1*e3e4712eSRoopa Prabhu /* 2*e3e4712eSRoopa Prabhu * mpls tunnels An implementation mpls tunnels using the light weight tunnel 3*e3e4712eSRoopa Prabhu * infrastructure 4*e3e4712eSRoopa Prabhu * 5*e3e4712eSRoopa Prabhu * Authors: Roopa Prabhu, <roopa@cumulusnetworks.com> 6*e3e4712eSRoopa Prabhu * 7*e3e4712eSRoopa Prabhu * This program is free software; you can redistribute it and/or 8*e3e4712eSRoopa Prabhu * modify it under the terms of the GNU General Public License 9*e3e4712eSRoopa Prabhu * as published by the Free Software Foundation; either version 10*e3e4712eSRoopa Prabhu * 2 of the License, or (at your option) any later version. 11*e3e4712eSRoopa Prabhu * 12*e3e4712eSRoopa Prabhu */ 13*e3e4712eSRoopa Prabhu #include <linux/types.h> 14*e3e4712eSRoopa Prabhu #include <linux/skbuff.h> 15*e3e4712eSRoopa Prabhu #include <linux/net.h> 16*e3e4712eSRoopa Prabhu #include <linux/module.h> 17*e3e4712eSRoopa Prabhu #include <linux/mpls.h> 18*e3e4712eSRoopa Prabhu #include <linux/vmalloc.h> 19*e3e4712eSRoopa Prabhu #include <net/ip.h> 20*e3e4712eSRoopa Prabhu #include <net/dst.h> 21*e3e4712eSRoopa Prabhu #include <net/lwtunnel.h> 22*e3e4712eSRoopa Prabhu #include <net/netevent.h> 23*e3e4712eSRoopa Prabhu #include <net/netns/generic.h> 24*e3e4712eSRoopa Prabhu #include <net/ip6_fib.h> 25*e3e4712eSRoopa Prabhu #include <net/route.h> 26*e3e4712eSRoopa Prabhu #include <net/mpls_iptunnel.h> 27*e3e4712eSRoopa Prabhu #include <linux/mpls_iptunnel.h> 28*e3e4712eSRoopa Prabhu #include "internal.h" 29*e3e4712eSRoopa Prabhu 30*e3e4712eSRoopa Prabhu static const struct nla_policy mpls_iptunnel_policy[MPLS_IPTUNNEL_MAX + 1] = { 31*e3e4712eSRoopa Prabhu [MPLS_IPTUNNEL_DST] = { .type = NLA_U32 }, 32*e3e4712eSRoopa Prabhu }; 33*e3e4712eSRoopa Prabhu 34*e3e4712eSRoopa Prabhu static unsigned int mpls_encap_size(struct mpls_iptunnel_encap *en) 35*e3e4712eSRoopa Prabhu { 36*e3e4712eSRoopa Prabhu /* The size of the layer 2.5 labels to be added for this route */ 37*e3e4712eSRoopa Prabhu return en->labels * sizeof(struct mpls_shim_hdr); 38*e3e4712eSRoopa Prabhu } 39*e3e4712eSRoopa Prabhu 40*e3e4712eSRoopa Prabhu int mpls_output(struct sock *sk, struct sk_buff *skb) 41*e3e4712eSRoopa Prabhu { 42*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *tun_encap_info; 43*e3e4712eSRoopa Prabhu struct mpls_shim_hdr *hdr; 44*e3e4712eSRoopa Prabhu struct net_device *out_dev; 45*e3e4712eSRoopa Prabhu unsigned int hh_len; 46*e3e4712eSRoopa Prabhu unsigned int new_header_size; 47*e3e4712eSRoopa Prabhu unsigned int mtu; 48*e3e4712eSRoopa Prabhu struct dst_entry *dst = skb_dst(skb); 49*e3e4712eSRoopa Prabhu struct rtable *rt = NULL; 50*e3e4712eSRoopa Prabhu struct rt6_info *rt6 = NULL; 51*e3e4712eSRoopa Prabhu struct lwtunnel_state *lwtstate = NULL; 52*e3e4712eSRoopa Prabhu int err = 0; 53*e3e4712eSRoopa Prabhu bool bos; 54*e3e4712eSRoopa Prabhu int i; 55*e3e4712eSRoopa Prabhu unsigned int ttl; 56*e3e4712eSRoopa Prabhu 57*e3e4712eSRoopa Prabhu /* Obtain the ttl */ 58*e3e4712eSRoopa Prabhu if (skb->protocol == htons(ETH_P_IP)) { 59*e3e4712eSRoopa Prabhu ttl = ip_hdr(skb)->ttl; 60*e3e4712eSRoopa Prabhu rt = (struct rtable *)dst; 61*e3e4712eSRoopa Prabhu lwtstate = rt->rt_lwtstate; 62*e3e4712eSRoopa Prabhu } else if (skb->protocol == htons(ETH_P_IPV6)) { 63*e3e4712eSRoopa Prabhu ttl = ipv6_hdr(skb)->hop_limit; 64*e3e4712eSRoopa Prabhu rt6 = (struct rt6_info *)dst; 65*e3e4712eSRoopa Prabhu lwtstate = rt6->rt6i_lwtstate; 66*e3e4712eSRoopa Prabhu } else { 67*e3e4712eSRoopa Prabhu goto drop; 68*e3e4712eSRoopa Prabhu } 69*e3e4712eSRoopa Prabhu 70*e3e4712eSRoopa Prabhu skb_orphan(skb); 71*e3e4712eSRoopa Prabhu 72*e3e4712eSRoopa Prabhu /* Find the output device */ 73*e3e4712eSRoopa Prabhu out_dev = rcu_dereference(dst->dev); 74*e3e4712eSRoopa Prabhu if (!mpls_output_possible(out_dev) || 75*e3e4712eSRoopa Prabhu !lwtstate || skb_warn_if_lro(skb)) 76*e3e4712eSRoopa Prabhu goto drop; 77*e3e4712eSRoopa Prabhu 78*e3e4712eSRoopa Prabhu skb_forward_csum(skb); 79*e3e4712eSRoopa Prabhu 80*e3e4712eSRoopa Prabhu tun_encap_info = mpls_lwtunnel_encap(lwtstate); 81*e3e4712eSRoopa Prabhu 82*e3e4712eSRoopa Prabhu /* Verify the destination can hold the packet */ 83*e3e4712eSRoopa Prabhu new_header_size = mpls_encap_size(tun_encap_info); 84*e3e4712eSRoopa Prabhu mtu = mpls_dev_mtu(out_dev); 85*e3e4712eSRoopa Prabhu if (mpls_pkt_too_big(skb, mtu - new_header_size)) 86*e3e4712eSRoopa Prabhu goto drop; 87*e3e4712eSRoopa Prabhu 88*e3e4712eSRoopa Prabhu hh_len = LL_RESERVED_SPACE(out_dev); 89*e3e4712eSRoopa Prabhu if (!out_dev->header_ops) 90*e3e4712eSRoopa Prabhu hh_len = 0; 91*e3e4712eSRoopa Prabhu 92*e3e4712eSRoopa Prabhu /* Ensure there is enough space for the headers in the skb */ 93*e3e4712eSRoopa Prabhu if (skb_cow(skb, hh_len + new_header_size)) 94*e3e4712eSRoopa Prabhu goto drop; 95*e3e4712eSRoopa Prabhu 96*e3e4712eSRoopa Prabhu skb_push(skb, new_header_size); 97*e3e4712eSRoopa Prabhu skb_reset_network_header(skb); 98*e3e4712eSRoopa Prabhu 99*e3e4712eSRoopa Prabhu skb->dev = out_dev; 100*e3e4712eSRoopa Prabhu skb->protocol = htons(ETH_P_MPLS_UC); 101*e3e4712eSRoopa Prabhu 102*e3e4712eSRoopa Prabhu /* Push the new labels */ 103*e3e4712eSRoopa Prabhu hdr = mpls_hdr(skb); 104*e3e4712eSRoopa Prabhu bos = true; 105*e3e4712eSRoopa Prabhu for (i = tun_encap_info->labels - 1; i >= 0; i--) { 106*e3e4712eSRoopa Prabhu hdr[i] = mpls_entry_encode(tun_encap_info->label[i], 107*e3e4712eSRoopa Prabhu ttl, 0, bos); 108*e3e4712eSRoopa Prabhu bos = false; 109*e3e4712eSRoopa Prabhu } 110*e3e4712eSRoopa Prabhu 111*e3e4712eSRoopa Prabhu if (rt) 112*e3e4712eSRoopa Prabhu err = neigh_xmit(NEIGH_ARP_TABLE, out_dev, &rt->rt_gateway, 113*e3e4712eSRoopa Prabhu skb); 114*e3e4712eSRoopa Prabhu else if (rt6) 115*e3e4712eSRoopa Prabhu err = neigh_xmit(NEIGH_ND_TABLE, out_dev, &rt6->rt6i_gateway, 116*e3e4712eSRoopa Prabhu skb); 117*e3e4712eSRoopa Prabhu if (err) 118*e3e4712eSRoopa Prabhu net_dbg_ratelimited("%s: packet transmission failed: %d\n", 119*e3e4712eSRoopa Prabhu __func__, err); 120*e3e4712eSRoopa Prabhu 121*e3e4712eSRoopa Prabhu return 0; 122*e3e4712eSRoopa Prabhu 123*e3e4712eSRoopa Prabhu drop: 124*e3e4712eSRoopa Prabhu kfree_skb(skb); 125*e3e4712eSRoopa Prabhu return -EINVAL; 126*e3e4712eSRoopa Prabhu } 127*e3e4712eSRoopa Prabhu 128*e3e4712eSRoopa Prabhu static int mpls_build_state(struct net_device *dev, struct nlattr *nla, 129*e3e4712eSRoopa Prabhu struct lwtunnel_state **ts) 130*e3e4712eSRoopa Prabhu { 131*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *tun_encap_info; 132*e3e4712eSRoopa Prabhu struct nlattr *tb[MPLS_IPTUNNEL_MAX + 1]; 133*e3e4712eSRoopa Prabhu struct lwtunnel_state *newts; 134*e3e4712eSRoopa Prabhu int tun_encap_info_len; 135*e3e4712eSRoopa Prabhu int ret; 136*e3e4712eSRoopa Prabhu 137*e3e4712eSRoopa Prabhu ret = nla_parse_nested(tb, MPLS_IPTUNNEL_MAX, nla, 138*e3e4712eSRoopa Prabhu mpls_iptunnel_policy); 139*e3e4712eSRoopa Prabhu if (ret < 0) 140*e3e4712eSRoopa Prabhu return ret; 141*e3e4712eSRoopa Prabhu 142*e3e4712eSRoopa Prabhu if (!tb[MPLS_IPTUNNEL_DST]) 143*e3e4712eSRoopa Prabhu return -EINVAL; 144*e3e4712eSRoopa Prabhu 145*e3e4712eSRoopa Prabhu tun_encap_info_len = sizeof(*tun_encap_info); 146*e3e4712eSRoopa Prabhu 147*e3e4712eSRoopa Prabhu newts = lwtunnel_state_alloc(tun_encap_info_len); 148*e3e4712eSRoopa Prabhu if (!newts) 149*e3e4712eSRoopa Prabhu return -ENOMEM; 150*e3e4712eSRoopa Prabhu 151*e3e4712eSRoopa Prabhu newts->len = tun_encap_info_len; 152*e3e4712eSRoopa Prabhu tun_encap_info = mpls_lwtunnel_encap(newts); 153*e3e4712eSRoopa Prabhu ret = nla_get_labels(tb[MPLS_IPTUNNEL_DST], MAX_NEW_LABELS, 154*e3e4712eSRoopa Prabhu &tun_encap_info->labels, tun_encap_info->label); 155*e3e4712eSRoopa Prabhu if (ret) 156*e3e4712eSRoopa Prabhu goto errout; 157*e3e4712eSRoopa Prabhu newts->type = LWTUNNEL_ENCAP_MPLS; 158*e3e4712eSRoopa Prabhu newts->flags |= LWTUNNEL_STATE_OUTPUT_REDIRECT; 159*e3e4712eSRoopa Prabhu 160*e3e4712eSRoopa Prabhu *ts = newts; 161*e3e4712eSRoopa Prabhu 162*e3e4712eSRoopa Prabhu return 0; 163*e3e4712eSRoopa Prabhu 164*e3e4712eSRoopa Prabhu errout: 165*e3e4712eSRoopa Prabhu kfree(newts); 166*e3e4712eSRoopa Prabhu *ts = NULL; 167*e3e4712eSRoopa Prabhu 168*e3e4712eSRoopa Prabhu return ret; 169*e3e4712eSRoopa Prabhu } 170*e3e4712eSRoopa Prabhu 171*e3e4712eSRoopa Prabhu static int mpls_fill_encap_info(struct sk_buff *skb, 172*e3e4712eSRoopa Prabhu struct lwtunnel_state *lwtstate) 173*e3e4712eSRoopa Prabhu { 174*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *tun_encap_info; 175*e3e4712eSRoopa Prabhu 176*e3e4712eSRoopa Prabhu tun_encap_info = mpls_lwtunnel_encap(lwtstate); 177*e3e4712eSRoopa Prabhu 178*e3e4712eSRoopa Prabhu if (nla_put_labels(skb, MPLS_IPTUNNEL_DST, tun_encap_info->labels, 179*e3e4712eSRoopa Prabhu tun_encap_info->label)) 180*e3e4712eSRoopa Prabhu goto nla_put_failure; 181*e3e4712eSRoopa Prabhu 182*e3e4712eSRoopa Prabhu return 0; 183*e3e4712eSRoopa Prabhu 184*e3e4712eSRoopa Prabhu nla_put_failure: 185*e3e4712eSRoopa Prabhu return -EMSGSIZE; 186*e3e4712eSRoopa Prabhu } 187*e3e4712eSRoopa Prabhu 188*e3e4712eSRoopa Prabhu static int mpls_encap_nlsize(struct lwtunnel_state *lwtstate) 189*e3e4712eSRoopa Prabhu { 190*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *tun_encap_info; 191*e3e4712eSRoopa Prabhu 192*e3e4712eSRoopa Prabhu tun_encap_info = mpls_lwtunnel_encap(lwtstate); 193*e3e4712eSRoopa Prabhu 194*e3e4712eSRoopa Prabhu return nla_total_size(tun_encap_info->labels * 4); 195*e3e4712eSRoopa Prabhu } 196*e3e4712eSRoopa Prabhu 197*e3e4712eSRoopa Prabhu static int mpls_encap_cmp(struct lwtunnel_state *a, struct lwtunnel_state *b) 198*e3e4712eSRoopa Prabhu { 199*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *a_hdr = mpls_lwtunnel_encap(a); 200*e3e4712eSRoopa Prabhu struct mpls_iptunnel_encap *b_hdr = mpls_lwtunnel_encap(b); 201*e3e4712eSRoopa Prabhu int l; 202*e3e4712eSRoopa Prabhu 203*e3e4712eSRoopa Prabhu if (a_hdr->labels != b_hdr->labels) 204*e3e4712eSRoopa Prabhu return 1; 205*e3e4712eSRoopa Prabhu 206*e3e4712eSRoopa Prabhu for (l = 0; l < MAX_NEW_LABELS; l++) 207*e3e4712eSRoopa Prabhu if (a_hdr->label[l] != b_hdr->label[l]) 208*e3e4712eSRoopa Prabhu return 1; 209*e3e4712eSRoopa Prabhu return 0; 210*e3e4712eSRoopa Prabhu } 211*e3e4712eSRoopa Prabhu 212*e3e4712eSRoopa Prabhu static const struct lwtunnel_encap_ops mpls_iptun_ops = { 213*e3e4712eSRoopa Prabhu .build_state = mpls_build_state, 214*e3e4712eSRoopa Prabhu .output = mpls_output, 215*e3e4712eSRoopa Prabhu .fill_encap = mpls_fill_encap_info, 216*e3e4712eSRoopa Prabhu .get_encap_size = mpls_encap_nlsize, 217*e3e4712eSRoopa Prabhu .cmp_encap = mpls_encap_cmp, 218*e3e4712eSRoopa Prabhu }; 219*e3e4712eSRoopa Prabhu 220*e3e4712eSRoopa Prabhu static int __init mpls_iptunnel_init(void) 221*e3e4712eSRoopa Prabhu { 222*e3e4712eSRoopa Prabhu return lwtunnel_encap_add_ops(&mpls_iptun_ops, LWTUNNEL_ENCAP_MPLS); 223*e3e4712eSRoopa Prabhu } 224*e3e4712eSRoopa Prabhu module_init(mpls_iptunnel_init); 225*e3e4712eSRoopa Prabhu 226*e3e4712eSRoopa Prabhu static void __exit mpls_iptunnel_exit(void) 227*e3e4712eSRoopa Prabhu { 228*e3e4712eSRoopa Prabhu lwtunnel_encap_del_ops(&mpls_iptun_ops, LWTUNNEL_ENCAP_MPLS); 229*e3e4712eSRoopa Prabhu } 230*e3e4712eSRoopa Prabhu module_exit(mpls_iptunnel_exit); 231*e3e4712eSRoopa Prabhu 232*e3e4712eSRoopa Prabhu MODULE_DESCRIPTION("MultiProtocol Label Switching IP Tunnels"); 233*e3e4712eSRoopa Prabhu MODULE_LICENSE("GPL v2"); 234