1eda7acddSPeter Krystad // SPDX-License-Identifier: GPL-2.0 2eda7acddSPeter Krystad /* Multipath TCP 3eda7acddSPeter Krystad * 4eda7acddSPeter Krystad * Copyright (c) 2017 - 2019, Intel Corporation. 5eda7acddSPeter Krystad */ 6eda7acddSPeter Krystad 7c85adcedSGeliang Tang #define pr_fmt(fmt) "MPTCP: " fmt 8c85adcedSGeliang Tang 9eda7acddSPeter Krystad #include <linux/kernel.h> 10a24d22b2SEric Biggers #include <crypto/sha2.h> 11eda7acddSPeter Krystad #include <net/tcp.h> 12eda7acddSPeter Krystad #include <net/mptcp.h> 13eda7acddSPeter Krystad #include "protocol.h" 14a877de06SGeliang Tang #include "mib.h" 15eda7acddSPeter Krystad 16ed66bfb4SGeliang Tang #include <trace/events/mptcp.h> 17ed66bfb4SGeliang Tang 1865492c5aSPaolo Abeni static bool mptcp_cap_flag_sha256(u8 flags) 1965492c5aSPaolo Abeni { 2065492c5aSPaolo Abeni return (flags & MPTCP_CAP_FLAG_MASK) == MPTCP_CAP_HMAC_SHA256; 2165492c5aSPaolo Abeni } 2265492c5aSPaolo Abeni 23cfde141eSPaolo Abeni static void mptcp_parse_option(const struct sk_buff *skb, 24cfde141eSPaolo Abeni const unsigned char *ptr, int opsize, 25cfde141eSPaolo Abeni struct mptcp_options_received *mp_opt) 26eda7acddSPeter Krystad { 27eda7acddSPeter Krystad u8 subtype = *ptr >> 4; 28648ef4b8SMat Martineau int expected_opsize; 29eda7acddSPeter Krystad u8 version; 30eda7acddSPeter Krystad u8 flags; 315c4a824dSGeliang Tang u8 i; 32eda7acddSPeter Krystad 33eda7acddSPeter Krystad switch (subtype) { 34eda7acddSPeter Krystad case MPTCPOPT_MP_CAPABLE: 35cc7972eaSChristoph Paasch /* strict size checking */ 36cc7972eaSChristoph Paasch if (!(TCP_SKB_CB(skb)->tcp_flags & TCPHDR_SYN)) { 37cc7972eaSChristoph Paasch if (skb->len > tcp_hdr(skb)->doff << 2) 38cc7972eaSChristoph Paasch expected_opsize = TCPOLEN_MPTCP_MPC_ACK_DATA; 39cc7972eaSChristoph Paasch else 40cc7972eaSChristoph Paasch expected_opsize = TCPOLEN_MPTCP_MPC_ACK; 41cc7972eaSChristoph Paasch } else { 42cc7972eaSChristoph Paasch if (TCP_SKB_CB(skb)->tcp_flags & TCPHDR_ACK) 43cc7972eaSChristoph Paasch expected_opsize = TCPOLEN_MPTCP_MPC_SYNACK; 44cc7972eaSChristoph Paasch else 45cc7972eaSChristoph Paasch expected_opsize = TCPOLEN_MPTCP_MPC_SYN; 46cc7972eaSChristoph Paasch } 47208e8f66SGeliang Tang 48208e8f66SGeliang Tang /* Cfr RFC 8684 Section 3.3.0: 49208e8f66SGeliang Tang * If a checksum is present but its use had 50208e8f66SGeliang Tang * not been negotiated in the MP_CAPABLE handshake, the receiver MUST 51208e8f66SGeliang Tang * close the subflow with a RST, as it is not behaving as negotiated. 52208e8f66SGeliang Tang * If a checksum is not present when its use has been negotiated, the 53208e8f66SGeliang Tang * receiver MUST close the subflow with a RST, as it is considered 54208e8f66SGeliang Tang * broken 55208e8f66SGeliang Tang * We parse even option with mismatching csum presence, so that 56208e8f66SGeliang Tang * later in subflow_data_ready we can trigger the reset. 57208e8f66SGeliang Tang */ 58208e8f66SGeliang Tang if (opsize != expected_opsize && 59208e8f66SGeliang Tang (expected_opsize != TCPOLEN_MPTCP_MPC_ACK_DATA || 60208e8f66SGeliang Tang opsize != TCPOLEN_MPTCP_MPC_ACK_DATA_CSUM)) 61eda7acddSPeter Krystad break; 62eda7acddSPeter Krystad 63cc7972eaSChristoph Paasch /* try to be gentle vs future versions on the initial syn */ 64eda7acddSPeter Krystad version = *ptr++ & MPTCP_VERSION_MASK; 65cc7972eaSChristoph Paasch if (opsize != TCPOLEN_MPTCP_MPC_SYN) { 66eda7acddSPeter Krystad if (version != MPTCP_SUPPORTED_VERSION) 67eda7acddSPeter Krystad break; 68cc7972eaSChristoph Paasch } else if (version < MPTCP_SUPPORTED_VERSION) { 69cc7972eaSChristoph Paasch break; 70cc7972eaSChristoph Paasch } 71eda7acddSPeter Krystad 72eda7acddSPeter Krystad flags = *ptr++; 7365492c5aSPaolo Abeni if (!mptcp_cap_flag_sha256(flags) || 74eda7acddSPeter Krystad (flags & MPTCP_CAP_EXTENSIBILITY)) 75eda7acddSPeter Krystad break; 76eda7acddSPeter Krystad 77eda7acddSPeter Krystad /* RFC 6824, Section 3.1: 78eda7acddSPeter Krystad * "For the Checksum Required bit (labeled "A"), if either 79eda7acddSPeter Krystad * host requires the use of checksums, checksums MUST be used. 80eda7acddSPeter Krystad * In other words, the only way for checksums not to be used 81eda7acddSPeter Krystad * is if both hosts in their SYNs set A=0." 82eda7acddSPeter Krystad */ 83eda7acddSPeter Krystad if (flags & MPTCP_CAP_CHECKSUM_REQD) 8406251181SGeliang Tang mp_opt->csum_reqd = 1; 85eda7acddSPeter Krystad 86df377be3SGeliang Tang if (flags & MPTCP_CAP_DENY_JOIN_ID0) 87df377be3SGeliang Tang mp_opt->deny_join_id0 = 1; 88df377be3SGeliang Tang 89eda7acddSPeter Krystad mp_opt->mp_capable = 1; 90cc7972eaSChristoph Paasch if (opsize >= TCPOLEN_MPTCP_MPC_SYNACK) { 91eda7acddSPeter Krystad mp_opt->sndr_key = get_unaligned_be64(ptr); 92eda7acddSPeter Krystad ptr += 8; 93cc7972eaSChristoph Paasch } 94cc7972eaSChristoph Paasch if (opsize >= TCPOLEN_MPTCP_MPC_ACK) { 95eda7acddSPeter Krystad mp_opt->rcvr_key = get_unaligned_be64(ptr); 96eda7acddSPeter Krystad ptr += 8; 97eda7acddSPeter Krystad } 98208e8f66SGeliang Tang if (opsize >= TCPOLEN_MPTCP_MPC_ACK_DATA) { 99cc7972eaSChristoph Paasch /* Section 3.1.: 100cc7972eaSChristoph Paasch * "the data parameters in a MP_CAPABLE are semantically 101cc7972eaSChristoph Paasch * equivalent to those in a DSS option and can be used 102cc7972eaSChristoph Paasch * interchangeably." 103cc7972eaSChristoph Paasch */ 104cc7972eaSChristoph Paasch mp_opt->dss = 1; 105cc7972eaSChristoph Paasch mp_opt->use_map = 1; 106cc7972eaSChristoph Paasch mp_opt->mpc_map = 1; 107cc7972eaSChristoph Paasch mp_opt->data_len = get_unaligned_be16(ptr); 108cc7972eaSChristoph Paasch ptr += 2; 109cc7972eaSChristoph Paasch } 110208e8f66SGeliang Tang if (opsize == TCPOLEN_MPTCP_MPC_ACK_DATA_CSUM) { 111208e8f66SGeliang Tang mp_opt->csum = (__force __sum16)get_unaligned_be16(ptr); 112208e8f66SGeliang Tang mp_opt->csum_reqd = 1; 113208e8f66SGeliang Tang ptr += 2; 114208e8f66SGeliang Tang } 115208e8f66SGeliang Tang pr_debug("MP_CAPABLE version=%x, flags=%x, optlen=%d sndr=%llu, rcvr=%llu len=%d csum=%u", 116cc7972eaSChristoph Paasch version, flags, opsize, mp_opt->sndr_key, 117208e8f66SGeliang Tang mp_opt->rcvr_key, mp_opt->data_len, mp_opt->csum); 118eda7acddSPeter Krystad break; 119eda7acddSPeter Krystad 120f296234cSPeter Krystad case MPTCPOPT_MP_JOIN: 121f296234cSPeter Krystad mp_opt->mp_join = 1; 122f296234cSPeter Krystad if (opsize == TCPOLEN_MPTCP_MPJ_SYN) { 123f296234cSPeter Krystad mp_opt->backup = *ptr++ & MPTCPOPT_BACKUP; 124f296234cSPeter Krystad mp_opt->join_id = *ptr++; 125f296234cSPeter Krystad mp_opt->token = get_unaligned_be32(ptr); 126f296234cSPeter Krystad ptr += 4; 127f296234cSPeter Krystad mp_opt->nonce = get_unaligned_be32(ptr); 128f296234cSPeter Krystad ptr += 4; 129f296234cSPeter Krystad pr_debug("MP_JOIN bkup=%u, id=%u, token=%u, nonce=%u", 130f296234cSPeter Krystad mp_opt->backup, mp_opt->join_id, 131f296234cSPeter Krystad mp_opt->token, mp_opt->nonce); 132f296234cSPeter Krystad } else if (opsize == TCPOLEN_MPTCP_MPJ_SYNACK) { 133f296234cSPeter Krystad mp_opt->backup = *ptr++ & MPTCPOPT_BACKUP; 134f296234cSPeter Krystad mp_opt->join_id = *ptr++; 135f296234cSPeter Krystad mp_opt->thmac = get_unaligned_be64(ptr); 136f296234cSPeter Krystad ptr += 8; 137f296234cSPeter Krystad mp_opt->nonce = get_unaligned_be32(ptr); 138f296234cSPeter Krystad ptr += 4; 139f296234cSPeter Krystad pr_debug("MP_JOIN bkup=%u, id=%u, thmac=%llu, nonce=%u", 140f296234cSPeter Krystad mp_opt->backup, mp_opt->join_id, 141f296234cSPeter Krystad mp_opt->thmac, mp_opt->nonce); 142f296234cSPeter Krystad } else if (opsize == TCPOLEN_MPTCP_MPJ_ACK) { 143f296234cSPeter Krystad ptr += 2; 144f296234cSPeter Krystad memcpy(mp_opt->hmac, ptr, MPTCPOPT_HMAC_LEN); 145f296234cSPeter Krystad pr_debug("MP_JOIN hmac"); 146f296234cSPeter Krystad } else { 147f296234cSPeter Krystad mp_opt->mp_join = 0; 148f296234cSPeter Krystad } 149f296234cSPeter Krystad break; 150f296234cSPeter Krystad 151eda7acddSPeter Krystad case MPTCPOPT_DSS: 152eda7acddSPeter Krystad pr_debug("DSS"); 153648ef4b8SMat Martineau ptr++; 154648ef4b8SMat Martineau 155cc7972eaSChristoph Paasch /* we must clear 'mpc_map' be able to detect MP_CAPABLE 156cc7972eaSChristoph Paasch * map vs DSS map in mptcp_incoming_options(), and reconstruct 157cc7972eaSChristoph Paasch * map info accordingly 158cc7972eaSChristoph Paasch */ 159cc7972eaSChristoph Paasch mp_opt->mpc_map = 0; 160648ef4b8SMat Martineau flags = (*ptr++) & MPTCP_DSS_FLAG_MASK; 161648ef4b8SMat Martineau mp_opt->data_fin = (flags & MPTCP_DSS_DATA_FIN) != 0; 162648ef4b8SMat Martineau mp_opt->dsn64 = (flags & MPTCP_DSS_DSN64) != 0; 163648ef4b8SMat Martineau mp_opt->use_map = (flags & MPTCP_DSS_HAS_MAP) != 0; 164648ef4b8SMat Martineau mp_opt->ack64 = (flags & MPTCP_DSS_ACK64) != 0; 165648ef4b8SMat Martineau mp_opt->use_ack = (flags & MPTCP_DSS_HAS_ACK); 166648ef4b8SMat Martineau 167648ef4b8SMat Martineau pr_debug("data_fin=%d dsn64=%d use_map=%d ack64=%d use_ack=%d", 168648ef4b8SMat Martineau mp_opt->data_fin, mp_opt->dsn64, 169648ef4b8SMat Martineau mp_opt->use_map, mp_opt->ack64, 170648ef4b8SMat Martineau mp_opt->use_ack); 171648ef4b8SMat Martineau 172648ef4b8SMat Martineau expected_opsize = TCPOLEN_MPTCP_DSS_BASE; 173648ef4b8SMat Martineau 174648ef4b8SMat Martineau if (mp_opt->use_ack) { 175648ef4b8SMat Martineau if (mp_opt->ack64) 176648ef4b8SMat Martineau expected_opsize += TCPOLEN_MPTCP_DSS_ACK64; 177648ef4b8SMat Martineau else 178648ef4b8SMat Martineau expected_opsize += TCPOLEN_MPTCP_DSS_ACK32; 179648ef4b8SMat Martineau } 180648ef4b8SMat Martineau 181648ef4b8SMat Martineau if (mp_opt->use_map) { 182648ef4b8SMat Martineau if (mp_opt->dsn64) 183648ef4b8SMat Martineau expected_opsize += TCPOLEN_MPTCP_DSS_MAP64; 184648ef4b8SMat Martineau else 185648ef4b8SMat Martineau expected_opsize += TCPOLEN_MPTCP_DSS_MAP32; 186648ef4b8SMat Martineau } 187648ef4b8SMat Martineau 188390b95a5SGeliang Tang /* Always parse any csum presence combination, we will enforce 189390b95a5SGeliang Tang * RFC 8684 Section 3.3.0 checks later in subflow_data_ready 190648ef4b8SMat Martineau */ 191648ef4b8SMat Martineau if (opsize != expected_opsize && 192648ef4b8SMat Martineau opsize != expected_opsize + TCPOLEN_MPTCP_DSS_CHECKSUM) 193648ef4b8SMat Martineau break; 194648ef4b8SMat Martineau 195eda7acddSPeter Krystad mp_opt->dss = 1; 196648ef4b8SMat Martineau 197648ef4b8SMat Martineau if (mp_opt->use_ack) { 198648ef4b8SMat Martineau if (mp_opt->ack64) { 199648ef4b8SMat Martineau mp_opt->data_ack = get_unaligned_be64(ptr); 200648ef4b8SMat Martineau ptr += 8; 201648ef4b8SMat Martineau } else { 202648ef4b8SMat Martineau mp_opt->data_ack = get_unaligned_be32(ptr); 203648ef4b8SMat Martineau ptr += 4; 204648ef4b8SMat Martineau } 205648ef4b8SMat Martineau 206648ef4b8SMat Martineau pr_debug("data_ack=%llu", mp_opt->data_ack); 207648ef4b8SMat Martineau } 208648ef4b8SMat Martineau 209648ef4b8SMat Martineau if (mp_opt->use_map) { 210648ef4b8SMat Martineau if (mp_opt->dsn64) { 211648ef4b8SMat Martineau mp_opt->data_seq = get_unaligned_be64(ptr); 212648ef4b8SMat Martineau ptr += 8; 213648ef4b8SMat Martineau } else { 214648ef4b8SMat Martineau mp_opt->data_seq = get_unaligned_be32(ptr); 215648ef4b8SMat Martineau ptr += 4; 216648ef4b8SMat Martineau } 217648ef4b8SMat Martineau 218648ef4b8SMat Martineau mp_opt->subflow_seq = get_unaligned_be32(ptr); 219648ef4b8SMat Martineau ptr += 4; 220648ef4b8SMat Martineau 221648ef4b8SMat Martineau mp_opt->data_len = get_unaligned_be16(ptr); 222648ef4b8SMat Martineau ptr += 2; 223648ef4b8SMat Martineau 224390b95a5SGeliang Tang if (opsize == expected_opsize + TCPOLEN_MPTCP_DSS_CHECKSUM) { 225390b95a5SGeliang Tang mp_opt->csum_reqd = 1; 226390b95a5SGeliang Tang mp_opt->csum = (__force __sum16)get_unaligned_be16(ptr); 227390b95a5SGeliang Tang ptr += 2; 228390b95a5SGeliang Tang } 229390b95a5SGeliang Tang 230390b95a5SGeliang Tang pr_debug("data_seq=%llu subflow_seq=%u data_len=%u csum=%d:%u", 231648ef4b8SMat Martineau mp_opt->data_seq, mp_opt->subflow_seq, 232390b95a5SGeliang Tang mp_opt->data_len, mp_opt->csum_reqd, mp_opt->csum); 233648ef4b8SMat Martineau } 234648ef4b8SMat Martineau 235eda7acddSPeter Krystad break; 236eda7acddSPeter Krystad 2373df523abSPeter Krystad case MPTCPOPT_ADD_ADDR: 2383df523abSPeter Krystad mp_opt->echo = (*ptr++) & MPTCP_ADDR_ECHO; 2393df523abSPeter Krystad if (!mp_opt->echo) { 2403df523abSPeter Krystad if (opsize == TCPOLEN_MPTCP_ADD_ADDR || 2413df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR_PORT) 2421b1a6ef5SGeliang Tang mp_opt->addr.family = AF_INET; 2433df523abSPeter Krystad #if IS_ENABLED(CONFIG_MPTCP_IPV6) 2443df523abSPeter Krystad else if (opsize == TCPOLEN_MPTCP_ADD_ADDR6 || 2453df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR6_PORT) 2461b1a6ef5SGeliang Tang mp_opt->addr.family = AF_INET6; 2473df523abSPeter Krystad #endif 2483df523abSPeter Krystad else 2493df523abSPeter Krystad break; 2503df523abSPeter Krystad } else { 2513df523abSPeter Krystad if (opsize == TCPOLEN_MPTCP_ADD_ADDR_BASE || 2523df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR_BASE_PORT) 2531b1a6ef5SGeliang Tang mp_opt->addr.family = AF_INET; 2543df523abSPeter Krystad #if IS_ENABLED(CONFIG_MPTCP_IPV6) 2553df523abSPeter Krystad else if (opsize == TCPOLEN_MPTCP_ADD_ADDR6_BASE || 2563df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR6_BASE_PORT) 2571b1a6ef5SGeliang Tang mp_opt->addr.family = AF_INET6; 2583df523abSPeter Krystad #endif 2593df523abSPeter Krystad else 2603df523abSPeter Krystad break; 2613df523abSPeter Krystad } 2623df523abSPeter Krystad 2633df523abSPeter Krystad mp_opt->add_addr = 1; 264f7dafee1SGeliang Tang mp_opt->addr.id = *ptr++; 2651b1a6ef5SGeliang Tang if (mp_opt->addr.family == AF_INET) { 266f7dafee1SGeliang Tang memcpy((u8 *)&mp_opt->addr.addr.s_addr, (u8 *)ptr, 4); 2673df523abSPeter Krystad ptr += 4; 2683df523abSPeter Krystad if (opsize == TCPOLEN_MPTCP_ADD_ADDR_PORT || 2693df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR_BASE_PORT) { 270f7dafee1SGeliang Tang mp_opt->addr.port = htons(get_unaligned_be16(ptr)); 2713df523abSPeter Krystad ptr += 2; 2723df523abSPeter Krystad } 2733df523abSPeter Krystad } 2743df523abSPeter Krystad #if IS_ENABLED(CONFIG_MPTCP_IPV6) 2753df523abSPeter Krystad else { 276f7dafee1SGeliang Tang memcpy(mp_opt->addr.addr6.s6_addr, (u8 *)ptr, 16); 2773df523abSPeter Krystad ptr += 16; 2783df523abSPeter Krystad if (opsize == TCPOLEN_MPTCP_ADD_ADDR6_PORT || 2793df523abSPeter Krystad opsize == TCPOLEN_MPTCP_ADD_ADDR6_BASE_PORT) { 280f7dafee1SGeliang Tang mp_opt->addr.port = htons(get_unaligned_be16(ptr)); 2813df523abSPeter Krystad ptr += 2; 2823df523abSPeter Krystad } 2833df523abSPeter Krystad } 2843df523abSPeter Krystad #endif 2853df523abSPeter Krystad if (!mp_opt->echo) { 2863df523abSPeter Krystad mp_opt->ahmac = get_unaligned_be64(ptr); 2873df523abSPeter Krystad ptr += 8; 2883df523abSPeter Krystad } 28990a4aea8SGeliang Tang pr_debug("ADD_ADDR%s: id=%d, ahmac=%llu, echo=%d, port=%d", 2901b1a6ef5SGeliang Tang (mp_opt->addr.family == AF_INET6) ? "6" : "", 291f7dafee1SGeliang Tang mp_opt->addr.id, mp_opt->ahmac, mp_opt->echo, ntohs(mp_opt->addr.port)); 2923df523abSPeter Krystad break; 2933df523abSPeter Krystad 2943df523abSPeter Krystad case MPTCPOPT_RM_ADDR: 2955c4a824dSGeliang Tang if (opsize < TCPOLEN_MPTCP_RM_ADDR_BASE + 1 || 2965c4a824dSGeliang Tang opsize > TCPOLEN_MPTCP_RM_ADDR_BASE + MPTCP_RM_IDS_MAX) 2973df523abSPeter Krystad break; 2983df523abSPeter Krystad 2998e60eed6SGeliang Tang ptr++; 3008e60eed6SGeliang Tang 3013df523abSPeter Krystad mp_opt->rm_addr = 1; 3025c4a824dSGeliang Tang mp_opt->rm_list.nr = opsize - TCPOLEN_MPTCP_RM_ADDR_BASE; 3035c4a824dSGeliang Tang for (i = 0; i < mp_opt->rm_list.nr; i++) 3045c4a824dSGeliang Tang mp_opt->rm_list.ids[i] = *ptr++; 3055c4a824dSGeliang Tang pr_debug("RM_ADDR: rm_list_nr=%d", mp_opt->rm_list.nr); 3063df523abSPeter Krystad break; 3073df523abSPeter Krystad 30840453a5cSGeliang Tang case MPTCPOPT_MP_PRIO: 30940453a5cSGeliang Tang if (opsize != TCPOLEN_MPTCP_PRIO) 31040453a5cSGeliang Tang break; 31140453a5cSGeliang Tang 31240453a5cSGeliang Tang mp_opt->mp_prio = 1; 31340453a5cSGeliang Tang mp_opt->backup = *ptr++ & MPTCP_PRIO_BKUP; 31440453a5cSGeliang Tang pr_debug("MP_PRIO: prio=%d", mp_opt->backup); 31540453a5cSGeliang Tang break; 31640453a5cSGeliang Tang 31750c504a2SFlorian Westphal case MPTCPOPT_MP_FASTCLOSE: 31850c504a2SFlorian Westphal if (opsize != TCPOLEN_MPTCP_FASTCLOSE) 31950c504a2SFlorian Westphal break; 32050c504a2SFlorian Westphal 32150c504a2SFlorian Westphal ptr += 2; 32250c504a2SFlorian Westphal mp_opt->rcvr_key = get_unaligned_be64(ptr); 32350c504a2SFlorian Westphal ptr += 8; 32450c504a2SFlorian Westphal mp_opt->fastclose = 1; 32550c504a2SFlorian Westphal break; 32650c504a2SFlorian Westphal 327dc87efdbSFlorian Westphal case MPTCPOPT_RST: 328dc87efdbSFlorian Westphal if (opsize != TCPOLEN_MPTCP_RST) 329dc87efdbSFlorian Westphal break; 330dc87efdbSFlorian Westphal 331dc87efdbSFlorian Westphal if (!(TCP_SKB_CB(skb)->tcp_flags & TCPHDR_RST)) 332dc87efdbSFlorian Westphal break; 333dc87efdbSFlorian Westphal mp_opt->reset = 1; 334dc87efdbSFlorian Westphal flags = *ptr++; 335dc87efdbSFlorian Westphal mp_opt->reset_transient = flags & MPTCP_RST_TRANSIENT; 336dc87efdbSFlorian Westphal mp_opt->reset_reason = *ptr; 337dc87efdbSFlorian Westphal break; 338dc87efdbSFlorian Westphal 339eda7acddSPeter Krystad default: 340eda7acddSPeter Krystad break; 341eda7acddSPeter Krystad } 342eda7acddSPeter Krystad } 343eda7acddSPeter Krystad 344c863225bSGeliang Tang void mptcp_get_options(const struct sock *sk, 345c863225bSGeliang Tang const struct sk_buff *skb, 346cfde141eSPaolo Abeni struct mptcp_options_received *mp_opt) 347cec37a6eSPeter Krystad { 34806251181SGeliang Tang struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 34906251181SGeliang Tang struct mptcp_sock *msk = mptcp_sk(subflow->conn); 350cec37a6eSPeter Krystad const struct tcphdr *th = tcp_hdr(skb); 351cfde141eSPaolo Abeni const unsigned char *ptr; 352cfde141eSPaolo Abeni int length; 353cec37a6eSPeter Krystad 354cfde141eSPaolo Abeni /* initialize option status */ 355cfde141eSPaolo Abeni mp_opt->mp_capable = 0; 356cfde141eSPaolo Abeni mp_opt->mp_join = 0; 357cfde141eSPaolo Abeni mp_opt->add_addr = 0; 358fe2d9b1aSGeliang Tang mp_opt->ahmac = 0; 35950c504a2SFlorian Westphal mp_opt->fastclose = 0; 360f7dafee1SGeliang Tang mp_opt->addr.port = 0; 361cfde141eSPaolo Abeni mp_opt->rm_addr = 0; 362cfde141eSPaolo Abeni mp_opt->dss = 0; 36340453a5cSGeliang Tang mp_opt->mp_prio = 0; 364dc87efdbSFlorian Westphal mp_opt->reset = 0; 36506251181SGeliang Tang mp_opt->csum_reqd = READ_ONCE(msk->csum_enabled); 366df377be3SGeliang Tang mp_opt->deny_join_id0 = 0; 367cfde141eSPaolo Abeni 368cfde141eSPaolo Abeni length = (th->doff * 4) - sizeof(struct tcphdr); 369cec37a6eSPeter Krystad ptr = (const unsigned char *)(th + 1); 370cec37a6eSPeter Krystad 371cec37a6eSPeter Krystad while (length > 0) { 372cec37a6eSPeter Krystad int opcode = *ptr++; 373cec37a6eSPeter Krystad int opsize; 374cec37a6eSPeter Krystad 375cec37a6eSPeter Krystad switch (opcode) { 376cec37a6eSPeter Krystad case TCPOPT_EOL: 377cec37a6eSPeter Krystad return; 378cec37a6eSPeter Krystad case TCPOPT_NOP: /* Ref: RFC 793 section 3.1 */ 379cec37a6eSPeter Krystad length--; 380cec37a6eSPeter Krystad continue; 381cec37a6eSPeter Krystad default: 38207718be2SMaxim Mikityanskiy if (length < 2) 38307718be2SMaxim Mikityanskiy return; 384cec37a6eSPeter Krystad opsize = *ptr++; 385cec37a6eSPeter Krystad if (opsize < 2) /* "silly options" */ 386cec37a6eSPeter Krystad return; 387cec37a6eSPeter Krystad if (opsize > length) 388cec37a6eSPeter Krystad return; /* don't parse partial options */ 389cec37a6eSPeter Krystad if (opcode == TCPOPT_MPTCP) 390cfde141eSPaolo Abeni mptcp_parse_option(skb, ptr, opsize, mp_opt); 391cec37a6eSPeter Krystad ptr += opsize - 2; 392cec37a6eSPeter Krystad length -= opsize; 393cec37a6eSPeter Krystad } 394cec37a6eSPeter Krystad } 395cec37a6eSPeter Krystad } 396cec37a6eSPeter Krystad 397cc7972eaSChristoph Paasch bool mptcp_syn_options(struct sock *sk, const struct sk_buff *skb, 398cc7972eaSChristoph Paasch unsigned int *size, struct mptcp_out_options *opts) 399cec37a6eSPeter Krystad { 400cec37a6eSPeter Krystad struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 401cec37a6eSPeter Krystad 402cc7972eaSChristoph Paasch /* we will use snd_isn to detect first pkt [re]transmission 403cc7972eaSChristoph Paasch * in mptcp_established_options_mp() 404cc7972eaSChristoph Paasch */ 405cc7972eaSChristoph Paasch subflow->snd_isn = TCP_SKB_CB(skb)->end_seq; 406cec37a6eSPeter Krystad if (subflow->request_mptcp) { 407cec37a6eSPeter Krystad opts->suboptions = OPTION_MPTCP_MPC_SYN; 40806fe1719SGeliang Tang opts->csum_reqd = mptcp_is_checksum_enabled(sock_net(sk)); 409bab6b88eSGeliang Tang opts->allow_join_id0 = mptcp_allow_join_id0(sock_net(sk)); 410cec37a6eSPeter Krystad *size = TCPOLEN_MPTCP_MPC_SYN; 411cec37a6eSPeter Krystad return true; 412ec3edaa7SPeter Krystad } else if (subflow->request_join) { 413ec3edaa7SPeter Krystad pr_debug("remote_token=%u, nonce=%u", subflow->remote_token, 414ec3edaa7SPeter Krystad subflow->local_nonce); 415ec3edaa7SPeter Krystad opts->suboptions = OPTION_MPTCP_MPJ_SYN; 416ec3edaa7SPeter Krystad opts->join_id = subflow->local_id; 417ec3edaa7SPeter Krystad opts->token = subflow->remote_token; 418ec3edaa7SPeter Krystad opts->nonce = subflow->local_nonce; 419ec3edaa7SPeter Krystad opts->backup = subflow->request_bkup; 420ec3edaa7SPeter Krystad *size = TCPOLEN_MPTCP_MPJ_SYN; 421ec3edaa7SPeter Krystad return true; 422cec37a6eSPeter Krystad } 423cec37a6eSPeter Krystad return false; 424cec37a6eSPeter Krystad } 425cec37a6eSPeter Krystad 426ec3edaa7SPeter Krystad /* MP_JOIN client subflow must wait for 4th ack before sending any data: 427ec3edaa7SPeter Krystad * TCP can't schedule delack timer before the subflow is fully established. 428ec3edaa7SPeter Krystad * MPTCP uses the delack timer to do 3rd ack retransmissions 429ec3edaa7SPeter Krystad */ 430ec3edaa7SPeter Krystad static void schedule_3rdack_retransmission(struct sock *sk) 431ec3edaa7SPeter Krystad { 432ec3edaa7SPeter Krystad struct inet_connection_sock *icsk = inet_csk(sk); 433ec3edaa7SPeter Krystad struct tcp_sock *tp = tcp_sk(sk); 434ec3edaa7SPeter Krystad unsigned long timeout; 435ec3edaa7SPeter Krystad 436ec3edaa7SPeter Krystad /* reschedule with a timeout above RTT, as we must look only for drop */ 437ec3edaa7SPeter Krystad if (tp->srtt_us) 438ec3edaa7SPeter Krystad timeout = tp->srtt_us << 1; 439ec3edaa7SPeter Krystad else 440ec3edaa7SPeter Krystad timeout = TCP_TIMEOUT_INIT; 441ec3edaa7SPeter Krystad 442ec3edaa7SPeter Krystad WARN_ON_ONCE(icsk->icsk_ack.pending & ICSK_ACK_TIMER); 443ec3edaa7SPeter Krystad icsk->icsk_ack.pending |= ICSK_ACK_SCHED | ICSK_ACK_TIMER; 444ec3edaa7SPeter Krystad icsk->icsk_ack.timeout = timeout; 445ec3edaa7SPeter Krystad sk_reset_timer(sk, &icsk->icsk_delack_timer, timeout); 446ec3edaa7SPeter Krystad } 447ec3edaa7SPeter Krystad 448ec3edaa7SPeter Krystad static void clear_3rdack_retransmission(struct sock *sk) 449ec3edaa7SPeter Krystad { 450ec3edaa7SPeter Krystad struct inet_connection_sock *icsk = inet_csk(sk); 451ec3edaa7SPeter Krystad 452ec3edaa7SPeter Krystad sk_stop_timer(sk, &icsk->icsk_delack_timer); 453ec3edaa7SPeter Krystad icsk->icsk_ack.timeout = 0; 454ec3edaa7SPeter Krystad icsk->icsk_ack.ato = 0; 455ec3edaa7SPeter Krystad icsk->icsk_ack.pending &= ~(ICSK_ACK_SCHED | ICSK_ACK_TIMER); 456ec3edaa7SPeter Krystad } 457ec3edaa7SPeter Krystad 458cc7972eaSChristoph Paasch static bool mptcp_established_options_mp(struct sock *sk, struct sk_buff *skb, 459d87903b6SPaolo Abeni bool snd_data_fin_enable, 460cc7972eaSChristoph Paasch unsigned int *size, 4616d0060f6SMat Martineau unsigned int remaining, 462cec37a6eSPeter Krystad struct mptcp_out_options *opts) 463cec37a6eSPeter Krystad { 464cec37a6eSPeter Krystad struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 46506fe1719SGeliang Tang struct mptcp_sock *msk = mptcp_sk(subflow->conn); 466cc7972eaSChristoph Paasch struct mptcp_ext *mpext; 467cc7972eaSChristoph Paasch unsigned int data_len; 468c94b1f96SGeliang Tang u8 len; 469cec37a6eSPeter Krystad 470ec3edaa7SPeter Krystad /* When skb is not available, we better over-estimate the emitted 471ec3edaa7SPeter Krystad * options len. A full DSS option (28 bytes) is longer than 472ec3edaa7SPeter Krystad * TCPOLEN_MPTCP_MPC_ACK_DATA(22) or TCPOLEN_MPTCP_MPJ_ACK(24), so 473ec3edaa7SPeter Krystad * tell the caller to defer the estimate to 474ec3edaa7SPeter Krystad * mptcp_established_options_dss(), which will reserve enough space. 475cc7972eaSChristoph Paasch */ 476ec3edaa7SPeter Krystad if (!skb) 477ec3edaa7SPeter Krystad return false; 478ec3edaa7SPeter Krystad 479d87903b6SPaolo Abeni /* MPC/MPJ needed only on 3rd ack packet, DATA_FIN and TCP shutdown take precedence */ 480d87903b6SPaolo Abeni if (subflow->fully_established || snd_data_fin_enable || 481d87903b6SPaolo Abeni subflow->snd_isn != TCP_SKB_CB(skb)->seq || 482d87903b6SPaolo Abeni sk->sk_state != TCP_ESTABLISHED) 483ec3edaa7SPeter Krystad return false; 484ec3edaa7SPeter Krystad 485ec3edaa7SPeter Krystad if (subflow->mp_capable) { 486cc7972eaSChristoph Paasch mpext = mptcp_get_ext(skb); 487cc7972eaSChristoph Paasch data_len = mpext ? mpext->data_len : 0; 488cc7972eaSChristoph Paasch 489cc7972eaSChristoph Paasch /* we will check ext_copy.data_len in mptcp_write_options() to 490cc7972eaSChristoph Paasch * discriminate between TCPOLEN_MPTCP_MPC_ACK_DATA and 491cc7972eaSChristoph Paasch * TCPOLEN_MPTCP_MPC_ACK 492cc7972eaSChristoph Paasch */ 493cc7972eaSChristoph Paasch opts->ext_copy.data_len = data_len; 494cec37a6eSPeter Krystad opts->suboptions = OPTION_MPTCP_MPC_ACK; 495cec37a6eSPeter Krystad opts->sndr_key = subflow->local_key; 496cec37a6eSPeter Krystad opts->rcvr_key = subflow->remote_key; 49706fe1719SGeliang Tang opts->csum_reqd = READ_ONCE(msk->csum_enabled); 498bab6b88eSGeliang Tang opts->allow_join_id0 = mptcp_allow_join_id0(sock_net(sk)); 499cc7972eaSChristoph Paasch 500cc7972eaSChristoph Paasch /* Section 3.1. 501cc7972eaSChristoph Paasch * The MP_CAPABLE option is carried on the SYN, SYN/ACK, and ACK 502cc7972eaSChristoph Paasch * packets that start the first subflow of an MPTCP connection, 503cc7972eaSChristoph Paasch * as well as the first packet that carries data 504cc7972eaSChristoph Paasch */ 505c94b1f96SGeliang Tang if (data_len > 0) { 506c94b1f96SGeliang Tang len = TCPOLEN_MPTCP_MPC_ACK_DATA; 507c94b1f96SGeliang Tang if (opts->csum_reqd) { 508c5b39e26SGeliang Tang /* we need to propagate more info to csum the pseudo hdr */ 509c5b39e26SGeliang Tang opts->ext_copy.data_seq = mpext->data_seq; 510c5b39e26SGeliang Tang opts->ext_copy.subflow_seq = mpext->subflow_seq; 511c94b1f96SGeliang Tang opts->ext_copy.csum = mpext->csum; 512c94b1f96SGeliang Tang len += TCPOLEN_MPTCP_DSS_CHECKSUM; 513c94b1f96SGeliang Tang } 514c94b1f96SGeliang Tang *size = ALIGN(len, 4); 515c94b1f96SGeliang Tang } else { 516cec37a6eSPeter Krystad *size = TCPOLEN_MPTCP_MPC_ACK; 517c94b1f96SGeliang Tang } 518cc7972eaSChristoph Paasch 519cc7972eaSChristoph Paasch pr_debug("subflow=%p, local_key=%llu, remote_key=%llu map_len=%d", 520cc7972eaSChristoph Paasch subflow, subflow->local_key, subflow->remote_key, 521cc7972eaSChristoph Paasch data_len); 522cc7972eaSChristoph Paasch 523cec37a6eSPeter Krystad return true; 524ec3edaa7SPeter Krystad } else if (subflow->mp_join) { 525ec3edaa7SPeter Krystad opts->suboptions = OPTION_MPTCP_MPJ_ACK; 526ec3edaa7SPeter Krystad memcpy(opts->hmac, subflow->hmac, MPTCPOPT_HMAC_LEN); 527ec3edaa7SPeter Krystad *size = TCPOLEN_MPTCP_MPJ_ACK; 528ec3edaa7SPeter Krystad pr_debug("subflow=%p", subflow); 529ec3edaa7SPeter Krystad 530ec3edaa7SPeter Krystad schedule_3rdack_retransmission(sk); 531ec3edaa7SPeter Krystad return true; 532cec37a6eSPeter Krystad } 533cec37a6eSPeter Krystad return false; 534cec37a6eSPeter Krystad } 535cec37a6eSPeter Krystad 5366d0060f6SMat Martineau static void mptcp_write_data_fin(struct mptcp_subflow_context *subflow, 5379c29e361SPaolo Abeni struct sk_buff *skb, struct mptcp_ext *ext) 5386d0060f6SMat Martineau { 539017512a0SPaolo Abeni /* The write_seq value has already been incremented, so the actual 540017512a0SPaolo Abeni * sequence number for the DATA_FIN is one less. 541017512a0SPaolo Abeni */ 542017512a0SPaolo Abeni u64 data_fin_tx_seq = READ_ONCE(mptcp_sk(subflow->conn)->write_seq) - 1; 5437279da61SMat Martineau 5449c29e361SPaolo Abeni if (!ext->use_map || !skb->len) { 5456d0060f6SMat Martineau /* RFC6824 requires a DSS mapping with specific values 5466d0060f6SMat Martineau * if DATA_FIN is set but no data payload is mapped 5476d0060f6SMat Martineau */ 5486d37a0b8SMat Martineau ext->data_fin = 1; 5496d0060f6SMat Martineau ext->use_map = 1; 5506d0060f6SMat Martineau ext->dsn64 = 1; 551017512a0SPaolo Abeni ext->data_seq = data_fin_tx_seq; 5526d0060f6SMat Martineau ext->subflow_seq = 0; 5536d0060f6SMat Martineau ext->data_len = 1; 5547279da61SMat Martineau } else if (ext->data_seq + ext->data_len == data_fin_tx_seq) { 5556d37a0b8SMat Martineau /* If there's an existing DSS mapping and it is the 5566d37a0b8SMat Martineau * final mapping, DATA_FIN consumes 1 additional byte of 5576d37a0b8SMat Martineau * mapping space. 5586d0060f6SMat Martineau */ 5596d37a0b8SMat Martineau ext->data_fin = 1; 5606d0060f6SMat Martineau ext->data_len++; 5616d0060f6SMat Martineau } 5626d0060f6SMat Martineau } 5636d0060f6SMat Martineau 5646d0060f6SMat Martineau static bool mptcp_established_options_dss(struct sock *sk, struct sk_buff *skb, 565d87903b6SPaolo Abeni bool snd_data_fin_enable, 5666d0060f6SMat Martineau unsigned int *size, 5676d0060f6SMat Martineau unsigned int remaining, 5686d0060f6SMat Martineau struct mptcp_out_options *opts) 5696d0060f6SMat Martineau { 5706d0060f6SMat Martineau struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 5717279da61SMat Martineau struct mptcp_sock *msk = mptcp_sk(subflow->conn); 5726d0060f6SMat Martineau unsigned int dss_size = 0; 5736d0060f6SMat Martineau struct mptcp_ext *mpext; 5746d0060f6SMat Martineau unsigned int ack_size; 575d22f4988SChristoph Paasch bool ret = false; 576d87903b6SPaolo Abeni u64 ack_seq; 5776d0060f6SMat Martineau 578c5b39e26SGeliang Tang opts->csum_reqd = READ_ONCE(msk->csum_enabled); 5790bac966aSMat Martineau mpext = skb ? mptcp_get_ext(skb) : NULL; 5806d0060f6SMat Martineau 5817279da61SMat Martineau if (!skb || (mpext && mpext->use_map) || snd_data_fin_enable) { 582c5b39e26SGeliang Tang unsigned int map_size = TCPOLEN_MPTCP_DSS_BASE + TCPOLEN_MPTCP_DSS_MAP64; 5836d0060f6SMat Martineau 584c5b39e26SGeliang Tang if (mpext) { 585c5b39e26SGeliang Tang if (opts->csum_reqd) 586c5b39e26SGeliang Tang map_size += TCPOLEN_MPTCP_DSS_CHECKSUM; 587c5b39e26SGeliang Tang 588c5b39e26SGeliang Tang opts->ext_copy = *mpext; 589c5b39e26SGeliang Tang } 5906d0060f6SMat Martineau 5916d0060f6SMat Martineau remaining -= map_size; 5926d0060f6SMat Martineau dss_size = map_size; 5937279da61SMat Martineau if (skb && snd_data_fin_enable) 5949c29e361SPaolo Abeni mptcp_write_data_fin(subflow, skb, &opts->ext_copy); 595*1bff1e43SPaolo Abeni opts->suboptions = OPTION_MPTCP_DSS; 596d22f4988SChristoph Paasch ret = true; 597d22f4988SChristoph Paasch } 598d22f4988SChristoph Paasch 5992398e399SPaolo Abeni /* passive sockets msk will set the 'can_ack' after accept(), even 6002398e399SPaolo Abeni * if the first subflow may have the already the remote key handy 6012398e399SPaolo Abeni */ 602d22f4988SChristoph Paasch opts->ext_copy.use_ack = 0; 603dc093db5SPaolo Abeni if (!READ_ONCE(msk->can_ack)) { 604d22f4988SChristoph Paasch *size = ALIGN(dss_size, 4); 605d22f4988SChristoph Paasch return ret; 6066d0060f6SMat Martineau } 6076d0060f6SMat Martineau 608e3859603SPaolo Abeni ack_seq = READ_ONCE(msk->ack_seq); 60937198e93SDavide Caratti if (READ_ONCE(msk->use_64bit_ack)) { 6106d0060f6SMat Martineau ack_size = TCPOLEN_MPTCP_DSS_ACK64; 611e3859603SPaolo Abeni opts->ext_copy.data_ack = ack_seq; 612a0c1d0eaSChristoph Paasch opts->ext_copy.ack64 = 1; 613a0c1d0eaSChristoph Paasch } else { 614a0c1d0eaSChristoph Paasch ack_size = TCPOLEN_MPTCP_DSS_ACK32; 615e3859603SPaolo Abeni opts->ext_copy.data_ack32 = (uint32_t)ack_seq; 616a0c1d0eaSChristoph Paasch opts->ext_copy.ack64 = 0; 617a0c1d0eaSChristoph Paasch } 618a0c1d0eaSChristoph Paasch opts->ext_copy.use_ack = 1; 619*1bff1e43SPaolo Abeni opts->suboptions = OPTION_MPTCP_DSS; 620ea4ca586SPaolo Abeni WRITE_ONCE(msk->old_wspace, __mptcp_space((struct sock *)msk)); 6216d0060f6SMat Martineau 6226d0060f6SMat Martineau /* Add kind/length/subtype/flag overhead if mapping is not populated */ 6236d0060f6SMat Martineau if (dss_size == 0) 6246d0060f6SMat Martineau ack_size += TCPOLEN_MPTCP_DSS_BASE; 6256d0060f6SMat Martineau 6266d0060f6SMat Martineau dss_size += ack_size; 6276d0060f6SMat Martineau 6286d0060f6SMat Martineau *size = ALIGN(dss_size, 4); 6296d0060f6SMat Martineau return true; 6306d0060f6SMat Martineau } 6316d0060f6SMat Martineau 632761c124eSGeliang Tang static u64 add_addr_generate_hmac(u64 key1, u64 key2, 633761c124eSGeliang Tang struct mptcp_addr_info *addr) 6343df523abSPeter Krystad { 635761c124eSGeliang Tang u16 port = ntohs(addr->port); 636bd697222STodd Malsbary u8 hmac[SHA256_DIGEST_SIZE]; 6373df523abSPeter Krystad u8 msg[19]; 638761c124eSGeliang Tang int i = 0; 6393df523abSPeter Krystad 640761c124eSGeliang Tang msg[i++] = addr->id; 641761c124eSGeliang Tang if (addr->family == AF_INET) { 642761c124eSGeliang Tang memcpy(&msg[i], &addr->addr.s_addr, 4); 643761c124eSGeliang Tang i += 4; 644761c124eSGeliang Tang } 645761c124eSGeliang Tang #if IS_ENABLED(CONFIG_MPTCP_IPV6) 646761c124eSGeliang Tang else if (addr->family == AF_INET6) { 647761c124eSGeliang Tang memcpy(&msg[i], &addr->addr6.s6_addr, 16); 648761c124eSGeliang Tang i += 16; 649761c124eSGeliang Tang } 650761c124eSGeliang Tang #endif 651761c124eSGeliang Tang msg[i++] = port >> 8; 652761c124eSGeliang Tang msg[i++] = port & 0xFF; 6533df523abSPeter Krystad 654761c124eSGeliang Tang mptcp_crypto_hmac_sha(key1, key2, msg, i, hmac); 6553df523abSPeter Krystad 656bd697222STodd Malsbary return get_unaligned_be64(&hmac[SHA256_DIGEST_SIZE - sizeof(u64)]); 6573df523abSPeter Krystad } 6583df523abSPeter Krystad 65984dfe367SGeliang Tang static bool mptcp_established_options_add_addr(struct sock *sk, struct sk_buff *skb, 6603df523abSPeter Krystad unsigned int *size, 6613df523abSPeter Krystad unsigned int remaining, 6623df523abSPeter Krystad struct mptcp_out_options *opts) 6633df523abSPeter Krystad { 6643df523abSPeter Krystad struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 6653df523abSPeter Krystad struct mptcp_sock *msk = mptcp_sk(subflow->conn); 66684dfe367SGeliang Tang bool drop_other_suboptions = false; 66784dfe367SGeliang Tang unsigned int opt_size = *size; 6686a6c05a8SGeliang Tang bool echo; 6694a2777a8SGeliang Tang bool port; 6701b1c7a0eSPeter Krystad int len; 6713df523abSPeter Krystad 6721f5e9e2fSYonglong Li /* add addr will strip the existing options, be sure to avoid breaking 6731f5e9e2fSYonglong Li * MPC/MPJ handshakes 6741f5e9e2fSYonglong Li */ 675f643b803SGeliang Tang if (!mptcp_pm_should_add_signal(msk) || 6761f5e9e2fSYonglong Li (opts->suboptions & (OPTION_MPTCP_MPJ_ACK | OPTION_MPTCP_MPC_ACK)) || 6771f5e9e2fSYonglong Li !mptcp_pm_add_addr_signal(msk, skb, opt_size, remaining, &opts->addr, 6781f5e9e2fSYonglong Li &echo, &port, &drop_other_suboptions)) 6793df523abSPeter Krystad return false; 6801b1c7a0eSPeter Krystad 6811f5e9e2fSYonglong Li if (drop_other_suboptions) 6821f5e9e2fSYonglong Li remaining += opt_size; 68330f60baeSGeliang Tang len = mptcp_add_addr_len(opts->addr.family, echo, port); 6841b1c7a0eSPeter Krystad if (remaining < len) 6851b1c7a0eSPeter Krystad return false; 6861b1c7a0eSPeter Krystad 6871b1c7a0eSPeter Krystad *size = len; 6881f5e9e2fSYonglong Li if (drop_other_suboptions) { 6891f5e9e2fSYonglong Li pr_debug("drop other suboptions"); 6901f5e9e2fSYonglong Li opts->suboptions = 0; 691*1bff1e43SPaolo Abeni 692*1bff1e43SPaolo Abeni /* note that e.g. DSS could have written into the memory 693*1bff1e43SPaolo Abeni * aliased by ahmac, we must reset the field here 694*1bff1e43SPaolo Abeni * to avoid appending the hmac even for ADD_ADDR echo 695*1bff1e43SPaolo Abeni * options 696*1bff1e43SPaolo Abeni */ 697*1bff1e43SPaolo Abeni opts->ahmac = 0; 69884dfe367SGeliang Tang *size -= opt_size; 6991f5e9e2fSYonglong Li } 7003df523abSPeter Krystad opts->suboptions |= OPTION_MPTCP_ADD_ADDR; 7016a6c05a8SGeliang Tang if (!echo) { 7023df523abSPeter Krystad opts->ahmac = add_addr_generate_hmac(msk->local_key, 7033df523abSPeter Krystad msk->remote_key, 704761c124eSGeliang Tang &opts->addr); 7053df523abSPeter Krystad } 7064a2777a8SGeliang Tang pr_debug("addr_id=%d, ahmac=%llu, echo=%d, port=%d", 70730f60baeSGeliang Tang opts->addr.id, opts->ahmac, echo, ntohs(opts->addr.port)); 7083df523abSPeter Krystad 7093df523abSPeter Krystad return true; 7103df523abSPeter Krystad } 7113df523abSPeter Krystad 7125cb104aeSGeliang Tang static bool mptcp_established_options_rm_addr(struct sock *sk, 7135cb104aeSGeliang Tang unsigned int *size, 7145cb104aeSGeliang Tang unsigned int remaining, 7155cb104aeSGeliang Tang struct mptcp_out_options *opts) 7165cb104aeSGeliang Tang { 7175cb104aeSGeliang Tang struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 7185cb104aeSGeliang Tang struct mptcp_sock *msk = mptcp_sk(subflow->conn); 7196445e17aSGeliang Tang struct mptcp_rm_list rm_list; 7206445e17aSGeliang Tang int i, len; 7215cb104aeSGeliang Tang 7225cb104aeSGeliang Tang if (!mptcp_pm_should_rm_signal(msk) || 7236445e17aSGeliang Tang !(mptcp_pm_rm_addr_signal(msk, remaining, &rm_list))) 7245cb104aeSGeliang Tang return false; 7255cb104aeSGeliang Tang 7266445e17aSGeliang Tang len = mptcp_rm_addr_len(&rm_list); 7276445e17aSGeliang Tang if (len < 0) 7286445e17aSGeliang Tang return false; 7296445e17aSGeliang Tang if (remaining < len) 7305cb104aeSGeliang Tang return false; 7315cb104aeSGeliang Tang 7326445e17aSGeliang Tang *size = len; 7335cb104aeSGeliang Tang opts->suboptions |= OPTION_MPTCP_RM_ADDR; 7346445e17aSGeliang Tang opts->rm_list = rm_list; 7355cb104aeSGeliang Tang 7366445e17aSGeliang Tang for (i = 0; i < opts->rm_list.nr; i++) 7376445e17aSGeliang Tang pr_debug("rm_list_ids[%d]=%d", i, opts->rm_list.ids[i]); 7385cb104aeSGeliang Tang 7395cb104aeSGeliang Tang return true; 7405cb104aeSGeliang Tang } 7415cb104aeSGeliang Tang 74206706542SGeliang Tang static bool mptcp_established_options_mp_prio(struct sock *sk, 74306706542SGeliang Tang unsigned int *size, 74406706542SGeliang Tang unsigned int remaining, 74506706542SGeliang Tang struct mptcp_out_options *opts) 74606706542SGeliang Tang { 74706706542SGeliang Tang struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 74806706542SGeliang Tang 749*1bff1e43SPaolo Abeni /* can't send MP_PRIO with MPC, as they share the same option space: 750*1bff1e43SPaolo Abeni * 'backup'. Also it makes no sense at all 751*1bff1e43SPaolo Abeni */ 752*1bff1e43SPaolo Abeni if (!subflow->send_mp_prio || 753*1bff1e43SPaolo Abeni ((OPTION_MPTCP_MPC_SYN | OPTION_MPTCP_MPC_SYNACK | 754*1bff1e43SPaolo Abeni OPTION_MPTCP_MPC_ACK) & opts->suboptions)) 75506706542SGeliang Tang return false; 75606706542SGeliang Tang 757ec99a470SDavide Caratti /* account for the trailing 'nop' option */ 758ec99a470SDavide Caratti if (remaining < TCPOLEN_MPTCP_PRIO_ALIGN) 75906706542SGeliang Tang return false; 76006706542SGeliang Tang 761ec99a470SDavide Caratti *size = TCPOLEN_MPTCP_PRIO_ALIGN; 76206706542SGeliang Tang opts->suboptions |= OPTION_MPTCP_PRIO; 76306706542SGeliang Tang opts->backup = subflow->request_bkup; 76406706542SGeliang Tang 76506706542SGeliang Tang pr_debug("prio=%d", opts->backup); 76606706542SGeliang Tang 76706706542SGeliang Tang return true; 76806706542SGeliang Tang } 76906706542SGeliang Tang 770dc87efdbSFlorian Westphal static noinline void mptcp_established_options_rst(struct sock *sk, struct sk_buff *skb, 771dc87efdbSFlorian Westphal unsigned int *size, 772dc87efdbSFlorian Westphal unsigned int remaining, 773dc87efdbSFlorian Westphal struct mptcp_out_options *opts) 774dc87efdbSFlorian Westphal { 775dc87efdbSFlorian Westphal const struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 776dc87efdbSFlorian Westphal 777dc87efdbSFlorian Westphal if (remaining < TCPOLEN_MPTCP_RST) 778dc87efdbSFlorian Westphal return; 779dc87efdbSFlorian Westphal 780dc87efdbSFlorian Westphal *size = TCPOLEN_MPTCP_RST; 781dc87efdbSFlorian Westphal opts->suboptions |= OPTION_MPTCP_RST; 782dc87efdbSFlorian Westphal opts->reset_transient = subflow->reset_transient; 783dc87efdbSFlorian Westphal opts->reset_reason = subflow->reset_reason; 784dc87efdbSFlorian Westphal } 785dc87efdbSFlorian Westphal 7866d0060f6SMat Martineau bool mptcp_established_options(struct sock *sk, struct sk_buff *skb, 7876d0060f6SMat Martineau unsigned int *size, unsigned int remaining, 7886d0060f6SMat Martineau struct mptcp_out_options *opts) 7896d0060f6SMat Martineau { 790d87903b6SPaolo Abeni struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 791d87903b6SPaolo Abeni struct mptcp_sock *msk = mptcp_sk(subflow->conn); 7926d0060f6SMat Martineau unsigned int opt_size = 0; 793d87903b6SPaolo Abeni bool snd_data_fin; 7946d0060f6SMat Martineau bool ret = false; 7956d0060f6SMat Martineau 7963df523abSPeter Krystad opts->suboptions = 0; 7973df523abSPeter Krystad 798d87903b6SPaolo Abeni if (unlikely(__mptcp_check_fallback(msk))) 799e1ff9e82SDavide Caratti return false; 800e1ff9e82SDavide Caratti 801dc87efdbSFlorian Westphal if (unlikely(skb && TCP_SKB_CB(skb)->tcp_flags & TCPHDR_RST)) { 802dc87efdbSFlorian Westphal mptcp_established_options_rst(sk, skb, size, remaining, opts); 803dc87efdbSFlorian Westphal return true; 804dc87efdbSFlorian Westphal } 805d5824847SPaolo Abeni 806d87903b6SPaolo Abeni snd_data_fin = mptcp_data_fin_enabled(msk); 807d87903b6SPaolo Abeni if (mptcp_established_options_mp(sk, skb, snd_data_fin, &opt_size, remaining, opts)) 8086d0060f6SMat Martineau ret = true; 809d87903b6SPaolo Abeni else if (mptcp_established_options_dss(sk, skb, snd_data_fin, &opt_size, remaining, opts)) 8106d0060f6SMat Martineau ret = true; 8116d0060f6SMat Martineau 8126d0060f6SMat Martineau /* we reserved enough space for the above options, and exceeding the 8136d0060f6SMat Martineau * TCP option space would be fatal 8146d0060f6SMat Martineau */ 8156d0060f6SMat Martineau if (WARN_ON_ONCE(opt_size > remaining)) 8166d0060f6SMat Martineau return false; 8176d0060f6SMat Martineau 8186d0060f6SMat Martineau *size += opt_size; 8196d0060f6SMat Martineau remaining -= opt_size; 82084dfe367SGeliang Tang if (mptcp_established_options_add_addr(sk, skb, &opt_size, remaining, opts)) { 8213df523abSPeter Krystad *size += opt_size; 8223df523abSPeter Krystad remaining -= opt_size; 8233df523abSPeter Krystad ret = true; 8245cb104aeSGeliang Tang } else if (mptcp_established_options_rm_addr(sk, &opt_size, remaining, opts)) { 8255cb104aeSGeliang Tang *size += opt_size; 8265cb104aeSGeliang Tang remaining -= opt_size; 8275cb104aeSGeliang Tang ret = true; 8283df523abSPeter Krystad } 8296d0060f6SMat Martineau 83006706542SGeliang Tang if (mptcp_established_options_mp_prio(sk, &opt_size, remaining, opts)) { 83106706542SGeliang Tang *size += opt_size; 83206706542SGeliang Tang remaining -= opt_size; 83306706542SGeliang Tang ret = true; 83406706542SGeliang Tang } 83506706542SGeliang Tang 8366d0060f6SMat Martineau return ret; 8376d0060f6SMat Martineau } 8386d0060f6SMat Martineau 839cec37a6eSPeter Krystad bool mptcp_synack_options(const struct request_sock *req, unsigned int *size, 840cec37a6eSPeter Krystad struct mptcp_out_options *opts) 841cec37a6eSPeter Krystad { 842cec37a6eSPeter Krystad struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 843cec37a6eSPeter Krystad 844cec37a6eSPeter Krystad if (subflow_req->mp_capable) { 845cec37a6eSPeter Krystad opts->suboptions = OPTION_MPTCP_MPC_SYNACK; 846cec37a6eSPeter Krystad opts->sndr_key = subflow_req->local_key; 84706fe1719SGeliang Tang opts->csum_reqd = subflow_req->csum_reqd; 848bab6b88eSGeliang Tang opts->allow_join_id0 = subflow_req->allow_join_id0; 849cec37a6eSPeter Krystad *size = TCPOLEN_MPTCP_MPC_SYNACK; 850cec37a6eSPeter Krystad pr_debug("subflow_req=%p, local_key=%llu", 851cec37a6eSPeter Krystad subflow_req, subflow_req->local_key); 852cec37a6eSPeter Krystad return true; 853f296234cSPeter Krystad } else if (subflow_req->mp_join) { 854f296234cSPeter Krystad opts->suboptions = OPTION_MPTCP_MPJ_SYNACK; 855f296234cSPeter Krystad opts->backup = subflow_req->backup; 856f296234cSPeter Krystad opts->join_id = subflow_req->local_id; 857f296234cSPeter Krystad opts->thmac = subflow_req->thmac; 858f296234cSPeter Krystad opts->nonce = subflow_req->local_nonce; 859f296234cSPeter Krystad pr_debug("req=%p, bkup=%u, id=%u, thmac=%llu, nonce=%u", 860f296234cSPeter Krystad subflow_req, opts->backup, opts->join_id, 861f296234cSPeter Krystad opts->thmac, opts->nonce); 862f296234cSPeter Krystad *size = TCPOLEN_MPTCP_MPJ_SYNACK; 863f296234cSPeter Krystad return true; 864cec37a6eSPeter Krystad } 865cec37a6eSPeter Krystad return false; 866cec37a6eSPeter Krystad } 867cec37a6eSPeter Krystad 868d5824847SPaolo Abeni static bool check_fully_established(struct mptcp_sock *msk, struct sock *ssk, 869f296234cSPeter Krystad struct mptcp_subflow_context *subflow, 870d22f4988SChristoph Paasch struct sk_buff *skb, 871d22f4988SChristoph Paasch struct mptcp_options_received *mp_opt) 872d22f4988SChristoph Paasch { 873d22f4988SChristoph Paasch /* here we can process OoO, in-window pkts, only in-sequence 4th ack 874f296234cSPeter Krystad * will make the subflow fully established 875d22f4988SChristoph Paasch */ 876f296234cSPeter Krystad if (likely(subflow->fully_established)) { 877f296234cSPeter Krystad /* on passive sockets, check for 3rd ack retransmission 878f296234cSPeter Krystad * note that msk is always set by subflow_syn_recv_sock() 879f296234cSPeter Krystad * for mp_join subflows 880f296234cSPeter Krystad */ 881f296234cSPeter Krystad if (TCP_SKB_CB(skb)->seq == subflow->ssn_offset + 1 && 882f296234cSPeter Krystad TCP_SKB_CB(skb)->end_seq == TCP_SKB_CB(skb)->seq && 883f296234cSPeter Krystad subflow->mp_join && mp_opt->mp_join && 884f296234cSPeter Krystad READ_ONCE(msk->pm.server_side)) 885d5824847SPaolo Abeni tcp_send_ack(ssk); 886f296234cSPeter Krystad goto fully_established; 887f296234cSPeter Krystad } 888d22f4988SChristoph Paasch 889d5824847SPaolo Abeni /* we must process OoO packets before the first subflow is fully 890d5824847SPaolo Abeni * established. OoO packets are instead a protocol violation 891d5824847SPaolo Abeni * for MP_JOIN subflows as the peer must not send any data 892d5824847SPaolo Abeni * before receiving the forth ack - cfr. RFC 8684 section 3.2. 893f296234cSPeter Krystad */ 894d5824847SPaolo Abeni if (TCP_SKB_CB(skb)->seq != subflow->ssn_offset + 1) { 895d5824847SPaolo Abeni if (subflow->mp_join) 896d5824847SPaolo Abeni goto reset; 897f296234cSPeter Krystad return subflow->mp_capable; 898d5824847SPaolo Abeni } 899f296234cSPeter Krystad 90067b12f79SMatthieu Baerts if ((mp_opt->dss && mp_opt->use_ack) || 90167b12f79SMatthieu Baerts (mp_opt->add_addr && !mp_opt->echo)) { 902f296234cSPeter Krystad /* subflows are fully established as soon as we get any 90367b12f79SMatthieu Baerts * additional ack, including ADD_ADDR. 904f296234cSPeter Krystad */ 9050be534f5SPaolo Abeni subflow->fully_established = 1; 906b93df08cSPaolo Abeni WRITE_ONCE(msk->fully_established, true); 907f296234cSPeter Krystad goto fully_established; 908f296234cSPeter Krystad } 909d22f4988SChristoph Paasch 910d22f4988SChristoph Paasch /* If the first established packet does not contain MP_CAPABLE + data 911d5824847SPaolo Abeni * then fallback to TCP. Fallback scenarios requires a reset for 912d5824847SPaolo Abeni * MP_JOIN subflows. 913d22f4988SChristoph Paasch */ 914d22f4988SChristoph Paasch if (!mp_opt->mp_capable) { 915d5824847SPaolo Abeni if (subflow->mp_join) 916d5824847SPaolo Abeni goto reset; 917d22f4988SChristoph Paasch subflow->mp_capable = 0; 918e1ff9e82SDavide Caratti pr_fallback(msk); 919e1ff9e82SDavide Caratti __mptcp_do_fallback(msk); 920d22f4988SChristoph Paasch return false; 921d22f4988SChristoph Paasch } 922f296234cSPeter Krystad 923df377be3SGeliang Tang if (mp_opt->deny_join_id0) 924df377be3SGeliang Tang WRITE_ONCE(msk->pm.remote_deny_join_id0, true); 925df377be3SGeliang Tang 926d6085fe1SPaolo Abeni if (unlikely(!READ_ONCE(msk->pm.server_side))) 927d6085fe1SPaolo Abeni pr_warn_once("bogus mpc option on established client sk"); 928b93df08cSPaolo Abeni mptcp_subflow_fully_established(subflow, mp_opt); 929f296234cSPeter Krystad 930f296234cSPeter Krystad fully_established: 9315b950ff4SPaolo Abeni /* if the subflow is not already linked into the conn_list, we can't 9325b950ff4SPaolo Abeni * notify the PM: this subflow is still on the listener queue 9335b950ff4SPaolo Abeni * and the PM possibly acquiring the subflow lock could race with 9345b950ff4SPaolo Abeni * the listener close 9355b950ff4SPaolo Abeni */ 9365b950ff4SPaolo Abeni if (likely(subflow->pm_notified) || list_empty(&subflow->node)) 937f296234cSPeter Krystad return true; 938f296234cSPeter Krystad 939f296234cSPeter Krystad subflow->pm_notified = 1; 940ec3edaa7SPeter Krystad if (subflow->mp_join) { 941d5824847SPaolo Abeni clear_3rdack_retransmission(ssk); 94262535200SGeliang Tang mptcp_pm_subflow_established(msk); 943ec3edaa7SPeter Krystad } else { 9446c714f1bSFlorian Westphal mptcp_pm_fully_established(msk, ssk, GFP_ATOMIC); 945ec3edaa7SPeter Krystad } 946d22f4988SChristoph Paasch return true; 947d5824847SPaolo Abeni 948d5824847SPaolo Abeni reset: 949d5824847SPaolo Abeni mptcp_subflow_reset(ssk); 950d5824847SPaolo Abeni return false; 951d22f4988SChristoph Paasch } 952d22f4988SChristoph Paasch 9531502328fSPaolo Abeni u64 __mptcp_expand_seq(u64 old_seq, u64 cur_seq) 954cc9d2566SPaolo Abeni { 9551502328fSPaolo Abeni u32 old_seq32, cur_seq32; 956cc9d2566SPaolo Abeni 9571502328fSPaolo Abeni old_seq32 = (u32)old_seq; 9581502328fSPaolo Abeni cur_seq32 = (u32)cur_seq; 9591502328fSPaolo Abeni cur_seq = (old_seq & GENMASK_ULL(63, 32)) + cur_seq32; 9601502328fSPaolo Abeni if (unlikely(cur_seq32 < old_seq32 && before(old_seq32, cur_seq32))) 9611502328fSPaolo Abeni return cur_seq + (1LL << 32); 962cc9d2566SPaolo Abeni 9631502328fSPaolo Abeni /* reverse wrap could happen, too */ 9641502328fSPaolo Abeni if (unlikely(cur_seq32 > old_seq32 && after(old_seq32, cur_seq32))) 9651502328fSPaolo Abeni return cur_seq - (1LL << 32); 9661502328fSPaolo Abeni return cur_seq; 967cc9d2566SPaolo Abeni } 968cc9d2566SPaolo Abeni 9696f8a612aSFlorian Westphal static void ack_update_msk(struct mptcp_sock *msk, 9706e628cd3SPaolo Abeni struct sock *ssk, 971cc9d2566SPaolo Abeni struct mptcp_options_received *mp_opt) 972cc9d2566SPaolo Abeni { 9737439d687SPaolo Abeni u64 new_wnd_end, new_snd_una, snd_nxt = READ_ONCE(msk->snd_nxt); 9746f8a612aSFlorian Westphal struct sock *sk = (struct sock *)msk; 9757439d687SPaolo Abeni u64 old_snd_una; 9767439d687SPaolo Abeni 9777439d687SPaolo Abeni mptcp_data_lock(sk); 978cc9d2566SPaolo Abeni 979cc9d2566SPaolo Abeni /* avoid ack expansion on update conflict, to reduce the risk of 980cc9d2566SPaolo Abeni * wrongly expanding to a future ack sequence number, which is way 981cc9d2566SPaolo Abeni * more dangerous than missing an ack 982cc9d2566SPaolo Abeni */ 9837439d687SPaolo Abeni old_snd_una = msk->snd_una; 9841502328fSPaolo Abeni new_snd_una = mptcp_expand_seq(old_snd_una, mp_opt->data_ack, mp_opt->ack64); 985cc9d2566SPaolo Abeni 9861e1d9d6fSPaolo Abeni /* ACK for data not even sent yet and even above recovery bound? Ignore.*/ 9871e1d9d6fSPaolo Abeni if (unlikely(after64(new_snd_una, snd_nxt))) { 9881e1d9d6fSPaolo Abeni if (!msk->recovery || after64(new_snd_una, msk->recovery_snd_nxt)) 989cc9d2566SPaolo Abeni new_snd_una = old_snd_una; 9901e1d9d6fSPaolo Abeni } 991cc9d2566SPaolo Abeni 9926f8a612aSFlorian Westphal new_wnd_end = new_snd_una + tcp_sk(ssk)->snd_wnd; 9936f8a612aSFlorian Westphal 994219d0499SPaolo Abeni if (after64(new_wnd_end, msk->wnd_end)) 9957439d687SPaolo Abeni msk->wnd_end = new_wnd_end; 996219d0499SPaolo Abeni 997219d0499SPaolo Abeni /* this assumes mptcp_incoming_options() is invoked after tcp_ack() */ 998d09d818eSPaolo Abeni if (after64(msk->wnd_end, READ_ONCE(msk->snd_nxt))) 999219d0499SPaolo Abeni __mptcp_check_push(sk, ssk); 10006f8a612aSFlorian Westphal 10017439d687SPaolo Abeni if (after64(new_snd_una, old_snd_una)) { 10027439d687SPaolo Abeni msk->snd_una = new_snd_una; 10037439d687SPaolo Abeni __mptcp_data_acked(sk); 1004cc9d2566SPaolo Abeni } 10057439d687SPaolo Abeni mptcp_data_unlock(sk); 1006ed66bfb4SGeliang Tang 1007ed66bfb4SGeliang Tang trace_ack_update_msk(mp_opt->data_ack, 1008ed66bfb4SGeliang Tang old_snd_una, new_snd_una, 1009ed66bfb4SGeliang Tang new_wnd_end, msk->wnd_end); 1010b51f9b80SPaolo Abeni } 1011cc9d2566SPaolo Abeni 10121a49b2c2SMat Martineau bool mptcp_update_rcv_data_fin(struct mptcp_sock *msk, u64 data_fin_seq, bool use_64bit) 10133721b9b6SMat Martineau { 10143721b9b6SMat Martineau /* Skip if DATA_FIN was already received. 10153721b9b6SMat Martineau * If updating simultaneously with the recvmsg loop, values 10163721b9b6SMat Martineau * should match. If they mismatch, the peer is misbehaving and 10173721b9b6SMat Martineau * we will prefer the most recent information. 10183721b9b6SMat Martineau */ 1019781bf13dSPaolo Abeni if (READ_ONCE(msk->rcv_data_fin)) 10203721b9b6SMat Martineau return false; 10213721b9b6SMat Martineau 10221a49b2c2SMat Martineau WRITE_ONCE(msk->rcv_data_fin_seq, 10231502328fSPaolo Abeni mptcp_expand_seq(READ_ONCE(msk->ack_seq), data_fin_seq, use_64bit)); 10243721b9b6SMat Martineau WRITE_ONCE(msk->rcv_data_fin, 1); 10253721b9b6SMat Martineau 10263721b9b6SMat Martineau return true; 10273721b9b6SMat Martineau } 10283721b9b6SMat Martineau 10291b1c7a0eSPeter Krystad static bool add_addr_hmac_valid(struct mptcp_sock *msk, 10301b1c7a0eSPeter Krystad struct mptcp_options_received *mp_opt) 10311b1c7a0eSPeter Krystad { 10321b1c7a0eSPeter Krystad u64 hmac = 0; 10331b1c7a0eSPeter Krystad 10341b1c7a0eSPeter Krystad if (mp_opt->echo) 10351b1c7a0eSPeter Krystad return true; 10361b1c7a0eSPeter Krystad 10371b1c7a0eSPeter Krystad hmac = add_addr_generate_hmac(msk->remote_key, 10381b1c7a0eSPeter Krystad msk->local_key, 1039761c124eSGeliang Tang &mp_opt->addr); 10401b1c7a0eSPeter Krystad 10411b1c7a0eSPeter Krystad pr_debug("msk=%p, ahmac=%llu, mp_opt->ahmac=%llu\n", 10421b1c7a0eSPeter Krystad msk, (unsigned long long)hmac, 10431b1c7a0eSPeter Krystad (unsigned long long)mp_opt->ahmac); 10441b1c7a0eSPeter Krystad 10451b1c7a0eSPeter Krystad return hmac == mp_opt->ahmac; 10461b1c7a0eSPeter Krystad } 10471b1c7a0eSPeter Krystad 10486787b7e3SJianguo Wu /* Return false if a subflow has been reset, else return true */ 10496787b7e3SJianguo Wu bool mptcp_incoming_options(struct sock *sk, struct sk_buff *skb) 1050648ef4b8SMat Martineau { 1051d22f4988SChristoph Paasch struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 10521b1c7a0eSPeter Krystad struct mptcp_sock *msk = mptcp_sk(subflow->conn); 1053cfde141eSPaolo Abeni struct mptcp_options_received mp_opt; 1054648ef4b8SMat Martineau struct mptcp_ext *mpext; 1055648ef4b8SMat Martineau 10566e628cd3SPaolo Abeni if (__mptcp_check_fallback(msk)) { 10576e628cd3SPaolo Abeni /* Keep it simple and unconditionally trigger send data cleanup and 10586e628cd3SPaolo Abeni * pending queue spooling. We will need to acquire the data lock 10596e628cd3SPaolo Abeni * for more accurate checks, and once the lock is acquired, such 10606e628cd3SPaolo Abeni * helpers are cheap. 10616e628cd3SPaolo Abeni */ 10626e628cd3SPaolo Abeni mptcp_data_lock(subflow->conn); 1063219d0499SPaolo Abeni if (sk_stream_memory_free(sk)) 1064219d0499SPaolo Abeni __mptcp_check_push(subflow->conn, sk); 10656e628cd3SPaolo Abeni __mptcp_data_acked(subflow->conn); 10666e628cd3SPaolo Abeni mptcp_data_unlock(subflow->conn); 10676787b7e3SJianguo Wu return true; 10686e628cd3SPaolo Abeni } 1069e1ff9e82SDavide Caratti 1070c863225bSGeliang Tang mptcp_get_options(sk, skb, &mp_opt); 10716787b7e3SJianguo Wu 10726787b7e3SJianguo Wu /* The subflow can be in close state only if check_fully_established() 10736787b7e3SJianguo Wu * just sent a reset. If so, tell the caller to ignore the current packet. 10746787b7e3SJianguo Wu */ 1075cfde141eSPaolo Abeni if (!check_fully_established(msk, sk, subflow, skb, &mp_opt)) 10766787b7e3SJianguo Wu return sk->sk_state != TCP_CLOSE; 1077648ef4b8SMat Martineau 107850c504a2SFlorian Westphal if (mp_opt.fastclose && 107950c504a2SFlorian Westphal msk->local_key == mp_opt.rcvr_key) { 108050c504a2SFlorian Westphal WRITE_ONCE(msk->rcv_fastclose, true); 108150c504a2SFlorian Westphal mptcp_schedule_work((struct sock *)msk); 108250c504a2SFlorian Westphal } 108350c504a2SFlorian Westphal 1084cfde141eSPaolo Abeni if (mp_opt.add_addr && add_addr_hmac_valid(msk, &mp_opt)) { 1085a877de06SGeliang Tang if (!mp_opt.echo) { 1086f7dafee1SGeliang Tang mptcp_pm_add_addr_received(msk, &mp_opt.addr); 1087a877de06SGeliang Tang MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_ADDADDR); 1088a877de06SGeliang Tang } else { 1089f7dafee1SGeliang Tang mptcp_pm_add_addr_echoed(msk, &mp_opt.addr); 1090d58300c3SDavide Caratti mptcp_pm_del_add_timer(msk, &mp_opt.addr, true); 1091a877de06SGeliang Tang MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_ECHOADD); 1092a877de06SGeliang Tang } 10932fbdd9eaSGeliang Tang 1094f7dafee1SGeliang Tang if (mp_opt.addr.port) 10952fbdd9eaSGeliang Tang MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_PORTADD); 10962fbdd9eaSGeliang Tang 1097cfde141eSPaolo Abeni mp_opt.add_addr = 0; 10981b1c7a0eSPeter Krystad } 10991b1c7a0eSPeter Krystad 1100d0876b22SGeliang Tang if (mp_opt.rm_addr) { 11015c4a824dSGeliang Tang mptcp_pm_rm_addr_received(msk, &mp_opt.rm_list); 1102d0876b22SGeliang Tang mp_opt.rm_addr = 0; 1103d0876b22SGeliang Tang } 1104d0876b22SGeliang Tang 110540453a5cSGeliang Tang if (mp_opt.mp_prio) { 110640453a5cSGeliang Tang mptcp_pm_mp_prio_received(sk, mp_opt.backup); 11070be2ac28SGeliang Tang MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_MPPRIORX); 110840453a5cSGeliang Tang mp_opt.mp_prio = 0; 110940453a5cSGeliang Tang } 111040453a5cSGeliang Tang 1111dc87efdbSFlorian Westphal if (mp_opt.reset) { 1112dc87efdbSFlorian Westphal subflow->reset_seen = 1; 1113dc87efdbSFlorian Westphal subflow->reset_reason = mp_opt.reset_reason; 1114dc87efdbSFlorian Westphal subflow->reset_transient = mp_opt.reset_transient; 1115dc87efdbSFlorian Westphal } 1116dc87efdbSFlorian Westphal 1117cfde141eSPaolo Abeni if (!mp_opt.dss) 11186787b7e3SJianguo Wu return true; 1119648ef4b8SMat Martineau 1120cc9d2566SPaolo Abeni /* we can't wait for recvmsg() to update the ack_seq, otherwise 1121cc9d2566SPaolo Abeni * monodirectional flows will stuck 1122cc9d2566SPaolo Abeni */ 1123cfde141eSPaolo Abeni if (mp_opt.use_ack) 11246f8a612aSFlorian Westphal ack_update_msk(msk, sk, &mp_opt); 1125cc9d2566SPaolo Abeni 112606827b34SMat Martineau /* Zero-data-length packets are dropped by the caller and not 112706827b34SMat Martineau * propagated to the MPTCP layer, so the skb extension does not 112806827b34SMat Martineau * need to be allocated or populated. DATA_FIN information, if 112906827b34SMat Martineau * present, needs to be updated here before the skb is freed. 113043b54c6eSMat Martineau */ 113143b54c6eSMat Martineau if (TCP_SKB_CB(skb)->seq == TCP_SKB_CB(skb)->end_seq) { 113243b54c6eSMat Martineau if (mp_opt.data_fin && mp_opt.data_len == 1 && 11331a49b2c2SMat Martineau mptcp_update_rcv_data_fin(msk, mp_opt.data_seq, mp_opt.dsn64) && 113443b54c6eSMat Martineau schedule_work(&msk->work)) 113543b54c6eSMat Martineau sock_hold(subflow->conn); 113606827b34SMat Martineau 11376787b7e3SJianguo Wu return true; 113843b54c6eSMat Martineau } 113943b54c6eSMat Martineau 1140648ef4b8SMat Martineau mpext = skb_ext_add(skb, SKB_EXT_MPTCP); 1141648ef4b8SMat Martineau if (!mpext) 11426787b7e3SJianguo Wu return true; 1143648ef4b8SMat Martineau 1144648ef4b8SMat Martineau memset(mpext, 0, sizeof(*mpext)); 1145648ef4b8SMat Martineau 1146cfde141eSPaolo Abeni if (mp_opt.use_map) { 1147cfde141eSPaolo Abeni if (mp_opt.mpc_map) { 1148cc7972eaSChristoph Paasch /* this is an MP_CAPABLE carrying MPTCP data 1149cc7972eaSChristoph Paasch * we know this map the first chunk of data 1150cc7972eaSChristoph Paasch */ 1151cc7972eaSChristoph Paasch mptcp_crypto_key_sha(subflow->remote_key, NULL, 1152cc7972eaSChristoph Paasch &mpext->data_seq); 1153cc7972eaSChristoph Paasch mpext->data_seq++; 1154cc7972eaSChristoph Paasch mpext->subflow_seq = 1; 1155cc7972eaSChristoph Paasch mpext->dsn64 = 1; 1156cc7972eaSChristoph Paasch mpext->mpc_map = 1; 1157a77895dbSPaolo Abeni mpext->data_fin = 0; 1158cc7972eaSChristoph Paasch } else { 1159cfde141eSPaolo Abeni mpext->data_seq = mp_opt.data_seq; 1160cfde141eSPaolo Abeni mpext->subflow_seq = mp_opt.subflow_seq; 1161cfde141eSPaolo Abeni mpext->dsn64 = mp_opt.dsn64; 1162cfde141eSPaolo Abeni mpext->data_fin = mp_opt.data_fin; 1163cc7972eaSChristoph Paasch } 1164cfde141eSPaolo Abeni mpext->data_len = mp_opt.data_len; 1165648ef4b8SMat Martineau mpext->use_map = 1; 1166208e8f66SGeliang Tang mpext->csum_reqd = mp_opt.csum_reqd; 1167208e8f66SGeliang Tang 1168208e8f66SGeliang Tang if (mpext->csum_reqd) 1169208e8f66SGeliang Tang mpext->csum = mp_opt.csum; 1170648ef4b8SMat Martineau } 11716787b7e3SJianguo Wu 11726787b7e3SJianguo Wu return true; 1173648ef4b8SMat Martineau } 1174648ef4b8SMat Martineau 1175fa3fe2b1SFlorian Westphal static void mptcp_set_rwin(const struct tcp_sock *tp) 1176fa3fe2b1SFlorian Westphal { 1177fa3fe2b1SFlorian Westphal const struct sock *ssk = (const struct sock *)tp; 1178fa3fe2b1SFlorian Westphal const struct mptcp_subflow_context *subflow; 1179fa3fe2b1SFlorian Westphal struct mptcp_sock *msk; 1180fa3fe2b1SFlorian Westphal u64 ack_seq; 1181fa3fe2b1SFlorian Westphal 1182fa3fe2b1SFlorian Westphal subflow = mptcp_subflow_ctx(ssk); 1183fa3fe2b1SFlorian Westphal msk = mptcp_sk(subflow->conn); 1184fa3fe2b1SFlorian Westphal 1185fa3fe2b1SFlorian Westphal ack_seq = READ_ONCE(msk->ack_seq) + tp->rcv_wnd; 1186fa3fe2b1SFlorian Westphal 1187fa3fe2b1SFlorian Westphal if (after64(ack_seq, READ_ONCE(msk->rcv_wnd_sent))) 1188fa3fe2b1SFlorian Westphal WRITE_ONCE(msk->rcv_wnd_sent, ack_seq); 1189fa3fe2b1SFlorian Westphal } 1190fa3fe2b1SFlorian Westphal 1191c94b1f96SGeliang Tang static u16 mptcp_make_csum(const struct mptcp_ext *mpext) 1192c94b1f96SGeliang Tang { 1193c94b1f96SGeliang Tang struct csum_pseudo_header header; 1194c94b1f96SGeliang Tang __wsum csum; 1195c94b1f96SGeliang Tang 1196c94b1f96SGeliang Tang /* cfr RFC 8684 3.3.1.: 1197c94b1f96SGeliang Tang * the data sequence number used in the pseudo-header is 1198c94b1f96SGeliang Tang * always the 64-bit value, irrespective of what length is used in the 1199c94b1f96SGeliang Tang * DSS option itself. 1200c94b1f96SGeliang Tang */ 1201c94b1f96SGeliang Tang header.data_seq = cpu_to_be64(mpext->data_seq); 1202c94b1f96SGeliang Tang header.subflow_seq = htonl(mpext->subflow_seq); 1203c94b1f96SGeliang Tang header.data_len = htons(mpext->data_len); 1204c94b1f96SGeliang Tang header.csum = 0; 1205c94b1f96SGeliang Tang 1206c94b1f96SGeliang Tang csum = csum_partial(&header, sizeof(header), ~csum_unfold(mpext->csum)); 1207c94b1f96SGeliang Tang return (__force u16)csum_fold(csum); 1208c94b1f96SGeliang Tang } 1209c94b1f96SGeliang Tang 1210fa3fe2b1SFlorian Westphal void mptcp_write_options(__be32 *ptr, const struct tcp_sock *tp, 1211fa3fe2b1SFlorian Westphal struct mptcp_out_options *opts) 1212eda7acddSPeter Krystad { 1213*1bff1e43SPaolo Abeni /* RST is mutually exclusive with everything else */ 1214*1bff1e43SPaolo Abeni if (unlikely(OPTION_MPTCP_RST & opts->suboptions)) { 1215*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_RST, 1216*1bff1e43SPaolo Abeni TCPOLEN_MPTCP_RST, 1217*1bff1e43SPaolo Abeni opts->reset_transient, 1218*1bff1e43SPaolo Abeni opts->reset_reason); 1219*1bff1e43SPaolo Abeni return; 1220*1bff1e43SPaolo Abeni } 1221*1bff1e43SPaolo Abeni 1222*1bff1e43SPaolo Abeni /* DSS, MPC, MPJ and ADD_ADDR are mutually exclusive, see 1223*1bff1e43SPaolo Abeni * mptcp_established_options*() 1224*1bff1e43SPaolo Abeni */ 1225*1bff1e43SPaolo Abeni if (likely(OPTION_MPTCP_DSS & opts->suboptions)) { 1226*1bff1e43SPaolo Abeni struct mptcp_ext *mpext = &opts->ext_copy; 1227*1bff1e43SPaolo Abeni u8 len = TCPOLEN_MPTCP_DSS_BASE; 1228*1bff1e43SPaolo Abeni u8 flags = 0; 1229*1bff1e43SPaolo Abeni 1230*1bff1e43SPaolo Abeni if (mpext->use_ack) { 1231*1bff1e43SPaolo Abeni flags = MPTCP_DSS_HAS_ACK; 1232*1bff1e43SPaolo Abeni if (mpext->ack64) { 1233*1bff1e43SPaolo Abeni len += TCPOLEN_MPTCP_DSS_ACK64; 1234*1bff1e43SPaolo Abeni flags |= MPTCP_DSS_ACK64; 1235*1bff1e43SPaolo Abeni } else { 1236*1bff1e43SPaolo Abeni len += TCPOLEN_MPTCP_DSS_ACK32; 1237*1bff1e43SPaolo Abeni } 1238*1bff1e43SPaolo Abeni } 1239*1bff1e43SPaolo Abeni 1240*1bff1e43SPaolo Abeni if (mpext->use_map) { 1241*1bff1e43SPaolo Abeni len += TCPOLEN_MPTCP_DSS_MAP64; 1242*1bff1e43SPaolo Abeni 1243*1bff1e43SPaolo Abeni /* Use only 64-bit mapping flags for now, add 1244*1bff1e43SPaolo Abeni * support for optional 32-bit mappings later. 1245*1bff1e43SPaolo Abeni */ 1246*1bff1e43SPaolo Abeni flags |= MPTCP_DSS_HAS_MAP | MPTCP_DSS_DSN64; 1247*1bff1e43SPaolo Abeni if (mpext->data_fin) 1248*1bff1e43SPaolo Abeni flags |= MPTCP_DSS_DATA_FIN; 1249*1bff1e43SPaolo Abeni 1250*1bff1e43SPaolo Abeni if (opts->csum_reqd) 1251*1bff1e43SPaolo Abeni len += TCPOLEN_MPTCP_DSS_CHECKSUM; 1252*1bff1e43SPaolo Abeni } 1253*1bff1e43SPaolo Abeni 1254*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_DSS, len, 0, flags); 1255*1bff1e43SPaolo Abeni 1256*1bff1e43SPaolo Abeni if (mpext->use_ack) { 1257*1bff1e43SPaolo Abeni if (mpext->ack64) { 1258*1bff1e43SPaolo Abeni put_unaligned_be64(mpext->data_ack, ptr); 1259*1bff1e43SPaolo Abeni ptr += 2; 1260*1bff1e43SPaolo Abeni } else { 1261*1bff1e43SPaolo Abeni put_unaligned_be32(mpext->data_ack32, ptr); 1262*1bff1e43SPaolo Abeni ptr += 1; 1263*1bff1e43SPaolo Abeni } 1264*1bff1e43SPaolo Abeni } 1265*1bff1e43SPaolo Abeni 1266*1bff1e43SPaolo Abeni if (mpext->use_map) { 1267*1bff1e43SPaolo Abeni put_unaligned_be64(mpext->data_seq, ptr); 1268*1bff1e43SPaolo Abeni ptr += 2; 1269*1bff1e43SPaolo Abeni put_unaligned_be32(mpext->subflow_seq, ptr); 1270*1bff1e43SPaolo Abeni ptr += 1; 1271*1bff1e43SPaolo Abeni if (opts->csum_reqd) { 1272*1bff1e43SPaolo Abeni put_unaligned_be32(mpext->data_len << 16 | 1273*1bff1e43SPaolo Abeni mptcp_make_csum(mpext), ptr); 1274*1bff1e43SPaolo Abeni } else { 1275*1bff1e43SPaolo Abeni put_unaligned_be32(mpext->data_len << 16 | 1276*1bff1e43SPaolo Abeni TCPOPT_NOP << 8 | TCPOPT_NOP, ptr); 1277*1bff1e43SPaolo Abeni } 1278*1bff1e43SPaolo Abeni } 1279*1bff1e43SPaolo Abeni } else if ((OPTION_MPTCP_MPC_SYN | OPTION_MPTCP_MPC_SYNACK | 1280eda7acddSPeter Krystad OPTION_MPTCP_MPC_ACK) & opts->suboptions) { 128106fe1719SGeliang Tang u8 len, flag = MPTCP_CAP_HMAC_SHA256; 1282eda7acddSPeter Krystad 1283c94b1f96SGeliang Tang if (OPTION_MPTCP_MPC_SYN & opts->suboptions) { 1284eda7acddSPeter Krystad len = TCPOLEN_MPTCP_MPC_SYN; 1285c94b1f96SGeliang Tang } else if (OPTION_MPTCP_MPC_SYNACK & opts->suboptions) { 1286cec37a6eSPeter Krystad len = TCPOLEN_MPTCP_MPC_SYNACK; 1287c94b1f96SGeliang Tang } else if (opts->ext_copy.data_len) { 1288cc7972eaSChristoph Paasch len = TCPOLEN_MPTCP_MPC_ACK_DATA; 1289c94b1f96SGeliang Tang if (opts->csum_reqd) 1290c94b1f96SGeliang Tang len += TCPOLEN_MPTCP_DSS_CHECKSUM; 1291c94b1f96SGeliang Tang } else { 1292eda7acddSPeter Krystad len = TCPOLEN_MPTCP_MPC_ACK; 1293c94b1f96SGeliang Tang } 1294eda7acddSPeter Krystad 129506fe1719SGeliang Tang if (opts->csum_reqd) 129606fe1719SGeliang Tang flag |= MPTCP_CAP_CHECKSUM_REQD; 129706fe1719SGeliang Tang 1298bab6b88eSGeliang Tang if (!opts->allow_join_id0) 1299bab6b88eSGeliang Tang flag |= MPTCP_CAP_DENY_JOIN_ID0; 1300bab6b88eSGeliang Tang 13013df523abSPeter Krystad *ptr++ = mptcp_option(MPTCPOPT_MP_CAPABLE, len, 13023df523abSPeter Krystad MPTCP_SUPPORTED_VERSION, 130306fe1719SGeliang Tang flag); 1304cc7972eaSChristoph Paasch 1305cc7972eaSChristoph Paasch if (!((OPTION_MPTCP_MPC_SYNACK | OPTION_MPTCP_MPC_ACK) & 1306cc7972eaSChristoph Paasch opts->suboptions)) 1307cc7972eaSChristoph Paasch goto mp_capable_done; 1308cc7972eaSChristoph Paasch 1309eda7acddSPeter Krystad put_unaligned_be64(opts->sndr_key, ptr); 1310eda7acddSPeter Krystad ptr += 2; 1311cc7972eaSChristoph Paasch if (!((OPTION_MPTCP_MPC_ACK) & opts->suboptions)) 1312cc7972eaSChristoph Paasch goto mp_capable_done; 1313cc7972eaSChristoph Paasch 1314eda7acddSPeter Krystad put_unaligned_be64(opts->rcvr_key, ptr); 1315eda7acddSPeter Krystad ptr += 2; 1316cc7972eaSChristoph Paasch if (!opts->ext_copy.data_len) 1317cc7972eaSChristoph Paasch goto mp_capable_done; 1318cc7972eaSChristoph Paasch 1319c94b1f96SGeliang Tang if (opts->csum_reqd) { 1320c94b1f96SGeliang Tang put_unaligned_be32(opts->ext_copy.data_len << 16 | 1321c94b1f96SGeliang Tang mptcp_make_csum(&opts->ext_copy), ptr); 1322c94b1f96SGeliang Tang } else { 1323cc7972eaSChristoph Paasch put_unaligned_be32(opts->ext_copy.data_len << 16 | 1324cc7972eaSChristoph Paasch TCPOPT_NOP << 8 | TCPOPT_NOP, ptr); 1325c94b1f96SGeliang Tang } 1326cc7972eaSChristoph Paasch ptr += 1; 13276d0060f6SMat Martineau 1328*1bff1e43SPaolo Abeni /* MPC is additionally mutually exclusive with MP_PRIO */ 1329*1bff1e43SPaolo Abeni goto mp_capable_done; 1330*1bff1e43SPaolo Abeni } else if (OPTION_MPTCP_MPJ_SYN & opts->suboptions) { 1331*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_MP_JOIN, 1332*1bff1e43SPaolo Abeni TCPOLEN_MPTCP_MPJ_SYN, 1333*1bff1e43SPaolo Abeni opts->backup, opts->join_id); 1334*1bff1e43SPaolo Abeni put_unaligned_be32(opts->token, ptr); 1335*1bff1e43SPaolo Abeni ptr += 1; 1336*1bff1e43SPaolo Abeni put_unaligned_be32(opts->nonce, ptr); 1337*1bff1e43SPaolo Abeni ptr += 1; 1338*1bff1e43SPaolo Abeni } else if (OPTION_MPTCP_MPJ_SYNACK & opts->suboptions) { 1339*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_MP_JOIN, 1340*1bff1e43SPaolo Abeni TCPOLEN_MPTCP_MPJ_SYNACK, 1341*1bff1e43SPaolo Abeni opts->backup, opts->join_id); 1342*1bff1e43SPaolo Abeni put_unaligned_be64(opts->thmac, ptr); 1343*1bff1e43SPaolo Abeni ptr += 2; 1344*1bff1e43SPaolo Abeni put_unaligned_be32(opts->nonce, ptr); 1345*1bff1e43SPaolo Abeni ptr += 1; 1346*1bff1e43SPaolo Abeni } else if (OPTION_MPTCP_MPJ_ACK & opts->suboptions) { 1347*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_MP_JOIN, 1348*1bff1e43SPaolo Abeni TCPOLEN_MPTCP_MPJ_ACK, 0, 0); 1349*1bff1e43SPaolo Abeni memcpy(ptr, opts->hmac, MPTCPOPT_HMAC_LEN); 1350*1bff1e43SPaolo Abeni ptr += 5; 1351*1bff1e43SPaolo Abeni } else if (OPTION_MPTCP_ADD_ADDR & opts->suboptions) { 13526eb3d1e3SGeliang Tang u8 len = TCPOLEN_MPTCP_ADD_ADDR_BASE; 13536eb3d1e3SGeliang Tang u8 echo = MPTCP_ADDR_ECHO; 13543df523abSPeter Krystad 13553df523abSPeter Krystad #if IS_ENABLED(CONFIG_MPTCP_IPV6) 1356fef6b7ecSGeliang Tang if (opts->addr.family == AF_INET6) 1357e1ef6832SGeliang Tang len = TCPOLEN_MPTCP_ADD_ADDR6_BASE; 1358e1ef6832SGeliang Tang #endif 1359e1ef6832SGeliang Tang 136030f60baeSGeliang Tang if (opts->addr.port) 136122fb85ffSGeliang Tang len += TCPOLEN_MPTCP_PORT_LEN; 136222fb85ffSGeliang Tang 13636eb3d1e3SGeliang Tang if (opts->ahmac) { 13646eb3d1e3SGeliang Tang len += sizeof(opts->ahmac); 13656eb3d1e3SGeliang Tang echo = 0; 13666eb3d1e3SGeliang Tang } 13676eb3d1e3SGeliang Tang 13683df523abSPeter Krystad *ptr++ = mptcp_option(MPTCPOPT_ADD_ADDR, 136930f60baeSGeliang Tang len, echo, opts->addr.id); 1370fef6b7ecSGeliang Tang if (opts->addr.family == AF_INET) { 137130f60baeSGeliang Tang memcpy((u8 *)ptr, (u8 *)&opts->addr.addr.s_addr, 4); 13723df523abSPeter Krystad ptr += 1; 13733df523abSPeter Krystad } 13743df523abSPeter Krystad #if IS_ENABLED(CONFIG_MPTCP_IPV6) 1375fef6b7ecSGeliang Tang else if (opts->addr.family == AF_INET6) { 137630f60baeSGeliang Tang memcpy((u8 *)ptr, opts->addr.addr6.s6_addr, 16); 13773df523abSPeter Krystad ptr += 4; 1378e1ef6832SGeliang Tang } 1379e1ef6832SGeliang Tang #endif 138022fb85ffSGeliang Tang 138130f60baeSGeliang Tang if (!opts->addr.port) { 13823df523abSPeter Krystad if (opts->ahmac) { 13833df523abSPeter Krystad put_unaligned_be64(opts->ahmac, ptr); 13843df523abSPeter Krystad ptr += 2; 13853df523abSPeter Krystad } 138622fb85ffSGeliang Tang } else { 138730f60baeSGeliang Tang u16 port = ntohs(opts->addr.port); 138830f60baeSGeliang Tang 138922fb85ffSGeliang Tang if (opts->ahmac) { 139022fb85ffSGeliang Tang u8 *bptr = (u8 *)ptr; 139122fb85ffSGeliang Tang 139230f60baeSGeliang Tang put_unaligned_be16(port, bptr); 139322fb85ffSGeliang Tang bptr += 2; 139422fb85ffSGeliang Tang put_unaligned_be64(opts->ahmac, bptr); 139522fb85ffSGeliang Tang bptr += 8; 139622fb85ffSGeliang Tang put_unaligned_be16(TCPOPT_NOP << 8 | 139722fb85ffSGeliang Tang TCPOPT_NOP, bptr); 139822fb85ffSGeliang Tang 139922fb85ffSGeliang Tang ptr += 3; 140022fb85ffSGeliang Tang } else { 140130f60baeSGeliang Tang put_unaligned_be32(port << 16 | 140222fb85ffSGeliang Tang TCPOPT_NOP << 8 | 140322fb85ffSGeliang Tang TCPOPT_NOP, ptr); 140422fb85ffSGeliang Tang ptr += 1; 14053df523abSPeter Krystad } 140622fb85ffSGeliang Tang } 14073df523abSPeter Krystad } 14083df523abSPeter Krystad 1409*1bff1e43SPaolo Abeni if (OPTION_MPTCP_PRIO & opts->suboptions) { 1410*1bff1e43SPaolo Abeni const struct sock *ssk = (const struct sock *)tp; 1411*1bff1e43SPaolo Abeni struct mptcp_subflow_context *subflow; 1412*1bff1e43SPaolo Abeni 1413*1bff1e43SPaolo Abeni subflow = mptcp_subflow_ctx(ssk); 1414*1bff1e43SPaolo Abeni subflow->send_mp_prio = 0; 1415*1bff1e43SPaolo Abeni 1416*1bff1e43SPaolo Abeni *ptr++ = mptcp_option(MPTCPOPT_MP_PRIO, 1417*1bff1e43SPaolo Abeni TCPOLEN_MPTCP_PRIO, 1418*1bff1e43SPaolo Abeni opts->backup, TCPOPT_NOP); 1419*1bff1e43SPaolo Abeni } 1420*1bff1e43SPaolo Abeni 1421*1bff1e43SPaolo Abeni mp_capable_done: 14223df523abSPeter Krystad if (OPTION_MPTCP_RM_ADDR & opts->suboptions) { 14236445e17aSGeliang Tang u8 i = 1; 14246445e17aSGeliang Tang 14253df523abSPeter Krystad *ptr++ = mptcp_option(MPTCPOPT_RM_ADDR, 14266445e17aSGeliang Tang TCPOLEN_MPTCP_RM_ADDR_BASE + opts->rm_list.nr, 14276445e17aSGeliang Tang 0, opts->rm_list.ids[0]); 14286445e17aSGeliang Tang 14296445e17aSGeliang Tang while (i < opts->rm_list.nr) { 14306445e17aSGeliang Tang u8 id1, id2, id3, id4; 14316445e17aSGeliang Tang 14326445e17aSGeliang Tang id1 = opts->rm_list.ids[i]; 14336445e17aSGeliang Tang id2 = i + 1 < opts->rm_list.nr ? opts->rm_list.ids[i + 1] : TCPOPT_NOP; 14346445e17aSGeliang Tang id3 = i + 2 < opts->rm_list.nr ? opts->rm_list.ids[i + 2] : TCPOPT_NOP; 14356445e17aSGeliang Tang id4 = i + 3 < opts->rm_list.nr ? opts->rm_list.ids[i + 3] : TCPOPT_NOP; 14366445e17aSGeliang Tang put_unaligned_be32(id1 << 24 | id2 << 16 | id3 << 8 | id4, ptr); 14376445e17aSGeliang Tang ptr += 1; 14386445e17aSGeliang Tang i += 4; 14396445e17aSGeliang Tang } 14403df523abSPeter Krystad } 14413df523abSPeter Krystad 1442fa3fe2b1SFlorian Westphal if (tp) 1443fa3fe2b1SFlorian Westphal mptcp_set_rwin(tp); 1444eda7acddSPeter Krystad } 1445dc87efdbSFlorian Westphal 1446dc87efdbSFlorian Westphal __be32 mptcp_get_reset_option(const struct sk_buff *skb) 1447dc87efdbSFlorian Westphal { 1448dc87efdbSFlorian Westphal const struct mptcp_ext *ext = mptcp_get_ext(skb); 1449dc87efdbSFlorian Westphal u8 flags, reason; 1450dc87efdbSFlorian Westphal 1451dc87efdbSFlorian Westphal if (ext) { 1452dc87efdbSFlorian Westphal flags = ext->reset_transient; 1453dc87efdbSFlorian Westphal reason = ext->reset_reason; 1454dc87efdbSFlorian Westphal 1455dc87efdbSFlorian Westphal return mptcp_option(MPTCPOPT_RST, TCPOLEN_MPTCP_RST, 1456dc87efdbSFlorian Westphal flags, reason); 1457dc87efdbSFlorian Westphal } 1458dc87efdbSFlorian Westphal 1459dc87efdbSFlorian Westphal return htonl(0u); 1460dc87efdbSFlorian Westphal } 1461dc87efdbSFlorian Westphal EXPORT_SYMBOL_GPL(mptcp_get_reset_option); 1462