xref: /openbmc/linux/net/ipv6/route.c (revision e843b9e1bec4a953d848a319da6a18ca5c667f55)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds  *	Linux INET6 implementation
31da177e4SLinus Torvalds  *	FIB front-end.
41da177e4SLinus Torvalds  *
51da177e4SLinus Torvalds  *	Authors:
61da177e4SLinus Torvalds  *	Pedro Roque		<roque@di.fc.ul.pt>
71da177e4SLinus Torvalds  *
81da177e4SLinus Torvalds  *	$Id: route.c,v 1.56 2001/10/31 21:55:55 davem Exp $
91da177e4SLinus Torvalds  *
101da177e4SLinus Torvalds  *	This program is free software; you can redistribute it and/or
111da177e4SLinus Torvalds  *      modify it under the terms of the GNU General Public License
121da177e4SLinus Torvalds  *      as published by the Free Software Foundation; either version
131da177e4SLinus Torvalds  *      2 of the License, or (at your option) any later version.
141da177e4SLinus Torvalds  */
151da177e4SLinus Torvalds 
161da177e4SLinus Torvalds /*	Changes:
171da177e4SLinus Torvalds  *
181da177e4SLinus Torvalds  *	YOSHIFUJI Hideaki @USAGI
191da177e4SLinus Torvalds  *		reworked default router selection.
201da177e4SLinus Torvalds  *		- respect outgoing interface
211da177e4SLinus Torvalds  *		- select from (probably) reachable routers (i.e.
221da177e4SLinus Torvalds  *		routers in REACHABLE, STALE, DELAY or PROBE states).
231da177e4SLinus Torvalds  *		- always select the same router if it is (probably)
241da177e4SLinus Torvalds  *		reachable.  otherwise, round-robin the list.
251da177e4SLinus Torvalds  */
261da177e4SLinus Torvalds 
274fc268d2SRandy Dunlap #include <linux/capability.h>
281da177e4SLinus Torvalds #include <linux/config.h>
291da177e4SLinus Torvalds #include <linux/errno.h>
301da177e4SLinus Torvalds #include <linux/types.h>
311da177e4SLinus Torvalds #include <linux/times.h>
321da177e4SLinus Torvalds #include <linux/socket.h>
331da177e4SLinus Torvalds #include <linux/sockios.h>
341da177e4SLinus Torvalds #include <linux/net.h>
351da177e4SLinus Torvalds #include <linux/route.h>
361da177e4SLinus Torvalds #include <linux/netdevice.h>
371da177e4SLinus Torvalds #include <linux/in6.h>
381da177e4SLinus Torvalds #include <linux/init.h>
391da177e4SLinus Torvalds #include <linux/netlink.h>
401da177e4SLinus Torvalds #include <linux/if_arp.h>
411da177e4SLinus Torvalds 
421da177e4SLinus Torvalds #ifdef 	CONFIG_PROC_FS
431da177e4SLinus Torvalds #include <linux/proc_fs.h>
441da177e4SLinus Torvalds #include <linux/seq_file.h>
451da177e4SLinus Torvalds #endif
461da177e4SLinus Torvalds 
471da177e4SLinus Torvalds #include <net/snmp.h>
481da177e4SLinus Torvalds #include <net/ipv6.h>
491da177e4SLinus Torvalds #include <net/ip6_fib.h>
501da177e4SLinus Torvalds #include <net/ip6_route.h>
511da177e4SLinus Torvalds #include <net/ndisc.h>
521da177e4SLinus Torvalds #include <net/addrconf.h>
531da177e4SLinus Torvalds #include <net/tcp.h>
541da177e4SLinus Torvalds #include <linux/rtnetlink.h>
551da177e4SLinus Torvalds #include <net/dst.h>
561da177e4SLinus Torvalds #include <net/xfrm.h>
571da177e4SLinus Torvalds 
581da177e4SLinus Torvalds #include <asm/uaccess.h>
591da177e4SLinus Torvalds 
601da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
611da177e4SLinus Torvalds #include <linux/sysctl.h>
621da177e4SLinus Torvalds #endif
631da177e4SLinus Torvalds 
641da177e4SLinus Torvalds /* Set to 3 to get tracing. */
651da177e4SLinus Torvalds #define RT6_DEBUG 2
661da177e4SLinus Torvalds 
671da177e4SLinus Torvalds #if RT6_DEBUG >= 3
681da177e4SLinus Torvalds #define RDBG(x) printk x
691da177e4SLinus Torvalds #define RT6_TRACE(x...) printk(KERN_DEBUG x)
701da177e4SLinus Torvalds #else
711da177e4SLinus Torvalds #define RDBG(x)
721da177e4SLinus Torvalds #define RT6_TRACE(x...) do { ; } while (0)
731da177e4SLinus Torvalds #endif
741da177e4SLinus Torvalds 
75519fbd87SYOSHIFUJI Hideaki #define CLONE_OFFLINK_ROUTE 0
761da177e4SLinus Torvalds 
77554cfb7eSYOSHIFUJI Hideaki #define RT6_SELECT_F_IFACE	0x1
78554cfb7eSYOSHIFUJI Hideaki #define RT6_SELECT_F_REACHABLE	0x2
79554cfb7eSYOSHIFUJI Hideaki 
801da177e4SLinus Torvalds static int ip6_rt_max_size = 4096;
811da177e4SLinus Torvalds static int ip6_rt_gc_min_interval = HZ / 2;
821da177e4SLinus Torvalds static int ip6_rt_gc_timeout = 60*HZ;
831da177e4SLinus Torvalds int ip6_rt_gc_interval = 30*HZ;
841da177e4SLinus Torvalds static int ip6_rt_gc_elasticity = 9;
851da177e4SLinus Torvalds static int ip6_rt_mtu_expires = 10*60*HZ;
861da177e4SLinus Torvalds static int ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
871da177e4SLinus Torvalds 
881da177e4SLinus Torvalds static struct rt6_info * ip6_rt_copy(struct rt6_info *ort);
891da177e4SLinus Torvalds static struct dst_entry	*ip6_dst_check(struct dst_entry *dst, u32 cookie);
901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *);
911da177e4SLinus Torvalds static void		ip6_dst_destroy(struct dst_entry *);
921da177e4SLinus Torvalds static void		ip6_dst_ifdown(struct dst_entry *,
931da177e4SLinus Torvalds 				       struct net_device *dev, int how);
941da177e4SLinus Torvalds static int		 ip6_dst_gc(void);
951da177e4SLinus Torvalds 
961da177e4SLinus Torvalds static int		ip6_pkt_discard(struct sk_buff *skb);
971da177e4SLinus Torvalds static int		ip6_pkt_discard_out(struct sk_buff *skb);
981da177e4SLinus Torvalds static void		ip6_link_failure(struct sk_buff *skb);
991da177e4SLinus Torvalds static void		ip6_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
1001da177e4SLinus Torvalds 
10170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
10270ceb4f5SYOSHIFUJI Hideaki static struct rt6_info *rt6_add_route_info(struct in6_addr *prefix, int prefixlen,
10370ceb4f5SYOSHIFUJI Hideaki 					   struct in6_addr *gwaddr, int ifindex,
10470ceb4f5SYOSHIFUJI Hideaki 					   unsigned pref);
10570ceb4f5SYOSHIFUJI Hideaki static struct rt6_info *rt6_get_route_info(struct in6_addr *prefix, int prefixlen,
10670ceb4f5SYOSHIFUJI Hideaki 					   struct in6_addr *gwaddr, int ifindex);
10770ceb4f5SYOSHIFUJI Hideaki #endif
10870ceb4f5SYOSHIFUJI Hideaki 
1091da177e4SLinus Torvalds static struct dst_ops ip6_dst_ops = {
1101da177e4SLinus Torvalds 	.family			=	AF_INET6,
1111da177e4SLinus Torvalds 	.protocol		=	__constant_htons(ETH_P_IPV6),
1121da177e4SLinus Torvalds 	.gc			=	ip6_dst_gc,
1131da177e4SLinus Torvalds 	.gc_thresh		=	1024,
1141da177e4SLinus Torvalds 	.check			=	ip6_dst_check,
1151da177e4SLinus Torvalds 	.destroy		=	ip6_dst_destroy,
1161da177e4SLinus Torvalds 	.ifdown			=	ip6_dst_ifdown,
1171da177e4SLinus Torvalds 	.negative_advice	=	ip6_negative_advice,
1181da177e4SLinus Torvalds 	.link_failure		=	ip6_link_failure,
1191da177e4SLinus Torvalds 	.update_pmtu		=	ip6_rt_update_pmtu,
1201da177e4SLinus Torvalds 	.entry_size		=	sizeof(struct rt6_info),
1211da177e4SLinus Torvalds };
1221da177e4SLinus Torvalds 
1231da177e4SLinus Torvalds struct rt6_info ip6_null_entry = {
1241da177e4SLinus Torvalds 	.u = {
1251da177e4SLinus Torvalds 		.dst = {
1261da177e4SLinus Torvalds 			.__refcnt	= ATOMIC_INIT(1),
1271da177e4SLinus Torvalds 			.__use		= 1,
1281da177e4SLinus Torvalds 			.dev		= &loopback_dev,
1291da177e4SLinus Torvalds 			.obsolete	= -1,
1301da177e4SLinus Torvalds 			.error		= -ENETUNREACH,
1311da177e4SLinus Torvalds 			.metrics	= { [RTAX_HOPLIMIT - 1] = 255, },
1321da177e4SLinus Torvalds 			.input		= ip6_pkt_discard,
1331da177e4SLinus Torvalds 			.output		= ip6_pkt_discard_out,
1341da177e4SLinus Torvalds 			.ops		= &ip6_dst_ops,
1351da177e4SLinus Torvalds 			.path		= (struct dst_entry*)&ip6_null_entry,
1361da177e4SLinus Torvalds 		}
1371da177e4SLinus Torvalds 	},
1381da177e4SLinus Torvalds 	.rt6i_flags	= (RTF_REJECT | RTF_NONEXTHOP),
1391da177e4SLinus Torvalds 	.rt6i_metric	= ~(u32) 0,
1401da177e4SLinus Torvalds 	.rt6i_ref	= ATOMIC_INIT(1),
1411da177e4SLinus Torvalds };
1421da177e4SLinus Torvalds 
1431da177e4SLinus Torvalds struct fib6_node ip6_routing_table = {
1441da177e4SLinus Torvalds 	.leaf		= &ip6_null_entry,
1451da177e4SLinus Torvalds 	.fn_flags	= RTN_ROOT | RTN_TL_ROOT | RTN_RTINFO,
1461da177e4SLinus Torvalds };
1471da177e4SLinus Torvalds 
1481da177e4SLinus Torvalds /* Protects all the ip6 fib */
1491da177e4SLinus Torvalds 
1501da177e4SLinus Torvalds DEFINE_RWLOCK(rt6_lock);
1511da177e4SLinus Torvalds 
1521da177e4SLinus Torvalds 
1531da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */
1541da177e4SLinus Torvalds static __inline__ struct rt6_info *ip6_dst_alloc(void)
1551da177e4SLinus Torvalds {
1561da177e4SLinus Torvalds 	return (struct rt6_info *)dst_alloc(&ip6_dst_ops);
1571da177e4SLinus Torvalds }
1581da177e4SLinus Torvalds 
1591da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst)
1601da177e4SLinus Torvalds {
1611da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
1621da177e4SLinus Torvalds 	struct inet6_dev *idev = rt->rt6i_idev;
1631da177e4SLinus Torvalds 
1641da177e4SLinus Torvalds 	if (idev != NULL) {
1651da177e4SLinus Torvalds 		rt->rt6i_idev = NULL;
1661da177e4SLinus Torvalds 		in6_dev_put(idev);
1671da177e4SLinus Torvalds 	}
1681da177e4SLinus Torvalds }
1691da177e4SLinus Torvalds 
1701da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
1711da177e4SLinus Torvalds 			   int how)
1721da177e4SLinus Torvalds {
1731da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *)dst;
1741da177e4SLinus Torvalds 	struct inet6_dev *idev = rt->rt6i_idev;
1751da177e4SLinus Torvalds 
1761da177e4SLinus Torvalds 	if (dev != &loopback_dev && idev != NULL && idev->dev == dev) {
1771da177e4SLinus Torvalds 		struct inet6_dev *loopback_idev = in6_dev_get(&loopback_dev);
1781da177e4SLinus Torvalds 		if (loopback_idev != NULL) {
1791da177e4SLinus Torvalds 			rt->rt6i_idev = loopback_idev;
1801da177e4SLinus Torvalds 			in6_dev_put(idev);
1811da177e4SLinus Torvalds 		}
1821da177e4SLinus Torvalds 	}
1831da177e4SLinus Torvalds }
1841da177e4SLinus Torvalds 
1851da177e4SLinus Torvalds static __inline__ int rt6_check_expired(const struct rt6_info *rt)
1861da177e4SLinus Torvalds {
1871da177e4SLinus Torvalds 	return (rt->rt6i_flags & RTF_EXPIRES &&
1881da177e4SLinus Torvalds 		time_after(jiffies, rt->rt6i_expires));
1891da177e4SLinus Torvalds }
1901da177e4SLinus Torvalds 
1911da177e4SLinus Torvalds /*
1921da177e4SLinus Torvalds  *	Route lookup. Any rt6_lock is implied.
1931da177e4SLinus Torvalds  */
1941da177e4SLinus Torvalds 
1951da177e4SLinus Torvalds static __inline__ struct rt6_info *rt6_device_match(struct rt6_info *rt,
1961da177e4SLinus Torvalds 						    int oif,
1971da177e4SLinus Torvalds 						    int strict)
1981da177e4SLinus Torvalds {
1991da177e4SLinus Torvalds 	struct rt6_info *local = NULL;
2001da177e4SLinus Torvalds 	struct rt6_info *sprt;
2011da177e4SLinus Torvalds 
2021da177e4SLinus Torvalds 	if (oif) {
2031da177e4SLinus Torvalds 		for (sprt = rt; sprt; sprt = sprt->u.next) {
2041da177e4SLinus Torvalds 			struct net_device *dev = sprt->rt6i_dev;
2051da177e4SLinus Torvalds 			if (dev->ifindex == oif)
2061da177e4SLinus Torvalds 				return sprt;
2071da177e4SLinus Torvalds 			if (dev->flags & IFF_LOOPBACK) {
2081da177e4SLinus Torvalds 				if (sprt->rt6i_idev == NULL ||
2091da177e4SLinus Torvalds 				    sprt->rt6i_idev->dev->ifindex != oif) {
2101da177e4SLinus Torvalds 					if (strict && oif)
2111da177e4SLinus Torvalds 						continue;
2121da177e4SLinus Torvalds 					if (local && (!oif ||
2131da177e4SLinus Torvalds 						      local->rt6i_idev->dev->ifindex == oif))
2141da177e4SLinus Torvalds 						continue;
2151da177e4SLinus Torvalds 				}
2161da177e4SLinus Torvalds 				local = sprt;
2171da177e4SLinus Torvalds 			}
2181da177e4SLinus Torvalds 		}
2191da177e4SLinus Torvalds 
2201da177e4SLinus Torvalds 		if (local)
2211da177e4SLinus Torvalds 			return local;
2221da177e4SLinus Torvalds 
2231da177e4SLinus Torvalds 		if (strict)
2241da177e4SLinus Torvalds 			return &ip6_null_entry;
2251da177e4SLinus Torvalds 	}
2261da177e4SLinus Torvalds 	return rt;
2271da177e4SLinus Torvalds }
2281da177e4SLinus Torvalds 
22927097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
23027097255SYOSHIFUJI Hideaki static void rt6_probe(struct rt6_info *rt)
23127097255SYOSHIFUJI Hideaki {
23227097255SYOSHIFUJI Hideaki 	struct neighbour *neigh = rt ? rt->rt6i_nexthop : NULL;
23327097255SYOSHIFUJI Hideaki 	/*
23427097255SYOSHIFUJI Hideaki 	 * Okay, this does not seem to be appropriate
23527097255SYOSHIFUJI Hideaki 	 * for now, however, we need to check if it
23627097255SYOSHIFUJI Hideaki 	 * is really so; aka Router Reachability Probing.
23727097255SYOSHIFUJI Hideaki 	 *
23827097255SYOSHIFUJI Hideaki 	 * Router Reachability Probe MUST be rate-limited
23927097255SYOSHIFUJI Hideaki 	 * to no more than one per minute.
24027097255SYOSHIFUJI Hideaki 	 */
24127097255SYOSHIFUJI Hideaki 	if (!neigh || (neigh->nud_state & NUD_VALID))
24227097255SYOSHIFUJI Hideaki 		return;
24327097255SYOSHIFUJI Hideaki 	read_lock_bh(&neigh->lock);
24427097255SYOSHIFUJI Hideaki 	if (!(neigh->nud_state & NUD_VALID) &&
24552e16356SYOSHIFUJI Hideaki 	    time_after(jiffies, neigh->updated + rt->rt6i_idev->cnf.rtr_probe_interval)) {
24627097255SYOSHIFUJI Hideaki 		struct in6_addr mcaddr;
24727097255SYOSHIFUJI Hideaki 		struct in6_addr *target;
24827097255SYOSHIFUJI Hideaki 
24927097255SYOSHIFUJI Hideaki 		neigh->updated = jiffies;
25027097255SYOSHIFUJI Hideaki 		read_unlock_bh(&neigh->lock);
25127097255SYOSHIFUJI Hideaki 
25227097255SYOSHIFUJI Hideaki 		target = (struct in6_addr *)&neigh->primary_key;
25327097255SYOSHIFUJI Hideaki 		addrconf_addr_solict_mult(target, &mcaddr);
25427097255SYOSHIFUJI Hideaki 		ndisc_send_ns(rt->rt6i_dev, NULL, target, &mcaddr, NULL);
25527097255SYOSHIFUJI Hideaki 	} else
25627097255SYOSHIFUJI Hideaki 		read_unlock_bh(&neigh->lock);
25727097255SYOSHIFUJI Hideaki }
25827097255SYOSHIFUJI Hideaki #else
25927097255SYOSHIFUJI Hideaki static inline void rt6_probe(struct rt6_info *rt)
26027097255SYOSHIFUJI Hideaki {
26127097255SYOSHIFUJI Hideaki 	return;
26227097255SYOSHIFUJI Hideaki }
26327097255SYOSHIFUJI Hideaki #endif
26427097255SYOSHIFUJI Hideaki 
2651da177e4SLinus Torvalds /*
266554cfb7eSYOSHIFUJI Hideaki  * Default Router Selection (RFC 2461 6.3.6)
2671da177e4SLinus Torvalds  */
268554cfb7eSYOSHIFUJI Hideaki static int inline rt6_check_dev(struct rt6_info *rt, int oif)
2691da177e4SLinus Torvalds {
270554cfb7eSYOSHIFUJI Hideaki 	struct net_device *dev = rt->rt6i_dev;
271554cfb7eSYOSHIFUJI Hideaki 	if (!oif || dev->ifindex == oif)
272554cfb7eSYOSHIFUJI Hideaki 		return 2;
273554cfb7eSYOSHIFUJI Hideaki 	if ((dev->flags & IFF_LOOPBACK) &&
274554cfb7eSYOSHIFUJI Hideaki 	    rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif)
275554cfb7eSYOSHIFUJI Hideaki 		return 1;
276554cfb7eSYOSHIFUJI Hideaki 	return 0;
2771da177e4SLinus Torvalds }
2781da177e4SLinus Torvalds 
279554cfb7eSYOSHIFUJI Hideaki static int inline rt6_check_neigh(struct rt6_info *rt)
2801da177e4SLinus Torvalds {
281554cfb7eSYOSHIFUJI Hideaki 	struct neighbour *neigh = rt->rt6i_nexthop;
2821da177e4SLinus Torvalds 	int m = 0;
283554cfb7eSYOSHIFUJI Hideaki 	if (neigh) {
2841da177e4SLinus Torvalds 		read_lock_bh(&neigh->lock);
285554cfb7eSYOSHIFUJI Hideaki 		if (neigh->nud_state & NUD_VALID)
286554cfb7eSYOSHIFUJI Hideaki 			m = 1;
2871da177e4SLinus Torvalds 		read_unlock_bh(&neigh->lock);
2881da177e4SLinus Torvalds 	}
289554cfb7eSYOSHIFUJI Hideaki 	return m;
2901da177e4SLinus Torvalds }
2911da177e4SLinus Torvalds 
292554cfb7eSYOSHIFUJI Hideaki static int rt6_score_route(struct rt6_info *rt, int oif,
293554cfb7eSYOSHIFUJI Hideaki 			   int strict)
294554cfb7eSYOSHIFUJI Hideaki {
295554cfb7eSYOSHIFUJI Hideaki 	int m = rt6_check_dev(rt, oif);
296554cfb7eSYOSHIFUJI Hideaki 	if (!m && (strict & RT6_SELECT_F_IFACE))
297554cfb7eSYOSHIFUJI Hideaki 		return -1;
298ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF
299ebacaaa0SYOSHIFUJI Hideaki 	m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2;
300ebacaaa0SYOSHIFUJI Hideaki #endif
301554cfb7eSYOSHIFUJI Hideaki 	if (rt6_check_neigh(rt))
302ebacaaa0SYOSHIFUJI Hideaki 		m |= 16;
303554cfb7eSYOSHIFUJI Hideaki 	else if (strict & RT6_SELECT_F_REACHABLE)
304554cfb7eSYOSHIFUJI Hideaki 		return -1;
305554cfb7eSYOSHIFUJI Hideaki 	return m;
306554cfb7eSYOSHIFUJI Hideaki }
307554cfb7eSYOSHIFUJI Hideaki 
308554cfb7eSYOSHIFUJI Hideaki static struct rt6_info *rt6_select(struct rt6_info **head, int oif,
309554cfb7eSYOSHIFUJI Hideaki 				   int strict)
310554cfb7eSYOSHIFUJI Hideaki {
311554cfb7eSYOSHIFUJI Hideaki 	struct rt6_info *match = NULL, *last = NULL;
312554cfb7eSYOSHIFUJI Hideaki 	struct rt6_info *rt, *rt0 = *head;
313554cfb7eSYOSHIFUJI Hideaki 	u32 metric;
314554cfb7eSYOSHIFUJI Hideaki 	int mpri = -1;
315554cfb7eSYOSHIFUJI Hideaki 
316554cfb7eSYOSHIFUJI Hideaki 	RT6_TRACE("%s(head=%p(*head=%p), oif=%d)\n",
317554cfb7eSYOSHIFUJI Hideaki 		  __FUNCTION__, head, head ? *head : NULL, oif);
318554cfb7eSYOSHIFUJI Hideaki 
319554cfb7eSYOSHIFUJI Hideaki 	for (rt = rt0, metric = rt0->rt6i_metric;
320554cfb7eSYOSHIFUJI Hideaki 	     rt && rt->rt6i_metric == metric;
321554cfb7eSYOSHIFUJI Hideaki 	     rt = rt->u.next) {
322554cfb7eSYOSHIFUJI Hideaki 		int m;
323554cfb7eSYOSHIFUJI Hideaki 
324554cfb7eSYOSHIFUJI Hideaki 		if (rt6_check_expired(rt))
325554cfb7eSYOSHIFUJI Hideaki 			continue;
326554cfb7eSYOSHIFUJI Hideaki 
327554cfb7eSYOSHIFUJI Hideaki 		last = rt;
328554cfb7eSYOSHIFUJI Hideaki 
329554cfb7eSYOSHIFUJI Hideaki 		m = rt6_score_route(rt, oif, strict);
330554cfb7eSYOSHIFUJI Hideaki 		if (m < 0)
331554cfb7eSYOSHIFUJI Hideaki 			continue;
332554cfb7eSYOSHIFUJI Hideaki 
333554cfb7eSYOSHIFUJI Hideaki 		if (m > mpri) {
33427097255SYOSHIFUJI Hideaki 			rt6_probe(match);
335554cfb7eSYOSHIFUJI Hideaki 			match = rt;
3361da177e4SLinus Torvalds 			mpri = m;
33727097255SYOSHIFUJI Hideaki 		} else {
33827097255SYOSHIFUJI Hideaki 			rt6_probe(rt);
3391da177e4SLinus Torvalds 		}
3401da177e4SLinus Torvalds 	}
3411da177e4SLinus Torvalds 
342554cfb7eSYOSHIFUJI Hideaki 	if (!match &&
343554cfb7eSYOSHIFUJI Hideaki 	    (strict & RT6_SELECT_F_REACHABLE) &&
344554cfb7eSYOSHIFUJI Hideaki 	    last && last != rt0) {
345554cfb7eSYOSHIFUJI Hideaki 		/* no entries matched; do round-robin */
346554cfb7eSYOSHIFUJI Hideaki 		*head = rt0->u.next;
347554cfb7eSYOSHIFUJI Hideaki 		rt0->u.next = last->u.next;
348554cfb7eSYOSHIFUJI Hideaki 		last->u.next = rt0;
349554cfb7eSYOSHIFUJI Hideaki 	}
350554cfb7eSYOSHIFUJI Hideaki 
351554cfb7eSYOSHIFUJI Hideaki 	RT6_TRACE("%s() => %p, score=%d\n",
352554cfb7eSYOSHIFUJI Hideaki 		  __FUNCTION__, match, mpri);
353554cfb7eSYOSHIFUJI Hideaki 
354554cfb7eSYOSHIFUJI Hideaki 	return (match ? match : &ip6_null_entry);
3551da177e4SLinus Torvalds }
3561da177e4SLinus Torvalds 
35770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
35870ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
35970ceb4f5SYOSHIFUJI Hideaki 		  struct in6_addr *gwaddr)
36070ceb4f5SYOSHIFUJI Hideaki {
36170ceb4f5SYOSHIFUJI Hideaki 	struct route_info *rinfo = (struct route_info *) opt;
36270ceb4f5SYOSHIFUJI Hideaki 	struct in6_addr prefix_buf, *prefix;
36370ceb4f5SYOSHIFUJI Hideaki 	unsigned int pref;
36470ceb4f5SYOSHIFUJI Hideaki 	u32 lifetime;
36570ceb4f5SYOSHIFUJI Hideaki 	struct rt6_info *rt;
36670ceb4f5SYOSHIFUJI Hideaki 
36770ceb4f5SYOSHIFUJI Hideaki 	if (len < sizeof(struct route_info)) {
36870ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
36970ceb4f5SYOSHIFUJI Hideaki 	}
37070ceb4f5SYOSHIFUJI Hideaki 
37170ceb4f5SYOSHIFUJI Hideaki 	/* Sanity check for prefix_len and length */
37270ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length > 3) {
37370ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
37470ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 128) {
37570ceb4f5SYOSHIFUJI Hideaki 		return -EINVAL;
37670ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 64) {
37770ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 2) {
37870ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
37970ceb4f5SYOSHIFUJI Hideaki 		}
38070ceb4f5SYOSHIFUJI Hideaki 	} else if (rinfo->prefix_len > 0) {
38170ceb4f5SYOSHIFUJI Hideaki 		if (rinfo->length < 1) {
38270ceb4f5SYOSHIFUJI Hideaki 			return -EINVAL;
38370ceb4f5SYOSHIFUJI Hideaki 		}
38470ceb4f5SYOSHIFUJI Hideaki 	}
38570ceb4f5SYOSHIFUJI Hideaki 
38670ceb4f5SYOSHIFUJI Hideaki 	pref = rinfo->route_pref;
38770ceb4f5SYOSHIFUJI Hideaki 	if (pref == ICMPV6_ROUTER_PREF_INVALID)
38870ceb4f5SYOSHIFUJI Hideaki 		pref = ICMPV6_ROUTER_PREF_MEDIUM;
38970ceb4f5SYOSHIFUJI Hideaki 
39070ceb4f5SYOSHIFUJI Hideaki 	lifetime = htonl(rinfo->lifetime);
39170ceb4f5SYOSHIFUJI Hideaki 	if (lifetime == 0xffffffff) {
39270ceb4f5SYOSHIFUJI Hideaki 		/* infinity */
39370ceb4f5SYOSHIFUJI Hideaki 	} else if (lifetime > 0x7fffffff/HZ) {
39470ceb4f5SYOSHIFUJI Hideaki 		/* Avoid arithmetic overflow */
39570ceb4f5SYOSHIFUJI Hideaki 		lifetime = 0x7fffffff/HZ - 1;
39670ceb4f5SYOSHIFUJI Hideaki 	}
39770ceb4f5SYOSHIFUJI Hideaki 
39870ceb4f5SYOSHIFUJI Hideaki 	if (rinfo->length == 3)
39970ceb4f5SYOSHIFUJI Hideaki 		prefix = (struct in6_addr *)rinfo->prefix;
40070ceb4f5SYOSHIFUJI Hideaki 	else {
40170ceb4f5SYOSHIFUJI Hideaki 		/* this function is safe */
40270ceb4f5SYOSHIFUJI Hideaki 		ipv6_addr_prefix(&prefix_buf,
40370ceb4f5SYOSHIFUJI Hideaki 				 (struct in6_addr *)rinfo->prefix,
40470ceb4f5SYOSHIFUJI Hideaki 				 rinfo->prefix_len);
40570ceb4f5SYOSHIFUJI Hideaki 		prefix = &prefix_buf;
40670ceb4f5SYOSHIFUJI Hideaki 	}
40770ceb4f5SYOSHIFUJI Hideaki 
40870ceb4f5SYOSHIFUJI Hideaki 	rt = rt6_get_route_info(prefix, rinfo->prefix_len, gwaddr, dev->ifindex);
40970ceb4f5SYOSHIFUJI Hideaki 
41070ceb4f5SYOSHIFUJI Hideaki 	if (rt && !lifetime) {
41170ceb4f5SYOSHIFUJI Hideaki 		ip6_del_rt(rt, NULL, NULL, NULL);
41270ceb4f5SYOSHIFUJI Hideaki 		rt = NULL;
41370ceb4f5SYOSHIFUJI Hideaki 	}
41470ceb4f5SYOSHIFUJI Hideaki 
41570ceb4f5SYOSHIFUJI Hideaki 	if (!rt && lifetime)
41670ceb4f5SYOSHIFUJI Hideaki 		rt = rt6_add_route_info(prefix, rinfo->prefix_len, gwaddr, dev->ifindex,
41770ceb4f5SYOSHIFUJI Hideaki 					pref);
41870ceb4f5SYOSHIFUJI Hideaki 	else if (rt)
41970ceb4f5SYOSHIFUJI Hideaki 		rt->rt6i_flags = RTF_ROUTEINFO |
42070ceb4f5SYOSHIFUJI Hideaki 				 (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
42170ceb4f5SYOSHIFUJI Hideaki 
42270ceb4f5SYOSHIFUJI Hideaki 	if (rt) {
42370ceb4f5SYOSHIFUJI Hideaki 		if (lifetime == 0xffffffff) {
42470ceb4f5SYOSHIFUJI Hideaki 			rt->rt6i_flags &= ~RTF_EXPIRES;
42570ceb4f5SYOSHIFUJI Hideaki 		} else {
42670ceb4f5SYOSHIFUJI Hideaki 			rt->rt6i_expires = jiffies + HZ * lifetime;
42770ceb4f5SYOSHIFUJI Hideaki 			rt->rt6i_flags |= RTF_EXPIRES;
42870ceb4f5SYOSHIFUJI Hideaki 		}
42970ceb4f5SYOSHIFUJI Hideaki 		dst_release(&rt->u.dst);
43070ceb4f5SYOSHIFUJI Hideaki 	}
43170ceb4f5SYOSHIFUJI Hideaki 	return 0;
43270ceb4f5SYOSHIFUJI Hideaki }
43370ceb4f5SYOSHIFUJI Hideaki #endif
43470ceb4f5SYOSHIFUJI Hideaki 
4351da177e4SLinus Torvalds struct rt6_info *rt6_lookup(struct in6_addr *daddr, struct in6_addr *saddr,
4361da177e4SLinus Torvalds 			    int oif, int strict)
4371da177e4SLinus Torvalds {
4381da177e4SLinus Torvalds 	struct fib6_node *fn;
4391da177e4SLinus Torvalds 	struct rt6_info *rt;
4401da177e4SLinus Torvalds 
4411da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
4421da177e4SLinus Torvalds 	fn = fib6_lookup(&ip6_routing_table, daddr, saddr);
4431da177e4SLinus Torvalds 	rt = rt6_device_match(fn->leaf, oif, strict);
4441da177e4SLinus Torvalds 	dst_hold(&rt->u.dst);
4451da177e4SLinus Torvalds 	rt->u.dst.__use++;
4461da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
4471da177e4SLinus Torvalds 
4481da177e4SLinus Torvalds 	rt->u.dst.lastuse = jiffies;
4491da177e4SLinus Torvalds 	if (rt->u.dst.error == 0)
4501da177e4SLinus Torvalds 		return rt;
4511da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
4521da177e4SLinus Torvalds 	return NULL;
4531da177e4SLinus Torvalds }
4541da177e4SLinus Torvalds 
4551da177e4SLinus Torvalds /* ip6_ins_rt is called with FREE rt6_lock.
4561da177e4SLinus Torvalds    It takes new route entry, the addition fails by any reason the
4571da177e4SLinus Torvalds    route is freed. In any case, if caller does not hold it, it may
4581da177e4SLinus Torvalds    be destroyed.
4591da177e4SLinus Torvalds  */
4601da177e4SLinus Torvalds 
4610d51aa80SJamal Hadi Salim int ip6_ins_rt(struct rt6_info *rt, struct nlmsghdr *nlh,
4620d51aa80SJamal Hadi Salim 		void *_rtattr, struct netlink_skb_parms *req)
4631da177e4SLinus Torvalds {
4641da177e4SLinus Torvalds 	int err;
4651da177e4SLinus Torvalds 
4661da177e4SLinus Torvalds 	write_lock_bh(&rt6_lock);
4670d51aa80SJamal Hadi Salim 	err = fib6_add(&ip6_routing_table, rt, nlh, _rtattr, req);
4681da177e4SLinus Torvalds 	write_unlock_bh(&rt6_lock);
4691da177e4SLinus Torvalds 
4701da177e4SLinus Torvalds 	return err;
4711da177e4SLinus Torvalds }
4721da177e4SLinus Torvalds 
47395a9a5baSYOSHIFUJI Hideaki static struct rt6_info *rt6_alloc_cow(struct rt6_info *ort, struct in6_addr *daddr,
47495a9a5baSYOSHIFUJI Hideaki 				      struct in6_addr *saddr)
4751da177e4SLinus Torvalds {
4761da177e4SLinus Torvalds 	struct rt6_info *rt;
4771da177e4SLinus Torvalds 
4781da177e4SLinus Torvalds 	/*
4791da177e4SLinus Torvalds 	 *	Clone the route.
4801da177e4SLinus Torvalds 	 */
4811da177e4SLinus Torvalds 
4821da177e4SLinus Torvalds 	rt = ip6_rt_copy(ort);
4831da177e4SLinus Torvalds 
4841da177e4SLinus Torvalds 	if (rt) {
48558c4fb86SYOSHIFUJI Hideaki 		if (!(rt->rt6i_flags&RTF_GATEWAY)) {
48658c4fb86SYOSHIFUJI Hideaki 			if (rt->rt6i_dst.plen != 128 &&
48758c4fb86SYOSHIFUJI Hideaki 			    ipv6_addr_equal(&rt->rt6i_dst.addr, daddr))
48858c4fb86SYOSHIFUJI Hideaki 				rt->rt6i_flags |= RTF_ANYCAST;
4891da177e4SLinus Torvalds 			ipv6_addr_copy(&rt->rt6i_gateway, daddr);
49058c4fb86SYOSHIFUJI Hideaki 		}
4911da177e4SLinus Torvalds 
49258c4fb86SYOSHIFUJI Hideaki 		ipv6_addr_copy(&rt->rt6i_dst.addr, daddr);
4931da177e4SLinus Torvalds 		rt->rt6i_dst.plen = 128;
4941da177e4SLinus Torvalds 		rt->rt6i_flags |= RTF_CACHE;
4951da177e4SLinus Torvalds 		rt->u.dst.flags |= DST_HOST;
4961da177e4SLinus Torvalds 
4971da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
4981da177e4SLinus Torvalds 		if (rt->rt6i_src.plen && saddr) {
4991da177e4SLinus Torvalds 			ipv6_addr_copy(&rt->rt6i_src.addr, saddr);
5001da177e4SLinus Torvalds 			rt->rt6i_src.plen = 128;
5011da177e4SLinus Torvalds 		}
5021da177e4SLinus Torvalds #endif
5031da177e4SLinus Torvalds 
5041da177e4SLinus Torvalds 		rt->rt6i_nexthop = ndisc_get_neigh(rt->rt6i_dev, &rt->rt6i_gateway);
5051da177e4SLinus Torvalds 
50695a9a5baSYOSHIFUJI Hideaki 	}
5071da177e4SLinus Torvalds 
5081da177e4SLinus Torvalds 	return rt;
5091da177e4SLinus Torvalds }
51095a9a5baSYOSHIFUJI Hideaki 
511299d9939SYOSHIFUJI Hideaki static struct rt6_info *rt6_alloc_clone(struct rt6_info *ort, struct in6_addr *daddr)
512299d9939SYOSHIFUJI Hideaki {
513299d9939SYOSHIFUJI Hideaki 	struct rt6_info *rt = ip6_rt_copy(ort);
514299d9939SYOSHIFUJI Hideaki 	if (rt) {
515299d9939SYOSHIFUJI Hideaki 		ipv6_addr_copy(&rt->rt6i_dst.addr, daddr);
516299d9939SYOSHIFUJI Hideaki 		rt->rt6i_dst.plen = 128;
517299d9939SYOSHIFUJI Hideaki 		rt->rt6i_flags |= RTF_CACHE;
518299d9939SYOSHIFUJI Hideaki 		if (rt->rt6i_flags & RTF_REJECT)
519299d9939SYOSHIFUJI Hideaki 			rt->u.dst.error = ort->u.dst.error;
520299d9939SYOSHIFUJI Hideaki 		rt->u.dst.flags |= DST_HOST;
521299d9939SYOSHIFUJI Hideaki 		rt->rt6i_nexthop = neigh_clone(ort->rt6i_nexthop);
522299d9939SYOSHIFUJI Hideaki 	}
523299d9939SYOSHIFUJI Hideaki 	return rt;
524299d9939SYOSHIFUJI Hideaki }
525299d9939SYOSHIFUJI Hideaki 
5261da177e4SLinus Torvalds #define BACKTRACK() \
527bb133964SYOSHIFUJI Hideaki if (rt == &ip6_null_entry) { \
5281da177e4SLinus Torvalds        while ((fn = fn->parent) != NULL) { \
5291da177e4SLinus Torvalds 		if (fn->fn_flags & RTN_ROOT) { \
5301da177e4SLinus Torvalds 			goto out; \
5311da177e4SLinus Torvalds 		} \
5321da177e4SLinus Torvalds 		if (fn->fn_flags & RTN_RTINFO) \
5331da177e4SLinus Torvalds 			goto restart; \
5341da177e4SLinus Torvalds 	} \
5351da177e4SLinus Torvalds }
5361da177e4SLinus Torvalds 
5371da177e4SLinus Torvalds 
5381da177e4SLinus Torvalds void ip6_route_input(struct sk_buff *skb)
5391da177e4SLinus Torvalds {
5401da177e4SLinus Torvalds 	struct fib6_node *fn;
541519fbd87SYOSHIFUJI Hideaki 	struct rt6_info *rt, *nrt;
5421da177e4SLinus Torvalds 	int strict;
5431da177e4SLinus Torvalds 	int attempts = 3;
544519fbd87SYOSHIFUJI Hideaki 	int err;
5458238dd06SYOSHIFUJI Hideaki 	int reachable = RT6_SELECT_F_REACHABLE;
5461da177e4SLinus Torvalds 
547118f8c16SYOSHIFUJI Hideaki 	strict = ipv6_addr_type(&skb->nh.ipv6h->daddr) & (IPV6_ADDR_MULTICAST|IPV6_ADDR_LINKLOCAL) ? RT6_SELECT_F_IFACE : 0;
5481da177e4SLinus Torvalds 
5491da177e4SLinus Torvalds relookup:
5501da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
5511da177e4SLinus Torvalds 
5528238dd06SYOSHIFUJI Hideaki restart_2:
5531da177e4SLinus Torvalds 	fn = fib6_lookup(&ip6_routing_table, &skb->nh.ipv6h->daddr,
5541da177e4SLinus Torvalds 			 &skb->nh.ipv6h->saddr);
5551da177e4SLinus Torvalds 
5561da177e4SLinus Torvalds restart:
5578238dd06SYOSHIFUJI Hideaki 	rt = rt6_select(&fn->leaf, skb->dev->ifindex, strict | reachable);
5581da177e4SLinus Torvalds 	BACKTRACK();
5598238dd06SYOSHIFUJI Hideaki 	if (rt == &ip6_null_entry ||
5608238dd06SYOSHIFUJI Hideaki 	    rt->rt6i_flags & RTF_CACHE)
5611da177e4SLinus Torvalds 		goto out;
5621da177e4SLinus Torvalds 
5631da177e4SLinus Torvalds 	dst_hold(&rt->u.dst);
5641da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
5651da177e4SLinus Torvalds 
566519fbd87SYOSHIFUJI Hideaki 	if (!rt->rt6i_nexthop && !(rt->rt6i_flags & RTF_NONEXTHOP))
567519fbd87SYOSHIFUJI Hideaki 		nrt = rt6_alloc_cow(rt, &skb->nh.ipv6h->daddr, &skb->nh.ipv6h->saddr);
568519fbd87SYOSHIFUJI Hideaki 	else {
569519fbd87SYOSHIFUJI Hideaki #if CLONE_OFFLINK_ROUTE
570519fbd87SYOSHIFUJI Hideaki 		nrt = rt6_alloc_clone(rt, &skb->nh.ipv6h->daddr);
571519fbd87SYOSHIFUJI Hideaki #else
572519fbd87SYOSHIFUJI Hideaki 		goto out2;
573519fbd87SYOSHIFUJI Hideaki #endif
574519fbd87SYOSHIFUJI Hideaki 	}
5751da177e4SLinus Torvalds 
5761da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
577e40cf353SYOSHIFUJI Hideaki 	rt = nrt ? : &ip6_null_entry;
5781da177e4SLinus Torvalds 
579e40cf353SYOSHIFUJI Hideaki 	dst_hold(&rt->u.dst);
580e40cf353SYOSHIFUJI Hideaki 	if (nrt) {
581519fbd87SYOSHIFUJI Hideaki 		err = ip6_ins_rt(nrt, NULL, NULL, &NETLINK_CB(skb));
582e40cf353SYOSHIFUJI Hideaki 		if (!err)
583e40cf353SYOSHIFUJI Hideaki 			goto out2;
584e40cf353SYOSHIFUJI Hideaki 	}
585e40cf353SYOSHIFUJI Hideaki 
586e40cf353SYOSHIFUJI Hideaki 	if (--attempts <= 0)
5871da177e4SLinus Torvalds 		goto out2;
5881da177e4SLinus Torvalds 
589519fbd87SYOSHIFUJI Hideaki 	/*
590519fbd87SYOSHIFUJI Hideaki 	 * Race condition! In the gap, when rt6_lock was
591519fbd87SYOSHIFUJI Hideaki 	 * released someone could insert this route.  Relookup.
5921da177e4SLinus Torvalds 	 */
5931da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
5941da177e4SLinus Torvalds 	goto relookup;
5951da177e4SLinus Torvalds 
596519fbd87SYOSHIFUJI Hideaki out:
5978238dd06SYOSHIFUJI Hideaki 	if (reachable) {
5988238dd06SYOSHIFUJI Hideaki 		reachable = 0;
5998238dd06SYOSHIFUJI Hideaki 		goto restart_2;
6008238dd06SYOSHIFUJI Hideaki 	}
601519fbd87SYOSHIFUJI Hideaki 	dst_hold(&rt->u.dst);
602519fbd87SYOSHIFUJI Hideaki 	read_unlock_bh(&rt6_lock);
6031da177e4SLinus Torvalds out2:
6041da177e4SLinus Torvalds 	rt->u.dst.lastuse = jiffies;
6051da177e4SLinus Torvalds 	rt->u.dst.__use++;
6061da177e4SLinus Torvalds 	skb->dst = (struct dst_entry *) rt;
607fb9de91eSYOSHIFUJI Hideaki 	return;
6081da177e4SLinus Torvalds }
6091da177e4SLinus Torvalds 
6101da177e4SLinus Torvalds struct dst_entry * ip6_route_output(struct sock *sk, struct flowi *fl)
6111da177e4SLinus Torvalds {
6121da177e4SLinus Torvalds 	struct fib6_node *fn;
613519fbd87SYOSHIFUJI Hideaki 	struct rt6_info *rt, *nrt;
6141da177e4SLinus Torvalds 	int strict;
6151da177e4SLinus Torvalds 	int attempts = 3;
616519fbd87SYOSHIFUJI Hideaki 	int err;
6178238dd06SYOSHIFUJI Hideaki 	int reachable = RT6_SELECT_F_REACHABLE;
6181da177e4SLinus Torvalds 
619554cfb7eSYOSHIFUJI Hideaki 	strict = ipv6_addr_type(&fl->fl6_dst) & (IPV6_ADDR_MULTICAST|IPV6_ADDR_LINKLOCAL) ? RT6_SELECT_F_IFACE : 0;
6201da177e4SLinus Torvalds 
6211da177e4SLinus Torvalds relookup:
6221da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
6231da177e4SLinus Torvalds 
6248238dd06SYOSHIFUJI Hideaki restart_2:
6251da177e4SLinus Torvalds 	fn = fib6_lookup(&ip6_routing_table, &fl->fl6_dst, &fl->fl6_src);
6261da177e4SLinus Torvalds 
6271da177e4SLinus Torvalds restart:
6288238dd06SYOSHIFUJI Hideaki 	rt = rt6_select(&fn->leaf, fl->oif, strict | reachable);
6291da177e4SLinus Torvalds 	BACKTRACK();
6308238dd06SYOSHIFUJI Hideaki 	if (rt == &ip6_null_entry ||
6318238dd06SYOSHIFUJI Hideaki 	    rt->rt6i_flags & RTF_CACHE)
6321da177e4SLinus Torvalds 		goto out;
6331da177e4SLinus Torvalds 
6341da177e4SLinus Torvalds 	dst_hold(&rt->u.dst);
6351da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
6361da177e4SLinus Torvalds 
637519fbd87SYOSHIFUJI Hideaki 	if (!rt->rt6i_nexthop && !(rt->rt6i_flags & RTF_NONEXTHOP))
638e40cf353SYOSHIFUJI Hideaki 		nrt = rt6_alloc_cow(rt, &fl->fl6_dst, &fl->fl6_src);
639519fbd87SYOSHIFUJI Hideaki 	else {
640519fbd87SYOSHIFUJI Hideaki #if CLONE_OFFLINK_ROUTE
641519fbd87SYOSHIFUJI Hideaki 		nrt = rt6_alloc_clone(rt, &fl->fl6_dst);
642519fbd87SYOSHIFUJI Hideaki #else
643519fbd87SYOSHIFUJI Hideaki 		goto out2;
644519fbd87SYOSHIFUJI Hideaki #endif
645519fbd87SYOSHIFUJI Hideaki 	}
6461da177e4SLinus Torvalds 
6471da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
648e40cf353SYOSHIFUJI Hideaki 	rt = nrt ? : &ip6_null_entry;
6491da177e4SLinus Torvalds 
650e40cf353SYOSHIFUJI Hideaki 	dst_hold(&rt->u.dst);
651e40cf353SYOSHIFUJI Hideaki 	if (nrt) {
652e40cf353SYOSHIFUJI Hideaki 		err = ip6_ins_rt(nrt, NULL, NULL, NULL);
653e40cf353SYOSHIFUJI Hideaki 		if (!err)
654e40cf353SYOSHIFUJI Hideaki 			goto out2;
655e40cf353SYOSHIFUJI Hideaki 	}
656e40cf353SYOSHIFUJI Hideaki 
657e40cf353SYOSHIFUJI Hideaki 	if (--attempts <= 0)
6581da177e4SLinus Torvalds 		goto out2;
6591da177e4SLinus Torvalds 
660519fbd87SYOSHIFUJI Hideaki 	/*
661519fbd87SYOSHIFUJI Hideaki 	 * Race condition! In the gap, when rt6_lock was
662519fbd87SYOSHIFUJI Hideaki 	 * released someone could insert this route.  Relookup.
6631da177e4SLinus Torvalds 	 */
6641da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
6651da177e4SLinus Torvalds 	goto relookup;
666e40cf353SYOSHIFUJI Hideaki 
667519fbd87SYOSHIFUJI Hideaki out:
6688238dd06SYOSHIFUJI Hideaki 	if (reachable) {
6698238dd06SYOSHIFUJI Hideaki 		reachable = 0;
6708238dd06SYOSHIFUJI Hideaki 		goto restart_2;
6718238dd06SYOSHIFUJI Hideaki 	}
672519fbd87SYOSHIFUJI Hideaki 	dst_hold(&rt->u.dst);
673519fbd87SYOSHIFUJI Hideaki 	read_unlock_bh(&rt6_lock);
6741da177e4SLinus Torvalds out2:
6751da177e4SLinus Torvalds 	rt->u.dst.lastuse = jiffies;
6761da177e4SLinus Torvalds 	rt->u.dst.__use++;
6771da177e4SLinus Torvalds 	return &rt->u.dst;
6781da177e4SLinus Torvalds }
6791da177e4SLinus Torvalds 
6801da177e4SLinus Torvalds 
6811da177e4SLinus Torvalds /*
6821da177e4SLinus Torvalds  *	Destination cache support functions
6831da177e4SLinus Torvalds  */
6841da177e4SLinus Torvalds 
6851da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
6861da177e4SLinus Torvalds {
6871da177e4SLinus Torvalds 	struct rt6_info *rt;
6881da177e4SLinus Torvalds 
6891da177e4SLinus Torvalds 	rt = (struct rt6_info *) dst;
6901da177e4SLinus Torvalds 
6911da177e4SLinus Torvalds 	if (rt && rt->rt6i_node && (rt->rt6i_node->fn_sernum == cookie))
6921da177e4SLinus Torvalds 		return dst;
6931da177e4SLinus Torvalds 
6941da177e4SLinus Torvalds 	return NULL;
6951da177e4SLinus Torvalds }
6961da177e4SLinus Torvalds 
6971da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
6981da177e4SLinus Torvalds {
6991da177e4SLinus Torvalds 	struct rt6_info *rt = (struct rt6_info *) dst;
7001da177e4SLinus Torvalds 
7011da177e4SLinus Torvalds 	if (rt) {
7021da177e4SLinus Torvalds 		if (rt->rt6i_flags & RTF_CACHE)
7030d51aa80SJamal Hadi Salim 			ip6_del_rt(rt, NULL, NULL, NULL);
7041da177e4SLinus Torvalds 		else
7051da177e4SLinus Torvalds 			dst_release(dst);
7061da177e4SLinus Torvalds 	}
7071da177e4SLinus Torvalds 	return NULL;
7081da177e4SLinus Torvalds }
7091da177e4SLinus Torvalds 
7101da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb)
7111da177e4SLinus Torvalds {
7121da177e4SLinus Torvalds 	struct rt6_info *rt;
7131da177e4SLinus Torvalds 
7141da177e4SLinus Torvalds 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0, skb->dev);
7151da177e4SLinus Torvalds 
7161da177e4SLinus Torvalds 	rt = (struct rt6_info *) skb->dst;
7171da177e4SLinus Torvalds 	if (rt) {
7181da177e4SLinus Torvalds 		if (rt->rt6i_flags&RTF_CACHE) {
7191da177e4SLinus Torvalds 			dst_set_expires(&rt->u.dst, 0);
7201da177e4SLinus Torvalds 			rt->rt6i_flags |= RTF_EXPIRES;
7211da177e4SLinus Torvalds 		} else if (rt->rt6i_node && (rt->rt6i_flags & RTF_DEFAULT))
7221da177e4SLinus Torvalds 			rt->rt6i_node->fn_sernum = -1;
7231da177e4SLinus Torvalds 	}
7241da177e4SLinus Torvalds }
7251da177e4SLinus Torvalds 
7261da177e4SLinus Torvalds static void ip6_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
7271da177e4SLinus Torvalds {
7281da177e4SLinus Torvalds 	struct rt6_info *rt6 = (struct rt6_info*)dst;
7291da177e4SLinus Torvalds 
7301da177e4SLinus Torvalds 	if (mtu < dst_mtu(dst) && rt6->rt6i_dst.plen == 128) {
7311da177e4SLinus Torvalds 		rt6->rt6i_flags |= RTF_MODIFIED;
7321da177e4SLinus Torvalds 		if (mtu < IPV6_MIN_MTU) {
7331da177e4SLinus Torvalds 			mtu = IPV6_MIN_MTU;
7341da177e4SLinus Torvalds 			dst->metrics[RTAX_FEATURES-1] |= RTAX_FEATURE_ALLFRAG;
7351da177e4SLinus Torvalds 		}
7361da177e4SLinus Torvalds 		dst->metrics[RTAX_MTU-1] = mtu;
7371da177e4SLinus Torvalds 	}
7381da177e4SLinus Torvalds }
7391da177e4SLinus Torvalds 
7401da177e4SLinus Torvalds /* Protected by rt6_lock.  */
7411da177e4SLinus Torvalds static struct dst_entry *ndisc_dst_gc_list;
7421da177e4SLinus Torvalds static int ipv6_get_mtu(struct net_device *dev);
7431da177e4SLinus Torvalds 
7441da177e4SLinus Torvalds static inline unsigned int ipv6_advmss(unsigned int mtu)
7451da177e4SLinus Torvalds {
7461da177e4SLinus Torvalds 	mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
7471da177e4SLinus Torvalds 
7481da177e4SLinus Torvalds 	if (mtu < ip6_rt_min_advmss)
7491da177e4SLinus Torvalds 		mtu = ip6_rt_min_advmss;
7501da177e4SLinus Torvalds 
7511da177e4SLinus Torvalds 	/*
7521da177e4SLinus Torvalds 	 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
7531da177e4SLinus Torvalds 	 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
7541da177e4SLinus Torvalds 	 * IPV6_MAXPLEN is also valid and means: "any MSS,
7551da177e4SLinus Torvalds 	 * rely only on pmtu discovery"
7561da177e4SLinus Torvalds 	 */
7571da177e4SLinus Torvalds 	if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
7581da177e4SLinus Torvalds 		mtu = IPV6_MAXPLEN;
7591da177e4SLinus Torvalds 	return mtu;
7601da177e4SLinus Torvalds }
7611da177e4SLinus Torvalds 
7621da177e4SLinus Torvalds struct dst_entry *ndisc_dst_alloc(struct net_device *dev,
7631da177e4SLinus Torvalds 				  struct neighbour *neigh,
7641da177e4SLinus Torvalds 				  struct in6_addr *addr,
7651da177e4SLinus Torvalds 				  int (*output)(struct sk_buff *))
7661da177e4SLinus Torvalds {
7671da177e4SLinus Torvalds 	struct rt6_info *rt;
7681da177e4SLinus Torvalds 	struct inet6_dev *idev = in6_dev_get(dev);
7691da177e4SLinus Torvalds 
7701da177e4SLinus Torvalds 	if (unlikely(idev == NULL))
7711da177e4SLinus Torvalds 		return NULL;
7721da177e4SLinus Torvalds 
7731da177e4SLinus Torvalds 	rt = ip6_dst_alloc();
7741da177e4SLinus Torvalds 	if (unlikely(rt == NULL)) {
7751da177e4SLinus Torvalds 		in6_dev_put(idev);
7761da177e4SLinus Torvalds 		goto out;
7771da177e4SLinus Torvalds 	}
7781da177e4SLinus Torvalds 
7791da177e4SLinus Torvalds 	dev_hold(dev);
7801da177e4SLinus Torvalds 	if (neigh)
7811da177e4SLinus Torvalds 		neigh_hold(neigh);
7821da177e4SLinus Torvalds 	else
7831da177e4SLinus Torvalds 		neigh = ndisc_get_neigh(dev, addr);
7841da177e4SLinus Torvalds 
7851da177e4SLinus Torvalds 	rt->rt6i_dev	  = dev;
7861da177e4SLinus Torvalds 	rt->rt6i_idev     = idev;
7871da177e4SLinus Torvalds 	rt->rt6i_nexthop  = neigh;
7881da177e4SLinus Torvalds 	atomic_set(&rt->u.dst.__refcnt, 1);
7891da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_HOPLIMIT-1] = 255;
7901da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_MTU-1] = ipv6_get_mtu(rt->rt6i_dev);
7911da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_ADVMSS-1] = ipv6_advmss(dst_mtu(&rt->u.dst));
7921da177e4SLinus Torvalds 	rt->u.dst.output  = output;
7931da177e4SLinus Torvalds 
7941da177e4SLinus Torvalds #if 0	/* there's no chance to use these for ndisc */
7951da177e4SLinus Torvalds 	rt->u.dst.flags   = ipv6_addr_type(addr) & IPV6_ADDR_UNICAST
7961da177e4SLinus Torvalds 				? DST_HOST
7971da177e4SLinus Torvalds 				: 0;
7981da177e4SLinus Torvalds 	ipv6_addr_copy(&rt->rt6i_dst.addr, addr);
7991da177e4SLinus Torvalds 	rt->rt6i_dst.plen = 128;
8001da177e4SLinus Torvalds #endif
8011da177e4SLinus Torvalds 
8021da177e4SLinus Torvalds 	write_lock_bh(&rt6_lock);
8031da177e4SLinus Torvalds 	rt->u.dst.next = ndisc_dst_gc_list;
8041da177e4SLinus Torvalds 	ndisc_dst_gc_list = &rt->u.dst;
8051da177e4SLinus Torvalds 	write_unlock_bh(&rt6_lock);
8061da177e4SLinus Torvalds 
8071da177e4SLinus Torvalds 	fib6_force_start_gc();
8081da177e4SLinus Torvalds 
8091da177e4SLinus Torvalds out:
8101da177e4SLinus Torvalds 	return (struct dst_entry *)rt;
8111da177e4SLinus Torvalds }
8121da177e4SLinus Torvalds 
8131da177e4SLinus Torvalds int ndisc_dst_gc(int *more)
8141da177e4SLinus Torvalds {
8151da177e4SLinus Torvalds 	struct dst_entry *dst, *next, **pprev;
8161da177e4SLinus Torvalds 	int freed;
8171da177e4SLinus Torvalds 
8181da177e4SLinus Torvalds 	next = NULL;
8191da177e4SLinus Torvalds 	pprev = &ndisc_dst_gc_list;
8201da177e4SLinus Torvalds 	freed = 0;
8211da177e4SLinus Torvalds 	while ((dst = *pprev) != NULL) {
8221da177e4SLinus Torvalds 		if (!atomic_read(&dst->__refcnt)) {
8231da177e4SLinus Torvalds 			*pprev = dst->next;
8241da177e4SLinus Torvalds 			dst_free(dst);
8251da177e4SLinus Torvalds 			freed++;
8261da177e4SLinus Torvalds 		} else {
8271da177e4SLinus Torvalds 			pprev = &dst->next;
8281da177e4SLinus Torvalds 			(*more)++;
8291da177e4SLinus Torvalds 		}
8301da177e4SLinus Torvalds 	}
8311da177e4SLinus Torvalds 
8321da177e4SLinus Torvalds 	return freed;
8331da177e4SLinus Torvalds }
8341da177e4SLinus Torvalds 
8351da177e4SLinus Torvalds static int ip6_dst_gc(void)
8361da177e4SLinus Torvalds {
8371da177e4SLinus Torvalds 	static unsigned expire = 30*HZ;
8381da177e4SLinus Torvalds 	static unsigned long last_gc;
8391da177e4SLinus Torvalds 	unsigned long now = jiffies;
8401da177e4SLinus Torvalds 
8411da177e4SLinus Torvalds 	if (time_after(last_gc + ip6_rt_gc_min_interval, now) &&
8421da177e4SLinus Torvalds 	    atomic_read(&ip6_dst_ops.entries) <= ip6_rt_max_size)
8431da177e4SLinus Torvalds 		goto out;
8441da177e4SLinus Torvalds 
8451da177e4SLinus Torvalds 	expire++;
8461da177e4SLinus Torvalds 	fib6_run_gc(expire);
8471da177e4SLinus Torvalds 	last_gc = now;
8481da177e4SLinus Torvalds 	if (atomic_read(&ip6_dst_ops.entries) < ip6_dst_ops.gc_thresh)
8491da177e4SLinus Torvalds 		expire = ip6_rt_gc_timeout>>1;
8501da177e4SLinus Torvalds 
8511da177e4SLinus Torvalds out:
8521da177e4SLinus Torvalds 	expire -= expire>>ip6_rt_gc_elasticity;
8531da177e4SLinus Torvalds 	return (atomic_read(&ip6_dst_ops.entries) > ip6_rt_max_size);
8541da177e4SLinus Torvalds }
8551da177e4SLinus Torvalds 
8561da177e4SLinus Torvalds /* Clean host part of a prefix. Not necessary in radix tree,
8571da177e4SLinus Torvalds    but results in cleaner routing tables.
8581da177e4SLinus Torvalds 
8591da177e4SLinus Torvalds    Remove it only when all the things will work!
8601da177e4SLinus Torvalds  */
8611da177e4SLinus Torvalds 
8621da177e4SLinus Torvalds static int ipv6_get_mtu(struct net_device *dev)
8631da177e4SLinus Torvalds {
8641da177e4SLinus Torvalds 	int mtu = IPV6_MIN_MTU;
8651da177e4SLinus Torvalds 	struct inet6_dev *idev;
8661da177e4SLinus Torvalds 
8671da177e4SLinus Torvalds 	idev = in6_dev_get(dev);
8681da177e4SLinus Torvalds 	if (idev) {
8691da177e4SLinus Torvalds 		mtu = idev->cnf.mtu6;
8701da177e4SLinus Torvalds 		in6_dev_put(idev);
8711da177e4SLinus Torvalds 	}
8721da177e4SLinus Torvalds 	return mtu;
8731da177e4SLinus Torvalds }
8741da177e4SLinus Torvalds 
8751da177e4SLinus Torvalds int ipv6_get_hoplimit(struct net_device *dev)
8761da177e4SLinus Torvalds {
8771da177e4SLinus Torvalds 	int hoplimit = ipv6_devconf.hop_limit;
8781da177e4SLinus Torvalds 	struct inet6_dev *idev;
8791da177e4SLinus Torvalds 
8801da177e4SLinus Torvalds 	idev = in6_dev_get(dev);
8811da177e4SLinus Torvalds 	if (idev) {
8821da177e4SLinus Torvalds 		hoplimit = idev->cnf.hop_limit;
8831da177e4SLinus Torvalds 		in6_dev_put(idev);
8841da177e4SLinus Torvalds 	}
8851da177e4SLinus Torvalds 	return hoplimit;
8861da177e4SLinus Torvalds }
8871da177e4SLinus Torvalds 
8881da177e4SLinus Torvalds /*
8891da177e4SLinus Torvalds  *
8901da177e4SLinus Torvalds  */
8911da177e4SLinus Torvalds 
8920d51aa80SJamal Hadi Salim int ip6_route_add(struct in6_rtmsg *rtmsg, struct nlmsghdr *nlh,
8930d51aa80SJamal Hadi Salim 		void *_rtattr, struct netlink_skb_parms *req)
8941da177e4SLinus Torvalds {
8951da177e4SLinus Torvalds 	int err;
8961da177e4SLinus Torvalds 	struct rtmsg *r;
8971da177e4SLinus Torvalds 	struct rtattr **rta;
8981da177e4SLinus Torvalds 	struct rt6_info *rt = NULL;
8991da177e4SLinus Torvalds 	struct net_device *dev = NULL;
9001da177e4SLinus Torvalds 	struct inet6_dev *idev = NULL;
9011da177e4SLinus Torvalds 	int addr_type;
9021da177e4SLinus Torvalds 
9031da177e4SLinus Torvalds 	rta = (struct rtattr **) _rtattr;
9041da177e4SLinus Torvalds 
9051da177e4SLinus Torvalds 	if (rtmsg->rtmsg_dst_len > 128 || rtmsg->rtmsg_src_len > 128)
9061da177e4SLinus Torvalds 		return -EINVAL;
9071da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES
9081da177e4SLinus Torvalds 	if (rtmsg->rtmsg_src_len)
9091da177e4SLinus Torvalds 		return -EINVAL;
9101da177e4SLinus Torvalds #endif
9111da177e4SLinus Torvalds 	if (rtmsg->rtmsg_ifindex) {
9121da177e4SLinus Torvalds 		err = -ENODEV;
9131da177e4SLinus Torvalds 		dev = dev_get_by_index(rtmsg->rtmsg_ifindex);
9141da177e4SLinus Torvalds 		if (!dev)
9151da177e4SLinus Torvalds 			goto out;
9161da177e4SLinus Torvalds 		idev = in6_dev_get(dev);
9171da177e4SLinus Torvalds 		if (!idev)
9181da177e4SLinus Torvalds 			goto out;
9191da177e4SLinus Torvalds 	}
9201da177e4SLinus Torvalds 
9211da177e4SLinus Torvalds 	if (rtmsg->rtmsg_metric == 0)
9221da177e4SLinus Torvalds 		rtmsg->rtmsg_metric = IP6_RT_PRIO_USER;
9231da177e4SLinus Torvalds 
9241da177e4SLinus Torvalds 	rt = ip6_dst_alloc();
9251da177e4SLinus Torvalds 
9261da177e4SLinus Torvalds 	if (rt == NULL) {
9271da177e4SLinus Torvalds 		err = -ENOMEM;
9281da177e4SLinus Torvalds 		goto out;
9291da177e4SLinus Torvalds 	}
9301da177e4SLinus Torvalds 
9311da177e4SLinus Torvalds 	rt->u.dst.obsolete = -1;
9323dd4bc68SYOSHIFUJI Hideaki 	rt->rt6i_expires = jiffies + clock_t_to_jiffies(rtmsg->rtmsg_info);
9331da177e4SLinus Torvalds 	if (nlh && (r = NLMSG_DATA(nlh))) {
9341da177e4SLinus Torvalds 		rt->rt6i_protocol = r->rtm_protocol;
9351da177e4SLinus Torvalds 	} else {
9361da177e4SLinus Torvalds 		rt->rt6i_protocol = RTPROT_BOOT;
9371da177e4SLinus Torvalds 	}
9381da177e4SLinus Torvalds 
9391da177e4SLinus Torvalds 	addr_type = ipv6_addr_type(&rtmsg->rtmsg_dst);
9401da177e4SLinus Torvalds 
9411da177e4SLinus Torvalds 	if (addr_type & IPV6_ADDR_MULTICAST)
9421da177e4SLinus Torvalds 		rt->u.dst.input = ip6_mc_input;
9431da177e4SLinus Torvalds 	else
9441da177e4SLinus Torvalds 		rt->u.dst.input = ip6_forward;
9451da177e4SLinus Torvalds 
9461da177e4SLinus Torvalds 	rt->u.dst.output = ip6_output;
9471da177e4SLinus Torvalds 
9481da177e4SLinus Torvalds 	ipv6_addr_prefix(&rt->rt6i_dst.addr,
9491da177e4SLinus Torvalds 			 &rtmsg->rtmsg_dst, rtmsg->rtmsg_dst_len);
9501da177e4SLinus Torvalds 	rt->rt6i_dst.plen = rtmsg->rtmsg_dst_len;
9511da177e4SLinus Torvalds 	if (rt->rt6i_dst.plen == 128)
9521da177e4SLinus Torvalds 	       rt->u.dst.flags = DST_HOST;
9531da177e4SLinus Torvalds 
9541da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
9551da177e4SLinus Torvalds 	ipv6_addr_prefix(&rt->rt6i_src.addr,
9561da177e4SLinus Torvalds 			 &rtmsg->rtmsg_src, rtmsg->rtmsg_src_len);
9571da177e4SLinus Torvalds 	rt->rt6i_src.plen = rtmsg->rtmsg_src_len;
9581da177e4SLinus Torvalds #endif
9591da177e4SLinus Torvalds 
9601da177e4SLinus Torvalds 	rt->rt6i_metric = rtmsg->rtmsg_metric;
9611da177e4SLinus Torvalds 
9621da177e4SLinus Torvalds 	/* We cannot add true routes via loopback here,
9631da177e4SLinus Torvalds 	   they would result in kernel looping; promote them to reject routes
9641da177e4SLinus Torvalds 	 */
9651da177e4SLinus Torvalds 	if ((rtmsg->rtmsg_flags&RTF_REJECT) ||
9661da177e4SLinus Torvalds 	    (dev && (dev->flags&IFF_LOOPBACK) && !(addr_type&IPV6_ADDR_LOOPBACK))) {
9671da177e4SLinus Torvalds 		/* hold loopback dev/idev if we haven't done so. */
9681da177e4SLinus Torvalds 		if (dev != &loopback_dev) {
9691da177e4SLinus Torvalds 			if (dev) {
9701da177e4SLinus Torvalds 				dev_put(dev);
9711da177e4SLinus Torvalds 				in6_dev_put(idev);
9721da177e4SLinus Torvalds 			}
9731da177e4SLinus Torvalds 			dev = &loopback_dev;
9741da177e4SLinus Torvalds 			dev_hold(dev);
9751da177e4SLinus Torvalds 			idev = in6_dev_get(dev);
9761da177e4SLinus Torvalds 			if (!idev) {
9771da177e4SLinus Torvalds 				err = -ENODEV;
9781da177e4SLinus Torvalds 				goto out;
9791da177e4SLinus Torvalds 			}
9801da177e4SLinus Torvalds 		}
9811da177e4SLinus Torvalds 		rt->u.dst.output = ip6_pkt_discard_out;
9821da177e4SLinus Torvalds 		rt->u.dst.input = ip6_pkt_discard;
9831da177e4SLinus Torvalds 		rt->u.dst.error = -ENETUNREACH;
9841da177e4SLinus Torvalds 		rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP;
9851da177e4SLinus Torvalds 		goto install_route;
9861da177e4SLinus Torvalds 	}
9871da177e4SLinus Torvalds 
9881da177e4SLinus Torvalds 	if (rtmsg->rtmsg_flags & RTF_GATEWAY) {
9891da177e4SLinus Torvalds 		struct in6_addr *gw_addr;
9901da177e4SLinus Torvalds 		int gwa_type;
9911da177e4SLinus Torvalds 
9921da177e4SLinus Torvalds 		gw_addr = &rtmsg->rtmsg_gateway;
9931da177e4SLinus Torvalds 		ipv6_addr_copy(&rt->rt6i_gateway, &rtmsg->rtmsg_gateway);
9941da177e4SLinus Torvalds 		gwa_type = ipv6_addr_type(gw_addr);
9951da177e4SLinus Torvalds 
9961da177e4SLinus Torvalds 		if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) {
9971da177e4SLinus Torvalds 			struct rt6_info *grt;
9981da177e4SLinus Torvalds 
9991da177e4SLinus Torvalds 			/* IPv6 strictly inhibits using not link-local
10001da177e4SLinus Torvalds 			   addresses as nexthop address.
10011da177e4SLinus Torvalds 			   Otherwise, router will not able to send redirects.
10021da177e4SLinus Torvalds 			   It is very good, but in some (rare!) circumstances
10031da177e4SLinus Torvalds 			   (SIT, PtP, NBMA NOARP links) it is handy to allow
10041da177e4SLinus Torvalds 			   some exceptions. --ANK
10051da177e4SLinus Torvalds 			 */
10061da177e4SLinus Torvalds 			err = -EINVAL;
10071da177e4SLinus Torvalds 			if (!(gwa_type&IPV6_ADDR_UNICAST))
10081da177e4SLinus Torvalds 				goto out;
10091da177e4SLinus Torvalds 
10101da177e4SLinus Torvalds 			grt = rt6_lookup(gw_addr, NULL, rtmsg->rtmsg_ifindex, 1);
10111da177e4SLinus Torvalds 
10121da177e4SLinus Torvalds 			err = -EHOSTUNREACH;
10131da177e4SLinus Torvalds 			if (grt == NULL)
10141da177e4SLinus Torvalds 				goto out;
10151da177e4SLinus Torvalds 			if (dev) {
10161da177e4SLinus Torvalds 				if (dev != grt->rt6i_dev) {
10171da177e4SLinus Torvalds 					dst_release(&grt->u.dst);
10181da177e4SLinus Torvalds 					goto out;
10191da177e4SLinus Torvalds 				}
10201da177e4SLinus Torvalds 			} else {
10211da177e4SLinus Torvalds 				dev = grt->rt6i_dev;
10221da177e4SLinus Torvalds 				idev = grt->rt6i_idev;
10231da177e4SLinus Torvalds 				dev_hold(dev);
10241da177e4SLinus Torvalds 				in6_dev_hold(grt->rt6i_idev);
10251da177e4SLinus Torvalds 			}
10261da177e4SLinus Torvalds 			if (!(grt->rt6i_flags&RTF_GATEWAY))
10271da177e4SLinus Torvalds 				err = 0;
10281da177e4SLinus Torvalds 			dst_release(&grt->u.dst);
10291da177e4SLinus Torvalds 
10301da177e4SLinus Torvalds 			if (err)
10311da177e4SLinus Torvalds 				goto out;
10321da177e4SLinus Torvalds 		}
10331da177e4SLinus Torvalds 		err = -EINVAL;
10341da177e4SLinus Torvalds 		if (dev == NULL || (dev->flags&IFF_LOOPBACK))
10351da177e4SLinus Torvalds 			goto out;
10361da177e4SLinus Torvalds 	}
10371da177e4SLinus Torvalds 
10381da177e4SLinus Torvalds 	err = -ENODEV;
10391da177e4SLinus Torvalds 	if (dev == NULL)
10401da177e4SLinus Torvalds 		goto out;
10411da177e4SLinus Torvalds 
10421da177e4SLinus Torvalds 	if (rtmsg->rtmsg_flags & (RTF_GATEWAY|RTF_NONEXTHOP)) {
10431da177e4SLinus Torvalds 		rt->rt6i_nexthop = __neigh_lookup_errno(&nd_tbl, &rt->rt6i_gateway, dev);
10441da177e4SLinus Torvalds 		if (IS_ERR(rt->rt6i_nexthop)) {
10451da177e4SLinus Torvalds 			err = PTR_ERR(rt->rt6i_nexthop);
10461da177e4SLinus Torvalds 			rt->rt6i_nexthop = NULL;
10471da177e4SLinus Torvalds 			goto out;
10481da177e4SLinus Torvalds 		}
10491da177e4SLinus Torvalds 	}
10501da177e4SLinus Torvalds 
10511da177e4SLinus Torvalds 	rt->rt6i_flags = rtmsg->rtmsg_flags;
10521da177e4SLinus Torvalds 
10531da177e4SLinus Torvalds install_route:
10541da177e4SLinus Torvalds 	if (rta && rta[RTA_METRICS-1]) {
10551da177e4SLinus Torvalds 		int attrlen = RTA_PAYLOAD(rta[RTA_METRICS-1]);
10561da177e4SLinus Torvalds 		struct rtattr *attr = RTA_DATA(rta[RTA_METRICS-1]);
10571da177e4SLinus Torvalds 
10581da177e4SLinus Torvalds 		while (RTA_OK(attr, attrlen)) {
10591da177e4SLinus Torvalds 			unsigned flavor = attr->rta_type;
10601da177e4SLinus Torvalds 			if (flavor) {
10611da177e4SLinus Torvalds 				if (flavor > RTAX_MAX) {
10621da177e4SLinus Torvalds 					err = -EINVAL;
10631da177e4SLinus Torvalds 					goto out;
10641da177e4SLinus Torvalds 				}
10651da177e4SLinus Torvalds 				rt->u.dst.metrics[flavor-1] =
10661da177e4SLinus Torvalds 					*(u32 *)RTA_DATA(attr);
10671da177e4SLinus Torvalds 			}
10681da177e4SLinus Torvalds 			attr = RTA_NEXT(attr, attrlen);
10691da177e4SLinus Torvalds 		}
10701da177e4SLinus Torvalds 	}
10711da177e4SLinus Torvalds 
10721da177e4SLinus Torvalds 	if (rt->u.dst.metrics[RTAX_HOPLIMIT-1] == 0)
10731da177e4SLinus Torvalds 		rt->u.dst.metrics[RTAX_HOPLIMIT-1] = -1;
10741da177e4SLinus Torvalds 	if (!rt->u.dst.metrics[RTAX_MTU-1])
10751da177e4SLinus Torvalds 		rt->u.dst.metrics[RTAX_MTU-1] = ipv6_get_mtu(dev);
10761da177e4SLinus Torvalds 	if (!rt->u.dst.metrics[RTAX_ADVMSS-1])
10771da177e4SLinus Torvalds 		rt->u.dst.metrics[RTAX_ADVMSS-1] = ipv6_advmss(dst_mtu(&rt->u.dst));
10781da177e4SLinus Torvalds 	rt->u.dst.dev = dev;
10791da177e4SLinus Torvalds 	rt->rt6i_idev = idev;
10800d51aa80SJamal Hadi Salim 	return ip6_ins_rt(rt, nlh, _rtattr, req);
10811da177e4SLinus Torvalds 
10821da177e4SLinus Torvalds out:
10831da177e4SLinus Torvalds 	if (dev)
10841da177e4SLinus Torvalds 		dev_put(dev);
10851da177e4SLinus Torvalds 	if (idev)
10861da177e4SLinus Torvalds 		in6_dev_put(idev);
10871da177e4SLinus Torvalds 	if (rt)
10881da177e4SLinus Torvalds 		dst_free((struct dst_entry *) rt);
10891da177e4SLinus Torvalds 	return err;
10901da177e4SLinus Torvalds }
10911da177e4SLinus Torvalds 
10920d51aa80SJamal Hadi Salim int ip6_del_rt(struct rt6_info *rt, struct nlmsghdr *nlh, void *_rtattr, struct netlink_skb_parms *req)
10931da177e4SLinus Torvalds {
10941da177e4SLinus Torvalds 	int err;
10951da177e4SLinus Torvalds 
10961da177e4SLinus Torvalds 	write_lock_bh(&rt6_lock);
10971da177e4SLinus Torvalds 
10980d51aa80SJamal Hadi Salim 	err = fib6_del(rt, nlh, _rtattr, req);
10991da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
11001da177e4SLinus Torvalds 
11011da177e4SLinus Torvalds 	write_unlock_bh(&rt6_lock);
11021da177e4SLinus Torvalds 
11031da177e4SLinus Torvalds 	return err;
11041da177e4SLinus Torvalds }
11051da177e4SLinus Torvalds 
11060d51aa80SJamal Hadi Salim static int ip6_route_del(struct in6_rtmsg *rtmsg, struct nlmsghdr *nlh, void *_rtattr, struct netlink_skb_parms *req)
11071da177e4SLinus Torvalds {
11081da177e4SLinus Torvalds 	struct fib6_node *fn;
11091da177e4SLinus Torvalds 	struct rt6_info *rt;
11101da177e4SLinus Torvalds 	int err = -ESRCH;
11111da177e4SLinus Torvalds 
11121da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
11131da177e4SLinus Torvalds 
11141da177e4SLinus Torvalds 	fn = fib6_locate(&ip6_routing_table,
11151da177e4SLinus Torvalds 			 &rtmsg->rtmsg_dst, rtmsg->rtmsg_dst_len,
11161da177e4SLinus Torvalds 			 &rtmsg->rtmsg_src, rtmsg->rtmsg_src_len);
11171da177e4SLinus Torvalds 
11181da177e4SLinus Torvalds 	if (fn) {
11191da177e4SLinus Torvalds 		for (rt = fn->leaf; rt; rt = rt->u.next) {
11201da177e4SLinus Torvalds 			if (rtmsg->rtmsg_ifindex &&
11211da177e4SLinus Torvalds 			    (rt->rt6i_dev == NULL ||
11221da177e4SLinus Torvalds 			     rt->rt6i_dev->ifindex != rtmsg->rtmsg_ifindex))
11231da177e4SLinus Torvalds 				continue;
11241da177e4SLinus Torvalds 			if (rtmsg->rtmsg_flags&RTF_GATEWAY &&
11251da177e4SLinus Torvalds 			    !ipv6_addr_equal(&rtmsg->rtmsg_gateway, &rt->rt6i_gateway))
11261da177e4SLinus Torvalds 				continue;
11271da177e4SLinus Torvalds 			if (rtmsg->rtmsg_metric &&
11281da177e4SLinus Torvalds 			    rtmsg->rtmsg_metric != rt->rt6i_metric)
11291da177e4SLinus Torvalds 				continue;
11301da177e4SLinus Torvalds 			dst_hold(&rt->u.dst);
11311da177e4SLinus Torvalds 			read_unlock_bh(&rt6_lock);
11321da177e4SLinus Torvalds 
11330d51aa80SJamal Hadi Salim 			return ip6_del_rt(rt, nlh, _rtattr, req);
11341da177e4SLinus Torvalds 		}
11351da177e4SLinus Torvalds 	}
11361da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
11371da177e4SLinus Torvalds 
11381da177e4SLinus Torvalds 	return err;
11391da177e4SLinus Torvalds }
11401da177e4SLinus Torvalds 
11411da177e4SLinus Torvalds /*
11421da177e4SLinus Torvalds  *	Handle redirects
11431da177e4SLinus Torvalds  */
11441da177e4SLinus Torvalds void rt6_redirect(struct in6_addr *dest, struct in6_addr *saddr,
11451da177e4SLinus Torvalds 		  struct neighbour *neigh, u8 *lladdr, int on_link)
11461da177e4SLinus Torvalds {
1147*e843b9e1SYOSHIFUJI Hideaki 	struct rt6_info *rt, *nrt = NULL;
1148*e843b9e1SYOSHIFUJI Hideaki 	int strict;
1149*e843b9e1SYOSHIFUJI Hideaki 	struct fib6_node *fn;
11501da177e4SLinus Torvalds 
1151*e843b9e1SYOSHIFUJI Hideaki 	/*
1152*e843b9e1SYOSHIFUJI Hideaki 	 * Get the "current" route for this destination and
1153*e843b9e1SYOSHIFUJI Hideaki 	 * check if the redirect has come from approriate router.
1154*e843b9e1SYOSHIFUJI Hideaki 	 *
1155*e843b9e1SYOSHIFUJI Hideaki 	 * RFC 2461 specifies that redirects should only be
1156*e843b9e1SYOSHIFUJI Hideaki 	 * accepted if they come from the nexthop to the target.
1157*e843b9e1SYOSHIFUJI Hideaki 	 * Due to the way the routes are chosen, this notion
1158*e843b9e1SYOSHIFUJI Hideaki 	 * is a bit fuzzy and one might need to check all possible
1159*e843b9e1SYOSHIFUJI Hideaki 	 * routes.
1160*e843b9e1SYOSHIFUJI Hideaki 	 */
1161*e843b9e1SYOSHIFUJI Hideaki 	strict = ipv6_addr_type(dest) & (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL);
11621da177e4SLinus Torvalds 
1163*e843b9e1SYOSHIFUJI Hideaki 	read_lock_bh(&rt6_lock);
1164*e843b9e1SYOSHIFUJI Hideaki 	fn = fib6_lookup(&ip6_routing_table, dest, NULL);
1165*e843b9e1SYOSHIFUJI Hideaki restart:
1166*e843b9e1SYOSHIFUJI Hideaki 	for (rt = fn->leaf; rt; rt = rt->u.next) {
11671da177e4SLinus Torvalds 		/*
11681da177e4SLinus Torvalds 		 * Current route is on-link; redirect is always invalid.
11691da177e4SLinus Torvalds 		 *
11701da177e4SLinus Torvalds 		 * Seems, previous statement is not true. It could
11711da177e4SLinus Torvalds 		 * be node, which looks for us as on-link (f.e. proxy ndisc)
11721da177e4SLinus Torvalds 		 * But then router serving it might decide, that we should
11731da177e4SLinus Torvalds 		 * know truth 8)8) --ANK (980726).
11741da177e4SLinus Torvalds 		 */
1175*e843b9e1SYOSHIFUJI Hideaki 		if (rt6_check_expired(rt))
1176*e843b9e1SYOSHIFUJI Hideaki 			continue;
11771da177e4SLinus Torvalds 		if (!(rt->rt6i_flags & RTF_GATEWAY))
1178*e843b9e1SYOSHIFUJI Hideaki 			continue;
1179*e843b9e1SYOSHIFUJI Hideaki 		if (neigh->dev != rt->rt6i_dev)
1180*e843b9e1SYOSHIFUJI Hideaki 			continue;
1181*e843b9e1SYOSHIFUJI Hideaki 		if (!ipv6_addr_equal(saddr, &rt->rt6i_gateway))
1182*e843b9e1SYOSHIFUJI Hideaki 			continue;
1183*e843b9e1SYOSHIFUJI Hideaki 		break;
1184*e843b9e1SYOSHIFUJI Hideaki 	}
1185*e843b9e1SYOSHIFUJI Hideaki 	if (rt)
1186*e843b9e1SYOSHIFUJI Hideaki 		dst_hold(&rt->u.dst);
1187*e843b9e1SYOSHIFUJI Hideaki 	else if (strict) {
1188*e843b9e1SYOSHIFUJI Hideaki 		while ((fn = fn->parent) != NULL) {
1189*e843b9e1SYOSHIFUJI Hideaki 			if (fn->fn_flags & RTN_ROOT)
1190*e843b9e1SYOSHIFUJI Hideaki 				break;
1191*e843b9e1SYOSHIFUJI Hideaki 			if (fn->fn_flags & RTN_RTINFO)
1192*e843b9e1SYOSHIFUJI Hideaki 				goto restart;
1193*e843b9e1SYOSHIFUJI Hideaki 		}
1194*e843b9e1SYOSHIFUJI Hideaki 	}
1195*e843b9e1SYOSHIFUJI Hideaki 	read_unlock_bh(&rt6_lock);
11961da177e4SLinus Torvalds 
1197*e843b9e1SYOSHIFUJI Hideaki 	if (!rt) {
11981da177e4SLinus Torvalds 		if (net_ratelimit())
11991da177e4SLinus Torvalds 			printk(KERN_DEBUG "rt6_redirect: source isn't a valid nexthop "
12001da177e4SLinus Torvalds 			       "for redirect target\n");
1201*e843b9e1SYOSHIFUJI Hideaki 		return;
12021da177e4SLinus Torvalds 	}
12031da177e4SLinus Torvalds 
12041da177e4SLinus Torvalds 	/*
12051da177e4SLinus Torvalds 	 *	We have finally decided to accept it.
12061da177e4SLinus Torvalds 	 */
12071da177e4SLinus Torvalds 
12081da177e4SLinus Torvalds 	neigh_update(neigh, lladdr, NUD_STALE,
12091da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_WEAK_OVERRIDE|
12101da177e4SLinus Torvalds 		     NEIGH_UPDATE_F_OVERRIDE|
12111da177e4SLinus Torvalds 		     (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
12121da177e4SLinus Torvalds 				     NEIGH_UPDATE_F_ISROUTER))
12131da177e4SLinus Torvalds 		     );
12141da177e4SLinus Torvalds 
12151da177e4SLinus Torvalds 	/*
12161da177e4SLinus Torvalds 	 * Redirect received -> path was valid.
12171da177e4SLinus Torvalds 	 * Look, redirects are sent only in response to data packets,
12181da177e4SLinus Torvalds 	 * so that this nexthop apparently is reachable. --ANK
12191da177e4SLinus Torvalds 	 */
12201da177e4SLinus Torvalds 	dst_confirm(&rt->u.dst);
12211da177e4SLinus Torvalds 
12221da177e4SLinus Torvalds 	/* Duplicate redirect: silently ignore. */
12231da177e4SLinus Torvalds 	if (neigh == rt->u.dst.neighbour)
12241da177e4SLinus Torvalds 		goto out;
12251da177e4SLinus Torvalds 
12261da177e4SLinus Torvalds 	nrt = ip6_rt_copy(rt);
12271da177e4SLinus Torvalds 	if (nrt == NULL)
12281da177e4SLinus Torvalds 		goto out;
12291da177e4SLinus Torvalds 
12301da177e4SLinus Torvalds 	nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
12311da177e4SLinus Torvalds 	if (on_link)
12321da177e4SLinus Torvalds 		nrt->rt6i_flags &= ~RTF_GATEWAY;
12331da177e4SLinus Torvalds 
12341da177e4SLinus Torvalds 	ipv6_addr_copy(&nrt->rt6i_dst.addr, dest);
12351da177e4SLinus Torvalds 	nrt->rt6i_dst.plen = 128;
12361da177e4SLinus Torvalds 	nrt->u.dst.flags |= DST_HOST;
12371da177e4SLinus Torvalds 
12381da177e4SLinus Torvalds 	ipv6_addr_copy(&nrt->rt6i_gateway, (struct in6_addr*)neigh->primary_key);
12391da177e4SLinus Torvalds 	nrt->rt6i_nexthop = neigh_clone(neigh);
12401da177e4SLinus Torvalds 	/* Reset pmtu, it may be better */
12411da177e4SLinus Torvalds 	nrt->u.dst.metrics[RTAX_MTU-1] = ipv6_get_mtu(neigh->dev);
12421da177e4SLinus Torvalds 	nrt->u.dst.metrics[RTAX_ADVMSS-1] = ipv6_advmss(dst_mtu(&nrt->u.dst));
12431da177e4SLinus Torvalds 
12440d51aa80SJamal Hadi Salim 	if (ip6_ins_rt(nrt, NULL, NULL, NULL))
12451da177e4SLinus Torvalds 		goto out;
12461da177e4SLinus Torvalds 
12471da177e4SLinus Torvalds 	if (rt->rt6i_flags&RTF_CACHE) {
12480d51aa80SJamal Hadi Salim 		ip6_del_rt(rt, NULL, NULL, NULL);
12491da177e4SLinus Torvalds 		return;
12501da177e4SLinus Torvalds 	}
12511da177e4SLinus Torvalds 
12521da177e4SLinus Torvalds out:
12531da177e4SLinus Torvalds         dst_release(&rt->u.dst);
12541da177e4SLinus Torvalds 	return;
12551da177e4SLinus Torvalds }
12561da177e4SLinus Torvalds 
12571da177e4SLinus Torvalds /*
12581da177e4SLinus Torvalds  *	Handle ICMP "packet too big" messages
12591da177e4SLinus Torvalds  *	i.e. Path MTU discovery
12601da177e4SLinus Torvalds  */
12611da177e4SLinus Torvalds 
12621da177e4SLinus Torvalds void rt6_pmtu_discovery(struct in6_addr *daddr, struct in6_addr *saddr,
12631da177e4SLinus Torvalds 			struct net_device *dev, u32 pmtu)
12641da177e4SLinus Torvalds {
12651da177e4SLinus Torvalds 	struct rt6_info *rt, *nrt;
12661da177e4SLinus Torvalds 	int allfrag = 0;
12671da177e4SLinus Torvalds 
12681da177e4SLinus Torvalds 	rt = rt6_lookup(daddr, saddr, dev->ifindex, 0);
12691da177e4SLinus Torvalds 	if (rt == NULL)
12701da177e4SLinus Torvalds 		return;
12711da177e4SLinus Torvalds 
12721da177e4SLinus Torvalds 	if (pmtu >= dst_mtu(&rt->u.dst))
12731da177e4SLinus Torvalds 		goto out;
12741da177e4SLinus Torvalds 
12751da177e4SLinus Torvalds 	if (pmtu < IPV6_MIN_MTU) {
12761da177e4SLinus Torvalds 		/*
12771da177e4SLinus Torvalds 		 * According to RFC2460, PMTU is set to the IPv6 Minimum Link
12781da177e4SLinus Torvalds 		 * MTU (1280) and a fragment header should always be included
12791da177e4SLinus Torvalds 		 * after a node receiving Too Big message reporting PMTU is
12801da177e4SLinus Torvalds 		 * less than the IPv6 Minimum Link MTU.
12811da177e4SLinus Torvalds 		 */
12821da177e4SLinus Torvalds 		pmtu = IPV6_MIN_MTU;
12831da177e4SLinus Torvalds 		allfrag = 1;
12841da177e4SLinus Torvalds 	}
12851da177e4SLinus Torvalds 
12861da177e4SLinus Torvalds 	/* New mtu received -> path was valid.
12871da177e4SLinus Torvalds 	   They are sent only in response to data packets,
12881da177e4SLinus Torvalds 	   so that this nexthop apparently is reachable. --ANK
12891da177e4SLinus Torvalds 	 */
12901da177e4SLinus Torvalds 	dst_confirm(&rt->u.dst);
12911da177e4SLinus Torvalds 
12921da177e4SLinus Torvalds 	/* Host route. If it is static, it would be better
12931da177e4SLinus Torvalds 	   not to override it, but add new one, so that
12941da177e4SLinus Torvalds 	   when cache entry will expire old pmtu
12951da177e4SLinus Torvalds 	   would return automatically.
12961da177e4SLinus Torvalds 	 */
12971da177e4SLinus Torvalds 	if (rt->rt6i_flags & RTF_CACHE) {
12981da177e4SLinus Torvalds 		rt->u.dst.metrics[RTAX_MTU-1] = pmtu;
12991da177e4SLinus Torvalds 		if (allfrag)
13001da177e4SLinus Torvalds 			rt->u.dst.metrics[RTAX_FEATURES-1] |= RTAX_FEATURE_ALLFRAG;
13011da177e4SLinus Torvalds 		dst_set_expires(&rt->u.dst, ip6_rt_mtu_expires);
13021da177e4SLinus Torvalds 		rt->rt6i_flags |= RTF_MODIFIED|RTF_EXPIRES;
13031da177e4SLinus Torvalds 		goto out;
13041da177e4SLinus Torvalds 	}
13051da177e4SLinus Torvalds 
13061da177e4SLinus Torvalds 	/* Network route.
13071da177e4SLinus Torvalds 	   Two cases are possible:
13081da177e4SLinus Torvalds 	   1. It is connected route. Action: COW
13091da177e4SLinus Torvalds 	   2. It is gatewayed route or NONEXTHOP route. Action: clone it.
13101da177e4SLinus Torvalds 	 */
1311d5315b50SYOSHIFUJI Hideaki 	if (!rt->rt6i_nexthop && !(rt->rt6i_flags & RTF_NONEXTHOP))
1312a1e78363SYOSHIFUJI Hideaki 		nrt = rt6_alloc_cow(rt, daddr, saddr);
1313d5315b50SYOSHIFUJI Hideaki 	else
1314d5315b50SYOSHIFUJI Hideaki 		nrt = rt6_alloc_clone(rt, daddr);
1315a1e78363SYOSHIFUJI Hideaki 
1316d5315b50SYOSHIFUJI Hideaki 	if (nrt) {
13171da177e4SLinus Torvalds 		nrt->u.dst.metrics[RTAX_MTU-1] = pmtu;
13181da177e4SLinus Torvalds 		if (allfrag)
13191da177e4SLinus Torvalds 			nrt->u.dst.metrics[RTAX_FEATURES-1] |= RTAX_FEATURE_ALLFRAG;
1320a1e78363SYOSHIFUJI Hideaki 
13211da177e4SLinus Torvalds 		/* According to RFC 1981, detecting PMTU increase shouldn't be
1322a1e78363SYOSHIFUJI Hideaki 		 * happened within 5 mins, the recommended timer is 10 mins.
1323a1e78363SYOSHIFUJI Hideaki 		 * Here this route expiration time is set to ip6_rt_mtu_expires
1324a1e78363SYOSHIFUJI Hideaki 		 * which is 10 mins. After 10 mins the decreased pmtu is expired
1325a1e78363SYOSHIFUJI Hideaki 		 * and detecting PMTU increase will be automatically happened.
13261da177e4SLinus Torvalds 		 */
13271da177e4SLinus Torvalds 		dst_set_expires(&nrt->u.dst, ip6_rt_mtu_expires);
13281da177e4SLinus Torvalds 		nrt->rt6i_flags |= RTF_DYNAMIC|RTF_EXPIRES;
1329a1e78363SYOSHIFUJI Hideaki 
1330a1e78363SYOSHIFUJI Hideaki 		ip6_ins_rt(nrt, NULL, NULL, NULL);
13311da177e4SLinus Torvalds 	}
13321da177e4SLinus Torvalds out:
13331da177e4SLinus Torvalds 	dst_release(&rt->u.dst);
13341da177e4SLinus Torvalds }
13351da177e4SLinus Torvalds 
13361da177e4SLinus Torvalds /*
13371da177e4SLinus Torvalds  *	Misc support functions
13381da177e4SLinus Torvalds  */
13391da177e4SLinus Torvalds 
13401da177e4SLinus Torvalds static struct rt6_info * ip6_rt_copy(struct rt6_info *ort)
13411da177e4SLinus Torvalds {
13421da177e4SLinus Torvalds 	struct rt6_info *rt = ip6_dst_alloc();
13431da177e4SLinus Torvalds 
13441da177e4SLinus Torvalds 	if (rt) {
13451da177e4SLinus Torvalds 		rt->u.dst.input = ort->u.dst.input;
13461da177e4SLinus Torvalds 		rt->u.dst.output = ort->u.dst.output;
13471da177e4SLinus Torvalds 
13481da177e4SLinus Torvalds 		memcpy(rt->u.dst.metrics, ort->u.dst.metrics, RTAX_MAX*sizeof(u32));
13491da177e4SLinus Torvalds 		rt->u.dst.dev = ort->u.dst.dev;
13501da177e4SLinus Torvalds 		if (rt->u.dst.dev)
13511da177e4SLinus Torvalds 			dev_hold(rt->u.dst.dev);
13521da177e4SLinus Torvalds 		rt->rt6i_idev = ort->rt6i_idev;
13531da177e4SLinus Torvalds 		if (rt->rt6i_idev)
13541da177e4SLinus Torvalds 			in6_dev_hold(rt->rt6i_idev);
13551da177e4SLinus Torvalds 		rt->u.dst.lastuse = jiffies;
13561da177e4SLinus Torvalds 		rt->rt6i_expires = 0;
13571da177e4SLinus Torvalds 
13581da177e4SLinus Torvalds 		ipv6_addr_copy(&rt->rt6i_gateway, &ort->rt6i_gateway);
13591da177e4SLinus Torvalds 		rt->rt6i_flags = ort->rt6i_flags & ~RTF_EXPIRES;
13601da177e4SLinus Torvalds 		rt->rt6i_metric = 0;
13611da177e4SLinus Torvalds 
13621da177e4SLinus Torvalds 		memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
13631da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
13641da177e4SLinus Torvalds 		memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
13651da177e4SLinus Torvalds #endif
13661da177e4SLinus Torvalds 	}
13671da177e4SLinus Torvalds 	return rt;
13681da177e4SLinus Torvalds }
13691da177e4SLinus Torvalds 
137070ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO
137170ceb4f5SYOSHIFUJI Hideaki static struct rt6_info *rt6_get_route_info(struct in6_addr *prefix, int prefixlen,
137270ceb4f5SYOSHIFUJI Hideaki 					   struct in6_addr *gwaddr, int ifindex)
137370ceb4f5SYOSHIFUJI Hideaki {
137470ceb4f5SYOSHIFUJI Hideaki 	struct fib6_node *fn;
137570ceb4f5SYOSHIFUJI Hideaki 	struct rt6_info *rt = NULL;
137670ceb4f5SYOSHIFUJI Hideaki 
137770ceb4f5SYOSHIFUJI Hideaki 	write_lock_bh(&rt6_lock);
137870ceb4f5SYOSHIFUJI Hideaki 	fn = fib6_locate(&ip6_routing_table, prefix ,prefixlen, NULL, 0);
137970ceb4f5SYOSHIFUJI Hideaki 	if (!fn)
138070ceb4f5SYOSHIFUJI Hideaki 		goto out;
138170ceb4f5SYOSHIFUJI Hideaki 
138270ceb4f5SYOSHIFUJI Hideaki 	for (rt = fn->leaf; rt; rt = rt->u.next) {
138370ceb4f5SYOSHIFUJI Hideaki 		if (rt->rt6i_dev->ifindex != ifindex)
138470ceb4f5SYOSHIFUJI Hideaki 			continue;
138570ceb4f5SYOSHIFUJI Hideaki 		if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
138670ceb4f5SYOSHIFUJI Hideaki 			continue;
138770ceb4f5SYOSHIFUJI Hideaki 		if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr))
138870ceb4f5SYOSHIFUJI Hideaki 			continue;
138970ceb4f5SYOSHIFUJI Hideaki 		dst_hold(&rt->u.dst);
139070ceb4f5SYOSHIFUJI Hideaki 		break;
139170ceb4f5SYOSHIFUJI Hideaki 	}
139270ceb4f5SYOSHIFUJI Hideaki out:
139370ceb4f5SYOSHIFUJI Hideaki 	write_unlock_bh(&rt6_lock);
139470ceb4f5SYOSHIFUJI Hideaki 	return rt;
139570ceb4f5SYOSHIFUJI Hideaki }
139670ceb4f5SYOSHIFUJI Hideaki 
139770ceb4f5SYOSHIFUJI Hideaki static struct rt6_info *rt6_add_route_info(struct in6_addr *prefix, int prefixlen,
139870ceb4f5SYOSHIFUJI Hideaki 					   struct in6_addr *gwaddr, int ifindex,
139970ceb4f5SYOSHIFUJI Hideaki 					   unsigned pref)
140070ceb4f5SYOSHIFUJI Hideaki {
140170ceb4f5SYOSHIFUJI Hideaki 	struct in6_rtmsg rtmsg;
140270ceb4f5SYOSHIFUJI Hideaki 
140370ceb4f5SYOSHIFUJI Hideaki 	memset(&rtmsg, 0, sizeof(rtmsg));
140470ceb4f5SYOSHIFUJI Hideaki 	rtmsg.rtmsg_type = RTMSG_NEWROUTE;
140570ceb4f5SYOSHIFUJI Hideaki 	ipv6_addr_copy(&rtmsg.rtmsg_dst, prefix);
140670ceb4f5SYOSHIFUJI Hideaki 	rtmsg.rtmsg_dst_len = prefixlen;
140770ceb4f5SYOSHIFUJI Hideaki 	ipv6_addr_copy(&rtmsg.rtmsg_gateway, gwaddr);
140870ceb4f5SYOSHIFUJI Hideaki 	rtmsg.rtmsg_metric = 1024;
140970ceb4f5SYOSHIFUJI Hideaki 	rtmsg.rtmsg_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | RTF_UP | RTF_PREF(pref);
1410e317da96SYOSHIFUJI Hideaki 	/* We should treat it as a default route if prefix length is 0. */
1411e317da96SYOSHIFUJI Hideaki 	if (!prefixlen)
1412e317da96SYOSHIFUJI Hideaki 		rtmsg.rtmsg_flags |= RTF_DEFAULT;
141370ceb4f5SYOSHIFUJI Hideaki 	rtmsg.rtmsg_ifindex = ifindex;
141470ceb4f5SYOSHIFUJI Hideaki 
141570ceb4f5SYOSHIFUJI Hideaki 	ip6_route_add(&rtmsg, NULL, NULL, NULL);
141670ceb4f5SYOSHIFUJI Hideaki 
141770ceb4f5SYOSHIFUJI Hideaki 	return rt6_get_route_info(prefix, prefixlen, gwaddr, ifindex);
141870ceb4f5SYOSHIFUJI Hideaki }
141970ceb4f5SYOSHIFUJI Hideaki #endif
142070ceb4f5SYOSHIFUJI Hideaki 
14211da177e4SLinus Torvalds struct rt6_info *rt6_get_dflt_router(struct in6_addr *addr, struct net_device *dev)
14221da177e4SLinus Torvalds {
14231da177e4SLinus Torvalds 	struct rt6_info *rt;
14241da177e4SLinus Torvalds 	struct fib6_node *fn;
14251da177e4SLinus Torvalds 
14261da177e4SLinus Torvalds 	fn = &ip6_routing_table;
14271da177e4SLinus Torvalds 
14281da177e4SLinus Torvalds 	write_lock_bh(&rt6_lock);
14291da177e4SLinus Torvalds 	for (rt = fn->leaf; rt; rt=rt->u.next) {
14301da177e4SLinus Torvalds 		if (dev == rt->rt6i_dev &&
1431045927ffSYOSHIFUJI Hideaki 		    ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
14321da177e4SLinus Torvalds 		    ipv6_addr_equal(&rt->rt6i_gateway, addr))
14331da177e4SLinus Torvalds 			break;
14341da177e4SLinus Torvalds 	}
14351da177e4SLinus Torvalds 	if (rt)
14361da177e4SLinus Torvalds 		dst_hold(&rt->u.dst);
14371da177e4SLinus Torvalds 	write_unlock_bh(&rt6_lock);
14381da177e4SLinus Torvalds 	return rt;
14391da177e4SLinus Torvalds }
14401da177e4SLinus Torvalds 
14411da177e4SLinus Torvalds struct rt6_info *rt6_add_dflt_router(struct in6_addr *gwaddr,
1442ebacaaa0SYOSHIFUJI Hideaki 				     struct net_device *dev,
1443ebacaaa0SYOSHIFUJI Hideaki 				     unsigned int pref)
14441da177e4SLinus Torvalds {
14451da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
14461da177e4SLinus Torvalds 
14471da177e4SLinus Torvalds 	memset(&rtmsg, 0, sizeof(struct in6_rtmsg));
14481da177e4SLinus Torvalds 	rtmsg.rtmsg_type = RTMSG_NEWROUTE;
14491da177e4SLinus Torvalds 	ipv6_addr_copy(&rtmsg.rtmsg_gateway, gwaddr);
14501da177e4SLinus Torvalds 	rtmsg.rtmsg_metric = 1024;
1451ebacaaa0SYOSHIFUJI Hideaki 	rtmsg.rtmsg_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | RTF_UP | RTF_EXPIRES |
1452ebacaaa0SYOSHIFUJI Hideaki 			    RTF_PREF(pref);
14531da177e4SLinus Torvalds 
14541da177e4SLinus Torvalds 	rtmsg.rtmsg_ifindex = dev->ifindex;
14551da177e4SLinus Torvalds 
14560d51aa80SJamal Hadi Salim 	ip6_route_add(&rtmsg, NULL, NULL, NULL);
14571da177e4SLinus Torvalds 	return rt6_get_dflt_router(gwaddr, dev);
14581da177e4SLinus Torvalds }
14591da177e4SLinus Torvalds 
14601da177e4SLinus Torvalds void rt6_purge_dflt_routers(void)
14611da177e4SLinus Torvalds {
14621da177e4SLinus Torvalds 	struct rt6_info *rt;
14631da177e4SLinus Torvalds 
14641da177e4SLinus Torvalds restart:
14651da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
14661da177e4SLinus Torvalds 	for (rt = ip6_routing_table.leaf; rt; rt = rt->u.next) {
14671da177e4SLinus Torvalds 		if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF)) {
14681da177e4SLinus Torvalds 			dst_hold(&rt->u.dst);
14691da177e4SLinus Torvalds 
14701da177e4SLinus Torvalds 			read_unlock_bh(&rt6_lock);
14711da177e4SLinus Torvalds 
14720d51aa80SJamal Hadi Salim 			ip6_del_rt(rt, NULL, NULL, NULL);
14731da177e4SLinus Torvalds 
14741da177e4SLinus Torvalds 			goto restart;
14751da177e4SLinus Torvalds 		}
14761da177e4SLinus Torvalds 	}
14771da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
14781da177e4SLinus Torvalds }
14791da177e4SLinus Torvalds 
14801da177e4SLinus Torvalds int ipv6_route_ioctl(unsigned int cmd, void __user *arg)
14811da177e4SLinus Torvalds {
14821da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
14831da177e4SLinus Torvalds 	int err;
14841da177e4SLinus Torvalds 
14851da177e4SLinus Torvalds 	switch(cmd) {
14861da177e4SLinus Torvalds 	case SIOCADDRT:		/* Add a route */
14871da177e4SLinus Torvalds 	case SIOCDELRT:		/* Delete a route */
14881da177e4SLinus Torvalds 		if (!capable(CAP_NET_ADMIN))
14891da177e4SLinus Torvalds 			return -EPERM;
14901da177e4SLinus Torvalds 		err = copy_from_user(&rtmsg, arg,
14911da177e4SLinus Torvalds 				     sizeof(struct in6_rtmsg));
14921da177e4SLinus Torvalds 		if (err)
14931da177e4SLinus Torvalds 			return -EFAULT;
14941da177e4SLinus Torvalds 
14951da177e4SLinus Torvalds 		rtnl_lock();
14961da177e4SLinus Torvalds 		switch (cmd) {
14971da177e4SLinus Torvalds 		case SIOCADDRT:
14980d51aa80SJamal Hadi Salim 			err = ip6_route_add(&rtmsg, NULL, NULL, NULL);
14991da177e4SLinus Torvalds 			break;
15001da177e4SLinus Torvalds 		case SIOCDELRT:
15010d51aa80SJamal Hadi Salim 			err = ip6_route_del(&rtmsg, NULL, NULL, NULL);
15021da177e4SLinus Torvalds 			break;
15031da177e4SLinus Torvalds 		default:
15041da177e4SLinus Torvalds 			err = -EINVAL;
15051da177e4SLinus Torvalds 		}
15061da177e4SLinus Torvalds 		rtnl_unlock();
15071da177e4SLinus Torvalds 
15081da177e4SLinus Torvalds 		return err;
15091da177e4SLinus Torvalds 	};
15101da177e4SLinus Torvalds 
15111da177e4SLinus Torvalds 	return -EINVAL;
15121da177e4SLinus Torvalds }
15131da177e4SLinus Torvalds 
15141da177e4SLinus Torvalds /*
15151da177e4SLinus Torvalds  *	Drop the packet on the floor
15161da177e4SLinus Torvalds  */
15171da177e4SLinus Torvalds 
151820380731SArnaldo Carvalho de Melo static int ip6_pkt_discard(struct sk_buff *skb)
15191da177e4SLinus Torvalds {
15201da177e4SLinus Torvalds 	IP6_INC_STATS(IPSTATS_MIB_OUTNOROUTES);
15211da177e4SLinus Torvalds 	icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_NOROUTE, 0, skb->dev);
15221da177e4SLinus Torvalds 	kfree_skb(skb);
15231da177e4SLinus Torvalds 	return 0;
15241da177e4SLinus Torvalds }
15251da177e4SLinus Torvalds 
152620380731SArnaldo Carvalho de Melo static int ip6_pkt_discard_out(struct sk_buff *skb)
15271da177e4SLinus Torvalds {
15281da177e4SLinus Torvalds 	skb->dev = skb->dst->dev;
15291da177e4SLinus Torvalds 	return ip6_pkt_discard(skb);
15301da177e4SLinus Torvalds }
15311da177e4SLinus Torvalds 
15321da177e4SLinus Torvalds /*
15331da177e4SLinus Torvalds  *	Allocate a dst for local (unicast / anycast) address.
15341da177e4SLinus Torvalds  */
15351da177e4SLinus Torvalds 
15361da177e4SLinus Torvalds struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev,
15371da177e4SLinus Torvalds 				    const struct in6_addr *addr,
15381da177e4SLinus Torvalds 				    int anycast)
15391da177e4SLinus Torvalds {
15401da177e4SLinus Torvalds 	struct rt6_info *rt = ip6_dst_alloc();
15411da177e4SLinus Torvalds 
15421da177e4SLinus Torvalds 	if (rt == NULL)
15431da177e4SLinus Torvalds 		return ERR_PTR(-ENOMEM);
15441da177e4SLinus Torvalds 
15451da177e4SLinus Torvalds 	dev_hold(&loopback_dev);
15461da177e4SLinus Torvalds 	in6_dev_hold(idev);
15471da177e4SLinus Torvalds 
15481da177e4SLinus Torvalds 	rt->u.dst.flags = DST_HOST;
15491da177e4SLinus Torvalds 	rt->u.dst.input = ip6_input;
15501da177e4SLinus Torvalds 	rt->u.dst.output = ip6_output;
15511da177e4SLinus Torvalds 	rt->rt6i_dev = &loopback_dev;
15521da177e4SLinus Torvalds 	rt->rt6i_idev = idev;
15531da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_MTU-1] = ipv6_get_mtu(rt->rt6i_dev);
15541da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_ADVMSS-1] = ipv6_advmss(dst_mtu(&rt->u.dst));
15551da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_HOPLIMIT-1] = -1;
15561da177e4SLinus Torvalds 	rt->u.dst.obsolete = -1;
15571da177e4SLinus Torvalds 
15581da177e4SLinus Torvalds 	rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP;
155958c4fb86SYOSHIFUJI Hideaki 	if (anycast)
156058c4fb86SYOSHIFUJI Hideaki 		rt->rt6i_flags |= RTF_ANYCAST;
156158c4fb86SYOSHIFUJI Hideaki 	else
15621da177e4SLinus Torvalds 		rt->rt6i_flags |= RTF_LOCAL;
15631da177e4SLinus Torvalds 	rt->rt6i_nexthop = ndisc_get_neigh(rt->rt6i_dev, &rt->rt6i_gateway);
15641da177e4SLinus Torvalds 	if (rt->rt6i_nexthop == NULL) {
15651da177e4SLinus Torvalds 		dst_free((struct dst_entry *) rt);
15661da177e4SLinus Torvalds 		return ERR_PTR(-ENOMEM);
15671da177e4SLinus Torvalds 	}
15681da177e4SLinus Torvalds 
15691da177e4SLinus Torvalds 	ipv6_addr_copy(&rt->rt6i_dst.addr, addr);
15701da177e4SLinus Torvalds 	rt->rt6i_dst.plen = 128;
15711da177e4SLinus Torvalds 
15721da177e4SLinus Torvalds 	atomic_set(&rt->u.dst.__refcnt, 1);
15731da177e4SLinus Torvalds 
15741da177e4SLinus Torvalds 	return rt;
15751da177e4SLinus Torvalds }
15761da177e4SLinus Torvalds 
15771da177e4SLinus Torvalds static int fib6_ifdown(struct rt6_info *rt, void *arg)
15781da177e4SLinus Torvalds {
15791da177e4SLinus Torvalds 	if (((void*)rt->rt6i_dev == arg || arg == NULL) &&
15801da177e4SLinus Torvalds 	    rt != &ip6_null_entry) {
15811da177e4SLinus Torvalds 		RT6_TRACE("deleted by ifdown %p\n", rt);
15821da177e4SLinus Torvalds 		return -1;
15831da177e4SLinus Torvalds 	}
15841da177e4SLinus Torvalds 	return 0;
15851da177e4SLinus Torvalds }
15861da177e4SLinus Torvalds 
15871da177e4SLinus Torvalds void rt6_ifdown(struct net_device *dev)
15881da177e4SLinus Torvalds {
15891da177e4SLinus Torvalds 	write_lock_bh(&rt6_lock);
15901da177e4SLinus Torvalds 	fib6_clean_tree(&ip6_routing_table, fib6_ifdown, 0, dev);
15911da177e4SLinus Torvalds 	write_unlock_bh(&rt6_lock);
15921da177e4SLinus Torvalds }
15931da177e4SLinus Torvalds 
15941da177e4SLinus Torvalds struct rt6_mtu_change_arg
15951da177e4SLinus Torvalds {
15961da177e4SLinus Torvalds 	struct net_device *dev;
15971da177e4SLinus Torvalds 	unsigned mtu;
15981da177e4SLinus Torvalds };
15991da177e4SLinus Torvalds 
16001da177e4SLinus Torvalds static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg)
16011da177e4SLinus Torvalds {
16021da177e4SLinus Torvalds 	struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
16031da177e4SLinus Torvalds 	struct inet6_dev *idev;
16041da177e4SLinus Torvalds 
16051da177e4SLinus Torvalds 	/* In IPv6 pmtu discovery is not optional,
16061da177e4SLinus Torvalds 	   so that RTAX_MTU lock cannot disable it.
16071da177e4SLinus Torvalds 	   We still use this lock to block changes
16081da177e4SLinus Torvalds 	   caused by addrconf/ndisc.
16091da177e4SLinus Torvalds 	*/
16101da177e4SLinus Torvalds 
16111da177e4SLinus Torvalds 	idev = __in6_dev_get(arg->dev);
16121da177e4SLinus Torvalds 	if (idev == NULL)
16131da177e4SLinus Torvalds 		return 0;
16141da177e4SLinus Torvalds 
16151da177e4SLinus Torvalds 	/* For administrative MTU increase, there is no way to discover
16161da177e4SLinus Torvalds 	   IPv6 PMTU increase, so PMTU increase should be updated here.
16171da177e4SLinus Torvalds 	   Since RFC 1981 doesn't include administrative MTU increase
16181da177e4SLinus Torvalds 	   update PMTU increase is a MUST. (i.e. jumbo frame)
16191da177e4SLinus Torvalds 	 */
16201da177e4SLinus Torvalds 	/*
16211da177e4SLinus Torvalds 	   If new MTU is less than route PMTU, this new MTU will be the
16221da177e4SLinus Torvalds 	   lowest MTU in the path, update the route PMTU to reflect PMTU
16231da177e4SLinus Torvalds 	   decreases; if new MTU is greater than route PMTU, and the
16241da177e4SLinus Torvalds 	   old MTU is the lowest MTU in the path, update the route PMTU
16251da177e4SLinus Torvalds 	   to reflect the increase. In this case if the other nodes' MTU
16261da177e4SLinus Torvalds 	   also have the lowest MTU, TOO BIG MESSAGE will be lead to
16271da177e4SLinus Torvalds 	   PMTU discouvery.
16281da177e4SLinus Torvalds 	 */
16291da177e4SLinus Torvalds 	if (rt->rt6i_dev == arg->dev &&
16301da177e4SLinus Torvalds 	    !dst_metric_locked(&rt->u.dst, RTAX_MTU) &&
16311da177e4SLinus Torvalds             (dst_mtu(&rt->u.dst) > arg->mtu ||
16321da177e4SLinus Torvalds              (dst_mtu(&rt->u.dst) < arg->mtu &&
16331da177e4SLinus Torvalds 	      dst_mtu(&rt->u.dst) == idev->cnf.mtu6)))
16341da177e4SLinus Torvalds 		rt->u.dst.metrics[RTAX_MTU-1] = arg->mtu;
16351da177e4SLinus Torvalds 	rt->u.dst.metrics[RTAX_ADVMSS-1] = ipv6_advmss(arg->mtu);
16361da177e4SLinus Torvalds 	return 0;
16371da177e4SLinus Torvalds }
16381da177e4SLinus Torvalds 
16391da177e4SLinus Torvalds void rt6_mtu_change(struct net_device *dev, unsigned mtu)
16401da177e4SLinus Torvalds {
16411da177e4SLinus Torvalds 	struct rt6_mtu_change_arg arg;
16421da177e4SLinus Torvalds 
16431da177e4SLinus Torvalds 	arg.dev = dev;
16441da177e4SLinus Torvalds 	arg.mtu = mtu;
16451da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
16461da177e4SLinus Torvalds 	fib6_clean_tree(&ip6_routing_table, rt6_mtu_change_route, 0, &arg);
16471da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
16481da177e4SLinus Torvalds }
16491da177e4SLinus Torvalds 
16501da177e4SLinus Torvalds static int inet6_rtm_to_rtmsg(struct rtmsg *r, struct rtattr **rta,
16511da177e4SLinus Torvalds 			      struct in6_rtmsg *rtmsg)
16521da177e4SLinus Torvalds {
16531da177e4SLinus Torvalds 	memset(rtmsg, 0, sizeof(*rtmsg));
16541da177e4SLinus Torvalds 
16551da177e4SLinus Torvalds 	rtmsg->rtmsg_dst_len = r->rtm_dst_len;
16561da177e4SLinus Torvalds 	rtmsg->rtmsg_src_len = r->rtm_src_len;
16571da177e4SLinus Torvalds 	rtmsg->rtmsg_flags = RTF_UP;
16581da177e4SLinus Torvalds 	if (r->rtm_type == RTN_UNREACHABLE)
16591da177e4SLinus Torvalds 		rtmsg->rtmsg_flags |= RTF_REJECT;
16601da177e4SLinus Torvalds 
16611da177e4SLinus Torvalds 	if (rta[RTA_GATEWAY-1]) {
16621da177e4SLinus Torvalds 		if (rta[RTA_GATEWAY-1]->rta_len != RTA_LENGTH(16))
16631da177e4SLinus Torvalds 			return -EINVAL;
16641da177e4SLinus Torvalds 		memcpy(&rtmsg->rtmsg_gateway, RTA_DATA(rta[RTA_GATEWAY-1]), 16);
16651da177e4SLinus Torvalds 		rtmsg->rtmsg_flags |= RTF_GATEWAY;
16661da177e4SLinus Torvalds 	}
16671da177e4SLinus Torvalds 	if (rta[RTA_DST-1]) {
16681da177e4SLinus Torvalds 		if (RTA_PAYLOAD(rta[RTA_DST-1]) < ((r->rtm_dst_len+7)>>3))
16691da177e4SLinus Torvalds 			return -EINVAL;
16701da177e4SLinus Torvalds 		memcpy(&rtmsg->rtmsg_dst, RTA_DATA(rta[RTA_DST-1]), ((r->rtm_dst_len+7)>>3));
16711da177e4SLinus Torvalds 	}
16721da177e4SLinus Torvalds 	if (rta[RTA_SRC-1]) {
16731da177e4SLinus Torvalds 		if (RTA_PAYLOAD(rta[RTA_SRC-1]) < ((r->rtm_src_len+7)>>3))
16741da177e4SLinus Torvalds 			return -EINVAL;
16751da177e4SLinus Torvalds 		memcpy(&rtmsg->rtmsg_src, RTA_DATA(rta[RTA_SRC-1]), ((r->rtm_src_len+7)>>3));
16761da177e4SLinus Torvalds 	}
16771da177e4SLinus Torvalds 	if (rta[RTA_OIF-1]) {
16781da177e4SLinus Torvalds 		if (rta[RTA_OIF-1]->rta_len != RTA_LENGTH(sizeof(int)))
16791da177e4SLinus Torvalds 			return -EINVAL;
16801da177e4SLinus Torvalds 		memcpy(&rtmsg->rtmsg_ifindex, RTA_DATA(rta[RTA_OIF-1]), sizeof(int));
16811da177e4SLinus Torvalds 	}
16821da177e4SLinus Torvalds 	if (rta[RTA_PRIORITY-1]) {
16831da177e4SLinus Torvalds 		if (rta[RTA_PRIORITY-1]->rta_len != RTA_LENGTH(4))
16841da177e4SLinus Torvalds 			return -EINVAL;
16851da177e4SLinus Torvalds 		memcpy(&rtmsg->rtmsg_metric, RTA_DATA(rta[RTA_PRIORITY-1]), 4);
16861da177e4SLinus Torvalds 	}
16871da177e4SLinus Torvalds 	return 0;
16881da177e4SLinus Torvalds }
16891da177e4SLinus Torvalds 
16901da177e4SLinus Torvalds int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr* nlh, void *arg)
16911da177e4SLinus Torvalds {
16921da177e4SLinus Torvalds 	struct rtmsg *r = NLMSG_DATA(nlh);
16931da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
16941da177e4SLinus Torvalds 
16951da177e4SLinus Torvalds 	if (inet6_rtm_to_rtmsg(r, arg, &rtmsg))
16961da177e4SLinus Torvalds 		return -EINVAL;
16970d51aa80SJamal Hadi Salim 	return ip6_route_del(&rtmsg, nlh, arg, &NETLINK_CB(skb));
16981da177e4SLinus Torvalds }
16991da177e4SLinus Torvalds 
17001da177e4SLinus Torvalds int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr* nlh, void *arg)
17011da177e4SLinus Torvalds {
17021da177e4SLinus Torvalds 	struct rtmsg *r = NLMSG_DATA(nlh);
17031da177e4SLinus Torvalds 	struct in6_rtmsg rtmsg;
17041da177e4SLinus Torvalds 
17051da177e4SLinus Torvalds 	if (inet6_rtm_to_rtmsg(r, arg, &rtmsg))
17061da177e4SLinus Torvalds 		return -EINVAL;
17070d51aa80SJamal Hadi Salim 	return ip6_route_add(&rtmsg, nlh, arg, &NETLINK_CB(skb));
17081da177e4SLinus Torvalds }
17091da177e4SLinus Torvalds 
17101da177e4SLinus Torvalds struct rt6_rtnl_dump_arg
17111da177e4SLinus Torvalds {
17121da177e4SLinus Torvalds 	struct sk_buff *skb;
17131da177e4SLinus Torvalds 	struct netlink_callback *cb;
17141da177e4SLinus Torvalds };
17151da177e4SLinus Torvalds 
17161da177e4SLinus Torvalds static int rt6_fill_node(struct sk_buff *skb, struct rt6_info *rt,
17170d51aa80SJamal Hadi Salim 			 struct in6_addr *dst, struct in6_addr *src,
17180d51aa80SJamal Hadi Salim 			 int iif, int type, u32 pid, u32 seq,
17190d51aa80SJamal Hadi Salim 			 int prefix, unsigned int flags)
17201da177e4SLinus Torvalds {
17211da177e4SLinus Torvalds 	struct rtmsg *rtm;
17221da177e4SLinus Torvalds 	struct nlmsghdr  *nlh;
17231da177e4SLinus Torvalds 	unsigned char	 *b = skb->tail;
17241da177e4SLinus Torvalds 	struct rta_cacheinfo ci;
17251da177e4SLinus Torvalds 
17261da177e4SLinus Torvalds 	if (prefix) {	/* user wants prefix routes only */
17271da177e4SLinus Torvalds 		if (!(rt->rt6i_flags & RTF_PREFIX_RT)) {
17281da177e4SLinus Torvalds 			/* success since this is not a prefix route */
17291da177e4SLinus Torvalds 			return 1;
17301da177e4SLinus Torvalds 		}
17311da177e4SLinus Torvalds 	}
17321da177e4SLinus Torvalds 
1733b6544c0bSJamal Hadi Salim 	nlh = NLMSG_NEW(skb, pid, seq, type, sizeof(*rtm), flags);
17341da177e4SLinus Torvalds 	rtm = NLMSG_DATA(nlh);
17351da177e4SLinus Torvalds 	rtm->rtm_family = AF_INET6;
17361da177e4SLinus Torvalds 	rtm->rtm_dst_len = rt->rt6i_dst.plen;
17371da177e4SLinus Torvalds 	rtm->rtm_src_len = rt->rt6i_src.plen;
17381da177e4SLinus Torvalds 	rtm->rtm_tos = 0;
17391da177e4SLinus Torvalds 	rtm->rtm_table = RT_TABLE_MAIN;
17401da177e4SLinus Torvalds 	if (rt->rt6i_flags&RTF_REJECT)
17411da177e4SLinus Torvalds 		rtm->rtm_type = RTN_UNREACHABLE;
17421da177e4SLinus Torvalds 	else if (rt->rt6i_dev && (rt->rt6i_dev->flags&IFF_LOOPBACK))
17431da177e4SLinus Torvalds 		rtm->rtm_type = RTN_LOCAL;
17441da177e4SLinus Torvalds 	else
17451da177e4SLinus Torvalds 		rtm->rtm_type = RTN_UNICAST;
17461da177e4SLinus Torvalds 	rtm->rtm_flags = 0;
17471da177e4SLinus Torvalds 	rtm->rtm_scope = RT_SCOPE_UNIVERSE;
17481da177e4SLinus Torvalds 	rtm->rtm_protocol = rt->rt6i_protocol;
17491da177e4SLinus Torvalds 	if (rt->rt6i_flags&RTF_DYNAMIC)
17501da177e4SLinus Torvalds 		rtm->rtm_protocol = RTPROT_REDIRECT;
17511da177e4SLinus Torvalds 	else if (rt->rt6i_flags & RTF_ADDRCONF)
17521da177e4SLinus Torvalds 		rtm->rtm_protocol = RTPROT_KERNEL;
17531da177e4SLinus Torvalds 	else if (rt->rt6i_flags&RTF_DEFAULT)
17541da177e4SLinus Torvalds 		rtm->rtm_protocol = RTPROT_RA;
17551da177e4SLinus Torvalds 
17561da177e4SLinus Torvalds 	if (rt->rt6i_flags&RTF_CACHE)
17571da177e4SLinus Torvalds 		rtm->rtm_flags |= RTM_F_CLONED;
17581da177e4SLinus Torvalds 
17591da177e4SLinus Torvalds 	if (dst) {
17601da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_DST, 16, dst);
17611da177e4SLinus Torvalds 	        rtm->rtm_dst_len = 128;
17621da177e4SLinus Torvalds 	} else if (rtm->rtm_dst_len)
17631da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_DST, 16, &rt->rt6i_dst.addr);
17641da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
17651da177e4SLinus Torvalds 	if (src) {
17661da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_SRC, 16, src);
17671da177e4SLinus Torvalds 	        rtm->rtm_src_len = 128;
17681da177e4SLinus Torvalds 	} else if (rtm->rtm_src_len)
17691da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_SRC, 16, &rt->rt6i_src.addr);
17701da177e4SLinus Torvalds #endif
17711da177e4SLinus Torvalds 	if (iif)
17721da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_IIF, 4, &iif);
17731da177e4SLinus Torvalds 	else if (dst) {
17741da177e4SLinus Torvalds 		struct in6_addr saddr_buf;
17751da177e4SLinus Torvalds 		if (ipv6_get_saddr(&rt->u.dst, dst, &saddr_buf) == 0)
17761da177e4SLinus Torvalds 			RTA_PUT(skb, RTA_PREFSRC, 16, &saddr_buf);
17771da177e4SLinus Torvalds 	}
17781da177e4SLinus Torvalds 	if (rtnetlink_put_metrics(skb, rt->u.dst.metrics) < 0)
17791da177e4SLinus Torvalds 		goto rtattr_failure;
17801da177e4SLinus Torvalds 	if (rt->u.dst.neighbour)
17811da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_GATEWAY, 16, &rt->u.dst.neighbour->primary_key);
17821da177e4SLinus Torvalds 	if (rt->u.dst.dev)
17831da177e4SLinus Torvalds 		RTA_PUT(skb, RTA_OIF, sizeof(int), &rt->rt6i_dev->ifindex);
17841da177e4SLinus Torvalds 	RTA_PUT(skb, RTA_PRIORITY, 4, &rt->rt6i_metric);
17851da177e4SLinus Torvalds 	ci.rta_lastuse = jiffies_to_clock_t(jiffies - rt->u.dst.lastuse);
17861da177e4SLinus Torvalds 	if (rt->rt6i_expires)
17871da177e4SLinus Torvalds 		ci.rta_expires = jiffies_to_clock_t(rt->rt6i_expires - jiffies);
17881da177e4SLinus Torvalds 	else
17891da177e4SLinus Torvalds 		ci.rta_expires = 0;
17901da177e4SLinus Torvalds 	ci.rta_used = rt->u.dst.__use;
17911da177e4SLinus Torvalds 	ci.rta_clntref = atomic_read(&rt->u.dst.__refcnt);
17921da177e4SLinus Torvalds 	ci.rta_error = rt->u.dst.error;
17931da177e4SLinus Torvalds 	ci.rta_id = 0;
17941da177e4SLinus Torvalds 	ci.rta_ts = 0;
17951da177e4SLinus Torvalds 	ci.rta_tsage = 0;
17961da177e4SLinus Torvalds 	RTA_PUT(skb, RTA_CACHEINFO, sizeof(ci), &ci);
17971da177e4SLinus Torvalds 	nlh->nlmsg_len = skb->tail - b;
17981da177e4SLinus Torvalds 	return skb->len;
17991da177e4SLinus Torvalds 
18001da177e4SLinus Torvalds nlmsg_failure:
18011da177e4SLinus Torvalds rtattr_failure:
18021da177e4SLinus Torvalds 	skb_trim(skb, b - skb->data);
18031da177e4SLinus Torvalds 	return -1;
18041da177e4SLinus Torvalds }
18051da177e4SLinus Torvalds 
18061da177e4SLinus Torvalds static int rt6_dump_route(struct rt6_info *rt, void *p_arg)
18071da177e4SLinus Torvalds {
18081da177e4SLinus Torvalds 	struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
18091da177e4SLinus Torvalds 	int prefix;
18101da177e4SLinus Torvalds 
18111da177e4SLinus Torvalds 	if (arg->cb->nlh->nlmsg_len >= NLMSG_LENGTH(sizeof(struct rtmsg))) {
18121da177e4SLinus Torvalds 		struct rtmsg *rtm = NLMSG_DATA(arg->cb->nlh);
18131da177e4SLinus Torvalds 		prefix = (rtm->rtm_flags & RTM_F_PREFIX) != 0;
18141da177e4SLinus Torvalds 	} else
18151da177e4SLinus Torvalds 		prefix = 0;
18161da177e4SLinus Torvalds 
18171da177e4SLinus Torvalds 	return rt6_fill_node(arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE,
18181da177e4SLinus Torvalds 		     NETLINK_CB(arg->cb->skb).pid, arg->cb->nlh->nlmsg_seq,
18190d51aa80SJamal Hadi Salim 		     prefix, NLM_F_MULTI);
18201da177e4SLinus Torvalds }
18211da177e4SLinus Torvalds 
18221da177e4SLinus Torvalds static int fib6_dump_node(struct fib6_walker_t *w)
18231da177e4SLinus Torvalds {
18241da177e4SLinus Torvalds 	int res;
18251da177e4SLinus Torvalds 	struct rt6_info *rt;
18261da177e4SLinus Torvalds 
18271da177e4SLinus Torvalds 	for (rt = w->leaf; rt; rt = rt->u.next) {
18281da177e4SLinus Torvalds 		res = rt6_dump_route(rt, w->args);
18291da177e4SLinus Torvalds 		if (res < 0) {
18301da177e4SLinus Torvalds 			/* Frame is full, suspend walking */
18311da177e4SLinus Torvalds 			w->leaf = rt;
18321da177e4SLinus Torvalds 			return 1;
18331da177e4SLinus Torvalds 		}
18341da177e4SLinus Torvalds 		BUG_TRAP(res!=0);
18351da177e4SLinus Torvalds 	}
18361da177e4SLinus Torvalds 	w->leaf = NULL;
18371da177e4SLinus Torvalds 	return 0;
18381da177e4SLinus Torvalds }
18391da177e4SLinus Torvalds 
18401da177e4SLinus Torvalds static void fib6_dump_end(struct netlink_callback *cb)
18411da177e4SLinus Torvalds {
18421da177e4SLinus Torvalds 	struct fib6_walker_t *w = (void*)cb->args[0];
18431da177e4SLinus Torvalds 
18441da177e4SLinus Torvalds 	if (w) {
18451da177e4SLinus Torvalds 		cb->args[0] = 0;
18461da177e4SLinus Torvalds 		fib6_walker_unlink(w);
18471da177e4SLinus Torvalds 		kfree(w);
18481da177e4SLinus Torvalds 	}
18491da177e4SLinus Torvalds 	cb->done = (void*)cb->args[1];
18501da177e4SLinus Torvalds 	cb->args[1] = 0;
18511da177e4SLinus Torvalds }
18521da177e4SLinus Torvalds 
18531da177e4SLinus Torvalds static int fib6_dump_done(struct netlink_callback *cb)
18541da177e4SLinus Torvalds {
18551da177e4SLinus Torvalds 	fib6_dump_end(cb);
1856a8f74b22SThomas Graf 	return cb->done ? cb->done(cb) : 0;
18571da177e4SLinus Torvalds }
18581da177e4SLinus Torvalds 
18591da177e4SLinus Torvalds int inet6_dump_fib(struct sk_buff *skb, struct netlink_callback *cb)
18601da177e4SLinus Torvalds {
18611da177e4SLinus Torvalds 	struct rt6_rtnl_dump_arg arg;
18621da177e4SLinus Torvalds 	struct fib6_walker_t *w;
18631da177e4SLinus Torvalds 	int res;
18641da177e4SLinus Torvalds 
18651da177e4SLinus Torvalds 	arg.skb = skb;
18661da177e4SLinus Torvalds 	arg.cb = cb;
18671da177e4SLinus Torvalds 
18681da177e4SLinus Torvalds 	w = (void*)cb->args[0];
18691da177e4SLinus Torvalds 	if (w == NULL) {
18701da177e4SLinus Torvalds 		/* New dump:
18711da177e4SLinus Torvalds 		 *
18721da177e4SLinus Torvalds 		 * 1. hook callback destructor.
18731da177e4SLinus Torvalds 		 */
18741da177e4SLinus Torvalds 		cb->args[1] = (long)cb->done;
18751da177e4SLinus Torvalds 		cb->done = fib6_dump_done;
18761da177e4SLinus Torvalds 
18771da177e4SLinus Torvalds 		/*
18781da177e4SLinus Torvalds 		 * 2. allocate and initialize walker.
18791da177e4SLinus Torvalds 		 */
18809e147a1cSDavid S. Miller 		w = kmalloc(sizeof(*w), GFP_ATOMIC);
18811da177e4SLinus Torvalds 		if (w == NULL)
18821da177e4SLinus Torvalds 			return -ENOMEM;
18831da177e4SLinus Torvalds 		RT6_TRACE("dump<%p", w);
18841da177e4SLinus Torvalds 		memset(w, 0, sizeof(*w));
18851da177e4SLinus Torvalds 		w->root = &ip6_routing_table;
18861da177e4SLinus Torvalds 		w->func = fib6_dump_node;
18871da177e4SLinus Torvalds 		w->args = &arg;
18881da177e4SLinus Torvalds 		cb->args[0] = (long)w;
18891da177e4SLinus Torvalds 		read_lock_bh(&rt6_lock);
18901da177e4SLinus Torvalds 		res = fib6_walk(w);
18911da177e4SLinus Torvalds 		read_unlock_bh(&rt6_lock);
18921da177e4SLinus Torvalds 	} else {
18931da177e4SLinus Torvalds 		w->args = &arg;
18941da177e4SLinus Torvalds 		read_lock_bh(&rt6_lock);
18951da177e4SLinus Torvalds 		res = fib6_walk_continue(w);
18961da177e4SLinus Torvalds 		read_unlock_bh(&rt6_lock);
18971da177e4SLinus Torvalds 	}
18981da177e4SLinus Torvalds #if RT6_DEBUG >= 3
18991da177e4SLinus Torvalds 	if (res <= 0 && skb->len == 0)
19001da177e4SLinus Torvalds 		RT6_TRACE("%p>dump end\n", w);
19011da177e4SLinus Torvalds #endif
19021da177e4SLinus Torvalds 	res = res < 0 ? res : skb->len;
19031da177e4SLinus Torvalds 	/* res < 0 is an error. (really, impossible)
19041da177e4SLinus Torvalds 	   res == 0 means that dump is complete, but skb still can contain data.
19051da177e4SLinus Torvalds 	   res > 0 dump is not complete, but frame is full.
19061da177e4SLinus Torvalds 	 */
19071da177e4SLinus Torvalds 	/* Destroy walker, if dump of this table is complete. */
19081da177e4SLinus Torvalds 	if (res <= 0)
19091da177e4SLinus Torvalds 		fib6_dump_end(cb);
19101da177e4SLinus Torvalds 	return res;
19111da177e4SLinus Torvalds }
19121da177e4SLinus Torvalds 
19131da177e4SLinus Torvalds int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr* nlh, void *arg)
19141da177e4SLinus Torvalds {
19151da177e4SLinus Torvalds 	struct rtattr **rta = arg;
19161da177e4SLinus Torvalds 	int iif = 0;
19171da177e4SLinus Torvalds 	int err = -ENOBUFS;
19181da177e4SLinus Torvalds 	struct sk_buff *skb;
19191da177e4SLinus Torvalds 	struct flowi fl;
19201da177e4SLinus Torvalds 	struct rt6_info *rt;
19211da177e4SLinus Torvalds 
19221da177e4SLinus Torvalds 	skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
19231da177e4SLinus Torvalds 	if (skb == NULL)
19241da177e4SLinus Torvalds 		goto out;
19251da177e4SLinus Torvalds 
19261da177e4SLinus Torvalds 	/* Reserve room for dummy headers, this skb can pass
19271da177e4SLinus Torvalds 	   through good chunk of routing engine.
19281da177e4SLinus Torvalds 	 */
19291da177e4SLinus Torvalds 	skb->mac.raw = skb->data;
19301da177e4SLinus Torvalds 	skb_reserve(skb, MAX_HEADER + sizeof(struct ipv6hdr));
19311da177e4SLinus Torvalds 
19321da177e4SLinus Torvalds 	memset(&fl, 0, sizeof(fl));
19331da177e4SLinus Torvalds 	if (rta[RTA_SRC-1])
19341da177e4SLinus Torvalds 		ipv6_addr_copy(&fl.fl6_src,
19351da177e4SLinus Torvalds 			       (struct in6_addr*)RTA_DATA(rta[RTA_SRC-1]));
19361da177e4SLinus Torvalds 	if (rta[RTA_DST-1])
19371da177e4SLinus Torvalds 		ipv6_addr_copy(&fl.fl6_dst,
19381da177e4SLinus Torvalds 			       (struct in6_addr*)RTA_DATA(rta[RTA_DST-1]));
19391da177e4SLinus Torvalds 
19401da177e4SLinus Torvalds 	if (rta[RTA_IIF-1])
19411da177e4SLinus Torvalds 		memcpy(&iif, RTA_DATA(rta[RTA_IIF-1]), sizeof(int));
19421da177e4SLinus Torvalds 
19431da177e4SLinus Torvalds 	if (iif) {
19441da177e4SLinus Torvalds 		struct net_device *dev;
19451da177e4SLinus Torvalds 		dev = __dev_get_by_index(iif);
19461da177e4SLinus Torvalds 		if (!dev) {
19471da177e4SLinus Torvalds 			err = -ENODEV;
19481da177e4SLinus Torvalds 			goto out_free;
19491da177e4SLinus Torvalds 		}
19501da177e4SLinus Torvalds 	}
19511da177e4SLinus Torvalds 
19521da177e4SLinus Torvalds 	fl.oif = 0;
19531da177e4SLinus Torvalds 	if (rta[RTA_OIF-1])
19541da177e4SLinus Torvalds 		memcpy(&fl.oif, RTA_DATA(rta[RTA_OIF-1]), sizeof(int));
19551da177e4SLinus Torvalds 
19561da177e4SLinus Torvalds 	rt = (struct rt6_info*)ip6_route_output(NULL, &fl);
19571da177e4SLinus Torvalds 
19581da177e4SLinus Torvalds 	skb->dst = &rt->u.dst;
19591da177e4SLinus Torvalds 
19601da177e4SLinus Torvalds 	NETLINK_CB(skb).dst_pid = NETLINK_CB(in_skb).pid;
19611da177e4SLinus Torvalds 	err = rt6_fill_node(skb, rt,
19621da177e4SLinus Torvalds 			    &fl.fl6_dst, &fl.fl6_src,
19631da177e4SLinus Torvalds 			    iif,
19641da177e4SLinus Torvalds 			    RTM_NEWROUTE, NETLINK_CB(in_skb).pid,
19650d51aa80SJamal Hadi Salim 			    nlh->nlmsg_seq, 0, 0);
19661da177e4SLinus Torvalds 	if (err < 0) {
19671da177e4SLinus Torvalds 		err = -EMSGSIZE;
19681da177e4SLinus Torvalds 		goto out_free;
19691da177e4SLinus Torvalds 	}
19701da177e4SLinus Torvalds 
19711da177e4SLinus Torvalds 	err = netlink_unicast(rtnl, skb, NETLINK_CB(in_skb).pid, MSG_DONTWAIT);
19721da177e4SLinus Torvalds 	if (err > 0)
19731da177e4SLinus Torvalds 		err = 0;
19741da177e4SLinus Torvalds out:
19751da177e4SLinus Torvalds 	return err;
19761da177e4SLinus Torvalds out_free:
19771da177e4SLinus Torvalds 	kfree_skb(skb);
19781da177e4SLinus Torvalds 	goto out;
19791da177e4SLinus Torvalds }
19801da177e4SLinus Torvalds 
19810d51aa80SJamal Hadi Salim void inet6_rt_notify(int event, struct rt6_info *rt, struct nlmsghdr *nlh,
19820d51aa80SJamal Hadi Salim 			struct netlink_skb_parms *req)
19831da177e4SLinus Torvalds {
19841da177e4SLinus Torvalds 	struct sk_buff *skb;
19851da177e4SLinus Torvalds 	int size = NLMSG_SPACE(sizeof(struct rtmsg)+256);
19860d51aa80SJamal Hadi Salim 	u32 pid = current->pid;
19870d51aa80SJamal Hadi Salim 	u32 seq = 0;
19880d51aa80SJamal Hadi Salim 
19890d51aa80SJamal Hadi Salim 	if (req)
19900d51aa80SJamal Hadi Salim 		pid = req->pid;
19910d51aa80SJamal Hadi Salim 	if (nlh)
19920d51aa80SJamal Hadi Salim 		seq = nlh->nlmsg_seq;
19931da177e4SLinus Torvalds 
19941da177e4SLinus Torvalds 	skb = alloc_skb(size, gfp_any());
19951da177e4SLinus Torvalds 	if (!skb) {
1996ac6d439dSPatrick McHardy 		netlink_set_err(rtnl, 0, RTNLGRP_IPV6_ROUTE, ENOBUFS);
19971da177e4SLinus Torvalds 		return;
19981da177e4SLinus Torvalds 	}
19990d51aa80SJamal Hadi Salim 	if (rt6_fill_node(skb, rt, NULL, NULL, 0, event, pid, seq, 0, 0) < 0) {
20001da177e4SLinus Torvalds 		kfree_skb(skb);
2001ac6d439dSPatrick McHardy 		netlink_set_err(rtnl, 0, RTNLGRP_IPV6_ROUTE, EINVAL);
20021da177e4SLinus Torvalds 		return;
20031da177e4SLinus Torvalds 	}
2004ac6d439dSPatrick McHardy 	NETLINK_CB(skb).dst_group = RTNLGRP_IPV6_ROUTE;
2005ac6d439dSPatrick McHardy 	netlink_broadcast(rtnl, skb, 0, RTNLGRP_IPV6_ROUTE, gfp_any());
20061da177e4SLinus Torvalds }
20071da177e4SLinus Torvalds 
20081da177e4SLinus Torvalds /*
20091da177e4SLinus Torvalds  *	/proc
20101da177e4SLinus Torvalds  */
20111da177e4SLinus Torvalds 
20121da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS
20131da177e4SLinus Torvalds 
20141da177e4SLinus Torvalds #define RT6_INFO_LEN (32 + 4 + 32 + 4 + 32 + 40 + 5 + 1)
20151da177e4SLinus Torvalds 
20161da177e4SLinus Torvalds struct rt6_proc_arg
20171da177e4SLinus Torvalds {
20181da177e4SLinus Torvalds 	char *buffer;
20191da177e4SLinus Torvalds 	int offset;
20201da177e4SLinus Torvalds 	int length;
20211da177e4SLinus Torvalds 	int skip;
20221da177e4SLinus Torvalds 	int len;
20231da177e4SLinus Torvalds };
20241da177e4SLinus Torvalds 
20251da177e4SLinus Torvalds static int rt6_info_route(struct rt6_info *rt, void *p_arg)
20261da177e4SLinus Torvalds {
20271da177e4SLinus Torvalds 	struct rt6_proc_arg *arg = (struct rt6_proc_arg *) p_arg;
20281da177e4SLinus Torvalds 	int i;
20291da177e4SLinus Torvalds 
20301da177e4SLinus Torvalds 	if (arg->skip < arg->offset / RT6_INFO_LEN) {
20311da177e4SLinus Torvalds 		arg->skip++;
20321da177e4SLinus Torvalds 		return 0;
20331da177e4SLinus Torvalds 	}
20341da177e4SLinus Torvalds 
20351da177e4SLinus Torvalds 	if (arg->len >= arg->length)
20361da177e4SLinus Torvalds 		return 0;
20371da177e4SLinus Torvalds 
20381da177e4SLinus Torvalds 	for (i=0; i<16; i++) {
20391da177e4SLinus Torvalds 		sprintf(arg->buffer + arg->len, "%02x",
20401da177e4SLinus Torvalds 			rt->rt6i_dst.addr.s6_addr[i]);
20411da177e4SLinus Torvalds 		arg->len += 2;
20421da177e4SLinus Torvalds 	}
20431da177e4SLinus Torvalds 	arg->len += sprintf(arg->buffer + arg->len, " %02x ",
20441da177e4SLinus Torvalds 			    rt->rt6i_dst.plen);
20451da177e4SLinus Torvalds 
20461da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES
20471da177e4SLinus Torvalds 	for (i=0; i<16; i++) {
20481da177e4SLinus Torvalds 		sprintf(arg->buffer + arg->len, "%02x",
20491da177e4SLinus Torvalds 			rt->rt6i_src.addr.s6_addr[i]);
20501da177e4SLinus Torvalds 		arg->len += 2;
20511da177e4SLinus Torvalds 	}
20521da177e4SLinus Torvalds 	arg->len += sprintf(arg->buffer + arg->len, " %02x ",
20531da177e4SLinus Torvalds 			    rt->rt6i_src.plen);
20541da177e4SLinus Torvalds #else
20551da177e4SLinus Torvalds 	sprintf(arg->buffer + arg->len,
20561da177e4SLinus Torvalds 		"00000000000000000000000000000000 00 ");
20571da177e4SLinus Torvalds 	arg->len += 36;
20581da177e4SLinus Torvalds #endif
20591da177e4SLinus Torvalds 
20601da177e4SLinus Torvalds 	if (rt->rt6i_nexthop) {
20611da177e4SLinus Torvalds 		for (i=0; i<16; i++) {
20621da177e4SLinus Torvalds 			sprintf(arg->buffer + arg->len, "%02x",
20631da177e4SLinus Torvalds 				rt->rt6i_nexthop->primary_key[i]);
20641da177e4SLinus Torvalds 			arg->len += 2;
20651da177e4SLinus Torvalds 		}
20661da177e4SLinus Torvalds 	} else {
20671da177e4SLinus Torvalds 		sprintf(arg->buffer + arg->len,
20681da177e4SLinus Torvalds 			"00000000000000000000000000000000");
20691da177e4SLinus Torvalds 		arg->len += 32;
20701da177e4SLinus Torvalds 	}
20711da177e4SLinus Torvalds 	arg->len += sprintf(arg->buffer + arg->len,
20721da177e4SLinus Torvalds 			    " %08x %08x %08x %08x %8s\n",
20731da177e4SLinus Torvalds 			    rt->rt6i_metric, atomic_read(&rt->u.dst.__refcnt),
20741da177e4SLinus Torvalds 			    rt->u.dst.__use, rt->rt6i_flags,
20751da177e4SLinus Torvalds 			    rt->rt6i_dev ? rt->rt6i_dev->name : "");
20761da177e4SLinus Torvalds 	return 0;
20771da177e4SLinus Torvalds }
20781da177e4SLinus Torvalds 
20791da177e4SLinus Torvalds static int rt6_proc_info(char *buffer, char **start, off_t offset, int length)
20801da177e4SLinus Torvalds {
20811da177e4SLinus Torvalds 	struct rt6_proc_arg arg;
20821da177e4SLinus Torvalds 	arg.buffer = buffer;
20831da177e4SLinus Torvalds 	arg.offset = offset;
20841da177e4SLinus Torvalds 	arg.length = length;
20851da177e4SLinus Torvalds 	arg.skip = 0;
20861da177e4SLinus Torvalds 	arg.len = 0;
20871da177e4SLinus Torvalds 
20881da177e4SLinus Torvalds 	read_lock_bh(&rt6_lock);
20891da177e4SLinus Torvalds 	fib6_clean_tree(&ip6_routing_table, rt6_info_route, 0, &arg);
20901da177e4SLinus Torvalds 	read_unlock_bh(&rt6_lock);
20911da177e4SLinus Torvalds 
20921da177e4SLinus Torvalds 	*start = buffer;
20931da177e4SLinus Torvalds 	if (offset)
20941da177e4SLinus Torvalds 		*start += offset % RT6_INFO_LEN;
20951da177e4SLinus Torvalds 
20961da177e4SLinus Torvalds 	arg.len -= offset % RT6_INFO_LEN;
20971da177e4SLinus Torvalds 
20981da177e4SLinus Torvalds 	if (arg.len > length)
20991da177e4SLinus Torvalds 		arg.len = length;
21001da177e4SLinus Torvalds 	if (arg.len < 0)
21011da177e4SLinus Torvalds 		arg.len = 0;
21021da177e4SLinus Torvalds 
21031da177e4SLinus Torvalds 	return arg.len;
21041da177e4SLinus Torvalds }
21051da177e4SLinus Torvalds 
21061da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v)
21071da177e4SLinus Torvalds {
21081da177e4SLinus Torvalds 	seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
21091da177e4SLinus Torvalds 		      rt6_stats.fib_nodes, rt6_stats.fib_route_nodes,
21101da177e4SLinus Torvalds 		      rt6_stats.fib_rt_alloc, rt6_stats.fib_rt_entries,
21111da177e4SLinus Torvalds 		      rt6_stats.fib_rt_cache,
21121da177e4SLinus Torvalds 		      atomic_read(&ip6_dst_ops.entries),
21131da177e4SLinus Torvalds 		      rt6_stats.fib_discarded_routes);
21141da177e4SLinus Torvalds 
21151da177e4SLinus Torvalds 	return 0;
21161da177e4SLinus Torvalds }
21171da177e4SLinus Torvalds 
21181da177e4SLinus Torvalds static int rt6_stats_seq_open(struct inode *inode, struct file *file)
21191da177e4SLinus Torvalds {
21201da177e4SLinus Torvalds 	return single_open(file, rt6_stats_seq_show, NULL);
21211da177e4SLinus Torvalds }
21221da177e4SLinus Torvalds 
21231da177e4SLinus Torvalds static struct file_operations rt6_stats_seq_fops = {
21241da177e4SLinus Torvalds 	.owner	 = THIS_MODULE,
21251da177e4SLinus Torvalds 	.open	 = rt6_stats_seq_open,
21261da177e4SLinus Torvalds 	.read	 = seq_read,
21271da177e4SLinus Torvalds 	.llseek	 = seq_lseek,
21281da177e4SLinus Torvalds 	.release = single_release,
21291da177e4SLinus Torvalds };
21301da177e4SLinus Torvalds #endif	/* CONFIG_PROC_FS */
21311da177e4SLinus Torvalds 
21321da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL
21331da177e4SLinus Torvalds 
21341da177e4SLinus Torvalds static int flush_delay;
21351da177e4SLinus Torvalds 
21361da177e4SLinus Torvalds static
21371da177e4SLinus Torvalds int ipv6_sysctl_rtcache_flush(ctl_table *ctl, int write, struct file * filp,
21381da177e4SLinus Torvalds 			      void __user *buffer, size_t *lenp, loff_t *ppos)
21391da177e4SLinus Torvalds {
21401da177e4SLinus Torvalds 	if (write) {
21411da177e4SLinus Torvalds 		proc_dointvec(ctl, write, filp, buffer, lenp, ppos);
21421da177e4SLinus Torvalds 		fib6_run_gc(flush_delay <= 0 ? ~0UL : (unsigned long)flush_delay);
21431da177e4SLinus Torvalds 		return 0;
21441da177e4SLinus Torvalds 	} else
21451da177e4SLinus Torvalds 		return -EINVAL;
21461da177e4SLinus Torvalds }
21471da177e4SLinus Torvalds 
21481da177e4SLinus Torvalds ctl_table ipv6_route_table[] = {
21491da177e4SLinus Torvalds         {
21501da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_FLUSH,
21511da177e4SLinus Torvalds 		.procname	=	"flush",
21521da177e4SLinus Torvalds          	.data		=	&flush_delay,
21531da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
215489c8b3a1SDave Jones 		.mode		=	0200,
21551da177e4SLinus Torvalds          	.proc_handler	=	&ipv6_sysctl_rtcache_flush
21561da177e4SLinus Torvalds 	},
21571da177e4SLinus Torvalds 	{
21581da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_THRESH,
21591da177e4SLinus Torvalds 		.procname	=	"gc_thresh",
21601da177e4SLinus Torvalds          	.data		=	&ip6_dst_ops.gc_thresh,
21611da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
21621da177e4SLinus Torvalds 		.mode		=	0644,
21631da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec,
21641da177e4SLinus Torvalds 	},
21651da177e4SLinus Torvalds 	{
21661da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_MAX_SIZE,
21671da177e4SLinus Torvalds 		.procname	=	"max_size",
21681da177e4SLinus Torvalds          	.data		=	&ip6_rt_max_size,
21691da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
21701da177e4SLinus Torvalds 		.mode		=	0644,
21711da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec,
21721da177e4SLinus Torvalds 	},
21731da177e4SLinus Torvalds 	{
21741da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_MIN_INTERVAL,
21751da177e4SLinus Torvalds 		.procname	=	"gc_min_interval",
21761da177e4SLinus Torvalds          	.data		=	&ip6_rt_gc_min_interval,
21771da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
21781da177e4SLinus Torvalds 		.mode		=	0644,
21791da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
21801da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
21811da177e4SLinus Torvalds 	},
21821da177e4SLinus Torvalds 	{
21831da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_TIMEOUT,
21841da177e4SLinus Torvalds 		.procname	=	"gc_timeout",
21851da177e4SLinus Torvalds          	.data		=	&ip6_rt_gc_timeout,
21861da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
21871da177e4SLinus Torvalds 		.mode		=	0644,
21881da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
21891da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
21901da177e4SLinus Torvalds 	},
21911da177e4SLinus Torvalds 	{
21921da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_INTERVAL,
21931da177e4SLinus Torvalds 		.procname	=	"gc_interval",
21941da177e4SLinus Torvalds          	.data		=	&ip6_rt_gc_interval,
21951da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
21961da177e4SLinus Torvalds 		.mode		=	0644,
21971da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
21981da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
21991da177e4SLinus Torvalds 	},
22001da177e4SLinus Torvalds 	{
22011da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_ELASTICITY,
22021da177e4SLinus Torvalds 		.procname	=	"gc_elasticity",
22031da177e4SLinus Torvalds          	.data		=	&ip6_rt_gc_elasticity,
22041da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
22051da177e4SLinus Torvalds 		.mode		=	0644,
22061da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
22071da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
22081da177e4SLinus Torvalds 	},
22091da177e4SLinus Torvalds 	{
22101da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_MTU_EXPIRES,
22111da177e4SLinus Torvalds 		.procname	=	"mtu_expires",
22121da177e4SLinus Torvalds          	.data		=	&ip6_rt_mtu_expires,
22131da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
22141da177e4SLinus Torvalds 		.mode		=	0644,
22151da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
22161da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
22171da177e4SLinus Torvalds 	},
22181da177e4SLinus Torvalds 	{
22191da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_MIN_ADVMSS,
22201da177e4SLinus Torvalds 		.procname	=	"min_adv_mss",
22211da177e4SLinus Torvalds          	.data		=	&ip6_rt_min_advmss,
22221da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
22231da177e4SLinus Torvalds 		.mode		=	0644,
22241da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_jiffies,
22251da177e4SLinus Torvalds 		.strategy	=	&sysctl_jiffies,
22261da177e4SLinus Torvalds 	},
22271da177e4SLinus Torvalds 	{
22281da177e4SLinus Torvalds 		.ctl_name	=	NET_IPV6_ROUTE_GC_MIN_INTERVAL_MS,
22291da177e4SLinus Torvalds 		.procname	=	"gc_min_interval_ms",
22301da177e4SLinus Torvalds          	.data		=	&ip6_rt_gc_min_interval,
22311da177e4SLinus Torvalds 		.maxlen		=	sizeof(int),
22321da177e4SLinus Torvalds 		.mode		=	0644,
22331da177e4SLinus Torvalds          	.proc_handler	=	&proc_dointvec_ms_jiffies,
22341da177e4SLinus Torvalds 		.strategy	=	&sysctl_ms_jiffies,
22351da177e4SLinus Torvalds 	},
22361da177e4SLinus Torvalds 	{ .ctl_name = 0 }
22371da177e4SLinus Torvalds };
22381da177e4SLinus Torvalds 
22391da177e4SLinus Torvalds #endif
22401da177e4SLinus Torvalds 
22411da177e4SLinus Torvalds void __init ip6_route_init(void)
22421da177e4SLinus Torvalds {
22431da177e4SLinus Torvalds 	struct proc_dir_entry *p;
22441da177e4SLinus Torvalds 
22451da177e4SLinus Torvalds 	ip6_dst_ops.kmem_cachep = kmem_cache_create("ip6_dst_cache",
22461da177e4SLinus Torvalds 						     sizeof(struct rt6_info),
22471da177e4SLinus Torvalds 						     0, SLAB_HWCACHE_ALIGN,
22481da177e4SLinus Torvalds 						     NULL, NULL);
22491da177e4SLinus Torvalds 	if (!ip6_dst_ops.kmem_cachep)
22501da177e4SLinus Torvalds 		panic("cannot create ip6_dst_cache");
22511da177e4SLinus Torvalds 
22521da177e4SLinus Torvalds 	fib6_init();
22531da177e4SLinus Torvalds #ifdef 	CONFIG_PROC_FS
22541da177e4SLinus Torvalds 	p = proc_net_create("ipv6_route", 0, rt6_proc_info);
22551da177e4SLinus Torvalds 	if (p)
22561da177e4SLinus Torvalds 		p->owner = THIS_MODULE;
22571da177e4SLinus Torvalds 
22581da177e4SLinus Torvalds 	proc_net_fops_create("rt6_stats", S_IRUGO, &rt6_stats_seq_fops);
22591da177e4SLinus Torvalds #endif
22601da177e4SLinus Torvalds #ifdef CONFIG_XFRM
22611da177e4SLinus Torvalds 	xfrm6_init();
22621da177e4SLinus Torvalds #endif
22631da177e4SLinus Torvalds }
22641da177e4SLinus Torvalds 
22651da177e4SLinus Torvalds void ip6_route_cleanup(void)
22661da177e4SLinus Torvalds {
22671da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS
22681da177e4SLinus Torvalds 	proc_net_remove("ipv6_route");
22691da177e4SLinus Torvalds 	proc_net_remove("rt6_stats");
22701da177e4SLinus Torvalds #endif
22711da177e4SLinus Torvalds #ifdef CONFIG_XFRM
22721da177e4SLinus Torvalds 	xfrm6_fini();
22731da177e4SLinus Torvalds #endif
22741da177e4SLinus Torvalds 	rt6_ifdown(NULL);
22751da177e4SLinus Torvalds 	fib6_gc_cleanup();
22761da177e4SLinus Torvalds 	kmem_cache_destroy(ip6_dst_ops.kmem_cachep);
22771da177e4SLinus Torvalds }
2278