7821da177e4SLinus Torvalds 7838d1c802bSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt) 7848b9df265SMartin KaFai Lau { 78593c2fb25SDavid Ahern return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY)); 7868b9df265SMartin KaFai Lau } 7878b9df265SMartin KaFai Lau 78870ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 78970ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 790b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 79170ceb4f5SYOSHIFUJI Hideaki { 792c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 79370ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 79470ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 79570ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 7964bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 7978d1c802bSDavid Ahern struct fib6_info *rt; 79870ceb4f5SYOSHIFUJI Hideaki 79970ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 80070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80170ceb4f5SYOSHIFUJI Hideaki } 80270ceb4f5SYOSHIFUJI Hideaki 80370ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 80470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 80570ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80670ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 80770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 80870ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 80970ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 81070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81170ceb4f5SYOSHIFUJI Hideaki } 81270ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 81370ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 81470ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 81570ceb4f5SYOSHIFUJI Hideaki } 81670ceb4f5SYOSHIFUJI Hideaki } 81770ceb4f5SYOSHIFUJI Hideaki 81870ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 81970ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8203933fc95SJens Rosenboom return -EINVAL; 82170ceb4f5SYOSHIFUJI Hideaki 8224bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 82370ceb4f5SYOSHIFUJI Hideaki 82470ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 82570ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 82670ceb4f5SYOSHIFUJI Hideaki else { 82770ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 82870ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 82970ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 83070ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 83170ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 83270ceb4f5SYOSHIFUJI Hideaki } 83370ceb4f5SYOSHIFUJI Hideaki 834f104a567SDuan Jiong if (rinfo->prefix_len == 0) 835afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 836f104a567SDuan Jiong else 837f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 838830218c1SDavid Ahern gwaddr, dev); 83970ceb4f5SYOSHIFUJI Hideaki 84070ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 841afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 84270ceb4f5SYOSHIFUJI Hideaki rt = NULL; 84370ceb4f5SYOSHIFUJI Hideaki } 84470ceb4f5SYOSHIFUJI Hideaki 84570ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 846830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 847830218c1SDavid Ahern dev, pref); 84870ceb4f5SYOSHIFUJI Hideaki else if (rt) 84993c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 85093c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 85170ceb4f5SYOSHIFUJI Hideaki 85270ceb4f5SYOSHIFUJI Hideaki if (rt) { 8531716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 85414895687SDavid Ahern fib6_clean_expires(rt); 8551716a961SGao feng else 85614895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8571716a961SGao feng 85893531c67SDavid Ahern fib6_info_release(rt); 85970ceb4f5SYOSHIFUJI Hideaki } 86070ceb4f5SYOSHIFUJI Hideaki return 0; 86170ceb4f5SYOSHIFUJI Hideaki } 86270ceb4f5SYOSHIFUJI Hideaki #endif 86370ceb4f5SYOSHIFUJI Hideaki 864ae90d867SDavid Ahern /* 865ae90d867SDavid Ahern * Misc support functions 866ae90d867SDavid Ahern */ 867ae90d867SDavid Ahern 868ae90d867SDavid Ahern /* called with rcu_lock held */ 8698d1c802bSDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt) 870ae90d867SDavid Ahern { 8715e670d84SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 872ae90d867SDavid Ahern 87393c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 874ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 875ae90d867SDavid Ahern * device if it is a master device, the master device if 876ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 877ae90d867SDavid Ahern */ 878ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 87993c2fb25SDavid Ahern !rt6_need_strict(&rt->fib6_dst.addr)) 880ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 881ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 882ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 883ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 884ae90d867SDavid Ahern * case we want dev returned to be dev 885ae90d867SDavid Ahern */ 886ae90d867SDavid Ahern } 887ae90d867SDavid Ahern 888ae90d867SDavid Ahern return dev; 889ae90d867SDavid Ahern } 890ae90d867SDavid Ahern 8916edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 8926edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 8936edb3c96SDavid Ahern [RTN_UNICAST] = 0, 8946edb3c96SDavid Ahern [RTN_LOCAL] = 0, 8956edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 8966edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 8976edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 8986edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 8996edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9006edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9016edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9026edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9036edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9046edb3c96SDavid Ahern }; 9056edb3c96SDavid Ahern 9066edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9076edb3c96SDavid Ahern { 9086edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9096edb3c96SDavid Ahern } 9106edb3c96SDavid Ahern 9118d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9123b6761d1SDavid Ahern { 9133b6761d1SDavid Ahern unsigned short flags = 0; 9143b6761d1SDavid Ahern 9153b6761d1SDavid Ahern if (rt->dst_nocount) 9163b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9173b6761d1SDavid Ahern if (rt->dst_nopolicy) 9183b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9193b6761d1SDavid Ahern if (rt->dst_host) 9203b6761d1SDavid Ahern flags |= DST_HOST; 9213b6761d1SDavid Ahern 9223b6761d1SDavid Ahern return flags; 9233b6761d1SDavid Ahern } 9243b6761d1SDavid Ahern 9258d1c802bSDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort) 9266edb3c96SDavid Ahern { 9276edb3c96SDavid Ahern rt->dst.error = ip6_rt_type_to_error(ort->fib6_type); 9286edb3c96SDavid Ahern 9296edb3c96SDavid Ahern switch (ort->fib6_type) { 9306edb3c96SDavid Ahern case RTN_BLACKHOLE: 9316edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9326edb3c96SDavid Ahern rt->dst.input = dst_discard; 9336edb3c96SDavid Ahern break; 9346edb3c96SDavid Ahern case RTN_PROHIBIT: 9356edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9366edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9376edb3c96SDavid Ahern break; 9386edb3c96SDavid Ahern case RTN_THROW: 9396edb3c96SDavid Ahern case RTN_UNREACHABLE: 9406edb3c96SDavid Ahern default: 9416edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9426edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9436edb3c96SDavid Ahern break; 9446edb3c96SDavid Ahern } 9456edb3c96SDavid Ahern } 9466edb3c96SDavid Ahern 9478d1c802bSDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort) 9486edb3c96SDavid Ahern { 9493b6761d1SDavid Ahern rt->dst.flags |= fib6_info_dst_flags(ort); 9503b6761d1SDavid Ahern 95193c2fb25SDavid Ahern if (ort->fib6_flags & RTF_REJECT) { 9526edb3c96SDavid Ahern ip6_rt_init_dst_reject(rt, ort); 9536edb3c96SDavid Ahern return; 9546edb3c96SDavid Ahern } 9556edb3c96SDavid Ahern 9566edb3c96SDavid Ahern rt->dst.error = 0; 9576edb3c96SDavid Ahern rt->dst.output = ip6_output; 9586edb3c96SDavid Ahern 959*d23c4b63SHangbin Liu if (ort->fib6_type == RTN_LOCAL || ort->fib6_type == RTN_ANYCAST) { 9606edb3c96SDavid Ahern rt->dst.input = ip6_input; 96193c2fb25SDavid Ahern } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9626edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9636edb3c96SDavid Ahern } else { 9646edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9656edb3c96SDavid Ahern } 9666edb3c96SDavid Ahern 9676edb3c96SDavid Ahern if (ort->fib6_nh.nh_lwtstate) { 9686edb3c96SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 9696edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9706edb3c96SDavid Ahern } 9716edb3c96SDavid Ahern 9726edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9736edb3c96SDavid Ahern } 9746edb3c96SDavid Ahern 975e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9768d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 977ae90d867SDavid Ahern { 978ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 979a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 980d4ead6b3SDavid Ahern dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true); 981ae90d867SDavid Ahern } 982ae90d867SDavid Ahern 983e873e4b9SWei Wang /* Caller must already hold reference to @ort */ 9848d1c802bSDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort) 985ae90d867SDavid Ahern { 986dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(ort); 987dcd1f572SDavid Ahern 9886edb3c96SDavid Ahern ip6_rt_init_dst(rt, ort); 9896edb3c96SDavid Ahern 99093c2fb25SDavid Ahern rt->rt6i_dst = ort->fib6_dst; 991dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 9925e670d84SDavid Ahern rt->rt6i_gateway = ort->fib6_nh.nh_gw; 99393c2fb25SDavid Ahern rt->rt6i_flags = ort->fib6_flags; 994ae90d867SDavid Ahern rt6_set_from(rt, ort); 995ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 99693c2fb25SDavid Ahern rt->rt6i_src = ort->fib6_src; 997ae90d867SDavid Ahern #endif 99893c2fb25SDavid Ahern rt->rt6i_prefsrc = ort->fib6_prefsrc; 9995e670d84SDavid Ahern rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate); 1000ae90d867SDavid Ahern } 1001ae90d867SDavid Ahern 1002a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1003a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1004a3c00e46SMartin KaFai Lau { 100566f5d6ceSWei Wang struct fib6_node *pn, *sn; 1006a3c00e46SMartin KaFai Lau while (1) { 1007a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1008a3c00e46SMartin KaFai Lau return NULL; 100966f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 101066f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 101166f5d6ceSWei Wang if (sn && sn != fn) 10126454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1013a3c00e46SMartin KaFai Lau else 1014a3c00e46SMartin KaFai Lau fn = pn; 1015a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1016a3c00e46SMartin KaFai Lau return fn; 1017a3c00e46SMartin KaFai Lau } 1018a3c00e46SMartin KaFai Lau } 1019c71099acSThomas Graf 1020d3843fe5SWei Wang static bool ip6_hold_safe(struct net *net, struct rt6_info **prt, 1021d3843fe5SWei Wang bool null_fallback) 1022d3843fe5SWei Wang { 1023d3843fe5SWei Wang struct rt6_info *rt = *prt; 1024d3843fe5SWei Wang 1025d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1026d3843fe5SWei Wang return true; 1027d3843fe5SWei Wang if (null_fallback) { 1028d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1029d3843fe5SWei Wang dst_hold(&rt->dst); 1030d3843fe5SWei Wang } else { 1031d3843fe5SWei Wang rt = NULL; 1032d3843fe5SWei Wang } 1033d3843fe5SWei Wang *prt = rt; 1034d3843fe5SWei Wang return false; 1035d3843fe5SWei Wang } 1036d3843fe5SWei Wang 1037dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10388d1c802bSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt) 1039dec9b0e2SDavid Ahern { 10403b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 1041dec9b0e2SDavid Ahern struct net_device *dev = rt->fib6_nh.nh_dev; 1042dec9b0e2SDavid Ahern struct rt6_info *nrt; 1043dec9b0e2SDavid Ahern 1044e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1045e873e4b9SWei Wang return NULL; 1046e873e4b9SWei Wang 104793531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 1048dec9b0e2SDavid Ahern if (nrt) 1049dec9b0e2SDavid Ahern ip6_rt_copy_init(nrt, rt); 1050e873e4b9SWei Wang else 1051e873e4b9SWei Wang fib6_info_release(rt); 1052dec9b0e2SDavid Ahern 1053dec9b0e2SDavid Ahern return nrt; 1054dec9b0e2SDavid Ahern } 1055dec9b0e2SDavid Ahern 10568ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10578ed67789SDaniel Lezcano struct fib6_table *table, 1058b75cc8f9SDavid Ahern struct flowi6 *fl6, 1059b75cc8f9SDavid Ahern const struct sk_buff *skb, 1060b75cc8f9SDavid Ahern int flags) 10611da177e4SLinus Torvalds { 10628d1c802bSDavid Ahern struct fib6_info *f6i; 10631da177e4SLinus Torvalds struct fib6_node *fn; 106423fb93a4SDavid Ahern struct rt6_info *rt; 10651da177e4SLinus Torvalds 1066b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1067b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1068b6cdbc85SDavid Ahern 106966f5d6ceSWei Wang rcu_read_lock(); 10706454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1071c71099acSThomas Graf restart: 107223fb93a4SDavid Ahern f6i = rcu_dereference(fn->leaf); 107323fb93a4SDavid Ahern if (!f6i) { 107423fb93a4SDavid Ahern f6i = net->ipv6.fib6_null_entry; 107566f5d6ceSWei Wang } else { 107623fb93a4SDavid Ahern f6i = rt6_device_match(net, f6i, &fl6->saddr, 107766f5d6ceSWei Wang fl6->flowi6_oif, flags); 107893c2fb25SDavid Ahern if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0) 10793b290a31SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, 10803b290a31SDavid Ahern fl6->flowi6_oif, skb, 10813b290a31SDavid Ahern flags); 108266f5d6ceSWei Wang } 108323fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1084a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1085a3c00e46SMartin KaFai Lau if (fn) 1086a3c00e46SMartin KaFai Lau goto restart; 1087a3c00e46SMartin KaFai Lau } 10882b760fcfSWei Wang 1089d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1090d4bea421SDavid Ahern 10914c9483b2SDavid S. Miller /* Search through exception table */ 109223fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 109323fb93a4SDavid Ahern if (rt) { 1094d3843fe5SWei Wang if (ip6_hold_safe(net, &rt, true)) 1095d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 109623fb93a4SDavid Ahern } else if (f6i == net->ipv6.fib6_null_entry) { 1097dec9b0e2SDavid Ahern rt = net->ipv6.ip6_null_entry; 1098dec9b0e2SDavid Ahern dst_hold(&rt->dst); 109923fb93a4SDavid Ahern } else { 110023fb93a4SDavid Ahern rt = ip6_create_rt_rcu(f6i); 110123fb93a4SDavid Ahern if (!rt) { 110223fb93a4SDavid Ahern rt = net->ipv6.ip6_null_entry; 110323fb93a4SDavid Ahern dst_hold(&rt->dst); 110423fb93a4SDavid Ahern } 1105dec9b0e2SDavid Ahern } 1106d3843fe5SWei Wang 110766f5d6ceSWei Wang rcu_read_unlock(); 1108b811580dSDavid Ahern 11091da177e4SLinus Torvalds return rt; 1110c71099acSThomas Graf } 1111c71099acSThomas Graf 1112ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1113b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1114ea6e574eSFlorian Westphal { 1115b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1116ea6e574eSFlorian Westphal } 1117ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1118ea6e574eSFlorian Westphal 11199acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1120b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1121b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1122c71099acSThomas Graf { 11234c9483b2SDavid S. Miller struct flowi6 fl6 = { 11244c9483b2SDavid S. Miller .flowi6_oif = oif, 11254c9483b2SDavid S. Miller .daddr = *daddr, 1126c71099acSThomas Graf }; 1127c71099acSThomas Graf struct dst_entry *dst; 112877d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1129c71099acSThomas Graf 1130adaa70bbSThomas Graf if (saddr) { 11314c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1132adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1133adaa70bbSThomas Graf } 1134adaa70bbSThomas Graf 1135b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1136c71099acSThomas Graf if (dst->error == 0) 1137c71099acSThomas Graf return (struct rt6_info *) dst; 1138c71099acSThomas Graf 1139c71099acSThomas Graf dst_release(dst); 1140c71099acSThomas Graf 11411da177e4SLinus Torvalds return NULL; 11421da177e4SLinus Torvalds } 11437159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11447159039aSYOSHIFUJI Hideaki 1145c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11461cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11471cfb71eeSWei Wang * route is released. 11481cfb71eeSWei Wang * Caller must hold dst before calling it. 11491da177e4SLinus Torvalds */ 11501da177e4SLinus Torvalds 11518d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1152333c4301SDavid Ahern struct netlink_ext_ack *extack) 11531da177e4SLinus Torvalds { 11541da177e4SLinus Torvalds int err; 1155c71099acSThomas Graf struct fib6_table *table; 11561da177e4SLinus Torvalds 115793c2fb25SDavid Ahern table = rt->fib6_table; 115866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1159d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 116066f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11611da177e4SLinus Torvalds 11621da177e4SLinus Torvalds return err; 11631da177e4SLinus Torvalds } 11641da177e4SLinus Torvalds 11658d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 116640e22e8fSThomas Graf { 1167afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1168e715b6d3SFlorian Westphal 1169d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 117040e22e8fSThomas Graf } 117140e22e8fSThomas Graf 11728d1c802bSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort, 117321efcfa0SEric Dumazet const struct in6_addr *daddr, 1174b71d1d42SEric Dumazet const struct in6_addr *saddr) 11751da177e4SLinus Torvalds { 11764832c30dSDavid Ahern struct net_device *dev; 11771da177e4SLinus Torvalds struct rt6_info *rt; 11781da177e4SLinus Torvalds 11791da177e4SLinus Torvalds /* 11801da177e4SLinus Torvalds * Clone the route. 11811da177e4SLinus Torvalds */ 11821da177e4SLinus Torvalds 1183e873e4b9SWei Wang if (!fib6_info_hold_safe(ort)) 1184e873e4b9SWei Wang return NULL; 1185e873e4b9SWei Wang 11864832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(ort); 118793531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1188e873e4b9SWei Wang if (!rt) { 1189e873e4b9SWei Wang fib6_info_release(ort); 119083a09abdSMartin KaFai Lau return NULL; 1191e873e4b9SWei Wang } 119283a09abdSMartin KaFai Lau 119383a09abdSMartin KaFai Lau ip6_rt_copy_init(rt, ort); 11948b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 119583a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 119683a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 119783a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 11988b9df265SMartin KaFai Lau 11998b9df265SMartin KaFai Lau if (!rt6_is_gw_or_nonexthop(ort)) { 120093c2fb25SDavid Ahern if (ort->fib6_dst.plen != 128 && 120193c2fb25SDavid Ahern ipv6_addr_equal(&ort->fib6_dst.addr, daddr)) 120258c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12031da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12041da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12054e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12061da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12071da177e4SLinus Torvalds } 12081da177e4SLinus Torvalds #endif 120995a9a5baSYOSHIFUJI Hideaki } 121095a9a5baSYOSHIFUJI Hideaki 1211299d9939SYOSHIFUJI Hideaki return rt; 1212299d9939SYOSHIFUJI Hideaki } 1213299d9939SYOSHIFUJI Hideaki 12148d1c802bSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt) 1215d52d3997SMartin KaFai Lau { 12163b6761d1SDavid Ahern unsigned short flags = fib6_info_dst_flags(rt); 12174832c30dSDavid Ahern struct net_device *dev; 1218d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1219d52d3997SMartin KaFai Lau 1220e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 1221e873e4b9SWei Wang return NULL; 1222e873e4b9SWei Wang 12234832c30dSDavid Ahern rcu_read_lock(); 12244832c30dSDavid Ahern dev = ip6_rt_get_dev_rcu(rt); 122593531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12264832c30dSDavid Ahern rcu_read_unlock(); 1227e873e4b9SWei Wang if (!pcpu_rt) { 1228e873e4b9SWei Wang fib6_info_release(rt); 1229d52d3997SMartin KaFai Lau return NULL; 1230e873e4b9SWei Wang } 1231d52d3997SMartin KaFai Lau ip6_rt_copy_init(pcpu_rt, rt); 1232d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1233d52d3997SMartin KaFai Lau return pcpu_rt; 1234d52d3997SMartin KaFai Lau } 1235d52d3997SMartin KaFai Lau 123666f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 12378d1c802bSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt) 1238d52d3997SMartin KaFai Lau { 1239a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1240d52d3997SMartin KaFai Lau 1241d52d3997SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1242d52d3997SMartin KaFai Lau pcpu_rt = *p; 1243d52d3997SMartin KaFai Lau 1244d4ead6b3SDavid Ahern if (pcpu_rt) 1245d4ead6b3SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt, false); 1246d3843fe5SWei Wang 1247a73e4195SMartin KaFai Lau return pcpu_rt; 1248a73e4195SMartin KaFai Lau } 1249a73e4195SMartin KaFai Lau 1250afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 12518d1c802bSDavid Ahern struct fib6_info *rt) 1252a73e4195SMartin KaFai Lau { 1253a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1254d52d3997SMartin KaFai Lau 1255d52d3997SMartin KaFai Lau pcpu_rt = ip6_rt_pcpu_alloc(rt); 1256d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12579c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12589c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1259d52d3997SMartin KaFai Lau } 1260d52d3997SMartin KaFai Lau 1261a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1262a73e4195SMartin KaFai Lau p = this_cpu_ptr(rt->rt6i_pcpu); 1263d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1264951f788aSEric Dumazet BUG_ON(prev); 1265a94b9367SWei Wang 1266d52d3997SMartin KaFai Lau return pcpu_rt; 1267d52d3997SMartin KaFai Lau } 1268d52d3997SMartin KaFai Lau 126935732d01SWei Wang /* exception hash table implementation 127035732d01SWei Wang */ 127135732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 127235732d01SWei Wang 127335732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 127435732d01SWei Wang * Caller must hold rt6_exception_lock 127535732d01SWei Wang */ 127635732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 127735732d01SWei Wang struct rt6_exception *rt6_ex) 127835732d01SWei Wang { 1279b2427e67SColin Ian King struct net *net; 128081eb8447SWei Wang 128135732d01SWei Wang if (!bucket || !rt6_ex) 128235732d01SWei Wang return; 1283b2427e67SColin Ian King 1284b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 128535732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 128677634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 128735732d01SWei Wang kfree_rcu(rt6_ex, rcu); 128835732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 128935732d01SWei Wang bucket->depth--; 129081eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache--; 129135732d01SWei Wang } 129235732d01SWei Wang 129335732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 129435732d01SWei Wang * Caller must hold rt6_exception_lock 129535732d01SWei Wang */ 129635732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 129735732d01SWei Wang { 129835732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 129935732d01SWei Wang 130035732d01SWei Wang if (!bucket) 130135732d01SWei Wang return; 130235732d01SWei Wang 130335732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 130435732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 130535732d01SWei Wang oldest = rt6_ex; 130635732d01SWei Wang } 130735732d01SWei Wang rt6_remove_exception(bucket, oldest); 130835732d01SWei Wang } 130935732d01SWei Wang 131035732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 131135732d01SWei Wang const struct in6_addr *src) 131235732d01SWei Wang { 131335732d01SWei Wang static u32 seed __read_mostly; 131435732d01SWei Wang u32 val; 131535732d01SWei Wang 131635732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 131735732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 131835732d01SWei Wang 131935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 132035732d01SWei Wang if (src) 132135732d01SWei Wang val = jhash(src, sizeof(*src), val); 132235732d01SWei Wang #endif 132335732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 132435732d01SWei Wang } 132535732d01SWei Wang 132635732d01SWei Wang /* Helper function to find the cached rt in the hash table 132735732d01SWei Wang * and update bucket pointer to point to the bucket for this 132835732d01SWei Wang * (daddr, saddr) pair 132935732d01SWei Wang * Caller must hold rt6_exception_lock 133035732d01SWei Wang */ 133135732d01SWei Wang static struct rt6_exception * 133235732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 133335732d01SWei Wang const struct in6_addr *daddr, 133435732d01SWei Wang const struct in6_addr *saddr) 133535732d01SWei Wang { 133635732d01SWei Wang struct rt6_exception *rt6_ex; 133735732d01SWei Wang u32 hval; 133835732d01SWei Wang 133935732d01SWei Wang if (!(*bucket) || !daddr) 134035732d01SWei Wang return NULL; 134135732d01SWei Wang 134235732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 134335732d01SWei Wang *bucket += hval; 134435732d01SWei Wang 134535732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 134635732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 134735732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 134835732d01SWei Wang 134935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 135035732d01SWei Wang if (matched && saddr) 135135732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 135235732d01SWei Wang #endif 135335732d01SWei Wang if (matched) 135435732d01SWei Wang return rt6_ex; 135535732d01SWei Wang } 135635732d01SWei Wang return NULL; 135735732d01SWei Wang } 135835732d01SWei Wang 135935732d01SWei Wang /* Helper function to find the cached rt in the hash table 136035732d01SWei Wang * and update bucket pointer to point to the bucket for this 136135732d01SWei Wang * (daddr, saddr) pair 136235732d01SWei Wang * Caller must hold rcu_read_lock() 136335732d01SWei Wang */ 136435732d01SWei Wang static struct rt6_exception * 136535732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 136635732d01SWei Wang const struct in6_addr *daddr, 136735732d01SWei Wang const struct in6_addr *saddr) 136835732d01SWei Wang { 136935732d01SWei Wang struct rt6_exception *rt6_ex; 137035732d01SWei Wang u32 hval; 137135732d01SWei Wang 137235732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 137335732d01SWei Wang 137435732d01SWei Wang if (!(*bucket) || !daddr) 137535732d01SWei Wang return NULL; 137635732d01SWei Wang 137735732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 137835732d01SWei Wang *bucket += hval; 137935732d01SWei Wang 138035732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 138135732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138235732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138335732d01SWei Wang 138435732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 138535732d01SWei Wang if (matched && saddr) 138635732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 138735732d01SWei Wang #endif 138835732d01SWei Wang if (matched) 138935732d01SWei Wang return rt6_ex; 139035732d01SWei Wang } 139135732d01SWei Wang return NULL; 139235732d01SWei Wang } 139335732d01SWei Wang 13948d1c802bSDavid Ahern static unsigned int fib6_mtu(const struct fib6_info *rt) 139535732d01SWei Wang { 1396d4ead6b3SDavid Ahern unsigned int mtu; 1397d4ead6b3SDavid Ahern 1398dcd1f572SDavid Ahern if (rt->fib6_pmtu) { 1399dcd1f572SDavid Ahern mtu = rt->fib6_pmtu; 1400dcd1f572SDavid Ahern } else { 1401dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 1402dcd1f572SDavid Ahern struct inet6_dev *idev; 1403dcd1f572SDavid Ahern 1404dcd1f572SDavid Ahern rcu_read_lock(); 1405dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1406dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1407dcd1f572SDavid Ahern rcu_read_unlock(); 1408dcd1f572SDavid Ahern } 1409dcd1f572SDavid Ahern 1410d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1411d4ead6b3SDavid Ahern 1412d4ead6b3SDavid Ahern return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu); 1413d4ead6b3SDavid Ahern } 1414d4ead6b3SDavid Ahern 141535732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14168d1c802bSDavid Ahern struct fib6_info *ort) 141735732d01SWei Wang { 14185e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 141935732d01SWei Wang struct rt6_exception_bucket *bucket; 142035732d01SWei Wang struct in6_addr *src_key = NULL; 142135732d01SWei Wang struct rt6_exception *rt6_ex; 142235732d01SWei Wang int err = 0; 142335732d01SWei Wang 142435732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 142535732d01SWei Wang 142635732d01SWei Wang if (ort->exception_bucket_flushed) { 142735732d01SWei Wang err = -EINVAL; 142835732d01SWei Wang goto out; 142935732d01SWei Wang } 143035732d01SWei Wang 143135732d01SWei Wang bucket = rcu_dereference_protected(ort->rt6i_exception_bucket, 143235732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 143335732d01SWei Wang if (!bucket) { 143435732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 143535732d01SWei Wang GFP_ATOMIC); 143635732d01SWei Wang if (!bucket) { 143735732d01SWei Wang err = -ENOMEM; 143835732d01SWei Wang goto out; 143935732d01SWei Wang } 144035732d01SWei Wang rcu_assign_pointer(ort->rt6i_exception_bucket, bucket); 144135732d01SWei Wang } 144235732d01SWei Wang 144335732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 144435732d01SWei Wang /* rt6i_src.plen != 0 indicates ort is in subtree 144535732d01SWei Wang * and exception table is indexed by a hash of 144635732d01SWei Wang * both rt6i_dst and rt6i_src. 144735732d01SWei Wang * Otherwise, the exception table is indexed by 144835732d01SWei Wang * a hash of only rt6i_dst. 144935732d01SWei Wang */ 145093c2fb25SDavid Ahern if (ort->fib6_src.plen) 145135732d01SWei Wang src_key = &nrt->rt6i_src.addr; 145235732d01SWei Wang #endif 145360006a48SWei Wang 145460006a48SWei Wang /* Update rt6i_prefsrc as it could be changed 145560006a48SWei Wang * in rt6_remove_prefsrc() 145660006a48SWei Wang */ 145793c2fb25SDavid Ahern nrt->rt6i_prefsrc = ort->fib6_prefsrc; 1458f5bbe7eeSWei Wang /* rt6_mtu_change() might lower mtu on ort. 1459f5bbe7eeSWei Wang * Only insert this exception route if its mtu 1460f5bbe7eeSWei Wang * is less than ort's mtu value. 1461f5bbe7eeSWei Wang */ 1462d4ead6b3SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) { 1463f5bbe7eeSWei Wang err = -EINVAL; 1464f5bbe7eeSWei Wang goto out; 1465f5bbe7eeSWei Wang } 146660006a48SWei Wang 146735732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 146835732d01SWei Wang src_key); 146935732d01SWei Wang if (rt6_ex) 147035732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 147135732d01SWei Wang 147235732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 147335732d01SWei Wang if (!rt6_ex) { 147435732d01SWei Wang err = -ENOMEM; 147535732d01SWei Wang goto out; 147635732d01SWei Wang } 147735732d01SWei Wang rt6_ex->rt6i = nrt; 147835732d01SWei Wang rt6_ex->stamp = jiffies; 147935732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 148035732d01SWei Wang bucket->depth++; 148181eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 148235732d01SWei Wang 148335732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 148435732d01SWei Wang rt6_exception_remove_oldest(bucket); 148535732d01SWei Wang 148635732d01SWei Wang out: 148735732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 148835732d01SWei Wang 148935732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1490b886d5f2SPaolo Abeni if (!err) { 149193c2fb25SDavid Ahern spin_lock_bh(&ort->fib6_table->tb6_lock); 14927aef6859SDavid Ahern fib6_update_sernum(net, ort); 149393c2fb25SDavid Ahern spin_unlock_bh(&ort->fib6_table->tb6_lock); 1494b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1495b886d5f2SPaolo Abeni } 149635732d01SWei Wang 149735732d01SWei Wang return err; 149835732d01SWei Wang } 149935732d01SWei Wang 15008d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 150135732d01SWei Wang { 150235732d01SWei Wang struct rt6_exception_bucket *bucket; 150335732d01SWei Wang struct rt6_exception *rt6_ex; 150435732d01SWei Wang struct hlist_node *tmp; 150535732d01SWei Wang int i; 150635732d01SWei Wang 150735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 150835732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 150935732d01SWei Wang rt->exception_bucket_flushed = 1; 151035732d01SWei Wang 151135732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 151235732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 151335732d01SWei Wang if (!bucket) 151435732d01SWei Wang goto out; 151535732d01SWei Wang 151635732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 151735732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 151835732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 151935732d01SWei Wang WARN_ON_ONCE(bucket->depth); 152035732d01SWei Wang bucket++; 152135732d01SWei Wang } 152235732d01SWei Wang 152335732d01SWei Wang out: 152435732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 152535732d01SWei Wang } 152635732d01SWei Wang 152735732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 152835732d01SWei Wang * Caller has to hold rcu_read_lock() 152935732d01SWei Wang */ 15308d1c802bSDavid Ahern static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt, 153135732d01SWei Wang struct in6_addr *daddr, 153235732d01SWei Wang struct in6_addr *saddr) 153335732d01SWei Wang { 153435732d01SWei Wang struct rt6_exception_bucket *bucket; 153535732d01SWei Wang struct in6_addr *src_key = NULL; 153635732d01SWei Wang struct rt6_exception *rt6_ex; 153735732d01SWei Wang struct rt6_info *res = NULL; 153835732d01SWei Wang 153935732d01SWei Wang bucket = rcu_dereference(rt->rt6i_exception_bucket); 154035732d01SWei Wang 154135732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 154235732d01SWei Wang /* rt6i_src.plen != 0 indicates rt is in subtree 154335732d01SWei Wang * and exception table is indexed by a hash of 154435732d01SWei Wang * both rt6i_dst and rt6i_src. 154535732d01SWei Wang * Otherwise, the exception table is indexed by 154635732d01SWei Wang * a hash of only rt6i_dst. 154735732d01SWei Wang */ 154893c2fb25SDavid Ahern if (rt->fib6_src.plen) 154935732d01SWei Wang src_key = saddr; 155035732d01SWei Wang #endif 155135732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 155235732d01SWei Wang 155335732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 155435732d01SWei Wang res = rt6_ex->rt6i; 155535732d01SWei Wang 155635732d01SWei Wang return res; 155735732d01SWei Wang } 155835732d01SWei Wang 155935732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 156023fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 156135732d01SWei Wang { 156235732d01SWei Wang struct rt6_exception_bucket *bucket; 156335732d01SWei Wang struct in6_addr *src_key = NULL; 156435732d01SWei Wang struct rt6_exception *rt6_ex; 15658a14e46fSDavid Ahern struct fib6_info *from; 156635732d01SWei Wang int err; 156735732d01SWei Wang 1568091311deSEric Dumazet from = rcu_dereference(rt->from); 156935732d01SWei Wang if (!from || 1570442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 157135732d01SWei Wang return -EINVAL; 157235732d01SWei Wang 157335732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 157435732d01SWei Wang return -ENOENT; 157535732d01SWei Wang 157635732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 157735732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 157835732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 157935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 158035732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 158135732d01SWei Wang * and exception table is indexed by a hash of 158235732d01SWei Wang * both rt6i_dst and rt6i_src. 158335732d01SWei Wang * Otherwise, the exception table is indexed by 158435732d01SWei Wang * a hash of only rt6i_dst. 158535732d01SWei Wang */ 158693c2fb25SDavid Ahern if (from->fib6_src.plen) 158735732d01SWei Wang src_key = &rt->rt6i_src.addr; 158835732d01SWei Wang #endif 158935732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 159035732d01SWei Wang &rt->rt6i_dst.addr, 159135732d01SWei Wang src_key); 159235732d01SWei Wang if (rt6_ex) { 159335732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 159435732d01SWei Wang err = 0; 159535732d01SWei Wang } else { 159635732d01SWei Wang err = -ENOENT; 159735732d01SWei Wang } 159835732d01SWei Wang 159935732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 160035732d01SWei Wang return err; 160135732d01SWei Wang } 160235732d01SWei Wang 160335732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 160435732d01SWei Wang * refresh its stamp 160535732d01SWei Wang */ 160635732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 160735732d01SWei Wang { 160835732d01SWei Wang struct rt6_exception_bucket *bucket; 16098d1c802bSDavid Ahern struct fib6_info *from = rt->from; 161035732d01SWei Wang struct in6_addr *src_key = NULL; 161135732d01SWei Wang struct rt6_exception *rt6_ex; 161235732d01SWei Wang 161335732d01SWei Wang if (!from || 1614442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 161535732d01SWei Wang return; 161635732d01SWei Wang 161735732d01SWei Wang rcu_read_lock(); 161835732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 161935732d01SWei Wang 162035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 162135732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 162235732d01SWei Wang * and exception table is indexed by a hash of 162335732d01SWei Wang * both rt6i_dst and rt6i_src. 162435732d01SWei Wang * Otherwise, the exception table is indexed by 162535732d01SWei Wang * a hash of only rt6i_dst. 162635732d01SWei Wang */ 162793c2fb25SDavid Ahern if (from->fib6_src.plen) 162835732d01SWei Wang src_key = &rt->rt6i_src.addr; 162935732d01SWei Wang #endif 163035732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 163135732d01SWei Wang &rt->rt6i_dst.addr, 163235732d01SWei Wang src_key); 163335732d01SWei Wang if (rt6_ex) 163435732d01SWei Wang rt6_ex->stamp = jiffies; 163535732d01SWei Wang 163635732d01SWei Wang rcu_read_unlock(); 163735732d01SWei Wang } 163835732d01SWei Wang 16398d1c802bSDavid Ahern static void rt6_exceptions_remove_prefsrc(struct fib6_info *rt) 164060006a48SWei Wang { 164160006a48SWei Wang struct rt6_exception_bucket *bucket; 164260006a48SWei Wang struct rt6_exception *rt6_ex; 164360006a48SWei Wang int i; 164460006a48SWei Wang 164560006a48SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 164660006a48SWei Wang lockdep_is_held(&rt6_exception_lock)); 164760006a48SWei Wang 164860006a48SWei Wang if (bucket) { 164960006a48SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 165060006a48SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 165160006a48SWei Wang rt6_ex->rt6i->rt6i_prefsrc.plen = 0; 165260006a48SWei Wang } 165360006a48SWei Wang bucket++; 165460006a48SWei Wang } 165560006a48SWei Wang } 165660006a48SWei Wang } 165760006a48SWei Wang 1658e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1659e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1660e9fa1495SStefano Brivio { 1661e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1662e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1663e9fa1495SStefano Brivio * reflect PMTU decreases. 1664e9fa1495SStefano Brivio * 1665e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1666e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1667e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1668e9fa1495SStefano Brivio * handle this. 1669e9fa1495SStefano Brivio */ 1670e9fa1495SStefano Brivio 1671e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1672e9fa1495SStefano Brivio return true; 1673e9fa1495SStefano Brivio 1674e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1675e9fa1495SStefano Brivio return true; 1676e9fa1495SStefano Brivio 1677e9fa1495SStefano Brivio return false; 1678e9fa1495SStefano Brivio } 1679e9fa1495SStefano Brivio 1680e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 16818d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1682f5bbe7eeSWei Wang { 1683f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1684f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1685f5bbe7eeSWei Wang int i; 1686f5bbe7eeSWei Wang 1687f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1688f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1689f5bbe7eeSWei Wang 1690e9fa1495SStefano Brivio if (!bucket) 1691e9fa1495SStefano Brivio return; 1692e9fa1495SStefano Brivio 1693f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1694f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1695f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1696e9fa1495SStefano Brivio 1697e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1698d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1699f5bbe7eeSWei Wang * been updated. 1700f5bbe7eeSWei Wang */ 1701d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1702e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1703d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1704f5bbe7eeSWei Wang } 1705f5bbe7eeSWei Wang bucket++; 1706f5bbe7eeSWei Wang } 1707f5bbe7eeSWei Wang } 1708f5bbe7eeSWei Wang 1709b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1710b16cb459SWei Wang 17118d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1712b16cb459SWei Wang struct in6_addr *gateway) 1713b16cb459SWei Wang { 1714b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1715b16cb459SWei Wang struct rt6_exception *rt6_ex; 1716b16cb459SWei Wang struct hlist_node *tmp; 1717b16cb459SWei Wang int i; 1718b16cb459SWei Wang 1719b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1720b16cb459SWei Wang return; 1721b16cb459SWei Wang 1722b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1723b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1724b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1725b16cb459SWei Wang 1726b16cb459SWei Wang if (bucket) { 1727b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1728b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1729b16cb459SWei Wang &bucket->chain, hlist) { 1730b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1731b16cb459SWei Wang 1732b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1733b16cb459SWei Wang RTF_CACHE_GATEWAY && 1734b16cb459SWei Wang ipv6_addr_equal(gateway, 1735b16cb459SWei Wang &entry->rt6i_gateway)) { 1736b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1737b16cb459SWei Wang } 1738b16cb459SWei Wang } 1739b16cb459SWei Wang bucket++; 1740b16cb459SWei Wang } 1741b16cb459SWei Wang } 1742b16cb459SWei Wang 1743b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1744b16cb459SWei Wang } 1745b16cb459SWei Wang 1746c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1747c757faa8SWei Wang struct rt6_exception *rt6_ex, 1748c757faa8SWei Wang struct fib6_gc_args *gc_args, 1749c757faa8SWei Wang unsigned long now) 1750c757faa8SWei Wang { 1751c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1752c757faa8SWei Wang 17531859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17541859bac0SPaolo Abeni * even if others have still references to them, so that on next 17551859bac0SPaolo Abeni * dst_check() such references can be dropped. 17561859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17571859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17581859bac0SPaolo Abeni */ 175931afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 176031afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1761c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1762c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1763c757faa8SWei Wang return; 176431afeb42SWei Wang } 176531afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 176631afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 176731afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 176831afeb42SWei Wang return; 176931afeb42SWei Wang } 177031afeb42SWei Wang 177131afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1772c757faa8SWei Wang struct neighbour *neigh; 1773c757faa8SWei Wang __u8 neigh_flags = 0; 1774c757faa8SWei Wang 17751bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17761bfa26ffSEric Dumazet if (neigh) 1777c757faa8SWei Wang neigh_flags = neigh->flags; 17781bfa26ffSEric Dumazet 1779c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1780c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1781c757faa8SWei Wang rt); 1782c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1783c757faa8SWei Wang return; 1784c757faa8SWei Wang } 1785c757faa8SWei Wang } 178631afeb42SWei Wang 1787c757faa8SWei Wang gc_args->more++; 1788c757faa8SWei Wang } 1789c757faa8SWei Wang 17908d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1791c757faa8SWei Wang struct fib6_gc_args *gc_args, 1792c757faa8SWei Wang unsigned long now) 1793c757faa8SWei Wang { 1794c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1795c757faa8SWei Wang struct rt6_exception *rt6_ex; 1796c757faa8SWei Wang struct hlist_node *tmp; 1797c757faa8SWei Wang int i; 1798c757faa8SWei Wang 1799c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1800c757faa8SWei Wang return; 1801c757faa8SWei Wang 18021bfa26ffSEric Dumazet rcu_read_lock_bh(); 18031bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1804c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1805c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1806c757faa8SWei Wang 1807c757faa8SWei Wang if (bucket) { 1808c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1809c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1810c757faa8SWei Wang &bucket->chain, hlist) { 1811c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1812c757faa8SWei Wang gc_args, now); 1813c757faa8SWei Wang } 1814c757faa8SWei Wang bucket++; 1815c757faa8SWei Wang } 1816c757faa8SWei Wang } 18171bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 18181bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1819c757faa8SWei Wang } 1820c757faa8SWei Wang 18211d053da9SDavid Ahern /* must be called with rcu lock held */ 18221d053da9SDavid Ahern struct fib6_info *fib6_table_lookup(struct net *net, struct fib6_table *table, 18231d053da9SDavid Ahern int oif, struct flowi6 *fl6, int strict) 18241da177e4SLinus Torvalds { 1825367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18268d1c802bSDavid Ahern struct fib6_info *f6i; 18271da177e4SLinus Torvalds 18286454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1829367efcb9SMartin KaFai Lau saved_fn = fn; 18301da177e4SLinus Torvalds 1831ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1832ca254490SDavid Ahern oif = 0; 1833ca254490SDavid Ahern 1834a3c00e46SMartin KaFai Lau redo_rt6_select: 183523fb93a4SDavid Ahern f6i = rt6_select(net, fn, oif, strict); 183623fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1837a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1838a3c00e46SMartin KaFai Lau if (fn) 1839a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1840367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1841367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1842367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1843367efcb9SMartin KaFai Lau fn = saved_fn; 1844367efcb9SMartin KaFai Lau goto redo_rt6_select; 1845367efcb9SMartin KaFai Lau } 1846a3c00e46SMartin KaFai Lau } 1847a3c00e46SMartin KaFai Lau 1848d4bea421SDavid Ahern trace_fib6_table_lookup(net, f6i, table, fl6); 1849d52d3997SMartin KaFai Lau 18501d053da9SDavid Ahern return f6i; 18511d053da9SDavid Ahern } 18521d053da9SDavid Ahern 18531d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18541d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18551d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18561d053da9SDavid Ahern { 18571d053da9SDavid Ahern struct fib6_info *f6i; 18581d053da9SDavid Ahern struct rt6_info *rt; 18591d053da9SDavid Ahern int strict = 0; 18601d053da9SDavid Ahern 18611d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18621d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18631d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18641d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18651d053da9SDavid Ahern 18661d053da9SDavid Ahern rcu_read_lock(); 18671d053da9SDavid Ahern 18681d053da9SDavid Ahern f6i = fib6_table_lookup(net, table, oif, fl6, strict); 18691d053da9SDavid Ahern if (f6i->fib6_nsiblings) 18701d053da9SDavid Ahern f6i = fib6_multipath_select(net, f6i, fl6, oif, skb, strict); 18711d053da9SDavid Ahern 187223fb93a4SDavid Ahern if (f6i == net->ipv6.fib6_null_entry) { 1873421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 187466f5d6ceSWei Wang rcu_read_unlock(); 1875d3843fe5SWei Wang dst_hold(&rt->dst); 1876d3843fe5SWei Wang return rt; 1877d3843fe5SWei Wang } 187823fb93a4SDavid Ahern 187923fb93a4SDavid Ahern /*Search through exception table */ 188023fb93a4SDavid Ahern rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr); 188123fb93a4SDavid Ahern if (rt) { 1882d4ead6b3SDavid Ahern if (ip6_hold_safe(net, &rt, true)) 18831da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1884d4ead6b3SDavid Ahern 188566f5d6ceSWei Wang rcu_read_unlock(); 1886d52d3997SMartin KaFai Lau return rt; 18873da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 188893c2fb25SDavid Ahern !(f6i->fib6_flags & RTF_GATEWAY))) { 18893da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 18903da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 18913da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 18923da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 18933da59bd9SMartin KaFai Lau */ 18943da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 18953da59bd9SMartin KaFai Lau 189623fb93a4SDavid Ahern uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL); 1897d52d3997SMartin KaFai Lau 18984d85cd0cSDavid Ahern rcu_read_unlock(); 18993da59bd9SMartin KaFai Lau 19001cfb71eeSWei Wang if (uncached_rt) { 19011cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 19021cfb71eeSWei Wang * No need for another dst_hold() 19031cfb71eeSWei Wang */ 19048d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 190581eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 19061cfb71eeSWei Wang } else { 19073da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 19083da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 19091cfb71eeSWei Wang } 1910b811580dSDavid Ahern 19113da59bd9SMartin KaFai Lau return uncached_rt; 1912d52d3997SMartin KaFai Lau } else { 1913d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1914d52d3997SMartin KaFai Lau 1915d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1916d52d3997SMartin KaFai Lau 1917951f788aSEric Dumazet local_bh_disable(); 191823fb93a4SDavid Ahern pcpu_rt = rt6_get_pcpu_route(f6i); 1919d52d3997SMartin KaFai Lau 192093531c67SDavid Ahern if (!pcpu_rt) 192123fb93a4SDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, f6i); 192293531c67SDavid Ahern 1923951f788aSEric Dumazet local_bh_enable(); 1924951f788aSEric Dumazet rcu_read_unlock(); 1925d4bea421SDavid Ahern 1926d52d3997SMartin KaFai Lau return pcpu_rt; 1927d52d3997SMartin KaFai Lau } 1928c71099acSThomas Graf } 19299ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1930c71099acSThomas Graf 1931b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1932b75cc8f9SDavid Ahern struct fib6_table *table, 1933b75cc8f9SDavid Ahern struct flowi6 *fl6, 1934b75cc8f9SDavid Ahern const struct sk_buff *skb, 1935b75cc8f9SDavid Ahern int flags) 19364acad72dSPavel Emelyanov { 1937b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19384acad72dSPavel Emelyanov } 19394acad72dSPavel Emelyanov 1940d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 194172331bc0SShmulik Ladkani struct net_device *dev, 1942b75cc8f9SDavid Ahern struct flowi6 *fl6, 1943b75cc8f9SDavid Ahern const struct sk_buff *skb, 1944b75cc8f9SDavid Ahern int flags) 194572331bc0SShmulik Ladkani { 194672331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 194772331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 194872331bc0SShmulik Ladkani 1949b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 195072331bc0SShmulik Ladkani } 1951d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 195272331bc0SShmulik Ladkani 195323aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19545e5d6fedSRoopa Prabhu struct flow_keys *keys, 19555e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 195623aebdacSJakub Sitnicki { 195723aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 195823aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19595e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 196023aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 196123aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 196223aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1963cea67a2dSEric Dumazet struct icmp6hdr _icmph; 196423aebdacSJakub Sitnicki 196523aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 196623aebdacSJakub Sitnicki goto out; 196723aebdacSJakub Sitnicki 1968cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1969cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1970cea67a2dSEric Dumazet if (!icmph) 1971cea67a2dSEric Dumazet goto out; 1972cea67a2dSEric Dumazet 197323aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 197423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 197523aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 197623aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 197723aebdacSJakub Sitnicki goto out; 197823aebdacSJakub Sitnicki 197923aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 198023aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 198123aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 198223aebdacSJakub Sitnicki if (!inner_iph) 198323aebdacSJakub Sitnicki goto out; 198423aebdacSJakub Sitnicki 198523aebdacSJakub Sitnicki key_iph = inner_iph; 19865e5d6fedSRoopa Prabhu _flkeys = NULL; 198723aebdacSJakub Sitnicki out: 19885e5d6fedSRoopa Prabhu if (_flkeys) { 19895e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 19905e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 19915e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 19925e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 19935e5d6fedSRoopa Prabhu } else { 199423aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 199523aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 1996fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 199723aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 199823aebdacSJakub Sitnicki } 19995e5d6fedSRoopa Prabhu } 200023aebdacSJakub Sitnicki 200123aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 2002b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 2003b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 200423aebdacSJakub Sitnicki { 200523aebdacSJakub Sitnicki struct flow_keys hash_keys; 20069a2a537aSDavid Ahern u32 mhash; 200723aebdacSJakub Sitnicki 2008bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 2009b4bac172SDavid Ahern case 0: 20106f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 20116f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 20129a2a537aSDavid Ahern if (skb) { 20135e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 20149a2a537aSDavid Ahern } else { 20159a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 20169a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2017fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 20189a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 201923aebdacSJakub Sitnicki } 2020b4bac172SDavid Ahern break; 2021b4bac172SDavid Ahern case 1: 2022b4bac172SDavid Ahern if (skb) { 2023b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2024b4bac172SDavid Ahern struct flow_keys keys; 2025b4bac172SDavid Ahern 2026b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2027b4bac172SDavid Ahern if (skb->l4_hash) 2028b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2029b4bac172SDavid Ahern 2030b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2031b4bac172SDavid Ahern 2032b4bac172SDavid Ahern if (!flkeys) { 2033b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2034b4bac172SDavid Ahern flkeys = &keys; 2035b4bac172SDavid Ahern } 2036b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2037b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2038b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2039b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2040b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2041b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2042b4bac172SDavid Ahern } else { 2043b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2044b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2045b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2046b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2047b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2048b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2049b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2050b4bac172SDavid Ahern } 2051b4bac172SDavid Ahern break; 2052b4bac172SDavid Ahern } 20539a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 205423aebdacSJakub Sitnicki 20559a2a537aSDavid Ahern return mhash >> 1; 205623aebdacSJakub Sitnicki } 205723aebdacSJakub Sitnicki 2058c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2059c71099acSThomas Graf { 2060b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2061c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2062adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2063904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20644c9483b2SDavid S. Miller struct flowi6 fl6 = { 2065e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20664c9483b2SDavid S. Miller .daddr = iph->daddr, 20674c9483b2SDavid S. Miller .saddr = iph->saddr, 20686502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20694c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20704c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2071c71099acSThomas Graf }; 20725e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2073adaa70bbSThomas Graf 2074904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 207546fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2076904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20775e5d6fedSRoopa Prabhu 20785e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20795e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20805e5d6fedSRoopa Prabhu 208123aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2082b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 208306e9d040SJiri Benc skb_dst_drop(skb); 2084b75cc8f9SDavid Ahern skb_dst_set(skb, 2085b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2086c71099acSThomas Graf } 2087c71099acSThomas Graf 2088b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2089b75cc8f9SDavid Ahern struct fib6_table *table, 2090b75cc8f9SDavid Ahern struct flowi6 *fl6, 2091b75cc8f9SDavid Ahern const struct sk_buff *skb, 2092b75cc8f9SDavid Ahern int flags) 2093c71099acSThomas Graf { 2094b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2095c71099acSThomas Graf } 2096c71099acSThomas Graf 20976f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 20986f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2099c71099acSThomas Graf { 2100d46a9d67SDavid Ahern bool any_src; 2101c71099acSThomas Graf 21024c1feac5SDavid Ahern if (rt6_need_strict(&fl6->daddr)) { 21034c1feac5SDavid Ahern struct dst_entry *dst; 21044c1feac5SDavid Ahern 21054c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2106ca254490SDavid Ahern if (dst) 2107ca254490SDavid Ahern return dst; 21084c1feac5SDavid Ahern } 2109ca254490SDavid Ahern 21101fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 21114dc27d1cSDavid McCullough 2112d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2113741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2114d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 211577d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2116c71099acSThomas Graf 2117d46a9d67SDavid Ahern if (!any_src) 2118adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 21190c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21200c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2121adaa70bbSThomas Graf 2122b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21231da177e4SLinus Torvalds } 21246f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21251da177e4SLinus Torvalds 21262774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 212714e50e57SDavid S. Miller { 21285c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21291dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 213014e50e57SDavid S. Miller struct dst_entry *new = NULL; 213114e50e57SDavid S. Miller 21321dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 213362cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 213414e50e57SDavid S. Miller if (rt) { 21350a1f5962SMartin KaFai Lau rt6_info_init(rt); 213681eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21370a1f5962SMartin KaFai Lau 2138d8d1f30bSChangli Gao new = &rt->dst; 213914e50e57SDavid S. Miller new->__use = 1; 2140352e512cSHerbert Xu new->input = dst_discard; 2141ede2059dSEric W. Biederman new->output = dst_discard_out; 214214e50e57SDavid S. Miller 2143defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 214414e50e57SDavid S. Miller 21451dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21464e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21470a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 214814e50e57SDavid S. Miller 214914e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 215014e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 215114e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 215214e50e57SDavid S. Miller #endif 215314e50e57SDavid S. Miller } 215414e50e57SDavid S. Miller 215569ead7afSDavid S. Miller dst_release(dst_orig); 215669ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 215714e50e57SDavid S. Miller } 215814e50e57SDavid S. Miller 21591da177e4SLinus Torvalds /* 21601da177e4SLinus Torvalds * Destination cache support functions 21611da177e4SLinus Torvalds */ 21621da177e4SLinus Torvalds 21638d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21643da59bd9SMartin KaFai Lau { 216536143645SSteffen Klassert u32 rt_cookie = 0; 2166c5cff856SWei Wang 21678ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 216893531c67SDavid Ahern return false; 216993531c67SDavid Ahern 217093531c67SDavid Ahern if (fib6_check_expired(f6i)) 217193531c67SDavid Ahern return false; 217293531c67SDavid Ahern 217393531c67SDavid Ahern return true; 217493531c67SDavid Ahern } 217593531c67SDavid Ahern 2176a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2177a68886a6SDavid Ahern struct fib6_info *from, 2178a68886a6SDavid Ahern u32 cookie) 21793da59bd9SMartin KaFai Lau { 2180c5cff856SWei Wang u32 rt_cookie = 0; 2181c5cff856SWei Wang 2182a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 218393531c67SDavid Ahern rt_cookie != cookie) 21843da59bd9SMartin KaFai Lau return NULL; 21853da59bd9SMartin KaFai Lau 21863da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 21873da59bd9SMartin KaFai Lau return NULL; 21883da59bd9SMartin KaFai Lau 21893da59bd9SMartin KaFai Lau return &rt->dst; 21903da59bd9SMartin KaFai Lau } 21913da59bd9SMartin KaFai Lau 2192a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2193a68886a6SDavid Ahern struct fib6_info *from, 2194a68886a6SDavid Ahern u32 cookie) 21953da59bd9SMartin KaFai Lau { 21965973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 21975973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2198a68886a6SDavid Ahern fib6_check(from, cookie)) 21993da59bd9SMartin KaFai Lau return &rt->dst; 22003da59bd9SMartin KaFai Lau else 22013da59bd9SMartin KaFai Lau return NULL; 22023da59bd9SMartin KaFai Lau } 22033da59bd9SMartin KaFai Lau 22041da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 22051da177e4SLinus Torvalds { 2206a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2207a68886a6SDavid Ahern struct fib6_info *from; 22081da177e4SLinus Torvalds struct rt6_info *rt; 22091da177e4SLinus Torvalds 2210a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2211a87b7dc9SDavid Ahern 2212a87b7dc9SDavid Ahern rcu_read_lock(); 22131da177e4SLinus Torvalds 22146f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 22156f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 22166f3118b5SNicolas Dichtel * into this function always. 22176f3118b5SNicolas Dichtel */ 2218e3bc10bdSHannes Frederic Sowa 2219a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22204b32b5adSMartin KaFai Lau 2221a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2222a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2223a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22243da59bd9SMartin KaFai Lau else 2225a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2226a87b7dc9SDavid Ahern 2227a87b7dc9SDavid Ahern rcu_read_unlock(); 2228a87b7dc9SDavid Ahern 2229a87b7dc9SDavid Ahern return dst_ret; 22301da177e4SLinus Torvalds } 22311da177e4SLinus Torvalds 22321da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22331da177e4SLinus Torvalds { 22341da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22351da177e4SLinus Torvalds 22361da177e4SLinus Torvalds if (rt) { 223754c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2238c3c14da0SDavid Ahern rcu_read_lock(); 223954c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 224093531c67SDavid Ahern rt6_remove_exception_rt(rt); 224154c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22421da177e4SLinus Torvalds } 2243c3c14da0SDavid Ahern rcu_read_unlock(); 224454c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 224554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 224654c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 224754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 224854c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 224954c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22501da177e4SLinus Torvalds } 22511da177e4SLinus Torvalds 22521da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22531da177e4SLinus Torvalds { 22541da177e4SLinus Torvalds struct rt6_info *rt; 22551da177e4SLinus Torvalds 22563ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22571da177e4SLinus Torvalds 2258adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22591da177e4SLinus Torvalds if (rt) { 22608a14e46fSDavid Ahern rcu_read_lock(); 22611eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 2262ad65a2f0SWei Wang if (dst_hold_safe(&rt->dst)) 226393531c67SDavid Ahern rt6_remove_exception_rt(rt); 2264c5cff856SWei Wang } else { 2265a68886a6SDavid Ahern struct fib6_info *from; 2266c5cff856SWei Wang struct fib6_node *fn; 2267c5cff856SWei Wang 2268a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2269a68886a6SDavid Ahern if (from) { 2270a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2271c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2272c5cff856SWei Wang fn->fn_sernum = -1; 2273a68886a6SDavid Ahern } 22741da177e4SLinus Torvalds } 22751da177e4SLinus Torvalds rcu_read_unlock(); 22761da177e4SLinus Torvalds } 22771da177e4SLinus Torvalds } 22781da177e4SLinus Torvalds 22796a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22806a3e030fSDavid Ahern { 2281a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2282a68886a6SDavid Ahern struct fib6_info *from; 2283a68886a6SDavid Ahern 2284a68886a6SDavid Ahern rcu_read_lock(); 2285a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2286a68886a6SDavid Ahern if (from) 2287a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2288a68886a6SDavid Ahern rcu_read_unlock(); 2289a68886a6SDavid Ahern } 22906a3e030fSDavid Ahern 22916a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 22926a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 22936700c270SDavid S. Miller } 22941da177e4SLinus Torvalds 229545e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 229645e4fd26SMartin KaFai Lau { 229745e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 229845e4fd26SMartin KaFai Lau 2299d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 230045e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 230145e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 230245e4fd26SMartin KaFai Lau } 230345e4fd26SMartin KaFai Lau 23040d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 23050d3f6d29SMartin KaFai Lau { 2306a68886a6SDavid Ahern bool from_set; 2307a68886a6SDavid Ahern 2308a68886a6SDavid Ahern rcu_read_lock(); 2309a68886a6SDavid Ahern from_set = !!rcu_dereference(rt->from); 2310a68886a6SDavid Ahern rcu_read_unlock(); 2311a68886a6SDavid Ahern 23120d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 2313a68886a6SDavid Ahern (rt->rt6i_flags & RTF_PCPU || from_set); 23140d3f6d29SMartin KaFai Lau } 23150d3f6d29SMartin KaFai Lau 231645e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 231745e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 23181da177e4SLinus Torvalds { 23190dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23201da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23211da177e4SLinus Torvalds 232219bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 232319bda36cSXin Long return; 232419bda36cSXin Long 232545e4fd26SMartin KaFai Lau if (iph) { 232645e4fd26SMartin KaFai Lau daddr = &iph->daddr; 232745e4fd26SMartin KaFai Lau saddr = &iph->saddr; 232845e4fd26SMartin KaFai Lau } else if (sk) { 232945e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 233045e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 233145e4fd26SMartin KaFai Lau } else { 23320dec879fSJulian Anastasov daddr = NULL; 23330dec879fSJulian Anastasov saddr = NULL; 23341da177e4SLinus Torvalds } 23350dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23360dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23370dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23380dec879fSJulian Anastasov return; 23390dec879fSJulian Anastasov 23400dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23410dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23422b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23432b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23442b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23450dec879fSJulian Anastasov } else if (daddr) { 2346a68886a6SDavid Ahern struct fib6_info *from; 23470dec879fSJulian Anastasov struct rt6_info *nrt6; 23480dec879fSJulian Anastasov 23494d85cd0cSDavid Ahern rcu_read_lock(); 2350a68886a6SDavid Ahern from = rcu_dereference(rt6->from); 2351a68886a6SDavid Ahern nrt6 = ip6_rt_cache_alloc(from, daddr, saddr); 235245e4fd26SMartin KaFai Lau if (nrt6) { 235345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 2354a68886a6SDavid Ahern if (rt6_insert_exception(nrt6, from)) 23552b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 235645e4fd26SMartin KaFai Lau } 2357a68886a6SDavid Ahern rcu_read_unlock(); 235845e4fd26SMartin KaFai Lau } 235945e4fd26SMartin KaFai Lau } 236045e4fd26SMartin KaFai Lau 236145e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 236245e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 236345e4fd26SMartin KaFai Lau { 236445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23651da177e4SLinus Torvalds } 23661da177e4SLinus Torvalds 236742ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2368e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 236981aded24SDavid S. Miller { 237081aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 237181aded24SDavid S. Miller struct dst_entry *dst; 237281aded24SDavid S. Miller struct flowi6 fl6; 237381aded24SDavid S. Miller 237481aded24SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 237581aded24SDavid S. Miller fl6.flowi6_oif = oif; 23761b3c61dcSLorenzo Colitti fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark); 237781aded24SDavid S. Miller fl6.daddr = iph->daddr; 237881aded24SDavid S. Miller fl6.saddr = iph->saddr; 23796502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2380e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 238181aded24SDavid S. Miller 238281aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 238381aded24SDavid S. Miller if (!dst->error) 238445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 238581aded24SDavid S. Miller dst_release(dst); 238681aded24SDavid S. Miller } 238781aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 238881aded24SDavid S. Miller 238981aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 239081aded24SDavid S. Miller { 239133c162a9SMartin KaFai Lau struct dst_entry *dst; 239233c162a9SMartin KaFai Lau 239381aded24SDavid S. Miller ip6_update_pmtu(skb, sock_net(sk), mtu, 2394e2d118a1SLorenzo Colitti sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid); 239533c162a9SMartin KaFai Lau 239633c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 239733c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 239833c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 239933c162a9SMartin KaFai Lau return; 240033c162a9SMartin KaFai Lau 240133c162a9SMartin KaFai Lau bh_lock_sock(sk); 240233c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 240333c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 240433c162a9SMartin KaFai Lau bh_unlock_sock(sk); 240581aded24SDavid S. Miller } 240681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 240781aded24SDavid S. Miller 24087d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 24097d6850f7SAlexey Kodanev const struct flowi6 *fl6) 24107d6850f7SAlexey Kodanev { 24117d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24127d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 24137d6850f7SAlexey Kodanev #endif 24147d6850f7SAlexey Kodanev 24157d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 24167d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 24177d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 24187d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24197d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24207d6850f7SAlexey Kodanev &np->saddr : 24217d6850f7SAlexey Kodanev #endif 24227d6850f7SAlexey Kodanev NULL); 24237d6850f7SAlexey Kodanev } 24247d6850f7SAlexey Kodanev 2425b55b76b2SDuan Jiong /* Handle redirects */ 2426b55b76b2SDuan Jiong struct ip6rd_flowi { 2427b55b76b2SDuan Jiong struct flowi6 fl6; 2428b55b76b2SDuan Jiong struct in6_addr gateway; 2429b55b76b2SDuan Jiong }; 2430b55b76b2SDuan Jiong 2431b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2432b55b76b2SDuan Jiong struct fib6_table *table, 2433b55b76b2SDuan Jiong struct flowi6 *fl6, 2434b75cc8f9SDavid Ahern const struct sk_buff *skb, 2435b55b76b2SDuan Jiong int flags) 2436b55b76b2SDuan Jiong { 2437b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 243823fb93a4SDavid Ahern struct rt6_info *ret = NULL, *rt_cache; 24398d1c802bSDavid Ahern struct fib6_info *rt; 2440b55b76b2SDuan Jiong struct fib6_node *fn; 2441b55b76b2SDuan Jiong 2442b55b76b2SDuan Jiong /* Get the "current" route for this destination and 244367c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2444b55b76b2SDuan Jiong * 2445b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2446b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2447b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2448b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2449b55b76b2SDuan Jiong * routes. 2450b55b76b2SDuan Jiong */ 2451b55b76b2SDuan Jiong 245266f5d6ceSWei Wang rcu_read_lock(); 24536454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2454b55b76b2SDuan Jiong restart: 245566f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 24565e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 24578067bb8cSIdo Schimmel continue; 245814895687SDavid Ahern if (fib6_check_expired(rt)) 2459b55b76b2SDuan Jiong continue; 246093c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2461b55b76b2SDuan Jiong break; 246293c2fb25SDavid Ahern if (!(rt->fib6_flags & RTF_GATEWAY)) 2463b55b76b2SDuan Jiong continue; 24645e670d84SDavid Ahern if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex) 2465b55b76b2SDuan Jiong continue; 24662b760fcfSWei Wang /* rt_cache's gateway might be different from its 'parent' 24672b760fcfSWei Wang * in the case of an ip redirect. 24682b760fcfSWei Wang * So we keep searching in the exception table if the gateway 24692b760fcfSWei Wang * is different. 24702b760fcfSWei Wang */ 24715e670d84SDavid Ahern if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) { 24722b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, 24732b760fcfSWei Wang &fl6->daddr, 24742b760fcfSWei Wang &fl6->saddr); 24752b760fcfSWei Wang if (rt_cache && 24762b760fcfSWei Wang ipv6_addr_equal(&rdfl->gateway, 24772b760fcfSWei Wang &rt_cache->rt6i_gateway)) { 247823fb93a4SDavid Ahern ret = rt_cache; 24792b760fcfSWei Wang break; 24802b760fcfSWei Wang } 2481b55b76b2SDuan Jiong continue; 24822b760fcfSWei Wang } 2483b55b76b2SDuan Jiong break; 2484b55b76b2SDuan Jiong } 2485b55b76b2SDuan Jiong 2486b55b76b2SDuan Jiong if (!rt) 2487421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 248893c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 248923fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2490b0a1ba59SMartin KaFai Lau goto out; 2491b0a1ba59SMartin KaFai Lau } 2492b0a1ba59SMartin KaFai Lau 2493421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2494a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2495a3c00e46SMartin KaFai Lau if (fn) 2496a3c00e46SMartin KaFai Lau goto restart; 2497b55b76b2SDuan Jiong } 2498a3c00e46SMartin KaFai Lau 2499b0a1ba59SMartin KaFai Lau out: 250023fb93a4SDavid Ahern if (ret) 2501e873e4b9SWei Wang ip6_hold_safe(net, &ret, true); 250223fb93a4SDavid Ahern else 250323fb93a4SDavid Ahern ret = ip6_create_rt_rcu(rt); 2504b55b76b2SDuan Jiong 250566f5d6ceSWei Wang rcu_read_unlock(); 2506b55b76b2SDuan Jiong 2507b65f164dSPaolo Abeni trace_fib6_table_lookup(net, rt, table, fl6); 250823fb93a4SDavid Ahern return ret; 2509b55b76b2SDuan Jiong }; 2510b55b76b2SDuan Jiong 2511b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2512b55b76b2SDuan Jiong const struct flowi6 *fl6, 2513b75cc8f9SDavid Ahern const struct sk_buff *skb, 2514b55b76b2SDuan Jiong const struct in6_addr *gateway) 2515b55b76b2SDuan Jiong { 2516b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2517b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2518b55b76b2SDuan Jiong 2519b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2520b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2521b55b76b2SDuan Jiong 2522b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2523b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2524b55b76b2SDuan Jiong } 2525b55b76b2SDuan Jiong 2526e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2527e2d118a1SLorenzo Colitti kuid_t uid) 25283a5ad2eeSDavid S. Miller { 25293a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25303a5ad2eeSDavid S. Miller struct dst_entry *dst; 25313a5ad2eeSDavid S. Miller struct flowi6 fl6; 25323a5ad2eeSDavid S. Miller 25333a5ad2eeSDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 2534e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 25353a5ad2eeSDavid S. Miller fl6.flowi6_oif = oif; 25363a5ad2eeSDavid S. Miller fl6.flowi6_mark = mark; 25373a5ad2eeSDavid S. Miller fl6.daddr = iph->daddr; 25383a5ad2eeSDavid S. Miller fl6.saddr = iph->saddr; 25396502ca52SYOSHIFUJI Hideaki / 吉藤英明 fl6.flowlabel = ip6_flowinfo(iph); 2540e2d118a1SLorenzo Colitti fl6.flowi6_uid = uid; 25413a5ad2eeSDavid S. Miller 2542b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25436700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25443a5ad2eeSDavid S. Miller dst_release(dst); 25453a5ad2eeSDavid S. Miller } 25463a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25473a5ad2eeSDavid S. Miller 2548c92a59ecSDuan Jiong void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif, 2549c92a59ecSDuan Jiong u32 mark) 2550c92a59ecSDuan Jiong { 2551c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2552c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2553c92a59ecSDuan Jiong struct dst_entry *dst; 2554c92a59ecSDuan Jiong struct flowi6 fl6; 2555c92a59ecSDuan Jiong 2556c92a59ecSDuan Jiong memset(&fl6, 0, sizeof(fl6)); 2557e374c618SJulian Anastasov fl6.flowi6_iif = LOOPBACK_IFINDEX; 2558c92a59ecSDuan Jiong fl6.flowi6_oif = oif; 2559c92a59ecSDuan Jiong fl6.flowi6_mark = mark; 2560c92a59ecSDuan Jiong fl6.daddr = msg->dest; 2561c92a59ecSDuan Jiong fl6.saddr = iph->daddr; 2562e2d118a1SLorenzo Colitti fl6.flowi6_uid = sock_net_uid(net, NULL); 2563c92a59ecSDuan Jiong 2564b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2565c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2566c92a59ecSDuan Jiong dst_release(dst); 2567c92a59ecSDuan Jiong } 2568c92a59ecSDuan Jiong 25693a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 25703a5ad2eeSDavid S. Miller { 2571e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2572e2d118a1SLorenzo Colitti sk->sk_uid); 25733a5ad2eeSDavid S. Miller } 25743a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 25753a5ad2eeSDavid S. Miller 25760dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 25771da177e4SLinus Torvalds { 25780dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 25790dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 25800dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 25810dbaee3bSDavid S. Miller 25821da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 25831da177e4SLinus Torvalds 25845578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 25855578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 25861da177e4SLinus Torvalds 25871da177e4SLinus Torvalds /* 25881da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 25891da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 25901da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 25911da177e4SLinus Torvalds * rely only on pmtu discovery" 25921da177e4SLinus Torvalds */ 25931da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 25941da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 25951da177e4SLinus Torvalds return mtu; 25961da177e4SLinus Torvalds } 25971da177e4SLinus Torvalds 2598ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2599d33e4553SDavid S. Miller { 2600d33e4553SDavid S. Miller struct inet6_dev *idev; 2601d4ead6b3SDavid Ahern unsigned int mtu; 2602618f9bc7SSteffen Klassert 26034b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 26044b32b5adSMartin KaFai Lau if (mtu) 26054b32b5adSMartin KaFai Lau goto out; 26064b32b5adSMartin KaFai Lau 2607618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2608d33e4553SDavid S. Miller 2609d33e4553SDavid S. Miller rcu_read_lock(); 2610d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2611d33e4553SDavid S. Miller if (idev) 2612d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2613d33e4553SDavid S. Miller rcu_read_unlock(); 2614d33e4553SDavid S. Miller 261530f78d8eSEric Dumazet out: 261614972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 261714972cbdSRoopa Prabhu 261814972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2619d33e4553SDavid S. Miller } 2620d33e4553SDavid S. Miller 2621901731b8SDavid Ahern /* MTU selection: 2622901731b8SDavid Ahern * 1. mtu on route is locked - use it 2623901731b8SDavid Ahern * 2. mtu from nexthop exception 2624901731b8SDavid Ahern * 3. mtu from egress device 2625901731b8SDavid Ahern * 2626901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2627901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2628901731b8SDavid Ahern */ 2629901731b8SDavid Ahern u32 ip6_mtu_from_fib6(struct fib6_info *f6i, struct in6_addr *daddr, 2630901731b8SDavid Ahern struct in6_addr *saddr) 2631901731b8SDavid Ahern { 2632901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2633901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2634901731b8SDavid Ahern struct in6_addr *src_key; 2635901731b8SDavid Ahern struct inet6_dev *idev; 2636901731b8SDavid Ahern u32 mtu = 0; 2637901731b8SDavid Ahern 2638901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2639901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2640901731b8SDavid Ahern if (mtu) 2641901731b8SDavid Ahern goto out; 2642901731b8SDavid Ahern } 2643901731b8SDavid Ahern 2644901731b8SDavid Ahern src_key = NULL; 2645901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2646901731b8SDavid Ahern if (f6i->fib6_src.plen) 2647901731b8SDavid Ahern src_key = saddr; 2648901731b8SDavid Ahern #endif 2649901731b8SDavid Ahern 2650901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2651901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2652901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2653901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2654901731b8SDavid Ahern 2655901731b8SDavid Ahern if (likely(!mtu)) { 2656901731b8SDavid Ahern struct net_device *dev = fib6_info_nh_dev(f6i); 2657901731b8SDavid Ahern 2658901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2659901731b8SDavid Ahern idev = __in6_dev_get(dev); 2660901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2661901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2662901731b8SDavid Ahern } 2663901731b8SDavid Ahern 2664901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2665901731b8SDavid Ahern out: 2666901731b8SDavid Ahern return mtu - lwtunnel_headroom(fib6_info_nh_lwt(f6i), mtu); 2667901731b8SDavid Ahern } 2668901731b8SDavid Ahern 26693b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 267087a11578SDavid S. Miller struct flowi6 *fl6) 26711da177e4SLinus Torvalds { 267287a11578SDavid S. Miller struct dst_entry *dst; 26731da177e4SLinus Torvalds struct rt6_info *rt; 26741da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2675c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 26761da177e4SLinus Torvalds 267738308473SDavid S. Miller if (unlikely(!idev)) 2678122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 26791da177e4SLinus Torvalds 2680ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 268138308473SDavid S. Miller if (unlikely(!rt)) { 26821da177e4SLinus Torvalds in6_dev_put(idev); 268387a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 26841da177e4SLinus Torvalds goto out; 26851da177e4SLinus Torvalds } 26861da177e4SLinus Torvalds 26878e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2688588753f1SBrendan McGrath rt->dst.input = ip6_input; 26898e2ec639SYan, Zheng rt->dst.output = ip6_output; 2690550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 269187a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 26928e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 26938e2ec639SYan, Zheng rt->rt6i_idev = idev; 269414edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 26951da177e4SLinus Torvalds 26964c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2697587fea74SWei Wang * do proper release of the net_device 2698587fea74SWei Wang */ 2699587fea74SWei Wang rt6_uncached_list_add(rt); 270081eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 27011da177e4SLinus Torvalds 270287a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 270387a11578SDavid S. Miller 27041da177e4SLinus Torvalds out: 270587a11578SDavid S. Miller return dst; 27061da177e4SLinus Torvalds } 27071da177e4SLinus Torvalds 2708569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 27091da177e4SLinus Torvalds { 271086393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 27117019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 27127019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 27137019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 27147019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 27157019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2716fc66f95cSEric Dumazet int entries; 27171da177e4SLinus Torvalds 2718fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 271949a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2720fc66f95cSEric Dumazet entries <= rt_max_size) 27211da177e4SLinus Torvalds goto out; 27221da177e4SLinus Torvalds 27236891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 272414956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2725fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2726fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27277019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27281da177e4SLinus Torvalds out: 27297019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2730fc66f95cSEric Dumazet return entries > rt_max_size; 27311da177e4SLinus Torvalds } 27321da177e4SLinus Torvalds 27338d1c802bSDavid Ahern static int ip6_convert_metrics(struct net *net, struct fib6_info *rt, 2734d4ead6b3SDavid Ahern struct fib6_config *cfg) 2735e715b6d3SFlorian Westphal { 2736263243d6SEric Dumazet struct dst_metrics *p; 2737e715b6d3SFlorian Westphal 273863159f29SIan Morris if (!cfg->fc_mx) 2739e715b6d3SFlorian Westphal return 0; 2740e715b6d3SFlorian Westphal 2741263243d6SEric Dumazet p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL); 2742263243d6SEric Dumazet if (unlikely(!p)) 2743e715b6d3SFlorian Westphal return -ENOMEM; 2744e715b6d3SFlorian Westphal 2745263243d6SEric Dumazet refcount_set(&p->refcnt, 1); 2746263243d6SEric Dumazet rt->fib6_metrics = p; 2747ea697639SDaniel Borkmann 2748263243d6SEric Dumazet return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics); 2749e715b6d3SFlorian Westphal } 27501da177e4SLinus Torvalds 27518c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27528c14586fSDavid Ahern struct fib6_config *cfg, 2753f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2754f4797b33SDavid Ahern u32 tbid, int flags) 27558c14586fSDavid Ahern { 27568c14586fSDavid Ahern struct flowi6 fl6 = { 27578c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27588c14586fSDavid Ahern .daddr = *gw_addr, 27598c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27608c14586fSDavid Ahern }; 27618c14586fSDavid Ahern struct fib6_table *table; 27628c14586fSDavid Ahern struct rt6_info *rt; 27638c14586fSDavid Ahern 2764f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27658c14586fSDavid Ahern if (!table) 27668c14586fSDavid Ahern return NULL; 27678c14586fSDavid Ahern 27688c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27698c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27708c14586fSDavid Ahern 2771f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2772b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27738c14586fSDavid Ahern 27748c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27758c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27768c14586fSDavid Ahern ip6_rt_put(rt); 27778c14586fSDavid Ahern rt = NULL; 27788c14586fSDavid Ahern } 27798c14586fSDavid Ahern 27808c14586fSDavid Ahern return rt; 27818c14586fSDavid Ahern } 27828c14586fSDavid Ahern 2783fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2784fc1e64e1SDavid Ahern struct fib6_config *cfg, 27859fbb704cSDavid Ahern const struct net_device *dev, 2786fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2787fc1e64e1SDavid Ahern { 278844750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2789fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2790fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2791fc1e64e1SDavid Ahern struct rt6_info *grt; 2792fc1e64e1SDavid Ahern int err; 2793fc1e64e1SDavid Ahern 2794fc1e64e1SDavid Ahern err = 0; 2795fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2796fc1e64e1SDavid Ahern if (grt) { 279758e354c0SDavid Ahern if (!grt->dst.error && 279858e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 279944750f84SDavid Ahern NL_SET_ERR_MSG(extack, 280044750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2801fc1e64e1SDavid Ahern err = -EINVAL; 2802fc1e64e1SDavid Ahern } 2803fc1e64e1SDavid Ahern 2804fc1e64e1SDavid Ahern ip6_rt_put(grt); 2805fc1e64e1SDavid Ahern } 2806fc1e64e1SDavid Ahern 2807fc1e64e1SDavid Ahern return err; 2808fc1e64e1SDavid Ahern } 2809fc1e64e1SDavid Ahern 28101edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 28111edce99fSDavid Ahern struct fib6_config *cfg, 28121edce99fSDavid Ahern struct net_device **_dev, 28131edce99fSDavid Ahern struct inet6_dev **idev) 28141edce99fSDavid Ahern { 28151edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28161edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 28171edce99fSDavid Ahern struct rt6_info *grt = NULL; 28181edce99fSDavid Ahern int err = -EHOSTUNREACH; 28191edce99fSDavid Ahern 28201edce99fSDavid Ahern if (cfg->fc_table) { 2821f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2822f4797b33SDavid Ahern 2823f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2824f4797b33SDavid Ahern cfg->fc_table, flags); 28251edce99fSDavid Ahern if (grt) { 28261edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28271edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28281edce99fSDavid Ahern ip6_rt_put(grt); 28291edce99fSDavid Ahern grt = NULL; 28301edce99fSDavid Ahern } 28311edce99fSDavid Ahern } 28321edce99fSDavid Ahern } 28331edce99fSDavid Ahern 28341edce99fSDavid Ahern if (!grt) 2835b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28361edce99fSDavid Ahern 28371edce99fSDavid Ahern if (!grt) 28381edce99fSDavid Ahern goto out; 28391edce99fSDavid Ahern 28401edce99fSDavid Ahern if (dev) { 28411edce99fSDavid Ahern if (dev != grt->dst.dev) { 28421edce99fSDavid Ahern ip6_rt_put(grt); 28431edce99fSDavid Ahern goto out; 28441edce99fSDavid Ahern } 28451edce99fSDavid Ahern } else { 28461edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28471edce99fSDavid Ahern *idev = grt->rt6i_idev; 28481edce99fSDavid Ahern dev_hold(dev); 28491edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28501edce99fSDavid Ahern } 28511edce99fSDavid Ahern 28521edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28531edce99fSDavid Ahern err = 0; 28541edce99fSDavid Ahern 28551edce99fSDavid Ahern ip6_rt_put(grt); 28561edce99fSDavid Ahern 28571edce99fSDavid Ahern out: 28581edce99fSDavid Ahern return err; 28591edce99fSDavid Ahern } 28601edce99fSDavid Ahern 28619fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28629fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28639fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28649fbb704cSDavid Ahern { 28659fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28669fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2867232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28689fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2869232378e8SDavid Ahern bool need_addr_check = !dev; 28709fbb704cSDavid Ahern int err = -EINVAL; 28719fbb704cSDavid Ahern 28729fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28739fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 28749fbb704cSDavid Ahern * will return already-added prefix route via interface that 28759fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 28769fbb704cSDavid Ahern */ 2877232378e8SDavid Ahern if (dev && 2878232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2879232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 28809fbb704cSDavid Ahern goto out; 28819fbb704cSDavid Ahern } 28829fbb704cSDavid Ahern 28839fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 28849fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 28859fbb704cSDavid Ahern * addresses as nexthop address. 28869fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 28879fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 28889fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 28899fbb704cSDavid Ahern * some exceptions. --ANK 28909fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 28919fbb704cSDavid Ahern * addressing 28929fbb704cSDavid Ahern */ 28939fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 28949fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 28959fbb704cSDavid Ahern goto out; 28969fbb704cSDavid Ahern } 28979fbb704cSDavid Ahern 28989fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 28999fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 29009fbb704cSDavid Ahern else 29019fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 29029fbb704cSDavid Ahern 29039fbb704cSDavid Ahern if (err) 29049fbb704cSDavid Ahern goto out; 29059fbb704cSDavid Ahern } 29069fbb704cSDavid Ahern 29079fbb704cSDavid Ahern /* reload in case device was changed */ 29089fbb704cSDavid Ahern dev = *_dev; 29099fbb704cSDavid Ahern 29109fbb704cSDavid Ahern err = -EINVAL; 29119fbb704cSDavid Ahern if (!dev) { 29129fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 29139fbb704cSDavid Ahern goto out; 29149fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 29159fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 29169fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 29179fbb704cSDavid Ahern goto out; 29189fbb704cSDavid Ahern } 2919232378e8SDavid Ahern 2920232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2921232378e8SDavid Ahern * egress device has been resolved. 2922232378e8SDavid Ahern */ 2923232378e8SDavid Ahern if (need_addr_check && 2924232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2925232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2926232378e8SDavid Ahern goto out; 2927232378e8SDavid Ahern } 2928232378e8SDavid Ahern 29299fbb704cSDavid Ahern err = 0; 29309fbb704cSDavid Ahern out: 29319fbb704cSDavid Ahern return err; 29329fbb704cSDavid Ahern } 29339fbb704cSDavid Ahern 29348d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 2935acb54e3cSDavid Ahern gfp_t gfp_flags, 2936333c4301SDavid Ahern struct netlink_ext_ack *extack) 29371da177e4SLinus Torvalds { 29385578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 29398d1c802bSDavid Ahern struct fib6_info *rt = NULL; 29401da177e4SLinus Torvalds struct net_device *dev = NULL; 29411da177e4SLinus Torvalds struct inet6_dev *idev = NULL; 2942c71099acSThomas Graf struct fib6_table *table; 29431da177e4SLinus Torvalds int addr_type; 29448c5b83f0SRoopa Prabhu int err = -EINVAL; 29451da177e4SLinus Torvalds 2946557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 2947d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 2948d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 2949557c44beSDavid Ahern goto out; 2950d5d531cbSDavid Ahern } 2951557c44beSDavid Ahern 29522ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 29532ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 29542ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 29552ea2352eSWei Wang goto out; 29562ea2352eSWei Wang } 29572ea2352eSWei Wang 2958e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 2959e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 2960e8478e80SDavid Ahern goto out; 2961e8478e80SDavid Ahern } 2962e8478e80SDavid Ahern 2963d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 2964d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 29658c5b83f0SRoopa Prabhu goto out; 2966d5d531cbSDavid Ahern } 2967d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 2968d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 2969d5d531cbSDavid Ahern goto out; 2970d5d531cbSDavid Ahern } 29711da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 2972d5d531cbSDavid Ahern if (cfg->fc_src_len) { 2973d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 2974d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 29758c5b83f0SRoopa Prabhu goto out; 2976d5d531cbSDavid Ahern } 29771da177e4SLinus Torvalds #endif 297886872cb5SThomas Graf if (cfg->fc_ifindex) { 29791da177e4SLinus Torvalds err = -ENODEV; 29805578689aSDaniel Lezcano dev = dev_get_by_index(net, cfg->fc_ifindex); 29811da177e4SLinus Torvalds if (!dev) 29821da177e4SLinus Torvalds goto out; 29831da177e4SLinus Torvalds idev = in6_dev_get(dev); 29841da177e4SLinus Torvalds if (!idev) 29851da177e4SLinus Torvalds goto out; 29861da177e4SLinus Torvalds } 29871da177e4SLinus Torvalds 298886872cb5SThomas Graf if (cfg->fc_metric == 0) 298986872cb5SThomas Graf cfg->fc_metric = IP6_RT_PRIO_USER; 29901da177e4SLinus Torvalds 2991fc1e64e1SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 2992fc1e64e1SDavid Ahern if (!dev) { 2993fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, 2994fc1e64e1SDavid Ahern "Nexthop device required for onlink"); 2995fc1e64e1SDavid Ahern err = -ENODEV; 2996fc1e64e1SDavid Ahern goto out; 2997fc1e64e1SDavid Ahern } 2998fc1e64e1SDavid Ahern 2999fc1e64e1SDavid Ahern if (!(dev->flags & IFF_UP)) { 3000fc1e64e1SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3001fc1e64e1SDavid Ahern err = -ENETDOWN; 3002fc1e64e1SDavid Ahern goto out; 3003fc1e64e1SDavid Ahern } 3004fc1e64e1SDavid Ahern } 3005fc1e64e1SDavid Ahern 3006c71099acSThomas Graf err = -ENOBUFS; 300738308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3008d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3009d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 301038308473SDavid S. Miller if (!table) { 3011f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3012d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3013d71314b4SMatti Vaittinen } 3014d71314b4SMatti Vaittinen } else { 3015d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3016d71314b4SMatti Vaittinen } 301738308473SDavid S. Miller 301838308473SDavid S. Miller if (!table) 3019c71099acSThomas Graf goto out; 3020c71099acSThomas Graf 30211da177e4SLinus Torvalds err = -ENOMEM; 302293531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 302393531c67SDavid Ahern if (!rt) 30241da177e4SLinus Torvalds goto out; 302593531c67SDavid Ahern 302693531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 302793531c67SDavid Ahern rt->dst_nocount = true; 30281da177e4SLinus Torvalds 3029d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, cfg); 3030d4ead6b3SDavid Ahern if (err < 0) 3031d4ead6b3SDavid Ahern goto out; 30321da177e4SLinus Torvalds 30331716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 303414895687SDavid Ahern fib6_set_expires(rt, jiffies + 30351716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 30361716a961SGao feng else 303714895687SDavid Ahern fib6_clean_expires(rt); 30381da177e4SLinus Torvalds 303986872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 304086872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 304193c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 304286872cb5SThomas Graf 304386872cb5SThomas Graf addr_type = ipv6_addr_type(&cfg->fc_dst); 30441da177e4SLinus Torvalds 304519e42e45SRoopa Prabhu if (cfg->fc_encap) { 304619e42e45SRoopa Prabhu struct lwtunnel_state *lwtstate; 304719e42e45SRoopa Prabhu 304830357d7dSDavid Ahern err = lwtunnel_build_state(cfg->fc_encap_type, 3049127eb7cdSTom Herbert cfg->fc_encap, AF_INET6, cfg, 30509ae28727SDavid Ahern &lwtstate, extack); 305119e42e45SRoopa Prabhu if (err) 305219e42e45SRoopa Prabhu goto out; 30535e670d84SDavid Ahern rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate); 305425368623STom Herbert } 305519e42e45SRoopa Prabhu 305693c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 305793c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 305893c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 30593b6761d1SDavid Ahern rt->dst_host = true; 30601da177e4SLinus Torvalds 30611da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 306293c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 306393c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 30641da177e4SLinus Torvalds #endif 30651da177e4SLinus Torvalds 306693c2fb25SDavid Ahern rt->fib6_metric = cfg->fc_metric; 30675e670d84SDavid Ahern rt->fib6_nh.nh_weight = 1; 30681da177e4SLinus Torvalds 3069e8478e80SDavid Ahern rt->fib6_type = cfg->fc_type; 30701da177e4SLinus Torvalds 30711da177e4SLinus Torvalds /* We cannot add true routes via loopback here, 30721da177e4SLinus Torvalds they would result in kernel looping; promote them to reject routes 30731da177e4SLinus Torvalds */ 307486872cb5SThomas Graf if ((cfg->fc_flags & RTF_REJECT) || 307538308473SDavid S. Miller (dev && (dev->flags & IFF_LOOPBACK) && 307638308473SDavid S. Miller !(addr_type & IPV6_ADDR_LOOPBACK) && 307738308473SDavid S. Miller !(cfg->fc_flags & RTF_LOCAL))) { 30781da177e4SLinus Torvalds /* hold loopback dev/idev if we haven't done so. */ 30795578689aSDaniel Lezcano if (dev != net->loopback_dev) { 30801da177e4SLinus Torvalds if (dev) { 30811da177e4SLinus Torvalds dev_put(dev); 30821da177e4SLinus Torvalds in6_dev_put(idev); 30831da177e4SLinus Torvalds } 30845578689aSDaniel Lezcano dev = net->loopback_dev; 30851da177e4SLinus Torvalds dev_hold(dev); 30861da177e4SLinus Torvalds idev = in6_dev_get(dev); 30871da177e4SLinus Torvalds if (!idev) { 30881da177e4SLinus Torvalds err = -ENODEV; 30891da177e4SLinus Torvalds goto out; 30901da177e4SLinus Torvalds } 30911da177e4SLinus Torvalds } 309293c2fb25SDavid Ahern rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP; 30931da177e4SLinus Torvalds goto install_route; 30941da177e4SLinus Torvalds } 30951da177e4SLinus Torvalds 309686872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY) { 30979fbb704cSDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 30981da177e4SLinus Torvalds if (err) 30991da177e4SLinus Torvalds goto out; 31009fbb704cSDavid Ahern 310193531c67SDavid Ahern rt->fib6_nh.nh_gw = cfg->fc_gateway; 31021da177e4SLinus Torvalds } 31031da177e4SLinus Torvalds 31041da177e4SLinus Torvalds err = -ENODEV; 310538308473SDavid S. Miller if (!dev) 31061da177e4SLinus Torvalds goto out; 31071da177e4SLinus Torvalds 3108428604fbSLorenzo Bianconi if (idev->cnf.disable_ipv6) { 3109428604fbSLorenzo Bianconi NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 3110428604fbSLorenzo Bianconi err = -EACCES; 3111428604fbSLorenzo Bianconi goto out; 3112428604fbSLorenzo Bianconi } 3113428604fbSLorenzo Bianconi 3114955ec4cbSDavid Ahern if (!(dev->flags & IFF_UP)) { 3115955ec4cbSDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 3116955ec4cbSDavid Ahern err = -ENETDOWN; 3117955ec4cbSDavid Ahern goto out; 3118955ec4cbSDavid Ahern } 3119955ec4cbSDavid Ahern 3120c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 3121c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3122d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3123c3968a85SDaniel Walter err = -EINVAL; 3124c3968a85SDaniel Walter goto out; 3125c3968a85SDaniel Walter } 312693c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 312793c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3128c3968a85SDaniel Walter } else 312993c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3130c3968a85SDaniel Walter 313193c2fb25SDavid Ahern rt->fib6_flags = cfg->fc_flags; 31321da177e4SLinus Torvalds 31331da177e4SLinus Torvalds install_route: 313493c2fb25SDavid Ahern if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) && 31355609b80aSIdo Schimmel !netif_carrier_ok(dev)) 31365e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 31375e670d84SDavid Ahern rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK); 313893531c67SDavid Ahern rt->fib6_nh.nh_dev = dev; 313993c2fb25SDavid Ahern rt->fib6_table = table; 314063152fc0SDaniel Lezcano 3141c346dca1SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = dev_net(dev); 314263152fc0SDaniel Lezcano 3143dcd1f572SDavid Ahern if (idev) 3144dcd1f572SDavid Ahern in6_dev_put(idev); 3145dcd1f572SDavid Ahern 31468c5b83f0SRoopa Prabhu return rt; 31471da177e4SLinus Torvalds out: 31481da177e4SLinus Torvalds if (dev) 31491da177e4SLinus Torvalds dev_put(dev); 31501da177e4SLinus Torvalds if (idev) 31511da177e4SLinus Torvalds in6_dev_put(idev); 31526b9ea5a6SRoopa Prabhu 315393531c67SDavid Ahern fib6_info_release(rt); 31548c5b83f0SRoopa Prabhu return ERR_PTR(err); 31556b9ea5a6SRoopa Prabhu } 31566b9ea5a6SRoopa Prabhu 3157acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3158333c4301SDavid Ahern struct netlink_ext_ack *extack) 31596b9ea5a6SRoopa Prabhu { 31608d1c802bSDavid Ahern struct fib6_info *rt; 31616b9ea5a6SRoopa Prabhu int err; 31626b9ea5a6SRoopa Prabhu 3163acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3164d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3165d4ead6b3SDavid Ahern return PTR_ERR(rt); 31666b9ea5a6SRoopa Prabhu 3167d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 316893531c67SDavid Ahern fib6_info_release(rt); 31696b9ea5a6SRoopa Prabhu 31701da177e4SLinus Torvalds return err; 31711da177e4SLinus Torvalds } 31721da177e4SLinus Torvalds 31738d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 31741da177e4SLinus Torvalds { 3175afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3176c71099acSThomas Graf struct fib6_table *table; 3177afb1d4b5SDavid Ahern int err; 31781da177e4SLinus Torvalds 3179421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 31806825a26cSGao feng err = -ENOENT; 31816825a26cSGao feng goto out; 31826825a26cSGao feng } 31836c813a72SPatrick McHardy 318493c2fb25SDavid Ahern table = rt->fib6_table; 318566f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 318686872cb5SThomas Graf err = fib6_del(rt, info); 318766f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 31881da177e4SLinus Torvalds 31896825a26cSGao feng out: 319093531c67SDavid Ahern fib6_info_release(rt); 31911da177e4SLinus Torvalds return err; 31921da177e4SLinus Torvalds } 31931da177e4SLinus Torvalds 31948d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3195e0a1ad73SThomas Graf { 3196afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3197afb1d4b5SDavid Ahern 3198528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3199e0a1ad73SThomas Graf } 3200e0a1ad73SThomas Graf 32018d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 32020ae81335SDavid Ahern { 32030ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3204e3330039SWANG Cong struct net *net = info->nl_net; 320516a16cd3SDavid Ahern struct sk_buff *skb = NULL; 32060ae81335SDavid Ahern struct fib6_table *table; 3207e3330039SWANG Cong int err = -ENOENT; 32080ae81335SDavid Ahern 3209421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3210e3330039SWANG Cong goto out_put; 321193c2fb25SDavid Ahern table = rt->fib6_table; 321266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32130ae81335SDavid Ahern 321493c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32158d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32160ae81335SDavid Ahern 321716a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 321816a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 321916a16cd3SDavid Ahern if (skb) { 322016a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 322116a16cd3SDavid Ahern 3222d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 322316a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 322416a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 322516a16cd3SDavid Ahern kfree_skb(skb); 322616a16cd3SDavid Ahern skb = NULL; 322716a16cd3SDavid Ahern } else 322816a16cd3SDavid Ahern info->skip_notify = 1; 322916a16cd3SDavid Ahern } 323016a16cd3SDavid Ahern 32310ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 323293c2fb25SDavid Ahern &rt->fib6_siblings, 323393c2fb25SDavid Ahern fib6_siblings) { 32340ae81335SDavid Ahern err = fib6_del(sibling, info); 32350ae81335SDavid Ahern if (err) 3236e3330039SWANG Cong goto out_unlock; 32370ae81335SDavid Ahern } 32380ae81335SDavid Ahern } 32390ae81335SDavid Ahern 32400ae81335SDavid Ahern err = fib6_del(rt, info); 3241e3330039SWANG Cong out_unlock: 324266f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3243e3330039SWANG Cong out_put: 324493531c67SDavid Ahern fib6_info_release(rt); 324516a16cd3SDavid Ahern 324616a16cd3SDavid Ahern if (skb) { 3247e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 324816a16cd3SDavid Ahern info->nlh, gfp_any()); 324916a16cd3SDavid Ahern } 32500ae81335SDavid Ahern return err; 32510ae81335SDavid Ahern } 32520ae81335SDavid Ahern 325323fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 325423fb93a4SDavid Ahern { 325523fb93a4SDavid Ahern int rc = -ESRCH; 325623fb93a4SDavid Ahern 325723fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 325823fb93a4SDavid Ahern goto out; 325923fb93a4SDavid Ahern 326023fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 326123fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 326223fb93a4SDavid Ahern goto out; 326323fb93a4SDavid Ahern if (dst_hold_safe(&rt->dst)) 326423fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 326523fb93a4SDavid Ahern out: 326623fb93a4SDavid Ahern return rc; 326723fb93a4SDavid Ahern } 326823fb93a4SDavid Ahern 3269333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3270333c4301SDavid Ahern struct netlink_ext_ack *extack) 32711da177e4SLinus Torvalds { 32728d1c802bSDavid Ahern struct rt6_info *rt_cache; 3273c71099acSThomas Graf struct fib6_table *table; 32748d1c802bSDavid Ahern struct fib6_info *rt; 32751da177e4SLinus Torvalds struct fib6_node *fn; 32761da177e4SLinus Torvalds int err = -ESRCH; 32771da177e4SLinus Torvalds 32785578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3279d5d531cbSDavid Ahern if (!table) { 3280d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3281c71099acSThomas Graf return err; 3282d5d531cbSDavid Ahern } 32831da177e4SLinus Torvalds 328466f5d6ceSWei Wang rcu_read_lock(); 3285c71099acSThomas Graf 3286c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 328786872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 328838fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 32892b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 32901da177e4SLinus Torvalds 32911da177e4SLinus Torvalds if (fn) { 329266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 32932b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 329423fb93a4SDavid Ahern int rc; 329523fb93a4SDavid Ahern 32962b760fcfSWei Wang rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst, 32972b760fcfSWei Wang &cfg->fc_src); 329823fb93a4SDavid Ahern if (rt_cache) { 329923fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 33009e575010SEric Dumazet if (rc != -ESRCH) { 33019e575010SEric Dumazet rcu_read_unlock(); 330223fb93a4SDavid Ahern return rc; 330323fb93a4SDavid Ahern } 33049e575010SEric Dumazet } 33051f56a01fSMartin KaFai Lau continue; 33062b760fcfSWei Wang } 330786872cb5SThomas Graf if (cfg->fc_ifindex && 33085e670d84SDavid Ahern (!rt->fib6_nh.nh_dev || 33095e670d84SDavid Ahern rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex)) 33101da177e4SLinus Torvalds continue; 331186872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 33125e670d84SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw)) 33131da177e4SLinus Torvalds continue; 331493c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33151da177e4SLinus Torvalds continue; 331693c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3317c2ed1880SMantas M continue; 3318e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3319e873e4b9SWei Wang continue; 332066f5d6ceSWei Wang rcu_read_unlock(); 33211da177e4SLinus Torvalds 33220ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33230ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 332486872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33250ae81335SDavid Ahern 33260ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33271da177e4SLinus Torvalds } 33281da177e4SLinus Torvalds } 332966f5d6ceSWei Wang rcu_read_unlock(); 33301da177e4SLinus Torvalds 33311da177e4SLinus Torvalds return err; 33321da177e4SLinus Torvalds } 33331da177e4SLinus Torvalds 33346700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3335a6279458SYOSHIFUJI Hideaki { 3336a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3337e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 3338e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3339e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3340e8599ff4SDavid S. Miller struct neighbour *neigh; 3341a68886a6SDavid Ahern struct fib6_info *from; 334271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 33436e157b6aSDavid S. Miller int optlen, on_link; 33446e157b6aSDavid S. Miller u8 *lladdr; 3345e8599ff4SDavid S. Miller 334629a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 334771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3348e8599ff4SDavid S. Miller 3349e8599ff4SDavid S. Miller if (optlen < 0) { 33506e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3351e8599ff4SDavid S. Miller return; 3352e8599ff4SDavid S. Miller } 3353e8599ff4SDavid S. Miller 335471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3355e8599ff4SDavid S. Miller 335671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 33576e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3358e8599ff4SDavid S. Miller return; 3359e8599ff4SDavid S. Miller } 3360e8599ff4SDavid S. Miller 33616e157b6aSDavid S. Miller on_link = 0; 336271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3363e8599ff4SDavid S. Miller on_link = 1; 336471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3365e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 33666e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3367e8599ff4SDavid S. Miller return; 3368e8599ff4SDavid S. Miller } 3369e8599ff4SDavid S. Miller 3370e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3371e8599ff4SDavid S. Miller if (!in6_dev) 3372e8599ff4SDavid S. Miller return; 3373e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3374e8599ff4SDavid S. Miller return; 3375e8599ff4SDavid S. Miller 3376e8599ff4SDavid S. Miller /* RFC2461 8.1: 3377e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3378e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3379e8599ff4SDavid S. Miller */ 3380e8599ff4SDavid S. Miller 3381f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3382e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3383e8599ff4SDavid S. Miller return; 3384e8599ff4SDavid S. Miller } 33856e157b6aSDavid S. Miller 33866e157b6aSDavid S. Miller lladdr = NULL; 3387e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3388e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3389e8599ff4SDavid S. Miller skb->dev); 3390e8599ff4SDavid S. Miller if (!lladdr) { 3391e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3392e8599ff4SDavid S. Miller return; 3393e8599ff4SDavid S. Miller } 3394e8599ff4SDavid S. Miller } 3395e8599ff4SDavid S. Miller 33966e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3397ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 33986e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 33996e157b6aSDavid S. Miller return; 34006e157b6aSDavid S. Miller } 34016e157b6aSDavid S. Miller 34026e157b6aSDavid S. Miller /* Redirect received -> path was valid. 34036e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 34046e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 34056e157b6aSDavid S. Miller */ 34060dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34076e157b6aSDavid S. Miller 340871bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3409e8599ff4SDavid S. Miller if (!neigh) 3410e8599ff4SDavid S. Miller return; 3411e8599ff4SDavid S. Miller 34121da177e4SLinus Torvalds /* 34131da177e4SLinus Torvalds * We have finally decided to accept it. 34141da177e4SLinus Torvalds */ 34151da177e4SLinus Torvalds 3416f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34171da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34181da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34191da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3420f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3421f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34221da177e4SLinus Torvalds 34234d85cd0cSDavid Ahern rcu_read_lock(); 3424a68886a6SDavid Ahern from = rcu_dereference(rt->from); 3425e873e4b9SWei Wang /* This fib6_info_hold() is safe here because we hold reference to rt 3426e873e4b9SWei Wang * and rt already holds reference to fib6_info. 3427e873e4b9SWei Wang */ 34288a14e46fSDavid Ahern fib6_info_hold(from); 34294d85cd0cSDavid Ahern rcu_read_unlock(); 34308a14e46fSDavid Ahern 34318a14e46fSDavid Ahern nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL); 343238308473SDavid S. Miller if (!nrt) 34331da177e4SLinus Torvalds goto out; 34341da177e4SLinus Torvalds 34351da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 34361da177e4SLinus Torvalds if (on_link) 34371da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 34381da177e4SLinus Torvalds 34394e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 34401da177e4SLinus Torvalds 34412b760fcfSWei Wang /* No need to remove rt from the exception table if rt is 34422b760fcfSWei Wang * a cached route because rt6_insert_exception() will 34432b760fcfSWei Wang * takes care of it 34442b760fcfSWei Wang */ 34458a14e46fSDavid Ahern if (rt6_insert_exception(nrt, from)) { 34462b760fcfSWei Wang dst_release_immediate(&nrt->dst); 34472b760fcfSWei Wang goto out; 34482b760fcfSWei Wang } 34491da177e4SLinus Torvalds 3450d8d1f30bSChangli Gao netevent.old = &rt->dst; 3451d8d1f30bSChangli Gao netevent.new = &nrt->dst; 345271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 345360592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 34548d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 34558d71740cSTom Tucker 34561da177e4SLinus Torvalds out: 34578a14e46fSDavid Ahern fib6_info_release(from); 3458e8599ff4SDavid S. Miller neigh_release(neigh); 34596e157b6aSDavid S. Miller } 34606e157b6aSDavid S. Miller 346170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 34628d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3463b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3464830218c1SDavid Ahern const struct in6_addr *gwaddr, 3465830218c1SDavid Ahern struct net_device *dev) 346670ceb4f5SYOSHIFUJI Hideaki { 3467830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3468830218c1SDavid Ahern int ifindex = dev->ifindex; 346970ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 34708d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3471c71099acSThomas Graf struct fib6_table *table; 347270ceb4f5SYOSHIFUJI Hideaki 3473830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 347438308473SDavid S. Miller if (!table) 3475c71099acSThomas Graf return NULL; 3476c71099acSThomas Graf 347766f5d6ceSWei Wang rcu_read_lock(); 347838fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 347970ceb4f5SYOSHIFUJI Hideaki if (!fn) 348070ceb4f5SYOSHIFUJI Hideaki goto out; 348170ceb4f5SYOSHIFUJI Hideaki 348266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 34835e670d84SDavid Ahern if (rt->fib6_nh.nh_dev->ifindex != ifindex) 348470ceb4f5SYOSHIFUJI Hideaki continue; 348593c2fb25SDavid Ahern if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY)) 348670ceb4f5SYOSHIFUJI Hideaki continue; 34875e670d84SDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr)) 348870ceb4f5SYOSHIFUJI Hideaki continue; 3489e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3490e873e4b9SWei Wang continue; 349170ceb4f5SYOSHIFUJI Hideaki break; 349270ceb4f5SYOSHIFUJI Hideaki } 349370ceb4f5SYOSHIFUJI Hideaki out: 349466f5d6ceSWei Wang rcu_read_unlock(); 349570ceb4f5SYOSHIFUJI Hideaki return rt; 349670ceb4f5SYOSHIFUJI Hideaki } 349770ceb4f5SYOSHIFUJI Hideaki 34988d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3499b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3500830218c1SDavid Ahern const struct in6_addr *gwaddr, 3501830218c1SDavid Ahern struct net_device *dev, 350295c96174SEric Dumazet unsigned int pref) 350370ceb4f5SYOSHIFUJI Hideaki { 350486872cb5SThomas Graf struct fib6_config cfg = { 3505238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3506830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 350786872cb5SThomas Graf .fc_dst_len = prefixlen, 350886872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 350986872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3510b91d5329SXin Long .fc_protocol = RTPROT_RA, 3511e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 351215e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3513efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3514efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 351586872cb5SThomas Graf }; 351670ceb4f5SYOSHIFUJI Hideaki 3517830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35184e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35194e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 352086872cb5SThomas Graf 3521e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3522e317da96SYOSHIFUJI Hideaki if (!prefixlen) 352386872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 352470ceb4f5SYOSHIFUJI Hideaki 3525acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 352670ceb4f5SYOSHIFUJI Hideaki 3527830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 352870ceb4f5SYOSHIFUJI Hideaki } 352970ceb4f5SYOSHIFUJI Hideaki #endif 353070ceb4f5SYOSHIFUJI Hideaki 35318d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3532afb1d4b5SDavid Ahern const struct in6_addr *addr, 3533afb1d4b5SDavid Ahern struct net_device *dev) 35341da177e4SLinus Torvalds { 3535830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 35368d1c802bSDavid Ahern struct fib6_info *rt; 3537c71099acSThomas Graf struct fib6_table *table; 35381da177e4SLinus Torvalds 3539afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 354038308473SDavid S. Miller if (!table) 3541c71099acSThomas Graf return NULL; 35421da177e4SLinus Torvalds 354366f5d6ceSWei Wang rcu_read_lock(); 354466f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 35455e670d84SDavid Ahern if (dev == rt->fib6_nh.nh_dev && 354693c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 35475e670d84SDavid Ahern ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr)) 35481da177e4SLinus Torvalds break; 35491da177e4SLinus Torvalds } 3550e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3551e873e4b9SWei Wang rt = NULL; 355266f5d6ceSWei Wang rcu_read_unlock(); 35531da177e4SLinus Torvalds return rt; 35541da177e4SLinus Torvalds } 35551da177e4SLinus Torvalds 35568d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3557afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3558ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3559ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 35601da177e4SLinus Torvalds { 356186872cb5SThomas Graf struct fib6_config cfg = { 3562ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3563238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 356486872cb5SThomas Graf .fc_ifindex = dev->ifindex, 356586872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 356686872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3567b91d5329SXin Long .fc_protocol = RTPROT_RA, 3568e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 356915e47304SEric W. Biederman .fc_nlinfo.portid = 0, 35705578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3571afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 357286872cb5SThomas Graf }; 35731da177e4SLinus Torvalds 35744e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 35751da177e4SLinus Torvalds 3576acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3577830218c1SDavid Ahern struct fib6_table *table; 3578830218c1SDavid Ahern 3579830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3580830218c1SDavid Ahern if (table) 3581830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3582830218c1SDavid Ahern } 35831da177e4SLinus Torvalds 3584afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 35851da177e4SLinus Torvalds } 35861da177e4SLinus Torvalds 3587afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3588afb1d4b5SDavid Ahern struct fib6_table *table) 35891da177e4SLinus Torvalds { 35908d1c802bSDavid Ahern struct fib6_info *rt; 35911da177e4SLinus Torvalds 35921da177e4SLinus Torvalds restart: 359366f5d6ceSWei Wang rcu_read_lock(); 359466f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3595dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3596dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3597dcd1f572SDavid Ahern 359893c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3599e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3600e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 360166f5d6ceSWei Wang rcu_read_unlock(); 3602afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36031da177e4SLinus Torvalds goto restart; 36041da177e4SLinus Torvalds } 36051da177e4SLinus Torvalds } 360666f5d6ceSWei Wang rcu_read_unlock(); 3607830218c1SDavid Ahern 3608830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3609830218c1SDavid Ahern } 3610830218c1SDavid Ahern 3611830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3612830218c1SDavid Ahern { 3613830218c1SDavid Ahern struct fib6_table *table; 3614830218c1SDavid Ahern struct hlist_head *head; 3615830218c1SDavid Ahern unsigned int h; 3616830218c1SDavid Ahern 3617830218c1SDavid Ahern rcu_read_lock(); 3618830218c1SDavid Ahern 3619830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3620830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3621830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3622830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3623afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3624830218c1SDavid Ahern } 3625830218c1SDavid Ahern } 3626830218c1SDavid Ahern 3627830218c1SDavid Ahern rcu_read_unlock(); 36281da177e4SLinus Torvalds } 36291da177e4SLinus Torvalds 36305578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36315578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 363286872cb5SThomas Graf struct fib6_config *cfg) 363386872cb5SThomas Graf { 363486872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 363586872cb5SThomas Graf 3636ca254490SDavid Ahern cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 3637ca254490SDavid Ahern : RT6_TABLE_MAIN; 363886872cb5SThomas Graf cfg->fc_ifindex = rtmsg->rtmsg_ifindex; 363986872cb5SThomas Graf cfg->fc_metric = rtmsg->rtmsg_metric; 364086872cb5SThomas Graf cfg->fc_expires = rtmsg->rtmsg_info; 364186872cb5SThomas Graf cfg->fc_dst_len = rtmsg->rtmsg_dst_len; 364286872cb5SThomas Graf cfg->fc_src_len = rtmsg->rtmsg_src_len; 364386872cb5SThomas Graf cfg->fc_flags = rtmsg->rtmsg_flags; 3644e8478e80SDavid Ahern cfg->fc_type = rtmsg->rtmsg_type; 364586872cb5SThomas Graf 36465578689aSDaniel Lezcano cfg->fc_nlinfo.nl_net = net; 3647f1243c2dSBenjamin Thery 36484e3fd7a0SAlexey Dobriyan cfg->fc_dst = rtmsg->rtmsg_dst; 36494e3fd7a0SAlexey Dobriyan cfg->fc_src = rtmsg->rtmsg_src; 36504e3fd7a0SAlexey Dobriyan cfg->fc_gateway = rtmsg->rtmsg_gateway; 365186872cb5SThomas Graf } 365286872cb5SThomas Graf 36535578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 36541da177e4SLinus Torvalds { 365586872cb5SThomas Graf struct fib6_config cfg; 36561da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 36571da177e4SLinus Torvalds int err; 36581da177e4SLinus Torvalds 36591da177e4SLinus Torvalds switch (cmd) { 36601da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 36611da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3662af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 36631da177e4SLinus Torvalds return -EPERM; 36641da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 36651da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 36661da177e4SLinus Torvalds if (err) 36671da177e4SLinus Torvalds return -EFAULT; 36681da177e4SLinus Torvalds 36695578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 367086872cb5SThomas Graf 36711da177e4SLinus Torvalds rtnl_lock(); 36721da177e4SLinus Torvalds switch (cmd) { 36731da177e4SLinus Torvalds case SIOCADDRT: 3674acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 36751da177e4SLinus Torvalds break; 36761da177e4SLinus Torvalds case SIOCDELRT: 3677333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 36781da177e4SLinus Torvalds break; 36791da177e4SLinus Torvalds default: 36801da177e4SLinus Torvalds err = -EINVAL; 36811da177e4SLinus Torvalds } 36821da177e4SLinus Torvalds rtnl_unlock(); 36831da177e4SLinus Torvalds 36841da177e4SLinus Torvalds return err; 36853ff50b79SStephen Hemminger } 36861da177e4SLinus Torvalds 36871da177e4SLinus Torvalds return -EINVAL; 36881da177e4SLinus Torvalds } 36891da177e4SLinus Torvalds 36901da177e4SLinus Torvalds /* 36911da177e4SLinus Torvalds * Drop the packet on the floor 36921da177e4SLinus Torvalds */ 36931da177e4SLinus Torvalds 3694d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 36951da177e4SLinus Torvalds { 3696612f09e8SYOSHIFUJI Hideaki int type; 3697adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 3698612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3699612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 37000660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 370145bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 3702bdb7cc64SStephen Suryaputra IP6_INC_STATS(dev_net(dst->dev), 3703bdb7cc64SStephen Suryaputra __in6_dev_get_safely(skb->dev), 37043bd653c8SDenis V. Lunev IPSTATS_MIB_INADDRERRORS); 3705612f09e8SYOSHIFUJI Hideaki break; 3706612f09e8SYOSHIFUJI Hideaki } 3707612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3708612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37093bd653c8SDenis V. Lunev IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst), 37103bd653c8SDenis V. Lunev ipstats_mib_noroutes); 3711612f09e8SYOSHIFUJI Hideaki break; 3712612f09e8SYOSHIFUJI Hideaki } 37133ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37141da177e4SLinus Torvalds kfree_skb(skb); 37151da177e4SLinus Torvalds return 0; 37161da177e4SLinus Torvalds } 37171da177e4SLinus Torvalds 37189ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37199ce8ade0SThomas Graf { 3720612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 37219ce8ade0SThomas Graf } 37229ce8ade0SThomas Graf 3723ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37241da177e4SLinus Torvalds { 3725adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3726612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 37271da177e4SLinus Torvalds } 37281da177e4SLinus Torvalds 37299ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 37309ce8ade0SThomas Graf { 3731612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 37329ce8ade0SThomas Graf } 37339ce8ade0SThomas Graf 3734ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 37359ce8ade0SThomas Graf { 3736adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3737612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 37389ce8ade0SThomas Graf } 37399ce8ade0SThomas Graf 37401da177e4SLinus Torvalds /* 37411da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 37421da177e4SLinus Torvalds */ 37431da177e4SLinus Torvalds 3744360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3745afb1d4b5SDavid Ahern struct inet6_dev *idev, 37461da177e4SLinus Torvalds const struct in6_addr *addr, 3747acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 37481da177e4SLinus Torvalds { 3749ca254490SDavid Ahern u32 tb_id; 37504832c30dSDavid Ahern struct net_device *dev = idev->dev; 3751360a9887SDavid Ahern struct fib6_info *f6i; 37525f02ce24SDavid Ahern 3753360a9887SDavid Ahern f6i = fib6_info_alloc(gfp_flags); 3754360a9887SDavid Ahern if (!f6i) 37551da177e4SLinus Torvalds return ERR_PTR(-ENOMEM); 37561da177e4SLinus Torvalds 3757360a9887SDavid Ahern f6i->dst_nocount = true; 3758360a9887SDavid Ahern f6i->dst_host = true; 3759360a9887SDavid Ahern f6i->fib6_protocol = RTPROT_KERNEL; 3760360a9887SDavid Ahern f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP; 3761e8478e80SDavid Ahern if (anycast) { 3762360a9887SDavid Ahern f6i->fib6_type = RTN_ANYCAST; 3763360a9887SDavid Ahern f6i->fib6_flags |= RTF_ANYCAST; 3764e8478e80SDavid Ahern } else { 3765360a9887SDavid Ahern f6i->fib6_type = RTN_LOCAL; 3766360a9887SDavid Ahern f6i->fib6_flags |= RTF_LOCAL; 3767e8478e80SDavid Ahern } 37681da177e4SLinus Torvalds 3769360a9887SDavid Ahern f6i->fib6_nh.nh_gw = *addr; 377093531c67SDavid Ahern dev_hold(dev); 3771360a9887SDavid Ahern f6i->fib6_nh.nh_dev = dev; 3772360a9887SDavid Ahern f6i->fib6_dst.addr = *addr; 3773360a9887SDavid Ahern f6i->fib6_dst.plen = 128; 3774ca254490SDavid Ahern tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL; 3775360a9887SDavid Ahern f6i->fib6_table = fib6_get_table(net, tb_id); 37761da177e4SLinus Torvalds 3777360a9887SDavid Ahern return f6i; 37781da177e4SLinus Torvalds } 37791da177e4SLinus Torvalds 3780c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3781c3968a85SDaniel Walter struct arg_dev_net_ip { 3782c3968a85SDaniel Walter struct net_device *dev; 3783c3968a85SDaniel Walter struct net *net; 3784c3968a85SDaniel Walter struct in6_addr *addr; 3785c3968a85SDaniel Walter }; 3786c3968a85SDaniel Walter 37878d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3788c3968a85SDaniel Walter { 3789c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3790c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3791c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3792c3968a85SDaniel Walter 37935e670d84SDavid Ahern if (((void *)rt->fib6_nh.nh_dev == dev || !dev) && 3794421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 379593c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 379660006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3797c3968a85SDaniel Walter /* remove prefsrc entry */ 379893c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 379960006a48SWei Wang /* need to update cache as well */ 380060006a48SWei Wang rt6_exceptions_remove_prefsrc(rt); 380160006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3802c3968a85SDaniel Walter } 3803c3968a85SDaniel Walter return 0; 3804c3968a85SDaniel Walter } 3805c3968a85SDaniel Walter 3806c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3807c3968a85SDaniel Walter { 3808c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3809c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3810c3968a85SDaniel Walter .dev = ifp->idev->dev, 3811c3968a85SDaniel Walter .net = net, 3812c3968a85SDaniel Walter .addr = &ifp->addr, 3813c3968a85SDaniel Walter }; 38140c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3815c3968a85SDaniel Walter } 3816c3968a85SDaniel Walter 3817be7a010dSDuan Jiong #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY) 3818be7a010dSDuan Jiong 3819be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38208d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3821be7a010dSDuan Jiong { 3822be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3823be7a010dSDuan Jiong 382493c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 38255e670d84SDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) { 3826be7a010dSDuan Jiong return -1; 3827be7a010dSDuan Jiong } 3828b16cb459SWei Wang 3829b16cb459SWei Wang /* Further clean up cached routes in exception table. 3830b16cb459SWei Wang * This is needed because cached route may have a different 3831b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3832b16cb459SWei Wang */ 3833b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3834b16cb459SWei Wang 3835be7a010dSDuan Jiong return 0; 3836be7a010dSDuan Jiong } 3837be7a010dSDuan Jiong 3838be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3839be7a010dSDuan Jiong { 3840be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3841be7a010dSDuan Jiong } 3842be7a010dSDuan Jiong 38432127d95aSIdo Schimmel struct arg_netdev_event { 38442127d95aSIdo Schimmel const struct net_device *dev; 38454c981e28SIdo Schimmel union { 38462127d95aSIdo Schimmel unsigned int nh_flags; 38474c981e28SIdo Schimmel unsigned long event; 38484c981e28SIdo Schimmel }; 38492127d95aSIdo Schimmel }; 38502127d95aSIdo Schimmel 38518d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3852d7dedee1SIdo Schimmel { 38538d1c802bSDavid Ahern struct fib6_info *iter; 3854d7dedee1SIdo Schimmel struct fib6_node *fn; 3855d7dedee1SIdo Schimmel 385693c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 385793c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3858d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 385993c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3860d7dedee1SIdo Schimmel while (iter) { 386193c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 386233bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3863d7dedee1SIdo Schimmel return iter; 38648fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 386593c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3866d7dedee1SIdo Schimmel } 3867d7dedee1SIdo Schimmel 3868d7dedee1SIdo Schimmel return NULL; 3869d7dedee1SIdo Schimmel } 3870d7dedee1SIdo Schimmel 38718d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3872d7dedee1SIdo Schimmel { 38735e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD || 38745e670d84SDavid Ahern (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN && 3875dcd1f572SDavid Ahern fib6_ignore_linkdown(rt))) 3876d7dedee1SIdo Schimmel return true; 3877d7dedee1SIdo Schimmel 3878d7dedee1SIdo Schimmel return false; 3879d7dedee1SIdo Schimmel } 3880d7dedee1SIdo Schimmel 38818d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3882d7dedee1SIdo Schimmel { 38838d1c802bSDavid Ahern struct fib6_info *iter; 3884d7dedee1SIdo Schimmel int total = 0; 3885d7dedee1SIdo Schimmel 3886d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 38875e670d84SDavid Ahern total += rt->fib6_nh.nh_weight; 3888d7dedee1SIdo Schimmel 388993c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3890d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 38915e670d84SDavid Ahern total += iter->fib6_nh.nh_weight; 3892d7dedee1SIdo Schimmel } 3893d7dedee1SIdo Schimmel 3894d7dedee1SIdo Schimmel return total; 3895d7dedee1SIdo Schimmel } 3896d7dedee1SIdo Schimmel 38978d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3898d7dedee1SIdo Schimmel { 3899d7dedee1SIdo Schimmel int upper_bound = -1; 3900d7dedee1SIdo Schimmel 3901d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 39025e670d84SDavid Ahern *weight += rt->fib6_nh.nh_weight; 3903d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3904d7dedee1SIdo Schimmel total) - 1; 3905d7dedee1SIdo Schimmel } 39065e670d84SDavid Ahern atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound); 3907d7dedee1SIdo Schimmel } 3908d7dedee1SIdo Schimmel 39098d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3910d7dedee1SIdo Schimmel { 39118d1c802bSDavid Ahern struct fib6_info *iter; 3912d7dedee1SIdo Schimmel int weight = 0; 3913d7dedee1SIdo Schimmel 3914d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3915d7dedee1SIdo Schimmel 391693c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3917d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3918d7dedee1SIdo Schimmel } 3919d7dedee1SIdo Schimmel 39208d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3921d7dedee1SIdo Schimmel { 39228d1c802bSDavid Ahern struct fib6_info *first; 3923d7dedee1SIdo Schimmel int total; 3924d7dedee1SIdo Schimmel 3925d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3926d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3927d7dedee1SIdo Schimmel * sibling route. 3928d7dedee1SIdo Schimmel */ 392993c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3930d7dedee1SIdo Schimmel return; 3931d7dedee1SIdo Schimmel 3932d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 3933d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 3934d7dedee1SIdo Schimmel * onwards. 3935d7dedee1SIdo Schimmel */ 3936d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 3937d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 3938d7dedee1SIdo Schimmel return; 3939d7dedee1SIdo Schimmel 3940d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 3941d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 3942d7dedee1SIdo Schimmel } 3943d7dedee1SIdo Schimmel 39448d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 39452127d95aSIdo Schimmel { 39462127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 39477aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 39482127d95aSIdo Schimmel 3949421842edSDavid Ahern if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) { 39505e670d84SDavid Ahern rt->fib6_nh.nh_flags &= ~arg->nh_flags; 39517aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 3952d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 39531de178edSIdo Schimmel } 39542127d95aSIdo Schimmel 39552127d95aSIdo Schimmel return 0; 39562127d95aSIdo Schimmel } 39572127d95aSIdo Schimmel 39582127d95aSIdo Schimmel void rt6_sync_up(struct net_device *dev, unsigned int nh_flags) 39592127d95aSIdo Schimmel { 39602127d95aSIdo Schimmel struct arg_netdev_event arg = { 39612127d95aSIdo Schimmel .dev = dev, 39626802f3adSIdo Schimmel { 39632127d95aSIdo Schimmel .nh_flags = nh_flags, 39646802f3adSIdo Schimmel }, 39652127d95aSIdo Schimmel }; 39662127d95aSIdo Schimmel 39672127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 39682127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 39692127d95aSIdo Schimmel 39702127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 39712127d95aSIdo Schimmel } 39722127d95aSIdo Schimmel 39738d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 39741de178edSIdo Schimmel const struct net_device *dev) 39751de178edSIdo Schimmel { 39768d1c802bSDavid Ahern struct fib6_info *iter; 39771de178edSIdo Schimmel 39785e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 39791de178edSIdo Schimmel return true; 398093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39815e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 39821de178edSIdo Schimmel return true; 39831de178edSIdo Schimmel 39841de178edSIdo Schimmel return false; 39851de178edSIdo Schimmel } 39861de178edSIdo Schimmel 39878d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 39881de178edSIdo Schimmel { 39898d1c802bSDavid Ahern struct fib6_info *iter; 39901de178edSIdo Schimmel 39911de178edSIdo Schimmel rt->should_flush = 1; 399293c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 39931de178edSIdo Schimmel iter->should_flush = 1; 39941de178edSIdo Schimmel } 39951de178edSIdo Schimmel 39968d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 39971de178edSIdo Schimmel const struct net_device *down_dev) 39981de178edSIdo Schimmel { 39998d1c802bSDavid Ahern struct fib6_info *iter; 40001de178edSIdo Schimmel unsigned int dead = 0; 40011de178edSIdo Schimmel 40025e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == down_dev || 40035e670d84SDavid Ahern rt->fib6_nh.nh_flags & RTNH_F_DEAD) 40041de178edSIdo Schimmel dead++; 400593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40065e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == down_dev || 40075e670d84SDavid Ahern iter->fib6_nh.nh_flags & RTNH_F_DEAD) 40081de178edSIdo Schimmel dead++; 40091de178edSIdo Schimmel 40101de178edSIdo Schimmel return dead; 40111de178edSIdo Schimmel } 40121de178edSIdo Schimmel 40138d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40141de178edSIdo Schimmel const struct net_device *dev, 40151de178edSIdo Schimmel unsigned int nh_flags) 40161de178edSIdo Schimmel { 40178d1c802bSDavid Ahern struct fib6_info *iter; 40181de178edSIdo Schimmel 40195e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == dev) 40205e670d84SDavid Ahern rt->fib6_nh.nh_flags |= nh_flags; 402193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40225e670d84SDavid Ahern if (iter->fib6_nh.nh_dev == dev) 40235e670d84SDavid Ahern iter->fib6_nh.nh_flags |= nh_flags; 40241de178edSIdo Schimmel } 40251de178edSIdo Schimmel 4026a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40278d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40281da177e4SLinus Torvalds { 40294c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40304c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 40317aef6859SDavid Ahern struct net *net = dev_net(dev); 40328ed67789SDaniel Lezcano 4033421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 403427c6fa73SIdo Schimmel return 0; 403527c6fa73SIdo Schimmel 403627c6fa73SIdo Schimmel switch (arg->event) { 403727c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 40385e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 403927c6fa73SIdo Schimmel case NETDEV_DOWN: 40401de178edSIdo Schimmel if (rt->should_flush) 404127c6fa73SIdo Schimmel return -1; 404293c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 40435e670d84SDavid Ahern return rt->fib6_nh.nh_dev == dev ? -1 : 0; 40441de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 40451de178edSIdo Schimmel unsigned int count; 40461de178edSIdo Schimmel 40471de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 404893c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 40491de178edSIdo Schimmel rt6_multipath_flush(rt); 40501de178edSIdo Schimmel return -1; 40511de178edSIdo Schimmel } 40521de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 40531de178edSIdo Schimmel RTNH_F_LINKDOWN); 40547aef6859SDavid Ahern fib6_update_sernum(net, rt); 4055d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40561de178edSIdo Schimmel } 40571de178edSIdo Schimmel return -2; 405827c6fa73SIdo Schimmel case NETDEV_CHANGE: 40595e670d84SDavid Ahern if (rt->fib6_nh.nh_dev != dev || 406093c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 406127c6fa73SIdo Schimmel break; 40625e670d84SDavid Ahern rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN; 4063d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 406427c6fa73SIdo Schimmel break; 40652b241361SIdo Schimmel } 4066c159d30cSDavid S. Miller 40671da177e4SLinus Torvalds return 0; 40681da177e4SLinus Torvalds } 40691da177e4SLinus Torvalds 407027c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 40711da177e4SLinus Torvalds { 40724c981e28SIdo Schimmel struct arg_netdev_event arg = { 40738ed67789SDaniel Lezcano .dev = dev, 40746802f3adSIdo Schimmel { 40754c981e28SIdo Schimmel .event = event, 40766802f3adSIdo Schimmel }, 40778ed67789SDaniel Lezcano }; 40788ed67789SDaniel Lezcano 40794c981e28SIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifdown, &arg); 40804c981e28SIdo Schimmel } 40814c981e28SIdo Schimmel 40824c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 40834c981e28SIdo Schimmel { 40844c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 40854c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 40864c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 40871da177e4SLinus Torvalds } 40881da177e4SLinus Torvalds 408995c96174SEric Dumazet struct rt6_mtu_change_arg { 40901da177e4SLinus Torvalds struct net_device *dev; 409195c96174SEric Dumazet unsigned int mtu; 40921da177e4SLinus Torvalds }; 40931da177e4SLinus Torvalds 40948d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 40951da177e4SLinus Torvalds { 40961da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 40971da177e4SLinus Torvalds struct inet6_dev *idev; 40981da177e4SLinus Torvalds 40991da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 41001da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 41011da177e4SLinus Torvalds We still use this lock to block changes 41021da177e4SLinus Torvalds caused by addrconf/ndisc. 41031da177e4SLinus Torvalds */ 41041da177e4SLinus Torvalds 41051da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 410638308473SDavid S. Miller if (!idev) 41071da177e4SLinus Torvalds return 0; 41081da177e4SLinus Torvalds 41091da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41101da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41111da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41121da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41131da177e4SLinus Torvalds */ 41145e670d84SDavid Ahern if (rt->fib6_nh.nh_dev == arg->dev && 4115d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4116d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4117d4ead6b3SDavid Ahern 4118d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4119d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4120d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4121d4ead6b3SDavid Ahern 4122f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4123e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4124f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41254b32b5adSMartin KaFai Lau } 41261da177e4SLinus Torvalds return 0; 41271da177e4SLinus Torvalds } 41281da177e4SLinus Torvalds 412995c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 41301da177e4SLinus Torvalds { 4131c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4132c71099acSThomas Graf .dev = dev, 4133c71099acSThomas Graf .mtu = mtu, 4134c71099acSThomas Graf }; 41351da177e4SLinus Torvalds 41360c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 41371da177e4SLinus Torvalds } 41381da177e4SLinus Torvalds 4139ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 41405176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4141aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 414286872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4143ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 414486872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 414586872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 414651ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4147c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 414819e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 414919e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 415032bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4151622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 41523b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4153aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4154eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4155eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4156eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 415786872cb5SThomas Graf }; 415886872cb5SThomas Graf 415986872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4160333c4301SDavid Ahern struct fib6_config *cfg, 4161333c4301SDavid Ahern struct netlink_ext_ack *extack) 41621da177e4SLinus Torvalds { 416386872cb5SThomas Graf struct rtmsg *rtm; 416486872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4165c78ba6d6SLubomir Rintel unsigned int pref; 416686872cb5SThomas Graf int err; 41671da177e4SLinus Torvalds 4168fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4169fceb6435SJohannes Berg NULL); 417086872cb5SThomas Graf if (err < 0) 417186872cb5SThomas Graf goto errout; 41721da177e4SLinus Torvalds 417386872cb5SThomas Graf err = -EINVAL; 417486872cb5SThomas Graf rtm = nlmsg_data(nlh); 417586872cb5SThomas Graf memset(cfg, 0, sizeof(*cfg)); 417686872cb5SThomas Graf 417786872cb5SThomas Graf cfg->fc_table = rtm->rtm_table; 417886872cb5SThomas Graf cfg->fc_dst_len = rtm->rtm_dst_len; 417986872cb5SThomas Graf cfg->fc_src_len = rtm->rtm_src_len; 418086872cb5SThomas Graf cfg->fc_flags = RTF_UP; 418186872cb5SThomas Graf cfg->fc_protocol = rtm->rtm_protocol; 4182ef2c7d7bSNicolas Dichtel cfg->fc_type = rtm->rtm_type; 418386872cb5SThomas Graf 4184ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4185ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4186b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4187b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 418886872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 418986872cb5SThomas Graf 4190ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4191ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4192ab79ad14SMaciej Żenczykowski 41931f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 41941f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 41951f56a01fSMartin KaFai Lau 4196fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4197fc1e64e1SDavid Ahern 419815e47304SEric W. Biederman cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid; 419986872cb5SThomas Graf cfg->fc_nlinfo.nlh = nlh; 42003b1e0a65SYOSHIFUJI Hideaki cfg->fc_nlinfo.nl_net = sock_net(skb->sk); 420186872cb5SThomas Graf 420286872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 420367b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 420486872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 42051da177e4SLinus Torvalds } 420686872cb5SThomas Graf 420786872cb5SThomas Graf if (tb[RTA_DST]) { 420886872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 420986872cb5SThomas Graf 421086872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 421186872cb5SThomas Graf goto errout; 421286872cb5SThomas Graf 421386872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42141da177e4SLinus Torvalds } 421586872cb5SThomas Graf 421686872cb5SThomas Graf if (tb[RTA_SRC]) { 421786872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 421886872cb5SThomas Graf 421986872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 422086872cb5SThomas Graf goto errout; 422186872cb5SThomas Graf 422286872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 42231da177e4SLinus Torvalds } 422486872cb5SThomas Graf 4225c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 422667b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4227c3968a85SDaniel Walter 422886872cb5SThomas Graf if (tb[RTA_OIF]) 422986872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 423086872cb5SThomas Graf 423186872cb5SThomas Graf if (tb[RTA_PRIORITY]) 423286872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 423386872cb5SThomas Graf 423486872cb5SThomas Graf if (tb[RTA_METRICS]) { 423586872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 423686872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 42371da177e4SLinus Torvalds } 423886872cb5SThomas Graf 423986872cb5SThomas Graf if (tb[RTA_TABLE]) 424086872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 424186872cb5SThomas Graf 424251ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 424351ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 424451ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 42459ed59592SDavid Ahern 42469ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4247c255bd68SDavid Ahern cfg->fc_mp_len, extack); 42489ed59592SDavid Ahern if (err < 0) 42499ed59592SDavid Ahern goto errout; 425051ebd318SNicolas Dichtel } 425151ebd318SNicolas Dichtel 4252c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4253c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4254c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4255c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4256c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4257c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4258c78ba6d6SLubomir Rintel } 4259c78ba6d6SLubomir Rintel 426019e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 426119e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 426219e42e45SRoopa Prabhu 42639ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 426419e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 426519e42e45SRoopa Prabhu 4266c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 42679ed59592SDavid Ahern if (err < 0) 42689ed59592SDavid Ahern goto errout; 42699ed59592SDavid Ahern } 42709ed59592SDavid Ahern 427132bc201eSXin Long if (tb[RTA_EXPIRES]) { 427232bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 427332bc201eSXin Long 427432bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 427532bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 427632bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 427732bc201eSXin Long } 427832bc201eSXin Long } 427932bc201eSXin Long 428086872cb5SThomas Graf err = 0; 428186872cb5SThomas Graf errout: 428286872cb5SThomas Graf return err; 42831da177e4SLinus Torvalds } 42841da177e4SLinus Torvalds 42856b9ea5a6SRoopa Prabhu struct rt6_nh { 42868d1c802bSDavid Ahern struct fib6_info *fib6_info; 42876b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 42886b9ea5a6SRoopa Prabhu struct list_head next; 42896b9ea5a6SRoopa Prabhu }; 42906b9ea5a6SRoopa Prabhu 42916b9ea5a6SRoopa Prabhu static void ip6_print_replace_route_err(struct list_head *rt6_nh_list) 42926b9ea5a6SRoopa Prabhu { 42936b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 42946b9ea5a6SRoopa Prabhu 42956b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 42967d4d5065SDavid Ahern pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n", 42976b9ea5a6SRoopa Prabhu &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway, 42986b9ea5a6SRoopa Prabhu nh->r_cfg.fc_ifindex); 42996b9ea5a6SRoopa Prabhu } 43006b9ea5a6SRoopa Prabhu } 43016b9ea5a6SRoopa Prabhu 4302d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4303d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 43048d1c802bSDavid Ahern struct fib6_info *rt, 43058d1c802bSDavid Ahern struct fib6_config *r_cfg) 43066b9ea5a6SRoopa Prabhu { 43076b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 43086b9ea5a6SRoopa Prabhu int err = -EEXIST; 43096b9ea5a6SRoopa Prabhu 43106b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43118d1c802bSDavid Ahern /* check if fib6_info already exists */ 43128d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 43136b9ea5a6SRoopa Prabhu return err; 43146b9ea5a6SRoopa Prabhu } 43156b9ea5a6SRoopa Prabhu 43166b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43176b9ea5a6SRoopa Prabhu if (!nh) 43186b9ea5a6SRoopa Prabhu return -ENOMEM; 43198d1c802bSDavid Ahern nh->fib6_info = rt; 4320d4ead6b3SDavid Ahern err = ip6_convert_metrics(net, rt, r_cfg); 43216b9ea5a6SRoopa Prabhu if (err) { 43226b9ea5a6SRoopa Prabhu kfree(nh); 43236b9ea5a6SRoopa Prabhu return err; 43246b9ea5a6SRoopa Prabhu } 43256b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43266b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43276b9ea5a6SRoopa Prabhu 43286b9ea5a6SRoopa Prabhu return 0; 43296b9ea5a6SRoopa Prabhu } 43306b9ea5a6SRoopa Prabhu 43318d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43328d1c802bSDavid Ahern struct fib6_info *rt_last, 43333b1137feSDavid Ahern struct nl_info *info, 43343b1137feSDavid Ahern __u16 nlflags) 43353b1137feSDavid Ahern { 43363b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 43373b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 43383b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 43393b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 43403b1137feSDavid Ahern * the list, find the first sibling of the last route appended 43413b1137feSDavid Ahern */ 434293c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 434393c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 43448d1c802bSDavid Ahern struct fib6_info, 434593c2fb25SDavid Ahern fib6_siblings); 43463b1137feSDavid Ahern } 43473b1137feSDavid Ahern 43483b1137feSDavid Ahern if (rt) 43493b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 43503b1137feSDavid Ahern } 43513b1137feSDavid Ahern 4352333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4353333c4301SDavid Ahern struct netlink_ext_ack *extack) 435451ebd318SNicolas Dichtel { 43558d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 43563b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 435751ebd318SNicolas Dichtel struct fib6_config r_cfg; 435851ebd318SNicolas Dichtel struct rtnexthop *rtnh; 43598d1c802bSDavid Ahern struct fib6_info *rt; 43606b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 43616b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 43623b1137feSDavid Ahern __u16 nlflags; 436351ebd318SNicolas Dichtel int remaining; 436451ebd318SNicolas Dichtel int attrlen; 43656b9ea5a6SRoopa Prabhu int err = 1; 43666b9ea5a6SRoopa Prabhu int nhn = 0; 43676b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 43686b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 43696b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 437051ebd318SNicolas Dichtel 43713b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 43723b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 43733b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 43743b1137feSDavid Ahern 437535f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 437651ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 437751ebd318SNicolas Dichtel 43786b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 43798d1c802bSDavid Ahern * fib6_info structs per nexthop 43806b9ea5a6SRoopa Prabhu */ 438151ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 438251ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 438351ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 438451ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 438551ebd318SNicolas Dichtel 438651ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 438751ebd318SNicolas Dichtel if (attrlen > 0) { 438851ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 438951ebd318SNicolas Dichtel 439051ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 439151ebd318SNicolas Dichtel if (nla) { 439267b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 439351ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 439451ebd318SNicolas Dichtel } 439519e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 439619e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 439719e42e45SRoopa Prabhu if (nla) 439819e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 439951ebd318SNicolas Dichtel } 44006b9ea5a6SRoopa Prabhu 440168e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4402acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 44038c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 44048c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 44058c5b83f0SRoopa Prabhu rt = NULL; 44066b9ea5a6SRoopa Prabhu goto cleanup; 44078c5b83f0SRoopa Prabhu } 4408b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4409b5d2d75eSDavid Ahern err = -EINVAL; 4410b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4411b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4412b5d2d75eSDavid Ahern fib6_info_release(rt); 4413b5d2d75eSDavid Ahern goto cleanup; 4414b5d2d75eSDavid Ahern } 44156b9ea5a6SRoopa Prabhu 44165e670d84SDavid Ahern rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1; 4417398958aeSIdo Schimmel 4418d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4419d4ead6b3SDavid Ahern rt, &r_cfg); 442051ebd318SNicolas Dichtel if (err) { 442193531c67SDavid Ahern fib6_info_release(rt); 44226b9ea5a6SRoopa Prabhu goto cleanup; 442351ebd318SNicolas Dichtel } 44246b9ea5a6SRoopa Prabhu 44256b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 442651ebd318SNicolas Dichtel } 44276b9ea5a6SRoopa Prabhu 44283b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44293b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44303b1137feSDavid Ahern * the full route when done 44313b1137feSDavid Ahern */ 44323b1137feSDavid Ahern info->skip_notify = 1; 44333b1137feSDavid Ahern 44346b9ea5a6SRoopa Prabhu err_nh = NULL; 44356b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44368d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 44378d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44383b1137feSDavid Ahern 4439f7225172SDavid Ahern if (!err) { 4440f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4441f7225172SDavid Ahern rt_last = nh->fib6_info; 4442f7225172SDavid Ahern 44436b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4444f7225172SDavid Ahern if (!rt_notif) 44458d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4446f7225172SDavid Ahern } 44476b9ea5a6SRoopa Prabhu 44488d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 44498d1c802bSDavid Ahern nh->fib6_info = NULL; 44506b9ea5a6SRoopa Prabhu if (err) { 44516b9ea5a6SRoopa Prabhu if (replace && nhn) 44526b9ea5a6SRoopa Prabhu ip6_print_replace_route_err(&rt6_nh_list); 44536b9ea5a6SRoopa Prabhu err_nh = nh; 44546b9ea5a6SRoopa Prabhu goto add_errout; 44556b9ea5a6SRoopa Prabhu } 44566b9ea5a6SRoopa Prabhu 44571a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 445827596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 445927596472SMichal Kubeček * we have already failed to add the first nexthop: 446027596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 446127596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 446227596472SMichal Kubeček * be added to it. 44631a72418bSNicolas Dichtel */ 446427596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 446527596472SMichal Kubeček NLM_F_REPLACE); 44666b9ea5a6SRoopa Prabhu nhn++; 44676b9ea5a6SRoopa Prabhu } 44686b9ea5a6SRoopa Prabhu 44693b1137feSDavid Ahern /* success ... tell user about new route */ 44703b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44716b9ea5a6SRoopa Prabhu goto cleanup; 44726b9ea5a6SRoopa Prabhu 44736b9ea5a6SRoopa Prabhu add_errout: 44743b1137feSDavid Ahern /* send notification for routes that were added so that 44753b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 44763b1137feSDavid Ahern * coherent 44773b1137feSDavid Ahern */ 44783b1137feSDavid Ahern if (rt_notif) 44793b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 44803b1137feSDavid Ahern 44816b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 44826b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44836b9ea5a6SRoopa Prabhu if (err_nh == nh) 44846b9ea5a6SRoopa Prabhu break; 4485333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 44866b9ea5a6SRoopa Prabhu } 44876b9ea5a6SRoopa Prabhu 44886b9ea5a6SRoopa Prabhu cleanup: 44896b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 44908d1c802bSDavid Ahern if (nh->fib6_info) 44918d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 44926b9ea5a6SRoopa Prabhu list_del(&nh->next); 44936b9ea5a6SRoopa Prabhu kfree(nh); 44946b9ea5a6SRoopa Prabhu } 44956b9ea5a6SRoopa Prabhu 44966b9ea5a6SRoopa Prabhu return err; 44976b9ea5a6SRoopa Prabhu } 44986b9ea5a6SRoopa Prabhu 4499333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4500333c4301SDavid Ahern struct netlink_ext_ack *extack) 45016b9ea5a6SRoopa Prabhu { 45026b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 45036b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 45046b9ea5a6SRoopa Prabhu int remaining; 45056b9ea5a6SRoopa Prabhu int attrlen; 45066b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 45076b9ea5a6SRoopa Prabhu 45086b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 45096b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 45106b9ea5a6SRoopa Prabhu 45116b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 45126b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 45136b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 45146b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 45156b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 45166b9ea5a6SRoopa Prabhu 45176b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45186b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45196b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45206b9ea5a6SRoopa Prabhu 45216b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45226b9ea5a6SRoopa Prabhu if (nla) { 45236b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45246b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45256b9ea5a6SRoopa Prabhu } 45266b9ea5a6SRoopa Prabhu } 4527333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45286b9ea5a6SRoopa Prabhu if (err) 45296b9ea5a6SRoopa Prabhu last_err = err; 45306b9ea5a6SRoopa Prabhu 453151ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 453251ebd318SNicolas Dichtel } 453351ebd318SNicolas Dichtel 453451ebd318SNicolas Dichtel return last_err; 453551ebd318SNicolas Dichtel } 453651ebd318SNicolas Dichtel 4537c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4538c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45391da177e4SLinus Torvalds { 454086872cb5SThomas Graf struct fib6_config cfg; 454186872cb5SThomas Graf int err; 45421da177e4SLinus Torvalds 4543333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 454486872cb5SThomas Graf if (err < 0) 454586872cb5SThomas Graf return err; 454686872cb5SThomas Graf 454751ebd318SNicolas Dichtel if (cfg.fc_mp) 4548333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 45490ae81335SDavid Ahern else { 45500ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4551333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 45521da177e4SLinus Torvalds } 45530ae81335SDavid Ahern } 45541da177e4SLinus Torvalds 4555c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4556c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 45571da177e4SLinus Torvalds { 455886872cb5SThomas Graf struct fib6_config cfg; 455986872cb5SThomas Graf int err; 45601da177e4SLinus Torvalds 4561333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 456286872cb5SThomas Graf if (err < 0) 456386872cb5SThomas Graf return err; 456486872cb5SThomas Graf 456551ebd318SNicolas Dichtel if (cfg.fc_mp) 4566333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 456751ebd318SNicolas Dichtel else 4568acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 45691da177e4SLinus Torvalds } 45701da177e4SLinus Torvalds 45718d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4572339bf98fSThomas Graf { 4573beb1afacSDavid Ahern int nexthop_len = 0; 4574beb1afacSDavid Ahern 457593c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4576beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4577beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4578beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 45795e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate); 4580beb1afacSDavid Ahern 458193c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4582beb1afacSDavid Ahern } 4583beb1afacSDavid Ahern 4584339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4585339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4586339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4587339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4588339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4589339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4590339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4591339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4592339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 45936a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4594ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4595c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 459619e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 45975e670d84SDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate) 4598beb1afacSDavid Ahern + nexthop_len; 4599beb1afacSDavid Ahern } 4600beb1afacSDavid Ahern 46018d1c802bSDavid Ahern static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt, 46025be083ceSDavid Ahern unsigned int *flags, bool skip_oif) 4603beb1afacSDavid Ahern { 46045e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_DEAD) 4605f9d882eaSIdo Schimmel *flags |= RTNH_F_DEAD; 4606f9d882eaSIdo Schimmel 46075e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) { 4608beb1afacSDavid Ahern *flags |= RTNH_F_LINKDOWN; 4609dcd1f572SDavid Ahern 4610dcd1f572SDavid Ahern rcu_read_lock(); 4611dcd1f572SDavid Ahern if (fib6_ignore_linkdown(rt)) 4612beb1afacSDavid Ahern *flags |= RTNH_F_DEAD; 4613dcd1f572SDavid Ahern rcu_read_unlock(); 4614beb1afacSDavid Ahern } 4615beb1afacSDavid Ahern 461693c2fb25SDavid Ahern if (rt->fib6_flags & RTF_GATEWAY) { 46175e670d84SDavid Ahern if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0) 4618beb1afacSDavid Ahern goto nla_put_failure; 4619beb1afacSDavid Ahern } 4620beb1afacSDavid Ahern 46215e670d84SDavid Ahern *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK); 46225e670d84SDavid Ahern if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD) 462361e4d01eSIdo Schimmel *flags |= RTNH_F_OFFLOAD; 462461e4d01eSIdo Schimmel 46255be083ceSDavid Ahern /* not needed for multipath encoding b/c it has a rtnexthop struct */ 46265e670d84SDavid Ahern if (!skip_oif && rt->fib6_nh.nh_dev && 46275e670d84SDavid Ahern nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex)) 4628beb1afacSDavid Ahern goto nla_put_failure; 4629beb1afacSDavid Ahern 46305e670d84SDavid Ahern if (rt->fib6_nh.nh_lwtstate && 46315e670d84SDavid Ahern lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0) 4632beb1afacSDavid Ahern goto nla_put_failure; 4633beb1afacSDavid Ahern 4634beb1afacSDavid Ahern return 0; 4635beb1afacSDavid Ahern 4636beb1afacSDavid Ahern nla_put_failure: 4637beb1afacSDavid Ahern return -EMSGSIZE; 4638beb1afacSDavid Ahern } 4639beb1afacSDavid Ahern 46405be083ceSDavid Ahern /* add multipath next hop */ 46418d1c802bSDavid Ahern static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt) 4642beb1afacSDavid Ahern { 46435e670d84SDavid Ahern const struct net_device *dev = rt->fib6_nh.nh_dev; 4644beb1afacSDavid Ahern struct rtnexthop *rtnh; 4645beb1afacSDavid Ahern unsigned int flags = 0; 4646beb1afacSDavid Ahern 4647beb1afacSDavid Ahern rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh)); 4648beb1afacSDavid Ahern if (!rtnh) 4649beb1afacSDavid Ahern goto nla_put_failure; 4650beb1afacSDavid Ahern 46515e670d84SDavid Ahern rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1; 46525e670d84SDavid Ahern rtnh->rtnh_ifindex = dev ? dev->ifindex : 0; 4653beb1afacSDavid Ahern 46545be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &flags, true) < 0) 4655beb1afacSDavid Ahern goto nla_put_failure; 4656beb1afacSDavid Ahern 4657beb1afacSDavid Ahern rtnh->rtnh_flags = flags; 4658beb1afacSDavid Ahern 4659beb1afacSDavid Ahern /* length of rtnetlink header + attributes */ 4660beb1afacSDavid Ahern rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh; 4661beb1afacSDavid Ahern 4662beb1afacSDavid Ahern return 0; 4663beb1afacSDavid Ahern 4664beb1afacSDavid Ahern nla_put_failure: 4665beb1afacSDavid Ahern return -EMSGSIZE; 4666339bf98fSThomas Graf } 4667339bf98fSThomas Graf 4668d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46698d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4670d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 467115e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4672f8cfe2ceSDavid Ahern unsigned int flags) 46731da177e4SLinus Torvalds { 46741da177e4SLinus Torvalds struct rtmsg *rtm; 46751da177e4SLinus Torvalds struct nlmsghdr *nlh; 4676d4ead6b3SDavid Ahern long expires = 0; 4677d4ead6b3SDavid Ahern u32 *pmetrics; 46789e762a4aSPatrick McHardy u32 table; 46791da177e4SLinus Torvalds 468015e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 468138308473SDavid S. Miller if (!nlh) 468226932566SPatrick McHardy return -EMSGSIZE; 46832d7202bfSThomas Graf 46842d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46851da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 468693c2fb25SDavid Ahern rtm->rtm_dst_len = rt->fib6_dst.plen; 468793c2fb25SDavid Ahern rtm->rtm_src_len = rt->fib6_src.plen; 46881da177e4SLinus Torvalds rtm->rtm_tos = 0; 468993c2fb25SDavid Ahern if (rt->fib6_table) 469093c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4691c71099acSThomas Graf else 46929e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 46939e762a4aSPatrick McHardy rtm->rtm_table = table; 4694c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4695c78679e8SDavid S. Miller goto nla_put_failure; 4696e8478e80SDavid Ahern 4697e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 46981da177e4SLinus Torvalds rtm->rtm_flags = 0; 46991da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 470093c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 47011da177e4SLinus Torvalds 470293c2fb25SDavid Ahern if (rt->fib6_flags & RTF_CACHE) 47031da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 47041da177e4SLinus Torvalds 4705d4ead6b3SDavid Ahern if (dest) { 4706d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4707c78679e8SDavid S. Miller goto nla_put_failure; 47081da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 47091da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 471093c2fb25SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, &rt->fib6_dst.addr)) 4711c78679e8SDavid S. Miller goto nla_put_failure; 47121da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 47131da177e4SLinus Torvalds if (src) { 4714930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4715c78679e8SDavid S. Miller goto nla_put_failure; 47161da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4717c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 471893c2fb25SDavid Ahern nla_put_in6_addr(skb, RTA_SRC, &rt->fib6_src.addr)) 4719c78679e8SDavid S. Miller goto nla_put_failure; 47201da177e4SLinus Torvalds #endif 47217bc570c8SYOSHIFUJI Hideaki if (iif) { 47227bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 472393c2fb25SDavid Ahern if (ipv6_addr_is_multicast(&rt->fib6_dst.addr)) { 4724fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47252cf75070SNikolay Aleksandrov 47267bc570c8SYOSHIFUJI Hideaki if (err == 0) 47277bc570c8SYOSHIFUJI Hideaki return 0; 4728fd61c6baSDavid Ahern if (err < 0) 47297bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47307bc570c8SYOSHIFUJI Hideaki } else 47317bc570c8SYOSHIFUJI Hideaki #endif 4732c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4733c78679e8SDavid S. Miller goto nla_put_failure; 4734d4ead6b3SDavid Ahern } else if (dest) { 47351da177e4SLinus Torvalds struct in6_addr saddr_buf; 4736d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4737930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4738c78679e8SDavid S. Miller goto nla_put_failure; 4739c3968a85SDaniel Walter } 4740c3968a85SDaniel Walter 474193c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4742c3968a85SDaniel Walter struct in6_addr saddr_buf; 474393c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4744930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4745c78679e8SDavid S. Miller goto nla_put_failure; 47461da177e4SLinus Torvalds } 47472d7202bfSThomas Graf 4748d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4749d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47502d7202bfSThomas Graf goto nla_put_failure; 47512d7202bfSThomas Graf 475293c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4753beb1afacSDavid Ahern goto nla_put_failure; 4754beb1afacSDavid Ahern 4755beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4756beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4757beb1afacSDavid Ahern */ 475893c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 47598d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4760beb1afacSDavid Ahern struct nlattr *mp; 4761beb1afacSDavid Ahern 4762beb1afacSDavid Ahern mp = nla_nest_start(skb, RTA_MULTIPATH); 4763beb1afacSDavid Ahern if (!mp) 4764beb1afacSDavid Ahern goto nla_put_failure; 4765beb1afacSDavid Ahern 4766beb1afacSDavid Ahern if (rt6_add_nexthop(skb, rt) < 0) 4767beb1afacSDavid Ahern goto nla_put_failure; 4768beb1afacSDavid Ahern 4769beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 477093c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4771beb1afacSDavid Ahern if (rt6_add_nexthop(skb, sibling) < 0) 477294f826b8SEric Dumazet goto nla_put_failure; 477394f826b8SEric Dumazet } 47742d7202bfSThomas Graf 4775beb1afacSDavid Ahern nla_nest_end(skb, mp); 4776beb1afacSDavid Ahern } else { 47775be083ceSDavid Ahern if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0) 4778c78679e8SDavid S. Miller goto nla_put_failure; 4779beb1afacSDavid Ahern } 47808253947eSLi Wei 478193c2fb25SDavid Ahern if (rt->fib6_flags & RTF_EXPIRES) { 478214895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 478314895687SDavid Ahern expires -= jiffies; 478414895687SDavid Ahern } 478569cdf8f9SYOSHIFUJI Hideaki 4786d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4787e3703b3dSThomas Graf goto nla_put_failure; 47881da177e4SLinus Torvalds 478993c2fb25SDavid Ahern if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->fib6_flags))) 4790c78ba6d6SLubomir Rintel goto nla_put_failure; 4791c78ba6d6SLubomir Rintel 479219e42e45SRoopa Prabhu 4793053c095aSJohannes Berg nlmsg_end(skb, nlh); 4794053c095aSJohannes Berg return 0; 47952d7202bfSThomas Graf 47962d7202bfSThomas Graf nla_put_failure: 479726932566SPatrick McHardy nlmsg_cancel(skb, nlh); 479826932566SPatrick McHardy return -EMSGSIZE; 47991da177e4SLinus Torvalds } 48001da177e4SLinus Torvalds 48018d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 48021da177e4SLinus Torvalds { 48031da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 48041f17e2f2SDavid Ahern struct net *net = arg->net; 48051f17e2f2SDavid Ahern 4806421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 48071f17e2f2SDavid Ahern return 0; 48081da177e4SLinus Torvalds 48092d7202bfSThomas Graf if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) { 48102d7202bfSThomas Graf struct rtmsg *rtm = nlmsg_data(arg->cb->nlh); 4811f8cfe2ceSDavid Ahern 4812f8cfe2ceSDavid Ahern /* user wants prefix routes only */ 4813f8cfe2ceSDavid Ahern if (rtm->rtm_flags & RTM_F_PREFIX && 481493c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4815f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4816f8cfe2ceSDavid Ahern return 1; 4817f8cfe2ceSDavid Ahern } 4818f8cfe2ceSDavid Ahern } 48191da177e4SLinus Torvalds 4820d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4821d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 4822d4ead6b3SDavid Ahern arg->cb->nlh->nlmsg_seq, NLM_F_MULTI); 48231da177e4SLinus Torvalds } 48241da177e4SLinus Torvalds 4825c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4826c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 48271da177e4SLinus Torvalds { 48283b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4829ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 483018c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4831a68886a6SDavid Ahern struct fib6_info *from; 483218c3a61cSRoopa Prabhu struct dst_entry *dst; 48331da177e4SLinus Torvalds struct rt6_info *rt; 4834ab364a6fSThomas Graf struct sk_buff *skb; 4835ab364a6fSThomas Graf struct rtmsg *rtm; 48364c9483b2SDavid S. Miller struct flowi6 fl6; 483718c3a61cSRoopa Prabhu bool fibmatch; 4838ab364a6fSThomas Graf 4839fceb6435SJohannes Berg err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy, 4840c21ef3e3SDavid Ahern extack); 4841ab364a6fSThomas Graf if (err < 0) 4842ab364a6fSThomas Graf goto errout; 4843ab364a6fSThomas Graf 4844ab364a6fSThomas Graf err = -EINVAL; 48454c9483b2SDavid S. Miller memset(&fl6, 0, sizeof(fl6)); 484638b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 484738b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 484818c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4849ab364a6fSThomas Graf 4850ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4851ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4852ab364a6fSThomas Graf goto errout; 4853ab364a6fSThomas Graf 48544e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4855ab364a6fSThomas Graf } 4856ab364a6fSThomas Graf 4857ab364a6fSThomas Graf if (tb[RTA_DST]) { 4858ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4859ab364a6fSThomas Graf goto errout; 4860ab364a6fSThomas Graf 48614e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4862ab364a6fSThomas Graf } 4863ab364a6fSThomas Graf 4864ab364a6fSThomas Graf if (tb[RTA_IIF]) 4865ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4866ab364a6fSThomas Graf 4867ab364a6fSThomas Graf if (tb[RTA_OIF]) 486872331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4869ab364a6fSThomas Graf 48702e47b291SLorenzo Colitti if (tb[RTA_MARK]) 48712e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 48722e47b291SLorenzo Colitti 4873622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4874622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4875622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4876622ec2c9SLorenzo Colitti else 4877622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4878622ec2c9SLorenzo Colitti 4879eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4880eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4881eacb9384SRoopa Prabhu 4882eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4883eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4884eacb9384SRoopa Prabhu 4885eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 4886eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 4887eacb9384SRoopa Prabhu &fl6.flowi6_proto, extack); 4888eacb9384SRoopa Prabhu if (err) 4889eacb9384SRoopa Prabhu goto errout; 4890eacb9384SRoopa Prabhu } 4891eacb9384SRoopa Prabhu 4892ab364a6fSThomas Graf if (iif) { 4893ab364a6fSThomas Graf struct net_device *dev; 489472331bc0SShmulik Ladkani int flags = 0; 489572331bc0SShmulik Ladkani 4896121622dbSFlorian Westphal rcu_read_lock(); 4897121622dbSFlorian Westphal 4898121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 4899ab364a6fSThomas Graf if (!dev) { 4900121622dbSFlorian Westphal rcu_read_unlock(); 4901ab364a6fSThomas Graf err = -ENODEV; 4902ab364a6fSThomas Graf goto errout; 4903ab364a6fSThomas Graf } 490472331bc0SShmulik Ladkani 490572331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 490672331bc0SShmulik Ladkani 490772331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 490872331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 490972331bc0SShmulik Ladkani 4910b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 4911121622dbSFlorian Westphal 4912121622dbSFlorian Westphal rcu_read_unlock(); 491372331bc0SShmulik Ladkani } else { 491472331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 491572331bc0SShmulik Ladkani 491618c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 491718c3a61cSRoopa Prabhu } 491818c3a61cSRoopa Prabhu 491918c3a61cSRoopa Prabhu 492018c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 492118c3a61cSRoopa Prabhu if (rt->dst.error) { 492218c3a61cSRoopa Prabhu err = rt->dst.error; 492318c3a61cSRoopa Prabhu ip6_rt_put(rt); 492418c3a61cSRoopa Prabhu goto errout; 4925ab364a6fSThomas Graf } 49261da177e4SLinus Torvalds 49279d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 49289d6acb3bSWANG Cong err = rt->dst.error; 49299d6acb3bSWANG Cong ip6_rt_put(rt); 49309d6acb3bSWANG Cong goto errout; 49319d6acb3bSWANG Cong } 49329d6acb3bSWANG Cong 49331da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 493438308473SDavid S. Miller if (!skb) { 493594e187c0SAmerigo Wang ip6_rt_put(rt); 4936ab364a6fSThomas Graf err = -ENOBUFS; 4937ab364a6fSThomas Graf goto errout; 4938ab364a6fSThomas Graf } 49391da177e4SLinus Torvalds 4940d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 4941a68886a6SDavid Ahern 4942a68886a6SDavid Ahern rcu_read_lock(); 4943a68886a6SDavid Ahern from = rcu_dereference(rt->from); 4944a68886a6SDavid Ahern 494518c3a61cSRoopa Prabhu if (fibmatch) 4946a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif, 494718c3a61cSRoopa Prabhu RTM_NEWROUTE, NETLINK_CB(in_skb).portid, 494818c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 494918c3a61cSRoopa Prabhu else 4950a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 4951a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 4952d4ead6b3SDavid Ahern NETLINK_CB(in_skb).portid, nlh->nlmsg_seq, 4953d4ead6b3SDavid Ahern 0); 4954a68886a6SDavid Ahern rcu_read_unlock(); 4955a68886a6SDavid Ahern 49561da177e4SLinus Torvalds if (err < 0) { 4957ab364a6fSThomas Graf kfree_skb(skb); 4958ab364a6fSThomas Graf goto errout; 49591da177e4SLinus Torvalds } 49601da177e4SLinus Torvalds 496115e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 4962ab364a6fSThomas Graf errout: 49631da177e4SLinus Torvalds return err; 49641da177e4SLinus Torvalds } 49651da177e4SLinus Torvalds 49668d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 496737a1d361SRoopa Prabhu unsigned int nlm_flags) 49681da177e4SLinus Torvalds { 49691da177e4SLinus Torvalds struct sk_buff *skb; 49705578689aSDaniel Lezcano struct net *net = info->nl_net; 4971528c4cebSDenis V. Lunev u32 seq; 4972528c4cebSDenis V. Lunev int err; 49730d51aa80SJamal Hadi Salim 4974528c4cebSDenis V. Lunev err = -ENOBUFS; 497538308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 497686872cb5SThomas Graf 497719e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 497838308473SDavid S. Miller if (!skb) 497921713ebcSThomas Graf goto errout; 49801da177e4SLinus Torvalds 4981d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 4982f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 498326932566SPatrick McHardy if (err < 0) { 498426932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 498526932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 498626932566SPatrick McHardy kfree_skb(skb); 498726932566SPatrick McHardy goto errout; 498826932566SPatrick McHardy } 498915e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 49905578689aSDaniel Lezcano info->nlh, gfp_any()); 49911ce85fe4SPablo Neira Ayuso return; 499221713ebcSThomas Graf errout: 499321713ebcSThomas Graf if (err < 0) 49945578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 49951da177e4SLinus Torvalds } 49961da177e4SLinus Torvalds 49978ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 4998351638e7SJiri Pirko unsigned long event, void *ptr) 49998ed67789SDaniel Lezcano { 5000351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5001c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 50028ed67789SDaniel Lezcano 5003242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5004242d3a49SWANG Cong return NOTIFY_OK; 5005242d3a49SWANG Cong 5006242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5007421842edSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev; 5008d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 50098ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 50108ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5011d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 50128ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5013d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 50148ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 50158ed67789SDaniel Lezcano #endif 501676da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 501776da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 501876da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 501976da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 502076da0704SWANG Cong */ 502112d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5022242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 502312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 502412d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5025242d3a49SWANG Cong #endif 50268ed67789SDaniel Lezcano } 50278ed67789SDaniel Lezcano 50288ed67789SDaniel Lezcano return NOTIFY_OK; 50298ed67789SDaniel Lezcano } 50308ed67789SDaniel Lezcano 50311da177e4SLinus Torvalds /* 50321da177e4SLinus Torvalds * /proc 50331da177e4SLinus Torvalds */ 50341da177e4SLinus Torvalds 50351da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 50361da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 50371da177e4SLinus Torvalds { 503869ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 50391da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 504069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 504169ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 504281eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 504369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 504469ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5045fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 504669ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 50471da177e4SLinus Torvalds 50481da177e4SLinus Torvalds return 0; 50491da177e4SLinus Torvalds } 50501da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 50511da177e4SLinus Torvalds 50521da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 50531da177e4SLinus Torvalds 50541da177e4SLinus Torvalds static 5055fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 50561da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 50571da177e4SLinus Torvalds { 5058c486da34SLucian Adrian Grijincu struct net *net; 5059c486da34SLucian Adrian Grijincu int delay; 5060c486da34SLucian Adrian Grijincu if (!write) 5061c486da34SLucian Adrian Grijincu return -EINVAL; 5062c486da34SLucian Adrian Grijincu 5063c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5064c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 50658d65af78SAlexey Dobriyan proc_dointvec(ctl, write, buffer, lenp, ppos); 50662ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 50671da177e4SLinus Torvalds return 0; 50681da177e4SLinus Torvalds } 50691da177e4SLinus Torvalds 5070fe2c6338SJoe Perches struct ctl_table ipv6_route_table_template[] = { 50711da177e4SLinus Torvalds { 50721da177e4SLinus Torvalds .procname = "flush", 50734990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 50741da177e4SLinus Torvalds .maxlen = sizeof(int), 507589c8b3a1SDave Jones .mode = 0200, 50766d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 50771da177e4SLinus Torvalds }, 50781da177e4SLinus Torvalds { 50791da177e4SLinus Torvalds .procname = "gc_thresh", 50809a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 50811da177e4SLinus Torvalds .maxlen = sizeof(int), 50821da177e4SLinus Torvalds .mode = 0644, 50836d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50841da177e4SLinus Torvalds }, 50851da177e4SLinus Torvalds { 50861da177e4SLinus Torvalds .procname = "max_size", 50874990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 50881da177e4SLinus Torvalds .maxlen = sizeof(int), 50891da177e4SLinus Torvalds .mode = 0644, 50906d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 50911da177e4SLinus Torvalds }, 50921da177e4SLinus Torvalds { 50931da177e4SLinus Torvalds .procname = "gc_min_interval", 50944990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 50951da177e4SLinus Torvalds .maxlen = sizeof(int), 50961da177e4SLinus Torvalds .mode = 0644, 50976d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 50981da177e4SLinus Torvalds }, 50991da177e4SLinus Torvalds { 51001da177e4SLinus Torvalds .procname = "gc_timeout", 51014990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 51021da177e4SLinus Torvalds .maxlen = sizeof(int), 51031da177e4SLinus Torvalds .mode = 0644, 51046d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51051da177e4SLinus Torvalds }, 51061da177e4SLinus Torvalds { 51071da177e4SLinus Torvalds .procname = "gc_interval", 51084990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 51091da177e4SLinus Torvalds .maxlen = sizeof(int), 51101da177e4SLinus Torvalds .mode = 0644, 51116d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51121da177e4SLinus Torvalds }, 51131da177e4SLinus Torvalds { 51141da177e4SLinus Torvalds .procname = "gc_elasticity", 51154990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 51161da177e4SLinus Torvalds .maxlen = sizeof(int), 51171da177e4SLinus Torvalds .mode = 0644, 5118f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51191da177e4SLinus Torvalds }, 51201da177e4SLinus Torvalds { 51211da177e4SLinus Torvalds .procname = "mtu_expires", 51224990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 51231da177e4SLinus Torvalds .maxlen = sizeof(int), 51241da177e4SLinus Torvalds .mode = 0644, 51256d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 51261da177e4SLinus Torvalds }, 51271da177e4SLinus Torvalds { 51281da177e4SLinus Torvalds .procname = "min_adv_mss", 51294990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 51301da177e4SLinus Torvalds .maxlen = sizeof(int), 51311da177e4SLinus Torvalds .mode = 0644, 5132f3d3f616SMin Zhang .proc_handler = proc_dointvec, 51331da177e4SLinus Torvalds }, 51341da177e4SLinus Torvalds { 51351da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 51364990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 51371da177e4SLinus Torvalds .maxlen = sizeof(int), 51381da177e4SLinus Torvalds .mode = 0644, 51396d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 51401da177e4SLinus Torvalds }, 5141f8572d8fSEric W. Biederman { } 51421da177e4SLinus Torvalds }; 51431da177e4SLinus Torvalds 51442c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5145760f2d01SDaniel Lezcano { 5146760f2d01SDaniel Lezcano struct ctl_table *table; 5147760f2d01SDaniel Lezcano 5148760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5149760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5150760f2d01SDaniel Lezcano GFP_KERNEL); 51515ee09105SYOSHIFUJI Hideaki 51525ee09105SYOSHIFUJI Hideaki if (table) { 51535ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5154c486da34SLucian Adrian Grijincu table[0].extra1 = net; 515586393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 51565ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 51575ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 51585ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 51595ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 51605ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 51615ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 51625ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 51639c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 5164464dc801SEric W. Biederman 5165464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5166464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5167464dc801SEric W. Biederman table[0].procname = NULL; 51685ee09105SYOSHIFUJI Hideaki } 51695ee09105SYOSHIFUJI Hideaki 5170760f2d01SDaniel Lezcano return table; 5171760f2d01SDaniel Lezcano } 51721da177e4SLinus Torvalds #endif 51731da177e4SLinus Torvalds 51742c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5175cdb18761SDaniel Lezcano { 5176633d424bSPavel Emelyanov int ret = -ENOMEM; 51778ed67789SDaniel Lezcano 517886393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 517986393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5180f2fc6a54SBenjamin Thery 5181fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5182fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5183fc66f95cSEric Dumazet 5184421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5185421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5186421842edSDavid Ahern GFP_KERNEL); 5187421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5188421842edSDavid Ahern goto out_ip6_dst_entries; 5189421842edSDavid Ahern 51908ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 51918ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 51928ed67789SDaniel Lezcano GFP_KERNEL); 51938ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5194421842edSDavid Ahern goto out_fib6_null_entry; 5195d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 519662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 519762fa8a84SDavid S. Miller ip6_template_metrics, true); 51988ed67789SDaniel Lezcano 51998ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5200feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 52018ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 52028ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 52038ed67789SDaniel Lezcano GFP_KERNEL); 520468fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 520568fffc67SPeter Zijlstra goto out_ip6_null_entry; 5206d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 520762fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 520862fa8a84SDavid S. Miller ip6_template_metrics, true); 52098ed67789SDaniel Lezcano 52108ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 52118ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 52128ed67789SDaniel Lezcano GFP_KERNEL); 521368fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 521468fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5215d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 521662fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 521762fa8a84SDavid S. Miller ip6_template_metrics, true); 52188ed67789SDaniel Lezcano #endif 52198ed67789SDaniel Lezcano 5220b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5221b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5222b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5223b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5224b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5225b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5226b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5227b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 5228b339a47cSPeter Zijlstra 52296891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 52306891a346SBenjamin Thery 52318ed67789SDaniel Lezcano ret = 0; 52328ed67789SDaniel Lezcano out: 52338ed67789SDaniel Lezcano return ret; 5234f2fc6a54SBenjamin Thery 523568fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 523668fffc67SPeter Zijlstra out_ip6_prohibit_entry: 523768fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 523868fffc67SPeter Zijlstra out_ip6_null_entry: 523968fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 524068fffc67SPeter Zijlstra #endif 5241421842edSDavid Ahern out_fib6_null_entry: 5242421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5243fc66f95cSEric Dumazet out_ip6_dst_entries: 5244fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5245f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5246f2fc6a54SBenjamin Thery goto out; 5247cdb18761SDaniel Lezcano } 5248cdb18761SDaniel Lezcano 52492c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5250cdb18761SDaniel Lezcano { 5251421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 52528ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 52538ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 52548ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 52558ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 52568ed67789SDaniel Lezcano #endif 525741bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5258cdb18761SDaniel Lezcano } 5259cdb18761SDaniel Lezcano 5260d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5261d189634eSThomas Graf { 5262d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5263c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5264c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 52653617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 52663617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5267d189634eSThomas Graf #endif 5268d189634eSThomas Graf return 0; 5269d189634eSThomas Graf } 5270d189634eSThomas Graf 5271d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5272d189634eSThomas Graf { 5273d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5274ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5275ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5276d189634eSThomas Graf #endif 5277d189634eSThomas Graf } 5278d189634eSThomas Graf 5279cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5280cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5281cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5282cdb18761SDaniel Lezcano }; 5283cdb18761SDaniel Lezcano 5284c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5285c3426b47SDavid S. Miller { 5286c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5287c3426b47SDavid S. Miller 5288c3426b47SDavid S. Miller if (!bp) 5289c3426b47SDavid S. Miller return -ENOMEM; 5290c3426b47SDavid S. Miller inet_peer_base_init(bp); 5291c3426b47SDavid S. Miller net->ipv6.peers = bp; 5292c3426b47SDavid S. Miller return 0; 5293c3426b47SDavid S. Miller } 5294c3426b47SDavid S. Miller 5295c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5296c3426b47SDavid S. Miller { 5297c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5298c3426b47SDavid S. Miller 5299c3426b47SDavid S. Miller net->ipv6.peers = NULL; 530056a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5301c3426b47SDavid S. Miller kfree(bp); 5302c3426b47SDavid S. Miller } 5303c3426b47SDavid S. Miller 53042b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5305c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5306c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5307c3426b47SDavid S. Miller }; 5308c3426b47SDavid S. Miller 5309d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5310d189634eSThomas Graf .init = ip6_route_net_init_late, 5311d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5312d189634eSThomas Graf }; 5313d189634eSThomas Graf 53148ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 53158ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5316242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 53178ed67789SDaniel Lezcano }; 53188ed67789SDaniel Lezcano 53192f460933SWANG Cong void __init ip6_route_init_special_entries(void) 53202f460933SWANG Cong { 53212f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 53222f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 53232f460933SWANG Cong * manually for init_net */ 5324421842edSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev; 53252f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 53262f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53272f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53282f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 53292f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53302f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 53312f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 53322f460933SWANG Cong #endif 53332f460933SWANG Cong } 53342f460933SWANG Cong 5335433d49c3SDaniel Lezcano int __init ip6_route_init(void) 53361da177e4SLinus Torvalds { 5337433d49c3SDaniel Lezcano int ret; 53388d0b94afSMartin KaFai Lau int cpu; 5339433d49c3SDaniel Lezcano 53409a7ec3a9SDaniel Lezcano ret = -ENOMEM; 53419a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 53429a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 53439a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 53449a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5345c19a28e1SFernando Carrijo goto out; 534614e50e57SDavid S. Miller 5347fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 53488ed67789SDaniel Lezcano if (ret) 5349bdb3289fSDaniel Lezcano goto out_kmem_cache; 5350bdb3289fSDaniel Lezcano 5351c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5352c3426b47SDavid S. Miller if (ret) 5353e8803b6cSDavid S. Miller goto out_dst_entries; 53542a0c451aSThomas Graf 53557e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 53567e52b33bSDavid S. Miller if (ret) 53577e52b33bSDavid S. Miller goto out_register_inetpeer; 5358c3426b47SDavid S. Miller 53595dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 53605dc121e9SArnaud Ebalard 5361e8803b6cSDavid S. Miller ret = fib6_init(); 5362433d49c3SDaniel Lezcano if (ret) 53638ed67789SDaniel Lezcano goto out_register_subsys; 5364433d49c3SDaniel Lezcano 5365433d49c3SDaniel Lezcano ret = xfrm6_init(); 5366433d49c3SDaniel Lezcano if (ret) 5367e8803b6cSDavid S. Miller goto out_fib6_init; 5368c35b7e72SDaniel Lezcano 5369433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5370433d49c3SDaniel Lezcano if (ret) 5371433d49c3SDaniel Lezcano goto xfrm6_init; 53727e5449c2SDaniel Lezcano 5373d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5374d189634eSThomas Graf if (ret) 5375d189634eSThomas Graf goto fib6_rules_init; 5376d189634eSThomas Graf 537716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 537816feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 537916feebcfSFlorian Westphal if (ret < 0) 538016feebcfSFlorian Westphal goto out_register_late_subsys; 538116feebcfSFlorian Westphal 538216feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 538316feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 538416feebcfSFlorian Westphal if (ret < 0) 538516feebcfSFlorian Westphal goto out_register_late_subsys; 538616feebcfSFlorian Westphal 538716feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 538816feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 538916feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 539016feebcfSFlorian Westphal if (ret < 0) 5391d189634eSThomas Graf goto out_register_late_subsys; 5392433d49c3SDaniel Lezcano 53938ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5394cdb18761SDaniel Lezcano if (ret) 5395d189634eSThomas Graf goto out_register_late_subsys; 53968ed67789SDaniel Lezcano 53978d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 53988d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 53998d0b94afSMartin KaFai Lau 54008d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 54018d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 54028d0b94afSMartin KaFai Lau } 54038d0b94afSMartin KaFai Lau 5404433d49c3SDaniel Lezcano out: 5405433d49c3SDaniel Lezcano return ret; 5406433d49c3SDaniel Lezcano 5407d189634eSThomas Graf out_register_late_subsys: 540816feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5409d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5410433d49c3SDaniel Lezcano fib6_rules_init: 5411433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5412433d49c3SDaniel Lezcano xfrm6_init: 5413433d49c3SDaniel Lezcano xfrm6_fini(); 54142a0c451aSThomas Graf out_fib6_init: 54152a0c451aSThomas Graf fib6_gc_cleanup(); 54168ed67789SDaniel Lezcano out_register_subsys: 54178ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 54187e52b33bSDavid S. Miller out_register_inetpeer: 54197e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5420fc66f95cSEric Dumazet out_dst_entries: 5421fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5422433d49c3SDaniel Lezcano out_kmem_cache: 5423f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5424433d49c3SDaniel Lezcano goto out; 54251da177e4SLinus Torvalds } 54261da177e4SLinus Torvalds 54271da177e4SLinus Torvalds void ip6_route_cleanup(void) 54281da177e4SLinus Torvalds { 54298ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5430d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5431101367c2SThomas Graf fib6_rules_cleanup(); 54321da177e4SLinus Torvalds xfrm6_fini(); 54331da177e4SLinus Torvalds fib6_gc_cleanup(); 5434c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 54358ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 543641bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5437f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 54381da177e4SLinus Torvalds } 5439