xref: /openbmc/linux/net/sctp/transport.c (revision 1ac731c529cd4d6adbce134754b51ff7d822b145)
147505b8bSThomas Gleixner // SPDX-License-Identifier: GPL-2.0-or-later
260c778b2SVlad Yasevich /* SCTP kernel implementation
31da177e4SLinus Torvalds  * Copyright (c) 1999-2000 Cisco, Inc.
41da177e4SLinus Torvalds  * Copyright (c) 1999-2001 Motorola, Inc.
51da177e4SLinus Torvalds  * Copyright (c) 2001-2003 International Business Machines Corp.
61da177e4SLinus Torvalds  * Copyright (c) 2001 Intel Corp.
71da177e4SLinus Torvalds  * Copyright (c) 2001 La Monte H.P. Yarroll
81da177e4SLinus Torvalds  *
960c778b2SVlad Yasevich  * This file is part of the SCTP kernel implementation
101da177e4SLinus Torvalds  *
115112cf59SChristophe JAILLET  * This module provides the abstraction for an SCTP transport representing
121da177e4SLinus Torvalds  * a remote transport address.  For local transport addresses, we just use
131da177e4SLinus Torvalds  * union sctp_addr.
141da177e4SLinus Torvalds  *
151da177e4SLinus Torvalds  * Please send any bug reports or fixes you make to the
161da177e4SLinus Torvalds  * email address(es):
1791705c61SDaniel Borkmann  *    lksctp developers <linux-sctp@vger.kernel.org>
181da177e4SLinus Torvalds  *
191da177e4SLinus Torvalds  * Written or modified by:
201da177e4SLinus Torvalds  *    La Monte H.P. Yarroll <piggy@acm.org>
211da177e4SLinus Torvalds  *    Karl Knutson          <karl@athena.chicago.il.us>
221da177e4SLinus Torvalds  *    Jon Grimm             <jgrimm@us.ibm.com>
231da177e4SLinus Torvalds  *    Xingang Guo           <xingang.guo@intel.com>
241da177e4SLinus Torvalds  *    Hui Huang             <hui.huang@nokia.com>
251da177e4SLinus Torvalds  *    Sridhar Samudrala	    <sri@us.ibm.com>
261da177e4SLinus Torvalds  *    Ardelle Fan	    <ardelle.fan@intel.com>
271da177e4SLinus Torvalds  */
281da177e4SLinus Torvalds 
29145ce502SJoe Perches #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
30145ce502SJoe Perches 
315a0e3ad6STejun Heo #include <linux/slab.h>
321da177e4SLinus Torvalds #include <linux/types.h>
33ad8fec17SSridhar Samudrala #include <linux/random.h>
341da177e4SLinus Torvalds #include <net/sctp/sctp.h>
351da177e4SLinus Torvalds #include <net/sctp/sm.h>
361da177e4SLinus Torvalds 
371da177e4SLinus Torvalds /* 1st Level Abstractions.  */
381da177e4SLinus Torvalds 
391da177e4SLinus Torvalds /* Initialize a new transport from provided memory.  */
sctp_transport_init(struct net * net,struct sctp_transport * peer,const union sctp_addr * addr,gfp_t gfp)4089bf3450SEric W. Biederman static struct sctp_transport *sctp_transport_init(struct net *net,
4189bf3450SEric W. Biederman 						  struct sctp_transport *peer,
421da177e4SLinus Torvalds 						  const union sctp_addr *addr,
43dd0fc66fSAl Viro 						  gfp_t gfp)
441da177e4SLinus Torvalds {
451da177e4SLinus Torvalds 	/* Copy in the address.  */
461da177e4SLinus Torvalds 	peer->af_specific = sctp_get_af_specific(addr->sa.sa_family);
474c31bc6bSXin Long 	memcpy(&peer->ipaddr, addr, peer->af_specific->sockaddr_len);
481da177e4SLinus Torvalds 	memset(&peer->saddr, 0, sizeof(union sctp_addr));
491da177e4SLinus Torvalds 
504244854dSNeil Horman 	peer->sack_generation = 0;
514244854dSNeil Horman 
521da177e4SLinus Torvalds 	/* From 6.3.1 RTO Calculation:
531da177e4SLinus Torvalds 	 *
541da177e4SLinus Torvalds 	 * C1) Until an RTT measurement has been made for a packet sent to the
551da177e4SLinus Torvalds 	 * given destination transport address, set RTO to the protocol
561da177e4SLinus Torvalds 	 * parameter 'RTO.Initial'.
571da177e4SLinus Torvalds 	 */
58e1fc3b14SEric W. Biederman 	peer->rto = msecs_to_jiffies(net->sctp.rto_initial);
591da177e4SLinus Torvalds 
608b0e1953SThomas Gleixner 	peer->last_time_heard = 0;
611da177e4SLinus Torvalds 	peer->last_time_ecne_reduced = jiffies;
621da177e4SLinus Torvalds 
6352ccb8e9SFrank Filz 	peer->param_flags = SPP_HB_DISABLE |
6452ccb8e9SFrank Filz 			    SPP_PMTUD_ENABLE |
6552ccb8e9SFrank Filz 			    SPP_SACKDELAY_ENABLE;
661da177e4SLinus Torvalds 
671da177e4SLinus Torvalds 	/* Initialize the default path max_retrans.  */
68e1fc3b14SEric W. Biederman 	peer->pathmaxrxt  = net->sctp.max_retrans_path;
69e1fc3b14SEric W. Biederman 	peer->pf_retrans  = net->sctp.pf_retrans;
701da177e4SLinus Torvalds 
711da177e4SLinus Torvalds 	INIT_LIST_HEAD(&peer->transmitted);
721da177e4SLinus Torvalds 	INIT_LIST_HEAD(&peer->send_ready);
731da177e4SLinus Torvalds 	INIT_LIST_HEAD(&peer->transports);
741da177e4SLinus Torvalds 
759c3b5751SKees Cook 	timer_setup(&peer->T3_rtx_timer, sctp_generate_t3_rtx_event, 0);
769c3b5751SKees Cook 	timer_setup(&peer->hb_timer, sctp_generate_heartbeat_event, 0);
779c3b5751SKees Cook 	timer_setup(&peer->reconf_timer, sctp_generate_reconf_event, 0);
7892548ec2SXin Long 	timer_setup(&peer->probe_timer, sctp_generate_probe_event, 0);
799c3b5751SKees Cook 	timer_setup(&peer->proto_unreach_timer,
809c3b5751SKees Cook 		    sctp_generate_proto_unreach_event, 0);
811da177e4SLinus Torvalds 
82ad8fec17SSridhar Samudrala 	/* Initialize the 64-bit random nonce sent with heartbeat. */
83ad8fec17SSridhar Samudrala 	get_random_bytes(&peer->hb_nonce, sizeof(peer->hb_nonce));
84ad8fec17SSridhar Samudrala 
85a4b2b58eSReshetova, Elena 	refcount_set(&peer->refcnt, 1);
861da177e4SLinus Torvalds 
871da177e4SLinus Torvalds 	return peer;
881da177e4SLinus Torvalds }
891da177e4SLinus Torvalds 
901da177e4SLinus Torvalds /* Allocate and initialize a new transport.  */
sctp_transport_new(struct net * net,const union sctp_addr * addr,gfp_t gfp)9189bf3450SEric W. Biederman struct sctp_transport *sctp_transport_new(struct net *net,
9289bf3450SEric W. Biederman 					  const union sctp_addr *addr,
93dd0fc66fSAl Viro 					  gfp_t gfp)
941da177e4SLinus Torvalds {
951da177e4SLinus Torvalds 	struct sctp_transport *transport;
961da177e4SLinus Torvalds 
97939cfa75SDaniel Borkmann 	transport = kzalloc(sizeof(*transport), gfp);
981da177e4SLinus Torvalds 	if (!transport)
991da177e4SLinus Torvalds 		goto fail;
1001da177e4SLinus Torvalds 
10189bf3450SEric W. Biederman 	if (!sctp_transport_init(net, transport, addr, gfp))
1021da177e4SLinus Torvalds 		goto fail_init;
1031da177e4SLinus Torvalds 
1041da177e4SLinus Torvalds 	SCTP_DBG_OBJCNT_INC(transport);
1051da177e4SLinus Torvalds 
1061da177e4SLinus Torvalds 	return transport;
1071da177e4SLinus Torvalds 
1081da177e4SLinus Torvalds fail_init:
1091da177e4SLinus Torvalds 	kfree(transport);
1101da177e4SLinus Torvalds 
1111da177e4SLinus Torvalds fail:
1121da177e4SLinus Torvalds 	return NULL;
1131da177e4SLinus Torvalds }
1141da177e4SLinus Torvalds 
1151da177e4SLinus Torvalds /* This transport is no longer needed.  Free up if possible, or
1161da177e4SLinus Torvalds  * delay until it last reference count.
1171da177e4SLinus Torvalds  */
sctp_transport_free(struct sctp_transport * transport)1181da177e4SLinus Torvalds void sctp_transport_free(struct sctp_transport *transport)
1191da177e4SLinus Torvalds {
1201da177e4SLinus Torvalds 	/* Try to delete the heartbeat timer.  */
1211da177e4SLinus Torvalds 	if (del_timer(&transport->hb_timer))
1221da177e4SLinus Torvalds 		sctp_transport_put(transport);
1231da177e4SLinus Torvalds 
1241da177e4SLinus Torvalds 	/* Delete the T3_rtx timer if it's active.
1251da177e4SLinus Torvalds 	 * There is no point in not doing this now and letting
1261da177e4SLinus Torvalds 	 * structure hang around in memory since we know
1275112cf59SChristophe JAILLET 	 * the transport is going away.
1281da177e4SLinus Torvalds 	 */
12925cc4ae9SYing Xue 	if (del_timer(&transport->T3_rtx_timer))
1301da177e4SLinus Torvalds 		sctp_transport_put(transport);
1311da177e4SLinus Torvalds 
1327b9438deSXin Long 	if (del_timer(&transport->reconf_timer))
1337b9438deSXin Long 		sctp_transport_put(transport);
1347b9438deSXin Long 
13592548ec2SXin Long 	if (del_timer(&transport->probe_timer))
13692548ec2SXin Long 		sctp_transport_put(transport);
13792548ec2SXin Long 
13855fa0cfdSWei Yongjun 	/* Delete the ICMP proto unreachable timer if it's active. */
13925cc4ae9SYing Xue 	if (del_timer(&transport->proto_unreach_timer))
140057a10faSXin Long 		sctp_transport_put(transport);
1411da177e4SLinus Torvalds 
1421da177e4SLinus Torvalds 	sctp_transport_put(transport);
1431da177e4SLinus Torvalds }
1441da177e4SLinus Torvalds 
sctp_transport_destroy_rcu(struct rcu_head * head)14545122ca2SThomas Graf static void sctp_transport_destroy_rcu(struct rcu_head *head)
1461da177e4SLinus Torvalds {
14745122ca2SThomas Graf 	struct sctp_transport *transport;
1481da177e4SLinus Torvalds 
14945122ca2SThomas Graf 	transport = container_of(head, struct sctp_transport, rcu);
1501da177e4SLinus Torvalds 
1511da177e4SLinus Torvalds 	dst_release(transport->dst);
1521da177e4SLinus Torvalds 	kfree(transport);
1531da177e4SLinus Torvalds 	SCTP_DBG_OBJCNT_DEC(transport);
1541da177e4SLinus Torvalds }
1551da177e4SLinus Torvalds 
15645122ca2SThomas Graf /* Destroy the transport data structure.
15745122ca2SThomas Graf  * Assumes there are no more users of this structure.
15845122ca2SThomas Graf  */
sctp_transport_destroy(struct sctp_transport * transport)15945122ca2SThomas Graf static void sctp_transport_destroy(struct sctp_transport *transport)
16045122ca2SThomas Graf {
161a4b2b58eSReshetova, Elena 	if (unlikely(refcount_read(&transport->refcnt))) {
162bb33381dSDaniel Borkmann 		WARN(1, "Attempt to destroy undead transport %p!\n", transport);
163bb33381dSDaniel Borkmann 		return;
164bb33381dSDaniel Borkmann 	}
16545122ca2SThomas Graf 
1668c98653fSDaniel Borkmann 	sctp_packet_free(&transport->packet);
1678c98653fSDaniel Borkmann 
1688c98653fSDaniel Borkmann 	if (transport->asoc)
1698c98653fSDaniel Borkmann 		sctp_association_put(transport->asoc);
170771085d6SDaniel Borkmann 
171771085d6SDaniel Borkmann 	call_rcu(&transport->rcu, sctp_transport_destroy_rcu);
17245122ca2SThomas Graf }
17345122ca2SThomas Graf 
1741da177e4SLinus Torvalds /* Start T3_rtx timer if it is not already running and update the heartbeat
1751da177e4SLinus Torvalds  * timer.  This routine is called every time a DATA chunk is sent.
1761da177e4SLinus Torvalds  */
sctp_transport_reset_t3_rtx(struct sctp_transport * transport)177ba6f5e33SMarcelo Ricardo Leitner void sctp_transport_reset_t3_rtx(struct sctp_transport *transport)
1781da177e4SLinus Torvalds {
1791da177e4SLinus Torvalds 	/* RFC 2960 6.3.2 Retransmission Timer Rules
1801da177e4SLinus Torvalds 	 *
1811da177e4SLinus Torvalds 	 * R1) Every time a DATA chunk is sent to any address(including a
1821da177e4SLinus Torvalds 	 * retransmission), if the T3-rtx timer of that address is not running
1831da177e4SLinus Torvalds 	 * start it running so that it will expire after the RTO of that
1841da177e4SLinus Torvalds 	 * address.
1851da177e4SLinus Torvalds 	 */
1861da177e4SLinus Torvalds 
187d9efc223SVlad Yasevich 	if (!timer_pending(&transport->T3_rtx_timer))
1881da177e4SLinus Torvalds 		if (!mod_timer(&transport->T3_rtx_timer,
1891da177e4SLinus Torvalds 			       jiffies + transport->rto))
1901da177e4SLinus Torvalds 			sctp_transport_hold(transport);
191ba6f5e33SMarcelo Ricardo Leitner }
192ba6f5e33SMarcelo Ricardo Leitner 
sctp_transport_reset_hb_timer(struct sctp_transport * transport)193ba6f5e33SMarcelo Ricardo Leitner void sctp_transport_reset_hb_timer(struct sctp_transport *transport)
194ba6f5e33SMarcelo Ricardo Leitner {
195ba6f5e33SMarcelo Ricardo Leitner 	unsigned long expires;
1961da177e4SLinus Torvalds 
1971da177e4SLinus Torvalds 	/* When a data chunk is sent, reset the heartbeat interval.  */
198ba6f5e33SMarcelo Ricardo Leitner 	expires = jiffies + sctp_transport_timeout(transport);
1998f35ae17SXin Long 	if (!mod_timer(&transport->hb_timer,
2008032bf12SJason A. Donenfeld 		       expires + get_random_u32_below(transport->rto)))
2011da177e4SLinus Torvalds 		sctp_transport_hold(transport);
2021da177e4SLinus Torvalds }
2031da177e4SLinus Torvalds 
sctp_transport_reset_reconf_timer(struct sctp_transport * transport)2047b9438deSXin Long void sctp_transport_reset_reconf_timer(struct sctp_transport *transport)
2057b9438deSXin Long {
2067b9438deSXin Long 	if (!timer_pending(&transport->reconf_timer))
2077b9438deSXin Long 		if (!mod_timer(&transport->reconf_timer,
2087b9438deSXin Long 			       jiffies + transport->rto))
2097b9438deSXin Long 			sctp_transport_hold(transport);
2107b9438deSXin Long }
2117b9438deSXin Long 
sctp_transport_reset_probe_timer(struct sctp_transport * transport)21292548ec2SXin Long void sctp_transport_reset_probe_timer(struct sctp_transport *transport)
21392548ec2SXin Long {
21492548ec2SXin Long 	if (!mod_timer(&transport->probe_timer,
2150dac127cSXin Long 		       jiffies + transport->probe_interval))
21692548ec2SXin Long 		sctp_transport_hold(transport);
21792548ec2SXin Long }
21892548ec2SXin Long 
sctp_transport_reset_raise_timer(struct sctp_transport * transport)21970331909SXin Long void sctp_transport_reset_raise_timer(struct sctp_transport *transport)
22070331909SXin Long {
22170331909SXin Long 	if (!mod_timer(&transport->probe_timer,
22270331909SXin Long 		       jiffies + transport->probe_interval * 30))
22370331909SXin Long 		sctp_transport_hold(transport);
22470331909SXin Long }
22570331909SXin Long 
2261da177e4SLinus Torvalds /* This transport has been assigned to an association.
2271da177e4SLinus Torvalds  * Initialize fields from the association or from the sock itself.
2281da177e4SLinus Torvalds  * Register the reference count in the association.
2291da177e4SLinus Torvalds  */
sctp_transport_set_owner(struct sctp_transport * transport,struct sctp_association * asoc)2301da177e4SLinus Torvalds void sctp_transport_set_owner(struct sctp_transport *transport,
2311da177e4SLinus Torvalds 			      struct sctp_association *asoc)
2321da177e4SLinus Torvalds {
2331da177e4SLinus Torvalds 	transport->asoc = asoc;
2341da177e4SLinus Torvalds 	sctp_association_hold(asoc);
2351da177e4SLinus Torvalds }
2361da177e4SLinus Torvalds 
2371da177e4SLinus Torvalds /* Initialize the pmtu of a transport. */
sctp_transport_pmtu(struct sctp_transport * transport,struct sock * sk)2389914ae3cSVlad Yasevich void sctp_transport_pmtu(struct sctp_transport *transport, struct sock *sk)
2391da177e4SLinus Torvalds {
240da0420beSVlad Yasevich 	/* If we don't have a fresh route, look one up */
241f5b0a874SDavid S. Miller 	if (!transport->dst || transport->dst->obsolete) {
242c86a773cSJulian Anastasov 		sctp_transport_dst_release(transport);
243da0420beSVlad Yasevich 		transport->af_specific->get_dst(transport, &transport->saddr,
2448663c938SDavid S. Miller 						&transport->fl, sk);
245da0420beSVlad Yasevich 	}
2461da177e4SLinus Torvalds 
2476e91b578SMarcelo Ricardo Leitner 	if (transport->param_flags & SPP_PMTUD_DISABLE) {
2486e91b578SMarcelo Ricardo Leitner 		struct sctp_association *asoc = transport->asoc;
2496e91b578SMarcelo Ricardo Leitner 
2506e91b578SMarcelo Ricardo Leitner 		if (!transport->pathmtu && asoc && asoc->pathmtu)
2516e91b578SMarcelo Ricardo Leitner 			transport->pathmtu = asoc->pathmtu;
2526e91b578SMarcelo Ricardo Leitner 		if (transport->pathmtu)
2536e91b578SMarcelo Ricardo Leitner 			return;
2546e91b578SMarcelo Ricardo Leitner 	}
2556e91b578SMarcelo Ricardo Leitner 
2566ff0f871SMarcelo Ricardo Leitner 	if (transport->dst)
2576ff0f871SMarcelo Ricardo Leitner 		transport->pathmtu = sctp_dst_mtu(transport->dst);
2586ff0f871SMarcelo Ricardo Leitner 	else
25952ccb8e9SFrank Filz 		transport->pathmtu = SCTP_DEFAULT_MAXSEGMENT;
2607307e4faSXin Long 
2617307e4faSXin Long 	sctp_transport_pl_update(transport);
2621da177e4SLinus Torvalds }
2631da177e4SLinus Torvalds 
sctp_transport_pl_send(struct sctp_transport * t)26470331909SXin Long void sctp_transport_pl_send(struct sctp_transport *t)
2651dc68c19SXin Long {
266058e6e0eSXin Long 	if (t->pl.probe_count < SCTP_MAX_PROBES)
267058e6e0eSXin Long 		goto out;
2681dc68c19SXin Long 
269058e6e0eSXin Long 	t->pl.probe_count = 0;
2701dc68c19SXin Long 	if (t->pl.state == SCTP_PL_BASE) {
2711dc68c19SXin Long 		if (t->pl.probe_size == SCTP_BASE_PLPMTU) { /* BASE_PLPMTU Confirmation Failed */
2721dc68c19SXin Long 			t->pl.state = SCTP_PL_ERROR; /* Base -> Error */
2731dc68c19SXin Long 
27440171248SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
2751dc68c19SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
2761dc68c19SXin Long 			sctp_assoc_sync_pmtu(t->asoc);
2771dc68c19SXin Long 		}
2781dc68c19SXin Long 	} else if (t->pl.state == SCTP_PL_SEARCH) {
2791dc68c19SXin Long 		if (t->pl.pmtu == t->pl.probe_size) { /* Black Hole Detected */
2801dc68c19SXin Long 			t->pl.state = SCTP_PL_BASE;  /* Search -> Base */
2811dc68c19SXin Long 			t->pl.probe_size = SCTP_BASE_PLPMTU;
2821dc68c19SXin Long 			t->pl.probe_high = 0;
2831dc68c19SXin Long 
2841dc68c19SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
2851dc68c19SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
2861dc68c19SXin Long 			sctp_assoc_sync_pmtu(t->asoc);
2871dc68c19SXin Long 		} else { /* Normal probe failure. */
2881dc68c19SXin Long 			t->pl.probe_high = t->pl.probe_size;
2891dc68c19SXin Long 			t->pl.probe_size = t->pl.pmtu;
2901dc68c19SXin Long 		}
2911dc68c19SXin Long 	} else if (t->pl.state == SCTP_PL_COMPLETE) {
2921dc68c19SXin Long 		if (t->pl.pmtu == t->pl.probe_size) { /* Black Hole Detected */
2931dc68c19SXin Long 			t->pl.state = SCTP_PL_BASE;  /* Search Complete -> Base */
2941dc68c19SXin Long 			t->pl.probe_size = SCTP_BASE_PLPMTU;
2951dc68c19SXin Long 
2961dc68c19SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
2971dc68c19SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
2981dc68c19SXin Long 			sctp_assoc_sync_pmtu(t->asoc);
2991dc68c19SXin Long 		}
3001dc68c19SXin Long 	}
301058e6e0eSXin Long 
302058e6e0eSXin Long out:
303058e6e0eSXin Long 	pr_debug("%s: PLPMTUD: transport: %p, state: %d, pmtu: %d, size: %d, high: %d\n",
304058e6e0eSXin Long 		 __func__, t, t->pl.state, t->pl.pmtu, t->pl.probe_size, t->pl.probe_high);
305058e6e0eSXin Long 	t->pl.probe_count++;
3061dc68c19SXin Long }
3071dc68c19SXin Long 
sctp_transport_pl_recv(struct sctp_transport * t)308058e6e0eSXin Long bool sctp_transport_pl_recv(struct sctp_transport *t)
309b87641afSXin Long {
310b87641afSXin Long 	pr_debug("%s: PLPMTUD: transport: %p, state: %d, pmtu: %d, size: %d, high: %d\n",
311b87641afSXin Long 		 __func__, t, t->pl.state, t->pl.pmtu, t->pl.probe_size, t->pl.probe_high);
312b87641afSXin Long 
313b87641afSXin Long 	t->pl.pmtu = t->pl.probe_size;
314b87641afSXin Long 	t->pl.probe_count = 0;
315b87641afSXin Long 	if (t->pl.state == SCTP_PL_BASE) {
316b87641afSXin Long 		t->pl.state = SCTP_PL_SEARCH; /* Base -> Search */
317b87641afSXin Long 		t->pl.probe_size += SCTP_PL_BIG_STEP;
318b87641afSXin Long 	} else if (t->pl.state == SCTP_PL_ERROR) {
319b87641afSXin Long 		t->pl.state = SCTP_PL_SEARCH; /* Error -> Search */
320b87641afSXin Long 
321b87641afSXin Long 		t->pl.pmtu = t->pl.probe_size;
322b87641afSXin Long 		t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
323b87641afSXin Long 		sctp_assoc_sync_pmtu(t->asoc);
324b87641afSXin Long 		t->pl.probe_size += SCTP_PL_BIG_STEP;
325b87641afSXin Long 	} else if (t->pl.state == SCTP_PL_SEARCH) {
326b87641afSXin Long 		if (!t->pl.probe_high) {
327*6ca328e9SXin Long 			if (t->pl.probe_size < SCTP_MAX_PLPMTU) {
328b87641afSXin Long 				t->pl.probe_size = min(t->pl.probe_size + SCTP_PL_BIG_STEP,
329b87641afSXin Long 						       SCTP_MAX_PLPMTU);
330058e6e0eSXin Long 				return false;
331b87641afSXin Long 			}
332*6ca328e9SXin Long 			t->pl.probe_high = SCTP_MAX_PLPMTU;
333*6ca328e9SXin Long 		}
334b87641afSXin Long 		t->pl.probe_size += SCTP_PL_MIN_STEP;
335b87641afSXin Long 		if (t->pl.probe_size >= t->pl.probe_high) {
336b87641afSXin Long 			t->pl.probe_high = 0;
337b87641afSXin Long 			t->pl.state = SCTP_PL_COMPLETE; /* Search -> Search Complete */
338b87641afSXin Long 
339b87641afSXin Long 			t->pl.probe_size = t->pl.pmtu;
340b87641afSXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
341b87641afSXin Long 			sctp_assoc_sync_pmtu(t->asoc);
34270331909SXin Long 			sctp_transport_reset_raise_timer(t);
343b87641afSXin Long 		}
34470331909SXin Long 	} else if (t->pl.state == SCTP_PL_COMPLETE) {
3450dac127cSXin Long 		/* Raise probe_size again after 30 * interval in Search Complete */
346b87641afSXin Long 		t->pl.state = SCTP_PL_SEARCH; /* Search Complete -> Search */
347*6ca328e9SXin Long 		t->pl.probe_size = min(t->pl.probe_size + SCTP_PL_MIN_STEP, SCTP_MAX_PLPMTU);
348b87641afSXin Long 	}
349058e6e0eSXin Long 
350058e6e0eSXin Long 	return t->pl.state == SCTP_PL_COMPLETE;
351650b2a84SXin Long }
352b87641afSXin Long 
sctp_transport_pl_toobig(struct sctp_transport * t,u32 pmtu)35383696408SXin Long static bool sctp_transport_pl_toobig(struct sctp_transport *t, u32 pmtu)
35483696408SXin Long {
35583696408SXin Long 	pr_debug("%s: PLPMTUD: transport: %p, state: %d, pmtu: %d, size: %d, ptb: %d\n",
35683696408SXin Long 		 __func__, t, t->pl.state, t->pl.pmtu, t->pl.probe_size, pmtu);
35783696408SXin Long 
35883696408SXin Long 	if (pmtu < SCTP_MIN_PLPMTU || pmtu >= t->pl.probe_size)
35983696408SXin Long 		return false;
36083696408SXin Long 
36183696408SXin Long 	if (t->pl.state == SCTP_PL_BASE) {
36283696408SXin Long 		if (pmtu >= SCTP_MIN_PLPMTU && pmtu < SCTP_BASE_PLPMTU) {
36383696408SXin Long 			t->pl.state = SCTP_PL_ERROR; /* Base -> Error */
36483696408SXin Long 
36540171248SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
36683696408SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
36775cf662cSXin Long 			return true;
36883696408SXin Long 		}
36983696408SXin Long 	} else if (t->pl.state == SCTP_PL_SEARCH) {
37083696408SXin Long 		if (pmtu >= SCTP_BASE_PLPMTU && pmtu < t->pl.pmtu) {
37183696408SXin Long 			t->pl.state = SCTP_PL_BASE;  /* Search -> Base */
37283696408SXin Long 			t->pl.probe_size = SCTP_BASE_PLPMTU;
37383696408SXin Long 			t->pl.probe_count = 0;
37483696408SXin Long 
37583696408SXin Long 			t->pl.probe_high = 0;
37683696408SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
37783696408SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
37875cf662cSXin Long 			return true;
37983696408SXin Long 		} else if (pmtu > t->pl.pmtu && pmtu < t->pl.probe_size) {
38083696408SXin Long 			t->pl.probe_size = pmtu;
38183696408SXin Long 			t->pl.probe_count = 0;
38283696408SXin Long 		}
38383696408SXin Long 	} else if (t->pl.state == SCTP_PL_COMPLETE) {
38483696408SXin Long 		if (pmtu >= SCTP_BASE_PLPMTU && pmtu < t->pl.pmtu) {
38583696408SXin Long 			t->pl.state = SCTP_PL_BASE;  /* Complete -> Base */
38683696408SXin Long 			t->pl.probe_size = SCTP_BASE_PLPMTU;
38783696408SXin Long 			t->pl.probe_count = 0;
38883696408SXin Long 
38983696408SXin Long 			t->pl.probe_high = 0;
39083696408SXin Long 			t->pl.pmtu = SCTP_BASE_PLPMTU;
39183696408SXin Long 			t->pathmtu = t->pl.pmtu + sctp_transport_pl_hlen(t);
39270331909SXin Long 			sctp_transport_reset_probe_timer(t);
39375cf662cSXin Long 			return true;
39483696408SXin Long 		}
39583696408SXin Long 	}
39683696408SXin Long 
39775cf662cSXin Long 	return false;
39883696408SXin Long }
39983696408SXin Long 
sctp_transport_update_pmtu(struct sctp_transport * t,u32 pmtu)400b6c5734dSMarcelo Ricardo Leitner bool sctp_transport_update_pmtu(struct sctp_transport *t, u32 pmtu)
401c910b47eSVlad Yasevich {
402d7ab5cdcSXin Long 	struct sock *sk = t->asoc->base.sk;
40383696408SXin Long 	struct dst_entry *dst;
404b6c5734dSMarcelo Ricardo Leitner 	bool change = true;
405c910b47eSVlad Yasevich 
406c910b47eSVlad Yasevich 	if (unlikely(pmtu < SCTP_DEFAULT_MINSEGMENT)) {
407b6c5734dSMarcelo Ricardo Leitner 		pr_warn_ratelimited("%s: Reported pmtu %d too low, using default minimum of %d\n",
4083ebfdf08SXin Long 				    __func__, pmtu, SCTP_DEFAULT_MINSEGMENT);
409b6c5734dSMarcelo Ricardo Leitner 		/* Use default minimum segment instead */
410b6c5734dSMarcelo Ricardo Leitner 		pmtu = SCTP_DEFAULT_MINSEGMENT;
411c910b47eSVlad Yasevich 	}
412b6c5734dSMarcelo Ricardo Leitner 	pmtu = SCTP_TRUNC4(pmtu);
413c910b47eSVlad Yasevich 
41483696408SXin Long 	if (sctp_transport_pl_enabled(t))
41583696408SXin Long 		return sctp_transport_pl_toobig(t, pmtu - sctp_transport_pl_hlen(t));
41683696408SXin Long 
41783696408SXin Long 	dst = sctp_transport_dst_check(t);
41802f3d4ceSDavid S. Miller 	if (dst) {
419d7ab5cdcSXin Long 		struct sctp_pf *pf = sctp_get_pf_specific(dst->ops->family);
420d7ab5cdcSXin Long 		union sctp_addr addr;
421d7ab5cdcSXin Long 
422d7ab5cdcSXin Long 		pf->af->from_sk(&addr, sk);
423d7ab5cdcSXin Long 		pf->to_sk_daddr(&t->ipaddr, sk);
424bd085ef6SHangbin Liu 		dst->ops->update_pmtu(dst, sk, NULL, pmtu, true);
425d7ab5cdcSXin Long 		pf->to_sk_daddr(&addr, sk);
426d7ab5cdcSXin Long 
42702f3d4ceSDavid S. Miller 		dst = sctp_transport_dst_check(t);
42802f3d4ceSDavid S. Miller 	}
4293ebfdf08SXin Long 
430b6c5734dSMarcelo Ricardo Leitner 	if (!dst) {
431d7ab5cdcSXin Long 		t->af_specific->get_dst(t, &t->saddr, &t->fl, sk);
432b6c5734dSMarcelo Ricardo Leitner 		dst = t->dst;
433b6c5734dSMarcelo Ricardo Leitner 	}
434b6c5734dSMarcelo Ricardo Leitner 
435b6c5734dSMarcelo Ricardo Leitner 	if (dst) {
436b6c5734dSMarcelo Ricardo Leitner 		/* Re-fetch, as under layers may have a higher minimum size */
437a6592547SXin Long 		pmtu = sctp_dst_mtu(dst);
438b6c5734dSMarcelo Ricardo Leitner 		change = t->pathmtu != pmtu;
439b6c5734dSMarcelo Ricardo Leitner 	}
440b6c5734dSMarcelo Ricardo Leitner 	t->pathmtu = pmtu;
441b6c5734dSMarcelo Ricardo Leitner 
442b6c5734dSMarcelo Ricardo Leitner 	return change;
443c910b47eSVlad Yasevich }
444c910b47eSVlad Yasevich 
4451da177e4SLinus Torvalds /* Caches the dst entry and source address for a transport's destination
4461da177e4SLinus Torvalds  * address.
4471da177e4SLinus Torvalds  */
sctp_transport_route(struct sctp_transport * transport,union sctp_addr * saddr,struct sctp_sock * opt)4481da177e4SLinus Torvalds void sctp_transport_route(struct sctp_transport *transport,
4491da177e4SLinus Torvalds 			  union sctp_addr *saddr, struct sctp_sock *opt)
4501da177e4SLinus Torvalds {
4511da177e4SLinus Torvalds 	struct sctp_association *asoc = transport->asoc;
4521da177e4SLinus Torvalds 	struct sctp_af *af = transport->af_specific;
4531da177e4SLinus Torvalds 
4546e91b578SMarcelo Ricardo Leitner 	sctp_transport_dst_release(transport);
4558663c938SDavid S. Miller 	af->get_dst(transport, saddr, &transport->fl, sctp_opt2sk(opt));
4561da177e4SLinus Torvalds 
4571da177e4SLinus Torvalds 	if (saddr)
4581da177e4SLinus Torvalds 		memcpy(&transport->saddr, saddr, sizeof(union sctp_addr));
4591da177e4SLinus Torvalds 	else
4608663c938SDavid S. Miller 		af->get_saddr(opt, transport, &transport->fl);
4611da177e4SLinus Torvalds 
4626e91b578SMarcelo Ricardo Leitner 	sctp_transport_pmtu(transport, sctp_opt2sk(opt));
4631da177e4SLinus Torvalds 
4641da177e4SLinus Torvalds 	/* Initialize sk->sk_rcv_saddr, if the transport is the
4651da177e4SLinus Torvalds 	 * association's active path for getsockname().
4661da177e4SLinus Torvalds 	 */
4676e91b578SMarcelo Ricardo Leitner 	if (transport->dst && asoc &&
4686e91b578SMarcelo Ricardo Leitner 	    (!asoc->peer.primary_path || transport == asoc->peer.active_path))
4696e91b578SMarcelo Ricardo Leitner 		opt->pf->to_sk_saddr(&transport->saddr, asoc->base.sk);
470800e00c1SMarcelo Ricardo Leitner }
4711da177e4SLinus Torvalds 
4721da177e4SLinus Torvalds /* Hold a reference to a transport.  */
sctp_transport_hold(struct sctp_transport * transport)4731eed6779SXin Long int sctp_transport_hold(struct sctp_transport *transport)
4741da177e4SLinus Torvalds {
475a4b2b58eSReshetova, Elena 	return refcount_inc_not_zero(&transport->refcnt);
4761da177e4SLinus Torvalds }
4771da177e4SLinus Torvalds 
4781da177e4SLinus Torvalds /* Release a reference to a transport and clean up
4791da177e4SLinus Torvalds  * if there are no more references.
4801da177e4SLinus Torvalds  */
sctp_transport_put(struct sctp_transport * transport)4811da177e4SLinus Torvalds void sctp_transport_put(struct sctp_transport *transport)
4821da177e4SLinus Torvalds {
483a4b2b58eSReshetova, Elena 	if (refcount_dec_and_test(&transport->refcnt))
4841da177e4SLinus Torvalds 		sctp_transport_destroy(transport);
4851da177e4SLinus Torvalds }
4861da177e4SLinus Torvalds 
4871da177e4SLinus Torvalds /* Update transport's RTO based on the newly calculated RTT. */
sctp_transport_update_rto(struct sctp_transport * tp,__u32 rtt)4881da177e4SLinus Torvalds void sctp_transport_update_rto(struct sctp_transport *tp, __u32 rtt)
4891da177e4SLinus Torvalds {
490bb33381dSDaniel Borkmann 	if (unlikely(!tp->rto_pending))
4911da177e4SLinus Torvalds 		/* We should not be doing any RTO updates unless rto_pending is set.  */
492bb33381dSDaniel Borkmann 		pr_debug("%s: rto_pending not set on transport %p!\n", __func__, tp);
4931da177e4SLinus Torvalds 
4941da177e4SLinus Torvalds 	if (tp->rttvar || tp->srtt) {
4954e7696d9SXin Long 		struct net *net = tp->asoc->base.net;
4961da177e4SLinus Torvalds 		/* 6.3.1 C3) When a new RTT measurement R' is made, set
4971da177e4SLinus Torvalds 		 * RTTVAR <- (1 - RTO.Beta) * RTTVAR + RTO.Beta * |SRTT - R'|
4981da177e4SLinus Torvalds 		 * SRTT <- (1 - RTO.Alpha) * SRTT + RTO.Alpha * R'
4991da177e4SLinus Torvalds 		 */
5001da177e4SLinus Torvalds 
5011da177e4SLinus Torvalds 		/* Note:  The above algorithm has been rewritten to
5021da177e4SLinus Torvalds 		 * express rto_beta and rto_alpha as inverse powers
5031da177e4SLinus Torvalds 		 * of two.
5041da177e4SLinus Torvalds 		 * For example, assuming the default value of RTO.Alpha of
5051da177e4SLinus Torvalds 		 * 1/8, rto_alpha would be expressed as 3.
5061da177e4SLinus Torvalds 		 */
507e1fc3b14SEric W. Biederman 		tp->rttvar = tp->rttvar - (tp->rttvar >> net->sctp.rto_beta)
50879211c8eSAndrew Morton 			+ (((__u32)abs((__s64)tp->srtt - (__s64)rtt)) >> net->sctp.rto_beta);
509e1fc3b14SEric W. Biederman 		tp->srtt = tp->srtt - (tp->srtt >> net->sctp.rto_alpha)
510e1fc3b14SEric W. Biederman 			+ (rtt >> net->sctp.rto_alpha);
5111da177e4SLinus Torvalds 	} else {
5121da177e4SLinus Torvalds 		/* 6.3.1 C2) When the first RTT measurement R is made, set
5131da177e4SLinus Torvalds 		 * SRTT <- R, RTTVAR <- R/2.
5141da177e4SLinus Torvalds 		 */
5151da177e4SLinus Torvalds 		tp->srtt = rtt;
5161da177e4SLinus Torvalds 		tp->rttvar = rtt >> 1;
5171da177e4SLinus Torvalds 	}
5181da177e4SLinus Torvalds 
5191da177e4SLinus Torvalds 	/* 6.3.1 G1) Whenever RTTVAR is computed, if RTTVAR = 0, then
5201da177e4SLinus Torvalds 	 * adjust RTTVAR <- G, where G is the CLOCK GRANULARITY.
5211da177e4SLinus Torvalds 	 */
5221da177e4SLinus Torvalds 	if (tp->rttvar == 0)
5231da177e4SLinus Torvalds 		tp->rttvar = SCTP_CLOCK_GRANULARITY;
5241da177e4SLinus Torvalds 
5251da177e4SLinus Torvalds 	/* 6.3.1 C3) After the computation, update RTO <- SRTT + 4 * RTTVAR. */
5261da177e4SLinus Torvalds 	tp->rto = tp->srtt + (tp->rttvar << 2);
5271da177e4SLinus Torvalds 
5281da177e4SLinus Torvalds 	/* 6.3.1 C6) Whenever RTO is computed, if it is less than RTO.Min
5291da177e4SLinus Torvalds 	 * seconds then it is rounded up to RTO.Min seconds.
5301da177e4SLinus Torvalds 	 */
5311da177e4SLinus Torvalds 	if (tp->rto < tp->asoc->rto_min)
5321da177e4SLinus Torvalds 		tp->rto = tp->asoc->rto_min;
5331da177e4SLinus Torvalds 
5341da177e4SLinus Torvalds 	/* 6.3.1 C7) A maximum value may be placed on RTO provided it is
5351da177e4SLinus Torvalds 	 * at least RTO.max seconds.
5361da177e4SLinus Torvalds 	 */
5371da177e4SLinus Torvalds 	if (tp->rto > tp->asoc->rto_max)
5381da177e4SLinus Torvalds 		tp->rto = tp->asoc->rto_max;
5391da177e4SLinus Torvalds 
540196d6759SMichele Baldessari 	sctp_max_rto(tp->asoc, tp);
5411da177e4SLinus Torvalds 	tp->rtt = rtt;
5421da177e4SLinus Torvalds 
5431da177e4SLinus Torvalds 	/* Reset rto_pending so that a new RTT measurement is started when a
5441da177e4SLinus Torvalds 	 * new data chunk is sent.
5451da177e4SLinus Torvalds 	 */
5461da177e4SLinus Torvalds 	tp->rto_pending = 0;
5471da177e4SLinus Torvalds 
548bb33381dSDaniel Borkmann 	pr_debug("%s: transport:%p, rtt:%d, srtt:%d rttvar:%d, rto:%ld\n",
549bb33381dSDaniel Borkmann 		 __func__, tp, rtt, tp->srtt, tp->rttvar, tp->rto);
5501da177e4SLinus Torvalds }
5511da177e4SLinus Torvalds 
5521da177e4SLinus Torvalds /* This routine updates the transport's cwnd and partial_bytes_acked
5531da177e4SLinus Torvalds  * parameters based on the bytes acked in the received SACK.
5541da177e4SLinus Torvalds  */
sctp_transport_raise_cwnd(struct sctp_transport * transport,__u32 sack_ctsn,__u32 bytes_acked)5551da177e4SLinus Torvalds void sctp_transport_raise_cwnd(struct sctp_transport *transport,
5561da177e4SLinus Torvalds 			       __u32 sack_ctsn, __u32 bytes_acked)
5571da177e4SLinus Torvalds {
558cf9b4812SVlad Yasevich 	struct sctp_association *asoc = transport->asoc;
5591da177e4SLinus Torvalds 	__u32 cwnd, ssthresh, flight_size, pba, pmtu;
5601da177e4SLinus Torvalds 
5611da177e4SLinus Torvalds 	cwnd = transport->cwnd;
5621da177e4SLinus Torvalds 	flight_size = transport->flight_size;
5631da177e4SLinus Torvalds 
564a6465234SVlad Yasevich 	/* See if we need to exit Fast Recovery first */
565cf9b4812SVlad Yasevich 	if (asoc->fast_recovery &&
566cf9b4812SVlad Yasevich 	    TSN_lte(asoc->fast_recovery_exit, sack_ctsn))
567cf9b4812SVlad Yasevich 		asoc->fast_recovery = 0;
568a6465234SVlad Yasevich 
5691da177e4SLinus Torvalds 	ssthresh = transport->ssthresh;
5701da177e4SLinus Torvalds 	pba = transport->partial_bytes_acked;
57152ccb8e9SFrank Filz 	pmtu = transport->asoc->pathmtu;
5721da177e4SLinus Torvalds 
5731da177e4SLinus Torvalds 	if (cwnd <= ssthresh) {
574a6465234SVlad Yasevich 		/* RFC 4960 7.2.1
575a6465234SVlad Yasevich 		 * o  When cwnd is less than or equal to ssthresh, an SCTP
576a6465234SVlad Yasevich 		 *    endpoint MUST use the slow-start algorithm to increase
577a6465234SVlad Yasevich 		 *    cwnd only if the current congestion window is being fully
578a6465234SVlad Yasevich 		 *    utilized, an incoming SACK advances the Cumulative TSN
579a6465234SVlad Yasevich 		 *    Ack Point, and the data sender is not in Fast Recovery.
580a6465234SVlad Yasevich 		 *    Only when these three conditions are met can the cwnd be
581a6465234SVlad Yasevich 		 *    increased; otherwise, the cwnd MUST not be increased.
582a6465234SVlad Yasevich 		 *    If these conditions are met, then cwnd MUST be increased
583a6465234SVlad Yasevich 		 *    by, at most, the lesser of 1) the total size of the
584a6465234SVlad Yasevich 		 *    previously outstanding DATA chunk(s) acknowledged, and
585a6465234SVlad Yasevich 		 *    2) the destination's path MTU.  This upper bound protects
586a6465234SVlad Yasevich 		 *    against the ACK-Splitting attack outlined in [SAVAGE99].
5871da177e4SLinus Torvalds 		 */
588cf9b4812SVlad Yasevich 		if (asoc->fast_recovery)
589a6465234SVlad Yasevich 			return;
590a6465234SVlad Yasevich 
5914ccbd0b0SMarcelo Ricardo Leitner 		/* The appropriate cwnd increase algorithm is performed
5924ccbd0b0SMarcelo Ricardo Leitner 		 * if, and only if the congestion window is being fully
5934ccbd0b0SMarcelo Ricardo Leitner 		 * utilized.  Note that RFC4960 Errata 3.22 removed the
5944ccbd0b0SMarcelo Ricardo Leitner 		 * other condition on ctsn moving.
5954ccbd0b0SMarcelo Ricardo Leitner 		 */
5964ccbd0b0SMarcelo Ricardo Leitner 		if (flight_size < cwnd)
5974ccbd0b0SMarcelo Ricardo Leitner 			return;
5984ccbd0b0SMarcelo Ricardo Leitner 
5991da177e4SLinus Torvalds 		if (bytes_acked > pmtu)
6001da177e4SLinus Torvalds 			cwnd += pmtu;
6011da177e4SLinus Torvalds 		else
6021da177e4SLinus Torvalds 			cwnd += bytes_acked;
603bb33381dSDaniel Borkmann 
604bb33381dSDaniel Borkmann 		pr_debug("%s: slow start: transport:%p, bytes_acked:%d, "
605bb33381dSDaniel Borkmann 			 "cwnd:%d, ssthresh:%d, flight_size:%d, pba:%d\n",
606bb33381dSDaniel Borkmann 			 __func__, transport, bytes_acked, cwnd, ssthresh,
607bb33381dSDaniel Borkmann 			 flight_size, pba);
6081da177e4SLinus Torvalds 	} else {
6091da177e4SLinus Torvalds 		/* RFC 2960 7.2.2 Whenever cwnd is greater than ssthresh,
610e56f777aSMarcelo Ricardo Leitner 		 * upon each SACK arrival, increase partial_bytes_acked
611e56f777aSMarcelo Ricardo Leitner 		 * by the total number of bytes of all new chunks
612e56f777aSMarcelo Ricardo Leitner 		 * acknowledged in that SACK including chunks
613e56f777aSMarcelo Ricardo Leitner 		 * acknowledged by the new Cumulative TSN Ack and by Gap
614e56f777aSMarcelo Ricardo Leitner 		 * Ack Blocks. (updated by RFC4960 Errata 3.22)
6151da177e4SLinus Torvalds 		 *
6164ccbd0b0SMarcelo Ricardo Leitner 		 * When partial_bytes_acked is greater than cwnd and
6174ccbd0b0SMarcelo Ricardo Leitner 		 * before the arrival of the SACK the sender had less
6184ccbd0b0SMarcelo Ricardo Leitner 		 * bytes of data outstanding than cwnd (i.e., before
6194ccbd0b0SMarcelo Ricardo Leitner 		 * arrival of the SACK, flightsize was less than cwnd),
6204ccbd0b0SMarcelo Ricardo Leitner 		 * reset partial_bytes_acked to cwnd. (RFC 4960 Errata
6214ccbd0b0SMarcelo Ricardo Leitner 		 * 3.26)
6224ccbd0b0SMarcelo Ricardo Leitner 		 *
623d0b53f40SMarcelo Ricardo Leitner 		 * When partial_bytes_acked is equal to or greater than
624d0b53f40SMarcelo Ricardo Leitner 		 * cwnd and before the arrival of the SACK the sender
625d0b53f40SMarcelo Ricardo Leitner 		 * had cwnd or more bytes of data outstanding (i.e.,
626d0b53f40SMarcelo Ricardo Leitner 		 * before arrival of the SACK, flightsize was greater
627d0b53f40SMarcelo Ricardo Leitner 		 * than or equal to cwnd), partial_bytes_acked is reset
628d0b53f40SMarcelo Ricardo Leitner 		 * to (partial_bytes_acked - cwnd). Next, cwnd is
629d0b53f40SMarcelo Ricardo Leitner 		 * increased by MTU. (RFC 4960 Errata 3.12)
6301da177e4SLinus Torvalds 		 */
6311da177e4SLinus Torvalds 		pba += bytes_acked;
6324ccbd0b0SMarcelo Ricardo Leitner 		if (pba > cwnd && flight_size < cwnd)
6334ccbd0b0SMarcelo Ricardo Leitner 			pba = cwnd;
6344ccbd0b0SMarcelo Ricardo Leitner 		if (pba >= cwnd && flight_size >= cwnd) {
635d0b53f40SMarcelo Ricardo Leitner 			pba = pba - cwnd;
6361da177e4SLinus Torvalds 			cwnd += pmtu;
6371da177e4SLinus Torvalds 		}
638bb33381dSDaniel Borkmann 
639bb33381dSDaniel Borkmann 		pr_debug("%s: congestion avoidance: transport:%p, "
640bb33381dSDaniel Borkmann 			 "bytes_acked:%d, cwnd:%d, ssthresh:%d, "
641bb33381dSDaniel Borkmann 			 "flight_size:%d, pba:%d\n", __func__,
642bb33381dSDaniel Borkmann 			 transport, bytes_acked, cwnd, ssthresh,
643bb33381dSDaniel Borkmann 			 flight_size, pba);
6441da177e4SLinus Torvalds 	}
6451da177e4SLinus Torvalds 
6461da177e4SLinus Torvalds 	transport->cwnd = cwnd;
6471da177e4SLinus Torvalds 	transport->partial_bytes_acked = pba;
6481da177e4SLinus Torvalds }
6491da177e4SLinus Torvalds 
6501da177e4SLinus Torvalds /* This routine is used to lower the transport's cwnd when congestion is
6511da177e4SLinus Torvalds  * detected.
6521da177e4SLinus Torvalds  */
sctp_transport_lower_cwnd(struct sctp_transport * transport,enum sctp_lower_cwnd reason)6531da177e4SLinus Torvalds void sctp_transport_lower_cwnd(struct sctp_transport *transport,
654233e7936SXin Long 			       enum sctp_lower_cwnd reason)
6551da177e4SLinus Torvalds {
656cf9b4812SVlad Yasevich 	struct sctp_association *asoc = transport->asoc;
657cf9b4812SVlad Yasevich 
6581da177e4SLinus Torvalds 	switch (reason) {
6591da177e4SLinus Torvalds 	case SCTP_LOWER_CWND_T3_RTX:
6601da177e4SLinus Torvalds 		/* RFC 2960 Section 7.2.3, sctpimpguide
6611da177e4SLinus Torvalds 		 * When the T3-rtx timer expires on an address, SCTP should
6621da177e4SLinus Torvalds 		 * perform slow start by:
6631da177e4SLinus Torvalds 		 *      ssthresh = max(cwnd/2, 4*MTU)
6641da177e4SLinus Torvalds 		 *      cwnd = 1*MTU
6651da177e4SLinus Torvalds 		 *      partial_bytes_acked = 0
6661da177e4SLinus Torvalds 		 */
6671da177e4SLinus Torvalds 		transport->ssthresh = max(transport->cwnd/2,
668cf9b4812SVlad Yasevich 					  4*asoc->pathmtu);
669cf9b4812SVlad Yasevich 		transport->cwnd = asoc->pathmtu;
67033ce8281SVlad Yasevich 
671cf9b4812SVlad Yasevich 		/* T3-rtx also clears fast recovery */
672cf9b4812SVlad Yasevich 		asoc->fast_recovery = 0;
6731da177e4SLinus Torvalds 		break;
6741da177e4SLinus Torvalds 
6751da177e4SLinus Torvalds 	case SCTP_LOWER_CWND_FAST_RTX:
6761da177e4SLinus Torvalds 		/* RFC 2960 7.2.4 Adjust the ssthresh and cwnd of the
6771da177e4SLinus Torvalds 		 * destination address(es) to which the missing DATA chunks
6781da177e4SLinus Torvalds 		 * were last sent, according to the formula described in
6791da177e4SLinus Torvalds 		 * Section 7.2.3.
6801da177e4SLinus Torvalds 		 *
6811da177e4SLinus Torvalds 		 * RFC 2960 7.2.3, sctpimpguide Upon detection of packet
6821da177e4SLinus Torvalds 		 * losses from SACK (see Section 7.2.4), An endpoint
6831da177e4SLinus Torvalds 		 * should do the following:
6841da177e4SLinus Torvalds 		 *      ssthresh = max(cwnd/2, 4*MTU)
6851da177e4SLinus Torvalds 		 *      cwnd = ssthresh
6861da177e4SLinus Torvalds 		 *      partial_bytes_acked = 0
6871da177e4SLinus Torvalds 		 */
688cf9b4812SVlad Yasevich 		if (asoc->fast_recovery)
689a6465234SVlad Yasevich 			return;
690a6465234SVlad Yasevich 
691a6465234SVlad Yasevich 		/* Mark Fast recovery */
692cf9b4812SVlad Yasevich 		asoc->fast_recovery = 1;
693cf9b4812SVlad Yasevich 		asoc->fast_recovery_exit = asoc->next_tsn - 1;
694a6465234SVlad Yasevich 
6951da177e4SLinus Torvalds 		transport->ssthresh = max(transport->cwnd/2,
696cf9b4812SVlad Yasevich 					  4*asoc->pathmtu);
6971da177e4SLinus Torvalds 		transport->cwnd = transport->ssthresh;
6981da177e4SLinus Torvalds 		break;
6991da177e4SLinus Torvalds 
7001da177e4SLinus Torvalds 	case SCTP_LOWER_CWND_ECNE:
7011da177e4SLinus Torvalds 		/* RFC 2481 Section 6.1.2.
7021da177e4SLinus Torvalds 		 * If the sender receives an ECN-Echo ACK packet
7031da177e4SLinus Torvalds 		 * then the sender knows that congestion was encountered in the
7041da177e4SLinus Torvalds 		 * network on the path from the sender to the receiver. The
7051da177e4SLinus Torvalds 		 * indication of congestion should be treated just as a
7061da177e4SLinus Torvalds 		 * congestion loss in non-ECN Capable TCP. That is, the TCP
7071da177e4SLinus Torvalds 		 * source halves the congestion window "cwnd" and reduces the
7081da177e4SLinus Torvalds 		 * slow start threshold "ssthresh".
7091da177e4SLinus Torvalds 		 * A critical condition is that TCP does not react to
7101da177e4SLinus Torvalds 		 * congestion indications more than once every window of
7111da177e4SLinus Torvalds 		 * data (or more loosely more than once every round-trip time).
7121da177e4SLinus Torvalds 		 */
713f61f6f82SWei Yongjun 		if (time_after(jiffies, transport->last_time_ecne_reduced +
714f61f6f82SWei Yongjun 					transport->rtt)) {
7151da177e4SLinus Torvalds 			transport->ssthresh = max(transport->cwnd/2,
716cf9b4812SVlad Yasevich 						  4*asoc->pathmtu);
7171da177e4SLinus Torvalds 			transport->cwnd = transport->ssthresh;
7181da177e4SLinus Torvalds 			transport->last_time_ecne_reduced = jiffies;
7191da177e4SLinus Torvalds 		}
7201da177e4SLinus Torvalds 		break;
7211da177e4SLinus Torvalds 
7221da177e4SLinus Torvalds 	case SCTP_LOWER_CWND_INACTIVE:
7231da177e4SLinus Torvalds 		/* RFC 2960 Section 7.2.1, sctpimpguide
7241da177e4SLinus Torvalds 		 * When the endpoint does not transmit data on a given
7251da177e4SLinus Torvalds 		 * transport address, the cwnd of the transport address
7261da177e4SLinus Torvalds 		 * should be adjusted to max(cwnd/2, 4*MTU) per RTO.
7271da177e4SLinus Torvalds 		 * NOTE: Although the draft recommends that this check needs
7281da177e4SLinus Torvalds 		 * to be done every RTO interval, we do it every hearbeat
7291da177e4SLinus Torvalds 		 * interval.
7301da177e4SLinus Torvalds 		 */
7311da177e4SLinus Torvalds 		transport->cwnd = max(transport->cwnd/2,
732cf9b4812SVlad Yasevich 					 4*asoc->pathmtu);
733a02d036cSMarcelo Ricardo Leitner 		/* RFC 4960 Errata 3.27.2: also adjust sshthresh */
734a02d036cSMarcelo Ricardo Leitner 		transport->ssthresh = transport->cwnd;
7351da177e4SLinus Torvalds 		break;
7363ff50b79SStephen Hemminger 	}
7371da177e4SLinus Torvalds 
7381da177e4SLinus Torvalds 	transport->partial_bytes_acked = 0;
739bb33381dSDaniel Borkmann 
740bb33381dSDaniel Borkmann 	pr_debug("%s: transport:%p, reason:%d, cwnd:%d, ssthresh:%d\n",
741bb33381dSDaniel Borkmann 		 __func__, transport, reason, transport->cwnd,
742bb33381dSDaniel Borkmann 		 transport->ssthresh);
7431da177e4SLinus Torvalds }
7441da177e4SLinus Torvalds 
74546d5a808SVlad Yasevich /* Apply Max.Burst limit to the congestion window:
74646d5a808SVlad Yasevich  * sctpimpguide-05 2.14.2
74746d5a808SVlad Yasevich  * D) When the time comes for the sender to
74846d5a808SVlad Yasevich  * transmit new DATA chunks, the protocol parameter Max.Burst MUST
74946d5a808SVlad Yasevich  * first be applied to limit how many new DATA chunks may be sent.
75046d5a808SVlad Yasevich  * The limit is applied by adjusting cwnd as follows:
75146d5a808SVlad Yasevich  * 	if ((flightsize+ Max.Burst * MTU) < cwnd)
75246d5a808SVlad Yasevich  * 		cwnd = flightsize + Max.Burst * MTU
75346d5a808SVlad Yasevich  */
75446d5a808SVlad Yasevich 
sctp_transport_burst_limited(struct sctp_transport * t)75546d5a808SVlad Yasevich void sctp_transport_burst_limited(struct sctp_transport *t)
75646d5a808SVlad Yasevich {
75746d5a808SVlad Yasevich 	struct sctp_association *asoc = t->asoc;
75846d5a808SVlad Yasevich 	u32 old_cwnd = t->cwnd;
75946d5a808SVlad Yasevich 	u32 max_burst_bytes;
76046d5a808SVlad Yasevich 
76178ac814fSwangweidong 	if (t->burst_limited || asoc->max_burst == 0)
76246d5a808SVlad Yasevich 		return;
76346d5a808SVlad Yasevich 
76446d5a808SVlad Yasevich 	max_burst_bytes = t->flight_size + (asoc->max_burst * asoc->pathmtu);
76546d5a808SVlad Yasevich 	if (max_burst_bytes < old_cwnd) {
76646d5a808SVlad Yasevich 		t->cwnd = max_burst_bytes;
76746d5a808SVlad Yasevich 		t->burst_limited = old_cwnd;
76846d5a808SVlad Yasevich 	}
76946d5a808SVlad Yasevich }
77046d5a808SVlad Yasevich 
77146d5a808SVlad Yasevich /* Restore the old cwnd congestion window, after the burst had it's
77246d5a808SVlad Yasevich  * desired effect.
77346d5a808SVlad Yasevich  */
sctp_transport_burst_reset(struct sctp_transport * t)77446d5a808SVlad Yasevich void sctp_transport_burst_reset(struct sctp_transport *t)
77546d5a808SVlad Yasevich {
77646d5a808SVlad Yasevich 	if (t->burst_limited) {
77746d5a808SVlad Yasevich 		t->cwnd = t->burst_limited;
77846d5a808SVlad Yasevich 		t->burst_limited = 0;
77946d5a808SVlad Yasevich 	}
78046d5a808SVlad Yasevich }
78146d5a808SVlad Yasevich 
7821da177e4SLinus Torvalds /* What is the next timeout value for this transport? */
sctp_transport_timeout(struct sctp_transport * trans)7838f61059aSDaniel Borkmann unsigned long sctp_transport_timeout(struct sctp_transport *trans)
7841da177e4SLinus Torvalds {
7858f61059aSDaniel Borkmann 	/* RTO + timer slack +/- 50% of RTO */
786ba6f5e33SMarcelo Ricardo Leitner 	unsigned long timeout = trans->rto >> 1;
7878f61059aSDaniel Borkmann 
7888f61059aSDaniel Borkmann 	if (trans->state != SCTP_UNCONFIRMED &&
7898f61059aSDaniel Borkmann 	    trans->state != SCTP_PF)
7908f61059aSDaniel Borkmann 		timeout += trans->hbinterval;
7918f61059aSDaniel Borkmann 
7921d88ba1eSXin Long 	return max_t(unsigned long, timeout, HZ / 5);
7931da177e4SLinus Torvalds }
794749bf921SVlad Yasevich 
795749bf921SVlad Yasevich /* Reset transport variables to their initial values */
sctp_transport_reset(struct sctp_transport * t)796749bf921SVlad Yasevich void sctp_transport_reset(struct sctp_transport *t)
797749bf921SVlad Yasevich {
798749bf921SVlad Yasevich 	struct sctp_association *asoc = t->asoc;
799749bf921SVlad Yasevich 
800749bf921SVlad Yasevich 	/* RFC 2960 (bis), Section 5.2.4
801749bf921SVlad Yasevich 	 * All the congestion control parameters (e.g., cwnd, ssthresh)
802749bf921SVlad Yasevich 	 * related to this peer MUST be reset to their initial values
803749bf921SVlad Yasevich 	 * (see Section 6.2.1)
804749bf921SVlad Yasevich 	 */
805749bf921SVlad Yasevich 	t->cwnd = min(4*asoc->pathmtu, max_t(__u32, 2*asoc->pathmtu, 4380));
80646d5a808SVlad Yasevich 	t->burst_limited = 0;
807289f4249SVlad Yasevich 	t->ssthresh = asoc->peer.i.a_rwnd;
8085fdd4baeSAndrei Pelinescu-Onciul 	t->rto = asoc->rto_initial;
809196d6759SMichele Baldessari 	sctp_max_rto(asoc, t);
810749bf921SVlad Yasevich 	t->rtt = 0;
811749bf921SVlad Yasevich 	t->srtt = 0;
812749bf921SVlad Yasevich 	t->rttvar = 0;
813749bf921SVlad Yasevich 
814b564d62eSMasahiro Yamada 	/* Reset these additional variables so that we have a clean slate. */
815749bf921SVlad Yasevich 	t->partial_bytes_acked = 0;
816749bf921SVlad Yasevich 	t->flight_size = 0;
817749bf921SVlad Yasevich 	t->error_count = 0;
818749bf921SVlad Yasevich 	t->rto_pending = 0;
819faee47cdSVlad Yasevich 	t->hb_sent = 0;
820749bf921SVlad Yasevich 
821749bf921SVlad Yasevich 	/* Initialize the state information for SFR-CACC */
822749bf921SVlad Yasevich 	t->cacc.changeover_active = 0;
823749bf921SVlad Yasevich 	t->cacc.cycling_changeover = 0;
824749bf921SVlad Yasevich 	t->cacc.next_tsn_at_change = 0;
825749bf921SVlad Yasevich 	t->cacc.cacc_saw_newack = 0;
826749bf921SVlad Yasevich }
827ddc4bbeeSMichio Honda 
828ddc4bbeeSMichio Honda /* Schedule retransmission on the given transport */
sctp_transport_immediate_rtx(struct sctp_transport * t)829ddc4bbeeSMichio Honda void sctp_transport_immediate_rtx(struct sctp_transport *t)
830ddc4bbeeSMichio Honda {
831ddc4bbeeSMichio Honda 	/* Stop pending T3_rtx_timer */
83225cc4ae9SYing Xue 	if (del_timer(&t->T3_rtx_timer))
833ddc4bbeeSMichio Honda 		sctp_transport_put(t);
83425cc4ae9SYing Xue 
835ddc4bbeeSMichio Honda 	sctp_retransmit(&t->asoc->outqueue, t, SCTP_RTXR_T3_RTX);
836ddc4bbeeSMichio Honda 	if (!timer_pending(&t->T3_rtx_timer)) {
837ddc4bbeeSMichio Honda 		if (!mod_timer(&t->T3_rtx_timer, jiffies + t->rto))
838ddc4bbeeSMichio Honda 			sctp_transport_hold(t);
839ddc4bbeeSMichio Honda 	}
840ddc4bbeeSMichio Honda }
841c86a773cSJulian Anastasov 
842c86a773cSJulian Anastasov /* Drop dst */
sctp_transport_dst_release(struct sctp_transport * t)843c86a773cSJulian Anastasov void sctp_transport_dst_release(struct sctp_transport *t)
844c86a773cSJulian Anastasov {
845c86a773cSJulian Anastasov 	dst_release(t->dst);
846c86a773cSJulian Anastasov 	t->dst = NULL;
847c86a773cSJulian Anastasov 	t->dst_pending_confirm = 0;
848c86a773cSJulian Anastasov }
849c86a773cSJulian Anastasov 
850c86a773cSJulian Anastasov /* Schedule neighbour confirm */
sctp_transport_dst_confirm(struct sctp_transport * t)851c86a773cSJulian Anastasov void sctp_transport_dst_confirm(struct sctp_transport *t)
852c86a773cSJulian Anastasov {
853c86a773cSJulian Anastasov 	t->dst_pending_confirm = 1;
854c86a773cSJulian Anastasov }
855