11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * Linux INET6 implementation 31da177e4SLinus Torvalds * FIB front-end. 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 91da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 101da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 111da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 121da177e4SLinus Torvalds */ 131da177e4SLinus Torvalds 141da177e4SLinus Torvalds /* Changes: 151da177e4SLinus Torvalds * 161da177e4SLinus Torvalds * YOSHIFUJI Hideaki @USAGI 171da177e4SLinus Torvalds * reworked default router selection. 181da177e4SLinus Torvalds * - respect outgoing interface 191da177e4SLinus Torvalds * - select from (probably) reachable routers (i.e. 201da177e4SLinus Torvalds * routers in REACHABLE, STALE, DELAY or PROBE states). 211da177e4SLinus Torvalds * - always select the same router if it is (probably) 221da177e4SLinus Torvalds * reachable. otherwise, round-robin the list. 23c0bece9fSYOSHIFUJI Hideaki * Ville Nuorvala 24c0bece9fSYOSHIFUJI Hideaki * Fixed routing subtrees. 251da177e4SLinus Torvalds */ 261da177e4SLinus Torvalds 27f3213831SJoe Perches #define pr_fmt(fmt) "IPv6: " fmt 28f3213831SJoe Perches 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 31bc3b2d7fSPaul Gortmaker #include <linux/export.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/times.h> 341da177e4SLinus Torvalds #include <linux/socket.h> 351da177e4SLinus Torvalds #include <linux/sockios.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/route.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/in6.h> 407bc570c8SYOSHIFUJI Hideaki #include <linux/mroute6.h> 411da177e4SLinus Torvalds #include <linux/init.h> 421da177e4SLinus Torvalds #include <linux/if_arp.h> 431da177e4SLinus Torvalds #include <linux/proc_fs.h> 441da177e4SLinus Torvalds #include <linux/seq_file.h> 455b7c931dSDaniel Lezcano #include <linux/nsproxy.h> 465a0e3ad6STejun Heo #include <linux/slab.h> 4735732d01SWei Wang #include <linux/jhash.h> 48457c4cbcSEric W. Biederman #include <net/net_namespace.h> 491da177e4SLinus Torvalds #include <net/snmp.h> 501da177e4SLinus Torvalds #include <net/ipv6.h> 511da177e4SLinus Torvalds #include <net/ip6_fib.h> 521da177e4SLinus Torvalds #include <net/ip6_route.h> 531da177e4SLinus Torvalds #include <net/ndisc.h> 541da177e4SLinus Torvalds #include <net/addrconf.h> 551da177e4SLinus Torvalds #include <net/tcp.h> 561da177e4SLinus Torvalds #include <linux/rtnetlink.h> 571da177e4SLinus Torvalds #include <net/dst.h> 58904af04dSJiri Benc #include <net/dst_metadata.h> 591da177e4SLinus Torvalds #include <net/xfrm.h> 608d71740cSTom Tucker #include <net/netevent.h> 6121713ebcSThomas Graf #include <net/netlink.h> 623c618c1dSDavid Ahern #include <net/rtnh.h> 6319e42e45SRoopa Prabhu #include <net/lwtunnel.h> 64904af04dSJiri Benc #include <net/ip_tunnels.h> 65ca254490SDavid Ahern #include <net/l3mdev.h> 66eacb9384SRoopa Prabhu #include <net/ip.h> 677c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 701da177e4SLinus Torvalds #include <linux/sysctl.h> 711da177e4SLinus Torvalds #endif 721da177e4SLinus Torvalds 7330d444d3SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type); 7430d444d3SDavid Ahern 7530d444d3SDavid Ahern #define CREATE_TRACE_POINTS 7630d444d3SDavid Ahern #include <trace/events/fib6.h> 7730d444d3SDavid Ahern EXPORT_TRACEPOINT_SYMBOL_GPL(fib6_table_lookup); 7830d444d3SDavid Ahern #undef CREATE_TRACE_POINTS 7930d444d3SDavid Ahern 80afc154e9SHannes Frederic Sowa enum rt6_nud_state { 817e980569SJiri Benc RT6_NUD_FAIL_HARD = -3, 827e980569SJiri Benc RT6_NUD_FAIL_PROBE = -2, 837e980569SJiri Benc RT6_NUD_FAIL_DO_RR = -1, 84afc154e9SHannes Frederic Sowa RT6_NUD_SUCCEED = 1 85afc154e9SHannes Frederic Sowa }; 86afc154e9SHannes Frederic Sowa 871da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie); 880dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst); 89ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst); 901da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *); 911da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *); 921da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *, 931da177e4SLinus Torvalds struct net_device *dev, int how); 94569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops); 951da177e4SLinus Torvalds 961da177e4SLinus Torvalds static int ip6_pkt_discard(struct sk_buff *skb); 97ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb); 987150aedeSKamala R static int ip6_pkt_prohibit(struct sk_buff *skb); 99ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb); 1001da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb); 1016700c270SDavid S. Miller static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 1026700c270SDavid S. Miller struct sk_buff *skb, u32 mtu); 1036700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, 1046700c270SDavid S. Miller struct sk_buff *skb); 105702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 106702cea56SDavid Ahern int strict); 1078d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt); 108d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 1098d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 110d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 11116a16cd3SDavid Ahern int iif, int type, u32 portid, u32 seq, 11216a16cd3SDavid Ahern unsigned int flags); 1137e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res, 11435732d01SWei Wang struct in6_addr *daddr, 11535732d01SWei Wang struct in6_addr *saddr); 1161da177e4SLinus Torvalds 11770ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 1188d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 119b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 120830218c1SDavid Ahern const struct in6_addr *gwaddr, 121830218c1SDavid Ahern struct net_device *dev, 12295c96174SEric Dumazet unsigned int pref); 1238d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 124b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 125830218c1SDavid Ahern const struct in6_addr *gwaddr, 126830218c1SDavid Ahern struct net_device *dev); 12770ceb4f5SYOSHIFUJI Hideaki #endif 12870ceb4f5SYOSHIFUJI Hideaki 1298d0b94afSMartin KaFai Lau struct uncached_list { 1308d0b94afSMartin KaFai Lau spinlock_t lock; 1318d0b94afSMartin KaFai Lau struct list_head head; 1328d0b94afSMartin KaFai Lau }; 1338d0b94afSMartin KaFai Lau 1348d0b94afSMartin KaFai Lau static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list); 1358d0b94afSMartin KaFai Lau 136510c321bSXin Long void rt6_uncached_list_add(struct rt6_info *rt) 1378d0b94afSMartin KaFai Lau { 1388d0b94afSMartin KaFai Lau struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list); 1398d0b94afSMartin KaFai Lau 1408d0b94afSMartin KaFai Lau rt->rt6i_uncached_list = ul; 1418d0b94afSMartin KaFai Lau 1428d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1438d0b94afSMartin KaFai Lau list_add_tail(&rt->rt6i_uncached, &ul->head); 1448d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1458d0b94afSMartin KaFai Lau } 1468d0b94afSMartin KaFai Lau 147510c321bSXin Long void rt6_uncached_list_del(struct rt6_info *rt) 1488d0b94afSMartin KaFai Lau { 1498d0b94afSMartin KaFai Lau if (!list_empty(&rt->rt6i_uncached)) { 1508d0b94afSMartin KaFai Lau struct uncached_list *ul = rt->rt6i_uncached_list; 15181eb8447SWei Wang struct net *net = dev_net(rt->dst.dev); 1528d0b94afSMartin KaFai Lau 1538d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1548d0b94afSMartin KaFai Lau list_del(&rt->rt6i_uncached); 15581eb8447SWei Wang atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache); 1568d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1578d0b94afSMartin KaFai Lau } 1588d0b94afSMartin KaFai Lau } 1598d0b94afSMartin KaFai Lau 1608d0b94afSMartin KaFai Lau static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev) 1618d0b94afSMartin KaFai Lau { 1628d0b94afSMartin KaFai Lau struct net_device *loopback_dev = net->loopback_dev; 1638d0b94afSMartin KaFai Lau int cpu; 1648d0b94afSMartin KaFai Lau 165e332bc67SEric W. Biederman if (dev == loopback_dev) 166e332bc67SEric W. Biederman return; 167e332bc67SEric W. Biederman 1688d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 1698d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 1708d0b94afSMartin KaFai Lau struct rt6_info *rt; 1718d0b94afSMartin KaFai Lau 1728d0b94afSMartin KaFai Lau spin_lock_bh(&ul->lock); 1738d0b94afSMartin KaFai Lau list_for_each_entry(rt, &ul->head, rt6i_uncached) { 1748d0b94afSMartin KaFai Lau struct inet6_dev *rt_idev = rt->rt6i_idev; 1758d0b94afSMartin KaFai Lau struct net_device *rt_dev = rt->dst.dev; 1768d0b94afSMartin KaFai Lau 177e332bc67SEric W. Biederman if (rt_idev->dev == dev) { 1788d0b94afSMartin KaFai Lau rt->rt6i_idev = in6_dev_get(loopback_dev); 1798d0b94afSMartin KaFai Lau in6_dev_put(rt_idev); 1808d0b94afSMartin KaFai Lau } 1818d0b94afSMartin KaFai Lau 182e332bc67SEric W. Biederman if (rt_dev == dev) { 1838d0b94afSMartin KaFai Lau rt->dst.dev = loopback_dev; 1848d0b94afSMartin KaFai Lau dev_hold(rt->dst.dev); 1858d0b94afSMartin KaFai Lau dev_put(rt_dev); 1868d0b94afSMartin KaFai Lau } 1878d0b94afSMartin KaFai Lau } 1888d0b94afSMartin KaFai Lau spin_unlock_bh(&ul->lock); 1898d0b94afSMartin KaFai Lau } 1908d0b94afSMartin KaFai Lau } 1918d0b94afSMartin KaFai Lau 192f8a1b43bSDavid Ahern static inline const void *choose_neigh_daddr(const struct in6_addr *p, 193f894cbf8SDavid S. Miller struct sk_buff *skb, 194f894cbf8SDavid S. Miller const void *daddr) 19539232973SDavid S. Miller { 196a7563f34SDavid S. Miller if (!ipv6_addr_any(p)) 19739232973SDavid S. Miller return (const void *) p; 198f894cbf8SDavid S. Miller else if (skb) 199f894cbf8SDavid S. Miller return &ipv6_hdr(skb)->daddr; 20039232973SDavid S. Miller return daddr; 20139232973SDavid S. Miller } 20239232973SDavid S. Miller 203f8a1b43bSDavid Ahern struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw, 204f8a1b43bSDavid Ahern struct net_device *dev, 205f894cbf8SDavid S. Miller struct sk_buff *skb, 206f894cbf8SDavid S. Miller const void *daddr) 207d3aaeb38SDavid S. Miller { 20839232973SDavid S. Miller struct neighbour *n; 20939232973SDavid S. Miller 210f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(gw, skb, daddr); 211f8a1b43bSDavid Ahern n = __ipv6_neigh_lookup(dev, daddr); 212f83c7790SDavid S. Miller if (n) 213f83c7790SDavid S. Miller return n; 2147adf3246SStefano Brivio 2157adf3246SStefano Brivio n = neigh_create(&nd_tbl, daddr, dev); 2167adf3246SStefano Brivio return IS_ERR(n) ? NULL : n; 217f8a1b43bSDavid Ahern } 218f8a1b43bSDavid Ahern 219f8a1b43bSDavid Ahern static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst, 220f8a1b43bSDavid Ahern struct sk_buff *skb, 221f8a1b43bSDavid Ahern const void *daddr) 222f8a1b43bSDavid Ahern { 223f8a1b43bSDavid Ahern const struct rt6_info *rt = container_of(dst, struct rt6_info, dst); 224f8a1b43bSDavid Ahern 225f8a1b43bSDavid Ahern return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr); 226f83c7790SDavid S. Miller } 227f83c7790SDavid S. Miller 22863fca65dSJulian Anastasov static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr) 22963fca65dSJulian Anastasov { 23063fca65dSJulian Anastasov struct net_device *dev = dst->dev; 23163fca65dSJulian Anastasov struct rt6_info *rt = (struct rt6_info *)dst; 23263fca65dSJulian Anastasov 233f8a1b43bSDavid Ahern daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr); 23463fca65dSJulian Anastasov if (!daddr) 23563fca65dSJulian Anastasov return; 23663fca65dSJulian Anastasov if (dev->flags & (IFF_NOARP | IFF_LOOPBACK)) 23763fca65dSJulian Anastasov return; 23863fca65dSJulian Anastasov if (ipv6_addr_is_multicast((const struct in6_addr *)daddr)) 23963fca65dSJulian Anastasov return; 24063fca65dSJulian Anastasov __ipv6_confirm_neigh(dev, daddr); 24163fca65dSJulian Anastasov } 24263fca65dSJulian Anastasov 2439a7ec3a9SDaniel Lezcano static struct dst_ops ip6_dst_ops_template = { 2441da177e4SLinus Torvalds .family = AF_INET6, 2451da177e4SLinus Torvalds .gc = ip6_dst_gc, 2461da177e4SLinus Torvalds .gc_thresh = 1024, 2471da177e4SLinus Torvalds .check = ip6_dst_check, 2480dbaee3bSDavid S. Miller .default_advmss = ip6_default_advmss, 249ebb762f2SSteffen Klassert .mtu = ip6_mtu, 250d4ead6b3SDavid Ahern .cow_metrics = dst_cow_metrics_generic, 2511da177e4SLinus Torvalds .destroy = ip6_dst_destroy, 2521da177e4SLinus Torvalds .ifdown = ip6_dst_ifdown, 2531da177e4SLinus Torvalds .negative_advice = ip6_negative_advice, 2541da177e4SLinus Torvalds .link_failure = ip6_link_failure, 2551da177e4SLinus Torvalds .update_pmtu = ip6_rt_update_pmtu, 2566e157b6aSDavid S. Miller .redirect = rt6_do_redirect, 2579f8955ccSEric W. Biederman .local_out = __ip6_local_out, 258f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 25963fca65dSJulian Anastasov .confirm_neigh = ip6_confirm_neigh, 2601da177e4SLinus Torvalds }; 2611da177e4SLinus Torvalds 262ebb762f2SSteffen Klassert static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst) 263ec831ea7SRoland Dreier { 264618f9bc7SSteffen Klassert unsigned int mtu = dst_metric_raw(dst, RTAX_MTU); 265618f9bc7SSteffen Klassert 266618f9bc7SSteffen Klassert return mtu ? : dst->dev->mtu; 267ec831ea7SRoland Dreier } 268ec831ea7SRoland Dreier 2696700c270SDavid S. Miller static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk, 2706700c270SDavid S. Miller struct sk_buff *skb, u32 mtu) 27114e50e57SDavid S. Miller { 27214e50e57SDavid S. Miller } 27314e50e57SDavid S. Miller 2746700c270SDavid S. Miller static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk, 2756700c270SDavid S. Miller struct sk_buff *skb) 276b587ee3bSDavid S. Miller { 277b587ee3bSDavid S. Miller } 278b587ee3bSDavid S. Miller 27914e50e57SDavid S. Miller static struct dst_ops ip6_dst_blackhole_ops = { 28014e50e57SDavid S. Miller .family = AF_INET6, 28114e50e57SDavid S. Miller .destroy = ip6_dst_destroy, 28214e50e57SDavid S. Miller .check = ip6_dst_check, 283ebb762f2SSteffen Klassert .mtu = ip6_blackhole_mtu, 284214f45c9SEric Dumazet .default_advmss = ip6_default_advmss, 28514e50e57SDavid S. Miller .update_pmtu = ip6_rt_blackhole_update_pmtu, 286b587ee3bSDavid S. Miller .redirect = ip6_rt_blackhole_redirect, 2870a1f5962SMartin KaFai Lau .cow_metrics = dst_cow_metrics_generic, 288f8a1b43bSDavid Ahern .neigh_lookup = ip6_dst_neigh_lookup, 28914e50e57SDavid S. Miller }; 29014e50e57SDavid S. Miller 29162fa8a84SDavid S. Miller static const u32 ip6_template_metrics[RTAX_MAX] = { 29214edd87dSLi RongQing [RTAX_HOPLIMIT - 1] = 0, 29362fa8a84SDavid S. Miller }; 29462fa8a84SDavid S. Miller 2958d1c802bSDavid Ahern static const struct fib6_info fib6_null_entry_template = { 29693c2fb25SDavid Ahern .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP), 29793c2fb25SDavid Ahern .fib6_protocol = RTPROT_KERNEL, 29893c2fb25SDavid Ahern .fib6_metric = ~(u32)0, 299f05713e0SEric Dumazet .fib6_ref = REFCOUNT_INIT(1), 300421842edSDavid Ahern .fib6_type = RTN_UNREACHABLE, 301421842edSDavid Ahern .fib6_metrics = (struct dst_metrics *)&dst_default_metrics, 302421842edSDavid Ahern }; 303421842edSDavid Ahern 304fb0af4c7SEric Dumazet static const struct rt6_info ip6_null_entry_template = { 3051da177e4SLinus Torvalds .dst = { 3061da177e4SLinus Torvalds .__refcnt = ATOMIC_INIT(1), 3071da177e4SLinus Torvalds .__use = 1, 3082c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 3091da177e4SLinus Torvalds .error = -ENETUNREACH, 3101da177e4SLinus Torvalds .input = ip6_pkt_discard, 3111da177e4SLinus Torvalds .output = ip6_pkt_discard_out, 3121da177e4SLinus Torvalds }, 3131da177e4SLinus Torvalds .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 3141da177e4SLinus Torvalds }; 3151da177e4SLinus Torvalds 316101367c2SThomas Graf #ifdef CONFIG_IPV6_MULTIPLE_TABLES 317101367c2SThomas Graf 318fb0af4c7SEric Dumazet static const struct rt6_info ip6_prohibit_entry_template = { 319101367c2SThomas Graf .dst = { 320101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 321101367c2SThomas Graf .__use = 1, 3222c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 323101367c2SThomas Graf .error = -EACCES, 3249ce8ade0SThomas Graf .input = ip6_pkt_prohibit, 3259ce8ade0SThomas Graf .output = ip6_pkt_prohibit_out, 326101367c2SThomas Graf }, 327101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 328101367c2SThomas Graf }; 329101367c2SThomas Graf 330fb0af4c7SEric Dumazet static const struct rt6_info ip6_blk_hole_entry_template = { 331101367c2SThomas Graf .dst = { 332101367c2SThomas Graf .__refcnt = ATOMIC_INIT(1), 333101367c2SThomas Graf .__use = 1, 3342c20cbd7SNicolas Dichtel .obsolete = DST_OBSOLETE_FORCE_CHK, 335101367c2SThomas Graf .error = -EINVAL, 336352e512cSHerbert Xu .input = dst_discard, 337ede2059dSEric W. Biederman .output = dst_discard_out, 338101367c2SThomas Graf }, 339101367c2SThomas Graf .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP), 340101367c2SThomas Graf }; 341101367c2SThomas Graf 342101367c2SThomas Graf #endif 343101367c2SThomas Graf 344ebfa45f0SMartin KaFai Lau static void rt6_info_init(struct rt6_info *rt) 345ebfa45f0SMartin KaFai Lau { 346ebfa45f0SMartin KaFai Lau struct dst_entry *dst = &rt->dst; 347ebfa45f0SMartin KaFai Lau 348ebfa45f0SMartin KaFai Lau memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst)); 349ebfa45f0SMartin KaFai Lau INIT_LIST_HEAD(&rt->rt6i_uncached); 350ebfa45f0SMartin KaFai Lau } 351ebfa45f0SMartin KaFai Lau 3521da177e4SLinus Torvalds /* allocate dst with ip6_dst_ops */ 35393531c67SDavid Ahern struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev, 354ad706862SMartin KaFai Lau int flags) 3551da177e4SLinus Torvalds { 35697bab73fSDavid S. Miller struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev, 357b2a9c0edSWei Wang 1, DST_OBSOLETE_FORCE_CHK, flags); 358cf911662SDavid S. Miller 35981eb8447SWei Wang if (rt) { 360ebfa45f0SMartin KaFai Lau rt6_info_init(rt); 36181eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 36281eb8447SWei Wang } 3638104891bSSteffen Klassert 364cf911662SDavid S. Miller return rt; 3651da177e4SLinus Torvalds } 3669ab179d8SDavid Ahern EXPORT_SYMBOL(ip6_dst_alloc); 367d52d3997SMartin KaFai Lau 3681da177e4SLinus Torvalds static void ip6_dst_destroy(struct dst_entry *dst) 3691da177e4SLinus Torvalds { 3701da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 371a68886a6SDavid Ahern struct fib6_info *from; 3728d0b94afSMartin KaFai Lau struct inet6_dev *idev; 3731da177e4SLinus Torvalds 3741620a336SDavid Ahern ip_dst_metrics_put(dst); 3758d0b94afSMartin KaFai Lau rt6_uncached_list_del(rt); 3768d0b94afSMartin KaFai Lau 3778d0b94afSMartin KaFai Lau idev = rt->rt6i_idev; 37838308473SDavid S. Miller if (idev) { 3791da177e4SLinus Torvalds rt->rt6i_idev = NULL; 3801da177e4SLinus Torvalds in6_dev_put(idev); 3811da177e4SLinus Torvalds } 3821716a961SGao feng 3830e233874SEric Dumazet from = xchg((__force struct fib6_info **)&rt->from, NULL); 38493531c67SDavid Ahern fib6_info_release(from); 385b3419363SDavid S. Miller } 386b3419363SDavid S. Miller 3871da177e4SLinus Torvalds static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev, 3881da177e4SLinus Torvalds int how) 3891da177e4SLinus Torvalds { 3901da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *)dst; 3911da177e4SLinus Torvalds struct inet6_dev *idev = rt->rt6i_idev; 3925a3e55d6SDenis V. Lunev struct net_device *loopback_dev = 393c346dca1SYOSHIFUJI Hideaki dev_net(dev)->loopback_dev; 3941da177e4SLinus Torvalds 395e5645f51SWei Wang if (idev && idev->dev != loopback_dev) { 396e5645f51SWei Wang struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev); 39738308473SDavid S. Miller if (loopback_idev) { 3981da177e4SLinus Torvalds rt->rt6i_idev = loopback_idev; 3991da177e4SLinus Torvalds in6_dev_put(idev); 4001da177e4SLinus Torvalds } 4011da177e4SLinus Torvalds } 40297cac082SDavid S. Miller } 4031da177e4SLinus Torvalds 4045973fb1eSMartin KaFai Lau static bool __rt6_check_expired(const struct rt6_info *rt) 4055973fb1eSMartin KaFai Lau { 4065973fb1eSMartin KaFai Lau if (rt->rt6i_flags & RTF_EXPIRES) 4075973fb1eSMartin KaFai Lau return time_after(jiffies, rt->dst.expires); 4085973fb1eSMartin KaFai Lau else 4095973fb1eSMartin KaFai Lau return false; 4105973fb1eSMartin KaFai Lau } 4115973fb1eSMartin KaFai Lau 412a50feda5SEric Dumazet static bool rt6_check_expired(const struct rt6_info *rt) 4131da177e4SLinus Torvalds { 414a68886a6SDavid Ahern struct fib6_info *from; 415a68886a6SDavid Ahern 416a68886a6SDavid Ahern from = rcu_dereference(rt->from); 417a68886a6SDavid Ahern 4181716a961SGao feng if (rt->rt6i_flags & RTF_EXPIRES) { 4191716a961SGao feng if (time_after(jiffies, rt->dst.expires)) 420a50feda5SEric Dumazet return true; 421a68886a6SDavid Ahern } else if (from) { 4221e2ea8adSXin Long return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK || 423a68886a6SDavid Ahern fib6_check_expired(from); 4241716a961SGao feng } 425a50feda5SEric Dumazet return false; 4261da177e4SLinus Torvalds } 4271da177e4SLinus Torvalds 428b1d40991SDavid Ahern void fib6_select_path(const struct net *net, struct fib6_result *res, 429b1d40991SDavid Ahern struct flowi6 *fl6, int oif, bool have_oif_match, 430b1d40991SDavid Ahern const struct sk_buff *skb, int strict) 43151ebd318SNicolas Dichtel { 4328d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 433b1d40991SDavid Ahern struct fib6_info *match = res->f6i; 434b1d40991SDavid Ahern 435b1d40991SDavid Ahern if (!match->fib6_nsiblings || have_oif_match) 436b1d40991SDavid Ahern goto out; 43751ebd318SNicolas Dichtel 438b673d6ccSJakub Sitnicki /* We might have already computed the hash for ICMPv6 errors. In such 439b673d6ccSJakub Sitnicki * case it will always be non-zero. Otherwise now is the time to do it. 440b673d6ccSJakub Sitnicki */ 441b673d6ccSJakub Sitnicki if (!fl6->mp_hash) 442b4bac172SDavid Ahern fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL); 443b673d6ccSJakub Sitnicki 444ad1601aeSDavid Ahern if (fl6->mp_hash <= atomic_read(&match->fib6_nh.fib_nh_upper_bound)) 445b1d40991SDavid Ahern goto out; 446bbfcd776SIdo Schimmel 44793c2fb25SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings, 44893c2fb25SDavid Ahern fib6_siblings) { 449702cea56SDavid Ahern const struct fib6_nh *nh = &sibling->fib6_nh; 4505e670d84SDavid Ahern int nh_upper_bound; 4515e670d84SDavid Ahern 452702cea56SDavid Ahern nh_upper_bound = atomic_read(&nh->fib_nh_upper_bound); 4535e670d84SDavid Ahern if (fl6->mp_hash > nh_upper_bound) 4543d709f69SIdo Schimmel continue; 455702cea56SDavid Ahern if (rt6_score_route(nh, sibling->fib6_flags, oif, strict) < 0) 45652bd4c0cSNicolas Dichtel break; 45751ebd318SNicolas Dichtel match = sibling; 45851ebd318SNicolas Dichtel break; 45951ebd318SNicolas Dichtel } 4603d709f69SIdo Schimmel 461b1d40991SDavid Ahern out: 462b1d40991SDavid Ahern res->f6i = match; 463b1d40991SDavid Ahern res->nh = &match->fib6_nh; 46451ebd318SNicolas Dichtel } 46551ebd318SNicolas Dichtel 4661da177e4SLinus Torvalds /* 46766f5d6ceSWei Wang * Route lookup. rcu_read_lock() should be held. 4681da177e4SLinus Torvalds */ 4691da177e4SLinus Torvalds 4700c59d006SDavid Ahern static bool __rt6_device_match(struct net *net, const struct fib6_nh *nh, 4710c59d006SDavid Ahern const struct in6_addr *saddr, int oif, int flags) 4720c59d006SDavid Ahern { 4730c59d006SDavid Ahern const struct net_device *dev; 4740c59d006SDavid Ahern 4750c59d006SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 4760c59d006SDavid Ahern return false; 4770c59d006SDavid Ahern 4780c59d006SDavid Ahern dev = nh->fib_nh_dev; 4790c59d006SDavid Ahern if (oif) { 4800c59d006SDavid Ahern if (dev->ifindex == oif) 4810c59d006SDavid Ahern return true; 4820c59d006SDavid Ahern } else { 4830c59d006SDavid Ahern if (ipv6_chk_addr(net, saddr, dev, 4840c59d006SDavid Ahern flags & RT6_LOOKUP_F_IFACE)) 4850c59d006SDavid Ahern return true; 4860c59d006SDavid Ahern } 4870c59d006SDavid Ahern 4880c59d006SDavid Ahern return false; 4890c59d006SDavid Ahern } 4900c59d006SDavid Ahern 49175ef7389SDavid Ahern static void rt6_device_match(struct net *net, struct fib6_result *res, 49275ef7389SDavid Ahern const struct in6_addr *saddr, int oif, int flags) 4931da177e4SLinus Torvalds { 49475ef7389SDavid Ahern struct fib6_info *f6i = res->f6i; 49575ef7389SDavid Ahern struct fib6_info *spf6i; 49675ef7389SDavid Ahern struct fib6_nh *nh; 4971da177e4SLinus Torvalds 49875ef7389SDavid Ahern if (!oif && ipv6_addr_any(saddr)) { 49975ef7389SDavid Ahern nh = &f6i->fib6_nh; 5007d21fec9SDavid Ahern if (!(nh->fib_nh_flags & RTNH_F_DEAD)) 5017d21fec9SDavid Ahern goto out; 5021da177e4SLinus Torvalds } 5031da177e4SLinus Torvalds 50475ef7389SDavid Ahern for (spf6i = f6i; spf6i; spf6i = rcu_dereference(spf6i->fib6_next)) { 50575ef7389SDavid Ahern nh = &spf6i->fib6_nh; 50675ef7389SDavid Ahern if (__rt6_device_match(net, nh, saddr, oif, flags)) { 50775ef7389SDavid Ahern res->f6i = spf6i; 5087d21fec9SDavid Ahern goto out; 50975ef7389SDavid Ahern } 51075ef7389SDavid Ahern } 5111da177e4SLinus Torvalds 51275ef7389SDavid Ahern if (oif && flags & RT6_LOOKUP_F_IFACE) { 51375ef7389SDavid Ahern res->f6i = net->ipv6.fib6_null_entry; 5147d21fec9SDavid Ahern nh = &res->f6i->fib6_nh; 5157d21fec9SDavid Ahern goto out; 51675ef7389SDavid Ahern } 51775ef7389SDavid Ahern 5187d21fec9SDavid Ahern nh = &f6i->fib6_nh; 5197d21fec9SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) { 52075ef7389SDavid Ahern res->f6i = net->ipv6.fib6_null_entry; 5217d21fec9SDavid Ahern nh = &res->f6i->fib6_nh; 52275ef7389SDavid Ahern } 5237d21fec9SDavid Ahern out: 5247d21fec9SDavid Ahern res->nh = nh; 5257d21fec9SDavid Ahern res->fib6_type = res->f6i->fib6_type; 5267d21fec9SDavid Ahern res->fib6_flags = res->f6i->fib6_flags; 5271da177e4SLinus Torvalds } 5281da177e4SLinus Torvalds 52927097255SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 530c2f17e82SHannes Frederic Sowa struct __rt6_probe_work { 531c2f17e82SHannes Frederic Sowa struct work_struct work; 532c2f17e82SHannes Frederic Sowa struct in6_addr target; 533c2f17e82SHannes Frederic Sowa struct net_device *dev; 534c2f17e82SHannes Frederic Sowa }; 535c2f17e82SHannes Frederic Sowa 536c2f17e82SHannes Frederic Sowa static void rt6_probe_deferred(struct work_struct *w) 537c2f17e82SHannes Frederic Sowa { 538c2f17e82SHannes Frederic Sowa struct in6_addr mcaddr; 539c2f17e82SHannes Frederic Sowa struct __rt6_probe_work *work = 540c2f17e82SHannes Frederic Sowa container_of(w, struct __rt6_probe_work, work); 541c2f17e82SHannes Frederic Sowa 542c2f17e82SHannes Frederic Sowa addrconf_addr_solict_mult(&work->target, &mcaddr); 543adc176c5SErik Nordmark ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0); 544c2f17e82SHannes Frederic Sowa dev_put(work->dev); 545662f5533SMichael Büsch kfree(work); 546c2f17e82SHannes Frederic Sowa } 547c2f17e82SHannes Frederic Sowa 548cc3a86c8SDavid Ahern static void rt6_probe(struct fib6_nh *fib6_nh) 54927097255SYOSHIFUJI Hideaki { 550f547fac6SSabrina Dubroca struct __rt6_probe_work *work = NULL; 5515e670d84SDavid Ahern const struct in6_addr *nh_gw; 552f2c31e32SEric Dumazet struct neighbour *neigh; 5535e670d84SDavid Ahern struct net_device *dev; 554f547fac6SSabrina Dubroca struct inet6_dev *idev; 5555e670d84SDavid Ahern 55627097255SYOSHIFUJI Hideaki /* 55727097255SYOSHIFUJI Hideaki * Okay, this does not seem to be appropriate 55827097255SYOSHIFUJI Hideaki * for now, however, we need to check if it 55927097255SYOSHIFUJI Hideaki * is really so; aka Router Reachability Probing. 56027097255SYOSHIFUJI Hideaki * 56127097255SYOSHIFUJI Hideaki * Router Reachability Probe MUST be rate-limited 56227097255SYOSHIFUJI Hideaki * to no more than one per minute. 56327097255SYOSHIFUJI Hideaki */ 564cc3a86c8SDavid Ahern if (fib6_nh->fib_nh_gw_family) 565fdd6681dSAmerigo Wang return; 5665e670d84SDavid Ahern 567cc3a86c8SDavid Ahern nh_gw = &fib6_nh->fib_nh_gw6; 568cc3a86c8SDavid Ahern dev = fib6_nh->fib_nh_dev; 5692152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 570f547fac6SSabrina Dubroca idev = __in6_dev_get(dev); 5715e670d84SDavid Ahern neigh = __ipv6_neigh_lookup_noref(dev, nh_gw); 5722152caeaSYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 5738d6c31bfSMartin KaFai Lau if (neigh->nud_state & NUD_VALID) 5748d6c31bfSMartin KaFai Lau goto out; 5758d6c31bfSMartin KaFai Lau 5762152caeaSYOSHIFUJI Hideaki / 吉藤英明 write_lock(&neigh->lock); 577990edb42SMartin KaFai Lau if (!(neigh->nud_state & NUD_VALID) && 578990edb42SMartin KaFai Lau time_after(jiffies, 579dcd1f572SDavid Ahern neigh->updated + idev->cnf.rtr_probe_interval)) { 580c2f17e82SHannes Frederic Sowa work = kmalloc(sizeof(*work), GFP_ATOMIC); 581990edb42SMartin KaFai Lau if (work) 5827e980569SJiri Benc __neigh_set_probe_once(neigh); 583990edb42SMartin KaFai Lau } 584c2f17e82SHannes Frederic Sowa write_unlock(&neigh->lock); 585cc3a86c8SDavid Ahern } else if (time_after(jiffies, fib6_nh->last_probe + 586f547fac6SSabrina Dubroca idev->cnf.rtr_probe_interval)) { 587990edb42SMartin KaFai Lau work = kmalloc(sizeof(*work), GFP_ATOMIC); 588990edb42SMartin KaFai Lau } 589c2f17e82SHannes Frederic Sowa 590c2f17e82SHannes Frederic Sowa if (work) { 591cc3a86c8SDavid Ahern fib6_nh->last_probe = jiffies; 592c2f17e82SHannes Frederic Sowa INIT_WORK(&work->work, rt6_probe_deferred); 5935e670d84SDavid Ahern work->target = *nh_gw; 5945e670d84SDavid Ahern dev_hold(dev); 5955e670d84SDavid Ahern work->dev = dev; 596c2f17e82SHannes Frederic Sowa schedule_work(&work->work); 597c2f17e82SHannes Frederic Sowa } 598990edb42SMartin KaFai Lau 5998d6c31bfSMartin KaFai Lau out: 6002152caeaSYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 601f2c31e32SEric Dumazet } 60227097255SYOSHIFUJI Hideaki #else 603cc3a86c8SDavid Ahern static inline void rt6_probe(struct fib6_nh *fib6_nh) 60427097255SYOSHIFUJI Hideaki { 60527097255SYOSHIFUJI Hideaki } 60627097255SYOSHIFUJI Hideaki #endif 60727097255SYOSHIFUJI Hideaki 6081da177e4SLinus Torvalds /* 609554cfb7eSYOSHIFUJI Hideaki * Default Router Selection (RFC 2461 6.3.6) 6101da177e4SLinus Torvalds */ 6111ba9a895SDavid Ahern static enum rt6_nud_state rt6_check_neigh(const struct fib6_nh *fib6_nh) 6121da177e4SLinus Torvalds { 613afc154e9SHannes Frederic Sowa enum rt6_nud_state ret = RT6_NUD_FAIL_HARD; 6145e670d84SDavid Ahern struct neighbour *neigh; 615f2c31e32SEric Dumazet 616145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_lock_bh(); 6171ba9a895SDavid Ahern neigh = __ipv6_neigh_lookup_noref(fib6_nh->fib_nh_dev, 6181ba9a895SDavid Ahern &fib6_nh->fib_nh_gw6); 619145a3621SYOSHIFUJI Hideaki / 吉藤英明 if (neigh) { 620145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_lock(&neigh->lock); 621554cfb7eSYOSHIFUJI Hideaki if (neigh->nud_state & NUD_VALID) 622afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 623398bcbebSYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 624a5a81f0bSPaul Marks else if (!(neigh->nud_state & NUD_FAILED)) 625afc154e9SHannes Frederic Sowa ret = RT6_NUD_SUCCEED; 6267e980569SJiri Benc else 6277e980569SJiri Benc ret = RT6_NUD_FAIL_PROBE; 628398bcbebSYOSHIFUJI Hideaki #endif 629145a3621SYOSHIFUJI Hideaki / 吉藤英明 read_unlock(&neigh->lock); 630afc154e9SHannes Frederic Sowa } else { 631afc154e9SHannes Frederic Sowa ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ? 6327e980569SJiri Benc RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR; 633a5a81f0bSPaul Marks } 634145a3621SYOSHIFUJI Hideaki / 吉藤英明 rcu_read_unlock_bh(); 635145a3621SYOSHIFUJI Hideaki / 吉藤英明 636a5a81f0bSPaul Marks return ret; 6371da177e4SLinus Torvalds } 6381da177e4SLinus Torvalds 639702cea56SDavid Ahern static int rt6_score_route(const struct fib6_nh *nh, u32 fib6_flags, int oif, 640702cea56SDavid Ahern int strict) 641554cfb7eSYOSHIFUJI Hideaki { 6426e1809a5SDavid Ahern int m = 0; 6434d0c5911SYOSHIFUJI Hideaki 6446e1809a5SDavid Ahern if (!oif || nh->fib_nh_dev->ifindex == oif) 6456e1809a5SDavid Ahern m = 2; 6466e1809a5SDavid Ahern 64777d16f45SYOSHIFUJI Hideaki if (!m && (strict & RT6_LOOKUP_F_IFACE)) 648afc154e9SHannes Frederic Sowa return RT6_NUD_FAIL_HARD; 649ebacaaa0SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTER_PREF 650702cea56SDavid Ahern m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(fib6_flags)) << 2; 651ebacaaa0SYOSHIFUJI Hideaki #endif 6521ba9a895SDavid Ahern if ((strict & RT6_LOOKUP_F_REACHABLE) && 653702cea56SDavid Ahern !(fib6_flags & RTF_NONEXTHOP) && nh->fib_nh_gw_family) { 6541ba9a895SDavid Ahern int n = rt6_check_neigh(nh); 655afc154e9SHannes Frederic Sowa if (n < 0) 656afc154e9SHannes Frederic Sowa return n; 657afc154e9SHannes Frederic Sowa } 658554cfb7eSYOSHIFUJI Hideaki return m; 659554cfb7eSYOSHIFUJI Hideaki } 660554cfb7eSYOSHIFUJI Hideaki 66128679ed1SDavid Ahern static bool find_match(struct fib6_nh *nh, u32 fib6_flags, 66228679ed1SDavid Ahern int oif, int strict, int *mpri, bool *do_rr) 663554cfb7eSYOSHIFUJI Hideaki { 664afc154e9SHannes Frederic Sowa bool match_do_rr = false; 66528679ed1SDavid Ahern bool rc = false; 66628679ed1SDavid Ahern int m; 66735103d11SAndy Gospodarek 66828679ed1SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD) 6698067bb8cSIdo Schimmel goto out; 6708067bb8cSIdo Schimmel 67128679ed1SDavid Ahern if (ip6_ignore_linkdown(nh->fib_nh_dev) && 67228679ed1SDavid Ahern nh->fib_nh_flags & RTNH_F_LINKDOWN && 673d5d32e4bSDavid Ahern !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE)) 67435103d11SAndy Gospodarek goto out; 675554cfb7eSYOSHIFUJI Hideaki 67628679ed1SDavid Ahern m = rt6_score_route(nh, fib6_flags, oif, strict); 6777e980569SJiri Benc if (m == RT6_NUD_FAIL_DO_RR) { 678afc154e9SHannes Frederic Sowa match_do_rr = true; 679afc154e9SHannes Frederic Sowa m = 0; /* lowest valid score */ 6807e980569SJiri Benc } else if (m == RT6_NUD_FAIL_HARD) { 681f11e6659SDavid S. Miller goto out; 6821da177e4SLinus Torvalds } 683f11e6659SDavid S. Miller 684afc154e9SHannes Frederic Sowa if (strict & RT6_LOOKUP_F_REACHABLE) 68528679ed1SDavid Ahern rt6_probe(nh); 686afc154e9SHannes Frederic Sowa 6877e980569SJiri Benc /* note that m can be RT6_NUD_FAIL_PROBE at this point */ 688afc154e9SHannes Frederic Sowa if (m > *mpri) { 689afc154e9SHannes Frederic Sowa *do_rr = match_do_rr; 690afc154e9SHannes Frederic Sowa *mpri = m; 69128679ed1SDavid Ahern rc = true; 692afc154e9SHannes Frederic Sowa } 693f11e6659SDavid S. Miller out: 69428679ed1SDavid Ahern return rc; 6951da177e4SLinus Torvalds } 6961da177e4SLinus Torvalds 697b7bc4b6aSDavid Ahern static void __find_rr_leaf(struct fib6_info *f6i_start, 69830c15f03SDavid Ahern struct fib6_info *nomatch, u32 metric, 699b7bc4b6aSDavid Ahern struct fib6_result *res, struct fib6_info **cont, 70030c15f03SDavid Ahern int oif, int strict, bool *do_rr, int *mpri) 70130c15f03SDavid Ahern { 702b7bc4b6aSDavid Ahern struct fib6_info *f6i; 70330c15f03SDavid Ahern 704b7bc4b6aSDavid Ahern for (f6i = f6i_start; 705b7bc4b6aSDavid Ahern f6i && f6i != nomatch; 706b7bc4b6aSDavid Ahern f6i = rcu_dereference(f6i->fib6_next)) { 70730c15f03SDavid Ahern struct fib6_nh *nh; 70830c15f03SDavid Ahern 709b7bc4b6aSDavid Ahern if (cont && f6i->fib6_metric != metric) { 710b7bc4b6aSDavid Ahern *cont = f6i; 71130c15f03SDavid Ahern return; 71230c15f03SDavid Ahern } 71330c15f03SDavid Ahern 714b7bc4b6aSDavid Ahern if (fib6_check_expired(f6i)) 71530c15f03SDavid Ahern continue; 71630c15f03SDavid Ahern 717b7bc4b6aSDavid Ahern nh = &f6i->fib6_nh; 718b7bc4b6aSDavid Ahern if (find_match(nh, f6i->fib6_flags, oif, strict, mpri, do_rr)) { 719b7bc4b6aSDavid Ahern res->f6i = f6i; 720b7bc4b6aSDavid Ahern res->nh = nh; 7217d21fec9SDavid Ahern res->fib6_flags = f6i->fib6_flags; 7227d21fec9SDavid Ahern res->fib6_type = f6i->fib6_type; 723b7bc4b6aSDavid Ahern } 72430c15f03SDavid Ahern } 72530c15f03SDavid Ahern } 72630c15f03SDavid Ahern 727b7bc4b6aSDavid Ahern static void find_rr_leaf(struct fib6_node *fn, struct fib6_info *leaf, 728b7bc4b6aSDavid Ahern struct fib6_info *rr_head, int oif, int strict, 729b7bc4b6aSDavid Ahern bool *do_rr, struct fib6_result *res) 730f11e6659SDavid S. Miller { 731b7bc4b6aSDavid Ahern u32 metric = rr_head->fib6_metric; 732b7bc4b6aSDavid Ahern struct fib6_info *cont = NULL; 733f11e6659SDavid S. Miller int mpri = -1; 734f11e6659SDavid S. Miller 735b7bc4b6aSDavid Ahern __find_rr_leaf(rr_head, NULL, metric, res, &cont, 73630c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7379fbdcfafSSteffen Klassert 738b7bc4b6aSDavid Ahern __find_rr_leaf(leaf, rr_head, metric, res, &cont, 73930c15f03SDavid Ahern oif, strict, do_rr, &mpri); 7409fbdcfafSSteffen Klassert 741b7bc4b6aSDavid Ahern if (res->f6i || !cont) 742b7bc4b6aSDavid Ahern return; 7439fbdcfafSSteffen Klassert 744b7bc4b6aSDavid Ahern __find_rr_leaf(cont, NULL, metric, res, NULL, 74530c15f03SDavid Ahern oif, strict, do_rr, &mpri); 746f11e6659SDavid S. Miller } 747f11e6659SDavid S. Miller 748b7bc4b6aSDavid Ahern static void rt6_select(struct net *net, struct fib6_node *fn, int oif, 749b7bc4b6aSDavid Ahern struct fib6_result *res, int strict) 750f11e6659SDavid S. Miller { 7518d1c802bSDavid Ahern struct fib6_info *leaf = rcu_dereference(fn->leaf); 752b7bc4b6aSDavid Ahern struct fib6_info *rt0; 753afc154e9SHannes Frederic Sowa bool do_rr = false; 75417ecf590SWei Wang int key_plen; 755f11e6659SDavid S. Miller 756b7bc4b6aSDavid Ahern /* make sure this function or its helpers sets f6i */ 757b7bc4b6aSDavid Ahern res->f6i = NULL; 758b7bc4b6aSDavid Ahern 759421842edSDavid Ahern if (!leaf || leaf == net->ipv6.fib6_null_entry) 760b7bc4b6aSDavid Ahern goto out; 7618d1040e8SWei Wang 76266f5d6ceSWei Wang rt0 = rcu_dereference(fn->rr_ptr); 763f11e6659SDavid S. Miller if (!rt0) 76466f5d6ceSWei Wang rt0 = leaf; 765f11e6659SDavid S. Miller 76617ecf590SWei Wang /* Double check to make sure fn is not an intermediate node 76717ecf590SWei Wang * and fn->leaf does not points to its child's leaf 76817ecf590SWei Wang * (This might happen if all routes under fn are deleted from 76917ecf590SWei Wang * the tree and fib6_repair_tree() is called on the node.) 77017ecf590SWei Wang */ 77193c2fb25SDavid Ahern key_plen = rt0->fib6_dst.plen; 77217ecf590SWei Wang #ifdef CONFIG_IPV6_SUBTREES 77393c2fb25SDavid Ahern if (rt0->fib6_src.plen) 77493c2fb25SDavid Ahern key_plen = rt0->fib6_src.plen; 77517ecf590SWei Wang #endif 77617ecf590SWei Wang if (fn->fn_bit != key_plen) 777b7bc4b6aSDavid Ahern goto out; 77817ecf590SWei Wang 779b7bc4b6aSDavid Ahern find_rr_leaf(fn, leaf, rt0, oif, strict, &do_rr, res); 780afc154e9SHannes Frederic Sowa if (do_rr) { 7818fb11a9aSDavid Ahern struct fib6_info *next = rcu_dereference(rt0->fib6_next); 782f11e6659SDavid S. Miller 783554cfb7eSYOSHIFUJI Hideaki /* no entries matched; do round-robin */ 78493c2fb25SDavid Ahern if (!next || next->fib6_metric != rt0->fib6_metric) 7858d1040e8SWei Wang next = leaf; 786f11e6659SDavid S. Miller 78766f5d6ceSWei Wang if (next != rt0) { 78893c2fb25SDavid Ahern spin_lock_bh(&leaf->fib6_table->tb6_lock); 78966f5d6ceSWei Wang /* make sure next is not being deleted from the tree */ 79093c2fb25SDavid Ahern if (next->fib6_node) 79166f5d6ceSWei Wang rcu_assign_pointer(fn->rr_ptr, next); 79293c2fb25SDavid Ahern spin_unlock_bh(&leaf->fib6_table->tb6_lock); 79366f5d6ceSWei Wang } 794554cfb7eSYOSHIFUJI Hideaki } 795554cfb7eSYOSHIFUJI Hideaki 796b7bc4b6aSDavid Ahern out: 797b7bc4b6aSDavid Ahern if (!res->f6i) { 798b7bc4b6aSDavid Ahern res->f6i = net->ipv6.fib6_null_entry; 799b7bc4b6aSDavid Ahern res->nh = &res->f6i->fib6_nh; 8007d21fec9SDavid Ahern res->fib6_flags = res->f6i->fib6_flags; 8017d21fec9SDavid Ahern res->fib6_type = res->f6i->fib6_type; 802b7bc4b6aSDavid Ahern } 8031da177e4SLinus Torvalds } 8041da177e4SLinus Torvalds 80585bd05deSDavid Ahern static bool rt6_is_gw_or_nonexthop(const struct fib6_result *res) 8068b9df265SMartin KaFai Lau { 80785bd05deSDavid Ahern return (res->f6i->fib6_flags & RTF_NONEXTHOP) || 80885bd05deSDavid Ahern res->nh->fib_nh_gw_family; 8098b9df265SMartin KaFai Lau } 8108b9df265SMartin KaFai Lau 81170ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 81270ceb4f5SYOSHIFUJI Hideaki int rt6_route_rcv(struct net_device *dev, u8 *opt, int len, 813b71d1d42SEric Dumazet const struct in6_addr *gwaddr) 81470ceb4f5SYOSHIFUJI Hideaki { 815c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 81670ceb4f5SYOSHIFUJI Hideaki struct route_info *rinfo = (struct route_info *) opt; 81770ceb4f5SYOSHIFUJI Hideaki struct in6_addr prefix_buf, *prefix; 81870ceb4f5SYOSHIFUJI Hideaki unsigned int pref; 8194bed72e4SYOSHIFUJI Hideaki unsigned long lifetime; 8208d1c802bSDavid Ahern struct fib6_info *rt; 82170ceb4f5SYOSHIFUJI Hideaki 82270ceb4f5SYOSHIFUJI Hideaki if (len < sizeof(struct route_info)) { 82370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82470ceb4f5SYOSHIFUJI Hideaki } 82570ceb4f5SYOSHIFUJI Hideaki 82670ceb4f5SYOSHIFUJI Hideaki /* Sanity check for prefix_len and length */ 82770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length > 3) { 82870ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 82970ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 128) { 83070ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83170ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 64) { 83270ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 2) { 83370ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83470ceb4f5SYOSHIFUJI Hideaki } 83570ceb4f5SYOSHIFUJI Hideaki } else if (rinfo->prefix_len > 0) { 83670ceb4f5SYOSHIFUJI Hideaki if (rinfo->length < 1) { 83770ceb4f5SYOSHIFUJI Hideaki return -EINVAL; 83870ceb4f5SYOSHIFUJI Hideaki } 83970ceb4f5SYOSHIFUJI Hideaki } 84070ceb4f5SYOSHIFUJI Hideaki 84170ceb4f5SYOSHIFUJI Hideaki pref = rinfo->route_pref; 84270ceb4f5SYOSHIFUJI Hideaki if (pref == ICMPV6_ROUTER_PREF_INVALID) 8433933fc95SJens Rosenboom return -EINVAL; 84470ceb4f5SYOSHIFUJI Hideaki 8454bed72e4SYOSHIFUJI Hideaki lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ); 84670ceb4f5SYOSHIFUJI Hideaki 84770ceb4f5SYOSHIFUJI Hideaki if (rinfo->length == 3) 84870ceb4f5SYOSHIFUJI Hideaki prefix = (struct in6_addr *)rinfo->prefix; 84970ceb4f5SYOSHIFUJI Hideaki else { 85070ceb4f5SYOSHIFUJI Hideaki /* this function is safe */ 85170ceb4f5SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, 85270ceb4f5SYOSHIFUJI Hideaki (struct in6_addr *)rinfo->prefix, 85370ceb4f5SYOSHIFUJI Hideaki rinfo->prefix_len); 85470ceb4f5SYOSHIFUJI Hideaki prefix = &prefix_buf; 85570ceb4f5SYOSHIFUJI Hideaki } 85670ceb4f5SYOSHIFUJI Hideaki 857f104a567SDuan Jiong if (rinfo->prefix_len == 0) 858afb1d4b5SDavid Ahern rt = rt6_get_dflt_router(net, gwaddr, dev); 859f104a567SDuan Jiong else 860f104a567SDuan Jiong rt = rt6_get_route_info(net, prefix, rinfo->prefix_len, 861830218c1SDavid Ahern gwaddr, dev); 86270ceb4f5SYOSHIFUJI Hideaki 86370ceb4f5SYOSHIFUJI Hideaki if (rt && !lifetime) { 864afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 86570ceb4f5SYOSHIFUJI Hideaki rt = NULL; 86670ceb4f5SYOSHIFUJI Hideaki } 86770ceb4f5SYOSHIFUJI Hideaki 86870ceb4f5SYOSHIFUJI Hideaki if (!rt && lifetime) 869830218c1SDavid Ahern rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr, 870830218c1SDavid Ahern dev, pref); 87170ceb4f5SYOSHIFUJI Hideaki else if (rt) 87293c2fb25SDavid Ahern rt->fib6_flags = RTF_ROUTEINFO | 87393c2fb25SDavid Ahern (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref); 87470ceb4f5SYOSHIFUJI Hideaki 87570ceb4f5SYOSHIFUJI Hideaki if (rt) { 8761716a961SGao feng if (!addrconf_finite_timeout(lifetime)) 87714895687SDavid Ahern fib6_clean_expires(rt); 8781716a961SGao feng else 87914895687SDavid Ahern fib6_set_expires(rt, jiffies + HZ * lifetime); 8801716a961SGao feng 88193531c67SDavid Ahern fib6_info_release(rt); 88270ceb4f5SYOSHIFUJI Hideaki } 88370ceb4f5SYOSHIFUJI Hideaki return 0; 88470ceb4f5SYOSHIFUJI Hideaki } 88570ceb4f5SYOSHIFUJI Hideaki #endif 88670ceb4f5SYOSHIFUJI Hideaki 887ae90d867SDavid Ahern /* 888ae90d867SDavid Ahern * Misc support functions 889ae90d867SDavid Ahern */ 890ae90d867SDavid Ahern 891ae90d867SDavid Ahern /* called with rcu_lock held */ 8920d161581SDavid Ahern static struct net_device *ip6_rt_get_dev_rcu(const struct fib6_result *res) 893ae90d867SDavid Ahern { 8940d161581SDavid Ahern struct net_device *dev = res->nh->fib_nh_dev; 895ae90d867SDavid Ahern 8967d21fec9SDavid Ahern if (res->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) { 897ae90d867SDavid Ahern /* for copies of local routes, dst->dev needs to be the 898ae90d867SDavid Ahern * device if it is a master device, the master device if 899ae90d867SDavid Ahern * device is enslaved, and the loopback as the default 900ae90d867SDavid Ahern */ 901ae90d867SDavid Ahern if (netif_is_l3_slave(dev) && 9027d21fec9SDavid Ahern !rt6_need_strict(&res->f6i->fib6_dst.addr)) 903ae90d867SDavid Ahern dev = l3mdev_master_dev_rcu(dev); 904ae90d867SDavid Ahern else if (!netif_is_l3_master(dev)) 905ae90d867SDavid Ahern dev = dev_net(dev)->loopback_dev; 906ae90d867SDavid Ahern /* last case is netif_is_l3_master(dev) is true in which 907ae90d867SDavid Ahern * case we want dev returned to be dev 908ae90d867SDavid Ahern */ 909ae90d867SDavid Ahern } 910ae90d867SDavid Ahern 911ae90d867SDavid Ahern return dev; 912ae90d867SDavid Ahern } 913ae90d867SDavid Ahern 9146edb3c96SDavid Ahern static const int fib6_prop[RTN_MAX + 1] = { 9156edb3c96SDavid Ahern [RTN_UNSPEC] = 0, 9166edb3c96SDavid Ahern [RTN_UNICAST] = 0, 9176edb3c96SDavid Ahern [RTN_LOCAL] = 0, 9186edb3c96SDavid Ahern [RTN_BROADCAST] = 0, 9196edb3c96SDavid Ahern [RTN_ANYCAST] = 0, 9206edb3c96SDavid Ahern [RTN_MULTICAST] = 0, 9216edb3c96SDavid Ahern [RTN_BLACKHOLE] = -EINVAL, 9226edb3c96SDavid Ahern [RTN_UNREACHABLE] = -EHOSTUNREACH, 9236edb3c96SDavid Ahern [RTN_PROHIBIT] = -EACCES, 9246edb3c96SDavid Ahern [RTN_THROW] = -EAGAIN, 9256edb3c96SDavid Ahern [RTN_NAT] = -EINVAL, 9266edb3c96SDavid Ahern [RTN_XRESOLVE] = -EINVAL, 9276edb3c96SDavid Ahern }; 9286edb3c96SDavid Ahern 9296edb3c96SDavid Ahern static int ip6_rt_type_to_error(u8 fib6_type) 9306edb3c96SDavid Ahern { 9316edb3c96SDavid Ahern return fib6_prop[fib6_type]; 9326edb3c96SDavid Ahern } 9336edb3c96SDavid Ahern 9348d1c802bSDavid Ahern static unsigned short fib6_info_dst_flags(struct fib6_info *rt) 9353b6761d1SDavid Ahern { 9363b6761d1SDavid Ahern unsigned short flags = 0; 9373b6761d1SDavid Ahern 9383b6761d1SDavid Ahern if (rt->dst_nocount) 9393b6761d1SDavid Ahern flags |= DST_NOCOUNT; 9403b6761d1SDavid Ahern if (rt->dst_nopolicy) 9413b6761d1SDavid Ahern flags |= DST_NOPOLICY; 9423b6761d1SDavid Ahern if (rt->dst_host) 9433b6761d1SDavid Ahern flags |= DST_HOST; 9443b6761d1SDavid Ahern 9453b6761d1SDavid Ahern return flags; 9463b6761d1SDavid Ahern } 9473b6761d1SDavid Ahern 9487d21fec9SDavid Ahern static void ip6_rt_init_dst_reject(struct rt6_info *rt, u8 fib6_type) 9496edb3c96SDavid Ahern { 9507d21fec9SDavid Ahern rt->dst.error = ip6_rt_type_to_error(fib6_type); 9516edb3c96SDavid Ahern 9527d21fec9SDavid Ahern switch (fib6_type) { 9536edb3c96SDavid Ahern case RTN_BLACKHOLE: 9546edb3c96SDavid Ahern rt->dst.output = dst_discard_out; 9556edb3c96SDavid Ahern rt->dst.input = dst_discard; 9566edb3c96SDavid Ahern break; 9576edb3c96SDavid Ahern case RTN_PROHIBIT: 9586edb3c96SDavid Ahern rt->dst.output = ip6_pkt_prohibit_out; 9596edb3c96SDavid Ahern rt->dst.input = ip6_pkt_prohibit; 9606edb3c96SDavid Ahern break; 9616edb3c96SDavid Ahern case RTN_THROW: 9626edb3c96SDavid Ahern case RTN_UNREACHABLE: 9636edb3c96SDavid Ahern default: 9646edb3c96SDavid Ahern rt->dst.output = ip6_pkt_discard_out; 9656edb3c96SDavid Ahern rt->dst.input = ip6_pkt_discard; 9666edb3c96SDavid Ahern break; 9676edb3c96SDavid Ahern } 9686edb3c96SDavid Ahern } 9696edb3c96SDavid Ahern 9700d161581SDavid Ahern static void ip6_rt_init_dst(struct rt6_info *rt, const struct fib6_result *res) 9716edb3c96SDavid Ahern { 9727d21fec9SDavid Ahern struct fib6_info *f6i = res->f6i; 9730d161581SDavid Ahern 9747d21fec9SDavid Ahern if (res->fib6_flags & RTF_REJECT) { 9757d21fec9SDavid Ahern ip6_rt_init_dst_reject(rt, res->fib6_type); 9766edb3c96SDavid Ahern return; 9776edb3c96SDavid Ahern } 9786edb3c96SDavid Ahern 9796edb3c96SDavid Ahern rt->dst.error = 0; 9806edb3c96SDavid Ahern rt->dst.output = ip6_output; 9816edb3c96SDavid Ahern 9827d21fec9SDavid Ahern if (res->fib6_type == RTN_LOCAL || res->fib6_type == RTN_ANYCAST) { 9836edb3c96SDavid Ahern rt->dst.input = ip6_input; 9847d21fec9SDavid Ahern } else if (ipv6_addr_type(&f6i->fib6_dst.addr) & IPV6_ADDR_MULTICAST) { 9856edb3c96SDavid Ahern rt->dst.input = ip6_mc_input; 9866edb3c96SDavid Ahern } else { 9876edb3c96SDavid Ahern rt->dst.input = ip6_forward; 9886edb3c96SDavid Ahern } 9896edb3c96SDavid Ahern 9900d161581SDavid Ahern if (res->nh->fib_nh_lws) { 9910d161581SDavid Ahern rt->dst.lwtstate = lwtstate_get(res->nh->fib_nh_lws); 9926edb3c96SDavid Ahern lwtunnel_set_redirect(&rt->dst); 9936edb3c96SDavid Ahern } 9946edb3c96SDavid Ahern 9956edb3c96SDavid Ahern rt->dst.lastuse = jiffies; 9966edb3c96SDavid Ahern } 9976edb3c96SDavid Ahern 998e873e4b9SWei Wang /* Caller must already hold reference to @from */ 9998d1c802bSDavid Ahern static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from) 1000ae90d867SDavid Ahern { 1001ae90d867SDavid Ahern rt->rt6i_flags &= ~RTF_EXPIRES; 1002a68886a6SDavid Ahern rcu_assign_pointer(rt->from, from); 1003e1255ed4SDavid Ahern ip_dst_init_metrics(&rt->dst, from->fib6_metrics); 1004ae90d867SDavid Ahern } 1005ae90d867SDavid Ahern 10060d161581SDavid Ahern /* Caller must already hold reference to f6i in result */ 10070d161581SDavid Ahern static void ip6_rt_copy_init(struct rt6_info *rt, const struct fib6_result *res) 1008ae90d867SDavid Ahern { 10090d161581SDavid Ahern const struct fib6_nh *nh = res->nh; 10100d161581SDavid Ahern const struct net_device *dev = nh->fib_nh_dev; 10110d161581SDavid Ahern struct fib6_info *f6i = res->f6i; 1012dcd1f572SDavid Ahern 10130d161581SDavid Ahern ip6_rt_init_dst(rt, res); 10146edb3c96SDavid Ahern 10150d161581SDavid Ahern rt->rt6i_dst = f6i->fib6_dst; 1016dcd1f572SDavid Ahern rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL; 10177d21fec9SDavid Ahern rt->rt6i_flags = res->fib6_flags; 10180d161581SDavid Ahern if (nh->fib_nh_gw_family) { 10190d161581SDavid Ahern rt->rt6i_gateway = nh->fib_nh_gw6; 10202b2450caSDavid Ahern rt->rt6i_flags |= RTF_GATEWAY; 10212b2450caSDavid Ahern } 10220d161581SDavid Ahern rt6_set_from(rt, f6i); 1023ae90d867SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 10240d161581SDavid Ahern rt->rt6i_src = f6i->fib6_src; 1025ae90d867SDavid Ahern #endif 1026ae90d867SDavid Ahern } 1027ae90d867SDavid Ahern 1028a3c00e46SMartin KaFai Lau static struct fib6_node* fib6_backtrack(struct fib6_node *fn, 1029a3c00e46SMartin KaFai Lau struct in6_addr *saddr) 1030a3c00e46SMartin KaFai Lau { 103166f5d6ceSWei Wang struct fib6_node *pn, *sn; 1032a3c00e46SMartin KaFai Lau while (1) { 1033a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_TL_ROOT) 1034a3c00e46SMartin KaFai Lau return NULL; 103566f5d6ceSWei Wang pn = rcu_dereference(fn->parent); 103666f5d6ceSWei Wang sn = FIB6_SUBTREE(pn); 103766f5d6ceSWei Wang if (sn && sn != fn) 10386454743bSDavid Ahern fn = fib6_node_lookup(sn, NULL, saddr); 1039a3c00e46SMartin KaFai Lau else 1040a3c00e46SMartin KaFai Lau fn = pn; 1041a3c00e46SMartin KaFai Lau if (fn->fn_flags & RTN_RTINFO) 1042a3c00e46SMartin KaFai Lau return fn; 1043a3c00e46SMartin KaFai Lau } 1044a3c00e46SMartin KaFai Lau } 1045c71099acSThomas Graf 104610585b43SDavid Ahern static bool ip6_hold_safe(struct net *net, struct rt6_info **prt) 1047d3843fe5SWei Wang { 1048d3843fe5SWei Wang struct rt6_info *rt = *prt; 1049d3843fe5SWei Wang 1050d3843fe5SWei Wang if (dst_hold_safe(&rt->dst)) 1051d3843fe5SWei Wang return true; 105210585b43SDavid Ahern if (net) { 1053d3843fe5SWei Wang rt = net->ipv6.ip6_null_entry; 1054d3843fe5SWei Wang dst_hold(&rt->dst); 1055d3843fe5SWei Wang } else { 1056d3843fe5SWei Wang rt = NULL; 1057d3843fe5SWei Wang } 1058d3843fe5SWei Wang *prt = rt; 1059d3843fe5SWei Wang return false; 1060d3843fe5SWei Wang } 1061d3843fe5SWei Wang 1062dec9b0e2SDavid Ahern /* called with rcu_lock held */ 10639b6b35abSDavid Ahern static struct rt6_info *ip6_create_rt_rcu(const struct fib6_result *res) 1064dec9b0e2SDavid Ahern { 10659b6b35abSDavid Ahern struct net_device *dev = res->nh->fib_nh_dev; 10669b6b35abSDavid Ahern struct fib6_info *f6i = res->f6i; 10679b6b35abSDavid Ahern unsigned short flags; 1068dec9b0e2SDavid Ahern struct rt6_info *nrt; 1069dec9b0e2SDavid Ahern 10709b6b35abSDavid Ahern if (!fib6_info_hold_safe(f6i)) 10711c87e79aSXin Long goto fallback; 1072e873e4b9SWei Wang 10739b6b35abSDavid Ahern flags = fib6_info_dst_flags(f6i); 107493531c67SDavid Ahern nrt = ip6_dst_alloc(dev_net(dev), dev, flags); 10751c87e79aSXin Long if (!nrt) { 10769b6b35abSDavid Ahern fib6_info_release(f6i); 10771c87e79aSXin Long goto fallback; 10781c87e79aSXin Long } 1079dec9b0e2SDavid Ahern 10800d161581SDavid Ahern ip6_rt_copy_init(nrt, res); 10811c87e79aSXin Long return nrt; 10821c87e79aSXin Long 10831c87e79aSXin Long fallback: 10841c87e79aSXin Long nrt = dev_net(dev)->ipv6.ip6_null_entry; 10851c87e79aSXin Long dst_hold(&nrt->dst); 1086dec9b0e2SDavid Ahern return nrt; 1087dec9b0e2SDavid Ahern } 1088dec9b0e2SDavid Ahern 10898ed67789SDaniel Lezcano static struct rt6_info *ip6_pol_route_lookup(struct net *net, 10908ed67789SDaniel Lezcano struct fib6_table *table, 1091b75cc8f9SDavid Ahern struct flowi6 *fl6, 1092b75cc8f9SDavid Ahern const struct sk_buff *skb, 1093b75cc8f9SDavid Ahern int flags) 10941da177e4SLinus Torvalds { 1095b1d40991SDavid Ahern struct fib6_result res = {}; 10961da177e4SLinus Torvalds struct fib6_node *fn; 109723fb93a4SDavid Ahern struct rt6_info *rt; 10981da177e4SLinus Torvalds 1099b6cdbc85SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1100b6cdbc85SDavid Ahern flags &= ~RT6_LOOKUP_F_IFACE; 1101b6cdbc85SDavid Ahern 110266f5d6ceSWei Wang rcu_read_lock(); 11036454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1104c71099acSThomas Graf restart: 1105b1d40991SDavid Ahern res.f6i = rcu_dereference(fn->leaf); 1106b1d40991SDavid Ahern if (!res.f6i) 1107b1d40991SDavid Ahern res.f6i = net->ipv6.fib6_null_entry; 1108af52a52cSDavid Ahern else 110975ef7389SDavid Ahern rt6_device_match(net, &res, &fl6->saddr, fl6->flowi6_oif, 111075ef7389SDavid Ahern flags); 1111af52a52cSDavid Ahern 1112b1d40991SDavid Ahern if (res.f6i == net->ipv6.fib6_null_entry) { 1113a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1114a3c00e46SMartin KaFai Lau if (fn) 1115a3c00e46SMartin KaFai Lau goto restart; 1116af52a52cSDavid Ahern 1117af52a52cSDavid Ahern rt = net->ipv6.ip6_null_entry; 1118af52a52cSDavid Ahern dst_hold(&rt->dst); 1119af52a52cSDavid Ahern goto out; 1120a3c00e46SMartin KaFai Lau } 11212b760fcfSWei Wang 1122b1d40991SDavid Ahern fib6_select_path(net, &res, fl6, fl6->flowi6_oif, 1123b1d40991SDavid Ahern fl6->flowi6_oif != 0, skb, flags); 1124b1d40991SDavid Ahern 11254c9483b2SDavid S. Miller /* Search through exception table */ 11267e4b5128SDavid Ahern rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr); 112723fb93a4SDavid Ahern if (rt) { 112810585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 1129d3843fe5SWei Wang dst_use_noref(&rt->dst, jiffies); 113023fb93a4SDavid Ahern } else { 11319b6b35abSDavid Ahern rt = ip6_create_rt_rcu(&res); 1132dec9b0e2SDavid Ahern } 1133d3843fe5SWei Wang 1134af52a52cSDavid Ahern out: 11358ff2e5b2SDavid Ahern trace_fib6_table_lookup(net, &res, table, fl6); 1136af52a52cSDavid Ahern 113766f5d6ceSWei Wang rcu_read_unlock(); 1138b811580dSDavid Ahern 11391da177e4SLinus Torvalds return rt; 1140c71099acSThomas Graf } 1141c71099acSThomas Graf 1142ea6e574eSFlorian Westphal struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6, 1143b75cc8f9SDavid Ahern const struct sk_buff *skb, int flags) 1144ea6e574eSFlorian Westphal { 1145b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup); 1146ea6e574eSFlorian Westphal } 1147ea6e574eSFlorian Westphal EXPORT_SYMBOL_GPL(ip6_route_lookup); 1148ea6e574eSFlorian Westphal 11499acd9f3aSYOSHIFUJI Hideaki struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr, 1150b75cc8f9SDavid Ahern const struct in6_addr *saddr, int oif, 1151b75cc8f9SDavid Ahern const struct sk_buff *skb, int strict) 1152c71099acSThomas Graf { 11534c9483b2SDavid S. Miller struct flowi6 fl6 = { 11544c9483b2SDavid S. Miller .flowi6_oif = oif, 11554c9483b2SDavid S. Miller .daddr = *daddr, 1156c71099acSThomas Graf }; 1157c71099acSThomas Graf struct dst_entry *dst; 115877d16f45SYOSHIFUJI Hideaki int flags = strict ? RT6_LOOKUP_F_IFACE : 0; 1159c71099acSThomas Graf 1160adaa70bbSThomas Graf if (saddr) { 11614c9483b2SDavid S. Miller memcpy(&fl6.saddr, saddr, sizeof(*saddr)); 1162adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 1163adaa70bbSThomas Graf } 1164adaa70bbSThomas Graf 1165b75cc8f9SDavid Ahern dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup); 1166c71099acSThomas Graf if (dst->error == 0) 1167c71099acSThomas Graf return (struct rt6_info *) dst; 1168c71099acSThomas Graf 1169c71099acSThomas Graf dst_release(dst); 1170c71099acSThomas Graf 11711da177e4SLinus Torvalds return NULL; 11721da177e4SLinus Torvalds } 11737159039aSYOSHIFUJI Hideaki EXPORT_SYMBOL(rt6_lookup); 11747159039aSYOSHIFUJI Hideaki 1175c71099acSThomas Graf /* ip6_ins_rt is called with FREE table->tb6_lock. 11761cfb71eeSWei Wang * It takes new route entry, the addition fails by any reason the 11771cfb71eeSWei Wang * route is released. 11781cfb71eeSWei Wang * Caller must hold dst before calling it. 11791da177e4SLinus Torvalds */ 11801da177e4SLinus Torvalds 11818d1c802bSDavid Ahern static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info, 1182333c4301SDavid Ahern struct netlink_ext_ack *extack) 11831da177e4SLinus Torvalds { 11841da177e4SLinus Torvalds int err; 1185c71099acSThomas Graf struct fib6_table *table; 11861da177e4SLinus Torvalds 118793c2fb25SDavid Ahern table = rt->fib6_table; 118866f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 1189d4ead6b3SDavid Ahern err = fib6_add(&table->tb6_root, rt, info, extack); 119066f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 11911da177e4SLinus Torvalds 11921da177e4SLinus Torvalds return err; 11931da177e4SLinus Torvalds } 11941da177e4SLinus Torvalds 11958d1c802bSDavid Ahern int ip6_ins_rt(struct net *net, struct fib6_info *rt) 119640e22e8fSThomas Graf { 1197afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net, }; 1198e715b6d3SFlorian Westphal 1199d4ead6b3SDavid Ahern return __ip6_ins_rt(rt, &info, NULL); 120040e22e8fSThomas Graf } 120140e22e8fSThomas Graf 120285bd05deSDavid Ahern static struct rt6_info *ip6_rt_cache_alloc(const struct fib6_result *res, 120321efcfa0SEric Dumazet const struct in6_addr *daddr, 1204b71d1d42SEric Dumazet const struct in6_addr *saddr) 12051da177e4SLinus Torvalds { 120685bd05deSDavid Ahern struct fib6_info *f6i = res->f6i; 12074832c30dSDavid Ahern struct net_device *dev; 12081da177e4SLinus Torvalds struct rt6_info *rt; 12091da177e4SLinus Torvalds 12101da177e4SLinus Torvalds /* 12111da177e4SLinus Torvalds * Clone the route. 12121da177e4SLinus Torvalds */ 12131da177e4SLinus Torvalds 121485bd05deSDavid Ahern if (!fib6_info_hold_safe(f6i)) 1215e873e4b9SWei Wang return NULL; 1216e873e4b9SWei Wang 12170d161581SDavid Ahern dev = ip6_rt_get_dev_rcu(res); 121893531c67SDavid Ahern rt = ip6_dst_alloc(dev_net(dev), dev, 0); 1219e873e4b9SWei Wang if (!rt) { 122085bd05deSDavid Ahern fib6_info_release(f6i); 122183a09abdSMartin KaFai Lau return NULL; 1222e873e4b9SWei Wang } 122383a09abdSMartin KaFai Lau 12240d161581SDavid Ahern ip6_rt_copy_init(rt, res); 12258b9df265SMartin KaFai Lau rt->rt6i_flags |= RTF_CACHE; 122683a09abdSMartin KaFai Lau rt->dst.flags |= DST_HOST; 122783a09abdSMartin KaFai Lau rt->rt6i_dst.addr = *daddr; 122883a09abdSMartin KaFai Lau rt->rt6i_dst.plen = 128; 12298b9df265SMartin KaFai Lau 123085bd05deSDavid Ahern if (!rt6_is_gw_or_nonexthop(res)) { 123185bd05deSDavid Ahern if (f6i->fib6_dst.plen != 128 && 123285bd05deSDavid Ahern ipv6_addr_equal(&f6i->fib6_dst.addr, daddr)) 123358c4fb86SYOSHIFUJI Hideaki rt->rt6i_flags |= RTF_ANYCAST; 12341da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 12351da177e4SLinus Torvalds if (rt->rt6i_src.plen && saddr) { 12364e3fd7a0SAlexey Dobriyan rt->rt6i_src.addr = *saddr; 12371da177e4SLinus Torvalds rt->rt6i_src.plen = 128; 12381da177e4SLinus Torvalds } 12391da177e4SLinus Torvalds #endif 124095a9a5baSYOSHIFUJI Hideaki } 124195a9a5baSYOSHIFUJI Hideaki 1242299d9939SYOSHIFUJI Hideaki return rt; 1243299d9939SYOSHIFUJI Hideaki } 1244299d9939SYOSHIFUJI Hideaki 1245db3fedeeSDavid Ahern static struct rt6_info *ip6_rt_pcpu_alloc(const struct fib6_result *res) 1246d52d3997SMartin KaFai Lau { 1247db3fedeeSDavid Ahern struct fib6_info *f6i = res->f6i; 1248db3fedeeSDavid Ahern unsigned short flags = fib6_info_dst_flags(f6i); 12494832c30dSDavid Ahern struct net_device *dev; 1250d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1251d52d3997SMartin KaFai Lau 1252db3fedeeSDavid Ahern if (!fib6_info_hold_safe(f6i)) 1253e873e4b9SWei Wang return NULL; 1254e873e4b9SWei Wang 12554832c30dSDavid Ahern rcu_read_lock(); 12560d161581SDavid Ahern dev = ip6_rt_get_dev_rcu(res); 125793531c67SDavid Ahern pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags); 12584832c30dSDavid Ahern rcu_read_unlock(); 1259e873e4b9SWei Wang if (!pcpu_rt) { 1260db3fedeeSDavid Ahern fib6_info_release(f6i); 1261d52d3997SMartin KaFai Lau return NULL; 1262e873e4b9SWei Wang } 12630d161581SDavid Ahern ip6_rt_copy_init(pcpu_rt, res); 1264d52d3997SMartin KaFai Lau pcpu_rt->rt6i_flags |= RTF_PCPU; 1265d52d3997SMartin KaFai Lau return pcpu_rt; 1266d52d3997SMartin KaFai Lau } 1267d52d3997SMartin KaFai Lau 126866f5d6ceSWei Wang /* It should be called with rcu_read_lock() acquired */ 1269db3fedeeSDavid Ahern static struct rt6_info *rt6_get_pcpu_route(const struct fib6_result *res) 1270d52d3997SMartin KaFai Lau { 1271a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, **p; 1272d52d3997SMartin KaFai Lau 1273db3fedeeSDavid Ahern p = this_cpu_ptr(res->f6i->rt6i_pcpu); 1274d52d3997SMartin KaFai Lau pcpu_rt = *p; 1275d52d3997SMartin KaFai Lau 1276d4ead6b3SDavid Ahern if (pcpu_rt) 127710585b43SDavid Ahern ip6_hold_safe(NULL, &pcpu_rt); 1278d3843fe5SWei Wang 1279a73e4195SMartin KaFai Lau return pcpu_rt; 1280a73e4195SMartin KaFai Lau } 1281a73e4195SMartin KaFai Lau 1282afb1d4b5SDavid Ahern static struct rt6_info *rt6_make_pcpu_route(struct net *net, 1283db3fedeeSDavid Ahern const struct fib6_result *res) 1284a73e4195SMartin KaFai Lau { 1285a73e4195SMartin KaFai Lau struct rt6_info *pcpu_rt, *prev, **p; 1286d52d3997SMartin KaFai Lau 1287db3fedeeSDavid Ahern pcpu_rt = ip6_rt_pcpu_alloc(res); 1288d52d3997SMartin KaFai Lau if (!pcpu_rt) { 12899c7370a1SMartin KaFai Lau dst_hold(&net->ipv6.ip6_null_entry->dst); 12909c7370a1SMartin KaFai Lau return net->ipv6.ip6_null_entry; 1291d52d3997SMartin KaFai Lau } 1292d52d3997SMartin KaFai Lau 1293a94b9367SWei Wang dst_hold(&pcpu_rt->dst); 1294db3fedeeSDavid Ahern p = this_cpu_ptr(res->f6i->rt6i_pcpu); 1295d52d3997SMartin KaFai Lau prev = cmpxchg(p, NULL, pcpu_rt); 1296951f788aSEric Dumazet BUG_ON(prev); 1297a94b9367SWei Wang 1298d52d3997SMartin KaFai Lau return pcpu_rt; 1299d52d3997SMartin KaFai Lau } 1300d52d3997SMartin KaFai Lau 130135732d01SWei Wang /* exception hash table implementation 130235732d01SWei Wang */ 130335732d01SWei Wang static DEFINE_SPINLOCK(rt6_exception_lock); 130435732d01SWei Wang 130535732d01SWei Wang /* Remove rt6_ex from hash table and free the memory 130635732d01SWei Wang * Caller must hold rt6_exception_lock 130735732d01SWei Wang */ 130835732d01SWei Wang static void rt6_remove_exception(struct rt6_exception_bucket *bucket, 130935732d01SWei Wang struct rt6_exception *rt6_ex) 131035732d01SWei Wang { 1311f5b51fe8SPaolo Abeni struct fib6_info *from; 1312b2427e67SColin Ian King struct net *net; 131381eb8447SWei Wang 131435732d01SWei Wang if (!bucket || !rt6_ex) 131535732d01SWei Wang return; 1316b2427e67SColin Ian King 1317b2427e67SColin Ian King net = dev_net(rt6_ex->rt6i->dst.dev); 1318f5b51fe8SPaolo Abeni net->ipv6.rt6_stats->fib_rt_cache--; 1319f5b51fe8SPaolo Abeni 1320f5b51fe8SPaolo Abeni /* purge completely the exception to allow releasing the held resources: 1321f5b51fe8SPaolo Abeni * some [sk] cache may keep the dst around for unlimited time 1322f5b51fe8SPaolo Abeni */ 13230e233874SEric Dumazet from = xchg((__force struct fib6_info **)&rt6_ex->rt6i->from, NULL); 1324f5b51fe8SPaolo Abeni fib6_info_release(from); 1325f5b51fe8SPaolo Abeni dst_dev_put(&rt6_ex->rt6i->dst); 1326f5b51fe8SPaolo Abeni 132735732d01SWei Wang hlist_del_rcu(&rt6_ex->hlist); 132877634cc6SDavid Ahern dst_release(&rt6_ex->rt6i->dst); 132935732d01SWei Wang kfree_rcu(rt6_ex, rcu); 133035732d01SWei Wang WARN_ON_ONCE(!bucket->depth); 133135732d01SWei Wang bucket->depth--; 133235732d01SWei Wang } 133335732d01SWei Wang 133435732d01SWei Wang /* Remove oldest rt6_ex in bucket and free the memory 133535732d01SWei Wang * Caller must hold rt6_exception_lock 133635732d01SWei Wang */ 133735732d01SWei Wang static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket) 133835732d01SWei Wang { 133935732d01SWei Wang struct rt6_exception *rt6_ex, *oldest = NULL; 134035732d01SWei Wang 134135732d01SWei Wang if (!bucket) 134235732d01SWei Wang return; 134335732d01SWei Wang 134435732d01SWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 134535732d01SWei Wang if (!oldest || time_before(rt6_ex->stamp, oldest->stamp)) 134635732d01SWei Wang oldest = rt6_ex; 134735732d01SWei Wang } 134835732d01SWei Wang rt6_remove_exception(bucket, oldest); 134935732d01SWei Wang } 135035732d01SWei Wang 135135732d01SWei Wang static u32 rt6_exception_hash(const struct in6_addr *dst, 135235732d01SWei Wang const struct in6_addr *src) 135335732d01SWei Wang { 135435732d01SWei Wang static u32 seed __read_mostly; 135535732d01SWei Wang u32 val; 135635732d01SWei Wang 135735732d01SWei Wang net_get_random_once(&seed, sizeof(seed)); 135835732d01SWei Wang val = jhash(dst, sizeof(*dst), seed); 135935732d01SWei Wang 136035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 136135732d01SWei Wang if (src) 136235732d01SWei Wang val = jhash(src, sizeof(*src), val); 136335732d01SWei Wang #endif 136435732d01SWei Wang return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT); 136535732d01SWei Wang } 136635732d01SWei Wang 136735732d01SWei Wang /* Helper function to find the cached rt in the hash table 136835732d01SWei Wang * and update bucket pointer to point to the bucket for this 136935732d01SWei Wang * (daddr, saddr) pair 137035732d01SWei Wang * Caller must hold rt6_exception_lock 137135732d01SWei Wang */ 137235732d01SWei Wang static struct rt6_exception * 137335732d01SWei Wang __rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket, 137435732d01SWei Wang const struct in6_addr *daddr, 137535732d01SWei Wang const struct in6_addr *saddr) 137635732d01SWei Wang { 137735732d01SWei Wang struct rt6_exception *rt6_ex; 137835732d01SWei Wang u32 hval; 137935732d01SWei Wang 138035732d01SWei Wang if (!(*bucket) || !daddr) 138135732d01SWei Wang return NULL; 138235732d01SWei Wang 138335732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 138435732d01SWei Wang *bucket += hval; 138535732d01SWei Wang 138635732d01SWei Wang hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) { 138735732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 138835732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 138935732d01SWei Wang 139035732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 139135732d01SWei Wang if (matched && saddr) 139235732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 139335732d01SWei Wang #endif 139435732d01SWei Wang if (matched) 139535732d01SWei Wang return rt6_ex; 139635732d01SWei Wang } 139735732d01SWei Wang return NULL; 139835732d01SWei Wang } 139935732d01SWei Wang 140035732d01SWei Wang /* Helper function to find the cached rt in the hash table 140135732d01SWei Wang * and update bucket pointer to point to the bucket for this 140235732d01SWei Wang * (daddr, saddr) pair 140335732d01SWei Wang * Caller must hold rcu_read_lock() 140435732d01SWei Wang */ 140535732d01SWei Wang static struct rt6_exception * 140635732d01SWei Wang __rt6_find_exception_rcu(struct rt6_exception_bucket **bucket, 140735732d01SWei Wang const struct in6_addr *daddr, 140835732d01SWei Wang const struct in6_addr *saddr) 140935732d01SWei Wang { 141035732d01SWei Wang struct rt6_exception *rt6_ex; 141135732d01SWei Wang u32 hval; 141235732d01SWei Wang 141335732d01SWei Wang WARN_ON_ONCE(!rcu_read_lock_held()); 141435732d01SWei Wang 141535732d01SWei Wang if (!(*bucket) || !daddr) 141635732d01SWei Wang return NULL; 141735732d01SWei Wang 141835732d01SWei Wang hval = rt6_exception_hash(daddr, saddr); 141935732d01SWei Wang *bucket += hval; 142035732d01SWei Wang 142135732d01SWei Wang hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) { 142235732d01SWei Wang struct rt6_info *rt6 = rt6_ex->rt6i; 142335732d01SWei Wang bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr); 142435732d01SWei Wang 142535732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 142635732d01SWei Wang if (matched && saddr) 142735732d01SWei Wang matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr); 142835732d01SWei Wang #endif 142935732d01SWei Wang if (matched) 143035732d01SWei Wang return rt6_ex; 143135732d01SWei Wang } 143235732d01SWei Wang return NULL; 143335732d01SWei Wang } 143435732d01SWei Wang 1435b748f260SDavid Ahern static unsigned int fib6_mtu(const struct fib6_result *res) 143635732d01SWei Wang { 1437b748f260SDavid Ahern const struct fib6_nh *nh = res->nh; 1438d4ead6b3SDavid Ahern unsigned int mtu; 1439d4ead6b3SDavid Ahern 1440b748f260SDavid Ahern if (res->f6i->fib6_pmtu) { 1441b748f260SDavid Ahern mtu = res->f6i->fib6_pmtu; 1442dcd1f572SDavid Ahern } else { 1443b748f260SDavid Ahern struct net_device *dev = nh->fib_nh_dev; 1444dcd1f572SDavid Ahern struct inet6_dev *idev; 1445dcd1f572SDavid Ahern 1446dcd1f572SDavid Ahern rcu_read_lock(); 1447dcd1f572SDavid Ahern idev = __in6_dev_get(dev); 1448dcd1f572SDavid Ahern mtu = idev->cnf.mtu6; 1449dcd1f572SDavid Ahern rcu_read_unlock(); 1450dcd1f572SDavid Ahern } 1451dcd1f572SDavid Ahern 1452d4ead6b3SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 1453d4ead6b3SDavid Ahern 1454b748f260SDavid Ahern return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu); 1455d4ead6b3SDavid Ahern } 1456d4ead6b3SDavid Ahern 145735732d01SWei Wang static int rt6_insert_exception(struct rt6_info *nrt, 14585012f0a5SDavid Ahern const struct fib6_result *res) 145935732d01SWei Wang { 14605e670d84SDavid Ahern struct net *net = dev_net(nrt->dst.dev); 146135732d01SWei Wang struct rt6_exception_bucket *bucket; 146235732d01SWei Wang struct in6_addr *src_key = NULL; 146335732d01SWei Wang struct rt6_exception *rt6_ex; 14645012f0a5SDavid Ahern struct fib6_info *f6i = res->f6i; 146535732d01SWei Wang int err = 0; 146635732d01SWei Wang 146735732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 146835732d01SWei Wang 14695012f0a5SDavid Ahern if (f6i->exception_bucket_flushed) { 147035732d01SWei Wang err = -EINVAL; 147135732d01SWei Wang goto out; 147235732d01SWei Wang } 147335732d01SWei Wang 14745012f0a5SDavid Ahern bucket = rcu_dereference_protected(f6i->rt6i_exception_bucket, 147535732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 147635732d01SWei Wang if (!bucket) { 147735732d01SWei Wang bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket), 147835732d01SWei Wang GFP_ATOMIC); 147935732d01SWei Wang if (!bucket) { 148035732d01SWei Wang err = -ENOMEM; 148135732d01SWei Wang goto out; 148235732d01SWei Wang } 14835012f0a5SDavid Ahern rcu_assign_pointer(f6i->rt6i_exception_bucket, bucket); 148435732d01SWei Wang } 148535732d01SWei Wang 148635732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 14875012f0a5SDavid Ahern /* fib6_src.plen != 0 indicates f6i is in subtree 148835732d01SWei Wang * and exception table is indexed by a hash of 14895012f0a5SDavid Ahern * both fib6_dst and fib6_src. 149035732d01SWei Wang * Otherwise, the exception table is indexed by 14915012f0a5SDavid Ahern * a hash of only fib6_dst. 149235732d01SWei Wang */ 14935012f0a5SDavid Ahern if (f6i->fib6_src.plen) 149435732d01SWei Wang src_key = &nrt->rt6i_src.addr; 149535732d01SWei Wang #endif 14965012f0a5SDavid Ahern /* rt6_mtu_change() might lower mtu on f6i. 1497f5bbe7eeSWei Wang * Only insert this exception route if its mtu 14985012f0a5SDavid Ahern * is less than f6i's mtu value. 1499f5bbe7eeSWei Wang */ 1500b748f260SDavid Ahern if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(res)) { 1501f5bbe7eeSWei Wang err = -EINVAL; 1502f5bbe7eeSWei Wang goto out; 1503f5bbe7eeSWei Wang } 150460006a48SWei Wang 150535732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr, 150635732d01SWei Wang src_key); 150735732d01SWei Wang if (rt6_ex) 150835732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 150935732d01SWei Wang 151035732d01SWei Wang rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC); 151135732d01SWei Wang if (!rt6_ex) { 151235732d01SWei Wang err = -ENOMEM; 151335732d01SWei Wang goto out; 151435732d01SWei Wang } 151535732d01SWei Wang rt6_ex->rt6i = nrt; 151635732d01SWei Wang rt6_ex->stamp = jiffies; 151735732d01SWei Wang hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain); 151835732d01SWei Wang bucket->depth++; 151981eb8447SWei Wang net->ipv6.rt6_stats->fib_rt_cache++; 152035732d01SWei Wang 152135732d01SWei Wang if (bucket->depth > FIB6_MAX_DEPTH) 152235732d01SWei Wang rt6_exception_remove_oldest(bucket); 152335732d01SWei Wang 152435732d01SWei Wang out: 152535732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 152635732d01SWei Wang 152735732d01SWei Wang /* Update fn->fn_sernum to invalidate all cached dst */ 1528b886d5f2SPaolo Abeni if (!err) { 15295012f0a5SDavid Ahern spin_lock_bh(&f6i->fib6_table->tb6_lock); 15305012f0a5SDavid Ahern fib6_update_sernum(net, f6i); 15315012f0a5SDavid Ahern spin_unlock_bh(&f6i->fib6_table->tb6_lock); 1532b886d5f2SPaolo Abeni fib6_force_start_gc(net); 1533b886d5f2SPaolo Abeni } 153435732d01SWei Wang 153535732d01SWei Wang return err; 153635732d01SWei Wang } 153735732d01SWei Wang 15388d1c802bSDavid Ahern void rt6_flush_exceptions(struct fib6_info *rt) 153935732d01SWei Wang { 154035732d01SWei Wang struct rt6_exception_bucket *bucket; 154135732d01SWei Wang struct rt6_exception *rt6_ex; 154235732d01SWei Wang struct hlist_node *tmp; 154335732d01SWei Wang int i; 154435732d01SWei Wang 154535732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 154635732d01SWei Wang /* Prevent rt6_insert_exception() to recreate the bucket list */ 154735732d01SWei Wang rt->exception_bucket_flushed = 1; 154835732d01SWei Wang 154935732d01SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 155035732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 155135732d01SWei Wang if (!bucket) 155235732d01SWei Wang goto out; 155335732d01SWei Wang 155435732d01SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 155535732d01SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist) 155635732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 155735732d01SWei Wang WARN_ON_ONCE(bucket->depth); 155835732d01SWei Wang bucket++; 155935732d01SWei Wang } 156035732d01SWei Wang 156135732d01SWei Wang out: 156235732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 156335732d01SWei Wang } 156435732d01SWei Wang 156535732d01SWei Wang /* Find cached rt in the hash table inside passed in rt 156635732d01SWei Wang * Caller has to hold rcu_read_lock() 156735732d01SWei Wang */ 15687e4b5128SDavid Ahern static struct rt6_info *rt6_find_cached_rt(const struct fib6_result *res, 156935732d01SWei Wang struct in6_addr *daddr, 157035732d01SWei Wang struct in6_addr *saddr) 157135732d01SWei Wang { 157235732d01SWei Wang struct rt6_exception_bucket *bucket; 157335732d01SWei Wang struct in6_addr *src_key = NULL; 157435732d01SWei Wang struct rt6_exception *rt6_ex; 15757e4b5128SDavid Ahern struct rt6_info *ret = NULL; 157635732d01SWei Wang 15777e4b5128SDavid Ahern bucket = rcu_dereference(res->f6i->rt6i_exception_bucket); 157835732d01SWei Wang 157935732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 15807e4b5128SDavid Ahern /* fib6i_src.plen != 0 indicates f6i is in subtree 158135732d01SWei Wang * and exception table is indexed by a hash of 15827e4b5128SDavid Ahern * both fib6_dst and fib6_src. 158335732d01SWei Wang * Otherwise, the exception table is indexed by 15847e4b5128SDavid Ahern * a hash of only fib6_dst. 158535732d01SWei Wang */ 15867e4b5128SDavid Ahern if (res->f6i->fib6_src.plen) 158735732d01SWei Wang src_key = saddr; 158835732d01SWei Wang #endif 158935732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 159035732d01SWei Wang 159135732d01SWei Wang if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 15927e4b5128SDavid Ahern ret = rt6_ex->rt6i; 159335732d01SWei Wang 15947e4b5128SDavid Ahern return ret; 159535732d01SWei Wang } 159635732d01SWei Wang 159735732d01SWei Wang /* Remove the passed in cached rt from the hash table that contains it */ 159823fb93a4SDavid Ahern static int rt6_remove_exception_rt(struct rt6_info *rt) 159935732d01SWei Wang { 160035732d01SWei Wang struct rt6_exception_bucket *bucket; 160135732d01SWei Wang struct in6_addr *src_key = NULL; 160235732d01SWei Wang struct rt6_exception *rt6_ex; 16038a14e46fSDavid Ahern struct fib6_info *from; 160435732d01SWei Wang int err; 160535732d01SWei Wang 1606091311deSEric Dumazet from = rcu_dereference(rt->from); 160735732d01SWei Wang if (!from || 1608442d713bSColin Ian King !(rt->rt6i_flags & RTF_CACHE)) 160935732d01SWei Wang return -EINVAL; 161035732d01SWei Wang 161135732d01SWei Wang if (!rcu_access_pointer(from->rt6i_exception_bucket)) 161235732d01SWei Wang return -ENOENT; 161335732d01SWei Wang 161435732d01SWei Wang spin_lock_bh(&rt6_exception_lock); 161535732d01SWei Wang bucket = rcu_dereference_protected(from->rt6i_exception_bucket, 161635732d01SWei Wang lockdep_is_held(&rt6_exception_lock)); 161735732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 161835732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 161935732d01SWei Wang * and exception table is indexed by a hash of 162035732d01SWei Wang * both rt6i_dst and rt6i_src. 162135732d01SWei Wang * Otherwise, the exception table is indexed by 162235732d01SWei Wang * a hash of only rt6i_dst. 162335732d01SWei Wang */ 162493c2fb25SDavid Ahern if (from->fib6_src.plen) 162535732d01SWei Wang src_key = &rt->rt6i_src.addr; 162635732d01SWei Wang #endif 162735732d01SWei Wang rt6_ex = __rt6_find_exception_spinlock(&bucket, 162835732d01SWei Wang &rt->rt6i_dst.addr, 162935732d01SWei Wang src_key); 163035732d01SWei Wang if (rt6_ex) { 163135732d01SWei Wang rt6_remove_exception(bucket, rt6_ex); 163235732d01SWei Wang err = 0; 163335732d01SWei Wang } else { 163435732d01SWei Wang err = -ENOENT; 163535732d01SWei Wang } 163635732d01SWei Wang 163735732d01SWei Wang spin_unlock_bh(&rt6_exception_lock); 163835732d01SWei Wang return err; 163935732d01SWei Wang } 164035732d01SWei Wang 164135732d01SWei Wang /* Find rt6_ex which contains the passed in rt cache and 164235732d01SWei Wang * refresh its stamp 164335732d01SWei Wang */ 164435732d01SWei Wang static void rt6_update_exception_stamp_rt(struct rt6_info *rt) 164535732d01SWei Wang { 164635732d01SWei Wang struct rt6_exception_bucket *bucket; 164735732d01SWei Wang struct in6_addr *src_key = NULL; 164835732d01SWei Wang struct rt6_exception *rt6_ex; 1649193f3685SPaolo Abeni struct fib6_info *from; 165035732d01SWei Wang 165135732d01SWei Wang rcu_read_lock(); 1652193f3685SPaolo Abeni from = rcu_dereference(rt->from); 1653193f3685SPaolo Abeni if (!from || !(rt->rt6i_flags & RTF_CACHE)) 1654193f3685SPaolo Abeni goto unlock; 1655193f3685SPaolo Abeni 165635732d01SWei Wang bucket = rcu_dereference(from->rt6i_exception_bucket); 165735732d01SWei Wang 165835732d01SWei Wang #ifdef CONFIG_IPV6_SUBTREES 165935732d01SWei Wang /* rt6i_src.plen != 0 indicates 'from' is in subtree 166035732d01SWei Wang * and exception table is indexed by a hash of 166135732d01SWei Wang * both rt6i_dst and rt6i_src. 166235732d01SWei Wang * Otherwise, the exception table is indexed by 166335732d01SWei Wang * a hash of only rt6i_dst. 166435732d01SWei Wang */ 166593c2fb25SDavid Ahern if (from->fib6_src.plen) 166635732d01SWei Wang src_key = &rt->rt6i_src.addr; 166735732d01SWei Wang #endif 166835732d01SWei Wang rt6_ex = __rt6_find_exception_rcu(&bucket, 166935732d01SWei Wang &rt->rt6i_dst.addr, 167035732d01SWei Wang src_key); 167135732d01SWei Wang if (rt6_ex) 167235732d01SWei Wang rt6_ex->stamp = jiffies; 167335732d01SWei Wang 1674193f3685SPaolo Abeni unlock: 167535732d01SWei Wang rcu_read_unlock(); 167635732d01SWei Wang } 167735732d01SWei Wang 1678e9fa1495SStefano Brivio static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev, 1679e9fa1495SStefano Brivio struct rt6_info *rt, int mtu) 1680e9fa1495SStefano Brivio { 1681e9fa1495SStefano Brivio /* If the new MTU is lower than the route PMTU, this new MTU will be the 1682e9fa1495SStefano Brivio * lowest MTU in the path: always allow updating the route PMTU to 1683e9fa1495SStefano Brivio * reflect PMTU decreases. 1684e9fa1495SStefano Brivio * 1685e9fa1495SStefano Brivio * If the new MTU is higher, and the route PMTU is equal to the local 1686e9fa1495SStefano Brivio * MTU, this means the old MTU is the lowest in the path, so allow 1687e9fa1495SStefano Brivio * updating it: if other nodes now have lower MTUs, PMTU discovery will 1688e9fa1495SStefano Brivio * handle this. 1689e9fa1495SStefano Brivio */ 1690e9fa1495SStefano Brivio 1691e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) >= mtu) 1692e9fa1495SStefano Brivio return true; 1693e9fa1495SStefano Brivio 1694e9fa1495SStefano Brivio if (dst_mtu(&rt->dst) == idev->cnf.mtu6) 1695e9fa1495SStefano Brivio return true; 1696e9fa1495SStefano Brivio 1697e9fa1495SStefano Brivio return false; 1698e9fa1495SStefano Brivio } 1699e9fa1495SStefano Brivio 1700e9fa1495SStefano Brivio static void rt6_exceptions_update_pmtu(struct inet6_dev *idev, 17018d1c802bSDavid Ahern struct fib6_info *rt, int mtu) 1702f5bbe7eeSWei Wang { 1703f5bbe7eeSWei Wang struct rt6_exception_bucket *bucket; 1704f5bbe7eeSWei Wang struct rt6_exception *rt6_ex; 1705f5bbe7eeSWei Wang int i; 1706f5bbe7eeSWei Wang 1707f5bbe7eeSWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1708f5bbe7eeSWei Wang lockdep_is_held(&rt6_exception_lock)); 1709f5bbe7eeSWei Wang 1710e9fa1495SStefano Brivio if (!bucket) 1711e9fa1495SStefano Brivio return; 1712e9fa1495SStefano Brivio 1713f5bbe7eeSWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1714f5bbe7eeSWei Wang hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) { 1715f5bbe7eeSWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1716e9fa1495SStefano Brivio 1717e9fa1495SStefano Brivio /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected 1718d4ead6b3SDavid Ahern * route), the metrics of its rt->from have already 1719f5bbe7eeSWei Wang * been updated. 1720f5bbe7eeSWei Wang */ 1721d4ead6b3SDavid Ahern if (dst_metric_raw(&entry->dst, RTAX_MTU) && 1722e9fa1495SStefano Brivio rt6_mtu_change_route_allowed(idev, entry, mtu)) 1723d4ead6b3SDavid Ahern dst_metric_set(&entry->dst, RTAX_MTU, mtu); 1724f5bbe7eeSWei Wang } 1725f5bbe7eeSWei Wang bucket++; 1726f5bbe7eeSWei Wang } 1727f5bbe7eeSWei Wang } 1728f5bbe7eeSWei Wang 1729b16cb459SWei Wang #define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE) 1730b16cb459SWei Wang 17318d1c802bSDavid Ahern static void rt6_exceptions_clean_tohost(struct fib6_info *rt, 1732b16cb459SWei Wang struct in6_addr *gateway) 1733b16cb459SWei Wang { 1734b16cb459SWei Wang struct rt6_exception_bucket *bucket; 1735b16cb459SWei Wang struct rt6_exception *rt6_ex; 1736b16cb459SWei Wang struct hlist_node *tmp; 1737b16cb459SWei Wang int i; 1738b16cb459SWei Wang 1739b16cb459SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1740b16cb459SWei Wang return; 1741b16cb459SWei Wang 1742b16cb459SWei Wang spin_lock_bh(&rt6_exception_lock); 1743b16cb459SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1744b16cb459SWei Wang lockdep_is_held(&rt6_exception_lock)); 1745b16cb459SWei Wang 1746b16cb459SWei Wang if (bucket) { 1747b16cb459SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1748b16cb459SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1749b16cb459SWei Wang &bucket->chain, hlist) { 1750b16cb459SWei Wang struct rt6_info *entry = rt6_ex->rt6i; 1751b16cb459SWei Wang 1752b16cb459SWei Wang if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) == 1753b16cb459SWei Wang RTF_CACHE_GATEWAY && 1754b16cb459SWei Wang ipv6_addr_equal(gateway, 1755b16cb459SWei Wang &entry->rt6i_gateway)) { 1756b16cb459SWei Wang rt6_remove_exception(bucket, rt6_ex); 1757b16cb459SWei Wang } 1758b16cb459SWei Wang } 1759b16cb459SWei Wang bucket++; 1760b16cb459SWei Wang } 1761b16cb459SWei Wang } 1762b16cb459SWei Wang 1763b16cb459SWei Wang spin_unlock_bh(&rt6_exception_lock); 1764b16cb459SWei Wang } 1765b16cb459SWei Wang 1766c757faa8SWei Wang static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket, 1767c757faa8SWei Wang struct rt6_exception *rt6_ex, 1768c757faa8SWei Wang struct fib6_gc_args *gc_args, 1769c757faa8SWei Wang unsigned long now) 1770c757faa8SWei Wang { 1771c757faa8SWei Wang struct rt6_info *rt = rt6_ex->rt6i; 1772c757faa8SWei Wang 17731859bac0SPaolo Abeni /* we are pruning and obsoleting aged-out and non gateway exceptions 17741859bac0SPaolo Abeni * even if others have still references to them, so that on next 17751859bac0SPaolo Abeni * dst_check() such references can be dropped. 17761859bac0SPaolo Abeni * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when 17771859bac0SPaolo Abeni * expired, independently from their aging, as per RFC 8201 section 4 17781859bac0SPaolo Abeni */ 177931afeb42SWei Wang if (!(rt->rt6i_flags & RTF_EXPIRES)) { 178031afeb42SWei Wang if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) { 1781c757faa8SWei Wang RT6_TRACE("aging clone %p\n", rt); 1782c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1783c757faa8SWei Wang return; 178431afeb42SWei Wang } 178531afeb42SWei Wang } else if (time_after(jiffies, rt->dst.expires)) { 178631afeb42SWei Wang RT6_TRACE("purging expired route %p\n", rt); 178731afeb42SWei Wang rt6_remove_exception(bucket, rt6_ex); 178831afeb42SWei Wang return; 178931afeb42SWei Wang } 179031afeb42SWei Wang 179131afeb42SWei Wang if (rt->rt6i_flags & RTF_GATEWAY) { 1792c757faa8SWei Wang struct neighbour *neigh; 1793c757faa8SWei Wang __u8 neigh_flags = 0; 1794c757faa8SWei Wang 17951bfa26ffSEric Dumazet neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway); 17961bfa26ffSEric Dumazet if (neigh) 1797c757faa8SWei Wang neigh_flags = neigh->flags; 17981bfa26ffSEric Dumazet 1799c757faa8SWei Wang if (!(neigh_flags & NTF_ROUTER)) { 1800c757faa8SWei Wang RT6_TRACE("purging route %p via non-router but gateway\n", 1801c757faa8SWei Wang rt); 1802c757faa8SWei Wang rt6_remove_exception(bucket, rt6_ex); 1803c757faa8SWei Wang return; 1804c757faa8SWei Wang } 1805c757faa8SWei Wang } 180631afeb42SWei Wang 1807c757faa8SWei Wang gc_args->more++; 1808c757faa8SWei Wang } 1809c757faa8SWei Wang 18108d1c802bSDavid Ahern void rt6_age_exceptions(struct fib6_info *rt, 1811c757faa8SWei Wang struct fib6_gc_args *gc_args, 1812c757faa8SWei Wang unsigned long now) 1813c757faa8SWei Wang { 1814c757faa8SWei Wang struct rt6_exception_bucket *bucket; 1815c757faa8SWei Wang struct rt6_exception *rt6_ex; 1816c757faa8SWei Wang struct hlist_node *tmp; 1817c757faa8SWei Wang int i; 1818c757faa8SWei Wang 1819c757faa8SWei Wang if (!rcu_access_pointer(rt->rt6i_exception_bucket)) 1820c757faa8SWei Wang return; 1821c757faa8SWei Wang 18221bfa26ffSEric Dumazet rcu_read_lock_bh(); 18231bfa26ffSEric Dumazet spin_lock(&rt6_exception_lock); 1824c757faa8SWei Wang bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1825c757faa8SWei Wang lockdep_is_held(&rt6_exception_lock)); 1826c757faa8SWei Wang 1827c757faa8SWei Wang if (bucket) { 1828c757faa8SWei Wang for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) { 1829c757faa8SWei Wang hlist_for_each_entry_safe(rt6_ex, tmp, 1830c757faa8SWei Wang &bucket->chain, hlist) { 1831c757faa8SWei Wang rt6_age_examine_exception(bucket, rt6_ex, 1832c757faa8SWei Wang gc_args, now); 1833c757faa8SWei Wang } 1834c757faa8SWei Wang bucket++; 1835c757faa8SWei Wang } 1836c757faa8SWei Wang } 18371bfa26ffSEric Dumazet spin_unlock(&rt6_exception_lock); 18381bfa26ffSEric Dumazet rcu_read_unlock_bh(); 1839c757faa8SWei Wang } 1840c757faa8SWei Wang 18411d053da9SDavid Ahern /* must be called with rcu lock held */ 1842effda4ddSDavid Ahern int fib6_table_lookup(struct net *net, struct fib6_table *table, int oif, 1843effda4ddSDavid Ahern struct flowi6 *fl6, struct fib6_result *res, int strict) 18441da177e4SLinus Torvalds { 1845367efcb9SMartin KaFai Lau struct fib6_node *fn, *saved_fn; 18461da177e4SLinus Torvalds 18476454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 1848367efcb9SMartin KaFai Lau saved_fn = fn; 18491da177e4SLinus Torvalds 1850ca254490SDavid Ahern if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF) 1851ca254490SDavid Ahern oif = 0; 1852ca254490SDavid Ahern 1853a3c00e46SMartin KaFai Lau redo_rt6_select: 1854effda4ddSDavid Ahern rt6_select(net, fn, oif, res, strict); 1855effda4ddSDavid Ahern if (res->f6i == net->ipv6.fib6_null_entry) { 1856a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 1857a3c00e46SMartin KaFai Lau if (fn) 1858a3c00e46SMartin KaFai Lau goto redo_rt6_select; 1859367efcb9SMartin KaFai Lau else if (strict & RT6_LOOKUP_F_REACHABLE) { 1860367efcb9SMartin KaFai Lau /* also consider unreachable route */ 1861367efcb9SMartin KaFai Lau strict &= ~RT6_LOOKUP_F_REACHABLE; 1862367efcb9SMartin KaFai Lau fn = saved_fn; 1863367efcb9SMartin KaFai Lau goto redo_rt6_select; 1864367efcb9SMartin KaFai Lau } 1865a3c00e46SMartin KaFai Lau } 1866a3c00e46SMartin KaFai Lau 1867effda4ddSDavid Ahern trace_fib6_table_lookup(net, res, table, fl6); 1868d52d3997SMartin KaFai Lau 1869effda4ddSDavid Ahern return 0; 18701d053da9SDavid Ahern } 18711d053da9SDavid Ahern 18721d053da9SDavid Ahern struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table, 18731d053da9SDavid Ahern int oif, struct flowi6 *fl6, 18741d053da9SDavid Ahern const struct sk_buff *skb, int flags) 18751d053da9SDavid Ahern { 1876b1d40991SDavid Ahern struct fib6_result res = {}; 18771d053da9SDavid Ahern struct rt6_info *rt; 18781d053da9SDavid Ahern int strict = 0; 18791d053da9SDavid Ahern 18801d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IFACE; 18811d053da9SDavid Ahern strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE; 18821d053da9SDavid Ahern if (net->ipv6.devconf_all->forwarding == 0) 18831d053da9SDavid Ahern strict |= RT6_LOOKUP_F_REACHABLE; 18841d053da9SDavid Ahern 18851d053da9SDavid Ahern rcu_read_lock(); 18861d053da9SDavid Ahern 1887effda4ddSDavid Ahern fib6_table_lookup(net, table, oif, fl6, &res, strict); 1888b1d40991SDavid Ahern if (res.f6i == net->ipv6.fib6_null_entry) { 1889421842edSDavid Ahern rt = net->ipv6.ip6_null_entry; 189066f5d6ceSWei Wang rcu_read_unlock(); 1891d3843fe5SWei Wang dst_hold(&rt->dst); 1892d3843fe5SWei Wang return rt; 1893d3843fe5SWei Wang } 189423fb93a4SDavid Ahern 1895b1d40991SDavid Ahern fib6_select_path(net, &res, fl6, oif, false, skb, strict); 1896d83009d4SDavid Ahern 189723fb93a4SDavid Ahern /*Search through exception table */ 18987e4b5128SDavid Ahern rt = rt6_find_cached_rt(&res, &fl6->daddr, &fl6->saddr); 189923fb93a4SDavid Ahern if (rt) { 190010585b43SDavid Ahern if (ip6_hold_safe(net, &rt)) 19011da177e4SLinus Torvalds dst_use_noref(&rt->dst, jiffies); 1902d4ead6b3SDavid Ahern 190366f5d6ceSWei Wang rcu_read_unlock(); 1904d52d3997SMartin KaFai Lau return rt; 19053da59bd9SMartin KaFai Lau } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) && 1906b1d40991SDavid Ahern !res.nh->fib_nh_gw_family)) { 19073da59bd9SMartin KaFai Lau /* Create a RTF_CACHE clone which will not be 19083da59bd9SMartin KaFai Lau * owned by the fib6 tree. It is for the special case where 19093da59bd9SMartin KaFai Lau * the daddr in the skb during the neighbor look-up is different 19103da59bd9SMartin KaFai Lau * from the fl6->daddr used to look-up route here. 19113da59bd9SMartin KaFai Lau */ 19123da59bd9SMartin KaFai Lau struct rt6_info *uncached_rt; 19133da59bd9SMartin KaFai Lau 191485bd05deSDavid Ahern uncached_rt = ip6_rt_cache_alloc(&res, &fl6->daddr, NULL); 1915d52d3997SMartin KaFai Lau 19164d85cd0cSDavid Ahern rcu_read_unlock(); 19173da59bd9SMartin KaFai Lau 19181cfb71eeSWei Wang if (uncached_rt) { 19191cfb71eeSWei Wang /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc() 19201cfb71eeSWei Wang * No need for another dst_hold() 19211cfb71eeSWei Wang */ 19228d0b94afSMartin KaFai Lau rt6_uncached_list_add(uncached_rt); 192381eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 19241cfb71eeSWei Wang } else { 19253da59bd9SMartin KaFai Lau uncached_rt = net->ipv6.ip6_null_entry; 19263da59bd9SMartin KaFai Lau dst_hold(&uncached_rt->dst); 19271cfb71eeSWei Wang } 1928b811580dSDavid Ahern 19293da59bd9SMartin KaFai Lau return uncached_rt; 1930d52d3997SMartin KaFai Lau } else { 1931d52d3997SMartin KaFai Lau /* Get a percpu copy */ 1932d52d3997SMartin KaFai Lau 1933d52d3997SMartin KaFai Lau struct rt6_info *pcpu_rt; 1934d52d3997SMartin KaFai Lau 1935951f788aSEric Dumazet local_bh_disable(); 1936db3fedeeSDavid Ahern pcpu_rt = rt6_get_pcpu_route(&res); 1937d52d3997SMartin KaFai Lau 193893531c67SDavid Ahern if (!pcpu_rt) 1939db3fedeeSDavid Ahern pcpu_rt = rt6_make_pcpu_route(net, &res); 194093531c67SDavid Ahern 1941951f788aSEric Dumazet local_bh_enable(); 1942951f788aSEric Dumazet rcu_read_unlock(); 1943d4bea421SDavid Ahern 1944d52d3997SMartin KaFai Lau return pcpu_rt; 1945d52d3997SMartin KaFai Lau } 1946c71099acSThomas Graf } 19479ff74384SDavid Ahern EXPORT_SYMBOL_GPL(ip6_pol_route); 1948c71099acSThomas Graf 1949b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_input(struct net *net, 1950b75cc8f9SDavid Ahern struct fib6_table *table, 1951b75cc8f9SDavid Ahern struct flowi6 *fl6, 1952b75cc8f9SDavid Ahern const struct sk_buff *skb, 1953b75cc8f9SDavid Ahern int flags) 19544acad72dSPavel Emelyanov { 1955b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags); 19564acad72dSPavel Emelyanov } 19574acad72dSPavel Emelyanov 1958d409b847SMahesh Bandewar struct dst_entry *ip6_route_input_lookup(struct net *net, 195972331bc0SShmulik Ladkani struct net_device *dev, 1960b75cc8f9SDavid Ahern struct flowi6 *fl6, 1961b75cc8f9SDavid Ahern const struct sk_buff *skb, 1962b75cc8f9SDavid Ahern int flags) 196372331bc0SShmulik Ladkani { 196472331bc0SShmulik Ladkani if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG) 196572331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_IFACE; 196672331bc0SShmulik Ladkani 1967b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input); 196872331bc0SShmulik Ladkani } 1969d409b847SMahesh Bandewar EXPORT_SYMBOL_GPL(ip6_route_input_lookup); 197072331bc0SShmulik Ladkani 197123aebdacSJakub Sitnicki static void ip6_multipath_l3_keys(const struct sk_buff *skb, 19725e5d6fedSRoopa Prabhu struct flow_keys *keys, 19735e5d6fedSRoopa Prabhu struct flow_keys *flkeys) 197423aebdacSJakub Sitnicki { 197523aebdacSJakub Sitnicki const struct ipv6hdr *outer_iph = ipv6_hdr(skb); 197623aebdacSJakub Sitnicki const struct ipv6hdr *key_iph = outer_iph; 19775e5d6fedSRoopa Prabhu struct flow_keys *_flkeys = flkeys; 197823aebdacSJakub Sitnicki const struct ipv6hdr *inner_iph; 197923aebdacSJakub Sitnicki const struct icmp6hdr *icmph; 198023aebdacSJakub Sitnicki struct ipv6hdr _inner_iph; 1981cea67a2dSEric Dumazet struct icmp6hdr _icmph; 198223aebdacSJakub Sitnicki 198323aebdacSJakub Sitnicki if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6)) 198423aebdacSJakub Sitnicki goto out; 198523aebdacSJakub Sitnicki 1986cea67a2dSEric Dumazet icmph = skb_header_pointer(skb, skb_transport_offset(skb), 1987cea67a2dSEric Dumazet sizeof(_icmph), &_icmph); 1988cea67a2dSEric Dumazet if (!icmph) 1989cea67a2dSEric Dumazet goto out; 1990cea67a2dSEric Dumazet 199123aebdacSJakub Sitnicki if (icmph->icmp6_type != ICMPV6_DEST_UNREACH && 199223aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PKT_TOOBIG && 199323aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_TIME_EXCEED && 199423aebdacSJakub Sitnicki icmph->icmp6_type != ICMPV6_PARAMPROB) 199523aebdacSJakub Sitnicki goto out; 199623aebdacSJakub Sitnicki 199723aebdacSJakub Sitnicki inner_iph = skb_header_pointer(skb, 199823aebdacSJakub Sitnicki skb_transport_offset(skb) + sizeof(*icmph), 199923aebdacSJakub Sitnicki sizeof(_inner_iph), &_inner_iph); 200023aebdacSJakub Sitnicki if (!inner_iph) 200123aebdacSJakub Sitnicki goto out; 200223aebdacSJakub Sitnicki 200323aebdacSJakub Sitnicki key_iph = inner_iph; 20045e5d6fedSRoopa Prabhu _flkeys = NULL; 200523aebdacSJakub Sitnicki out: 20065e5d6fedSRoopa Prabhu if (_flkeys) { 20075e5d6fedSRoopa Prabhu keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src; 20085e5d6fedSRoopa Prabhu keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst; 20095e5d6fedSRoopa Prabhu keys->tags.flow_label = _flkeys->tags.flow_label; 20105e5d6fedSRoopa Prabhu keys->basic.ip_proto = _flkeys->basic.ip_proto; 20115e5d6fedSRoopa Prabhu } else { 201223aebdacSJakub Sitnicki keys->addrs.v6addrs.src = key_iph->saddr; 201323aebdacSJakub Sitnicki keys->addrs.v6addrs.dst = key_iph->daddr; 2014fa1be7e0SMichal Kubecek keys->tags.flow_label = ip6_flowlabel(key_iph); 201523aebdacSJakub Sitnicki keys->basic.ip_proto = key_iph->nexthdr; 201623aebdacSJakub Sitnicki } 20175e5d6fedSRoopa Prabhu } 201823aebdacSJakub Sitnicki 201923aebdacSJakub Sitnicki /* if skb is set it will be used and fl6 can be NULL */ 2020b4bac172SDavid Ahern u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6, 2021b4bac172SDavid Ahern const struct sk_buff *skb, struct flow_keys *flkeys) 202223aebdacSJakub Sitnicki { 202323aebdacSJakub Sitnicki struct flow_keys hash_keys; 20249a2a537aSDavid Ahern u32 mhash; 202523aebdacSJakub Sitnicki 2026bbfa047aSDavid S. Miller switch (ip6_multipath_hash_policy(net)) { 2027b4bac172SDavid Ahern case 0: 20286f74b6c2SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 20296f74b6c2SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 20309a2a537aSDavid Ahern if (skb) { 20315e5d6fedSRoopa Prabhu ip6_multipath_l3_keys(skb, &hash_keys, flkeys); 20329a2a537aSDavid Ahern } else { 20339a2a537aSDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 20349a2a537aSDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2035fa1be7e0SMichal Kubecek hash_keys.tags.flow_label = (__force u32)flowi6_get_flowlabel(fl6); 20369a2a537aSDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 203723aebdacSJakub Sitnicki } 2038b4bac172SDavid Ahern break; 2039b4bac172SDavid Ahern case 1: 2040b4bac172SDavid Ahern if (skb) { 2041b4bac172SDavid Ahern unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP; 2042b4bac172SDavid Ahern struct flow_keys keys; 2043b4bac172SDavid Ahern 2044b4bac172SDavid Ahern /* short-circuit if we already have L4 hash present */ 2045b4bac172SDavid Ahern if (skb->l4_hash) 2046b4bac172SDavid Ahern return skb_get_hash_raw(skb) >> 1; 2047b4bac172SDavid Ahern 2048b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2049b4bac172SDavid Ahern 2050b4bac172SDavid Ahern if (!flkeys) { 2051b4bac172SDavid Ahern skb_flow_dissect_flow_keys(skb, &keys, flag); 2052b4bac172SDavid Ahern flkeys = &keys; 2053b4bac172SDavid Ahern } 2054b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2055b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src; 2056b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst; 2057b4bac172SDavid Ahern hash_keys.ports.src = flkeys->ports.src; 2058b4bac172SDavid Ahern hash_keys.ports.dst = flkeys->ports.dst; 2059b4bac172SDavid Ahern hash_keys.basic.ip_proto = flkeys->basic.ip_proto; 2060b4bac172SDavid Ahern } else { 2061b4bac172SDavid Ahern memset(&hash_keys, 0, sizeof(hash_keys)); 2062b4bac172SDavid Ahern hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS; 2063b4bac172SDavid Ahern hash_keys.addrs.v6addrs.src = fl6->saddr; 2064b4bac172SDavid Ahern hash_keys.addrs.v6addrs.dst = fl6->daddr; 2065b4bac172SDavid Ahern hash_keys.ports.src = fl6->fl6_sport; 2066b4bac172SDavid Ahern hash_keys.ports.dst = fl6->fl6_dport; 2067b4bac172SDavid Ahern hash_keys.basic.ip_proto = fl6->flowi6_proto; 2068b4bac172SDavid Ahern } 2069b4bac172SDavid Ahern break; 2070b4bac172SDavid Ahern } 20719a2a537aSDavid Ahern mhash = flow_hash_from_keys(&hash_keys); 207223aebdacSJakub Sitnicki 20739a2a537aSDavid Ahern return mhash >> 1; 207423aebdacSJakub Sitnicki } 207523aebdacSJakub Sitnicki 2076c71099acSThomas Graf void ip6_route_input(struct sk_buff *skb) 2077c71099acSThomas Graf { 2078b71d1d42SEric Dumazet const struct ipv6hdr *iph = ipv6_hdr(skb); 2079c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(skb->dev); 2080adaa70bbSThomas Graf int flags = RT6_LOOKUP_F_HAS_SADDR; 2081904af04dSJiri Benc struct ip_tunnel_info *tun_info; 20824c9483b2SDavid S. Miller struct flowi6 fl6 = { 2083e0d56fddSDavid Ahern .flowi6_iif = skb->dev->ifindex, 20844c9483b2SDavid S. Miller .daddr = iph->daddr, 20854c9483b2SDavid S. Miller .saddr = iph->saddr, 20866502ca52SYOSHIFUJI Hideaki / 吉藤英明 .flowlabel = ip6_flowinfo(iph), 20874c9483b2SDavid S. Miller .flowi6_mark = skb->mark, 20884c9483b2SDavid S. Miller .flowi6_proto = iph->nexthdr, 2089c71099acSThomas Graf }; 20905e5d6fedSRoopa Prabhu struct flow_keys *flkeys = NULL, _flkeys; 2091adaa70bbSThomas Graf 2092904af04dSJiri Benc tun_info = skb_tunnel_info(skb); 209346fa062aSJiri Benc if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX)) 2094904af04dSJiri Benc fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id; 20955e5d6fedSRoopa Prabhu 20965e5d6fedSRoopa Prabhu if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys)) 20975e5d6fedSRoopa Prabhu flkeys = &_flkeys; 20985e5d6fedSRoopa Prabhu 209923aebdacSJakub Sitnicki if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6)) 2100b4bac172SDavid Ahern fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys); 210106e9d040SJiri Benc skb_dst_drop(skb); 2102b75cc8f9SDavid Ahern skb_dst_set(skb, 2103b75cc8f9SDavid Ahern ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags)); 2104c71099acSThomas Graf } 2105c71099acSThomas Graf 2106b75cc8f9SDavid Ahern static struct rt6_info *ip6_pol_route_output(struct net *net, 2107b75cc8f9SDavid Ahern struct fib6_table *table, 2108b75cc8f9SDavid Ahern struct flowi6 *fl6, 2109b75cc8f9SDavid Ahern const struct sk_buff *skb, 2110b75cc8f9SDavid Ahern int flags) 2111c71099acSThomas Graf { 2112b75cc8f9SDavid Ahern return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags); 2113c71099acSThomas Graf } 2114c71099acSThomas Graf 21156f21c96aSPaolo Abeni struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk, 21166f21c96aSPaolo Abeni struct flowi6 *fl6, int flags) 2117c71099acSThomas Graf { 2118d46a9d67SDavid Ahern bool any_src; 2119c71099acSThomas Graf 21203ede0bbcSRobert Shearman if (ipv6_addr_type(&fl6->daddr) & 21213ede0bbcSRobert Shearman (IPV6_ADDR_MULTICAST | IPV6_ADDR_LINKLOCAL)) { 21224c1feac5SDavid Ahern struct dst_entry *dst; 21234c1feac5SDavid Ahern 21244c1feac5SDavid Ahern dst = l3mdev_link_scope_lookup(net, fl6); 2125ca254490SDavid Ahern if (dst) 2126ca254490SDavid Ahern return dst; 21274c1feac5SDavid Ahern } 2128ca254490SDavid Ahern 21291fb9489bSPavel Emelyanov fl6->flowi6_iif = LOOPBACK_IFINDEX; 21304dc27d1cSDavid McCullough 2131d46a9d67SDavid Ahern any_src = ipv6_addr_any(&fl6->saddr); 2132741a11d9SDavid Ahern if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) || 2133d46a9d67SDavid Ahern (fl6->flowi6_oif && any_src)) 213477d16f45SYOSHIFUJI Hideaki flags |= RT6_LOOKUP_F_IFACE; 2135c71099acSThomas Graf 2136d46a9d67SDavid Ahern if (!any_src) 2137adaa70bbSThomas Graf flags |= RT6_LOOKUP_F_HAS_SADDR; 21380c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 else if (sk) 21390c9a2ac1SYOSHIFUJI Hideaki / 吉藤英明 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs); 2140adaa70bbSThomas Graf 2141b75cc8f9SDavid Ahern return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output); 21421da177e4SLinus Torvalds } 21436f21c96aSPaolo Abeni EXPORT_SYMBOL_GPL(ip6_route_output_flags); 21441da177e4SLinus Torvalds 21452774c131SDavid S. Miller struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig) 214614e50e57SDavid S. Miller { 21475c1e6aa3SDavid S. Miller struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig; 21481dbe3252SWei Wang struct net_device *loopback_dev = net->loopback_dev; 214914e50e57SDavid S. Miller struct dst_entry *new = NULL; 215014e50e57SDavid S. Miller 21511dbe3252SWei Wang rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1, 215262cf27e5SSteffen Klassert DST_OBSOLETE_DEAD, 0); 215314e50e57SDavid S. Miller if (rt) { 21540a1f5962SMartin KaFai Lau rt6_info_init(rt); 215581eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc); 21560a1f5962SMartin KaFai Lau 2157d8d1f30bSChangli Gao new = &rt->dst; 215814e50e57SDavid S. Miller new->__use = 1; 2159352e512cSHerbert Xu new->input = dst_discard; 2160ede2059dSEric W. Biederman new->output = dst_discard_out; 216114e50e57SDavid S. Miller 2162defb3519SDavid S. Miller dst_copy_metrics(new, &ort->dst); 216314e50e57SDavid S. Miller 21641dbe3252SWei Wang rt->rt6i_idev = in6_dev_get(loopback_dev); 21654e3fd7a0SAlexey Dobriyan rt->rt6i_gateway = ort->rt6i_gateway; 21660a1f5962SMartin KaFai Lau rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU; 216714e50e57SDavid S. Miller 216814e50e57SDavid S. Miller memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key)); 216914e50e57SDavid S. Miller #ifdef CONFIG_IPV6_SUBTREES 217014e50e57SDavid S. Miller memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key)); 217114e50e57SDavid S. Miller #endif 217214e50e57SDavid S. Miller } 217314e50e57SDavid S. Miller 217469ead7afSDavid S. Miller dst_release(dst_orig); 217569ead7afSDavid S. Miller return new ? new : ERR_PTR(-ENOMEM); 217614e50e57SDavid S. Miller } 217714e50e57SDavid S. Miller 21781da177e4SLinus Torvalds /* 21791da177e4SLinus Torvalds * Destination cache support functions 21801da177e4SLinus Torvalds */ 21811da177e4SLinus Torvalds 21828d1c802bSDavid Ahern static bool fib6_check(struct fib6_info *f6i, u32 cookie) 21833da59bd9SMartin KaFai Lau { 218436143645SSteffen Klassert u32 rt_cookie = 0; 2185c5cff856SWei Wang 21868ae86971SDavid Ahern if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie) 218793531c67SDavid Ahern return false; 218893531c67SDavid Ahern 218993531c67SDavid Ahern if (fib6_check_expired(f6i)) 219093531c67SDavid Ahern return false; 219193531c67SDavid Ahern 219293531c67SDavid Ahern return true; 219393531c67SDavid Ahern } 219493531c67SDavid Ahern 2195a68886a6SDavid Ahern static struct dst_entry *rt6_check(struct rt6_info *rt, 2196a68886a6SDavid Ahern struct fib6_info *from, 2197a68886a6SDavid Ahern u32 cookie) 21983da59bd9SMartin KaFai Lau { 2199c5cff856SWei Wang u32 rt_cookie = 0; 2200c5cff856SWei Wang 2201a68886a6SDavid Ahern if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) || 220293531c67SDavid Ahern rt_cookie != cookie) 22033da59bd9SMartin KaFai Lau return NULL; 22043da59bd9SMartin KaFai Lau 22053da59bd9SMartin KaFai Lau if (rt6_check_expired(rt)) 22063da59bd9SMartin KaFai Lau return NULL; 22073da59bd9SMartin KaFai Lau 22083da59bd9SMartin KaFai Lau return &rt->dst; 22093da59bd9SMartin KaFai Lau } 22103da59bd9SMartin KaFai Lau 2211a68886a6SDavid Ahern static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, 2212a68886a6SDavid Ahern struct fib6_info *from, 2213a68886a6SDavid Ahern u32 cookie) 22143da59bd9SMartin KaFai Lau { 22155973fb1eSMartin KaFai Lau if (!__rt6_check_expired(rt) && 22165973fb1eSMartin KaFai Lau rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK && 2217a68886a6SDavid Ahern fib6_check(from, cookie)) 22183da59bd9SMartin KaFai Lau return &rt->dst; 22193da59bd9SMartin KaFai Lau else 22203da59bd9SMartin KaFai Lau return NULL; 22213da59bd9SMartin KaFai Lau } 22223da59bd9SMartin KaFai Lau 22231da177e4SLinus Torvalds static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie) 22241da177e4SLinus Torvalds { 2225a87b7dc9SDavid Ahern struct dst_entry *dst_ret; 2226a68886a6SDavid Ahern struct fib6_info *from; 22271da177e4SLinus Torvalds struct rt6_info *rt; 22281da177e4SLinus Torvalds 2229a87b7dc9SDavid Ahern rt = container_of(dst, struct rt6_info, dst); 2230a87b7dc9SDavid Ahern 2231a87b7dc9SDavid Ahern rcu_read_lock(); 22321da177e4SLinus Torvalds 22336f3118b5SNicolas Dichtel /* All IPV6 dsts are created with ->obsolete set to the value 22346f3118b5SNicolas Dichtel * DST_OBSOLETE_FORCE_CHK which forces validation calls down 22356f3118b5SNicolas Dichtel * into this function always. 22366f3118b5SNicolas Dichtel */ 2237e3bc10bdSHannes Frederic Sowa 2238a68886a6SDavid Ahern from = rcu_dereference(rt->from); 22394b32b5adSMartin KaFai Lau 2240a68886a6SDavid Ahern if (from && (rt->rt6i_flags & RTF_PCPU || 2241a68886a6SDavid Ahern unlikely(!list_empty(&rt->rt6i_uncached)))) 2242a68886a6SDavid Ahern dst_ret = rt6_dst_from_check(rt, from, cookie); 22433da59bd9SMartin KaFai Lau else 2244a68886a6SDavid Ahern dst_ret = rt6_check(rt, from, cookie); 2245a87b7dc9SDavid Ahern 2246a87b7dc9SDavid Ahern rcu_read_unlock(); 2247a87b7dc9SDavid Ahern 2248a87b7dc9SDavid Ahern return dst_ret; 22491da177e4SLinus Torvalds } 22501da177e4SLinus Torvalds 22511da177e4SLinus Torvalds static struct dst_entry *ip6_negative_advice(struct dst_entry *dst) 22521da177e4SLinus Torvalds { 22531da177e4SLinus Torvalds struct rt6_info *rt = (struct rt6_info *) dst; 22541da177e4SLinus Torvalds 22551da177e4SLinus Torvalds if (rt) { 225654c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt->rt6i_flags & RTF_CACHE) { 2257c3c14da0SDavid Ahern rcu_read_lock(); 225854c1a859SYOSHIFUJI Hideaki / 吉藤英明 if (rt6_check_expired(rt)) { 225993531c67SDavid Ahern rt6_remove_exception_rt(rt); 226054c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 22611da177e4SLinus Torvalds } 2262c3c14da0SDavid Ahern rcu_read_unlock(); 226354c1a859SYOSHIFUJI Hideaki / 吉藤英明 } else { 226454c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst_release(dst); 226554c1a859SYOSHIFUJI Hideaki / 吉藤英明 dst = NULL; 226654c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 226754c1a859SYOSHIFUJI Hideaki / 吉藤英明 } 226854c1a859SYOSHIFUJI Hideaki / 吉藤英明 return dst; 22691da177e4SLinus Torvalds } 22701da177e4SLinus Torvalds 22711da177e4SLinus Torvalds static void ip6_link_failure(struct sk_buff *skb) 22721da177e4SLinus Torvalds { 22731da177e4SLinus Torvalds struct rt6_info *rt; 22741da177e4SLinus Torvalds 22753ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0); 22761da177e4SLinus Torvalds 2277adf30907SEric Dumazet rt = (struct rt6_info *) skb_dst(skb); 22781da177e4SLinus Torvalds if (rt) { 22798a14e46fSDavid Ahern rcu_read_lock(); 22801eb4f758SHannes Frederic Sowa if (rt->rt6i_flags & RTF_CACHE) { 228193531c67SDavid Ahern rt6_remove_exception_rt(rt); 2282c5cff856SWei Wang } else { 2283a68886a6SDavid Ahern struct fib6_info *from; 2284c5cff856SWei Wang struct fib6_node *fn; 2285c5cff856SWei Wang 2286a68886a6SDavid Ahern from = rcu_dereference(rt->from); 2287a68886a6SDavid Ahern if (from) { 2288a68886a6SDavid Ahern fn = rcu_dereference(from->fib6_node); 2289c5cff856SWei Wang if (fn && (rt->rt6i_flags & RTF_DEFAULT)) 2290c5cff856SWei Wang fn->fn_sernum = -1; 2291a68886a6SDavid Ahern } 22921da177e4SLinus Torvalds } 22931da177e4SLinus Torvalds rcu_read_unlock(); 22941da177e4SLinus Torvalds } 22951da177e4SLinus Torvalds } 22961da177e4SLinus Torvalds 22976a3e030fSDavid Ahern static void rt6_update_expires(struct rt6_info *rt0, int timeout) 22986a3e030fSDavid Ahern { 2299a68886a6SDavid Ahern if (!(rt0->rt6i_flags & RTF_EXPIRES)) { 2300a68886a6SDavid Ahern struct fib6_info *from; 2301a68886a6SDavid Ahern 2302a68886a6SDavid Ahern rcu_read_lock(); 2303a68886a6SDavid Ahern from = rcu_dereference(rt0->from); 2304a68886a6SDavid Ahern if (from) 2305a68886a6SDavid Ahern rt0->dst.expires = from->expires; 2306a68886a6SDavid Ahern rcu_read_unlock(); 2307a68886a6SDavid Ahern } 23086a3e030fSDavid Ahern 23096a3e030fSDavid Ahern dst_set_expires(&rt0->dst, timeout); 23106a3e030fSDavid Ahern rt0->rt6i_flags |= RTF_EXPIRES; 23116700c270SDavid S. Miller } 23121da177e4SLinus Torvalds 231345e4fd26SMartin KaFai Lau static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu) 231445e4fd26SMartin KaFai Lau { 231545e4fd26SMartin KaFai Lau struct net *net = dev_net(rt->dst.dev); 231645e4fd26SMartin KaFai Lau 2317d4ead6b3SDavid Ahern dst_metric_set(&rt->dst, RTAX_MTU, mtu); 231845e4fd26SMartin KaFai Lau rt->rt6i_flags |= RTF_MODIFIED; 231945e4fd26SMartin KaFai Lau rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires); 232045e4fd26SMartin KaFai Lau } 232145e4fd26SMartin KaFai Lau 23220d3f6d29SMartin KaFai Lau static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt) 23230d3f6d29SMartin KaFai Lau { 23240d3f6d29SMartin KaFai Lau return !(rt->rt6i_flags & RTF_CACHE) && 23251490ed2aSPaolo Abeni (rt->rt6i_flags & RTF_PCPU || rcu_access_pointer(rt->from)); 23260d3f6d29SMartin KaFai Lau } 23270d3f6d29SMartin KaFai Lau 232845e4fd26SMartin KaFai Lau static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk, 232945e4fd26SMartin KaFai Lau const struct ipv6hdr *iph, u32 mtu) 23301da177e4SLinus Torvalds { 23310dec879fSJulian Anastasov const struct in6_addr *daddr, *saddr; 23321da177e4SLinus Torvalds struct rt6_info *rt6 = (struct rt6_info *)dst; 23331da177e4SLinus Torvalds 233419bda36cSXin Long if (dst_metric_locked(dst, RTAX_MTU)) 233519bda36cSXin Long return; 233619bda36cSXin Long 233745e4fd26SMartin KaFai Lau if (iph) { 233845e4fd26SMartin KaFai Lau daddr = &iph->daddr; 233945e4fd26SMartin KaFai Lau saddr = &iph->saddr; 234045e4fd26SMartin KaFai Lau } else if (sk) { 234145e4fd26SMartin KaFai Lau daddr = &sk->sk_v6_daddr; 234245e4fd26SMartin KaFai Lau saddr = &inet6_sk(sk)->saddr; 234345e4fd26SMartin KaFai Lau } else { 23440dec879fSJulian Anastasov daddr = NULL; 23450dec879fSJulian Anastasov saddr = NULL; 23461da177e4SLinus Torvalds } 23470dec879fSJulian Anastasov dst_confirm_neigh(dst, daddr); 23480dec879fSJulian Anastasov mtu = max_t(u32, mtu, IPV6_MIN_MTU); 23490dec879fSJulian Anastasov if (mtu >= dst_mtu(dst)) 23500dec879fSJulian Anastasov return; 23510dec879fSJulian Anastasov 23520dec879fSJulian Anastasov if (!rt6_cache_allowed_for_pmtu(rt6)) { 23530dec879fSJulian Anastasov rt6_do_update_pmtu(rt6, mtu); 23542b760fcfSWei Wang /* update rt6_ex->stamp for cache */ 23552b760fcfSWei Wang if (rt6->rt6i_flags & RTF_CACHE) 23562b760fcfSWei Wang rt6_update_exception_stamp_rt(rt6); 23570dec879fSJulian Anastasov } else if (daddr) { 235885bd05deSDavid Ahern struct fib6_result res = {}; 23590dec879fSJulian Anastasov struct rt6_info *nrt6; 23600dec879fSJulian Anastasov 23614d85cd0cSDavid Ahern rcu_read_lock(); 236285bd05deSDavid Ahern res.f6i = rcu_dereference(rt6->from); 236385bd05deSDavid Ahern if (!res.f6i) { 23649c69a132SJonathan Lemon rcu_read_unlock(); 23659c69a132SJonathan Lemon return; 23669c69a132SJonathan Lemon } 236785bd05deSDavid Ahern res.nh = &res.f6i->fib6_nh; 23687d21fec9SDavid Ahern res.fib6_flags = res.f6i->fib6_flags; 23697d21fec9SDavid Ahern res.fib6_type = res.f6i->fib6_type; 23707d21fec9SDavid Ahern 237185bd05deSDavid Ahern nrt6 = ip6_rt_cache_alloc(&res, daddr, saddr); 237245e4fd26SMartin KaFai Lau if (nrt6) { 237345e4fd26SMartin KaFai Lau rt6_do_update_pmtu(nrt6, mtu); 23745012f0a5SDavid Ahern if (rt6_insert_exception(nrt6, &res)) 23752b760fcfSWei Wang dst_release_immediate(&nrt6->dst); 237645e4fd26SMartin KaFai Lau } 2377a68886a6SDavid Ahern rcu_read_unlock(); 237845e4fd26SMartin KaFai Lau } 237945e4fd26SMartin KaFai Lau } 238045e4fd26SMartin KaFai Lau 238145e4fd26SMartin KaFai Lau static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk, 238245e4fd26SMartin KaFai Lau struct sk_buff *skb, u32 mtu) 238345e4fd26SMartin KaFai Lau { 238445e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu); 23851da177e4SLinus Torvalds } 23861da177e4SLinus Torvalds 238742ae66c8SDavid S. Miller void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu, 2388e2d118a1SLorenzo Colitti int oif, u32 mark, kuid_t uid) 238981aded24SDavid S. Miller { 239081aded24SDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 239181aded24SDavid S. Miller struct dst_entry *dst; 2392dc92095dSMaciej Żenczykowski struct flowi6 fl6 = { 2393dc92095dSMaciej Żenczykowski .flowi6_oif = oif, 2394dc92095dSMaciej Żenczykowski .flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark), 2395dc92095dSMaciej Żenczykowski .daddr = iph->daddr, 2396dc92095dSMaciej Żenczykowski .saddr = iph->saddr, 2397dc92095dSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 2398dc92095dSMaciej Żenczykowski .flowi6_uid = uid, 2399dc92095dSMaciej Żenczykowski }; 240081aded24SDavid S. Miller 240181aded24SDavid S. Miller dst = ip6_route_output(net, NULL, &fl6); 240281aded24SDavid S. Miller if (!dst->error) 240345e4fd26SMartin KaFai Lau __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu)); 240481aded24SDavid S. Miller dst_release(dst); 240581aded24SDavid S. Miller } 240681aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_update_pmtu); 240781aded24SDavid S. Miller 240881aded24SDavid S. Miller void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu) 240981aded24SDavid S. Miller { 24107ddacfa5SDavid Ahern int oif = sk->sk_bound_dev_if; 241133c162a9SMartin KaFai Lau struct dst_entry *dst; 241233c162a9SMartin KaFai Lau 24137ddacfa5SDavid Ahern if (!oif && skb->dev) 24147ddacfa5SDavid Ahern oif = l3mdev_master_ifindex(skb->dev); 24157ddacfa5SDavid Ahern 24167ddacfa5SDavid Ahern ip6_update_pmtu(skb, sock_net(sk), mtu, oif, sk->sk_mark, sk->sk_uid); 241733c162a9SMartin KaFai Lau 241833c162a9SMartin KaFai Lau dst = __sk_dst_get(sk); 241933c162a9SMartin KaFai Lau if (!dst || !dst->obsolete || 242033c162a9SMartin KaFai Lau dst->ops->check(dst, inet6_sk(sk)->dst_cookie)) 242133c162a9SMartin KaFai Lau return; 242233c162a9SMartin KaFai Lau 242333c162a9SMartin KaFai Lau bh_lock_sock(sk); 242433c162a9SMartin KaFai Lau if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr)) 242533c162a9SMartin KaFai Lau ip6_datagram_dst_update(sk, false); 242633c162a9SMartin KaFai Lau bh_unlock_sock(sk); 242781aded24SDavid S. Miller } 242881aded24SDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu); 242981aded24SDavid S. Miller 24307d6850f7SAlexey Kodanev void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst, 24317d6850f7SAlexey Kodanev const struct flowi6 *fl6) 24327d6850f7SAlexey Kodanev { 24337d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24347d6850f7SAlexey Kodanev struct ipv6_pinfo *np = inet6_sk(sk); 24357d6850f7SAlexey Kodanev #endif 24367d6850f7SAlexey Kodanev 24377d6850f7SAlexey Kodanev ip6_dst_store(sk, dst, 24387d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ? 24397d6850f7SAlexey Kodanev &sk->sk_v6_daddr : NULL, 24407d6850f7SAlexey Kodanev #ifdef CONFIG_IPV6_SUBTREES 24417d6850f7SAlexey Kodanev ipv6_addr_equal(&fl6->saddr, &np->saddr) ? 24427d6850f7SAlexey Kodanev &np->saddr : 24437d6850f7SAlexey Kodanev #endif 24447d6850f7SAlexey Kodanev NULL); 24457d6850f7SAlexey Kodanev } 24467d6850f7SAlexey Kodanev 24479b6b35abSDavid Ahern static bool ip6_redirect_nh_match(const struct fib6_result *res, 24480b34eb00SDavid Ahern struct flowi6 *fl6, 24490b34eb00SDavid Ahern const struct in6_addr *gw, 24500b34eb00SDavid Ahern struct rt6_info **ret) 24510b34eb00SDavid Ahern { 24529b6b35abSDavid Ahern const struct fib6_nh *nh = res->nh; 24539b6b35abSDavid Ahern 24540b34eb00SDavid Ahern if (nh->fib_nh_flags & RTNH_F_DEAD || !nh->fib_nh_gw_family || 24550b34eb00SDavid Ahern fl6->flowi6_oif != nh->fib_nh_dev->ifindex) 24560b34eb00SDavid Ahern return false; 24570b34eb00SDavid Ahern 24580b34eb00SDavid Ahern /* rt_cache's gateway might be different from its 'parent' 24590b34eb00SDavid Ahern * in the case of an ip redirect. 24600b34eb00SDavid Ahern * So we keep searching in the exception table if the gateway 24610b34eb00SDavid Ahern * is different. 24620b34eb00SDavid Ahern */ 24630b34eb00SDavid Ahern if (!ipv6_addr_equal(gw, &nh->fib_nh_gw6)) { 24640b34eb00SDavid Ahern struct rt6_info *rt_cache; 24650b34eb00SDavid Ahern 24669b6b35abSDavid Ahern rt_cache = rt6_find_cached_rt(res, &fl6->daddr, &fl6->saddr); 24670b34eb00SDavid Ahern if (rt_cache && 24680b34eb00SDavid Ahern ipv6_addr_equal(gw, &rt_cache->rt6i_gateway)) { 24690b34eb00SDavid Ahern *ret = rt_cache; 24700b34eb00SDavid Ahern return true; 24710b34eb00SDavid Ahern } 24720b34eb00SDavid Ahern return false; 24730b34eb00SDavid Ahern } 24740b34eb00SDavid Ahern return true; 24750b34eb00SDavid Ahern } 24760b34eb00SDavid Ahern 2477b55b76b2SDuan Jiong /* Handle redirects */ 2478b55b76b2SDuan Jiong struct ip6rd_flowi { 2479b55b76b2SDuan Jiong struct flowi6 fl6; 2480b55b76b2SDuan Jiong struct in6_addr gateway; 2481b55b76b2SDuan Jiong }; 2482b55b76b2SDuan Jiong 2483b55b76b2SDuan Jiong static struct rt6_info *__ip6_route_redirect(struct net *net, 2484b55b76b2SDuan Jiong struct fib6_table *table, 2485b55b76b2SDuan Jiong struct flowi6 *fl6, 2486b75cc8f9SDavid Ahern const struct sk_buff *skb, 2487b55b76b2SDuan Jiong int flags) 2488b55b76b2SDuan Jiong { 2489b55b76b2SDuan Jiong struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6; 24900b34eb00SDavid Ahern struct rt6_info *ret = NULL; 24919b6b35abSDavid Ahern struct fib6_result res = {}; 24928d1c802bSDavid Ahern struct fib6_info *rt; 2493b55b76b2SDuan Jiong struct fib6_node *fn; 2494b55b76b2SDuan Jiong 2495b55b76b2SDuan Jiong /* Get the "current" route for this destination and 249667c408cfSAlexander Alemayhu * check if the redirect has come from appropriate router. 2497b55b76b2SDuan Jiong * 2498b55b76b2SDuan Jiong * RFC 4861 specifies that redirects should only be 2499b55b76b2SDuan Jiong * accepted if they come from the nexthop to the target. 2500b55b76b2SDuan Jiong * Due to the way the routes are chosen, this notion 2501b55b76b2SDuan Jiong * is a bit fuzzy and one might need to check all possible 2502b55b76b2SDuan Jiong * routes. 2503b55b76b2SDuan Jiong */ 2504b55b76b2SDuan Jiong 250566f5d6ceSWei Wang rcu_read_lock(); 25066454743bSDavid Ahern fn = fib6_node_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr); 2507b55b76b2SDuan Jiong restart: 250866f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 25099b6b35abSDavid Ahern res.f6i = rt; 25109b6b35abSDavid Ahern res.nh = &rt->fib6_nh; 25119b6b35abSDavid Ahern 251214895687SDavid Ahern if (fib6_check_expired(rt)) 2513b55b76b2SDuan Jiong continue; 251493c2fb25SDavid Ahern if (rt->fib6_flags & RTF_REJECT) 2515b55b76b2SDuan Jiong break; 25169b6b35abSDavid Ahern if (ip6_redirect_nh_match(&res, fl6, &rdfl->gateway, &ret)) 25170b34eb00SDavid Ahern goto out; 2518b55b76b2SDuan Jiong } 2519b55b76b2SDuan Jiong 2520b55b76b2SDuan Jiong if (!rt) 2521421842edSDavid Ahern rt = net->ipv6.fib6_null_entry; 252293c2fb25SDavid Ahern else if (rt->fib6_flags & RTF_REJECT) { 252323fb93a4SDavid Ahern ret = net->ipv6.ip6_null_entry; 2524b0a1ba59SMartin KaFai Lau goto out; 2525b0a1ba59SMartin KaFai Lau } 2526b0a1ba59SMartin KaFai Lau 2527421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 2528a3c00e46SMartin KaFai Lau fn = fib6_backtrack(fn, &fl6->saddr); 2529a3c00e46SMartin KaFai Lau if (fn) 2530a3c00e46SMartin KaFai Lau goto restart; 2531b55b76b2SDuan Jiong } 2532a3c00e46SMartin KaFai Lau 25339b6b35abSDavid Ahern res.f6i = rt; 25349b6b35abSDavid Ahern res.nh = &rt->fib6_nh; 2535b0a1ba59SMartin KaFai Lau out: 25367d21fec9SDavid Ahern if (ret) { 253710585b43SDavid Ahern ip6_hold_safe(net, &ret); 25387d21fec9SDavid Ahern } else { 25397d21fec9SDavid Ahern res.fib6_flags = res.f6i->fib6_flags; 25407d21fec9SDavid Ahern res.fib6_type = res.f6i->fib6_type; 25419b6b35abSDavid Ahern ret = ip6_create_rt_rcu(&res); 25427d21fec9SDavid Ahern } 2543b55b76b2SDuan Jiong 254466f5d6ceSWei Wang rcu_read_unlock(); 2545b55b76b2SDuan Jiong 25468ff2e5b2SDavid Ahern trace_fib6_table_lookup(net, &res, table, fl6); 254723fb93a4SDavid Ahern return ret; 2548b55b76b2SDuan Jiong }; 2549b55b76b2SDuan Jiong 2550b55b76b2SDuan Jiong static struct dst_entry *ip6_route_redirect(struct net *net, 2551b55b76b2SDuan Jiong const struct flowi6 *fl6, 2552b75cc8f9SDavid Ahern const struct sk_buff *skb, 2553b55b76b2SDuan Jiong const struct in6_addr *gateway) 2554b55b76b2SDuan Jiong { 2555b55b76b2SDuan Jiong int flags = RT6_LOOKUP_F_HAS_SADDR; 2556b55b76b2SDuan Jiong struct ip6rd_flowi rdfl; 2557b55b76b2SDuan Jiong 2558b55b76b2SDuan Jiong rdfl.fl6 = *fl6; 2559b55b76b2SDuan Jiong rdfl.gateway = *gateway; 2560b55b76b2SDuan Jiong 2561b75cc8f9SDavid Ahern return fib6_rule_lookup(net, &rdfl.fl6, skb, 2562b55b76b2SDuan Jiong flags, __ip6_route_redirect); 2563b55b76b2SDuan Jiong } 2564b55b76b2SDuan Jiong 2565e2d118a1SLorenzo Colitti void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark, 2566e2d118a1SLorenzo Colitti kuid_t uid) 25673a5ad2eeSDavid S. Miller { 25683a5ad2eeSDavid S. Miller const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data; 25693a5ad2eeSDavid S. Miller struct dst_entry *dst; 25701f7f10acSMaciej Żenczykowski struct flowi6 fl6 = { 25711f7f10acSMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25721f7f10acSMaciej Żenczykowski .flowi6_oif = oif, 25731f7f10acSMaciej Żenczykowski .flowi6_mark = mark, 25741f7f10acSMaciej Żenczykowski .daddr = iph->daddr, 25751f7f10acSMaciej Żenczykowski .saddr = iph->saddr, 25761f7f10acSMaciej Żenczykowski .flowlabel = ip6_flowinfo(iph), 25771f7f10acSMaciej Żenczykowski .flowi6_uid = uid, 25781f7f10acSMaciej Żenczykowski }; 25793a5ad2eeSDavid S. Miller 2580b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr); 25816700c270SDavid S. Miller rt6_do_redirect(dst, NULL, skb); 25823a5ad2eeSDavid S. Miller dst_release(dst); 25833a5ad2eeSDavid S. Miller } 25843a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_redirect); 25853a5ad2eeSDavid S. Miller 2586d456336dSMaciej Żenczykowski void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif) 2587c92a59ecSDuan Jiong { 2588c92a59ecSDuan Jiong const struct ipv6hdr *iph = ipv6_hdr(skb); 2589c92a59ecSDuan Jiong const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb); 2590c92a59ecSDuan Jiong struct dst_entry *dst; 25910b26fb17SMaciej Żenczykowski struct flowi6 fl6 = { 25920b26fb17SMaciej Żenczykowski .flowi6_iif = LOOPBACK_IFINDEX, 25930b26fb17SMaciej Żenczykowski .flowi6_oif = oif, 25940b26fb17SMaciej Żenczykowski .daddr = msg->dest, 25950b26fb17SMaciej Żenczykowski .saddr = iph->daddr, 25960b26fb17SMaciej Żenczykowski .flowi6_uid = sock_net_uid(net, NULL), 25970b26fb17SMaciej Żenczykowski }; 2598c92a59ecSDuan Jiong 2599b75cc8f9SDavid Ahern dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr); 2600c92a59ecSDuan Jiong rt6_do_redirect(dst, NULL, skb); 2601c92a59ecSDuan Jiong dst_release(dst); 2602c92a59ecSDuan Jiong } 2603c92a59ecSDuan Jiong 26043a5ad2eeSDavid S. Miller void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk) 26053a5ad2eeSDavid S. Miller { 2606e2d118a1SLorenzo Colitti ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark, 2607e2d118a1SLorenzo Colitti sk->sk_uid); 26083a5ad2eeSDavid S. Miller } 26093a5ad2eeSDavid S. Miller EXPORT_SYMBOL_GPL(ip6_sk_redirect); 26103a5ad2eeSDavid S. Miller 26110dbaee3bSDavid S. Miller static unsigned int ip6_default_advmss(const struct dst_entry *dst) 26121da177e4SLinus Torvalds { 26130dbaee3bSDavid S. Miller struct net_device *dev = dst->dev; 26140dbaee3bSDavid S. Miller unsigned int mtu = dst_mtu(dst); 26150dbaee3bSDavid S. Miller struct net *net = dev_net(dev); 26160dbaee3bSDavid S. Miller 26171da177e4SLinus Torvalds mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr); 26181da177e4SLinus Torvalds 26195578689aSDaniel Lezcano if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss) 26205578689aSDaniel Lezcano mtu = net->ipv6.sysctl.ip6_rt_min_advmss; 26211da177e4SLinus Torvalds 26221da177e4SLinus Torvalds /* 26231da177e4SLinus Torvalds * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and 26241da177e4SLinus Torvalds * corresponding MSS is IPV6_MAXPLEN - tcp_header_size. 26251da177e4SLinus Torvalds * IPV6_MAXPLEN is also valid and means: "any MSS, 26261da177e4SLinus Torvalds * rely only on pmtu discovery" 26271da177e4SLinus Torvalds */ 26281da177e4SLinus Torvalds if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr)) 26291da177e4SLinus Torvalds mtu = IPV6_MAXPLEN; 26301da177e4SLinus Torvalds return mtu; 26311da177e4SLinus Torvalds } 26321da177e4SLinus Torvalds 2633ebb762f2SSteffen Klassert static unsigned int ip6_mtu(const struct dst_entry *dst) 2634d33e4553SDavid S. Miller { 2635d33e4553SDavid S. Miller struct inet6_dev *idev; 2636d4ead6b3SDavid Ahern unsigned int mtu; 2637618f9bc7SSteffen Klassert 26384b32b5adSMartin KaFai Lau mtu = dst_metric_raw(dst, RTAX_MTU); 26394b32b5adSMartin KaFai Lau if (mtu) 26404b32b5adSMartin KaFai Lau goto out; 26414b32b5adSMartin KaFai Lau 2642618f9bc7SSteffen Klassert mtu = IPV6_MIN_MTU; 2643d33e4553SDavid S. Miller 2644d33e4553SDavid S. Miller rcu_read_lock(); 2645d33e4553SDavid S. Miller idev = __in6_dev_get(dst->dev); 2646d33e4553SDavid S. Miller if (idev) 2647d33e4553SDavid S. Miller mtu = idev->cnf.mtu6; 2648d33e4553SDavid S. Miller rcu_read_unlock(); 2649d33e4553SDavid S. Miller 265030f78d8eSEric Dumazet out: 265114972cbdSRoopa Prabhu mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 265214972cbdSRoopa Prabhu 265314972cbdSRoopa Prabhu return mtu - lwtunnel_headroom(dst->lwtstate, mtu); 2654d33e4553SDavid S. Miller } 2655d33e4553SDavid S. Miller 2656901731b8SDavid Ahern /* MTU selection: 2657901731b8SDavid Ahern * 1. mtu on route is locked - use it 2658901731b8SDavid Ahern * 2. mtu from nexthop exception 2659901731b8SDavid Ahern * 3. mtu from egress device 2660901731b8SDavid Ahern * 2661901731b8SDavid Ahern * based on ip6_dst_mtu_forward and exception logic of 2662901731b8SDavid Ahern * rt6_find_cached_rt; called with rcu_read_lock 2663901731b8SDavid Ahern */ 2664b748f260SDavid Ahern u32 ip6_mtu_from_fib6(const struct fib6_result *res, 2665b748f260SDavid Ahern const struct in6_addr *daddr, 2666b748f260SDavid Ahern const struct in6_addr *saddr) 2667901731b8SDavid Ahern { 2668901731b8SDavid Ahern struct rt6_exception_bucket *bucket; 2669b748f260SDavid Ahern const struct fib6_nh *nh = res->nh; 2670b748f260SDavid Ahern struct fib6_info *f6i = res->f6i; 2671b748f260SDavid Ahern const struct in6_addr *src_key; 2672901731b8SDavid Ahern struct rt6_exception *rt6_ex; 2673901731b8SDavid Ahern struct inet6_dev *idev; 2674901731b8SDavid Ahern u32 mtu = 0; 2675901731b8SDavid Ahern 2676901731b8SDavid Ahern if (unlikely(fib6_metric_locked(f6i, RTAX_MTU))) { 2677901731b8SDavid Ahern mtu = f6i->fib6_pmtu; 2678901731b8SDavid Ahern if (mtu) 2679901731b8SDavid Ahern goto out; 2680901731b8SDavid Ahern } 2681901731b8SDavid Ahern 2682901731b8SDavid Ahern src_key = NULL; 2683901731b8SDavid Ahern #ifdef CONFIG_IPV6_SUBTREES 2684901731b8SDavid Ahern if (f6i->fib6_src.plen) 2685901731b8SDavid Ahern src_key = saddr; 2686901731b8SDavid Ahern #endif 2687901731b8SDavid Ahern 2688901731b8SDavid Ahern bucket = rcu_dereference(f6i->rt6i_exception_bucket); 2689901731b8SDavid Ahern rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key); 2690901731b8SDavid Ahern if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i)) 2691901731b8SDavid Ahern mtu = dst_metric_raw(&rt6_ex->rt6i->dst, RTAX_MTU); 2692901731b8SDavid Ahern 2693901731b8SDavid Ahern if (likely(!mtu)) { 2694b748f260SDavid Ahern struct net_device *dev = nh->fib_nh_dev; 2695901731b8SDavid Ahern 2696901731b8SDavid Ahern mtu = IPV6_MIN_MTU; 2697901731b8SDavid Ahern idev = __in6_dev_get(dev); 2698901731b8SDavid Ahern if (idev && idev->cnf.mtu6 > mtu) 2699901731b8SDavid Ahern mtu = idev->cnf.mtu6; 2700901731b8SDavid Ahern } 2701901731b8SDavid Ahern 2702901731b8SDavid Ahern mtu = min_t(unsigned int, mtu, IP6_MAX_MTU); 2703901731b8SDavid Ahern out: 2704b748f260SDavid Ahern return mtu - lwtunnel_headroom(nh->fib_nh_lws, mtu); 2705901731b8SDavid Ahern } 2706901731b8SDavid Ahern 27073b00944cSYOSHIFUJI Hideaki struct dst_entry *icmp6_dst_alloc(struct net_device *dev, 270887a11578SDavid S. Miller struct flowi6 *fl6) 27091da177e4SLinus Torvalds { 271087a11578SDavid S. Miller struct dst_entry *dst; 27111da177e4SLinus Torvalds struct rt6_info *rt; 27121da177e4SLinus Torvalds struct inet6_dev *idev = in6_dev_get(dev); 2713c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 27141da177e4SLinus Torvalds 271538308473SDavid S. Miller if (unlikely(!idev)) 2716122bdf67SEric Dumazet return ERR_PTR(-ENODEV); 27171da177e4SLinus Torvalds 2718ad706862SMartin KaFai Lau rt = ip6_dst_alloc(net, dev, 0); 271938308473SDavid S. Miller if (unlikely(!rt)) { 27201da177e4SLinus Torvalds in6_dev_put(idev); 272187a11578SDavid S. Miller dst = ERR_PTR(-ENOMEM); 27221da177e4SLinus Torvalds goto out; 27231da177e4SLinus Torvalds } 27241da177e4SLinus Torvalds 27258e2ec639SYan, Zheng rt->dst.flags |= DST_HOST; 2726588753f1SBrendan McGrath rt->dst.input = ip6_input; 27278e2ec639SYan, Zheng rt->dst.output = ip6_output; 2728550bab42SJulian Anastasov rt->rt6i_gateway = fl6->daddr; 272987a11578SDavid S. Miller rt->rt6i_dst.addr = fl6->daddr; 27308e2ec639SYan, Zheng rt->rt6i_dst.plen = 128; 27318e2ec639SYan, Zheng rt->rt6i_idev = idev; 273214edd87dSLi RongQing dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0); 27331da177e4SLinus Torvalds 27344c981e28SIdo Schimmel /* Add this dst into uncached_list so that rt6_disable_ip() can 2735587fea74SWei Wang * do proper release of the net_device 2736587fea74SWei Wang */ 2737587fea74SWei Wang rt6_uncached_list_add(rt); 273881eb8447SWei Wang atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache); 27391da177e4SLinus Torvalds 274087a11578SDavid S. Miller dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0); 274187a11578SDavid S. Miller 27421da177e4SLinus Torvalds out: 274387a11578SDavid S. Miller return dst; 27441da177e4SLinus Torvalds } 27451da177e4SLinus Torvalds 2746569d3645SDaniel Lezcano static int ip6_dst_gc(struct dst_ops *ops) 27471da177e4SLinus Torvalds { 274886393e52SAlexey Dobriyan struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops); 27497019b78eSDaniel Lezcano int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval; 27507019b78eSDaniel Lezcano int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size; 27517019b78eSDaniel Lezcano int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity; 27527019b78eSDaniel Lezcano int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout; 27537019b78eSDaniel Lezcano unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc; 2754fc66f95cSEric Dumazet int entries; 27551da177e4SLinus Torvalds 2756fc66f95cSEric Dumazet entries = dst_entries_get_fast(ops); 275749a18d86SMichal Kubeček if (time_after(rt_last_gc + rt_min_interval, jiffies) && 2758fc66f95cSEric Dumazet entries <= rt_max_size) 27591da177e4SLinus Torvalds goto out; 27601da177e4SLinus Torvalds 27616891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire++; 276214956643SLi RongQing fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true); 2763fc66f95cSEric Dumazet entries = dst_entries_get_slow(ops); 2764fc66f95cSEric Dumazet if (entries < ops->gc_thresh) 27657019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1; 27661da177e4SLinus Torvalds out: 27677019b78eSDaniel Lezcano net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity; 2768fc66f95cSEric Dumazet return entries > rt_max_size; 27691da177e4SLinus Torvalds } 27701da177e4SLinus Torvalds 27718c14586fSDavid Ahern static struct rt6_info *ip6_nh_lookup_table(struct net *net, 27728c14586fSDavid Ahern struct fib6_config *cfg, 2773f4797b33SDavid Ahern const struct in6_addr *gw_addr, 2774f4797b33SDavid Ahern u32 tbid, int flags) 27758c14586fSDavid Ahern { 27768c14586fSDavid Ahern struct flowi6 fl6 = { 27778c14586fSDavid Ahern .flowi6_oif = cfg->fc_ifindex, 27788c14586fSDavid Ahern .daddr = *gw_addr, 27798c14586fSDavid Ahern .saddr = cfg->fc_prefsrc, 27808c14586fSDavid Ahern }; 27818c14586fSDavid Ahern struct fib6_table *table; 27828c14586fSDavid Ahern struct rt6_info *rt; 27838c14586fSDavid Ahern 2784f4797b33SDavid Ahern table = fib6_get_table(net, tbid); 27858c14586fSDavid Ahern if (!table) 27868c14586fSDavid Ahern return NULL; 27878c14586fSDavid Ahern 27888c14586fSDavid Ahern if (!ipv6_addr_any(&cfg->fc_prefsrc)) 27898c14586fSDavid Ahern flags |= RT6_LOOKUP_F_HAS_SADDR; 27908c14586fSDavid Ahern 2791f4797b33SDavid Ahern flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE; 2792b75cc8f9SDavid Ahern rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags); 27938c14586fSDavid Ahern 27948c14586fSDavid Ahern /* if table lookup failed, fall back to full lookup */ 27958c14586fSDavid Ahern if (rt == net->ipv6.ip6_null_entry) { 27968c14586fSDavid Ahern ip6_rt_put(rt); 27978c14586fSDavid Ahern rt = NULL; 27988c14586fSDavid Ahern } 27998c14586fSDavid Ahern 28008c14586fSDavid Ahern return rt; 28018c14586fSDavid Ahern } 28028c14586fSDavid Ahern 2803fc1e64e1SDavid Ahern static int ip6_route_check_nh_onlink(struct net *net, 2804fc1e64e1SDavid Ahern struct fib6_config *cfg, 28059fbb704cSDavid Ahern const struct net_device *dev, 2806fc1e64e1SDavid Ahern struct netlink_ext_ack *extack) 2807fc1e64e1SDavid Ahern { 280844750f84SDavid Ahern u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN; 2809fc1e64e1SDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 2810fc1e64e1SDavid Ahern u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT; 2811bf1dc8baSPaolo Abeni struct fib6_info *from; 2812fc1e64e1SDavid Ahern struct rt6_info *grt; 2813fc1e64e1SDavid Ahern int err; 2814fc1e64e1SDavid Ahern 2815fc1e64e1SDavid Ahern err = 0; 2816fc1e64e1SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0); 2817fc1e64e1SDavid Ahern if (grt) { 2818bf1dc8baSPaolo Abeni rcu_read_lock(); 2819bf1dc8baSPaolo Abeni from = rcu_dereference(grt->from); 282058e354c0SDavid Ahern if (!grt->dst.error && 28214ed591c8SDavid Ahern /* ignore match if it is the default route */ 2822bf1dc8baSPaolo Abeni from && !ipv6_addr_any(&from->fib6_dst.addr) && 282358e354c0SDavid Ahern (grt->rt6i_flags & flags || dev != grt->dst.dev)) { 282444750f84SDavid Ahern NL_SET_ERR_MSG(extack, 282544750f84SDavid Ahern "Nexthop has invalid gateway or device mismatch"); 2826fc1e64e1SDavid Ahern err = -EINVAL; 2827fc1e64e1SDavid Ahern } 2828bf1dc8baSPaolo Abeni rcu_read_unlock(); 2829fc1e64e1SDavid Ahern 2830fc1e64e1SDavid Ahern ip6_rt_put(grt); 2831fc1e64e1SDavid Ahern } 2832fc1e64e1SDavid Ahern 2833fc1e64e1SDavid Ahern return err; 2834fc1e64e1SDavid Ahern } 2835fc1e64e1SDavid Ahern 28361edce99fSDavid Ahern static int ip6_route_check_nh(struct net *net, 28371edce99fSDavid Ahern struct fib6_config *cfg, 28381edce99fSDavid Ahern struct net_device **_dev, 28391edce99fSDavid Ahern struct inet6_dev **idev) 28401edce99fSDavid Ahern { 28411edce99fSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28421edce99fSDavid Ahern struct net_device *dev = _dev ? *_dev : NULL; 28431edce99fSDavid Ahern struct rt6_info *grt = NULL; 28441edce99fSDavid Ahern int err = -EHOSTUNREACH; 28451edce99fSDavid Ahern 28461edce99fSDavid Ahern if (cfg->fc_table) { 2847f4797b33SDavid Ahern int flags = RT6_LOOKUP_F_IFACE; 2848f4797b33SDavid Ahern 2849f4797b33SDavid Ahern grt = ip6_nh_lookup_table(net, cfg, gw_addr, 2850f4797b33SDavid Ahern cfg->fc_table, flags); 28511edce99fSDavid Ahern if (grt) { 28521edce99fSDavid Ahern if (grt->rt6i_flags & RTF_GATEWAY || 28531edce99fSDavid Ahern (dev && dev != grt->dst.dev)) { 28541edce99fSDavid Ahern ip6_rt_put(grt); 28551edce99fSDavid Ahern grt = NULL; 28561edce99fSDavid Ahern } 28571edce99fSDavid Ahern } 28581edce99fSDavid Ahern } 28591edce99fSDavid Ahern 28601edce99fSDavid Ahern if (!grt) 2861b75cc8f9SDavid Ahern grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1); 28621edce99fSDavid Ahern 28631edce99fSDavid Ahern if (!grt) 28641edce99fSDavid Ahern goto out; 28651edce99fSDavid Ahern 28661edce99fSDavid Ahern if (dev) { 28671edce99fSDavid Ahern if (dev != grt->dst.dev) { 28681edce99fSDavid Ahern ip6_rt_put(grt); 28691edce99fSDavid Ahern goto out; 28701edce99fSDavid Ahern } 28711edce99fSDavid Ahern } else { 28721edce99fSDavid Ahern *_dev = dev = grt->dst.dev; 28731edce99fSDavid Ahern *idev = grt->rt6i_idev; 28741edce99fSDavid Ahern dev_hold(dev); 28751edce99fSDavid Ahern in6_dev_hold(grt->rt6i_idev); 28761edce99fSDavid Ahern } 28771edce99fSDavid Ahern 28781edce99fSDavid Ahern if (!(grt->rt6i_flags & RTF_GATEWAY)) 28791edce99fSDavid Ahern err = 0; 28801edce99fSDavid Ahern 28811edce99fSDavid Ahern ip6_rt_put(grt); 28821edce99fSDavid Ahern 28831edce99fSDavid Ahern out: 28841edce99fSDavid Ahern return err; 28851edce99fSDavid Ahern } 28861edce99fSDavid Ahern 28879fbb704cSDavid Ahern static int ip6_validate_gw(struct net *net, struct fib6_config *cfg, 28889fbb704cSDavid Ahern struct net_device **_dev, struct inet6_dev **idev, 28899fbb704cSDavid Ahern struct netlink_ext_ack *extack) 28909fbb704cSDavid Ahern { 28919fbb704cSDavid Ahern const struct in6_addr *gw_addr = &cfg->fc_gateway; 28929fbb704cSDavid Ahern int gwa_type = ipv6_addr_type(gw_addr); 2893232378e8SDavid Ahern bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true; 28949fbb704cSDavid Ahern const struct net_device *dev = *_dev; 2895232378e8SDavid Ahern bool need_addr_check = !dev; 28969fbb704cSDavid Ahern int err = -EINVAL; 28979fbb704cSDavid Ahern 28989fbb704cSDavid Ahern /* if gw_addr is local we will fail to detect this in case 28999fbb704cSDavid Ahern * address is still TENTATIVE (DAD in progress). rt6_lookup() 29009fbb704cSDavid Ahern * will return already-added prefix route via interface that 29019fbb704cSDavid Ahern * prefix route was assigned to, which might be non-loopback. 29029fbb704cSDavid Ahern */ 2903232378e8SDavid Ahern if (dev && 2904232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2905232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 29069fbb704cSDavid Ahern goto out; 29079fbb704cSDavid Ahern } 29089fbb704cSDavid Ahern 29099fbb704cSDavid Ahern if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) { 29109fbb704cSDavid Ahern /* IPv6 strictly inhibits using not link-local 29119fbb704cSDavid Ahern * addresses as nexthop address. 29129fbb704cSDavid Ahern * Otherwise, router will not able to send redirects. 29139fbb704cSDavid Ahern * It is very good, but in some (rare!) circumstances 29149fbb704cSDavid Ahern * (SIT, PtP, NBMA NOARP links) it is handy to allow 29159fbb704cSDavid Ahern * some exceptions. --ANK 29169fbb704cSDavid Ahern * We allow IPv4-mapped nexthops to support RFC4798-type 29179fbb704cSDavid Ahern * addressing 29189fbb704cSDavid Ahern */ 29199fbb704cSDavid Ahern if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) { 29209fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid gateway address"); 29219fbb704cSDavid Ahern goto out; 29229fbb704cSDavid Ahern } 29239fbb704cSDavid Ahern 29249fbb704cSDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) 29259fbb704cSDavid Ahern err = ip6_route_check_nh_onlink(net, cfg, dev, extack); 29269fbb704cSDavid Ahern else 29279fbb704cSDavid Ahern err = ip6_route_check_nh(net, cfg, _dev, idev); 29289fbb704cSDavid Ahern 29299fbb704cSDavid Ahern if (err) 29309fbb704cSDavid Ahern goto out; 29319fbb704cSDavid Ahern } 29329fbb704cSDavid Ahern 29339fbb704cSDavid Ahern /* reload in case device was changed */ 29349fbb704cSDavid Ahern dev = *_dev; 29359fbb704cSDavid Ahern 29369fbb704cSDavid Ahern err = -EINVAL; 29379fbb704cSDavid Ahern if (!dev) { 29389fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, "Egress device not specified"); 29399fbb704cSDavid Ahern goto out; 29409fbb704cSDavid Ahern } else if (dev->flags & IFF_LOOPBACK) { 29419fbb704cSDavid Ahern NL_SET_ERR_MSG(extack, 29429fbb704cSDavid Ahern "Egress device can not be loopback device for this route"); 29439fbb704cSDavid Ahern goto out; 29449fbb704cSDavid Ahern } 2945232378e8SDavid Ahern 2946232378e8SDavid Ahern /* if we did not check gw_addr above, do so now that the 2947232378e8SDavid Ahern * egress device has been resolved. 2948232378e8SDavid Ahern */ 2949232378e8SDavid Ahern if (need_addr_check && 2950232378e8SDavid Ahern ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) { 2951232378e8SDavid Ahern NL_SET_ERR_MSG(extack, "Gateway can not be a local address"); 2952232378e8SDavid Ahern goto out; 2953232378e8SDavid Ahern } 2954232378e8SDavid Ahern 29559fbb704cSDavid Ahern err = 0; 29569fbb704cSDavid Ahern out: 29579fbb704cSDavid Ahern return err; 29589fbb704cSDavid Ahern } 29599fbb704cSDavid Ahern 296083c44251SDavid Ahern static bool fib6_is_reject(u32 flags, struct net_device *dev, int addr_type) 296183c44251SDavid Ahern { 296283c44251SDavid Ahern if ((flags & RTF_REJECT) || 296383c44251SDavid Ahern (dev && (dev->flags & IFF_LOOPBACK) && 296483c44251SDavid Ahern !(addr_type & IPV6_ADDR_LOOPBACK) && 296583c44251SDavid Ahern !(flags & RTF_LOCAL))) 296683c44251SDavid Ahern return true; 296783c44251SDavid Ahern 296883c44251SDavid Ahern return false; 296983c44251SDavid Ahern } 297083c44251SDavid Ahern 297183c44251SDavid Ahern int fib6_nh_init(struct net *net, struct fib6_nh *fib6_nh, 297283c44251SDavid Ahern struct fib6_config *cfg, gfp_t gfp_flags, 297383c44251SDavid Ahern struct netlink_ext_ack *extack) 297483c44251SDavid Ahern { 297583c44251SDavid Ahern struct net_device *dev = NULL; 297683c44251SDavid Ahern struct inet6_dev *idev = NULL; 297783c44251SDavid Ahern int addr_type; 297883c44251SDavid Ahern int err; 297983c44251SDavid Ahern 2980f1741730SDavid Ahern fib6_nh->fib_nh_family = AF_INET6; 2981f1741730SDavid Ahern 298283c44251SDavid Ahern err = -ENODEV; 298383c44251SDavid Ahern if (cfg->fc_ifindex) { 298483c44251SDavid Ahern dev = dev_get_by_index(net, cfg->fc_ifindex); 298583c44251SDavid Ahern if (!dev) 298683c44251SDavid Ahern goto out; 298783c44251SDavid Ahern idev = in6_dev_get(dev); 298883c44251SDavid Ahern if (!idev) 298983c44251SDavid Ahern goto out; 299083c44251SDavid Ahern } 299183c44251SDavid Ahern 299283c44251SDavid Ahern if (cfg->fc_flags & RTNH_F_ONLINK) { 299383c44251SDavid Ahern if (!dev) { 299483c44251SDavid Ahern NL_SET_ERR_MSG(extack, 299583c44251SDavid Ahern "Nexthop device required for onlink"); 299683c44251SDavid Ahern goto out; 299783c44251SDavid Ahern } 299883c44251SDavid Ahern 299983c44251SDavid Ahern if (!(dev->flags & IFF_UP)) { 300083c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 300183c44251SDavid Ahern err = -ENETDOWN; 300283c44251SDavid Ahern goto out; 300383c44251SDavid Ahern } 300483c44251SDavid Ahern 3005ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_ONLINK; 300683c44251SDavid Ahern } 300783c44251SDavid Ahern 3008ad1601aeSDavid Ahern fib6_nh->fib_nh_weight = 1; 300983c44251SDavid Ahern 301083c44251SDavid Ahern /* We cannot add true routes via loopback here, 301183c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 301283c44251SDavid Ahern */ 301383c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 301483c44251SDavid Ahern if (fib6_is_reject(cfg->fc_flags, dev, addr_type)) { 301583c44251SDavid Ahern /* hold loopback dev/idev if we haven't done so. */ 301683c44251SDavid Ahern if (dev != net->loopback_dev) { 301783c44251SDavid Ahern if (dev) { 301883c44251SDavid Ahern dev_put(dev); 301983c44251SDavid Ahern in6_dev_put(idev); 302083c44251SDavid Ahern } 302183c44251SDavid Ahern dev = net->loopback_dev; 302283c44251SDavid Ahern dev_hold(dev); 302383c44251SDavid Ahern idev = in6_dev_get(dev); 302483c44251SDavid Ahern if (!idev) { 302583c44251SDavid Ahern err = -ENODEV; 302683c44251SDavid Ahern goto out; 302783c44251SDavid Ahern } 302883c44251SDavid Ahern } 302983c44251SDavid Ahern goto set_dev; 303083c44251SDavid Ahern } 303183c44251SDavid Ahern 303283c44251SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) { 303383c44251SDavid Ahern err = ip6_validate_gw(net, cfg, &dev, &idev, extack); 303483c44251SDavid Ahern if (err) 303583c44251SDavid Ahern goto out; 303683c44251SDavid Ahern 3037ad1601aeSDavid Ahern fib6_nh->fib_nh_gw6 = cfg->fc_gateway; 3038bdf00467SDavid Ahern fib6_nh->fib_nh_gw_family = AF_INET6; 303983c44251SDavid Ahern } 304083c44251SDavid Ahern 304183c44251SDavid Ahern err = -ENODEV; 304283c44251SDavid Ahern if (!dev) 304383c44251SDavid Ahern goto out; 304483c44251SDavid Ahern 304583c44251SDavid Ahern if (idev->cnf.disable_ipv6) { 304683c44251SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device"); 304783c44251SDavid Ahern err = -EACCES; 304883c44251SDavid Ahern goto out; 304983c44251SDavid Ahern } 305083c44251SDavid Ahern 305183c44251SDavid Ahern if (!(dev->flags & IFF_UP) && !cfg->fc_ignore_dev_down) { 305283c44251SDavid Ahern NL_SET_ERR_MSG(extack, "Nexthop device is not up"); 305383c44251SDavid Ahern err = -ENETDOWN; 305483c44251SDavid Ahern goto out; 305583c44251SDavid Ahern } 305683c44251SDavid Ahern 305783c44251SDavid Ahern if (!(cfg->fc_flags & (RTF_LOCAL | RTF_ANYCAST)) && 305883c44251SDavid Ahern !netif_carrier_ok(dev)) 3059ad1601aeSDavid Ahern fib6_nh->fib_nh_flags |= RTNH_F_LINKDOWN; 306083c44251SDavid Ahern 3061979e276eSDavid Ahern err = fib_nh_common_init(&fib6_nh->nh_common, cfg->fc_encap, 3062979e276eSDavid Ahern cfg->fc_encap_type, cfg, gfp_flags, extack); 3063979e276eSDavid Ahern if (err) 3064979e276eSDavid Ahern goto out; 306583c44251SDavid Ahern set_dev: 3066ad1601aeSDavid Ahern fib6_nh->fib_nh_dev = dev; 3067f1741730SDavid Ahern fib6_nh->fib_nh_oif = dev->ifindex; 306883c44251SDavid Ahern err = 0; 306983c44251SDavid Ahern out: 307083c44251SDavid Ahern if (idev) 307183c44251SDavid Ahern in6_dev_put(idev); 307283c44251SDavid Ahern 307383c44251SDavid Ahern if (err) { 3074ad1601aeSDavid Ahern lwtstate_put(fib6_nh->fib_nh_lws); 3075ad1601aeSDavid Ahern fib6_nh->fib_nh_lws = NULL; 307683c44251SDavid Ahern if (dev) 307783c44251SDavid Ahern dev_put(dev); 307883c44251SDavid Ahern } 307983c44251SDavid Ahern 308083c44251SDavid Ahern return err; 308183c44251SDavid Ahern } 308283c44251SDavid Ahern 3083dac7d0f2SDavid Ahern void fib6_nh_release(struct fib6_nh *fib6_nh) 3084dac7d0f2SDavid Ahern { 3085979e276eSDavid Ahern fib_nh_common_release(&fib6_nh->nh_common); 3086dac7d0f2SDavid Ahern } 3087dac7d0f2SDavid Ahern 30888d1c802bSDavid Ahern static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg, 3089acb54e3cSDavid Ahern gfp_t gfp_flags, 3090333c4301SDavid Ahern struct netlink_ext_ack *extack) 30911da177e4SLinus Torvalds { 30925578689aSDaniel Lezcano struct net *net = cfg->fc_nlinfo.nl_net; 30938d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3094c71099acSThomas Graf struct fib6_table *table; 30958c5b83f0SRoopa Prabhu int err = -EINVAL; 309683c44251SDavid Ahern int addr_type; 30971da177e4SLinus Torvalds 3098557c44beSDavid Ahern /* RTF_PCPU is an internal flag; can not be set by userspace */ 3099d5d531cbSDavid Ahern if (cfg->fc_flags & RTF_PCPU) { 3100d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU"); 3101557c44beSDavid Ahern goto out; 3102d5d531cbSDavid Ahern } 3103557c44beSDavid Ahern 31042ea2352eSWei Wang /* RTF_CACHE is an internal flag; can not be set by userspace */ 31052ea2352eSWei Wang if (cfg->fc_flags & RTF_CACHE) { 31062ea2352eSWei Wang NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE"); 31072ea2352eSWei Wang goto out; 31082ea2352eSWei Wang } 31092ea2352eSWei Wang 3110e8478e80SDavid Ahern if (cfg->fc_type > RTN_MAX) { 3111e8478e80SDavid Ahern NL_SET_ERR_MSG(extack, "Invalid route type"); 3112e8478e80SDavid Ahern goto out; 3113e8478e80SDavid Ahern } 3114e8478e80SDavid Ahern 3115d5d531cbSDavid Ahern if (cfg->fc_dst_len > 128) { 3116d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid prefix length"); 31178c5b83f0SRoopa Prabhu goto out; 3118d5d531cbSDavid Ahern } 3119d5d531cbSDavid Ahern if (cfg->fc_src_len > 128) { 3120d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address length"); 3121d5d531cbSDavid Ahern goto out; 3122d5d531cbSDavid Ahern } 31231da177e4SLinus Torvalds #ifndef CONFIG_IPV6_SUBTREES 3124d5d531cbSDavid Ahern if (cfg->fc_src_len) { 3125d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, 3126d5d531cbSDavid Ahern "Specifying source address requires IPV6_SUBTREES to be enabled"); 31278c5b83f0SRoopa Prabhu goto out; 3128d5d531cbSDavid Ahern } 31291da177e4SLinus Torvalds #endif 3130fc1e64e1SDavid Ahern 3131c71099acSThomas Graf err = -ENOBUFS; 313238308473SDavid S. Miller if (cfg->fc_nlinfo.nlh && 3133d71314b4SMatti Vaittinen !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) { 3134d71314b4SMatti Vaittinen table = fib6_get_table(net, cfg->fc_table); 313538308473SDavid S. Miller if (!table) { 3136f3213831SJoe Perches pr_warn("NLM_F_CREATE should be specified when creating new route\n"); 3137d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3138d71314b4SMatti Vaittinen } 3139d71314b4SMatti Vaittinen } else { 3140d71314b4SMatti Vaittinen table = fib6_new_table(net, cfg->fc_table); 3141d71314b4SMatti Vaittinen } 314238308473SDavid S. Miller 314338308473SDavid S. Miller if (!table) 3144c71099acSThomas Graf goto out; 3145c71099acSThomas Graf 31461da177e4SLinus Torvalds err = -ENOMEM; 314793531c67SDavid Ahern rt = fib6_info_alloc(gfp_flags); 314893531c67SDavid Ahern if (!rt) 31491da177e4SLinus Torvalds goto out; 315093531c67SDavid Ahern 3151d7e774f3SDavid Ahern rt->fib6_metrics = ip_fib_metrics_init(net, cfg->fc_mx, cfg->fc_mx_len, 3152d7e774f3SDavid Ahern extack); 3153767a2217SDavid Ahern if (IS_ERR(rt->fib6_metrics)) { 3154767a2217SDavid Ahern err = PTR_ERR(rt->fib6_metrics); 3155fda21d46SEric Dumazet /* Do not leave garbage there. */ 3156fda21d46SEric Dumazet rt->fib6_metrics = (struct dst_metrics *)&dst_default_metrics; 3157767a2217SDavid Ahern goto out; 3158767a2217SDavid Ahern } 3159767a2217SDavid Ahern 316093531c67SDavid Ahern if (cfg->fc_flags & RTF_ADDRCONF) 316193531c67SDavid Ahern rt->dst_nocount = true; 31621da177e4SLinus Torvalds 31631716a961SGao feng if (cfg->fc_flags & RTF_EXPIRES) 316414895687SDavid Ahern fib6_set_expires(rt, jiffies + 31651716a961SGao feng clock_t_to_jiffies(cfg->fc_expires)); 31661716a961SGao feng else 316714895687SDavid Ahern fib6_clean_expires(rt); 31681da177e4SLinus Torvalds 316986872cb5SThomas Graf if (cfg->fc_protocol == RTPROT_UNSPEC) 317086872cb5SThomas Graf cfg->fc_protocol = RTPROT_BOOT; 317193c2fb25SDavid Ahern rt->fib6_protocol = cfg->fc_protocol; 317286872cb5SThomas Graf 317383c44251SDavid Ahern rt->fib6_table = table; 317483c44251SDavid Ahern rt->fib6_metric = cfg->fc_metric; 317583c44251SDavid Ahern rt->fib6_type = cfg->fc_type; 31762b2450caSDavid Ahern rt->fib6_flags = cfg->fc_flags & ~RTF_GATEWAY; 317719e42e45SRoopa Prabhu 317893c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len); 317993c2fb25SDavid Ahern rt->fib6_dst.plen = cfg->fc_dst_len; 318093c2fb25SDavid Ahern if (rt->fib6_dst.plen == 128) 31813b6761d1SDavid Ahern rt->dst_host = true; 31821da177e4SLinus Torvalds 31831da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 318493c2fb25SDavid Ahern ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len); 318593c2fb25SDavid Ahern rt->fib6_src.plen = cfg->fc_src_len; 31861da177e4SLinus Torvalds #endif 318783c44251SDavid Ahern err = fib6_nh_init(net, &rt->fib6_nh, cfg, gfp_flags, extack); 31881da177e4SLinus Torvalds if (err) 31891da177e4SLinus Torvalds goto out; 31909fbb704cSDavid Ahern 319183c44251SDavid Ahern /* We cannot add true routes via loopback here, 319283c44251SDavid Ahern * they would result in kernel looping; promote them to reject routes 319383c44251SDavid Ahern */ 319483c44251SDavid Ahern addr_type = ipv6_addr_type(&cfg->fc_dst); 3195ad1601aeSDavid Ahern if (fib6_is_reject(cfg->fc_flags, rt->fib6_nh.fib_nh_dev, addr_type)) 319683c44251SDavid Ahern rt->fib6_flags = RTF_REJECT | RTF_NONEXTHOP; 3197955ec4cbSDavid Ahern 3198c3968a85SDaniel Walter if (!ipv6_addr_any(&cfg->fc_prefsrc)) { 319983c44251SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 320083c44251SDavid Ahern 3201c3968a85SDaniel Walter if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) { 3202d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "Invalid source address"); 3203c3968a85SDaniel Walter err = -EINVAL; 3204c3968a85SDaniel Walter goto out; 3205c3968a85SDaniel Walter } 320693c2fb25SDavid Ahern rt->fib6_prefsrc.addr = cfg->fc_prefsrc; 320793c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 128; 3208c3968a85SDaniel Walter } else 320993c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 3210c3968a85SDaniel Walter 32118c5b83f0SRoopa Prabhu return rt; 32121da177e4SLinus Torvalds out: 321393531c67SDavid Ahern fib6_info_release(rt); 32148c5b83f0SRoopa Prabhu return ERR_PTR(err); 32156b9ea5a6SRoopa Prabhu } 32166b9ea5a6SRoopa Prabhu 3217acb54e3cSDavid Ahern int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags, 3218333c4301SDavid Ahern struct netlink_ext_ack *extack) 32196b9ea5a6SRoopa Prabhu { 32208d1c802bSDavid Ahern struct fib6_info *rt; 32216b9ea5a6SRoopa Prabhu int err; 32226b9ea5a6SRoopa Prabhu 3223acb54e3cSDavid Ahern rt = ip6_route_info_create(cfg, gfp_flags, extack); 3224d4ead6b3SDavid Ahern if (IS_ERR(rt)) 3225d4ead6b3SDavid Ahern return PTR_ERR(rt); 32266b9ea5a6SRoopa Prabhu 3227d4ead6b3SDavid Ahern err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack); 322893531c67SDavid Ahern fib6_info_release(rt); 32296b9ea5a6SRoopa Prabhu 32301da177e4SLinus Torvalds return err; 32311da177e4SLinus Torvalds } 32321da177e4SLinus Torvalds 32338d1c802bSDavid Ahern static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info) 32341da177e4SLinus Torvalds { 3235afb1d4b5SDavid Ahern struct net *net = info->nl_net; 3236c71099acSThomas Graf struct fib6_table *table; 3237afb1d4b5SDavid Ahern int err; 32381da177e4SLinus Torvalds 3239421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) { 32406825a26cSGao feng err = -ENOENT; 32416825a26cSGao feng goto out; 32426825a26cSGao feng } 32436c813a72SPatrick McHardy 324493c2fb25SDavid Ahern table = rt->fib6_table; 324566f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 324686872cb5SThomas Graf err = fib6_del(rt, info); 324766f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 32481da177e4SLinus Torvalds 32496825a26cSGao feng out: 325093531c67SDavid Ahern fib6_info_release(rt); 32511da177e4SLinus Torvalds return err; 32521da177e4SLinus Torvalds } 32531da177e4SLinus Torvalds 32548d1c802bSDavid Ahern int ip6_del_rt(struct net *net, struct fib6_info *rt) 3255e0a1ad73SThomas Graf { 3256afb1d4b5SDavid Ahern struct nl_info info = { .nl_net = net }; 3257afb1d4b5SDavid Ahern 3258528c4cebSDenis V. Lunev return __ip6_del_rt(rt, &info); 3259e0a1ad73SThomas Graf } 3260e0a1ad73SThomas Graf 32618d1c802bSDavid Ahern static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg) 32620ae81335SDavid Ahern { 32630ae81335SDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 3264e3330039SWANG Cong struct net *net = info->nl_net; 326516a16cd3SDavid Ahern struct sk_buff *skb = NULL; 32660ae81335SDavid Ahern struct fib6_table *table; 3267e3330039SWANG Cong int err = -ENOENT; 32680ae81335SDavid Ahern 3269421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 3270e3330039SWANG Cong goto out_put; 327193c2fb25SDavid Ahern table = rt->fib6_table; 327266f5d6ceSWei Wang spin_lock_bh(&table->tb6_lock); 32730ae81335SDavid Ahern 327493c2fb25SDavid Ahern if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) { 32758d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 32760ae81335SDavid Ahern 327716a16cd3SDavid Ahern /* prefer to send a single notification with all hops */ 327816a16cd3SDavid Ahern skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 327916a16cd3SDavid Ahern if (skb) { 328016a16cd3SDavid Ahern u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0; 328116a16cd3SDavid Ahern 3282d4ead6b3SDavid Ahern if (rt6_fill_node(net, skb, rt, NULL, 328316a16cd3SDavid Ahern NULL, NULL, 0, RTM_DELROUTE, 328416a16cd3SDavid Ahern info->portid, seq, 0) < 0) { 328516a16cd3SDavid Ahern kfree_skb(skb); 328616a16cd3SDavid Ahern skb = NULL; 328716a16cd3SDavid Ahern } else 328816a16cd3SDavid Ahern info->skip_notify = 1; 328916a16cd3SDavid Ahern } 329016a16cd3SDavid Ahern 32910ae81335SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 329293c2fb25SDavid Ahern &rt->fib6_siblings, 329393c2fb25SDavid Ahern fib6_siblings) { 32940ae81335SDavid Ahern err = fib6_del(sibling, info); 32950ae81335SDavid Ahern if (err) 3296e3330039SWANG Cong goto out_unlock; 32970ae81335SDavid Ahern } 32980ae81335SDavid Ahern } 32990ae81335SDavid Ahern 33000ae81335SDavid Ahern err = fib6_del(rt, info); 3301e3330039SWANG Cong out_unlock: 330266f5d6ceSWei Wang spin_unlock_bh(&table->tb6_lock); 3303e3330039SWANG Cong out_put: 330493531c67SDavid Ahern fib6_info_release(rt); 330516a16cd3SDavid Ahern 330616a16cd3SDavid Ahern if (skb) { 3307e3330039SWANG Cong rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 330816a16cd3SDavid Ahern info->nlh, gfp_any()); 330916a16cd3SDavid Ahern } 33100ae81335SDavid Ahern return err; 33110ae81335SDavid Ahern } 33120ae81335SDavid Ahern 331323fb93a4SDavid Ahern static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg) 331423fb93a4SDavid Ahern { 331523fb93a4SDavid Ahern int rc = -ESRCH; 331623fb93a4SDavid Ahern 331723fb93a4SDavid Ahern if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex) 331823fb93a4SDavid Ahern goto out; 331923fb93a4SDavid Ahern 332023fb93a4SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY && 332123fb93a4SDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway)) 332223fb93a4SDavid Ahern goto out; 3323761f6026SXin Long 332423fb93a4SDavid Ahern rc = rt6_remove_exception_rt(rt); 332523fb93a4SDavid Ahern out: 332623fb93a4SDavid Ahern return rc; 332723fb93a4SDavid Ahern } 332823fb93a4SDavid Ahern 3329333c4301SDavid Ahern static int ip6_route_del(struct fib6_config *cfg, 3330333c4301SDavid Ahern struct netlink_ext_ack *extack) 33311da177e4SLinus Torvalds { 33328d1c802bSDavid Ahern struct rt6_info *rt_cache; 3333c71099acSThomas Graf struct fib6_table *table; 33348d1c802bSDavid Ahern struct fib6_info *rt; 33351da177e4SLinus Torvalds struct fib6_node *fn; 33361da177e4SLinus Torvalds int err = -ESRCH; 33371da177e4SLinus Torvalds 33385578689aSDaniel Lezcano table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table); 3339d5d531cbSDavid Ahern if (!table) { 3340d5d531cbSDavid Ahern NL_SET_ERR_MSG(extack, "FIB table does not exist"); 3341c71099acSThomas Graf return err; 3342d5d531cbSDavid Ahern } 33431da177e4SLinus Torvalds 334466f5d6ceSWei Wang rcu_read_lock(); 3345c71099acSThomas Graf 3346c71099acSThomas Graf fn = fib6_locate(&table->tb6_root, 334786872cb5SThomas Graf &cfg->fc_dst, cfg->fc_dst_len, 334838fbeeeeSWei Wang &cfg->fc_src, cfg->fc_src_len, 33492b760fcfSWei Wang !(cfg->fc_flags & RTF_CACHE)); 33501da177e4SLinus Torvalds 33511da177e4SLinus Torvalds if (fn) { 335266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3353ad1601aeSDavid Ahern struct fib6_nh *nh; 3354ad1601aeSDavid Ahern 33552b760fcfSWei Wang if (cfg->fc_flags & RTF_CACHE) { 33567e4b5128SDavid Ahern struct fib6_result res = { 33577e4b5128SDavid Ahern .f6i = rt, 33587e4b5128SDavid Ahern }; 335923fb93a4SDavid Ahern int rc; 336023fb93a4SDavid Ahern 33617e4b5128SDavid Ahern rt_cache = rt6_find_cached_rt(&res, 33627e4b5128SDavid Ahern &cfg->fc_dst, 33632b760fcfSWei Wang &cfg->fc_src); 336423fb93a4SDavid Ahern if (rt_cache) { 336523fb93a4SDavid Ahern rc = ip6_del_cached_rt(rt_cache, cfg); 33669e575010SEric Dumazet if (rc != -ESRCH) { 33679e575010SEric Dumazet rcu_read_unlock(); 336823fb93a4SDavid Ahern return rc; 336923fb93a4SDavid Ahern } 33709e575010SEric Dumazet } 33711f56a01fSMartin KaFai Lau continue; 33722b760fcfSWei Wang } 3373ad1601aeSDavid Ahern 3374ad1601aeSDavid Ahern nh = &rt->fib6_nh; 337586872cb5SThomas Graf if (cfg->fc_ifindex && 3376ad1601aeSDavid Ahern (!nh->fib_nh_dev || 3377ad1601aeSDavid Ahern nh->fib_nh_dev->ifindex != cfg->fc_ifindex)) 33781da177e4SLinus Torvalds continue; 337986872cb5SThomas Graf if (cfg->fc_flags & RTF_GATEWAY && 3380ad1601aeSDavid Ahern !ipv6_addr_equal(&cfg->fc_gateway, &nh->fib_nh_gw6)) 33811da177e4SLinus Torvalds continue; 338293c2fb25SDavid Ahern if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric) 33831da177e4SLinus Torvalds continue; 338493c2fb25SDavid Ahern if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol) 3385c2ed1880SMantas M continue; 3386e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3387e873e4b9SWei Wang continue; 338866f5d6ceSWei Wang rcu_read_unlock(); 33891da177e4SLinus Torvalds 33900ae81335SDavid Ahern /* if gateway was specified only delete the one hop */ 33910ae81335SDavid Ahern if (cfg->fc_flags & RTF_GATEWAY) 339286872cb5SThomas Graf return __ip6_del_rt(rt, &cfg->fc_nlinfo); 33930ae81335SDavid Ahern 33940ae81335SDavid Ahern return __ip6_del_rt_siblings(rt, cfg); 33951da177e4SLinus Torvalds } 33961da177e4SLinus Torvalds } 339766f5d6ceSWei Wang rcu_read_unlock(); 33981da177e4SLinus Torvalds 33991da177e4SLinus Torvalds return err; 34001da177e4SLinus Torvalds } 34011da177e4SLinus Torvalds 34026700c270SDavid S. Miller static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb) 3403a6279458SYOSHIFUJI Hideaki { 3404a6279458SYOSHIFUJI Hideaki struct netevent_redirect netevent; 3405e8599ff4SDavid S. Miller struct rt6_info *rt, *nrt = NULL; 340685bd05deSDavid Ahern struct fib6_result res = {}; 3407e8599ff4SDavid S. Miller struct ndisc_options ndopts; 3408e8599ff4SDavid S. Miller struct inet6_dev *in6_dev; 3409e8599ff4SDavid S. Miller struct neighbour *neigh; 341071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 struct rd_msg *msg; 34116e157b6aSDavid S. Miller int optlen, on_link; 34126e157b6aSDavid S. Miller u8 *lladdr; 3413e8599ff4SDavid S. Miller 341429a3cad5SSimon Horman optlen = skb_tail_pointer(skb) - skb_transport_header(skb); 341571bcdba0SYOSHIFUJI Hideaki / 吉藤英明 optlen -= sizeof(*msg); 3416e8599ff4SDavid S. Miller 3417e8599ff4SDavid S. Miller if (optlen < 0) { 34186e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: packet too short\n"); 3419e8599ff4SDavid S. Miller return; 3420e8599ff4SDavid S. Miller } 3421e8599ff4SDavid S. Miller 342271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 msg = (struct rd_msg *)icmp6_hdr(skb); 3423e8599ff4SDavid S. Miller 342471bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_is_multicast(&msg->dest)) { 34256e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n"); 3426e8599ff4SDavid S. Miller return; 3427e8599ff4SDavid S. Miller } 3428e8599ff4SDavid S. Miller 34296e157b6aSDavid S. Miller on_link = 0; 343071bcdba0SYOSHIFUJI Hideaki / 吉藤英明 if (ipv6_addr_equal(&msg->dest, &msg->target)) { 3431e8599ff4SDavid S. Miller on_link = 1; 343271bcdba0SYOSHIFUJI Hideaki / 吉藤英明 } else if (ipv6_addr_type(&msg->target) != 3433e8599ff4SDavid S. Miller (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) { 34346e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n"); 3435e8599ff4SDavid S. Miller return; 3436e8599ff4SDavid S. Miller } 3437e8599ff4SDavid S. Miller 3438e8599ff4SDavid S. Miller in6_dev = __in6_dev_get(skb->dev); 3439e8599ff4SDavid S. Miller if (!in6_dev) 3440e8599ff4SDavid S. Miller return; 3441e8599ff4SDavid S. Miller if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) 3442e8599ff4SDavid S. Miller return; 3443e8599ff4SDavid S. Miller 3444e8599ff4SDavid S. Miller /* RFC2461 8.1: 3445e8599ff4SDavid S. Miller * The IP source address of the Redirect MUST be the same as the current 3446e8599ff4SDavid S. Miller * first-hop router for the specified ICMP Destination Address. 3447e8599ff4SDavid S. Miller */ 3448e8599ff4SDavid S. Miller 3449f997c55cSAlexander Aring if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) { 3450e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid ND options\n"); 3451e8599ff4SDavid S. Miller return; 3452e8599ff4SDavid S. Miller } 34536e157b6aSDavid S. Miller 34546e157b6aSDavid S. Miller lladdr = NULL; 3455e8599ff4SDavid S. Miller if (ndopts.nd_opts_tgt_lladdr) { 3456e8599ff4SDavid S. Miller lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, 3457e8599ff4SDavid S. Miller skb->dev); 3458e8599ff4SDavid S. Miller if (!lladdr) { 3459e8599ff4SDavid S. Miller net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n"); 3460e8599ff4SDavid S. Miller return; 3461e8599ff4SDavid S. Miller } 3462e8599ff4SDavid S. Miller } 3463e8599ff4SDavid S. Miller 34646e157b6aSDavid S. Miller rt = (struct rt6_info *) dst; 3465ec13ad1dSMatthias Schiffer if (rt->rt6i_flags & RTF_REJECT) { 34666e157b6aSDavid S. Miller net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n"); 34676e157b6aSDavid S. Miller return; 34686e157b6aSDavid S. Miller } 34696e157b6aSDavid S. Miller 34706e157b6aSDavid S. Miller /* Redirect received -> path was valid. 34716e157b6aSDavid S. Miller * Look, redirects are sent only in response to data packets, 34726e157b6aSDavid S. Miller * so that this nexthop apparently is reachable. --ANK 34736e157b6aSDavid S. Miller */ 34740dec879fSJulian Anastasov dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr); 34756e157b6aSDavid S. Miller 347671bcdba0SYOSHIFUJI Hideaki / 吉藤英明 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1); 3477e8599ff4SDavid S. Miller if (!neigh) 3478e8599ff4SDavid S. Miller return; 3479e8599ff4SDavid S. Miller 34801da177e4SLinus Torvalds /* 34811da177e4SLinus Torvalds * We have finally decided to accept it. 34821da177e4SLinus Torvalds */ 34831da177e4SLinus Torvalds 3484f997c55cSAlexander Aring ndisc_update(skb->dev, neigh, lladdr, NUD_STALE, 34851da177e4SLinus Torvalds NEIGH_UPDATE_F_WEAK_OVERRIDE| 34861da177e4SLinus Torvalds NEIGH_UPDATE_F_OVERRIDE| 34871da177e4SLinus Torvalds (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER| 3488f997c55cSAlexander Aring NEIGH_UPDATE_F_ISROUTER)), 3489f997c55cSAlexander Aring NDISC_REDIRECT, &ndopts); 34901da177e4SLinus Torvalds 34914d85cd0cSDavid Ahern rcu_read_lock(); 349285bd05deSDavid Ahern res.f6i = rcu_dereference(rt->from); 3493*ff24e498SDavid S. Miller if (!res.f6i) 3494886b7a50SMartin KaFai Lau goto out; 34958a14e46fSDavid Ahern 349685bd05deSDavid Ahern res.nh = &res.f6i->fib6_nh; 34977d21fec9SDavid Ahern res.fib6_flags = res.f6i->fib6_flags; 34987d21fec9SDavid Ahern res.fib6_type = res.f6i->fib6_type; 349985bd05deSDavid Ahern nrt = ip6_rt_cache_alloc(&res, &msg->dest, NULL); 350038308473SDavid S. Miller if (!nrt) 35011da177e4SLinus Torvalds goto out; 35021da177e4SLinus Torvalds 35031da177e4SLinus Torvalds nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE; 35041da177e4SLinus Torvalds if (on_link) 35051da177e4SLinus Torvalds nrt->rt6i_flags &= ~RTF_GATEWAY; 35061da177e4SLinus Torvalds 35074e3fd7a0SAlexey Dobriyan nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key; 35081da177e4SLinus Torvalds 3509886b7a50SMartin KaFai Lau /* rt6_insert_exception() will take care of duplicated exceptions */ 35105012f0a5SDavid Ahern if (rt6_insert_exception(nrt, &res)) { 35112b760fcfSWei Wang dst_release_immediate(&nrt->dst); 35122b760fcfSWei Wang goto out; 35132b760fcfSWei Wang } 35141da177e4SLinus Torvalds 3515d8d1f30bSChangli Gao netevent.old = &rt->dst; 3516d8d1f30bSChangli Gao netevent.new = &nrt->dst; 351771bcdba0SYOSHIFUJI Hideaki / 吉藤英明 netevent.daddr = &msg->dest; 351860592833SYOSHIFUJI Hideaki / 吉藤英明 netevent.neigh = neigh; 35198d71740cSTom Tucker call_netevent_notifiers(NETEVENT_REDIRECT, &netevent); 35208d71740cSTom Tucker 35211da177e4SLinus Torvalds out: 3522886b7a50SMartin KaFai Lau rcu_read_unlock(); 3523e8599ff4SDavid S. Miller neigh_release(neigh); 35246e157b6aSDavid S. Miller } 35256e157b6aSDavid S. Miller 352670ceb4f5SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_ROUTE_INFO 35278d1c802bSDavid Ahern static struct fib6_info *rt6_get_route_info(struct net *net, 3528b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3529830218c1SDavid Ahern const struct in6_addr *gwaddr, 3530830218c1SDavid Ahern struct net_device *dev) 353170ceb4f5SYOSHIFUJI Hideaki { 3532830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO; 3533830218c1SDavid Ahern int ifindex = dev->ifindex; 353470ceb4f5SYOSHIFUJI Hideaki struct fib6_node *fn; 35358d1c802bSDavid Ahern struct fib6_info *rt = NULL; 3536c71099acSThomas Graf struct fib6_table *table; 353770ceb4f5SYOSHIFUJI Hideaki 3538830218c1SDavid Ahern table = fib6_get_table(net, tb_id); 353938308473SDavid S. Miller if (!table) 3540c71099acSThomas Graf return NULL; 3541c71099acSThomas Graf 354266f5d6ceSWei Wang rcu_read_lock(); 354338fbeeeeSWei Wang fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true); 354470ceb4f5SYOSHIFUJI Hideaki if (!fn) 354570ceb4f5SYOSHIFUJI Hideaki goto out; 354670ceb4f5SYOSHIFUJI Hideaki 354766f5d6ceSWei Wang for_each_fib6_node_rt_rcu(fn) { 3548ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev->ifindex != ifindex) 354970ceb4f5SYOSHIFUJI Hideaki continue; 35502b2450caSDavid Ahern if (!(rt->fib6_flags & RTF_ROUTEINFO) || 3551bdf00467SDavid Ahern !rt->fib6_nh.fib_nh_gw_family) 355270ceb4f5SYOSHIFUJI Hideaki continue; 3553ad1601aeSDavid Ahern if (!ipv6_addr_equal(&rt->fib6_nh.fib_nh_gw6, gwaddr)) 355470ceb4f5SYOSHIFUJI Hideaki continue; 3555e873e4b9SWei Wang if (!fib6_info_hold_safe(rt)) 3556e873e4b9SWei Wang continue; 355770ceb4f5SYOSHIFUJI Hideaki break; 355870ceb4f5SYOSHIFUJI Hideaki } 355970ceb4f5SYOSHIFUJI Hideaki out: 356066f5d6ceSWei Wang rcu_read_unlock(); 356170ceb4f5SYOSHIFUJI Hideaki return rt; 356270ceb4f5SYOSHIFUJI Hideaki } 356370ceb4f5SYOSHIFUJI Hideaki 35648d1c802bSDavid Ahern static struct fib6_info *rt6_add_route_info(struct net *net, 3565b71d1d42SEric Dumazet const struct in6_addr *prefix, int prefixlen, 3566830218c1SDavid Ahern const struct in6_addr *gwaddr, 3567830218c1SDavid Ahern struct net_device *dev, 356895c96174SEric Dumazet unsigned int pref) 356970ceb4f5SYOSHIFUJI Hideaki { 357086872cb5SThomas Graf struct fib6_config cfg = { 3571238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 3572830218c1SDavid Ahern .fc_ifindex = dev->ifindex, 357386872cb5SThomas Graf .fc_dst_len = prefixlen, 357486872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO | 357586872cb5SThomas Graf RTF_UP | RTF_PREF(pref), 3576b91d5329SXin Long .fc_protocol = RTPROT_RA, 3577e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 357815e47304SEric W. Biederman .fc_nlinfo.portid = 0, 3579efa2cea0SDaniel Lezcano .fc_nlinfo.nlh = NULL, 3580efa2cea0SDaniel Lezcano .fc_nlinfo.nl_net = net, 358186872cb5SThomas Graf }; 358270ceb4f5SYOSHIFUJI Hideaki 3583830218c1SDavid Ahern cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO, 35844e3fd7a0SAlexey Dobriyan cfg.fc_dst = *prefix; 35854e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 358686872cb5SThomas Graf 3587e317da96SYOSHIFUJI Hideaki /* We should treat it as a default route if prefix length is 0. */ 3588e317da96SYOSHIFUJI Hideaki if (!prefixlen) 358986872cb5SThomas Graf cfg.fc_flags |= RTF_DEFAULT; 359070ceb4f5SYOSHIFUJI Hideaki 3591acb54e3cSDavid Ahern ip6_route_add(&cfg, GFP_ATOMIC, NULL); 359270ceb4f5SYOSHIFUJI Hideaki 3593830218c1SDavid Ahern return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev); 359470ceb4f5SYOSHIFUJI Hideaki } 359570ceb4f5SYOSHIFUJI Hideaki #endif 359670ceb4f5SYOSHIFUJI Hideaki 35978d1c802bSDavid Ahern struct fib6_info *rt6_get_dflt_router(struct net *net, 3598afb1d4b5SDavid Ahern const struct in6_addr *addr, 3599afb1d4b5SDavid Ahern struct net_device *dev) 36001da177e4SLinus Torvalds { 3601830218c1SDavid Ahern u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT; 36028d1c802bSDavid Ahern struct fib6_info *rt; 3603c71099acSThomas Graf struct fib6_table *table; 36041da177e4SLinus Torvalds 3605afb1d4b5SDavid Ahern table = fib6_get_table(net, tb_id); 360638308473SDavid S. Miller if (!table) 3607c71099acSThomas Graf return NULL; 36081da177e4SLinus Torvalds 360966f5d6ceSWei Wang rcu_read_lock(); 361066f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3611ad1601aeSDavid Ahern struct fib6_nh *nh = &rt->fib6_nh; 3612ad1601aeSDavid Ahern 3613ad1601aeSDavid Ahern if (dev == nh->fib_nh_dev && 361493c2fb25SDavid Ahern ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) && 3615ad1601aeSDavid Ahern ipv6_addr_equal(&nh->fib_nh_gw6, addr)) 36161da177e4SLinus Torvalds break; 36171da177e4SLinus Torvalds } 3618e873e4b9SWei Wang if (rt && !fib6_info_hold_safe(rt)) 3619e873e4b9SWei Wang rt = NULL; 362066f5d6ceSWei Wang rcu_read_unlock(); 36211da177e4SLinus Torvalds return rt; 36221da177e4SLinus Torvalds } 36231da177e4SLinus Torvalds 36248d1c802bSDavid Ahern struct fib6_info *rt6_add_dflt_router(struct net *net, 3625afb1d4b5SDavid Ahern const struct in6_addr *gwaddr, 3626ebacaaa0SYOSHIFUJI Hideaki struct net_device *dev, 3627ebacaaa0SYOSHIFUJI Hideaki unsigned int pref) 36281da177e4SLinus Torvalds { 362986872cb5SThomas Graf struct fib6_config cfg = { 3630ca254490SDavid Ahern .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT, 3631238fc7eaSRami Rosen .fc_metric = IP6_RT_PRIO_USER, 363286872cb5SThomas Graf .fc_ifindex = dev->ifindex, 363386872cb5SThomas Graf .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT | 363486872cb5SThomas Graf RTF_UP | RTF_EXPIRES | RTF_PREF(pref), 3635b91d5329SXin Long .fc_protocol = RTPROT_RA, 3636e8478e80SDavid Ahern .fc_type = RTN_UNICAST, 363715e47304SEric W. Biederman .fc_nlinfo.portid = 0, 36385578689aSDaniel Lezcano .fc_nlinfo.nlh = NULL, 3639afb1d4b5SDavid Ahern .fc_nlinfo.nl_net = net, 364086872cb5SThomas Graf }; 36411da177e4SLinus Torvalds 36424e3fd7a0SAlexey Dobriyan cfg.fc_gateway = *gwaddr; 36431da177e4SLinus Torvalds 3644acb54e3cSDavid Ahern if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) { 3645830218c1SDavid Ahern struct fib6_table *table; 3646830218c1SDavid Ahern 3647830218c1SDavid Ahern table = fib6_get_table(dev_net(dev), cfg.fc_table); 3648830218c1SDavid Ahern if (table) 3649830218c1SDavid Ahern table->flags |= RT6_TABLE_HAS_DFLT_ROUTER; 3650830218c1SDavid Ahern } 36511da177e4SLinus Torvalds 3652afb1d4b5SDavid Ahern return rt6_get_dflt_router(net, gwaddr, dev); 36531da177e4SLinus Torvalds } 36541da177e4SLinus Torvalds 3655afb1d4b5SDavid Ahern static void __rt6_purge_dflt_routers(struct net *net, 3656afb1d4b5SDavid Ahern struct fib6_table *table) 36571da177e4SLinus Torvalds { 36588d1c802bSDavid Ahern struct fib6_info *rt; 36591da177e4SLinus Torvalds 36601da177e4SLinus Torvalds restart: 366166f5d6ceSWei Wang rcu_read_lock(); 366266f5d6ceSWei Wang for_each_fib6_node_rt_rcu(&table->tb6_root) { 3663dcd1f572SDavid Ahern struct net_device *dev = fib6_info_nh_dev(rt); 3664dcd1f572SDavid Ahern struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL; 3665dcd1f572SDavid Ahern 366693c2fb25SDavid Ahern if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) && 3667e873e4b9SWei Wang (!idev || idev->cnf.accept_ra != 2) && 3668e873e4b9SWei Wang fib6_info_hold_safe(rt)) { 366966f5d6ceSWei Wang rcu_read_unlock(); 3670afb1d4b5SDavid Ahern ip6_del_rt(net, rt); 36711da177e4SLinus Torvalds goto restart; 36721da177e4SLinus Torvalds } 36731da177e4SLinus Torvalds } 367466f5d6ceSWei Wang rcu_read_unlock(); 3675830218c1SDavid Ahern 3676830218c1SDavid Ahern table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER; 3677830218c1SDavid Ahern } 3678830218c1SDavid Ahern 3679830218c1SDavid Ahern void rt6_purge_dflt_routers(struct net *net) 3680830218c1SDavid Ahern { 3681830218c1SDavid Ahern struct fib6_table *table; 3682830218c1SDavid Ahern struct hlist_head *head; 3683830218c1SDavid Ahern unsigned int h; 3684830218c1SDavid Ahern 3685830218c1SDavid Ahern rcu_read_lock(); 3686830218c1SDavid Ahern 3687830218c1SDavid Ahern for (h = 0; h < FIB6_TABLE_HASHSZ; h++) { 3688830218c1SDavid Ahern head = &net->ipv6.fib_table_hash[h]; 3689830218c1SDavid Ahern hlist_for_each_entry_rcu(table, head, tb6_hlist) { 3690830218c1SDavid Ahern if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER) 3691afb1d4b5SDavid Ahern __rt6_purge_dflt_routers(net, table); 3692830218c1SDavid Ahern } 3693830218c1SDavid Ahern } 3694830218c1SDavid Ahern 3695830218c1SDavid Ahern rcu_read_unlock(); 36961da177e4SLinus Torvalds } 36971da177e4SLinus Torvalds 36985578689aSDaniel Lezcano static void rtmsg_to_fib6_config(struct net *net, 36995578689aSDaniel Lezcano struct in6_rtmsg *rtmsg, 370086872cb5SThomas Graf struct fib6_config *cfg) 370186872cb5SThomas Graf { 37028823a3acSMaciej Żenczykowski *cfg = (struct fib6_config){ 37038823a3acSMaciej Żenczykowski .fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ? 37048823a3acSMaciej Żenczykowski : RT6_TABLE_MAIN, 37058823a3acSMaciej Żenczykowski .fc_ifindex = rtmsg->rtmsg_ifindex, 370667f69513SDavid Ahern .fc_metric = rtmsg->rtmsg_metric ? : IP6_RT_PRIO_USER, 37078823a3acSMaciej Żenczykowski .fc_expires = rtmsg->rtmsg_info, 37088823a3acSMaciej Żenczykowski .fc_dst_len = rtmsg->rtmsg_dst_len, 37098823a3acSMaciej Żenczykowski .fc_src_len = rtmsg->rtmsg_src_len, 37108823a3acSMaciej Żenczykowski .fc_flags = rtmsg->rtmsg_flags, 37118823a3acSMaciej Żenczykowski .fc_type = rtmsg->rtmsg_type, 371286872cb5SThomas Graf 37138823a3acSMaciej Żenczykowski .fc_nlinfo.nl_net = net, 371486872cb5SThomas Graf 37158823a3acSMaciej Żenczykowski .fc_dst = rtmsg->rtmsg_dst, 37168823a3acSMaciej Żenczykowski .fc_src = rtmsg->rtmsg_src, 37178823a3acSMaciej Żenczykowski .fc_gateway = rtmsg->rtmsg_gateway, 37188823a3acSMaciej Żenczykowski }; 371986872cb5SThomas Graf } 372086872cb5SThomas Graf 37215578689aSDaniel Lezcano int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg) 37221da177e4SLinus Torvalds { 372386872cb5SThomas Graf struct fib6_config cfg; 37241da177e4SLinus Torvalds struct in6_rtmsg rtmsg; 37251da177e4SLinus Torvalds int err; 37261da177e4SLinus Torvalds 37271da177e4SLinus Torvalds switch (cmd) { 37281da177e4SLinus Torvalds case SIOCADDRT: /* Add a route */ 37291da177e4SLinus Torvalds case SIOCDELRT: /* Delete a route */ 3730af31f412SEric W. Biederman if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) 37311da177e4SLinus Torvalds return -EPERM; 37321da177e4SLinus Torvalds err = copy_from_user(&rtmsg, arg, 37331da177e4SLinus Torvalds sizeof(struct in6_rtmsg)); 37341da177e4SLinus Torvalds if (err) 37351da177e4SLinus Torvalds return -EFAULT; 37361da177e4SLinus Torvalds 37375578689aSDaniel Lezcano rtmsg_to_fib6_config(net, &rtmsg, &cfg); 373886872cb5SThomas Graf 37391da177e4SLinus Torvalds rtnl_lock(); 37401da177e4SLinus Torvalds switch (cmd) { 37411da177e4SLinus Torvalds case SIOCADDRT: 3742acb54e3cSDavid Ahern err = ip6_route_add(&cfg, GFP_KERNEL, NULL); 37431da177e4SLinus Torvalds break; 37441da177e4SLinus Torvalds case SIOCDELRT: 3745333c4301SDavid Ahern err = ip6_route_del(&cfg, NULL); 37461da177e4SLinus Torvalds break; 37471da177e4SLinus Torvalds default: 37481da177e4SLinus Torvalds err = -EINVAL; 37491da177e4SLinus Torvalds } 37501da177e4SLinus Torvalds rtnl_unlock(); 37511da177e4SLinus Torvalds 37521da177e4SLinus Torvalds return err; 37533ff50b79SStephen Hemminger } 37541da177e4SLinus Torvalds 37551da177e4SLinus Torvalds return -EINVAL; 37561da177e4SLinus Torvalds } 37571da177e4SLinus Torvalds 37581da177e4SLinus Torvalds /* 37591da177e4SLinus Torvalds * Drop the packet on the floor 37601da177e4SLinus Torvalds */ 37611da177e4SLinus Torvalds 3762d5fdd6baSBrian Haley static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes) 37631da177e4SLinus Torvalds { 3764adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 37651d3fd8a1SStephen Suryaputra struct net *net = dev_net(dst->dev); 37661d3fd8a1SStephen Suryaputra struct inet6_dev *idev; 37671d3fd8a1SStephen Suryaputra int type; 37681d3fd8a1SStephen Suryaputra 37691d3fd8a1SStephen Suryaputra if (netif_is_l3_master(skb->dev) && 37701d3fd8a1SStephen Suryaputra dst->dev == net->loopback_dev) 37711d3fd8a1SStephen Suryaputra idev = __in6_dev_get_safely(dev_get_by_index_rcu(net, IP6CB(skb)->iif)); 37721d3fd8a1SStephen Suryaputra else 37731d3fd8a1SStephen Suryaputra idev = ip6_dst_idev(dst); 37741d3fd8a1SStephen Suryaputra 3775612f09e8SYOSHIFUJI Hideaki switch (ipstats_mib_noroutes) { 3776612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_INNOROUTES: 37770660e03fSArnaldo Carvalho de Melo type = ipv6_addr_type(&ipv6_hdr(skb)->daddr); 377845bb0060SUlrich Weber if (type == IPV6_ADDR_ANY) { 37791d3fd8a1SStephen Suryaputra IP6_INC_STATS(net, idev, IPSTATS_MIB_INADDRERRORS); 3780612f09e8SYOSHIFUJI Hideaki break; 3781612f09e8SYOSHIFUJI Hideaki } 3782612f09e8SYOSHIFUJI Hideaki /* FALLTHROUGH */ 3783612f09e8SYOSHIFUJI Hideaki case IPSTATS_MIB_OUTNOROUTES: 37841d3fd8a1SStephen Suryaputra IP6_INC_STATS(net, idev, ipstats_mib_noroutes); 3785612f09e8SYOSHIFUJI Hideaki break; 3786612f09e8SYOSHIFUJI Hideaki } 37871d3fd8a1SStephen Suryaputra 37881d3fd8a1SStephen Suryaputra /* Start over by dropping the dst for l3mdev case */ 37891d3fd8a1SStephen Suryaputra if (netif_is_l3_master(skb->dev)) 37901d3fd8a1SStephen Suryaputra skb_dst_drop(skb); 37911d3fd8a1SStephen Suryaputra 37923ffe533cSAlexey Dobriyan icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0); 37931da177e4SLinus Torvalds kfree_skb(skb); 37941da177e4SLinus Torvalds return 0; 37951da177e4SLinus Torvalds } 37961da177e4SLinus Torvalds 37979ce8ade0SThomas Graf static int ip6_pkt_discard(struct sk_buff *skb) 37989ce8ade0SThomas Graf { 3799612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES); 38009ce8ade0SThomas Graf } 38019ce8ade0SThomas Graf 3802ede2059dSEric W. Biederman static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb) 38031da177e4SLinus Torvalds { 3804adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3805612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES); 38061da177e4SLinus Torvalds } 38071da177e4SLinus Torvalds 38089ce8ade0SThomas Graf static int ip6_pkt_prohibit(struct sk_buff *skb) 38099ce8ade0SThomas Graf { 3810612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES); 38119ce8ade0SThomas Graf } 38129ce8ade0SThomas Graf 3813ede2059dSEric W. Biederman static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb) 38149ce8ade0SThomas Graf { 3815adf30907SEric Dumazet skb->dev = skb_dst(skb)->dev; 3816612f09e8SYOSHIFUJI Hideaki return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES); 38179ce8ade0SThomas Graf } 38189ce8ade0SThomas Graf 38191da177e4SLinus Torvalds /* 38201da177e4SLinus Torvalds * Allocate a dst for local (unicast / anycast) address. 38211da177e4SLinus Torvalds */ 38221da177e4SLinus Torvalds 3823360a9887SDavid Ahern struct fib6_info *addrconf_f6i_alloc(struct net *net, 3824afb1d4b5SDavid Ahern struct inet6_dev *idev, 38251da177e4SLinus Torvalds const struct in6_addr *addr, 3826acb54e3cSDavid Ahern bool anycast, gfp_t gfp_flags) 38271da177e4SLinus Torvalds { 3828c7a1ce39SDavid Ahern struct fib6_config cfg = { 3829c7a1ce39SDavid Ahern .fc_table = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL, 3830c7a1ce39SDavid Ahern .fc_ifindex = idev->dev->ifindex, 3831c7a1ce39SDavid Ahern .fc_flags = RTF_UP | RTF_ADDRCONF | RTF_NONEXTHOP, 3832c7a1ce39SDavid Ahern .fc_dst = *addr, 3833c7a1ce39SDavid Ahern .fc_dst_len = 128, 3834c7a1ce39SDavid Ahern .fc_protocol = RTPROT_KERNEL, 3835c7a1ce39SDavid Ahern .fc_nlinfo.nl_net = net, 3836c7a1ce39SDavid Ahern .fc_ignore_dev_down = true, 3837c7a1ce39SDavid Ahern }; 38385f02ce24SDavid Ahern 3839e8478e80SDavid Ahern if (anycast) { 3840c7a1ce39SDavid Ahern cfg.fc_type = RTN_ANYCAST; 3841c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_ANYCAST; 3842e8478e80SDavid Ahern } else { 3843c7a1ce39SDavid Ahern cfg.fc_type = RTN_LOCAL; 3844c7a1ce39SDavid Ahern cfg.fc_flags |= RTF_LOCAL; 3845e8478e80SDavid Ahern } 38461da177e4SLinus Torvalds 3847c7a1ce39SDavid Ahern return ip6_route_info_create(&cfg, gfp_flags, NULL); 38481da177e4SLinus Torvalds } 38491da177e4SLinus Torvalds 3850c3968a85SDaniel Walter /* remove deleted ip from prefsrc entries */ 3851c3968a85SDaniel Walter struct arg_dev_net_ip { 3852c3968a85SDaniel Walter struct net_device *dev; 3853c3968a85SDaniel Walter struct net *net; 3854c3968a85SDaniel Walter struct in6_addr *addr; 3855c3968a85SDaniel Walter }; 3856c3968a85SDaniel Walter 38578d1c802bSDavid Ahern static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg) 3858c3968a85SDaniel Walter { 3859c3968a85SDaniel Walter struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev; 3860c3968a85SDaniel Walter struct net *net = ((struct arg_dev_net_ip *)arg)->net; 3861c3968a85SDaniel Walter struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr; 3862c3968a85SDaniel Walter 3863ad1601aeSDavid Ahern if (((void *)rt->fib6_nh.fib_nh_dev == dev || !dev) && 3864421842edSDavid Ahern rt != net->ipv6.fib6_null_entry && 386593c2fb25SDavid Ahern ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) { 386660006a48SWei Wang spin_lock_bh(&rt6_exception_lock); 3867c3968a85SDaniel Walter /* remove prefsrc entry */ 386893c2fb25SDavid Ahern rt->fib6_prefsrc.plen = 0; 386960006a48SWei Wang spin_unlock_bh(&rt6_exception_lock); 3870c3968a85SDaniel Walter } 3871c3968a85SDaniel Walter return 0; 3872c3968a85SDaniel Walter } 3873c3968a85SDaniel Walter 3874c3968a85SDaniel Walter void rt6_remove_prefsrc(struct inet6_ifaddr *ifp) 3875c3968a85SDaniel Walter { 3876c3968a85SDaniel Walter struct net *net = dev_net(ifp->idev->dev); 3877c3968a85SDaniel Walter struct arg_dev_net_ip adni = { 3878c3968a85SDaniel Walter .dev = ifp->idev->dev, 3879c3968a85SDaniel Walter .net = net, 3880c3968a85SDaniel Walter .addr = &ifp->addr, 3881c3968a85SDaniel Walter }; 38820c3584d5SLi RongQing fib6_clean_all(net, fib6_remove_prefsrc, &adni); 3883c3968a85SDaniel Walter } 3884c3968a85SDaniel Walter 38852b2450caSDavid Ahern #define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT) 3886be7a010dSDuan Jiong 3887be7a010dSDuan Jiong /* Remove routers and update dst entries when gateway turn into host. */ 38888d1c802bSDavid Ahern static int fib6_clean_tohost(struct fib6_info *rt, void *arg) 3889be7a010dSDuan Jiong { 3890be7a010dSDuan Jiong struct in6_addr *gateway = (struct in6_addr *)arg; 3891be7a010dSDuan Jiong 389293c2fb25SDavid Ahern if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) && 3893bdf00467SDavid Ahern rt->fib6_nh.fib_nh_gw_family && 3894ad1601aeSDavid Ahern ipv6_addr_equal(gateway, &rt->fib6_nh.fib_nh_gw6)) { 3895be7a010dSDuan Jiong return -1; 3896be7a010dSDuan Jiong } 3897b16cb459SWei Wang 3898b16cb459SWei Wang /* Further clean up cached routes in exception table. 3899b16cb459SWei Wang * This is needed because cached route may have a different 3900b16cb459SWei Wang * gateway than its 'parent' in the case of an ip redirect. 3901b16cb459SWei Wang */ 3902b16cb459SWei Wang rt6_exceptions_clean_tohost(rt, gateway); 3903b16cb459SWei Wang 3904be7a010dSDuan Jiong return 0; 3905be7a010dSDuan Jiong } 3906be7a010dSDuan Jiong 3907be7a010dSDuan Jiong void rt6_clean_tohost(struct net *net, struct in6_addr *gateway) 3908be7a010dSDuan Jiong { 3909be7a010dSDuan Jiong fib6_clean_all(net, fib6_clean_tohost, gateway); 3910be7a010dSDuan Jiong } 3911be7a010dSDuan Jiong 39122127d95aSIdo Schimmel struct arg_netdev_event { 39132127d95aSIdo Schimmel const struct net_device *dev; 39144c981e28SIdo Schimmel union { 3915ecc5663cSDavid Ahern unsigned char nh_flags; 39164c981e28SIdo Schimmel unsigned long event; 39174c981e28SIdo Schimmel }; 39182127d95aSIdo Schimmel }; 39192127d95aSIdo Schimmel 39208d1c802bSDavid Ahern static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt) 3921d7dedee1SIdo Schimmel { 39228d1c802bSDavid Ahern struct fib6_info *iter; 3923d7dedee1SIdo Schimmel struct fib6_node *fn; 3924d7dedee1SIdo Schimmel 392593c2fb25SDavid Ahern fn = rcu_dereference_protected(rt->fib6_node, 392693c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3927d7dedee1SIdo Schimmel iter = rcu_dereference_protected(fn->leaf, 392893c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3929d7dedee1SIdo Schimmel while (iter) { 393093c2fb25SDavid Ahern if (iter->fib6_metric == rt->fib6_metric && 393133bd5ac5SDavid Ahern rt6_qualify_for_ecmp(iter)) 3932d7dedee1SIdo Schimmel return iter; 39338fb11a9aSDavid Ahern iter = rcu_dereference_protected(iter->fib6_next, 393493c2fb25SDavid Ahern lockdep_is_held(&rt->fib6_table->tb6_lock)); 3935d7dedee1SIdo Schimmel } 3936d7dedee1SIdo Schimmel 3937d7dedee1SIdo Schimmel return NULL; 3938d7dedee1SIdo Schimmel } 3939d7dedee1SIdo Schimmel 39408d1c802bSDavid Ahern static bool rt6_is_dead(const struct fib6_info *rt) 3941d7dedee1SIdo Schimmel { 3942ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD || 3943ad1601aeSDavid Ahern (rt->fib6_nh.fib_nh_flags & RTNH_F_LINKDOWN && 3944ad1601aeSDavid Ahern ip6_ignore_linkdown(rt->fib6_nh.fib_nh_dev))) 3945d7dedee1SIdo Schimmel return true; 3946d7dedee1SIdo Schimmel 3947d7dedee1SIdo Schimmel return false; 3948d7dedee1SIdo Schimmel } 3949d7dedee1SIdo Schimmel 39508d1c802bSDavid Ahern static int rt6_multipath_total_weight(const struct fib6_info *rt) 3951d7dedee1SIdo Schimmel { 39528d1c802bSDavid Ahern struct fib6_info *iter; 3953d7dedee1SIdo Schimmel int total = 0; 3954d7dedee1SIdo Schimmel 3955d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) 3956ad1601aeSDavid Ahern total += rt->fib6_nh.fib_nh_weight; 3957d7dedee1SIdo Schimmel 395893c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) { 3959d7dedee1SIdo Schimmel if (!rt6_is_dead(iter)) 3960ad1601aeSDavid Ahern total += iter->fib6_nh.fib_nh_weight; 3961d7dedee1SIdo Schimmel } 3962d7dedee1SIdo Schimmel 3963d7dedee1SIdo Schimmel return total; 3964d7dedee1SIdo Schimmel } 3965d7dedee1SIdo Schimmel 39668d1c802bSDavid Ahern static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total) 3967d7dedee1SIdo Schimmel { 3968d7dedee1SIdo Schimmel int upper_bound = -1; 3969d7dedee1SIdo Schimmel 3970d7dedee1SIdo Schimmel if (!rt6_is_dead(rt)) { 3971ad1601aeSDavid Ahern *weight += rt->fib6_nh.fib_nh_weight; 3972d7dedee1SIdo Schimmel upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31, 3973d7dedee1SIdo Schimmel total) - 1; 3974d7dedee1SIdo Schimmel } 3975ad1601aeSDavid Ahern atomic_set(&rt->fib6_nh.fib_nh_upper_bound, upper_bound); 3976d7dedee1SIdo Schimmel } 3977d7dedee1SIdo Schimmel 39788d1c802bSDavid Ahern static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total) 3979d7dedee1SIdo Schimmel { 39808d1c802bSDavid Ahern struct fib6_info *iter; 3981d7dedee1SIdo Schimmel int weight = 0; 3982d7dedee1SIdo Schimmel 3983d7dedee1SIdo Schimmel rt6_upper_bound_set(rt, &weight, total); 3984d7dedee1SIdo Schimmel 398593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 3986d7dedee1SIdo Schimmel rt6_upper_bound_set(iter, &weight, total); 3987d7dedee1SIdo Schimmel } 3988d7dedee1SIdo Schimmel 39898d1c802bSDavid Ahern void rt6_multipath_rebalance(struct fib6_info *rt) 3990d7dedee1SIdo Schimmel { 39918d1c802bSDavid Ahern struct fib6_info *first; 3992d7dedee1SIdo Schimmel int total; 3993d7dedee1SIdo Schimmel 3994d7dedee1SIdo Schimmel /* In case the entire multipath route was marked for flushing, 3995d7dedee1SIdo Schimmel * then there is no need to rebalance upon the removal of every 3996d7dedee1SIdo Schimmel * sibling route. 3997d7dedee1SIdo Schimmel */ 399893c2fb25SDavid Ahern if (!rt->fib6_nsiblings || rt->should_flush) 3999d7dedee1SIdo Schimmel return; 4000d7dedee1SIdo Schimmel 4001d7dedee1SIdo Schimmel /* During lookup routes are evaluated in order, so we need to 4002d7dedee1SIdo Schimmel * make sure upper bounds are assigned from the first sibling 4003d7dedee1SIdo Schimmel * onwards. 4004d7dedee1SIdo Schimmel */ 4005d7dedee1SIdo Schimmel first = rt6_multipath_first_sibling(rt); 4006d7dedee1SIdo Schimmel if (WARN_ON_ONCE(!first)) 4007d7dedee1SIdo Schimmel return; 4008d7dedee1SIdo Schimmel 4009d7dedee1SIdo Schimmel total = rt6_multipath_total_weight(first); 4010d7dedee1SIdo Schimmel rt6_multipath_upper_bound_set(first, total); 4011d7dedee1SIdo Schimmel } 4012d7dedee1SIdo Schimmel 40138d1c802bSDavid Ahern static int fib6_ifup(struct fib6_info *rt, void *p_arg) 40142127d95aSIdo Schimmel { 40152127d95aSIdo Schimmel const struct arg_netdev_event *arg = p_arg; 40167aef6859SDavid Ahern struct net *net = dev_net(arg->dev); 40172127d95aSIdo Schimmel 4018ad1601aeSDavid Ahern if (rt != net->ipv6.fib6_null_entry && 4019ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_dev == arg->dev) { 4020ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags &= ~arg->nh_flags; 40217aef6859SDavid Ahern fib6_update_sernum_upto_root(net, rt); 4022d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 40231de178edSIdo Schimmel } 40242127d95aSIdo Schimmel 40252127d95aSIdo Schimmel return 0; 40262127d95aSIdo Schimmel } 40272127d95aSIdo Schimmel 4028ecc5663cSDavid Ahern void rt6_sync_up(struct net_device *dev, unsigned char nh_flags) 40292127d95aSIdo Schimmel { 40302127d95aSIdo Schimmel struct arg_netdev_event arg = { 40312127d95aSIdo Schimmel .dev = dev, 40326802f3adSIdo Schimmel { 40332127d95aSIdo Schimmel .nh_flags = nh_flags, 40346802f3adSIdo Schimmel }, 40352127d95aSIdo Schimmel }; 40362127d95aSIdo Schimmel 40372127d95aSIdo Schimmel if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev)) 40382127d95aSIdo Schimmel arg.nh_flags |= RTNH_F_LINKDOWN; 40392127d95aSIdo Schimmel 40402127d95aSIdo Schimmel fib6_clean_all(dev_net(dev), fib6_ifup, &arg); 40412127d95aSIdo Schimmel } 40422127d95aSIdo Schimmel 40438d1c802bSDavid Ahern static bool rt6_multipath_uses_dev(const struct fib6_info *rt, 40441de178edSIdo Schimmel const struct net_device *dev) 40451de178edSIdo Schimmel { 40468d1c802bSDavid Ahern struct fib6_info *iter; 40471de178edSIdo Schimmel 4048ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 40491de178edSIdo Schimmel return true; 405093c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4051ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 40521de178edSIdo Schimmel return true; 40531de178edSIdo Schimmel 40541de178edSIdo Schimmel return false; 40551de178edSIdo Schimmel } 40561de178edSIdo Schimmel 40578d1c802bSDavid Ahern static void rt6_multipath_flush(struct fib6_info *rt) 40581de178edSIdo Schimmel { 40598d1c802bSDavid Ahern struct fib6_info *iter; 40601de178edSIdo Schimmel 40611de178edSIdo Schimmel rt->should_flush = 1; 406293c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 40631de178edSIdo Schimmel iter->should_flush = 1; 40641de178edSIdo Schimmel } 40651de178edSIdo Schimmel 40668d1c802bSDavid Ahern static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt, 40671de178edSIdo Schimmel const struct net_device *down_dev) 40681de178edSIdo Schimmel { 40698d1c802bSDavid Ahern struct fib6_info *iter; 40701de178edSIdo Schimmel unsigned int dead = 0; 40711de178edSIdo Schimmel 4072ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == down_dev || 4073ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40741de178edSIdo Schimmel dead++; 407593c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4076ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == down_dev || 4077ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags & RTNH_F_DEAD) 40781de178edSIdo Schimmel dead++; 40791de178edSIdo Schimmel 40801de178edSIdo Schimmel return dead; 40811de178edSIdo Schimmel } 40821de178edSIdo Schimmel 40838d1c802bSDavid Ahern static void rt6_multipath_nh_flags_set(struct fib6_info *rt, 40841de178edSIdo Schimmel const struct net_device *dev, 4085ecc5663cSDavid Ahern unsigned char nh_flags) 40861de178edSIdo Schimmel { 40878d1c802bSDavid Ahern struct fib6_info *iter; 40881de178edSIdo Schimmel 4089ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == dev) 4090ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= nh_flags; 409193c2fb25SDavid Ahern list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) 4092ad1601aeSDavid Ahern if (iter->fib6_nh.fib_nh_dev == dev) 4093ad1601aeSDavid Ahern iter->fib6_nh.fib_nh_flags |= nh_flags; 40941de178edSIdo Schimmel } 40951de178edSIdo Schimmel 4096a1a22c12SDavid Ahern /* called with write lock held for table with rt */ 40978d1c802bSDavid Ahern static int fib6_ifdown(struct fib6_info *rt, void *p_arg) 40981da177e4SLinus Torvalds { 40994c981e28SIdo Schimmel const struct arg_netdev_event *arg = p_arg; 41004c981e28SIdo Schimmel const struct net_device *dev = arg->dev; 41017aef6859SDavid Ahern struct net *net = dev_net(dev); 41028ed67789SDaniel Lezcano 4103421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 410427c6fa73SIdo Schimmel return 0; 410527c6fa73SIdo Schimmel 410627c6fa73SIdo Schimmel switch (arg->event) { 410727c6fa73SIdo Schimmel case NETDEV_UNREGISTER: 4108ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 410927c6fa73SIdo Schimmel case NETDEV_DOWN: 41101de178edSIdo Schimmel if (rt->should_flush) 411127c6fa73SIdo Schimmel return -1; 411293c2fb25SDavid Ahern if (!rt->fib6_nsiblings) 4113ad1601aeSDavid Ahern return rt->fib6_nh.fib_nh_dev == dev ? -1 : 0; 41141de178edSIdo Schimmel if (rt6_multipath_uses_dev(rt, dev)) { 41151de178edSIdo Schimmel unsigned int count; 41161de178edSIdo Schimmel 41171de178edSIdo Schimmel count = rt6_multipath_dead_count(rt, dev); 411893c2fb25SDavid Ahern if (rt->fib6_nsiblings + 1 == count) { 41191de178edSIdo Schimmel rt6_multipath_flush(rt); 41201de178edSIdo Schimmel return -1; 41211de178edSIdo Schimmel } 41221de178edSIdo Schimmel rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD | 41231de178edSIdo Schimmel RTNH_F_LINKDOWN); 41247aef6859SDavid Ahern fib6_update_sernum(net, rt); 4125d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 41261de178edSIdo Schimmel } 41271de178edSIdo Schimmel return -2; 412827c6fa73SIdo Schimmel case NETDEV_CHANGE: 4129ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev != dev || 413093c2fb25SDavid Ahern rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) 413127c6fa73SIdo Schimmel break; 4132ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_flags |= RTNH_F_LINKDOWN; 4133d7dedee1SIdo Schimmel rt6_multipath_rebalance(rt); 413427c6fa73SIdo Schimmel break; 41352b241361SIdo Schimmel } 4136c159d30cSDavid S. Miller 41371da177e4SLinus Torvalds return 0; 41381da177e4SLinus Torvalds } 41391da177e4SLinus Torvalds 414027c6fa73SIdo Schimmel void rt6_sync_down_dev(struct net_device *dev, unsigned long event) 41411da177e4SLinus Torvalds { 41424c981e28SIdo Schimmel struct arg_netdev_event arg = { 41438ed67789SDaniel Lezcano .dev = dev, 41446802f3adSIdo Schimmel { 41454c981e28SIdo Schimmel .event = event, 41466802f3adSIdo Schimmel }, 41478ed67789SDaniel Lezcano }; 41487c6bb7d2SDavid Ahern struct net *net = dev_net(dev); 41498ed67789SDaniel Lezcano 41507c6bb7d2SDavid Ahern if (net->ipv6.sysctl.skip_notify_on_dev_down) 41517c6bb7d2SDavid Ahern fib6_clean_all_skip_notify(net, fib6_ifdown, &arg); 41527c6bb7d2SDavid Ahern else 41537c6bb7d2SDavid Ahern fib6_clean_all(net, fib6_ifdown, &arg); 41544c981e28SIdo Schimmel } 41554c981e28SIdo Schimmel 41564c981e28SIdo Schimmel void rt6_disable_ip(struct net_device *dev, unsigned long event) 41574c981e28SIdo Schimmel { 41584c981e28SIdo Schimmel rt6_sync_down_dev(dev, event); 41594c981e28SIdo Schimmel rt6_uncached_list_flush_dev(dev_net(dev), dev); 41604c981e28SIdo Schimmel neigh_ifdown(&nd_tbl, dev); 41611da177e4SLinus Torvalds } 41621da177e4SLinus Torvalds 416395c96174SEric Dumazet struct rt6_mtu_change_arg { 41641da177e4SLinus Torvalds struct net_device *dev; 416595c96174SEric Dumazet unsigned int mtu; 41661da177e4SLinus Torvalds }; 41671da177e4SLinus Torvalds 41688d1c802bSDavid Ahern static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg) 41691da177e4SLinus Torvalds { 41701da177e4SLinus Torvalds struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg; 41711da177e4SLinus Torvalds struct inet6_dev *idev; 41721da177e4SLinus Torvalds 41731da177e4SLinus Torvalds /* In IPv6 pmtu discovery is not optional, 41741da177e4SLinus Torvalds so that RTAX_MTU lock cannot disable it. 41751da177e4SLinus Torvalds We still use this lock to block changes 41761da177e4SLinus Torvalds caused by addrconf/ndisc. 41771da177e4SLinus Torvalds */ 41781da177e4SLinus Torvalds 41791da177e4SLinus Torvalds idev = __in6_dev_get(arg->dev); 418038308473SDavid S. Miller if (!idev) 41811da177e4SLinus Torvalds return 0; 41821da177e4SLinus Torvalds 41831da177e4SLinus Torvalds /* For administrative MTU increase, there is no way to discover 41841da177e4SLinus Torvalds IPv6 PMTU increase, so PMTU increase should be updated here. 41851da177e4SLinus Torvalds Since RFC 1981 doesn't include administrative MTU increase 41861da177e4SLinus Torvalds update PMTU increase is a MUST. (i.e. jumbo frame) 41871da177e4SLinus Torvalds */ 4188ad1601aeSDavid Ahern if (rt->fib6_nh.fib_nh_dev == arg->dev && 4189d4ead6b3SDavid Ahern !fib6_metric_locked(rt, RTAX_MTU)) { 4190d4ead6b3SDavid Ahern u32 mtu = rt->fib6_pmtu; 4191d4ead6b3SDavid Ahern 4192d4ead6b3SDavid Ahern if (mtu >= arg->mtu || 4193d4ead6b3SDavid Ahern (mtu < arg->mtu && mtu == idev->cnf.mtu6)) 4194d4ead6b3SDavid Ahern fib6_metric_set(rt, RTAX_MTU, arg->mtu); 4195d4ead6b3SDavid Ahern 4196f5bbe7eeSWei Wang spin_lock_bh(&rt6_exception_lock); 4197e9fa1495SStefano Brivio rt6_exceptions_update_pmtu(idev, rt, arg->mtu); 4198f5bbe7eeSWei Wang spin_unlock_bh(&rt6_exception_lock); 41994b32b5adSMartin KaFai Lau } 42001da177e4SLinus Torvalds return 0; 42011da177e4SLinus Torvalds } 42021da177e4SLinus Torvalds 420395c96174SEric Dumazet void rt6_mtu_change(struct net_device *dev, unsigned int mtu) 42041da177e4SLinus Torvalds { 4205c71099acSThomas Graf struct rt6_mtu_change_arg arg = { 4206c71099acSThomas Graf .dev = dev, 4207c71099acSThomas Graf .mtu = mtu, 4208c71099acSThomas Graf }; 42091da177e4SLinus Torvalds 42100c3584d5SLi RongQing fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg); 42111da177e4SLinus Torvalds } 42121da177e4SLinus Torvalds 4213ef7c79edSPatrick McHardy static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = { 42145176f91eSThomas Graf [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) }, 4215aa8f8778SEric Dumazet [RTA_PREFSRC] = { .len = sizeof(struct in6_addr) }, 421686872cb5SThomas Graf [RTA_OIF] = { .type = NLA_U32 }, 4217ab364a6fSThomas Graf [RTA_IIF] = { .type = NLA_U32 }, 421886872cb5SThomas Graf [RTA_PRIORITY] = { .type = NLA_U32 }, 421986872cb5SThomas Graf [RTA_METRICS] = { .type = NLA_NESTED }, 422051ebd318SNicolas Dichtel [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) }, 4221c78ba6d6SLubomir Rintel [RTA_PREF] = { .type = NLA_U8 }, 422219e42e45SRoopa Prabhu [RTA_ENCAP_TYPE] = { .type = NLA_U16 }, 422319e42e45SRoopa Prabhu [RTA_ENCAP] = { .type = NLA_NESTED }, 422432bc201eSXin Long [RTA_EXPIRES] = { .type = NLA_U32 }, 4225622ec2c9SLorenzo Colitti [RTA_UID] = { .type = NLA_U32 }, 42263b45a410SLiping Zhang [RTA_MARK] = { .type = NLA_U32 }, 4227aa8f8778SEric Dumazet [RTA_TABLE] = { .type = NLA_U32 }, 4228eacb9384SRoopa Prabhu [RTA_IP_PROTO] = { .type = NLA_U8 }, 4229eacb9384SRoopa Prabhu [RTA_SPORT] = { .type = NLA_U16 }, 4230eacb9384SRoopa Prabhu [RTA_DPORT] = { .type = NLA_U16 }, 423186872cb5SThomas Graf }; 423286872cb5SThomas Graf 423386872cb5SThomas Graf static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh, 4234333c4301SDavid Ahern struct fib6_config *cfg, 4235333c4301SDavid Ahern struct netlink_ext_ack *extack) 42361da177e4SLinus Torvalds { 423786872cb5SThomas Graf struct rtmsg *rtm; 423886872cb5SThomas Graf struct nlattr *tb[RTA_MAX+1]; 4239c78ba6d6SLubomir Rintel unsigned int pref; 424086872cb5SThomas Graf int err; 42411da177e4SLinus Torvalds 42428cb08174SJohannes Berg err = nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX, 42438cb08174SJohannes Berg rtm_ipv6_policy, extack); 424486872cb5SThomas Graf if (err < 0) 424586872cb5SThomas Graf goto errout; 42461da177e4SLinus Torvalds 424786872cb5SThomas Graf err = -EINVAL; 424886872cb5SThomas Graf rtm = nlmsg_data(nlh); 424986872cb5SThomas Graf 425084db8407SMaciej Żenczykowski *cfg = (struct fib6_config){ 425184db8407SMaciej Żenczykowski .fc_table = rtm->rtm_table, 425284db8407SMaciej Żenczykowski .fc_dst_len = rtm->rtm_dst_len, 425384db8407SMaciej Żenczykowski .fc_src_len = rtm->rtm_src_len, 425484db8407SMaciej Żenczykowski .fc_flags = RTF_UP, 425584db8407SMaciej Żenczykowski .fc_protocol = rtm->rtm_protocol, 425684db8407SMaciej Żenczykowski .fc_type = rtm->rtm_type, 425784db8407SMaciej Żenczykowski 425884db8407SMaciej Żenczykowski .fc_nlinfo.portid = NETLINK_CB(skb).portid, 425984db8407SMaciej Żenczykowski .fc_nlinfo.nlh = nlh, 426084db8407SMaciej Żenczykowski .fc_nlinfo.nl_net = sock_net(skb->sk), 426184db8407SMaciej Żenczykowski }; 426286872cb5SThomas Graf 4263ef2c7d7bSNicolas Dichtel if (rtm->rtm_type == RTN_UNREACHABLE || 4264ef2c7d7bSNicolas Dichtel rtm->rtm_type == RTN_BLACKHOLE || 4265b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_PROHIBIT || 4266b4949ab2SNicolas Dichtel rtm->rtm_type == RTN_THROW) 426786872cb5SThomas Graf cfg->fc_flags |= RTF_REJECT; 426886872cb5SThomas Graf 4269ab79ad14SMaciej Żenczykowski if (rtm->rtm_type == RTN_LOCAL) 4270ab79ad14SMaciej Żenczykowski cfg->fc_flags |= RTF_LOCAL; 4271ab79ad14SMaciej Żenczykowski 42721f56a01fSMartin KaFai Lau if (rtm->rtm_flags & RTM_F_CLONED) 42731f56a01fSMartin KaFai Lau cfg->fc_flags |= RTF_CACHE; 42741f56a01fSMartin KaFai Lau 4275fc1e64e1SDavid Ahern cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK); 4276fc1e64e1SDavid Ahern 427786872cb5SThomas Graf if (tb[RTA_GATEWAY]) { 427867b61f6cSJiri Benc cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]); 427986872cb5SThomas Graf cfg->fc_flags |= RTF_GATEWAY; 42801da177e4SLinus Torvalds } 4281e3818541SDavid Ahern if (tb[RTA_VIA]) { 4282e3818541SDavid Ahern NL_SET_ERR_MSG(extack, "IPv6 does not support RTA_VIA attribute"); 4283e3818541SDavid Ahern goto errout; 4284e3818541SDavid Ahern } 428586872cb5SThomas Graf 428686872cb5SThomas Graf if (tb[RTA_DST]) { 428786872cb5SThomas Graf int plen = (rtm->rtm_dst_len + 7) >> 3; 428886872cb5SThomas Graf 428986872cb5SThomas Graf if (nla_len(tb[RTA_DST]) < plen) 429086872cb5SThomas Graf goto errout; 429186872cb5SThomas Graf 429286872cb5SThomas Graf nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen); 42931da177e4SLinus Torvalds } 429486872cb5SThomas Graf 429586872cb5SThomas Graf if (tb[RTA_SRC]) { 429686872cb5SThomas Graf int plen = (rtm->rtm_src_len + 7) >> 3; 429786872cb5SThomas Graf 429886872cb5SThomas Graf if (nla_len(tb[RTA_SRC]) < plen) 429986872cb5SThomas Graf goto errout; 430086872cb5SThomas Graf 430186872cb5SThomas Graf nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen); 43021da177e4SLinus Torvalds } 430386872cb5SThomas Graf 4304c3968a85SDaniel Walter if (tb[RTA_PREFSRC]) 430567b61f6cSJiri Benc cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]); 4306c3968a85SDaniel Walter 430786872cb5SThomas Graf if (tb[RTA_OIF]) 430886872cb5SThomas Graf cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]); 430986872cb5SThomas Graf 431086872cb5SThomas Graf if (tb[RTA_PRIORITY]) 431186872cb5SThomas Graf cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]); 431286872cb5SThomas Graf 431386872cb5SThomas Graf if (tb[RTA_METRICS]) { 431486872cb5SThomas Graf cfg->fc_mx = nla_data(tb[RTA_METRICS]); 431586872cb5SThomas Graf cfg->fc_mx_len = nla_len(tb[RTA_METRICS]); 43161da177e4SLinus Torvalds } 431786872cb5SThomas Graf 431886872cb5SThomas Graf if (tb[RTA_TABLE]) 431986872cb5SThomas Graf cfg->fc_table = nla_get_u32(tb[RTA_TABLE]); 432086872cb5SThomas Graf 432151ebd318SNicolas Dichtel if (tb[RTA_MULTIPATH]) { 432251ebd318SNicolas Dichtel cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]); 432351ebd318SNicolas Dichtel cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]); 43249ed59592SDavid Ahern 43259ed59592SDavid Ahern err = lwtunnel_valid_encap_type_attr(cfg->fc_mp, 4326c255bd68SDavid Ahern cfg->fc_mp_len, extack); 43279ed59592SDavid Ahern if (err < 0) 43289ed59592SDavid Ahern goto errout; 432951ebd318SNicolas Dichtel } 433051ebd318SNicolas Dichtel 4331c78ba6d6SLubomir Rintel if (tb[RTA_PREF]) { 4332c78ba6d6SLubomir Rintel pref = nla_get_u8(tb[RTA_PREF]); 4333c78ba6d6SLubomir Rintel if (pref != ICMPV6_ROUTER_PREF_LOW && 4334c78ba6d6SLubomir Rintel pref != ICMPV6_ROUTER_PREF_HIGH) 4335c78ba6d6SLubomir Rintel pref = ICMPV6_ROUTER_PREF_MEDIUM; 4336c78ba6d6SLubomir Rintel cfg->fc_flags |= RTF_PREF(pref); 4337c78ba6d6SLubomir Rintel } 4338c78ba6d6SLubomir Rintel 433919e42e45SRoopa Prabhu if (tb[RTA_ENCAP]) 434019e42e45SRoopa Prabhu cfg->fc_encap = tb[RTA_ENCAP]; 434119e42e45SRoopa Prabhu 43429ed59592SDavid Ahern if (tb[RTA_ENCAP_TYPE]) { 434319e42e45SRoopa Prabhu cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]); 434419e42e45SRoopa Prabhu 4345c255bd68SDavid Ahern err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack); 43469ed59592SDavid Ahern if (err < 0) 43479ed59592SDavid Ahern goto errout; 43489ed59592SDavid Ahern } 43499ed59592SDavid Ahern 435032bc201eSXin Long if (tb[RTA_EXPIRES]) { 435132bc201eSXin Long unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ); 435232bc201eSXin Long 435332bc201eSXin Long if (addrconf_finite_timeout(timeout)) { 435432bc201eSXin Long cfg->fc_expires = jiffies_to_clock_t(timeout * HZ); 435532bc201eSXin Long cfg->fc_flags |= RTF_EXPIRES; 435632bc201eSXin Long } 435732bc201eSXin Long } 435832bc201eSXin Long 435986872cb5SThomas Graf err = 0; 436086872cb5SThomas Graf errout: 436186872cb5SThomas Graf return err; 43621da177e4SLinus Torvalds } 43631da177e4SLinus Torvalds 43646b9ea5a6SRoopa Prabhu struct rt6_nh { 43658d1c802bSDavid Ahern struct fib6_info *fib6_info; 43666b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 43676b9ea5a6SRoopa Prabhu struct list_head next; 43686b9ea5a6SRoopa Prabhu }; 43696b9ea5a6SRoopa Prabhu 4370d4ead6b3SDavid Ahern static int ip6_route_info_append(struct net *net, 4371d4ead6b3SDavid Ahern struct list_head *rt6_nh_list, 43728d1c802bSDavid Ahern struct fib6_info *rt, 43738d1c802bSDavid Ahern struct fib6_config *r_cfg) 43746b9ea5a6SRoopa Prabhu { 43756b9ea5a6SRoopa Prabhu struct rt6_nh *nh; 43766b9ea5a6SRoopa Prabhu int err = -EEXIST; 43776b9ea5a6SRoopa Prabhu 43786b9ea5a6SRoopa Prabhu list_for_each_entry(nh, rt6_nh_list, next) { 43798d1c802bSDavid Ahern /* check if fib6_info already exists */ 43808d1c802bSDavid Ahern if (rt6_duplicate_nexthop(nh->fib6_info, rt)) 43816b9ea5a6SRoopa Prabhu return err; 43826b9ea5a6SRoopa Prabhu } 43836b9ea5a6SRoopa Prabhu 43846b9ea5a6SRoopa Prabhu nh = kzalloc(sizeof(*nh), GFP_KERNEL); 43856b9ea5a6SRoopa Prabhu if (!nh) 43866b9ea5a6SRoopa Prabhu return -ENOMEM; 43878d1c802bSDavid Ahern nh->fib6_info = rt; 43886b9ea5a6SRoopa Prabhu memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg)); 43896b9ea5a6SRoopa Prabhu list_add_tail(&nh->next, rt6_nh_list); 43906b9ea5a6SRoopa Prabhu 43916b9ea5a6SRoopa Prabhu return 0; 43926b9ea5a6SRoopa Prabhu } 43936b9ea5a6SRoopa Prabhu 43948d1c802bSDavid Ahern static void ip6_route_mpath_notify(struct fib6_info *rt, 43958d1c802bSDavid Ahern struct fib6_info *rt_last, 43963b1137feSDavid Ahern struct nl_info *info, 43973b1137feSDavid Ahern __u16 nlflags) 43983b1137feSDavid Ahern { 43993b1137feSDavid Ahern /* if this is an APPEND route, then rt points to the first route 44003b1137feSDavid Ahern * inserted and rt_last points to last route inserted. Userspace 44013b1137feSDavid Ahern * wants a consistent dump of the route which starts at the first 44023b1137feSDavid Ahern * nexthop. Since sibling routes are always added at the end of 44033b1137feSDavid Ahern * the list, find the first sibling of the last route appended 44043b1137feSDavid Ahern */ 440593c2fb25SDavid Ahern if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) { 440693c2fb25SDavid Ahern rt = list_first_entry(&rt_last->fib6_siblings, 44078d1c802bSDavid Ahern struct fib6_info, 440893c2fb25SDavid Ahern fib6_siblings); 44093b1137feSDavid Ahern } 44103b1137feSDavid Ahern 44113b1137feSDavid Ahern if (rt) 44123b1137feSDavid Ahern inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags); 44133b1137feSDavid Ahern } 44143b1137feSDavid Ahern 4415333c4301SDavid Ahern static int ip6_route_multipath_add(struct fib6_config *cfg, 4416333c4301SDavid Ahern struct netlink_ext_ack *extack) 441751ebd318SNicolas Dichtel { 44188d1c802bSDavid Ahern struct fib6_info *rt_notif = NULL, *rt_last = NULL; 44193b1137feSDavid Ahern struct nl_info *info = &cfg->fc_nlinfo; 442051ebd318SNicolas Dichtel struct fib6_config r_cfg; 442151ebd318SNicolas Dichtel struct rtnexthop *rtnh; 44228d1c802bSDavid Ahern struct fib6_info *rt; 44236b9ea5a6SRoopa Prabhu struct rt6_nh *err_nh; 44246b9ea5a6SRoopa Prabhu struct rt6_nh *nh, *nh_safe; 44253b1137feSDavid Ahern __u16 nlflags; 442651ebd318SNicolas Dichtel int remaining; 442751ebd318SNicolas Dichtel int attrlen; 44286b9ea5a6SRoopa Prabhu int err = 1; 44296b9ea5a6SRoopa Prabhu int nhn = 0; 44306b9ea5a6SRoopa Prabhu int replace = (cfg->fc_nlinfo.nlh && 44316b9ea5a6SRoopa Prabhu (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE)); 44326b9ea5a6SRoopa Prabhu LIST_HEAD(rt6_nh_list); 443351ebd318SNicolas Dichtel 44343b1137feSDavid Ahern nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE; 44353b1137feSDavid Ahern if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND) 44363b1137feSDavid Ahern nlflags |= NLM_F_APPEND; 44373b1137feSDavid Ahern 443835f1b4e9SMichal Kubeček remaining = cfg->fc_mp_len; 443951ebd318SNicolas Dichtel rtnh = (struct rtnexthop *)cfg->fc_mp; 444051ebd318SNicolas Dichtel 44416b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry and build a list (rt6_nh_list) of 44428d1c802bSDavid Ahern * fib6_info structs per nexthop 44436b9ea5a6SRoopa Prabhu */ 444451ebd318SNicolas Dichtel while (rtnh_ok(rtnh, remaining)) { 444551ebd318SNicolas Dichtel memcpy(&r_cfg, cfg, sizeof(*cfg)); 444651ebd318SNicolas Dichtel if (rtnh->rtnh_ifindex) 444751ebd318SNicolas Dichtel r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 444851ebd318SNicolas Dichtel 444951ebd318SNicolas Dichtel attrlen = rtnh_attrlen(rtnh); 445051ebd318SNicolas Dichtel if (attrlen > 0) { 445151ebd318SNicolas Dichtel struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 445251ebd318SNicolas Dichtel 445351ebd318SNicolas Dichtel nla = nla_find(attrs, attrlen, RTA_GATEWAY); 445451ebd318SNicolas Dichtel if (nla) { 445567b61f6cSJiri Benc r_cfg.fc_gateway = nla_get_in6_addr(nla); 445651ebd318SNicolas Dichtel r_cfg.fc_flags |= RTF_GATEWAY; 445751ebd318SNicolas Dichtel } 445819e42e45SRoopa Prabhu r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP); 445919e42e45SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE); 446019e42e45SRoopa Prabhu if (nla) 446119e42e45SRoopa Prabhu r_cfg.fc_encap_type = nla_get_u16(nla); 446251ebd318SNicolas Dichtel } 44636b9ea5a6SRoopa Prabhu 446468e2ffdeSDavid Ahern r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK); 4465acb54e3cSDavid Ahern rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack); 44668c5b83f0SRoopa Prabhu if (IS_ERR(rt)) { 44678c5b83f0SRoopa Prabhu err = PTR_ERR(rt); 44688c5b83f0SRoopa Prabhu rt = NULL; 44696b9ea5a6SRoopa Prabhu goto cleanup; 44708c5b83f0SRoopa Prabhu } 4471b5d2d75eSDavid Ahern if (!rt6_qualify_for_ecmp(rt)) { 4472b5d2d75eSDavid Ahern err = -EINVAL; 4473b5d2d75eSDavid Ahern NL_SET_ERR_MSG(extack, 4474b5d2d75eSDavid Ahern "Device only routes can not be added for IPv6 using the multipath API."); 4475b5d2d75eSDavid Ahern fib6_info_release(rt); 4476b5d2d75eSDavid Ahern goto cleanup; 4477b5d2d75eSDavid Ahern } 44786b9ea5a6SRoopa Prabhu 4479ad1601aeSDavid Ahern rt->fib6_nh.fib_nh_weight = rtnh->rtnh_hops + 1; 4480398958aeSIdo Schimmel 4481d4ead6b3SDavid Ahern err = ip6_route_info_append(info->nl_net, &rt6_nh_list, 4482d4ead6b3SDavid Ahern rt, &r_cfg); 448351ebd318SNicolas Dichtel if (err) { 448493531c67SDavid Ahern fib6_info_release(rt); 44856b9ea5a6SRoopa Prabhu goto cleanup; 448651ebd318SNicolas Dichtel } 44876b9ea5a6SRoopa Prabhu 44886b9ea5a6SRoopa Prabhu rtnh = rtnh_next(rtnh, &remaining); 448951ebd318SNicolas Dichtel } 44906b9ea5a6SRoopa Prabhu 44913b1137feSDavid Ahern /* for add and replace send one notification with all nexthops. 44923b1137feSDavid Ahern * Skip the notification in fib6_add_rt2node and send one with 44933b1137feSDavid Ahern * the full route when done 44943b1137feSDavid Ahern */ 44953b1137feSDavid Ahern info->skip_notify = 1; 44963b1137feSDavid Ahern 44976b9ea5a6SRoopa Prabhu err_nh = NULL; 44986b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 44998d1c802bSDavid Ahern err = __ip6_ins_rt(nh->fib6_info, info, extack); 45008d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 45013b1137feSDavid Ahern 4502f7225172SDavid Ahern if (!err) { 4503f7225172SDavid Ahern /* save reference to last route successfully inserted */ 4504f7225172SDavid Ahern rt_last = nh->fib6_info; 4505f7225172SDavid Ahern 45066b9ea5a6SRoopa Prabhu /* save reference to first route for notification */ 4507f7225172SDavid Ahern if (!rt_notif) 45088d1c802bSDavid Ahern rt_notif = nh->fib6_info; 4509f7225172SDavid Ahern } 45106b9ea5a6SRoopa Prabhu 45118d1c802bSDavid Ahern /* nh->fib6_info is used or freed at this point, reset to NULL*/ 45128d1c802bSDavid Ahern nh->fib6_info = NULL; 45136b9ea5a6SRoopa Prabhu if (err) { 45146b9ea5a6SRoopa Prabhu if (replace && nhn) 4515a5a82d84SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 4516a5a82d84SJakub Kicinski "multipath route replace failed (check consistency of installed routes)"); 45176b9ea5a6SRoopa Prabhu err_nh = nh; 45186b9ea5a6SRoopa Prabhu goto add_errout; 45196b9ea5a6SRoopa Prabhu } 45206b9ea5a6SRoopa Prabhu 45211a72418bSNicolas Dichtel /* Because each route is added like a single route we remove 452227596472SMichal Kubeček * these flags after the first nexthop: if there is a collision, 452327596472SMichal Kubeček * we have already failed to add the first nexthop: 452427596472SMichal Kubeček * fib6_add_rt2node() has rejected it; when replacing, old 452527596472SMichal Kubeček * nexthops have been replaced by first new, the rest should 452627596472SMichal Kubeček * be added to it. 45271a72418bSNicolas Dichtel */ 452827596472SMichal Kubeček cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL | 452927596472SMichal Kubeček NLM_F_REPLACE); 45306b9ea5a6SRoopa Prabhu nhn++; 45316b9ea5a6SRoopa Prabhu } 45326b9ea5a6SRoopa Prabhu 45333b1137feSDavid Ahern /* success ... tell user about new route */ 45343b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 45356b9ea5a6SRoopa Prabhu goto cleanup; 45366b9ea5a6SRoopa Prabhu 45376b9ea5a6SRoopa Prabhu add_errout: 45383b1137feSDavid Ahern /* send notification for routes that were added so that 45393b1137feSDavid Ahern * the delete notifications sent by ip6_route_del are 45403b1137feSDavid Ahern * coherent 45413b1137feSDavid Ahern */ 45423b1137feSDavid Ahern if (rt_notif) 45433b1137feSDavid Ahern ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags); 45443b1137feSDavid Ahern 45456b9ea5a6SRoopa Prabhu /* Delete routes that were already added */ 45466b9ea5a6SRoopa Prabhu list_for_each_entry(nh, &rt6_nh_list, next) { 45476b9ea5a6SRoopa Prabhu if (err_nh == nh) 45486b9ea5a6SRoopa Prabhu break; 4549333c4301SDavid Ahern ip6_route_del(&nh->r_cfg, extack); 45506b9ea5a6SRoopa Prabhu } 45516b9ea5a6SRoopa Prabhu 45526b9ea5a6SRoopa Prabhu cleanup: 45536b9ea5a6SRoopa Prabhu list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) { 45548d1c802bSDavid Ahern if (nh->fib6_info) 45558d1c802bSDavid Ahern fib6_info_release(nh->fib6_info); 45566b9ea5a6SRoopa Prabhu list_del(&nh->next); 45576b9ea5a6SRoopa Prabhu kfree(nh); 45586b9ea5a6SRoopa Prabhu } 45596b9ea5a6SRoopa Prabhu 45606b9ea5a6SRoopa Prabhu return err; 45616b9ea5a6SRoopa Prabhu } 45626b9ea5a6SRoopa Prabhu 4563333c4301SDavid Ahern static int ip6_route_multipath_del(struct fib6_config *cfg, 4564333c4301SDavid Ahern struct netlink_ext_ack *extack) 45656b9ea5a6SRoopa Prabhu { 45666b9ea5a6SRoopa Prabhu struct fib6_config r_cfg; 45676b9ea5a6SRoopa Prabhu struct rtnexthop *rtnh; 45686b9ea5a6SRoopa Prabhu int remaining; 45696b9ea5a6SRoopa Prabhu int attrlen; 45706b9ea5a6SRoopa Prabhu int err = 1, last_err = 0; 45716b9ea5a6SRoopa Prabhu 45726b9ea5a6SRoopa Prabhu remaining = cfg->fc_mp_len; 45736b9ea5a6SRoopa Prabhu rtnh = (struct rtnexthop *)cfg->fc_mp; 45746b9ea5a6SRoopa Prabhu 45756b9ea5a6SRoopa Prabhu /* Parse a Multipath Entry */ 45766b9ea5a6SRoopa Prabhu while (rtnh_ok(rtnh, remaining)) { 45776b9ea5a6SRoopa Prabhu memcpy(&r_cfg, cfg, sizeof(*cfg)); 45786b9ea5a6SRoopa Prabhu if (rtnh->rtnh_ifindex) 45796b9ea5a6SRoopa Prabhu r_cfg.fc_ifindex = rtnh->rtnh_ifindex; 45806b9ea5a6SRoopa Prabhu 45816b9ea5a6SRoopa Prabhu attrlen = rtnh_attrlen(rtnh); 45826b9ea5a6SRoopa Prabhu if (attrlen > 0) { 45836b9ea5a6SRoopa Prabhu struct nlattr *nla, *attrs = rtnh_attrs(rtnh); 45846b9ea5a6SRoopa Prabhu 45856b9ea5a6SRoopa Prabhu nla = nla_find(attrs, attrlen, RTA_GATEWAY); 45866b9ea5a6SRoopa Prabhu if (nla) { 45876b9ea5a6SRoopa Prabhu nla_memcpy(&r_cfg.fc_gateway, nla, 16); 45886b9ea5a6SRoopa Prabhu r_cfg.fc_flags |= RTF_GATEWAY; 45896b9ea5a6SRoopa Prabhu } 45906b9ea5a6SRoopa Prabhu } 4591333c4301SDavid Ahern err = ip6_route_del(&r_cfg, extack); 45926b9ea5a6SRoopa Prabhu if (err) 45936b9ea5a6SRoopa Prabhu last_err = err; 45946b9ea5a6SRoopa Prabhu 459551ebd318SNicolas Dichtel rtnh = rtnh_next(rtnh, &remaining); 459651ebd318SNicolas Dichtel } 459751ebd318SNicolas Dichtel 459851ebd318SNicolas Dichtel return last_err; 459951ebd318SNicolas Dichtel } 460051ebd318SNicolas Dichtel 4601c21ef3e3SDavid Ahern static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4602c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 46031da177e4SLinus Torvalds { 460486872cb5SThomas Graf struct fib6_config cfg; 460586872cb5SThomas Graf int err; 46061da177e4SLinus Torvalds 4607333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 460886872cb5SThomas Graf if (err < 0) 460986872cb5SThomas Graf return err; 461086872cb5SThomas Graf 461151ebd318SNicolas Dichtel if (cfg.fc_mp) 4612333c4301SDavid Ahern return ip6_route_multipath_del(&cfg, extack); 46130ae81335SDavid Ahern else { 46140ae81335SDavid Ahern cfg.fc_delete_all_nh = 1; 4615333c4301SDavid Ahern return ip6_route_del(&cfg, extack); 46161da177e4SLinus Torvalds } 46170ae81335SDavid Ahern } 46181da177e4SLinus Torvalds 4619c21ef3e3SDavid Ahern static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh, 4620c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 46211da177e4SLinus Torvalds { 462286872cb5SThomas Graf struct fib6_config cfg; 462386872cb5SThomas Graf int err; 46241da177e4SLinus Torvalds 4625333c4301SDavid Ahern err = rtm_to_fib6_config(skb, nlh, &cfg, extack); 462686872cb5SThomas Graf if (err < 0) 462786872cb5SThomas Graf return err; 462886872cb5SThomas Graf 462967f69513SDavid Ahern if (cfg.fc_metric == 0) 463067f69513SDavid Ahern cfg.fc_metric = IP6_RT_PRIO_USER; 463167f69513SDavid Ahern 463251ebd318SNicolas Dichtel if (cfg.fc_mp) 4633333c4301SDavid Ahern return ip6_route_multipath_add(&cfg, extack); 463451ebd318SNicolas Dichtel else 4635acb54e3cSDavid Ahern return ip6_route_add(&cfg, GFP_KERNEL, extack); 46361da177e4SLinus Torvalds } 46371da177e4SLinus Torvalds 46388d1c802bSDavid Ahern static size_t rt6_nlmsg_size(struct fib6_info *rt) 4639339bf98fSThomas Graf { 4640beb1afacSDavid Ahern int nexthop_len = 0; 4641beb1afacSDavid Ahern 464293c2fb25SDavid Ahern if (rt->fib6_nsiblings) { 4643beb1afacSDavid Ahern nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */ 4644beb1afacSDavid Ahern + NLA_ALIGN(sizeof(struct rtnexthop)) 4645beb1afacSDavid Ahern + nla_total_size(16) /* RTA_GATEWAY */ 4646ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws); 4647beb1afacSDavid Ahern 464893c2fb25SDavid Ahern nexthop_len *= rt->fib6_nsiblings; 4649beb1afacSDavid Ahern } 4650beb1afacSDavid Ahern 4651339bf98fSThomas Graf return NLMSG_ALIGN(sizeof(struct rtmsg)) 4652339bf98fSThomas Graf + nla_total_size(16) /* RTA_SRC */ 4653339bf98fSThomas Graf + nla_total_size(16) /* RTA_DST */ 4654339bf98fSThomas Graf + nla_total_size(16) /* RTA_GATEWAY */ 4655339bf98fSThomas Graf + nla_total_size(16) /* RTA_PREFSRC */ 4656339bf98fSThomas Graf + nla_total_size(4) /* RTA_TABLE */ 4657339bf98fSThomas Graf + nla_total_size(4) /* RTA_IIF */ 4658339bf98fSThomas Graf + nla_total_size(4) /* RTA_OIF */ 4659339bf98fSThomas Graf + nla_total_size(4) /* RTA_PRIORITY */ 46606a2b9ce0SNoriaki TAKAMIYA + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */ 4661ea697639SDaniel Borkmann + nla_total_size(sizeof(struct rta_cacheinfo)) 4662c78ba6d6SLubomir Rintel + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */ 466319e42e45SRoopa Prabhu + nla_total_size(1) /* RTA_PREF */ 4664ad1601aeSDavid Ahern + lwtunnel_get_encap_size(rt->fib6_nh.fib_nh_lws) 4665beb1afacSDavid Ahern + nexthop_len; 4666beb1afacSDavid Ahern } 4667beb1afacSDavid Ahern 4668d4ead6b3SDavid Ahern static int rt6_fill_node(struct net *net, struct sk_buff *skb, 46698d1c802bSDavid Ahern struct fib6_info *rt, struct dst_entry *dst, 4670d4ead6b3SDavid Ahern struct in6_addr *dest, struct in6_addr *src, 467115e47304SEric W. Biederman int iif, int type, u32 portid, u32 seq, 4672f8cfe2ceSDavid Ahern unsigned int flags) 46731da177e4SLinus Torvalds { 467422d0bd82SXin Long struct rt6_info *rt6 = (struct rt6_info *)dst; 467522d0bd82SXin Long struct rt6key *rt6_dst, *rt6_src; 467622d0bd82SXin Long u32 *pmetrics, table, rt6_flags; 46771da177e4SLinus Torvalds struct nlmsghdr *nlh; 467822d0bd82SXin Long struct rtmsg *rtm; 4679d4ead6b3SDavid Ahern long expires = 0; 46801da177e4SLinus Torvalds 468115e47304SEric W. Biederman nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags); 468238308473SDavid S. Miller if (!nlh) 468326932566SPatrick McHardy return -EMSGSIZE; 46842d7202bfSThomas Graf 468522d0bd82SXin Long if (rt6) { 468622d0bd82SXin Long rt6_dst = &rt6->rt6i_dst; 468722d0bd82SXin Long rt6_src = &rt6->rt6i_src; 468822d0bd82SXin Long rt6_flags = rt6->rt6i_flags; 468922d0bd82SXin Long } else { 469022d0bd82SXin Long rt6_dst = &rt->fib6_dst; 469122d0bd82SXin Long rt6_src = &rt->fib6_src; 469222d0bd82SXin Long rt6_flags = rt->fib6_flags; 469322d0bd82SXin Long } 469422d0bd82SXin Long 46952d7202bfSThomas Graf rtm = nlmsg_data(nlh); 46961da177e4SLinus Torvalds rtm->rtm_family = AF_INET6; 469722d0bd82SXin Long rtm->rtm_dst_len = rt6_dst->plen; 469822d0bd82SXin Long rtm->rtm_src_len = rt6_src->plen; 46991da177e4SLinus Torvalds rtm->rtm_tos = 0; 470093c2fb25SDavid Ahern if (rt->fib6_table) 470193c2fb25SDavid Ahern table = rt->fib6_table->tb6_id; 4702c71099acSThomas Graf else 47039e762a4aSPatrick McHardy table = RT6_TABLE_UNSPEC; 470497f0082aSKalash Nainwal rtm->rtm_table = table < 256 ? table : RT_TABLE_COMPAT; 4705c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_TABLE, table)) 4706c78679e8SDavid S. Miller goto nla_put_failure; 4707e8478e80SDavid Ahern 4708e8478e80SDavid Ahern rtm->rtm_type = rt->fib6_type; 47091da177e4SLinus Torvalds rtm->rtm_flags = 0; 47101da177e4SLinus Torvalds rtm->rtm_scope = RT_SCOPE_UNIVERSE; 471193c2fb25SDavid Ahern rtm->rtm_protocol = rt->fib6_protocol; 47121da177e4SLinus Torvalds 471322d0bd82SXin Long if (rt6_flags & RTF_CACHE) 47141da177e4SLinus Torvalds rtm->rtm_flags |= RTM_F_CLONED; 47151da177e4SLinus Torvalds 4716d4ead6b3SDavid Ahern if (dest) { 4717d4ead6b3SDavid Ahern if (nla_put_in6_addr(skb, RTA_DST, dest)) 4718c78679e8SDavid S. Miller goto nla_put_failure; 47191da177e4SLinus Torvalds rtm->rtm_dst_len = 128; 47201da177e4SLinus Torvalds } else if (rtm->rtm_dst_len) 472122d0bd82SXin Long if (nla_put_in6_addr(skb, RTA_DST, &rt6_dst->addr)) 4722c78679e8SDavid S. Miller goto nla_put_failure; 47231da177e4SLinus Torvalds #ifdef CONFIG_IPV6_SUBTREES 47241da177e4SLinus Torvalds if (src) { 4725930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_SRC, src)) 4726c78679e8SDavid S. Miller goto nla_put_failure; 47271da177e4SLinus Torvalds rtm->rtm_src_len = 128; 4728c78679e8SDavid S. Miller } else if (rtm->rtm_src_len && 472922d0bd82SXin Long nla_put_in6_addr(skb, RTA_SRC, &rt6_src->addr)) 4730c78679e8SDavid S. Miller goto nla_put_failure; 47311da177e4SLinus Torvalds #endif 47327bc570c8SYOSHIFUJI Hideaki if (iif) { 47337bc570c8SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_MROUTE 473422d0bd82SXin Long if (ipv6_addr_is_multicast(&rt6_dst->addr)) { 4735fd61c6baSDavid Ahern int err = ip6mr_get_route(net, skb, rtm, portid); 47362cf75070SNikolay Aleksandrov 47377bc570c8SYOSHIFUJI Hideaki if (err == 0) 47387bc570c8SYOSHIFUJI Hideaki return 0; 4739fd61c6baSDavid Ahern if (err < 0) 47407bc570c8SYOSHIFUJI Hideaki goto nla_put_failure; 47417bc570c8SYOSHIFUJI Hideaki } else 47427bc570c8SYOSHIFUJI Hideaki #endif 4743c78679e8SDavid S. Miller if (nla_put_u32(skb, RTA_IIF, iif)) 4744c78679e8SDavid S. Miller goto nla_put_failure; 4745d4ead6b3SDavid Ahern } else if (dest) { 47461da177e4SLinus Torvalds struct in6_addr saddr_buf; 4747d4ead6b3SDavid Ahern if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 && 4748930345eaSJiri Benc nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4749c78679e8SDavid S. Miller goto nla_put_failure; 4750c3968a85SDaniel Walter } 4751c3968a85SDaniel Walter 475293c2fb25SDavid Ahern if (rt->fib6_prefsrc.plen) { 4753c3968a85SDaniel Walter struct in6_addr saddr_buf; 475493c2fb25SDavid Ahern saddr_buf = rt->fib6_prefsrc.addr; 4755930345eaSJiri Benc if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf)) 4756c78679e8SDavid S. Miller goto nla_put_failure; 47571da177e4SLinus Torvalds } 47582d7202bfSThomas Graf 4759d4ead6b3SDavid Ahern pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics; 4760d4ead6b3SDavid Ahern if (rtnetlink_put_metrics(skb, pmetrics) < 0) 47612d7202bfSThomas Graf goto nla_put_failure; 47622d7202bfSThomas Graf 476393c2fb25SDavid Ahern if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric)) 4764beb1afacSDavid Ahern goto nla_put_failure; 4765beb1afacSDavid Ahern 4766beb1afacSDavid Ahern /* For multipath routes, walk the siblings list and add 4767beb1afacSDavid Ahern * each as a nexthop within RTA_MULTIPATH. 4768beb1afacSDavid Ahern */ 476922d0bd82SXin Long if (rt6) { 477022d0bd82SXin Long if (rt6_flags & RTF_GATEWAY && 477122d0bd82SXin Long nla_put_in6_addr(skb, RTA_GATEWAY, &rt6->rt6i_gateway)) 477222d0bd82SXin Long goto nla_put_failure; 477322d0bd82SXin Long 477422d0bd82SXin Long if (dst->dev && nla_put_u32(skb, RTA_OIF, dst->dev->ifindex)) 477522d0bd82SXin Long goto nla_put_failure; 477622d0bd82SXin Long } else if (rt->fib6_nsiblings) { 47778d1c802bSDavid Ahern struct fib6_info *sibling, *next_sibling; 4778beb1afacSDavid Ahern struct nlattr *mp; 4779beb1afacSDavid Ahern 4780ae0be8deSMichal Kubecek mp = nla_nest_start_noflag(skb, RTA_MULTIPATH); 4781beb1afacSDavid Ahern if (!mp) 4782beb1afacSDavid Ahern goto nla_put_failure; 4783beb1afacSDavid Ahern 4784c0a72077SDavid Ahern if (fib_add_nexthop(skb, &rt->fib6_nh.nh_common, 4785c0a72077SDavid Ahern rt->fib6_nh.fib_nh_weight) < 0) 4786beb1afacSDavid Ahern goto nla_put_failure; 4787beb1afacSDavid Ahern 4788beb1afacSDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 478993c2fb25SDavid Ahern &rt->fib6_siblings, fib6_siblings) { 4790c0a72077SDavid Ahern if (fib_add_nexthop(skb, &sibling->fib6_nh.nh_common, 4791c0a72077SDavid Ahern sibling->fib6_nh.fib_nh_weight) < 0) 479294f826b8SEric Dumazet goto nla_put_failure; 479394f826b8SEric Dumazet } 47942d7202bfSThomas Graf 4795beb1afacSDavid Ahern nla_nest_end(skb, mp); 4796beb1afacSDavid Ahern } else { 4797ecc5663cSDavid Ahern unsigned char nh_flags = 0; 4798ecc5663cSDavid Ahern 4799c0a72077SDavid Ahern if (fib_nexthop_info(skb, &rt->fib6_nh.nh_common, 4800ecc5663cSDavid Ahern &nh_flags, false) < 0) 4801c78679e8SDavid S. Miller goto nla_put_failure; 4802ecc5663cSDavid Ahern 4803ecc5663cSDavid Ahern rtm->rtm_flags |= nh_flags; 4804beb1afacSDavid Ahern } 48058253947eSLi Wei 480622d0bd82SXin Long if (rt6_flags & RTF_EXPIRES) { 480714895687SDavid Ahern expires = dst ? dst->expires : rt->expires; 480814895687SDavid Ahern expires -= jiffies; 480914895687SDavid Ahern } 481069cdf8f9SYOSHIFUJI Hideaki 4811d4ead6b3SDavid Ahern if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0) 4812e3703b3dSThomas Graf goto nla_put_failure; 48131da177e4SLinus Torvalds 481422d0bd82SXin Long if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt6_flags))) 4815c78ba6d6SLubomir Rintel goto nla_put_failure; 4816c78ba6d6SLubomir Rintel 481719e42e45SRoopa Prabhu 4818053c095aSJohannes Berg nlmsg_end(skb, nlh); 4819053c095aSJohannes Berg return 0; 48202d7202bfSThomas Graf 48212d7202bfSThomas Graf nla_put_failure: 482226932566SPatrick McHardy nlmsg_cancel(skb, nlh); 482326932566SPatrick McHardy return -EMSGSIZE; 48241da177e4SLinus Torvalds } 48251da177e4SLinus Torvalds 482613e38901SDavid Ahern static bool fib6_info_uses_dev(const struct fib6_info *f6i, 482713e38901SDavid Ahern const struct net_device *dev) 482813e38901SDavid Ahern { 4829ad1601aeSDavid Ahern if (f6i->fib6_nh.fib_nh_dev == dev) 483013e38901SDavid Ahern return true; 483113e38901SDavid Ahern 483213e38901SDavid Ahern if (f6i->fib6_nsiblings) { 483313e38901SDavid Ahern struct fib6_info *sibling, *next_sibling; 483413e38901SDavid Ahern 483513e38901SDavid Ahern list_for_each_entry_safe(sibling, next_sibling, 483613e38901SDavid Ahern &f6i->fib6_siblings, fib6_siblings) { 4837ad1601aeSDavid Ahern if (sibling->fib6_nh.fib_nh_dev == dev) 483813e38901SDavid Ahern return true; 483913e38901SDavid Ahern } 484013e38901SDavid Ahern } 484113e38901SDavid Ahern 484213e38901SDavid Ahern return false; 484313e38901SDavid Ahern } 484413e38901SDavid Ahern 48458d1c802bSDavid Ahern int rt6_dump_route(struct fib6_info *rt, void *p_arg) 48461da177e4SLinus Torvalds { 48471da177e4SLinus Torvalds struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg; 484813e38901SDavid Ahern struct fib_dump_filter *filter = &arg->filter; 484913e38901SDavid Ahern unsigned int flags = NLM_F_MULTI; 48501f17e2f2SDavid Ahern struct net *net = arg->net; 48511f17e2f2SDavid Ahern 4852421842edSDavid Ahern if (rt == net->ipv6.fib6_null_entry) 48531f17e2f2SDavid Ahern return 0; 48541da177e4SLinus Torvalds 485513e38901SDavid Ahern if ((filter->flags & RTM_F_PREFIX) && 485693c2fb25SDavid Ahern !(rt->fib6_flags & RTF_PREFIX_RT)) { 4857f8cfe2ceSDavid Ahern /* success since this is not a prefix route */ 4858f8cfe2ceSDavid Ahern return 1; 4859f8cfe2ceSDavid Ahern } 486013e38901SDavid Ahern if (filter->filter_set) { 486113e38901SDavid Ahern if ((filter->rt_type && rt->fib6_type != filter->rt_type) || 486213e38901SDavid Ahern (filter->dev && !fib6_info_uses_dev(rt, filter->dev)) || 486313e38901SDavid Ahern (filter->protocol && rt->fib6_protocol != filter->protocol)) { 486413e38901SDavid Ahern return 1; 486513e38901SDavid Ahern } 486613e38901SDavid Ahern flags |= NLM_F_DUMP_FILTERED; 4867f8cfe2ceSDavid Ahern } 48681da177e4SLinus Torvalds 4869d4ead6b3SDavid Ahern return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0, 4870d4ead6b3SDavid Ahern RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid, 487113e38901SDavid Ahern arg->cb->nlh->nlmsg_seq, flags); 48721da177e4SLinus Torvalds } 48731da177e4SLinus Torvalds 48740eff0a27SJakub Kicinski static int inet6_rtm_valid_getroute_req(struct sk_buff *skb, 48750eff0a27SJakub Kicinski const struct nlmsghdr *nlh, 48760eff0a27SJakub Kicinski struct nlattr **tb, 48770eff0a27SJakub Kicinski struct netlink_ext_ack *extack) 48780eff0a27SJakub Kicinski { 48790eff0a27SJakub Kicinski struct rtmsg *rtm; 48800eff0a27SJakub Kicinski int i, err; 48810eff0a27SJakub Kicinski 48820eff0a27SJakub Kicinski if (nlh->nlmsg_len < nlmsg_msg_size(sizeof(*rtm))) { 48830eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 48840eff0a27SJakub Kicinski "Invalid header for get route request"); 48850eff0a27SJakub Kicinski return -EINVAL; 48860eff0a27SJakub Kicinski } 48870eff0a27SJakub Kicinski 48880eff0a27SJakub Kicinski if (!netlink_strict_get_check(skb)) 48898cb08174SJohannes Berg return nlmsg_parse_deprecated(nlh, sizeof(*rtm), tb, RTA_MAX, 48900eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 48910eff0a27SJakub Kicinski 48920eff0a27SJakub Kicinski rtm = nlmsg_data(nlh); 48930eff0a27SJakub Kicinski if ((rtm->rtm_src_len && rtm->rtm_src_len != 128) || 48940eff0a27SJakub Kicinski (rtm->rtm_dst_len && rtm->rtm_dst_len != 128) || 48950eff0a27SJakub Kicinski rtm->rtm_table || rtm->rtm_protocol || rtm->rtm_scope || 48960eff0a27SJakub Kicinski rtm->rtm_type) { 48970eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Invalid values in header for get route request"); 48980eff0a27SJakub Kicinski return -EINVAL; 48990eff0a27SJakub Kicinski } 49000eff0a27SJakub Kicinski if (rtm->rtm_flags & ~RTM_F_FIB_MATCH) { 49010eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, 49020eff0a27SJakub Kicinski "Invalid flags for get route request"); 49030eff0a27SJakub Kicinski return -EINVAL; 49040eff0a27SJakub Kicinski } 49050eff0a27SJakub Kicinski 49068cb08174SJohannes Berg err = nlmsg_parse_deprecated_strict(nlh, sizeof(*rtm), tb, RTA_MAX, 49070eff0a27SJakub Kicinski rtm_ipv6_policy, extack); 49080eff0a27SJakub Kicinski if (err) 49090eff0a27SJakub Kicinski return err; 49100eff0a27SJakub Kicinski 49110eff0a27SJakub Kicinski if ((tb[RTA_SRC] && !rtm->rtm_src_len) || 49120eff0a27SJakub Kicinski (tb[RTA_DST] && !rtm->rtm_dst_len)) { 49130eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "rtm_src_len and rtm_dst_len must be 128 for IPv6"); 49140eff0a27SJakub Kicinski return -EINVAL; 49150eff0a27SJakub Kicinski } 49160eff0a27SJakub Kicinski 49170eff0a27SJakub Kicinski for (i = 0; i <= RTA_MAX; i++) { 49180eff0a27SJakub Kicinski if (!tb[i]) 49190eff0a27SJakub Kicinski continue; 49200eff0a27SJakub Kicinski 49210eff0a27SJakub Kicinski switch (i) { 49220eff0a27SJakub Kicinski case RTA_SRC: 49230eff0a27SJakub Kicinski case RTA_DST: 49240eff0a27SJakub Kicinski case RTA_IIF: 49250eff0a27SJakub Kicinski case RTA_OIF: 49260eff0a27SJakub Kicinski case RTA_MARK: 49270eff0a27SJakub Kicinski case RTA_UID: 49280eff0a27SJakub Kicinski case RTA_SPORT: 49290eff0a27SJakub Kicinski case RTA_DPORT: 49300eff0a27SJakub Kicinski case RTA_IP_PROTO: 49310eff0a27SJakub Kicinski break; 49320eff0a27SJakub Kicinski default: 49330eff0a27SJakub Kicinski NL_SET_ERR_MSG_MOD(extack, "Unsupported attribute in get route request"); 49340eff0a27SJakub Kicinski return -EINVAL; 49350eff0a27SJakub Kicinski } 49360eff0a27SJakub Kicinski } 49370eff0a27SJakub Kicinski 49380eff0a27SJakub Kicinski return 0; 49390eff0a27SJakub Kicinski } 49400eff0a27SJakub Kicinski 4941c21ef3e3SDavid Ahern static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, 4942c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 49431da177e4SLinus Torvalds { 49443b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4945ab364a6fSThomas Graf struct nlattr *tb[RTA_MAX+1]; 494618c3a61cSRoopa Prabhu int err, iif = 0, oif = 0; 4947a68886a6SDavid Ahern struct fib6_info *from; 494818c3a61cSRoopa Prabhu struct dst_entry *dst; 49491da177e4SLinus Torvalds struct rt6_info *rt; 4950ab364a6fSThomas Graf struct sk_buff *skb; 4951ab364a6fSThomas Graf struct rtmsg *rtm; 4952744486d4SMaciej Żenczykowski struct flowi6 fl6 = {}; 495318c3a61cSRoopa Prabhu bool fibmatch; 4954ab364a6fSThomas Graf 49550eff0a27SJakub Kicinski err = inet6_rtm_valid_getroute_req(in_skb, nlh, tb, extack); 4956ab364a6fSThomas Graf if (err < 0) 4957ab364a6fSThomas Graf goto errout; 4958ab364a6fSThomas Graf 4959ab364a6fSThomas Graf err = -EINVAL; 496038b7097bSHannes Frederic Sowa rtm = nlmsg_data(nlh); 496138b7097bSHannes Frederic Sowa fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0); 496218c3a61cSRoopa Prabhu fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH); 4963ab364a6fSThomas Graf 4964ab364a6fSThomas Graf if (tb[RTA_SRC]) { 4965ab364a6fSThomas Graf if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr)) 4966ab364a6fSThomas Graf goto errout; 4967ab364a6fSThomas Graf 49684e3fd7a0SAlexey Dobriyan fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]); 4969ab364a6fSThomas Graf } 4970ab364a6fSThomas Graf 4971ab364a6fSThomas Graf if (tb[RTA_DST]) { 4972ab364a6fSThomas Graf if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr)) 4973ab364a6fSThomas Graf goto errout; 4974ab364a6fSThomas Graf 49754e3fd7a0SAlexey Dobriyan fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]); 4976ab364a6fSThomas Graf } 4977ab364a6fSThomas Graf 4978ab364a6fSThomas Graf if (tb[RTA_IIF]) 4979ab364a6fSThomas Graf iif = nla_get_u32(tb[RTA_IIF]); 4980ab364a6fSThomas Graf 4981ab364a6fSThomas Graf if (tb[RTA_OIF]) 498272331bc0SShmulik Ladkani oif = nla_get_u32(tb[RTA_OIF]); 4983ab364a6fSThomas Graf 49842e47b291SLorenzo Colitti if (tb[RTA_MARK]) 49852e47b291SLorenzo Colitti fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]); 49862e47b291SLorenzo Colitti 4987622ec2c9SLorenzo Colitti if (tb[RTA_UID]) 4988622ec2c9SLorenzo Colitti fl6.flowi6_uid = make_kuid(current_user_ns(), 4989622ec2c9SLorenzo Colitti nla_get_u32(tb[RTA_UID])); 4990622ec2c9SLorenzo Colitti else 4991622ec2c9SLorenzo Colitti fl6.flowi6_uid = iif ? INVALID_UID : current_uid(); 4992622ec2c9SLorenzo Colitti 4993eacb9384SRoopa Prabhu if (tb[RTA_SPORT]) 4994eacb9384SRoopa Prabhu fl6.fl6_sport = nla_get_be16(tb[RTA_SPORT]); 4995eacb9384SRoopa Prabhu 4996eacb9384SRoopa Prabhu if (tb[RTA_DPORT]) 4997eacb9384SRoopa Prabhu fl6.fl6_dport = nla_get_be16(tb[RTA_DPORT]); 4998eacb9384SRoopa Prabhu 4999eacb9384SRoopa Prabhu if (tb[RTA_IP_PROTO]) { 5000eacb9384SRoopa Prabhu err = rtm_getroute_parse_ip_proto(tb[RTA_IP_PROTO], 50015e1a99eaSHangbin Liu &fl6.flowi6_proto, AF_INET6, 50025e1a99eaSHangbin Liu extack); 5003eacb9384SRoopa Prabhu if (err) 5004eacb9384SRoopa Prabhu goto errout; 5005eacb9384SRoopa Prabhu } 5006eacb9384SRoopa Prabhu 5007ab364a6fSThomas Graf if (iif) { 5008ab364a6fSThomas Graf struct net_device *dev; 500972331bc0SShmulik Ladkani int flags = 0; 501072331bc0SShmulik Ladkani 5011121622dbSFlorian Westphal rcu_read_lock(); 5012121622dbSFlorian Westphal 5013121622dbSFlorian Westphal dev = dev_get_by_index_rcu(net, iif); 5014ab364a6fSThomas Graf if (!dev) { 5015121622dbSFlorian Westphal rcu_read_unlock(); 5016ab364a6fSThomas Graf err = -ENODEV; 5017ab364a6fSThomas Graf goto errout; 5018ab364a6fSThomas Graf } 501972331bc0SShmulik Ladkani 502072331bc0SShmulik Ladkani fl6.flowi6_iif = iif; 502172331bc0SShmulik Ladkani 502272331bc0SShmulik Ladkani if (!ipv6_addr_any(&fl6.saddr)) 502372331bc0SShmulik Ladkani flags |= RT6_LOOKUP_F_HAS_SADDR; 502472331bc0SShmulik Ladkani 5025b75cc8f9SDavid Ahern dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags); 5026121622dbSFlorian Westphal 5027121622dbSFlorian Westphal rcu_read_unlock(); 502872331bc0SShmulik Ladkani } else { 502972331bc0SShmulik Ladkani fl6.flowi6_oif = oif; 503072331bc0SShmulik Ladkani 503118c3a61cSRoopa Prabhu dst = ip6_route_output(net, NULL, &fl6); 503218c3a61cSRoopa Prabhu } 503318c3a61cSRoopa Prabhu 503418c3a61cSRoopa Prabhu 503518c3a61cSRoopa Prabhu rt = container_of(dst, struct rt6_info, dst); 503618c3a61cSRoopa Prabhu if (rt->dst.error) { 503718c3a61cSRoopa Prabhu err = rt->dst.error; 503818c3a61cSRoopa Prabhu ip6_rt_put(rt); 503918c3a61cSRoopa Prabhu goto errout; 5040ab364a6fSThomas Graf } 50411da177e4SLinus Torvalds 50429d6acb3bSWANG Cong if (rt == net->ipv6.ip6_null_entry) { 50439d6acb3bSWANG Cong err = rt->dst.error; 50449d6acb3bSWANG Cong ip6_rt_put(rt); 50459d6acb3bSWANG Cong goto errout; 50469d6acb3bSWANG Cong } 50479d6acb3bSWANG Cong 50481da177e4SLinus Torvalds skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); 504938308473SDavid S. Miller if (!skb) { 505094e187c0SAmerigo Wang ip6_rt_put(rt); 5051ab364a6fSThomas Graf err = -ENOBUFS; 5052ab364a6fSThomas Graf goto errout; 5053ab364a6fSThomas Graf } 50541da177e4SLinus Torvalds 5055d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 5056a68886a6SDavid Ahern 5057a68886a6SDavid Ahern rcu_read_lock(); 5058a68886a6SDavid Ahern from = rcu_dereference(rt->from); 5059886b7a50SMartin KaFai Lau if (from) { 506018c3a61cSRoopa Prabhu if (fibmatch) 5061886b7a50SMartin KaFai Lau err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, 5062886b7a50SMartin KaFai Lau iif, RTM_NEWROUTE, 5063886b7a50SMartin KaFai Lau NETLINK_CB(in_skb).portid, 506418c3a61cSRoopa Prabhu nlh->nlmsg_seq, 0); 506518c3a61cSRoopa Prabhu else 5066a68886a6SDavid Ahern err = rt6_fill_node(net, skb, from, dst, &fl6.daddr, 5067a68886a6SDavid Ahern &fl6.saddr, iif, RTM_NEWROUTE, 5068886b7a50SMartin KaFai Lau NETLINK_CB(in_skb).portid, 5069886b7a50SMartin KaFai Lau nlh->nlmsg_seq, 0); 5070886b7a50SMartin KaFai Lau } else { 5071886b7a50SMartin KaFai Lau err = -ENETUNREACH; 5072886b7a50SMartin KaFai Lau } 5073a68886a6SDavid Ahern rcu_read_unlock(); 5074a68886a6SDavid Ahern 50751da177e4SLinus Torvalds if (err < 0) { 5076ab364a6fSThomas Graf kfree_skb(skb); 5077ab364a6fSThomas Graf goto errout; 50781da177e4SLinus Torvalds } 50791da177e4SLinus Torvalds 508015e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 5081ab364a6fSThomas Graf errout: 50821da177e4SLinus Torvalds return err; 50831da177e4SLinus Torvalds } 50841da177e4SLinus Torvalds 50858d1c802bSDavid Ahern void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info, 508637a1d361SRoopa Prabhu unsigned int nlm_flags) 50871da177e4SLinus Torvalds { 50881da177e4SLinus Torvalds struct sk_buff *skb; 50895578689aSDaniel Lezcano struct net *net = info->nl_net; 5090528c4cebSDenis V. Lunev u32 seq; 5091528c4cebSDenis V. Lunev int err; 50920d51aa80SJamal Hadi Salim 5093528c4cebSDenis V. Lunev err = -ENOBUFS; 509438308473SDavid S. Miller seq = info->nlh ? info->nlh->nlmsg_seq : 0; 509586872cb5SThomas Graf 509619e42e45SRoopa Prabhu skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any()); 509738308473SDavid S. Miller if (!skb) 509821713ebcSThomas Graf goto errout; 50991da177e4SLinus Torvalds 5100d4ead6b3SDavid Ahern err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0, 5101f8cfe2ceSDavid Ahern event, info->portid, seq, nlm_flags); 510226932566SPatrick McHardy if (err < 0) { 510326932566SPatrick McHardy /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */ 510426932566SPatrick McHardy WARN_ON(err == -EMSGSIZE); 510526932566SPatrick McHardy kfree_skb(skb); 510626932566SPatrick McHardy goto errout; 510726932566SPatrick McHardy } 510815e47304SEric W. Biederman rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE, 51095578689aSDaniel Lezcano info->nlh, gfp_any()); 51101ce85fe4SPablo Neira Ayuso return; 511121713ebcSThomas Graf errout: 511221713ebcSThomas Graf if (err < 0) 51135578689aSDaniel Lezcano rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err); 51141da177e4SLinus Torvalds } 51151da177e4SLinus Torvalds 51168ed67789SDaniel Lezcano static int ip6_route_dev_notify(struct notifier_block *this, 5117351638e7SJiri Pirko unsigned long event, void *ptr) 51188ed67789SDaniel Lezcano { 5119351638e7SJiri Pirko struct net_device *dev = netdev_notifier_info_to_dev(ptr); 5120c346dca1SYOSHIFUJI Hideaki struct net *net = dev_net(dev); 51218ed67789SDaniel Lezcano 5122242d3a49SWANG Cong if (!(dev->flags & IFF_LOOPBACK)) 5123242d3a49SWANG Cong return NOTIFY_OK; 5124242d3a49SWANG Cong 5125242d3a49SWANG Cong if (event == NETDEV_REGISTER) { 5126ad1601aeSDavid Ahern net->ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = dev; 5127d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.dev = dev; 51288ed67789SDaniel Lezcano net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev); 51298ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5130d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.dev = dev; 51318ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev); 5132d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.dev = dev; 51338ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev); 51348ed67789SDaniel Lezcano #endif 513576da0704SWANG Cong } else if (event == NETDEV_UNREGISTER && 513676da0704SWANG Cong dev->reg_state != NETREG_UNREGISTERED) { 513776da0704SWANG Cong /* NETDEV_UNREGISTER could be fired for multiple times by 513876da0704SWANG Cong * netdev_wait_allrefs(). Make sure we only call this once. 513976da0704SWANG Cong */ 514012d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev); 5141242d3a49SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 514212d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev); 514312d94a80SEric Dumazet in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev); 5144242d3a49SWANG Cong #endif 51458ed67789SDaniel Lezcano } 51468ed67789SDaniel Lezcano 51478ed67789SDaniel Lezcano return NOTIFY_OK; 51488ed67789SDaniel Lezcano } 51498ed67789SDaniel Lezcano 51501da177e4SLinus Torvalds /* 51511da177e4SLinus Torvalds * /proc 51521da177e4SLinus Torvalds */ 51531da177e4SLinus Torvalds 51541da177e4SLinus Torvalds #ifdef CONFIG_PROC_FS 51551da177e4SLinus Torvalds static int rt6_stats_seq_show(struct seq_file *seq, void *v) 51561da177e4SLinus Torvalds { 515769ddb805SDaniel Lezcano struct net *net = (struct net *)seq->private; 51581da177e4SLinus Torvalds seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n", 515969ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_nodes, 516069ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_route_nodes, 516181eb8447SWei Wang atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc), 516269ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_entries, 516369ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_rt_cache, 5164fc66f95cSEric Dumazet dst_entries_get_slow(&net->ipv6.ip6_dst_ops), 516569ddb805SDaniel Lezcano net->ipv6.rt6_stats->fib_discarded_routes); 51661da177e4SLinus Torvalds 51671da177e4SLinus Torvalds return 0; 51681da177e4SLinus Torvalds } 51691da177e4SLinus Torvalds #endif /* CONFIG_PROC_FS */ 51701da177e4SLinus Torvalds 51711da177e4SLinus Torvalds #ifdef CONFIG_SYSCTL 51721da177e4SLinus Torvalds 51731da177e4SLinus Torvalds static 5174fe2c6338SJoe Perches int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write, 51751da177e4SLinus Torvalds void __user *buffer, size_t *lenp, loff_t *ppos) 51761da177e4SLinus Torvalds { 5177c486da34SLucian Adrian Grijincu struct net *net; 5178c486da34SLucian Adrian Grijincu int delay; 5179f0fb9b28SAditya Pakki int ret; 5180c486da34SLucian Adrian Grijincu if (!write) 5181c486da34SLucian Adrian Grijincu return -EINVAL; 5182c486da34SLucian Adrian Grijincu 5183c486da34SLucian Adrian Grijincu net = (struct net *)ctl->extra1; 5184c486da34SLucian Adrian Grijincu delay = net->ipv6.sysctl.flush_delay; 5185f0fb9b28SAditya Pakki ret = proc_dointvec(ctl, write, buffer, lenp, ppos); 5186f0fb9b28SAditya Pakki if (ret) 5187f0fb9b28SAditya Pakki return ret; 5188f0fb9b28SAditya Pakki 51892ac3ac8fSMichal Kubeček fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0); 51901da177e4SLinus Torvalds return 0; 51911da177e4SLinus Torvalds } 51921da177e4SLinus Torvalds 51937c6bb7d2SDavid Ahern static int zero; 51947c6bb7d2SDavid Ahern static int one = 1; 51957c6bb7d2SDavid Ahern 5196ed792e28SDavid Ahern static struct ctl_table ipv6_route_table_template[] = { 51971da177e4SLinus Torvalds { 51981da177e4SLinus Torvalds .procname = "flush", 51994990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.flush_delay, 52001da177e4SLinus Torvalds .maxlen = sizeof(int), 520189c8b3a1SDave Jones .mode = 0200, 52026d9f239aSAlexey Dobriyan .proc_handler = ipv6_sysctl_rtcache_flush 52031da177e4SLinus Torvalds }, 52041da177e4SLinus Torvalds { 52051da177e4SLinus Torvalds .procname = "gc_thresh", 52069a7ec3a9SDaniel Lezcano .data = &ip6_dst_ops_template.gc_thresh, 52071da177e4SLinus Torvalds .maxlen = sizeof(int), 52081da177e4SLinus Torvalds .mode = 0644, 52096d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 52101da177e4SLinus Torvalds }, 52111da177e4SLinus Torvalds { 52121da177e4SLinus Torvalds .procname = "max_size", 52134990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_max_size, 52141da177e4SLinus Torvalds .maxlen = sizeof(int), 52151da177e4SLinus Torvalds .mode = 0644, 52166d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec, 52171da177e4SLinus Torvalds }, 52181da177e4SLinus Torvalds { 52191da177e4SLinus Torvalds .procname = "gc_min_interval", 52204990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 52211da177e4SLinus Torvalds .maxlen = sizeof(int), 52221da177e4SLinus Torvalds .mode = 0644, 52236d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 52241da177e4SLinus Torvalds }, 52251da177e4SLinus Torvalds { 52261da177e4SLinus Torvalds .procname = "gc_timeout", 52274990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout, 52281da177e4SLinus Torvalds .maxlen = sizeof(int), 52291da177e4SLinus Torvalds .mode = 0644, 52306d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 52311da177e4SLinus Torvalds }, 52321da177e4SLinus Torvalds { 52331da177e4SLinus Torvalds .procname = "gc_interval", 52344990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval, 52351da177e4SLinus Torvalds .maxlen = sizeof(int), 52361da177e4SLinus Torvalds .mode = 0644, 52376d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 52381da177e4SLinus Torvalds }, 52391da177e4SLinus Torvalds { 52401da177e4SLinus Torvalds .procname = "gc_elasticity", 52414990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity, 52421da177e4SLinus Torvalds .maxlen = sizeof(int), 52431da177e4SLinus Torvalds .mode = 0644, 5244f3d3f616SMin Zhang .proc_handler = proc_dointvec, 52451da177e4SLinus Torvalds }, 52461da177e4SLinus Torvalds { 52471da177e4SLinus Torvalds .procname = "mtu_expires", 52484990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires, 52491da177e4SLinus Torvalds .maxlen = sizeof(int), 52501da177e4SLinus Torvalds .mode = 0644, 52516d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_jiffies, 52521da177e4SLinus Torvalds }, 52531da177e4SLinus Torvalds { 52541da177e4SLinus Torvalds .procname = "min_adv_mss", 52554990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss, 52561da177e4SLinus Torvalds .maxlen = sizeof(int), 52571da177e4SLinus Torvalds .mode = 0644, 5258f3d3f616SMin Zhang .proc_handler = proc_dointvec, 52591da177e4SLinus Torvalds }, 52601da177e4SLinus Torvalds { 52611da177e4SLinus Torvalds .procname = "gc_min_interval_ms", 52624990509fSDaniel Lezcano .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval, 52631da177e4SLinus Torvalds .maxlen = sizeof(int), 52641da177e4SLinus Torvalds .mode = 0644, 52656d9f239aSAlexey Dobriyan .proc_handler = proc_dointvec_ms_jiffies, 52661da177e4SLinus Torvalds }, 52677c6bb7d2SDavid Ahern { 52687c6bb7d2SDavid Ahern .procname = "skip_notify_on_dev_down", 52697c6bb7d2SDavid Ahern .data = &init_net.ipv6.sysctl.skip_notify_on_dev_down, 52707c6bb7d2SDavid Ahern .maxlen = sizeof(int), 52717c6bb7d2SDavid Ahern .mode = 0644, 52727c6bb7d2SDavid Ahern .proc_handler = proc_dointvec, 52737c6bb7d2SDavid Ahern .extra1 = &zero, 52747c6bb7d2SDavid Ahern .extra2 = &one, 52757c6bb7d2SDavid Ahern }, 5276f8572d8fSEric W. Biederman { } 52771da177e4SLinus Torvalds }; 52781da177e4SLinus Torvalds 52792c8c1e72SAlexey Dobriyan struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net) 5280760f2d01SDaniel Lezcano { 5281760f2d01SDaniel Lezcano struct ctl_table *table; 5282760f2d01SDaniel Lezcano 5283760f2d01SDaniel Lezcano table = kmemdup(ipv6_route_table_template, 5284760f2d01SDaniel Lezcano sizeof(ipv6_route_table_template), 5285760f2d01SDaniel Lezcano GFP_KERNEL); 52865ee09105SYOSHIFUJI Hideaki 52875ee09105SYOSHIFUJI Hideaki if (table) { 52885ee09105SYOSHIFUJI Hideaki table[0].data = &net->ipv6.sysctl.flush_delay; 5289c486da34SLucian Adrian Grijincu table[0].extra1 = net; 529086393e52SAlexey Dobriyan table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh; 52915ee09105SYOSHIFUJI Hideaki table[2].data = &net->ipv6.sysctl.ip6_rt_max_size; 52925ee09105SYOSHIFUJI Hideaki table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52935ee09105SYOSHIFUJI Hideaki table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout; 52945ee09105SYOSHIFUJI Hideaki table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval; 52955ee09105SYOSHIFUJI Hideaki table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity; 52965ee09105SYOSHIFUJI Hideaki table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires; 52975ee09105SYOSHIFUJI Hideaki table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss; 52989c69fabeSAlexey Dobriyan table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval; 52997c6bb7d2SDavid Ahern table[10].data = &net->ipv6.sysctl.skip_notify_on_dev_down; 5300464dc801SEric W. Biederman 5301464dc801SEric W. Biederman /* Don't export sysctls to unprivileged users */ 5302464dc801SEric W. Biederman if (net->user_ns != &init_user_ns) 5303464dc801SEric W. Biederman table[0].procname = NULL; 53045ee09105SYOSHIFUJI Hideaki } 53055ee09105SYOSHIFUJI Hideaki 5306760f2d01SDaniel Lezcano return table; 5307760f2d01SDaniel Lezcano } 53081da177e4SLinus Torvalds #endif 53091da177e4SLinus Torvalds 53102c8c1e72SAlexey Dobriyan static int __net_init ip6_route_net_init(struct net *net) 5311cdb18761SDaniel Lezcano { 5312633d424bSPavel Emelyanov int ret = -ENOMEM; 53138ed67789SDaniel Lezcano 531486393e52SAlexey Dobriyan memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template, 531586393e52SAlexey Dobriyan sizeof(net->ipv6.ip6_dst_ops)); 5316f2fc6a54SBenjamin Thery 5317fc66f95cSEric Dumazet if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0) 5318fc66f95cSEric Dumazet goto out_ip6_dst_ops; 5319fc66f95cSEric Dumazet 5320421842edSDavid Ahern net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template, 5321421842edSDavid Ahern sizeof(*net->ipv6.fib6_null_entry), 5322421842edSDavid Ahern GFP_KERNEL); 5323421842edSDavid Ahern if (!net->ipv6.fib6_null_entry) 5324421842edSDavid Ahern goto out_ip6_dst_entries; 5325421842edSDavid Ahern 53268ed67789SDaniel Lezcano net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template, 53278ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_null_entry), 53288ed67789SDaniel Lezcano GFP_KERNEL); 53298ed67789SDaniel Lezcano if (!net->ipv6.ip6_null_entry) 5330421842edSDavid Ahern goto out_fib6_null_entry; 5331d8d1f30bSChangli Gao net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops; 533262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_null_entry->dst, 533362fa8a84SDavid S. Miller ip6_template_metrics, true); 53348ed67789SDaniel Lezcano 53358ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 5336feca7d8cSVincent Bernat net->ipv6.fib6_has_custom_rules = false; 53378ed67789SDaniel Lezcano net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template, 53388ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_prohibit_entry), 53398ed67789SDaniel Lezcano GFP_KERNEL); 534068fffc67SPeter Zijlstra if (!net->ipv6.ip6_prohibit_entry) 534168fffc67SPeter Zijlstra goto out_ip6_null_entry; 5342d8d1f30bSChangli Gao net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops; 534362fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst, 534462fa8a84SDavid S. Miller ip6_template_metrics, true); 53458ed67789SDaniel Lezcano 53468ed67789SDaniel Lezcano net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template, 53478ed67789SDaniel Lezcano sizeof(*net->ipv6.ip6_blk_hole_entry), 53488ed67789SDaniel Lezcano GFP_KERNEL); 534968fffc67SPeter Zijlstra if (!net->ipv6.ip6_blk_hole_entry) 535068fffc67SPeter Zijlstra goto out_ip6_prohibit_entry; 5351d8d1f30bSChangli Gao net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops; 535262fa8a84SDavid S. Miller dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst, 535362fa8a84SDavid S. Miller ip6_template_metrics, true); 53548ed67789SDaniel Lezcano #endif 53558ed67789SDaniel Lezcano 5356b339a47cSPeter Zijlstra net->ipv6.sysctl.flush_delay = 0; 5357b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_max_size = 4096; 5358b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2; 5359b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ; 5360b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ; 5361b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_gc_elasticity = 9; 5362b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ; 5363b339a47cSPeter Zijlstra net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40; 53647c6bb7d2SDavid Ahern net->ipv6.sysctl.skip_notify_on_dev_down = 0; 5365b339a47cSPeter Zijlstra 53666891a346SBenjamin Thery net->ipv6.ip6_rt_gc_expire = 30*HZ; 53676891a346SBenjamin Thery 53688ed67789SDaniel Lezcano ret = 0; 53698ed67789SDaniel Lezcano out: 53708ed67789SDaniel Lezcano return ret; 5371f2fc6a54SBenjamin Thery 537268fffc67SPeter Zijlstra #ifdef CONFIG_IPV6_MULTIPLE_TABLES 537368fffc67SPeter Zijlstra out_ip6_prohibit_entry: 537468fffc67SPeter Zijlstra kfree(net->ipv6.ip6_prohibit_entry); 537568fffc67SPeter Zijlstra out_ip6_null_entry: 537668fffc67SPeter Zijlstra kfree(net->ipv6.ip6_null_entry); 537768fffc67SPeter Zijlstra #endif 5378421842edSDavid Ahern out_fib6_null_entry: 5379421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 5380fc66f95cSEric Dumazet out_ip6_dst_entries: 5381fc66f95cSEric Dumazet dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5382f2fc6a54SBenjamin Thery out_ip6_dst_ops: 5383f2fc6a54SBenjamin Thery goto out; 5384cdb18761SDaniel Lezcano } 5385cdb18761SDaniel Lezcano 53862c8c1e72SAlexey Dobriyan static void __net_exit ip6_route_net_exit(struct net *net) 5387cdb18761SDaniel Lezcano { 5388421842edSDavid Ahern kfree(net->ipv6.fib6_null_entry); 53898ed67789SDaniel Lezcano kfree(net->ipv6.ip6_null_entry); 53908ed67789SDaniel Lezcano #ifdef CONFIG_IPV6_MULTIPLE_TABLES 53918ed67789SDaniel Lezcano kfree(net->ipv6.ip6_prohibit_entry); 53928ed67789SDaniel Lezcano kfree(net->ipv6.ip6_blk_hole_entry); 53938ed67789SDaniel Lezcano #endif 539441bb78b4SXiaotian Feng dst_entries_destroy(&net->ipv6.ip6_dst_ops); 5395cdb18761SDaniel Lezcano } 5396cdb18761SDaniel Lezcano 5397d189634eSThomas Graf static int __net_init ip6_route_net_init_late(struct net *net) 5398d189634eSThomas Graf { 5399d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5400c3506372SChristoph Hellwig proc_create_net("ipv6_route", 0, net->proc_net, &ipv6_route_seq_ops, 5401c3506372SChristoph Hellwig sizeof(struct ipv6_route_iter)); 54023617d949SChristoph Hellwig proc_create_net_single("rt6_stats", 0444, net->proc_net, 54033617d949SChristoph Hellwig rt6_stats_seq_show, NULL); 5404d189634eSThomas Graf #endif 5405d189634eSThomas Graf return 0; 5406d189634eSThomas Graf } 5407d189634eSThomas Graf 5408d189634eSThomas Graf static void __net_exit ip6_route_net_exit_late(struct net *net) 5409d189634eSThomas Graf { 5410d189634eSThomas Graf #ifdef CONFIG_PROC_FS 5411ece31ffdSGao feng remove_proc_entry("ipv6_route", net->proc_net); 5412ece31ffdSGao feng remove_proc_entry("rt6_stats", net->proc_net); 5413d189634eSThomas Graf #endif 5414d189634eSThomas Graf } 5415d189634eSThomas Graf 5416cdb18761SDaniel Lezcano static struct pernet_operations ip6_route_net_ops = { 5417cdb18761SDaniel Lezcano .init = ip6_route_net_init, 5418cdb18761SDaniel Lezcano .exit = ip6_route_net_exit, 5419cdb18761SDaniel Lezcano }; 5420cdb18761SDaniel Lezcano 5421c3426b47SDavid S. Miller static int __net_init ipv6_inetpeer_init(struct net *net) 5422c3426b47SDavid S. Miller { 5423c3426b47SDavid S. Miller struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL); 5424c3426b47SDavid S. Miller 5425c3426b47SDavid S. Miller if (!bp) 5426c3426b47SDavid S. Miller return -ENOMEM; 5427c3426b47SDavid S. Miller inet_peer_base_init(bp); 5428c3426b47SDavid S. Miller net->ipv6.peers = bp; 5429c3426b47SDavid S. Miller return 0; 5430c3426b47SDavid S. Miller } 5431c3426b47SDavid S. Miller 5432c3426b47SDavid S. Miller static void __net_exit ipv6_inetpeer_exit(struct net *net) 5433c3426b47SDavid S. Miller { 5434c3426b47SDavid S. Miller struct inet_peer_base *bp = net->ipv6.peers; 5435c3426b47SDavid S. Miller 5436c3426b47SDavid S. Miller net->ipv6.peers = NULL; 543756a6b248SDavid S. Miller inetpeer_invalidate_tree(bp); 5438c3426b47SDavid S. Miller kfree(bp); 5439c3426b47SDavid S. Miller } 5440c3426b47SDavid S. Miller 54412b823f72SDavid S. Miller static struct pernet_operations ipv6_inetpeer_ops = { 5442c3426b47SDavid S. Miller .init = ipv6_inetpeer_init, 5443c3426b47SDavid S. Miller .exit = ipv6_inetpeer_exit, 5444c3426b47SDavid S. Miller }; 5445c3426b47SDavid S. Miller 5446d189634eSThomas Graf static struct pernet_operations ip6_route_net_late_ops = { 5447d189634eSThomas Graf .init = ip6_route_net_init_late, 5448d189634eSThomas Graf .exit = ip6_route_net_exit_late, 5449d189634eSThomas Graf }; 5450d189634eSThomas Graf 54518ed67789SDaniel Lezcano static struct notifier_block ip6_route_dev_notifier = { 54528ed67789SDaniel Lezcano .notifier_call = ip6_route_dev_notify, 5453242d3a49SWANG Cong .priority = ADDRCONF_NOTIFY_PRIORITY - 10, 54548ed67789SDaniel Lezcano }; 54558ed67789SDaniel Lezcano 54562f460933SWANG Cong void __init ip6_route_init_special_entries(void) 54572f460933SWANG Cong { 54582f460933SWANG Cong /* Registering of the loopback is done before this portion of code, 54592f460933SWANG Cong * the loopback reference in rt6_info will not be taken, do it 54602f460933SWANG Cong * manually for init_net */ 5461ad1601aeSDavid Ahern init_net.ipv6.fib6_null_entry->fib6_nh.fib_nh_dev = init_net.loopback_dev; 54622f460933SWANG Cong init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev; 54632f460933SWANG Cong init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54642f460933SWANG Cong #ifdef CONFIG_IPV6_MULTIPLE_TABLES 54652f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev; 54662f460933SWANG Cong init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54672f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev; 54682f460933SWANG Cong init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev); 54692f460933SWANG Cong #endif 54702f460933SWANG Cong } 54712f460933SWANG Cong 5472433d49c3SDaniel Lezcano int __init ip6_route_init(void) 54731da177e4SLinus Torvalds { 5474433d49c3SDaniel Lezcano int ret; 54758d0b94afSMartin KaFai Lau int cpu; 5476433d49c3SDaniel Lezcano 54779a7ec3a9SDaniel Lezcano ret = -ENOMEM; 54789a7ec3a9SDaniel Lezcano ip6_dst_ops_template.kmem_cachep = 54799a7ec3a9SDaniel Lezcano kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0, 54809a7ec3a9SDaniel Lezcano SLAB_HWCACHE_ALIGN, NULL); 54819a7ec3a9SDaniel Lezcano if (!ip6_dst_ops_template.kmem_cachep) 5482c19a28e1SFernando Carrijo goto out; 548314e50e57SDavid S. Miller 5484fc66f95cSEric Dumazet ret = dst_entries_init(&ip6_dst_blackhole_ops); 54858ed67789SDaniel Lezcano if (ret) 5486bdb3289fSDaniel Lezcano goto out_kmem_cache; 5487bdb3289fSDaniel Lezcano 5488c3426b47SDavid S. Miller ret = register_pernet_subsys(&ipv6_inetpeer_ops); 5489c3426b47SDavid S. Miller if (ret) 5490e8803b6cSDavid S. Miller goto out_dst_entries; 54912a0c451aSThomas Graf 54927e52b33bSDavid S. Miller ret = register_pernet_subsys(&ip6_route_net_ops); 54937e52b33bSDavid S. Miller if (ret) 54947e52b33bSDavid S. Miller goto out_register_inetpeer; 5495c3426b47SDavid S. Miller 54965dc121e9SArnaud Ebalard ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep; 54975dc121e9SArnaud Ebalard 5498e8803b6cSDavid S. Miller ret = fib6_init(); 5499433d49c3SDaniel Lezcano if (ret) 55008ed67789SDaniel Lezcano goto out_register_subsys; 5501433d49c3SDaniel Lezcano 5502433d49c3SDaniel Lezcano ret = xfrm6_init(); 5503433d49c3SDaniel Lezcano if (ret) 5504e8803b6cSDavid S. Miller goto out_fib6_init; 5505c35b7e72SDaniel Lezcano 5506433d49c3SDaniel Lezcano ret = fib6_rules_init(); 5507433d49c3SDaniel Lezcano if (ret) 5508433d49c3SDaniel Lezcano goto xfrm6_init; 55097e5449c2SDaniel Lezcano 5510d189634eSThomas Graf ret = register_pernet_subsys(&ip6_route_net_late_ops); 5511d189634eSThomas Graf if (ret) 5512d189634eSThomas Graf goto fib6_rules_init; 5513d189634eSThomas Graf 551416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE, 551516feebcfSFlorian Westphal inet6_rtm_newroute, NULL, 0); 551616feebcfSFlorian Westphal if (ret < 0) 551716feebcfSFlorian Westphal goto out_register_late_subsys; 551816feebcfSFlorian Westphal 551916feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE, 552016feebcfSFlorian Westphal inet6_rtm_delroute, NULL, 0); 552116feebcfSFlorian Westphal if (ret < 0) 552216feebcfSFlorian Westphal goto out_register_late_subsys; 552316feebcfSFlorian Westphal 552416feebcfSFlorian Westphal ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE, 552516feebcfSFlorian Westphal inet6_rtm_getroute, NULL, 552616feebcfSFlorian Westphal RTNL_FLAG_DOIT_UNLOCKED); 552716feebcfSFlorian Westphal if (ret < 0) 5528d189634eSThomas Graf goto out_register_late_subsys; 5529433d49c3SDaniel Lezcano 55308ed67789SDaniel Lezcano ret = register_netdevice_notifier(&ip6_route_dev_notifier); 5531cdb18761SDaniel Lezcano if (ret) 5532d189634eSThomas Graf goto out_register_late_subsys; 55338ed67789SDaniel Lezcano 55348d0b94afSMartin KaFai Lau for_each_possible_cpu(cpu) { 55358d0b94afSMartin KaFai Lau struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu); 55368d0b94afSMartin KaFai Lau 55378d0b94afSMartin KaFai Lau INIT_LIST_HEAD(&ul->head); 55388d0b94afSMartin KaFai Lau spin_lock_init(&ul->lock); 55398d0b94afSMartin KaFai Lau } 55408d0b94afSMartin KaFai Lau 5541433d49c3SDaniel Lezcano out: 5542433d49c3SDaniel Lezcano return ret; 5543433d49c3SDaniel Lezcano 5544d189634eSThomas Graf out_register_late_subsys: 554516feebcfSFlorian Westphal rtnl_unregister_all(PF_INET6); 5546d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5547433d49c3SDaniel Lezcano fib6_rules_init: 5548433d49c3SDaniel Lezcano fib6_rules_cleanup(); 5549433d49c3SDaniel Lezcano xfrm6_init: 5550433d49c3SDaniel Lezcano xfrm6_fini(); 55512a0c451aSThomas Graf out_fib6_init: 55522a0c451aSThomas Graf fib6_gc_cleanup(); 55538ed67789SDaniel Lezcano out_register_subsys: 55548ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 55557e52b33bSDavid S. Miller out_register_inetpeer: 55567e52b33bSDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 5557fc66f95cSEric Dumazet out_dst_entries: 5558fc66f95cSEric Dumazet dst_entries_destroy(&ip6_dst_blackhole_ops); 5559433d49c3SDaniel Lezcano out_kmem_cache: 5560f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 5561433d49c3SDaniel Lezcano goto out; 55621da177e4SLinus Torvalds } 55631da177e4SLinus Torvalds 55641da177e4SLinus Torvalds void ip6_route_cleanup(void) 55651da177e4SLinus Torvalds { 55668ed67789SDaniel Lezcano unregister_netdevice_notifier(&ip6_route_dev_notifier); 5567d189634eSThomas Graf unregister_pernet_subsys(&ip6_route_net_late_ops); 5568101367c2SThomas Graf fib6_rules_cleanup(); 55691da177e4SLinus Torvalds xfrm6_fini(); 55701da177e4SLinus Torvalds fib6_gc_cleanup(); 5571c3426b47SDavid S. Miller unregister_pernet_subsys(&ipv6_inetpeer_ops); 55728ed67789SDaniel Lezcano unregister_pernet_subsys(&ip6_route_net_ops); 557341bb78b4SXiaotian Feng dst_entries_destroy(&ip6_dst_blackhole_ops); 5574f2fc6a54SBenjamin Thery kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep); 55751da177e4SLinus Torvalds } 5576