1e8f887acSAmir Vadai /*
2e8f887acSAmir Vadai  * Copyright (c) 2016, Mellanox Technologies. All rights reserved.
3e8f887acSAmir Vadai  *
4e8f887acSAmir Vadai  * This software is available to you under a choice of one of two
5e8f887acSAmir Vadai  * licenses.  You may choose to be licensed under the terms of the GNU
6e8f887acSAmir Vadai  * General Public License (GPL) Version 2, available from the file
7e8f887acSAmir Vadai  * COPYING in the main directory of this source tree, or the
8e8f887acSAmir Vadai  * OpenIB.org BSD license below:
9e8f887acSAmir Vadai  *
10e8f887acSAmir Vadai  *     Redistribution and use in source and binary forms, with or
11e8f887acSAmir Vadai  *     without modification, are permitted provided that the following
12e8f887acSAmir Vadai  *     conditions are met:
13e8f887acSAmir Vadai  *
14e8f887acSAmir Vadai  *      - Redistributions of source code must retain the above
15e8f887acSAmir Vadai  *        copyright notice, this list of conditions and the following
16e8f887acSAmir Vadai  *        disclaimer.
17e8f887acSAmir Vadai  *
18e8f887acSAmir Vadai  *      - Redistributions in binary form must reproduce the above
19e8f887acSAmir Vadai  *        copyright notice, this list of conditions and the following
20e8f887acSAmir Vadai  *        disclaimer in the documentation and/or other materials
21e8f887acSAmir Vadai  *        provided with the distribution.
22e8f887acSAmir Vadai  *
23e8f887acSAmir Vadai  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
24e8f887acSAmir Vadai  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
25e8f887acSAmir Vadai  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
26e8f887acSAmir Vadai  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
27e8f887acSAmir Vadai  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
28e8f887acSAmir Vadai  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
29e8f887acSAmir Vadai  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
30e8f887acSAmir Vadai  * SOFTWARE.
31e8f887acSAmir Vadai  */
32e8f887acSAmir Vadai 
33e3a2b7edSAmir Vadai #include <net/flow_dissector.h>
34e2394a61SVlad Buslov #include <net/flow_offload.h>
353f7d0eb4SOr Gerlitz #include <net/sch_generic.h>
36e3a2b7edSAmir Vadai #include <net/pkt_cls.h>
37e8f887acSAmir Vadai #include <linux/mlx5/fs.h>
38e8f887acSAmir Vadai #include <linux/mlx5/device.h>
39e8f887acSAmir Vadai #include <linux/rhashtable.h>
405a7e5bcbSVlad Buslov #include <linux/refcount.h>
41db76ca24SVlad Buslov #include <linux/completion.h>
42f6dfb4c3SHadar Hen Zion #include <net/arp.h>
433616d08bSDavid Ahern #include <net/ipv6_stubs.h>
44f828ca6aSEli Cohen #include <net/bareudp.h>
45d34eb2fcSOr Gerlitz #include <net/bonding.h>
46e8f887acSAmir Vadai #include "en.h"
47f0da4daaSChris Mi #include "en/tc/post_act.h"
481d447a39SSaeed Mahameed #include "en_rep.h"
49768c3667SVlad Buslov #include "en/rep/tc.h"
50e2394a61SVlad Buslov #include "en/rep/neigh.h"
51232c0013SHadar Hen Zion #include "en_tc.h"
5203a9d11eSOr Gerlitz #include "eswitch.h"
533f6d08d1SOr Gerlitz #include "fs_core.h"
542c81bfd5SHuy Nguyen #include "en/port.h"
55101f4de9SOz Shlomo #include "en/tc_tun.h"
560a7fcb78SPaul Blakey #include "en/mapping.h"
574c3844d9SPaul Blakey #include "en/tc_ct.h"
58b2fdf3d0SPaul Blakey #include "en/mod_hdr.h"
590d9f9647SVlad Buslov #include "en/tc_tun_encap.h"
600027d70cSChris Mi #include "en/tc/sample.h"
61fad54790SRoi Dayan #include "en/tc/act/act.h"
6204de7ddaSRoi Dayan #include "lib/devcom.h"
639272e3dfSYevgeny Kliteynik #include "lib/geneve.h"
64ae430332SAriel Levkovich #include "lib/fs_chains.h"
657a978759SDmytro Linkin #include "diag/en_tc_tracepoint.h"
661fe3e316SParav Pandit #include <asm/div64.h>
67016c8946SJakub Kicinski #include "lag/lag.h"
68016c8946SJakub Kicinski #include "lag/mp.h"
69e8f887acSAmir Vadai 
70acff797cSMaor Gottlieb #define MLX5E_TC_TABLE_NUM_GROUPS 4
716a064674SAriel Levkovich #define MLX5E_TC_TABLE_MAX_GROUP_SIZE BIT(18)
72e8f887acSAmir Vadai 
738f1e0b97SPaul Blakey struct mlx5e_tc_attr_to_reg_mapping mlx5e_tc_attr_to_reg_mappings[] = {
748f1e0b97SPaul Blakey 	[CHAIN_TO_REG] = {
758f1e0b97SPaul Blakey 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_0,
768f1e0b97SPaul Blakey 		.moffset = 0,
77ed2fe7baSPaul Blakey 		.mlen = 16,
788f1e0b97SPaul Blakey 	},
7910742efcSVlad Buslov 	[VPORT_TO_REG] = {
8010742efcSVlad Buslov 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_0,
81ed2fe7baSPaul Blakey 		.moffset = 16,
82ed2fe7baSPaul Blakey 		.mlen = 16,
8310742efcSVlad Buslov 	},
840a7fcb78SPaul Blakey 	[TUNNEL_TO_REG] = {
850a7fcb78SPaul Blakey 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_1,
86ed2fe7baSPaul Blakey 		.moffset = 8,
87ed2fe7baSPaul Blakey 		.mlen = ESW_TUN_OPTS_BITS + ESW_TUN_ID_BITS,
880a7fcb78SPaul Blakey 		.soffset = MLX5_BYTE_OFF(fte_match_param,
890a7fcb78SPaul Blakey 					 misc_parameters_2.metadata_reg_c_1),
900a7fcb78SPaul Blakey 	},
914c3844d9SPaul Blakey 	[ZONE_TO_REG] = zone_to_reg_ct,
92a8eb919bSPaul Blakey 	[ZONE_RESTORE_TO_REG] = zone_restore_to_reg_ct,
934c3844d9SPaul Blakey 	[CTSTATE_TO_REG] = ctstate_to_reg_ct,
944c3844d9SPaul Blakey 	[MARK_TO_REG] = mark_to_reg_ct,
954c3844d9SPaul Blakey 	[LABELS_TO_REG] = labels_to_reg_ct,
964c3844d9SPaul Blakey 	[FTEID_TO_REG] = fteid_to_reg_ct,
9739c538d6SCai Huoqing 	/* For NIC rules we store the restore metadata directly
98c7569097SAriel Levkovich 	 * into reg_b that is passed to SW since we don't
99c7569097SAriel Levkovich 	 * jump between steering domains.
100c7569097SAriel Levkovich 	 */
101c7569097SAriel Levkovich 	[NIC_CHAIN_TO_REG] = {
102c7569097SAriel Levkovich 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_B,
103c7569097SAriel Levkovich 		.moffset = 0,
104ed2fe7baSPaul Blakey 		.mlen = 16,
105c7569097SAriel Levkovich 	},
106aedd133dSAriel Levkovich 	[NIC_ZONE_RESTORE_TO_REG] = nic_zone_restore_to_reg_ct,
1078f1e0b97SPaul Blakey };
1088f1e0b97SPaul Blakey 
1099ba33339SRoi Dayan /* To avoid false lock dependency warning set the tc_ht lock
1109ba33339SRoi Dayan  * class different than the lock class of the ht being used when deleting
1119ba33339SRoi Dayan  * last flow from a group and then deleting a group, we get into del_sw_flow_group()
1129ba33339SRoi Dayan  * which call rhashtable_destroy on fg->ftes_hash which will take ht->mutex but
1139ba33339SRoi Dayan  * it's different than the ht->mutex here.
1149ba33339SRoi Dayan  */
1159ba33339SRoi Dayan static struct lock_class_key tc_ht_lock_key;
1169ba33339SRoi Dayan 
1170a7fcb78SPaul Blakey static void mlx5e_put_flow_tunnel_id(struct mlx5e_tc_flow *flow);
1180a7fcb78SPaul Blakey 
1190a7fcb78SPaul Blakey void
1200a7fcb78SPaul Blakey mlx5e_tc_match_to_reg_match(struct mlx5_flow_spec *spec,
1210a7fcb78SPaul Blakey 			    enum mlx5e_tc_attr_to_reg type,
122ed2fe7baSPaul Blakey 			    u32 val,
1230a7fcb78SPaul Blakey 			    u32 mask)
1240a7fcb78SPaul Blakey {
125ed2fe7baSPaul Blakey 	void *headers_c = spec->match_criteria, *headers_v = spec->match_value, *fmask, *fval;
1260a7fcb78SPaul Blakey 	int soffset = mlx5e_tc_attr_to_reg_mappings[type].soffset;
127ed2fe7baSPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
1280a7fcb78SPaul Blakey 	int match_len = mlx5e_tc_attr_to_reg_mappings[type].mlen;
129ed2fe7baSPaul Blakey 	u32 max_mask = GENMASK(match_len - 1, 0);
130ed2fe7baSPaul Blakey 	__be32 curr_mask_be, curr_val_be;
131ed2fe7baSPaul Blakey 	u32 curr_mask, curr_val;
1320a7fcb78SPaul Blakey 
1330a7fcb78SPaul Blakey 	fmask = headers_c + soffset;
1340a7fcb78SPaul Blakey 	fval = headers_v + soffset;
1350a7fcb78SPaul Blakey 
136ed2fe7baSPaul Blakey 	memcpy(&curr_mask_be, fmask, 4);
137ed2fe7baSPaul Blakey 	memcpy(&curr_val_be, fval, 4);
1380a7fcb78SPaul Blakey 
139ed2fe7baSPaul Blakey 	curr_mask = be32_to_cpu(curr_mask_be);
140ed2fe7baSPaul Blakey 	curr_val = be32_to_cpu(curr_val_be);
141ed2fe7baSPaul Blakey 
142ed2fe7baSPaul Blakey 	//move to correct offset
143ed2fe7baSPaul Blakey 	WARN_ON(mask > max_mask);
144ed2fe7baSPaul Blakey 	mask <<= moffset;
145ed2fe7baSPaul Blakey 	val <<= moffset;
146ed2fe7baSPaul Blakey 	max_mask <<= moffset;
147ed2fe7baSPaul Blakey 
148ed2fe7baSPaul Blakey 	//zero val and mask
149ed2fe7baSPaul Blakey 	curr_mask &= ~max_mask;
150ed2fe7baSPaul Blakey 	curr_val &= ~max_mask;
151ed2fe7baSPaul Blakey 
152ed2fe7baSPaul Blakey 	//add current to mask
153ed2fe7baSPaul Blakey 	curr_mask |= mask;
154ed2fe7baSPaul Blakey 	curr_val |= val;
155ed2fe7baSPaul Blakey 
156ed2fe7baSPaul Blakey 	//back to be32 and write
157ed2fe7baSPaul Blakey 	curr_mask_be = cpu_to_be32(curr_mask);
158ed2fe7baSPaul Blakey 	curr_val_be = cpu_to_be32(curr_val);
159ed2fe7baSPaul Blakey 
160ed2fe7baSPaul Blakey 	memcpy(fmask, &curr_mask_be, 4);
161ed2fe7baSPaul Blakey 	memcpy(fval, &curr_val_be, 4);
1620a7fcb78SPaul Blakey 
1630a7fcb78SPaul Blakey 	spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS_2;
1640a7fcb78SPaul Blakey }
1650a7fcb78SPaul Blakey 
1667e36feebSPaul Blakey void
1677e36feebSPaul Blakey mlx5e_tc_match_to_reg_get_match(struct mlx5_flow_spec *spec,
1687e36feebSPaul Blakey 				enum mlx5e_tc_attr_to_reg type,
169ed2fe7baSPaul Blakey 				u32 *val,
1707e36feebSPaul Blakey 				u32 *mask)
1717e36feebSPaul Blakey {
172ed2fe7baSPaul Blakey 	void *headers_c = spec->match_criteria, *headers_v = spec->match_value, *fmask, *fval;
1737e36feebSPaul Blakey 	int soffset = mlx5e_tc_attr_to_reg_mappings[type].soffset;
174ed2fe7baSPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
1757e36feebSPaul Blakey 	int match_len = mlx5e_tc_attr_to_reg_mappings[type].mlen;
176ed2fe7baSPaul Blakey 	u32 max_mask = GENMASK(match_len - 1, 0);
177ed2fe7baSPaul Blakey 	__be32 curr_mask_be, curr_val_be;
178ed2fe7baSPaul Blakey 	u32 curr_mask, curr_val;
1797e36feebSPaul Blakey 
1807e36feebSPaul Blakey 	fmask = headers_c + soffset;
1817e36feebSPaul Blakey 	fval = headers_v + soffset;
1827e36feebSPaul Blakey 
183ed2fe7baSPaul Blakey 	memcpy(&curr_mask_be, fmask, 4);
184ed2fe7baSPaul Blakey 	memcpy(&curr_val_be, fval, 4);
1857e36feebSPaul Blakey 
186ed2fe7baSPaul Blakey 	curr_mask = be32_to_cpu(curr_mask_be);
187ed2fe7baSPaul Blakey 	curr_val = be32_to_cpu(curr_val_be);
188ed2fe7baSPaul Blakey 
189ed2fe7baSPaul Blakey 	*mask = (curr_mask >> moffset) & max_mask;
190ed2fe7baSPaul Blakey 	*val = (curr_val >> moffset) & max_mask;
1917e36feebSPaul Blakey }
1927e36feebSPaul Blakey 
1930a7fcb78SPaul Blakey int
194c7b9038dSVlad Buslov mlx5e_tc_match_to_reg_set_and_get_id(struct mlx5_core_dev *mdev,
1950a7fcb78SPaul Blakey 				     struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
196aedd133dSAriel Levkovich 				     enum mlx5_flow_namespace_type ns,
1970a7fcb78SPaul Blakey 				     enum mlx5e_tc_attr_to_reg type,
1980a7fcb78SPaul Blakey 				     u32 data)
1990a7fcb78SPaul Blakey {
2000a7fcb78SPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
2010a7fcb78SPaul Blakey 	int mfield = mlx5e_tc_attr_to_reg_mappings[type].mfield;
2020a7fcb78SPaul Blakey 	int mlen = mlx5e_tc_attr_to_reg_mappings[type].mlen;
2030a7fcb78SPaul Blakey 	char *modact;
2040a7fcb78SPaul Blakey 	int err;
2050a7fcb78SPaul Blakey 
2062c0e5cf5SPaul Blakey 	modact = mlx5e_mod_hdr_alloc(mdev, ns, mod_hdr_acts);
2072c0e5cf5SPaul Blakey 	if (IS_ERR(modact))
2082c0e5cf5SPaul Blakey 		return PTR_ERR(modact);
2090a7fcb78SPaul Blakey 
2100a7fcb78SPaul Blakey 	/* Firmware has 5bit length field and 0 means 32bits */
211ed2fe7baSPaul Blakey 	if (mlen == 32)
2120a7fcb78SPaul Blakey 		mlen = 0;
2130a7fcb78SPaul Blakey 
2140a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, action_type, MLX5_ACTION_TYPE_SET);
2150a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, field, mfield);
216ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, offset, moffset);
217ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, length, mlen);
2180a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, data, data);
219c7b9038dSVlad Buslov 	err = mod_hdr_acts->num_actions;
2200a7fcb78SPaul Blakey 	mod_hdr_acts->num_actions++;
2210a7fcb78SPaul Blakey 
222c7b9038dSVlad Buslov 	return err;
2230a7fcb78SPaul Blakey }
2240a7fcb78SPaul Blakey 
22527484f71SAriel Levkovich struct mlx5e_tc_int_port_priv *
22627484f71SAriel Levkovich mlx5e_get_int_port_priv(struct mlx5e_priv *priv)
22727484f71SAriel Levkovich {
22827484f71SAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
22927484f71SAriel Levkovich 	struct mlx5_rep_uplink_priv *uplink_priv;
23027484f71SAriel Levkovich 	struct mlx5e_rep_priv *uplink_rpriv;
23127484f71SAriel Levkovich 
23227484f71SAriel Levkovich 	if (is_mdev_switchdev_mode(priv->mdev)) {
23327484f71SAriel Levkovich 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
23427484f71SAriel Levkovich 		uplink_priv = &uplink_rpriv->uplink_priv;
23527484f71SAriel Levkovich 
23627484f71SAriel Levkovich 		return uplink_priv->int_port_priv;
23727484f71SAriel Levkovich 	}
23827484f71SAriel Levkovich 
23927484f71SAriel Levkovich 	return NULL;
24027484f71SAriel Levkovich }
24127484f71SAriel Levkovich 
242aedd133dSAriel Levkovich static struct mlx5_tc_ct_priv *
243aedd133dSAriel Levkovich get_ct_priv(struct mlx5e_priv *priv)
244aedd133dSAriel Levkovich {
245aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
246aedd133dSAriel Levkovich 	struct mlx5_rep_uplink_priv *uplink_priv;
247aedd133dSAriel Levkovich 	struct mlx5e_rep_priv *uplink_rpriv;
248aedd133dSAriel Levkovich 
249e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev)) {
250aedd133dSAriel Levkovich 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
251aedd133dSAriel Levkovich 		uplink_priv = &uplink_rpriv->uplink_priv;
252aedd133dSAriel Levkovich 
253aedd133dSAriel Levkovich 		return uplink_priv->ct_priv;
254aedd133dSAriel Levkovich 	}
255aedd133dSAriel Levkovich 
256aedd133dSAriel Levkovich 	return priv->fs.tc.ct;
257aedd133dSAriel Levkovich }
258aedd133dSAriel Levkovich 
2590027d70cSChris Mi static struct mlx5e_tc_psample *
260f94d6389SChris Mi get_sample_priv(struct mlx5e_priv *priv)
261f94d6389SChris Mi {
262f94d6389SChris Mi 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
263f94d6389SChris Mi 	struct mlx5_rep_uplink_priv *uplink_priv;
264f94d6389SChris Mi 	struct mlx5e_rep_priv *uplink_rpriv;
265f94d6389SChris Mi 
266f94d6389SChris Mi 	if (is_mdev_switchdev_mode(priv->mdev)) {
267f94d6389SChris Mi 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
268f94d6389SChris Mi 		uplink_priv = &uplink_rpriv->uplink_priv;
269f94d6389SChris Mi 
2700027d70cSChris Mi 		return uplink_priv->tc_psample;
271f94d6389SChris Mi 	}
272f94d6389SChris Mi 
273f94d6389SChris Mi 	return NULL;
274f94d6389SChris Mi }
275f94d6389SChris Mi 
276aedd133dSAriel Levkovich struct mlx5_flow_handle *
277aedd133dSAriel Levkovich mlx5_tc_rule_insert(struct mlx5e_priv *priv,
278aedd133dSAriel Levkovich 		    struct mlx5_flow_spec *spec,
279aedd133dSAriel Levkovich 		    struct mlx5_flow_attr *attr)
280aedd133dSAriel Levkovich {
281aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
282aedd133dSAriel Levkovich 
283e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev))
284aedd133dSAriel Levkovich 		return mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
285aedd133dSAriel Levkovich 
286aedd133dSAriel Levkovich 	return	mlx5e_add_offloaded_nic_rule(priv, spec, attr);
287aedd133dSAriel Levkovich }
288aedd133dSAriel Levkovich 
289aedd133dSAriel Levkovich void
290aedd133dSAriel Levkovich mlx5_tc_rule_delete(struct mlx5e_priv *priv,
291aedd133dSAriel Levkovich 		    struct mlx5_flow_handle *rule,
292aedd133dSAriel Levkovich 		    struct mlx5_flow_attr *attr)
293aedd133dSAriel Levkovich {
294aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
295aedd133dSAriel Levkovich 
296e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev)) {
297aedd133dSAriel Levkovich 		mlx5_eswitch_del_offloaded_rule(esw, rule, attr);
298aedd133dSAriel Levkovich 
299aedd133dSAriel Levkovich 		return;
300aedd133dSAriel Levkovich 	}
301aedd133dSAriel Levkovich 
302aedd133dSAriel Levkovich 	mlx5e_del_offloaded_nic_rule(priv, rule, attr);
303aedd133dSAriel Levkovich }
304aedd133dSAriel Levkovich 
305c7b9038dSVlad Buslov int
306c7b9038dSVlad Buslov mlx5e_tc_match_to_reg_set(struct mlx5_core_dev *mdev,
307c7b9038dSVlad Buslov 			  struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
308c7b9038dSVlad Buslov 			  enum mlx5_flow_namespace_type ns,
309c7b9038dSVlad Buslov 			  enum mlx5e_tc_attr_to_reg type,
310c7b9038dSVlad Buslov 			  u32 data)
311c7b9038dSVlad Buslov {
312c7b9038dSVlad Buslov 	int ret = mlx5e_tc_match_to_reg_set_and_get_id(mdev, mod_hdr_acts, ns, type, data);
313c7b9038dSVlad Buslov 
314c7b9038dSVlad Buslov 	return ret < 0 ? ret : 0;
315c7b9038dSVlad Buslov }
316c7b9038dSVlad Buslov 
317c7b9038dSVlad Buslov void mlx5e_tc_match_to_reg_mod_hdr_change(struct mlx5_core_dev *mdev,
318c7b9038dSVlad Buslov 					  struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
319c7b9038dSVlad Buslov 					  enum mlx5e_tc_attr_to_reg type,
320c7b9038dSVlad Buslov 					  int act_id, u32 data)
321c7b9038dSVlad Buslov {
322c7b9038dSVlad Buslov 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
323c7b9038dSVlad Buslov 	int mfield = mlx5e_tc_attr_to_reg_mappings[type].mfield;
324c7b9038dSVlad Buslov 	int mlen = mlx5e_tc_attr_to_reg_mappings[type].mlen;
325c7b9038dSVlad Buslov 	char *modact;
326c7b9038dSVlad Buslov 
3272c0e5cf5SPaul Blakey 	modact = mlx5e_mod_hdr_get_item(mod_hdr_acts, act_id);
328c7b9038dSVlad Buslov 
329c7b9038dSVlad Buslov 	/* Firmware has 5bit length field and 0 means 32bits */
330ed2fe7baSPaul Blakey 	if (mlen == 32)
331c7b9038dSVlad Buslov 		mlen = 0;
332c7b9038dSVlad Buslov 
333c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, action_type, MLX5_ACTION_TYPE_SET);
334c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, field, mfield);
335ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, offset, moffset);
336ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, length, mlen);
337c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, data, data);
338c7b9038dSVlad Buslov }
339c7b9038dSVlad Buslov 
34077ab67b7SOr Gerlitz struct mlx5e_hairpin {
34177ab67b7SOr Gerlitz 	struct mlx5_hairpin *pair;
34277ab67b7SOr Gerlitz 
34377ab67b7SOr Gerlitz 	struct mlx5_core_dev *func_mdev;
3443f6d08d1SOr Gerlitz 	struct mlx5e_priv *func_priv;
34577ab67b7SOr Gerlitz 	u32 tdn;
346a6696735SMaxim Mikityanskiy 	struct mlx5e_tir direct_tir;
3473f6d08d1SOr Gerlitz 
3483f6d08d1SOr Gerlitz 	int num_channels;
3493f6d08d1SOr Gerlitz 	struct mlx5e_rqt indir_rqt;
350a6696735SMaxim Mikityanskiy 	struct mlx5e_tir indir_tir[MLX5E_NUM_INDIR_TIRS];
351f4b45940SMaor Gottlieb 	struct mlx5_ttc_table *ttc;
35277ab67b7SOr Gerlitz };
35377ab67b7SOr Gerlitz 
3545c65c564SOr Gerlitz struct mlx5e_hairpin_entry {
3555c65c564SOr Gerlitz 	/* a node of a hash table which keeps all the  hairpin entries */
3565c65c564SOr Gerlitz 	struct hlist_node hairpin_hlist;
3575c65c564SOr Gerlitz 
35873edca73SVlad Buslov 	/* protects flows list */
35973edca73SVlad Buslov 	spinlock_t flows_lock;
3605c65c564SOr Gerlitz 	/* flows sharing the same hairpin */
3615c65c564SOr Gerlitz 	struct list_head flows;
362db76ca24SVlad Buslov 	/* hpe's that were not fully initialized when dead peer update event
363db76ca24SVlad Buslov 	 * function traversed them.
364db76ca24SVlad Buslov 	 */
365db76ca24SVlad Buslov 	struct list_head dead_peer_wait_list;
3665c65c564SOr Gerlitz 
367d8822868SOr Gerlitz 	u16 peer_vhca_id;
368106be53bSOr Gerlitz 	u8 prio;
3695c65c564SOr Gerlitz 	struct mlx5e_hairpin *hp;
370e4f9abbdSVlad Buslov 	refcount_t refcnt;
371db76ca24SVlad Buslov 	struct completion res_ready;
3725c65c564SOr Gerlitz };
3735c65c564SOr Gerlitz 
3745a7e5bcbSVlad Buslov static void mlx5e_tc_del_flow(struct mlx5e_priv *priv,
3755a7e5bcbSVlad Buslov 			      struct mlx5e_tc_flow *flow);
3765a7e5bcbSVlad Buslov 
3770d9f9647SVlad Buslov struct mlx5e_tc_flow *mlx5e_flow_get(struct mlx5e_tc_flow *flow)
3785a7e5bcbSVlad Buslov {
3795a7e5bcbSVlad Buslov 	if (!flow || !refcount_inc_not_zero(&flow->refcnt))
3805a7e5bcbSVlad Buslov 		return ERR_PTR(-EINVAL);
3815a7e5bcbSVlad Buslov 	return flow;
3825a7e5bcbSVlad Buslov }
3835a7e5bcbSVlad Buslov 
3840d9f9647SVlad Buslov void mlx5e_flow_put(struct mlx5e_priv *priv, struct mlx5e_tc_flow *flow)
3855a7e5bcbSVlad Buslov {
3865a7e5bcbSVlad Buslov 	if (refcount_dec_and_test(&flow->refcnt)) {
3875a7e5bcbSVlad Buslov 		mlx5e_tc_del_flow(priv, flow);
388c5d326b2SVlad Buslov 		kfree_rcu(flow, rcu_head);
3895a7e5bcbSVlad Buslov 	}
3905a7e5bcbSVlad Buslov }
3915a7e5bcbSVlad Buslov 
392aedd133dSAriel Levkovich bool mlx5e_is_eswitch_flow(struct mlx5e_tc_flow *flow)
393226f2ca3SVlad Buslov {
394226f2ca3SVlad Buslov 	return flow_flag_test(flow, ESWITCH);
395226f2ca3SVlad Buslov }
396226f2ca3SVlad Buslov 
39767d62ee7SRoi Dayan bool mlx5e_is_ft_flow(struct mlx5e_tc_flow *flow)
39884179981SPaul Blakey {
39984179981SPaul Blakey 	return flow_flag_test(flow, FT);
40084179981SPaul Blakey }
40184179981SPaul Blakey 
4020d9f9647SVlad Buslov bool mlx5e_is_offloaded_flow(struct mlx5e_tc_flow *flow)
403226f2ca3SVlad Buslov {
404226f2ca3SVlad Buslov 	return flow_flag_test(flow, OFFLOADED);
405226f2ca3SVlad Buslov }
406226f2ca3SVlad Buslov 
407e36db1eeSRoi Dayan int mlx5e_get_flow_namespace(struct mlx5e_tc_flow *flow)
408d2faae25SVlad Buslov {
409d2faae25SVlad Buslov 	return mlx5e_is_eswitch_flow(flow) ?
410d2faae25SVlad Buslov 		MLX5_FLOW_NAMESPACE_FDB : MLX5_FLOW_NAMESPACE_KERNEL;
411d2faae25SVlad Buslov }
412b2fdf3d0SPaul Blakey 
413b2fdf3d0SPaul Blakey static struct mod_hdr_tbl *
414b2fdf3d0SPaul Blakey get_mod_hdr_table(struct mlx5e_priv *priv, struct mlx5e_tc_flow *flow)
415b2fdf3d0SPaul Blakey {
416b2fdf3d0SPaul Blakey 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
417b2fdf3d0SPaul Blakey 
418e36db1eeSRoi Dayan 	return mlx5e_get_flow_namespace(flow) == MLX5_FLOW_NAMESPACE_FDB ?
419b2fdf3d0SPaul Blakey 		&esw->offloads.mod_hdr :
420b2fdf3d0SPaul Blakey 		&priv->fs.tc.mod_hdr;
421b2fdf3d0SPaul Blakey }
422b2fdf3d0SPaul Blakey 
42311c9c548SOr Gerlitz static int mlx5e_attach_mod_hdr(struct mlx5e_priv *priv,
42411c9c548SOr Gerlitz 				struct mlx5e_tc_flow *flow,
42511c9c548SOr Gerlitz 				struct mlx5e_tc_flow_parse_attr *parse_attr)
42611c9c548SOr Gerlitz {
427b2fdf3d0SPaul Blakey 	struct mlx5_modify_hdr *modify_hdr;
428b2fdf3d0SPaul Blakey 	struct mlx5e_mod_hdr_handle *mh;
42911c9c548SOr Gerlitz 
430b2fdf3d0SPaul Blakey 	mh = mlx5e_mod_hdr_attach(priv->mdev, get_mod_hdr_table(priv, flow),
431e36db1eeSRoi Dayan 				  mlx5e_get_flow_namespace(flow),
432b2fdf3d0SPaul Blakey 				  &parse_attr->mod_hdr_acts);
433b2fdf3d0SPaul Blakey 	if (IS_ERR(mh))
434b2fdf3d0SPaul Blakey 		return PTR_ERR(mh);
43511c9c548SOr Gerlitz 
436b2fdf3d0SPaul Blakey 	modify_hdr = mlx5e_mod_hdr_get(mh);
437c620b772SAriel Levkovich 	flow->attr->modify_hdr = modify_hdr;
438b2fdf3d0SPaul Blakey 	flow->mh = mh;
43911c9c548SOr Gerlitz 
44011c9c548SOr Gerlitz 	return 0;
44111c9c548SOr Gerlitz }
44211c9c548SOr Gerlitz 
44311c9c548SOr Gerlitz static void mlx5e_detach_mod_hdr(struct mlx5e_priv *priv,
44411c9c548SOr Gerlitz 				 struct mlx5e_tc_flow *flow)
44511c9c548SOr Gerlitz {
4465a7e5bcbSVlad Buslov 	/* flow wasn't fully initialized */
447dd58edc3SVlad Buslov 	if (!flow->mh)
4485a7e5bcbSVlad Buslov 		return;
4495a7e5bcbSVlad Buslov 
450b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_detach(priv->mdev, get_mod_hdr_table(priv, flow),
451b2fdf3d0SPaul Blakey 			     flow->mh);
452dd58edc3SVlad Buslov 	flow->mh = NULL;
45311c9c548SOr Gerlitz }
45411c9c548SOr Gerlitz 
45577ab67b7SOr Gerlitz static
45677ab67b7SOr Gerlitz struct mlx5_core_dev *mlx5e_hairpin_get_mdev(struct net *net, int ifindex)
45777ab67b7SOr Gerlitz {
458b1c2f631SDima Chumak 	struct mlx5_core_dev *mdev;
45977ab67b7SOr Gerlitz 	struct net_device *netdev;
46077ab67b7SOr Gerlitz 	struct mlx5e_priv *priv;
46177ab67b7SOr Gerlitz 
462b1c2f631SDima Chumak 	netdev = dev_get_by_index(net, ifindex);
463b1c2f631SDima Chumak 	if (!netdev)
464b1c2f631SDima Chumak 		return ERR_PTR(-ENODEV);
465b1c2f631SDima Chumak 
46677ab67b7SOr Gerlitz 	priv = netdev_priv(netdev);
467b1c2f631SDima Chumak 	mdev = priv->mdev;
468b1c2f631SDima Chumak 	dev_put(netdev);
469b1c2f631SDima Chumak 
470b1c2f631SDima Chumak 	/* Mirred tc action holds a refcount on the ifindex net_device (see
471b1c2f631SDima Chumak 	 * net/sched/act_mirred.c:tcf_mirred_get_dev). So, it's okay to continue using mdev
472b1c2f631SDima Chumak 	 * after dev_put(netdev), while we're in the context of adding a tc flow.
473b1c2f631SDima Chumak 	 *
474b1c2f631SDima Chumak 	 * The mdev pointer corresponds to the peer/out net_device of a hairpin. It is then
475b1c2f631SDima Chumak 	 * stored in a hairpin object, which exists until all flows, that refer to it, get
476b1c2f631SDima Chumak 	 * removed.
477b1c2f631SDima Chumak 	 *
478b1c2f631SDima Chumak 	 * On the other hand, after a hairpin object has been created, the peer net_device may
479b1c2f631SDima Chumak 	 * be removed/unbound while there are still some hairpin flows that are using it. This
480b1c2f631SDima Chumak 	 * case is handled by mlx5e_tc_hairpin_update_dead_peer, which is hooked to
481b1c2f631SDima Chumak 	 * NETDEV_UNREGISTER event of the peer net_device.
482b1c2f631SDima Chumak 	 */
483b1c2f631SDima Chumak 	return mdev;
48477ab67b7SOr Gerlitz }
48577ab67b7SOr Gerlitz 
48677ab67b7SOr Gerlitz static int mlx5e_hairpin_create_transport(struct mlx5e_hairpin *hp)
48777ab67b7SOr Gerlitz {
488a6696735SMaxim Mikityanskiy 	struct mlx5e_tir_builder *builder;
48977ab67b7SOr Gerlitz 	int err;
49077ab67b7SOr Gerlitz 
491a6696735SMaxim Mikityanskiy 	builder = mlx5e_tir_builder_alloc(false);
492a6696735SMaxim Mikityanskiy 	if (!builder)
493a6696735SMaxim Mikityanskiy 		return -ENOMEM;
494a6696735SMaxim Mikityanskiy 
49577ab67b7SOr Gerlitz 	err = mlx5_core_alloc_transport_domain(hp->func_mdev, &hp->tdn);
49677ab67b7SOr Gerlitz 	if (err)
497a6696735SMaxim Mikityanskiy 		goto out;
49877ab67b7SOr Gerlitz 
499a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_build_inline(builder, hp->tdn, hp->pair->rqn[0]);
500a6696735SMaxim Mikityanskiy 	err = mlx5e_tir_init(&hp->direct_tir, builder, hp->func_mdev, false);
50177ab67b7SOr Gerlitz 	if (err)
50277ab67b7SOr Gerlitz 		goto create_tir_err;
50377ab67b7SOr Gerlitz 
504a6696735SMaxim Mikityanskiy out:
505a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_free(builder);
506a6696735SMaxim Mikityanskiy 	return err;
50777ab67b7SOr Gerlitz 
50877ab67b7SOr Gerlitz create_tir_err:
50977ab67b7SOr Gerlitz 	mlx5_core_dealloc_transport_domain(hp->func_mdev, hp->tdn);
510a6696735SMaxim Mikityanskiy 
511a6696735SMaxim Mikityanskiy 	goto out;
51277ab67b7SOr Gerlitz }
51377ab67b7SOr Gerlitz 
51477ab67b7SOr Gerlitz static void mlx5e_hairpin_destroy_transport(struct mlx5e_hairpin *hp)
51577ab67b7SOr Gerlitz {
516a6696735SMaxim Mikityanskiy 	mlx5e_tir_destroy(&hp->direct_tir);
51777ab67b7SOr Gerlitz 	mlx5_core_dealloc_transport_domain(hp->func_mdev, hp->tdn);
51877ab67b7SOr Gerlitz }
51977ab67b7SOr Gerlitz 
5203f6d08d1SOr Gerlitz static int mlx5e_hairpin_create_indirect_rqt(struct mlx5e_hairpin *hp)
5213f6d08d1SOr Gerlitz {
5223f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
5233f6d08d1SOr Gerlitz 	struct mlx5_core_dev *mdev = priv->mdev;
52406e9f13aSMaxim Mikityanskiy 	struct mlx5e_rss_params_indir *indir;
52506e9f13aSMaxim Mikityanskiy 	int err;
5263f6d08d1SOr Gerlitz 
52706e9f13aSMaxim Mikityanskiy 	indir = kvmalloc(sizeof(*indir), GFP_KERNEL);
52806e9f13aSMaxim Mikityanskiy 	if (!indir)
5293f6d08d1SOr Gerlitz 		return -ENOMEM;
5303f6d08d1SOr Gerlitz 
53143befe99SMaxim Mikityanskiy 	mlx5e_rss_params_indir_init_uniform(indir, hp->num_channels);
53206e9f13aSMaxim Mikityanskiy 	err = mlx5e_rqt_init_indir(&hp->indir_rqt, mdev, hp->pair->rqn, hp->num_channels,
53343ec0f41SMaxim Mikityanskiy 				   mlx5e_rx_res_get_current_hash(priv->rx_res).hfunc,
53443ec0f41SMaxim Mikityanskiy 				   indir);
5353f6d08d1SOr Gerlitz 
53606e9f13aSMaxim Mikityanskiy 	kvfree(indir);
5373f6d08d1SOr Gerlitz 	return err;
5383f6d08d1SOr Gerlitz }
5393f6d08d1SOr Gerlitz 
5403f6d08d1SOr Gerlitz static int mlx5e_hairpin_create_indirect_tirs(struct mlx5e_hairpin *hp)
5413f6d08d1SOr Gerlitz {
5423f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
54343ec0f41SMaxim Mikityanskiy 	struct mlx5e_rss_params_hash rss_hash;
544d443c6f6SMaor Gottlieb 	enum mlx5_traffic_types tt, max_tt;
545a6696735SMaxim Mikityanskiy 	struct mlx5e_tir_builder *builder;
546a6696735SMaxim Mikityanskiy 	int err = 0;
547a6696735SMaxim Mikityanskiy 
548a6696735SMaxim Mikityanskiy 	builder = mlx5e_tir_builder_alloc(false);
549a6696735SMaxim Mikityanskiy 	if (!builder)
550a6696735SMaxim Mikityanskiy 		return -ENOMEM;
551a6696735SMaxim Mikityanskiy 
55243ec0f41SMaxim Mikityanskiy 	rss_hash = mlx5e_rx_res_get_current_hash(priv->rx_res);
5533f6d08d1SOr Gerlitz 
5543f6d08d1SOr Gerlitz 	for (tt = 0; tt < MLX5E_NUM_INDIR_TIRS; tt++) {
55565d6b6e5SMaxim Mikityanskiy 		struct mlx5e_rss_params_traffic_type rss_tt;
556d930ac79SAya Levin 
55765d6b6e5SMaxim Mikityanskiy 		rss_tt = mlx5e_rss_get_default_tt_config(tt);
5583f6d08d1SOr Gerlitz 
559a6696735SMaxim Mikityanskiy 		mlx5e_tir_builder_build_rqt(builder, hp->tdn,
560a6696735SMaxim Mikityanskiy 					    mlx5e_rqt_get_rqtn(&hp->indir_rqt),
561a6696735SMaxim Mikityanskiy 					    false);
56243ec0f41SMaxim Mikityanskiy 		mlx5e_tir_builder_build_rss(builder, &rss_hash, &rss_tt, false);
563bbeb53b8SAya Levin 
564a6696735SMaxim Mikityanskiy 		err = mlx5e_tir_init(&hp->indir_tir[tt], builder, hp->func_mdev, false);
5653f6d08d1SOr Gerlitz 		if (err) {
5663f6d08d1SOr Gerlitz 			mlx5_core_warn(hp->func_mdev, "create indirect tirs failed, %d\n", err);
5673f6d08d1SOr Gerlitz 			goto err_destroy_tirs;
5683f6d08d1SOr Gerlitz 		}
569a6696735SMaxim Mikityanskiy 
570a6696735SMaxim Mikityanskiy 		mlx5e_tir_builder_clear(builder);
5713f6d08d1SOr Gerlitz 	}
572a6696735SMaxim Mikityanskiy 
573a6696735SMaxim Mikityanskiy out:
574a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_free(builder);
575a6696735SMaxim Mikityanskiy 	return err;
5763f6d08d1SOr Gerlitz 
5773f6d08d1SOr Gerlitz err_destroy_tirs:
578a6696735SMaxim Mikityanskiy 	max_tt = tt;
579a6696735SMaxim Mikityanskiy 	for (tt = 0; tt < max_tt; tt++)
580a6696735SMaxim Mikityanskiy 		mlx5e_tir_destroy(&hp->indir_tir[tt]);
581a6696735SMaxim Mikityanskiy 
582a6696735SMaxim Mikityanskiy 	goto out;
5833f6d08d1SOr Gerlitz }
5843f6d08d1SOr Gerlitz 
5853f6d08d1SOr Gerlitz static void mlx5e_hairpin_destroy_indirect_tirs(struct mlx5e_hairpin *hp)
5863f6d08d1SOr Gerlitz {
5873f6d08d1SOr Gerlitz 	int tt;
5883f6d08d1SOr Gerlitz 
5893f6d08d1SOr Gerlitz 	for (tt = 0; tt < MLX5E_NUM_INDIR_TIRS; tt++)
590a6696735SMaxim Mikityanskiy 		mlx5e_tir_destroy(&hp->indir_tir[tt]);
5913f6d08d1SOr Gerlitz }
5923f6d08d1SOr Gerlitz 
5933f6d08d1SOr Gerlitz static void mlx5e_hairpin_set_ttc_params(struct mlx5e_hairpin *hp,
5943f6d08d1SOr Gerlitz 					 struct ttc_params *ttc_params)
5953f6d08d1SOr Gerlitz {
5963f6d08d1SOr Gerlitz 	struct mlx5_flow_table_attr *ft_attr = &ttc_params->ft_attr;
5973f6d08d1SOr Gerlitz 	int tt;
5983f6d08d1SOr Gerlitz 
5993f6d08d1SOr Gerlitz 	memset(ttc_params, 0, sizeof(*ttc_params));
6003f6d08d1SOr Gerlitz 
601bc29764eSMaor Gottlieb 	ttc_params->ns = mlx5_get_flow_namespace(hp->func_mdev,
602bc29764eSMaor Gottlieb 						 MLX5_FLOW_NAMESPACE_KERNEL);
603bc29764eSMaor Gottlieb 	for (tt = 0; tt < MLX5_NUM_TT; tt++) {
604bc29764eSMaor Gottlieb 		ttc_params->dests[tt].type = MLX5_FLOW_DESTINATION_TYPE_TIR;
605bc29764eSMaor Gottlieb 		ttc_params->dests[tt].tir_num =
606bc29764eSMaor Gottlieb 			tt == MLX5_TT_ANY ?
607bc29764eSMaor Gottlieb 				mlx5e_tir_get_tirn(&hp->direct_tir) :
608bc29764eSMaor Gottlieb 				mlx5e_tir_get_tirn(&hp->indir_tir[tt]);
609bc29764eSMaor Gottlieb 	}
6103f6d08d1SOr Gerlitz 
6113f6d08d1SOr Gerlitz 	ft_attr->level = MLX5E_TC_TTC_FT_LEVEL;
6123f6d08d1SOr Gerlitz 	ft_attr->prio = MLX5E_TC_PRIO;
6133f6d08d1SOr Gerlitz }
6143f6d08d1SOr Gerlitz 
6153f6d08d1SOr Gerlitz static int mlx5e_hairpin_rss_init(struct mlx5e_hairpin *hp)
6163f6d08d1SOr Gerlitz {
6173f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
6183f6d08d1SOr Gerlitz 	struct ttc_params ttc_params;
6193f6d08d1SOr Gerlitz 	int err;
6203f6d08d1SOr Gerlitz 
6213f6d08d1SOr Gerlitz 	err = mlx5e_hairpin_create_indirect_rqt(hp);
6223f6d08d1SOr Gerlitz 	if (err)
6233f6d08d1SOr Gerlitz 		return err;
6243f6d08d1SOr Gerlitz 
6253f6d08d1SOr Gerlitz 	err = mlx5e_hairpin_create_indirect_tirs(hp);
6263f6d08d1SOr Gerlitz 	if (err)
6273f6d08d1SOr Gerlitz 		goto err_create_indirect_tirs;
6283f6d08d1SOr Gerlitz 
6293f6d08d1SOr Gerlitz 	mlx5e_hairpin_set_ttc_params(hp, &ttc_params);
630f4b45940SMaor Gottlieb 	hp->ttc = mlx5_create_ttc_table(priv->mdev, &ttc_params);
631f4b45940SMaor Gottlieb 	if (IS_ERR(hp->ttc)) {
632f4b45940SMaor Gottlieb 		err = PTR_ERR(hp->ttc);
6333f6d08d1SOr Gerlitz 		goto err_create_ttc_table;
634f4b45940SMaor Gottlieb 	}
6353f6d08d1SOr Gerlitz 
6363f6d08d1SOr Gerlitz 	netdev_dbg(priv->netdev, "add hairpin: using %d channels rss ttc table id %x\n",
637f4b45940SMaor Gottlieb 		   hp->num_channels,
638f4b45940SMaor Gottlieb 		   mlx5_get_ttc_flow_table(priv->fs.ttc)->id);
6393f6d08d1SOr Gerlitz 
6403f6d08d1SOr Gerlitz 	return 0;
6413f6d08d1SOr Gerlitz 
6423f6d08d1SOr Gerlitz err_create_ttc_table:
6433f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_indirect_tirs(hp);
6443f6d08d1SOr Gerlitz err_create_indirect_tirs:
64506e9f13aSMaxim Mikityanskiy 	mlx5e_rqt_destroy(&hp->indir_rqt);
6463f6d08d1SOr Gerlitz 
6473f6d08d1SOr Gerlitz 	return err;
6483f6d08d1SOr Gerlitz }
6493f6d08d1SOr Gerlitz 
6503f6d08d1SOr Gerlitz static void mlx5e_hairpin_rss_cleanup(struct mlx5e_hairpin *hp)
6513f6d08d1SOr Gerlitz {
652f4b45940SMaor Gottlieb 	mlx5_destroy_ttc_table(hp->ttc);
6533f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_indirect_tirs(hp);
65406e9f13aSMaxim Mikityanskiy 	mlx5e_rqt_destroy(&hp->indir_rqt);
6553f6d08d1SOr Gerlitz }
6563f6d08d1SOr Gerlitz 
65777ab67b7SOr Gerlitz static struct mlx5e_hairpin *
65877ab67b7SOr Gerlitz mlx5e_hairpin_create(struct mlx5e_priv *priv, struct mlx5_hairpin_params *params,
65977ab67b7SOr Gerlitz 		     int peer_ifindex)
66077ab67b7SOr Gerlitz {
66177ab67b7SOr Gerlitz 	struct mlx5_core_dev *func_mdev, *peer_mdev;
66277ab67b7SOr Gerlitz 	struct mlx5e_hairpin *hp;
66377ab67b7SOr Gerlitz 	struct mlx5_hairpin *pair;
66477ab67b7SOr Gerlitz 	int err;
66577ab67b7SOr Gerlitz 
66677ab67b7SOr Gerlitz 	hp = kzalloc(sizeof(*hp), GFP_KERNEL);
66777ab67b7SOr Gerlitz 	if (!hp)
66877ab67b7SOr Gerlitz 		return ERR_PTR(-ENOMEM);
66977ab67b7SOr Gerlitz 
67077ab67b7SOr Gerlitz 	func_mdev = priv->mdev;
67177ab67b7SOr Gerlitz 	peer_mdev = mlx5e_hairpin_get_mdev(dev_net(priv->netdev), peer_ifindex);
672b1c2f631SDima Chumak 	if (IS_ERR(peer_mdev)) {
673b1c2f631SDima Chumak 		err = PTR_ERR(peer_mdev);
674b1c2f631SDima Chumak 		goto create_pair_err;
675b1c2f631SDima Chumak 	}
67677ab67b7SOr Gerlitz 
67777ab67b7SOr Gerlitz 	pair = mlx5_core_hairpin_create(func_mdev, peer_mdev, params);
67877ab67b7SOr Gerlitz 	if (IS_ERR(pair)) {
67977ab67b7SOr Gerlitz 		err = PTR_ERR(pair);
68077ab67b7SOr Gerlitz 		goto create_pair_err;
68177ab67b7SOr Gerlitz 	}
68277ab67b7SOr Gerlitz 	hp->pair = pair;
68377ab67b7SOr Gerlitz 	hp->func_mdev = func_mdev;
6843f6d08d1SOr Gerlitz 	hp->func_priv = priv;
6853f6d08d1SOr Gerlitz 	hp->num_channels = params->num_channels;
68677ab67b7SOr Gerlitz 
68777ab67b7SOr Gerlitz 	err = mlx5e_hairpin_create_transport(hp);
68877ab67b7SOr Gerlitz 	if (err)
68977ab67b7SOr Gerlitz 		goto create_transport_err;
69077ab67b7SOr Gerlitz 
6913f6d08d1SOr Gerlitz 	if (hp->num_channels > 1) {
6923f6d08d1SOr Gerlitz 		err = mlx5e_hairpin_rss_init(hp);
6933f6d08d1SOr Gerlitz 		if (err)
6943f6d08d1SOr Gerlitz 			goto rss_init_err;
6953f6d08d1SOr Gerlitz 	}
6963f6d08d1SOr Gerlitz 
69777ab67b7SOr Gerlitz 	return hp;
69877ab67b7SOr Gerlitz 
6993f6d08d1SOr Gerlitz rss_init_err:
7003f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_transport(hp);
70177ab67b7SOr Gerlitz create_transport_err:
70277ab67b7SOr Gerlitz 	mlx5_core_hairpin_destroy(hp->pair);
70377ab67b7SOr Gerlitz create_pair_err:
70477ab67b7SOr Gerlitz 	kfree(hp);
70577ab67b7SOr Gerlitz 	return ERR_PTR(err);
70677ab67b7SOr Gerlitz }
70777ab67b7SOr Gerlitz 
70877ab67b7SOr Gerlitz static void mlx5e_hairpin_destroy(struct mlx5e_hairpin *hp)
70977ab67b7SOr Gerlitz {
7103f6d08d1SOr Gerlitz 	if (hp->num_channels > 1)
7113f6d08d1SOr Gerlitz 		mlx5e_hairpin_rss_cleanup(hp);
71277ab67b7SOr Gerlitz 	mlx5e_hairpin_destroy_transport(hp);
71377ab67b7SOr Gerlitz 	mlx5_core_hairpin_destroy(hp->pair);
71477ab67b7SOr Gerlitz 	kvfree(hp);
71577ab67b7SOr Gerlitz }
71677ab67b7SOr Gerlitz 
717106be53bSOr Gerlitz static inline u32 hash_hairpin_info(u16 peer_vhca_id, u8 prio)
718106be53bSOr Gerlitz {
719106be53bSOr Gerlitz 	return (peer_vhca_id << 16 | prio);
720106be53bSOr Gerlitz }
721106be53bSOr Gerlitz 
7225c65c564SOr Gerlitz static struct mlx5e_hairpin_entry *mlx5e_hairpin_get(struct mlx5e_priv *priv,
723106be53bSOr Gerlitz 						     u16 peer_vhca_id, u8 prio)
7245c65c564SOr Gerlitz {
7255c65c564SOr Gerlitz 	struct mlx5e_hairpin_entry *hpe;
726106be53bSOr Gerlitz 	u32 hash_key = hash_hairpin_info(peer_vhca_id, prio);
7275c65c564SOr Gerlitz 
7285c65c564SOr Gerlitz 	hash_for_each_possible(priv->fs.tc.hairpin_tbl, hpe,
729106be53bSOr Gerlitz 			       hairpin_hlist, hash_key) {
730e4f9abbdSVlad Buslov 		if (hpe->peer_vhca_id == peer_vhca_id && hpe->prio == prio) {
731e4f9abbdSVlad Buslov 			refcount_inc(&hpe->refcnt);
7325c65c564SOr Gerlitz 			return hpe;
7335c65c564SOr Gerlitz 		}
734e4f9abbdSVlad Buslov 	}
7355c65c564SOr Gerlitz 
7365c65c564SOr Gerlitz 	return NULL;
7375c65c564SOr Gerlitz }
7385c65c564SOr Gerlitz 
739e4f9abbdSVlad Buslov static void mlx5e_hairpin_put(struct mlx5e_priv *priv,
740e4f9abbdSVlad Buslov 			      struct mlx5e_hairpin_entry *hpe)
741e4f9abbdSVlad Buslov {
742e4f9abbdSVlad Buslov 	/* no more hairpin flows for us, release the hairpin pair */
743b32accdaSVlad Buslov 	if (!refcount_dec_and_mutex_lock(&hpe->refcnt, &priv->fs.tc.hairpin_tbl_lock))
744e4f9abbdSVlad Buslov 		return;
745b32accdaSVlad Buslov 	hash_del(&hpe->hairpin_hlist);
746b32accdaSVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
747e4f9abbdSVlad Buslov 
748db76ca24SVlad Buslov 	if (!IS_ERR_OR_NULL(hpe->hp)) {
749e4f9abbdSVlad Buslov 		netdev_dbg(priv->netdev, "del hairpin: peer %s\n",
750e4f9abbdSVlad Buslov 			   dev_name(hpe->hp->pair->peer_mdev->device));
751e4f9abbdSVlad Buslov 
752e4f9abbdSVlad Buslov 		mlx5e_hairpin_destroy(hpe->hp);
753db76ca24SVlad Buslov 	}
754db76ca24SVlad Buslov 
755db76ca24SVlad Buslov 	WARN_ON(!list_empty(&hpe->flows));
756e4f9abbdSVlad Buslov 	kfree(hpe);
757e4f9abbdSVlad Buslov }
758e4f9abbdSVlad Buslov 
759106be53bSOr Gerlitz #define UNKNOWN_MATCH_PRIO 8
760106be53bSOr Gerlitz 
761106be53bSOr Gerlitz static int mlx5e_hairpin_get_prio(struct mlx5e_priv *priv,
762e98bedf5SEli Britstein 				  struct mlx5_flow_spec *spec, u8 *match_prio,
763e98bedf5SEli Britstein 				  struct netlink_ext_ack *extack)
764106be53bSOr Gerlitz {
765106be53bSOr Gerlitz 	void *headers_c, *headers_v;
766106be53bSOr Gerlitz 	u8 prio_val, prio_mask = 0;
767106be53bSOr Gerlitz 	bool vlan_present;
768106be53bSOr Gerlitz 
769106be53bSOr Gerlitz #ifdef CONFIG_MLX5_CORE_EN_DCB
770106be53bSOr Gerlitz 	if (priv->dcbx_dp.trust_state != MLX5_QPTS_TRUST_PCP) {
771e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
772e98bedf5SEli Britstein 				   "only PCP trust state supported for hairpin");
773106be53bSOr Gerlitz 		return -EOPNOTSUPP;
774106be53bSOr Gerlitz 	}
775106be53bSOr Gerlitz #endif
776106be53bSOr Gerlitz 	headers_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria, outer_headers);
777106be53bSOr Gerlitz 	headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, outer_headers);
778106be53bSOr Gerlitz 
779106be53bSOr Gerlitz 	vlan_present = MLX5_GET(fte_match_set_lyr_2_4, headers_v, cvlan_tag);
780106be53bSOr Gerlitz 	if (vlan_present) {
781106be53bSOr Gerlitz 		prio_mask = MLX5_GET(fte_match_set_lyr_2_4, headers_c, first_prio);
782106be53bSOr Gerlitz 		prio_val = MLX5_GET(fte_match_set_lyr_2_4, headers_v, first_prio);
783106be53bSOr Gerlitz 	}
784106be53bSOr Gerlitz 
785106be53bSOr Gerlitz 	if (!vlan_present || !prio_mask) {
786106be53bSOr Gerlitz 		prio_val = UNKNOWN_MATCH_PRIO;
787106be53bSOr Gerlitz 	} else if (prio_mask != 0x7) {
788e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
789e98bedf5SEli Britstein 				   "masked priority match not supported for hairpin");
790106be53bSOr Gerlitz 		return -EOPNOTSUPP;
791106be53bSOr Gerlitz 	}
792106be53bSOr Gerlitz 
793106be53bSOr Gerlitz 	*match_prio = prio_val;
794106be53bSOr Gerlitz 	return 0;
795106be53bSOr Gerlitz }
796106be53bSOr Gerlitz 
7975c65c564SOr Gerlitz static int mlx5e_hairpin_flow_add(struct mlx5e_priv *priv,
7985c65c564SOr Gerlitz 				  struct mlx5e_tc_flow *flow,
799e98bedf5SEli Britstein 				  struct mlx5e_tc_flow_parse_attr *parse_attr,
800e98bedf5SEli Britstein 				  struct netlink_ext_ack *extack)
8015c65c564SOr Gerlitz {
80298b66cb1SEli Britstein 	int peer_ifindex = parse_attr->mirred_ifindex[0];
8035c65c564SOr Gerlitz 	struct mlx5_hairpin_params params;
804d8822868SOr Gerlitz 	struct mlx5_core_dev *peer_mdev;
8055c65c564SOr Gerlitz 	struct mlx5e_hairpin_entry *hpe;
8065c65c564SOr Gerlitz 	struct mlx5e_hairpin *hp;
8073f6d08d1SOr Gerlitz 	u64 link_speed64;
8083f6d08d1SOr Gerlitz 	u32 link_speed;
809106be53bSOr Gerlitz 	u8 match_prio;
810d8822868SOr Gerlitz 	u16 peer_id;
8115c65c564SOr Gerlitz 	int err;
8125c65c564SOr Gerlitz 
813d8822868SOr Gerlitz 	peer_mdev = mlx5e_hairpin_get_mdev(dev_net(priv->netdev), peer_ifindex);
814b1c2f631SDima Chumak 	if (IS_ERR(peer_mdev)) {
815b1c2f631SDima Chumak 		NL_SET_ERR_MSG_MOD(extack, "invalid ifindex of mirred device");
816b1c2f631SDima Chumak 		return PTR_ERR(peer_mdev);
817b1c2f631SDima Chumak 	}
818b1c2f631SDima Chumak 
819d8822868SOr Gerlitz 	if (!MLX5_CAP_GEN(priv->mdev, hairpin) || !MLX5_CAP_GEN(peer_mdev, hairpin)) {
820e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack, "hairpin is not supported");
8215c65c564SOr Gerlitz 		return -EOPNOTSUPP;
8225c65c564SOr Gerlitz 	}
8235c65c564SOr Gerlitz 
824d8822868SOr Gerlitz 	peer_id = MLX5_CAP_GEN(peer_mdev, vhca_id);
825e98bedf5SEli Britstein 	err = mlx5e_hairpin_get_prio(priv, &parse_attr->spec, &match_prio,
826e98bedf5SEli Britstein 				     extack);
827106be53bSOr Gerlitz 	if (err)
828106be53bSOr Gerlitz 		return err;
829b32accdaSVlad Buslov 
830b32accdaSVlad Buslov 	mutex_lock(&priv->fs.tc.hairpin_tbl_lock);
831106be53bSOr Gerlitz 	hpe = mlx5e_hairpin_get(priv, peer_id, match_prio);
832db76ca24SVlad Buslov 	if (hpe) {
833db76ca24SVlad Buslov 		mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
834db76ca24SVlad Buslov 		wait_for_completion(&hpe->res_ready);
835db76ca24SVlad Buslov 
836db76ca24SVlad Buslov 		if (IS_ERR(hpe->hp)) {
837db76ca24SVlad Buslov 			err = -EREMOTEIO;
838db76ca24SVlad Buslov 			goto out_err;
839db76ca24SVlad Buslov 		}
8405c65c564SOr Gerlitz 		goto attach_flow;
841db76ca24SVlad Buslov 	}
8425c65c564SOr Gerlitz 
8435c65c564SOr Gerlitz 	hpe = kzalloc(sizeof(*hpe), GFP_KERNEL);
844b32accdaSVlad Buslov 	if (!hpe) {
845db76ca24SVlad Buslov 		mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
846db76ca24SVlad Buslov 		return -ENOMEM;
847b32accdaSVlad Buslov 	}
8485c65c564SOr Gerlitz 
84973edca73SVlad Buslov 	spin_lock_init(&hpe->flows_lock);
8505c65c564SOr Gerlitz 	INIT_LIST_HEAD(&hpe->flows);
851db76ca24SVlad Buslov 	INIT_LIST_HEAD(&hpe->dead_peer_wait_list);
852d8822868SOr Gerlitz 	hpe->peer_vhca_id = peer_id;
853106be53bSOr Gerlitz 	hpe->prio = match_prio;
854e4f9abbdSVlad Buslov 	refcount_set(&hpe->refcnt, 1);
855db76ca24SVlad Buslov 	init_completion(&hpe->res_ready);
856db76ca24SVlad Buslov 
857db76ca24SVlad Buslov 	hash_add(priv->fs.tc.hairpin_tbl, &hpe->hairpin_hlist,
858db76ca24SVlad Buslov 		 hash_hairpin_info(peer_id, match_prio));
859db76ca24SVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
8605c65c564SOr Gerlitz 
8616cdc686aSAriel Levkovich 	params.log_data_size = 16;
8625c65c564SOr Gerlitz 	params.log_data_size = min_t(u8, params.log_data_size,
8635c65c564SOr Gerlitz 				     MLX5_CAP_GEN(priv->mdev, log_max_hairpin_wq_data_sz));
8645c65c564SOr Gerlitz 	params.log_data_size = max_t(u8, params.log_data_size,
8655c65c564SOr Gerlitz 				     MLX5_CAP_GEN(priv->mdev, log_min_hairpin_wq_data_sz));
8665c65c564SOr Gerlitz 
867eb9180f7SOr Gerlitz 	params.log_num_packets = params.log_data_size -
868eb9180f7SOr Gerlitz 				 MLX5_MPWRQ_MIN_LOG_STRIDE_SZ(priv->mdev);
869eb9180f7SOr Gerlitz 	params.log_num_packets = min_t(u8, params.log_num_packets,
870eb9180f7SOr Gerlitz 				       MLX5_CAP_GEN(priv->mdev, log_max_hairpin_num_packets));
871eb9180f7SOr Gerlitz 
872eb9180f7SOr Gerlitz 	params.q_counter = priv->q_counter;
8733f6d08d1SOr Gerlitz 	/* set hairpin pair per each 50Gbs share of the link */
8742c81bfd5SHuy Nguyen 	mlx5e_port_max_linkspeed(priv->mdev, &link_speed);
8753f6d08d1SOr Gerlitz 	link_speed = max_t(u32, link_speed, 50000);
8763f6d08d1SOr Gerlitz 	link_speed64 = link_speed;
8773f6d08d1SOr Gerlitz 	do_div(link_speed64, 50000);
8783f6d08d1SOr Gerlitz 	params.num_channels = link_speed64;
8793f6d08d1SOr Gerlitz 
8805c65c564SOr Gerlitz 	hp = mlx5e_hairpin_create(priv, &params, peer_ifindex);
881db76ca24SVlad Buslov 	hpe->hp = hp;
882db76ca24SVlad Buslov 	complete_all(&hpe->res_ready);
8835c65c564SOr Gerlitz 	if (IS_ERR(hp)) {
8845c65c564SOr Gerlitz 		err = PTR_ERR(hp);
885db76ca24SVlad Buslov 		goto out_err;
8865c65c564SOr Gerlitz 	}
8875c65c564SOr Gerlitz 
888eb9180f7SOr Gerlitz 	netdev_dbg(priv->netdev, "add hairpin: tirn %x rqn %x peer %s sqn %x prio %d (log) data %d packets %d\n",
889a6696735SMaxim Mikityanskiy 		   mlx5e_tir_get_tirn(&hp->direct_tir), hp->pair->rqn[0],
89027b942fbSParav Pandit 		   dev_name(hp->pair->peer_mdev->device),
891eb9180f7SOr Gerlitz 		   hp->pair->sqn[0], match_prio, params.log_data_size, params.log_num_packets);
8925c65c564SOr Gerlitz 
8935c65c564SOr Gerlitz attach_flow:
8943f6d08d1SOr Gerlitz 	if (hpe->hp->num_channels > 1) {
895226f2ca3SVlad Buslov 		flow_flag_set(flow, HAIRPIN_RSS);
896f4b45940SMaor Gottlieb 		flow->attr->nic_attr->hairpin_ft =
897f4b45940SMaor Gottlieb 			mlx5_get_ttc_flow_table(hpe->hp->ttc);
8983f6d08d1SOr Gerlitz 	} else {
899a6696735SMaxim Mikityanskiy 		flow->attr->nic_attr->hairpin_tirn = mlx5e_tir_get_tirn(&hpe->hp->direct_tir);
9003f6d08d1SOr Gerlitz 	}
901b32accdaSVlad Buslov 
902e4f9abbdSVlad Buslov 	flow->hpe = hpe;
90373edca73SVlad Buslov 	spin_lock(&hpe->flows_lock);
9045c65c564SOr Gerlitz 	list_add(&flow->hairpin, &hpe->flows);
90573edca73SVlad Buslov 	spin_unlock(&hpe->flows_lock);
9063f6d08d1SOr Gerlitz 
9075c65c564SOr Gerlitz 	return 0;
9085c65c564SOr Gerlitz 
909db76ca24SVlad Buslov out_err:
910db76ca24SVlad Buslov 	mlx5e_hairpin_put(priv, hpe);
9115c65c564SOr Gerlitz 	return err;
9125c65c564SOr Gerlitz }
9135c65c564SOr Gerlitz 
9145c65c564SOr Gerlitz static void mlx5e_hairpin_flow_del(struct mlx5e_priv *priv,
9155c65c564SOr Gerlitz 				   struct mlx5e_tc_flow *flow)
9165c65c564SOr Gerlitz {
9175a7e5bcbSVlad Buslov 	/* flow wasn't fully initialized */
918e4f9abbdSVlad Buslov 	if (!flow->hpe)
9195a7e5bcbSVlad Buslov 		return;
9205a7e5bcbSVlad Buslov 
92173edca73SVlad Buslov 	spin_lock(&flow->hpe->flows_lock);
9225c65c564SOr Gerlitz 	list_del(&flow->hairpin);
92373edca73SVlad Buslov 	spin_unlock(&flow->hpe->flows_lock);
92473edca73SVlad Buslov 
925e4f9abbdSVlad Buslov 	mlx5e_hairpin_put(priv, flow->hpe);
926e4f9abbdSVlad Buslov 	flow->hpe = NULL;
9275c65c564SOr Gerlitz }
9285c65c564SOr Gerlitz 
92908247066SAriel Levkovich struct mlx5_flow_handle *
93008247066SAriel Levkovich mlx5e_add_offloaded_nic_rule(struct mlx5e_priv *priv,
93108247066SAriel Levkovich 			     struct mlx5_flow_spec *spec,
932c620b772SAriel Levkovich 			     struct mlx5_flow_attr *attr)
933e8f887acSAmir Vadai {
93408247066SAriel Levkovich 	struct mlx5_flow_context *flow_context = &spec->flow_context;
93567d62ee7SRoi Dayan 	struct mlx5_fs_chains *nic_chains = mlx5e_nic_chains(priv);
936c620b772SAriel Levkovich 	struct mlx5_nic_flow_attr *nic_attr = attr->nic_attr;
9376a064674SAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
9385c65c564SOr Gerlitz 	struct mlx5_flow_destination dest[2] = {};
93966958ed9SHadar Hen Zion 	struct mlx5_flow_act flow_act = {
9403bc4b7bfSOr Gerlitz 		.action = attr->action,
941bb0ee7dcSJianbo Liu 		.flags    = FLOW_ACT_NO_APPEND,
94266958ed9SHadar Hen Zion 	};
94308247066SAriel Levkovich 	struct mlx5_flow_handle *rule;
944c7569097SAriel Levkovich 	struct mlx5_flow_table *ft;
94508247066SAriel Levkovich 	int dest_ix = 0;
946e8f887acSAmir Vadai 
947bb0ee7dcSJianbo Liu 	flow_context->flags |= FLOW_CONTEXT_HAS_TAG;
948c620b772SAriel Levkovich 	flow_context->flow_tag = nic_attr->flow_tag;
949bb0ee7dcSJianbo Liu 
950aedd133dSAriel Levkovich 	if (attr->dest_ft) {
951aedd133dSAriel Levkovich 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
952aedd133dSAriel Levkovich 		dest[dest_ix].ft = attr->dest_ft;
953aedd133dSAriel Levkovich 		dest_ix++;
954aedd133dSAriel Levkovich 	} else if (nic_attr->hairpin_ft) {
9553f6d08d1SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
956c620b772SAriel Levkovich 		dest[dest_ix].ft = nic_attr->hairpin_ft;
95708247066SAriel Levkovich 		dest_ix++;
958c620b772SAriel Levkovich 	} else if (nic_attr->hairpin_tirn) {
9595c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_TIR;
960c620b772SAriel Levkovich 		dest[dest_ix].tir_num = nic_attr->hairpin_tirn;
9613f6d08d1SOr Gerlitz 		dest_ix++;
9623f6d08d1SOr Gerlitz 	} else if (attr->action & MLX5_FLOW_CONTEXT_ACTION_FWD_DEST) {
9635c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
964c7569097SAriel Levkovich 		if (attr->dest_chain) {
965c7569097SAriel Levkovich 			dest[dest_ix].ft = mlx5_chains_get_table(nic_chains,
966c7569097SAriel Levkovich 								 attr->dest_chain, 1,
967c7569097SAriel Levkovich 								 MLX5E_TC_FT_LEVEL);
968c7569097SAriel Levkovich 			if (IS_ERR(dest[dest_ix].ft))
969c7569097SAriel Levkovich 				return ERR_CAST(dest[dest_ix].ft);
970c7569097SAriel Levkovich 		} else {
9716783f0a2SVu Pham 			dest[dest_ix].ft = mlx5e_vlan_get_flowtable(priv->fs.vlan);
972c7569097SAriel Levkovich 		}
9735c65c564SOr Gerlitz 		dest_ix++;
9745c65c564SOr Gerlitz 	}
975aad7e08dSAmir Vadai 
976c7569097SAriel Levkovich 	if (dest[0].type == MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE &&
977c7569097SAriel Levkovich 	    MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level))
978c7569097SAriel Levkovich 		flow_act.flags |= FLOW_ACT_IGNORE_FLOW_LEVEL;
979c7569097SAriel Levkovich 
98008247066SAriel Levkovich 	if (flow_act.action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
9815c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_COUNTER;
98208247066SAriel Levkovich 		dest[dest_ix].counter_id = mlx5_fc_id(attr->counter);
9835c65c564SOr Gerlitz 		dest_ix++;
984aad7e08dSAmir Vadai 	}
985aad7e08dSAmir Vadai 
98608247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR)
9872b688ea5SMaor Gottlieb 		flow_act.modify_hdr = attr->modify_hdr;
9882f4fe4caSOr Gerlitz 
9896a064674SAriel Levkovich 	mutex_lock(&tc->t_lock);
9906a064674SAriel Levkovich 	if (IS_ERR_OR_NULL(tc->t)) {
9916a064674SAriel Levkovich 		/* Create the root table here if doesn't exist yet */
9926a064674SAriel Levkovich 		tc->t =
993c7569097SAriel Levkovich 			mlx5_chains_get_table(nic_chains, 0, 1, MLX5E_TC_FT_LEVEL);
99421b9c144SOr Gerlitz 
9956a064674SAriel Levkovich 		if (IS_ERR(tc->t)) {
9966a064674SAriel Levkovich 			mutex_unlock(&tc->t_lock);
997e8f887acSAmir Vadai 			netdev_err(priv->netdev,
998e8f887acSAmir Vadai 				   "Failed to create tc offload table\n");
999c7569097SAriel Levkovich 			rule = ERR_CAST(priv->fs.tc.t);
1000c7569097SAriel Levkovich 			goto err_ft_get;
1001e8f887acSAmir Vadai 		}
1002e8f887acSAmir Vadai 	}
100308247066SAriel Levkovich 	mutex_unlock(&tc->t_lock);
1004e8f887acSAmir Vadai 
1005aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1006c7569097SAriel Levkovich 		ft = mlx5_chains_get_table(nic_chains,
1007c7569097SAriel Levkovich 					   attr->chain, attr->prio,
1008c7569097SAriel Levkovich 					   MLX5E_TC_FT_LEVEL);
1009aedd133dSAriel Levkovich 	else
1010aedd133dSAriel Levkovich 		ft = attr->ft;
1011aedd133dSAriel Levkovich 
1012c7569097SAriel Levkovich 	if (IS_ERR(ft)) {
1013c7569097SAriel Levkovich 		rule = ERR_CAST(ft);
1014c7569097SAriel Levkovich 		goto err_ft_get;
1015c7569097SAriel Levkovich 	}
1016c7569097SAriel Levkovich 
1017c620b772SAriel Levkovich 	if (attr->outer_match_level != MLX5_MATCH_NONE)
101808247066SAriel Levkovich 		spec->match_criteria_enable |= MLX5_MATCH_OUTER_HEADERS;
101938aa51c1SOr Gerlitz 
1020c7569097SAriel Levkovich 	rule = mlx5_add_flow_rules(ft, spec,
10215c65c564SOr Gerlitz 				   &flow_act, dest, dest_ix);
102208247066SAriel Levkovich 	if (IS_ERR(rule))
1023c7569097SAriel Levkovich 		goto err_rule;
102408247066SAriel Levkovich 
102508247066SAriel Levkovich 	return rule;
1026c7569097SAriel Levkovich 
1027c7569097SAriel Levkovich err_rule:
1028aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1029c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains,
1030c7569097SAriel Levkovich 				      attr->chain, attr->prio,
1031c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1032c7569097SAriel Levkovich err_ft_get:
1033c7569097SAriel Levkovich 	if (attr->dest_chain)
1034c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains,
1035c7569097SAriel Levkovich 				      attr->dest_chain, 1,
1036c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1037c7569097SAriel Levkovich 
1038c7569097SAriel Levkovich 	return ERR_CAST(rule);
103908247066SAriel Levkovich }
104008247066SAriel Levkovich 
104108247066SAriel Levkovich static int
104208247066SAriel Levkovich mlx5e_tc_add_nic_flow(struct mlx5e_priv *priv,
104308247066SAriel Levkovich 		      struct mlx5e_tc_flow *flow,
104408247066SAriel Levkovich 		      struct netlink_ext_ack *extack)
104508247066SAriel Levkovich {
1046c6cfe113SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
1047c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
104808247066SAriel Levkovich 	struct mlx5_core_dev *dev = priv->mdev;
104997a8d29aSRoi Dayan 	struct mlx5_fc *counter;
105008247066SAriel Levkovich 	int err;
105108247066SAriel Levkovich 
1052c6cfe113SRoi Dayan 	parse_attr = attr->parse_attr;
1053c6cfe113SRoi Dayan 
105408247066SAriel Levkovich 	if (flow_flag_test(flow, HAIRPIN)) {
105508247066SAriel Levkovich 		err = mlx5e_hairpin_flow_add(priv, flow, parse_attr, extack);
105608247066SAriel Levkovich 		if (err)
105708247066SAriel Levkovich 			return err;
105808247066SAriel Levkovich 	}
105908247066SAriel Levkovich 
106008247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
106108247066SAriel Levkovich 		counter = mlx5_fc_create(dev, true);
106208247066SAriel Levkovich 		if (IS_ERR(counter))
106308247066SAriel Levkovich 			return PTR_ERR(counter);
106408247066SAriel Levkovich 
106508247066SAriel Levkovich 		attr->counter = counter;
106608247066SAriel Levkovich 	}
106708247066SAriel Levkovich 
106808247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR) {
106908247066SAriel Levkovich 		err = mlx5e_attach_mod_hdr(priv, flow, parse_attr);
10702c0e5cf5SPaul Blakey 		mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
107108247066SAriel Levkovich 		if (err)
107208247066SAriel Levkovich 			return err;
107308247066SAriel Levkovich 	}
107408247066SAriel Levkovich 
1075aedd133dSAriel Levkovich 	if (flow_flag_test(flow, CT))
1076aedd133dSAriel Levkovich 		flow->rule[0] = mlx5_tc_ct_flow_offload(get_ct_priv(priv), flow, &parse_attr->spec,
1077aedd133dSAriel Levkovich 							attr, &parse_attr->mod_hdr_acts);
1078aedd133dSAriel Levkovich 	else
107908247066SAriel Levkovich 		flow->rule[0] = mlx5e_add_offloaded_nic_rule(priv, &parse_attr->spec,
108008247066SAriel Levkovich 							     attr);
1081e8f887acSAmir Vadai 
1082a2b7189bSzhong jiang 	return PTR_ERR_OR_ZERO(flow->rule[0]);
1083e8f887acSAmir Vadai }
1084e8f887acSAmir Vadai 
108508247066SAriel Levkovich void mlx5e_del_offloaded_nic_rule(struct mlx5e_priv *priv,
1086c7569097SAriel Levkovich 				  struct mlx5_flow_handle *rule,
1087c7569097SAriel Levkovich 				  struct mlx5_flow_attr *attr)
108808247066SAriel Levkovich {
108967d62ee7SRoi Dayan 	struct mlx5_fs_chains *nic_chains = mlx5e_nic_chains(priv);
1090c7569097SAriel Levkovich 
109108247066SAriel Levkovich 	mlx5_del_flow_rules(rule);
1092c7569097SAriel Levkovich 
1093aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1094c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains, attr->chain, attr->prio,
1095c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1096c7569097SAriel Levkovich 
1097c7569097SAriel Levkovich 	if (attr->dest_chain)
1098c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains, attr->dest_chain, 1,
1099c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
110008247066SAriel Levkovich }
110108247066SAriel Levkovich 
1102d85cdccbSOr Gerlitz static void mlx5e_tc_del_nic_flow(struct mlx5e_priv *priv,
1103d85cdccbSOr Gerlitz 				  struct mlx5e_tc_flow *flow)
1104d85cdccbSOr Gerlitz {
1105c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
11066a064674SAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
1107d85cdccbSOr Gerlitz 
1108c7569097SAriel Levkovich 	flow_flag_clear(flow, OFFLOADED);
1109c7569097SAriel Levkovich 
1110aedd133dSAriel Levkovich 	if (flow_flag_test(flow, CT))
1111aedd133dSAriel Levkovich 		mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
1112aedd133dSAriel Levkovich 	else if (!IS_ERR_OR_NULL(flow->rule[0]))
1113aedd133dSAriel Levkovich 		mlx5e_del_offloaded_nic_rule(priv, flow->rule[0], attr);
1114aedd133dSAriel Levkovich 
1115c7569097SAriel Levkovich 	/* Remove root table if no rules are left to avoid
1116c7569097SAriel Levkovich 	 * extra steering hops.
1117c7569097SAriel Levkovich 	 */
1118b6fac0b4SVlad Buslov 	mutex_lock(&priv->fs.tc.t_lock);
11196a064674SAriel Levkovich 	if (!mlx5e_tc_num_filters(priv, MLX5_TC_FLAG(NIC_OFFLOAD)) &&
11206a064674SAriel Levkovich 	    !IS_ERR_OR_NULL(tc->t)) {
112167d62ee7SRoi Dayan 		mlx5_chains_put_table(mlx5e_nic_chains(priv), 0, 1, MLX5E_TC_FT_LEVEL);
1122d85cdccbSOr Gerlitz 		priv->fs.tc.t = NULL;
1123d85cdccbSOr Gerlitz 	}
1124b6fac0b4SVlad Buslov 	mutex_unlock(&priv->fs.tc.t_lock);
11252f4fe4caSOr Gerlitz 
1126513f8f7fSOr Gerlitz 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR)
11273099eb5aSOr Gerlitz 		mlx5e_detach_mod_hdr(priv, flow);
11285c65c564SOr Gerlitz 
1129972fe492SRoi Dayan 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT)
1130aedd133dSAriel Levkovich 		mlx5_fc_destroy(priv->mdev, attr->counter);
1131aedd133dSAriel Levkovich 
1132226f2ca3SVlad Buslov 	if (flow_flag_test(flow, HAIRPIN))
11335c65c564SOr Gerlitz 		mlx5e_hairpin_flow_del(priv, flow);
1134c620b772SAriel Levkovich 
113588d97486SRoi Dayan 	kvfree(attr->parse_attr);
1136c620b772SAriel Levkovich 	kfree(flow->attr);
1137d85cdccbSOr Gerlitz }
1138d85cdccbSOr Gerlitz 
11390d9f9647SVlad Buslov struct mlx5_flow_handle *
11406d2a3ed0SOr Gerlitz mlx5e_tc_offload_fdb_rules(struct mlx5_eswitch *esw,
11416d2a3ed0SOr Gerlitz 			   struct mlx5e_tc_flow *flow,
11426d2a3ed0SOr Gerlitz 			   struct mlx5_flow_spec *spec,
1143c620b772SAriel Levkovich 			   struct mlx5_flow_attr *attr)
11446d2a3ed0SOr Gerlitz {
11451ef3018fSPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts;
11466d2a3ed0SOr Gerlitz 	struct mlx5_flow_handle *rule;
11474c3844d9SPaul Blakey 
114889e39467SPaul Blakey 	if (attr->flags & MLX5_ESW_ATTR_FLAG_SLOW_PATH)
114989e39467SPaul Blakey 		return mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
115089e39467SPaul Blakey 
11511ef3018fSPaul Blakey 	if (flow_flag_test(flow, CT)) {
11521ef3018fSPaul Blakey 		mod_hdr_acts = &attr->parse_attr->mod_hdr_acts;
11531ef3018fSPaul Blakey 
115469e2916eSPaul Blakey 		rule = mlx5_tc_ct_flow_offload(get_ct_priv(flow->priv),
1155aedd133dSAriel Levkovich 					       flow, spec, attr,
11561ef3018fSPaul Blakey 					       mod_hdr_acts);
1157f94d6389SChris Mi 	} else if (flow_flag_test(flow, SAMPLE)) {
1158ee950e5dSChris Mi 		rule = mlx5e_tc_sample_offload(get_sample_priv(flow->priv), spec, attr,
1159ee950e5dSChris Mi 					       mlx5e_tc_get_flow_tun_id(flow));
116069e2916eSPaul Blakey 	} else {
116169e2916eSPaul Blakey 		rule = mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
11621ef3018fSPaul Blakey 	}
11636d2a3ed0SOr Gerlitz 
11646d2a3ed0SOr Gerlitz 	if (IS_ERR(rule))
11656d2a3ed0SOr Gerlitz 		return rule;
11666d2a3ed0SOr Gerlitz 
1167c620b772SAriel Levkovich 	if (attr->esw_attr->split_count) {
11686d2a3ed0SOr Gerlitz 		flow->rule[1] = mlx5_eswitch_add_fwd_rule(esw, spec, attr);
11696d2a3ed0SOr Gerlitz 		if (IS_ERR(flow->rule[1])) {
117069e2916eSPaul Blakey 			if (flow_flag_test(flow, CT))
117169e2916eSPaul Blakey 				mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
117269e2916eSPaul Blakey 			else
11736d2a3ed0SOr Gerlitz 				mlx5_eswitch_del_offloaded_rule(esw, rule, attr);
11746d2a3ed0SOr Gerlitz 			return flow->rule[1];
11756d2a3ed0SOr Gerlitz 		}
11766d2a3ed0SOr Gerlitz 	}
11776d2a3ed0SOr Gerlitz 
11786d2a3ed0SOr Gerlitz 	return rule;
11796d2a3ed0SOr Gerlitz }
11806d2a3ed0SOr Gerlitz 
11810d9f9647SVlad Buslov void mlx5e_tc_unoffload_fdb_rules(struct mlx5_eswitch *esw,
11826d2a3ed0SOr Gerlitz 				  struct mlx5e_tc_flow *flow,
1183c620b772SAriel Levkovich 				  struct mlx5_flow_attr *attr)
11846d2a3ed0SOr Gerlitz {
1185226f2ca3SVlad Buslov 	flow_flag_clear(flow, OFFLOADED);
11866d2a3ed0SOr Gerlitz 
118789e39467SPaul Blakey 	if (attr->flags & MLX5_ESW_ATTR_FLAG_SLOW_PATH)
118889e39467SPaul Blakey 		goto offload_rule_0;
118989e39467SPaul Blakey 
1190c620b772SAriel Levkovich 	if (attr->esw_attr->split_count)
11916d2a3ed0SOr Gerlitz 		mlx5_eswitch_del_fwd_rule(esw, flow->rule[1], attr);
11926d2a3ed0SOr Gerlitz 
11932820110dSChris Mi 	if (flow_flag_test(flow, CT))
11942820110dSChris Mi 		mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
11952820110dSChris Mi 	else if (flow_flag_test(flow, SAMPLE))
11962820110dSChris Mi 		mlx5e_tc_sample_unoffload(get_sample_priv(flow->priv), flow->rule[0], attr);
11972820110dSChris Mi 	else
119889e39467SPaul Blakey offload_rule_0:
11996d2a3ed0SOr Gerlitz 		mlx5_eswitch_del_offloaded_rule(esw, flow->rule[0], attr);
12006d2a3ed0SOr Gerlitz }
12016d2a3ed0SOr Gerlitz 
12020d9f9647SVlad Buslov struct mlx5_flow_handle *
12035dbe906fSPaul Blakey mlx5e_tc_offload_to_slow_path(struct mlx5_eswitch *esw,
12045dbe906fSPaul Blakey 			      struct mlx5e_tc_flow *flow,
1205178f69b4SEli Cohen 			      struct mlx5_flow_spec *spec)
12065dbe906fSPaul Blakey {
1207c620b772SAriel Levkovich 	struct mlx5_flow_attr *slow_attr;
12085dbe906fSPaul Blakey 	struct mlx5_flow_handle *rule;
12095dbe906fSPaul Blakey 
1210c620b772SAriel Levkovich 	slow_attr = mlx5_alloc_flow_attr(MLX5_FLOW_NAMESPACE_FDB);
1211c620b772SAriel Levkovich 	if (!slow_attr)
1212c620b772SAriel Levkovich 		return ERR_PTR(-ENOMEM);
12135dbe906fSPaul Blakey 
1214c620b772SAriel Levkovich 	memcpy(slow_attr, flow->attr, ESW_FLOW_ATTR_SZ);
1215c620b772SAriel Levkovich 	slow_attr->action = MLX5_FLOW_CONTEXT_ACTION_FWD_DEST;
1216c620b772SAriel Levkovich 	slow_attr->esw_attr->split_count = 0;
1217c620b772SAriel Levkovich 	slow_attr->flags |= MLX5_ESW_ATTR_FLAG_SLOW_PATH;
1218c620b772SAriel Levkovich 
1219c620b772SAriel Levkovich 	rule = mlx5e_tc_offload_fdb_rules(esw, flow, spec, slow_attr);
12205dbe906fSPaul Blakey 	if (!IS_ERR(rule))
1221226f2ca3SVlad Buslov 		flow_flag_set(flow, SLOW);
12225dbe906fSPaul Blakey 
1223c620b772SAriel Levkovich 	kfree(slow_attr);
1224c620b772SAriel Levkovich 
12255dbe906fSPaul Blakey 	return rule;
12265dbe906fSPaul Blakey }
12275dbe906fSPaul Blakey 
12280d9f9647SVlad Buslov void mlx5e_tc_unoffload_from_slow_path(struct mlx5_eswitch *esw,
1229178f69b4SEli Cohen 				       struct mlx5e_tc_flow *flow)
12305dbe906fSPaul Blakey {
1231c620b772SAriel Levkovich 	struct mlx5_flow_attr *slow_attr;
1232178f69b4SEli Cohen 
1233c620b772SAriel Levkovich 	slow_attr = mlx5_alloc_flow_attr(MLX5_FLOW_NAMESPACE_FDB);
12345efbe617SAriel Levkovich 	if (!slow_attr) {
12355efbe617SAriel Levkovich 		mlx5_core_warn(flow->priv->mdev, "Unable to alloc attr to unoffload slow path rule\n");
12365efbe617SAriel Levkovich 		return;
12375efbe617SAriel Levkovich 	}
1238c620b772SAriel Levkovich 
1239c620b772SAriel Levkovich 	memcpy(slow_attr, flow->attr, ESW_FLOW_ATTR_SZ);
1240c620b772SAriel Levkovich 	slow_attr->action = MLX5_FLOW_CONTEXT_ACTION_FWD_DEST;
1241c620b772SAriel Levkovich 	slow_attr->esw_attr->split_count = 0;
1242c620b772SAriel Levkovich 	slow_attr->flags |= MLX5_ESW_ATTR_FLAG_SLOW_PATH;
1243c620b772SAriel Levkovich 	mlx5e_tc_unoffload_fdb_rules(esw, flow, slow_attr);
1244226f2ca3SVlad Buslov 	flow_flag_clear(flow, SLOW);
1245c620b772SAriel Levkovich 	kfree(slow_attr);
12465dbe906fSPaul Blakey }
12475dbe906fSPaul Blakey 
1248ad86755bSVlad Buslov /* Caller must obtain uplink_priv->unready_flows_lock mutex before calling this
1249ad86755bSVlad Buslov  * function.
1250ad86755bSVlad Buslov  */
1251ad86755bSVlad Buslov static void unready_flow_add(struct mlx5e_tc_flow *flow,
1252ad86755bSVlad Buslov 			     struct list_head *unready_flows)
1253ad86755bSVlad Buslov {
1254ad86755bSVlad Buslov 	flow_flag_set(flow, NOT_READY);
1255ad86755bSVlad Buslov 	list_add_tail(&flow->unready, unready_flows);
1256ad86755bSVlad Buslov }
1257ad86755bSVlad Buslov 
1258ad86755bSVlad Buslov /* Caller must obtain uplink_priv->unready_flows_lock mutex before calling this
1259ad86755bSVlad Buslov  * function.
1260ad86755bSVlad Buslov  */
1261ad86755bSVlad Buslov static void unready_flow_del(struct mlx5e_tc_flow *flow)
1262ad86755bSVlad Buslov {
1263ad86755bSVlad Buslov 	list_del(&flow->unready);
1264ad86755bSVlad Buslov 	flow_flag_clear(flow, NOT_READY);
1265ad86755bSVlad Buslov }
1266ad86755bSVlad Buslov 
1267b4a23329SRoi Dayan static void add_unready_flow(struct mlx5e_tc_flow *flow)
1268b4a23329SRoi Dayan {
1269b4a23329SRoi Dayan 	struct mlx5_rep_uplink_priv *uplink_priv;
1270b4a23329SRoi Dayan 	struct mlx5e_rep_priv *rpriv;
1271b4a23329SRoi Dayan 	struct mlx5_eswitch *esw;
1272b4a23329SRoi Dayan 
1273b4a23329SRoi Dayan 	esw = flow->priv->mdev->priv.eswitch;
1274b4a23329SRoi Dayan 	rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
1275b4a23329SRoi Dayan 	uplink_priv = &rpriv->uplink_priv;
1276b4a23329SRoi Dayan 
1277ad86755bSVlad Buslov 	mutex_lock(&uplink_priv->unready_flows_lock);
1278ad86755bSVlad Buslov 	unready_flow_add(flow, &uplink_priv->unready_flows);
1279ad86755bSVlad Buslov 	mutex_unlock(&uplink_priv->unready_flows_lock);
1280b4a23329SRoi Dayan }
1281b4a23329SRoi Dayan 
1282b4a23329SRoi Dayan static void remove_unready_flow(struct mlx5e_tc_flow *flow)
1283b4a23329SRoi Dayan {
1284ad86755bSVlad Buslov 	struct mlx5_rep_uplink_priv *uplink_priv;
1285ad86755bSVlad Buslov 	struct mlx5e_rep_priv *rpriv;
1286ad86755bSVlad Buslov 	struct mlx5_eswitch *esw;
1287ad86755bSVlad Buslov 
1288ad86755bSVlad Buslov 	esw = flow->priv->mdev->priv.eswitch;
1289ad86755bSVlad Buslov 	rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
1290ad86755bSVlad Buslov 	uplink_priv = &rpriv->uplink_priv;
1291ad86755bSVlad Buslov 
1292ad86755bSVlad Buslov 	mutex_lock(&uplink_priv->unready_flows_lock);
1293ad86755bSVlad Buslov 	unready_flow_del(flow);
1294ad86755bSVlad Buslov 	mutex_unlock(&uplink_priv->unready_flows_lock);
1295b4a23329SRoi Dayan }
1296b4a23329SRoi Dayan 
1297a508728aSVlad Buslov bool mlx5e_tc_is_vf_tunnel(struct net_device *out_dev, struct net_device *route_dev)
129810742efcSVlad Buslov {
129910742efcSVlad Buslov 	struct mlx5_core_dev *out_mdev, *route_mdev;
130010742efcSVlad Buslov 	struct mlx5e_priv *out_priv, *route_priv;
130110742efcSVlad Buslov 
130210742efcSVlad Buslov 	out_priv = netdev_priv(out_dev);
130310742efcSVlad Buslov 	out_mdev = out_priv->mdev;
130410742efcSVlad Buslov 	route_priv = netdev_priv(route_dev);
130510742efcSVlad Buslov 	route_mdev = route_priv->mdev;
130610742efcSVlad Buslov 
130710742efcSVlad Buslov 	if (out_mdev->coredev_type != MLX5_COREDEV_PF ||
130810742efcSVlad Buslov 	    route_mdev->coredev_type != MLX5_COREDEV_VF)
130910742efcSVlad Buslov 		return false;
131010742efcSVlad Buslov 
1311ab3f3d5eSRoi Dayan 	return mlx5e_same_hw_devs(out_priv, route_priv);
131210742efcSVlad Buslov }
131310742efcSVlad Buslov 
1314a508728aSVlad Buslov int mlx5e_tc_query_route_vport(struct net_device *out_dev, struct net_device *route_dev, u16 *vport)
131510742efcSVlad Buslov {
131610742efcSVlad Buslov 	struct mlx5e_priv *out_priv, *route_priv;
1317f9d196bdSDmytro Linkin 	struct mlx5_devcom *devcom = NULL;
131810742efcSVlad Buslov 	struct mlx5_core_dev *route_mdev;
131910742efcSVlad Buslov 	struct mlx5_eswitch *esw;
132010742efcSVlad Buslov 	u16 vhca_id;
132110742efcSVlad Buslov 	int err;
132210742efcSVlad Buslov 
132310742efcSVlad Buslov 	out_priv = netdev_priv(out_dev);
132410742efcSVlad Buslov 	esw = out_priv->mdev->priv.eswitch;
132510742efcSVlad Buslov 	route_priv = netdev_priv(route_dev);
132610742efcSVlad Buslov 	route_mdev = route_priv->mdev;
132710742efcSVlad Buslov 
132810742efcSVlad Buslov 	vhca_id = MLX5_CAP_GEN(route_mdev, vhca_id);
1329f9d196bdSDmytro Linkin 	if (mlx5_lag_is_active(out_priv->mdev)) {
1330f9d196bdSDmytro Linkin 		/* In lag case we may get devices from different eswitch instances.
1331f9d196bdSDmytro Linkin 		 * If we failed to get vport num, it means, mostly, that we on the wrong
1332f9d196bdSDmytro Linkin 		 * eswitch.
1333f9d196bdSDmytro Linkin 		 */
133410742efcSVlad Buslov 		err = mlx5_eswitch_vhca_id_to_vport(esw, vhca_id, vport);
1335f9d196bdSDmytro Linkin 		if (err != -ENOENT)
1336f9d196bdSDmytro Linkin 			return err;
1337f9d196bdSDmytro Linkin 
1338f9d196bdSDmytro Linkin 		devcom = out_priv->mdev->priv.devcom;
1339f9d196bdSDmytro Linkin 		esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
1340f9d196bdSDmytro Linkin 		if (!esw)
1341f9d196bdSDmytro Linkin 			return -ENODEV;
1342f9d196bdSDmytro Linkin 	}
1343f9d196bdSDmytro Linkin 
1344f9d196bdSDmytro Linkin 	err = mlx5_eswitch_vhca_id_to_vport(esw, vhca_id, vport);
1345f9d196bdSDmytro Linkin 	if (devcom)
1346f9d196bdSDmytro Linkin 		mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
134710742efcSVlad Buslov 	return err;
134810742efcSVlad Buslov }
134910742efcSVlad Buslov 
1350c7b9038dSVlad Buslov int mlx5e_tc_add_flow_mod_hdr(struct mlx5e_priv *priv,
1351c7b9038dSVlad Buslov 			      struct mlx5e_tc_flow_parse_attr *parse_attr,
1352c7b9038dSVlad Buslov 			      struct mlx5e_tc_flow *flow)
1353c7b9038dSVlad Buslov {
1354c7b9038dSVlad Buslov 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts = &parse_attr->mod_hdr_acts;
1355c7b9038dSVlad Buslov 	struct mlx5_modify_hdr *mod_hdr;
1356c7b9038dSVlad Buslov 
1357c7b9038dSVlad Buslov 	mod_hdr = mlx5_modify_header_alloc(priv->mdev,
1358e36db1eeSRoi Dayan 					   mlx5e_get_flow_namespace(flow),
1359c7b9038dSVlad Buslov 					   mod_hdr_acts->num_actions,
1360c7b9038dSVlad Buslov 					   mod_hdr_acts->actions);
1361c7b9038dSVlad Buslov 	if (IS_ERR(mod_hdr))
1362c7b9038dSVlad Buslov 		return PTR_ERR(mod_hdr);
1363c7b9038dSVlad Buslov 
1364c7b9038dSVlad Buslov 	WARN_ON(flow->attr->modify_hdr);
1365c7b9038dSVlad Buslov 	flow->attr->modify_hdr = mod_hdr;
1366c7b9038dSVlad Buslov 
1367c7b9038dSVlad Buslov 	return 0;
1368c7b9038dSVlad Buslov }
1369c7b9038dSVlad Buslov 
1370c83954abSRabie Loulou static int
137174491de9SMark Bloch mlx5e_tc_add_fdb_flow(struct mlx5e_priv *priv,
1372e98bedf5SEli Britstein 		      struct mlx5e_tc_flow *flow,
1373e98bedf5SEli Britstein 		      struct netlink_ext_ack *extack)
1374adb4c123SOr Gerlitz {
1375adb4c123SOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
1376c620b772SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
1377c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
13788914add2SVlad Buslov 	bool vf_tun = false, encap_valid = true;
1379fe7738ebSDima Chumak 	struct net_device *encap_dev = NULL;
1380c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr;
13813c37745eSOr Gerlitz 	struct mlx5e_rep_priv *rpriv;
13823c37745eSOr Gerlitz 	struct mlx5e_priv *out_priv;
138397a8d29aSRoi Dayan 	struct mlx5_fc *counter;
138439ac237cSPaul Blakey 	u32 max_prio, max_chain;
13850ad060eeSRoi Dayan 	int err = 0;
1386f493f155SEli Britstein 	int out_index;
13878b32580dSOr Gerlitz 
1388b16eb3c8SAriel Levkovich 	parse_attr = attr->parse_attr;
1389b16eb3c8SAriel Levkovich 	esw_attr = attr->esw_attr;
1390b16eb3c8SAriel Levkovich 
139184179981SPaul Blakey 	/* We check chain range only for tc flows.
139284179981SPaul Blakey 	 * For ft flows, we checked attr->chain was originally 0 and set it to
139384179981SPaul Blakey 	 * FDB_FT_CHAIN which is outside tc range.
139484179981SPaul Blakey 	 * See mlx5e_rep_setup_ft_cb().
139584179981SPaul Blakey 	 */
1396ae430332SAriel Levkovich 	max_chain = mlx5_chains_get_chain_range(esw_chains(esw));
139784179981SPaul Blakey 	if (!mlx5e_is_ft_flow(flow) && attr->chain > max_chain) {
139861644c3dSRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
139961644c3dSRoi Dayan 				   "Requested chain is out of supported range");
14008914add2SVlad Buslov 		err = -EOPNOTSUPP;
14018914add2SVlad Buslov 		goto err_out;
1402bf07aa73SPaul Blakey 	}
1403bf07aa73SPaul Blakey 
1404ae430332SAriel Levkovich 	max_prio = mlx5_chains_get_prio_range(esw_chains(esw));
1405bf07aa73SPaul Blakey 	if (attr->prio > max_prio) {
140661644c3dSRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
140761644c3dSRoi Dayan 				   "Requested priority is out of supported range");
14088914add2SVlad Buslov 		err = -EOPNOTSUPP;
14098914add2SVlad Buslov 		goto err_out;
1410bf07aa73SPaul Blakey 	}
1411bf07aa73SPaul Blakey 
1412777bb800SVlad Buslov 	if (flow_flag_test(flow, TUN_RX)) {
1413777bb800SVlad Buslov 		err = mlx5e_attach_decap_route(priv, flow);
1414777bb800SVlad Buslov 		if (err)
14158914add2SVlad Buslov 			goto err_out;
1416b16eb3c8SAriel Levkovich 
14175b209d1aSRoi Dayan 		if (!attr->chain && esw_attr->int_port &&
14185b209d1aSRoi Dayan 		    attr->action & MLX5_FLOW_CONTEXT_ACTION_FWD_DEST) {
1419b16eb3c8SAriel Levkovich 			/* If decap route device is internal port, change the
1420b16eb3c8SAriel Levkovich 			 * source vport value in reg_c0 back to uplink just in
1421b16eb3c8SAriel Levkovich 			 * case the rule performs goto chain > 0. If we have a miss
1422b16eb3c8SAriel Levkovich 			 * on chain > 0 we want the metadata regs to hold the
1423b16eb3c8SAriel Levkovich 			 * chain id so SW will resume handling of this packet
1424b16eb3c8SAriel Levkovich 			 * from the proper chain.
1425b16eb3c8SAriel Levkovich 			 */
1426b16eb3c8SAriel Levkovich 			u32 metadata = mlx5_eswitch_get_vport_metadata_for_set(esw,
1427b16eb3c8SAriel Levkovich 									esw_attr->in_rep->vport);
1428b16eb3c8SAriel Levkovich 
1429b16eb3c8SAriel Levkovich 			err = mlx5e_tc_match_to_reg_set(priv->mdev, &parse_attr->mod_hdr_acts,
1430b16eb3c8SAriel Levkovich 							MLX5_FLOW_NAMESPACE_FDB, VPORT_TO_REG,
1431b16eb3c8SAriel Levkovich 							metadata);
1432b16eb3c8SAriel Levkovich 			if (err)
143331108d14SChristophe JAILLET 				goto err_out;
1434077cdda7SRoi Dayan 
1435077cdda7SRoi Dayan 			attr->action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
1436b16eb3c8SAriel Levkovich 		}
1437777bb800SVlad Buslov 	}
1438777bb800SVlad Buslov 
143914e6b038SEli Cohen 	if (flow_flag_test(flow, L3_TO_L2_DECAP)) {
144014e6b038SEli Cohen 		err = mlx5e_attach_decap(priv, flow, extack);
144114e6b038SEli Cohen 		if (err)
14428914add2SVlad Buslov 			goto err_out;
144314e6b038SEli Cohen 	}
144414e6b038SEli Cohen 
1445166f431eSAriel Levkovich 	if (netif_is_ovs_master(parse_attr->filter_dev)) {
1446166f431eSAriel Levkovich 		struct mlx5e_tc_int_port *int_port;
1447166f431eSAriel Levkovich 
1448166f431eSAriel Levkovich 		if (attr->chain) {
1449166f431eSAriel Levkovich 			NL_SET_ERR_MSG_MOD(extack,
1450166f431eSAriel Levkovich 					   "Internal port rule is only supported on chain 0");
145131108d14SChristophe JAILLET 			err = -EOPNOTSUPP;
145231108d14SChristophe JAILLET 			goto err_out;
1453166f431eSAriel Levkovich 		}
1454166f431eSAriel Levkovich 
1455166f431eSAriel Levkovich 		if (attr->dest_chain) {
1456166f431eSAriel Levkovich 			NL_SET_ERR_MSG_MOD(extack,
1457166f431eSAriel Levkovich 					   "Internal port rule offload doesn't support goto action");
145831108d14SChristophe JAILLET 			err = -EOPNOTSUPP;
145931108d14SChristophe JAILLET 			goto err_out;
1460166f431eSAriel Levkovich 		}
1461166f431eSAriel Levkovich 
1462166f431eSAriel Levkovich 		int_port = mlx5e_tc_int_port_get(mlx5e_get_int_port_priv(priv),
1463166f431eSAriel Levkovich 						 parse_attr->filter_dev->ifindex,
1464166f431eSAriel Levkovich 						 flow_flag_test(flow, EGRESS) ?
1465166f431eSAriel Levkovich 						 MLX5E_TC_INT_PORT_EGRESS :
1466166f431eSAriel Levkovich 						 MLX5E_TC_INT_PORT_INGRESS);
146731108d14SChristophe JAILLET 		if (IS_ERR(int_port)) {
146831108d14SChristophe JAILLET 			err = PTR_ERR(int_port);
146931108d14SChristophe JAILLET 			goto err_out;
147031108d14SChristophe JAILLET 		}
1471166f431eSAriel Levkovich 
1472166f431eSAriel Levkovich 		esw_attr->int_port = int_port;
1473166f431eSAriel Levkovich 	}
1474166f431eSAriel Levkovich 
1475f493f155SEli Britstein 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++) {
1476fe7738ebSDima Chumak 		struct net_device *out_dev;
14778c4dc42bSEli Britstein 		int mirred_ifindex;
14788c4dc42bSEli Britstein 
1479c620b772SAriel Levkovich 		if (!(esw_attr->dests[out_index].flags & MLX5_ESW_DEST_ENCAP))
1480f493f155SEli Britstein 			continue;
1481f493f155SEli Britstein 
14827040632dSTonghao Zhang 		mirred_ifindex = parse_attr->mirred_ifindex[out_index];
1483fe7738ebSDima Chumak 		out_dev = dev_get_by_index(dev_net(priv->netdev), mirred_ifindex);
1484fe7738ebSDima Chumak 		if (!out_dev) {
1485fe7738ebSDima Chumak 			NL_SET_ERR_MSG_MOD(extack, "Requested mirred device not found");
1486fe7738ebSDima Chumak 			err = -ENODEV;
1487fe7738ebSDima Chumak 			goto err_out;
1488fe7738ebSDima Chumak 		}
1489733d4f36SRoi Dayan 		err = mlx5e_attach_encap(priv, flow, out_dev, out_index,
14900ad060eeSRoi Dayan 					 extack, &encap_dev, &encap_valid);
1491fe7738ebSDima Chumak 		dev_put(out_dev);
14920ad060eeSRoi Dayan 		if (err)
14938914add2SVlad Buslov 			goto err_out;
14940ad060eeSRoi Dayan 
14958914add2SVlad Buslov 		if (esw_attr->dests[out_index].flags &
1496100ad4e2SAriel Levkovich 		    MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE &&
1497100ad4e2SAriel Levkovich 		    !esw_attr->dest_int_port)
14988914add2SVlad Buslov 			vf_tun = true;
14993c37745eSOr Gerlitz 		out_priv = netdev_priv(encap_dev);
15003c37745eSOr Gerlitz 		rpriv = out_priv->ppriv;
1501c620b772SAriel Levkovich 		esw_attr->dests[out_index].rep = rpriv->rep;
1502c620b772SAriel Levkovich 		esw_attr->dests[out_index].mdev = out_priv->mdev;
15033c37745eSOr Gerlitz 	}
15043c37745eSOr Gerlitz 
15057d1a3d08SVlad Buslov 	if (vf_tun && esw_attr->out_count > 1) {
15067d1a3d08SVlad Buslov 		NL_SET_ERR_MSG_MOD(extack, "VF tunnel encap with mirroring is not supported");
15077d1a3d08SVlad Buslov 		err = -EOPNOTSUPP;
15087d1a3d08SVlad Buslov 		goto err_out;
15097d1a3d08SVlad Buslov 	}
15107d1a3d08SVlad Buslov 
15118b32580dSOr Gerlitz 	err = mlx5_eswitch_add_vlan_action(esw, attr);
1512c83954abSRabie Loulou 	if (err)
15138914add2SVlad Buslov 		goto err_out;
1514adb4c123SOr Gerlitz 
1515d5a3c2b6SRoi Dayan 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
1516d5a3c2b6SRoi Dayan 	    !(attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR)) {
15178914add2SVlad Buslov 		if (vf_tun) {
15188914add2SVlad Buslov 			err = mlx5e_tc_add_flow_mod_hdr(priv, parse_attr, flow);
15198914add2SVlad Buslov 			if (err)
15208914add2SVlad Buslov 				goto err_out;
15218914add2SVlad Buslov 		} else {
15221a9527bbSOr Gerlitz 			err = mlx5e_attach_mod_hdr(priv, flow, parse_attr);
1523c83954abSRabie Loulou 			if (err)
15248914add2SVlad Buslov 				goto err_out;
15258914add2SVlad Buslov 		}
1526d7e75a32SOr Gerlitz 	}
1527d7e75a32SOr Gerlitz 
1528b8aee822SMark Bloch 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
1529c620b772SAriel Levkovich 		counter = mlx5_fc_create(esw_attr->counter_dev, true);
15308914add2SVlad Buslov 		if (IS_ERR(counter)) {
15318914add2SVlad Buslov 			err = PTR_ERR(counter);
15328914add2SVlad Buslov 			goto err_out;
15338914add2SVlad Buslov 		}
1534b8aee822SMark Bloch 
1535b8aee822SMark Bloch 		attr->counter = counter;
1536b8aee822SMark Bloch 	}
1537b8aee822SMark Bloch 
15380ad060eeSRoi Dayan 	/* we get here if one of the following takes place:
15390ad060eeSRoi Dayan 	 * (1) there's no error
15400ad060eeSRoi Dayan 	 * (2) there's an encap action and we don't have valid neigh
15413c37745eSOr Gerlitz 	 */
1542bc1d75faSRoi Dayan 	if (!encap_valid)
1543178f69b4SEli Cohen 		flow->rule[0] = mlx5e_tc_offload_to_slow_path(esw, flow, &parse_attr->spec);
1544bc1d75faSRoi Dayan 	else
15456d2a3ed0SOr Gerlitz 		flow->rule[0] = mlx5e_tc_offload_fdb_rules(esw, flow, &parse_attr->spec, attr);
15465dbe906fSPaul Blakey 
15478914add2SVlad Buslov 	if (IS_ERR(flow->rule[0])) {
15488914add2SVlad Buslov 		err = PTR_ERR(flow->rule[0]);
15498914add2SVlad Buslov 		goto err_out;
15508914add2SVlad Buslov 	}
1551226f2ca3SVlad Buslov 	flow_flag_set(flow, OFFLOADED);
1552c83954abSRabie Loulou 
15535dbe906fSPaul Blakey 	return 0;
15548914add2SVlad Buslov 
15558914add2SVlad Buslov err_out:
15568914add2SVlad Buslov 	flow_flag_set(flow, FAILED);
15578914add2SVlad Buslov 	return err;
1558aa0cbbaeSOr Gerlitz }
1559d85cdccbSOr Gerlitz 
15609272e3dfSYevgeny Kliteynik static bool mlx5_flow_has_geneve_opt(struct mlx5e_tc_flow *flow)
15619272e3dfSYevgeny Kliteynik {
1562c620b772SAriel Levkovich 	struct mlx5_flow_spec *spec = &flow->attr->parse_attr->spec;
15639272e3dfSYevgeny Kliteynik 	void *headers_v = MLX5_ADDR_OF(fte_match_param,
15649272e3dfSYevgeny Kliteynik 				       spec->match_value,
15659272e3dfSYevgeny Kliteynik 				       misc_parameters_3);
15669272e3dfSYevgeny Kliteynik 	u32 geneve_tlv_opt_0_data = MLX5_GET(fte_match_set_misc3,
15679272e3dfSYevgeny Kliteynik 					     headers_v,
15689272e3dfSYevgeny Kliteynik 					     geneve_tlv_option_0_data);
15699272e3dfSYevgeny Kliteynik 
15709272e3dfSYevgeny Kliteynik 	return !!geneve_tlv_opt_0_data;
15719272e3dfSYevgeny Kliteynik }
15729272e3dfSYevgeny Kliteynik 
1573d85cdccbSOr Gerlitz static void mlx5e_tc_del_fdb_flow(struct mlx5e_priv *priv,
1574d85cdccbSOr Gerlitz 				  struct mlx5e_tc_flow *flow)
1575d85cdccbSOr Gerlitz {
1576d85cdccbSOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
1577c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
1578777bb800SVlad Buslov 	struct mlx5_esw_flow_attr *esw_attr;
15798914add2SVlad Buslov 	bool vf_tun = false;
1580f493f155SEli Britstein 	int out_index;
1581d85cdccbSOr Gerlitz 
1582777bb800SVlad Buslov 	esw_attr = attr->esw_attr;
15830a7fcb78SPaul Blakey 	mlx5e_put_flow_tunnel_id(flow);
15840a7fcb78SPaul Blakey 
158512a240a4SJianbo Liu 	if (flow_flag_test(flow, NOT_READY))
1586b4a23329SRoi Dayan 		remove_unready_flow(flow);
1587ef06c9eeSRoi Dayan 
1588226f2ca3SVlad Buslov 	if (mlx5e_is_offloaded_flow(flow)) {
1589226f2ca3SVlad Buslov 		if (flow_flag_test(flow, SLOW))
1590178f69b4SEli Cohen 			mlx5e_tc_unoffload_from_slow_path(esw, flow);
15915dbe906fSPaul Blakey 		else
15925dbe906fSPaul Blakey 			mlx5e_tc_unoffload_fdb_rules(esw, flow, attr);
15935dbe906fSPaul Blakey 	}
1594362980eaSVlad Buslov 	complete_all(&flow->del_hw_done);
1595d85cdccbSOr Gerlitz 
15969272e3dfSYevgeny Kliteynik 	if (mlx5_flow_has_geneve_opt(flow))
15979272e3dfSYevgeny Kliteynik 		mlx5_geneve_tlv_option_del(priv->mdev->geneve);
15989272e3dfSYevgeny Kliteynik 
1599513f8f7fSOr Gerlitz 	mlx5_eswitch_del_vlan_action(esw, attr);
1600d85cdccbSOr Gerlitz 
1601777bb800SVlad Buslov 	if (flow->decap_route)
1602777bb800SVlad Buslov 		mlx5e_detach_decap_route(priv, flow);
1603777bb800SVlad Buslov 
1604777bb800SVlad Buslov 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++) {
16058914add2SVlad Buslov 		if (esw_attr->dests[out_index].flags &
1606100ad4e2SAriel Levkovich 		    MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE &&
1607100ad4e2SAriel Levkovich 		    !esw_attr->dest_int_port)
16088914add2SVlad Buslov 			vf_tun = true;
1609777bb800SVlad Buslov 		if (esw_attr->dests[out_index].flags & MLX5_ESW_DEST_ENCAP) {
16108c4dc42bSEli Britstein 			mlx5e_detach_encap(priv, flow, out_index);
16112a4b6526SVlad Buslov 			kfree(attr->parse_attr->tun_info[out_index]);
16122a4b6526SVlad Buslov 		}
1613777bb800SVlad Buslov 	}
1614d7e75a32SOr Gerlitz 
1615aedd133dSAriel Levkovich 	mlx5_tc_ct_match_del(get_ct_priv(priv), &flow->attr->ct_attr);
16164c8594adSRoi Dayan 
1617c7b9038dSVlad Buslov 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR) {
16182c0e5cf5SPaul Blakey 		mlx5e_mod_hdr_dealloc(&attr->parse_attr->mod_hdr_acts);
16198914add2SVlad Buslov 		if (vf_tun && attr->modify_hdr)
16208914add2SVlad Buslov 			mlx5_modify_header_dealloc(priv->mdev, attr->modify_hdr);
16218914add2SVlad Buslov 		else
16221a9527bbSOr Gerlitz 			mlx5e_detach_mod_hdr(priv, flow);
1623c7b9038dSVlad Buslov 	}
1624b8aee822SMark Bloch 
1625b8aee822SMark Bloch 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT)
1626777bb800SVlad Buslov 		mlx5_fc_destroy(esw_attr->counter_dev, attr->counter);
162714e6b038SEli Cohen 
1628166f431eSAriel Levkovich 	if (esw_attr->int_port)
1629166f431eSAriel Levkovich 		mlx5e_tc_int_port_put(mlx5e_get_int_port_priv(priv), esw_attr->int_port);
1630166f431eSAriel Levkovich 
163127484f71SAriel Levkovich 	if (esw_attr->dest_int_port)
163227484f71SAriel Levkovich 		mlx5e_tc_int_port_put(mlx5e_get_int_port_priv(priv), esw_attr->dest_int_port);
163327484f71SAriel Levkovich 
163414e6b038SEli Cohen 	if (flow_flag_test(flow, L3_TO_L2_DECAP))
163514e6b038SEli Cohen 		mlx5e_detach_decap(priv, flow);
1636c620b772SAriel Levkovich 
163788d97486SRoi Dayan 	kfree(attr->sample_attr);
163888d97486SRoi Dayan 	kvfree(attr->esw_attr->rx_tun_attr);
163988d97486SRoi Dayan 	kvfree(attr->parse_attr);
1640c620b772SAriel Levkovich 	kfree(flow->attr);
1641d85cdccbSOr Gerlitz }
1642d85cdccbSOr Gerlitz 
16430d9f9647SVlad Buslov struct mlx5_fc *mlx5e_tc_get_counter(struct mlx5e_tc_flow *flow)
1644b8aee822SMark Bloch {
1645c620b772SAriel Levkovich 	return flow->attr->counter;
1646b8aee822SMark Bloch }
1647b8aee822SMark Bloch 
16486a06c2f7SVlad Buslov /* Iterate over tmp_list of flows attached to flow_list head. */
1649021905f8SVlad Buslov void mlx5e_put_flow_list(struct mlx5e_priv *priv, struct list_head *flow_list)
16506a06c2f7SVlad Buslov {
16516a06c2f7SVlad Buslov 	struct mlx5e_tc_flow *flow, *tmp;
16526a06c2f7SVlad Buslov 
16536a06c2f7SVlad Buslov 	list_for_each_entry_safe(flow, tmp, flow_list, tmp_list)
16546a06c2f7SVlad Buslov 		mlx5e_flow_put(priv, flow);
16556a06c2f7SVlad Buslov }
16566a06c2f7SVlad Buslov 
165704de7ddaSRoi Dayan static void __mlx5e_tc_del_fdb_peer_flow(struct mlx5e_tc_flow *flow)
165804de7ddaSRoi Dayan {
165904de7ddaSRoi Dayan 	struct mlx5_eswitch *esw = flow->priv->mdev->priv.eswitch;
166004de7ddaSRoi Dayan 
1661226f2ca3SVlad Buslov 	if (!flow_flag_test(flow, ESWITCH) ||
1662226f2ca3SVlad Buslov 	    !flow_flag_test(flow, DUP))
166304de7ddaSRoi Dayan 		return;
166404de7ddaSRoi Dayan 
166504de7ddaSRoi Dayan 	mutex_lock(&esw->offloads.peer_mutex);
166604de7ddaSRoi Dayan 	list_del(&flow->peer);
166704de7ddaSRoi Dayan 	mutex_unlock(&esw->offloads.peer_mutex);
166804de7ddaSRoi Dayan 
1669226f2ca3SVlad Buslov 	flow_flag_clear(flow, DUP);
167004de7ddaSRoi Dayan 
1671eb252c3aSRoi Dayan 	if (refcount_dec_and_test(&flow->peer_flow->refcnt)) {
167204de7ddaSRoi Dayan 		mlx5e_tc_del_fdb_flow(flow->peer_flow->priv, flow->peer_flow);
1673a23dae79SRoi Dayan 		kfree(flow->peer_flow);
1674eb252c3aSRoi Dayan 	}
1675eb252c3aSRoi Dayan 
167604de7ddaSRoi Dayan 	flow->peer_flow = NULL;
167704de7ddaSRoi Dayan }
167804de7ddaSRoi Dayan 
167904de7ddaSRoi Dayan static void mlx5e_tc_del_fdb_peer_flow(struct mlx5e_tc_flow *flow)
168004de7ddaSRoi Dayan {
168104de7ddaSRoi Dayan 	struct mlx5_core_dev *dev = flow->priv->mdev;
168204de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = dev->priv.devcom;
168304de7ddaSRoi Dayan 	struct mlx5_eswitch *peer_esw;
168404de7ddaSRoi Dayan 
168504de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
168604de7ddaSRoi Dayan 	if (!peer_esw)
168704de7ddaSRoi Dayan 		return;
168804de7ddaSRoi Dayan 
168904de7ddaSRoi Dayan 	__mlx5e_tc_del_fdb_peer_flow(flow);
169004de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
169104de7ddaSRoi Dayan }
169204de7ddaSRoi Dayan 
1693e8f887acSAmir Vadai static void mlx5e_tc_del_flow(struct mlx5e_priv *priv,
1694961e8979SRoi Dayan 			      struct mlx5e_tc_flow *flow)
1695e8f887acSAmir Vadai {
1696226f2ca3SVlad Buslov 	if (mlx5e_is_eswitch_flow(flow)) {
169704de7ddaSRoi Dayan 		mlx5e_tc_del_fdb_peer_flow(flow);
1698d85cdccbSOr Gerlitz 		mlx5e_tc_del_fdb_flow(priv, flow);
169904de7ddaSRoi Dayan 	} else {
1700d85cdccbSOr Gerlitz 		mlx5e_tc_del_nic_flow(priv, flow);
1701e8f887acSAmir Vadai 	}
170204de7ddaSRoi Dayan }
1703e8f887acSAmir Vadai 
1704ee950e5dSChris Mi static bool flow_requires_tunnel_mapping(u32 chain, struct flow_cls_offload *f)
1705bbd00f7eSHadar Hen Zion {
1706f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
17070a7fcb78SPaul Blakey 	struct flow_action *flow_action = &rule->action;
17080a7fcb78SPaul Blakey 	const struct flow_action_entry *act;
17090a7fcb78SPaul Blakey 	int i;
1710bbd00f7eSHadar Hen Zion 
1711ee950e5dSChris Mi 	if (chain)
1712ee950e5dSChris Mi 		return false;
1713ee950e5dSChris Mi 
17140a7fcb78SPaul Blakey 	flow_action_for_each(i, act, flow_action) {
17150a7fcb78SPaul Blakey 		switch (act->id) {
17160a7fcb78SPaul Blakey 		case FLOW_ACTION_GOTO:
17170a7fcb78SPaul Blakey 			return true;
1718ee950e5dSChris Mi 		case FLOW_ACTION_SAMPLE:
1719ee950e5dSChris Mi 			return true;
17200a7fcb78SPaul Blakey 		default:
17210a7fcb78SPaul Blakey 			continue;
1722fe1587a7SDmytro Linkin 		}
17232e72eb43SOr Gerlitz 	}
1724bbd00f7eSHadar Hen Zion 
17250a7fcb78SPaul Blakey 	return false;
17260a7fcb78SPaul Blakey }
1727bcef735cSOr Gerlitz 
17280a7fcb78SPaul Blakey static int
17290a7fcb78SPaul Blakey enc_opts_is_dont_care_or_full_match(struct mlx5e_priv *priv,
17300a7fcb78SPaul Blakey 				    struct flow_dissector_key_enc_opts *opts,
17310a7fcb78SPaul Blakey 				    struct netlink_ext_ack *extack,
17320a7fcb78SPaul Blakey 				    bool *dont_care)
17330a7fcb78SPaul Blakey {
17340a7fcb78SPaul Blakey 	struct geneve_opt *opt;
17350a7fcb78SPaul Blakey 	int off = 0;
1736bcef735cSOr Gerlitz 
17370a7fcb78SPaul Blakey 	*dont_care = true;
1738bcef735cSOr Gerlitz 
17390a7fcb78SPaul Blakey 	while (opts->len > off) {
17400a7fcb78SPaul Blakey 		opt = (struct geneve_opt *)&opts->data[off];
1741e98bedf5SEli Britstein 
17420a7fcb78SPaul Blakey 		if (!(*dont_care) || opt->opt_class || opt->type ||
17430a7fcb78SPaul Blakey 		    memchr_inv(opt->opt_data, 0, opt->length * 4)) {
17440a7fcb78SPaul Blakey 			*dont_care = false;
17450a7fcb78SPaul Blakey 
1746c51323eeSSaeed Mahameed 			if (opt->opt_class != htons(U16_MAX) ||
1747d7a42ad0SRoi Dayan 			    opt->type != U8_MAX) {
1748c50775d0SRoi Dayan 				NL_SET_ERR_MSG_MOD(extack,
17490a7fcb78SPaul Blakey 						   "Partial match of tunnel options in chain > 0 isn't supported");
17500a7fcb78SPaul Blakey 				netdev_warn(priv->netdev,
17510a7fcb78SPaul Blakey 					    "Partial match of tunnel options in chain > 0 isn't supported");
1752e98bedf5SEli Britstein 				return -EOPNOTSUPP;
1753e98bedf5SEli Britstein 			}
1754bcef735cSOr Gerlitz 		}
1755bcef735cSOr Gerlitz 
17560a7fcb78SPaul Blakey 		off += sizeof(struct geneve_opt) + opt->length * 4;
1757bbd00f7eSHadar Hen Zion 	}
1758bbd00f7eSHadar Hen Zion 
1759bbd00f7eSHadar Hen Zion 	return 0;
1760bbd00f7eSHadar Hen Zion }
1761bbd00f7eSHadar Hen Zion 
17620a7fcb78SPaul Blakey #define COPY_DISSECTOR(rule, diss_key, dst)\
17630a7fcb78SPaul Blakey ({ \
17640a7fcb78SPaul Blakey 	struct flow_rule *__rule = (rule);\
17650a7fcb78SPaul Blakey 	typeof(dst) __dst = dst;\
17660a7fcb78SPaul Blakey \
17670a7fcb78SPaul Blakey 	memcpy(__dst,\
17680a7fcb78SPaul Blakey 	       skb_flow_dissector_target(__rule->match.dissector,\
17690a7fcb78SPaul Blakey 					 diss_key,\
17700a7fcb78SPaul Blakey 					 __rule->match.key),\
17710a7fcb78SPaul Blakey 	       sizeof(*__dst));\
17720a7fcb78SPaul Blakey })
17730a7fcb78SPaul Blakey 
17740a7fcb78SPaul Blakey static int mlx5e_get_flow_tunnel_id(struct mlx5e_priv *priv,
17750a7fcb78SPaul Blakey 				    struct mlx5e_tc_flow *flow,
17760a7fcb78SPaul Blakey 				    struct flow_cls_offload *f,
17770a7fcb78SPaul Blakey 				    struct net_device *filter_dev)
17788377629eSEli Britstein {
17790a7fcb78SPaul Blakey 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
17800a7fcb78SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
17810a7fcb78SPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts;
17820a7fcb78SPaul Blakey 	struct flow_match_enc_opts enc_opts_match;
1783d7a42ad0SRoi Dayan 	struct tunnel_match_enc_opts tun_enc_opts;
17840a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
1785c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
17860a7fcb78SPaul Blakey 	struct mlx5e_rep_priv *uplink_rpriv;
17870a7fcb78SPaul Blakey 	struct tunnel_match_key tunnel_key;
17880a7fcb78SPaul Blakey 	bool enc_opts_is_dont_care = true;
17890a7fcb78SPaul Blakey 	u32 tun_id, enc_opts_id = 0;
17900a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw;
17910a7fcb78SPaul Blakey 	u32 value, mask;
17920a7fcb78SPaul Blakey 	int err;
17930a7fcb78SPaul Blakey 
17940a7fcb78SPaul Blakey 	esw = priv->mdev->priv.eswitch;
17950a7fcb78SPaul Blakey 	uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
17960a7fcb78SPaul Blakey 	uplink_priv = &uplink_rpriv->uplink_priv;
17970a7fcb78SPaul Blakey 
17980a7fcb78SPaul Blakey 	memset(&tunnel_key, 0, sizeof(tunnel_key));
17990a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_CONTROL,
18000a7fcb78SPaul Blakey 		       &tunnel_key.enc_control);
18010a7fcb78SPaul Blakey 	if (tunnel_key.enc_control.addr_type == FLOW_DISSECTOR_KEY_IPV4_ADDRS)
18020a7fcb78SPaul Blakey 		COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IPV4_ADDRS,
18030a7fcb78SPaul Blakey 			       &tunnel_key.enc_ipv4);
18040a7fcb78SPaul Blakey 	else
18050a7fcb78SPaul Blakey 		COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IPV6_ADDRS,
18060a7fcb78SPaul Blakey 			       &tunnel_key.enc_ipv6);
18070a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IP, &tunnel_key.enc_ip);
18080a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_PORTS,
18090a7fcb78SPaul Blakey 		       &tunnel_key.enc_tp);
18100a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_KEYID,
18110a7fcb78SPaul Blakey 		       &tunnel_key.enc_key_id);
18120a7fcb78SPaul Blakey 	tunnel_key.filter_ifindex = filter_dev->ifindex;
18130a7fcb78SPaul Blakey 
18140a7fcb78SPaul Blakey 	err = mapping_add(uplink_priv->tunnel_mapping, &tunnel_key, &tun_id);
18150a7fcb78SPaul Blakey 	if (err)
18160a7fcb78SPaul Blakey 		return err;
18170a7fcb78SPaul Blakey 
18180a7fcb78SPaul Blakey 	flow_rule_match_enc_opts(rule, &enc_opts_match);
18190a7fcb78SPaul Blakey 	err = enc_opts_is_dont_care_or_full_match(priv,
18200a7fcb78SPaul Blakey 						  enc_opts_match.mask,
18210a7fcb78SPaul Blakey 						  extack,
18220a7fcb78SPaul Blakey 						  &enc_opts_is_dont_care);
18230a7fcb78SPaul Blakey 	if (err)
18240a7fcb78SPaul Blakey 		goto err_enc_opts;
18250a7fcb78SPaul Blakey 
18260a7fcb78SPaul Blakey 	if (!enc_opts_is_dont_care) {
1827d7a42ad0SRoi Dayan 		memset(&tun_enc_opts, 0, sizeof(tun_enc_opts));
1828d7a42ad0SRoi Dayan 		memcpy(&tun_enc_opts.key, enc_opts_match.key,
1829d7a42ad0SRoi Dayan 		       sizeof(*enc_opts_match.key));
1830d7a42ad0SRoi Dayan 		memcpy(&tun_enc_opts.mask, enc_opts_match.mask,
1831d7a42ad0SRoi Dayan 		       sizeof(*enc_opts_match.mask));
1832d7a42ad0SRoi Dayan 
18330a7fcb78SPaul Blakey 		err = mapping_add(uplink_priv->tunnel_enc_opts_mapping,
1834d7a42ad0SRoi Dayan 				  &tun_enc_opts, &enc_opts_id);
18350a7fcb78SPaul Blakey 		if (err)
18360a7fcb78SPaul Blakey 			goto err_enc_opts;
18370a7fcb78SPaul Blakey 	}
18380a7fcb78SPaul Blakey 
18390a7fcb78SPaul Blakey 	value = tun_id << ENC_OPTS_BITS | enc_opts_id;
18400a7fcb78SPaul Blakey 	mask = enc_opts_id ? TUNNEL_ID_MASK :
18410a7fcb78SPaul Blakey 			     (TUNNEL_ID_MASK & ~ENC_OPTS_BITS_MASK);
18420a7fcb78SPaul Blakey 
18430a7fcb78SPaul Blakey 	if (attr->chain) {
18440a7fcb78SPaul Blakey 		mlx5e_tc_match_to_reg_match(&attr->parse_attr->spec,
18450a7fcb78SPaul Blakey 					    TUNNEL_TO_REG, value, mask);
18460a7fcb78SPaul Blakey 	} else {
18470a7fcb78SPaul Blakey 		mod_hdr_acts = &attr->parse_attr->mod_hdr_acts;
18480a7fcb78SPaul Blakey 		err = mlx5e_tc_match_to_reg_set(priv->mdev,
1849aedd133dSAriel Levkovich 						mod_hdr_acts, MLX5_FLOW_NAMESPACE_FDB,
18500a7fcb78SPaul Blakey 						TUNNEL_TO_REG, value);
18510a7fcb78SPaul Blakey 		if (err)
18520a7fcb78SPaul Blakey 			goto err_set;
18530a7fcb78SPaul Blakey 
18540a7fcb78SPaul Blakey 		attr->action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
18550a7fcb78SPaul Blakey 	}
18560a7fcb78SPaul Blakey 
18570a7fcb78SPaul Blakey 	flow->tunnel_id = value;
18580a7fcb78SPaul Blakey 	return 0;
18590a7fcb78SPaul Blakey 
18600a7fcb78SPaul Blakey err_set:
18610a7fcb78SPaul Blakey 	if (enc_opts_id)
18620a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_enc_opts_mapping,
18630a7fcb78SPaul Blakey 			       enc_opts_id);
18640a7fcb78SPaul Blakey err_enc_opts:
18650a7fcb78SPaul Blakey 	mapping_remove(uplink_priv->tunnel_mapping, tun_id);
18660a7fcb78SPaul Blakey 	return err;
18670a7fcb78SPaul Blakey }
18680a7fcb78SPaul Blakey 
18690a7fcb78SPaul Blakey static void mlx5e_put_flow_tunnel_id(struct mlx5e_tc_flow *flow)
18700a7fcb78SPaul Blakey {
18710a7fcb78SPaul Blakey 	u32 enc_opts_id = flow->tunnel_id & ENC_OPTS_BITS_MASK;
18720a7fcb78SPaul Blakey 	u32 tun_id = flow->tunnel_id >> ENC_OPTS_BITS;
18730a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
18740a7fcb78SPaul Blakey 	struct mlx5e_rep_priv *uplink_rpriv;
18750a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw;
18760a7fcb78SPaul Blakey 
18770a7fcb78SPaul Blakey 	esw = flow->priv->mdev->priv.eswitch;
18780a7fcb78SPaul Blakey 	uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
18790a7fcb78SPaul Blakey 	uplink_priv = &uplink_rpriv->uplink_priv;
18800a7fcb78SPaul Blakey 
18810a7fcb78SPaul Blakey 	if (tun_id)
18820a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_mapping, tun_id);
18830a7fcb78SPaul Blakey 	if (enc_opts_id)
18840a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_enc_opts_mapping,
18850a7fcb78SPaul Blakey 			       enc_opts_id);
18860a7fcb78SPaul Blakey }
18870a7fcb78SPaul Blakey 
18884c3844d9SPaul Blakey u32 mlx5e_tc_get_flow_tun_id(struct mlx5e_tc_flow *flow)
18894c3844d9SPaul Blakey {
18904c3844d9SPaul Blakey 	return flow->tunnel_id;
18914c3844d9SPaul Blakey }
18924c3844d9SPaul Blakey 
1893fca53304SEli Britstein void mlx5e_tc_set_ethertype(struct mlx5_core_dev *mdev,
1894fca53304SEli Britstein 			    struct flow_match_basic *match, bool outer,
1895fca53304SEli Britstein 			    void *headers_c, void *headers_v)
18964a5d5d73SEli Britstein {
1897fca53304SEli Britstein 	bool ip_version_cap;
1898fca53304SEli Britstein 
1899fca53304SEli Britstein 	ip_version_cap = outer ?
1900fca53304SEli Britstein 		MLX5_CAP_FLOWTABLE_NIC_RX(mdev,
1901fca53304SEli Britstein 					  ft_field_support.outer_ip_version) :
1902fca53304SEli Britstein 		MLX5_CAP_FLOWTABLE_NIC_RX(mdev,
1903fca53304SEli Britstein 					  ft_field_support.inner_ip_version);
1904fca53304SEli Britstein 
1905fca53304SEli Britstein 	if (ip_version_cap && match->mask->n_proto == htons(0xFFFF) &&
1906fca53304SEli Britstein 	    (match->key->n_proto == htons(ETH_P_IP) ||
1907fca53304SEli Britstein 	     match->key->n_proto == htons(ETH_P_IPV6))) {
1908fca53304SEli Britstein 		MLX5_SET_TO_ONES(fte_match_set_lyr_2_4, headers_c, ip_version);
1909fca53304SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_version,
1910fca53304SEli Britstein 			 match->key->n_proto == htons(ETH_P_IP) ? 4 : 6);
1911fca53304SEli Britstein 	} else {
19124a5d5d73SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ethertype,
19134a5d5d73SEli Britstein 			 ntohs(match->mask->n_proto));
19144a5d5d73SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ethertype,
19154a5d5d73SEli Britstein 			 ntohs(match->key->n_proto));
19164a5d5d73SEli Britstein 	}
1917fca53304SEli Britstein }
19184a5d5d73SEli Britstein 
19190d9f9647SVlad Buslov u8 mlx5e_tc_get_ip_version(struct mlx5_flow_spec *spec, bool outer)
1920a508728aSVlad Buslov {
1921a508728aSVlad Buslov 	void *headers_v;
1922a508728aSVlad Buslov 	u16 ethertype;
1923a508728aSVlad Buslov 	u8 ip_version;
1924a508728aSVlad Buslov 
1925a508728aSVlad Buslov 	if (outer)
1926a508728aSVlad Buslov 		headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, outer_headers);
1927a508728aSVlad Buslov 	else
1928a508728aSVlad Buslov 		headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, inner_headers);
1929a508728aSVlad Buslov 
1930a508728aSVlad Buslov 	ip_version = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ip_version);
1931a508728aSVlad Buslov 	/* Return ip_version converted from ethertype anyway */
1932a508728aSVlad Buslov 	if (!ip_version) {
1933a508728aSVlad Buslov 		ethertype = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ethertype);
1934a508728aSVlad Buslov 		if (ethertype == ETH_P_IP || ethertype == ETH_P_ARP)
1935a508728aSVlad Buslov 			ip_version = 4;
1936a508728aSVlad Buslov 		else if (ethertype == ETH_P_IPV6)
1937a508728aSVlad Buslov 			ip_version = 6;
1938a508728aSVlad Buslov 	}
1939a508728aSVlad Buslov 	return ip_version;
1940a508728aSVlad Buslov }
1941a508728aSVlad Buslov 
1942b6dfff21SPaul Blakey /* Tunnel device follows RFC 6040, see include/net/inet_ecn.h.
1943b6dfff21SPaul Blakey  * And changes inner ip_ecn depending on inner and outer ip_ecn as follows:
1944b6dfff21SPaul Blakey  *      +---------+----------------------------------------+
1945b6dfff21SPaul Blakey  *      |Arriving |         Arriving Outer Header          |
1946b6dfff21SPaul Blakey  *      |   Inner +---------+---------+---------+----------+
1947b6dfff21SPaul Blakey  *      |  Header | Not-ECT | ECT(0)  | ECT(1)  |   CE     |
1948b6dfff21SPaul Blakey  *      +---------+---------+---------+---------+----------+
1949b6dfff21SPaul Blakey  *      | Not-ECT | Not-ECT | Not-ECT | Not-ECT | <drop>   |
1950b6dfff21SPaul Blakey  *      |  ECT(0) |  ECT(0) | ECT(0)  | ECT(1)  |   CE*    |
1951b6dfff21SPaul Blakey  *      |  ECT(1) |  ECT(1) | ECT(1)  | ECT(1)* |   CE*    |
1952b6dfff21SPaul Blakey  *      |    CE   |   CE    |  CE     | CE      |   CE     |
1953b6dfff21SPaul Blakey  *      +---------+---------+---------+---------+----------+
1954b6dfff21SPaul Blakey  *
1955b6dfff21SPaul Blakey  * Tc matches on inner after decapsulation on tunnel device, but hw offload matches
1956b6dfff21SPaul Blakey  * the inner ip_ecn value before hardware decap action.
1957b6dfff21SPaul Blakey  *
1958b6dfff21SPaul Blakey  * Cells marked are changed from original inner packet ip_ecn value during decap, and
1959b6dfff21SPaul Blakey  * so matching those values on inner ip_ecn before decap will fail.
1960b6dfff21SPaul Blakey  *
1961b6dfff21SPaul Blakey  * The following helper allows offload when inner ip_ecn won't be changed by outer ip_ecn,
1962b6dfff21SPaul Blakey  * except for the outer ip_ecn = CE, where in all cases inner ip_ecn will be changed to CE,
1963b6dfff21SPaul Blakey  * and such we can drop the inner ip_ecn=CE match.
1964b6dfff21SPaul Blakey  */
1965b6dfff21SPaul Blakey 
1966b6dfff21SPaul Blakey static int mlx5e_tc_verify_tunnel_ecn(struct mlx5e_priv *priv,
1967b6dfff21SPaul Blakey 				      struct flow_cls_offload *f,
1968b6dfff21SPaul Blakey 				      bool *match_inner_ecn)
1969b6dfff21SPaul Blakey {
1970b6dfff21SPaul Blakey 	u8 outer_ecn_mask = 0, outer_ecn_key = 0, inner_ecn_mask = 0, inner_ecn_key = 0;
1971b6dfff21SPaul Blakey 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
1972b6dfff21SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
1973b6dfff21SPaul Blakey 	struct flow_match_ip match;
1974b6dfff21SPaul Blakey 
1975b6dfff21SPaul Blakey 	*match_inner_ecn = true;
1976b6dfff21SPaul Blakey 
1977b6dfff21SPaul Blakey 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ENC_IP)) {
1978b6dfff21SPaul Blakey 		flow_rule_match_enc_ip(rule, &match);
1979b6dfff21SPaul Blakey 		outer_ecn_key = match.key->tos & INET_ECN_MASK;
1980b6dfff21SPaul Blakey 		outer_ecn_mask = match.mask->tos & INET_ECN_MASK;
1981b6dfff21SPaul Blakey 	}
1982b6dfff21SPaul Blakey 
1983b6dfff21SPaul Blakey 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_IP)) {
1984b6dfff21SPaul Blakey 		flow_rule_match_ip(rule, &match);
1985b6dfff21SPaul Blakey 		inner_ecn_key = match.key->tos & INET_ECN_MASK;
1986b6dfff21SPaul Blakey 		inner_ecn_mask = match.mask->tos & INET_ECN_MASK;
1987b6dfff21SPaul Blakey 	}
1988b6dfff21SPaul Blakey 
1989b6dfff21SPaul Blakey 	if (outer_ecn_mask != 0 && outer_ecn_mask != INET_ECN_MASK) {
1990b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack, "Partial match on enc_tos ecn bits isn't supported");
1991b6dfff21SPaul Blakey 		netdev_warn(priv->netdev, "Partial match on enc_tos ecn bits isn't supported");
1992b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
1993b6dfff21SPaul Blakey 	}
1994b6dfff21SPaul Blakey 
1995b6dfff21SPaul Blakey 	if (!outer_ecn_mask) {
1996b6dfff21SPaul Blakey 		if (!inner_ecn_mask)
1997b6dfff21SPaul Blakey 			return 0;
1998b6dfff21SPaul Blakey 
1999b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
2000b6dfff21SPaul Blakey 				   "Matching on tos ecn bits without also matching enc_tos ecn bits isn't supported");
2001b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2002b6dfff21SPaul Blakey 			    "Matching on tos ecn bits without also matching enc_tos ecn bits isn't supported");
2003b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2004b6dfff21SPaul Blakey 	}
2005b6dfff21SPaul Blakey 
2006b6dfff21SPaul Blakey 	if (inner_ecn_mask && inner_ecn_mask != INET_ECN_MASK) {
2007b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
2008b6dfff21SPaul Blakey 				   "Partial match on tos ecn bits with match on enc_tos ecn bits isn't supported");
2009b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2010b6dfff21SPaul Blakey 			    "Partial match on tos ecn bits with match on enc_tos ecn bits isn't supported");
2011b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2012b6dfff21SPaul Blakey 	}
2013b6dfff21SPaul Blakey 
2014b6dfff21SPaul Blakey 	if (!inner_ecn_mask)
2015b6dfff21SPaul Blakey 		return 0;
2016b6dfff21SPaul Blakey 
2017b6dfff21SPaul Blakey 	/* Both inner and outer have full mask on ecn */
2018b6dfff21SPaul Blakey 
2019b6dfff21SPaul Blakey 	if (outer_ecn_key == INET_ECN_ECT_1) {
2020b6dfff21SPaul Blakey 		/* inner ecn might change by DECAP action */
2021b6dfff21SPaul Blakey 
2022b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack, "Match on enc_tos ecn = ECT(1) isn't supported");
2023b6dfff21SPaul Blakey 		netdev_warn(priv->netdev, "Match on enc_tos ecn = ECT(1) isn't supported");
2024b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2025b6dfff21SPaul Blakey 	}
2026b6dfff21SPaul Blakey 
2027b6dfff21SPaul Blakey 	if (outer_ecn_key != INET_ECN_CE)
2028b6dfff21SPaul Blakey 		return 0;
2029b6dfff21SPaul Blakey 
2030b6dfff21SPaul Blakey 	if (inner_ecn_key != INET_ECN_CE) {
2031b6dfff21SPaul Blakey 		/* Can't happen in software, as packet ecn will be changed to CE after decap */
2032b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
2033b6dfff21SPaul Blakey 				   "Match on tos enc_tos ecn = CE while match on tos ecn != CE isn't supported");
2034b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2035b6dfff21SPaul Blakey 			    "Match on tos enc_tos ecn = CE while match on tos ecn != CE isn't supported");
2036b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2037b6dfff21SPaul Blakey 	}
2038b6dfff21SPaul Blakey 
2039b6dfff21SPaul Blakey 	/* outer ecn = CE, inner ecn = CE, as decap will change inner ecn to CE in anycase,
2040b6dfff21SPaul Blakey 	 * drop match on inner ecn
2041b6dfff21SPaul Blakey 	 */
2042b6dfff21SPaul Blakey 	*match_inner_ecn = false;
2043b6dfff21SPaul Blakey 
2044b6dfff21SPaul Blakey 	return 0;
2045b6dfff21SPaul Blakey }
2046b6dfff21SPaul Blakey 
20470a7fcb78SPaul Blakey static int parse_tunnel_attr(struct mlx5e_priv *priv,
20480a7fcb78SPaul Blakey 			     struct mlx5e_tc_flow *flow,
20490a7fcb78SPaul Blakey 			     struct mlx5_flow_spec *spec,
20500a7fcb78SPaul Blakey 			     struct flow_cls_offload *f,
20510a7fcb78SPaul Blakey 			     struct net_device *filter_dev,
20520a7fcb78SPaul Blakey 			     u8 *match_level,
20530a7fcb78SPaul Blakey 			     bool *match_inner)
20540a7fcb78SPaul Blakey {
2055a508728aSVlad Buslov 	struct mlx5e_tc_tunnel *tunnel = mlx5e_get_tc_tun(filter_dev);
20560a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
20570a7fcb78SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
20580a7fcb78SPaul Blakey 	bool needs_mapping, sets_mapping;
20590a7fcb78SPaul Blakey 	int err;
20600a7fcb78SPaul Blakey 
20610885ae1aSAbhiram R N 	if (!mlx5e_is_eswitch_flow(flow)) {
20620885ae1aSAbhiram R N 		NL_SET_ERR_MSG_MOD(extack, "Match on tunnel is not supported");
20630a7fcb78SPaul Blakey 		return -EOPNOTSUPP;
20640885ae1aSAbhiram R N 	}
20650a7fcb78SPaul Blakey 
2066c620b772SAriel Levkovich 	needs_mapping = !!flow->attr->chain;
2067ee950e5dSChris Mi 	sets_mapping = flow_requires_tunnel_mapping(flow->attr->chain, f);
20680a7fcb78SPaul Blakey 	*match_inner = !needs_mapping;
20690a7fcb78SPaul Blakey 
20700a7fcb78SPaul Blakey 	if ((needs_mapping || sets_mapping) &&
2071636bb968SPaul Blakey 	    !mlx5_eswitch_reg_c1_loopback_enabled(esw)) {
2072c50775d0SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
2073636bb968SPaul Blakey 				   "Chains on tunnel devices isn't supported without register loopback support");
20740a7fcb78SPaul Blakey 		netdev_warn(priv->netdev,
2075636bb968SPaul Blakey 			    "Chains on tunnel devices isn't supported without register loopback support");
20760a7fcb78SPaul Blakey 		return -EOPNOTSUPP;
20770a7fcb78SPaul Blakey 	}
20780a7fcb78SPaul Blakey 
2079c620b772SAriel Levkovich 	if (!flow->attr->chain) {
20800a7fcb78SPaul Blakey 		err = mlx5e_tc_tun_parse(filter_dev, priv, spec, f,
20810a7fcb78SPaul Blakey 					 match_level);
20820a7fcb78SPaul Blakey 		if (err) {
20830a7fcb78SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
20840a7fcb78SPaul Blakey 					   "Failed to parse tunnel attributes");
20850a7fcb78SPaul Blakey 			netdev_warn(priv->netdev,
20860a7fcb78SPaul Blakey 				    "Failed to parse tunnel attributes");
20870a7fcb78SPaul Blakey 			return err;
20880a7fcb78SPaul Blakey 		}
20890a7fcb78SPaul Blakey 
209014e6b038SEli Cohen 		/* With mpls over udp we decapsulate using packet reformat
209114e6b038SEli Cohen 		 * object
209214e6b038SEli Cohen 		 */
209314e6b038SEli Cohen 		if (!netif_is_bareudp(filter_dev))
2094c620b772SAriel Levkovich 			flow->attr->action |= MLX5_FLOW_CONTEXT_ACTION_DECAP;
2095a508728aSVlad Buslov 		err = mlx5e_tc_set_attr_rx_tun(flow, spec);
2096a508728aSVlad Buslov 		if (err)
2097a508728aSVlad Buslov 			return err;
2098a508728aSVlad Buslov 	} else if (tunnel && tunnel->tunnel_type == MLX5E_TC_TUNNEL_TYPE_VXLAN) {
2099a508728aSVlad Buslov 		struct mlx5_flow_spec *tmp_spec;
2100a508728aSVlad Buslov 
2101a508728aSVlad Buslov 		tmp_spec = kvzalloc(sizeof(*tmp_spec), GFP_KERNEL);
2102a508728aSVlad Buslov 		if (!tmp_spec) {
2103a508728aSVlad Buslov 			NL_SET_ERR_MSG_MOD(extack, "Failed to allocate memory for vxlan tmp spec");
2104a508728aSVlad Buslov 			netdev_warn(priv->netdev, "Failed to allocate memory for vxlan tmp spec");
2105a508728aSVlad Buslov 			return -ENOMEM;
2106a508728aSVlad Buslov 		}
2107a508728aSVlad Buslov 		memcpy(tmp_spec, spec, sizeof(*tmp_spec));
2108a508728aSVlad Buslov 
2109a508728aSVlad Buslov 		err = mlx5e_tc_tun_parse(filter_dev, priv, tmp_spec, f, match_level);
2110a508728aSVlad Buslov 		if (err) {
2111a508728aSVlad Buslov 			kvfree(tmp_spec);
2112a508728aSVlad Buslov 			NL_SET_ERR_MSG_MOD(extack, "Failed to parse tunnel attributes");
2113a508728aSVlad Buslov 			netdev_warn(priv->netdev, "Failed to parse tunnel attributes");
2114a508728aSVlad Buslov 			return err;
2115a508728aSVlad Buslov 		}
2116a508728aSVlad Buslov 		err = mlx5e_tc_set_attr_rx_tun(flow, tmp_spec);
2117a508728aSVlad Buslov 		kvfree(tmp_spec);
2118a508728aSVlad Buslov 		if (err)
2119a508728aSVlad Buslov 			return err;
21200a7fcb78SPaul Blakey 	}
21210a7fcb78SPaul Blakey 
21220a7fcb78SPaul Blakey 	if (!needs_mapping && !sets_mapping)
21230a7fcb78SPaul Blakey 		return 0;
21240a7fcb78SPaul Blakey 
21250a7fcb78SPaul Blakey 	return mlx5e_get_flow_tunnel_id(priv, flow, f, filter_dev);
21260a7fcb78SPaul Blakey }
21270a7fcb78SPaul Blakey 
21280a7fcb78SPaul Blakey static void *get_match_inner_headers_criteria(struct mlx5_flow_spec *spec)
21290a7fcb78SPaul Blakey {
21300a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
21310a7fcb78SPaul Blakey 			    inner_headers);
21320a7fcb78SPaul Blakey }
21330a7fcb78SPaul Blakey 
21340a7fcb78SPaul Blakey static void *get_match_inner_headers_value(struct mlx5_flow_spec *spec)
21350a7fcb78SPaul Blakey {
21360a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_value,
21370a7fcb78SPaul Blakey 			    inner_headers);
21380a7fcb78SPaul Blakey }
21390a7fcb78SPaul Blakey 
21400a7fcb78SPaul Blakey static void *get_match_outer_headers_criteria(struct mlx5_flow_spec *spec)
21410a7fcb78SPaul Blakey {
21420a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
21430a7fcb78SPaul Blakey 			    outer_headers);
21440a7fcb78SPaul Blakey }
21450a7fcb78SPaul Blakey 
21460a7fcb78SPaul Blakey static void *get_match_outer_headers_value(struct mlx5_flow_spec *spec)
21470a7fcb78SPaul Blakey {
21480a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_value,
21498377629eSEli Britstein 			    outer_headers);
21508377629eSEli Britstein }
21518377629eSEli Britstein 
21528ee72638SRoi Dayan void *mlx5e_get_match_headers_value(u32 flags, struct mlx5_flow_spec *spec)
21538377629eSEli Britstein {
21548377629eSEli Britstein 	return (flags & MLX5_FLOW_CONTEXT_ACTION_DECAP) ?
21550a7fcb78SPaul Blakey 		get_match_inner_headers_value(spec) :
21560a7fcb78SPaul Blakey 		get_match_outer_headers_value(spec);
21570a7fcb78SPaul Blakey }
21580a7fcb78SPaul Blakey 
21598ee72638SRoi Dayan void *mlx5e_get_match_headers_criteria(u32 flags, struct mlx5_flow_spec *spec)
21600a7fcb78SPaul Blakey {
21610a7fcb78SPaul Blakey 	return (flags & MLX5_FLOW_CONTEXT_ACTION_DECAP) ?
21620a7fcb78SPaul Blakey 		get_match_inner_headers_criteria(spec) :
21630a7fcb78SPaul Blakey 		get_match_outer_headers_criteria(spec);
21648377629eSEli Britstein }
21658377629eSEli Britstein 
21666d65bc64Swenxu static int mlx5e_flower_parse_meta(struct net_device *filter_dev,
21676d65bc64Swenxu 				   struct flow_cls_offload *f)
21686d65bc64Swenxu {
21696d65bc64Swenxu 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
21706d65bc64Swenxu 	struct netlink_ext_ack *extack = f->common.extack;
21716d65bc64Swenxu 	struct net_device *ingress_dev;
21726d65bc64Swenxu 	struct flow_match_meta match;
21736d65bc64Swenxu 
21746d65bc64Swenxu 	if (!flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_META))
21756d65bc64Swenxu 		return 0;
21766d65bc64Swenxu 
21776d65bc64Swenxu 	flow_rule_match_meta(rule, &match);
2178e3e0f9b2Swenxu 	if (!match.mask->ingress_ifindex)
2179e3e0f9b2Swenxu 		return 0;
2180e3e0f9b2Swenxu 
21816d65bc64Swenxu 	if (match.mask->ingress_ifindex != 0xFFFFFFFF) {
21826d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack, "Unsupported ingress ifindex mask");
2183a683012aSPablo Neira Ayuso 		return -EOPNOTSUPP;
21846d65bc64Swenxu 	}
21856d65bc64Swenxu 
21866d65bc64Swenxu 	ingress_dev = __dev_get_by_index(dev_net(filter_dev),
21876d65bc64Swenxu 					 match.key->ingress_ifindex);
21886d65bc64Swenxu 	if (!ingress_dev) {
21896d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack,
21906d65bc64Swenxu 				   "Can't find the ingress port to match on");
2191a683012aSPablo Neira Ayuso 		return -ENOENT;
21926d65bc64Swenxu 	}
21936d65bc64Swenxu 
21946d65bc64Swenxu 	if (ingress_dev != filter_dev) {
21956d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack,
21966d65bc64Swenxu 				   "Can't match on the ingress filter port");
2197a683012aSPablo Neira Ayuso 		return -EOPNOTSUPP;
21986d65bc64Swenxu 	}
21996d65bc64Swenxu 
22006d65bc64Swenxu 	return 0;
22016d65bc64Swenxu }
22026d65bc64Swenxu 
220372046a91SEli Cohen static bool skip_key_basic(struct net_device *filter_dev,
220472046a91SEli Cohen 			   struct flow_cls_offload *f)
220572046a91SEli Cohen {
220672046a91SEli Cohen 	/* When doing mpls over udp decap, the user needs to provide
220772046a91SEli Cohen 	 * MPLS_UC as the protocol in order to be able to match on mpls
220872046a91SEli Cohen 	 * label fields.  However, the actual ethertype is IP so we want to
220972046a91SEli Cohen 	 * avoid matching on this, otherwise we'll fail the match.
221072046a91SEli Cohen 	 */
221172046a91SEli Cohen 	if (netif_is_bareudp(filter_dev) && f->common.chain_index == 0)
221272046a91SEli Cohen 		return true;
221372046a91SEli Cohen 
221472046a91SEli Cohen 	return false;
221572046a91SEli Cohen }
221672046a91SEli Cohen 
2217de0af0bfSRoi Dayan static int __parse_cls_flower(struct mlx5e_priv *priv,
22180a7fcb78SPaul Blakey 			      struct mlx5e_tc_flow *flow,
2219de0af0bfSRoi Dayan 			      struct mlx5_flow_spec *spec,
2220f9e30088SPablo Neira Ayuso 			      struct flow_cls_offload *f,
222154c177caSOz Shlomo 			      struct net_device *filter_dev,
222293b3586eSHuy Nguyen 			      u8 *inner_match_level, u8 *outer_match_level)
2223e3a2b7edSAmir Vadai {
2224e98bedf5SEli Britstein 	struct netlink_ext_ack *extack = f->common.extack;
2225c5bb1730SMaor Gottlieb 	void *headers_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2226c5bb1730SMaor Gottlieb 				       outer_headers);
2227c5bb1730SMaor Gottlieb 	void *headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2228c5bb1730SMaor Gottlieb 				       outer_headers);
2229699e96ddSJianbo Liu 	void *misc_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2230699e96ddSJianbo Liu 				    misc_parameters);
2231699e96ddSJianbo Liu 	void *misc_v = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2232699e96ddSJianbo Liu 				    misc_parameters);
2233a3222a2dSMaor Dickman 	void *misc_c_3 = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2234a3222a2dSMaor Dickman 				    misc_parameters_3);
2235a3222a2dSMaor Dickman 	void *misc_v_3 = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2236a3222a2dSMaor Dickman 				    misc_parameters_3);
2237f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
22388f256622SPablo Neira Ayuso 	struct flow_dissector *dissector = rule->match.dissector;
2239afe93f71SRoi Dayan 	enum fs_flow_table_type fs_type;
2240b6dfff21SPaul Blakey 	bool match_inner_ecn = true;
2241e3a2b7edSAmir Vadai 	u16 addr_type = 0;
2242e3a2b7edSAmir Vadai 	u8 ip_proto = 0;
224393b3586eSHuy Nguyen 	u8 *match_level;
22446d65bc64Swenxu 	int err;
2245e3a2b7edSAmir Vadai 
2246afe93f71SRoi Dayan 	fs_type = mlx5e_is_eswitch_flow(flow) ? FS_FT_FDB : FS_FT_NIC_RX;
224793b3586eSHuy Nguyen 	match_level = outer_match_level;
2248de0af0bfSRoi Dayan 
22498f256622SPablo Neira Ayuso 	if (dissector->used_keys &
22503d144578SVlad Buslov 	    ~(BIT(FLOW_DISSECTOR_KEY_META) |
22513d144578SVlad Buslov 	      BIT(FLOW_DISSECTOR_KEY_CONTROL) |
2252e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_BASIC) |
2253e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_ETH_ADDRS) |
2254095b6cfdSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_VLAN) |
2255699e96ddSJianbo Liu 	      BIT(FLOW_DISSECTOR_KEY_CVLAN) |
2256e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_IPV4_ADDRS) |
2257e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_IPV6_ADDRS) |
2258bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_PORTS) |
2259bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_KEYID) |
2260bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_IPV4_ADDRS) |
2261bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_IPV6_ADDRS) |
2262bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_PORTS)	|
2263e77834ecSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_ENC_CONTROL) |
2264fd7da28bSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_TCP) |
2265bcef735cSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_IP)  |
22664c3844d9SPaul Blakey 	      BIT(FLOW_DISSECTOR_KEY_CT) |
22679272e3dfSYevgeny Kliteynik 	      BIT(FLOW_DISSECTOR_KEY_ENC_IP) |
226872046a91SEli Cohen 	      BIT(FLOW_DISSECTOR_KEY_ENC_OPTS) |
2269a3222a2dSMaor Dickman 	      BIT(FLOW_DISSECTOR_KEY_ICMP) |
227072046a91SEli Cohen 	      BIT(FLOW_DISSECTOR_KEY_MPLS))) {
2271e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack, "Unsupported key");
227248470a90SMaor Dickman 		netdev_dbg(priv->netdev, "Unsupported key used: 0x%x\n",
22738f256622SPablo Neira Ayuso 			   dissector->used_keys);
2274e3a2b7edSAmir Vadai 		return -EOPNOTSUPP;
2275e3a2b7edSAmir Vadai 	}
2276e3a2b7edSAmir Vadai 
2277075973c7SVlad Buslov 	if (mlx5e_get_tc_tun(filter_dev)) {
22780a7fcb78SPaul Blakey 		bool match_inner = false;
2279bbd00f7eSHadar Hen Zion 
22800a7fcb78SPaul Blakey 		err = parse_tunnel_attr(priv, flow, spec, f, filter_dev,
22810a7fcb78SPaul Blakey 					outer_match_level, &match_inner);
22820a7fcb78SPaul Blakey 		if (err)
22830a7fcb78SPaul Blakey 			return err;
22840a7fcb78SPaul Blakey 
22850a7fcb78SPaul Blakey 		if (match_inner) {
22860a7fcb78SPaul Blakey 			/* header pointers should point to the inner headers
22870a7fcb78SPaul Blakey 			 * if the packet was decapsulated already.
22880a7fcb78SPaul Blakey 			 * outer headers are set by parse_tunnel_attr.
2289bbd00f7eSHadar Hen Zion 			 */
229093b3586eSHuy Nguyen 			match_level = inner_match_level;
22910a7fcb78SPaul Blakey 			headers_c = get_match_inner_headers_criteria(spec);
22920a7fcb78SPaul Blakey 			headers_v = get_match_inner_headers_value(spec);
22930a7fcb78SPaul Blakey 		}
2294b6dfff21SPaul Blakey 
2295b6dfff21SPaul Blakey 		err = mlx5e_tc_verify_tunnel_ecn(priv, f, &match_inner_ecn);
2296b6dfff21SPaul Blakey 		if (err)
2297b6dfff21SPaul Blakey 			return err;
2298bbd00f7eSHadar Hen Zion 	}
2299bbd00f7eSHadar Hen Zion 
23006d65bc64Swenxu 	err = mlx5e_flower_parse_meta(filter_dev, f);
23016d65bc64Swenxu 	if (err)
23026d65bc64Swenxu 		return err;
23036d65bc64Swenxu 
230472046a91SEli Cohen 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_BASIC) &&
230572046a91SEli Cohen 	    !skip_key_basic(filter_dev, f)) {
23068f256622SPablo Neira Ayuso 		struct flow_match_basic match;
2307e3a2b7edSAmir Vadai 
23088f256622SPablo Neira Ayuso 		flow_rule_match_basic(rule, &match);
2309fca53304SEli Britstein 		mlx5e_tc_set_ethertype(priv->mdev, &match,
2310fca53304SEli Britstein 				       match_level == outer_match_level,
2311fca53304SEli Britstein 				       headers_c, headers_v);
23128f256622SPablo Neira Ayuso 
23138f256622SPablo Neira Ayuso 		if (match.mask->n_proto)
2314d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
2315e3a2b7edSAmir Vadai 	}
231635a605dbSEli Britstein 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_VLAN) ||
231735a605dbSEli Britstein 	    is_vlan_dev(filter_dev)) {
231835a605dbSEli Britstein 		struct flow_dissector_key_vlan filter_dev_mask;
231935a605dbSEli Britstein 		struct flow_dissector_key_vlan filter_dev_key;
23208f256622SPablo Neira Ayuso 		struct flow_match_vlan match;
23218f256622SPablo Neira Ayuso 
232235a605dbSEli Britstein 		if (is_vlan_dev(filter_dev)) {
232335a605dbSEli Britstein 			match.key = &filter_dev_key;
232435a605dbSEli Britstein 			match.key->vlan_id = vlan_dev_vlan_id(filter_dev);
232535a605dbSEli Britstein 			match.key->vlan_tpid = vlan_dev_vlan_proto(filter_dev);
232635a605dbSEli Britstein 			match.key->vlan_priority = 0;
232735a605dbSEli Britstein 			match.mask = &filter_dev_mask;
232835a605dbSEli Britstein 			memset(match.mask, 0xff, sizeof(*match.mask));
232935a605dbSEli Britstein 			match.mask->vlan_priority = 0;
233035a605dbSEli Britstein 		} else {
23318f256622SPablo Neira Ayuso 			flow_rule_match_vlan(rule, &match);
233235a605dbSEli Britstein 		}
23338f256622SPablo Neira Ayuso 		if (match.mask->vlan_id ||
23348f256622SPablo Neira Ayuso 		    match.mask->vlan_priority ||
23358f256622SPablo Neira Ayuso 		    match.mask->vlan_tpid) {
23368f256622SPablo Neira Ayuso 			if (match.key->vlan_tpid == htons(ETH_P_8021AD)) {
2337699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_c,
2338699e96ddSJianbo Liu 					 svlan_tag, 1);
2339699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_v,
2340699e96ddSJianbo Liu 					 svlan_tag, 1);
2341699e96ddSJianbo Liu 			} else {
2342699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_c,
2343699e96ddSJianbo Liu 					 cvlan_tag, 1);
2344699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_v,
2345699e96ddSJianbo Liu 					 cvlan_tag, 1);
2346699e96ddSJianbo Liu 			}
2347095b6cfdSOr Gerlitz 
23488f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, first_vid,
23498f256622SPablo Neira Ayuso 				 match.mask->vlan_id);
23508f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, first_vid,
23518f256622SPablo Neira Ayuso 				 match.key->vlan_id);
2352358d79a4SOr Gerlitz 
23538f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, first_prio,
23548f256622SPablo Neira Ayuso 				 match.mask->vlan_priority);
23558f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, first_prio,
23568f256622SPablo Neira Ayuso 				 match.key->vlan_priority);
235754782900SOr Gerlitz 
2358d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
2359095b6cfdSOr Gerlitz 		}
2360d3a80bb5SOr Gerlitz 	} else if (*match_level != MLX5_MATCH_NONE) {
2361fc603294SMark Bloch 		/* cvlan_tag enabled in match criteria and
2362fc603294SMark Bloch 		 * disabled in match value means both S & C tags
2363fc603294SMark Bloch 		 * don't exist (untagged of both)
2364fc603294SMark Bloch 		 */
2365cee26487SJianbo Liu 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, cvlan_tag, 1);
2366d3a80bb5SOr Gerlitz 		*match_level = MLX5_MATCH_L2;
2367095b6cfdSOr Gerlitz 	}
2368095b6cfdSOr Gerlitz 
23698f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_CVLAN)) {
23708f256622SPablo Neira Ayuso 		struct flow_match_vlan match;
23718f256622SPablo Neira Ayuso 
237212d5cbf8SJianbo Liu 		flow_rule_match_cvlan(rule, &match);
23738f256622SPablo Neira Ayuso 		if (match.mask->vlan_id ||
23748f256622SPablo Neira Ayuso 		    match.mask->vlan_priority ||
23758f256622SPablo Neira Ayuso 		    match.mask->vlan_tpid) {
2376afe93f71SRoi Dayan 			if (!MLX5_CAP_FLOWTABLE_TYPE(priv->mdev, ft_field_support.outer_second_vid,
2377afe93f71SRoi Dayan 						     fs_type)) {
2378afe93f71SRoi Dayan 				NL_SET_ERR_MSG_MOD(extack,
2379afe93f71SRoi Dayan 						   "Matching on CVLAN is not supported");
2380afe93f71SRoi Dayan 				return -EOPNOTSUPP;
2381afe93f71SRoi Dayan 			}
2382afe93f71SRoi Dayan 
23838f256622SPablo Neira Ayuso 			if (match.key->vlan_tpid == htons(ETH_P_8021AD)) {
2384699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_c,
2385699e96ddSJianbo Liu 					 outer_second_svlan_tag, 1);
2386699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_v,
2387699e96ddSJianbo Liu 					 outer_second_svlan_tag, 1);
2388699e96ddSJianbo Liu 			} else {
2389699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_c,
2390699e96ddSJianbo Liu 					 outer_second_cvlan_tag, 1);
2391699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_v,
2392699e96ddSJianbo Liu 					 outer_second_cvlan_tag, 1);
2393699e96ddSJianbo Liu 			}
2394699e96ddSJianbo Liu 
2395699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_c, outer_second_vid,
23968f256622SPablo Neira Ayuso 				 match.mask->vlan_id);
2397699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_v, outer_second_vid,
23988f256622SPablo Neira Ayuso 				 match.key->vlan_id);
2399699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_c, outer_second_prio,
24008f256622SPablo Neira Ayuso 				 match.mask->vlan_priority);
2401699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_v, outer_second_prio,
24028f256622SPablo Neira Ayuso 				 match.key->vlan_priority);
2403699e96ddSJianbo Liu 
2404699e96ddSJianbo Liu 			*match_level = MLX5_MATCH_L2;
24050faddfe6SJianbo Liu 			spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS;
2406699e96ddSJianbo Liu 		}
2407699e96ddSJianbo Liu 	}
2408699e96ddSJianbo Liu 
24098f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ETH_ADDRS)) {
24108f256622SPablo Neira Ayuso 		struct flow_match_eth_addrs match;
241154782900SOr Gerlitz 
24128f256622SPablo Neira Ayuso 		flow_rule_match_eth_addrs(rule, &match);
2413d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2414d3a80bb5SOr Gerlitz 					     dmac_47_16),
24158f256622SPablo Neira Ayuso 				match.mask->dst);
2416d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2417d3a80bb5SOr Gerlitz 					     dmac_47_16),
24188f256622SPablo Neira Ayuso 				match.key->dst);
2419d3a80bb5SOr Gerlitz 
2420d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2421d3a80bb5SOr Gerlitz 					     smac_47_16),
24228f256622SPablo Neira Ayuso 				match.mask->src);
2423d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2424d3a80bb5SOr Gerlitz 					     smac_47_16),
24258f256622SPablo Neira Ayuso 				match.key->src);
2426d3a80bb5SOr Gerlitz 
24278f256622SPablo Neira Ayuso 		if (!is_zero_ether_addr(match.mask->src) ||
24288f256622SPablo Neira Ayuso 		    !is_zero_ether_addr(match.mask->dst))
2429d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
243054782900SOr Gerlitz 	}
243154782900SOr Gerlitz 
24328f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_CONTROL)) {
24338f256622SPablo Neira Ayuso 		struct flow_match_control match;
243454782900SOr Gerlitz 
24358f256622SPablo Neira Ayuso 		flow_rule_match_control(rule, &match);
24368f256622SPablo Neira Ayuso 		addr_type = match.key->addr_type;
243754782900SOr Gerlitz 
243854782900SOr Gerlitz 		/* the HW doesn't support frag first/later */
24390885ae1aSAbhiram R N 		if (match.mask->flags & FLOW_DIS_FIRST_FRAG) {
24400885ae1aSAbhiram R N 			NL_SET_ERR_MSG_MOD(extack, "Match on frag first/later is not supported");
244154782900SOr Gerlitz 			return -EOPNOTSUPP;
24420885ae1aSAbhiram R N 		}
244354782900SOr Gerlitz 
24448f256622SPablo Neira Ayuso 		if (match.mask->flags & FLOW_DIS_IS_FRAGMENT) {
244554782900SOr Gerlitz 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, frag, 1);
244654782900SOr Gerlitz 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, frag,
24478f256622SPablo Neira Ayuso 				 match.key->flags & FLOW_DIS_IS_FRAGMENT);
244854782900SOr Gerlitz 
244954782900SOr Gerlitz 			/* the HW doesn't need L3 inline to match on frag=no */
24508f256622SPablo Neira Ayuso 			if (!(match.key->flags & FLOW_DIS_IS_FRAGMENT))
245183621b7dSOr Gerlitz 				*match_level = MLX5_MATCH_L2;
245254782900SOr Gerlitz 	/* ***  L2 attributes parsing up to here *** */
245354782900SOr Gerlitz 			else
245483621b7dSOr Gerlitz 				*match_level = MLX5_MATCH_L3;
245554782900SOr Gerlitz 		}
245654782900SOr Gerlitz 	}
245754782900SOr Gerlitz 
24588f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_BASIC)) {
24598f256622SPablo Neira Ayuso 		struct flow_match_basic match;
24608f256622SPablo Neira Ayuso 
24618f256622SPablo Neira Ayuso 		flow_rule_match_basic(rule, &match);
24628f256622SPablo Neira Ayuso 		ip_proto = match.key->ip_proto;
246354782900SOr Gerlitz 
246454782900SOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_protocol,
24658f256622SPablo Neira Ayuso 			 match.mask->ip_proto);
246654782900SOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_protocol,
24678f256622SPablo Neira Ayuso 			 match.key->ip_proto);
246854782900SOr Gerlitz 
24698f256622SPablo Neira Ayuso 		if (match.mask->ip_proto)
2470d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
247154782900SOr Gerlitz 	}
247254782900SOr Gerlitz 
2473e3a2b7edSAmir Vadai 	if (addr_type == FLOW_DISSECTOR_KEY_IPV4_ADDRS) {
24748f256622SPablo Neira Ayuso 		struct flow_match_ipv4_addrs match;
2475e3a2b7edSAmir Vadai 
24768f256622SPablo Neira Ayuso 		flow_rule_match_ipv4_addrs(rule, &match);
2477e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2478e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv4_layout.ipv4),
24798f256622SPablo Neira Ayuso 		       &match.mask->src, sizeof(match.mask->src));
2480e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2481e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv4_layout.ipv4),
24828f256622SPablo Neira Ayuso 		       &match.key->src, sizeof(match.key->src));
2483e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2484e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
24858f256622SPablo Neira Ayuso 		       &match.mask->dst, sizeof(match.mask->dst));
2486e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2487e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
24888f256622SPablo Neira Ayuso 		       &match.key->dst, sizeof(match.key->dst));
2489de0af0bfSRoi Dayan 
24908f256622SPablo Neira Ayuso 		if (match.mask->src || match.mask->dst)
2491d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
2492e3a2b7edSAmir Vadai 	}
2493e3a2b7edSAmir Vadai 
2494e3a2b7edSAmir Vadai 	if (addr_type == FLOW_DISSECTOR_KEY_IPV6_ADDRS) {
24958f256622SPablo Neira Ayuso 		struct flow_match_ipv6_addrs match;
2496e3a2b7edSAmir Vadai 
24978f256622SPablo Neira Ayuso 		flow_rule_match_ipv6_addrs(rule, &match);
2498e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2499e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv6_layout.ipv6),
25008f256622SPablo Neira Ayuso 		       &match.mask->src, sizeof(match.mask->src));
2501e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2502e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv6_layout.ipv6),
25038f256622SPablo Neira Ayuso 		       &match.key->src, sizeof(match.key->src));
2504e3a2b7edSAmir Vadai 
2505e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2506e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv6_layout.ipv6),
25078f256622SPablo Neira Ayuso 		       &match.mask->dst, sizeof(match.mask->dst));
2508e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2509e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv6_layout.ipv6),
25108f256622SPablo Neira Ayuso 		       &match.key->dst, sizeof(match.key->dst));
2511de0af0bfSRoi Dayan 
25128f256622SPablo Neira Ayuso 		if (ipv6_addr_type(&match.mask->src) != IPV6_ADDR_ANY ||
25138f256622SPablo Neira Ayuso 		    ipv6_addr_type(&match.mask->dst) != IPV6_ADDR_ANY)
2514d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
2515e3a2b7edSAmir Vadai 	}
2516e3a2b7edSAmir Vadai 
25178f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_IP)) {
25188f256622SPablo Neira Ayuso 		struct flow_match_ip match;
25191f97a526SOr Gerlitz 
25208f256622SPablo Neira Ayuso 		flow_rule_match_ip(rule, &match);
2521b6dfff21SPaul Blakey 		if (match_inner_ecn) {
25228f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_ecn,
25238f256622SPablo Neira Ayuso 				 match.mask->tos & 0x3);
25248f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_ecn,
25258f256622SPablo Neira Ayuso 				 match.key->tos & 0x3);
2526b6dfff21SPaul Blakey 		}
25271f97a526SOr Gerlitz 
25288f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_dscp,
25298f256622SPablo Neira Ayuso 			 match.mask->tos >> 2);
25308f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_dscp,
25318f256622SPablo Neira Ayuso 			 match.key->tos  >> 2);
25321f97a526SOr Gerlitz 
25338f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ttl_hoplimit,
25348f256622SPablo Neira Ayuso 			 match.mask->ttl);
25358f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ttl_hoplimit,
25368f256622SPablo Neira Ayuso 			 match.key->ttl);
25371f97a526SOr Gerlitz 
25388f256622SPablo Neira Ayuso 		if (match.mask->ttl &&
2539a8ade55fSOr Gerlitz 		    !MLX5_CAP_ESW_FLOWTABLE_FDB(priv->mdev,
2540e98bedf5SEli Britstein 						ft_field_support.outer_ipv4_ttl)) {
2541e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2542e98bedf5SEli Britstein 					   "Matching on TTL is not supported");
25431f97a526SOr Gerlitz 			return -EOPNOTSUPP;
2544e98bedf5SEli Britstein 		}
2545a8ade55fSOr Gerlitz 
25468f256622SPablo Neira Ayuso 		if (match.mask->tos || match.mask->ttl)
2547d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
25481f97a526SOr Gerlitz 	}
25491f97a526SOr Gerlitz 
255054782900SOr Gerlitz 	/* ***  L3 attributes parsing up to here *** */
255154782900SOr Gerlitz 
25528f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_PORTS)) {
25538f256622SPablo Neira Ayuso 		struct flow_match_ports match;
25548f256622SPablo Neira Ayuso 
25558f256622SPablo Neira Ayuso 		flow_rule_match_ports(rule, &match);
2556e3a2b7edSAmir Vadai 		switch (ip_proto) {
2557e3a2b7edSAmir Vadai 		case IPPROTO_TCP:
2558e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25598f256622SPablo Neira Ayuso 				 tcp_sport, ntohs(match.mask->src));
2560e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25618f256622SPablo Neira Ayuso 				 tcp_sport, ntohs(match.key->src));
2562e3a2b7edSAmir Vadai 
2563e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25648f256622SPablo Neira Ayuso 				 tcp_dport, ntohs(match.mask->dst));
2565e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25668f256622SPablo Neira Ayuso 				 tcp_dport, ntohs(match.key->dst));
2567e3a2b7edSAmir Vadai 			break;
2568e3a2b7edSAmir Vadai 
2569e3a2b7edSAmir Vadai 		case IPPROTO_UDP:
2570e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25718f256622SPablo Neira Ayuso 				 udp_sport, ntohs(match.mask->src));
2572e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25738f256622SPablo Neira Ayuso 				 udp_sport, ntohs(match.key->src));
2574e3a2b7edSAmir Vadai 
2575e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25768f256622SPablo Neira Ayuso 				 udp_dport, ntohs(match.mask->dst));
2577e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25788f256622SPablo Neira Ayuso 				 udp_dport, ntohs(match.key->dst));
2579e3a2b7edSAmir Vadai 			break;
2580e3a2b7edSAmir Vadai 		default:
2581e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2582e98bedf5SEli Britstein 					   "Only UDP and TCP transports are supported for L4 matching");
2583e3a2b7edSAmir Vadai 			netdev_err(priv->netdev,
2584e3a2b7edSAmir Vadai 				   "Only UDP and TCP transport are supported\n");
2585e3a2b7edSAmir Vadai 			return -EINVAL;
2586e3a2b7edSAmir Vadai 		}
2587de0af0bfSRoi Dayan 
25888f256622SPablo Neira Ayuso 		if (match.mask->src || match.mask->dst)
2589d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L4;
2590e3a2b7edSAmir Vadai 	}
2591e3a2b7edSAmir Vadai 
25928f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_TCP)) {
25938f256622SPablo Neira Ayuso 		struct flow_match_tcp match;
2594e77834ecSOr Gerlitz 
25958f256622SPablo Neira Ayuso 		flow_rule_match_tcp(rule, &match);
2596e77834ecSOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, tcp_flags,
25978f256622SPablo Neira Ayuso 			 ntohs(match.mask->flags));
2598e77834ecSOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, tcp_flags,
25998f256622SPablo Neira Ayuso 			 ntohs(match.key->flags));
2600e77834ecSOr Gerlitz 
26018f256622SPablo Neira Ayuso 		if (match.mask->flags)
2602d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L4;
2603e77834ecSOr Gerlitz 	}
2604a3222a2dSMaor Dickman 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ICMP)) {
2605a3222a2dSMaor Dickman 		struct flow_match_icmp match;
2606e77834ecSOr Gerlitz 
2607a3222a2dSMaor Dickman 		flow_rule_match_icmp(rule, &match);
2608a3222a2dSMaor Dickman 		switch (ip_proto) {
2609a3222a2dSMaor Dickman 		case IPPROTO_ICMP:
2610a3222a2dSMaor Dickman 			if (!(MLX5_CAP_GEN(priv->mdev, flex_parser_protocols) &
26110885ae1aSAbhiram R N 			      MLX5_FLEX_PROTO_ICMP)) {
26120885ae1aSAbhiram R N 				NL_SET_ERR_MSG_MOD(extack,
26130885ae1aSAbhiram R N 						   "Match on Flex protocols for ICMP is not supported");
2614a3222a2dSMaor Dickman 				return -EOPNOTSUPP;
26150885ae1aSAbhiram R N 			}
2616a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmp_type,
2617a3222a2dSMaor Dickman 				 match.mask->type);
2618a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmp_type,
2619a3222a2dSMaor Dickman 				 match.key->type);
2620a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmp_code,
2621a3222a2dSMaor Dickman 				 match.mask->code);
2622a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmp_code,
2623a3222a2dSMaor Dickman 				 match.key->code);
2624a3222a2dSMaor Dickman 			break;
2625a3222a2dSMaor Dickman 		case IPPROTO_ICMPV6:
2626a3222a2dSMaor Dickman 			if (!(MLX5_CAP_GEN(priv->mdev, flex_parser_protocols) &
26270885ae1aSAbhiram R N 			      MLX5_FLEX_PROTO_ICMPV6)) {
26280885ae1aSAbhiram R N 				NL_SET_ERR_MSG_MOD(extack,
26290885ae1aSAbhiram R N 						   "Match on Flex protocols for ICMPV6 is not supported");
2630a3222a2dSMaor Dickman 				return -EOPNOTSUPP;
26310885ae1aSAbhiram R N 			}
2632a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmpv6_type,
2633a3222a2dSMaor Dickman 				 match.mask->type);
2634a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmpv6_type,
2635a3222a2dSMaor Dickman 				 match.key->type);
2636a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmpv6_code,
2637a3222a2dSMaor Dickman 				 match.mask->code);
2638a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmpv6_code,
2639a3222a2dSMaor Dickman 				 match.key->code);
2640a3222a2dSMaor Dickman 			break;
2641a3222a2dSMaor Dickman 		default:
2642a3222a2dSMaor Dickman 			NL_SET_ERR_MSG_MOD(extack,
2643a3222a2dSMaor Dickman 					   "Code and type matching only with ICMP and ICMPv6");
2644a3222a2dSMaor Dickman 			netdev_err(priv->netdev,
2645a3222a2dSMaor Dickman 				   "Code and type matching only with ICMP and ICMPv6\n");
2646a3222a2dSMaor Dickman 			return -EINVAL;
2647a3222a2dSMaor Dickman 		}
2648a3222a2dSMaor Dickman 		if (match.mask->code || match.mask->type) {
2649a3222a2dSMaor Dickman 			*match_level = MLX5_MATCH_L4;
2650a3222a2dSMaor Dickman 			spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS_3;
2651a3222a2dSMaor Dickman 		}
2652a3222a2dSMaor Dickman 	}
265339c538d6SCai Huoqing 	/* Currently supported only for MPLS over UDP */
26547d6c86e3SAlaa Hleihel 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_MPLS) &&
26557d6c86e3SAlaa Hleihel 	    !netif_is_bareudp(filter_dev)) {
26567d6c86e3SAlaa Hleihel 		NL_SET_ERR_MSG_MOD(extack,
26577d6c86e3SAlaa Hleihel 				   "Matching on MPLS is supported only for MPLS over UDP");
26587d6c86e3SAlaa Hleihel 		netdev_err(priv->netdev,
26597d6c86e3SAlaa Hleihel 			   "Matching on MPLS is supported only for MPLS over UDP\n");
26607d6c86e3SAlaa Hleihel 		return -EOPNOTSUPP;
26617d6c86e3SAlaa Hleihel 	}
26627d6c86e3SAlaa Hleihel 
2663e3a2b7edSAmir Vadai 	return 0;
2664e3a2b7edSAmir Vadai }
2665e3a2b7edSAmir Vadai 
2666de0af0bfSRoi Dayan static int parse_cls_flower(struct mlx5e_priv *priv,
266765ba8fb7SOr Gerlitz 			    struct mlx5e_tc_flow *flow,
2668de0af0bfSRoi Dayan 			    struct mlx5_flow_spec *spec,
2669f9e30088SPablo Neira Ayuso 			    struct flow_cls_offload *f,
267054c177caSOz Shlomo 			    struct net_device *filter_dev)
2671de0af0bfSRoi Dayan {
267293b3586eSHuy Nguyen 	u8 inner_match_level, outer_match_level, non_tunnel_match_level;
2673e98bedf5SEli Britstein 	struct netlink_ext_ack *extack = f->common.extack;
2674de0af0bfSRoi Dayan 	struct mlx5_core_dev *dev = priv->mdev;
2675de0af0bfSRoi Dayan 	struct mlx5_eswitch *esw = dev->priv.eswitch;
26761d447a39SSaeed Mahameed 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
26771d447a39SSaeed Mahameed 	struct mlx5_eswitch_rep *rep;
2678226f2ca3SVlad Buslov 	bool is_eswitch_flow;
2679de0af0bfSRoi Dayan 	int err;
2680de0af0bfSRoi Dayan 
268193b3586eSHuy Nguyen 	inner_match_level = MLX5_MATCH_NONE;
268293b3586eSHuy Nguyen 	outer_match_level = MLX5_MATCH_NONE;
268393b3586eSHuy Nguyen 
26840a7fcb78SPaul Blakey 	err = __parse_cls_flower(priv, flow, spec, f, filter_dev,
26850a7fcb78SPaul Blakey 				 &inner_match_level, &outer_match_level);
268693b3586eSHuy Nguyen 	non_tunnel_match_level = (inner_match_level == MLX5_MATCH_NONE) ?
268793b3586eSHuy Nguyen 				 outer_match_level : inner_match_level;
2688de0af0bfSRoi Dayan 
2689226f2ca3SVlad Buslov 	is_eswitch_flow = mlx5e_is_eswitch_flow(flow);
2690226f2ca3SVlad Buslov 	if (!err && is_eswitch_flow) {
26911d447a39SSaeed Mahameed 		rep = rpriv->rep;
2692b05af6aaSBodong Wang 		if (rep->vport != MLX5_VPORT_UPLINK &&
26931d447a39SSaeed Mahameed 		    (esw->offloads.inline_mode != MLX5_INLINE_MODE_NONE &&
269493b3586eSHuy Nguyen 		    esw->offloads.inline_mode < non_tunnel_match_level)) {
2695e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2696e98bedf5SEli Britstein 					   "Flow is not offloaded due to min inline setting");
2697de0af0bfSRoi Dayan 			netdev_warn(priv->netdev,
2698de0af0bfSRoi Dayan 				    "Flow is not offloaded due to min inline setting, required %d actual %d\n",
269993b3586eSHuy Nguyen 				    non_tunnel_match_level, esw->offloads.inline_mode);
2700de0af0bfSRoi Dayan 			return -EOPNOTSUPP;
2701de0af0bfSRoi Dayan 		}
2702de0af0bfSRoi Dayan 	}
2703de0af0bfSRoi Dayan 
2704c620b772SAriel Levkovich 	flow->attr->inner_match_level = inner_match_level;
2705c620b772SAriel Levkovich 	flow->attr->outer_match_level = outer_match_level;
2706c620b772SAriel Levkovich 
270738aa51c1SOr Gerlitz 
2708de0af0bfSRoi Dayan 	return err;
2709de0af0bfSRoi Dayan }
2710de0af0bfSRoi Dayan 
2711d79b6df6SOr Gerlitz struct mlx5_fields {
2712d79b6df6SOr Gerlitz 	u8  field;
271388f30bbcSDmytro Linkin 	u8  field_bsize;
271488f30bbcSDmytro Linkin 	u32 field_mask;
2715d79b6df6SOr Gerlitz 	u32 offset;
271627c11b6bSEli Britstein 	u32 match_offset;
2717d79b6df6SOr Gerlitz };
2718d79b6df6SOr Gerlitz 
271988f30bbcSDmytro Linkin #define OFFLOAD(fw_field, field_bsize, field_mask, field, off, match_field) \
272088f30bbcSDmytro Linkin 		{MLX5_ACTION_IN_FIELD_OUT_ ## fw_field, field_bsize, field_mask, \
272127c11b6bSEli Britstein 		 offsetof(struct pedit_headers, field) + (off), \
272227c11b6bSEli Britstein 		 MLX5_BYTE_OFF(fte_match_set_lyr_2_4, match_field)}
272327c11b6bSEli Britstein 
27242ef86872SEli Britstein /* masked values are the same and there are no rewrites that do not have a
27252ef86872SEli Britstein  * match.
27262ef86872SEli Britstein  */
27272ef86872SEli Britstein #define SAME_VAL_MASK(type, valp, maskp, matchvalp, matchmaskp) ({ \
27282ef86872SEli Britstein 	type matchmaskx = *(type *)(matchmaskp); \
27292ef86872SEli Britstein 	type matchvalx = *(type *)(matchvalp); \
27302ef86872SEli Britstein 	type maskx = *(type *)(maskp); \
27312ef86872SEli Britstein 	type valx = *(type *)(valp); \
27322ef86872SEli Britstein 	\
27332ef86872SEli Britstein 	(valx & maskx) == (matchvalx & matchmaskx) && !(maskx & (maskx ^ \
27342ef86872SEli Britstein 								 matchmaskx)); \
27352ef86872SEli Britstein })
27362ef86872SEli Britstein 
273727c11b6bSEli Britstein static bool cmp_val_mask(void *valp, void *maskp, void *matchvalp,
273888f30bbcSDmytro Linkin 			 void *matchmaskp, u8 bsize)
273927c11b6bSEli Britstein {
274027c11b6bSEli Britstein 	bool same = false;
274127c11b6bSEli Britstein 
274288f30bbcSDmytro Linkin 	switch (bsize) {
274388f30bbcSDmytro Linkin 	case 8:
27442ef86872SEli Britstein 		same = SAME_VAL_MASK(u8, valp, maskp, matchvalp, matchmaskp);
274527c11b6bSEli Britstein 		break;
274688f30bbcSDmytro Linkin 	case 16:
27472ef86872SEli Britstein 		same = SAME_VAL_MASK(u16, valp, maskp, matchvalp, matchmaskp);
274827c11b6bSEli Britstein 		break;
274988f30bbcSDmytro Linkin 	case 32:
27502ef86872SEli Britstein 		same = SAME_VAL_MASK(u32, valp, maskp, matchvalp, matchmaskp);
275127c11b6bSEli Britstein 		break;
275227c11b6bSEli Britstein 	}
275327c11b6bSEli Britstein 
275427c11b6bSEli Britstein 	return same;
275527c11b6bSEli Britstein }
2756a8e4f0c4SOr Gerlitz 
2757d79b6df6SOr Gerlitz static struct mlx5_fields fields[] = {
275888f30bbcSDmytro Linkin 	OFFLOAD(DMAC_47_16, 32, U32_MAX, eth.h_dest[0], 0, dmac_47_16),
275988f30bbcSDmytro Linkin 	OFFLOAD(DMAC_15_0,  16, U16_MAX, eth.h_dest[4], 0, dmac_15_0),
276088f30bbcSDmytro Linkin 	OFFLOAD(SMAC_47_16, 32, U32_MAX, eth.h_source[0], 0, smac_47_16),
276188f30bbcSDmytro Linkin 	OFFLOAD(SMAC_15_0,  16, U16_MAX, eth.h_source[4], 0, smac_15_0),
276288f30bbcSDmytro Linkin 	OFFLOAD(ETHERTYPE,  16, U16_MAX, eth.h_proto, 0, ethertype),
276388f30bbcSDmytro Linkin 	OFFLOAD(FIRST_VID,  16, U16_MAX, vlan.h_vlan_TCI, 0, first_vid),
2764d79b6df6SOr Gerlitz 
2765ab9341b5SDmytro Linkin 	OFFLOAD(IP_DSCP, 8,    0xfc, ip4.tos,   0, ip_dscp),
276688f30bbcSDmytro Linkin 	OFFLOAD(IP_TTL,  8,  U8_MAX, ip4.ttl,   0, ttl_hoplimit),
276788f30bbcSDmytro Linkin 	OFFLOAD(SIPV4,  32, U32_MAX, ip4.saddr, 0, src_ipv4_src_ipv6.ipv4_layout.ipv4),
276888f30bbcSDmytro Linkin 	OFFLOAD(DIPV4,  32, U32_MAX, ip4.daddr, 0, dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
2769d79b6df6SOr Gerlitz 
277088f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_127_96, 32, U32_MAX, ip6.saddr.s6_addr32[0], 0,
277127c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[0]),
277288f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_95_64,  32, U32_MAX, ip6.saddr.s6_addr32[1], 0,
277327c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[4]),
277488f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_63_32,  32, U32_MAX, ip6.saddr.s6_addr32[2], 0,
277527c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[8]),
277688f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_31_0,   32, U32_MAX, ip6.saddr.s6_addr32[3], 0,
277727c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[12]),
277888f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_127_96, 32, U32_MAX, ip6.daddr.s6_addr32[0], 0,
277927c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[0]),
278088f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_95_64,  32, U32_MAX, ip6.daddr.s6_addr32[1], 0,
278127c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[4]),
278288f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_63_32,  32, U32_MAX, ip6.daddr.s6_addr32[2], 0,
278327c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[8]),
278488f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_31_0,   32, U32_MAX, ip6.daddr.s6_addr32[3], 0,
278527c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[12]),
278688f30bbcSDmytro Linkin 	OFFLOAD(IPV6_HOPLIMIT, 8,  U8_MAX, ip6.hop_limit, 0, ttl_hoplimit),
2787748cde9aSMaor Dickman 	OFFLOAD(IP_DSCP, 16,  0xc00f, ip6, 0, ip_dscp),
2788d79b6df6SOr Gerlitz 
278988f30bbcSDmytro Linkin 	OFFLOAD(TCP_SPORT, 16, U16_MAX, tcp.source,  0, tcp_sport),
279088f30bbcSDmytro Linkin 	OFFLOAD(TCP_DPORT, 16, U16_MAX, tcp.dest,    0, tcp_dport),
279188f30bbcSDmytro Linkin 	/* in linux iphdr tcp_flags is 8 bits long */
279288f30bbcSDmytro Linkin 	OFFLOAD(TCP_FLAGS,  8,  U8_MAX, tcp.ack_seq, 5, tcp_flags),
2793d79b6df6SOr Gerlitz 
279488f30bbcSDmytro Linkin 	OFFLOAD(UDP_SPORT, 16, U16_MAX, udp.source, 0, udp_sport),
279588f30bbcSDmytro Linkin 	OFFLOAD(UDP_DPORT, 16, U16_MAX, udp.dest,   0, udp_dport),
2796d79b6df6SOr Gerlitz };
2797d79b6df6SOr Gerlitz 
279882198d8bSMaor Dickman static unsigned long mask_to_le(unsigned long mask, int size)
279982198d8bSMaor Dickman {
280082198d8bSMaor Dickman 	__be32 mask_be32;
280182198d8bSMaor Dickman 	__be16 mask_be16;
280282198d8bSMaor Dickman 
280382198d8bSMaor Dickman 	if (size == 32) {
280482198d8bSMaor Dickman 		mask_be32 = (__force __be32)(mask);
280582198d8bSMaor Dickman 		mask = (__force unsigned long)cpu_to_le32(be32_to_cpu(mask_be32));
280682198d8bSMaor Dickman 	} else if (size == 16) {
280782198d8bSMaor Dickman 		mask_be32 = (__force __be32)(mask);
280882198d8bSMaor Dickman 		mask_be16 = *(__be16 *)&mask_be32;
280982198d8bSMaor Dickman 		mask = (__force unsigned long)cpu_to_le16(be16_to_cpu(mask_be16));
281082198d8bSMaor Dickman 	}
281182198d8bSMaor Dickman 
281282198d8bSMaor Dickman 	return mask;
281382198d8bSMaor Dickman }
28146ae4a6a5SPaul Blakey static int offload_pedit_fields(struct mlx5e_priv *priv,
28156ae4a6a5SPaul Blakey 				int namespace,
28166ae4a6a5SPaul Blakey 				struct pedit_headers_action *hdrs,
2817e98bedf5SEli Britstein 				struct mlx5e_tc_flow_parse_attr *parse_attr,
281827c11b6bSEli Britstein 				u32 *action_flags,
2819e98bedf5SEli Britstein 				struct netlink_ext_ack *extack)
2820d79b6df6SOr Gerlitz {
2821d79b6df6SOr Gerlitz 	struct pedit_headers *set_masks, *add_masks, *set_vals, *add_vals;
282288f30bbcSDmytro Linkin 	void *headers_c, *headers_v, *action, *vals_p;
282388f30bbcSDmytro Linkin 	u32 *s_masks_p, *a_masks_p, s_mask, a_mask;
28246ae4a6a5SPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_acts;
282582198d8bSMaor Dickman 	unsigned long mask, field_mask;
28262c0e5cf5SPaul Blakey 	int i, first, last, next_z;
28272c0e5cf5SPaul Blakey 	struct mlx5_fields *f;
282888f30bbcSDmytro Linkin 	u8 cmd;
282988f30bbcSDmytro Linkin 
28306ae4a6a5SPaul Blakey 	mod_acts = &parse_attr->mod_hdr_acts;
28318ee72638SRoi Dayan 	headers_c = mlx5e_get_match_headers_criteria(*action_flags, &parse_attr->spec);
28328ee72638SRoi Dayan 	headers_v = mlx5e_get_match_headers_value(*action_flags, &parse_attr->spec);
2833d79b6df6SOr Gerlitz 
283473867881SPablo Neira Ayuso 	set_masks = &hdrs[0].masks;
283573867881SPablo Neira Ayuso 	add_masks = &hdrs[1].masks;
283673867881SPablo Neira Ayuso 	set_vals = &hdrs[0].vals;
283773867881SPablo Neira Ayuso 	add_vals = &hdrs[1].vals;
2838d79b6df6SOr Gerlitz 
2839d79b6df6SOr Gerlitz 	for (i = 0; i < ARRAY_SIZE(fields); i++) {
284027c11b6bSEli Britstein 		bool skip;
284127c11b6bSEli Britstein 
2842d79b6df6SOr Gerlitz 		f = &fields[i];
2843d79b6df6SOr Gerlitz 		/* avoid seeing bits set from previous iterations */
2844e3ca4e05SOr Gerlitz 		s_mask = 0;
2845e3ca4e05SOr Gerlitz 		a_mask = 0;
2846d79b6df6SOr Gerlitz 
2847d79b6df6SOr Gerlitz 		s_masks_p = (void *)set_masks + f->offset;
2848d79b6df6SOr Gerlitz 		a_masks_p = (void *)add_masks + f->offset;
2849d79b6df6SOr Gerlitz 
285088f30bbcSDmytro Linkin 		s_mask = *s_masks_p & f->field_mask;
285188f30bbcSDmytro Linkin 		a_mask = *a_masks_p & f->field_mask;
2852d79b6df6SOr Gerlitz 
2853d79b6df6SOr Gerlitz 		if (!s_mask && !a_mask) /* nothing to offload here */
2854d79b6df6SOr Gerlitz 			continue;
2855d79b6df6SOr Gerlitz 
2856d79b6df6SOr Gerlitz 		if (s_mask && a_mask) {
2857e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2858e98bedf5SEli Britstein 					   "can't set and add to the same HW field");
285961b6a6c3SCai Huoqing 			netdev_warn(priv->netdev,
286061b6a6c3SCai Huoqing 				    "mlx5: can't set and add to the same HW field (%x)\n",
286161b6a6c3SCai Huoqing 				    f->field);
2862d79b6df6SOr Gerlitz 			return -EOPNOTSUPP;
2863d79b6df6SOr Gerlitz 		}
2864d79b6df6SOr Gerlitz 
286527c11b6bSEli Britstein 		skip = false;
2866d79b6df6SOr Gerlitz 		if (s_mask) {
286727c11b6bSEli Britstein 			void *match_mask = headers_c + f->match_offset;
286827c11b6bSEli Britstein 			void *match_val = headers_v + f->match_offset;
286927c11b6bSEli Britstein 
2870d79b6df6SOr Gerlitz 			cmd  = MLX5_ACTION_TYPE_SET;
2871d79b6df6SOr Gerlitz 			mask = s_mask;
2872d79b6df6SOr Gerlitz 			vals_p = (void *)set_vals + f->offset;
287327c11b6bSEli Britstein 			/* don't rewrite if we have a match on the same value */
287427c11b6bSEli Britstein 			if (cmp_val_mask(vals_p, s_masks_p, match_val,
287588f30bbcSDmytro Linkin 					 match_mask, f->field_bsize))
287627c11b6bSEli Britstein 				skip = true;
2877d79b6df6SOr Gerlitz 			/* clear to denote we consumed this field */
287888f30bbcSDmytro Linkin 			*s_masks_p &= ~f->field_mask;
2879d79b6df6SOr Gerlitz 		} else {
2880d79b6df6SOr Gerlitz 			cmd  = MLX5_ACTION_TYPE_ADD;
2881d79b6df6SOr Gerlitz 			mask = a_mask;
2882d79b6df6SOr Gerlitz 			vals_p = (void *)add_vals + f->offset;
288327c11b6bSEli Britstein 			/* add 0 is no change */
288488f30bbcSDmytro Linkin 			if ((*(u32 *)vals_p & f->field_mask) == 0)
288527c11b6bSEli Britstein 				skip = true;
2886d79b6df6SOr Gerlitz 			/* clear to denote we consumed this field */
288788f30bbcSDmytro Linkin 			*a_masks_p &= ~f->field_mask;
2888d79b6df6SOr Gerlitz 		}
288927c11b6bSEli Britstein 		if (skip)
289027c11b6bSEli Britstein 			continue;
2891d79b6df6SOr Gerlitz 
289282198d8bSMaor Dickman 		mask = mask_to_le(mask, f->field_bsize);
28932b64bebaSOr Gerlitz 
289488f30bbcSDmytro Linkin 		first = find_first_bit(&mask, f->field_bsize);
289588f30bbcSDmytro Linkin 		next_z = find_next_zero_bit(&mask, f->field_bsize, first);
289688f30bbcSDmytro Linkin 		last  = find_last_bit(&mask, f->field_bsize);
28972b64bebaSOr Gerlitz 		if (first < next_z && next_z < last) {
2898e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2899e98bedf5SEli Britstein 					   "rewrite of few sub-fields isn't supported");
290061b6a6c3SCai Huoqing 			netdev_warn(priv->netdev,
290161b6a6c3SCai Huoqing 				    "mlx5: rewrite of few sub-fields (mask %lx) isn't offloaded\n",
2902d79b6df6SOr Gerlitz 				    mask);
2903d79b6df6SOr Gerlitz 			return -EOPNOTSUPP;
2904d79b6df6SOr Gerlitz 		}
2905d79b6df6SOr Gerlitz 
29062c0e5cf5SPaul Blakey 		action = mlx5e_mod_hdr_alloc(priv->mdev, namespace, mod_acts);
29072c0e5cf5SPaul Blakey 		if (IS_ERR(action)) {
29086ae4a6a5SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
29096ae4a6a5SPaul Blakey 					   "too many pedit actions, can't offload");
29106ae4a6a5SPaul Blakey 			mlx5_core_warn(priv->mdev,
29116ae4a6a5SPaul Blakey 				       "mlx5: parsed %d pedit actions, can't do more\n",
29126ae4a6a5SPaul Blakey 				       mod_acts->num_actions);
29132c0e5cf5SPaul Blakey 			return PTR_ERR(action);
29146ae4a6a5SPaul Blakey 		}
29156ae4a6a5SPaul Blakey 
2916d79b6df6SOr Gerlitz 		MLX5_SET(set_action_in, action, action_type, cmd);
2917d79b6df6SOr Gerlitz 		MLX5_SET(set_action_in, action, field, f->field);
2918d79b6df6SOr Gerlitz 
2919d79b6df6SOr Gerlitz 		if (cmd == MLX5_ACTION_TYPE_SET) {
292088f30bbcSDmytro Linkin 			int start;
292188f30bbcSDmytro Linkin 
292282198d8bSMaor Dickman 			field_mask = mask_to_le(f->field_mask, f->field_bsize);
292382198d8bSMaor Dickman 
292488f30bbcSDmytro Linkin 			/* if field is bit sized it can start not from first bit */
292582198d8bSMaor Dickman 			start = find_first_bit(&field_mask, f->field_bsize);
292688f30bbcSDmytro Linkin 
292788f30bbcSDmytro Linkin 			MLX5_SET(set_action_in, action, offset, first - start);
2928d79b6df6SOr Gerlitz 			/* length is num of bits to be written, zero means length of 32 */
29292b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, length, (last - first + 1));
2930d79b6df6SOr Gerlitz 		}
2931d79b6df6SOr Gerlitz 
293288f30bbcSDmytro Linkin 		if (f->field_bsize == 32)
29332b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, ntohl(*(__be32 *)vals_p) >> first);
293488f30bbcSDmytro Linkin 		else if (f->field_bsize == 16)
29352b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, ntohs(*(__be16 *)vals_p) >> first);
293688f30bbcSDmytro Linkin 		else if (f->field_bsize == 8)
29372b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, *(u8 *)vals_p >> first);
2938d79b6df6SOr Gerlitz 
29396ae4a6a5SPaul Blakey 		++mod_acts->num_actions;
2940d79b6df6SOr Gerlitz 	}
2941d79b6df6SOr Gerlitz 
2942d79b6df6SOr Gerlitz 	return 0;
2943d79b6df6SOr Gerlitz }
2944d79b6df6SOr Gerlitz 
2945d79b6df6SOr Gerlitz static const struct pedit_headers zero_masks = {};
2946d79b6df6SOr Gerlitz 
2947c500c86bSPablo Neira Ayuso static int alloc_tc_pedit_action(struct mlx5e_priv *priv, int namespace,
2948c500c86bSPablo Neira Ayuso 				 struct mlx5e_tc_flow_parse_attr *parse_attr,
2949c500c86bSPablo Neira Ayuso 				 struct pedit_headers_action *hdrs,
295027c11b6bSEli Britstein 				 u32 *action_flags,
2951c500c86bSPablo Neira Ayuso 				 struct netlink_ext_ack *extack)
2952c500c86bSPablo Neira Ayuso {
2953c500c86bSPablo Neira Ayuso 	struct pedit_headers *cmd_masks;
2954c500c86bSPablo Neira Ayuso 	int err;
2955c500c86bSPablo Neira Ayuso 	u8 cmd;
2956c500c86bSPablo Neira Ayuso 
29576ae4a6a5SPaul Blakey 	err = offload_pedit_fields(priv, namespace, hdrs, parse_attr,
29586ae4a6a5SPaul Blakey 				   action_flags, extack);
2959d79b6df6SOr Gerlitz 	if (err < 0)
2960d79b6df6SOr Gerlitz 		goto out_dealloc_parsed_actions;
2961d79b6df6SOr Gerlitz 
2962d79b6df6SOr Gerlitz 	for (cmd = 0; cmd < __PEDIT_CMD_MAX; cmd++) {
2963c500c86bSPablo Neira Ayuso 		cmd_masks = &hdrs[cmd].masks;
2964d79b6df6SOr Gerlitz 		if (memcmp(cmd_masks, &zero_masks, sizeof(zero_masks))) {
2965e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2966e98bedf5SEli Britstein 					   "attempt to offload an unsupported field");
2967b3a433deSOr Gerlitz 			netdev_warn(priv->netdev, "attempt to offload an unsupported field (cmd %d)\n", cmd);
2968d79b6df6SOr Gerlitz 			print_hex_dump(KERN_WARNING, "mask: ", DUMP_PREFIX_ADDRESS,
2969d79b6df6SOr Gerlitz 				       16, 1, cmd_masks, sizeof(zero_masks), true);
2970d79b6df6SOr Gerlitz 			err = -EOPNOTSUPP;
2971d79b6df6SOr Gerlitz 			goto out_dealloc_parsed_actions;
2972d79b6df6SOr Gerlitz 		}
2973d79b6df6SOr Gerlitz 	}
2974d79b6df6SOr Gerlitz 
2975d79b6df6SOr Gerlitz 	return 0;
2976d79b6df6SOr Gerlitz 
2977d79b6df6SOr Gerlitz out_dealloc_parsed_actions:
29782c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
2979d79b6df6SOr Gerlitz 	return err;
2980d79b6df6SOr Gerlitz }
2981d79b6df6SOr Gerlitz 
29828998576bSDmytro Linkin struct ip_ttl_word {
29838998576bSDmytro Linkin 	__u8	ttl;
29848998576bSDmytro Linkin 	__u8	protocol;
29858998576bSDmytro Linkin 	__sum16	check;
29868998576bSDmytro Linkin };
29878998576bSDmytro Linkin 
29888998576bSDmytro Linkin struct ipv6_hoplimit_word {
29898998576bSDmytro Linkin 	__be16	payload_len;
29908998576bSDmytro Linkin 	__u8	nexthdr;
29918998576bSDmytro Linkin 	__u8	hop_limit;
29928998576bSDmytro Linkin };
29938998576bSDmytro Linkin 
29941836d780SRoi Dayan static bool
29951836d780SRoi Dayan is_action_keys_supported(const struct flow_action_entry *act, bool ct_flow,
29961836d780SRoi Dayan 			 bool *modify_ip_header, bool *modify_tuple,
29974c3844d9SPaul Blakey 			 struct netlink_ext_ack *extack)
29988998576bSDmytro Linkin {
29998998576bSDmytro Linkin 	u32 mask, offset;
30008998576bSDmytro Linkin 	u8 htype;
30018998576bSDmytro Linkin 
30028998576bSDmytro Linkin 	htype = act->mangle.htype;
30038998576bSDmytro Linkin 	offset = act->mangle.offset;
30048998576bSDmytro Linkin 	mask = ~act->mangle.mask;
30058998576bSDmytro Linkin 	/* For IPv4 & IPv6 header check 4 byte word,
30068998576bSDmytro Linkin 	 * to determine that modified fields
30078998576bSDmytro Linkin 	 * are NOT ttl & hop_limit only.
30088998576bSDmytro Linkin 	 */
30098998576bSDmytro Linkin 	if (htype == FLOW_ACT_MANGLE_HDR_TYPE_IP4) {
30108998576bSDmytro Linkin 		struct ip_ttl_word *ttl_word =
30118998576bSDmytro Linkin 			(struct ip_ttl_word *)&mask;
30128998576bSDmytro Linkin 
30138998576bSDmytro Linkin 		if (offset != offsetof(struct iphdr, ttl) ||
30148998576bSDmytro Linkin 		    ttl_word->protocol ||
30158998576bSDmytro Linkin 		    ttl_word->check) {
30164c3844d9SPaul Blakey 			*modify_ip_header = true;
30174c3844d9SPaul Blakey 		}
30184c3844d9SPaul Blakey 
30197e36feebSPaul Blakey 		if (offset >= offsetof(struct iphdr, saddr))
30207e36feebSPaul Blakey 			*modify_tuple = true;
30217e36feebSPaul Blakey 
30227e36feebSPaul Blakey 		if (ct_flow && *modify_tuple) {
30234c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30244c3844d9SPaul Blakey 					   "can't offload re-write of ipv4 address with action ct");
30251836d780SRoi Dayan 			return false;
30268998576bSDmytro Linkin 		}
30278998576bSDmytro Linkin 	} else if (htype == FLOW_ACT_MANGLE_HDR_TYPE_IP6) {
30288998576bSDmytro Linkin 		struct ipv6_hoplimit_word *hoplimit_word =
30298998576bSDmytro Linkin 			(struct ipv6_hoplimit_word *)&mask;
30308998576bSDmytro Linkin 
30318998576bSDmytro Linkin 		if (offset != offsetof(struct ipv6hdr, payload_len) ||
30328998576bSDmytro Linkin 		    hoplimit_word->payload_len ||
30338998576bSDmytro Linkin 		    hoplimit_word->nexthdr) {
30344c3844d9SPaul Blakey 			*modify_ip_header = true;
30358998576bSDmytro Linkin 		}
30364c3844d9SPaul Blakey 
30377e36feebSPaul Blakey 		if (ct_flow && offset >= offsetof(struct ipv6hdr, saddr))
30387e36feebSPaul Blakey 			*modify_tuple = true;
30397e36feebSPaul Blakey 
30407e36feebSPaul Blakey 		if (ct_flow && *modify_tuple) {
30414c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30424c3844d9SPaul Blakey 					   "can't offload re-write of ipv6 address with action ct");
30431836d780SRoi Dayan 			return false;
30448998576bSDmytro Linkin 		}
30457e36feebSPaul Blakey 	} else if (htype == FLOW_ACT_MANGLE_HDR_TYPE_TCP ||
30467e36feebSPaul Blakey 		   htype == FLOW_ACT_MANGLE_HDR_TYPE_UDP) {
30477e36feebSPaul Blakey 		*modify_tuple = true;
30487e36feebSPaul Blakey 		if (ct_flow) {
30494c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30504c3844d9SPaul Blakey 					   "can't offload re-write of transport header ports with action ct");
30511836d780SRoi Dayan 			return false;
30524c3844d9SPaul Blakey 		}
30537e36feebSPaul Blakey 	}
30544c3844d9SPaul Blakey 
30551836d780SRoi Dayan 	return true;
30568998576bSDmytro Linkin }
30578998576bSDmytro Linkin 
305896b5b458SDima Chumak static bool modify_tuple_supported(bool modify_tuple, bool ct_clear,
305996b5b458SDima Chumak 				   bool ct_flow, struct netlink_ext_ack *extack,
306096b5b458SDima Chumak 				   struct mlx5e_priv *priv,
306196b5b458SDima Chumak 				   struct mlx5_flow_spec *spec)
306296b5b458SDima Chumak {
306396b5b458SDima Chumak 	if (!modify_tuple || ct_clear)
306496b5b458SDima Chumak 		return true;
306596b5b458SDima Chumak 
306696b5b458SDima Chumak 	if (ct_flow) {
306796b5b458SDima Chumak 		NL_SET_ERR_MSG_MOD(extack,
306896b5b458SDima Chumak 				   "can't offload tuple modification with non-clear ct()");
306996b5b458SDima Chumak 		netdev_info(priv->netdev,
307096b5b458SDima Chumak 			    "can't offload tuple modification with non-clear ct()");
307196b5b458SDima Chumak 		return false;
307296b5b458SDima Chumak 	}
307396b5b458SDima Chumak 
307496b5b458SDima Chumak 	/* Add ct_state=-trk match so it will be offloaded for non ct flows
307596b5b458SDima Chumak 	 * (or after clear action), as otherwise, since the tuple is changed,
307696b5b458SDima Chumak 	 * we can't restore ct state
307796b5b458SDima Chumak 	 */
307896b5b458SDima Chumak 	if (mlx5_tc_ct_add_no_trk_match(spec)) {
307996b5b458SDima Chumak 		NL_SET_ERR_MSG_MOD(extack,
308096b5b458SDima Chumak 				   "can't offload tuple modification with ct matches and no ct(clear) action");
308196b5b458SDima Chumak 		netdev_info(priv->netdev,
308296b5b458SDima Chumak 			    "can't offload tuple modification with ct matches and no ct(clear) action");
308396b5b458SDima Chumak 		return false;
308496b5b458SDima Chumak 	}
308596b5b458SDima Chumak 
308696b5b458SDima Chumak 	return true;
308796b5b458SDima Chumak }
308896b5b458SDima Chumak 
30893d486ec4SOz Shlomo static bool modify_header_match_supported(struct mlx5e_priv *priv,
30903d486ec4SOz Shlomo 					  struct mlx5_flow_spec *spec,
309173867881SPablo Neira Ayuso 					  struct flow_action *flow_action,
30924c3844d9SPaul Blakey 					  u32 actions, bool ct_flow,
30937e36feebSPaul Blakey 					  bool ct_clear,
3094e98bedf5SEli Britstein 					  struct netlink_ext_ack *extack)
3095bdd66ac0SOr Gerlitz {
309673867881SPablo Neira Ayuso 	const struct flow_action_entry *act;
30977e36feebSPaul Blakey 	bool modify_ip_header, modify_tuple;
3098fca53304SEli Britstein 	void *headers_c;
3099bdd66ac0SOr Gerlitz 	void *headers_v;
3100bdd66ac0SOr Gerlitz 	u16 ethertype;
31018998576bSDmytro Linkin 	u8 ip_proto;
31021836d780SRoi Dayan 	int i;
3103bdd66ac0SOr Gerlitz 
31048ee72638SRoi Dayan 	headers_c = mlx5e_get_match_headers_criteria(actions, spec);
31058ee72638SRoi Dayan 	headers_v = mlx5e_get_match_headers_value(actions, spec);
3106bdd66ac0SOr Gerlitz 	ethertype = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ethertype);
3107bdd66ac0SOr Gerlitz 
3108bdd66ac0SOr Gerlitz 	/* for non-IP we only re-write MACs, so we're okay */
3109fca53304SEli Britstein 	if (MLX5_GET(fte_match_set_lyr_2_4, headers_c, ip_version) == 0 &&
3110fca53304SEli Britstein 	    ethertype != ETH_P_IP && ethertype != ETH_P_IPV6)
3111bdd66ac0SOr Gerlitz 		goto out_ok;
3112bdd66ac0SOr Gerlitz 
3113bdd66ac0SOr Gerlitz 	modify_ip_header = false;
31147e36feebSPaul Blakey 	modify_tuple = false;
311573867881SPablo Neira Ayuso 	flow_action_for_each(i, act, flow_action) {
311673867881SPablo Neira Ayuso 		if (act->id != FLOW_ACTION_MANGLE &&
311773867881SPablo Neira Ayuso 		    act->id != FLOW_ACTION_ADD)
3118bdd66ac0SOr Gerlitz 			continue;
3119bdd66ac0SOr Gerlitz 
31201836d780SRoi Dayan 		if (!is_action_keys_supported(act, ct_flow,
31217e36feebSPaul Blakey 					      &modify_ip_header,
31221836d780SRoi Dayan 					      &modify_tuple, extack))
31231836d780SRoi Dayan 			return false;
3124bdd66ac0SOr Gerlitz 	}
3125bdd66ac0SOr Gerlitz 
312696b5b458SDima Chumak 	if (!modify_tuple_supported(modify_tuple, ct_clear, ct_flow, extack,
312796b5b458SDima Chumak 				    priv, spec))
31287e36feebSPaul Blakey 		return false;
31297e36feebSPaul Blakey 
3130bdd66ac0SOr Gerlitz 	ip_proto = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ip_protocol);
31311ccef350SJianbo Liu 	if (modify_ip_header && ip_proto != IPPROTO_TCP &&
31321ccef350SJianbo Liu 	    ip_proto != IPPROTO_UDP && ip_proto != IPPROTO_ICMP) {
3133e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
3134e98bedf5SEli Britstein 				   "can't offload re-write of non TCP/UDP");
31353d486ec4SOz Shlomo 		netdev_info(priv->netdev, "can't offload re-write of ip proto %d\n",
31363d486ec4SOz Shlomo 			    ip_proto);
3137bdd66ac0SOr Gerlitz 		return false;
3138bdd66ac0SOr Gerlitz 	}
3139bdd66ac0SOr Gerlitz 
3140bdd66ac0SOr Gerlitz out_ok:
3141bdd66ac0SOr Gerlitz 	return true;
3142bdd66ac0SOr Gerlitz }
3143bdd66ac0SOr Gerlitz 
31449c1d3511SRoi Dayan static bool
31459c1d3511SRoi Dayan actions_match_supported_fdb(struct mlx5e_priv *priv,
31469c1d3511SRoi Dayan 			    struct mlx5e_tc_flow_parse_attr *parse_attr,
31479c1d3511SRoi Dayan 			    struct mlx5e_tc_flow *flow,
31489c1d3511SRoi Dayan 			    struct netlink_ext_ack *extack)
31499c1d3511SRoi Dayan {
3150d4f401d9SRoi Dayan 	struct mlx5_esw_flow_attr *esw_attr = flow->attr->esw_attr;
31519c1d3511SRoi Dayan 	bool ct_flow, ct_clear;
31529c1d3511SRoi Dayan 
31539c1d3511SRoi Dayan 	ct_clear = flow->attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR;
31549c1d3511SRoi Dayan 	ct_flow = flow_flag_test(flow, CT) && !ct_clear;
31559c1d3511SRoi Dayan 
3156d4f401d9SRoi Dayan 	if (esw_attr->split_count && ct_flow &&
3157d4f401d9SRoi Dayan 	    !MLX5_CAP_GEN(esw_attr->in_mdev, reg_c_preserve)) {
31589c1d3511SRoi Dayan 		/* All registers used by ct are cleared when using
31599c1d3511SRoi Dayan 		 * split rules.
31609c1d3511SRoi Dayan 		 */
31619c1d3511SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Can't offload mirroring with action ct");
31629c1d3511SRoi Dayan 		return false;
31639c1d3511SRoi Dayan 	}
31649c1d3511SRoi Dayan 
3165d4f401d9SRoi Dayan 	if (esw_attr->split_count > 0 && !mlx5_esw_has_fwd_fdb(priv->mdev)) {
3166d4f401d9SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
3167d4f401d9SRoi Dayan 				   "current firmware doesn't support split rule for port mirroring");
3168d4f401d9SRoi Dayan 		netdev_warn_once(priv->netdev,
3169d4f401d9SRoi Dayan 				 "current firmware doesn't support split rule for port mirroring\n");
3170d4f401d9SRoi Dayan 		return false;
3171d4f401d9SRoi Dayan 	}
3172d4f401d9SRoi Dayan 
31739c1d3511SRoi Dayan 	return true;
31749c1d3511SRoi Dayan }
31759c1d3511SRoi Dayan 
31769c1d3511SRoi Dayan static bool
31779c1d3511SRoi Dayan actions_match_supported(struct mlx5e_priv *priv,
317873867881SPablo Neira Ayuso 			struct flow_action *flow_action,
3179bdd66ac0SOr Gerlitz 			struct mlx5e_tc_flow_parse_attr *parse_attr,
3180e98bedf5SEli Britstein 			struct mlx5e_tc_flow *flow,
3181e98bedf5SEli Britstein 			struct netlink_ext_ack *extack)
3182bdd66ac0SOr Gerlitz {
31839c1d3511SRoi Dayan 	u32 actions = flow->attr->action;
31849c1d3511SRoi Dayan 	bool ct_flow, ct_clear;
3185bdd66ac0SOr Gerlitz 
31869c1d3511SRoi Dayan 	ct_clear = flow->attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR;
3187a7c119bdSPaul Blakey 	ct_flow = flow_flag_test(flow, CT) && !ct_clear;
3188c620b772SAriel Levkovich 
31896b50cf45SRoi Dayan 	if (!(actions &
31906b50cf45SRoi Dayan 	      (MLX5_FLOW_CONTEXT_ACTION_FWD_DEST | MLX5_FLOW_CONTEXT_ACTION_DROP))) {
31916b50cf45SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Rule must have at least one forward/drop action");
31926b50cf45SRoi Dayan 		return false;
31936b50cf45SRoi Dayan 	}
31946b50cf45SRoi Dayan 
31955623ef8aSRoi Dayan 	if (!(~actions &
31965623ef8aSRoi Dayan 	      (MLX5_FLOW_CONTEXT_ACTION_FWD_DEST | MLX5_FLOW_CONTEXT_ACTION_DROP))) {
31975623ef8aSRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Rule cannot support forward+drop action");
31985623ef8aSRoi Dayan 		return false;
31995623ef8aSRoi Dayan 	}
32005623ef8aSRoi Dayan 
32019c1d3511SRoi Dayan 	if (actions & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
3202a2446bc7SRoi Dayan 	    actions & MLX5_FLOW_CONTEXT_ACTION_DROP) {
3203a2446bc7SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Drop with modify header action is not supported");
3204a2446bc7SRoi Dayan 		return false;
3205a2446bc7SRoi Dayan 	}
3206a2446bc7SRoi Dayan 
3207a2446bc7SRoi Dayan 	if (actions & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
3208*23216d38SRoi Dayan 	    actions & MLX5_FLOW_CONTEXT_ACTION_DROP) {
3209*23216d38SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Drop with modify header action is not supported");
3210*23216d38SRoi Dayan 		return false;
3211*23216d38SRoi Dayan 	}
3212*23216d38SRoi Dayan 
3213*23216d38SRoi Dayan 	if (actions & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
32149c1d3511SRoi Dayan 	    !modify_header_match_supported(priv, &parse_attr->spec, flow_action,
32159c1d3511SRoi Dayan 					   actions, ct_flow, ct_clear, extack))
321649397b80SDan Carpenter 		return false;
3217bdd66ac0SOr Gerlitz 
32189c1d3511SRoi Dayan 	if (mlx5e_is_eswitch_flow(flow) &&
32199c1d3511SRoi Dayan 	    !actions_match_supported_fdb(priv, parse_attr, flow, extack))
32209c1d3511SRoi Dayan 		return false;
3221bdd66ac0SOr Gerlitz 
3222bdd66ac0SOr Gerlitz 	return true;
3223bdd66ac0SOr Gerlitz }
3224bdd66ac0SOr Gerlitz 
322532134847SMaor Dickman static bool same_port_devs(struct mlx5e_priv *priv, struct mlx5e_priv *peer_priv)
322632134847SMaor Dickman {
322732134847SMaor Dickman 	return priv->mdev == peer_priv->mdev;
322832134847SMaor Dickman }
322932134847SMaor Dickman 
3230ab3f3d5eSRoi Dayan bool mlx5e_same_hw_devs(struct mlx5e_priv *priv, struct mlx5e_priv *peer_priv)
32315c65c564SOr Gerlitz {
32325c65c564SOr Gerlitz 	struct mlx5_core_dev *fmdev, *pmdev;
3233816f6706SOr Gerlitz 	u64 fsystem_guid, psystem_guid;
32345c65c564SOr Gerlitz 
32355c65c564SOr Gerlitz 	fmdev = priv->mdev;
32365c65c564SOr Gerlitz 	pmdev = peer_priv->mdev;
32375c65c564SOr Gerlitz 
323859c9d35eSAlaa Hleihel 	fsystem_guid = mlx5_query_nic_system_image_guid(fmdev);
323959c9d35eSAlaa Hleihel 	psystem_guid = mlx5_query_nic_system_image_guid(pmdev);
32405c65c564SOr Gerlitz 
3241816f6706SOr Gerlitz 	return (fsystem_guid == psystem_guid);
32425c65c564SOr Gerlitz }
32435c65c564SOr Gerlitz 
32440bac1194SEli Britstein static int
32458333d53eSRoi Dayan parse_tc_actions(struct mlx5e_tc_act_parse_state *parse_state,
32468333d53eSRoi Dayan 		 struct flow_action *flow_action)
32478333d53eSRoi Dayan {
32488333d53eSRoi Dayan 	struct netlink_ext_ack *extack = parse_state->extack;
32498333d53eSRoi Dayan 	struct mlx5e_tc_flow *flow = parse_state->flow;
32508333d53eSRoi Dayan 	struct mlx5_flow_attr *attr = flow->attr;
32518333d53eSRoi Dayan 	enum mlx5_flow_namespace_type ns_type;
32528333d53eSRoi Dayan 	struct mlx5e_priv *priv = flow->priv;
32538333d53eSRoi Dayan 	const struct flow_action_entry *act;
32548333d53eSRoi Dayan 	struct mlx5e_tc_act *tc_act;
32558333d53eSRoi Dayan 	int err, i;
32568333d53eSRoi Dayan 
32578333d53eSRoi Dayan 	ns_type = mlx5e_get_flow_namespace(flow);
32588333d53eSRoi Dayan 
32598333d53eSRoi Dayan 	flow_action_for_each(i, act, flow_action) {
32608333d53eSRoi Dayan 		tc_act = mlx5e_tc_act_get(act->id, ns_type);
32618333d53eSRoi Dayan 		if (!tc_act) {
32628333d53eSRoi Dayan 			NL_SET_ERR_MSG_MOD(extack, "Not implemented offload action");
32638333d53eSRoi Dayan 			return -EOPNOTSUPP;
32648333d53eSRoi Dayan 		}
32658333d53eSRoi Dayan 
32668333d53eSRoi Dayan 		if (!tc_act->can_offload(parse_state, act, i))
32678333d53eSRoi Dayan 			return -EOPNOTSUPP;
32688333d53eSRoi Dayan 
32698333d53eSRoi Dayan 		err = tc_act->parse_action(parse_state, act, priv, attr);
32708333d53eSRoi Dayan 		if (err)
32718333d53eSRoi Dayan 			return err;
32728333d53eSRoi Dayan 	}
32738333d53eSRoi Dayan 
3274dd5ab6d1SRoi Dayan 	flow_action_for_each(i, act, flow_action) {
3275dd5ab6d1SRoi Dayan 		tc_act = mlx5e_tc_act_get(act->id, ns_type);
3276dd5ab6d1SRoi Dayan 		if (!tc_act || !tc_act->post_parse ||
3277dd5ab6d1SRoi Dayan 		    !tc_act->can_offload(parse_state, act, i))
3278dd5ab6d1SRoi Dayan 			continue;
3279dd5ab6d1SRoi Dayan 
3280dd5ab6d1SRoi Dayan 		err = tc_act->post_parse(parse_state, priv, attr);
3281dd5ab6d1SRoi Dayan 		if (err)
3282dd5ab6d1SRoi Dayan 			return err;
3283dd5ab6d1SRoi Dayan 	}
3284dd5ab6d1SRoi Dayan 
32858333d53eSRoi Dayan 	return 0;
32868333d53eSRoi Dayan }
32878333d53eSRoi Dayan 
32888333d53eSRoi Dayan static int
3289d9581e2fSRoi Dayan actions_prepare_mod_hdr_actions(struct mlx5e_priv *priv,
3290d9581e2fSRoi Dayan 				struct mlx5e_tc_flow *flow,
3291d9581e2fSRoi Dayan 				struct mlx5_flow_attr *attr,
3292d9581e2fSRoi Dayan 				struct pedit_headers_action *hdrs,
3293d9581e2fSRoi Dayan 				struct netlink_ext_ack *extack)
3294d9581e2fSRoi Dayan {
3295d9581e2fSRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr = attr->parse_attr;
3296d9581e2fSRoi Dayan 	enum mlx5_flow_namespace_type ns_type;
3297d9581e2fSRoi Dayan 	int err;
3298d9581e2fSRoi Dayan 
3299d9581e2fSRoi Dayan 	if (!hdrs[TCA_PEDIT_KEY_EX_CMD_SET].pedits &&
3300d9581e2fSRoi Dayan 	    !hdrs[TCA_PEDIT_KEY_EX_CMD_ADD].pedits)
3301d9581e2fSRoi Dayan 		return 0;
3302d9581e2fSRoi Dayan 
3303e36db1eeSRoi Dayan 	ns_type = mlx5e_get_flow_namespace(flow);
3304d9581e2fSRoi Dayan 
3305d9581e2fSRoi Dayan 	err = alloc_tc_pedit_action(priv, ns_type, parse_attr, hdrs,
3306d9581e2fSRoi Dayan 				    &attr->action, extack);
3307d9581e2fSRoi Dayan 	if (err)
3308d9581e2fSRoi Dayan 		return err;
3309d9581e2fSRoi Dayan 
3310d9581e2fSRoi Dayan 	if (parse_attr->mod_hdr_acts.num_actions > 0)
3311d9581e2fSRoi Dayan 		return 0;
3312d9581e2fSRoi Dayan 
3313fc3a879aSRoi Dayan 	/* In case all pedit actions are skipped, remove the MOD_HDR flag. */
3314d9581e2fSRoi Dayan 	attr->action &= ~MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
33152c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
3316d9581e2fSRoi Dayan 
3317d9581e2fSRoi Dayan 	if (ns_type != MLX5_FLOW_NAMESPACE_FDB)
3318d9581e2fSRoi Dayan 		return 0;
3319d9581e2fSRoi Dayan 
3320d9581e2fSRoi Dayan 	if (!((attr->action & MLX5_FLOW_CONTEXT_ACTION_VLAN_POP) ||
3321d9581e2fSRoi Dayan 	      (attr->action & MLX5_FLOW_CONTEXT_ACTION_VLAN_PUSH)))
3322d9581e2fSRoi Dayan 		attr->esw_attr->split_count = 0;
3323d9581e2fSRoi Dayan 
3324d9581e2fSRoi Dayan 	return 0;
3325d9581e2fSRoi Dayan }
3326d9581e2fSRoi Dayan 
3327d9581e2fSRoi Dayan static int
3328df990477SRoi Dayan flow_action_supported(struct flow_action *flow_action,
3329df990477SRoi Dayan 		      struct netlink_ext_ack *extack)
3330df990477SRoi Dayan {
3331df990477SRoi Dayan 	if (!flow_action_has_entries(flow_action)) {
3332df990477SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Flow action doesn't have any entries");
3333df990477SRoi Dayan 		return -EINVAL;
3334df990477SRoi Dayan 	}
3335df990477SRoi Dayan 
3336df990477SRoi Dayan 	if (!flow_action_hw_stats_check(flow_action, extack,
3337df990477SRoi Dayan 					FLOW_ACTION_HW_STATS_DELAYED_BIT)) {
3338df990477SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Flow action HW stats type is not supported");
3339df990477SRoi Dayan 		return -EOPNOTSUPP;
3340df990477SRoi Dayan 	}
3341df990477SRoi Dayan 
3342df990477SRoi Dayan 	return 0;
3343df990477SRoi Dayan }
3344df990477SRoi Dayan 
3345df990477SRoi Dayan static int
3346d9581e2fSRoi Dayan parse_tc_nic_actions(struct mlx5e_priv *priv,
334773867881SPablo Neira Ayuso 		     struct flow_action *flow_action,
3348e98bedf5SEli Britstein 		     struct mlx5e_tc_flow *flow,
3349e98bedf5SEli Britstein 		     struct netlink_ext_ack *extack)
3350e3a2b7edSAmir Vadai {
3351fad54790SRoi Dayan 	struct mlx5e_tc_act_parse_state *parse_state;
3352c6cfe113SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3353c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3354e36db1eeSRoi Dayan 	struct pedit_headers_action *hdrs;
33558333d53eSRoi Dayan 	int err;
3356e3a2b7edSAmir Vadai 
3357df990477SRoi Dayan 	err = flow_action_supported(flow_action, extack);
3358df990477SRoi Dayan 	if (err)
3359df990477SRoi Dayan 		return err;
3360319a1d19SJiri Pirko 
3361fad54790SRoi Dayan 	attr->nic_attr->flow_tag = MLX5_FS_DEFAULT_FLOW_TAG;
3362c6cfe113SRoi Dayan 	parse_attr = attr->parse_attr;
3363fad54790SRoi Dayan 	parse_state = &parse_attr->parse_state;
3364fad54790SRoi Dayan 	mlx5e_tc_act_init_parse_state(parse_state, flow, flow_action, extack);
3365758bc134SRoi Dayan 	parse_state->ct_priv = get_ct_priv(priv);
3366e36db1eeSRoi Dayan 	hdrs = parse_state->hdrs;
3367e3a2b7edSAmir Vadai 
33688333d53eSRoi Dayan 	err = parse_tc_actions(parse_state, flow_action);
3369fad54790SRoi Dayan 	if (err)
3370fad54790SRoi Dayan 		return err;
3371e3a2b7edSAmir Vadai 
3372d9581e2fSRoi Dayan 	err = actions_prepare_mod_hdr_actions(priv, flow, attr, hdrs, extack);
3373d9581e2fSRoi Dayan 	if (err)
3374d9581e2fSRoi Dayan 		return err;
3375d9581e2fSRoi Dayan 
337673867881SPablo Neira Ayuso 	if (!actions_match_supported(priv, flow_action, parse_attr, flow, extack))
3377bdd66ac0SOr Gerlitz 		return -EOPNOTSUPP;
3378bdd66ac0SOr Gerlitz 
3379e3a2b7edSAmir Vadai 	return 0;
3380e3a2b7edSAmir Vadai }
3381e3a2b7edSAmir Vadai 
338232134847SMaor Dickman static bool is_merged_eswitch_vfs(struct mlx5e_priv *priv,
3383b1d90e6bSRabie Loulou 				  struct net_device *peer_netdev)
3384b1d90e6bSRabie Loulou {
3385b1d90e6bSRabie Loulou 	struct mlx5e_priv *peer_priv;
3386b1d90e6bSRabie Loulou 
3387b1d90e6bSRabie Loulou 	peer_priv = netdev_priv(peer_netdev);
3388b1d90e6bSRabie Loulou 
3389b1d90e6bSRabie Loulou 	return (MLX5_CAP_ESW(priv->mdev, merged_eswitch) &&
339032134847SMaor Dickman 		mlx5e_eswitch_vf_rep(priv->netdev) &&
339132134847SMaor Dickman 		mlx5e_eswitch_vf_rep(peer_netdev) &&
3392ab3f3d5eSRoi Dayan 		mlx5e_same_hw_devs(priv, peer_priv));
3393d34eb2fcSOr Gerlitz }
3394d34eb2fcSOr Gerlitz 
339532134847SMaor Dickman static bool same_hw_reps(struct mlx5e_priv *priv,
339632134847SMaor Dickman 			 struct net_device *peer_netdev)
339732134847SMaor Dickman {
339832134847SMaor Dickman 	struct mlx5e_priv *peer_priv;
339932134847SMaor Dickman 
340032134847SMaor Dickman 	peer_priv = netdev_priv(peer_netdev);
340132134847SMaor Dickman 
340232134847SMaor Dickman 	return mlx5e_eswitch_rep(priv->netdev) &&
340332134847SMaor Dickman 	       mlx5e_eswitch_rep(peer_netdev) &&
3404ab3f3d5eSRoi Dayan 	       mlx5e_same_hw_devs(priv, peer_priv);
340532134847SMaor Dickman }
340632134847SMaor Dickman 
340732134847SMaor Dickman static bool is_lag_dev(struct mlx5e_priv *priv,
340832134847SMaor Dickman 		       struct net_device *peer_netdev)
340932134847SMaor Dickman {
341032134847SMaor Dickman 	return ((mlx5_lag_is_sriov(priv->mdev) ||
341132134847SMaor Dickman 		 mlx5_lag_is_multipath(priv->mdev)) &&
341232134847SMaor Dickman 		 same_hw_reps(priv, peer_netdev));
341332134847SMaor Dickman }
341432134847SMaor Dickman 
3415f6dc1264SPaul Blakey bool mlx5e_is_valid_eswitch_fwd_dev(struct mlx5e_priv *priv,
3416f6dc1264SPaul Blakey 				    struct net_device *out_dev)
3417f6dc1264SPaul Blakey {
341832134847SMaor Dickman 	if (is_merged_eswitch_vfs(priv, out_dev))
341932134847SMaor Dickman 		return true;
342032134847SMaor Dickman 
342132134847SMaor Dickman 	if (is_lag_dev(priv, out_dev))
3422f6dc1264SPaul Blakey 		return true;
3423f6dc1264SPaul Blakey 
3424f6dc1264SPaul Blakey 	return mlx5e_eswitch_rep(out_dev) &&
342532134847SMaor Dickman 	       same_port_devs(priv, netdev_priv(out_dev));
3426f6dc1264SPaul Blakey }
3427f6dc1264SPaul Blakey 
342827484f71SAriel Levkovich int mlx5e_set_fwd_to_int_port_actions(struct mlx5e_priv *priv,
342927484f71SAriel Levkovich 				      struct mlx5_flow_attr *attr,
343027484f71SAriel Levkovich 				      int ifindex,
343127484f71SAriel Levkovich 				      enum mlx5e_tc_int_port_type type,
343227484f71SAriel Levkovich 				      u32 *action,
343327484f71SAriel Levkovich 				      int out_index)
343427484f71SAriel Levkovich {
343527484f71SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = attr->esw_attr;
343627484f71SAriel Levkovich 	struct mlx5e_tc_int_port_priv *int_port_priv;
343727484f71SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
343827484f71SAriel Levkovich 	struct mlx5e_tc_int_port *dest_int_port;
343927484f71SAriel Levkovich 	int err;
344027484f71SAriel Levkovich 
344127484f71SAriel Levkovich 	parse_attr = attr->parse_attr;
344227484f71SAriel Levkovich 	int_port_priv = mlx5e_get_int_port_priv(priv);
344327484f71SAriel Levkovich 
344427484f71SAriel Levkovich 	dest_int_port = mlx5e_tc_int_port_get(int_port_priv, ifindex, type);
344527484f71SAriel Levkovich 	if (IS_ERR(dest_int_port))
344627484f71SAriel Levkovich 		return PTR_ERR(dest_int_port);
344727484f71SAriel Levkovich 
344827484f71SAriel Levkovich 	err = mlx5e_tc_match_to_reg_set(priv->mdev, &parse_attr->mod_hdr_acts,
344927484f71SAriel Levkovich 					MLX5_FLOW_NAMESPACE_FDB, VPORT_TO_REG,
345027484f71SAriel Levkovich 					mlx5e_tc_int_port_get_metadata(dest_int_port));
345127484f71SAriel Levkovich 	if (err) {
345227484f71SAriel Levkovich 		mlx5e_tc_int_port_put(int_port_priv, dest_int_port);
345327484f71SAriel Levkovich 		return err;
345427484f71SAriel Levkovich 	}
345527484f71SAriel Levkovich 
345627484f71SAriel Levkovich 	*action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
345727484f71SAriel Levkovich 
345827484f71SAriel Levkovich 	esw_attr->dest_int_port = dest_int_port;
345927484f71SAriel Levkovich 	esw_attr->dests[out_index].flags |= MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE;
346027484f71SAriel Levkovich 
346127484f71SAriel Levkovich 	/* Forward to root fdb for matching against the new source vport */
346227484f71SAriel Levkovich 	attr->dest_chain = 0;
346327484f71SAriel Levkovich 
346427484f71SAriel Levkovich 	return 0;
346527484f71SAriel Levkovich }
346627484f71SAriel Levkovich 
34678333d53eSRoi Dayan static int
34688333d53eSRoi Dayan parse_tc_fdb_actions(struct mlx5e_priv *priv,
346973867881SPablo Neira Ayuso 		     struct flow_action *flow_action,
3470e98bedf5SEli Britstein 		     struct mlx5e_tc_flow *flow,
347170f8019eSRoi Dayan 		     struct netlink_ext_ack *extack)
3472a54e20b4SHadar Hen Zion {
3473fad54790SRoi Dayan 	struct mlx5e_tc_act_parse_state *parse_state;
3474c620b772SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3475c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3476c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr;
3477e36db1eeSRoi Dayan 	struct pedit_headers_action *hdrs;
34788333d53eSRoi Dayan 	int err;
347903a9d11eSOr Gerlitz 
3480df990477SRoi Dayan 	err = flow_action_supported(flow_action, extack);
3481df990477SRoi Dayan 	if (err)
3482df990477SRoi Dayan 		return err;
3483319a1d19SJiri Pirko 
3484c620b772SAriel Levkovich 	esw_attr = attr->esw_attr;
3485c620b772SAriel Levkovich 	parse_attr = attr->parse_attr;
3486fad54790SRoi Dayan 	parse_state = &parse_attr->parse_state;
3487fad54790SRoi Dayan 	mlx5e_tc_act_init_parse_state(parse_state, flow, flow_action, extack);
3488758bc134SRoi Dayan 	parse_state->ct_priv = get_ct_priv(priv);
3489e36db1eeSRoi Dayan 	hdrs = parse_state->hdrs;
3490c620b772SAriel Levkovich 
34918333d53eSRoi Dayan 	err = parse_tc_actions(parse_state, flow_action);
3492fad54790SRoi Dayan 	if (err)
3493fad54790SRoi Dayan 		return err;
3494bdd66ac0SOr Gerlitz 
3495166f431eSAriel Levkovich 	/* Forward to/from internal port can only have 1 dest */
3496166f431eSAriel Levkovich 	if ((netif_is_ovs_master(parse_attr->filter_dev) || esw_attr->dest_int_port) &&
3497166f431eSAriel Levkovich 	    esw_attr->out_count > 1) {
349827484f71SAriel Levkovich 		NL_SET_ERR_MSG_MOD(extack,
3499166f431eSAriel Levkovich 				   "Rules with internal port can have only one destination");
350027484f71SAriel Levkovich 		return -EOPNOTSUPP;
350127484f71SAriel Levkovich 	}
350227484f71SAriel Levkovich 
3503d9581e2fSRoi Dayan 	err = actions_prepare_mod_hdr_actions(priv, flow, attr, hdrs, extack);
3504c500c86bSPablo Neira Ayuso 	if (err)
3505c500c86bSPablo Neira Ayuso 		return err;
3506c500c86bSPablo Neira Ayuso 
350773867881SPablo Neira Ayuso 	if (!actions_match_supported(priv, flow_action, parse_attr, flow, extack))
3508bdd66ac0SOr Gerlitz 		return -EOPNOTSUPP;
3509bdd66ac0SOr Gerlitz 
351031c8eba5SOr Gerlitz 	return 0;
351103a9d11eSOr Gerlitz }
351203a9d11eSOr Gerlitz 
3513226f2ca3SVlad Buslov static void get_flags(int flags, unsigned long *flow_flags)
351460bd4af8SOr Gerlitz {
3515226f2ca3SVlad Buslov 	unsigned long __flow_flags = 0;
351660bd4af8SOr Gerlitz 
3517226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(INGRESS))
3518226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_INGRESS);
3519226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(EGRESS))
3520226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_EGRESS);
352160bd4af8SOr Gerlitz 
3522226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(ESW_OFFLOAD))
3523226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_ESWITCH);
3524226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(NIC_OFFLOAD))
3525226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_NIC);
352684179981SPaul Blakey 	if (flags & MLX5_TC_FLAG(FT_OFFLOAD))
352784179981SPaul Blakey 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_FT);
3528d9ee0491SOr Gerlitz 
352960bd4af8SOr Gerlitz 	*flow_flags = __flow_flags;
353060bd4af8SOr Gerlitz }
353160bd4af8SOr Gerlitz 
353205866c82SOr Gerlitz static const struct rhashtable_params tc_ht_params = {
353305866c82SOr Gerlitz 	.head_offset = offsetof(struct mlx5e_tc_flow, node),
353405866c82SOr Gerlitz 	.key_offset = offsetof(struct mlx5e_tc_flow, cookie),
353505866c82SOr Gerlitz 	.key_len = sizeof(((struct mlx5e_tc_flow *)0)->cookie),
353605866c82SOr Gerlitz 	.automatic_shrinking = true,
353705866c82SOr Gerlitz };
353805866c82SOr Gerlitz 
3539226f2ca3SVlad Buslov static struct rhashtable *get_tc_ht(struct mlx5e_priv *priv,
3540226f2ca3SVlad Buslov 				    unsigned long flags)
354105866c82SOr Gerlitz {
3542655dc3d2SOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3543655dc3d2SOr Gerlitz 	struct mlx5e_rep_priv *uplink_rpriv;
3544655dc3d2SOr Gerlitz 
3545226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(ESW_OFFLOAD)) {
3546655dc3d2SOr Gerlitz 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
3547ec1366c2SOz Shlomo 		return &uplink_rpriv->uplink_priv.tc_ht;
3548d9ee0491SOr Gerlitz 	} else /* NIC offload */
354905866c82SOr Gerlitz 		return &priv->fs.tc.ht;
355005866c82SOr Gerlitz }
355105866c82SOr Gerlitz 
355204de7ddaSRoi Dayan static bool is_peer_flow_needed(struct mlx5e_tc_flow *flow)
355304de7ddaSRoi Dayan {
3554c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = flow->attr->esw_attr;
3555c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3556c620b772SAriel Levkovich 	bool is_rep_ingress = esw_attr->in_rep->vport != MLX5_VPORT_UPLINK &&
3557226f2ca3SVlad Buslov 		flow_flag_test(flow, INGRESS);
35581418ddd9SAviv Heller 	bool act_is_encap = !!(attr->action &
35591418ddd9SAviv Heller 			       MLX5_FLOW_CONTEXT_ACTION_PACKET_REFORMAT);
3560c620b772SAriel Levkovich 	bool esw_paired = mlx5_devcom_is_paired(esw_attr->in_mdev->priv.devcom,
35611418ddd9SAviv Heller 						MLX5_DEVCOM_ESW_OFFLOADS);
35621418ddd9SAviv Heller 
356310fbb1cdSRoi Dayan 	if (!esw_paired)
356410fbb1cdSRoi Dayan 		return false;
356510fbb1cdSRoi Dayan 
3566c620b772SAriel Levkovich 	if ((mlx5_lag_is_sriov(esw_attr->in_mdev) ||
3567c620b772SAriel Levkovich 	     mlx5_lag_is_multipath(esw_attr->in_mdev)) &&
356810fbb1cdSRoi Dayan 	    (is_rep_ingress || act_is_encap))
356910fbb1cdSRoi Dayan 		return true;
357010fbb1cdSRoi Dayan 
357110fbb1cdSRoi Dayan 	return false;
357204de7ddaSRoi Dayan }
357304de7ddaSRoi Dayan 
3574c620b772SAriel Levkovich struct mlx5_flow_attr *
3575c620b772SAriel Levkovich mlx5_alloc_flow_attr(enum mlx5_flow_namespace_type type)
3576c620b772SAriel Levkovich {
3577c620b772SAriel Levkovich 	u32 ex_attr_size = (type == MLX5_FLOW_NAMESPACE_FDB)  ?
3578c620b772SAriel Levkovich 				sizeof(struct mlx5_esw_flow_attr) :
3579c620b772SAriel Levkovich 				sizeof(struct mlx5_nic_flow_attr);
3580c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr;
3581c620b772SAriel Levkovich 
3582c620b772SAriel Levkovich 	return kzalloc(sizeof(*attr) + ex_attr_size, GFP_KERNEL);
3583c620b772SAriel Levkovich }
3584c620b772SAriel Levkovich 
3585a88780a9SRoi Dayan static int
3586a88780a9SRoi Dayan mlx5e_alloc_flow(struct mlx5e_priv *priv, int attr_size,
3587226f2ca3SVlad Buslov 		 struct flow_cls_offload *f, unsigned long flow_flags,
3588a88780a9SRoi Dayan 		 struct mlx5e_tc_flow_parse_attr **__parse_attr,
3589a88780a9SRoi Dayan 		 struct mlx5e_tc_flow **__flow)
3590e3a2b7edSAmir Vadai {
359117091853SOr Gerlitz 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3592c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr;
35933bc4b7bfSOr Gerlitz 	struct mlx5e_tc_flow *flow;
3594ff7ea04aSGustavo A. R. Silva 	int err = -ENOMEM;
3595ff7ea04aSGustavo A. R. Silva 	int out_index;
3596776b12b6SOr Gerlitz 
3597c620b772SAriel Levkovich 	flow = kzalloc(sizeof(*flow), GFP_KERNEL);
35981b9a07eeSLeon Romanovsky 	parse_attr = kvzalloc(sizeof(*parse_attr), GFP_KERNEL);
3599ff7ea04aSGustavo A. R. Silva 	if (!parse_attr || !flow)
3600ff7ea04aSGustavo A. R. Silva 		goto err_free;
3601c620b772SAriel Levkovich 
3602c620b772SAriel Levkovich 	flow->flags = flow_flags;
3603c620b772SAriel Levkovich 	flow->cookie = f->cookie;
3604c620b772SAriel Levkovich 	flow->priv = priv;
3605c620b772SAriel Levkovich 
3606e36db1eeSRoi Dayan 	attr = mlx5_alloc_flow_attr(mlx5e_get_flow_namespace(flow));
3607ff7ea04aSGustavo A. R. Silva 	if (!attr)
3608e3a2b7edSAmir Vadai 		goto err_free;
3609ff7ea04aSGustavo A. R. Silva 
3610c620b772SAriel Levkovich 	flow->attr = attr;
3611e3a2b7edSAmir Vadai 
36125a7e5bcbSVlad Buslov 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++)
36135a7e5bcbSVlad Buslov 		INIT_LIST_HEAD(&flow->encaps[out_index].list);
36145a7e5bcbSVlad Buslov 	INIT_LIST_HEAD(&flow->hairpin);
361514e6b038SEli Cohen 	INIT_LIST_HEAD(&flow->l3_to_l2_reformat);
36165a7e5bcbSVlad Buslov 	refcount_set(&flow->refcnt, 1);
361795435ad7SVlad Buslov 	init_completion(&flow->init_done);
3618362980eaSVlad Buslov 	init_completion(&flow->del_hw_done);
3619e3a2b7edSAmir Vadai 
3620a88780a9SRoi Dayan 	*__flow = flow;
3621a88780a9SRoi Dayan 	*__parse_attr = parse_attr;
3622a88780a9SRoi Dayan 
3623a88780a9SRoi Dayan 	return 0;
3624a88780a9SRoi Dayan 
3625a88780a9SRoi Dayan err_free:
3626a88780a9SRoi Dayan 	kfree(flow);
3627a88780a9SRoi Dayan 	kvfree(parse_attr);
3628a88780a9SRoi Dayan 	return err;
3629adb4c123SOr Gerlitz }
3630adb4c123SOr Gerlitz 
3631988ab9c7STonghao Zhang static void
3632c7569097SAriel Levkovich mlx5e_flow_attr_init(struct mlx5_flow_attr *attr,
3633c7569097SAriel Levkovich 		     struct mlx5e_tc_flow_parse_attr *parse_attr,
3634c7569097SAriel Levkovich 		     struct flow_cls_offload *f)
3635c7569097SAriel Levkovich {
3636c7569097SAriel Levkovich 	attr->parse_attr = parse_attr;
3637c7569097SAriel Levkovich 	attr->chain = f->common.chain_index;
3638c7569097SAriel Levkovich 	attr->prio = f->common.prio;
3639c7569097SAriel Levkovich }
3640c7569097SAriel Levkovich 
3641c7569097SAriel Levkovich static void
3642c620b772SAriel Levkovich mlx5e_flow_esw_attr_init(struct mlx5_flow_attr *attr,
3643988ab9c7STonghao Zhang 			 struct mlx5e_priv *priv,
3644988ab9c7STonghao Zhang 			 struct mlx5e_tc_flow_parse_attr *parse_attr,
3645f9e30088SPablo Neira Ayuso 			 struct flow_cls_offload *f,
3646988ab9c7STonghao Zhang 			 struct mlx5_eswitch_rep *in_rep,
3647988ab9c7STonghao Zhang 			 struct mlx5_core_dev *in_mdev)
3648988ab9c7STonghao Zhang {
3649988ab9c7STonghao Zhang 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3650c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = attr->esw_attr;
3651988ab9c7STonghao Zhang 
3652c7569097SAriel Levkovich 	mlx5e_flow_attr_init(attr, parse_attr, f);
3653988ab9c7STonghao Zhang 
3654988ab9c7STonghao Zhang 	esw_attr->in_rep = in_rep;
3655988ab9c7STonghao Zhang 	esw_attr->in_mdev = in_mdev;
3656988ab9c7STonghao Zhang 
3657988ab9c7STonghao Zhang 	if (MLX5_CAP_ESW(esw->dev, counter_eswitch_affinity) ==
3658988ab9c7STonghao Zhang 	    MLX5_COUNTER_SOURCE_ESWITCH)
3659988ab9c7STonghao Zhang 		esw_attr->counter_dev = in_mdev;
3660988ab9c7STonghao Zhang 	else
3661988ab9c7STonghao Zhang 		esw_attr->counter_dev = priv->mdev;
3662988ab9c7STonghao Zhang }
3663988ab9c7STonghao Zhang 
366471129676SJason Gunthorpe static struct mlx5e_tc_flow *
366504de7ddaSRoi Dayan __mlx5e_add_fdb_flow(struct mlx5e_priv *priv,
3666f9e30088SPablo Neira Ayuso 		     struct flow_cls_offload *f,
3667226f2ca3SVlad Buslov 		     unsigned long flow_flags,
3668d11afc26SOz Shlomo 		     struct net_device *filter_dev,
366904de7ddaSRoi Dayan 		     struct mlx5_eswitch_rep *in_rep,
367071129676SJason Gunthorpe 		     struct mlx5_core_dev *in_mdev)
3671a88780a9SRoi Dayan {
3672f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
3673a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3674a88780a9SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3675a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3676a88780a9SRoi Dayan 	int attr_size, err;
3677a88780a9SRoi Dayan 
3678226f2ca3SVlad Buslov 	flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_ESWITCH);
3679a88780a9SRoi Dayan 	attr_size  = sizeof(struct mlx5_esw_flow_attr);
3680a88780a9SRoi Dayan 	err = mlx5e_alloc_flow(priv, attr_size, f, flow_flags,
3681a88780a9SRoi Dayan 			       &parse_attr, &flow);
3682a88780a9SRoi Dayan 	if (err)
3683a88780a9SRoi Dayan 		goto out;
3684988ab9c7STonghao Zhang 
3685d11afc26SOz Shlomo 	parse_attr->filter_dev = filter_dev;
3686c620b772SAriel Levkovich 	mlx5e_flow_esw_attr_init(flow->attr,
3687988ab9c7STonghao Zhang 				 priv, parse_attr,
3688988ab9c7STonghao Zhang 				 f, in_rep, in_mdev);
3689988ab9c7STonghao Zhang 
369054c177caSOz Shlomo 	err = parse_cls_flower(flow->priv, flow, &parse_attr->spec,
369154c177caSOz Shlomo 			       f, filter_dev);
3692d11afc26SOz Shlomo 	if (err)
3693d11afc26SOz Shlomo 		goto err_free;
3694a88780a9SRoi Dayan 
36957e36feebSPaul Blakey 	/* actions validation depends on parsing the ct matches first */
3696aedd133dSAriel Levkovich 	err = mlx5_tc_ct_match_add(get_ct_priv(priv), &parse_attr->spec, f,
3697c620b772SAriel Levkovich 				   &flow->attr->ct_attr, extack);
3698a88780a9SRoi Dayan 	if (err)
3699a88780a9SRoi Dayan 		goto err_free;
3700a88780a9SRoi Dayan 
3701d4bb0531SRoi Dayan 	/* always set IP version for indirect table handling */
3702d4bb0531SRoi Dayan 	flow->attr->ip_version = mlx5e_tc_get_ip_version(&parse_attr->spec, true);
3703d4bb0531SRoi Dayan 
370470f8019eSRoi Dayan 	err = parse_tc_fdb_actions(priv, &rule->action, flow, extack);
37054c3844d9SPaul Blakey 	if (err)
37064c3844d9SPaul Blakey 		goto err_free;
37074c3844d9SPaul Blakey 
37087040632dSTonghao Zhang 	err = mlx5e_tc_add_fdb_flow(priv, flow, extack);
370995435ad7SVlad Buslov 	complete_all(&flow->init_done);
3710ef06c9eeSRoi Dayan 	if (err) {
3711ef06c9eeSRoi Dayan 		if (!(err == -ENETUNREACH && mlx5_lag_is_multipath(in_mdev)))
3712aa0cbbaeSOr Gerlitz 			goto err_free;
37135c40348cSOr Gerlitz 
3714b4a23329SRoi Dayan 		add_unready_flow(flow);
3715ef06c9eeSRoi Dayan 	}
3716ef06c9eeSRoi Dayan 
371771129676SJason Gunthorpe 	return flow;
3718e3a2b7edSAmir Vadai 
3719e3a2b7edSAmir Vadai err_free:
37205a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3721a88780a9SRoi Dayan out:
372271129676SJason Gunthorpe 	return ERR_PTR(err);
3723a88780a9SRoi Dayan }
3724a88780a9SRoi Dayan 
3725f9e30088SPablo Neira Ayuso static int mlx5e_tc_add_fdb_peer_flow(struct flow_cls_offload *f,
372695dc1902SRoi Dayan 				      struct mlx5e_tc_flow *flow,
3727226f2ca3SVlad Buslov 				      unsigned long flow_flags)
372804de7ddaSRoi Dayan {
372904de7ddaSRoi Dayan 	struct mlx5e_priv *priv = flow->priv, *peer_priv;
373004de7ddaSRoi Dayan 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch, *peer_esw;
3731c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *attr = flow->attr->esw_attr;
373204de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = priv->mdev->priv.devcom;
373304de7ddaSRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
373404de7ddaSRoi Dayan 	struct mlx5e_rep_priv *peer_urpriv;
373504de7ddaSRoi Dayan 	struct mlx5e_tc_flow *peer_flow;
373604de7ddaSRoi Dayan 	struct mlx5_core_dev *in_mdev;
373704de7ddaSRoi Dayan 	int err = 0;
373804de7ddaSRoi Dayan 
373904de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
374004de7ddaSRoi Dayan 	if (!peer_esw)
374104de7ddaSRoi Dayan 		return -ENODEV;
374204de7ddaSRoi Dayan 
374304de7ddaSRoi Dayan 	peer_urpriv = mlx5_eswitch_get_uplink_priv(peer_esw, REP_ETH);
374404de7ddaSRoi Dayan 	peer_priv = netdev_priv(peer_urpriv->netdev);
374504de7ddaSRoi Dayan 
374604de7ddaSRoi Dayan 	/* in_mdev is assigned of which the packet originated from.
374704de7ddaSRoi Dayan 	 * So packets redirected to uplink use the same mdev of the
374804de7ddaSRoi Dayan 	 * original flow and packets redirected from uplink use the
374904de7ddaSRoi Dayan 	 * peer mdev.
375004de7ddaSRoi Dayan 	 */
3751c620b772SAriel Levkovich 	if (attr->in_rep->vport == MLX5_VPORT_UPLINK)
375204de7ddaSRoi Dayan 		in_mdev = peer_priv->mdev;
375304de7ddaSRoi Dayan 	else
375404de7ddaSRoi Dayan 		in_mdev = priv->mdev;
375504de7ddaSRoi Dayan 
3756c620b772SAriel Levkovich 	parse_attr = flow->attr->parse_attr;
375795dc1902SRoi Dayan 	peer_flow = __mlx5e_add_fdb_flow(peer_priv, f, flow_flags,
375804de7ddaSRoi Dayan 					 parse_attr->filter_dev,
3759c620b772SAriel Levkovich 					 attr->in_rep, in_mdev);
376071129676SJason Gunthorpe 	if (IS_ERR(peer_flow)) {
376171129676SJason Gunthorpe 		err = PTR_ERR(peer_flow);
376204de7ddaSRoi Dayan 		goto out;
376371129676SJason Gunthorpe 	}
376404de7ddaSRoi Dayan 
376504de7ddaSRoi Dayan 	flow->peer_flow = peer_flow;
3766226f2ca3SVlad Buslov 	flow_flag_set(flow, DUP);
376704de7ddaSRoi Dayan 	mutex_lock(&esw->offloads.peer_mutex);
376804de7ddaSRoi Dayan 	list_add_tail(&flow->peer, &esw->offloads.peer_flows);
376904de7ddaSRoi Dayan 	mutex_unlock(&esw->offloads.peer_mutex);
377004de7ddaSRoi Dayan 
377104de7ddaSRoi Dayan out:
377204de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
377304de7ddaSRoi Dayan 	return err;
377404de7ddaSRoi Dayan }
377504de7ddaSRoi Dayan 
377604de7ddaSRoi Dayan static int
377704de7ddaSRoi Dayan mlx5e_add_fdb_flow(struct mlx5e_priv *priv,
3778f9e30088SPablo Neira Ayuso 		   struct flow_cls_offload *f,
3779226f2ca3SVlad Buslov 		   unsigned long flow_flags,
378004de7ddaSRoi Dayan 		   struct net_device *filter_dev,
378104de7ddaSRoi Dayan 		   struct mlx5e_tc_flow **__flow)
378204de7ddaSRoi Dayan {
378304de7ddaSRoi Dayan 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
378404de7ddaSRoi Dayan 	struct mlx5_eswitch_rep *in_rep = rpriv->rep;
378504de7ddaSRoi Dayan 	struct mlx5_core_dev *in_mdev = priv->mdev;
378604de7ddaSRoi Dayan 	struct mlx5e_tc_flow *flow;
378704de7ddaSRoi Dayan 	int err;
378804de7ddaSRoi Dayan 
378971129676SJason Gunthorpe 	flow = __mlx5e_add_fdb_flow(priv, f, flow_flags, filter_dev, in_rep,
379071129676SJason Gunthorpe 				    in_mdev);
379171129676SJason Gunthorpe 	if (IS_ERR(flow))
379271129676SJason Gunthorpe 		return PTR_ERR(flow);
379304de7ddaSRoi Dayan 
379404de7ddaSRoi Dayan 	if (is_peer_flow_needed(flow)) {
379595dc1902SRoi Dayan 		err = mlx5e_tc_add_fdb_peer_flow(f, flow, flow_flags);
379604de7ddaSRoi Dayan 		if (err) {
379704de7ddaSRoi Dayan 			mlx5e_tc_del_fdb_flow(priv, flow);
379804de7ddaSRoi Dayan 			goto out;
379904de7ddaSRoi Dayan 		}
380004de7ddaSRoi Dayan 	}
380104de7ddaSRoi Dayan 
380204de7ddaSRoi Dayan 	*__flow = flow;
380304de7ddaSRoi Dayan 
380404de7ddaSRoi Dayan 	return 0;
380504de7ddaSRoi Dayan 
380604de7ddaSRoi Dayan out:
380704de7ddaSRoi Dayan 	return err;
380804de7ddaSRoi Dayan }
380904de7ddaSRoi Dayan 
3810a88780a9SRoi Dayan static int
3811a88780a9SRoi Dayan mlx5e_add_nic_flow(struct mlx5e_priv *priv,
3812f9e30088SPablo Neira Ayuso 		   struct flow_cls_offload *f,
3813226f2ca3SVlad Buslov 		   unsigned long flow_flags,
3814d11afc26SOz Shlomo 		   struct net_device *filter_dev,
3815a88780a9SRoi Dayan 		   struct mlx5e_tc_flow **__flow)
3816a88780a9SRoi Dayan {
3817f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
3818a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3819a88780a9SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3820a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3821a88780a9SRoi Dayan 	int attr_size, err;
3822a88780a9SRoi Dayan 
3823c7569097SAriel Levkovich 	if (!MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level)) {
3824bf07aa73SPaul Blakey 		if (!tc_cls_can_offload_and_chain0(priv->netdev, &f->common))
3825bf07aa73SPaul Blakey 			return -EOPNOTSUPP;
3826c7569097SAriel Levkovich 	} else if (!tc_can_offload_extack(priv->netdev, f->common.extack)) {
3827c7569097SAriel Levkovich 		return -EOPNOTSUPP;
3828c7569097SAriel Levkovich 	}
3829bf07aa73SPaul Blakey 
3830226f2ca3SVlad Buslov 	flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_NIC);
3831a88780a9SRoi Dayan 	attr_size  = sizeof(struct mlx5_nic_flow_attr);
3832a88780a9SRoi Dayan 	err = mlx5e_alloc_flow(priv, attr_size, f, flow_flags,
3833a88780a9SRoi Dayan 			       &parse_attr, &flow);
3834a88780a9SRoi Dayan 	if (err)
3835a88780a9SRoi Dayan 		goto out;
3836a88780a9SRoi Dayan 
3837d11afc26SOz Shlomo 	parse_attr->filter_dev = filter_dev;
3838c7569097SAriel Levkovich 	mlx5e_flow_attr_init(flow->attr, parse_attr, f);
3839c7569097SAriel Levkovich 
384054c177caSOz Shlomo 	err = parse_cls_flower(flow->priv, flow, &parse_attr->spec,
384154c177caSOz Shlomo 			       f, filter_dev);
3842d11afc26SOz Shlomo 	if (err)
3843d11afc26SOz Shlomo 		goto err_free;
3844d11afc26SOz Shlomo 
3845aedd133dSAriel Levkovich 	err = mlx5_tc_ct_match_add(get_ct_priv(priv), &parse_attr->spec, f,
3846aedd133dSAriel Levkovich 				   &flow->attr->ct_attr, extack);
3847aedd133dSAriel Levkovich 	if (err)
3848aedd133dSAriel Levkovich 		goto err_free;
3849aedd133dSAriel Levkovich 
3850c6cfe113SRoi Dayan 	err = parse_tc_nic_actions(priv, &rule->action, flow, extack);
3851a88780a9SRoi Dayan 	if (err)
3852a88780a9SRoi Dayan 		goto err_free;
3853a88780a9SRoi Dayan 
3854c6cfe113SRoi Dayan 	err = mlx5e_tc_add_nic_flow(priv, flow, extack);
3855a88780a9SRoi Dayan 	if (err)
3856a88780a9SRoi Dayan 		goto err_free;
3857a88780a9SRoi Dayan 
3858226f2ca3SVlad Buslov 	flow_flag_set(flow, OFFLOADED);
3859a88780a9SRoi Dayan 	*__flow = flow;
3860a88780a9SRoi Dayan 
3861a88780a9SRoi Dayan 	return 0;
3862a88780a9SRoi Dayan 
3863a88780a9SRoi Dayan err_free:
38648914add2SVlad Buslov 	flow_flag_set(flow, FAILED);
38652c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
38665a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3867a88780a9SRoi Dayan out:
3868a88780a9SRoi Dayan 	return err;
3869a88780a9SRoi Dayan }
3870a88780a9SRoi Dayan 
3871a88780a9SRoi Dayan static int
3872a88780a9SRoi Dayan mlx5e_tc_add_flow(struct mlx5e_priv *priv,
3873f9e30088SPablo Neira Ayuso 		  struct flow_cls_offload *f,
3874226f2ca3SVlad Buslov 		  unsigned long flags,
3875d11afc26SOz Shlomo 		  struct net_device *filter_dev,
3876a88780a9SRoi Dayan 		  struct mlx5e_tc_flow **flow)
3877a88780a9SRoi Dayan {
3878a88780a9SRoi Dayan 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3879226f2ca3SVlad Buslov 	unsigned long flow_flags;
3880a88780a9SRoi Dayan 	int err;
3881a88780a9SRoi Dayan 
3882a88780a9SRoi Dayan 	get_flags(flags, &flow_flags);
3883a88780a9SRoi Dayan 
3884bf07aa73SPaul Blakey 	if (!tc_can_offload_extack(priv->netdev, f->common.extack))
3885bf07aa73SPaul Blakey 		return -EOPNOTSUPP;
3886bf07aa73SPaul Blakey 
3887f6455de0SBodong Wang 	if (esw && esw->mode == MLX5_ESWITCH_OFFLOADS)
3888d11afc26SOz Shlomo 		err = mlx5e_add_fdb_flow(priv, f, flow_flags,
3889d11afc26SOz Shlomo 					 filter_dev, flow);
3890a88780a9SRoi Dayan 	else
3891d11afc26SOz Shlomo 		err = mlx5e_add_nic_flow(priv, f, flow_flags,
3892d11afc26SOz Shlomo 					 filter_dev, flow);
3893a88780a9SRoi Dayan 
3894a88780a9SRoi Dayan 	return err;
3895a88780a9SRoi Dayan }
3896a88780a9SRoi Dayan 
3897553f9328SVu Pham static bool is_flow_rule_duplicate_allowed(struct net_device *dev,
3898553f9328SVu Pham 					   struct mlx5e_rep_priv *rpriv)
3899553f9328SVu Pham {
3900553f9328SVu Pham 	/* Offloaded flow rule is allowed to duplicate on non-uplink representor
39012fb15e72SVlad Buslov 	 * sharing tc block with other slaves of a lag device. Rpriv can be NULL if this
39022fb15e72SVlad Buslov 	 * function is called from NIC mode.
3903553f9328SVu Pham 	 */
39042fb15e72SVlad Buslov 	return netif_is_lag_port(dev) && rpriv && rpriv->rep->vport != MLX5_VPORT_UPLINK;
3905553f9328SVu Pham }
3906553f9328SVu Pham 
390771d82d2aSOz Shlomo int mlx5e_configure_flower(struct net_device *dev, struct mlx5e_priv *priv,
3908226f2ca3SVlad Buslov 			   struct flow_cls_offload *f, unsigned long flags)
3909a88780a9SRoi Dayan {
3910a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3911d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
3912553f9328SVu Pham 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
3913a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3914a88780a9SRoi Dayan 	int err = 0;
3915a88780a9SRoi Dayan 
39167dc84de9SRoi Dayan 	if (!mlx5_esw_hold(priv->mdev))
39177dc84de9SRoi Dayan 		return -EAGAIN;
39187dc84de9SRoi Dayan 
39197dc84de9SRoi Dayan 	mlx5_esw_get(priv->mdev);
39207dc84de9SRoi Dayan 
3921c5d326b2SVlad Buslov 	rcu_read_lock();
3922c5d326b2SVlad Buslov 	flow = rhashtable_lookup(tc_ht, &f->cookie, tc_ht_params);
3923a88780a9SRoi Dayan 	if (flow) {
3924553f9328SVu Pham 		/* Same flow rule offloaded to non-uplink representor sharing tc block,
3925553f9328SVu Pham 		 * just return 0.
3926553f9328SVu Pham 		 */
3927553f9328SVu Pham 		if (is_flow_rule_duplicate_allowed(dev, rpriv) && flow->orig_dev != dev)
3928c1aea9e1SVlad Buslov 			goto rcu_unlock;
3929553f9328SVu Pham 
3930a88780a9SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
3931a88780a9SRoi Dayan 				   "flow cookie already exists, ignoring");
3932a88780a9SRoi Dayan 		netdev_warn_once(priv->netdev,
3933a88780a9SRoi Dayan 				 "flow cookie %lx already exists, ignoring\n",
3934a88780a9SRoi Dayan 				 f->cookie);
39350e1c1a2fSVlad Buslov 		err = -EEXIST;
3936c1aea9e1SVlad Buslov 		goto rcu_unlock;
3937a88780a9SRoi Dayan 	}
3938c1aea9e1SVlad Buslov rcu_unlock:
3939c1aea9e1SVlad Buslov 	rcu_read_unlock();
3940c1aea9e1SVlad Buslov 	if (flow)
3941c1aea9e1SVlad Buslov 		goto out;
3942a88780a9SRoi Dayan 
39437a978759SDmytro Linkin 	trace_mlx5e_configure_flower(f);
3944d11afc26SOz Shlomo 	err = mlx5e_tc_add_flow(priv, f, flags, dev, &flow);
3945a88780a9SRoi Dayan 	if (err)
3946a88780a9SRoi Dayan 		goto out;
3947a88780a9SRoi Dayan 
3948553f9328SVu Pham 	/* Flow rule offloaded to non-uplink representor sharing tc block,
3949553f9328SVu Pham 	 * set the flow's owner dev.
3950553f9328SVu Pham 	 */
3951553f9328SVu Pham 	if (is_flow_rule_duplicate_allowed(dev, rpriv))
3952553f9328SVu Pham 		flow->orig_dev = dev;
3953553f9328SVu Pham 
3954c5d326b2SVlad Buslov 	err = rhashtable_lookup_insert_fast(tc_ht, &flow->node, tc_ht_params);
3955a88780a9SRoi Dayan 	if (err)
3956a88780a9SRoi Dayan 		goto err_free;
3957a88780a9SRoi Dayan 
39587dc84de9SRoi Dayan 	mlx5_esw_release(priv->mdev);
3959a88780a9SRoi Dayan 	return 0;
3960a88780a9SRoi Dayan 
3961a88780a9SRoi Dayan err_free:
39625a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3963a88780a9SRoi Dayan out:
39647dc84de9SRoi Dayan 	mlx5_esw_put(priv->mdev);
39657dc84de9SRoi Dayan 	mlx5_esw_release(priv->mdev);
3966e3a2b7edSAmir Vadai 	return err;
3967e3a2b7edSAmir Vadai }
3968e3a2b7edSAmir Vadai 
39698f8ae895SOr Gerlitz static bool same_flow_direction(struct mlx5e_tc_flow *flow, int flags)
39708f8ae895SOr Gerlitz {
3971226f2ca3SVlad Buslov 	bool dir_ingress = !!(flags & MLX5_TC_FLAG(INGRESS));
3972226f2ca3SVlad Buslov 	bool dir_egress = !!(flags & MLX5_TC_FLAG(EGRESS));
39738f8ae895SOr Gerlitz 
3974226f2ca3SVlad Buslov 	return flow_flag_test(flow, INGRESS) == dir_ingress &&
3975226f2ca3SVlad Buslov 		flow_flag_test(flow, EGRESS) == dir_egress;
39768f8ae895SOr Gerlitz }
39778f8ae895SOr Gerlitz 
397871d82d2aSOz Shlomo int mlx5e_delete_flower(struct net_device *dev, struct mlx5e_priv *priv,
3979226f2ca3SVlad Buslov 			struct flow_cls_offload *f, unsigned long flags)
3980e3a2b7edSAmir Vadai {
3981d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
3982e3a2b7edSAmir Vadai 	struct mlx5e_tc_flow *flow;
3983c5d326b2SVlad Buslov 	int err;
3984e3a2b7edSAmir Vadai 
3985c5d326b2SVlad Buslov 	rcu_read_lock();
3986ab818362STaehee Yoo 	flow = rhashtable_lookup(tc_ht, &f->cookie, tc_ht_params);
3987c5d326b2SVlad Buslov 	if (!flow || !same_flow_direction(flow, flags)) {
3988c5d326b2SVlad Buslov 		err = -EINVAL;
3989c5d326b2SVlad Buslov 		goto errout;
3990c5d326b2SVlad Buslov 	}
3991e3a2b7edSAmir Vadai 
3992c5d326b2SVlad Buslov 	/* Only delete the flow if it doesn't have MLX5E_TC_FLOW_DELETED flag
3993c5d326b2SVlad Buslov 	 * set.
3994c5d326b2SVlad Buslov 	 */
3995c5d326b2SVlad Buslov 	if (flow_flag_test_and_set(flow, DELETED)) {
3996c5d326b2SVlad Buslov 		err = -EINVAL;
3997c5d326b2SVlad Buslov 		goto errout;
3998c5d326b2SVlad Buslov 	}
399905866c82SOr Gerlitz 	rhashtable_remove_fast(tc_ht, &flow->node, tc_ht_params);
4000c5d326b2SVlad Buslov 	rcu_read_unlock();
4001e3a2b7edSAmir Vadai 
40027a978759SDmytro Linkin 	trace_mlx5e_delete_flower(f);
40035a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
4004e3a2b7edSAmir Vadai 
40057dc84de9SRoi Dayan 	mlx5_esw_put(priv->mdev);
4006e3a2b7edSAmir Vadai 	return 0;
4007c5d326b2SVlad Buslov 
4008c5d326b2SVlad Buslov errout:
4009c5d326b2SVlad Buslov 	rcu_read_unlock();
4010c5d326b2SVlad Buslov 	return err;
4011e3a2b7edSAmir Vadai }
4012e3a2b7edSAmir Vadai 
401371d82d2aSOz Shlomo int mlx5e_stats_flower(struct net_device *dev, struct mlx5e_priv *priv,
4014226f2ca3SVlad Buslov 		       struct flow_cls_offload *f, unsigned long flags)
4015aad7e08dSAmir Vadai {
401604de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = priv->mdev->priv.devcom;
4017d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
401804de7ddaSRoi Dayan 	struct mlx5_eswitch *peer_esw;
4019aad7e08dSAmir Vadai 	struct mlx5e_tc_flow *flow;
4020aad7e08dSAmir Vadai 	struct mlx5_fc *counter;
4021316d5f72SRoi Dayan 	u64 lastuse = 0;
4022316d5f72SRoi Dayan 	u64 packets = 0;
4023316d5f72SRoi Dayan 	u64 bytes = 0;
40245a7e5bcbSVlad Buslov 	int err = 0;
4025aad7e08dSAmir Vadai 
4026c5d326b2SVlad Buslov 	rcu_read_lock();
4027c5d326b2SVlad Buslov 	flow = mlx5e_flow_get(rhashtable_lookup(tc_ht, &f->cookie,
40285a7e5bcbSVlad Buslov 						tc_ht_params));
4029c5d326b2SVlad Buslov 	rcu_read_unlock();
40305a7e5bcbSVlad Buslov 	if (IS_ERR(flow))
40315a7e5bcbSVlad Buslov 		return PTR_ERR(flow);
40325a7e5bcbSVlad Buslov 
40335a7e5bcbSVlad Buslov 	if (!same_flow_direction(flow, flags)) {
40345a7e5bcbSVlad Buslov 		err = -EINVAL;
40355a7e5bcbSVlad Buslov 		goto errout;
40365a7e5bcbSVlad Buslov 	}
4037aad7e08dSAmir Vadai 
40384c3844d9SPaul Blakey 	if (mlx5e_is_offloaded_flow(flow) || flow_flag_test(flow, CT)) {
4039b8aee822SMark Bloch 		counter = mlx5e_tc_get_counter(flow);
4040aad7e08dSAmir Vadai 		if (!counter)
40415a7e5bcbSVlad Buslov 			goto errout;
4042aad7e08dSAmir Vadai 
4043aad7e08dSAmir Vadai 		mlx5_fc_query_cached(counter, &bytes, &packets, &lastuse);
4044316d5f72SRoi Dayan 	}
4045aad7e08dSAmir Vadai 
4046316d5f72SRoi Dayan 	/* Under multipath it's possible for one rule to be currently
4047316d5f72SRoi Dayan 	 * un-offloaded while the other rule is offloaded.
4048316d5f72SRoi Dayan 	 */
404904de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
405004de7ddaSRoi Dayan 	if (!peer_esw)
405104de7ddaSRoi Dayan 		goto out;
405204de7ddaSRoi Dayan 
4053226f2ca3SVlad Buslov 	if (flow_flag_test(flow, DUP) &&
4054226f2ca3SVlad Buslov 	    flow_flag_test(flow->peer_flow, OFFLOADED)) {
405504de7ddaSRoi Dayan 		u64 bytes2;
405604de7ddaSRoi Dayan 		u64 packets2;
405704de7ddaSRoi Dayan 		u64 lastuse2;
405804de7ddaSRoi Dayan 
405904de7ddaSRoi Dayan 		counter = mlx5e_tc_get_counter(flow->peer_flow);
4060316d5f72SRoi Dayan 		if (!counter)
4061316d5f72SRoi Dayan 			goto no_peer_counter;
406204de7ddaSRoi Dayan 		mlx5_fc_query_cached(counter, &bytes2, &packets2, &lastuse2);
406304de7ddaSRoi Dayan 
406404de7ddaSRoi Dayan 		bytes += bytes2;
406504de7ddaSRoi Dayan 		packets += packets2;
406604de7ddaSRoi Dayan 		lastuse = max_t(u64, lastuse, lastuse2);
406704de7ddaSRoi Dayan 	}
406804de7ddaSRoi Dayan 
4069316d5f72SRoi Dayan no_peer_counter:
407004de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
407104de7ddaSRoi Dayan out:
40724b61d3e8SPo Liu 	flow_stats_update(&f->stats, bytes, packets, 0, lastuse,
407393a129ebSJiri Pirko 			  FLOW_ACTION_HW_STATS_DELAYED);
40747a978759SDmytro Linkin 	trace_mlx5e_stats_flower(f);
40755a7e5bcbSVlad Buslov errout:
40765a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
40775a7e5bcbSVlad Buslov 	return err;
4078aad7e08dSAmir Vadai }
4079aad7e08dSAmir Vadai 
40801fe3e316SParav Pandit static int apply_police_params(struct mlx5e_priv *priv, u64 rate,
4081fcb64c0fSEli Cohen 			       struct netlink_ext_ack *extack)
4082fcb64c0fSEli Cohen {
4083fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4084fcb64c0fSEli Cohen 	struct mlx5_eswitch *esw;
40851fe3e316SParav Pandit 	u32 rate_mbps = 0;
4086fcb64c0fSEli Cohen 	u16 vport_num;
4087fcb64c0fSEli Cohen 	int err;
4088fcb64c0fSEli Cohen 
4089e401a184SEli Cohen 	vport_num = rpriv->rep->vport;
4090e401a184SEli Cohen 	if (vport_num >= MLX5_VPORT_ECPF) {
4091e401a184SEli Cohen 		NL_SET_ERR_MSG_MOD(extack,
4092e401a184SEli Cohen 				   "Ingress rate limit is supported only for Eswitch ports connected to VFs");
4093e401a184SEli Cohen 		return -EOPNOTSUPP;
4094e401a184SEli Cohen 	}
4095e401a184SEli Cohen 
4096fcb64c0fSEli Cohen 	esw = priv->mdev->priv.eswitch;
4097fcb64c0fSEli Cohen 	/* rate is given in bytes/sec.
4098fcb64c0fSEli Cohen 	 * First convert to bits/sec and then round to the nearest mbit/secs.
4099fcb64c0fSEli Cohen 	 * mbit means million bits.
4100fcb64c0fSEli Cohen 	 * Moreover, if rate is non zero we choose to configure to a minimum of
4101fcb64c0fSEli Cohen 	 * 1 mbit/sec.
4102fcb64c0fSEli Cohen 	 */
41031fe3e316SParav Pandit 	if (rate) {
41041fe3e316SParav Pandit 		rate = (rate * BITS_PER_BYTE) + 500000;
41058b90d897SParav Pandit 		do_div(rate, 1000000);
41068b90d897SParav Pandit 		rate_mbps = max_t(u32, rate, 1);
41071fe3e316SParav Pandit 	}
41081fe3e316SParav Pandit 
41092d116e3eSDmytro Linkin 	err = mlx5_esw_qos_modify_vport_rate(esw, vport_num, rate_mbps);
4110fcb64c0fSEli Cohen 	if (err)
4111fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "failed applying action to hardware");
4112fcb64c0fSEli Cohen 
4113fcb64c0fSEli Cohen 	return err;
4114fcb64c0fSEli Cohen }
4115fcb64c0fSEli Cohen 
4116fcb64c0fSEli Cohen static int scan_tc_matchall_fdb_actions(struct mlx5e_priv *priv,
4117fcb64c0fSEli Cohen 					struct flow_action *flow_action,
4118fcb64c0fSEli Cohen 					struct netlink_ext_ack *extack)
4119fcb64c0fSEli Cohen {
4120fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4121fcb64c0fSEli Cohen 	const struct flow_action_entry *act;
4122fcb64c0fSEli Cohen 	int err;
4123fcb64c0fSEli Cohen 	int i;
4124fcb64c0fSEli Cohen 
4125fcb64c0fSEli Cohen 	if (!flow_action_has_entries(flow_action)) {
4126fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "matchall called with no action");
4127fcb64c0fSEli Cohen 		return -EINVAL;
4128fcb64c0fSEli Cohen 	}
4129fcb64c0fSEli Cohen 
4130fcb64c0fSEli Cohen 	if (!flow_offload_has_one_action(flow_action)) {
4131fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "matchall policing support only a single action");
4132fcb64c0fSEli Cohen 		return -EOPNOTSUPP;
4133fcb64c0fSEli Cohen 	}
4134fcb64c0fSEli Cohen 
41350885ae1aSAbhiram R N 	if (!flow_action_basic_hw_stats_check(flow_action, extack)) {
41360885ae1aSAbhiram R N 		NL_SET_ERR_MSG_MOD(extack, "Flow action HW stats type is not supported");
4137319a1d19SJiri Pirko 		return -EOPNOTSUPP;
41380885ae1aSAbhiram R N 	}
4139319a1d19SJiri Pirko 
4140fcb64c0fSEli Cohen 	flow_action_for_each(i, act, flow_action) {
4141fcb64c0fSEli Cohen 		switch (act->id) {
4142fcb64c0fSEli Cohen 		case FLOW_ACTION_POLICE:
41436a56e199SBaowen Zheng 			if (act->police.rate_pkt_ps) {
41446a56e199SBaowen Zheng 				NL_SET_ERR_MSG_MOD(extack, "QoS offload not support packets per second");
41456a56e199SBaowen Zheng 				return -EOPNOTSUPP;
41466a56e199SBaowen Zheng 			}
4147fcb64c0fSEli Cohen 			err = apply_police_params(priv, act->police.rate_bytes_ps, extack);
4148fcb64c0fSEli Cohen 			if (err)
4149fcb64c0fSEli Cohen 				return err;
4150fcb64c0fSEli Cohen 
4151fcb64c0fSEli Cohen 			rpriv->prev_vf_vport_stats = priv->stats.vf_vport;
4152fcb64c0fSEli Cohen 			break;
4153fcb64c0fSEli Cohen 		default:
4154fcb64c0fSEli Cohen 			NL_SET_ERR_MSG_MOD(extack, "mlx5 supports only police action for matchall");
4155fcb64c0fSEli Cohen 			return -EOPNOTSUPP;
4156fcb64c0fSEli Cohen 		}
4157fcb64c0fSEli Cohen 	}
4158fcb64c0fSEli Cohen 
4159fcb64c0fSEli Cohen 	return 0;
4160fcb64c0fSEli Cohen }
4161fcb64c0fSEli Cohen 
4162fcb64c0fSEli Cohen int mlx5e_tc_configure_matchall(struct mlx5e_priv *priv,
4163fcb64c0fSEli Cohen 				struct tc_cls_matchall_offload *ma)
4164fcb64c0fSEli Cohen {
4165fcb64c0fSEli Cohen 	struct netlink_ext_ack *extack = ma->common.extack;
4166fcb64c0fSEli Cohen 
41677b83355fSEli Cohen 	if (ma->common.prio != 1) {
4168fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "only priority 1 is supported");
4169fcb64c0fSEli Cohen 		return -EINVAL;
4170fcb64c0fSEli Cohen 	}
4171fcb64c0fSEli Cohen 
4172fcb64c0fSEli Cohen 	return scan_tc_matchall_fdb_actions(priv, &ma->rule->action, extack);
4173fcb64c0fSEli Cohen }
4174fcb64c0fSEli Cohen 
4175fcb64c0fSEli Cohen int mlx5e_tc_delete_matchall(struct mlx5e_priv *priv,
4176fcb64c0fSEli Cohen 			     struct tc_cls_matchall_offload *ma)
4177fcb64c0fSEli Cohen {
4178fcb64c0fSEli Cohen 	struct netlink_ext_ack *extack = ma->common.extack;
4179fcb64c0fSEli Cohen 
4180fcb64c0fSEli Cohen 	return apply_police_params(priv, 0, extack);
4181fcb64c0fSEli Cohen }
4182fcb64c0fSEli Cohen 
4183fcb64c0fSEli Cohen void mlx5e_tc_stats_matchall(struct mlx5e_priv *priv,
4184fcb64c0fSEli Cohen 			     struct tc_cls_matchall_offload *ma)
4185fcb64c0fSEli Cohen {
4186fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4187fcb64c0fSEli Cohen 	struct rtnl_link_stats64 cur_stats;
4188fcb64c0fSEli Cohen 	u64 dbytes;
4189fcb64c0fSEli Cohen 	u64 dpkts;
4190fcb64c0fSEli Cohen 
4191fcb64c0fSEli Cohen 	cur_stats = priv->stats.vf_vport;
4192fcb64c0fSEli Cohen 	dpkts = cur_stats.rx_packets - rpriv->prev_vf_vport_stats.rx_packets;
4193fcb64c0fSEli Cohen 	dbytes = cur_stats.rx_bytes - rpriv->prev_vf_vport_stats.rx_bytes;
4194fcb64c0fSEli Cohen 	rpriv->prev_vf_vport_stats = cur_stats;
41954b61d3e8SPo Liu 	flow_stats_update(&ma->stats, dbytes, dpkts, 0, jiffies,
419693a129ebSJiri Pirko 			  FLOW_ACTION_HW_STATS_DELAYED);
4197fcb64c0fSEli Cohen }
4198fcb64c0fSEli Cohen 
41994d8fcf21SAlaa Hleihel static void mlx5e_tc_hairpin_update_dead_peer(struct mlx5e_priv *priv,
42004d8fcf21SAlaa Hleihel 					      struct mlx5e_priv *peer_priv)
42014d8fcf21SAlaa Hleihel {
42024d8fcf21SAlaa Hleihel 	struct mlx5_core_dev *peer_mdev = peer_priv->mdev;
4203db76ca24SVlad Buslov 	struct mlx5e_hairpin_entry *hpe, *tmp;
4204db76ca24SVlad Buslov 	LIST_HEAD(init_wait_list);
42054d8fcf21SAlaa Hleihel 	u16 peer_vhca_id;
42064d8fcf21SAlaa Hleihel 	int bkt;
42074d8fcf21SAlaa Hleihel 
4208ab3f3d5eSRoi Dayan 	if (!mlx5e_same_hw_devs(priv, peer_priv))
42094d8fcf21SAlaa Hleihel 		return;
42104d8fcf21SAlaa Hleihel 
42114d8fcf21SAlaa Hleihel 	peer_vhca_id = MLX5_CAP_GEN(peer_mdev, vhca_id);
42124d8fcf21SAlaa Hleihel 
4213b32accdaSVlad Buslov 	mutex_lock(&priv->fs.tc.hairpin_tbl_lock);
4214db76ca24SVlad Buslov 	hash_for_each(priv->fs.tc.hairpin_tbl, bkt, hpe, hairpin_hlist)
4215db76ca24SVlad Buslov 		if (refcount_inc_not_zero(&hpe->refcnt))
4216db76ca24SVlad Buslov 			list_add(&hpe->dead_peer_wait_list, &init_wait_list);
4217b32accdaSVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
4218db76ca24SVlad Buslov 
4219db76ca24SVlad Buslov 	list_for_each_entry_safe(hpe, tmp, &init_wait_list, dead_peer_wait_list) {
4220db76ca24SVlad Buslov 		wait_for_completion(&hpe->res_ready);
4221db76ca24SVlad Buslov 		if (!IS_ERR_OR_NULL(hpe->hp) && hpe->peer_vhca_id == peer_vhca_id)
4222a3e5fd93SDima Chumak 			mlx5_core_hairpin_clear_dead_peer(hpe->hp->pair);
4223db76ca24SVlad Buslov 
4224db76ca24SVlad Buslov 		mlx5e_hairpin_put(priv, hpe);
4225db76ca24SVlad Buslov 	}
42264d8fcf21SAlaa Hleihel }
42274d8fcf21SAlaa Hleihel 
42284d8fcf21SAlaa Hleihel static int mlx5e_tc_netdev_event(struct notifier_block *this,
42294d8fcf21SAlaa Hleihel 				 unsigned long event, void *ptr)
42304d8fcf21SAlaa Hleihel {
42314d8fcf21SAlaa Hleihel 	struct net_device *ndev = netdev_notifier_info_to_dev(ptr);
42324d8fcf21SAlaa Hleihel 	struct mlx5e_flow_steering *fs;
42334d8fcf21SAlaa Hleihel 	struct mlx5e_priv *peer_priv;
42344d8fcf21SAlaa Hleihel 	struct mlx5e_tc_table *tc;
42354d8fcf21SAlaa Hleihel 	struct mlx5e_priv *priv;
42364d8fcf21SAlaa Hleihel 
42374d8fcf21SAlaa Hleihel 	if (ndev->netdev_ops != &mlx5e_netdev_ops ||
42384d8fcf21SAlaa Hleihel 	    event != NETDEV_UNREGISTER ||
42394d8fcf21SAlaa Hleihel 	    ndev->reg_state == NETREG_REGISTERED)
42404d8fcf21SAlaa Hleihel 		return NOTIFY_DONE;
42414d8fcf21SAlaa Hleihel 
42424d8fcf21SAlaa Hleihel 	tc = container_of(this, struct mlx5e_tc_table, netdevice_nb);
42434d8fcf21SAlaa Hleihel 	fs = container_of(tc, struct mlx5e_flow_steering, tc);
42444d8fcf21SAlaa Hleihel 	priv = container_of(fs, struct mlx5e_priv, fs);
42454d8fcf21SAlaa Hleihel 	peer_priv = netdev_priv(ndev);
42464d8fcf21SAlaa Hleihel 	if (priv == peer_priv ||
42474d8fcf21SAlaa Hleihel 	    !(priv->netdev->features & NETIF_F_HW_TC))
42484d8fcf21SAlaa Hleihel 		return NOTIFY_DONE;
42494d8fcf21SAlaa Hleihel 
42504d8fcf21SAlaa Hleihel 	mlx5e_tc_hairpin_update_dead_peer(priv, peer_priv);
42514d8fcf21SAlaa Hleihel 
42524d8fcf21SAlaa Hleihel 	return NOTIFY_DONE;
42534d8fcf21SAlaa Hleihel }
42544d8fcf21SAlaa Hleihel 
42556a064674SAriel Levkovich static int mlx5e_tc_nic_get_ft_size(struct mlx5_core_dev *dev)
42566a064674SAriel Levkovich {
42576a064674SAriel Levkovich 	int tc_grp_size, tc_tbl_size;
42586a064674SAriel Levkovich 	u32 max_flow_counter;
42596a064674SAriel Levkovich 
42606a064674SAriel Levkovich 	max_flow_counter = (MLX5_CAP_GEN(dev, max_flow_counter_31_16) << 16) |
42616a064674SAriel Levkovich 			    MLX5_CAP_GEN(dev, max_flow_counter_15_0);
42626a064674SAriel Levkovich 
42636a064674SAriel Levkovich 	tc_grp_size = min_t(int, max_flow_counter, MLX5E_TC_TABLE_MAX_GROUP_SIZE);
42646a064674SAriel Levkovich 
42656a064674SAriel Levkovich 	tc_tbl_size = min_t(int, tc_grp_size * MLX5E_TC_TABLE_NUM_GROUPS,
42666a064674SAriel Levkovich 			    BIT(MLX5_CAP_FLOWTABLE_NIC_RX(dev, log_max_ft_size)));
42676a064674SAriel Levkovich 
42686a064674SAriel Levkovich 	return tc_tbl_size;
42696a064674SAriel Levkovich }
42706a064674SAriel Levkovich 
4271655dc3d2SOr Gerlitz int mlx5e_tc_nic_init(struct mlx5e_priv *priv)
4272e8f887acSAmir Vadai {
4273acff797cSMaor Gottlieb 	struct mlx5e_tc_table *tc = &priv->fs.tc;
42746a064674SAriel Levkovich 	struct mlx5_core_dev *dev = priv->mdev;
4275c9355682SChris Mi 	struct mapping_ctx *chains_mapping;
42766a064674SAriel Levkovich 	struct mlx5_chains_attr attr = {};
42772198b932SRoi Dayan 	u64 mapping_id;
42784d8fcf21SAlaa Hleihel 	int err;
4279e8f887acSAmir Vadai 
4280b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_tbl_init(&tc->mod_hdr);
4281b6fac0b4SVlad Buslov 	mutex_init(&tc->t_lock);
4282b32accdaSVlad Buslov 	mutex_init(&tc->hairpin_tbl_lock);
42835c65c564SOr Gerlitz 	hash_init(tc->hairpin_tbl);
428411c9c548SOr Gerlitz 
42854d8fcf21SAlaa Hleihel 	err = rhashtable_init(&tc->ht, &tc_ht_params);
42864d8fcf21SAlaa Hleihel 	if (err)
42874d8fcf21SAlaa Hleihel 		return err;
42884d8fcf21SAlaa Hleihel 
42899ba33339SRoi Dayan 	lockdep_set_class(&tc->ht.mutex, &tc_ht_lock_key);
42909ba33339SRoi Dayan 
42912198b932SRoi Dayan 	mapping_id = mlx5_query_nic_system_image_guid(dev);
42922198b932SRoi Dayan 
42932198b932SRoi Dayan 	chains_mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_CHAIN,
42942198b932SRoi Dayan 					       sizeof(struct mlx5_mapped_obj),
4295c9355682SChris Mi 					       MLX5E_TC_TABLE_CHAIN_TAG_MASK, true);
42962198b932SRoi Dayan 
4297c9355682SChris Mi 	if (IS_ERR(chains_mapping)) {
4298c9355682SChris Mi 		err = PTR_ERR(chains_mapping);
4299c9355682SChris Mi 		goto err_mapping;
4300c9355682SChris Mi 	}
4301c9355682SChris Mi 	tc->mapping = chains_mapping;
4302c9355682SChris Mi 
4303c9355682SChris Mi 	if (MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level))
4304c7569097SAriel Levkovich 		attr.flags = MLX5_CHAINS_AND_PRIOS_SUPPORTED |
4305c7569097SAriel Levkovich 			MLX5_CHAINS_IGNORE_FLOW_LEVEL_SUPPORTED;
43066a064674SAriel Levkovich 	attr.ns = MLX5_FLOW_NAMESPACE_KERNEL;
43076a064674SAriel Levkovich 	attr.max_ft_sz = mlx5e_tc_nic_get_ft_size(dev);
43086a064674SAriel Levkovich 	attr.max_grp_num = MLX5E_TC_TABLE_NUM_GROUPS;
43096783f0a2SVu Pham 	attr.default_ft = mlx5e_vlan_get_flowtable(priv->fs.vlan);
4310c9355682SChris Mi 	attr.mapping = chains_mapping;
43116a064674SAriel Levkovich 
43126a064674SAriel Levkovich 	tc->chains = mlx5_chains_create(dev, &attr);
43136a064674SAriel Levkovich 	if (IS_ERR(tc->chains)) {
43146a064674SAriel Levkovich 		err = PTR_ERR(tc->chains);
43156a064674SAriel Levkovich 		goto err_chains;
43166a064674SAriel Levkovich 	}
43176a064674SAriel Levkovich 
4318f0da4daaSChris Mi 	tc->post_act = mlx5e_tc_post_act_init(priv, tc->chains, MLX5_FLOW_NAMESPACE_KERNEL);
4319aedd133dSAriel Levkovich 	tc->ct = mlx5_tc_ct_init(priv, tc->chains, &priv->fs.tc.mod_hdr,
4320f0da4daaSChris Mi 				 MLX5_FLOW_NAMESPACE_KERNEL, tc->post_act);
4321aedd133dSAriel Levkovich 
43224d8fcf21SAlaa Hleihel 	tc->netdevice_nb.notifier_call = mlx5e_tc_netdev_event;
4323d48834f9SJiri Pirko 	err = register_netdevice_notifier_dev_net(priv->netdev,
4324d48834f9SJiri Pirko 						  &tc->netdevice_nb,
4325d48834f9SJiri Pirko 						  &tc->netdevice_nn);
4326d48834f9SJiri Pirko 	if (err) {
43274d8fcf21SAlaa Hleihel 		tc->netdevice_nb.notifier_call = NULL;
43284d8fcf21SAlaa Hleihel 		mlx5_core_warn(priv->mdev, "Failed to register netdev notifier\n");
43296a064674SAriel Levkovich 		goto err_reg;
43304d8fcf21SAlaa Hleihel 	}
43314d8fcf21SAlaa Hleihel 
43326a064674SAriel Levkovich 	return 0;
43336a064674SAriel Levkovich 
43346a064674SAriel Levkovich err_reg:
4335aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(tc->ct);
4336f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(tc->post_act);
43376a064674SAriel Levkovich 	mlx5_chains_destroy(tc->chains);
43386a064674SAriel Levkovich err_chains:
4339c9355682SChris Mi 	mapping_destroy(chains_mapping);
4340c9355682SChris Mi err_mapping:
43416a064674SAriel Levkovich 	rhashtable_destroy(&tc->ht);
43424d8fcf21SAlaa Hleihel 	return err;
4343e8f887acSAmir Vadai }
4344e8f887acSAmir Vadai 
4345e8f887acSAmir Vadai static void _mlx5e_tc_del_flow(void *ptr, void *arg)
4346e8f887acSAmir Vadai {
4347e8f887acSAmir Vadai 	struct mlx5e_tc_flow *flow = ptr;
4348655dc3d2SOr Gerlitz 	struct mlx5e_priv *priv = flow->priv;
4349e8f887acSAmir Vadai 
4350961e8979SRoi Dayan 	mlx5e_tc_del_flow(priv, flow);
4351e8f887acSAmir Vadai 	kfree(flow);
4352e8f887acSAmir Vadai }
4353e8f887acSAmir Vadai 
4354655dc3d2SOr Gerlitz void mlx5e_tc_nic_cleanup(struct mlx5e_priv *priv)
4355e8f887acSAmir Vadai {
4356acff797cSMaor Gottlieb 	struct mlx5e_tc_table *tc = &priv->fs.tc;
4357e8f887acSAmir Vadai 
43584d8fcf21SAlaa Hleihel 	if (tc->netdevice_nb.notifier_call)
4359d48834f9SJiri Pirko 		unregister_netdevice_notifier_dev_net(priv->netdev,
4360d48834f9SJiri Pirko 						      &tc->netdevice_nb,
4361d48834f9SJiri Pirko 						      &tc->netdevice_nn);
43624d8fcf21SAlaa Hleihel 
4363b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_tbl_destroy(&tc->mod_hdr);
4364b32accdaSVlad Buslov 	mutex_destroy(&tc->hairpin_tbl_lock);
4365b32accdaSVlad Buslov 
43666a064674SAriel Levkovich 	rhashtable_free_and_destroy(&tc->ht, _mlx5e_tc_del_flow, NULL);
4367e8f887acSAmir Vadai 
4368acff797cSMaor Gottlieb 	if (!IS_ERR_OR_NULL(tc->t)) {
43696a064674SAriel Levkovich 		mlx5_chains_put_table(tc->chains, 0, 1, MLX5E_TC_FT_LEVEL);
4370acff797cSMaor Gottlieb 		tc->t = NULL;
4371e8f887acSAmir Vadai 	}
4372b6fac0b4SVlad Buslov 	mutex_destroy(&tc->t_lock);
43736a064674SAriel Levkovich 
4374aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(tc->ct);
4375f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(tc->post_act);
4376c9355682SChris Mi 	mapping_destroy(tc->mapping);
43776a064674SAriel Levkovich 	mlx5_chains_destroy(tc->chains);
4378e8f887acSAmir Vadai }
4379655dc3d2SOr Gerlitz 
4380655dc3d2SOr Gerlitz int mlx5e_tc_esw_init(struct rhashtable *tc_ht)
4381655dc3d2SOr Gerlitz {
4382d7a42ad0SRoi Dayan 	const size_t sz_enc_opts = sizeof(struct tunnel_match_enc_opts);
43830a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
4384aedd133dSAriel Levkovich 	struct mlx5e_rep_priv *rpriv;
43850a7fcb78SPaul Blakey 	struct mapping_ctx *mapping;
4386aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw;
4387aedd133dSAriel Levkovich 	struct mlx5e_priv *priv;
43882198b932SRoi Dayan 	u64 mapping_id;
4389aedd133dSAriel Levkovich 	int err = 0;
43900a7fcb78SPaul Blakey 
43910a7fcb78SPaul Blakey 	uplink_priv = container_of(tc_ht, struct mlx5_rep_uplink_priv, tc_ht);
4392aedd133dSAriel Levkovich 	rpriv = container_of(uplink_priv, struct mlx5e_rep_priv, uplink_priv);
4393aedd133dSAriel Levkovich 	priv = netdev_priv(rpriv->netdev);
4394aedd133dSAriel Levkovich 	esw = priv->mdev->priv.eswitch;
43950a7fcb78SPaul Blakey 
4396f0da4daaSChris Mi 	uplink_priv->post_act = mlx5e_tc_post_act_init(priv, esw_chains(esw),
4397f0da4daaSChris Mi 						       MLX5_FLOW_NAMESPACE_FDB);
4398aedd133dSAriel Levkovich 	uplink_priv->ct_priv = mlx5_tc_ct_init(netdev_priv(priv->netdev),
4399aedd133dSAriel Levkovich 					       esw_chains(esw),
4400aedd133dSAriel Levkovich 					       &esw->offloads.mod_hdr,
4401f0da4daaSChris Mi 					       MLX5_FLOW_NAMESPACE_FDB,
4402f0da4daaSChris Mi 					       uplink_priv->post_act);
44034c3844d9SPaul Blakey 
44044f4edcc2SAriel Levkovich 	uplink_priv->int_port_priv = mlx5e_tc_int_port_init(netdev_priv(priv->netdev));
44054f4edcc2SAriel Levkovich 
44062741f223SChris Mi 	uplink_priv->tc_psample = mlx5e_tc_sample_init(esw, uplink_priv->post_act);
44072a9ab10aSChris Mi 
44082198b932SRoi Dayan 	mapping_id = mlx5_query_nic_system_image_guid(esw->dev);
44092198b932SRoi Dayan 
44102198b932SRoi Dayan 	mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_TUNNEL,
44112198b932SRoi Dayan 					sizeof(struct tunnel_match_key),
44120a7fcb78SPaul Blakey 					TUNNEL_INFO_BITS_MASK, true);
44132198b932SRoi Dayan 
44140a7fcb78SPaul Blakey 	if (IS_ERR(mapping)) {
44150a7fcb78SPaul Blakey 		err = PTR_ERR(mapping);
44160a7fcb78SPaul Blakey 		goto err_tun_mapping;
44170a7fcb78SPaul Blakey 	}
44180a7fcb78SPaul Blakey 	uplink_priv->tunnel_mapping = mapping;
44190a7fcb78SPaul Blakey 
44203222efd4SVlad Buslov 	/* Two last values are reserved for stack devices slow path table mark
44213222efd4SVlad Buslov 	 * and bridge ingress push mark.
44223222efd4SVlad Buslov 	 */
44232198b932SRoi Dayan 	mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_TUNNEL_ENC_OPTS,
44243222efd4SVlad Buslov 					sz_enc_opts, ENC_OPTS_BITS_MASK - 2, true);
44250a7fcb78SPaul Blakey 	if (IS_ERR(mapping)) {
44260a7fcb78SPaul Blakey 		err = PTR_ERR(mapping);
44270a7fcb78SPaul Blakey 		goto err_enc_opts_mapping;
44280a7fcb78SPaul Blakey 	}
44290a7fcb78SPaul Blakey 	uplink_priv->tunnel_enc_opts_mapping = mapping;
44300a7fcb78SPaul Blakey 
44310a7fcb78SPaul Blakey 	err = rhashtable_init(tc_ht, &tc_ht_params);
44320a7fcb78SPaul Blakey 	if (err)
44330a7fcb78SPaul Blakey 		goto err_ht_init;
44340a7fcb78SPaul Blakey 
44359ba33339SRoi Dayan 	lockdep_set_class(&tc_ht->mutex, &tc_ht_lock_key);
44369ba33339SRoi Dayan 
44378914add2SVlad Buslov 	uplink_priv->encap = mlx5e_tc_tun_init(priv);
44382b6c3c1eSWei Yongjun 	if (IS_ERR(uplink_priv->encap)) {
44392b6c3c1eSWei Yongjun 		err = PTR_ERR(uplink_priv->encap);
44408914add2SVlad Buslov 		goto err_register_fib_notifier;
44412b6c3c1eSWei Yongjun 	}
44428914add2SVlad Buslov 
44432b6c3c1eSWei Yongjun 	return 0;
44440a7fcb78SPaul Blakey 
44458914add2SVlad Buslov err_register_fib_notifier:
44468914add2SVlad Buslov 	rhashtable_destroy(tc_ht);
44470a7fcb78SPaul Blakey err_ht_init:
44480a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_enc_opts_mapping);
44490a7fcb78SPaul Blakey err_enc_opts_mapping:
44500a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_mapping);
44510a7fcb78SPaul Blakey err_tun_mapping:
44520027d70cSChris Mi 	mlx5e_tc_sample_cleanup(uplink_priv->tc_psample);
44534f4edcc2SAriel Levkovich 	mlx5e_tc_int_port_cleanup(uplink_priv->int_port_priv);
4454aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(uplink_priv->ct_priv);
44550a7fcb78SPaul Blakey 	netdev_warn(priv->netdev,
44560a7fcb78SPaul Blakey 		    "Failed to initialize tc (eswitch), err: %d", err);
4457f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(uplink_priv->post_act);
44580a7fcb78SPaul Blakey 	return err;
4459655dc3d2SOr Gerlitz }
4460655dc3d2SOr Gerlitz 
4461655dc3d2SOr Gerlitz void mlx5e_tc_esw_cleanup(struct rhashtable *tc_ht)
4462655dc3d2SOr Gerlitz {
44630a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
44640a7fcb78SPaul Blakey 
44650a7fcb78SPaul Blakey 	uplink_priv = container_of(tc_ht, struct mlx5_rep_uplink_priv, tc_ht);
4466aedd133dSAriel Levkovich 
44678914add2SVlad Buslov 	rhashtable_free_and_destroy(tc_ht, _mlx5e_tc_del_flow, NULL);
44688914add2SVlad Buslov 	mlx5e_tc_tun_cleanup(uplink_priv->encap);
44698914add2SVlad Buslov 
44700a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_enc_opts_mapping);
44710a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_mapping);
44724c3844d9SPaul Blakey 
44730027d70cSChris Mi 	mlx5e_tc_sample_cleanup(uplink_priv->tc_psample);
44744f4edcc2SAriel Levkovich 	mlx5e_tc_int_port_cleanup(uplink_priv->int_port_priv);
4475aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(uplink_priv->ct_priv);
4476f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(uplink_priv->post_act);
4477655dc3d2SOr Gerlitz }
447801252a27SOr Gerlitz 
4479226f2ca3SVlad Buslov int mlx5e_tc_num_filters(struct mlx5e_priv *priv, unsigned long flags)
448001252a27SOr Gerlitz {
4481d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
448201252a27SOr Gerlitz 
448301252a27SOr Gerlitz 	return atomic_read(&tc_ht->nelems);
448401252a27SOr Gerlitz }
448504de7ddaSRoi Dayan 
448604de7ddaSRoi Dayan void mlx5e_tc_clean_fdb_peer_flows(struct mlx5_eswitch *esw)
448704de7ddaSRoi Dayan {
448804de7ddaSRoi Dayan 	struct mlx5e_tc_flow *flow, *tmp;
448904de7ddaSRoi Dayan 
449004de7ddaSRoi Dayan 	list_for_each_entry_safe(flow, tmp, &esw->offloads.peer_flows, peer)
449104de7ddaSRoi Dayan 		__mlx5e_tc_del_fdb_peer_flow(flow);
449204de7ddaSRoi Dayan }
4493b4a23329SRoi Dayan 
4494b4a23329SRoi Dayan void mlx5e_tc_reoffload_flows_work(struct work_struct *work)
4495b4a23329SRoi Dayan {
4496b4a23329SRoi Dayan 	struct mlx5_rep_uplink_priv *rpriv =
4497b4a23329SRoi Dayan 		container_of(work, struct mlx5_rep_uplink_priv,
4498b4a23329SRoi Dayan 			     reoffload_flows_work);
4499b4a23329SRoi Dayan 	struct mlx5e_tc_flow *flow, *tmp;
4500b4a23329SRoi Dayan 
4501ad86755bSVlad Buslov 	mutex_lock(&rpriv->unready_flows_lock);
4502b4a23329SRoi Dayan 	list_for_each_entry_safe(flow, tmp, &rpriv->unready_flows, unready) {
4503b4a23329SRoi Dayan 		if (!mlx5e_tc_add_fdb_flow(flow->priv, flow, NULL))
4504ad86755bSVlad Buslov 			unready_flow_del(flow);
4505b4a23329SRoi Dayan 	}
4506ad86755bSVlad Buslov 	mutex_unlock(&rpriv->unready_flows_lock);
4507b4a23329SRoi Dayan }
4508e2394a61SVlad Buslov 
4509e2394a61SVlad Buslov static int mlx5e_setup_tc_cls_flower(struct mlx5e_priv *priv,
4510e2394a61SVlad Buslov 				     struct flow_cls_offload *cls_flower,
4511e2394a61SVlad Buslov 				     unsigned long flags)
4512e2394a61SVlad Buslov {
4513e2394a61SVlad Buslov 	switch (cls_flower->command) {
4514e2394a61SVlad Buslov 	case FLOW_CLS_REPLACE:
4515e2394a61SVlad Buslov 		return mlx5e_configure_flower(priv->netdev, priv, cls_flower,
4516e2394a61SVlad Buslov 					      flags);
4517e2394a61SVlad Buslov 	case FLOW_CLS_DESTROY:
4518e2394a61SVlad Buslov 		return mlx5e_delete_flower(priv->netdev, priv, cls_flower,
4519e2394a61SVlad Buslov 					   flags);
4520e2394a61SVlad Buslov 	case FLOW_CLS_STATS:
4521e2394a61SVlad Buslov 		return mlx5e_stats_flower(priv->netdev, priv, cls_flower,
4522e2394a61SVlad Buslov 					  flags);
4523e2394a61SVlad Buslov 	default:
4524e2394a61SVlad Buslov 		return -EOPNOTSUPP;
4525e2394a61SVlad Buslov 	}
4526e2394a61SVlad Buslov }
4527e2394a61SVlad Buslov 
4528e2394a61SVlad Buslov int mlx5e_setup_tc_block_cb(enum tc_setup_type type, void *type_data,
4529e2394a61SVlad Buslov 			    void *cb_priv)
4530e2394a61SVlad Buslov {
4531ec9457a6SRoi Dayan 	unsigned long flags = MLX5_TC_FLAG(INGRESS);
4532e2394a61SVlad Buslov 	struct mlx5e_priv *priv = cb_priv;
4533e2394a61SVlad Buslov 
45342ff349c5SRoi Dayan 	if (!priv->netdev || !netif_device_present(priv->netdev))
45352ff349c5SRoi Dayan 		return -EOPNOTSUPP;
45362ff349c5SRoi Dayan 
4537ec9457a6SRoi Dayan 	if (mlx5e_is_uplink_rep(priv))
4538ec9457a6SRoi Dayan 		flags |= MLX5_TC_FLAG(ESW_OFFLOAD);
4539ec9457a6SRoi Dayan 	else
4540ec9457a6SRoi Dayan 		flags |= MLX5_TC_FLAG(NIC_OFFLOAD);
4541ec9457a6SRoi Dayan 
4542e2394a61SVlad Buslov 	switch (type) {
4543e2394a61SVlad Buslov 	case TC_SETUP_CLSFLOWER:
4544e2394a61SVlad Buslov 		return mlx5e_setup_tc_cls_flower(priv, type_data, flags);
4545e2394a61SVlad Buslov 	default:
4546e2394a61SVlad Buslov 		return -EOPNOTSUPP;
4547e2394a61SVlad Buslov 	}
4548e2394a61SVlad Buslov }
4549c7569097SAriel Levkovich 
4550c7569097SAriel Levkovich bool mlx5e_tc_update_skb(struct mlx5_cqe64 *cqe,
4551c7569097SAriel Levkovich 			 struct sk_buff *skb)
4552c7569097SAriel Levkovich {
4553c7569097SAriel Levkovich #if IS_ENABLED(CONFIG_NET_TC_SKB_EXT)
4554aedd133dSAriel Levkovich 	u32 chain = 0, chain_tag, reg_b, zone_restore_id;
4555c7569097SAriel Levkovich 	struct mlx5e_priv *priv = netdev_priv(skb->dev);
4556aedd133dSAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
4557a91d98a0SChris Mi 	struct mlx5_mapped_obj mapped_obj;
4558c7569097SAriel Levkovich 	struct tc_skb_ext *tc_skb_ext;
4559c7569097SAriel Levkovich 	int err;
4560c7569097SAriel Levkovich 
4561c7569097SAriel Levkovich 	reg_b = be32_to_cpu(cqe->ft_metadata);
4562c7569097SAriel Levkovich 
4563c7569097SAriel Levkovich 	chain_tag = reg_b & MLX5E_TC_TABLE_CHAIN_TAG_MASK;
4564c7569097SAriel Levkovich 
4565c9355682SChris Mi 	err = mapping_find(tc->mapping, chain_tag, &mapped_obj);
4566c7569097SAriel Levkovich 	if (err) {
4567c7569097SAriel Levkovich 		netdev_dbg(priv->netdev,
4568c7569097SAriel Levkovich 			   "Couldn't find chain for chain tag: %d, err: %d\n",
4569c7569097SAriel Levkovich 			   chain_tag, err);
4570c7569097SAriel Levkovich 		return false;
4571c7569097SAriel Levkovich 	}
4572c7569097SAriel Levkovich 
4573a91d98a0SChris Mi 	if (mapped_obj.type == MLX5_MAPPED_OBJ_CHAIN) {
4574a91d98a0SChris Mi 		chain = mapped_obj.chain;
45759453d45eSVlad Buslov 		tc_skb_ext = tc_skb_ext_alloc(skb);
4576c7569097SAriel Levkovich 		if (WARN_ON(!tc_skb_ext))
4577c7569097SAriel Levkovich 			return false;
4578c7569097SAriel Levkovich 
4579c7569097SAriel Levkovich 		tc_skb_ext->chain = chain;
4580aedd133dSAriel Levkovich 
4581ed2fe7baSPaul Blakey 		zone_restore_id = (reg_b >> REG_MAPPING_MOFFSET(NIC_ZONE_RESTORE_TO_REG)) &
458248d216e5SVlad Buslov 			ESW_ZONE_ID_MASK;
4583aedd133dSAriel Levkovich 
4584aedd133dSAriel Levkovich 		if (!mlx5e_tc_ct_restore_flow(tc->ct, skb,
4585aedd133dSAriel Levkovich 					      zone_restore_id))
4586aedd133dSAriel Levkovich 			return false;
4587a91d98a0SChris Mi 	} else {
4588a91d98a0SChris Mi 		netdev_dbg(priv->netdev, "Invalid mapped object type: %d\n", mapped_obj.type);
4589a91d98a0SChris Mi 		return false;
4590c7569097SAriel Levkovich 	}
4591c7569097SAriel Levkovich #endif /* CONFIG_NET_TC_SKB_EXT */
4592c7569097SAriel Levkovich 
4593c7569097SAriel Levkovich 	return true;
4594c7569097SAriel Levkovich }
4595