1 // SPDX-License-Identifier: GPL-2.0-or-later 2 /* SCTP kernel implementation 3 * (C) Copyright IBM Corp. 2001, 2004 4 * Copyright (c) 1999-2000 Cisco, Inc. 5 * Copyright (c) 1999-2001 Motorola, Inc. 6 * Copyright (c) 2001 Intel Corp. 7 * Copyright (c) 2001 Nokia, Inc. 8 * Copyright (c) 2001 La Monte H.P. Yarroll 9 * 10 * This file is part of the SCTP kernel implementation 11 * 12 * Initialization/cleanup for SCTP protocol support. 13 * 14 * Please send any bug reports or fixes you make to the 15 * email address(es): 16 * lksctp developers <linux-sctp@vger.kernel.org> 17 * 18 * Written or modified by: 19 * La Monte H.P. Yarroll <piggy@acm.org> 20 * Karl Knutson <karl@athena.chicago.il.us> 21 * Jon Grimm <jgrimm@us.ibm.com> 22 * Sridhar Samudrala <sri@us.ibm.com> 23 * Daisy Chang <daisyc@us.ibm.com> 24 * Ardelle Fan <ardelle.fan@intel.com> 25 */ 26 27 #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt 28 29 #include <linux/module.h> 30 #include <linux/init.h> 31 #include <linux/netdevice.h> 32 #include <linux/inetdevice.h> 33 #include <linux/seq_file.h> 34 #include <linux/memblock.h> 35 #include <linux/highmem.h> 36 #include <linux/swap.h> 37 #include <linux/slab.h> 38 #include <net/net_namespace.h> 39 #include <net/protocol.h> 40 #include <net/ip.h> 41 #include <net/ipv6.h> 42 #include <net/route.h> 43 #include <net/sctp/sctp.h> 44 #include <net/addrconf.h> 45 #include <net/inet_common.h> 46 #include <net/inet_ecn.h> 47 #include <net/udp_tunnel.h> 48 49 #define MAX_SCTP_PORT_HASH_ENTRIES (64 * 1024) 50 51 /* Global data structures. */ 52 struct sctp_globals sctp_globals __read_mostly; 53 54 struct idr sctp_assocs_id; 55 DEFINE_SPINLOCK(sctp_assocs_id_lock); 56 57 static struct sctp_pf *sctp_pf_inet6_specific; 58 static struct sctp_pf *sctp_pf_inet_specific; 59 static struct sctp_af *sctp_af_v4_specific; 60 static struct sctp_af *sctp_af_v6_specific; 61 62 struct kmem_cache *sctp_chunk_cachep __read_mostly; 63 struct kmem_cache *sctp_bucket_cachep __read_mostly; 64 65 long sysctl_sctp_mem[3]; 66 int sysctl_sctp_rmem[3]; 67 int sysctl_sctp_wmem[3]; 68 69 /* Private helper to extract ipv4 address and stash them in 70 * the protocol structure. 71 */ 72 static void sctp_v4_copy_addrlist(struct list_head *addrlist, 73 struct net_device *dev) 74 { 75 struct in_device *in_dev; 76 struct in_ifaddr *ifa; 77 struct sctp_sockaddr_entry *addr; 78 79 rcu_read_lock(); 80 if ((in_dev = __in_dev_get_rcu(dev)) == NULL) { 81 rcu_read_unlock(); 82 return; 83 } 84 85 in_dev_for_each_ifa_rcu(ifa, in_dev) { 86 /* Add the address to the local list. */ 87 addr = kzalloc(sizeof(*addr), GFP_ATOMIC); 88 if (addr) { 89 addr->a.v4.sin_family = AF_INET; 90 addr->a.v4.sin_addr.s_addr = ifa->ifa_local; 91 addr->valid = 1; 92 INIT_LIST_HEAD(&addr->list); 93 list_add_tail(&addr->list, addrlist); 94 } 95 } 96 97 rcu_read_unlock(); 98 } 99 100 /* Extract our IP addresses from the system and stash them in the 101 * protocol structure. 102 */ 103 static void sctp_get_local_addr_list(struct net *net) 104 { 105 struct net_device *dev; 106 struct list_head *pos; 107 struct sctp_af *af; 108 109 rcu_read_lock(); 110 for_each_netdev_rcu(net, dev) { 111 list_for_each(pos, &sctp_address_families) { 112 af = list_entry(pos, struct sctp_af, list); 113 af->copy_addrlist(&net->sctp.local_addr_list, dev); 114 } 115 } 116 rcu_read_unlock(); 117 } 118 119 /* Free the existing local addresses. */ 120 static void sctp_free_local_addr_list(struct net *net) 121 { 122 struct sctp_sockaddr_entry *addr; 123 struct list_head *pos, *temp; 124 125 list_for_each_safe(pos, temp, &net->sctp.local_addr_list) { 126 addr = list_entry(pos, struct sctp_sockaddr_entry, list); 127 list_del(pos); 128 kfree(addr); 129 } 130 } 131 132 /* Copy the local addresses which are valid for 'scope' into 'bp'. */ 133 int sctp_copy_local_addr_list(struct net *net, struct sctp_bind_addr *bp, 134 enum sctp_scope scope, gfp_t gfp, int copy_flags) 135 { 136 struct sctp_sockaddr_entry *addr; 137 union sctp_addr laddr; 138 int error = 0; 139 140 rcu_read_lock(); 141 list_for_each_entry_rcu(addr, &net->sctp.local_addr_list, list) { 142 if (!addr->valid) 143 continue; 144 if (!sctp_in_scope(net, &addr->a, scope)) 145 continue; 146 147 /* Now that the address is in scope, check to see if 148 * the address type is really supported by the local 149 * sock as well as the remote peer. 150 */ 151 if (addr->a.sa.sa_family == AF_INET && 152 (!(copy_flags & SCTP_ADDR4_ALLOWED) || 153 !(copy_flags & SCTP_ADDR4_PEERSUPP))) 154 continue; 155 if (addr->a.sa.sa_family == AF_INET6 && 156 (!(copy_flags & SCTP_ADDR6_ALLOWED) || 157 !(copy_flags & SCTP_ADDR6_PEERSUPP))) 158 continue; 159 160 laddr = addr->a; 161 /* also works for setting ipv6 address port */ 162 laddr.v4.sin_port = htons(bp->port); 163 if (sctp_bind_addr_state(bp, &laddr) != -1) 164 continue; 165 166 error = sctp_add_bind_addr(bp, &addr->a, sizeof(addr->a), 167 SCTP_ADDR_SRC, GFP_ATOMIC); 168 if (error) 169 break; 170 } 171 172 rcu_read_unlock(); 173 return error; 174 } 175 176 /* Copy over any ip options */ 177 static void sctp_v4_copy_ip_options(struct sock *sk, struct sock *newsk) 178 { 179 struct inet_sock *newinet, *inet = inet_sk(sk); 180 struct ip_options_rcu *inet_opt, *newopt = NULL; 181 182 newinet = inet_sk(newsk); 183 184 rcu_read_lock(); 185 inet_opt = rcu_dereference(inet->inet_opt); 186 if (inet_opt) { 187 newopt = sock_kmalloc(newsk, sizeof(*inet_opt) + 188 inet_opt->opt.optlen, GFP_ATOMIC); 189 if (newopt) 190 memcpy(newopt, inet_opt, sizeof(*inet_opt) + 191 inet_opt->opt.optlen); 192 else 193 pr_err("%s: Failed to copy ip options\n", __func__); 194 } 195 RCU_INIT_POINTER(newinet->inet_opt, newopt); 196 rcu_read_unlock(); 197 } 198 199 /* Account for the IP options */ 200 static int sctp_v4_ip_options_len(struct sock *sk) 201 { 202 struct inet_sock *inet = inet_sk(sk); 203 struct ip_options_rcu *inet_opt; 204 int len = 0; 205 206 rcu_read_lock(); 207 inet_opt = rcu_dereference(inet->inet_opt); 208 if (inet_opt) 209 len = inet_opt->opt.optlen; 210 211 rcu_read_unlock(); 212 return len; 213 } 214 215 /* Initialize a sctp_addr from in incoming skb. */ 216 static void sctp_v4_from_skb(union sctp_addr *addr, struct sk_buff *skb, 217 int is_saddr) 218 { 219 /* Always called on head skb, so this is safe */ 220 struct sctphdr *sh = sctp_hdr(skb); 221 struct sockaddr_in *sa = &addr->v4; 222 223 addr->v4.sin_family = AF_INET; 224 225 if (is_saddr) { 226 sa->sin_port = sh->source; 227 sa->sin_addr.s_addr = ip_hdr(skb)->saddr; 228 } else { 229 sa->sin_port = sh->dest; 230 sa->sin_addr.s_addr = ip_hdr(skb)->daddr; 231 } 232 memset(sa->sin_zero, 0, sizeof(sa->sin_zero)); 233 } 234 235 /* Initialize an sctp_addr from a socket. */ 236 static void sctp_v4_from_sk(union sctp_addr *addr, struct sock *sk) 237 { 238 addr->v4.sin_family = AF_INET; 239 addr->v4.sin_port = 0; 240 addr->v4.sin_addr.s_addr = inet_sk(sk)->inet_rcv_saddr; 241 memset(addr->v4.sin_zero, 0, sizeof(addr->v4.sin_zero)); 242 } 243 244 /* Initialize sk->sk_rcv_saddr from sctp_addr. */ 245 static void sctp_v4_to_sk_saddr(union sctp_addr *addr, struct sock *sk) 246 { 247 inet_sk(sk)->inet_rcv_saddr = addr->v4.sin_addr.s_addr; 248 } 249 250 /* Initialize sk->sk_daddr from sctp_addr. */ 251 static void sctp_v4_to_sk_daddr(union sctp_addr *addr, struct sock *sk) 252 { 253 inet_sk(sk)->inet_daddr = addr->v4.sin_addr.s_addr; 254 } 255 256 /* Initialize a sctp_addr from an address parameter. */ 257 static void sctp_v4_from_addr_param(union sctp_addr *addr, 258 union sctp_addr_param *param, 259 __be16 port, int iif) 260 { 261 addr->v4.sin_family = AF_INET; 262 addr->v4.sin_port = port; 263 addr->v4.sin_addr.s_addr = param->v4.addr.s_addr; 264 memset(addr->v4.sin_zero, 0, sizeof(addr->v4.sin_zero)); 265 } 266 267 /* Initialize an address parameter from a sctp_addr and return the length 268 * of the address parameter. 269 */ 270 static int sctp_v4_to_addr_param(const union sctp_addr *addr, 271 union sctp_addr_param *param) 272 { 273 int length = sizeof(struct sctp_ipv4addr_param); 274 275 param->v4.param_hdr.type = SCTP_PARAM_IPV4_ADDRESS; 276 param->v4.param_hdr.length = htons(length); 277 param->v4.addr.s_addr = addr->v4.sin_addr.s_addr; 278 279 return length; 280 } 281 282 /* Initialize a sctp_addr from a dst_entry. */ 283 static void sctp_v4_dst_saddr(union sctp_addr *saddr, struct flowi4 *fl4, 284 __be16 port) 285 { 286 saddr->v4.sin_family = AF_INET; 287 saddr->v4.sin_port = port; 288 saddr->v4.sin_addr.s_addr = fl4->saddr; 289 memset(saddr->v4.sin_zero, 0, sizeof(saddr->v4.sin_zero)); 290 } 291 292 /* Compare two addresses exactly. */ 293 static int sctp_v4_cmp_addr(const union sctp_addr *addr1, 294 const union sctp_addr *addr2) 295 { 296 if (addr1->sa.sa_family != addr2->sa.sa_family) 297 return 0; 298 if (addr1->v4.sin_port != addr2->v4.sin_port) 299 return 0; 300 if (addr1->v4.sin_addr.s_addr != addr2->v4.sin_addr.s_addr) 301 return 0; 302 303 return 1; 304 } 305 306 /* Initialize addr struct to INADDR_ANY. */ 307 static void sctp_v4_inaddr_any(union sctp_addr *addr, __be16 port) 308 { 309 addr->v4.sin_family = AF_INET; 310 addr->v4.sin_addr.s_addr = htonl(INADDR_ANY); 311 addr->v4.sin_port = port; 312 memset(addr->v4.sin_zero, 0, sizeof(addr->v4.sin_zero)); 313 } 314 315 /* Is this a wildcard address? */ 316 static int sctp_v4_is_any(const union sctp_addr *addr) 317 { 318 return htonl(INADDR_ANY) == addr->v4.sin_addr.s_addr; 319 } 320 321 /* This function checks if the address is a valid address to be used for 322 * SCTP binding. 323 * 324 * Output: 325 * Return 0 - If the address is a non-unicast or an illegal address. 326 * Return 1 - If the address is a unicast. 327 */ 328 static int sctp_v4_addr_valid(union sctp_addr *addr, 329 struct sctp_sock *sp, 330 const struct sk_buff *skb) 331 { 332 /* IPv4 addresses not allowed */ 333 if (sp && ipv6_only_sock(sctp_opt2sk(sp))) 334 return 0; 335 336 /* Is this a non-unicast address or a unusable SCTP address? */ 337 if (IS_IPV4_UNUSABLE_ADDRESS(addr->v4.sin_addr.s_addr)) 338 return 0; 339 340 /* Is this a broadcast address? */ 341 if (skb && skb_rtable(skb)->rt_flags & RTCF_BROADCAST) 342 return 0; 343 344 return 1; 345 } 346 347 /* Should this be available for binding? */ 348 static int sctp_v4_available(union sctp_addr *addr, struct sctp_sock *sp) 349 { 350 struct net *net = sock_net(&sp->inet.sk); 351 int ret = inet_addr_type(net, addr->v4.sin_addr.s_addr); 352 353 354 if (addr->v4.sin_addr.s_addr != htonl(INADDR_ANY) && 355 ret != RTN_LOCAL && 356 !sp->inet.freebind && 357 !net->ipv4.sysctl_ip_nonlocal_bind) 358 return 0; 359 360 if (ipv6_only_sock(sctp_opt2sk(sp))) 361 return 0; 362 363 return 1; 364 } 365 366 /* Checking the loopback, private and other address scopes as defined in 367 * RFC 1918. The IPv4 scoping is based on the draft for SCTP IPv4 368 * scoping <draft-stewart-tsvwg-sctp-ipv4-00.txt>. 369 * 370 * Level 0 - unusable SCTP addresses 371 * Level 1 - loopback address 372 * Level 2 - link-local addresses 373 * Level 3 - private addresses. 374 * Level 4 - global addresses 375 * For INIT and INIT-ACK address list, let L be the level of 376 * requested destination address, sender and receiver 377 * SHOULD include all of its addresses with level greater 378 * than or equal to L. 379 * 380 * IPv4 scoping can be controlled through sysctl option 381 * net.sctp.addr_scope_policy 382 */ 383 static enum sctp_scope sctp_v4_scope(union sctp_addr *addr) 384 { 385 enum sctp_scope retval; 386 387 /* Check for unusable SCTP addresses. */ 388 if (IS_IPV4_UNUSABLE_ADDRESS(addr->v4.sin_addr.s_addr)) { 389 retval = SCTP_SCOPE_UNUSABLE; 390 } else if (ipv4_is_loopback(addr->v4.sin_addr.s_addr)) { 391 retval = SCTP_SCOPE_LOOPBACK; 392 } else if (ipv4_is_linklocal_169(addr->v4.sin_addr.s_addr)) { 393 retval = SCTP_SCOPE_LINK; 394 } else if (ipv4_is_private_10(addr->v4.sin_addr.s_addr) || 395 ipv4_is_private_172(addr->v4.sin_addr.s_addr) || 396 ipv4_is_private_192(addr->v4.sin_addr.s_addr)) { 397 retval = SCTP_SCOPE_PRIVATE; 398 } else { 399 retval = SCTP_SCOPE_GLOBAL; 400 } 401 402 return retval; 403 } 404 405 /* Returns a valid dst cache entry for the given source and destination ip 406 * addresses. If an association is passed, trys to get a dst entry with a 407 * source address that matches an address in the bind address list. 408 */ 409 static void sctp_v4_get_dst(struct sctp_transport *t, union sctp_addr *saddr, 410 struct flowi *fl, struct sock *sk) 411 { 412 struct sctp_association *asoc = t->asoc; 413 struct rtable *rt; 414 struct flowi _fl; 415 struct flowi4 *fl4 = &_fl.u.ip4; 416 struct sctp_bind_addr *bp; 417 struct sctp_sockaddr_entry *laddr; 418 struct dst_entry *dst = NULL; 419 union sctp_addr *daddr = &t->ipaddr; 420 union sctp_addr dst_saddr; 421 __u8 tos = inet_sk(sk)->tos; 422 423 if (t->dscp & SCTP_DSCP_SET_MASK) 424 tos = t->dscp & SCTP_DSCP_VAL_MASK; 425 memset(&_fl, 0x0, sizeof(_fl)); 426 fl4->daddr = daddr->v4.sin_addr.s_addr; 427 fl4->fl4_dport = daddr->v4.sin_port; 428 fl4->flowi4_proto = IPPROTO_SCTP; 429 if (asoc) { 430 fl4->flowi4_tos = RT_CONN_FLAGS_TOS(asoc->base.sk, tos); 431 fl4->flowi4_oif = asoc->base.sk->sk_bound_dev_if; 432 fl4->fl4_sport = htons(asoc->base.bind_addr.port); 433 } 434 if (saddr) { 435 fl4->saddr = saddr->v4.sin_addr.s_addr; 436 if (!fl4->fl4_sport) 437 fl4->fl4_sport = saddr->v4.sin_port; 438 } 439 440 pr_debug("%s: dst:%pI4, src:%pI4 - ", __func__, &fl4->daddr, 441 &fl4->saddr); 442 443 rt = ip_route_output_key(sock_net(sk), fl4); 444 if (!IS_ERR(rt)) { 445 dst = &rt->dst; 446 t->dst = dst; 447 memcpy(fl, &_fl, sizeof(_fl)); 448 } 449 450 /* If there is no association or if a source address is passed, no 451 * more validation is required. 452 */ 453 if (!asoc || saddr) 454 goto out; 455 456 bp = &asoc->base.bind_addr; 457 458 if (dst) { 459 /* Walk through the bind address list and look for a bind 460 * address that matches the source address of the returned dst. 461 */ 462 sctp_v4_dst_saddr(&dst_saddr, fl4, htons(bp->port)); 463 rcu_read_lock(); 464 list_for_each_entry_rcu(laddr, &bp->address_list, list) { 465 if (!laddr->valid || (laddr->state == SCTP_ADDR_DEL) || 466 (laddr->state != SCTP_ADDR_SRC && 467 !asoc->src_out_of_asoc_ok)) 468 continue; 469 if (sctp_v4_cmp_addr(&dst_saddr, &laddr->a)) 470 goto out_unlock; 471 } 472 rcu_read_unlock(); 473 474 /* None of the bound addresses match the source address of the 475 * dst. So release it. 476 */ 477 dst_release(dst); 478 dst = NULL; 479 } 480 481 /* Walk through the bind address list and try to get a dst that 482 * matches a bind address as the source address. 483 */ 484 rcu_read_lock(); 485 list_for_each_entry_rcu(laddr, &bp->address_list, list) { 486 struct net_device *odev; 487 488 if (!laddr->valid) 489 continue; 490 if (laddr->state != SCTP_ADDR_SRC || 491 AF_INET != laddr->a.sa.sa_family) 492 continue; 493 494 fl4->fl4_sport = laddr->a.v4.sin_port; 495 flowi4_update_output(fl4, 496 asoc->base.sk->sk_bound_dev_if, 497 RT_CONN_FLAGS_TOS(asoc->base.sk, tos), 498 daddr->v4.sin_addr.s_addr, 499 laddr->a.v4.sin_addr.s_addr); 500 501 rt = ip_route_output_key(sock_net(sk), fl4); 502 if (IS_ERR(rt)) 503 continue; 504 505 /* Ensure the src address belongs to the output 506 * interface. 507 */ 508 odev = __ip_dev_find(sock_net(sk), laddr->a.v4.sin_addr.s_addr, 509 false); 510 if (!odev || odev->ifindex != fl4->flowi4_oif) { 511 if (!dst) { 512 dst = &rt->dst; 513 t->dst = dst; 514 memcpy(fl, &_fl, sizeof(_fl)); 515 } else { 516 dst_release(&rt->dst); 517 } 518 continue; 519 } 520 521 dst_release(dst); 522 dst = &rt->dst; 523 t->dst = dst; 524 memcpy(fl, &_fl, sizeof(_fl)); 525 break; 526 } 527 528 out_unlock: 529 rcu_read_unlock(); 530 out: 531 if (dst) { 532 pr_debug("rt_dst:%pI4, rt_src:%pI4\n", 533 &fl->u.ip4.daddr, &fl->u.ip4.saddr); 534 } else { 535 t->dst = NULL; 536 pr_debug("no route\n"); 537 } 538 } 539 540 /* For v4, the source address is cached in the route entry(dst). So no need 541 * to cache it separately and hence this is an empty routine. 542 */ 543 static void sctp_v4_get_saddr(struct sctp_sock *sk, 544 struct sctp_transport *t, 545 struct flowi *fl) 546 { 547 union sctp_addr *saddr = &t->saddr; 548 struct rtable *rt = (struct rtable *)t->dst; 549 550 if (rt) { 551 saddr->v4.sin_family = AF_INET; 552 saddr->v4.sin_addr.s_addr = fl->u.ip4.saddr; 553 } 554 } 555 556 /* What interface did this skb arrive on? */ 557 static int sctp_v4_skb_iif(const struct sk_buff *skb) 558 { 559 return inet_iif(skb); 560 } 561 562 /* Was this packet marked by Explicit Congestion Notification? */ 563 static int sctp_v4_is_ce(const struct sk_buff *skb) 564 { 565 return INET_ECN_is_ce(ip_hdr(skb)->tos); 566 } 567 568 /* Create and initialize a new sk for the socket returned by accept(). */ 569 static struct sock *sctp_v4_create_accept_sk(struct sock *sk, 570 struct sctp_association *asoc, 571 bool kern) 572 { 573 struct sock *newsk = sk_alloc(sock_net(sk), PF_INET, GFP_KERNEL, 574 sk->sk_prot, kern); 575 struct inet_sock *newinet; 576 577 if (!newsk) 578 goto out; 579 580 sock_init_data(NULL, newsk); 581 582 sctp_copy_sock(newsk, sk, asoc); 583 sock_reset_flag(newsk, SOCK_ZAPPED); 584 585 sctp_v4_copy_ip_options(sk, newsk); 586 587 newinet = inet_sk(newsk); 588 589 newinet->inet_daddr = asoc->peer.primary_addr.v4.sin_addr.s_addr; 590 591 sk_refcnt_debug_inc(newsk); 592 593 if (newsk->sk_prot->init(newsk)) { 594 sk_common_release(newsk); 595 newsk = NULL; 596 } 597 598 out: 599 return newsk; 600 } 601 602 static int sctp_v4_addr_to_user(struct sctp_sock *sp, union sctp_addr *addr) 603 { 604 /* No address mapping for V4 sockets */ 605 memset(addr->v4.sin_zero, 0, sizeof(addr->v4.sin_zero)); 606 return sizeof(struct sockaddr_in); 607 } 608 609 /* Dump the v4 addr to the seq file. */ 610 static void sctp_v4_seq_dump_addr(struct seq_file *seq, union sctp_addr *addr) 611 { 612 seq_printf(seq, "%pI4 ", &addr->v4.sin_addr); 613 } 614 615 static void sctp_v4_ecn_capable(struct sock *sk) 616 { 617 INET_ECN_xmit(sk); 618 } 619 620 static void sctp_addr_wq_timeout_handler(struct timer_list *t) 621 { 622 struct net *net = from_timer(net, t, sctp.addr_wq_timer); 623 struct sctp_sockaddr_entry *addrw, *temp; 624 struct sctp_sock *sp; 625 626 spin_lock_bh(&net->sctp.addr_wq_lock); 627 628 list_for_each_entry_safe(addrw, temp, &net->sctp.addr_waitq, list) { 629 pr_debug("%s: the first ent in wq:%p is addr:%pISc for cmd:%d at " 630 "entry:%p\n", __func__, &net->sctp.addr_waitq, &addrw->a.sa, 631 addrw->state, addrw); 632 633 #if IS_ENABLED(CONFIG_IPV6) 634 /* Now we send an ASCONF for each association */ 635 /* Note. we currently don't handle link local IPv6 addressees */ 636 if (addrw->a.sa.sa_family == AF_INET6) { 637 struct in6_addr *in6; 638 639 if (ipv6_addr_type(&addrw->a.v6.sin6_addr) & 640 IPV6_ADDR_LINKLOCAL) 641 goto free_next; 642 643 in6 = (struct in6_addr *)&addrw->a.v6.sin6_addr; 644 if (ipv6_chk_addr(net, in6, NULL, 0) == 0 && 645 addrw->state == SCTP_ADDR_NEW) { 646 unsigned long timeo_val; 647 648 pr_debug("%s: this is on DAD, trying %d sec " 649 "later\n", __func__, 650 SCTP_ADDRESS_TICK_DELAY); 651 652 timeo_val = jiffies; 653 timeo_val += msecs_to_jiffies(SCTP_ADDRESS_TICK_DELAY); 654 mod_timer(&net->sctp.addr_wq_timer, timeo_val); 655 break; 656 } 657 } 658 #endif 659 list_for_each_entry(sp, &net->sctp.auto_asconf_splist, auto_asconf_list) { 660 struct sock *sk; 661 662 sk = sctp_opt2sk(sp); 663 /* ignore bound-specific endpoints */ 664 if (!sctp_is_ep_boundall(sk)) 665 continue; 666 bh_lock_sock(sk); 667 if (sctp_asconf_mgmt(sp, addrw) < 0) 668 pr_debug("%s: sctp_asconf_mgmt failed\n", __func__); 669 bh_unlock_sock(sk); 670 } 671 #if IS_ENABLED(CONFIG_IPV6) 672 free_next: 673 #endif 674 list_del(&addrw->list); 675 kfree(addrw); 676 } 677 spin_unlock_bh(&net->sctp.addr_wq_lock); 678 } 679 680 static void sctp_free_addr_wq(struct net *net) 681 { 682 struct sctp_sockaddr_entry *addrw; 683 struct sctp_sockaddr_entry *temp; 684 685 spin_lock_bh(&net->sctp.addr_wq_lock); 686 del_timer(&net->sctp.addr_wq_timer); 687 list_for_each_entry_safe(addrw, temp, &net->sctp.addr_waitq, list) { 688 list_del(&addrw->list); 689 kfree(addrw); 690 } 691 spin_unlock_bh(&net->sctp.addr_wq_lock); 692 } 693 694 /* lookup the entry for the same address in the addr_waitq 695 * sctp_addr_wq MUST be locked 696 */ 697 static struct sctp_sockaddr_entry *sctp_addr_wq_lookup(struct net *net, 698 struct sctp_sockaddr_entry *addr) 699 { 700 struct sctp_sockaddr_entry *addrw; 701 702 list_for_each_entry(addrw, &net->sctp.addr_waitq, list) { 703 if (addrw->a.sa.sa_family != addr->a.sa.sa_family) 704 continue; 705 if (addrw->a.sa.sa_family == AF_INET) { 706 if (addrw->a.v4.sin_addr.s_addr == 707 addr->a.v4.sin_addr.s_addr) 708 return addrw; 709 } else if (addrw->a.sa.sa_family == AF_INET6) { 710 if (ipv6_addr_equal(&addrw->a.v6.sin6_addr, 711 &addr->a.v6.sin6_addr)) 712 return addrw; 713 } 714 } 715 return NULL; 716 } 717 718 void sctp_addr_wq_mgmt(struct net *net, struct sctp_sockaddr_entry *addr, int cmd) 719 { 720 struct sctp_sockaddr_entry *addrw; 721 unsigned long timeo_val; 722 723 /* first, we check if an opposite message already exist in the queue. 724 * If we found such message, it is removed. 725 * This operation is a bit stupid, but the DHCP client attaches the 726 * new address after a couple of addition and deletion of that address 727 */ 728 729 spin_lock_bh(&net->sctp.addr_wq_lock); 730 /* Offsets existing events in addr_wq */ 731 addrw = sctp_addr_wq_lookup(net, addr); 732 if (addrw) { 733 if (addrw->state != cmd) { 734 pr_debug("%s: offsets existing entry for %d, addr:%pISc " 735 "in wq:%p\n", __func__, addrw->state, &addrw->a.sa, 736 &net->sctp.addr_waitq); 737 738 list_del(&addrw->list); 739 kfree(addrw); 740 } 741 spin_unlock_bh(&net->sctp.addr_wq_lock); 742 return; 743 } 744 745 /* OK, we have to add the new address to the wait queue */ 746 addrw = kmemdup(addr, sizeof(struct sctp_sockaddr_entry), GFP_ATOMIC); 747 if (addrw == NULL) { 748 spin_unlock_bh(&net->sctp.addr_wq_lock); 749 return; 750 } 751 addrw->state = cmd; 752 list_add_tail(&addrw->list, &net->sctp.addr_waitq); 753 754 pr_debug("%s: add new entry for cmd:%d, addr:%pISc in wq:%p\n", 755 __func__, addrw->state, &addrw->a.sa, &net->sctp.addr_waitq); 756 757 if (!timer_pending(&net->sctp.addr_wq_timer)) { 758 timeo_val = jiffies; 759 timeo_val += msecs_to_jiffies(SCTP_ADDRESS_TICK_DELAY); 760 mod_timer(&net->sctp.addr_wq_timer, timeo_val); 761 } 762 spin_unlock_bh(&net->sctp.addr_wq_lock); 763 } 764 765 /* Event handler for inet address addition/deletion events. 766 * The sctp_local_addr_list needs to be protocted by a spin lock since 767 * multiple notifiers (say IPv4 and IPv6) may be running at the same 768 * time and thus corrupt the list. 769 * The reader side is protected with RCU. 770 */ 771 static int sctp_inetaddr_event(struct notifier_block *this, unsigned long ev, 772 void *ptr) 773 { 774 struct in_ifaddr *ifa = (struct in_ifaddr *)ptr; 775 struct sctp_sockaddr_entry *addr = NULL; 776 struct sctp_sockaddr_entry *temp; 777 struct net *net = dev_net(ifa->ifa_dev->dev); 778 int found = 0; 779 780 switch (ev) { 781 case NETDEV_UP: 782 addr = kzalloc(sizeof(*addr), GFP_ATOMIC); 783 if (addr) { 784 addr->a.v4.sin_family = AF_INET; 785 addr->a.v4.sin_addr.s_addr = ifa->ifa_local; 786 addr->valid = 1; 787 spin_lock_bh(&net->sctp.local_addr_lock); 788 list_add_tail_rcu(&addr->list, &net->sctp.local_addr_list); 789 sctp_addr_wq_mgmt(net, addr, SCTP_ADDR_NEW); 790 spin_unlock_bh(&net->sctp.local_addr_lock); 791 } 792 break; 793 case NETDEV_DOWN: 794 spin_lock_bh(&net->sctp.local_addr_lock); 795 list_for_each_entry_safe(addr, temp, 796 &net->sctp.local_addr_list, list) { 797 if (addr->a.sa.sa_family == AF_INET && 798 addr->a.v4.sin_addr.s_addr == 799 ifa->ifa_local) { 800 sctp_addr_wq_mgmt(net, addr, SCTP_ADDR_DEL); 801 found = 1; 802 addr->valid = 0; 803 list_del_rcu(&addr->list); 804 break; 805 } 806 } 807 spin_unlock_bh(&net->sctp.local_addr_lock); 808 if (found) 809 kfree_rcu(addr, rcu); 810 break; 811 } 812 813 return NOTIFY_DONE; 814 } 815 816 /* 817 * Initialize the control inode/socket with a control endpoint data 818 * structure. This endpoint is reserved exclusively for the OOTB processing. 819 */ 820 static int sctp_ctl_sock_init(struct net *net) 821 { 822 int err; 823 sa_family_t family = PF_INET; 824 825 if (sctp_get_pf_specific(PF_INET6)) 826 family = PF_INET6; 827 828 err = inet_ctl_sock_create(&net->sctp.ctl_sock, family, 829 SOCK_SEQPACKET, IPPROTO_SCTP, net); 830 831 /* If IPv6 socket could not be created, try the IPv4 socket */ 832 if (err < 0 && family == PF_INET6) 833 err = inet_ctl_sock_create(&net->sctp.ctl_sock, AF_INET, 834 SOCK_SEQPACKET, IPPROTO_SCTP, 835 net); 836 837 if (err < 0) { 838 pr_err("Failed to create the SCTP control socket\n"); 839 return err; 840 } 841 return 0; 842 } 843 844 static int sctp_udp_rcv(struct sock *sk, struct sk_buff *skb) 845 { 846 SCTP_INPUT_CB(skb)->encap_port = udp_hdr(skb)->source; 847 848 skb_set_transport_header(skb, sizeof(struct udphdr)); 849 sctp_rcv(skb); 850 return 0; 851 } 852 853 int sctp_udp_sock_start(struct net *net) 854 { 855 struct udp_tunnel_sock_cfg tuncfg = {NULL}; 856 struct udp_port_cfg udp_conf = {0}; 857 struct socket *sock; 858 int err; 859 860 udp_conf.family = AF_INET; 861 udp_conf.local_ip.s_addr = htonl(INADDR_ANY); 862 udp_conf.local_udp_port = htons(net->sctp.udp_port); 863 err = udp_sock_create(net, &udp_conf, &sock); 864 if (err) { 865 pr_err("Failed to create the SCTP UDP tunneling v4 sock\n"); 866 return err; 867 } 868 869 tuncfg.encap_type = 1; 870 tuncfg.encap_rcv = sctp_udp_rcv; 871 tuncfg.encap_err_lookup = sctp_udp_v4_err; 872 setup_udp_tunnel_sock(net, sock, &tuncfg); 873 net->sctp.udp4_sock = sock->sk; 874 875 #if IS_ENABLED(CONFIG_IPV6) 876 memset(&udp_conf, 0, sizeof(udp_conf)); 877 878 udp_conf.family = AF_INET6; 879 udp_conf.local_ip6 = in6addr_any; 880 udp_conf.local_udp_port = htons(net->sctp.udp_port); 881 udp_conf.use_udp6_rx_checksums = true; 882 udp_conf.ipv6_v6only = true; 883 err = udp_sock_create(net, &udp_conf, &sock); 884 if (err) { 885 pr_err("Failed to create the SCTP UDP tunneling v6 sock\n"); 886 udp_tunnel_sock_release(net->sctp.udp4_sock->sk_socket); 887 net->sctp.udp4_sock = NULL; 888 return err; 889 } 890 891 tuncfg.encap_type = 1; 892 tuncfg.encap_rcv = sctp_udp_rcv; 893 tuncfg.encap_err_lookup = sctp_udp_v6_err; 894 setup_udp_tunnel_sock(net, sock, &tuncfg); 895 net->sctp.udp6_sock = sock->sk; 896 #endif 897 898 return 0; 899 } 900 901 void sctp_udp_sock_stop(struct net *net) 902 { 903 if (net->sctp.udp4_sock) { 904 udp_tunnel_sock_release(net->sctp.udp4_sock->sk_socket); 905 net->sctp.udp4_sock = NULL; 906 } 907 if (net->sctp.udp6_sock) { 908 udp_tunnel_sock_release(net->sctp.udp6_sock->sk_socket); 909 net->sctp.udp6_sock = NULL; 910 } 911 } 912 913 /* Register address family specific functions. */ 914 int sctp_register_af(struct sctp_af *af) 915 { 916 switch (af->sa_family) { 917 case AF_INET: 918 if (sctp_af_v4_specific) 919 return 0; 920 sctp_af_v4_specific = af; 921 break; 922 case AF_INET6: 923 if (sctp_af_v6_specific) 924 return 0; 925 sctp_af_v6_specific = af; 926 break; 927 default: 928 return 0; 929 } 930 931 INIT_LIST_HEAD(&af->list); 932 list_add_tail(&af->list, &sctp_address_families); 933 return 1; 934 } 935 936 /* Get the table of functions for manipulating a particular address 937 * family. 938 */ 939 struct sctp_af *sctp_get_af_specific(sa_family_t family) 940 { 941 switch (family) { 942 case AF_INET: 943 return sctp_af_v4_specific; 944 case AF_INET6: 945 return sctp_af_v6_specific; 946 default: 947 return NULL; 948 } 949 } 950 951 /* Common code to initialize a AF_INET msg_name. */ 952 static void sctp_inet_msgname(char *msgname, int *addr_len) 953 { 954 struct sockaddr_in *sin; 955 956 sin = (struct sockaddr_in *)msgname; 957 *addr_len = sizeof(struct sockaddr_in); 958 sin->sin_family = AF_INET; 959 memset(sin->sin_zero, 0, sizeof(sin->sin_zero)); 960 } 961 962 /* Copy the primary address of the peer primary address as the msg_name. */ 963 static void sctp_inet_event_msgname(struct sctp_ulpevent *event, char *msgname, 964 int *addr_len) 965 { 966 struct sockaddr_in *sin, *sinfrom; 967 968 if (msgname) { 969 struct sctp_association *asoc; 970 971 asoc = event->asoc; 972 sctp_inet_msgname(msgname, addr_len); 973 sin = (struct sockaddr_in *)msgname; 974 sinfrom = &asoc->peer.primary_addr.v4; 975 sin->sin_port = htons(asoc->peer.port); 976 sin->sin_addr.s_addr = sinfrom->sin_addr.s_addr; 977 } 978 } 979 980 /* Initialize and copy out a msgname from an inbound skb. */ 981 static void sctp_inet_skb_msgname(struct sk_buff *skb, char *msgname, int *len) 982 { 983 if (msgname) { 984 struct sctphdr *sh = sctp_hdr(skb); 985 struct sockaddr_in *sin = (struct sockaddr_in *)msgname; 986 987 sctp_inet_msgname(msgname, len); 988 sin->sin_port = sh->source; 989 sin->sin_addr.s_addr = ip_hdr(skb)->saddr; 990 } 991 } 992 993 /* Do we support this AF? */ 994 static int sctp_inet_af_supported(sa_family_t family, struct sctp_sock *sp) 995 { 996 /* PF_INET only supports AF_INET addresses. */ 997 return AF_INET == family; 998 } 999 1000 /* Address matching with wildcards allowed. */ 1001 static int sctp_inet_cmp_addr(const union sctp_addr *addr1, 1002 const union sctp_addr *addr2, 1003 struct sctp_sock *opt) 1004 { 1005 /* PF_INET only supports AF_INET addresses. */ 1006 if (addr1->sa.sa_family != addr2->sa.sa_family) 1007 return 0; 1008 if (htonl(INADDR_ANY) == addr1->v4.sin_addr.s_addr || 1009 htonl(INADDR_ANY) == addr2->v4.sin_addr.s_addr) 1010 return 1; 1011 if (addr1->v4.sin_addr.s_addr == addr2->v4.sin_addr.s_addr) 1012 return 1; 1013 1014 return 0; 1015 } 1016 1017 /* Verify that provided sockaddr looks bindable. Common verification has 1018 * already been taken care of. 1019 */ 1020 static int sctp_inet_bind_verify(struct sctp_sock *opt, union sctp_addr *addr) 1021 { 1022 return sctp_v4_available(addr, opt); 1023 } 1024 1025 /* Verify that sockaddr looks sendable. Common verification has already 1026 * been taken care of. 1027 */ 1028 static int sctp_inet_send_verify(struct sctp_sock *opt, union sctp_addr *addr) 1029 { 1030 return 1; 1031 } 1032 1033 /* Fill in Supported Address Type information for INIT and INIT-ACK 1034 * chunks. Returns number of addresses supported. 1035 */ 1036 static int sctp_inet_supported_addrs(const struct sctp_sock *opt, 1037 __be16 *types) 1038 { 1039 types[0] = SCTP_PARAM_IPV4_ADDRESS; 1040 return 1; 1041 } 1042 1043 /* Wrapper routine that calls the ip transmit routine. */ 1044 static inline int sctp_v4_xmit(struct sk_buff *skb, struct sctp_transport *t) 1045 { 1046 struct dst_entry *dst = dst_clone(t->dst); 1047 struct flowi4 *fl4 = &t->fl.u.ip4; 1048 struct sock *sk = skb->sk; 1049 struct inet_sock *inet = inet_sk(sk); 1050 __u8 dscp = inet->tos; 1051 __be16 df = 0; 1052 1053 pr_debug("%s: skb:%p, len:%d, src:%pI4, dst:%pI4\n", __func__, skb, 1054 skb->len, &fl4->saddr, &fl4->daddr); 1055 1056 if (t->dscp & SCTP_DSCP_SET_MASK) 1057 dscp = t->dscp & SCTP_DSCP_VAL_MASK; 1058 1059 inet->pmtudisc = t->param_flags & SPP_PMTUD_ENABLE ? IP_PMTUDISC_DO 1060 : IP_PMTUDISC_DONT; 1061 SCTP_INC_STATS(sock_net(sk), SCTP_MIB_OUTSCTPPACKS); 1062 1063 if (!t->encap_port || !sctp_sk(sk)->udp_port) { 1064 skb_dst_set(skb, dst); 1065 return __ip_queue_xmit(sk, skb, &t->fl, dscp); 1066 } 1067 1068 if (skb_is_gso(skb)) 1069 skb_shinfo(skb)->gso_type |= SKB_GSO_UDP_TUNNEL_CSUM; 1070 1071 if (ip_dont_fragment(sk, dst) && !skb->ignore_df) 1072 df = htons(IP_DF); 1073 1074 skb->encapsulation = 1; 1075 skb_reset_inner_mac_header(skb); 1076 skb_reset_inner_transport_header(skb); 1077 skb_set_inner_ipproto(skb, IPPROTO_SCTP); 1078 udp_tunnel_xmit_skb((struct rtable *)dst, sk, skb, fl4->saddr, 1079 fl4->daddr, dscp, ip4_dst_hoplimit(dst), df, 1080 sctp_sk(sk)->udp_port, t->encap_port, false, false); 1081 return 0; 1082 } 1083 1084 static struct sctp_af sctp_af_inet; 1085 1086 static struct sctp_pf sctp_pf_inet = { 1087 .event_msgname = sctp_inet_event_msgname, 1088 .skb_msgname = sctp_inet_skb_msgname, 1089 .af_supported = sctp_inet_af_supported, 1090 .cmp_addr = sctp_inet_cmp_addr, 1091 .bind_verify = sctp_inet_bind_verify, 1092 .send_verify = sctp_inet_send_verify, 1093 .supported_addrs = sctp_inet_supported_addrs, 1094 .create_accept_sk = sctp_v4_create_accept_sk, 1095 .addr_to_user = sctp_v4_addr_to_user, 1096 .to_sk_saddr = sctp_v4_to_sk_saddr, 1097 .to_sk_daddr = sctp_v4_to_sk_daddr, 1098 .copy_ip_options = sctp_v4_copy_ip_options, 1099 .af = &sctp_af_inet 1100 }; 1101 1102 /* Notifier for inetaddr addition/deletion events. */ 1103 static struct notifier_block sctp_inetaddr_notifier = { 1104 .notifier_call = sctp_inetaddr_event, 1105 }; 1106 1107 /* Socket operations. */ 1108 static const struct proto_ops inet_seqpacket_ops = { 1109 .family = PF_INET, 1110 .owner = THIS_MODULE, 1111 .release = inet_release, /* Needs to be wrapped... */ 1112 .bind = inet_bind, 1113 .connect = sctp_inet_connect, 1114 .socketpair = sock_no_socketpair, 1115 .accept = inet_accept, 1116 .getname = inet_getname, /* Semantics are different. */ 1117 .poll = sctp_poll, 1118 .ioctl = inet_ioctl, 1119 .gettstamp = sock_gettstamp, 1120 .listen = sctp_inet_listen, 1121 .shutdown = inet_shutdown, /* Looks harmless. */ 1122 .setsockopt = sock_common_setsockopt, /* IP_SOL IP_OPTION is a problem */ 1123 .getsockopt = sock_common_getsockopt, 1124 .sendmsg = inet_sendmsg, 1125 .recvmsg = inet_recvmsg, 1126 .mmap = sock_no_mmap, 1127 .sendpage = sock_no_sendpage, 1128 }; 1129 1130 /* Registration with AF_INET family. */ 1131 static struct inet_protosw sctp_seqpacket_protosw = { 1132 .type = SOCK_SEQPACKET, 1133 .protocol = IPPROTO_SCTP, 1134 .prot = &sctp_prot, 1135 .ops = &inet_seqpacket_ops, 1136 .flags = SCTP_PROTOSW_FLAG 1137 }; 1138 static struct inet_protosw sctp_stream_protosw = { 1139 .type = SOCK_STREAM, 1140 .protocol = IPPROTO_SCTP, 1141 .prot = &sctp_prot, 1142 .ops = &inet_seqpacket_ops, 1143 .flags = SCTP_PROTOSW_FLAG 1144 }; 1145 1146 static int sctp4_rcv(struct sk_buff *skb) 1147 { 1148 SCTP_INPUT_CB(skb)->encap_port = 0; 1149 return sctp_rcv(skb); 1150 } 1151 1152 /* Register with IP layer. */ 1153 static const struct net_protocol sctp_protocol = { 1154 .handler = sctp4_rcv, 1155 .err_handler = sctp_v4_err, 1156 .no_policy = 1, 1157 .icmp_strict_tag_validation = 1, 1158 }; 1159 1160 /* IPv4 address related functions. */ 1161 static struct sctp_af sctp_af_inet = { 1162 .sa_family = AF_INET, 1163 .sctp_xmit = sctp_v4_xmit, 1164 .setsockopt = ip_setsockopt, 1165 .getsockopt = ip_getsockopt, 1166 .get_dst = sctp_v4_get_dst, 1167 .get_saddr = sctp_v4_get_saddr, 1168 .copy_addrlist = sctp_v4_copy_addrlist, 1169 .from_skb = sctp_v4_from_skb, 1170 .from_sk = sctp_v4_from_sk, 1171 .from_addr_param = sctp_v4_from_addr_param, 1172 .to_addr_param = sctp_v4_to_addr_param, 1173 .cmp_addr = sctp_v4_cmp_addr, 1174 .addr_valid = sctp_v4_addr_valid, 1175 .inaddr_any = sctp_v4_inaddr_any, 1176 .is_any = sctp_v4_is_any, 1177 .available = sctp_v4_available, 1178 .scope = sctp_v4_scope, 1179 .skb_iif = sctp_v4_skb_iif, 1180 .is_ce = sctp_v4_is_ce, 1181 .seq_dump_addr = sctp_v4_seq_dump_addr, 1182 .ecn_capable = sctp_v4_ecn_capable, 1183 .net_header_len = sizeof(struct iphdr), 1184 .sockaddr_len = sizeof(struct sockaddr_in), 1185 .ip_options_len = sctp_v4_ip_options_len, 1186 }; 1187 1188 struct sctp_pf *sctp_get_pf_specific(sa_family_t family) 1189 { 1190 switch (family) { 1191 case PF_INET: 1192 return sctp_pf_inet_specific; 1193 case PF_INET6: 1194 return sctp_pf_inet6_specific; 1195 default: 1196 return NULL; 1197 } 1198 } 1199 1200 /* Register the PF specific function table. */ 1201 int sctp_register_pf(struct sctp_pf *pf, sa_family_t family) 1202 { 1203 switch (family) { 1204 case PF_INET: 1205 if (sctp_pf_inet_specific) 1206 return 0; 1207 sctp_pf_inet_specific = pf; 1208 break; 1209 case PF_INET6: 1210 if (sctp_pf_inet6_specific) 1211 return 0; 1212 sctp_pf_inet6_specific = pf; 1213 break; 1214 default: 1215 return 0; 1216 } 1217 return 1; 1218 } 1219 1220 static inline int init_sctp_mibs(struct net *net) 1221 { 1222 net->sctp.sctp_statistics = alloc_percpu(struct sctp_mib); 1223 if (!net->sctp.sctp_statistics) 1224 return -ENOMEM; 1225 return 0; 1226 } 1227 1228 static inline void cleanup_sctp_mibs(struct net *net) 1229 { 1230 free_percpu(net->sctp.sctp_statistics); 1231 } 1232 1233 static void sctp_v4_pf_init(void) 1234 { 1235 /* Initialize the SCTP specific PF functions. */ 1236 sctp_register_pf(&sctp_pf_inet, PF_INET); 1237 sctp_register_af(&sctp_af_inet); 1238 } 1239 1240 static void sctp_v4_pf_exit(void) 1241 { 1242 list_del(&sctp_af_inet.list); 1243 } 1244 1245 static int sctp_v4_protosw_init(void) 1246 { 1247 int rc; 1248 1249 rc = proto_register(&sctp_prot, 1); 1250 if (rc) 1251 return rc; 1252 1253 /* Register SCTP(UDP and TCP style) with socket layer. */ 1254 inet_register_protosw(&sctp_seqpacket_protosw); 1255 inet_register_protosw(&sctp_stream_protosw); 1256 1257 return 0; 1258 } 1259 1260 static void sctp_v4_protosw_exit(void) 1261 { 1262 inet_unregister_protosw(&sctp_stream_protosw); 1263 inet_unregister_protosw(&sctp_seqpacket_protosw); 1264 proto_unregister(&sctp_prot); 1265 } 1266 1267 static int sctp_v4_add_protocol(void) 1268 { 1269 /* Register notifier for inet address additions/deletions. */ 1270 register_inetaddr_notifier(&sctp_inetaddr_notifier); 1271 1272 /* Register SCTP with inet layer. */ 1273 if (inet_add_protocol(&sctp_protocol, IPPROTO_SCTP) < 0) 1274 return -EAGAIN; 1275 1276 return 0; 1277 } 1278 1279 static void sctp_v4_del_protocol(void) 1280 { 1281 inet_del_protocol(&sctp_protocol, IPPROTO_SCTP); 1282 unregister_inetaddr_notifier(&sctp_inetaddr_notifier); 1283 } 1284 1285 static int __net_init sctp_defaults_init(struct net *net) 1286 { 1287 int status; 1288 1289 /* 1290 * 14. Suggested SCTP Protocol Parameter Values 1291 */ 1292 /* The following protocol parameters are RECOMMENDED: */ 1293 /* RTO.Initial - 3 seconds */ 1294 net->sctp.rto_initial = SCTP_RTO_INITIAL; 1295 /* RTO.Min - 1 second */ 1296 net->sctp.rto_min = SCTP_RTO_MIN; 1297 /* RTO.Max - 60 seconds */ 1298 net->sctp.rto_max = SCTP_RTO_MAX; 1299 /* RTO.Alpha - 1/8 */ 1300 net->sctp.rto_alpha = SCTP_RTO_ALPHA; 1301 /* RTO.Beta - 1/4 */ 1302 net->sctp.rto_beta = SCTP_RTO_BETA; 1303 1304 /* Valid.Cookie.Life - 60 seconds */ 1305 net->sctp.valid_cookie_life = SCTP_DEFAULT_COOKIE_LIFE; 1306 1307 /* Whether Cookie Preservative is enabled(1) or not(0) */ 1308 net->sctp.cookie_preserve_enable = 1; 1309 1310 /* Default sctp sockets to use md5 as their hmac alg */ 1311 #if defined (CONFIG_SCTP_DEFAULT_COOKIE_HMAC_MD5) 1312 net->sctp.sctp_hmac_alg = "md5"; 1313 #elif defined (CONFIG_SCTP_DEFAULT_COOKIE_HMAC_SHA1) 1314 net->sctp.sctp_hmac_alg = "sha1"; 1315 #else 1316 net->sctp.sctp_hmac_alg = NULL; 1317 #endif 1318 1319 /* Max.Burst - 4 */ 1320 net->sctp.max_burst = SCTP_DEFAULT_MAX_BURST; 1321 1322 /* Disable of Primary Path Switchover by default */ 1323 net->sctp.ps_retrans = SCTP_PS_RETRANS_MAX; 1324 1325 /* Enable pf state by default */ 1326 net->sctp.pf_enable = 1; 1327 1328 /* Ignore pf exposure feature by default */ 1329 net->sctp.pf_expose = SCTP_PF_EXPOSE_UNSET; 1330 1331 /* Association.Max.Retrans - 10 attempts 1332 * Path.Max.Retrans - 5 attempts (per destination address) 1333 * Max.Init.Retransmits - 8 attempts 1334 */ 1335 net->sctp.max_retrans_association = 10; 1336 net->sctp.max_retrans_path = 5; 1337 net->sctp.max_retrans_init = 8; 1338 1339 /* Sendbuffer growth - do per-socket accounting */ 1340 net->sctp.sndbuf_policy = 0; 1341 1342 /* Rcvbuffer growth - do per-socket accounting */ 1343 net->sctp.rcvbuf_policy = 0; 1344 1345 /* HB.interval - 30 seconds */ 1346 net->sctp.hb_interval = SCTP_DEFAULT_TIMEOUT_HEARTBEAT; 1347 1348 /* delayed SACK timeout */ 1349 net->sctp.sack_timeout = SCTP_DEFAULT_TIMEOUT_SACK; 1350 1351 /* Disable ADDIP by default. */ 1352 net->sctp.addip_enable = 0; 1353 net->sctp.addip_noauth = 0; 1354 net->sctp.default_auto_asconf = 0; 1355 1356 /* Enable PR-SCTP by default. */ 1357 net->sctp.prsctp_enable = 1; 1358 1359 /* Disable RECONF by default. */ 1360 net->sctp.reconf_enable = 0; 1361 1362 /* Disable AUTH by default. */ 1363 net->sctp.auth_enable = 0; 1364 1365 /* Enable ECN by default. */ 1366 net->sctp.ecn_enable = 1; 1367 1368 /* Set UDP tunneling listening port to 0 by default */ 1369 net->sctp.udp_port = 0; 1370 1371 /* Set remote encap port to 0 by default */ 1372 net->sctp.encap_port = 0; 1373 1374 /* Set SCOPE policy to enabled */ 1375 net->sctp.scope_policy = SCTP_SCOPE_POLICY_ENABLE; 1376 1377 /* Set the default rwnd update threshold */ 1378 net->sctp.rwnd_upd_shift = SCTP_DEFAULT_RWND_SHIFT; 1379 1380 /* Initialize maximum autoclose timeout. */ 1381 net->sctp.max_autoclose = INT_MAX / HZ; 1382 1383 status = sctp_sysctl_net_register(net); 1384 if (status) 1385 goto err_sysctl_register; 1386 1387 /* Allocate and initialise sctp mibs. */ 1388 status = init_sctp_mibs(net); 1389 if (status) 1390 goto err_init_mibs; 1391 1392 #ifdef CONFIG_PROC_FS 1393 /* Initialize proc fs directory. */ 1394 status = sctp_proc_init(net); 1395 if (status) 1396 goto err_init_proc; 1397 #endif 1398 1399 sctp_dbg_objcnt_init(net); 1400 1401 /* Initialize the local address list. */ 1402 INIT_LIST_HEAD(&net->sctp.local_addr_list); 1403 spin_lock_init(&net->sctp.local_addr_lock); 1404 sctp_get_local_addr_list(net); 1405 1406 /* Initialize the address event list */ 1407 INIT_LIST_HEAD(&net->sctp.addr_waitq); 1408 INIT_LIST_HEAD(&net->sctp.auto_asconf_splist); 1409 spin_lock_init(&net->sctp.addr_wq_lock); 1410 net->sctp.addr_wq_timer.expires = 0; 1411 timer_setup(&net->sctp.addr_wq_timer, sctp_addr_wq_timeout_handler, 0); 1412 1413 return 0; 1414 1415 #ifdef CONFIG_PROC_FS 1416 err_init_proc: 1417 cleanup_sctp_mibs(net); 1418 #endif 1419 err_init_mibs: 1420 sctp_sysctl_net_unregister(net); 1421 err_sysctl_register: 1422 return status; 1423 } 1424 1425 static void __net_exit sctp_defaults_exit(struct net *net) 1426 { 1427 /* Free the local address list */ 1428 sctp_free_addr_wq(net); 1429 sctp_free_local_addr_list(net); 1430 1431 #ifdef CONFIG_PROC_FS 1432 remove_proc_subtree("sctp", net->proc_net); 1433 net->sctp.proc_net_sctp = NULL; 1434 #endif 1435 cleanup_sctp_mibs(net); 1436 sctp_sysctl_net_unregister(net); 1437 } 1438 1439 static struct pernet_operations sctp_defaults_ops = { 1440 .init = sctp_defaults_init, 1441 .exit = sctp_defaults_exit, 1442 }; 1443 1444 static int __net_init sctp_ctrlsock_init(struct net *net) 1445 { 1446 int status; 1447 1448 /* Initialize the control inode/socket for handling OOTB packets. */ 1449 status = sctp_ctl_sock_init(net); 1450 if (status) 1451 pr_err("Failed to initialize the SCTP control sock\n"); 1452 1453 return status; 1454 } 1455 1456 static void __net_exit sctp_ctrlsock_exit(struct net *net) 1457 { 1458 /* Free the control endpoint. */ 1459 inet_ctl_sock_destroy(net->sctp.ctl_sock); 1460 } 1461 1462 static struct pernet_operations sctp_ctrlsock_ops = { 1463 .init = sctp_ctrlsock_init, 1464 .exit = sctp_ctrlsock_exit, 1465 }; 1466 1467 /* Initialize the universe into something sensible. */ 1468 static __init int sctp_init(void) 1469 { 1470 unsigned long nr_pages = totalram_pages(); 1471 unsigned long limit; 1472 unsigned long goal; 1473 int max_entry_order; 1474 int num_entries; 1475 int max_share; 1476 int status; 1477 int order; 1478 int i; 1479 1480 sock_skb_cb_check_size(sizeof(struct sctp_ulpevent)); 1481 1482 /* Allocate bind_bucket and chunk caches. */ 1483 status = -ENOBUFS; 1484 sctp_bucket_cachep = kmem_cache_create("sctp_bind_bucket", 1485 sizeof(struct sctp_bind_bucket), 1486 0, SLAB_HWCACHE_ALIGN, 1487 NULL); 1488 if (!sctp_bucket_cachep) 1489 goto out; 1490 1491 sctp_chunk_cachep = kmem_cache_create("sctp_chunk", 1492 sizeof(struct sctp_chunk), 1493 0, SLAB_HWCACHE_ALIGN, 1494 NULL); 1495 if (!sctp_chunk_cachep) 1496 goto err_chunk_cachep; 1497 1498 status = percpu_counter_init(&sctp_sockets_allocated, 0, GFP_KERNEL); 1499 if (status) 1500 goto err_percpu_counter_init; 1501 1502 /* Implementation specific variables. */ 1503 1504 /* Initialize default stream count setup information. */ 1505 sctp_max_instreams = SCTP_DEFAULT_INSTREAMS; 1506 sctp_max_outstreams = SCTP_DEFAULT_OUTSTREAMS; 1507 1508 /* Initialize handle used for association ids. */ 1509 idr_init(&sctp_assocs_id); 1510 1511 limit = nr_free_buffer_pages() / 8; 1512 limit = max(limit, 128UL); 1513 sysctl_sctp_mem[0] = limit / 4 * 3; 1514 sysctl_sctp_mem[1] = limit; 1515 sysctl_sctp_mem[2] = sysctl_sctp_mem[0] * 2; 1516 1517 /* Set per-socket limits to no more than 1/128 the pressure threshold*/ 1518 limit = (sysctl_sctp_mem[1]) << (PAGE_SHIFT - 7); 1519 max_share = min(4UL*1024*1024, limit); 1520 1521 sysctl_sctp_rmem[0] = SK_MEM_QUANTUM; /* give each asoc 1 page min */ 1522 sysctl_sctp_rmem[1] = 1500 * SKB_TRUESIZE(1); 1523 sysctl_sctp_rmem[2] = max(sysctl_sctp_rmem[1], max_share); 1524 1525 sysctl_sctp_wmem[0] = SK_MEM_QUANTUM; 1526 sysctl_sctp_wmem[1] = 16*1024; 1527 sysctl_sctp_wmem[2] = max(64*1024, max_share); 1528 1529 /* Size and allocate the association hash table. 1530 * The methodology is similar to that of the tcp hash tables. 1531 * Though not identical. Start by getting a goal size 1532 */ 1533 if (nr_pages >= (128 * 1024)) 1534 goal = nr_pages >> (22 - PAGE_SHIFT); 1535 else 1536 goal = nr_pages >> (24 - PAGE_SHIFT); 1537 1538 /* Then compute the page order for said goal */ 1539 order = get_order(goal); 1540 1541 /* Now compute the required page order for the maximum sized table we 1542 * want to create 1543 */ 1544 max_entry_order = get_order(MAX_SCTP_PORT_HASH_ENTRIES * 1545 sizeof(struct sctp_bind_hashbucket)); 1546 1547 /* Limit the page order by that maximum hash table size */ 1548 order = min(order, max_entry_order); 1549 1550 /* Allocate and initialize the endpoint hash table. */ 1551 sctp_ep_hashsize = 64; 1552 sctp_ep_hashtable = 1553 kmalloc_array(64, sizeof(struct sctp_hashbucket), GFP_KERNEL); 1554 if (!sctp_ep_hashtable) { 1555 pr_err("Failed endpoint_hash alloc\n"); 1556 status = -ENOMEM; 1557 goto err_ehash_alloc; 1558 } 1559 for (i = 0; i < sctp_ep_hashsize; i++) { 1560 rwlock_init(&sctp_ep_hashtable[i].lock); 1561 INIT_HLIST_HEAD(&sctp_ep_hashtable[i].chain); 1562 } 1563 1564 /* Allocate and initialize the SCTP port hash table. 1565 * Note that order is initalized to start at the max sized 1566 * table we want to support. If we can't get that many pages 1567 * reduce the order and try again 1568 */ 1569 do { 1570 sctp_port_hashtable = (struct sctp_bind_hashbucket *) 1571 __get_free_pages(GFP_KERNEL | __GFP_NOWARN, order); 1572 } while (!sctp_port_hashtable && --order > 0); 1573 1574 if (!sctp_port_hashtable) { 1575 pr_err("Failed bind hash alloc\n"); 1576 status = -ENOMEM; 1577 goto err_bhash_alloc; 1578 } 1579 1580 /* Now compute the number of entries that will fit in the 1581 * port hash space we allocated 1582 */ 1583 num_entries = (1UL << order) * PAGE_SIZE / 1584 sizeof(struct sctp_bind_hashbucket); 1585 1586 /* And finish by rounding it down to the nearest power of two. 1587 * This wastes some memory of course, but it's needed because 1588 * the hash function operates based on the assumption that 1589 * the number of entries is a power of two. 1590 */ 1591 sctp_port_hashsize = rounddown_pow_of_two(num_entries); 1592 1593 for (i = 0; i < sctp_port_hashsize; i++) { 1594 spin_lock_init(&sctp_port_hashtable[i].lock); 1595 INIT_HLIST_HEAD(&sctp_port_hashtable[i].chain); 1596 } 1597 1598 status = sctp_transport_hashtable_init(); 1599 if (status) 1600 goto err_thash_alloc; 1601 1602 pr_info("Hash tables configured (bind %d/%d)\n", sctp_port_hashsize, 1603 num_entries); 1604 1605 sctp_sysctl_register(); 1606 1607 INIT_LIST_HEAD(&sctp_address_families); 1608 sctp_v4_pf_init(); 1609 sctp_v6_pf_init(); 1610 sctp_sched_ops_init(); 1611 1612 status = register_pernet_subsys(&sctp_defaults_ops); 1613 if (status) 1614 goto err_register_defaults; 1615 1616 status = sctp_v4_protosw_init(); 1617 if (status) 1618 goto err_protosw_init; 1619 1620 status = sctp_v6_protosw_init(); 1621 if (status) 1622 goto err_v6_protosw_init; 1623 1624 status = register_pernet_subsys(&sctp_ctrlsock_ops); 1625 if (status) 1626 goto err_register_ctrlsock; 1627 1628 status = sctp_v4_add_protocol(); 1629 if (status) 1630 goto err_add_protocol; 1631 1632 /* Register SCTP with inet6 layer. */ 1633 status = sctp_v6_add_protocol(); 1634 if (status) 1635 goto err_v6_add_protocol; 1636 1637 if (sctp_offload_init() < 0) 1638 pr_crit("%s: Cannot add SCTP protocol offload\n", __func__); 1639 1640 out: 1641 return status; 1642 err_v6_add_protocol: 1643 sctp_v4_del_protocol(); 1644 err_add_protocol: 1645 unregister_pernet_subsys(&sctp_ctrlsock_ops); 1646 err_register_ctrlsock: 1647 sctp_v6_protosw_exit(); 1648 err_v6_protosw_init: 1649 sctp_v4_protosw_exit(); 1650 err_protosw_init: 1651 unregister_pernet_subsys(&sctp_defaults_ops); 1652 err_register_defaults: 1653 sctp_v4_pf_exit(); 1654 sctp_v6_pf_exit(); 1655 sctp_sysctl_unregister(); 1656 free_pages((unsigned long)sctp_port_hashtable, 1657 get_order(sctp_port_hashsize * 1658 sizeof(struct sctp_bind_hashbucket))); 1659 err_bhash_alloc: 1660 sctp_transport_hashtable_destroy(); 1661 err_thash_alloc: 1662 kfree(sctp_ep_hashtable); 1663 err_ehash_alloc: 1664 percpu_counter_destroy(&sctp_sockets_allocated); 1665 err_percpu_counter_init: 1666 kmem_cache_destroy(sctp_chunk_cachep); 1667 err_chunk_cachep: 1668 kmem_cache_destroy(sctp_bucket_cachep); 1669 goto out; 1670 } 1671 1672 /* Exit handler for the SCTP protocol. */ 1673 static __exit void sctp_exit(void) 1674 { 1675 /* BUG. This should probably do something useful like clean 1676 * up all the remaining associations and all that memory. 1677 */ 1678 1679 /* Unregister with inet6/inet layers. */ 1680 sctp_v6_del_protocol(); 1681 sctp_v4_del_protocol(); 1682 1683 unregister_pernet_subsys(&sctp_ctrlsock_ops); 1684 1685 /* Free protosw registrations */ 1686 sctp_v6_protosw_exit(); 1687 sctp_v4_protosw_exit(); 1688 1689 unregister_pernet_subsys(&sctp_defaults_ops); 1690 1691 /* Unregister with socket layer. */ 1692 sctp_v6_pf_exit(); 1693 sctp_v4_pf_exit(); 1694 1695 sctp_sysctl_unregister(); 1696 1697 free_pages((unsigned long)sctp_port_hashtable, 1698 get_order(sctp_port_hashsize * 1699 sizeof(struct sctp_bind_hashbucket))); 1700 kfree(sctp_ep_hashtable); 1701 sctp_transport_hashtable_destroy(); 1702 1703 percpu_counter_destroy(&sctp_sockets_allocated); 1704 1705 rcu_barrier(); /* Wait for completion of call_rcu()'s */ 1706 1707 kmem_cache_destroy(sctp_chunk_cachep); 1708 kmem_cache_destroy(sctp_bucket_cachep); 1709 } 1710 1711 module_init(sctp_init); 1712 module_exit(sctp_exit); 1713 1714 /* 1715 * __stringify doesn't likes enums, so use IPPROTO_SCTP value (132) directly. 1716 */ 1717 MODULE_ALIAS("net-pf-" __stringify(PF_INET) "-proto-132"); 1718 MODULE_ALIAS("net-pf-" __stringify(PF_INET6) "-proto-132"); 1719 MODULE_AUTHOR("Linux Kernel SCTP developers <linux-sctp@vger.kernel.org>"); 1720 MODULE_DESCRIPTION("Support for the SCTP protocol (RFC2960)"); 1721 module_param_named(no_checksums, sctp_checksum_disable, bool, 0644); 1722 MODULE_PARM_DESC(no_checksums, "Disable checksums computing and verification"); 1723 MODULE_LICENSE("GPL"); 1724